Test Summary

Test Results

Expand All Collapse All
All times are UTC
2021-09-11 11:12:08 INFO
TEST-RUNNER
Test instance CkZLFgqkGniFmrv created
baseUrl
https://www.certification.openid.net/test/a/idpy
variant
{
  "client_auth_type": "client_secret_basic",
  "response_type": "code id_token",
  "server_metadata": "discovery",
  "response_mode": "form_post",
  "client_registration": "dynamic_client"
}
alias
idpy
description
oidcop
planId
Okm8cBmJjyOxE
config
{
  "alias": "idpy",
  "description": "oidcop",
  "server": {
    "discoveryUrl": "https://89.45.234.133:4000/.well-known/openid-configuration",
    "login_hint": "roland@89.45.234.133:4000"
  },
  "client2": {
    "client_name": "Anything"
  }
}
testName
oidcc-prompt-login
2021-09-11 11:12:08 SUCCESS
CreateRedirectUri
Created redirect URI
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
2021-09-11 11:12:08
GetDynamicServerConfiguration
HTTP request
request_uri
https://89.45.234.133:4000/.well-known/openid-configuration
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/cbor, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2021-09-11 11:12:08 RESPONSE
GetDynamicServerConfiguration
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "3598",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:08 GMT"
}
response_body
{"version": "3.0", "token_endpoint_auth_methods_supported": ["client_secret_post", "client_secret_basic", "client_secret_jwt", "private_key_jwt"], "claims_parameter_supported": true, "request_parameter_supported": true, "request_uri_parameter_supported": true, "require_request_uri_registration": true, "grant_types_supported": ["authorization_code", "implicit", "urn:ietf:params:oauth:grant-type:jwt-bearer", "refresh_token"], "subject_types_supported": ["public", "pairwise"], "registration_endpoint": "https://89.45.234.133:4000/registration", "introspection_endpoint": "https://89.45.234.133:4000/introspection", "response_types_supported": ["code", "token", "id_token", "code token", "code id_token", "id_token token", "code id_token token", "none"], "response_modes_supported": ["query", "fragment", "form_post"], "request_object_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "request_object_encryption_alg_values_supported": ["RSA-OAEP", "RSA-OAEP-256", "A128KW", "A192KW", "A256KW", "ECDH-ES", "ECDH-ES+A128KW", "ECDH-ES+A192KW", "ECDH-ES+A256KW"], "request_object_encryption_enc_values_supported": ["A128CBC-HS256", "A192CBC-HS384", "A256CBC-HS512", "A128GCM", "A192GCM", "A256GCM"], "claim_types_supported": ["normal", "aggregated", "distributed"], "authorization_endpoint": "https://89.45.234.133:4000/authorization", "token_endpoint_auth_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "token_endpoint": "https://89.45.234.133:4000/token", "userinfo_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "userinfo_encryption_alg_values_supported": ["RSA-OAEP", "RSA-OAEP-256", "A128KW", "A192KW", "A256KW", "ECDH-ES", "ECDH-ES+A128KW", "ECDH-ES+A192KW", "ECDH-ES+A256KW"], "userinfo_encryption_enc_values_supported": ["A128CBC-HS256", "A192CBC-HS384", "A256CBC-HS512", "A128GCM", "A192GCM", "A256GCM"], "client_authn_method": ["bearer_header", "bearer_body"], "userinfo_endpoint": "https://89.45.234.133:4000/userinfo", "frontchannel_logout_supported": true, "frontchannel_logout_session_supported": true, "backchannel_logout_supported": true, "backchannel_logout_session_supported": true, "check_session_iframe": "https://89.45.234.133:4000/check_session_iframe", "end_session_endpoint": "https://89.45.234.133:4000/session", "issuer": "https://89.45.234.133:4000", "acr_values_supported": ["urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"], "jwks_uri": "https://89.45.234.133:4000/static/jwks.json", "scopes_supported": ["offline_access", "phone", "address", "research_and_scholarship", "profile", "email", "openid"], "claims_supported": ["iss", "updated_at", "given_name", "preferred_username", "picture", "zoneinfo", "website", "profile", "email_verified", "family_name", "sub", "birthdate", "address", "middle_name", "eduperson_scoped_affiliation", "gender", "locale", "nickname", "phone_number", "phone_number_verified", "name", "email"], "id_token_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "id_token_encryption_alg_values_supported": ["RSA-OAEP", "RSA-OAEP-256", "A128KW", "A192KW", "A256KW", "ECDH-ES", "ECDH-ES+A128KW", "ECDH-ES+A192KW", "ECDH-ES+A256KW"], "id_token_encryption_enc_values_supported": ["A128CBC-HS256", "A192CBC-HS384", "A256CBC-HS512", "A128GCM", "A192GCM", "A256GCM"]}
2021-09-11 11:12:08
GetDynamicServerConfiguration
Downloaded server configuration
server_config_string
{"version": "3.0", "token_endpoint_auth_methods_supported": ["client_secret_post", "client_secret_basic", "client_secret_jwt", "private_key_jwt"], "claims_parameter_supported": true, "request_parameter_supported": true, "request_uri_parameter_supported": true, "require_request_uri_registration": true, "grant_types_supported": ["authorization_code", "implicit", "urn:ietf:params:oauth:grant-type:jwt-bearer", "refresh_token"], "subject_types_supported": ["public", "pairwise"], "registration_endpoint": "https://89.45.234.133:4000/registration", "introspection_endpoint": "https://89.45.234.133:4000/introspection", "response_types_supported": ["code", "token", "id_token", "code token", "code id_token", "id_token token", "code id_token token", "none"], "response_modes_supported": ["query", "fragment", "form_post"], "request_object_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "request_object_encryption_alg_values_supported": ["RSA-OAEP", "RSA-OAEP-256", "A128KW", "A192KW", "A256KW", "ECDH-ES", "ECDH-ES+A128KW", "ECDH-ES+A192KW", "ECDH-ES+A256KW"], "request_object_encryption_enc_values_supported": ["A128CBC-HS256", "A192CBC-HS384", "A256CBC-HS512", "A128GCM", "A192GCM", "A256GCM"], "claim_types_supported": ["normal", "aggregated", "distributed"], "authorization_endpoint": "https://89.45.234.133:4000/authorization", "token_endpoint_auth_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "token_endpoint": "https://89.45.234.133:4000/token", "userinfo_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "userinfo_encryption_alg_values_supported": ["RSA-OAEP", "RSA-OAEP-256", "A128KW", "A192KW", "A256KW", "ECDH-ES", "ECDH-ES+A128KW", "ECDH-ES+A192KW", "ECDH-ES+A256KW"], "userinfo_encryption_enc_values_supported": ["A128CBC-HS256", "A192CBC-HS384", "A256CBC-HS512", "A128GCM", "A192GCM", "A256GCM"], "client_authn_method": ["bearer_header", "bearer_body"], "userinfo_endpoint": "https://89.45.234.133:4000/userinfo", "frontchannel_logout_supported": true, "frontchannel_logout_session_supported": true, "backchannel_logout_supported": true, "backchannel_logout_session_supported": true, "check_session_iframe": "https://89.45.234.133:4000/check_session_iframe", "end_session_endpoint": "https://89.45.234.133:4000/session", "issuer": "https://89.45.234.133:4000", "acr_values_supported": ["urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"], "jwks_uri": "https://89.45.234.133:4000/static/jwks.json", "scopes_supported": ["offline_access", "phone", "address", "research_and_scholarship", "profile", "email", "openid"], "claims_supported": ["iss", "updated_at", "given_name", "preferred_username", "picture", "zoneinfo", "website", "profile", "email_verified", "family_name", "sub", "birthdate", "address", "middle_name", "eduperson_scoped_affiliation", "gender", "locale", "nickname", "phone_number", "phone_number_verified", "name", "email"], "id_token_signing_alg_values_supported": ["RS256", "RS384", "RS512", "ES256", "ES384", "ES512", "HS256", "HS384", "HS512", "PS256", "PS384", "PS512"], "id_token_encryption_alg_values_supported": ["RSA-OAEP", "RSA-OAEP-256", "A128KW", "A192KW", "A256KW", "ECDH-ES", "ECDH-ES+A128KW", "ECDH-ES+A192KW", "ECDH-ES+A256KW"], "id_token_encryption_enc_values_supported": ["A128CBC-HS256", "A192CBC-HS384", "A256CBC-HS512", "A128GCM", "A192GCM", "A256GCM"]}
2021-09-11 11:12:08 SUCCESS
GetDynamicServerConfiguration
Successfully parsed server configuration
version
3.0
token_endpoint_auth_methods_supported
[
  "client_secret_post",
  "client_secret_basic",
  "client_secret_jwt",
  "private_key_jwt"
]
claims_parameter_supported
true
request_parameter_supported
true
request_uri_parameter_supported
true
require_request_uri_registration
true
grant_types_supported
[
  "authorization_code",
  "implicit",
  "urn:ietf:params:oauth:grant-type:jwt-bearer",
  "refresh_token"
]
subject_types_supported
[
  "public",
  "pairwise"
]
registration_endpoint
https://89.45.234.133:4000/registration
introspection_endpoint
https://89.45.234.133:4000/introspection
response_types_supported
[
  "code",
  "token",
  "id_token",
  "code token",
  "code id_token",
  "id_token token",
  "code id_token token",
  "none"
]
response_modes_supported
[
  "query",
  "fragment",
  "form_post"
]
request_object_signing_alg_values_supported
[
  "RS256",
  "RS384",
  "RS512",
  "ES256",
  "ES384",
  "ES512",
  "HS256",
  "HS384",
  "HS512",
  "PS256",
  "PS384",
  "PS512"
]
request_object_encryption_alg_values_supported
[
  "RSA-OAEP",
  "RSA-OAEP-256",
  "A128KW",
  "A192KW",
  "A256KW",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW"
]
request_object_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
claim_types_supported
[
  "normal",
  "aggregated",
  "distributed"
]
authorization_endpoint
https://89.45.234.133:4000/authorization
token_endpoint_auth_signing_alg_values_supported
[
  "RS256",
  "RS384",
  "RS512",
  "ES256",
  "ES384",
  "ES512",
  "HS256",
  "HS384",
  "HS512",
  "PS256",
  "PS384",
  "PS512"
]
token_endpoint
