{"StdOut":"******************************************************************************\r\nMachine Information\r\nMachine Name: at-blue4JI3AN\r\nMachine Ip: 10.0.0.20\r\nOperating System: Microsoft Windows NT 10.0.26100.0\r\nUser Name: at-blue4JI3AN$\r\nProcessor Count: 8\r\nProcess Name: EsrpClient\r\nProcess Id: 7732\r\nCaller Program: EsrpClient.exe\r\nIdentity: NT AUTHORITY\\NETWORK SERVICE\r\nProcess Version: 1.2.142+Branch.master.Sha.90404b43284ec55b3e2251d0e272f8932aa583e2\r\nProcess Bitness: 64 bit\r\n******************************************************************************\r\nCommandline received: Sign | -a | c:\\Temp\\AzureTemp\\TFSTemp\\vctmp3028_329213.json | -p | c:\\Temp\\AzureTemp\\TFSTemp\\vctmp3028_436009.json | -c | c:\\Temp\\AzureTemp\\TFSTemp\\vctmp3028_573830.json | -i | c:\\Temp\\AzureTemp\\TFSTemp\\vctmp260_783385.json | -o | c:\\Temp\\AzureTemp\\TFSTemp\\v4535C2.tmp | -l | Verbose ESRP session Id is: 3b0166db-2c4e-4b8f-9321-d38401eabb19\r\n2026-01-02T05:12:47.0013028Z:Command you are trying to use is: Sign\r\n2026-01-02T05:12:47.0073467Z:Correlation Vector for this run is: 1a563bcc-d2a7-49ab-9b0d-83e618f19246\r\n2026-01-02T05:12:47.0073467Z:Groupid for this run is empty\r\n2026-01-02T05:12:47.0934933Z:request signing cert being used is this thumbprint: 1801ACF35C0966B12A815F855CD5A08761372305 in store LocalMachine\\My\r\n2026-01-02T05:12:47.0934933Z:Both certificates validation passed.\r\n2026-01-02T05:12:47.0942651Z:The auth cert we choose to use, subject name is: CN=0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f.microsoft.com, thumbprint is: 41C9738E1DF72F8CFE49AE9019AD7260E51305E0\r\n2026-01-02T05:12:47.1448499Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z] ConfidentialClientApplication 37368736 created\r\n2026-01-02T05:12:47.1448499Z:Gateway Client: Enter AuthenticationProvider, no calls to AAD yet, client id is 0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f, and resource url is https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com, tenant id is 33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:47.1488797Z:There is no memory mapped file accociated with this name: api.esrp.microsoft.com_0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:47.1506425Z:AAD auth caching is in use with this name: api.esrp.microsoft.com_0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:47.1600084Z:Validate and Renew Token if necessary finished: 00:00:00.0063323\r\n2026-01-02T05:12:47.2333015Z:Session request is: {\r\n \"expiresAfter\": \"3.00:00:00\",\r\n \"partitionCount\": 0,\r\n \"isProvisionStorage\": true,\r\n \"isLegacyCopsModel\": false,\r\n \"commandName\": \"Sign\",\r\n \"intent\": \"digestsign\",\r\n \"contentType\": \"Bin\",\r\n \"contentOrigin\": \"3rd Party\",\r\n \"productState\": null,\r\n \"audience\": \"External Broad\"\r\n}\r\n2026-01-02T05:12:47.2583956Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z] ConfidentialClientApplication 29578451 created\r\n2026-01-02T05:12:47.2596364Z:Gateway Client: Enter AuthenticationProvider, no calls to AAD yet, client id is 0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f, and resource url is https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com, tenant id is 33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:47.2639390Z:Gateway Client: a new client and client id is created: db5d530c-3c6c-4522-9655-814b3c74d441\r\n2026-01-02T05:12:47.2950991Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] MSAL MSAL.Desktop with assembly version '4.70.0.0'. CorrelationId(df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5)\r\n2026-01-02T05:12:47.3058059Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] === AcquireTokenForClientParameters ===\r\nSendX5C: True\r\nForceRefresh: False\r\nAccessTokenHashToRefresh: False\r\n\r\n2026-01-02T05:12:47.3168890Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] \r\n=== Request Data ===\r\nAuthority Provided? - True\r\nScopes - https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com/.default\r\nExtra Query Params Keys (space separated) - \r\nApiId - AcquireTokenForClient\r\nIsConfidentialClient - True\r\nSendX5C - True\r\nLoginHint ? False\r\nIsBrokerConfigured - False\r\nHomeAccountId - False\r\nCorrelationId - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5\r\nUserAssertion set: False\r\nLongRunningOboCacheKey set: False\r\nRegion configured: \r\n\r\n2026-01-02T05:12:47.3168890Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] === Token Acquisition (ClientCredentialRequest) started:\r\n\t Scopes: https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com/.default\r\n\tAuthority Host: login.microsoftonline.com\r\n2026-01-02T05:12:47.3305260Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Internal