You are viewing a plain text version of this content. The canonical link for it is here.
Posted to users@qpid.apache.org by Abhilash Mula <ab...@gmail.com> on 2015/05/08 04:26:40 UTC

Invalid TLS Padding error

Hi,
We are facing an error when trying to connect to Qpid using informatica. Im
not an SSL expert but im attching the ssl log from debug.

>From the log

1. We negotiate the handshake correctly (WRITER_1_*_1> JAVA PLUGIN_1762
[DEBUG] *** ServerHelloDone)
2. We then receive a (I assume) non-encrypted error back on the channel
(SDKTempThread> JAVA PLUGIN_1762 [DEBUG] description = bad_record_mac)
a. I think this is actually the cause of the Invalid TLS padding data.
Java cannot handle the non-encrypted error on the encrypted channel.

So, I think that we need to resolve what is causing the bad_record_mac
exception but not sure where to even start.

Appreciate any inputs.




DIRECTOR> TM_6014 Initializing session [s_m_JMS_QPID_TEST_WRITE] at [Wed
May 06 13:32:09 2015].
DIRECTOR> TM_6683 Repository Name: [INFAPCDEV01]
DIRECTOR> TM_6684 Server Name: [PC_infadev_4003]
DIRECTOR> TM_6686 Folder: [Dev_rgoltz]
DIRECTOR> TM_6685 Workflow: [wf_m_JMS_QPID_TEST_WRITE] Run Instance Name:
[] Run Id: [3155484]
DIRECTOR> TM_6101 Mapping name: m_JMS_QPID_TEST_WRITE [version 1].
DIRECTOR> TM_6963 Pre 85 Timestamp Compatibility is Enabled
DIRECTOR> TM_6964 Date format for the Session is [MM/DD/YYYY HH24:MI:SS]
DIRECTOR> TM_6708 Using configuration property [EnableDataEncryption,no]
DIRECTOR> TM_6708 Using configuration property [StoreHAPersistenceInDB,no]
DIRECTOR> TM_6708 Using configuration property [UseFileLog,Yes]
DIRECTOR> TM_6708 Using configuration property
[JVMOption1,-Djavax.net.ssl.keyStore=/okcetldevsg/u01/app/informatica/dev/960/keys/client.ks]
DIRECTOR> TM_6708 Using configuration property
[JVMOption2,-Djavax.net.ssl.keyStorePassword=devpwc]
DIRECTOR> TM_6708 Using configuration property
[JVMOption3,-Djavax.net.ssl.trustStore=/okcetldevsg/u01/app/informatica/dev/960/keys/client.ts]
DIRECTOR> TM_6708 Using configuration property
[JVMOption4,-Dlog4j.configuration=/okcetldevsg/u01/app/informatica/dev/data/JMS/log4j.properties]
DIRECTOR> TM_6708 Using configuration property
[JVMOption5,-Djavax.net.ssl.trustStorePassword=devpwc]
DIRECTOR> TM_6708 Using configuration property [ServerAddress,172.18.12.94]
DIRECTOR> TM_6708 Using configuration property
[JVMOption6,-Djavax.net.debug=ssl]

DIRECTOR> TM_6703 Session [s_m_JMS_QPID_TEST_WRITE] is run by 64-bit
Integration Service  [node01_okcetldevsg], version [9.6.0], build [0114].
MANAGER> PETL_24058 Running Partition Group [1].
MANAGER> PETL_24000 Parallel Pipeline Engine initializing.
MANAGER> PETL_24001 Parallel Pipeline Engine running.
MANAGER> PETL_24003 Initializing session run.
MAPPING> CMN_1569 Server Mode: [UNICODE]
MAPPING> CMN_1570 Server Code page: [ISO 8859-1 Western European]
MAPPING> TM_6151 The session sort order is [Binary].
MAPPING> TM_6156 Using low precision processing.
MAPPING> TM_6180 Deadlock retry logic will not be implemented.
MAPPING> TM_6187 Session target-based commit interval is [10000].
MAPPING> PMJVM_42020 [INFO] Loaded library :
/usr/java7_64/jre/bin/classic/libjvm.so.
MAPPING> PMJVM_42009 [INFO] Created Java VM successfully.
MAPPING> SDKS_38029 Loaded plug-in 300800: [PowerExchange for JMS writer
plugin 9.1.0 build 679].
MAPPING> SDKS_38024 Plug-in 300800 initialization complete.
MAPPING> SDKS_38017 Writer SDK plug-in intialization complete.
MAPPING> SDKS_38509 SDK target and group initialization complete.
MAPPING> TM_6307 DTM error log disabled.
MAPPING> TE_7022 TShmWriter: Initialized
MAPPING> TM_6007 DTM initialized successfully for session
[s_m_JMS_QPID_TEST_WRITE]
DIRECTOR> PETL_24033 All DTM Connection Info: [<NONE>].
MANAGER> PETL_24004 Starting pre-session tasks. : (Wed May 06 13:32:10 2015)
MANAGER> PETL_24027 Pre-session task completed successfully. : (Wed May 06
13:32:10 2015)
DIRECTOR> PETL_24006 Starting data movement.
MAPPING> TM_6660 Total Buffer Pool size is 1219648 bytes and Block size is
65536 bytes.
READER_1_1_1> DBG_21438 Reader: Source is [edwdev], user [SVCINFORMATICA]
READER_1_1_1> BLKR_16051 Source database connection [SVCINFORMATICA] code
page: [MS Windows Latin 1 (ANSI), superset of Latin1]
READER_1_1_1> BLKR_16003 Initialization completed successfully.
WRITER_1_*_1> JMS_1016 [INFO] Connected to JNDI provider using
[JNDI_Connection]
WRITER_1_*_1> JMS_1027 [INFO] The file jndi.properties is available.
Additional SSL related properties provided in this file are used at runtime.
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJSSEProvider2 Build-Level:
-20130919
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] keyStore is:
/okcetldevsg/u01/app/informatica/dev/960/keys/client.ks
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] keyStore type is: jks
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] keyStore provider is:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] init keystore
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] found key for : client
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] chain [0] = [
[
  Version: V3
  Subject: CN=Chesapeake Energy, OU=Information Technology,
O=Infrastructure, L=Oklahoma City, ST=Oklahoma, C=US
  Signature Algorithm: SHA256withRSA, OID = 1.2.840.113549.1.1.11

  Key:  IBMJCE RSA Public Key:
modulus:
16624237789173203609784188785467541254520363273860062324066325854754933117121495106849090856572889739540160457327117955874447742590633642605438554766200216001600021313655398682053511694795958285280994383763288094483050431132501719981490787470883677496715013284616155508033709912679202267129535153688495761938427895206360053173729490249863039935297061630014912810583845237656974322985026161428061906719864023144105108574619498413479714532422791136893542063374435089423038619031781153841385939124079665024852390617561022420515310039113323848617919550412735088723479315126787941561000474243730330945541199106146605692103
public exponent:
65537

  Validity: [From: Wed Apr 29 16:16:17 CDT 2015,
               To: Tue Jul 28 16:16:17 CDT 2015]
  Issuer: CN=Chesapeake Energy, OU=Information Technology,
O=Infrastructure, L=Oklahoma City, ST=Oklahoma, C=US
  SerialNumber: [1007130443]

Certificate Extensions: 1
[1]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: a8 7f ba 69 fd 77 0b a1  cd 91 5c 4d ff dd 2a 1c  ...i.w.....M....
0010: 7b d0 55 0b                                        ..U.
]
]

]
  Algorithm: [SHA256withRSA]
  Signature:
0000: 62 58 28 ca a5 dd a1 8f  58 2f 7c e4 1d 0c e0 4a  bX......X......J
0010: 17 4b 66 15 6b e9 40 b7  8b e3 db d2 9f a5 c4 4c  .Kf.k..........L
0020: f7 a2 7f 82 b4 c6 f6 24  63 8c b4 72 05 49 1e 11  ........c..r.I..
0030: 0c 4a 43 c5 84 a1 9f c8  30 0d e2 1d 3a 4d 85 37  .JC.....0....M.7
0040: 53 6a 29 ab fd c6 30 4c  e0 5d ef 17 50 ba 2e 76  Sj....0L....P..v
0050: 26 d1 97 50 23 3f e9 58  ad 15 4f e5 c8 01 08 c9  ...P...X..O.....
0060: e6 f6 2d 85 12 c1 fe e1  e6 aa 34 ac c3 36 05 79  ..........4..6.y
0070: ed b5 c0 4b 1d 76 26 26  2d 78 16 6c 62 97
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] f0 a8  ...K.v...x.lb...
0080: 02 9b 58 1b 2a ea 60 ea  d5 c4 24 54 4b 05 49 30  ..X........TK.I0
0090: 5c 35 62 96 51 0f ff bc  71 fd f3 4b fa 34 9e 6a  .5b.Q...q..K.4.j
00a0: 89 65 fc 85 c1 e6 d5 26  58 59 7b 1f 3b cb 69 f1  .e......XY....i.
00b0: 48 bd 7d b1 87 7f 2d 16  ee a4 29 6b b7 44 0b 48  H..........k.D.H
00c0: 99 cc fa 9a 09 3f 95 0d  42 96 fd 21 ed 1d 74 1b  ........B.....t.
00d0: 7e 57 20 ea c8 cb 42 b4  5a 65 34 3d 77 55 9a 2e  .W....B.Ze4.wU..
00e0: cd d1 02 9c 3e 09 ea ab  f3 a9 59 e5 ff dc fa a5  ..........Y.....
00f0: 32 c4 be cc ad 51 81 69  33 77 6c 05 b4 5b a4 b0  2....Q.i3wl.....

]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] SSLContextImpl:  Using
X509ExtendedKeyManager com.ibm.jsse2.uc
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] trustStore is:
/okcetldevsg/u01/app/informatica/dev/960/keys/client.ts
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] trustStore type is: jks
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] trustStore provider is:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] init truststore
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] adding as trusted cert:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Subject: CN=
OKCBUSDEV001.chkenergy.net
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Issuer:  CN=Chesapeake Primary
Subordinate CA, DC=chesapeake, DC=energy
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Algorithm: RSA; Serial number:
0x4b757029000200178ca5
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Valid from Wed Mar 19 15:06:18 CDT
2014 until Mon Jul 24 17:20:50 CDT 2017
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] adding as trusted cert:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Subject: CN=Chesapeake Primary
Subordinate CA, DC=chesapeake, DC=energy
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Issuer:  CN=Chesapeake Root CA,
O=Chesapeake Energy, C=US
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Algorithm: RSA; Serial number:
0x61393311000100000008
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Valid from Tue Dec 16 22:32:43 CST
2014 until Mon Dec 16 22:42:43 CST 2024
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] adding as trusted cert:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Subject: CN=Chesapeake Root CA,
O=Chesapeake Energy, C=US
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Issuer:  CN=Chesapeake Root CA,
O=Chesapeake Energy, C=US
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Algorithm: RSA; Serial number:
0x591501363407f4a547cda220920f020b
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]   Valid from Tue Jul 24 17:12:41 CDT
2007 until Fri Dec 01 16:31:42 CST 2034
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] SSLContextImpl:  Using
X509TrustManager com.ibm.jsse2.yc
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Installed Providers =
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJSSE2
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJCE
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJGSSProvider
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMCertPath
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMSASL
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMXMLCRYPTO
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMXMLEnc
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMSPNEGO
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] SUN
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using SecureRandom
IBMSecureRandom from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] trigger seeding of SecureRandom
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] done seeding SecureRandom
WRITER_1_*_1> JMS_1017 [INFO] Connected to JMS provider using
[JMS_Connection] with destination type [QUEUE].
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJSSE2 will not enable CBC
protection
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using SecureRandom
IBMSecureRandom from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyAgreement ECDH
from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using signature
SHA1withECDSA from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using signature
NONEwithECDSA from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyFactory EC from
provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyPairGenerator EC
from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJce:  EC is available
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJSSE2 will allow RFC 5746
renegotiation per com.ibm.jsse2.renegotiate set to none or default
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJSSE2 will not require
renegotiation indicator during initial handshake per
com.ibm.jsse2.renegotiation.indicator set to OPTIONAL or default taken
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] IBMJSSE2 will not perform identity
checking against the peer cert check during renegotiation per
com.ibm.jsse2.renegotiation.peer.cert.check set to OFF or default
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
Is initial handshake: true
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_ECDHE_RSA_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_RSA_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_ECDH_ECDSA_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_ECDH_RSA_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_DHE_RSA_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Ignoring unsupported cipher suite:
SSL_DHE_DSS_WITH_AES_128_CBC_SHA256
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] % No cached client session
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** ClientHello, TLSv1
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] RandomCookie:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] GMT: 1430937132
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] bytes = {
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 161
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 82
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 162
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 120
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 85
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 149
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 86
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 186
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 6
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 203
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 13
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 57
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 132
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 114
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 209
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 192
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 14
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 162
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 248
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 136
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 87
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 124
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 13
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 9
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 236
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 31
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 247
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 143
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  }
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Session ID:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] {}
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Cipher Suites:
[TLS_EMPTY_RENEGOTIATION_INFO_SCSV, SSL_ECDHE_ECDSA_WITH_AES_128_CBC_SHA,
SSL_ECDHE_RSA_WITH_AES_128_CBC_SHA, SSL_RSA_WITH_AES_128_CBC_SHA,
SSL_ECDH_ECDSA_WITH_AES_128_CBC_SHA, SSL_ECDH_RSA_WITH_AES_128_CBC_SHA,
SSL_DHE_RSA_WITH_AES_128_CBC_SHA, SSL_DHE_DSS_WITH_AES_128_CBC_SHA,
SSL_ECDHE_ECDSA_WITH_RC4_128_SHA, SSL_ECDHE_RSA_WITH_RC4_128_SHA,
SSL_RSA_WITH_RC4_128_SHA, SSL_ECDH_ECDSA_WITH_RC4_128_SHA,
SSL_ECDH_RSA_WITH_RC4_128_SHA, SSL_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA,
SSL_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA, SSL_RSA_WITH_3DES_EDE_CBC_SHA,
SSL_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHA, SSL_ECDH_RSA_WITH_3DES_EDE_CBC_SHA,
SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA, SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA,
SSL_RSA_WITH_RC4_128_MD5]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Compression Methods:  {
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  }
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Extension elliptic_curves, curve
names: {secp256r1, secp192r1, secp224r1, secp384r1, secp521r1, secp160k1,
secp160r1, secp160r2, secp192k1, secp224k1, secp256k1}
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Extension ec_point_formats, formats:
[uncompressed]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Extension server_name, server_name:
[host_name: okcbusdev001.chkenergy.net]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, WRITE: TLSv1 Handshake,
length = 156
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, READ: TLSv1 Handshake,
length = 5207
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** ServerHello, TLSv1
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] RandomCookie:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] GMT: 1430937132
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] bytes = {
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 133
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 240
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 205
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 33
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 185
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 181
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 87
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 112
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 224
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 242
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 196
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 237
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 223
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 202
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 132
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 39
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 189
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 176
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 124
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 231
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 154
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 110
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 243
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 200
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 25
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 221
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 160
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 181
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  }
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Session ID:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] {189, 14, 0, 0, 150, 235, 192, 100,
96, 184, 223, 44, 24, 199, 17, 230, 106, 243, 31, 236, 64, 157, 213, 46,
24, 84, 231, 182, 189, 43, 129, 219}
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Cipher Suite:
SSL_RSA_WITH_AES_128_CBC_SHA
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Compression Method: 0
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Extension renegotiation_info,
ri_length: 0, ri_connection_data: { null }
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using MessageDigest MD5
from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using MessageDigest SHA
from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] % Initialized:  [Session-1,
SSL_RSA_WITH_AES_128_CBC_SHA]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ** SSL_RSA_WITH_AES_128_CBC_SHA
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** Certificate chain
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] chain [0] = [
[
  Version: V3
  Subject: CN=OKCBUSDEV001.chkenergy.net
  Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

  Key:  IBMJCE RSA Public Key:
modulus:
22279829803465541944246795044051486016244868961318342544633381277240719516930904440343350902639163193079469905752872808101910824893075339701944935645482751097640248030343717567092551475666494998119535177637848576061699106731563396736287455787722587066030740551624763910685957363198627105676305535984726252085379601523999330674110229315787639329298393047505300492523251940408459893911073223709317407103049118479230506226263810236730737092862060221682439527203165063683736381485485165206674477557868764286713621970160720691141822078775437716085186190402700278378619163505770015754888431466010281777922227591263167311903
public exponent:
65537

  Validity: [From: Wed Mar 19 15:06:18 CDT 2014,
               To: Mon Jul 24 17:20:50 CDT 2017]
  Issuer: CN=Chesapeake Primary Subordinate CA, DC=chesapeake, DC=energy
  SerialNumber: [356343837262862293109925]

Certificate Extensions: 7
[1]: ObjectId: 1.3.6.1.4.1.311.21.10 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 1a 30 18 30 0a 06 08  2b 06 01 05 05 07 03 01  ..0.0...........
0010: 30 0a 06 08 2b 06 01 05  05 07 03 02              0...........


[2]: ObjectId: 1.3.6.1.4.1.311.21.7 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 30 30 2e 06 26 2b 06  01 04 01 82 37 15 08 84  .00.........7...
0010: f7 84 14 86 92 b7 42 85  bd 9d 3f 83 87 fc 72 ed  ......B.......r.
0020: cb 0e 81 12 87 9d 87 65  81 94 92 40 02 01 65 02  .......e......e.
0030: 01 03                                              ..


