Test Summary

Test Results

Expand All Collapse All
All times are UTC
2021-05-10 19:03:38 INFO
TEST-RUNNER
Test instance z0Xsg7XWnZUnuTW created
baseUrl
https://www.certification.openid.net/test/a/fintech-authlete
variant
{
  "client_auth_type": "private_key_jwt",
  "fapi_auth_request_method": "pushed",
  "fapi_profile": "consumerdataright_au",
  "fapi_response_mode": "plain_response"
}
alias
fintech-authlete
description
Authlete automated FAPI-RW-ID2, encrypted id_token (AU CDR) with private_key client auth
planId
83CmTp1qGOjlv
config
{
  "alias": "fintech-authlete",
  "description": "Authlete automated FAPI-RW-ID2, encrypted id_token (AU CDR) with private_key client auth",
  "publish": "everything",
  "server": {
    "discoveryUrl": "https://fapidev-as.authlete.net/.well-known/openid-configuration"
  },
  "client": {
    "client_id": "2334382354153498",
    "scope": "openid payments",
    "jwks": {
      "keys": [
        {
          "kty": "RSA",
          "d": "ZHPB6jX2Np7cUjFu2iiYlT1YPdJ6KSyyPjEWT72TYOX6O-0a48Ez3m5OnOy_bCwD3F7_WAL0wbWXWFsRt6DmCqW-MGxG38klMQwV4dhgI6lEYyfhvBazJyQJeqHwKE5VIezgyBJyGkK9GHUqq3k3s-hsS_MLVE6BDcLNf9iPRUlQ5JJLHGMZYAW6uv3ex-LGqhLT_BWX4Y1fowAgUvDLcaLj-_tRonKF4oJRiz6oMO4KTJJofhXzptY0T_K0u8bx7Y7JN-W7fC8havmG5bnKetsLQYHcn7ddWtOA_6Qxjxb6SMIr1bNWeGVA5p15NMHcIfsNmSK03Y-Xic5eiuBhwQ",
          "e": "AQAB",
          "kid": "fapi-jwt-assertion-20180817-1",
          "alg": "PS256",
          "n": "9sLLHll-BiuwIvupyiAOaTR-ChAjuwQhThxtSD5wgL9AG2YJlamxo52ZEhTdNKomGRw3woihBRk8okPSd1YZCkFuOc7iF1sUsxDA0APbdeAzZdwGcqvPlEqoz8HsnormZFTP9tG451Z_cMd20_cCufGqi6XBpE2fOMGhn9CNEo-_3TPyrFZwmP-rqsQ3TKp5Zkb42AACsT9GuxB-Qrrpp1hkCJdSvXhAwIvX2jOxXQORJZkW2ST0DpCTbtAoPEW0aoCIkwWjV08qTSBduA14eIl9xPACfElosTDEbL1bR6BGxoILSJTe4U5Lz4Us7l8TWhO_OaQsyxSLFxXOy13KMQ"
        },
        {
          "p": "z0FVeicrECBglwnSTGSH-Xq1VtYVcjIVb6g4T2fPmgZnt6a3yu7MJpPKl6h8kaOz-tQcNt_u48G2Zyu7E76Y9RUn43MZncW1hAq4VxQ_rKAZmFyI38pzbELTwcg5E8G0VAL54wdBzAI7R4a_fTR2OsRyl0KBqcSaRAt4PxT1kg8",
          "kty": "RSA",
          "alg": "RSA-OAEP",
          "q": "rpVBITHKspU9lS2JCnITxGfOPNRndBacvNB182IR3FaVv5UlO7VXY6r9_Ry0gsxzIsbNpRcyG1FX81baa9mF_v8KQ_XJ-GjtT-wZy2jPqBpe22jMtMdzGdSMkaw8jqHORUwvoLUOk6Bv5nAOCZRiopSrSXpOUASVZJUUpSxGlRU",
          "d": "OjDe8EkZXgvB-Gy5A4EdU8fBuAjdHLMyHKAtMaS_W_joEJHDvZRhIYbh1jAyHYoR3kFMXutCIYpRjDrsUEhjYuVKLm90CVtysoRjjkiXyupcEW3o--X_HBJhKm1Y-0I7LQ-cA7CotJpTVMR2fRTqP1T4FsORAjg9l-fbdpVmeDiZBRbL2zCWmKWhtDpHyy7vbSCRghntihz_M5Hrchk7r8ito_K3dFrV9IZSF9RoEY7kyK5bL36Kpgai44PYCzqOzqP2fteO_rZ9fn-uK59pI3ySo_PgSbJ55n14Nd9Z8m70zE9Z4aIeNDEFspZUhavngRwc7MuJ7f_hVGQ9RFbbkQ",
          "e": "AQAB",
          "use": "enc",
          "kid": "fapi20200623",
          "qi": "IyiL1_cnC5Najrfvu6ypiR3JmpHXDs8FkYJUdfqXnVWaBNxkdDi3iks943JyIfp8JI-NWndiNB6DdSBzecARDqew3lQomIsGsoR0wPFcHDee-d-NmBwEm3TSHrleGjj0oBJe6BDnAdsaHhsL9NLo_1aOd_9W_TM2kcuSntM-DFA",
          "dp": "jjER1tu2hLrh6d34JSc3zubsMOZyEkXgRRnRgFEFsnPAhtRf9l99Ot5cuU4EINuCaI1Lyi46tJG7de8fy30RbdwU4Myf_4mcbjn4nO2sfd_dj5W05mz8YYM7yxB2cGKOOLFOBf99mdzSFNGS4PC0SL9sqvAbC4FyIUsJNaZIkOs",
          "dq": "xGck3jMl1cIPhcO0aAvuMQaW_df2iqLlsYTTLPsnHLpLvTwMpx9bMMUs95NTf9KBtJ3yu8dcl17rktYi4zHTjQtegRYCIXPphgAXBL7k3jjMfgloQfgfhO-ZNEiP1-YwJ8WNzz3hKDNVr-hf4mcMj9qw1_jAIUUGzCDrGOa2gQ",
          "n": "jVc92j0ntTV0V1nwZ3mpGaV2bME4d6AMS2SRrJBM0fLehaTEqDNzGu0warz2SC9bhcBOB5_q3mYBFjmTwWzSbsk6RYETnAgViXg67PgH7Vkx2NCtwgQW3cNdnUZWRNYHsoevkx_Ta1X6Vi9ulebU_BCKjrF-6CjVcGgEsO_S5DKcukGHdf81WlQOq3zGQg4h7MLArrbPSTHHORDsu_87qY9m2EhiYSOBSF5rHsfDo7zWI5FWNG-_HO-CBM005bykIIS1aXCXx1jOW1OrKcp5xv3e-BR6MJTxncZJ4o1GtynJI8kLXRgltLArSOkbzNEr9GjU9lnSSxKLMtRLKkG2Ow"
        }
      ]
    }
  },
  "resource": {
    "resourceUrl": "https://fapidev-rs.authlete.net/api/fapi/accounts",
    "institution_id": "xxx",
    "cdrVersion": "5"
  },
  "client2": {
    "client_id": "2334383809607140",
    "scope": "openid payments",
    "jwks": {
      "keys": [
        {
          "kty": "RSA",
          "d": "Nha1ReQVpOa1vsTz0oEcbtCd2UAbYWXhLr06CXXENXxDHWhTkXCaayh4kEOp6CNfY5b75tbBZB2hhxyY7vPNSmnvrIHn1YE5a321vHEti0GoNI9UGi2KhAO40Qu0ZPqvYCo3nfRsS-CWUWzchcKlqwiwuIwXOWPEGTnuKf-iqsqm6zNXB6zkIXb0Qkm5ByyGiF_wgOJLdlEx9hHlmHPiT_RKYbsQQ4mNqwOVnkInttzPiWmfY1cYN4qlxMYtIF7vb1pz1eWjZLlQpM37qQSxNXVeKNIUrs3NRyP-VDv47YFWDRLaPEPnnS7Y5RwJgeydTPHfZ91C2Q_m79KMGHSqkQ",
          "e": "AQAB",
          "kid": "fapi-jwt-assertion-20180817-2",
          "alg": "PS256",
          "n": "kne7a8IYQR6jweqpHAplq-XRGOuiVyF5Siy6_647OhOC8ppRIMV2O_wP6qK1AKCFb78Bb8qbRI3Mz-Tr9hCWm1BZQkD-HGbNowjVsOj7oB2nbNbGfqciTyT3kTG1f5PmeX2N4-f9zZM-J4Jmi9PdMjn2fkNl9oMCW9XaLHHzCU6f-vYftxdCnVQD7ZKr40HjoAeXjwdGhgzvuWSZHkhEqx_QMh8JskqP46PjsMykFWiryju9balCdS5yASf-Fno8pXMFEV1wgipy-FPlhB5FZtLwVvH9F2jAxRaWkRQzhM5hWugIUi8YobjoIwhrmJ04JTK-DGOlThJsNvS4QANDZw"
        },
        {
          "p": "7qedTQzS0HpavGkfXrxaslZaxld9PiFxG_j_qkGa1zq5AYVvw3_YUy8HrO8-2QjXVDX7pOeM5qDR-g1Zh13kdypvGbYW3wlDdaKbsF-9FURK96M2oiNd_6UKaxP1UU1XOVEhN_LANDCfxBgK_eejbVz-3vCDezWVu9ujIBLq6wM",
          "kty": "RSA",
          "q": "jc3dAzAN-2Ti0X2QwGDCZfaqDHo-rf_8Kv7Sqn1yiwjVE6VrfRhDwkxHpLBlWciO65pRTF71vnLajE79AHsy8hO0e1egcN8axLoQ5FPOFNbcdANarxUGkdZqx8hENBUmbZjX36OX6ZKTYO74KWv8NBXwv2Va85Oxnk22NuwCWVE",
          "d": "H2BY7TOeBS55fhfBoPdTKPSkPJuN6L1w7Lqr6DxnSdxa_xu9aESxjdXSEqWkVZGDHJ81c6t4oaN9xJSTug7oNaQcJEgdooffjRfnAelVR6hpoVODrN9tk9HqRBsgV43v07AzREaPE97LMPFPzNkgloyMa2nKiUXjwv6TVh_HQryCZqj8AvUsOIZd-Qi3FCv8cYEqqIlzZ-86nQdEVEmqpkp4SmylgqF_1H0hU8_nguRFh4Ojz0GpFtb6zsSpSGGGBDWOgcu8ti-0QXJDLsyKhFo33fwwmZzJsNJZpXNQD4n-e8JS4CrMAIVSvSEUFonFuq5BwmhA-l3rwOa4Bnnf4Q",
          "e": "AQAB",
          "alg": "RSA-OAEP",
          "use": "enc",
          "kid": "fapi-2020-06-23-2",
          "qi": "wSzPUIFPoyDg01qNp3NcDALx4GS5MvTl224ICHR_zXGxR_bEBgDT_MuJv_LIozVJWD-oSXxj2M5YglcbUWFZECBiHbpdln4RAzPVgLzwiIrcCDeU1aBTQ_-2-TzyVeX3StqCcT9E74Hfo_xs3jiiR5ubKlgP4yfUEi9WjoEz0d4",
          "dp": "Czvupqrc3Z102fuk02PQbSatfTqvFZajaWquNkiCTnFgNhce7Lf-6eOD2_sjHTpSUI99-gRAWLbnS3sHZNzhnU5tDmvI5dTczRPLemD3WKHvWXrgXn-FtDwDooi8-ofGfFc6VhTiQVKsoqFzGwKlacd_4-S0e79I_h_XrPHXBxs",
          "dq": "MWb3CJVFSb_sBW_pbhxHnZ5Bv_cWvyffglskqaDqtuVs1ltbB0nc0WQh0Y5iwNTOdeZdTG4Iz0DUQu2B1xkUtqGGzzHIA4q2mLL6D5Hiyf_Q7dn9TeHVWBmLOe7bVAnKSYRmMNOdqRIXpj2a11N3me3K4eM9vH5H8w6_3IJ8jwE",
          "n": "hDI75hJSM_tN3vDFouXZyi4Rf6i_5uhgrO5iXcgAwutkf6AXw914AIQv3eUXX5m1vrN00KIlgkxBXwyP8yP27KJvKXYVNUxqIqanE2jF53CkNgAMpVo-weWJkg1nakWr_lrL60sWAtQf7HTcs2ePKRSrnt60hqGZWeoEljYrMY5mRtOTIzUDdhXRK6QG5w0TQaPfqvpYemhl9lJtbPHQ7Mq0wZu1PBQG9zxjsXgMOKKbUKxzt7sVhjiKmkay_AL173sAQ9l8mwpAXx5Qa1KSUI4SLF6z8mvD6zTbTUWs3UhpX9tH-yir4VbYgaLH3ZHoyMNJ4qHPDscubi7YQg5m8w"
        }
      ]
    }
  },
  "mtls": {
    "cert": "-----BEGIN CERTIFICATE-----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\nmAbHqPGh+5Bo\n-----END CERTIFICATE-----\n",
    "key": "-----BEGIN PRIVATE KEY-----\nMIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDEWwl/Q+nuL8KX\nbObpVzww1VkHwLF4W9QxrPI1V0Uh6V9rxUjrfSbtWNEQVDwQmoW8M1XjnRnGvdNR\nd0m6gNEQLKsqRN2xIvPdR0IO+2b+y7WJ9XlwdqHAFSWQJtoHzBAmkRirRMJrQSW5\nsB/NIBmyVqUdTV/FghNjc+IiPF4X1kxwwOzm7y2zlHZUpiPQknwPbWNeyunj/XQR\nrqWPg+RXzAKIjbVprxGaT8CexKu6oEaed8BCTO0rJIOkmjXZMl+SDhXQn9GHKFh6\n0UlJddxVngxhX63MAQ1GsO8HsjrLgO3q4LmTDVHkprLy/wgBRDfo0IHb3gWhbOuR\nGMLLMKKvAgMBAAECggEAJ3uOy1JipYxg+oXhYKYz6jXcMxziEquUXXDDO0qTEiCV\nGVyQLxn5S9yCHWByu3v2zEMeUCh02GuvJEBySNhCMZhpypQSZ935X1NGyzBuI2ne\n1SDRDHYuTCt0ZCoLyWmVDcw7Q6UN2vc8mLv7iQmdYSjfBqdaTKK9N1BD9lJhMTWB\njxQDaF1yEZQfR1HOVVddJXt8ILOOltuxhu4EuBKsT8ZlCAN5kGx6+FzXlGlSYjWn\nGoYbERESeDim3JDwGOGX2msPGOmSzF24LnXrPg8IcrwEbzlFRIEzd8yUVA6VNca7\n1uzv/MaOX5+cTtDiAoVdfrk1Ykt1SNNccGKnC7L3MQKBgQD29FIhT21DkUnXlABK\nj0N9dBSQyQ1HzILmY/YSg7aeBAlatEzCDxHtFaS89wXxosz2vNd1QKIrLrAgSzTL\nyemi2KVcvsHyo0g0drSq3NlOw5Rz4WRAZNgBcuhFJ8ZD1BJCisdQxQyCRJ3I0pf/\nD7mGkmovII1WSk/MIEWWvd3P6wKBgQDLjEEOaTeopbnqkJrcL4UbV2GmVAIa9EXS\nqzRTrPlxVA62n8EEX5YLXTx6yrvWHWtlA4VgRmUGuu1km5DqlnVdVz/l8fSk2HFc\ndycJgKd189v/tQ+BLu50+1+uaHiWLXo3VEXgv5QKSgPxWEnNPRVbgqOhav2MaACK\no9sl3h4LTQKBgQCjyIxD7VKREmW/5TeAO53OMVOGZuE48ikKtdc4lkRibljp4FRc\nC/SeodEdRlOZ25hGOB5JdHFZZGCJOneshKBAUaDybs1gp+w2Z1gRTeGNvGbTp/N+\nRaOA6n2jh+qVh6wIl9Py/Iz8RJfE3e7SydIIr0hfMx6p0SU1Q14DyK64uwKBgQCi\nqM5ESejkqKtNu4lFc+QW2Vl7pZ6ZE6PImnASfiRIYDfx0PBaIlixdCyko+Y/UPtF\nme635QlOu4qB35+LF/lqQhMaGqS6Jw1QKxfTDDDGnb2tNm/ReEOu0ELCCVJ0EJue\nI4ZD+FTBdCx6bWdsz+eFXXyNvgYoceQc5px2Qm4X8QKBgHwpmIeHCvU9Erb9X5pY\n5JR609Ei+a9jksoe0ch7ocZi2NoE3vwjUSZFe/hTkvpf0gUhw1Zmekqhm78Qb4H7\nAq7RDbpyCvoRXGS4GulFXM9Tkfe5FejhawT6fG12KLHOSAkJNgdFCPvFOaHlxPoA\naBcf1sY/flehjWEwkVDSh0Js\n-----END PRIVATE KEY-----\n"
  },
  "mtls2": {
    "cert": "-----BEGIN CERTIFICATE-----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\nSe6ggOD1AFI5OQ3c8lCUzgGeFl69hz2UduHOyWs1KXUhgSy7fViAP90\u003d\n-----END CERTIFICATE-----\n",
    "key": "-----BEGIN PRIVATE KEY-----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\nbd3gRXjBZpD8Eep8ltVGLHw\u003d\n-----END PRIVATE KEY-----\n"
  },
  "browser": [
    {
      "match": "https://fapidev-www.authlete.net/api/authorization*",
      "tasks": [
        {
          "task": "Initial Login",
          "match": "https://fapidev-www.authlete.net/api/authorization*",
          "commands": [
            [
              "text",
              "id",
              "loginId",
              "john",
              "optional"
            ],
            [
              "text",
              "id",
              "password",
              "john",
              "optional"
            ],
            [
              "click",
              "name",
              "authorized"
            ]
          ]
        },
        {
          "task": "Verify Complete",
          "match": "https://*/test/a/fintech-authlete/callback*",
          "commands": [
            [
              "wait",
              "id",
              "submission_complete",
              10
            ]
          ]
        }
      ]
    }
  ]
}
testName
fapi-rw-id2-ensure-authorization-request-without-state-success
2021-05-10 19:03:38 SUCCESS
CreateRedirectUri
Created redirect URI
redirect_uri
https://www.certification.openid.net/test/a/fintech-authlete/callback
2021-05-10 19:03:38
GetDynamicServerConfiguration
HTTP request
request_uri
https://fapidev-as.authlete.net/.well-known/openid-configuration
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/cbor, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2021-05-10 19:03:38 RESPONSE
GetDynamicServerConfiguration
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "date": "Mon, 10 May 2021 19:03:38 GMT",
  "server": "Jetty(9.4.21-SNAPSHOT)",
  "cache-control": "no-store, no-transform",
  "pragma": "no-cache",
  "content-type": "application/json;charset\u003dutf-8",
  "content-length": "7202",
  "keep-alive": "timeout\u003d5, max\u003d100",
  "connection": "Keep-Alive"
}
response_body
{
  "issuer": "https://fapidev-as.authlete.net/",
  "authorization_endpoint": "https://fapidev-www.authlete.net/api/authorization",
  "token_endpoint": "https://fapidev-as.authlete.net/api/token",
  "userinfo_endpoint": "https://fapidev-rs.authlete.net/api/userinfo",
  "jwks_uri": "https://fapidev-as.authlete.net/api/jwks",
  "registration_endpoint": "https://fapidev-as.authlete.net/api/register",
  "scopes_supported": [
    "address",
    "email",
    "openid",
    "offline_access",
    "phone",
    "profile",
    "accounts",
    "accounts-ob",
    "payments"
  ],
  "response_types_supported": [
    "none",
    "code",
    "id_token",
    "code token",
    "code id_token",
    "id_token token",
    "code id_token token"
  ],
  "response_modes_supported": [
    "query",
    "fragment",
    "form_post",
    "query.jwt",
    "fragment.jwt",
    "form_post.jwt",
    "jwt"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "password",
    "client_credentials",
    "refresh_token",
    "urn:openid:params:grant-type:ciba",
    "urn:ietf:params:oauth:grant-type:device_code"
  ],
  "acr_values_supported": [
    "urn:mace:incommon:iap:silver",
    "urn:openbanking:psd2:sca",
    "urn:openbanking:psd2:ca",
    "urn:cds.au:cdr:3",
    "urn:cds.au:cdr:2"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "id_token_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "PS256",
    "PS512",
    "RS512"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "userinfo_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "none",
    "PS256",
    "PS512",
    "RS512"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "request_object_encryption_alg_values_supported": [
    "A192GCMKW",
    "RSA-OAEP",
    "dir",
    "A192KW",
    "A128GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "RSA-OEAP-256",
    "A128KW",
    "A256GCMKW",
    "A256KW",
    "RSA1_5",
    "PBES2-HS512+A256KW"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "authorization_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "PS256",
    "PS512",
    "RS512"
  ],
  "authorization_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "authorization_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "token_endpoint_auth_methods_supported": [
    "none",
    "client_secret_basic",
    "client_secret_post",
    "client_secret_jwt",
    "private_key_jwt",
    "tls_client_auth",
    "self_signed_tls_client_auth"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "display_values_supported": [
    "page",
    "popup",
    "touch",
    "wap"
  ],
  "claim_types_supported": [
    "normal"
  ],
  "claims_supported": [
    "sub",
    "website",
    "zoneinfo",
    "email_verified",
    "birthdate",
    "address",
    "gender",
    "profile",
    "phone_number_verified",
    "preferred_username",
    "given_name",
    "middle_name",
    "locale",
    "picture",
    "updated_at",
    "name",
    "nickname",
    "phone_number",
    "family_name",
    "email",
    "openbanking_intent_id",
    "acr"
  ],
  "claims_parameter_supported": true,
  "request_parameter_supported": true,
  "request_uri_parameter_supported": true,
  "require_request_uri_registration": true,
  "revocation_endpoint": "https://fapidev-as.authlete.net/api/revocation",
  "revocation_endpoint_auth_methods_supported": [],
  "revocation_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "introspection_endpoint_auth_methods_supported": [],
  "introspection_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "code_challenge_methods_supported": [
    "plain",
    "S256"
  ],
  "tls_client_certificate_bound_access_tokens": true,
  "backchannel_token_delivery_modes_supported": [
    "poll",
    "ping",
    "push"
  ],
  "backchannel_authentication_endpoint": "https://fapidev-as.authlete.net/api/backchannel/authentication",
  "backchannel_authentication_request_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "backchannel_user_code_parameter_supported": true,
  "device_authorization_endpoint": "https://fapidev-as.authlete.net/api/device/authorization",
  "pushed_authorization_request_endpoint": "https://fapidev-as.authlete.net/api/par",
  "require_pushed_authorization_requests": false,
  "authorization_details_supported": true,
  "verified_claims_supported": false,
  "dpop_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "require_signed_request_object": false,
  "authorization_response_iss_parameter_supported": false
}
2021-05-10 19:03:38
GetDynamicServerConfiguration
Downloaded server configuration
server_config_string
{
  "issuer": "https://fapidev-as.authlete.net/",
  "authorization_endpoint": "https://fapidev-www.authlete.net/api/authorization",
  "token_endpoint": "https://fapidev-as.authlete.net/api/token",
  "userinfo_endpoint": "https://fapidev-rs.authlete.net/api/userinfo",
  "jwks_uri": "https://fapidev-as.authlete.net/api/jwks",
  "registration_endpoint": "https://fapidev-as.authlete.net/api/register",
  "scopes_supported": [
    "address",
    "email",
    "openid",
    "offline_access",
    "phone",
    "profile",
    "accounts",
    "accounts-ob",
    "payments"
  ],
  "response_types_supported": [
    "none",
    "code",
    "id_token",
    "code token",
    "code id_token",
    "id_token token",
    "code id_token token"
  ],
  "response_modes_supported": [
    "query",
    "fragment",
    "form_post",
    "query.jwt",
    "fragment.jwt",
    "form_post.jwt",
    "jwt"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "password",
    "client_credentials",
    "refresh_token",
    "urn:openid:params:grant-type:ciba",
    "urn:ietf:params:oauth:grant-type:device_code"
  ],
  "acr_values_supported": [
    "urn:mace:incommon:iap:silver",
    "urn:openbanking:psd2:sca",
    "urn:openbanking:psd2:ca",
    "urn:cds.au:cdr:3",
    "urn:cds.au:cdr:2"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "id_token_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "PS256",
    "PS512",
    "RS512"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "userinfo_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "none",
    "PS256",
    "PS512",
    "RS512"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "request_object_encryption_alg_values_supported": [
    "A192GCMKW",
    "RSA-OAEP",
    "dir",
    "A192KW",
    "A128GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "RSA-OEAP-256",
    "A128KW",
    "A256GCMKW",
    "A256KW",
    "RSA1_5",
    "PBES2-HS512+A256KW"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "authorization_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "PS256",
    "PS512",
    "RS512"
  ],
  "authorization_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "authorization_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "token_endpoint_auth_methods_supported": [
    "none",
    "client_secret_basic",
    "client_secret_post",
    "client_secret_jwt",
    "private_key_jwt",
    "tls_client_auth",
    "self_signed_tls_client_auth"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "display_values_supported": [
