blob: de3425c8837259f39737ad2018a77f1ec463ac45 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain with 2 intermediates and one end entity certificate. The
root certificate has a pathlen:1 restriction. Ordinarily this would be an
invalid chain, however constraints on this trust anchor are not enforced.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6f:b6:20:7f:8e:28:e1:ab:46:5c:ea:21:e3:04:e6:9e:26:6c:cd:7a
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate2
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:9d:b0:80:41:9a:d5:31:ea:d0:f6:46:1d:cd:f5:
e0:b8:d1:d4:21:fa:7b:01:03:9a:2a:dc:f0:f1:91:
75:4e:57:cb:b6:d2:03:4d:49:16:cf:85:87:a7:e8:
b5:de:55:67:d1:9f:1a:2a:19:2c:00:91:00:81:c4:
92:cc:03:be:c1:f2:c5:72:39:94:b6:1e:5f:4a:70:
83:7d:5a:05:2d:02:a7:84:25:2a:da:11:c4:d4:e8:
7f:1a:fb:88:6b:52:f9:8c:c9:c7:99:21:75:35:c3:
84:a0:a1:b1:32:6e:1f:e4:b4:bc:21:5b:e4:7b:e0:
85:06:3d:bf:fb:c0:92:66:1e:53:ff:d0:16:3b:a5:
7c:32:07:10:54:b7:98:3d:70:2f:fc:ee:54:3e:74:
a8:ec:4b:45:11:e5:08:d1:54:2b:a9:78:83:bc:55:
92:3e:71:e4:ba:ac:67:28:f2:4d:3e:8c:8f:26:88:
02:fc:04:82:a9:88:bf:c7:95:4d:8c:d5:0e:17:2d:
ea:90:ad:6e:e4:7e:76:89:c6:0d:f4:5a:35:1a:72:
d4:91:38:50:cc:f3:1b:05:ff:80:d3:b2:e9:0a:5d:
8a:9f:b8:b2:2a:20:a8:76:b5:41:1b:80:33:7c:79:
12:fa:ff:36:df:61:22:c5:fa:27:4a:88:75:a8:f5:
5d:49
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
ED:D0:2C:C2:73:F7:C3:03:A2:08:6E:44:C9:E5:97:16:A5:B9:C9:EC
X509v3 Authority Key Identifier:
keyid:48:81:22:AA:57:F7:0B:70:A7:D6:32:4B:AA:85:CD:7C:F2:85:30:2B
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate2.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate2.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
68:d6:fa:32:92:af:ed:95:46:40:1d:34:f9:19:84:83:61:a1:
e3:64:2b:ec:32:60:5a:89:2d:94:1b:69:7c:b3:02:1c:53:52:
5a:e1:5e:25:69:1b:84:d2:e6:c4:18:f1:85:4f:63:a0:be:3e:
6d:69:13:71:15:82:ad:6d:54:67:02:26:a2:ea:e6:71:7c:2a:
2d:da:7e:52:90:e9:4e:a4:fb:1e:a2:b4:15:f6:59:33:d3:9e:
39:88:22:fd:98:65:cf:88:bf:13:1c:72:bd:ad:8b:e2:db:e0:
1b:b5:fd:32:29:a9:fb:21:8a:a6:b3:1c:72:59:47:0e:24:b5:
d2:79:4f:bb:f0:fc:0b:a8:e5:9c:ab:14:b6:ea:bd:44:7e:3b:
17:9e:a0:b3:51:08:82:f6:dc:48:4b:4a:d2:07:69:d6:ef:f4:
c2:34:81:50:16:a9:ab:0b:89:ed:1c:0d:2a:48:12:77:b5:78:
30:4e:6d:2a:37:e2:a5:f0:97:d1:88:29:75:9d:6a:5a:87:10:
