gluu
公開メンバ関数 | 静的公開メンバ関数 | 静的公開変数類 | 限定公開変数類 | 全メンバ一覧
org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest クラス
org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest の継承関係図
Inheritance graph
org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest 連携図
Collaboration graph

公開メンバ関数

void omittedResponseTypes (final String redirectUris, final String userId, final String userSecret, final String redirectUri, final String sectorIdentifierUri) throws Exception
 
Object [][] omittedResponseTypesFailDataProvider (ITestContext context)
 
void omittedResponseTypesFail (final String redirectUris, final String redirectUri, final String userId, final String userSecret, final List< ResponseType > responseTypes, final String sectorIdentifierUri) throws Exception
 
void responseTypesCodeIdToken (final String redirectUris, final String userId, final String userSecret, final String redirectUri, final String sectorIdentifierUri) throws Exception
 
Object [][] responseTypesCodeIdTokenFailDataProvider (ITestContext context)
 
void responseTypesCodeIdTokenFail (final String redirectUris, final String redirectUri, final String userId, final String userSecret, final List< ResponseType > responseTypes, final String sectorIdentifierUri) throws Exception
 
void responseTypesTokenIdToken (final String redirectUris, final String userId, final String userSecret, final String redirectUri, final String sectorIdentifierUri) throws Exception
 
Object [][] responseTypesTokenIdTokenFailDataProvider (ITestContext context)
 
void responseTypesTokenIdTokenFail (final String redirectUris, final String redirectUri, final String userId, final String userSecret, final List< ResponseType > responseTypes, final String sectorIdentifierUri) throws Exception
 
void initTestSuite (ITestContext context) throws FileNotFoundException, IOException
 
WebDriver getDriver ()
 
void setDriver (WebDriver driver)
 
String getAuthorizationEndpoint ()
 
void setAuthorizationEndpoint (String authorizationEndpoint)
 
String getTokenEndpoint ()
 
void setTokenEndpoint (String tokenEndpoint)
 
String getUserInfoEndpoint ()
 
void setUserInfoEndpoint (String userInfoEndpoint)
 
String getClientInfoEndpoint ()
 
void setClientInfoEndpoint (String clientInfoEndpoint)
 
String getCheckSessionIFrame ()
 
void setCheckSessionIFrame (String checkSessionIFrame)
 
String getEndSessionEndpoint ()
 
void setEndSessionEndpoint (String endSessionEndpoint)
 
String getJwksUri ()
 
void setJwksUri (String jwksUri)
 
String getRegistrationEndpoint ()
 
void setRegistrationEndpoint (String registrationEndpoint)
 
String getIntrospectionEndpoint ()
 
void setIntrospectionEndpoint (String p_introspectionEndpoint)
 
Map< String, List< String > > getScopeToClaimsMapping ()
 
void setScopeToClaimsMapping (Map< String, List< String >> p_scopeToClaimsMapping)
 
String getIdGenEndpoint ()
 
void setIdGenEndpoint (String p_idGenEndpoint)
 
String getConfigurationEndpoint ()
 
void setConfigurationEndpoint (String configurationEndpoint)
 
void startSelenium ()
 
void stopSelenium ()
 
AuthorizationResponse authenticateResourceOwnerAndGrantAccess (String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
 
AuthorizationResponse authenticateResourceOwnerAndGrantAccess (String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret, boolean cleanupCookies)
 
AuthorizationResponse authenticateResourceOwnerAndGrantAccess (String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret, boolean cleanupCookies, boolean useNewDriver)
 
AuthorizationResponse authenticateResourceOwnerAndGrantAccess (String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret, boolean cleanupCookies, boolean useNewDriver, int authzSteps)
 
AuthorizationResponse authenticateResourceOwnerAndDenyAccess (String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
 
AuthorizationResponse authorizationRequestAndGrantAccess (String authorizeUrl, AuthorizationRequest authorizationRequest)
 
AuthorizationResponse authorizationRequestAndDenyAccess (String authorizeUrl, AuthorizationRequest authorizationRequest)
 
AuthorizationResponse authenticateResourceOwner (String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret, boolean cleanupCookies)
 
String waitForResourceOwnerAndGrantLoginForm (String authorizeUrl, AuthorizationRequest authorizationRequest, boolean cleanupCookies)
 
String waitForResourceOwnerAndGrantLoginForm (String authorizeUrl, AuthorizationRequest authorizationRequest)
 
void discovery (ITestContext context) throws Exception
 
void showTitle (String title)
 
void showTitle (String title)
 
void showEntity (String entity)
 
void showResponse (String title, Response response)
 

静的公開メンバ関数

static void showClient (BaseClient client)
 
static void showClient (BaseClient client, CookieStore cookieStore)
 
static void showClientUserAgent (BaseClient client)
 
static void assertErrorResponse (BaseResponseWithErrors p_response, IErrorType p_errorType)
 
static DefaultHttpClient createHttpClient ()
 
static DefaultHttpClient createHttpClient (HostnameVerifierType p_verifierType)
 
static ClientExecutor clientExecutor () throws NoSuchAlgorithmException, KeyManagementException, KeyStoreException, UnrecoverableKeyException
 
static ClientExecutor clientExecutor (boolean trustAll) throws NoSuchAlgorithmException, KeyManagementException, KeyStoreException, UnrecoverableKeyException
 
static HttpClient createHttpClientTrustAll () throws NoSuchAlgorithmException, KeyManagementException, KeyStoreException, UnrecoverableKeyException
 
static void showResponse (String title, Response response, Object entity)
 
static void fails (Throwable e)
 
static void output (String p_msg)
 
static Archive<?> createDeployment ()
 

静的公開変数類

static FileConfiguration testData
 

限定公開変数類

WebDriver driver
 
String authorizationEndpoint
 
String authorizationPageEndpoint
 
String gluuConfigurationEndpoint
 
String tokenEndpoint
 
String userInfoEndpoint
 
String clientInfoEndpoint
 
String checkSessionIFrame
 
String endSessionEndpoint
 
String jwksUri
 
String registrationEndpoint
 
String configurationEndpoint
 
String idGenEndpoint
 
String introspectionEndpoint
 
Map< String, List< String > > scopeToClaimsMapping
 

詳解

著者
Javier Rojas Blum
バージョン
November 29, 2017

関数詳解

◆ assertErrorResponse()

static void org.xdi.oxauth.BaseTest.assertErrorResponse ( BaseResponseWithErrors  p_response,
IErrorType  p_errorType 
)
inlinestaticinherited
787  {
788  assertEquals(p_response.getStatus(), 400, "Unexpected response code. Entity: " + p_response.getEntity());
789  assertNotNull(p_response.getEntity(), "The entity is null");
790  assertEquals(p_response.getErrorType(), p_errorType);
791  assertTrue(StringUtils.isNotBlank(p_response.getErrorDescription()));
792  }
T getErrorType()
Definition: BaseResponseWithErrors.java:48
String getEntity()
Definition: BaseResponse.java:85
int getStatus()
Definition: BaseResponse.java:49
String getErrorDescription()
Definition: BaseResponseWithErrors.java:40

◆ authenticateResourceOwner()

AuthorizationResponse org.xdi.oxauth.BaseTest.authenticateResourceOwner ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
String  userId,
String  userSecret,
boolean  cleanupCookies 
)
inlineinherited

The authorization server authenticates the resource owner (via the user-agent) No authorization page.

556  {
557  String authorizationRequestUrl = authorizeUrl + "?" + authorizationRequest.getQueryString();
558 
559  AuthorizeClient authorizeClient = new AuthorizeClient(authorizeUrl);
560  authorizeClient.setRequest(authorizationRequest);
561 
562  System.out.println("authenticateResourceOwner: authorizationRequestUrl:" + authorizationRequestUrl);
563  startSelenium();
564  if (cleanupCookies) {
565  System.out.println("authenticateResourceOwner: Cleaning cookies");
567  }
568 // try {
569  driver.navigate().to(authorizationRequestUrl);
570 // } catch (WebDriverException ex) {
571 // if (ex.getCause() instanceof ScriptException) {
572 // System.out.println("authenticateResourceOwner: Script error: " + ex.getMessage());
573 // } else {
574 // throw ex;
575 // }
576 // }
577 
578  if (userSecret != null) {
579  if (userId != null) {
580  WebElement usernameElement = driver.findElement(By.name(loginFormUsername));
581  usernameElement.sendKeys(userId);
582  }
583 
584  WebElement passwordElement = driver.findElement(By.name(loginFormPassword));
585  passwordElement.sendKeys(userSecret);
586 
587  WebElement loginButton = driver.findElement(By.name(loginFormLoginButton));
588 
589  loginButton.click();
590  }
591 
592  String authorizationResponseStr = driver.getCurrentUrl();
593 
594  Cookie sessionStateCookie = driver.manage().getCookieNamed("session_state");
595  String sessionState = null;
596  if (sessionStateCookie != null) {
597  sessionState = sessionStateCookie.getValue();
598  }
599  System.out.println("authenticateResourceOwner: sessionState:" + sessionState);
600 
601  stopSelenium();
602 
603  AuthorizationResponse authorizationResponse = new AuthorizationResponse(authorizationResponseStr);
604  if (authorizationRequest.getRedirectUri() != null && authorizationRequest.getRedirectUri().equals(authorizationResponseStr)) {
605  authorizationResponse.setResponseMode(ResponseMode.FORM_POST);
606  }
607  authorizeClient.setResponse(authorizationResponse);
608  showClientUserAgent(authorizeClient);
609 
610  return authorizationResponse;
611  }
FORM_POST
Definition: ResponseMode.java:33
String loginFormUsername
Definition: BaseTest.java:88
String loginFormPassword
Definition: BaseTest.java:89
void deleteAllCookies()
Definition: BaseTest.java:661
void stopSelenium()
Definition: BaseTest.java:243
Definition: AuthorizeClient.java:29
Definition: ResponseMode.java:16
void startSelenium()
Definition: BaseTest.java:230
String loginFormLoginButton
Definition: BaseTest.java:90
String getRedirectUri()
Definition: AuthorizationRequest.java:184
void setResponseMode(ResponseMode responseMode)
Definition: AuthorizationResponse.java:228
void setRequest(T request)
Definition: BaseClient.java:68
void setResponse(V response)
Definition: BaseClient.java:76
WebDriver driver
Definition: BaseTest.java:70
Definition: AuthorizationResponse.java:32
String getQueryString()
Definition: AuthorizationRequest.java:486
static void showClientUserAgent(BaseClient client)
Definition: BaseTest.java:783

◆ authenticateResourceOwnerAndDenyAccess()

AuthorizationResponse org.xdi.oxauth.BaseTest.authenticateResourceOwnerAndDenyAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
String  userId,
String  userSecret 
)
inlineinherited
408  {
409  String authorizationRequestUrl = authorizeUrl + "?" + authorizationRequest.getQueryString();
410 
411  AuthorizeClient authorizeClient = new AuthorizeClient(authorizeUrl);
412  authorizeClient.setRequest(authorizationRequest);
413 
414  System.out.println("authenticateResourceOwnerAndDenyAccess: authorizationRequestUrl:" + authorizationRequestUrl);
415  startSelenium();
416  driver.navigate().to(authorizationRequestUrl);
417 
418  WebElement usernameElement = driver.findElement(By.name(loginFormUsername));
419  WebElement passwordElement = driver.findElement(By.name(loginFormPassword));
420  WebElement loginButton = driver.findElement(By.name(loginFormLoginButton));
421 
422  if (userId != null) {
423  usernameElement.sendKeys(userId);
424  }
425  passwordElement.sendKeys(userSecret);
426  loginButton.click();
427 
428  String authorizationResponseStr = driver.getCurrentUrl();
429 
430  WebElement doNotAllowButton = driver.findElement(By.id(authorizeFormDoNotAllowButton));
431 
432  final String previousURL = driver.getCurrentUrl();
433  doNotAllowButton.click();
434  WebDriverWait wait = new WebDriverWait(driver, 10);
435  wait.until(new ExpectedCondition<Boolean>() {
436  public Boolean apply(WebDriver d) {
437  return (d.getCurrentUrl() != previousURL);
438  }
439  });
440 
441  authorizationResponseStr = driver.getCurrentUrl();
442 
443  Cookie sessionIdCookie = driver.manage().getCookieNamed("session_id");
444  String sessionId = null;
445  if (sessionIdCookie != null) {
446  sessionId = sessionIdCookie.getValue();
447  }
448  System.out.println("authenticateResourceOwnerAndDenyAccess: sessionId:" + sessionId);
449 
450  stopSelenium();
451 
452  AuthorizationResponse authorizationResponse = new AuthorizationResponse(authorizationResponseStr);
453  if (authorizationRequest.getRedirectUri() != null && authorizationRequest.getRedirectUri().equals(authorizationResponseStr)) {
454  authorizationResponse.setResponseMode(ResponseMode.FORM_POST);
455  }
456  authorizationResponse.setSessionId(sessionId);
457  authorizeClient.setResponse(authorizationResponse);
458  showClientUserAgent(authorizeClient);
459 
460  return authorizationResponse;
461  }
FORM_POST
Definition: ResponseMode.java:33
String loginFormUsername
Definition: BaseTest.java:88
String loginFormPassword
Definition: BaseTest.java:89
void stopSelenium()
Definition: BaseTest.java:243
String authorizeFormDoNotAllowButton
Definition: BaseTest.java:92
void setSessionId(String p_sessionId)
Definition: AuthorizationResponse.java:212
Definition: AuthorizeClient.java:29
Definition: ResponseMode.java:16
void startSelenium()
Definition: BaseTest.java:230
String loginFormLoginButton
Definition: BaseTest.java:90
String getRedirectUri()
Definition: AuthorizationRequest.java:184
void setResponseMode(ResponseMode responseMode)
Definition: AuthorizationResponse.java:228
void setRequest(T request)
Definition: BaseClient.java:68
void setResponse(V response)
Definition: BaseClient.java:76
WebDriver driver
Definition: BaseTest.java:70
Definition: AuthorizationResponse.java:32
String getQueryString()
Definition: AuthorizationRequest.java:486
static void showClientUserAgent(BaseClient client)
Definition: BaseTest.java:783

