OC5:FTR-rp-bad-rs256-x-Gluu OX

From OSIS Open Source Identity Systems
Jump to: navigation, search

{{#vardefine:DtArticleSortKey|}}

FTR-rp-bad-rs256-x-Gluu OX

{{#vardefine:page|{{#if:{{#var:page}}|{{#var:page}}|FTR-rp-bad-rs256-x-Gluu OX}}}}{{#vardefine:nr|{{#if:{{#var:nr}}|{{#expr:{{#var:nr}}+1}}|1}}}}{{#vardefine:url|{{#replace:{{#var:page}}| |_}}}}{{#if:FTR-rp-bad-rs256-x-Gluu OX|{{#if:{{#var:DtArticleSortKey}}||}}}}{{#ifeq:{{#var:header}}|no||

{{#ifeq:no|no||
{{#if:{{#var:refs}}|[[{{#var:page}}|no_ref's]]|[[Special:Call/DT Article show Refs,page={{#var:page}},refs=yes|ref's]]}}}} {{#if:{{#var:DtArticleSortKey}}|({{#var:DtArticleSortKey}})}}    list help  [[Special:Call/DT Article copy,cat=OC5 Result,from={{#var:page}},namespace=OC5|copy]]  [[Special:Call/DT Articles list XML,type=OC5 Result,title={{#var:page}},namespace=OC5|as XML]]  edit
}}
{{#if:|Feature Test Result |Feature Test Result }}   FTR-rp-bad-rs256-x-Gluu OX
Test Identifier   bgcolor={{{color}}}}}|FTR-rp-bad-rs256
Primary Solution   bgcolor={{{color}}}}}|Gluu OX
Test   bgcolor={{{color}}}}}|{{#dpl:|category = FeatureTest|namespace = OC5|include={FeatureTest}:identifier |includematchparsed=/identifier\s*=\s*FTR-rp-bad-rs256/s| noresultsheader= no matching test found.\n

}}

Date Tested   bgcolor={{{color}}}}}|30 August 2013
Tested by   bgcolor={{{color}}}}}|Javier Rojas Blum
Outcome   bgcolor={{{color}}}}}|Works
Solutions Involved   bgcolor={{{color}}}}}|{{#if: Gluu_OX | OC5:Gluu_OX | }} {{#if: | [[OC5:]] | }}  
  bgcolor={{{color}}}}}|{{#if: | [[OC5:]] |   }}
Operating System   bgcolor={{{color}}}}}|Fedora 18 x86_64
Browser   bgcolor={{{color}}}}}|Firefox 22.0
Notes   bgcolor={{{color}}}}}|https://svn.gluu.info/repository/openxdi/oxAuth/Client/src/test/java/org/xdi/oxauth/interop/RejectInvalidAsymmetricIdTokenSignature.java
#######################################################
TEST: OC5:FeatureTest-Reject Invalid Asymmetric ID Token Signature
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/seam/resource/restv1/oxauth/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: seed.gluu.org

{
    "redirect_uris": [
        "https://seed.gluu.org/oxauth-rp/home.seam",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "id_token_signed_response_alg": "RS512"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Content-Type: application/json
Cache-Control: no-store
Pragma: no-cache

{
    "client_id": "@!1111!0008!7D33.8925",
    "client_secret": "bae50e86-609d-4efb-b2a3-2ddd7b82071d",
    "registration_access_token": "901bea92-4826-4f6e-ad7c-64185cf9d199",
    "registration_client_uri": "https://seed.gluu.org/oxauth/seam/resource/restv1/oxauth/register?client_id=@!1111!0008!7D33.8925",
    "client_id_issued_at": 1377894969,
    "client_secret_expires_at": 1377981369,
    "redirect_uris": [
        "https://seed.gluu.org/oxauth-rp/home.seam",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "token_endpoint_auth_method": "client_secret_basic",
    "subject_type": "public",
    "id_token_signed_response_alg": "RS512",
    "require_auth_time": false,
    "request_uris": [],
    "scopes": [
        "openid",
        "address",
        "profile",
        "phone",
        "email"
    ]
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://seed.gluu.org/oxauth/seam/resource/restv1/oxauth/authorize?response_type=id_token&client_id=%40%211111%210008%217D33.8925&scope=openid+profile+address+email&redirect_uri=https%3A%2F%2Fseed.gluu.org%2Foxauth-rp%2Fhome.seam&nonce=25646692-08b9-402e-bfd2-a17825f6df1c&state=STATE_XYZ

