Back to Collection Items
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
loHttp = createobject("CkHttp")
loReq = createobject("CkHttpRequest")
loReq.HttpVerb = "POST"
loReq.Path = "/services/oauth2/token"
loReq.ContentType = "multipart/form-data"
loReq.AddParam("","")
loReq.AddParam("grant_type","authorization_code")
loReq.AddParam("client_id","authorization_code{{clientId}}")
loReq.AddParam("client_secret","authorization_code{{clientId}}{{clientSecret}}")
loReq.AddParam("redirect_uri","authorization_code{{clientId}}{{clientSecret}}{{redirectUrl}}")
loReq.AddParam("format","authorization_code{{clientId}}{{clientSecret}}{{redirectUrl}}json")
loResp = loHttp.SynchronousRequest("login.salesforce.com{{site}}",443,.T.,loReq)
if (loHttp.LastMethodSuccess = .F.) then
? loHttp.LastErrorText
release loHttp
release loReq
return
endif
loSbResponseBody = createobject("CkStringBuilder")
loResp.GetBodySb(loSbResponseBody)
loJResp = createobject("CkJsonObject")
loJResp.LoadSb(loSbResponseBody)
loJResp.EmitCompact = .F.
? "Response Body:"
? loJResp.Emit()
lnRespStatusCode = loResp.StatusCode
? "Response Status Code = " + str(lnRespStatusCode)
if (lnRespStatusCode >= 400) then
? "Response Header:"
? loResp.Header
? "Failed."
release loResp
release loHttp
release loReq
release loSbResponseBody
release loJResp
return
endif
release loResp
// Sample JSON response:
// (Sample code for parsing the JSON response is shown below)
// {
// "access_token": "<access_token>",
// "refresh_token": "<refresh_token>",
// "signature": "<base64>",
// "scope": "refresh_token full",
// "id_token": "<id_token>",
// "instance_url": "<my_domain>",
// "id": "https://login.salesforce.com/id/00D.../005...",
// "token_type": "Bearer",
// "issued_at": "<timestamp>"
// }
// Sample code for parsing the JSON response...
// Use this online tool to generate parsing code from sample JSON: Generate JSON Parsing Code
lcAccess_token = loJResp.StringOf("access_token")
lcRefresh_token = loJResp.StringOf("refresh_token")
lcSignature = loJResp.StringOf("signature")
lcScope = loJResp.StringOf("scope")
lcId_token = loJResp.StringOf("id_token")
lcInstance_url = loJResp.StringOf("instance_url")
lcId = loJResp.StringOf("id")
lcToken_type = loJResp.StringOf("token_type")
lcIssued_at = loJResp.StringOf("issued_at")
release loHttp
release loReq
release loSbResponseBody
release loJResp
Curl Command
curl -X POST
--form 'code='
--form 'grant_type=authorization_code'
--form 'client_id=authorization_code{{clientId}}'
--form 'client_secret=authorization_code{{clientId}}{{clientSecret}}'
--form 'redirect_uri=authorization_code{{clientId}}{{clientSecret}}{{redirectUrl}}'
--form 'format=authorization_code{{clientId}}{{clientSecret}}{{redirectUrl}}json'
https://login.salesforce.com{{site}}/services/oauth2/token
Postman Collection Item JSON
{
"name": "Web Server Flow 2",
"event": [
{
"listen": "test",
"script": {
"exec": [
"const jsonData = pm.response.json();",
"const id = jsonData.id.split('/');",
"",
"const context = pm.environment.name ? pm.environment : pm.collectionVariables;",
"context.set(\"_accessToken\", jsonData.access_token);",
"context.set(\"_refreshToken\", jsonData.refresh_token);",
"context.set(\"_endpoint\", jsonData.instance_url);",
"context.set(\"_userId\", id.pop());",
"context.set(\"_orgId\", id.pop());"
],
"type": "text/javascript"
}
}
],
"request": {
"auth": {
"type": "noauth"
},
"method": "POST",
"header": [
],
"body": {
"mode": "formdata",
"formdata": [
{
"key": "code",
"value": "",
"type": "text"
},
{
"key": "grant_type",
"value": "authorization_code",
"type": "text"
},
{
"key": "client_id",
"value": "{{clientId}}",
"type": "text"
},
{
"key": "client_secret",
"value": "{{clientSecret}}",
"type": "text"
},
{
"key": "redirect_uri",
"value": "{{redirectUrl}}",
"type": "text"
},
{
"key": "format",
"value": "json",
"type": "text"
}
]
},
"url": {
"raw": "{{url}}{{site}}/services/oauth2/token",
"host": [
"{{url}}{{site}}"
],
"path": [
"services",
"oauth2",
"token"
]
}
},
"response": [
{
"name": "Successful Web Server Flow 2",
"originalRequest": {
"method": "POST",
"header": [
],
"body": {
"mode": "formdata",
"formdata": [
{
"key": "code",
"value": "aPrx4y_KzscWzywk1LwqIbwyH4R7DKoV5gLaVF87dSTTysEc8e9pu1f5azVNSsws2MruIV4I0A==",
"type": "text"
},
{
"key": "grant_type",
"value": "authorization_code",
"type": "text"
},
{
"key": "client_id",
"value": "{{clientId}}",
"type": "text"
},
{
"key": "client_secret",
"value": "{{clientSecret}}",
"type": "text"
},
{
"key": "redirect_uri",
"value": "{{redirectUrl}}",
"type": "text"
},
{
"key": "format",
"value": "json",
"type": "text"
}
]
},
"url": {
"raw": "{{url}}{{site}}/services/oauth2/token",
"host": [
"{{url}}{{site}}"
],
"path": [
"services",
"oauth2",
"token"
]
}
},
"status": "OK",
"code": 200,
"_postman_previewlanguage": "json",
"header": [
{
"key": "Date",
"value": "Wed, 04 Oct 2023 16:25:30 GMT"
},
{
"key": "Strict-Transport-Security",
"value": "max-age=63072000; includeSubDomains"
},
{
"key": "X-Content-Type-Options",
"value": "nosniff"
},
{
"key": "X-XSS-Protection",
"value": "1; mode=block"
},
{
"key": "X-Robots-Tag",
"value": "none"
},
{
"key": "Cache-Control",
"value": "no-cache,must-revalidate,max-age=0,no-store,private"
},
{
"key": "Expires",
"value": "Thu, 01 Jan 1970 00:00:00 GMT"
},
{
"key": "Content-Type",
"value": "application/json;charset=UTF-8"
},
{
"key": "Vary",
"value": "Accept-Encoding"
},
{
"key": "Content-Encoding",
"value": "gzip"
},
{
"key": "Transfer-Encoding",
"value": "chunked"
}
],
"cookie": [
],
"body": "{\n \"access_token\": \"<access_token>\",\n \"refresh_token\": \"<refresh_token>\",\n \"signature\": \"<base64>\",\n \"scope\": \"refresh_token full\",\n \"id_token\": \"<id_token>\",\n \"instance_url\": \"<my_domain>\",\n \"id\": \"https://login.salesforce.com/id/00D.../005...\",\n \"token_type\": \"Bearer\",\n \"issued_at\": \"<timestamp>\"\n}"
}
]
}