blob: 1d232f008db9549ff7c6888b6ac3b104e8f7033f [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the root certificate holds an RSA key, intermediate
certificate holds an EC key, and target certificate holds an RSA key. The
target certificate has a valid signature using ECDSA.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
41:40:39:26:f7:3c:b3:a7:c4:58:60:3a:f3:20:9a:3a:ee:e3:c5:56
Signature Algorithm: ecdsa-with-SHA256
Issuer: CN=Intermediate
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e6:90:14:d7:6c:5e:85:24:21:17:7a:ce:f2:8a:
3e:83:20:e4:3e:eb:cf:4c:06:bb:0a:d5:21:d9:2b:
e1:2e:14:8a:20:16:c8:c9:4b:55:ed:e9:ea:48:ed:
ef:03:2b:de:25:dd:41:9b:0c:0b:bd:f8:58:e2:a0:
ba:92:3f:03:de:ca:e6:35:42:be:ab:e1:33:17:ac:
3e:bc:fc:90:2a:d2:c7:76:1f:51:d2:ca:e9:80:e0:
76:39:ab:88:65:b4:e3:ea:05:dd:c5:8e:fe:4c:86:
c3:06:49:0c:ab:69:a5:4f:14:cc:82:1f:b1:3d:f6:
f9:d5:d4:61:41:35:e5:d4:f7:4f:1a:af:fb:a8:ff:
ef:7b:38:95:40:c5:56:32:a5:cf:8f:d6:04:df:23:
eb:5b:f7:32:a3:d7:a1:df:cb:67:35:25:d6:63:92:
d7:da:d9:83:20:52:58:1d:ef:6e:3c:88:91:14:08:
c7:70:85:b7:b3:93:c1:9a:51:57:d8:d5:4c:81:83:
96:91:b6:5a:b9:b5:7e:fb:90:bd:71:2e:09:04:6e:
f9:0b:ff:51:43:d4:20:77:ee:31:34:98:f8:e8:8f:
5a:2e:75:f1:0f:bf:64:35:a5:00:cb:4a:00:6e:45:
a3:01:d7:97:46:49:55:c1:df:2d:31:c4:98:ae:25:
b2:b3
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A0:D4:34:B4:BC:27:68:8C:38:A0:8F:3A:CF:6E:58:5F:57:97:44:B8
X509v3 Authority Key Identifier:
keyid:B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: ecdsa-with-SHA256
30:65:02:30:3b:42:54:fd:2a:2f:12:cd:68:84:88:17:d0:97:
34:ef:90:f7:b6:c5:25:16:64:2e:6b:09:60:e0:10:49:ee:4a:
95:08:88:e5:49:80:69:c5:10:28:7e:b8:87:f1:cb:a9:02:31:
00:cd:46:f1:f9:4a:b5:fd:3b:07:d3:b8:d4:dc:16:fd:ed:06:
d5:5e:5c:9e:dd:26:32:f2:2c:be:16:6e:58:da:c8:e9:0c:5d:
ab:60:d1:45:0f:6f:af:39:4f:dc:00:91:96
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
62:20:1f:53:92:38:2c:47:67:4d:1d:04:41:2d:53:ab:1e:d4:5c:aa
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:f3:8f:d7:88:9f:98:67:05:36:a9:16:7c:85:b2:
cf:8e:02:72:19:eb:ab:48:14:1e:6f:6a:13:93:3e:
80:b9:aa:7f:53:9c:91:91:9e:b1:79:76:ec:31:ef:
97:46:30:d8:f4:ad:9c:60:c0:a6:00:88:62:5a:68:
9e:3e:00:f3:6c:b4:1a:10:0b:78:12:f3:fe:5f:47:
40:14:e7:2d:c0:82:cc:cf:df:93:fb:21:8e:ed:59:
b2:70:1e:7b:70:0c:e5
ASN1 OID: secp384r1
NIST CURVE: P-384
X509v3 extensions:
X509v3 Subject Key Identifier:
B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1
X509v3 Authority Key Identifier:
keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
97:98:17:73:e3:5e:d2:31:02:e6:79:69:fa:51:86:25:c7:71:
5e:54:98:2a:88:6e:14:f7:d2:5a:80:dc:78:03:e4:a1:e8:92:
17:8b:d3:df:ad:8d:e5:57:32:b2:77:32:a1:83:5d:d9:7d:2f:
5e:72:e1:ba:8d:c0:16:84:4e:a5:dd:ab:d3:85:fa:a0:31:31:
10:da:75:02:07:4b:57:b4:6e:4d:86:9c:ef:86:cd:17:b7:cc:
6f:3c:59:88:be:a4:fa:69:b2:3b:73:e2:02:99:07:59:85:8b:
d3:91:86:f5:6d:dc:4f:0f:cc:fb:5e:26:03:aa:c4:64:3f:0f:
d6:15:58:5b:41:ad:63:b3:39:d4:5a:84:7e:54:b4:68:e0:47:
a2:a6:a0:66:ed:25:8d:45:8c:4f:c5:85:cc:c9:14:bf:9e:6f:
6c:9f:18:0c:7c:44:fa:8c:46:c0:7e:ea:2d:44:7e:f2:e5:19:
7a:bc:de:fa:37:44:65:70:29:1f:89:91:0c:de:39:da:87:d0:
e8:74:b0:0c:70:d2:c6:09:9a:c2:1a:22:1e:76:5a:2b:2f:6e:
9c:dc:86:c9:ca:33:63:3b:b4:a2:c6:f4:64:62:84:94:20:c0:
9d:cd:ba:7e:b3:50:d0:8c:51:51:54:87:44:f7:8e:bd:2e:c1:
8c:27:05:ca
-----BEGIN CERTIFICATE-----
MIIC0jCCAbqgAwIBAgIUYiAfU5I4LEdnTR0EQS1Tqx7UXKowDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw
MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTB2MBAGByqGSM49AgEGBSuBBAAi
A2IABPOP14ifmGcFNqkWfIWyz44Cchnrq0gUHm9qE5M+gLmqf1OckZGesXl27DHv
l0Yw2PStnGDApgCIYlponj4A82y0GhALeBLz/l9HQBTnLcCCzM/fk/shju1ZsnAe
e3AM5aOByzCByDAdBgNVHQ4EFgQUsQ5olF+p9/hLCUJ9rlp6Bb/kofEwHwYDVR0j
BBgwFoAUQ+fMPEU+WKdt0pBWjxaTni/zBi4wNwYIKwYBBQUHAQEEKzApMCcGCCsG
AQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAh
oB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIB
BjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCXmBdz417SMQLm
eWn6UYYlx3FeVJgqiG4U99JagNx4A+Sh6JIXi9PfrY3lVzKydzKhg13ZfS9ecuG6
jcAWhE6l3avThfqgMTEQ2nUCB0tXtG5Nhpzvhs0Xt8xvPFmIvqT6abI7c+ICmQdZ
hYvTkYb1bdxPD8z7XiYDqsRkPw/WFVhbQa1jsznUWoR+VLRo4EeipqBm7SWNRYxP
xYXMyRS/nm9snxgMfET6jEbAfuotRH7y5Rl6vN76N0RlcCkfiZEM3jnah9DodLAM
cNLGCZrCGiIedlorL26c3IbJyjNjO7SixvRkYoSUIMCdzbp+s1DQjFFRVIdE9469
LsGMJwXK
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
62:20:1f:53:92:38:2c:47:67:4d:1d:04:41:2d:53:ab:1e:d4:5c:a9
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:f5:c6:4e:ee:3f:f0:7c:64:c3:5d:09:15:02:1c:
1b:f3:43:19:a5:c1:a9:a0:fb:f9:98:ee:e4:af:7c:
e2:ad:51:6d:c5:74:03:4d:db:f1:e0:69:ed:9a:23:
d8:cd:34:0b:83:6a:32:4e:1d:c0:91:fc:88:17:02:
0d:bd:6d:d9:b9:92:71:6b:8f:23:40:f9:48:fe:16:
59:af:f4:9c:33:7d:3f:08:65:ff:f1:e5:9c:4d:e8:
e8:7b:4a:c3:16:6d:53:9d:92:d7:86:9b:95:fb:5d:
86:6d:af:00:dd:6f:25:0d:53:70:7e:b6:36:11:94:
d1:90:b5:f1:6d:a8:b0:e8:2d:0d:c5:85:b5:50:4b:
7e:b0:57:8d:82:6d:bb:e0:82:64:3b:a4:d6:c4:d7:
0a:2c:89:61:47:99:67:5e:71:1f:5c:66:14:08:fa:
29:88:09:3b:38:60:4d:01:67:53:fe:16:85:70:54:
bf:e1:5e:76:b8:33:e3:9c:17:08:a4:0f:f2:c5:e1:
ac:99:94:7e:10:47:7d:51:43:42:85:df:e2:9a:53:
07:c4:2f:c8:bf:56:da:0b:7f:41:6d:8f:76:42:b0:
25:3c:fb:0a:f4:d0:d0:b3:79:72:70:0d:07:95:97:
c1:11:82:ff:c4:13:ec:0f:cf:bb:4e:b8:4a:ed:ca:
3c:a3
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E
X509v3 Authority Key Identifier:
keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
f1:15:45:a9:e4:9a:c2:7c:86:36:c5:7a:30:3d:67:bb:f3:c6:
69:96:1e:12:92:47:79:19:34:c6:6c:d7:5a:e3:6b:b9:7e:90:
ed:dd:2b:34:1c:bd:25:8b:4a:b9:d0:7e:b0:c1:fd:f1:49:54:
11:00:40:d9:4e:f1:a8:e8:73:a3:98:ad:d6:85:ea:2c:9d:a0:
f3:1f:a2:e5:7c:f2:96:f8:71:ad:ab:d0:c5:92:3c:ee:22:9b:
ee:5b:21:c8:5c:0a:52:db:d7:81:df:49:c4:37:a6:9b:f9:b5:
90:cf:eb:b1:bb:22:58:86:26:68:f4:0f:a1:2b:86:d1:c2:f0:
34:38:c4:f8:3b:a0:83:8b:4c:5a:e1:09:ae:4e:7e:0c:be:12:
c7:d1:85:1a:4b:28:bb:95:ca:2a:50:b1:dc:06:35:93:a8:88:
ee:87:99:8d:c6:01:43:3d:6d:c2:6a:ea:f5:22:04:dc:fb:a0:
8b:6c:df:27:1f:fa:86:f0:0a:62:a3:2f:1c:99:d0:d0:4a:82:
d5:4e:3b:91:f6:86:72:a4:cc:43:60:ab:06:c8:3c:f2:a0:bc:
54:05:13:96:8f:41:ed:fc:38:a0:ea:ed:a7:23:20:5f:43:1a:
55:6c:e1:e0:22:c7:15:66:16:8a:2f:d2:78:22:6e:4a:24:db:
04:52:a7:58
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----