cache] Total number of cache partitions found while getting access tokens: 0\r\n2026-01-02T05:12:47.3322079Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [FindAccessTokenAsync] Discovered 0 access tokens in cache using partition key: 0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d_AppTokenCache\r\n2026-01-02T05:12:47.3322079Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [FindAccessTokenAsync] No access tokens found in the cache. Skipping filtering. \r\n2026-01-02T05:12:47.3405484Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Instance Discovery] Instance discovery is enabled and will be performed\r\n2026-01-02T05:12:47.3441311Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Region discovery] WithAzureRegion not configured. \r\n2026-01-02T05:12:47.3441311Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Region discovery] Not using a regional authority. \r\n2026-01-02T05:12:47.3466091Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Instance Discovery] Tried to use network cache provider for login.microsoftonline.com. Success? False. \r\n2026-01-02T05:12:47.3556921Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Fetching instance discovery from the network from host login.microsoftonline.com. \r\n2026-01-02T05:12:47.3702946Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting [Oauth2Client] Sending GET request \r\n2026-01-02T05:12:47.3731139Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting [HttpManager] ExecuteAsync\r\n2026-01-02T05:12:47.3777745Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [HttpManager] Sending request. Method: GET. Host: https://login.microsoftonline.com. Binding Certificate: False \r\n2026-01-02T05:12:47.6987244Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [HttpManager] Received response. Status code: OK. \r\n2026-01-02T05:12:47.7082865Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished [HttpManager] ExecuteAsync in 335 ms\r\n2026-01-02T05:12:47.7082865Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished [Oauth2Client] Sending GET request in 340 ms\r\n2026-01-02T05:12:47.7178705Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting [OAuth2Client] Deserializing response\r\n2026-01-02T05:12:47.8107510Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished [OAuth2Client] Deserializing response in 93 ms\r\n2026-01-02T05:12:47.8121487Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Instance Discovery] Tried to use network cache provider for login.microsoftonline.com. Success? True. \r\n2026-01-02T05:12:47.8121487Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Instance Discovery] After hitting the discovery endpoint, the network provider found an entry for login.microsoftonline.com ? True. \r\n2026-01-02T05:12:47.8159757Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Authority validation enabled? True. \r\n2026-01-02T05:12:47.8159757Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Authority validation - is known env? True. \r\n2026-01-02T05:12:47.8284870Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting TokenClient:SendTokenRequestAsync\r\n2026-01-02T05:12:47.8325230Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [TokenClient] Before adding the client assertion / secret\r\n2026-01-02T05:12:47.8329789Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Building assertion from certificate with clientId: 0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f at endpoint: https://login.microsoftonline.com/33e01921-4d64-4f8c-a055-5bdaffd5e33d/oauth2/v2.0/token\r\n2026-01-02T05:12:47.8329789Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Proceeding with JWT token creation and adding client assertion.\r\n2026-01-02T05:12:47.8580520Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [TokenClient] After adding the client assertion / secret\r\n2026-01-02T05:12:47.8658517Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [Token Client] Fetching MsalTokenResponse .... \r\n2026-01-02T05:12:47.8658517Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting [Oauth2Client] Sending POST request \r\n2026-01-02T05:12:47.8710019Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting [HttpManager] ExecuteAsync\r\n2026-01-02T05:12:47.8710019Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:47Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [HttpManager] Sending request. Method: POST. Host: https://login.microsoftonline.com. Binding Certificate: False \r\n2026-01-02T05:12:48.2145289Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [HttpManager] Received response. Status code: OK. \r\n2026-01-02T05:12:48.2145289Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished [HttpManager] ExecuteAsync in 345 