Tosin Bee

1.2K posts

Tosin Bee banner
Tosin Bee

Tosin Bee

@Vhic_mar

OLUWATOSIN!!!! Jesus baby❤️|backend developer-JavaScript|Typescript|football lover|Fashion designer https://t.co/1ybYsOJlTb

Lagos, Nigeria Katılım Aralık 2022
1.2K Takip Edilen724 Takipçiler
Tosin Bee retweetledi
Holy Bible
Holy Bible@Holy__Bible1·
“𝙃𝙚 𝙙𝙞𝙚𝙙 𝙨𝙤 𝙬𝙚 𝙘𝙤𝙪𝙡𝙙 𝙡𝙞𝙫𝙚.”
English
332
18K
84.9K
1.2M
Tosin Bee retweetledi
Ja Leto
Ja Leto@_falsi1ke·
Seeing your siblings doing well is a top tier feeling.
English
138
5.9K
31.7K
457.7K
Tosin Bee retweetledi
HNG💡
HNG💡@hnginternship·
Tech will humble you small 😅 One day you’re confident, next day you’re googling basics again. Normal normal. Growth is not a straight line. #hngtech #hnginternship #hngi14
English
8
19
61
2.8K
Tosin Bee retweetledi
Shater Tsavsar ⚡︎
Shater Tsavsar ⚡︎@Tsavsar_·
Every single win in my career comes from my Faith in Jesus Christ Nothing I've gotten has been by my own effort, and I am forever grateful for that
English
14
105
639
17.3K
Tosin Bee
Tosin Bee@Vhic_mar·
@developerBolu It’s good to see all you guys comment…I was able to pick one or two good/ideal practice as backend dev
English
0
0
2
119
Boluwatife.vue.dev💚✨
Boluwatife.vue.dev💚✨@developerBolu·
as a frontend engineer, that’s nothing i find more attractive than a backend engineer one-shoting implementations. let the endpoints work as expected.
English
25
22
242
13.8K
Tosin Bee retweetledi
GBOLAHAN 🪬
GBOLAHAN 🪬@gbolaha_n9·
Hello everyone pls make this dream come through. Thanks for the opportunity @germanlang25 🥹🙏🏽
GBOLAHAN 🪬 tweet media
GBOLAHAN 🪬@gbolaha_n9

@germanlang25 Can I have this kinda opportunity too ? It’s being my dream to be fluent in German and aspiring to work in Germany soon 🙏🏽

English
69
3.5K
5K
187K
Donye
Donye@donye_goodness·
God has done it again✅ 500 Level MBBS Result = 3 out of 3 Distinctions Distinction (D) in Community Health & Primary Care Distinction (D) in Obs & Gynae Distinction (D) in Paediatrics 100L-500L Result = 5.00CGPA, 11 out of 11 Distinctions. Mbbs, Unilag.
Donye tweet mediaDonye tweet media
English
1.4K
2.3K
18.1K
2.7M
Tosin Bee
Tosin Bee@Vhic_mar·
Confidence in God will always produce proves
English
0
0
0
37
Tosin Bee
Tosin Bee@Vhic_mar·
Client sends refresh token to the server Server checks Redis to see if the token exists and its valid Server confirms the token hasn’t been used or revoked in the database Old token is canceled so it can’t be used again
English
0
0
0
21
Tosin Bee
Tosin Bee@Vhic_mar·
revocable, rotatable) This is how I went about the flow . User login with email and password The server generates the access and refresh token I save the refresh token in the database and redis for fast lookup. To get the access token and refresh token again after expiration
English
1
0
0
34
Tosin Bee
Tosin Bee@Vhic_mar·
Refresh tokens are important. But the real question is: should they be stateless or stateful? After some learning this is what I conclude at though I appreciate correction from any one Access tokens - stateless (JWTs, short-lived, fast) Refresh tokens - stateful (stored,
Tosin Bee tweet mediaTosin Bee tweet mediaTosin Bee tweet media
English
1
0
0
45
Tosin Bee
Tosin Bee@Vhic_mar·
revocable, rotatable) This is how I went about the flow . User login in email and password The server generates the access and refresh token I save the refresh token in the database and redis for fast lookup. To get the access token and refresh token again after expiration
English
0
0
0
28
SumitM
SumitM@SumitM_X·
Users get deleted, but their blog posts must stay. How do you enforce this?
English
104
6
268
95.1K
Tosin Bee retweetledi
Naijabrandchick
Naijabrandchick@nellyagbogu·
I pray this goes viral 🙏🏾 I sell cassava biscuits for a living It gets to the end user at N200 A carton contains 50 sachets I am looking for distributors all over Nigeria Pls WhatsApp 08084002862 If you want to buy and taste you can buy on our website comeagainfoods.com
Naijabrandchick tweet media
English
261
9.5K
17.6K
518.6K
Tosin Bee
Tosin Bee@Vhic_mar·
I planned my week well Wrote down all I needed to do for the week but Nepa said no and took the light since Tuesday and brought it back today Having to go to charge and pay so I can work since I already told my boss at my place of work that the light in my area is 80 % okay ☹️
English
0
0
0
46
Tosin Bee
Tosin Bee@Vhic_mar·
@1FineBreed Yeah…it’s also very much important that the secret rotates in every refresh Thank you…I’m trying to learn best practices.
English
0
0
0
26
__Ola__.js 🔥
__Ola__.js 🔥@1FineBreed·
@Vhic_mar Sending tokens in headers over https should be secure Unique secrets for tokens is like JTI invalidation strategy It works safely if the secret rotates on every refresh; a long-lived per-user secret defeats the point because a stolen refresh token can be reused indefinitely.
English
1
0
3
212
Tosin Bee
Tosin Bee@Vhic_mar·
I’ve always sent my refresh token in the header even though I knew my approach isn’t fully secure but today I learnt a safer approach which is When a user logs in, I create a session key to be stored in the database and then I combined the refresh token secret and the session
English
3
0
10
638
Tosin Bee
Tosin Bee@Vhic_mar·
Every user has their own secret so that stolen tokens can’t be reused
English
0
0
0
39
Tosin Bee
Tosin Bee@Vhic_mar·
When a user logs in with a refresh token, the server first reads the token to find which user it belongs to then it looks up the db for the user session token to rebuild the secret used to sign the refresh token. If the token matches, the user is logged in; if not, it’s rejected.
English
1
0
0
32
Tosin Bee
Tosin Bee@Vhic_mar·
The approach i use before which I feel is less secure is that Every user token is signed with the same secret key and if someone steals one refresh token,they might try to reuse it. The approach I just learnt is that Every user gets their own secret key generated dynamically
Tosin Bee@Vhic_mar

I’ve always sent my refresh token in the header even though I knew my approach isn’t fully secure but today I learnt a safer approach which is When a user logs in, I create a session key to be stored in the database and then I combined the refresh token secret and the session

English
2
0
1
120
Tosin Bee
Tosin Bee@Vhic_mar·
@docikenna I’m never said token isn’t safe in headers….refresh token which is actually used for token renewal can be more secured by using a per user Dynamic refresh Token secret…just tell me you don’t understand my concept and I will explain to you again what I meant
English
0
0
0
24
Dr. Iyke
Dr. Iyke@docikenna·
@Vhic_mar Since when did sending tokens in the header become unsafe?
English
1
0
0
45