Server side session management while avoiding storing any user authentication token on the server itself.