ms\r\n2026-01-02T05:12:48.2145289Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished [Oauth2Client] Sending POST request in 350 ms\r\n2026-01-02T05:12:48.2145289Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Starting [OAuth2Client] Deserializing response\r\n2026-01-02T05:12:48.2300343Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished [OAuth2Client] Deserializing response in 16 ms\r\n2026-01-02T05:12:48.2315693Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] ScopeSet was missing from the token response, so using developer provided scopes in the result. \r\n2026-01-02T05:12:48.2315693Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Finished TokenClient:SendTokenRequestAsync in 402 ms\r\n2026-01-02T05:12:48.2335832Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Checking client info returned from the server..\r\n2026-01-02T05:12:48.2335832Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Saving token response to cache..\r\n2026-01-02T05:12:48.2426790Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] \r\n[MsalTokenResponse]\r\nError: \r\nErrorDescription: \r\nScopes: https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com/.default\r\nExpiresIn: 86399\r\nRefreshIn: 43199\r\nAccessToken returned: True\r\nAccessToken Type: Bearer\r\nRefreshToken returned: False\r\nIdToken returned: False\r\nClientInfo returned: False\r\nFamilyId: \r\nWamAccountId exists: False\r\n2026-01-02T05:12:48.2435619Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [SaveTokenResponseAsync] ID Token not present in response. \r\n2026-01-02T05:12:48.2446987Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Cannot determine home account ID - or id token or no client info and no subject \r\n2026-01-02T05:12:48.2490811Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [SaveTokenResponseAsync] Entering token cache semaphore. Count Real semaphore: True. Count: 1.\r\n2026-01-02T05:12:48.2495698Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [SaveTokenResponseAsync] Entered token cache semaphore. \r\n2026-01-02T05:12:48.2495698Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [SaveTokenResponseAsync] Saving AT in cache and removing overlapping ATs...\r\n2026-01-02T05:12:48.2510829Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Looking for scopes for the authority in the cache which intersect with https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com/.default\r\n2026-01-02T05:12:48.2510829Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z] [Internal cache] Total number of cache partitions found while getting access tokens: 0\r\n2026-01-02T05:12:48.2510829Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Intersecting scope entries count - 0\r\n2026-01-02T05:12:48.2530954Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Not saving to ADAL legacy cache. \r\n2026-01-02T05:12:48.2530954Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] [SaveTokenResponseAsync] Released token cache semaphore. \r\n2026-01-02T05:12:48.2558885Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] \r\n\t=== Token Acquisition finished successfully:\r\n2026-01-02T05:12:48.2566915Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] AT expiration time: 1/3/2026 5:12:47 AM +00:00, scopes: https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com/.default. source: IdentityProvider\r\n2026-01-02T05:12:48.2566915Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] Fetched access token from host login.microsoftonline.com. \r\n2026-01-02T05:12:48.2579007Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] \r\n[LogMetricsFromAuthResult] Cache Refresh Reason: NoCachedAccessToken\r\n[LogMetricsFromAuthResult] DurationInCacheInMs: 0\r\n[LogMetricsFromAuthResult] DurationTotalInMs: 945\r\n[LogMetricsFromAuthResult] DurationInHttpInMs: 664\r\n2026-01-02T05:12:48.2579007Z:MSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:48Z - df2f9efb-8e44-4e0f-a71e-3e915e7bd8a5] TokenEndpoint: ****\r\n2026-01-02T05:12:48.2689996Z:Use AAD token. CERT\r\n2026-01-02T05:12:48.2795818Z:New Token Acquisition Time: 00:00:01.0077998\r\n2026-01-02T05:12:48.3008994Z:Gateway Client: the client id that is sending a request is: db5d530c-3c6c-4522-9655-814b3c74d441\r\n2026-01-02T05:12:49.7216327Z:Gateway Client: response send time from cloud gateway: 2026-01-02T05:12:49.3711087+00:00\r\n2026-01-02T05:12:49.7216327Z:Gateway Client: response receive time from client SendAsync: 2026-01-02T05:12:49.7216327+00:00\r\n2026-01-02T05:12:49.7216327Z:Gateway Client: response duration time between cloud gateway and client SendAsync: 00:00:00.3505240\r\n2026-01-02T05:12:49.7983804Z:Session request requestid: 3126c70b-6ad6-4d7a-936c-a66d526381ef, and submission status is: Pass\r\n2026-01-02T05:12:49.8417641Z:Provision storage complete. Total shards: 100\r\n2026-01-02T05:12:49.8451575Z:Loading DigestSignErrorMappingCache mapping info\r\n2026-01-02T05:12:49.8523392Z:DigestSignErrorMappingCache from server, # of DigestSignOperationErrorPatterns object we get is :: \r\n2026-01-02T05:12:49.8728113Z:Consolidate DigestSignErrorMappingCache, # of DigestSignOperationErrorPatterns object we get is :: 34\r\n2026-01-02T05:12:49.8728113Z:Successfully retrieved policy: policy is {\"policy\":{\"id\":\"0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f-0\",\"workflowExecutionType\":3}}\r\n2026-01-02T05:12:49.8812867Z:Successfully get telemetry connection string: Endpo......