| [Created by: generate-chains.py] |
| |
| Certificate chain where the target certificate uses a RSA key and has the single key usage decipherOnly |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 72:41:46:e2:6f:47:ae:e6:ef:ca:22:1e:bc:61:9b:ed:27:e8:61:43 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:c8:f4:c3:ff:ae:99:44:dc:07:19:62:59:1d:ba: |
| 0e:13:d0:78:b6:a0:7f:ca:74:4f:a4:c2:5c:de:04: |
| e2:ea:22:d9:28:4d:45:54:14:4c:e8:56:d4:7b:8a: |
| 64:fa:f9:e4:14:23:c0:ad:cc:25:63:38:59:55:00: |
| 51:e2:82:ac:ae:47:3b:da:e2:95:79:1c:b5:96:ca: |
| d2:4a:3c:f7:b8:7a:cc:9e:e2:8d:d0:17:0b:bc:6e: |
| 0e:3c:c2:05:3a:21:64:00:db:c3:08:b5:e6:cf:78: |
| 5d:2b:3c:ba:54:a9:5a:64:4e:1b:d8:3a:eb:14:d3: |
| 5a:ad:da:6f:d6:a2:e1:7e:0f:ff:ce:71:85:14:c7: |
| fe:54:65:f9:c6:47:73:ae:6e:9b:81:e7:55:cb:7e: |
| ea:76:a8:48:f9:62:25:40:0e:d1:cf:90:8f:68:f7: |
| 94:20:69:a4:14:8a:14:24:53:3d:55:b8:5a:31:ae: |
| 7c:36:74:d2:c2:2c:ce:7b:e9:83:69:56:16:ec:f9: |
| bb:7c:b0:14:6f:95:12:da:7c:b0:23:b8:5d:41:dc: |
| bc:ad:24:d9:b6:6a:3f:82:6c:74:a0:73:68:5a:d3: |
| e4:f2:0a:93:b9:1c:ee:bb:ce:e2:d8:86:86:8e:e0: |
| 24:58:e3:ec:f5:e3:84:36:e9:a6:62:72:5c:4b:0c: |
| 9c:15 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| F1:A9:E2:E9:58:C3:31:AD:E2:60:9B:55:C0:A2:0A:80:7B:15:10:2D |
| X509v3 Authority Key Identifier: |
| keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:38 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Decipher Only |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| ac:21:39:11:aa:32:47:be:ba:73:89:81:ea:58:ba:fc:bb:07: |
| b2:ba:51:b3:37:f6:85:35:8f:fa:c8:44:69:a2:57:c3:8f:7f: |
| dd:bd:3d:72:ac:bd:e6:e4:2e:b1:44:3e:2c:50:9d:9a:5d:9e: |
| 35:60:b2:f9:35:46:69:9c:66:8b:8d:8c:55:90:46:3d:ec:e4: |
| f8:d0:ba:0c:d9:26:99:fe:83:88:1c:81:12:bd:73:ba:ce:3c: |
| e9:7a:9a:82:e9:df:ef:2b:ff:81:fc:99:b4:d9:6e:ab:2f:38: |
| 66:6c:e8:25:cd:a5:2e:e3:64:d4:f2:94:c3:3a:07:ed:29:f0: |
| 30:ba:76:ad:8e:66:6f:1e:bc:40:a5:32:5f:c9:16:02:51:83: |
| 61:e6:b2:3b:63:b6:16:36:d7:ca:52:18:c7:dc:80:f2:da:5f: |
| b6:77:2d:8d:f7:a9:d1:65:bc:5b:50:f7:92:0a:89:12:f2:48: |
| 30:7b:bc:ba:8c:58:d4:29:31:14:97:f0:48:72:4b:52:91:c3: |
| 74:a3:1a:20:1d:a6:50:f3:09:55:7e:e8:2b:42:39:87:0f:e7: |
| 21:31:d5:76:0e:0c:38:55:77:88:e6:f5:6f:80:f0:d4:29:2d: |
| cc:21:7c:c6:f7:bf:11:9f:8d:c3:1b:d3:14:de:e6:cd:9b:02: |
| ad:6d:c7:fa |
| -----BEGIN CERTIFICATE----- |
