FailedConsole Output

Skipping 1,271 KB.. Full Log
SjVmdyIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6Il9NclNFQVJJQzA1UEJQblBCY19BQ2tsWTRYc1FfNlgtYjFkLWRxVkpybUUifQ.KOQrEw0bXKpHLD0LDmFtFbQA--6IsmewFNnxHbdF_B6EMmWHsEYFeKTOGEoDHpkz-v4c8maLBbZKZE-sVEcxFOL4WmOM2Nay5XCynUFbXdsLsBVNNKaEcaDmRDnnLxpHsmLVq4e_v7o8tQBflwxm0Flnm583P8T4WPD1lqAiTy_kAYGIdXn4_wZ46nPtKGD4CNldW9kI-QV2SjecmEbQf19ghBcQgqU1wGDpJf0SvXE_BllgiWEM5oseIv5YMp56dentKFwEkC4ryL-doN_kUpkB48lX3KGYzgSmVY0Q-c26tYODOYm1S_WYZppclzQk2aXz7McwqcgaLQocWlgoIw"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxMzE4Ny5DRkVELjZCQzUuMzQwMjphMTY0MjZkZi04YTdiLTRiOTgtYjk5Yi05ZTYwNzZkODg3ZTg=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=b50ec7bd-e737-46e9-bac0-caad5b704669

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:14 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"1ba8c29b-7e00-4dc3-b8fc-e64aa0f6babe","token_type":"bearer","expires_in":299,"refresh_token":"91829ce4-629c-4938-98f5-77550ee70d5a","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 1ba8c29b-7e00-4dc3-b8fc-e64aa0f6babe

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:14 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"_MrSEARIC05PBPnPBc_ACklY4XsQ_6X-b1d-dqVJrmE","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["code"],
    "grant_types": ["client_credentials"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1448
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:14 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!CD47.A3B8.E7B1.F0CD",
    "client_secret": "d900ba6a-eb23-4089-b564-aed205221b7a",
    "registration_access_token": "59a3e5a6-930c-4e24-a163-1f7498c9cfc3",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!CD47.A3B8.E7B1.F0CD",
    "client_id_issued_at": 1530862574,
    "client_secret_expires_at": 1530948974,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["code"],
    "grant_types": [
        "client_credentials",
        "refresh_token",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["code"],
    "grant_types": ["client_credentials"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1448
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:14 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!FAFB.4CEF.534E.502D",
    "client_secret": "0b95a4ec-8a67-483e-839f-4234f805fbd0",
    "registration_access_token": "f8427e37-da3f-439e-98d8-c8053bd4ccc8",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!FAFB.4CEF.534E.502D",
    "client_id_issued_at": 1530862574,
    "client_secret_expires_at": 1530948974,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["code"],
    "grant_types": [
        "client_credentials",
        "refresh_token",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21CD47.A3B8.E7B1.F0CD&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=eee46c5b-c13f-42af-9be4-98ce596b550f&nonce=98f3b43e-567d-45ab-965f-66baf3d04cf8
03:36:36.961 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:850a9a3c-7def-44e7-982a-3520c8985f9c
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21CD47.A3B8.E7B1.F0CD&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=eee46c5b-c13f-42af-9be4-98ce596b550f&nonce=98f3b43e-567d-45ab-965f-66baf3d04cf8

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm?code=0557b491-2e6d-463b-b091-d751a51f9509&scope=address+openid+user_name+profile+email&session_id=5f51fb85-526b-415e-9a4f-1a9c3be03578&state=eee46c5b-c13f-42af-9be4-98ce596b550f&session_state=850a9a3c-7def-44e7-982a-3520c8985f9c

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQ0Q0Ny5BM0I4LkU3QjEuRjBDRDpkOTAwYmE2YS1lYjIzLTQwODktYjU2NC1hZWQyMDUyMjFiN2E=

grant_type=authorization_code&code=0557b491-2e6d-463b-b091-d751a51f9509&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1057
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:16 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"17b77234-92a8-4855-9dd4-c18d7eed8cd4","token_type":"bearer","expires_in":299,"refresh_token":"0d870571-69d1-4c61-b4e4-290cca4dc925","id_token":"eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFDRDQ3LkEzQjguRTdCMS5GMENEIiwiZXhwIjoxNTMwODY2MTc2LCJpYXQiOjE1MzA4NjI1NzYsIm5vbmNlIjoiOThmM2I0M2UtNTY3ZC00NWFiLTk2NWYtNjZiYWYzZDA0Y2Y4IiwiYXV0aF90aW1lIjoxNTMwODYyNTc2LCJhdF9oYXNoIjoiRmNVbnl6R1R1RVF1ZmMwUkMyVFRhdyIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6IjJPdVBoMXZoU0ZSQjRuR3RsaGg3QmtwNnk3eUkzcDVUWGZPUGhsOHJ1WEEifQ.pbyllKfyAt7s_-jge7H6_m25gsX61BSP9OSkxNDcC5aK0IIyaQV6aYJ7qvPZ1MTxzfUt8CINRlzBJpd3k-23mmL8B3wN7Bh2r9iMshw1zSFKGlxbjcnmWk-UwGwP_hUMsXVA0HfHhwgj2B-Xg5fZaL6JCcmFgrc7ER3ekFqgNG_Ng2etHOSi3SLDoa-v9kOr1fZMnPiaAs7iEEcEc58NZJWtylfWRyegBTuEqvboJhJulGXAD4Ykcd3vGU0hTFF-WooBM6u1QNeKmt7BEJVgaSyn_Upz2xkk3z-ZVMDRLwtNVipB4WXgAx0tIdcQ_EgAgrUBROdjYIe3N0mK5nDf_A"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQ0Q0Ny5BM0I4LkU3QjEuRjBDRDpkOTAwYmE2YS1lYjIzLTQwODktYjU2NC1hZWQyMDUyMjFiN2E=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=0d870571-69d1-4c61-b4e4-290cca4dc925

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:16 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"73f2ee1f-26a4-45a7-88a9-726c0fcfb96f","token_type":"bearer","expires_in":299,"refresh_token":"1a1c179b-228c-4f0b-a586-365a74431ce3","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 73f2ee1f-26a4-45a7-88a9-726c0fcfb96f

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:16 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"2OuPh1vhSFRB4nGtlhh7Bkp6y7yI3p5TXfOPhl8ruXA","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["code"],
    "grant_types": ["urn:ietf:params:oauth:grant-type:uma-ticket"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1473
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:17 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!E180.7D93.D176.39F1",
    "client_secret": "8c57d5f7-b311-4b91-b4fa-866652a1dacb",
    "registration_access_token": "4d723d7a-9ab8-43eb-84a0-7318a7c8d9f3",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!E180.7D93.D176.39F1",
    "client_id_issued_at": 1530862577,
    "client_secret_expires_at": 1530948977,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["code"],
    "grant_types": [
        "urn:ietf:params:oauth:grant-type:uma-ticket",
        "refresh_token",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["code"],
    "grant_types": ["urn:ietf:params:oauth:grant-type:uma-ticket"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1473
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:17 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!6602.D21B.0C2D.9090",
    "client_secret": "141f10c7-ad7f-42a0-a21b-26b5f8155807",
    "registration_access_token": "e4e4c614-a198-44c4-a500-d245ee538d06",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!6602.D21B.0C2D.9090",
    "client_id_issued_at": 1530862577,
    "client_secret_expires_at": 1530948977,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["code"],
    "grant_types": [
        "urn:ietf:params:oauth:grant-type:uma-ticket",
        "refresh_token",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21E180.7D93.D176.39F1&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=8c0882f8-d863-41ce-9fd0-554edf00534d&nonce=a4d5e64c-7dad-4c79-88c0-0d0290df6dcc
03:36:39.422 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:64f6764e-835b-4837-9779-6d14c9464136
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21E180.7D93.D176.39F1&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=8c0882f8-d863-41ce-9fd0-554edf00534d&nonce=a4d5e64c-7dad-4c79-88c0-0d0290df6dcc