\r\n2026-01-02T05:12:49.8817243Z:Warning: \r\n2026-01-02T05:12:49.8852335Z:IAuthInfo constructed: {\r\n \"authenticationType\": \"AAD_CERT\",\r\n \"clientId\": \"0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f\",\r\n \"tenantId\": \"33e01921-4d64-4f8c-a055-5bdaffd5e33d\",\r\n \"aadAuthorityBaseUri\": \"https://login.microsoftonline.com/\",\r\n \"authCert\": {\r\n \"storeLocation\": \"LocalMachine\",\r\n \"storeName\": \"My\",\r\n \"subjectName\": \"CN=0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f.microsoft.com\",\r\n \"sendX5c\": true,\r\n \"withAzureRegion\": false,\r\n \"getCertFromKeyVault\": false,\r\n \"keyVaultName\": null,\r\n \"keyVaultCertName\": null\r\n },\r\n \"requestSigningCert\": {\r\n \"storeLocation\": \"LocalMachine\",\r\n \"storeName\": \"My\",\r\n \"subjectName\": \"CN=0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f\",\r\n \"sendX5c\": false,\r\n \"withAzureRegion\": false,\r\n \"getCertFromKeyVault\": false,\r\n \"keyVaultName\": null,\r\n \"keyVaultCertName\": null\r\n },\r\n \"oAuthToken\": null,\r\n \"version\": \"1.0.0\",\r\n \"esrpClientId\": \"0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f\",\r\n \"federatedTokenData\": null,\r\n \"federatedTokenPath\": null\r\n}\r\n2026-01-02T05:12:49.8852335Z:IPolicyInfo constructed: {\r\n \"intent\": \"digestsign\",\r\n \"contentType\": \"Bin\",\r\n \"contentOrigin\": \"3rd Party\",\r\n \"productState\": null,\r\n \"audience\": \"External Broad\",\r\n \"version\": \"1.0.0\"\r\n}\r\n2026-01-02T05:12:49.8893367Z:IConfigInfo constructed: {\r\n \"esrpApiBaseUri\": \"https://api.esrp.microsoft.com/api/v2/\",\r\n \"esrpSessionTimeoutInSec\": 60,\r\n \"minThreadPoolThreads\": 32,\r\n \"maxDegreeOfParallelism\": 32,\r\n \"exponentialFirstFastRetry\": true,\r\n \"exponentialRetryCount\": 2,\r\n \"exponentialRetryDeltaBackOff\": \"00:00:05\",\r\n \"exponentialRetryMaxBackOff\": \"00:01:00\",\r\n \"exponentialRetryMinBackOff\": \"00:00:03\",\r\n \"appDataFolder\": \"C:\\\\Windows\\\\ServiceProfiles\\\\NetworkService\\\\AppData\\\\Local\",\r\n \"certificateCacheFolder\": null,\r\n \"version\": \"1.0.0\",\r\n \"exitOnFlaggedFile\": false,\r\n \"flaggedFileClientWaitTimeout\": \"1.00:00:00\",\r\n \"servicePointManagerDefaultConnectionLimit\": 32,\r\n \"isOnPremGateway\": false,\r\n \"diagnosticListeners\": null,\r\n \"securityProtocolType\": \"Tls12\",\r\n \"parallelOperationsInFileUploadDownload\": 300,\r\n \"maxTelemetryBuffer\": 200000,\r\n \"telemetryTimeoutInSec\": 0,\r\n \"resourceUri\": \"https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com\",\r\n \"cacheRootFolder\": null,\r\n \"cachedFileTTLInMin\": 7200\r\n}\r\n2026-01-02T05:12:50.0859820Z:Client Telemetry: Xpert agent is not running on the machine. Using events hub for processing client telemetry.\r\n2026-01-02T05:12:50.2508462Z:Key: TotalSignOperationDataCount, Value: 1\r\n2026-01-02T05:12:50.2648300Z:Start Time:1/2/2026 5:12:50 AM, Starting the sign workflow...\r\n2026-01-02T05:12:50.2729903Z:some input info: {\r\n \"contextData\": {\r\n \"build_buildnumber\": \"AzureDevOps_M266_20251205.4\",\r\n \"esrpClientVersion\": \"1.2.142+Branch.master.Sha.90404b43284ec55b3e2251d0e272f8932aa583e2\",\r\n \"userIpAddress\": \"10.0.0.20\",\r\n \"userAgent\": \"at-blue4JI3AN\"\r\n },\r\n \"sourceDirectory\": null,\r\n \"sourceLocation\": \"c:\\\\Temp\\\\AzureTemp\\\\okgvjzsz.dpm\\\\manifest.cat\",\r\n \"destinationDirectory\": null,\r\n \"destinationLocation\": \"c:\\\\Temp\\\\AzureTemp\\\\okgvjzsz.dpm\\\\manifest.cat\",\r\n \"sizeInBytes\": 0,\r\n \"name\": \"manifest.cat\",\r\n \"isSuccess\": null,\r\n \"operationStartedAt\": \"0001-01-01T00:00:00+00:00\",\r\n \"operationEndedAt\": \"0001-01-01T00:00:00+00:00\",\r\n \"operationDurationMS\": 0,\r\n \"processName\": \"EsrpClient\",\r\n \"processId\": 7732,\r\n \"processVersion\": \"1.2.142+Branch.master.Sha.90404b43284ec55b3e2251d0e272f8932aa583e2\",\r\n \"customerCorrelationId\": null,\r\n \"esrpClientSessionGuid\": \"3b0166db-2c4e-4b8f-9321-d38401eabb19\",\r\n \"callerProgram\": \"EsrpClient\",\r\n \"indentity\": \"NT AUTHORITY\\\\NETWORK SERVICE\",\r\n \"clientId\": \"0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f\",\r\n \"exceptionData\": null,\r\n \"apiBaseUrl\": \"https://api.esrp.microsoft.com/api/v2/\",\r\n \"handlerWorkflow\": \"Sign\",\r\n \"submissionRequest\": {\r\n \"contextData\": {\r\n \"build_buildnumber\": \"AzureDevOps_M266_20251205.4\",\r\n \"esrpClientVersion\": \"1.2.142+Branch.master.Sha.90404b43284ec55b3e2251d0e272f8932aa583e2\",\r\n \"userIpAddress\": \"10.0.0.20\",\r\n \"userAgent\": \"at-blue4JI3AN\"\r\n },\r\n \"groupId\": null,\r\n \"correlationVector\": \"1a563bcc-d2a7-49ab-9b0d-83e618f19246\",\r\n \"driEmail\": null,\r\n \"version\": \"1.0.0\"\r\n },\r\n \"policyInfo\": {\r\n \"intent\": \"digestsign\",\r\n \"contentType\": \"Bin\",\r\n \"contentOrigin\": \"3rd Party\",\r\n \"productState\": null,\r\n \"audience\": \"External Broad\",\r\n \"version\": \"1.0.0\"\r\n },\r\n \"osVersion\": \"Microsoft Windows NT 10.0.26100.0\",\r\n \"executingMachineIPAddress\": \"10.0.0.20\"\r\n}\r\n2026-01-02T05:12:50.3125657Z:Executing SignWorkflowType is DigestSignStaticAzure\r\n2026-01-02T05:12:50.3255823Z:Source file \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" hashed in 2 ms\r\n2026-01-02T05:12:50.3608903Z:Thread: 1 - Certificate file mutex \"B/7Sqh4tynuRiK07J3idWyBN7PUBNql9zcxdjudWoLc=_CP-464321\" acquired (waited 0 ms).\r\nMSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:50Z] ConfidentialClientApplication 44123454 created\r\n2026-01-02T05:12:50.3706745Z:Gateway Client: Enter AuthenticationProvider, no calls to AAD yet, client id is 0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f, and resource url is https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com, tenant id is 33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:50.3713925Z:Cached token found with name: api.esrp.microsoft.com_0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:50.3713925Z:AAD auth caching is in use with this name: api.esrp.microsoft.com_0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:50.4425742Z:Global cached token is valid from 1/2/2026 5:07:48 AM to 1/3/2026 5:12:48 AM (UTC). Total validity from current time is 86397.5578746 seconds\r\n2026-01-02T05:12:50.4425742Z:Validate and Renew Token if necessary finished: 00:00:00.0709131\r\nMSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:50Z] ConfidentialClientApplication 20852350 created\r\n2026-01-02T05:12:50.4428943Z:Gateway Client: Enter AuthenticationProvider, no calls to AAD yet, client id is 0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f, and resource url is https://msazurecloud.onmicrosoft.com/api.esrp.microsoft.com, tenant id is 33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:50.4428943Z:Gateway Client: a new client and client id is created: ad16f487-7571-438e-8486-1c51de196261\r\n2026-01-02T05:12:50.4428943Z:1/2/2026 5:12:50 AM +00:00:Digest Signing Factory Client type loaded is - [AzureGatewaySubmitter].\r\n2026-01-02T05:12:50.4501302Z:Existing Token Acquisition Time: 00:00:00.0004635\r\n2026-01-02T05:12:50.5053441Z:Gateway Client: the client id that is sending a request is: ad16f487-7571-438e-8486-1c51de196261\r\n2026-01-02T05:12:51.1701357Z:Gateway Client: response send time from cloud gateway: 2026-01-02T05:12:51.0985494+00:00\r\n2026-01-02T05:12:51.1701357Z:Gateway Client: response receive time from client SendAsync: 2026-01-02T05:12:51.1701357+00:00\r\n2026-01-02T05:12:51.1701357Z:Gateway Client: response duration time between cloud gateway and client SendAsync: 00:00:00.0715863\r\n2026-01-02T05:12:51.1715597Z:Gateway Client: response time after converting from http response to object: 2026-01-02T05:12:51.1715597+00:00\r\n2026-01-02T05:12:51.6853767Z:Existing Token Acquisition Time: 00:00:00.0008767\r\n2026-01-02T05:12:51.6882474Z:Gateway Client: the client id that is sending a request is: ad16f487-7571-438e-8486-1c51de196261\r\n2026-01-02T05:12:52.5113115Z:Gateway Client: response send time from cloud gateway: 2026-01-02T05:12:52.4061117+00:00\r\n2026-01-02T05:12:52.5113115Z:Gateway Client: response receive time from client SendAsync: 2026-01-02T05:12:52.5113115+00:00\r\n2026-01-02T05:12:52.5113115Z:Gateway Client: response duration time between cloud gateway and client SendAsync: 00:00:00.1051998\r\n2026-01-02T05:12:52.5291491Z:Gateway Client: response time after converting from http response to object: 2026-01-02T05:12:52.5291491+00:00\r\n2026-01-02T05:12:52.5335701Z:Reading thumbprint from \"C:\\Windows\\ServiceProfiles\\NetworkService\\AppData\\Local\\EsrpClient_3b0166db2c4e4b8f9321d38401eabb19\\Certificates\\CP-464321.p7b\" (9692 bytes)...\r\n2026-01-02T05:12:52.5599985Z:Thread: 1 - Wrote new certificate file to \"C:\\Windows\\ServiceProfiles\\NetworkService\\AppData\\Local\\EsrpClient_3b0166db2c4e4b8f9321d38401eabb19\\Certificates\\CP-464321.p7b\".