Test info
Profile: {'openid-configuration': 'config', 'response_type': 'code', 'crypto': 'none+sign', 'registration': 'static'}
Timestamp: 2016-12-21T07:44:33Z
Test description: Trying to use authorization code twice with 30 seconds in between uses must result in an error [Basic, Hybrid]
Test ID: OP-OAuth-2nd-30s
Issuer: https://auth.svcs.verizon.com:22790/vzconnect/
Test output
__AuthorizationRequest:pre__
[check-response-type]
status: OK
description: Checks that the asked for response type are among the supported
[check-endpoint]
status: OK
description: Checks that the necessary endpoint exists at a server
__After completing the test flow:__
[verify-response]
status: OK
description: Checks that the last response was one of a possible set of OpenID Connect Responses
__X:==== END ====__
Trace output
3.672322 ------------ DiscoveryRequest ------------
3.672341 Provider info discover from 'https://auth.svcs.verizon.com:22790/vzconnect'
3.672347 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/.well-known/openid-configuration
3.710390 ProviderConfigurationResponse: {
"authorization_endpoint": "https://auth.svcs.verizon.com:22790/vzconnect/authorize",
"claims_parameter_supported": false,
"claims_supported": [
"sub",
"firstName",
"lastName",
"gender",
"email",
"mdn",
"address1",
"address2",
"city",
"state",
"zip",
"country",
"image"
],
"grant_types_supported": [
"authorization_code",
"implicit",
"client_credentials"
],
"id_token_encryption_alg_values_supported": [
"RSA-OAEP-256"
],
"id_token_signing_alg_values_supported": [
"RS256",
"none"
],
"introspection_endpoint": "https://auth.svcs.verizon.com:22790/vzconnect/introspect",
"issuer": "https://auth.svcs.verizon.com:22790/vzconnect/",
"jwks_uri": "https://auth.svcs.verizon.com:22790/vzconnect/jwk",
"request_object_signing_alg_values_supported": [
"RS256",
"none"
],
"request_parameter_supported": true,
"request_uri_parameter_supported": true,
"require_request_uri_registration": true,
"response_types_supported": [
"code",
"token",
"id_token"
],
"scopes_supported": [
"openid",
"profile",
"email",
"address",
"phone",
"ivrauthentication",
"mobileperks",
"cdi"
],
"subject_types_supported": [
"public",
"pairwise"
],
"token_endpoint": "https://auth.svcs.verizon.com:22790/vzconnect/token",
"token_endpoint_auth_methods_supported": [
"client_secret_basic"
],
"token_endpoint_auth_signing_alg_values_supported": [
"RS256"
],
"userinfo_endpoint": "https://api.yourmobileid.com/userinfo",
"version": "3.0"
}
3.859166 JWKS: {
"keys": [
{
"alg": "RS256",
"e": "AQAB",
"kid": "ab35126b-0e27-4cad-bea7-1dd2cdde59e0",
"kty": "RSA",
"n": "gWbqQJPPtvfBskxfiV8p2BMlyUQe0GSu-GJrUUaD7uRISqUYYSUy7kQotMMFkKiAl8AD_dmhXqehfj7knAyw67P577Ox-ffsLMVLiDArAly-cL2JyTWs5CQ0dREPMEZFIwYulotq3ylwek3d8aKuk9LoHzlUXo7fpaOPZLl3YYkUGgUdhTZ0L3UGbOAtfBjsge-oVJRKu4iO_HbBc9xVlrh8XEuJCqUGXI6akp-zQYnjZGd3-9zjmHKim1qY0WkP8_CfiQiDbuyrEP51LUH3YQycQQyXdaxARWSfjx_Iwzk48JuXeUZ7qOnkWi1sE39hYhKE3tmgD6ex-PytfMIwzw"
},
{
"alg": "RS256",
"e": "AQAB",
"kid": "rsa1",
"kty": "RSA",
"n": "23zs5r8PQKpsKeoUd2Bjz3TJkUljWqMD8X98SaIb1LE7dCQzi9jwO58FGL0ieY1Dfnr9-g1iiY8sNzV-byawK98W9yFiopaghfoKtxXgUD8pi0fLPeWmAkntjn28Z_WZvvA265ELbBhphPXEJcFhdzUfgESHVuqFMEqp1pB-CP0"
}
]
}
3.871525 ------------ AuthorizationRequest ------------
3.871932 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/authorize?scope=openid&state=0WwSDxPbTlfF8Epd&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60784%2Fauthz_cb&response_type=code&client_id=c2c0f88d-ec48-4a21-b2fe-0f265b317157
