Test info
Profile: {'openid-configuration': 'config', 'response_type': 'code+id_token', 'crypto': 'sign', 'registration': 'static'}
Timestamp: 2016-02-25T17:25:32Z
Test description: Scope requesting phone claims [Basic, Implicit, Hybrid]
Test ID: OP-scope-phone
Issuer: https://qaportal2.gosecureauth.com/secureauth123
Test output
__AuthorizationRequest:pre__
[check-response-type]
status: OK
description: Checks that the asked for response type are among the supported
[check-endpoint]
status: OK
description: Checks that the necessary endpoint exists at a server
__After completing the test flow:__
[check-http-response]
status: OK
description: Checks that the HTTP response status is within the 200 or 300 range
[verify-response]
status: OK
description: Checks that the last response was one of a possible set of OpenID Connect Responses
[verify-scopes]
status: WARNING
description: Verifies that the claims corresponding to the requested scopes are returned
info: The following claims were missing from the returned information: ['phone_number', 'phone_number_verified']
__X:==== END ====__
Trace output
0.000316 ------------ DiscoveryRequest ------------
0.000333 Provider info discover from 'https://qaportal2.gosecureauth.com/secureauth123'
0.000338 --> URL: https://qaportal2.gosecureauth.com/secureauth123/.well-known/openid-configuration
0.327153 ProviderConfigurationResponse: {
"authorization_endpoint": "https://qaportal2.gosecureauth.com/secureauth123/SecureAuth.aspx",
"check_session_iframe": "https://qaportal2.gosecureauth.com/secureauth123/OidcCheckSession.aspx",
"claim_types_supported": [
"normal"
],
"claims_parameter_supported": false,
"claims_supported": [
"sub",
"name",
"given_name",
"family_name",
"middle_name",
"nickname",
"preferred_username",
"profile"
],
"end_session_endpoint": "https://qaportal2.gosecureauth.com/secureauth123/OidcEndSession.aspx",
"grant_types_supported": [
"authorization_code",
"client_credentials",
"password",
"refresh_token"
],
"id_token_signing_alg_values_supported": [
"HS256",
"RS256"
],
"issuer": "https://qaportal2.gosecureauth.com/secureauth123",
"jwks_uri": "https://qaportal2.gosecureauth.com/secureauth123/.well-known/jwks",
"request_parameter_supported": false,
"request_uri_parameter_supported": true,
"require_request_uri_registration": true,
"response_modes_supported": [
"form_post",
"fragment",
"query"
],
"response_types_supported": [
"code",
"token",
"id_token",
"id_token token",
"code id_token",
"code token",
"code id_token token"
],
"scopes_supported": [
"openid",
"profile",
"email",
"phone",
"address",
"sa.readprofile",
"sa.editprofile"
],
"subject_types_supported": [
"public"
],
"token_endpoint": "https://qaportal2.gosecureauth.com/secureauth123/OidcToken.aspx",
"token_endpoint_auth_methods_supported": [
"client_secret_post",
"client_secret_basic"
],
"userinfo_endpoint": "https://qaportal2.gosecureauth.com/secureauth123/OidcUserInfo.aspx",
"version": "3.0"
}
0.639978 JWKS: {
"keys": [
{
"e": "AQAB",
