0 | phase | <--<-- 0 --- Note -->--> |
0 | phase | <--<-- 1 --- Webfinger -->--> |
0 | not expected to do | WebFinger |
0 | phase | <--<-- 2 --- Discovery -->--> |
0 | provider_config | kwargs:{'issuer': 'https://isamfed.com:30443/test'}
|
0 | http response | url:https://isamfed.com:30443/test/.well-known/openid-configuration status_code:200
|
0 | ProviderConfigurationResponse | {
"authorization_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/authorize",
"claims_parameter_supported": false,
"claims_supported": [
"realmName",
"preferred_username",
"given_name",
"uid",
"upn",
"groupIds",
"employee_id",
"name",
"tenantId",
"mobile_number",
"department",
"job_title",
"family_name",
"email"
],
"device_authorize_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/device_authorize",
"grant_types_supported": [
"urn:ietf:params:oauth:grant-type:jwt-bearer",
"implicit",
"urn:ietf:params:oauth:grant-type:saml2-bearer",
"urn:ietf:params:oauth:grant-type:device_code",
"client_credentials",
"password",
"authorization_code",
"refresh_token"
],
"id_token_encryption_alg_values_supported": [
"RSA-OAEP-256"
],
"id_token_encryption_enc_values_supported": [
"A128CBC-HS256"
],
"id_token_signing_alg_values_supported": [
"RS256"
],
"introspect_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/introspect",
"issuer": "https://isamfed.com:30443/test",
"jwks_uri": "https://isamfed.com:30443/mga/sps/jwks",
"name": "OIDCDefinition",
"poc": "https://isamfed.com:30443/mga/",
"registration_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition",
"request_parameter_supported": true,
"request_uri_parameter_supported": true,
"require_request_uri_registration": false,
"response_modes_supported": [
"fragment",
"form_post"
],
"response_types_supported": [
"token",
"id_token",
"token id_token",
"code",
"code id_token",
"code token id_token",
"code token",
"none"
],
"revocation_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/revoke",
"subject_types_supported": [
"public"
],
"token_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/token",
"token_endpoint_auth_methods_supported": [
"private_key_jwt",
"client_secret_post",
"client_secret_basic"
],
"user_authorize_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/user_authorize",
"userinfo_endpoint": "https://isamfed.com:30443/mga/sps/oauth/oauth20/userinfo",
"userinfo_signing_alg_values_supported": [
"RS256"
],
"version": "3.0"
}
|
0 | phase | <--<-- 3 --- Registration -->--> |
