Test Summary

Test Results

Expand All Collapse All
All times are UTC
2020-10-30 05:56:21 INFO
TEST-RUNNER
Test instance L8RnCZuHpy8op2X created
baseUrl
https://www.certification.openid.net/test/a/gluu-oxd-test
variant
{
  "client_auth_type": "client_secret_basic",
  "response_type": "code token",
  "request_type": "plain_http_request",
  "response_mode": "default",
  "client_registration": "dynamic_client"
}
alias
gluu-oxd-test
description
Gluu oxd test
planId
eMBKr13q9ZqTC
config
{
  "alias": "gluu-oxd-test",
  "description": "Gluu oxd test",
  "server": {
    "jwks": {
      "keys": [
        {
          "p": "_aYTyJg7xpmEUcdL8is5KiFC6HRAwCF-CcA4GxvZXNaj7CnWQOlYQp-fg2-Nk0hQGGkOmhaFb35DTHr_Fa6ShoUjoeD0cORAy6PaEF1m6URs02s00OFDoYBudK-oUDNiPWQFJ8hrv4z1s2HmfB0x2e7QV_8dxW7xw1i7LTGk1fc",
          "kty": "RSA",
          "alg": "PS256",
          "q": "veBnKgi99Hoqamh7_KPW3ipY4PJ18tyyLi33vI1y_g2Cs7swmNeAHYtc6b4A6Oz29D7cpuLzbSdMlPJoyFy8eq3T6bAoZnczq0JEFpvkeyme8HTEgRyVLLd82vGt68sIG32exWWMgOU-RuFzdJqP6bQtq5LwzqyVooIc1jna96E",
          "d": "DKBgwNmfjt9Ukk9RME3wB7TcUx3mGguBzhyA6lhKClAgtok9xJ7J0JfQ89Yg0uU5Pi3l-J0Qt9poPSCQYolt3AHxrrcI5YhPlbPeqpsHrAMSFK5SbB9zGo3zvfBlgpLvyqKQnrt7L-tKbmAhiUy0r9YmEfyACYzkaAyNR2F5OvGSGw0JrB8jhtYmgduN2VyYxNUlmFPqxYc7XdxWb0My0VwN4UJg4OPqlrkIaYKyovFbHbmgpP89IAabLhoIkmLeyyigVLFvjecvUliCyBJJpUH-QiLcgAU0CBKgjz9_2e8hkjGgqNv-W8kt1tlSzdgenZbgYqdvf6rf3Si0OedWYQ",
          "e": "AQAB",
          "use": "sig",
          "kid": "d15d02ac-b432-45ef-8c09-bde3811d0c9b",
          "qi": "j9oCr752UnXnC9lD-dlufwTJpSs4xGYthpvd0TwXd604VBeGeZ-3gPM1l4k6HqQ2QQ_s5d8116rBBWnAtNG5t1_dzUdIznv26ErNPeXZiQ8GvD1ai_yA7d8aR6sOUyTLVXAQnNZTYmHdhZf2Lc3rEFGpBefXMBY0i6eWwtFQVpA",
          "dp": "XPz3n8B_mY1KPxjLNNq3uEQ9XS7RVh5xMG3xo66P_0MJEVk9HMru-m2-ctcAlhAanPhWzBKZlIg7b9xfi7lWKk7BA2WO95wWTRGirgEv6zCUnOVelX0f6CNHWyvSjqRnzY3PfggxyCWLJdosPzAMyJKOetQiO_EyXKU46ZabkX0",
          "dq": "KGM3DmXVoc7qfr_Cv7ZJ2e-___kSxZnT_Kaib2TW9NsC1iAW8ivEgIRIOx_DKchdrw4_-O-FP86AJ554U0YGgUHANZDWxxTL1L2_pd969gegWx07PwtJX72XvSpzCBijnNVXlD1JaZFZcdI6sK6_tcIxhLE4r31eRrbOU3Ly9IE",
          "n": "vCH0I9_HsIxZnA-vbUfteJ3YPzhSpKE1uh4mZ36U-RzmDTWIvJsTFU83EVHXQp1Tvx0FtFcH4a8pynFoGXtD3AUajJlH0yN7EXU15K-NZ0OMZaS-7WWpkh5XHx3pphq8X7RLY3GEhPXdO_OKKq0IYi03npqG2y7v52DWaTbVGb_Z4nJ-D2b0buUWG9JGknFEEHiDJn0kvrDHor2Fv5Fx8USVUfdZDlQrW6ZTMYVMQhTam3LqDrzvk-HXKrgUUAMmN49r-2AUHEMJBBT2urtTpC57vdEGCBK4HiyXh_bgcFCmxi5DZ5G2jbScTFLoJI95wwgjuo4Mj9ZokCzOdnHhVw"
        }
      ]
    }
  },
  "client": {
    "client_id": "test-client-id-346334adgdsfgdfg3425",
    "client_secret": "test-client-secret-452wf246w3g324t34",
    "scope": "openid accounts",
    "redirect_uri": "https://www.gluu.org",
    "certificate": "-----BEGIN CERTIFICATE-----\nMIIDZjCCAhqgAwIBAgIhAJZt5gX62poPeFj5+i2q9ozjpIKLoLQNw3zy8134lfRY MEEGCSqGSIb3DQEBCjA0oA8wDQYJYIZIAWUDBAICBQChHDAaBgkqhkiG9w0BAQgw DQYJYIZIAWUDBAICBQCiAwIBMDAeMRwwGgYDVQQDDBNveGQgQ0EgQ2VydGlmaWNh dGVzMB4XDTIwMDgyNzEzMjg1OFoXDTIwMTIwNTEzMjkwNVowHjEcMBoGA1UEAwwT b3hkIENBIENlcnRpZmljYXRlczCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAIo79ge2mJ055DBIQJ9Up6ODBC4ch72nQU6ZNLx/1JgpSokj2bXgDSxUN2rd SiFEWGv/u5CUKDpavYSMONIPGX+DH2rN10oZN/WFqP1ZSp/GzQbnf4SWn3rUtU8w p5bj+8XB+b1CtNbz2AMO11XnSoD2tWV5waS2fR4HBqct3Smo3Ek7Gno9oXEITGU2 94dEO3AXkoHLMZf+z6BTnQdPBWncHVYjz43YMxLr0hVidHQxTYzoU0RID6bRTug7 bfW8a6yrT2/hF1MCrCIe3Jd7HJrgV3sLIZFUX9p69v1Ghuu+lAVXiOYCkgQ5ab6T K6Oxq8okOOh74AaSUBzlW0ijoV0CAwEAAaMnMCUwIwYDVR0lBBwwGgYIKwYBBQUH AwEGCCsGAQUFBwMCBgRVHSUAMEEGCSqGSIb3DQEBCjA0oA8wDQYJYIZIAWUDBAIC BQChHDAaBgkqhkiG9w0BAQgwDQYJYIZIAWUDBAICBQCiAwIBMAOCAQEANbRPGBNr Nn+SeQdTeQQ6Gmp5tFTjs/hwshJ4YZCE5j3f6W8o2cN91TFK8lHTIK7zRj1c/yJf Xf27BPTFZOTvYzlHBkRKUptc7aCJgC5awwdalPxU7NEs2T6R8OaNWeuUtT9T6Oze si3Rx0hHmieqsYgnW+uHgLokI8vFickzXdTDiib1hE44+hQAwkRQ2IO8anjSGTAt LUF59D0O5XdJ0PVgq7I0tpNdKM5LcztY1mrq2B4fRLnVJsoz54qCuBNQG1i/MNYD 8Cx5ZxlehAtexm3rVMKuVy3wOpYId8feVPsqk+oXVgkiuV47McvD8NAzY3PXqB19 rXRsjI7iPJRkQQ\u003d\u003d\n-----END CERTIFICATE-----\n",
    "jwks": {
      "keys": [
        {
          "kid": "efe712dc-7820-4f36-90ae-b6e6b8490c0d_sig_ps256",
          "kty": "RSA",
          "use": "sig",
          "alg": "PS256",
          "exp": 1607326752998,
          "x5c": [
            "MIIDZTCCAhmgAwIBAgIgEzTfHCIizrfsOo9Q6szuD1oAomyy45mEGT9D4+TE4nQwQQYJKoZIhvcNAQEKMDSgDzANBglghkgBZQMEAgEFAKEcMBoGCSqGSIb3DQEBCDANBglghkgBZQMEAgEFAKIDAgEgMB4xHDAaBgNVBAMME294ZCBDQSBDZXJ0aWZpY2F0ZXMwHhcNMjAwODI5MDczOTAzWhcNMjAxMjA3MDczOTEyWjAeMRwwGgYDVQQDDBNveGQgQ0EgQ2VydGlmaWNhdGVzMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvCH0I9/HsIxZnA+vbUfteJ3YPzhSpKE1uh4mZ36U+RzmDTWIvJsTFU83EVHXQp1Tvx0FtFcH4a8pynFoGXtD3AUajJlH0yN7EXU15K+NZ0OMZaS+7WWpkh5XHx3pphq8X7RLY3GEhPXdO/OKKq0IYi03npqG2y7v52DWaTbVGb/Z4nJ+D2b0buUWG9JGknFEEHiDJn0kvrDHor2Fv5Fx8USVUfdZDlQrW6ZTMYVMQhTam3LqDrzvk+HXKrgUUAMmN49r+2AUHEMJBBT2urtTpC57vdEGCBK4HiyXh/bgcFCmxi5DZ5G2jbScTFLoJI95wwgjuo4Mj9ZokCzOdnHhVwIDAQABoycwJTAjBgNVHSUEHDAaBggrBgEFBQcDAQYIKwYBBQUHAwIGBFUdJQAwQQYJKoZIhvcNAQEKMDSgDzANBglghkgBZQMEAgEFAKEcMBoGCSqGSIb3DQEBCDANBglghkgBZQMEAgEFAKIDAgEgA4IBAQB+cMDR+ceVqlnvMTlzoX5LJBRfvVWs0Z5qTDlJj87HWOC8AUTBVz8YPUvt4kcocZY5RdswVTVmBvnTTj4VbJF0EMwSFauZEfPisNgodgPBFPk9+DkFdPhezvQpc9pR99aOv1D5QbtBqDxnOSwEKy9m+CtrFwVaFRI5HE8Waut8GAyKKMVPkm4TXipwFmmBnisdMEr0ThEg9Vr/mU3uQFMZukU3jJoNcxlq6FepzSjQS5iuPeNDnTwqoGJTVyFC0Xm6+Xg48uuR5qYk9HpbRaBLIAnDt76CxnIDEWcGwR8iUvER/fFOwKlXiX+UhXfglPehdh/LWk2OZ7lCJILON9zQ"
          ],
          "n": "vCH0I9_HsIxZnA-vbUfteJ3YPzhSpKE1uh4mZ36U-RzmDTWIvJsTFU83EVHXQp1Tvx0FtFcH4a8pynFoGXtD3AUajJlH0yN7EXU15K-NZ0OMZaS-7WWpkh5XHx3pphq8X7RLY3GEhPXdO_OKKq0IYi03npqG2y7v52DWaTbVGb_Z4nJ-D2b0buUWG9JGknFEEHiDJn0kvrDHor2Fv5Fx8USVUfdZDlQrW6ZTMYVMQhTam3LqDrzvk-HXKrgUUAMmN49r-2AUHEMJBBT2urtTpC57vdEGCBK4HiyXh_bgcFCmxi5DZ5G2jbScTFLoJI95wwgjuo4Mj9ZokCzOdnHhVw",
          "e": "AQAB"
        },
        {
          "kid": "1ae82071-038b-4e4b-8a2b-b2a8a196a350_enc_rsa1_5",
          "kty": "RSA",
          "use": "enc",
          "alg": "RSA1_5",
          "exp": 1607326752998,
          "x5c": [
            "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\u003d"
          ],
          "n": "woTz8lj4vH7xVLBrINlqrA8bSk7qSnE6rdaOsdkxnu7R2rmxVA0IpR0UVTOe7V_mQ6RCanjebS29EYR4fXf1t0TO862NUdHu7F_2Qf1NKTb1ZnwihwNbiJnytpoOA5iI2jXvfNIDX55KEIM4IcV0e_Cmp3-ynb2IVzluzkB3RFKShtYiIXLoGeMCCxS4_uUcryeAvspz5tQpPJclgzXgK_Q3G072JU-LIlKHKYkSVzZCWiymTYpkTOOKAZYNKfYClaCOngFqS1BBkdslzOXWxSjwajWPGy1KZmzNi7DkyDK5zXdf8iaS5Z2PW1TREAmLgvmQDOzW9rCZkEQqTjV_Aw",