\r\n2026-01-02T05:12:52.5599985Z:Thread: 1 - Certificate file mutex \"B/7Sqh4tynuRiK07J3idWyBN7PUBNql9zcxdjudWoLc=_CP-464321\" released (held for 2199 ms).\r\n2026-01-02T05:12:52.5610284Z:digest sign request expire time is: 1/2/2026 5:13:49 AM\r\n2026-01-02T05:12:53.0522802Z:Client Telemetry: Events published in this batch: 4\r\n2026-01-02T05:12:53.0522802Z:Client Telemetry: Events received so far in this session: 4\r\n2026-01-02T05:12:53.0522802Z:Client Telemetry: Events published so far in this session: 4\r\n2026-01-02T05:12:56.7114382Z:Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe sign /NPH /fd \"SHA256\" /f \"C:\\Windows\\ServiceProfiles\\NetworkService\\AppData\\Local\\EsrpClient_3b0166db2c4e4b8f9321d38401eabb19\\Certificates\\CP-464321.p7b\" /sha1 \"464FA2A9D4A43EA5C3E53CE4562B501CB6EFA47F\" /du \"https://www.1eswiki.com/wiki/ADO_Manifest_Generator\" /d \"Packaging SSSC Codesign - DigestSign\" /tr \"http://aztss.trafficmanager.net/TSS/HttpTspServer\" /td sha256 /dlib \"c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\EsrpClient.Sign.DigestSignLib.dll\" /dmdf \"C:\\Windows\\ServiceProfiles\\NetworkService\\AppData\\Local\\EsrpClient_3b0166db2c4e4b8f9321d38401eabb19\\F4E4222DB45B4AED8FC52D66DA68894A.json\" \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" completed in 4150 ms\r\nExit Code: 0\r\nStdOut:\r\nDone Adding Additional Store\r\n\r\nESRP Digest Signing\r\n\r\n2026-01-02T05:12:53.3174485Z:Digest Signer : SecurityProtocolType used from the metadata info is : Tls12\r\nMSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:53Z] ConfidentialClientApplication 654897 created\r\n2026-01-02T05:12:53.4377543Z:Cached token found with name: api.esrp.microsoft.com_0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:53.4385857Z:AAD auth caching is in use with this name: api.esrp.microsoft.com_0d3b5b1a-8684-4f3a-b294-66c3b9aa8c8f_33e01921-4d64-4f8c-a055-5bdaffd5e33d\r\n2026-01-02T05:12:53.5263219Z:Global cached token is valid from 1/2/2026 5:07:48 AM to 1/3/2026 5:12:48 AM (UTC). Total validity from current time is 86394.4736781 seconds\r\n2026-01-02T05:12:53.5263219Z:Validate and Renew Token if necessary finished: 00:00:00.0869912\r\nMSAL logging: False MSAL 4.70.0.0 MSAL.Desktop 4.8 or later Windows Server 2025 Datacenter Azure Edition [2026-01-02 05:12:53Z] ConfidentialClientApplication 49044892 created\r\n2026-01-02T05:12:53.5815457Z:Existing Token Acquisition Time: 00:00:00.0022412\r\n2026-01-02T05:12:54.5485177Z:Gateway Submission Request Signing Time: 00:00:00.0943986\r\n2026-01-02T05:12:54.5485177Z:Gateway Submission Request Send Time: 00:00:00.8565519\r\n2026-01-02T05:12:54.5485177Z:Gateway Submission Overall Submission Time: 00:00:00.9645858\r\n2026-01-02T05:12:54.5485177Z:Operation ID: fd8b42da-c121-4a19-ad07-bcf20e4dfed8\r\n2026-01-02T05:12:55.0501517Z:Gateway Status Delay Time: 00:00:00.5013801\r\n2026-01-02T05:12:55.0586471Z:Existing Token Acquisition Time: 00:00:00.0008075\r\n2026-01-02T05:12:55.8989199Z:Gateway Status Request Send Time: 00:00:00.8363908\r\n2026-01-02T05:12:55.8989199Z:Gateway Status Overall Time: 00:00:00.8386122\r\n2026-01-02T05:12:55.9075633Z:Gateway Submission Duration: 1229\r\n2026-01-02T05:12:55.9075633Z:Gateway Submission Attempts: 1\r\n2026-01-02T05:12:55.9075633Z:Gateway GetStatus Duration: 848\r\n2026-01-02T05:12:55.9075633Z:Gateway GetStatus Attempts: 1\r\n2026-01-02T05:12:55.9075633Z:$$5a9f5111cf8f42a0a0edc419862b95dc##_ThrottleCount: 0\r\n2026-01-02T05:12:55.9075633Z:$$65265a48891640eb86e148d3c9a627fa##_ThrottledTimeInSec: 0\r\n2026-01-02T05:12:55.9075633Z:Service Call: 2695.1766 ms\r\nSuccessfully signed: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\n\r\n\r\n\r\nStdErr:\r\n\r\n\r\n\r\n\r\n2026-01-02T05:12:56.8623430Z:Warning: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n2026-01-02T05:12:56.8626555Z:Warning: Warning: Operation Error (1) - Operation: signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" - Retrying in 500 ms...\r\n2026-01-02T05:12:56.9805050Z:Warning: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n2026-01-02T05:12:56.9805050Z:Warning: Warning: Operation Error (2) - Operation: signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" - Retrying in 500 ms...\r\n2026-01-02T05:12:57.2458686Z:Client Telemetry: Events published in this batch: 3\r\n2026-01-02T05:12:57.2458686Z:Client Telemetry: Events received so far in this session: 7\r\n2026-01-02T05:12:57.2458686Z:Client Telemetry: Events published so far in this session: 7\r\n2026-01-02T05:12:57.5779592Z:Warning: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n2026-01-02T05:12:57.5998831Z:\r\n2026-01-02T05:12:57.5998831Z:Error: System.AggregateException: One or more errors occurred. ---> MS.Ess.EsrpClient.Sign.Exceptions.EsrpDigestSignExecuteProcessFailedException: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass27_0.