[3]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 53 26 93 45 da eb 23 92  f9 b7 c1 68 a2 b7 84 b8  S..E.......h....
0010: c8 87 0f f7                                        ....
]
]

[4]: ObjectId: 2.5.29.37 Criticality=false
ExtKeyUsage [
1.3.6.1.5.5.7.
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 3.1 1.3.6.1.5.5.7.3.2]

[5]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
  DigitalSignature
  Key_Encipherment
]

[6]: ObjectId: 2.5.29.17 Criticality=false
SubjectAlternativeName [
[Other-Name: Unrecognized ObjectIdentifier: 1.3.6.1.4.1.311.20.2.3,
DNSName: OKCBUSDEV001.chkenergy.net]]

[7]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 9b db ed 57 fb bc e7 71  9c 44 6f 7a bf ee 15 79  ...W...q.Doz...y
0010: 62 69 60 39                                        bi.9
]
]

Unparseable certificate extensions: 2
[1]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
0000: 30 82 03 47 30 81 cc 06  08 2b 06 01 05 05 07 30  0..G0..........0
0010: 02 86 81 bf 6c 64 61 70  3a 2f 2f 2f 43 4e 3d 43  ....ldap....CN.C
0020: 68 65 73 61 70 65 61 6b  65 25 32 30 50 72 69 6d  hesapeake.20Prim
0030: 61 72 79 25 32 30 53 75  62 6f 72 64 69 6e 61 74  ary.20Subordinat
0040: 65 25 32 30 43 41 2c 43  4e 3d 41 49 41 2c 43 4e  e.20CA.CN.AIA.CN
0050: 3d 50 75 62 6c 69 63 25  32 30 4b 65 79 25 32 30  .Public.20Key.20
0060: 53 65 72 76 69 63 65 73  2c 43 4e 3d 53 65 72 76  Services.CN.Serv
0070: 69 63 65 73 2c 43 4e 3d  43 6f 6e 66 69 67 75 72  ices.CN.Configur
0080: 61 74 69 6f 6e 2c 44 43  3d 63 68 65 73 61 70 65  ation.DC.chesape
0090: 61 6b 65 2c 44 43 3d 65  6e 65 72 67 79 3f 63 41  ake.DC.energy.cA
00a0: 43 65 72 74 69 66 69 63  61 74 65 3f 62 61 73 65  Certificate.base
00b0: 3f 6f 62 6a 65 63 74 43  6c 61 73 73 3d 63 65 72  .objectClass.cer
00c0: 74 69 66 69 63 61 74 69  6f 6e 41 75 74 68 6f 72  tificationAuthor
00d0: 69 74 79 30 81 8a 06 08  2b 06 01 05 05 07 30 02  ity0..........0.
00e0: 86 7e 68 74 74 70 3a 2f  2f 6f 6b 63 73 65 63 70  ..http...okcsecp
00f0: 72 64 30 30 38 2e 63 68  65 73 61 70 65 61 6b 65  rd008.chesapeake
0100: 2e 65 6e 65 72 67 79 2f  43 65 72 74 45 6e 72 6f  .energy.CertEnro
0110: 6c 6c 2f 6f 6b 63 73 65  63 70 72 64 30 30 38 2e  ll.okcsecprd008.
0120: 63 68 65 73 61 70 65 61  6b 65 2e 65 6e 65 72 67  chesapeake.energ
0130
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] : 79 5f 43 68 65 73 61 70  65 61 6b
65 25 32 30 50  y.Chesapeake.20P
0140: 72 69 6d 61 72 79 25 32  30 53 75 62 6f 72 64 69  rimary.20Subordi
0150: 6e 61 74 65 25 32 30 43  41 28 32 29 2e 63 72 74  nate.20CA.2..crt
0160: 30 81 86 06 08 2b 06 01  05 05 07 30 02 86 7a 66  0..........0..zf
0170: 69 6c 65 3a 2f 2f 5c 5c  6f 6b 63 73 65 63 70 72  ile.....okcsecpr
0180: 64 30 30 38 2e 63 68 65  73 61 70 65 61 6b 65 2e  d008.chesapeake.
0190: 65 6e 65 72 67 79 5c 43  65 72 74 45 6e 72 6f 6c  energy.CertEnrol
01a0: 6c 5c 6f 6b 63 73 65 63  70 72 64 30 30 38 2e 63  l.okcsecprd008.c
01b0: 68 65 73 61 70 65 61 6b  65 2e 65 6e 65 72 67 79  hesapeake.energy
01c0: 5f 43 68 65 73 61 70 65  61 6b 65 20 50 72 69 6d  .Chesapeake.Prim
01d0: 61 72 79 20 53 75 62 6f  72 64 69 6e 61 74 65 20  ary.Subordinate.
01e0: 43 41 28 32 29 2e 63 72  74 30 76 06 08 2b 06 01  CA.2..crt0v.....
01f0: 05 05 07 30 02 86 6a 68  74 74 70 3a 2f 2f 70 6b  ...0..jhttp...pk
0200: 69 2e 63 68 6b 65 6e 65  72 67 79 2e 6e 65 74 2f  i.chkenergy.net.
0210: 70 6b 69 2f 6f 6b 63 73  65 63 70 72 64 30 30 38  pki.okcsecprd008
0220: 2e 63 68 65 73 61 70 65  61 6b 65 2e 65 6e 65 72  .chesapeake.ener
0230: 67 79 5f 43 68 65 73 61  70 65 61 6b 65 25 32 30  gy.Chesapeake.20
0240: 50 72 69 6d 61 72 79 25  32 30 53 75 62 6f 72 64  Primary.20Subord
0250: 69 6e 61 74 65 25 32 30  43 41 28 32 29 2e 63 72  inate.20CA.2..cr
0260: 74 30 76 06 08 2b 06 01  05 05 07 30 02 86 6a 68  t0v........0..jh
0270: 74 74 70 3a 2f 2f 77 77  77 2e 63 68 6b 65 6e 65  ttp...www.chkene
0280: 72 67 79 2e 63 6f 6d 2f  70 6b 69 2f 6f 6b 63 73  rgy.com.pki.okcs
0290: 65 63 70 72 64 30 30 38  2e 63 68 65 73 61 70 65  ecprd008.chesape
02a0: 61 6b 65 2e 65 6e 65 72  67 79 5f 43 68 65 73 61  ake.energy.Chesa
02b0: 70 65 61 6b 65 25 32 30  50 72 69 6d 61 72 79 25  peake.20Primary.
02c0: 32 30 53 75 62 6f 72 64  69 6e 61 74 65 25 32 30  20Subordinate.20
02d0: 43 41 28 32 29 2e 63 72  74 30 70 06 08 2b 06 01  CA.2..crt0p.....
02e0: 05 05 07 30 02 86 64 68  74
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  74 70 3a 2f 2f 70 6b
 ...0..dhttp...pk
02f0: 69 2e 63 68 6b 2e 63 6f  6d 2f 70 6b 69 2f 6f 6b  i.chk.com.pki.ok
0300: 63 73 65 63 70 72 64 30  30 38 2e 63 68 65 73 61  csecprd008.chesa
0310: 70 65 61 6b 65 2e 65 6e  65 72 67 79 5f 43 68 65  peake.energy.Che
0320: 73 61 70 65 61 6b 65 25  32 30 50 72 69 6d 61 72  sapeake.20Primar
0330: 79 25 32 30 53 75 62 6f  72 64 69 6e 61 74 65 25  y.20Subordinate.
0340: 32 30 43 41 28 32 29 2e  63 72 74                 20CA.2..crt

[2]: ObjectId: 2.5.29.31 Criticality=false
0000: 30 82 02 78 30 82 02 74  a0 82 02 70 a0 82 02 6c  0..x0..t...p...l
0010: 86 81 d9 6c 64 61 70 3a  2f 2f 2f 43 4e 3d 43 68  ...ldap....CN.Ch
0020: 65 73 61 70 65 61 6b 65  25 32 30 50 72 69 6d 61  esapeake.20Prima
0030: 72 79 25 32 30 53 75 62  6f 72 64 69 6e 61 74 65  ry.20Subordinate
0040: 25 32 30 43 41 2c 43 4e  3d 6f 6b 63 73 65 63 70  .20CA.CN.okcsecp
0050: 72 64 30 30 38 2c 43 4e  3d 43 44 50 2c 43 4e 3d  rd008.CN.CDP.CN.
0060: 50 75 62 6c 69 63 25 32  30 4b 65 79 25 32 30 53  Public.20Key.20S
0070: 65 72 76 69 63 65 73 2c  43 4e 3d 53 65 72 76 69  ervices.CN.Servi
0080: 63 65 73 2c 43 4e 3d 43  6f 6e 66 69 67 75 72 61  ces.CN.Configura
0090: 74 69 6f 6e 2c 44 43 3d  63 68 65 73 61 70 65 61  tion.DC.chesapea
00a0: 6b 65 2c 44 43 3d 65 6e  65 72 67 79 3f 63 65 72  ke.DC.energy.cer
00b0: 74 69 66 69 63 61 74 65  52 65 76 6f 63 61 74 69  tificateRevocati
00c0: 6f 6e 4c 69 73 74 3f 62  61 73 65 3f 6f 62 6a 65  onList.base.obje
00d0: 63 74 43 6c 61 73 73 3d  63 52 4c 44 69 73 74 72  ctClass.cRLDistr
00e0: 69 62 75 74 69 6f 6e 50  6f 69 6e 74 86 5c 68 74  ibutionPoint..ht
00f0: 74 70 3a 2f 2f 6f 6b 63  73 65 63 70 72 64 30 30  tp...okcsecprd00
0100: 38 2e 63 68 65 73 61 70  65 61 6b 65 2e 65 6e 65  8.chesapeake.ene
0110: 72 67 79 2f 43 65 72 74  45 6e 72 6f 6c 6c 2f 43  rgy.CertEnroll.C
0120: 68 65 73 61 70 65 61 6b  65 25 32 30 50 72 69 6d  hesapeake.20Prim
0130: 61 72 79 25 32 30 53 75  62 6f 72 64 69 6e 61 74  ary.20Subordinat
0140: 65 25 32 30 43 41
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  2e 63  72 6c 86 58 66 69 6c 65
 e.20CA.crl.Xfile
0150: 3a 2f 2f 5c 5c 6f 6b 63  73 65 63 70 72 64 30 30  .....okcsecprd00
0160: 38 2e 63 68 65 73 61 70  65 61 6b 65 2e 65 6e 65  8.chesapeake.e
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ne
0170: 72 67 79 5c 43 65 72 74  45 6e 72 6f 6c 6c 5c 43  rgy.CertEnroll.C
0180: 68 65 73 61 70 65 61 6b  65 20 50 72 69 6d 61 72  hesapeake.Primar
0190: 79 20 53 75 62 6f 72 64  69 6e 61 74 65 20 43 41  y.Subordinate.CA
01a0: 2e 63 72 6c 86 48 68 74  74 70 3a 2f 2f 70 6b 69  .crl.Hhttp...pki
01b0: 2e 63 68 6b 65 6e 65 72  67 79 2e 6e 65 74 2f 70  .chkenergy.net.p
01c0: 6b 69 2f 43 68 65 73 61  70 65 61 6b 65 25 32 30  ki.Chesapeake.20
01d0: 50 72 69 6d 61 72 79 25  32 30 53 75 62 6f 72 64  Primary.20Subord
01e0: 69 6e 61 74 65 25 32 30  43 41 2e 63 72 6c 86 48  inate.20CA.crl.H
01f0: 68 74 74 70 3a 2f 2f 77  77 77 2e 63 68 6b 65 6e  http...www.chken
0200: 65 72 67 79 2e 63 6f 6d  2f 70 6b 69 2f 43 68 65  ergy.com.pki.Che
0210: 73 61 70 65 61 6b 65 25  32 30 50 72 69 6d 61 72  sapeake.20Primar
0220: 79 25 32 30 53 75 62 6f  72 64 69 6e 61 74 65 25  y.20Subordinate.
0230: 32 30 43 41 2e 63 72 6c  86 42 68 74 74 70 3a 2f  20CA.crl.Bhttp..
0240: 2f 70 6b 69 2e 63 68 6b  2e 63 6f 6d 2f 70 6b 69  .pki.chk.com.pki
0250: 2f 43 68 65 73 61 70 65  61 6b 65 25 32 30 50 72  .Chesapeake.20Pr
0260: 69 6d 61 72 79 25 32 30  53 75 62 6f 72 64 69 6e  imary.20Subordin
0270: 61 74 65 25 32 30 43 41  2e 63 72 6c              ate.20CA.crl

