Sample code for 30+ languages & platforms
Xojo Plugin

Set the Optional JWS Unprotected Header

See more JSON Web Signatures (JWS) Examples

Demonstrates Jws.SetUnprotectedHeader, which sets the optional unprotected header for a signature.

Background. Unlike the protected header, the unprotected header is not covered by the signature. It is carried in the JSON serialization forms of a JWS, so producing a JWS with an unprotected header yields a JSON serialization rather than compact form.

Chilkat Xojo Plugin Downloads

Xojo Plugin
Dim success As Boolean
success = False

Dim jws As New Chilkat.Jws

//  Protected header specifying HMAC-SHA256.
Dim header As New Chilkat.JsonObject
success = header.UpdateString("alg","HS256")
success = jws.SetProtectedHeader(0,header)
If (success = False) Then
    System.DebugLog(jws.LastErrorText)
    Return
End If

//  Set the optional unprotected header for signature 0.  Unlike the protected header, it is not
//  covered by the signature.  It is carried in the JSON serialization forms of a JWS.
Dim unprotected As New Chilkat.JsonObject
success = unprotected.UpdateString("kid","signer-key-1")
success = jws.SetUnprotectedHeader(0,unprotected)
If (success = False) Then
    System.DebugLog(jws.LastErrorText)
    Return
End If

Dim bIncludeBom As Boolean
bIncludeBom = False
success = jws.SetPayload("This is the content to sign.","utf-8",bIncludeBom)
If (success = False) Then
    System.DebugLog(jws.LastErrorText)
    Return
End If

Dim base64Key As String
base64Key = "YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU="
success = jws.SetMacKey(0,base64Key,"base64")
If (success = False) Then
    System.DebugLog(jws.LastErrorText)
    Return
End If

//  Because an unprotected header is present, the JWS is produced in a JSON serialization form.
Dim jwsJson As String
jwsJson = jws.CreateJws()
If (jws.LastMethodSuccess = False) Then
    System.DebugLog(jws.LastErrorText)
    Return
End If

System.DebugLog(jwsJson)