1. Token Verification -Valid Token Scenario =========================================== 2021-05-25T06:42:14.702702Z debug envoy http [C3711] new stream 2021-05-25T06:42:14.702818Z debug envoy http [C3711][S15488864536805001618] request headers complete (end_stream=false): ':authority', 'localhost' ':path', '/xvz/r/a/mc' ':method', 'POST' 'connection', 'keep-alive' 'content-length', '2' 'sec-ch-ua', '" Not A;Brand";v="99", "Chromium";v="90", "Google Chrome";v="90"' 'authorization', 'Bearer eyJraWQiOiIyMDIxLTA1LTI0VDEyOjU5OjU0LjMxNi5lYyIsInR5cCI6IkpXVCIsImFsZyI6IkVTMjU2In0.eyJzdWIiOiJwb3dlcmNoYXJ0IiwidXJuOmNvbTpjZXJuZXI6YXV0aG9yaXphdGlvbjpjbGFpbXMiOnsidmVyIjoiMS4wIiwidG50IjoiZmI4MDY3ZDctZTAxMi00NzAzLTg4ODgtMTdiODZkMTFmMGY4IiwiYXpzIjoibGF1bmNoIG9ubGluZV9hY2Nlc3Mgb3BlbmlkIHBhdGllbnRcL0VuY291bnRlci5yZWFkIHBhdGllbnRcL1BhdGllbnQucmVhZCBwcm9maWxlIiwicGF0aWVudCI6IjEyMzQifSwiYXpwIjoiMDk5NWNmODktZmY5OS00ZjZiLWExMjMtYmJmMWE4NDk5ZTE4IiwiaXNzIjoiaHR0cHM6XC9cL2F1dGhvcml6YXRpb24uc2FuZGJveGNlcm5lci5jb21cLyIsImV4cCI6MTYyMTkyNTU0MiwiaWF0IjoxNjIxOTI0OTQyLCJqdGkiOiIyYzgzZjljYS03YzliLTQxNzItYjM2YS0yZTU0ZTMzMzUzODMiLCJ1cm46Y2VybmVyOmF1dGhvcml6YXRpb246Y2xhaW1zOnZlcnNpb246MSI6eyJ2ZXIiOiIxLjAiLCJwcm9maWxlcyI6eyJtaWxsZW5uaXVtLXYxIjp7fSwic21hcnQtdjEiOnsicGF0aWVudHMiOlsiMTIzNCJdLCJhenMiOiJsYXVuY2ggb25saW5lX2FjY2VzcyBvcGVuaWQgcGF0aWVudFwvRW5jb3VudGVyLnJlYWQgcGF0aWVudFwvUGF0aWVudC5yZWFkIHByb2ZpbGUifX0sImNsaWVudCI6eyJuYW1lIjoiQWp1IGZvciB0ZXN0aW5nIiwiaWQiOiIwOTk1Y2Y4OS1mZjk5LTRmNmItYTEyMy1iYmYxYTg0OTllMTgifSwidXNlciI6eyJwcmluY2lwYWwiOiJwb3dlcmNoYXJ0IiwicGVyc29uYSI6InByb3ZpZGVyIiwiaWRzcCI6ImZiODA2N2Q3LWUwMTItNDcwMy04ODg4LTE3Yjg2ZDExZjBmOCIsInNlc3Npb25JZCI6ImY2Yzk4NTNlLWQ4M2EtNGVmNy05M2JlLTk1MmQ1YjY2M2VkMCIsInByaW5jaXBhbFR5cGUiOiJ1c2VybmFtZSIsInByaW5jaXBhbFVyaSI6Imh0dHBzOlwvXC9taWxsZW5uaWEuc2FuZGJveGNlcm5lci5jb21cL2luc3RhbmNlXC9mYjgwNjdkNy1lMDEyLTQ3MDMtODg4OC0xN2I4NmQxMWYwZjhcL3ByaW5jaXBhbFwvMDAwMC4wMDAwLjAwMTMuMkEyMSIsImlkc3BVcmkiOiJodHRwczpcL1wvZW5nLW1vLnNhbmRib3hjZXJuZXJtaWxsZW5uaXVtLmNvbVwvYWNjb3VudHNcL3NvbGdtLmlwLmRldmNlcm5lci5uZXRcL2ZiODA2N2Q3LWUwMTItNDcwMy04ODg4LTE3Yjg2ZDExZjBmOFwvbG9naW4ifSwidGVuYW50IjoiZmI4MDY3ZDctZTAxMi00NzAzLTg4ODgtMTdiODZkMTFmMGY4In19.vpnj2hvhj2bjyO3lhHteDbnOhz-YqELxPaamL1fsnEJ8pHO6TAwu2yDdTeoyoLkTsMwR2eEn1l5gsioO-5AADg' 'withcredentials', 'true' 'sec-ch-ua-mobile', '?0' 'user-agent', 'Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.212 Safari/537.36' 'content-type', 'application/json' 'accept', '*/*' 'origin', 'http://localhost' 'sec-fetch-site', 'same-origin' 'sec-fetch-mode', 'cors' 'sec-fetch-dest', 'empty' 'referer', 'http://localhost/xvz/r/a/mc' 'accept-encoding', 'gzip, deflate, br' 'accept-language', 'en-IN,en-GB;q=0.9,en-US;q=0.8,en;q=0.7' 2021-05-25T06:42:14.702858Z debug envoy jwt Called Filter : setDecoderFilterCallbacks 2021-05-25T06:42:14.702918Z debug envoy jwt Called Filter : decodeHeaders 2021-05-25T06:42:14.702948Z debug envoy jwt Prefix requirement '/' matched. 