ERROR!
------------------- GenerateCode ----------------------
ImpliedContentType: application/x-www-form-urlencoded
---- begin chilkat script ----
// This example assumes the Chilkat API to have been previously unlocked.
// See {{-global_unlock:::Global Unlock Sample-}} for sample code.
new Http http;
ckbool success;
new HttpRequest req;
call req.AddParam("scope","write");
call req.AddParam("response_type","code");
new JsonObject jsonParam3;
call req.AddParam("client_id",jsonParam3.Emit());
new JsonObject jsonParam4;
call req.AddParam("redirect_uri",jsonParam4.Emit());
call req.AddParam("decision","allow");
new JsonObject jsonParam6;
call req.AddParam("csrf",jsonParam6.Emit());
call req.AddParam("state","abc123");
call req.AddParam("service","PasswordGrant");
call req.AddHeader("Authorization","Bearer <access_token>");
call req.AddHeader("Cookie","{{cookieName}}={{demoSSOToken}}");
new HttpResponse resp;
req.HttpVerb = "POST";
req.ContentType = "application/x-www-form-urlencoded";
success = http.PostUrlEncoded("https://<tenant-name>.forgeblocks.com/am/oauth2/realms/root/realms/alpha/authorize", req,resp);
if (success == ckfalse) {
println http.LastErrorText;
return;
}
new StringBuilder sbResponseBody;
ignore = resp.GetBodySb(sbResponseBody);
new JsonObject jResp;
call jResp.LoadSb(sbResponseBody);
jResp.EmitCompact = ckfalse;
println "Response Body:";
println jResp.Emit();
int respStatusCode = resp.StatusCode;
println "Response Status Code = ",respStatusCode;
if (respStatusCode >= 400) {
println "Response Header:";
println resp.Header;
println "Failed.";
return;
}
// Sample JSON response:
// (Sample code for parsing the JSON response is shown below)
// {
// "args": {
// "client_id": "forgerockDemoConfidentialClient",
// "code": "oIQFFQ1S5Fxnqs5U_EMWxYEJktQ",
// "iss": "http://openam.example.com:8080/openam/oauth2"
// },
// "data": "",
// "files": {},
// "form": {},
// "headers": {
// "Accept": "*/*",
// "Accept-Encoding": "gzip, deflate, br",
// "Cookie": "amlbcookie=01; iPlanetDirectoryPro=sOpI1RvbCgvlQk.*AAJTSQACMDEA.*",
// "Host": "httpbin.org",
// "Referer": "http://openam.example.com:8080/openam/oauth2/realms/root/authorize",
// "User-Agent": "PostmanRuntime/7.26.3",
// "X-Amzn-Trace-Id": "Root=1-5f352dc7-0d6bd5fceafcd01e856febd2"
// },
// "json": null,
// "method": "GET",
// "origin": "5.65.200.229",
// "url": "https://httpbin.org/anything?code=oIQFFQ1S5Fxnqs5U_EMWxYEJktQ&iss=http:%2F%2Fopenam.example.com:8080%2Fopenam%2Foauth2&client_id=forgerockDemoConfidentialClient"
// }
// Sample code for parsing the JSON response...
// Use this online tool to generate parsing code from sample JSON: {{.https://tools.chilkat.io/jsonParse|||Generate JSON Parsing Code.}}
#ifdef IS_C_CPP
// Chilkat functions returning "const char *" return a pointer to temporary internal memory owned and managed by Chilkat.
