Sample code for 30+ languages & platforms
Objective-C

bitzlato.com whoami

See more JSON Web Token (JWT) Examples

Demonstrates sending a request to the bitzlato.com whoami endpoint using an ES256 JWT token for authentication.

Chilkat Objective-C Downloads

Objective-C
#import <CkoJsonObject.h>
#import <CkoPrivateKey.h>
#import <CkoJwt.h>
#import <NSString.h>
#import <CkoHttp.h>

BOOL success = NO;

// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

//  Use the following ECC key loaded from JWK format.
CkoJsonObject *jwk = [[CkoJsonObject alloc] init];
success = [jwk UpdateString: @"kty" value: @"EC"];
success = [jwk UpdateString: @"crv" value: @"P-256"];
success = [jwk UpdateString: @"x" value: @"..."];
success = [jwk UpdateString: @"y" value: @"..."];
success = [jwk UpdateString: @"d" value: @"..."];

CkoPrivateKey *eccKey = [[CkoPrivateKey alloc] init];
success = [eccKey LoadJwk: [jwk Emit]];
if (success == NO) {
    NSLog(@"%@",eccKey.LastErrorText);
    return;
}

CkoJwt *jwt = [[CkoJwt alloc] init];

// Build the JOSE header
CkoJsonObject *jose = [[CkoJsonObject alloc] init];
success = [jose AppendString: @"format" value: @"compact"];
success = [jose AppendString: @"alg" value: @"ES256"];

// Now build the JWT claims (also known as the payload)

// Our JWT claims will contain members as shown here:

// 	{
// 	  "email":"your_email@example.com",
// 	  "aud":"usr",
// 	  "iat":"1588286154",
// 	  "jti":"555D9123"
// 	}

CkoJsonObject *claims = [[CkoJsonObject alloc] init];
[claims AppendString: @"jti" value: @"555D9123"];
[claims AppendString: @"email" value: @"your_email@example.com"];

// Set the timestamp of when the JWT was created to now minus 60 seconds
int curDateTime = [[jwt GenNumericDate: [NSNumber numberWithInt: -60]] intValue];
success = [claims AddIntAt: [NSNumber numberWithInt: -1] name: @"iat" value: [NSNumber numberWithInt: curDateTime]];

// Set the "not process before" timestamp to now minus 60 seconds
success = [claims AddIntAt: [NSNumber numberWithInt: -1] name: @"nbf" value: [NSNumber numberWithInt: curDateTime]];

// Set the timestamp defining an expiration time (end time) for the token
// to be now + 1 hour (3600 seconds)
success = [claims AddIntAt: [NSNumber numberWithInt: -1] name: @"exp" value: [NSNumber numberWithInt: (curDateTime + 3600)]];

[claims AppendString: @"aud" value: @"usr"];

// Produce the smallest possible JWT:
jwt.AutoCompact = YES;

// Create the JWT token.  This is where the RSA signature is created.
NSString *jwt_token = [jwt CreateJwtPk: [jose Emit] payload: [claims Emit] key: eccKey];

NSLog(@"%@",jwt_token);

// Send the HTTPS GET with the jwt_token used for Authorization.
CkoHttp *http = [[CkoHttp alloc] init];
http.AuthToken = jwt_token;
NSString *responseStr = [http QuickGetStr: @"https://bitzlato.com/api/auth/whoami"];
if (http.LastMethodSuccess == NO) {
    NSLog(@"%@",http.LastErrorText);
    return;
}

NSLog(@"%@%d",@"status code = ",[http.LastStatus intValue]);
NSLog(@"%@",responseStr);