| MIIDlzCCAn+gAwIBAgIUckFG4m9HrubvyiIevGGb7SfoYUMwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAyPTD/66ZRNwHGWJZHboOE9B4tqB/ynRPpMJc3gTi6iLZ |
| KE1FVBRM6FbUe4pk+vnkFCPArcwlYzhZVQBR4oKsrkc72uKVeRy1lsrSSjz3uHrM |
| nuKN0BcLvG4OPMIFOiFkANvDCLXmz3hdKzy6VKlaZE4b2DrrFNNardpv1qLhfg// |
| znGFFMf+VGX5xkdzrm6bgedVy37qdqhI+WIlQA7Rz5CPaPeUIGmkFIoUJFM9Vbha |
| Ma58NnTSwizOe+mDaVYW7Pm7fLAUb5US2nywI7hdQdy8rSTZtmo/gmx0oHNoWtPk |
| 8gqTuRzuu87i2IaGjuAkWOPs9eOENummYnJcSwycFQIDAQABo4HgMIHdMB0GA1Ud |
| DgQWBBTxqeLpWMMxreJgm1XAogqAexUQLTAfBgNVHSMEGDAWgBSAFB4ExqDEKCUw |
| KFm9QBplBwUYODA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA8GA1UdDwEB/wQFAwMH |
| AIAwEwYDVR0lBAwwCgYIKwYBBQUHAwEwDQYJKoZIhvcNAQELBQADggEBAKwhORGq |
| Mke+unOJgepYuvy7B7K6UbM39oU1j/rIRGmiV8OPf929PXKsvebkLrFEPixQnZpd |
| njVgsvk1RmmcZouNjFWQRj3s5PjQugzZJpn+g4gcgRK9c7rOPOl6moLp3+8r/4H8 |
| mbTZbqsvOGZs6CXNpS7jZNTylMM6B+0p8DC6dq2OZm8evEClMl/JFgJRg2Hmsjtj |
| thY218pSGMfcgPLaX7Z3LY33qdFlvFtQ95IKiRLySDB7vLqMWNQpMRSX8EhyS1KR |
| w3SjGiAdplDzCVV+6CtCOYcP5yEx1XYODDhVd4jm9W+A8NQpLcwhfMb3vxGfjcMb |
| 0xTe5s2bAq1tx/o= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 31:2c:98:11:ad:7d:7c:47:ab:8a:21:e3:43:a7:12:a0:c9:a9:32:4f |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:ad:ea:23:0c:dc:31:55:3d:23:7a:a3:0f:5e:16: |
| 9e:62:44:e4:28:bf:0b:b0:76:a3:5e:71:e7:a9:85: |
| 52:1e:ae:3b:2b:21:0d:95:35:73:c2:c0:a0:78:13: |
| d3:fc:27:57:8a:98:de:83:e3:8f:a3:13:a5:20:a7: |
| a9:bf:c8:f5:02:1b:08:1a:2e:a5:04:7a:11:24:a1: |
| 59:11:3d:c0:3b:57:35:62:cd:2a:41:cd:5c:15:35: |
| ac:c8:66:f8:a9:f2:d4:1c:0c:b4:dc:9d:7b:99:f9: |
| 07:1b:c9:f0:03:6a:6c:71:d8:e6:cb:7a:ec:c7:a7: |
| b7:36:0b:f0:49:22:37:22:f4:77:f3:1a:a6:57:59: |
| 0b:6c:6a:3b:b8:d1:47:df:48:ac:54:ee:82:1e:39: |
| 14:dc:a6:9c:ab:33:b7:87:4f:3b:70:55:af:db:40: |
| e5:26:a9:0f:bc:59:8f:61:92:47:0a:34:73:de:fb: |
| 25:fa:f1:bd:a4:03:35:93:5e:57:a3:a3:3f:13:e6: |
| 09:68:c5:51:29:20:53:b8:5e:fa:8a:ce:e8:0a:ef: |
| 9e:07:6e:55:f7:f6:c1:e7:12:9f:22:c1:72:b8:2a: |
| af:25:34:eb:08:28:36:73:8e:f6:80:70:21:16:8a: |
| 81:2b:69:47:62:c5:ef:7e:dd:80:7c:09:4e:6d:57: |
| 86:4f |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:38 |
| X509v3 Authority Key Identifier: |
| keyid:71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 82:0d:33:af:1d:80:86:1e:a2:8b:52:ac:dd:cd:23:71:f9:ea: |
| ee:a0:05:14:b8:89:70:6c:c4:ff:ad:d2:5d:ab:d5:dd:fa:6f: |
| c9:c9:ef:2d:8e:e7:a1:45:1a:12:c1:b9:64:00:a7:ff:84:c2: |
