blob: c0c7b2b3712d035a9bffdbaa2d9f328e859a6508 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the intermediate contains an unknown non-critical
extension.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
15:0f:e8:d3:8e:fb:9a:03:b3:58:55:cb:3f:cf:6d:78:a5:26:b4:1f
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c1:45:b7:c7:2a:57:db:f0:c6:44:38:af:69:b5:
8a:33:9c:bf:ba:bf:19:8f:a4:96:5f:61:74:0c:3c:
95:c0:24:0a:a9:55:c9:3b:a3:1c:93:b3:d8:d8:40:
92:4f:c9:c0:9c:51:41:bb:ee:eb:ef:83:4b:d2:a5:
2f:da:74:90:bc:45:3a:62:7b:5a:e2:0e:9e:b3:83:
c2:8e:67:02:a2:4f:4b:8a:5b:33:19:16:3e:0f:f6:
01:f6:b6:c2:6c:17:8f:63:d2:91:3e:6a:2d:08:c8:
7c:51:f8:24:2f:dc:f7:74:24:0e:b6:9b:85:c8:2b:
82:81:0f:04:5f:d6:53:1e:53:2f:7e:1c:16:fc:3a:
77:f3:7f:51:1a:16:e0:7a:a4:05:89:d3:4a:9d:91:
03:db:a5:6d:6e:60:cb:f9:40:53:0f:5d:f8:b4:70:
23:5a:c7:ff:bf:45:1c:f1:21:8c:4a:9b:11:f7:8c:
df:9f:8a:94:be:2b:16:f1:9b:07:90:0d:ff:28:1c:
0e:4c:21:36:4e:18:86:50:2d:24:c0:d3:ce:f5:66:
a2:96:28:01:56:ba:97:d9:f9:fe:c6:0c:af:2f:34:
c3:b7:e1:b3:8a:85:3d:52:ef:fc:61:10:97:17:35:
95:fb:c8:e2:ae:49:1f:b4:8a:a7:70:76:b7:c7:df:
6b:71
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
49:9D:A7:97:77:91:95:74:7C:01:DC:46:BB:A1:09:4F:19:65:53:D1
X509v3 Authority Key Identifier:
keyid:07:F3:ED:92:2A:F7:2C:67:60:A8:EF:86:B2:9B:CC:97:5C:FA:CF:5A
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
be:73:bc:ed:53:55:01:cc:2a:cb:79:01:98:68:41:8f:b7:65:
1e:ca:17:8c:d7:51:7f:2b:06:50:28:f9:26:29:94:b5:c1:a1:
49:7a:d4:59:8d:53:23:41:0c:62:48:07:d1:d3:e5:18:24:13:
b2:a4:da:ac:e0:d7:08:18:ac:20:89:f6:77:a5:c7:6f:8b:0e:
6c:4f:4a:e0:ae:93:90:d6:9d:d5:bb:b2:6e:ba:08:f6:91:58:
ba:eb:72:6b:22:d6:62:87:2b:77:d1:56:b1:12:1b:de:53:6c:
8f:11:2a:94:a2:79:08:87:df:96:d7:2d:ab:05:d3:6e:fe:90:
ee:a2:bf:7e:99:68:3d:9b:57:4d:18:75:58:21:96:77:f1:c8:
c3:72:b3:8e:7f:4e:1c:1b:c2:bd:ad:e9:dd:62:a7:12:60:48:
89:5f:8f:35:69:28:84:27:a7:a5:0f:74:08:34:60:fb:b5:cb:
b3:85:79:af:27:90:9c:e9:90:d0:df:5d:eb:ac:ba:23:56:e5:
cf:32:37:8c:98:2e:0c:6e:fb:01:ab:88:57:29:2f:09:49:d5:
69:d4:d9:80:5e:98:19:40:48:d1:8c:ea:74:2d:20:4c:49:90:
b8:be:dd:e7:e3:c5:64:42:86:4d:3f:cf:07:36:55:8a:57:de:
e6:01:55:55
-----BEGIN CERTIFICATE-----
MIIDoDCCAoigAwIBAgIUFQ/o0477mgOzWFXLP89teKUmtB8wDQYJKoZIhvcNAQEL
BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx
MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF
AAOCAQ8AMIIBCgKCAQEAwUW3xypX2/DGRDivabWKM5y/ur8Zj6SWX2F0DDyVwCQK
qVXJO6Mck7PY2ECST8nAnFFBu+7r74NL0qUv2nSQvEU6Ynta4g6es4PCjmcCok9L
ilszGRY+D/YB9rbCbBePY9KRPmotCMh8UfgkL9z3dCQOtpuFyCuCgQ8EX9ZTHlMv
fhwW/Dp3839RGhbgeqQFidNKnZED26VtbmDL+UBTD134tHAjWsf/v0Uc8SGMSpsR
94zfn4qUvisW8ZsHkA3/KBwOTCE2ThiGUC0kwNPO9WailigBVrqX2fn+xgyvLzTD
t+GzioU9Uu/8YRCXFzWV+8jirkkftIqncHa3x99rcQIDAQABo4HpMIHmMB0GA1Ud
DgQWBBRJnaeXd5GVdHwB3Ea7oQlPGWVT0TAfBgNVHSMEGDAWgBQH8+2SKvcsZ2Co
74aym8yXXPrPWjA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91
cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0
dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF
oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD
ggEBAL5zvO1TVQHMKst5AZhoQY+3ZR7KF4zXUX8rBlAo+SYplLXBoUl61FmNUyNB
DGJIB9HT5RgkE7Kk2qzg1wgYrCCJ9nelx2+LDmxPSuCuk5DWndW7sm66CPaRWLrr
cmsi1mKHK3fRVrESG95TbI8RKpSieQiH35bXLasF027+kO6iv36ZaD2bV00YdVgh
lnfxyMNys45/Thwbwr2t6d1ipxJgSIlfjzVpKIQnp6UPdAg0YPu1y7OFea8nkJzp
kNDfXeusuiNW5c8yN4yYLgxu+wGriFcpLwlJ1WnU2YBemBlASNGM6nQtIExJkLi+
3efjxWRChk0/zwc2VYpX3uYBVVU=
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
29:7e:4d:0e:76:59:e5:dd:a7:55:bf:98:47:02:50:e5:71:03:33:72
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:47:61:13:ce:5c:97:1f:40:92:f1:86:de:28:
e0:4e:e8:70:01:3a:19:75:23:4f:bd:7b:ec:b6:45:
5f:aa:5e:2c:58:bd:ed:17:3c:ad:fc:74:4e:97:48:
71:a3:ce:04:90:0f:cf:78:62:89:58:18:66:c5:b7:
c9:a2:80:48:57:ee:64:a8:17:90:8c:e1:51:6d:a3:
79:21:d0:67:9f:82:ba:89:70:6e:54:32:67:e2:f5:
d7:8c:de:f8:6f:21:86:26:11:89:e7:7a:52:ab:25:
a4:e9:53:0d:01:58:04:a1:8e:ce:93:52:36:33:82:
17:6f:4c:cd:5c:9b:ee:42:96:2f:5c:ef:e4:c1:8b:
db:78:ad:af:e3:9f:b6:1c:be:f1:1d:36:9b:63:92:
37:be:ea:27:49:b7:7b:89:73:93:2c:b2:cb:bb:74:
d4:a6:c2:fe:08:ae:e8:bc:e3:40:a7:4d:97:db:14:
26:6b:c8:02:d3:95:4a:9b:7b:12:69:d3:3f:e9:88:
07:d7:49:26:6f:87:85:aa:0f:be:88:3c:a7:f0:9f:
7f:21:f0:96:35:26:71:f1:f9:33:3f:f8:c8:92:64:
c1:7a:6a:6b:52:a8:54:dc:88:5c:75:93:81:7f:4f:
cc:c5:cf:51:4b:87:ff:4e:3c:e2:76:08:2d:fc:4d:
cf:0f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
07:F3:ED:92:2A:F7:2C:67:60:A8:EF:86:B2:9B:CC:97:5C:FA:CF:5A
X509v3 Authority Key Identifier:
keyid:5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
1.2.3.4:
....
