Test Summary

Test Results

Expand All Collapse All
All times are UTC
2022-01-14 11:34:53 INFO
TEST-RUNNER
Test instance z0WwoLDKwEJNgoY created
baseUrl
https://www.certification.openid.net/test/a/SafraRPTest
variant
{
  "client_auth_type": "private_key_jwt",
  "fapi_auth_request_method": "pushed",
  "fapi_profile": "openbanking_brazil",
  "fapi_jarm_type": "oidc",
  "fapi_response_mode": "plain_response"
}
alias
SafraRPTest
description
Safra Relying Party Test
planId
wPwmxGSXoiGOs
config
{
  "alias": "SafraRPTest",
  "description": "Safra Relying Party Test",
  "server": {
    "jwks": {
      "keys": [
        {
          "p": "_QaFFuyZriEWtbiKexy7pIYicgU0ePMepvyNuiiFqlsUFQ24q9gp_iWECDhi8qqss__i1LW_eHQATKWfqUc6HdDY-ickJXvVktrQiT-buvJ24iTtK_NooPMKQW976NIX39_sEPJ6ceo9ZDFxTTCkmJus3eXDJmRZT2YzSZJcvcc",
          "kty": "RSA",
          "q": "3x1_dyovnWXSr7y7ufe6AHUV0kHBYVrGW2vdNZxKrrgBW5r2mm93NnHsrG-mJlzW7kG_jR41bWf74sucGdwXTx96riRVy8bov9SzPCDl9_QCHzPpqZOxjngfzQYq1L1qJA2BAie0Sq6YZhgLJ1fWPLutEO5soIYAkLXSJ9IVb00",
          "d": "ZvivfZxJMbbdTQmxyE0lmE6ZuH8cMQOLyZxdaA5pNwm7ZEnPBEftZs8aR9ijhCDWMieui3h--rXwlXqbEm3g1sVgQ-WKTFV-NLKaJC1h-EU5HKdlOflstr7x57zhKp60ZIK69GyEXyJccUfzcD32u8raec9NplQ2MqS5MA1lnQFlocFoX1RNU4tSpEdJQq2UzqtX5WPhc88A6fTc1xu2fA5wyxzZu7fUjIETzLimcu-dDaEvvgm7c_A1ulm8EQuCN10k3FrIIe9RfuXHyxh9Rcd0aiIP9qwitxd5Cl0io7zby8MBIAaSei2co7y4tciBt4AfnzpBlGbtjgfr2gxD0Q",
          "e": "AQAB",
          "alg": "PS256",
          "use": "sig",
          "kid": "X5d4vFYfLxaG1gg8_l3bFYFhUaUVmE6PaEsRWX2EYqM",
          "qi": "eHhOb5NUDfMGXwNscjEcMrMFS425qsoJAXfGJ10hm8svZOkNYgVpb7Hs7oT8XytanRl0Gk8gKH0yhvya65B5ipyby17uBMkikNN-EeYoY2AkvEfM_nO0dvHbDdF11rkM5Q_SEDlGmojxnx4_Euj8WeuSgcwiCQkR23aZlQGx1Mg",
          "dp": "bQ9aXj8tHnj0qO8aAWapGokWX78OlvNzytYg4JSGyJ7pUQnRB4Ds2Lai6kgjniUiu5MX2kdceDbHykG5R-WDj0Ztv6UPV3jA3cOjDwVzwmiwBVmVQNRxzK31Ra8f4YJs9_o0bjmVvXQRchY9l9_Xkk_Hev2F2A540Fhk0tlbUBE",
          "dq": "XPYDZ_kxwZjtQb-XUBLBcvNV1jcDhba2stysXGv0SfvsxOg6G3qZ5xtsiyQxzAYen0LRttCBXkZXEtXXAodLRvJMwUXuYWtNCrBqxYDHkJogUDPnBXq-Hig6x8fsDJunH8JooCc-3WcFpHQcIZZdcwyXPVi59eAfWCwJlgHYYHk",
          "n": "3IXVqA9zCrmaz30WWjzZexdSuhagP_oVfgB-Y5S7XXeHhU4tho7c3wcNhsrGCKLYSf_47rV78-2OfhPY9WrSJVyqIXoaniwoTnD9splF90J7yog9LgP4kqkWl6wm8gdR5C-UC4Gnl0D2cZKnE6MZ7k_b5nM0ZfC-7H_bO13B4aYpu069th7hFWGK7ps65uiDxcQGYP3oSeqahE5qwfUef2QMkhyVtM_nWP9OVAzOGtJ8km4TdCrq9aF78No9u2YQuaUOJgeOnwKMBjmgEwcuaQe9DEQFXhzBtRmPlml2pTy2QDvxe1HgOTOsnh9igFvX70AGroY3PFY-lJAxC4Fd2w",
          "x5c": [
            "MIIGqzCCBZOgAwIBAgIUdUCw8bQZidnZ6uERKJuN9u4RGvcwDQYJKoZIhvcNAQELBQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwxFTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNBTkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMDgxNjA5NTUwMFoXDTIyMDkxNTA5NTUwMFowgacxCzAJBgNVBAYTAkJSMRMwEQYDVQQKEwpJQ1AtQnJhc2lsMS8wDAYDVQQLEwUxMjM0NTAOBgNVBAsTB2NlcnRtYW4wDwYDVQQLEwhhZ29vZG9uZTEcMBoGA1UEAxMTT3BlbiBCYW5raW5nIEJyYXNpbDE0MDIGCgmSJomT8ixkAQETJDc0ZTkyOWQ5LTMzYjYtNGQ4NS04YmE3LWMxNDZjODY3YTgxNzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANyF1agPcwq5ms99Flo82XsXUroWoD/6FX4AfmOUu113h4VOLYaO3N8HDYbKxgii2En/+O61e/Ptjn4T2PVq0iVcqiF6Gp4sKE5w/bKZRfdCe8qIPS4D+JKpFpesJvIHUeQvlAuBp5dA9nGSpxOjGe5P2+ZzNGXwvux/2ztdweGmKbtOvbYe4RVhiu6bOubog8XEBmD96EnqmoROasH1Hn9kDJIclbTP51j/TlQMzhrSfJJuE3Qq6vWhe/DaPbtmELmlDiYHjp8CjAY5oBMHLmkHvQxEBV4cwbUZj5ZpdqU8tkA78XtR4DkzrJ4fYoBb1+9ABq6GNzxWPpSQMQuBXdsCAwEAAaOCAwIwggL+MAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFJwv7oHX2exZL304ru+4eGVypHlxMB8GA1UdIwQYMBaAFIZ/WK0X9YK2TrQFs/uwzhFD30y+MEwGCCsGAQUFBwEBBEAwPjA8BggrBgEFBQcwAYYwaHR0cDovL29jc3Auc2FuZGJveC5wa2kub3BlbmJhbmtpbmdicmFzaWwub3JnLmJyMEsGA1UdHwREMEIwQKA+oDyGOmh0dHA6Ly9jcmwuc2FuZGJveC5wa2kub3BlbmJhbmtpbmdicmFzaWwub3JnLmJyL2lzc3Vlci5jcmwwXgYDVR0RBFcwVaAZBgVgTAEDAqAQDA5NaWNoYWVsIEZyYXNlcqAYBgVgTAEDA6APDA0xMzM1MzIzNjAwMTg5oA0GBWBMAQMEoAQMAm5voA8GBWBMAQMHoAYMBGFsb3QwDgYDVR0PAQH/BAQDAgbAMIIBoQYDVR0gBIIBmDCCAZQwggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENlcnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMgdXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsgU2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQGCCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAtKn/QnJqKLp52YB14x+M21qwz67utFkWjhauQe0elXupjY5NWZb5wLrGYNOZQzRe2JRzcBbGN6P7lCweRfxMkSGh9YrXbrkBXLEPtLHpTVEy65v1tWl02lC+ooVPyQpSjAQL0L69OQ7s7rnIXyb3rkSUzuGSxsLU1AXpWj0oYFB4wdeIdPAVPs83frC5s4kz42JruSAE2vsbvQURTVPChh+hO6+R6Irz+ZEZ1NSgjQkxvOXHW53CkXZSjjHbAB/nbJYi7YyK7kck99r38Ba/WBfIfywdFVVYfiiW5TS6XbQeVeilmmt5MLxBz96FxR6E6WR+cQwybEe94Fb/jD6xHA\u003d\u003d"
          ]
        },
        {
          "p": "6-RGunw1LGXpsGIabzcG8n_ITbahS9waTzjcwLkzjWjyR5hxnTSrCMas9EsOuIt3qvkdf02psgwi-J0ZX680ujaXdeiPAeuOUbsLPBOhRuu-ySXxMTT7uiwWJmF5LtBx8Qd3hRV2sd9zOhYzSohcmWp8w_uKTOYrFzGtWMvlGic",
          "kty": "RSA",
          "q": "vn3cUU9RFc7pB3fjiEPGwYGA_h8f2X6dOqy-JYIMIiuYhPq6cT8xIlE-sHs58kZzC1QbOBc4y-qRyqj1L4StPaYH4mtJU0s_6A_b9Cai96yzYYmMr92be2nCFMxBpmpBhN21AIdGc640OxgWMdz5OVo455v1uIEQGPr2aDpOzVs",
          "d": "QrIJ9tPG7pSrt1KKSU-9EbAq-hU92FzEV9GwzuG_dbBPyRLYNVfAz-Yb8ug3YLuqec_kcB5JCep7QkYHgpNdX5WXFxARCpXa-J7Xq50oBdiAS2ehLpnYHXpJI7HqOcH9ASZML_MXjI8e_EpsI7Yk6xJ9qxk8bXGupw0C6anwL3NBe232zA7I1FnwL9tpZVOLPupeok7HMRbFc6QSR3dA54zJmkyEbyOSqzRqCK_g7AB_RcMImN0SoCg0epxZjrculIXPG0Gl1T3TG3WY-CBUtAkI1chFMGCgYF_v-FMSun8N6igilPC5O683BMcJoTK745khMCv7FcSCSFVh0H5vKQ",
          "e": "AQAB",
          "use": "enc",
          "kid": "0fe502dd-14f0-4f45-80f9-feb9a216f996",
          "qi": "W6TMI3L-Ob-Jx61TdYqN5gBoBsWF6KWuCmiE9ZiwJiMVCv5ddEbFafBuiIQgRnby1VpnH9j5KVb5PT_V78ohKFmpfL7ErXQerf_pJkEtvgK9lQta1EM1HMoShrJ4GdHPym_BZzDDmt6njvwTfSg95y28h-j5epuywcwu6TwAUA8",
          "dp": "a9rjD-8srNEoKVKhvYoObiBI6GeBllrb2K8qGCBV1ulOJbgo8nUbYpbci5Ip9-0k2RKwDv3mghcUglHqQRqt5BqD5BBiGsGmP-5is6RSEEhH4lar0hDkq_nuYrwcmXALOOZuGnZ239tIJx3xc7mnhSnwQ_emA4UV3LQFC12mse8",
          "alg": "RSA-OAEP",
          "dq": "Qk8TiyY-BoZg7Z2ZEYzuOdu3qD3zW0VMu-j3w5yyVo6wZ9HTZqplkxmO5eXvNNu7Hj1nwC2tMqZzm4UW3DSmDWinI_TOsHToSQKEQUfVwLtYMeKsm2dbwSj-SzkSvTgNmI-IeyebqZcBTXTD_RV7l7BFULIkZdZfYSKy9XMejTM",
          "n": "r4dl-ApW6c-fvDbfSVxHpdV8zi8VQW4b9-uHMRq7dzqCkvP8OAG1R3plSr1N6fL_YLiIr9y621XkyRiMEKR7-DeqGsLf2ZTaqrZ1LfYgjsc2i9o3NSOeSgBwKGmT7h1OgxZSbhLzo7Xaktu3CCUZCOWLzs7LKo_CvKkcTF7tPhK9jYjdTsdsnS0RJOPjYQe7JO83Mvhd1Ty3F-Qycd-cKKMSjcQRiHt9jKd09kA2fKVlFwbm2M1PM3NdtnMaOUw31-XC4ixay47XTMqnmX7-op7qYV9wXbeZmjTsAKFuTGwJiGJrOTfqciDLBW8IpGC2BzFJ5rYmRu0kAttpvkOG3Q"
        }
      ]
    }
  },
  "client": {
    "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
    "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
    "certificate": "-----BEGIN CERTIFICATE-----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\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
    "jwks": {
      "keys": [
        {
          "kty": "RSA",
          "e": "AQAB",
          "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
          "alg": "PS256",
          "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ"
        }
      ]
    }
  },
  "client2": {
    "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
    "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
    "id_token_encrypted_response_alg": "RSA-OAEP",
    "certificate": "-----BEGIN CERTIFICATE-----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\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
    "jwks": {
      "keys": [
        {
          "kty": "RSA",
          "e": "AQAB",
          "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
          "alg": "PS256",
          "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ",
          "use": "sig"
        },
        {
          "kty": "RSA",
          "e": "AQAB",
          "kid": "o_xvg824afVVwHrd1A7-zOGeH2yA0Y5aXdpOUOzj0dM",
          "n": "2ACeyabQj1JtNk8eKPs0dtPohlXzAjEzmn00NvZIDmAJP8qXgwjXmbeJJIpf2czYx8AOjWd4FjFdPPAubnCeAJkvG5xOF328KMXmpQFgmtKRaFhHgUCvmW_0uHYCvi-sR5ClYhJUnULmLCrt8q2hbODLuAuLpI4QsWtwJb3EsOjwjGCeSylm31UKL7aMuaPrzrtSijSkk2mBEpkA6yDeFXg8hUmmLbTdIHfhzYnEZ6KW8n1nJp3UcFXcMlIE09meffwqXHSrovJIk9qysUTv5hdatD0dZZDxPRQQ0qPN3wK8d8l4FMjJqHY6ifuV_qZu8WUSfe0VcCKDIez0X-C1xw",
          "use": "enc",
          "alg": "PS256"
        }
      ]
    },
    "id_token_encrypted_response_enc": "A256GCM"
  },
  "directory": {
    "keystore": "https://keystore.sandbox.directory.openbankingbrasil.org.br/"
  }
}
testName
fapi1-advanced-final-client-test-encrypted-idtoken
2022-01-14 11:34:53 SUCCESS
FAPIBrazilGenerateServerConfiguration
Created server configuration
server
{
  "issuer": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/SafraRPTest/jwks",
  "registration_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/register",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/userinfo",
  "mtls_endpoint_aliases": {
    "token_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "registration_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/register",
    "userinfo_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/userinfo"
  },
  "tls_client_certificate_bound_access_tokens": true,
  "request_parameter_supported": true
}
issuer
https://www.certification.openid.net/test/a/SafraRPTest/
discoveryUrl
https://www.certification.openid.net/test/a/SafraRPTest/.well-known/openid-configuration
2022-01-14 11:34:53 SUCCESS
LoadServerJWKs
Parsed public and private JWK sets
server_jwks
{
  "keys": [
    {
      "d": "ZvivfZxJMbbdTQmxyE0lmE6ZuH8cMQOLyZxdaA5pNwm7ZEnPBEftZs8aR9ijhCDWMieui3h--rXwlXqbEm3g1sVgQ-WKTFV-NLKaJC1h-EU5HKdlOflstr7x57zhKp60ZIK69GyEXyJccUfzcD32u8raec9NplQ2MqS5MA1lnQFlocFoX1RNU4tSpEdJQq2UzqtX5WPhc88A6fTc1xu2fA5wyxzZu7fUjIETzLimcu-dDaEvvgm7c_A1ulm8EQuCN10k3FrIIe9RfuXHyxh9Rcd0aiIP9qwitxd5Cl0io7zby8MBIAaSei2co7y4tciBt4AfnzpBlGbtjgfr2gxD0Q",
      "e": "AQAB",
      "use": "sig",
      "kid": "X5d4vFYfLxaG1gg8_l3bFYFhUaUVmE6PaEsRWX2EYqM",
      "x5c": [
        "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\u003d\u003d"
      ],
      "dp": "bQ9aXj8tHnj0qO8aAWapGokWX78OlvNzytYg4JSGyJ7pUQnRB4Ds2Lai6kgjniUiu5MX2kdceDbHykG5R-WDj0Ztv6UPV3jA3cOjDwVzwmiwBVmVQNRxzK31Ra8f4YJs9_o0bjmVvXQRchY9l9_Xkk_Hev2F2A540Fhk0tlbUBE",
      "dq": "XPYDZ_kxwZjtQb-XUBLBcvNV1jcDhba2stysXGv0SfvsxOg6G3qZ5xtsiyQxzAYen0LRttCBXkZXEtXXAodLRvJMwUXuYWtNCrBqxYDHkJogUDPnBXq-Hig6x8fsDJunH8JooCc-3WcFpHQcIZZdcwyXPVi59eAfWCwJlgHYYHk",
      "n": "3IXVqA9zCrmaz30WWjzZexdSuhagP_oVfgB-Y5S7XXeHhU4tho7c3wcNhsrGCKLYSf_47rV78-2OfhPY9WrSJVyqIXoaniwoTnD9splF90J7yog9LgP4kqkWl6wm8gdR5C-UC4Gnl0D2cZKnE6MZ7k_b5nM0ZfC-7H_bO13B4aYpu069th7hFWGK7ps65uiDxcQGYP3oSeqahE5qwfUef2QMkhyVtM_nWP9OVAzOGtJ8km4TdCrq9aF78No9u2YQuaUOJgeOnwKMBjmgEwcuaQe9DEQFXhzBtRmPlml2pTy2QDvxe1HgOTOsnh9igFvX70AGroY3PFY-lJAxC4Fd2w",
      "p": "_QaFFuyZriEWtbiKexy7pIYicgU0ePMepvyNuiiFqlsUFQ24q9gp_iWECDhi8qqss__i1LW_eHQATKWfqUc6HdDY-ickJXvVktrQiT-buvJ24iTtK_NooPMKQW976NIX39_sEPJ6ceo9ZDFxTTCkmJus3eXDJmRZT2YzSZJcvcc",
      "kty": "RSA",
      "q": "3x1_dyovnWXSr7y7ufe6AHUV0kHBYVrGW2vdNZxKrrgBW5r2mm93NnHsrG-mJlzW7kG_jR41bWf74sucGdwXTx96riRVy8bov9SzPCDl9_QCHzPpqZOxjngfzQYq1L1qJA2BAie0Sq6YZhgLJ1fWPLutEO5soIYAkLXSJ9IVb00",
      "qi": "eHhOb5NUDfMGXwNscjEcMrMFS425qsoJAXfGJ10hm8svZOkNYgVpb7Hs7oT8XytanRl0Gk8gKH0yhvya65B5ipyby17uBMkikNN-EeYoY2AkvEfM_nO0dvHbDdF11rkM5Q_SEDlGmojxnx4_Euj8WeuSgcwiCQkR23aZlQGx1Mg",
      "alg": "PS256"
    },
    {
      "p": "6-RGunw1LGXpsGIabzcG8n_ITbahS9waTzjcwLkzjWjyR5hxnTSrCMas9EsOuIt3qvkdf02psgwi-J0ZX680ujaXdeiPAeuOUbsLPBOhRuu-ySXxMTT7uiwWJmF5LtBx8Qd3hRV2sd9zOhYzSohcmWp8w_uKTOYrFzGtWMvlGic",
      "kty": "RSA",
      "q": "vn3cUU9RFc7pB3fjiEPGwYGA_h8f2X6dOqy-JYIMIiuYhPq6cT8xIlE-sHs58kZzC1QbOBc4y-qRyqj1L4StPaYH4mtJU0s_6A_b9Cai96yzYYmMr92be2nCFMxBpmpBhN21AIdGc640OxgWMdz5OVo455v1uIEQGPr2aDpOzVs",
      "d": "QrIJ9tPG7pSrt1KKSU-9EbAq-hU92FzEV9GwzuG_dbBPyRLYNVfAz-Yb8ug3YLuqec_kcB5JCep7QkYHgpNdX5WXFxARCpXa-J7Xq50oBdiAS2ehLpnYHXpJI7HqOcH9ASZML_MXjI8e_EpsI7Yk6xJ9qxk8bXGupw0C6anwL3NBe232zA7I1FnwL9tpZVOLPupeok7HMRbFc6QSR3dA54zJmkyEbyOSqzRqCK_g7AB_RcMImN0SoCg0epxZjrculIXPG0Gl1T3TG3WY-CBUtAkI1chFMGCgYF_v-FMSun8N6igilPC5O683BMcJoTK745khMCv7FcSCSFVh0H5vKQ",
      "e": "AQAB",
      "use": "enc",
      "kid": "0fe502dd-14f0-4f45-80f9-feb9a216f996",
      "qi": "W6TMI3L-Ob-Jx61TdYqN5gBoBsWF6KWuCmiE9ZiwJiMVCv5ddEbFafBuiIQgRnby1VpnH9j5KVb5PT_V78ohKFmpfL7ErXQerf_pJkEtvgK9lQta1EM1HMoShrJ4GdHPym_BZzDDmt6njvwTfSg95y28h-j5epuywcwu6TwAUA8",
      "dp": "a9rjD-8srNEoKVKhvYoObiBI6GeBllrb2K8qGCBV1ulOJbgo8nUbYpbci5Ip9-0k2RKwDv3mghcUglHqQRqt5BqD5BBiGsGmP-5is6RSEEhH4lar0hDkq_nuYrwcmXALOOZuGnZ239tIJx3xc7mnhSnwQ_emA4UV3LQFC12mse8",
      "alg": "RSA-OAEP",
      "dq": "Qk8TiyY-BoZg7Z2ZEYzuOdu3qD3zW0VMu-j3w5yyVo6wZ9HTZqplkxmO5eXvNNu7Hj1nwC2tMqZzm4UW3DSmDWinI_TOsHToSQKEQUfVwLtYMeKsm2dbwSj-SzkSvTgNmI-IeyebqZcBTXTD_RV7l7BFULIkZdZfYSKy9XMejTM",
      "n": "r4dl-ApW6c-fvDbfSVxHpdV8zi8VQW4b9-uHMRq7dzqCkvP8OAG1R3plSr1N6fL_YLiIr9y621XkyRiMEKR7-DeqGsLf2ZTaqrZ1LfYgjsc2i9o3NSOeSgBwKGmT7h1OgxZSbhLzo7Xaktu3CCUZCOWLzs7LKo_CvKkcTF7tPhK9jYjdTsdsnS0RJOPjYQe7JO83Mvhd1Ty3F-Qycd-cKKMSjcQRiHt9jKd09kA2fKVlFwbm2M1PM3NdtnMaOUw31-XC4ixay47XTMqnmX7-op7qYV9wXbeZmjTsAKFuTGwJiGJrOTfqciDLBW8IpGC2BzFJ5rYmRu0kAttpvkOG3Q"
    }
  ]
}
server_encryption_keys
{
  "keys": [
    {
      "p": "6-RGunw1LGXpsGIabzcG8n_ITbahS9waTzjcwLkzjWjyR5hxnTSrCMas9EsOuIt3qvkdf02psgwi-J0ZX680ujaXdeiPAeuOUbsLPBOhRuu-ySXxMTT7uiwWJmF5LtBx8Qd3hRV2sd9zOhYzSohcmWp8w_uKTOYrFzGtWMvlGic",
      "kty": "RSA",
      "q": "vn3cUU9RFc7pB3fjiEPGwYGA_h8f2X6dOqy-JYIMIiuYhPq6cT8xIlE-sHs58kZzC1QbOBc4y-qRyqj1L4StPaYH4mtJU0s_6A_b9Cai96yzYYmMr92be2nCFMxBpmpBhN21AIdGc640OxgWMdz5OVo455v1uIEQGPr2aDpOzVs",
      "d": "QrIJ9tPG7pSrt1KKSU-9EbAq-hU92FzEV9GwzuG_dbBPyRLYNVfAz-Yb8ug3YLuqec_kcB5JCep7QkYHgpNdX5WXFxARCpXa-J7Xq50oBdiAS2ehLpnYHXpJI7HqOcH9ASZML_MXjI8e_EpsI7Yk6xJ9qxk8bXGupw0C6anwL3NBe232zA7I1FnwL9tpZVOLPupeok7HMRbFc6QSR3dA54zJmkyEbyOSqzRqCK_g7AB_RcMImN0SoCg0epxZjrculIXPG0Gl1T3TG3WY-CBUtAkI1chFMGCgYF_v-FMSun8N6igilPC5O683BMcJoTK745khMCv7FcSCSFVh0H5vKQ",
      "e": "AQAB",
      "use": "enc",
      "kid": "0fe502dd-14f0-4f45-80f9-feb9a216f996",
      "qi": "W6TMI3L-Ob-Jx61TdYqN5gBoBsWF6KWuCmiE9ZiwJiMVCv5ddEbFafBuiIQgRnby1VpnH9j5KVb5PT_V78ohKFmpfL7ErXQerf_pJkEtvgK9lQta1EM1HMoShrJ4GdHPym_BZzDDmt6njvwTfSg95y28h-j5epuywcwu6TwAUA8",
      "dp": "a9rjD-8srNEoKVKhvYoObiBI6GeBllrb2K8qGCBV1ulOJbgo8nUbYpbci5Ip9-0k2RKwDv3mghcUglHqQRqt5BqD5BBiGsGmP-5is6RSEEhH4lar0hDkq_nuYrwcmXALOOZuGnZ239tIJx3xc7mnhSnwQ_emA4UV3LQFC12mse8",
      "alg": "RSA-OAEP",
      "dq": "Qk8TiyY-BoZg7Z2ZEYzuOdu3qD3zW0VMu-j3w5yyVo6wZ9HTZqplkxmO5eXvNNu7Hj1nwC2tMqZzm4UW3DSmDWinI_TOsHToSQKEQUfVwLtYMeKsm2dbwSj-SzkSvTgNmI-IeyebqZcBTXTD_RV7l7BFULIkZdZfYSKy9XMejTM",
      "n": "r4dl-ApW6c-fvDbfSVxHpdV8zi8VQW4b9-uHMRq7dzqCkvP8OAG1R3plSr1N6fL_YLiIr9y621XkyRiMEKR7-DeqGsLf2ZTaqrZ1LfYgjsc2i9o3NSOeSgBwKGmT7h1OgxZSbhLzo7Xaktu3CCUZCOWLzs7LKo_CvKkcTF7tPhK9jYjdTsdsnS0RJOPjYQe7JO83Mvhd1Ty3F-Qycd-cKKMSjcQRiHt9jKd09kA2fKVlFwbm2M1PM3NdtnMaOUw31-XC4ixay47XTMqnmX7-op7qYV9wXbeZmjTsAKFuTGwJiGJrOTfqciDLBW8IpGC2BzFJ5rYmRu0kAttpvkOG3Q"
    }
  ]
}
server_public_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "X5d4vFYfLxaG1gg8_l3bFYFhUaUVmE6PaEsRWX2EYqM",
      "x5c": [
        "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\u003d\u003d"
      ],
      "alg": "PS256",
