33 KiB
Client-Token Test (my_
)
This document belongs to the test-case test_config_token.py
Our Client-Token itself is consistent and all validations are successful. But the nvidia-gridd
service fails to
verify.
This probably is, because we are using certificates which are not singed by nvidia. This maybe is done by the initial
instance-token exchange.
Maybe the only way to get successful, is to fake the whole instance-token exchange.
[TOC]
Response Payload
{
"certificateConfiguration": {
"caChain": [
"-----BEGIN CERTIFICATE-----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\r\n56OFWPHcA7gxkpU8wftrVMLFeDvLIGc=\r\n-----END CERTIFICATE-----"
],
"publicCert": "-----BEGIN CERTIFICATE-----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\r\n-----END CERTIFICATE-----",
"publicKey": {
"exp": 65537,
"mod": [
"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"
]
}
},
"configToken": "eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJOTFMgU2VydmljZSBJbnN0YW5jZSIsImF1ZCI6Ik5MUyBMaWNlbnNlZCBDbGllbnQiLCJpYXQiOjE3NDMwMjM4MTksIm5iZiI6MTc0MzAyMzgxOSwiZXhwIjoxNzQzMDI0NzE5LCJwcm90b2NvbF92ZXJzaW9uIjoiMi4wIiwiZF9uYW1lIjoiRExTIiwic2VydmljZV9pbnN0YW5jZV9yZWYiOiJkOGMwN2U0YS1mNmE0LTQ5ZDAtYjJkYy0zZmFmMGUxYmYyYmQiLCJzZXJ2aWNlX2luc3RhbmNlX3B1YmxpY19rZXlfY29uZmlndXJhdGlvbiI6eyJzZXJ2aWNlX2luc3RhbmNlX3B1YmxpY19rZXlfbWUiOnsibW9kIjoiZTIxMjkwNGEzYzk2NzU2MDJmOTEyYjU1M2QxODRhZTRlNmMxMGQ3ZWEwODQ1ZTE0MmU0OTgzMDc5ODhhNzVlYzQwNThmM2NhNjg3MDg2MWM0NDdlZDQ2MTgwMDZjMDMwNTNkODI3ZDY3YzYxMjM1OWU5OWU4MzNhNmJkYWE5NzE3YzBjNDUzN2Y5NDc1ZTMzNDg2OGFjY2IzYmEwZTkyMjUyNTMyOTMxOWNiMWI1MmJhYjk4NGQzNDI4Zjc5YjE3MjllN2JiNmMwY2U4MWM0NDYxNThhZjU0YzZhOTIyYmNiYzE2ZGFiMWEyNWJjODUxMWI4NTA3NDNmMTFhZGNlNTZiOGNmNmQxMWRmOWFjNjg5OWI4YjViN2Y2YTAxOTE5ZDUyZGYxODczNDA4MjI0YWQ1ZjFmZGQxNTFlZDUyYzcxNDNmODlmYjVmZTU0Njk4Mzk5Y2ViYmJhOWIyZTEyNmZmYmM4OGM0NTNhZTkyODgzOWU0MjcwNmVhNTRhNzY0MjNjZWFhZGI1NjBiNWVhZWMzMzIyZmFmMDE1MjA0ZTZiNzNmNDk2NjMzZmUyNDU5ZmNjNzJjNDQzYWU4N2Q1YzUwMjI4MWVhZWY1ZWI1ZGQ3MTI2NGYyNDI0NDY2ZDEzZmM4ZTM4NjIxY2E3ODVlZGFhNDBiODFmZDIxY2VlMDUiLCJleHAiOjY1NTM3fSwic2VydmljZV9pbnN0YW5jZV9wdWJsaWNfa2V5X3BlbSI6Ii0tLS0tQkVHSU4gUFVCTElDIEtFWS0tLS0tXG5NSUlCSWpBTkJna3Foa2lHOXcwQkFRRUZBQU9DQVE4QU1JSUJDZ0tDQVFFQTRoS1FTanlXZFdBdmtTdFZQUmhLXG41T2JCRFg2Z2hGNFVMa21EQjVpS2RleEFXUFBLYUhDR0hFUisxR0dBQnNBd1U5Z24xbnhoSTFucG5vTTZhOXFwXG5jWHdNUlRmNVIxNHpTR2lzeXp1ZzZTSlNVeWt4bkxHMUs2dVlUVFFvOTVzWEtlZTdiQXpvSEVSaFdLOVV4cWtpXG52THdXMnJHaVc4aFJHNFVIUS9FYTNPVnJqUGJSSGZtc2FKbTR0YmYyb0JrWjFTM3hoelFJSWtyVjhmM1JVZTFTXG54eFEvaWZ0ZjVVYVlPWnpydTZteTRTYi92SWpFVTY2U2lEbmtKd2JxVktka0k4NnEyMVlMWHE3RE1pK3ZBVklFXG41cmMvU1dZei9pUlovTWNzUkRyb2ZWeFFJb0hxNzE2MTNYRW1UeVFrUm0wVC9JNDRZaHluaGUycVFMZ2YwaHp1XG5CUUlEQVFBQlxuLS0tLS1FTkQgUFVCTElDIEtFWS0tLS0tIiwia2V5X3JldGVudGlvbl9tb2RlIjoiTEFURVNUX09OTFkifX0.BpMtY8Z1_hbzW-R4b9Ntet5HjvlwTfmMyh7bZVLFG8wIMfMHWJZCJdZC99TRznkkoOQg6qkhpyWMYAMGV5AOTRvzqu9LftnLJIq8Iih5YxUWpyPHNbKu0V54C41H7yG5uR96ypn3dIfjEqzJb9LK-oIL_TYVwKEf2rKcLUs-FtoaEWMIGFqm2RBR4yPuRZBUPiHjhUZkzig2c-mS-kB_sNvzBV66cvUxKKNwQw3JgewT3OlvA7ixcLE0X3e_M4u6K67W9uX5nfa5dlY2Fm6GoRnMqW7pW8zWIHtFFt3brOQOlgTKjlippx_jqD9P3qBXBp704Pk-_V7XlfAOTGLuyA"
}
JWT $.configToken
eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.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.OUHugJf1npBrVL7kZAUb0HsoMJq69ejau3SjdLz0yURkYxm87oP3BVX1jXstPdM40EYJ6tKy_SUXeGHFaOe06pnCvSKbx0c2u9egAqarW_jHMkrOT5PHHKBHTdm2KbRyX5nIgHaYCvAQIyZrPEPA4S5abYpJffJzZ7XLf5Rf6nrUco5W_T-Zt0VZ2AOvPutmn1CV5VXCbBfh1ekaVjuxTr3rTl8xsuIXBfXDLm-W2L-TJCT-uB450m4MLROmc7on3If3sG64PG8Bdd5o8TqEmjigoOND2K5_3H9G6aAHjBWiI8aGgzNo9oO-s_DBYcOIODS_jOJr_2n6SM_UKIM-8w
JWT decoded
{
"iss": "NLS Service Instance",
"aud": "NLS Licensed Client",
"iat": 1743022769,
"nbf": 1743022769,
"exp": 1743023669,
"protocol_version": "2.0",
"d_name": "DLS",
"service_instance_ref": "d8c07e4a-f6a4-49d0-b2dc-3faf0e1bf2bd",
"service_instance_public_key_configuration": {
"service_instance_public_key_me": {
"mod": "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",
"exp": 65537
},
"service_instance_public_key_pem": "-----BEGIN PUBLIC KEY-----\nMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4hKQSjyWdWAvkStVPRhK\n5ObBDX6ghF4ULkmDB5iKdexAWPPKaHCGHER+1GGABsAwU9gn1nxhI1npnoM6a9qp\ncXwMRTf5R14zSGisyzug6SJSUykxnLG1K6uYTTQo95sXKee7bAzoHERhWK9Uxqki\nvLwW2rGiW8hRG4UHQ/Ea3OVrjPbRHfmsaJm4tbf2oBkZ1S3xhzQIIkrV8f3RUe1S\nxxQ/iftf5UaYOZzru6my4Sb/vIjEU66SiDnkJwbqVKdkI86q21YLXq7DMi+vAVIE\n5rc/SWYz/iRZ/McsRDrofVxQIoHq71613XEmTyQkRm0T/I44Yhynhe2qQLgf0hzu\nBQIDAQAB\n-----END PUBLIC KEY-----",
"key_retention_mode": "LATEST_ONLY"
}
}
JWT Signature
Signature can be verified with KeyPair from Database public_private_key_pair
.
RSA Private/Public Keypair
-----BEGIN RSA PRIVATE KEY-----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-----END RSA PRIVATE KEY-----
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnApHWXQGS4wRp8JCnzoT
/ufN96gsuAG0XCJMwhoFPRoVZNUqx9AEjp7LWqFqGzCdhG5GkwT/CMeQgeAKQAiE
RyascHs3pwSquOct3QCd41TrbSkReRjm8SyfZ8mvS+4weXdTnMJhRAX6b8S1jR7o
s9gf2DfKPWOxSi8ziBHevQp2k5VCp7reGwfRK4uYgq6mRSFbkrTDYg9nl5fMR0hH
JfpDL177eiO+EnU6dRbKUo1pNqAa9DutieVvEAeEM/8ZXz9xmcVhkwKDo47lATCd
NidU7ivP2u+3EGegurCdeI3+lTTq3PYGEIxDkGrLAmIyVnduWCnNdZy4N4Z7kUVu
XwIDAQAB
-----END PUBLIC KEY-----
CA-Chain $.certificateConfiguration.caChain[0]
Certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Details
- Serial Number:
0A:95:6C:CD:F7:9C:46:B9:CF:6B:71:06:C0:F2:AE:C9:61:12:06:63
(60422196956716054748324366494382031228994979427
) - Subject DN:
CN=NLS Intermediate CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- Issuer DN:
CN=NLS Root CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- Critical Extensions
Certificate Signing CRL Signing Subject is a CA Path Length Constraint: None
- Non Critical Extensions (both
Key Identifier
have changed after resetting NLS-Instance)Key Identifier: 0x4A35 24FC 50F7 9961 080B 64B1 0A30 11A4 95A0 031E Key Identifier: 0x6211 7134 4689 E390 F37E 5C18 E749 06E8 03C5 F76A
Hardcoded Gridd Certificates
Certificate One (This is the Certificate which Key-Identifier must match the above CA-Chain)
Certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Details
- Serial Number:
21:C3:EE:29:91:3C:6B:FA:F4:39:15:0F:1A:CF:49:07:1B:9F:CF:94
(192766087619580765810248572656979285294591233940
) - Subject DN:
CN=NLS Root CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- Issuer DN:
CN=NLS Root CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- Critical Extensions
Certificate Signing CRL Signing Subject is a CA Path Length Constraint: None
- Non Critical Extensions
Key Identifier: 0x6211 7134 4689 E390 F37E 5C18 E749 06E8 03C5 F76A Key Identifier: 0x6211 7134 4689 E390 F37E 5C18 E749 06E8 03C5 F76A
Certificate Two
Certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Details
- Serial Number:
4A:74:41:D3:FF:5E:5D:C4:F4:F2:9C:4E:81:75:BD:2F:6F:1A:F1:29
(425057937921601778510195065973000738143253229865
) - Subject DN:
CN=NLS Root CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- Issuer DN:
CN=NLS Root CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- Critical Extensions
Certificate Signing CRL Signing Subject is a CA Path Length Constraint: None
- Non Critical Extensions
Key Identifier: 0x7700 93E6 F3F1 B9D6 0B40 89F3 0A50 8F75 E789 10F4 Key Identifier: 0x7700 93E6 F3F1 B9D6 0B40 89F3 0A50 8F75 E789 10F4
Public-Cert $.certificateConfiguration.publicCert
This is used to verify JWT-Signature.
[!alert] On official DLS we have no private/public key. This certificate is only present in database "configuration" => "DLS_SI_CERTIFICATE". There also is an encrypted private-key, which probably is the private-key belonging to this certificate.
