| [Created by: generate-chains.py] |
| |
| Generates certificate chains where the intermediate contains netscape server |
| gated crypto rather than serverAuth. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 16:b5:13:fb:79:d7:bf:0c:f5:4b:2a:50:4c:9a:68:d0:89:a0:f2:9e |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:c8:af:a5:d9:15:56:dd:ec:b1:41:dd:34:36:48: |
| ab:5a:3f:2e:6a:14:16:38:1f:c2:ad:27:64:f2:72: |
| 54:a1:81:73:9c:fd:3a:37:2c:64:f9:e2:0a:bd:0f: |
| 74:9a:70:ea:9c:6e:c9:64:e9:92:a4:bf:9a:30:2c: |
| 9a:8f:4c:eb:12:1e:58:08:f5:6a:4b:72:e0:a8:a9: |
| 22:81:ca:cd:7c:78:cd:24:9b:90:8a:7d:ac:79:cf: |
| 40:a9:d0:f6:a4:78:ef:fd:c3:b3:9d:d3:ea:51:ee: |
| c7:ed:f5:2b:36:5c:50:11:be:44:a9:29:cd:d6:79: |
| bc:bd:5b:a5:46:d1:a7:86:a5:86:2a:73:f5:ba:f9: |
| f4:5e:9c:94:9e:95:81:ec:42:f9:83:f1:4e:a6:eb: |
| c9:a1:3c:e9:97:80:cb:ee:4d:06:45:75:a7:38:db: |
| f2:a9:17:12:46:f1:99:1f:40:48:89:a0:bd:07:46: |
| a5:ab:11:03:fb:a5:2c:a2:c9:bc:f7:07:e5:9f:ce: |
| 24:26:3e:a1:a8:ac:fe:ad:09:64:00:d9:da:3c:c8: |
| 09:c3:bc:c7:64:b9:93:c2:b9:39:4e:3c:a0:7c:9c: |
| 14:fc:e5:bd:1f:1e:fc:4d:e8:e5:aa:9d:ff:33:ed: |
| f7:10:0e:72:da:81:79:e9:1e:f3:65:03:b0:13:77: |
| 30:a5 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 63:59:54:71:BD:5B:C7:56:B3:FE:AE:DA:EF:DE:59:E2:60:69:B3:2C |
| X509v3 Authority Key Identifier: |
| keyid:34:04:CA:F4:40:13:44:0C:86:E8:1F:47:3F:F0:E8:23:D6:EE:02:09 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| X509v3 Subject Alternative Name: |
| DNS:test.example |
| Signature Algorithm: sha256WithRSAEncryption |
| 43:e9:0f:15:58:35:43:c3:61:00:9a:60:9d:ba:a0:d5:28:b7: |
| 52:2e:22:ce:48:5c:30:22:f3:a6:76:83:cf:b0:2a:3b:49:7c: |
| b7:fb:71:32:3c:e7:5c:06:e3:5d:cb:5e:38:e9:8a:de:ac:eb: |
| 79:f7:69:46:ca:a8:fa:ef:90:1a:1a:b2:32:fd:9b:cc:75:e8: |
| d6:5c:e1:25:41:ad:c6:cc:18:c6:29:06:39:8f:0a:07:a6:94: |
| 61:46:4b:8e:cd:26:dd:b2:7e:e6:2f:22:7c:38:70:9c:fe:30: |
| ee:2a:a1:b7:28:b1:0e:7e:15:78:21:c6:6c:9b:24:f5:16:18: |
| f2:c7:33:97:88:6b:03:21:1a:7d:b1:3b:c6:ac:25:72:12:79: |