https://89.45.234.133:4000/token
userinfo_signing_alg_values_supported
[
  "RS256",
  "RS384",
  "RS512",
  "ES256",
  "ES384",
  "ES512",
  "HS256",
  "HS384",
  "HS512",
  "PS256",
  "PS384",
  "PS512"
]
userinfo_encryption_alg_values_supported
[
  "RSA-OAEP",
  "RSA-OAEP-256",
  "A128KW",
  "A192KW",
  "A256KW",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW"
]
userinfo_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
client_authn_method
[
  "bearer_header",
  "bearer_body"
]
userinfo_endpoint
https://89.45.234.133:4000/userinfo
frontchannel_logout_supported
true
frontchannel_logout_session_supported
true
backchannel_logout_supported
true
backchannel_logout_session_supported
true
check_session_iframe
https://89.45.234.133:4000/check_session_iframe
end_session_endpoint
https://89.45.234.133:4000/session
issuer
https://89.45.234.133:4000
acr_values_supported
[
  "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"
]
jwks_uri
https://89.45.234.133:4000/static/jwks.json
scopes_supported
[
  "offline_access",
  "phone",
  "address",
  "research_and_scholarship",
  "profile",
  "email",
  "openid"
]
claims_supported
[
  "iss",
  "updated_at",
  "given_name",
  "preferred_username",
  "picture",
  "zoneinfo",
  "website",
  "profile",
  "email_verified",
  "family_name",
  "sub",
  "birthdate",
  "address",
  "middle_name",
  "eduperson_scoped_affiliation",
  "gender",
  "locale",
  "nickname",
  "phone_number",
  "phone_number_verified",
  "name",
  "email"
]
id_token_signing_alg_values_supported
[
  "RS256",
  "RS384",
  "RS512",
  "ES256",
  "ES384",
  "ES512",
  "HS256",
  "HS384",
  "HS512",
  "PS256",
  "PS384",
  "PS512"
]
id_token_encryption_alg_values_supported
[
  "RSA-OAEP",
  "RSA-OAEP-256",
  "A128KW",
  "A192KW",
  "A256KW",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW"
]
id_token_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
2021-09-11 11:12:08 SUCCESS
CheckServerConfiguration
Found required server configuration keys
required
[
  "authorization_endpoint",
  "token_endpoint",
  "issuer"
]
2021-09-11 11:12:08 SUCCESS
ExtractTLSTestValuesFromServerConfiguration
Extracted TLS information from authorization server configuration
registration_endpoint
{
  "testHost": "89.45.234.133",
  "testPort": 4000
}
authorization_endpoint
{
  "testHost": "89.45.234.133",
  "testPort": 4000
}
token_endpoint
{
  "testHost": "89.45.234.133",
  "testPort": 4000
}
userinfo_endpoint
{
  "testHost": "89.45.234.133",
  "testPort": 4000
}
2021-09-11 11:12:08
FetchServerKeys
Fetching server key
jwks_uri
https://89.45.234.133:4000/static/jwks.json
2021-09-11 11:12:08
FetchServerKeys
HTTP request
request_uri
https://89.45.234.133:4000/static/jwks.json
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/cbor, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2021-09-11 11:12:08 RESPONSE
FetchServerKeys
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-length": "691",
  "content-type": "application/json",
  "last-modified": "Sat, 11 Sep 2021 11:09:56 GMT",
  "cache-control": "public, max-age\u003d43200",
  "expires": "Sat, 11 Sep 2021 23:12:08 GMT",
  "etag": "\"1631358596.6152847-691-3956740992\"",
  "date": "Sat, 11 Sep 2021 11:12:08 GMT",
  "server": "Werkzeug/1.0.1 Python/3.8.10"
}
response_body
{"keys": [{"kty": "RSA", "use": "sig", "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ", "n": "4DuoJU7Kdqz37-ZyqVZT_gwfVgV4h6TENLkQNRpQIIGrq7BhaNr9Li4ocZIu7x6N_KAKk-59pB4Xk1rjwMFGU7eKV3V1HBe2Nr-br8sU1Jw5ON8Z6_eV5L6c1i9asCklacYaMbxVVD3Unu0B964nrXm6Ct2vsLM-5sVNlOvMHHpS9HbJxByVSCyr43-riM4drq_5z806LLMU9_3KoOTI5a4NTtZpWmymWOJ_3uOdINJ6nun68rnNoHmrM_Cg302VkDb9vSQBw4WEgjXRYoeHRq9hx1IxOjK-8YFtQxrWcFJH4ntUqWPBxlhdpCM1clbhh7S8NfOcN-36Wblff7uFQw", "e": "AQAB"}, {"kty": "EC", "use": "sig", "kid": "azRaTWlLTWZTM0ZLSUFZLVNjYm5Cd3FISmlMTVVkbVVJa2FnR0d5WkRmNA", "crv": "P-256", "x": "5hTpuQ1G3UMbypveGTh64PASzqrfhFllfqMFdNUlY9w", "y": "cg80sEOIDMcg5Stg4ubxpAnW_MXD71moNznzBF1toAU"}]}
2021-09-11 11:12:08
FetchServerKeys
Found JWK set string
jwk_string
{"keys": [{"kty": "RSA", "use": "sig", "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ", "n": "4DuoJU7Kdqz37-ZyqVZT_gwfVgV4h6TENLkQNRpQIIGrq7BhaNr9Li4ocZIu7x6N_KAKk-59pB4Xk1rjwMFGU7eKV3V1HBe2Nr-br8sU1Jw5ON8Z6_eV5L6c1i9asCklacYaMbxVVD3Unu0B964nrXm6Ct2vsLM-5sVNlOvMHHpS9HbJxByVSCyr43-riM4drq_5z806LLMU9_3KoOTI5a4NTtZpWmymWOJ_3uOdINJ6nun68rnNoHmrM_Cg302VkDb9vSQBw4WEgjXRYoeHRq9hx1IxOjK-8YFtQxrWcFJH4ntUqWPBxlhdpCM1clbhh7S8NfOcN-36Wblff7uFQw", "e": "AQAB"}, {"kty": "EC", "use": "sig", "kid": "azRaTWlLTWZTM0ZLSUFZLVNjYm5Cd3FISmlMTVVkbVVJa2FnR0d5WkRmNA", "crv": "P-256", "x": "5hTpuQ1G3UMbypveGTh64PASzqrfhFllfqMFdNUlY9w", "y": "cg80sEOIDMcg5Stg4ubxpAnW_MXD71moNznzBF1toAU"}]}
2021-09-11 11:12:08 SUCCESS
FetchServerKeys
Found server JWK set
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "use": "sig",
      "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ",
      "n": "4DuoJU7Kdqz37-ZyqVZT_gwfVgV4h6TENLkQNRpQIIGrq7BhaNr9Li4ocZIu7x6N_KAKk-59pB4Xk1rjwMFGU7eKV3V1HBe2Nr-br8sU1Jw5ON8Z6_eV5L6c1i9asCklacYaMbxVVD3Unu0B964nrXm6Ct2vsLM-5sVNlOvMHHpS9HbJxByVSCyr43-riM4drq_5z806LLMU9_3KoOTI5a4NTtZpWmymWOJ_3uOdINJ6nun68rnNoHmrM_Cg302VkDb9vSQBw4WEgjXRYoeHRq9hx1IxOjK-8YFtQxrWcFJH4ntUqWPBxlhdpCM1clbhh7S8NfOcN-36Wblff7uFQw",
      "e": "AQAB"
    },
    {
      "kty": "EC",
      "use": "sig",
      "kid": "azRaTWlLTWZTM0ZLSUFZLVNjYm5Cd3FISmlMTVVkbVVJa2FnR0d5WkRmNA",
      "crv": "P-256",
      "x": "5hTpuQ1G3UMbypveGTh64PASzqrfhFllfqMFdNUlY9w",
      "y": "cg80sEOIDMcg5Stg4ubxpAnW_MXD71moNznzBF1toAU"
    }
  ]
}
2021-09-11 11:12:08 SUCCESS
CheckServerKeysIsValid
Server JWKs is valid
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "use": "sig",
      "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ",
      "n": "4DuoJU7Kdqz37-ZyqVZT_gwfVgV4h6TENLkQNRpQIIGrq7BhaNr9Li4ocZIu7x6N_KAKk-59pB4Xk1rjwMFGU7eKV3V1HBe2Nr-br8sU1Jw5ON8Z6_eV5L6c1i9asCklacYaMbxVVD3Unu0B964nrXm6Ct2vsLM-5sVNlOvMHHpS9HbJxByVSCyr43-riM4drq_5z806LLMU9_3KoOTI5a4NTtZpWmymWOJ_3uOdINJ6nun68rnNoHmrM_Cg302VkDb9vSQBw4WEgjXRYoeHRq9hx1IxOjK-8YFtQxrWcFJH4ntUqWPBxlhdpCM1clbhh7S8NfOcN-36Wblff7uFQw",
      "e": "AQAB"
    },
    {
      "kty": "EC",
      "use": "sig",
      "kid": "azRaTWlLTWZTM0ZLSUFZLVNjYm5Cd3FISmlMTVVkbVVJa2FnR0d5WkRmNA",
      "crv": "P-256",
      "x": "5hTpuQ1G3UMbypveGTh64PASzqrfhFllfqMFdNUlY9w",
      "y": "cg80sEOIDMcg5Stg4ubxpAnW_MXD71moNznzBF1toAU"
    }
  ]
}
2021-09-11 11:12:08 SUCCESS
ValidateServerJWKs
Valid server JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2021-09-11 11:12:08 SUCCESS
CheckForKeyIdInServerJWKs
All keys contain kids
2021-09-11 11:12:08 SUCCESS
CheckDistinctKeyIdValueInServerJWKs
Distinct 'kid' value in all keys of server_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2021-09-11 11:12:08 SUCCESS
EnsureServerJwksDoesNotContainPrivateOrSymmetricKeys
Jwks does not contain any private or symmetric keys
2021-09-11 11:12:08
StoreOriginalClientConfiguration
No client details on configuration, created an empty original_client_config object.
2021-09-11 11:12:08
ExtractClientNameFromStoredConfig
Extracted client_name from stored client configuration.
client_name
2021-09-11 11:12:09 SUCCESS
GenerateRS256ClientJWKs
Generated client JWKs
client_jwks
{
  "keys": [
    {
      "p": "w8oKZW8FeCRdW4LeRz0aNxUdz-Ceh7DXJ09ZxOjg8eI1MdUv3Mi_tgU_Im3wFsM1Rxm5icN1l0IGRJXscEzifSkkF29KcbZfaXtC5PFZJ3kjW9i72rX1hiURn3Z5N9qUe4hoUti7fxxFD4xMTPawAogbo2NDj17P1Gp0TjJzr8M",
      "kty": "RSA",
      "q": "wu3S-azEY9L_-Wrp4c9YAt8D9ZECK3JO7bqE9trEQaV0fhKcHTovMSk97j2xIt1bISAVtOXCWIQrQgp0Eg2EVq74duq6y9DdnkoZGmu1th2KUvG7B5e573thDrOxS6U7DkKql-pY8ULXoayM68duVy5unFNpZRA-Wc5DcbZiQAE",
      "d": "RXnplfSVx_FPvYKSTSzyZBhTs9OE7Tnkp3AqUW-MqAcZnh0TaolF3apWfPU9GwgMtqTNchTCARCf6iEgG5EMDirW9gMrdC6e0dxSDmiszYUzuMznk4ciqCe7RTSW6dO_z0hYvC3vt46TMgq7WUf-4_BMbdxZUbvnSjXKIijzzDBWlO-gQOB_618KekM2p5XRB5s0fcGReKp81QoJ3g0jCTojiVgB7qCl338mt2EQZUpdJ0XY1DLa2vSljtXeEqZXv99XQykypEmYxe6DA7Z94fZft1lOz522k1zNSVAvLnDGyGeA7Dxzx3iv584v5FBNew5rYaSZ4L-S4ZVMN34AAQ",
      "e": "AQAB",
      "use": "sig",
      "qi": "RryFxgCAp8tFMETkU5JfM2-AVE_1j54jFU2hQpnkoNj6uhI9t5ARGn14FhRhcY0eSOPuTVFfkSblhjy1ARq2SkukitryJkvGXueaqn-sKgLbrd0eHhHl-PexqpOWX2Cm4mjAm02Wcd203MrojmAlrF1UW0GoWsHGxmy3LbdqJsY",
      "dp": "Tm7Lx2K4YC7BL323qfYyYEqXTMWA_H69UkQZhCZ-pqemA7aRm_LXygVEC3jbK2M8HqWRjDy_CL8sX6FnvH0wZk9q4_BzdCZJBqqYW7rLqmJ-5bZnWvB10S1cZ_NAED4CKZK1qCqmwf8DM31Su6o_TGRWHhgP4olq3H9g5EqVyZ0",
      "alg": "RS256",
      "dq": "K25l1W9jCoLWubHSjpduGqWp8iru-tMrNtiaC45Or_m3bOeklPaD0UZJIC3qq8P6K_VEINwYYzR_luVRWzxbwhyWC5jdKdBNsJj94t8gy4TlbvmhHF339Z3d0DLFS_9ymwjLjbGPQ6IK_WC-vUHgGdikmHwVPYlS-xtz94AVgAE",
      "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "alg": "RS256",
      "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
    }
  ]
}
2021-09-11 11:12:09 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2021-09-11 11:12:09
CreateEmptyDynamicRegistrationRequest
Created empty dynamic registration request
2021-09-11 11:12:09
AddClientNameToDynamicRegistrationRequest
Added client_name to registration request
client_name
OIDF Conformance Test CkZLFgqkGniFmrv
2021-09-11 11:12:09
AddAuthorizationCodeGrantTypeToDynamicRegistrationRequest
Added 'authorization_code' to 'grant_types'
grant_types
[
  "authorization_code"
]
2021-09-11 11:12:09
AddImplicitGrantTypeToDynamicRegistrationRequest
Added 'implicit' to 'grant_types'
grant_types
[
  "authorization_code",
  "implicit"
]
2021-09-11 11:12:09
AddPublicJwksToDynamicRegistrationRequest
Added client public JWKS to dynamic registration request
dynamic_registration_request
{
  "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv",
