Да, так и сделали, скачали с сайта архив с последней версией 2.0.45042-А, закинули нужные jar в наш nexus.
Да, ошибка воспроизводится, вроде включил логгирование полное, вот пример вывода лога при запросе
2024-04-17 00:44:23.605 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.607 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.607 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.608 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.613 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.613 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.613 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.615 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.615 INFO 25205 --- [qtp430290487-89] r.b.c.cryptopro.SignJCP : [] Signature verified: true
2024-04-17 00:44:23.624 TRACE 25205 --- [qtp430290487-89] org.zalando.logbook.Logbook : [] Outgoing Request: e601bdf8d0b49dc9
Remote: localhost
POST
https://bki-b2b-test.scoring.ru/cr4.php HTTP/1.1
Accept: application/octet-stream
Content-Length: 2998
Content-Type: application/octet-stream
Host: bki-b2b-test.scoring.ru
<binary>
2024-04-17 00:44:23.804 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.810 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.810 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.810 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.811 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] %% Initialized: [Session-1, SSL_NULL_WITH_NULL_NULL]
2024-04-17 00:44:23.816 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.RI_support=1
2024-04-17 00:44:23.816 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.RI_support=1
2024-04-17 00:44:23.816 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.RI_support=1
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Allow unsafe renegotiation: false
Allow legacy hello messages: true
Is initial handshake: true
Is secure renegotiation: false
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Ignoring unsupported cipher suite: TLS_GOSTR341112_256_WITH_KUZNYECHIK_CTR_OMAC for TLSv1
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Ignoring unsupported cipher suite: TLS_GOSTR341112_256_WITH_MAGMA_CTR_OMAC for TLSv1
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Ignoring unsupported cipher suite: TLS_CIPHER_2012_IANA for TLSv1
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Ignoring unsupported cipher suite: TLS_GOSTR341112_256_WITH_KUZNYECHIK_CTR_OMAC for TLSv1.1
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Ignoring unsupported cipher suite: TLS_GOSTR341112_256_WITH_MAGMA_CTR_OMAC for TLSv1.1
2024-04-17 00:44:23.818 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] Ignoring unsupported cipher suite: TLS_CIPHER_2012_IANA for TLSv1.1
2024-04-17 00:44:23.819 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] %% No cached client session
2024-04-17 00:44:23.822 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] *** ClientHello, TLSv1.2
RandomCookie: GMT: 1713238327 bytes = { 216, 192, 253, 123, 116, 164, 155, 0, 228, 214, 36, 151, 157, 149, 162, 58, 10, 203, 184, 43, 15, 15, 58, 203, 120, 39, 66, 23 }
Session ID: {}
Cipher Suites: [TLS_GOSTR341112_256_WITH_KUZNYECHIK_CTR_OMAC, TLS_GOSTR341112_256_WITH_MAGMA_CTR_OMAC, TLS_CIPHER_2012_IANA, TLS_CIPHER_2012, TLS_CIPHER_2001]
Compression Methods: { 0 }
Extension signature_algorithms, signature_algorithms: GOST3411_2012_256withGOST3410_2012_256, GOST3411_2012_512withGOST3410_2012_512, GOST3411withGOST3410EL, GOST3411_2012_512withGOST3410_2012_512, GOST3411_2012_256withGOST3410_2012_256, SHA512withECDSA, SHA512withRSA, SHA384withECDSA, SHA384withRSA, SHA256withECDSA, SHA256withRSA, SHA224withECDSA, SHA224withRSA, SHA1withECDSA, SHA1withRSA, SHA1withDSA
Extension extended_master_secret
Extension session_ticket
Extension server_name, server_name: [type=host_name (0), value=bki-b2b-test.scoring.ru]
Extension renegotiation_info, renegotiated_connection: <empty>
***
2024-04-17 00:44:23.855 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] qtp430290487-89, READ: TLSv1.2 Handshake, length = 1539
2024-04-17 00:44:23.855 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] ServerHello sessionId: {141, 191, 58, 238, 34, 215, 71, 22, 5, 248, 183, 221, 241, 227, 33, 130, 89, 64, 155, 248, 38, 92, 46, 204, 70, 214, 185, 28, 232, 139, 60, 5}
2024-04-17 00:44:23.856 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] *** ServerHello, TLSv1.2
RandomCookie: GMT: 1713238327 bytes = { 197, 20, 43, 31, 166, 241, 211, 83, 254, 186, 143, 120, 127, 188, 237, 254, 225, 75, 72, 182, 6, 147, 217, 207, 159, 22, 210, 230 }
Session ID: {141, 191, 58, 238, 34, 215, 71, 22, 5, 248, 183, 221, 241, 227, 33, 130, 89, 64, 155, 248, 38, 92, 46, 204, 70, 214, 185, 28, 232, 139, 60, 5}
Cipher Suite: TLS_CIPHER_2012
Compression Method: 0
Extension extended_master_secret
Extension renegotiation_info, renegotiated_connection: <empty>
***
2024-04-17 00:44:23.856 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.856 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.856 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.856 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.856 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] %% Initialized: [Session-1, TLS_CIPHER_2012]
2024-04-17 00:44:23.856 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] ** TLS_CIPHER_2012
2024-04-17 00:44:23.857 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.858 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.858 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] *** Certificate message
chain [0] = [
[
Version: V3
Subject: CN=scoring.ru, C=RU, ST=Moscow, L=Moscow, O=Bureau of Credit Histories Scoring Bureau LLC, EMAILADDRESS=support@scoring.ru
Signature Algorithm: GOST3411_2012_256WITHGOST3410_2012_256, OID = 1.2.643.7.1.1.3.2
Key: ru.CryptoPro.JCP.Key.GostPublicKey
Validity: [From: Wed Sep 06 14:08:07 MSK 2023,
To: Fri Sep 06 14:18:07 MSK 2024]
Issuer: CN=CryptoPro VPN CA GOST 2012, O="LLC \"Crypto-Pro\"", L=Moscow, C=RU, EMAILADDRESS=vpnca@cryptopro.ru
SerialNumber: [ 02f73fba 0075b052 83441748 b530c455 9a]
Certificate Extensions: 8
[1]: ObjectId: 1.3.6.1.4.1.311.21.7 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 27 30 25 06 1D 2A 85 03 02 02 32 01 09 87 BA .'0%..*....2....
