From 1e66e2c87bd1bc85ceb2b1cf88e211d8e47ae838 Mon Sep 17 00:00:00 2001 From: Seth Schoen Date: Wed, 27 Jun 2012 21:17:46 -0700 Subject: [PATCH] clobber request nonce --- webserver/client.py | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/webserver/client.py b/webserver/client.py index ae2ccf87b..62c50990d 100644 --- a/webserver/client.py +++ b/webserver/client.py @@ -26,14 +26,14 @@ def init(m): m.session = "" def make_request(m): - m.request.nonce = "".join([random.choice("abcdefghijklmnopqrstuvwxyz") for i in xrange(20)]) + # m.request.nonce = "".join([random.choice("abcdefghijklmnopqrstuvwxyz") for i in xrange(20)]) m.request.recipient = "ca.example.com" m.request.timestamp = int(time.time()) m.request.csr = "FOO" m.request.sig = "BAR" def sign(k, m): - m.request.sig = CSR.sign(k, sha256("(%d) (%s) (%s) (%s)" % (m.request.timestamp, m.request.recipient, m.request.nonce, m.request.csr))) + m.request.sig = CSR.sign(k, sha256("(%d) (%s) (%s)" % (m.request.timestamp, m.request.recipient, m.request.csr))) m = chocolatemessage()