All the articles and stack overflow answers I read about JWTs recommend the two token approach.
A short lived (5-10min) access token that is used to access protected resources and a longer lived refresh token
that is used to get more access tokens. I see that the
https://github.com/GetBlimp/django-rest-framework-jwt package
is linked in the authentication docs, but this package does not support refresh tokens.
My question is how would one support a 'remember me' functionality (aka not have to sign in after not using the SPA
for just a few min) with Django Rest Framework?
As an aside, since JSON Web Tokens seem to be taking off, is there a chance DRF will natively support them in the future?