Sample code for 30+ languages & platforms
React Native

Create JWT using a Certificate's Private Key

See more JSON Web Token (JWT) Examples

Demonstrates how to create a JWT using a certificate's private key.

Chilkat React Native Downloads

React Native
import { Cert, JsonObject, Jwt } from '@chilkat/react-native'

function chilkatExample() {
  // This example requires the Chilkat API to have been previously unlocked.
  // See Global Unlock Sample for sample code.

  // Demonstrates how to create a JWT using an certificate's private key.

  const cert = new Cert();

  // Load an ECC private key from a PEM file.
  try {
    cert.loadPfxFile('c:/temp/myPfx.pfx', 'pfxPassword');
  } catch {
    console.log(cert.lastErrorText);
    return;
  }

  const jwt = new Jwt();

  // Build the JOSE header
  const jose = new JsonObject();
  // Note: The IsEcdsa function was added in Chilkat v10.1.0
  if (cert.isEcdsa()) {
    // Use ES256.  Pass the string "ES384" or "ES512" to use ECC with SHA-384 or SHA-512.
    jose.appendString('alg', 'ES256');
  } else {
    // Probably RSA...
    // Use RS256.  Pass the string "RS384" or "RS512" to use RSA with SHA-384 or SHA-512.
    jose.appendString('alg', 'RS256');
  }

  jose.appendString('typ', 'JWT');

  // Now build the JWT claims (also known as the payload)
  const claims = new JsonObject();
  claims.appendString('iss', 'http://example.org');
  claims.appendString('sub', 'John');
  claims.appendString('aud', 'http://example.com');

  // Set the timestamp of when the JWT was created to now.
  const curDateTime = jwt.genNumericDate(0);
  claims.addIntAt(-1, 'iat', curDateTime);

  // Set the "not process before" timestamp to now.
  claims.addIntAt(-1, 'nbf', curDateTime);

  // Set the timestamp defining an expiration time (end time) for the token
  // to be now + 1 hour (3600 seconds)
  claims.addIntAt(-1, 'exp', curDateTime + 3600);

  // Produce the smallest possible JWT:
  jwt.autoCompact = true;

  // Create the JWT token.
  const token = jwt.createJwtCert(jose.emit(), claims.emit(), cert);

  console.log(token);

  // Example output:
  // eyJhbGciOiJFUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJodHRwOi8vZXhhbXBsZS5vcmciLCJzdWIiOiJKb2huIiwiYXVkIjoiaHR0cDovL2V4YW1wbGUuY29tIiwiaWF0IjoxNDg1NzA4NzkyLCJuYmYiOjE0ODU3MDg3OTIsImV4cCI6MTQ4NTcxMjM5Mn0.wqsuyJpxJ073ox-lOiLFqG1lQocXe4hGf2XGZJRrO3qn0UusxI_bu3Gzky8gBsH4sA4u9TWZn5M-1wYMMIJk6Q
}