Swift
Swift
Create JWT using a Certificate's Private Key
See more JSON Web Token (JWT) Examples
Demonstrates how to create a JWT using a certificate's private key.Chilkat Swift Downloads
func chilkatTest() {
var success: Bool = false
// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
// Demonstrates how to create a JWT using an certificate's private key.
let cert = CkoCert()!
// Load an ECC private key from a PEM file.
success = cert.loadPfxFile(path: "c:/temp/myPfx.pfx", password: "pfxPassword")
if success != true {
print("\(cert.lastErrorText!)")
return
}
let jwt = CkoJwt()!
// Build the JOSE header
let jose = CkoJsonObject()!
// Note: The IsEcdsa function was added in Chilkat v10.1.0
if cert.isEcdsa() == true {
// Use ES256. Pass the string "ES384" or "ES512" to use ECC with SHA-384 or SHA-512.
jose.appendString(name: "alg", value: "ES256")
}
else {
// Probably RSA...
// Use RS256. Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512.
jose.appendString(name: "alg", value: "RS256")
}
jose.appendString(name: "typ", value: "JWT")
// Now build the JWT claims (also known as the payload)
let claims = CkoJsonObject()!
claims.appendString(name: "iss", value: "http://example.org")
claims.appendString(name: "sub", value: "John")
claims.appendString(name: "aud", value: "http://example.com")
// Set the timestamp of when the JWT was created to now.
var curDateTime: Int = jwt.genNumericDate(numSecOffset: 0).intValue
claims.addInt(at: -1, name: "iat", value: curDateTime)
// Set the "not process before" timestamp to now.
claims.addInt(at: -1, name: "nbf", value: curDateTime)
// Set the timestamp defining an expiration time (end time) for the token
// to be now + 1 hour (3600 seconds)
claims.addInt(at: -1, name: "exp", value: curDateTime + 3600)
// Produce the smallest possible JWT:
jwt.autoCompact = true
// Create the JWT token.
var token: String? = jwt.createCert(header: jose.emit(), payload: claims.emit(), cert: cert)
print("\(token!)")
// Example output:
// eyJhbGciOiJFUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJodHRwOi8vZXhhbXBsZS5vcmciLCJzdWIiOiJKb2huIiwiYXVkIjoiaHR0cDovL2V4YW1wbGUuY29tIiwiaWF0IjoxNDg1NzA4NzkyLCJuYmYiOjE0ODU3MDg3OTIsImV4cCI6MTQ4NTcxMjM5Mn0.wqsuyJpxJ073ox-lOiLFqG1lQocXe4hGf2XGZJRrO3qn0UusxI_bu3Gzky8gBsH4sA4u9TWZn5M-1wYMMIJk6Q
}