blob: f95a50c42e6ebe1d8a6a04ac621c41c4c8e800c8 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the target certificate uses a EC key and has the single key usage keyAgreement
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
72:41:46:e2:6f:47:ae:e6:ef:ca:22:1e:bc:61:9b:ed:27:e8:61:41
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:6a:64:c7:4b:c6:a0:87:b5:c2:07:13:ac:b8:0d:
37:95:90:e4:e2:82:95:31:6f:62:e5:1f:b0:59:30:
e9:2b:c6:e0:b4:83:9b:54:9d:61:56:d6:04:10:b7:
f3:b9:5e:31:e6:cf:af:40:0e:aa:7a:2a:d8:1c:ee:
5d:d1:5c:17:64:c7:37:f7:34:3d:42:6c:10:0c:ad:
e3:27:a9:ef:e6:02:48:66:0f:61:92:37:fe:26:53:
2c:9f:79:a7:29:7c:4c
ASN1 OID: secp384r1
NIST CURVE: P-384
X509v3 extensions:
X509v3 Subject Key Identifier:
DE:7D:41:4C:94:83:61:60:ED:FA:58:3C:92:33:58:E5:79:C2:07:A0
X509v3 Authority Key Identifier:
keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:38
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Key Agreement
X509v3 Extended Key Usage:
TLS Web Server Authentication
Signature Algorithm: sha256WithRSAEncryption
1d:fe:25:41:1c:76:58:ce:6e:b4:71:b7:fc:04:78:e3:5a:aa:
a0:17:68:21:75:f1:a8:b7:bc:f7:88:d6:31:a6:a5:84:2e:9e:
8d:6e:b7:0f:28:ad:46:fe:9a:0e:f9:8e:12:b6:36:d6:aa:52:
a5:4e:b5:ec:86:2e:63:43:25:46:b9:67:6a:ea:2e:21:7c:d1:
91:3d:eb:ae:e5:15:77:22:d6:2a:32:9e:e7:d3:5c:05:a3:69:
d0:aa:c2:26:e3:2e:4d:4d:57:c3:67:7b:2f:d2:57:3b:92:7e:
bf:a5:4a:ee:3f:31:2b:d5:43:b3:48:8c:41:cc:a8:f5:e8:e5:
36:df:93:25:83:a5:cf:dd:f9:88:d1:da:0a:5c:53:e1:ba:e5:
bb:b6:0a:41:c9:1d:fa:29:d7:9e:b7:5f:a7:55:98:a1:5b:43:
12:84:99:78:9d:30:c3:c6:78:41:69:bb:0d:5a:90:6a:69:8b:
8d:aa:1b:bd:d7:9c:9b:06:81:d5:73:e7:17:7f:bd:a5:b9:3b:
dc:5d:77:8d:eb:8f:d2:e2:2e:36:5f:af:4b:e1:ea:6a:3d:45:
e8:a7:ad:14:00:44:00:c8:de:9a:f3:5b:de:24:0a:7a:ee:eb:
19:bf:f2:18:d6:9a:d3:09:ba:d6:ff:db:b8:58:e1:81:23:0e:
e8:95:51:ac
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
31:2c:98:11:ad:7d:7c:47:ab:8a:21:e3:43:a7:12:a0:c9:a9:32:4f
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ad:ea:23:0c:dc:31:55:3d:23:7a:a3:0f:5e:16:
9e:62:44:e4:28:bf:0b:b0:76:a3:5e:71:e7:a9:85:
52:1e:ae:3b:2b:21:0d:95:35:73:c2:c0:a0:78:13:
d3:fc:27:57:8a:98:de:83:e3:8f:a3:13:a5:20:a7:
a9:bf:c8:f5:02:1b:08:1a:2e:a5:04:7a:11:24:a1:
59:11:3d:c0:3b:57:35:62:cd:2a:41:cd:5c:15:35:
ac:c8:66:f8:a9:f2:d4:1c:0c:b4:dc:9d:7b:99:f9:
07:1b:c9:f0:03:6a:6c:71:d8:e6:cb:7a:ec:c7:a7:
b7:36:0b:f0:49:22:37:22:f4:77:f3:1a:a6:57:59:
0b:6c:6a:3b:b8:d1:47:df:48:ac:54:ee:82:1e:39:
14:dc:a6:9c:ab:33:b7:87:4f:3b:70:55:af:db:40:
e5:26:a9:0f:bc:59:8f:61:92:47:0a:34:73:de:fb:
25:fa:f1:bd:a4:03:35:93:5e:57:a3:a3:3f:13:e6:
09:68:c5:51:29:20:53:b8:5e:fa:8a:ce:e8:0a:ef:
9e:07:6e:55:f7:f6:c1:e7:12:9f:22:c1:72:b8:2a:
af:25:34:eb:08:28:36:73:8e:f6:80:70:21:16:8a:
81:2b:69:47:62:c5:ef:7e:dd:80:7c:09:4e:6d:57:
86:4f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:38
