Test info
Profile: {'openid-configuration': 'config', 'response_type': 'code', 'crypto': 'none+sign', 'registration': 'static'}
Timestamp: 2015-04-10T01:37:28Z
Test description: Scope requesting email claims [Basic, Implicit, Hybrid]
Test ID: OP-scope-email
Issuer: https://openid.uni-id.info/express/
Test output
__AuthorizationRequest:pre__
[check-response-type]
status: OK
description: Checks that the asked for response type are among the supported
[check-endpoint]
status: OK
description: Checks that the necessary endpoint exists at a server
__After completing the test flow:__
[check-http-response]
status: OK
description: Checks that the HTTP response status is within the 200 or 300 range
[verify-response]
status: OK
description: Checks that the last response was one of a possible set of OpenID Connect Responses
[verify-scopes]
status: OK
description: Verifies that the claims corresponding to the requested scopes are returned
__X:==== END ====__
Trace output
0.000354 ------------ DiscoveryRequest ------------
0.000365 Provider info discover from 'https://openid.uni-id.info/express/'
0.000372 --> URL: https://openid.uni-id.info/express/.well-known/openid-configuration
0.990288 ProviderConfigurationResponse: {
"authorization_endpoint": "https://openid.uni-id.info/express/script/connect/authz_req/endpoint.seam",
"claims_parameter_supported": false,
"claims_supported": [
"sub",
"iss",
"auth_time",
"acr",
"name",
"given_name",
"family_name",
"nickname",
"profile",
"picture",
"website",
"email",
"email_verified",
"locale",
"zoneinfo"
],
"grant_types_supported": [
"authorization_code",
"implicit"
],
"id_token_signing_alg_values_supported": [
"RS256"
],
"issuer": "https://openid.uni-id.info/express/",
"jwks_uri": "https://openid.uni-id.info/express/script/connect/jwks/endpoint.seam",
"request_parameter_supported": false,
"request_uri_parameter_supported": true,
"require_request_uri_registration": true,
"response_types_supported": [
"code",
"token",
"id_token",
"code token",
"code id_token",
"token id_token",
"code token id_token"
],
"scopes_supported": [
"openid",
"email",
"phone",
"address",
"profile"
],
"subject_types_supported": [
"pairwise"
],
"token_endpoint": "https://openid.uni-id.info/express/script/connect/token_req/endpoint.seam",
"token_endpoint_auth_methods_supported": [
"client_secret_basic",
"client_secret_post"
],
"userinfo_endpoint": "https://openid.uni-id.info/express/script/connect/userinfo/endpoint.seam",
"version": "3.0"
}
1.987187 JWKS: {
"keys": [
{
"alg": "RS256",
"e": "AQAB",
"kid": "key1",
"kty": "RSA",
"n": "u8XnQhjM_rO43PGu6t2RHa6Y2hAGA63fjJfcyrrw9iu5Y3Xn7iQ3uJV93JL7RYmi55GtMB6PaRzBDckAQRVOHd8BoEPufX9567TpuThQRb2vL8ds1oL6X3p33C02HgU9rkBRGQHYi8oOaKtuUjXUeC-P-boFvHKLtvKbCbfX3Ys",
"use": "sig"
}
]
}
1.988032 ------------ AuthorizationRequest ------------
1.988417 --> URL: https://openid.uni-id.info/express/script/connect/authz_req/endpoint.seam?scope=openid+email&state=enGvsWDTXDcpaF9V&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60239%2Fauthz_cb&response_type=code&client_id=https%3A%2F%2Fopenid.uni-id.info%2Fconnect_consumer%2F
1.988424 --> BODY: None
2.456459 <-- code=eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiSmVrYlIzTTVpTEFURGE5cW1nUERfY3pUSlhKU29hUm0iLCJleHAiOjE0Mjg2MzQwMTUsImlhdCI6MTQyODYzMDQxNSwidG9rZW5UeXBlIjoiY29kZSIsInZlciI6IjEuMCJ9.&state=enGvsWDTXDcpaF9V
2.456741 AuthorizationResponse: {
"code": "eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiSmVrYlIzTTVpTEFURGE5cW1nUERfY3pUSlhKU29hUm0iLCJleHAiOjE0Mjg2MzQwMTUsImlhdCI6MTQyODYzMDQxNSwidG9rZW5UeXBlIjoiY29kZSIsInZlciI6IjEuMCJ9.",
