| [Created by: generate-chains.py] |
| |
| Certificate chain where the intermediate has a basic constraints extension |
| that indicates it is NOT a CA. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 5d:89:40:ce:2b:53:75:88:ff:8e:84:70:5e:89:c5:8b:d1:5c:22:c2 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:96:d4:6b:47:00:ed:9a:72:03:1f:bc:14:42:63: |
| 28:8d:c9:5a:08:27:59:06:2e:61:d9:28:aa:ed:58: |
| 17:5f:f2:bf:ee:33:ab:74:0b:1c:c3:00:b6:38:96: |
| 96:d0:dc:91:44:ab:1d:fa:e5:99:ed:fe:ee:43:dd: |
| 21:b0:b8:1a:31:70:bb:c6:a5:eb:6e:2e:79:cf:c3: |
| c9:32:f7:39:e5:ff:9f:1e:fd:c8:8c:8f:9d:42:e6: |
| 5d:cc:b1:75:fa:94:f3:f8:df:f8:47:ea:7a:4f:4c: |
| 1d:67:fd:37:2e:75:a3:13:84:00:92:c5:6c:86:66: |
| 80:39:7b:0f:2e:af:14:ce:82:1c:e4:78:7b:f3:d8: |
| f4:b3:b1:d1:7d:5f:ed:19:6f:1d:eb:7e:be:3a:33: |
| e1:b4:86:82:22:05:28:87:85:b8:2b:70:f1:88:45: |
| 6b:b4:fb:d0:f0:0a:e5:45:f6:a8:e2:18:88:74:56: |
| 4c:a7:4b:cb:13:8e:61:8b:1a:c2:a2:2b:2d:24:7a: |
| f0:4c:53:49:8b:98:be:52:31:72:5d:38:e7:8d:36: |
| 7b:bb:34:4d:66:2d:b3:8b:82:85:9f:e6:f9:d8:58: |
| da:0d:e9:d5:d2:be:53:4b:88:ad:58:8a:3b:3c:1d: |
| 53:60:ed:15:50:9c:fd:c3:bf:0c:fc:56:02:8f:06: |
| ab:9d |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 69:F2:C8:4F:15:5E:61:18:40:61:41:B1:88:18:21:B5:77:6F:F9:DE |
| X509v3 Authority Key Identifier: |
| keyid:AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| 36:7f:1c:0e:1d:9b:9a:89:7b:60:a2:50:2c:8d:88:5d:70:5e: |
| 69:6f:46:49:88:87:32:f2:39:97:fd:ce:eb:16:8a:60:09:1f: |
| 3c:35:59:a6:eb:93:bd:3f:5e:8b:41:58:aa:9f:9d:e3:d1:0e: |
| a0:d2:94:2c:a9:62:37:43:b8:b8:f5:d4:9d:69:c0:3f:36:94: |
| 69:41:5b:30:15:52:ef:60:15:fd:15:91:ed:2b:d7:82:37:cb: |
| 43:13:55:f2:82:83:18:b3:92:43:ac:c9:34:b6:12:67:29:48: |
| f3:d3:b7:a9:d8:79:a2:a9:e2:15:96:33:ba:be:06:fc:70:02: |
| c7:1f:34:79:0d:48:5c:54:94:36:85:31:32:39:b6:19:c2:9f: |
| a4:a7:54:13:fe:e2:be:74:73:98:13:bb:64:bd:57:ab:6a:9d: |
| 9b:a7:97:45:2e:c8:fc:1e:70:d7:da:e1:e0:88:2e:51:34:f3: |
| d5:21:a0:0e:1b:56:75:f4:c8:a9:a1:1c:41:d2:28:43:30:2a: |
| cb:c4:f5:85:33:78:5d:d2:b1:40:63:e8:ce:38:ff:c7:79:8b: |
| c3:f9:ee:90:81:44:57:48:5a:88:39:60:c8:85:80:a9:03:72: |
| a1:db:6e:30:72:4f:41:29:67:29:1f:d0:d8:d8:47:18:78:1f: |
| 8a:c9:02:8f |
| -----BEGIN CERTIFICATE----- |
| MIIDoDCCAoigAwIBAgIUXYlAzitTdYj/joRwXonFi9FcIsIwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAltRrRwDtmnIDH7wUQmMojclaCCdZBi5h2Siq7VgXX/K/ |