2021-05-25T06:42:14.702956Z debug envoy jwt extract authorizationBearer 2021-05-25T06:42:14.702986Z debug envoy jwt origins-0: JWT authentication starts (allow_failed=false), tokens size=1 2021-05-25T06:42:14.702988Z debug envoy jwt origins-0: startVerify: tokens size 1 2021-05-25T06:42:14.702991Z debug envoy jwt origins-0: Parse Jwt eyJraWQiOiIyMDIxLTA1LTI0VDEyOjU5OjU0LjMxNi5lYyIsInR5cCI6IkpXVCIsImFsZyI6IkVTMjU2In0.eyJzdWIiOiJwb3dlcmNoYXJ0IiwidXJuOmNvbTpjZXJuZXI6YXV0aG9yaXphdGlvbjpjbGFpbXMiOnsidmVyIjoiMS4wIiwidG50IjoiZmI4MDY3ZDctZTAxMi00NzAzLTg4ODgtMTdiODZkMTFmMGY4IiwiYXpzIjoibGF1bmNoIG9ubGluZV9hY2Nlc3Mgb3BlbmlkIHBhdGllbnRcL0VuY291bnRlci5yZWFkIHBhdGllbnRcL1BhdGllbnQucmVhZCBwcm9maWxlIiwicGF0aWVudCI6IjEyMzQifSwiYXpwIjoiMDk5NWNmODktZmY5OS00ZjZiLWExMjMtYmJmMWE4NDk5ZTE4IiwiaXNzIjoiaHR0cHM6XC9cL2F1dGhvcml6YXRpb24uc2FuZGJveGNlcm5lci5jb21cLyIsImV4cCI6MTYyMTkyNTU0MiwiaWF0IjoxNjIxOTI0OTQyLCJqdGkiOiIyYzgzZjljYS03YzliLTQxNzItYjM2YS0yZTU0ZTMzMzUzODMiLCJ1cm46Y2VybmVyOmF1dGhvcml6YXRpb246Y2xhaW1zOnZlcnNpb246MSI6eyJ2ZXIiOiIxLjAiLCJwcm9maWxlcyI6eyJtaWxsZW5uaXVtLXYxIjp7fSwic21hcnQtdjEiOnsicGF0aWVudHMiOlsiMTIzNCJdLCJhenMiOiJsYXVuY2ggb25saW5lX2FjY2VzcyBvcGVuaWQgcGF0aWVudFwvRW5jb3VudGVyLnJlYWQgcGF0aWVudFwvUGF0aWVudC5yZWFkIHByb2ZpbGUifX0sImNsaWVudCI6eyJuYW1lIjoiQWp1IGZvciB0ZXN0aW5nIiwiaWQiOiIwOTk1Y2Y4OS1mZjk5LTRmNmItYTEyMy1iYmYxYTg0OTllMTgifSwidXNlciI6eyJwcmluY2lwYWwiOiJwb3dlcmNoYXJ0IiwicGVyc29uYSI6InByb3ZpZGVyIiwiaWRzcCI6ImZiODA2N2Q3LWUwMTItNDcwMy04ODg4LTE3Yjg2ZDExZjBmOCIsInNlc3Npb25JZCI6ImY2Yzk4NTNlLWQ4M2EtNGVmNy05M2JlLTk1MmQ1YjY2M2VkMCIsInByaW5jaXBhbFR5cGUiOiJ1c2VybmFtZSIsInByaW5jaXBhbFVyaSI6Imh0dHBzOlwvXC9taWxsZW5uaWEuc2FuZGJveGNlcm5lci5jb21cL2luc3RhbmNlXC9mYjgwNjdkNy1lMDEyLTQ3MDMtODg4OC0xN2I4NmQxMWYwZjhcL3ByaW5jaXBhbFwvMDAwMC4wMDAwLjAwMTMuMkEyMSIsImlkc3BVcmkiOiJodHRwczpcL1wvZW5nLW1vLnNhbmRib3hjZXJuZXJtaWxsZW5uaXVtLmNvbVwvYWNjb3VudHNcL3NvbGdtLmlwLmRldmNlcm5lci5uZXRcL2ZiODA2N2Q3LWUwMTItNDcwMy04ODg4LTE3Yjg2ZDExZjBmOFwvbG9naW4ifSwidGVuYW50IjoiZmI4MDY3ZDctZTAxMi00NzAzLTg4ODgtMTdiODZkMTFmMGY4In19.vpnj2hvhj2bjyO3lhHteDbnOhz-YqELxPaamL1fsnEJ8pHO6TAwu2yDdTeoyoLkTsMwR2eEn1l5gsioO-5AADg 2021-05-25T06:42:14.703156Z debug envoy jwt origins-0: Verifying JWT token of issuer https://authorization.sandboxcerner.com/ 2021-05-25T06:42:14.703179Z debug envoy jwt origins-0: JWT token verification completed with: Jwks doesn't have key to match kid or alg from Jwt 2021-05-25T06:42:14.703182Z debug envoy jwt Jwt authentication completed with: Jwks doesn't have key to match kid or alg from Jwt 2021-05-25T06:42:14.703190Z debug envoy http [C3711][S15488864536805001618] Sending local reply with details jwt_authn_access_denied{Jwks_doesn't_have_key_to_match_kid_or_alg_from_Jwt} 2021-05-25T06:42:14.703219Z debug envoy http [C3711][S15488864536805001618] encoding headers via codec (end_stream=false): ':status', '401' 'content-length', '50' 'content-type', 'text/plain' 'date', 'Tue, 25 May 2021 06:42:14 GMT' 'server', 'istio-envoy' 'connection', 'close'