blob: ebbb152665d8104c3634e3142031c90ebeecfcbf [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the intermediate contains an unknown non-critical
extension.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
15:0f:e8:d3:8e:fb:9a:03:b3:58:55:cb:3f:cf:6d:78:a5:26:b4:1f
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:c1:45:b7:c7:2a:57:db:f0:c6:44:38:af:69:b5:
8a:33:9c:bf:ba:bf:19:8f:a4:96:5f:61:74:0c:3c:
95:c0:24:0a:a9:55:c9:3b:a3:1c:93:b3:d8:d8:40:
92:4f:c9:c0:9c:51:41:bb:ee:eb:ef:83:4b:d2:a5:
2f:da:74:90:bc:45:3a:62:7b:5a:e2:0e:9e:b3:83:
c2:8e:67:02:a2:4f:4b:8a:5b:33:19:16:3e:0f:f6:
01:f6:b6:c2:6c:17:8f:63:d2:91:3e:6a:2d:08:c8:
7c:51:f8:24:2f:dc:f7:74:24:0e:b6:9b:85:c8:2b:
82:81:0f:04:5f:d6:53:1e:53:2f:7e:1c:16:fc:3a:
77:f3:7f:51:1a:16:e0:7a:a4:05:89:d3:4a:9d:91:
03:db:a5:6d:6e:60:cb:f9:40:53:0f:5d:f8:b4:70:
23:5a:c7:ff:bf:45:1c:f1:21:8c:4a:9b:11:f7:8c:
df:9f:8a:94:be:2b:16:f1:9b:07:90:0d:ff:28:1c:
0e:4c:21:36:4e:18:86:50:2d:24:c0:d3:ce:f5:66:
a2:96:28:01:56:ba:97:d9:f9:fe:c6:0c:af:2f:34:
c3:b7:e1:b3:8a:85:3d:52:ef:fc:61:10:97:17:35:
95:fb:c8:e2:ae:49:1f:b4:8a:a7:70:76:b7:c7:df:
6b:71
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
49:9D:A7:97:77:91:95:74:7C:01:DC:46:BB:A1:09:4F:19:65:53:D1
X509v3 Authority Key Identifier:
keyid:07:F3:ED:92:2A:F7:2C:67:60:A8:EF:86:B2:9B:CC:97:5C:FA:CF:5A
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
33:e2:3f:e9:5d:75:96:92:fd:8a:2e:93:5d:79:9d:8e:a0:c4:
d9:e8:8e:06:c9:76:91:56:3b:53:be:af:b8:0a:02:1a:5e:4e:
f1:c1:68:5a:42:3b:1f:f8:2e:f8:f2:62:65:9f:e0:2d:5c:46:
bf:9f:87:e3:e6:3f:59:43:11:fe:68:9c:9f:81:aa:20:2c:42:
56:1d:fc:d3:61:57:92:17:e4:cc:e1:e8:e0:1f:a8:d4:f0:f2:
ae:cc:cb:f7:e4:23:7e:2b:3d:b9:2c:8d:c3:1b:07:bb:02:42:
f4:d1:96:68:aa:68:50:ec:e7:e1:91:53:c3:54:b2:9c:2c:a7:
d9:27:b1:54:58:45:2f:ed:88:4b:3a:13:54:df:a3:45:3a:79:
f1:e0:b7:73:05:8e:df:0e:3e:74:5b:c5:ea:75:0a:75:25:71:
86:20:60:d0:48:bc:b1:4c:d2:23:70:68:6d:80:1d:24:0f:da:
4e:b5:5c:26:f8:5b:e3:d9:4c:2b:68:9f:b8:74:77:e4:ff:2a:
6f:0f:29:64:ec:1a:68:89:a4:81:dc:3a:31:7a:70:a5:28:ff:
78:8f:ec:aa:f8:3a:38:75:93:ee:52:ed:f5:b4:cb:2d:04:3b:
cd:52:f2:da:19:1c:08:f8:8c:bb:18:0e:52:0b:51:ce:ed:40:
7e:fc:a3:2e
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
29:7e:4d:0e:76:59:e5:dd:a7:55:bf:98:47:02:50:e5:71:03:33:72
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:c9:47:61:13:ce:5c:97:1f:40:92:f1:86:de:28:
e0:4e:e8:70:01:3a:19:75:23:4f:bd:7b:ec:b6:45:
5f:aa:5e:2c:58:bd:ed:17:3c:ad:fc:74:4e:97:48:
71:a3:ce:04:90:0f:cf:78:62:89:58:18:66:c5:b7:
c9:a2:80:48:57:ee:64:a8:17:90:8c:e1:51:6d:a3:
79:21:d0:67:9f:82:ba:89:70:6e:54:32:67:e2:f5:
d7:8c:de:f8:6f:21:86:26:11:89:e7:7a:52:ab:25:
a4:e9:53:0d:01:58:04:a1:8e:ce:93:52:36:33:82:
17:6f:4c:cd:5c:9b:ee:42:96:2f:5c:ef:e4:c1:8b:
db:78:ad:af:e3:9f:b6:1c:be:f1:1d:36:9b:63:92:
37:be:ea:27:49:b7:7b:89:73:93:2c:b2:cb:bb:74:
d4:a6:c2:fe:08:ae:e8:bc:e3:40:a7:4d:97:db:14:
26:6b:c8:02:d3:95:4a:9b:7b:12:69:d3:3f:e9:88:
07:d7:49:26:6f:87:85:aa:0f:be:88:3c:a7:f0:9f:
7f:21:f0:96:35:26:71:f1:f9:33:3f:f8:c8:92:64:
c1:7a:6a:6b:52:a8:54:dc:88:5c:75:93:81:7f:4f:
cc:c5:cf:51:4b:87:ff:4e:3c:e2:76:08:2d:fc:4d:
cf:0f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
07:F3:ED:92:2A:F7:2C:67:60:A8:EF:86:B2:9B:CC:97:5C:FA:CF:5A
X509v3 Authority Key Identifier:
keyid:5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
1.2.3.4:
....
Signature Algorithm: sha256WithRSAEncryption
74:bf:7a:bf:eb:53:13:85:45:70:1a:ab:4a:a0:0b:75:e4:4c:
48:c0:b5:d8:b9:7c:47:cc:96:31:89:bc:7b:af:aa:02:99:de:
6f:ce:d6:67:94:13:17:4f:7d:ee:43:da:a1:d3:06:9f:84:fc:
c1:98:26:5a:8e:85:fb:00:63:85:42:bd:83:f8:28:18:0d:17:
48:30:95:eb:d1:67:eb:5d:c9:fc:26:ad:a0:c9:8e:d7:61:01:
70:01:21:8e:ec:1c:fa:14:de:97:52:f2:c2:4f:bc:63:50:c9:
a6:26:35:41:d3:04:04:a1:f1:b4:51:46:49:ab:0d:bd:af:76:
c6:fe:12:35:42:15:8d:17:1b:69:c7:46:70:d4:9a:f5:bb:ee:
95:44:3e:af:5f:ae:42:4d:ba:e8:65:9c:4d:ea:8a:d4:c9:e5:
6e:c3:d4:29:93:78:d6:48:ea:e8:94:c6:27:a3:df:e5:d0:07:
86:6d:16:81:62:5a:af:4c:a5:b3:21:f2:88:03:e5:be:5b:84:
4d:96:0f:d0:cf:35:85:23:b7:a1:4b:cf:fc:f1:ca:a4:91:c7:
12:44:d8:e6:fa:aa:84:f8:1e:74:59:d5:04:5a:8b:f2:b8:6b:
59:8d:29:59:24:35:2d:e2:dc:e8:4b:6b:f7:e5:92:da:bd:4f:
b3:cb:dd:93
-----BEGIN CERTIFICATE-----