#undef IS_C_CPP
string Client_id = jResp.StringOf("args.client_id");
string Code = jResp.StringOf("args.code");
string Iss = jResp.StringOf("args.iss");
string data = jResp.StringOf("data");
string Accept = jResp.StringOf("headers.Accept");
string Accept_Encoding = jResp.StringOf("headers.Accept-Encoding");
string Cookie = jResp.StringOf("headers.Cookie");
string Host = jResp.StringOf("headers.Host");
string Referer = jResp.StringOf("headers.Referer");
string User_Agent = jResp.StringOf("headers.User-Agent");
string X_Amzn_Trace_Id = jResp.StringOf("headers.X-Amzn-Trace-Id");
string json = jResp.StringOf("json");
string method = jResp.StringOf("method");
string origin = jResp.StringOf("origin");
string url = jResp.StringOf("url");
---- end chilkat script ----
Back to Collection Items
#include <CkHttpW.h>
#include <CkHttpRequestW.h>
#include <CkJsonObjectW.h>
#include <CkHttpResponseW.h>
#include <CkStringBuilderW.h>
void ChilkatSample(void)
{
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
CkHttpW http;
bool success;
CkHttpRequestW req;
req.AddParam(L"scope",L"write");
req.AddParam(L"response_type",L"code");
CkJsonObjectW jsonParam3;
req.AddParam(L"client_id",jsonParam3.emit());
CkJsonObjectW jsonParam4;
req.AddParam(L"redirect_uri",jsonParam4.emit());
req.AddParam(L"decision",L"allow");
CkJsonObjectW jsonParam6;
req.AddParam(L"csrf",jsonParam6.emit());
req.AddParam(L"state",L"abc123");
req.AddParam(L"service",L"PasswordGrant");
req.AddHeader(L"Authorization",L"Bearer <access_token>");
req.AddHeader(L"Cookie",L"{{cookieName}}={{demoSSOToken}}");
CkHttpResponseW resp;
req.put_HttpVerb(L"POST");
req.put_ContentType(L"application/x-www-form-urlencoded");
ERROR: Assignment type mismatch. ExpressionType=HttpResponse, atgType=ckbool
if (success == false) {
wprintf(L"%s\n",http.lastErrorText());
return;
}
CkStringBuilderW sbResponseBody;
resp.GetBodySb(sbResponseBody);
CkJsonObjectW jResp;
jResp.LoadSb(sbResponseBody);
jResp.put_EmitCompact(false);
wprintf(L"Response Body:\n");
wprintf(L"%s\n",jResp.emit());
int respStatusCode = resp.get_StatusCode();
wprintf(L"Response Status Code = %d\n",respStatusCode);
if (respStatusCode >= 400) {
wprintf(L"Response Header:\n");
wprintf(L"%s\n",resp.header());
wprintf(L"Failed.\n");
return;
}
// Sample JSON response:
// (Sample code for parsing the JSON response is shown below)
// {
// "args": {
// "client_id": "forgerockDemoConfidentialClient",
// "code": "oIQFFQ1S5Fxnqs5U_EMWxYEJktQ",
// "iss": "http://openam.example.com:8080/openam/oauth2"
// },
// "data": "",
// "files": {},
// "form": {},
// "headers": {
// "Accept": "*/*",
// "Accept-Encoding": "gzip, deflate, br",
// "Cookie": "amlbcookie=01; iPlanetDirectoryPro=sOpI1RvbCgvlQk.*AAJTSQACMDEA.*",
// "Host": "httpbin.org",
// "Referer": "http://openam.example.com:8080/openam/oauth2/realms/root/authorize",
// "User-Agent": "PostmanRuntime/7.26.3",
// "X-Amzn-Trace-Id": "Root=1-5f352dc7-0d6bd5fceafcd01e856febd2"
// },
// "json": null,
// "method": "GET",
// "origin": "5.65.200.229",
// "url": "https://httpbin.org/anything?code=oIQFFQ1S5Fxnqs5U_EMWxYEJktQ&iss=http:%2F%2Fopenam.example.com:8080%2Fopenam%2Foauth2&client_id=forgerockDemoConfidentialClient"
// }
// Sample code for parsing the JSON response...
