Part 1. Introduction & Setting the cookies

Don’t judge — it’s my first post ever… But since it’s hard to find all information i’ve gathered in one place — i feel the need to share this with all who will come here from the Google’s search ;)

So, where to start… Some time ago our FE developer told me that neither the localStorage nor the cookies are the places to save a sensitive information to and we need to change the authorization…




HttpOnly cookie-based authorization setup using Symfony, Api Platform, LexikJWTAuthenticationBundle and JWTRefreshTokenBundle

Recommended from Medium

JavaScript Project Flatiron Phase 4

Creating own py module and uploading to PyPI

Getting Started With Angular and Go — Setting Up A Boilerplate Project.

Common Programmer Mistakes When Developing REST APIs in Node.js

#DatBoiBeCoding: Learn Data Visualization with D3 (SVG and D3 Basics Part 1)

Everything You Need To Know About YAML Files

Join airdrop and win 100$

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Vladimir Kovalchuk

Vladimir Kovalchuk

Lazy full stack developer...

More from Medium

Should we be using 302 or 307 for temporary HTTP redirects?

AWS Elastic Beanstalk disable journald RateLimitBurst

Fix “413 request entity too large” Nginx error on AWS Elastic Beanstalk via EBS Configuration