"state": "enGvsWDTXDcpaF9V"
}
2.457060 ------------ AccessTokenRequest ------------
2.457376 --> URL: https://openid.uni-id.info/express/script/connect/token_req/endpoint.seam
2.457382 --> BODY: code=eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiSmVrYlIzTTVpTEFURGE5cW1nUERfY3pUSlhKU29hUm0iLCJleHAiOjE0Mjg2MzQwMTUsImlhdCI6MTQyODYzMDQxNSwidG9rZW5UeXBlIjoiY29kZSIsInZlciI6IjEuMCJ9.&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60239%2Fauthz_cb
2.457392 --> HEADERS: {'Content-type': 'application/x-www-form-urlencoded', 'Authorization': 'Basic aHR0cHM6Ly9vcGVuaWQudW5pLWlkLmluZm8vY29ubmVjdF9jb25zdW1lci86Y2xpZW50X3NlY3JldA=='}
3.542501 <-- STATUS: 200
3.542541 <-- BODY: {"scope":"openid,email","expires_in":1799,"token_type":"bearer","refresh_token":"eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiQUZRVFhDWU9tWU1FTjZXaVVkN0hUUmRZaXZVclV3YksiLCJleHAiOjE0Mjg2NDg0MTYsImlhdCI6MTQyODYzMDQxNiwidG9rZW5UeXBlIjoicmVmcmVzaF90b2tlbiIsInZlciI6IjEuMCJ9.","access_token":"eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiQUZRVFhDWU9tWU1FTjZXaVVkN0hUUmRZaXZVclV3YksiLCJleHAiOjE0Mjg2MzIyMTYsImlhdCI6MTQyODYzMDQxNiwidG9rZW5UeXBlIjoiYWNjZXNzX3Rva2VuIiwidmVyIjoiMS4wIn0.","id_token":"eyJhbGciOiJSUzI1NiIsImtpZCI6ImtleTEiLCJ0eXAiOiJKV1QifQ.eyJhdWQiOiJodHRwczovL29wZW5pZC51bmktaWQuaW5mby9jb25uZWN0X2NvbnN1bWVyLyIsImV4cCI6MTQyODYzMjIxNiwiaWF0IjoxNDI4NjMwNDE2LCJpc3MiOiJodHRwczovL29wZW5pZC51bmktaWQuaW5mby9leHByZXNzLyIsInN1YiI6IjI4Nll3YndtdXNIYnpwakJ2Q2E2d1NaMHlHWFRhQ0tMIiwidXNlcl9pZCI6IjI4Nll3YndtdXNIYnpwakJ2Q2E2d1NaMHlHWFRhQ0tMIn0.Rl5HypO16wrlxTW87vXBHI-kHNSYoQ845m_edUX0oPnQzuarQCiJUyM6_hcYUXk3YZAONu53I7Uf94JR8bnsr38QjjhTCPVnXu9g4zgx4Wh5Q4eif56GbH_6euFig_bLvCjHLFK4MrCubU-IqZtEBT7vGBzayghjaG61JbJEKbU"}
4.581875 AccessTokenResponse: {
"access_token": "eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiQUZRVFhDWU9tWU1FTjZXaVVkN0hUUmRZaXZVclV3YksiLCJleHAiOjE0Mjg2MzIyMTYsImlhdCI6MTQyODYzMDQxNiwidG9rZW5UeXBlIjoiYWNjZXNzX3Rva2VuIiwidmVyIjoiMS4wIn0.",
"expires_in": 1799,
"id_token": {
"claims": {
"aud": [
"https://openid.uni-id.info/connect_consumer/"
],
"exp": 1428632216,
"iat": 1428630416,
"iss": "https://openid.uni-id.info/express/",
"sub": "286YwbwmusHbzpjBvCa6wSZ0yGXTaCKL",
"user_id": "286YwbwmusHbzpjBvCa6wSZ0yGXTaCKL"
},
"jws header parameters": {
"alg": "RS256",
"kid": "key1",
"typ": "JWT"
}
},
"refresh_token": "eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiQUZRVFhDWU9tWU1FTjZXaVVkN0hUUmRZaXZVclV3YksiLCJleHAiOjE0Mjg2NDg0MTYsImlhdCI6MTQyODYzMDQxNiwidG9rZW5UeXBlIjoicmVmcmVzaF90b2tlbiIsInZlciI6IjEuMCJ9.",
"scope": "openid,email",
"token_type": "bearer"
}
4.583186 ------------ UserInfoRequest ------------
4.583456 --> URL: https://openid.uni-id.info/express/script/connect/userinfo/endpoint.seam
4.583462 --> BODY: None
4.583474 --> HEADERS: {'Authorization': u'Bearer eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2RlIjoiQUZRVFhDWU9tWU1FTjZXaVVkN0hUUmRZaXZVclV3YksiLCJleHAiOjE0Mjg2MzIyMTYsImlhdCI6MTQyODYzMDQxNiwidG9rZW5UeXBlIjoiYWNjZXNzX3Rva2VuIiwidmVyIjoiMS4wIn0.'}
5.638186 <-- STATUS: 200
5.638235 Available verification keys: [(u'key1', u'RSA')]
5.638259 Available decryption keys: [('a0', 'RSA'), ('a3', 'EC')]
5.638281 <-- BODY: {"email":"h-jo@tech.nri-secure.co.jp","email_verified":true,"sub":"286YwbwmusHbzpjBvCa6wSZ0yGXTaCKL"}
5.638723 UserInfo: {
"email": "h-jo@tech.nri-secure.co.jp",
"email_verified": true,
"sub": "286YwbwmusHbzpjBvCa6wSZ0yGXTaCKL"
}
5.639770 ==== END ====
Result
PASSED