      "n": "3IXVqA9zCrmaz30WWjzZexdSuhagP_oVfgB-Y5S7XXeHhU4tho7c3wcNhsrGCKLYSf_47rV78-2OfhPY9WrSJVyqIXoaniwoTnD9splF90J7yog9LgP4kqkWl6wm8gdR5C-UC4Gnl0D2cZKnE6MZ7k_b5nM0ZfC-7H_bO13B4aYpu069th7hFWGK7ps65uiDxcQGYP3oSeqahE5qwfUef2QMkhyVtM_nWP9OVAzOGtJ8km4TdCrq9aF78No9u2YQuaUOJgeOnwKMBjmgEwcuaQe9DEQFXhzBtRmPlml2pTy2QDvxe1HgOTOsnh9igFvX70AGroY3PFY-lJAxC4Fd2w"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "enc",
      "kid": "0fe502dd-14f0-4f45-80f9-feb9a216f996",
      "alg": "RSA-OAEP",
      "n": "r4dl-ApW6c-fvDbfSVxHpdV8zi8VQW4b9-uHMRq7dzqCkvP8OAG1R3plSr1N6fL_YLiIr9y621XkyRiMEKR7-DeqGsLf2ZTaqrZ1LfYgjsc2i9o3NSOeSgBwKGmT7h1OgxZSbhLzo7Xaktu3CCUZCOWLzs7LKo_CvKkcTF7tPhK9jYjdTsdsnS0RJOPjYQe7JO83Mvhd1Ty3F-Qycd-cKKMSjcQRiHt9jKd09kA2fKVlFwbm2M1PM3NdtnMaOUw31-XC4ixay47XTMqnmX7-op7qYV9wXbeZmjTsAKFuTGwJiGJrOTfqciDLBW8IpGC2BzFJ5rYmRu0kAttpvkOG3Q"
    }
  ]
}
2022-01-14 11:34:53 SUCCESS
ValidateServerJWKs
Valid server JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2022-01-14 11:34:53
SetServerSigningAlgToPS256
Successfully set signing algorithm to PS256
2022-01-14 11:34:53
FAPIBrazilSetGrantTypesSupportedInServerConfiguration
Successfully set grant_types_supported
server
{
  "issuer": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/SafraRPTest/jwks",
  "registration_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/register",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/userinfo",
  "mtls_endpoint_aliases": {
    "token_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "registration_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/register",
    "userinfo_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/userinfo"
  },
  "tls_client_certificate_bound_access_tokens": true,
  "request_parameter_supported": true,
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "client_credentials",
    "refresh_token"
  ]
}
2022-01-14 11:34:53
AddClaimsParameterSupportedTrueToServerConfiguration
Successfully added claims_parameter_supported to server configuration
server
{
  "issuer": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/SafraRPTest/jwks",
  "registration_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/register",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/userinfo",
  "mtls_endpoint_aliases": {
    "token_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "registration_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/register",
    "userinfo_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/userinfo"
  },
  "tls_client_certificate_bound_access_tokens": true,
  "request_parameter_supported": true,
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "client_credentials",
    "refresh_token"
  ],
  "claims_parameter_supported": true
}
2022-01-14 11:34:53
FAPIBrazilAddBrazilSpecificSettingsToServerConfiguration
Added open banking Brazil specific server settings
server
{
  "issuer": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/SafraRPTest/jwks",
  "registration_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/register",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/userinfo",
  "mtls_endpoint_aliases": {
    "token_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "registration_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/register",
    "userinfo_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/userinfo"
  },
  "tls_client_certificate_bound_access_tokens": true,
  "request_parameter_supported": true,
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "client_credentials",
    "refresh_token"
  ],
  "claims_parameter_supported": true,
  "request_object_encryption_alg_values_supported": [
    "RSA-OAEP"
  ],
  "request_object_encryption_enc_values_supported": [
    "A256GCM"
  ],
  "claims_supported": [
    "cpf",
    "cnpj",
    "acr"
  ],
  "acr_values_supported": [
    "urn:brasil:openbanking:loa2",
    "urn:brasil:openbanking:loa3"
  ],
  "id_token_signing_alg_values_supported": [
    "PS256"
  ],
  "request_object_signing_alg_values_supported": [
    "PS256"
  ],
  "scopes_supported": [
    "openid",
    "phone",
    "profile",
    "email",
    "address",
    "offline_access",
    "consents",
    "resources",
    "payments"
  ]
}
2022-01-14 11:34:53
SetTokenEndpointAuthMethodsSupportedToPrivateKeyJWTOnly
Changed token_endpoint_auth_methods_supported to private_key_jwt only in server configuration
server_configuration
{
  "issuer": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/SafraRPTest/jwks",
  "registration_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/register",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/userinfo",
  "mtls_endpoint_aliases": {
    "token_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "registration_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/register",
    "userinfo_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/userinfo"
  },
  "tls_client_certificate_bound_access_tokens": true,
  "request_parameter_supported": true,
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "client_credentials",
    "refresh_token"
  ],
  "claims_parameter_supported": true,
  "request_object_encryption_alg_values_supported": [
    "RSA-OAEP"
  ],
  "request_object_encryption_enc_values_supported": [
    "A256GCM"
  ],
  "claims_supported": [
    "cpf",
    "cnpj",
    "acr"
  ],
  "acr_values_supported": [
    "urn:brasil:openbanking:loa2",
    "urn:brasil:openbanking:loa3"
  ],
  "id_token_signing_alg_values_supported": [
    "PS256"
  ],
  "request_object_signing_alg_values_supported": [
    "PS256"
  ],
  "scopes_supported": [
    "openid",
    "phone",
    "profile",
    "email",
    "address",
    "offline_access",
    "consents",
    "resources",
    "payments"
  ],
  "token_endpoint_auth_methods_supported": [
    "private_key_jwt"
  ]
}
2022-01-14 11:34:53
AddPushedAuthorizationRequestEndpointToServerConfig
Added pushed_authorization_request_endpoint to server configuration
endpoint
https://www.certification.openid.net/test/a/SafraRPTest/par
2022-01-14 11:34:53
AddRequirePushedAuthorizationRequestsToServerConfig
Added require_pushed_authorization_requests to server configuration
value
true
2022-01-14 11:34:53 SUCCESS
AddResponseTypeCodeIdTokenToServerConfiguration
Added code id_token as response type supported
response_types_supported
[
  "code id_token"
]
2022-01-14 11:34:53 SUCCESS
FAPIBrazilAddTokenEndpointAuthSigningAlgValuesSupportedToServer
Set token_endpoint_auth_signing_alg_values_supported
values
[
  "PS256"
]
2022-01-14 11:34:53 SUCCESS
CheckServerConfiguration
Found required server configuration keys
required
[
  "authorization_endpoint",
  "token_endpoint",
  "issuer"
]
2022-01-14 11:34:53 SUCCESS
FAPIEnsureMinimumServerKeyLength
Validated minimum key lengths for server_jwks
server_jwks
{
  "keys": [
    {
      "d": "ZvivfZxJMbbdTQmxyE0lmE6ZuH8cMQOLyZxdaA5pNwm7ZEnPBEftZs8aR9ijhCDWMieui3h--rXwlXqbEm3g1sVgQ-WKTFV-NLKaJC1h-EU5HKdlOflstr7x57zhKp60ZIK69GyEXyJccUfzcD32u8raec9NplQ2MqS5MA1lnQFlocFoX1RNU4tSpEdJQq2UzqtX5WPhc88A6fTc1xu2fA5wyxzZu7fUjIETzLimcu-dDaEvvgm7c_A1ulm8EQuCN10k3FrIIe9RfuXHyxh9Rcd0aiIP9qwitxd5Cl0io7zby8MBIAaSei2co7y4tciBt4AfnzpBlGbtjgfr2gxD0Q",
      "e": "AQAB",
      "use": "sig",
      "kid": "X5d4vFYfLxaG1gg8_l3bFYFhUaUVmE6PaEsRWX2EYqM",
      "x5c": [
        "MIIGqzCCBZOgAwIBAgIUdUCw8bQZidnZ6uERKJuN9u4RGvcwDQYJKoZIhvcNAQELBQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwxFTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNBTkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMDgxNjA5NTUwMFoXDTIyMDkxNTA5NTUwMFowgacxCzAJBgNVBAYTAkJSMRMwEQYDVQQKEwpJQ1AtQnJhc2lsMS8wDAYDVQQLEwUxMjM0NTAOBgNVBAsTB2NlcnRtYW4wDwYDVQQLEwhhZ29vZG9uZTEcMBoGA1UEAxMTT3BlbiBCYW5raW5nIEJyYXNpbDE0MDIGCgmSJomT8ixkAQETJDc0ZTkyOWQ5LTMzYjYtNGQ4NS04YmE3LWMxNDZjODY3YTgxNzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANyF1agPcwq5ms99Flo82XsXUroWoD/6FX4AfmOUu113h4VOLYaO3N8HDYbKxgii2En/+O61e/Ptjn4T2PVq0iVcqiF6Gp4sKE5w/bKZRfdCe8qIPS4D+JKpFpesJvIHUeQvlAuBp5dA9nGSpxOjGe5P2+ZzNGXwvux/2ztdweGmKbtOvbYe4RVhiu6bOubog8XEBmD96EnqmoROasH1Hn9kDJIclbTP51j/TlQMzhrSfJJuE3Qq6vWhe/DaPbtmELmlDiYHjp8CjAY5oBMHLmkHvQxEBV4cwbUZj5ZpdqU8tkA78XtR4DkzrJ4fYoBb1+9ABq6GNzxWPpSQMQuBXdsCAwEAAaOCAwIwggL+MAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFJwv7oHX2exZL304ru+4eGVypHlxMB8GA1UdIwQYMBaAFIZ/WK0X9YK2TrQFs/uwzhFD30y+MEwGCCsGAQUFBwEBBEAwPjA8BggrBgEFBQcwAYYwaHR0cDovL29jc3Auc2FuZGJveC5wa2kub3BlbmJhbmtpbmdicmFzaWwub3JnLmJyMEsGA1UdHwREMEIwQKA+oDyGOmh0dHA6Ly9jcmwuc2FuZGJveC5wa2kub3BlbmJhbmtpbmdicmFzaWwub3JnLmJyL2lzc3Vlci5jcmwwXgYDVR0RBFcwVaAZBgVgTAEDAqAQDA5NaWNoYWVsIEZyYXNlcqAYBgVgTAEDA6APDA0xMzM1MzIzNjAwMTg5oA0GBWBMAQMEoAQMAm5voA8GBWBMAQMHoAYMBGFsb3QwDgYDVR0PAQH/BAQDAgbAMIIBoQYDVR0gBIIBmDCCAZQwggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENlcnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMgdXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsgU2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQGCCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAtKn/QnJqKLp52YB14x+M21qwz67utFkWjhauQe0elXupjY5NWZb5wLrGYNOZQzRe2JRzcBbGN6P7lCweRfxMkSGh9YrXbrkBXLEPtLHpTVEy65v1tWl02lC+ooVPyQpSjAQL0L69OQ7s7rnIXyb3rkSUzuGSxsLU1AXpWj0oYFB4wdeIdPAVPs83frC5s4kz42JruSAE2vsbvQURTVPChh+hO6+R6Irz+ZEZ1NSgjQkxvOXHW53CkXZSjjHbAB/nbJYi7YyK7kck99r38Ba/WBfIfywdFVVYfiiW5TS6XbQeVeilmmt5MLxBz96FxR6E6WR+cQwybEe94Fb/jD6xHA\u003d\u003d"
      ],
      "dp": "bQ9aXj8tHnj0qO8aAWapGokWX78OlvNzytYg4JSGyJ7pUQnRB4Ds2Lai6kgjniUiu5MX2kdceDbHykG5R-WDj0Ztv6UPV3jA3cOjDwVzwmiwBVmVQNRxzK31Ra8f4YJs9_o0bjmVvXQRchY9l9_Xkk_Hev2F2A540Fhk0tlbUBE",
      "dq": "XPYDZ_kxwZjtQb-XUBLBcvNV1jcDhba2stysXGv0SfvsxOg6G3qZ5xtsiyQxzAYen0LRttCBXkZXEtXXAodLRvJMwUXuYWtNCrBqxYDHkJogUDPnBXq-Hig6x8fsDJunH8JooCc-3WcFpHQcIZZdcwyXPVi59eAfWCwJlgHYYHk",
      "n": "3IXVqA9zCrmaz30WWjzZexdSuhagP_oVfgB-Y5S7XXeHhU4tho7c3wcNhsrGCKLYSf_47rV78-2OfhPY9WrSJVyqIXoaniwoTnD9splF90J7yog9LgP4kqkWl6wm8gdR5C-UC4Gnl0D2cZKnE6MZ7k_b5nM0ZfC-7H_bO13B4aYpu069th7hFWGK7ps65uiDxcQGYP3oSeqahE5qwfUef2QMkhyVtM_nWP9OVAzOGtJ8km4TdCrq9aF78No9u2YQuaUOJgeOnwKMBjmgEwcuaQe9DEQFXhzBtRmPlml2pTy2QDvxe1HgOTOsnh9igFvX70AGroY3PFY-lJAxC4Fd2w",
      "p": "_QaFFuyZriEWtbiKexy7pIYicgU0ePMepvyNuiiFqlsUFQ24q9gp_iWECDhi8qqss__i1LW_eHQATKWfqUc6HdDY-ickJXvVktrQiT-buvJ24iTtK_NooPMKQW976NIX39_sEPJ6ceo9ZDFxTTCkmJus3eXDJmRZT2YzSZJcvcc",
      "kty": "RSA",
      "q": "3x1_dyovnWXSr7y7ufe6AHUV0kHBYVrGW2vdNZxKrrgBW5r2mm93NnHsrG-mJlzW7kG_jR41bWf74sucGdwXTx96riRVy8bov9SzPCDl9_QCHzPpqZOxjngfzQYq1L1qJA2BAie0Sq6YZhgLJ1fWPLutEO5soIYAkLXSJ9IVb00",
      "qi": "eHhOb5NUDfMGXwNscjEcMrMFS425qsoJAXfGJ10hm8svZOkNYgVpb7Hs7oT8XytanRl0Gk8gKH0yhvya65B5ipyby17uBMkikNN-EeYoY2AkvEfM_nO0dvHbDdF11rkM5Q_SEDlGmojxnx4_Euj8WeuSgcwiCQkR23aZlQGx1Mg",
      "alg": "PS256"
    },
    {
      "p": "6-RGunw1LGXpsGIabzcG8n_ITbahS9waTzjcwLkzjWjyR5hxnTSrCMas9EsOuIt3qvkdf02psgwi-J0ZX680ujaXdeiPAeuOUbsLPBOhRuu-ySXxMTT7uiwWJmF5LtBx8Qd3hRV2sd9zOhYzSohcmWp8w_uKTOYrFzGtWMvlGic",
      "kty": "RSA",
      "q": "vn3cUU9RFc7pB3fjiEPGwYGA_h8f2X6dOqy-JYIMIiuYhPq6cT8xIlE-sHs58kZzC1QbOBc4y-qRyqj1L4StPaYH4mtJU0s_6A_b9Cai96yzYYmMr92be2nCFMxBpmpBhN21AIdGc640OxgWMdz5OVo455v1uIEQGPr2aDpOzVs",
      "d": "QrIJ9tPG7pSrt1KKSU-9EbAq-hU92FzEV9GwzuG_dbBPyRLYNVfAz-Yb8ug3YLuqec_kcB5JCep7QkYHgpNdX5WXFxARCpXa-J7Xq50oBdiAS2ehLpnYHXpJI7HqOcH9ASZML_MXjI8e_EpsI7Yk6xJ9qxk8bXGupw0C6anwL3NBe232zA7I1FnwL9tpZVOLPupeok7HMRbFc6QSR3dA54zJmkyEbyOSqzRqCK_g7AB_RcMImN0SoCg0epxZjrculIXPG0Gl1T3TG3WY-CBUtAkI1chFMGCgYF_v-FMSun8N6igilPC5O683BMcJoTK745khMCv7FcSCSFVh0H5vKQ",
      "e": "AQAB",
      "use": "enc",
      "kid": "0fe502dd-14f0-4f45-80f9-feb9a216f996",
      "qi": "W6TMI3L-Ob-Jx61TdYqN5gBoBsWF6KWuCmiE9ZiwJiMVCv5ddEbFafBuiIQgRnby1VpnH9j5KVb5PT_V78ohKFmpfL7ErXQerf_pJkEtvgK9lQta1EM1HMoShrJ4GdHPym_BZzDDmt6njvwTfSg95y28h-j5epuywcwu6TwAUA8",
      "dp": "a9rjD-8srNEoKVKhvYoObiBI6GeBllrb2K8qGCBV1ulOJbgo8nUbYpbci5Ip9-0k2RKwDv3mghcUglHqQRqt5BqD5BBiGsGmP-5is6RSEEhH4lar0hDkq_nuYrwcmXALOOZuGnZ239tIJx3xc7mnhSnwQ_emA4UV3LQFC12mse8",
      "alg": "RSA-OAEP",
      "dq": "Qk8TiyY-BoZg7Z2ZEYzuOdu3qD3zW0VMu-j3w5yyVo6wZ9HTZqplkxmO5eXvNNu7Hj1nwC2tMqZzm4UW3DSmDWinI_TOsHToSQKEQUfVwLtYMeKsm2dbwSj-SzkSvTgNmI-IeyebqZcBTXTD_RV7l7BFULIkZdZfYSKy9XMejTM",
      "n": "r4dl-ApW6c-fvDbfSVxHpdV8zi8VQW4b9-uHMRq7dzqCkvP8OAG1R3plSr1N6fL_YLiIr9y621XkyRiMEKR7-DeqGsLf2ZTaqrZ1LfYgjsc2i9o3NSOeSgBwKGmT7h1OgxZSbhLzo7Xaktu3CCUZCOWLzs7LKo_CvKkcTF7tPhK9jYjdTsdsnS0RJOPjYQe7JO83Mvhd1Ty3F-Qycd-cKKMSjcQRiHt9jKd09kA2fKVlFwbm2M1PM3NdtnMaOUw31-XC4ixay47XTMqnmX7-op7qYV9wXbeZmjTsAKFuTGwJiGJrOTfqciDLBW8IpGC2BzFJ5rYmRu0kAttpvkOG3Q"
    }
  ]
}
2022-01-14 11:34:53 SUCCESS
LoadUserInfo
Added user information
user_info
{
  "sub": "user-subject-1234531",
  "name": "Demo T. User",
  "email": "user@example.com",
  "email_verified": false
}
Verify configuration of first client
2022-01-14 11:34:53 SUCCESS
GetStaticClientConfiguration
Found a static client object
client_id
client_XUwBuUHRMTVHAleZEJxH18815
redirect_uri
https://portalspa-hml.safra.com.br/callback
certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ"
    }
  ]
}
2022-01-14 11:34:53 SUCCESS
ValidateClientJWKsPublicPart
Valid client JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2022-01-14 11:34:53 SUCCESS
ExtractJWKsFromStaticClientConfiguration
Extracted client JWK
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ"
    }
  ]
}
2022-01-14 11:34:53 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2022-01-14 11:34:53 SUCCESS
EnsureClientJwksDoesNotContainPrivateOrSymmetricKeys
Jwks does not contain any private or symmetric keys
2022-01-14 11:34:53 SUCCESS
FAPIEnsureMinimumClientKeyLength
Validated minimum key lengths for client_jwks
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ"
    }
  ]
}
Verify configuration of second client
2022-01-14 11:34:53 SUCCESS
GetStaticClient2Configuration
Found a static second client object
client_id
client_XUwBuUHRMTVHAleZEJxH18815
redirect_uri
https://portalspa-hml.safra.com.br/callback
id_token_encrypted_response_alg
RSA-OAEP
certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ",
      "use": "sig"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "o_xvg824afVVwHrd1A7-zOGeH2yA0Y5aXdpOUOzj0dM",
      "n": "2ACeyabQj1JtNk8eKPs0dtPohlXzAjEzmn00NvZIDmAJP8qXgwjXmbeJJIpf2czYx8AOjWd4FjFdPPAubnCeAJkvG5xOF328KMXmpQFgmtKRaFhHgUCvmW_0uHYCvi-sR5ClYhJUnULmLCrt8q2hbODLuAuLpI4QsWtwJb3EsOjwjGCeSylm31UKL7aMuaPrzrtSijSkk2mBEpkA6yDeFXg8hUmmLbTdIHfhzYnEZ6KW8n1nJp3UcFXcMlIE09meffwqXHSrovJIk9qysUTv5hdatD0dZZDxPRQQ0qPN3wK8d8l4FMjJqHY6ifuV_qZu8WUSfe0VcCKDIez0X-C1xw",
      "use": "enc",
      "alg": "PS256"
    }
  ]
}
id_token_encrypted_response_enc
A256GCM
2022-01-14 11:34:53 SUCCESS
ValidateClientJWKsPublicPart
Valid client JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2022-01-14 11:34:53 SUCCESS
ExtractJWKsFromStaticClientConfiguration
Extracted client JWK
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ",
      "use": "sig"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "o_xvg824afVVwHrd1A7-zOGeH2yA0Y5aXdpOUOzj0dM",
      "n": "2ACeyabQj1JtNk8eKPs0dtPohlXzAjEzmn00NvZIDmAJP8qXgwjXmbeJJIpf2czYx8AOjWd4FjFdPPAubnCeAJkvG5xOF328KMXmpQFgmtKRaFhHgUCvmW_0uHYCvi-sR5ClYhJUnULmLCrt8q2hbODLuAuLpI4QsWtwJb3EsOjwjGCeSylm31UKL7aMuaPrzrtSijSkk2mBEpkA6yDeFXg8hUmmLbTdIHfhzYnEZ6KW8n1nJp3UcFXcMlIE09meffwqXHSrovJIk9qysUTv5hdatD0dZZDxPRQQ0qPN3wK8d8l4FMjJqHY6ifuV_qZu8WUSfe0VcCKDIez0X-C1xw",