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm?code=048d7a54-50a0-4263-8237-035a3d46d1f1&scope=address+openid+user_name+profile+email&session_id=4ca50dc3-74fb-4bad-ac0a-870eabb691f3&state=8c0882f8-d863-41ce-9fd0-554edf00534d&session_state=64f6764e-835b-4837-9779-6d14c9464136

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxRTE4MC43RDkzLkQxNzYuMzlGMTo4YzU3ZDVmNy1iMzExLTRiOTEtYjRmYS04NjY2NTJhMWRhY2I=

grant_type=authorization_code&code=048d7a54-50a0-4263-8237-035a3d46d1f1&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1057
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:18 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"27818aa2-e588-4a4d-bc2a-a6c44762a091","token_type":"bearer","expires_in":299,"refresh_token":"920fe604-cdc2-4149-8fb3-39667d2fcc6c","id_token":"eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFFMTgwLjdEOTMuRDE3Ni4zOUYxIiwiZXhwIjoxNTMwODY2MTc4LCJpYXQiOjE1MzA4NjI1NzgsIm5vbmNlIjoiYTRkNWU2NGMtN2RhZC00Yzc5LTg4YzAtMGQwMjkwZGY2ZGNjIiwiYXV0aF90aW1lIjoxNTMwODYyNTc4LCJhdF9oYXNoIjoidFppUDZKb1YxbEYtRFFkV093X1c4ZyIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6IkV1ck9jbkpydENkX1diYTZ5c21UbjBUYmhvdUtHRXJoNERBREtIS29Tb0EifQ.G_47FQR9MqCI3U3Xts6HtICNvTZh73qK7Uv8G_RZX7DX9xV8vNDmQfSPuAyRG2PdoryyIatY8s2qS7yTGb1dru6UHwhW1NsY5nilseSaGE_OBJlmVxg7qKo-IJy8AJuuFlTeffaSlf8l7NV1yqj881iFMMS_5smSTzHZ3umPEVG2DFXIp4SsKbevYcaYXjhK5o_FbQ6kgfEMZPsnnql2eyjuMGNMXXFwcp79xEh-Hx1XIHJeVTw7axPHpe_U4ai9dBo_QdCk0RM05FaXFMsetoJUVCeSbHY2C1BTHsITtMHQRJ_4pbYxvWVOLXwHS8jINTaTNSq6xZcwUzwWdnmCGg"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxRTE4MC43RDkzLkQxNzYuMzlGMTo4YzU3ZDVmNy1iMzExLTRiOTEtYjRmYS04NjY2NTJhMWRhY2I=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=920fe604-cdc2-4149-8fb3-39667d2fcc6c

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:19 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"5cf55e11-2366-4867-ae5f-73acb2860178","token_type":"bearer","expires_in":299,"refresh_token":"9df51bde-6496-4187-a6ac-c9a03ca104a3","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 5cf55e11-2366-4867-ae5f-73acb2860178

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:19 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"EurOcnJrtCd_Wba6ysmTn0TbhouKGErh4DADKHKoSoA","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["authorization_code"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1469
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:19 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!B44C.0951.733D.5F78",
    "client_secret": "5963c274-d63f-4de2-ab3d-3cbb5e48cfde",
    "registration_access_token": "2f8f4868-fc5a-4b44-990b-927840690708",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!B44C.0951.733D.5F78",
    "client_id_issued_at": 1530862579,
    "client_secret_expires_at": 1530948979,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["authorization_code"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1469
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:19 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!543D.4A58.19B0.0864",
    "client_secret": "81341d64-8827-4892-bc72-9456e58b0c9f",
    "registration_access_token": "86163b1d-ddc6-432e-be6b-16ef04db905e",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!543D.4A58.19B0.0864",
    "client_id_issued_at": 1530862579,
    "client_secret_expires_at": 1530948979,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21B44C.0951.733D.5F78&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=6ad11332-5b64-437c-971b-b8a2c09c3607&nonce=fcc7c0f8-16f9-40f9-9910-863675e4e25c
03:36:41.677 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:49a6447e-0081-412c-914f-82d761b3b93c
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21B44C.0951.733D.5F78&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=6ad11332-5b64-437c-971b-b8a2c09c3607&nonce=fcc7c0f8-16f9-40f9-9910-863675e4e25c

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=e2f14e61-dd6b-4a2e-8f31-a29c1e29956d&code=1e70a9ea-3111-4331-b95f-1f1b8a74b762&scope=address+openid+user_name+profile+email&session_id=84a9af2b-6e5c-4875-a74a-3c7f10b4c746&state=6ad11332-5b64-437c-971b-b8a2c09c3607&token_type=bearer&session_state=49a6447e-0081-412c-914f-82d761b3b93c&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQjQ0Qy4wOTUxLjczM0QuNUY3ODo1OTYzYzI3NC1kNjNmLTRkZTItYWIzZC0zY2JiNWU0OGNmZGU=

grant_type=authorization_code&code=1e70a9ea-3111-4331-b95f-1f1b8a74b762&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1057
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:21 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"cbe39d8f-e8df-4cb1-914d-ffd4c2226da0","token_type":"bearer","expires_in":299,"refresh_token":"bfb40d26-aead-44f8-ab01-95629b621c03","id_token":"eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFCNDRDLjA5NTEuNzMzRC41Rjc4IiwiZXhwIjoxNTMwODY2MTgxLCJpYXQiOjE1MzA4NjI1ODEsIm5vbmNlIjoiZmNjN2MwZjgtMTZmOS00MGY5LTk5MTAtODYzNjc1ZTRlMjVjIiwiYXV0aF90aW1lIjoxNTMwODYyNTgwLCJhdF9oYXNoIjoiMWprdGlzY3NBd0lERFlCNDRVMUh6QSIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6Ik9pYTVsS0M5ZEJZb20teWdJeDBVSVFGdEs3QXhYQ3pNQ1RGUHZJNEp3TlUifQ.HMc9XyM31uHvY7xL-J24HOo5VMNV10ASTOSAhswfDAKLpY1aW_XsA4Um0B71zW8AUjPuWuMo2bPrhpbW57YE-OItbaGBQptwZTcn6wj76SkvbehN7WnRBauyapnSgy_GYEKXj21Qn5zURSbKk_gTLIgoSpzXlzarcWO2mZAccKwYf0qAGTV81lZHWn3LaamdaDPJpXap8agyaGKq2jg-medoH-akypea5t4iGC3epM2D_5wyjyWu8PUyJb5cZP39ZlGAXBx5XzjNOj2bjyOrejMHru4OW5KGnKQAgoMnUjzV4cqgnxKA3rG0SDHOT73nR2_KGmVCw4Ed2VpaczrVKA"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQjQ0Qy4wOTUxLjczM0QuNUY3ODo1OTYzYzI3NC1kNjNmLTRkZTItYWIzZC0zY2JiNWU0OGNmZGU=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=bfb40d26-aead-44f8-ab01-95629b621c03