    "page",
    "popup",
    "touch",
    "wap"
  ],
  "claim_types_supported": [
    "normal"
  ],
  "claims_supported": [
    "sub",
    "website",
    "zoneinfo",
    "email_verified",
    "birthdate",
    "address",
    "gender",
    "profile",
    "phone_number_verified",
    "preferred_username",
    "given_name",
    "middle_name",
    "locale",
    "picture",
    "updated_at",
    "name",
    "nickname",
    "phone_number",
    "family_name",
    "email",
    "openbanking_intent_id",
    "acr"
  ],
  "claims_parameter_supported": true,
  "request_parameter_supported": true,
  "request_uri_parameter_supported": true,
  "require_request_uri_registration": true,
  "revocation_endpoint": "https://fapidev-as.authlete.net/api/revocation",
  "revocation_endpoint_auth_methods_supported": [],
  "revocation_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "introspection_endpoint_auth_methods_supported": [],
  "introspection_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "code_challenge_methods_supported": [
    "plain",
    "S256"
  ],
  "tls_client_certificate_bound_access_tokens": true,
  "backchannel_token_delivery_modes_supported": [
    "poll",
    "ping",
    "push"
  ],
  "backchannel_authentication_endpoint": "https://fapidev-as.authlete.net/api/backchannel/authentication",
  "backchannel_authentication_request_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "backchannel_user_code_parameter_supported": true,
  "device_authorization_endpoint": "https://fapidev-as.authlete.net/api/device/authorization",
  "pushed_authorization_request_endpoint": "https://fapidev-as.authlete.net/api/par",
  "require_pushed_authorization_requests": false,
  "authorization_details_supported": true,
  "verified_claims_supported": false,
  "dpop_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "require_signed_request_object": false,
  "authorization_response_iss_parameter_supported": false
}
2021-05-10 19:03:38 SUCCESS
GetDynamicServerConfiguration
Successfully parsed server configuration
issuer
https://fapidev-as.authlete.net/
authorization_endpoint
https://fapidev-www.authlete.net/api/authorization
token_endpoint
https://fapidev-as.authlete.net/api/token
userinfo_endpoint
https://fapidev-rs.authlete.net/api/userinfo
jwks_uri
https://fapidev-as.authlete.net/api/jwks
registration_endpoint
https://fapidev-as.authlete.net/api/register
scopes_supported
[
  "address",
  "email",
  "openid",
  "offline_access",
  "phone",
  "profile",
  "accounts",
  "accounts-ob",
  "payments"
]
response_types_supported
[
  "none",
  "code",
  "id_token",
  "code token",
  "code id_token",
  "id_token token",
  "code id_token token"
]
response_modes_supported
[
  "query",
  "fragment",
  "form_post",
  "query.jwt",
  "fragment.jwt",
  "form_post.jwt",
  "jwt"
]
grant_types_supported
[
  "authorization_code",
  "implicit",
  "password",
  "client_credentials",
  "refresh_token",
  "urn:openid:params:grant-type:ciba",
  "urn:ietf:params:oauth:grant-type:device_code"
]
acr_values_supported
[
  "urn:mace:incommon:iap:silver",
  "urn:openbanking:psd2:sca",
  "urn:openbanking:psd2:ca",
  "urn:cds.au:cdr:3",
  "urn:cds.au:cdr:2"
]
subject_types_supported
[
  "public",
  "pairwise"
]
id_token_signing_alg_values_supported
[
  "PS384",
  "RS384",
  "HS256",
  "HS512",
  "RS256",
  "HS384",
  "PS256",
  "PS512",
  "RS512"
]
id_token_encryption_alg_values_supported
[
  "RSA1_5",
  "RSA-OAEP",
  "RSA-OEAP-256",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW",
  "A128KW",
  "A192KW",
  "A256KW",
  "dir",
  "A128GCMKW",
  "A192GCMKW",
  "A256GCMKW",
  "PBES2-HS256+A128KW",
  "PBES2-HS384+A192KW",
  "PBES2-HS512+A256KW"
]
id_token_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
userinfo_signing_alg_values_supported
[
  "PS384",
  "RS384",
  "HS256",
  "HS512",
  "RS256",
  "HS384",
  "none",
  "PS256",
  "PS512",
  "RS512"
]
userinfo_encryption_alg_values_supported
[
  "RSA1_5",
  "RSA-OAEP",
  "RSA-OEAP-256",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW",
  "A128KW",
  "A192KW",
  "A256KW",
  "dir",
  "A128GCMKW",
  "A192GCMKW",
  "A256GCMKW",
  "PBES2-HS256+A128KW",
  "PBES2-HS384+A192KW",
  "PBES2-HS512+A256KW"
]
userinfo_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
request_object_signing_alg_values_supported
[
  "HS256",
  "HS384",
  "HS512",
  "RS256",
  "RS384",
  "RS512",
  "PS256",
  "PS384",
  "PS512",
  "ES256",
  "ES384",
  "ES512",
  "ES256K",
  "EdDSA"
]
request_object_encryption_alg_values_supported
[
  "A192GCMKW",
  "RSA-OAEP",
  "dir",
  "A192KW",
  "A128GCMKW",
  "PBES2-HS256+A128KW",
  "PBES2-HS384+A192KW",
  "RSA-OEAP-256",
  "A128KW",
  "A256GCMKW",
  "A256KW",
  "RSA1_5",
  "PBES2-HS512+A256KW"
]
request_object_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
authorization_signing_alg_values_supported
[
  "PS384",
  "RS384",
  "HS256",
  "HS512",
  "RS256",
  "HS384",
  "PS256",
  "PS512",
  "RS512"
]
authorization_encryption_alg_values_supported
[
  "RSA1_5",
  "RSA-OAEP",
  "RSA-OEAP-256",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW",
  "A128KW",
  "A192KW",
  "A256KW",
  "dir",
  "A128GCMKW",
  "A192GCMKW",
  "A256GCMKW",
  "PBES2-HS256+A128KW",
  "PBES2-HS384+A192KW",
  "PBES2-HS512+A256KW"
]
authorization_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
token_endpoint_auth_methods_supported
[
  "none",
  "client_secret_basic",
  "client_secret_post",
  "client_secret_jwt",
  "private_key_jwt",
  "tls_client_auth",
  "self_signed_tls_client_auth"
]
token_endpoint_auth_signing_alg_values_supported
[
  "HS256",
  "HS384",
  "HS512",
  "RS256",
  "RS384",
  "RS512",
  "PS256",
  "PS384",
  "PS512",
  "ES256",
  "ES384",
  "ES512",
  "ES256K",
  "EdDSA"
]
display_values_supported
[
  "page",
  "popup",
  "touch",
  "wap"
]
claim_types_supported
[
  "normal"
]
claims_supported
[
  "sub",
  "website",
  "zoneinfo",
  "email_verified",
  "birthdate",
  "address",
  "gender",
  "profile",
  "phone_number_verified",
  "preferred_username",
  "given_name",
  "middle_name",
  "locale",
  "picture",
  "updated_at",
  "name",
  "nickname",
  "phone_number",
  "family_name",
  "email",
  "openbanking_intent_id",
  "acr"
]
claims_parameter_supported
true
request_parameter_supported
true
request_uri_parameter_supported
true
require_request_uri_registration
true
revocation_endpoint
https://fapidev-as.authlete.net/api/revocation
revocation_endpoint_auth_methods_supported
[]
revocation_endpoint_auth_signing_alg_values_supported
[
  "HS256",
  "HS384",
  "HS512",
  "RS256",
  "RS384",
  "RS512",
  "PS256",
  "PS384",
  "PS512",
  "ES256",
  "ES384",
  "ES512",
  "ES256K",
  "EdDSA"
]
introspection_endpoint_auth_methods_supported
[]
introspection_endpoint_auth_signing_alg_values_supported
[
  "HS256",
  "HS384",
  "HS512",
  "RS256",
  "RS384",
  "RS512",
  "PS256",
  "PS384",
  "PS512",
  "ES256",
  "ES384",
  "ES512",
  "ES256K",
  "EdDSA"
]
code_challenge_methods_supported
[
  "plain",
  "S256"
]
tls_client_certificate_bound_access_tokens
true
backchannel_token_delivery_modes_supported
[
  "poll",
  "ping",
  "push"
]
backchannel_authentication_endpoint
https://fapidev-as.authlete.net/api/backchannel/authentication
backchannel_authentication_request_signing_alg_values_supported
[
  "RS256",
  "RS384",
  "RS512",
  "PS256",
  "PS384",
  "PS512",
  "ES256",
  "ES384",
  "ES512",
  "ES256K",
  "EdDSA"
]
backchannel_user_code_parameter_supported
true
device_authorization_endpoint
https://fapidev-as.authlete.net/api/device/authorization
pushed_authorization_request_endpoint
https://fapidev-as.authlete.net/api/par
require_pushed_authorization_requests
false
authorization_details_supported
true
verified_claims_supported
false
dpop_signing_alg_values_supported
[
  "RS256",
  "RS384",
  "RS512",
  "PS256",
  "PS384",
  "PS512",
  "ES256",
  "ES384",
  "ES512",
  "ES256K",
  "EdDSA"
]
require_signed_request_object
false
authorization_response_iss_parameter_supported
false
2021-05-10 19:03:38 INFO
AddMTLSEndpointAliasesToEnvironment
The mtls_endpoint_aliases is not present in the server configuration
server
{
  "issuer": "https://fapidev-as.authlete.net/",
  "authorization_endpoint": "https://fapidev-www.authlete.net/api/authorization",
  "token_endpoint": "https://fapidev-as.authlete.net/api/token",
  "userinfo_endpoint": "https://fapidev-rs.authlete.net/api/userinfo",
  "jwks_uri": "https://fapidev-as.authlete.net/api/jwks",
  "registration_endpoint": "https://fapidev-as.authlete.net/api/register",
  "scopes_supported": [
    "address",
    "email",
    "openid",
    "offline_access",
    "phone",
    "profile",
    "accounts",
    "accounts-ob",
    "payments"
  ],
  "response_types_supported": [
    "none",
    "code",
    "id_token",
    "code token",
    "code id_token",
    "id_token token",
    "code id_token token"
  ],
  "response_modes_supported": [
    "query",
    "fragment",
    "form_post",
    "query.jwt",
    "fragment.jwt",
    "form_post.jwt",
    "jwt"
  ],
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "password",
    "client_credentials",
    "refresh_token",
    "urn:openid:params:grant-type:ciba",
    "urn:ietf:params:oauth:grant-type:device_code"
  ],
  "acr_values_supported": [
    "urn:mace:incommon:iap:silver",
    "urn:openbanking:psd2:sca",
    "urn:openbanking:psd2:ca",
    "urn:cds.au:cdr:3",
    "urn:cds.au:cdr:2"
  ],
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "id_token_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "PS256",
    "PS512",
    "RS512"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "userinfo_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "none",
    "PS256",
    "PS512",
    "RS512"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "request_object_encryption_alg_values_supported": [
    "A192GCMKW",
    "RSA-OAEP",
    "dir",
    "A192KW",
    "A128GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "RSA-OEAP-256",
    "A128KW",
    "A256GCMKW",
    "A256KW",
    "RSA1_5",
    "PBES2-HS512+A256KW"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "authorization_signing_alg_values_supported": [
    "PS384",
    "RS384",
    "HS256",
    "HS512",
    "RS256",
    "HS384",
    "PS256",
    "PS512",
    "RS512"
  ],
  "authorization_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP",
    "RSA-OEAP-256",
    "ECDH-ES",
    "ECDH-ES+A128KW",
    "ECDH-ES+A192KW",
    "ECDH-ES+A256KW",
    "A128KW",
    "A192KW",
    "A256KW",
    "dir",
    "A128GCMKW",
    "A192GCMKW",
    "A256GCMKW",
    "PBES2-HS256+A128KW",
    "PBES2-HS384+A192KW",
    "PBES2-HS512+A256KW"
  ],
  "authorization_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A192CBC-HS384",
    "A256CBC-HS512",
    "A128GCM",
    "A192GCM",
    "A256GCM"
  ],
  "token_endpoint_auth_methods_supported": [
    "none",
    "client_secret_basic",
    "client_secret_post",
    "client_secret_jwt",
    "private_key_jwt",
    "tls_client_auth",
    "self_signed_tls_client_auth"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "display_values_supported": [
    "page",
    "popup",
    "touch",
    "wap"
  ],
  "claim_types_supported": [
    "normal"
  ],
  "claims_supported": [
    "sub",
    "website",
    "zoneinfo",
    "email_verified",
    "birthdate",
    "address",
    "gender",
    "profile",
    "phone_number_verified",
    "preferred_username",
    "given_name",
    "middle_name",
    "locale",
    "picture",
    "updated_at",
    "name",
    "nickname",
    "phone_number",
    "family_name",
    "email",
    "openbanking_intent_id",
    "acr"
  ],
  "claims_parameter_supported": true,
  "request_parameter_supported": true,
  "request_uri_parameter_supported": true,
  "require_request_uri_registration": true,
  "revocation_endpoint": "https://fapidev-as.authlete.net/api/revocation",
  "revocation_endpoint_auth_methods_supported": [],
  "revocation_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "introspection_endpoint_auth_methods_supported": [],
  "introspection_endpoint_auth_signing_alg_values_supported": [
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "code_challenge_methods_supported": [
    "plain",
    "S256"
  ],
  "tls_client_certificate_bound_access_tokens": true,
  "backchannel_token_delivery_modes_supported": [
    "poll",
    "ping",
    "push"
  ],
  "backchannel_authentication_endpoint": "https://fapidev-as.authlete.net/api/backchannel/authentication",
  "backchannel_authentication_request_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "backchannel_user_code_parameter_supported": true,
  "device_authorization_endpoint": "https://fapidev-as.authlete.net/api/device/authorization",
  "pushed_authorization_request_endpoint": "https://fapidev-as.authlete.net/api/par",
  "require_pushed_authorization_requests": false,
  "authorization_details_supported": true,
  "verified_claims_supported": false,
  "dpop_signing_alg_values_supported": [
    "RS256",
    "RS384",
    "RS512",
    "PS256",
    "PS384",
    "PS512",
    "ES256",
    "ES384",
    "ES512",
    "ES256K",
    "EdDSA"
  ],
  "require_signed_request_object": false,
  "authorization_response_iss_parameter_supported": false
}
2021-05-10 19:03:38 SUCCESS
CheckServerConfiguration
Found required server configuration keys
required
[
  "authorization_endpoint",
  "token_endpoint",
  "issuer"
]
2021-05-10 19:03:38 SUCCESS
ExtractTLSTestValuesFromServerConfiguration
Extracted TLS information from authorization server configuration
registration_endpoint
{
  "testHost": "fapidev-as.authlete.net",
  "testPort": 443
}
authorization_endpoint
{
  "testHost": "fapidev-www.authlete.net",
  "testPort": 443
}
token_endpoint
{
  "testHost": "fapidev-as.authlete.net",
  "testPort": 443
}
userinfo_endpoint
{
  "testHost": "fapidev-rs.authlete.net",
  "testPort": 443
}
2021-05-10 19:03:38
FetchServerKeys
Fetching server key
jwks_uri
https://fapidev-as.authlete.net/api/jwks
2021-05-10 19:03:38
FetchServerKeys
HTTP request
request_uri
https://fapidev-as.authlete.net/api/jwks
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/cbor, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2021-05-10 19:03:39 RESPONSE
FetchServerKeys
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "date": "Mon, 10 May 2021 19:03:39 GMT",
  "server": "Jetty(9.4.21-SNAPSHOT)",
  "cache-control": "no-store, no-transform",
  "pragma": "no-cache",
  "content-type": "application/json;charset\u003dutf-8",
  "content-length": "472",
  "keep-alive": "timeout\u003d5, max\u003d100",
  "connection": "Keep-Alive"
}
response_body
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "authlete-fapidev-api-20180524",
      "n": "nJclr5TJ3Y21Ggt0lz2EO7wWKn6jTaIlMv1sNMy2VmkcSf8EVsFqJ1vSXjFxWvBj7RolFCyaChFwI_jog9c2rAkIwF8Voi5eB3PRjl3OaNRUYILRgLsaclTj02NWMvwbiJ18yJ63D4Ojzif8_RyAHuM3HO2rs6nPEyZMW3Xd0z3Lw099TpIcxA4Ktfo2DliUfMZh9s3lB_f6DSxX5Z9CXqrzNsoCCxqJZ55WuUUNA4LmYl5OgrH8sD7_TvY1QTjjmRzUptgj1S-gwagIjrkn9ooALa8gRN4etKztA2topBn0KO2VwEo_P4iejBn2Z3I2FlQnDNu0t7xNwBhsM2Vg8Q"
    }
  ]
}
2021-05-10 19:03:39
FetchServerKeys
Found JWK set string
jwk_string
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "authlete-fapidev-api-20180524",
      "n": "nJclr5TJ3Y21Ggt0lz2EO7wWKn6jTaIlMv1sNMy2VmkcSf8EVsFqJ1vSXjFxWvBj7RolFCyaChFwI_jog9c2rAkIwF8Voi5eB3PRjl3OaNRUYILRgLsaclTj02NWMvwbiJ18yJ63D4Ojzif8_RyAHuM3HO2rs6nPEyZMW3Xd0z3Lw099TpIcxA4Ktfo2DliUfMZh9s3lB_f6DSxX5Z9CXqrzNsoCCxqJZ55WuUUNA4LmYl5OgrH8sD7_TvY1QTjjmRzUptgj1S-gwagIjrkn9ooALa8gRN4etKztA2topBn0KO2VwEo_P4iejBn2Z3I2FlQnDNu0t7xNwBhsM2Vg8Q"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
FetchServerKeys
Found server JWK set
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "authlete-fapidev-api-20180524",
      "n": "nJclr5TJ3Y21Ggt0lz2EO7wWKn6jTaIlMv1sNMy2VmkcSf8EVsFqJ1vSXjFxWvBj7RolFCyaChFwI_jog9c2rAkIwF8Voi5eB3PRjl3OaNRUYILRgLsaclTj02NWMvwbiJ18yJ63D4Ojzif8_RyAHuM3HO2rs6nPEyZMW3Xd0z3Lw099TpIcxA4Ktfo2DliUfMZh9s3lB_f6DSxX5Z9CXqrzNsoCCxqJZ55WuUUNA4LmYl5OgrH8sD7_TvY1QTjjmRzUptgj1S-gwagIjrkn9ooALa8gRN4etKztA2topBn0KO2VwEo_P4iejBn2Z3I2FlQnDNu0t7xNwBhsM2Vg8Q"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
CheckServerKeysIsValid
Server JWKs is valid
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "authlete-fapidev-api-20180524",
      "n": "nJclr5TJ3Y21Ggt0lz2EO7wWKn6jTaIlMv1sNMy2VmkcSf8EVsFqJ1vSXjFxWvBj7RolFCyaChFwI_jog9c2rAkIwF8Voi5eB3PRjl3OaNRUYILRgLsaclTj02NWMvwbiJ18yJ63D4Ojzif8_RyAHuM3HO2rs6nPEyZMW3Xd0z3Lw099TpIcxA4Ktfo2DliUfMZh9s3lB_f6DSxX5Z9CXqrzNsoCCxqJZ55WuUUNA4LmYl5OgrH8sD7_TvY1QTjjmRzUptgj1S-gwagIjrkn9ooALa8gRN4etKztA2topBn0KO2VwEo_P4iejBn2Z3I2FlQnDNu0t7xNwBhsM2Vg8Q"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
ValidateServerJWKs
Valid server JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2021-05-10 19:03:39 SUCCESS
CheckForKeyIdInServerJWKs
All keys contain kids
2021-05-10 19:03:39 SUCCESS
EnsureServerJwksDoesNotContainPrivateOrSymmetricKeys
Jwks does not contain any private or symmetric keys
2021-05-10 19:03:39 SUCCESS
FAPIEnsureMinimumServerKeyLength
Validated minimum key lengths for server_jwks
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "authlete-fapidev-api-20180524",
      "n": "nJclr5TJ3Y21Ggt0lz2EO7wWKn6jTaIlMv1sNMy2VmkcSf8EVsFqJ1vSXjFxWvBj7RolFCyaChFwI_jog9c2rAkIwF8Voi5eB3PRjl3OaNRUYILRgLsaclTj02NWMvwbiJ18yJ63D4Ojzif8_RyAHuM3HO2rs6nPEyZMW3Xd0z3Lw099TpIcxA4Ktfo2DliUfMZh9s3lB_f6DSxX5Z9CXqrzNsoCCxqJZ55WuUUNA4LmYl5OgrH8sD7_TvY1QTjjmRzUptgj1S-gwagIjrkn9ooALa8gRN4etKztA2topBn0KO2VwEo_P4iejBn2Z3I2FlQnDNu0t7xNwBhsM2Vg8Q"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
GetStaticClientConfiguration
Found a static client object
client_id
2334382354153498
scope
openid payments
