chris.sutcliffe
I’m hoping this post isn’t off topic for this forum. I’m sending a http post to a REST endpoint leveraging HTTPotion and I’m getting the following response:
%HTTPotion.ErrorResponse{
message: "{:content_length_undefined, {:stat_code, '200'}, \"HTTP/1.1 200 OK\\r\\nContent-Type: application/vnd.dcp-v1+json\\r\\nDate: Wed, 19 Dec 2018 15:11:34 GMT\\r\\nAccess-Control-Allow-Origin: *\\r\\nAccess-Control-Allow-Methods: GET, POST, DELETE, PUT,OPTIONS\\r\\nAccess-Control-Allow-Headers: Content-Type, X-Access-Token\\r\\nAccess-Control-Expose-Headers: X-Access-Token\\r\\nSet-Cookie: c9c54d0c7a2119a88cbb4d1c8a1ef0d0=ed20f80f36ef856038563a2c27ff36ee; path=/; HttpOnly\"}"
}
what’s confusing me is why HTTPotion is treating this as an error when the status_code is 200? I thought of capturing the raw request and response on the wire, but because the endpoint is encrypted, this isn’t an option.
Any help would be greatly appreciated.
Thanks
Trending in Questions
Hello!
Suppose you are building workflow (order / task / payment) processing system with the following requirements:
Each workflow con...
New
I’m in search of an Elixir library that offers PDF generation capabilities similar to Ruby’s Prawn. While there have been discussions abo...
New
I’m looking to build a personal workflow to quickly deploy web applications written in elixir/phoenix, for local consumption (ie not on t...
New
Before I dive in myself, did anyone successfully sprinkle Hologram into their existing LiveView app?
Looking for hints regarding:
Addi...
New
Hi all, I wanted to ask how the community is dealing with post-release steps.
Today we have Ecto migrations, which make sure that the db...
New
Kia ora,
We have been using elixir-google-api to connect to Google Drive. However, with the updates to Tesla due to CVEs this is now bro...
New
Hello,
I have an Elixir backend that implements a custom protocol over TCP. I want to load test the backend and assess the performance o...
New
Other Trending Topics
Hey, I’m Jesse and I’m the main contributor behind Dexter, a full-featured, lightning-fast Elixir LSP optimized for large codebases. It s...
New
Beam Bots (or just BB for short) is a framework for building fault-tolerant robotics applications in Elixir using familiar OTP patterns. ...
New
Hello everyone. After busy few months I am happy to announce v0.1.0 of Emerge & Solve.
They are GUI (Emerge) and State management (S...
New
Corex is an accessible, unstyled UI component library for Phoenix that integrates Zag.js state machines using Vanilla JavaScript and Live...
New
Emily is an Elixir library that runs Nx computations on Apple’s MLX. Install it as the default Nx backend and Nx, defn, Axon, Nx.Serving,...
New
There has been a thread to discuss the Stack Overflow Developer Survey on this forum every year since 2018, so here’s yet another one for...
New
Categories:
Sub Categories:
Forums
Popular Tags
- #ecto
- #liveview
- #troubleshooting
- #learning-elixir
- #deployment
- #library
- #erlang
- #testing
- #genserver
- #mix
- #absinthe
- #remote-other
- #otp
- #plug
- #how-to-question
- #macros
- #postgres
- #channels
- #elixirconf
- #exunit
- #discussion
- #code-sync
- #javascript
- #podcasts
- #onsite
- #dialyzer
- #docker
- #authentication
- #umbrella
- #full-time-contract
- #podcasts-by-brainlid
- #ecto-query
- #elixir-ls
- #blog-post
- #phoenix_html
- #iex
- #graphql
- #genstage
- #ai
- #elixirconf-us
- #websockets
- #supervisor
- #advent-of-code
- #distillery
- #processes
- #api
- #forms
- #metaprogramming
- #security
- #hex










First 7 of 7 Posts
idi527
Seems like the response doesn’t have
Content-Lengthheader set. The wayHTTPotionrepresents the error is funny though. Seems like it justinspects the error tuple fromibrowse.Just in case, there is a way to decrypt https requests with wireshark.
chris.sutcliffe
I “figured it out” by switching to HTTPoison and passing
hackney: [:insecure]. When I switched to HTTPoison it stated that the CA was unknown, so with this option it works. Curious that HTTPotion didn’t provide a more meaningful error.voltone
This is not related to the certificate. HTTPotion/ibrowse ignore the server’s certificate unless you explicitly opt-in to peer certificate verification, whereas HTTPoison/hackney enable server certificate verification by default. See https://blog.voltone.net/post/7 (still relevant 2 years later, unfortunately).
The root cause is the lack of the “Content-Length” header in the response, as @idi527 pointed out . HTTPotion/ibrowse consider that a malformed response, while HTTPoison/hackney apparently make a best-effort attempt to handle the response despite the protocol violation.
axelson
I think your meant
HTTPoison/hackneyinstead ofHTTPotion/hackney(the last time you refer to it)voltone
Damn those HTTPuns, yes, thanks
chris.sutcliffe
Thanks for detailed answer folks, much appreciated!
OvermindDL1
You should make an updated post with Tesla and Buoy too! Or update the existing one?