"kid": "kL3mwBbniGrOr-Hhw0D8e_-rRWU",
"kty": "RSA",
"n": "sy1VZq8v2oqbSaddMMxeyqVORLB3lk71T0_cAv4lWdqCAmd9LWGvVul2be1Q5QUdJgewy9G8dEpwyuT_1qmqtY1psgxua9M3uyBrtY1mYBJ4QZVMgbvfk1-uvxF1YLsuZa_QsAN0k3X5bmvQh35WVNgzVU1QXAgi8m0jxSxY2EM2GO0EMwvPXIgkU6u0yYJ6Vy4i-5Ftwztx2dyz41JTw8CF8m9S2nE4Ppxc4rfWLjCIlPPILCPUnwU2UlfPAqHUxi6RXeAubyjlL5komE6y4XstURH66gePLyfjMtWGxmZpbv4yPmffFQgMO0oYT0Y1trUTF19waIE_JZfA-z8e7w",
"use": "sig",
"x5c": [
"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"
],
"x5t": "kL3mwBbniGrOr-Hhw0D8e_-rRWU"
}
]
}
0.654278 ------------ AuthorizationRequest ------------
0.654783 --> URL: https://qaportal2.gosecureauth.com/secureauth123/SecureAuth.aspx?nonce=2KqKet2QDAXB&state=XjdwUsv2VdDt42Bk&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60097%2Fauthz_cb&response_type=code+id_token&client_id=072b89c6faeb4d6189631f696df8435d&scope=openid+phone
0.654792 --> BODY: None
4.845925 QUERY_STRING:
5.481544 <-- code=O3zMSGaAwJ3uWmiCOAdlK6wBXrOvbyaNFa3uKNWpOh3-QQg-kuwLodNyVKP8T0zXNnOYb1dNAUPqdc8kzV9clmGo_QPeUcIWvTEI8kAna3W_uz3EjaeXyfyIRaXJ9HltN9gm2gu81H6vwRF4YWUPl0EHsKKbMtmMMForlXw6bl0cyztsoJQ7duH3frzMASJN6Ei30hrZjQiPiJDuLNkDMAqHUx9sKTDPz3niuAYGQwMYIGM3BjsH2HdkNxyt3zTzxcsHhiyUU57Ki4CFX8437M3vmC9_h0Gwg9zgLHSUm9kYe6PpubwjJtI3Uua44w7l&id_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsIng1dCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSIsImtpZCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSJ9.eyJhbXIiOiJwYXNzd29yZCIsImlkcCI6IlNlY3VyZUF1dGgxMjMiLCJhdXRoX3RpbWUiOjE0NTY0MjA3NzksInN1YiI6InVzZXI3MSIsIm5vbmNlIjoiMktxS2V0MlFEQVhCIiwiY19oYXNoIjoiSUpfTzJRc04wRHMtYl9qbWpnalFGQSIsImlhdCI6MTQ1NjQyMTEzMCwiaXNzIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiYXVkIjoiMDcyYjg5YzZmYWViNGQ2MTg5NjMxZjY5NmRmODQzNWQiLCJleHAiOjE0NTY1MDc1MzAsIm5iZiI6MTQ1NjQyMTEzMH0.jjHkn7p0eL-YjsxnQoGVPOFsfV9Fi2yPGGg-oAG1sjYbDe54q_EpsolnMIpmTllh8OdyaLXX53DN9w6SLtXJgH24Yhoh-oVe_KVM0i-VQC9tuDvNnBxEj7ObOojSyfIyQvKas07_cm21VscpAEvXu5ygs3yvCl7P8pUfGfhkyhJRXX83fECKqE8S_6loT9uPFd32OiQgYUzad1OzYYs8nLQcCd8JaTuHyjZMXzSr0UqETgip-Ipc-Wyq3DHU3KkUeBHeTOymUV2uM6WxpMiij1yNJdOfW3r49FhQQzJ9JbcdrK8lLEIjzTdV5iXNhd05MqRsP-bMfNY7uxOAhoGibA&session_state=wi4xu814MPrek5qAAzAxaF6gnSTINP0chK_pL10l5Dw.d187d9cf25f14b2a0f1f52e30844d377&state=XjdwUsv2VdDt42Bk
5.847200 AuthorizationResponse: {
"code": "O3zMSGaAwJ3uWmiCOAdlK6wBXrOvbyaNFa3uKNWpOh3-QQg-kuwLodNyVKP8T0zXNnOYb1dNAUPqdc8kzV9clmGo_QPeUcIWvTEI8kAna3W_uz3EjaeXyfyIRaXJ9HltN9gm2gu81H6vwRF4YWUPl0EHsKKbMtmMMForlXw6bl0cyztsoJQ7duH3frzMASJN6Ei30hrZjQiPiJDuLNkDMAqHUx9sKTDPz3niuAYGQwMYIGM3BjsH2HdkNxyt3zTzxcsHhiyUU57Ki4CFX8437M3vmC9_h0Gwg9zgLHSUm9kYe6PpubwjJtI3Uua44w7l",
"id_token": {
"claims": {
"amr": [
"password"
],
"aud": [
"072b89c6faeb4d6189631f696df8435d"
],
"auth_time": 1456420779,
"c_hash": "IJ_O2QsN0Ds-b_jmjgjQFA",
"exp": 1456507530,
"iat": 1456421130,
"idp": "SecureAuth123",
"iss": "https://qaportal2.gosecureauth.com/secureauth123",
"nbf": 1456421130,
"nonce": "2KqKet2QDAXB",
"sub": "user71"
},
"jws header parameters": {
"alg": "RS256",
