mirror of
https://github.com/hansjone/netx.git
synced 2026-10-09 02:00:46 +08:00
Harden auth with revocable sessions, cookies, and single-login default.
Issue short-lived access JWTs backed by AuthSession rows, HttpOnly cookies with refresh rotation, idle timeout, session management UI, WebCRT ownership caps, and optional Redis login rate limits; new logins revoke other sessions by default. Co-authored-by: Cursor <cursoragent@cursor.com>
This commit is contained in:
parent
ba33ab5c4f
commit
20c2fcd496
34 changed files with 1462 additions and 149 deletions
|
|
@ -43,3 +43,5 @@ If Alembic history was never stamped and you prefer to mark current without re-r
|
|||
|----------|---------|
|
||||
| `20260802_scopes` | `app_user.scopes` / `api_token.scopes` |
|
||||
| `20260802_legacy` | Shared brownfield patches (alarms, inventory, managed_ne, topology, port traffic, key-alert, …) |
|
||||
| `20260806_auth_session` | Revocable JWT login sessions (`auth_session`) |
|
||||
| `20260806_auth_refresh` | Refresh token columns on `auth_session` |
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue