blob: 1824c963e6e1296c77c26a5b6bd966f585a54306 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the intermediate has a basic constraints extension
that indicates it is NOT a CA.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5d:89:40:ce:2b:53:75:88:ff:8e:84:70:5e:89:c5:8b:d1:5c:22:c2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:96:d4:6b:47:00:ed:9a:72:03:1f:bc:14:42:63:
28:8d:c9:5a:08:27:59:06:2e:61:d9:28:aa:ed:58:
17:5f:f2:bf:ee:33:ab:74:0b:1c:c3:00:b6:38:96:
96:d0:dc:91:44:ab:1d:fa:e5:99:ed:fe:ee:43:dd:
21:b0:b8:1a:31:70:bb:c6:a5:eb:6e:2e:79:cf:c3:
c9:32:f7:39:e5:ff:9f:1e:fd:c8:8c:8f:9d:42:e6:
5d:cc:b1:75:fa:94:f3:f8:df:f8:47:ea:7a:4f:4c:
1d:67:fd:37:2e:75:a3:13:84:00:92:c5:6c:86:66:
80:39:7b:0f:2e:af:14:ce:82:1c:e4:78:7b:f3:d8:
f4:b3:b1:d1:7d:5f:ed:19:6f:1d:eb:7e:be:3a:33:
e1:b4:86:82:22:05:28:87:85:b8:2b:70:f1:88:45:
6b:b4:fb:d0:f0:0a:e5:45:f6:a8:e2:18:88:74:56:
4c:a7:4b:cb:13:8e:61:8b:1a:c2:a2:2b:2d:24:7a:
f0:4c:53:49:8b:98:be:52:31:72:5d:38:e7:8d:36:
7b:bb:34:4d:66:2d:b3:8b:82:85:9f:e6:f9:d8:58:
da:0d:e9:d5:d2:be:53:4b:88:ad:58:8a:3b:3c:1d:
53:60:ed:15:50:9c:fd:c3:bf:0c:fc:56:02:8f:06:
ab:9d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
69:F2:C8:4F:15:5E:61:18:40:61:41:B1:88:18:21:B5:77:6F:F9:DE
X509v3 Authority Key Identifier:
keyid:AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
36:7f:1c:0e:1d:9b:9a:89:7b:60:a2:50:2c:8d:88:5d:70:5e:
69:6f:46:49:88:87:32:f2:39:97:fd:ce:eb:16:8a:60:09:1f:
3c:35:59:a6:eb:93:bd:3f:5e:8b:41:58:aa:9f:9d:e3:d1:0e:
a0:d2:94:2c:a9:62:37:43:b8:b8:f5:d4:9d:69:c0:3f:36:94:
69:41:5b:30:15:52:ef:60:15:fd:15:91:ed:2b:d7:82:37:cb:
43:13:55:f2:82:83:18:b3:92:43:ac:c9:34:b6:12:67:29:48:
f3:d3:b7:a9:d8:79:a2:a9:e2:15:96:33:ba:be:06:fc:70:02:
c7:1f:34:79:0d:48:5c:54:94:36:85:31:32:39:b6:19:c2:9f:
a4:a7:54:13:fe:e2:be:74:73:98:13:bb:64:bd:57:ab:6a:9d:
9b:a7:97:45:2e:c8:fc:1e:70:d7:da:e1:e0:88:2e:51:34:f3:
d5:21:a0:0e:1b:56:75:f4:c8:a9:a1:1c:41:d2:28:43:30:2a:
cb:c4:f5:85:33:78:5d:d2:b1:40:63:e8:ce:38:ff:c7:79:8b:
c3:f9:ee:90:81:44:57:48:5a:88:39:60:c8:85:80:a9:03:72:
a1:db:6e:30:72:4f:41:29:67:29:1f:d0:d8:d8:47:18:78:1f:
8a:c9:02:8f
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:ba
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c2:02:78:c1:e7:a0:b7:63:87:52:e4:d4:11:71:
3e:cb:65:9c:d9:2f:cb:48:30:8e:62:29:ae:c9:22:
36:a6:67:d2:ea:10:58:d2:82:ab:bc:1e:a3:12:64:
6e:fd:79:af:2e:6c:c0:8b:fd:36:68:ea:e0:0a:09:
53:99:89:75:92:61:13:ac:aa:d9:e2:f1:ac:93:72:
94:65:99:9e:52:9d:8f:6d:1e:b1:3e:83:fb:fa:c4:
dd:b4:b3:d2:0b:bb:f8:21:10:a9:51:8e:9e:b4:c8:
a8:63:79:50:62:03:59:3f:53:19:02:7c:a4:d9:45:
dd:07:b7:76:89:ac:ac:6f:b1:1d:aa:8c:4a:e5:40:
a2:05:32:2f:ba:a8:a9:8a:f3:eb:f0:f3:d9:9e:97:
e6:89:42:dd:95:67:de:33:62:2c:10:59:0b:b6:de:
9a:3e:54:10:b8:a4:a9:33:05:4d:fc:ea:8b:56:38:
2a:11:88:cd:75:1f:74:ea:4e:ad:3c:ef:da:d4:00:
72:57:1c:16:d3:20:b6:99:cc:7f:aa:58:fa:48:e8:
e9:a9:bd:00:2e:87:ce:39:9b:1c:17:23:ac:28:55:
77:81:e7:ac:f6:d6:6d:77:27:fb:e7:a0:22:72:58:
83:4d:1a:1a:be:b6:00:8e:d1:11:c7:71:28:93:09:
74:7b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB
X509v3 Authority Key Identifier:
keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:FALSE
Signature Algorithm: sha256WithRSAEncryption
0c:87:92:30:22:48:18:74:b6:57:c3:c9:95:13:17:c9:0a:81:
04:6f:4e:8f:79:69:30:3a:7c:b8:d6:13:ea:4e:5c:b8:79:8b:
bf:07:f8:12:84:9d:1c:4c:bf:8e:57:a4:b9:e8:eb:58:b9:74:
9c:ee:14:54:d7:a3:99:32:fa:da:50:7d:92:69:1e:6c:55:45:
35:d5:b7:a6:87:2d:c9:ec:00:fb:f2:d2:f0:f9:22:49:bb:4c:
cb:b9:2e:b8:e1:dc:3f:a3:85:1d:ff:94:ad:e5:57:02:f9:d7:
fe:b5:4b:c4:26:7f:cd:34:3f:9d:66:10:b2:a8:3c:3d:71:b8:
05:45:9e:36:03:90:38:70:22:ed:d8:e3:00:65:f8:9e:1b:36:
8c:9f:de:ac:0b:8e:e9:a3:ae:6d:39:79:6d:8d:aa:e9:4c:d3:
3e:d2:c4:0f:10:05:dd:c5:30:b8:a2:e8:3e:60:48:49:59:ab:
40:e7:22:b5:64:74:26:22:30:a4:b9:30:1b:b4:1b:91:53:c9:
3c:9e:1d:d6:3c:f1:11:9a:58:fb:34:ee:88:40:7a:2f:02:e0:
06:55:df:2f:b3:8c:73:40:58:ad:42:21:7c:8f:27:e8:95:2b:
bf:1a:41:48:f1:50:f3:8a:e9:c0:05:a7:dc:36:f5:0a:4a:35:
9c:21:6c:77
-----BEGIN CERTIFICATE-----
MIIDfTCCAmWgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7owDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw
MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBAMICeMHnoLdjh1Lk1BFxPstlnNkvy0gwjmIprskiNqZn0uoQ
WNKCq7weoxJkbv15ry5swIv9Nmjq4AoJU5mJdZJhE6yq2eLxrJNylGWZnlKdj20e
sT6D+/rE3bSz0gu7+CEQqVGOnrTIqGN5UGIDWT9TGQJ8pNlF3Qe3domsrG+xHaqM
SuVAogUyL7qoqYrz6/Dz2Z6X5olC3ZVn3jNiLBBZC7bemj5UELikqTMFTfzqi1Y4
KhGIzXUfdOpOrTzv2tQAclccFtMgtpnMf6pY+kjo6am9AC6HzjmbHBcjrChVd4Hn
rPbWbXcn++egInJYg00aGr62AI7REcdxKJMJdHsCAwEAAaOByDCBxTAdBgNVHQ4E
FgQUr5s6cIZFCK0Czfz9RkiCfUZjMdswHwYDVR0jBBgwFoAUbLj+pnREl3Dt/ssk
OJAqqWFI++swNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs
LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m
b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAMBgNVHRMBAf8EAjAAMA0G
CSqGSIb3DQEBCwUAA4IBAQAMh5IwIkgYdLZXw8mVExfJCoEEb06PeWkwOny41hPq
Tly4eYu/B/gShJ0cTL+OV6S56OtYuXSc7hRU16OZMvraUH2SaR5sVUU11bemhy3J
7AD78tLw+SJJu0zLuS644dw/o4Ud/5St5VcC+df+tUvEJn/NND+dZhCyqDw9cbgF
RZ42A5A4cCLt2OMAZfieGzaMn96sC47po65tOXltjarpTNM+0sQPEAXdxTC4oug+
YEhJWatA5yK1ZHQmIjCkuTAbtBuRU8k8nh3WPPERmlj7NO6IQHovAuAGVd8vs4xz
QFitQiF8jyfolSu/GkFI8VDziunABafcNvUKSjWcIWx3
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:b9
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bb:74:06:fa:a6:03:d1:64:c6:fa:62:8c:f6:40:
93:be:4e:7d:71:8b:3c:fb:57:b2:64:7a:08:9d:ce:
c3:40:ff:eb:84:43:e9:0c:e0:80:2c:e3:9c:38:43:
90:9d:e1:a5:4e:a1:10:9f:ac:b4:bf:24:38:7a:d7:
37:21:0d:ae:de:f0:99:37:43:6a:e7:7f:d0:4a:ba:
d3:a4:f4:df:ce:fa:d1:b0:03:f9:5d:79:a5:c5:82:
b0:cf:62:02:87:84:ec:73:d2:65:33:86:02:d7:f4:
57:8d:98:a2:2a:8f:89:c6:23:29:68:ff:56:46:d2:
dc:9a:e3:d2:24:d8:e9:fe:18:0c:4f:67:b3:cd:5e:
31:4a:70:2e:4c:b2:7e:10:e1:38:c7:a1:fa:bc:8f:
9b:23:e9:19:56:c5:38:4a:e8:7d:31:e2:6e:03:70:
ce:f2:0b:52:7d:6d:d7:d7:53:d8:e0:1c:6e:95:f3:
1c:b6:04:50:03:23:39:86:42:28:68:26:5f:ca:a7:
13:e2:51:ed:f0:55:bb:ac:4e:9d:cf:e5:07:44:41:
45:f8:5c:65:cf:d7:7f:0a:e0:ee:5e:5e:2c:0c:13:
10:f6:d4:e3:ba:9f:16:f4:8c:85:b2:53:4c:e1:56:
63:f0:08:11:84:df:dc:e1:a0:7f:fb:78:5d:eb:21:
f9:e5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
X509v3 Authority Key Identifier:
keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
0d:e4:4e:a1:61:ea:2b:a2:58:40:4a:af:90:ae:45:06:da:3b:
e0:af:63:61:78:37:8d:5b:3a:02:f5:97:29:f4:0d:a6:92:fd:
29:d0:0a:73:a6:be:5c:44:d1:0c:a1:5c:57:fa:82:75:f5:af:
c3:e2:95:d9:4c:b1:36:d6:78:e4:b9:21:a3:88:f0:7d:71:80:
54:ca:1b:d5:7b:33:e3:59:b4:fe:08:4b:3a:96:ec:19:b4:41:
1e:27:83:c6:13:a4:ef:da:ab:65:84:d9:05:42:59:66:8b:60:
56:21:91:89:57:9c:d0:13:95:da:b7:43:e9:fd:7f:5c:50:93:
10:56:8b:bf:fd:52:23:dd:73:0c:be:24:e6:7c:b4:f3:91:37:
db:91:7a:30:99:f0:19:2b:ef:e7:3e:a0:50:b4:16:84:0d:6e:
ee:19:47:0e:74:6a:37:3c:c1:82:13:5f:3f:01:4d:4b:9a:52:
77:88:28:ae:ac:0d:4b:f0:55:76:c6:0a:46:08:e0:5c:ad:50:
99:7e:04:4e:c3:7d:8b:fb:7e:36:aa:b8:89:a5:fe:9e:ce:4d:
81:c9:a9:23:97:61:c3:df:54:ba:c2:9b:b5:97:ee:4b:36:87:
5f:3b:29:30:e9:b2:89:05:d5:ad:12:af:98:45:48:91:21:d5:
c6:10:de:40
-----BEGIN CERTIFICATE-----
MIIDeDCCAmCgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7kwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw
MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQC7dAb6pgPRZMb6Yoz2QJO+Tn1xizz7V7JkegidzsNA/+uEQ+kM4IAs45w4
Q5Cd4aVOoRCfrLS/JDh61zchDa7e8Jk3Q2rnf9BKutOk9N/O+tGwA/ldeaXFgrDP
YgKHhOxz0mUzhgLX9FeNmKIqj4nGIylo/1ZG0tya49Ik2On+GAxPZ7PNXjFKcC5M
sn4Q4TjHofq8j5sj6RlWxThK6H0x4m4DcM7yC1J9bdfXU9jgHG6V8xy2BFADIzmG
QihoJl/KpxPiUe3wVbusTp3P5QdEQUX4XGXP138K4O5eXiwMExD21OO6nxb0jIWy
U0zhVmPwCBGE39zhoH/7eF3rIfnlAgMBAAGjgcswgcgwHQYDVR0OBBYEFGy4/qZ0
RJdw7f7LJDiQKqlhSPvrMB8GA1UdIwQYMBaAFGy4/qZ0RJdw7f7LJDiQKqlhSPvr
MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh
L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S
b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG
9w0BAQsFAAOCAQEADeROoWHqK6JYQEqvkK5FBto74K9jYXg3jVs6AvWXKfQNppL9
KdAKc6a+XETRDKFcV/qCdfWvw+KV2UyxNtZ45Lkho4jwfXGAVMob1Xsz41m0/ghL
OpbsGbRBHieDxhOk79qrZYTZBUJZZotgViGRiVec0BOV2rdD6f1/XFCTEFaLv/1S
I91zDL4k5ny085E325F6MJnwGSvv5z6gULQWhA1u7hlHDnRqNzzBghNfPwFNS5pS
d4gorqwNS/BVdsYKRgjgXK1QmX4ETsN9i/t+Nqq4iaX+ns5NgcmpI5dhw99UusKb
tZfuSzaHXzspMOmyiQXVrRKvmEVIkSHVxhDeQA==
-----END CERTIFICATE-----