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "d": "ZHPB6jX2Np7cUjFu2iiYlT1YPdJ6KSyyPjEWT72TYOX6O-0a48Ez3m5OnOy_bCwD3F7_WAL0wbWXWFsRt6DmCqW-MGxG38klMQwV4dhgI6lEYyfhvBazJyQJeqHwKE5VIezgyBJyGkK9GHUqq3k3s-hsS_MLVE6BDcLNf9iPRUlQ5JJLHGMZYAW6uv3ex-LGqhLT_BWX4Y1fowAgUvDLcaLj-_tRonKF4oJRiz6oMO4KTJJofhXzptY0T_K0u8bx7Y7JN-W7fC8havmG5bnKetsLQYHcn7ddWtOA_6Qxjxb6SMIr1bNWeGVA5p15NMHcIfsNmSK03Y-Xic5eiuBhwQ",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-1",
      "alg": "PS256",
      "n": "9sLLHll-BiuwIvupyiAOaTR-ChAjuwQhThxtSD5wgL9AG2YJlamxo52ZEhTdNKomGRw3woihBRk8okPSd1YZCkFuOc7iF1sUsxDA0APbdeAzZdwGcqvPlEqoz8HsnormZFTP9tG451Z_cMd20_cCufGqi6XBpE2fOMGhn9CNEo-_3TPyrFZwmP-rqsQ3TKp5Zkb42AACsT9GuxB-Qrrpp1hkCJdSvXhAwIvX2jOxXQORJZkW2ST0DpCTbtAoPEW0aoCIkwWjV08qTSBduA14eIl9xPACfElosTDEbL1bR6BGxoILSJTe4U5Lz4Us7l8TWhO_OaQsyxSLFxXOy13KMQ"
    },
    {
      "p": "z0FVeicrECBglwnSTGSH-Xq1VtYVcjIVb6g4T2fPmgZnt6a3yu7MJpPKl6h8kaOz-tQcNt_u48G2Zyu7E76Y9RUn43MZncW1hAq4VxQ_rKAZmFyI38pzbELTwcg5E8G0VAL54wdBzAI7R4a_fTR2OsRyl0KBqcSaRAt4PxT1kg8",
      "kty": "RSA",
      "alg": "RSA-OAEP",
      "q": "rpVBITHKspU9lS2JCnITxGfOPNRndBacvNB182IR3FaVv5UlO7VXY6r9_Ry0gsxzIsbNpRcyG1FX81baa9mF_v8KQ_XJ-GjtT-wZy2jPqBpe22jMtMdzGdSMkaw8jqHORUwvoLUOk6Bv5nAOCZRiopSrSXpOUASVZJUUpSxGlRU",
      "d": "OjDe8EkZXgvB-Gy5A4EdU8fBuAjdHLMyHKAtMaS_W_joEJHDvZRhIYbh1jAyHYoR3kFMXutCIYpRjDrsUEhjYuVKLm90CVtysoRjjkiXyupcEW3o--X_HBJhKm1Y-0I7LQ-cA7CotJpTVMR2fRTqP1T4FsORAjg9l-fbdpVmeDiZBRbL2zCWmKWhtDpHyy7vbSCRghntihz_M5Hrchk7r8ito_K3dFrV9IZSF9RoEY7kyK5bL36Kpgai44PYCzqOzqP2fteO_rZ9fn-uK59pI3ySo_PgSbJ55n14Nd9Z8m70zE9Z4aIeNDEFspZUhavngRwc7MuJ7f_hVGQ9RFbbkQ",
      "e": "AQAB",
      "use": "enc",
      "kid": "fapi20200623",
      "qi": "IyiL1_cnC5Najrfvu6ypiR3JmpHXDs8FkYJUdfqXnVWaBNxkdDi3iks943JyIfp8JI-NWndiNB6DdSBzecARDqew3lQomIsGsoR0wPFcHDee-d-NmBwEm3TSHrleGjj0oBJe6BDnAdsaHhsL9NLo_1aOd_9W_TM2kcuSntM-DFA",
      "dp": "jjER1tu2hLrh6d34JSc3zubsMOZyEkXgRRnRgFEFsnPAhtRf9l99Ot5cuU4EINuCaI1Lyi46tJG7de8fy30RbdwU4Myf_4mcbjn4nO2sfd_dj5W05mz8YYM7yxB2cGKOOLFOBf99mdzSFNGS4PC0SL9sqvAbC4FyIUsJNaZIkOs",
      "dq": "xGck3jMl1cIPhcO0aAvuMQaW_df2iqLlsYTTLPsnHLpLvTwMpx9bMMUs95NTf9KBtJ3yu8dcl17rktYi4zHTjQtegRYCIXPphgAXBL7k3jjMfgloQfgfhO-ZNEiP1-YwJ8WNzz3hKDNVr-hf4mcMj9qw1_jAIUUGzCDrGOa2gQ",
      "n": "jVc92j0ntTV0V1nwZ3mpGaV2bME4d6AMS2SRrJBM0fLehaTEqDNzGu0warz2SC9bhcBOB5_q3mYBFjmTwWzSbsk6RYETnAgViXg67PgH7Vkx2NCtwgQW3cNdnUZWRNYHsoevkx_Ta1X6Vi9ulebU_BCKjrF-6CjVcGgEsO_S5DKcukGHdf81WlQOq3zGQg4h7MLArrbPSTHHORDsu_87qY9m2EhiYSOBSF5rHsfDo7zWI5FWNG-_HO-CBM005bykIIS1aXCXx1jOW1OrKcp5xv3e-BR6MJTxncZJ4o1GtynJI8kLXRgltLArSOkbzNEr9GjU9lnSSxKLMtRLKkG2Ow"
    }
  ]
}
2021-05-10 19:03:39
ValidateMTLSCertificatesHeader
No certificate authority found for MTLS
2021-05-10 19:03:39 SUCCESS
ValidateMTLSCertificatesHeader
MTLS certificates header is valid
2021-05-10 19:03:39
ExtractMTLSCertificatesFromConfiguration
No certificate authority found for MTLS
2021-05-10 19:03:39 SUCCESS
ExtractMTLSCertificatesFromConfiguration
Mutual TLS authentication credentials loaded
cert
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
key
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
2021-05-10 19:03:39 SUCCESS
ValidateClientJWKsPrivatePart
Valid client JWKs: keys are valid JSON, contain the required fields, the private/public exponents match and are correctly encoded using unpadded base64url
2021-05-10 19:03:39 SUCCESS
ExtractJWKsFromStaticClientConfiguration
Extracted client JWK
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "d": "ZHPB6jX2Np7cUjFu2iiYlT1YPdJ6KSyyPjEWT72TYOX6O-0a48Ez3m5OnOy_bCwD3F7_WAL0wbWXWFsRt6DmCqW-MGxG38klMQwV4dhgI6lEYyfhvBazJyQJeqHwKE5VIezgyBJyGkK9GHUqq3k3s-hsS_MLVE6BDcLNf9iPRUlQ5JJLHGMZYAW6uv3ex-LGqhLT_BWX4Y1fowAgUvDLcaLj-_tRonKF4oJRiz6oMO4KTJJofhXzptY0T_K0u8bx7Y7JN-W7fC8havmG5bnKetsLQYHcn7ddWtOA_6Qxjxb6SMIr1bNWeGVA5p15NMHcIfsNmSK03Y-Xic5eiuBhwQ",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-1",
      "alg": "PS256",
      "n": "9sLLHll-BiuwIvupyiAOaTR-ChAjuwQhThxtSD5wgL9AG2YJlamxo52ZEhTdNKomGRw3woihBRk8okPSd1YZCkFuOc7iF1sUsxDA0APbdeAzZdwGcqvPlEqoz8HsnormZFTP9tG451Z_cMd20_cCufGqi6XBpE2fOMGhn9CNEo-_3TPyrFZwmP-rqsQ3TKp5Zkb42AACsT9GuxB-Qrrpp1hkCJdSvXhAwIvX2jOxXQORJZkW2ST0DpCTbtAoPEW0aoCIkwWjV08qTSBduA14eIl9xPACfElosTDEbL1bR6BGxoILSJTe4U5Lz4Us7l8TWhO_OaQsyxSLFxXOy13KMQ"
    },
    {
      "p": "z0FVeicrECBglwnSTGSH-Xq1VtYVcjIVb6g4T2fPmgZnt6a3yu7MJpPKl6h8kaOz-tQcNt_u48G2Zyu7E76Y9RUn43MZncW1hAq4VxQ_rKAZmFyI38pzbELTwcg5E8G0VAL54wdBzAI7R4a_fTR2OsRyl0KBqcSaRAt4PxT1kg8",
      "kty": "RSA",
      "alg": "RSA-OAEP",
      "q": "rpVBITHKspU9lS2JCnITxGfOPNRndBacvNB182IR3FaVv5UlO7VXY6r9_Ry0gsxzIsbNpRcyG1FX81baa9mF_v8KQ_XJ-GjtT-wZy2jPqBpe22jMtMdzGdSMkaw8jqHORUwvoLUOk6Bv5nAOCZRiopSrSXpOUASVZJUUpSxGlRU",
      "d": "OjDe8EkZXgvB-Gy5A4EdU8fBuAjdHLMyHKAtMaS_W_joEJHDvZRhIYbh1jAyHYoR3kFMXutCIYpRjDrsUEhjYuVKLm90CVtysoRjjkiXyupcEW3o--X_HBJhKm1Y-0I7LQ-cA7CotJpTVMR2fRTqP1T4FsORAjg9l-fbdpVmeDiZBRbL2zCWmKWhtDpHyy7vbSCRghntihz_M5Hrchk7r8ito_K3dFrV9IZSF9RoEY7kyK5bL36Kpgai44PYCzqOzqP2fteO_rZ9fn-uK59pI3ySo_PgSbJ55n14Nd9Z8m70zE9Z4aIeNDEFspZUhavngRwc7MuJ7f_hVGQ9RFbbkQ",
      "e": "AQAB",
      "use": "enc",
      "kid": "fapi20200623",
      "qi": "IyiL1_cnC5Najrfvu6ypiR3JmpHXDs8FkYJUdfqXnVWaBNxkdDi3iks943JyIfp8JI-NWndiNB6DdSBzecARDqew3lQomIsGsoR0wPFcHDee-d-NmBwEm3TSHrleGjj0oBJe6BDnAdsaHhsL9NLo_1aOd_9W_TM2kcuSntM-DFA",
      "dp": "jjER1tu2hLrh6d34JSc3zubsMOZyEkXgRRnRgFEFsnPAhtRf9l99Ot5cuU4EINuCaI1Lyi46tJG7de8fy30RbdwU4Myf_4mcbjn4nO2sfd_dj5W05mz8YYM7yxB2cGKOOLFOBf99mdzSFNGS4PC0SL9sqvAbC4FyIUsJNaZIkOs",
      "dq": "xGck3jMl1cIPhcO0aAvuMQaW_df2iqLlsYTTLPsnHLpLvTwMpx9bMMUs95NTf9KBtJ3yu8dcl17rktYi4zHTjQtegRYCIXPphgAXBL7k3jjMfgloQfgfhO-ZNEiP1-YwJ8WNzz3hKDNVr-hf4mcMj9qw1_jAIUUGzCDrGOa2gQ",
      "n": "jVc92j0ntTV0V1nwZ3mpGaV2bME4d6AMS2SRrJBM0fLehaTEqDNzGu0warz2SC9bhcBOB5_q3mYBFjmTwWzSbsk6RYETnAgViXg67PgH7Vkx2NCtwgQW3cNdnUZWRNYHsoevkx_Ta1X6Vi9ulebU_BCKjrF-6CjVcGgEsO_S5DKcukGHdf81WlQOq3zGQg4h7MLArrbPSTHHORDsu_87qY9m2EhiYSOBSF5rHsfDo7zWI5FWNG-_HO-CBM005bykIIS1aXCXx1jOW1OrKcp5xv3e-BR6MJTxncZJ4o1GtynJI8kLXRgltLArSOkbzNEr9GjU9lnSSxKLMtRLKkG2Ow"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-1",
      "alg": "PS256",
      "n": "9sLLHll-BiuwIvupyiAOaTR-ChAjuwQhThxtSD5wgL9AG2YJlamxo52ZEhTdNKomGRw3woihBRk8okPSd1YZCkFuOc7iF1sUsxDA0APbdeAzZdwGcqvPlEqoz8HsnormZFTP9tG451Z_cMd20_cCufGqi6XBpE2fOMGhn9CNEo-_3TPyrFZwmP-rqsQ3TKp5Zkb42AACsT9GuxB-Qrrpp1hkCJdSvXhAwIvX2jOxXQORJZkW2ST0DpCTbtAoPEW0aoCIkwWjV08qTSBduA14eIl9xPACfElosTDEbL1bR6BGxoILSJTe4U5Lz4Us7l8TWhO_OaQsyxSLFxXOy13KMQ"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "enc",
      "kid": "fapi20200623",
      "alg": "RSA-OAEP",
      "n": "jVc92j0ntTV0V1nwZ3mpGaV2bME4d6AMS2SRrJBM0fLehaTEqDNzGu0warz2SC9bhcBOB5_q3mYBFjmTwWzSbsk6RYETnAgViXg67PgH7Vkx2NCtwgQW3cNdnUZWRNYHsoevkx_Ta1X6Vi9ulebU_BCKjrF-6CjVcGgEsO_S5DKcukGHdf81WlQOq3zGQg4h7MLArrbPSTHHORDsu_87qY9m2EhiYSOBSF5rHsfDo7zWI5FWNG-_HO-CBM005bykIIS1aXCXx1jOW1OrKcp5xv3e-BR6MJTxncZJ4o1GtynJI8kLXRgltLArSOkbzNEr9GjU9lnSSxKLMtRLKkG2Ow"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
CheckForKeyIdInClientJWKs
All keys contain kids
2021-05-10 19:03:39 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2021-05-10 19:03:39 SUCCESS
FAPICheckKeyAlgInClientJWKs
Found a key with alg PS256 or ES256
2021-05-10 19:03:39 SUCCESS
FAPIEnsureMinimumClientKeyLength
Validated minimum key lengths for client_jwks
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "d": "ZHPB6jX2Np7cUjFu2iiYlT1YPdJ6KSyyPjEWT72TYOX6O-0a48Ez3m5OnOy_bCwD3F7_WAL0wbWXWFsRt6DmCqW-MGxG38klMQwV4dhgI6lEYyfhvBazJyQJeqHwKE5VIezgyBJyGkK9GHUqq3k3s-hsS_MLVE6BDcLNf9iPRUlQ5JJLHGMZYAW6uv3ex-LGqhLT_BWX4Y1fowAgUvDLcaLj-_tRonKF4oJRiz6oMO4KTJJofhXzptY0T_K0u8bx7Y7JN-W7fC8havmG5bnKetsLQYHcn7ddWtOA_6Qxjxb6SMIr1bNWeGVA5p15NMHcIfsNmSK03Y-Xic5eiuBhwQ",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-1",
      "alg": "PS256",
      "n": "9sLLHll-BiuwIvupyiAOaTR-ChAjuwQhThxtSD5wgL9AG2YJlamxo52ZEhTdNKomGRw3woihBRk8okPSd1YZCkFuOc7iF1sUsxDA0APbdeAzZdwGcqvPlEqoz8HsnormZFTP9tG451Z_cMd20_cCufGqi6XBpE2fOMGhn9CNEo-_3TPyrFZwmP-rqsQ3TKp5Zkb42AACsT9GuxB-Qrrpp1hkCJdSvXhAwIvX2jOxXQORJZkW2ST0DpCTbtAoPEW0aoCIkwWjV08qTSBduA14eIl9xPACfElosTDEbL1bR6BGxoILSJTe4U5Lz4Us7l8TWhO_OaQsyxSLFxXOy13KMQ"
    },
    {
      "p": "z0FVeicrECBglwnSTGSH-Xq1VtYVcjIVb6g4T2fPmgZnt6a3yu7MJpPKl6h8kaOz-tQcNt_u48G2Zyu7E76Y9RUn43MZncW1hAq4VxQ_rKAZmFyI38pzbELTwcg5E8G0VAL54wdBzAI7R4a_fTR2OsRyl0KBqcSaRAt4PxT1kg8",
      "kty": "RSA",
      "alg": "RSA-OAEP",
      "q": "rpVBITHKspU9lS2JCnITxGfOPNRndBacvNB182IR3FaVv5UlO7VXY6r9_Ry0gsxzIsbNpRcyG1FX81baa9mF_v8KQ_XJ-GjtT-wZy2jPqBpe22jMtMdzGdSMkaw8jqHORUwvoLUOk6Bv5nAOCZRiopSrSXpOUASVZJUUpSxGlRU",
      "d": "OjDe8EkZXgvB-Gy5A4EdU8fBuAjdHLMyHKAtMaS_W_joEJHDvZRhIYbh1jAyHYoR3kFMXutCIYpRjDrsUEhjYuVKLm90CVtysoRjjkiXyupcEW3o--X_HBJhKm1Y-0I7LQ-cA7CotJpTVMR2fRTqP1T4FsORAjg9l-fbdpVmeDiZBRbL2zCWmKWhtDpHyy7vbSCRghntihz_M5Hrchk7r8ito_K3dFrV9IZSF9RoEY7kyK5bL36Kpgai44PYCzqOzqP2fteO_rZ9fn-uK59pI3ySo_PgSbJ55n14Nd9Z8m70zE9Z4aIeNDEFspZUhavngRwc7MuJ7f_hVGQ9RFbbkQ",
      "e": "AQAB",
      "use": "enc",
      "kid": "fapi20200623",
      "qi": "IyiL1_cnC5Najrfvu6ypiR3JmpHXDs8FkYJUdfqXnVWaBNxkdDi3iks943JyIfp8JI-NWndiNB6DdSBzecARDqew3lQomIsGsoR0wPFcHDee-d-NmBwEm3TSHrleGjj0oBJe6BDnAdsaHhsL9NLo_1aOd_9W_TM2kcuSntM-DFA",
      "dp": "jjER1tu2hLrh6d34JSc3zubsMOZyEkXgRRnRgFEFsnPAhtRf9l99Ot5cuU4EINuCaI1Lyi46tJG7de8fy30RbdwU4Myf_4mcbjn4nO2sfd_dj5W05mz8YYM7yxB2cGKOOLFOBf99mdzSFNGS4PC0SL9sqvAbC4FyIUsJNaZIkOs",
      "dq": "xGck3jMl1cIPhcO0aAvuMQaW_df2iqLlsYTTLPsnHLpLvTwMpx9bMMUs95NTf9KBtJ3yu8dcl17rktYi4zHTjQtegRYCIXPphgAXBL7k3jjMfgloQfgfhO-ZNEiP1-YwJ8WNzz3hKDNVr-hf4mcMj9qw1_jAIUUGzCDrGOa2gQ",
      "n": "jVc92j0ntTV0V1nwZ3mpGaV2bME4d6AMS2SRrJBM0fLehaTEqDNzGu0warz2SC9bhcBOB5_q3mYBFjmTwWzSbsk6RYETnAgViXg67PgH7Vkx2NCtwgQW3cNdnUZWRNYHsoevkx_Ta1X6Vi9ulebU_BCKjrF-6CjVcGgEsO_S5DKcukGHdf81WlQOq3zGQg4h7MLArrbPSTHHORDsu_87qY9m2EhiYSOBSF5rHsfDo7zWI5FWNG-_HO-CBM005bykIIS1aXCXx1jOW1OrKcp5xv3e-BR6MJTxncZJ4o1GtynJI8kLXRgltLArSOkbzNEr9GjU9lnSSxKLMtRLKkG2Ow"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
ValidateMTLSCertificatesAsX509
Mutual TLS authentication cert validated as X.509
Verify configuration of second client
2021-05-10 19:03:39 SUCCESS
GetStaticClient2Configuration
Found a static second client object
client_id
2334383809607140
scope
openid payments
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "d": "Nha1ReQVpOa1vsTz0oEcbtCd2UAbYWXhLr06CXXENXxDHWhTkXCaayh4kEOp6CNfY5b75tbBZB2hhxyY7vPNSmnvrIHn1YE5a321vHEti0GoNI9UGi2KhAO40Qu0ZPqvYCo3nfRsS-CWUWzchcKlqwiwuIwXOWPEGTnuKf-iqsqm6zNXB6zkIXb0Qkm5ByyGiF_wgOJLdlEx9hHlmHPiT_RKYbsQQ4mNqwOVnkInttzPiWmfY1cYN4qlxMYtIF7vb1pz1eWjZLlQpM37qQSxNXVeKNIUrs3NRyP-VDv47YFWDRLaPEPnnS7Y5RwJgeydTPHfZ91C2Q_m79KMGHSqkQ",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-2",
      "alg": "PS256",
      "n": "kne7a8IYQR6jweqpHAplq-XRGOuiVyF5Siy6_647OhOC8ppRIMV2O_wP6qK1AKCFb78Bb8qbRI3Mz-Tr9hCWm1BZQkD-HGbNowjVsOj7oB2nbNbGfqciTyT3kTG1f5PmeX2N4-f9zZM-J4Jmi9PdMjn2fkNl9oMCW9XaLHHzCU6f-vYftxdCnVQD7ZKr40HjoAeXjwdGhgzvuWSZHkhEqx_QMh8JskqP46PjsMykFWiryju9balCdS5yASf-Fno8pXMFEV1wgipy-FPlhB5FZtLwVvH9F2jAxRaWkRQzhM5hWugIUi8YobjoIwhrmJ04JTK-DGOlThJsNvS4QANDZw"
    },
    {
      "p": "7qedTQzS0HpavGkfXrxaslZaxld9PiFxG_j_qkGa1zq5AYVvw3_YUy8HrO8-2QjXVDX7pOeM5qDR-g1Zh13kdypvGbYW3wlDdaKbsF-9FURK96M2oiNd_6UKaxP1UU1XOVEhN_LANDCfxBgK_eejbVz-3vCDezWVu9ujIBLq6wM",
      "kty": "RSA",
      "q": "jc3dAzAN-2Ti0X2QwGDCZfaqDHo-rf_8Kv7Sqn1yiwjVE6VrfRhDwkxHpLBlWciO65pRTF71vnLajE79AHsy8hO0e1egcN8axLoQ5FPOFNbcdANarxUGkdZqx8hENBUmbZjX36OX6ZKTYO74KWv8NBXwv2Va85Oxnk22NuwCWVE",
      "d": "H2BY7TOeBS55fhfBoPdTKPSkPJuN6L1w7Lqr6DxnSdxa_xu9aESxjdXSEqWkVZGDHJ81c6t4oaN9xJSTug7oNaQcJEgdooffjRfnAelVR6hpoVODrN9tk9HqRBsgV43v07AzREaPE97LMPFPzNkgloyMa2nKiUXjwv6TVh_HQryCZqj8AvUsOIZd-Qi3FCv8cYEqqIlzZ-86nQdEVEmqpkp4SmylgqF_1H0hU8_nguRFh4Ojz0GpFtb6zsSpSGGGBDWOgcu8ti-0QXJDLsyKhFo33fwwmZzJsNJZpXNQD4n-e8JS4CrMAIVSvSEUFonFuq5BwmhA-l3rwOa4Bnnf4Q",
      "e": "AQAB",
      "alg": "RSA-OAEP",
      "use": "enc",
      "kid": "fapi-2020-06-23-2",
      "qi": "wSzPUIFPoyDg01qNp3NcDALx4GS5MvTl224ICHR_zXGxR_bEBgDT_MuJv_LIozVJWD-oSXxj2M5YglcbUWFZECBiHbpdln4RAzPVgLzwiIrcCDeU1aBTQ_-2-TzyVeX3StqCcT9E74Hfo_xs3jiiR5ubKlgP4yfUEi9WjoEz0d4",
      "dp": "Czvupqrc3Z102fuk02PQbSatfTqvFZajaWquNkiCTnFgNhce7Lf-6eOD2_sjHTpSUI99-gRAWLbnS3sHZNzhnU5tDmvI5dTczRPLemD3WKHvWXrgXn-FtDwDooi8-ofGfFc6VhTiQVKsoqFzGwKlacd_4-S0e79I_h_XrPHXBxs",
      "dq": "MWb3CJVFSb_sBW_pbhxHnZ5Bv_cWvyffglskqaDqtuVs1ltbB0nc0WQh0Y5iwNTOdeZdTG4Iz0DUQu2B1xkUtqGGzzHIA4q2mLL6D5Hiyf_Q7dn9TeHVWBmLOe7bVAnKSYRmMNOdqRIXpj2a11N3me3K4eM9vH5H8w6_3IJ8jwE",
      "n": "hDI75hJSM_tN3vDFouXZyi4Rf6i_5uhgrO5iXcgAwutkf6AXw914AIQv3eUXX5m1vrN00KIlgkxBXwyP8yP27KJvKXYVNUxqIqanE2jF53CkNgAMpVo-weWJkg1nakWr_lrL60sWAtQf7HTcs2ePKRSrnt60hqGZWeoEljYrMY5mRtOTIzUDdhXRK6QG5w0TQaPfqvpYemhl9lJtbPHQ7Mq0wZu1PBQG9zxjsXgMOKKbUKxzt7sVhjiKmkay_AL173sAQ9l8mwpAXx5Qa1KSUI4SLF6z8mvD6zTbTUWs3UhpX9tH-yir4VbYgaLH3ZHoyMNJ4qHPDscubi7YQg5m8w"
    }
  ]
}
2021-05-10 19:03:39
ValidateMTLSCertificates2Header
No certificate authority found for MTLS
2021-05-10 19:03:39 SUCCESS
ValidateMTLSCertificates2Header
MTLS certificates header is valid
2021-05-10 19:03:39
ExtractMTLSCertificates2FromConfiguration
No certificate authority found for MTLS
2021-05-10 19:03:39 SUCCESS
ExtractMTLSCertificates2FromConfiguration
Mutual TLS authentication credentials loaded
cert
MIIDhTCCAm2gAwIBAgIJAKAe4HusBvwoMA0GCSqGSIb3DQEBCwUAMFgxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApTb21lLVN0YXRlMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQxETAPBgNVBAMMCGNsaWVudF8yMCAXDTE4MDcwMjE2MzUyOFoYDzIxMDYwMjExMTYzNTI4WjBYMQswCQYDVQQGEwJVUzETMBEGA1UECAwKU29tZS1TdGF0ZTEhMB8GA1UECgwYSW50ZXJuZXQgV2lkZ2l0cyBQdHkgTHRkMREwDwYDVQQDDAhjbGllbnRfMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANMy1QohUbUoyte8cYCCO1+vJ/GImvVkrb79HUTSzL3G46lDC0JYZGMpMvX9NncadCYLQV8fmofOouNs4AWJgf0skH5sAJcZMgj3GVqqLsx2iDye3cgqsCCzTf5gzhOVtpXgNoBMFckVGxI+dG9h06n71mH9dtGoD/BoWOB4FLae0Ec4olot5eROeJ3Z0J15aXPWoQrn3J5Eoz0/c7D7+byb+XGjF/r+uJVrKqOLtnO69Ro99fowwVtVQAPHmxLQ9VvFiLONwbOfELtBvX4MlxHDOuynDsDw/mHxkzMSxPXAd9QfIU05ySZ9eVR3UfNUeCk8a63NSO8MZdfHFnUsEO8CAwEAAaNQME4wHQYDVR0OBBYEFFEdch1XYRpO5JXxPkBxdAoAt6IiMB8GA1UdIwQYMBaAFFEdch1XYRpO5JXxPkBxdAoAt6IiMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBABTTN0up/ndWCNamqrV8ik1XwUqPCAO7TYKmZrRilo3STxyp2aUiFf1uPSkU6WU4Eu0JoDKU46axIFzZO3Ckoq17JMde2OzESlAF+hQyvg/3l+6mbBK/OuzOiC+yfU9roD6vmjsBlH0My1+CnqkZLr6YQSaCHfflb6zqA7+aLUEWjyVneD6jQ6CCFwCs6eDorY1eKFM7lCQ5OdJFBc2LOOXuSGRXLZDKF3X2SfKCld0VWIOknJk8drfrCc1ylWa7wIuXU/kTyX8Z68a8w1/6ZkGxN9tsHWVtSe6ggOD1AFI5OQ3c8lCUzgGeFl69hz2UduHOyWs1KXUhgSy7fViAP90=
key
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
2021-05-10 19:03:39 SUCCESS
ValidateClientJWKsPrivatePart
Valid client JWKs: keys are valid JSON, contain the required fields, the private/public exponents match and are correctly encoded using unpadded base64url
2021-05-10 19:03:39 SUCCESS
ExtractJWKsFromStaticClientConfiguration
Extracted client JWK
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "d": "Nha1ReQVpOa1vsTz0oEcbtCd2UAbYWXhLr06CXXENXxDHWhTkXCaayh4kEOp6CNfY5b75tbBZB2hhxyY7vPNSmnvrIHn1YE5a321vHEti0GoNI9UGi2KhAO40Qu0ZPqvYCo3nfRsS-CWUWzchcKlqwiwuIwXOWPEGTnuKf-iqsqm6zNXB6zkIXb0Qkm5ByyGiF_wgOJLdlEx9hHlmHPiT_RKYbsQQ4mNqwOVnkInttzPiWmfY1cYN4qlxMYtIF7vb1pz1eWjZLlQpM37qQSxNXVeKNIUrs3NRyP-VDv47YFWDRLaPEPnnS7Y5RwJgeydTPHfZ91C2Q_m79KMGHSqkQ",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-2",
      "alg": "PS256",
      "n": "kne7a8IYQR6jweqpHAplq-XRGOuiVyF5Siy6_647OhOC8ppRIMV2O_wP6qK1AKCFb78Bb8qbRI3Mz-Tr9hCWm1BZQkD-HGbNowjVsOj7oB2nbNbGfqciTyT3kTG1f5PmeX2N4-f9zZM-J4Jmi9PdMjn2fkNl9oMCW9XaLHHzCU6f-vYftxdCnVQD7ZKr40HjoAeXjwdGhgzvuWSZHkhEqx_QMh8JskqP46PjsMykFWiryju9balCdS5yASf-Fno8pXMFEV1wgipy-FPlhB5FZtLwVvH9F2jAxRaWkRQzhM5hWugIUi8YobjoIwhrmJ04JTK-DGOlThJsNvS4QANDZw"
    },
    {
      "p": "7qedTQzS0HpavGkfXrxaslZaxld9PiFxG_j_qkGa1zq5AYVvw3_YUy8HrO8-2QjXVDX7pOeM5qDR-g1Zh13kdypvGbYW3wlDdaKbsF-9FURK96M2oiNd_6UKaxP1UU1XOVEhN_LANDCfxBgK_eejbVz-3vCDezWVu9ujIBLq6wM",
      "kty": "RSA",
      "q": "jc3dAzAN-2Ti0X2QwGDCZfaqDHo-rf_8Kv7Sqn1yiwjVE6VrfRhDwkxHpLBlWciO65pRTF71vnLajE79AHsy8hO0e1egcN8axLoQ5FPOFNbcdANarxUGkdZqx8hENBUmbZjX36OX6ZKTYO74KWv8NBXwv2Va85Oxnk22NuwCWVE",
      "d": "H2BY7TOeBS55fhfBoPdTKPSkPJuN6L1w7Lqr6DxnSdxa_xu9aESxjdXSEqWkVZGDHJ81c6t4oaN9xJSTug7oNaQcJEgdooffjRfnAelVR6hpoVODrN9tk9HqRBsgV43v07AzREaPE97LMPFPzNkgloyMa2nKiUXjwv6TVh_HQryCZqj8AvUsOIZd-Qi3FCv8cYEqqIlzZ-86nQdEVEmqpkp4SmylgqF_1H0hU8_nguRFh4Ojz0GpFtb6zsSpSGGGBDWOgcu8ti-0QXJDLsyKhFo33fwwmZzJsNJZpXNQD4n-e8JS4CrMAIVSvSEUFonFuq5BwmhA-l3rwOa4Bnnf4Q",
      "e": "AQAB",
      "alg": "RSA-OAEP",
      "use": "enc",
      "kid": "fapi-2020-06-23-2",
      "qi": "wSzPUIFPoyDg01qNp3NcDALx4GS5MvTl224ICHR_zXGxR_bEBgDT_MuJv_LIozVJWD-oSXxj2M5YglcbUWFZECBiHbpdln4RAzPVgLzwiIrcCDeU1aBTQ_-2-TzyVeX3StqCcT9E74Hfo_xs3jiiR5ubKlgP4yfUEi9WjoEz0d4",
      "dp": "Czvupqrc3Z102fuk02PQbSatfTqvFZajaWquNkiCTnFgNhce7Lf-6eOD2_sjHTpSUI99-gRAWLbnS3sHZNzhnU5tDmvI5dTczRPLemD3WKHvWXrgXn-FtDwDooi8-ofGfFc6VhTiQVKsoqFzGwKlacd_4-S0e79I_h_XrPHXBxs",
      "dq": "MWb3CJVFSb_sBW_pbhxHnZ5Bv_cWvyffglskqaDqtuVs1ltbB0nc0WQh0Y5iwNTOdeZdTG4Iz0DUQu2B1xkUtqGGzzHIA4q2mLL6D5Hiyf_Q7dn9TeHVWBmLOe7bVAnKSYRmMNOdqRIXpj2a11N3me3K4eM9vH5H8w6_3IJ8jwE",
      "n": "hDI75hJSM_tN3vDFouXZyi4Rf6i_5uhgrO5iXcgAwutkf6AXw914AIQv3eUXX5m1vrN00KIlgkxBXwyP8yP27KJvKXYVNUxqIqanE2jF53CkNgAMpVo-weWJkg1nakWr_lrL60sWAtQf7HTcs2ePKRSrnt60hqGZWeoEljYrMY5mRtOTIzUDdhXRK6QG5w0TQaPfqvpYemhl9lJtbPHQ7Mq0wZu1PBQG9zxjsXgMOKKbUKxzt7sVhjiKmkay_AL173sAQ9l8mwpAXx5Qa1KSUI4SLF6z8mvD6zTbTUWs3UhpX9tH-yir4VbYgaLH3ZHoyMNJ4qHPDscubi7YQg5m8w"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-2",
      "alg": "PS256",
