Test info

Profile: {'openid-configuration': 'config', 'response_type': 'code', 'crypto': 'none+sign', 'registration': 'static'}
Timestamp: 2016-12-21T07:43:53Z
Test description: Trying to use authorization code twice should result in an error [Basic, Hybrid]
Test ID: OP-OAuth-2nd
Issuer: https://auth.svcs.verizon.com:22790/vzconnect/

Test output


__AuthorizationRequest:pre__
[check-response-type]
	status: OK
	description: Checks that the asked for response type are among the supported
[check-endpoint]
	status: OK
	description: Checks that the necessary endpoint exists at a server
__After completing the test flow:__
[verify-response]
	status: OK
	description: Checks that the last response was one of a possible set of OpenID Connect Responses
__X:==== END ====__

Trace output


0.000408 ------------ DiscoveryRequest ------------
0.000423 Provider info discover from 'https://auth.svcs.verizon.com:22790/vzconnect'
0.000430 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/.well-known/openid-configuration
0.044532 ProviderConfigurationResponse: {
  "authorization_endpoint": "https://auth.svcs.verizon.com:22790/vzconnect/authorize",
  "claims_parameter_supported": false,
  "claims_supported": [
    "sub",
    "firstName",
    "lastName",
    "gender",
    "email",
    "mdn",
    "address1",
    "address2",
    "city",
    "state",
    "zip",
    "country",
    "image"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "client_credentials"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA-OAEP-256"
  ],
  "id_token_signing_alg_values_supported": [
    "RS256",
    "none"
  ],
  "introspection_endpoint": "https://auth.svcs.verizon.com:22790/vzconnect/introspect",
  "issuer": "https://auth.svcs.verizon.com:22790/vzconnect/",
  "jwks_uri": "https://auth.svcs.verizon.com:22790/vzconnect/jwk",
  "request_object_signing_alg_values_supported": [
    "RS256",
    "none"
  ],
  "request_parameter_supported": true,
  "request_uri_parameter_supported": true,
  "require_request_uri_registration": true,
  "response_types_supported": [
    "code",
    "token",
    "id_token"
  ],
  "scopes_supported": [
    "openid",
    "profile",
    "email",
    "address",
    "phone",
    "ivrauthentication",
    "mobileperks",
    "cdi"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "token_endpoint": "https://auth.svcs.verizon.com:22790/vzconnect/token",
  "token_endpoint_auth_methods_supported": [
    "client_secret_basic"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "RS256"
  ],
  "userinfo_endpoint": "https://api.yourmobileid.com/userinfo",
  "version": "3.0"
}
0.141629 JWKS: {
  "keys": [
    {
      "alg": "RS256",
      "e": "AQAB",
      "kid": "ab35126b-0e27-4cad-bea7-1dd2cdde59e0",
      "kty": "RSA",
      "n": "gWbqQJPPtvfBskxfiV8p2BMlyUQe0GSu-GJrUUaD7uRISqUYYSUy7kQotMMFkKiAl8AD_dmhXqehfj7knAyw67P577Ox-ffsLMVLiDArAly-cL2JyTWs5CQ0dREPMEZFIwYulotq3ylwek3d8aKuk9LoHzlUXo7fpaOPZLl3YYkUGgUdhTZ0L3UGbOAtfBjsge-oVJRKu4iO_HbBc9xVlrh8XEuJCqUGXI6akp-zQYnjZGd3-9zjmHKim1qY0WkP8_CfiQiDbuyrEP51LUH3YQycQQyXdaxARWSfjx_Iwzk48JuXeUZ7qOnkWi1sE39hYhKE3tmgD6ex-PytfMIwzw"
    },
    {
      "alg": "RS256",
      "e": "AQAB",
      "kid": "rsa1",
      "kty": "RSA",
      "n": "23zs5r8PQKpsKeoUd2Bjz3TJkUljWqMD8X98SaIb1LE7dCQzi9jwO58FGL0ieY1Dfnr9-g1iiY8sNzV-byawK98W9yFiopaghfoKtxXgUD8pi0fLPeWmAkntjn28Z_WZvvA265ELbBhphPXEJcFhdzUfgESHVuqFMEqp1pB-CP0"
    }
  ]
}
0.154228 ------------ AuthorizationRequest ------------
