Test Info

Issuerhttps://oidc-conformance.ping-eng.com:9031
Profile[]
Test IDOP-scope-phone
Test descriptionScope requesting phone claims
Timestamp2018-09-20T21:32:49Z

Conditions


verify-scopes: status=OK [Verifies that the claims corresponding to the requested scopes are returned]
check-http-response: status=OK [Checks that the HTTP response status is within the 200 or 300 range. Also does some extra JSON checks]
verify-response: status=OK [Checks that the last response was one of a possible set of OpenID Connect Responses]
Done: status=OK

Trace Output

0.0phase<--<-- 0 --- Webfinger -->-->
0.0not expected to doWebFinger
0.0phase<--<-- 1 --- Discovery -->-->
0.0not expected to doDynamic discovery
0.0phase<--<-- 2 --- Registration -->-->
0.0register
kwargs:{'response_types': ['id_token'], 'grant_types': ['implicit'], 'application_name': 'OIC test tool', 'application_type': 'web', 'redirect_uris': ['https://op.certification.openid.net:61401/authz_cb'], 'contacts': ['roland@example.com'], 'post_logout_redirect_uris': ['https://op.certification.openid.net:61401/logout'], 'url': 'https://oidc-conformance.ping-eng.com:9031/as/clients.oauth2', 'jwks_uri': 'https://op.certification.openid.net:61401/static/jwks_61401.json'}
0.001RegistrationRequest
{
    "application_type": "web",
    "contacts": [
        "roland@example.com"
    ],
    "grant_types": [
        "implicit"
    ],
    "jwks_uri": "https://op.certification.openid.net:61401/static/jwks_61401.json",
    "post_logout_redirect_uris": [
        "https://op.certification.openid.net:61401/logout"
    ],
    "redirect_uris": [
        "https://op.certification.openid.net:61401/authz_cb"
    ],
    "request_uris": [
        "https://op.certification.openid.net:61401/requests/876669ef2b3891075309a06e00b98e6ace4cfca108af01becb9a804fff95d8c4#Kw9nJR0atsr4f1vU"
    ],
    "response_types": [
        "id_token"
    ]
}
0.423http response
url:https://oidc-conformance.ping-eng.com:9031/as/clients.oauth2 status_code:201
0.424RegistrationResponse
{
    "client_id": "dc-MUwh0rTuD90HRUAAWn7eBH",
    "client_name": "dc-MUwh0rTuD90HRUAAWn7eBH",
    "client_secret": "xhQop8oEAr3BlGVxhywaVH",
    "client_secret_expires_at": 0,
    "grant_access_session_revocation_api": false,
    "grant_types": [
        "implicit"
    ],
    "jwks_uri": "https://op.certification.openid.net:61401/static/jwks_61401.json",
    "persistent_grant_expiration_type": "server_default",
    "pingaccess_logout_capable": false,
    "redirect_uris": [
        "https://op.certification.openid.net:61401/authz_cb"
    ],
    "refresh_token_rolling_policy": "server_default",
    "response_types": [
        "id_token"
    ],
    "scope": "address phone edit openid profile admin email",
    "token_endpoint_auth_method": "client_secret_basic",
    "validate_using_all_eligible_atms": false
}
0.424phase<--<-- 3 --- AsyncAuthn -->-->
0.424AuthorizationRequest
{
    "client_id": "dc-MUwh0rTuD90HRUAAWn7eBH",
    "nonce": "CFTFKX7hkMereDJ9",
    "redirect_uri": "https://op.certification.openid.net:61401/authz_cb",
    "response_type": "id_token",
    "scope": "openid phone",
    "state": "HIiheiwHXkqc5PLd"
}
0.425redirect urlhttps://oidc-conformance.ping-eng.com:9031/as/authorization.oauth2?state=HIiheiwHXkqc5PLd&nonce=CFTFKX7hkMereDJ9&response_type=id_token&scope=openid+phone&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61401%2Fauthz_cb&client_id=dc-MUwh0rTuD90HRUAAWn7eBH
