From the 3.4.3 (or maybe even earlier) release, there is TokenExchange
service. I am not 100% sure, but maybe it supports the mentioned
scenario and it will allow you to always return "fresh" token from 3rd
party identity provider. I don't think we support any other way to do it
OOTB, but not 100% sure.
Marek
On 28/02/18 10:54, Łukasz Dywicki wrote:
Hi all,
During my tests I’ve ran into situation where keycloak identity broker returned me
expired access token.
Is there a way to let keycloak refresh tokens automatically?
Kind regards,
Łukasz Dywicki
_______________________________________________
keycloak-user mailing list
keycloak-user(a)lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-user