]
  Algorithm: [SHA1withRSA]
  Signature:
0000: 19 f7 08 f7 2b 78 11 69  ed e7 7a fb f8 c2 db 1f  .....x.i..z.....
0010: 1e e3 89 80 71 6b b9 9f  14 56 a6 b3 18 bb 13 e0  ....qk...V......
0020: 9e b0 45 a1 11 23 04 f8  29 cb 44 f1 24 80 88 48  ..E.......D....H
0030: a8 6a e5 74 ec a2 81 06  35 ff 20 71 ce fe fc df  .j.t....5..q....
0040: 08 18 ad 2a a2 85 12 c2  02 48 9c 7c c2 81 d4 ed  .........H......
0050: 79 5e 33 da a6 51 b7 fd  26 0a cc 4b 3b b6 2f 38  y.3..Q.....K...8
0060: f3 8c fc 33 41 85 c2 22  02 1e 19 88 83 a1 1d d8  ...3A...........
0070: bc 49 63 8b 88 05 1e 61  9b 40 05 16 d1 09 d2 0b  .Ic....a........
0080: 97 61 96 10 64 0a 5c ae  e9 43 fb 47 da 77 1f 71  .a..d....C.G.w.q
0090: ad 41 da 6a e1 59 01 28  52 e6 9b ea 74 35 16 c0
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] .A.j.Y..R...t5..
00a0: 08 72 a9 a5 97 fe 0f 64  16 4e d4 30 df 3b 7b 24  .r.....d.N.0....
00b0: 14 d0 ec 39 dd d3 63 a2  3f 07 b8 8b 29 db 95 d1  ...9..c.........
00c0: ad 9a 0e 53 4d fb 96 df  63 8f 10 8c 4d 30 82 17  ...SM...c...M0..
00d0: e0 85 ac 53 cf 4d 0d 1c  e1 d5 7a 77 a8 e5 72 6d  ...S.M....zw..rm
00e0: 1a 43 f7 bb c9 f2 26 65  e6 7e 11 4f 18 81 dd f4  .C.....e...O....
00f0: 18 84 de 5f a2 5c 7c 08  a4 bd 9b b3 ae 50 15 3b  .............P..
0100: 4b 5b 52 6b d3 39 11 be  29 6d 48 59 b1 bd b9 ab  K.Rk.9...mHY....
0110: 69 f9 0e 24 5a e9 ef 92  90 1b 06 12 bb 39 d7 91  i...Z........9..
0120: 28 f7 05 07 59 3b dc 28  38 bc 84 0f 21 0f 1c f0  ....Y...8.......
0130: 82 f1 15 c3 07 e7 76 a0  d7 77 e9 09 84 2d 99 c1  ......v..w......
0140: 05 2b 5e d9 f6 34 89 10  a8 df 46 11 82 57 57 7a  .....4....F..WWz
0150: e0 52 6b 1d 93 a9 56 79  76 d4 dd 03 4e d1 e2 5b  .Rk...Vyv...N...
0160: 0b cc 44 f7 6b 26 db 5f  87 69 01 13 31 cb 53 1a  ..D.k....i..1.S.
0170: 46 ae 19 ff 07 7d 6d c0  43 67 c3 06 61 8a ae cc  F.....m.Cg..a...
0180: 16 55 86 30 cd 03 95 a0  25 d3 09 22 87 44 6f 11  .U.0.........Do.
0190: d6 6c 75 ec 9e 74 57 b3  9a 33 b6 98 98 f6 0a fc  .lu..tW..3......
01a0: 88 b6 d1 37 32 01 dc c3  cb 43 58 a6 3b 8b d3 35  ...72....CX....5
01b0: 89 07 16 da da 59 42 12  8e 6b 22 ea f8 73 24 aa  .....YB..k...s..
01c0: 2d c0 9a 42 09 79 92 75  94 a2 7e 99 66 50 cd c2  ...B.y.u....fP..
01d0: e2 25 a4 e3 c0 ed 45 53  a7 70 01 bd 1a f5 a7 e7  ......ES.p......
01e0: 1a 33 c7 47 16 25 65 cf  94 63 26 92 8c 0c f4 8a  .3.G..e..c......
01f0: bb 6a 70 c3 40 85 52 4b  6d dc d9 44 fd 42 1a bc  .jp...RKm..D.B..

]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] chain [1] = [
[
  Version: V3
  Subject: CN=Chesapeake Primary Subordinate CA, DC=chesapeake, DC=energy
  Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

  Key:  IBMJCE RSA Public Key:
modulus:
732256239528089415608430003605305138818102883490864389102024958077777975609327823595303929919252415281106704639825801939655884470074160485698385387171759988637130299504829150419000518145051020403920987447565113076009501009359162108125430173049836738531768692155324274591586568449777401581256414014095291556368384922711028686793969613302525694491755995674538619207689082072947355834671583699029397973897806072973847190129620659401140559419791511952743371193860404744435767580998941522129531086857331965387128433498670530155767871393296831238860558600036568106233981209684879412650955799793371387876024319347860220594215999569120395611177368849059812846147664992896679901939857435754703905487486840975504681003270561939395821338676525610208030378428030948209634772785770076001174917471836841517818749808220533068786745004040943121960532574976408945681468406670635469890482322063268620534345642471398303920791331198350631190033907607992879632549910655037206406052915624513316101605325009483581306662575146782918080429405393032737503840865597465245184538073600746243136566969169338721944244050101172442196753739922981111078064461217892614800096386070849843622745284512166139283082552810872061558911915792504802255431575650976589868712387
public exponent:
65537

  Validity: [From: Tue Dec 16 22:32:43 CST 2014,
               To: Mon Dec 16 22:42:43 CST 2024]
  Issuer: CN=Chesapeake Root CA, O=Chesapeake Energy, C=US
  SerialNumber: [459124692972931863543816]

Certificate Extensions: 7
[1]: ObjectId: 1.3.6.1.4.1.311.20.2 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 0c 1e 0a 00 53 00 75  00 62 00 43 00 41        .....S.u.b.C.A


[2]: ObjectId: 1.3.6.1.4.1.311.21.1 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 03 02 01
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 03
  .....


[3]: ObjectId: 1.3.6.1.4.1.311.21.2 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 16 04 14 4d 9a a8 28  22 51 07 db b3 0b 43 2a  ....M....Q....C.
0010: b4 86 fb 49 2f f8 c9 c8                           ...I....