MIIDjTCCAnWgAwIBAgIUKX5NDnZZ5d2nVb+YRwJQ5XEDM3IwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw
MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBAMlHYRPOXJcfQJLxht4o4E7ocAE6GXUjT7177LZFX6peLFi9
7Rc8rfx0TpdIcaPOBJAPz3hiiVgYZsW3yaKASFfuZKgXkIzhUW2jeSHQZ5+Cuolw
blQyZ+L114ze+G8hhiYRied6UqslpOlTDQFYBKGOzpNSNjOCF29MzVyb7kKWL1zv
5MGL23itr+Ofthy+8R02m2OSN77qJ0m3e4lzkyyyy7t01KbC/giu6LzjQKdNl9sU
JmvIAtOVSpt7EmnTP+mIB9dJJm+HhaoPvog8p/CffyHwljUmcfH5Mz/4yJJkwXpq
a1KoVNyIXHWTgX9PzMXPUUuH/0484nYILfxNzw8CAwEAAaOB2DCB1TAdBgNVHQ4E
FgQUB/Ptkir3LGdgqO+GspvMl1z6z1owHwYDVR0jBBgwFoAUXnNBCSdGFxJrYv8u
eCDeelntKYQwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs
LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m
b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/
MAsGAyoDBAQEAQIDBDANBgkqhkiG9w0BAQsFAAOCAQEAdL96v+tTE4VFcBqrSqAL
deRMSMC12Ll8R8yWMYm8e6+qApneb87WZ5QTF0997kPaodMGn4T8wZgmWo6F+wBj
hUK9g/goGA0XSDCV69Fn613J/CatoMmO12EBcAEhjuwc+hTel1Lywk+8Y1DJpiY1
QdMEBKHxtFFGSasNva92xv4SNUIVjRcbacdGcNSa9bvulUQ+r1+uQk266GWcTeqK
1MnlbsPUKZN41kjq6JTGJ6Pf5dAHhm0WgWJar0ylsyHyiAPlvluETZYP0M81hSO3
oUvP/PHKpJHHEkTY5vqqhPgedFnVBFqL8rhrWY0pWSQ1LeLc6Etr9+WS2r1Ps8vd
kw==
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
29:7e:4d:0e:76:59:e5:dd:a7:55:bf:98:47:02:50:e5:71:03:33:71
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:d0:c9:04:2a:e3:2c:61:f5:b8:fe:95:cf:f0:4f:
49:3a:13:bf:16:40:fd:16:d5:31:53:5b:2c:16:94:
96:7b:63:43:b0:04:9f:0c:9f:f9:30:48:94:ad:03:
c7:84:48:a0:9e:eb:7a:a4:d7:09:f7:48:4d:1d:d8:
05:59:46:52:33:43:a7:6c:c1:66:b4:8e:5a:3e:8a:
5b:bc:18:09:ff:c3:5b:c2:d7:1f:00:e1:5d:85:b1:
b6:8b:aa:ac:7a:9e:30:37:d8:57:c6:d8:82:f5:23:
80:16:2b:ff:95:5b:dc:24:61:0b:0f:62:14:e8:dd:
ee:5c:30:86:6d:4e:e9:99:b5:61:d1:94:cf:4c:f9:
c4:92:be:22:59:2d:be:ca:2c:d3:8d:9f:8e:ea:d3:
88:dc:cd:69:21:18:64:d2:66:23:50:d4:ca:38:76:
09:3d:f5:cc:42:91:a2:12:f1:f4:cb:86:83:7c:0d:
87:f7:89:a7:eb:ff:99:19:c6:04:22:b5:05:18:ca:
04:60:d3:61:b8:b2:b1:64:cf:c4:15:af:a4:62:f6:
a1:c6:cc:f9:f9:3d:3e:25:7c:03:a6:a6:17:d6:43:
90:7d:d8:04:f6:27:c7:79:cf:c9:96:b4:b3:b7:0e:
0a:fc:c4:ea:b4:ce:7e:67:e7:21:33:92:cc:11:af:
f2:9b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
X509v3 Authority Key Identifier:
keyid:5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
44:c3:bb:ad:70:3c:de:02:bc:50:57:0c:f4:aa:02:d1:40:10:
fc:02:26:1c:39:9e:1e:cf:2e:cd:44:a1:c3:88:9b:53:9f:0f:
20:83:0e:f4:96:3b:3d:5e:55:6c:ce:71:3d:ad:9c:43:77:ad:
01:35:89:6d:a0:e7:07:34:7d:d7:d6:bd:a6:ae:33:53:01:0e:
92:32:70:d8:87:33:ad:94:b5:2e:f9:f9:51:44:9b:bc:33:71:
6c:ba:28:06:b4:19:63:06:e3:a2:73:bd:6e:b8:1e:55:9f:05:
20:58:d6:af:d2:39:66:07:ce:df:63:e8:65:47:ee:10:78:aa:
f5:21:a0:99:f9:9c:a0:fc:3a:74:74:f1:76:6c:0f:74:ba:07:
a1:e7:65:05:ff:52:c5:e6:c8:ee:37:fa:36:af:7a:6f:47:a8:
44:99:73:d3:fd:84:1d:90:e4:27:d7:4b:11:28:bb:91:b3:3a:
c0:ab:6f:5a:da:8f:b8:3b:d6:cf:65:a3:dc:c5:9b:48:97:d0:
e2:7f:20:3c:7f:48:3f:59:1a:31:bb:ce:14:60:12:38:74:dc:
50:95:84:3b:d2:d7:9f:9f:0b:1e:74:5e:69:71:af:46:d9:9e:
02:20:5b:a9:a2:8f:be:e1:9f:c2:91:7c:05:b0:8e:48:f8:b7:
ec:26:8c:70
-----BEGIN CERTIFICATE-----
MIIDeDCCAmCgAwIBAgIUKX5NDnZZ5d2nVb+YRwJQ5XEDM3EwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw
MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQDQyQQq4yxh9bj+lc/wT0k6E78WQP0W1TFTWywWlJZ7Y0OwBJ8Mn/kwSJSt
A8eESKCe63qk1wn3SE0d2AVZRlIzQ6dswWa0jlo+ilu8GAn/w1vC1x8A4V2FsbaL
qqx6njA32FfG2IL1I4AWK/+VW9wkYQsPYhTo3e5cMIZtTumZtWHRlM9M+cSSviJZ
Lb7KLNONn47q04jczWkhGGTSZiNQ1Mo4dgk99cxCkaIS8fTLhoN8DYf3iafr/5kZ
xgQitQUYygRg02G4srFkz8QVr6Ri9qHGzPn5PT4lfAOmphfWQ5B92AT2J8d5z8mW
tLO3Dgr8xOq0zn5n5yEzkswRr/KbAgMBAAGjgcswgcgwHQYDVR0OBBYEFF5zQQkn
RhcSa2L/Lngg3npZ7SmEMB8GA1UdIwQYMBaAFF5zQQknRhcSa2L/Lngg3npZ7SmE
MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh
L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S
b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG
9w0BAQsFAAOCAQEARMO7rXA83gK8UFcM9KoC0UAQ/AImHDmeHs8uzUShw4ibU58P
IIMO9JY7PV5VbM5xPa2cQ3etATWJbaDnBzR919a9pq4zUwEOkjJw2IczrZS1Lvn5
UUSbvDNxbLooBrQZYwbjonO9brgeVZ8FIFjWr9I5ZgfO32PoZUfuEHiq9SGgmfmc
oPw6dHTxdmwPdLoHoedlBf9SxebI7jf6Nq96b0eoRJlz0/2EHZDkJ9dLESi7kbM6
wKtvWtqPuDvWz2Wj3MWbSJfQ4n8gPH9IP1kaMbvOFGASOHTcUJWEO9LXn58LHnRe
aXGvRtmeAiBbqaKPvuGfwpF8BbCOSPi37CaMcA==
-----END CERTIFICATE-----