1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275
|
[Created by: generate-chains.py]
Certificate chain where both the intermediate and target certificates have
incorrect signatures.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
12:3d:2e:d4:5e:20:54:23:3a:0b:c1:18:e2:e3:1e:58:f9:35:fd:a2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:b1:5e:cb:41:90:73:c4:13:ce:74:69:2e:d2:cb:
92:f1:dd:1c:30:d5:bc:33:af:7d:e7:b2:5a:4a:c2:
7e:61:cb:44:97:9d:85:26:10:db:fc:07:c7:f2:6c:
87:7a:f0:fb:4c:c8:1b:ed:7c:3e:19:4c:5e:b1:e8:
ba:10:8f:f3:2e:50:b4:56:ff:1f:7a:70:96:ee:f6:
d1:f9:f2:57:db:56:c7:d3:fd:cd:5a:ec:e0:e7:c8:
39:ca:3a:99:c0:d4:38:77:08:94:e2:4c:a9:5b:b8:
bd:97:8a:df:45:7c:fd:b0:ed:c8:b2:09:35:53:4e:
6f:58:42:60:c6:92:42:e8:f6:22:6a:8b:c4:e1:08:
00:e6:a7:48:c9:64:4b:13:7e:ca:c8:05:17:b5:60:
66:db:f0:25:eb:24:e4:9f:bf:6b:96:21:18:bf:a7:
19:5c:2f:2f:63:9a:de:b6:83:c5:1a:fd:f0:25:18:
7a:43:4a:15:d0:76:b0:3f:22:f3:6f:71:b1:23:74:
7b:3c:14:ca:8a:b1:7f:07:6c:3a:f6:01:32:1b:38:
4f:ba:14:50:00:9f:5e:09:0f:c3:b2:f2:25:bc:d0:
e0:f3:6f:af:58:22:5f:86:0f:b4:c6:fe:5e:41:b5:
da:2a:e0:5e:18:f1:7c:79:3c:57:b7:68:5d:27:4e:
85:17
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
54:31:EB:0B:BA:22:61:28:F7:82:FB:D1:FA:BA:43:92:AD:92:66:23
X509v3 Authority Key Identifier:
keyid:6D:10:36:87:AF:FA:A8:A3:9B:79:07:26:E8:A6:DA:49:43:67:94:CA
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
50:0b:0d:0d:ff:5f:c3:cd:dc:e2:2e:6d:33:d7:3c:56:6a:b2:
05:90:77:97:00:c3:75:e8:c3:5b:59:84:28:00:ab:2f:dd:f9:
e3:39:1e:e0:14:d1:66:01:a2:69:66:14:60:9f:12:80:44:fb:
a3:d6:25:fb:0d:0f:79:d1:fe:44:5f:f4:95:b1:27:7f:c8:f5:
4a:30:13:22:6a:e9:68:f6:e4:1c:99:19:e0:39:64:64:2b:91:
7e:56:fd:a2:42:b0:b4:ba:9d:42:5e:7e:b4:42:09:dc:0b:64:
c6:9f:ae:ef:94:f9:38:7e:12:15:e1:e3:a3:68:49:c4:10:a7:
f4:ea:e6:3f:dd:0d:e4:75:43:d1:93:6b:e0:18:0d:5e:28:d9:
0c:34:dd:9c:63:0c:48:c2:5b:78:1e:b3:ec:74:aa:44:f7:c3:
4d:c2:bc:39:84:b5:c4:90:a2:67:d2:8b:95:d4:b9:c9:63:2b:
c0:f1:87:98:2c:67:63:b8:46:1d:14:2b:6d:52:63:fd:d6:e6:
82:e9:b3:47:3e:ab:f3:1c:47:70:39:b3:44:fd:29:6d:ce:61:
dc:a2:4b:a8:f0:70:5a:59:95:4e:27:4e:7e:8d:78:90:a0:82:
1e:6c:03:49:21:4f:ca:a7:ea:e5:3b:d3:b9:42:d1:08:53:22:
43:74:17:4a
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
72:76:3e:27:78:9f:9e:db:6e:36:c5:5a:8a:59:bc:82:3a:8c:7a:a2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:b6:52:3d:81:21:43:60:33:fc:4e:76:28:8c:26:
3c:d9:1b:05:4b:b7:ba:5d:41:f7:9e:08:72:b2:0f:
a9:bb:37:1b:b8:6d:10:62:cf:c2:29:97:7b:97:49:
f4:3b:87:d9:29:64:72:f0:99:04:23:23:84:83:04:
3c:01:15:95:1a:f8:02:ba:0e:9c:d2:f6:45:54:f9:
a8:e9:e7:7c:2e:f5:e7:b4:38:4a:bb:d0:40:f8:51:
50:63:b0:fc:2e:39:f9:6b:a3:c9:dd:39:df:47:b6:
d4:81:2b:19:43:99:a7:f1:1c:4e:53:79:f0:40:4c:
46:fa:e9:df:da:df:75:7a:8b:25:9d:f0:d6:85:16:
88:f2:eb:65:19:b9:42:1f:07:bd:7e:8d:3d:73:8d:
6f:f5:b6:e4:bc:af:4d:0e:f6:f4:37:e1:58:fb:a1:
6d:06:d5:80:00:16:f3:57:6f:ea:07:f3:c1:a0:ad:
ab:5e:4d:c8:f7:e8:fa:c1:b6:c6:01:fb:6a:22:4d:
1d:f7:44:7e:69:16:48:f0:93:0c:b4:45:c7:4f:15:
84:29:f6:c3:a3:c3:1e:9c:8c:46:2a:47:fc:61:86:
d6:62:82:74:06:98:57:b4:4e:11:c8:b2:44:b1:76:
e4:38:3b:5f:19:df:f5:15:80:40:f0:75:4c:2c:c1:
9d:cd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
DB:88:D7:0B:35:2B:9E:30:59:D2:1A:51:1D:AC:7D:E3:C0:41:85:34
X509v3 Authority Key Identifier:
keyid:6E:7B:C8:25:11:11:8C:B7:37:E8:5A:B8:3B:F5:25:A1:06:7D:A6:A1
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
06:a7:e1:26:c4:80:16:c5:8c:e8:06:e5:91:53:d4:47:cf:c0:
24:4e:63:dc:d8:48:ad:18:0e:af:d2:cc:e2:94:de:46:82:d6:
8b:78:6a:3a:1b:69:8e:fa:a0:59:8b:5b:89:e6:ad:f2:6d:72:
8b:a7:6f:84:1b:0b:70:5e:3a:7b:28:53:15:bd:dd:02:44:53:
11:28:f7:13:19:c5:d2:97:8a:71:ac:1b:bc:39:d3:bc:88:3f:
e8:18:7e:41:c8:3a:86:21:48:79:2c:f8:9a:8b:2a:c6:e6:b8:
50:f3:03:72:0e:d2:69:d1:65:1a:3f:1f:77:56:5a:64:9b:81:
3d:af:85:82:3d:0c:c2:57:7a:ad:71:66:9c:cc:aa:91:39:7d:
c1:cc:4e:ab:c4:87:37:d5:e7:1b:a2:c6:30:1c:10:51:94:c2:
17:98:46:97:8e:0d:0e:1b:92:21:b7:cb:3f:83:d8:0e:b5:6b:
19:b4:43:11:44:87:ef:b5:fa:61:7d:36:95:69:75:3a:b2:a5:
f8:3a:ad:a5:b8:31:1e:4a:07:ff:75:b9:42:3f:46:87:05:bc:
9e:b4:a1:e0:02:11:a3:49:57:4f:34:5b:6d:81:3a:05:70:e1:
b2:94:55:c7:6d:4b:5e:bc:7d:17:25:aa:7a:9c:b8:fa:c8:6a:
1f:cb:f4:a4
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
72:76:3e:27:78:9f:9e:db:6e:36:c5:5a:8a:59:bc:82:3a:8c:7a:9f
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:f9:1b:7f:13:42:25:83:e6:a3:28:53:28:a2:42:
76:db:ec:c0:1d:88:3c:ee:37:ad:fe:24:a4:37:32:
4c:32:27:be:25:31:0a:07:48:7f:8e:44:24:de:ec:
ef:e3:cd:f8:fc:a1:7e:b5:95:0e:03:2a:ee:07:e6:
8a:fb:92:8b:92:5c:9c:51:3d:95:72:eb:5e:b5:d0:
b4:03:1e:26:5e:4d:f0:a0:ef:41:7a:a0:27:6f:a4:
73:b9:61:04:a4:21:a2:9d:67:3d:34:ad:6e:c4:24:
95:85:bb:3c:33:34:0c:91:a5:1f:fe:5e:6b:a6:8f:
b8:0c:00:cf:e4:f1:c5:6f:b3:1d:49:0c:2b:fe:07:
ab:8c:c6:55:5c:ef:44:7c:f9:7e:7d:80:63:93:e6:
75:dd:16:72:c9:1d:95:c7:14:b4:1d:18:9e:fe:0a:
c8:b2:7d:55:06:e6:8b:bb:50:b6:46:cf:63:59:bb:
66:8b:ae:b7:4a:4d:3e:a4:75:d2:00:1b:af:87:38:
fd:01:6d:96:0a:0b:e8:2e:f2:ad:d5:a8:10:7c:ff:
da:a7:62:1f:eb:8b:d6:6b:96:c1:0f:9a:0b:1b:46:
63:e0:aa:54:c5:b0:f1:31:ad:7c:24:a9:27:84:a2:
df:06:86:63:4a:b2:9c:bb:b3:3f:89:d4:9c:7a:fa:
91:25
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
72:8E:C0:44:D5:12:7A:32:45:EA:BC:89:19:85:84:95:C9:20:AF:09
X509v3 Authority Key Identifier:
keyid:72:8E:C0:44:D5:12:7A:32:45:EA:BC:89:19:85:84:95:C9:20:AF:09
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
bc:f2:1c:7b:37:75:b6:ae:df:8a:a3:b3:20:68:9d:e2:3f:2e:
55:ea:9b:84:5d:57:68:4e:1d:19:27:25:85:6d:65:04:8c:2d:
76:35:eb:09:0b:57:ae:5d:e2:20:6e:1e:b6:cd:08:3a:63:3a:
d0:4e:58:67:f6:1f:ea:9d:75:c2:5c:bd:4f:b0:75:03:2b:6f:
e2:49:a7:3e:23:9e:95:47:62:de:f6:7f:e4:58:5c:63:7c:78:
a8:fa:df:ba:76:b2:1d:cd:42:63:87:c0:bf:3a:34:66:0d:51:
85:ed:ac:29:5f:29:ff:10:41:f2:de:9f:b5:08:80:6d:0f:50:
ef:6f:e0:d2:2a:b1:0c:55:ed:0b:95:41:12:85:86:08:a9:fd:
3c:6a:21:69:71:a0:38:c2:f6:36:3e:25:2e:30:ef:c2:ba:0f:
2e:17:d4:cd:00:35:f6:fa:8e:9f:3c:ad:6f:5a:ca:f7:b7:0b:
aa:f3:8b:3f:60:8c:87:42:5e:73:63:5f:e0:eb:a7:09:ec:0a:
ba:10:94:dc:57:93:d7:b0:4a:99:83:00:a4:e2:fd:f8:b1:54:
cc:17:7f:9f:7f:0c:f7:6c:6a:89:13:ef:fe:b6:42:61:56:0c:
0d:cf:e5:41:51:1c:08:18:6c:9a:1e:c2:e5:ac:29:ce:2d:08:
97:bc:6b:c3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
|