◆ authenticateResourceOwnerAndGrantAccess() [1/4]

AuthorizationResponse org.xdi.oxauth.BaseTest.authenticateResourceOwnerAndGrantAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
String  userId,
String  userSecret 
)
inlineinherited

The authorization server authenticates the resource owner (via the user-agent) and establishes whether the resource owner grants or denies the client's access request.

253  {
254  return authenticateResourceOwnerAndGrantAccess(authorizeUrl, authorizationRequest, userId, userSecret, true);
255  }
AuthorizationResponse authenticateResourceOwnerAndGrantAccess(String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:252

◆ authenticateResourceOwnerAndGrantAccess() [2/4]

AuthorizationResponse org.xdi.oxauth.BaseTest.authenticateResourceOwnerAndGrantAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
String  userId,
String  userSecret,
boolean  cleanupCookies 
)
inlineinherited

The authorization server authenticates the resource owner (via the user-agent) and establishes whether the resource owner grants or denies the client's access request.

262  {
263  return authenticateResourceOwnerAndGrantAccess(authorizeUrl, authorizationRequest, userId, userSecret, cleanupCookies, false);
264  }
AuthorizationResponse authenticateResourceOwnerAndGrantAccess(String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:252

◆ authenticateResourceOwnerAndGrantAccess() [3/4]

AuthorizationResponse org.xdi.oxauth.BaseTest.authenticateResourceOwnerAndGrantAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
String  userId,
String  userSecret,
boolean  cleanupCookies,
boolean  useNewDriver 
)
inlineinherited

The authorization server authenticates the resource owner (via the user-agent) and establishes whether the resource owner grants or denies the client's access request.

272  {
273  return authenticateResourceOwnerAndGrantAccess(authorizeUrl, authorizationRequest, userId, userSecret, cleanupCookies, useNewDriver, 1);
274  }
AuthorizationResponse authenticateResourceOwnerAndGrantAccess(String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:252

◆ authenticateResourceOwnerAndGrantAccess() [4/4]

AuthorizationResponse org.xdi.oxauth.BaseTest.authenticateResourceOwnerAndGrantAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
String  userId,
String  userSecret,
boolean  cleanupCookies,
boolean  useNewDriver,
int  authzSteps 
)
inlineinherited

The authorization server authenticates the resource owner (via the user-agent) and establishes whether the resource owner grants or denies the client's access request.

282  {
283  WebDriver currentDriver = initWebDriver(useNewDriver, cleanupCookies);
284 
285  AuthorizeClient authorizeClient = processAuthentication(currentDriver, authorizeUrl, authorizationRequest,
286  userId, userSecret);
287 
288  int remainAuthzSteps = authzSteps;
289 
290  String authorizationResponseStr = null;
291  do {
292  authorizationResponseStr = acceptAuthorization(currentDriver);
293  remainAuthzSteps--;
294  } while (remainAuthzSteps >= 1);
295 
296  AuthorizationResponse authorizationResponse = buildAuthorizationResponse(authorizationRequest, useNewDriver,
297  currentDriver, authorizeClient, authorizationResponseStr);
298 
299  stopWebDriver(useNewDriver, currentDriver);
300 
301  return authorizationResponse;
302  }
AuthorizationResponse buildAuthorizationResponse(AuthorizationRequest authorizationRequest, boolean useNewDriver, WebDriver currentDriver, AuthorizeClient authorizeClient, String authorizationResponseStr)
Definition: BaseTest.java:387
String acceptAuthorization(WebDriver currentDriver)
Definition: BaseTest.java:358
AuthorizeClient processAuthentication(WebDriver currentDriver, String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:330
Definition: AuthorizeClient.java:29
WebDriver initWebDriver(boolean useNewDriver, boolean cleanupCookies)
Definition: BaseTest.java:304
Definition: AuthorizationResponse.java:32
void stopWebDriver(boolean useNewDriver, WebDriver currentDriver)
Definition: BaseTest.java:321

◆ authorizationRequestAndDenyAccess()

AuthorizationResponse org.xdi.oxauth.BaseTest.authorizationRequestAndDenyAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest 
)
inlineinherited
509  {
510  String authorizationRequestUrl = authorizeUrl + "?" + authorizationRequest.getQueryString();
511 
512  AuthorizeClient authorizeClient = new AuthorizeClient(authorizeUrl);
513  authorizeClient.setRequest(authorizationRequest);
514 
515  System.out.println("authorizationRequestAndDenyAccess: authorizationRequestUrl:" + authorizationRequestUrl);
516  startSelenium();
517  driver.navigate().to(authorizationRequestUrl);
518 
519  WebElement doNotAllowButton = driver.findElement(By.id(authorizeFormDoNotAllowButton));
520 
521  final String previousURL = driver.getCurrentUrl();
522  doNotAllowButton.click();
523  WebDriverWait wait = new WebDriverWait(driver, 10);
524  wait.until(new ExpectedCondition<Boolean>() {
525  public Boolean apply(WebDriver d) {
526  return (d.getCurrentUrl() != previousURL);
527  }
528  });
529 
530  String authorizationResponseStr = driver.getCurrentUrl();
531 
532  Cookie sessionStateCookie = driver.manage().getCookieNamed("session_state");
533  String sessionState = null;
534  if (sessionStateCookie != null) {
535  sessionState = sessionStateCookie.getValue();
536  }
537  System.out.println("authorizationRequestAndDenyAccess: sessionState:" + sessionState);
538 
539  stopSelenium();
540 
541  AuthorizationResponse authorizationResponse = new AuthorizationResponse(authorizationResponseStr);
542  if (authorizationRequest.getRedirectUri() != null && authorizationRequest.getRedirectUri().equals(authorizationResponseStr)) {
543  authorizationResponse.setResponseMode(ResponseMode.FORM_POST);
544  }
545  authorizeClient.setResponse(authorizationResponse);
546  showClientUserAgent(authorizeClient);
547 
548  return authorizationResponse;
549  }
FORM_POST
Definition: ResponseMode.java:33
void stopSelenium()
Definition: BaseTest.java:243
String authorizeFormDoNotAllowButton
Definition: BaseTest.java:92
Definition: AuthorizeClient.java:29
Definition: ResponseMode.java:16
void startSelenium()
Definition: BaseTest.java:230
String getRedirectUri()
Definition: AuthorizationRequest.java:184
void setResponseMode(ResponseMode responseMode)
Definition: AuthorizationResponse.java:228
void setRequest(T request)
Definition: BaseClient.java:68
void setResponse(V response)
Definition: BaseClient.java:76
WebDriver driver
Definition: BaseTest.java:70
Definition: AuthorizationResponse.java:32
String getQueryString()
Definition: AuthorizationRequest.java:486
static void showClientUserAgent(BaseClient client)
Definition: BaseTest.java:783

◆ authorizationRequestAndGrantAccess()

AuthorizationResponse org.xdi.oxauth.BaseTest.authorizationRequestAndGrantAccess ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest 
)
inlineinherited
464  {
465  String authorizationRequestUrl = authorizeUrl + "?" + authorizationRequest.getQueryString();
466 
467  AuthorizeClient authorizeClient = new AuthorizeClient(authorizeUrl);
468  authorizeClient.setRequest(authorizationRequest);
469 
470  System.out.println("authorizationRequestAndGrantAccess: authorizationRequestUrl:" + authorizationRequestUrl);
471  startSelenium();
472  driver.navigate().to(authorizationRequestUrl);
473 
474  String authorizationResponseStr = driver.getCurrentUrl();
475 
476  WebElement allowButton = driver.findElement(By.id(authorizeFormAllowButton));
477 
478  final String previousURL = driver.getCurrentUrl();
479  allowButton.click();
480  WebDriverWait wait = new WebDriverWait(driver, 10);
481  wait.until(new ExpectedCondition<Boolean>() {
482  public Boolean apply(WebDriver d) {
483  return (d.getCurrentUrl() != previousURL);
484  }
485  });
486 
487  authorizationResponseStr = driver.getCurrentUrl();
488 
489  Cookie sessionStateCookie = driver.manage().getCookieNamed("session_state");
490  String sessionState = null;
491  if (sessionStateCookie != null) {
492  sessionState = sessionStateCookie.getValue();
493  }
494  System.out.println("authorizationRequestAndGrantAccess: sessionState:" + sessionState);
495 
496  stopSelenium();
497 
498  AuthorizationResponse authorizationResponse = new AuthorizationResponse(authorizationResponseStr);
499  if (authorizationRequest.getRedirectUri() != null && authorizationRequest.getRedirectUri().equals(authorizationResponseStr)) {
500  authorizationResponse.setResponseMode(ResponseMode.FORM_POST);
501  }
502  authorizeClient.setResponse(authorizationResponse);
503  showClientUserAgent(authorizeClient);
504 
505  return authorizationResponse;
506  }
FORM_POST
Definition: ResponseMode.java:33
void stopSelenium()
Definition: BaseTest.java:243
Definition: AuthorizeClient.java:29
Definition: ResponseMode.java:16
void startSelenium()
Definition: BaseTest.java:230
String getRedirectUri()
Definition: AuthorizationRequest.java:184
void setResponseMode(ResponseMode responseMode)
Definition: AuthorizationResponse.java:228
void setRequest(T request)
Definition: BaseClient.java:68
void setResponse(V response)
Definition: BaseClient.java:76
WebDriver driver
Definition: BaseTest.java:70
Definition: AuthorizationResponse.java:32
String getQueryString()
Definition: AuthorizationRequest.java:486
static void showClientUserAgent(BaseClient client)
Definition: BaseTest.java:783
String authorizeFormAllowButton
Definition: BaseTest.java:91

◆ clientExecutor() [1/2]

static ClientExecutor org.xdi.oxauth.BaseTest.clientExecutor ( ) throws NoSuchAlgorithmException, KeyManagementException, KeyStoreException, UnrecoverableKeyException
inlinestaticinherited
822  {
823  return clientExecutor(false);
824  }
static ClientExecutor clientExecutor()
Definition: BaseTest.java:822

◆ clientExecutor() [2/2]

static ClientExecutor org.xdi.oxauth.BaseTest.clientExecutor ( boolean  trustAll) throws NoSuchAlgorithmException, KeyManagementException, KeyStoreException, UnrecoverableKeyException
inlinestaticinherited
826  {
827  if (trustAll) {
828  return new ApacheHttpClient4Executor(createHttpClientTrustAll());
829  }
830  return ClientRequest.getDefaultExecutor();
831  }
static HttpClient createHttpClientTrustAll()
Definition: BaseTest.java:833

◆ createDeployment()

static Archive<?> org.xdi.oxauth.ConfigurableTest.createDeployment ( )
inlinestaticinherited
40  {
41  return Deployments.createDeployment();
42  }

◆ createHttpClient() [1/2]

static DefaultHttpClient org.xdi.oxauth.BaseTest.createHttpClient ( )
inlinestaticinherited
794  {
795  return createHttpClient(HostnameVerifierType.DEFAULT);
796  }
static DefaultHttpClient createHttpClient()
Definition: BaseTest.java:794

