| [Created by: generate-chains.py] |
| |
| Certificate chain where the root certificate lacks a basic constraints |
| extension. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 6f:30:93:e0:af:42:20:f7:92:d9:8d:63:e4:7e:ee:e3:df:49:cd:56 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:e0:2c:39:1a:67:64:64:af:b8:19:4f:41:9e:78: |
| a6:a8:fc:a4:43:70:a7:7c:23:f9:27:a0:7f:98:37: |
| e7:ee:fe:be:2d:82:65:9e:46:15:1e:fc:3d:70:36: |
| 96:47:69:6a:c0:51:c5:f1:59:2a:d7:1e:3f:b3:2e: |
| df:ac:af:89:16:45:ed:71:ae:38:04:4d:5e:e7:b8: |
| d9:a1:45:14:a5:f9:a4:f7:e3:e7:e4:e9:ac:7e:82: |
| 95:e6:5c:8e:ac:da:14:d5:2f:04:ed:48:f7:56:4b: |
| 5a:98:72:0f:07:66:ca:17:a5:0e:b7:05:64:3b:6a: |
| 97:ad:b1:7e:4d:b3:8c:d4:2b:23:3d:88:bb:c9:80: |
| 04:d9:5b:1a:36:37:ab:d2:c7:06:a8:81:6f:62:b7: |
| c1:74:74:8e:ee:f6:6b:c0:15:28:44:50:85:dc:8d: |
| 3b:e7:0b:82:9d:bd:db:20:69:1a:55:68:48:0e:84: |
| 2a:25:26:ca:01:ad:16:7f:3c:30:d4:5b:47:9a:86: |
| fe:fc:90:b5:d0:bb:d3:ee:af:9a:80:3c:4c:da:46: |
| c8:db:36:68:89:51:fe:76:78:cf:22:eb:ce:62:d4: |
| 2c:2b:c7:7c:24:48:64:ca:9b:91:b2:90:fc:c9:29: |
| 65:70:83:60:05:1a:32:70:ca:12:f3:70:52:dd:3e: |
| 82:b1 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 98:FA:6D:F3:B3:9E:A3:B9:81:22:1C:C5:19:24:06:BC:D9:D6:92:ED |
| X509v3 Authority Key Identifier: |
| keyid:C1:E9:0B:DE:AA:27:20:FA:0B:FF:DB:77:09:96:1E:9B:2C:0D:F7:70 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| dc:98:1f:bb:fe:44:0f:10:3f:47:46:4e:e3:3d:09:c0:5f:75: |
| 1a:c1:84:c8:83:c3:02:d4:dd:f2:1d:00:ac:c5:d4:e8:f7:cd: |
| 53:f6:56:44:a6:82:22:50:ba:d4:5e:e8:a2:9b:95:33:8f:0a: |
| 09:e9:a9:3d:d5:d6:a8:37:7b:ff:8c:20:c9:81:87:79:57:39: |
| bc:4c:a5:8a:0b:ca:1b:7c:23:51:95:b2:2a:b6:23:a6:00:98: |
| c1:28:c2:5a:35:86:b6:ad:fa:4d:84:97:85:10:e5:ed:f7:7b: |
| 1f:ac:93:4c:a0:78:f2:d1:5e:31:30:1c:4b:87:35:d9:51:d6: |
| c2:ff:3e:33:38:f8:c3:cd:47:d5:60:b6:ca:53:bb:79:b6:29: |
| 3b:57:1a:9e:38:7e:b5:5d:e6:31:41:54:3e:73:48:94:33:2c: |
| f2:87:b7:1f:a9:1c:b7:35:94:c0:6f:5c:51:80:b1:24:97:21: |
| ef:56:84:d1:93:bb:07:eb:18:7a:60:84:32:d2:c3:c0:fd:4f: |
| 63:d6:54:5f:2b:dc:66:dc:ac:3c:bc:46:74:04:5b:de:db:9b: |
| 5e:6a:98:10:f8:3e:a3:41:8c:69:6e:49:66:07:f4:b8:58:2d: |
| e4:8e:c7:ab:42:a4:20:fb:8f:49:11:7e:38:a1:4e:43:da:36: |
| df:46:2e:d6 |
| -----BEGIN CERTIFICATE----- |
| MIIDoDCCAoigAwIBAgIUbzCT4K9CIPeS2Y1j5H7u499JzVYwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEA4Cw5GmdkZK+4GU9BnnimqPykQ3CnfCP5J6B/mDfn7v6+ |
