New-reg "Status 400: urn:acme:error:malformed"

1,283 views
Skip to first unread message

elahdb...@gmail.com

unread,
Jul 28, 2016, 2:46:32 PM7/28/16
to Let's Encrypt Client Development
Hey all,

I'm looking for help figuring out why my new-reg request is being rejected. Relevant data is below.

ACME RESPONSE:
{
"type": "urn:acme:error:malformed",
"detail": "JWS verification error",
"status": 400
}

NEW-REG REQUEST:
{
"header":{
"alg":"RS256",
"jwk":{
"e":"AQAB",
"kty":"RSA",
"n":"1_qf-pFFFTDClZJPa7X-51ZSyAgfWYWOY9Rwmtgm0zXI_706_bjDSOvuc73r-ni0GgB18e9BjogIktKOKAt9SX_TqVxmHLNO3HBMmX_ctxCBegmoW01Aojxyh3PS0Q0aK_C-J_BadgtA_TSR5d47kFPdK5xGfzd4ZKMKOFN2uyEnPF2kDnnbe33ada6_-YJTMgNXRR64611sWF1NQ3ue-Y9qGIk9zX9YDlaa4s2BeYnGQdPDd0VdJrdZMICuq9TXNrRKUgM9HcRQdrQmjge1ukNOd0SuQDHdtKQtRPeOE5KlC5XpaRioFHks2tWqJPQGJ4FQflP0l69HUEdCa1dE4cbhtiVaibtiQu7kE3el0WiK4d4QmFF7egD5arSwfEjG_659ihQeuzpweataOZq_Q-JW-goCrLNHkuhLZcGdLUzDyF9k88xHioO5dMFMhVO16E6xwtic-0Kj79ILrmgnHxVoViX3R7XYByWuMI6x3rV6CvJskSZWo6YfGNK35hkyhTWxM159koeFhb9kuB0j1jAWX1_lBEcRmePeLjGQVXD6elNf0XJVrVl6xvHjc6g4ibhL-sWwSm3VwrNGUsvaMrYaa-0tkJ4yCGBkzmjCa_yaTVKKV0PunPS5IpEM_uJepcfqi3Xz46jAyU3manJ6_Ben2J0UHjbckMqgjGLR888"
}
},
"protected":"eyJub25jZSI6ICJEbDJmaElkZDlVeDlLN1V6NlVhYThYX1cwaXh2VmNtSU1icFFuSVhrNU1VIiwgImFsZyI6ICJSUzI1NiIsICJqd2siOiB7ImUiOiAiQVFBQiIsICJrdHkiOiAiUlNBIiwgIm4iOiAiMV9xZi1wRkZGVERDbFpKUGE3WC01MVpTeUFnZldZV09ZOVJ3bXRnbTB6WElfNzA2X2JqRFNPdnVjNzNyLW5pMEdnQjE4ZTlCam9nSWt0S09LQXQ5U1hfVHFWeG1ITE5PM0hCTW1YX2N0eENCZWdtb1cwMUFvanh5aDNQUzBRMGFLX0MtSl9CYWRndEFfVFNSNWQ0N2tGUGRLNXhHZnpkNFpLTUtPRk4ydXlFblBGMmtEbm5iZTMzYWRhNl8tWUpUTWdOWFJSNjQ2MTFzV0YxTlEzdWUtWTlxR0lrOXpYOVlEbGFhNHMyQmVZbkdRZFBEZDBWZEpyZFpNSUN1cTlUWE5yUktVZ005SGNSUWRyUW1qZ2UxdWtOT2QwU3VRREhkdEtRdFJQZU9FNUtsQzVYcGFSaW9GSGtzMnRXcUpQUUdKNEZRZmxQMGw2OUhVRWRDYTFkRTRjYmh0aVZhaWJ0aVF1N2tFM2VsMFdpSzRkNFFtRkY3ZWdENWFyU3dmRWpHXzY1OWloUWV1enB3ZWF0YU9acV9RLUpXLWdvQ3JMTkhrdWhMWmNHZExVekR5RjlrODh4SGlvTzVkTUZNaFZPMTZFNnh3dGljLTBLajc5SUxybWduSHhWb1ZpWDNSN1hZQnlXdU1JNngzclY2Q3ZKc2tTWldvNllmR05LMzVoa3loVFd4TTE1OWtvZUZoYjlrdUIwajFqQVdYMV9sQkVjUm1lUGVMakdRVlhENmVsTmYwWEpWclZsNnh2SGpjNmc0aWJoTC1zV3dTbTNWd3JOR1VzdmFNcllhYS0wdGtKNHlDR0Jrem1qQ2FfeWFUVktLVjBQdW5QUzVJcEVNX3VKZXBjZnFpM1h6NDZqQXlVM21hbko2X0JlbjJKMFVIamJja01xZ2pHTFI4ODgifX0",
"payload":"eyJyZXNvdXJjZSI6ICJuZXctcmVnIiwgImFncmVlbWVudCI6ICJodHRwczovL2xldHNlbmNyeXB0Lm9yZy9kb2N1bWVudHMvTEUtU0EtdjEuMC4xLUp1bHktMjctMjAxNS5wZGYifQ",
"signature":"A6ISxNK5VVYJQITx812EIPuoxiikCa68Q6pV8hPgqtClL6YudS6e6hii_-1lHYzRYE8CZ5XlOdZAc2Yog0uemTBPzaelPi4k0PtsOXGfvZhO55w1aoRzwO20IdKWlp4qmV_jO-VmlRyVgeC8ffRi5vlCiFvsTytFgDYMQeFdR2Z42_48wreVHp9dOlOi8A4EJQUzbTmmFbQX86IPcRv2zj7qG3ZS9NvPETPTP7qLIEKqjc5UeioakKUJXEUBEN4RqlCO-7K-yF7Tqv7nDzpE08_d4NMgad4IGw3vXlova-TRquAQLFVMOwgdZuiEILcD_vfLcyLpk0EWXVfc5kMFxGa-xJ9V0YHHJojZ-s4dYGLRDW_g-APVVHzEM1e6alOseYNDH--uVsGkqeT3qo8MOVur_x8v89fjgODGRyYF6LVRgr2plYkTyhPkursDOEtckLMq_y5og5ApVqGRXBhjQlAIq1qjYErPoe3Dx2OaSZa_p_pbbVYpHVEnW4t-1M0wN8q7R0pqY69I1JdfyUOV1Y5TgnEN-vbppzB3VJnk8XcqnV0B5dCFjmAswdUQ2JD9SBRY45ZnVmVYCDHx5yiIfUI_pORfg1C6fxOXR3co9HhYBA4bnDlpGuv-cDfpV__TU9Q2EA35MBMx93U9JX4v62FvfpTH-fSWLqGdPWg_STI"
}

-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----

-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

Any ideas? The signature validates in Python (by the same library I'm using the generate the signature), but OpenSSL won't validate on the command line. Not sure this is the issue, but it's the only abnormality I've found.

Thanks!
Reply all
Reply to author
Forward
0 new messages