          "e": "AQAB"
        }
      ]
    }
  }
}
testName
oidcc-client-test-nonce-invalid
2020-10-30 05:56:21 SUCCESS
OIDCCGenerateServerConfiguration
Generated default server configuration
server_configuration
{
  "issuer": "https://www.certification.openid.net/test/a/gluu-oxd-test/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/gluu-oxd-test/jwks",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/userinfo",
  "registration_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/register",
  "scopes_supported": [
    "openid",
    "phone",
    "profile",
    "email",
    "address",
    "offline_access"
  ],
  "response_types_supported": [
    "code",
    "id_token code",
    "token code id_token",
    "id_token",
    "token id_token",
    "token code",
    "token"
  ],
  "response_modes_supported": [
    "query",
    "fragment",
    "form_post"
  ],
  "token_endpoint_auth_methods_supported": [
    "client_secret_basic",
    "client_secret_post",
    "client_secret_jwt",
    "private_key_jwt"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit"
  ],
  "claims_parameter_supported": true,
  "acr_values_supported": [
    "PASSWORD"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "claim_types_supported": [
    "normal",
    "aggregated",
    "distributed"
  ],
  "claims_supported": [
    "sub",
    "name",
    "given_name",
    "family_name",
    "middle_name",
    "nickname",
    "gender",
    "birthdate",
    "preferred_username",
    "profile",
    "website",
    "locale",
    "updated_at",
    "address",
    "zoneinfo",
    "phone_number",
    "phone_number_verified",
    "email",
    "email_verified"
  ],
  "id_token_signing_alg_values_supported": [
    "none",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "none",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "request_object_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "userinfo_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ]
}
2020-10-30 05:56:21
SetTokenEndpointAuthMethodsSupportedToClientSecretBasicOnly
Changed token_endpoint_auth_methods_supported to client_secret_basic only in server configuration
server_configuration
{
  "issuer": "https://www.certification.openid.net/test/a/gluu-oxd-test/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/gluu-oxd-test/jwks",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/userinfo",
  "registration_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/register",
  "scopes_supported": [
    "openid",
    "phone",
    "profile",
    "email",
    "address",
    "offline_access"
  ],
  "response_types_supported": [
    "code",
    "id_token code",
    "token code id_token",
    "id_token",
    "token id_token",
    "token code",
    "token"
  ],
  "response_modes_supported": [
    "query",
    "fragment",
    "form_post"
  ],
  "token_endpoint_auth_methods_supported": [
    "client_secret_basic"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit"
  ],
  "claims_parameter_supported": true,
  "acr_values_supported": [
    "PASSWORD"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "claim_types_supported": [
    "normal",
    "aggregated",
    "distributed"
  ],
  "claims_supported": [
    "sub",
    "name",
    "given_name",
    "family_name",
    "middle_name",
    "nickname",
    "gender",
    "birthdate",
    "preferred_username",
    "profile",
    "website",
    "locale",
    "updated_at",
    "address",
    "zoneinfo",
    "phone_number",
    "phone_number_verified",
    "email",
    "email_verified"
  ],
  "id_token_signing_alg_values_supported": [
    "none",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "none",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "request_object_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "userinfo_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ]
}
2020-10-30 05:56:21
OIDCCGenerateServerJWKs
Generated server public private JWK sets
server_jwks
{
  "keys": [
    {
      "p": "9kzVQYtggdT4Pm3GqbSPgweKKoKmBdNpXMp4DHm2xhMm5RQs4GEb6I95BfKaG0NfpXGDsTrsCGlJnDThxl7b3Ds4P1FPxIBDc956EUKsA88PtKp7YCs1O3O-x-jE-6qm8pwLAAd5k26mpwvW2k7ZNCZksS1n6xPFkHCX5PBEcvs",
      "kty": "RSA",
      "q": "7MMM7Ks8nYSLt2lrmM-m5AARjvUBzLrEVCkXAsUgrs7m6Nrn9DqFPSWaXxHXYSRgQzADrBLrRhf-SkEnwiGF9XPpWf8iVYhHjH4fIqPwh2tWjZdo_pNC2u2uyv8uD7jHOXDXxH9RHgU9jHqXIsgUiP_RMWlPXf1xkAyzCNLlUnM",
      "d": "uHHbnGQ-94RrRe5o8eMav8EziDWD3gGzNXZbztwwjp7s03gNbfPC8x5UW9qNuiP5wdDdJ1uX5ZM-tpS45sW8YNqwsFagDaIHJOXp47pvj36sAE-7sc2Ip91U-A-wQHVszKdnMBNFYfDHqf4zg6W4aXaqk3uoKSJ_o2aeNsydrsb0mzrtANgq0yOT414ZTAoFiZJ_jFJRjQzX7OVLCcq4EWAujAum2Qsj1Sc-Y1Z0EaO-r4g2zw0SZC2MTtbgIuf1ff-rVljDXVKhaLbcAnh6j3UzxrJqNd-4xjv6e-FAyu2_C4CUnM7QyriJnOzZBGfCpoJdblNecVtOI28vRCKKSQ",
      "e": "AQAB",
      "use": "sig",
      "kid": "816a8d49-a969-4ff7-a1f4-d25e4e8f3af5",
      "qi": "7wFuwZJQSGmL2PYIP78FDx4wRcuCmCeAXGC45eTzNw0HMybJNpRK2refdPf5TxMwRGLtYgz997AoBA9IV-fuMxji8DhexJ6SygXnpFqUPfaGbMzJuSSUlnQL4Ek17wEjEdqkki8fYC5rr25GQQm6cV9hmMGaEHE6ZANdUQgltl0",
      "dp": "7vqr7PX0hOUEnWZcXWuB2AwnxomP15VC5TLa-pfafSQ2GA3UYT44GxWiwt-bIZrkoh2bPwrB3IN0VemFq7l8sJqRP_aAZFRjnniejkLXrrZpMc48-ZnTA8WRtlynTN1PMZWwoq2eDCxP7UNyi833uD8MclFxREmh5z0oVI3AjKM",
      "dq": "nOLm1pDleq9Q8blubfTzbtPIzsT1a1c7L1WHBPPhI1TA1_3ug_yfO5SGRYcKBDnZe8v-MvDabDkL7OJd2RrjrHEhaNxSQQEsACG2ufqOMP3kfbCeB0tHmtCy6ZrMR-i2Qw7OO0vuUYlBbqvxKEASs3FoimhxCiQeM0jm_erZwJc",
      "n": "48p9jir9cSmlach6V7kgTo6FrNr_t8eo0Dge-iS4BvG_J77vjyiTYgsN89GKhl8OH8tagynXYtL0BBGifFJ9SW3fk6o1aiHjiDr3BnnCR3J-o7ZOS1Iv3NTnoBRDWKXIw3Ue5rRG69rhfuAUsev4ZKWzf7T0DKvmIdt6pa0Qo_mHTCApqH_AUdFppRKxj2REy51tkVRG1ZtyMAL-c_HuVkn4o38_IRNvtjDFitlbfEpEjpzX5vqxtLJaW-zBwPp1RZpiLv7NaA_OFLgtbuWgIsT7lSiKR2EH7Vex4GmqKaiXwFpq5mKOdLLZ_FgxVPO8T6e04MzJIiqSa70ynBsMwQ"
    },
    {
      "kty": "EC",
      "d": "6trxXG9_O5D0ftCMyOQiA0BA060Wj35TUCM3o-diOI8",
      "use": "sig",
      "crv": "P-256",
      "kid": "a4778a72-ba1c-4e36-bdf2-253af526f7b6",
      "x": "fsvefMbT_Ac7XW_g6Q64yK0MSpNkuEUJmORhsm-2hNE",
      "y": "8vFAzHoy3hOKEiGTBHcW2RI8BaBjnQu8gE-BHcSinrk"
    },
    {
      "kty": "EC",
      "d": "7h3-n99wyXwh5UaJszcf6MV4kxBcoch7GSYC0677gas",
      "use": "sig",
      "crv": "secp256k1",
      "kid": "c3338ed2-4bf6-4f3e-a929-0120ac218f3f",
