Chilkat HOME Android™ AutoIt C C# C++ Chilkat2-Python CkPython Classic ASP DataFlex Delphi DLL Go Java Node.js Objective-C PHP Extension Perl PowerBuilder PowerShell PureBasic Ruby SQL Server Swift Tcl Unicode C Unicode C++ VB.NET VBScript Visual Basic 6.0 Visual FoxPro Xojo Plugin
(Tcl) Docusign JSON Web Token (JWT) GrantDemonstrates how to obtain an access token using the JSON Web Token (JWT) Grant. This is good for service integrations where authorization and authentication is automated and cannot have interactive Docusign account owner interaction. Consent for the access is obtained beforehand in various ways. See Obtaining Consent. For more information, see https://developers.docusign.com/esign-rest-api/guides/authentication/oauth2-jsonwebtoken
load ./chilkat.dll # This example requires the Chilkat API to have been previously unlocked. # See Global Unlock Sample for sample code. # 1. Assume we have already requested and obtained application consent. # (See Request Docusign Application Consent # # 2. Create a JWT Token. # set privKey [new_CkPrivateKey] # Load an RSA private key from a PEM file. set success [CkPrivateKey_LoadPemFile $privKey "qa_data/pem/docusign_private_rsa_key.pem"] if {$success != 1} then { puts [CkPrivateKey_lastErrorText $privKey] delete_CkPrivateKey $privKey exit } set jwt [new_CkJwt] # Build the JOSE header set jose [new_CkJsonObject] # Use RS256. Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512. set success [CkJsonObject_AppendString $jose "alg" "RS256"] set success [CkJsonObject_AppendString $jose "typ" "JWT"] # Now build the JWT claims (also known as the payload) set claims [new_CkJsonObject] # Replace these with actual values. # The client ID is also known as the "integration key" in Docusign. set success [CkJsonObject_AppendString $claims "iss" "MY_DOCUSIGN_CLIENT_ID"] # In your DocuSign Admin/Account/UserProfile, this is the API Username, such as 14612117-2530-4982-8c49-ba8766303272 set success [CkJsonObject_AppendString $claims "sub" "DOCUSIGN_USER_ID"] set success [CkJsonObject_AppendString $claims "aud" "account-d.docusign.com"] set success [CkJsonObject_AppendString $claims "scope" "signature"] # Set the timestamp of when the JWT was created to now. set curDateTime [CkJwt_GenNumericDate $jwt 0] set success [CkJsonObject_AddIntAt $claims -1 "iat" $curDateTime] # Set the "not process before" timestamp to now. set success [CkJsonObject_AddIntAt $claims -1 "nbf" $curDateTime] # Set the timestamp defining an expiration time (end time) for the token # to be now + 1 hour (3600 seconds) set success [CkJsonObject_AddIntAt $claims -1 "exp" [expr $curDateTime + 3600]] # Produce the smallest possible JWT: CkJwt_put_AutoCompact $jwt 1 # Create the JWT token. This is where the RSA signature is created. set token [CkJwt_createJwtPk $jwt [CkJsonObject_emit $jose] [CkJsonObject_emit $claims] $privKey] puts "$token" # Do the following CURL statement to get the response JSON which contains the access token. # curl --data "grant_type=urn:ietf:params:oauth:grant-type:jwt-bearer&assertion=YOUR_JSON_WEB_TOKEN" # --request POST https://account-d.docusign.com/oauth/token set http [new_CkHttp] set req [new_CkHttpRequest] CkHttpRequest_AddParam $req "grant_type" "urn:ietf:params:oauth:grant-type:jwt-bearer" CkHttpRequest_AddParam $req "assertion" $token # resp is a CkHttpResponse set resp [CkHttp_PostUrlEncoded $http "https://account-d.docusign.com/oauth/token" $req] if {[CkHttp_get_LastMethodSuccess $http] == 0} then { puts [CkHttp_lastErrorText $http] delete_CkPrivateKey $privKey delete_CkJwt $jwt delete_CkJsonObject $jose delete_CkJsonObject $claims delete_CkHttp $http delete_CkHttpRequest $req exit } puts "response status = [CkHttpResponse_get_StatusCode $resp]" if {[CkHttpResponse_get_StatusCode $resp] != 200} then { puts [CkHttpResponse_bodyStr $resp] puts "Failed." } else { # Save the access token to a file for use in subsequent requests.. # (Or you may simply persiste the access token in memory for your applicaton to use for subsequent REST API calls..) set success [CkHttpResponse_SaveBodyText $resp 1 "qa_data/tokens/docusign.json"] puts [CkHttpResponse_bodyStr $resp] puts "Success." } delete_CkHttpResponse $resp delete_CkPrivateKey $privKey delete_CkJwt $jwt delete_CkJsonObject $jose delete_CkJsonObject $claims delete_CkHttp $http delete_CkHttpRequest $req |
© 2000-2025 Chilkat Software, Inc. All Rights Reserved.