<div dir="ltr">That's exactly the case, we're using the direct grant API to exchange username/password for a token. <div><br></div><div>If there was an endpoint to do the same with tokens from social links that would be fantastic. That would already be flexible enough for us to develop the activities the way we want.</div></div><div class="gmail_extra"><br><div class="gmail_quote">On Thu, Nov 27, 2014 at 5:39 AM, Stian Thorgersen <span dir="ltr"><<a href="mailto:stian@redhat.com" target="_blank">stian@redhat.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Hi,<br>
<br>
It's something we've discussed in the past. It would work, but it's not very elegant as a lot of the logic would be pushed onto the native app. Our core aim with Keycloak is to make security easy for folks.<br>
<br>
That being said are you using the direct grant api to exchange a username/password for a token? We could probably allow using the direct grant api and pass a token instead of a username/password.<br>
<br>
Added AeroGear mailing list as they're working on mobile adapters for Keycloak.<br>
<div><div class="h5"><br>
----- Original Message -----<br>
> From: "Rodrigo Sasaki" <<a href="mailto:rodrigopsasaki@gmail.com">rodrigopsasaki@gmail.com</a>><br>
> To: <a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
> Sent: Wednesday, 26 November, 2014 7:32:38 PM<br>
> Subject: Re: [keycloak-user] Mobile Authentication API<br>
><br>
> Sorry, I wasn't clear enough. The problem we're having is with social logins<br>
><br>
> When we have to login a user via social links (Google or Facebook) we need to<br>
> send him to a webview, because Keycloak communicates with the social<br>
> networks via the default flows we already have implemented.<br>
><br>
> But from a mobile standpoint this could be improved, because the user can<br>
> alerady have a Google account and/or a Facebook account on his mobile<br>
> device. So that could be used instead of making the user login again on a<br>
> webview.<br>
><br>
> The idea is to send the social information we already have on the mobile<br>
> device to Keycloak and get a token in return (we can do this with<br>
> username/password today).<br>
><br>
> The ideal thing would be a SDK for this that would (for example) be<br>
> instantiated with URI and client_id, and would provide a method for login. I<br>
> know this might not be in your roadmap for any time soon, but I'd like to<br>
> know if you have thought about any of this.<br>
><br>
> This provides a very different user experience for the user, and I think this<br>
> feature would be appreciated by many.<br>
><br>
> Thank you all again!<br>
><br>
> Rodrigo Sasaki<br>
><br>
> On Wed, Nov 26, 2014 at 4:13 PM, Rodrigo Sasaki < <a href="mailto:rodrigopsasaki@gmail.com">rodrigopsasaki@gmail.com</a> ><br>
> wrote:<br>
><br>
><br>
><br>
> Hello,<br>
><br>
> I was wondering if there is a plan (or maybe something already built) for<br>
> native mobile authentication with Keycloak.<br>
><br>
> Right now we need to redirect the user to a web view so he can interface with<br>
> Keycloak to login, and from there on he can use the app normally, but is<br>
> there something native for this? We're trying to find ways to use the<br>
> smartphone's native authentication systems to login the users, and so far we<br>
> haven't been able to make it work.<br>
><br>
> Have you thought of something along those lines?<br>
><br>
> Thank you.<br>
><br>
> --<br>
> Rodrigo Sasaki<br>
><br>
><br>
><br>
> --<br>
> Rodrigo Sasaki<br>
><br>
</div></div>> _______________________________________________<br>
> keycloak-user mailing list<br>
> <a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
> <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
</blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature"><div dir="ltr"><font face="Times New Roman">Rodrigo Sasaki</font><div></div></div></div>
</div>