---
title: "Obtain a live session token"
method: POST
path: "/oauth/live_session_token"
tags: ["OAuth"]
---

# Obtain a live session token

`POST /oauth/live_session_token`

In order to access protected IB resources, a live session token is required. This endpoint allows consumers to obtain a live session token to access these resources using an OAuth access token and the Diffie-Hellman prime and generator supplied during the registration process.
Note this is an additional IB-specific step, and not part of the OAuth v1.0a specification. Please refer to the "OAuth at Interactive Brokers" document for more details.  https://www.interactivebrokers.com/webtradingapi/oauth.pdf

## Request body

- object
  - `oauth_consumer_key` string — The 25-character hexadecimal string that was obtained from Interactive Brokers during the OAuth consumer registration process.
  - `oauth_token` string — The request token obtained from IB via /request_token.
  - `oauth_signature_method` string — The signature method used to sign the request. Currently only 'RSA-SHA256' is supported.
  - `oauth_signature` string — The signature for the request generated using the method specified in the oauth_signature_method parameter. See section 9 of the OAuth v1.0a specification for more details on signing requests.
  - `oauth_timestamp` string — Timestamp expressed in seconds since 1/1/1970 00:00:00 GMT. Must be a positive integer and greater than or equal to any timestamp used in previous requests.
  - `oauth_nonce` string — A random string uniquely generated for each request.
  - `diffie_hellman_challenge` string — Challenge value calculated using the Diffie-Hellman prime and generated provided during the registration process. See the "OAuth at Interactive Brokers" document for more details.

## Response `200`

DH response

- object
  - `diffie_hellman_response` string
  - `live_session_token_signature` string

## Other responses

- `400` — Unsuccessfull response
- `401` — Unsuccessfull response
- `403` — Unsuccessfull response
- `408` — Unsuccessfull response

---

[API](https://skmtc.dev/interactivebrokers/apis/ibkr-3rd-party-web-api.md) · [All operations](https://skmtc.dev/interactivebrokers/apis/ibkr-3rd-party-web-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/interactivebrokers/ibkr-3rd-party-web-api/revisions/97f75703dba5/schema)
