| [Created by: generate-chains.py] |
| |
| Certificate chain where both the intermediate and target certificates have |
| incorrect signatures. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 12:3d:2e:d4:5e:20:54:23:3a:0b:c1:18:e2:e3:1e:58:f9:35:fd:a2 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b1:5e:cb:41:90:73:c4:13:ce:74:69:2e:d2:cb: |
| 92:f1:dd:1c:30:d5:bc:33:af:7d:e7:b2:5a:4a:c2: |
| 7e:61:cb:44:97:9d:85:26:10:db:fc:07:c7:f2:6c: |
| 87:7a:f0:fb:4c:c8:1b:ed:7c:3e:19:4c:5e:b1:e8: |
| ba:10:8f:f3:2e:50:b4:56:ff:1f:7a:70:96:ee:f6: |
| d1:f9:f2:57:db:56:c7:d3:fd:cd:5a:ec:e0:e7:c8: |
| 39:ca:3a:99:c0:d4:38:77:08:94:e2:4c:a9:5b:b8: |
| bd:97:8a:df:45:7c:fd:b0:ed:c8:b2:09:35:53:4e: |
| 6f:58:42:60:c6:92:42:e8:f6:22:6a:8b:c4:e1:08: |
| 00:e6:a7:48:c9:64:4b:13:7e:ca:c8:05:17:b5:60: |
| 66:db:f0:25:eb:24:e4:9f:bf:6b:96:21:18:bf:a7: |
| 19:5c:2f:2f:63:9a:de:b6:83:c5:1a:fd:f0:25:18: |
| 7a:43:4a:15:d0:76:b0:3f:22:f3:6f:71:b1:23:74: |
| 7b:3c:14:ca:8a:b1:7f:07:6c:3a:f6:01:32:1b:38: |
| 4f:ba:14:50:00:9f:5e:09:0f:c3:b2:f2:25:bc:d0: |
| e0:f3:6f:af:58:22:5f:86:0f:b4:c6:fe:5e:41:b5: |
| da:2a:e0:5e:18:f1:7c:79:3c:57:b7:68:5d:27:4e: |
| 85:17 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 54:31:EB:0B:BA:22:61:28:F7:82:FB:D1:FA:BA:43:92:AD:92:66:23 |
| X509v3 Authority Key Identifier: |
| keyid:6D:10:36:87:AF:FA:A8:A3:9B:79:07:26:E8:A6:DA:49:43:67:94:CA |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| 56:6a:31:ab:3f:4a:1d:5a:29:38:3d:bf:f4:e2:df:18:86:74: |
| 6e:dc:5b:87:8d:a0:f4:29:6a:41:1e:33:ef:38:c3:44:65:30: |
| a2:3b:93:92:95:1b:09:b2:c1:eb:5a:8f:38:45:24:51:26:75: |
| f3:0a:a1:01:60:ed:4e:1b:b0:14:db:03:e3:57:32:48:a2:0f: |
| 52:13:00:fd:60:f3:68:ee:66:2e:83:58:ca:59:2f:38:77:75: |
| 56:01:91:ea:1e:34:c4:7f:e7:91:33:a0:ea:c6:e5:cb:e6:cc: |
| 0a:ef:01:5b:48:3a:a0:4a:e3:12:3d:c0:d5:07:e7:7e:33:39: |
| f2:0a:8d:9a:e1:cc:6e:74:5c:54:cb:03:d7:65:76:38:08:3c: |
| d7:c0:4e:c9:92:f4:65:27:7f:66:56:0c:8c:42:94:66:a3:37: |
| 62:db:af:03:80:18:dc:75:96:b5:2f:4a:a7:f3:d6:10:f0:1f: |
| ea:ae:76:a4:80:7f:06:b1:12:57:3a:a1:49:38:cc:85:27:01: |
| ef:15:6e:06:3f:3f:a0:1b:77:a0:ed:a1:42:64:54:dc:28:2a: |
| 7e:e3:10:5b:1b:c8:03:2a:42:35:98:e4:63:65:6b:06:f3:9a: |
| eb:38:64:03:db:5e:a0:a6:53:9a:89:72:39:dd:e5:8f:d7:1f: |
| 35:7d:94:19 |
| -----BEGIN CERTIFICATE----- |
| MIIDoDCCAoigAwIBAgIUEj0u1F4gVCM6C8EY4uMeWPk1/aIwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAsV7LQZBzxBPOdGku0suS8d0cMNW8M69957JaSsJ+YctE |