// Use this online tool to generate parsing code from sample JSON: Generate JSON Parsing Code
// Chilkat functions returning "const char *" return a pointer to temporary internal memory owned and managed by Chilkat.
const wchar_t *Client_id = jResp.stringOf(L"args.client_id");
const wchar_t *Code = jResp.stringOf(L"args.code");
const wchar_t *Iss = jResp.stringOf(L"args.iss");
const wchar_t *data = jResp.stringOf(L"data");
const wchar_t *Accept = jResp.stringOf(L"headers.Accept");
const wchar_t *Accept_Encoding = jResp.stringOf(L"headers.Accept-Encoding");
const wchar_t *Cookie = jResp.stringOf(L"headers.Cookie");
const wchar_t *Host = jResp.stringOf(L"headers.Host");
const wchar_t *Referer = jResp.stringOf(L"headers.Referer");
const wchar_t *User_Agent = jResp.stringOf(L"headers.User-Agent");
const wchar_t *X_Amzn_Trace_Id = jResp.stringOf(L"headers.X-Amzn-Trace-Id");
const wchar_t *json = jResp.stringOf(L"json");
const wchar_t *method = jResp.stringOf(L"method");
const wchar_t *origin = jResp.stringOf(L"origin");
const wchar_t *url = jResp.stringOf(L"url");
}
Curl Command
curl -X POST
-H "Authorization: Bearer <access_token>"
-H "Cookie: {{cookieName}}={{demoSSOToken}}"
--data-urlencode 'scope=write'
--data-urlencode 'response_type=code'
--data-urlencode 'client_id={{postmanConfidentialClientId}}'
--data-urlencode 'redirect_uri={{redirect_uri}}'
--data-urlencode 'decision=allow'
--data-urlencode 'csrf={{demoSSOToken}}'
--data-urlencode 'state=abc123'
--data-urlencode 'service=PasswordGrant'
https://<tenant-name>.forgeblocks.com/am/oauth2/realms/root/realms/alpha/authorize
Postman Collection Item JSON
{
"name": "Step 2: Get Authorization Code",
"event": [
{
"listen": "test",
"script": {
"exec": [
"const jsonData = pm.response.json();",
"",
"if(pm.response.code == 200)",
"{",
" if(jsonData.args.code && jsonData.args.code != \"\") {",
" pm.globals.set(\"authorization_code\", jsonData.args.code);",
" }",
"}",
"",
"// TESTS",
"",
"pm.test(\"Follow redirects is enabled in Postman (Status code not 302)\", () => {",
" // If response was 302, ensure Postman is following redirects. ",
" pm.response.to.not.have.status(302);",
"});",
"",
"pm.test(\"Response from httpbin contained `code` argument\", () => {",
" pm.expect(jsonData.args.code).to.be.a(\"string\");",
"});"
],
"type": "text/javascript"
}
}
],
"protocolProfileBehavior": {
"followRedirects": true
},
"request": {
"method": "POST",
"header": [
{
"key": "Cookie",
"value": "{{cookieName}}={{demoSSOToken}}",
"type": "text"
}
],
"body": {
"mode": "urlencoded",
"urlencoded": [
{
"key": "scope",
"value": "write ",
"description": "Strings that are presented to the user for approval and included in tokens so that the protected resource may make decisions about what to give access to.",
"type": "text"
},
{
"key": "response_type",
"value": "code",
"description": "Response types the client will support and use.",
"type": "text"
},
{
"key": "client_id",
"value": "{{postmanConfidentialClientId}}",
"description": "The ID of the Confidential OAuth Client.",
"type": "text"
},
{
"key": "redirect_uri",
"value": "{{redirect_uri}}",
"description": "The complete URI to which client redirects the user if the request is successful.",
"type": "text"
},
{
"key": "decision",
"value": "allow",
