| [Created by: generate-chains.py] |
| |
| Certificate chain where the root certificate holds an RSA key, intermediate |
| certificate holds an EC key, and target certificate holds an RSA key. The |
| target certificate has a valid signature using ECDSA. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 41:40:39:26:f7:3c:b3:a7:c4:58:60:3a:f3:20:9a:3a:ee:e3:c5:56 |
| Signature Algorithm: ecdsa-with-SHA256 |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:e6:90:14:d7:6c:5e:85:24:21:17:7a:ce:f2:8a: |
| 3e:83:20:e4:3e:eb:cf:4c:06:bb:0a:d5:21:d9:2b: |
| e1:2e:14:8a:20:16:c8:c9:4b:55:ed:e9:ea:48:ed: |
| ef:03:2b:de:25:dd:41:9b:0c:0b:bd:f8:58:e2:a0: |
| ba:92:3f:03:de:ca:e6:35:42:be:ab:e1:33:17:ac: |
| 3e:bc:fc:90:2a:d2:c7:76:1f:51:d2:ca:e9:80:e0: |
| 76:39:ab:88:65:b4:e3:ea:05:dd:c5:8e:fe:4c:86: |
| c3:06:49:0c:ab:69:a5:4f:14:cc:82:1f:b1:3d:f6: |
| f9:d5:d4:61:41:35:e5:d4:f7:4f:1a:af:fb:a8:ff: |
| ef:7b:38:95:40:c5:56:32:a5:cf:8f:d6:04:df:23: |
| eb:5b:f7:32:a3:d7:a1:df:cb:67:35:25:d6:63:92: |
| d7:da:d9:83:20:52:58:1d:ef:6e:3c:88:91:14:08: |
| c7:70:85:b7:b3:93:c1:9a:51:57:d8:d5:4c:81:83: |
| 96:91:b6:5a:b9:b5:7e:fb:90:bd:71:2e:09:04:6e: |
| f9:0b:ff:51:43:d4:20:77:ee:31:34:98:f8:e8:8f: |
| 5a:2e:75:f1:0f:bf:64:35:a5:00:cb:4a:00:6e:45: |
| a3:01:d7:97:46:49:55:c1:df:2d:31:c4:98:ae:25: |
| b2:b3 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| A0:D4:34:B4:BC:27:68:8C:38:A0:8F:3A:CF:6E:58:5F:57:97:44:B8 |
| X509v3 Authority Key Identifier: |
| keyid:B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: ecdsa-with-SHA256 |
| 30:65:02:30:3b:42:54:fd:2a:2f:12:cd:68:84:88:17:d0:97: |
| 34:ef:90:f7:b6:c5:25:16:64:2e:6b:09:60:e0:10:49:ee:4a: |
| 95:08:88:e5:49:80:69:c5:10:28:7e:b8:87:f1:cb:a9:02:31: |
| 00:cd:46:f1:f9:4a:b5:fd:3b:07:d3:b8:d4:dc:16:fd:ed:06: |
| d5:5e:5c:9e:dd:26:32:f2:2c:be:16:6e:58:da:c8:e9:0c:5d: |
| ab:60:d1:45:0f:6f:af:39:4f:dc:00:91:96 |
| -----BEGIN CERTIFICATE----- |
| MIIC/zCCAoWgAwIBAgIUQUA5Jvc8s6fEWGA68yCaOu7jxVYwCgYIKoZIzj0EAwIw |
| FzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIxMDEw |
| MTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEFAAOC |
| AQ8AMIIBCgKCAQEA5pAU12xehSQhF3rO8oo+gyDkPuvPTAa7CtUh2SvhLhSKIBbI |