| l52FJhDb/AfH8myHevD7TMgb7Xw+GUxesei6EI/zLlC0Vv8fenCW7vbR+fJX21bH |
| 0/3NWuzg58g5yjqZwNQ4dwiU4kypW7i9l4rfRXz9sO3Isgk1U05vWEJgxpJC6PYi |
| aovE4QgA5qdIyWRLE37KyAUXtWBm2/Al6yTkn79rliEYv6cZXC8vY5retoPFGv3w |
| JRh6Q0oV0HawPyLzb3GxI3R7PBTKirF/B2w69gEyGzhPuhRQAJ9eCQ/DsvIlvNDg |
| 82+vWCJfhg+0xv5eQbXaKuBeGPF8eTxXt2hdJ06FFwIDAQABo4HpMIHmMB0GA1Ud |
| DgQWBBRUMesLuiJhKPeC+9H6ukOSrZJmIzAfBgNVHSMEGDAWgBRtEDaHr/qoo5t5 |
| ByboptpJQ2eUyjA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF |
| oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD |
| ggEBAFZqMas/Sh1aKTg9v/Ti3xiGdG7cW4eNoPQpakEeM+84w0RlMKI7k5KVGwmy |
| wetajzhFJFEmdfMKoQFg7U4bsBTbA+NXMkiiD1ITAP1g82juZi6DWMpZLzh3dVYB |
| keoeNMR/55EzoOrG5cvmzArvAVtIOqBK4xI9wNUH534zOfIKjZrhzG50XFTLA9dl |
| djgIPNfATsmS9GUnf2ZWDIxClGajN2LbrwOAGNx1lrUvSqfz1hDwH+qudqSAfwax |
| Elc6oUk4zIUnAe8VbgY/P6Abd6DtoUJkVNwoKn7jEFsbyAMqQjWY5GNlawbzmus4 |
| ZAPbXqCmU5qJcjnd5Y/XHzV9lBk= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 72:76:3e:27:78:9f:9e:db:6e:36:c5:5a:8a:59:bc:82:3a:8c:7a:a2 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b6:52:3d:81:21:43:60:33:fc:4e:76:28:8c:26: |
| 3c:d9:1b:05:4b:b7:ba:5d:41:f7:9e:08:72:b2:0f: |
| a9:bb:37:1b:b8:6d:10:62:cf:c2:29:97:7b:97:49: |
| f4:3b:87:d9:29:64:72:f0:99:04:23:23:84:83:04: |
| 3c:01:15:95:1a:f8:02:ba:0e:9c:d2:f6:45:54:f9: |
| a8:e9:e7:7c:2e:f5:e7:b4:38:4a:bb:d0:40:f8:51: |
| 50:63:b0:fc:2e:39:f9:6b:a3:c9:dd:39:df:47:b6: |
| d4:81:2b:19:43:99:a7:f1:1c:4e:53:79:f0:40:4c: |
| 46:fa:e9:df:da:df:75:7a:8b:25:9d:f0:d6:85:16: |
| 88:f2:eb:65:19:b9:42:1f:07:bd:7e:8d:3d:73:8d: |
| 6f:f5:b6:e4:bc:af:4d:0e:f6:f4:37:e1:58:fb:a1: |
| 6d:06:d5:80:00:16:f3:57:6f:ea:07:f3:c1:a0:ad: |
| ab:5e:4d:c8:f7:e8:fa:c1:b6:c6:01:fb:6a:22:4d: |
| 1d:f7:44:7e:69:16:48:f0:93:0c:b4:45:c7:4f:15: |
| 84:29:f6:c3:a3:c3:1e:9c:8c:46:2a:47:fc:61:86: |
| d6:62:82:74:06:98:57:b4:4e:11:c8:b2:44:b1:76: |
| e4:38:3b:5f:19:df:f5:15:80:40:f0:75:4c:2c:c1: |
| 9d:cd |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| DB:88:D7:0B:35:2B:9E:30:59:D2:1A:51:1D:AC:7D:E3:C0:41:85:34 |
| X509v3 Authority Key Identifier: |
| keyid:6E:7B:C8:25:11:11:8C:B7:37:E8:5A:B8:3B:F5:25:A1:06:7D:A6:A1 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| a9:aa:26:25:a9:fa:62:95:d8:50:38:1e:97:fc:5f:a3:30:50: |
| 5b:d4:40:1d:59:70:15:31:fa:ac:eb:90:fe:f3:8e:36:f7:dc: |
| 16:6c:10:20:da:05:f3:f5:14:06:f9:61:a8:89:05:d8:b0:a0: |
| 94:c9:d1:5e:78:7e:a2:02:ca:d4:86:d3:1e:c2:40:43:c9:c4: |
