Test Summary

Test Results

Expand All Collapse All
All times are UTC
2022-12-15 22:28:17 INFO
TEST-RUNNER
Test instance hGLbDzeAknDa5PR created
baseUrl
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1
variant
{
  "client_auth_type": "mtls",
  "fapi_auth_request_method": "by_value",
  "fapi_profile": "openinsurance_brazil",
  "fapi_response_mode": "plain_response"
}
alias
Prudential-AuthServer-v1
description
Prudential Auth Server Test
planId
urSCFFwXiJhtq
config
{
  "alias": "Prudential-AuthServer-v1",
  "description": "Prudential Auth Server Test",
  "directory": {
    "keystore": "https://keystore.sandbox.directory.opinbrasil.com.br/"
  },
  "server": {
    "discoveryUrl": "https://api.prudentialdobrasil.hml.opinb3.com.br/.well-known/openid-configuration"
  },
  "resource": {
    "resourceUrl": "https://mtls.prudentialdobrasil.hml.opinb3.com.br/open-insurance/customers/v1/personal/identifications",
    "consentUrl": "https://mtls.prudentialdobrasil.hml.opinb3.com.br/open-insurance/consents/v1",
    "brazilCpf": "06847046686",
    "brazilOrganizationId": "21555144-afca-4672-9a29-6a89b1c72894",
    "data": {
      "loggedUser": {
        "document": {
          "identification": "06847046686",
          "rel": "CPF"
        }
      },
      "businessEntity": {
        "document": {
          "identification": "11111111111111",
          "rel": "CNPJ"
        }
      },
      "permissions": [
        "PENSION_RISK_READ",
        "CAPITALIZATION_TITLES_READ",
        "RESOURCES_READ"
      ],
      "expirationDateTime": "2023-10-21T08:30:00Z",
      "transactionFromDateTime": "2023-10-01T00:00:00Z",
      "transactionToDateTime": "2023-10-01T23:59:59Z"
    }
  },
  "client": {
    "client_id": "fa129f17-4966-488a-a111-73760c9fcbd8",
    "scope": "openid resources consents",
    "jwks": {
      "keys": [
        {
          "kty": "RSA",
          "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
          "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
          "e": "AQAB",
          "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
          "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
          "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
          "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
          "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
          "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
          "use": "sig",
          "alg": "PS256"
        }
      ]
    },
    "org_jwks": {
      "keys": [
        {
          "kty": "RSA",
          "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
          "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
          "e": "AQAB",
          "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
          "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
          "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
          "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
          "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
          "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
          "use": "sig",
          "alg": "PS256"
        }
      ]
    }
  },
  "client2": {
    "client_id": "5f7e4c54-2906-4269-9585-f82eb751c62b",
    "scope": "openid resources consents",
    "jwks": {
      "keys": [
        {
          "kty": "RSA",
          "kid": "a6Dt9ziHau0v76_YrTMaszMRjao5q4tbpvWy3eg6TkI",
          "n": "2NKhtQ_1GmsyzjJkmipr92DxrB_ghMhhFQ_CyDxfORsrcQU3GW6t82vnrm0JLAZ6NMABgAgXOd_ewA8QLGRRc5Z__Al8XxKswQMefWHwFzQD3p84Yi2znJkgomQm1qoaPVtiZOj6IKb26aPqipifSkEP3aB7G7UQmspgLJacB_O52KpCd9Z_WS4kLmvXZAKVoXFlVyJ4BryrDDP2WEN3cfbUWV96yBPaLoxD0KvtJ-X5zGRSKwlDWIiEdgF9l63kokKsEI62HzpAGyo0rRpVftjt9C9ARsTmg28wfvFgodnJxnRyf_Dch_tR3WqU0TeNE-TmNE-Ow8UHjsqA9eKyiw",
          "e": "AQAB",
          "d": "da7lbDQMEdnLSpWZev-5eBybL5RhtVBZOShDzZDPElzH2GE_RcOIEM4pgsfVqZqea9EnP0mk6Zmz-kRyv9V3TCiMsMypP6UQNPavbthgiweFbii3Xrp1eXK3fsyjM_JBqbnXDvRRBrX44FlCrRUnqBLmPKGlECXXrFxZlPnuGHXWJuWk_YxY2yh5iwYMQ6TJIjxIp3LeVkEBxB-cZkw4LRCNwtKYy6hH4HJCTP6XXKW8mQktyMzpZsNDCVQ4Y-aYZyCITnT8yotOEerEEztOS1fjtd2sDR2tpOd0ByhAW5y-XvQeC_FjwOKzsJq0nqIc69BRD19_iVUP6cveO9NzAQ",
          "p": "9EvZDs2lAzD5XspbOHwt-0lpPtNusEl-puQt5NDZ_GxODBk7Xyer-RoSgwjYP537NwGK_hMu4iIZE2cyJVuV-SwdxODhkMHUhXPEAqhQENt_cXri3ohhLZJPlROHCmT1VzevXErXoAASw3W931zPUE1wDClZhzyUK1-eff4w5oE",
          "q": "4zXWVYDNOPEav9L4wPpRosOZusd4sghW0t8HwYd3FEjhSxgd3SCJ0rIFeZgvMNY3s2-WRPGjzBTUDiz95WSyw_lojPHYjGuU6_rMObvY2F7vS8RjRpHg-oInd3H6FzkXeTPc1iBCr3hd-fA_MxaN_tM2_QHpGr613vaZT2_BSws",
          "dp": "6MoF8jc_0MSwPAVz22Vpo5SWt4leZpoCGCJDIVFrB0BlNt4sV0ZEd8DCdx7MggKWyhmsSuQYvt9jKbwiarrVNHU3gM4R45DwZKKl2ypr8URYMti4qvkmMPjE4PeUrPD7YLrtXXLr-clYF-1wmxGjc4_2_3-_kkDFqHcbXlAEZQE",
          "dq": "QIP7_UFahI2pq8hLC_jID3B9CVU0h1Do3m2n9SLzBBaBqmIJsM1ZdTNJbLJyy-o33MKVp7P5b6yGXhQWb_l87Tq3njXZ6F1v5uXK8aXON_oU9q2oBtTLTjaA4GDDw65ZZPf9_-sfJFYIUT0PpQEFhtMQrRzKxOZcHBhnhe_Uses",
          "qi": "oKOrzTq2hi3CaBgCNjPS04qP1XJKEq0fQFDmo1rhLPEm_EFK5FdZkNY-YQpLcstyBMS_64MWcn0Q2unrB43YX1_1tocqWi75sOz3MTkwxYc9KxoSOVmtFVwBQGFOX8ONXi6U7gOvzwxamScNbMBEBnVz8Sx2699AT7WG7i9V8Ok",
          "use": "sig",
          "alg": "PS256"
        }
      ]
    },
    "org_jwks": {
      "keys": [
        {
          "kty": "RSA",
          "kid": "A3MxR_Jq-tmQwebmXxvDl5MJwK6R0-_SFlNPU0j7ZZY",
          "n": "rer96p4I92OyRp3mAMmuvLN7GmmsZ_wJqvyXIEnZScGeWCFNl9udXwlsmnHrgTtW0HYNvQvFMdgdYVytVmD8TixL3H_gNFk6pcvp7LVu0ZOuscBJqK2m9Xtq_7dJDBERRvPr9aBuAeCjvZ-1NJLC4NHncxMrJtOzjELDN8RiAVvytdW4C8aSJoUX2qBYhJ_zc6yRF44gJ5OXrlgi7frpeBC6r_nHYENyoQ7nAmS1I0cp6AlCzQM7luIJXY---GeZoLMdY3NmX_wRA5HL3exQSEYlH_LLAMhmgIc4D93o-AmGlKcoJsCyuUnnp3nybPljO3n-abW5JT_wlDq_VBfEuw",
          "e": "AQAB",
          "d": "DdbYM7Y1onH1ercP2VozJGLn1dc41-FvZ4LIB9K4jqzwi7TCtuXL5Qcb9EJCajstklMCjtuD6o528Atu46O-D_5oXvhx_9hl2VGboLFjSxwEV7Kkad6_nWMfxY9xKZumE05PpXEJr-6POQSfZ7qR9U_eqgKJeYJ5FB0v6Z0f61mjIromnKa505c0OoP3yUK0V3n5UzoMNXgbOXrfMjco7yk0DzAnDODv5cFu2JUS9g58vmVE39J0agS8GbZiJkuNBNwcyeMoDryaj3ipF04d7nCH9fQo4EaFa8LmQD1v2INHJ5jtxRieRM1bqJa8y4GVgw9ExY8Rc__EtDVVpFIciQ",
          "p": "2aLHiB1RN9g-yVD3zBGbR6MMcORxrIGxLSEVRV2vWlM-v-CBbR-Lyo6NCC2BiYRyajV3zfOZOee6rVYE-_gzYpProYszYhvbDqBWmrB6dP7R9BKdmWrqkQrKVdXT4MKufRP6FYMZ-UY5hCUGWToQNHOR0mW3b6x16pGpRQnjKsU",
          "q": "zJNcRX3IPavWS0_FynydmnpDHI6k5fOHLKuxFii_pc6peGkPSj-KNgEQfngDvSnUXawWeY6vKV_E7gw7GMZ9ZD2qZCJ5v4vp9z2eOfdWmbm_R0QDH_15aYxNmRO3Q3YlsYp9Y6KZ8X0YthSFf0SQekwp9a6vJ5jVYK3KFbkcKX8",
          "dp": "lrmRjscfFJoDAdG9i-s1q2tUlmrf_yTi2-ppnNzBMMEuWBzYBgcu_V20dtFtQRwlUUEuc8gdemjudFV6pjbC_6aKLhsFvxCjqYGJ-R_370b7iRnLZBET2teqQcAROTwbNCy9qmBdgLIN62Lo_qqjxm-zsg8X95NtJsMyg8nRNjE",
          "dq": "miAfcV9tYEE5Ju5H5uDx4DNion45b-GEorwLo9U5ZhMIDOaiFV8_oqY0pgOHVZnRHG2NVTGReAtmE651S5onWEE5QU3UCeLAd3wd3DAjN5gAqxFrhUtzkHia8cwv0wyNI3BiPZGAh7amym81kIe4jdsZ9bYQ0jVL9RWZ3bnjpMM",
          "qi": "DUTVY0ztlvR8Vn2SkU4LmsAZC0UknnTQHJB_EDG0UpZEuWvewh1QkT-ZANFJMDW1XVGEtiKAyn3Wn7JGD7rtFLyXxe7RkEw7J8eTkSK5_JnXoUELQhYkHf3zdi9ShABiU0UtBxoDEyLVYkDfffKLlPI3bgmgC5m7A_0e7aQgB_E",
          "use": "sig",
          "alg": "PS256"
        }
      ]
    }
  },
  "mtls": {
    "cert": "-----BEGIN CERTIFICATE-----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\nBEFX7MD4zErJ1Jv0+2usChQWF1WVS2aSflsYa+OLX4Dba8U\u003d\n-----END CERTIFICATE-----",
    "key": "-----BEGIN PRIVATE KEY-----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\nasNrdbIKUXLkjmFSB/WiFQ24\n-----END PRIVATE KEY-----"
  },
  "mtls2": {
    "cert": "-----BEGIN CERTIFICATE-----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\nWrdTz4lofGkUbrPbOO5lrwvJp5MenMo5Ef0GygeKbjUxtEk\u003d\n-----END CERTIFICATE-----",
    "key": "-----BEGIN PRIVATE KEY-----\nMIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDo8LwUOG2+d5ze\nLz2F+eXmP/5Ow/+2yqZekdhohpWg1/zVRHi+WkrSn/7h/+5bQbTwETJIUCPJLfl+\n/ePlahbwmzv715yZ5YFsnDaqHx/8ggx3uoazRx1lGZNALvuc6Bw/0o8x4SexTG5S\n9WY0Hj+CpPClo9PeO6NQaR7le8xHmNzN2bp8pwIx/MTd2ZrOayranhBILvBhjjeH\nroaAidPl7fPWNQJKjK+L+i8pwN+eeCyiy6s6IlM4mylAx/1sGI0fJd7ux5cNBgKD\nbEENzPM2SJ7KGxwN9WsQdYR2fxhh/GSdj19XxDS3UbZadJN/gIhS3rT9kUcUmWeN\neTvCNryRAgMBAAECggEAQH83dFnTeSNhWdu2qzvwPfqGDYUTbqdZvWGgjACHuYtU\nRDC7Rel2Qi9uwWC9vKLK2JXKWF9oKTIDnPfrfAAN7fztdOPURoBXf50ZPa10i9Pu\nY9BPr6AHMZENRn47yMwz1jAU2fi/psXE3k94RwIBD8lfoF1mMmhM5dzVYzEN9NyF\nO1P+PXRu2JvPVhjBg2j5JzJFHDaWDt/jBHRPA4Z+t/AEawfTnrQr/rIe6rJ+BXcC\n8CawM2GJ32rtMioieerz/StreVW3S/5wrRDSvwiGk6MVLdYuJWvix7POjoXyZkSn\ndcosbTu2L03hBgUEvRvLKWVqHUPdJ8dHCxkfnLNcAQKBgQD1d2ev1hHXltZUkypk\nHygb9wMLDquye6FoDUrgI3OQL+OP/I0Oewv7XYqtIJkN97lcdvHbt/Qapz3a/06C\nDK+XFhD5rM/WInPtGWPGCvsOTzHncpMZUJyNFHqVr1litdg1XbwEePUf/46YZ1l2\nH+aBv0kO54fIL2LvdJ8GyTb0IQKBgQDy77k1GED3hWo2l5lLrLc2uiMD5EcVE+rP\nBZYUH+TwsdqzYAse+RE21eS4kKB8o234RwcXdRBhINuP0DoEGsw5jbs+3Be9u2Xc\nQaKua/1aBfYdnEYDwtIM2y93a9zfSZHHGW3quMW4uH6wh/FJ3hziwQ9ZeJ9mLv2L\n9J8HYPW6cQKBgQCAbKhi5q0PDmu0dAqJt4NUnjeJYXOTPfuEZO/3tJSRq3xzqL5k\nBRyPtrEHQzbQh/sC1XhUbDnaeAV0vn5krB5x/amD91YFwqDEO7RnuPcA1Y5WeStc\n40AEz+ISzlsFuf4UbaYg8OfOhfYk5m13z9jZqSqgEaKIqcIpZeqNslh+AQKBgBcj\nYf5+muF4YY9ljQI6JxEdVWxvd524Uer52zt7djC+n9fp0+VVT6BraudxTvfQEQ9O\npIxFaBP4LzFZYc02SDFLIIRyLgiyKpd54Oa//ldurexQEBMXoS38Sl8TdOwHc80E\nzQVIJ/zaBacGq6KfdxzZyn55EKWI4DlOST9Iqt7hAoGBAINNYIuU9aPOL96pFySM\nTILPEWer4YsZeMNYCc/BgCLQzPNd9YdrCnZAgYkxKBm4kwoFk4Jzuv+okGBqkcnP\nQ8wUIWAOL/GvgCF6tuazNMtcMGlugjGtffZE3dqolvsxQr5LpbZrsohFauwgJQ29\nGXXTNc2znVOCLoC9X6oyF95V\n-----END PRIVATE KEY-----"
  },
  "consent": {}
}
testName
fapi1-advanced-final-ensure-mtls-holder-of-key-required
2022-12-15 22:28:17 SUCCESS
CreateRedirectUri
Created redirect URI
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
2022-12-15 22:28:17
GetDynamicServerConfiguration
HTTP request
request_uri
https://api.prudentialdobrasil.hml.opinb3.com.br/.well-known/openid-configuration
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2022-12-15 22:28:17 RESPONSE
GetDynamicServerConfiguration
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "x-powered-by": "Express",
  "access-control-allow-origin": "*",
  "x-fapi-auth-date": "Thu Dec 15 2022 22:28:17 GMT+0000 (Coordinated Universal Time)",
