Hi Nuwan,

On Thu, Mar 23, 2017 at 11:12 AM, Nuwan Dias <[email protected]> wrote:

> If we use the JWT grant instead of the client_credentials grant, we can
> get a token per user without the explicit need of the user having to
> present his credentials. As long as a user has a valid access token to use
> the product APIs, we can use that as the trust and get him a token for
> testing his APIs using the JWT grant.


JWT grant will not be supported by all key managers, in that case how we
can generate JWT token? What's wrong with password grant type we can use
that no?


-- 
Roshan Wijesena.
Senior Software Engineer-WSO2 Inc.
Mobile: *+94719154640*
Email: [email protected]
*WSO2, Inc. :** wso2.com <http://wso2.com/>*
lean.enterprise.middleware.
_______________________________________________
Architecture mailing list
[email protected]
https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture

Reply via email to