| [Created by: generate-chains.py] |
| |
| Generates certificate chains where the intermediate contains netscape server |
| gated crypto rather than serverAuth. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 16:b5:13:fb:79:d7:bf:0c:f5:4b:2a:50:4c:9a:68:d0:89:a0:f2:9e |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Oct 5 12:00:00 2021 GMT |
| Not After : Oct 5 12:00:00 2022 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| RSA Public-Key: (2048 bit) |
| Modulus: |
| 00:c8:af:a5:d9:15:56:dd:ec:b1:41:dd:34:36:48: |
| ab:5a:3f:2e:6a:14:16:38:1f:c2:ad:27:64:f2:72: |
| 54:a1:81:73:9c:fd:3a:37:2c:64:f9:e2:0a:bd:0f: |
| 74:9a:70:ea:9c:6e:c9:64:e9:92:a4:bf:9a:30:2c: |
| 9a:8f:4c:eb:12:1e:58:08:f5:6a:4b:72:e0:a8:a9: |
| 22:81:ca:cd:7c:78:cd:24:9b:90:8a:7d:ac:79:cf: |
| 40:a9:d0:f6:a4:78:ef:fd:c3:b3:9d:d3:ea:51:ee: |
| c7:ed:f5:2b:36:5c:50:11:be:44:a9:29:cd:d6:79: |
| bc:bd:5b:a5:46:d1:a7:86:a5:86:2a:73:f5:ba:f9: |
| f4:5e:9c:94:9e:95:81:ec:42:f9:83:f1:4e:a6:eb: |
| c9:a1:3c:e9:97:80:cb:ee:4d:06:45:75:a7:38:db: |
| f2:a9:17:12:46:f1:99:1f:40:48:89:a0:bd:07:46: |
| a5:ab:11:03:fb:a5:2c:a2:c9:bc:f7:07:e5:9f:ce: |
| 24:26:3e:a1:a8:ac:fe:ad:09:64:00:d9:da:3c:c8: |
| 09:c3:bc:c7:64:b9:93:c2:b9:39:4e:3c:a0:7c:9c: |
| 14:fc:e5:bd:1f:1e:fc:4d:e8:e5:aa:9d:ff:33:ed: |
| f7:10:0e:72:da:81:79:e9:1e:f3:65:03:b0:13:77: |
| 30:a5 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 63:59:54:71:BD:5B:C7:56:B3:FE:AE:DA:EF:DE:59:E2:60:69:B3:2C |
| X509v3 Authority Key Identifier: |
| keyid:34:04:CA:F4:40:13:44:0C:86:E8:1F:47:3F:F0:E8:23:D6:EE:02:09 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| X509v3 Subject Alternative Name: |
| DNS:test.example |
| Signature Algorithm: sha256WithRSAEncryption |
| 71:2e:c0:82:88:b5:f6:f0:83:ff:a6:86:d9:b4:ac:cd:01:46: |
| 8f:28:b7:00:ac:f9:68:8f:7b:60:4f:97:6d:5d:16:56:cb:92: |
| 20:35:d7:c4:4f:33:57:ed:0a:49:ba:b6:09:92:47:9d:db:dc: |
| b0:3c:d7:75:c7:07:d5:61:fc:75:6c:af:11:81:6e:c9:af:c8: |
| a1:fc:ff:3d:5e:81:69:c7:e7:aa:dd:0a:9b:ac:50:50:7c:39: |
| 81:1a:bd:cc:53:94:31:e6:5a:a9:0b:21:d4:c0:d3:d9:90:2b: |
| 52:c1:19:ee:03:ba:ec:9a:94:70:52:eb:a1:08:76:d2:dd:59: |