◆ createHttpClient() [2/2]

static DefaultHttpClient org.xdi.oxauth.BaseTest.createHttpClient ( HostnameVerifierType  p_verifierType)
inlinestaticinherited
798  {
799  if (p_verifierType != null && p_verifierType != HostnameVerifierType.DEFAULT) {
800  switch (p_verifierType) {
801  case ALLOW_ALL:
802  HostnameVerifier hostnameVerifier = org.apache.http.conn.ssl.SSLSocketFactory.ALLOW_ALL_HOSTNAME_VERIFIER;
803 
804  DefaultHttpClient client = new DefaultHttpClient();
805 
806  SchemeRegistry registry = new SchemeRegistry();
807  SSLSocketFactory socketFactory = SSLSocketFactory.getSocketFactory();
808  socketFactory.setHostnameVerifier((X509HostnameVerifier) hostnameVerifier);
809  registry.register(new Scheme("https", socketFactory, 443));
810  SingleClientConnManager mgr = new SingleClientConnManager(client.getParams(), registry);
811 
812  // Set verifier
813  HttpsURLConnection.setDefaultHostnameVerifier(hostnameVerifier);
814  return new DefaultHttpClient(mgr, client.getParams());
815  case DEFAULT:
816  return new DefaultHttpClient();
817  }
818  }
819  return new DefaultHttpClient();
820  }

◆ createHttpClientTrustAll()

static HttpClient org.xdi.oxauth.BaseTest.createHttpClientTrustAll ( ) throws NoSuchAlgorithmException, KeyManagementException, KeyStoreException, UnrecoverableKeyException
inlinestaticinherited
833  {
834  SSLSocketFactory sf = new SSLSocketFactory(new TrustStrategy() {
835  @Override
836  public boolean isTrusted(X509Certificate[] chain, String authType) throws CertificateException {
837  return true;
838  }
839  }, new AllowAllHostnameVerifier());
840 
841  SchemeRegistry registry = new SchemeRegistry();
842  registry.register(new Scheme("http", 80, PlainSocketFactory.getSocketFactory()));
843  registry.register(new Scheme("https", 443, sf));
844  ClientConnectionManager ccm = new PoolingClientConnectionManager(registry);
845  return new DefaultHttpClient(ccm);
846  }

◆ discovery()

void org.xdi.oxauth.BaseTest.discovery ( ITestContext  context) throws Exception
inlineinherited
670  {
671  // Load Form Interaction
672  loginFormUsername = context.getCurrentXmlTest().getParameter("loginFormUsername");
673  loginFormPassword = context.getCurrentXmlTest().getParameter("loginFormPassword");
674  loginFormLoginButton = context.getCurrentXmlTest().getParameter("loginFormLoginButton");
675  authorizeFormAllowButton = context.getCurrentXmlTest().getParameter("authorizeFormAllowButton");
676  authorizeFormDoNotAllowButton = context.getCurrentXmlTest().getParameter("authorizeFormDoNotAllowButton");
677 
678  String resource = context.getCurrentXmlTest().getParameter("swdResource");
679 
680  if (StringUtils.isNotBlank(resource)) {
681 
682  showTitle("OpenID Connect Discovery");
683 
684  OpenIdConnectDiscoveryClient openIdConnectDiscoveryClient = new OpenIdConnectDiscoveryClient(resource);
685  OpenIdConnectDiscoveryResponse openIdConnectDiscoveryResponse = openIdConnectDiscoveryClient.exec(clientExecutor(true));
686 
687  showClient(openIdConnectDiscoveryClient);
688  assertEquals(openIdConnectDiscoveryResponse.getStatus(), 200, "Unexpected response code");
689  assertNotNull(openIdConnectDiscoveryResponse.getSubject());
690  assertTrue(openIdConnectDiscoveryResponse.getLinks().size() > 0);
691 
692  configurationEndpoint = openIdConnectDiscoveryResponse.getLinks().get(0).getHref() +
693  "/.well-known/openid-configuration";
694 
695  System.out.println("OpenID Connect Configuration");
696 
697  OpenIdConfigurationClient client = new OpenIdConfigurationClient(configurationEndpoint);
698  client.setExecutor(clientExecutor(true));
700 
701  showClient(client);
702  assertEquals(response.getStatus(), 200, "Unexpected response code");
703  assertNotNull(response.getIssuer(), "The issuer is null");
704  assertNotNull(response.getAuthorizationEndpoint(), "The authorizationEndpoint is null");
705  assertNotNull(response.getTokenEndpoint(), "The tokenEndpoint is null");
706  assertNotNull(response.getUserInfoEndpoint(), "The userInfoEndPoint is null");
707  assertNotNull(response.getJwksUri(), "The jwksUri is null");
708  assertNotNull(response.getRegistrationEndpoint(), "The registrationEndpoint is null");
709 
710  assertTrue(response.getScopesSupported().size() > 0, "The scopesSupported is empty");
711  assertTrue(response.getScopeToClaimsMapping().size() > 0, "The scope to claims mapping is empty");
712  assertTrue(response.getResponseTypesSupported().size() > 0, "The responseTypesSupported is empty");
713  assertTrue(response.getGrantTypesSupported().size() > 0, "The grantTypesSupported is empty");
714  assertTrue(response.getAcrValuesSupported().size() >= 0, "The acrValuesSupported is empty");
715  assertTrue(response.getSubjectTypesSupported().size() > 0, "The subjectTypesSupported is empty");
716  assertTrue(response.getIdTokenSigningAlgValuesSupported().size() > 0, "The idTokenSigningAlgValuesSupported is empty");
717  assertTrue(response.getRequestObjectSigningAlgValuesSupported().size() > 0, "The requestObjectSigningAlgValuesSupported is empty");
718  assertTrue(response.getTokenEndpointAuthMethodsSupported().size() > 0, "The tokenEndpointAuthMethodsSupported is empty");
719  assertTrue(response.getClaimsSupported().size() > 0, "The claimsSupported is empty");
720 
722  tokenEndpoint = response.getTokenEndpoint();
727  jwksUri = response.getJwksUri();
732  gluuConfigurationEndpoint = determineGluuConfigurationEndpoint(openIdConnectDiscoveryResponse.getLinks().get(0).getHref());
733  } else {
734  showTitle("Loading configuration endpoints from properties file");
735 
736  authorizationEndpoint = context.getCurrentXmlTest().getParameter("authorizationEndpoint");
737  tokenEndpoint = context.getCurrentXmlTest().getParameter("tokenEndpoint");
738  userInfoEndpoint = context.getCurrentXmlTest().getParameter("userInfoEndpoint");
739  clientInfoEndpoint = context.getCurrentXmlTest().getParameter("clientInfoEndpoint");
740  checkSessionIFrame = context.getCurrentXmlTest().getParameter("checkSessionIFrame");
741  endSessionEndpoint = context.getCurrentXmlTest().getParameter("endSessionEndpoint");
742  jwksUri = context.getCurrentXmlTest().getParameter("jwksUri");
743  registrationEndpoint = context.getCurrentXmlTest().getParameter("registrationEndpoint");
744  configurationEndpoint = context.getCurrentXmlTest().getParameter("configurationEndpoint");
745  idGenEndpoint = context.getCurrentXmlTest().getParameter("idGenEndpoint");
746  introspectionEndpoint = context.getCurrentXmlTest().getParameter("introspectionEndpoint");
747  scopeToClaimsMapping = new HashMap<String, List<String>>();
748  }
749 
751  }
String registrationEndpoint
Definition: BaseTest.java:81
String getIntrospectionEndpoint()
Definition: OpenIdConfigurationResponse.java:343
List< String > getTokenEndpointAuthMethodsSupported()
Definition: OpenIdConfigurationResponse.java:642
String determineAuthorizationPageEndpoint(String authorizationEndpoint)
Definition: BaseTest.java:753
String jwksUri
Definition: BaseTest.java:80
String getRegistrationEndpoint()
Definition: OpenIdConfigurationResponse.java:310
String clientInfoEndpoint
Definition: BaseTest.java:77
String getCheckSessionIFrame()
Definition: OpenIdConfigurationResponse.java:248
String authorizationPageEndpoint
Definition: BaseTest.java:73
String idGenEndpoint
Definition: BaseTest.java:83
String getIdGenerationEndpoint()
Definition: OpenIdConfigurationResponse.java:327
static void showClient(BaseClient client)
Definition: BaseTest.java:775
List< String > getRequestObjectSigningAlgValuesSupported()
Definition: OpenIdConfigurationResponse.java:579
String loginFormUsername
Definition: BaseTest.java:88
String loginFormPassword
Definition: BaseTest.java:89
String configurationEndpoint
Definition: BaseTest.java:82
List< String > getSubjectTypesSupported()
Definition: OpenIdConfigurationResponse.java:438
String getEndSessionEndpoint()
Definition: OpenIdConfigurationResponse.java:268
String tokenEndpoint
Definition: BaseTest.java:75
String authorizeFormDoNotAllowButton
Definition: BaseTest.java:92
List< String > getAcrValuesSupported()
Definition: OpenIdConfigurationResponse.java:418
String getClientInfoEndpoint()
Definition: OpenIdConfigurationResponse.java:228
List< String > getGrantTypesSupported()
Definition: OpenIdConfigurationResponse.java:398
String checkSessionIFrame
Definition: BaseTest.java:78
void setExecutor(ClientExecutor executor)
Definition: BaseClient.java:84
OpenIdConfigurationResponse execOpenIdConfiguration()
Definition: OpenIdConfigurationClient.java:47
String loginFormLoginButton
Definition: BaseTest.java:90
String gluuConfigurationEndpoint
Definition: BaseTest.java:74
Map< String, List< String > > getScopeToClaimsMapping()
Definition: OpenIdConfigurationResponse.java:136
String getJwksUri()
Definition: OpenIdConfigurationResponse.java:289
String getTokenEndpoint()
Definition: OpenIdConfigurationResponse.java:192
List< String > getIdTokenSigningAlgValuesSupported()
Definition: OpenIdConfigurationResponse.java:519
Definition: OpenIdConnectDiscoveryClient.java:29
String introspectionEndpoint
Definition: BaseTest.java:84
void showTitle(String title)
Definition: BaseTest.java:761
List< String > getResponseTypesSupported()
Definition: OpenIdConfigurationResponse.java:378
String endSessionEndpoint
Definition: BaseTest.java:79
String getSubject()
Definition: OpenIdConnectDiscoveryResponse.java:32
List< String > getScopesSupported()
Definition: OpenIdConfigurationResponse.java:360
String determineGluuConfigurationEndpoint(String host)
Definition: BaseTest.java:757
OpenIdConnectDiscoveryResponse exec()
Definition: OpenIdConnectDiscoveryClient.java:47
String getAuthorizationEndpoint()
Definition: OpenIdConfigurationResponse.java:174
String userInfoEndpoint
Definition: BaseTest.java:76
Definition: OpenIdConfigurationClient.java:27
int getStatus()
Definition: BaseResponse.java:49
List< WebFingerLink > getLinks()
Definition: OpenIdConnectDiscoveryResponse.java:40
List< String > getClaimsSupported()
Definition: OpenIdConfigurationResponse.java:728
Definition: OpenIdConnectDiscoveryResponse.java:17
String authorizationEndpoint
Definition: BaseTest.java:72
String getUserInfoEndpoint()
Definition: OpenIdConfigurationResponse.java:210
Definition: OpenIdConfigurationResponse.java:26
static ClientExecutor clientExecutor()
Definition: BaseTest.java:822
Map< String, List< String > > scopeToClaimsMapping
Definition: BaseTest.java:85
String authorizeFormAllowButton
Definition: BaseTest.java:91
String getIssuer()
Definition: OpenIdConfigurationResponse.java:156

◆ fails()

static void org.xdi.oxauth.BaseTest.fails ( Throwable  e)
inlinestaticinherited
50  {
51  Assert.fail(e.getMessage(), e);
52  }

◆ getAuthorizationEndpoint()

String org.xdi.oxauth.BaseTest.getAuthorizationEndpoint ( )
inlineinherited
134  {
135  return authorizationEndpoint;
136  }
String authorizationEndpoint
Definition: BaseTest.java:72

◆ getCheckSessionIFrame()

String org.xdi.oxauth.BaseTest.getCheckSessionIFrame ( )
inlineinherited
166  {
167  return checkSessionIFrame;
168  }
String checkSessionIFrame
Definition: BaseTest.java:78

◆ getClientInfoEndpoint()

