Securing React Redux Apps With JWT Tokens

  1. Signature: A String that was generated using #1 + #2 + “a secret” (that only the server knows), using the algorithm mentioned in #1.

How does this make sense ? How can only the server know it ?