| 4f:ea:0d:20:68:f0:8e:49:12:2b:b3:92:bf:d2:00:ee:0f:4a: |
| 47:e2:73:4e:50:0d:7a:d7:22:d8:29:91:de:a1:fc:d4:84:df: |
| d7:53:65:eb:20:f9:f9:24:15:ab:e6:fc:9b:17:c7:ab:9e:ee: |
| 9c:78:c8:9f:fd:8a:9a:7b:83:00:94:a4:ad:3b:a8:56:02:73: |
| 4d:21:57:7e:34:7f:b7:f3:d6:85:3e:23:55:9e:3d:31:38:d9: |
| 76:75:06:09:f0:ac:94:38:1f:a1:bd:4b:e8:c6:68:1c:78:a7: |
| 12:90:90:dc:66:10:3b:1f:82:0c:27:ec:9c:57:d5:9e:0b:f5: |
| c3:be:1a:66 |
| -----BEGIN CERTIFICATE----- |
| MIIDujCCAqKgAwIBAgIUFrUT+3nXvwz1SypQTJpo0Img8p4wDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTIxMTAwNTEyMDAwMFoXDTIy |
| MTAwNTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAyK+l2RVW3eyxQd00NkirWj8uahQWOB/CrSdk8nJUoYFz |
| nP06Nyxk+eIKvQ90mnDqnG7JZOmSpL+aMCyaj0zrEh5YCPVqS3LgqKkigcrNfHjN |
| JJuQin2sec9AqdD2pHjv/cOzndPqUe7H7fUrNlxQEb5EqSnN1nm8vVulRtGnhqWG |
| KnP1uvn0XpyUnpWB7EL5g/FOpuvJoTzpl4DL7k0GRXWnONvyqRcSRvGZH0BIiaC9 |
| B0alqxED+6Usosm89wfln84kJj6hqKz+rQlkANnaPMgJw7zHZLmTwrk5TjygfJwU |
| /OW9Hx78Tejlqp3/M+33EA5y2oF56R7zZQOwE3cwpQIDAQABo4IBAjCB/zAdBgNV |
| HQ4EFgQUY1lUcb1bx1az/q7a795Z4mBpsywwHwYDVR0jBBgwFoAUNATK9EATRAyG |
| 6B9HP/DoI9buAgkwPwYIKwYBBQUHAQEEMzAxMC8GCCsGAQUFBzAChiNodHRwOi8v |
| dXJsLWZvci1haWEvSW50ZXJtZWRpYXRlLmNlcjA0BgNVHR8ELTArMCmgJ6AlhiNo |
| dHRwOi8vdXJsLWZvci1jcmwvSW50ZXJtZWRpYXRlLmNybDAOBgNVHQ8BAf8EBAMC |
| BaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMBcGA1UdEQQQMA6CDHRl |
| c3QuZXhhbXBsZTANBgkqhkiG9w0BAQsFAAOCAQEAcS7Agoi19vCD/6aG2bSszQFG |
| jyi3AKz5aI97YE+XbV0WVsuSIDXXxE8zV+0KSbq2CZJHndvcsDzXdccH1WH8dWyv |
| EYFuya/Iofz/PV6Bacfnqt0Km6xQUHw5gRq9zFOUMeZaqQsh1MDT2ZArUsEZ7gO6 |
| 7JqUcFLroQh20t1ZT+oNIGjwjkkSK7OSv9IA7g9KR+JzTlANetci2CmR3qH81ITf |
| 11Nl6yD5+SQVq+b8mxfHq57unHjIn/2KmnuDAJSkrTuoVgJzTSFXfjR/t/PWhT4j |
| VZ49MTjZdnUGCfCslDgfob1L6MZoHHinEpCQ3GYQOx+CDCfsnFfVngv1w74aZg== |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 42:e0:1e:36:75:40:12:16:19:8d:07:a8:3f:9b:ff:e1:59:bc:6a:a0 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Oct 5 12:00:00 2021 GMT |
| Not After : Oct 5 12:00:00 2022 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| RSA Public-Key: (2048 bit) |
| Modulus: |
| 00:9a:21:10:93:91:7b:75:0d:a8:b0:51:a1:b8:2c: |