| 7jOrdAscwwC2OJaW0NyRRKsd+uWZ7f7uQ90hsLgaMXC7xqXrbi55z8PJMvc55f+f |
| Hv3IjI+dQuZdzLF1+pTz+N/4R+p6T0wdZ/03LnWjE4QAksVshmaAOXsPLq8UzoIc |
| 5Hh789j0s7HRfV/tGW8d636+OjPhtIaCIgUoh4W4K3DxiEVrtPvQ8ArlRfao4hiI |
| dFZMp0vLE45hixrCoistJHrwTFNJi5i+UjFyXTjnjTZ7uzRNZi2zi4KFn+b52Fja |
| DenV0r5TS4itWIo7PB1TYO0VUJz9w78M/FYCjwarnQIDAQABo4HpMIHmMB0GA1Ud |
| DgQWBBRp8shPFV5hGEBhQbGIGCG1d2/53jAfBgNVHSMEGDAWgBSvmzpwhkUIrQLN |
| /P1GSIJ9RmMx2zA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF |
| oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD |
| ggEBADZ/HA4dm5qJe2CiUCyNiF1wXmlvRkmIhzLyOZf9zusWimAJHzw1Wabrk70/ |
| XotBWKqfnePRDqDSlCypYjdDuLj11J1pwD82lGlBWzAVUu9gFf0Vke0r14I3y0MT |
| VfKCgxizkkOsyTS2EmcpSPPTt6nYeaKp4hWWM7q+BvxwAscfNHkNSFxUlDaFMTI5 |
| thnCn6SnVBP+4r50c5gTu2S9V6tqnZunl0UuyPwecNfa4eCILlE089UhoA4bVnX0 |
| yKmhHEHSKEMwKsvE9YUzeF3SsUBj6M44/8d5i8P57pCBRFdIWog5YMiFgKkDcqHb |
| bjByT0EpZykf0NjYRxh4H4rJAo8= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:ba |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:c2:02:78:c1:e7:a0:b7:63:87:52:e4:d4:11:71: |
| 3e:cb:65:9c:d9:2f:cb:48:30:8e:62:29:ae:c9:22: |
| 36:a6:67:d2:ea:10:58:d2:82:ab:bc:1e:a3:12:64: |
| 6e:fd:79:af:2e:6c:c0:8b:fd:36:68:ea:e0:0a:09: |
| 53:99:89:75:92:61:13:ac:aa:d9:e2:f1:ac:93:72: |
| 94:65:99:9e:52:9d:8f:6d:1e:b1:3e:83:fb:fa:c4: |
| dd:b4:b3:d2:0b:bb:f8:21:10:a9:51:8e:9e:b4:c8: |
| a8:63:79:50:62:03:59:3f:53:19:02:7c:a4:d9:45: |
| dd:07:b7:76:89:ac:ac:6f:b1:1d:aa:8c:4a:e5:40: |
| a2:05:32:2f:ba:a8:a9:8a:f3:eb:f0:f3:d9:9e:97: |
| e6:89:42:dd:95:67:de:33:62:2c:10:59:0b:b6:de: |
| 9a:3e:54:10:b8:a4:a9:33:05:4d:fc:ea:8b:56:38: |
| 2a:11:88:cd:75:1f:74:ea:4e:ad:3c:ef:da:d4:00: |
| 72:57:1c:16:d3:20:b6:99:cc:7f:aa:58:fa:48:e8: |
| e9:a9:bd:00:2e:87:ce:39:9b:1c:17:23:ac:28:55: |
| 77:81:e7:ac:f6:d6:6d:77:27:fb:e7:a0:22:72:58: |
| 83:4d:1a:1a:be:b6:00:8e:d1:11:c7:71:28:93:09: |
| 74:7b |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB |
| X509v3 Authority Key Identifier: |
| keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:FALSE |
| Signature Algorithm: sha256WithRSAEncryption |
| 0c:87:92:30:22:48:18:74:b6:57:c3:c9:95:13:17:c9:0a:81: |
| 04:6f:4e:8f:79:69:30:3a:7c:b8:d6:13:ea:4e:5c:b8:79:8b: |
| bf:07:f8:12:84:9d:1c:4c:bf:8e:57:a4:b9:e8:eb:58:b9:74: |
| 9c:ee:14:54:d7:a3:99:32:fa:da:50:7d:92:69:1e:6c:55:45: |