      "n": "kne7a8IYQR6jweqpHAplq-XRGOuiVyF5Siy6_647OhOC8ppRIMV2O_wP6qK1AKCFb78Bb8qbRI3Mz-Tr9hCWm1BZQkD-HGbNowjVsOj7oB2nbNbGfqciTyT3kTG1f5PmeX2N4-f9zZM-J4Jmi9PdMjn2fkNl9oMCW9XaLHHzCU6f-vYftxdCnVQD7ZKr40HjoAeXjwdGhgzvuWSZHkhEqx_QMh8JskqP46PjsMykFWiryju9balCdS5yASf-Fno8pXMFEV1wgipy-FPlhB5FZtLwVvH9F2jAxRaWkRQzhM5hWugIUi8YobjoIwhrmJ04JTK-DGOlThJsNvS4QANDZw"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "enc",
      "kid": "fapi-2020-06-23-2",
      "alg": "RSA-OAEP",
      "n": "hDI75hJSM_tN3vDFouXZyi4Rf6i_5uhgrO5iXcgAwutkf6AXw914AIQv3eUXX5m1vrN00KIlgkxBXwyP8yP27KJvKXYVNUxqIqanE2jF53CkNgAMpVo-weWJkg1nakWr_lrL60sWAtQf7HTcs2ePKRSrnt60hqGZWeoEljYrMY5mRtOTIzUDdhXRK6QG5w0TQaPfqvpYemhl9lJtbPHQ7Mq0wZu1PBQG9zxjsXgMOKKbUKxzt7sVhjiKmkay_AL173sAQ9l8mwpAXx5Qa1KSUI4SLF6z8mvD6zTbTUWs3UhpX9tH-yir4VbYgaLH3ZHoyMNJ4qHPDscubi7YQg5m8w"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
CheckForKeyIdInClientJWKs
All keys contain kids
2021-05-10 19:03:39 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2021-05-10 19:03:39 SUCCESS
FAPICheckKeyAlgInClientJWKs
Found a key with alg PS256 or ES256
2021-05-10 19:03:39 SUCCESS
FAPIEnsureMinimumClientKeyLength
Validated minimum key lengths for client_jwks
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "d": "Nha1ReQVpOa1vsTz0oEcbtCd2UAbYWXhLr06CXXENXxDHWhTkXCaayh4kEOp6CNfY5b75tbBZB2hhxyY7vPNSmnvrIHn1YE5a321vHEti0GoNI9UGi2KhAO40Qu0ZPqvYCo3nfRsS-CWUWzchcKlqwiwuIwXOWPEGTnuKf-iqsqm6zNXB6zkIXb0Qkm5ByyGiF_wgOJLdlEx9hHlmHPiT_RKYbsQQ4mNqwOVnkInttzPiWmfY1cYN4qlxMYtIF7vb1pz1eWjZLlQpM37qQSxNXVeKNIUrs3NRyP-VDv47YFWDRLaPEPnnS7Y5RwJgeydTPHfZ91C2Q_m79KMGHSqkQ",
      "e": "AQAB",
      "kid": "fapi-jwt-assertion-20180817-2",
      "alg": "PS256",
      "n": "kne7a8IYQR6jweqpHAplq-XRGOuiVyF5Siy6_647OhOC8ppRIMV2O_wP6qK1AKCFb78Bb8qbRI3Mz-Tr9hCWm1BZQkD-HGbNowjVsOj7oB2nbNbGfqciTyT3kTG1f5PmeX2N4-f9zZM-J4Jmi9PdMjn2fkNl9oMCW9XaLHHzCU6f-vYftxdCnVQD7ZKr40HjoAeXjwdGhgzvuWSZHkhEqx_QMh8JskqP46PjsMykFWiryju9balCdS5yASf-Fno8pXMFEV1wgipy-FPlhB5FZtLwVvH9F2jAxRaWkRQzhM5hWugIUi8YobjoIwhrmJ04JTK-DGOlThJsNvS4QANDZw"
    },
    {
      "p": "7qedTQzS0HpavGkfXrxaslZaxld9PiFxG_j_qkGa1zq5AYVvw3_YUy8HrO8-2QjXVDX7pOeM5qDR-g1Zh13kdypvGbYW3wlDdaKbsF-9FURK96M2oiNd_6UKaxP1UU1XOVEhN_LANDCfxBgK_eejbVz-3vCDezWVu9ujIBLq6wM",
      "kty": "RSA",
      "q": "jc3dAzAN-2Ti0X2QwGDCZfaqDHo-rf_8Kv7Sqn1yiwjVE6VrfRhDwkxHpLBlWciO65pRTF71vnLajE79AHsy8hO0e1egcN8axLoQ5FPOFNbcdANarxUGkdZqx8hENBUmbZjX36OX6ZKTYO74KWv8NBXwv2Va85Oxnk22NuwCWVE",
      "d": "H2BY7TOeBS55fhfBoPdTKPSkPJuN6L1w7Lqr6DxnSdxa_xu9aESxjdXSEqWkVZGDHJ81c6t4oaN9xJSTug7oNaQcJEgdooffjRfnAelVR6hpoVODrN9tk9HqRBsgV43v07AzREaPE97LMPFPzNkgloyMa2nKiUXjwv6TVh_HQryCZqj8AvUsOIZd-Qi3FCv8cYEqqIlzZ-86nQdEVEmqpkp4SmylgqF_1H0hU8_nguRFh4Ojz0GpFtb6zsSpSGGGBDWOgcu8ti-0QXJDLsyKhFo33fwwmZzJsNJZpXNQD4n-e8JS4CrMAIVSvSEUFonFuq5BwmhA-l3rwOa4Bnnf4Q",
      "e": "AQAB",
      "alg": "RSA-OAEP",
      "use": "enc",
      "kid": "fapi-2020-06-23-2",
      "qi": "wSzPUIFPoyDg01qNp3NcDALx4GS5MvTl224ICHR_zXGxR_bEBgDT_MuJv_LIozVJWD-oSXxj2M5YglcbUWFZECBiHbpdln4RAzPVgLzwiIrcCDeU1aBTQ_-2-TzyVeX3StqCcT9E74Hfo_xs3jiiR5ubKlgP4yfUEi9WjoEz0d4",
      "dp": "Czvupqrc3Z102fuk02PQbSatfTqvFZajaWquNkiCTnFgNhce7Lf-6eOD2_sjHTpSUI99-gRAWLbnS3sHZNzhnU5tDmvI5dTczRPLemD3WKHvWXrgXn-FtDwDooi8-ofGfFc6VhTiQVKsoqFzGwKlacd_4-S0e79I_h_XrPHXBxs",
      "dq": "MWb3CJVFSb_sBW_pbhxHnZ5Bv_cWvyffglskqaDqtuVs1ltbB0nc0WQh0Y5iwNTOdeZdTG4Iz0DUQu2B1xkUtqGGzzHIA4q2mLL6D5Hiyf_Q7dn9TeHVWBmLOe7bVAnKSYRmMNOdqRIXpj2a11N3me3K4eM9vH5H8w6_3IJ8jwE",
      "n": "hDI75hJSM_tN3vDFouXZyi4Rf6i_5uhgrO5iXcgAwutkf6AXw914AIQv3eUXX5m1vrN00KIlgkxBXwyP8yP27KJvKXYVNUxqIqanE2jF53CkNgAMpVo-weWJkg1nakWr_lrL60sWAtQf7HTcs2ePKRSrnt60hqGZWeoEljYrMY5mRtOTIzUDdhXRK6QG5w0TQaPfqvpYemhl9lJtbPHQ7Mq0wZu1PBQG9zxjsXgMOKKbUKxzt7sVhjiKmkay_AL173sAQ9l8mwpAXx5Qa1KSUI4SLF6z8mvD6zTbTUWs3UhpX9tH-yir4VbYgaLH3ZHoyMNJ4qHPDscubi7YQg5m8w"
    }
  ]
}
2021-05-10 19:03:39 SUCCESS
ValidateMTLSCertificatesAsX509
Mutual TLS authentication cert validated as X.509
2021-05-10 19:03:39 SUCCESS
GetResourceEndpointConfiguration
Found a resource endpoint object
resourceUrl
https://fapidev-rs.authlete.net/api/fapi/accounts
institution_id
xxx
cdrVersion
5
2021-05-10 19:03:39 SUCCESS
SetProtectedResourceUrlToSingleResourceEndpoint
Set protected resource URL
protected_resource_url
https://fapidev-rs.authlete.net/api/fapi/accounts
2021-05-10 19:03:39 SUCCESS
ExtractTLSTestValuesFromResourceConfiguration
Extracted TLS information from resource endpoint
resource_endpoint
{
  "testHost": "fapidev-rs.authlete.net",
  "testPort": 443
}
2021-05-10 19:03:39 SUCCESS
ExtractTLSTestValuesFromOBResourceConfiguration
Extracted TLS information from resource endpoint
accounts_resource_endpoint
{
  "testHost": "fapidev-rs.authlete.net",
  "testPort": 443
}
accounts_request_endpoint
{
  "testHost": "fapidev-rs.authlete.net",
  "testPort": 443
}
2021-05-10 19:03:39
fapi-rw-id2-ensure-authorization-request-without-state-success
Setup Done
Make request to authorization endpoint
2021-05-10 19:03:39 SUCCESS
CreateAuthorizationEndpointRequestFromClientInformation
Created authorization endpoint request
client_id
2334382354153498
redirect_uri
https://www.certification.openid.net/test/a/fintech-authlete/callback
scope
openid payments
2021-05-10 19:03:39 SUCCESS
AddCdrAcrClaimToAuthorizationEndpointRequest
Added acr claim to authorization_endpoint_request
authorization_endpoint_request
{
  "client_id": "2334382354153498",
  "redirect_uri": "https://www.certification.openid.net/test/a/fintech-authlete/callback",
  "scope": "openid payments",
  "claims": {
    "id_token": {
      "acr": {
        "value": "urn:cds.au:cdr:2",
        "essential": true
      }
    }
  }
}
2021-05-10 19:03:39 SUCCESS
AddCdrSharingDurationClaimToAuthorizationEndpointRequest
Added sharing_duration claim to authorization_endpoint_request
authorization_endpoint_request
{
  "client_id": "2334382354153498",
  "redirect_uri": "https://www.certification.openid.net/test/a/fintech-authlete/callback",
  "scope": "openid payments",
  "claims": {
    "id_token": {
      "acr": {
        "value": "urn:cds.au:cdr:2",
        "essential": true
      }
    },
    "sharing_duration": 7776000
  }
}
2021-05-10 19:03:39
CreateRandomStateValue
Created state value
requested_state_length
10
state
mE1JJq2Cc0
2021-05-10 19:03:39
AddStateToAuthorizationEndpointRequest
NOT adding state to request object
2021-05-10 19:03:39
CreateRandomNonceValue
Created nonce value
requested_nonce_length
10
nonce
dm1FXWKWR5
2021-05-10 19:03:39 SUCCESS
AddNonceToAuthorizationEndpointRequest
Added nonce parameter to request
client_id
2334382354153498
redirect_uri
https://www.certification.openid.net/test/a/fintech-authlete/callback
scope
openid payments
claims
{
  "id_token": {
    "acr": {
      "value": "urn:cds.au:cdr:2",
      "essential": true
    }
  },
  "sharing_duration": 7776000
}
nonce
dm1FXWKWR5
2021-05-10 19:03:39 SUCCESS
SetAuthorizationEndpointRequestResponseTypeToCodeIdtoken
Added response_type parameter to request
client_id
2334382354153498
redirect_uri
https://www.certification.openid.net/test/a/fintech-authlete/callback
scope
openid payments
claims
{
  "id_token": {
    "acr": {
      "value": "urn:cds.au:cdr:2",
      "essential": true
    }
  },
  "sharing_duration": 7776000
}
nonce
dm1FXWKWR5
response_type
code id_token
2021-05-10 19:03:39 SUCCESS
ConvertAuthorizationEndpointRequestToRequestObject
Created request object claims
request_object_claims
{
  "client_id": "2334382354153498",
  "redirect_uri": "https://www.certification.openid.net/test/a/fintech-authlete/callback",
  "scope": "openid payments",
  "claims": {
    "id_token": {
      "acr": {
        "value": "urn:cds.au:cdr:2",
        "essential": true
      }
    },
    "sharing_duration": 7776000
  },
  "nonce": "dm1FXWKWR5",
  "response_type": "code id_token"
}
2021-05-10 19:03:39 SUCCESS
AddExpToRequestObject
Added exp to request object claims
exp
1.620673719E9
2021-05-10 19:03:39 SUCCESS
AddAudToRequestObject
Added aud to request object claims
aud
https://fapidev-as.authlete.net/
2021-05-10 19:03:39 SUCCESS
AddIssToRequestObject
Added iss to request object claims
iss
2334382354153498
2021-05-10 19:03:39 SUCCESS
SignRequestObject
Signed the request object
claims
{"aud":"https:\/\/fapidev-as.authlete.net\/","scope":"openid payments","claims":{"sharing_duration":7776000,"id_token":{"acr":{"value":"urn:cds.au:cdr:2","essential":true}}},"iss":"2334382354153498","response_type":"code id_token","redirect_uri":"https:\/\/www.certification.openid.net\/test\/a\/fintech-authlete\/callback","exp":1620673719,"nonce":"dm1FXWKWR5","client_id":"2334382354153498"}
header
{"kid":"fapi-jwt-assertion-20180817-1","alg":"PS256"}
request_object
eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJhdWQiOiJodHRwczpcL1wvZmFwaWRldi1hcy5hdXRobGV0ZS5uZXRcLyIsInNjb3BlIjoib3BlbmlkIHBheW1lbnRzIiwiY2xhaW1zIjp7InNoYXJpbmdfZHVyYXRpb24iOjc3NzYwMDAsImlkX3Rva2VuIjp7ImFjciI6eyJ2YWx1ZSI6InVybjpjZHMuYXU6Y2RyOjIiLCJlc3NlbnRpYWwiOnRydWV9fX0sImlzcyI6IjIzMzQzODIzNTQxNTM0OTgiLCJyZXNwb25zZV90eXBlIjoiY29kZSBpZF90b2tlbiIsInJlZGlyZWN0X3VyaSI6Imh0dHBzOlwvXC93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0XC90ZXN0XC9hXC9maW50ZWNoLWF1dGhsZXRlXC9jYWxsYmFjayIsImV4cCI6MTYyMDY3MzcxOSwibm9uY2UiOiJkbTFGWFdLV1I1IiwiY2xpZW50X2lkIjoiMjMzNDM4MjM1NDE1MzQ5OCJ9.HTmHw_FW4kI_eYiNKRJgoX6oNoXHm-S-0WjmmW4PdQvd_o5fEeyG5DX6f1xZXVbmBYGlPh4nQGSh9aqdzokPzR9XQ8F7a7lXCosiBGZsJxEn0EU9r13cOH5mWVP7NUYHy0-HPXsgO2b4i5GaFVVBdcAGohzzKdXaHxuTt3P7CNv6ZeZu-JMmSqOEQwgDW1geqenUEhNXvxWPIxY0oeoT0v5gLF2ehDpbcNUIvxDkpI07Xam8TltIRgQuNV2QSxxXr9bDzkWKyDDOlew1mtnZV2eStPQkmpFoMzQ7RxKq88q0kVK9mKCxgczm0H8VwDkZzxcqAcnJDx5NXt6tEWGkKg
key
{"kty":"RSA","d":"ZHPB6jX2Np7cUjFu2iiYlT1YPdJ6KSyyPjEWT72TYOX6O-0a48Ez3m5OnOy_bCwD3F7_WAL0wbWXWFsRt6DmCqW-MGxG38klMQwV4dhgI6lEYyfhvBazJyQJeqHwKE5VIezgyBJyGkK9GHUqq3k3s-hsS_MLVE6BDcLNf9iPRUlQ5JJLHGMZYAW6uv3ex-LGqhLT_BWX4Y1fowAgUvDLcaLj-_tRonKF4oJRiz6oMO4KTJJofhXzptY0T_K0u8bx7Y7JN-W7fC8havmG5bnKetsLQYHcn7ddWtOA_6Qxjxb6SMIr1bNWeGVA5p15NMHcIfsNmSK03Y-Xic5eiuBhwQ","e":"AQAB","kid":"fapi-jwt-assertion-20180817-1","alg":"PS256","n":"9sLLHll-BiuwIvupyiAOaTR-ChAjuwQhThxtSD5wgL9AG2YJlamxo52ZEhTdNKomGRw3woihBRk8okPSd1YZCkFuOc7iF1sUsxDA0APbdeAzZdwGcqvPlEqoz8HsnormZFTP9tG451Z_cMd20_cCufGqi6XBpE2fOMGhn9CNEo-_3TPyrFZwmP-rqsQ3TKp5Zkb42AACsT9GuxB-Qrrpp1hkCJdSvXhAwIvX2jOxXQORJZkW2ST0DpCTbtAoPEW0aoCIkwWjV08qTSBduA14eIl9xPACfElosTDEbL1bR6BGxoILSJTe4U5Lz4Us7l8TWhO_OaQsyxSLFxXOy13KMQ"}
2021-05-10 19:03:39 SUCCESS
BuildRequestObjectPostToPAREndpoint
request
eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.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.HTmHw_FW4kI_eYiNKRJgoX6oNoXHm-S-0WjmmW4PdQvd_o5fEeyG5DX6f1xZXVbmBYGlPh4nQGSh9aqdzokPzR9XQ8F7a7lXCosiBGZsJxEn0EU9r13cOH5mWVP7NUYHy0-HPXsgO2b4i5GaFVVBdcAGohzzKdXaHxuTt3P7CNv6ZeZu-JMmSqOEQwgDW1geqenUEhNXvxWPIxY0oeoT0v5gLF2ehDpbcNUIvxDkpI07Xam8TltIRgQuNV2QSxxXr9bDzkWKyDDOlew1mtnZV2eStPQkmpFoMzQ7RxKq88q0kVK9mKCxgczm0H8VwDkZzxcqAcnJDx5NXt6tEWGkKg
2021-05-10 19:03:39 SUCCESS
CreateClientAuthenticationAssertionClaims
Created client assertion claims
iss
2334382354153498
sub
2334382354153498
aud
https://fapidev-as.authlete.net/api/token
jti
e1mJBrdikzkfoTCxXkT8
iat
1620673419
exp
1620673479
2021-05-10 19:03:39 SUCCESS
UpdateClientAuthenticationAssertionClaimsWithISSAud
Updated audience in client assertion claims
iss
2334382354153498
sub
2334382354153498
jti
e1mJBrdikzkfoTCxXkT8
iat
1620673419
exp
1620673479
aud
https://fapidev-as.authlete.net/
2021-05-10 19:03:39 SUCCESS
SignClientAuthenticationAssertion
Signed the client assertion
client_assertion
eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIyMzM0MzgyMzU0MTUzNDk4IiwiYXVkIjoiaHR0cHM6XC9cL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0XC8iLCJpc3MiOiIyMzM0MzgyMzU0MTUzNDk4IiwiZXhwIjoxNjIwNjczNDc5LCJpYXQiOjE2MjA2NzM0MTksImp0aSI6ImUxbUpCcmRpa3prZm9UQ3hYa1Q4In0.0tEOjr3Fxo16tb7sR6FG-m4SG-Gjevk7SDaIUTLGOX-BTLG4yh7nrCiqmqVh1JFP49Ngd5pmm4ZbiDO7X5LmdUZwQOH3oqeBZoqXXltjMB95PfF6oiGLReVHZp0If0U51KRbwGYJrDBffXoE6g-TGJLWcqZ2dgVbrtQRTjs5tfq35vCVPMG3CXU38YmuwuYl3EvebjMjvklNh_uopJKYLaBGhylkhxRGm2j8WBMhg32iRaRH-R8fZeeqAgS36Xui92iaxdkAabhya1ErNKlY4jW14HgfgHLGSswF0F6nIz00Fec_F5PlZjz3D72zfiox_BXMl6XS24E56irOk1ASHQ
2021-05-10 19:03:39 SUCCESS
AddClientAssertionToPAREndpointParameters
Added client assertion to request
request
{
  "request": "eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.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.HTmHw_FW4kI_eYiNKRJgoX6oNoXHm-S-0WjmmW4PdQvd_o5fEeyG5DX6f1xZXVbmBYGlPh4nQGSh9aqdzokPzR9XQ8F7a7lXCosiBGZsJxEn0EU9r13cOH5mWVP7NUYHy0-HPXsgO2b4i5GaFVVBdcAGohzzKdXaHxuTt3P7CNv6ZeZu-JMmSqOEQwgDW1geqenUEhNXvxWPIxY0oeoT0v5gLF2ehDpbcNUIvxDkpI07Xam8TltIRgQuNV2QSxxXr9bDzkWKyDDOlew1mtnZV2eStPQkmpFoMzQ7RxKq88q0kVK9mKCxgczm0H8VwDkZzxcqAcnJDx5NXt6tEWGkKg",
  "client_assertion": "eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIyMzM0MzgyMzU0MTUzNDk4IiwiYXVkIjoiaHR0cHM6XC9cL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0XC8iLCJpc3MiOiIyMzM0MzgyMzU0MTUzNDk4IiwiZXhwIjoxNjIwNjczNDc5LCJpYXQiOjE2MjA2NzM0MTksImp0aSI6ImUxbUpCcmRpa3prZm9UQ3hYa1Q4In0.0tEOjr3Fxo16tb7sR6FG-m4SG-Gjevk7SDaIUTLGOX-BTLG4yh7nrCiqmqVh1JFP49Ngd5pmm4ZbiDO7X5LmdUZwQOH3oqeBZoqXXltjMB95PfF6oiGLReVHZp0If0U51KRbwGYJrDBffXoE6g-TGJLWcqZ2dgVbrtQRTjs5tfq35vCVPMG3CXU38YmuwuYl3EvebjMjvklNh_uopJKYLaBGhylkhxRGm2j8WBMhg32iRaRH-R8fZeeqAgS36Xui92iaxdkAabhya1ErNKlY4jW14HgfgHLGSswF0F6nIz00Fec_F5PlZjz3D72zfiox_BXMl6XS24E56irOk1ASHQ",
  "client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer"
}
2021-05-10 19:03:39
CallPAREndpoint
HTTP request
request_uri
https://fapidev-as.authlete.net/api/par
request_method
POST
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "content-type": "application/x-www-form-urlencoded;charset\u003dUTF-8",
  "accept-charset": "utf-8",
  "content-length": "1678"
}
request_body
request=eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.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.HTmHw_FW4kI_eYiNKRJgoX6oNoXHm-S-0WjmmW4PdQvd_o5fEeyG5DX6f1xZXVbmBYGlPh4nQGSh9aqdzokPzR9XQ8F7a7lXCosiBGZsJxEn0EU9r13cOH5mWVP7NUYHy0-HPXsgO2b4i5GaFVVBdcAGohzzKdXaHxuTt3P7CNv6ZeZu-JMmSqOEQwgDW1geqenUEhNXvxWPIxY0oeoT0v5gLF2ehDpbcNUIvxDkpI07Xam8TltIRgQuNV2QSxxXr9bDzkWKyDDOlew1mtnZV2eStPQkmpFoMzQ7RxKq88q0kVK9mKCxgczm0H8VwDkZzxcqAcnJDx5NXt6tEWGkKg&client_assertion=eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIyMzM0MzgyMzU0MTUzNDk4IiwiYXVkIjoiaHR0cHM6XC9cL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0XC8iLCJpc3MiOiIyMzM0MzgyMzU0MTUzNDk4IiwiZXhwIjoxNjIwNjczNDc5LCJpYXQiOjE2MjA2NzM0MTksImp0aSI6ImUxbUpCcmRpa3prZm9UQ3hYa1Q4In0.0tEOjr3Fxo16tb7sR6FG-m4SG-Gjevk7SDaIUTLGOX-BTLG4yh7nrCiqmqVh1JFP49Ngd5pmm4ZbiDO7X5LmdUZwQOH3oqeBZoqXXltjMB95PfF6oiGLReVHZp0If0U51KRbwGYJrDBffXoE6g-TGJLWcqZ2dgVbrtQRTjs5tfq35vCVPMG3CXU38YmuwuYl3EvebjMjvklNh_uopJKYLaBGhylkhxRGm2j8WBMhg32iRaRH-R8fZeeqAgS36Xui92iaxdkAabhya1ErNKlY4jW14HgfgHLGSswF0F6nIz00Fec_F5PlZjz3D72zfiox_BXMl6XS24E56irOk1ASHQ&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer
request_mutual_tls
{
  "cert": "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",
  "key": "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"
}
2021-05-10 19:03:39 RESPONSE
CallPAREndpoint
HTTP response
response_status_code
201 CREATED
response_status_text
Created
response_headers
{
  "date": "Mon, 10 May 2021 19:03:39 GMT",
  "server": "Jetty(9.4.21-SNAPSHOT)",
  "cache-control": "no-store, no-transform",
  "pragma": "no-cache",
  "content-type": "application/json;charset\u003dutf-8",
  "content-length": "111",
  "keep-alive": "timeout\u003d5, max\u003d100",
  "connection": "Keep-Alive"
}
response_body
{"expires_in":90,"request_uri":"urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko"}
2021-05-10 19:03:39 SUCCESS
CallPAREndpoint
Storing pushed_authorization_endpoint_response_http_status 201
2021-05-10 19:03:39 SUCCESS
CallPAREndpoint
Parsed pushed authorization endpoint response
expires_in
90
request_uri
urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko
2021-05-10 19:03:39 SUCCESS
CheckIfPAREndpointResponseError
pushed authorization endpoint correct response.
2021-05-10 19:03:39 SUCCESS
CheckForRequestUriValue
Found valid request_uri
request_uri
urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko
2021-05-10 19:03:39 SUCCESS
CheckForPARResponseExpiresIn
Found expires_in
expires_in
90
2021-05-10 19:03:39 SUCCESS
ExtractRequestUriFromPARResponse
Extracted the request_uri: urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko
2021-05-10 19:03:39 SUCCESS
EnsureMinimumRequestUriEntropy
Calculated shannon entropy seems sufficient
actual
380.793957671653
expected
128.0
2021-05-10 19:03:39 SUCCESS
BuildRequestObjectByReferenceRedirectToAuthorizationEndpoint
Sending to authorization endpoint
redirect_to_authorization_endpoint
https://fapidev-www.authlete.net/api/authorization?request_uri=urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko&client_id=2334382354153498&redirect_uri=https://www.certification.openid.net/test/a/fintech-authlete/callback&scope=openid%20payments&response_type=code%20id_token
2021-05-10 19:03:39 REDIRECT
fapi-rw-id2-ensure-authorization-request-without-state-success
Redirecting to authorization endpoint
redirect_to
https://fapidev-www.authlete.net/api/authorization?request_uri=urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko&client_id=2334382354153498&redirect_uri=https://www.certification.openid.net/test/a/fintech-authlete/callback&scope=openid%20payments&response_type=code%20id_token
2021-05-10 19:03:39
WebRunner
Scripted browser HTTP request
browser
goToUrl
request_method
GET
request_uri
https://fapidev-www.authlete.net/api/authorization?request_uri=urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko&client_id=2334382354153498&redirect_uri=https://www.certification.openid.net/test/a/fintech-authlete/callback&scope=openid%20payments&response_type=code%20id_token
2021-05-10 19:03:40 RESPONSE
WebRunner
Scripted browser HTTP response
response_content
<!doctype html>
<!---->
<!--




-->
<html>
<head>
  <meta charset="UTF-8">
  <meta name="viewport" content="width=device-width, minimum-scale=1.0, initial-scale=1.0, user-scalable=yes">
  <title>FAPI Test Service | Authorization</title>
  <link rel="stylesheet" href="/css/authorization.css">
  <!--  //-->
</head>
<body class="font-default">
  <div id="page_title">FAPI Test Service</div>

  <div id="content">
    <h3 id="client-name">Private key JWKS FAPI-RW client encrypted id token</h3>
    <div class="indent">
      <img id="logo" src="https://button.heenan.me.uk/~joseph/authlete-150x150.png?foo" alt="[Logo] (150x150)">

      <div id="client-summary">
        <p></p>
        <ul id="client-link-list">
          

          

          
        </ul>
      </div>

      <div style="clear: both;"></div>
    </div>

    
    <h4 id="permissions">Permissions</h4>
    <div class="indent">
      <p>The application is requesting the following permissions.</p>

      <dl id="scope-list">
        
        <dt>openid</dt>
        <dd>A permission to request an OpenID Provider to issue an ID Token. See OpenID Connect Core 1.0, 3.1.2.1. for details.</dd>
        
        <dt>payments</dt>
        <dd>Initiate payment transaction (FAPI-RW)</dd>
        
      </dl>
    </div>
    

    

    

    <h4 id="authorization">Authorization</h4>
    <div class="indent">
      <p>Do you grant authorization to the application?</p>

      <form id="authorization-form" action="/api/authorization/decision" method="POST">
        
        <div id="login-fields" class="indent">
          <div id="login-prompt">Input Login ID and password.</div>
          <input type="text" id="loginId" name="loginId" placeholder="Login ID"
                 autocomplete="off" autocorrect="off" autocapitalize="off" spellcheck="false"
                 class="font-default" required value="" >
          <input type="password" id="password" name="password" placeholder="Password"
                 class="font-default" required>
        </div>
        
        
        <div id="authorization-form-buttons">
          <input type="submit" name="authorized" id="authorize-button" value="Authorize" class="font-default"/>
          <input type="submit" name="denied"     id="deny-button"      value="Deny"      class="font-default"/>
        </div>
      </form>
    </div>
  </div>

</body>
</html>
response_content_type
*/*
response_status_text
200-OK
response_status_code
200
2021-05-10 19:03:40 INFO
WebRunner
Entering text
task
Initial Login
browser
text
element_type
id
value
john
url
https://fapidev-www.authlete.net/api/authorization?request_uri=urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko&client_id=2334382354153498&redirect_uri=https://www.certification.openid.net/test/a/fintech-authlete/callback&scope=openid%20payments&response_type=code%20id_token
target
loginId
2021-05-10 19:03:40 INFO
WebRunner
Entering text
task
Initial Login
browser
text
element_type
id
value
john
url
https://fapidev-www.authlete.net/api/authorization?request_uri=urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko&client_id=2334382354153498&redirect_uri=https://www.certification.openid.net/test/a/fintech-authlete/callback&scope=openid%20payments&response_type=code%20id_token
target
password
2021-05-10 19:03:40 INFO
WebRunner
Clicking an element
task
Initial Login
browser
click
element_type
name
url
https://fapidev-www.authlete.net/api/authorization?request_uri=urn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko&client_id=2334382354153498&redirect_uri=https://www.certification.openid.net/test/a/fintech-authlete/callback&scope=openid%20payments&response_type=code%20id_token
target
authorized
2021-05-10 19:03:40 INCOMING
fapi-rw-id2-ensure-authorization-request-without-state-success
Incoming HTTP request to test instance z0Xsg7XWnZUnuTW
incoming_headers
{
  "host": "www.certification.openid.net",
  "upgrade-insecure-requests": "1",
  "user-agent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.83 Safari/537.36",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,image/avif,image/webp,image/apng,*/*;q\u003d0.8,application/signed-exchange;v\u003db3;q\u003d0.9",
  "sec-fetch-site": "same-origin",
  "sec-fetch-mode": "navigate",
  "sec-fetch-user": "?1",
  "sec-fetch-dest": "document",
  "referer": "https://fapidev-www.authlete.net/api/authorization?request_uri\u003durn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko\u0026client_id\u003d2334382354153498\u0026redirect_uri\u003dhttps://www.certification.openid.net/test/a/fintech-authlete/callback\u0026scope\u003dopenid%20payments\u0026response_type\u003dcode%20id_token",
  "accept-encoding": "gzip, deflate, br",
  "accept-language": "en-US",
  "origin": "https://fapidev-www.authlete.net",
  "cache-control": "max-age\u003d0",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "connection": "close",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net"
}
incoming_path
callback
incoming_body_form_params
incoming_method
GET
incoming_body_json
incoming_query_string_params
{}
incoming_body
2021-05-10 19:03:40 SUCCESS
CreateRandomImplicitSubmitUrl
Created random implicit submission URL
implicit_submit
{
  "path": "implicit/o6fxQC3f2UoMksV6LGkb",
  "fullUrl": "https://www.certification.openid.net/test/a/fintech-authlete/implicit/o6fxQC3f2UoMksV6LGkb"
}
2021-05-10 19:03:40 OUTGOING
fapi-rw-id2-ensure-authorization-request-without-state-success
Response to HTTP request to test instance z0Xsg7XWnZUnuTW
outgoing
ModelAndView [view="implicitCallback"; model={implicitSubmitUrl=https://www.certification.openid.net/test/a/fintech-authlete/implicit/o6fxQC3f2UoMksV6LGkb, returnUrl=/log-detail.html?log=z0Xsg7XWnZUnuTW}]
outgoing_path
callback
2021-05-10 19:03:40 INFO
WebRunner
Completed processing of webpage
task
Initial Login
browser
complete
response_status_text
200-
match
https://fapidev-www.authlete.net/api/authorization*
url
https://www.certification.openid.net/test/a/fintech-authlete/callback#code=iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU&id_token=eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ&
response_status_code
200
2021-05-10 19:03:40 INFO
WebRunner
Waiting
regexp
seconds
10
task
Verify Complete
browser
wait
action
element_type
id
url
https://www.certification.openid.net/test/a/fintech-authlete/callback#code=iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU&id_token=eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ&
target
submission_complete
2021-05-10 19:03:40 INCOMING
fapi-rw-id2-ensure-authorization-request-without-state-success
Incoming HTTP request to test instance z0Xsg7XWnZUnuTW
incoming_headers
{
  "host": "www.certification.openid.net",
  "upgrade-insecure-requests": "1",
  "user-agent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.83 Safari/537.36",
  "accept": "*/*",
  "sec-fetch-site": "same-origin",
  "sec-fetch-mode": "navigate",
  "sec-fetch-user": "?1",
  "sec-fetch-dest": "document",
  "referer": "https://www.certification.openid.net/test/a/fintech-authlete/callback#code\u003diZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU\u0026id_token\u003deyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ\u0026",
  "accept-encoding": "gzip, deflate, br",
  "accept-language": "en-US",
  "cookie": "JSESSIONID\u003d09CF9E05FCD0EFDD4B93C92B78505970",
  "x-requested-with": "XMLHttpRequest",
  "content-type": "text/plain",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "1492",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
implicit/o6fxQC3f2UoMksV6LGkb
incoming_body_form_params
incoming_method
POST
incoming_body_json
incoming_query_string_params
{}
incoming_body
#code=iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU&id_token=eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ&
2021-05-10 19:03:40 OUTGOING
fapi-rw-id2-ensure-authorization-request-without-state-success
Response to HTTP request to test instance z0Xsg7XWnZUnuTW
outgoing_status_code
204
outgoing_headers
{}
outgoing_body

