2021-05-30 22:53:37,253 main INFO Log4j appears to be running in a Servlet environment, but there's no log4j-web module available. If you want better web container support, please add the log4j-web JAR to your web archive or server lib directory. 2021-05-30 22:53:37,963 main INFO Log4j appears to be running in a Servlet environment, but there's no log4j-web module available. If you want better web container support, please add the log4j-web JAR to your web archive or server lib directory. . ____ _ __ _ _ /\\ / ___'_ __ _ _(_)_ __ __ _ \ \ \ \ ( ( )\___ | '_ | '_| | '_ \/ _` | \ \ \ \ \\/ ___)| |_)| | | | | || (_| | ) ) ) ) ' |____| .__|_| |_|_| |_\__, | / / / / =========|_|==============|___/=/_/_/_/ :: Spring Boot :: (v2.2.4.RELEASE) 2021-05-30 22:53:38.487  INFO 1 [ main] o.s.b.SpringApplication  : No active profile set, falling back to default profiles: default 2021-05-30 22:53:40.521 DEBUG 1 [ main] o.j.l.LoggerProviders  : Logging Provider: org.jboss.logging.Log4j2LoggerProvider 2021-05-30 22:53:40.740  INFO 1 [ main] o.o.o.c.c.c.CmpServersConfig  : Loading initial configuration 2021-05-30 22:53:40.882  INFO 1 [ main] o.o.o.c.c.c.CmpServersConfig  : CMP Servers configuration successfully loaded from file /etc/onap/oom/certservice/cmpServers.json 2021-05-30 22:53:42.787  INFO 1 [ main] o.s.b.StartupInfoLogger  : Started CertServiceApplication in 5.984 seconds (JVM running for 7.466) 2021-05-30 22:54:43.688  INFO 1 [io-8443-exec-10] o.o.o.c.a.CertificationController  : Received certificate signing request for CA named: RA 2021-05-30 22:54:43.695 DEBUG 1 [io-8443-exec-10] .o.c.c.Pkcs10CertificationRequestFactory : Creating certification request from pem object 2021-05-30 22:54:43.725 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.CertificationModelFactory  : Received CSR meta data: CSR: { Subject: { C=US,ST=California,L=San-Francisco,O=Linux-Foundation,OU=ONAP,CN=sdnc.simpledemo.onap.org }, SANs: [sdnc.simpledemo.onap.org] } 2021-05-30 22:54:43.728 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.CertificationModelFactory  : Found server for given CA name: Cmpv2Server{authentication=Authentication{ iak=*****, rv=*****}, caMode=RA, caName='RA', issuerDN='CN=ManagementCA', url='http://ejbca:8080/ejbca/publicweb/cmp/cmpRA'} 2021-05-30 22:54:43.739  INFO 1 [io-8443-exec-10] o.o.o.c.c.CertificationModelFactory  : Sending sign request for certification model for CA named: RA, and certificate signing request: CSR: { Subject: { C=US,ST=California,L=San-Francisco,O=Linux-Foundation,OU=ONAP,CN=sdnc.simpledemo.onap.org }, SANs: [sdnc.simpledemo.onap.org] } 2021-05-30 22:54:43.741  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpClientImpl  : Validate before creating Certificate Request for CA :RA in Mode RA 2021-05-30 22:54:43.745  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-05-30 22:54:43.745  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-05-30 22:54:43.746  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-05-30 22:54:43.751  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpMessageHelper  : Generating Extensions from Subject Alternative Names 2021-05-30 22:54:43.754  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpMessageHelper  : Generating Optional Validity from Date objects 2021-05-30 22:54:43.787  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating a Pki Header Builder 2021-05-30 22:54:43.791  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-05-30 22:54:43.791  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-05-30 22:54:43.803  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpUtil  : Generating array of bytes representing PkiHeader and PkiBody 2021-05-30 22:54:44.417  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpClientImpl  : Received response from Server 2021-05-30 22:54:44.420  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Response type: 1 2021-05-30 22:54:44.421 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpClientImpl  : Verifying signature of the response. 