0 | register | kwargs:{'response_types': ['code id_token'], 'grant_types': ['authorization_code', 'implicit'], 'application_name': 'OIC test tool', 'application_type': 'web', 'redirect_uris': ['https://op.certification.openid.net:61716/authz_cb'], 'contacts': ['roland@example.com'], 'post_logout_redirect_uris': ['https://op.certification.openid.net:61716/logout'], 'url': 'https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition', 'jwks_uri': 'https://op.certification.openid.net:61716/static/jwks_61716.json', 'token_endpoint_auth_method': 'private_key_jwt'}
|
0 | RegistrationRequest | {
"application_type": "web",
"contacts": [
"roland@example.com"
],
"grant_types": [
"implicit",
"authorization_code"
],
"jwks_uri": "https://op.certification.openid.net:61716/static/jwks_61716.json",
"post_logout_redirect_uris": [
"https://op.certification.openid.net:61716/logout"
],
"redirect_uris": [
"https://op.certification.openid.net:61716/authz_cb"
],
"response_types": [
"code id_token"
],
"token_endpoint_auth_method": "private_key_jwt"
}
|
1 | http response | url:https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition status_code:200
|
1 | RegistrationResponse | {
"application_type": "web",
"client_id": "Gh8oD5rvqO3MtDJ5d8Wj",
"client_id_issued_at": 1560784878,
"client_secret": "508K7v3DOBRQfBv3m1tB",
"client_secret_expires_at": 0,
"contacts": [
"roland@example.com"
],
"grant_types": [
"implicit",
"authorization_code"
],
"jwks_uri": "https://op.certification.openid.net:61716/static/jwks_61716.json",
"post_logout_redirect_uris": [
"https://op.certification.openid.net:61716/logout"
],
"redirect_uris": [
"https://op.certification.openid.net:61716/authz_cb"
],
"registration_access_token": "T0TpbQsNdleGSKaoF6Wv",
"registration_client_uri": "https://isamfed.com:30443/mga/sps/oauth/oauth20/register/OIDCDefinition?client_id=Gh8oD5rvqO3MtDJ5d8Wj",
"response_types": [
"code",
"id_token"
],
"token_endpoint_auth_method": "private_key_jwt"
}
|
1 | phase | <--<-- 4 --- AsyncAuthn -->--> |
1 | AuthorizationRequest | {
"client_id": "Gh8oD5rvqO3MtDJ5d8Wj",
"nonce": "NeC6K4a6H20ssEZJ",
"redirect_uri": "https://op.certification.openid.net:61716/authz_cb",
"response_type": "code id_token",
"scope": "openid",
"state": "IQEXKD3Q7vU3M6vG"
}
|
1 | redirect url | https://isamfed.com:30443/mga/sps/oauth/oauth20/authorize?state=IQEXKD3Q7vU3M6vG&nonce=NeC6K4a6H20ssEZJ&response_type=code+id_token&scope=openid&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61716%2Fauthz_cb&client_id=Gh8oD5rvqO3MtDJ5d8Wj |