                                
outgoing_path
implicit/o6fxQC3f2UoMksV6LGkb
2021-05-10 19:03:40
ExtractImplicitHashToCallbackResponse
Extracted response from URL fragment
parameters
[
  {
    "name": "code",
    "value": "iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU"
  },
  {
    "name": "id_token",
    "value": "eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ"
  }
]
2021-05-10 19:03:40 SUCCESS
ExtractImplicitHashToCallbackResponse
Extracted the hash values
code
iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU
id_token
eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ
2021-05-10 19:03:40 REDIRECT-IN
fapi-rw-id2-ensure-authorization-request-without-state-success
Authorization endpoint response captured
url_query
{}
headers
{
  "host": "www.certification.openid.net",
  "upgrade-insecure-requests": "1",
  "user-agent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.83 Safari/537.36",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,image/avif,image/webp,image/apng,*/*;q\u003d0.8,application/signed-exchange;v\u003db3;q\u003d0.9",
  "sec-fetch-site": "same-origin",
  "sec-fetch-mode": "navigate",
  "sec-fetch-user": "?1",
  "sec-fetch-dest": "document",
  "referer": "https://fapidev-www.authlete.net/api/authorization?request_uri\u003durn:ietf:params:oauth:request_uri:2j9yTNykjP8lnxbyOj9pDfrC12obnJNoe7-Ntvmsqko\u0026client_id\u003d2334382354153498\u0026redirect_uri\u003dhttps://www.certification.openid.net/test/a/fintech-authlete/callback\u0026scope\u003dopenid%20payments\u0026response_type\u003dcode%20id_token",
  "accept-encoding": "gzip, deflate, br",
  "accept-language": "en-US",
  "origin": "https://fapidev-www.authlete.net",
  "cache-control": "max-age\u003d0",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "connection": "close",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net"
}
http_method
GET
url_fragment
{
  "code": "iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU",
  "id_token": "eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ"
}
post_body
Verify authorization endpoint response
2021-05-10 19:03:40 SUCCESS
RejectErrorInUrlQuery
'error' is not present in URL query returned from authorization endpoint
2021-05-10 19:03:40 SUCCESS
RejectAuthCodeInUrlQuery
Authorization code is not present in URL query returned from authorization endpoint
2021-05-10 19:03:40 SUCCESS
CheckMatchingCallbackParameters
Callback parameters successfully verified
2021-05-10 19:03:40 SUCCESS
CheckIfAuthorizationEndpointError
No error from authorization endpoint
2021-05-10 19:03:40 SUCCESS
VerifyNoStateInAuthorizationResponse
Authorization endpoint response is correctly missing 'state'
2021-05-10 19:03:40 SUCCESS
ExtractAuthorizationCodeFromAuthorizationResponse
Found authorization code
code
iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU
2021-05-10 19:03:40 SUCCESS
EnsureMinimumAuthorizationCodeLength
Authorization code is of sufficient length
actual
344
required
128
2021-05-10 19:03:40 SUCCESS
EnsureMinimumAuthorizationCodeEntropy
Calculated shannon entropy seems sufficient
actual
211.32938445219017
expected
96.0
2021-05-10 19:03:40 SUCCESS
ExtractIdTokenFromAuthorizationResponse
Found and parsed the id_token from authorization_endpoint_response
value
eyJraWQiOiJhdXRobGV0ZS1mYXBpZGV2LWFwaS0yMDE4MDUyNCIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIxMDAxIiwiYXVkIjpbIjIzMzQzODIzNTQxNTM0OTgiXSwiYWNyIjoidXJuOmNkcy5hdTpjZHI6MiIsImNfaGFzaCI6IlVwOFUyanZfSkF2ZnRsSHFMemNEenciLCJhdXRoX3RpbWUiOjE2MjA2NzM0MjAsImlzcyI6Imh0dHBzOi8vZmFwaWRldi1hcy5hdXRobGV0ZS5uZXQvIiwiZXhwIjoxNjIwNjczNzIwLCJpYXQiOjE2MjA2NzM0MjAsIm5vbmNlIjoiZG0xRlhXS1dSNSJ9.XDVCaChYSaOKLKq4O8iInvFeqFbFgzzydt4jlGklVqkHjarfmHZBucMowFZ3f3IaxF2QignYKy6tVdXJjYFq_JRn2oCG07Biwd6nhKFiVOWepBFJ1x-Wa5TEH2FEpXuNoUCeEkmmGg45iAPBVis-TNHc4jgQxzQPHIzcNJeRgQZyvl7_uerKPYCpXasOqVURN3WaT_tEG-hoa6c42OOjK4IoXVOrcp0yD6HnbqfB4SsjTSmm8preEr1Hc8uHkSFKat566Dgf4q9Q14NX8COdhM6pAoiernl9W3cfnLcRVhnlL7aclAnuwsa6A5XzBzZjYjDkjNjiqYVotnN2sCzFIA
header
{
  "kid": "authlete-fapidev-api-20180524",
  "alg": "PS256"
}
claims
{
  "sub": "1001",
  "aud": "2334382354153498",
  "acr": "urn:cds.au:cdr:2",
  "c_hash": "Up8U2jv_JAvftlHqLzcDzw",
  "auth_time": 1620673420,
  "iss": "https://fapidev-as.authlete.net/",
  "exp": 1620673720,
  "iat": 1620673420,
  "nonce": "dm1FXWKWR5"
}
jwe_header
{
  "kid": "fapi20200623",
  "enc": "A128CBC-HS256",
  "alg": "RSA-OAEP"
}
2021-05-10 19:03:40 SUCCESS
ValidateIdToken
ID token iss, aud, exp, iat, auth_time, acr & nbf claims passed validation checks
2021-05-10 19:03:40 SUCCESS
EnsureIdTokenContainsKid
kid was found in the ID token header
kid
authlete-fapidev-api-20180524
2021-05-10 19:03:40 SUCCESS
ValidateIdTokenNonce
Nonce values match
nonce
dm1FXWKWR5
2021-05-10 19:03:40 SUCCESS
ValidateIdTokenACRClaimAgainstRequest
acr value in id_token is (one of) the requested values
actual
urn:cds.au:cdr:2
requested
[
  "urn:cds.au:cdr:2"
]
2021-05-10 19:03:40 SUCCESS
ValidateIdTokenSignature
id_token signature validated
id_token
eyJraWQiOiJhdXRobGV0ZS1mYXBpZGV2LWFwaS0yMDE4MDUyNCIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIxMDAxIiwiYXVkIjpbIjIzMzQzODIzNTQxNTM0OTgiXSwiYWNyIjoidXJuOmNkcy5hdTpjZHI6MiIsImNfaGFzaCI6IlVwOFUyanZfSkF2ZnRsSHFMemNEenciLCJhdXRoX3RpbWUiOjE2MjA2NzM0MjAsImlzcyI6Imh0dHBzOi8vZmFwaWRldi1hcy5hdXRobGV0ZS5uZXQvIiwiZXhwIjoxNjIwNjczNzIwLCJpYXQiOjE2MjA2NzM0MjAsIm5vbmNlIjoiZG0xRlhXS1dSNSJ9.XDVCaChYSaOKLKq4O8iInvFeqFbFgzzydt4jlGklVqkHjarfmHZBucMowFZ3f3IaxF2QignYKy6tVdXJjYFq_JRn2oCG07Biwd6nhKFiVOWepBFJ1x-Wa5TEH2FEpXuNoUCeEkmmGg45iAPBVis-TNHc4jgQxzQPHIzcNJeRgQZyvl7_uerKPYCpXasOqVURN3WaT_tEG-hoa6c42OOjK4IoXVOrcp0yD6HnbqfB4SsjTSmm8preEr1Hc8uHkSFKat566Dgf4q9Q14NX8COdhM6pAoiernl9W3cfnLcRVhnlL7aclAnuwsa6A5XzBzZjYjDkjNjiqYVotnN2sCzFIA
2021-05-10 19:03:40 INFO
WebRunner
Completed processing of webpage
task
Verify Complete
browser
complete
response_status_text
200-
match
https://*/test/a/fintech-authlete/callback*
url
https://www.certification.openid.net/test/a/fintech-authlete/callback#code=iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU&id_token=eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.A6ZrSN4GP81i0B1Bel6bIv9XDX6oD8n62r00M7ltd7Ru4whsCH2ShJOkG-17SFy80aSdab0soo2f8245SbrR-jymPCxl0m5B8MfdvpDkf3t0a-a4pOoGAnvbbYx3BMh0URdLzPuk3uClshMpAA-54IjclOqXJcSFWO5EXzeq3NbsjqU0SvqR-oYYiiDE6H7aR4ocqY2cXUwAZ4LCQbT7cDCxheNX0UclvDWfgvWASds2Fzo8F_86bv1VjQ-pDdv8nKfcT8FBjRY3_EuZQaxvat8GbBLcZM_Skp9W01yrz2l04accoS9-UIoJBOAvcJRanexxp9sy35sEiDJP60CktQ.dGDJXGIUkeyKkt0ofpFANw.tU2nBx3O3bUcSSn6pkXSn_a2rKaVtmV28txn7JD8jVTX3dwkszdPzNNwCjeE6RDsw5_jwN7Dg-yZVotv9cLIbcUiB5UeGhruU9JK6b_XkT0B4lO-6-Z3xno88SfIi8PXlGC_PouIxwAQzcJsOw7DJjHgx8Pp5vw8vpSPbBC8aTMFHFvWzKunSk4k8rUtZuGRqAhz9trMJfpqjUuHt8pqrM-EkiOZ4fg8SbZ90ww1UtYhS0jd8l7a9rF1TrI3vwujsEhAnS9YCbLiLM_AxkR6N5r8H9a2kvruP2sgw76-oOS3jjaRebDtW30VrC09STTQOoLLEBN1ZzzHiV7gHFL6zDyWU9Fn4dQfHHumISnkiCI-ZBuLk00c6Q_A7O9K0d71P7-et3Hg9fL9EqqPbr7GotpeYxosdX3ZYZEOokQ8GWkdQb8K0pYu4YBzNYgjtUTgFUcqd2d9ntghpJENC_q8_3YpTitDLSHwn357GyIeFWkEZaxYfL0IHcJjlJSiKGPKOWnOdxpTVtranqVDFM-Joy-LPZkTIaSYgmmsVW9tge0un1SIIsG_U5W-peuX_IKSrF0CXrfqdKc13enyK52AZp_j3wE94TeOFKPsPDQy3l9qRB1V9tlO_HQ1IaXanHQCQD3nQbbR1ns8C4sLaxJ8B9s3p0AC4LsoPS_hCWuHcFqQzjqVNJ8RfgjNykpuvKBXBZuBSbGnw7SoeSrDy-uJp0sSYgBga3w3gBhU6J5igpvb-SbWPzyzK-_rvfjZkalMqvZQgbHmxq53fUreUHQCbEGAyOFfUtBulnTd9jhPlCHBW9n_gxHdzd0G66ZnIIA9tYzciERHT6eGCth4Mpg-s5hDKFg-pw7lhj8jJRwJ3D7COzgx2UyHI_eF5CWFIqM9E_GAz8lR0WI3rrE8j75eyv0MHh06eeOUznPxI240mT34h1bSUlrW1NW2Sy6d5_3J.G9Sa9Pqx2reUZmAKJl3_VQ&
response_status_code
200
2021-05-10 19:03:40 SUCCESS
ValidateIdTokenSignatureUsingKid
id_token signature validated
id_token
eyJraWQiOiJhdXRobGV0ZS1mYXBpZGV2LWFwaS0yMDE4MDUyNCIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIxMDAxIiwiYXVkIjpbIjIzMzQzODIzNTQxNTM0OTgiXSwiYWNyIjoidXJuOmNkcy5hdTpjZHI6MiIsImNfaGFzaCI6IlVwOFUyanZfSkF2ZnRsSHFMemNEenciLCJhdXRoX3RpbWUiOjE2MjA2NzM0MjAsImlzcyI6Imh0dHBzOi8vZmFwaWRldi1hcy5hdXRobGV0ZS5uZXQvIiwiZXhwIjoxNjIwNjczNzIwLCJpYXQiOjE2MjA2NzM0MjAsIm5vbmNlIjoiZG0xRlhXS1dSNSJ9.XDVCaChYSaOKLKq4O8iInvFeqFbFgzzydt4jlGklVqkHjarfmHZBucMowFZ3f3IaxF2QignYKy6tVdXJjYFq_JRn2oCG07Biwd6nhKFiVOWepBFJ1x-Wa5TEH2FEpXuNoUCeEkmmGg45iAPBVis-TNHc4jgQxzQPHIzcNJeRgQZyvl7_uerKPYCpXasOqVURN3WaT_tEG-hoa6c42OOjK4IoXVOrcp0yD6HnbqfB4SsjTSmm8preEr1Hc8uHkSFKat566Dgf4q9Q14NX8COdhM6pAoiernl9W3cfnLcRVhnlL7aclAnuwsa6A5XzBzZjYjDkjNjiqYVotnN2sCzFIA
2021-05-10 19:03:40 SUCCESS
CheckForSubjectInIdToken
Found 'sub' in id_token
sub
1001
2021-05-10 19:03:40 SUCCESS
FAPIValidateIdTokenSigningAlg
id_token was signed with a permitted algorithm
alg
PS256
2021-05-10 19:03:40 SUCCESS
FAPIValidateIdTokenEncryptionAlg
id_token was encrypted with a permitted algorithm
alg
RSA-OAEP
2021-05-10 19:03:40 SUCCESS
FAPIValidateEncryptedIdTokenHasKid
kid was found in the encrypted ID token header
kid
fapi20200623
2021-05-10 19:03:40 SUCCESS
ValidateIdTokenEncrypted
id_token was encrypted
2021-05-10 19:03:40 SUCCESS
VerifyNoSHash
ID Token is correctly missing s_hash
2021-05-10 19:03:40 SUCCESS
ExtractCHash
Extracted c_hash from ID Token
c_hash
Up8U2jv_JAvftlHqLzcDzw
alg
PS256
2021-05-10 19:03:40 SUCCESS
ValidateCHash
c_hash validated successfully
expected_hash
Up8U2jv_JAvftlHqLzcDzw
unhashed_value
iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU
id_token_hash
Up8U2jv_JAvftlHqLzcDzw
Call token endpoint
2021-05-10 19:03:40 SUCCESS
CreateTokenEndpointRequestForAuthorizationCodeGrant
grant_type
authorization_code
code
iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU
redirect_uri
https://www.certification.openid.net/test/a/fintech-authlete/callback
2021-05-10 19:03:40 SUCCESS
CreateClientAuthenticationAssertionClaims
Created client assertion claims
iss
2334382354153498
sub
2334382354153498
aud
https://fapidev-as.authlete.net/api/token
jti
aMPCukwH5I5m4UqhZ0HE
iat
1620673420
exp
1620673480
2021-05-10 19:03:40 SUCCESS
SignClientAuthenticationAssertion
Signed the client assertion
client_assertion
eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIyMzM0MzgyMzU0MTUzNDk4IiwiYXVkIjoiaHR0cHM6XC9cL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0XC9hcGlcL3Rva2VuIiwiaXNzIjoiMjMzNDM4MjM1NDE1MzQ5OCIsImV4cCI6MTYyMDY3MzQ4MCwiaWF0IjoxNjIwNjczNDIwLCJqdGkiOiJhTVBDdWt3SDVJNW00VXFoWjBIRSJ9.gWJWnsN3_ZdCW6_fFk6WixzsdqTZhZSgDBuJv10Ap7MCns76EWKlxmXwbSw2XyuSAN5D2TBz7FQp401ROizBiYvwaKUzOvvS-KDbAIqhltp0Nz4dh6WRBSasbX-GZe4_f_fRSEd3BK31x60weDukP4Im-1NG6BjSWIwn25hxxnmaEnkp4K1-XiafZhM0UqVoWg-AoPzM1SUWBqSPA_G2_zbixKbZCkP2ODOvTxgOdLWp-WeDNemkXKr7dybNXwUwO4spftjQEk89P0xnXQOB7nCTsSIXH-GI4RS8v_PzpwvtSdYO3Ht3m5dxKEeGq-w2AnJIn-NybEqbfmHlJOhlIw
2021-05-10 19:03:40
AddClientAssertionToTokenEndpointRequest
Added client assertion
grant_type
authorization_code
code
iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU
redirect_uri
https://www.certification.openid.net/test/a/fintech-authlete/callback
client_assertion
eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIyMzM0MzgyMzU0MTUzNDk4IiwiYXVkIjoiaHR0cHM6XC9cL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0XC9hcGlcL3Rva2VuIiwiaXNzIjoiMjMzNDM4MjM1NDE1MzQ5OCIsImV4cCI6MTYyMDY3MzQ4MCwiaWF0IjoxNjIwNjczNDIwLCJqdGkiOiJhTVBDdWt3SDVJNW00VXFoWjBIRSJ9.gWJWnsN3_ZdCW6_fFk6WixzsdqTZhZSgDBuJv10Ap7MCns76EWKlxmXwbSw2XyuSAN5D2TBz7FQp401ROizBiYvwaKUzOvvS-KDbAIqhltp0Nz4dh6WRBSasbX-GZe4_f_fRSEd3BK31x60weDukP4Im-1NG6BjSWIwn25hxxnmaEnkp4K1-XiafZhM0UqVoWg-AoPzM1SUWBqSPA_G2_zbixKbZCkP2ODOvTxgOdLWp-WeDNemkXKr7dybNXwUwO4spftjQEk89P0xnXQOB7nCTsSIXH-GI4RS8v_PzpwvtSdYO3Ht3m5dxKEeGq-w2AnJIn-NybEqbfmHlJOhlIw
client_assertion_type
urn:ietf:params:oauth:client-assertion-type:jwt-bearer
2021-05-10 19:03:40
CallTokenEndpoint
HTTP request
request_uri
https://fapidev-as.authlete.net/api/token
request_method
POST
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "accept-charset": "utf-8",
  "content-type": "application/x-www-form-urlencoded;charset\u003dUTF-8",
  "content-length": "919"
}
request_body
grant_type=authorization_code&code=iZ36clRMFBoig6Or5qjMcTqOb3JfebmXfahy-VGe2hU&redirect_uri=https%3A%2F%2Fwww.certification.openid.net%2Ftest%2Fa%2Ffintech-authlete%2Fcallback&client_assertion=eyJraWQiOiJmYXBpLWp3dC1hc3NlcnRpb24tMjAxODA4MTctMSIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIyMzM0MzgyMzU0MTUzNDk4IiwiYXVkIjoiaHR0cHM6XC9cL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0XC9hcGlcL3Rva2VuIiwiaXNzIjoiMjMzNDM4MjM1NDE1MzQ5OCIsImV4cCI6MTYyMDY3MzQ4MCwiaWF0IjoxNjIwNjczNDIwLCJqdGkiOiJhTVBDdWt3SDVJNW00VXFoWjBIRSJ9.gWJWnsN3_ZdCW6_fFk6WixzsdqTZhZSgDBuJv10Ap7MCns76EWKlxmXwbSw2XyuSAN5D2TBz7FQp401ROizBiYvwaKUzOvvS-KDbAIqhltp0Nz4dh6WRBSasbX-GZe4_f_fRSEd3BK31x60weDukP4Im-1NG6BjSWIwn25hxxnmaEnkp4K1-XiafZhM0UqVoWg-AoPzM1SUWBqSPA_G2_zbixKbZCkP2ODOvTxgOdLWp-WeDNemkXKr7dybNXwUwO4spftjQEk89P0xnXQOB7nCTsSIXH-GI4RS8v_PzpwvtSdYO3Ht3m5dxKEeGq-w2AnJIn-NybEqbfmHlJOhlIw&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer
request_mutual_tls
{
  "cert": "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",
  "key": "MIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDEWwl/Q+nuL8KXbObpVzww1VkHwLF4W9QxrPI1V0Uh6V9rxUjrfSbtWNEQVDwQmoW8M1XjnRnGvdNRd0m6gNEQLKsqRN2xIvPdR0IO+2b+y7WJ9XlwdqHAFSWQJtoHzBAmkRirRMJrQSW5sB/NIBmyVqUdTV/FghNjc+IiPF4X1kxwwOzm7y2zlHZUpiPQknwPbWNeyunj/XQRrqWPg+RXzAKIjbVprxGaT8CexKu6oEaed8BCTO0rJIOkmjXZMl+SDhXQn9GHKFh60UlJddxVngxhX63MAQ1GsO8HsjrLgO3q4LmTDVHkprLy/wgBRDfo0IHb3gWhbOuRGMLLMKKvAgMBAAECggEAJ3uOy1JipYxg+oXhYKYz6jXcMxziEquUXXDDO0qTEiCVGVyQLxn5S9yCHWByu3v2zEMeUCh02GuvJEBySNhCMZhpypQSZ935X1NGyzBuI2ne1SDRDHYuTCt0ZCoLyWmVDcw7Q6UN2vc8mLv7iQmdYSjfBqdaTKK9N1BD9lJhMTWBjxQDaF1yEZQfR1HOVVddJXt8ILOOltuxhu4EuBKsT8ZlCAN5kGx6+FzXlGlSYjWnGoYbERESeDim3JDwGOGX2msPGOmSzF24LnXrPg8IcrwEbzlFRIEzd8yUVA6VNca71uzv/MaOX5+cTtDiAoVdfrk1Ykt1SNNccGKnC7L3MQKBgQD29FIhT21DkUnXlABKj0N9dBSQyQ1HzILmY/YSg7aeBAlatEzCDxHtFaS89wXxosz2vNd1QKIrLrAgSzTLyemi2KVcvsHyo0g0drSq3NlOw5Rz4WRAZNgBcuhFJ8ZD1BJCisdQxQyCRJ3I0pf/D7mGkmovII1WSk/MIEWWvd3P6wKBgQDLjEEOaTeopbnqkJrcL4UbV2GmVAIa9EXSqzRTrPlxVA62n8EEX5YLXTx6yrvWHWtlA4VgRmUGuu1km5DqlnVdVz/l8fSk2HFcdycJgKd189v/tQ+BLu50+1+uaHiWLXo3VEXgv5QKSgPxWEnNPRVbgqOhav2MaACKo9sl3h4LTQKBgQCjyIxD7VKREmW/5TeAO53OMVOGZuE48ikKtdc4lkRibljp4FRcC/SeodEdRlOZ25hGOB5JdHFZZGCJOneshKBAUaDybs1gp+w2Z1gRTeGNvGbTp/N+RaOA6n2jh+qVh6wIl9Py/Iz8RJfE3e7SydIIr0hfMx6p0SU1Q14DyK64uwKBgQCiqM5ESejkqKtNu4lFc+QW2Vl7pZ6ZE6PImnASfiRIYDfx0PBaIlixdCyko+Y/UPtFme635QlOu4qB35+LF/lqQhMaGqS6Jw1QKxfTDDDGnb2tNm/ReEOu0ELCCVJ0EJueI4ZD+FTBdCx6bWdsz+eFXXyNvgYoceQc5px2Qm4X8QKBgHwpmIeHCvU9Erb9X5pY5JR609Ei+a9jksoe0ch7ocZi2NoE3vwjUSZFe/hTkvpf0gUhw1Zmekqhm78Qb4H7Aq7RDbpyCvoRXGS4GulFXM9Tkfe5FejhawT6fG12KLHOSAkJNgdFCPvFOaHlxPoAaBcf1sY/flehjWEwkVDSh0Js"
}
2021-05-10 19:03:41 RESPONSE
CallTokenEndpoint
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "date": "Mon, 10 May 2021 19:03:41 GMT",
  "server": "Jetty(9.4.21-SNAPSHOT)",
  "cache-control": "no-store, no-transform",
  "pragma": "no-cache",
  "content-type": "application/json;charset\u003dutf-8",
  "content-length": "2316",
  "keep-alive": "timeout\u003d5, max\u003d100",
  "connection": "Keep-Alive"
}
response_body
{"access_token":"eyJhbGciOiJQUzI1NiIsInR5cCI6ImF0K2p3dCIsImtpZCI6ImF1dGhsZXRlLWZhcGlkZXYtYXBpLTIwMTgwNTI0In0.eyJzdWIiOiIxMDAxIiwic2NvcGUiOiJvcGVuaWQgcGF5bWVudHMiLCJpc3MiOiJodHRwczovL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0LyIsImNuZiI6eyJ4NXQjUzI1NiI6Ii1vLTFsa29JYmNQYVQ0cG13VWVmcUdkOTZUSW9QZGQ0UC1hUVZuc2dWYlEifSwiZXhwIjoxNjIwNzU5ODIxLCJpYXQiOjE2MjA2NzM0MjEsImNsaWVudF9pZCI6IjIzMzQzODIzNTQxNTM0OTgiLCJqdGkiOiJZRmZvMnBDaTJudGFzMGU5U2VtcmI3czBpaXl4aXZJLVpVSUR0YzN3dVVvIn0.mDIsO8XgPUmkCtehsFlNQH6dqdaDjOrYuvc1OvvuTKVu-GG5H9F4kbBo6C6-3nPlGcNfQSqX9NAwnOCjhuzj9srr-W7pP3oVZvwJqHpS6hC9mZxmR7yUj9HpbRBRuUH8b8i__zfpon-JhKvUn3Fb8yMyMPEan0iSxYhm1f_EVtTwP4aFI4p6okKh39xRIHN6bO6Ujv4KgLSLoTXZmRcKTDdgkae6oCVAHMmfw-x57kmpSr6lVggSE7NRhfh6GmTR_TMXGCGNWYBGQMVYi9Bri_wg0A5d2_QyArn5NsX7Ozuts5nHCze7BszNRcb4fQG-jCFHIeAdvgRs9Xvj6nwGxw","refresh_token":"5ftSnBXz532t_9cGb0uUX2lbS8kWRRgOxof6k_NXOCI","scope":"openid payments","id_token":"eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.eSstQyUNZ2sNseWkYJI0nc71uqSgXgEHd33-HKPqgDNzqA7z6rfYIE5vmVQtehlDQo1iObLSVXXo0t1k5MgGhofNoX7tYX8TgDSzP3OE6BbYA7mteiPICVBnXkTeG2ey8p41vWTibqCwjs5RaXDu0gAVzdt0wt-zpNUmZY321tMaW2rFyN63qFCQ4mgwxrYdq5vapWXZ11Mf0QPoQnzqXpzBtqQz7I2hj2spCwaxqMQubL1g47E3qkNos8BXsfnxGRSX7qRdGOEWROzCTRO0EOPtdpattqHPlGM7EDT7yeCv2JaSbTzr4-DiQgDUQPrEdfAv87kHYk8AtbHfbyuHtQ.xZV8HLw9NGp1ifxU1LfNVg.uKV4GT96OKdaeswk81krEQQbZjIMdBWARlXKk412tj5ukGu1Ss6d-zCRPUV-TzlnX2DkVN2ehgaZ9IwfiP6KN9_j808vvVPIhqH7YQ4jLBNORYIAdpnonRmf-A54rgY1wXEv0KEDtQXGmzcuDGixHoNSTGJYFUDnED-y4raSk-eKBQctORdPu8z99zCHnfSZUGRr1h1rP6ulZXJzALlCvBGtRfp9dtnVJeyWfT7w_Ljqefm786oYkN0S9_W7nvWCSr4rp4SdAt33G1x-MCepwPa1aeWxi1CXj9HGTgjGYSz5DQSEx0cNqJ15OzJyDkI8aCDPC_xv8blDyC_59_u5K4xhQLj-5MlO3c1nRkh79Cy_RY5Jg6wh-53AxfMmkSpaVtJCYvCfXTcUQDuMmPCR1HKOGKWhZAK2OStBNrZQoH_JOEWDReV1WiHSNCLtfFAVfU8_z4b87Uq6eTPnsheBkaxJ71wVmCmenl1_Vm56BLsARYdQX1iRrMOJA3ZsUPzBAovnEn8Q8L-buzThKvEcgEtS_LruJM7Rfwyps_NjGqI8ggDKahHoGeVoLKtF-JCF5XDQYtm6lLc-AgC3z6njuF02vrR-7f-cWpPDCvAi0cwUdMjSndRYVeFktEFpRBUqWt7Z0HsIfl-1UiWWu61IgzJ4HGikhO1-GlJUlUnzLQztmi-TvMnHmf752ZQaeD91nqmH-AVSePA-6vLg43cEVBlMVVODleBTIDGAyUczxwwaChel5S2C5giBFXD1SePNsIkRMKA5vxQ4m0k2QlVY0uOJKVpVCov1Y2nUlrXE_VWJzQEONdCOxWGb2qF6NYlzrCUtfi2wQ0M6t4dEiyUqSKCBKvFvud135u6RyMAAGJLxPTWigPvuQZGz70MVEI_J.oLKklJxYcB4YNe4hds27vw","token_type":"Bearer","expires_in":86400}
