<div dir="ltr"><span style="font-family:arial,sans-serif;font-size:13px">Hey Team,</span><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">I am been looking for answer to <a href="http://stackoverflow.com/questions/24769691/what-are-some-ways-to-secure-rest-apis" target="_blank">http://stackoverflow.com/questions/24769691/what-are-some-ways-to-secure-rest-apis</a> and found that keycloak is suitable for securing REST APIs using OAuth 2.0.</div>
<div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">I am looking for example where the following is demonstrated</div><div style="font-family:arial,sans-serif;font-size:13px">
a.) Third-party app registers and gets Access Token</div><div style="font-family:arial,sans-serif;font-size:13px">b.) Third-Party app accesses Resource Server to access protected resource by sending Access Token to REST API</div>
<div style="font-family:arial,sans-serif;font-size:13px">c.) and How Token is validated.</div><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px"><br>
</div><div style="font-family:arial,sans-serif;font-size:13px">It is mentioned in features of keycloak as  </div><div style="font-family:arial,sans-serif;font-size:13px"><ul style="margin:0px;padding:10px 0px 10px 15px;color:rgb(119,119,119);font-family:Helvetica,Arial,sans-serif;font-size:12px;line-height:18px">
<li style="margin-left:5px;list-style:none;padding:0px 0px 0px 20px;background:url(https://static.jboss.org/theme/images/magnolia/check-sprite.gif) 0px -124px no-repeat scroll transparent">OAuth Bearer token auth for REST Services</li>
<li style="margin-left:5px;list-style:none;padding:0px 0px 0px 20px;background:url(https://static.jboss.org/theme/images/magnolia/check-sprite.gif) 0px -124px no-repeat scroll transparent"><span style="background-color:transparent">OAuth 2.0 Grant requests</span></li>
<li style="margin-left:5px;list-style:none;padding:0px 0px 0px 20px;background:url(https://static.jboss.org/theme/images/magnolia/check-sprite.gif) 0px -124px no-repeat scroll transparent">CORS Support</li></ul></div><div style="font-family:arial,sans-serif;font-size:13px">
Can you please guide me through examples?</div><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">Thank you</div><div class="" style="font-family:arial,sans-serif;font-size:13px">
</div></div><div class="gmail_extra"><br><br><div class="gmail_quote">On Fri, Jul 25, 2014 at 2:00 PM, Harit Himanshu <span dir="ltr">&lt;<a href="mailto:harit.subscriptions@gmail.com" target="_blank">harit.subscriptions@gmail.com</a>&gt;</span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">Hey Team,<div><br></div><div>I am been looking for answer to <a href="http://stackoverflow.com/questions/24769691/what-are-some-ways-to-secure-rest-apis" target="_blank">http://stackoverflow.com/questions/24769691/what-are-some-ways-to-secure-rest-apis</a> and found that keycloak is suitable for securing REST APIs using OAuth 2.0.</div>

<div><br></div><div>I am looking for example where the following is demonstrated</div><div>a.) Third-party app registers and gets Access Token</div><div>b.) Third-Party app accesses Resource Server to access protected resource by sending Access Token to REST API</div>

<div>c.) and How Token is validated.</div><div><br></div><div><br></div><div>It is mentioned in features of keycloak as  </div><div><ul style="margin:0px;padding:10px 0px 10px 15px;color:rgb(119,119,119);font-family:Helvetica,Arial,sans-serif;font-size:12px;line-height:18px">

<li style="list-style:none;margin-left:5px;padding:0px 0px 0px 20px;background:url(https://static.jboss.org/theme/images/magnolia/check-sprite.gif) 0px -124px no-repeat scroll transparent">OAuth Bearer token auth for REST Services</li>

<li style="list-style:none;margin-left:5px;padding:0px 0px 0px 20px;background:url(https://static.jboss.org/theme/images/magnolia/check-sprite.gif) 0px -124px no-repeat scroll transparent"><span style="background-color:transparent">OAuth 2.0 Grant requests</span></li>

<li style="list-style:none;margin-left:5px;padding:0px 0px 0px 20px;background:url(https://static.jboss.org/theme/images/magnolia/check-sprite.gif) 0px -124px no-repeat scroll transparent">CORS Support</li></ul></div><div>

Can you please guide me through examples?</div><div><br></div><div>Thank you</div><span class="HOEnZb"><font color="#888888"><div>+ Harit Himanshu</div></font></span></div>
</blockquote></div><br></div>