String org.xdi.oxauth.BaseTest.getClientInfoEndpoint ( )
inlineinherited
158  {
159  return clientInfoEndpoint;
160  }
String clientInfoEndpoint
Definition: BaseTest.java:77

◆ getConfigurationEndpoint()

String org.xdi.oxauth.BaseTest.getConfigurationEndpoint ( )
inlineinherited
222  {
223  return configurationEndpoint;
224  }
String configurationEndpoint
Definition: BaseTest.java:82

◆ getDriver()

WebDriver org.xdi.oxauth.BaseTest.getDriver ( )
inlineinherited
126  {
127  return driver;
128  }
WebDriver driver
Definition: BaseTest.java:70

◆ getEndSessionEndpoint()

String org.xdi.oxauth.BaseTest.getEndSessionEndpoint ( )
inlineinherited
174  {
175  return endSessionEndpoint;
176  }
String endSessionEndpoint
Definition: BaseTest.java:79

◆ getIdGenEndpoint()

String org.xdi.oxauth.BaseTest.getIdGenEndpoint ( )
inlineinherited
214  {
215  return idGenEndpoint;
216  }
String idGenEndpoint
Definition: BaseTest.java:83

◆ getIntrospectionEndpoint()

String org.xdi.oxauth.BaseTest.getIntrospectionEndpoint ( )
inlineinherited
198  {
199  return introspectionEndpoint;
200  }
String introspectionEndpoint
Definition: BaseTest.java:84

◆ getJwksUri()

String org.xdi.oxauth.BaseTest.getJwksUri ( )
inlineinherited
182  {
183  return jwksUri;
184  }
String jwksUri
Definition: BaseTest.java:80

◆ getRegistrationEndpoint()

String org.xdi.oxauth.BaseTest.getRegistrationEndpoint ( )
inlineinherited
190  {
191  return registrationEndpoint;
192  }
String registrationEndpoint
Definition: BaseTest.java:81

◆ getScopeToClaimsMapping()

Map<String, List<String> > org.xdi.oxauth.BaseTest.getScopeToClaimsMapping ( )
inlineinherited
206  {
207  return scopeToClaimsMapping;
208  }
Map< String, List< String > > scopeToClaimsMapping
Definition: BaseTest.java:85

◆ getTokenEndpoint()

String org.xdi.oxauth.BaseTest.getTokenEndpoint ( )
inlineinherited
142  {
143  return tokenEndpoint;
144  }
String tokenEndpoint
Definition: BaseTest.java:75

◆ getUserInfoEndpoint()

String org.xdi.oxauth.BaseTest.getUserInfoEndpoint ( )
inlineinherited
150  {
151  return userInfoEndpoint;
152  }
String userInfoEndpoint
Definition: BaseTest.java:76

◆ initTestSuite()

void org.xdi.oxauth.BaseTest.initTestSuite ( ITestContext  context) throws FileNotFoundException, IOException
inlineinherited
95  {
96  SecurityProviderUtility.installBCProvider();
97 
98  Reporter.log("Invoked init test suite method \n", true);
99 
100  String propertiesFile = context.getCurrentXmlTest().getParameter("propertiesFile");
101  if (StringHelper.isEmpty(propertiesFile)) {
102  propertiesFile = "target/test-classes/testng.properties";
103  //propertiesFile = "U:\\own\\project\\git\\oxAuth\\Client\\src\\test\\resources\\testng_yuriy.properties";
104  //propertiesFile = "/Users/JAVIER/IdeaProjects/oxAuth/Client/target/test-classes/testng.properties";
105  }
106 
107  FileInputStream conf = new FileInputStream(propertiesFile);
108  Properties prop = new Properties();
109  prop.load(conf);
110 
111  Map<String, String> parameters = new HashMap<String, String>();
112  for (Entry<Object, Object> entry : prop.entrySet()) {
113  Object key = entry.getKey();
114  Object value = entry.getValue();
115 
116  if (StringHelper.isEmptyString(key) || StringHelper.isEmptyString(value)) {
117  continue;
118  }
119  parameters.put(key.toString(), value.toString());
120  }
121 
122  // Overrided test paramters
123  context.getSuite().getXmlSuite().setParameters(parameters);
124  }

◆ omittedResponseTypes()

void org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.omittedResponseTypes ( final String  redirectUris,
final String  userId,
final String  userSecret,
final String  redirectUri,
final String  sectorIdentifierUri 
) throws Exception
inline

Registering without provide the response_types param, should register the Client using only the code response type.

49  {
50  showTitle("omittedResponseTypes");
51 
52  // 1. Register client
53  RegisterRequest registerRequest = new RegisterRequest(ApplicationType.WEB, "oxAuth test app",
54  StringUtils.spaceSeparatedToList(redirectUris));
56  registerRequest.setSectorIdentifierUri(sectorIdentifierUri);
57 
59  registerClient.setRequest(registerRequest);
60  RegisterResponse registerResponse = registerClient.exec();
61 
62  showClient(registerClient);
63  assertEquals(registerResponse.getStatus(), 200, "Unexpected response code: " + registerResponse.getEntity());
64  assertNotNull(registerResponse.getClientId());
65  assertNotNull(registerResponse.getClientSecret());
66  assertNotNull(registerResponse.getRegistrationAccessToken());
67  assertNotNull(registerResponse.getClientIdIssuedAt());
68  assertNotNull(registerResponse.getClientSecretExpiresAt());
69 
70  String clientId = registerResponse.getClientId();
71  String clientSecret = registerResponse.getClientSecret();
72  String registrationAccessToken = registerResponse.getRegistrationAccessToken();
73  String registrationClientUri = registerResponse.getRegistrationClientUri();
74 
75  // 2. Client read
76  RegisterRequest readClientRequest = new RegisterRequest(registrationAccessToken);
77 
78  RegisterClient readClient = new RegisterClient(registrationClientUri);
79  readClient.setRequest(readClientRequest);
80  RegisterResponse readClientResponse = readClient.exec();
81 
82  showClient(readClient);
83  assertEquals(readClientResponse.getStatus(), 200, "Unexpected response code: " + readClientResponse.getEntity());
84  assertNotNull(readClientResponse.getClientId());
85  assertNotNull(readClientResponse.getClientSecret());
86  assertNotNull(readClientResponse.getClientIdIssuedAt());
87  assertNotNull(readClientResponse.getClientSecretExpiresAt());
88 
89  assertNotNull(readClientResponse.getClaims().get(RESPONSE_TYPES.toString()));
90  assertNotNull(readClientResponse.getClaims().get(REDIRECT_URIS.toString()));
91  assertNotNull(readClientResponse.getClaims().get(APPLICATION_TYPE.toString()));
92  assertNotNull(readClientResponse.getClaims().get(CLIENT_NAME.toString()));
93  assertNotNull(readClientResponse.getClaims().get(ID_TOKEN_SIGNED_RESPONSE_ALG.toString()));
94  assertNotNull(readClientResponse.getClaims().get(SCOPE.toString()));
95 
96  // 3. Request authorization
97  List<ResponseType> responseTypes = Arrays.asList(ResponseType.CODE);
98  List<String> scopes = Arrays.asList(
99  "openid",
100  "profile",
101  "address",
102  "email");
103  String state = UUID.randomUUID().toString();
104 
105  AuthorizationRequest authorizationRequest = new AuthorizationRequest(responseTypes, clientId, scopes, redirectUri, null);
106  authorizationRequest.setState(state);
107 
109  authorizationEndpoint, authorizationRequest, userId, userSecret);
110 
111  assertNotNull(authorizationResponse.getLocation(), "The location is null");
112  assertNotNull(authorizationResponse.getCode(), "The authorization code is null");
113  assertNotNull(authorizationResponse.getState(), "The state is null");
114  assertNotNull(authorizationResponse.getScope(), "The scope is null");
115 
116  String authorizationCode = authorizationResponse.getCode();
117 
118  // 4. Get Access Token
120  tokenRequest.setCode(authorizationCode);
121  tokenRequest.setRedirectUri(redirectUri);
122  tokenRequest.setAuthUsername(clientId);
123  tokenRequest.setAuthPassword(clientSecret);
125 
126  TokenClient tokenClient = new TokenClient(tokenEndpoint);
127  tokenClient.setRequest(tokenRequest);
128  TokenResponse tokenResponse = tokenClient.exec();
129 
130  showClient(tokenClient);
131  assertEquals(tokenResponse.getStatus(), 200, "Unexpected response code: " + tokenResponse.getStatus());
132  assertNotNull(tokenResponse.getEntity(), "The entity is null");
133  assertNotNull(tokenResponse.getAccessToken(), "The access token is null");
134  assertNotNull(tokenResponse.getExpiresIn(), "The expires in value is null");
135  assertNotNull(tokenResponse.getTokenType(), "The token type is null");
136  assertNotNull(tokenResponse.getRefreshToken(), "The refresh token is null");
137  }
void setTokenEndpointAuthMethod(AuthenticationMethod tokenEndpointAuthMethod)
Definition: RegisterRequest.java:722
String registrationEndpoint
Definition: BaseTest.java:81
Definition: RegisterClient.java:34
CODE
Definition: ResponseType.java:39
String getRegistrationClientUri()
Definition: RegisterResponse.java:181
String getCode()
Definition: AuthorizationResponse.java:167
Definition: TokenClient.java:24
void setAuthUsername(String authUsername)
Definition: BaseRequest.java:62
Definition: RegisterResponse.java:34
String getState()
Definition: AuthorizationResponse.java:314
TokenType getTokenType()
Definition: TokenResponse.java:107
void setSectorIdentifierUri(String sectorIdentifierUri)
Definition: RegisterRequest.java:504
Map< String, String > getClaims()
Definition: RegisterResponse.java:237
static void showClient(BaseClient client)
Definition: BaseTest.java:775
CLIENT_SECRET_POST
Definition: AuthenticationMethod.java:24
Definition: GrantType.java:23
String tokenEndpoint
Definition: BaseTest.java:75
Definition: TokenRequest.java:34
void setRedirectUri(String redirectUri)
Definition: TokenRequest.java:179
Date getClientSecretExpiresAt()
Definition: RegisterResponse.java:205
RegisterResponse exec()
Definition: RegisterClient.java:76
void setAuthPassword(String authPassword)
Definition: BaseRequest.java:70
Integer getExpiresIn()
Definition: TokenResponse.java:125
AUTHORIZATION_CODE
Definition: GrantType.java:33
String getAccessToken()
Definition: TokenResponse.java:89
String getClientSecret()
Definition: RegisterResponse.java:160
WEB
Definition: ApplicationType.java:28
Definition: TokenResponse.java:22
String getClientId()
Definition: RegisterResponse.java:142
TokenResponse exec()
Definition: TokenClient.java:218
void showTitle(String title)
Definition: BaseTest.java:761
void setRequest(T request)
Definition: BaseClient.java:68
void setAuthenticationMethod(AuthenticationMethod authenticationMethod)
Definition: BaseRequest.java:78
Definition: AuthorizationResponse.java:32
Definition: RegisterRequest.java:37
String getScope()
Definition: AuthorizationResponse.java:277
void setCode(String code)
Definition: TokenRequest.java:143
String getLocation()
Definition: BaseResponse.java:58
Definition: AuthorizationRequest.java:33
Definition: ApplicationType.java:12
Definition: ResponseType.java:34
void setState(String state)
Definition: AuthorizationRequest.java:217
Date getClientIdIssuedAt()
Definition: RegisterResponse.java:189
String authorizationEndpoint
Definition: BaseTest.java:72
Definition: AuthenticationMethod.java:12
AuthorizationResponse authenticateResourceOwnerAndGrantAccess(String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:252
String getRefreshToken()
Definition: TokenResponse.java:144
String getRegistrationAccessToken()
Definition: RegisterResponse.java:173

◆ omittedResponseTypesFail()

void org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.omittedResponseTypesFail ( final String  redirectUris,
final String  redirectUri,
final String  userId,
final String  userSecret,
final List< ResponseType responseTypes,
final String  sectorIdentifierUri 
) throws Exception
inline

Authorization request with the other Response types combination should fail.

