1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275
|
[Created by: generate-chains.py]
Certificate chain where the intermediate's Basic Constraints extension is
not marked as critical.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
4a:45:83:31:ef:c5:47:03:ae:f7:5a:80:bf:fb:8c:bc:23:1e:dc:c4
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:d8:cc:f6:ec:23:eb:20:d2:0e:7e:29:04:ec:8c:
b9:bd:ee:47:6e:0b:ac:a9:fa:22:a4:fc:41:74:04:
d0:b5:8a:37:56:29:d5:be:e7:e0:45:88:30:d9:5a:
e0:a7:69:fd:d1:c3:4d:1c:42:68:ae:7d:cf:54:db:
84:b9:91:e6:68:c5:d1:6d:a4:34:4a:7f:8f:3e:a3:
a8:c4:0e:3f:90:42:a9:b8:84:c2:fd:51:ed:eb:e9:
6d:cc:5a:22:f7:fb:eb:29:7d:5d:97:9d:26:eb:10:
29:bf:2a:bd:b0:2f:33:9b:e7:a3:17:9b:db:b4:ce:
f8:5e:66:25:7c:8c:e3:c8:53:cf:c2:c3:80:cf:e6:
68:98:ca:bd:e3:b8:d3:bc:e2:03:d0:31:5b:ef:21:
6d:2d:42:5e:cb:9a:3a:4d:7a:bd:e7:75:75:ff:63:
95:aa:08:20:fb:a8:6f:95:a9:ea:45:07:c4:a7:32:
89:58:94:98:76:2f:5d:d4:85:90:e3:be:96:33:1c:
53:d7:bd:58:87:75:4e:8c:c9:c9:6b:c8:b6:3f:d3:
46:1a:9f:4c:de:a5:48:cd:ad:87:fe:7a:82:f2:0c:
65:84:f5:09:ce:cf:fd:6c:66:57:91:dc:fb:85:d1:
ff:b2:4c:ce:2f:a3:73:b1:dc:1e:13:5c:03:1a:a6:
99:13
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
FD:20:6C:45:13:AE:E6:1F:25:FD:C9:1E:E3:09:32:CC:34:28:4E:CF
X509v3 Authority Key Identifier:
keyid:5A:44:77:BA:2D:5E:48:FE:11:68:59:58:40:91:67:E2:22:BF:31:38
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
da:44:ec:6a:27:0f:44:9c:43:dd:cd:b9:a1:e9:a6:fd:10:d9:
2e:b6:70:7d:27:f3:af:2e:14:36:ba:13:0b:65:1d:69:c6:17:
28:bc:8f:0f:bb:b6:ca:f7:77:9a:ac:d6:2f:60:4b:51:2d:0f:
28:9e:3f:7c:0f:03:40:d4:bf:80:78:3c:55:fa:ef:94:e2:db:
2c:9c:47:a2:ea:6d:da:60:40:2c:38:e0:c4:41:a4:9d:5a:9d:
15:3e:04:36:e1:ac:6f:cd:b2:af:af:b0:79:e9:ee:37:78:00:
ad:22:ae:fb:9e:79:be:41:0a:26:d8:ed:4d:8e:3f:5e:66:fd:
66:e5:9b:4d:02:87:00:d6:9a:5d:29:c9:6c:db:56:4f:f4:69:
cf:08:ad:4f:64:0e:ec:73:7a:54:90:17:cc:6e:29:6c:a3:0c:
db:cb:54:4d:e1:fc:3d:7c:82:38:18:40:5c:b3:cb:10:dd:b9:
e4:3f:2b:19:0f:a2:bb:f0:d6:bc:bc:30:03:96:c7:0c:73:f5:
b0:53:b3:5c:8c:8e:c0:d5:05:05:39:a6:62:52:9a:c1:8d:74:
29:6a:93:ef:29:53:52:63:14:fc:f9:b9:1b:34:dc:7f:4f:ba:
30:c9:4f:5e:61:73:f2:df:c3:ae:51:37:26:ee:8e:4b:91:16:
d5:c2:a5:ce
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2d:b0:5d:cd:6e:fd:4d:77:89:ef:99:fc:fd:05:d3:22:44:3f:93:ef
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:fb:af:dd:12:ab:aa:06:e0:72:bd:43:4c:3e:5b:
cd:02:9c:ca:c1:42:6d:cd:47:6e:6c:4c:6b:3f:2e:
c1:3f:2e:88:3d:77:4f:1c:34:60:ba:f7:fb:58:64:
3c:c2:76:5d:30:88:48:22:81:2f:27:c8:1f:b4:ed:
96:07:5d:f7:7c:4a:37:be:fe:4f:7b:1f:19:82:21:
24:18:c9:ae:a7:a5:58:62:9d:6b:f9:9a:88:56:0f:
7f:b4:0c:1a:d5:4f:ab:2c:c4:97:6e:ec:db:b1:a0:
43:86:34:08:2e:21:16:f8:f6:3e:2a:e8:ca:9a:a4:
fb:91:7e:f9:43:19:42:08:10:7e:92:af:60:45:4e:
30:e4:d3:d3:e9:bf:32:cf:c1:1b:a0:52:6e:a4:aa:
ed:13:6d:e8:7f:68:c6:88:84:67:20:8f:6b:82:9c:
49:5d:b4:95:63:9d:0a:dc:9f:ab:7b:b3:eb:f7:ad:
48:35:f5:44:ec:84:23:e1:5b:ca:49:16:e0:c2:5a:
8f:3e:d2:2b:fa:50:08:bf:12:3b:da:8c:96:66:93:
69:5b:27:4e:b8:e7:8d:11:14:e6:29:23:b5:d9:f7:
b0:f9:e2:90:e2:d8:be:8d:1d:dc:89:f5:eb:15:df:
58:88:e8:91:14:94:9d:37:e3:10:1a:de:30:3c:18:
d7:6f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5A:44:77:BA:2D:5E:48:FE:11:68:59:58:40:91:67:E2:22:BF:31:38
X509v3 Authority Key Identifier:
keyid:B8:16:92:87:E1:0C:B9:E5:61:C3:DA:A5:05:11:6A:58:DD:78:65:8E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
3c:1a:07:71:b2:e0:cd:a3:3f:a4:a3:32:26:a8:6b:f8:72:83:
0c:f1:e9:88:03:59:53:33:1f:b3:9b:cd:93:c9:ed:e3:ca:a2:
ef:43:ac:87:8c:7f:9a:06:6b:85:41:a2:c3:25:6a:82:12:39:
8c:57:22:37:86:6e:08:28:86:aa:ea:60:21:95:b5:ec:d5:2e:
39:90:89:e1:76:5d:71:e0:3f:42:92:5e:17:2e:09:88:48:b3:
e3:83:e5:b6:ec:67:e0:03:1d:11:4a:df:4f:6e:f5:18:8b:7f:
79:8c:89:69:59:45:9b:f7:f6:f3:ea:83:fe:05:49:bb:13:64:
d4:28:0c:78:83:1d:f6:17:86:16:5a:f7:81:06:11:ce:ef:35:
8d:79:7d:f1:d1:ff:a7:a9:b3:1a:f4:a3:20:b0:0f:d0:d3:5b:
1c:f6:1d:73:3d:96:8c:e6:19:70:a4:55:a5:ad:a8:f0:93:46:
f4:40:41:b2:3c:b3:78:1b:eb:74:29:6c:3f:7e:7f:f5:b0:c0:
e3:60:e1:8e:cc:a7:70:00:3d:de:66:f6:ee:e5:17:61:1f:c4:
d0:1c:f7:1c:19:5d:cd:e8:a6:45:14:d4:f0:78:87:7f:30:0f:
91:f8:8e:4c:d8:37:cf:c7:c1:08:c4:76:0f:7d:b9:48:06:89:
6a:05:b1:4d
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2d:b0:5d:cd:6e:fd:4d:77:89:ef:99:fc:fd:05:d3:22:44:3f:93:ee
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:aa:94:1d:65:8c:79:04:f0:c9:d1:3c:23:76:e9:
3e:2c:c9:52:e1:fc:b9:bf:35:8d:66:e4:37:66:b5:
4b:ff:1a:9b:cb:30:e1:d4:30:54:fb:6e:f2:43:fd:
76:b8:84:51:79:12:5a:65:95:87:ec:3d:19:b0:ab:
04:94:64:aa:bc:e5:bf:e2:77:fd:07:28:3c:b5:20:
da:55:2c:79:04:f2:71:6e:31:b4:63:14:80:4e:c3:
83:1e:ea:7e:5a:c0:4d:48:4a:2e:9e:52:80:80:98:
22:10:4a:05:d7:db:13:8f:37:67:20:63:19:01:92:
07:46:94:b5:c9:ba:e7:68:af:06:57:35:69:50:50:
22:23:0b:92:a1:98:32:08:88:5c:8b:4c:7c:a5:6a:
f3:31:ee:bf:4c:59:b0:a1:cb:e8:28:1d:fa:4c:d3:
1b:e6:2b:03:1a:4f:b5:8d:93:5d:18:95:c7:93:c1:
8b:6f:55:17:34:17:e9:d8:70:47:c8:4c:b2:5a:fa:
a7:aa:66:b7:a3:62:17:0a:7c:27:15:ef:c2:bc:5b:
7a:7d:88:c7:2a:45:0c:d7:3b:91:7e:72:c6:30:cb:
12:39:1e:a2:8a:88:39:30:f0:54:b4:19:6f:b6:5e:
e8:01:60:2c:2b:27:cb:e5:93:49:ab:b8:9e:f0:29:
e6:c7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
B8:16:92:87:E1:0C:B9:E5:61:C3:DA:A5:05:11:6A:58:DD:78:65:8E
X509v3 Authority Key Identifier:
keyid:B8:16:92:87:E1:0C:B9:E5:61:C3:DA:A5:05:11:6A:58:DD:78:65:8E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
86:e3:13:ea:c4:23:12:a4:15:aa:2d:23:f7:2a:4f:97:f4:57:
05:f5:d5:a8:aa:a1:dd:ad:a6:c2:6a:f4:d8:2d:f4:5c:2d:7a:
d4:6f:9c:ea:a9:09:e3:62:86:1f:aa:59:fe:d8:6b:35:0a:a1:
c4:87:8b:4d:b4:30:1f:9d:10:35:d8:94:82:bf:b4:42:dc:1d:
94:af:01:45:40:6e:02:e6:fa:b5:78:f5:ed:97:23:4c:95:cc:
89:33:69:83:59:04:fd:fa:48:5f:63:7d:08:9d:f1:26:a2:c1:
71:74:68:00:13:1c:d4:70:45:52:f5:a2:57:5b:34:1d:6b:e9:
fe:8c:46:84:2a:99:2a:3a:58:31:d9:be:35:5e:c8:97:34:f3:
6d:c3:d3:23:30:e2:fc:35:1f:82:68:02:ad:df:85:7b:4b:63:
96:b1:fc:1f:3c:68:04:63:1d:bf:ab:e5:9e:1a:8c:4f:d1:d5:
44:70:b4:4f:2b:30:a6:39:1c:4a:5e:4f:05:64:0d:83:3d:1d:
3b:17:b3:0b:b7:f4:ee:f5:44:47:36:92:aa:dd:30:74:68:0f:
07:da:14:c2:b3:b0:80:2a:0c:36:c0:a2:a6:77:f1:0c:e0:e2:
80:5e:2d:98:f1:af:b0:24:81:4f:d3:1e:df:46:95:fe:5e:8b:
44:84:a8:e0
-----BEGIN CERTIFICATE-----
MIIDeDCCAmCgAwIBAgIULbBdzW79TXeJ75n8/QXTIkQ/k+4wDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw
MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQCqlB1ljHkE8MnRPCN26T4syVLh/Lm/NY1m5DdmtUv/GpvLMOHUMFT7bvJD
/Xa4hFF5ElpllYfsPRmwqwSUZKq85b/id/0HKDy1INpVLHkE8nFuMbRjFIBOw4Me
6n5awE1ISi6eUoCAmCIQSgXX2xOPN2cgYxkBkgdGlLXJuudorwZXNWlQUCIjC5Kh
mDIIiFyLTHylavMx7r9MWbChy+goHfpM0xvmKwMaT7WNk10YlceTwYtvVRc0F+nY
cEfITLJa+qeqZrejYhcKfCcV78K8W3p9iMcqRQzXO5F+csYwyxI5HqKKiDkw8FS0
GW+2XugBYCwrJ8vlk0mruJ7wKebHAgMBAAGjgcswgcgwHQYDVR0OBBYEFLgWkofh
DLnlYcPapQURaljdeGWOMB8GA1UdIwQYMBaAFLgWkofhDLnlYcPapQURaljdeGWO
MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh
L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S
b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG
9w0BAQsFAAOCAQEAhuMT6sQjEqQVqi0j9ypPl/RXBfXVqKqh3a2mwmr02C30XC16
1G+c6qkJ42KGH6pZ/thrNQqhxIeLTbQwH50QNdiUgr+0QtwdlK8BRUBuAub6tXj1
7ZcjTJXMiTNpg1kE/fpIX2N9CJ3xJqLBcXRoABMc1HBFUvWiV1s0HWvp/oxGhCqZ
KjpYMdm+NV7IlzTzbcPTIzDi/DUfgmgCrd+Fe0tjlrH8HzxoBGMdv6vlnhqMT9HV
RHC0TyswpjkcSl5PBWQNgz0dOxezC7f07vVERzaSqt0wdGgPB9oUwrOwgCoMNsCi
pnfxDODigF4tmPGvsCSBT9Me30aV/l6LRISo4A==
-----END CERTIFICATE-----
|