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "jwks": {
    "keys": [
      {
        "kty": "RSA",
        "e": "AQAB",
        "use": "sig",
        "alg": "RS256",
        "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
      }
    ]
  }
}
2021-09-11 11:12:09
AddTokenEndpointAuthMethodToDynamicRegistrationRequestFromEnvironment
Added token endpoint auth method to dynamic registration request
dynamic_registration_request
{
  "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv",
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "jwks": {
    "keys": [
      {
        "kty": "RSA",
        "e": "AQAB",
        "use": "sig",
        "alg": "RS256",
        "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
      }
    ]
  },
  "token_endpoint_auth_method": "client_secret_basic"
}
2021-09-11 11:12:09
AddResponseTypesArrayToDynamicRegistrationRequestFromEnvironment
Added response_types array to dynamic registration request
dynamic_registration_request
{
  "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv",
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "jwks": {
    "keys": [
      {
        "kty": "RSA",
        "e": "AQAB",
        "use": "sig",
        "alg": "RS256",
        "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
      }
    ]
  },
  "token_endpoint_auth_method": "client_secret_basic",
  "response_types": [
    "code id_token"
  ]
}
2021-09-11 11:12:09
AddRedirectUriToDynamicRegistrationRequest
Added redirect_uris array to dynamic registration request
dynamic_registration_request
{
  "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv",
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "jwks": {
    "keys": [
      {
        "kty": "RSA",
        "e": "AQAB",
        "use": "sig",
        "alg": "RS256",
        "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
      }
    ]
  },
  "token_endpoint_auth_method": "client_secret_basic",
  "response_types": [
    "code id_token"
  ],
  "redirect_uris": [
    "https://www.certification.openid.net/test/a/idpy/callback"
  ]
}
2021-09-11 11:12:09
AddContactsToDynamicRegistrationRequest
Added contacts array to dynamic registration request
dynamic_registration_request
{
  "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv",
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "jwks": {
    "keys": [
      {
        "kty": "RSA",
        "e": "AQAB",
        "use": "sig",
        "alg": "RS256",
        "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
      }
    ]
  },
  "token_endpoint_auth_method": "client_secret_basic",
  "response_types": [
    "code id_token"
  ],
  "redirect_uris": [
    "https://www.certification.openid.net/test/a/idpy/callback"
  ],
  "contacts": [
    "certification@oidf.org"
  ]
}
2021-09-11 11:12:09
CallDynamicRegistrationEndpoint
HTTP request
request_uri
https://89.45.234.133:4000/registration
request_method
POST
request_headers
{
  "accept": "application/json",
  "accept-charset": "utf-8",
  "content-type": "application/json",
  "content-length": "723"
}
request_body
{"client_name":"OIDF Conformance Test CkZLFgqkGniFmrv","grant_types":["authorization_code","implicit"],"jwks":{"keys":[{"kty":"RSA","e":"AQAB","use":"sig","alg":"RS256","n":"lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"}]},"token_endpoint_auth_method":"client_secret_basic","response_types":["code id_token"],"redirect_uris":["https://www.certification.openid.net/test/a/idpy/callback"],"contacts":["certification@oidf.org"]}
2021-09-11 11:12:09 RESPONSE
CallDynamicRegistrationEndpoint
HTTP response
response_status_code
201 CREATED
response_status_text
CREATED
response_headers
{
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "1134",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "set-cookie": "oidc_op_rp\u003d1631358729|zB1LoEXIWhkMRt4E|pWzxTWmpalh45P+1pV2OCJmAuOaly1of83LnkWXU+cLeazSPtwJSVj3nSLYwCjZdO73sqh1bWEls1e1vZw8/eHbBC6Ol0K+LOtTO7JhQR2wKhLhESKmtEOwdKPZvF+gmpewW0FYcT4s\u003d|xfmop9HTu8n3Mg//touM2Q\u003d\u003d; Secure; HttpOnly; Path\u003d/; SameSite\u003dLax",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:09 GMT"
}
response_body
{"client_id": "_T9ikkV-QcXUzWiEzMm_Mg", "registration_access_token": "chEohkyn9_giXMvOTdDeOYXgF2yhtPUnUrP1A8kEb2s", "registration_client_uri": "https://89.45.234.133:4000/registration_api?client_id=_T9ikkV-QcXUzWiEzMm_Mg", "client_id_issued_at": 1631358729, "client_secret": "f1e944d98366b2b8289e763d281f68a86ab2d5ad97e68ec58c2a229e", "client_secret_expires_at": 1633950729, "application_type": "web", "response_types": ["code id_token"], "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv", "grant_types": ["authorization_code", "implicit"], "jwks": {"keys": [{"kty": "RSA", "e": "AQAB", "alg": "RS256", "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"}]}, "token_endpoint_auth_method": "client_secret_basic", "contacts": ["certification@oidf.org"], "redirect_uris": ["https://www.certification.openid.net/test/a/idpy/callback"]}
2021-09-11 11:12:09
CallDynamicRegistrationEndpoint
Parsed registration endpoint response
status
201
endpoint_name
dynamic registration
headers
{
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "1134",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "set-cookie": "oidc_op_rp\u003d1631358729|zB1LoEXIWhkMRt4E|pWzxTWmpalh45P+1pV2OCJmAuOaly1of83LnkWXU+cLeazSPtwJSVj3nSLYwCjZdO73sqh1bWEls1e1vZw8/eHbBC6Ol0K+LOtTO7JhQR2wKhLhESKmtEOwdKPZvF+gmpewW0FYcT4s\u003d|xfmop9HTu8n3Mg//touM2Q\u003d\u003d; Secure; HttpOnly; Path\u003d/; SameSite\u003dLax",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:09 GMT"
}
body
{"client_id": "_T9ikkV-QcXUzWiEzMm_Mg", "registration_access_token": "chEohkyn9_giXMvOTdDeOYXgF2yhtPUnUrP1A8kEb2s", "registration_client_uri": "https://89.45.234.133:4000/registration_api?client_id=_T9ikkV-QcXUzWiEzMm_Mg", "client_id_issued_at": 1631358729, "client_secret": "f1e944d98366b2b8289e763d281f68a86ab2d5ad97e68ec58c2a229e", "client_secret_expires_at": 1633950729, "application_type": "web", "response_types": ["code id_token"], "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv", "grant_types": ["authorization_code", "implicit"], "jwks": {"keys": [{"kty": "RSA", "e": "AQAB", "alg": "RS256", "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"}]}, "token_endpoint_auth_method": "client_secret_basic", "contacts": ["certification@oidf.org"], "redirect_uris": ["https://www.certification.openid.net/test/a/idpy/callback"]}
body_json
{
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg",
  "registration_access_token": "chEohkyn9_giXMvOTdDeOYXgF2yhtPUnUrP1A8kEb2s",
  "registration_client_uri": "https://89.45.234.133:4000/registration_api?client_id\u003d_T9ikkV-QcXUzWiEzMm_Mg",
  "client_id_issued_at": 1631358729,
  "client_secret": "f1e944d98366b2b8289e763d281f68a86ab2d5ad97e68ec58c2a229e",
  "client_secret_expires_at": 1633950729,
  "application_type": "web",
  "response_types": [
    "code id_token"
  ],
  "client_name": "OIDF Conformance Test CkZLFgqkGniFmrv",
  "grant_types": [
    "authorization_code",
    "implicit"
  ],
  "jwks": {
    "keys": [
      {
        "kty": "RSA",
        "e": "AQAB",
        "alg": "RS256",
        "n": "lRT_Ry43MNvfEOaIwciCGIgNpaL3m4qaIzX6NpCn1eu6xpKyMim-x6iYRsZEGMldWL5WQdVJW140Ob5FaG5vztbatSrgmJFmnYFmKirGTPZwMzxE3ougkxJzvsENjHPilpLicyf7FX5fMKXfaUm2PR0wWR91cqhq7-68dU4vnmiDQkBsCaO-uqd1w2aAi6uuW0xecDhWr9jUk-kVld8t-_JH4bl2mvgPbsUAGHEYJyIsDrfcMNoNKNgg-7OMQ867n07j9_TChygVoXH_4pPdvkbVi-TJ78dqo4Kx-JdQnA6uVNukIksBWCAfpjusRCWS7CqmClOqs39VRi48CQpvww"
      }
    ]
  },
  "token_endpoint_auth_method": "client_secret_basic",
  "contacts": [
    "certification@oidf.org"
  ],
  "redirect_uris": [
    "https://www.certification.openid.net/test/a/idpy/callback"
  ]
}
2021-09-11 11:12:09 SUCCESS
EnsureContentTypeJson
endpoint_response Content-Type: header is application/json
2021-09-11 11:12:09 SUCCESS
EnsureHttpStatusCodeIs201
dynamic registration endpoint returned the expected http status
http_status
201
2021-09-11 11:12:09 SUCCESS
CheckNoErrorFromDynamicRegistrationEndpoint
Dynamic registration endpoint did not return an error.
2021-09-11 11:12:09 SUCCESS
ExtractDynamicRegistrationResponse
Extracted client from dynamic registration response
client_id
_T9ikkV-QcXUzWiEzMm_Mg
2021-09-11 11:12:09 SUCCESS
ExtractClientManagementCredentials
Extracted dynamic registration management credentials
registration_client_uri
https://89.45.234.133:4000/registration_api?client_id=_T9ikkV-QcXUzWiEzMm_Mg
registration_access_token
chEohkyn9_giXMvOTdDeOYXgF2yhtPUnUrP1A8kEb2s
2021-09-11 11:12:09
SetScopeInClientConfigurationToOpenId
Set scope in client configuration to "openid"
scope
openid
2021-09-11 11:12:09 SUCCESS
EnsureServerConfigurationSupportsClientSecretBasic
Contents of 'token_endpoint_auth_methods_supported' in discovery document matches expectations.
actual
[
  "client_secret_post",
  "client_secret_basic",
  "client_secret_jwt",
  "private_key_jwt"
]
expected
[
  "client_secret_basic"
]
minimum_matches_required
1
2021-09-11 11:12:09 SUCCESS
SetProtectedResourceUrlToUserInfoEndpoint
userinfo_endpoint will be used to test access token. The user info is not a mandatory to implement feature in the OpenID Connect specification, but is mandatory for certification.
protected_resource_url
https://89.45.234.133:4000/userinfo
2021-09-11 11:12:09
oidcc-prompt-login
Setup Done
Make request to authorization endpoint
2021-09-11 11:12:09 SUCCESS
CreateAuthorizationEndpointRequestFromClientInformation
Created authorization endpoint request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
2021-09-11 11:12:09
CreateRandomStateValue
Created state value
