View Issue Details

IDProjectCategoryView StatusLast Update
0001271Main CAcert Websitecertificate issuingpublic2014-04-26 11:57
Reportermigmedia Assigned To 
PrioritylowSeveritymajorReproducibilityalways
Status needs feedbackResolutionopen 
Product Version2014 Q2 
Summary0001271: Subscribing a server-cert breaks depending of length of the csr
DescriptionAfter inserting a too-long csr > 1750 Byte a Error-message apears: "I didn't receive a valid Certificate Request. Hit the back button and try again."
Steps To ReproduceGenerate a certificate-request with 4096 bits keysize and two `subAltName`-entries. If it's file size is greater as 1785 Bytes the subscribing will fail.

Using keysize 3072 bits works as expected as the filesize is smaller as 1785.
The same with a shorter subAltName-entry.
TagsNo tags attached.
Reviewed by
Test Instructions

Activities

BenBE

2014-04-26 11:57

updater   ~0004753

Cannot reproduce as I regularly submit CSRs with far more than 10KB (largest I found and recently signed was 11751 Bytes and signed successfully).

Please provide (as a private comment if necessary) an example CSR that failed for you so we can investigate.

Issue History

Date Modified Username Field Change
2014-04-17 14:18 migmedia New Issue
2014-04-26 11:57 BenBE Note Added: 0004753
2014-04-26 11:57 BenBE Priority normal => low
2014-04-26 11:57 BenBE Status new => needs feedback
2014-04-26 11:57 BenBE Product Version => 2014 Q2