163  {
164  showTitle("omittedResponseTypesFail");
165 
166  // 1. Register client
167  RegisterRequest registerRequest = new RegisterRequest(ApplicationType.WEB, "oxAuth test app",
168  StringUtils.spaceSeparatedToList(redirectUris));
169  registerRequest.setSectorIdentifierUri(sectorIdentifierUri);
170 
171  RegisterClient registerClient = new RegisterClient(registrationEndpoint);
172  registerClient.setRequest(registerRequest);
173  RegisterResponse registerResponse = registerClient.exec();
174 
175  showClient(registerClient);
176  assertEquals(registerResponse.getStatus(), 200, "Unexpected response code: " + registerResponse.getEntity());
177  assertNotNull(registerResponse.getClientId());
178  assertNotNull(registerResponse.getClientSecret());
179  assertNotNull(registerResponse.getRegistrationAccessToken());
180  assertNotNull(registerResponse.getClientIdIssuedAt());
181  assertNotNull(registerResponse.getClientSecretExpiresAt());
182 
183  String clientId = registerResponse.getClientId();
184  String registrationAccessToken = registerResponse.getRegistrationAccessToken();
185  String registrationClientUri = registerResponse.getRegistrationClientUri();
186 
187  // 2. Client read
188  RegisterRequest readClientRequest = new RegisterRequest(registrationAccessToken);
189 
190  RegisterClient readClient = new RegisterClient(registrationClientUri);
191  readClient.setRequest(readClientRequest);
192  RegisterResponse readClientResponse = readClient.exec();
193 
194  showClient(readClient);
195  assertEquals(readClientResponse.getStatus(), 200, "Unexpected response code: " + readClientResponse.getEntity());
196  assertNotNull(readClientResponse.getClientId());
197  assertNotNull(readClientResponse.getClientSecret());
198  assertNotNull(readClientResponse.getClientIdIssuedAt());
199  assertNotNull(readClientResponse.getClientSecretExpiresAt());
200 
201  assertNotNull(readClientResponse.getClaims().get(RESPONSE_TYPES.toString()));
202  assertNotNull(readClientResponse.getClaims().get(REDIRECT_URIS.toString()));
203  assertNotNull(readClientResponse.getClaims().get(APPLICATION_TYPE.toString()));
204  assertNotNull(readClientResponse.getClaims().get(CLIENT_NAME.toString()));
205  assertNotNull(readClientResponse.getClaims().get(ID_TOKEN_SIGNED_RESPONSE_ALG.toString()));
206  assertNotNull(readClientResponse.getClaims().get(SCOPE.toString()));
207 
208  // 3. Request authorization
209  List<String> scopes = Arrays.asList(
210  "openid",
211  "profile",
212  "address",
213  "email");
214  String state = UUID.randomUUID().toString();
215 
216  AuthorizationRequest authorizationRequest = new AuthorizationRequest(responseTypes, clientId, scopes, redirectUri, null);
217  authorizationRequest.setState(state);
218  authorizationRequest.setAuthUsername(userId);
219  authorizationRequest.setAuthPassword(userSecret);
220  authorizationRequest.getPrompts().add(Prompt.NONE);
221 
223  authorizeClient.setRequest(authorizationRequest);
224  AuthorizationResponse authorizationResponse = authorizeClient.exec();
225 
226  showClient(authorizeClient);
227  assertTrue(authorizationResponse.getStatus() == 302
228  || authorizationResponse.getStatus() == 400, "Unexpected response code: " + authorizationResponse.getStatus());
229  assertNotNull(authorizationResponse.getErrorType(), "The error type is null");
230  assertNotNull(authorizationResponse.getErrorDescription(), "The error description is null");
231  }
String registrationEndpoint
Definition: BaseTest.java:81
Definition: RegisterClient.java:34
String getRegistrationClientUri()
Definition: RegisterResponse.java:181
void setAuthUsername(String authUsername)
Definition: BaseRequest.java:62
Definition: RegisterResponse.java:34
List< Prompt > getPrompts()
Definition: AuthorizationRequest.java:275
AuthorizationResponse exec()
Definition: AuthorizeClient.java:167
void setSectorIdentifierUri(String sectorIdentifierUri)
Definition: RegisterRequest.java:504
Map< String, String > getClaims()
Definition: RegisterResponse.java:237
static void showClient(BaseClient client)
Definition: BaseTest.java:775
Date getClientSecretExpiresAt()
Definition: RegisterResponse.java:205
RegisterResponse exec()
Definition: RegisterClient.java:76
void setAuthPassword(String authPassword)
Definition: BaseRequest.java:70
Definition: AuthorizeClient.java:29
String getClientSecret()
Definition: RegisterResponse.java:160
WEB
Definition: ApplicationType.java:28
NONE
Definition: Prompt.java:27
AuthorizeErrorResponseType getErrorType()
Definition: AuthorizationResponse.java:334
String getClientId()
Definition: RegisterResponse.java:142
void showTitle(String title)
Definition: BaseTest.java:761
void setRequest(T request)
Definition: BaseClient.java:68
Definition: AuthorizationResponse.java:32
Definition: RegisterRequest.java:37
Definition: Prompt.java:18
int getStatus()
Definition: BaseResponse.java:49
Definition: AuthorizationRequest.java:33
Definition: ApplicationType.java:12
void setState(String state)
Definition: AuthorizationRequest.java:217
Date getClientIdIssuedAt()
Definition: RegisterResponse.java:189
String authorizationEndpoint
Definition: BaseTest.java:72
String getErrorDescription()
Definition: AuthorizationResponse.java:355
String getRegistrationAccessToken()
Definition: RegisterResponse.java:173

◆ omittedResponseTypesFailDataProvider()

Object [][] org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.omittedResponseTypesFailDataProvider ( ITestContext  context)
inline
140  {
141  String redirectUris = context.getCurrentXmlTest().getParameter("redirectUris");
142  String userId = context.getCurrentXmlTest().getParameter("userId");
143  String userSecret = context.getCurrentXmlTest().getParameter("userSecret");
144  String redirectUri = context.getCurrentXmlTest().getParameter("redirectUri");
145  String sectorIdentifierUri = context.getCurrentXmlTest().getParameter("sectorIdentifierUri");
146 
147  return new Object[][]{
148  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.ID_TOKEN), sectorIdentifierUri},
149  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.TOKEN), sectorIdentifierUri},
150  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.TOKEN, ResponseType.ID_TOKEN), sectorIdentifierUri},
151  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.TOKEN), sectorIdentifierUri},
152  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.TOKEN, ResponseType.ID_TOKEN), sectorIdentifierUri},
153  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.ID_TOKEN), sectorIdentifierUri},
154  };
155  }
ID_TOKEN
Definition: ResponseType.java:47
CODE
Definition: ResponseType.java:39
TOKEN
Definition: ResponseType.java:43
Definition: ResponseType.java:34

◆ output()

static void org.xdi.oxauth.BaseTest.output ( String  p_msg)
inlinestaticinherited
54  {
55  System.out.println(p_msg);
56  }

◆ responseTypesCodeIdToken()

void org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.responseTypesCodeIdToken ( final String  redirectUris,
final String  userId,
final String  userSecret,
final String  redirectUri,
final String  sectorIdentifierUri 
) throws Exception
inline

Registering with the response_types param code, id_token.

240  {
241  showTitle("responseTypesCodeIdToken");
242 
243  List<ResponseType> responseTypes = Arrays.asList(
246 
247  // 1. Register client
248  RegisterRequest registerRequest = new RegisterRequest(ApplicationType.WEB, "oxAuth test app",
249  StringUtils.spaceSeparatedToList(redirectUris));
250  registerRequest.setResponseTypes(responseTypes);
252  registerRequest.setSectorIdentifierUri(sectorIdentifierUri);
253 
254  RegisterClient registerClient = new RegisterClient(registrationEndpoint);
255  registerClient.setRequest(registerRequest);
256  RegisterResponse registerResponse = registerClient.exec();
257 
258  showClient(registerClient);
259  assertEquals(registerResponse.getStatus(), 200, "Unexpected response code: " + registerResponse.getEntity());
260  assertNotNull(registerResponse.getClientId());
261  assertNotNull(registerResponse.getClientSecret());
262  assertNotNull(registerResponse.getRegistrationAccessToken());
263  assertNotNull(registerResponse.getClientIdIssuedAt());
264  assertNotNull(registerResponse.getClientSecretExpiresAt());
265 
266  String clientId = registerResponse.getClientId();
267  String clientSecret = registerResponse.getClientSecret();
268  String registrationAccessToken = registerResponse.getRegistrationAccessToken();
269  String registrationClientUri = registerResponse.getRegistrationClientUri();
270 
271  // 2. Client read
272  RegisterRequest readClientRequest = new RegisterRequest(registrationAccessToken);
273 
274  RegisterClient readClient = new RegisterClient(registrationClientUri);
275  readClient.setRequest(readClientRequest);
276  RegisterResponse readClientResponse = readClient.exec();
277 
278  showClient(readClient);
279  assertEquals(readClientResponse.getStatus(), 200, "Unexpected response code: " + readClientResponse.getEntity());
280  assertNotNull(readClientResponse.getClientId());
281  assertNotNull(readClientResponse.getClientSecret());
282  assertNotNull(readClientResponse.getClientIdIssuedAt());
283  assertNotNull(readClientResponse.getClientSecretExpiresAt());
284 
285  assertNotNull(readClientResponse.getClaims().get(RESPONSE_TYPES.toString()));
286  assertNotNull(readClientResponse.getClaims().get(REDIRECT_URIS.toString()));
287  assertNotNull(readClientResponse.getClaims().get(APPLICATION_TYPE.toString()));
288  assertNotNull(readClientResponse.getClaims().get(CLIENT_NAME.toString()));
289  assertNotNull(readClientResponse.getClaims().get(ID_TOKEN_SIGNED_RESPONSE_ALG.toString()));
290  assertNotNull(readClientResponse.getClaims().get(SCOPE.toString()));
291 
292  // 3. Request authorization
293  List<String> scopes = Arrays.asList(
294  "openid",
295  "profile",
296  "address",
297  "email");
298  String state = UUID.randomUUID().toString();
299  String nonce = UUID.randomUUID().toString();
300 
301  AuthorizationRequest authorizationRequest = new AuthorizationRequest(responseTypes, clientId, scopes, redirectUri, nonce);
302  authorizationRequest.setState(state);
303 
305  authorizationEndpoint, authorizationRequest, userId, userSecret);
306 
307  assertNotNull(authorizationResponse.getLocation(), "The location is null");
308  assertNotNull(authorizationResponse.getCode(), "The authorization code is null");
309  assertNotNull(authorizationResponse.getIdToken(), "The id token is null");
310  assertNotNull(authorizationResponse.getState(), "The state is null");
311  assertNotNull(authorizationResponse.getScope(), "The scope is null");
312 
313  String authorizationCode = authorizationResponse.getCode();
314  String idToken = authorizationResponse.getIdToken();
315 
316  // 4. Validate code and id_token
317  Jwt jwt = Jwt.parse(idToken);
318  assertNotNull(jwt.getHeader().getClaimAsString(JwtHeaderName.TYPE));
319  assertNotNull(jwt.getHeader().getClaimAsString(JwtHeaderName.ALGORITHM));
320  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.ISSUER));
321  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.AUDIENCE));
322  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.EXPIRATION_TIME));
323  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.ISSUED_AT));
324  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.SUBJECT_IDENTIFIER));
325  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.CODE_HASH));
326  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.AUTHENTICATION_TIME));
327 
329  jwksUri,
330  jwt.getHeader().getClaimAsString(JwtHeaderName.KEY_ID));
331  RSASigner rsaSigner = new RSASigner(SignatureAlgorithm.RS256, publicKey);
332 
333  assertTrue(rsaSigner.validate(jwt));
334  assertTrue(rsaSigner.validateAuthorizationCode(authorizationCode, jwt));
335 
336  // 5. Get Access Token
338  tokenRequest.setCode(authorizationCode);
339  tokenRequest.setRedirectUri(redirectUri);
340  tokenRequest.setAuthUsername(clientId);
341  tokenRequest.setAuthPassword(clientSecret);
342  tokenRequest.setAuthenticationMethod(AuthenticationMethod.CLIENT_SECRET_POST);
343 
344  TokenClient tokenClient = new TokenClient(tokenEndpoint);
345  tokenClient.setRequest(tokenRequest);
346  TokenResponse tokenResponse1 = tokenClient.exec();
347 
348  showClient(tokenClient);
349  assertEquals(tokenResponse1.getStatus(), 200, "Unexpected response code: " + tokenResponse1.getStatus());
350  assertNotNull(tokenResponse1.getEntity(), "The entity is null");
351  assertNotNull(tokenResponse1.getAccessToken(), "The access token is null");
352  assertNotNull(tokenResponse1.getExpiresIn(), "The expires in value is null");
353  assertNotNull(tokenResponse1.getTokenType(), "The token type is null");
354  assertNotNull(tokenResponse1.getRefreshToken(), "The refresh token is null");
355  }
ID_TOKEN
Definition: ResponseType.java:47
void setTokenEndpointAuthMethod(AuthenticationMethod tokenEndpointAuthMethod)
Definition: RegisterRequest.java:722
String registrationEndpoint
Definition: BaseTest.java:81
Definition: RegisterClient.java:34
String getIdToken()
Definition: AuthorizationResponse.java:295
CODE
Definition: ResponseType.java:39
String getClaimAsString(String key)
Definition: JwtClaimSet.java:55
String getRegistrationClientUri()
Definition: RegisterResponse.java:181
String jwksUri
Definition: BaseTest.java:80
String getCode()
Definition: AuthorizationResponse.java:167
Definition: TokenClient.java:24
Definition: RegisterResponse.java:34
String getState()
Definition: AuthorizationResponse.java:314
TokenType getTokenType()
Definition: TokenResponse.java:107
void setSectorIdentifierUri(String sectorIdentifierUri)
Definition: RegisterRequest.java:504
Map< String, String > getClaims()
Definition: RegisterResponse.java:237
Definition: SignatureAlgorithm.java:20
static void showClient(BaseClient client)
Definition: BaseTest.java:775
CLIENT_SECRET_POST
Definition: AuthenticationMethod.java:24
Definition: GrantType.java:23
JwtClaims getClaims()
Definition: JsonWebResponse.java:41
String tokenEndpoint
Definition: BaseTest.java:75
Definition: TokenRequest.java:34
Date getClientSecretExpiresAt()
Definition: RegisterResponse.java:205
RegisterResponse exec()
Definition: RegisterClient.java:76
Integer getExpiresIn()
Definition: TokenResponse.java:125
AUTHORIZATION_CODE
Definition: GrantType.java:33
String getAccessToken()
Definition: TokenResponse.java:89
String getClientSecret()
Definition: RegisterResponse.java:160
WEB
Definition: ApplicationType.java:28
RS256
Definition: SignatureAlgorithm.java:26
Definition: TokenResponse.java:22
Definition: JwkClient.java:29
String getClientId()
Definition: RegisterResponse.java:142
TokenResponse exec()
Definition: TokenClient.java:218
void showTitle(String title)
Definition: BaseTest.java:761
Definition: Jwt.java:24
void setRequest(T request)
Definition: BaseClient.java:68
Definition: AuthorizationResponse.java:32
void setResponseTypes(List< ResponseType > responseTypes)
Definition: RegisterRequest.java:272
Definition: RegisterRequest.java:37
String getScope()
Definition: AuthorizationResponse.java:277
static RSAPublicKey getRSAPublicKey(String jwkSetUri, String keyId)
Definition: JwkClient.java:94
JwtHeader getHeader()
Definition: JsonWebResponse.java:33
String getLocation()
Definition: BaseResponse.java:58
Definition: AuthorizationRequest.java:33
Definition: ApplicationType.java:12
Definition: ResponseType.java:34
void setState(String state)
Definition: AuthorizationRequest.java:217
Date getClientIdIssuedAt()
Definition: RegisterResponse.java:189
String authorizationEndpoint
Definition: BaseTest.java:72
Definition: AuthenticationMethod.java:12
static Jwt parse(String encodedJwt)
Definition: Jwt.java:54
AuthorizationResponse authenticateResourceOwnerAndGrantAccess(String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:252
String getRefreshToken()
Definition: TokenResponse.java:144
String getRegistrationAccessToken()
Definition: RegisterResponse.java:173