      "x": "xMU8Nc_UIGGW-ZjqNgrF7V1lFMLD1hMegXz1CUvrkhk",
      "y": "Ww103Wj1PZ0smTTn8ryaGhxB5uyikln46zV_GDFCKs0"
    },
    {
      "kty": "OKP",
      "d": "GABO6NavqIsKoWd8duMz1dr6lBfu5iAba5J6PVuZEg0",
      "use": "sig",
      "crv": "Ed25519",
      "kid": "ed15198e-791f-4c19-a321-058ffe52f2d2",
      "x": "voGU4rrjDn7VpQLZ1ny0cwljX3pCyP7wETckWcjMVCk"
    }
  ]
}
server_encryption_keys
{
  "keys": [
    {
      "p": "5xqie0-uTFAcJ26WudaVFqZEMD74KZ1P0lLJshc0y0aRFPTbJDLBB_npzsMmAowHhXe4_LVHWJYy7xTIzvUM4ybmdRt5LUB0R-XezN9Y5ttZ0W5dHqIPIFxeZAAQBJVvIj2m0pYQ5CvbKqHCXQ6dZEAM9Jb319EsiN7EsdkGNts",
      "kty": "RSA",
      "q": "0XY5bDtUtsjYqIiZ-C8UgBwAE1Hbi2zTzWdotMheV1eGkDn00jHi6PF0kEvD_30DYt4sifmbyLYrpvNhOMsK8V33G7jPf2bIDgqoNM6wWJVn5ohBG6A2fPZ5agP7EsOpsmhU0nh_Iq_O3AhYYk5Hf97NNhVzfzY4je8OKZe9QF8",
      "d": "Z6T_6vtK17gXgpn1PvGVboZDGSwHRIeCuYsnTmed2okF5cuMINxapTKtONztvrJ5IuPC28ij7nFGlvJUdWmT0AVJmD_D5GzyIrnR4Bxm2TkNS7z27v67EgPauX6cUr7E62Qr5bwD166qJ5XaKn3p-pT8knRcj1rR4Jda3ROZZMWvvSq_V4hNKg0-L8c1cabMvdGRaDsPMI32ZGixdUVoY4r3iVYO0ibSef0JbjYrFQ939gWVtkFqISS3pC7favB8AEVMbJHQqHp08uWOm68ci7iBw_NV1vmeVJe7geWmmW2U_CsJ7xchkhgn56wnJROIUMNLd5udgCNu40h4DvIb2Q",
      "e": "AQAB",
      "use": "enc",
      "kid": "44afa7fa-b1cc-493b-b5c6-6f6890aba3dd",
      "qi": "yOwbkFSY6z8CWMJgozKVxhEweRtmMrTLybskEuSKgSawecDuESaLM6rZndoBXBqWgoMiOlMpp-DkgWMau3vd2YngoZNmNo1JUeU39QCn3XA2WCBR5vg1316aZLzZG0T0hKbgbg53z2eTdk1-kCsQZe5KlutQ1sF3JGejcUc6VMQ",
      "dp": "gvQEvfsYuQVr7qwrnIKLWJo-aVhFJs-NO5DN2axsrgL-kvFse8aGuw5R_md2Ulsmp-p_WDMgioIRuof8gck51D1muVUoBQxQ16zZ4x1sMuR4sMPo4ELUb3HnyqJ-cRp8LtrgfNOsHp77Qd0HVdPCO9xPewlQx2ov4h7ZNi3T56E",
      "alg": "RSA-OAEP",
      "dq": "X_CoyJw8ZySDqF45N-ZIm403s6Gwz6HfOZv956BHJfZfGjyRmJ1k85F09IrfkWxvWp-tAt2jr0FRqTyc8Wh-8KM7hiUWVaJ8S4IyHU32k_yLBJqwR7kQfBhg8GA2Zhfc6GzFPUoX4YlpVHs2EIEOWtFwaS9WIZRyPwCaGg74jj0",
      "n": "vRd4xDPdpJn8K70uLBc8OFrGfBTQCtLa6Bxl8wWhvsxdNPXog4f0813uUqeilR4WTTOCSM0g7rDquMFadm3mcPpaYCk_3pjBJ92Y6CRsa7IcSKZhmt8wmBn5dAP5rmik1po99SN1bd3VirJuzltk7gT7iOhgJkA7t1_9oxZaKvWCez2SAxsa1Nf3PXtyh9ofnx7mqZ3P48OFoe58H9zHUaX8A9J1N_9D5Hsdne1H-EVIA1M6-DLvmgpprsIUXO78yhZ7u9PHes1tn6UFI08EtZerFPE4zqlAx5rYTcwRSK3AAhKM2yUedKewQsxjx_uFS_Xj_7GSqYCImxtFw7QbRQ"
    },
    {
      "kty": "EC",
      "d": "jHNGL5uPatKz0MrDfzMIF_tFXPID8RKhzQkD6NJjHfc",
      "use": "enc",
      "crv": "P-256",
      "kid": "71398a4b-d1bb-40be-a8e2-c7f29ea6641a",
      "x": "cjT2Xq4hY9XBpZAkVxDGsczY9tFiNibR50t-a1GDoDs",
      "y": "uFiXfGGTP-TgfyUINdw4wqnVobgiDG73J71-iSyoaYs",
      "alg": "ECDH-ES"
    }
  ]
}
server_public_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "816a8d49-a969-4ff7-a1f4-d25e4e8f3af5",
      "n": "48p9jir9cSmlach6V7kgTo6FrNr_t8eo0Dge-iS4BvG_J77vjyiTYgsN89GKhl8OH8tagynXYtL0BBGifFJ9SW3fk6o1aiHjiDr3BnnCR3J-o7ZOS1Iv3NTnoBRDWKXIw3Ue5rRG69rhfuAUsev4ZKWzf7T0DKvmIdt6pa0Qo_mHTCApqH_AUdFppRKxj2REy51tkVRG1ZtyMAL-c_HuVkn4o38_IRNvtjDFitlbfEpEjpzX5vqxtLJaW-zBwPp1RZpiLv7NaA_OFLgtbuWgIsT7lSiKR2EH7Vex4GmqKaiXwFpq5mKOdLLZ_FgxVPO8T6e04MzJIiqSa70ynBsMwQ"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "f90f96f9-612e-4c20-8b6c-10a4c7c90dfd",
      "n": "gz0AFjj1dD8UbKkHP34OKSTCl6PHC2BqzsXX3R6d9QNkqCEIxvK2DyhpLnnEatUvg10q3cCs-9nZCSmX4_uwtOJNdLbtarrqUQwPsNXRB8lB0X7jVO3VjfOYhZSNETK7eKJ_qWE2P8_AwPV4q0ZMKuni3oj5SwObgbGZ2fytsI37ylZ9SDnRrdPpZquUj7hsviKFW49HSMTNbbIfr1Yw5JYLMdXj0KmeQgWWVxJ70UxhnjLApQCBXbE5rnNcGvrduBIFS-YMw8GoPuGq8Z7Oomea3-kY5YuMaoerk9n60ZlBpo9j0lrx7FziD7CPwCmBUiTJCWIcjjxtC-od_vavIQ"
    },
    {
      "kty": "EC",
      "use": "sig",
      "crv": "P-256",
      "kid": "a4778a72-ba1c-4e36-bdf2-253af526f7b6",
      "x": "fsvefMbT_Ac7XW_g6Q64yK0MSpNkuEUJmORhsm-2hNE",
      "y": "8vFAzHoy3hOKEiGTBHcW2RI8BaBjnQu8gE-BHcSinrk"
    },
    {
      "kty": "EC",
      "use": "sig",
      "crv": "P-256",
      "kid": "968a8fb4-5b33-4022-a49e-fa57f298611e",
      "x": "E8cN6U5v3ybGjCf5Z051lyaDj6bMN1ghmoNR5xkSoC0",
      "y": "GrALLad6YcHDGMFHQreF58ljwyjukXiWcBTeopJap3I"
    },
    {
      "kty": "EC",
      "use": "sig",
      "crv": "secp256k1",
      "kid": "c3338ed2-4bf6-4f3e-a929-0120ac218f3f",
      "x": "xMU8Nc_UIGGW-ZjqNgrF7V1lFMLD1hMegXz1CUvrkhk",
      "y": "Ww103Wj1PZ0smTTn8ryaGhxB5uyikln46zV_GDFCKs0"
    },
    {
      "kty": "OKP",
      "use": "sig",
      "crv": "Ed25519",
      "kid": "ed15198e-791f-4c19-a321-058ffe52f2d2",
      "x": "voGU4rrjDn7VpQLZ1ny0cwljX3pCyP7wETckWcjMVCk"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "enc",
      "kid": "44afa7fa-b1cc-493b-b5c6-6f6890aba3dd",
      "alg": "RSA-OAEP",
      "n": "vRd4xDPdpJn8K70uLBc8OFrGfBTQCtLa6Bxl8wWhvsxdNPXog4f0813uUqeilR4WTTOCSM0g7rDquMFadm3mcPpaYCk_3pjBJ92Y6CRsa7IcSKZhmt8wmBn5dAP5rmik1po99SN1bd3VirJuzltk7gT7iOhgJkA7t1_9oxZaKvWCez2SAxsa1Nf3PXtyh9ofnx7mqZ3P48OFoe58H9zHUaX8A9J1N_9D5Hsdne1H-EVIA1M6-DLvmgpprsIUXO78yhZ7u9PHes1tn6UFI08EtZerFPE4zqlAx5rYTcwRSK3AAhKM2yUedKewQsxjx_uFS_Xj_7GSqYCImxtFw7QbRQ"
    },
    {
      "kty": "EC",
      "use": "enc",
      "crv": "P-256",
      "kid": "71398a4b-d1bb-40be-a8e2-c7f29ea6641a",
      "x": "cjT2Xq4hY9XBpZAkVxDGsczY9tFiNibR50t-a1GDoDs",
      "y": "uFiXfGGTP-TgfyUINdw4wqnVobgiDG73J71-iSyoaYs",
      "alg": "ECDH-ES"
    }
  ]
}
2020-10-30 05:56:21 SUCCESS
ValidateServerJWKs
Valid server JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2020-10-30 05:56:21 SUCCESS
CheckDistinctKeyIdValueInServerJWKs
Distinct 'kid' value in all keys of server_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2020-10-30 05:56:21 SUCCESS
OIDCCLoadUserInfo
Added user information
user_info
{
  "sub": "user-subject-1234531",
  "name": "Demo T. User",
  "given_name": "Demo",
  "family_name": "User",
  "middle_name": "Theresa",
  "nickname": "Dee",
  "preferred_username": "d.tu",
  "gender": "female",
  "birthdate": "2000-02-03",
  "address": {
    "street_address": "100 Universal City Plaza",
    "locality": "Hollywood",
    "region": "CA",
    "postal_code": "91608",
    "country": "USA"
  },
  "zoneinfo": "America/Los_Angeles",
  "locale": "en-US",
  "phone_number": "+1 555 5550000",
  "phone_number_verified": false,
  "email": "user@example.com",
  "email_verified": false,
  "website": "https://openid.net/",
  "updated_at": "1580000000"
}
2020-10-30 05:56:21 SUCCESS
GetDynamicClientConfiguration
Created dynamic_client_registration_template object from the client configuration.