2021-05-10 19:03:41
CallTokenEndpoint
Token endpoint response
token_endpoint_response
{"access_token":"eyJhbGciOiJQUzI1NiIsInR5cCI6ImF0K2p3dCIsImtpZCI6ImF1dGhsZXRlLWZhcGlkZXYtYXBpLTIwMTgwNTI0In0.eyJzdWIiOiIxMDAxIiwic2NvcGUiOiJvcGVuaWQgcGF5bWVudHMiLCJpc3MiOiJodHRwczovL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0LyIsImNuZiI6eyJ4NXQjUzI1NiI6Ii1vLTFsa29JYmNQYVQ0cG13VWVmcUdkOTZUSW9QZGQ0UC1hUVZuc2dWYlEifSwiZXhwIjoxNjIwNzU5ODIxLCJpYXQiOjE2MjA2NzM0MjEsImNsaWVudF9pZCI6IjIzMzQzODIzNTQxNTM0OTgiLCJqdGkiOiJZRmZvMnBDaTJudGFzMGU5U2VtcmI3czBpaXl4aXZJLVpVSUR0YzN3dVVvIn0.mDIsO8XgPUmkCtehsFlNQH6dqdaDjOrYuvc1OvvuTKVu-GG5H9F4kbBo6C6-3nPlGcNfQSqX9NAwnOCjhuzj9srr-W7pP3oVZvwJqHpS6hC9mZxmR7yUj9HpbRBRuUH8b8i__zfpon-JhKvUn3Fb8yMyMPEan0iSxYhm1f_EVtTwP4aFI4p6okKh39xRIHN6bO6Ujv4KgLSLoTXZmRcKTDdgkae6oCVAHMmfw-x57kmpSr6lVggSE7NRhfh6GmTR_TMXGCGNWYBGQMVYi9Bri_wg0A5d2_QyArn5NsX7Ozuts5nHCze7BszNRcb4fQG-jCFHIeAdvgRs9Xvj6nwGxw","refresh_token":"5ftSnBXz532t_9cGb0uUX2lbS8kWRRgOxof6k_NXOCI","scope":"openid payments","id_token":"eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.eSstQyUNZ2sNseWkYJI0nc71uqSgXgEHd33-HKPqgDNzqA7z6rfYIE5vmVQtehlDQo1iObLSVXXo0t1k5MgGhofNoX7tYX8TgDSzP3OE6BbYA7mteiPICVBnXkTeG2ey8p41vWTibqCwjs5RaXDu0gAVzdt0wt-zpNUmZY321tMaW2rFyN63qFCQ4mgwxrYdq5vapWXZ11Mf0QPoQnzqXpzBtqQz7I2hj2spCwaxqMQubL1g47E3qkNos8BXsfnxGRSX7qRdGOEWROzCTRO0EOPtdpattqHPlGM7EDT7yeCv2JaSbTzr4-DiQgDUQPrEdfAv87kHYk8AtbHfbyuHtQ.xZV8HLw9NGp1ifxU1LfNVg.uKV4GT96OKdaeswk81krEQQbZjIMdBWARlXKk412tj5ukGu1Ss6d-zCRPUV-TzlnX2DkVN2ehgaZ9IwfiP6KN9_j808vvVPIhqH7YQ4jLBNORYIAdpnonRmf-A54rgY1wXEv0KEDtQXGmzcuDGixHoNSTGJYFUDnED-y4raSk-eKBQctORdPu8z99zCHnfSZUGRr1h1rP6ulZXJzALlCvBGtRfp9dtnVJeyWfT7w_Ljqefm786oYkN0S9_W7nvWCSr4rp4SdAt33G1x-MCepwPa1aeWxi1CXj9HGTgjGYSz5DQSEx0cNqJ15OzJyDkI8aCDPC_xv8blDyC_59_u5K4xhQLj-5MlO3c1nRkh79Cy_RY5Jg6wh-53AxfMmkSpaVtJCYvCfXTcUQDuMmPCR1HKOGKWhZAK2OStBNrZQoH_JOEWDReV1WiHSNCLtfFAVfU8_z4b87Uq6eTPnsheBkaxJ71wVmCmenl1_Vm56BLsARYdQX1iRrMOJA3ZsUPzBAovnEn8Q8L-buzThKvEcgEtS_LruJM7Rfwyps_NjGqI8ggDKahHoGeVoLKtF-JCF5XDQYtm6lLc-AgC3z6njuF02vrR-7f-cWpPDCvAi0cwUdMjSndRYVeFktEFpRBUqWt7Z0HsIfl-1UiWWu61IgzJ4HGikhO1-GlJUlUnzLQztmi-TvMnHmf752ZQaeD91nqmH-AVSePA-6vLg43cEVBlMVVODleBTIDGAyUczxwwaChel5S2C5giBFXD1SePNsIkRMKA5vxQ4m0k2QlVY0uOJKVpVCov1Y2nUlrXE_VWJzQEONdCOxWGb2qF6NYlzrCUtfi2wQ0M6t4dEiyUqSKCBKvFvud135u6RyMAAGJLxPTWigPvuQZGz70MVEI_J.oLKklJxYcB4YNe4hds27vw","token_type":"Bearer","expires_in":86400}
2021-05-10 19:03:41 SUCCESS
CallTokenEndpoint
Parsed token endpoint response
access_token
eyJhbGciOiJQUzI1NiIsInR5cCI6ImF0K2p3dCIsImtpZCI6ImF1dGhsZXRlLWZhcGlkZXYtYXBpLTIwMTgwNTI0In0.eyJzdWIiOiIxMDAxIiwic2NvcGUiOiJvcGVuaWQgcGF5bWVudHMiLCJpc3MiOiJodHRwczovL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0LyIsImNuZiI6eyJ4NXQjUzI1NiI6Ii1vLTFsa29JYmNQYVQ0cG13VWVmcUdkOTZUSW9QZGQ0UC1hUVZuc2dWYlEifSwiZXhwIjoxNjIwNzU5ODIxLCJpYXQiOjE2MjA2NzM0MjEsImNsaWVudF9pZCI6IjIzMzQzODIzNTQxNTM0OTgiLCJqdGkiOiJZRmZvMnBDaTJudGFzMGU5U2VtcmI3czBpaXl4aXZJLVpVSUR0YzN3dVVvIn0.mDIsO8XgPUmkCtehsFlNQH6dqdaDjOrYuvc1OvvuTKVu-GG5H9F4kbBo6C6-3nPlGcNfQSqX9NAwnOCjhuzj9srr-W7pP3oVZvwJqHpS6hC9mZxmR7yUj9HpbRBRuUH8b8i__zfpon-JhKvUn3Fb8yMyMPEan0iSxYhm1f_EVtTwP4aFI4p6okKh39xRIHN6bO6Ujv4KgLSLoTXZmRcKTDdgkae6oCVAHMmfw-x57kmpSr6lVggSE7NRhfh6GmTR_TMXGCGNWYBGQMVYi9Bri_wg0A5d2_QyArn5NsX7Ozuts5nHCze7BszNRcb4fQG-jCFHIeAdvgRs9Xvj6nwGxw
refresh_token
5ftSnBXz532t_9cGb0uUX2lbS8kWRRgOxof6k_NXOCI
scope
openid payments
id_token
eyJraWQiOiJmYXBpMjAyMDA2MjMiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2IiwiYWxnIjoiUlNBLU9BRVAifQ.eSstQyUNZ2sNseWkYJI0nc71uqSgXgEHd33-HKPqgDNzqA7z6rfYIE5vmVQtehlDQo1iObLSVXXo0t1k5MgGhofNoX7tYX8TgDSzP3OE6BbYA7mteiPICVBnXkTeG2ey8p41vWTibqCwjs5RaXDu0gAVzdt0wt-zpNUmZY321tMaW2rFyN63qFCQ4mgwxrYdq5vapWXZ11Mf0QPoQnzqXpzBtqQz7I2hj2spCwaxqMQubL1g47E3qkNos8BXsfnxGRSX7qRdGOEWROzCTRO0EOPtdpattqHPlGM7EDT7yeCv2JaSbTzr4-DiQgDUQPrEdfAv87kHYk8AtbHfbyuHtQ.xZV8HLw9NGp1ifxU1LfNVg.uKV4GT96OKdaeswk81krEQQbZjIMdBWARlXKk412tj5ukGu1Ss6d-zCRPUV-TzlnX2DkVN2ehgaZ9IwfiP6KN9_j808vvVPIhqH7YQ4jLBNORYIAdpnonRmf-A54rgY1wXEv0KEDtQXGmzcuDGixHoNSTGJYFUDnED-y4raSk-eKBQctORdPu8z99zCHnfSZUGRr1h1rP6ulZXJzALlCvBGtRfp9dtnVJeyWfT7w_Ljqefm786oYkN0S9_W7nvWCSr4rp4SdAt33G1x-MCepwPa1aeWxi1CXj9HGTgjGYSz5DQSEx0cNqJ15OzJyDkI8aCDPC_xv8blDyC_59_u5K4xhQLj-5MlO3c1nRkh79Cy_RY5Jg6wh-53AxfMmkSpaVtJCYvCfXTcUQDuMmPCR1HKOGKWhZAK2OStBNrZQoH_JOEWDReV1WiHSNCLtfFAVfU8_z4b87Uq6eTPnsheBkaxJ71wVmCmenl1_Vm56BLsARYdQX1iRrMOJA3ZsUPzBAovnEn8Q8L-buzThKvEcgEtS_LruJM7Rfwyps_NjGqI8ggDKahHoGeVoLKtF-JCF5XDQYtm6lLc-AgC3z6njuF02vrR-7f-cWpPDCvAi0cwUdMjSndRYVeFktEFpRBUqWt7Z0HsIfl-1UiWWu61IgzJ4HGikhO1-GlJUlUnzLQztmi-TvMnHmf752ZQaeD91nqmH-AVSePA-6vLg43cEVBlMVVODleBTIDGAyUczxwwaChel5S2C5giBFXD1SePNsIkRMKA5vxQ4m0k2QlVY0uOJKVpVCov1Y2nUlrXE_VWJzQEONdCOxWGb2qF6NYlzrCUtfi2wQ0M6t4dEiyUqSKCBKvFvud135u6RyMAAGJLxPTWigPvuQZGz70MVEI_J.oLKklJxYcB4YNe4hds27vw
token_type
Bearer
expires_in
86400
Verify token endpoint response
2021-05-10 19:03:41 SUCCESS
CheckIfTokenEndpointResponseError
No error from token endpoint
2021-05-10 19:03:41 SUCCESS
CheckForAccessTokenValue
Found an access token
access_token
eyJhbGciOiJQUzI1NiIsInR5cCI6ImF0K2p3dCIsImtpZCI6ImF1dGhsZXRlLWZhcGlkZXYtYXBpLTIwMTgwNTI0In0.eyJzdWIiOiIxMDAxIiwic2NvcGUiOiJvcGVuaWQgcGF5bWVudHMiLCJpc3MiOiJodHRwczovL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0LyIsImNuZiI6eyJ4NXQjUzI1NiI6Ii1vLTFsa29JYmNQYVQ0cG13VWVmcUdkOTZUSW9QZGQ0UC1hUVZuc2dWYlEifSwiZXhwIjoxNjIwNzU5ODIxLCJpYXQiOjE2MjA2NzM0MjEsImNsaWVudF9pZCI6IjIzMzQzODIzNTQxNTM0OTgiLCJqdGkiOiJZRmZvMnBDaTJudGFzMGU5U2VtcmI3czBpaXl4aXZJLVpVSUR0YzN3dVVvIn0.mDIsO8XgPUmkCtehsFlNQH6dqdaDjOrYuvc1OvvuTKVu-GG5H9F4kbBo6C6-3nPlGcNfQSqX9NAwnOCjhuzj9srr-W7pP3oVZvwJqHpS6hC9mZxmR7yUj9HpbRBRuUH8b8i__zfpon-JhKvUn3Fb8yMyMPEan0iSxYhm1f_EVtTwP4aFI4p6okKh39xRIHN6bO6Ujv4KgLSLoTXZmRcKTDdgkae6oCVAHMmfw-x57kmpSr6lVggSE7NRhfh6GmTR_TMXGCGNWYBGQMVYi9Bri_wg0A5d2_QyArn5NsX7Ozuts5nHCze7BszNRcb4fQG-jCFHIeAdvgRs9Xvj6nwGxw
2021-05-10 19:03:41 SUCCESS
ExtractAccessTokenFromTokenResponse
Extracted the access token
value
eyJhbGciOiJQUzI1NiIsInR5cCI6ImF0K2p3dCIsImtpZCI6ImF1dGhsZXRlLWZhcGlkZXYtYXBpLTIwMTgwNTI0In0.eyJzdWIiOiIxMDAxIiwic2NvcGUiOiJvcGVuaWQgcGF5bWVudHMiLCJpc3MiOiJodHRwczovL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0LyIsImNuZiI6eyJ4NXQjUzI1NiI6Ii1vLTFsa29JYmNQYVQ0cG13VWVmcUdkOTZUSW9QZGQ0UC1hUVZuc2dWYlEifSwiZXhwIjoxNjIwNzU5ODIxLCJpYXQiOjE2MjA2NzM0MjEsImNsaWVudF9pZCI6IjIzMzQzODIzNTQxNTM0OTgiLCJqdGkiOiJZRmZvMnBDaTJudGFzMGU5U2VtcmI3czBpaXl4aXZJLVpVSUR0YzN3dVVvIn0.mDIsO8XgPUmkCtehsFlNQH6dqdaDjOrYuvc1OvvuTKVu-GG5H9F4kbBo6C6-3nPlGcNfQSqX9NAwnOCjhuzj9srr-W7pP3oVZvwJqHpS6hC9mZxmR7yUj9HpbRBRuUH8b8i__zfpon-JhKvUn3Fb8yMyMPEan0iSxYhm1f_EVtTwP4aFI4p6okKh39xRIHN6bO6Ujv4KgLSLoTXZmRcKTDdgkae6oCVAHMmfw-x57kmpSr6lVggSE7NRhfh6GmTR_TMXGCGNWYBGQMVYi9Bri_wg0A5d2_QyArn5NsX7Ozuts5nHCze7BszNRcb4fQG-jCFHIeAdvgRs9Xvj6nwGxw
type
Bearer
2021-05-10 19:03:41 SUCCESS
ExtractExpiresInFromTokenEndpointResponse
Extracted 'expires_in'
expires_in
86400
2021-05-10 19:03:41 SUCCESS
ValidateExpiresIn
expires_in passed all validation checks
expires_in
86400
2021-05-10 19:03:41 SUCCESS
CheckForRefreshTokenValue
Found a refresh token
refresh_token
5ftSnBXz532t_9cGb0uUX2lbS8kWRRgOxof6k_NXOCI
2021-05-10 19:03:41 SUCCESS
EnsureMinimumRefreshTokenLength
Refresh token is of sufficient length
actual
344
required
128
2021-05-10 19:03:41 SUCCESS
EnsureMinimumRefreshTokenEntropy
Calculated shannon entropy seems sufficient
actual
208.57449695002674
expected
96.0
2021-05-10 19:03:41 SUCCESS
EnsureMinimumAccessTokenLength
Access token is of sufficient length
actual
6288
required
128
2021-05-10 19:03:41 SUCCESS
EnsureMinimumAccessTokenEntropy
Calculated shannon entropy seems sufficient
actual
4612.120783788341
expected
96.0
2021-05-10 19:03:41 SUCCESS
ExtractIdTokenFromTokenResponse
Found and parsed the id_token from token_endpoint_response
value
eyJraWQiOiJhdXRobGV0ZS1mYXBpZGV2LWFwaS0yMDE4MDUyNCIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIxMDAxIiwiYXVkIjpbIjIzMzQzODIzNTQxNTM0OTgiXSwiYWNyIjoidXJuOmNkcy5hdTpjZHI6MiIsImF1dGhfdGltZSI6MTYyMDY3MzQyMCwiaXNzIjoiaHR0cHM6Ly9mYXBpZGV2LWFzLmF1dGhsZXRlLm5ldC8iLCJleHAiOjE2MjA2NzM3MjEsImlhdCI6MTYyMDY3MzQyMSwibm9uY2UiOiJkbTFGWFdLV1I1In0.JwSejpxK8HlFVeZ2smmwGJDVXkdZ9ceYG5ndAerPopmZ6n_nMC4xZ7svu57sObj7RNVJEQJyYJVV1R0TDmEJostvs1JSayialNMPsJ4mE3H1m9gtJ3KIUH9LXjIG7HWo8n-xZbgJIhyTkn-snWR3OgAF83uj5ZA40TiIb37X_HQFEpeXP0RmZJXocqBFOXJHyqk_Wd-GuIht6-eySRYEtJGCIyQ48Go-CL8juj8nYYYOtKJydEYJphnprL37PLOtHZK1XnjRN1eUaMyOuVzfYp4egOev2f0IROKt4YaNkcMjQTMd9e3XNV6yWNPD640VNaJSm3aw8xIlbganvHEA-g
header
{
  "kid": "authlete-fapidev-api-20180524",
  "alg": "PS256"
}
claims
{
  "sub": "1001",
  "aud": "2334382354153498",
  "acr": "urn:cds.au:cdr:2",
  "auth_time": 1620673420,
  "iss": "https://fapidev-as.authlete.net/",
  "exp": 1620673721,
  "iat": 1620673421,
  "nonce": "dm1FXWKWR5"
}
jwe_header
{
  "kid": "fapi20200623",
  "enc": "A128CBC-HS256",
  "alg": "RSA-OAEP"
}
2021-05-10 19:03:41 SUCCESS
ValidateIdToken
ID token iss, aud, exp, iat, auth_time, acr & nbf claims passed validation checks
2021-05-10 19:03:41 SUCCESS
EnsureIdTokenContainsKid
kid was found in the ID token header
kid
authlete-fapidev-api-20180524
2021-05-10 19:03:41 SUCCESS
ValidateIdTokenNonce
Nonce values match
nonce
dm1FXWKWR5
2021-05-10 19:03:41 SUCCESS
ValidateIdTokenACRClaimAgainstRequest
acr value in id_token is (one of) the requested values
actual
urn:cds.au:cdr:2
requested
[
  "urn:cds.au:cdr:2"
]
2021-05-10 19:03:41 SUCCESS
ValidateIdTokenSignature
id_token signature validated
id_token
eyJraWQiOiJhdXRobGV0ZS1mYXBpZGV2LWFwaS0yMDE4MDUyNCIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIxMDAxIiwiYXVkIjpbIjIzMzQzODIzNTQxNTM0OTgiXSwiYWNyIjoidXJuOmNkcy5hdTpjZHI6MiIsImF1dGhfdGltZSI6MTYyMDY3MzQyMCwiaXNzIjoiaHR0cHM6Ly9mYXBpZGV2LWFzLmF1dGhsZXRlLm5ldC8iLCJleHAiOjE2MjA2NzM3MjEsImlhdCI6MTYyMDY3MzQyMSwibm9uY2UiOiJkbTFGWFdLV1I1In0.JwSejpxK8HlFVeZ2smmwGJDVXkdZ9ceYG5ndAerPopmZ6n_nMC4xZ7svu57sObj7RNVJEQJyYJVV1R0TDmEJostvs1JSayialNMPsJ4mE3H1m9gtJ3KIUH9LXjIG7HWo8n-xZbgJIhyTkn-snWR3OgAF83uj5ZA40TiIb37X_HQFEpeXP0RmZJXocqBFOXJHyqk_Wd-GuIht6-eySRYEtJGCIyQ48Go-CL8juj8nYYYOtKJydEYJphnprL37PLOtHZK1XnjRN1eUaMyOuVzfYp4egOev2f0IROKt4YaNkcMjQTMd9e3XNV6yWNPD640VNaJSm3aw8xIlbganvHEA-g
2021-05-10 19:03:41 SUCCESS
ValidateIdTokenSignatureUsingKid
id_token signature validated
id_token
eyJraWQiOiJhdXRobGV0ZS1mYXBpZGV2LWFwaS0yMDE4MDUyNCIsImFsZyI6IlBTMjU2In0.eyJzdWIiOiIxMDAxIiwiYXVkIjpbIjIzMzQzODIzNTQxNTM0OTgiXSwiYWNyIjoidXJuOmNkcy5hdTpjZHI6MiIsImF1dGhfdGltZSI6MTYyMDY3MzQyMCwiaXNzIjoiaHR0cHM6Ly9mYXBpZGV2LWFzLmF1dGhsZXRlLm5ldC8iLCJleHAiOjE2MjA2NzM3MjEsImlhdCI6MTYyMDY3MzQyMSwibm9uY2UiOiJkbTFGWFdLV1I1In0.JwSejpxK8HlFVeZ2smmwGJDVXkdZ9ceYG5ndAerPopmZ6n_nMC4xZ7svu57sObj7RNVJEQJyYJVV1R0TDmEJostvs1JSayialNMPsJ4mE3H1m9gtJ3KIUH9LXjIG7HWo8n-xZbgJIhyTkn-snWR3OgAF83uj5ZA40TiIb37X_HQFEpeXP0RmZJXocqBFOXJHyqk_Wd-GuIht6-eySRYEtJGCIyQ48Go-CL8juj8nYYYOtKJydEYJphnprL37PLOtHZK1XnjRN1eUaMyOuVzfYp4egOev2f0IROKt4YaNkcMjQTMd9e3XNV6yWNPD640VNaJSm3aw8xIlbganvHEA-g
2021-05-10 19:03:41 SUCCESS
CheckForSubjectInIdToken
Found 'sub' in id_token
sub
1001
2021-05-10 19:03:41 SUCCESS
FAPIValidateIdTokenSigningAlg
id_token was signed with a permitted algorithm
alg
PS256
2021-05-10 19:03:41 SUCCESS
FAPIValidateIdTokenEncryptionAlg
id_token was encrypted with a permitted algorithm
alg
RSA-OAEP
2021-05-10 19:03:41 SUCCESS
FAPIValidateEncryptedIdTokenHasKid
kid was found in the encrypted ID token header
kid
fapi20200623
2021-05-10 19:03:41 SUCCESS
ValidateIdTokenEncrypted
id_token was encrypted
2021-05-10 19:03:41 INFO
ExtractCHash
Couldn't find c_hash in ID token
2021-05-10 19:03:41 INFO
ExtractSHash
Couldn't find s_hash in ID token
2021-05-10 19:03:41 INFO
ExtractAtHash
Couldn't find at_hash in ID token
2021-05-10 19:03:41 INFO
ValidateCHash
Skipped evaluation due to missing required object: c_hash
expected
c_hash
mapped
2021-05-10 19:03:41 INFO
ValidateSHash
Skipped evaluation due to missing required object: s_hash
expected
s_hash
mapped
2021-05-10 19:03:41 INFO
ValidateAtHash
Skipped evaluation due to missing required object: at_hash
expected
at_hash
mapped
Verify at_hash in the authorization endpoint id_token
2021-05-10 19:03:41 INFO
ExtractAtHash
Couldn't find at_hash in ID token
2021-05-10 19:03:41 INFO
ValidateAtHash
Skipped evaluation due to missing required object: at_hash
expected
at_hash
mapped
Resource server endpoint tests
2021-05-10 19:03:41
CreateEmptyResourceEndpointRequestHeaders
Created empty headers
resource_endpoint_request_headers
{}
2021-05-10 19:03:41 SUCCESS
AddFAPIAuthDateToResourceEndpointRequest
Added x-fapi-auth-date to resource endpoint request headers
resource_endpoint_request_headers
{
  "x-fapi-auth-date": "Mon, 10 May 2021 19:03:41 GMT"
}
2021-05-10 19:03:41
AddIpV4FapiCustomerIpAddressToResourceEndpointRequest
Added x-fapi-customer-ip-address containing IPv4 address to resource endpoint request headers
resource_endpoint_request_headers
{
  "x-fapi-auth-date": "Mon, 10 May 2021 19:03:41 GMT",
  "x-fapi-customer-ip-address": "198.51.100.119"
}
2021-05-10 19:03:41
AddCdrXCdsClientHeadersToResourceEndpointRequest
Added x-cds-client-headers to resource_endpoint_request_headers
x-fapi-auth-date
Mon, 10 May 2021 19:03:41 GMT
x-fapi-customer-ip-address
198.51.100.119
x-cds-client-headers
TW96aWxsYS81LjAgKFgxMTsgTGludXggeDg2XzY0KSBBcHBsZVdlYktpdC81MzcuMzYgKEtIVE1MLCBsaWtlIEdlY2tvKSBDaHJvbWUvNzkuMC4zOTQ1Ljg4IFNhZmFyaS81MzcuMzY=
2021-05-10 19:03:41
CreateRandomFAPIInteractionId
Created interaction ID
fapi_interaction_id
304b5c9c-2d18-4392-827a-c632f8577f4e
2021-05-10 19:03:41
AddFAPIInteractionIdToResourceEndpointRequest
Condition ran but did not log anything
2021-05-10 19:03:41
AddCdrXvToResourceEndpointRequest
Added x-v to resource_endpoint_request_headers
2021-05-10 19:03:41
CallProtectedResourceWithBearerTokenAndCustomHeaders
HTTP request
request_uri
https://fapidev-rs.authlete.net/api/fapi/accounts
request_method
GET
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "x-fapi-auth-date": "Mon, 10 May 2021 19:03:41 GMT",
  "x-fapi-customer-ip-address": "198.51.100.119",
  "x-cds-client-headers": "TW96aWxsYS81LjAgKFgxMTsgTGludXggeDg2XzY0KSBBcHBsZVdlYktpdC81MzcuMzYgKEtIVE1MLCBsaWtlIEdlY2tvKSBDaHJvbWUvNzkuMC4zOTQ1Ljg4IFNhZmFyaS81MzcuMzY\u003d",
  "x-fapi-interaction-id": "304b5c9c-2d18-4392-827a-c632f8577f4e",
  "x-v": "5",
  "authorization": "Bearer eyJhbGciOiJQUzI1NiIsInR5cCI6ImF0K2p3dCIsImtpZCI6ImF1dGhsZXRlLWZhcGlkZXYtYXBpLTIwMTgwNTI0In0.eyJzdWIiOiIxMDAxIiwic2NvcGUiOiJvcGVuaWQgcGF5bWVudHMiLCJpc3MiOiJodHRwczovL2ZhcGlkZXYtYXMuYXV0aGxldGUubmV0LyIsImNuZiI6eyJ4NXQjUzI1NiI6Ii1vLTFsa29JYmNQYVQ0cG13VWVmcUdkOTZUSW9QZGQ0UC1hUVZuc2dWYlEifSwiZXhwIjoxNjIwNzU5ODIxLCJpYXQiOjE2MjA2NzM0MjEsImNsaWVudF9pZCI6IjIzMzQzODIzNTQxNTM0OTgiLCJqdGkiOiJZRmZvMnBDaTJudGFzMGU5U2VtcmI3czBpaXl4aXZJLVpVSUR0YzN3dVVvIn0.mDIsO8XgPUmkCtehsFlNQH6dqdaDjOrYuvc1OvvuTKVu-GG5H9F4kbBo6C6-3nPlGcNfQSqX9NAwnOCjhuzj9srr-W7pP3oVZvwJqHpS6hC9mZxmR7yUj9HpbRBRuUH8b8i__zfpon-JhKvUn3Fb8yMyMPEan0iSxYhm1f_EVtTwP4aFI4p6okKh39xRIHN6bO6Ujv4KgLSLoTXZmRcKTDdgkae6oCVAHMmfw-x57kmpSr6lVggSE7NRhfh6GmTR_TMXGCGNWYBGQMVYi9Bri_wg0A5d2_QyArn5NsX7Ozuts5nHCze7BszNRcb4fQG-jCFHIeAdvgRs9Xvj6nwGxw",
  "accept-charset": "utf-8",
  "content-length": "0"
}
request_body

