2021-04-06 12:31:05,803 main INFO Log4j appears to be running in a Servlet environment, but there's no log4j-web module available. If you want better web container support, please add the log4j-web JAR to your web archive or server lib directory. 2021-04-06 12:31:09,405 main INFO Log4j appears to be running in a Servlet environment, but there's no log4j-web module available. If you want better web container support, please add the log4j-web JAR to your web archive or server lib directory. . ____ _ __ _ _ /\\ / ___'_ __ _ _(_)_ __ __ _ \ \ \ \ ( ( )\___ | '_ | '_| | '_ \/ _` | \ \ \ \ \\/ ___)| |_)| | | | | || (_| | ) ) ) ) ' |____| .__|_| |_|_| |_\__, | / / / / =========|_|==============|___/=/_/_/_/ :: Spring Boot :: (v2.2.4.RELEASE) 2021-04-06 12:31:11.999  INFO 1 [ main] o.s.b.SpringApplication  : No active profile set, falling back to default profiles: default 2021-04-06 12:31:22.699 DEBUG 1 [ main] o.j.l.LoggerProviders  : Logging Provider: org.jboss.logging.Log4j2LoggerProvider 2021-04-06 12:31:23.806  INFO 1 [ main] o.o.o.c.c.c.CmpServersConfig  : Loading initial configuration 2021-04-06 12:31:24.503  INFO 1 [ main] o.o.o.c.c.c.CmpServersConfig  : CMP Servers configuration successfully loaded from file /etc/onap/oom/certservice/cmpServers.json 2021-04-06 12:31:36.514  INFO 1 [ main] o.s.b.StartupInfoLogger  : Started CertServiceApplication in 33.015 seconds (JVM running for 39.69) 2021-04-06 12:39:06.901  INFO 1 [nio-8443-exec-5] o.o.o.c.a.CertificationController  : Received certificate signing request for CA named: RA 2021-04-06 12:39:06.911 DEBUG 1 [nio-8443-exec-5] .o.c.c.Pkcs10CertificationRequestFactory : Creating certification request from pem object 2021-04-06 12:39:07.103 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.CertificationModelFactory  : Received CSR meta data: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=sdnc.simpledemo.onap.org }, SANs: [sdnc.simpledemo.onap.org] } 2021-04-06 12:39:07.108 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.CertificationModelFactory  : Found server for given CA name: Cmpv2Server{authentication=Authentication{ iak=*****, rv=*****}, caMode=RA, caName='RA', issuerDN='CN=ManagementCA', url='http://ejbca:8080/ejbca/publicweb/cmp/cmpRA'} 2021-04-06 12:39:07.193  INFO 1 [nio-8443-exec-5] o.o.o.c.c.CertificationModelFactory  : Sending sign request for certification model for CA named: RA, and certificate signing request: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=sdnc.simpledemo.onap.org }, SANs: [sdnc.simpledemo.onap.org] } 2021-04-06 12:39:07.197  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpClientImpl  : Validate before creating Certificate Request for CA :RA in Mode RA 2021-04-06 12:39:07.203  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-04-06 12:39:07.203  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 12:39:07.204  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-04-06 12:39:07.210  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpMessageHelper  : Generating Extensions from Subject Alternative Names 2021-04-06 12:39:07.292  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpMessageHelper  : Generating Optional Validity from Date objects 2021-04-06 12:39:07.401  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating a Pki Header Builder 2021-04-06 12:39:07.408  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 12:39:07.409  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 12:39:07.502  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpUtil  : Generating array of bytes representing PkiHeader and PkiBody 2021-04-06 12:39:08.804  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpClientImpl  : Received response from Server 2021-04-06 12:39:08.808  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Response type: 1 2021-04-06 12:39:08.808 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpClientImpl  : Verifying signature of the response. 2021-04-06 12:39:08.892 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpClientImpl  : Verifying PasswordBased Protection of the Response. 