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:21 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"c780fec5-17cc-48e6-8838-758d9f52be26","token_type":"bearer","expires_in":299,"refresh_token":"f6a2e475-3789-466a-b9b0-6fad740c508f","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer c780fec5-17cc-48e6-8838-758d9f52be26

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:21 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"Oia5lKC9dBYom-ygIx0UIQFtK7AxXCzMCTFPvI4JwNU","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1370
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:21 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!E4DC.6B71.7B8C.15A0",
    "client_secret": "ddbc9aeb-df2e-4549-8813-3a5ec77f8d2f",
    "registration_access_token": "bc4a96f5-890f-43ea-9d81-728fff27787f",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!E4DC.6B71.7B8C.15A0",
    "client_id_issued_at": 1530862581,
    "client_secret_expires_at": 1530948981,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1370
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:21 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!EF64.D5FB.745C.9C6B",
    "client_secret": "2cb5c887-d90c-440b-88a7-5140a641cb4d",
    "registration_access_token": "d258b5f7-0d25-4694-bd77-200f780502e7",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!EF64.D5FB.745C.9C6B",
    "client_id_issued_at": 1530862581,
    "client_secret_expires_at": 1530948981,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21E4DC.6B71.7B8C.15A0&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=ae7b153d-22e4-46f4-ab1c-2e0d912641b0&nonce=948adc99-5315-4a4f-8a1f-04c42bc64648
03:36:43.823 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:1ee89153-332a-4f1a-8ee3-26ed3f92abe4
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21E4DC.6B71.7B8C.15A0&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=ae7b153d-22e4-46f4-ab1c-2e0d912641b0&nonce=948adc99-5315-4a4f-8a1f-04c42bc64648

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=4c2e5cd6-1c26-4e0b-8cd9-6f2c75172c8f&scope=address+openid+user_name+profile+email&session_id=fa33608f-0ac3-46d2-a7d9-17f06c047c64&state=ae7b153d-22e4-46f4-ab1c-2e0d912641b0&token_type=bearer&session_state=1ee89153-332a-4f1a-8ee3-26ed3f92abe4&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 4c2e5cd6-1c26-4e0b-8cd9-6f2c75172c8f

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:22 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"CnPOgxKNhlz3qR7Gvvi9-at_JGJRTwhQKXangTBe6jQ","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": [
        "authorization_code",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1469
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:23 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!A142.249F.9145.A972",
    "client_secret": "daaa50ef-9531-4060-809f-511027dee46e",
    "registration_access_token": "968fe4da-34b8-417d-a69b-1ef25d051a8e",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!A142.249F.9145.A972",
    "client_id_issued_at": 1530862583,
    "client_secret_expires_at": 1530948983,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": [
        "authorization_code",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1469
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:23 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!17F3.E159.FDFF.AD3F",
    "client_secret": "b9ca05cd-a0a8-47d2-baae-8638f55df8b2",
    "registration_access_token": "354faddd-cedf-4481-923d-6a3214911c31",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!17F3.E159.FDFF.AD3F",
    "client_id_issued_at": 1530862583,
    "client_secret_expires_at": 1530948983,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21A142.249F.9145.A972&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=8d7274b6-8f74-4bf2-8150-4be57fa67fc8&nonce=1504788a-1d1e-494e-bef7-13b8efacdf34
03:36:45.332 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:e77937d2-86dd-4816-ab3c-21820ffc12a5
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21A142.249F.9145.A972&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=8d7274b6-8f74-4bf2-8150-4be57fa67fc8&nonce=1504788a-1d1e-494e-bef7-13b8efacdf34

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=9e584d8a-d6be-4db7-8adc-42ec196f1bf6&code=c09e52ac-3772-4357-bc8a-671f6ae58d91&scope=address+openid+user_name+profile+email&session_id=7e9abac1-0247-4146-84bd-47c5cb348796&state=8d7274b6-8f74-4bf2-8150-4be57fa67fc8&token_type=bearer&session_state=e77937d2-86dd-4816-ab3c-21820ffc12a5&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQTE0Mi4yNDlGLjkxNDUuQTk3MjpkYWFhNTBlZi05NTMxLTQwNjAtODA5Zi01MTEwMjdkZWU0NmU=

grant_type=authorization_code&code=c09e52ac-3772-4357-bc8a-671f6ae58d91&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1057
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:24 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"0643cbed-682c-4e13-906a-d04ed4d3a8b8","token_type":"bearer","expires_in":299,"refresh_token":"793c1bf6-ab8d-4cb3-ab4c-bfd3232b2867","id_token":"eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFBMTQyLjI0OUYuOTE0NS5BOTcyIiwiZXhwIjoxNTMwODY2MTg0LCJpYXQiOjE1MzA4NjI1ODQsIm5vbmNlIjoiMTUwNDc4OGEtMWQxZS00OTRlLWJlZjctMTNiOGVmYWNkZjM0IiwiYXV0aF90aW1lIjoxNTMwODYyNTg0LCJhdF9oYXNoIjoiT1RwbnlqMElxamJoYjQyRkY2b0RtUSIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6IlNpLTlybmZiUFhDcVhreEstOTR1cmU3RzFqNHZyT0hxeHhPUms1d0xrLW8ifQ.rg_wsQZ7Efov86-sZxJCAtgf2FiaMUgvfQxErjnXa2bwuyoSOS1GybXKeqxlTUSEld1mzmPr3nGKmEyKWTdJZMW2zli-DlmdQ593FmcWnMf8rSVkid0G8evuxZEbIUHiySeJDgRyFaQytBnTUqgoypjADJkDi_9PWdVqdL272EfQ-lScjMxHwIPgf5Zb6eADFlE-1zrnVQK6UtXDrwiqfxl5OYZAlifuYVqFThFkcZtw0ClHzMd2uUEzyBVjJDvs9OJp73hUkxvGm51sBa-R2EPQ8aA3IguUUD3aJ0AA_I-ag6cwffARygd0dJaoyPH6mXpzeDs8LiE0wcxC6NkoDA"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQTE0Mi4yNDlGLjkxNDUuQTk3MjpkYWFhNTBlZi05NTMxLTQwNjAtODA5Zi01MTEwMjdkZWU0NmU=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=793c1bf6-ab8d-4cb3-ab4c-bfd3232b2867

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:24 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"799fa6ef-f8c9-48cb-92af-18ffc3f5377b","token_type":"bearer","expires_in":299,"refresh_token":"783fe65b-db95-4c2a-9640-bcac22d2b246","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 799fa6ef-f8c9-48cb-92af-18ffc3f5377b

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:24 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"Si-9rnfbPXCqXkxK-94ure7G1j4vrOHqxxORk5wLk-o","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["refresh_token"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1409
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:24 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!5BC6.C3EF.6101.8773",
    "client_secret": "05879cca-e678-46e9-931a-e21ffccb996d",
    "registration_access_token": "4f033566-616e-4f87-8f70-873808e52b2e",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!5BC6.C3EF.6101.8773",
    "client_id_issued_at": 1530862584,
    "client_secret_expires_at": 1530948984,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "refresh_token",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["refresh_token"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1409
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:24 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!1B72.1CD9.34AC.DF0B",
    "client_secret": "a03053df-bb1f-489d-b732-e25e4ceea445",
    "registration_access_token": "8f1a2703-b129-4845-9a91-ab1f7e1294b6",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!1B72.1CD9.34AC.DF0B",
    "client_id_issued_at": 1530862584,
    "client_secret_expires_at": 1530948984,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "refresh_token",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%215BC6.C3EF.6101.8773&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=0d407495-466f-4499-ab82-9260c9717fa7&nonce=2ff71331-ab87-4025-a497-dae0de7c7213
03:36:47.023 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:4ac13c5c-1d29-4488-8253-8036b08ba0c3
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%215BC6.C3EF.6101.8773&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=0d407495-466f-4499-ab82-9260c9717fa7&nonce=2ff71331-ab87-4025-a497-dae0de7c7213

