AutoIt
AutoIt
PRODA Get OAuth2 Access Token using JWT
See more PRODA Examples
Demonstrates how to get an OAuth2 access token for the PRODA Australian Government Online Services using a JWT.Chilkat AutoIt Downloads
Local $bSuccess = False
; This example requires the Chilkat API to have been previously unlocked.
; See Global Unlock Sample for sample code.
; First create a JWT to be sent in the POST to https://vnd.proda.humanservices.gov.au/mga/sps/oauth/oauth20/token
$oPrivKey = ObjCreate("Chilkat.PrivateKey")
; Load an RSA private key from a PEM file.
; Chilkat provides alternative methods to load from other formats, or to load from a string or binary data.
$bSuccess = $oPrivKey.LoadEncryptedPemFile("qa_data/pem/rsa_passwd.pem","passwd")
If ($bSuccess = False) Then
ConsoleWrite($oPrivKey.LastErrorText & @CRLF)
Exit
EndIf
$oJwt = ObjCreate("Chilkat.Jwt")
; Build the JOSE header
$oJose = ObjCreate("Chilkat.JsonObject")
; Use RS256. Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512.
$bSuccess = $oJose.AppendString("alg","RS256")
$bSuccess = $oJose.AppendString("typ","JWT")
$bSuccess = $oJose.AppendString("kid","test-device")
; Now build the JWT claims (also known as the payload)
$oClaims = ObjCreate("Chilkat.JsonObject")
$bSuccess = $oClaims.AppendString("iss","9646844092")
$bSuccess = $oClaims.AppendString("sub","test-device")
$bSuccess = $oClaims.AppendString("aud","https://proda.humanservices.gov.au")
; Set the timestamp of when the JWT was created to now.
Local $iCurDateTime = $oJwt.GenNumericDate(0)
$bSuccess = $oClaims.AddIntAt(-1,"iat",$iCurDateTime)
; Set the timestamp defining an expiration time (end time) for the token
; to be now + 1 hour (3600 seconds)
$bSuccess = $oClaims.AddIntAt(-1,"exp",$iCurDateTime + 3600)
; Produce the smallest possible JWT:
$oJwt.AutoCompact = True
; Create the JWT token. This is where the RSA signature is created.
Local $sJwtToken = $oJwt.CreateJwtPk($oJose.Emit(),$oClaims.Emit(),$oPrivKey)
; ---------------------------------------------------------------------
; Build and send the POST, which should look something like this:
; POST https://vnd.proda.humanservices.gov.au/mga/sps/oauth/oauth20/token HTTP/1.1
; Content-Type: application/x-www-form-urlencoded
; Content-Length: 666
; Host: vnd.proda.humanservices.gov.au
;
; grant_type=urn%3Aietf%3Aparams%3Aoauth%3Agrant-type%3Ajwt-bearer&assertion=<jwt>&client_id=VendorClient03
$oHttp = ObjCreate("Chilkat.Http")
$oReq = ObjCreate("Chilkat.HttpRequest")
$oReq.HttpVerb = "POST"
$oReq.ContentType = "application/x-www-form-urlencoded"
; Add the request params.
$oReq.AddParam "grant_type","urn:ietf:params:oauth:grant-type:jwt-bearer"
$oReq.AddParam "assertion",$sJwtToken
$oReq.AddParam "client_id","VendorClient03"
$oResp = ObjCreate("Chilkat.HttpResponse")
$bSuccess = $oHttp.HttpReq("https://vnd.proda.humanservices.gov.au/mga/sps/oauth/oauth20/token",$oReq,$oResp)
If ($bSuccess = False) Then
ConsoleWrite($oHttp.LastErrorText & @CRLF)
Exit
EndIf
ConsoleWrite("Response status code = " & $oResp.StatusCode & @CRLF)
ConsoleWrite("Response body:" & @CRLF)
ConsoleWrite($oResp.BodyStr & @CRLF)