[4]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: d1 07 67 b6 a1 9c 04 fc  90 bd 22 12 03 0b b7 53  ..g............S
0010: b4 cb 99 ff                                        ....
]
]

[5]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

[6]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

[7]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 53 26 93 45 da eb 23 92  f9 b7 c1 68 a2 b7 84 b8  S..E.......h....
0010: c8 87 0f f7                                        ....
]
]

Unparseable certificate extensions: 2
[1]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
0000: 30 82 01 a5 30 55 06 08  2b 06 01 05 05 07 30 02  0...0U........0.
0010: 86 49 68 74 74 70 3a 2f  2f 6f 6b 63 73 65 63 70  .Ihttp...okcsecp
0020: 72 64 30 30 38 2f 43 65  72 74 45 6e 72 6f 6c 6c  rd008.CertEnroll
0030: 2f 6f 6b 63 73 65 63 70  72 64 30 30 30 5f 43 68  .okcsecprd000.Ch
0040: 65 73 61 70 65 61 6b 65  25 32 30 52 6f 6f 74 25  esapeake.20Root.
0050: 32 30 43 41 28 31 29 2e  63 72 74 30 53 06 08 2b  20CA.1..crt0S...
0060: 06 01 05 05 07 30 02 86  47 66 69 6c 65 3a 2f 2f  .....0..Gfile...
0070: 5c 5c 6f 6b 63 73 65 63  70 72 64 30 30 38 5c 43  ..okcsecprd008.C
0080: 65 72 74 45 6e 72 6f 6c  6c 5c 6f 6b 63 73 65 63  ertEnroll.okcsec
0090: 70 72 64 30 30 30 5f 43  68 65 73 61 70 65 61 6b  prd000.Chesapeak
00a0: 65 20 52 6f 6f 74 20 43  41 28 31 29 2e 63 72 74  e.Root.CA.1..crt
00b0: 30 53 06 08 2b 06 01 05  05 07 30 02 86 47 68 74  0S........0..Ght
00c0: 74 70 3a 2f 2f 70 6b 69  2e 63 68 6b 65 6e 65 72  tp...pki.chkener
00d0: 67 79 2e 6e 65 74 2f 7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0  6b 69 2f 6f 6b 63 73 65
 gy.net.pki.okcse
00e0: 63 70 72 64 30 30 30 5f  43 68 65 73 61 70 65 61  cprd000.Chesapea
00f0: 6b 65 25 32 30 52 6f 6f  74 25 32 30 43 41 28 31  ke.20Root.20CA.1
0100: 29 2e 63 72 74 30 53 06  08 2b 06 01 05 05 07 30  ..crt0S........0
0110: 02 86 47 68 74 74 70 3a  2f 2f 77 77 77 2e 63 68  ..Ghttp...www.ch
0120: 6b 65 6e 65 72 67 79 2e  63 6f 6d 2f 70 6b 69 2f  kenergy.com.pki.
0130: 6f 6b 63 73 65 63 70 72  64 30 30 30 5f 43 68 65  okcsecprd000.Che
0140: 73 61 70 65 61 6b 65 25  32 30 52 6f 6f 74 25 32  sapeake.20Root.2
0150: 30 43 41 28 31 29 2e 63  72 74 30 4d 06 08 2b 06  0CA.1..crt0M....
0160: 01 05 05 07 30 02 86 41  68 74 74 70 3a 2f 2f 70  ....0..Ahttp...p
0170: 6b 69 2e 63 68 6b 2e 63  6f 6d 2f 70 6b 69 2f 6f  ki.chk.com.pki.o
0180: 6b 63 73 65 63 70 72 64  30 30 30 5f 43 68 65 73  kcsecprd000.Ches
0190: 61 70 65 61 6b 65 25 32  30 52 6f 6f 74 25 32 30  apeake.20Root.20
01a0: 43 41 28 31 29 2e 63 72  74                       CA.1..crt

[2]: ObjectId: 2.5.29.31 Criticality=false
0000: 30 82 01 25 30 82 01 21  a0 82 01 1d a0 82 01 19  0...0...........
0010: 86 39 68 74 74 70 3a 2f  2f 6f 6b 63 73 65 63 70  .9http...okcsecp
0020: 72 64 30 30 38 2f 43 65  72 74 45 6e 72 6f 6c 6c  rd008.CertEnroll
0030: 2f 43 68 65 73 61 70 65  61 6b 65 25 32 30 52 6f  .Chesapeake.20Ro
0040: 6f 74 25 32 30 43 41 2e  63 72 6c 86 37 66 69 6c  ot.20CA.crl.7fil
0050: 65 3a 2f 2f 5c 5c 6f 6b  63 73 65 63 70 72 64 30  e.....okcsecprd0
0060: 30 38 5c 43 65 72 74 45  6e 72 6f 6c 6c 5c 43 68  08.CertEnroll.Ch
0070: 65 73 61 70 65 61 6b 65  20 52 6f 6f 74 20 43 41  esapeake.Root.CA
0080: 2e 63 72 6c 86 37 68 74  74 70 3a 2f 2f 70 6b 69  .crl.7http...pki
0090: 2e 63 68 6b 65 6e 65 72  67 79 2e 6e 65 74 2f 70  .chkenergy.net.p
00a0: 6b 69 2f 43 68 65 73 61  70 65 61 6b 65 25 32 30  ki.Chesapeake.20
00b0: 52 6f 6f 74 25 32 30 43  41 2e 63 72 6c 86 37 68  Root.20CA.crl.7h
00c0: 74 74 70 3a 2f 2f 77 77  77 2e 63 68 6b 65 6e 65  ttp...www.chkene
00d0: 72 67 79 2e 63
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  6f 6d 2f  70 6b 69 2f 43 68 65 73
 rgy.com.pki.Ches
00e0: 61 70 65 61 6b 65 25 32  30 52 6f 6f 74 25 32 30  apeake.20Root.20
00f0: 43 41 2e 63 72 6c 86 31  68 74 74 70 3a 2f 2f 70  CA.crl.1http...p
0100: 6b 69 2e 63 68 6b 2e 63  6f 6d 2f 70 6b 69 2f 43  ki.chk.com.pki.C
0110: 68 65 73 61 70 65 61 6b  65 25 32 30 52 6f 6f 74  hesapeake.20Root
0120: 25 32 30 43 41 2e 63 72  6c                       .20CA.crl

]
  Algorithm: [SHA1withRSA]
  Signature:
0000: 30 52 a5 38 78 aa bd 50  22 41 9a 8c 9d 8f 35 7d  0R.8x..P.A....5.
0010: 3a 78 18 0c 1a 3d 67 7a  6c 0f c5 9e 4d 87 df f0  .x....gzl...M...
0020: 47 bb 4d 19 36 b2 bd 57  8d d8 0a 3c b2 24 9e 43  G.M.6..W.......C
0030: 2d b4 17 a1 35 57 fd d7  cb b3 c4 b3 87 af 45 be  ....5W........E.
0040: 65 90 d7 d6 65 f2 f8 71  f5 95 bb 5c f1 96 21 b7  e...e..q........
0050: 98 01 14 ba 83 5a df 22  ba a6 77 08 33 4e 7c 32  .....Z....w.3N.2
0060: c4 c3 21 87 0e 8b d8 f0  1a 85 f3 26 f8 53 5b b3  .............S..
0070: 2f a2 9c 00 22 18 29 3e  35 04 e8 e2 76 c4 c8 41  ........5...v..A
0080: 1f 33 89 23 4f c5 22 9b  dc 47 78 69 48 4f df 88  .3..O....GxiHO..
0090: 59 ab 53 de 26 15 42 ec  b9 21 ac da 52 8f 58 05  Y.S...B.....R.X.
00a0: 78 22 63 78 3e 5c cc 62  06 35 5b 09 ef 26 ff 9b  x.cx...b.5......
00b0: e0 6d 0e b0 d6 7d cc 3c  95 62 63 48 44 c0 c6 57  .m.......bcHD..W
00c0: a5 48 89 16 57 f8 e7 a5  fd 11 82 9d 27 5a 7c 2b  .H..W........Z..
00d0: e0 da c9 20 d7 bc aa 21  78 62 42 c9 55 84 34 6f  ........xbB.U.4o
00e0: c1 1e 58 5f 17 32 94 62  a1 3d 17 2b fe 89 d8 bd  ..X..2.b........
00f0: 7a 65 19 99 44 0b 25 29  1a 31 cf 3c 6a b4 7d a8  ze..D....1..j...
0100: 15 20 bb 43 22 24 b1 7d  49 10 e3 c4 d5 a5 1c ee  ...C....I.......
0110: 2f b8 dc 40 46 d7 48 17  fb d1 89 69 cc c8 40 a2  ....F.H....i....
0120: 83 e7 57 cf 70 52 d3 60  01 4c f4 5e 0f 70 01 fc  ..W.pR...L...p..
0130: c4 21 ed f2 3a 50 6a f8  50 e7 e1 70 86 ea 0d dd  .....Pj.P..p....
0140: d9 9d 3c 46 28 cb 91 82  8e 26 2a db 78 5d 8f c2  ...F........x...
0150: 70
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] f0 21 10 ae 36 1f 43  9a 69 1c 56 93
87 b2 32  p....6.C.i.V...2
0160: c2 fc 5a da 0c c1 30 a7  bf 19 a3 a8 37 0c fd cf  ..Z...0.....7...
0170: 42 70 64 5d 8b 47 72 06  39 f0 8c 87 bb 7c 81 a5
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Bpd..Gr.9.......
0180: f1 c5 9d 56 cc f1 a1 d2  29 71 6f dd bd 7d d0 ad  ...V.....qo.....
0190: 09 be 7e a6 fa 8c 80 b9  b3 3c ee 5e 84 c4 a4 50  ...............P
01a0: 66 ae 25 e6 62 89 9a f4  00 4e df c1 44 27 ef fd  f...b....N..D...
01b0: f6 af 10 29 ff b4 8a 59  5a 12 ce ee c3 49 2b 2c  .......YZ....I..
01c0: 9d 99 82 d2 cc 2a 1d db  df 1b 86 12 50 60 44 f0  ............P.D.
01d0: 6c 91 99 af ed 16 eb a0  71 b4 8f 5b 93 b2 46 4a  l.......q.....FJ
01e0: 02 b9 44 fa c6 3f d2 4b  bc 88 28 06 0c b2 11 3a  ..D....K........
01f0: 66 55 b0 d0 a4 e1 0d 4d  63 4a e9 a2 73 e4 f5 2e  fU.....McJ..s...

