1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266
|
[Created by: generate-chains.py]
Certificate chain where the intermediate has a valid signature, however uses
MD5 in the signature algorithm.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
70:a7:83:31:c0:be:2b:86:e1:e6:72:7f:d3:1f:63:e7:80:79:6e:d5
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c7:dd:eb:5a:f4:88:03:0a:d7:b6:29:95:e0:58:
03:c6:35:36:b0:9e:e8:09:94:21:ba:07:cf:70:cc:
52:c7:2c:fd:fe:c0:86:50:b3:0c:7b:46:cf:eb:a3:
bd:5a:29:32:58:81:09:ff:85:f8:b3:77:75:58:61:
22:f1:59:99:1f:0d:58:dd:ff:f5:a8:51:62:0a:58:
db:20:8e:fd:5a:43:96:8f:cd:8c:98:ca:f4:ef:4c:
f6:1e:48:dc:48:46:60:8c:67:0f:9a:41:2b:6b:72:
e2:ce:11:25:3d:21:99:fa:3f:ca:34:b8:ae:f1:29:
7a:ce:bc:1c:ce:98:50:d6:70:93:0a:a5:c4:7e:05:
34:46:f1:ef:36:59:90:62:c2:b8:b9:71:ed:df:c0:
f8:fd:ff:08:fa:db:05:7d:99:35:2a:65:08:e0:a1:
66:cb:7d:55:bc:72:d8:1f:7d:0c:11:e2:8b:11:51:
2e:88:b1:d1:72:5f:c5:6b:ac:f0:1e:3f:97:b8:0e:
d4:49:9d:a0:b5:be:23:79:b1:0f:19:90:c6:00:e1:
62:b4:d5:db:25:8c:11:01:92:9d:17:16:fd:ee:bf:
37:6a:2a:d9:b4:4d:83:0c:24:2c:f8:28:7f:52:9d:
6b:b3:ac:b2:2b:86:e8:fe:f8:a5:3a:cc:9d:eb:08:
f0:6f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
4A:A4:1B:84:D7:FB:A1:F1:FB:D4:71:87:01:11:63:87:06:5D:A6:D1
X509v3 Authority Key Identifier:
A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a5:7a:5a:3e:ea:47:b5:47:48:1e:41:61:22:65:0b:49:84:1f:
c7:08:08:21:a5:13:1a:ff:0a:d4:83:a6:b0:87:f4:89:5b:9d:
5a:9a:ad:2a:fe:6c:b6:0a:24:cc:16:0b:79:7b:59:77:52:16:
45:67:cb:8b:35:dc:ea:fd:6b:0c:9e:fa:c7:2d:2d:a3:53:ef:
2a:0d:ae:b1:bb:50:5b:b6:59:08:13:4b:2a:39:3c:b5:09:e5:
58:ad:4b:36:8a:82:3f:65:0b:1d:80:30:b1:af:ea:07:47:39:
99:9d:2c:ea:13:c6:a6:c3:a0:b0:8e:6e:19:5a:8d:0b:3b:b1:
17:6d:cd:71:68:69:32:40:42:ba:47:16:c1:a1:02:dd:95:da:
69:dd:4f:5a:8c:d1:ba:c5:e9:a3:d6:67:50:83:19:8b:08:63:
cc:11:24:5b:63:df:84:c8:16:8a:57:22:cb:51:8d:ec:6f:35:
32:fa:84:c3:2c:77:47:fe:a6:53:61:f0:1e:55:1d:b8:3a:0d:
19:ed:ff:2a:d8:81:f6:e8:e0:18:f2:37:68:c8:4e:ef:18:a3:
9e:e7:f5:f8:f9:51:e9:70:47:98:35:31:07:63:7d:4f:27:cb:
29:30:5b:78:0a:61:44:15:af:c8:bd:c7:d2:e4:18:dc:5b:40:
2c:66:b4:78
-----BEGIN CERTIFICATE-----
MIIDoDCCAoigAwIBAgIUcKeDMcC+K4bh5nJ/0x9j54B5btUwDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTIxMTAwNTEyMDAwMFoXDTIy
MTAwNTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF
AAOCAQ8AMIIBCgKCAQEAx93rWvSIAwrXtimV4FgDxjU2sJ7oCZQhugfPcMxSxyz9
/sCGULMMe0bP66O9WikyWIEJ/4X4s3d1WGEi8VmZHw1Y3f/1qFFiCljbII79WkOW
j82MmMr070z2HkjcSEZgjGcPmkEra3LizhElPSGZ+j/KNLiu8Sl6zrwczphQ1nCT
CqXEfgU0RvHvNlmQYsK4uXHt38D4/f8I+tsFfZk1KmUI4KFmy31VvHLYH30MEeKL
EVEuiLHRcl/Fa6zwHj+XuA7USZ2gtb4jebEPGZDGAOFitNXbJYwRAZKdFxb97r83
airZtE2DDCQs+Ch/Up1rs6yyK4bo/vilOsyd6wjwbwIDAQABo4HpMIHmMB0GA1Ud
DgQWBBRKpBuE1/uh8fvUcYcBEWOHBl2m0TAfBgNVHSMEGDAWgBSmhhQiq0DoB18T
ZPONYN4wtAuzMTA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91
cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0
dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF
oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD
ggEBAKV6Wj7qR7VHSB5BYSJlC0mEH8cICCGlExr/CtSDprCH9IlbnVqarSr+bLYK
JMwWC3l7WXdSFkVny4s13Or9awye+sctLaNT7yoNrrG7UFu2WQgTSyo5PLUJ5Vit
SzaKgj9lCx2AMLGv6gdHOZmdLOoTxqbDoLCObhlajQs7sRdtzXFoaTJAQrpHFsGh
At2V2mndT1qM0brF6aPWZ1CDGYsIY8wRJFtj34TIFopXIstRjexvNTL6hMMsd0f+
plNh8B5VHbg6DRnt/yrYgfbo4BjyN2jITu8Yo57n9fj5UelwR5g1MQdjfU8nyykw
W3gKYUQVr8i9x9LkGNxbQCxmtHg=
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6d
Signature Algorithm: sha1WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:eb:61:9e:9d:4b:23:cc:8e:39:d9:ac:07:05:da:
32:34:de:2a:dd:2f:62:ed:87:ce:7c:59:c4:9d:8e:
28:76:d1:f2:65:60:91:3f:7b:63:a4:2f:50:c4:da:
12:5b:71:a0:97:4f:26:cf:e7:b2:01:84:67:57:f5:
86:36:54:68:0f:28:f0:ea:7b:ca:1e:1a:bc:7e:67:
cf:fd:14:63:ee:c1:33:92:01:70:bc:12:6b:7d:2c:
8d:02:34:8e:85:1a:e4:f5:99:b6:c8:d5:18:d9:04:
a6:f5:40:fc:96:50:e2:3f:87:a0:d6:72:be:a3:a3:
45:89:07:74:d0:2e:9c:0d:88:12:02:a3:ef:17:ad:
2c:2d:71:66:11:89:3f:cf:57:77:28:77:70:bb:0f:
39:b0:b1:34:9d:e9:f7:a2:56:af:57:7e:ed:44:f8:
be:78:3d:28:c5:0d:37:15:2c:f6:99:4e:05:70:ae:
c5:99:45:a7:3f:bd:83:79:6a:a3:67:ff:71:2d:60:
e2:08:91:23:45:40:b1:40:52:e1:3b:1d:5d:d1:e9:
c2:b0:b1:c4:fb:7c:af:9c:c1:95:f1:a5:23:16:19:
75:9f:ef:be:b8:79:a7:f4:c5:b2:47:ae:6d:1c:15:
9c:26:0f:b2:0f:ec:92:8d:5a:79:c9:9e:16:e0:70:
bc:ef
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31
X509v3 Authority Key Identifier:
C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
10:e8:02:e9:1f:ed:c1:c6:ad:7b:2e:8f:07:ea:1a:0e:ca:5a:
e3:6e:bf:d6:ff:be:2a:f1:8e:01:88:32:ae:d2:b7:a0:98:f6:
ee:5e:24:ea:a6:5c:4b:dc:15:58:a0:1a:1a:e6:cd:b4:75:65:
fd:fc:6a:b7:f5:06:fa:df:36:c4:8e:e1:6a:73:93:62:f3:73:
29:35:53:30:b0:15:76:9a:7e:6b:a7:ae:ae:eb:d1:56:54:34:
ec:77:1b:7f:05:7e:e4:b1:21:2d:65:1d:83:e3:43:ae:ad:d3:
bd:f5:19:60:a5:de:67:9b:eb:84:58:e2:8f:50:a8:2f:32:b1:
73:fc:1d:41:47:0f:0d:c2:1d:7e:b5:5c:eb:0e:6c:9e:e5:6e:
c4:ec:a0:1c:f5:af:ca:6f:d4:28:53:8b:a8:09:83:6b:ef:13:
3c:87:38:f2:63:0b:9c:20:cd:31:22:e6:08:0f:be:1c:04:e8:
72:7d:a3:f2:cb:2d:2d:ef:fb:c4:8e:f1:3f:f9:77:2a:d6:66:
54:11:f1:d7:7a:5a:04:5b:f0:f4:dc:13:b0:14:6c:e2:b3:95:
a0:1f:c3:9a:21:6c:4f:5f:bb:37:3c:f8:8b:d0:19:25:53:c9:
79:d6:a1:53:9a:03:e2:ba:f3:72:f9:45:c4:2c:19:e4:73:ca:
7d:b6:4e:2a
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6c
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:cc:b2:cd:77:8f:be:c9:a5:17:ad:e5:ac:2d:b2:
c0:1f:33:5e:ed:d9:96:57:14:9b:a4:37:d8:a0:3d:
e4:2c:56:95:4d:75:68:4f:77:06:24:e0:0f:e9:b6:
de:6f:dd:a7:f6:93:dc:f3:48:10:fa:fb:90:b5:43:
42:0b:9d:d7:e9:0c:2c:69:7b:3a:4f:73:31:00:0c:
ba:15:cc:dd:77:a6:a9:f9:21:b8:97:aa:b7:a4:99:
6c:08:a0:8e:9f:b8:29:47:df:db:b9:b0:39:e5:4f:
be:47:2f:93:76:5b:6b:02:fe:ec:66:31:c2:de:8e:
0a:67:89:a4:70:cb:32:40:db:63:00:57:40:b4:8e:
b8:24:e4:de:33:62:24:7a:e5:b2:18:41:54:f7:98:
d9:f5:c8:23:1e:88:5a:a6:1c:7e:92:0f:92:56:49:
0e:5a:dc:49:4b:d1:f8:1b:73:b0:31:6f:37:7e:cf:
91:f4:40:e6:8b:36:11:fb:0f:79:ea:d2:80:f5:8e:
c1:24:d2:fe:2f:c1:58:6d:32:2e:04:64:b2:20:d2:
cd:a1:79:8b:08:25:8f:1e:89:fe:43:3f:bf:de:49:
f2:fa:bb:d7:52:6e:19:8f:4c:b6:6e:4f:59:48:63:
e2:c9:55:0f:58:89:93:85:e0:58:ee:80:16:5f:c4:
77:b9
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
X509v3 Authority Key Identifier:
C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
68:2f:fb:af:72:54:4d:44:20:01:20:d2:62:e6:b2:f7:d2:e3:
6c:b9:6a:04:e2:1e:55:0f:23:aa:4e:e3:06:5e:38:d5:50:49:
da:09:64:d5:98:83:53:15:3f:58:94:93:1f:db:38:d3:8c:5b:
56:7b:1b:6f:1d:e9:0c:df:54:7e:18:46:a5:8e:f0:8f:af:62:
5a:5d:0a:5d:ea:2c:be:59:a1:ee:5b:36:26:74:29:c5:5a:48:
e4:04:cc:9c:0b:33:55:55:fa:b2:9b:16:f5:81:70:ec:f9:73:
81:0e:b0:d4:68:26:d4:78:3f:e0:cb:e4:d3:3f:65:f8:ff:f1:
5a:1d:42:c9:fa:be:8f:95:d2:5b:d2:a8:76:de:48:b5:7c:d1:
ba:e6:45:4f:ce:b2:ed:7e:bf:20:12:94:3c:43:cc:40:49:a1:
d8:04:f6:09:a4:3e:d1:40:cd:eb:04:70:ce:9c:1b:09:8c:4d:
43:f6:9e:09:01:3f:cb:88:83:69:28:ea:9e:ae:3e:a9:c8:db:
b4:7c:18:88:ac:03:c6:bd:a7:9e:dc:d3:96:c0:27:26:b0:02:
1a:68:7d:67:6e:72:35:8e:ff:b2:f7:53:de:96:54:6c:78:91:
03:9a:9b:33:c2:79:94:b4:68:b7:ad:49:22:bb:e0:b2:80:ac:
9d:18:05:f8
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
|