2020/5/9追è¨: èããçµæãAuthorization Bearer ãããã使ã£ãæ£è¦ã®JWTã®å ´åãåä¸ãã¡ã¤ã³ä¸ã§èªã¿è¾¼ãå ¨ JavaScript ãä¿¡ç¨ã§ããå ´åã§ãªãã¨ãã©ã¦ã¶ä¸ã§å®å ¨ã«ãã¼ã¯ã³ãä¿æã§ããªãã®ã§ãã©ã¦ã¶ããã®APIã¢ã¯ã»ã¹æã®èªè¨¼ç¨ã«ã¯ä½¿ãã¹ãã§ã¯ãªãã¨ããã¨ããã«çé¸ãã¾ããããã©ã¦ã¶ããã®ã¢ã¯ã»ã¹ã§ã¯ http only cookie ã«ãã¼ã¯ã³ãå ¥ãã CSRF 対çãå¿ããã«ã¨ããããã¾ã§éãã®å®ç³ãæå ãããã«æãã¾ãã JWTã使ãã®ã¯ãã¼ã¯ã³ã®å®å ¨ãªä¿ç®¡ãã§ããéãã©ã¦ã¶ãªãã¤ãã£ãã¯ã©ã¤ã¢ã³ãããã®APIã¢ã¯ã»ã¹æã«éã£ãæ¹ãããããã§ãã APIãµã¼ãå´ã§ã¯ã¢ã¯ã»ã¹å ã«åããã¦èªè¨¼æ¹æ³ã使ãåãã両対å¿ãè¦æ±ãããã®ã§æéã¯å¢ãã¾ããææãã§ããå ´æã§ããªãã®ã§ä»æ¹ãªãã¨ã React(SPA)ã§ã®èªè¨¼ã«ã¤ãã¦ã¾ã¨ã - ã¨ã³ã¸ãã¢ã®æ¬
{{#tags}}- {{label}}
{{/tags}}