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=e8b0e66a-dfec-4ead-b0b6-19e850d1441b&scope=address+openid+user_name+profile+email&session_id=077dd37c-7c09-4f4e-903c-70a63041a844&state=0d407495-466f-4499-ab82-9260c9717fa7&token_type=bearer&session_state=4ac13c5c-1d29-4488-8253-8036b08ba0c3&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer e8b0e66a-dfec-4ead-b0b6-19e850d1441b

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:26 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"J_McKpZX9iRDAIam_hwp5O_4OB6LM2V8DWQxWtlvHgg","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["password"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1404
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:26 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!0387.018B.BFC3.B521",
    "client_secret": "72b4cfd6-03a6-4a21-b1fe-10d08abc1550",
    "registration_access_token": "81df3c92-1668-4440-86ef-7a588dae45e9",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!0387.018B.BFC3.B521",
    "client_id_issued_at": 1530862586,
    "client_secret_expires_at": 1530948986,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "implicit",
        "password"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["password"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1404
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:26 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!9062.CF48.8A18.B472",
    "client_secret": "6e0cd1b2-be52-4f45-a8df-5cf33667235b",
    "registration_access_token": "274985b6-aabf-49a1-85a9-7954c09289e6",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!9062.CF48.8A18.B472",
    "client_id_issued_at": 1530862586,
    "client_secret_expires_at": 1530948986,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "implicit",
        "password"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%210387.018B.BFC3.B521&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=176ba1fa-7477-47d9-b19d-3b9eb4d8a6f7&nonce=35883f7a-2b11-4e84-b2cf-6ecdf1348f71
03:36:48.727 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:307c609e-8c02-46e5-ba84-e1d3363257f1
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%210387.018B.BFC3.B521&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=176ba1fa-7477-47d9-b19d-3b9eb4d8a6f7&nonce=35883f7a-2b11-4e84-b2cf-6ecdf1348f71

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=a9791bac-c912-4c59-a8a8-87f760ae2faa&scope=address+openid+user_name+profile+email&session_id=a1b57821-0aea-4402-80fd-30a5e4127987&state=176ba1fa-7477-47d9-b19d-3b9eb4d8a6f7&token_type=bearer&session_state=307c609e-8c02-46e5-ba84-e1d3363257f1&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer a9791bac-c912-4c59-a8a8-87f760ae2faa

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:28 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"7tP7h5_BA3BteK3Cncy-_Z0DQLk6Z_1XrnAXyoj4f3s","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["client_credentials"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1414
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:28 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!C938.B590.088E.38C6",
    "client_secret": "dc7a9f13-7706-467c-ae09-7ef2f811af65",
    "registration_access_token": "a64f41c3-3678-4b4e-bab2-4b36fbe89c86",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!C938.B590.088E.38C6",
    "client_id_issued_at": 1530862588,
    "client_secret_expires_at": 1530948988,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "client_credentials",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["client_credentials"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1414
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:28 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!A3D4.5D68.5706.E8DD",
    "client_secret": "309f8168-d7ee-4495-9a51-cbc18080a1a4",
    "registration_access_token": "f34278d9-eb1f-4d48-9ea7-3d1129f8f121",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!A3D4.5D68.5706.E8DD",
    "client_id_issued_at": 1530862588,
    "client_secret_expires_at": 1530948988,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "client_credentials",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21C938.B590.088E.38C6&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=8e3a8bd6-f05d-4ae8-9996-4221c789da37&nonce=36c83ebf-e6e5-4d12-b0a2-ee469f2676ca
03:36:50.769 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:170bb5ba-88ee-4581-9f7f-eadd8d75785a
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21C938.B590.088E.38C6&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=8e3a8bd6-f05d-4ae8-9996-4221c789da37&nonce=36c83ebf-e6e5-4d12-b0a2-ee469f2676ca

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=7a3f8671-67ec-4574-8c4c-279338c12dc0&scope=address+openid+user_name+profile+email&session_id=288f02f7-f903-44c0-824f-cd02659f6966&state=8e3a8bd6-f05d-4ae8-9996-4221c789da37&token_type=bearer&session_state=170bb5ba-88ee-4581-9f7f-eadd8d75785a&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 7a3f8671-67ec-4574-8c4c-279338c12dc0

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:29 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"q7sRqM_0fJn697s4CNEtn6m5eThmsChvJMy49wFJG7w","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["urn:ietf:params:oauth:grant-type:uma-ticket"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1439
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:29 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!B3F2.7939.F874.D4B7",
    "client_secret": "7dbca469-aa41-4907-917d-db412448bead",
    "registration_access_token": "f953b94f-b80d-41e6-a0a6-053815e83511",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!B3F2.7939.F874.D4B7",
    "client_id_issued_at": 1530862589,
    "client_secret_expires_at": 1530948989,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "urn:ietf:params:oauth:grant-type:uma-ticket",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["token"],
    "grant_types": ["urn:ietf:params:oauth:grant-type:uma-ticket"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1439
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:29 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!7EAB.2A5A.8FCA.2793",
    "client_secret": "205f1d8f-41a9-4abf-9d0b-10d6d983fbd4",
    "registration_access_token": "0b7d321f-151b-448e-8caa-58cd698cb235",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!7EAB.2A5A.8FCA.2793",
    "client_id_issued_at": 1530862589,
    "client_secret_expires_at": 1530948989,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": ["token"],
    "grant_types": [
        "urn:ietf:params:oauth:grant-type:uma-ticket",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21B3F2.7939.F874.D4B7&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=f2cbdd21-3fb9-4228-a7ed-d43b46949847&nonce=5e92269f-2661-4d32-a5e5-36f467aeb0db
03:36:52.167 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:39910c72-1d1c-4690-9f35-1f240e54e353
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21B3F2.7939.F874.D4B7&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=f2cbdd21-3fb9-4228-a7ed-d43b46949847&nonce=5e92269f-2661-4d32-a5e5-36f467aeb0db

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#access_token=aa42364a-a745-45cf-97da-b5d3f1825548&scope=address+openid+user_name+profile+email&session_id=95d297fe-c7c3-4b42-a5d2-a69bd15dbdde&state=f2cbdd21-3fb9-4228-a7ed-d43b46949847&token_type=bearer&session_state=39910c72-1d1c-4690-9f35-1f240e54e353&expires_in=299

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer aa42364a-a745-45cf-97da-b5d3f1825548

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:31 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"dEmPCjOhyHJHVbI40e6HqkgSj4iinoL1J3CzUT6dS9U","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["authorization_code"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1489
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:31 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!2EFF.3101.832B.DE72",
    "client_secret": "1819f712-a6a5-4fce-b0d0-35e30bf733f5",
    "registration_access_token": "603ac507-94b1-4d93-acad-4c8b52c3ecfd",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!2EFF.3101.832B.DE72",
    "client_id_issued_at": 1530862591,
    "client_secret_expires_at": 1530948991,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "id_token",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["authorization_code"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1489
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:31 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!78ED.9063.F89D.9F04",
    "client_secret": "b52713e2-43aa-4c93-8f4d-332c0d8f30df",
    "registration_access_token": "a47aa0a9-e22b-4edb-8ff6-fb580dd419e3",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!78ED.9063.F89D.9F04",
    "client_id_issued_at": 1530862591,
    "client_secret_expires_at": 1530948991,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "id_token",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%212EFF.3101.832B.DE72&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=2be62b5f-f516-4ef9-baa3-01a6efd410ab&nonce=279e4cea-97fd-45b4-96ed-8e4afd804833
03:36:54.119 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:9e65a022-5437-4c07-b89c-686d21f9c195
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%212EFF.3101.832B.DE72&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=2be62b5f-f516-4ef9-baa3-01a6efd410ab&nonce=279e4cea-97fd-45b4-96ed-8e4afd804833

