On Thursday, September 27, 2012 at 3:26 AM, Matthias Wessendorf wrote:
Hi,using the Auth-Token to get access to protected resources / endpoints(after doing a login) works fine!I am wondering how to avoid that one token is used on differentdevices? (e.g. when somebody is 'stealing' the token).I did sign-in to the app, using the browser and got the followingtoken => db5d16da-a1e5-48d9-a2fd-e39e36e835bcNow I was able to issue a get request against the endpoints, by usingthe same token, from different 'devices':- curl- iOS test caseNOTE: we don't need a solution now, since I know you guys are busywith some demo work - but just want to run that 'issue' by this listGreetings,Matthias--Matthias Wessendorfsessions: http://www.slideshare.net/mwessendorftwitter: http://twitter.com/mwessendorf_______________________________________________aerogear-dev mailing list