1 | redirect | https://isamfed.com:30443/mga/sps/oauth/oauth20/authorize?state=IQEXKD3Q7vU3M6vG&nonce=NeC6K4a6H20ssEZJ&response_type=code+id_token&scope=openid&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61716%2Fauthz_cb&client_id=Gh8oD5rvqO3MtDJ5d8Wj |
1 | http args | {} |
2 | response | URL with fragment |
2 | response | id_token=eyJhbGciOiJSU0EtT0FFUC0yNTYiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2Iiwia2lkIjoiZ3RINHYzWXIyUXFMcmVCU3owQnlRUTh2a2Y4ZUZvMUtJaXQzcy0zQmJ3dyIsImN0eSI6IkpXVCJ9.OJimuH5YPwSRmnnRufjX0BBbhxl38EiAsoIDoQH3zOdvlLb46Yg58DdUBHVpftMpVYTEA6U5zrtipxGO2Y43u_iCgXibs3gdLKN_RzjlVtgvhXlliByOAZTLjNCyuZn8s7NYdpQg9nMi1rzzLKSeEAGzp4IoT0T_53X1-ihv3eVyJq9BiMpi21-VrVai5ZadES8dSLhuDgb0mdE_w_n8x2KAbo1F6OPRtLj4obsFvco0cwaNsPYlEoooeyMZNlDNIiQxdAsQryjWgVIpte0sniVUlx11AwVpolK_yfHtUAb_D0i6ORLbIM9DB3Xs6eTLLe3TesVt6Q1oN9Da5y8L-g.DiJp-bHQehWCNrdrwPCKMg.3UeY_QjAPTCXBSRaxRMsvW7uD_4EN5ILA0OabYsu7rvvIATNL202eLxFSGhyVQXh28Rn3qkvMHn0ebUFeCce_nnYOgCMYiRet_F2OIXDLB2Od9vgvtQ7ZRPQzD48Tm7py4t9_DONdw6MOuAdva9v8bkfTlKw_X9-gh0KzZRWGCaEtpNBYAGdTFnmXBNLUyLtOdDYzFE2ZD2-F2hWhx-jA1X81uVaoK_vcZHT66tth4-XZUTbtBPngHRP47_8Z-FAgGmeEFQlI7mzjrJ25_YiinP1uzfFajmkAFsQZf9a-jncLsgnPth6RXTtcFN2yQkTFX7nv2W6LJ8QPJJYIjbofVwfXgQQ_eo06GwZ6lsPS2R7Tg4tLwWd5VSq7ZiqDhl0UGVdTq_jQmgFTa_JXk7i9Otk58AWN8mAkaiYz2mCF9exlDSgA0OW0TGkx-RlRNd0qtcVEMIzX_xzkvTCBeWUzqWZRQsDrfgoKAEEI6vhcWBEGWvtRZJpjpNPj16EPpQaJHpwa7M52uOzBU1DPHH9AHILIHA9nPbAAM4nX1OqfFaE2K_-N6pRGN54RqoG1KAd3xdsS9-aaGFJKkv3r7LY-Y85J3eC10b7v6Rky9DWNq6ljraagWRwwIZBc5K7X1JWRbNRJD6tM4eg0x4n0VyzoNVi6ovLBlPncH5mE8XxUk0hlFnVl5ysjwLrEeAFurG2dpvYEizHqv8StrDpw_33TTSRI405y96j8qb0KipMWeaY6Xhql1mW8JAeEbjkE59p14t36e7aJJKZWXWIOARqKAcKbRiKpAPn0FZZ5zhsZOETDUSh4fiMMq6wscTS1rDVxgIX55am6Ql44baY0l4LLyXaD78eH0jlX4A1P9fWyOPNv0IM-2O2-9Vk-dAB5syWNaVam0e0xueIRDrc8VUveQ.Un1U8mlhLhPPbFakSmhfAA&state=IQEXKD3Q7vU3M6vG&code=qPekNVyOK8gcXcIUQgPd3U0O5tQfzx |
2 | response | {'id_token': 'eyJhbGciOiJSU0EtT0FFUC0yNTYiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2Iiwia2lkIjoiZ3RINHYzWXIyUXFMcmVCU3owQnlRUTh2a2Y4ZUZvMUtJaXQzcy0zQmJ3dyIsImN0eSI6IkpXVCJ9.OJimuH5YPwSRmnnRufjX0BBbhxl38EiAsoIDoQH3zOdvlLb46Yg58DdUBHVpftMpVYTEA6U5zrtipxGO2Y43u_iCgXibs3gdLKN_RzjlVtgvhXlliByOAZTLjNCyuZn8s7NYdpQg9nMi1rzzLKSeEAGzp4IoT0T_53X1-ihv3eVyJq9BiMpi21-VrVai5ZadES8dSLhuDgb0mdE_w_n8x2KAbo1F6OPRtLj4obsFvco0cwaNsPYlEoooeyMZNlDNIiQxdAsQryjWgVIpte0sniVUlx11AwVpolK_yfHtUAb_D0i6ORLbIM9DB3Xs6eTLLe3TesVt6Q1oN9Da5y8L-g.DiJp-bHQehWCNrdrwPCKMg.3UeY