0.425redirecthttps://oidc-conformance.ping-eng.com:9031/as/authorization.oauth2?state=HIiheiwHXkqc5PLd&nonce=CFTFKX7hkMereDJ9&response_type=id_token&scope=openid+phone&redirect_uri=https%3A%2F%2Fop.certification.openid.net%3A61401%2Fauthz_cb&client_id=dc-MUwh0rTuD90HRUAAWn7eBH
2.154http args{}
2.498responseURL with fragment
2.498responseid_token=eyJhbGciOiJSUzI1NiIsImtpZCI6IlJvMmxnRXNPdFdJMlJiRUxLRV85amZvSVRxWSJ9.eyJzdWIiOiJqb2UiLCJhdWQiOiJkYy1NVXdoMHJUdUQ5MEhSVUFBV243ZUJIIiwianRpIjoiZkc5S1dhZ0RETmNhcmx5d3pJZWlBNyIsImlzcyI6Imh0dHBzOi8vb2lkYy1jb25mb3JtYW5jZS5waW5nLWVuZy5jb206OTAzMSIsImlhdCI6MTUzNzQ3OTE2OCwiZXhwIjoxNTM3NDc5NDY4LCJwaG9uZV9udW1iZXJfdmVyaWZpZWQiOnRydWUsInBob25lX251bWJlciI6Iig1NTUpIDU1NS01NTU1IiwicGkuc3JpIjoic0x2LVk1OU1wZkxpb243aFRKdjkxWWJlYTdjIiwibm9uY2UiOiJDRlRGS1g3aGtNZXJlREo5IiwiYXV0aF90aW1lIjoxNTM3NDc4NTMxLCJzX2hhc2giOiJUc0d0WEtvTHl6LTJtV2ZHWkM3WENRIn0.OTBZB-v7L234pxn-2F32WP4r8zGq2OprsLqVlF_gxwTAMrrtsdeMOp1Rj-mXlDih8nGOt_dvyfBW9CbeqFbXAsshE20XH-eFo07kp5fohIS1IvxfnWiLH5WgniyD7Rp01jD1RZ0p_cqBi3l8PoXAD5v2-pHw20m6ohwMx9bIKaC7DYWm6aG3IUlH70hLjkHr_uT_tESNlNtDZY3H7IfzfQgoOk_X_t74uiqkO-El9UnXA_50c4l3f9DsSwSnEuh6WKU4xDPcPdKIgJSNaQPU9FzWptE-BOHU3mpJ8CGttoUuSmwciICki7pX7UhBNccfDl3EJVXBDRmTJ8KMk9qWVQ&state=HIiheiwHXkqc5PLd
2.499response{'id_token': 'eyJhbGciOiJSUzI1NiIsImtpZCI6IlJvMmxnRXNPdFdJMlJiRUxLRV85amZvSVRxWSJ9.eyJzdWIiOiJqb2UiLCJhdWQiOiJkYy1NVXdoMHJUdUQ5MEhSVUFBV243ZUJIIiwianRpIjoiZkc5S1dhZ0RETmNhcmx5d3pJZWlBNyIsImlzcyI6Imh0dHBzOi8vb2lkYy1jb25mb3JtYW5jZS5waW5nLWVuZy5jb206OTAzMSIsImlhdCI6MTUzNzQ3OTE2OCwiZXhwIjoxNTM3NDc5NDY4LCJwaG9uZV9udW1iZXJfdmVyaWZpZWQiOnRydWUsInBob25lX251bWJlciI6Iig1NTUpIDU1NS01NTU1IiwicGkuc3JpIjoic0x2LVk1OU1wZkxpb243aFRKdjkxWWJlYTdjIiwibm9uY2UiOiJDRlRGS1g3aGtNZXJlREo5IiwiYXV0aF90aW1lIjoxNTM3NDc4NTMxLCJzX2hhc2giOiJUc0d0WEtvTHl6LTJtV2ZHWkM3WENRIn0.OTBZB-v7L234pxn-2F32WP4r8zGq2OprsLqVlF_gxwTAMrrtsdeMOp1Rj-mXlDih8nGOt_dvyfBW9CbeqFbXAsshE20XH-eFo07kp5fohIS1IvxfnWiLH5WgniyD7Rp01jD1RZ0p_cqBi3l8PoXAD5v2-pHw20m6ohwMx9bIKaC7DYWm6aG3IUlH70hLjkHr_uT_tESNlNtDZY3H7IfzfQgoOk_X_t74uiqkO-El9UnXA_50c4l3f9DsSwSnEuh6WKU4xDPcPdKIgJSNaQPU9FzWptE-BOHU3mpJ8CGttoUuSmwciICki7pX7UhBNccfDl3EJVXBDRmTJ8KMk9qWVQ', 'state': 'HIiheiwHXkqc5PLd'}
2.82AuthorizationResponse
{
    "id_token": {
        "aud": [
            "dc-MUwh0rTuD90HRUAAWn7eBH"
        ],
        "auth_time": 1537478531,
        "exp": 1537479468,
        "iat": 1537479168,
        "iss": "https://oidc-conformance.ping-eng.com:9031",
        "jti": "fG9KWagDDNcarlywzIeiA7",
        "nonce": "CFTFKX7hkMereDJ9",
        "phone_number": "(555) 555-5555",
        "phone_number_verified": true,
        "pi.sri": "sLv-Y59MpfLion7hTJv91Ybea7c",
        "s_hash": "TsGtXKoLyz-2mWfGZC7XCQ",
        "sub": "joe"
    },
    "state": "HIiheiwHXkqc5PLd"
}
2.82phase<--<-- 4 --- AccessToken -->-->
2.82phase<--<-- 5 --- UserInfo -->-->
2.82phase<--<-- 6 --- Done -->-->
2.82end
2.82assertionVerifyScopes
2.821conditionverify-scopes: status=OK [Verifies that the claims corresponding to the requested scopes are returned]
2.821assertionCheckHTTPResponse
2.821conditioncheck-http-response: status=OK [Checks that the HTTP response status is within the 200 or 300 range. Also does some extra JSON checks]
2.821assertionVerifyResponse
2.821conditionverify-response: status=OK [Checks that the last response was one of a possible set of OpenID Connect Responses]
2.821conditionDone: status=OK

Result

PASSED