2021-05-30 22:54:44.425 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpClientImpl  : Verifying PasswordBased Protection of the Response. 2021-05-30 22:54:44.426  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseValidationHelper  : Iteration count is: 1762 2021-05-30 22:54:44.427  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseValidationHelper  : One Way Function type is: 1.3.14.3.2.26 2021-05-30 22:54:44.429  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseValidationHelper  : Mac type is: 1.3.6.1.5.5.8.1.2 2021-05-30 22:54:44.430  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseValidationHelper  : Implicit Confirm on certificate from server. 2021-05-30 22:54:44.436  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpClientImpl  : Response status code: 0 2021-05-30 22:54:44.437  INFO 1 [io-8443-exec-10] o.o.o.c.c.i.CmpClientImpl  : Verifying certificates returned as part of CertResponse. 2021-05-30 22:54:44.438 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-05-30 22:54:44.439 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-05-30 22:54:44.439 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-05-30 22:54:44.449 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-05-30 22:54:44.450 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-05-30 22:54:44.450 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-05-30 22:54:44.455 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Verifying certificate CN=sdnc.simpledemo.onap.org,OU=ONAP,O=Linux-Foundation,L=San-Francisco,ST=California,C=US as part of cert chain with certificate UID=c-05r8n9wox8aiwmkjt,CN=ManagementCA,O=EJBCA Container Quickstart 2021-05-30 22:54:44.481 DEBUG 1 [io-8443-exec-10] o.o.o.c.c.i.CmpResponseHelper  : Certificate verify result:PKIXCertPathValidatorResult: [ Trust Anchor: [ Trusted CA cert: [0] Version: 3 SerialNumber: 594920134464172067354409196203431771972289866329 IssuerDN: UID=c-05r8n9wox8aiwmkjt,CN=ManagementCA,O=EJBCA Container Quickstart Start Date: Sun May 30 22:50:28 UTC 2021 Final Date: Fri May 30 22:50:27 UTC 2031 SubjectDN: UID=c-05r8n9wox8aiwmkjt,CN=ManagementCA,O=EJBCA Container Quickstart Public Key: RSA Public Key [0e:50:d7:0a:fb:41:5d:a5:ab:f3:cc:a4:76:33:c8:ee:11:3b:1e:48] modulus: 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 public exponent: 10001 Signature Algorithm: SHA256WITHRSA Signature: 4ec21ca20f1a1f3ea17bcb404ab620ed2f3d2769 fcc5e0e0744d070e74c881a4bf44d29929c1bc2e c3d5ebee04fa54ce84ab267f1c4ee18622707d78 8bfd5dcb8f8cd8a15903b449b8f9ace782aaed6d 093be667aa1ce3f357f57ef2a86602286ad40036 824db2866d02d1aa27e6d2770f474f66b1af5846 45f6ecf120bb6ebe10a7ff60f735650e2a3c40ce 6d1afd5d5257d0f7e27a0c5c352d82621dfd306c 6f42f95499d88d1213724077447846e7064de16f 78dd4d003ffbaa6c79366f15e3fe62e876503caa b838ef7c64e6cf02d00e57284c0388781ebac8b9 236ea692e83de80113cc2ed72e2f0b1fbf021e10 f2ecbc880db857625e431e040250a25264ae49b5 fdc1db6b485faed037477480a9bc5a25487dd5f5 af439b2ce28c3fa34c63e93359cf5b69200b4cd2 bf9a7e6768a307508b2ec59f280788841fc8cec7 3ced4253d152f408b418a8cb365d9f9d4fb39380 