Zend Framework

OpenId check_immediate without log in shouldn't return cancel

Details

  • Type: Bug Bug
  • Status: Resolved Resolved
  • Priority: Minor Minor
  • Resolution: Fixed
  • Affects Version/s: 1.5.1
  • Fix Version/s: 1.6.0
  • Component/s: Zend_OpenId
  • Labels:
    None
  • Fix Version Priority:
    Must Have

Description

OpenId check_Immediate with logged out User returns "openid.mode cancel" instead "openid.mode setup_needed" .
The dump of the validator on http://openidenabled.com/resources/openid-test/checkup returns:

*
Redirecting to http://www.communipedia.com/openid/provide?openid.identity=http%3A%2F%2Fmarko.yiid.net%2F&openid.mode=checkid_immediate&openid.return_to=http%3A%2F%2Fopenidenabled.com%2Fresources%2Fopenid-test%2Fdiagnose-server%2FTestDumbCheckidImmediateSetupNeeded%2F%3Faction%3Dresponse%26attempt%3D1%26nonce%3DYW7sK1df&openid.trust_root=http%3A%2F%2Fopenidenabled.com%2Fresources%2Fopenid-test%2Fdiagnose-server%2FTestDumbCheckidImmediateSetupNeeded%2F
openid.identity http://marko.yiid.net/
openid.mode checkid_immediate
openid.return_to http://openidenabled.com/resources/openid-test/diagnose-server/TestDumbCheckidImmediateSetupNeeded/?action=response&attempt=1&nonce=YW7sK1df
openid.trust_root http://openidenabled.com/resources/openid-test/diagnose-server/TestDumbCheckidImmediateSetupNeeded/
*
Response received:
action response
attempt 1
nonce YW7sK1df
openid.mode cancel
openid.user_setup_url http://www.communipedia.com/auth/login?openid.identity=http%3A%2F%2Fmarko.yiid.net%2F&openid.mode=checkid_setup&openid.return_to=http%3A%2F%2Fopenidenabled.com%2Fresources%2Fopenid-test%2Fdiagnose-server%2FTestDumbCheckidImmediateSetupNeeded%2F%3Faction%3Dresponse%26attempt%3D1%26nonce%3DYW7sK1df&openid.trust_root=http%3A%2F%2Fopenidenabled.com%2Fresources%2Fopenid-test%2Fdiagnose-server%2FTestDumbCheckidImmediateSetupNeeded%2F

  • Operation Cancelled.

Activity

Hide
Wil Sinclair added a comment -

Please assign and categorize as necessary. I've preliminarily targeted a release.

Show
Wil Sinclair added a comment - Please assign and categorize as necessary. I've preliminarily targeted a release.
Hide
Dmitry Stogov added a comment -

Fixed only for OpenID 2.0, because OpenID 1.1 specification says nothing about "setup_needed" response.

Show
Dmitry Stogov added a comment - Fixed only for OpenID 2.0, because OpenID 1.1 specification says nothing about "setup_needed" response.
Hide
Wil Sinclair added a comment -

Updating for the 1.6.0 release.

Show
Wil Sinclair added a comment - Updating for the 1.6.0 release.

People

Vote (0)
Watch (0)

Dates

  • Created:
    Updated:
    Resolved: