This question assesses practical knowledge of common web development concerns with Node.js.
01
01
Understand the problem
authenticationsessionsjwtsecurity
02
02
Attempt it yourself
Sketch your approach before reading the solution — that's what interviews test.
Stuck? AI Nudge Available
Get a conceptual hint to guide your logic without spoiling the final implementation.
03
03
Study the solution
The solution is waiting
Give it an honest attempt first — then compare your thinking with the full walkthrough.
04
04
Read the code
Redis-backed sessions with secure cookies
import session from 'express-session';
import { RedisStore } from 'connect-redis';
app.use(session({
store: new RedisStore({ client: redis }),
secret: process.env.SESSION_SECRET,
resave: false, saveUninitialized: false,
cookie: { httpOnly: true, secure: true, sameSite: 'lax', maxAge: 86_400_000 },
}));
app.post('/login', async (req, res) => {
if (!(await verify(req.body))) return res.status(401).end();
req.session.regenerate(() => { req.session.userId = user.id; res.json({ ok: true }); });
});05
05
Join the discussion
Discussion (0)
Sign in to join the discussion.
No responses yet. Be the first to share what you think.