]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Found trusted certificate:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] [
[
  Version: V3
  Subject: CN=OKCBUSDEV001.chkenergy.net
  Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

  Key:  IBMJCE RSA Public Key:
modulus:
22279829803465541944246795044051486016244868961318342544633381277240719516930904440343350902639163193079469905752872808101910824893075339701944935645482751097640248030343717567092551475666494998119535177637848576061699106731563396736287455787722587066030740551624763910685957363198627105676305535984726252085379601523999330674110229315787639329298393047505300492523251940408459893911073223709317407103049118479230506226263810236730737092862060221682439527203165063683736381485485165206674477557868764286713621970160720691141822078775437716085186190402700278378619163505770015754888431466010281777922227591263167311903
public exponent:
65537

  Validity: [From: Wed Mar 19 15:06:18 CDT 2014,
               To: Mon Jul 24 17:20:50 CDT 2017]
  Issuer: CN=Chesapeake Primary Subordinate CA, DC=chesapeake, DC=energy
  SerialNumber: [356343837262862293109925]

Certificate Extensions: 7
[1]: ObjectId: 1.3.6.1.4.1.311.21.10 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 1a 30 18 30 0a 06 08  2b 06 01 05 05 07 03 01  ..0.0...........
0010: 30 0a 06 08 2b 06 01 05  05 07 03 02              0...........


[2]: ObjectId: 1.3.6.1.4.1.311.21.7 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 30 30 2e 06 26 2b 06  01 04 01 82 37 15 08 84  .00.........7...
0010: f7 84 14 86 92 b7 42 85  bd 9d 3f 83 87 fc 72 ed  ......B.......r.
0020: cb 0e 81 12 87 9d 87 65  81 94 92 40 02 01 65 02  .......e......e.
0030: 01 03                                              ..


[3]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 53 26 93 45 da eb 23 92  f9 b7 c1 68 a2 b7 84 b8  S..E.......h....
0010: c8 87 0f f7                                        ....
]
]

[4]: ObjectId: 2.5.29.37 Criticality=false
ExtKeyUsage [
1.3.6.1.5.5.7.3.1 1.3.6.1.
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 5.5.7.3.2]

[5]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
  DigitalSignature
  Key_Encipherment
]

[6]: ObjectId: 2.5.29.17 Criticality=false
SubjectAlternativeName [
[Other-Name: Unrecognized ObjectIdentifier: 1.3.6.1.4.1.311.20.2.3,
DNSName: OKCBUSDEV001.chkenergy.net]]

[7]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 9b db ed 57 fb bc e7 71  9c 44 6f 7a bf ee 15 79  ...W...q.Doz...y
0010: 62 69 60 39                                        bi.9
]
]

Unparseable certificate extensions: 2
[1]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
0000: 30 82 03 47 30 81 cc 06  08 2b 06 01 05 05 07 30  0..G0..........0
0010: 02 86 81 bf 6c 64 61 70  3a 2f 2f 2f 43 4e 3d 43  ....ldap....CN.C
0020: 68 65 73 61 70 65 61 6b  65 25 32 30 50 72 69 6d  hesapeake.20Prim
0030: 61 72 79 25 32 30 53 75  62 6f 72 64 69 6e 61 74  ary.20Subordinat
0040: 65 25 32 30 43 41 2c 43  4e 3d 41 49 41 2c 43 4e  e.20CA.CN.AIA.CN
0050: 3d 50 75 62 6c 69 63 25  32 30 4b 65 79 25 32 30  .Public.20Key.20
0060: 53 65 72 76 69 63 65 73  2c 43 4e 3d 53 65 72 76  Services.CN.Serv
0070: 69 63 65 73 2c 43 4e 3d  43 6f 6e 66 69 67 75 72  ices.CN.Configur
0080: 61 74 69 6f 6e 2c 44 43  3d 63 68 65 73 61 70 65  ation.DC.chesape
0090: 61 6b 65 2c 44 43 3d 65  6e 65 72 67 79 3f 63 41  ake.DC.energy.cA
00a0: 43 65 72 74 69 66 69 63  61 74 65 3f 62 61 73 65  Certificate.base
00b0: 3f 6f 62 6a 65 63 74 43  6c 61 73 73 3d 63 65 72  .objectClass.cer
00c0: 74 69 66 69 63 61 74 69  6f 6e 41 75 74 68 6f 72  tificationAuthor
00d0: 69 74 79 30 81 8a 06 08  2b 06 01 05 05 07 30 02  ity0..........0.
00e0: 86 7e 68 74 74 70 3a 2f  2f 6f 6b 63 73 65 63 70  ..http...okcsecp
00f0: 72 64 30 30 38 2e 63 68  65 73 61 70 65 61 6b 65  rd008.chesapeake
0100: 2e 65 6e 65 72 67 79 2f  43 65 72 74 45 6e 72 6f  .energy.CertEnro
0110: 6c 6c 2f 6f 6b 63 73 65  63 70 72 64 30 30 38 2e  ll.okcsecprd008.
0120: 63 68 65 73 61 70 65 61  6b 65 2e 65 6e 65 72 67  chesapeake.energ
0130: 79 5f 43 6
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 8 65 73 61 70  65 61 6b 65 25 32 30
50  y.Chesapeake.20P
0140: 72 69 6d 61 72 79 25 32  30 53 75 62 6f 72 64 69  rimary.20Subordi
0150: 6e 61 74 65 25 32 30 43  41 28 32 29 2e 63 72 74  nate.20CA.2..crt
0160: 30 81 86 06 08 2b 06 01  05 05 07 30 02 86 7a 66  0..........0..zf
0170: 69 6c 65 3a 2f 2f 5c 5c  6f 6b 63 73 65 63 70 72  ile.....okcsecpr
0180: 64 30 30 38 2e 63 68 65  73 61 70 65 61 6b 65 2e  d008.chesapeake.
0190: 65 6e 65 72 67 79 5c 43  65 72 74 45 6e 72 6f 6c  energy.CertEnrol
01a0: 6c 5c 6f 6b 63 73 65 63  70 72 64 30 30 38 2e 63  l.okcsecprd008.c
01b0: 68 65 73 61 70 65 61 6b  65 2e 65 6e 65 72 67 79  hesapeake.energy
01c0: 5f 43 68 65 73 61 70 65  61 6b 65 20 50 72 69 6d  .Chesapeake.Prim
01d0: 61 72 79 20 53 75 62 6f  72 64 69 6e 61 74 65 20  ary.Subordinate.
01e0: 43 41 28 32 29 2e 63 72  74 30 76 06 08 2b 06 01  CA.2..crt0v.....
01f0: 05 05 07 30 02 86 6a 68  74 74 70 3a 2f 2f 70 6b  ...0..jhttp...pk
0200: 69 2e 63 68 6b 65 6e 65  72 67 79 2e 6e 65 74 2f  i.chkenergy.net.
0210: 70 6b 69 2f 6f 6b 63 73  65 63 70 72 64 30 30 38  pki.okcsecprd008
0220: 2e 63 68 65 73 61 70 65  61 6b 65 2e 65 6e 65 72  .chesapeake.ener
0230: 67 79 5f 43 68 65 73 61  70 65 61 6b 65 25 32 30  gy.Chesapeake.20
0240: 50 72 69 6d 61 72 79 25  32 30 53 75 62 6f 72 64  Primary.20Subord
0250: 69 6e 61 74 65 25 32 30  43 41 28 32 29 2e 63 72  inate.20CA.2..cr
0260: 74 30 76 06 08 2b 06 01  05 05 07 30 02 86 6a 68  t0v........0..jh
0270: 74 74 70 3a 2f 2f 77 77  77 2e 63 68 6b 65 6e 65  ttp...www.chkene
0280: 72 67 79 2e 63 6f 6d 2f  70 6b 69 2f 6f 6b 63 73  rgy.com.pki.okcs
0290: 65 63 70 72 64 30 30 38  2e 63 68 65 73 61 70 65  ecprd008.chesape
02a0: 61 6b 65 2e 65 6e 65 72  67 79 5f 43 68 65 73 61  ake.energy.Chesa
02b0: 70 65 61 6b 65 25 32 30  50 72 69 6d 61 72 79 25  peake.20Primary.
02c0: 32 30 53 75 62 6f 72 64  69 6e 61 74 65 25 32 30  20Subordinate.20
02d0: 43 41 28 32 29 2e 63 72  74 30 70 06 08 2b 06 01  CA.2..crt0p.....
02e0: 05 05 07 30 02 86 64 68  74 74 70 3a 2f
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  2f 70 6b  ...0..dhttp...pk
02f0: 69 2e 63 68 6b 2e 63 6f  6d 2f 70 6b 69 2f 6f 6b  i.chk.com.pki.ok
0300: 63 73 65 63 70 72 64 30  30 38 2e 63 68 65 73 61  csecprd008.chesa
0310: 70 65 61 6b 65 2e 65 6e  65 72 67 79 5f 43 68 65  peake.energy.Che
0320: 73 61 70 65 61 6b 65 25  32 30 50 72 69 6d 61 72  sapeake.20Primar
0330: 79 25 32 30 53 75 62 6f  72 64 69 6e 61 74 65 25  y.20Subordinate.
0340: 32 30 43 41 28 32 29 2e  63 72 74                 20CA.2..crt