0010: 91 2B CD B5 32 84 ED 9E 1A 83 DD D6 2C 81 D3 54 .+..2.......,..T
0020: 81 CF 23 02 01 01 02 01 00 ..#......
[2]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
[
accessMethod: caIssuers
accessLocation: URIName:
http://vpnca.cryptopro.r...c27dc50e70c7e06aa7d7.crt]
]
[3]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: F6 29 C5 60 F2 A7 E2 A4 F2 F7 C2 7D C5 0E 70 C7 .).`..........p.
0010: E0 6A A7 D7 .j..
]
[CN=CryptoPro VPN CA GOST 2012, O="LLC \"Crypto-Pro\"", L=Moscow, C=RU, EMAILADDRESS=vpnca@cryptopro.ru]
SerialNumber: [ 0275eeaf 00e2ac32 964460ad b4ae807d 0f]
]
[4]: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
[DistributionPoint:
[URIName:
http://cdp.cryptopro.ru/...c27dc50e70c7e06aa7d7.crl]
, DistributionPoint:
[URIName:
http://vpnca.cryptopro.r...c27dc50e70c7e06aa7d7.crl]
]]
[5]: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
serverAuth
clientAuth
]
[6]: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_Encipherment
Key_Agreement
]
[7]: ObjectId: 2.5.29.17 Criticality=false
SubjectAlternativeName [
DNSName: *.scoring.ru
DNSName: scoring.ru
]
[8]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 76 03 39 B7 20 70 1C C7 47 7F 6C 8C 14 A9 31 5F v.9. p..G.l...1_
0010: 62 DA EC 45 b..E
]
]
]
Algorithm: [GOST3411_2012_256WITHGOST3410_2012_256]
Signature:
0000: EF 35 64 E6 32 AA 0D 51 0B 36 50 22 88 24 29 E0 .5d.2..Q.6P".$).
0010: 7A 7C 74 B4 5E 49 A6 11 90 17 59 87 20 31 11 8E z.t.^I....Y. 1..
0020: DE 67 D5 38 A6 C5 28 CA 90 12 5D E9 FD 8A 51 53 .g.8..(...]...QS
0030: A3 FB E7 4D 08 D5 3A 30 1E 47 62 8A C2 FF 9C 1E ...M..:0.Gb.....
]
***
2024-04-17 00:44:23.859 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.860 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.860 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.860 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.862 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.862 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.862 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.862 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] ENTRY
2024-04-17 00:44:23.865 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] RETURN
2024-04-17 00:44:23.865 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.Enable_revocation_default=true
2024-04-17 00:44:23.865 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/ssl.tls_prohibit_disabled_validation=false
2024-04-17 00:44:23.865 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] TrustAnchor is null, trustedMatch is false.
