Warning: all operations on this page are logged for public viewing. Do not share personally identifiable information.

RP checks response_nonce for replays


  1. Log into an OpenID 2.0 RP to be tested using this identifier:
  2. Upon being redirected to this page for authentication, click the Log In button.
  3. Verify that the RP accepted the authentication.
  4. Click your browser's Back button to get back here. Do not click Refresh.
  5. Click the Log In button again.
  6. Record whether the RP rejects the authentication.

Passing criteria

The RP passes if it accepts the first Log In attempt and rejects the second.