| 87:b9:1c:9f:63:63:7a:f5:03:a3:89:4c:5e:b5:03: |
| e9:50:32:c2:e2:30:68:9e:16:ec:ee:70:15:74:47: |
| 0f:cd:ea:5d:61:28:1d:0b:3f:37:39:83:ae:f0:64: |
| 05:83:15:e6:2d:cb:e9:69:1d:98:bd:3a:cf:25:f6: |
| 21:a2:cf:e8:57:ac:bb:97:32:66:51:bb:c3:3f:4c: |
| f9:e8:ac:27:30:00:e5:e3:f5:64:f1:e4:f2:79:93: |
| 6a:56:f6:99:28:81:f2:23:13:ac:97:e2:39:d0:80: |
| 91:8e:f2:c5:30:cd:46:71:3c:88:ca:03:b5:74:a2: |
| dc:db:e1:ae:70:2a:42:b1:99:b8:d5:48:60:2f:1e: |
| da:d3:1f:27:8b:6c:12:40:3d:5d:eb:0d:e8:f0:e3: |
| f0:4a:8b:cd:74:62:e8:06:44:ca:d8:5e:2a:6d:09: |
| 4d:7b:8e:47:1c:04:12:da:ea:e5:6f:6c:41:2c:23: |
| 1d:39:83:d0:44:a5:7c:c6:13:0e:6c:73:2a:06:71: |
| 4f:65:ba:b1:5e:db:d3:ec:ca:ae:40:5e:24:87:63: |
| 2d:ae:4b:d5:f6:4c:25:fc:3f:d9:6e:96:65:c8:b2: |
| 8b:1a:a3:ed:33:b4:3a:f3:cc:4a:c5:fc:66:81:3f: |
| 89:59 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 34:04:CA:F4:40:13:44:0C:86:E8:1F:47:3F:F0:E8:23:D6:EE:02:09 |
| X509v3 Authority Key Identifier: |
| keyid:4E:42:54:6A:32:D3:BE:9E:70:41:47:41:3E:90:BA:86:3F:D4:FD:6C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| X509v3 Extended Key Usage: |
| Netscape Server Gated Crypto |
| Signature Algorithm: sha256WithRSAEncryption |
| 2a:ce:0f:b6:ca:5a:e5:cd:69:c9:1c:e7:55:f5:6e:08:2a:38: |
| 83:8b:66:35:20:fc:97:c4:af:e8:e8:5b:ca:c1:31:5a:55:83: |
| b9:f4:d5:6d:ed:cd:a6:99:e6:56:b6:6f:32:63:b3:ec:be:a3: |
| a7:9c:42:b9:f3:28:35:88:9c:dd:f7:cf:1c:c8:3f:f0:11:ac: |
| d7:58:03:3c:f6:16:4d:17:7a:df:52:c5:e8:eb:cd:82:56:d7: |
| 6b:9d:28:70:a8:a6:1b:73:c1:36:bc:b6:37:79:fe:ba:12:34: |
| 7b:8b:42:a7:08:5b:d9:52:f6:be:02:b5:c1:8e:74:e2:e8:5b: |
| f9:8a:f9:2e:d3:d6:c7:c7:14:0f:a2:43:a7:5c:f2:7c:eb:d8: |
| 70:f0:d8:89:a2:e8:de:b3:07:43:20:b0:c4:22:a7:a5:3d:0d: |
| 69:4c:78:da:80:eb:8f:54:e3:8a:a0:50:ff:7d:0d:88:84:a5: |
| 39:0b:de:74:5d:d7:7a:10:23:f3:ea:72:4f:29:eb:5f:5b:d8: |
| bb:5d:bf:d2:8e:c5:84:41:3c:5a:55:60:39:58:54:55:db:6c: |
| 52:ea:ec:13:4d:ff:63:af:30:85:60:5c:2d:cc:e3:d4:97:78: |
| 78:ea:90:db:d8:a3:94:c6:84:ce:ed:3d:37:bf:f0:4b:72:0b: |
| 6b:af:e2:ad |
| -----BEGIN CERTIFICATE----- |
| MIIDljCCAn6gAwIBAgIUQuAeNnVAEhYZjQeoP5v/4Vm8aqAwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBAJohEJORe3UNqLBRobgsh7kcn2NjevUDo4lMXrUD6VAywuIw |