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#code=9f34776a-adc5-4e9a-9a69-351d18e201e4&scope=address+openid+user_name+profile+email&id_token=eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCEyRUZGLjMxMDEuODMyQi5ERTcyIiwiZXhwIjoxNTMwODY2MTkzLCJpYXQiOjE1MzA4NjI1OTMsIm5vbmNlIjoiMjc5ZTRjZWEtOTdmZC00NWI0LTk2ZWQtOGU0YWZkODA0ODMzIiwiYXV0aF90aW1lIjoxNTMwODYyNTkzLCJjX2hhc2giOiJrZlR1SVZ6QzJxZUplRVg2STNHMV9RIiwib3hPcGVuSURDb25uZWN0VmVyc2lvbiI6Im9wZW5pZGNvbm5lY3QtMS4wIiwic3ViIjoiaUtLbkI0dkhVNWRyeWx6LTVaTXZMeGhqZWwwakV2X3A5S19BeEZZSnlhayJ9.hcjNRiiL02nzoWBKSslbAmC6DlmvMbT_ZGQFA55zz1dTaRjoFQ3SeZPeQYLKMbBEXy6YScXqQOm0mJ-6xZAKsNfN6BNGbHvxX7I47VezRuuAxg3JCEzLJSVZ4Bog6ZU3NSNgrAwR-djPU3QkhEj6rVtdsBU2yxvhspAUaQDMXLQxs9w60Z586T6lKalSods8mpX1IGxMdUqYxXH14bRlB9OttYpTHs77EceTgXPkEmmqk0u1rObuSk9QN2tGDg5D3H3PGFGNrztIZc2t_MeUTPynIuRYyueAGmZtT0obRcL9D4MODjLSlMvz3venLPLff9_EEOgGcSguM5Nwarm4wg&session_id=33ac9e1e-67df-497d-adeb-2d7b3137cf48&state=2be62b5f-f516-4ef9-baa3-01a6efd410ab&session_state=9e65a022-5437-4c07-b89c-686d21f9c195

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxMkVGRi4zMTAxLjgzMkIuREU3MjoxODE5ZjcxMi1hNmE1LTRmY2UtYjBkMC0zNWUzMGJmNzMzZjU=

grant_type=authorization_code&code=9f34776a-adc5-4e9a-9a69-351d18e201e4&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1057
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:33 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"4a7be81a-4810-47eb-bc15-8baa45047d43","token_type":"bearer","expires_in":299,"refresh_token":"913c6eb7-b55a-4642-a7ab-859ccbe91aef","id_token":"eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCEyRUZGLjMxMDEuODMyQi5ERTcyIiwiZXhwIjoxNTMwODY2MTkzLCJpYXQiOjE1MzA4NjI1OTMsIm5vbmNlIjoiMjc5ZTRjZWEtOTdmZC00NWI0LTk2ZWQtOGU0YWZkODA0ODMzIiwiYXV0aF90aW1lIjoxNTMwODYyNTkzLCJhdF9oYXNoIjoiSnBmNVowTGlvNnpKaHpCRXFIQ1hBdyIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6ImlLS25CNHZIVTVkcnlsei01Wk12THhoamVsMGpFdl9wOUtfQXhGWUp5YWsifQ.LxrTygR0WzE0IrT3Cd9FuGiIq-wrnTOEshsqRsPLwwLR-_8cT0ZOrwnb--YE1oTfeiKHakg5c9fG2mP6OfCH8yp-GMwcFVQ9nqfleHiHhaC6HAgTZSubzU8FwcexR77DbIvZgU9IJcwSBvKgJujKrRC1vRgfvJvs09VYjxEi9FUgnnDDFKJEUaDxfpbttEyIZZ21SieElOs2W-sSz1NoccnZzQrGjOLGw_PAE_RCnEvRMT_T63DC6gRWDvqoQEQa9pOKNs7LYcZMO5u0vOwYwrQHVhZNPOrTFnPFubD3dQyev7dqXfgvl6Qsw-bt2kow5jAAQRPkNi0xOCX3XrJleg"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxMkVGRi4zMTAxLjgzMkIuREU3MjoxODE5ZjcxMi1hNmE1LTRmY2UtYjBkMC0zNWUzMGJmNzMzZjU=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=913c6eb7-b55a-4642-a7ab-859ccbe91aef

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:33 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"14d8f30d-ce1d-498a-9623-aec0b6d9089f","token_type":"bearer","expires_in":299,"refresh_token":"c332fb2c-43e8-4ed0-9f9c-040fa70a14b4","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 14d8f30d-ce1d-498a-9623-aec0b6d9089f

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:33 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"iKKnB4vHU5drylz-5ZMvLxhjel0jEv_p9K_AxFYJyak","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/end_session?id_token_hint=eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCEyRUZGLjMxMDEuODMyQi5ERTcyIiwiZXhwIjoxNTMwODY2MTkzLCJpYXQiOjE1MzA4NjI1OTMsIm5vbmNlIjoiMjc5ZTRjZWEtOTdmZC00NWI0LTk2ZWQtOGU0YWZkODA0ODMzIiwiYXV0aF90aW1lIjoxNTMwODYyNTkzLCJjX2hhc2giOiJrZlR1SVZ6QzJxZUplRVg2STNHMV9RIiwib3hPcGVuSURDb25uZWN0VmVyc2lvbiI6Im9wZW5pZGNvbm5lY3QtMS4wIiwic3ViIjoiaUtLbkI0dkhVNWRyeWx6LTVaTXZMeGhqZWwwakV2X3A5S19BeEZZSnlhayJ9.hcjNRiiL02nzoWBKSslbAmC6DlmvMbT_ZGQFA55zz1dTaRjoFQ3SeZPeQYLKMbBEXy6YScXqQOm0mJ-6xZAKsNfN6BNGbHvxX7I47VezRuuAxg3JCEzLJSVZ4Bog6ZU3NSNgrAwR-djPU3QkhEj6rVtdsBU2yxvhspAUaQDMXLQxs9w60Z586T6lKalSods8mpX1IGxMdUqYxXH14bRlB9OttYpTHs77EceTgXPkEmmqk0u1rObuSk9QN2tGDg5D3H3PGFGNrztIZc2t_MeUTPynIuRYyueAGmZtT0obRcL9D4MODjLSlMvz3venLPLff9_EEOgGcSguM5Nwarm4wg&post_logout_redirect_uri=https%3A%2F%2Fclient.example.com%2Fpl&state=14b91862-6300-4f3a-8e7a-a750a2864fab&session_id=33ac9e1e-67df-497d-adeb-2d7b3137cf48 HTTP/1.1
Host: ce-dev4.gluu.org

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-transform, no-store
Connection: Keep-Alive
Content-Length: 343
Content-Type: text/html
Date: Fri, 06 Jul 2018 07:36:33 GMT
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Set-Cookie: session_id=;Path=/;Expires=Thu, 01-Jan-1970 00:00:00 GMT;Max-Age=0;HttpOnly
Strict-Transport-Security: max-age=31536000; includeSubDomains
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