◆ responseTypesCodeIdTokenFail()

void org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.responseTypesCodeIdTokenFail ( final String  redirectUris,
final String  redirectUri,
final String  userId,
final String  userSecret,
final List< ResponseType responseTypes,
final String  sectorIdentifierUri 
) throws Exception
inline

Authorization request with the other Response types combination should fail.

379  {
380  showTitle("responseTypesCodeIdTokenFail");
381 
382  // 1. Register client
383  RegisterRequest registerRequest = new RegisterRequest(ApplicationType.WEB, "oxAuth test app",
384  StringUtils.spaceSeparatedToList(redirectUris));
385  registerRequest.setResponseTypes(Arrays.asList(
388  registerRequest.setSectorIdentifierUri(sectorIdentifierUri);
389 
390  RegisterClient registerClient = new RegisterClient(registrationEndpoint);
391  registerClient.setRequest(registerRequest);
392  RegisterResponse registerResponse = registerClient.exec();
393 
394  showClient(registerClient);
395  assertEquals(registerResponse.getStatus(), 200, "Unexpected response code: " + registerResponse.getEntity());
396  assertNotNull(registerResponse.getClientId());
397  assertNotNull(registerResponse.getClientSecret());
398  assertNotNull(registerResponse.getRegistrationAccessToken());
399  assertNotNull(registerResponse.getClientIdIssuedAt());
400  assertNotNull(registerResponse.getClientSecretExpiresAt());
401 
402  String clientId = registerResponse.getClientId();
403  String registrationAccessToken = registerResponse.getRegistrationAccessToken();
404  String registrationClientUri = registerResponse.getRegistrationClientUri();
405 
406  // 2. Client read
407  RegisterRequest readClientRequest = new RegisterRequest(registrationAccessToken);
408 
409  RegisterClient readClient = new RegisterClient(registrationClientUri);
410  readClient.setRequest(readClientRequest);
411  RegisterResponse readClientResponse = readClient.exec();
412 
413  showClient(readClient);
414  assertEquals(readClientResponse.getStatus(), 200, "Unexpected response code: " + readClientResponse.getEntity());
415  assertNotNull(readClientResponse.getClientId());
416  assertNotNull(readClientResponse.getClientSecret());
417  assertNotNull(readClientResponse.getClientIdIssuedAt());
418  assertNotNull(readClientResponse.getClientSecretExpiresAt());
419 
420  assertNotNull(readClientResponse.getClaims().get(RESPONSE_TYPES.toString()));
421  assertNotNull(readClientResponse.getClaims().get(REDIRECT_URIS.toString()));
422  assertNotNull(readClientResponse.getClaims().get(APPLICATION_TYPE.toString()));
423  assertNotNull(readClientResponse.getClaims().get(CLIENT_NAME.toString()));
424  assertNotNull(readClientResponse.getClaims().get(ID_TOKEN_SIGNED_RESPONSE_ALG.toString()));
425  assertNotNull(readClientResponse.getClaims().get(SCOPE.toString()));
426 
427  // 3. Request authorization
428  List<String> scopes = Arrays.asList(
429  "openid",
430  "profile",
431  "address",
432  "email");
433  String state = UUID.randomUUID().toString();
434 
435  AuthorizationRequest authorizationRequest = new AuthorizationRequest(responseTypes, clientId, scopes, redirectUri, null);
436  authorizationRequest.setState(state);
437  authorizationRequest.setAuthUsername(userId);
438  authorizationRequest.setAuthPassword(userSecret);
439  authorizationRequest.getPrompts().add(Prompt.NONE);
440 
442  authorizeClient.setRequest(authorizationRequest);
443  AuthorizationResponse authorizationResponse = authorizeClient.exec();
444 
445  showClient(authorizeClient);
446  assertTrue(authorizationResponse.getStatus() == 302
447  || authorizationResponse.getStatus() == 400, "Unexpected response code: " + authorizationResponse.getStatus());
448  assertNotNull(authorizationResponse.getErrorType(), "The error type is null");
449  assertNotNull(authorizationResponse.getErrorDescription(), "The error description is null");
450  }
ID_TOKEN
Definition: ResponseType.java:47
String registrationEndpoint
Definition: BaseTest.java:81
Definition: RegisterClient.java:34
CODE
Definition: ResponseType.java:39
String getRegistrationClientUri()
Definition: RegisterResponse.java:181
void setAuthUsername(String authUsername)
Definition: BaseRequest.java:62
Definition: RegisterResponse.java:34
List< Prompt > getPrompts()
Definition: AuthorizationRequest.java:275
AuthorizationResponse exec()
Definition: AuthorizeClient.java:167
void setSectorIdentifierUri(String sectorIdentifierUri)
Definition: RegisterRequest.java:504
Map< String, String > getClaims()
Definition: RegisterResponse.java:237
static void showClient(BaseClient client)
Definition: BaseTest.java:775
Date getClientSecretExpiresAt()
Definition: RegisterResponse.java:205
RegisterResponse exec()
Definition: RegisterClient.java:76
void setAuthPassword(String authPassword)
Definition: BaseRequest.java:70
Definition: AuthorizeClient.java:29
String getClientSecret()
Definition: RegisterResponse.java:160
WEB
Definition: ApplicationType.java:28
NONE
Definition: Prompt.java:27
AuthorizeErrorResponseType getErrorType()
Definition: AuthorizationResponse.java:334
String getClientId()
Definition: RegisterResponse.java:142
void showTitle(String title)
Definition: BaseTest.java:761
void setRequest(T request)
Definition: BaseClient.java:68
Definition: AuthorizationResponse.java:32
void setResponseTypes(List< ResponseType > responseTypes)
Definition: RegisterRequest.java:272
Definition: RegisterRequest.java:37
Definition: Prompt.java:18
int getStatus()
Definition: BaseResponse.java:49
Definition: AuthorizationRequest.java:33
Definition: ApplicationType.java:12
Definition: ResponseType.java:34
void setState(String state)
Definition: AuthorizationRequest.java:217
Date getClientIdIssuedAt()
Definition: RegisterResponse.java:189
String authorizationEndpoint
Definition: BaseTest.java:72
String getErrorDescription()
Definition: AuthorizationResponse.java:355
String getRegistrationAccessToken()
Definition: RegisterResponse.java:173

◆ responseTypesCodeIdTokenFailDataProvider()

Object [][] org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.responseTypesCodeIdTokenFailDataProvider ( ITestContext  context)
inline
358  {
359  String redirectUris = context.getCurrentXmlTest().getParameter("redirectUris");
360  String redirectUri = context.getCurrentXmlTest().getParameter("redirectUri");
361  String userId = context.getCurrentXmlTest().getParameter("userId");
362  String userSecret = context.getCurrentXmlTest().getParameter("userSecret");
363  String sectorIdentifierUri = context.getCurrentXmlTest().getParameter("sectorIdentifierUri");
364 
365  return new Object[][]{
366  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.TOKEN), sectorIdentifierUri},
367  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.TOKEN, ResponseType.ID_TOKEN), sectorIdentifierUri},
368  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.TOKEN), sectorIdentifierUri},
369  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.TOKEN, ResponseType.ID_TOKEN), sectorIdentifierUri},
370  };
371  }
ID_TOKEN
Definition: ResponseType.java:47
CODE
Definition: ResponseType.java:39
TOKEN
Definition: ResponseType.java:43
Definition: ResponseType.java:34

◆ responseTypesTokenIdToken()

