# CWMP Parse auth header crash

**URL:** <https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667>\
**Category:** Uncategorized\
**Created:** [April 27, 2021, 12:37am UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667 "2021-04-27T00:37:19Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Julian](https://avatars.discourse-cdn.com/v4/letter/j/74df32/32.png) [@Julian](https://forum.genieacs.com/u/Julian)\
**Post date:** [April 27, 2021, 12:37am UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667/1 "2021-04-27T00:37:19Z")

</div>

Hey guys,

I have been testing the new GenieACS version in a lab enviroment, but after some days playing with it the CWMP crashed with this particular error:

> genieacs-cwmp[776827]: 2021-04-23T18:24:28.712Z [ERROR] Uncaught exception; pid=945292 exceptionName=“Error” exceptionMessage=“Unable to parse auth header” exceptionStack=“Error: Unable to parse auth header\n at /usr/local/lib/node\_modules/genieacs/bin/genieacs-cwmp:2:12629\n → /usr/local/lib/node\_modules/lib/auth.ts:47:15\n at ve (/usr/local/lib/node\_modules/genieacs/bin/genieacs-cwmp:2:12710)\n → /usr/local/lib/node\_modules/lib/auth.ts:73:24\n at Dn (/usr/local/lib/node\_modules/genieacs/bin/genieacs-cwmp:2:105243)\n → /usr/local/lib/node\_modules/lib/cwmp.ts:87:22\n at Mn (/usr/local/lib/node\_modules/genieacs/bin/genieacs-cwmp:2:119880)\n → /usr/local/lib/node\_modules/lib/cwmp.ts:1135:33\n at processTicksAndRejections (internal/process/task\_queues.js:97:5)”  
> genieacs-cwmp[776827]: 2021-04-23T18:24:28.959Z [ERROR] Worker died; pid=945292 exitCode=0  
> genieacs-cwmp[776827]: 2021-04-23T18:24:28.960Z [ERROR] Too many crashes, exiting; pid=776827

Any doubts about what did that cause?

---

<div class="post-metadata">

**Author:** ![akcoder](https://yyz1.discourse-cdn.com/flex035/user_avatar/forum.genieacs.com/akcoder/32/11_2.png) [@akcoder](https://forum.genieacs.com/u/akcoder)\
**Post date:** [April 27, 2021, 5:24pm UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667/2 "2021-04-27T17:24:01Z")

</div>

In order for this issue to get resolved you will need to provide more information. What version of GenieACS? A tcpdump/wireshark/plaintext capture of the header in question.

---

<div class="post-metadata">

**Author:** ![Julian](https://avatars.discourse-cdn.com/v4/letter/j/74df32/32.png) [@Julian](https://forum.genieacs.com/u/Julian)\
**Post date:** [May 1, 2021, 6:27pm UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667/3 "2021-05-01T18:27:32Z")

</div>

Hey there,

Im currently using the 1.2.5 version.  
By capturing packets, I could see that a particular equipment was sending some stuff that cause the genie to stop.  
I`m still trying to get what was that. By disabling it to send informs to the server, the problem didnt happen again.

---

<div class="post-metadata">

**Author:** ![zaidka](https://yyz1.discourse-cdn.com/flex035/user_avatar/forum.genieacs.com/zaidka/32/9_2.png) [@zaidka](https://forum.genieacs.com/u/zaidka)\
**Post date:** [May 2, 2021, 7:30pm UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667/4 "2021-05-02T19:30:16Z")

</div>

What does the `Authorization` header in the CPE’s request look like?

---

<div class="post-metadata">

**Author:** ![Julian](https://avatars.discourse-cdn.com/v4/letter/j/74df32/32.png) [@Julian](https://forum.genieacs.com/u/Julian)\
**Post date:** [May 2, 2021, 8:23pm UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667/5 "2021-05-02T20:23:52Z")

</div>

Do you mean this ?

> Authorization: Digest username=“ACS”, realm=“GenieACS”, algorithm=“MD5”, nonce=“”, uri=“/”“”, response=“c0d920cb968068ccf8851124dc23b3aa”\r\n

---

<div class="post-metadata">

**Author:** ![zaidka](https://yyz1.discourse-cdn.com/flex035/user_avatar/forum.genieacs.com/zaidka/32/9_2.png) [@zaidka](https://forum.genieacs.com/u/zaidka)\
**Post date:** [May 5, 2021, 7:13am UTC](https://forum.genieacs.com/t/cwmp-parse-auth-header-crash/1667/6 "2021-05-05T07:13:38Z")

</div>

The uri attribute has an extra quote so it’s failing to parse. I suggest reporting this issue to the CPE manufacturer.
