1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275
|
[Created by: generate-chains.py]
Certificate chain where the intermediate has a basic constraints extension
that indicates it is NOT a CA.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5d:89:40:ce:2b:53:75:88:ff:8e:84:70:5e:89:c5:8b:d1:5c:22:c2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:96:d4:6b:47:00:ed:9a:72:03:1f:bc:14:42:63:
28:8d:c9:5a:08:27:59:06:2e:61:d9:28:aa:ed:58:
17:5f:f2:bf:ee:33:ab:74:0b:1c:c3:00:b6:38:96:
96:d0:dc:91:44:ab:1d:fa:e5:99:ed:fe:ee:43:dd:
21:b0:b8:1a:31:70:bb:c6:a5:eb:6e:2e:79:cf:c3:
c9:32:f7:39:e5:ff:9f:1e:fd:c8:8c:8f:9d:42:e6:
5d:cc:b1:75:fa:94:f3:f8:df:f8:47:ea:7a:4f:4c:
1d:67:fd:37:2e:75:a3:13:84:00:92:c5:6c:86:66:
80:39:7b:0f:2e:af:14:ce:82:1c:e4:78:7b:f3:d8:
f4:b3:b1:d1:7d:5f:ed:19:6f:1d:eb:7e:be:3a:33:
e1:b4:86:82:22:05:28:87:85:b8:2b:70:f1:88:45:
6b:b4:fb:d0:f0:0a:e5:45:f6:a8:e2:18:88:74:56:
4c:a7:4b:cb:13:8e:61:8b:1a:c2:a2:2b:2d:24:7a:
f0:4c:53:49:8b:98:be:52:31:72:5d:38:e7:8d:36:
7b:bb:34:4d:66:2d:b3:8b:82:85:9f:e6:f9:d8:58:
da:0d:e9:d5:d2:be:53:4b:88:ad:58:8a:3b:3c:1d:
53:60:ed:15:50:9c:fd:c3:bf:0c:fc:56:02:8f:06:
ab:9d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
69:F2:C8:4F:15:5E:61:18:40:61:41:B1:88:18:21:B5:77:6F:F9:DE
X509v3 Authority Key Identifier:
keyid:AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
81:4c:16:39:06:21:f4:37:69:aa:a6:28:f9:7f:e4:66:af:a6:
7a:fb:8f:24:7d:5b:f4:97:0f:78:ae:e0:19:e4:ac:96:01:5b:
83:d4:90:dc:3d:95:e9:37:fb:f0:8b:cb:a1:4b:26:3a:91:ae:
0f:7e:ad:47:e7:54:e7:92:60:7c:d8:c3:ba:39:0e:1f:f7:43:
65:2e:cd:4b:33:5b:8c:30:65:4b:a3:13:da:4f:80:bb:5e:a0:
2d:a7:6e:6a:4b:e7:28:36:da:5c:5e:ec:a8:2b:0b:57:e6:74:
d7:a0:10:7a:00:76:e9:3a:1e:7b:b0:a7:89:48:51:aa:c6:de:
8f:cc:2f:fc:29:6d:f6:fb:7f:97:bc:4e:1a:0f:f4:72:52:21:
e5:70:26:9e:fa:95:50:20:35:68:db:ac:5c:04:1b:47:c5:e7:
c6:07:3b:5f:e6:39:f2:1e:d1:66:c5:80:7e:84:cb:b3:c1:21:
0a:a0:ee:aa:1b:9e:4c:b6:00:bf:6b:98:bf:8a:8d:a2:8f:a7:
e4:98:6b:de:ad:f4:da:fe:54:13:99:1d:ec:c9:71:53:ba:c7:
8d:41:42:ca:8e:3e:a1:16:d2:c0:01:af:98:d6:66:6f:83:42:
fe:c2:3e:c4:71:78:e9:00:04:47:20:1e:8c:83:c8:92:28:8a:
a7:a0:28:4c
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:ba
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:c2:02:78:c1:e7:a0:b7:63:87:52:e4:d4:11:71:
3e:cb:65:9c:d9:2f:cb:48:30:8e:62:29:ae:c9:22:
36:a6:67:d2:ea:10:58:d2:82:ab:bc:1e:a3:12:64:
6e:fd:79:af:2e:6c:c0:8b:fd:36:68:ea:e0:0a:09:
53:99:89:75:92:61:13:ac:aa:d9:e2:f1:ac:93:72:
94:65:99:9e:52:9d:8f:6d:1e:b1:3e:83:fb:fa:c4:
dd:b4:b3:d2:0b:bb:f8:21:10:a9:51:8e:9e:b4:c8:
a8:63:79:50:62:03:59:3f:53:19:02:7c:a4:d9:45:
dd:07:b7:76:89:ac:ac:6f:b1:1d:aa:8c:4a:e5:40:
a2:05:32:2f:ba:a8:a9:8a:f3:eb:f0:f3:d9:9e:97:
e6:89:42:dd:95:67:de:33:62:2c:10:59:0b:b6:de:
9a:3e:54:10:b8:a4:a9:33:05:4d:fc:ea:8b:56:38:
2a:11:88:cd:75:1f:74:ea:4e:ad:3c:ef:da:d4:00:
72:57:1c:16:d3:20:b6:99:cc:7f:aa:58:fa:48:e8:
e9:a9:bd:00:2e:87:ce:39:9b:1c:17:23:ac:28:55:
77:81:e7:ac:f6:d6:6d:77:27:fb:e7:a0:22:72:58:
83:4d:1a:1a:be:b6:00:8e:d1:11:c7:71:28:93:09:
74:7b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB
X509v3 Authority Key Identifier:
keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:FALSE
Signature Algorithm: sha256WithRSAEncryption
49:b5:b7:cf:f6:1f:c2:b8:de:b0:18:55:84:5b:30:90:ab:2b:
f6:19:57:db:34:dc:65:9b:50:b7:7d:f9:a3:2e:3f:60:ff:de:
7e:8d:a3:20:c3:ee:0c:b2:b2:f0:68:ab:93:c3:f4:3d:ec:da:
54:86:4a:c0:0a:5e:e9:c3:bf:4b:cd:1a:28:8e:b3:1f:b5:5b:
ce:d6:fc:1d:cc:7b:8d:a6:31:a7:ef:43:4c:3d:3c:d9:17:e0:
3f:23:ca:1f:d6:cd:d2:ce:da:f3:a7:c8:f3:3b:ab:c9:e1:c1:
56:37:f7:79:0f:ae:ad:52:43:35:95:8d:34:a4:d7:e0:21:a7:
f0:37:63:c3:63:8a:d3:ce:50:ff:e1:0d:30:6b:b3:75:e1:5d:
43:31:9f:3a:b5:59:cd:aa:7a:06:bc:4b:4d:74:ed:59:ac:fc:
bc:4a:4e:a1:be:1e:2d:12:70:6e:36:e9:4e:5a:11:19:91:85:
da:b2:54:ec:9d:9a:2b:cd:c1:7e:7c:18:fd:ae:a2:9c:b2:17:
68:8a:43:b2:25:16:a9:7b:bf:42:ed:fd:54:cb:84:f1:40:76:
54:a4:3a:62:1e:f9:98:2a:ff:37:66:bf:05:1f:b7:55:7d:8b:
03:e8:a3:12:b3:40:78:52:77:62:aa:71:2b:cb:86:50:d1:83:
08:bd:b8:50
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:b9
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:bb:74:06:fa:a6:03:d1:64:c6:fa:62:8c:f6:40:
93:be:4e:7d:71:8b:3c:fb:57:b2:64:7a:08:9d:ce:
c3:40:ff:eb:84:43:e9:0c:e0:80:2c:e3:9c:38:43:
90:9d:e1:a5:4e:a1:10:9f:ac:b4:bf:24:38:7a:d7:
37:21:0d:ae:de:f0:99:37:43:6a:e7:7f:d0:4a:ba:
d3:a4:f4:df:ce:fa:d1:b0:03:f9:5d:79:a5:c5:82:
b0:cf:62:02:87:84:ec:73:d2:65:33:86:02:d7:f4:
57:8d:98:a2:2a:8f:89:c6:23:29:68:ff:56:46:d2:
dc:9a:e3:d2:24:d8:e9:fe:18:0c:4f:67:b3:cd:5e:
31:4a:70:2e:4c:b2:7e:10:e1:38:c7:a1:fa:bc:8f:
9b:23:e9:19:56:c5:38:4a:e8:7d:31:e2:6e:03:70:
ce:f2:0b:52:7d:6d:d7:d7:53:d8:e0:1c:6e:95:f3:
1c:b6:04:50:03:23:39:86:42:28:68:26:5f:ca:a7:
13:e2:51:ed:f0:55:bb:ac:4e:9d:cf:e5:07:44:41:
45:f8:5c:65:cf:d7:7f:0a:e0:ee:5e:5e:2c:0c:13:
10:f6:d4:e3:ba:9f:16:f4:8c:85:b2:53:4c:e1:56:
63:f0:08:11:84:df:dc:e1:a0:7f:fb:78:5d:eb:21:
f9:e5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
X509v3 Authority Key Identifier:
keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
0f:63:30:43:fc:d4:2f:ab:61:22:7e:19:62:9c:64:a4:5c:98:
b8:bd:d3:04:be:06:be:6d:7d:2f:a5:f8:c1:5d:29:90:fe:9a:
fb:e2:08:58:7f:60:ba:e8:63:a1:17:90:88:3b:35:1e:92:98:
37:2a:79:4a:db:1b:23:07:c3:75:82:90:1b:97:1b:4e:e1:40:
a8:74:99:03:72:de:05:46:f5:4b:f2:ab:00:4f:27:e7:e8:c3:
95:d9:ba:63:f0:42:99:ec:61:44:1a:03:e5:6d:58:28:c2:f9:
8a:36:6d:10:fc:d4:4e:91:38:91:7b:4c:e2:69:e1:1b:c2:c9:
51:50:cf:13:08:66:d1:27:5b:0d:c1:f0:fd:70:4e:63:17:0e:
53:2b:36:72:18:b2:a1:fc:fc:e8:21:e3:15:2b:39:e3:01:18:
11:52:c8:0e:20:e7:29:ae:2f:35:4e:dd:2a:f6:12:cd:55:38:
89:f3:2a:11:43:d7:33:c2:47:c1:c7:78:f4:d0:a0:5a:cb:ec:
86:88:5d:5d:54:d2:b2:0d:cb:5c:0e:05:28:80:e8:8c:09:45:
1e:66:44:f7:6c:b4:07:a3:4e:8e:8c:33:38:c5:de:10:1f:f8:
1e:a9:12:3b:f2:18:d8:84:95:79:50:66:49:49:58:b5:e0:89:
9a:ac:59:e7
-----BEGIN CERTIFICATE-----
MIIDeDCCAmCgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7kwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw
MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQC7dAb6pgPRZMb6Yoz2QJO+Tn1xizz7V7JkegidzsNA/+uEQ+kM4IAs45w4
Q5Cd4aVOoRCfrLS/JDh61zchDa7e8Jk3Q2rnf9BKutOk9N/O+tGwA/ldeaXFgrDP
YgKHhOxz0mUzhgLX9FeNmKIqj4nGIylo/1ZG0tya49Ik2On+GAxPZ7PNXjFKcC5M
sn4Q4TjHofq8j5sj6RlWxThK6H0x4m4DcM7yC1J9bdfXU9jgHG6V8xy2BFADIzmG
QihoJl/KpxPiUe3wVbusTp3P5QdEQUX4XGXP138K4O5eXiwMExD21OO6nxb0jIWy
U0zhVmPwCBGE39zhoH/7eF3rIfnlAgMBAAGjgcswgcgwHQYDVR0OBBYEFGy4/qZ0
RJdw7f7LJDiQKqlhSPvrMB8GA1UdIwQYMBaAFGy4/qZ0RJdw7f7LJDiQKqlhSPvr
MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh
L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S
b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG
9w0BAQsFAAOCAQEAD2MwQ/zUL6thIn4ZYpxkpFyYuL3TBL4Gvm19L6X4wV0pkP6a
++IIWH9guuhjoReQiDs1HpKYNyp5StsbIwfDdYKQG5cbTuFAqHSZA3LeBUb1S/Kr
AE8n5+jDldm6Y/BCmexhRBoD5W1YKML5ijZtEPzUTpE4kXtM4mnhG8LJUVDPEwhm
0SdbDcHw/XBOYxcOUys2chiyofz86CHjFSs54wEYEVLIDiDnKa4vNU7dKvYSzVU4
ifMqEUPXM8JHwcd49NCgWsvshohdXVTSsg3LXA4FKIDojAlFHmZE92y0B6NOjowz
OMXeEB/4HqkSO/IY2ISVeVBmSUlYteCJmqxZ5w==
-----END CERTIFICATE-----
|