client_id
test-client-id-346334adgdsfgdfg3425
client_secret
test-client-secret-452wf246w3g324t34
scope
openid accounts
redirect_uri
https://www.gluu.org
certificate
-----BEGIN CERTIFICATE-----
MIIDZjCCAhqgAwIBAgIhAJZt5gX62poPeFj5+i2q9ozjpIKLoLQNw3zy8134lfRY MEEGCSqGSIb3DQEBCjA0oA8wDQYJYIZIAWUDBAICBQChHDAaBgkqhkiG9w0BAQgw DQYJYIZIAWUDBAICBQCiAwIBMDAeMRwwGgYDVQQDDBNveGQgQ0EgQ2VydGlmaWNh dGVzMB4XDTIwMDgyNzEzMjg1OFoXDTIwMTIwNTEzMjkwNVowHjEcMBoGA1UEAwwT b3hkIENBIENlcnRpZmljYXRlczCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAIo79ge2mJ055DBIQJ9Up6ODBC4ch72nQU6ZNLx/1JgpSokj2bXgDSxUN2rd SiFEWGv/u5CUKDpavYSMONIPGX+DH2rN10oZN/WFqP1ZSp/GzQbnf4SWn3rUtU8w p5bj+8XB+b1CtNbz2AMO11XnSoD2tWV5waS2fR4HBqct3Smo3Ek7Gno9oXEITGU2 94dEO3AXkoHLMZf+z6BTnQdPBWncHVYjz43YMxLr0hVidHQxTYzoU0RID6bRTug7 bfW8a6yrT2/hF1MCrCIe3Jd7HJrgV3sLIZFUX9p69v1Ghuu+lAVXiOYCkgQ5ab6T K6Oxq8okOOh74AaSUBzlW0ijoV0CAwEAAaMnMCUwIwYDVR0lBBwwGgYIKwYBBQUH AwEGCCsGAQUFBwMCBgRVHSUAMEEGCSqGSIb3DQEBCjA0oA8wDQYJYIZIAWUDBAIC BQChHDAaBgkqhkiG9w0BAQgwDQYJYIZIAWUDBAICBQCiAwIBMAOCAQEANbRPGBNr Nn+SeQdTeQQ6Gmp5tFTjs/hwshJ4YZCE5j3f6W8o2cN91TFK8lHTIK7zRj1c/yJf Xf27BPTFZOTvYzlHBkRKUptc7aCJgC5awwdalPxU7NEs2T6R8OaNWeuUtT9T6Oze si3Rx0hHmieqsYgnW+uHgLokI8vFickzXdTDiib1hE44+hQAwkRQ2IO8anjSGTAt LUF59D0O5XdJ0PVgq7I0tpNdKM5LcztY1mrq2B4fRLnVJsoz54qCuBNQG1i/MNYD 8Cx5ZxlehAtexm3rVMKuVy3wOpYId8feVPsqk+oXVgkiuV47McvD8NAzY3PXqB19 rXRsjI7iPJRkQQ==
-----END CERTIFICATE-----
jwks
{
  "keys": [
    {
      "kid": "efe712dc-7820-4f36-90ae-b6e6b8490c0d_sig_ps256",
      "kty": "RSA",
      "use": "sig",
      "alg": "PS256",
      "exp": 1607326752998,
      "x5c": [
        "MIIDZTCCAhmgAwIBAgIgEzTfHCIizrfsOo9Q6szuD1oAomyy45mEGT9D4+TE4nQwQQYJKoZIhvcNAQEKMDSgDzANBglghkgBZQMEAgEFAKEcMBoGCSqGSIb3DQEBCDANBglghkgBZQMEAgEFAKIDAgEgMB4xHDAaBgNVBAMME294ZCBDQSBDZXJ0aWZpY2F0ZXMwHhcNMjAwODI5MDczOTAzWhcNMjAxMjA3MDczOTEyWjAeMRwwGgYDVQQDDBNveGQgQ0EgQ2VydGlmaWNhdGVzMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvCH0I9/HsIxZnA+vbUfteJ3YPzhSpKE1uh4mZ36U+RzmDTWIvJsTFU83EVHXQp1Tvx0FtFcH4a8pynFoGXtD3AUajJlH0yN7EXU15K+NZ0OMZaS+7WWpkh5XHx3pphq8X7RLY3GEhPXdO/OKKq0IYi03npqG2y7v52DWaTbVGb/Z4nJ+D2b0buUWG9JGknFEEHiDJn0kvrDHor2Fv5Fx8USVUfdZDlQrW6ZTMYVMQhTam3LqDrzvk+HXKrgUUAMmN49r+2AUHEMJBBT2urtTpC57vdEGCBK4HiyXh/bgcFCmxi5DZ5G2jbScTFLoJI95wwgjuo4Mj9ZokCzOdnHhVwIDAQABoycwJTAjBgNVHSUEHDAaBggrBgEFBQcDAQYIKwYBBQUHAwIGBFUdJQAwQQYJKoZIhvcNAQEKMDSgDzANBglghkgBZQMEAgEFAKEcMBoGCSqGSIb3DQEBCDANBglghkgBZQMEAgEFAKIDAgEgA4IBAQB+cMDR+ceVqlnvMTlzoX5LJBRfvVWs0Z5qTDlJj87HWOC8AUTBVz8YPUvt4kcocZY5RdswVTVmBvnTTj4VbJF0EMwSFauZEfPisNgodgPBFPk9+DkFdPhezvQpc9pR99aOv1D5QbtBqDxnOSwEKy9m+CtrFwVaFRI5HE8Waut8GAyKKMVPkm4TXipwFmmBnisdMEr0ThEg9Vr/mU3uQFMZukU3jJoNcxlq6FepzSjQS5iuPeNDnTwqoGJTVyFC0Xm6+Xg48uuR5qYk9HpbRaBLIAnDt76CxnIDEWcGwR8iUvER/fFOwKlXiX+UhXfglPehdh/LWk2OZ7lCJILON9zQ"
      ],
      "n": "vCH0I9_HsIxZnA-vbUfteJ3YPzhSpKE1uh4mZ36U-RzmDTWIvJsTFU83EVHXQp1Tvx0FtFcH4a8pynFoGXtD3AUajJlH0yN7EXU15K-NZ0OMZaS-7WWpkh5XHx3pphq8X7RLY3GEhPXdO_OKKq0IYi03npqG2y7v52DWaTbVGb_Z4nJ-D2b0buUWG9JGknFEEHiDJn0kvrDHor2Fv5Fx8USVUfdZDlQrW6ZTMYVMQhTam3LqDrzvk-HXKrgUUAMmN49r-2AUHEMJBBT2urtTpC57vdEGCBK4HiyXh_bgcFCmxi5DZ5G2jbScTFLoJI95wwgjuo4Mj9ZokCzOdnHhVw",
      "e": "AQAB"
    },
    {
      "kid": "1ae82071-038b-4e4b-8a2b-b2a8a196a350_enc_rsa1_5",
      "kty": "RSA",
      "use": "enc",
      "alg": "RSA1_5",
      "exp": 1607326752998,
      "x5c": [
        "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\u003d"
      ],
      "n": "woTz8lj4vH7xVLBrINlqrA8bSk7qSnE6rdaOsdkxnu7R2rmxVA0IpR0UVTOe7V_mQ6RCanjebS29EYR4fXf1t0TO862NUdHu7F_2Qf1NKTb1ZnwihwNbiJnytpoOA5iI2jXvfNIDX55KEIM4IcV0e_Cmp3-ynb2IVzluzkB3RFKShtYiIXLoGeMCCxS4_uUcryeAvspz5tQpPJclgzXgK_Q3G072JU-LIlKHKYkSVzZCWiymTYpkTOOKAZYNKfYClaCOngFqS1BBkdslzOXWxSjwajWPGy1KZmzNi7DkyDK5zXdf8iaS5Z2PW1TREAmLgvmQDOzW9rCZkEQqTjV_Aw",
      "e": "AQAB"
    }
  ]
}
2020-10-30 05:56:21
oidcc-client-test-nonce-invalid
Setup Done
2020-10-30 05:56:58 INCOMING
oidcc-client-test-nonce-invalid
Incoming HTTP request to test instance L8RnCZuHpy8op2X
incoming_headers
{
  "host": "www.certification.openid.net",
  "accept": "text/plain,application/json",
  "user-agent": "Apache-HttpClient/4.5.3 (Java/1.8.0_231)",
  "accept-encoding": "gzip,deflate",
  "x-ssl-cipher": "ECDHE-RSA-AES256-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "connection": "close",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net"
}
incoming_path
.well-known/openid-configuration
incoming_body_form_params
incoming_method
GET
incoming_body_json
incoming_query_string_params
{}
incoming_body
Discovery endpoint
2020-10-30 05:56:58 OUTGOING
oidcc-client-test-nonce-invalid
Response to HTTP request to test instance L8RnCZuHpy8op2X
outgoing_status_code
200
outgoing_headers
{}
outgoing_body
{
  "issuer": "https://www.certification.openid.net/test/a/gluu-oxd-test/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/gluu-oxd-test/jwks",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/userinfo",
  "registration_endpoint": "https://www.certification.openid.net/test/a/gluu-oxd-test/register",
  "scopes_supported": [
    "openid",
    "phone",
    "profile",
    "email",
    "address",
    "offline_access"
  ],
  "response_types_supported": [
    "code",
    "id_token code",
    "token code id_token",
    "id_token",
    "token id_token",
    "token code",
    "token"
  ],
  "response_modes_supported": [
    "query",
    "fragment",
    "form_post"
  ],
  "token_endpoint_auth_methods_supported": [
    "client_secret_basic"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit"
  ],
  "claims_parameter_supported": true,
  "acr_values_supported": [
    "PASSWORD"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "claim_types_supported": [
    "normal",
    "aggregated",
    "distributed"
  ],
  "claims_supported": [
    "sub",
    "name",
    "given_name",
    "family_name",
    "middle_name",
    "nickname",
    "gender",
    "birthdate",
    "preferred_username",
    "profile",
    "website",
    "locale",
    "updated_at",
    "address",
    "zoneinfo",
    "phone_number",
    "phone_number_verified",
    "email",
    "email_verified"
  ],
  "id_token_signing_alg_values_supported": [
    "none",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "none",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "request_object_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "userinfo_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES256K",
    "ES384",
    "ES512",
    "EdDSA"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OAEP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "dir"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ]
}
outgoing_path
.well-known/openid-configuration
2020-10-30 05:56:59 INCOMING
oidcc-client-test-nonce-invalid
Incoming HTTP request to test instance L8RnCZuHpy8op2X
incoming_headers
{
  "host": "www.certification.openid.net",
  "accept": "application/json",
  "content-type": "application/json",
  "user-agent": "Apache-HttpClient/4.5.3 (Java/1.8.0_231)",
  "accept-encoding": "gzip,deflate",
  "x-ssl-cipher": "ECDHE-RSA-AES256-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "910",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