  "x-fapi-interaction-id": "fa4abf70-0d61-4724-8604-6f9d2d632a5b",
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "2005",
  "etag": "W/\"7d5-gpIcqHipaZuSISB4BLHWDfkuMhw\"",
  "date": "Thu, 15 Dec 2022 22:28:17 GMT",
  "x-envoy-upstream-service-time": "3",
  "server": "021"
}
response_body
{"issuer":"https://api.prudentialdobrasil.hml.opinb3.com.br","authorization_endpoint":"https://corebank.prudentialdobrasil.hml.linaob.com.br/open-insurance/consents/auth","token_endpoint":"https://mtls.prudentialdobrasil.hml.opinb3.com.br/sessions","userinfo_endpoint":"https://mtls.prudentialdobrasil.hml.opinb3.com.br/userinfo.openid","jwks_uri":"https://api.prudentialdobrasil.hml.opinb3.com.br/jwks","registration_endpoint":"https://mtls.prudentialdobrasil.hml.opinb3.com.br/companies/apps","ping_revoked_sris_endpoint":"","ping_session_management_sris_endpoint":"","ping_end_session_endpoint":"","scopes_supported":["openid","consents","resources","payments"],"claims_supported":["cpf","acr"],"response_types_supported":["code","code id_token"],"response_modes_supported":["form_post"],"grant_types_supported":["client_credentials","authorization_code","refresh_token"],"subject_types_supported":["public","pairwise"],"id_token_signing_alg_values_supported":["PS256"],"token_endpoint_auth_methods_supported":["tls_client_auth"],"token_endpoint_auth_signing_alg_values_supported":["PS256"],"claim_types_supported":["normal"],"claims_parameter_supported":true,"request_parameter_supported":true,"request_uri_parameter_supported":false,"request_object_signing_alg_values_supported":["PS256"],"id_token_encryption_alg_values_supported":["dir","A128KW","A192KW","A256KW","A128GCMKW","A192GCMKW","A256GCMKW","ECDH-ES","ECDH-ES+A128KW","ECDH-ES+A192KW","ECDH-ES+A256KW","RSA-OAEP"],"id_token_encryption_enc_values_supported":["A128CBC-HS256","A192CBC-HS384","A256CBC-HS512","A128GCM","A192GCM","A256GCM"],"require_pushed_authorization_requests":false,"code_challenge_methods_supported":["S256"],"tls_client_certificate_bound_access_tokens":true,"userinfo_signing_alg_values_supported":["PS256"],"acr_values_supported":["urn:brasil:openinsurance:loa2","urn:brasil:openinsurance:loa3"],"request_object_encryption_alg_values_supported":["RSA-OAEP"],"request_object_encryption_enc_values_supported":["A256GCM"]}
2022-12-15 22:28:17 SUCCESS
GetDynamicServerConfiguration
Successfully parsed server configuration
issuer
https://api.prudentialdobrasil.hml.opinb3.com.br
authorization_endpoint
https://corebank.prudentialdobrasil.hml.linaob.com.br/open-insurance/consents/auth
token_endpoint
https://mtls.prudentialdobrasil.hml.opinb3.com.br/sessions
userinfo_endpoint
https://mtls.prudentialdobrasil.hml.opinb3.com.br/userinfo.openid
jwks_uri
https://api.prudentialdobrasil.hml.opinb3.com.br/jwks
registration_endpoint
https://mtls.prudentialdobrasil.hml.opinb3.com.br/companies/apps
ping_revoked_sris_endpoint

                                
ping_session_management_sris_endpoint

                                
ping_end_session_endpoint

                                
scopes_supported
[
  "openid",
  "consents",
  "resources",
  "payments"
]
claims_supported
[
  "cpf",
  "acr"
]
response_types_supported
[
  "code",
  "code id_token"
]
response_modes_supported
[
  "form_post"
]
grant_types_supported
[
  "client_credentials",
  "authorization_code",
  "refresh_token"
]
subject_types_supported
[
  "public",
  "pairwise"
]
id_token_signing_alg_values_supported
[
  "PS256"
]
token_endpoint_auth_methods_supported
[
  "tls_client_auth"
]
token_endpoint_auth_signing_alg_values_supported
[
  "PS256"
]
claim_types_supported
[
  "normal"
]
claims_parameter_supported
true
request_parameter_supported
true
request_uri_parameter_supported
false
request_object_signing_alg_values_supported
[
  "PS256"
]
id_token_encryption_alg_values_supported
[
  "dir",
  "A128KW",
  "A192KW",
  "A256KW",
  "A128GCMKW",
  "A192GCMKW",
  "A256GCMKW",
  "ECDH-ES",
  "ECDH-ES+A128KW",
  "ECDH-ES+A192KW",
  "ECDH-ES+A256KW",
  "RSA-OAEP"
]
id_token_encryption_enc_values_supported
[
  "A128CBC-HS256",
  "A192CBC-HS384",
  "A256CBC-HS512",
  "A128GCM",
  "A192GCM",
  "A256GCM"
]
require_pushed_authorization_requests
false
code_challenge_methods_supported
[
  "S256"
]
tls_client_certificate_bound_access_tokens
true
userinfo_signing_alg_values_supported
[
  "PS256"
]
acr_values_supported
[
  "urn:brasil:openinsurance:loa2",
  "urn:brasil:openinsurance:loa3"
]
request_object_encryption_alg_values_supported
[
  "RSA-OAEP"
]
request_object_encryption_enc_values_supported
[
  "A256GCM"
]
2022-12-15 22:28:17 SUCCESS
AddMTLSEndpointAliasesToEnvironment
Added mtls_endpoint_aliases to environment
2022-12-15 22:28:17 SUCCESS
CheckServerConfiguration
Found required server configuration keys
required
[
  "authorization_endpoint",
  "token_endpoint",
  "issuer"
]
2022-12-15 22:28:17
FetchServerKeys
Fetching server key
jwks_uri
https://api.prudentialdobrasil.hml.opinb3.com.br/jwks
2022-12-15 22:28:17
FetchServerKeys
HTTP request
request_uri
https://api.prudentialdobrasil.hml.opinb3.com.br/jwks
request_method
GET
request_headers
{
  "accept": "text/plain, application/json, application/*+json, */*",
  "content-length": "0"
}
request_body

                                
2022-12-15 22:28:17 RESPONSE
FetchServerKeys
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "x-powered-by": "Express",
  "access-control-allow-origin": "*",
  "x-fapi-auth-date": "Thu Dec 15 2022 22:28:17 GMT+0000 (Coordinated Universal Time)",
  "x-fapi-interaction-id": "230f834f-e859-4046-b567-fdbbe47cb6bc",
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "958",
  "etag": "W/\"3be-cX96E6MH2pCwej9a14HHHHdV6K8\"",
  "date": "Thu, 15 Dec 2022 22:28:17 GMT",
  "x-envoy-upstream-service-time": "4",
  "server": "021"
}
response_body
{"keys":[{"kty":"RSA","kid":"pfv6RZSiAp-8V4zR-WYEe6HmfW-12cDJ0ZfHeGypaZY","x5t":"EswEE-9dobANOaFzEWQjFO7YpFw","n":"t3rqemsuCtpjU_EsjXOtocxDnLAQd8P5gP56DCA3I0ZhhTpOfwKDcO3upzYO7FjS5C8RTwtRVG-_-AkLW03mB0kELyMwGHQTulXKvMvGVbTnj7IhXnBapUKgywlRmSnTSa1YsDbNeWogLNjt1YCXY-CXC7wSKXAef2wK09rMOAwZuK6XoBjacSMyjxNMM2Fi08XS5Jkxx4XqsI3uo_muJIXCy4jDOkUzdoTUIfGk3vLf8KKWxGda4oT4npz83hra1gNaO_ntwINiVhXrQb0eURv1bKeU4YPph49suVpF9-m6Ych18HbN3F2jp-bfHDI8sk5oa6x7Euwhsnr4pdD4nQ","e":"AQAB","use":"sig"},{"kty":"RSA","kid":"JEeF6aT9WE7nEgrwm1U8OYXO-g1Yp6MkUsaNVK3avMA","x5t":"Mqrv68VbuYOzVNkqaAZ8YHJPIy8","n":"vk_pZhSKaEjxYsMZBdLswpA8dd7AJkJFp_sXwCPTQEoiBUVl4osDB4tLJeZ7Cd11pff59HfS7TFZz3T09QRDMhZYFWAo14qSLQuLIj3lggylR7a9i7WSqJfMOl3CHUmYgT6wWec4t8RCJDK7t2OlU1TlO95D9OGv5EBvPAqDw9XprAkW3BZ93xMB9pi3FqHUQguqPyl9pUWB2lnUgC8S_uvnFpj3kyab1S572Xg4z3FC3BDl-hjIOuqyNRPNsLC3HKnim1fdC2UXnp1TuOkewBzbnozvrUhjC70vjDohwJN1ygOMDkKTPDoZxKPkUVEmao5s-6Ejp95ek0aUaf2H1w","e":"AQAB","use":"enc"}]}
2022-12-15 22:28:17
FetchServerKeys
Found JWK set string
jwk_string
{"keys":[{"kty":"RSA","kid":"pfv6RZSiAp-8V4zR-WYEe6HmfW-12cDJ0ZfHeGypaZY","x5t":"EswEE-9dobANOaFzEWQjFO7YpFw","n":"t3rqemsuCtpjU_EsjXOtocxDnLAQd8P5gP56DCA3I0ZhhTpOfwKDcO3upzYO7FjS5C8RTwtRVG-_-AkLW03mB0kELyMwGHQTulXKvMvGVbTnj7IhXnBapUKgywlRmSnTSa1YsDbNeWogLNjt1YCXY-CXC7wSKXAef2wK09rMOAwZuK6XoBjacSMyjxNMM2Fi08XS5Jkxx4XqsI3uo_muJIXCy4jDOkUzdoTUIfGk3vLf8KKWxGda4oT4npz83hra1gNaO_ntwINiVhXrQb0eURv1bKeU4YPph49suVpF9-m6Ych18HbN3F2jp-bfHDI8sk5oa6x7Euwhsnr4pdD4nQ","e":"AQAB","use":"sig"},{"kty":"RSA","kid":"JEeF6aT9WE7nEgrwm1U8OYXO-g1Yp6MkUsaNVK3avMA","x5t":"Mqrv68VbuYOzVNkqaAZ8YHJPIy8","n":"vk_pZhSKaEjxYsMZBdLswpA8dd7AJkJFp_sXwCPTQEoiBUVl4osDB4tLJeZ7Cd11pff59HfS7TFZz3T09QRDMhZYFWAo14qSLQuLIj3lggylR7a9i7WSqJfMOl3CHUmYgT6wWec4t8RCJDK7t2OlU1TlO95D9OGv5EBvPAqDw9XprAkW3BZ93xMB9pi3FqHUQguqPyl9pUWB2lnUgC8S_uvnFpj3kyab1S572Xg4z3FC3BDl-hjIOuqyNRPNsLC3HKnim1fdC2UXnp1TuOkewBzbnozvrUhjC70vjDohwJN1ygOMDkKTPDoZxKPkUVEmao5s-6Ejp95ek0aUaf2H1w","e":"AQAB","use":"enc"}]}
2022-12-15 22:28:17 SUCCESS
FetchServerKeys
Found server JWK set
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "pfv6RZSiAp-8V4zR-WYEe6HmfW-12cDJ0ZfHeGypaZY",
      "x5t": "EswEE-9dobANOaFzEWQjFO7YpFw",
      "n": "t3rqemsuCtpjU_EsjXOtocxDnLAQd8P5gP56DCA3I0ZhhTpOfwKDcO3upzYO7FjS5C8RTwtRVG-_-AkLW03mB0kELyMwGHQTulXKvMvGVbTnj7IhXnBapUKgywlRmSnTSa1YsDbNeWogLNjt1YCXY-CXC7wSKXAef2wK09rMOAwZuK6XoBjacSMyjxNMM2Fi08XS5Jkxx4XqsI3uo_muJIXCy4jDOkUzdoTUIfGk3vLf8KKWxGda4oT4npz83hra1gNaO_ntwINiVhXrQb0eURv1bKeU4YPph49suVpF9-m6Ych18HbN3F2jp-bfHDI8sk5oa6x7Euwhsnr4pdD4nQ",
      "e": "AQAB",
      "use": "sig"
    },
    {
      "kty": "RSA",
      "kid": "JEeF6aT9WE7nEgrwm1U8OYXO-g1Yp6MkUsaNVK3avMA",
      "x5t": "Mqrv68VbuYOzVNkqaAZ8YHJPIy8",
      "n": "vk_pZhSKaEjxYsMZBdLswpA8dd7AJkJFp_sXwCPTQEoiBUVl4osDB4tLJeZ7Cd11pff59HfS7TFZz3T09QRDMhZYFWAo14qSLQuLIj3lggylR7a9i7WSqJfMOl3CHUmYgT6wWec4t8RCJDK7t2OlU1TlO95D9OGv5EBvPAqDw9XprAkW3BZ93xMB9pi3FqHUQguqPyl9pUWB2lnUgC8S_uvnFpj3kyab1S572Xg4z3FC3BDl-hjIOuqyNRPNsLC3HKnim1fdC2UXnp1TuOkewBzbnozvrUhjC70vjDohwJN1ygOMDkKTPDoZxKPkUVEmao5s-6Ejp95ek0aUaf2H1w",
      "e": "AQAB",
      "use": "enc"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
CheckServerKeysIsValid
Server JWKs is valid
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "pfv6RZSiAp-8V4zR-WYEe6HmfW-12cDJ0ZfHeGypaZY",
      "x5t": "EswEE-9dobANOaFzEWQjFO7YpFw",
      "n": "t3rqemsuCtpjU_EsjXOtocxDnLAQd8P5gP56DCA3I0ZhhTpOfwKDcO3upzYO7FjS5C8RTwtRVG-_-AkLW03mB0kELyMwGHQTulXKvMvGVbTnj7IhXnBapUKgywlRmSnTSa1YsDbNeWogLNjt1YCXY-CXC7wSKXAef2wK09rMOAwZuK6XoBjacSMyjxNMM2Fi08XS5Jkxx4XqsI3uo_muJIXCy4jDOkUzdoTUIfGk3vLf8KKWxGda4oT4npz83hra1gNaO_ntwINiVhXrQb0eURv1bKeU4YPph49suVpF9-m6Ych18HbN3F2jp-bfHDI8sk5oa6x7Euwhsnr4pdD4nQ",
      "e": "AQAB",
      "use": "sig"
    },
    {
      "kty": "RSA",
      "kid": "JEeF6aT9WE7nEgrwm1U8OYXO-g1Yp6MkUsaNVK3avMA",
      "x5t": "Mqrv68VbuYOzVNkqaAZ8YHJPIy8",
      "n": "vk_pZhSKaEjxYsMZBdLswpA8dd7AJkJFp_sXwCPTQEoiBUVl4osDB4tLJeZ7Cd11pff59HfS7TFZz3T09QRDMhZYFWAo14qSLQuLIj3lggylR7a9i7WSqJfMOl3CHUmYgT6wWec4t8RCJDK7t2OlU1TlO95D9OGv5EBvPAqDw9XprAkW3BZ93xMB9pi3FqHUQguqPyl9pUWB2lnUgC8S_uvnFpj3kyab1S572Xg4z3FC3BDl-hjIOuqyNRPNsLC3HKnim1fdC2UXnp1TuOkewBzbnozvrUhjC70vjDohwJN1ygOMDkKTPDoZxKPkUVEmao5s-6Ejp95ek0aUaf2H1w",
      "e": "AQAB",