<!DOCTYPE html><html><head><script>window.onload=function() {window.location='https://client.example.com/pl?state=14b91862-6300-4f3a-8e7a-a750a2864fab'}</script><title>Gluu Generated logout page</title></head><body>Logout requests sent.<br/><iframe height="0" width="0" src="https://ce-dev4.gluu.org/oxauth-rp/home.htm"></iframe></body></html>

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1404
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:33 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!CAA9.873A.40B7.891D",
    "client_secret": "340f2304-f734-450e-afcc-321efa3ab395",
    "registration_access_token": "c78ae12c-ff5a-43e7-8d6f-c7f36d8e2d00",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!CAA9.873A.40B7.891D",
    "client_id_issued_at": 1530862593,
    "client_secret_expires_at": 1530948993,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "id_token",
        "token"
    ],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1404
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:33 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!01BB.F810.5EAD.693A",
    "client_secret": "168b67a9-c2bc-497f-a9bc-4201c6dc7c13",
    "registration_access_token": "de225efe-f76e-4fe3-b2fd-ef970b26d188",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!01BB.F810.5EAD.693A",
    "client_id_issued_at": 1530862593,
    "client_secret_expires_at": 1530948993,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "id_token",
        "token"
    ],
    "grant_types": ["implicit"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21CAA9.873A.40B7.891D&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=0894af4c-aa26-4c84-870a-d2e96dfa5d4c&nonce=81127e91-2d29-48df-84f5-4e43763958ec
03:36:56.069 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:b9d32399-16ad-4931-97ee-4962d31bdc7f
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21CAA9.873A.40B7.891D&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=0894af4c-aa26-4c84-870a-d2e96dfa5d4c&nonce=81127e91-2d29-48df-84f5-4e43763958ec

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#scope=address+openid+user_name+profile+email&id_token=eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFDQUE5Ljg3M0EuNDBCNy44OTFEIiwiZXhwIjoxNTMwODY2MTk1LCJpYXQiOjE1MzA4NjI1OTUsIm5vbmNlIjoiODExMjdlOTEtMmQyOS00OGRmLTg0ZjUtNGU0Mzc2Mzk1OGVjIiwiYXV0aF90aW1lIjoxNTMwODYyNTk1LCJveE9wZW5JRENvbm5lY3RWZXJzaW9uIjoib3BlbmlkY29ubmVjdC0xLjAiLCJzdWIiOiJpMnJyV0ZiYUlTUDA1RjdTdVBGdkdNZVpwd2h1RW1XOVhuUUEzeER5a0J3In0.STs32lctaBVEKwMEm75z84LkTP-PQTA5WDpuopdmgw1DDm2dnvflKVNN5v9xvy68mqartpjYefLp4nC37x7MFSDqG4ZDfTUX02k4ZL2NGvjXVdAdKomJBQGA5yGoIPEd3L4elSDvRBA5lXqv5yQKMu-URa4_EG5f5sv_AM3TqKLjLe7yCBm1nnL35cFWmlH1tskpud4owqvr9pOOtXvs3iOLe3wWSfy4wc7KtzLG3BJP-8KGDQcaSZiJN9T0sLdA_L3VxJQQ_qG1SXP4yjKootjXi_j-hsKXjMsbA9zFlE-j4Ytqh19vPnK-ktr5-r9ZJOdoZF2iNo725_wO7IGTwA&session_id=7b1bbd38-2afc-4e39-9c05-a0a19f771c93&state=0894af4c-aa26-4c84-870a-d2e96dfa5d4c&session_state=b9d32399-16ad-4931-97ee-4962d31bdc7f

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": [
        "authorization_code",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1489
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:35 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!CD94.9A12.DADB.39E6",
    "client_secret": "0669f12d-5a4e-40bb-a8e7-decdce70442e",
    "registration_access_token": "4c6a4450-67c2-413a-9fed-809ab4f6893c",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!CD94.9A12.DADB.39E6",
    "client_id_issued_at": 1530862595,
    "client_secret_expires_at": 1530948995,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "id_token",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": [
        "authorization_code",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1489
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:35 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!5156.E2D1.240E.E47F",
    "client_secret": "3fffb89a-15e4-4332-a260-fd59ad8016e9",
    "registration_access_token": "14410e55-691c-4015-a0e8-d0d864ffb1fa",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!5156.E2D1.240E.E47F",
    "client_id_issued_at": 1530862595,
    "client_secret_expires_at": 1530948995,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "code",
        "id_token",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit",
        "authorization_code"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21CD94.9A12.DADB.39E6&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=c2fe01b3-f4c7-4595-b8d6-8a686753fe83&nonce=e0a6c8de-d41a-4b36-8d3b-4ebb98cd1e97
03:36:57.866 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:8e3228bf-3706-454d-a1f3-ebd6ebb10ccf
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=code+id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21CD94.9A12.DADB.39E6&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=c2fe01b3-f4c7-4595-b8d6-8a686753fe83&nonce=e0a6c8de-d41a-4b36-8d3b-4ebb98cd1e97

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#code=81512068-5fab-4242-b0fa-4ef206136dee&scope=address+openid+user_name+profile+email&id_token=eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFDRDk0LjlBMTIuREFEQi4zOUU2IiwiZXhwIjoxNTMwODY2MTk3LCJpYXQiOjE1MzA4NjI1OTcsIm5vbmNlIjoiZTBhNmM4ZGUtZDQxYS00YjM2LThkM2ItNGViYjk4Y2QxZTk3IiwiYXV0aF90aW1lIjoxNTMwODYyNTk3LCJjX2hhc2giOiJ5ZXgzSnl2a1duOEtjUTQtM3c0U293Iiwib3hPcGVuSURDb25uZWN0VmVyc2lvbiI6Im9wZW5pZGNvbm5lY3QtMS4wIiwic3ViIjoiWlZoMnpzV3UzRVBUb1dTcnJFNGoxWjdlNUpQUUJ5TkprSlhzMDN1eUxIbyJ9.OU2pIdFRtitsxQwLNWP_Y141-4EgSbpkPkgGifUvvOwClkcwLHE5Tdh2kkwU8QD0Y6HP8neMfvUo55R6D-1B2KcAyJRChGDmcGSwY_eSUCoX9QD-A6kzR6xywrvEftXd1NyT3E-7aT-Lf-FIrbzoNtVK2JhFGPh0B024RRKddlCsQ46POcnH1C5gi0yVoqKngLMyHebSOugBrVe5nL7sR8826-zgbYuGS_ZlKBPdMEzenZbmCn_tqba6G5JWwim0S7fDMEoxLPVBtkFoZbJSdB3UtC0hnOwPR6dVDfPB1bejqUxucb6qkorevSEuO0M_o_N9o11AJm5dYRuSBbAJzQ&session_id=9ee946cd-f041-4f56-8785-624b26d16b64&state=c2fe01b3-f4c7-4595-b8d6-8a686753fe83&session_state=8e3228bf-3706-454d-a1f3-ebd6ebb10ccf