_QjAPTCXBSRaxRMsvW7uD_4EN5ILA0OabYsu7rvvIATNL202eLxFSGhyVQXh28Rn3qkvMHn0ebUFeCce_nnYOgCMYiRet_F2OIXDLB2Od9vgvtQ7ZRPQzD48Tm7py4t9_DONdw6MOuAdva9v8bkfTlKw_X9-gh0KzZRWGCaEtpNBYAGdTFnmXBNLUyLtOdDYzFE2ZD2-F2hWhx-jA1X81uVaoK_vcZHT66tth4-XZUTbtBPngHRP47_8Z-FAgGmeEFQlI7mzjrJ25_YiinP1uzfFajmkAFsQZf9a-jncLsgnPth6RXTtcFN2yQkTFX7nv2W6LJ8QPJJYIjbofVwfXgQQ_eo06GwZ6lsPS2R7Tg4tLwWd5VSq7ZiqDhl0UGVdTq_jQmgFTa_JXk7i9Otk58AWN8mAkaiYz2mCF9exlDSgA0OW0TGkx-RlRNd0qtcVEMIzX_xzkvTCBeWUzqWZRQsDrfgoKAEEI6vhcWBEGWvtRZJpjpNPj16EPpQaJHpwa7M52uOzBU1DPHH9AHILIHA9nPbAAM4nX1OqfFaE2K_-N6pRGN54RqoG1KAd3xdsS9-aaGFJKkv3r7LY-Y85J3eC10b7v6Rky9DWNq6ljraagWRwwIZBc5K7X1JWRbNRJD6tM4eg0x4n0VyzoNVi6ovLBlPncH5mE8XxUk0hlFnVl5ysjwLrEeAFurG2dpvYEizHqv8StrDpw_33TTSRI405y96j8qb0KipMWeaY6Xhql1mW8JAeEbjkE59p14t36e7aJJKZWXWIOARqKAcKbRiKpAPn0FZZ5zhsZOETDUSh4fiMMq6wscTS1rDVxgIX55am6Ql44baY0l4LLyXaD78eH0jlX4A1P9fWyOPNv0IM-2O2-9Vk-dAB5syWNaVam0e0xueIRDrc8VUveQ.Un1U8mlhLhPPbFakSmhfAA', 'state': 'IQEXKD3Q7vU3M6vG', 'code': 'qPekNVyOK8gcXcIUQgPd3U0O5tQfzx'} |
2 | AuthorizationResponse | {
"code": "qPekNVyOK8gcXcIUQgPd3U0O5tQfzx",
"id_token": {
"aud": [
"Gh8oD5rvqO3MtDJ5d8Wj"
],
"c_hash": "wOj4p6JeWH7sZLqvhreKcw",
"exp": 1560788299,
"iat": 1560784879,
"iss": "https://isamfed.com:30443/test",
"nonce": "NeC6K4a6H20ssEZJ",
"sub": "testuser"
},
"state": "IQEXKD3Q7vU3M6vG"
}
|
2 | phase | <--<-- 5 --- AccessToken -->--> |
2 | request | op_args: {'state': 'IQEXKD3Q7vU3M6vG'}, req_args: {'redirect_uri': 'https://op.certification.openid.net:61716/authz_cb'} |
2 | do_access_token_request | kwargs:{'request_args': {'redirect_uri': 'https://op.certification.openid.net:61716/authz_cb', 'code': 'qPekNVyOK8gcXcIUQgPd3U0O5tQfzx', 'state': 'IQEXKD3Q7vU3M6vG', 'grant_type': 'authorization_code', 'client_id': 'Gh8oD5rvqO3MtDJ5d8Wj'}, 'state': 'IQEXKD3Q7vU3M6vG', 'authn_method': 'private_key_jwt'}
|
2 | AccessTokenRequest | {
"client_assertion": "eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiR2g4b0Q1cnZxTzNNdERKNWQ4V2oiLCAic3ViIjogIkdoOG9ENXJ2cU8zTXRESjVkOFdqIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJ4UzRrd3RxSVRqSzYzWEFjcGxvczBqdndCTWF5c2s5NiIsICJleHAiOiAxNTYwNzg1NDgwLCAiaWF0IjogMTU2MDc4NDg4MH0.mr6wjNxQrO9JwqD1sss2_dcEb7yzlqyXWIX_9jKoa8CMK-4s1k3lBFsw_J0BUQjPKxJcBnl42dqXbAn61FsZVPuKw1a638lywebDLurdoIH9AFFQG_KP6StmsVAa9MNu_BhhT8vxTdMhsNL8Ktuf9Oe8nkPCmjq6e9BpeskGgBcGFa8p49D3z4jz2wNgUyz9rkLo_JEjCrUcIdFPA-v6rLi9OZJtzfxsOx58NOovOn_ZYmnsreYr9gfI6pVE09MHe8Q1Z1qs8uMgAhny4JezINIEAPkdVDVMMFpvyQyg-QqrL6ImXIeGVfyxt7yIaI5A4OanwiPGdz-ajNNM57hFHg",
