Showing a subset of roles via scopes

16 views
Skip to first unread message

Rajith Attapattu

unread,
Apr 5, 2021, 4:39:53 PM4/5/21
to keyclo...@googlegroups.com
If we are to restrict the roles that are put into the JWT token based on the application. For example 
If a user has roles [A,B,C,D]
For app1 only allow [A,B] while for app2 allow [A,C,D].

If we create a client per application, then we could restrict the scope for that client by selecting the roles that are only relevant to that application,

Is this the best approach? Any other alternatives?
Are there any complications with this approach?

- Ra

fabrice sgt

unread,
Jun 24, 2021, 9:20:04 AM6/24/21
to Keycloak User
Hello,

I am facing the same question. Did you find any solution to this?

Fabrice
Reply all
Reply to author
Forward
0 new messages