0 | phase | <--<-- 0 --- Webfinger -->--> |
0 | not expected to do | WebFinger |
0 | phase | <--<-- 1 --- Discovery -->--> |
0 | provider_config | kwargs:{'issuer': 'https://isamfed.com:30443/test'}
|
0 | http response | url:https://isamfed.com:30443/test/.well-known/openid-configuration status_code:200
|
0 | ProviderConfigurationResponse | {
"authorization_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/authorize",
"claims_parameter_supported": false,
"claims_supported": [
"realmName",
"preferred_username",
"given_name",
"uid",
"upn",
"groupIds",
"employee_id",
"name",
"tenantId",
"mobile_number",
"department",
"job_title",
"family_name",
"email"
],
"device_authorize_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/device_authorize",
"grant_types_supported": [
"urn:ietf:params:oauth:grant-type:jwt-bearer",
"implicit",
"urn:ietf:params:oauth:grant-type:saml2-bearer",
"urn:ietf:params:oauth:grant-type:device_code",
"client_credentials",
"password",
"authorization_code",
"refresh_token"
],
"id_token_encryption_alg_values_supported": [
"RSA-OAEP-256"
],
"id_token_encryption_enc_values_supported": [
"A128CBC-HS256"
],
"id_token_signing_alg_values_supported": [
"RS256"
],
"introspect_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/introspect",
"issuer": "https://isamfed.com:30443/test",
"jwks_uri": "https://isamfed.com:30443/mga/sps/jwks",
"name": "OIDCDefinition",
"poc": "https://isamfed.com:30443/mga/",
"registration_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition",
"request_parameter_supported": true,
"request_uri_parameter_supported": true,
"require_request_uri_registration": false,
"response_modes_supported": [
"fragment",
"form_post"
],
"response_types_supported": [
"token",
"id_token",
"token id_token",
"code",
"code id_token",
"code token id_token",
"code token",
"none"
],
"revocation_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/revoke",
"subject_types_supported": [
"public"
],
"token_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/token",
"token_endpoint_auth_methods_supported": [
"private_key_jwt",
"client_secret_post",
"client_secret_basic"
],
"user_authorize_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/user_authorize",
"userinfo_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/userinfo",
"userinfo_signing_alg_values_supported": [
"RS256"
],
"version": "3.0"
}
|
0 | phase | <--<-- 2 --- Registration -->--> |
