| [Created by: generate-chains.py] |
| |
| Simple certificate chain for a serverAuth which is comprised of a root, |
| intermediate, and leaf certificate. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 36:ca:7f:6d:80:1b:f8:bd:48:70:cd:9e:69:48:89:43:5e:d7:40:41 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:ca:19:b1:9d:8f:85:f5:a4:a8:8a:0d:d3:7f:f3: |
| 67:67:b1:d1:db:3d:69:8c:fa:bb:53:58:28:50:14: |
| 2f:06:aa:7e:f5:c6:06:4d:7d:76:9f:ee:33:d8:c8: |
| 6c:16:e8:65:df:d0:c0:9a:62:49:60:2a:d9:53:b6: |
| 6d:c6:27:32:13:58:b2:c3:64:63:61:bf:6b:40:ea: |
| 24:9c:a6:15:ae:2b:38:e7:70:58:12:46:92:5f:a5: |
| 70:6c:ea:50:3c:7b:9b:33:50:54:93:a4:9c:41:e0: |
| 40:7e:18:87:8a:52:d5:1d:66:f3:f0:f7:54:3f:55: |
| 61:f5:66:1c:a6:0d:73:57:a3:78:1a:4c:99:7d:77: |
| e0:aa:c5:c5:5e:49:21:35:4e:47:3d:61:7d:43:9b: |
| e0:94:28:b7:65:4d:cf:7e:52:2c:2a:b3:93:94:8b: |
| 0f:04:f6:45:20:83:97:b7:a4:dd:ef:8d:1f:c7:c5: |
| 29:d4:55:9f:a3:90:38:14:46:f6:7e:13:9e:99:6d: |
| 41:b0:c4:00:69:58:e6:7f:ac:a5:0a:e4:ad:c8:e3: |
| c1:a1:2a:a1:77:83:e9:f0:d1:c2:5b:48:10:33:59: |
| 4e:8d:0e:d7:01:0a:3c:11:e0:bf:cf:e8:2f:47:4b: |
| f6:d6:95:4d:c0:73:a7:b5:21:a4:0a:98:dc:fa:9b: |
| 0d:87 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 4A:80:F9:C0:2F:58:C5:F9:EB:98:BA:65:70:D0:81:0A:DA:16:C3:E0 |
| X509v3 Authority Key Identifier: |
| keyid:F3:3D:8D:B6:D6:56:60:17:BC:E3:79:08:BF:E8:D0:61:78:8E:0C:00 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| 93:e1:fe:88:40:14:42:36:51:ce:d8:c3:79:20:2f:17:2e:74: |
| 13:a4:ae:72:0d:bb:64:17:f5:82:0a:14:b0:72:4d:b3:42:9c: |
| 4b:38:24:4c:4b:9c:74:76:90:a1:09:ca:0b:b8:86:5e:56:45: |
| ce:bc:2a:c4:fb:a6:b4:77:b6:35:c2:e0:b3:2e:53:5d:7a:20: |
| 69:07:06:7d:9f:10:ce:eb:10:73:4b:b0:e9:48:a1:a3:ea:d3: |
| 0c:45:a5:c1:23:39:79:e5:33:8b:10:a0:11:e1:f0:ce:58:06: |
| c5:83:21:4e:65:46:74:50:83:c6:f2:df:46:33:f5:7a:d5:49: |
| a5:5d:18:01:e6:64:f5:63:a7:bc:cd:e8:31:75:10:79:16:0f: |
| c5:68:78:4c:f1:6e:84:bc:b2:43:56:89:78:ad:ed:4a:8d:36: |
| 84:c4:aa:db:5c:46:c9:78:2d:53:21:d9:09:8c:55:09:da:6b: |
| a9:c9:61:e5:f8:eb:94:8a:e5:9e:54:af:fa:7f:70:92:80:8f: |
| 47:21:ab:ec:06:9d:b4:4e:33:ac:19:1e:a5:75:77:5d:e2:6c: |
| d0:6a:60:d3:8c:84:18:f6:c1:94:54:f8:ff:43:c8:e2:1f:cd: |
| ac:54:7b:25:07:60:0c:df:83:27:e2:56:5f:78:ab:70:91:68: |
| 15:bc:76:7f |
| -----BEGIN CERTIFICATE----- |
| MIIDoDCCAoigAwIBAgIUNsp/bYAb+L1IcM2eaUiJQ17XQEEwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAyhmxnY+F9aSoig3Tf/NnZ7HR2z1pjPq7U1goUBQvBqp+ |
