Welcome, Guest. Please login or register.
Did you miss your activation email?
May 18, 2013, 03:11:59 PM

Login with username, password and session length

662891 Posts
70571 Topics
145143 Members

Latest Member: GwenFisch

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Business / Enterprise Security Products & Services
| |-+  Digital Certificates
| | |-+  Code Signing Certificate
| | | |-+  unrecognized reply from time server
« previous next »
Pages: [1] Go Down Print
Author Topic: unrecognized reply from time server  (Read 16389 times)
mediascience
Newbie
*
Offline Offline

Posts: 4


« on: November 18, 2008, 04:12:47 PM »

Trying to timestamp-sign a JAR using url
http://timestamp.comodoca.com/authenticode

jarsigner responds with error:
jarsigner: unable to sign jar: java.io.IOException: MIME Content-Type is not app
lication/timestamp-reply



Is there an alternate time server for jarsigner?

TIA
Logged
mark-support
Newbie
*
Offline Offline

Posts: 24


Technical Support


« Reply #1 on: November 24, 2008, 07:01:20 AM »

Hi,

The timestamping server URL is common for all type of signing, so could you please send a exact command that you have used for signing a jar file to find a cause of the issue?.

Thanks.
Logged
mediascience
Newbie
*
Offline Offline

Posts: 4


« Reply #2 on: December 02, 2008, 05:28:22 PM »

I believe authenticode uses a proprietary protocol that is different from the standard used by jarsigner (Timestamp Protocol, RFC 3161). So, I'm wondering where I might find Comodo's timestamp server for the standard protocol.

As requested, the command that generates the error:
jarsigner -signedjar detector.jar -tsa "http://timestamp.comodoca.com/authenticode" assembly-1.0-SNAPSHOT-jar-with-dependencies.jar msisoftware
Enter Passphrase for keystore:
Enter key password for msisoftware:
jarsigner: unable to sign jar: java.io.IOException: MIME Content-Type is not application/timestamp-reply


Thank you.
Logged
jpblanco
Newbie
*
Offline Offline

Posts: 1


« Reply #3 on: March 20, 2009, 02:50:13 PM »

I am another user that is trying to sign JAR files using jarsigner, and am running into the same problem as is decribed above by other users.  I believe that the post by the user who suggests that the Authenticode protocol is different than the standard protocol is correct.  Please respond and let us know if Comodo has a URL that supports the timestamping protocol used by jarsigner and, if so, where we can access it.  If Comodo does not yet support this, we need to know when you will.

For the record, the error message I'm receiving is:

"jarsigner: unable to sign jar: java.io.IOException: MIME Content-Type is not application/timestamp-reply"

If you (the Comodo support team) need more information on jarsigner and its support for timestamping, please see:

http://java.sun.com/j2se/1.5.0/docs/guide/security/time-of-signing.html
Logged
mark-support
Newbie
*
Offline Offline

Posts: 24


Technical Support


« Reply #4 on: March 22, 2009, 05:08:05 PM »

Hi,

Unfortunately at this time we do not support timestamping JARs.

I do not know if we will offer a timestamping service for anything other than Authenticode. However, I will suggest our developers add this sort of functionality to our arsonal. I can not guarantee it will ever be added.

Thanks.
Logged
ambling
Newbie
*
Offline Offline

Posts: 1


« Reply #5 on: February 12, 2011, 09:59:51 PM »

I am also attempting to sign Java jar files with the code signing certificate I bought from you.  Like the previous posters I get an error back from the time server when using the jarsigner "-tsa http://timestamp.comodoca.com/authenticode" option to time stamp the code signature.

Count me as one more customer that is hoping that support for providing an RFC 3161 compliant time stamp service is still on your list of important enhancements.

Logged
Rob Stradling
PKI Guru
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 1016



« Reply #6 on: February 15, 2011, 06:47:18 AM »

We don't currently provide an RFC3161-compliant Timestamping Server.  However, it is certainly on our list of important features to add.  October 31st 2011 is the best ETA I can offer right now, because...

Microsoft have recently imposed a new requirement on all Code Signing CAs (including Comodo) who are members of the Microsoft Root Certificate Program:
"The CA shall operate a timestamp server authority (TSA) in conjunction with their code signing service, and as a best practice request that Subscribers timestamp the digital signature after signing their code.  Effective no later than October 31, 2011, the TSA must comply with RFC 3161, 'Internet X.509 Public Key Infrastructure Time-Stamp Protocol (TSP).' "
Logged
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.047 seconds with 22 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com