0 | register | kwargs:{'response_types': ['code id_token token'], 'grant_types': ['authorization_code', 'implicit'], 'application_name': 'OIC test tool', 'application_type': 'web', 'redirect_uris': ['https://op.certification.openid.net:61737/authz_cb'], 'contacts': ['roland@example.com'], 'post_logout_redirect_uris': ['https://op.certification.openid.net:61737/logout'], 'url': 'https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition', 'jwks_uri': 'https://op.certification.openid.net:61737/static/jwks_61737.json', 'token_endpoint_auth_method': 'private_key_jwt'}
|
0 | RegistrationRequest | {
"application_type": "web",
"contacts": [
"roland@example.com"
],
"grant_types": [
"authorization_code",
"implicit"
],
"jwks_uri": "https://op.certification.openid.net:61737/static/jwks_61737.json",
"post_logout_redirect_uris": [
"https://op.certification.openid.net:61737/logout"
],
"redirect_uris": [
"https://op.certification.openid.net:61737/authz_cb"
],
"response_types": [
"code id_token token"
],
"token_endpoint_auth_method": "private_key_jwt"
}
|
1 | http response | url:https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition status_code:200
|
1 | RegistrationResponse | {
"application_type": "web",
"client_id": "YMPx1pDvyroNu6qpu1wO",
"client_id_issued_at": 1560784053,
"client_secret": "c2gQw86VaEhUey1jhyrt",
"client_secret_expires_at": 0,
"contacts": [
"roland@example.com"
],
"grant_types": [
"authorization_code",
"implicit"
],
"jwks_uri": "https://op.certification.openid.net:61737/static/jwks_61737.json",
"post_logout_redirect_uris": [
"https://op.certification.openid.net:61737/logout"
],
"redirect_uris": [
"https://op.certification.openid.net:61737/authz_cb"
],
"registration_access_token": "PkKlrmeTk5AlTHpwDJGF",
"registration_client_uri": "https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition?client_id=YMPx1pDvyroNu6qpu1wO",
"response_types": [
"code",
"id_token",
"token"
],
"token_endpoint_auth_method": "private_key_jwt"
}
|
1 | phase | <--<-- 3 --- Note -->--> |
1 | phase | <--<-- 4 --- AsyncAuthn -->--> |
1 | AuthorizationRequest | {
"client_id": "YMPx1pDvyroNu6qpu1wO",
"nonce": "GVBETCdNUFBoeP4t",
"redirect_uri": "https://op.certification.openid.net:61737/authz_cb",
"response_type": "code id_token token",
"scope": "openid",
"state": "C8HpCT0PShYIRwDV"
}
|
1 | redirect url | https://isamfed.com:30443/mga/sps/oauth/oauth20/authorize?state=C8HpCT0PShYIRwDV&nonce=GVBETCdNUFBoeP4t&response_type=code+id_token+token&scope=openid&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61737%2Fauthz_cb&client_id=YMPx1pDvyroNu6qpu1wO |