| 9cYGTX12n+4z2MhsFuhl39DAmmJJYCrZU7ZtxicyE1iyw2RjYb9rQOoknKYVris4 |
| 53BYEkaSX6VwbOpQPHubM1BUk6ScQeBAfhiHilLVHWbz8PdUP1Vh9WYcpg1zV6N4 |
| GkyZfXfgqsXFXkkhNU5HPWF9Q5vglCi3ZU3PflIsKrOTlIsPBPZFIIOXt6Td740f |
| x8Up1FWfo5A4FEb2fhOemW1BsMQAaVjmf6ylCuStyOPBoSqhd4Pp8NHCW0gQM1lO |
| jQ7XAQo8EeC/z+gvR0v21pVNwHOntSGkCpjc+psNhwIDAQABo4HpMIHmMB0GA1Ud |
| DgQWBBRKgPnAL1jF+euYumVw0IEK2hbD4DAfBgNVHSMEGDAWgBTzPY221lZgF7zj |
| eQi/6NBheI4MADA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF |
| oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD |
| ggEBAJPh/ohAFEI2Uc7Yw3kgLxcudBOkrnINu2QX9YIKFLByTbNCnEs4JExLnHR2 |
| kKEJygu4hl5WRc68KsT7prR3tjXC4LMuU116IGkHBn2fEM7rEHNLsOlIoaPq0wxF |
| pcEjOXnlM4sQoBHh8M5YBsWDIU5lRnRQg8by30Yz9XrVSaVdGAHmZPVjp7zN6DF1 |
| EHkWD8VoeEzxboS8skNWiXit7UqNNoTEqttcRsl4LVMh2QmMVQnaa6nJYeX465SK |
| 5Z5Ur/p/cJKAj0chq+wGnbROM6wZHqV1d13ibNBqYNOMhBj2wZRU+P9DyOIfzaxU |
| eyUHYAzfgyfiVl94q3CRaBW8dn8= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 31:35:7f:72:00:4e:18:f5:81:03:33:ce:54:3c:48:8b:a6:7d:a0:8c |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:bc:ef:ca:8a:95:3f:19:1b:19:eb:4e:fe:3d:fe: |
| 02:be:20:db:89:a3:06:b7:99:d8:af:c7:9a:a9:4d: |
| b8:82:5d:6a:06:66:fd:4d:b0:c9:f6:07:27:96:bd: |
| 31:1c:77:f4:04:ba:fe:d4:25:46:02:9a:8a:88:bd: |
| e7:c3:dc:61:0a:78:26:db:b6:9e:ff:43:cd:ed:ea: |
| c0:67:f0:3d:e3:f5:d9:5a:ec:db:ac:ef:06:2d:6e: |
| 37:fc:8d:c5:d3:a0:b0:d4:60:4e:0d:f8:ab:fa:68: |
| 1a:36:2b:ce:bb:91:14:3b:0e:16:1c:0b:c9:c4:46: |
| e7:c2:1a:86:cc:ad:07:68:eb:cb:6e:93:37:cc:1a: |
| cc:59:de:9a:12:ec:3c:0f:eb:bf:8c:f7:76:0f:7e: |
| f5:89:f9:85:0c:21:95:af:ac:3c:a2:9d:9e:ba:d3: |
| 06:aa:50:2d:25:c0:02:a8:a5:97:cf:7a:b3:ad:78: |
| c5:30:95:be:ce:0a:26:bd:4f:e2:5f:51:c6:f0:b9: |
| a1:bd:24:32:07:0d:b7:1b:2c:b2:ec:c8:c8:ef:77: |
| 8f:ab:6f:e9:e2:66:d9:30:02:49:96:11:16:ed:e2: |
| e8:85:cd:48:d6:a9:b1:20:02:95:ff:1b:79:9d:6b: |
| 21:6b:bd:d3:27:94:19:67:b1:9f:aa:06:d6:8c:69: |
| 11:33 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| F3:3D:8D:B6:D6:56:60:17:BC:E3:79:08:BF:E8:D0:61:78:8E:0C:00 |
| X509v3 Authority Key Identifier: |
| keyid:EE:92:48:AE:86:AC:68:E4:9E:C1:3D:D4:4C:34:B2:DF:8A:5D:FF:8C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 4f:4a:9e:70:ea:1d:d5:54:9f:23:6f:22:6b:77:48:be:48:43: |
| 9a:50:07:b5:ec:ae:9a:a1:24:b0:53:18:67:27:5f:79:14:0d: |
| a6:03:85:5f:f6:28:0d:0e:24:4c:20:46:15:6f:72:0a:8c:1b: |
| d2:72:6a:68:91:47:56:73:fc:61:a4:93:f0:33:1e:a9:65:ba: |