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQ0Q5NC45QTEyLkRBREIuMzlFNjowNjY5ZjEyZC01YTRlLTQwYmItYThlNy1kZWNkY2U3MDQ0MmU=

grant_type=authorization_code&code=81512068-5fab-4242-b0fa-4ef206136dee&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1057
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:38 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"873eefe6-43b3-4b47-b8be-9322c3500c67","token_type":"bearer","expires_in":299,"refresh_token":"91a6f01b-103a-4075-8472-f054a006eae1","id_token":"eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFDRDk0LjlBMTIuREFEQi4zOUU2IiwiZXhwIjoxNTMwODY2MTk4LCJpYXQiOjE1MzA4NjI1OTgsIm5vbmNlIjoiZTBhNmM4ZGUtZDQxYS00YjM2LThkM2ItNGViYjk4Y2QxZTk3IiwiYXV0aF90aW1lIjoxNTMwODYyNTk3LCJhdF9oYXNoIjoibGFOdWl1WklqaldJNzIwVW9DQTVGdyIsIm94T3BlbklEQ29ubmVjdFZlcnNpb24iOiJvcGVuaWRjb25uZWN0LTEuMCIsInN1YiI6IlpWaDJ6c1d1M0VQVG9XU3JyRTRqMVo3ZTVKUFFCeU5Ka0pYczAzdXlMSG8ifQ.ljpPRG6OGhtJaDgeoqJ63Q9N8Ho4NFKHn-hDu01xv6ZJiYj7uP3YQdQaC75Zq1MnMz8Z6f1S6u8G1iO1EKFB7OA0C5qIRREIF8-yvzDfbH-hxqUlSPFcTZ-pEFV1ApWrtb8RZfq0VlUBTaRy9zIiV-wlf-9vAs7c0Yy3y169p-4S1zW6XkgzCtYJgxtBnb7UP3mDYGTWkMulIyhem5JjadJs14s17tj9G9bdZjOwydaSioes39CfhyFtiN5qH6jJmmNol4wW2SEeC6rMExp63Z7ENcFrhWf87robLX_gJbZkntr5sr6GedQ8cQxBESuCEED7xDtO6KGmNfxS3MBqSg"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/token HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: ce-dev4.gluu.org
Authorization: Basic JTQwJTIxMzhENC40MTBDLjFENDMuODkzMiUyMTAwMDElMjEzN0YyLkI3NDQlMjEwMDA4JTIxQ0Q5NC45QTEyLkRBREIuMzlFNjowNjY5ZjEyZC01YTRlLTQwYmItYThlNy1kZWNkY2U3MDQ0MmU=

grant_type=refresh_token&scope=address+openid+user_name+profile+email&refresh_token=91a6f01b-103a-4075-8472-f054a006eae1

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 198
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:38 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"access_token":"2aeaf06e-3cde-4830-b4c7-0a839f066c4e","token_type":"bearer","expires_in":299,"refresh_token":"fea8ae65-f770-451e-93c4-866113490540","scope":"address openid user_name profile email"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/userinfo HTTP/1.1
Host: ce-dev4.gluu.org
Authorization: Bearer 2aeaf06e-3cde-4830-b4c7-0a839f066c4e

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store, private
Connection: Keep-Alive
Content-Length: 634
Content-Type: application/json;charset=utf-8
Date: Fri, 06 Jul 2018 07:36:38 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{"address":{"street_address":"621 East 6th Street","country":"US","locality":"Austin","region":"Texas"},"sub":"ZVh2zsWu3EPToWSrrE4j1Z7e5JPQByNJkJXs03uyLHo","user_name":"test_user","website":"http://www.gluu.org","zoneinfo":"America/Chicago","birthdate":"19830106010101.253Z","gender":"Male","profile":"http://www.mywebsite.com/profile","preferred_username":"user","given_name":"Test","middle_name":"User","locale":"en-US","picture":"http://www.gluu.org/wp-content/uploads/2012/04/mike3.png","updated_at":1526659613066,"name":"oxAuth Test User","nickname":"user","family_name":"User","email_verified":true,"email":"test_user@test.org"}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
GET /oxauth/restv1/end_session?id_token_hint=eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFDRDk0LjlBMTIuREFEQi4zOUU2IiwiZXhwIjoxNTMwODY2MTk3LCJpYXQiOjE1MzA4NjI1OTcsIm5vbmNlIjoiZTBhNmM4ZGUtZDQxYS00YjM2LThkM2ItNGViYjk4Y2QxZTk3IiwiYXV0aF90aW1lIjoxNTMwODYyNTk3LCJjX2hhc2giOiJ5ZXgzSnl2a1duOEtjUTQtM3c0U293Iiwib3hPcGVuSURDb25uZWN0VmVyc2lvbiI6Im9wZW5pZGNvbm5lY3QtMS4wIiwic3ViIjoiWlZoMnpzV3UzRVBUb1dTcnJFNGoxWjdlNUpQUUJ5TkprSlhzMDN1eUxIbyJ9.OU2pIdFRtitsxQwLNWP_Y141-4EgSbpkPkgGifUvvOwClkcwLHE5Tdh2kkwU8QD0Y6HP8neMfvUo55R6D-1B2KcAyJRChGDmcGSwY_eSUCoX9QD-A6kzR6xywrvEftXd1NyT3E-7aT-Lf-FIrbzoNtVK2JhFGPh0B024RRKddlCsQ46POcnH1C5gi0yVoqKngLMyHebSOugBrVe5nL7sR8826-zgbYuGS_ZlKBPdMEzenZbmCn_tqba6G5JWwim0S7fDMEoxLPVBtkFoZbJSdB3UtC0hnOwPR6dVDfPB1bejqUxucb6qkorevSEuO0M_o_N9o11AJm5dYRuSBbAJzQ&post_logout_redirect_uri=https%3A%2F%2Fclient.example.com%2Fpl&state=bfa9cc46-2a49-407d-b1fd-0122e934d8ab&session_id=9ee946cd-f041-4f56-8785-624b26d16b64 HTTP/1.1
Host: ce-dev4.gluu.org

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-transform, no-store
Connection: Keep-Alive
Content-Length: 343
Content-Type: text/html
Date: Fri, 06 Jul 2018 07:36:38 GMT
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Set-Cookie: session_id=;Path=/;Expires=Thu, 01-Jan-1970 00:00:00 GMT;Max-Age=0;HttpOnly
Strict-Transport-Security: max-age=31536000; includeSubDomains
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

<!DOCTYPE html><html><head><script>window.onload=function() {window.location='https://client.example.com/pl?state=bfa9cc46-2a49-407d-b1fd-0122e934d8ab'}</script><title>Gluu Generated logout page</title></head><body>Logout requests sent.<br/><iframe height="0" width="0" src="https://ce-dev4.gluu.org/oxauth-rp/home.htm"></iframe></body></html>

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["refresh_token"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1443
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:38 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!B49C.4A17.5520.8D67",
    "client_secret": "2bb4b622-f52b-4ad3-b7ed-524d16283acf",
    "registration_access_token": "693566e8-e18a-4b6e-bf64-a549f12022f2",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!B49C.4A17.5520.8D67",
    "client_id_issued_at": 1530862598,
    "client_secret_expires_at": 1530948998,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "id_token",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["refresh_token"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1443
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:39 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!A39D.4689.7130.0BAE",
    "client_secret": "8113429f-c4e5-4dd9-95ff-119553f48d57",
    "registration_access_token": "2b2996a5-0fb6-4c69-a49f-0dec24e3ce37",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!A39D.4689.7130.0BAE",
    "client_id_issued_at": 1530862599,
    "client_secret_expires_at": 1530948999,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "id_token",
        "token"
    ],
    "grant_types": [
        "refresh_token",
        "implicit"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21B49C.4A17.5520.8D67&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=92618b3e-99e6-4043-955e-3ef3dcef72c3&nonce=588dd954-22af-45e2-9572-5826fcb62681
03:37:02.571 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
authenticateResourceOwnerAndGrantAccess: sessionState:8f20828f-021d-40d2-8232-65ceef879e79
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21B49C.4A17.5520.8D67&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=92618b3e-99e6-4043-955e-3ef3dcef72c3&nonce=588dd954-22af-45e2-9572-5826fcb62681