| bb:ab:ae:22:9c:24:85:2f:61:68:4c:5b:bd:c4:b6:5a:d0:8d: |
| 10:b5:d7:d9:6a:8d:52:13:5f:6a:e1:78:b1:a8:ab:ed:93:bf: |
| 26:d0:1f:01:3b:e6:94:92:44:dc:a1:f8:4d:35:39:e4:9a:d9: |
| ae:67:4c:32:ca:8b:9f:52:7e:34:bc:54:0a:9a:c9:96:6d:a8: |
| e6:ee:7e:92:ff:1e:c4:d4:38:3c:f2:02:cb:5f:47:12:56:64: |
| 01:a0:8c:45:4b:3c:50:a7:ed:d2:e5:4f:06:0d:6a:45:32:66: |
| f8:1b:58:0c:b3:a4:90:f7:c0:9e:cf:42:a7:56:f0:c1:29:dc: |
| 00:27:d8:c3:07:42:df:4b:e2:23:38:a1:80:f3:78:b6:c7:63: |
| 2a:ea:92:33:54:d0:88:60:44:90:69:c5:00:d9:66:be:0c:a1: |
| b7:28:52:88:6a:83:cf:1a:e4:16:d8:9f:a1:44:ed:0a:59:24: |
| 15:4f:45:9e |
| -----BEGIN CERTIFICATE----- |
| MIIDgDCCAmigAwIBAgIUcnY+J3ifnttuNsVailm8gjqMeqIwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBALZSPYEhQ2Az/E52KIwmPNkbBUu3ul1B954IcrIPqbs3G7ht |
| EGLPwimXe5dJ9DuH2SlkcvCZBCMjhIMEPAEVlRr4AroOnNL2RVT5qOnnfC7157Q4 |
| SrvQQPhRUGOw/C45+Wujyd0530e21IErGUOZp/EcTlN58EBMRvrp39rfdXqLJZ3w |
| 1oUWiPLrZRm5Qh8HvX6NPXONb/W25LyvTQ729DfhWPuhbQbVgAAW81dv6gfzwaCt |
| q15NyPfo+sG2xgH7aiJNHfdEfmkWSPCTDLRFx08VhCn2w6PDHpyMRipH/GGG1mKC |
| dAaYV7ROEciyRLF25Dg7Xxnf9RWAQPB1TCzBnc0CAwEAAaOByzCByDAdBgNVHQ4E |
| FgQU24jXCzUrnjBZ0hpRHax948BBhTQwHwYDVR0jBBgwFoAUbnvIJRERjLc36Fq4 |
| O/UloQZ9pqEwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MA0GCSqGSIb3DQEBCwUAA4IBAQCpqiYlqfpildhQOB6X/F+jMFBb1EAdWXAVMfqs |
| 65D+844299wWbBAg2gXz9RQG+WGoiQXYsKCUydFeeH6iAsrUhtMewkBDycS7q64i |
| nCSFL2FoTFu9xLZa0I0QtdfZao1SE19q4XixqKvtk78m0B8BO+aUkkTcofhNNTnk |
| mtmuZ0wyyoufUn40vFQKmsmWbajm7n6S/x7E1Dg88gLLX0cSVmQBoIxFSzxQp+3S |
| 5U8GDWpFMmb4G1gMs6SQ98Cez0KnVvDBKdwAJ9jDB0LfS+IjOKGA83i2x2Mq6pIz |
| VNCIYESQacUA2Wa+DKG3KFKIaoPPGuQW2J+hRO0KWSQVT0We |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 72:76:3e:27:78:9f:9e:db:6e:36:c5:5a:8a:59:bc:82:3a:8c:7a:9f |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:f9:1b:7f:13:42:25:83:e6:a3:28:53:28:a2:42: |
| 76:db:ec:c0:1d:88:3c:ee:37:ad:fe:24:a4:37:32: |
| 4c:32:27:be:25:31:0a:07:48:7f:8e:44:24:de:ec: |
| ef:e3:cd:f8:fc:a1:7e:b5:95:0e:03:2a:ee:07:e6: |
| 8a:fb:92:8b:92:5c:9c:51:3d:95:72:eb:5e:b5:d0: |
| b4:03:1e:26:5e:4d:f0:a0:ef:41:7a:a0:27:6f:a4: |
| 73:b9:61:04:a4:21:a2:9d:67:3d:34:ad:6e:c4:24: |
| 95:85:bb:3c:33:34:0c:91:a5:1f:fe:5e:6b:a6:8f: |
| b8:0c:00:cf:e4:f1:c5:6f:b3:1d:49:0c:2b:fe:07: |
| ab:8c:c6:55:5c:ef:44:7c:f9:7e:7d:80:63:93:e6: |
| 75:dd:16:72:c9:1d:95:c7:14:b4:1d:18:9e:fe:0a: |
| c8:b2:7d:55:06:e6:8b:bb:50:b6:46:cf:63:59:bb: |
