NarGarg
If we see the CA SSO Reponse being sent (as in FWSTrace.log) it is plain "email".
That is the way 'OIDC module with Apache 2.4.x' is coded to present the Responses it received from the OIDC Provider.
It is up to the Client receiving the response to present in the format needed.
Have we asked the question on the "OIDC module with Apache" blog ? GitHub - zmartzone/mod_auth_openidc: OpenID Connect Relying Party and OAuth 2.0 Resource Server for Apache HTTP Server 2…
FWSTrace (CA SSO) |
---|
[01/05/2018][21:19:14][30688][140099174143744][1e0e460c-69574e63-e3578943-ab2f10d6-ca5e1a46-42c][UserInfoService.java][sendUserInfoTokenResponse][Sending User Info response: {"sub":"AAAAAA","nonce":"v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes","uid":"AAAAAA","name":"AAAAAA","given_name":"AAAAAA","middle_name":"AAAAAA","family_name":"AAAAAA","email":"AAAAAA@ca.com"}] [01/05/2018][21:19:14][30688][140099174143744][1e0e460c-69574e63-e3578943-ab2f10d6-ca5e1a46-42c][UserInfoService.java][sendUserInfoTokenResponse][Content Type of User Info response:application/json] |
OIDC Apache Module |
---|
[Fri Jan 05 15:19:14.563635 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/mod_auth_openidc.c(1258): [client 144.229.219.107:50494] oidc_copy_tokens_to_request_state: id_token={"sub":"AAAAAA","aud":"0005dec0-b545-1a00-ac4a-da8e90e5177f","auth_time":1515187148,"iss":"https://server.ca.com:9443","iat":1515187151,"exp":1515187451,"nonce":"v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes"} claims={"sub":"AAAAAA","nonce":"v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes","middle_name":"AAAAAA","family_name":"AAAAAA","email":"AAAAAA@ca.com","uid":"AAAAAA","given_name":"AAAAAA","name":"AAAAAA"} [Fri Jan 05 15:19:14.563657 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_sub: AAAAAA [Fri Jan 05 15:19:14.563661 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_sub: AAAAAA" [Fri Jan 05 15:19:14.563665 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_email: AAAAAA@ca.com [Fri Jan 05 15:19:14.563668 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_email: AAAAAA@ca.com" [Fri Jan 05 15:19:14.563673 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_family_name: AAAAAA [Fri Jan 05 15:19:14.563676 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_family_name: AAAAAA" [Fri Jan 05 15:19:14.563680 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_middle_name: AAAAAA [Fri Jan 05 15:19:14.563683 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_middle_name: AAAAAA" [Fri Jan 05 15:19:14.563686 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_nonce: v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes [Fri Jan 05 15:19:14.563700 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_nonce: v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes" [Fri Jan 05 15:19:14.563706 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_given_name: AAAAAA [Fri Jan 05 15:19:14.563709 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_given_name: AAAAAA" [Fri Jan 05 15:19:14.563713 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_uid: AAAAAA [Fri Jan 05 15:19:14.563716 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_uid: AAAAAA" [Fri Jan 05 15:19:14.563720 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_name: AAAAAA [Fri Jan 05 15:19:14.563723 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_name: AAAAAA" [Fri Jan 05 15:19:14.563738 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_aud: 0005dec0-b545-1a00-ac4a-da8e90e5177f [Fri Jan 05 15:19:14.563742 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_aud: 0005dec0-b545-1a00-ac4a-da8e90e5177f" [Fri Jan 05 15:19:14.563746 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_sub: AAAAAA [Fri Jan 05 15:19:14.563749 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_sub: AAAAAA" [Fri Jan 05 15:19:14.563755 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_auth_time: 1515187148 [Fri Jan 05 15:19:14.563758 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_auth_time: 1515187148" [Fri Jan 05 15:19:14.563763 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_iat: 1515187151 [Fri Jan 05 15:19:14.563766 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_iat: 1515187151" [Fri Jan 05 15:19:14.563770 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_iss: https://server.ca.com:9443 [Fri Jan 05 15:19:14.563773 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_iss: https://server.ca.com:9443" [Fri Jan 05 15:19:14.563778 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_exp: 1515187451 [Fri Jan 05 15:19:14.563781 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_exp: 1515187451" [Fri Jan 05 15:19:14.563785 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_CLAIM_nonce: v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes [Fri Jan 05 15:19:14.563794 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_CLAIM_nonce: v-qxwgrm0Xg2hs_LeyM5zO8s8HqKiaYDpXW864HCIes" [Fri Jan 05 15:19:14.563801 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_access_token: MThjYzJkOGItYmMwOC00YWM2LThhZjYtMzJjYzNmZTY2MzYyLU9LTkVmS0wvdEgyVTNjMzZmMXVLVkx0TE1xUT0= [Fri Jan 05 15:19:14.563805 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_access_token: MThjYzJkOGItYmMwOC00YWM2LThhZjYtMzJjYzNmZTY2MzYyLU9LTkVmS0wvdEgyVTNjMzZmMXVLVkx0TE1xUT0=" [Fri Jan 05 15:19:14.563810 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2223): [client 144.229.219.107:50494] oidc_util_hdr_table_set: OIDC_access_token_expires: 1515187454 [Fri Jan 05 15:19:14.563813 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(1680): [client 144.229.219.107:50494] oidc_util_set_app_info: setting environment variable "OIDC_access_token_expires: 1515187454" [Fri Jan 05 15:19:14.563818 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/mod_auth_openidc.c(900): [client 144.229.219.107:50494] oidc_log_session_expires: session inactivity timeout: Fri, 05 Jan 2018 21:24:14 GMT (in 299 secs from now) [Fri Jan 05 15:19:14.563823 2018] [auth_openidc:debug] [pid 1805:tid 140597700556544] src/util.c(2191): [client 144.229.219.107:50494] oidc_util_hdr_in_get: Cookie=mod_auth_openidc_session=14a8cd0e-f25e-11e7-9a49-5956742b80a7 [Fri Jan 05 15:19:14.563828 2018] [authz_core:debug] [pid 1805:tid 140597700556544] mod_authz_core.c(809): [client 144.229.219.107:50494] AH01626: authorization result of Require valid-user : granted [Fri Jan 05 15:19:14.563831 2018] [authz_core:debug] [pid 1805:tid 140597700556544] mod_authz_core.c(809): [client 144.229.219.107:50494] AH01626: authorization result of <RequireAny>: granted |