Certificate
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
Details todo
- Serial Number:
3F:2A:11:B1:52:09:2E:77:B1:D5:62:9B:11:1A:8B:01:07:17:1D:C4
(360604591108124329929053425883734788758453034436
) - Subject DN:
CN=d8c07e4a-f6a4-49d0-b2dc-3faf0e1bf2bd
- Issuer DN:
CN=NLS Intermediate CA, OU=Nvidia Licensing Service (NLS), O=Nvidia, ST=California, C=US
- SASNS:
d8c07e4a-f6a4-49d0-b2dc-3faf0e1bf2bd
- Critical Extensions
Digital Signature Key Encipherment Key Agreement
- Non Critical Extensions (both
Key Identifier
have changed after resetting NLS-Instance)Key Identifier: 0x3B52 D9F7 A1AF 4EFF 995A F664 26F9 F814 6E69 68CD DNS Name: d8c07e4a-f6a4-49d0-b2dc-3faf0e1bf2bd Key Identifier: 0x4A35 24FC 50F7 9961 080B 64B1 0A30 11A4 95A0 031E TLS Web Server Authentication (1.3.6.1.5.5.7.3.1) TLS Web Client Authentication (1.3.6.1.5.5.7.3.2)
Error Message from nvidia-gridd
Result from current config-token
Mär 21 12:22:10 debian-grid-test nvidia-gridd[586]: Failed to verify public certificate (error:0A000126:SSL routines::unexpected eof while reading)
Mär 21 12:22:10 debian-grid-test nvidia-gridd[586]: Failed to verify public certificate (error:00000000:lib(0)::reason(0))
Mär 21 12:22:10 debian-grid-test nvidia-gridd[586]: Failed to validate public certificates
Mär 21 12:22:10 debian-grid-test nvidia-gridd[586]: Server configuration validation failed. Invalid certificate received from server.
Mär 21 12:22:10 debian-grid-test nvidia-gridd[586]: Failed to setup cloud License Manager: 3
Mär 21 12:22:10 debian-grid-test nvidia-gridd[586]: Shutdown (586)
Mär 21 12:22:10 debian-grid-test systemd[1]: nvidia-gridd.service: Main process exited, code=exited, status=1/FAILURE
Mär 21 12:22:10 debian-grid-test systemd[1]: nvidia-gridd.service: Failed with result 'exit-code'.
What is interesting, that caChain
and publicCert
on original dls response, contains 76 chars per line,
where our (default pem) only contains 64 chars.
But even after splitting into 76 char-chunks (so both, our and nvidias, CA files and Cert files have an equal length)
{"certificateConfiguration": {"caChain": ["-----BEGIN CERTIFICATE-----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\r\nLB1AoLT312tgy6B/HKzBPeCdFpQ0qOI=\r\n-----END CERTIFICATE-----"], "publicCert": "-----BEGIN