Signature Algorithm: sha256WithRSAEncryption
a4:a1:64:6e:e5:a6:25:8b:2c:f2:58:c2:24:b6:c6:ad:e0:63:
c3:48:bf:f6:e2:e1:9a:91:69:54:cf:05:a1:b1:23:e7:3c:ec:
a2:cb:70:c1:d0:c8:59:b7:45:f8:ae:23:ed:de:39:df:2a:1c:
a2:d8:df:d7:b0:7a:74:e9:64:94:71:fe:96:f7:90:09:69:5b:
28:18:6b:d4:82:23:df:24:b1:a1:8e:7c:a0:1d:7c:2f:5a:dc:
51:6b:ec:07:a2:2e:39:d7:66:ae:e4:8d:cb:50:19:5c:fa:c9:
2e:77:f2:93:66:5d:15:1d:49:f2:51:a7:ff:4b:aa:52:75:c2:
b5:24:df:ef:51:7c:21:c8:6f:cc:46:39:f7:a5:bf:79:27:18:
c5:97:3d:14:74:a7:b6:5c:21:18:84:8e:06:36:f3:47:af:d4:
42:75:eb:8c:b9:fc:4b:88:d9:e0:d9:67:43:a8:ab:d1:16:89:
70:74:af:b5:2a:7d:13:3e:ee:64:91:e1:1e:58:bc:46:d9:57:
30:e0:e2:9b:ad:8c:f6:6f:fc:45:8f:1e:72:78:df:19:7f:c7:
93:2f:a3:5b:f4:b3:b1:60:e5:d8:08:a5:fa:1c:1f:54:39:a2:
d3:35:a3:13:c8:3d:be:55:e4:fd:7d:04:87:8c:52:eb:c6:91:
9f:21:06:0c
-----BEGIN CERTIFICATE-----
MIIDjTCCAnWgAwIBAgIUKX5NDnZZ5d2nVb+YRwJQ5XEDM3IwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw
MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBAMlHYRPOXJcfQJLxht4o4E7ocAE6GXUjT7177LZFX6peLFi9
7Rc8rfx0TpdIcaPOBJAPz3hiiVgYZsW3yaKASFfuZKgXkIzhUW2jeSHQZ5+Cuolw
blQyZ+L114ze+G8hhiYRied6UqslpOlTDQFYBKGOzpNSNjOCF29MzVyb7kKWL1zv
5MGL23itr+Ofthy+8R02m2OSN77qJ0m3e4lzkyyyy7t01KbC/giu6LzjQKdNl9sU
JmvIAtOVSpt7EmnTP+mIB9dJJm+HhaoPvog8p/CffyHwljUmcfH5Mz/4yJJkwXpq
a1KoVNyIXHWTgX9PzMXPUUuH/0484nYILfxNzw8CAwEAAaOB2DCB1TAdBgNVHQ4E
FgQUB/Ptkir3LGdgqO+GspvMl1z6z1owHwYDVR0jBBgwFoAUXnNBCSdGFxJrYv8u
eCDeelntKYQwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs
LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m
b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/
MAsGAyoDBAQEAQIDBDANBgkqhkiG9w0BAQsFAAOCAQEApKFkbuWmJYss8ljCJLbG
reBjw0i/9uLhmpFpVM8FobEj5zzsostwwdDIWbdF+K4j7d453yocotjf17B6dOlk
lHH+lveQCWlbKBhr1IIj3ySxoY58oB18L1rcUWvsB6IuOddmruSNy1AZXPrJLnfy
k2ZdFR1J8lGn/0uqUnXCtSTf71F8IchvzEY596W/eScYxZc9FHSntlwhGISOBjbz
R6/UQnXrjLn8S4jZ4NlnQ6ir0RaJcHSvtSp9Ez7uZJHhHli8RtlXMODim62M9m/8
RY8ecnjfGX/Hky+jW/SzsWDl2Ail+hwfVDmi0zWjE8g9vlXk/X0Eh4xS68aRnyEG
DA==