| 43:3b:d0:99:2d:9e:ae:9c:5f:e5:0e:02:0f:52:f9:68:81:7d: |
| 75:e4:e9:38:f8:d7:ab:e3:e0:0c:1b:44:7f:b6:21:8d:46:da: |
| bb:e1:64:81:55:d9:02:00:be:1a:9a:2e:df:5b:80:0f:72:de: |
| 09:d4:a4:49:e5:5c:02:15:c5:e3:07:92:84:cf:e5:9c:53:c8: |
| d4:ce:bb:a0:dd:dd:33:ba:1d:18:6a:b7:a2:45:24:ad:0e:23: |
| 3e:f2:cb:6d:3a:9c:7b:4c:da:fb:93:82:e6:26:6c:3b:b3:24: |
| 15:8f:5c:6d |
| -----BEGIN CERTIFICATE----- |
| MIIDujCCAqKgAwIBAgIUFrUT+3nXvwz1SypQTJpo0Img8p4wDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAyK+l2RVW3eyxQd00NkirWj8uahQWOB/CrSdk8nJUoYFz |
| nP06Nyxk+eIKvQ90mnDqnG7JZOmSpL+aMCyaj0zrEh5YCPVqS3LgqKkigcrNfHjN |
| JJuQin2sec9AqdD2pHjv/cOzndPqUe7H7fUrNlxQEb5EqSnN1nm8vVulRtGnhqWG |
| KnP1uvn0XpyUnpWB7EL5g/FOpuvJoTzpl4DL7k0GRXWnONvyqRcSRvGZH0BIiaC9 |
| B0alqxED+6Usosm89wfln84kJj6hqKz+rQlkANnaPMgJw7zHZLmTwrk5TjygfJwU |
| /OW9Hx78Tejlqp3/M+33EA5y2oF56R7zZQOwE3cwpQIDAQABo4IBAjCB/zAdBgNV |
| HQ4EFgQUY1lUcb1bx1az/q7a795Z4mBpsywwHwYDVR0jBBgwFoAUNATK9EATRAyG |
| 6B9HP/DoI9buAgkwPwYIKwYBBQUHAQEEMzAxMC8GCCsGAQUFBzAChiNodHRwOi8v |
| dXJsLWZvci1haWEvSW50ZXJtZWRpYXRlLmNlcjA0BgNVHR8ELTArMCmgJ6AlhiNo |
| dHRwOi8vdXJsLWZvci1jcmwvSW50ZXJtZWRpYXRlLmNybDAOBgNVHQ8BAf8EBAMC |
| BaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMBcGA1UdEQQQMA6CDHRl |
| c3QuZXhhbXBsZTANBgkqhkiG9w0BAQsFAAOCAQEAQ+kPFVg1Q8NhAJpgnbqg1Si3 |
| Ui4izkhcMCLzpnaDz7AqO0l8t/txMjznXAbjXcteOOmK3qzrefdpRsqo+u+QGhqy |
| Mv2bzHXo1lzhJUGtxswYxikGOY8KB6aUYUZLjs0m3bJ+5i8ifDhwnP4w7iqhtyix |
| Dn4VeCHGbJsk9RYY8sczl4hrAyEafbE7xqwlchJ5QzvQmS2erpxf5Q4CD1L5aIF9 |
| deTpOPjXq+PgDBtEf7YhjUbau+FkgVXZAgC+Gpou31uAD3LeCdSkSeVcAhXF4weS |
| hM/lnFPI1M67oN3dM7odGGq3okUkrQ4jPvLLbTqce0za+5OC5iZsO7MkFY9cbQ== |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 42:e0:1e:36:75:40:12:16:19:8d:07:a8:3f:9b:ff:e1:59:bc:6a:a0 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:9a:21:10:93:91:7b:75:0d:a8:b0:51:a1:b8:2c: |
| 87:b9:1c:9f:63:63:7a:f5:03:a3:89:4c:5e:b5:03: |
| e9:50:32:c2:e2:30:68:9e:16:ec:ee:70:15:74:47: |
| 0f:cd:ea:5d:61:28:1d:0b:3f:37:39:83:ae:f0:64: |
| 05:83:15:e6:2d:cb:e9:69:1d:98:bd:3a:cf:25:f6: |