      "use": "enc"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
ValidateServerJWKs
Valid server JWKs: keys are valid JSON, contain the required fields and are correctly encoded using unpadded base64url
2022-12-15 22:28:17 SUCCESS
CheckForKeyIdInServerJWKs
All keys contain kids
2022-12-15 22:28:17 SUCCESS
EnsureServerJwksDoesNotContainPrivateOrSymmetricKeys
Jwks does not contain any private or symmetric keys
2022-12-15 22:28:17 SUCCESS
FAPIEnsureMinimumServerKeyLength
Validated minimum key lengths for server_jwks
server_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "pfv6RZSiAp-8V4zR-WYEe6HmfW-12cDJ0ZfHeGypaZY",
      "x5t": "EswEE-9dobANOaFzEWQjFO7YpFw",
      "n": "t3rqemsuCtpjU_EsjXOtocxDnLAQd8P5gP56DCA3I0ZhhTpOfwKDcO3upzYO7FjS5C8RTwtRVG-_-AkLW03mB0kELyMwGHQTulXKvMvGVbTnj7IhXnBapUKgywlRmSnTSa1YsDbNeWogLNjt1YCXY-CXC7wSKXAef2wK09rMOAwZuK6XoBjacSMyjxNMM2Fi08XS5Jkxx4XqsI3uo_muJIXCy4jDOkUzdoTUIfGk3vLf8KKWxGda4oT4npz83hra1gNaO_ntwINiVhXrQb0eURv1bKeU4YPph49suVpF9-m6Ych18HbN3F2jp-bfHDI8sk5oa6x7Euwhsnr4pdD4nQ",
      "e": "AQAB",
      "use": "sig"
    },
    {
      "kty": "RSA",
      "kid": "JEeF6aT9WE7nEgrwm1U8OYXO-g1Yp6MkUsaNVK3avMA",
      "x5t": "Mqrv68VbuYOzVNkqaAZ8YHJPIy8",
      "n": "vk_pZhSKaEjxYsMZBdLswpA8dd7AJkJFp_sXwCPTQEoiBUVl4osDB4tLJeZ7Cd11pff59HfS7TFZz3T09QRDMhZYFWAo14qSLQuLIj3lggylR7a9i7WSqJfMOl3CHUmYgT6wWec4t8RCJDK7t2OlU1TlO95D9OGv5EBvPAqDw9XprAkW3BZ93xMB9pi3FqHUQguqPyl9pUWB2lnUgC8S_uvnFpj3kyab1S572Xg4z3FC3BDl-hjIOuqyNRPNsLC3HKnim1fdC2UXnp1TuOkewBzbnozvrUhjC70vjDohwJN1ygOMDkKTPDoZxKPkUVEmao5s-6Ejp95ek0aUaf2H1w",
      "e": "AQAB",
      "use": "enc"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
GetStaticClientConfiguration
Found a static client object
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
scope
openid resources consents
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
      "e": "AQAB",
      "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
      "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
      "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
      "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
      "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
      "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
org_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
      "e": "AQAB",
      "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
      "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
      "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
      "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
      "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
      "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
2022-12-15 22:28:17
ValidateMTLSCertificatesHeader
No certificate authority found for MTLS
2022-12-15 22:28:17 SUCCESS
ValidateMTLSCertificatesHeader
MTLS certificates header is valid
2022-12-15 22:28:17
ExtractMTLSCertificatesFromConfiguration
No certificate authority found for MTLS
2022-12-15 22:28:17 SUCCESS
ExtractMTLSCertificatesFromConfiguration
Mutual TLS authentication credentials loaded
cert
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
key
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
2022-12-15 22:28:17 SUCCESS
ValidateClientJWKsPrivatePart
Valid client JWKs: keys are valid JSON, contain the required fields, the private/public exponents match and are correctly encoded using unpadded base64url
2022-12-15 22:28:17 SUCCESS
ExtractJWKsFromStaticClientConfiguration
Extracted client JWK
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
      "e": "AQAB",
      "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
      "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
      "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
      "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
      "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
      "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "alg": "PS256",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
CheckForKeyIdInClientJWKs
All keys contain kids
2022-12-15 22:28:17 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2022-12-15 22:28:17 SUCCESS
FAPIBrazilCheckKeyAlgInClientJWKs
Keys in client JWKS all have permitted 'alg'
permitted
[
  "PS256"
]
2022-12-15 22:28:17 SUCCESS
FAPIEnsureMinimumClientKeyLength
Validated minimum key lengths for client_jwks
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
      "e": "AQAB",
      "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
      "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
      "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
      "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
      "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
      "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
ValidateMTLSCertificatesAsX509
Mutual TLS authentication cert validated as X.509
Verify configuration of second client
2022-12-15 22:28:17 SUCCESS
GetStaticClient2Configuration
Found a static second client object
client_id
5f7e4c54-2906-4269-9585-f82eb751c62b
scope
openid resources consents
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "a6Dt9ziHau0v76_YrTMaszMRjao5q4tbpvWy3eg6TkI",
      "n": "2NKhtQ_1GmsyzjJkmipr92DxrB_ghMhhFQ_CyDxfORsrcQU3GW6t82vnrm0JLAZ6NMABgAgXOd_ewA8QLGRRc5Z__Al8XxKswQMefWHwFzQD3p84Yi2znJkgomQm1qoaPVtiZOj6IKb26aPqipifSkEP3aB7G7UQmspgLJacB_O52KpCd9Z_WS4kLmvXZAKVoXFlVyJ4BryrDDP2WEN3cfbUWV96yBPaLoxD0KvtJ-X5zGRSKwlDWIiEdgF9l63kokKsEI62HzpAGyo0rRpVftjt9C9ARsTmg28wfvFgodnJxnRyf_Dch_tR3WqU0TeNE-TmNE-Ow8UHjsqA9eKyiw",
      "e": "AQAB",
      "d": "da7lbDQMEdnLSpWZev-5eBybL5RhtVBZOShDzZDPElzH2GE_RcOIEM4pgsfVqZqea9EnP0mk6Zmz-kRyv9V3TCiMsMypP6UQNPavbthgiweFbii3Xrp1eXK3fsyjM_JBqbnXDvRRBrX44FlCrRUnqBLmPKGlECXXrFxZlPnuGHXWJuWk_YxY2yh5iwYMQ6TJIjxIp3LeVkEBxB-cZkw4LRCNwtKYy6hH4HJCTP6XXKW8mQktyMzpZsNDCVQ4Y-aYZyCITnT8yotOEerEEztOS1fjtd2sDR2tpOd0ByhAW5y-XvQeC_FjwOKzsJq0nqIc69BRD19_iVUP6cveO9NzAQ",
      "p": "9EvZDs2lAzD5XspbOHwt-0lpPtNusEl-puQt5NDZ_GxODBk7Xyer-RoSgwjYP537NwGK_hMu4iIZE2cyJVuV-SwdxODhkMHUhXPEAqhQENt_cXri3ohhLZJPlROHCmT1VzevXErXoAASw3W931zPUE1wDClZhzyUK1-eff4w5oE",
      "q": "4zXWVYDNOPEav9L4wPpRosOZusd4sghW0t8HwYd3FEjhSxgd3SCJ0rIFeZgvMNY3s2-WRPGjzBTUDiz95WSyw_lojPHYjGuU6_rMObvY2F7vS8RjRpHg-oInd3H6FzkXeTPc1iBCr3hd-fA_MxaN_tM2_QHpGr613vaZT2_BSws",
      "dp": "6MoF8jc_0MSwPAVz22Vpo5SWt4leZpoCGCJDIVFrB0BlNt4sV0ZEd8DCdx7MggKWyhmsSuQYvt9jKbwiarrVNHU3gM4R45DwZKKl2ypr8URYMti4qvkmMPjE4PeUrPD7YLrtXXLr-clYF-1wmxGjc4_2_3-_kkDFqHcbXlAEZQE",
      "dq": "QIP7_UFahI2pq8hLC_jID3B9CVU0h1Do3m2n9SLzBBaBqmIJsM1ZdTNJbLJyy-o33MKVp7P5b6yGXhQWb_l87Tq3njXZ6F1v5uXK8aXON_oU9q2oBtTLTjaA4GDDw65ZZPf9_-sfJFYIUT0PpQEFhtMQrRzKxOZcHBhnhe_Uses",
      "qi": "oKOrzTq2hi3CaBgCNjPS04qP1XJKEq0fQFDmo1rhLPEm_EFK5FdZkNY-YQpLcstyBMS_64MWcn0Q2unrB43YX1_1tocqWi75sOz3MTkwxYc9KxoSOVmtFVwBQGFOX8ONXi6U7gOvzwxamScNbMBEBnVz8Sx2699AT7WG7i9V8Ok",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
org_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "A3MxR_Jq-tmQwebmXxvDl5MJwK6R0-_SFlNPU0j7ZZY",
      "n": "rer96p4I92OyRp3mAMmuvLN7GmmsZ_wJqvyXIEnZScGeWCFNl9udXwlsmnHrgTtW0HYNvQvFMdgdYVytVmD8TixL3H_gNFk6pcvp7LVu0ZOuscBJqK2m9Xtq_7dJDBERRvPr9aBuAeCjvZ-1NJLC4NHncxMrJtOzjELDN8RiAVvytdW4C8aSJoUX2qBYhJ_zc6yRF44gJ5OXrlgi7frpeBC6r_nHYENyoQ7nAmS1I0cp6AlCzQM7luIJXY---GeZoLMdY3NmX_wRA5HL3exQSEYlH_LLAMhmgIc4D93o-AmGlKcoJsCyuUnnp3nybPljO3n-abW5JT_wlDq_VBfEuw",
      "e": "AQAB",
      "d": "DdbYM7Y1onH1ercP2VozJGLn1dc41-FvZ4LIB9K4jqzwi7TCtuXL5Qcb9EJCajstklMCjtuD6o528Atu46O-D_5oXvhx_9hl2VGboLFjSxwEV7Kkad6_nWMfxY9xKZumE05PpXEJr-6POQSfZ7qR9U_eqgKJeYJ5FB0v6Z0f61mjIromnKa505c0OoP3yUK0V3n5UzoMNXgbOXrfMjco7yk0DzAnDODv5cFu2JUS9g58vmVE39J0agS8GbZiJkuNBNwcyeMoDryaj3ipF04d7nCH9fQo4EaFa8LmQD1v2INHJ5jtxRieRM1bqJa8y4GVgw9ExY8Rc__EtDVVpFIciQ",
      "p": "2aLHiB1RN9g-yVD3zBGbR6MMcORxrIGxLSEVRV2vWlM-v-CBbR-Lyo6NCC2BiYRyajV3zfOZOee6rVYE-_gzYpProYszYhvbDqBWmrB6dP7R9BKdmWrqkQrKVdXT4MKufRP6FYMZ-UY5hCUGWToQNHOR0mW3b6x16pGpRQnjKsU",
      "q": "zJNcRX3IPavWS0_FynydmnpDHI6k5fOHLKuxFii_pc6peGkPSj-KNgEQfngDvSnUXawWeY6vKV_E7gw7GMZ9ZD2qZCJ5v4vp9z2eOfdWmbm_R0QDH_15aYxNmRO3Q3YlsYp9Y6KZ8X0YthSFf0SQekwp9a6vJ5jVYK3KFbkcKX8",
      "dp": "lrmRjscfFJoDAdG9i-s1q2tUlmrf_yTi2-ppnNzBMMEuWBzYBgcu_V20dtFtQRwlUUEuc8gdemjudFV6pjbC_6aKLhsFvxCjqYGJ-R_370b7iRnLZBET2teqQcAROTwbNCy9qmBdgLIN62Lo_qqjxm-zsg8X95NtJsMyg8nRNjE",
      "dq": "miAfcV9tYEE5Ju5H5uDx4DNion45b-GEorwLo9U5ZhMIDOaiFV8_oqY0pgOHVZnRHG2NVTGReAtmE651S5onWEE5QU3UCeLAd3wd3DAjN5gAqxFrhUtzkHia8cwv0wyNI3BiPZGAh7amym81kIe4jdsZ9bYQ0jVL9RWZ3bnjpMM",
      "qi": "DUTVY0ztlvR8Vn2SkU4LmsAZC0UknnTQHJB_EDG0UpZEuWvewh1QkT-ZANFJMDW1XVGEtiKAyn3Wn7JGD7rtFLyXxe7RkEw7J8eTkSK5_JnXoUELQhYkHf3zdi9ShABiU0UtBxoDEyLVYkDfffKLlPI3bgmgC5m7A_0e7aQgB_E",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
2022-12-15 22:28:17
ValidateMTLSCertificates2Header
No certificate authority found for MTLS
2022-12-15 22:28:17 SUCCESS
ValidateMTLSCertificates2Header
MTLS certificates header is valid
2022-12-15 22:28:17
ExtractMTLSCertificates2FromConfiguration
No certificate authority found for MTLS
2022-12-15 22:28:17 SUCCESS
ExtractMTLSCertificates2FromConfiguration
Mutual TLS authentication credentials loaded
cert
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
key
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
2022-12-15 22:28:17 SUCCESS
ValidateClientJWKsPrivatePart
Valid client JWKs: keys are valid JSON, contain the required fields, the private/public exponents match and are correctly encoded using unpadded base64url
2022-12-15 22:28:17 SUCCESS
ExtractJWKsFromStaticClientConfiguration
Extracted client JWK
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "a6Dt9ziHau0v76_YrTMaszMRjao5q4tbpvWy3eg6TkI",
      "n": "2NKhtQ_1GmsyzjJkmipr92DxrB_ghMhhFQ_CyDxfORsrcQU3GW6t82vnrm0JLAZ6NMABgAgXOd_ewA8QLGRRc5Z__Al8XxKswQMefWHwFzQD3p84Yi2znJkgomQm1qoaPVtiZOj6IKb26aPqipifSkEP3aB7G7UQmspgLJacB_O52KpCd9Z_WS4kLmvXZAKVoXFlVyJ4BryrDDP2WEN3cfbUWV96yBPaLoxD0KvtJ-X5zGRSKwlDWIiEdgF9l63kokKsEI62HzpAGyo0rRpVftjt9C9ARsTmg28wfvFgodnJxnRyf_Dch_tR3WqU0TeNE-TmNE-Ow8UHjsqA9eKyiw",
      "e": "AQAB",
