Lianja
Lianja
Okta Client Credentials FLow
See more Okta OAuth/OIDC Examples
The Client Credentials flow is recommended for use in machine-to-machine authentication. Your application will need to securely store its Client ID and Secret and pass those to Okta in exchange for an access token. At a high-level, the flow only has two steps:- Your application passes its client credentials to your Okta authorization server.
- If the credentials are accurate, Okta responds with an access token.
Note: This example uses "customScope". You'll replace it with whatever scope(s) you've defined for your app. Scopes are defined in your Authorization Server. See Okta Authorization Server / Scopes
Chilkat Lianja Downloads
llSuccess = .F.
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
loHttp = createobject("CkHttp")
// Implements the following CURL command:
// curl --request POST \
// --url https://{yourOktaDomain}/oauth2/default/v1/token \
// --header 'accept: application/json' \
// --user "client_id:client_secret" \
// --header 'cache-control: no-cache' \
// --header 'content-type: application/x-www-form-urlencoded' \
// --data 'grant_type=client_credentials&scope=customScope'
loHttp.Login = "client_id"
loHttp.Password = "client_secret"
loReq = createobject("CkHttpRequest")
loReq.HttpVerb = "POST"
loReq.Path = "/oauth2/default/v1/token"
loReq.ContentType = "application/x-www-form-urlencoded"
loReq.AddParam("grant_type","client_credentials")
loReq.AddParam("scope","customScope")
loReq.AddHeader("accept","application/json")
loResp = createobject("CkHttpResponse")
llSuccess = loHttp.HttpReq("https://{yourOktaDomain}/oauth2/default/v1/token",loReq,loResp)
if (llSuccess = .F.) then
? loHttp.LastErrorText
release loHttp
release loReq
release loResp
return
endif
loSbResponseBody = createobject("CkStringBuilder")
loResp.GetBodySb(loSbResponseBody)
loJResp = createobject("CkJsonObject")
loJResp.LoadSb(loSbResponseBody)
loJResp.EmitCompact = .F.
? "Response Body:"
? loJResp.Emit()
lnRespStatusCode = loResp.StatusCode
? "Response Status Code = " + str(lnRespStatusCode)
if (lnRespStatusCode >= 400) then
? "Response Header:"
? loResp.Header
? "Failed."
release loHttp
release loReq
release loResp
release loSbResponseBody
release loJResp
return
endif
// Sample JSON response:
// (Sample code for parsing the JSON response is shown below)
// {
// "access_token": "eyJraWQiO ... B2CnCLj7GRUW3mQ",
// "token_type": "Bearer",
// "expires_in": 3600,
// "scope": "customScope"
// }
// Sample code for parsing the JSON response...
// Use the following online tool to generate parsing code from sample JSON:
// Generate Parsing Code from JSON
lcAccess_token = loJResp.StringOf("access_token")
lcToken_type = loJResp.StringOf("token_type")
lnExpires_in = loJResp.IntOf("expires_in")
lcScope = loJResp.StringOf("scope")
release loHttp
release loReq
release loResp
release loSbResponseBody
release loJResp