| LYJlnkYVHvw9cDaWR2lqwFHF8Vkq1x4/sy7frK+JFkXtca44BE1e57jZoUUUpfmk |
| 9+Pn5OmsfoKV5lyOrNoU1S8E7Uj3VktamHIPB2bKF6UOtwVkO2qXrbF+TbOM1Csj |
| PYi7yYAE2VsaNjer0scGqIFvYrfBdHSO7vZrwBUoRFCF3I075wuCnb3bIGkaVWhI |
| DoQqJSbKAa0Wfzww1FtHmob+/JC10LvT7q+agDxM2kbI2zZoiVH+dnjPIuvOYtQs |
| K8d8JEhkypuRspD8ySllcINgBRoycMoS83BS3T6CsQIDAQABo4HpMIHmMB0GA1Ud |
| DgQWBBSY+m3zs56juYEiHMUZJAa82daS7TAfBgNVHSMEGDAWgBTB6Qveqicg+gv/ |
| 23cJlh6bLA33cDA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF |
| oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD |
| ggEBANyYH7v+RA8QP0dGTuM9CcBfdRrBhMiDwwLU3fIdAKzF1Oj3zVP2VkSmgiJQ |
| utRe6KKblTOPCgnpqT3V1qg3e/+MIMmBh3lXObxMpYoLyht8I1GVsiq2I6YAmMEo |
| wlo1hrat+k2El4UQ5e33ex+sk0ygePLRXjEwHEuHNdlR1sL/PjM4+MPNR9VgtspT |
| u3m2KTtXGp44frVd5jFBVD5zSJQzLPKHtx+pHLc1lMBvXFGAsSSXIe9WhNGTuwfr |
| GHpghDLSw8D9T2PWVF8r3GbcrDy8RnQEW97bm15qmBD4PqNBjGluSWYH9LhYLeSO |
| x6tCpCD7j0kRfjihTkPaNt9GLtY= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 08:55:78:34:50:50:34:15:fe:10:58:e3:0b:cb:6b:c3:c6:56:3d:16 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:de:e6:c0:76:c5:4c:d0:8e:b3:87:07:91:66:aa: |
| f1:ae:93:8f:a2:83:2d:d5:05:91:b8:52:f6:2d:a5: |
| ff:fd:95:ee:85:0f:85:c3:eb:d7:8e:f7:6f:2a:c0: |
| 15:de:ae:1e:62:62:12:64:c3:f7:c1:0f:05:a4:0f: |
| b7:33:69:92:66:57:93:4f:4e:04:43:bb:23:bb:c3: |
| c6:29:0b:42:68:1f:26:81:77:2d:91:f6:62:b8:e3: |
| 9a:2c:78:2d:7c:1f:3a:f5:ce:f2:c2:75:39:5a:b7: |
| c2:23:f5:f5:ee:7e:a5:7a:45:c4:d4:1e:12:c8:a6: |
| 40:44:64:07:ff:33:a8:ce:41:df:77:c4:01:f5:c5: |
| 41:6b:4e:a0:ee:9d:36:63:5a:b0:e8:38:bb:bd:fb: |
| a5:7f:6e:5c:6d:c6:62:dd:05:2f:90:d4:fb:5b:18: |
| 71:84:57:e2:c9:d3:cc:c8:36:5f:d1:78:20:4c:68: |
| 83:1f:df:64:a3:11:9f:e8:bd:d4:bb:8e:04:63:0d: |
| 3d:6d:a9:43:30:5d:f0:ca:e3:62:8f:11:9e:8b:8f: |
| de:9a:6e:6d:03:e5:8c:0f:6f:00:6e:1a:72:2c:13: |
| e0:a1:78:93:ef:2c:6d:2c:0a:8a:5c:02:65:50:36: |
| fa:da:07:ba:36:b9:21:eb:01:14:97:ab:19:60:be: |
| 97:6b |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| C1:E9:0B:DE:AA:27:20:FA:0B:FF:DB:77:09:96:1E:9B:2C:0D:F7:70 |
| X509v3 Authority Key Identifier: |
| keyid:96:9F:CB:9C:5C:0D:06:9D:F1:3A:21:D5:22:F7:4B:75:2C:7D:D3:D3 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 9b:6f:11:4f:45:79:f3:a4:a8:35:ab:25:fd:ff:fd:a0:c5:9a: |
| d1:0a:5d:b0:60:f2:2e:37:48:9b:c8:74:1a:58:57:06:bb:0b: |
| f2:98:04:5d:69:88:a2:01:20:b1:07:eb:80:b6:9b:48:0a:0b: |
| 38:b1:b5:e5:9c:85:ea:88:61:27:00:29:41:31:fc:77:5c:ff: |