2021-04-06 12:39:08.894  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseValidationHelper  : Iteration count is: 1168 2021-04-06 12:39:08.894  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseValidationHelper  : One Way Function type is: 1.3.14.3.2.26 2021-04-06 12:39:08.897  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseValidationHelper  : Mac type is: 1.3.6.1.5.5.8.1.2 2021-04-06 12:39:08.898  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseValidationHelper  : Implicit Confirm on certificate from server. 2021-04-06 12:39:08.905  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpClientImpl  : Response status code: 0 2021-04-06 12:39:08.906  INFO 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpClientImpl  : Verifying certificates returned as part of CertResponse. 2021-04-06 12:39:08.907 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 12:39:08.907 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 12:39:08.907 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 12:39:09.012 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 12:39:09.013 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 12:39:09.014 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 12:39:09.098 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Verifying certificate CN=sdnc.simpledemo.onap.org,OU=ONAP,O=Linux-Foundation,L=San-Francisco,ST=California,C=US as part of cert chain with certificate UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart 2021-04-06 12:39:09.207 DEBUG 1 [nio-8443-exec-5] o.o.o.c.c.i.CmpResponseHelper  : Certificate verify result:PKIXCertPathValidatorResult: [ Trust Anchor: [ Trusted CA cert: [0] Version: 3 SerialNumber: 20340048879046842872167882013644920346430670948 IssuerDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Start Date: Tue Apr 06 12:25:26 UTC 2021 Final Date: Sun Apr 06 12:25:26 UTC 2031 SubjectDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Public Key: RSA Public Key [aa:41:93:31:ab:d6:35:5c:0c:48:0a:ef:89:ce:b2:84:0d:16:e9:1c] modulus: ddc3b1ea5b0ce6899374e60d2017b13289c261892c4e57274072ea319a405cf3ee14ea8eece4c603c40ed3f615fbcf95eaa7cfeffd1d579060f8fdc0d532c6e9bf428b06296f1c1f5b97fc9100bda50136813e6928ab471ce68e93397439f6ae12b8dfdd6d7d540aeb593c155c347575ff7b92f7b31ea4fff9a5fd6f8e23b5eed0e602fd64a7b446216aa02eea394787f00ad48d1a114aba3ba7a072a6051b084e647e3f6f357c9373daec1d059946a0ae1b5279b61a935ed931cb08582e3b422eda7f97493891ab04222159bd288f780fe4b527d29789f932255f0d4a411392f36ce963be6a26c531511436176b2c19a5fdc57bd9e468b7729e3fe0bf9dc613b1d54b8847bec5f38ab3be83d1c0d9c82a5cf723bbec719028725c9605a983e7d171c58fa529d1f9e07c8871d7010925a4933eaf02e4a975015638bc1be809b0a8cc317ce281054f0f07c1e85c9fab650edca6b5163502fc6be3d6362580d7dd44aa3f54a2ee14d56b9be423707fc8effd9933f661bd7da6b47832746f626dd1 public exponent: 10001 Signature Algorithm: SHA256WITHRSA Signature: 3c6853953e9b207de5349bb85ef4e1e5b2aa55ad 0b0738293c79372c8f97a0d300d5635bffbb0da3 e2fed0cd1a5491f39681d84cb13bc25ca8f4fc4b 68ab065e2a8399321aa1d84a0e7733204382d516 bfccc81bf072702185b815f9269a403f2d659147 5fd8198b86309b22d49364a85cf9a8ac7215b444 c9524a609aa3fd2131f5a1b4c07ab776d3aa2c48 b3a9d80b38662d3ceab350f092b3da37cefb64bf bc70aaeb78fd3e882a95fcfd688dad3339fa41bd dc8d8bb4197f289847dc21408fbac5bebf28c911 606a6778a62c0ef656ed67c2cc82a7b7349a03e2 dd0e64a13cf25409dc6f0d61e79babe6b7c57bf9 6726cf278e119128b253057442e1fc49296944dc 8ce25dc34ff8d18ce76bcff12a920d4bd9e6689d a82b6ad36745163a7545876f136724ece12afe46 8bef6717eb5a146f2a097940dd7c5e156eb560e2 ea31d9d1ccd81c0116236b75a6a6decb220a498c 1103f4f994121fb236c0561fbede62d4dd75d9bb 94250930ff80c3e8f53d3e69eccc819f17c833c4 5121a87e Extensions: critical(true) BasicConstraints: isCa(true) critical(false) 2.5.29.35 value = Sequence Tagged [0] IMPLICIT DER Octet String[20] critical(false) 2.5.29.14 value = DER Octet String[20] critical(true) KeyUsage: 0x86 Policy Tree: null Subject Public Key: RSA Public Key [8b:a1:d2:04:cd:70:e0:3e:59:ea:de:88:ed:6a:9a:a4:fe:db:d0:f7] modulus: 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 public exponent: 10001 ] 2021-04-06 13:51:04.600  INFO 1 [nio-8443-exec-1] o.o.o.c.a.CertificationController  : Received certificate signing request for CA named: RA 2021-04-06 13:51:04.603 DEBUG 1 [nio-8443-exec-1] .o.c.c.Pkcs10CertificationRequestFactory : Creating certification request from pem object 2021-04-06 13:51:04.605 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Received CSR meta data: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=pnf-simulator }, SANs: [pnf-simulator] } 2021-04-06 13:51:04.606 