Sample code for 30+ languages & platforms
JavaScript

Create a JWS

See more JSON Web Signatures (JWS) Examples

Demonstrates Jws.CreateJws, which creates and returns a JWS from the current payload, headers, and signing key.

Background. JWS (JSON Web Signature) integrity-protects a payload with a signature or MAC. The header alg names the algorithm; this example uses HMAC-SHA256 (HS256) with a symmetric MAC key.
Note
This example is intended for running within a Chilkat.Js embedded JavaScript engine. All Chilkat JavaScript examples require Chilkat v11.4.0 or greater.
JavaScript
var success = false;

var jws = new CkJws();

//  Set the protected header for signer 0, specifying the signature algorithm (alg).
var header = new CkJsonObject();
header.UpdateString("alg","HS256");
success = jws.SetProtectedHeader(0,header);
if (success == false) {
    console.log(jws.LastErrorText);
    return;
}

//  Set the payload to be signed.
var bIncludeBom = false;
success = jws.SetPayload("This is the content to sign.","utf-8",bIncludeBom);
if (success == false) {
    console.log(jws.LastErrorText);
    return;
}

//  Provide the HMAC key (base64) for signer 0.  In production, obtain the key from a secure source
//  rather than hard-coding it.
var base64Key = "YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=";
success = jws.SetMacKey(0,base64Key,"base64");
if (success == false) {
    console.log(jws.LastErrorText);
    return;
}

//  Create the JWS from the current payload, headers, and signing key.  The returned string is the
//  JWS (compact serialization by default).
var jwsCompact = jws.CreateJws();
if (jws.LastMethodSuccess == false) {
    console.log(jws.LastErrorText);
    return;
}

console.log(jwsCompact);