[2]: ObjectId: 2.5.29.31 Criticality=false
0000: 30 82 02 78 30 82 02 74  a0 82 02 70 a0 82 02 6c  0..x0..t...p...l
0010: 86 81 d9 6c 64 61 70 3a  2f 2f 2f 43 4e 3d 43 68  ...ldap....CN.Ch
0020: 65 73 61 70 65 61 6b 65  25 32 30 50 72 69 6d 61  esapeake.20Prima
0030: 72 79 25 32 30 53 75 62  6f 72 64 69 6e 61 74 65  ry.20Subordinate
0040: 25 32 30 43 41 2c 43 4e  3d 6f 6b 63 73 65 63 70  .20CA.CN.okcsecp
0050: 72 64 30 30 38 2c 43 4e  3d 43 44 50 2c 43 4e 3d  rd008.CN.CDP.CN.
0060: 50 75 62 6c 69 63 25 32  30 4b 65 79 25 32 30 53  Public.20Key.20S
0070: 65 72 76 69 63 65 73 2c  43 4e 3d 53 65 72 76 69  ervices.CN.Servi
0080: 63 65 73 2c 43 4e 3d 43  6f 6e 66 69 67 75 72 61  ces.CN.Configura
0090: 74 69 6f 6e 2c 44 43 3d  63 68 65 73 61 70 65 61  tion.DC.chesapea
00a0: 6b 65 2c 44 43 3d 65 6e  65 72 67 79 3f 63 65 72  ke.DC.energy.cer
00b0: 74 69 66 69 63 61 74 65  52 65 76 6f 63 61 74 69  tificateRevocati
00c0: 6f 6e 4c 69 73 74 3f 62  61 73 65 3f 6f 62 6a 65  onList.base.obje
00d0: 63 74 43 6c 61 73 73 3d  63 52 4c 44 69 73 74 72  ctClass.cRLDistr
00e0: 69 62 75 74 69 6f 6e 50  6f 69 6e 74 86 5c 68 74  ibutionPoint..ht
00f0: 74 70 3a 2f 2f 6f 6b 63  73 65 63 70 72 64 30 30  tp...okcsecprd00
0100: 38 2e 63 68 65 73 61 70  65 61 6b 65 2e 65 6e 65  8.chesapeake.ene
0110: 72 67 79 2f 43 65 72 74  45 6e 72 6f 6c 6c 2f 43  rgy.CertEnroll.C
0120: 68 65 73 61 70 65 61 6b  65 25 32 30 50 72 69 6d  hesapeake.20Prim
0130: 61 72 79 25 32 30 53 75  62 6f 72 64 69 6e 61 74  ary.20Subordinat
0140: 65 25 32 30 43 41 2e 63  72 6
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] c 86 58 66 69 6c 65  e.20CA.crl.Xfile
0150: 3a 2f 2f 5c 5c 6f 6b 63  73 65 63 70 72 64 30 30  .....okcsecprd00
0160: 38 2e 63 68 65 73 61 70  65 61 6b 65 2e 65 6e 65  8.chesapeake.ene
0170: 72
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 67 79 5c 43 65 72 74  45 6e 72 6f 6c
6c 5c 43  rgy.CertEnroll.C
0180: 68 65 73 61 70 65 61 6b  65 20 50 72 69 6d 61 72  hesapeake.Primar
0190: 79 20 53 75 62 6f 72 64  69 6e 61 74 65 20 43 41  y.Subordinate.CA
01a0: 2e 63 72 6c 86 48 68 74  74 70 3a 2f 2f 70 6b 69  .crl.Hhttp...pki
01b0: 2e 63 68 6b 65 6e 65 72  67 79 2e 6e 65 74 2f 70  .chkenergy.net.p
01c0: 6b 69 2f 43 68 65 73 61  70 65 61 6b 65 25 32 30  ki.Chesapeake.20
01d0: 50 72 69 6d 61 72 79 25  32 30 53 75 62 6f 72 64  Primary.20Subord
01e0: 69 6e 61 74 65 25 32 30  43 41 2e 63 72 6c 86 48  inate.20CA.crl.H
01f0: 68 74 74 70 3a 2f 2f 77  77 77 2e 63 68 6b 65 6e  http...www.chken
0200: 65 72 67 79 2e 63 6f 6d  2f 70 6b 69 2f 43 68 65  ergy.com.pki.Che
0210: 73 61 70 65 61 6b 65 25  32 30 50 72 69 6d 61 72  sapeake.20Primar
0220: 79 25 32 30 53 75 62 6f  72 64 69 6e 61 74 65 25  y.20Subordinate.
0230: 32 30 43 41 2e 63 72 6c  86 42 68 74 74 70 3a 2f  20CA.crl.Bhttp..
0240: 2f 70 6b 69 2e 63 68 6b  2e 63 6f 6d 2f 70 6b 69  .pki.chk.com.pki
0250: 2f 43 68 65 73 61 70 65  61 6b 65 25 32 30 50 72  .Chesapeake.20Pr
0260: 69 6d 61 72 79 25 32 30  53 75 62 6f 72 64 69 6e  imary.20Subordin
0270: 61 74 65 25 32 30 43 41  2e 63 72 6c              ate.20CA.crl

]
  Algorithm: [SHA1withRSA]
  Signature:
0000: 19 f7 08 f7 2b 78 11 69  ed e7 7a fb f8 c2 db 1f  .....x.i..z.....
0010: 1e e3 89 80 71 6b b9 9f  14 56 a6 b3 18 bb 13 e0  ....qk...V......
0020: 9e b0 45 a1 11 23 04 f8  29 cb 44 f1 24 80 88 48  ..E.......D....H
0030: a8 6a e5 74 ec a2 81 06  35 ff 20 71 ce fe fc df  .j.t....5..q....
0040: 08 18 ad 2a a2 85 12 c2  02 48 9c 7c c2 81 d4 ed  .........H......
0050: 79 5e 33 da a6 51 b7 fd  26 0a cc 4b 3b b6 2f 38  y.3..Q.....K...8
0060: f3 8c fc 33 41 85 c2 22  02 1e 19 88 83 a1 1d d8  ...3A...........
0070: bc 49 63 8b 88 05 1e 61  9b 40 05 16 d1 09 d2 0b  .Ic....a........
0080: 97 61 96 10 64 0a 5c ae  e9 43 fb 47 da 77 1f 71  .a..d....C.G.w.q
0090: ad 41 da 6a e1 59 01 28  52 e6 9b ea 74 35 16 c0  .A.j.Y..R...
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] t5..
00a0: 08 72 a9 a5 97 fe 0f 64  16 4e d4 30 df 3b 7b 24  .r.....d.N.0....
00b0: 14 d0 ec 39 dd d3 63 a2  3f 07 b8 8b 29 db 95 d1  ...9..c.........
00c0: ad 9a 0e 53 4d fb 96 df  63 8f 10 8c 4d 30 82 17  ...SM...c...M0..
00d0: e0 85 ac 53 cf 4d 0d 1c  e1 d5 7a 77 a8 e5 72 6d  ...S.M....zw..rm
00e0: 1a 43 f7 bb c9 f2 26 65  e6 7e 11 4f 18 81 dd f4  .C.....e...O....
00f0: 18 84 de 5f a2 5c 7c 08  a4 bd 9b b3 ae 50 15 3b  .............P..
0100: 4b 5b 52 6b d3 39 11 be  29 6d 48 59 b1 bd b9 ab  K.Rk.9...mHY....
0110: 69 f9 0e 24 5a e9 ef 92  90 1b 06 12 bb 39 d7 91  i...Z........9..
0120: 28 f7 05 07 59 3b dc 28  38 bc 84 0f 21 0f 1c f0  ....Y...8.......
0130: 82 f1 15 c3 07 e7 76 a0  d7 77 e9 09 84 2d 99 c1  ......v..w......
0140: 05 2b 5e d9 f6 34 89 10  a8 df 46 11 82 57 57 7a  .....4....F..WWz
0150: e0 52 6b 1d 93 a9 56 79  76 d4 dd 03 4e d1 e2 5b  .Rk...Vyv...N...
0160: 0b cc 44 f7 6b 26 db 5f  87 69 01 13 31 cb 53 1a  ..D.k....i..1.S.
0170: 46 ae 19 ff 07 7d 6d c0  43 67 c3 06 61 8a ae cc  F.....m.Cg..a...
0180: 16 55 86 30 cd 03 95 a0  25 d3 09 22 87 44 6f 11  .U.0.........Do.
0190: d6 6c 75 ec 9e 74 57 b3  9a 33 b6 98 98 f6 0a fc  .lu..tW..3......
01a0: 88 b6 d1 37 32 01 dc c3  cb 43 58 a6 3b 8b d3 35  ...72....CX....5
01b0: 89 07 16 da da 59 42 12  8e 6b 22 ea f8 73 24 aa  .....YB..k...s..
01c0: 2d c0 9a 42 09 79 92 75  94 a2 7e 99 66 50 cd c2  ...B.y.u....fP..
01d0: e2 25 a4 e3 c0 ed 45 53  a7 70 01 bd 1a f5 a7 e7  ......ES.p......
01e0: 1a 33 c7 47 16 25 65 cf  94 63 26 92 8c 0c f4 8a  .3.G..e..c......
01f0: bb 6a 70 c3 40 85 52 4b  6d dc d9 44 fd 42 1a bc  .jp...RKm..D.B..

