Build SAML Breaker tests against SAP-Dev
Using the fvx account and testing against the target URL of https://sapsys-dev.ornl.gov/sap/bc/bsp/sap/z_am_eprop_mvc/start.do build tests that show
- happy path is successful in resolving to a page with the title "Property Item List" (logging in via Ping Fed with the fvx credential).
- If the SAML Signature is removed, the login fails
- If the SAML Subject is changed, the login fails
- If the SAML Signature is replaced by a valid signature from the self-signed key and the keyinfo is replaced with the self-signed key, the login fails
- If the login is delayed by more than 10 minutes, the login fails (token timeout).