| aJ4W7O5wFXRHD83qXWEoHQs/NzmDrvBkBYMV5i3L6WkdmL06zyX2IaLP6Fesu5cy |
| ZlG7wz9M+eisJzAA5eP1ZPHk8nmTalb2mSiB8iMTrJfiOdCAkY7yxTDNRnE8iMoD |
| tXSi3NvhrnAqQrGZuNVIYC8e2tMfJ4tsEkA9XesN6PDj8EqLzXRi6AZEytheKm0J |
| TXuORxwEEtrq5W9sQSwjHTmD0ESlfMYTDmxzKgZxT2W6sV7b0+zKrkBeJIdjLa5L |
| 1fZMJfw/2W6WZciyixqj7TO0OvPMSsX8ZoE/iVkCAwEAAaOB4TCB3jAdBgNVHQ4E |
| FgQUNATK9EATRAyG6B9HP/DoI9buAgkwHwYDVR0jBBgwFoAUTkJUajLTvp5wQUdB |
| PpC6hj/U/WwwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MBQGA1UdJQQNMAsGCWCGSAGG+EIEATANBgkqhkiG9w0BAQsFAAOCAQEAKs4Ptspa |
| 5c1pyRznVfVuCCo4g4tmNSD8l8Sv6OhbysExWlWDufTVbe3NppnmVrZvMmOz7L6j |
| p5xCufMoNYic3ffPHMg/8BGs11gDPPYWTRd631LF6OvNglbXa50ocKimG3PBNry2 |
| N3n+uhI0e4tCpwhb2VL2vgK1wY504uhb+Yr5LtPWx8cUD6JDp1zyfOvYcPDYiaLo |
| 3rMHQyCwxCKnpT0NaUx42oDrj1TjiqBQ/30NiISlOQvedF3XehAj8+pyTynrX1vY |
| u12/0o7FhEE8WlVgOVhUVdtsUursE03/Y68whWBcLczj1Jd4eOqQ29ijlMaEzu09 |
| N7/wS3ILa6/irQ== |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 42:e0:1e:36:75:40:12:16:19:8d:07:a8:3f:9b:ff:e1:59:bc:6a:9f |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Oct 5 12:00:00 2021 GMT |
| Not After : Oct 5 12:00:00 2022 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| RSA Public-Key: (2048 bit) |
| Modulus: |
| 00:e2:b0:53:05:80:84:a4:62:d7:02:96:95:55:ad: |
| 63:c9:cd:d7:46:41:1a:cb:b7:0d:6c:70:75:05:e6: |
| ea:a8:f6:64:dd:9e:b8:f7:a3:da:05:50:14:ad:0b: |
| fd:1f:8d:7f:d0:03:ce:ec:7d:de:f3:5e:eb:8b:f0: |
| db:98:70:cc:c2:c0:a9:f7:2c:e7:27:04:a5:79:10: |
| 47:6d:a7:80:22:ba:0e:0b:28:e5:2a:f1:69:14:a2: |
| dd:a4:a8:ac:67:76:a0:db:8b:78:c0:0b:7e:2c:9c: |
| 65:f6:e5:40:b7:c0:ca:b3:f0:1e:74:69:77:45:38: |
| e1:8c:de:c9:1f:fc:67:28:ee:22:ae:4d:3d:8c:6b: |
| 63:62:9f:bf:ef:67:7d:e6:ee:a4:d7:41:c2:62:c5: |
| f2:3c:49:af:f9:44:74:b4:a7:26:f8:bd:ed:57:ec: |
| ed:16:2c:42:77:3d:85:69:e8:48:7e:d7:70:05:21: |
| b9:15:96:0b:5a:5d:ac:ee:64:46:1b:4c:eb:58:b0: |
| fd:48:fe:c1:02:e7:d0:c0:0b:52:aa:e7:51:9c:93: |
| 91:46:05:ed:23:2e:c3:0b:0e:50:0e:6e:38:ac:31: |
| 69:7d:70:d2:40:dd:7d:41:3e:08:31:78:c6:e3:57: |
| 1d:c5:53:e7:91:6d:de:bc:de:3f:2e:72:de:e2:a0: |
