when I send wrong auth_req_id in CIBA polling request, there is HTTP 500 server error - this is client error, there should be HTTP 400 instead.
- follow steps in
- create authentication tree "test" with nodes "Start" -> "Username collector" -> "Success"
- configure OAuth2Provider, Advanced OpenId Connect, OpenID Connect acr_values to Auth Chain Mapping - add key=push value=test
- do request as in
OPENAM-15049step C and save auth_req_id for next step
- do polling request with wrong auth_req_id:
There should be different unknown_auth_req_id error according to chapter 6.4 in: https://openid.net/specs/openid-connect-modrna-client-initiated-backchannel-authentication-1_0.html separate from expired_token error