| ce:41:d2:28:10:6b:7f:c6:fa:bf:d9:8f:96:c0:5b:ef:8c:e7: |
| 1f:6b:6a:e0:c9:c8:9a:73:31:d7:e3:94:ae:ec:e6:f5:b5:a7: |
| 51:bf:39:c2:c2:1e:5c:b9:8d:b6:76:1f:ec:29:b4:61:5e:ab: |
| 0a:4d:7c:5b:4c:8e:44:02:5c:0d:81:59:d9:86:9c:06:69:54: |
| 4f:0f:91:c2:41:40:25:43:3a:47:fc:50:5f:b5:b2:d8:40:d8: |
| 08:91:22:52:8c:2a:3b:6d:9b:35:f9:6c:bb:f4:7b:b1:93:c0: |
| 17:72:3f:6a:f5:92:11:26:3f:f8:8d:c3:34:1e:69:d8:e1:7d: |
| 51:58:69:10:29:8c:ad:6b:2a:59:75:fe:98:02:a0:87:40:16: |
| 80:cb:2d:f1:01:c8:e7:6c:65:7a:f1:c3:cd:9a:33:21:c6:f9: |
| f7:3e:73:7a:89:9d:68:d4:ee:31:51:92:70:a0:1a:62:4b:bd: |
| 37:94:9f:69 |
| -----BEGIN CERTIFICATE----- |
| MIIDgDCCAmigAwIBAgIUMTV/cgBOGPWBAzPOVDxIi6Z9oIwwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBALzvyoqVPxkbGetO/j3+Ar4g24mjBreZ2K/HmqlNuIJdagZm |
| /U2wyfYHJ5a9MRx39AS6/tQlRgKaioi958PcYQp4Jtu2nv9Dze3qwGfwPeP12Vrs |
| 26zvBi1uN/yNxdOgsNRgTg34q/poGjYrzruRFDsOFhwLycRG58IahsytB2jry26T |
| N8wazFnemhLsPA/rv4z3dg9+9Yn5hQwhla+sPKKdnrrTBqpQLSXAAqill896s614 |
| xTCVvs4KJr1P4l9RxvC5ob0kMgcNtxsssuzIyO93j6tv6eJm2TACSZYRFu3i6IXN |
| SNapsSAClf8beZ1rIWu90yeUGWexn6oG1oxpETMCAwEAAaOByzCByDAdBgNVHQ4E |
| FgQU8z2NttZWYBe843kIv+jQYXiODAAwHwYDVR0jBBgwFoAU7pJIroasaOSewT3U |
| TDSy34pd/4wwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MA0GCSqGSIb3DQEBCwUAA4IBAQBPSp5w6h3VVJ8jbyJrd0i+SEOaUAe17K6aoSSw |
| UxhnJ195FA2mA4Vf9igNDiRMIEYVb3IKjBvScmpokUdWc/xhpJPwMx6pZbrOQdIo |
| EGt/xvq/2Y+WwFvvjOcfa2rgyciaczHX45Su7Ob1tadRvznCwh5cuY22dh/sKbRh |
| XqsKTXxbTI5EAlwNgVnZhpwGaVRPD5HCQUAlQzpH/FBftbLYQNgIkSJSjCo7bZs1 |
| +Wy79Huxk8AXcj9q9ZIRJj/4jcM0HmnY4X1RWGkQKYytaypZdf6YAqCHQBaAyy3x |
| AcjnbGV68cPNmjMhxvn3PnN6iZ1o1O4xUZJwoBpiS703lJ9p |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 31:35:7f:72:00:4e:18:f5:81:03:33:ce:54:3c:48:8b:a6:7d:a0:8b |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:9b:9e:4a:8e:cd:47:0e:a6:2f:17:ad:24:c7:d6: |
| c7:40:5f:ba:90:b2:2c:4b:57:5c:3e:f2:de:80:f6: |
| fd:f2:28:12:9c:92:63:4a:11:c6:bb:74:d7:ad:ec: |
| 3e:9d:1a:7f:0a:30:98:df:1f:a2:98:11:a6:60:6f: |
| 69:5f:dd:28:35:06:39:b6:e2:91:df:59:be:07:c5: |
| 52:57:84:a4:ae:cb:5b:9b:b3:aa:56:77:fd:00:1a: |
| 55:96:00:27:12:6e:d1:f6:35:ff:a3:fa:b6:0b:0e: |
| 2a:46:75:6b:58:27:a6:a1:43:ba:37:74:1d:28:1a: |
| 3d:bf:e6:f2:10:bf:2c:ce:24:67:03:4e:4e:fc:aa: |
| 51:22:25:f8:e5:75:5c:c3:ad:da:03:56:b4:1b:8a: |
| 6f:26:e5:c8:ef:43:a9:d7:81:8b:0f:b1:8b:d6:cd: |
| 11:e9:4c:0c:cb:a2:ab:fa:34:2a:13:aa:a4:db:83: |
