Skip to content

No more signature replay

Compare
Choose a tag to compare
@agix agix released this 02 Oct 09:32
· 17 commits to master since this release

To follow changes in secretin-lib, server no longer accepts 2 identical signatures during 30 seconds by default.

Signature embed time and are cached in redis during SIGNATURE_DELAY so if time is too old or exists in redis, signature is rejected.