[keycloak-user] Different token timeouts for clients under the same realm

Scott Rossillo srossillo at smartling.com
Fri Aug 28 08:43:08 EDT 2015


I’m not sure what your “Agents” are, but can’t they just use a refresh token to extend the life of their Keycloak session?

You’d have to better explain what your agents are and how they’re used to better explain your use case.

~ Scott


> On Aug 28, 2015, at 6:32 AM, robinfernandes . <robin1233 at gmail.com> wrote:
> 
> Hi All,
> 
> Is there a possibility where we can set different token timeouts for clients under the same realm?
> 
> The use case why we are trying to achieve this is basically we have 2 applications which require 2 different timeout settings.
> We want the web client timeouts to be short since there would be human intervention there always, however we want our Agent timeouts to be very large since there might not be anyone to log into it again.
> 
> Using Keycloak we have seen that the timeout settings can be applied only at the realm level though, which forces us to have each application in a different realm.
> 
> Can we have the timeout settings at the client(application) level rather than the realm level so that we can put both the applications in the same realm?
> 
> Thanks & Regards,
> Robin
> _______________________________________________
> keycloak-user mailing list
> keycloak-user at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/keycloak-user




More information about the keycloak-user mailing list