                                
request_mutual_tls
{
  "cert": "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",
  "key": "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"
}
2021-05-10 19:03:41 RESPONSE
CallProtectedResourceWithBearerTokenAndCustomHeaders
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "date": "Mon, 10 May 2021 19:03:41 GMT",
  "server": "Jetty(9.4.21-SNAPSHOT)",
  "x-fapi-interaction-id": "304b5c9c-2d18-4392-827a-c632f8577f4e",
  "content-type": "application/json;charset\u003dutf-8",
  "content-length": "2",
  "keep-alive": "timeout\u003d5, max\u003d100",
  "connection": "Keep-Alive"
}
response_body
{}
2021-05-10 19:03:41 SUCCESS
CallProtectedResourceWithBearerTokenAndCustomHeaders
Got a response from the resource endpoint
headers
{
  "date": "Mon, 10 May 2021 19:03:41 GMT",
  "server": "Jetty(9.4.21-SNAPSHOT)",
  "x-fapi-interaction-id": "304b5c9c-2d18-4392-827a-c632f8577f4e",
  "content-type": "application/json;charset\u003dutf-8",
  "content-length": "2",
  "keep-alive": "timeout\u003d5, max\u003d100",
  "connection": "Keep-Alive"
}
status_code
{
  "code": 200
}
body
{}
2021-05-10 19:03:41 SUCCESS
CheckForDateHeaderInResourceResponse
Date header present and validated
date
Mon, 10 May 2021 19:03:41 GMT
skew
661
2021-05-10 19:03:41 SUCCESS
CheckForFAPIInteractionIdInResourceResponse
Found x-fapi-interaction-id
interaction_id
304b5c9c-2d18-4392-827a-c632f8577f4e
2021-05-10 19:03:41 SUCCESS
EnsureMatchingFAPIInteractionId
Interaction ID matched
fapi_interaction_id
304b5c9c-2d18-4392-827a-c632f8577f4e
2021-05-10 19:03:41 SUCCESS
EnsureResourceResponseReturnedJsonContentType
Response content type is JSON
content_type
application/json;charset=utf-8
2021-05-10 19:03:41 FINISHED
fapi-rw-id2-ensure-authorization-request-without-state-success
Test has run to completion
testmodule_result
PASSED
2021-05-10 19:03:43
TEST-RUNNER
Alias has now been claimed by another test
alias
fintech-authlete
new_test_id
4WYl5nPQt1wqEUZ
Test Results