1 | redirect | https://isamfed.com:30443/mga/sps/oauth/oauth20/authorize?state=C8HpCT0PShYIRwDV&nonce=GVBETCdNUFBoeP4t&response_type=code+id_token+token&scope=openid&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61737%2Fauthz_cb&client_id=YMPx1pDvyroNu6qpu1wO |
2 | http args | {} |
3 | response | URL with fragment |
3 | response | access_token=6rUdIgWgWkQViLqS12rh&state=C8HpCT0PShYIRwDV&expires_in=3599&token_type=bearer&code=On0Kcga6IyPDGfQdwxA9TRyKV795I7&scope=openid&id_token=eyJhbGciOiJSU0EtT0FFUC0yNTYiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2Iiwia2lkIjoiZ3RINHYzWXIyUXFMcmVCU3owQnlRUTh2a2Y4ZUZvMUtJaXQzcy0zQmJ3dyIsImN0eSI6IkpXVCJ9.BjYyzTR_DL54-Jtgt5Dh5pX1a6dy_nSK49bHiIZYQ7nHsYH4Z6YsSLFmG4o-RDQZCGcAp1_wQAEn1uoY895EN8xXGJ4m6hw9vc5DKA29lnc8nStz3Z7lARSyUiT4rnnBN3vrPxhjZlXKyxnrMJSYmX3XogcGwXsEqV2ivU_HF_tQoyI3p5IctsYw9ynPuhxB1tfEX2vsST-sLIxHW2p9hQ7RcjE3I8wY6lkJGsBS5TMM3Lgc2APcNkHl5B1zQfmLbsc_tNQXDDFk3PKnN2wZkjqQxqTgqeHbLEpK7pp7vvvAnEaInyy2c0-9wTGxJG41KYBYA07-tB9Zfy1qYEgOLQ.hVp6f0Tq2m2uuE3b6TTmUw.cy3IyFgQgTwMnItDWyrplWX9UPhov8qMHgtzV8B188C_N72EJFgwWpzcL8FfyElygQL1jPbaBUOhXE2uXVT34zk481ZqjtijKhdRmkBZZ1peIE_CjvtpCiWc-wr61tCBHggwciC5Y57l6Z9LdBbHBI9PqCywUjGaId6bTTZ61FBi-yC_0kjPBk83AP0wcfMrGSouLTCy8wiYkUVt_7xJ007-CCrXItM0tq9mVTO30Sa5e3yne0iI6deQm6Pg4nnp4fpF9utYLZn1SC82Prw5BFhW1eGiP0xyo6uYIa1F2_65rSVMBJU9CgnUTcUyavvf7anMCarxt7xRkHhdrsbmwR3ATcYPbRQNaLSDBSyzj5GPlCtsf96NA9UA9blRPpH2uJkA5VlafnBPr04XaO0-ltpcUW4MHHp1Bx9l9_mN8wVoVHhAircNgrFEM0vuCeIVIKiwpYCdJXn5XuB0B-hHyCvVq663X-EYfD2xcmw87YVqS2E-lWtP5yi4hSr0JPlbbGjt5u5g9D75hEsQ0pM-pUu5-_oW86IvRhIDtMB9vEAjqu23pg6I25HuBVNLFQ18-VvncAjZaDzvcObUJB9wG8G5B7hNZbLr7mJhCURuaBKDCobPsLgAJIka4cGe5n4FcYftWLSYSA8rFTSYg3SdfZ_2HsZ94QBIdDwGDkDAkA0Qdge5yo-bneK5wJvv64Bo01VikyDRyD0_zXF6w-gB949yJKHugaXe3gZGJUyIyj1wP6rvhCo9ZKJxekuF317eundrqkctjLYD_MIJJB4jwTXXupJlyAaM59n4A4p0ZIcRx4ezlao49ZMk1hoQO72YaIcJp0JMBlDhay0s_U6TBkAayfiVacts4nZKkCCo9Nsnx-affZCb5AggmgczLvQwjzIfMMqOKgC0o7xrCFogPe5RK_b_n-q91pNytqvfifMWYBdP9LuDj7jV1MvVqCel9IOqcmQn7H208UxEWL0LCQ.mrMyWgaQ05TSMKnmenjHPQ |
3 | response | {'access_token': '6rUdIgWgWkQViLqS12rh', 'state': 'C8HpCT0PShYIRwDV', 'expires_in': 3599, 'token_type': 'bearer', 'code': 'On0Kcga6IyPDGfQdwxA9TRyKV795I7', 'scope': 'openid', 'id_token': 