| 0b:a8:66:b5:28:ab:46:cc:77:05:a8:af:c3:0a:93:5b:49:6a: |
| 4b:f0:01:5d:14:7d:30:ec:ee:6c:c6:cd:33:4e:9e:5b:7b:16: |
| 2f:e2:a8:69:9d:ea:2a:c1:da:c1:fb:6d:61:ab:8e:c2:ec:c9: |
| 58:2b:b2:97:ad:bf:3e:5e:b0:b4:87:20:b5:a0:d1:d5:18:5a: |
| 19:d5:7d:a1:79:78:c8:8a:d7:d7:e3:39:30:27:07:60:e2:bb: |
| ac:39:f0:5f:e5:ea:dd:76:7b:b0:0f:32:e8:4b:a3:bf:40:04: |
| 89:eb:da:1e:2e:ab:7f:04:56:d1:fe:ff:05:a8:ab:53:b5:f3: |
| d0:f7:3a:ea:f0:0f:53:fd:a8:87:ca:0a:53:47:ef:f5:d3:35: |
| d5:54:b0:cd:77:a5:1f:bc:42:84:ba:9d:2a:a1:c4:8f:11:33: |
| 72:33:70:f4:ce:42:77:26:d2:df:aa:6f:5f:d1:9d:dc:30:94: |
| ee:40:76:26:39:87:17:8c:42:a9:a6:ec:fb:1e:2a:26:d4:6f: |
| f4:54:42:f0 |
| -----BEGIN CERTIFICATE----- |
| MIIDgDCCAmigAwIBAgIUMSyYEa19fEeriiHjQ6cSoMmpMk8wDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBAK3qIwzcMVU9I3qjD14WnmJE5Ci/C7B2o15x56mFUh6uOysh |
| DZU1c8LAoHgT0/wnV4qY3oPjj6MTpSCnqb/I9QIbCBoupQR6ESShWRE9wDtXNWLN |
| KkHNXBU1rMhm+Kny1BwMtNyde5n5BxvJ8ANqbHHY5st67MentzYL8EkiNyL0d/Ma |
| pldZC2xqO7jRR99IrFTugh45FNymnKszt4dPO3BVr9tA5SapD7xZj2GSRwo0c977 |
| JfrxvaQDNZNeV6OjPxPmCWjFUSkgU7he+orO6ArvngduVff2wecSnyLBcrgqryU0 |
| 6wgoNnOO9oBwIRaKgStpR2LF737dgHwJTm1Xhk8CAwEAAaOByzCByDAdBgNVHQ4E |
| FgQUgBQeBMagxCglMChZvUAaZQcFGDgwHwYDVR0jBBgwFoAUcVBSNZJp91SxigzB |
| k4c+hOm+XIAwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MA0GCSqGSIb3DQEBCwUAA4IBAQCCDTOvHYCGHqKLUqzdzSNx+eruoAUUuIlwbMT/ |
| rdJdq9Xd+m/Jye8tjuehRRoSwblkAKf/hMILqGa1KKtGzHcFqK/DCpNbSWpL8AFd |
| FH0w7O5sxs0zTp5bexYv4qhpneoqwdrB+21hq47C7MlYK7KXrb8+XrC0hyC1oNHV |
| GFoZ1X2heXjIitfX4zkwJwdg4rusOfBf5erddnuwDzLoS6O/QASJ69oeLqt/BFbR |
| /v8FqKtTtfPQ9zrq8A9T/aiHygpTR+/10zXVVLDNd6UfvEKEup0qocSPETNyM3D0 |
| zkJ3JtLfqm9f0Z3cMJTuQHYmOYcXjEKppuz7Hiom1G/0VELw |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 31:2c:98:11:ad:7d:7c:47:ab:8a:21:e3:43:a7:12:a0:c9:a9:32:4e |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b2:df:0b:0b:a2:8a:9c:9c:68:ad:24:f9:f9:e6: |
| 95:ef:e4:71:1e:00:fb:ec:bf:b1:cb:6e:d6:40:30: |
| 42:7a:38:87:9e:5b:cd:58:3e:b7:31:5c:8d:0d:84: |
| 7a:be:ef:e6:98:ba:4e:c5:ae:2b:2f:66:b2:b2:3f: |
| e7:c0:a8:8b:75:60:61:2a:67:8a:d2:55:72:83:e2: |
| ff:de:76:d6:63:58:79:ba:91:c1:80:e1:06:1b:35: |
| 9c:b3:e9:19:f8:c7:21:80:dd:9e:04:18:35:de:df: |
| 00:80:21:09:06:3c:6c:9a:de:10:d1:fd:4d:2f:27: |
| 5e:56:24:44:67:88:48:e4:25:52:cc:c7:17:3f:69: |
| 1f:76:fc:b1:83:45:48:5d:37:da:80:3e:3d:7f:f6: |