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Found server for given CA name: Cmpv2Server{authentication=Authentication{ iak=*****, rv=*****}, caMode=RA, caName='RA', issuerDN='CN=ManagementCA', url='http://ejbca:8080/ejbca/publicweb/cmp/cmpRA'} 2021-04-06 13:51:04.606  INFO 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Sending sign request for certification model for CA named: RA, and certificate signing request: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=pnf-simulator }, SANs: [pnf-simulator] } 2021-04-06 13:51:04.607  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Validate before creating Certificate Request for CA :RA in Mode RA 2021-04-06 13:51:04.607  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-04-06 13:51:04.608  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpMessageHelper  : Generating Extensions from Subject Alternative Names 2021-04-06 13:51:04.608  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpMessageHelper  : Generating Optional Validity from Date objects 2021-04-06 13:51:04.696  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating a Pki Header Builder 2021-04-06 13:51:04.698  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 13:51:04.698  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 13:51:04.700  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating array of bytes representing PkiHeader and PkiBody 2021-04-06 13:51:05.176  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Received response from Server 2021-04-06 13:51:05.177  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Response type: 1 2021-04-06 13:51:05.177 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying signature of the response. 2021-04-06 13:51:05.180 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying PasswordBased Protection of the Response. 2021-04-06 13:51:05.181  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Iteration count is: 1168 2021-04-06 13:51:05.181  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : One Way Function type is: 1.3.14.3.2.26 2021-04-06 13:51:05.183  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Mac type is: 1.3.6.1.5.5.8.1.2 2021-04-06 13:51:05.184  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Implicit Confirm on certificate from server. 2021-04-06 13:51:05.184  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Response status code: 0 2021-04-06 13:51:05.185  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying certificates returned as part of CertResponse. 2021-04-06 13:51:05.185 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 13:51:05.186 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 13:51:05.186 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 13:51:05.187 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 13:51:05.187 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 13:51:05.188 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 13:51:05.189 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Verifying certificate CN=pnf-simulator,OU=ONAP,O=Linux-Foundation,L=San-Francisco,ST=California,C=US as part of cert chain with certificate UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart 2021-04-06 13:51:05.192 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Certificate verify result:PKIXCertPathValidatorResult: [ Trust Anchor: [ Trusted CA cert: [0] Version: 3 SerialNumber: 20340048879046842872167882013644920346430670948 IssuerDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Start Date: Tue Apr 06 12:25:26 UTC 2021 Final Date: Sun Apr 06 12:25:26 UTC 2031 SubjectDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Public Key: RSA Public Key [aa:41:93:31:ab:d6:35:5c:0c:48:0a:ef:89:ce:b2:84:0d:16:e9:1c] modulus: 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 public exponent: 10001 Signature Algorithm: SHA256WITHRSA Signature: 3c6853953e9b207de5349bb85ef4e1e5b2aa55ad 0b0738293c79372c8f97a0d300d5635bffbb0da3 e2fed0cd1a5491f39681d84cb13bc25ca8f4fc4b 68ab065e2a8399321aa1d84a0e7733204382d516 bfccc81bf072702185b815f9269a403f2d659147 5fd8198b86309b22d49364a85cf9a8ac7215b444 c9524a609aa3fd2131f5a1b4c07ab776d3aa2c48 b3a9d80b38662d3ceab350f092b3da37cefb64bf bc70aaeb78fd3e882a95fcfd688dad3339fa41bd dc8d8bb4197f289847dc21408fbac5bebf28c911 606a6778a62c0ef656ed67c2cc82a7b7349a03e2 dd0e64a13cf25409dc6f0d61e79babe6b7c57bf9 