Yes, I did that too, but the problem still persists. Were you able to reproduce this issue?
hi, This happens even in MVC. To reproduce as I noticed: you wait (without any actions somtimes) till Token expired but not the cookie, when the Web call HostApi which not accept Web Token. this issue happend.
I tried to change cookie and Token configs but still face it. Most of times Logging out not solve it. Nor clean browser cache. This happens in development and prodctuion environments
Currently The ONLY WORKAROUND FOR THIS : Clean REDIS cache
I think this related to some enryption keys for Token stored in REDIS cache, when clear the cache the system re-generate some keys.
How can implement phantom token with OpenIddect? Please look below url https://curity.io/resources/learn/phantom-token-pattern/
Hello,
Why it only happened on AR and RU?