requested_state_length
10
state
qgsYkAYy6f
2021-09-11 11:12:09 SUCCESS
AddStateToAuthorizationEndpointRequest
Added state parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
qgsYkAYy6f
2021-09-11 11:12:09
CreateRandomNonceValue
Created nonce value
requested_nonce_length
10
nonce
7AUPkKFOZ8
2021-09-11 11:12:09 SUCCESS
AddNonceToAuthorizationEndpointRequest
Added nonce parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
qgsYkAYy6f
nonce
7AUPkKFOZ8
2021-09-11 11:12:09 SUCCESS
SetAuthorizationEndpointRequestResponseTypeFromEnvironment
Added response_type parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
qgsYkAYy6f
nonce
7AUPkKFOZ8
response_type
code id_token
2021-09-11 11:12:09
SetAuthorizationEndpointRequestResponseModeToFormPost
Added response_mode parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
qgsYkAYy6f
nonce
7AUPkKFOZ8
response_type
code id_token
response_mode
form_post
2021-09-11 11:12:09 SUCCESS
BuildPlainRedirectToAuthorizationEndpoint
Sending to authorization endpoint
redirect_to_authorization_endpoint
https://89.45.234.133:4000/authorization?client_id=_T9ikkV-QcXUzWiEzMm_Mg&redirect_uri=https://www.certification.openid.net/test/a/idpy/callback&scope=openid&state=qgsYkAYy6f&nonce=7AUPkKFOZ8&response_type=code%20id_token&response_mode=form_post
2021-09-11 11:12:09 REDIRECT
oidcc-prompt-login
Redirecting to authorization endpoint
redirect_to
https://89.45.234.133:4000/authorization?client_id=_T9ikkV-QcXUzWiEzMm_Mg&redirect_uri=https://www.certification.openid.net/test/a/idpy/callback&scope=openid&state=qgsYkAYy6f&nonce=7AUPkKFOZ8&response_type=code%20id_token&response_mode=form_post
2021-09-11 11:12:15 INCOMING
oidcc-prompt-login
Incoming HTTP request to test instance CkZLFgqkGniFmrv
incoming_headers
{
  "host": "www.certification.openid.net",
  "content-type": "application/x-www-form-urlencoded",
  "origin": "https://89.45.234.133:4000",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d957CBD0728A302FA7FF79E11B3D34B21; __utma\u003d201319536.1870777121.1629795278.1631344149.1631352103.13; __utmc\u003d201319536; __utmz\u003d201319536.1631260756.11.4.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/plan-detail.html; expected_tab\u003dgoogleplus; welcome_info_name\u003dRoland%20Hedberg",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,*/*;q\u003d0.8",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1.2 Safari/605.1.15",
  "referer": "https://89.45.234.133:4000/verify/user",
  "accept-language": "en-us",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "1982",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
callback
incoming_body_form_params
{
  "state": "qgsYkAYy6f",
  "scope": "[\u0027openid\u0027]",
  "code": "Z0FBQUFBQmhQSThQdEVmT01URGRxUXJpYTZlcG4zZUY4Q2FOczFqMFo3Rjk3ZEllbnhaVldzMTRFbnRwbkM5b0tyU25MVm5FVm9vSjRldXpYeDBHcFNsVGJFWHRWcjFCV2Q0cU9qMHVRWkRhdzZYLUNwdXp2dFIxNnZacjdaMWRwM3BjRl90bkttM3REYzdXMEpkRHJfajVBTXNGamV2WWlXWDBsVVB3bzY4YzdiZ0p4YWwwZkY2aDNxQVczVk9rNXItclR4Wm53dWNncFlmTHJ0WFZWMGZlZGJoX0t5dExnZG53SFpjU292OWZONWxkOFl4bkVGX1JwT2ZvR0ROMXoydnZscmtWTUtmTnd3X1JxVWFmaVI5ZnFTY203aGtCX0RMNHZlN0R1bW1jbTJaTGd1TFZTWjNINS1rOHpWVlZhUWVSX0ZJTnc3c0Q4QzJ6SEpFZ284QXJHZTVCUzNVcTZGZ250MTh4elVZUzlacGtHWC1qdS1CdUNBcWZqSktlQ0hDbDczclhkbFA4Z3h2cXhvb3VqcDhKUVl6VjZ4WlFHMUtPZWEzM2ZIbVZCSlhrQ2IxWGJQTWIxTC0ydTlNS2dDWVFsTkU5RHgtdTR2dlZqZnl1TVdoNzd6MWNRY3hNZUNqNWM4X3hfdWxKS3Q1djF5b3dycEpIa3UxY2JRYzJHcUVzbldGUFpRMWNFVVRfRnVGRkJHNERnN1hqTlBZRHlJYjZrek9iclJLQWlxSmh3dHJUV1g0WENMNWVDMzc4Y1h1S3gyMVA4MktkV1VzYVd2WWRyQVl3TU9YQTFPS2ZoMEU2RUloWFMtQnJ2dmk3bUtRcGN2NHhmSWVLTUdrVnZ3VHRZdzBpMHBmWg\u003d\u003d",
  "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.eyJzdWIiOiAiNDZkYzUzMDFjYTNhNTkzODI3YjNhYTE4ZjdlNTk1NjE3MmJiYjUzNzYxNDdlMjM3MjY0NTU0NDMyNmNmZjk1NiIsICJhdXRoX3RpbWUiOiAxNjMxMzU4NzM1LCAiYWNyIjogInVybjpvYXNpczpuYW1lczp0YzpTQU1MOjIuMDphYzpjbGFzc2VzOkludGVybmV0UHJvdG9jb2xQYXNzd29yZCIsICJzY29wZSI6IFsib3BlbmlkIl0sICJqdGkiOiAiMWVkZWZkOGExMmYxMTFlYzhjOTliMTI1OTQxOTBiMGYiLCAiY2xpZW50X2lkIjogIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciLCAiY19oYXNoIjogImlKaVNDejhjczZlU1gtcWNRWXNWVXciLCAibm9uY2UiOiAiN0FVUGtLRk9aOCIsICJpc3MiOiAiaHR0cHM6Ly84OS40NS4yMzQuMTMzOjQwMDAiLCAiaWF0IjogMTYzMTM1ODczNSwgImV4cCI6IDE2MzEzNTkwMzUsICJhdWQiOiBbIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciXX0.EjiyyZhaVrbd3RQj47ESs1S6om1pTzPpgM_Eq-F-MU6BjnT8oodog6iG07OnhByUYRXXqAm4jB4VQ9yB-z2WzMfuu-q-LeQ2Ygshwsvg8yrDilj5v4owwfGrOtscsEY4hNSN-pVhhPPQWurYdLKNF2R4oPgJYxCTPMruI3NNUBwuObj5Hv_E2I_-DFKdEW8aj-iojR1Z1cxTN8mr-088oFpsv-pJXMmz5lZKC_Lk1_iiKZdz8JGPaaEtVTyf8YSqa4GSs0ejq7vSa1ZnGd_7JDnULr9CRcF9s1bxS7InIBas3dwnUwSt4O7m-6ZteZhvDP4R5DoKjGy33QQ3eZNdXQ"
}
incoming_method
POST
incoming_body_json
incoming_query_string_params
{}
incoming_body
state=qgsYkAYy6f&scope=%5B%27openid%27%5D&code=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%3D%3D&id_token=eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.EjiyyZhaVrbd3RQj47ESs1S6om1pTzPpgM_Eq-F-MU6BjnT8oodog6iG07OnhByUYRXXqAm4jB4VQ9yB-z2WzMfuu-q-LeQ2Ygshwsvg8yrDilj5v4owwfGrOtscsEY4hNSN-pVhhPPQWurYdLKNF2R4oPgJYxCTPMruI3NNUBwuObj5Hv_E2I_-DFKdEW8aj-iojR1Z1cxTN8mr-088oFpsv-pJXMmz5lZKC_Lk1_iiKZdz8JGPaaEtVTyf8YSqa4GSs0ejq7vSa1ZnGd_7JDnULr9CRcF9s1bxS7InIBas3dwnUwSt4O7m-6ZteZhvDP4R5DoKjGy33QQ3eZNdXQ
2021-09-11 11:12:15 SUCCESS
CreateRandomImplicitSubmitUrl
Created random implicit submission URL
implicit_submit
{
  "path": "implicit/QeKOvHlVoAmBCyRMvxIT",
  "fullUrl": "https://www.certification.openid.net/test/a/idpy/implicit/QeKOvHlVoAmBCyRMvxIT"
}
2021-09-11 11:12:15 OUTGOING
oidcc-prompt-login
Response to HTTP request to test instance CkZLFgqkGniFmrv
outgoing
ModelAndView [view="implicitCallback"; model={implicitSubmitUrl=https://www.certification.openid.net/test/a/idpy/implicit/QeKOvHlVoAmBCyRMvxIT, returnUrl=/log-detail.html?log=CkZLFgqkGniFmrv}]
outgoing_path
callback
2021-09-11 11:12:16 INCOMING
oidcc-prompt-login
Incoming HTTP request to test instance CkZLFgqkGniFmrv
incoming_headers
{
  "host": "www.certification.openid.net",
  "accept": "*/*",
  "x-requested-with": "XMLHttpRequest",
  "accept-encoding": "gzip, deflate, br",
  "accept-language": "en-us",
  "content-type": "text/plain",
  "origin": "https://www.certification.openid.net",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1.2 Safari/605.1.15",
  "referer": "https://www.certification.openid.net/test/a/idpy/callback",
  "cookie": "JSESSIONID\u003d957CBD0728A302FA7FF79E11B3D34B21; __utma\u003d201319536.1870777121.1629795278.1631344149.1631352103.13; __utmc\u003d201319536; __utmz\u003d201319536.1631260756.11.4.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/plan-detail.html; expected_tab\u003dgoogleplus; welcome_info_name\u003dRoland%20Hedberg",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "0",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
implicit/QeKOvHlVoAmBCyRMvxIT
incoming_body_form_params
incoming_method
POST
incoming_body_json
incoming_query_string_params
{}
incoming_body
2021-09-11 11:12:16 OUTGOING
oidcc-prompt-login
Response to HTTP request to test instance CkZLFgqkGniFmrv
outgoing_status_code
204
outgoing_headers
{}
outgoing_body

                                
outgoing_path
implicit/QeKOvHlVoAmBCyRMvxIT
2021-09-11 11:12:16 SUCCESS
ExtractImplicitHashToCallbackResponse
implicit_hash is empty
2021-09-11 11:12:16 REDIRECT-IN
oidcc-prompt-login
Authorization endpoint response captured
url_query
{}
headers
{
  "host": "www.certification.openid.net",
  "content-type": "application/x-www-form-urlencoded",
  "origin": "https://89.45.234.133:4000",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d957CBD0728A302FA7FF79E11B3D34B21; __utma\u003d201319536.1870777121.1629795278.1631344149.1631352103.13; __utmc\u003d201319536; __utmz\u003d201319536.1631260756.11.4.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/plan-detail.html; expected_tab\u003dgoogleplus; welcome_info_name\u003dRoland%20Hedberg",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,*/*;q\u003d0.8",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1.2 Safari/605.1.15",
  "referer": "https://89.45.234.133:4000/verify/user",
  "accept-language": "en-us",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "1982",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
http_method
POST
url_fragment
{}
post_body
{
  "state": "qgsYkAYy6f",
  "scope": "[\u0027openid\u0027]",
  "code": "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\u003d\u003d",
  "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.EjiyyZhaVrbd3RQj47ESs1S6om1pTzPpgM_Eq-F-MU6BjnT8oodog6iG07OnhByUYRXXqAm4jB4VQ9yB-z2WzMfuu-q-LeQ2Ygshwsvg8yrDilj5v4owwfGrOtscsEY4hNSN-pVhhPPQWurYdLKNF2R4oPgJYxCTPMruI3NNUBwuObj5Hv_E2I_-DFKdEW8aj-iojR1Z1cxTN8mr-088oFpsv-pJXMmz5lZKC_Lk1_iiKZdz8JGPaaEtVTyf8YSqa4GSs0ejq7vSa1ZnGd_7JDnULr9CRcF9s1bxS7InIBas3dwnUwSt4O7m-6ZteZhvDP4R5DoKjGy33QQ3eZNdXQ"
}
Verify authorization endpoint response
2021-09-11 11:12:16 SUCCESS
CheckCallbackHttpMethodIsPost
HTTP method used at redirect_uri is 'POST'
2021-09-11 11:12:16 SUCCESS
CheckCallbackContentTypeIsFormUrlEncoded
content-type header to redirect_uri has the expected value
content_type
application/x-www-form-urlencoded
expected
application/x-www-form-urlencoded
2021-09-11 11:12:16 SUCCESS
RejectAuthCodeInUrlQuery
Authorization code is not present in URL query returned from authorization endpoint
2021-09-11 11:12:16 SUCCESS
RejectErrorInUrlQuery
'error' is not present in URL query returned from authorization endpoint
2021-09-11 11:12:16 SUCCESS
CheckMatchingCallbackParameters
Callback parameters successfully verified
2021-09-11 11:12:16
ValidateIssInAuthorizationResponse
No 'iss' value in authorization response.