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://seed.gluu.org/oxauth-rp/home.seam#id_token=eyJ0eXAiOiJKV1MiLCJhbGciOiJSUzUxMiIsImprdSI6Imh0dHBzOi8vc2VlZC5nbHV1Lm9yZy9veGF1dGgvc2VhbS9yZXNvdXJjZS9yZXN0djEvb3hhdXRoL2p3a3MiLCJraWQiOiIzIn0.eyJpc3MiOiJodHRwczovL3NlZWQuZ2x1dS5vcmciLCJhdWQiOiJAITExMTEhMDAwOCE3RDMzLjg5MjUiLCJleHAiOjEzNzc4OTg1ODMsImlhdCI6MTM3Nzg5NDk4Mywic3ViIjoibWlrZSIsIm94SW51bSI6IkAhMTExMSEwMDAwIUQ0RTciLCJub25jZSI6IjI1NjQ2NjkyLTA4YjktNDAyZS1iZmQyLWExNzgyNWY2ZGYxYyIsImF1dGhfdGltZSI6MTM3Nzg5NDk3OSwib3hWYWxpZGF0aW9uVVJJIjoiaHR0cHM6Ly9zZWVkLmdsdXUub3JnL294YXV0aC9zZWFtL3Jlc291cmNlL3Jlc3R2MS9veGF1dGgvY2hlY2tfc2Vzc2lvbiIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInJlZ2lvbiI6IlRleGFzIiwicGljdHVyZSI6Imh0dHA6Ly93d3cuZ2x1dS5vcmcvd3AtY29udGVudC91cGxvYWRzLzIwMTIvMDQvbWlrZTMucG5nIiwiem9uZWluZm8iOiJBbWVyaWNhL0NoaWNhZ28iLCJlbWFpbCI6Im1pa2VAZ2x1dS5vcmciLCJsb2NhbGUiOiJlbi11cyIsIm5hbWUiOiJNaWNoZWFsIFNjaHdhcnR6IiwibG9jYWxpdHkiOiJBdXN0aW4iLCJmYW1pbHlfbmFtZSI6IlNjaHdhcnR6Iiwic3RyZWV0X2FkZHJlc3MiOiI2MjEgRWFzdCA2dGggU3RyZWV0IiwiZ2l2ZW5fbmFtZSI6Ik1pY2hhZWwiLCJjb3VudHJ5IjoiVVMifQ.H9GdQTv1fQNPRicioFR35OjVde-Gvr8gn5ItTsUPWw9t_1GoXgXEiaGfmVsCyEZVSeooJTTzRxSvX5YOttLBBkzlbLShP3xra2IWhRiHls1SoFnkszRNVG4ecN5kcVa5Ak4dJ4s0loOAisK5ViIo9V3mLAXvxS93zhzNYv_PvHQPQ_oDnSfcqLDgqJBsz-goqDdxkbVE1eH5EVBXyoI_5dlXK2tw7Ddv7pV8_poj2MoS4J0VEw21SMaDl6BdJpYNmP7cdXF_LAPF92ZYfsNTP9iwn5et91ycVbGtxvizc829C84uPZZHs5uUHE5SyxOR1y3TxitSn6_i2jsdPTLInQ&auth_level=10&auth_mode=basic&session_id=964aa93d-e84c-48c2-bed4-1d06acc0b84a&state=STATE_XYZ&scope=openid+profile+address+email


===============================================
Custom suite
Total tests run: 1, Failures: 0, Skips: 0
===============================================

Back To

{{#dpl: namespace = OC5 | linksto = OC5:FTR-rp-bad-rs256-x-Gluu OX }}