| 9c:d8:a6:45:ec:f5:fa:d0:cd:b0:6b:7a:1b:0e:ca: |
| d3:31:4b:cb:53:f1:5c:82:8c:96:f7:ca:b6:40:53: |
| d0:24:67:27:1a:8d:1a:f7:65:c9:a1:fc:f9:f4:85: |
| 3c:51:3c:fc:56:87:18:bf:a3:d5:dd:de:8e:e6:3b: |
| 67:29:e9:fd:4b:4f:ba:1a:ff:d7:ec:f1:da:bd:56: |
| 48:2b |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| EE:92:48:AE:86:AC:68:E4:9E:C1:3D:D4:4C:34:B2:DF:8A:5D:FF:8C |
| X509v3 Authority Key Identifier: |
| keyid:EE:92:48:AE:86:AC:68:E4:9E:C1:3D:D4:4C:34:B2:DF:8A:5D:FF:8C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 53:db:8f:05:14:fc:05:b4:12:bd:78:fa:49:f1:e3:20:c6:81: |
| ac:d5:d5:95:6c:a0:5a:45:97:6d:30:3c:55:ed:09:ce:94:54: |
| af:af:0a:cb:ac:a6:7f:63:fb:b0:1e:1c:82:c0:b0:6a:f6:10: |
| 41:7c:ea:9d:3b:04:fd:9e:4c:1d:1a:5c:cc:c0:97:cd:a5:02: |
| f1:21:bd:dd:ca:39:4d:25:b8:6b:4b:5f:e5:a6:3a:f7:74:c7: |
| ab:65:57:66:b9:2a:a0:2e:57:27:39:87:a0:a5:c8:2f:b0:46: |
| bd:6b:36:ed:87:74:0c:01:fc:47:bb:36:3d:85:48:31:01:e2: |
| 9a:31:99:56:52:b3:ae:d7:53:17:c4:66:57:8e:d0:c7:48:9c: |
| 0c:08:4c:89:bd:aa:73:ac:40:80:1c:cb:f3:0d:0e:c9:ad:79: |
| ab:48:3a:80:b4:80:a2:9b:16:16:87:de:d0:34:47:c8:f1:48: |
| 82:68:21:06:77:36:3b:b2:05:89:6a:0c:11:f2:89:99:08:6b: |
| bc:f6:6b:e1:02:e6:fa:ec:bc:69:ca:be:a8:d8:af:cc:49:77: |
| 7c:9c:18:b1:67:10:07:35:54:2d:80:1c:29:e6:a7:d5:21:29: |
| f9:f3:e8:6f:b0:48:46:09:2a:87:de:bb:39:03:f4:7f:b6:4e: |
| b3:13:78:f9 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUMTV/cgBOGPWBAzPOVDxIi6Z9oIswDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQCbnkqOzUcOpi8XrSTH1sdAX7qQsixLV1w+8t6A9v3yKBKckmNKEca7dNet |
| 7D6dGn8KMJjfH6KYEaZgb2lf3Sg1Bjm24pHfWb4HxVJXhKSuy1ubs6pWd/0AGlWW |
| ACcSbtH2Nf+j+rYLDipGdWtYJ6ahQ7o3dB0oGj2/5vIQvyzOJGcDTk78qlEiJfjl |
| dVzDrdoDVrQbim8m5cjvQ6nXgYsPsYvWzRHpTAzLoqv6NCoTqqTbg5zYpkXs9frQ |
| zbBrehsOytMxS8tT8VyCjJb3yrZAU9AkZycajRr3Zcmh/Pn0hTxRPPxWhxi/o9Xd |
| 3o7mO2cp6f1LT7oa/9fs8dq9VkgrAgMBAAGjgcswgcgwHQYDVR0OBBYEFO6SSK6G |
| rGjknsE91Ew0st+KXf+MMB8GA1UdIwQYMBaAFO6SSK6GrGjknsE91Ew0st+KXf+M |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEAU9uPBRT8BbQSvXj6SfHjIMaBrNXVlWygWkWXbTA8Ve0JzpRU |
| r68Ky6ymf2P7sB4cgsCwavYQQXzqnTsE/Z5MHRpczMCXzaUC8SG93co5TSW4a0tf |
| 5aY693THq2VXZrkqoC5XJzmHoKXIL7BGvWs27Yd0DAH8R7s2PYVIMQHimjGZVlKz |
| rtdTF8RmV47Qx0icDAhMib2qc6xAgBzL8w0Oya15q0g6gLSAopsWFofe0DRHyPFI |
| gmghBnc2O7IFiWoMEfKJmQhrvPZr4QLm+uy8acq+qNivzEl3fJwYsWcQBzVULYAc |
| Kean1SEp+fPob7BIRgkqh967OQP0f7ZOsxN4+Q== |
| -----END CERTIFICATE----- |