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 302 Found
Location: https://ce-dev4.gluu.org/oxauth-rp/home.htm#scope=address+openid+user_name+profile+email&id_token=eyJraWQiOiI4NzE2OGJjMS1lNTU4LTQxNjktOGRkMS05ZmJkNDUxZGU1ZDciLCJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJodHRwczovL2NlLWRldjQuZ2x1dS5vcmciLCJhdWQiOiJAITM4RDQuNDEwQy4xRDQzLjg5MzIhMDAwMSEzN0YyLkI3NDQhMDAwOCFCNDlDLjRBMTcuNTUyMC44RDY3IiwiZXhwIjoxNTMwODY2MjAzLCJpYXQiOjE1MzA4NjI2MDMsIm5vbmNlIjoiNTg4ZGQ5NTQtMjJhZi00NWUyLTk1NzItNTgyNmZjYjYyNjgxIiwiYXV0aF90aW1lIjoxNTMwODYyNjAzLCJveE9wZW5JRENvbm5lY3RWZXJzaW9uIjoib3BlbmlkY29ubmVjdC0xLjAiLCJzdWIiOiJfOU1NbWlRc05mTW9FNTREMjJKVG1SZUlDaTRyZ01TbnJDQXJkWUdvanVvIn0.PKh9E-sbgBBLX9eWd4ery3wTAUUd7q6SrnNWcUJ-hPurSgw_TyrDxmzYg3ilGGUFK2sIjwfI_BI_jsVPW7nqauLPrp2AchRbD3ZME4QJq-Odt9JNTKU46n3YvDeKd9Dz8GXPlpHF8Bqzsv0GfmQ6SapDU3mAb4V7rOg4yL7hDUEWknehE0uLWYqWKsU-qUwBDU-iAHsn_jH_Carfs3bir8dfXfzqYSupoBMFbyTbyrQTAMvKJrSpslcMU2lKmh9F5tHsF7cg6p0d92RQM159Pomp7YbNELujaqO4V09xbS3Bcl0-tN-MmNKr7ScjOk_1MhFvEu0r04dBvpe8JapoyA&session_id=e1659dfc-062a-4e8a-8243-a01ede1097b1&state=92618b3e-99e6-4043-955e-3ef3dcef72c3&session_state=8f20828f-021d-40d2-8232-65ceef879e79

#######################################################
TEST: grantTypesRestriction
#######################################################
-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["password"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1438
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:44 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!DAFB.53EF.24D7.65BE",
    "client_secret": "3b7388e4-b87d-411e-a438-2b6ef34888a6",
    "registration_access_token": "220b8256-93cf-4ccb-a46a-4ecf5369e20e",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!DAFB.53EF.24D7.65BE",
    "client_id_issued_at": 1530862604,
    "client_secret_expires_at": 1530949004,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "id_token",
        "token"
    ],
    "grant_types": [
        "implicit",
        "password"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

-------------------------------------------------------
REQUEST:
-------------------------------------------------------
POST /oxauth/restv1/register HTTP/1.1
Content-Type: application/json
Accept: application/json
Host: ce-dev4.gluu.org

{
    "redirect_uris": [
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm",
        "https://client.example.com/cb",
        "https://client.example.com/cb1",
        "https://client.example.com/cb2"
    ],
    "response_types": ["id_token"],
    "grant_types": ["password"],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "scope": "openid profile address email user_name"
}

-------------------------------------------------------
RESPONSE:
-------------------------------------------------------
HTTP/1.1 200
Cache-Control: no-store
Connection: Keep-Alive
Content-Length: 1438
Content-Type: application/json
Date: Fri, 06 Jul 2018 07:36:44 GMT
Keep-Alive: timeout=5, max=100
Pragma: no-cache
Server: Jetty(9.4.9.v20180320)
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block

{
    "client_id": "@!38D4.410C.1D43.8932!0001!37F2.B744!0008!57BA.47AF.CBD6.AE26",
    "client_secret": "2cfbf43c-7b6c-4c32-968d-e11b68041a20",
    "registration_access_token": "aa92f058-0c37-4d63-a9d7-379b5c3c67e7",
    "registration_client_uri": "https://ce-dev4.gluu.org/oxauth/restv1/register?client_id=@!38D4.410C.1D43.8932!0001!37F2.B744!0008!57BA.47AF.CBD6.AE26",
    "client_id_issued_at": 1530862604,
    "client_secret_expires_at": 1530949004,
    "redirect_uris": [
        "https://client.example.com/cb2",
        "https://client.example.com/cb1",
        "https://client.example.com/cb",
        "https://ce-dev4.gluu.org/oxauth-rp/home.htm"
    ],
    "response_types": [
        "id_token",
        "token"
    ],
    "grant_types": [
        "implicit",
        "password"
    ],
    "application_type": "web",
    "client_name": "oxAuth test app",
    "sector_identifier_uri": "https://ce-dev4.gluu.org/oxauth/sectoridentifier/@!38D4.410C.1D43.8932!0001!37F2.B744!0012!D426.70FD",
    "subject_type": "pairwise",
    "id_token_signed_response_alg": "RS256",
    "token_endpoint_auth_method": "client_secret_basic",
    "require_auth_time": false,
    "post_logout_redirect_uris": ["https://client.example.com/pl"],
    "frontchannel_logout_uri": ["https://ce-dev4.gluu.org/oxauth-rp/home.htm"],
    "frontchannel_logout_session_required": false,
    "scope": "openid profile address email user_name",
    "claims": ""
}

authenticateResourceOwnerAndGrantAccess: Cleaning cookies
authenticateResourceOwnerAndGrantAccess: authorizationRequestUrl:https://ce-dev4.gluu.org/oxauth/restv1/authorize?response_type=id_token&client_id=%40%2138D4.410C.1D43.8932%210001%2137F2.B744%210008%21DAFB.53EF.24D7.65BE&scope=openid+profile+address+email+user_name&redirect_uri=https%3A%2F%2Fce-dev4.gluu.org%2Foxauth-rp%2Fhome.htm&state=d8d7f2fb-5411-4508-b4bc-cc60edc6ec78&nonce=679c9f1a-9ebb-4062-a1b4-fc1636a56be4
03:37:08.374 [main] ERROR com.gargoylesoftware.htmlunit.javascript.StrictErrorReporter - runtimeError: message=[An invalid or illegal selector was specified (selector: '*,:x' error: Invalid selector: :x).] sourceName=[https://ce-dev4.gluu.org/oxauth/js/jquery-1.12.4.min.js] line=[2] lineSource=[null] lineOffset=[0]
Build step 'Invoke top-level Maven targets' marked build as failure
[FINDBUGS] Skipping publisher since build result is FAILURE
Publishing Javadoc
TestNG Reports Processing: START
Looking for TestNG results report in workspace using pattern: **/testng-results.xml
testng-results.xml was last modified before this build started. Ignoring it.
Saving reports...
Processing '/home/tomcat/.jenkins/jobs/oxAuth/builds/3311/testng/testng-results.xml'
TestNG Reports Processing: FINISH
Not sending mail to unregistered user bonustrack310@gmail.com
Not sending mail to unregistered user Yuriy.Movchan@gmail.com
Sending e-mails to: support@gluu.org yuriy@gluu.org
Finished: FAILURE