[Openid-specs-ab] Issue #46: OP-M-09 (Registering and then read the client info) Shows wrong result (openid/certification)

Edmund Jay issues-reply at bitbucket.org
Tue Feb 3 23:55:08 UTC 2015


New issue 46: OP-M-09 (Registering and then read the client info) Shows wrong result
https://bitbucket.org/openid/certification/issue/46/op-m-09-registering-and-then-read-the

Edmund Jay:

The registration contains URI for reading the client info but the test seems like it's expecting something else.

Below is the trace :


```
#!text

Test info

Profile: {'profile': 'C', 'sub': 'none', 'register': True, 'discover': True, 'extra': False}
Test ID: OP-M-09
Issuer: https://connect.openid4.us
Test output


__RegistrationRequest:post__
[check]
	status: INFORMATION
	description: Registration Response
	info: {"client_id":"-Bl6_sgbulq_dY7ONcRGRg","client_secret":"I5VOu9V8Lugu_g","registration_access_token":"RP8faWxJdyaBqg","registration_client_uri":"https:\/\/connect.openid4.us\/abop\/op.php\/client\/H_x4JKaD-KWkg2nCnq6yMw","client_id_issued_at":1423007519,"client_secret_expires_at":0,"registration_client_uri_path":"H_x4JKaD-KWkg2nCnq6yMw","application_type":"web","redirect_uris":["https:\/\/oictest.umdc.umu.se:8102\/authz_cb","https:\/\/oictest.umdc.umu.se:8102\/cb"],"token_endpoint_auth_method":"client_secret_jwt","jwks_uri":"https:\/\/oictest.umdc.umu.se:8102\/export\/jwk_8102.json","subject_type":"pairwise","request_object_signing_alg":"RS256","default_max_age":3600,"require_auth_time":true,"response_types":["id_token"],"grant_types":["implicit"]}
Trace output


0.000157 ------------ DiscoveryRequest ------------
0.000169 Provider info discover from 'https://connect.openid4.us/'
0.000176 --> URL: https://connect.openid4.us/.well-known/openid-configuration
0.856052 ProviderConfigurationResponse: {
  "authorization_endpoint": "https://connect.openid4.us/abop/op.php/auth",
  "check_session_iframe": "https://connect.openid4.us/abop/opframe.php/1",
  "claim_types_supported": [
    "normal"
  ],
  "claims_locales_supported": [
    "en-US"
  ],
  "claims_parameter_supported": true,
  "claims_supported": [
    "name",
    "given_name",
    "family_name",
    "middle_name",
    "nickname",
    "preferred_username",
    "profile",
    "picture",
    "website",
    "email",
    "email_verified",
    "gender",
    "birthdate",
    "zoneinfo",
    "locale",
    "phone_number",
    "phone_number_verified",
    "address",
    "updated_at"
  ],
  "display_values_supported": [
    "page"
  ],
  "end_session_endpoint": "https://connect.openid4.us/abop/op.php/endsession",
  "grant_types_supported": [
    "authorization_code",
    "implicit"
  ],
  "id_token_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP"
  ],
  "id_token_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A256CBC-HS512",
    "A128GCM",
    "A256GCM"
  ],
  "id_token_signing_alg_values_supported": [
    "none",
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512"
  ],
  "issuer": "https://connect.openid4.us",
  "jwks_uri": "https://connect.openid4.us/connect4us.jwk",
  "op_policy_uri": "https://connect.openid4.us/abop/op.php/op_policy",
  "op_tos_uri": "https://connect.openid4.us/abop/op.php/op_tos",
  "registration_endpoint": "https://connect.openid4.us/abop/op.php/registration",
  "request_object_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP"
  ],
  "request_object_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A256CBC-HS512",
    "A128GCM",
    "A256GCM"
  ],
  "request_object_signing_alg_values_supported": [
    "none",
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512"
  ],
  "request_parameter_supported": true,
  "request_uri_parameter_supported": true,
  "require_request_uri_registration": false,
  "response_types_supported": [
    "code",
    "code token",
    "code id_token",
    "token",
    "token id_token",
    "code token id_token",
    "id_token"
  ],
  "scopes_supported": [
    "openid",
    "profile",
    "email",
    "address",
    "phone",
    "offline_access"
  ],