      "d": "da7lbDQMEdnLSpWZev-5eBybL5RhtVBZOShDzZDPElzH2GE_RcOIEM4pgsfVqZqea9EnP0mk6Zmz-kRyv9V3TCiMsMypP6UQNPavbthgiweFbii3Xrp1eXK3fsyjM_JBqbnXDvRRBrX44FlCrRUnqBLmPKGlECXXrFxZlPnuGHXWJuWk_YxY2yh5iwYMQ6TJIjxIp3LeVkEBxB-cZkw4LRCNwtKYy6hH4HJCTP6XXKW8mQktyMzpZsNDCVQ4Y-aYZyCITnT8yotOEerEEztOS1fjtd2sDR2tpOd0ByhAW5y-XvQeC_FjwOKzsJq0nqIc69BRD19_iVUP6cveO9NzAQ",
      "p": "9EvZDs2lAzD5XspbOHwt-0lpPtNusEl-puQt5NDZ_GxODBk7Xyer-RoSgwjYP537NwGK_hMu4iIZE2cyJVuV-SwdxODhkMHUhXPEAqhQENt_cXri3ohhLZJPlROHCmT1VzevXErXoAASw3W931zPUE1wDClZhzyUK1-eff4w5oE",
      "q": "4zXWVYDNOPEav9L4wPpRosOZusd4sghW0t8HwYd3FEjhSxgd3SCJ0rIFeZgvMNY3s2-WRPGjzBTUDiz95WSyw_lojPHYjGuU6_rMObvY2F7vS8RjRpHg-oInd3H6FzkXeTPc1iBCr3hd-fA_MxaN_tM2_QHpGr613vaZT2_BSws",
      "dp": "6MoF8jc_0MSwPAVz22Vpo5SWt4leZpoCGCJDIVFrB0BlNt4sV0ZEd8DCdx7MggKWyhmsSuQYvt9jKbwiarrVNHU3gM4R45DwZKKl2ypr8URYMti4qvkmMPjE4PeUrPD7YLrtXXLr-clYF-1wmxGjc4_2_3-_kkDFqHcbXlAEZQE",
      "dq": "QIP7_UFahI2pq8hLC_jID3B9CVU0h1Do3m2n9SLzBBaBqmIJsM1ZdTNJbLJyy-o33MKVp7P5b6yGXhQWb_l87Tq3njXZ6F1v5uXK8aXON_oU9q2oBtTLTjaA4GDDw65ZZPf9_-sfJFYIUT0PpQEFhtMQrRzKxOZcHBhnhe_Uses",
      "qi": "oKOrzTq2hi3CaBgCNjPS04qP1XJKEq0fQFDmo1rhLPEm_EFK5FdZkNY-YQpLcstyBMS_64MWcn0Q2unrB43YX1_1tocqWi75sOz3MTkwxYc9KxoSOVmtFVwBQGFOX8ONXi6U7gOvzwxamScNbMBEBnVz8Sx2699AT7WG7i9V8Ok",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
public_client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "e": "AQAB",
      "use": "sig",
      "kid": "a6Dt9ziHau0v76_YrTMaszMRjao5q4tbpvWy3eg6TkI",
      "alg": "PS256",
      "n": "2NKhtQ_1GmsyzjJkmipr92DxrB_ghMhhFQ_CyDxfORsrcQU3GW6t82vnrm0JLAZ6NMABgAgXOd_ewA8QLGRRc5Z__Al8XxKswQMefWHwFzQD3p84Yi2znJkgomQm1qoaPVtiZOj6IKb26aPqipifSkEP3aB7G7UQmspgLJacB_O52KpCd9Z_WS4kLmvXZAKVoXFlVyJ4BryrDDP2WEN3cfbUWV96yBPaLoxD0KvtJ-X5zGRSKwlDWIiEdgF9l63kokKsEI62HzpAGyo0rRpVftjt9C9ARsTmg28wfvFgodnJxnRyf_Dch_tR3WqU0TeNE-TmNE-Ow8UHjsqA9eKyiw"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
CheckForKeyIdInClientJWKs
All keys contain kids
2022-12-15 22:28:17 SUCCESS
CheckDistinctKeyIdValueInClientJWKs
Distinct 'kid' value in all keys of client_jwks
see
https://bitbucket.org/openid/connect/issues/1127
2022-12-15 22:28:17 SUCCESS
FAPIBrazilCheckKeyAlgInClientJWKs
Keys in client JWKS all have permitted 'alg'
permitted
[
  "PS256"
]
2022-12-15 22:28:17 SUCCESS
FAPIEnsureMinimumClientKeyLength
Validated minimum key lengths for client_jwks
client_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "a6Dt9ziHau0v76_YrTMaszMRjao5q4tbpvWy3eg6TkI",
      "n": "2NKhtQ_1GmsyzjJkmipr92DxrB_ghMhhFQ_CyDxfORsrcQU3GW6t82vnrm0JLAZ6NMABgAgXOd_ewA8QLGRRc5Z__Al8XxKswQMefWHwFzQD3p84Yi2znJkgomQm1qoaPVtiZOj6IKb26aPqipifSkEP3aB7G7UQmspgLJacB_O52KpCd9Z_WS4kLmvXZAKVoXFlVyJ4BryrDDP2WEN3cfbUWV96yBPaLoxD0KvtJ-X5zGRSKwlDWIiEdgF9l63kokKsEI62HzpAGyo0rRpVftjt9C9ARsTmg28wfvFgodnJxnRyf_Dch_tR3WqU0TeNE-TmNE-Ow8UHjsqA9eKyiw",
      "e": "AQAB",
      "d": "da7lbDQMEdnLSpWZev-5eBybL5RhtVBZOShDzZDPElzH2GE_RcOIEM4pgsfVqZqea9EnP0mk6Zmz-kRyv9V3TCiMsMypP6UQNPavbthgiweFbii3Xrp1eXK3fsyjM_JBqbnXDvRRBrX44FlCrRUnqBLmPKGlECXXrFxZlPnuGHXWJuWk_YxY2yh5iwYMQ6TJIjxIp3LeVkEBxB-cZkw4LRCNwtKYy6hH4HJCTP6XXKW8mQktyMzpZsNDCVQ4Y-aYZyCITnT8yotOEerEEztOS1fjtd2sDR2tpOd0ByhAW5y-XvQeC_FjwOKzsJq0nqIc69BRD19_iVUP6cveO9NzAQ",
      "p": "9EvZDs2lAzD5XspbOHwt-0lpPtNusEl-puQt5NDZ_GxODBk7Xyer-RoSgwjYP537NwGK_hMu4iIZE2cyJVuV-SwdxODhkMHUhXPEAqhQENt_cXri3ohhLZJPlROHCmT1VzevXErXoAASw3W931zPUE1wDClZhzyUK1-eff4w5oE",
      "q": "4zXWVYDNOPEav9L4wPpRosOZusd4sghW0t8HwYd3FEjhSxgd3SCJ0rIFeZgvMNY3s2-WRPGjzBTUDiz95WSyw_lojPHYjGuU6_rMObvY2F7vS8RjRpHg-oInd3H6FzkXeTPc1iBCr3hd-fA_MxaN_tM2_QHpGr613vaZT2_BSws",
      "dp": "6MoF8jc_0MSwPAVz22Vpo5SWt4leZpoCGCJDIVFrB0BlNt4sV0ZEd8DCdx7MggKWyhmsSuQYvt9jKbwiarrVNHU3gM4R45DwZKKl2ypr8URYMti4qvkmMPjE4PeUrPD7YLrtXXLr-clYF-1wmxGjc4_2_3-_kkDFqHcbXlAEZQE",
      "dq": "QIP7_UFahI2pq8hLC_jID3B9CVU0h1Do3m2n9SLzBBaBqmIJsM1ZdTNJbLJyy-o33MKVp7P5b6yGXhQWb_l87Tq3njXZ6F1v5uXK8aXON_oU9q2oBtTLTjaA4GDDw65ZZPf9_-sfJFYIUT0PpQEFhtMQrRzKxOZcHBhnhe_Uses",
      "qi": "oKOrzTq2hi3CaBgCNjPS04qP1XJKEq0fQFDmo1rhLPEm_EFK5FdZkNY-YQpLcstyBMS_64MWcn0Q2unrB43YX1_1tocqWi75sOz3MTkwxYc9KxoSOVmtFVwBQGFOX8ONXi6U7gOvzwxamScNbMBEBnVz8Sx2699AT7WG7i9V8Ok",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
2022-12-15 22:28:17 SUCCESS
ValidateMTLSCertificatesAsX509
Mutual TLS authentication cert validated as X.509
2022-12-15 22:28:17 SUCCESS
ValidateClientPrivateKeysAreDifferent
Client signing JWKs have different thumbprints
jwk1
{
  "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
  "kty": "RSA",
  "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
  "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
  "e": "AQAB",
  "use": "sig",
  "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
  "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
  "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
  "alg": "PS256",
  "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
  "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w"
}
jwk2
{
  "p": "9EvZDs2lAzD5XspbOHwt-0lpPtNusEl-puQt5NDZ_GxODBk7Xyer-RoSgwjYP537NwGK_hMu4iIZE2cyJVuV-SwdxODhkMHUhXPEAqhQENt_cXri3ohhLZJPlROHCmT1VzevXErXoAASw3W931zPUE1wDClZhzyUK1-eff4w5oE",
  "kty": "RSA",
  "q": "4zXWVYDNOPEav9L4wPpRosOZusd4sghW0t8HwYd3FEjhSxgd3SCJ0rIFeZgvMNY3s2-WRPGjzBTUDiz95WSyw_lojPHYjGuU6_rMObvY2F7vS8RjRpHg-oInd3H6FzkXeTPc1iBCr3hd-fA_MxaN_tM2_QHpGr613vaZT2_BSws",
  "d": "da7lbDQMEdnLSpWZev-5eBybL5RhtVBZOShDzZDPElzH2GE_RcOIEM4pgsfVqZqea9EnP0mk6Zmz-kRyv9V3TCiMsMypP6UQNPavbthgiweFbii3Xrp1eXK3fsyjM_JBqbnXDvRRBrX44FlCrRUnqBLmPKGlECXXrFxZlPnuGHXWJuWk_YxY2yh5iwYMQ6TJIjxIp3LeVkEBxB-cZkw4LRCNwtKYy6hH4HJCTP6XXKW8mQktyMzpZsNDCVQ4Y-aYZyCITnT8yotOEerEEztOS1fjtd2sDR2tpOd0ByhAW5y-XvQeC_FjwOKzsJq0nqIc69BRD19_iVUP6cveO9NzAQ",
  "e": "AQAB",
  "use": "sig",
  "kid": "a6Dt9ziHau0v76_YrTMaszMRjao5q4tbpvWy3eg6TkI",
  "qi": "oKOrzTq2hi3CaBgCNjPS04qP1XJKEq0fQFDmo1rhLPEm_EFK5FdZkNY-YQpLcstyBMS_64MWcn0Q2unrB43YX1_1tocqWi75sOz3MTkwxYc9KxoSOVmtFVwBQGFOX8ONXi6U7gOvzwxamScNbMBEBnVz8Sx2699AT7WG7i9V8Ok",
  "dp": "6MoF8jc_0MSwPAVz22Vpo5SWt4leZpoCGCJDIVFrB0BlNt4sV0ZEd8DCdx7MggKWyhmsSuQYvt9jKbwiarrVNHU3gM4R45DwZKKl2ypr8URYMti4qvkmMPjE4PeUrPD7YLrtXXLr-clYF-1wmxGjc4_2_3-_kkDFqHcbXlAEZQE",
  "alg": "PS256",
  "dq": "QIP7_UFahI2pq8hLC_jID3B9CVU0h1Do3m2n9SLzBBaBqmIJsM1ZdTNJbLJyy-o33MKVp7P5b6yGXhQWb_l87Tq3njXZ6F1v5uXK8aXON_oU9q2oBtTLTjaA4GDDw65ZZPf9_-sfJFYIUT0PpQEFhtMQrRzKxOZcHBhnhe_Uses",
  "n": "2NKhtQ_1GmsyzjJkmipr92DxrB_ghMhhFQ_CyDxfORsrcQU3GW6t82vnrm0JLAZ6NMABgAgXOd_ewA8QLGRRc5Z__Al8XxKswQMefWHwFzQD3p84Yi2znJkgomQm1qoaPVtiZOj6IKb26aPqipifSkEP3aB7G7UQmspgLJacB_O52KpCd9Z_WS4kLmvXZAKVoXFlVyJ4BryrDDP2WEN3cfbUWV96yBPaLoxD0KvtJ-X5zGRSKwlDWIiEdgF9l63kokKsEI62HzpAGyo0rRpVftjt9C9ARsTmg28wfvFgodnJxnRyf_Dch_tR3WqU0TeNE-TmNE-Ow8UHjsqA9eKyiw"
}
2022-12-15 22:28:17 SUCCESS
GetResourceEndpointConfiguration
Found a resource endpoint object
resourceUrl
https://mtls.prudentialdobrasil.hml.opinb3.com.br/open-insurance/customers/v1/personal/identifications
consentUrl
https://mtls.prudentialdobrasil.hml.opinb3.com.br/open-insurance/consents/v1
brazilCpf
06847046686
brazilOrganizationId
21555144-afca-4672-9a29-6a89b1c72894
data
{
  "loggedUser": {
    "document": {
      "identification": "06847046686",
      "rel": "CPF"
    }
  },
  "businessEntity": {
    "document": {
      "identification": "11111111111111",
      "rel": "CNPJ"
    }
  },
  "permissions": [
    "PENSION_RISK_READ",
    "CAPITALIZATION_TITLES_READ",
    "RESOURCES_READ"
  ],
  "expirationDateTime": "2023-10-21T08:30:00Z",
  "transactionFromDateTime": "2023-10-01T00:00:00Z",
  "transactionToDateTime": "2023-10-01T23:59:59Z"
}
2022-12-15 22:28:17 SUCCESS
SetProtectedResourceUrlToSingleResourceEndpoint
Set protected resource URL
protected_resource_url
https://mtls.prudentialdobrasil.hml.opinb3.com.br/open-insurance/customers/v1/personal/identifications
2022-12-15 22:28:17 SUCCESS
ExtractTLSTestValuesFromResourceConfiguration
Extracted TLS information from resource endpoint
resource_endpoint
{
  "testHost": "mtls.prudentialdobrasil.hml.opinb3.com.br",
  "testPort": 443
}
2022-12-15 22:28:17 SUCCESS
ExtractTLSTestValuesFromOBResourceConfiguration
Extracted TLS information from resource endpoint
accounts_resource_endpoint
{
  "testHost": "mtls.prudentialdobrasil.hml.opinb3.com.br",
  "testPort": 443
}
accounts_request_endpoint
{
  "testHost": "mtls.prudentialdobrasil.hml.opinb3.com.br",
  "testPort": 443
}
2022-12-15 22:28:17
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Setup Done
2022-12-15 22:28:17 SUCCESS
ExtractTLSTestValuesFromServerConfiguration
Extracted TLS information from authorization server configuration
registration_endpoint
{
  "testHost": "mtls.prudentialdobrasil.hml.opinb3.com.br",
  "testPort": 443
}
authorization_endpoint
{
  "testHost": "corebank.prudentialdobrasil.hml.linaob.com.br",
  "testPort": 443
}
token_endpoint
{
  "testHost": "mtls.prudentialdobrasil.hml.opinb3.com.br",
  "testPort": 443
}
userinfo_endpoint
{
  "testHost": "mtls.prudentialdobrasil.hml.opinb3.com.br",
  "testPort": 443
}
Authorization endpoint TLS test
2022-12-15 22:28:17 SUCCESS
EnsureTLS12WithFAPICiphers
Server agreed to TLS 1.2
port
443
host
corebank.prudentialdobrasil.hml.linaob.com.br
2022-12-15 22:28:17 SUCCESS
DisallowTLS10
Server refused TLS 1.0 handshake
port
443
host
corebank.prudentialdobrasil.hml.linaob.com.br
2022-12-15 22:28:17 SUCCESS
DisallowTLS11
Server refused TLS 1.1 handshake
port
443
host
corebank.prudentialdobrasil.hml.linaob.com.br
Token Endpoint TLS test
2022-12-15 22:28:17 SUCCESS
EnsureTLS12WithFAPICiphers
Server agreed to TLS 1.2
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:17 SUCCESS
DisallowTLS10
Server refused TLS 1.0 handshake
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:17 SUCCESS
DisallowTLS11
Server refused TLS 1.1 handshake
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:17
DisallowInsecureCipher
Trying to connect with a non-permitted cipher (this is not exhaustive: check the server configuration manually to verify conformance)
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:17 SUCCESS
DisallowInsecureCipher
The TLS handshake was rejected when trying to connect with disallowed ciphers.
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
Userinfo Endpoint TLS test
2022-12-15 22:28:18 SUCCESS
EnsureTLS12WithFAPICiphers
Server agreed to TLS 1.2
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18 SUCCESS
DisallowTLS10
Server refused TLS 1.0 handshake
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18 SUCCESS
DisallowTLS11
Server refused TLS 1.1 handshake
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18
DisallowInsecureCipher
Trying to connect with a non-permitted cipher (this is not exhaustive: check the server configuration manually to verify conformance)
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18 SUCCESS
DisallowInsecureCipher
The TLS handshake was rejected when trying to connect with disallowed ciphers.
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
Registration Endpoint TLS test
2022-12-15 22:28:18 SUCCESS
EnsureTLS12WithFAPICiphers
Server agreed to TLS 1.2
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18 SUCCESS
DisallowTLS10
Server refused TLS 1.0 handshake
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18 SUCCESS
DisallowTLS11
Server refused TLS 1.1 handshake
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18
DisallowInsecureCipher
Trying to connect with a non-permitted cipher (this is not exhaustive: check the server configuration manually to verify conformance)
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:18 SUCCESS
DisallowInsecureCipher
The TLS handshake was rejected when trying to connect with disallowed ciphers.
port
443
host
mtls.prudentialdobrasil.hml.opinb3.com.br
Use client_credentials grant to obtain Brazil consent
2022-12-15 22:28:18 SUCCESS
CreateTokenEndpointRequestForClientCredentialsGrant
Created token endpoint request
grant_type
client_credentials
scope
openid resources consents
2022-12-15 22:28:18 SUCCESS
SetConsentsScopeOnTokenEndpointRequest
Set scope parameter to 'consents'
grant_type
client_credentials
scope
consents
2022-12-15 22:28:18
AddClientIdToTokenEndpointRequest
grant_type
client_credentials
scope
consents
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
2022-12-15 22:28:18
CallTokenEndpoint
HTTP request
request_uri
https://mtls.prudentialdobrasil.hml.opinb3.com.br/sessions
request_method
POST
request_headers
{
  "accept": "application/json",
  "content-type": "application/x-www-form-urlencoded;charset\u003dUTF-8",
  "content-length": "91"
}
request_body
grant_type=client_credentials&scope=consents&client_id=fa129f17-4966-488a-a111-73760c9fcbd8
request_mutual_tls
{
  "cert": "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\u003d",
  "key": "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"
}
2022-12-15 22:28:19 RESPONSE
CallTokenEndpoint
HTTP response
response_status_code
200 OK
response_status_text
OK
response_headers
{
  "x-powered-by": "Express",
  "access-control-allow-origin": "*",
  "x-fapi-auth-date": "Thu Dec 15 2022 22:28:18 GMT+0000 (Coordinated Universal Time)",
  "x-fapi-interaction-id": "afc08672-9220-44c2-b52c-9bf458636093",
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "113",
  "etag": "W/\"71-RuOn654O3KiQiUvZAxyhgY63JXI\"",
  "date": "Thu, 15 Dec 2022 22:28:19 GMT",
  "x-envoy-upstream-service-time": "784",
  "server": "021"
}
response_body
{"access_token":"4df070fa-4219-494d-bc15-8b53d4985651","token_type":"Bearer","expires_in":300,"scope":"consents"}
2022-12-15 22:28:19 SUCCESS
CallTokenEndpoint
Parsed token endpoint response
access_token
4df070fa-4219-494d-bc15-8b53d4985651
token_type
Bearer
expires_in
300
scope
consents
2022-12-15 22:28:19 SUCCESS
CheckIfTokenEndpointResponseError
No error from token endpoint
2022-12-15 22:28:19 SUCCESS
CheckForAccessTokenValue
Found an access token
access_token
4df070fa-4219-494d-bc15-8b53d4985651
2022-12-15 22:28:19 SUCCESS
ExtractAccessTokenFromTokenResponse
Extracted the access token
value
4df070fa-4219-494d-bc15-8b53d4985651
type
Bearer
2022-12-15 22:28:19 SUCCESS
ExtractExpiresInFromTokenEndpointResponse
Extracted 'expires_in'
expires_in
300
2022-12-15 22:28:19 SUCCESS
ValidateExpiresIn
expires_in passed all validation checks
expires_in
300
2022-12-15 22:28:19
CreateEmptyResourceEndpointRequestHeaders
Created empty headers
resource_endpoint_request_headers
{}
2022-12-15 22:28:19 SUCCESS
AddFAPIAuthDateToResourceEndpointRequest
Added x-fapi-auth-date to resource endpoint request headers
resource_endpoint_request_headers
{
  "x-fapi-auth-date": "Thu, 15 Dec 2022 22:28:19 GMT"
}
2022-12-15 22:28:19 SUCCESS
FAPIBrazilOpenInsuranceCreateConsentRequest
consent_endpoint_request
{
  "data": {
    "permissions": [
      "CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ",
      "RESOURCES_READ"
    ],
    "loggedUser": {
      "document": {
        "identification": "06847046686",
        "rel": "CPF"
      }
    }
  }
}
2022-12-15 22:28:19 SUCCESS
FAPIBrazilExtractClientMTLSCertificateSubject
Extracted subject from MTLS certificate
org_type
OPIBR
subjectdn
UID=fa129f17-4966-488a-a111-73760c9fcbd8,2.5.4.97=#132a4f504942522d32313535353134342d616663612d343637322d396132392d366138396231633732383934,1.3.6.1.4.1.311.60.2.1.3=#13024252,2.5.4.15=#131450726976617465204f7267616e697a6174696f6e,2.5.4.5=#130e3333303631383133303030313430,CN=lina.sandbox.com.br,O=PRUDENTIAL DO BRASIL SEGUROS DE VIDA S.A.,L=RIO DE JANEIRO,ST=RJ,C=BR
ou
21555144-afca-4672-9a29-6a89b1c72894
brazil_software_id
fa129f17-4966-488a-a111-73760c9fcbd8
2022-12-15 22:28:19
FAPIBrazilOpenInsuranceVerifyCertificateSubjectOrganizationIdentifier
Certificate organization identifier field contains expected OPIBR
org_type
OPIBR
subjectdn
UID=fa129f17-4966-488a-a111-73760c9fcbd8,2.5.4.97=#132a4f504942522d32313535353134342d616663612d343637322d396132392d366138396231633732383934,1.3.6.1.4.1.311.60.2.1.3=#13024252,2.5.4.15=#131450726976617465204f7267616e697a6174696f6e,2.5.4.5=#130e3333303631383133303030313430,CN=lina.sandbox.com.br,O=PRUDENTIAL DO BRASIL SEGUROS DE VIDA S.A.,L=RIO DE JANEIRO,ST=RJ,C=BR
2022-12-15 22:28:19 SUCCESS
FAPIBrazilAddExpirationToConsentRequest
Added expiration time to consent request
consent_endpoint_request
{
  "data": {
    "permissions": [
      "CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ",
      "RESOURCES_READ"
    ],
    "loggedUser": {
      "document": {
        "identification": "06847046686",
        "rel": "CPF"
      }
    },
    "expirationDateTime": "2022-12-16T00:28:19Z"
  }
}
2022-12-15 22:28:19
CallConsentEndpointWithBearerToken
HTTP request
request_uri
https://mtls.prudentialdobrasil.hml.opinb3.com.br/open-insurance/consents/v1
request_method
POST
request_headers
{
  "accept": "application/json",
  "authorization": "Bearer 4df070fa-4219-494d-bc15-8b53d4985651",
  "x-fapi-auth-date": "Thu, 15 Dec 2022 22:28:19 GMT",
  "content-type": "application/json",
  "content-length": "200"
}
request_body
{"data":{"permissions":["CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ","RESOURCES_READ"],"loggedUser":{"document":{"identification":"06847046686","rel":"CPF"}},"expirationDateTime":"2022-12-16T00:28:19Z"}}
request_mutual_tls
{
  "cert": "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\u003d",
  "key": "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"
}
2022-12-15 22:28:19 RESPONSE
CallConsentEndpointWithBearerToken
HTTP response
response_status_code
201 CREATED
response_status_text
Created
response_headers
{
  "x-powered-by": "Express",
  "access-control-allow-origin": "*",
  "x-fapi-auth-date": "Thu Dec 15 2022 22:28:19 GMT+0000 (Coordinated Universal Time)",
  "x-fapi-interaction-id": "4c5ca8f8-579c-4cfc-abf7-8548137ecce5",
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "447",
  "etag": "W/\"1bf-+R6gqqBEw17OLJhWJjVaxVOju8o\"",
  "date": "Thu, 15 Dec 2022 22:28:19 GMT",
  "x-envoy-upstream-service-time": "264",
  "server": "021"
}
response_body
{"data":{"client_id":"fa129f17-4966-488a-a111-73760c9fcbd8","consentId":"urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8","creationDateTime":"2022-12-15T22:28:19Z","expirationDateTime":"2022-12-16T00:28:19Z","statusUpdateDateTime":"2022-12-15T22:28:19Z","status":"AWAITING_AUTHORISATION","permissions":["CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ","RESOURCES_READ"],"loggedUser":{"document":{"identification":"06847046686","rel":"CPF"}}}}
2022-12-15 22:28:19 SUCCESS
CallConsentEndpointWithBearerToken
Got a response from the consent endpoint
status
201
endpoint_name
resource
headers
{
  "x-powered-by": "Express",
  "access-control-allow-origin": "*",
  "x-fapi-auth-date": "Thu Dec 15 2022 22:28:19 GMT+0000 (Coordinated Universal Time)",
  "x-fapi-interaction-id": "4c5ca8f8-579c-4cfc-abf7-8548137ecce5",
  "content-type": "application/json; charset\u003dutf-8",
  "content-length": "447",
  "etag": "W/\"1bf-+R6gqqBEw17OLJhWJjVaxVOju8o\"",
  "date": "Thu, 15 Dec 2022 22:28:19 GMT",
  "x-envoy-upstream-service-time": "264",
  "server": "021"
}
body
{"data":{"client_id":"fa129f17-4966-488a-a111-73760c9fcbd8","consentId":"urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8","creationDateTime":"2022-12-15T22:28:19Z","expirationDateTime":"2022-12-16T00:28:19Z","statusUpdateDateTime":"2022-12-15T22:28:19Z","status":"AWAITING_AUTHORISATION","permissions":["CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ","RESOURCES_READ"],"loggedUser":{"document":{"identification":"06847046686","rel":"CPF"}}}}
body_json
{
  "data": {
    "client_id": "fa129f17-4966-488a-a111-73760c9fcbd8",
    "consentId": "urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8",
    "creationDateTime": "2022-12-15T22:28:19Z",
    "expirationDateTime": "2022-12-16T00:28:19Z",
    "statusUpdateDateTime": "2022-12-15T22:28:19Z",
    "status": "AWAITING_AUTHORISATION",
    "permissions": [
      "CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ",
      "RESOURCES_READ"
    ],
    "loggedUser": {
      "document": {
        "identification": "06847046686",
        "rel": "CPF"
      }
    }
  }
}
2022-12-15 22:28:19 SUCCESS
EnsureHttpStatusCodeIs201
resource endpoint returned the expected http status
expected_status
201
http_status
201
2022-12-15 22:28:19 SUCCESS
EnsureContentTypeJson
endpoint_response Content-Type: header is application/json
2022-12-15 22:28:19 SUCCESS
FAPIBrazilConsentEndpointResponseValidatePermissions
Consent endpoint response contains expected permissions
requested
[
  "CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ",
  "RESOURCES_READ"
]
granted
[
  "CUSTOMERS_PERSONAL_IDENTIFICATIONS_READ",
  "RESOURCES_READ"
]
2022-12-15 22:28:19 SUCCESS
ExtractConsentIdFromConsentEndpointResponse
Extracted the consent id
consent_id
urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8
2022-12-15 22:28:19 SUCCESS
CheckForFAPIInteractionIdInResourceResponse
Found x-fapi-interaction-id
interaction_id
4c5ca8f8-579c-4cfc-abf7-8548137ecce5
2022-12-15 22:28:19 SUCCESS
FAPIBrazilAddConsentIdToClientScope
Added scope of 'openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8' to client's scope
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
scope
openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8
jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
      "e": "AQAB",
      "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
      "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
      "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
      "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
      "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
      "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
org_jwks
{
  "keys": [
    {
      "kty": "RSA",
      "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
      "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w",
      "e": "AQAB",
      "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
      "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
      "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
      "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
      "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
      "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
      "use": "sig",
      "alg": "PS256"
    }
  ]
}
Make request to authorization endpoint
2022-12-15 22:28:19 SUCCESS
CreateAuthorizationEndpointRequestFromClientInformation
Created authorization endpoint request
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
scope
openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8
2022-12-15 22:28:19
CreateRandomStateValue
Created state value
requested_state_length
10
state
Gp7qFuPcQf
2022-12-15 22:28:19 SUCCESS
AddStateToAuthorizationEndpointRequest
Added state parameter to request
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
scope
openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8
state
Gp7qFuPcQf
2022-12-15 22:28:19
CreateRandomNonceValue
Created nonce value
requested_nonce_length
10
nonce
2Kd4mwyILj
2022-12-15 22:28:19 SUCCESS
AddNonceToAuthorizationEndpointRequest
Added nonce parameter to request
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
scope
openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8
state
Gp7qFuPcQf
nonce
2Kd4mwyILj
2022-12-15 22:28:19 SUCCESS
SetAuthorizationEndpointRequestResponseTypeToCodeIdtoken
Added response_type parameter to request
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
scope
openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8
state
Gp7qFuPcQf
nonce
2Kd4mwyILj
response_type
code id_token
2022-12-15 22:28:19 SUCCESS
ConvertAuthorizationEndpointRequestToRequestObject
Created request object claims
request_object_claims
{
  "client_id": "fa129f17-4966-488a-a111-73760c9fcbd8",
  "redirect_uri": "https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback",
  "scope": "openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8",
  "state": "Gp7qFuPcQf",
  "nonce": "2Kd4mwyILj",
  "response_type": "code id_token"
}
2022-12-15 22:28:19 SUCCESS
AddNbfToRequestObject
Added nbf to request object claims
nbf
1.671143299E9
2022-12-15 22:28:19 SUCCESS
AddExpToRequestObject
Added exp to request object claims
exp
1.671143599E9
2022-12-15 22:28:19 SUCCESS
AddAudToRequestObject
Added aud to request object claims
aud
https://api.prudentialdobrasil.hml.opinb3.com.br
2022-12-15 22:28:19 SUCCESS
AddIssToRequestObject
Added iss to request object claims
iss
fa129f17-4966-488a-a111-73760c9fcbd8
2022-12-15 22:28:19 SUCCESS
AddClientIdToRequestObject
Added client_id to request object claims
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
2022-12-15 22:28:19 SUCCESS
SignRequestObject
Signed the request object
claims
{
  "aud": "https://api.prudentialdobrasil.hml.opinb3.com.br",
  "nbf": 1671143299,
  "scope": "openid resources consents consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8",
  "iss": "fa129f17-4966-488a-a111-73760c9fcbd8",
  "response_type": "code id_token",
  "redirect_uri": "https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback",
  "state": "Gp7qFuPcQf",
  "exp": 1671143599,
  "nonce": "2Kd4mwyILj",
  "client_id": "fa129f17-4966-488a-a111-73760c9fcbd8"
}
header
{
  "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
  "alg": "PS256"
}
request_object
eyJraWQiOiJoSlNDT2dUT0pTTXhfMGRFNTRyTzF1MWtVTjh0RWlGN3ludC1QY2Q5RlZFIiwiYWxnIjoiUFMyNTYifQ.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.P-M6GX9CSICZ_xDjpCU2HLtpj6veUYpz7tDxG4Hy60HFpCAQyQpenCEqkG6DW8mpkbr713kCFMcYW8h7BIbV-NK2w3Ihr7_mK3xnu8biFaTAdJM1qOYAdzpVEB1VpwP6MTco7GiyP3msAcwDjtfwFi40sQMro904v5Qwsqi3dugIELYd8ZWYUIBoPRhyzZf4xU3A3BJG3phVIKZSErxxnmAhGl0FYQao2ZDuzGPSYT_CwooA-Zc8kCnC1Y-9aiul5jvtvxd-ebVk5-QdPMVO1v0tAzrZdxCquNJCZ5td3OtKQJp0ZxW1rlJruOmpLBIkTEN81UkX4NoczVtRj6HdSQ
key
{
  "p": "2BPaVhCuAzSHMKB48rHs9Zb2wgjyuYJRI-Q3u0XKpk5AlA54moXAo3NVXIb-j1GubJR3UrT-VaXve6z3H-51IfCWnajWIqp8Dozoosz2z6tzqzqYXwXh7TYYfR-URgMfVeCoyZvAGkaSAErdtDkUPwhopHfPOwE3OpzJ2HSBGXU",
  "kty": "RSA",
  "q": "0XhQjO1UJmrgdE72i1s8pYapByJwbT5Ef57U1rQGbBENRfPNJDo_kGyNpuaiRf0z3plq6pJUcj71uwdxurp73GY5XrIbKZr1a1o2gvDYVIBoGQgj9B3FI39B7psk_Ir_zyEwUT1Q_t1lfVHDYeRyyf1yc44UEmUnyTWjryNeQjs",
  "d": "ZM9ttjNXEZaRHNri8r1ZX0-yRBh8r6GEnZcWxATDNeWewH2Wlp5OufIXC9fYlbOCd9LD5I_1kMvbtcDkTPxBd0HbOxDNoUncJnfzyM-JNjXg2QNa_OmWnWbh3Zw_pyb7u3dnu9no5N3vBNlDJUVsCvscBdpFRFHDYStJn5iKOCRJJ7GS1GxWfrgRNgXYDN-I6oalCHVYZJoJ0pLIQ_AJh3w8MVxwBWGCQLtqu2PTSvdnea9CoziEvvL1yoTzDXS4jvJ6D424CQm_Dcw8pUd921Q0uG0R10I8a8BWbMOPzf80fRQ0_MaYyNmZFPDp8uhF8IcEG14ii51dUGnNX0KtwQ",
  "e": "AQAB",
  "use": "sig",
  "kid": "hJSCOgTOJSMx_0dE54rO1u1kUN8tEiF7ynt-Pcd9FVE",
  "qi": "kV8_5CdcKVqNRG1iV8eNl_WppngeB571i4wkc3Ygk6Tbg0fv-qnpqnVtesoj2hWmKf8nWLczq05xXiFfQbf0VDNBGSlNYFBDCdJr0q6ncbMDis8Yw2Qw4bTeypJFDSPSHZz3oyNqTk6pn_-Sy9MJd9Nyc1hBdy7Ealb0jUVdAos",
  "dp": "fFggYzrCCNInohIWyAMgC8xOQCcKFzspGnBwqfJlxgJuI0WYncOuseDjFJYS08L7jzx41j2Vxw_wmslUhSmiel-LLTtFzzkwnubz0QwGVEekDrtvh-9IrktdGFQd7ZRKag8Y0rwwdm56AnUS1G2sewGJxmuz846li7NCbK_Owyk",
  "alg": "PS256",
  "dq": "Q0IBgy6VDXzVsyLDkP1rnK5_SXYqaTlMHzotlv7Y7QwQmfxtSwuU61efqA533kctx3S1Wro_eSt0FWiPgOht6te75gcEJ7jEwoKF7EdO_tr4EcmGWdTRPtOWpPmVx60N9EDw1bT9c8g81R9Sv_TtUqQZgrcFBN8MBlQ9yXduxY8",
  "n": "sM3Ci8Ndlolc64ek5U-3aeSbkO008ZLa49rfByYjzoQBW3JRzLwhtSPnpuCgWKZWj9jy14ZKNny3EF0hQLrg8uyPkkAu0aFjCYJ0Tdj95uR7FlW-kCv6kTgr4DMPiJFdrkAlLlKSGube3HzLNicH8x1ejCC9nrZWnSzZw9ZqHA6a_w9kKCYUpx9ovrTPIOPSifkd8tfzB00eh1sEdRP5DGv3JjrLGAe1ZaciRqawQDbgXosEdiZHJo0eIl6kvz74HcepgInEH7-vcgX0CuUj3J9s4F7lSEqF0Mn3aSF6W82AEdszoIgC1J-mRJ_DcFreAWVKyjggzLGdQ6bJekcH9w"
}
2022-12-15 22:28:19
FAPIBrazilEncryptRequestObject
Encrypted the request object
request_object
eyJraWQiOiJKRWVGNmFUOVdFN25FZ3J3bTFVOE9ZWE8tZzFZcDZNa1VzYU5WSzNhdk1BIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.fnDrwNTf1VRyU7WCHDozaawczcn5qjqCOnZBXUORV0px9RX9Yqu-wFeveEIjwscOSx5yIL_lo7laXIM-aX0qMBEC8oyCwu8zUZqiKgtZyNVoqUcKlmb78s8yG66er7WxT_rXB9M9Rjz0CVaHFjMqveIfDV-xV5hbDTkRTnknlJQPgKu9vDNvfycwqBMsJkwy6i1Wkx3uIaQ3SuVsITuw5r2NLC8kK9m93cZEvu5QozSFFXRFfeswCj5124fxz0hPVz8D5bNEqtu68lKy-2xsXpyxLL1EvGFhgGyhzof6BrF-MBG8nrcsCyDxppblaOX9iM8FKtJ3USOVhGMauGAFDw.57IqwOic-fxA88uN.EZaJV5cH_HwL8qCqxxr53zbDOb9fMDY3LjjldEC08rCnuRwRA1nvjHcUvA9W3zRzZHUKv-quXhC4LNx2jD2wofU2NvC7Bj4ciwXowD7VarcYJxFE-IXntcIdEVawYYT1hgGRLiZVmj1_rKEFwNUgnBslLuGKCYACVSX0P9CJUFwnITXOs9N1-F4kIiQ29vfjJHcnOXyQUOU3qICmQQ3KbOVyazB4Vcme47pHp_pgfnjLsK0r0O9kN60gxWVdXacvr1NP7fXrSZbHv5tVy3FefRnshHhBpi0xXJhpePhw1Zkt8XMGUVeI61aYN9XJAe4qs1iWHHnkZYeZyRqE_Waddt5Y08t71nsyG64dvtYv1f-6O_BRSTg4uGfeg5Uuj8pEnafwTgB56XMpSHOpeS6DUqJpFQRRfn6pwFbxiHVYUbADbY99kTXhIXOHhFkUadzBg7-4ZPj2EYjeiM7HZefznU5pK6GS6P1Tq1yIXf5fFJFDq1wG8cfEQUK6oWjvxMXwkn3KuEcq4m3-WNrMwM6cPpSQ20SOQQ8_NoyOSBTWG_8swoUxepH4laxn1X0H33H8aVEeCOA19SfhOMtpSPjwQqGezYPbbKAcJO-RXNRVru3lK7whHe9D-qvJuKcOp9j7Nmyq1u3_EYhMFipGaGQ0tqoWRqfln5HJKzteeFBlfl6gJvvyjDh3oHj7uuqpTr8qvX7XI1Zbjn76DivLTd_bzf2HV-gcv4EshSNqnrnHFSMn1sJ1oC_PydRcs0dZifxRQC_sgsY-aqVxqQolq9yqIV8iMuurF_DwTGFYj8haalJ8brJnk4q0fQfORnS-eUrgF_8liPx8iD0JRr19hC-lQbGxgyDSRAX9Dq9rgaaIknS5AC7yhn8XbgzuRob_moC6UV-rI300AU8-0UkWEpJe7GfTXEDqXNYIrmVZ2TnUgNKkt8Ckeb4wOvirWWbvrVnmikcfszZysJhS-HvynWF1oSPgY6SQwDoGTh9Xj8l5_s_fJA5fj9TulBk-TjBHLIEjmBA40QNfNsTm-Sq6O-fNFBTdS6B1sotNOWCE6qGKTZW6tlkNUJHzSwtAHSCzW4x57rbDQfzoy6FTY7TbIWX3ZIQb25dduOJdo5yA6aqTJkHXjP0LA9T-tWAR7jOIOmw05QWW7JZbVqrDEwv76TB55Du6sagX7-gkPe4ftPaWZUvAzPVHDMYJzmGlHslYemo_g4yO4DBFyQITlPVlUwX14s1gfIyCbY4kml1pMPNdJ9vKbDos9W5MxhYvqCey2AqG1XSqIgTGqLx69KLQxmB3aw7GaE6hr8JPiuYHsNP9wjBuZLLPHyPCEoz97fGoMXBvduOIVQsUGRS2kkDGcs6kV2p8Hr05Mp6-I4T9WA1wtK9klfC0ysTyMhSD_9DrRaQqyjgX8w.7LeEIhJscc6MIyFFg5YYBQ
enc
A256GCM
alg
RSA-OAEP
2022-12-15 22:28:19 SUCCESS
BuildRequestObjectByValueRedirectToAuthorizationEndpoint
Sending to authorization endpoint
redirect_to_authorization_endpoint
https://corebank.prudentialdobrasil.hml.linaob.com.br/open-insurance/consents/auth?request=eyJraWQiOiJKRWVGNmFUOVdFN25FZ3J3bTFVOE9ZWE8tZzFZcDZNa1VzYU5WSzNhdk1BIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.fnDrwNTf1VRyU7WCHDozaawczcn5qjqCOnZBXUORV0px9RX9Yqu-wFeveEIjwscOSx5yIL_lo7laXIM-aX0qMBEC8oyCwu8zUZqiKgtZyNVoqUcKlmb78s8yG66er7WxT_rXB9M9Rjz0CVaHFjMqveIfDV-xV5hbDTkRTnknlJQPgKu9vDNvfycwqBMsJkwy6i1Wkx3uIaQ3SuVsITuw5r2NLC8kK9m93cZEvu5QozSFFXRFfeswCj5124fxz0hPVz8D5bNEqtu68lKy-2xsXpyxLL1EvGFhgGyhzof6BrF-MBG8nrcsCyDxppblaOX9iM8FKtJ3USOVhGMauGAFDw.57IqwOic-fxA88uN.EZaJV5cH_HwL8qCqxxr53zbDOb9fMDY3LjjldEC08rCnuRwRA1nvjHcUvA9W3zRzZHUKv-quXhC4LNx2jD2wofU2NvC7Bj4ciwXowD7VarcYJxFE-IXntcIdEVawYYT1hgGRLiZVmj1_rKEFwNUgnBslLuGKCYACVSX0P9CJUFwnITXOs9N1-F4kIiQ29vfjJHcnOXyQUOU3qICmQQ3KbOVyazB4Vcme47pHp_pgfnjLsK0r0O9kN60gxWVdXacvr1NP7fXrSZbHv5tVy3FefRnshHhBpi0xXJhpePhw1Zkt8XMGUVeI61aYN9XJAe4qs1iWHHnkZYeZyRqE_Waddt5Y08t71nsyG64dvtYv1f-6O_BRSTg4uGfeg5Uuj8pEnafwTgB56XMpSHOpeS6DUqJpFQRRfn6pwFbxiHVYUbADbY99kTXhIXOHhFkUadzBg7-4ZPj2EYjeiM7HZefznU5pK6GS6P1Tq1yIXf5fFJFDq1wG8cfEQUK6oWjvxMXwkn3KuEcq4m3-WNrMwM6cPpSQ20SOQQ8_NoyOSBTWG_8swoUxepH4laxn1X0H33H8aVEeCOA19SfhOMtpSPjwQqGezYPbbKAcJO-RXNRVru3lK7whHe9D-qvJuKcOp9j7Nmyq1u3_EYhMFipGaGQ0tqoWRqfln5HJKzteeFBlfl6gJvvyjDh3oHj7uuqpTr8qvX7XI1Zbjn76DivLTd_bzf2HV-gcv4EshSNqnrnHFSMn1sJ1oC_PydRcs0dZifxRQC_sgsY-aqVxqQolq9yqIV8iMuurF_DwTGFYj8haalJ8brJnk4q0fQfORnS-eUrgF_8liPx8iD0JRr19hC-lQbGxgyDSRAX9Dq9rgaaIknS5AC7yhn8XbgzuRob_moC6UV-rI300AU8-0UkWEpJe7GfTXEDqXNYIrmVZ2TnUgNKkt8Ckeb4wOvirWWbvrVnmikcfszZysJhS-HvynWF1oSPgY6SQwDoGTh9Xj8l5_s_fJA5fj9TulBk-TjBHLIEjmBA40QNfNsTm-Sq6O-fNFBTdS6B1sotNOWCE6qGKTZW6tlkNUJHzSwtAHSCzW4x57rbDQfzoy6FTY7TbIWX3ZIQb25dduOJdo5yA6aqTJkHXjP0LA9T-tWAR7jOIOmw05QWW7JZbVqrDEwv76TB55Du6sagX7-gkPe4ftPaWZUvAzPVHDMYJzmGlHslYemo_g4yO4DBFyQITlPVlUwX14s1gfIyCbY4kml1pMPNdJ9vKbDos9W5MxhYvqCey2AqG1XSqIgTGqLx69KLQxmB3aw7GaE6hr8JPiuYHsNP9wjBuZLLPHyPCEoz97fGoMXBvduOIVQsUGRS2kkDGcs6kV2p8Hr05Mp6-I4T9WA1wtK9klfC0ysTyMhSD_9DrRaQqyjgX8w.7LeEIhJscc6MIyFFg5YYBQ&client_id=fa129f17-4966-488a-a111-73760c9fcbd8&redirect_uri=https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback&scope=openid%20resources%20consents%20consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8&response_type=code%20id_token
2022-12-15 22:28:19 REDIRECT
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Redirecting to authorization endpoint
redirect_to