6726cf278e119128b253057442e1fc49296944dc 8ce25dc34ff8d18ce76bcff12a920d4bd9e6689d a82b6ad36745163a7545876f136724ece12afe46 8bef6717eb5a146f2a097940dd7c5e156eb560e2 ea31d9d1ccd81c0116236b75a6a6decb220a498c 1103f4f994121fb236c0561fbede62d4dd75d9bb 94250930ff80c3e8f53d3e69eccc819f17c833c4 5121a87e Extensions: critical(true) BasicConstraints: isCa(true) critical(false) 2.5.29.35 value = Sequence Tagged [0] IMPLICIT DER Octet String[20] critical(false) 2.5.29.14 value = DER Octet String[20] critical(true) KeyUsage: 0x86 Policy Tree: null Subject Public Key: RSA Public Key [54:c6:98:fc:d4:2b:df:7c:2c:35:ad:1e:27:c9:2d:f2:7e:98:79:af] modulus: 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 public exponent: 10001 ] 2021-04-06 13:53:41.075  INFO 1 [nio-8443-exec-1] o.o.o.c.a.CertificationController  : Received certificate signing request for CA named: RA 2021-04-06 13:53:41.078 DEBUG 1 [nio-8443-exec-1] .o.c.c.Pkcs10CertificationRequestFactory : Creating certification request from pem object 2021-04-06 13:53:41.082 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Received CSR meta data: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=dcae-ves-collector-cmpv2-cert }, SANs: [dcae-ves-collector-cmpv2-cert, ves-collector-cmpv2-cert, ves-cmpv2-cert] } 2021-04-06 13:53:41.084 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Found server for given CA name: Cmpv2Server{authentication=Authentication{ iak=*****, rv=*****}, caMode=RA, caName='RA', issuerDN='CN=ManagementCA', url='http://ejbca:8080/ejbca/publicweb/cmp/cmpRA'} 2021-04-06 13:53:41.084  INFO 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Sending sign request for certification model for CA named: RA, and certificate signing request: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=dcae-ves-collector-cmpv2-cert }, SANs: [dcae-ves-collector-cmpv2-cert, ves-collector-cmpv2-cert, ves-cmpv2-cert] } 2021-04-06 13:53:41.087  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Validate before creating Certificate Request for CA :RA in Mode RA 2021-04-06 13:53:41.089  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-04-06 13:53:41.091  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpMessageHelper  : Generating Extensions from Subject Alternative Names 2021-04-06 13:53:41.091  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpMessageHelper  : Generating Optional Validity from Date objects 2021-04-06 13:53:41.096  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating a Pki Header Builder 2021-04-06 13:53:41.098  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 13:53:41.098  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 13:53:41.101  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating array of bytes representing PkiHeader and PkiBody 2021-04-06 13:53:41.292  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Received response from Server 2021-04-06 13:53:41.293  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Response type: 1 2021-04-06 13:53:41.293 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying signature of the response. 2021-04-06 13:53:41.295 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying PasswordBased Protection of the Response. 2021-04-06 13:53:41.298  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Iteration count is: 1168 2021-04-06 13:53:41.299  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : One Way Function type is: 1.3.14.3.2.26 2021-04-06 13:53:41.301  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Mac type is: 1.3.6.1.5.5.8.1.2 2021-04-06 13:53:41.301  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Implicit Confirm on certificate from server. 2021-04-06 13:53:41.302  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Response status code: 0 2021-04-06 13:53:41.302  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying certificates returned as part of CertResponse. 