X509v3 Authority Key Identifier:
keyid:71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
82:0d:33:af:1d:80:86:1e:a2:8b:52:ac:dd:cd:23:71:f9:ea:
ee:a0:05:14:b8:89:70:6c:c4:ff:ad:d2:5d:ab:d5:dd:fa:6f:
c9:c9:ef:2d:8e:e7:a1:45:1a:12:c1:b9:64:00:a7:ff:84:c2:
0b:a8:66:b5:28:ab:46:cc:77:05:a8:af:c3:0a:93:5b:49:6a:
4b:f0:01:5d:14:7d:30:ec:ee:6c:c6:cd:33:4e:9e:5b:7b:16:
2f:e2:a8:69:9d:ea:2a:c1:da:c1:fb:6d:61:ab:8e:c2:ec:c9:
58:2b:b2:97:ad:bf:3e:5e:b0:b4:87:20:b5:a0:d1:d5:18:5a:
19:d5:7d:a1:79:78:c8:8a:d7:d7:e3:39:30:27:07:60:e2:bb:
ac:39:f0:5f:e5:ea:dd:76:7b:b0:0f:32:e8:4b:a3:bf:40:04:
89:eb:da:1e:2e:ab:7f:04:56:d1:fe:ff:05:a8:ab:53:b5:f3:
d0:f7:3a:ea:f0:0f:53:fd:a8:87:ca:0a:53:47:ef:f5:d3:35:
d5:54:b0:cd:77:a5:1f:bc:42:84:ba:9d:2a:a1:c4:8f:11:33:
72:33:70:f4:ce:42:77:26:d2:df:aa:6f:5f:d1:9d:dc:30:94:
ee:40:76:26:39:87:17:8c:42:a9:a6:ec:fb:1e:2a:26:d4:6f:
f4:54:42:f0
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
31:2c:98:11:ad:7d:7c:47:ab:8a:21:e3:43:a7:12:a0:c9:a9:32:4e
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b2:df:0b:0b:a2:8a:9c:9c:68:ad:24:f9:f9:e6:
95:ef:e4:71:1e:00:fb:ec:bf:b1:cb:6e:d6:40:30:
42:7a:38:87:9e:5b:cd:58:3e:b7:31:5c:8d:0d:84:
7a:be:ef:e6:98:ba:4e:c5:ae:2b:2f:66:b2:b2:3f:
e7:c0:a8:8b:75:60:61:2a:67:8a:d2:55:72:83:e2:
ff:de:76:d6:63:58:79:ba:91:c1:80:e1:06:1b:35:
9c:b3:e9:19:f8:c7:21:80:dd:9e:04:18:35:de:df:
00:80:21:09:06:3c:6c:9a:de:10:d1:fd:4d:2f:27:
5e:56:24:44:67:88:48:e4:25:52:cc:c7:17:3f:69:
1f:76:fc:b1:83:45:48:5d:37:da:80:3e:3d:7f:f6:
8d:ec:83:00:d6:2f:c4:41:5d:79:ae:ad:14:4c:24:
b3:5e:1e:fe:ed:e8:39:17:4a:4b:ca:eb:10:5d:6e:
af:38:58:b1:12:a5:69:bd:bd:63:dd:f5:21:71:2c:
36:37:72:51:3b:3a:de:8f:1e:a0:e2:6b:45:da:02:
ad:7e:04:b7:d3:c8:64:34:c6:f4:08:a0:e5:c9:02:
1b:6f:42:22:be:d3:8b:7b:63:6e:39:c4:97:17:c6:
9a:ba:9e:26:9b:e1:65:a6:4d:4a:93:5e:b2:4e:18:
9d:c1
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80
X509v3 Authority Key Identifier:
keyid:71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
98:37:61:72:8b:00:ab:c2:26:90:43:ed:f3:96:29:ef:93:65:
f0:cd:00:70:f1:13:96:b8:b7:fe:a0:e7:71:34:24:97:79:c3:
de:a1:51:6b:c7:13:79:46:cb:82:52:20:da:88:dc:5f:9d:4b:
79:a3:8b:cd:b2:5d:ee:fc:47:8a:b1:83:a8:b3:a9:bd:24:77:
90:4f:09:cf:50:94:f6:cd:16:f5:6a:16:65:7c:82:3f:e6:88:
f0:5e:6e:66:ab:a3:54:b8:54:92:15:ff:bd:8c:de:ed:cb:1a:
47:02:c5:92:0e:74:82:c4:d2:76:52:71:22:84:c9:bf:92:c4:
4c:0d:02:53:5a:56:2b:be:27:87:0f:86:5e:a5:4f:e8:bb:49:
ab:29:94:37:03:75:2c:69:9e:9b:63:31:9a:9f:f6:c0:bf:23:
f6:17:9f:5c:54:28:f6:d7:4c:3a:ce:0d:b6:aa:35:1f:6e:65:
99:98:34:03:8d:ef:4e:f0:91:9d:f3:fb:db:f8:92:09:dc:fc:
f9:ef:07:f3:a7:16:2e:e0:3b:de:49:ff:8b:5d:40:9c:f4:3b:
9c:6b:35:b7:ab:00:cd:c0:0d:b5:55:ea:99:bb:5c:ee:3a:25:
f6:22:08:8b:28:22:1e:23:8c:71:c8:cd:04:78:58:a6:46:5e:
12:7f:8f:d5
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----