https://corebank.prudentialdobrasil.hml.linaob.com.br/open-insurance/consents/auth?request=eyJraWQiOiJKRWVGNmFUOVdFN25FZ3J3bTFVOE9ZWE8tZzFZcDZNa1VzYU5WSzNhdk1BIiwiY3R5IjoiSldUIiwiZW5jIjoiQTI1NkdDTSIsImFsZyI6IlJTQS1PQUVQIn0.fnDrwNTf1VRyU7WCHDozaawczcn5qjqCOnZBXUORV0px9RX9Yqu-wFeveEIjwscOSx5yIL_lo7laXIM-aX0qMBEC8oyCwu8zUZqiKgtZyNVoqUcKlmb78s8yG66er7WxT_rXB9M9Rjz0CVaHFjMqveIfDV-xV5hbDTkRTnknlJQPgKu9vDNvfycwqBMsJkwy6i1Wkx3uIaQ3SuVsITuw5r2NLC8kK9m93cZEvu5QozSFFXRFfeswCj5124fxz0hPVz8D5bNEqtu68lKy-2xsXpyxLL1EvGFhgGyhzof6BrF-MBG8nrcsCyDxppblaOX9iM8FKtJ3USOVhGMauGAFDw.57IqwOic-fxA88uN.EZaJV5cH_HwL8qCqxxr53zbDOb9fMDY3LjjldEC08rCnuRwRA1nvjHcUvA9W3zRzZHUKv-quXhC4LNx2jD2wofU2NvC7Bj4ciwXowD7VarcYJxFE-IXntcIdEVawYYT1hgGRLiZVmj1_rKEFwNUgnBslLuGKCYACVSX0P9CJUFwnITXOs9N1-F4kIiQ29vfjJHcnOXyQUOU3qICmQQ3KbOVyazB4Vcme47pHp_pgfnjLsK0r0O9kN60gxWVdXacvr1NP7fXrSZbHv5tVy3FefRnshHhBpi0xXJhpePhw1Zkt8XMGUVeI61aYN9XJAe4qs1iWHHnkZYeZyRqE_Waddt5Y08t71nsyG64dvtYv1f-6O_BRSTg4uGfeg5Uuj8pEnafwTgB56XMpSHOpeS6DUqJpFQRRfn6pwFbxiHVYUbADbY99kTXhIXOHhFkUadzBg7-4ZPj2EYjeiM7HZefznU5pK6GS6P1Tq1yIXf5fFJFDq1wG8cfEQUK6oWjvxMXwkn3KuEcq4m3-WNrMwM6cPpSQ20SOQQ8_NoyOSBTWG_8swoUxepH4laxn1X0H33H8aVEeCOA19SfhOMtpSPjwQqGezYPbbKAcJO-RXNRVru3lK7whHe9D-qvJuKcOp9j7Nmyq1u3_EYhMFipGaGQ0tqoWRqfln5HJKzteeFBlfl6gJvvyjDh3oHj7uuqpTr8qvX7XI1Zbjn76DivLTd_bzf2HV-gcv4EshSNqnrnHFSMn1sJ1oC_PydRcs0dZifxRQC_sgsY-aqVxqQolq9yqIV8iMuurF_DwTGFYj8haalJ8brJnk4q0fQfORnS-eUrgF_8liPx8iD0JRr19hC-lQbGxgyDSRAX9Dq9rgaaIknS5AC7yhn8XbgzuRob_moC6UV-rI300AU8-0UkWEpJe7GfTXEDqXNYIrmVZ2TnUgNKkt8Ckeb4wOvirWWbvrVnmikcfszZysJhS-HvynWF1oSPgY6SQwDoGTh9Xj8l5_s_fJA5fj9TulBk-TjBHLIEjmBA40QNfNsTm-Sq6O-fNFBTdS6B1sotNOWCE6qGKTZW6tlkNUJHzSwtAHSCzW4x57rbDQfzoy6FTY7TbIWX3ZIQb25dduOJdo5yA6aqTJkHXjP0LA9T-tWAR7jOIOmw05QWW7JZbVqrDEwv76TB55Du6sagX7-gkPe4ftPaWZUvAzPVHDMYJzmGlHslYemo_g4yO4DBFyQITlPVlUwX14s1gfIyCbY4kml1pMPNdJ9vKbDos9W5MxhYvqCey2AqG1XSqIgTGqLx69KLQxmB3aw7GaE6hr8JPiuYHsNP9wjBuZLLPHyPCEoz97fGoMXBvduOIVQsUGRS2kkDGcs6kV2p8Hr05Mp6-I4T9WA1wtK9klfC0ysTyMhSD_9DrRaQqyjgX8w.7LeEIhJscc6MIyFFg5YYBQ&client_id=fa129f17-4966-488a-a111-73760c9fcbd8&redirect_uri=https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback&scope=openid%20resources%20consents%20consent:urn:prudentialdobrasil:ce05cfea-4277-45db-be1f-33e16bec7af8&response_type=code%20id_token
2022-12-15 22:28:31 INCOMING
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Incoming HTTP request to /test/a/Prudential-AuthServer-v1/callback
incoming_headers
{
  "host": "www.certification.openid.net",
  "upgrade-insecure-requests": "1",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,image/avif,image/webp,image/apng,*/*;q\u003d0.8",
  "sec-gpc": "1",
  "accept-language": "en-US,en;q\u003d0.6",
  "sec-fetch-site": "cross-site",
  "sec-fetch-mode": "navigate",
  "sec-fetch-user": "?1",
  "sec-fetch-dest": "document",
  "referer": "https://sandbox.hml.opinb3.com.br/",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d48CC4B8AE6F0AC337158E152A542E262",
  "connection": "close"
}
incoming_path
/test/a/Prudential-AuthServer-v1/callback
incoming_body_form_params
incoming_method
GET
incoming_tls_version
TLSv1.2
incoming_tls_cert
incoming_query_string_params
{}
incoming_body
incoming_tls_chain
[
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL"
]
incoming_tls_cipher
ECDHE-RSA-AES128-GCM-SHA256
incoming_body_json
2022-12-15 22:28:31 SUCCESS
CreateRandomImplicitSubmitUrl
Created random implicit submission URL
implicit_submit
{
  "path": "implicit/UGOLMQRA1czi4y7y61tR",
  "fullUrl": "https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/implicit/UGOLMQRA1czi4y7y61tR"
}
2022-12-15 22:28:31 OUTGOING
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Response to HTTP request to test instance hGLbDzeAknDa5PR
outgoing
ModelAndView [view="implicitCallback"; model={implicitSubmitUrl=https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/implicit/UGOLMQRA1czi4y7y61tR, returnUrl=/log-detail.html?log=hGLbDzeAknDa5PR}]
outgoing_path
callback
2022-12-15 22:28:32 INCOMING
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Incoming HTTP request to /test/a/Prudential-AuthServer-v1/implicit/UGOLMQRA1czi4y7y61tR
incoming_headers
{
  "host": "www.certification.openid.net",
  "accept": "*/*",
  "x-requested-with": "XMLHttpRequest",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36",
  "content-type": "text/plain",
  "sec-gpc": "1",
  "accept-language": "en-US,en;q\u003d0.6",
  "origin": "https://www.certification.openid.net",
  "sec-fetch-site": "same-origin",
  "sec-fetch-mode": "cors",
  "sec-fetch-dest": "empty",
  "referer": "https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d48CC4B8AE6F0AC337158E152A542E262",
  "connection": "close",
  "content-length": "909"
}
incoming_path
/test/a/Prudential-AuthServer-v1/implicit/UGOLMQRA1czi4y7y61tR
incoming_body_form_params
incoming_method
POST
incoming_tls_version
TLSv1.2
incoming_tls_cert
incoming_query_string_params
{}
incoming_body
#code=7468d4c0-ee18-4b52-9870-4cee43045056&id_token=eyJhbGciOiJQUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6InBmdjZSWlNpQXAtOFY0elItV1lFZTZIbWZXLTEyY0RKMFpmSGVHeXBhWlkifQ.eyJpc3MiOiJodHRwczovL2FwaS5wcnVkZW50aWFsZG9icmFzaWwuaG1sLm9waW5iMy5jb20uYnIiLCJub25jZSI6IjJLZDRtd3lJTGoiLCJjX2hhc2giOiJDa0oyaTR4TjhicTZFc21kVlF3VFV3IiwiZXhwIjoxNjcxMTQzMzcxLCJpYXQiOjE2NzExNDMzMTEsInN1YiI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsImF1ZCI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsInN0YXRlIjoiR3A3cUZ1UGNRZiIsInNfaGFzaCI6Ik9zZk9fdHZxWHVUQ0FJUmFGdmlWOUEifQ.tlCFQ_hDD0vfIWFPdJjtzJSIrUyRDg710cdT0l8NQku0oqix3sHiI1tRptyKaLel7zf4LWzzu3I2cP-4AWYSBAdoDbyXBXYam491Ptn96cuEkuGtoLaOXNAEyuNTkyQyZALIC4egR_UWTJmiLDafLqwKcdyWhBhLi3kiQwvkehyD7wvZ_ZSAfu3UEimtlIcEjFyitHoqa0AhZvHKjUV_G3tdDSzKKinJaSDFEEkdwAQqpjdwam_6WXaMchHPJecug-x1jP63Odv2xm1V0yGY6xMtZYPEtpiVhXZ0AqRWlkXlOa3LdSRJAXEEPQbzgE56_Caiky1CFZBJN4W1YBBtpg&state=Gp7qFuPcQf
incoming_tls_chain
[
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL",
  "CONFORMANCE_SUITE_JSON_NULL"
]
incoming_tls_cipher
ECDHE-RSA-AES128-GCM-SHA256
incoming_body_json
2022-12-15 22:28:32 OUTGOING
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Response to HTTP request to test instance hGLbDzeAknDa5PR
outgoing_status_code
204
outgoing_headers
{}
outgoing_body

                                
outgoing_path
implicit/UGOLMQRA1czi4y7y61tR
2022-12-15 22:28:32
ExtractImplicitHashToCallbackResponse
Extracted response from URL fragment
parameters
[
  {
    "name": "code",
    "value": "7468d4c0-ee18-4b52-9870-4cee43045056"
  },
  {
    "name": "id_token",
    "value": "eyJhbGciOiJQUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6InBmdjZSWlNpQXAtOFY0elItV1lFZTZIbWZXLTEyY0RKMFpmSGVHeXBhWlkifQ.eyJpc3MiOiJodHRwczovL2FwaS5wcnVkZW50aWFsZG9icmFzaWwuaG1sLm9waW5iMy5jb20uYnIiLCJub25jZSI6IjJLZDRtd3lJTGoiLCJjX2hhc2giOiJDa0oyaTR4TjhicTZFc21kVlF3VFV3IiwiZXhwIjoxNjcxMTQzMzcxLCJpYXQiOjE2NzExNDMzMTEsInN1YiI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsImF1ZCI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsInN0YXRlIjoiR3A3cUZ1UGNRZiIsInNfaGFzaCI6Ik9zZk9fdHZxWHVUQ0FJUmFGdmlWOUEifQ.tlCFQ_hDD0vfIWFPdJjtzJSIrUyRDg710cdT0l8NQku0oqix3sHiI1tRptyKaLel7zf4LWzzu3I2cP-4AWYSBAdoDbyXBXYam491Ptn96cuEkuGtoLaOXNAEyuNTkyQyZALIC4egR_UWTJmiLDafLqwKcdyWhBhLi3kiQwvkehyD7wvZ_ZSAfu3UEimtlIcEjFyitHoqa0AhZvHKjUV_G3tdDSzKKinJaSDFEEkdwAQqpjdwam_6WXaMchHPJecug-x1jP63Odv2xm1V0yGY6xMtZYPEtpiVhXZ0AqRWlkXlOa3LdSRJAXEEPQbzgE56_Caiky1CFZBJN4W1YBBtpg"
  },
  {
    "name": "state",
    "value": "Gp7qFuPcQf"
  }
]
2022-12-15 22:28:32 SUCCESS
ExtractImplicitHashToCallbackResponse
Extracted the hash values
code
7468d4c0-ee18-4b52-9870-4cee43045056
id_token
eyJhbGciOiJQUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6InBmdjZSWlNpQXAtOFY0elItV1lFZTZIbWZXLTEyY0RKMFpmSGVHeXBhWlkifQ.eyJpc3MiOiJodHRwczovL2FwaS5wcnVkZW50aWFsZG9icmFzaWwuaG1sLm9waW5iMy5jb20uYnIiLCJub25jZSI6IjJLZDRtd3lJTGoiLCJjX2hhc2giOiJDa0oyaTR4TjhicTZFc21kVlF3VFV3IiwiZXhwIjoxNjcxMTQzMzcxLCJpYXQiOjE2NzExNDMzMTEsInN1YiI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsImF1ZCI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsInN0YXRlIjoiR3A3cUZ1UGNRZiIsInNfaGFzaCI6Ik9zZk9fdHZxWHVUQ0FJUmFGdmlWOUEifQ.tlCFQ_hDD0vfIWFPdJjtzJSIrUyRDg710cdT0l8NQku0oqix3sHiI1tRptyKaLel7zf4LWzzu3I2cP-4AWYSBAdoDbyXBXYam491Ptn96cuEkuGtoLaOXNAEyuNTkyQyZALIC4egR_UWTJmiLDafLqwKcdyWhBhLi3kiQwvkehyD7wvZ_ZSAfu3UEimtlIcEjFyitHoqa0AhZvHKjUV_G3tdDSzKKinJaSDFEEkdwAQqpjdwam_6WXaMchHPJecug-x1jP63Odv2xm1V0yGY6xMtZYPEtpiVhXZ0AqRWlkXlOa3LdSRJAXEEPQbzgE56_Caiky1CFZBJN4W1YBBtpg
state
Gp7qFuPcQf
2022-12-15 22:28:32 REDIRECT-IN
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Authorization endpoint response captured
url_query
{}
headers
{
  "host": "www.certification.openid.net",
  "upgrade-insecure-requests": "1",
  "user-agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36",
  "accept": "text/html,application/xhtml+xml,application/xml;q\u003d0.9,image/avif,image/webp,image/apng,*/*;q\u003d0.8",
  "sec-gpc": "1",
  "accept-language": "en-US,en;q\u003d0.6",
  "sec-fetch-site": "cross-site",
  "sec-fetch-mode": "navigate",
  "sec-fetch-user": "?1",
  "sec-fetch-dest": "document",
  "referer": "https://sandbox.hml.opinb3.com.br/",
  "accept-encoding": "gzip, deflate, br",
  "cookie": "JSESSIONID\u003d48CC4B8AE6F0AC337158E152A542E262",
  "x-ssl-cipher": "ECDHE-RSA-AES128-GCM-SHA256",
  "x-ssl-protocol": "TLSv1.2",
  "x-forwarded-proto": "https",
  "x-forwarded-port": "443",
  "connection": "close",
  "x-forwarded-host": "www.certification.openid.net",
  "x-forwarded-server": "www.certification.openid.net"
}
http_method
GET
url_fragment
{
  "code": "7468d4c0-ee18-4b52-9870-4cee43045056",
  "id_token": "eyJhbGciOiJQUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6InBmdjZSWlNpQXAtOFY0elItV1lFZTZIbWZXLTEyY0RKMFpmSGVHeXBhWlkifQ.eyJpc3MiOiJodHRwczovL2FwaS5wcnVkZW50aWFsZG9icmFzaWwuaG1sLm9waW5iMy5jb20uYnIiLCJub25jZSI6IjJLZDRtd3lJTGoiLCJjX2hhc2giOiJDa0oyaTR4TjhicTZFc21kVlF3VFV3IiwiZXhwIjoxNjcxMTQzMzcxLCJpYXQiOjE2NzExNDMzMTEsInN1YiI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsImF1ZCI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsInN0YXRlIjoiR3A3cUZ1UGNRZiIsInNfaGFzaCI6Ik9zZk9fdHZxWHVUQ0FJUmFGdmlWOUEifQ.tlCFQ_hDD0vfIWFPdJjtzJSIrUyRDg710cdT0l8NQku0oqix3sHiI1tRptyKaLel7zf4LWzzu3I2cP-4AWYSBAdoDbyXBXYam491Ptn96cuEkuGtoLaOXNAEyuNTkyQyZALIC4egR_UWTJmiLDafLqwKcdyWhBhLi3kiQwvkehyD7wvZ_ZSAfu3UEimtlIcEjFyitHoqa0AhZvHKjUV_G3tdDSzKKinJaSDFEEkdwAQqpjdwam_6WXaMchHPJecug-x1jP63Odv2xm1V0yGY6xMtZYPEtpiVhXZ0AqRWlkXlOa3LdSRJAXEEPQbzgE56_Caiky1CFZBJN4W1YBBtpg",
  "state": "Gp7qFuPcQf"
}
post_body
Verify authorization endpoint response
2022-12-15 22:28:32 SUCCESS
RejectErrorInUrlQuery
'error' is not present in URL query returned from authorization endpoint
2022-12-15 22:28:32 SUCCESS
RejectAuthCodeInUrlQuery
Authorization code is not present in URL query returned from authorization endpoint
2022-12-15 22:28:32 SUCCESS
CheckMatchingCallbackParameters
Callback parameters successfully verified
2022-12-15 22:28:32 SUCCESS
RejectStateInUrlQueryForHybridFlow
state is correctly not present in URL query returned from authorization endpoint (as in the hybrid flow it must be returned in the URL fragment/hash only)
2022-12-15 22:28:32 SUCCESS
CheckIfAuthorizationEndpointError
