Sample code for 30+ languages & platforms
Xbase++

Create JWT using a Brainpool EC Key

See more JSON Web Token (JWT) Examples

Demonstrates how to create a JWT using an EC private key. This is for JOSE headers having an "alg" member with any of the following values:
  • BP160R1
  • BP192R1
  • BP224R1
  • BP256R1
  • BP320R1
  • BP384R1
  • BP512R1

This example also demonstrates how to include time constraints:

  • nbf: Not Before Time
  • exp: Expiration Time
  • iat: Issue At Time

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oPrivKey
LOCAL oJwt
LOCAL oJose
LOCAL oClaims
LOCAL nCurDateTime
LOCAL cToken

nSuccess := 0

//  Demonstrates how to create a JWT using a brainpool EC private key.

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oPrivKey := CreateObject("Chilkat.PrivateKey")

//  Load a brainpool EC key.
nSuccess := oPrivKey:LoadPemFile("c:/qa_data/pem/ec_brainpool_privKey.pem")
IF (nSuccess != 1)
    ? oPrivKey:LastErrorText
    oPrivKey:destroy()
    RETURN
ENDIF

//  You can examine the curve name of the key you just loaded by getting the private in XML format:
//  <ECCKeyValue curve="CURVE_NAME">...</ECCKeyValue>
? oPrivKey:GetXml()

oJwt := CreateObject("Chilkat.Jwt")

//  Build the JOSE header
oJose := CreateObject("Chilkat.JsonObject")
//  Use the brainpool curve name matching the private key you just loaded.
//  Use "BP256R1", or "BP384R1", etc.   
nSuccess := oJose:AppendString("alg", "BP256R1")
nSuccess := oJose:AppendString("typ", "JWT")

//  Now build the JWT claims (also known as the payload)
oClaims := CreateObject("Chilkat.JsonObject")
nSuccess := oClaims:AppendString("iss", "http://example.org")
nSuccess := oClaims:AppendString("sub", "John")
nSuccess := oClaims:AppendString("aud", "http://example.com")

//  Set the timestamp of when the JWT was created to now.
nCurDateTime := oJwt:GenNumericDate(0)
nSuccess := oClaims:AddIntAt(-1, "iat", nCurDateTime)

//  Set the "not process before" timestamp to now.
nSuccess := oClaims:AddIntAt(-1, "nbf", nCurDateTime)

//  Set the timestamp defining an expiration time (end time) for the token
//  to be now + 1 hour (3600 seconds)
nSuccess := oClaims:AddIntAt(-1, "exp", nCurDateTime + 3600)

//  Produce the smallest possible JWT:
oJwt:AutoCompact := 1

//  Create the JWT token.  This is where the ECC signature is created.
cToken := oJwt:CreateJwtPk(oJose:Emit(), oClaims:Emit(), oPrivKey)

? cToken

oPrivKey:destroy()
oJwt:destroy()
oJose:destroy()
oClaims:destroy()