| 66:8b:ae:b7:4a:4d:3e:a4:75:d2:00:1b:af:87:38: |
| fd:01:6d:96:0a:0b:e8:2e:f2:ad:d5:a8:10:7c:ff: |
| da:a7:62:1f:eb:8b:d6:6b:96:c1:0f:9a:0b:1b:46: |
| 63:e0:aa:54:c5:b0:f1:31:ad:7c:24:a9:27:84:a2: |
| df:06:86:63:4a:b2:9c:bb:b3:3f:89:d4:9c:7a:fa: |
| 91:25 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 72:8E:C0:44:D5:12:7A:32:45:EA:BC:89:19:85:84:95:C9:20:AF:09 |
| X509v3 Authority Key Identifier: |
| keyid:72:8E:C0:44:D5:12:7A:32:45:EA:BC:89:19:85:84:95:C9:20:AF:09 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 22:f4:a0:0d:4c:e8:ec:f9:a8:37:11:ad:b0:a3:4c:1e:a4:ae: |
| 2a:88:9f:1e:e9:52:0e:6f:b5:b2:0e:1a:41:73:62:5b:9b:e5: |
| 4f:76:31:33:41:ae:ee:6c:cd:3e:d3:a1:f7:6f:84:b5:0f:38: |
| ca:f4:4a:25:a2:09:77:70:54:cb:11:28:52:df:58:c0:d6:05: |
| f5:3c:a3:03:f3:6a:97:dd:2c:96:62:24:03:26:8c:c7:16:e0: |
| 08:b5:eb:68:bb:70:77:aa:68:a3:ba:5c:15:5e:1b:73:4c:0f: |
| 72:96:df:72:dd:b6:df:13:e2:9d:cf:44:fa:fe:aa:20:34:4b: |
| 28:e7:1d:a5:9f:f0:de:c9:5e:ca:f1:48:b6:3c:b0:4f:7a:7f: |
| 90:1e:c0:6a:f5:aa:a5:a4:aa:fc:08:9b:2e:1d:15:bc:57:88: |
| cd:0c:29:fb:eb:97:07:d2:01:16:47:4f:8c:fb:04:68:6c:d1: |
| 40:0e:04:8b:bf:d0:9a:49:c8:5b:31:a1:41:6f:5a:7d:97:aa: |
| cf:7b:15:41:45:96:78:3b:07:72:bb:97:87:69:6d:fa:91:84: |
| f5:e8:4e:2d:17:c8:ed:0e:b1:0e:4c:38:0c:dc:06:ab:66:2d: |
| 68:78:34:03:1f:6a:75:ec:99:2f:b5:81:8e:6a:0d:3d:f3:53: |
| 22:b6:f5:ea |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUcnY+J3ifnttuNsVailm8gjqMep8wDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQD5G38TQiWD5qMoUyiiQnbb7MAdiDzuN63+JKQ3MkwyJ74lMQoHSH+ORCTe |
| 7O/jzfj8oX61lQ4DKu4H5or7kouSXJxRPZVy61610LQDHiZeTfCg70F6oCdvpHO5 |
| YQSkIaKdZz00rW7EJJWFuzwzNAyRpR/+Xmumj7gMAM/k8cVvsx1JDCv+B6uMxlVc |
| 70R8+X59gGOT5nXdFnLJHZXHFLQdGJ7+CsiyfVUG5ou7ULZGz2NZu2aLrrdKTT6k |
| ddIAG6+HOP0BbZYKC+gu8q3VqBB8/9qnYh/ri9ZrlsEPmgsbRmPgqlTFsPExrXwk |
| qSeEot8GhmNKspy7sz+J1Jx6+pElAgMBAAGjgcswgcgwHQYDVR0OBBYEFHKOwETV |
| EnoyReq8iRmFhJXJIK8JMB8GA1UdIwQYMBaAFHKOwETVEnoyReq8iRmFhJXJIK8J |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEAIvSgDUzo7PmoNxGtsKNMHqSuKoifHulSDm+1sg4aQXNiW5vl |
| T3YxM0Gu7mzNPtOh92+EtQ84yvRKJaIJd3BUyxEoUt9YwNYF9TyjA/Nql90slmIk |
| AyaMxxbgCLXraLtwd6poo7pcFV4bc0wPcpbfct223xPinc9E+v6qIDRLKOcdpZ/w |
| 3sleyvFItjywT3p/kB7AavWqpaSq/AibLh0VvFeIzQwp++uXB9IBFkdPjPsEaGzR |
| QA4Ei7/QmknIWzGhQW9afZeqz3sVQUWWeDsHcruXh2lt+pGE9ehOLRfI7Q6xDkw4 |
| DNwGq2YtaHg0Ax9qdeyZL7WBjmoNPfNTIrb16g== |
| -----END CERTIFICATE----- |