      "use": "enc",
      "alg": "PS256"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "enc",
      "kid": "o_xvg824afVVwHrd1A7-zOGeH2yA0Y5aXdpOUOzj0dM",
      "alg": "PS256",
      "n": "2ACeyabQj1JtNk8eKPs0dtPohlXzAjEzmn00NvZIDmAJP8qXgwjXmbeJJIpf2czYx8AOjWd4FjFdPPAubnCeAJkvG5xOF328KMXmpQFgmtKRaFhHgUCvmW_0uHYCvi-sR5ClYhJUnULmLCrt8q2hbODLuAuLpI4QsWtwJb3EsOjwjGCeSylm31UKL7aMuaPrzrtSijSkk2mBEpkA6yDeFXg8hUmmLbTdIHfhzYnEZ6KW8n1nJp3UcFXcMlIE09meffwqXHSrovJIk9qysUTv5hdatD0dZZDxPRQQ0qPN3wK8d8l4FMjJqHY6ifuV_qZu8WUSfe0VcCKDIez0X-C1xw"
    }
  ]
}
2022-01-14 11:34:53 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2022-01-14 11:34:53 SUCCESS
EnsureClientJwksDoesNotContainPrivateOrSymmetricKeys
Jwks does not contain any private or symmetric keys
2022-01-14 11:34:53 SUCCESS
FAPIEnsureMinimumClientKeyLength
Validated minimum key lengths for client_jwks
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "alg": "PS256",
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ",
      "use": "sig"
    },
    {
      "kty": "RSA",
      "e": "AQAB",
      "kid": "o_xvg824afVVwHrd1A7-zOGeH2yA0Y5aXdpOUOzj0dM",
      "n": "2ACeyabQj1JtNk8eKPs0dtPohlXzAjEzmn00NvZIDmAJP8qXgwjXmbeJJIpf2czYx8AOjWd4FjFdPPAubnCeAJkvG5xOF328KMXmpQFgmtKRaFhHgUCvmW_0uHYCvi-sR5ClYhJUnULmLCrt8q2hbODLuAuLpI4QsWtwJb3EsOjwjGCeSylm31UKL7aMuaPrzrtSijSkk2mBEpkA6yDeFXg8hUmmLbTdIHfhzYnEZ6KW8n1nJp3UcFXcMlIE09meffwqXHSrovJIk9qysUTv5hdatD0dZZDxPRQQ0qPN3wK8d8l4FMjJqHY6ifuV_qZu8WUSfe0VcCKDIez0X-C1xw",
      "use": "enc",
      "alg": "PS256"
    }
  ]
}
2022-01-14 11:34:53 SUCCESS
EnsureIdTokenEncryptedResponseAlgIsNotRSA1_5
Id token encryption algorithm is not RSA1_5
alg
RSA-OAEP
2022-01-14 11:34:53 SUCCESS
FAPIEnsureClientJwksContainsAnEncryptionKey
Found an encryption key in client jwks
kid
o_xvg824afVVwHrd1A7-zOGeH2yA0Y5aXdpOUOzj0dM
algorithm
PS256
2022-01-14 11:34:53 SUCCESS
EnsureIdTokenEncryptedResponseAlgIsSetIfEncIsSet
id_token_encrypted_response_alg is set
id_token_encrypted_response_alg
RSA-OAEP
id_token_encrypted_response_enc
A256GCM
2022-01-14 11:34:53
fapi1-advanced-final-client-test-encrypted-idtoken
Setup Done
2022-01-14 11:34:59 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "x-dynatrace": "FW4;-987853115;1;1343653795;1960;0;-1738730375;336;57f6;2h01;3h501687a3;4h07a8;6h7ea20336a3da994d9ab9911933103620;7h15fb32a52c96f558",
  "traceparent": "00-7ea20336a3da994d9ab9911933103620-15fb32a52c96f558-01",
  "tracestate": "985d1479-c51e8ec5@dt\u003dfw4;1;501687a3;7a8;0;0;0;150;3880;2h01;3h501687a3;4h07a8;7h15fb32a52c96f558",
  "request-id": "|28c0d260-4449a4c379b97d24.1.",
  "content-type": "application/x-www-form-urlencoded",
  "content-length": "1024",
  "connection": "close"
}
incoming_path
/test-mtls/a/SafraRPTest/token
incoming_body_form_params
{
  "scope": "payments",
  "grant_type": "client_credentials",
  "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
  "client_assertion": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImYyMTAzMDc3OGE0OTQ4YjA5ZjA0Y2MxYzM3MGViMDA5IiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwMzk4LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDA5OCwibmJmIjoxNjQyMTYwMDk4fQ.wbxsEMZLsA7rLoarwFP1exWQcdyZF3Tqhy5MltAyFhbo-xexWkxSmp8w3y2wXQY9kmgGqhdiX7pAnmo280cxsxTfcn4WpbtXtMaq3-f6U4D62KmM_8j7p-QJyLtjfirlct2tf80O-av8p7YTMQNiXwXMnxUAgFbeh-gcyNguSwnrWFM2p2KKMMRQEhpmw3xQhJj9Z8lu03-F9ntoiamAvWghAXqj0V4i_PdZze7E0tEjWk-h3c7zPxmNLjXqRW_-BTeJl8ZXHjHWifhjpTmvUwSl7NUzgvvVKxnVsNzXdZQUs7BJcUxYb5H9bM5MB1o-p4Bdc04KXDF1dKYW9R2jSw",
  "client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer"
}
incoming_method
POST
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES256-GCM-SHA384
incoming_tls_cert
-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A== -----END CERTIFICATE-----
incoming_body_json
incoming_query_string_params
{}
incoming_body
scope=payments&grant_type=client_credentials&client_id=client_XUwBuUHRMTVHAleZEJxH18815&client_assertion=eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImYyMTAzMDc3OGE0OTQ4YjA5ZjA0Y2MxYzM3MGViMDA5IiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwMzk4LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDA5OCwibmJmIjoxNjQyMTYwMDk4fQ.wbxsEMZLsA7rLoarwFP1exWQcdyZF3Tqhy5MltAyFhbo-xexWkxSmp8w3y2wXQY9kmgGqhdiX7pAnmo280cxsxTfcn4WpbtXtMaq3-f6U4D62KmM_8j7p-QJyLtjfirlct2tf80O-av8p7YTMQNiXwXMnxUAgFbeh-gcyNguSwnrWFM2p2KKMMRQEhpmw3xQhJj9Z8lu03-F9ntoiamAvWghAXqj0V4i_PdZze7E0tEjWk-h3c7zPxmNLjXqRW_-BTeJl8ZXHjHWifhjpTmvUwSl7NUzgvvVKxnVsNzXdZQUs7BJcUxYb5H9bM5MB1o-p4Bdc04KXDF1dKYW9R2jSw&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer
2022-01-14 11:34:59 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES256-GCM-SHA384
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
Token endpoint
2022-01-14 11:34:59 SUCCESS
ExtractClientCertificateFromTokenEndpointRequestHeaders
Extracted client certificate
client_certificate
{
  "cert": "-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A\u003d\u003d -----END CERTIFICATE-----",
  "pem": "-----BEGIN CERTIFICATE-----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\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
  "subject": {
    "dn": "UID\u003d44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3\u003d#13024252,2.5.4.15\u003d#131450726976617465204f7267616e697a6174696f6e,2.5.4.5\u003d#130e3538313630373839303030313238,CN\u003d*.safra.com.br,OU\u003d709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O\u003dBCO SAFRA S.A.,L\u003dSão Paulo,ST\u003dSP,C\u003dBR"
  },
  "sanDnsNames": [
    "api-mtls-hml.safra.com.br"
  ],
  "sanUris": [],
  "sanIPs": [],
  "sanEmails": []
}
2022-01-14 11:34:59 SUCCESS
CheckForClientCertificate
Found client certificate
2022-01-14 11:34:59 SUCCESS
EnsureClientCertificateMatches
Presented certificate matches registered certificate
actual
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
2022-01-14 11:34:59 SUCCESS
ExtractClientAssertion
Parsed client assertion
client_assertion
{
  "value": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImYyMTAzMDc3OGE0OTQ4YjA5ZjA0Y2MxYzM3MGViMDA5IiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwMzk4LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDA5OCwibmJmIjoxNjQyMTYwMDk4fQ.wbxsEMZLsA7rLoarwFP1exWQcdyZF3Tqhy5MltAyFhbo-xexWkxSmp8w3y2wXQY9kmgGqhdiX7pAnmo280cxsxTfcn4WpbtXtMaq3-f6U4D62KmM_8j7p-QJyLtjfirlct2tf80O-av8p7YTMQNiXwXMnxUAgFbeh-gcyNguSwnrWFM2p2KKMMRQEhpmw3xQhJj9Z8lu03-F9ntoiamAvWghAXqj0V4i_PdZze7E0tEjWk-h3c7zPxmNLjXqRW_-BTeJl8ZXHjHWifhjpTmvUwSl7NUzgvvVKxnVsNzXdZQUs7BJcUxYb5H9bM5MB1o-p4Bdc04KXDF1dKYW9R2jSw",
  "header": {
    "x5t": "imeJtvhk1_UOZIIOKtvS3EW0nDo",
    "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
    "typ": "JWT",
    "alg": "PS256"
  },
  "claims": {
    "sub": "client_XUwBuUHRMTVHAleZEJxH18815",
    "aud": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "nbf": 1642160098,
    "iss": "client_XUwBuUHRMTVHAleZEJxH18815",
    "exp": 1642160398,
    "iat": 1642160098,
    "jti": "f21030778a4948b09f04cc1c370eb009"
  }
}
2022-01-14 11:34:59
EnsureClientAssertionSignatureAlgorithmMatchesRegistered
token_endpoint_auth_signing_alg is not set for the client, any supported algorithm can be used
2022-01-14 11:34:59 SUCCESS
ValidateClientAssertionSignature
client_assertion signature validated
client_assertion
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImYyMTAzMDc3OGE0OTQ4YjA5ZjA0Y2MxYzM3MGViMDA5IiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwMzk4LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDA5OCwibmJmIjoxNjQyMTYwMDk4fQ.wbxsEMZLsA7rLoarwFP1exWQcdyZF3Tqhy5MltAyFhbo-xexWkxSmp8w3y2wXQY9kmgGqhdiX7pAnmo280cxsxTfcn4WpbtXtMaq3-f6U4D62KmM_8j7p-QJyLtjfirlct2tf80O-av8p7YTMQNiXwXMnxUAgFbeh-gcyNguSwnrWFM2p2KKMMRQEhpmw3xQhJj9Z8lu03-F9ntoiamAvWghAXqj0V4i_PdZze7E0tEjWk-h3c7zPxmNLjXqRW_-BTeJl8ZXHjHWifhjpTmvUwSl7NUzgvvVKxnVsNzXdZQUs7BJcUxYb5H9bM5MB1o-p4Bdc04KXDF1dKYW9R2jSw
2022-01-14 11:34:59 SUCCESS
EnsureClientAssertionTypeIsJwt
Found JWT assertion type
assertion type
urn:ietf:params:oauth:client-assertion-type:jwt-bearer
2022-01-14 11:34:59 SUCCESS
ValidateClientAssertionClaims
Client Assertion passed all validation checks
2022-01-14 11:34:59 SUCCESS
FAPIBrazilExtractRequestedScopeFromClientCredentialsGrant
Found 'payments' scope in request
actual
[
  "payments"
]
expected
payments
2022-01-14 11:34:59 SUCCESS
GenerateBearerAccessToken
Generated access token
access_token
6MXMqMXspIJQCvlwN5HviYwCwKqdGzYmift2naiEySI8pJccP7
2022-01-14 11:34:59 SUCCESS
CreateTokenEndpointResponse
Created token endpoint response
access_token
6MXMqMXspIJQCvlwN5HviYwCwKqdGzYmift2naiEySI8pJccP7
token_type
Bearer
2022-01-14 11:34:59
CopyAccessTokenToClientCredentialsField
Condition ran but did not log anything
2022-01-14 11:34:59 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing_status_code
200
outgoing_headers
{}
outgoing_body
{
  "access_token": "6MXMqMXspIJQCvlwN5HviYwCwKqdGzYmift2naiEySI8pJccP7",
  "token_type": "Bearer"
}
outgoing_path
token
2022-01-14 11:35:00 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "x-dynatrace": "FW4;-987853115;1;1343653795;1960;1;-1738730375;336;7dc3;2h01;3h501687a3;4h07a8;6h7ea20336a3da994d9ab9911933103620;7hc2caf973c53f3392",
  "traceparent": "00-7ea20336a3da994d9ab9911933103620-c2caf973c53f3392-01",
  "tracestate": "985d1479-c51e8ec5@dt\u003dfw4;1;501687a3;7a8;1;0;0;150;e687;2h01;3h501687a3;4h07a8;7hc2caf973c53f3392",
  "authorization": "Bearer 6MXMqMXspIJQCvlwN5HviYwCwKqdGzYmift2naiEySI8pJccP7",
  "x-idempotency-key": "f1f6c734-7160-42e0-89e5-c703014cbd5b",
  "request-id": "|28c0d260-4449a4c379b97d24.2.",
  "content-type": "application/jwt",
  "content-length": "1777",
  "connection": "close"
}
incoming_path
/test-mtls/a/SafraRPTest/payments/v1/consents
incoming_body_form_params
incoming_method
POST
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES256-GCM-SHA384
incoming_tls_cert
-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A== -----END CERTIFICATE-----
incoming_body_json
incoming_query_string_params
{}
incoming_body
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.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.XSUy1BPfL9DYZdbPvrpdGKdSsgWCvp8YNrBz-VvtmnkNTrJy6I6_DGxkJuwJplN4OQu1JILiLHmPnulolQxRXwr9NfVw4FJwI_PXQt1o4Qq_vlluFVm9NBh-HmfjhaYWxmeZhmY6u-dmD5PEQaBFx9gw7Qn4dvLJ-FDKo8OfIBpVN3vsdyCOzwcSoNsnw6h9UMOfLwxhZavN9wvRkVSCGjhYF8l0rL7syf6jmBDQoRf21rkBnnczHhkSNiPSNM0GY9oqH50Tg2TLqoYUSKZV8rYS85Oe6CbxjEE3LP75MHm5_TOCAdu-H6kpin0yBZNz8Z11wfjW7eMMjYanmN2Q6Q
2022-01-14 11:35:00 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES256-GCM-SHA384
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
New consent endpoint
2022-01-14 11:35:00 SUCCESS
ExtractClientCertificateFromTokenEndpointRequestHeaders
Extracted client certificate
client_certificate
{
  "cert": "-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A\u003d\u003d -----END CERTIFICATE-----",
  "pem": "-----BEGIN CERTIFICATE-----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\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
  "subject": {
    "dn": "UID\u003d44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3\u003d#13024252,2.5.4.15\u003d#131450726976617465204f7267616e697a6174696f6e,2.5.4.5\u003d#130e3538313630373839303030313238,CN\u003d*.safra.com.br,OU\u003d709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O\u003dBCO SAFRA S.A.,L\u003dSão Paulo,ST\u003dSP,C\u003dBR"
  },
  "sanDnsNames": [
    "api-mtls-hml.safra.com.br"
  ],
  "sanUris": [],
  "sanIPs": [],
  "sanEmails": []
}
2022-01-14 11:35:00 SUCCESS
CheckForClientCertificate
Found client certificate
2022-01-14 11:35:00 SUCCESS
EnsureClientCertificateMatches
Presented certificate matches registered certificate
actual
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
2022-01-14 11:35:00 SUCCESS
EnsureIncomingRequestMethodIsPost
Client correctly used http POST method
2022-01-14 11:35:00 SUCCESS
EnsureBearerAccessTokenNotInParams
Client correctly did not send access token in query parameters or form body
2022-01-14 11:35:00 SUCCESS
ExtractBearerAccessTokenFromHeader
Found access token on incoming request
access_token
6MXMqMXspIJQCvlwN5HviYwCwKqdGzYmift2naiEySI8pJccP7
2022-01-14 11:35:00 SUCCESS
RequireBearerClientCredentialsAccessToken
Found access token in request
actual
6MXMqMXspIJQCvlwN5HviYwCwKqdGzYmift2naiEySI8pJccP7
2022-01-14 11:35:00 INFO
ExtractFapiDateHeader
Skipped evaluation due to missing required element: incoming_request headers.x-fapi-auth-date
path
headers.x-fapi-auth-date
mapped
object
incoming_request
2022-01-14 11:35:00 INFO
ExtractFapiIpAddressHeader
Skipped evaluation due to missing required element: incoming_request headers.x-fapi-customer-ip-address
path
headers.x-fapi-customer-ip-address
mapped
object
incoming_request
2022-01-14 11:35:00 INFO
ExtractFapiInteractionIdHeader
Skipped evaluation due to missing required element: incoming_request headers.x-fapi-interaction-id
path
headers.x-fapi-interaction-id
mapped
object
incoming_request
2022-01-14 11:35:00 SUCCESS
FAPIBrazilExtractCertificateSubjectFromServerJwks
Extracted subject from the certificate included in server jwks
subjectdn
UID=74e929d9-33b6-4d85-8ba7-c146c867a817,CN=Open Banking Brasil,OU=12345+OU=certman+OU=agoodone,O=ICP-Brasil,C=BR
ou
12345
brazil_software_id
74e929d9-33b6-4d85-8ba7-c146c867a817
2022-01-14 11:35:00 SUCCESS
FAPIBrazilEnsureClientCredentialsScopeContainedPayments
The token request which was used to obtain the access token contained 'payments' scope
actual
[
  "payments"
]
2022-01-14 11:35:00 SUCCESS
FAPIBrazilExtractPaymentsConsentRequest
Parsed payments consent request
payments_consent_request
{
  "aud": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/payments/v1/consents",
  "nbf": 1642160099,
  "data": {
    "authorisationServerId": "certification.openid-10",
    "canalSafra": "BCD",
    "debtorAccount": {
      "number": "0112520",
      "accountType": "CACC",
      "ispb": "58160789",
      "issuer": "0115"
    },
    "tokenId": "e301b334a62f448e905c5bc6243a6c23",
    "remittanceInformation": "string",
    "loggedUser": {
      "document": {
        "identification": "83876103800",
        "rel": "CPF"
      }
    },
    "creditor": {
      "name": "José Recebedor Silva",
      "cpfCnpj": "61412110000155",
      "personType": "PESSOA_JURIDICA"
    },
    "payment": {
      "date": "2021-12-17",
      "amount": "390.99",
      "currency": "BRL",
      "details": {
        "proxy": "victor.arena@safra.com.br",
        "localInstrument": "DICT",
        "creditorAccount": {
          "number": "000013416",
          "accountType": "CACC",
          "ispb": "58160789",
          "issuer": "0115"
        }
      },
      "type": "PIX",
      "ibgeTownCode": "0644895"
    },
    "paymentDescription": "string"
  },
  "iss": "709138dd-6e9d-5f96-bfff-69a5b2cb3ec0",
  "exp": 1642163699,
  "iat": 1642160099,
  "jti": "56245274-bcab-482e-98b9-78045d57b555"
}
2022-01-14 11:35:00 SUCCESS
EnsureIncomingRequestContentTypeIsApplicationJwt
Client correctly used application/jwt content type
2022-01-14 11:35:00 SUCCESS
ExtractXIdempotencyKeyHeader
Found an x-idempotency-key header
idempotency_key
f1f6c734-7160-42e0-89e5-c703014cbd5b
2022-01-14 11:35:00 SUCCESS
FAPIBrazilValidatePaymentConsentRequestAud
