Layer7 API Management

  • 1.  access token oAUth

    Posted Sep 16, 2018 01:41 PM

    Hi There,

    I have set access_token to expire in the custom field of oAUth Manager to a minute but i doesn't expires in a minute it take roughly around 4 to 5 minutes,not sure why,is this a bug? Am using ssg 9.1 cr01 version Pls advice.

    Custom:

    {"otk":{"client_type":"public","grant_type":"password"},{"lifetimes":"trustedProfile"{"oauth2_access_token_lifetime_sec":60,"oauth2_refresh_token_lifetime_sec":3000}}



  • 2.  Re: access token oAUth

    Posted Sep 16, 2018 03:30 PM

    Just to remind you I have set cache validation 300 sec in require oAuth 2.0 token encapsulated assertion.



  • 3.  Re: access token oAUth

    Broadcom Employee
    Posted Sep 17, 2018 09:05 AM

    Hi Sharath,

     

    It sounds like you may have answered your own question. The below may clarify it a bit.

     

    CA API Management: Revoked OAuth Token is still va - CA Knowledge 

     

    Regards,

    Joe