"client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer",
"code": "qPekNVyOK8gcXcIUQgPd3U0O5tQfzx",
"grant_type": "authorization_code",
"redirect_uri": "https://op.certification.openid.net:61716/authz_cb",
"state": "IQEXKD3Q7vU3M6vG"
}
|
2 | request_url | https://isamfed.com:30443/mga/sps/oauth/oauth20/token |
2 | request_http_args | {'headers': {'Content-Type': 'application/x-www-form-urlencoded'}} |
2 | request | grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61716%2Fauthz_cb&code=qPekNVyOK8gcXcIUQgPd3U0O5tQfzx&state=IQEXKD3Q7vU3M6vG&client_assertion=eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiR2g4b0Q1cnZxTzNNdERKNWQ4V2oiLCAic3ViIjogIkdoOG9ENXJ2cU8zTXRESjVkOFdqIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJ4UzRrd3RxSVRqSzYzWEFjcGxvczBqdndCTWF5c2s5NiIsICJleHAiOiAxNTYwNzg1NDgwLCAiaWF0IjogMTU2MDc4NDg4MH0.mr6wjNxQrO9JwqD1sss2_dcEb7yzlqyXWIX_9jKoa8CMK-4s1k3lBFsw_J0BUQjPKxJcBnl42dqXbAn61FsZVPuKw1a638lywebDLurdoIH9AFFQG_KP6StmsVAa9MNu_BhhT8vxTdMhsNL8Ktuf9Oe8nkPCmjq6e9BpeskGgBcGFa8p49D3z4jz2wNgUyz9rkLo_JEjCrUcIdFPA-v6rLi9OZJtzfxsOx58NOovOn_ZYmnsreYr9gfI6pVE09MHe8Q1Z1qs8uMgAhny4JezINIEAPkdVDVMMFpvyQyg-QqrL6ImXIeGVfyxt7yIaI5A4OanwiPGdz-ajNNM57hFHg&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer |
3 | http response | url:https://isamfed.com:30443/mga/sps/oauth/oauth20/token status_code:200
|
3 | response | {'access_token': 'HzfK2HqG6P5u82eAju93', 'refresh_token': 'gnnfSZTE6toQ2Qbr288UsrofVek2HX3CQwanT37u', 'scope': 'openid', 'id_token': 'eyJhbGciOiJSU0EtT0FFUC0yNTYiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2Iiwia2lkIjoiZ3RINHYzWXIyUXFMcmVCU3owQnlRUTh2a2Y4ZUZvMUtJaXQzcy0zQmJ3dyIsImN0eSI6IkpXVCJ9.MM0VIrkg6CFAvx6VMv6y_UrFFXbIGITfoaveYac1MSG8cUkGKWMRZF7EttSw4hNMoELaubkZxf1gTO0l7arJ9QhYUifLJi0XKEPrLYKWRWDp2qm9JJEMP8_MI3ERKRY_j9-Y6p4f-0qxJFrW-6ypTnkgHBigrnEFfEMHK-UIZJuoW4a3ToUs5byY5ZV0TvL_BI99Bc6KWFmwyzFtnaHXg9BLymrhUy0jESnWnx7Nff9BTZAOmi4H6-9LnieNzmyUvDSIQJUawh0y6Zc_W4wA6CQphfVtKcBz4o52L5gnvKBRaOCHPS1YuYJrfff5_8wpLgchmBsJxUCZseRiKOkhdw.h-3-lkF0Ua51vwx9w72RBw.Zxn6QkuGb8z_qggzEToAFgJUvhKkavN7K6KMiqNFMJGusNoK_pv9q2T54OS3PcbH7nIVibyk1hAqMynlmrIuHl34S-rqZV_atXi-BoAEVsTO4VOmJhHOhVHS_Os7_LVztcy6QHtW1_6K2YwnoJM8NCt9Vcp3dQxDScX4H7F3YVZFE0ZkmOu2Wtw03RDu5mjK3EULcBCo7xGk3jWXD-xq8CFaQ9jhA3GGu1yGkH5Vk0cXieLjhZfFYUIsCuoBarwKL9FFRF1XJAd1D8CfTVvyIwAvXCNA8kX-ljhl2XvjiXp6REajujdoJahWgecKqA3T699bU7E6xNFoQC2re0eTvZVct_AUtqpxom29V0RlweYjEeSbq5TfCI8KITLw3NlXFfZaG_Y1WnyESNDZAISJGVYC7XngEa78EjZS3drGPZaSiNQ_vYH3GA4nYhE-kAFpnayeB4peh2W7PAwFCkzbQknHL6rpde4VuidDh_6MJ3c4B0VvntNUOK3zE7LFhv_UguywwFy06kPuh587vZyAx6lglrnIPeZVjRag2Z6cFs1mseO5kJiKhuXrCgVvr2a3YRrZOPly5ZMb01CtatUHX51DNRUOfdNYjYEYFrvNO6dTIfXLQWMyIuaNqA4y86w0oeUpWHaNVRSeOJp05GVhjoawGG_bTXwCHpeVHgwl5dbvO8EiMbsnesdk-_TQ603DjHlMDqT7VbUV5uu0frn0aUU-T21TORRTKnXoZEZZlWeh3kiaeXGHS_61EbSkQD3tk6xrQXG5j5AaJHi3xEa1gfb8tIaPAsxTRMr4BnBmflTtHZs-orTcKBK1TQUr86h_SsruTuXHC3xUO2dGEW3wynqCXwqf48Luxaak48Te3S7vLRjRWQYWz-PVMsf_ejbuce2xxQyFODl4WPylRz0NjS6RjAcxKarz9KJ-JYlLcba2hMAK3hnUeWZJ4tRN4tgLwX5iYh1fVfpkC7WxsW_Mcw.roDl0Lq2RNfC9z3Kn0Gh4Q', 'token_type': 'bearer', 'expires_in': 3599} |
3 | AccessTokenResponse | {
"access_token": "HzfK2HqG6P5u82eAju93",
"expires_in": 3599,
"id_token": {
"at_hash": "WKEJEYEvJZxmA4wiz_exyQ",
"aud": [
"Gh8oD5rvqO3MtDJ5d8Wj"
],
"exp": 1560788300,
"iat": 1560784880,
"iss": "https://isamfed.com:30443/test",
"nonce": "NeC6K4a6H20ssEZJ",
"rt_hash": "FQZxllsqM78Od0QB0qGw7Q",
"sub": "testuser"
},
"refresh_token": "gnnfSZTE6toQ2Qbr288UsrofVek2HX3CQwanT37u",
"scope": "openid",
"token_type": "bearer"
}
|
3 | jws header | {'kid': '_uhPdeGrTWxobFeH0XbzjJpRrzp3CB9nknx1yFV1G-0', 'alg': 'RS256'} |
3 | jwe header | {'alg': 'RSA-OAEP-256', 'enc': 'A128CBC-HS256', 'kid': 'gtH4v3Yr2QqLreBSz0ByQQ8vkf8eFo1KIit3s-3Bbww', 'cty': 'JWT'} |
3 | phase | <--<-- 6 --- TimeDelay -->--> |
33 | phase | <--<-- 7 --- AccessToken -->--> |
33 | request | op_args: {'state': 'IQEXKD3Q7vU3M6vG'}, req_args: {'redirect_uri': 'https://op.certification.openid.net:61716/authz_cb'} |
33 | do_access_token_request | kwargs:{'request_args': {'redirect_uri': 'https://op.certification.openid.net:61716/authz_cb', 'code': 'qPekNVyOK8gcXcIUQgPd3U0O5tQfzx', 'state': 'IQEXKD3Q7vU3M6vG', 'grant_type': 'authorization_code', 'client_id': 'Gh8oD5rvqO3MtDJ5d8Wj'}, 'state': 'IQEXKD3Q7vU3M6vG', 'authn_method': 'private_key_jwt'}
|
33 | AccessTokenRequest | {
"client_assertion": "eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiR2g4b0Q1cnZxTzNNdERKNWQ4V2oiLCAic3ViIjogIkdoOG9ENXJ2cU8zTXRESjVkOFdqIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJielJGVGROTW50ZTMzTTVPMVR2NG12WElMVzExUnMwZiIsICJleHAiOiAxNTYwNzg1NTExLCAiaWF0IjogMTU2MDc4NDkxMX0.T9vBLNBrMgNihpTfAqWNXoLX97xPLZieBbYTaV3kwM0OWYgpU_z73BK0nj0scvj2QGXFNZtQlwFebLZII8PYkdvKjchrI5IhP7QBB51at2_jDq5Y3C6HFXjgjkeIrL1hwgTOXBY84SgNVcjP_m6ZvPOv6GuRuE9Tw_2hLKcQwRDdiekZZ1t_KhLV-rN2GA96dehnOTi5fAGBmndfb1tJGNFrOwBkXzeoiWvywm2h8DUxfXGa31bchKow9anHnvWF87Tj17lMZL9YCR0NjcbV6Om-hlklr9T6AsQwGKDqNNKRoKroCsgH-FgLLhJA8FLWl1BMCivkURsQrItZvTciXw",