CERTIFICATE-----\r\nMIIE2zCCAsOgAwIBAgIUbI4FSbGJm4+b98OLmMFCcTuUjkMwDQYJKoZIhvcNAQELBQAwejELMAkG\r\nA1UEBhMCVVMxEzARBgNVBAgMCkNhbGlmb3JuaWExDzANBgNVBAoMBk52aWRpYTEnMCUGA1UECwwe\r\nTnZpZGlhIExpY2Vuc2luZyBTZXJ2aWNlIChOTFMpMRwwGgYDVQQDDBNOTFMgSW50ZXJtZWRpYXRl\r\nIENBMB4XDTI1MDMyMDEzMjAyNloXDTM1MDMxOTEzMjAyNlowLzEtMCsGA1UEAwwkNGU1M2ExNzEt\r\nMTAzYi00OTQ2LTllZDgtNWY0YzBlZTc1MGQ5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC\r\nAQEArHvJrSRs/oJS2g84k/lK1Qn6CDJ3Ulx3GgJdgbmYRhkA3hMBEFdk2IbDnMGL3xwksH062xX3\r\n5tIT0OQF02eKKpB1NRQXcfSvyQmyrKX4nGbPABSMgQn+wIQV+7dZ4m/69Ipsql8ba8/+YqfPuQ+r\r\nLPbUJoPzgNUl/XiAiX0waoL3Oq/pw4/P27QrbbPsA0XwsWS6/9Wzg8MXL/sHmetaeNXDgdTUE8CO\r\nc0X3vLAZbp3hZIeTXiNAAZfcucy3tpg3YAC1fHQPZlVhMLd/VHS545qpwR9TtjD+bIGVBNifx+GW\r\nU2B7WMyLSCi2Fws5LAwHWZfnIg9mf4Uwhaw3grcTpQIDAQABo4GjMIGgMA4GA1UdDwEB/wQEAwID\r\nqDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwHQYDVR0OBBYEFO2Br3PxPeM2OQBfSrCk\r\nRbU04YpuMB8GA1UdIwQYMBaAFDjplNtFACHvuPcmGiHwF/bCvRmUMC8GA1UdEQQoMCaCJDRlNTNh\r\nMTcxLTEwM2ItNDk0Ni05ZWQ4LTVmNGMwZWU3NTBkOTANBgkqhkiG9w0BAQsFAAOCAgEAGz5VHUAn\r\nQqBesOApDemBF6SU/VZqcbXmBZLzrm2/wbNMEnVeYurTOVinyTkRJJHdnCMzCOPurW8rRBJGfhd4\r\nsRnNNciTtzle6nHYA84bwbp3rRBeejKYo6lrCEQQ63nxnH+cejpwm1A/BtvMs4r3Ebo2cy/YsLtn\r\nIvATqJ/niPD3ykdVPUhnRqX+6ki1AvKX1OYi2m0iq39ApmAtAstRJBKTsuny3up8n/iZEtn6Ds0l\r\ngGZH5pnMw3wHzy1cQQLI9+Jky0JFhu2DaPCJRypQncrP2ziydUAJgOE/wOwgOa/299Qw3/7NTGDH\r\nplBNboggu9u2YrSKF2nOIczbPWwEV4vNCjhIITCxc9p2di2pUR2qzC14RpA2p+sORSJkLm6voIzn\r\n74sC+u9cQdK4trytn86iX24Jn3ptBTAeTciGiNcQTWFHtWlpL6e54swmvGcHHhnmA8uU167f5NxY\r\nvFxVub7vKLVlvpdHIU+YWiB3zSr5PT4x2yTfCf+pbTVeVYz5/bx4QOkM9I+M2fKpuZQA35nmu+Of\r\nTEEaFW9+ssGc6txsjb82vn0yDxXzcZcmK49XNhn2egQZIyUCRUCxTG65BkV4mWkIF+E7juyWPTOd\r\nxfSjoXKjWQCm2cmHCBtaxs6kD383bSQtX2b4uxnma8dXdZxz5imb1VTL7JoVd+o9/lU=\r\n-----END CERTIFICATE-----", "publicKey": {"exp": 65537, "mod": ["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"]}}, "configToken": "eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJOTFMgU2VydmljZSBJbnN0YW5jZSIsImF1ZCI6Ik5MUyBMaWNlbnNlZCBDbGllbnQiLCJpYXQiOjE3NDI1NjMyMjYsIm5iZiI6MTc0MjU2MzIyNiwiZXhwIjoyMTIxMjU0NDI2LCJwcm90b2NvbF92ZXJzaW9uIjoiMi4wIiwiZF9uYW1lIjoiRExTIiwic2VydmljZV9pbnN0YW5jZV9yZWYiOiI0ZTUzYTE3MS0xMDNiLTQ5NDYtOWVkOC01ZjRjMGVlNzUwZDkiLCJzZXJ2aWNlX2luc3RhbmNlX3B1YmxpY19rZXlfY29uZmlndXJhdGlvbiI6eyJzZXJ2aWNlX2luc3RhbmNlX3B1YmxpY19rZXlfbWUiOnsibW9kIjoiYWM3YmM5YWQyNDZjZmU4MjUyZGEwZjM4OTNmOTRhZDUwOWZhMDgzMjc3NTI1Yzc3MWEwMjVkODFiOTk4NDYxOTAwZGUxMzAxMTA1NzY0ZDg4NmMzOWNjMThiZGYxYzI0YjA3ZDNhZGIxNWY3ZTZkMjEzZDBlNDA1ZDM2NzhhMmE5MDc1MzUxNDE3NzFmNGFmYzkwOWIyYWNhNWY4OWM2NmNmMDAxNDhjODEwOWZlYzA4NDE1ZmJiNzU5ZTI2ZmZhZjQ4YTZjYWE1ZjFiNmJjZmZlNjJhN2NmYjkwZmFiMmNmNmQ0MjY4M2YzODBkNTI1ZmQ3ODgwODk3ZDMwNmE4MmY3M2FhZmU5YzM4ZmNmZGJiNDJiNmRiM2VjMDM0NWYwYjE2NGJhZmZkNWIzODNjMzE3MmZmYjA3OTllYjVhNzhkNWMzODFkNGQ0MTNjMDhlNzM0NWY3YmNiMDE5NmU5ZGUxNjQ4NzkzNWUyMzQwMDE5N2RjYjljY2I3YjY5ODM3NjAwMGI1N2M3NDBmNjY1NTYxMzBiNzdmNTQ3NGI5ZTM5YWE5YzExZjUzYjYzMGZlNmM4MTk1MDRkODlmYzdlMTk2NTM2MDdiNThjYzhiNDgyOGI2MTcwYjM5MmMwYzA3NTk5N2U3MjIwZjY2N2Y4NTMwODVhYzM3ODJiNzEzYTUiLCJleHAiOjY1NTM3fSwic2VydmljZV9pbnN0YW5jZV9wdWJsaWNfa2V5X3BlbSI6Ii0tLS0tQkVHSU4gUFVCTElDIEtFWS0tLS0tXG5NSUlCSWpBTkJna3Foa2lHOXcwQkFRRUZBQU9DQVE4QU1JSUJDZ0tDQVFFQXJIdkpyU1JzL29KUzJnODRrL2xLXG4xUW42Q0RKM1VseDNHZ0pkZ2JtWVJoa0EzaE1CRUZkazJJYkRuTUdMM3h3a3NIMDYyeFgzNXRJVDBPUUYwMmVLXG5LcEIxTlJRWGNmU3Z5UW15cktYNG5HYlBBQlNNZ1FuK3dJUVYrN2RaNG0vNjlJcHNxbDhiYTgvK1lxZlB1UStyXG5MUGJVSm9QemdOVWwvWGlBaVgwd2FvTDNPcS9wdzQvUDI3UXJiYlBzQTBYd3NXUzYvOVd6ZzhNWEwvc0htZXRhXG5lTlhEZ2RUVUU4Q09jMFgzdkxBWmJwM2haSWVUWGlOQUFaZmN1Y3kzdHBnM1lBQzFmSFFQWmxWaE1MZC9WSFM1XG40NXFwd1I5VHRqRCtiSUdWQk5pZngrR1dVMkI3V015TFNDaTJGd3M1TEF3SFdaZm5JZzltZjRVd2hhdzNncmNUXG5wUUlEQVFBQlxuLS0tLS1FTkQgUFVCTElDIEtFWS0tLS0tIiwia2V5X3JldGVudGlvbl9tb2RlIjoiTEFURVNUX09OTFkifX0.db4MVvs7kUt6i4ffEok2doqXGUE_9vicssjxwfGA71VyI9OEnvJ7lJ60E6h_ScNEEYwAs_Ghy4OyK_Wk-yt_vh80sbyn5Vd-CKY1A4UgFmG20k2mFKUOpr7hmkfhxkCURUnC0auYwi9OEsNDOi8L05HmQjYbdtOBUH1VlaGVP2oPeeLX7PFPcvARP-Jhm6WppZ321zYC-M39OovdFtJIgVTMA5cJtFvfeHVzCXoo5ybmjtXPbS4ZN_5M3ua8osMEQgIlxsJSdYcD9wDNIiWSPKJuXJKKWtpBzG09FuN4ew7pU-jQ6Rcd6NIS3l7Fv68ooQSjHi4Bu7UAn4YXdXx14Q"}
it results in the same error messages
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: NLS initialized
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: Failed to verify public certificate (error:0A000126:SSL routines::unexpected eof while reading)
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: Failed to verify public certificate (error:00000000:lib(0)::reason(0))
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: Failed to validate public certificates
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: Server configuration validation failed. Invalid certificate received from server.
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: Failed to setup cloud License Manager: 3
Mär 21 14:21:43 debian-grid-test nvidia-gridd[503]: Shutdown (503)
Mär 21 14:21:43 debian-grid-test systemd[1]: nvidia-gridd.service: Main process exited, code=exited, status=1/FAILURE
Mär 21 14:21:43 debian-grid-test systemd[1]: nvidia-gridd.service: Failed with result 'exit-code'.