<ExecuteDigestSignOperation>b__1()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.<>c__DisplayClass1.<ExecuteAction>b__0()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.ExecuteAction[TResult](Func`1 func)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.ExecuteDigestSignOperation(Input digestSignInput, Operation digestSignOperation, SignOperationData fileEntry, SignStatusResponse completionResponse, SignCommandDefinition param, Guid correlationId, String correlationVector, CancellationToken cancellationToken, String requestId, String tmpDestinationLocation)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.DigestSignInternal(Input digestSignInput, SignCommandDefinition param, Guid& correlationId, String correlationVector, CancellationToken cancellationToken, String groupId, SignOperationData fileEntry, Int32& signedFileCount, Int32& certRefreshCount, ConcurrentBag`1 completionResponses, RetryPolicy`1 operationRetryPolicy, String dynamicCertificateFile, String dynamicCertificateThumbprint, String requestId)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass23_3.<DigestSignAsync>b__6(SignOperationData fileEntry)\r\n --- End of inner exception stack trace ---\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<DigestSignAsync>d__23.MoveNext()\r\n---> (Inner Exception #0) MS.Ess.EsrpClient.Sign.Exceptions.EsrpDigestSignExecuteProcessFailedException: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass27_0.<ExecuteDigestSignOperation>b__1()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.<>c__DisplayClass1.<ExecuteAction>b__0()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.ExecuteAction[TResult](Func`1 func)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.ExecuteDigestSignOperation(Input digestSignInput, Operation digestSignOperation, SignOperationData fileEntry, SignStatusResponse completionResponse, SignCommandDefinition param, Guid correlationId, String correlationVector, CancellationToken cancellationToken, String requestId, String tmpDestinationLocation)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.DigestSignInternal(Input digestSignInput, SignCommandDefinition param, Guid& correlationId, String correlationVector, CancellationToken cancellationToken, String groupId, SignOperationData fileEntry, Int32& signedFileCount, Int32& certRefreshCount, ConcurrentBag`1 completionResponses, RetryPolicy`1 operationRetryPolicy, String dynamicCertificateFile, String dynamicCertificateThumbprint, String requestId)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass23_3.<DigestSignAsync>b__6(SignOperationData fileEntry)<---\r\n\r\n2026-01-02T05:12:57.6299754Z:Constructing EsrpClientResponse\r\n2026-01-02T05:12:57.6309798Z:EsrpClientResponse is constructed\r\n2026-01-02T05:12:57.6542445Z:OperationDurationMs: 7324\r\n2026-01-02T05:12:57.6542445Z:DynamicCertGenerationTimeMs: 0\r\n2026-01-02T05:12:57.6550467Z:TimeToGetStorageShradsMs: 0\r\n2026-01-02T05:12:57.6550467Z:TotalScanSubmissionTimeMs: 0\r\n2026-01-02T05:12:57.6550467Z:ThrottleCount: 0\r\n2026-01-02T05:12:57.6550467Z:ThrottledTimeInSec: 0\r\n2026-01-02T05:12:57.6550467Z:\r\n2026-01-02T05:12:57.6550467Z:0/1 files signed in 00:00:07.324 (0 files/s, total number of certs refreshed: 0)\r\n2026-01-02T05:12:57.6570593Z:result json is: {\r\n \"submissionResponses\": [\r\n {\r\n \"fileStatusDetail\": [\r\n {\r\n \"sourceHash\": \"PTGMhpQdvv1HGo8tY1XN67103LtkDeVDwzZsdjm9riM=\",\r\n \"hashType\": \"sha256\",\r\n \"destinationHash\": null,\r\n \"certificateThumbprint\": null,\r\n \"destinationLocation\": \"c:\\\\Temp\\\\AzureTemp\\\\okgvjzsz.dpm\\\\manifest.cat\",\r\n \"destinationFileSizeInBytes\": 0,\r\n \"sourceLocation\": \"c:\\\\Temp\\\\AzureTemp\\\\okgvjzsz.dpm\\\\manifest.cat\"\r\n }\r\n ],\r\n \"operationId\": \"fd8b42da-c121-4a19-ad07-bcf20e4dfed8\",\r\n \"customerCorrelationId\": \"1a563bcc-d2a7-49ab-9b0d-83e618f19246\",\r\n \"statusCode\": \"failCanRetry\",\r\n \"errorInfo\": {\r\n \"code\": \"3138\",\r\n \"details\": {\r\n \"operation\": \"c:\\\\AT\\\\sitesroot\\\\0\\\\bin\\\\Plugins\\\\ESRPClient\\\\Win10.x86\\\\signtool.exe verify /pa /tw \\\"c:\\\\Temp\\\\AzureTemp\\\\okgvjzsz.dpm\\\\manifest.cat\\\"\",\r\n \"exitCode\": \"1\",\r\n \"stdOut\": \"File: c:\\\\Temp\\\\AzureTemp\\\\okgvjzsz.dpm\\\\manifest.cat\\r\\nIndex Algorithm Timestamp \\r\\n========================================\\r\\n\\r\\nNumber of errors: 1\\r\\n\\r\\n\\r\\n\",\r\n \"stdErr\": \"SignTool Error: A certificate chain processed, but terminated in a root\\r\\n\\tcertificate which is not trusted by the trust provider.