| 35:d5:b7:a6:87:2d:c9:ec:00:fb:f2:d2:f0:f9:22:49:bb:4c: |
| cb:b9:2e:b8:e1:dc:3f:a3:85:1d:ff:94:ad:e5:57:02:f9:d7: |
| fe:b5:4b:c4:26:7f:cd:34:3f:9d:66:10:b2:a8:3c:3d:71:b8: |
| 05:45:9e:36:03:90:38:70:22:ed:d8:e3:00:65:f8:9e:1b:36: |
| 8c:9f:de:ac:0b:8e:e9:a3:ae:6d:39:79:6d:8d:aa:e9:4c:d3: |
| 3e:d2:c4:0f:10:05:dd:c5:30:b8:a2:e8:3e:60:48:49:59:ab: |
| 40:e7:22:b5:64:74:26:22:30:a4:b9:30:1b:b4:1b:91:53:c9: |
| 3c:9e:1d:d6:3c:f1:11:9a:58:fb:34:ee:88:40:7a:2f:02:e0: |
| 06:55:df:2f:b3:8c:73:40:58:ad:42:21:7c:8f:27:e8:95:2b: |
| bf:1a:41:48:f1:50:f3:8a:e9:c0:05:a7:dc:36:f5:0a:4a:35: |
| 9c:21:6c:77 |
| -----BEGIN CERTIFICATE----- |
| MIIDfTCCAmWgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7owDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBAMICeMHnoLdjh1Lk1BFxPstlnNkvy0gwjmIprskiNqZn0uoQ |
| WNKCq7weoxJkbv15ry5swIv9Nmjq4AoJU5mJdZJhE6yq2eLxrJNylGWZnlKdj20e |
| sT6D+/rE3bSz0gu7+CEQqVGOnrTIqGN5UGIDWT9TGQJ8pNlF3Qe3domsrG+xHaqM |
| SuVAogUyL7qoqYrz6/Dz2Z6X5olC3ZVn3jNiLBBZC7bemj5UELikqTMFTfzqi1Y4 |
| KhGIzXUfdOpOrTzv2tQAclccFtMgtpnMf6pY+kjo6am9AC6HzjmbHBcjrChVd4Hn |
| rPbWbXcn++egInJYg00aGr62AI7REcdxKJMJdHsCAwEAAaOByDCBxTAdBgNVHQ4E |
| FgQUr5s6cIZFCK0Czfz9RkiCfUZjMdswHwYDVR0jBBgwFoAUbLj+pnREl3Dt/ssk |
| OJAqqWFI++swNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAMBgNVHRMBAf8EAjAAMA0G |
| CSqGSIb3DQEBCwUAA4IBAQAMh5IwIkgYdLZXw8mVExfJCoEEb06PeWkwOny41hPq |
| Tly4eYu/B/gShJ0cTL+OV6S56OtYuXSc7hRU16OZMvraUH2SaR5sVUU11bemhy3J |
| 7AD78tLw+SJJu0zLuS644dw/o4Ud/5St5VcC+df+tUvEJn/NND+dZhCyqDw9cbgF |
| RZ42A5A4cCLt2OMAZfieGzaMn96sC47po65tOXltjarpTNM+0sQPEAXdxTC4oug+ |
| YEhJWatA5yK1ZHQmIjCkuTAbtBuRU8k8nh3WPPERmlj7NO6IQHovAuAGVd8vs4xz |
| QFitQiF8jyfolSu/GkFI8VDziunABafcNvUKSjWcIWx3 |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:b9 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:bb:74:06:fa:a6:03:d1:64:c6:fa:62:8c:f6:40: |
| 93:be:4e:7d:71:8b:3c:fb:57:b2:64:7a:08:9d:ce: |
| c3:40:ff:eb:84:43:e9:0c:e0:80:2c:e3:9c:38:43: |
| 90:9d:e1:a5:4e:a1:10:9f:ac:b4:bf:24:38:7a:d7: |
| 37:21:0d:ae:de:f0:99:37:43:6a:e7:7f:d0:4a:ba: |
| d3:a4:f4:df:ce:fa:d1:b0:03:f9:5d:79:a5:c5:82: |
| b0:cf:62:02:87:84:ec:73:d2:65:33:86:02:d7:f4: |
| 57:8d:98:a2:2a:8f:89:c6:23:29:68:ff:56:46:d2: |
| dc:9a:e3:d2:24:d8:e9:fe:18:0c:4f:67:b3:cd:5e: |
| 31:4a:70:2e:4c:b2:7e:10:e1:38:c7:a1:fa:bc:8f: |