'eyJhbGciOiJSU0EtT0FFUC0yNTYiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2Iiwia2lkIjoiZ3RINHYzWXIyUXFMcmVCU3owQnlRUTh2a2Y4ZUZvMUtJaXQzcy0zQmJ3dyIsImN0eSI6IkpXVCJ9.BjYyzTR_DL54-Jtgt5Dh5pX1a6dy_nSK49bHiIZYQ7nHsYH4Z6YsSLFmG4o-RDQZCGcAp1_wQAEn1uoY895EN8xXGJ4m6hw9vc5DKA29lnc8nStz3Z7lARSyUiT4rnnBN3vrPxhjZlXKyxnrMJSYmX3XogcGwXsEqV2ivU_HF_tQoyI3p5IctsYw9ynPuhxB1tfEX2vsST-sLIxHW2p9hQ7RcjE3I8wY6lkJGsBS5TMM3Lgc2APcNkHl5B1zQfmLbsc_tNQXDDFk3PKnN2wZkjqQxqTgqeHbLEpK7pp7vvvAnEaInyy2c0-9wTGxJG41KYBYA07-tB9Zfy1qYEgOLQ.hVp6f0Tq2m2uuE3b6TTmUw.cy3IyFgQgTwMnItDWyrplWX9UPhov8qMHgtzV8B188C_N72EJFgwWpzcL8FfyElygQL1jPbaBUOhXE2uXVT34zk481ZqjtijKhdRmkBZZ1peIE_CjvtpCiWc-wr61tCBHggwciC5Y57l6Z9LdBbHBI9PqCywUjGaId6bTTZ61FBi-yC_0kjPBk83AP0wcfMrGSouLTCy8wiYkUVt_7xJ007-CCrXItM0tq9mVTO30Sa5e3yne0iI6deQm6Pg4nnp4fpF9utYLZn1SC82Prw5BFhW1eGiP0xyo6uYIa1F2_65rSVMBJU9CgnUTcUyavvf7anMCarxt7xRkHhdrsbmwR3ATcYPbRQNaLSDBSyzj5GPlCtsf96NA9UA9blRPpH2uJkA5VlafnBPr04XaO0-ltpcUW4MHHp1Bx9l9_mN8wVoVHhAircNgrFEM0vuCeIVIKiwpYCdJXn5XuB0B-hHyCvVq663X-EYfD2xcmw87YVqS2E-lWtP5yi4hSr0JPlbbGjt5u5g9D75hEsQ0pM-pUu5-_oW86IvRhIDtMB9vEAjqu23pg6I25HuBVNLFQ18-VvncAjZaDzvcObUJB9wG8G5B7hNZbLr7mJhCURuaBKDCobPsLgAJIka4cGe5n4FcYftWLSYSA8rFTSYg3SdfZ_2HsZ94QBIdDwGDkDAkA0Qdge5yo-bneK5wJvv64Bo01VikyDRyD0_zXF6w-gB949yJKHugaXe3gZGJUyIyj1wP6rvhCo9ZKJxekuF317eundrqkctjLYD_MIJJB4jwTXXupJlyAaM59n4A4p0ZIcRx4ezlao49ZMk1hoQO72YaIcJp0JMBlDhay0s_U6TBkAayfiVacts4nZKkCCo9Nsnx-affZCb5AggmgczLvQwjzIfMMqOKgC0o7xrCFogPe5RK_b_n-q91pNytqvfifMWYBdP9LuDj7jV1MvVqCel9IOqcmQn7H208UxEWL0LCQ.mrMyWgaQ05TSMKnmenjHPQ'} |
3 | AuthorizationResponse | {
"access_token": "6rUdIgWgWkQViLqS12rh",
"code": "On0Kcga6IyPDGfQdwxA9TRyKV795I7",
"expires_in": 3599,
"id_token": {
"at_hash": "BLOWSkwow8QyruESti6YUw",
"aud": [
"YMPx1pDvyroNu6qpu1wO"
],
"c_hash": "3xqtvR2Wm-dIFpKlFSAYtQ",
"exp": 1560787474,
"iat": 1560784054,
"iss": "https://isamfed.com:30443/test",
"nonce": "GVBETCdNUFBoeP4t",
"sub": "testuser"
},
"scope": "openid",
"state": "C8HpCT0PShYIRwDV",
"token_type": "bearer"
}
|
3 | phase | <--<-- 5 --- AccessToken -->--> |
3 | request | op_args: {'state': 'C8HpCT0PShYIRwDV'}, req_args: {'redirect_uri': 'https://op.certification.openid.net:61737/authz_cb'} |
3 | do_access_token_request | kwargs:{'request_args': {'redirect_uri': 'https://op.certification.openid.net:61737/authz_cb', 'code': 'On0Kcga6IyPDGfQdwxA9TRyKV795I7', 'state': 'C8HpCT0PShYIRwDV', 'grant_type': 'authorization_code', 'client_id': 'YMPx1pDvyroNu6qpu1wO'}, 'state': 'C8HpCT0PShYIRwDV', 'authn_method': 'private_key_jwt'}
|
3 | AccessTokenRequest | {