void org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.responseTypesTokenIdToken ( final String  redirectUris,
final String  userId,
final String  userSecret,
final String  redirectUri,
final String  sectorIdentifierUri 
) throws Exception
inline
456  {
457  showTitle("responseTypesTokenIdToken");
458 
459  List<ResponseType> responseTypes = Arrays.asList(
462 
463  // 1. Register client
464  RegisterRequest registerRequest = new RegisterRequest(ApplicationType.WEB, "oxAuth test app",
465  StringUtils.spaceSeparatedToList(redirectUris));
466  registerRequest.setResponseTypes(responseTypes);
467  registerRequest.setSectorIdentifierUri(sectorIdentifierUri);
468 
469  RegisterClient registerClient = new RegisterClient(registrationEndpoint);
470  registerClient.setRequest(registerRequest);
471  RegisterResponse registerResponse = registerClient.exec();
472 
473  showClient(registerClient);
474  assertEquals(registerResponse.getStatus(), 200, "Unexpected response code: " + registerResponse.getEntity());
475  assertNotNull(registerResponse.getClientId());
476  assertNotNull(registerResponse.getClientSecret());
477  assertNotNull(registerResponse.getRegistrationAccessToken());
478  assertNotNull(registerResponse.getClientIdIssuedAt());
479  assertNotNull(registerResponse.getClientSecretExpiresAt());
480 
481  String clientId = registerResponse.getClientId();
482  String registrationAccessToken = registerResponse.getRegistrationAccessToken();
483  String registrationClientUri = registerResponse.getRegistrationClientUri();
484 
485  // 2. Client read
486  RegisterRequest readClientRequest = new RegisterRequest(registrationAccessToken);
487 
488  RegisterClient readClient = new RegisterClient(registrationClientUri);
489  readClient.setRequest(readClientRequest);
490  RegisterResponse readClientResponse = readClient.exec();
491 
492  showClient(readClient);
493  assertEquals(readClientResponse.getStatus(), 200, "Unexpected response code: " + readClientResponse.getEntity());
494  assertNotNull(readClientResponse.getClientId());
495  assertNotNull(readClientResponse.getClientSecret());
496  assertNotNull(readClientResponse.getClientIdIssuedAt());
497  assertNotNull(readClientResponse.getClientSecretExpiresAt());
498 
499  assertNotNull(readClientResponse.getClaims().get(RESPONSE_TYPES.toString()));
500  assertNotNull(readClientResponse.getClaims().get(REDIRECT_URIS.toString()));
501  assertNotNull(readClientResponse.getClaims().get(APPLICATION_TYPE.toString()));
502  assertNotNull(readClientResponse.getClaims().get(CLIENT_NAME.toString()));
503  assertNotNull(readClientResponse.getClaims().get(ID_TOKEN_SIGNED_RESPONSE_ALG.toString()));
504  assertNotNull(readClientResponse.getClaims().get(SCOPE.toString()));
505 
506  // 3. Request authorization
507  List<String> scopes = Arrays.asList(
508  "openid",
509  "profile",
510  "address",
511  "email");
512  String nonce = UUID.randomUUID().toString();
513  String state = UUID.randomUUID().toString();
514 
515  AuthorizationRequest authorizationRequest = new AuthorizationRequest(
516  responseTypes, clientId, scopes, redirectUri, nonce);
517  authorizationRequest.setState(state);
518 
520  authorizationEndpoint, authorizationRequest, userId, userSecret);
521 
522  assertNotNull(authorizationResponse.getLocation(), "The location is null");
523  assertNull(authorizationResponse.getCode(), "The authorization code is null");
524  assertNotNull(authorizationResponse.getAccessToken(), "The access token is null");
525  assertNotNull(authorizationResponse.getIdToken(), "The id token is null");
526  assertNotNull(authorizationResponse.getState(), "The state is null");
527  assertNotNull(authorizationResponse.getScope(), "The scope is null");
528 
529  String accessToken = authorizationResponse.getAccessToken();
530  String idToken = authorizationResponse.getIdToken();
531 
532  // 4. Validate code and id_token
533  Jwt jwt = Jwt.parse(idToken);
534  assertNotNull(jwt.getHeader().getClaimAsString(JwtHeaderName.TYPE));
535  assertNotNull(jwt.getHeader().getClaimAsString(JwtHeaderName.ALGORITHM));
536  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.ISSUER));
537  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.AUDIENCE));
538  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.EXPIRATION_TIME));
539  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.ISSUED_AT));
540  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.SUBJECT_IDENTIFIER));
541  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.ACCESS_TOKEN_HASH));
542  assertNotNull(jwt.getClaims().getClaimAsString(JwtClaimName.AUTHENTICATION_TIME));
543 
545  jwksUri,
546  jwt.getHeader().getClaimAsString(JwtHeaderName.KEY_ID));
547  RSASigner rsaSigner = new RSASigner(SignatureAlgorithm.RS256, publicKey);
548 
549  assertTrue(rsaSigner.validate(jwt));
550  assertTrue(rsaSigner.validateAccessToken(accessToken, jwt));
551  }
ID_TOKEN
Definition: ResponseType.java:47
String registrationEndpoint
Definition: BaseTest.java:81
Definition: RegisterClient.java:34
String getIdToken()
Definition: AuthorizationResponse.java:295
String getClaimAsString(String key)
Definition: JwtClaimSet.java:55
String getRegistrationClientUri()
Definition: RegisterResponse.java:181
String jwksUri
Definition: BaseTest.java:80
String getCode()
Definition: AuthorizationResponse.java:167
Definition: RegisterResponse.java:34
String getState()
Definition: AuthorizationResponse.java:314
void setSectorIdentifierUri(String sectorIdentifierUri)
Definition: RegisterRequest.java:504
Map< String, String > getClaims()
Definition: RegisterResponse.java:237
Definition: SignatureAlgorithm.java:20
static void showClient(BaseClient client)
Definition: BaseTest.java:775
JwtClaims getClaims()
Definition: JsonWebResponse.java:41
Date getClientSecretExpiresAt()
Definition: RegisterResponse.java:205
RegisterResponse exec()
Definition: RegisterClient.java:76
String getClientSecret()
Definition: RegisterResponse.java:160
WEB
Definition: ApplicationType.java:28
RS256
Definition: SignatureAlgorithm.java:26
Definition: JwkClient.java:29
String getClientId()
Definition: RegisterResponse.java:142
void showTitle(String title)
Definition: BaseTest.java:761
Definition: Jwt.java:24
void setRequest(T request)
Definition: BaseClient.java:68
Definition: AuthorizationResponse.java:32
void setResponseTypes(List< ResponseType > responseTypes)
Definition: RegisterRequest.java:272
Definition: RegisterRequest.java:37
String getScope()
Definition: AuthorizationResponse.java:277
static RSAPublicKey getRSAPublicKey(String jwkSetUri, String keyId)
Definition: JwkClient.java:94
JwtHeader getHeader()
Definition: JsonWebResponse.java:33
TOKEN
Definition: ResponseType.java:43
String getLocation()
Definition: BaseResponse.java:58
Definition: AuthorizationRequest.java:33
Definition: ApplicationType.java:12
Definition: ResponseType.java:34
void setState(String state)
Definition: AuthorizationRequest.java:217
Date getClientIdIssuedAt()
Definition: RegisterResponse.java:189
String authorizationEndpoint
Definition: BaseTest.java:72
static Jwt parse(String encodedJwt)
Definition: Jwt.java:54
AuthorizationResponse authenticateResourceOwnerAndGrantAccess(String authorizeUrl, AuthorizationRequest authorizationRequest, String userId, String userSecret)
Definition: BaseTest.java:252
String getAccessToken()
Definition: AuthorizationResponse.java:185
String getRegistrationAccessToken()
Definition: RegisterResponse.java:173

◆ responseTypesTokenIdTokenFail()

void org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.responseTypesTokenIdTokenFail ( final String  redirectUris,
final String  redirectUri,
final String  userId,
final String  userSecret,
final List< ResponseType responseTypes,
final String  sectorIdentifierUri 
) throws Exception
inline
572  {
573  showTitle("responseTypesTokenIdTokenFail");
574 
575  // 1. Register client
576  RegisterRequest registerRequest = new RegisterRequest(ApplicationType.WEB, "oxAuth test app",
577  StringUtils.spaceSeparatedToList(redirectUris));
578  registerRequest.setResponseTypes(Arrays.asList(
581  registerRequest.setSectorIdentifierUri(sectorIdentifierUri);
582 
583  RegisterClient registerClient = new RegisterClient(registrationEndpoint);
584  registerClient.setRequest(registerRequest);
585  RegisterResponse registerResponse = registerClient.exec();
586 
587  showClient(registerClient);
588  assertEquals(registerResponse.getStatus(), 200, "Unexpected response code: " + registerResponse.getEntity());
589  assertNotNull(registerResponse.getClientId());
590  assertNotNull(registerResponse.getClientSecret());
591  assertNotNull(registerResponse.getRegistrationAccessToken());
592  assertNotNull(registerResponse.getClientIdIssuedAt());
593  assertNotNull(registerResponse.getClientSecretExpiresAt());
594 
595  String clientId = registerResponse.getClientId();
596  String registrationAccessToken = registerResponse.getRegistrationAccessToken();
597  String registrationClientUri = registerResponse.getRegistrationClientUri();
598 
599  // 2. Client read
600  RegisterRequest readClientRequest = new RegisterRequest(registrationAccessToken);
601 
602  RegisterClient readClient = new RegisterClient(registrationClientUri);
603  readClient.setRequest(readClientRequest);
604  RegisterResponse readClientResponse = readClient.exec();
605 
606  showClient(readClient);
607  assertEquals(readClientResponse.getStatus(), 200, "Unexpected response code: " + readClientResponse.getEntity());
608  assertNotNull(readClientResponse.getClientId());
609  assertNotNull(readClientResponse.getClientSecret());
610  assertNotNull(readClientResponse.getClientIdIssuedAt());
611  assertNotNull(readClientResponse.getClientSecretExpiresAt());
612 
613  assertNotNull(readClientResponse.getClaims().get(RESPONSE_TYPES.toString()));
614  assertNotNull(readClientResponse.getClaims().get(REDIRECT_URIS.toString()));
615  assertNotNull(readClientResponse.getClaims().get(APPLICATION_TYPE.toString()));
616  assertNotNull(readClientResponse.getClaims().get(CLIENT_NAME.toString()));
617  assertNotNull(readClientResponse.getClaims().get(ID_TOKEN_SIGNED_RESPONSE_ALG.toString()));
618  assertNotNull(readClientResponse.getClaims().get(SCOPE.toString()));
619 
620  // 3. Request authorization
621  List<String> scopes = Arrays.asList(
622  "openid",
623  "profile",
624  "address",
625  "email");
626  String nonce = UUID.randomUUID().toString();
627  String state = UUID.randomUUID().toString();
628 
629  AuthorizationRequest authorizationRequest = new AuthorizationRequest(
630  responseTypes, clientId, scopes, redirectUri, nonce);
631  authorizationRequest.setState(state);
632  authorizationRequest.setAuthUsername(userId);
633  authorizationRequest.setAuthPassword(userSecret);
634  authorizationRequest.getPrompts().add(Prompt.NONE);
635 
637  authorizeClient.setRequest(authorizationRequest);
638  AuthorizationResponse authorizationResponse = authorizeClient.exec();
639 
640  showClient(authorizeClient);
641  assertTrue(authorizationResponse.getStatus() == 302
642  || authorizationResponse.getStatus() == 400, "Unexpected response code: " + authorizationResponse.getStatus());
643  assertNotNull(authorizationResponse.getErrorType(), "The error type is null");
644  assertNotNull(authorizationResponse.getErrorDescription(), "The error description is null");
645  }
ID_TOKEN
Definition: ResponseType.java:47
String registrationEndpoint
Definition: BaseTest.java:81
Definition: RegisterClient.java:34
String getRegistrationClientUri()
Definition: RegisterResponse.java:181
void setAuthUsername(String authUsername)
Definition: BaseRequest.java:62
Definition: RegisterResponse.java:34
List< Prompt > getPrompts()
Definition: AuthorizationRequest.java:275
AuthorizationResponse exec()
Definition: AuthorizeClient.java:167
void setSectorIdentifierUri(String sectorIdentifierUri)
Definition: RegisterRequest.java:504
Map< String, String > getClaims()
Definition: RegisterResponse.java:237
static void showClient(BaseClient client)
Definition: BaseTest.java:775
Date getClientSecretExpiresAt()
Definition: RegisterResponse.java:205
RegisterResponse exec()
Definition: RegisterClient.java:76
void setAuthPassword(String authPassword)
Definition: BaseRequest.java:70
Definition: AuthorizeClient.java:29
String getClientSecret()
Definition: RegisterResponse.java:160
WEB
Definition: ApplicationType.java:28
NONE
Definition: Prompt.java:27
AuthorizeErrorResponseType getErrorType()
Definition: AuthorizationResponse.java:334
String getClientId()
Definition: RegisterResponse.java:142
void showTitle(String title)
Definition: BaseTest.java:761
void setRequest(T request)
Definition: BaseClient.java:68
Definition: AuthorizationResponse.java:32
void setResponseTypes(List< ResponseType > responseTypes)
Definition: RegisterRequest.java:272
Definition: RegisterRequest.java:37
Definition: Prompt.java:18
TOKEN
Definition: ResponseType.java:43
int getStatus()
Definition: BaseResponse.java:49
Definition: AuthorizationRequest.java:33
Definition: ApplicationType.java:12
Definition: ResponseType.java:34
void setState(String state)
Definition: AuthorizationRequest.java:217
Date getClientIdIssuedAt()
Definition: RegisterResponse.java:189
String authorizationEndpoint
Definition: BaseTest.java:72
String getErrorDescription()
Definition: AuthorizationResponse.java:355
String getRegistrationAccessToken()
Definition: RegisterResponse.java:173

◆ responseTypesTokenIdTokenFailDataProvider()