| 9b:23:e9:19:56:c5:38:4a:e8:7d:31:e2:6e:03:70: |
| ce:f2:0b:52:7d:6d:d7:d7:53:d8:e0:1c:6e:95:f3: |
| 1c:b6:04:50:03:23:39:86:42:28:68:26:5f:ca:a7: |
| 13:e2:51:ed:f0:55:bb:ac:4e:9d:cf:e5:07:44:41: |
| 45:f8:5c:65:cf:d7:7f:0a:e0:ee:5e:5e:2c:0c:13: |
| 10:f6:d4:e3:ba:9f:16:f4:8c:85:b2:53:4c:e1:56: |
| 63:f0:08:11:84:df:dc:e1:a0:7f:fb:78:5d:eb:21: |
| f9:e5 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB |
| X509v3 Authority Key Identifier: |
| keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 0d:e4:4e:a1:61:ea:2b:a2:58:40:4a:af:90:ae:45:06:da:3b: |
| e0:af:63:61:78:37:8d:5b:3a:02:f5:97:29:f4:0d:a6:92:fd: |
| 29:d0:0a:73:a6:be:5c:44:d1:0c:a1:5c:57:fa:82:75:f5:af: |
| c3:e2:95:d9:4c:b1:36:d6:78:e4:b9:21:a3:88:f0:7d:71:80: |
| 54:ca:1b:d5:7b:33:e3:59:b4:fe:08:4b:3a:96:ec:19:b4:41: |
| 1e:27:83:c6:13:a4:ef:da:ab:65:84:d9:05:42:59:66:8b:60: |
| 56:21:91:89:57:9c:d0:13:95:da:b7:43:e9:fd:7f:5c:50:93: |
| 10:56:8b:bf:fd:52:23:dd:73:0c:be:24:e6:7c:b4:f3:91:37: |
| db:91:7a:30:99:f0:19:2b:ef:e7:3e:a0:50:b4:16:84:0d:6e: |
| ee:19:47:0e:74:6a:37:3c:c1:82:13:5f:3f:01:4d:4b:9a:52: |
| 77:88:28:ae:ac:0d:4b:f0:55:76:c6:0a:46:08:e0:5c:ad:50: |
| 99:7e:04:4e:c3:7d:8b:fb:7e:36:aa:b8:89:a5:fe:9e:ce:4d: |
| 81:c9:a9:23:97:61:c3:df:54:ba:c2:9b:b5:97:ee:4b:36:87: |
| 5f:3b:29:30:e9:b2:89:05:d5:ad:12:af:98:45:48:91:21:d5: |
| c6:10:de:40 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7kwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQC7dAb6pgPRZMb6Yoz2QJO+Tn1xizz7V7JkegidzsNA/+uEQ+kM4IAs45w4 |
| Q5Cd4aVOoRCfrLS/JDh61zchDa7e8Jk3Q2rnf9BKutOk9N/O+tGwA/ldeaXFgrDP |
| YgKHhOxz0mUzhgLX9FeNmKIqj4nGIylo/1ZG0tya49Ik2On+GAxPZ7PNXjFKcC5M |
| sn4Q4TjHofq8j5sj6RlWxThK6H0x4m4DcM7yC1J9bdfXU9jgHG6V8xy2BFADIzmG |
| QihoJl/KpxPiUe3wVbusTp3P5QdEQUX4XGXP138K4O5eXiwMExD21OO6nxb0jIWy |
| U0zhVmPwCBGE39zhoH/7eF3rIfnlAgMBAAGjgcswgcgwHQYDVR0OBBYEFGy4/qZ0 |
| RJdw7f7LJDiQKqlhSPvrMB8GA1UdIwQYMBaAFGy4/qZ0RJdw7f7LJDiQKqlhSPvr |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEADeROoWHqK6JYQEqvkK5FBto74K9jYXg3jVs6AvWXKfQNppL9 |
| KdAKc6a+XETRDKFcV/qCdfWvw+KV2UyxNtZ45Lkho4jwfXGAVMob1Xsz41m0/ghL |
| OpbsGbRBHieDxhOk79qrZYTZBUJZZotgViGRiVec0BOV2rdD6f1/XFCTEFaLv/1S |
| I91zDL4k5ny085E325F6MJnwGSvv5z6gULQWhA1u7hlHDnRqNzzBghNfPwFNS5pS |
| d4gorqwNS/BVdsYKRgjgXK1QmX4ETsN9i/t+Nqq4iaX+ns5NgcmpI5dhw99UusKb |
| tZfuSzaHXzspMOmyiQXVrRKvmEVIkSHVxhDeQA== |
| -----END CERTIFICATE----- |