"client_assertion": "eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiWU1QeDFwRHZ5cm9OdTZxcHUxd08iLCAic3ViIjogIllNUHgxcER2eXJvTnU2cXB1MXdPIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJ6ajlGU2FYNk5MU1FERDQ0SE5VOXdrWnFERFN1NmlGRSIsICJleHAiOiAxNTYwNzg0NjU1LCAiaWF0IjogMTU2MDc4NDA1NX0.azvEpuYAHCdp_z0LgulBFwR-9MEhfL-4eWXQeimeFfGE_amukwQ9X7PL8vFsplyYFnZAEc_8SbSkdHUMUG8nVD-XxQgYSepnynUAZhp74FbFf2cdwm9j0v9bo69ncMucfkL4OpM1Oc61Ass9TLD5Mi0N3Yn-jr9Ni5eu9WLC02fPzZxY5ZTpQg7HGF2h1QVuwVjs16yoXM5so5Skxo9Eg3Ypf0dSPafkMkrYVF_Kk5OQcqEeQcxRHF1u_BcZU-pVL-C8L6i20XDg7ic6A0cp__qmgenIFYOPDy_nWQc-KAJwFE3_cucdti-BqoCnTXFCYRFrnUHrP2WPESJBgd3lKg",
"client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer",
"code": "On0Kcga6IyPDGfQdwxA9TRyKV795I7",
"grant_type": "authorization_code",
"redirect_uri": "https://op.certification.openid.net:61737/authz_cb",
"state": "C8HpCT0PShYIRwDV"
}
|
3 | request_url | https://isamfed.com:30443/mga/sps/oauth/oauth20/token |
3 | request_http_args | {'headers': {'Content-Type': 'application/x-www-form-urlencoded'}} |
3 | request | grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61737%2Fauthz_cb&code=On0Kcga6IyPDGfQdwxA9TRyKV795I7&state=C8HpCT0PShYIRwDV&client_assertion=eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiWU1QeDFwRHZ5cm9OdTZxcHUxd08iLCAic3ViIjogIllNUHgxcER2eXJvTnU2cXB1MXdPIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJ6ajlGU2FYNk5MU1FERDQ0SE5VOXdrWnFERFN1NmlGRSIsICJleHAiOiAxNTYwNzg0NjU1LCAiaWF0IjogMTU2MDc4NDA1NX0.azvEpuYAHCdp_z0LgulBFwR-9MEhfL-4eWXQeimeFfGE_amukwQ9X7PL8vFsplyYFnZAEc_8SbSkdHUMUG8nVD-XxQgYSepnynUAZhp74FbFf2cdwm9j0v9bo69ncMucfkL4OpM1Oc61Ass9TLD5Mi0N3Yn-jr9Ni5eu9WLC02fPzZxY5ZTpQg7HGF2h1QVuwVjs16yoXM5so5Skxo9Eg3Ypf0dSPafkMkrYVF_Kk5OQcqEeQcxRHF1u_BcZU-pVL-C8L6i20XDg7ic6A0cp__qmgenIFYOPDy_nWQc-KAJwFE3_cucdti-BqoCnTXFCYRFrnUHrP2WPESJBgd3lKg&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer |
4 | http response | url:https://isamfed.com:30443/mga/sps/oauth/oauth20/token status_code:200
|
4 | response | {'access_token': 'U3MeMOXfNcmPkXrqYtNM', 'refresh_token': 'bIzL7DL8CQq9g62bDVPk1iexm8nq7jP9oUkVHdOd', 'scope': 'openid', 'id_token': 'eyJhbGciOiJSU0EtT0FFUC0yNTYiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2Iiwia2lkIjoiZ3RINHYzWXIyUXFMcmVCU3owQnlRUTh2a2Y4ZUZvMUtJaXQzcy0zQmJ3dyIsImN0eSI6IkpXVCJ9.P4jMfykxOChQoUeJLuSIylW7U2ygS-oyaSunFGfknwfACwtBhh8898VLO0TwhNi-ToX_reP2MYKqKblxWKnbw-0fM03zSwLZLMv2gRUO9vPbWOKXyfZaIxXvrEw3_Z9IdfMG8PN9Mvut9Znn5P2k1Id4JgXxjDLwyJ2vIlVD8YEFBTU7QioAg-J9rZLrg2hEWQeeTr-ewpSy1rv1omvy7l5ZoMhrFGWzwMB06ynUHaa6GaQOsxSSMhmUMyD9RDtmgQSMHXuJ0Q-pK8LWxIPVN_XMVPkXbo1HH8EmRGe-wQaU5_OiV-4yF0k_i4OZ_pXIOO-l5-24m0-OITAHg11h8Q.vlgctpVZCozDv_U6K9uFYw.ycoHuyZ_o7Cd5H8kMEjJutRvidj1sdOf6ygjPCohTKiqRrVdj6ZbpgbT71CmODeJ_unC1MYoo50JQIBAudWoouctqjEiWlkDLFAjpamxUa1E6Ym5mIlity6nj6Dk4twOnban4MTAUx3c_DbNrtbHnrHU9xRpQi3JkyTTxOnCQkor9n9_TWaWLMUCkmmfxYrn4RtCX8q_u2cndxGz44c1XCMLDi-xdhCh4jbtc-fwC5Z1lIPAVOYDPcxRmjOBXRlgy2t6Q9YEtKrYVQb53WHP_e5_1jSDmA04WqRJZgzzg26-U9OW0-wNaMs-OKX-7tMEUiIuiXA7Ded0lRqfikR4nMRxmGfWuuYQmjdR_kRixfMfx0V8YI35PXMnk0nFQ4Fwaaq3sREa-Ol40KCCkJbzRdUdNrgOM-WOJqlUq3XCFMbtl3ThmGc_yT2pHtzR-v_gUVCK68Ew1rCMBBZ_hFvAuVkJoKcEIyUhk422wSFQqIJUaXh6r78eZ6CYGnQi69KIRZA9upK2RmI8XF-_FNoPQZ9LIl_ZH0MzZKP_ipnpMRFMgFKOKywZe-qsV8DUipZSTKQ1SlqePZEF9PhJv6aLT5zs7OfMgw0YFEwlwhb1W0Da0CTDT0Z-TDqJZULEYUwNDjCccLak2BO3K3sP24CpwbS74Id5rlLjCMnYr9IJPUDCs3Rmgeq-HRh4vTRHwOrZveZvht7euBse7FUHU2-hTr5d6dblQOQWHEHfCmgvh4fKrBUJtzFXJfqVBdT5UJMA8b4PhLixO_oYnTVqbAL0vIicbNCbYHBl6y4Op39qyz7JdM4y5EpDZaBwg7Q0fJwcEUoGY2afmEPuE_GG3_1m7KRBpy0A6vpZdC1Ne9ZDFVSBZuqPH1AVm-4ilu60QkEVhKKpML4ZQTNIS2ZIG95fs53E5d0dOjQYHgo744kB2s5ItEiQmS6U_io_UjIpZS3OakfqdDo5ELZswC0k0PlQpw.SSkK8tJ4pNYXg-p6HjP61w', 'token_type': 'bearer', 'expires_in': 3599} |
4 | AccessTokenResponse | {
"access_token": "U3MeMOXfNcmPkXrqYtNM",
"expires_in": 3599,
"id_token": {
"at_hash": "cfS8DYQ6eTtTDcIDQ-zK-A",
"aud": [
"YMPx1pDvyroNu6qpu1wO"
],
"exp": 1560787475,
"iat": 1560784055,
"iss": "https://isamfed.com:30443/test",
"nonce": "GVBETCdNUFBoeP4t",
"rt_hash": "Ky_dimB2b4e1tIFeIlQXpw",
"sub": "testuser"
},
"refresh_token": "bIzL7DL8CQq9g62bDVPk1iexm8nq7jP9oUkVHdOd",
"scope": "openid",
"token_type": "bearer"
}
|
4 | jws header | {'kid': '_uhPdeGrTWxobFeH0XbzjJpRrzp3CB9nknx1yFV1G-0', 'alg': 'RS256'} |
4 | jwe header | {'alg': 'RSA-OAEP-256', 'enc': 'A128CBC-HS256', 'kid': 'gtH4v3Yr2QqLreBSz0ByQQ8vkf8eFo1KIit3s-3Bbww', 'cty': 'JWT'} |
4 | phase | <--<-- 6 --- AccessToken -->--> |
4 | request | op_args: {'state': 'C8HpCT0PShYIRwDV'}, req_args: {'redirect_uri': 'https://op.certification.openid.net:61737/authz_cb'} |
4 | do_access_token_request | kwargs:{'request_args': {'redirect_uri': 'https://op.certification.openid.net:61737/authz_cb', 'code': 'On0Kcga6IyPDGfQdwxA9TRyKV795I7', 'state': 'C8HpCT0PShYIRwDV', 'grant_type': 'authorization_code', 'client_id': 'YMPx1pDvyroNu6qpu1wO'}, 'state': 'C8HpCT0PShYIRwDV', 'authn_method': 'private_key_jwt'}
|
4 | AccessTokenRequest | {
"client_assertion": "eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiWU1QeDFwRHZ5cm9OdTZxcHUxd08iLCAic3ViIjogIllNUHgxcER2eXJvTnU2cXB1MXdPIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJIc2tQeUFTMGt1Q3hXTWFWN0JLR3lIb3hxZFlBMm55cCIsICJleHAiOiAxNTYwNzg0NjU2LCAiaWF0IjogMTU2MDc4NDA1Nn0.u0zJ0Kbfpxe5E0Rk4xatqzIBXI7Ej7ql833PHmp2dYG0v5actpnPld6n4Ikbo6Fl24ezmHfBIgUNObiyVjgm_bijamc9IxJbjugqEs2KcqdsQ5sqDR6HFw_jefPfQKwoLp6donT1Ua7pfLXBhgn8pSd5xyeul2Lsm-ro5BffozDfH4XdYhhvagfZMEjgGSFtrcScsIkJK3sgF3hETJpeqjVFbLxjsFIWsxZnIKCm30485WtmtLq5MYEloNu84h0gr4cQccUdZy7l2r8xbAyEFeKBp_C44RRkZXOiI-MWCyVaXQxN7ZzM6tlAOc3Ajjo_tm8uYDVUpkJqYykYgsMLPg",