2021-09-11 11:12:16 SUCCESS
CheckIfAuthorizationEndpointError
No error from authorization endpoint
2021-09-11 11:12:16 SUCCESS
CheckStateInAuthorizationResponse
State in response correctly returned
state
qgsYkAYy6f
2021-09-11 11:12:16 SUCCESS
ExtractAuthorizationCodeFromAuthorizationResponse
Found authorization code
code
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
2021-09-11 11:12:16 SUCCESS
ExtractIdTokenFromAuthorizationResponse
Found and parsed the id_token from authorization_endpoint_response
value
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.eyJzdWIiOiAiNDZkYzUzMDFjYTNhNTkzODI3YjNhYTE4ZjdlNTk1NjE3MmJiYjUzNzYxNDdlMjM3MjY0NTU0NDMyNmNmZjk1NiIsICJhdXRoX3RpbWUiOiAxNjMxMzU4NzM1LCAiYWNyIjogInVybjpvYXNpczpuYW1lczp0YzpTQU1MOjIuMDphYzpjbGFzc2VzOkludGVybmV0UHJvdG9jb2xQYXNzd29yZCIsICJzY29wZSI6IFsib3BlbmlkIl0sICJqdGkiOiAiMWVkZWZkOGExMmYxMTFlYzhjOTliMTI1OTQxOTBiMGYiLCAiY2xpZW50X2lkIjogIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciLCAiY19oYXNoIjogImlKaVNDejhjczZlU1gtcWNRWXNWVXciLCAibm9uY2UiOiAiN0FVUGtLRk9aOCIsICJpc3MiOiAiaHR0cHM6Ly84OS40NS4yMzQuMTMzOjQwMDAiLCAiaWF0IjogMTYzMTM1ODczNSwgImV4cCI6IDE2MzEzNTkwMzUsICJhdWQiOiBbIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciXX0.EjiyyZhaVrbd3RQj47ESs1S6om1pTzPpgM_Eq-F-MU6BjnT8oodog6iG07OnhByUYRXXqAm4jB4VQ9yB-z2WzMfuu-q-LeQ2Ygshwsvg8yrDilj5v4owwfGrOtscsEY4hNSN-pVhhPPQWurYdLKNF2R4oPgJYxCTPMruI3NNUBwuObj5Hv_E2I_-DFKdEW8aj-iojR1Z1cxTN8mr-088oFpsv-pJXMmz5lZKC_Lk1_iiKZdz8JGPaaEtVTyf8YSqa4GSs0ejq7vSa1ZnGd_7JDnULr9CRcF9s1bxS7InIBas3dwnUwSt4O7m-6ZteZhvDP4R5DoKjGy33QQ3eZNdXQ
header
{
  "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ",
  "alg": "RS256"
}
claims
{
  "sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956",
  "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword",
  "c_hash": "iJiSCz8cs6eSX-qcQYsVUw",
  "aud": "_T9ikkV-QcXUzWiEzMm_Mg",
  "auth_time": 1631358735,
  "scope": [
    "openid"
  ],
  "iss": "https://89.45.234.133:4000",
  "exp": 1631359035,
  "nonce": "7AUPkKFOZ8",
  "iat": 1631358735,
  "jti": "1edefd8a12f111ec8c99b12594190b0f",
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg"
}
2021-09-11 11:12:16 SUCCESS
ValidateIdToken
ID token iss, aud, exp, iat, auth_time, acr & nbf claims passed validation checks
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenNonce
Nonce values match
nonce
7AUPkKFOZ8
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenACRClaimAgainstRequest
Nothing to check; the conformance suite did not request an acr claim in request object
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenSignature
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.EjiyyZhaVrbd3RQj47ESs1S6om1pTzPpgM_Eq-F-MU6BjnT8oodog6iG07OnhByUYRXXqAm4jB4VQ9yB-z2WzMfuu-q-LeQ2Ygshwsvg8yrDilj5v4owwfGrOtscsEY4hNSN-pVhhPPQWurYdLKNF2R4oPgJYxCTPMruI3NNUBwuObj5Hv_E2I_-DFKdEW8aj-iojR1Z1cxTN8mr-088oFpsv-pJXMmz5lZKC_Lk1_iiKZdz8JGPaaEtVTyf8YSqa4GSs0ejq7vSa1ZnGd_7JDnULr9CRcF9s1bxS7InIBas3dwnUwSt4O7m-6ZteZhvDP4R5DoKjGy33QQ3eZNdXQ
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenSignatureUsingKid
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.EjiyyZhaVrbd3RQj47ESs1S6om1pTzPpgM_Eq-F-MU6BjnT8oodog6iG07OnhByUYRXXqAm4jB4VQ9yB-z2WzMfuu-q-LeQ2Ygshwsvg8yrDilj5v4owwfGrOtscsEY4hNSN-pVhhPPQWurYdLKNF2R4oPgJYxCTPMruI3NNUBwuObj5Hv_E2I_-DFKdEW8aj-iojR1Z1cxTN8mr-088oFpsv-pJXMmz5lZKC_Lk1_iiKZdz8JGPaaEtVTyf8YSqa4GSs0ejq7vSa1ZnGd_7JDnULr9CRcF9s1bxS7InIBas3dwnUwSt4O7m-6ZteZhvDP4R5DoKjGy33QQ3eZNdXQ
2021-09-11 11:12:16 SUCCESS
CheckForSubjectInIdToken
Found 'sub' in id_token
sub
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
2021-09-11 11:12:16 SUCCESS
CreateTokenEndpointRequestForAuthorizationCodeGrant
grant_type
authorization_code
code
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
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
2021-09-11 11:12:16 SUCCESS
AddBasicAuthClientSecretAuthenticationParameters
Added basic authorization header
Authorization
Basic X1Q5aWtrVi1RY1hVeldpRXpNbV9NZzpmMWU5NDRkOTgzNjZiMmI4Mjg5ZTc2M2QyODFmNjhhODZhYjJkNWFkOTdlNjhlYzU4YzJhMjI5ZQ==
2021-09-11 11:12:16
CallTokenEndpoint
HTTP request
request_uri
https://89.45.234.133:4000/token
request_method
POST
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "authorization": "Basic X1Q5aWtrVi1RY1hVeldpRXpNbV9NZzpmMWU5NDRkOTgzNjZiMmI4Mjg5ZTc2M2QyODFmNjhhODZhYjJkNWFkOTdlNjhlYzU4YzJhMjI5ZQ\u003d\u003d",
  "accept-charset": "utf-8",
  "content-type": "application/x-www-form-urlencoded;charset\u003dUTF-8",
  "content-length": "996"
}
request_body
grant_type=authorization_code&code=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%3D%3D&redirect_uri=https%3A%2F%2Fwww.certification.openid.net%2Ftest%2Fa%2Fidpy%2Fcallback
2021-09-11 11:12:16 RESPONSE
CallTokenEndpoint
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "2125",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "set-cookie": "oidc_op\u003d1631358736|Lp4WwmAcAU5oIfU/|S67SMccS3RWM+ChyQToL6tFmqySqLGHp21jduZbyQXZDF+9JOG2YQ6tSIrcdgs1q8GDr+mlJXl/qsQPPYmDibrXx+iluAW8BmqHb7nZk8vMVFG7/fDne+F7vWhUuVSNWI29B+q0Zw8kvISSV8pQmxYFTTeNRTrYn5/SGaMb2L7eWDSDUdiM66YoU1YBIjo8eIZnYRAMdzMb5rAL4yhEfZR1wCZOozZGvELqzU6JPQvg+3aWolVwhfNQPNweOvpZpvgTRKRxM|Y0qafYA/kGmUIo99o/GLZQ\u003d\u003d; Secure; HttpOnly; Path\u003d/; SameSite\u003dLax",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:16 GMT"
}
response_body
{"token_type": "Bearer", "scope": "openid", "access_token": "eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.JEiI9n470-SAYoo5FZlWyzZCqlp2942IotaniCPajKwzc0DFxO6cGUsw4Bj0uq0zDvu7hfi_55kSqMoM3CjtAQ", "expires_in": 1800, "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.jGw0WkQf1HADPr4BTW-dJhxKPQluK0qTR_tjF2UpbFyUjzs2poJgX9ge70vSOIhZhs0jv16Imod5GekFhfgVMlMWXOZ_7BwwIsn90SPlDNhtwdyle66JAtAXWqTA-rX0YrcpcgKd_WeF29NvWWmDsumZu5qiUA018XEDZIZ1nVV3dGKH9Ge_WHeT3kKWY9wFvdZtUhGp1O62gIaWsljGIZitxBAIqjgzbmf0hATb6rEWLOGNTklZdlMOgj92xGPo-1OEiDzMzI9Is_1C8-bEb0ltweT5Z-GrI7J7Tem66Erhnx4cAyKC-xRdrgju-HIamJzAFky6GdnXGIvf-iyUVw"}
2021-09-11 11:12:16
CallTokenEndpoint
Token endpoint response
token_endpoint_response
{"token_type": "Bearer", "scope": "openid", "access_token": "eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.JEiI9n470-SAYoo5FZlWyzZCqlp2942IotaniCPajKwzc0DFxO6cGUsw4Bj0uq0zDvu7hfi_55kSqMoM3CjtAQ", "expires_in": 1800, "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.jGw0WkQf1HADPr4BTW-dJhxKPQluK0qTR_tjF2UpbFyUjzs2poJgX9ge70vSOIhZhs0jv16Imod5GekFhfgVMlMWXOZ_7BwwIsn90SPlDNhtwdyle66JAtAXWqTA-rX0YrcpcgKd_WeF29NvWWmDsumZu5qiUA018XEDZIZ1nVV3dGKH9Ge_WHeT3kKWY9wFvdZtUhGp1O62gIaWsljGIZitxBAIqjgzbmf0hATb6rEWLOGNTklZdlMOgj92xGPo-1OEiDzMzI9Is_1C8-bEb0ltweT5Z-GrI7J7Tem66Erhnx4cAyKC-xRdrgju-HIamJzAFky6GdnXGIvf-iyUVw"}
2021-09-11 11:12:16 SUCCESS
CallTokenEndpoint
Parsed token endpoint response
token_type
Bearer
scope
openid
access_token
eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.JEiI9n470-SAYoo5FZlWyzZCqlp2942IotaniCPajKwzc0DFxO6cGUsw4Bj0uq0zDvu7hfi_55kSqMoM3CjtAQ
expires_in
1800
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.jGw0WkQf1HADPr4BTW-dJhxKPQluK0qTR_tjF2UpbFyUjzs2poJgX9ge70vSOIhZhs0jv16Imod5GekFhfgVMlMWXOZ_7BwwIsn90SPlDNhtwdyle66JAtAXWqTA-rX0YrcpcgKd_WeF29NvWWmDsumZu5qiUA018XEDZIZ1nVV3dGKH9Ge_WHeT3kKWY9wFvdZtUhGp1O62gIaWsljGIZitxBAIqjgzbmf0hATb6rEWLOGNTklZdlMOgj92xGPo-1OEiDzMzI9Is_1C8-bEb0ltweT5Z-GrI7J7Tem66Erhnx4cAyKC-xRdrgju-HIamJzAFky6GdnXGIvf-iyUVw
2021-09-11 11:12:16 SUCCESS
CheckIfTokenEndpointResponseError
No error from token endpoint
2021-09-11 11:12:16 SUCCESS
CheckForAccessTokenValue
Found an access token
access_token
eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.JEiI9n470-SAYoo5FZlWyzZCqlp2942IotaniCPajKwzc0DFxO6cGUsw4Bj0uq0zDvu7hfi_55kSqMoM3CjtAQ
2021-09-11 11:12:16 SUCCESS
ExtractAccessTokenFromTokenResponse
Extracted the access token
value
eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.eyJzY29wZSI6IFsib3BlbmlkIl0sICJhdWQiOiBbIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciXSwgImp0aSI6ICIxZjYzNmU4NzEyZjExMWVjOGM5OWIxMjU5NDE5MGIwZiIsICJjbGllbnRfaWQiOiAiX1Q5aWtrVi1RY1hVeldpRXpNbV9NZyIsICJzdWIiOiAiX1Q5aWtrVi1RY1hVeldpRXpNbV9NZyIsICJzaWQiOiAiWjBGQlFVRkJRbWhRU1RoUVpURnlkWGhzU2tOalYwdDZXRFJRYmxNdFF6VkxWbkk0YjBwcVZYZGhiSEpqYjBKbFkxbE1OWEJRUW1oU05FcENSVmhXUm5aMlltaEdlSHA0Tm1GNk1XVlFRV0pwVnpreldWa3pSVTlwYWtJeldYUlFlUzFZY0hneVZESjVOVzk0Vkdwa2VsRTFUbTg0TmtsdFFXRlZhamxOVkVGdFQzZGpYMUZmTmxONlFVUkdOMjU2WXpGc2NHRmlZak55YjFKNlFVVjJlRlpvTjBaSFZHMVVjamhLU0VoWk9YZGtOelpYVkhoVFVrUnVia1l4VTNGb2VsUmhRbGN5T0hJM01HMXZSVTFyWTNGSVpTMUxYMDFJUXpCbE1HSk1YMFo0YTI1MVdDMHljbVI1ZGtOb1JXNWZheTExU0UxT2N6MD0iLCAidG9rZW5fY2xhc3MiOiAiYWNjZXNzX3Rva2VuIiwgImlzcyI6ICJodHRwczovLzg5LjQ1LjIzNC4xMzM6NDAwMCIsICJpYXQiOiAxNjMxMzU4NzM2LCAiZXhwIjogMTYzMTM2MjMzNn0.JEiI9n470-SAYoo5FZlWyzZCqlp2942IotaniCPajKwzc0DFxO6cGUsw4Bj0uq0zDvu7hfi_55kSqMoM3CjtAQ
type
Bearer
2021-09-11 11:12:16 SUCCESS
ExtractExpiresInFromTokenEndpointResponse
Extracted 'expires_in'
expires_in
1800
2021-09-11 11:12:16 SUCCESS
ValidateExpiresIn
expires_in passed all validation checks
expires_in
1800
2021-09-11 11:12:16 INFO
CheckForRefreshTokenValue
Couldn't find refresh token
2021-09-11 11:12:16 SUCCESS
ExtractIdTokenFromTokenResponse
Found and parsed the id_token from token_endpoint_response
value
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.jGw0WkQf1HADPr4BTW-dJhxKPQluK0qTR_tjF2UpbFyUjzs2poJgX9ge70vSOIhZhs0jv16Imod5GekFhfgVMlMWXOZ_7BwwIsn90SPlDNhtwdyle66JAtAXWqTA-rX0YrcpcgKd_WeF29NvWWmDsumZu5qiUA018XEDZIZ1nVV3dGKH9Ge_WHeT3kKWY9wFvdZtUhGp1O62gIaWsljGIZitxBAIqjgzbmf0hATb6rEWLOGNTklZdlMOgj92xGPo-1OEiDzMzI9Is_1C8-bEb0ltweT5Z-GrI7J7Tem66Erhnx4cAyKC-xRdrgju-HIamJzAFky6GdnXGIvf-iyUVw
header
{
  "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ",
  "alg": "RS256"
}
claims
{
  "sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956",
  "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword",
  "aud": "_T9ikkV-QcXUzWiEzMm_Mg",
  "auth_time": 1631358735,
  "scope": [
    "openid"
  ],
  "iss": "https://89.45.234.133:4000",
  "exp": 1631359036,
  "nonce": "7AUPkKFOZ8",
  "iat": 1631358736,
  "jti": "1f636e8912f111ec8c99b12594190b0f",
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg"
}
2021-09-11 11:12:16 SUCCESS
ValidateIdToken
ID token iss, aud, exp, iat, auth_time, acr & nbf claims passed validation checks
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenNonce
Nonce values match
nonce
7AUPkKFOZ8
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenACRClaimAgainstRequest
Nothing to check; the conformance suite did not request an acr claim in request object
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenSignature
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.jGw0WkQf1HADPr4BTW-dJhxKPQluK0qTR_tjF2UpbFyUjzs2poJgX9ge70vSOIhZhs0jv16Imod5GekFhfgVMlMWXOZ_7BwwIsn90SPlDNhtwdyle66JAtAXWqTA-rX0YrcpcgKd_WeF29NvWWmDsumZu5qiUA018XEDZIZ1nVV3dGKH9Ge_WHeT3kKWY9wFvdZtUhGp1O62gIaWsljGIZitxBAIqjgzbmf0hATb6rEWLOGNTklZdlMOgj92xGPo-1OEiDzMzI9Is_1C8-bEb0ltweT5Z-GrI7J7Tem66Erhnx4cAyKC-xRdrgju-HIamJzAFky6GdnXGIvf-iyUVw
2021-09-11 11:12:16 SUCCESS
ValidateIdTokenSignatureUsingKid