8a047185e68a75259e643cf64cc97ad01293b52e e2bb1aca8099a856658db782869ab11634077afb 58d34a7b Extensions: critical(true) BasicConstraints: isCa(true) critical(false) 2.5.29.35 value = Sequence Tagged [0] IMPLICIT DER Octet String[20] critical(false) 2.5.29.14 value = DER Octet String[20] critical(true) KeyUsage: 0x86 Policy Tree: null Subject Public Key: RSA Public Key [61:ad:7d:f1:10:f1:ed:da:8f:d4:e8:a2:d0:05:29:21:81:c0:0f:92] modulus: d5b2297926f57a1141183bbc7ee503a3b32cad695f03714a0e1764880e9f30ea3c01bd28cf0845729ff86c5cc1b411789d75259331dd9f204d51d279d57d8b2745b9ab26ffdff3c1d52f0bbb6daab3a0d2f67b8c87f91696f93040e3c347106e4bc3d095b633f6902b26825c09d3ed952b090b3f1fa9c22b72486dbadc8bd45f1b45a9d4e2315a66e3c7363748b7ec8b346e0cebcecf315b6022c397abe2e117f8beacd6af9e0c6a3e6bbc05f6b8b3d5cfbe25bbe1d19b371ee4cdbbd90b624dada9ea39701857addf21072d85f61e92f2afcd656d392073a0871ff7564e50eb03b7f06fc12b38e3e0c55951c5f132bcc3a4cf55d526bc070a47864f9064d08d public exponent: 10001 ] 2021-05-30 22:54:44.772  INFO 1 [nio-8443-exec-4] o.o.o.c.a.CertificationController  : Received certificate signing request for CA named: RA 2021-05-30 22:54:44.774 DEBUG 1 [nio-8443-exec-4] .o.c.c.Pkcs10CertificationRequestFactory : Creating certification request from pem object 2021-05-30 22:54:44.775 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.CertificationModelFactory  : Received CSR meta data: CSR: { Subject: { C=US,ST=California,L=San-Francisco,O=Linux-Foundation,OU=ONAP,CN=sdnc.simpledemo.onap.org }, SANs: [sdnc.simpledemo.onap.org] } 2021-05-30 22:54:44.776 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.CertificationModelFactory  : Found server for given CA name: Cmpv2Server{authentication=Authentication{ iak=*****, rv=*****}, caMode=RA, caName='RA', issuerDN='CN=ManagementCA', url='http://ejbca:8080/ejbca/publicweb/cmp/cmpRA'} 2021-05-30 22:54:44.777  INFO 1 [nio-8443-exec-4] o.o.o.c.c.CertificationModelFactory  : Sending sign request for certification model for CA named: RA, and certificate signing request: CSR: { Subject: { C=US,ST=California,L=San-Francisco,O=Linux-Foundation,OU=ONAP,CN=sdnc.simpledemo.onap.org }, SANs: [sdnc.simpledemo.onap.org] } 2021-05-30 22:54:44.778  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpClientImpl  : Validate before creating Certificate Request for CA :RA in Mode RA 2021-05-30 22:54:44.778  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-05-30 22:54:44.779  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpMessageHelper  : Generating Extensions from Subject Alternative Names 2021-05-30 22:54:44.779  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpMessageHelper  : Generating Optional Validity from Date objects 2021-05-30 22:54:44.786  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpUtil  : Generating a Pki Header Builder 2021-05-30 22:54:44.787  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-05-30 22:54:44.788  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-05-30 22:54:44.791  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpUtil  : Generating array of bytes representing PkiHeader and PkiBody 2021-05-30 22:54:44.916  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpClientImpl  : Received response from Server 2021-05-30 22:54:44.916  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Response type: 1 2021-05-30 22:54:44.917 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpClientImpl  : Verifying signature of the response. 