| 21:a2:cf:e8:57:ac:bb:97:32:66:51:bb:c3:3f:4c: |
| f9:e8:ac:27:30:00:e5:e3:f5:64:f1:e4:f2:79:93: |
| 6a:56:f6:99:28:81:f2:23:13:ac:97:e2:39:d0:80: |
| 91:8e:f2:c5:30:cd:46:71:3c:88:ca:03:b5:74:a2: |
| dc:db:e1:ae:70:2a:42:b1:99:b8:d5:48:60:2f:1e: |
| da:d3:1f:27:8b:6c:12:40:3d:5d:eb:0d:e8:f0:e3: |
| f0:4a:8b:cd:74:62:e8:06:44:ca:d8:5e:2a:6d:09: |
| 4d:7b:8e:47:1c:04:12:da:ea:e5:6f:6c:41:2c:23: |
| 1d:39:83:d0:44:a5:7c:c6:13:0e:6c:73:2a:06:71: |
| 4f:65:ba:b1:5e:db:d3:ec:ca:ae:40:5e:24:87:63: |
| 2d:ae:4b:d5:f6:4c:25:fc:3f:d9:6e:96:65:c8:b2: |
| 8b:1a:a3:ed:33:b4:3a:f3:cc:4a:c5:fc:66:81:3f: |
| 89:59 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 34:04:CA:F4:40:13:44:0C:86:E8:1F:47:3F:F0:E8:23:D6:EE:02:09 |
| X509v3 Authority Key Identifier: |
| keyid:4E:42:54:6A:32:D3:BE:9E:70:41:47:41:3E:90:BA:86:3F:D4:FD:6C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| X509v3 Extended Key Usage: |
| Netscape Server Gated Crypto |
| Signature Algorithm: sha256WithRSAEncryption |
| 7f:e2:ea:6e:14:1d:04:11:db:3d:38:33:06:35:a2:b9:59:76: |
| 2f:ce:57:b6:71:23:01:d0:ab:dc:de:b6:43:97:13:bb:f1:a4: |
| d6:f3:83:48:dc:b3:bb:5b:ed:bb:42:cd:80:30:2a:84:da:7e: |
| 87:0b:b5:d9:c9:1f:bf:3a:2a:66:35:a4:77:0c:cb:32:98:d7: |
| d3:e8:bb:72:7d:f5:78:f2:1b:62:57:8e:20:d0:aa:bb:f5:45: |
| 4a:2d:60:68:05:17:69:22:9f:60:75:0b:c9:28:79:c9:98:e0: |
| 6a:a9:8c:8a:35:4c:8d:d3:7f:81:25:fa:2c:4d:e5:43:84:58: |
| 86:50:08:95:d7:2b:23:43:22:f8:26:65:43:ad:2f:d9:f2:37: |
| 20:cb:cf:8f:f4:b9:cc:db:c8:00:05:81:8e:87:2d:81:9d:85: |
| 92:7d:0a:ad:91:31:ad:5b:0b:09:ff:36:ec:e7:eb:6f:35:a3: |
| 67:0c:ce:a4:6a:f5:12:6b:7c:41:a8:50:fd:5d:d9:10:37:96: |
| a6:b9:f4:9b:69:8e:d1:8b:88:90:69:c4:ad:79:a2:5b:4e:fb: |
| e2:97:06:bf:0c:9a:36:47:53:09:f4:e0:d5:07:67:b1:b9:50: |
| 69:c4:0d:3c:cc:dc:69:6f:da:12:c0:2c:e4:30:a6:ca:57:c7: |
| fb:11:ef:08 |
| -----BEGIN CERTIFICATE----- |
| MIIDljCCAn6gAwIBAgIUQuAeNnVAEhYZjQeoP5v/4Vm8aqAwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBAJohEJORe3UNqLBRobgsh7kcn2NjevUDo4lMXrUD6VAywuIw |
| aJ4W7O5wFXRHD83qXWEoHQs/NzmDrvBkBYMV5i3L6WkdmL06zyX2IaLP6Fesu5cy |
| ZlG7wz9M+eisJzAA5eP1ZPHk8nmTalb2mSiB8iMTrJfiOdCAkY7yxTDNRnE8iMoD |
| tXSi3NvhrnAqQrGZuNVIYC8e2tMfJ4tsEkA9XesN6PDj8EqLzXRi6AZEytheKm0J |
| TXuORxwEEtrq5W9sQSwjHTmD0ESlfMYTDmxzKgZxT2W6sV7b0+zKrkBeJIdjLa5L |
| 1fZMJfw/2W6WZciyixqj7TO0OvPMSsX8ZoE/iVkCAwEAAaOB4TCB3jAdBgNVHQ4E |
| FgQUNATK9EATRAyG6B9HP/DoI9buAgkwHwYDVR0jBBgwFoAUTkJUajLTvp5wQUdB |
| PpC6hj/U/WwwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MBQGA1UdJQQNMAsGCWCGSAGG+EIEATANBgkqhkiG9w0BAQsFAAOCAQEAf+LqbhQd |
| BBHbPTgzBjWiuVl2L85XtnEjAdCr3N62Q5cTu/Gk1vODSNyzu1vtu0LNgDAqhNp+ |
| hwu12ckfvzoqZjWkdwzLMpjX0+i7cn31ePIbYleOINCqu/VFSi1gaAUXaSKfYHUL |
| ySh5yZjgaqmMijVMjdN/gSX6LE3lQ4RYhlAIldcrI0Mi+CZlQ60v2fI3IMvPj/S5 |
| zNvIAAWBjoctgZ2Fkn0KrZExrVsLCf827OfrbzWjZwzOpGr1Emt8QahQ/V3ZEDeW |
| prn0m2mO0YuIkGnErXmiW0774pcGvwyaNkdTCfTg1QdnsblQacQNPMzcaW/aEsAs |
| 5DCmylfH+xHvCA== |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 42:e0:1e:36:75:40:12:16:19:8d:07:a8:3f:9b:ff:e1:59:bc:6a:9f |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:e2:b0:53:05:80:84:a4:62:d7:02:96:95:55:ad: |
| 63:c9:cd:d7:46:41:1a:cb:b7:0d:6c:70:75:05:e6: |
| ea:a8:f6:64:dd:9e:b8:f7:a3:da:05:50:14:ad:0b: |
| fd:1f:8d:7f:d0:03:ce:ec:7d:de:f3:5e:eb:8b:f0: |
| db:98:70:cc:c2:c0:a9:f7:2c:e7:27:04:a5:79:10: |
| 47:6d:a7:80:22:ba:0e:0b:28:e5:2a:f1:69:14:a2: |
| dd:a4:a8:ac:67:76:a0:db:8b:78:c0:0b:7e:2c:9c: |
| 65:f6:e5:40:b7:c0:ca:b3:f0:1e:74:69:77:45:38: |
| e1:8c:de:c9:1f:fc:67:28:ee:22:ae:4d:3d:8c:6b: |
| 63:62:9f:bf:ef:67:7d:e6:ee:a4:d7:41:c2:62:c5: |
| f2:3c:49:af:f9:44:74:b4:a7:26:f8:bd:ed:57:ec: |
| ed:16:2c:42:77:3d:85:69:e8:48:7e:d7:70:05:21: |
| b9:15:96:0b:5a:5d:ac:ee:64:46:1b:4c:eb:58:b0: |
| fd:48:fe:c1:02:e7:d0:c0:0b:52:aa:e7:51:9c:93: |
| 91:46:05:ed:23:2e:c3:0b:0e:50:0e:6e:38:ac:31: |
| 69:7d:70:d2:40:dd:7d:41:3e:08:31:78:c6:e3:57: |
| 1d:c5:53:e7:91:6d:de:bc:de:3f:2e:72:de:e2:a0: |
| 63:0b |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 4E:42:54:6A:32:D3:BE:9E:70:41:47:41:3E:90:BA:86:3F:D4:FD:6C |