2021-04-06 13:53:41.390 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 13:53:41.391 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 13:53:41.391 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 13:53:41.392 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 13:53:41.393 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 13:53:41.393 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 13:53:41.394 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Verifying certificate CN=dcae-ves-collector-cmpv2-cert,OU=ONAP,O=Linux-Foundation,L=San-Francisco,ST=California,C=US as part of cert chain with certificate UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart 2021-04-06 13:53:41.492 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Certificate verify result:PKIXCertPathValidatorResult: [ Trust Anchor: [ Trusted CA cert: [0] Version: 3 SerialNumber: 20340048879046842872167882013644920346430670948 IssuerDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Start Date: Tue Apr 06 12:25:26 UTC 2021 Final Date: Sun Apr 06 12:25:26 UTC 2031 SubjectDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Public Key: RSA Public Key [aa:41:93:31:ab:d6:35:5c:0c:48:0a:ef:89:ce:b2:84:0d:16:e9:1c] modulus: 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 public exponent: 10001 Signature Algorithm: SHA256WITHRSA Signature: 3c6853953e9b207de5349bb85ef4e1e5b2aa55ad 0b0738293c79372c8f97a0d300d5635bffbb0da3 e2fed0cd1a5491f39681d84cb13bc25ca8f4fc4b 68ab065e2a8399321aa1d84a0e7733204382d516 bfccc81bf072702185b815f9269a403f2d659147 5fd8198b86309b22d49364a85cf9a8ac7215b444 c9524a609aa3fd2131f5a1b4c07ab776d3aa2c48 b3a9d80b38662d3ceab350f092b3da37cefb64bf bc70aaeb78fd3e882a95fcfd688dad3339fa41bd dc8d8bb4197f289847dc21408fbac5bebf28c911 606a6778a62c0ef656ed67c2cc82a7b7349a03e2 dd0e64a13cf25409dc6f0d61e79babe6b7c57bf9 6726cf278e119128b253057442e1fc49296944dc 8ce25dc34ff8d18ce76bcff12a920d4bd9e6689d a82b6ad36745163a7545876f136724ece12afe46 8bef6717eb5a146f2a097940dd7c5e156eb560e2 ea31d9d1ccd81c0116236b75a6a6decb220a498c 1103f4f994121fb236c0561fbede62d4dd75d9bb 94250930ff80c3e8f53d3e69eccc819f17c833c4 5121a87e Extensions: critical(true) BasicConstraints: isCa(true) critical(false) 2.5.29.35 value = Sequence Tagged [0] IMPLICIT DER Octet String[20] critical(false) 2.5.29.14 value = DER Octet String[20] critical(true) KeyUsage: 0x86 Policy Tree: null Subject Public Key: RSA Public Key [8e:ac:d7:62:23:9c:27:21:d4:bb:a9:6a:08:9a:38:f3:a7:ac:f3:17] modulus: 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 public exponent: 10001 ] 2021-04-06 13:56:19.765  INFO 1 [nio-8443-exec-1] o.o.o.c.a.CertificationController  : Received certificate signing request for CA named: RA 2021-04-06 13:56:19.766 DEBUG 1 [nio-8443-exec-1] .o.c.c.Pkcs10CertificationRequestFactory : Creating certification request from pem object 2021-04-06 13:56:19.767 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Received CSR meta data: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=dcae-ves-collector-cmpv2-cert-wrong-sans }, SANs: [wrong-sans] } 2021-04-06 13:56:19.768 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Found server for given CA name: Cmpv2Server{authentication=Authentication{ iak=*****, rv=*****}, caMode=RA, caName='RA', issuerDN='CN=ManagementCA', url='http://ejbca:8080/ejbca/publicweb/cmp/cmpRA'} 2021-04-06 13:56:19.768  INFO 1 [nio-8443-exec-1] o.o.o.c.c.CertificationModelFactory  : Sending sign request for certification model for CA named: RA, and certificate signing request: CSR: { Subject: { L=San-Francisco,OU=ONAP,O=Linux-Foundation,ST=California,C=US,CN=dcae-ves-collector-cmpv2-cert-wrong-sans }, SANs: [wrong-sans] } 2021-04-06 13:56:19.769  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Validate before creating Certificate Request for CA :RA in Mode RA 2021-04-06 13:56:19.770  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random integer 2021-04-06 13:56:19.770  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpMessageHelper  : Generating Extensions from Subject Alternative Names 2021-04-06 13:56:19.771  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpMessageHelper  : Generating Optional Validity from Date objects 2021-04-06 13:56:19.775  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating a Pki Header Builder 2021-04-06 13:56:19.776  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 13:56:19.776  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating random array of bytes 2021-04-06 13:56:19.777  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpUtil  : Generating array of bytes representing PkiHeader and PkiBody 2021-04-06 13:56:19.892  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Received response from Server 2021-04-06 13:56:19.893  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Response type: 1 2021-04-06 13:56:19.893 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying signature of the response. 