f1e31ca50c
Disable invalidation of access tokens by default to restore backwards compatibility with older 2.x versions. Add a new application-wide flag logoutSessionsOnSensitiveChanges that can be used to explicitly turn on/off the token invalidation. When the flag is not set, a verbose warning is printed to nudge the user to make a decision how they want to handle token invalidation. |
||
---|---|---|
.. | ||
access-control | ||
e2e/server | ||
shared-methods | ||
simple-app | ||
simple-integration-app | ||
user-integration-app |