| 63:0b |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 4E:42:54:6A:32:D3:BE:9E:70:41:47:41:3E:90:BA:86:3F:D4:FD:6C |
| X509v3 Authority Key Identifier: |
| keyid:4E:42:54:6A:32:D3:BE:9E:70:41:47:41:3E:90:BA:86:3F:D4:FD:6C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| a8:4b:3f:7e:08:b6:f1:fa:4d:96:d4:b5:49:10:15:b1:5d:bb: |
| 4a:ae:21:f9:e6:cc:22:50:d5:0b:24:5e:6a:e3:b1:5d:85:8b: |
| 91:39:61:41:dc:ac:80:b4:14:d2:32:11:dd:18:48:1d:cc:fd: |
| 63:72:22:d0:30:53:e5:c5:2d:00:fe:58:de:25:a2:99:ab:03: |
| 39:a8:f8:0e:32:02:8b:de:ea:bc:5b:e3:4f:ad:b9:05:8b:80: |
| f5:9d:ae:0f:59:80:10:e3:eb:50:6d:75:43:9b:f7:d0:4f:32: |
| 7c:a6:46:22:51:25:01:60:15:a6:ad:91:23:c7:e5:b5:d4:e5: |
| 37:cc:8b:4a:ea:ae:22:ca:64:b2:04:ed:bf:ff:93:8b:44:09: |
| f2:06:42:81:a2:46:cd:2e:bd:26:87:a6:60:47:e3:80:c4:e1: |
| 9c:ee:74:37:6c:56:34:32:c9:83:01:79:08:7a:d4:c3:75:38: |
| a0:6a:11:4b:b0:22:f1:bc:c9:27:a2:56:ab:2a:b5:eb:06:77: |
| cd:08:c0:94:73:43:85:9a:1f:8b:b6:78:b8:9c:d0:ef:79:19: |
| ee:9e:af:9d:6d:0d:c8:3c:b8:cb:c2:5b:9c:90:b8:ce:6c:61: |
| 03:75:e4:3a:7e:28:b6:be:10:5a:11:a3:28:43:90:18:80:b3: |
| 6f:71:9e:a1 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUQuAeNnVAEhYZjQeoP5v/4Vm8ap8wDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQDisFMFgISkYtcClpVVrWPJzddGQRrLtw1scHUF5uqo9mTdnrj3o9oFUBSt |
| C/0fjX/QA87sfd7zXuuL8NuYcMzCwKn3LOcnBKV5EEdtp4Aiug4LKOUq8WkUot2k |
| qKxndqDbi3jAC34snGX25UC3wMqz8B50aXdFOOGM3skf/Gco7iKuTT2Ma2Nin7/v |
| Z33m7qTXQcJixfI8Sa/5RHS0pyb4ve1X7O0WLEJ3PYVp6Eh+13AFIbkVlgtaXazu |
| ZEYbTOtYsP1I/sEC59DAC1Kq51Gck5FGBe0jLsMLDlAObjisMWl9cNJA3X1BPggx |
| eMbjVx3FU+eRbd683j8uct7ioGMLAgMBAAGjgcswgcgwHQYDVR0OBBYEFE5CVGoy |
| 076ecEFHQT6QuoY/1P1sMB8GA1UdIwQYMBaAFE5CVGoy076ecEFHQT6QuoY/1P1s |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEAqEs/fgi28fpNltS1SRAVsV27Sq4h+ebMIlDVCyReauOxXYWL |
| kTlhQdysgLQU0jIR3RhIHcz9Y3Ii0DBT5cUtAP5Y3iWimasDOaj4DjICi97qvFvj |
| T625BYuA9Z2uD1mAEOPrUG11Q5v30E8yfKZGIlElAWAVpq2RI8fltdTlN8yLSuqu |
| IspksgTtv/+Ti0QJ8gZCgaJGzS69JoemYEfjgMThnO50N2xWNDLJgwF5CHrUw3U4 |
| oGoRS7Ai8bzJJ6JWqyq16wZ3zQjAlHNDhZofi7Z4uJzQ73kZ7p6vnW0NyDy4y8Jb |
| nJC4zmxhA3XkOn4otr4QWhGjKEOQGICzb3GeoQ== |
| -----END CERTIFICATE----- |