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
29:7e:4d:0e:76:59:e5:dd:a7:55:bf:98:47:02:50:e5:71:03:33:71
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Mar 10 12:00:00 2018 GMT
Not After : Jan 1 12:00:00 2021 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d0:c9:04:2a:e3:2c:61:f5:b8:fe:95:cf:f0:4f:
49:3a:13:bf:16:40:fd:16:d5:31:53:5b:2c:16:94:
96:7b:63:43:b0:04:9f:0c:9f:f9:30:48:94:ad:03:
c7:84:48:a0:9e:eb:7a:a4:d7:09:f7:48:4d:1d:d8:
05:59:46:52:33:43:a7:6c:c1:66:b4:8e:5a:3e:8a:
5b:bc:18:09:ff:c3:5b:c2:d7:1f:00:e1:5d:85:b1:
b6:8b:aa:ac:7a:9e:30:37:d8:57:c6:d8:82:f5:23:
80:16:2b:ff:95:5b:dc:24:61:0b:0f:62:14:e8:dd:
ee:5c:30:86:6d:4e:e9:99:b5:61:d1:94:cf:4c:f9:
c4:92:be:22:59:2d:be:ca:2c:d3:8d:9f:8e:ea:d3:
88:dc:cd:69:21:18:64:d2:66:23:50:d4:ca:38:76:
09:3d:f5:cc:42:91:a2:12:f1:f4:cb:86:83:7c:0d:
87:f7:89:a7:eb:ff:99:19:c6:04:22:b5:05:18:ca:
04:60:d3:61:b8:b2:b1:64:cf:c4:15:af:a4:62:f6:
a1:c6:cc:f9:f9:3d:3e:25:7c:03:a6:a6:17:d6:43:
90:7d:d8:04:f6:27:c7:79:cf:c9:96:b4:b3:b7:0e:
0a:fc:c4:ea:b4:ce:7e:67:e7:21:33:92:cc:11:af:
f2:9b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
X509v3 Authority Key Identifier:
keyid:5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
25:ce:4c:07:e9:f4:41:e6:df:48:f4:b1:48:ec:8d:35:23:5a:
78:bf:81:c1:17:a0:82:12:c8:7a:9c:1c:d7:75:65:1f:2e:de:
00:db:be:fb:1c:4e:21:11:bf:ce:6d:e5:b4:6e:27:1b:48:c0:
24:ef:3d:9f:78:09:e6:14:55:35:75:77:55:9a:b4:2f:b4:f1:
b0:bd:42:22:6e:0f:b3:62:89:8a:1f:b4:78:63:d5:de:2a:b2:
3d:d9:8c:1e:c2:fb:47:7b:77:29:6c:41:5b:22:d2:07:96:60:
40:2b:dc:12:b5:de:90:23:0d:ce:06:bf:f3:36:7f:df:dd:09:
7f:03:72:e6:fe:28:cf:21:b7:aa:8f:58:b6:86:ec:c7:e9:35:
12:34:35:41:6b:34:1a:ba:41:0b:96:b0:eb:9f:0b:c7:af:4d:
b9:79:43:c6:5b:4e:0d:39:5b:25:52:8d:68:63:dc:ba:92:f1:
65:67:69:39:a2:1d:43:0b:d8:7e:f4:83:47:3e:ac:c9:9a:3c:
cc:5f:44:d1:d4:83:6c:2f:44:67:5e:8a:5e:6f:0f:bf:01:d3:
cc:5e:25:e7:b4:dc:21:4b:87:20:49:51:f4:42:01:bd:e9:81:
9b:3a:80:67:a1:cd:1e:1d:7f:fb:0e:8c:b4:7f:d8:4a:06:7f:
02:f3:e9:7f
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----