[keycloak-dev] Using keycloak token as secret key for Des to encrypt banking transaction

anis khai khaianisnizar2007 at gmail.com
Wed Jun 26 17:41:58 EDT 2019


 In order to share secret key for Des as symetric algorithm
To encrypt transaction data shared between mobile device and backend
microservices
I m thinking to use keycloak token (code grant flow selected)
Because it have timetolive infinispan and regrouped information container
in scope mappers
Is it right choice or there is a vulnérabilités
WE will consider refresh token in m'y flow
Any advice or proposition is weclome.

@Stian
Best regards thanks in avance.


More information about the keycloak-dev mailing list