Sample code for 30+ languages & platforms
Xojo Plugin

Create JWT using a Certificate's Private Key

See more JSON Web Token (JWT) Examples

Demonstrates how to create a JWT using a certificate's private key.

Chilkat Xojo Plugin Downloads

Xojo Plugin
Dim success As Boolean
success = False

// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

// Demonstrates how to create a JWT using an certificate's private key.

Dim cert As New Chilkat.Cert

// Load an ECC private key from a PEM file.
success = cert.LoadPfxFile("c:/temp/myPfx.pfx","pfxPassword")
If (success <> True) Then
    System.DebugLog(cert.LastErrorText)
    Return
End If

Dim jwt As New Chilkat.Jwt

// Build the JOSE header
Dim jose As New Chilkat.JsonObject
// Note: The IsEcdsa function was added in Chilkat v10.1.0
If (cert.IsEcdsa() = True) Then
    // Use ES256.  Pass the string "ES384" or "ES512" to use ECC with SHA-384 or SHA-512.
    success = jose.AppendString("alg","ES256")
Else
    // Probably RSA...
    // Use RS256.  Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512.
    success = jose.AppendString("alg","RS256")
End If

success = jose.AppendString("typ","JWT")

// Now build the JWT claims (also known as the payload)
Dim claims As New Chilkat.JsonObject
success = claims.AppendString("iss","http://example.org")
success = claims.AppendString("sub","John")
success = claims.AppendString("aud","http://example.com")

// Set the timestamp of when the JWT was created to now.
Dim curDateTime As Int32
curDateTime = jwt.GenNumericDate(0)
success = claims.AddIntAt(-1,"iat",curDateTime)

// Set the "not process before" timestamp to now.
success = claims.AddIntAt(-1,"nbf",curDateTime)

// Set the timestamp defining an expiration time (end time) for the token
// to be now + 1 hour (3600 seconds)
success = claims.AddIntAt(-1,"exp",curDateTime + 3600)

// Produce the smallest possible JWT:
jwt.AutoCompact = True

// Create the JWT token.
Dim token As String
token = jwt.CreateJwtCert(jose.Emit(),claims.Emit(),cert)

System.DebugLog(token)

// Example output:
// eyJhbGciOiJFUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJodHRwOi8vZXhhbXBsZS5vcmciLCJzdWIiOiJKb2huIiwiYXVkIjoiaHR0cDovL2V4YW1wbGUuY29tIiwiaWF0IjoxNDg1NzA4NzkyLCJuYmYiOjE0ODU3MDg3OTIsImV4cCI6MTQ4NTcxMjM5Mn0.wqsuyJpxJ073ox-lOiLFqG1lQocXe4hGf2XGZJRrO3qn0UusxI_bu3Gzky8gBsH4sA4u9TWZn5M-1wYMMIJk6Q