Object [][] org.xdi.oxauth.ws.rs.ResponseTypesRestrictionHttpTest.responseTypesTokenIdTokenFailDataProvider ( ITestContext  context)
inline
554  {
555  String redirectUris = context.getCurrentXmlTest().getParameter("redirectUris");
556  String redirectUri = context.getCurrentXmlTest().getParameter("redirectUri");
557  String userId = context.getCurrentXmlTest().getParameter("userId");
558  String userSecret = context.getCurrentXmlTest().getParameter("userSecret");
559  String sectorIdentifierUri = context.getCurrentXmlTest().getParameter("sectorIdentifierUri");
560 
561  return new Object[][]{
562  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE), sectorIdentifierUri},
563  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.ID_TOKEN), sectorIdentifierUri},
564  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.TOKEN), sectorIdentifierUri},
565  {redirectUris, redirectUri, userId, userSecret, Arrays.asList(ResponseType.CODE, ResponseType.TOKEN, ResponseType.ID_TOKEN), sectorIdentifierUri},
566  };
567  }
ID_TOKEN
Definition: ResponseType.java:47
CODE
Definition: ResponseType.java:39
TOKEN
Definition: ResponseType.java:43
Definition: ResponseType.java:34

◆ setAuthorizationEndpoint()

void org.xdi.oxauth.BaseTest.setAuthorizationEndpoint ( String  authorizationEndpoint)
inlineinherited
138  {
140  }
String authorizationEndpoint
Definition: BaseTest.java:72

◆ setCheckSessionIFrame()

void org.xdi.oxauth.BaseTest.setCheckSessionIFrame ( String  checkSessionIFrame)
inlineinherited
170  {
172  }
String checkSessionIFrame
Definition: BaseTest.java:78

◆ setClientInfoEndpoint()

void org.xdi.oxauth.BaseTest.setClientInfoEndpoint ( String  clientInfoEndpoint)
inlineinherited
162  {
164  }
String clientInfoEndpoint
Definition: BaseTest.java:77

◆ setConfigurationEndpoint()

void org.xdi.oxauth.BaseTest.setConfigurationEndpoint ( String  configurationEndpoint)
inlineinherited
226  {
228  }
String configurationEndpoint
Definition: BaseTest.java:82

◆ setDriver()

void org.xdi.oxauth.BaseTest.setDriver ( WebDriver  driver)
inlineinherited
130  {
131  this.driver = driver;
132  }
WebDriver driver
Definition: BaseTest.java:70

◆ setEndSessionEndpoint()

void org.xdi.oxauth.BaseTest.setEndSessionEndpoint ( String  endSessionEndpoint)
inlineinherited
178  {
180  }
String endSessionEndpoint
Definition: BaseTest.java:79

◆ setIdGenEndpoint()

void org.xdi.oxauth.BaseTest.setIdGenEndpoint ( String  p_idGenEndpoint)
inlineinherited
218  {
219  idGenEndpoint = p_idGenEndpoint;
220  }
String idGenEndpoint
Definition: BaseTest.java:83

◆ setIntrospectionEndpoint()

void org.xdi.oxauth.BaseTest.setIntrospectionEndpoint ( String  p_introspectionEndpoint)
inlineinherited
202  {
203  introspectionEndpoint = p_introspectionEndpoint;
204  }
String introspectionEndpoint
Definition: BaseTest.java:84

◆ setJwksUri()

void org.xdi.oxauth.BaseTest.setJwksUri ( String  jwksUri)
inlineinherited
186  {
187  this.jwksUri = jwksUri;
188  }
String jwksUri
Definition: BaseTest.java:80

◆ setRegistrationEndpoint()

void org.xdi.oxauth.BaseTest.setRegistrationEndpoint ( String  registrationEndpoint)
inlineinherited
194  {
196  }
String registrationEndpoint
Definition: BaseTest.java:81

◆ setScopeToClaimsMapping()

void org.xdi.oxauth.BaseTest.setScopeToClaimsMapping ( Map< String, List< String >>  p_scopeToClaimsMapping)
inlineinherited
210  {
211  scopeToClaimsMapping = p_scopeToClaimsMapping;
212  }
Map< String, List< String > > scopeToClaimsMapping
Definition: BaseTest.java:85

◆ setTokenEndpoint()

void org.xdi.oxauth.BaseTest.setTokenEndpoint ( String  tokenEndpoint)
inlineinherited
146  {
148  }
String tokenEndpoint
Definition: BaseTest.java:75

◆ setUserInfoEndpoint()

void org.xdi.oxauth.BaseTest.setUserInfoEndpoint ( String  userInfoEndpoint)
inlineinherited
154  {
156  }
String userInfoEndpoint
Definition: BaseTest.java:76

◆ showClient() [1/2]

static void org.xdi.oxauth.BaseTest.showClient ( BaseClient  client)
inlinestaticinherited
775  {
776  ClientUtils.showClient(client);
777  }
Definition: ClientUtils.java:17
static void showClient(BaseClient client)
Definition: ClientUtils.java:21

◆ showClient() [2/2]

static void org.xdi.oxauth.BaseTest.showClient ( BaseClient  client,
CookieStore  cookieStore 
)
inlinestaticinherited
779  {
780  ClientUtils.showClient(client, cookieStore);
781  }
Definition: ClientUtils.java:17
static void showClient(BaseClient client)
Definition: ClientUtils.java:21

◆ showClientUserAgent()

static void org.xdi.oxauth.BaseTest.showClientUserAgent ( BaseClient  client)
inlinestaticinherited
783  {
785  }
Definition: ClientUtils.java:17
static void showClientUserAgent(BaseClient client)
Definition: ClientUtils.java:35

◆ showEntity()

void org.xdi.oxauth.BaseTest.showEntity ( String  entity)
inlineinherited
769  {
770  if (entity != null) {
771  System.out.println("Entity: " + entity.replace("\\n", "\n"));
772  }
773  }

◆ showResponse() [1/2]

void org.xdi.oxauth.BaseTest.showResponse ( String  title,
Response  response 
)
inlineinherited
30  {
31  showResponse(title, response, null);
32  }
void showResponse(String title, Response response)
Definition: BaseTest.java:30

◆ showResponse() [2/2]

static void org.xdi.oxauth.BaseTest.showResponse ( String  title,
Response  response,
Object  entity 
)
inlinestaticinherited
34  {
35  System.out.println(" ");
36  System.out.println("RESPONSE FOR: " + title);
37  System.out.println(response.getStatus());
38  for (Entry<String, List<Object>> headers : response.getHeaders().entrySet()) {
39  String headerName = headers.getKey();
40  System.out.println(headerName + ": " + headers.getValue());
41  }
42 
43  if (entity != null) {
44  System.out.println(entity.toString().replace("\\n", "\n"));
45  }
46  System.out.println(" ");
47  System.out.println("Status message: " + response.getStatus());
48  }

◆ showTitle() [1/2]

void org.xdi.oxauth.BaseTest.showTitle ( String  title)
inlineinherited
22  {
23  title = "TEST: " + title;
24 
25  System.out.println("#######################################################");
26  System.out.println(title);
27  System.out.println("#######################################################");
28  }

◆ showTitle() [2/2]

void org.xdi.oxauth.BaseTest.showTitle ( String  title)
inlineinherited
761  {
762  title = "TEST: " + title;
763 
764  System.out.println("#######################################################");
765  System.out.println(title);
766  System.out.println("#######################################################");
767  }

◆ startSelenium()

void org.xdi.oxauth.BaseTest.startSelenium ( )
inlineinherited
230  {
231  //System.setProperty("webdriver.chrome.driver", "/Users/JAVIER/tmp/chromedriver");
232  //driver = new ChromeDriver();
233 
234  //driver = new SafariDriver();
235 
236  //driver = new FirefoxDriver();
237 
238  //driver = new InternetExplorerDriver();
239 
240  driver = new HtmlUnitDriver(true);
241  }
WebDriver driver
Definition: BaseTest.java:70

◆ stopSelenium()

void org.xdi.oxauth.BaseTest.stopSelenium ( )
inlineinherited
243  {
244 // driver.close();
245  driver.quit();
246  }
WebDriver driver
Definition: BaseTest.java:70

◆ waitForResourceOwnerAndGrantLoginForm() [1/2]

String org.xdi.oxauth.BaseTest.waitForResourceOwnerAndGrantLoginForm ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest,
boolean  cleanupCookies 
)
inlineinherited

Try to open login form (via the user-agent)

617  {
618  String authorizationRequestUrl = authorizeUrl + "?" + authorizationRequest.getQueryString();
619 
620  AuthorizeClient authorizeClient = new AuthorizeClient(authorizeUrl);
621  authorizeClient.setRequest(authorizationRequest);
622 
623  System.out.println("waitForResourceOwnerAndGrantLoginForm: authorizationRequestUrl:" + authorizationRequestUrl);
624  startSelenium();
625  if (cleanupCookies) {
626  System.out.println("waitForResourceOwnerAndGrantLoginForm: Cleaning cookies");
628  }
629  driver.navigate().to(authorizationRequestUrl);
630 
631  WebElement usernameElement = driver.findElement(By.name(loginFormUsername));
632  WebElement passwordElement = driver.findElement(By.name(loginFormPassword));
633  WebElement loginButton = driver.findElement(By.name(loginFormLoginButton));
634 
635  if ((usernameElement == null) || (passwordElement == null) || (loginButton == null)) {
636  return null;
637  }
638 
639  Cookie sessionStateCookie = driver.manage().getCookieNamed("session_state");
640  String sessionState = null;
641  if (sessionStateCookie != null) {
642  sessionState = sessionStateCookie.getValue();
643  }
644  System.out.println("waitForResourceOwnerAndGrantLoginForm: sessionState:" + sessionState);
645 
646  stopSelenium();
647 
648  showClientUserAgent(authorizeClient);
649 
650  return sessionState;
651  }
String loginFormUsername
Definition: BaseTest.java:88
String loginFormPassword
Definition: BaseTest.java:89
void deleteAllCookies()
Definition: BaseTest.java:661
void stopSelenium()
Definition: BaseTest.java:243
Definition: AuthorizeClient.java:29
void startSelenium()
Definition: BaseTest.java:230
String loginFormLoginButton
Definition: BaseTest.java:90
void setRequest(T request)
Definition: BaseClient.java:68
WebDriver driver
Definition: BaseTest.java:70
String getQueryString()
Definition: AuthorizationRequest.java:486
static void showClientUserAgent(BaseClient client)
Definition: BaseTest.java:783

◆ waitForResourceOwnerAndGrantLoginForm() [2/2]

String org.xdi.oxauth.BaseTest.waitForResourceOwnerAndGrantLoginForm ( String  authorizeUrl,
AuthorizationRequest  authorizationRequest 
)
inlineinherited

Try to open login form (via the user-agent)

657  {
658  return waitForResourceOwnerAndGrantLoginForm(authorizeUrl, authorizationRequest, true);
659  }
String waitForResourceOwnerAndGrantLoginForm(String authorizeUrl, AuthorizationRequest authorizationRequest, boolean cleanupCookies)
Definition: BaseTest.java:616

メンバ詳解

◆ authorizationEndpoint

String org.xdi.oxauth.BaseTest.authorizationEndpoint
protectedinherited

◆ authorizationPageEndpoint

String org.xdi.oxauth.BaseTest.authorizationPageEndpoint
protectedinherited

◆ checkSessionIFrame

String org.xdi.oxauth.BaseTest.checkSessionIFrame
protectedinherited

◆ clientInfoEndpoint

String org.xdi.oxauth.BaseTest.clientInfoEndpoint
protectedinherited

◆ configurationEndpoint

String org.xdi.oxauth.BaseTest.configurationEndpoint
protectedinherited

◆ driver

WebDriver org.xdi.oxauth.BaseTest.driver
protectedinherited

◆ endSessionEndpoint

String org.xdi.oxauth.BaseTest.endSessionEndpoint
protectedinherited

◆ gluuConfigurationEndpoint

String org.xdi.oxauth.BaseTest.gluuConfigurationEndpoint
protectedinherited

◆ idGenEndpoint

String org.xdi.oxauth.BaseTest.idGenEndpoint
protectedinherited

◆ introspectionEndpoint

String org.xdi.oxauth.BaseTest.introspectionEndpoint
protectedinherited

◆ jwksUri

String org.xdi.oxauth.BaseTest.jwksUri
protectedinherited

◆ registrationEndpoint

String org.xdi.oxauth.BaseTest.registrationEndpoint
protectedinherited

◆ scopeToClaimsMapping

Map<String, List<String> > org.xdi.oxauth.BaseTest.scopeToClaimsMapping
protectedinherited

◆ testData

FileConfiguration org.xdi.oxauth.ConfigurableTest.testData
staticinherited

◆ tokenEndpoint

String org.xdi.oxauth.BaseTest.tokenEndpoint
protectedinherited

◆ userInfoEndpoint

String org.xdi.oxauth.BaseTest.userInfoEndpoint
protectedinherited

このクラス詳解は次のファイルから抽出されました: