<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00006z0uaPCAQOkta Classic EngineAnswered2024-04-16T12:12:07.000Z2021-05-24T07:02:39.000Z2021-05-28T08:51:34.000Z

jkm0t (jkm0t) asked a question.

Implement PKCE for native mobile app Backend Restful API in asp.net core c#

I am rebuilding a restful api in asp.net core c* for our new native mobile apps (these are building built by an external company ).

 

They wanted to use the implicit flow like our previous api+app however I have seen a lot to suggest this is not best practice and that in this instance we should be using the PKCE Authorisation flow.

 

I am new to api authentication/authorisation and need a solid guide on what I need to implement in the API and then what the app developer needs to add their end. Because the app devs do not seem to use PKCE I just need to be able to make sure I am instructing them correctly.

 

I have gone through lots of guides but still not quite 100%.

 

Please ask if you need more information from me.

 

Many Thanks

 

 

 


  • User15840128127994021225 (Vendor Management)

    Thank you for posting the question!

     

    Please open a case with our Support Team to further discuss the scenario and the end-goal you are trying to achieve.

     

    Thanks!

    Andreea

    Expand Post
This question is closed.
Loading
Implement PKCE for native mobile app Backend Restful API in asp.net core c#