aud claim matches the endpoint url
aud
https://www.certification.openid.net/test-mtls/a/SafraRPTest/payments/v1/consents
2022-01-14 11:35:00 SUCCESS
FAPIBrazilExtractCertificateSubjectFromIncomingMTLSCertifiate
Extracted subject from the mtls client certificate
subjectdn
UID=44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3=#13024252,2.5.4.15=#131450726976617465204f7267616e697a6174696f6e,2.5.4.5=#130e3538313630373839303030313238,CN=*.safra.com.br,OU=709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O=BCO SAFRA S.A.,L=São Paulo,ST=SP,C=BR
ou
709138dd-6e9d-5f96-bfff-69a5b2cb3ec0
brazil_software_id
44b261bc-4f6f-44ce-b3d7-3f98a2b225f4
2022-01-14 11:35:00 SUCCESS
FAPIBrazilEnsureConsentRequestIssEqualsOrganizationId
iss claim in consent request matches organizationId in client certificate
iss
709138dd-6e9d-5f96-bfff-69a5b2cb3ec0
2022-01-14 11:35:00 SUCCESS
FAPIBrazilEnsureConsentRequestJtiIsUUIDv4
jti claim in consent request is a UUIDv4
jti
56245274-bcab-482e-98b9-78045d57b555
2022-01-14 11:35:00 SUCCESS
FAPIBrazilValidateConsentRequestIat
iat claim in consent request is valid
iat
1642160099
2022-01-14 11:35:00
FAPIBrazilFetchClientOrganizationJwksFromDirectory
Fetching client organization keys
jwks_uri
https://keystore.sandbox.directory.openbankingbrasil.org.br/709138dd-6e9d-5f96-bfff-69a5b2cb3ec0/application.jwks
2022-01-14 11:35:00
FAPIBrazilFetchClientOrganizationJwksFromDirectory
HTTP request
request_uri
https://keystore.sandbox.directory.openbankingbrasil.org.br/709138dd-6e9d-5f96-bfff-69a5b2cb3ec0/application.jwks
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/cbor, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2022-01-14 11:35:01 RESPONSE
FAPIBrazilFetchClientOrganizationJwksFromDirectory
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "content-type": "application/jwk-set+json",
  "content-length": "2972",
  "connection": "keep-alive",
  "x-amz-replication-status": "COMPLETED",
  "last-modified": "Fri, 22 Oct 2021 20:15:19 GMT",
  "x-amz-version-id": "SB1YjvUpeOxGoLAav8kNqvoUioQi__ni",
  "accept-ranges": "bytes",
  "server": "AmazonS3",
  "date": "Fri, 14 Jan 2022 11:34:09 GMT",
  "etag": "\"b89eef2fb87def3e17c90616845fec9a\"",
  "x-cache": "Hit from cloudfront",
  "via": "1.1 eca8616127916fa339e7718294322b64.cloudfront.net (CloudFront)",
  "x-amz-cf-pop": "MIA3-C4",
  "x-amz-cf-id": "pUhjhiomD4EjsIDOJUpDYjlfgxryq1ixGTRGoRoPYWR9Nf4rXJ9JuA\u003d\u003d",
  "age": "53"
}
response_body
{"keys":[{"kty":"RSA","use":"sig","x5c":["MIIGuzCCBaOgAwIBAgIUAh8iIdF0FEi1au9oS7Uxh52TNa8wDQYJKoZIhvcNAQELBQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwxFTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNBTkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTAyMjIwMTAwMFoXDTIyMTEyMTIwMTAwMFowgaYxCzAJBgNVBAYTAkJSMRMwEQYDVQQKEwpJQ1AtQnJhc2lsMTMwCgYDVQQLEwNCbGEwDgYDVQQLEwdTYW5kYm94MBUGA1UECxMONTgxNjA3ODkwMDAxMjgxFzAVBgNVBAMTDkJDTyBTQUZSQSBTLkEuMTQwMgYKCZImiZPyLGQBARMkNzA5MTM4ZGQtNmU5ZC01Zjk2LWJmZmYtNjlhNWIyY2IzZWMwMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ++QPs2/nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF/PUn7o2tDipWLBVZfqO08B4qhqb5u+7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx+BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6/7CX5gXh/wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQIDAQABo4IDEzCCAw8wDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQU1GHVrz9fgj1jeI5lmhhGQbARv9AwHwYDVR0jBBgwFoAUhn9YrRf1grZOtAWz+7DOEUPfTL4wTAYIKwYBBQUHAQEEQDA+MDwGCCsGAQUFBzABhjBodHRwOi8vb2NzcC5zYW5kYm94LnBraS5vcGVuYmFua2luZ2JyYXNpbC5vcmcuYnIwSwYDVR0fBEQwQjBAoD6gPIY6aHR0cDovL2NybC5zYW5kYm94LnBraS5vcGVuYmFua2luZ2JyYXNpbC5vcmcuYnIvaXNzdWVyLmNybDBvBgNVHREEaDBmoBkGBWBMAQMCoBAMDlRhbGxlcyBQZXNjdW1voBkGBWBMAQMDoBAMDjU4MTYwNzg5MDAwMTI4oBYGBWBMAQMEoA0MCzIyOTYxNzAyODUyoBYGBWBMAQMHoA0MCzIyOTYxNzAyODUyMA4GA1UdDwEB/wQEAwIGwDCCAaEGA1UdIASCAZgwggGUMIIBkAYKKwYBBAGDui9kATCCAYAwggE2BggrBgEFBQcCAjCCASgMggEkVGhpcyBDZXJ0aWZpY2F0ZSBpcyBzb2xlbHkgZm9yIHVzZSB3aXRoIFJhaWRpYW0gU2VydmljZXMgTGltaXRlZCBhbmQgb3RoZXIgcGFydGljaXBhdGluZyBvcmdhbmlzYXRpb25zIHVzaW5nIFJhaWRpYW0gU2VydmljZXMgTGltaXRlZHMgVHJ1c3QgRnJhbWV3b3JrIFNlcnZpY2VzLiBJdHMgcmVjZWlwdCwgcG9zc2Vzc2lvbiBvciB1c2UgY29uc3RpdHV0ZXMgYWNjZXB0YW5jZSBvZiB0aGUgUmFpZGlhbSBTZXJ2aWNlcyBMdGQgQ2VydGljaWNhdGUgUG9saWN5IGFuZCByZWxhdGVkIGRvY3VtZW50cyB0aGVyZWluLjBEBggrBgEFBQcCARY4aHR0cDovL2Nwcy5zYW5kYm94LnBraS5vcGVuYmFua2luZ2JyYXNpbC5vcmcuYnIvcG9saWNpZXMwDQYJKoZIhvcNAQELBQADggEBAJQhSjhYir/UR62NXBcS6i8UPeu0cN58eEPDkoYIQsI+9LTbDfJ1nleZcVXv5udGzN4i33Enu7cbo8eipDFmdjAOCUAqbvEXEqt0EWFo5U27t9XGwlkzUjC4Vn26hUgtFFLd2r+wDnNdiev4uQbOM1WImGtovqEfFmWUOcwHWT1+Kj26AXJX4Xuf/usLV0rkfjpV6fRzhu8L7XbKRLuXBTFHYRHLyqjOhCNzuwYo/OkMmqbzPcLYmeUzs/7tKeBacFfzCVVKo0EgsQrA9eeUKMPmOaGglylC+oB7QL+q+Qe3NHSDHbeSKcdTnqCCePJmb1El3QvHcWsM9XpRUHqaJtg="],"n":"2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ","e":"AQAB","kid":"F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68","x5u":"https://keystore.sandbox.directory.openbankingbrasil.org.br/709138dd-6e9d-5f96-bfff-69a5b2cb3ec0/F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68.pem","x5t#256":"F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68"}]}
2022-01-14 11:35:01
FAPIBrazilFetchClientOrganizationJwksFromDirectory
Found JWK set string
jwk_string
{"keys":[{"kty":"RSA","use":"sig","x5c":["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"],"n":"2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ","e":"AQAB","kid":"F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68","x5u":"https://keystore.sandbox.directory.openbankingbrasil.org.br/709138dd-6e9d-5f96-bfff-69a5b2cb3ec0/F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68.pem","x5t#256":"F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68"}]}
2022-01-14 11:35:01 SUCCESS
FAPIBrazilFetchClientOrganizationJwksFromDirectory
Downloaded and added client organization JWK set to environment
client_organization_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "use": "sig",
      "x5c": [
        "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\u003d"
      ],
      "n": "2GRx6YnzhHGM5YfXoUYVk4SZsAv4u9hi72amXqxtksdBGc7l1DdZv4U6UZ--QPs2_nMtARHo1x91bRWbI9weqHwfwILiChy4gq3zchfF_PUn7o2tDipWLBVZfqO08B4qhqb5u-7KJ9RgqBUuWr3UJblQkAnWJl9h5AhsdTHDmmndUDnvHoojiaRmxU5IhNZeUx-BO7JpUxz5ZmUrxA279CMgVPnyQF9nh0yz9zWBMOyjYuMVzFEK6_7CX5gXh_wkKpd3YDmREzOYoL4egcOAysHRwfnby2ANlB0tnxQ55lZd0ZLLhOHV57ydx0GWbtHGCuVBT93ncWUL1i5L7PLwBQ",
      "e": "AQAB",
      "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
      "x5u": "https://keystore.sandbox.directory.openbankingbrasil.org.br/709138dd-6e9d-5f96-bfff-69a5b2cb3ec0/F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68.pem",
      "x5t#256": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68"
    }
  ]
}
2022-01-14 11:35:01 SUCCESS
FAPIBrazilValidateJwtSignatureUsingOrganizationJwks
jwt signature validated
jwt
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.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.XSUy1BPfL9DYZdbPvrpdGKdSsgWCvp8YNrBz-VvtmnkNTrJy6I6_DGxkJuwJplN4OQu1JILiLHmPnulolQxRXwr9NfVw4FJwI_PXQt1o4Qq_vlluFVm9NBh-HmfjhaYWxmeZhmY6u-dmD5PEQaBFx9gw7Qn4dvLJ-FDKo8OfIBpVN3vsdyCOzwcSoNsnw6h9UMOfLwxhZavN9wvRkVSCGjhYF8l0rL7syf6jmBDQoRf21rkBnnczHhkSNiPSNM0GY9oqH50Tg2TLqoYUSKZV8rYS85Oe6CbxjEE3LP75MHm5_TOCAdu-H6kpin0yBZNz8Z11wfjW7eMMjYanmN2Q6Q
2022-01-14 11:35:01 SUCCESS
CreateFapiInteractionIdIfNeeded
Created new FAPI interaction ID
fapi_interaction_id
dc628acf-6fd3-48ed-a60b-1748d6222194
2022-01-14 11:35:01 SUCCESS
FAPIBrazilGenerateNewPaymentsConsentResponse
Created consent response
headers
{
  "x-fapi-interaction-id": "dc628acf-6fd3-48ed-a60b-1748d6222194"
}
consentId
urn:conformance:oidf:W82IPcneMm
consent_response
{
  "data": {
    "consentId": "urn:conformance:oidf:W82IPcneMm",
    "creationDateTime": "2022-01-14T11:35:01Z",
    "status": "AWAITING_AUTHORISATION",
    "statusUpdateDateTime": "2022-01-14T11:35:01Z",
    "expirationDateTime": "2022-01-14T13:35:01Z",
    "transactionFromDateTime": "2022-01-14T11:30:01Z",
    "transactionToDateTime": "2022-01-14T13:35:01Z",
    "links": {
      "self": "https://www.certification.openid.net/test/a/SafraRPTestpayments/v1/consents"
    },
    "meta": {
      "totalRecords": 1,
      "totalPages": 1,
      "requestDateTime": "2022-01-14T11:35:01Z"
    },
    "creditor": {
      "name": "José Recebedor Silva",
      "cpfCnpj": "61412110000155",
      "personType": "PESSOA_JURIDICA"
    },
    "loggedUser": {
      "document": {
        "identification": "83876103800",
        "rel": "CPF"
      }
    },
    "payment": {
      "date": "2021-12-17",
      "amount": "390.99",
      "currency": "BRL",
      "details": {
        "proxy": "victor.arena@safra.com.br",
        "localInstrument": "DICT",
        "creditorAccount": {
          "number": "000013416",
          "accountType": "CACC",
          "ispb": "58160789",
          "issuer": "0115"
        }
      },
      "type": "PIX",
      "ibgeTownCode": "0644895"
    },
    "debtorAccount": {
      "number": "0112520",
      "accountType": "CACC",
      "ispb": "58160789",
      "issuer": "0115"
    }
  },
  "aud": "709138dd-6e9d-5f96-bfff-69a5b2cb3ec0",
  "iat": 1642160101,
  "jti": "f328f6cf-48b7-4c0d-a7dc-26855c0866b6",
  "iss": "74e929d9-33b6-4d85-8ba7-c146c867a817"
}
2022-01-14 11:35:01 SUCCESS
FAPIBrazilSignPaymentConsentResponse
Signed the payment consent response
signed_consent_response
eyJraWQiOiJYNWQ0dkZZZkx4YUcxZ2c4X2wzYkZZRmhVYVVWbUU2UGFFc1JXWDJFWXFNIiwidHlwIjoiSldUIiwiYWxnIjoiUFMyNTYifQ.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.ILA6EskI8u3Tmek954rysPlqJWxIusmDyHVl9uxIBz5Fp7F3mUmOX1Q4ecTO9M0JeY0mNNYBm4StfX6Uj4bIdbI4BuZpOy52_hnccL4t9UThnxr2PImo1iybueKq4sDyIco-nrNaaexKxmfehwuyJtZN2xk79lCg8Sd55fAmYlbVwnPKVC3eIO6RJkuAuIttUQhaXQ4h0POheXj1ECUcFXNvqbzMvTpxQuANzVCd4wzS6pyFmkbLhK8PilxcjayCcP3eBvulK-zARiK8HaYZL27EoXR_TkIVxc-9xFyWWs1mfeTuVOPzMTU6osI9-WvT-JgOlj1mHLXmVQww9tyj9g
2022-01-14 11:35:01
ClearAccessTokenFromRequest
Condition ran but did not log anything
2022-01-14 11:35:01 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing_status_code
201
outgoing_headers
{
  "x-fapi-interaction-id": [
    "dc628acf-6fd3-48ed-a60b-1748d6222194"
  ],
  "Content-Type": [
    "application/jwt"
  ]
}
outgoing_body
eyJraWQiOiJYNWQ0dkZZZkx4YUcxZ2c4X2wzYkZZRmhVYVVWbUU2UGFFc1JXWDJFWXFNIiwidHlwIjoiSldUIiwiYWxnIjoiUFMyNTYifQ.eyJhdWQiOiI3MDkxMzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAiLCJkYXRhIjp7ImRlYnRvckFjY291bnQiOnsibnVtYmVyIjoiMDExMjUyMCIsImFjY291bnRUeXBlIjoiQ0FDQyIsImlzcGIiOiI1ODE2MDc4OSIsImlzc3VlciI6IjAxMTUifSwiZXhwaXJhdGlvbkRhdGVUaW1lIjoiMjAyMi0wMS0xNFQxMzozNTowMVoiLCJ0cmFuc2FjdGlvblRvRGF0ZVRpbWUiOiIyMDIyLTAxLTE0VDEzOjM1OjAxWiIsImxvZ2dlZFVzZXIiOnsiZG9jdW1lbnQiOnsiaWRlbnRpZmljYXRpb24iOiI4Mzg3NjEwMzgwMCIsInJlbCI6IkNQRiJ9fSwiY29uc2VudElkIjoidXJuOmNvbmZvcm1hbmNlOm9pZGY6VzgySVBjbmVNbSIsInRyYW5zYWN0aW9uRnJvbURhdGVUaW1lIjoiMjAyMi0wMS0xNFQxMTozMDowMVoiLCJtZXRhIjp7InRvdGFsUmVjb3JkcyI6MSwicmVxdWVzdERhdGVUaW1lIjoiMjAyMi0wMS0xNFQxMTozNTowMVoiLCJ0b3RhbFBhZ2VzIjoxfSwic3RhdHVzVXBkYXRlRGF0ZVRpbWUiOiIyMDIyLTAxLTE0VDExOjM1OjAxWiIsImxpbmtzIjp7InNlbGYiOiJodHRwczpcL1wvd3d3LmNlcnRpZmljYXRpb24ub3BlbmlkLm5ldFwvdGVzdFwvYVwvU2FmcmFSUFRlc3RwYXltZW50c1wvdjFcL2NvbnNlbnRzIn0sImNyZWRpdG9yIjp7Im5hbWUiOiJKb3PDqSBSZWNlYmVkb3IgU2lsdmEiLCJjcGZDbnBqIjoiNjE0MTIxMTAwMDAxNTUiLCJwZXJzb25UeXBlIjoiUEVTU09BX0pVUklESUNBIn0sInBheW1lbnQiOnsiZGF0ZSI6IjIwMjEtMTItMTciLCJhbW91bnQiOiIzOTAuOTkiLCJjdXJyZW5jeSI6IkJSTCIsImRldGFpbHMiOnsicHJveHkiOiJ2aWN0b3IuYXJlbmFAc2FmcmEuY29tLmJyIiwibG9jYWxJbnN0cnVtZW50IjoiRElDVCIsImNyZWRpdG9yQWNjb3VudCI6eyJudW1iZXIiOiIwMDAwMTM0MTYiLCJhY2NvdW50VHlwZSI6IkNBQ0MiLCJpc3BiIjoiNTgxNjA3ODkiLCJpc3N1ZXIiOiIwMTE1In19LCJ0eXBlIjoiUElYIiwiaWJnZVRvd25Db2RlIjoiMDY0NDg5NSJ9LCJjcmVhdGlvbkRhdGVUaW1lIjoiMjAyMi0wMS0xNFQxMTozNTowMVoiLCJzdGF0dXMiOiJBV0FJVElOR19BVVRIT1JJU0FUSU9OIn0sImlzcyI6Ijc0ZTkyOWQ5LTMzYjYtNGQ4NS04YmE3LWMxNDZjODY3YTgxNyIsImlhdCI6MTY0MjE2MDEwMSwianRpIjoiZjMyOGY2Y2YtNDhiNy00YzBkLWE3ZGMtMjY4NTVjMDg2NmI2In0.ILA6EskI8u3Tmek954rysPlqJWxIusmDyHVl9uxIBz5Fp7F3mUmOX1Q4ecTO9M0JeY0mNNYBm4StfX6Uj4bIdbI4BuZpOy52_hnccL4t9UThnxr2PImo1iybueKq4sDyIco-nrNaaexKxmfehwuyJtZN2xk79lCg8Sd55fAmYlbVwnPKVC3eIO6RJkuAuIttUQhaXQ4h0POheXj1ECUcFXNvqbzMvTpxQuANzVCd4wzS6pyFmkbLhK8PilxcjayCcP3eBvulK-zARiK8HaYZL27EoXR_TkIVxc-9xFyWWs1mfeTuVOPzMTU6osI9-WvT-JgOlj1mHLXmVQww9tyj9g
outgoing_path
payments/v1/consents
2022-01-14 11:35:02 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "x-dynatrace": "FW4;-987853115;1;1343653795;1960;2;-1738730375;336;5277;2h01;3h501687a3;4h07a8;6h7ea20336a3da994d9ab9911933103620;7hd1c0db06385949cf",
  "traceparent": "00-7ea20336a3da994d9ab9911933103620-d1c0db06385949cf-01",
  "tracestate": "985d1479-c51e8ec5@dt\u003dfw4;1;501687a3;7a8;2;0;0;150;d5b7;2h01;3h501687a3;4h07a8;7hd1c0db06385949cf",
  "request-id": "|28c0d260-4449a4c379b97d24.3.",
  "content-type": "application/x-www-form-urlencoded",
  "x-cert": "System.Security.Cryptography.RSAOpenSsl",
  "content-length": "2068",
  "connection": "close"
}
incoming_path
/test-mtls/a/SafraRPTest/par
incoming_body_form_params
{
  "client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer",
  "client_assertion": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImJhZGFiN2ZkNTYzMzRkN2ZhYTJiZGY0ZGZiMjM5ZmFlIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QvYS9TYWZyYVJQVGVzdC8iLCJleHAiOjE2NDIxNjA0MDEsImlzcyI6ImNsaWVudF9YVXdCdVVIUk1UVkhBbGVaRUp4SDE4ODE1IiwiaWF0IjoxNjQyMTYwMTAxLCJuYmYiOjE2NDIxNjAxMDF9.DsDwnj_ZzCpr0Xzqm6MIFjSUuZu-ePuqE_UHAhijlPebVaBjqYfEOdrTbhbGsfomNccVQp6dJTdKCCbgdhiXYT2cHnqVwXi73s4PMBcM4_gzSbdvekTxm2Nv6MN5GVpmuNZk4zsarCa8lYg5UUcyTKDKqDqH7Ag_NlwZCwXMztjUBKVyvMQhPKCr1GIJQT-mkUZoCDIpBhp29frXMl6qaQ9fq2wI9eqNCPMUPZFqTDz3vMpaFff5AMAY3_3gG59gM2RP-BAvxZyQ97usH18_sBVus2tpGiksVjSHyJV9ZVoFJPJS_psBhK0ejaOgS6Nov8kc9Y5YklnZvwtTu2pmAA",
  "request": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgifQ.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.ETg8YfgKTzHj8cXuEKvO6EAOCeQSBJJdkjtjfYWTD2cCu-DgDtq5RNj1_msDS_e0smRSVbZcxBFUDijtll9OegeWg9roUmG8tX9xjEzxEroqbAmGL-IRHk1Ws4DE7BEJti_oKzp5KuQ3Q6k953daphiUJMLJuDBtrJ0qtKxF3DxqNnbNCKHRM8tl0jhF85Ex3keEQDm52Vs7bRU_L-NMGLml1UGvYMDqkW5pNmnJwwy7LYfSO_F7mX0iuUN-6faAb-1TcYHs7ow0_9fj4ZdoQF5_IE44fhM5IrhDvSkvNOpCypalQq9IyxHPmuNDCTEonE24if4vMOKWf-pCTb1VYA"
}
incoming_method
POST
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES256-GCM-SHA384
incoming_tls_cert
-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A== -----END CERTIFICATE-----
incoming_body_json
incoming_query_string_params
{}
incoming_body
client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer&client_assertion=eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImJhZGFiN2ZkNTYzMzRkN2ZhYTJiZGY0ZGZiMjM5ZmFlIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QvYS9TYWZyYVJQVGVzdC8iLCJleHAiOjE2NDIxNjA0MDEsImlzcyI6ImNsaWVudF9YVXdCdVVIUk1UVkhBbGVaRUp4SDE4ODE1IiwiaWF0IjoxNjQyMTYwMTAxLCJuYmYiOjE2NDIxNjAxMDF9.DsDwnj_ZzCpr0Xzqm6MIFjSUuZu-ePuqE_UHAhijlPebVaBjqYfEOdrTbhbGsfomNccVQp6dJTdKCCbgdhiXYT2cHnqVwXi73s4PMBcM4_gzSbdvekTxm2Nv6MN5GVpmuNZk4zsarCa8lYg5UUcyTKDKqDqH7Ag_NlwZCwXMztjUBKVyvMQhPKCr1GIJQT-mkUZoCDIpBhp29frXMl6qaQ9fq2wI9eqNCPMUPZFqTDz3vMpaFff5AMAY3_3gG59gM2RP-BAvxZyQ97usH18_sBVus2tpGiksVjSHyJV9ZVoFJPJS_psBhK0ejaOgS6Nov8kc9Y5YklnZvwtTu2pmAA&request=eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgifQ.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.ETg8YfgKTzHj8cXuEKvO6EAOCeQSBJJdkjtjfYWTD2cCu-DgDtq5RNj1_msDS_e0smRSVbZcxBFUDijtll9OegeWg9roUmG8tX9xjEzxEroqbAmGL-IRHk1Ws4DE7BEJti_oKzp5KuQ3Q6k953daphiUJMLJuDBtrJ0qtKxF3DxqNnbNCKHRM8tl0jhF85Ex3keEQDm52Vs7bRU_L-NMGLml1UGvYMDqkW5pNmnJwwy7LYfSO_F7mX0iuUN-6faAb-1TcYHs7ow0_9fj4ZdoQF5_IE44fhM5IrhDvSkvNOpCypalQq9IyxHPmuNDCTEonE24if4vMOKWf-pCTb1VYA