\\r\\n\\r\\n\"\r\n },\r\n \"innerError\": null\r\n }\r\n }\r\n ],\r\n \"esrpClientSessionGuid\": \"3b0166db-2c4e-4b8f-9321-d38401eabb19\",\r\n \"version\": \"1.0.0\"\r\n}\r\n2026-01-02T05:12:57.6921934Z:Warning: \r\n\r\n2026-01-02T05:12:57.6921934Z:esrp-client-finalTime: 11394.3375\r\n2026-01-02T05:12:57.6921934Z:Final return code is: 1\r\n2026-01-02T05:12:57.6921934Z:ClientTelemetryDispose started, this is not affecting Exe reliability, only lost telemetry if error happens ***********************\r\n2026-01-02T05:12:57.6965336Z:Client Telemetry: Flushing telemetry buffer with timeout 0 ms\r\n2026-01-02T05:12:57.6982550Z:Client Telemetry: Flushing telemetry buffer completed within timeout (true/false): False\r\n2026-01-02T05:12:57.6982550Z:Client Telemetry: Disposing telemetry buffer and event hub client\r\n2026-01-02T05:12:58.2100334Z:Warning: event lost number: 4\r\n2026-01-02T05:12:58.2100334Z:total event processed number: 7\r\n2026-01-02T05:12:58.2100334Z:total event received number: 11\r\n2026-01-02T05:12:58.2100334Z:##EsrpClientTelemetry.TotalEventsProcessed##: 7\r\n2026-01-02T05:12:58.2100334Z:##EsrpClientTelemetry.TotalEventsReceived##: 11\r\n2026-01-02T05:12:58.2100334Z:##EsrpClientTelemetry.DisposeTimeMilliseconds##: 517\r\n2026-01-02T05:12:58.2100334Z:ClientTelemetryDispose ended ***********************\r\n","StdErr":"2026-01-02T05:12:57.5998831Z:Error: System.AggregateException: One or more errors occurred. ---> MS.Ess.EsrpClient.Sign.Exceptions.EsrpDigestSignExecuteProcessFailedException: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass27_0.<ExecuteDigestSignOperation>b__1()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.<>c__DisplayClass1.<ExecuteAction>b__0()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.ExecuteAction[TResult](Func`1 func)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.ExecuteDigestSignOperation(Input digestSignInput, Operation digestSignOperation, SignOperationData fileEntry, SignStatusResponse completionResponse, SignCommandDefinition param, Guid correlationId, String correlationVector, CancellationToken cancellationToken, String requestId, String tmpDestinationLocation)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.DigestSignInternal(Input digestSignInput, SignCommandDefinition param, Guid& correlationId, String correlationVector, CancellationToken cancellationToken, String groupId, SignOperationData fileEntry, Int32& signedFileCount, Int32& certRefreshCount, ConcurrentBag`1 completionResponses, RetryPolicy`1 operationRetryPolicy, String dynamicCertificateFile, String dynamicCertificateThumbprint, String requestId)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass23_3.<DigestSignAsync>b__6(SignOperationData fileEntry)\r\n --- End of inner exception stack trace ---\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<DigestSignAsync>d__23.MoveNext()\r\n---> (Inner Exception #0) MS.Ess.EsrpClient.Sign.Exceptions.EsrpDigestSignExecuteProcessFailedException: Operation: c:\\AT\\sitesroot\\0\\bin\\Plugins\\ESRPClient\\Win10.x86\\signtool.exe verify /pa /tw \"c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\" failed\r\nExit Code: 1\r\nStdOut:\r\nFile: c:\\Temp\\AzureTemp\\okgvjzsz.dpm\\manifest.cat\r\nIndex Algorithm Timestamp \r\n========================================\r\n\r\nNumber of errors: 1\r\n\r\n\r\n\r\nStdErr:\r\nSignTool Error: A certificate chain processed, but terminated in a root\r\n\tcertificate which is not trusted by the trust provider.\r\n\r\n\r\n\r\n\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass27_0.<ExecuteDigestSignOperation>b__1()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.<>c__DisplayClass1.<ExecuteAction>b__0()\r\n at Microsoft.Practices.EnterpriseLibrary.TransientFaultHandling.RetryPolicy.ExecuteAction[TResult](Func`1 func)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.ExecuteDigestSignOperation(Input digestSignInput, Operation digestSignOperation, SignOperationData fileEntry, SignStatusResponse completionResponse, SignCommandDefinition param, Guid correlationId, String correlationVector, CancellationToken cancellationToken, String requestId, String tmpDestinationLocation)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.DigestSignInternal(Input digestSignInput, SignCommandDefinition param, Guid& correlationId, String correlationVector, CancellationToken cancellationToken, String groupId, SignOperationData fileEntry, Int32& signedFileCount, Int32& certRefreshCount, ConcurrentBag`1 completionResponses, RetryPolicy`1 operationRetryPolicy, String dynamicCertificateFile, String dynamicCertificateThumbprint, String requestId)\r\n at MS.Ess.EsrpClient.Sign.SignHandlers.SignJobHandler.<>c__DisplayClass23_3.<DigestSignAsync>b__6(SignOperationData fileEntry)<---\r\n\r\n","ExitCode":1,"RunningTime":"00:00:12.5416577"}
|