]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** ServerHelloDone
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyGenerator
IbmTlsRsaPremasterSecret from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using cipher
RSA/SSL/PKCS1Padding from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] PreMasterSecret:  Using cipher for
wrap RSA/SSL/PKCS1Padding from provider from init IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** ClientKeyExchange, RSA
PreMasterSecret, TLSv1
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, WRITE: TLSv1 Handshake,
length = 262
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] SESSION KEYGEN:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] PreMaster Secret:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 03 01 ea 10 e1 73 3c f3  c8 fc
26 61 1c 21 78 21  .....s.....a..x.
0010: 8a a9 f4 9f 4a ac 32 d2  9b 7b ca 53 de 95 a5 a4  ....J.2....S....
0020: b3 06 9b f3 7c 59 34 e2  bc e8 2f 64 4b a9 e7 51  .....Y4....dK..Q
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
javax.crypto.spec.SecretKeySpec@13e6437
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyGenerator
IbmTlsMasterSecret from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyGenerator
IbmTlsKeyMaterial from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] CONNECTION KEYGEN:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Client Nonce:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 55 4a 5e 2c a1 52 a2 78  55 95
56 ba 06 cb 0d 39  UJ...R.xU.V....9
0010: 84 72 d1 c0 0e a2 f8 88  57 7c 0d 09 ec 1f f7 8f  .r......W.......
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Server Nonce:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 55 4a 5e 2c 85 f0 cd 21  b9 b5
57 70 e0 f2 c4 ed  UJ........Wp....
0010: df ca 84 27 bd b0 7c e7  9a 6e f3 c8 19 dd a0 b5  .........n......
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Master Secret:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 59 b2 f0 e4 e6 89 5a 84  16 c3
24 10 74 59 1b 2c  Y.....Z.....tY..
0010: 1b bb 16 d7 94 16 da 8d  f6 26 59 e0 fb 35 3d 8c  ..........Y..5..
0020: 87 a3 5b 3e 8f c2 79 50  06 43 2b 9f 12 f5 55 a9  ......yP.C....U.
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Client MAC write Secret:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: a0 11 5f 4e 08 08 cd 88  76 90
36 05 f6 4a 43 69  ...N....v.6..JCi
0010: ca 50 f6 70                                        .P.p
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Server MAC write Secret:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 57 bc 8c 4e dd 02 e1 da  e4 92
2a 74 62 bc d6 88  W..N.......tb...
0010: 10 c9 f0 ac                                        ....
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Client write key:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 22 a0 f4 42 06 ca 80 02  3d b9
09 12 0a 70 c6 46  ...B.........p.F
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Server write key:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 1b 4d ca 22 87 27 2d 12  5a 8d
62 99 f6 be 29 48  .M......Z.b....H
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Client write IV:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: 18 7c 78 0d 97 6a d6 c8  5c c8
9e 85 e4 5f 66 1c  ..x..j........f.
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Server write IV:
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 0000: dc a5 4d 85 28 0b dd c7  b4 44
3b 8d 32 00 5d 53  ..M......D..2..S
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyGenerator
IbmTlsPrf from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] HandshakeMessage:  TLS Keygenerator
IbmTlsPrf  from provider from init IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, WRITE: TLSv1 Change Cipher
Spec, length = 1
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using cipher
AES/CBC/NoPadding from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] CipherBox:  Using cipher
AES/CBC/NoPadding from provider from init IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using MAC HmacSHA1 from
provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] MAC:  Using MessageDigest HmacSHA1
from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** Finished
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] verify_data:  {
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 156
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 83
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 209
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 199
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 191
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 32
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 228
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 190
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 23
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 115
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 177
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 172
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  }
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, WRITE: TLSv1 Handshake,
length = 48
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, READ: TLSv1 Change Cipher
Spec, length = 1
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using cipher
AES/CBC/NoPadding from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] CipherBox:  Using cipher
AES/CBC/NoPadding from provider from init IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using MAC HmacSHA1 from
provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] MAC:  Using MessageDigest HmacSHA1
from provider IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, READ: TLSv1 Handshake,
length = 48
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] *** Finished
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] verify_data:  {
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 207
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 34
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 49
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 160
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 165
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 165
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 153
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 150
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 208
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 140
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 183
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ,
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] 137
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG]  }
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] ***
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] JsseJCE:  Using KeyGenerator
IbmTlsPrf from provider TBD via init
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] HandshakeMessage:  TLS Keygenerator
IbmTlsPrf  from provider from init IBMJCE version 1.7
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] cached session [Session-1,
SSL_RSA_WITH_AES_128_CBC_SHA]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] % Cached client session: [Session-1,
SSL_RSA_WITH_AES_128_CBC_SHA]
WRITER_1_*_1> JAVA PLUGIN_1762 [DEBUG] Thread-6, setSoTimeout(10000) called
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 32
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 32
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 64
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 128
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 48
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 32
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 32
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 112
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 112
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 32
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 64
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionOutputThread-0,
WRITE: TLSv1 Application Data, length = 128
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 64
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, READ:
TLSv1 Application Data, length = 2736
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] % Invalidated:  [Session-1,
SSL_RSA_WITH_AES_128_CBC_SHA]
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] , SEND TLSv1 ALERT:
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] fatal,
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] description = bad_record_mac
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, WRITE:
TLSv1 Alert, length = 32
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0, called
closeSocket()
SDKTempThread> JAVA PLUGIN_1762 [DEBUG] QpidConnectionInputThread-0,
handling exception: javax.net.ssl.SSLException: Invalid TLS padding data
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] javax.net.ssl.SSLException: Invalid
TLS padding data
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.j.a(j.java:19)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.qc.a(qc.java:199)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.qc.a(qc.java:561)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.qc.a(qc.java:511)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.e.read(e.java:45)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at
java.io.InputStream.read(InputStream.java:113)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at
org.apache.qpid.amqp_1_0.client.TCPTransportProvider.doRead(TCPTransportProvider.java:234)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at
org.apache.qpid.amqp_1_0.client.TCPTransportProvider.access$000(TCPTransportProvider.java:47)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at
org.apache.qpid.amqp_1_0.client.TCPTransportProvider$1.run(TCPTransportProvider.java:185)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at
java.lang.Thread.run(Thread.java:804)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] Caused by:
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] javax.crypto.BadPaddingException:
Invalid TLS padding data
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.k.a(k.java:341)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.k.a(k.java:171)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.a.a(a.java:247)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] at com.ibm.jsse2.qc.a(qc.java:693)
SDKTempThread> CMN_1761 Timestamp Event: [Wed May 06 13:32:12 2015]
SDKTempThread> JAVA PLUGIN_1762 [ERROR] ... 7 more

Re: Invalid TLS Padding error

Posted by Rob Godfrey <ro...@gmail.com>.
As per Gordon's mail - in order to be able to help we really need a
bit more information on which Qpid components you are using.

>From the stack trace at the end I think you are using the amqp-1.0 JMS
client - is that correct?  That client simply uses the inbuilt Java
SSLSocket implementation rather than trying to do anything clever.

What logs is your server component producing?  If you don;t have
access to those (e.g. if you are connecting to a third party
provider's AMQP service) have you tried using wireshark or something
similar to inspect the network traffic?

-- Rob



On 8 May 2015 at 10:59, Gordon Sim <gs...@redhat.com> wrote:
> On 05/08/2015 03:26 AM, Abhilash Mula wrote:
>>
>> Hi,
>> We are facing an error when trying to connect to Qpid using informatica.
>> Im
>> not an SSL expert but im attching the ssl log from debug.
>
>
> Which broker (java or c++) and which version are you using?
>
>>  From the log
>>
>> 1. We negotiate the handshake correctly (WRITER_1_*_1> JAVA PLUGIN_1762
>> [DEBUG] *** ServerHelloDone)
>> 2. We then receive a (I assume) non-encrypted error back on the channel
>> (SDKTempThread> JAVA PLUGIN_1762 [DEBUG] description = bad_record_mac)
>> a. I think this is actually the cause of the Invalid TLS padding data.
>> Java cannot handle the non-encrypted error on the encrypted channel.
>>
>> So, I think that we need to resolve what is causing the bad_record_mac
>> exception but not sure where to even start.
>>
>> Appreciate any inputs.
>
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: users-unsubscribe@qpid.apache.org
> For additional commands, e-mail: users-help@qpid.apache.org
>

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@qpid.apache.org
For additional commands, e-mail: users-help@qpid.apache.org


Re: Invalid TLS Padding error

Posted by Gordon Sim <gs...@redhat.com>.
On 05/08/2015 03:26 AM, Abhilash Mula wrote:
> Hi,
> We are facing an error when trying to connect to Qpid using informatica. Im
> not an SSL expert but im attching the ssl log from debug.

Which broker (java or c++) and which version are you using?

>  From the log
>
> 1. We negotiate the handshake correctly (WRITER_1_*_1> JAVA PLUGIN_1762
> [DEBUG] *** ServerHelloDone)
> 2. We then receive a (I assume) non-encrypted error back on the channel
> (SDKTempThread> JAVA PLUGIN_1762 [DEBUG] description = bad_record_mac)
> a. I think this is actually the cause of the Invalid TLS padding data.
> Java cannot handle the non-encrypted error on the encrypted channel.
>
> So, I think that we need to resolve what is causing the bad_record_mac
> exception but not sure where to even start.
>
> Appreciate any inputs.


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@qpid.apache.org
For additional commands, e-mail: users-help@qpid.apache.org