[keycloak-dev] UMA authorization process in Gatekeeper

Pedro Igor Silva psilva at redhat.com
Thu Jun 27 09:14:45 EDT 2019


Hi Maxime,

Interesting idea. Basically, the GK will do the dirty work for clients,
right?

We could probably consider having this task as a subtask of
https://issues.jboss.org/browse/KEYCLOAK-10367 ?

Regards.
Pedro Igor

On Wed, Jun 26, 2019 at 2:05 PM <maxime.suret at early-birds.io> wrote:

> Hi All,
>
> When Keycloak Gatekeeper gets a 401 response with a permission ticket
> from upstream, it would be very useful if it could fetch the
> corresponding RPT and retry accessing the upstream resource with it.
> The RPT would then be placed in the access cookie to avoid this process
> in subsequent requests.
> That would also be a nice feature to have when using gatekeeper as a
> forwad signing proxy.
> What do you think ? I am willing to implement this myself.
>
> Thanks !
>
> Maxime
>
>
> --
>
> <
> https://www.eventbrite.com/e/atelier-by-early-birds-x-saint-gobain-distribution-batiment-france-la-personnalisation-au-service-tickets-60817610109
> >
> _______________________________________________
> keycloak-dev mailing list
> keycloak-dev at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/keycloak-dev
>


More information about the keycloak-dev mailing list