"kid": "kL3mwBbniGrOr-Hhw0D8e_-rRWU",
"typ": "JWT",
"x5t": "kL3mwBbniGrOr-Hhw0D8e_-rRWU"
}
},
"session_state": "wi4xu814MPrek5qAAzAxaF6gnSTINP0chK_pL10l5Dw.d187d9cf25f14b2a0f1f52e30844d377",
"state": "XjdwUsv2VdDt42Bk"
}
5.847936 ------------ AccessTokenRequest ------------
5.848346 --> URL: https://qaportal2.gosecureauth.com/secureauth123/OidcToken.aspx
5.848353 --> BODY: code=O3zMSGaAwJ3uWmiCOAdlK6wBXrOvbyaNFa3uKNWpOh3-QQg-kuwLodNyVKP8T0zXNnOYb1dNAUPqdc8kzV9clmGo_QPeUcIWvTEI8kAna3W_uz3EjaeXyfyIRaXJ9HltN9gm2gu81H6vwRF4YWUPl0EHsKKbMtmMMForlXw6bl0cyztsoJQ7duH3frzMASJN6Ei30hrZjQiPiJDuLNkDMAqHUx9sKTDPz3niuAYGQwMYIGM3BjsH2HdkNxyt3zTzxcsHhiyUU57Ki4CFX8437M3vmC9_h0Gwg9zgLHSUm9kYe6PpubwjJtI3Uua44w7l&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A60097%2Fauthz_cb
5.848366 --> HEADERS: {'Content-Type': 'application/x-www-form-urlencoded', 'Authorization': u'Basic MDcyYjg5YzZmYWViNGQ2MTg5NjMxZjY5NmRmODQzNWQ6MTA3ZDUzNDBhY2Q0ZDI2MGMxNjk4YTA1N2IyY2NmNWM4OWIyODg1NzM1NGQyZjk4NGUwYWEzODhmZTc4YTdmMA=='}
6.366480 <-- STATUS: 200
6.366580 <-- BODY: {"access_token":"eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsIng1dCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSIsImtpZCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSJ9.eyJjbGllbnRfaWQiOiIwNzJiODljNmZhZWI0ZDYxODk2MzFmNjk2ZGY4NDM1ZCIsInNjb3BlIjpbIm9wZW5pZCIsInBob25lIl0sInN1YiI6InVzZXI3MSIsImFtciI6InBhc3N3b3JkIiwiYXV0aF90aW1lIjoxNDU2NDIwNzc5LCJpZHAiOiJTZWN1cmVBdXRoMTIzIiwiaXNzIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiYXVkIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiZXhwIjoxNDU2NTA3NTMxLCJuYmYiOjE0NTY0MjExMzF9.bqYheCdCTOtqaEaGxdnTmKoc2XzQed8fWp1PyaUss-fiF9j2_MNTXodDqh86yOBZwtihWuCUF_EvhPkrS_f_KlDELDCOE-PmTOm-66h384bLmRF4L4ymxxUjWqQYSn80C5otV2gehwwYKktaY9kKchHSPVe-0TH3eVZEEU96BRIget04SqtYM_hUs7z07JYl2OApGA3AaAJF5xqVS8LYmSDqbeZhf_fp-eMA7buUGnRAkTZYdCPnDQxO6nE9n-dIGbmtPs2EshmYtbYjIK-fWks1zRoyg1GMhIyu715_zXKHPcRKyP_rH-LKbFENrzqhdPFuLoqJREDlxX5_QIzFyA","id_token":"eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsIng1dCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSIsImtpZCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSJ9.eyJhbXIiOiJwYXNzd29yZCIsImlkcCI6IlNlY3VyZUF1dGgxMjMiLCJhdXRoX3RpbWUiOjE0NTY0MjA3NzksInN1YiI6InVzZXI3MSIsIm5vbmNlIjoiMktxS2V0MlFEQVhCIiwiYXRfaGFzaCI6Ik1taFV2M3k2WGRheG5fSmFqaGdnV3ciLCJpYXQiOjE0NTY0MjExMzIsImlzcyI6Imh0dHBzOi8vcWFwb3J0YWwyLmdvc2VjdXJlYXV0aC5jb20vc2VjdXJlYXV0aDEyMyIsImF1ZCI6IjA3MmI4OWM2ZmFlYjRkNjE4OTYzMWY2OTZkZjg0MzVkIiwiZXhwIjoxNDU2NTA3NTMxLCJuYmYiOjE0NTY0MjExMzF9.GPXC5RxN-Q5v5uHjQCQTi9OBekHnbqibpSlLif87_fLcUYGder0im9SaVB3vXWckQm9oeodeZcM2u44nhi3rGx7JzP_6-wHoKWz2GG4QFUW8vQjpluTu0ubTvYtJQmHJ1JuVv39PV3SgCvLgy_4Ddulq-ghAErAJyaqbg_DM0krZuHrymzPSdcyNXrzdZFJFmtQjievCUMSf46Vpd3XIAIO4VTaN2XLq86wbRujPcAnee5XELbEwqjCDQrxngFFEWVVtgMGr2Za5ujZSonuSjjthFXedRsdpcaECmUvXcrXvp_mjtseMXiVXADemJO3WuLpoQLk3F6z4SAxMTAm-Cg","token_type":"Bearer","expires_in":"86400"}
6.376225 AccessTokenResponse: {