"client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer",
"code": "qPekNVyOK8gcXcIUQgPd3U0O5tQfzx",
"grant_type": "authorization_code",
"redirect_uri": "https://op.certification.openid.net:61716/authz_cb",
"state": "IQEXKD3Q7vU3M6vG"
}
|
33 | request_url | https://isamfed.com:30443/mga/sps/oauth/oauth20/token |
33 | request_http_args | {'headers': {'Content-Type': 'application/x-www-form-urlencoded'}} |
33 | request | grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61716%2Fauthz_cb&code=qPekNVyOK8gcXcIUQgPd3U0O5tQfzx&state=IQEXKD3Q7vU3M6vG&client_assertion=eyJhbGciOiJSUzI1NiIsImtpZCI6Ind0MjVPZ3lSX256RzNPb1E3ZGFhMnJMNi1nTW5GZGZSekJqaFVWUHU4UlEifQ.eyJpc3MiOiAiR2g4b0Q1cnZxTzNNdERKNWQ4V2oiLCAic3ViIjogIkdoOG9ENXJ2cU8zTXRESjVkOFdqIiwgImF1ZCI6IFsiaHR0cHM6Ly9pc2FtZmVkLmNvbTozMDQ0My9tZ2Evc3BzL29hdXRoL29hdXRoMjAvdG9rZW4iXSwgImp0aSI6ICJielJGVGROTW50ZTMzTTVPMVR2NG12WElMVzExUnMwZiIsICJleHAiOiAxNTYwNzg1NTExLCAiaWF0IjogMTU2MDc4NDkxMX0.T9vBLNBrMgNihpTfAqWNXoLX97xPLZieBbYTaV3kwM0OWYgpU_z73BK0nj0scvj2QGXFNZtQlwFebLZII8PYkdvKjchrI5IhP7QBB51at2_jDq5Y3C6HFXjgjkeIrL1hwgTOXBY84SgNVcjP_m6ZvPOv6GuRuE9Tw_2hLKcQwRDdiekZZ1t_KhLV-rN2GA96dehnOTi5fAGBmndfb1tJGNFrOwBkXzeoiWvywm2h8DUxfXGa31bchKow9anHnvWF87Tj17lMZL9YCR0NjcbV6Om-hlklr9T6AsQwGKDqNNKRoKroCsgH-FgLLhJA8FLWl1BMCivkURsQrItZvTciXw&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer |
33 | http response | url:https://isamfed.com:30443/mga/sps/oauth/oauth20/token status_code:400 message:{"error_description":"FBTOAU211E The [authorization_grant] received of type [authorization_code] does not exist.","error":"invalid_grant"}
|
33 | response | {'error_description': 'FBTOAU211E The [authorization_grant] received of type [authorization_code] does not exist.', 'error': 'invalid_grant'} |
33 | event | Got expected error |
33 | TokenErrorResponse | {
"error": "invalid_grant",
"error_description": "FBTOAU211E The [authorization_grant] received of type [authorization_code] does not exist."
}
|
33 | phase | <--<-- 8 --- Done -->--> |
33 | end | |
33 | assertion | CheckHTTPErrorResponse |
33 | condition | check-http-error-response: status=OK [Checks that an error code is either 400 or 401 which are the only ones accepted by OAuth2/OIDC.] |
33 | assertion | VerifyResponse |
33 | condition | verify-response: status=OK [Checks that the last response was one of a possible set of OpenID Connect Responses] |
33 | condition | Done: status=OK |