| X509v3 Authority Key Identifier: |
| keyid:4E:42:54:6A:32:D3:BE:9E:70:41:47:41:3E:90:BA:86:3F:D4:FD:6C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 73:95:fc:25:76:e5:1f:f2:9f:7d:12:fa:a3:ab:eb:ac:1f:7c: |
| 77:20:f5:d9:cc:4c:d9:a5:b4:5a:ce:41:33:a8:7f:33:93:97: |
| aa:ba:6a:f8:95:a2:54:f0:09:c0:56:bf:2c:91:22:b1:87:26: |
| 03:08:3e:a8:53:64:3b:f8:ff:a0:67:e1:62:28:22:73:c2:a1: |
| ed:5e:62:a6:05:ba:c0:dd:4b:5c:a0:88:f6:1e:54:f4:7d:85: |
| fb:02:d6:cd:32:2c:0c:a9:cd:f1:ac:26:ff:15:30:f5:fc:48: |
| 7a:f7:bf:69:b0:ce:36:32:e4:2b:1d:9b:7d:1c:8c:aa:e2:17: |
| a3:e4:30:26:14:9a:18:91:07:f2:85:90:cf:8c:32:9c:56:e4: |
| 2c:99:e8:29:04:5a:b7:b5:84:2e:cd:df:b4:b5:0e:8c:1e:75: |
| d2:45:d3:3a:40:97:78:f2:96:3e:57:05:fb:e0:b5:24:48:25: |
| 6b:ef:00:99:70:8b:6a:ae:11:28:5e:fc:08:fc:3d:08:ef:e1: |
| f8:c5:4b:c1:7b:3e:44:dd:3c:1f:26:00:18:f0:e8:9e:60:1c: |
| 34:6b:ab:83:22:28:50:9f:a9:1d:bd:b1:16:b7:4b:f1:38:07: |
| 92:43:0d:a9:63:42:0f:34:73:04:98:73:be:66:dc:1d:f1:03: |
| 64:6b:24:a4 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUQuAeNnVAEhYZjQeoP5v/4Vm8ap8wDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQDisFMFgISkYtcClpVVrWPJzddGQRrLtw1scHUF5uqo9mTdnrj3o9oFUBSt |
| C/0fjX/QA87sfd7zXuuL8NuYcMzCwKn3LOcnBKV5EEdtp4Aiug4LKOUq8WkUot2k |
| qKxndqDbi3jAC34snGX25UC3wMqz8B50aXdFOOGM3skf/Gco7iKuTT2Ma2Nin7/v |
| Z33m7qTXQcJixfI8Sa/5RHS0pyb4ve1X7O0WLEJ3PYVp6Eh+13AFIbkVlgtaXazu |
| ZEYbTOtYsP1I/sEC59DAC1Kq51Gck5FGBe0jLsMLDlAObjisMWl9cNJA3X1BPggx |
| eMbjVx3FU+eRbd683j8uct7ioGMLAgMBAAGjgcswgcgwHQYDVR0OBBYEFE5CVGoy |
| 076ecEFHQT6QuoY/1P1sMB8GA1UdIwQYMBaAFE5CVGoy076ecEFHQT6QuoY/1P1s |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEAc5X8JXblH/KffRL6o6vrrB98dyD12cxM2aW0Ws5BM6h/M5OX |
| qrpq+JWiVPAJwFa/LJEisYcmAwg+qFNkO/j/oGfhYigic8Kh7V5ipgW6wN1LXKCI |
| 9h5U9H2F+wLWzTIsDKnN8awm/xUw9fxIeve/abDONjLkKx2bfRyMquIXo+QwJhSa |
| GJEH8oWQz4wynFbkLJnoKQRat7WELs3ftLUOjB510kXTOkCXePKWPlcF++C1JEgl |
| a+8AmXCLaq4RKF78CPw9CO/h+MVLwXs+RN08HyYAGPDonmAcNGurgyIoUJ+pHb2x |
| FrdL8TgHkkMNqWNCDzRzBJhzvmbcHfEDZGskpA== |
| -----END CERTIFICATE----- |