register
incoming_body_form_params
incoming_method
POST
incoming_body_json
{
  "access_token_as_jwt": "false",
  "allow_spontaneous_scopes": false,
  "token_endpoint_auth_signing_alg": "RS256",
  "post_logout_redirect_uris": [
    "https://www.gluu.org"
  ],
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "application_type": "web",
  "rpt_as_jwt": "false",
  "redirect_uris": [
    "https://www.gluu.org"
  ],
  "oxd_id": "c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "token_endpoint_auth_method": "client_secret_basic",
  "frontchannel_logout_uri": "https://www.gluu.org",
  "frontchannel_logout_session_required": false,
  "scope": "openid profile email phone address",
  "run_introspection_script_before_access_token_as_jwt_creation_and_include_claims": "false",
  "require_auth_time": false,
  "client_name": "oxd client for rp: c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "response_types": [
    "code token"
  ],
  "id_token_signed_response_alg": "RS256"
}
incoming_query_string_params
{}
incoming_body
{
  "access_token_as_jwt" : "false",
  "allow_spontaneous_scopes" : false,
  "token_endpoint_auth_signing_alg" : "RS256",
  "post_logout_redirect_uris" : [ "https://www.gluu.org" ],
  "grant_types" : [ "authorization_code", "implicit" ],
  "application_type" : "web",
  "rpt_as_jwt" : "false",
  "redirect_uris" : [ "https://www.gluu.org" ],
  "oxd_id" : "c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "token_endpoint_auth_method" : "client_secret_basic",
  "frontchannel_logout_uri" : "https://www.gluu.org",
  "frontchannel_logout_session_required" : false,
  "scope" : "openid profile email phone address",
  "run_introspection_script_before_access_token_as_jwt_creation_and_include_claims" : "false",
  "require_auth_time" : false,
  "client_name" : "oxd client for rp: c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "response_types" : [ "code token" ],
  "id_token_signed_response_alg" : "RS256"
}
Registration endpoint
2020-10-30 05:56:59 SUCCESS
OIDCCExtractDynamicRegistrationRequest
Extracted dynamic client registration request
request
{
  "access_token_as_jwt": "false",
  "allow_spontaneous_scopes": false,
  "token_endpoint_auth_signing_alg": "RS256",
  "post_logout_redirect_uris": [
    "https://www.gluu.org"
  ],
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "application_type": "web",
  "rpt_as_jwt": "false",
  "redirect_uris": [
    "https://www.gluu.org"
  ],
  "oxd_id": "c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "token_endpoint_auth_method": "client_secret_basic",
  "frontchannel_logout_uri": "https://www.gluu.org",
  "frontchannel_logout_session_required": false,
  "scope": "openid profile email phone address",
  "run_introspection_script_before_access_token_as_jwt_creation_and_include_claims": "false",
  "require_auth_time": false,
  "client_name": "oxd client for rp: c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "response_types": [
    "code token"
  ],
  "id_token_signed_response_alg": "RS256"
}
2020-10-30 05:56:59 INFO
EnsureRegistrationRequestContainsAtLeastOneContact
This application requires that registration requests contain at least one contact.
2020-10-30 05:56:59 SUCCESS
ValidateClientGrantTypes
grant_types match response_types
grant_types
[
  "authorization_code",
  "implicit"
]
response_types
[
  "code token"
]
2020-10-30 05:56:59 SUCCESS
OIDCCValidateClientRedirectUris
Valid redirect_uri(s) provided in registration request
redirect_uris
[
  "https://www.gluu.org"
]
2020-10-30 05:56:59 SUCCESS
ValidateClientLogoUris
Client does not contain any logo_uri
2020-10-30 05:56:59 SUCCESS
ValidateClientUris
Client does not contain any client_uri
2020-10-30 05:56:59 SUCCESS
ValidateClientPolicyUris
Client does not contain any policy_uri
2020-10-30 05:56:59 SUCCESS
ValidateClientTosUris
Client does not contain any tos_uri
2020-10-30 05:56:59 SUCCESS
ValidateClientSubjectType
A subject_type was not provided
2020-10-30 05:56:59 SUCCESS
ValidateIdTokenSignedResponseAlg
id_token_signed_response_alg is one of the known algorithms
alg
RS256
2020-10-30 05:56:59 SUCCESS
EnsureIdTokenEncryptedResponseAlgIsSetIfEncIsSet
id_token_encrypted_response_enc is not set
2020-10-30 05:56:59 INFO
ValidateUserinfoSignedResponseAlg
Skipped evaluation due to missing required element: client userinfo_signed_response_alg
path
userinfo_signed_response_alg
mapped
object
client
2020-10-30 05:56:59 SUCCESS
EnsureUserinfoEncryptedResponseAlgIsSetIfEncIsSet
userinfo_encrypted_response_enc is not set
2020-10-30 05:56:59 INFO
ValidateRequestObjectSigningAlg
Skipped evaluation due to missing required element: client request_object_signing_alg
path
request_object_signing_alg
mapped
object
client
2020-10-30 05:56:59 SUCCESS
EnsureRequestObjectEncryptionAlgIsSetIfEncIsSet
request_object_encryption_enc is not set
2020-10-30 05:56:59 SUCCESS
ValidateTokenEndpointAuthSigningAlg
token_endpoint_auth_signing_alg is set but it is not applicable to client authentication method
token_endpoint_auth_signing_alg
RS256
token_endpoint_auth_method
client_secret_basic
2020-10-30 05:56:59 SUCCESS
ValidateDefaultMaxAge
default_max_age is not set
2020-10-30 05:56:59 SUCCESS
ValidateRequireAuthTime
require_auth_time is encoded as a boolean
require_auth_time
false
2020-10-30 05:56:59 INFO
ValidateDefaultAcrValues
Skipped evaluation due to missing required element: client default_acr_values
path
default_acr_values
mapped
object
client
2020-10-30 05:56:59 INFO
ValidateInitiateLoginUri
Skipped evaluation due to missing required element: client initiate_login_uri
path
initiate_login_uri
mapped
object
client
2020-10-30 05:56:59 INFO
ValidateRequestUris
Skipped evaluation due to missing required element: client request_uris
path
request_uris
mapped
object
client
2020-10-30 05:56:59 SUCCESS
ValidateClientRegistrationRequestSectorIdentifierUri
A sector_identifier_uri was not provided
2020-10-30 05:56:59 SUCCESS
OIDCCRegisterClient
Registered client
client
{
  "access_token_as_jwt": "false",
  "allow_spontaneous_scopes": false,
  "token_endpoint_auth_signing_alg": "RS256",
  "post_logout_redirect_uris": [
    "https://www.gluu.org"
  ],
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "application_type": "web",
  "rpt_as_jwt": "false",
  "redirect_uris": [
    "https://www.gluu.org"
  ],
  "oxd_id": "c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "token_endpoint_auth_method": "client_secret_basic",
  "frontchannel_logout_uri": "https://www.gluu.org",
  "frontchannel_logout_session_required": false,
  "scope": "openid profile email phone address",
  "run_introspection_script_before_access_token_as_jwt_creation_and_include_claims": "false",
  "require_auth_time": false,
  "client_name": "oxd client for rp: c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "response_types": [
    "code token"
  ],
  "id_token_signed_response_alg": "RS256",
  "client_id": "client_wTDNMjYwryjjcGE09383`-!@*"
}
2020-10-30 05:56:59
OIDCCCreateClientSecretForDynamicClient
Set the secret for registered client
client_secret
secret_BKHnYcszgTmooDxFRsoMWUUlZQuFCQmJnlYyBjwBHGcbMcvSal6159551088#)`'!
