Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-59681

Issuing certificate through the ACME server fails with - Invalid HMAC Signature in the externalAccountBinding

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • 4.17.z
    • cert-manager
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • Important
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      
      We are experiencing an issue when attempting to set up ACME certificate issuance using cert-manager on OpenShift. Registering an ACME account fails with the following error message in the ClusterIssuer resource status:
      
      > Failed to register ACME account: 400 urn:ietf:params:acme:error:malformed: Invalid HMAC Signature in the externalAccountBinding
      
      The same request using the `certbot` works fine.
      
          

      Version-Release number of selected component (if applicable):

      OpenShift Container Platform 4.17.34
      Cert manager 1.16.5
          

      How reproducible:

      n/a
          

      Steps to Reproduce:

          1.
          2.
          3.
          

      Actual results:

      
          

      Expected results:

      
          

      Additional info:

      
          

              tgeer@redhat.com Trilok Geer
              rhn-support-vwalek Vladislav Walek
              Trilok Geer
              None
              Yuedong Wu Yuedong Wu
              None
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: