Sample code for 30+ languages & platforms
Xojo Plugin

bitzlato.com whoami

See more JSON Web Token (JWT) Examples

Demonstrates sending a request to the bitzlato.com whoami endpoint using an ES256 JWT token for authentication.

Chilkat Xojo Plugin Downloads

Xojo Plugin
Dim success As Boolean
success = False

// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

//  Use the following ECC key loaded from JWK format.
Dim jwk As New Chilkat.JsonObject
success = jwk.UpdateString("kty","EC")
success = jwk.UpdateString("crv","P-256")
success = jwk.UpdateString("x","...")
success = jwk.UpdateString("y","...")
success = jwk.UpdateString("d","...")

Dim eccKey As New Chilkat.PrivateKey
success = eccKey.LoadJwk(jwk.Emit())
If (success = False) Then
    System.DebugLog(eccKey.LastErrorText)
    Return
End If

Dim jwt As New Chilkat.Jwt

// Build the JOSE header
Dim jose As New Chilkat.JsonObject
success = jose.AppendString("format","compact")
success = jose.AppendString("alg","ES256")

// Now build the JWT claims (also known as the payload)

// Our JWT claims will contain members as shown here:

// 	{
// 	  "email":"your_email@example.com",
// 	  "aud":"usr",
// 	  "iat":"1588286154",
// 	  "jti":"555D9123"
// 	}

Dim claims As New Chilkat.JsonObject
success = claims.AppendString("jti","555D9123")
success = claims.AppendString("email","your_email@example.com")

// Set the timestamp of when the JWT was created to now minus 60 seconds
Dim curDateTime As Int32
curDateTime = jwt.GenNumericDate(-60)
success = claims.AddIntAt(-1,"iat",curDateTime)

// Set the "not process before" timestamp to now minus 60 seconds
success = claims.AddIntAt(-1,"nbf",curDateTime)

// Set the timestamp defining an expiration time (end time) for the token
// to be now + 1 hour (3600 seconds)
success = claims.AddIntAt(-1,"exp",curDateTime + 3600)

success = claims.AppendString("aud","usr")

// Produce the smallest possible JWT:
jwt.AutoCompact = True

// Create the JWT token.  This is where the RSA signature is created.
Dim jwt_token As String
jwt_token = jwt.CreateJwtPk(jose.Emit(),claims.Emit(),eccKey)

System.DebugLog(jwt_token)

// Send the HTTPS GET with the jwt_token used for Authorization.
Dim http As New Chilkat.Http
http.AuthToken = jwt_token
Dim responseStr As String
responseStr = http.QuickGetStr("https://bitzlato.com/api/auth/whoami")
If (http.LastMethodSuccess = False) Then
    System.DebugLog(http.LastErrorText)
    Return
End If

System.DebugLog("status code = " + Str(http.LastStatus))
System.DebugLog(responseStr)