2020-10-30 05:56:59 SUCCESS
EnsureTokenEndPointAuthMethodIsClientSecretBasic
token_endpoint_auth_method is 'client_secret_basic' as expected
2020-10-30 05:56:59 SUCCESS
EnsureClientDoesNotHaveBothJwksAndJwksUri
Client does not have both jwks and jwks_uri set
client
{
  "access_token_as_jwt": "false",
  "allow_spontaneous_scopes": false,
  "token_endpoint_auth_signing_alg": "RS256",
  "post_logout_redirect_uris": [
    "https://www.gluu.org"
  ],
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "application_type": "web",
  "rpt_as_jwt": "false",
  "redirect_uris": [
    "https://www.gluu.org"
  ],
  "oxd_id": "c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "token_endpoint_auth_method": "client_secret_basic",
  "frontchannel_logout_uri": "https://www.gluu.org",
  "frontchannel_logout_session_required": false,
  "scope": "openid profile email phone address",
  "run_introspection_script_before_access_token_as_jwt_creation_and_include_claims": "false",
  "require_auth_time": false,
  "client_name": "oxd client for rp: c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "response_types": [
    "code token"
  ],
  "id_token_signed_response_alg": "RS256",
  "client_id": "client_wTDNMjYwryjjcGE09383`-!@*",
  "client_secret": "secret_BKHnYcszgTmooDxFRsoMWUUlZQuFCQmJnlYyBjwBHGcbMcvSal6159551088#)`\u0027!"
}
2020-10-30 05:56:59 INFO
FetchClientKeys
Skipped evaluation due to missing required element: client jwks_uri
path
jwks_uri
mapped
object
client
2020-10-30 05:56:59 SUCCESS
OIDCCExtractServerSigningAlg
Selected signing algorithm based on client id_token_signed_response_alg.
selected_algorithm
RS256
id_token_signed_response_alg
RS256
2020-10-30 05:56:59
SetClientIdTokenSignedResponseAlgToServerSigningAlg
Set id_token_signed_response_alg for the registered client
id_token_signed_response_alg
RS256
2020-10-30 05:56:59 OUTGOING
oidcc-client-test-nonce-invalid
Response to HTTP request to test instance L8RnCZuHpy8op2X
outgoing_status_code
201
outgoing_headers
{}
outgoing_body
{
  "access_token_as_jwt": "false",
  "allow_spontaneous_scopes": false,
  "token_endpoint_auth_signing_alg": "RS256",
  "post_logout_redirect_uris": [
    "https://www.gluu.org"
  ],
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "application_type": "web",
  "rpt_as_jwt": "false",
  "redirect_uris": [
    "https://www.gluu.org"
  ],
  "oxd_id": "c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "token_endpoint_auth_method": "client_secret_basic",
  "frontchannel_logout_uri": "https://www.gluu.org",
  "frontchannel_logout_session_required": false,
  "scope": "openid profile email phone address",
  "run_introspection_script_before_access_token_as_jwt_creation_and_include_claims": "false",
  "require_auth_time": false,
  "client_name": "oxd client for rp: c78a8071-32fe-47a0-a92c-d89adf6daf7d",
  "response_types": [
    "code token"
  ],
  "id_token_signed_response_alg": "RS256",
  "client_id": "client_wTDNMjYwryjjcGE09383`-!@*",
  "client_secret": "secret_BKHnYcszgTmooDxFRsoMWUUlZQuFCQmJnlYyBjwBHGcbMcvSal6159551088#)`\u0027!"
}
outgoing_path
register
2020-10-30 05:57:01 INCOMING
oidcc-client-test-nonce-invalid
Incoming HTTP request to test instance L8RnCZuHpy8op2X
incoming_headers
{
  "host": "www.certification.openid.net",
  "user-agent": "Apache-HttpClient/4.5.3 (Java/1.8.0_161)",
  "accept-encoding": "gzip,deflate",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "connection": "close",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net"
}
incoming_path
authorize
incoming_body_form_params
incoming_method
GET
incoming_body_json
incoming_query_string_params
{
  "response_type": "code token",
  "client_id": "client_wTDNMjYwryjjcGE09383`-!@*",
  "redirect_uri": "https://www.gluu.org",
  "scope": "openid profile email phone address",
  "state": "856al4f4sntbsi3vlq559dkhf8",
  "nonce": "o93q8s22kj8i13dnhc1gbg66ol"
}
incoming_body
Authorization endpoint
2020-10-30 05:57:01 SUCCESS
EnsureRequestDoesNotContainRequestObject
Request does not contain a request parameter
2020-10-30 05:57:01 SUCCESS
OIDCCEnsureAuthorizationHttpRequestContainsOpenIDScope
Found 'openid' in scope http request parameter
actual
[
  "openid",
  "profile",
  "email",
  "phone",
  "address"
]
expected
openid
2020-10-30 05:57:01 SUCCESS
CreateEffectiveAuthorizationRequestParameters
Merged http request parameters with request object claims
effective_authorization_endpoint_request
{
  "response_type": "code token",
  "client_id": "client_wTDNMjYwryjjcGE09383`-!@*",
  "redirect_uri": "https://www.gluu.org",
  "scope": "openid profile email phone address",
  "state": "856al4f4sntbsi3vlq559dkhf8",
  "nonce": "o93q8s22kj8i13dnhc1gbg66ol"
}
2020-10-30 05:57:01 SUCCESS
ExtractRequestedScopes
Requested scopes
scope
openid profile email phone address
2020-10-30 05:57:01 SUCCESS
ExtractNonceFromAuthorizationRequest
Extracted nonce
nonce
o93q8s22kj8i13dnhc1gbg66ol
2020-10-30 05:57:01 SUCCESS
EnsureResponseTypeIsCodeToken
Response type is expected value
expected
code token
2020-10-30 05:57:01 SUCCESS
EnsureMatchingClientId
Client ID matched
client_id
client_wTDNMjYwryjjcGE09383`-!@*
2020-10-30 05:57:01 SUCCESS
EnsureValidRedirectUriForAuthorizationEndpointRequest
redirect_uri is one of the allowed redirect uris
actual
https://www.gluu.org
expected
[
  "https://www.gluu.org"
]
2020-10-30 05:57:01 SUCCESS
EnsureOpenIDInScopeRequest
Found 'openid' scope in request
actual
[
  "openid",
  "profile",
  "email",
  "phone",
  "address"
]
expected
openid
2020-10-30 05:57:01 SUCCESS
DisallowMaxAgeEqualsZeroAndPromptNone
The client did not send max_age=0 and prompt=none parameters as expected
2020-10-30 05:57:01 SUCCESS
CreateAuthorizationCode
Created authorization code
authorization_code
prAU0YDkIY
2020-10-30 05:57:01 SUCCESS
CalculateCHash
Successful c_hash encoding
c_hash
jfnnNJC_4TJROU4-NjLFmw
2020-10-30 05:57:01 SUCCESS
GenerateBearerAccessToken
Generated access token
access_token
f2a8K2eqWHpEterCVxvJGMgVAGDnTkLBMRLzvXCbJXIXnUhmJG
2020-10-30 05:57:01 SUCCESS
CalculateAtHash
Successful at_hash encoding
at_hash
uO6MMn-jLF8tOkv77WKNxw
2020-10-30 05:57:01 SUCCESS
CreateAuthorizationEndpointResponseParams
Added authorization_endpoint_response_params to environment
params
{
  "redirect_uri": "https://www.gluu.org",
  "state": "856al4f4sntbsi3vlq559dkhf8"
}
2020-10-30 05:57:01 SUCCESS
AddCodeToAuthorizationEndpointResponseParams
Added code to authorization endpoint response params
authorization_endpoint_response_params
{
  "redirect_uri": "https://www.gluu.org",
  "state": "856al4f4sntbsi3vlq559dkhf8",
  "code": "prAU0YDkIY"
}
2020-10-30 05:57:01
AddTokenToAuthorizationEndpointResponseParams
Added token and token_type to authorization endpoint response params
authorization_endpoint_response_params
{
  "redirect_uri": "https://www.gluu.org",
  "state": "856al4f4sntbsi3vlq559dkhf8",
  "code": "prAU0YDkIY",
  "access_token": "f2a8K2eqWHpEterCVxvJGMgVAGDnTkLBMRLzvXCbJXIXnUhmJG",
  "token_type": "Bearer"
}
2020-10-30 05:57:01
SendAuthorizationResponseWithResponseModeFragment
Redirecting back to client
uri
https://www.gluu.org#state=856al4f4sntbsi3vlq559dkhf8&code=prAU0YDkIY&access_token=f2a8K2eqWHpEterCVxvJGMgVAGDnTkLBMRLzvXCbJXIXnUhmJG&token_type=Bearer
2020-10-30 05:57:01 OUTGOING
oidcc-client-test-nonce-invalid
Response to HTTP request to test instance L8RnCZuHpy8op2X
outgoing
org.springframework.web.servlet.view.RedirectView: [RedirectView]; URL [https://www.gluu.org#state=856al4f4sntbsi3vlq559dkhf8&code=prAU0YDkIY&access_token=f2a8K2eqWHpEterCVxvJGMgVAGDnTkLBMRLzvXCbJXIXnUhmJG&token_type=Bearer]
outgoing_path
authorize
2020-10-30 05:57:03 INCOMING
oidcc-client-test-nonce-invalid
Incoming HTTP request to test instance L8RnCZuHpy8op2X
incoming_headers
{
  "host": "www.certification.openid.net",
  "authorization": "Basic Y2xpZW50X3dURE5Nall3cnlqamNHRTA5MzgzJTYwLSUyMSU0MCo6c2VjcmV0X0JLSG5ZY3N6Z1Rtb29EeEZSc29NV1VVbFpRdUZDUW1KbmxZeUJqd0JIR2NiTWN2U2FsNjE1OTU1MTA4OCUyMyUyOSU2MCUyNyUyMQ\u003d\u003d",
  "content-type": "application/x-www-form-urlencoded",
  "user-agent": "Apache-HttpClient/4.5.3 (Java/1.8.0_231)",
  "accept-encoding": "gzip,deflate",
  "x-ssl-cipher": "ECDHE-RSA-AES256-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "85",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
token
incoming_body_form_params
{
  "code": "prAU0YDkIY",
  "grant_type": "authorization_code",
  "redirect_uri": "https://www.gluu.org"
}
incoming_method
POST
incoming_body_json
incoming_query_string_params
{}
incoming_body
code=prAU0YDkIY&grant_type=authorization_code&redirect_uri=https%3A%2F%2Fwww.gluu.org
Token endpoint
2020-10-30 05:57:03 SUCCESS
ExtractClientCredentialsFromBasicAuthorizationHeader
Extracted client authentication
client_id
client_wTDNMjYwryjjcGE09383`-!@*
client_secret
secret_BKHnYcszgTmooDxFRsoMWUUlZQuFCQmJnlYyBjwBHGcbMcvSal6159551088#)`'!