| yUtV7enqSO3vAyveJd1BmwwLvfhY4qC6kj8D3srmNUK+q+EzF6w+vPyQKtLHdh9R |
| 0srpgOB2OauIZbTj6gXdxY7+TIbDBkkMq2mlTxTMgh+xPfb51dRhQTXl1PdPGq/7 |
| qP/veziVQMVWMqXPj9YE3yPrW/cyo9eh38tnNSXWY5LX2tmDIFJYHe9uPIiRFAjH |
| cIW3s5PBmlFX2NVMgYOWkbZaubV++5C9cS4JBG75C/9RQ9Qgd+4xNJj46I9aLnXx |
| D79kNaUAy0oAbkWjAdeXRklVwd8tMcSYriWyswIDAQABo4HpMIHmMB0GA1UdDgQW |
| BBSg1DS0vCdojDigjzrPblhfV5dEuDAfBgNVHSMEGDAWgBSxDmiUX6n3+EsJQn2u |
| WnoFv+Sh8TA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91cmwt |
| Zm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0dHA6 |
| Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIFoDAd |
| BgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwCgYIKoZIzj0EAwIDaAAwZQIw |
| O0JU/SovEs1ohIgX0Jc075D3tsUlFmQuawlg4BBJ7kqVCIjlSYBpxRAofriH8cup |
| AjEAzUbx+Uq1/TsH07jU3Bb97QbVXlye3SYy8iy+Fm5Y2sjpDF2rYNFFD2+vOU/c |
| AJGW |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 62:20:1f:53:92:38:2c:47:67:4d:1d:04:41:2d:53:ab:1e:d4:5c:aa |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: id-ecPublicKey |
| Public-Key: (384 bit) |
| pub: |
| 04:f3:8f:d7:88:9f:98:67:05:36:a9:16:7c:85:b2: |
| cf:8e:02:72:19:eb:ab:48:14:1e:6f:6a:13:93:3e: |
| 80:b9:aa:7f:53:9c:91:91:9e:b1:79:76:ec:31:ef: |
| 97:46:30:d8:f4:ad:9c:60:c0:a6:00:88:62:5a:68: |
| 9e:3e:00:f3:6c:b4:1a:10:0b:78:12:f3:fe:5f:47: |
| 40:14:e7:2d:c0:82:cc:cf:df:93:fb:21:8e:ed:59: |
| b2:70:1e:7b:70:0c:e5 |
| ASN1 OID: secp384r1 |
| NIST CURVE: P-384 |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1 |
| X509v3 Authority Key Identifier: |
| keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 97:98:17:73:e3:5e:d2:31:02:e6:79:69:fa:51:86:25:c7:71: |
| 5e:54:98:2a:88:6e:14:f7:d2:5a:80:dc:78:03:e4:a1:e8:92: |
| 17:8b:d3:df:ad:8d:e5:57:32:b2:77:32:a1:83:5d:d9:7d:2f: |
| 5e:72:e1:ba:8d:c0:16:84:4e:a5:dd:ab:d3:85:fa:a0:31:31: |
| 10:da:75:02:07:4b:57:b4:6e:4d:86:9c:ef:86:cd:17:b7:cc: |
| 6f:3c:59:88:be:a4:fa:69:b2:3b:73:e2:02:99:07:59:85:8b: |
| d3:91:86:f5:6d:dc:4f:0f:cc:fb:5e:26:03:aa:c4:64:3f:0f: |
| d6:15:58:5b:41:ad:63:b3:39:d4:5a:84:7e:54:b4:68:e0:47: |
| a2:a6:a0:66:ed:25:8d:45:8c:4f:c5:85:cc:c9:14:bf:9e:6f: |
| 6c:9f:18:0c:7c:44:fa:8c:46:c0:7e:ea:2d:44:7e:f2:e5:19: |