  "service_documentation": "https://connect.openid4.us/abop/op.php/servicedocs",
  "subject_types_supported": [
    "public",
    "pairwise"
  ],
  "token_endpoint": "https://connect.openid4.us/abop/op.php/token",
  "token_endpoint_auth_methods_supported": [
    "client_secret_post",
    "client_secret_basic",
    "client_secret_jwt",
    "private_key_jwt"
  ],
  "token_endpoint_auth_signing_alg_values_supported": [
    "none",
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512"
  ],
  "ui_locales_supported": [
    "en-US"
  ],
  "userinfo_encryption_alg_values_supported": [
    "RSA1_5",
    "RSA-OAEP"
  ],
  "userinfo_encryption_enc_values_supported": [
    "A128CBC-HS256",
    "A256CBC-HS512",
    "A128GCM",
    "A256GCM"
  ],
  "userinfo_endpoint": "https://connect.openid4.us/abop/op.php/userinfo",
  "userinfo_signing_alg_values_supported": [
    "none",
    "HS256",
    "HS384",
    "HS512",
    "RS256",
    "RS384",
    "RS512"
  ],
  "version": "3.0"
}
1.597842 JWKS: {
  "keys": [
    {
      "e": "AQAB",
      "kid": "ABOP-00",
      "kty": "RSA",
      "n": "tf_sB4M0sHearRLzz1q1JRgRdRnwk0lz-IcVDFlpp2dtDVyA-ZM8Tu1swp7upaTNykf7cp3Ne_6uW3JiKvRMDdNdvHWCzDHmbmZWGdnFF9Ve-D1cUxj4ETVpUM7AIXWbGs34fUNYl3Xzc4baSyvYbc3h6iz8AIdb_1bQLxJsHBi-ydg3NMJItgQJqBiwCmQYCOnJlekR-Ga2a5XlIx46Wsj3Pz0t0dzM8gVSU9fU3QrKKzDFCoFHTgig1YZNNW5W2H6QwANL5h-nbgre5sWmDmdnfiU6Pj5GOQDmp__rweinph8OAFNF6jVqrRZ3QJEmMnO42naWOsxV2FAUXafksQ"
    }
  ]
}
1.598390 ------------ RegistrationRequest ------------
1.598694 --> URL: https://connect.openid4.us/abop/op.php/registration
1.598700 --> BODY: {"token_endpoint_auth_method": "client_secret_jwt", "subject_type": "pairwise", "jwks_uri": "https://oictest.umdc.umu.se:8102/export/jwk_8102.json", "request_object_encryption_enc": "A128CBC-HS256", "application_type": "web", "grant_types": ["implicit"], "redirect_uris": ["https://oictest.umdc.umu.se:8102/authz_cb", "https://oictest.umdc.umu.se:8102/cb"], "response_types": ["id_token"], "require_auth_time": true, "scope": ["openid", "profile", "email", "address", "phone"], "request_object_signing_alg": "RS256", "default_max_age": 3600, "request_object_encryption_alg": "RSA1_5"}
1.598706 --> HEADERS: {'Content-type': 'application/json'}
2.424116 <-- STATUS: 200
2.424194 <-- BODY: {"client_id":"-Bl6_sgbulq_dY7ONcRGRg","client_secret":"I5VOu9V8Lugu_g","registration_access_token":"RP8faWxJdyaBqg","registration_client_uri":"https:\/\/connect.openid4.us\/abop\/op.php\/client\/H_x4JKaD-KWkg2nCnq6yMw","client_id_issued_at":1423007519,"client_secret_expires_at":0,"registration_client_uri_path":"H_x4JKaD-KWkg2nCnq6yMw","application_type":"web","redirect_uris":["https:\/\/oictest.umdc.umu.se:8102\/authz_cb","https:\/\/oictest.umdc.umu.se:8102\/cb"],"token_endpoint_auth_method":"client_secret_jwt","jwks_uri":"https:\/\/oictest.umdc.umu.se:8102\/export\/jwk_8102.json","subject_type":"pairwise","request_object_signing_alg":"RS256","default_max_age":3600,"require_auth_time":true,"response_types":["id_token"],"grant_types":["implicit"]}
2.424693 RegistrationResponse: {
  "application_type": "web",
  "client_id": "-Bl6_sgbulq_dY7ONcRGRg",
  "client_id_issued_at": 1423007519,
  "client_secret": "I5VOu9V8Lugu_g",
  "client_secret_expires_at": 0,
  "default_max_age": 3600,
  "grant_types": [
    "implicit"
  ],
  "jwks_uri": "https://oictest.umdc.umu.se:8102/export/jwk_8102.json",
  "redirect_uris": [
    "https://oictest.umdc.umu.se:8102/authz_cb",
    "https://oictest.umdc.umu.se:8102/cb"
  ],
  "registration_access_token": "RP8faWxJdyaBqg",
  "registration_client_uri": "https://connect.openid4.us/abop/op.php/client/H_x4JKaD-KWkg2nCnq6yMw",
  "registration_client_uri_path": "H_x4JKaD-KWkg2nCnq6yMw",
  "request_object_signing_alg": "RS256",
  "require_auth_time": true,
  "response_types": [
    "id_token"
  ],
  "subject_type": "pairwise",
  "token_endpoint_auth_method": "client_secret_jwt"
}
2.425707 ------------  ------------
2.425931 [ERROR] AttributeError:'ReadRegistration' object has no attribute 'endpoint'
Result

PASSED
```




More information about the Openid-specs-ab mailing list