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.jGw0WkQf1HADPr4BTW-dJhxKPQluK0qTR_tjF2UpbFyUjzs2poJgX9ge70vSOIhZhs0jv16Imod5GekFhfgVMlMWXOZ_7BwwIsn90SPlDNhtwdyle66JAtAXWqTA-rX0YrcpcgKd_WeF29NvWWmDsumZu5qiUA018XEDZIZ1nVV3dGKH9Ge_WHeT3kKWY9wFvdZtUhGp1O62gIaWsljGIZitxBAIqjgzbmf0hATb6rEWLOGNTklZdlMOgj92xGPo-1OEiDzMzI9Is_1C8-bEb0ltweT5Z-GrI7J7Tem66Erhnx4cAyKC-xRdrgju-HIamJzAFky6GdnXGIvf-iyUVw
2021-09-11 11:12:16 SUCCESS
CheckForSubjectInIdToken
Found 'sub' in id_token
sub
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
2021-09-11 11:12:16 SUCCESS
VerifyIdTokenSubConsistentHybridFlow
authorization endpoint and token endpoint id_token have same sub
sub_auth_endpoint
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
sub_token_endpoint
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
Userinfo endpoint tests
2021-09-11 11:12:16
CallProtectedResourceWithBearerToken
HTTP request
request_uri
https://89.45.234.133:4000/userinfo
request_method
GET
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "authorization": "Bearer eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.JEiI9n470-SAYoo5FZlWyzZCqlp2942IotaniCPajKwzc0DFxO6cGUsw4Bj0uq0zDvu7hfi_55kSqMoM3CjtAQ",
  "accept-charset": "utf-8",
  "content-length": "0"
}
request_body

                                
2021-09-11 11:12:17 RESPONSE
CallProtectedResourceWithBearerToken
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-type": "application/json",
  "content-length": "149",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:16 GMT"
}
response_body
{"sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956", "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"}
2021-09-11 11:12:17 SUCCESS
CallProtectedResourceWithBearerToken
Got a response from the resource endpoint
status
200
endpoint_name
resource
headers
{
  "content-type": "application/json",
  "content-length": "149",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:16 GMT"
}
body
{"sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956", "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"}
Second authorization: Make request to authorization endpoint
2021-09-11 11:12:17 SUCCESS
WaitForOneSecond
Pausing for 1 seconds
2021-09-11 11:12:18 SUCCESS
WaitForOneSecond
Woke up after 1 seconds sleep
2021-09-11 11:12:18 SUCCESS
CreateAuthorizationEndpointRequestFromClientInformation
Created authorization endpoint request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
2021-09-11 11:12:18
CreateRandomStateValue
Created state value
requested_state_length
10
state
kHMxfjk0Up
2021-09-11 11:12:18 SUCCESS
AddStateToAuthorizationEndpointRequest
Added state parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
kHMxfjk0Up
2021-09-11 11:12:18
CreateRandomNonceValue
Created nonce value
requested_nonce_length
10
nonce
eFDVLCggXi
2021-09-11 11:12:18 SUCCESS
AddNonceToAuthorizationEndpointRequest
Added nonce parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
kHMxfjk0Up
nonce
eFDVLCggXi
2021-09-11 11:12:18 SUCCESS
SetAuthorizationEndpointRequestResponseTypeFromEnvironment
Added response_type parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
kHMxfjk0Up
nonce
eFDVLCggXi
response_type
code id_token
2021-09-11 11:12:18
SetAuthorizationEndpointRequestResponseModeToFormPost
Added response_mode parameter to request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
kHMxfjk0Up
nonce
eFDVLCggXi
response_type
code id_token
response_mode
form_post
2021-09-11 11:12:18 SUCCESS
AddPromptLoginToAuthorizationEndpointRequest
Added prompt=login to authorization endpoint request
client_id
_T9ikkV-QcXUzWiEzMm_Mg
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
scope
openid
state
kHMxfjk0Up
nonce
eFDVLCggXi
response_type
code id_token
response_mode
form_post
prompt
login
2021-09-11 11:12:18 SUCCESS
BuildPlainRedirectToAuthorizationEndpoint
Sending to authorization endpoint
redirect_to_authorization_endpoint
https://89.45.234.133:4000/authorization?client_id=_T9ikkV-QcXUzWiEzMm_Mg&redirect_uri=https://www.certification.openid.net/test/a/idpy/callback&scope=openid&state=kHMxfjk0Up&nonce=eFDVLCggXi&response_type=code%20id_token&response_mode=form_post&prompt=login
2021-09-11 11:12:18 REDIRECT
oidcc-prompt-login
Redirecting to authorization endpoint
redirect_to
https://89.45.234.133:4000/authorization?client_id=_T9ikkV-QcXUzWiEzMm_Mg&redirect_uri=https://www.certification.openid.net/test/a/idpy/callback&scope=openid&state=kHMxfjk0Up&nonce=eFDVLCggXi&response_type=code%20id_token&response_mode=form_post&prompt=login
2021-09-11 11:12:18 REVIEW IMAGE
ExpectSecondLoginPage
The server must ask the user to login for a second time; a screenshot of this must be uploaded.
img
updatedAt
1631358785702
2021-09-11 11:12:40 INCOMING
oidcc-prompt-login
Incoming HTTP request to test instance CkZLFgqkGniFmrv
incoming_headers
{
  "host": "www.certification.openid.net",
  "content-type": "application/x-www-form-urlencoded",
  "origin": "https://89.45.234.133:4000",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d957CBD0728A302FA7FF79E11B3D34B21; __utma\u003d201319536.1870777121.1629795278.1631344149.1631352103.13; __utmc\u003d201319536; __utmz\u003d201319536.1631260756.11.4.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/plan-detail.html; expected_tab\u003dgoogleplus; welcome_info_name\u003dRoland%20Hedberg",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,*/*;q\u003d0.8",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1.2 Safari/605.1.15",
  "referer": "https://89.45.234.133:4000/verify/user",
  "accept-language": "en-us",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "1982",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
callback
incoming_body_form_params
{
  "state": "kHMxfjk0Up",
  "scope": "[\u0027openid\u0027]",
  "code": "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\u003d\u003d",
  "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.PAtsOIN0AsEEHTdGYLHSYV7vpDYEsBwxecEt7gwo_BBYx9vYkuIP2c9oCQ4V4gvhNJbwYT7nBkj4kAEMhtI3kYaU1LvB2VUaSkiHgVRV7BMV6RFFQKMsdzpRuQeTJYhtBOrObTpQxebafh9fGm9adVLBnF6YlQOREMiOW60COEsffLVIMXlbzvJIbiayyTABfb89P8X-2_eaejWWTspP7YnwKb-J85AzeXIHiRR6FpMNGphPO9ehZQDQLVpPqaZ3q5hk4QiOTE-xq2Q0DQRLJXyGB4lU2RXCohfDXUj01wP30pwcGtWRzN3Ja8NL00HsHqg5BW1TX2nTHpzKK7-1hg"
}
incoming_method
POST
incoming_body_json
incoming_query_string_params
{}
incoming_body
state=kHMxfjk0Up&scope=%5B%27openid%27%5D&code=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%3D%3D&id_token=eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.PAtsOIN0AsEEHTdGYLHSYV7vpDYEsBwxecEt7gwo_BBYx9vYkuIP2c9oCQ4V4gvhNJbwYT7nBkj4kAEMhtI3kYaU1LvB2VUaSkiHgVRV7BMV6RFFQKMsdzpRuQeTJYhtBOrObTpQxebafh9fGm9adVLBnF6YlQOREMiOW60COEsffLVIMXlbzvJIbiayyTABfb89P8X-2_eaejWWTspP7YnwKb-J85AzeXIHiRR6FpMNGphPO9ehZQDQLVpPqaZ3q5hk4QiOTE-xq2Q0DQRLJXyGB4lU2RXCohfDXUj01wP30pwcGtWRzN3Ja8NL00HsHqg5BW1TX2nTHpzKK7-1hg
2021-09-11 11:12:40 SUCCESS
CreateRandomImplicitSubmitUrl
Created random implicit submission URL
implicit_submit
{
  "path": "implicit/PDBoN53QXwFIYdZNDz02",
  "fullUrl": "https://www.certification.openid.net/test/a/idpy/implicit/PDBoN53QXwFIYdZNDz02"
}
2021-09-11 11:12:40 OUTGOING
oidcc-prompt-login
Response to HTTP request to test instance CkZLFgqkGniFmrv
outgoing
ModelAndView [view="implicitCallback"; model={implicitSubmitUrl=https://www.certification.openid.net/test/a/idpy/implicit/PDBoN53QXwFIYdZNDz02, returnUrl=/log-detail.html?log=CkZLFgqkGniFmrv}]
outgoing_path
callback
2021-09-11 11:12:40 INCOMING
oidcc-prompt-login
Incoming HTTP request to test instance CkZLFgqkGniFmrv
incoming_headers
{
  "host": "www.certification.openid.net",
  "accept": "*/*",
  "x-requested-with": "XMLHttpRequest",
  "accept-encoding": "gzip, deflate, br",
  "accept-language": "en-us",
  "content-type": "text/plain",
  "origin": "https://www.certification.openid.net",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1.2 Safari/605.1.15",
  "referer": "https://www.certification.openid.net/test/a/idpy/callback",
  "cookie": "JSESSIONID\u003d957CBD0728A302FA7FF79E11B3D34B21; __utma\u003d201319536.1870777121.1629795278.1631344149.1631352103.13; __utmc\u003d201319536; __utmz\u003d201319536.1631260756.11.4.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/plan-detail.html; expected_tab\u003dgoogleplus; welcome_info_name\u003dRoland%20Hedberg",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "0",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
incoming_path
implicit/PDBoN53QXwFIYdZNDz02
incoming_body_form_params
incoming_method
POST
incoming_body_json
incoming_query_string_params
{}
incoming_body
2021-09-11 11:12:40 OUTGOING
oidcc-prompt-login
Response to HTTP request to test instance CkZLFgqkGniFmrv
outgoing_status_code
204
outgoing_headers
{}
outgoing_body

                                
outgoing_path
implicit/PDBoN53QXwFIYdZNDz02
2021-09-11 11:12:40 SUCCESS
ExtractImplicitHashToCallbackResponse
implicit_hash is empty
2021-09-11 11:12:40 REDIRECT-IN
oidcc-prompt-login
Authorization endpoint response captured
url_query
{}
headers
{
  "host": "www.certification.openid.net",
  "content-type": "application/x-www-form-urlencoded",
  "origin": "https://89.45.234.133:4000",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d957CBD0728A302FA7FF79E11B3D34B21; __utma\u003d201319536.1870777121.1629795278.1631344149.1631352103.13; __utmc\u003d201319536; __utmz\u003d201319536.1631260756.11.4.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/plan-detail.html; expected_tab\u003dgoogleplus; welcome_info_name\u003dRoland%20Hedberg",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,*/*;q\u003d0.8",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1.2 Safari/605.1.15",
  "referer": "https://89.45.234.133:4000/verify/user",
  "accept-language": "en-us",
  "x-ssl-cipher": "ECDHE-RSA-AES256-GCM-SHA384",
  "x-ssl-protocol": "TLSv1.2",
  "content-length": "1982",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net",
  "connection": "close"
}
http_method
POST
url_fragment
{}
post_body
{
  "state": "kHMxfjk0Up",
  "scope": "[\u0027openid\u0027]",
  "code": "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\u003d\u003d",
  "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.PAtsOIN0AsEEHTdGYLHSYV7vpDYEsBwxecEt7gwo_BBYx9vYkuIP2c9oCQ4V4gvhNJbwYT7nBkj4kAEMhtI3kYaU1LvB2VUaSkiHgVRV7BMV6RFFQKMsdzpRuQeTJYhtBOrObTpQxebafh9fGm9adVLBnF6YlQOREMiOW60COEsffLVIMXlbzvJIbiayyTABfb89P8X-2_eaejWWTspP7YnwKb-J85AzeXIHiRR6FpMNGphPO9ehZQDQLVpPqaZ3q5hk4QiOTE-xq2Q0DQRLJXyGB4lU2RXCohfDXUj01wP30pwcGtWRzN3Ja8NL00HsHqg5BW1TX2nTHpzKK7-1hg"
}
Second authorization: Verify authorization endpoint response
2021-09-11 11:12:40 SUCCESS
CheckCallbackHttpMethodIsPost
HTTP method used at redirect_uri is 'POST'
2021-09-11 11:12:40 SUCCESS
CheckCallbackContentTypeIsFormUrlEncoded
content-type header to redirect_uri has the expected value
content_type
application/x-www-form-urlencoded
expected
application/x-www-form-urlencoded
2021-09-11 11:12:40 SUCCESS
RejectAuthCodeInUrlQuery
Authorization code is not present in URL query returned from authorization endpoint
2021-09-11 11:12:40 SUCCESS
RejectErrorInUrlQuery
'error' is not present in URL query returned from authorization endpoint
2021-09-11 11:12:40 SUCCESS
CheckMatchingCallbackParameters
Callback parameters successfully verified
2021-09-11 11:12:40
ValidateIssInAuthorizationResponse
No 'iss' value in authorization response.