method
client_secret_basic
2020-10-30 05:57:03 SUCCESS
ValidateClientIdAndSecret
Client id and secret match
2020-10-30 05:57:03 SUCCESS
ValidateAuthorizationCode
Found authorization code
authorization_code
prAU0YDkIY
2020-10-30 05:57:03 SUCCESS
ValidateRedirectUriForTokenEndpointRequest
redirect_uri is the same as the one used in the authorization request
actual
https://www.gluu.org
2020-10-30 05:57:03 SUCCESS
GenerateBearerAccessToken
Generated access token
access_token
I8MmxxKj8O8jcVJ02EhbaPf9BYmlthdBvs4vQA5pi9rE7kcqKb
2020-10-30 05:57:03 SUCCESS
CalculateAtHash
Successful at_hash encoding
at_hash
oaZS_zvvCinKbYcjIy56pQ
2020-10-30 05:57:03 SUCCESS
GenerateIdTokenClaims
Created ID Token Claims
iss
https://www.certification.openid.net/test/a/gluu-oxd-test/
sub
user-subject-1234531
aud
client_wTDNMjYwryjjcGE09383`-!@*
nonce
o93q8s22kj8i13dnhc1gbg66ol
iat
1604037423
exp
1604037723
2020-10-30 05:57:03 SUCCESS
AddInvalidNonceValueToIdToken
Added invalid nonce to ID token claims
id_token_claims
{
  "iss": "https://www.certification.openid.net/test/a/gluu-oxd-test/",
  "sub": "user-subject-1234531",
  "aud": "client_wTDNMjYwryjjcGE09383`-!@*",
  "nonce": "o93q8s22kj8i13dnhc1gbg66ol1",
  "iat": 1604037423,
  "exp": 1604037723
}
nonce
o93q8s22kj8i13dnhc1gbg66ol1
2020-10-30 05:57:03 SUCCESS
AddAtHashToIdTokenClaims
Added at_hash to ID token claims
at_hash
oaZS_zvvCinKbYcjIy56pQ
id_token_claims
{
  "iss": "https://www.certification.openid.net/test/a/gluu-oxd-test/",
  "sub": "user-subject-1234531",
  "aud": "client_wTDNMjYwryjjcGE09383`-!@*",
  "nonce": "o93q8s22kj8i13dnhc1gbg66ol1",
  "iat": 1604037423,
  "exp": 1604037723,
  "at_hash": "oaZS_zvvCinKbYcjIy56pQ"
}
2020-10-30 05:57:03 SUCCESS
OIDCCSignIdToken
Signed the ID token
id_token
eyJraWQiOiI4MTZhOGQ0OS1hOTY5LTRmZjctYTFmNC1kMjVlNGU4ZjNhZjUiLCJhbGciOiJSUzI1NiJ9.eyJhdF9oYXNoIjoib2FaU196dnZDaW5LYlljakl5NTZwUSIsInN1YiI6InVzZXItc3ViamVjdC0xMjM0NTMxIiwiYXVkIjoiY2xpZW50X3dURE5Nall3cnlqamNHRTA5MzgzYC0hQCoiLCJpc3MiOiJodHRwczpcL1wvd3d3LmNlcnRpZmljYXRpb24ub3BlbmlkLm5ldFwvdGVzdFwvYVwvZ2x1dS1veGQtdGVzdFwvIiwiZXhwIjoxNjA0MDM3NzIzLCJub25jZSI6Im85M3E4czIya2o4aTEzZG5oYzFnYmc2Nm9sMSIsImlhdCI6MTYwNDAzNzQyM30.UKXaTnFAl55TGlL3nqI_8EnDl0DnmzxKFZN5aUjHuLlQtjGKFpQaiKXy1Da4n-t5ywanGvSQogUTq3C2gpELGtoSDHdeO4tB1Bt2P85kzPs_5E1PqFu2PwWBOY7OSaPj8JoeSFNJfJre5jOWPdfT1VfPEPZApQzjGsBjpLzxzyoLfWWO7bShG3ZgblKoVFymSIy_uQku1d6g606DHFxM8zfHcIHZmC5JcfacYAerk-obk2pE849Eq3n7kYELzTOH871hICc3sIK0RgOUKn9pKFrg0CMo47wEZJj667NqcYXgcth-4JCcuiGjvtRMJx6O-eFB2anphf4DjDToGgR5Cg
key
{"p":"9kzVQYtggdT4Pm3GqbSPgweKKoKmBdNpXMp4DHm2xhMm5RQs4GEb6I95BfKaG0NfpXGDsTrsCGlJnDThxl7b3Ds4P1FPxIBDc956EUKsA88PtKp7YCs1O3O-x-jE-6qm8pwLAAd5k26mpwvW2k7ZNCZksS1n6xPFkHCX5PBEcvs","kty":"RSA","q":"7MMM7Ks8nYSLt2lrmM-m5AARjvUBzLrEVCkXAsUgrs7m6Nrn9DqFPSWaXxHXYSRgQzADrBLrRhf-SkEnwiGF9XPpWf8iVYhHjH4fIqPwh2tWjZdo_pNC2u2uyv8uD7jHOXDXxH9RHgU9jHqXIsgUiP_RMWlPXf1xkAyzCNLlUnM","d":"uHHbnGQ-94RrRe5o8eMav8EziDWD3gGzNXZbztwwjp7s03gNbfPC8x5UW9qNuiP5wdDdJ1uX5ZM-tpS45sW8YNqwsFagDaIHJOXp47pvj36sAE-7sc2Ip91U-A-wQHVszKdnMBNFYfDHqf4zg6W4aXaqk3uoKSJ_o2aeNsydrsb0mzrtANgq0yOT414ZTAoFiZJ_jFJRjQzX7OVLCcq4EWAujAum2Qsj1Sc-Y1Z0EaO-r4g2zw0SZC2MTtbgIuf1ff-rVljDXVKhaLbcAnh6j3UzxrJqNd-4xjv6e-FAyu2_C4CUnM7QyriJnOzZBGfCpoJdblNecVtOI28vRCKKSQ","e":"AQAB","use":"sig","kid":"816a8d49-a969-4ff7-a1f4-d25e4e8f3af5","qi":"7wFuwZJQSGmL2PYIP78FDx4wRcuCmCeAXGC45eTzNw0HMybJNpRK2refdPf5TxMwRGLtYgz997AoBA9IV-fuMxji8DhexJ6SygXnpFqUPfaGbMzJuSSUlnQL4Ek17wEjEdqkki8fYC5rr25GQQm6cV9hmMGaEHE6ZANdUQgltl0","dp":"7vqr7PX0hOUEnWZcXWuB2AwnxomP15VC5TLa-pfafSQ2GA3UYT44GxWiwt-bIZrkoh2bPwrB3IN0VemFq7l8sJqRP_aAZFRjnniejkLXrrZpMc48-ZnTA8WRtlynTN1PMZWwoq2eDCxP7UNyi833uD8MclFxREmh5z0oVI3AjKM","dq":"nOLm1pDleq9Q8blubfTzbtPIzsT1a1c7L1WHBPPhI1TA1_3ug_yfO5SGRYcKBDnZe8v-MvDabDkL7OJd2RrjrHEhaNxSQQEsACG2ufqOMP3kfbCeB0tHmtCy6ZrMR-i2Qw7OO0vuUYlBbqvxKEASs3FoimhxCiQeM0jm_erZwJc","n":"48p9jir9cSmlach6V7kgTo6FrNr_t8eo0Dge-iS4BvG_J77vjyiTYgsN89GKhl8OH8tagynXYtL0BBGifFJ9SW3fk6o1aiHjiDr3BnnCR3J-o7ZOS1Iv3NTnoBRDWKXIw3Ue5rRG69rhfuAUsev4ZKWzf7T0DKvmIdt6pa0Qo_mHTCApqH_AUdFppRKxj2REy51tkVRG1ZtyMAL-c_HuVkn4o38_IRNvtjDFitlbfEpEjpzX5vqxtLJaW-zBwPp1RZpiLv7NaA_OFLgtbuWgIsT7lSiKR2EH7Vex4GmqKaiXwFpq5mKOdLLZ_FgxVPO8T6e04MzJIiqSa70ynBsMwQ"}
algorithm
RS256
2020-10-30 05:57:03 INFO
EncryptIdToken
Skipped evaluation due to missing required element: client id_token_encrypted_response_alg
path
id_token_encrypted_response_alg
mapped
object
client
2020-10-30 05:57:03 SUCCESS
CreateTokenEndpointResponse
Created token endpoint response
access_token
I8MmxxKj8O8jcVJ02EhbaPf9BYmlthdBvs4vQA5pi9rE7kcqKb
token_type
Bearer
id_token
eyJraWQiOiI4MTZhOGQ0OS1hOTY5LTRmZjctYTFmNC1kMjVlNGU4ZjNhZjUiLCJhbGciOiJSUzI1NiJ9.eyJhdF9oYXNoIjoib2FaU196dnZDaW5LYlljakl5NTZwUSIsInN1YiI6InVzZXItc3ViamVjdC0xMjM0NTMxIiwiYXVkIjoiY2xpZW50X3dURE5Nall3cnlqamNHRTA5MzgzYC0hQCoiLCJpc3MiOiJodHRwczpcL1wvd3d3LmNlcnRpZmljYXRpb24ub3BlbmlkLm5ldFwvdGVzdFwvYVwvZ2x1dS1veGQtdGVzdFwvIiwiZXhwIjoxNjA0MDM3NzIzLCJub25jZSI6Im85M3E4czIya2o4aTEzZG5oYzFnYmc2Nm9sMSIsImlhdCI6MTYwNDAzNzQyM30.UKXaTnFAl55TGlL3nqI_8EnDl0DnmzxKFZN5aUjHuLlQtjGKFpQaiKXy1Da4n-t5ywanGvSQogUTq3C2gpELGtoSDHdeO4tB1Bt2P85kzPs_5E1PqFu2PwWBOY7OSaPj8JoeSFNJfJre5jOWPdfT1VfPEPZApQzjGsBjpLzxzyoLfWWO7bShG3ZgblKoVFymSIy_uQku1d6g606DHFxM8zfHcIHZmC5JcfacYAerk-obk2pE849Eq3n7kYELzTOH871hICc3sIK0RgOUKn9pKFrg0CMo47wEZJj667NqcYXgcth-4JCcuiGjvtRMJx6O-eFB2anphf4DjDToGgR5Cg