| 7a:bc:de:fa:37:44:65:70:29:1f:89:91:0c:de:39:da:87:d0: |
| e8:74:b0:0c:70:d2:c6:09:9a:c2:1a:22:1e:76:5a:2b:2f:6e: |
| 9c:dc:86:c9:ca:33:63:3b:b4:a2:c6:f4:64:62:84:94:20:c0: |
| 9d:cd:ba:7e:b3:50:d0:8c:51:51:54:87:44:f7:8e:bd:2e:c1: |
| 8c:27:05:ca |
| -----BEGIN CERTIFICATE----- |
| MIIC0jCCAbqgAwIBAgIUYiAfU5I4LEdnTR0EQS1Tqx7UXKowDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTB2MBAGByqGSM49AgEGBSuBBAAi |
| A2IABPOP14ifmGcFNqkWfIWyz44Cchnrq0gUHm9qE5M+gLmqf1OckZGesXl27DHv |
| l0Yw2PStnGDApgCIYlponj4A82y0GhALeBLz/l9HQBTnLcCCzM/fk/shju1ZsnAe |
| e3AM5aOByzCByDAdBgNVHQ4EFgQUsQ5olF+p9/hLCUJ9rlp6Bb/kofEwHwYDVR0j |
| BBgwFoAUQ+fMPEU+WKdt0pBWjxaTni/zBi4wNwYIKwYBBQUHAQEEKzApMCcGCCsG |
| AQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAh |
| oB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIB |
| BjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCXmBdz417SMQLm |
| eWn6UYYlx3FeVJgqiG4U99JagNx4A+Sh6JIXi9PfrY3lVzKydzKhg13ZfS9ecuG6 |
| jcAWhE6l3avThfqgMTEQ2nUCB0tXtG5Nhpzvhs0Xt8xvPFmIvqT6abI7c+ICmQdZ |
| hYvTkYb1bdxPD8z7XiYDqsRkPw/WFVhbQa1jsznUWoR+VLRo4EeipqBm7SWNRYxP |
| xYXMyRS/nm9snxgMfET6jEbAfuotRH7y5Rl6vN76N0RlcCkfiZEM3jnah9DodLAM |
| cNLGCZrCGiIedlorL26c3IbJyjNjO7SixvRkYoSUIMCdzbp+s1DQjFFRVIdE9469 |
| LsGMJwXK |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 62:20:1f:53:92:38:2c:47:67:4d:1d:04:41:2d:53:ab:1e:d4:5c:a9 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:f5:c6:4e:ee:3f:f0:7c:64:c3:5d:09:15:02:1c: |
| 1b:f3:43:19:a5:c1:a9:a0:fb:f9:98:ee:e4:af:7c: |
| e2:ad:51:6d:c5:74:03:4d:db:f1:e0:69:ed:9a:23: |
| d8:cd:34:0b:83:6a:32:4e:1d:c0:91:fc:88:17:02: |
| 0d:bd:6d:d9:b9:92:71:6b:8f:23:40:f9:48:fe:16: |
| 59:af:f4:9c:33:7d:3f:08:65:ff:f1:e5:9c:4d:e8: |
| e8:7b:4a:c3:16:6d:53:9d:92:d7:86:9b:95:fb:5d: |
| 86:6d:af:00:dd:6f:25:0d:53:70:7e:b6:36:11:94: |
| d1:90:b5:f1:6d:a8:b0:e8:2d:0d:c5:85:b5:50:4b: |
| 7e:b0:57:8d:82:6d:bb:e0:82:64:3b:a4:d6:c4:d7: |
| 0a:2c:89:61:47:99:67:5e:71:1f:5c:66:14:08:fa: |
| 29:88:09:3b:38:60:4d:01:67:53:fe:16:85:70:54: |
| bf:e1:5e:76:b8:33:e3:9c:17:08:a4:0f:f2:c5:e1: |
| ac:99:94:7e:10:47:7d:51:43:42:85:df:e2:9a:53: |
| 07:c4:2f:c8:bf:56:da:0b:7f:41:6d:8f:76:42:b0: |