2021-09-11 11:12:40 SUCCESS
CheckIfAuthorizationEndpointError
No error from authorization endpoint
2021-09-11 11:12:40 SUCCESS
CheckStateInAuthorizationResponse
State in response correctly returned
state
kHMxfjk0Up
2021-09-11 11:12:40 SUCCESS
ExtractAuthorizationCodeFromAuthorizationResponse
Found authorization code
code
Z0FBQUFBQmhQSThvZE5UMFl5X0RNYlU5dFkxQ3YyU253aGJ0S044Nm9ZbHdJYlFYVG55MHE4X21kM3kzMHA1WnhxUXdZMXFXTFN0V3lYdEdacTMtb1RhMUlBdU1GUlU0SVRZb0puTkZtSXBWcG9vSUUzTnRkTWtaU1JoWkNmQmlSWnhEREhvRzlUN1FkS0MteFJBVEZEbjIyb1VUVWxzdzh4SmkyYjNKRDRuVzZFR2dIaUZiQ1Z5bTBXbWNPeFNOajVqNFdGSGhkYjdhUnQwcjktUmFaclNYdl96QzY2NnVHalVPclZKQXhEOTBzSVppcmV6WHFlcTlWWUxGckhoeDFrX2F2VTdaNjNXUHVSNTRicXRaaGgyYkpEMmowZ3UyazJGdF83eVdWYmU3UHJQd0tQNDU4M096Y2JUc0NEU2tkSkE1SlB0VHpKV0xLY1Q0WG5BcnVmSUlDTFRVS3dQcVJjWDBKaFBKM0xzaDc4Y2N2eUpURXVwUGVUTk9zOGt3anM0RXJEVmctWGZrNDRTaVRjaWlLLVUtLUk2Y0hnb3ZvMkxQYjJnOXRkbHotQTVWZlMtMm8xUWhSRXhwTFJtWHVlVVlKVTM2VndyZWJFUUVoMlRveTNXbU84djlHa3J6M0JnSkNqVkpOblgwZHp0Qk1YM2dFU3QtZDNweWhkeVJlT0pMU0IzekNiQWZGMWlGRld6UTI0dHVjUmdJZUtFcklXek5KMU9Cak0zX0EtWndXWE4wVVlSVWR0V2FFRTMxQkpxLW9SS2xGSHJqYWhaaXdnZEdrUTVjem5IM0E3QjJTWXYyOE9FUFg2U3NFc1hJdkx3cEdzMGgyZjFuWXRMYXhmX3VaR2VEM0k4YQ==
2021-09-11 11:12:40 SUCCESS
ExtractIdTokenFromAuthorizationResponse
Found and parsed the id_token from authorization_endpoint_response
value
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.PAtsOIN0AsEEHTdGYLHSYV7vpDYEsBwxecEt7gwo_BBYx9vYkuIP2c9oCQ4V4gvhNJbwYT7nBkj4kAEMhtI3kYaU1LvB2VUaSkiHgVRV7BMV6RFFQKMsdzpRuQeTJYhtBOrObTpQxebafh9fGm9adVLBnF6YlQOREMiOW60COEsffLVIMXlbzvJIbiayyTABfb89P8X-2_eaejWWTspP7YnwKb-J85AzeXIHiRR6FpMNGphPO9ehZQDQLVpPqaZ3q5hk4QiOTE-xq2Q0DQRLJXyGB4lU2RXCohfDXUj01wP30pwcGtWRzN3Ja8NL00HsHqg5BW1TX2nTHpzKK7-1hg
header
{
  "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ",
  "alg": "RS256"
}
claims
{
  "sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956",
  "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword",
  "c_hash": "nUmK-FVrvEaHhbHiW3ca3g",
  "aud": "_T9ikkV-QcXUzWiEzMm_Mg",
  "auth_time": 1631358760,
  "scope": [
    "openid"
  ],
  "iss": "https://89.45.234.133:4000",
  "exp": 1631359060,
  "nonce": "eFDVLCggXi",
  "iat": 1631358760,
  "jti": "2daede1612f111ec8c99b12594190b0f",
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg"
}
2021-09-11 11:12:40 SUCCESS
ValidateIdToken
ID token iss, aud, exp, iat, auth_time, acr & nbf claims passed validation checks
2021-09-11 11:12:40 SUCCESS
ValidateIdTokenNonce
Nonce values match
nonce
eFDVLCggXi
2021-09-11 11:12:40 SUCCESS
ValidateIdTokenACRClaimAgainstRequest
Nothing to check; the conformance suite did not request an acr claim in request object
2021-09-11 11:12:40 SUCCESS
ValidateIdTokenSignature
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.eyJzdWIiOiAiNDZkYzUzMDFjYTNhNTkzODI3YjNhYTE4ZjdlNTk1NjE3MmJiYjUzNzYxNDdlMjM3MjY0NTU0NDMyNmNmZjk1NiIsICJhdXRoX3RpbWUiOiAxNjMxMzU4NzYwLCAiYWNyIjogInVybjpvYXNpczpuYW1lczp0YzpTQU1MOjIuMDphYzpjbGFzc2VzOkludGVybmV0UHJvdG9jb2xQYXNzd29yZCIsICJzY29wZSI6IFsib3BlbmlkIl0sICJqdGkiOiAiMmRhZWRlMTYxMmYxMTFlYzhjOTliMTI1OTQxOTBiMGYiLCAiY2xpZW50X2lkIjogIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciLCAiY19oYXNoIjogIm5VbUstRlZydkVhSGhiSGlXM2NhM2ciLCAibm9uY2UiOiAiZUZEVkxDZ2dYaSIsICJpc3MiOiAiaHR0cHM6Ly84OS40NS4yMzQuMTMzOjQwMDAiLCAiaWF0IjogMTYzMTM1ODc2MCwgImV4cCI6IDE2MzEzNTkwNjAsICJhdWQiOiBbIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciXX0.PAtsOIN0AsEEHTdGYLHSYV7vpDYEsBwxecEt7gwo_BBYx9vYkuIP2c9oCQ4V4gvhNJbwYT7nBkj4kAEMhtI3kYaU1LvB2VUaSkiHgVRV7BMV6RFFQKMsdzpRuQeTJYhtBOrObTpQxebafh9fGm9adVLBnF6YlQOREMiOW60COEsffLVIMXlbzvJIbiayyTABfb89P8X-2_eaejWWTspP7YnwKb-J85AzeXIHiRR6FpMNGphPO9ehZQDQLVpPqaZ3q5hk4QiOTE-xq2Q0DQRLJXyGB4lU2RXCohfDXUj01wP30pwcGtWRzN3Ja8NL00HsHqg5BW1TX2nTHpzKK7-1hg
2021-09-11 11:12:40 SUCCESS
ValidateIdTokenSignatureUsingKid
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.eyJzdWIiOiAiNDZkYzUzMDFjYTNhNTkzODI3YjNhYTE4ZjdlNTk1NjE3MmJiYjUzNzYxNDdlMjM3MjY0NTU0NDMyNmNmZjk1NiIsICJhdXRoX3RpbWUiOiAxNjMxMzU4NzYwLCAiYWNyIjogInVybjpvYXNpczpuYW1lczp0YzpTQU1MOjIuMDphYzpjbGFzc2VzOkludGVybmV0UHJvdG9jb2xQYXNzd29yZCIsICJzY29wZSI6IFsib3BlbmlkIl0sICJqdGkiOiAiMmRhZWRlMTYxMmYxMTFlYzhjOTliMTI1OTQxOTBiMGYiLCAiY2xpZW50X2lkIjogIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciLCAiY19oYXNoIjogIm5VbUstRlZydkVhSGhiSGlXM2NhM2ciLCAibm9uY2UiOiAiZUZEVkxDZ2dYaSIsICJpc3MiOiAiaHR0cHM6Ly84OS40NS4yMzQuMTMzOjQwMDAiLCAiaWF0IjogMTYzMTM1ODc2MCwgImV4cCI6IDE2MzEzNTkwNjAsICJhdWQiOiBbIl9UOWlra1YtUWNYVXpXaUV6TW1fTWciXX0.PAtsOIN0AsEEHTdGYLHSYV7vpDYEsBwxecEt7gwo_BBYx9vYkuIP2c9oCQ4V4gvhNJbwYT7nBkj4kAEMhtI3kYaU1LvB2VUaSkiHgVRV7BMV6RFFQKMsdzpRuQeTJYhtBOrObTpQxebafh9fGm9adVLBnF6YlQOREMiOW60COEsffLVIMXlbzvJIbiayyTABfb89P8X-2_eaejWWTspP7YnwKb-J85AzeXIHiRR6FpMNGphPO9ehZQDQLVpPqaZ3q5hk4QiOTE-xq2Q0DQRLJXyGB4lU2RXCohfDXUj01wP30pwcGtWRzN3Ja8NL00HsHqg5BW1TX2nTHpzKK7-1hg
2021-09-11 11:12:40 SUCCESS
CheckForSubjectInIdToken
Found 'sub' in id_token
sub
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
2021-09-11 11:12:40 SUCCESS
CreateTokenEndpointRequestForAuthorizationCodeGrant
grant_type
authorization_code
code
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
redirect_uri
https://www.certification.openid.net/test/a/idpy/callback
2021-09-11 11:12:40 SUCCESS
AddBasicAuthClientSecretAuthenticationParameters
Added basic authorization header
Authorization
Basic X1Q5aWtrVi1RY1hVeldpRXpNbV9NZzpmMWU5NDRkOTgzNjZiMmI4Mjg5ZTc2M2QyODFmNjhhODZhYjJkNWFkOTdlNjhlYzU4YzJhMjI5ZQ==
2021-09-11 11:12:40
CallTokenEndpoint
HTTP request
request_uri
https://89.45.234.133:4000/token
request_method
POST
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "authorization": "Basic X1Q5aWtrVi1RY1hVeldpRXpNbV9NZzpmMWU5NDRkOTgzNjZiMmI4Mjg5ZTc2M2QyODFmNjhhODZhYjJkNWFkOTdlNjhlYzU4YzJhMjI5ZQ\u003d\u003d",
  "accept-charset": "utf-8",
  "content-type": "application/x-www-form-urlencoded;charset\u003dUTF-8",
  "content-length": "996"
}
request_body
grant_type=authorization_code&code=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%3D%3D&redirect_uri=https%3A%2F%2Fwww.certification.openid.net%2Ftest%2Fa%2Fidpy%2Fcallback
2021-09-11 11:12:41 RESPONSE
CallTokenEndpoint
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "2125",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "set-cookie": "oidc_op\u003d1631358761|oFNxZVoDdClDZG2K|ETGpmcDACH5in5IQYwK+mkyYb/wxoeD0tK8l9a7dFY+0/THUati29W/A2+pExMN3UoE43T75TMOD6BdaemcCpQnuKrcw9efZ4tMYQRAclb+YyrRo+iHMM6XA8FLgwFJI+y6RMyQRvMlQhB8eSeBXtTvb4qRCIlqwTBUPsY8oKjKcyrjeBQOeOJea3U5YqWKX3ParfBTFwH+wVNxp4rgsiY//HaykFGKhSYf89yJsYk5eg+85HvFN6xplflc3VNF2msi1tbYq|49aCiJmzgDHhSHUYS/FUfw\u003d\u003d; Secure; HttpOnly; Path\u003d/; SameSite\u003dLax",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:41 GMT"
}
response_body
{"token_type": "Bearer", "scope": "openid", "access_token": "eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.ykmaLZmOO1dT9ISTBvyfcLe7QgGsaiHiP8kd3whx-JlpwEsq0G7Qzs88xZ5S_P_UFh8RgAZLDA-JtPKhjIzPbg", "expires_in": 1800, "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.1-jWdgq5w1Xl2S7QCzzxlniyHTouJz8BYO_uDhoRDLEvqoOAiD-gxqPJX-OBWWSkJ7B9SZM63on5zsn-MQT5hG4PkEMa078Hkd8HUtYYpSGRKHJzcDwIgJci-4ZXzqNvSeDmTofTlEXBNiFLKEVfKD6xYnicNM1BdAuhABokuJK9pBd-JBdEkwJP1725CJo1PgSG3wwiiYGS7Bt1I9mlNQOp3wI-kS5lazpRQqwixyzn2u8a4fZN4uk3SFCKAnIPX1UfoqOFDv1023_-fmqNurlcmpytHqbXn7RkAQ4n6HXKtmX7IlhLdNy9hZYgyJveONkQKQU2to0sJJYNx6GJiw"}
2021-09-11 11:12:41
CallTokenEndpoint
Token endpoint response
token_endpoint_response
{"token_type": "Bearer", "scope": "openid", "access_token": "eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.ykmaLZmOO1dT9ISTBvyfcLe7QgGsaiHiP8kd3whx-JlpwEsq0G7Qzs88xZ5S_P_UFh8RgAZLDA-JtPKhjIzPbg", "expires_in": 1800, "id_token": "eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.1-jWdgq5w1Xl2S7QCzzxlniyHTouJz8BYO_uDhoRDLEvqoOAiD-gxqPJX-OBWWSkJ7B9SZM63on5zsn-MQT5hG4PkEMa078Hkd8HUtYYpSGRKHJzcDwIgJci-4ZXzqNvSeDmTofTlEXBNiFLKEVfKD6xYnicNM1BdAuhABokuJK9pBd-JBdEkwJP1725CJo1PgSG3wwiiYGS7Bt1I9mlNQOp3wI-kS5lazpRQqwixyzn2u8a4fZN4uk3SFCKAnIPX1UfoqOFDv1023_-fmqNurlcmpytHqbXn7RkAQ4n6HXKtmX7IlhLdNy9hZYgyJveONkQKQU2to0sJJYNx6GJiw"}
2021-09-11 11:12:41 SUCCESS
CallTokenEndpoint
Parsed token endpoint response
token_type
Bearer
scope
openid
access_token
eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.ykmaLZmOO1dT9ISTBvyfcLe7QgGsaiHiP8kd3whx-JlpwEsq0G7Qzs88xZ5S_P_UFh8RgAZLDA-JtPKhjIzPbg