scope
openid profile email phone address
2020-10-30 05:57:03 OUTGOING
oidcc-client-test-nonce-invalid
Response to HTTP request to test instance L8RnCZuHpy8op2X
outgoing_status_code
200
outgoing_headers
{}
outgoing_body
{
  "access_token": "I8MmxxKj8O8jcVJ02EhbaPf9BYmlthdBvs4vQA5pi9rE7kcqKb",
  "token_type": "Bearer",
  "id_token": "eyJraWQiOiI4MTZhOGQ0OS1hOTY5LTRmZjctYTFmNC1kMjVlNGU4ZjNhZjUiLCJhbGciOiJSUzI1NiJ9.eyJhdF9oYXNoIjoib2FaU196dnZDaW5LYlljakl5NTZwUSIsInN1YiI6InVzZXItc3ViamVjdC0xMjM0NTMxIiwiYXVkIjoiY2xpZW50X3dURE5Nall3cnlqamNHRTA5MzgzYC0hQCoiLCJpc3MiOiJodHRwczpcL1wvd3d3LmNlcnRpZmljYXRpb24ub3BlbmlkLm5ldFwvdGVzdFwvYVwvZ2x1dS1veGQtdGVzdFwvIiwiZXhwIjoxNjA0MDM3NzIzLCJub25jZSI6Im85M3E4czIya2o4aTEzZG5oYzFnYmc2Nm9sMSIsImlhdCI6MTYwNDAzNzQyM30.UKXaTnFAl55TGlL3nqI_8EnDl0DnmzxKFZN5aUjHuLlQtjGKFpQaiKXy1Da4n-t5ywanGvSQogUTq3C2gpELGtoSDHdeO4tB1Bt2P85kzPs_5E1PqFu2PwWBOY7OSaPj8JoeSFNJfJre5jOWPdfT1VfPEPZApQzjGsBjpLzxzyoLfWWO7bShG3ZgblKoVFymSIy_uQku1d6g606DHFxM8zfHcIHZmC5JcfacYAerk-obk2pE849Eq3n7kYELzTOH871hICc3sIK0RgOUKn9pKFrg0CMo47wEZJj667NqcYXgcth-4JCcuiGjvtRMJx6O-eFB2anphf4DjDToGgR5Cg",
  "scope": "openid profile email phone address"
}
outgoing_path
token
2020-10-30 05:57:05 INCOMING
oidcc-client-test-nonce-invalid
Incoming HTTP request to test instance L8RnCZuHpy8op2X
incoming_headers
{
  "host": "www.certification.openid.net",
  "accept": "application/json",
  "user-agent": "Apache-HttpClient/4.5.3 (Java/1.8.0_231)",
  "accept-encoding": "gzip,deflate",
  "x-ssl-cipher": "ECDHE-RSA-AES256-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "connection": "close",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net"
}
incoming_path
jwks
incoming_body_form_params
incoming_method
GET
incoming_body_json
incoming_query_string_params
{}
incoming_body
Jwks endpoint
2020-10-30 05:57:05 OUTGOING
oidcc-client-test-nonce-invalid
Response to HTTP request to test instance L8RnCZuHpy8op2X
outgoing_status_code
200
outgoing_headers
{}
outgoing_body
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "816a8d49-a969-4ff7-a1f4-d25e4e8f3af5",
      "n": "48p9jir9cSmlach6V7kgTo6FrNr_t8eo0Dge-iS4BvG_J77vjyiTYgsN89GKhl8OH8tagynXYtL0BBGifFJ9SW3fk6o1aiHjiDr3BnnCR3J-o7ZOS1Iv3NTnoBRDWKXIw3Ue5rRG69rhfuAUsev4ZKWzf7T0DKvmIdt6pa0Qo_mHTCApqH_AUdFppRKxj2REy51tkVRG1ZtyMAL-c_HuVkn4o38_IRNvtjDFitlbfEpEjpzX5vqxtLJaW-zBwPp1RZpiLv7NaA_OFLgtbuWgIsT7lSiKR2EH7Vex4GmqKaiXwFpq5mKOdLLZ_FgxVPO8T6e04MzJIiqSa70ynBsMwQ"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "f90f96f9-612e-4c20-8b6c-10a4c7c90dfd",
      "n": "gz0AFjj1dD8UbKkHP34OKSTCl6PHC2BqzsXX3R6d9QNkqCEIxvK2DyhpLnnEatUvg10q3cCs-9nZCSmX4_uwtOJNdLbtarrqUQwPsNXRB8lB0X7jVO3VjfOYhZSNETK7eKJ_qWE2P8_AwPV4q0ZMKuni3oj5SwObgbGZ2fytsI37ylZ9SDnRrdPpZquUj7hsviKFW49HSMTNbbIfr1Yw5JYLMdXj0KmeQgWWVxJ70UxhnjLApQCBXbE5rnNcGvrduBIFS-YMw8GoPuGq8Z7Oomea3-kY5YuMaoerk9n60ZlBpo9j0lrx7FziD7CPwCmBUiTJCWIcjjxtC-od_vavIQ"
    },
    {
      "kty": "EC",
      "use": "sig",
      "crv": "P-256",
      "kid": "a4778a72-ba1c-4e36-bdf2-253af526f7b6",
      "x": "fsvefMbT_Ac7XW_g6Q64yK0MSpNkuEUJmORhsm-2hNE",
      "y": "8vFAzHoy3hOKEiGTBHcW2RI8BaBjnQu8gE-BHcSinrk"
    },
    {
      "kty": "EC",
      "use": "sig",
      "crv": "P-256",
      "kid": "968a8fb4-5b33-4022-a49e-fa57f298611e",
      "x": "E8cN6U5v3ybGjCf5Z051lyaDj6bMN1ghmoNR5xkSoC0",
      "y": "GrALLad6YcHDGMFHQreF58ljwyjukXiWcBTeopJap3I"
    },
    {
      "kty": "EC",
      "use": "sig",
      "crv": "secp256k1",
      "kid": "c3338ed2-4bf6-4f3e-a929-0120ac218f3f",
      "x": "xMU8Nc_UIGGW-ZjqNgrF7V1lFMLD1hMegXz1CUvrkhk",
      "y": "Ww103Wj1PZ0smTTn8ryaGhxB5uyikln46zV_GDFCKs0"
    },
    {
      "kty": "OKP",
      "use": "sig",
      "crv": "Ed25519",
      "kid": "ed15198e-791f-4c19-a321-058ffe52f2d2",
      "x": "voGU4rrjDn7VpQLZ1ny0cwljX3pCyP7wETckWcjMVCk"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "enc",
      "kid": "44afa7fa-b1cc-493b-b5c6-6f6890aba3dd",
      "alg": "RSA-OAEP",
      "n": "vRd4xDPdpJn8K70uLBc8OFrGfBTQCtLa6Bxl8wWhvsxdNPXog4f0813uUqeilR4WTTOCSM0g7rDquMFadm3mcPpaYCk_3pjBJ92Y6CRsa7IcSKZhmt8wmBn5dAP5rmik1po99SN1bd3VirJuzltk7gT7iOhgJkA7t1_9oxZaKvWCez2SAxsa1Nf3PXtyh9ofnx7mqZ3P48OFoe58H9zHUaX8A9J1N_9D5Hsdne1H-EVIA1M6-DLvmgpprsIUXO78yhZ7u9PHes1tn6UFI08EtZerFPE4zqlAx5rYTcwRSK3AAhKM2yUedKewQsxjx_uFS_Xj_7GSqYCImxtFw7QbRQ"
    },
    {
      "kty": "EC",
      "use": "enc",
      "crv": "P-256",
      "kid": "71398a4b-d1bb-40be-a8e2-c7f29ea6641a",
      "x": "cjT2Xq4hY9XBpZAkVxDGsczY9tFiNibR50t-a1GDoDs",
      "y": "uFiXfGGTP-TgfyUINdw4wqnVobgiDG73J71-iSyoaYs",
      "alg": "ECDH-ES"
    }
  ]
}
outgoing_path
jwks
2020-10-30 05:57:08 FINISHED
oidcc-client-test-nonce-invalid
Test has run to completion
testmodule_result
PASSED
2020-10-30 05:58:46
TEST-RUNNER
Alias has now been claimed by another test
alias
gluu-oxd-test
new_test_id
zrmIfWTGCdAWZeW
Test Results