2021-05-30 22:54:44.919 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpClientImpl  : Verifying PasswordBased Protection of the Response. 2021-05-30 22:54:44.920  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseValidationHelper  : Iteration count is: 1762 2021-05-30 22:54:44.920  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseValidationHelper  : One Way Function type is: 1.3.14.3.2.26 2021-05-30 22:54:44.922  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseValidationHelper  : Mac type is: 1.3.6.1.5.5.8.1.2 2021-05-30 22:54:44.923  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseValidationHelper  : Implicit Confirm on certificate from server. 2021-05-30 22:54:44.923  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpClientImpl  : Response status code: 0 2021-05-30 22:54:44.924  INFO 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpClientImpl  : Verifying certificates returned as part of CertResponse. 2021-05-30 22:54:44.924 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-05-30 22:54:44.924 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-05-30 22:54:44.925 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-05-30 22:54:44.925 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-05-30 22:54:44.926 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-05-30 22:54:44.926 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-05-30 22:54:44.927 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Verifying certificate CN=sdnc.simpledemo.onap.org,OU=ONAP,O=Linux-Foundation,L=San-Francisco,ST=California,C=US as part of cert chain with certificate UID=c-05r8n9wox8aiwmkjt,CN=ManagementCA,O=EJBCA Container Quickstart 2021-05-30 22:54:44.930 DEBUG 1 [nio-8443-exec-4] o.o.o.c.c.i.CmpResponseHelper  : Certificate verify result:PKIXCertPathValidatorResult: [ Trust Anchor: [ Trusted CA cert: [0] Version: 3 SerialNumber: 594920134464172067354409196203431771972289866329 IssuerDN: UID=c-05r8n9wox8aiwmkjt,CN=ManagementCA,O=EJBCA Container Quickstart Start Date: Sun May 30 22:50:28 UTC 2021 Final Date: Fri May 30 22:50:27 UTC 2031 SubjectDN: UID=c-05r8n9wox8aiwmkjt,CN=ManagementCA,O=EJBCA Container Quickstart Public Key: RSA Public Key [0e:50:d7:0a:fb:41:5d:a5:ab:f3:cc:a4:76:33:c8:ee:11:3b:1e:48] modulus: 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 public exponent: 10001 Signature Algorithm: SHA256WITHRSA Signature: 4ec21ca20f1a1f3ea17bcb404ab620ed2f3d2769 fcc5e0e0744d070e74c881a4bf44d29929c1bc2e c3d5ebee04fa54ce84ab267f1c4ee18622707d78 8bfd5dcb8f8cd8a15903b449b8f9ace782aaed6d 093be667aa1ce3f357f57ef2a86602286ad40036 824db2866d02d1aa27e6d2770f474f66b1af5846 45f6ecf120bb6ebe10a7ff60f735650e2a3c40ce 6d1afd5d5257d0f7e27a0c5c352d82621dfd306c 6f42f95499d88d1213724077447846e7064de16f 78dd4d003ffbaa6c79366f15e3fe62e876503caa b838ef7c64e6cf02d00e57284c0388781ebac8b9 236ea692e83de80113cc2ed72e2f0b1fbf021e10 f2ecbc880db857625e431e040250a25264ae49b5 fdc1db6b485faed037477480a9bc5a25487dd5f5 af439b2ce28c3fa34c63e93359cf5b69200b4cd2 bf9a7e6768a307508b2ec59f280788841fc8cec7 3ced4253d152f408b418a8cb365d9f9d4fb39380 8a047185e68a75259e643cf64cc97ad01293b52e e2bb1aca8099a856658db782869ab11634077afb 58d34a7b Extensions: critical(true) BasicConstraints: isCa(true) critical(false) 2.5.29.35 value = Sequence Tagged [0] IMPLICIT DER Octet String[20] critical(false) 2.5.29.14 value = DER Octet String[20] critical(true) KeyUsage: 0x86 Policy Tree: null Subject Public Key: RSA Public Key [61:ad:7d:f1:10:f1:ed:da:8f:d4:e8:a2:d0:05:29:21:81:c0:0f:92] modulus: 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 public exponent: 10001 ]