Classic ASP
Classic ASP
Okta Client Credentials FLow
See more Okta OAuth/OIDC Examples
The Client Credentials flow is recommended for use in machine-to-machine authentication. Your application will need to securely store its Client ID and Secret and pass those to Okta in exchange for an access token. At a high-level, the flow only has two steps:- Your application passes its client credentials to your Okta authorization server.
- If the credentials are accurate, Okta responds with an access token.
Note: This example uses "customScope". You'll replace it with whatever scope(s) you've defined for your app. Scopes are defined in your Authorization Server. See Okta Authorization Server / Scopes
Chilkat Classic ASP Downloads
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body>
<%
success = 0
' This example assumes the Chilkat API to have been previously unlocked.
' See Global Unlock Sample for sample code.
set http = Server.CreateObject("Chilkat.Http")
' Implements the following CURL command:
' curl --request POST \
' --url https://{yourOktaDomain}/oauth2/default/v1/token \
' --header 'accept: application/json' \
' --user "client_id:client_secret" \
' --header 'cache-control: no-cache' \
' --header 'content-type: application/x-www-form-urlencoded' \
' --data 'grant_type=client_credentials&scope=customScope'
http.Login = "client_id"
http.Password = "client_secret"
set req = Server.CreateObject("Chilkat.HttpRequest")
req.HttpVerb = "POST"
req.Path = "/oauth2/default/v1/token"
req.ContentType = "application/x-www-form-urlencoded"
req.AddParam "grant_type","client_credentials"
req.AddParam "scope","customScope"
req.AddHeader "accept","application/json"
set resp = Server.CreateObject("Chilkat.HttpResponse")
success = http.HttpReq("https://{yourOktaDomain}/oauth2/default/v1/token",req,resp)
If (success = 0) Then
Response.Write "<pre>" & Server.HTMLEncode( http.LastErrorText) & "</pre>"
Response.End
End If
set sbResponseBody = Server.CreateObject("Chilkat.StringBuilder")
success = resp.GetBodySb(sbResponseBody)
set jResp = Server.CreateObject("Chilkat.JsonObject")
success = jResp.LoadSb(sbResponseBody)
jResp.EmitCompact = 0
Response.Write "<pre>" & Server.HTMLEncode( "Response Body:") & "</pre>"
Response.Write "<pre>" & Server.HTMLEncode( jResp.Emit()) & "</pre>"
respStatusCode = resp.StatusCode
Response.Write "<pre>" & Server.HTMLEncode( "Response Status Code = " & respStatusCode) & "</pre>"
If (respStatusCode >= 400) Then
Response.Write "<pre>" & Server.HTMLEncode( "Response Header:") & "</pre>"
Response.Write "<pre>" & Server.HTMLEncode( resp.Header) & "</pre>"
Response.Write "<pre>" & Server.HTMLEncode( "Failed.") & "</pre>"
Response.End
End If
' Sample JSON response:
' (Sample code for parsing the JSON response is shown below)
' {
' "access_token": "eyJraWQiO ... B2CnCLj7GRUW3mQ",
' "token_type": "Bearer",
' "expires_in": 3600,
' "scope": "customScope"
' }
' Sample code for parsing the JSON response...
' Use the following online tool to generate parsing code from sample JSON:
' Generate Parsing Code from JSON
access_token = jResp.StringOf("access_token")
token_type = jResp.StringOf("token_type")
expires_in = jResp.IntOf("expires_in")
scope = jResp.StringOf("scope")
%>
</body>
</html>