mirror of
https://github.com/nspcc-dev/neofs-node.git
synced 2026-03-01 04:29:10 +00:00
Token verification cache #1384
Labels
No labels
I1
I2
I3
I4
S0
S1
S2
S3
S4
U0
U1
U2
U3
U4
blocked
bug
config
dependencies
discussion
documentation
enhancement
enhancement
epic
feature
go
good first issue
help wanted
neofs-adm
neofs-cli
neofs-cli
neofs-cli
neofs-ir
neofs-lens
neofs-storage
neofs-storage
performance
question
security
task
test
windows
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
nspcc-dev/neofs-node#1384
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @roman-khimov on GitHub (Mar 21, 2025).
Originally assigned to: @cthulhu-rider on GitHub.
Is your feature request related to a problem? Please describe.
I'm always frustrated when we're wasting resources for operations we can avoid. Most of the time NeoFS PUT/GET requests come with some kind of token (session/bearer). Nodes validate these tokens as they should be doing, but they do it for every request, while in fact tokens do not change often. Currently this means an additional signature verification, but with https://github.com/nspcc-dev/neofs-node/issues/3194 implemented it could mean an additional RPC request.
Describe the solution you'd like
Hash and cache. When we get a token that was verified previously just trust the previous verification result. This obviously is about token validity, not request validity wrt provided token, because a good PUT session token still doesn't allow to perform GET, but at least we can immediately say that the token is OK.
Describe alternatives you've considered
Keep wasting resources per request.