expires_in
1800
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.1-jWdgq5w1Xl2S7QCzzxlniyHTouJz8BYO_uDhoRDLEvqoOAiD-gxqPJX-OBWWSkJ7B9SZM63on5zsn-MQT5hG4PkEMa078Hkd8HUtYYpSGRKHJzcDwIgJci-4ZXzqNvSeDmTofTlEXBNiFLKEVfKD6xYnicNM1BdAuhABokuJK9pBd-JBdEkwJP1725CJo1PgSG3wwiiYGS7Bt1I9mlNQOp3wI-kS5lazpRQqwixyzn2u8a4fZN4uk3SFCKAnIPX1UfoqOFDv1023_-fmqNurlcmpytHqbXn7RkAQ4n6HXKtmX7IlhLdNy9hZYgyJveONkQKQU2to0sJJYNx6GJiw
2021-09-11 11:12:41 SUCCESS
CheckIfTokenEndpointResponseError
No error from token endpoint
2021-09-11 11:12:41 SUCCESS
CheckForAccessTokenValue
Found an access token
access_token
eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.ykmaLZmOO1dT9ISTBvyfcLe7QgGsaiHiP8kd3whx-JlpwEsq0G7Qzs88xZ5S_P_UFh8RgAZLDA-JtPKhjIzPbg
2021-09-11 11:12:41 SUCCESS
ExtractAccessTokenFromTokenResponse
Extracted the access token
value
eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.ykmaLZmOO1dT9ISTBvyfcLe7QgGsaiHiP8kd3whx-JlpwEsq0G7Qzs88xZ5S_P_UFh8RgAZLDA-JtPKhjIzPbg
type
Bearer
2021-09-11 11:12:41 SUCCESS
ExtractExpiresInFromTokenEndpointResponse
Extracted 'expires_in'
expires_in
1800
2021-09-11 11:12:41 SUCCESS
ValidateExpiresIn
expires_in passed all validation checks
expires_in
1800
2021-09-11 11:12:41 INFO
CheckForRefreshTokenValue
Couldn't find refresh token
2021-09-11 11:12:41 SUCCESS
ExtractIdTokenFromTokenResponse
Found and parsed the id_token from token_endpoint_response
value
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.1-jWdgq5w1Xl2S7QCzzxlniyHTouJz8BYO_uDhoRDLEvqoOAiD-gxqPJX-OBWWSkJ7B9SZM63on5zsn-MQT5hG4PkEMa078Hkd8HUtYYpSGRKHJzcDwIgJci-4ZXzqNvSeDmTofTlEXBNiFLKEVfKD6xYnicNM1BdAuhABokuJK9pBd-JBdEkwJP1725CJo1PgSG3wwiiYGS7Bt1I9mlNQOp3wI-kS5lazpRQqwixyzn2u8a4fZN4uk3SFCKAnIPX1UfoqOFDv1023_-fmqNurlcmpytHqbXn7RkAQ4n6HXKtmX7IlhLdNy9hZYgyJveONkQKQU2to0sJJYNx6GJiw
header
{
  "kid": "T3k1MXJDY0NJZWlEbGs3S1lCaWdWRmpXeEdNWWl4TE1WWThrdzZtUXZXQQ",
  "alg": "RS256"
}
claims
{
  "sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956",
  "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword",
  "aud": "_T9ikkV-QcXUzWiEzMm_Mg",
  "auth_time": 1631358760,
  "scope": [
    "openid"
  ],
  "iss": "https://89.45.234.133:4000",
  "exp": 1631359061,
  "nonce": "eFDVLCggXi",
  "iat": 1631358761,
  "jti": "2e34bf3f12f111ec8c99b12594190b0f",
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg"
}
2021-09-11 11:12:41 SUCCESS
ValidateIdToken
ID token iss, aud, exp, iat, auth_time, acr & nbf claims passed validation checks
2021-09-11 11:12:41 SUCCESS
ValidateIdTokenNonce
Nonce values match
nonce
eFDVLCggXi
2021-09-11 11:12:41 SUCCESS
ValidateIdTokenACRClaimAgainstRequest
Nothing to check; the conformance suite did not request an acr claim in request object
2021-09-11 11:12:41 SUCCESS
ValidateIdTokenSignature
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.1-jWdgq5w1Xl2S7QCzzxlniyHTouJz8BYO_uDhoRDLEvqoOAiD-gxqPJX-OBWWSkJ7B9SZM63on5zsn-MQT5hG4PkEMa078Hkd8HUtYYpSGRKHJzcDwIgJci-4ZXzqNvSeDmTofTlEXBNiFLKEVfKD6xYnicNM1BdAuhABokuJK9pBd-JBdEkwJP1725CJo1PgSG3wwiiYGS7Bt1I9mlNQOp3wI-kS5lazpRQqwixyzn2u8a4fZN4uk3SFCKAnIPX1UfoqOFDv1023_-fmqNurlcmpytHqbXn7RkAQ4n6HXKtmX7IlhLdNy9hZYgyJveONkQKQU2to0sJJYNx6GJiw
2021-09-11 11:12:41 SUCCESS
ValidateIdTokenSignatureUsingKid
id_token signature validated
id_token
eyJhbGciOiJSUzI1NiIsImtpZCI6IlQzazFNWEpEWTBOSlpXbEViR3MzUzFsQ2FXZFdSbXBYZUVkTldXbDRURTFXV1RocmR6WnRVWFpYUVEifQ.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.1-jWdgq5w1Xl2S7QCzzxlniyHTouJz8BYO_uDhoRDLEvqoOAiD-gxqPJX-OBWWSkJ7B9SZM63on5zsn-MQT5hG4PkEMa078Hkd8HUtYYpSGRKHJzcDwIgJci-4ZXzqNvSeDmTofTlEXBNiFLKEVfKD6xYnicNM1BdAuhABokuJK9pBd-JBdEkwJP1725CJo1PgSG3wwiiYGS7Bt1I9mlNQOp3wI-kS5lazpRQqwixyzn2u8a4fZN4uk3SFCKAnIPX1UfoqOFDv1023_-fmqNurlcmpytHqbXn7RkAQ4n6HXKtmX7IlhLdNy9hZYgyJveONkQKQU2to0sJJYNx6GJiw
2021-09-11 11:12:41 SUCCESS
CheckForSubjectInIdToken
Found 'sub' in id_token
sub
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
2021-09-11 11:12:41 SUCCESS
VerifyIdTokenSubConsistentHybridFlow
authorization endpoint and token endpoint id_token have same sub
sub_auth_endpoint
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
sub_token_endpoint
46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956
Second authorization: Userinfo endpoint tests
2021-09-11 11:12:41
CallProtectedResourceWithBearerToken
HTTP request
request_uri
https://89.45.234.133:4000/userinfo
request_method
GET
request_headers
{
  "accept": "application/json;charset\u003dUTF-8",
  "authorization": "Bearer eyJhbGciOiJFUzI1NiIsImtpZCI6ImF6UmFUV2xMVFdaVE0wWkxTVUZaTFZOalltNUNkM0ZJU21sTVRWVmtiVlZKYTJGblIwZDVXa1JtTkEifQ.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.ykmaLZmOO1dT9ISTBvyfcLe7QgGsaiHiP8kd3whx-JlpwEsq0G7Qzs88xZ5S_P_UFh8RgAZLDA-JtPKhjIzPbg",
  "accept-charset": "utf-8",
  "content-length": "0"
}
request_body

                                
2021-09-11 11:12:41 RESPONSE
CallProtectedResourceWithBearerToken
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-type": "application/json",
  "content-length": "149",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:41 GMT"
}
response_body
{"sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956", "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"}
2021-09-11 11:12:41 SUCCESS
CallProtectedResourceWithBearerToken
Got a response from the resource endpoint
status
200
endpoint_name
resource
headers
{
  "content-type": "application/json",
  "content-length": "149",
  "pragma": "no-cache",
  "cache-control": "no-store",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:12:41 GMT"
}
body
{"sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956", "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword"}
2021-09-11 11:12:41 SUCCESS
CheckSecondIdTokenAuthTimeIsLaterIfPresent
auth_time is later in the second id_token
first_id_token
{
  "sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956",
  "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword",
  "aud": "_T9ikkV-QcXUzWiEzMm_Mg",
  "auth_time": 1631358735,
  "scope": [
    "openid"
  ],
  "iss": "https://89.45.234.133:4000",
  "exp": 1631359036,
  "nonce": "7AUPkKFOZ8",
  "iat": 1631358736,
  "jti": "1f636e8912f111ec8c99b12594190b0f",
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg"
}
second_id_token
{
  "sub": "46dc5301ca3a593827b3aa18f7e5956172bbb5376147e2372645544326cff956",
  "acr": "urn:oasis:names:tc:SAML:2.0:ac:classes:InternetProtocolPassword",
  "aud": "_T9ikkV-QcXUzWiEzMm_Mg",
  "auth_time": 1631358760,
  "scope": [
    "openid"
  ],
  "iss": "https://89.45.234.133:4000",
  "exp": 1631359061,
  "nonce": "eFDVLCggXi",
  "iat": 1631358761,
  "jti": "2e34bf3f12f111ec8c99b12594190b0f",
  "client_id": "_T9ikkV-QcXUzWiEzMm_Mg"
}
2021-09-11 11:13:12 FINISHED
oidcc-prompt-login
Test has run to completion
testmodule_result
REVIEW
Unregister dynamically registered client
2021-09-11 11:13:12
UnregisterDynamicallyRegisteredClient
HTTP request
request_uri
https://89.45.234.133:4000/registration_api?client_id=_T9ikkV-QcXUzWiEzMm_Mg
request_method
DELETE
request_headers
{
  "accept": "application/json",
  "accept-charset": "utf-8",
  "authorization": "Bearer chEohkyn9_giXMvOTdDeOYXgF2yhtPUnUrP1A8kEb2s",
  "content-length": "0"
}
request_body

                                
2021-09-11 11:13:13 RESPONSE
UnregisterDynamicallyRegisteredClient
HTTP response
response_status_code
405 METHOD_NOT_ALLOWED
response_status_text
METHOD NOT ALLOWED
response_headers
{
  "content-type": "text/html; charset\u003dutf-8",
  "allow": "HEAD, OPTIONS, GET",
  "content-length": "178",
  "server": "Werkzeug/1.0.1 Python/3.8.10",
  "date": "Sat, 11 Sep 2021 11:13:13 GMT"
}
response_body
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<title>405 Method Not Allowed</title>
<h1>Method Not Allowed</h1>
<p>The method is not allowed for the requested URL.</p>
2021-09-11 11:13:13 INFO
UnregisterDynamicallyRegisteredClient
Error when calling registration_client_uri
code
405
body
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<title>405 Method Not Allowed</title>
<h1>Method Not Allowed</h1>
<p>The method is not allowed for the requested URL.</p>
status
METHOD NOT ALLOWED
2021-09-11 11:13:18
TEST-RUNNER
Alias has now been claimed by another test
alias
idpy
new_test_id
IgHG5luwW63Looy
Test Results