"description": "The complete URI to which client redirects the user if the request is successful.",
"type": "text"
},
{
"key": "csrf",
"value": "{{demoSSOToken}}",
"description": "SSO token of the demo user, to protect against cross-site request forgery.",
"type": "text"
},
{
"key": "state",
"value": "abc123",
"type": "text"
},
{
"key": "service",
"value": "PasswordGrant",
"type": "text"
}
]
},
"url": {
"raw": "{{amUrl}}/oauth2{{realm}}/authorize",
"host": [
"{{amUrl}}"
],
"path": [
"oauth2{{realm}}",
"authorize"
]
},
"description": "Get the authorization code by making a call to the authorization server's authorization endpoint, specifying the SSO token of the user.\n"
},
"response": [
{
"name": "Success - headers captured by HttpBin.",
"originalRequest": {
"method": "POST",
"header": [
],
"body": {
"mode": "urlencoded",
"urlencoded": [
{
"key": "scope",
"value": "write ",
"description": "Strings that are presented to the user for approval and included in tokens so that the protected resource may make decisions about what to give access to.",
"type": "text"
},
{
"key": "response_type",
"value": "code",
"description": "Response types the client will support and use.",
"type": "text"
},
{
"key": "client_id",
"value": "{{postmanConfidentialClientId}}",
"description": "The ID of the Confidential OAuth Client.",
"type": "text"
},
{
"key": "redirect_uri",
"value": "{{redirect_uri}}",
"description": "The complete URI to which client redirects the user if the request is successful.",
"type": "text"
},
{
"key": "decision",
"value": "allow",
"description": "The complete URI to which client redirects the user if the request is successful.",
"type": "text"
},
{
"key": "csrf",
"value": "{{demoSSOToken}}",
"description": "SSO token of the demo user, to protect against cross-site request forgery.",
"type": "text"
}
]
},
"url": {
"raw": "{{amUrl}}/oauth2{{realm}}/authorize",
"host": [
"{{amUrl}}"
],
"path": [
"oauth2{{realm}}",
"authorize"
]
}
},
"status": "OK",
"code": 200,
"_postman_previewlanguage": "json",
"header": [
{
"key": "Date",
"value": "Thu, 13 Aug 2020 12:10:47 GMT"
},
{
"key": "Content-Type",
"value": "application/json"
},
{
"key": "Content-Length",
"value": "937"
},
{
"key": "Connection",
"value": "keep-alive"
},
{
"key": "Server",
"value": "gunicorn/19.9.0"
},
{
"key": "Access-Control-Allow-Origin",
"value": "*"
},
{
"key": "Access-Control-Allow-Credentials",
"value": "true"
}
],
"cookie": [
],
"body": "{\n \"args\": {\n \"client_id\": \"forgerockDemoConfidentialClient\",\n \"code\": \"oIQFFQ1S5Fxnqs5U_EMWxYEJktQ\",\n \"iss\": \"http://openam.example.com:8080/openam/oauth2\"\n },\n \"data\": \"\",\n \"files\": {},\n \"form\": {},\n \"headers\": {\n \"Accept\": \"*/*\",\n \"Accept-Encoding\": \"gzip, deflate, br\",\n \"Cookie\": \"amlbcookie=01; iPlanetDirectoryPro=sOpI1RvbCgvlQk.*AAJTSQACMDEA.*\",\n \"Host\": \"httpbin.org\",\n \"Referer\": \"http://openam.example.com:8080/openam/oauth2/realms/root/authorize\",\n \"User-Agent\": \"PostmanRuntime/7.26.3\",\n \"X-Amzn-Trace-Id\": \"Root=1-5f352dc7-0d6bd5fceafcd01e856febd2\"\n },\n \"json\": null,\n \"method\": \"GET\",\n \"origin\": \"5.65.200.229\",\n \"url\": \"https://httpbin.org/anything?code=oIQFFQ1S5Fxnqs5U_EMWxYEJktQ&iss=http:%2F%2Fopenam.example.com:8080%2Fopenam%2Foauth2&client_id=forgerockDemoConfidentialClient\"\n}"
}
]
}