"client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer",
"code": "On0Kcga6IyPDGfQdwxA9TRyKV795I7",
"grant_type": "authorization_code",
"redirect_uri": "https://op.certification.openid.net:61737/authz_cb",
"state": "C8HpCT0PShYIRwDV"
}
|
4 | request_url | https://isamfed.com:30443/mga/sps/oauth/oauth20/token |
4 | request_http_args | {'headers': {'Content-Type': 'application/x-www-form-urlencoded'}} |
4 | request | grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61737%2Fauthz_cb&code=On0Kcga6IyPDGfQdwxA9TRyKV795I7&state=C8HpCT0PShYIRwDV&client_assertion=eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiWU1QeDFwRHZ5cm9OdTZxcHUxd08iLCAic3ViIjogIllNUHgxcER2eXJvTnU2cXB1MXdPIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJIc2tQeUFTMGt1Q3hXTWFWN0JLR3lIb3hxZFlBMm55cCIsICJleHAiOiAxNTYwNzg0NjU2LCAiaWF0IjogMTU2MDc4NDA1Nn0.u0zJ0Kbfpxe5E0Rk4xatqzIBXI7Ej7ql833PHmp2dYG0v5actpnPld6n4Ikbo6Fl24ezmHfBIgUNObiyVjgm_bijamc9IxJbjugqEs2KcqdsQ5sqDR6HFw_jefPfQKwoLp6donT1Ua7pfLXBhgn8pSd5xyeul2Lsm-ro5BffozDfH4XdYhhvagfZMEjgGSFtrcScsIkJK3sgF3hETJpeqjVFbLxjsFIWsxZnIKCm30485WtmtLq5MYEloNu84h0gr4cQccUdZy7l2r8xbAyEFeKBp_C44RRkZXOiI-MWCyVaXQxN7ZzM6tlAOc3Ajjo_tm8uYDVUpkJqYykYgsMLPg&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer |
4 | http response | url:https://isamfed.com:30443/mga/sps/oauth/oauth20/token status_code:400 message:{"error_description":"FBTOAU211E The [authorization_grant] received of type [authorization_code] does not exist.","error":"invalid_grant"}
|
4 | response | {'error_description': 'FBTOAU211E The [authorization_grant] received of type [authorization_code] does not exist.', 'error': 'invalid_grant'} |
4 | event | Got expected error |
4 | TokenErrorResponse | {
"error": "invalid_grant",
"error_description": "FBTOAU211E The [authorization_grant] received of type [authorization_code] does not exist."
}
|
4 | phase | <--<-- 7 --- Done -->--> |
4 | end | |
4 | assertion | CheckHTTPErrorResponse |
4 | condition | check-http-error-response: status=OK [Checks that an error code is either 400 or 401 which are the only ones accepted by OAuth2/OIDC.] |
4 | assertion | VerifyResponse |
4 | condition | verify-response: status=OK [Checks that the last response was one of a possible set of OpenID Connect Responses] |
4 | condition | Done: status=OK |