Sample code for 30+ languages & platforms
Zig

Azure AD Service-to-service access token request

See more Azure OAuth2 Examples

Send an Azure AD service-to-service token request to get an access token using a shared secret.

Chilkat Zig Downloads

Zig
const std = @import("std");
const chilkat = @import("chilkat");

pub fn main(init: std.process.Init) !void {
    const alloc = init.arena.allocator();

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    const http = try chilkat.Http.init();
    defer http.deinit();

    // To see the exact HTTP request sent and the response, set the SessionLogFilename property:
    http.setSessionLogFilename("qa_output/chilkatHttpLog.txt");

    const req = try chilkat.HttpRequest.init();
    defer req.deinit();

    // Set the following request params:
    // grant_type     required     Specifies the requested grant type. In a Client Credentials Grant flow, the value must be client_credentials.
    //
    // client_id     required     Specifies the Azure AD client id of the calling web service.
    //     To find the calling application's client ID, in the Azure portal, click Azure Active Directory, click App registrations, click the application.
    //     The client_id is the Application ID
    //
    // client_secret     required     Enter a key registered for the calling web service or daemon application in Azure AD.
    //     To create a key, in the Azure portal, click Azure Active Directory, click App registrations, click the application, click Settings, click Keys, and add a Key.
    //     URL-encode this secret when providing it.
    //
    // resource     required     Enter the App ID URI of the receiving web service. To find the App ID URI, in the Azure portal, click Azure Active Directory,
    //     click App registrations, click the service application, and then click Settings and Properties.

    req.addParam("grant_type", "client_credentials");
    req.addParam("client_id", "MY_CLIENT_ID");
    req.addParam("client_secret", "MY_CLIENT_SECRET");
    req.addParam("resource", "https://service.contoso.com/");

    req.setHttpVerb("POST");
    req.setContentType("application/x-www-form-urlencoded");

    const resp = try chilkat.HttpResponse.init();
    defer resp.deinit();
    http.httpReq("https://login.microsoftonline.com/<tenant_id>/oauth2/token", req, resp) catch {
        std.debug.print("{s}\n", .{try http.getLastErrorText(alloc)});
        return;
    };

    const resp_status_code = resp.getStatusCode();
    std.debug.print("Response Status Code = {d}\n", .{resp_status_code});

    const json = try chilkat.JsonObject.init();
    defer json.deinit();
    json.setEmitCompact(false);
    json.load(try resp.getBodyStr(alloc)) catch {};
    std.debug.print("Response JSON:\n", .{});
    std.debug.print("{s}\n", .{try json.emit(alloc)});

    if (resp_status_code >= 400) {
        std.debug.print("Response Header:\n", .{});
        std.debug.print("{s}\n", .{try resp.getHeader(alloc)});
        std.debug.print("Failed.\n", .{});
        return;
    }

    // Sample response:

    // {
    //   "token_type": "Bearer",
    //   "expires_in": "3599",
    //   "ext_expires_in": "3599",
    //   "expires_on": "1570059833",
    //   "not_before": "1570055933",
    //   "resource": "https://adminchilkatsoft.onmicrosoft.com/eb1b8ced-76b7-4845-aec5-d3e91776e345",
    //   "access_token": "eyJ0eXAiO ... pmgw"
    // }

    // To get the items from the JSON....
    _ = try json.stringOf(alloc, "token_type");
    _ = try json.stringOf(alloc, "expires_in");
    _ = try json.stringOf(alloc, "ext_expires_in");
    _ = try json.stringOf(alloc, "expires_on");
    _ = try json.stringOf(alloc, "not_before");
    _ = try json.stringOf(alloc, "resource");
    _ = try json.stringOf(alloc, "access_token");
}