No error from authorization endpoint
2022-12-15 22:28:32 SUCCESS
ValidateSuccessfulHybridResponseFromAuthorizationEndpoint
authorization endpoint response does not include unexpected parameters
code
7468d4c0-ee18-4b52-9870-4cee43045056
id_token
eyJhbGciOiJQUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6InBmdjZSWlNpQXAtOFY0elItV1lFZTZIbWZXLTEyY0RKMFpmSGVHeXBhWlkifQ.eyJpc3MiOiJodHRwczovL2FwaS5wcnVkZW50aWFsZG9icmFzaWwuaG1sLm9waW5iMy5jb20uYnIiLCJub25jZSI6IjJLZDRtd3lJTGoiLCJjX2hhc2giOiJDa0oyaTR4TjhicTZFc21kVlF3VFV3IiwiZXhwIjoxNjcxMTQzMzcxLCJpYXQiOjE2NzExNDMzMTEsInN1YiI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsImF1ZCI6ImZhMTI5ZjE3LTQ5NjYtNDg4YS1hMTExLTczNzYwYzlmY2JkOCIsInN0YXRlIjoiR3A3cUZ1UGNRZiIsInNfaGFzaCI6Ik9zZk9fdHZxWHVUQ0FJUmFGdmlWOUEifQ.tlCFQ_hDD0vfIWFPdJjtzJSIrUyRDg710cdT0l8NQku0oqix3sHiI1tRptyKaLel7zf4LWzzu3I2cP-4AWYSBAdoDbyXBXYam491Ptn96cuEkuGtoLaOXNAEyuNTkyQyZALIC4egR_UWTJmiLDafLqwKcdyWhBhLi3kiQwvkehyD7wvZ_ZSAfu3UEimtlIcEjFyitHoqa0AhZvHKjUV_G3tdDSzKKinJaSDFEEkdwAQqpjdwam_6WXaMchHPJecug-x1jP63Odv2xm1V0yGY6xMtZYPEtpiVhXZ0AqRWlkXlOa3LdSRJAXEEPQbzgE56_Caiky1CFZBJN4W1YBBtpg
state
Gp7qFuPcQf
2022-12-15 22:28:32 SUCCESS
CheckStateInAuthorizationResponse
State in response correctly returned
state
Gp7qFuPcQf
2022-12-15 22:28:32
ValidateIssInAuthorizationResponse
No 'iss' value in authorization response.
2022-12-15 22:28:32 SUCCESS
ExtractAuthorizationCodeFromAuthorizationResponse
Found authorization code
code
7468d4c0-ee18-4b52-9870-4cee43045056
2022-12-15 22:28:32 SUCCESS
EnsureMinimumAuthorizationCodeLength
Authorization code is of sufficient length
actual
288
required
128
2022-12-15 22:28:32 SUCCESS
EnsureMinimumAuthorizationCodeEntropy
Calculated shannon entropy seems sufficient
actual
131.09775004326937
expected
96.0
value
7468d4c0-ee18-4b52-9870-4cee43045056
2022-12-15 22:28:32 SUCCESS
CreateTokenEndpointRequestForAuthorizationCodeGrant
Created token endpoint request
grant_type
authorization_code
code
7468d4c0-ee18-4b52-9870-4cee43045056
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
2022-12-15 22:28:32
AddClientIdToTokenEndpointRequest
grant_type
authorization_code
code
7468d4c0-ee18-4b52-9870-4cee43045056
redirect_uri
https://www.certification.openid.net/test/a/Prudential-AuthServer-v1/callback
client_id
fa129f17-4966-488a-a111-73760c9fcbd8
2022-12-15 22:28:32 SUCCESS
RemoveMTLSCertificates
Removed mutual TLS authentication credentials
2022-12-15 22:28:32
CallTokenEndpointAllowingTLSFailure
HTTP request
request_uri
https://mtls.prudentialdobrasil.hml.opinb3.com.br/sessions
request_method
POST
request_headers
{
  "accept": "application/json",
  "content-type": "application/x-www-form-urlencoded;charset\u003dUTF-8",
  "content-length": "223"
}
request_body
grant_type=authorization_code&code=7468d4c0-ee18-4b52-9870-4cee43045056&redirect_uri=https%3A%2F%2Fwww.certification.openid.net%2Ftest%2Fa%2FPrudential-AuthServer-v1%2Fcallback&client_id=fa129f17-4966-488a-a111-73760c9fcbd8
2022-12-15 22:28:32 SUCCESS
CallTokenEndpointAllowingTLSFailure
Call to token_endpoint failed due to a TLS issue
Stacktrace
  • org.springframework.web.client.RestTemplate.doExecute(RestTemplate.java:746)
  • org.springframework.web.client.RestTemplate.execute(RestTemplate.java:672)
  • org.springframework.web.client.RestTemplate.exchange(RestTemplate.java:581)
  • net.openid.conformance.condition.client.CallTokenEndpointAndReturnFullResponse.evaluate(CallTokenEndpointAndReturnFullResponse.java:82)
  • net.openid.conformance.condition.client.CallTokenEndpointAllowingTLSFailure.evaluate(CallTokenEndpointAllowingTLSFailure.java:20)
  • net.openid.conformance.condition.AbstractCondition.execute(AbstractCondition.java:121)
  • net.openid.conformance.testmodule.AbstractTestModule.call(AbstractTestModule.java:337)
  • net.openid.conformance.testmodule.AbstractTestModule.callAndContinueOnFailure(AbstractTestModule.java:157)
  • net.openid.conformance.fapi1advancedfinal.FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.performPostAuthorizationFlow(FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.java:119)
  • net.openid.conformance.fapi1advancedfinal.FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.handleSuccessfulAuthorizationEndpointResponse(FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.java:110)
  • net.openid.conformance.fapi1advancedfinal.AbstractFAPI1AdvancedFinalServerTestModule.onAuthorizationCallbackResponse(AbstractFAPI1AdvancedFinalServerTestModule.java:553)
  • net.openid.conformance.fapi1advancedfinal.AbstractFAPI1AdvancedFinalServerTestModule.processCallback(AbstractFAPI1AdvancedFinalServerTestModule.java:729)
  • net.openid.conformance.testmodule.AbstractRedirectServerTestModule.lambda$handleImplicitSubmission$0(AbstractRedirectServerTestModule.java:162)
  • net.openid.conformance.runner.TestExecutionManager$BackgroundTask.call(TestExecutionManager.java:41)
  • java.base/java.util.concurrent.FutureTask.run(FutureTask.java:264)
  • java.base/java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:515)
  • java.base/java.util.concurrent.FutureTask.run(FutureTask.java:264)
  • java.base/java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1128)
  • java.base/java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:628)
  • java.base/java.lang.Thread.run(Thread.java:829)
Caused by:
  • java.base/sun.security.ssl.Alert.createSSLException(Alert.java:131)
  • java.base/sun.security.ssl.Alert.createSSLException(Alert.java:117)
  • java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:340)
  • java.base/sun.security.ssl.Alert$AlertConsumer.consume(Alert.java:293)
  • java.base/sun.security.ssl.TransportContext.dispatch(TransportContext.java:186)
  • java.base/sun.security.ssl.SSLTransport.decode(SSLTransport.java:172)
  • java.base/sun.security.ssl.SSLSocketImpl.decode(SSLSocketImpl.java:1506)
  • java.base/sun.security.ssl.SSLSocketImpl.readHandshakeRecord(SSLSocketImpl.java:1416)
  • java.base/sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:456)
  • java.base/sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:427)
  • org.apache.http.conn.ssl.SSLConnectionSocketFactory.createLayeredSocket(SSLConnectionSocketFactory.java:436)
  • org.apache.http.conn.ssl.SSLConnectionSocketFactory.connectSocket(SSLConnectionSocketFactory.java:384)
  • org.apache.http.impl.conn.DefaultHttpClientConnectionOperator.connect(DefaultHttpClientConnectionOperator.java:142)
  • org.apache.http.impl.conn.BasicHttpClientConnectionManager.connect(BasicHttpClientConnectionManager.java:313)
  • org.apache.http.impl.execchain.MainClientExec.establishRoute(MainClientExec.java:393)
  • org.apache.http.impl.execchain.MainClientExec.execute(MainClientExec.java:236)
  • org.apache.http.impl.execchain.ProtocolExec.execute(ProtocolExec.java:186)
  • org.apache.http.impl.client.InternalHttpClient.doExecute(InternalHttpClient.java:185)
  • org.apache.http.impl.client.CloseableHttpClient.execute(CloseableHttpClient.java:83)
  • org.apache.http.impl.client.CloseableHttpClient.execute(CloseableHttpClient.java:56)
  • org.springframework.http.client.HttpComponentsClientHttpRequest.executeInternal(HttpComponentsClientHttpRequest.java:87)
  • org.springframework.http.client.AbstractBufferingClientHttpRequest.executeInternal(AbstractBufferingClientHttpRequest.java:48)
  • org.springframework.http.client.AbstractClientHttpRequest.execute(AbstractClientHttpRequest.java:53)
  • org.springframework.http.client.InterceptingClientHttpRequest$InterceptingRequestExecution.execute(InterceptingClientHttpRequest.java:109)
  • net.openid.conformance.logging.LoggingRequestInterceptor.intercept(LoggingRequestInterceptor.java:33)
  • org.springframework.http.client.InterceptingClientHttpRequest$InterceptingRequestExecution.execute(InterceptingClientHttpRequest.java:93)
  • org.springframework.http.client.InterceptingClientHttpRequest.executeInternal(InterceptingClientHttpRequest.java:77)
  • org.springframework.http.client.AbstractBufferingClientHttpRequest.executeInternal(AbstractBufferingClientHttpRequest.java:48)
  • org.springframework.http.client.AbstractClientHttpRequest.execute(AbstractClientHttpRequest.java:53)
  • org.springframework.web.client.RestTemplate.doExecute(RestTemplate.java:737)
  • org.springframework.web.client.RestTemplate.execute(RestTemplate.java:672)
  • org.springframework.web.client.RestTemplate.exchange(RestTemplate.java:581)
  • net.openid.conformance.condition.client.CallTokenEndpointAndReturnFullResponse.evaluate(CallTokenEndpointAndReturnFullResponse.java:82)
  • net.openid.conformance.condition.client.CallTokenEndpointAllowingTLSFailure.evaluate(CallTokenEndpointAllowingTLSFailure.java:20)
  • net.openid.conformance.condition.AbstractCondition.execute(AbstractCondition.java:121)
  • net.openid.conformance.testmodule.AbstractTestModule.call(AbstractTestModule.java:337)
  • net.openid.conformance.testmodule.AbstractTestModule.callAndContinueOnFailure(AbstractTestModule.java:157)
  • net.openid.conformance.fapi1advancedfinal.FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.performPostAuthorizationFlow(FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.java:119)
  • net.openid.conformance.fapi1advancedfinal.FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.handleSuccessfulAuthorizationEndpointResponse(FAPI1AdvancedFinalEnsureMTLSHolderOfKeyRequired.java:110)
  • net.openid.conformance.fapi1advancedfinal.AbstractFAPI1AdvancedFinalServerTestModule.onAuthorizationCallbackResponse(AbstractFAPI1AdvancedFinalServerTestModule.java:553)
  • net.openid.conformance.fapi1advancedfinal.AbstractFAPI1AdvancedFinalServerTestModule.processCallback(AbstractFAPI1AdvancedFinalServerTestModule.java:729)
  • net.openid.conformance.testmodule.AbstractRedirectServerTestModule.lambda$handleImplicitSubmission$0(AbstractRedirectServerTestModule.java:162)
  • net.openid.conformance.runner.TestExecutionManager$BackgroundTask.call(TestExecutionManager.java:41)
  • java.base/java.util.concurrent.FutureTask.run(FutureTask.java:264)
  • java.base/java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:515)
  • java.base/java.util.concurrent.FutureTask.run(FutureTask.java:264)
  • java.base/java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1128)
  • java.base/java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:628)
  • java.base/java.lang.Thread.run(Thread.java:829)
error_class
org.springframework.web.client.ResourceAccessException
cause_class
javax.net.ssl.SSLHandshakeException
cause
Received fatal alert: handshake_failure
error
I/O error on POST request for "https://mtls.prudentialdobrasil.hml.opinb3.com.br/sessions": Received fatal alert: handshake_failure; nested exception is javax.net.ssl.SSLHandshakeException: Received fatal alert: handshake_failure
2022-12-15 22:28:32 FINISHED
fapi1-advanced-final-ensure-mtls-holder-of-key-required
Test has run to completion
testmodule_result
PASSED
2022-12-15 22:28:38
TEST-RUNNER
Alias has now been claimed by another test
alias
Prudential-AuthServer-v1
new_test_id
eeiVUyy3cWCUT7N
Test Results