3.871940 --> BODY: None
4.879123 <-- code=ci6fW1&state=0WwSDxPbTlfF8Epd
4.879543 AuthorizationResponse: {
"code": "ci6fW1",
"state": "0WwSDxPbTlfF8Epd"
}
4.879918 ------------ AccessTokenRequest ------------
4.880423 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/token
4.880430 --> BODY: code=ci6fW1&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60784%2Fauthz_cb
4.880445 --> HEADERS: {'Content-Type': 'application/x-www-form-urlencoded', 'Authorization': u'Basic YzJjMGY4OGQtZWM0OC00YTIxLWIyZmUtMGYyNjViMzE3MTU3OmFoamVpQ2tfMFhlaExYUlVUR3BaYlp0dFNxQlcyaWVVVTRNaVVDZy1TbUNYZm1IRU50em9Xc1B0al9CVUxTOWRtSHB5TmU3TkJCV3ZCcmw4bTF3cmln'}
5.119247 <-- STATUS: 200
5.119318 <-- BODY: {"access_token":"eyJhbGciOiJSUzI1NiJ9.eyJleHAiOjE0ODIzMDk4NDIsImF1ZCI6WyJjMmMwZjg4ZC1lYzQ4LTRhMjEtYjJmZS0wZjI2NWIzMTcxNTciXSwiaXNzIjoiaHR0cHM6XC9cL2F1dGguc3Zjcy52ZXJpem9uLmNvbToyMjc5MFwvdnpjb25uZWN0XC8iLCJqdGkiOiI0NzJkOTRlZS05OTUxLTQ2MzgtOWMzNi00N2IzMDViMWM3ZTgiLCJpYXQiOjE0ODIzMDYyNDJ9.MTTCx2OMLp6EnQKmveSFp16EjzOyeSnwAxTWo9jTwJBhd5yYrHPNx-TWVtL7uugVqf9BS08NCI_StzPx96dVgn_c4Y0yCAfV4TwBe17c_shp7MQSP0jIwkjbTJOgwb4YQZSzqwi8fxuewtWlSMYVh_K442dptalz7MZqRmQFm6A","token_type":"Bearer","expires_in":3599,"scope":"openid","id_token":"eyJhbGciOiJSUzI1NiIsImtpZCI6InJzYTEifQ.eyJleHAiOjE0ODIzMDY4NDMsInN1YiI6IjljOTNhODBiLWE4NjUtNDBiZC05NGE4LThhNjgxMDBhNzY5MiIsImF1ZCI6WyJjMmMwZjg4ZC1lYzQ4LTRhMjEtYjJmZS0wZjI2NWIzMTcxNTciXSwiaXNzIjoiaHR0cHM6XC9cL2F1dGguc3Zjcy52ZXJpem9uLmNvbToyMjc5MFwvdnpjb25uZWN0XC8iLCJpYXQiOjE0ODIzMDYyNDIsImtpZCI6InJzYTEifQ.YXLrGxTrUGLzNXrqT1ZmwWGz_drkS2NkOzvjQ8wyX3qFDG78qZZY0y5IZ1MxnR07HB-wQwB2p0ADN2j7ld-t2w4s8zy8cx6jJeCRVNQL6d3837fnkJVebm5sfOhLul5s2Ldd1-W8nrJQM4OjdTZnzTa9LVFcB9SZjHUc4K3QGYE"}
5.161330 AccessTokenResponse: {
"access_token": "eyJhbGciOiJSUzI1NiJ9.eyJleHAiOjE0ODIzMDk4NDIsImF1ZCI6WyJjMmMwZjg4ZC1lYzQ4LTRhMjEtYjJmZS0wZjI2NWIzMTcxNTciXSwiaXNzIjoiaHR0cHM6XC9cL2F1dGguc3Zjcy52ZXJpem9uLmNvbToyMjc5MFwvdnpjb25uZWN0XC8iLCJqdGkiOiI0NzJkOTRlZS05OTUxLTQ2MzgtOWMzNi00N2IzMDViMWM3ZTgiLCJpYXQiOjE0ODIzMDYyNDJ9.MTTCx2OMLp6EnQKmveSFp16EjzOyeSnwAxTWo9jTwJBhd5yYrHPNx-TWVtL7uugVqf9BS08NCI_StzPx96dVgn_c4Y0yCAfV4TwBe17c_shp7MQSP0jIwkjbTJOgwb4YQZSzqwi8fxuewtWlSMYVh_K442dptalz7MZqRmQFm6A",
"expires_in": 3599,
"id_token": {
"claims": {
"aud": [
"c2c0f88d-ec48-4a21-b2fe-0f265b317157"
],
"exp": 1482306843,
"iat": 1482306242,
"iss": "https://auth.svcs.verizon.com:22790/vzconnect/",
"kid": "rsa1",
"sub": "9c93a80b-a865-40bd-94a8-8a68100a7692"
},
"jws header parameters": {
"alg": "RS256",
"kid": "rsa1"
}
},
"scope": "openid",
"token_type": "Bearer"
}
35.262193 ------------ AccessTokenRequest ------------
35.262643 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/token
35.262650 --> BODY: code=ci6fW1&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60784%2Fauthz_cb
35.262673 --> HEADERS: {'Content-Type': 'application/x-www-form-urlencoded', 'Authorization': u'Basic YzJjMGY4OGQtZWM0OC00YTIxLWIyZmUtMGYyNjViMzE3MTU3OmFoamVpQ2tfMFhlaExYUlVUR3BaYlp0dFNxQlcyaWVVVTRNaVVDZy1TbUNYZm1IRU50em9Xc1B0al9CVUxTOWRtSHB5TmU3TkJCV3ZCcmw4bTF3cmln'}
35.512437 <-- STATUS: 400
35.512581 ErrorResponse: {
"error": "invalid_grant",
"error_description": "JpaAuthorizationCodeRepository: no authorization code found for value ci6fW1"
}
35.524668 ==== END ====
Result
PASSED