"access_token": "eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsIng1dCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSIsImtpZCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSJ9.eyJjbGllbnRfaWQiOiIwNzJiODljNmZhZWI0ZDYxODk2MzFmNjk2ZGY4NDM1ZCIsInNjb3BlIjpbIm9wZW5pZCIsInBob25lIl0sInN1YiI6InVzZXI3MSIsImFtciI6InBhc3N3b3JkIiwiYXV0aF90aW1lIjoxNDU2NDIwNzc5LCJpZHAiOiJTZWN1cmVBdXRoMTIzIiwiaXNzIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiYXVkIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiZXhwIjoxNDU2NTA3NTMxLCJuYmYiOjE0NTY0MjExMzF9.bqYheCdCTOtqaEaGxdnTmKoc2XzQed8fWp1PyaUss-fiF9j2_MNTXodDqh86yOBZwtihWuCUF_EvhPkrS_f_KlDELDCOE-PmTOm-66h384bLmRF4L4ymxxUjWqQYSn80C5otV2gehwwYKktaY9kKchHSPVe-0TH3eVZEEU96BRIget04SqtYM_hUs7z07JYl2OApGA3AaAJF5xqVS8LYmSDqbeZhf_fp-eMA7buUGnRAkTZYdCPnDQxO6nE9n-dIGbmtPs2EshmYtbYjIK-fWks1zRoyg1GMhIyu715_zXKHPcRKyP_rH-LKbFENrzqhdPFuLoqJREDlxX5_QIzFyA",
"expires_in": "86400",
"id_token": {
"claims": {
"amr": [
"password"
],
"at_hash": "MmhUv3y6Xdaxn_JajhggWw",
"aud": [
"072b89c6faeb4d6189631f696df8435d"
],
"auth_time": 1456420779,
"exp": 1456507531,
"iat": 1456421132,
"idp": "SecureAuth123",
"iss": "https://qaportal2.gosecureauth.com/secureauth123",
"nbf": 1456421131,
"nonce": "2KqKet2QDAXB",
"sub": "user71"
},
"jws header parameters": {
"alg": "RS256",
"kid": "kL3mwBbniGrOr-Hhw0D8e_-rRWU",
"typ": "JWT",
"x5t": "kL3mwBbniGrOr-Hhw0D8e_-rRWU"
}
},
"token_type": "Bearer"
}
6.390364 ------------ UserInfoRequest ------------
6.390692 --> URL: https://qaportal2.gosecureauth.com/secureauth123/OidcUserInfo.aspx
6.390699 --> BODY: None
6.390718 --> HEADERS: {'Authorization': u'Bearer eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsIng1dCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSIsImtpZCI6ImtMM213QmJuaUdyT3ItSGh3MEQ4ZV8tclJXVSJ9.eyJjbGllbnRfaWQiOiIwNzJiODljNmZhZWI0ZDYxODk2MzFmNjk2ZGY4NDM1ZCIsInNjb3BlIjpbIm9wZW5pZCIsInBob25lIl0sInN1YiI6InVzZXI3MSIsImFtciI6InBhc3N3b3JkIiwiYXV0aF90aW1lIjoxNDU2NDIwNzc5LCJpZHAiOiJTZWN1cmVBdXRoMTIzIiwiaXNzIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiYXVkIjoiaHR0cHM6Ly9xYXBvcnRhbDIuZ29zZWN1cmVhdXRoLmNvbS9zZWN1cmVhdXRoMTIzIiwiZXhwIjoxNDU2NTA3NTMxLCJuYmYiOjE0NTY0MjExMzF9.bqYheCdCTOtqaEaGxdnTmKoc2XzQed8fWp1PyaUss-fiF9j2_MNTXodDqh86yOBZwtihWuCUF_EvhPkrS_f_KlDELDCOE-PmTOm-66h384bLmRF4L4ymxxUjWqQYSn80C5otV2gehwwYKktaY9kKchHSPVe-0TH3eVZEEU96BRIget04SqtYM_hUs7z07JYl2OApGA3AaAJF5xqVS8LYmSDqbeZhf_fp-eMA7buUGnRAkTZYdCPnDQxO6nE9n-dIGbmtPs2EshmYtbYjIK-fWks1zRoyg1GMhIyu715_zXKHPcRKyP_rH-LKbFENrzqhdPFuLoqJREDlxX5_QIzFyA'}
6.875506 <-- STATUS: 200
6.875588 Available verification keys: [(u'kL3mwBbniGrOr-Hhw0D8e_-rRWU', u'RSA')]
6.875623 Available decryption keys: [('a0', 'RSA'), ('a3', 'EC')]
6.875647 <-- BODY: {"amr":"password","idp":"SecureAuth123","auth_time":"1456420779","sub":"user71"}
6.876550 UserInfo: {
"amr": "password",
"auth_time": "1456420779",
"idp": "SecureAuth123",
"sub": "user71"
}
6.890772 ==== END ====
Result
WARNING
Warnings:
The following claims were missing from the returned information: ['phone_number', 'phone_number_verified']