C
C
Okta: Use the Resource Owner Password Flow
See more Okta OAuth/OIDC Examples
Demonstrates how to get an access token using the Resource Owner Password Flow.Chilkat C Downloads
#include <C_CkHttp.h>
#include <C_CkHttpRequest.h>
#include <C_CkHttpResponse.h>
#include <C_CkStringBuilder.h>
#include <C_CkJsonObject.h>
void ChilkatSample(void)
{
BOOL success;
HCkHttp http;
HCkHttpRequest req;
HCkHttpResponse resp;
HCkStringBuilder sbResponseBody;
HCkJsonObject jResp;
int respStatusCode;
const char *access_token;
const char *token_type;
int expires_in;
const char *scope;
const char *id_token;
success = FALSE;
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
http = CkHttp_Create();
// Implements the following CURL command:
// curl --request POST \
// --url https://{yourOktaDomain}/oauth2/default/v1/token \
// --header 'accept: application/json' \
// --user "client_id:client_secret" \
// --header 'content-type: application/x-www-form-urlencoded' \
// --data 'grant_type=password&username=myUserEmail&password=myPassword&scope=openid'
CkHttp_putLogin(http,"client_id");
CkHttp_putPassword(http,"client_secret");
req = CkHttpRequest_Create();
CkHttpRequest_putHttpVerb(req,"POST");
CkHttpRequest_putPath(req,"/oauth2/default/v1/token");
CkHttpRequest_putContentType(req,"application/x-www-form-urlencoded");
CkHttpRequest_AddParam(req,"grant_type","password");
CkHttpRequest_AddParam(req,"username","myUserEmail");
CkHttpRequest_AddParam(req,"password","myPassword");
CkHttpRequest_AddParam(req,"scope","openid");
CkHttpRequest_AddHeader(req,"accept","application/json");
resp = CkHttpResponse_Create();
success = CkHttp_HttpReq(http,"https://{yourOktaDomain}/oauth2/default/v1/token",req,resp);
if (success == FALSE) {
printf("%s\n",CkHttp_lastErrorText(http));
CkHttp_Dispose(http);
CkHttpRequest_Dispose(req);
CkHttpResponse_Dispose(resp);
return;
}
sbResponseBody = CkStringBuilder_Create();
CkHttpResponse_GetBodySb(resp,sbResponseBody);
jResp = CkJsonObject_Create();
CkJsonObject_LoadSb(jResp,sbResponseBody);
CkJsonObject_putEmitCompact(jResp,FALSE);
printf("Response Body:\n");
printf("%s\n",CkJsonObject_emit(jResp));
respStatusCode = CkHttpResponse_getStatusCode(resp);
printf("Response Status Code = %d\n",respStatusCode);
if (respStatusCode >= 400) {
printf("Response Header:\n");
printf("%s\n",CkHttpResponse_header(resp));
printf("Failed.\n");
CkHttp_Dispose(http);
CkHttpRequest_Dispose(req);
CkHttpResponse_Dispose(resp);
CkStringBuilder_Dispose(sbResponseBody);
CkJsonObject_Dispose(jResp);
return;
}
// Sample JSON response:
// (Sample code for parsing the JSON response is shown below)
// {
// "access_token": "eyJraWQiOi ... jmiHD7wY9_gQ",
// "token_type": "Bearer",
// "expires_in": 3600,
// "scope": "openid",
// "id_token": "eyJraWQiOiJ ... W7KkWiPJnUSMoGw"
// }
// Sample code for parsing the JSON response...
// Use the following online tool to generate parsing code from sample JSON:
// Generate Parsing Code from JSON
// Chilkat functions returning "const char *" return a pointer to temporary internal memory owned and managed by Chilkat.
// See this example explaining how this memory should be used: const char * functions.
access_token = CkJsonObject_stringOf(jResp,"access_token");
token_type = CkJsonObject_stringOf(jResp,"token_type");
expires_in = CkJsonObject_IntOf(jResp,"expires_in");
scope = CkJsonObject_stringOf(jResp,"scope");
id_token = CkJsonObject_stringOf(jResp,"id_token");
CkHttp_Dispose(http);
CkHttpRequest_Dispose(req);
CkHttpResponse_Dispose(resp);
CkStringBuilder_Dispose(sbResponseBody);
CkJsonObject_Dispose(jResp);
}