| 3c:9e:ad:f7:83:c4:77:7f:50:58:18:7b:fb:43:36:53:a1:92: |
| 3c:a6:75:0e:04:eb:b3:63:27:32:3c:e7:a5:95:d1:99:b7:90: |
| bc:d4:20:2f:44:86:27:74:6d:c4:00:04:bd:f9:5b:e5:48:30: |
| d0:61:db:e6:f7:66:96:45:90:f3:07:1e:60:c5:06:c4:60:52: |
| ec:1a:87:d9:19:e2:5d:43:b2:1e:48:da:5c:ae:7f:c4:f3:30: |
| ac:f4:77:47:cd:30:a1:46:a4:ff:60:32:c8:67:f5:92:32:ca: |
| 34:b3:94:13:00:73:30:80:6a:b1:a2:16:ca:31:40:74:11:0d: |
| 91:a0:94:36:36:21:c5:91:0e:45:7b:fa:17:13:64:b3:ab:70: |
| c3:f1:a7:e8:dd:8b:c6:bf:dc:44:23:b7:e1:1a:f0:9d:54:00: |
| 31:66:23:a3:f5:63:7e:f2:95:37:e9:3e:d0:7d:44:cd:41:8d: |
| a7:ca:c9:86 |
| -----BEGIN CERTIFICATE----- |
| MIIDgDCCAmigAwIBAgIUCFV4NFBQNBX+EFjjC8trw8ZWPRYwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBAN7mwHbFTNCOs4cHkWaq8a6Tj6KDLdUFkbhS9i2l//2V7oUP |
| hcPr1473byrAFd6uHmJiEmTD98EPBaQPtzNpkmZXk09OBEO7I7vDxikLQmgfJoF3 |
| LZH2Yrjjmix4LXwfOvXO8sJ1OVq3wiP19e5+pXpFxNQeEsimQERkB/8zqM5B33fE |
| AfXFQWtOoO6dNmNasOg4u737pX9uXG3GYt0FL5DU+1sYcYRX4snTzMg2X9F4IExo |
| gx/fZKMRn+i91LuOBGMNPW2pQzBd8MrjYo8RnouP3ppubQPljA9vAG4aciwT4KF4 |
| k+8sbSwKilwCZVA2+toHuja5IesBFJerGWC+l2sCAwEAAaOByzCByDAdBgNVHQ4E |
| FgQUwekL3qonIPoL/9t3CZYemywN93AwHwYDVR0jBBgwFoAUlp/LnFwNBp3xOiHV |
| IvdLdSx909MwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MA0GCSqGSIb3DQEBCwUAA4IBAQCbbxFPRXnzpKg1qyX9//2gxZrRCl2wYPIuN0ib |
| yHQaWFcGuwvymARdaYiiASCxB+uAtptICgs4sbXlnIXqiGEnAClBMfx3XP88nq33 |
| g8R3f1BYGHv7QzZToZI8pnUOBOuzYycyPOelldGZt5C81CAvRIYndG3EAAS9+Vvl |
| SDDQYdvm92aWRZDzBx5gxQbEYFLsGofZGeJdQ7IeSNpcrn/E8zCs9HdHzTChRqT/ |
| YDLIZ/WSMso0s5QTAHMwgGqxohbKMUB0EQ2RoJQ2NiHFkQ5Fe/oXE2Szq3DD8afo |
| 3YvGv9xEI7fhGvCdVAAxZiOj9WN+8pU36T7QfUTNQY2nysmG |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 08:55:78:34:50:50:34:15:fe:10:58:e3:0b:cb:6b:c3:c6:56:3d:15 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b7:0e:0c:2e:e1:46:5f:9d:dc:3a:16:51:56:2f: |
| 4c:5c:f7:92:93:2a:a1:bf:d1:bd:15:cd:8a:f8:e3: |
| 8a:a4:41:fa:9f:de:85:84:ff:cd:5b:7d:13:33:ca: |
| b8:8b:34:f6:85:73:a5:23:ef:ba:61:ca:18:9f:08: |
| ea:39:17:18:69:dd:3a:21:57:a5:6d:b2:63:a7:42: |
| ba:b6:8a:4e:e2:1f:ab:88:4f:ae:ca:1a:66:b8:79: |
| d2:94:73:b9:46:c4:be:89:31:53:c1:d8:b4:cc:1c: |
| 6b:d9:0c:a3:5a:e3:a5:20:7c:a0:bd:d4:14:7a:14: |
| 29:0c:b7:40:da:f5:fc:af:c3:91:65:78:b3:41:ee: |
| f5:9f:0b:22:0b:c1:f5:12:94:89:25:13:1b:dd:a3: |
| a3:44:7a:57:7c:40:17:e0:66:33:a9:27:7c:2e:6f: |
| 9f:38:d3:fa:4d:67:80:39:33:36:e5:41:fd:ac:6b: |
| 37:d0:84:75:e2:84:93:3b:8d:ce:8c:22:98:4e:05: |
| 64:7f:df:fb:96:85:c5:ea:0e:11:24:f9:84:bd:17: |
| ce:15:30:86:ad:c6:de:2c:48:84:d0:45:d4:0b:1f: |
| 13:e9:a4:ca:e7:69:c0:24:a1:23:5e:6b:4e:76:b4: |
| bd:d7:0d:96:94:b6:d9:8e:25:9b:1e:c9:a2:00:10: |
| 47:77 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 96:9F:CB:9C:5C:0D:06:9D:F1:3A:21:D5:22:F7:4B:75:2C:7D:D3:D3 |
| X509v3 Authority Key Identifier: |
| keyid:96:9F:CB:9C:5C:0D:06:9D:F1:3A:21:D5:22:F7:4B:75:2C:7D:D3:D3 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| Signature Algorithm: sha256WithRSAEncryption |
| 39:e3:03:46:2c:4c:a7:29:17:56:98:74:e3:d8:0e:3d:83:55: |
| fd:9e:25:75:9f:88:d5:23:89:32:00:d2:73:3b:dc:ab:7f:6e: |
| 65:7e:e6:b7:13:c1:77:4b:71:26:dc:99:2a:2f:d6:4d:ba:b4: |
| d3:34:39:13:26:2c:b1:f9:d4:77:92:35:10:fd:92:e5:42:96: |
| 56:3b:8d:91:11:f3:d9:fe:ac:f0:7b:78:d5:fb:ad:08:51:31: |
| b4:43:47:cc:e8:0b:e3:ca:f0:9f:2c:7f:0b:7f:79:a0:ad:f6: |
| 49:85:0c:78:cd:65:03:15:9d:3b:70:89:30:aa:cd:94:9f:59: |
| 33:c7:29:b0:86:a0:cc:9c:80:3c:a1:cf:df:cb:85:d4:32:44: |
| a1:5f:90:d7:75:ad:52:d9:30:31:ee:80:b5:d5:3b:bd:33:6b: |
| 2b:5b:2c:ed:c2:d2:57:7d:12:91:c6:3e:c9:28:76:a7:2e:17: |
| 05:a5:74:40:5c:05:df:82:7c:54:33:9a:47:18:ae:77:c5:49: |
| 4c:2c:f3:24:17:12:a0:f9:24:c7:73:e3:84:4c:24:8b:b3:b9: |
| 67:e7:c5:85:e1:76:45:5a:d7:6b:76:57:af:4b:6f:24:52:a5: |
| 8b:bf:9b:68:9d:94:38:03:2c:c4:b0:85:b9:28:29:7c:c7:7b: |
| b1:15:a9:2e |
| -----BEGIN CERTIFICATE----- |
| MIIDZzCCAk+gAwIBAgIUCFV4NFBQNBX+EFjjC8trw8ZWPRUwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQC3Dgwu4UZfndw6FlFWL0xc95KTKqG/0b0VzYr444qkQfqf3oWE/81bfRMz |
| yriLNPaFc6Uj77phyhifCOo5Fxhp3TohV6VtsmOnQrq2ik7iH6uIT67KGma4edKU |
| c7lGxL6JMVPB2LTMHGvZDKNa46UgfKC91BR6FCkMt0Da9fyvw5FleLNB7vWfCyIL |
| wfUSlIklExvdo6NEeld8QBfgZjOpJ3wub5840/pNZ4A5MzblQf2sazfQhHXihJM7 |
| jc6MIphOBWR/3/uWhcXqDhEk+YS9F84VMIatxt4sSITQRdQLHxPppMrnacAkoSNe |
| a052tL3XDZaUttmOJZseyaIAEEd3AgMBAAGjgbowgbcwHQYDVR0OBBYEFJafy5xc |
| DQad8Toh1SL3S3UsfdPTMB8GA1UdIwQYMBaAFJafy5xcDQad8Toh1SL3S3UsfdPT |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDQYJKoZIhvcNAQELBQADggEBADnjA0Ys |
| TKcpF1aYdOPYDj2DVf2eJXWfiNUjiTIA0nM73Kt/bmV+5rcTwXdLcSbcmSov1k26 |
| tNM0ORMmLLH51HeSNRD9kuVCllY7jZER89n+rPB7eNX7rQhRMbRDR8zoC+PK8J8s |
| fwt/eaCt9kmFDHjNZQMVnTtwiTCqzZSfWTPHKbCGoMycgDyhz9/LhdQyRKFfkNd1 |
| rVLZMDHugLXVO70zaytbLO3C0ld9EpHGPskodqcuFwWldEBcBd+CfFQzmkcYrnfF |
| SUws8yQXEqD5JMdz44RMJIuzuWfnxYXhdkVa12t2V69LbyRSpYu/m2idlDgDLMSw |
| hbkoKXzHe7EVqS4= |
| -----END CERTIFICATE----- |