73:25:52:f4:99:a7:80:27:25:27:8e:01:51:4e:14:ca:cc:3a:
ce:5f:a4:13:d1:1a:1e:95:8d:7e:7b:dd:23:13:27:61:bb:67:
c0:46:f1:c3:a5:29:75:08:7f:75:e5:bf:c4:77:d6:3e:40:bf:
a8:eb:c6:1e
-----BEGIN CERTIFICATE-----
MIIDozCCAougAwIBAgIUb7Ygf44o4atGXOoh4wTmniZszXowDQYJKoZIhvcNAQEL
BQAwGDEWMBQGA1UEAwwNSW50ZXJtZWRpYXRlMjAeFw0xODAzMTAxMjAwMDBaFw0y
MTAxMDExMjAwMDBaMBExDzANBgNVBAMMBlRhcmdldDCCASIwDQYJKoZIhvcNAQEB
BQADggEPADCCAQoCggEBAJ2wgEGa1THq0PZGHc314LjR1CH6ewEDmirc8PGRdU5X
y7bSA01JFs+Fh6fotd5VZ9GfGioZLACRAIHEkswDvsHyxXI5lLYeX0pwg31aBS0C
p4QlKtoRxNTofxr7iGtS+YzJx5khdTXDhKChsTJuH+S0vCFb5HvghQY9v/vAkmYe
U//QFjulfDIHEFS3mD1wL/zuVD50qOxLRRHlCNFUK6l4g7xVkj5x5LqsZyjyTT6M
jyaIAvwEgqmIv8eVTYzVDhct6pCtbuR+donGDfRaNRpy1JE4UMzzGwX/gNOy6Qpd
ip+4siogqHa1QRuAM3x5Evr/Nt9hIsX6J0qIdaj1XUkCAwEAAaOB6zCB6DAdBgNV
HQ4EFgQU7dAswnP3wwOiCG5EyeWXFqW5yewwHwYDVR0jBBgwFoAUSIEiqlf3C3Cn
1jJLqoXNfPKFMCswQAYIKwYBBQUHAQEENDAyMDAGCCsGAQUFBzAChiRodHRwOi8v
dXJsLWZvci1haWEvSW50ZXJtZWRpYXRlMi5jZXIwNQYDVR0fBC4wLDAqoCigJoYk
aHR0cDovL3VybC1mb3ItY3JsL0ludGVybWVkaWF0ZTIuY3JsMA4GA1UdDwEB/wQE
AwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQEL
BQADggEBAGjW+jKSr+2VRkAdNPkZhINhoeNkK+wyYFqJLZQbaXyzAhxTUlrhXiVp
G4TS5sQY8YVPY6C+Pm1pE3EVgq1tVGcCJqLq5nF8Ki3aflKQ6U6k+x6itBX2WTPT
njmIIv2YZc+IvxMccr2ti+Lb4Bu1/TIpqfshiqazHHJZRw4ktdJ5T7vw/Auo5Zyr
FLbqvUR+OxeeoLNRCIL23EhLStIHadbv9MI0gVAWqasLie0cDSpIEne1eDBObSo3
4qXwl9GIKXWdalqHEHMlUvSZp4AnJSeOAVFOFMrMOs5fpBPRGh6VjX573SMTJ2G7
Z8BG8cOlKXUIf3Xlv8R31j5Av6jrxh4=
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6b:9a:a5:a2:a4:4b:4d:13:90:3b:56:a2:99:01:90:63:01:79:c0:69
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate1
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Intermediate2
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b9:41:a3:79:b8:9d:70:a4:25:58:5b:47:07:ad:
0a:23:3e:36:c4:44:c3:27:bb:cd:ab:c8:1b:4e:b8:
ba:d7:33:af:4a:59:74:cb:c1:5f:8c:8f:b6:0d:89:
ad:43:1f:3c:f4:64:11:0a:dc:ec:65:6d:85:5c:97:
7e:8d:79:4d:bf:2c:bc:7e:31:59:bc:b7:cb:1c:8b:
9a:10:ae:12:ed:93:50:72:66:45:c0:af:be:e7:e2:
0a:cd:b4:60:f8:03:3e:6a:e2:ca:ff:75:52:20:73:
d3:2b:af:72:91:1b:ee:31:ea:74:9b:a0:aa:b2:3a:
84:96:f3:00:65:a4:a7:21:e0:b1:96:d2:32:45:c6:
bd:6e:17:67:74:34:89:71:a8:2e:18:6b:12:1f:f1:
97:07:10:61:b2:c2:38:ac:44:97:e4:fb:99:33:4b:
7d:60:52:86:44:d4:df:91:0b:2d:04:37:b5:7e:5c:
fa:3d:46:9e:cf:0b:4f:1a:43:d9:9a:68:56:47:b5:
f0:68:80:67:a0:e4:d9:e2:25:d4:ff:3c:1a:b3:e0:
5f:d5:44:ec:d5:1b:e0:b2:be:fd:d1:26:89:25:4a:
18:4a:ca:44:d0:94:74:cb:a8:39:75:64:5a:19:21:
d1:4c:d9:b2:13:f0:d1:4f:6f:45:02:b7:3e:6e:10:
fe:5f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
48:81:22:AA:57:F7:0B:70:A7:D6:32:4B:AA:85:CD:7C:F2:85:30:2B
X509v3 Authority Key Identifier:
keyid:A7:AB:30:41:BC:BB:CC:D3:7C:21:06:CA:C4:71:84:FF:FA:00:FC:D3
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate1.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate1.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
29:2b:07:ac:7e:d4:cf:c6:50:3f:84:86:bb:1c:ca:e2:ec:7e:
51:f5:7b:ea:aa:1a:71:9f:7c:be:2c:1c:8f:9e:07:b6:b5:b6:
9c:68:d4:85:c8:48:74:b4:cd:12:41:ed:68:cd:f9:e6:49:a6:
3c:e6:32:0f:e8:46:5a:44:1f:fd:39:6f:4d:a2:39:f5:3d:3a:
51:20:13:14:9e:68:ec:a6:7e:3e:c6:c8:a2:54:c0:58:4b:b7:
06:78:1c:c8:86:b3:c3:2e:5a:e2:fa:a7:f1:09:d0:c6:c4:af:
3c:2c:76:2a:e0:fb:2e:31:e7:25:00:33:e5:de:39:27:a7:b8:
e6:34:92:31:e1:9f:29:57:1d:88:d2:a7:16:d9:15:b1:ea:b9:
6d:f3:77:d5:44:80:f6:9d:fd:9e:a1:18:bc:74:65:f1:bc:d4:
bc:ab:b2:88:69:c5:4c:cb:14:72:60:4a:bf:65:ae:df:71:c7:
45:a9:03:a7:7d:fc:cb:24:d0:d7:85:23:6a:f0:3f:8d:c3:6c:
d9:d9:af:33:8a:a5:77:80:18:9d:f7:1b:36:70:8a:27:10:2d:
d2:a3:48:90:19:cf:bc:5f:68:ab:57:14:f0:54:cd:d1:6b:08:
a9:3c:0c:f2:10:c9:25:5f:f5:00:5f:33:e1:7c:2c:f5:91:72:
c3:18:9b:cb
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
18:cb:b5:af:52:5d:40:86:d1:39:30:e5:fe:1a:28:65:33:e0:37:a9
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Intermediate1
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c1:37:3b:43:f5:80:3a:6f:88:94:a1:ea:18:3b:
56:7b:bc:4d:3e:b3:3c:dc:99:4a:aa:11:0c:3e:95:
ee:ed:76:27:5b:a5:81:59:73:69:dc:33:da:20:35:
48:00:ac:3e:43:5e:df:10:17:d8:d3:e9:11:da:00:
72:e7:d3:42:54:f1:93:39:0b:18:7a:0c:69:4d:12:
50:73:0c:f6:4f:44:8d:5f:c0:62:89:e5:f0:63:78:
1b:92:bb:23:67:8f:77:b1:d3:3f:b1:67:de:6b:aa:
0f:73:c3:d3:f2:69:84:7e:e3:04:34:25:69:23:13:
23:92:4d:d5:08:55:7d:77:b8:42:96:fd:f7:09:35:
20:4a:bf:8e:3d:16:9c:93:5d:81:a2:ed:9d:b4:b3:
43:06:74:f2:79:f1:26:d8:1a:b8:3c:35:e6:cd:d6:
36:79:5c:2d:3f:3e:df:1c:08:e9:5a:7a:cb:e4:e7:
aa:54:db:7e:96:38:a0:0c:39:65:68:88:3a:a0:05:
5a:79:ee:8e:dd:96:08:86:8d:3e:79:b1:7e:28:bd:
0f:9a:26:f5:de:8c:6c:7a:d8:e7:79:c4:9a:48:35:
26:2c:ac:1c:ce:d4:7f:a4:a2:75:e3:27:0f:0f:de:
5a:ba:7a:59:c7:ef:d8:39:8d:74:81:fc:37:a6:b1:
b7:4d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A7:AB:30:41:BC:BB:CC:D3:7C:21:06:CA:C4:71:84:FF:FA:00:FC:D3
X509v3 Authority Key Identifier:
keyid:2A:A9:CA:EF:18:15:3E:D3:AC:C4:EC:2D:A1:3C:8F:19:F8:EE:51:B5
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
30:05:0f:76:0d:07:33:fc:6a:66:8b:34:bf:3f:c9:75:fb:96:
12:f6:db:7b:3d:27:3a:c8:c0:26:29:a3:d2:2c:71:bd:46:a9:
47:50:2a:42:bf:85:b4:01:81:76:c6:b6:a7:74:e0:e8:fa:2d:
57:53:f3:30:61:1a:3e:c4:dd:b2:86:74:a1:6d:eb:ad:48:d3:
7e:ca:b8:12:56:be:bd:34:b0:bf:fb:1b:55:e3:9c:66:39:8e:
b0:b9:7b:b8:f0:2d:0e:58:2a:39:bb:52:90:92:c2:fc:f0:c6:
24:db:50:e9:f0:b0:38:d8:2b:50:5d:6b:ac:04:c2:81:0e:04:
d8:76:cc:d9:ac:cb:3c:ea:c0:f3:93:c0:4f:7e:37:2b:f4:bf:
f1:37:8d:c7:68:42:b2:94:49:85:e7:2a:23:be:70:9d:aa:d9:
69:97:ed:95:fb:ab:cb:52:29:ff:2c:07:5e:0a:74:13:ab:0f:
9d:13:a9:fc:f1:a7:6d:f7:31:98:a4:2d:42:bd:d6:37:ed:52:
e0:87:2b:46:76:5f:ac:e2:2d:ac:be:d3:37:0a:83:75:31:f1:
0c:77:ea:7d:0f:a1:4a:67:52:21:35:03:c2:01:d6:ff:4c:2b:
2d:5b:e5:38:40:d3:68:dd:02:37:ab:43:5f:59:5f:5c:06:92:
60:8a:09:dc
-----BEGIN CERTIFICATE-----
MIIDgTCCAmmgAwIBAgIUGMu1r1JdQIbROTDl/hooZTPgN6kwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw
MDBaMBgxFjAUBgNVBAMMDUludGVybWVkaWF0ZTEwggEiMA0GCSqGSIb3DQEBAQUA
A4IBDwAwggEKAoIBAQDBNztD9YA6b4iUoeoYO1Z7vE0+szzcmUqqEQw+le7tdidb
pYFZc2ncM9ogNUgArD5DXt8QF9jT6RHaAHLn00JU8ZM5Cxh6DGlNElBzDPZPRI1f
wGKJ5fBjeBuSuyNnj3ex0z+xZ95rqg9zw9PyaYR+4wQ0JWkjEyOSTdUIVX13uEKW
/fcJNSBKv449FpyTXYGi7Z20s0MGdPJ58SbYGrg8NebN1jZ5XC0/Pt8cCOlaesvk
56pU236WOKAMOWVoiDqgBVp57o7dlgiGjT55sX4ovQ+aJvXejGx62Od5xJpINSYs
rBzO1H+konXjJw8P3lq6elnH79g5jXSB/DemsbdNAgMBAAGjgcswgcgwHQYDVR0O
BBYEFKerMEG8u8zTfCEGysRxhP/6APzTMB8GA1UdIwQYMBaAFCqpyu8YFT7TrMTs
LaE8jxn47lG1MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3Vy
bC1mb3ItYWlhL1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwt
Zm9yLWNybC9Sb290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB
/zANBgkqhkiG9w0BAQsFAAOCAQEAMAUPdg0HM/xqZos0vz/JdfuWEvbbez0nOsjA
Jimj0ixxvUapR1AqQr+FtAGBdsa2p3Tg6PotV1PzMGEaPsTdsoZ0oW3rrUjTfsq4
Ela+vTSwv/sbVeOcZjmOsLl7uPAtDlgqObtSkJLC/PDGJNtQ6fCwONgrUF1rrATC