2021-04-06 13:56:19.895 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying PasswordBased Protection of the Response. 2021-04-06 13:56:19.895  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Iteration count is: 1168 2021-04-06 13:56:19.896  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : One Way Function type is: 1.3.14.3.2.26 2021-04-06 13:56:19.897  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Mac type is: 1.3.6.1.5.5.8.1.2 2021-04-06 13:56:19.897  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseValidationHelper  : Implicit Confirm on certificate from server. 2021-04-06 13:56:19.898  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Response status code: 0 2021-04-06 13:56:19.898  INFO 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpClientImpl  : Verifying certificates returned as part of CertResponse. 2021-04-06 13:56:19.899 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 13:56:19.899 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 13:56:19.900 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 13:56:19.900 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Retrieving certificate of type class java.security.cert.X509Certificate from byte array. 2021-04-06 13:56:19.901 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Parsing X509Certificate from bytes with provider BC 2021-04-06 13:56:19.901 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Creating certificate Factory to generate certificate using provider BC 2021-04-06 13:56:19.902 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Verifying certificate CN=dcae-ves-collector-cmpv2-cert-wrong-sans,OU=ONAP,O=Linux-Foundation,L=San-Francisco,ST=California,C=US as part of cert chain with certificate UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart 2021-04-06 13:56:19.905 DEBUG 1 [nio-8443-exec-1] o.o.o.c.c.i.CmpResponseHelper  : Certificate verify result:PKIXCertPathValidatorResult: [ Trust Anchor: [ Trusted CA cert: [0] Version: 3 SerialNumber: 20340048879046842872167882013644920346430670948 IssuerDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Start Date: Tue Apr 06 12:25:26 UTC 2021 Final Date: Sun Apr 06 12:25:26 UTC 2031 SubjectDN: UID=c-02229b88565e1b2ac,CN=ManagementCA,O=EJBCA Container Quickstart Public Key: RSA Public Key [aa:41:93:31:ab:d6:35:5c:0c:48:0a:ef:89:ce:b2:84:0d:16:e9:1c] modulus: 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 public exponent: 10001 Signature Algorithm: SHA256WITHRSA Signature: 3c6853953e9b207de5349bb85ef4e1e5b2aa55ad 0b0738293c79372c8f97a0d300d5635bffbb0da3 e2fed0cd1a5491f39681d84cb13bc25ca8f4fc4b 68ab065e2a8399321aa1d84a0e7733204382d516 bfccc81bf072702185b815f9269a403f2d659147 5fd8198b86309b22d49364a85cf9a8ac7215b444 c9524a609aa3fd2131f5a1b4c07ab776d3aa2c48 b3a9d80b38662d3ceab350f092b3da37cefb64bf bc70aaeb78fd3e882a95fcfd688dad3339fa41bd dc8d8bb4197f289847dc21408fbac5bebf28c911 606a6778a62c0ef656ed67c2cc82a7b7349a03e2 dd0e64a13cf25409dc6f0d61e79babe6b7c57bf9 6726cf278e119128b253057442e1fc49296944dc 8ce25dc34ff8d18ce76bcff12a920d4bd9e6689d a82b6ad36745163a7545876f136724ece12afe46 8bef6717eb5a146f2a097940dd7c5e156eb560e2 ea31d9d1ccd81c0116236b75a6a6decb220a498c 1103f4f994121fb236c0561fbede62d4dd75d9bb 94250930ff80c3e8f53d3e69eccc819f17c833c4 5121a87e Extensions: critical(true) BasicConstraints: isCa(true) critical(false) 2.5.29.35 value = Sequence Tagged [0] IMPLICIT DER Octet String[20] critical(false) 2.5.29.14 value = DER Octet String[20] critical(true) KeyUsage: 0x86 Policy Tree: null Subject Public Key: RSA Public Key [81:f5:d2:8e:84:57:6a:20:7f:e9:e9:eb:5a:ee:ac:4f:f6:bc:04:b4] modulus: b3a1f5d5df432eb6eda318501d8153ef31c734f5492739f7288dfd2b0b55219bc75493c09e3cbdc995efe515d2b17f28517d4162b7fd8968a677306cf576e0d0025408f084d427861dae26bd5d61eb8ee7582574cd0acb694066f8a53a085c7eaec9cb03b651534f7167b170aa2dbb480965641a7b0961da9df5bb2e31699e4287a17bd267862bfc4b6b93130082504633a203d67ffb3ad6f1fb936d5a6fcbf561cce9fbd5e93e717427d1517d40251bc35d6a06e402ce3fbfa05955c5e3aa79d9e822ebd367d5d95175d5d7f42ba3fc07fabb963a3a37310b9217c3daebf4bac6719eb2d590df86c6b28befd89706825fd7745d7b9b12d31f9493ba2d63a737 public exponent: 10001 ]