Page MenuHomePhabricator
Paste P7711

(An Untitled Masterwork)
ActivePublic

Authored by Vgutierrez on Oct 23 2018, 9:46 AM.
Tags
None
Referenced Files
F26726759:
Oct 23 2018, 9:46 AM
Subscribers
None
>>> c = CertCentral()
SIGHUP received
Missing/invalid DNS zone updater CMD timeout, using the default one: 60.00
Creating initial self-signed certificate for pinkunicorn / ec-prime256v1
Creating initial self-signed certificate for pinkunicorn / rsa-2048
>>> c.cert_status
defaultdict(<class 'dict'>, {'pinkunicorn': {'ec-prime256v1': <CertificateStatus.SELF_SIGNED: 2>, 'rsa-2048': <CertificateStatus.SELF_SIGNED: 2>}})
>>> c._new_certificate('pinkunicorn', 'ec-prime256v1')
Handling new certificate event for pinkunicorn / ec-prime256v1
Triggering DNS zone update...
Running subprocess ['/usr/local/bin/certcentral-gdnsd-sync.py', '--remote-servers', 'authdns1001.wikimedia.org', 'authdns2001.wikimedia.org', 'multatuli.wikimedia.org', '--', '_acme-challenge.pinkunicorn.wikimedia.org', 't7_OX4Ohp_WNz8g2Sr6V1NV_UVWOxjbEpi0-rsOLkAU']
Handling pushed CSR event for pinkunicorn / ec-prime256v1
Handling validated challenges event for pinkunicorn / ec-prime256v1
Handling pushed challenges event for pinkunicorn / ec-prime256v1
Pushing the new certificate for pinkunicorn / ec-prime256v1
<CertificateStatus.VALID: 6>
>>> c._new_certificate('pinkunicorn', 'ec-prime256v1')
Handling new certificate event for pinkunicorn / ec-prime256v1
Triggering DNS zone update...
Running subprocess ['/usr/local/bin/certcentral-gdnsd-sync.py', '--remote-servers', 'authdns1001.wikimedia.org', 'authdns2001.wikimedia.org', 'multatuli.wikimedia.org', '--', '_acme-challenge.pinkunicorn.wikimedia.org', 't7_OX4Ohp_WNz8g2Sr6V1NV_UVWOxjbEpi0-rsOLkAU']
Handling pushed CSR event for pinkunicorn / ec-prime256v1
Handling validated challenges event for pinkunicorn / ec-prime256v1
Handling pushed challenges event for pinkunicorn / ec-prime256v1
Returned certificate is None for certificate pinkunicorn / ec-prime256v1
<CertificateStatus.CHALLENGES_PUSHED: 5>
>>> c._handle_pushed_challenges('pinkunicorn', 'ec-prime256v1')
Handling pushed challenges event for pinkunicorn / ec-prime256v1
Problem getting certificate for certificate pinkunicorn / ec-prime256v1
Traceback (most recent call last):
File "/usr/lib/python3/dist-packages/certcentral/acme_requests.py", line 379, in get_certificate
finished_order = self.acme_client.poll_and_finalize(order, deadline=deadline)
File "/usr/lib/python3/dist-packages/acme/client.py", line 635, in poll_and_finalize
return self.finalize_order(orderr, deadline)
File "/usr/lib/python3/dist-packages/acme/client.py", line 674, in finalize_order
self._post(orderr.body.finalize, wrapped_csr)
File "/usr/lib/python3/dist-packages/acme/client.py", line 93, in _post
return self.net.post(*args, **kwargs)
File "/usr/lib/python3/dist-packages/acme/client.py", line 1082, in post
return self._post_once(*args, **kwargs)
File "/usr/lib/python3/dist-packages/acme/client.py", line 1096, in _post_once
return self._check_response(response, content_type=content_type)
File "/usr/lib/python3/dist-packages/acme/client.py", line 956, in _check_response
raise messages.Error.from_json(jobj)
acme.messages.Error: urn:ietf:params:acme:error:malformed :: The request message was malformed :: Order's status ("valid") is not acceptable for finalization
The above exception was the direct cause of the following exception:
Traceback (most recent call last):
File "/usr/lib/python3/dist-packages/certcentral/certcentral.py", line 546, in _handle_pushed_challenges
certificate = session.get_certificate(csr_id)
File "/usr/lib/python3/dist-packages/certcentral/acme_requests.py", line 387, in get_certificate
raise ACMEError('Unable to get certificate') from finalize_error
certcentral.acme_requests.ACMEError: Unable to get certificate
<CertificateStatus.CHALLENGES_PUSHED: 5>