gQ4E2HbM2azLPOrA85PAT343K/S/8TeNx2hCspRJhecqI75wnarZaZftlfury1Ip
/ywHXgp0E6sPnROp/PGnbfcxmKQtQr3WN+1S4IcrRnZfrOItrL7TNwqDdTHxDHfq
fQ+hSmdSITUDwgHW/0wrLVvlOEDTaN0CN6tDX1lfXAaSYIoJ3A==
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
18:cb:b5:af:52:5d:40:86:d1:39:30:e5:fe:1a:28:65:33:e0:37:a8
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b6:f5:2f:2d:0b:bf:09:20:92:56:ed:6f:1b:b3:
4e:2c:7b:1b:7d:8e:97:f1:ee:95:bf:2e:b7:63:de:
9c:5b:35:3e:c1:5b:78:1e:6c:fd:94:fe:23:7d:6c:
28:bf:da:ac:d4:47:58:b4:ba:00:9e:aa:ce:23:44:
c6:a3:84:7a:5b:53:99:bc:20:f7:f9:76:10:1c:3d:
c4:45:af:b4:55:7f:03:26:54:6f:92:15:3c:e1:ea:
3d:00:c7:02:fb:ce:59:f9:5c:21:17:b2:18:9c:b8:
d2:d5:36:56:8d:7c:24:a0:76:66:7e:2e:18:88:d0:
ae:18:d8:65:98:56:33:0a:50:e8:28:eb:a9:fe:7e:
2e:b7:c7:39:93:61:2c:6b:04:80:fa:5b:c3:b5:3f:
82:b3:81:b3:92:2a:0a:ab:b0:1c:0d:3b:88:63:5e:
19:dd:bd:c4:0a:43:b6:a2:f8:c9:e7:86:33:7e:4a:
b4:8b:1d:87:24:a4:67:6a:1d:32:41:a9:73:74:05:
dd:09:34:b9:42:63:fd:2c:bc:53:6e:06:51:f4:9f:
eb:b0:8d:0f:ec:9c:4b:61:6e:18:e0:d0:e4:03:34:
34:66:1c:7c:33:64:f7:4d:4f:89:2d:a9:c3:b5:43:
08:82:df:ad:0b:03:0d:20:6b:cf:27:81:cb:a7:53:
7d:13
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
2A:A9:CA:EF:18:15:3E:D3:AC:C4:EC:2D:A1:3C:8F:19:F8:EE:51:B5
X509v3 Authority Key Identifier:
keyid:2A:A9:CA:EF:18:15:3E:D3:AC:C4:EC:2D:A1:3C:8F:19:F8:EE:51:B5
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:1
Signature Algorithm: sha256WithRSAEncryption
b4:51:9d:fb:9f:6d:75:92:d4:9d:ad:fb:84:94:58:95:09:a1:
75:a2:13:a7:fb:26:ff:92:0e:4e:b3:48:eb:d1:4b:12:74:45:
57:6e:10:0e:b4:34:d4:38:fd:59:d3:38:1b:e6:e3:08:97:f3:
1c:3e:1c:c9:c7:ca:83:23:90:8e:86:40:1f:30:bd:18:5e:bc:
eb:ae:b1:18:bc:ef:39:34:d1:f1:eb:e9:4f:ef:91:b8:44:f3:
4c:b8:0e:3e:9b:4a:2a:d3:49:43:2b:b9:bf:e3:f3:f3:e4:4a:
69:8a:b0:ce:03:bb:28:5e:da:77:ac:83:62:3f:54:4e:7b:7f:
de:65:4c:79:dd:e6:30:e9:f3:92:60:98:e6:08:ee:21:8b:c8:
2f:35:07:2a:9c:50:52:bf:fa:59:80:75:8a:2a:d8:82:b0:cd:
c2:78:93:fa:0b:8c:16:94:25:12:28:56:eb:20:1d:d6:84:d7:
33:de:18:8c:0d:95:01:fc:7c:c1:bc:e0:d6:e3:2a:23:ff:c5:
30:0d:c8:b2:90:7d:33:7b:f0:60:fc:57:fa:63:5d:26:8b:62:
25:15:8f:8f:48:9e:b2:78:45:3d:74:08:cb:6a:1d:69:44:ff:
38:16:96:af:53:60:67:3d:e9:06:49:5d:09:87:4e:3d:c3:25:
20:6d:7f:6d
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----