2022-01-14 11:35:02 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES256-GCM-SHA384
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
PAR endpoint
2022-01-14 11:35:02 SUCCESS
ExtractClientCertificateFromTokenEndpointRequestHeaders
Extracted client certificate
client_certificate
{
  "cert": "-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A\u003d\u003d -----END CERTIFICATE-----",
  "pem": "-----BEGIN CERTIFICATE-----\nMIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL\nBQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx\nFTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB\nTkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3\nMDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD\no28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx\nMzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm\ncmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp\ndmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ\nk/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi\nMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG\nVfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b\nnE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4\nC4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF\nSaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0\nPR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB\nAAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce\nRCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF\nBQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w\nZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v\nY3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu\nY3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P\nAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw\nggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl\ncnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl\ncyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg\ndXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg\nU2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0\ndXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0\naWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG\nCCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh\nc2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn\nLPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO\nhUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+\nVibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1\nzHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO\nVZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
  "subject": {
    "dn": "UID\u003d44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3\u003d#13024252,2.5.4.15\u003d#131450726976617465204f7267616e697a6174696f6e,2.5.4.5\u003d#130e3538313630373839303030313238,CN\u003d*.safra.com.br,OU\u003d709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O\u003dBCO SAFRA S.A.,L\u003dSão Paulo,ST\u003dSP,C\u003dBR"
  },
  "sanDnsNames": [
    "api-mtls-hml.safra.com.br"
  ],
  "sanUris": [],
  "sanIPs": [],
  "sanEmails": []
}
2022-01-14 11:35:02 SUCCESS
CheckForClientCertificate
Found client certificate
2022-01-14 11:35:02 SUCCESS
EnsureClientCertificateMatches
Presented certificate matches registered certificate
actual
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
2022-01-14 11:35:02 SUCCESS
ExtractClientAssertion
Parsed client assertion
client_assertion
{
  "value": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImJhZGFiN2ZkNTYzMzRkN2ZhYTJiZGY0ZGZiMjM5ZmFlIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QvYS9TYWZyYVJQVGVzdC8iLCJleHAiOjE2NDIxNjA0MDEsImlzcyI6ImNsaWVudF9YVXdCdVVIUk1UVkhBbGVaRUp4SDE4ODE1IiwiaWF0IjoxNjQyMTYwMTAxLCJuYmYiOjE2NDIxNjAxMDF9.DsDwnj_ZzCpr0Xzqm6MIFjSUuZu-ePuqE_UHAhijlPebVaBjqYfEOdrTbhbGsfomNccVQp6dJTdKCCbgdhiXYT2cHnqVwXi73s4PMBcM4_gzSbdvekTxm2Nv6MN5GVpmuNZk4zsarCa8lYg5UUcyTKDKqDqH7Ag_NlwZCwXMztjUBKVyvMQhPKCr1GIJQT-mkUZoCDIpBhp29frXMl6qaQ9fq2wI9eqNCPMUPZFqTDz3vMpaFff5AMAY3_3gG59gM2RP-BAvxZyQ97usH18_sBVus2tpGiksVjSHyJV9ZVoFJPJS_psBhK0ejaOgS6Nov8kc9Y5YklnZvwtTu2pmAA",
  "header": {
    "x5t": "imeJtvhk1_UOZIIOKtvS3EW0nDo",
    "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
    "typ": "JWT",
    "alg": "PS256"
  },
  "claims": {
    "sub": "client_XUwBuUHRMTVHAleZEJxH18815",
    "aud": "https://www.certification.openid.net/test/a/SafraRPTest/",
    "nbf": 1642160101,
    "iss": "client_XUwBuUHRMTVHAleZEJxH18815",
    "exp": 1642160401,
    "iat": 1642160101,
    "jti": "badab7fd56334d7faa2bdf4dfb239fae"
  }
}
2022-01-14 11:35:02
EnsureClientAssertionSignatureAlgorithmMatchesRegistered
token_endpoint_auth_signing_alg is not set for the client, any supported algorithm can be used
2022-01-14 11:35:02 SUCCESS
ValidateClientAssertionSignature
client_assertion signature validated
client_assertion
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6ImJhZGFiN2ZkNTYzMzRkN2ZhYTJiZGY0ZGZiMjM5ZmFlIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QvYS9TYWZyYVJQVGVzdC8iLCJleHAiOjE2NDIxNjA0MDEsImlzcyI6ImNsaWVudF9YVXdCdVVIUk1UVkhBbGVaRUp4SDE4ODE1IiwiaWF0IjoxNjQyMTYwMTAxLCJuYmYiOjE2NDIxNjAxMDF9.DsDwnj_ZzCpr0Xzqm6MIFjSUuZu-ePuqE_UHAhijlPebVaBjqYfEOdrTbhbGsfomNccVQp6dJTdKCCbgdhiXYT2cHnqVwXi73s4PMBcM4_gzSbdvekTxm2Nv6MN5GVpmuNZk4zsarCa8lYg5UUcyTKDKqDqH7Ag_NlwZCwXMztjUBKVyvMQhPKCr1GIJQT-mkUZoCDIpBhp29frXMl6qaQ9fq2wI9eqNCPMUPZFqTDz3vMpaFff5AMAY3_3gG59gM2RP-BAvxZyQ97usH18_sBVus2tpGiksVjSHyJV9ZVoFJPJS_psBhK0ejaOgS6Nov8kc9Y5YklnZvwtTu2pmAA
2022-01-14 11:35:02 SUCCESS
EnsureClientAssertionTypeIsJwt
Found JWT assertion type
assertion type
urn:ietf:params:oauth:client-assertion-type:jwt-bearer
2022-01-14 11:35:02 SUCCESS
ValidateClientAssertionClaimsForPAREndpoint
Client Assertion passed all validation checks
2022-01-14 11:35:02 SUCCESS
ExtractRequestObjectFromPAREndpointRequest
Parsed request object
request_object
{
  "value": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgifQ.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.ETg8YfgKTzHj8cXuEKvO6EAOCeQSBJJdkjtjfYWTD2cCu-DgDtq5RNj1_msDS_e0smRSVbZcxBFUDijtll9OegeWg9roUmG8tX9xjEzxEroqbAmGL-IRHk1Ws4DE7BEJti_oKzp5KuQ3Q6k953daphiUJMLJuDBtrJ0qtKxF3DxqNnbNCKHRM8tl0jhF85Ex3keEQDm52Vs7bRU_L-NMGLml1UGvYMDqkW5pNmnJwwy7LYfSO_F7mX0iuUN-6faAb-1TcYHs7ow0_9fj4ZdoQF5_IE44fhM5IrhDvSkvNOpCypalQq9IyxHPmuNDCTEonE24if4vMOKWf-pCTb1VYA",
  "header": {
    "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
    "alg": "PS256"
  },
  "claims": {
    "aud": "https://www.certification.openid.net/test/a/SafraRPTest/",
    "nbf": 1642160101,
    "scope": "openid payments consent:urn:conformance:oidf:W82IPcneMm",
    "iss": "client_XUwBuUHRMTVHAleZEJxH18815",
    "response_type": "code id_token",
    "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
    "state": "3bdfd1dde23d45fb9396035d0643b9ce",
    "code_challenge_method": "S256",
    "exp": 1642160401,
    "nonce": "2c9c847b77844228a88d81bb00c01e50",
    "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
    "code_challenge": "yDUpqSC5ZKgwDg_sgqLct-CcSaD4hu8N7sbjTzb-lnw"
  }
}
2022-01-14 11:35:02 SUCCESS
EnsurePAREndpointRequestDoesNotContainRequestUriParameter
PAR endpoint request does not contain a request_uri parameter
2022-01-14 11:35:02 INFO
ValidateEncryptedRequestObjectHasKid
Skipped evaluation due to missing required element: authorization_request_object jwe_header
path
jwe_header
mapped
object
authorization_request_object
2022-01-14 11:35:02 SUCCESS
FAPIValidateRequestObjectSigningAlg
Request object was signed with a permitted algorithm
alg
PS256
2022-01-14 11:35:02
FAPIBrazilValidateRequestObjectIdTokenACRClaims
acr claim is not requested
2022-01-14 11:35:02 SUCCESS
FAPIValidateRequestObjectExp
Request object contains a valid exp claim, expiry time
exp
"Jan 14, 2022, 11:40:01 AM"
2022-01-14 11:35:02 SUCCESS
FAPI1AdvancedValidateRequestObjectNBFClaim
nbf claim is valid
nbf
"Jan 14, 2022, 11:35:01 AM"
now
"Jan 14, 2022, 11:35:02 AM"
2022-01-14 11:35:02 INFO
ValidateRequestObjectClaims
Missing issuance time
2022-01-14 11:35:02
ValidateRequestObjectClaims
Request object does not contain a max_age claim
2022-01-14 11:35:02 SUCCESS
ValidateRequestObjectClaims
Request object claims passed all validation checks
2022-01-14 11:35:02 SUCCESS
EnsureNumericRequestObjectClaimsAreNotNull
None of the claims expected to have numeric values, have null values
numeric_claims
[
  "max_age"
]
2022-01-14 11:35:02 SUCCESS
EnsureRequestObjectDoesNotContainRequestOrRequestUri
Request object does not contain request or request_uri
2022-01-14 11:35:02 SUCCESS
EnsureRequestObjectDoesNotContainSubWithClientId
Request object does not contain Client Id in sub
2022-01-14 11:35:02 SUCCESS
ValidateRequestObjectSignature
Request object signature validated using a key in the client's JWKS and using the client's registered request_object_signing_alg
request_object
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgifQ.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.ETg8YfgKTzHj8cXuEKvO6EAOCeQSBJJdkjtjfYWTD2cCu-DgDtq5RNj1_msDS_e0smRSVbZcxBFUDijtll9OegeWg9roUmG8tX9xjEzxEroqbAmGL-IRHk1Ws4DE7BEJti_oKzp5KuQ3Q6k953daphiUJMLJuDBtrJ0qtKxF3DxqNnbNCKHRM8tl0jhF85Ex3keEQDm52Vs7bRU_L-NMGLml1UGvYMDqkW5pNmnJwwy7LYfSO_F7mX0iuUN-6faAb-1TcYHs7ow0_9fj4ZdoQF5_IE44fhM5IrhDvSkvNOpCypalQq9IyxHPmuNDCTEonE24if4vMOKWf-pCTb1VYA
request_object_signing_alg
PS256
jwk
Sun RSA public key, 2048 bits
  params: null
  modulus: 27317005133317805192806760528852339923492353512235657242373770667550482636383058152241763242899243590510886742369909995744634317769376156025319367773285730731881660146466929919531999356316138694239765585923733085598540913159621964662231658995625650459587810069348726397568662051897147600110311023758046324349410668829004864378877917443777578185960111723181521868093201680907747046475384551022492435381540942020065252906547519942072030894200912668741513959140858170657378829949009347461870925320758566164123500357237516086049488677768389753461936607006172049603857829706031784001244671456119721973322682338748251959301
  public exponent: 65537
2022-01-14 11:35:02 SUCCESS
EnsureMatchingRedirectUriInRequestObject
Redirect URI matched
actual
https://portalspa-hml.safra.com.br/callback
2022-01-14 11:35:02 SUCCESS
EnsureRequestObjectContainsCodeChallengeWhenUsingPAR
Found required PKCE parameters in request
code_challenge_method
S256
code_challenge
yDUpqSC5ZKgwDg_sgqLct-CcSaD4hu8N7sbjTzb-lnw
2022-01-14 11:35:02 SUCCESS
CreatePAREndpointResponse
Created PAR endpoint response
request_uri
urn:ietf:params:oauth:request_uri:e45f5217-d0c2-49a4-b5cd-14f6b215642b
expires_in
600
2022-01-14 11:35:02 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing_status_code
201
outgoing_headers
{}
outgoing_body
{
  "request_uri": "urn:ietf:params:oauth:request_uri:e45f5217-d0c2-49a4-b5cd-14f6b215642b",
  "expires_in": 600
}
outgoing_path
par
2022-01-14 11:35:05 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "sec-ch-ua": "\" Not;A Brand\";v\u003d\"99\", \"Google Chrome\";v\u003d\"97\", \"Chromium\";v\u003d\"97\"",
  "sec-ch-ua-mobile": "?0",
  "sec-ch-ua-platform": "\"Windows\"",
  "upgrade-insecure-requests": "1",
  "user-agent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/97.0.4692.71 Safari/537.36",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,image/avif,image/webp,image/apng,*/*;q\u003d0.8,application/signed-exchange;v\u003db3;q\u003d0.9",
  "sec-fetch-site": "none",
  "sec-fetch-mode": "navigate",
  "sec-fetch-user": "?1",
  "sec-fetch-dest": "document",
  "accept-encoding": "gzip, deflate, br",
  "accept-language": "pt-BR,pt;q\u003d0.9,en-US;q\u003d0.8,en;q\u003d0.7",
  "cookie": "__utmc\u003d201319536; __utma\u003d201319536.1341971708.1631915075.1641907690.1641941726.54; __utmz\u003d201319536.1641941726.54.15.utmcsr\u003dcertification.openid.net|utmccn\u003d(referral)|utmcmd\u003dreferral|utmcct\u003d/; JSESSIONID\u003dFEBFD2C03A8047BFE56E7C571CE34589",
  "connection": "close"
}
incoming_path
/test/a/SafraRPTest/authorize
incoming_body_form_params
incoming_method
GET
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES128-GCM-SHA256
incoming_tls_cert
incoming_body_json
incoming_query_string_params
{
  "request_uri": "urn:ietf:params:oauth:request_uri:e45f5217-d0c2-49a4-b5cd-14f6b215642b",
  "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
  "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
  "scope": "openid payments consent:urn:conformance:oidf:W82IPcneMm",
  "response_type": "code id_token"
}
incoming_body
2022-01-14 11:35:05 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES128-GCM-SHA256
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
Authorization endpoint
2022-01-14 11:35:05 SUCCESS
EnsureAuthorizationRequestDoesNotContainRequestWhenUsingPAR
Request does not contain a request parameter
2022-01-14 11:35:05 INFO
ValidateEncryptedRequestObjectHasKid
Skipped evaluation due to missing required element: authorization_request_object jwe_header
path
jwe_header
mapped
object
authorization_request_object
2022-01-14 11:35:05 SUCCESS
CreateEffectiveAuthorizationRequestParameters
Merged http request parameters with request object claims
effective_authorization_endpoint_request
{
  "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
  "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
  "scope": "openid payments consent:urn:conformance:oidf:W82IPcneMm",
  "response_type": "code id_token",
  "aud": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "nbf": 1642160101,
  "iss": "client_XUwBuUHRMTVHAleZEJxH18815",
  "state": "3bdfd1dde23d45fb9396035d0643b9ce",
  "code_challenge_method": "S256",
  "exp": 1642160401,
  "nonce": "2c9c847b77844228a88d81bb00c01e50",
  "code_challenge": "yDUpqSC5ZKgwDg_sgqLct-CcSaD4hu8N7sbjTzb-lnw"
}
2022-01-14 11:35:05 SUCCESS
EnsureClientIdInAuthorizationRequestParametersMatchRequestObject
client_id http request parameter value matches client_id in request object
2022-01-14 11:35:05 SUCCESS
ExtractRequestedScopes
Requested scopes
scope
openid payments consent:urn:conformance:oidf:W82IPcneMm
2022-01-14 11:35:05 SUCCESS
FAPIBrazilValidateConsentScope
Found consent scope in request
actual
[
  "openid",
  "payments",
  "consent:urn:conformance:oidf:W82IPcneMm"
]
expected
consent:urn:conformance:oidf:W82IPcneMm
2022-01-14 11:35:05 SUCCESS
EnsureScopeContainsPayments
Found payments scope in request
actual
[
  "openid",
  "payments",
  "consent:urn:conformance:oidf:W82IPcneMm"
]
2022-01-14 11:35:05 SUCCESS
EnsureResponseTypeIsCodeIdToken
Response type is expected value
expected
code id_token
2022-01-14 11:35:05 SUCCESS
EnsureOpenIDInScopeRequest
Found 'openid' scope in request
actual
[
  "openid",
  "payments",
  "consent:urn:conformance:oidf:W82IPcneMm"
]
expected
openid
2022-01-14 11:35:05 SUCCESS
