I understand how the process and request flows in passport but what i dont understand is why are we even using a session store when the cookie just expires after the max age but the session in the session store is always there storing the session id even after the cookie is expired!?
Well, I use it for analytics. Like how many sessions we had today. Or yesterday. Or for the year.
Also if you don’t use something like redis of mongo, all your memory will get eaten up. Express-session isn’t built for production environments.
https://github.com/expressjs/session/issues/556
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With