[keycloak-user] Sharing a session between 2 different clients of the same realm

Nhut Thai Le ntle at castortech.com
Wed Apr 25 11:04:25 EDT 2018


​My use case is a bit ​different but on the web page that make REST call to
client 1 and 2, do you put the token in the header of the call?

Thai

On Wed, Apr 25, 2018 at 10:14 AM, Pieter Lukasse <pieter at thehyve.nl> wrote:

> Thanks Thai,
>
> Some more details regarding my use case:
>
>
>    - 2 clients connected to the same Keycloak realm (via SAML)
>    - user logs in to 1st client and opens a webpage that makes a REST API
>    calls to both 1st and 2nd client apps
>
> Currently the calls to the REST API of the 2nd client app fail with 401
> error (not authorized). Any hints on how to get this working? SSO is
> working across both apps (i.e. when the user is logged in to client 1 and
> then browses to client 2, he does not need to fill in user name and
> password again), but the REST API call is failing.
>
> Thanks,
>
> Pieter
>
>
>
> 2018-04-25 15:37 GMT+02:00 Nhut Thai Le <ntle at castortech.com>:
>
>> I have some users that has client role in multiple clients. So when they
>> login, they can access multiple clients.
>>
>> Thai
>>
>> On Wed, Apr 25, 2018 at 6:43 AM, Pieter Lukasse <pieter at thehyve.nl>
>> wrote:
>>
>>> Hi,
>>>
>>> Basically I need a single session to be valid at 2 different client
>>> applications that are connected to the same realm. Is this a known use
>>> case?
>>>
>>> Thanks,
>>>
>>> Pieter
>>> _______________________________________________
>>> keycloak-user mailing list
>>> keycloak-user at lists.jboss.org
>>> https://lists.jboss.org/mailman/listinfo/keycloak-user
>>>
>>
>>
>>
>> --
>> Castor Technologies Inc
>> 460 rue St-Catherine St
>> <https://maps.google.com/?q=460+rue+St-Catherine+St&entry=gmail&source=g>
>> Ouest, Suite 613
>> Montréal, Québec H3B-1A7
>> (514) 360-7208 o
>> (514) 798-2044 f
>> ntle at castortech.com
>> www.castortech.com
>>
>> CONFIDENTIALITY NOTICE: The information contained in this e-mail is
>> confidential and may be proprietary information intended only for the use
>> of the individual or entity to whom it is addressed. If the reader of this
>> message is not the intended recipient, you are hereby notified that any
>> viewing, dissemination, distribution, disclosure, copy or use of the
>> information contained in this e-mail message is strictly prohibited. If you
>> have received and/or are viewing this e-mail in error, please immediately
>> notify the sender by reply e-mail, and delete it from your system without
>> reading, forwarding, copying or saving in any manner. Thank you.
>> AVIS DE CONFIDENTIALITE: L’information contenue dans ce message est
>> confidentiel, peut être protégé par le secret professionnel et est réservé
>> à l'usage exclusif du destinataire. Toute autre personne est par les
>> présentes avisée qu'il lui est strictement interdit de diffuser, distribuer
>> ou reproduire ce message. Si vous avez reçu cette communication par erreur,
>> veuillez la détruire immédiatement et en aviser l'expéditeur. Merci.
>>
>
>


-- 
Castor Technologies Inc
460 rue St-Catherine St Ouest, Suite 613
Montréal, Québec H3B-1A7
(514) 360-7208 o
(514) 798-2044 f
ntle at castortech.com
www.castortech.com

CONFIDENTIALITY NOTICE: The information contained in this e-mail is
confidential and may be proprietary information intended only for the use
of the individual or entity to whom it is addressed. If the reader of this
message is not the intended recipient, you are hereby notified that any
viewing, dissemination, distribution, disclosure, copy or use of the
information contained in this e-mail message is strictly prohibited. If you
have received and/or are viewing this e-mail in error, please immediately
notify the sender by reply e-mail, and delete it from your system without
reading, forwarding, copying or saving in any manner. Thank you.
AVIS DE CONFIDENTIALITE: L’information contenue dans ce message est
confidentiel, peut être protégé par le secret professionnel et est réservé
à l'usage exclusif du destinataire. Toute autre personne est par les
présentes avisée qu'il lui est strictement interdit de diffuser, distribuer
ou reproduire ce message. Si vous avez reçu cette communication par erreur,
veuillez la détruire immédiatement et en aviser l'expéditeur. Merci.


More information about the keycloak-user mailing list