Delphi ActiveX
Delphi ActiveX
bitzlato.com whoami
See more JSON Web Token (JWT) Examples
Demonstrates sending a request to the bitzlato.com whoami endpoint using an ES256 JWT token for authentication.Chilkat Delphi ActiveX Downloads
uses
Winapi.Windows, Winapi.Messages, System.SysUtils, System.Variants, System.Classes, Vcl.Graphics,
Vcl.Controls, Vcl.Forms, Vcl.Dialogs, Vcl.StdCtrls, Chilkat_TLB;
...
procedure TForm1.Button1Click(Sender: TObject);
var
success: Integer;
jwk: TChilkatJsonObject;
eccKey: TPrivateKey;
jwt: TChilkatJwt;
jose: TChilkatJsonObject;
claims: TChilkatJsonObject;
curDateTime: Integer;
jwt_token: WideString;
http: TChilkatHttp;
responseStr: WideString;
begin
success := 0;
// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
// Use the following ECC key loaded from JWK format.
jwk := TChilkatJsonObject.Create(Self);
success := jwk.UpdateString('kty','EC');
success := jwk.UpdateString('crv','P-256');
success := jwk.UpdateString('x','...');
success := jwk.UpdateString('y','...');
success := jwk.UpdateString('d','...');
eccKey := TPrivateKey.Create(Self);
success := eccKey.LoadJwk(jwk.Emit());
if (success = 0) then
begin
Memo1.Lines.Add(eccKey.LastErrorText);
Exit;
end;
jwt := TChilkatJwt.Create(Self);
// Build the JOSE header
jose := TChilkatJsonObject.Create(Self);
success := jose.AppendString('format','compact');
success := jose.AppendString('alg','ES256');
// Now build the JWT claims (also known as the payload)
// Our JWT claims will contain members as shown here:
// {
// "email":"your_email@example.com",
// "aud":"usr",
// "iat":"1588286154",
// "jti":"555D9123"
// }
claims := TChilkatJsonObject.Create(Self);
claims.AppendString('jti','555D9123');
claims.AppendString('email','your_email@example.com');
// Set the timestamp of when the JWT was created to now minus 60 seconds
curDateTime := jwt.GenNumericDate(-60);
success := claims.AddIntAt(-1,'iat',curDateTime);
// Set the "not process before" timestamp to now minus 60 seconds
success := claims.AddIntAt(-1,'nbf',curDateTime);
// Set the timestamp defining an expiration time (end time) for the token
// to be now + 1 hour (3600 seconds)
success := claims.AddIntAt(-1,'exp',curDateTime + 3600);
claims.AppendString('aud','usr');
// Produce the smallest possible JWT:
jwt.AutoCompact := 1;
// Create the JWT token. This is where the RSA signature is created.
jwt_token := jwt.CreateJwtPk(jose.Emit(),claims.Emit(),eccKey.ControlInterface);
Memo1.Lines.Add(jwt_token);
// Send the HTTPS GET with the jwt_token used for Authorization.
http := TChilkatHttp.Create(Self);
http.AuthToken := jwt_token;
responseStr := http.QuickGetStr('https://bitzlato.com/api/auth/whoami');
if (http.LastMethodSuccess = 0) then
begin
Memo1.Lines.Add(http.LastErrorText);
Exit;
end;
Memo1.Lines.Add('status code = ' + IntToStr(http.LastStatus));
Memo1.Lines.Add(responseStr);
end;