| 8d:ec:83:00:d6:2f:c4:41:5d:79:ae:ad:14:4c:24: |
| b3:5e:1e:fe:ed:e8:39:17:4a:4b:ca:eb:10:5d:6e: |
| af:38:58:b1:12:a5:69:bd:bd:63:dd:f5:21:71:2c: |
| 36:37:72:51:3b:3a:de:8f:1e:a0:e2:6b:45:da:02: |
| ad:7e:04:b7:d3:c8:64:34:c6:f4:08:a0:e5:c9:02: |
| 1b:6f:42:22:be:d3:8b:7b:63:6e:39:c4:97:17:c6: |
| 9a:ba:9e:26:9b:e1:65:a6:4d:4a:93:5e:b2:4e:18: |
| 9d:c1 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80 |
| X509v3 Authority Key Identifier: |
| keyid:71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 98:37:61:72:8b:00:ab:c2:26:90:43:ed:f3:96:29:ef:93:65: |
| f0:cd:00:70:f1:13:96:b8:b7:fe:a0:e7:71:34:24:97:79:c3: |
| de:a1:51:6b:c7:13:79:46:cb:82:52:20:da:88:dc:5f:9d:4b: |
| 79:a3:8b:cd:b2:5d:ee:fc:47:8a:b1:83:a8:b3:a9:bd:24:77: |
| 90:4f:09:cf:50:94:f6:cd:16:f5:6a:16:65:7c:82:3f:e6:88: |
| f0:5e:6e:66:ab:a3:54:b8:54:92:15:ff:bd:8c:de:ed:cb:1a: |
| 47:02:c5:92:0e:74:82:c4:d2:76:52:71:22:84:c9:bf:92:c4: |
| 4c:0d:02:53:5a:56:2b:be:27:87:0f:86:5e:a5:4f:e8:bb:49: |
| ab:29:94:37:03:75:2c:69:9e:9b:63:31:9a:9f:f6:c0:bf:23: |
| f6:17:9f:5c:54:28:f6:d7:4c:3a:ce:0d:b6:aa:35:1f:6e:65: |
| 99:98:34:03:8d:ef:4e:f0:91:9d:f3:fb:db:f8:92:09:dc:fc: |
| f9:ef:07:f3:a7:16:2e:e0:3b:de:49:ff:8b:5d:40:9c:f4:3b: |
| 9c:6b:35:b7:ab:00:cd:c0:0d:b5:55:ea:99:bb:5c:ee:3a:25: |
| f6:22:08:8b:28:22:1e:23:8c:71:c8:cd:04:78:58:a6:46:5e: |
| 12:7f:8f:d5 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUMSyYEa19fEeriiHjQ6cSoMmpMk4wDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQCy3wsLooqcnGitJPn55pXv5HEeAPvsv7HLbtZAMEJ6OIeeW81YPrcxXI0N |
| hHq+7+aYuk7FrisvZrKyP+fAqIt1YGEqZ4rSVXKD4v/edtZjWHm6kcGA4QYbNZyz |
| 6Rn4xyGA3Z4EGDXe3wCAIQkGPGya3hDR/U0vJ15WJERniEjkJVLMxxc/aR92/LGD |
| RUhdN9qAPj1/9o3sgwDWL8RBXXmurRRMJLNeHv7t6DkXSkvK6xBdbq84WLESpWm9 |
| vWPd9SFxLDY3clE7Ot6PHqDia0XaAq1+BLfTyGQ0xvQIoOXJAhtvQiK+04t7Y245 |
| xJcXxpq6niab4WWmTUqTXrJOGJ3BAgMBAAGjgcswgcgwHQYDVR0OBBYEFHFQUjWS |
| afdUsYoMwZOHPoTpvlyAMB8GA1UdIwQYMBaAFHFQUjWSafdUsYoMwZOHPoTpvlyA |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEAmDdhcosAq8ImkEPt85Yp75Nl8M0AcPETlri3/qDncTQkl3nD |
| 3qFRa8cTeUbLglIg2ojcX51LeaOLzbJd7vxHirGDqLOpvSR3kE8Jz1CU9s0W9WoW |
| ZXyCP+aI8F5uZqujVLhUkhX/vYze7csaRwLFkg50gsTSdlJxIoTJv5LETA0CU1pW |
| K74nhw+GXqVP6LtJqymUNwN1LGmem2Mxmp/2wL8j9hefXFQo9tdMOs4Ntqo1H25l |
| mZg0A43vTvCRnfP72/iSCdz8+e8H86cWLuA73kn/i11AnPQ7nGs1t6sAzcANtVXq |
| mbtc7jol9iIIiygiHiOMccjNBHhYpkZeEn+P1Q== |
| -----END CERTIFICATE----- |