Delphi DLL
Delphi DLL
Create JWT using a Certificate's Private Key
See more JSON Web Token (JWT) Examples
Demonstrates how to create a JWT using a certificate's private key.Chilkat Delphi DLL Downloads
uses
Winapi.Windows, Winapi.Messages, System.SysUtils, System.Variants, System.Classes, Vcl.Graphics,
Vcl.Controls, Vcl.Forms, Vcl.Dialogs, Vcl.StdCtrls, Jwt, JsonObject, Cert;
...
procedure TForm1.Button1Click(Sender: TObject);
var
success: Boolean;
cert: HCkCert;
jwt: HCkJwt;
jose: HCkJsonObject;
claims: HCkJsonObject;
curDateTime: Integer;
token: PWideChar;
begin
success := False;
// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
// Demonstrates how to create a JWT using an certificate's private key.
cert := CkCert_Create();
// Load an ECC private key from a PEM file.
success := CkCert_LoadPfxFile(cert,'c:/temp/myPfx.pfx','pfxPassword');
if (success <> True) then
begin
Memo1.Lines.Add(CkCert__lastErrorText(cert));
Exit;
end;
jwt := CkJwt_Create();
// Build the JOSE header
jose := CkJsonObject_Create();
// Note: The IsEcdsa function was added in Chilkat v10.1.0
if (CkCert_IsEcdsa(cert) = True) then
begin
// Use ES256. Pass the string "ES384" or "ES512" to use ECC with SHA-384 or SHA-512.
CkJsonObject_AppendString(jose,'alg','ES256');
end
else
begin
// Probably RSA...
// Use RS256. Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512.
CkJsonObject_AppendString(jose,'alg','RS256');
end;
CkJsonObject_AppendString(jose,'typ','JWT');
// Now build the JWT claims (also known as the payload)
claims := CkJsonObject_Create();
CkJsonObject_AppendString(claims,'iss','http://example.org');
CkJsonObject_AppendString(claims,'sub','John');
CkJsonObject_AppendString(claims,'aud','http://example.com');
// Set the timestamp of when the JWT was created to now.
curDateTime := CkJwt_GenNumericDate(jwt,0);
CkJsonObject_AddIntAt(claims,-1,'iat',curDateTime);
// Set the "not process before" timestamp to now.
CkJsonObject_AddIntAt(claims,-1,'nbf',curDateTime);
// Set the timestamp defining an expiration time (end time) for the token
// to be now + 1 hour (3600 seconds)
CkJsonObject_AddIntAt(claims,-1,'exp',curDateTime + 3600);
// Produce the smallest possible JWT:
CkJwt_putAutoCompact(jwt,True);
// Create the JWT token.
token := CkJwt__createJwtCert(jwt,CkJsonObject__emit(jose),CkJsonObject__emit(claims),cert);
Memo1.Lines.Add(token);
// Example output:
// eyJhbGciOiJFUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJodHRwOi8vZXhhbXBsZS5vcmciLCJzdWIiOiJKb2huIiwiYXVkIjoiaHR0cDovL2V4YW1wbGUuY29tIiwiaWF0IjoxNDg1NzA4NzkyLCJuYmYiOjE0ODU3MDg3OTIsImV4cCI6MTQ4NTcxMjM5Mn0.wqsuyJpxJ073ox-lOiLFqG1lQocXe4hGf2XGZJRrO3qn0UusxI_bu3Gzky8gBsH4sA4u9TWZn5M-1wYMMIJk6Q
CkCert_Dispose(cert);
CkJwt_Dispose(jwt);
CkJsonObject_Dispose(jose);
CkJsonObject_Dispose(claims);
end;