Sign in or sign up before continuing. Don't have an account yet? Register now to get started.
Register now

oidcc-ensure-request-without-nonce-fails should not apply to hybrid flow

The test oidcc-ensure-request-without-nonce-fails should not apply to hybrid flow test plan.

Hybrid authorization endpoint request stated in 3.3.2.1 of Core states authorization endpoint request should be made according to 3.1.2.1 (code flow) in which nonce is optional.

The logs show that it's running the test according to the 3.2.2.1 which is implicit flow where nonce is required.

Log : https://www.certification.openid.net/log-detail.html?log=Lm22qZhf5M

Assignee Loading
Time tracking Loading