0.154624 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/authorize?scope=openid&state=dq2U4rlIpM0lKJQM&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60784%2Fauthz_cb&response_type=code&client_id=c2c0f88d-ec48-4a21-b2fe-0f265b317157
0.154632 --> BODY: None
1.122542 <-- code=9B8T3P&state=dq2U4rlIpM0lKJQM
1.122977 AuthorizationResponse: {
  "code": "9B8T3P",
  "state": "dq2U4rlIpM0lKJQM"
}
1.123340 ------------ AccessTokenRequest ------------
1.123729 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/token
1.123736 --> BODY: code=9B8T3P&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60784%2Fauthz_cb
1.123750 --> HEADERS: {'Content-Type': 'application/x-www-form-urlencoded', 'Authorization': u'Basic YzJjMGY4OGQtZWM0OC00YTIxLWIyZmUtMGYyNjViMzE3MTU3OmFoamVpQ2tfMFhlaExYUlVUR3BaYlp0dFNxQlcyaWVVVTRNaVVDZy1TbUNYZm1IRU50em9Xc1B0al9CVUxTOWRtSHB5TmU3TkJCV3ZCcmw4bTF3cmln'}
1.300355 <-- STATUS: 200
1.300431 <-- BODY: {"access_token":"eyJhbGciOiJSUzI1NiJ9.eyJleHAiOjE0ODIzMDk4MzIsImF1ZCI6WyJjMmMwZjg4ZC1lYzQ4LTRhMjEtYjJmZS0wZjI2NWIzMTcxNTciXSwiaXNzIjoiaHR0cHM6XC9cL2F1dGguc3Zjcy52ZXJpem9uLmNvbToyMjc5MFwvdnpjb25uZWN0XC8iLCJqdGkiOiI3NjVhNzk4Ny00MDVjLTRkODMtOWYxYy0zYjIxYmY5NWQxYmMiLCJpYXQiOjE0ODIzMDYyMzJ9.mec7LstbmDt3uRpk8ddjV__xbRI8zo9AHDWWObg1lcu2oannAmajg0jKHtwr8Hznq_YAinvHiYqoCjggArxYLbJuUmbQYdsX3jmMNHd0IvpG3h0mkWDSXdMN5acQ7IlyUUnsMGYF3ac1EMBtSNMGab_hlwXYE4sf9XccviYEB5w","token_type":"Bearer","expires_in":3599,"scope":"openid","id_token":"eyJhbGciOiJSUzI1NiIsImtpZCI6InJzYTEifQ.eyJleHAiOjE0ODIzMDY4MzIsInN1YiI6IjljOTNhODBiLWE4NjUtNDBiZC05NGE4LThhNjgxMDBhNzY5MiIsImF1ZCI6WyJjMmMwZjg4ZC1lYzQ4LTRhMjEtYjJmZS0wZjI2NWIzMTcxNTciXSwiaXNzIjoiaHR0cHM6XC9cL2F1dGguc3Zjcy52ZXJpem9uLmNvbToyMjc5MFwvdnpjb25uZWN0XC8iLCJpYXQiOjE0ODIzMDYyMzIsImtpZCI6InJzYTEifQ.zB6vikGPyEq8LvyuYHmJW8Adi_azn3fPYz4Yuv0aSub9X-9ZLrDoUDmnGZHK_WTmWl_AoLRbFZiRhtJeocJZN9rvI1ywsXDD_EXKGjly5ZIf7DzXIM7kL4VeLfaM2wYcbYPyOeD9nDQPWja9_Xje3qnxJ8pAMUye1W9ATUqpbcU"}
1.343950 AccessTokenResponse: {
  "access_token": "eyJhbGciOiJSUzI1NiJ9.eyJleHAiOjE0ODIzMDk4MzIsImF1ZCI6WyJjMmMwZjg4ZC1lYzQ4LTRhMjEtYjJmZS0wZjI2NWIzMTcxNTciXSwiaXNzIjoiaHR0cHM6XC9cL2F1dGguc3Zjcy52ZXJpem9uLmNvbToyMjc5MFwvdnpjb25uZWN0XC8iLCJqdGkiOiI3NjVhNzk4Ny00MDVjLTRkODMtOWYxYy0zYjIxYmY5NWQxYmMiLCJpYXQiOjE0ODIzMDYyMzJ9.mec7LstbmDt3uRpk8ddjV__xbRI8zo9AHDWWObg1lcu2oannAmajg0jKHtwr8Hznq_YAinvHiYqoCjggArxYLbJuUmbQYdsX3jmMNHd0IvpG3h0mkWDSXdMN5acQ7IlyUUnsMGYF3ac1EMBtSNMGab_hlwXYE4sf9XccviYEB5w",
  "expires_in": 3599,
  "id_token": {
    "claims": {
      "aud": [
        "c2c0f88d-ec48-4a21-b2fe-0f265b317157"
      ],
      "exp": 1482306832,
      "iat": 1482306232,
      "iss": "https://auth.svcs.verizon.com:22790/vzconnect/",
      "kid": "rsa1",
      "sub": "9c93a80b-a865-40bd-94a8-8a68100a7692"
    },
    "jws header parameters": {
      "alg": "RS256",
      "kid": "rsa1"
    }
  },
  "scope": "openid",
  "token_type": "Bearer"
}
1.356646 ------------ AccessTokenRequest ------------
1.357137 --> URL: https://auth.svcs.verizon.com:22790/vzconnect/token
1.357144 --> BODY: code=9B8T3P&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60784%2Fauthz_cb
1.357157 --> HEADERS: {'Content-Type': 'application/x-www-form-urlencoded', 'Authorization': u'Basic YzJjMGY4OGQtZWM0OC00YTIxLWIyZmUtMGYyNjViMzE3MTU3OmFoamVpQ2tfMFhlaExYUlVUR3BaYlp0dFNxQlcyaWVVVTRNaVVDZy1TbUNYZm1IRU50em9Xc1B0al9CVUxTOWRtSHB5TmU3TkJCV3ZCcmw4bTF3cmln'}
1.530347 <-- STATUS: 400
1.530490 ErrorResponse: {
  "error": "invalid_grant",
  "error_description": "JpaAuthorizationCodeRepository: no authorization code found for value 9B8T3P"
}
1.543247 ==== END ====

Result

PASSED