2024-04-17 00:44:23.868 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/reprov.disable_tsp_cert_app_ext_checker=false
2024-04-17 00:44:23.869 INFO 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] User Preference Node: /ru/CryptoPro/reprov.disable_enroll_cert_type_ext_checker=false
2024-04-17 00:44:23.872 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.JCP.tools.JCPLogger : [] %%% Build certificate chain for the certificate
Certificate =
serial number: 2f73fba0075b05283441748b530c4559a
subject: CN=scoring.ru, C=RU, ST=Moscow, L=Moscow, O=Bureau of Credit Histories Scoring Bureau LLC, EMAILADDRESS=support@scoring.ru
issuer: CN=CryptoPro VPN CA GOST 2012, O="LLC \"Crypto-Pro\"", L=Moscow, C=RU, EMAILADDRESS=vpnca@cryptopro.ru
valid from: Wed Sep 06 14:08:07 MSK 2023
valid until: Fri Sep 06 14:18:07 MSK 2024
[BASE64]:
MIIEsjCCBF+gAwIBAgIRAvc/ugB1sFKDRBdItTDEVZowCgYIKoUDBwEBAwIwgYExITAfBgkqhkiG
9w0BCQEWEnZwbmNhQGNyeXB0b3Byby5ydTELMAkGA1UEBhMCUlUxDzANBgNVBAcMBk1vc2NvdzEZ
MBcGA1UECgwQTExDICJDcnlwdG8tUHJvIjEjMCEGA1UEAwwaQ3J5cHRvUHJvIFZQTiBDQSBHT1NU
IDIwMTIwHhcNMjMwOTA2MTEwODA3WhcNMjQwOTA2MTExODA3WjCBnzEhMB8GCSqGSIb3DQEJARYS
c3VwcG9ydEBzY29yaW5nLnJ1MTYwNAYDVQQKDC1CdXJlYXUgb2YgQ3JlZGl0IEhpc3RvcmllcyBT
Y29yaW5nIEJ1cmVhdSBMTEMxDzANBgNVBAcMBk1vc2NvdzEPMA0GA1UECAwGTW9zY293MQswCQYD
VQQGEwJSVTETMBEGA1UEAwwKc2NvcmluZy5ydTBmMB8GCCqFAwcBAQEBMBMGByqFAwICJAAGCCqF
AwcBAQICA0MABEDDI7/7Sz7VsdLURfW2gq8AXO8RdO8mba8R7XN7vAmHrRbdP1lagyjPCktIX5R3
erjvqmW8hX+iqn+JjMwg7mH1o4ICiTCCAoUwDgYDVR0PAQH/BAQDAgPoMB0GA1UdJQQWMBQGCCsG
AQUFBwMBBggrBgEFBQcDAjAjBgNVHREEHDAaggwqLnNjb3JpbmcucnWCCnNjb3JpbmcucnUwZgYI
KwYBBQUHAQEEWjBYMFYGCCsGAQUFBzAChkpodHRwOi8vdnBuY2EuY3J5cHRvcHJvLnJ1L2FpYS9m
NjI5YzU2MGYyYTdlMmE0ZjJmN2MyN2RjNTBlNzBjN2UwNmFhN2Q3LmNydDA0BgkrBgEEAYI3FQcE
JzAlBh0qhQMCAjIBCYe6kSvNtTKE7Z4ag93WLIHTVIHPIwIBAQIBADCBsAYDVR0fBIGoMIGlMFGg
T6BNhktodHRwOi8vY2RwLmNyeXB0b3Byby5ydS9yYS9jZHAvZjYyOWM1NjBmMmE3ZTJhNGYyZjdj
MjdkYzUwZTcwYzdlMDZhYTdkNy5jcmwwUKBOoEyGSmh0dHA6Ly92cG5jYS5jcnlwdG9wcm8ucnUv
Y2RwL2Y2MjljNTYwZjJhN2UyYTRmMmY3YzI3ZGM1MGU3MGM3ZTA2YWE3ZDcuY3JsMIG+BgNVHSME
gbYwgbOAFPYpxWDyp+Kk8vfCfcUOcMfgaqfXoYGHpIGEMIGBMSEwHwYJKoZIhvcNAQkBFhJ2cG5j
YUBjcnlwdG9wcm8ucnUxCzAJBgNVBAYTAlJVMQ8wDQYDVQQHDAZNb3Njb3cxGTAXBgNVBAoMEExM
QyAiQ3J5cHRvLVBybyIxIzAhBgNVBAMMGkNyeXB0b1BybyBWUE4gQ0EgR09TVCAyMDEyghECde6v
AOKsMpZEYK20roB9DzAdBgNVHQ4EFgQUdgM5tyBwHMdHf2yMFKkxX2La7EUwCgYIKoUDBwEBAwID
QQDvNWTmMqoNUQs2UCKIJCngenx0tF5JphGQF1mHIDERjt5n1TimxSjKkBJd6f2KUVOj++dNCNU6
MB5HYorC/5we
2024-04-17 00:44:23.875 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] %% Invalidated: {0} [Session-1, TLS_CIPHER_2012]
2024-04-17 00:44:23.875 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] qtp430290487-89, SEND TLSv1.2 ALERT: fatal, description = certificate_unknown
2024-04-17 00:44:23.875 DEBUG 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] qtp430290487-89 called closeSocket()
2024-04-17 00:44:23.875 WARN 25205 --- [qtp430290487-89] ru.CryptoPro.ssl.SSLLogger : [] qtp430290487-89, handling exception: javax.net.ssl.SSLHandshakeException: ru.CryptoPro.ssl.pc_10.cl_5: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target
2024-04-17 00:44:23.878 WARN 25205 --- [qtp430290487-89] r.b.c.controllers.ControllerAdvice : [] Client exception