EnsureMatchingClientId
Client ID matched
client_id
client_XUwBuUHRMTVHAleZEJxH18815
2022-01-14 11:35:05 SUCCESS
CreateAuthorizationCode
Created authorization code
authorization_code
mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe
2022-01-14 11:35:05 SUCCESS
ExtractNonceFromAuthorizationRequest
Extracted nonce
nonce
2c9c847b77844228a88d81bb00c01e50
2022-01-14 11:35:05 SUCCESS
CalculateCHash
Successful c_hash encoding
c_hash
eh_l3mpM_RZgJALlL2Cddg
2022-01-14 11:35:05 SUCCESS
CalculateSHash
Successful s_hash encoding
s_hash
5Jf9l6b4ul0iegzDPjTfsw
2022-01-14 11:35:05 SUCCESS
GenerateIdTokenClaims
Created ID Token Claims
iss
https://www.certification.openid.net/test/a/SafraRPTest/
sub
user-subject-1234531
aud
client_XUwBuUHRMTVHAleZEJxH18815
nonce
2c9c847b77844228a88d81bb00c01e50
iat
1642160105
exp
1642160405
2022-01-14 11:35:05
FAPIBrazilAddCPFAndCPNJToIdTokenClaims
Request object does not contain a claims element.id_token
2022-01-14 11:35:05 SUCCESS
AddCHashToIdTokenClaims
Added c_hash to ID token claims
c_hash
eh_l3mpM_RZgJALlL2Cddg
id_token_claims
{
  "iss": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "sub": "user-subject-1234531",
  "aud": "client_XUwBuUHRMTVHAleZEJxH18815",
  "nonce": "2c9c847b77844228a88d81bb00c01e50",
  "iat": 1642160105,
  "exp": 1642160405,
  "c_hash": "eh_l3mpM_RZgJALlL2Cddg"
}
2022-01-14 11:35:05 SUCCESS
AddSHashToIdTokenClaims
Added s_hash to ID token claims
s_hash
5Jf9l6b4ul0iegzDPjTfsw
id_token_claims
{
  "iss": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "sub": "user-subject-1234531",
  "aud": "client_XUwBuUHRMTVHAleZEJxH18815",
  "nonce": "2c9c847b77844228a88d81bb00c01e50",
  "iat": 1642160105,
  "exp": 1642160405,
  "c_hash": "eh_l3mpM_RZgJALlL2Cddg",
  "s_hash": "5Jf9l6b4ul0iegzDPjTfsw"
}
2022-01-14 11:35:05 INFO
AddAtHashToIdTokenClaims
Skipped evaluation due to missing required string: at_hash
expected
at_hash
2022-01-14 11:35:05 INFO
FAPIBrazilAddACRClaimToIdTokenClaims
Skipped evaluation due to missing required string: requested_id_token_acr_values
expected
requested_id_token_acr_values
2022-01-14 11:35:05 SUCCESS
SignIdToken
Signed the ID token
id_token
eyJraWQiOiJYNWQ0dkZZZkx4YUcxZ2c4X2wzYkZZRmhVYVVWbUU2UGFFc1JXWDJFWXFNIiwiYWxnIjoiUFMyNTYifQ.eyJzdWIiOiJ1c2VyLXN1YmplY3QtMTIzNDUzMSIsImF1ZCI6ImNsaWVudF9YVXdCdVVIUk1UVkhBbGVaRUp4SDE4ODE1IiwiY19oYXNoIjoiZWhfbDNtcE1fUlpnSkFMbEwyQ2RkZyIsInNfaGFzaCI6IjVKZjlsNmI0dWwwaWVnekRQalRmc3ciLCJpc3MiOiJodHRwczpcL1wvd3d3LmNlcnRpZmljYXRpb24ub3BlbmlkLm5ldFwvdGVzdFwvYVwvU2FmcmFSUFRlc3RcLyIsImV4cCI6MTY0MjE2MDQwNSwibm9uY2UiOiIyYzljODQ3Yjc3ODQ0MjI4YTg4ZDgxYmIwMGMwMWU1MCIsImlhdCI6MTY0MjE2MDEwNX0.V9J0hDGJQ9L00sTvmBATer7KL0smHtiuGig7bnafNGjSkarGsq0uiTH9LvIfupUIrtJkxweG0NVWUGHTrk7c5RCvc1XbR95AfaaXRPFzjIS7SKiK2b6vldFs9QCKke1UK933ouFAhqD9DhiCMKAmzuSdR5FP2QlTACBEXEBlpYECIyn9_kfPRRo8P4wc-tED6fTH4S3NGWVemYJOil5I4fIzBr6fKBuGFu53YDUvWWC5cSDgXh94MaQGlM_0bTa8XEg_j4ge71FhyV_D8_ARQvcfiHy7IHSVOoaiR03sCm2UaQbh8P9QCb8R4EXonyH9OUhWjAAxJbiQYYtom27fOw
2022-01-14 11:35:05
EncryptIdToken
Encrypted the id token
id_token_encrypted_response_alg
RSA-OAEP
id_token_encrypted_response_enc
A256GCM
id_token
eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.gQj1Z454k53-_An4YTu4_jUBoOEJiW8Zqpf47LtaK9EI5U0KnEF1GyVwAlGE-IjNqla0yYz3yxIZvjhzdj453mDvYnoF0Qc_Wcli3mcUPQ3Lc4CPN4Wc0-eBZoSv-Iv9ek5vO86wXJ6L9FU2jpyv7Hh4_gpo7ZFRfhr_rRM2Pvn1z5HL1Ezc6cy1CgSjQo3U7F7DSGV73maDsQ_JtFpDWv4LYJK3gUv6SGORccFseAmokcRoa4jM6xOCuy3F9SQZI1udmjjje89GtL8cXRjenobgqhyb2jM0XZEVUCod2DV2p7NEZ-X8yoVsMLYm5k9kzZEsn1s9bzhdIGiX2on9-g.YfKlH2G3f65K-96y.wABwQ2r33Oh-EzzPQkeECedgIgTtSk3L0_b174Z-BSQ5mPt-naLMktwZrkMzNs6HGFo-C7I5viLdzdQv8T2FPNyHTpTbOpxSuy5US0w79MEQ1ALKqd-ouKxDrt685Iksy55WBn2C_BR-egfYB-AgFGpq5qT4wf3ofeUknZY0tHR63YWkLyKo7qc3d16ZtIookAhXk0Tii3dPjTLjV-e2gjjRTsbfSVC_IqFVXKcVS5xsphKDf3YqlZhMJ9Ja6878ulrkXG3HFxxEBmyWrM7pSqkb_oh1vwoLs9OF3D0yj6FvRx30WxqElUarvh0CkD82KFuGPK1ZZ-NQJj9KFK9dhB2DCOtzJ_5-MU0z9CupdkWpeUlghEN6kDUfn8jS41SSwlhg9XDoztenvjHgw3aUFXmGEjvp2APRMHgJg4HpC5cGxKOpv8xgGzgkiM57KX1Pt39FN3FJp_ql_QbGAwYTjkP-9OpfalWR6K5DrE3HM16Yg7q8WiFEUGvsVcVuVojPBfEozOfAp6i0I88OjE_faH9PClq2Ch6cxRd33hj2VVKA_zeloTxaCWdXj26tYQ-mJzs39-vC0tVMvLq0jKl5PoUQj8ht0h5NISQOMc-OEq0bNKXmmfuLV6BKm2meFICHJQFXNa97oAV9R1CX356NK0csLVrIt_wdPXE5IJMwzl4ob-NqG3t5O45VPh4Wk7fuClKYwYK1Ngden7Ro31HqkV9ATfoItOnpy-rblQEN6YSmH2AVSr1GjjnYvMI1SUm4OtreneUqT8cphtFX9lvaFUg_VkmUYe6Xz830DeK5NShlDNC00S65MUJoOz1KeZyuXOCPxXw3sGeaPioMU9X5eoKKXCjx2rKM6BuA9-DBc8H-7D82jRxLft_I7BmC78FOCRhAbQeSTdnTiNFqESJNuTvNXrUV6mPtrj2KSjg-9vrm13cpsblDzjwf4oB1runqHFlLynwR2Mm2aYiJC90OvVHLt3_HyC-kO3KR-hhJAutEntomG0NWYHDAfBduz79RW_ycTzjxsUbYeopKdJdo0b1SO0IHyARjoF6U2yr2HGXTvT9evEyofM4XxqlF8G-nYA.7FMcbx6hdubhDMSKjfXT6Q
2022-01-14 11:35:05 SUCCESS
FAPIBrazilChangeConsentStatusToAuthorized
Changed consent status to AUTHORISED
consent
{
  "data": {
    "consentId": "urn:conformance:oidf:W82IPcneMm",
    "creationDateTime": "2022-01-14T11:35:01Z",
    "status": "AUTHORISED",
    "statusUpdateDateTime": "2022-01-14T11:35:05Z",
    "expirationDateTime": "2022-01-14T13:35:01Z",
    "transactionFromDateTime": "2022-01-14T11:30:01Z",
    "transactionToDateTime": "2022-01-14T13:35:01Z",
    "links": {
      "self": "https://www.certification.openid.net/test/a/SafraRPTestpayments/v1/consents"
    },
    "meta": {
      "totalRecords": 1,
      "totalPages": 1,
      "requestDateTime": "2022-01-14T11:35:01Z"
    },
    "creditor": {
      "name": "José Recebedor Silva",
      "cpfCnpj": "61412110000155",
      "personType": "PESSOA_JURIDICA"
    },
    "loggedUser": {
      "document": {
        "identification": "83876103800",
        "rel": "CPF"
      }
    },
    "payment": {
      "date": "2021-12-17",
      "amount": "390.99",
      "currency": "BRL",
      "details": {
        "proxy": "victor.arena@safra.com.br",
        "localInstrument": "DICT",
        "creditorAccount": {
          "number": "000013416",
          "accountType": "CACC",
          "ispb": "58160789",
          "issuer": "0115"
        }
      },
      "type": "PIX",
      "ibgeTownCode": "0644895"
    },
    "debtorAccount": {
      "number": "0112520",
      "accountType": "CACC",
      "ispb": "58160789",
      "issuer": "0115"
    }
  },
  "aud": "709138dd-6e9d-5f96-bfff-69a5b2cb3ec0",
  "iat": 1642160101,
  "jti": "f328f6cf-48b7-4c0d-a7dc-26855c0866b6",
  "iss": "74e929d9-33b6-4d85-8ba7-c146c867a817"
}
2022-01-14 11:35:05 SUCCESS
CreateAuthorizationEndpointResponseParams
Added authorization_endpoint_response_params to environment
params
{
  "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
  "state": "3bdfd1dde23d45fb9396035d0643b9ce"
}
2022-01-14 11:35:05 SUCCESS
AddCodeToAuthorizationEndpointResponseParams
Added code to authorization endpoint response params
authorization_endpoint_response_params
{
  "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
  "state": "3bdfd1dde23d45fb9396035d0643b9ce",
  "code": "mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe"
}
2022-01-14 11:35:05 SUCCESS
AddIdTokenToAuthorizationEndpointResponseParams
Added id_token to authorization endpoint response params
authorization_endpoint_response_params
{
  "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
  "state": "3bdfd1dde23d45fb9396035d0643b9ce",
  "code": "mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe",
  "id_token": "eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.gQj1Z454k53-_An4YTu4_jUBoOEJiW8Zqpf47LtaK9EI5U0KnEF1GyVwAlGE-IjNqla0yYz3yxIZvjhzdj453mDvYnoF0Qc_Wcli3mcUPQ3Lc4CPN4Wc0-eBZoSv-Iv9ek5vO86wXJ6L9FU2jpyv7Hh4_gpo7ZFRfhr_rRM2Pvn1z5HL1Ezc6cy1CgSjQo3U7F7DSGV73maDsQ_JtFpDWv4LYJK3gUv6SGORccFseAmokcRoa4jM6xOCuy3F9SQZI1udmjjje89GtL8cXRjenobgqhyb2jM0XZEVUCod2DV2p7NEZ-X8yoVsMLYm5k9kzZEsn1s9bzhdIGiX2on9-g.YfKlH2G3f65K-96y.wABwQ2r33Oh-EzzPQkeECedgIgTtSk3L0_b174Z-BSQ5mPt-naLMktwZrkMzNs6HGFo-C7I5viLdzdQv8T2FPNyHTpTbOpxSuy5US0w79MEQ1ALKqd-ouKxDrt685Iksy55WBn2C_BR-egfYB-AgFGpq5qT4wf3ofeUknZY0tHR63YWkLyKo7qc3d16ZtIookAhXk0Tii3dPjTLjV-e2gjjRTsbfSVC_IqFVXKcVS5xsphKDf3YqlZhMJ9Ja6878ulrkXG3HFxxEBmyWrM7pSqkb_oh1vwoLs9OF3D0yj6FvRx30WxqElUarvh0CkD82KFuGPK1ZZ-NQJj9KFK9dhB2DCOtzJ_5-MU0z9CupdkWpeUlghEN6kDUfn8jS41SSwlhg9XDoztenvjHgw3aUFXmGEjvp2APRMHgJg4HpC5cGxKOpv8xgGzgkiM57KX1Pt39FN3FJp_ql_QbGAwYTjkP-9OpfalWR6K5DrE3HM16Yg7q8WiFEUGvsVcVuVojPBfEozOfAp6i0I88OjE_faH9PClq2Ch6cxRd33hj2VVKA_zeloTxaCWdXj26tYQ-mJzs39-vC0tVMvLq0jKl5PoUQj8ht0h5NISQOMc-OEq0bNKXmmfuLV6BKm2meFICHJQFXNa97oAV9R1CX356NK0csLVrIt_wdPXE5IJMwzl4ob-NqG3t5O45VPh4Wk7fuClKYwYK1Ngden7Ro31HqkV9ATfoItOnpy-rblQEN6YSmH2AVSr1GjjnYvMI1SUm4OtreneUqT8cphtFX9lvaFUg_VkmUYe6Xz830DeK5NShlDNC00S65MUJoOz1KeZyuXOCPxXw3sGeaPioMU9X5eoKKXCjx2rKM6BuA9-DBc8H-7D82jRxLft_I7BmC78FOCRhAbQeSTdnTiNFqESJNuTvNXrUV6mPtrj2KSjg-9vrm13cpsblDzjwf4oB1runqHFlLynwR2Mm2aYiJC90OvVHLt3_HyC-kO3KR-hhJAutEntomG0NWYHDAfBduz79RW_ycTzjxsUbYeopKdJdo0b1SO0IHyARjoF6U2yr2HGXTvT9evEyofM4XxqlF8G-nYA.7FMcbx6hdubhDMSKjfXT6Q"
}
2022-01-14 11:35:05
SendAuthorizationResponseWithResponseModeFragment
Redirecting back to client
uri
https://portalspa-hml.safra.com.br/callback#state=3bdfd1dde23d45fb9396035d0643b9ce&code=mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe&id_token=eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.gQj1Z454k53-_An4YTu4_jUBoOEJiW8Zqpf47LtaK9EI5U0KnEF1GyVwAlGE-IjNqla0yYz3yxIZvjhzdj453mDvYnoF0Qc_Wcli3mcUPQ3Lc4CPN4Wc0-eBZoSv-Iv9ek5vO86wXJ6L9FU2jpyv7Hh4_gpo7ZFRfhr_rRM2Pvn1z5HL1Ezc6cy1CgSjQo3U7F7DSGV73maDsQ_JtFpDWv4LYJK3gUv6SGORccFseAmokcRoa4jM6xOCuy3F9SQZI1udmjjje89GtL8cXRjenobgqhyb2jM0XZEVUCod2DV2p7NEZ-X8yoVsMLYm5k9kzZEsn1s9bzhdIGiX2on9-g.YfKlH2G3f65K-96y.wABwQ2r33Oh-EzzPQkeECedgIgTtSk3L0_b174Z-BSQ5mPt-naLMktwZrkMzNs6HGFo-C7I5viLdzdQv8T2FPNyHTpTbOpxSuy5US0w79MEQ1ALKqd-ouKxDrt685Iksy55WBn2C_BR-egfYB-AgFGpq5qT4wf3ofeUknZY0tHR63YWkLyKo7qc3d16ZtIookAhXk0Tii3dPjTLjV-e2gjjRTsbfSVC_IqFVXKcVS5xsphKDf3YqlZhMJ9Ja6878ulrkXG3HFxxEBmyWrM7pSqkb_oh1vwoLs9OF3D0yj6FvRx30WxqElUarvh0CkD82KFuGPK1ZZ-NQJj9KFK9dhB2DCOtzJ_5-MU0z9CupdkWpeUlghEN6kDUfn8jS41SSwlhg9XDoztenvjHgw3aUFXmGEjvp2APRMHgJg4HpC5cGxKOpv8xgGzgkiM57KX1Pt39FN3FJp_ql_QbGAwYTjkP-9OpfalWR6K5DrE3HM16Yg7q8WiFEUGvsVcVuVojPBfEozOfAp6i0I88OjE_faH9PClq2Ch6cxRd33hj2VVKA_zeloTxaCWdXj26tYQ-mJzs39-vC0tVMvLq0jKl5PoUQj8ht0h5NISQOMc-OEq0bNKXmmfuLV6BKm2meFICHJQFXNa97oAV9R1CX356NK0csLVrIt_wdPXE5IJMwzl4ob-NqG3t5O45VPh4Wk7fuClKYwYK1Ngden7Ro31HqkV9ATfoItOnpy-rblQEN6YSmH2AVSr1GjjnYvMI1SUm4OtreneUqT8cphtFX9lvaFUg_VkmUYe6Xz830DeK5NShlDNC00S65MUJoOz1KeZyuXOCPxXw3sGeaPioMU9X5eoKKXCjx2rKM6BuA9-DBc8H-7D82jRxLft_I7BmC78FOCRhAbQeSTdnTiNFqESJNuTvNXrUV6mPtrj2KSjg-9vrm13cpsblDzjwf4oB1runqHFlLynwR2Mm2aYiJC90OvVHLt3_HyC-kO3KR-hhJAutEntomG0NWYHDAfBduz79RW_ycTzjxsUbYeopKdJdo0b1SO0IHyARjoF6U2yr2HGXTvT9evEyofM4XxqlF8G-nYA.7FMcbx6hdubhDMSKjfXT6Q
2022-01-14 11:35:05 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing
org.springframework.web.servlet.view.RedirectView: [RedirectView]; URL [https://portalspa-hml.safra.com.br/callback#state=3bdfd1dde23d45fb9396035d0643b9ce&code=mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe&id_token=eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.gQj1Z454k53-_An4YTu4_jUBoOEJiW8Zqpf47LtaK9EI5U0KnEF1GyVwAlGE-IjNqla0yYz3yxIZvjhzdj453mDvYnoF0Qc_Wcli3mcUPQ3Lc4CPN4Wc0-eBZoSv-Iv9ek5vO86wXJ6L9FU2jpyv7Hh4_gpo7ZFRfhr_rRM2Pvn1z5HL1Ezc6cy1CgSjQo3U7F7DSGV73maDsQ_JtFpDWv4LYJK3gUv6SGORccFseAmokcRoa4jM6xOCuy3F9SQZI1udmjjje89GtL8cXRjenobgqhyb2jM0XZEVUCod2DV2p7NEZ-X8yoVsMLYm5k9kzZEsn1s9bzhdIGiX2on9-g.YfKlH2G3f65K-96y.wABwQ2r33Oh-EzzPQkeECedgIgTtSk3L0_b174Z-BSQ5mPt-naLMktwZrkMzNs6HGFo-C7I5viLdzdQv8T2FPNyHTpTbOpxSuy5US0w79MEQ1ALKqd-ouKxDrt685Iksy55WBn2C_BR-egfYB-AgFGpq5qT4wf3ofeUknZY0tHR63YWkLyKo7qc3d16ZtIookAhXk0Tii3dPjTLjV-e2gjjRTsbfSVC_IqFVXKcVS5xsphKDf3YqlZhMJ9Ja6878ulrkXG3HFxxEBmyWrM7pSqkb_oh1vwoLs9OF3D0yj6FvRx30WxqElUarvh0CkD82KFuGPK1ZZ-NQJj9KFK9dhB2DCOtzJ_5-MU0z9CupdkWpeUlghEN6kDUfn8jS41SSwlhg9XDoztenvjHgw3aUFXmGEjvp2APRMHgJg4HpC5cGxKOpv8xgGzgkiM57KX1Pt39FN3FJp_ql_QbGAwYTjkP-9OpfalWR6K5DrE3HM16Yg7q8WiFEUGvsVcVuVojPBfEozOfAp6i0I88OjE_faH9PClq2Ch6cxRd33hj2VVKA_zeloTxaCWdXj26tYQ-mJzs39-vC0tVMvLq0jKl5PoUQj8ht0h5NISQOMc-OEq0bNKXmmfuLV6BKm2meFICHJQFXNa97oAV9R1CX356NK0csLVrIt_wdPXE5IJMwzl4ob-NqG3t5O45VPh4Wk7fuClKYwYK1Ngden7Ro31HqkV9ATfoItOnpy-rblQEN6YSmH2AVSr1GjjnYvMI1SUm4OtreneUqT8cphtFX9lvaFUg_VkmUYe6Xz830DeK5NShlDNC00S65MUJoOz1KeZyuXOCPxXw3sGeaPioMU9X5eoKKXCjx2rKM6BuA9-DBc8H-7D82jRxLft_I7BmC78FOCRhAbQeSTdnTiNFqESJNuTvNXrUV6mPtrj2KSjg-9vrm13cpsblDzjwf4oB1runqHFlLynwR2Mm2aYiJC90OvVHLt3_HyC-kO3KR-hhJAutEntomG0NWYHDAfBduz79RW_ycTzjxsUbYeopKdJdo0b1SO0IHyARjoF6U2yr2HGXTvT9evEyofM4XxqlF8G-nYA.7FMcbx6hdubhDMSKjfXT6Q]
outgoing_path
authorize
2022-01-14 11:35:07 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "x-dynatrace": "FW4;-987853115;6;1343653795;1961;0;-1738730375;897;a68a;2h01;3h501687a3;4h07a9;6h377871a849e2764ce4cc0041054e3d8c;7hbfd00f859cd9db8c",
  "traceparent": "00-377871a849e2764ce4cc0041054e3d8c-bfd00f859cd9db8c-01",
  "tracestate": "985d1479-c51e8ec5@dt\u003dfw4;6;501687a3;7a9;0;0;0;381;e96c;2h01;3h501687a3;4h07a9;7hbfd00f859cd9db8c",
  "connection": "close"
}
incoming_path
/test/a/SafraRPTest/.well-known/openid-configuration
incoming_body_form_params
incoming_method
GET
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES256-GCM-SHA384
incoming_tls_cert
incoming_body_json
incoming_query_string_params
{}
incoming_body
2022-01-14 11:35:07 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES256-GCM-SHA384
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
2022-01-14 11:35:07 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing_status_code
200
outgoing_headers
{}
outgoing_body
{
  "issuer": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "authorization_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/authorize",
  "token_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/token",
  "jwks_uri": "https://www.certification.openid.net/test/a/SafraRPTest/jwks",
  "registration_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/register",
  "userinfo_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/userinfo",
  "mtls_endpoint_aliases": {
    "token_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "registration_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/register",
    "userinfo_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/userinfo",
    "pushed_authorization_request_endpoint": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/par"
  },
  "tls_client_certificate_bound_access_tokens": true,
  "request_parameter_supported": true,
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "client_credentials",
    "refresh_token"
  ],
  "claims_parameter_supported": true,
  "request_object_encryption_alg_values_supported": [
    "RSA-OAEP"
  ],
  "request_object_encryption_enc_values_supported": [
    "A256GCM"
  ],
  "claims_supported": [
    "cpf",
    "cnpj",
    "acr"
  ],
  "acr_values_supported": [
    "urn:brasil:openbanking:loa2",
    "urn:brasil:openbanking:loa3"
  ],
  "id_token_signing_alg_values_supported": [
    "PS256"
  ],
  "request_object_signing_alg_values_supported": [
    "PS256"
  ],
  "scopes_supported": [
    "openid",
    "phone",
    "profile",
    "email",
    "address",
    "offline_access",
    "consents",
    "resources",
    "payments"
  ],
  "token_endpoint_auth_methods_supported": [
    "private_key_jwt"
  ],
  "pushed_authorization_request_endpoint": "https://www.certification.openid.net/test/a/SafraRPTest/par",
  "require_pushed_authorization_requests": true,
  "response_types_supported": [
    "code id_token"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "PS256"
  ]
}
outgoing_path
.well-known/openid-configuration
2022-01-14 11:35:08 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "x-dynatrace": "FW4;-987853115;6;1343653795;1961;1;-1738730375;897;aae5;2h01;3h501687a3;4h07a9;6h377871a849e2764ce4cc0041054e3d8c;7hac19dfab46bfc3a8",
  "traceparent": "00-377871a849e2764ce4cc0041054e3d8c-ac19dfab46bfc3a8-01",
  "tracestate": "985d1479-c51e8ec5@dt\u003dfw4;6;501687a3;7a9;1;0;0;381;0f48;2h01;3h501687a3;4h07a9;7hac19dfab46bfc3a8",
  "content-type": "application/x-www-form-urlencoded",
  "x-cert": "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\u003d\u003d",
  "content-length": "1255",
  "connection": "close"
}
incoming_path
/test-mtls/a/SafraRPTest/token
incoming_body_form_params
{
  "grant_type": "authorization_code",
  "code": "mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe",
  "redirect_uri": "https://portalspa-hml.safra.com.br/callback",
  "client_id": "client_XUwBuUHRMTVHAleZEJxH18815",
  "code_verifier": "2c9c847b77844228a88d81bb00c01e502c9c847b77844228a88d81bb00c01e503bdfd1dde23d45fb9396035d0643b9ce3bdfd1dde23d45fb9396035d0643b9ce",
  "client_assertion": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6IjIzNGQ0ZjQ1ZjFjMjQwMGU4NjRkMzNlYTczNDM4NmUwIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwNDA3LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDEwNywibmJmIjoxNjQyMTYwMTA3fQ.KTLJ0PjuH7T8g4fBKxknDc6go9n2XGLU-B4rzlCd4I6THx76uf7WhvbskCSG0ITnW3h3ci7Y4i57_bVjv_bSspc0nBL1eDp6D6lNrPGkNbp-7184xz7qjRTs95o2W3kf5lm7eRKD6XF0cDSd-J_qS_jey2sAI-2AwvVGy1qLsJy4K5WV1GZZx0D5fQpuJXXAZOo5q_9U1gBI9VVF8DLaASIVG5pcqwjERSnlyiXTAiwcRzZWeyRwHHVxLSp07KZgsxlcgADfkjokCQKEdWgdmDayQ0v-MeUw_A0tCxjR-7GIeeKE2sVBQnx7_5BJwBxJ2fmpYk0FDd3OZ8OYNAcugQ",
  "client_assertion_type": "urn:ietf:params:oauth:client-assertion-type:jwt-bearer"
}
incoming_method
POST
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES256-GCM-SHA384
incoming_tls_cert
-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A== -----END CERTIFICATE-----
incoming_body_json
incoming_query_string_params
{}
incoming_body
grant_type=authorization_code&code=mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe&redirect_uri=https%3A%2F%2Fportalspa-hml.safra.com.br%2Fcallback&client_id=client_XUwBuUHRMTVHAleZEJxH18815&code_verifier=2c9c847b77844228a88d81bb00c01e502c9c847b77844228a88d81bb00c01e503bdfd1dde23d45fb9396035d0643b9ce3bdfd1dde23d45fb9396035d0643b9ce&client_assertion=eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6IjIzNGQ0ZjQ1ZjFjMjQwMGU4NjRkMzNlYTczNDM4NmUwIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwNDA3LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDEwNywibmJmIjoxNjQyMTYwMTA3fQ.KTLJ0PjuH7T8g4fBKxknDc6go9n2XGLU-B4rzlCd4I6THx76uf7WhvbskCSG0ITnW3h3ci7Y4i57_bVjv_bSspc0nBL1eDp6D6lNrPGkNbp-7184xz7qjRTs95o2W3kf5lm7eRKD6XF0cDSd-J_qS_jey2sAI-2AwvVGy1qLsJy4K5WV1GZZx0D5fQpuJXXAZOo5q_9U1gBI9VVF8DLaASIVG5pcqwjERSnlyiXTAiwcRzZWeyRwHHVxLSp07KZgsxlcgADfkjokCQKEdWgdmDayQ0v-MeUw_A0tCxjR-7GIeeKE2sVBQnx7_5BJwBxJ2fmpYk0FDd3OZ8OYNAcugQ&client_assertion_type=urn%3Aietf%3Aparams%3Aoauth%3Aclient-assertion-type%3Ajwt-bearer
2022-01-14 11:35:08 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES256-GCM-SHA384
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
Token endpoint
2022-01-14 11:35:08 SUCCESS
ExtractClientCertificateFromTokenEndpointRequestHeaders
Extracted client certificate
client_certificate
{
  "cert": "-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A\u003d\u003d -----END CERTIFICATE-----",
  "pem": "-----BEGIN CERTIFICATE-----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\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
  "subject": {
    "dn": "UID\u003d44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3\u003d#13024252,2.5.4.15\u003d#131450726976617465204f7267616e697a6174696f6e,2.5.4.5\u003d#130e3538313630373839303030313238,CN\u003d*.safra.com.br,OU\u003d709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O\u003dBCO SAFRA S.A.,L\u003dSão Paulo,ST\u003dSP,C\u003dBR"
  },
  "sanDnsNames": [
    "api-mtls-hml.safra.com.br"
  ],
  "sanUris": [],
  "sanIPs": [],
  "sanEmails": []
}
2022-01-14 11:35:08 SUCCESS
CheckForClientCertificate
Found client certificate
2022-01-14 11:35:08 SUCCESS
EnsureClientCertificateMatches
Presented certificate matches registered certificate
actual
-----BEGIN CERTIFICATE-----
MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL
BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx
FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB
TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3
MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD
o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx
MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm
cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp
dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ
k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG
VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b
nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4
C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF
SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0
PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB
AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce
RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF
BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w
ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v
Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu
Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P
AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw
ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl
cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl
cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg
dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg
U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0
dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0
aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG
CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh
c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn
LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO
hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+
Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1
zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO
VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af
1zroWKsv2A==
-----END CERTIFICATE-----
2022-01-14 11:35:08 SUCCESS
ExtractClientAssertion
Parsed client assertion
client_assertion
{
  "value": "eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6IjIzNGQ0ZjQ1ZjFjMjQwMGU4NjRkMzNlYTczNDM4NmUwIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwNDA3LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDEwNywibmJmIjoxNjQyMTYwMTA3fQ.KTLJ0PjuH7T8g4fBKxknDc6go9n2XGLU-B4rzlCd4I6THx76uf7WhvbskCSG0ITnW3h3ci7Y4i57_bVjv_bSspc0nBL1eDp6D6lNrPGkNbp-7184xz7qjRTs95o2W3kf5lm7eRKD6XF0cDSd-J_qS_jey2sAI-2AwvVGy1qLsJy4K5WV1GZZx0D5fQpuJXXAZOo5q_9U1gBI9VVF8DLaASIVG5pcqwjERSnlyiXTAiwcRzZWeyRwHHVxLSp07KZgsxlcgADfkjokCQKEdWgdmDayQ0v-MeUw_A0tCxjR-7GIeeKE2sVBQnx7_5BJwBxJ2fmpYk0FDd3OZ8OYNAcugQ",
  "header": {
    "x5t": "imeJtvhk1_UOZIIOKtvS3EW0nDo",
    "kid": "F_zU9LD1--CL5SvOm7aeqKpn9nte7OFLhq92U-V3f68",
    "typ": "JWT",
    "alg": "PS256"
  },
  "claims": {
    "sub": "client_XUwBuUHRMTVHAleZEJxH18815",
    "aud": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/token",
    "nbf": 1642160107,
    "iss": "client_XUwBuUHRMTVHAleZEJxH18815",
    "exp": 1642160407,
    "iat": 1642160107,
    "jti": "234d4f45f1c2400e864d33ea734386e0"
  }
}
2022-01-14 11:35:08
EnsureClientAssertionSignatureAlgorithmMatchesRegistered
token_endpoint_auth_signing_alg is not set for the client, any supported algorithm can be used
2022-01-14 11:35:08 SUCCESS
ValidateClientAssertionSignature
client_assertion signature validated
client_assertion
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.eyJzdWIiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImp0aSI6IjIzNGQ0ZjQ1ZjFjMjQwMGU4NjRkMzNlYTczNDM4NmUwIiwiYXVkIjoiaHR0cHM6Ly93d3cuY2VydGlmaWNhdGlvbi5vcGVuaWQubmV0L3Rlc3QtbXRscy9hL1NhZnJhUlBUZXN0L3Rva2VuIiwiZXhwIjoxNjQyMTYwNDA3LCJpc3MiOiJjbGllbnRfWFV3QnVVSFJNVFZIQWxlWkVKeEgxODgxNSIsImlhdCI6MTY0MjE2MDEwNywibmJmIjoxNjQyMTYwMTA3fQ.KTLJ0PjuH7T8g4fBKxknDc6go9n2XGLU-B4rzlCd4I6THx76uf7WhvbskCSG0ITnW3h3ci7Y4i57_bVjv_bSspc0nBL1eDp6D6lNrPGkNbp-7184xz7qjRTs95o2W3kf5lm7eRKD6XF0cDSd-J_qS_jey2sAI-2AwvVGy1qLsJy4K5WV1GZZx0D5fQpuJXXAZOo5q_9U1gBI9VVF8DLaASIVG5pcqwjERSnlyiXTAiwcRzZWeyRwHHVxLSp07KZgsxlcgADfkjokCQKEdWgdmDayQ0v-MeUw_A0tCxjR-7GIeeKE2sVBQnx7_5BJwBxJ2fmpYk0FDd3OZ8OYNAcugQ
2022-01-14 11:35:08 SUCCESS
EnsureClientAssertionTypeIsJwt
Found JWT assertion type
assertion type
urn:ietf:params:oauth:client-assertion-type:jwt-bearer
2022-01-14 11:35:08 SUCCESS
ValidateClientAssertionClaims
Client Assertion passed all validation checks
2022-01-14 11:35:08 SUCCESS
ValidateAuthorizationCode
Found authorization code
authorization_code
mQE1ITnqPPrrrkxGvEU14wpPnb8lnCHe
2022-01-14 11:35:08 SUCCESS
ValidateRedirectUri
Found redirect uri
redirect_uri
https://portalspa-hml.safra.com.br/callback
2022-01-14 11:35:08 SUCCESS
ValidateCodeVerifierWithS256
Validated code_verifier successfully
code_challenge_method
S256
code_verifier
2c9c847b77844228a88d81bb00c01e502c9c847b77844228a88d81bb00c01e503bdfd1dde23d45fb9396035d0643b9ce3bdfd1dde23d45fb9396035d0643b9ce
code_challenge
yDUpqSC5ZKgwDg_sgqLct-CcSaD4hu8N7sbjTzb-lnw
2022-01-14 11:35:08 SUCCESS
GenerateBearerAccessToken
Generated access token
access_token
wcGzNP6WW0Dpr2VWjgXYH0Vmlkvkkzxch83pwLY0nMkFuuQfi7
2022-01-14 11:35:08 SUCCESS
CalculateAtHash
Successful at_hash encoding
at_hash
hFcd6FuTZgnA9FofL3CwGQ
2022-01-14 11:35:08
CreateRefreshToken
Created refresh token
refresh_token
efvKRXlhaHzleAWxaBVPdjZfpgjemjlYVxPnmVcctuodoZUnio6739349740`&\'.
2022-01-14 11:35:08 SUCCESS
GenerateIdTokenClaims
Created ID Token Claims
iss
https://www.certification.openid.net/test/a/SafraRPTest/
sub
user-subject-1234531
aud
client_XUwBuUHRMTVHAleZEJxH18815
nonce
2c9c847b77844228a88d81bb00c01e50
iat
1642160108
exp
1642160408
2022-01-14 11:35:08
FAPIBrazilAddCPFAndCPNJToIdTokenClaims
Request object does not contain a claims element.id_token
2022-01-14 11:35:08 SUCCESS
AddAtHashToIdTokenClaims
Added at_hash to ID token claims
at_hash
hFcd6FuTZgnA9FofL3CwGQ
id_token_claims
{
  "iss": "https://www.certification.openid.net/test/a/SafraRPTest/",
  "sub": "user-subject-1234531",
  "aud": "client_XUwBuUHRMTVHAleZEJxH18815",
  "nonce": "2c9c847b77844228a88d81bb00c01e50",
  "iat": 1642160108,
  "exp": 1642160408,
  "at_hash": "hFcd6FuTZgnA9FofL3CwGQ"
}
2022-01-14 11:35:08 INFO
FAPIBrazilAddACRClaimToIdTokenClaims
Skipped evaluation due to missing required string: requested_id_token_acr_values
expected
requested_id_token_acr_values
2022-01-14 11:35:08 SUCCESS
SignIdToken
Signed the ID token
id_token
eyJraWQiOiJYNWQ0dkZZZkx4YUcxZ2c4X2wzYkZZRmhVYVVWbUU2UGFFc1JXWDJFWXFNIiwiYWxnIjoiUFMyNTYifQ.eyJhdF9oYXNoIjoiaEZjZDZGdVRaZ25BOUZvZkwzQ3dHUSIsInN1YiI6InVzZXItc3ViamVjdC0xMjM0NTMxIiwiYXVkIjoiY2xpZW50X1hVd0J1VUhSTVRWSEFsZVpFSnhIMTg4MTUiLCJpc3MiOiJodHRwczpcL1wvd3d3LmNlcnRpZmljYXRpb24ub3BlbmlkLm5ldFwvdGVzdFwvYVwvU2FmcmFSUFRlc3RcLyIsImV4cCI6MTY0MjE2MDQwOCwibm9uY2UiOiIyYzljODQ3Yjc3ODQ0MjI4YTg4ZDgxYmIwMGMwMWU1MCIsImlhdCI6MTY0MjE2MDEwOH0.qy6DdCh2k6x6Z8rN-gYFg3q0NpNvwR8EIqmgj3SuuGTOjUKyDdKOwHIeG8dOWs8-gK6353Ln1R5LCAuMctJkh0cMfZmxpbanQ3GWvqxHE1kEqPs3uuuvTI0DpGq_5v2GLH2F-Ns3kKVIff-nP1xMnDC-7izDYj0LuFPcqqktAX_WD34FfemFOzISOCXM_5vh-MGBHOG4G5enXtvJRd5pkAliNbWtbVcXwbfNpRsQPiZpYQAO_3bYWzUeUAGb40TxRHbgJrWON0p0Ln-J5M2QAarYoVAfaBIryEmZJoWXDYR4-mHLZoEMLk4nwpxN4z3CVpg4ZZeUStANLsAcU2W4pg
2022-01-14 11:35:08
EncryptIdToken
Encrypted the id token
id_token_encrypted_response_alg
RSA-OAEP
id_token_encrypted_response_enc
A256GCM
id_token
eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.OyWxgZPmrtLlSwrMBBYAp4I1vzbg6tNQ8hb_HJn0vOLamIVOqYZfwrtcJqvixOk88hJgOKTp3ewsJIG2RRe7tnzO1W3TH7GGCo-6A9NTifk40iZPgeg-gqx5_FPCbbrj208rwS3ibtyjSX40nQuxplo3nS7wNScBGgYy020VR6FL2xKudJyYD5q93OWc30iqQO5jGeNzT61z7lkuos3uuOcwhXQZ_Gz4U2AXNj749CQ1HSVYVqDvu-ErFVpziyfO58q6Q7PlDL9i2gz4w5EdYJEAebkrMRQazt8soU4CQZgYC4RGLMuq6oDLrP0W7kNs2KJE3PEJ_ZLU0IU4T5dpLA.VYNoX61zPEHGzUxz.dGUYHrp2Qn_QXrcLbkwBU9NkX7kwIxYLptvOXCVsHhsDpaOWNOMf2yl2vYmv2FIq9AQDFvxS4EUPs8gibbfMgZdgYmDBexAdl6l9h8VdAlqxoVUFHPZuLT5TeTLGQZcd4b2ky4sv_GdEKwtNY_4JmD5F23YLF9NNKR_Uw-aWtKdQMZFBOWMeY-Me1nZSLHPEX9IGOGLFYhHUL0CeyvN7Q4ThRcRlyTYO0s_6AHOluLH-XmYmTDnJdGIkhcQ3jZktVr3D8cKYmtRP1J0aXMKcMnR38yFvBvPVMlk_yowiWglmaQQQRISaFqoXeI7dasUrv1hw3iau_2FXYrdFjuWyKeqUCIlOuAhU1Mtd3-E68S_WvnltehIjQdYCyc0G7GcN1tpHBa_1l7cbxUVFBC5quJLXZTthUF5caxQO6AMab3SAXTSET5NyeK3Jkr2BUO0n5Re2jiZYcog1J7nhkZtX_mF9k6wbWkMikKCVW0jLdXqAQKfrVWowGARnNvQzCzdgr5JRndjUKAcurIng934B_ESh-8Dvk6Xom1XPLDBGESZfbsOcK0Cl5fgWJClEEBOzsLfCnVMhzSk2qosWsqzTIKwt66eQg3ESOwaobr-J-NojTfsxx04mpWVfzQzpUsMBNduvhd5M5JDIElqmFciqGA1Q56_0iXZaeKmBxE5e-JSW5jcVHuem-Oea0JBYCyPeV7MTSP_ezkBX_5HTrvBzWXLAs6WKFE9dkAMO7DZM_rGv_bX4gbe1CQ0AMdmSBgtIAK2wxwHPZG9yoTptPJSRtaGvzL2f-glMUQGr6yIHmuLCl-hgft82bTgeC4zyfDYiiTp-k8M3kaFFbL0rTi1iMkGnED9Ahy3xyKfPYnsQhSQTeXfyHtTBdmvSWzSKo-MFcwabAIjUoNCtLw_NcUIjyOo_6_xDkUWt_JVAwyRs8ySJnFBaDqEK-2ThBOBh19sb7iPset72Igp7VHzguXzFa21UaPMv3_Ow1YCYtSEMXBdBawsfAhvmYqa1xba-s2izFaI7Jyw.7YAuLQC6hdz2raZWTazTcg
2022-01-14 11:35:08 SUCCESS
CreateTokenEndpointResponse
Created token endpoint response
access_token
wcGzNP6WW0Dpr2VWjgXYH0Vmlkvkkzxch83pwLY0nMkFuuQfi7
token_type
Bearer
id_token
eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.OyWxgZPmrtLlSwrMBBYAp4I1vzbg6tNQ8hb_HJn0vOLamIVOqYZfwrtcJqvixOk88hJgOKTp3ewsJIG2RRe7tnzO1W3TH7GGCo-6A9NTifk40iZPgeg-gqx5_FPCbbrj208rwS3ibtyjSX40nQuxplo3nS7wNScBGgYy020VR6FL2xKudJyYD5q93OWc30iqQO5jGeNzT61z7lkuos3uuOcwhXQZ_Gz4U2AXNj749CQ1HSVYVqDvu-ErFVpziyfO58q6Q7PlDL9i2gz4w5EdYJEAebkrMRQazt8soU4CQZgYC4RGLMuq6oDLrP0W7kNs2KJE3PEJ_ZLU0IU4T5dpLA.VYNoX61zPEHGzUxz.dGUYHrp2Qn_QXrcLbkwBU9NkX7kwIxYLptvOXCVsHhsDpaOWNOMf2yl2vYmv2FIq9AQDFvxS4EUPs8gibbfMgZdgYmDBexAdl6l9h8VdAlqxoVUFHPZuLT5TeTLGQZcd4b2ky4sv_GdEKwtNY_4JmD5F23YLF9NNKR_Uw-aWtKdQMZFBOWMeY-Me1nZSLHPEX9IGOGLFYhHUL0CeyvN7Q4ThRcRlyTYO0s_6AHOluLH-XmYmTDnJdGIkhcQ3jZktVr3D8cKYmtRP1J0aXMKcMnR38yFvBvPVMlk_yowiWglmaQQQRISaFqoXeI7dasUrv1hw3iau_2FXYrdFjuWyKeqUCIlOuAhU1Mtd3-E68S_WvnltehIjQdYCyc0G7GcN1tpHBa_1l7cbxUVFBC5quJLXZTthUF5caxQO6AMab3SAXTSET5NyeK3Jkr2BUO0n5Re2jiZYcog1J7nhkZtX_mF9k6wbWkMikKCVW0jLdXqAQKfrVWowGARnNvQzCzdgr5JRndjUKAcurIng934B_ESh-8Dvk6Xom1XPLDBGESZfbsOcK0Cl5fgWJClEEBOzsLfCnVMhzSk2qosWsqzTIKwt66eQg3ESOwaobr-J-NojTfsxx04mpWVfzQzpUsMBNduvhd5M5JDIElqmFciqGA1Q56_0iXZaeKmBxE5e-JSW5jcVHuem-Oea0JBYCyPeV7MTSP_ezkBX_5HTrvBzWXLAs6WKFE9dkAMO7DZM_rGv_bX4gbe1CQ0AMdmSBgtIAK2wxwHPZG9yoTptPJSRtaGvzL2f-glMUQGr6yIHmuLCl-hgft82bTgeC4zyfDYiiTp-k8M3kaFFbL0rTi1iMkGnED9Ahy3xyKfPYnsQhSQTeXfyHtTBdmvSWzSKo-MFcwabAIjUoNCtLw_NcUIjyOo_6_xDkUWt_JVAwyRs8ySJnFBaDqEK-2ThBOBh19sb7iPset72Igp7VHzguXzFa21UaPMv3_Ow1YCYtSEMXBdBawsfAhvmYqa1xba-s2izFaI7Jyw.7YAuLQC6hdz2raZWTazTcg
refresh_token
efvKRXlhaHzleAWxaBVPdjZfpgjemjlYVxPnmVcctuodoZUnio6739349740`&\'.
