Chilkat HOME Android™ AutoIt C C# C++ Chilkat2-Python CkPython Classic ASP DataFlex Delphi DLL Go Java Node.js Objective-C PHP Extension Perl PowerBuilder PowerShell PureBasic Ruby SQL Server Swift Tcl Unicode C Unicode C++ VB.NET VBScript Visual Basic 6.0 Visual FoxPro Xojo Plugin
(Tcl) PRODA Get OAuth2 Access Token using JWTSee more PRODA ExamplesDemonstrates how to get an OAuth2 access token for the PRODA Australian Government Online Services using a JWT. For more information, see https://www.servicesaustralia.gov.au/organisations/business/services/proda-provider-digital-access
load ./chilkat.dll # This example requires the Chilkat API to have been previously unlocked. # See Global Unlock Sample for sample code. # First create a JWT to be sent in the POST to https://vnd.proda.humanservices.gov.au/mga/sps/oauth/oauth20/token set privKey [new_CkPrivateKey] # Load an RSA private key from a PEM file. # Chilkat provides alternative methods to load from other formats, or to load from a string or binary data. set success [CkPrivateKey_LoadEncryptedPemFile $privKey "qa_data/pem/rsa_passwd.pem" "passwd"] if {$success != 1} then { puts [CkPrivateKey_lastErrorText $privKey] delete_CkPrivateKey $privKey exit } set jwt [new_CkJwt] # Build the JOSE header set jose [new_CkJsonObject] # Use RS256. Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512. set success [CkJsonObject_AppendString $jose "alg" "RS256"] set success [CkJsonObject_AppendString $jose "typ" "JWT"] set success [CkJsonObject_AppendString $jose "kid" "test-device"] # Now build the JWT claims (also known as the payload) set claims [new_CkJsonObject] set success [CkJsonObject_AppendString $claims "iss" "9646844092"] set success [CkJsonObject_AppendString $claims "sub" "test-device"] set success [CkJsonObject_AppendString $claims "aud" "https://proda.humanservices.gov.au"] # Set the timestamp of when the JWT was created to now. set curDateTime [CkJwt_GenNumericDate $jwt 0] set success [CkJsonObject_AddIntAt $claims -1 "iat" $curDateTime] # Set the timestamp defining an expiration time (end time) for the token # to be now + 1 hour (3600 seconds) set success [CkJsonObject_AddIntAt $claims -1 "exp" [expr $curDateTime + 3600]] # Produce the smallest possible JWT: CkJwt_put_AutoCompact $jwt 1 # Create the JWT token. This is where the RSA signature is created. set jwtToken [CkJwt_createJwtPk $jwt [CkJsonObject_emit $jose] [CkJsonObject_emit $claims] $privKey] # --------------------------------------------------------------------- # Build and send the POST, which should look something like this: # POST https://vnd.proda.humanservices.gov.au/mga/sps/oauth/oauth20/token HTTP/1.1 # Content-Type: application/x-www-form-urlencoded # Content-Length: 666 # Host: vnd.proda.humanservices.gov.au # # grant_type=urn%3Aietf%3Aparams%3Aoauth%3Agrant-type%3Ajwt-bearer&assertion=<jwt>&client_id=VendorClient03 set http [new_CkHttp] set req [new_CkHttpRequest] # Add the request params. CkHttpRequest_AddParam $req "grant_type" "urn:ietf:params:oauth:grant-type:jwt-bearer" CkHttpRequest_AddParam $req "assertion" $jwtToken CkHttpRequest_AddParam $req "client_id" "VendorClient03" # Send the POST # Chilkat automatically adds the Content-Type (which is application/x-www-form-urlencoded for the PostUrlEncoded method) # Chilkat also automatically adds the Host and Content-Length headers. # resp is a CkHttpResponse set resp [CkHttp_PostUrlEncoded $http "https://vnd.proda.humanservices.gov.au/mga/sps/oauth/oauth20/token" $req] if {[CkHttp_get_LastMethodSuccess $http] != 1} then { puts [CkHttp_lastErrorText $http] delete_CkPrivateKey $privKey delete_CkJwt $jwt delete_CkJsonObject $jose delete_CkJsonObject $claims delete_CkHttp $http delete_CkHttpRequest $req exit } puts "Response status code = [CkHttpResponse_get_StatusCode $resp]" puts "Response body:" puts [CkHttpResponse_bodyStr $resp] delete_CkHttpResponse $resp delete_CkPrivateKey $privKey delete_CkJwt $jwt delete_CkJsonObject $jose delete_CkJsonObject $claims delete_CkHttp $http delete_CkHttpRequest $req |
© 2000-2025 Chilkat Software, Inc. All Rights Reserved.