| 25:3c:fb:0a:f4:d0:d0:b3:79:72:70:0d:07:95:97: |
| c1:11:82:ff:c4:13:ec:0f:cf:bb:4e:b8:4a:ed:ca: |
| 3c:a3 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E |
| X509v3 Authority Key Identifier: |
| keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| f1:15:45:a9:e4:9a:c2:7c:86:36:c5:7a:30:3d:67:bb:f3:c6: |
| 69:96:1e:12:92:47:79:19:34:c6:6c:d7:5a:e3:6b:b9:7e:90: |
| ed:dd:2b:34:1c:bd:25:8b:4a:b9:d0:7e:b0:c1:fd:f1:49:54: |
| 11:00:40:d9:4e:f1:a8:e8:73:a3:98:ad:d6:85:ea:2c:9d:a0: |
| f3:1f:a2:e5:7c:f2:96:f8:71:ad:ab:d0:c5:92:3c:ee:22:9b: |
| ee:5b:21:c8:5c:0a:52:db:d7:81:df:49:c4:37:a6:9b:f9:b5: |
| 90:cf:eb:b1:bb:22:58:86:26:68:f4:0f:a1:2b:86:d1:c2:f0: |
| 34:38:c4:f8:3b:a0:83:8b:4c:5a:e1:09:ae:4e:7e:0c:be:12: |
| c7:d1:85:1a:4b:28:bb:95:ca:2a:50:b1:dc:06:35:93:a8:88: |
| ee:87:99:8d:c6:01:43:3d:6d:c2:6a:ea:f5:22:04:dc:fb:a0: |
| 8b:6c:df:27:1f:fa:86:f0:0a:62:a3:2f:1c:99:d0:d0:4a:82: |
| d5:4e:3b:91:f6:86:72:a4:cc:43:60:ab:06:c8:3c:f2:a0:bc: |
| 54:05:13:96:8f:41:ed:fc:38:a0:ea:ed:a7:23:20:5f:43:1a: |
| 55:6c:e1:e0:22:c7:15:66:16:8a:2f:d2:78:22:6e:4a:24:db: |
| 04:52:a7:58 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUYiAfU5I4LEdnTR0EQS1Tqx7UXKkwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQD1xk7uP/B8ZMNdCRUCHBvzQxmlwamg+/mY7uSvfOKtUW3FdANN2/Hgae2a |
| I9jNNAuDajJOHcCR/IgXAg29bdm5knFrjyNA+Uj+Flmv9JwzfT8IZf/x5ZxN6Oh7 |
| SsMWbVOdkteGm5X7XYZtrwDdbyUNU3B+tjYRlNGQtfFtqLDoLQ3FhbVQS36wV42C |
| bbvggmQ7pNbE1wosiWFHmWdecR9cZhQI+imICTs4YE0BZ1P+FoVwVL/hXna4M+Oc |
| FwikD/LF4ayZlH4QR31RQ0KF3+KaUwfEL8i/VtoLf0Ftj3ZCsCU8+wr00NCzeXJw |
| DQeVl8ERgv/EE+wPz7tOuErtyjyjAgMBAAGjgcswgcgwHQYDVR0OBBYEFEPnzDxF |
| PlinbdKQVo8Wk54v8wYuMB8GA1UdIwQYMBaAFEPnzDxFPlinbdKQVo8Wk54v8wYu |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEA8RVFqeSawnyGNsV6MD1nu/PGaZYeEpJHeRk0xmzXWuNruX6Q |
| 7d0rNBy9JYtKudB+sMH98UlUEQBA2U7xqOhzo5it1oXqLJ2g8x+i5XzylvhxravQ |
| xZI87iKb7lshyFwKUtvXgd9JxDemm/m1kM/rsbsiWIYmaPQPoSuG0cLwNDjE+Dug |
| g4tMWuEJrk5+DL4Sx9GFGksou5XKKlCx3AY1k6iI7oeZjcYBQz1twmrq9SIE3Pug |
| i2zfJx/6hvAKYqMvHJnQ0EqC1U47kfaGcqTMQ2CrBsg88qC8VAUTlo9B7fw4oOrt |
| pyMgX0MaVWzh4CLHFWYWii/SeCJuSiTbBFKnWA== |
| -----END CERTIFICATE----- |