Sample code for 30+ languages & platforms
Xbase++

Azure AD Service-to-service access token request

See more Azure OAuth2 Examples

Send an Azure AD service-to-service token request to get an access token using a shared secret.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oHttp
LOCAL oReq
LOCAL oResp
LOCAL nRespStatusCode
LOCAL oJson
LOCAL cToken_type
LOCAL cExpires_in
LOCAL cExt_expires_in
LOCAL cExpires_on
LOCAL cNot_before
LOCAL cResource
LOCAL cAccess_token

nSuccess := 0

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oHttp := CreateObject("Chilkat.Http")

//  To see the exact HTTP request sent and the response, set the SessionLogFilename property:
oHttp:SessionLogFilename := "qa_output/chilkatHttpLog.txt"

oReq := CreateObject("Chilkat.HttpRequest")

//  Set the following request params:
//  grant_type 	required 	Specifies the requested grant type. In a Client Credentials Grant flow, the value must be client_credentials.
//  
//  client_id 	required 	Specifies the Azure AD client id of the calling web service. 
//      To find the calling application's client ID, in the Azure portal, click Azure Active Directory, click App registrations, click the application. 
//      The client_id is the Application ID
//  
//  client_secret 	required 	Enter a key registered for the calling web service or daemon application in Azure AD. 
//      To create a key, in the Azure portal, click Azure Active Directory, click App registrations, click the application, click Settings, click Keys, and add a Key.
//      URL-encode this secret when providing it.
//  
//  resource 	required 	Enter the App ID URI of the receiving web service. To find the App ID URI, in the Azure portal, click Azure Active Directory, 
//      click App registrations, click the service application, and then click Settings and Properties.

oReq:AddParam("grant_type", "client_credentials")
oReq:AddParam("client_id", "MY_CLIENT_ID")
oReq:AddParam("client_secret", "MY_CLIENT_SECRET")
oReq:AddParam("resource", "https://service.contoso.com/")

oReq:HttpVerb := "POST"
oReq:ContentType := "application/x-www-form-urlencoded"

oResp := CreateObject("Chilkat.HttpResponse")
nSuccess := oHttp:HttpReq("https://login.microsoftonline.com/<tenant_id>/oauth2/token", oReq, oResp)
IF (nSuccess == 0)
    ? oHttp:LastErrorText
    oHttp:destroy()
    oReq:destroy()
    oResp:destroy()
    RETURN
ENDIF

nRespStatusCode := oResp:StatusCode
? "Response Status Code = " + Str(nRespStatusCode)

oJson := CreateObject("Chilkat.JsonObject")
oJson:EmitCompact := 0
oJson:Load(oResp:BodyStr)
? "Response JSON:"
? oJson:Emit()

IF (nRespStatusCode >= 400)
    ? "Response Header:"
    ? oResp:Header
    ? "Failed."
    oHttp:destroy()
    oReq:destroy()
    oResp:destroy()
    oJson:destroy()
    RETURN
ENDIF

//  Sample response:

//  {
//    "token_type": "Bearer",
//    "expires_in": "3599",
//    "ext_expires_in": "3599",
//    "expires_on": "1570059833",
//    "not_before": "1570055933",
//    "resource": "https://adminchilkatsoft.onmicrosoft.com/eb1b8ced-76b7-4845-aec5-d3e91776e345",
//    "access_token": "eyJ0eXAiO ... pmgw"
//  }

//  To get the items from the JSON....
cToken_type := oJson:StringOf("token_type")
cExpires_in := oJson:StringOf("expires_in")
cExt_expires_in := oJson:StringOf("ext_expires_in")
cExpires_on := oJson:StringOf("expires_on")
cNot_before := oJson:StringOf("not_before")
cResource := oJson:StringOf("resource")
cAccess_token := oJson:StringOf("access_token")

oHttp:destroy()
oReq:destroy()
oResp:destroy()
oJson:destroy()