scope
openid payments consent:urn:conformance:oidf:W82IPcneMm
2022-01-14 11:35:08 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing_status_code
200
outgoing_headers
{}
outgoing_body
{
  "access_token": "wcGzNP6WW0Dpr2VWjgXYH0Vmlkvkkzxch83pwLY0nMkFuuQfi7",
  "token_type": "Bearer",
  "id_token": "eyJraWQiOiJvX3h2ZzgyNGFmVlZ3SHJkMUE3LXpPR2VIMnlBMFk1YVhkcE9VT3pqMGRNIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.OyWxgZPmrtLlSwrMBBYAp4I1vzbg6tNQ8hb_HJn0vOLamIVOqYZfwrtcJqvixOk88hJgOKTp3ewsJIG2RRe7tnzO1W3TH7GGCo-6A9NTifk40iZPgeg-gqx5_FPCbbrj208rwS3ibtyjSX40nQuxplo3nS7wNScBGgYy020VR6FL2xKudJyYD5q93OWc30iqQO5jGeNzT61z7lkuos3uuOcwhXQZ_Gz4U2AXNj749CQ1HSVYVqDvu-ErFVpziyfO58q6Q7PlDL9i2gz4w5EdYJEAebkrMRQazt8soU4CQZgYC4RGLMuq6oDLrP0W7kNs2KJE3PEJ_ZLU0IU4T5dpLA.VYNoX61zPEHGzUxz.dGUYHrp2Qn_QXrcLbkwBU9NkX7kwIxYLptvOXCVsHhsDpaOWNOMf2yl2vYmv2FIq9AQDFvxS4EUPs8gibbfMgZdgYmDBexAdl6l9h8VdAlqxoVUFHPZuLT5TeTLGQZcd4b2ky4sv_GdEKwtNY_4JmD5F23YLF9NNKR_Uw-aWtKdQMZFBOWMeY-Me1nZSLHPEX9IGOGLFYhHUL0CeyvN7Q4ThRcRlyTYO0s_6AHOluLH-XmYmTDnJdGIkhcQ3jZktVr3D8cKYmtRP1J0aXMKcMnR38yFvBvPVMlk_yowiWglmaQQQRISaFqoXeI7dasUrv1hw3iau_2FXYrdFjuWyKeqUCIlOuAhU1Mtd3-E68S_WvnltehIjQdYCyc0G7GcN1tpHBa_1l7cbxUVFBC5quJLXZTthUF5caxQO6AMab3SAXTSET5NyeK3Jkr2BUO0n5Re2jiZYcog1J7nhkZtX_mF9k6wbWkMikKCVW0jLdXqAQKfrVWowGARnNvQzCzdgr5JRndjUKAcurIng934B_ESh-8Dvk6Xom1XPLDBGESZfbsOcK0Cl5fgWJClEEBOzsLfCnVMhzSk2qosWsqzTIKwt66eQg3ESOwaobr-J-NojTfsxx04mpWVfzQzpUsMBNduvhd5M5JDIElqmFciqGA1Q56_0iXZaeKmBxE5e-JSW5jcVHuem-Oea0JBYCyPeV7MTSP_ezkBX_5HTrvBzWXLAs6WKFE9dkAMO7DZM_rGv_bX4gbe1CQ0AMdmSBgtIAK2wxwHPZG9yoTptPJSRtaGvzL2f-glMUQGr6yIHmuLCl-hgft82bTgeC4zyfDYiiTp-k8M3kaFFbL0rTi1iMkGnED9Ahy3xyKfPYnsQhSQTeXfyHtTBdmvSWzSKo-MFcwabAIjUoNCtLw_NcUIjyOo_6_xDkUWt_JVAwyRs8ySJnFBaDqEK-2ThBOBh19sb7iPset72Igp7VHzguXzFa21UaPMv3_Ow1YCYtSEMXBdBawsfAhvmYqa1xba-s2izFaI7Jyw.7YAuLQC6hdz2raZWTazTcg",
  "refresh_token": "efvKRXlhaHzleAWxaBVPdjZfpgjemjlYVxPnmVcctuodoZUnio6739349740`\u0026\\\u0027.",
  "scope": "openid payments consent:urn:conformance:oidf:W82IPcneMm"
}
outgoing_path
token
2022-01-14 11:35:08 INCOMING
fapi1-advanced-final-client-test-encrypted-idtoken
Incoming HTTP request to test instance z0WwoLDKwEJNgoY
incoming_headers
{
  "host": "www.certification.openid.net",
  "authorization": "Bearer wcGzNP6WW0Dpr2VWjgXYH0Vmlkvkkzxch83pwLY0nMkFuuQfi7",
  "x-idempotency-key": "1c4d9ec7-e8b6-4287-8308-62dd5d07b043",
  "x-dynatrace": "FW4;-987853115;6;1343653795;1961;2;-1738730375;897;6ef4;2h01;3h501687a3;4h07a9;6h377871a849e2764ce4cc0041054e3d8c;7h29cd1074147b0037",
  "traceparent": "00-377871a849e2764ce4cc0041054e3d8c-29cd1074147b0037-01",
  "tracestate": "985d1479-c51e8ec5@dt\u003dfw4;6;501687a3;7a9;2;0;0;381;d528;2h01;3h501687a3;4h07a9;7h29cd1074147b0037",
  "cookie": "JSESSIONID\u003d280D088B0511292BF5A7A7939F7C5A01",
  "content-type": "application/jwt",
  "content-length": "1294",
  "connection": "close"
}
incoming_path
/test-mtls/a/SafraRPTest/payments/v1/pix/payments
incoming_body_form_params
incoming_method
POST
incoming_tls_version
TLSv1.2
incoming_tls_cipher
ECDHE-RSA-AES256-GCM-SHA384
incoming_tls_cert
-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A== -----END CERTIFICATE-----
incoming_body_json
incoming_query_string_params
{}
incoming_body
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.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.MNXkyrMXfEgqWqNDndb9Rs7M4Qz0-7HZkMC5lRWVxUWVqzfG3H4__oYcyCHK3h1MOD1b4JQyVxo5dLJLm7AOipTduEF3MNwWCj9_OUD5uDmpFNCx_Vrj-_LXzc_wQHBta3bzdqCz3I_Zmc0NRa-6gQtOFBUvB2Tt3oL2XfipPsmIA1zmIkcsbxG1BN7Cfs2zLt3zF9JhQCQ8EL6Sf1oC1ZoPBVPAPV5dEJC8u37mB2u2ygj7hRgukiW8ZQYZWT1jx7MmjURAKpkjb01Zd7BxXWiGHPkBkzxA8rAcS1QVHry4_Sp6-0_n59q14Is3KeMhm_AZ4quRUfGsneY9COvBag
2022-01-14 11:35:08 SUCCESS
EnsureIncomingTls12WithSecureCipherOrTls13
TLS 1.2 in use and cipher is one recommended by BCP195
actual
ECDHE-RSA-AES256-GCM-SHA384
recommended
[
  "DHE-RSA-AES128-GCM-SHA256",
  "ECDHE-RSA-AES128-GCM-SHA256",
  "DHE-RSA-AES256-GCM-SHA384",
  "ECDHE-RSA-AES256-GCM-SHA384"
]
2022-01-14 11:35:08 SUCCESS
ExtractClientCertificateFromTokenEndpointRequestHeaders
Extracted client certificate
client_certificate
{
  "cert": "-----BEGIN CERTIFICATE----- MIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL BQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx FTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB TkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3 MDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD o28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx MzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm cmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp dmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ k/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG VfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b nE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4 C4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF SaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0 PR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB AAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce RCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF BQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w ZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v Y3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu Y3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P AQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw ggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl cnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl cyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg dXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg U2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0 dXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0 aWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG CCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh c2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn LPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO hUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+ Vibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1 zHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO VZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af 1zroWKsv2A\u003d\u003d -----END CERTIFICATE-----",
  "pem": "-----BEGIN CERTIFICATE-----\nMIIG8zCCBdugAwIBAgIUOr2rNJSEw8bj9fVI9mZtaMk/VfowDQYJKoZIhvcNAQEL\nBQAwcTELMAkGA1UEBhMCQlIxHDAaBgNVBAoTE09wZW4gQmFua2luZyBCcmFzaWwx\nFTATBgNVBAsTDE9wZW4gQmFua2luZzEtMCsGA1UEAxMkT3BlbiBCYW5raW5nIFNB\nTkRCT1ggSXNzdWluZyBDQSAtIEcxMB4XDTIxMTEwMzE3MDUwMFoXDTIyMTIwMzE3\nMDUwMFowggETMQswCQYDVQQGEwJCUjELMAkGA1UECBMCU1AxEzARBgNVBAcMClPD\no28gUGF1bG8xFzAVBgNVBAoTDkJDTyBTQUZSQSBTLkEuMS0wKwYDVQQLEyQ3MDkx\nMzhkZC02ZTlkLTVmOTYtYmZmZi02OWE1YjJjYjNlYzAxFzAVBgNVBAMMDiouc2Fm\ncmEuY29tLmJyMRcwFQYDVQQFEw41ODE2MDc4OTAwMDEyODEdMBsGA1UEDxMUUHJp\ndmF0ZSBPcmdhbml6YXRpb24xEzARBgsrBgEEAYI3PAIBAxMCQlIxNDAyBgoJkiaJ\nk/IsZAEBEyQ0NGIyNjFiYy00ZjZmLTQ0Y2UtYjNkNy0zZjk4YTJiMjI1ZjQwggEi\nMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDYAJ7JptCPUm02Tx4o+zR20+iG\nVfMCMTOafTQ29kgOYAk/ypeDCNeZt4kkil/ZzNjHwA6NZ3gWMV088C5ucJ4AmS8b\nnE4XfbwoxealAWCa0pFoWEeBQK+Zb/S4dgK+L6xHkKViElSdQuYsKu3yraFs4Mu4\nC4ukjhCxa3AlvcSw6PCMYJ5LKWbfVQovtoy5o+vOu1KKNKSTaYESmQDrIN4VeDyF\nSaYttN0gd+HNicRnopbyfWcmndRwVdwyUgTT2Z59/CpcdKui8kiT2rKxRO/mF1q0\nPR1lkPE9FBDSo83fArx3yXgUyMmodjqJ+5X+pm7xZRJ97RVwIoMh7PRf4LXHAgMB\nAAGjggLdMIIC2TAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQ60p75BB0ZNm+cJkce\nRCif8/14izAfBgNVHSMEGDAWgBSGf1itF/WCtk60BbP7sM4RQ99MvjBMBggrBgEF\nBQcBAQRAMD4wPAYIKwYBBQUHMAGGMGh0dHA6Ly9vY3NwLnNhbmRib3gucGtpLm9w\nZW5iYW5raW5nYnJhc2lsLm9yZy5icjBLBgNVHR8ERDBCMECgPqA8hjpodHRwOi8v\nY3JsLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJhc2lsLm9yZy5ici9pc3N1ZXIu\nY3JsMCQGA1UdEQQdMBuCGWFwaS1tdGxzLWhtbC5zYWZyYS5jb20uYnIwDgYDVR0P\nAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMCMIIBoQYDVR0gBIIBmDCCAZQw\nggGQBgorBgEEAYO6L2QBMIIBgDCCATYGCCsGAQUFBwICMIIBKAyCASRUaGlzIENl\ncnRpZmljYXRlIGlzIHNvbGVseSBmb3IgdXNlIHdpdGggUmFpZGlhbSBTZXJ2aWNl\ncyBMaW1pdGVkIGFuZCBvdGhlciBwYXJ0aWNpcGF0aW5nIG9yZ2FuaXNhdGlvbnMg\ndXNpbmcgUmFpZGlhbSBTZXJ2aWNlcyBMaW1pdGVkcyBUcnVzdCBGcmFtZXdvcmsg\nU2VydmljZXMuIEl0cyByZWNlaXB0LCBwb3NzZXNzaW9uIG9yIHVzZSBjb25zdGl0\ndXRlcyBhY2NlcHRhbmNlIG9mIHRoZSBSYWlkaWFtIFNlcnZpY2VzIEx0ZCBDZXJ0\naWNpY2F0ZSBQb2xpY3kgYW5kIHJlbGF0ZWQgZG9jdW1lbnRzIHRoZXJlaW4uMEQG\nCCsGAQUFBwIBFjhodHRwOi8vY3BzLnNhbmRib3gucGtpLm9wZW5iYW5raW5nYnJh\nc2lsLm9yZy5ici9wb2xpY2llczANBgkqhkiG9w0BAQsFAAOCAQEAriUFRNI349wn\nLPiNnHZckwjUV76m8LltS/BrHQSURP4Bq3Eu2KEZGD/Xkz9VcmumHwOC+Mr/haLO\nhUMbwmZMn9q3QFzyd/EnoSyXeedZpPLczSPZ3AXoNaC8xJn4ZE66NKDQ2/PEFD7+\nVibcq6uWx4H6k8QjSBgrPAh03hHzdBpVBTO6fRNZPUtHJUcPvOJC0rtK1n3tCNk1\nzHeO19CLNT1aUo99rXw8BT3bG4jVi/NMIPZqywxxk3S4Fq+6otMbtVRaB+O+NEqO\nVZR8xmuX+ALi7oVaD0tif+PzhyVKLZiRvnMtY2Y51ujIxyGyRZYPmiJkYQ/PT2Af\n1zroWKsv2A\u003d\u003d\n-----END CERTIFICATE-----",
  "subject": {
    "dn": "UID\u003d44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3\u003d#13024252,2.5.4.15\u003d#131450726976617465204f7267616e697a6174696f6e,2.5.4.5\u003d#130e3538313630373839303030313238,CN\u003d*.safra.com.br,OU\u003d709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O\u003dBCO SAFRA S.A.,L\u003dSão Paulo,ST\u003dSP,C\u003dBR"
  },
  "sanDnsNames": [
    "api-mtls-hml.safra.com.br"
  ],
  "sanUris": [],
  "sanIPs": [],
  "sanEmails": []
}
2022-01-14 11:35:08 SUCCESS
CheckForClientCertificate
Found client certificate
2022-01-14 11:35:08 SUCCESS
EnsureClientCertificateMatches
Presented certificate matches registered certificate
actual
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Payment initiation endpoint
2022-01-14 11:35:08 SUCCESS
EnsureIncomingRequestMethodIsPost
Client correctly used http POST method
2022-01-14 11:35:08 SUCCESS
EnsureBearerAccessTokenNotInParams
Client correctly did not send access token in query parameters or form body
2022-01-14 11:35:08 SUCCESS
ExtractBearerAccessTokenFromHeader
Found access token on incoming request
access_token
wcGzNP6WW0Dpr2VWjgXYH0Vmlkvkkzxch83pwLY0nMkFuuQfi7
2022-01-14 11:35:08 SUCCESS
RequireBearerAccessToken
Found access token in request
actual
wcGzNP6WW0Dpr2VWjgXYH0Vmlkvkkzxch83pwLY0nMkFuuQfi7
2022-01-14 11:35:08 INFO
ExtractFapiDateHeader
Skipped evaluation due to missing required element: incoming_request headers.x-fapi-auth-date
path
headers.x-fapi-auth-date
mapped
object
incoming_request
2022-01-14 11:35:08 INFO
ExtractFapiIpAddressHeader
Skipped evaluation due to missing required element: incoming_request headers.x-fapi-customer-ip-address
path
headers.x-fapi-customer-ip-address
mapped
object
incoming_request
2022-01-14 11:35:08 INFO
ExtractFapiInteractionIdHeader
Skipped evaluation due to missing required element: incoming_request headers.x-fapi-interaction-id
path
headers.x-fapi-interaction-id
mapped
object
incoming_request
2022-01-14 11:35:08 SUCCESS
FAPIBrazilEnsureAuthorizationRequestScopesContainPayments
'payments' was included in authorization request scopes
actual
openid payments consent:urn:conformance:oidf:W82IPcneMm
expected
payments
2022-01-14 11:35:08 SUCCESS
FAPIBrazilExtractPaymentInitiationRequest
Parsed payment initiation request
payment_initiation_request
{
  "aud": "https://www.certification.openid.net/test-mtls/a/SafraRPTest/payments/v1/pix/payments",
  "nbf": 1642160108,
  "data": {
    "proxy": "victor.arena@safra.com.br",
    "consentId": "urn:conformance:oidf:W82IPcneMm",
    "localInstrument": "DICT",
    "creditorAccount": {
      "number": "000013416",
      "accountType": "CACC",
      "ispb": "58160789",
      "issuer": "0115"
    },
    "cnpjInitiator": "58160789000128",
    "payment": {
      "amount": "390.99",
      "currency": "BRL"
    },
    "ibgeTownCode": "0644895",
    "creationDateTime": "2022-01-14T11:35:08Z"
  },
  "iss": "709138dd-6e9d-5f96-bfff-69a5b2cb3ec0",
  "exp": 1642163708,
  "iat": 1642160108,
  "jti": "0799321d-bb63-4f8d-8cb7-b6f6242b6bbf"
}
2022-01-14 11:35:08 SUCCESS
FAPIBrazilValidateJwtSignatureUsingOrganizationJwks
jwt signature validated
jwt
eyJhbGciOiJQUzI1NiIsImtpZCI6IkZfelU5TEQxLS1DTDVTdk9tN2FlcUtwbjludGU3T0ZMaHE5MlUtVjNmNjgiLCJ0eXAiOiJKV1QiLCJ4NXQiOiJpbWVKdHZoazFfVU9aSUlPS3R2UzNFVzBuRG8ifQ.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.MNXkyrMXfEgqWqNDndb9Rs7M4Qz0-7HZkMC5lRWVxUWVqzfG3H4__oYcyCHK3h1MOD1b4JQyVxo5dLJLm7AOipTduEF3MNwWCj9_OUD5uDmpFNCx_Vrj-_LXzc_wQHBta3bzdqCz3I_Zmc0NRa-6gQtOFBUvB2Tt3oL2XfipPsmIA1zmIkcsbxG1BN7Cfs2zLt3zF9JhQCQ8EL6Sf1oC1ZoPBVPAPV5dEJC8u37mB2u2ygj7hRgukiW8ZQYZWT1jx7MmjURAKpkjb01Zd7BxXWiGHPkBkzxA8rAcS1QVHry4_Sp6-0_n59q14Is3KeMhm_AZ4quRUfGsneY9COvBag
2022-01-14 11:35:08 SUCCESS
EnsureIncomingRequestContentTypeIsApplicationJwt
Client correctly used application/jwt content type
2022-01-14 11:35:08 SUCCESS
ExtractXIdempotencyKeyHeader
Found an x-idempotency-key header
idempotency_key
1c4d9ec7-e8b6-4287-8308-62dd5d07b043
2022-01-14 11:35:08 SUCCESS
FAPIBrazilValidatePaymentInitiationRequestAud
aud claim matches the endpoint url
aud
https://www.certification.openid.net/test-mtls/a/SafraRPTest/payments/v1/pix/payments
2022-01-14 11:35:08 SUCCESS
FAPIBrazilExtractCertificateSubjectFromIncomingMTLSCertifiate
Extracted subject from the mtls client certificate
subjectdn
UID=44b261bc-4f6f-44ce-b3d7-3f98a2b225f4,1.3.6.1.4.1.311.60.2.1.3=#13024252,2.5.4.15=#131450726976617465204f7267616e697a6174696f6e,2.5.4.5=#130e3538313630373839303030313238,CN=*.safra.com.br,OU=709138dd-6e9d-5f96-bfff-69a5b2cb3ec0,O=BCO SAFRA S.A.,L=São Paulo,ST=SP,C=BR
ou
709138dd-6e9d-5f96-bfff-69a5b2cb3ec0
brazil_software_id
44b261bc-4f6f-44ce-b3d7-3f98a2b225f4
2022-01-14 11:35:08 SUCCESS
FAPIBrazilEnsurePaymentInitiationRequestIssEqualsOrganizationId
iss claim in payment initiation request matches organizationId in client certificate
iss
709138dd-6e9d-5f96-bfff-69a5b2cb3ec0
2022-01-14 11:35:08 SUCCESS
FAPIBrazilEnsurePaymentInitiationRequestJtiIsUUIDv4
jti claim in payment initiation request is a UUIDv4
jti
0799321d-bb63-4f8d-8cb7-b6f6242b6bbf
2022-01-14 11:35:08 SUCCESS
FAPIBrazilValidatePaymentInitiationRequestIat
iat claim in payment initiation request is valid
iat
1642160108
2022-01-14 11:35:08 SUCCESS
FAPIBrazilGenerateNewPaymentInitiationResponse
Created payment initiation response
payment_initiation_response_headers
{
  "x-fapi-interaction-id": "dc628acf-6fd3-48ed-a60b-1748d6222194"
}
payment_initiation_response
{
  "data": {
    "proxy": "victor.arena@safra.com.br",
    "consentId": "urn:conformance:oidf:W82IPcneMm",
    "localInstrument": "DICT",
    "creditorAccount": {
      "number": "000013416",
      "accountType": "CACC",
      "ispb": "58160789",
      "issuer": "0115"
    },
    "cnpjInitiator": "58160789000128",
    "payment": {
      "amount": "390.99",
      "currency": "BRL"
    },
    "ibgeTownCode": "0644895",
    "creationDateTime": "2022-01-14T11:35:08Z",
    "paymentId": "37725a8b-77dd-4b3e-91eb-7425cff6174d",
    "statusUpdateDateTime": "2022-01-14T11:35:08Z",
    "status": "ACSP"
  },
  "links": {
    "self": "https://www.certification.openid.net/test/a/SafraRPTestpayments/v1/pix/payments"
  },
  "meta": {
    "totalRecords": 1,
    "totalPages": 1,
    "requestDateTime": "2022-01-14T11:35:08Z"
  },
  "aud": "709138dd-6e9d-5f96-bfff-69a5b2cb3ec0",
  "iat": 1642160108,
  "jti": "192ea1dd-94c0-48a8-a4e6-3e4aa2f61e0b",
  "iss": "74e929d9-33b6-4d85-8ba7-c146c867a817"
}
2022-01-14 11:35:08 SUCCESS
FAPIBrazilSignPaymentInitiationResponse
Signed the payment initiation response
signed_payment_initiation_response
eyJraWQiOiJYNWQ0dkZZZkx4YUcxZ2c4X2wzYkZZRmhVYVVWbUU2UGFFc1JXWDJFWXFNIiwidHlwIjoiSldUIiwiYWxnIjoiUFMyNTYifQ.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.Ie3b_S0QIKsppKSYxJaJj3F5MPTpKdvtJAXIpB92d86xRyZ3jQUZgxrWdqBIh1Cyz364gjPiooTdam6HMdvO-7Nx0ANbiBdPYzaS23ngq31VjfAd1p6TYiAz7ETXDEKsqqgDSbLX69o_8d4wfXat1bMIH59syJzLlH_sGpL_fiq60UCjjuqffTCt7FSv7shAHTyHJM2dTiuuG2Smdeep6moOHn04ICqlAWkxq0RcyIoIx70j88_-6s1aOy9_2nwYCAeZVZ4gde3aWVC5RWIuZpvgLuZD5hN40J-98A-301QTGRgAtPcGo_uaR3pldW4Hlrq1vfxrynbXXOpEkgMBOA
2022-01-14 11:35:08
ClearAccessTokenFromRequest
Condition ran but did not log anything
2022-01-14 11:35:08 OUTGOING
fapi1-advanced-final-client-test-encrypted-idtoken
Response to HTTP request to test instance z0WwoLDKwEJNgoY
outgoing_status_code
201
outgoing_headers
{
  "x-fapi-interaction-id": [
    "dc628acf-6fd3-48ed-a60b-1748d6222194"
  ],
  "Content-Type": [
    "application/jwt"
  ]
}
outgoing_body
eyJraWQiOiJYNWQ0dkZZZkx4YUcxZ2c4X2wzYkZZRmhVYVVWbUU2UGFFc1JXWDJFWXFNIiwidHlwIjoiSldUIiwiYWxnIjoiUFMyNTYifQ.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.Ie3b_S0QIKsppKSYxJaJj3F5MPTpKdvtJAXIpB92d86xRyZ3jQUZgxrWdqBIh1Cyz364gjPiooTdam6HMdvO-7Nx0ANbiBdPYzaS23ngq31VjfAd1p6TYiAz7ETXDEKsqqgDSbLX69o_8d4wfXat1bMIH59syJzLlH_sGpL_fiq60UCjjuqffTCt7FSv7shAHTyHJM2dTiuuG2Smdeep6moOHn04ICqlAWkxq0RcyIoIx70j88_-6s1aOy9_2nwYCAeZVZ4gde3aWVC5RWIuZpvgLuZD5hN40J-98A-301QTGRgAtPcGo_uaR3pldW4Hlrq1vfxrynbXXOpEkgMBOA
outgoing_path
payments/v1/pix/payments
2022-01-14 11:35:08 FINISHED
fapi1-advanced-final-client-test-encrypted-idtoken
Test has run to completion
testmodule_result
PASSED
2022-01-14 11:36:13
TEST-RUNNER
Alias has now been claimed by another test
alias
SafraRPTest
new_test_id
HHpnGD3EAMTzOsr
Test Results