vrk-kpa / xroad-joint-development

Unmaintained repository. Development moved to: https://github.com/nordic-institute/X-Road-development
19 stars 8 forks source link

As a Security Server Administrator I want OCSP log messages to be more verbal #187

Closed JyrgenSuvalov closed 6 years ago

JyrgenSuvalov commented 6 years ago

Affected components: - xroad-signer Affected documentation: - None Estimated delivery: - N/A External reference: - https://jira.ria.ee/browse/XTE-386

Problem OCSP Response status codes are a bit cryptic for debugging. For example:

e.r.x.s.certmanager.OcspClientWorker - Parsing OCSP response from http://ocsp.sk.ee/failed org.bouncycastle.cert.ocsp.OCSPException: Invalid OCSP response status: 6

Response status code 6 stands for UNAUTHORIZED. Logging "Request not authorized" would be more informative for administrators.

Acceptance criteria OCSP log messages are made more verbal.

VitaliStupin commented 6 years ago

Fixed in 6.17.0