| [Created by: generate-chains.py] |
| |
| Certificate chain where the intermediate has a basic constraints extension |
| that indicates it is NOT a CA. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 5d:89:40:ce:2b:53:75:88:ff:8e:84:70:5e:89:c5:8b:d1:5c:22:c2 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Oct 5 12:00:00 2021 GMT |
| Not After : Oct 5 12:00:00 2022 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| RSA Public-Key: (2048 bit) |
| Modulus: |
| 00:96:d4:6b:47:00:ed:9a:72:03:1f:bc:14:42:63: |
| 28:8d:c9:5a:08:27:59:06:2e:61:d9:28:aa:ed:58: |
| 17:5f:f2:bf:ee:33:ab:74:0b:1c:c3:00:b6:38:96: |
| 96:d0:dc:91:44:ab:1d:fa:e5:99:ed:fe:ee:43:dd: |
| 21:b0:b8:1a:31:70:bb:c6:a5:eb:6e:2e:79:cf:c3: |
| c9:32:f7:39:e5:ff:9f:1e:fd:c8:8c:8f:9d:42:e6: |
| 5d:cc:b1:75:fa:94:f3:f8:df:f8:47:ea:7a:4f:4c: |
| 1d:67:fd:37:2e:75:a3:13:84:00:92:c5:6c:86:66: |
| 80:39:7b:0f:2e:af:14:ce:82:1c:e4:78:7b:f3:d8: |
| f4:b3:b1:d1:7d:5f:ed:19:6f:1d:eb:7e:be:3a:33: |
| e1:b4:86:82:22:05:28:87:85:b8:2b:70:f1:88:45: |
| 6b:b4:fb:d0:f0:0a:e5:45:f6:a8:e2:18:88:74:56: |
| 4c:a7:4b:cb:13:8e:61:8b:1a:c2:a2:2b:2d:24:7a: |
| f0:4c:53:49:8b:98:be:52:31:72:5d:38:e7:8d:36: |
| 7b:bb:34:4d:66:2d:b3:8b:82:85:9f:e6:f9:d8:58: |
| da:0d:e9:d5:d2:be:53:4b:88:ad:58:8a:3b:3c:1d: |
| 53:60:ed:15:50:9c:fd:c3:bf:0c:fc:56:02:8f:06: |
| ab:9d |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 69:F2:C8:4F:15:5E:61:18:40:61:41:B1:88:18:21:B5:77:6F:F9:DE |
| X509v3 Authority Key Identifier: |
| keyid:AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| 81:4c:16:39:06:21:f4:37:69:aa:a6:28:f9:7f:e4:66:af:a6: |
| 7a:fb:8f:24:7d:5b:f4:97:0f:78:ae:e0:19:e4:ac:96:01:5b: |
| 83:d4:90:dc:3d:95:e9:37:fb:f0:8b:cb:a1:4b:26:3a:91:ae: |
| 0f:7e:ad:47:e7:54:e7:92:60:7c:d8:c3:ba:39:0e:1f:f7:43: |
| 65:2e:cd:4b:33:5b:8c:30:65:4b:a3:13:da:4f:80:bb:5e:a0: |
| 2d:a7:6e:6a:4b:e7:28:36:da:5c:5e:ec:a8:2b:0b:57:e6:74: |
| d7:a0:10:7a:00:76:e9:3a:1e:7b:b0:a7:89:48:51:aa:c6:de: |
| 8f:cc:2f:fc:29:6d:f6:fb:7f:97:bc:4e:1a:0f:f4:72:52:21: |
| e5:70:26:9e:fa:95:50:20:35:68:db:ac:5c:04:1b:47:c5:e7: |
| c6:07:3b:5f:e6:39:f2:1e:d1:66:c5:80:7e:84:cb:b3:c1:21: |
| 0a:a0:ee:aa:1b:9e:4c:b6:00:bf:6b:98:bf:8a:8d:a2:8f:a7: |
| e4:98:6b:de:ad:f4:da:fe:54:13:99:1d:ec:c9:71:53:ba:c7: |
| 8d:41:42:ca:8e:3e:a1:16:d2:c0:01:af:98:d6:66:6f:83:42: |
| fe:c2:3e:c4:71:78:e9:00:04:47:20:1e:8c:83:c8:92:28:8a: |
| a7:a0:28:4c |
| -----BEGIN CERTIFICATE----- |
| MIIDoDCCAoigAwIBAgIUXYlAzitTdYj/joRwXonFi9FcIsIwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTIxMTAwNTEyMDAwMFoXDTIy |
| MTAwNTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAltRrRwDtmnIDH7wUQmMojclaCCdZBi5h2Siq7VgXX/K/ |
| 7jOrdAscwwC2OJaW0NyRRKsd+uWZ7f7uQ90hsLgaMXC7xqXrbi55z8PJMvc55f+f |
| Hv3IjI+dQuZdzLF1+pTz+N/4R+p6T0wdZ/03LnWjE4QAksVshmaAOXsPLq8UzoIc |
| 5Hh789j0s7HRfV/tGW8d636+OjPhtIaCIgUoh4W4K3DxiEVrtPvQ8ArlRfao4hiI |
| dFZMp0vLE45hixrCoistJHrwTFNJi5i+UjFyXTjnjTZ7uzRNZi2zi4KFn+b52Fja |
| DenV0r5TS4itWIo7PB1TYO0VUJz9w78M/FYCjwarnQIDAQABo4HpMIHmMB0GA1Ud |
| DgQWBBRp8shPFV5hGEBhQbGIGCG1d2/53jAfBgNVHSMEGDAWgBSvmzpwhkUIrQLN |
| /P1GSIJ9RmMx2zA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF |
| oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD |
| ggEBAIFMFjkGIfQ3aaqmKPl/5Gavpnr7jyR9W/SXD3iu4BnkrJYBW4PUkNw9lek3 |
| +/CLy6FLJjqRrg9+rUfnVOeSYHzYw7o5Dh/3Q2UuzUszW4wwZUujE9pPgLteoC2n |
| bmpL5yg22lxe7KgrC1fmdNegEHoAduk6Hnuwp4lIUarG3o/ML/wpbfb7f5e8ThoP |
| 9HJSIeVwJp76lVAgNWjbrFwEG0fF58YHO1/mOfIe0WbFgH6Ey7PBIQqg7qobnky2 |
| AL9rmL+KjaKPp+SYa96t9Nr+VBOZHezJcVO6x41BQsqOPqEW0sABr5jWZm+DQv7C |
| PsRxeOkABEcgHoyDyJIoiqegKEw= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:ba |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Oct 5 12:00:00 2021 GMT |
| Not After : Oct 5 12:00:00 2022 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| RSA Public-Key: (2048 bit) |
| Modulus: |
| 00:c2:02:78:c1:e7:a0:b7:63:87:52:e4:d4:11:71: |
| 3e:cb:65:9c:d9:2f:cb:48:30:8e:62:29:ae:c9:22: |
| 36:a6:67:d2:ea:10:58:d2:82:ab:bc:1e:a3:12:64: |
| 6e:fd:79:af:2e:6c:c0:8b:fd:36:68:ea:e0:0a:09: |
| 53:99:89:75:92:61:13:ac:aa:d9:e2:f1:ac:93:72: |
| 94:65:99:9e:52:9d:8f:6d:1e:b1:3e:83:fb:fa:c4: |
| dd:b4:b3:d2:0b:bb:f8:21:10:a9:51:8e:9e:b4:c8: |
| a8:63:79:50:62:03:59:3f:53:19:02:7c:a4:d9:45: |
| dd:07:b7:76:89:ac:ac:6f:b1:1d:aa:8c:4a:e5:40: |
| a2:05:32:2f:ba:a8:a9:8a:f3:eb:f0:f3:d9:9e:97: |
| e6:89:42:dd:95:67:de:33:62:2c:10:59:0b:b6:de: |
| 9a:3e:54:10:b8:a4:a9:33:05:4d:fc:ea:8b:56:38: |
| 2a:11:88:cd:75:1f:74:ea:4e:ad:3c:ef:da:d4:00: |
| 72:57:1c:16:d3:20:b6:99:cc:7f:aa:58:fa:48:e8: |
| e9:a9:bd:00:2e:87:ce:39:9b:1c:17:23:ac:28:55: |
| 77:81:e7:ac:f6:d6:6d:77:27:fb:e7:a0:22:72:58: |
| 83:4d:1a:1a:be:b6:00:8e:d1:11:c7:71:28:93:09: |
| 74:7b |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB |
| X509v3 Authority Key Identifier: |
| keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:FALSE |
| Signature Algorithm: sha256WithRSAEncryption |
| 49:b5:b7:cf:f6:1f:c2:b8:de:b0:18:55:84:5b:30:90:ab:2b: |
| f6:19:57:db:34:dc:65:9b:50:b7:7d:f9:a3:2e:3f:60:ff:de: |
| 7e:8d:a3:20:c3:ee:0c:b2:b2:f0:68:ab:93:c3:f4:3d:ec:da: |
| 54:86:4a:c0:0a:5e:e9:c3:bf:4b:cd:1a:28:8e:b3:1f:b5:5b: |
| ce:d6:fc:1d:cc:7b:8d:a6:31:a7:ef:43:4c:3d:3c:d9:17:e0: |
| 3f:23:ca:1f:d6:cd:d2:ce:da:f3:a7:c8:f3:3b:ab:c9:e1:c1: |
| 56:37:f7:79:0f:ae:ad:52:43:35:95:8d:34:a4:d7:e0:21:a7: |
| f0:37:63:c3:63:8a:d3:ce:50:ff:e1:0d:30:6b:b3:75:e1:5d: |
| 43:31:9f:3a:b5:59:cd:aa:7a:06:bc:4b:4d:74:ed:59:ac:fc: |
| bc:4a:4e:a1:be:1e:2d:12:70:6e:36:e9:4e:5a:11:19:91:85: |
| da:b2:54:ec:9d:9a:2b:cd:c1:7e:7c:18:fd:ae:a2:9c:b2:17: |
| 68:8a:43:b2:25:16:a9:7b:bf:42:ed:fd:54:cb:84:f1:40:76: |
| 54:a4:3a:62:1e:f9:98:2a:ff:37:66:bf:05:1f:b7:55:7d:8b: |
| 03:e8:a3:12:b3:40:78:52:77:62:aa:71:2b:cb:86:50:d1:83: |
| 08:bd:b8:50 |
| -----BEGIN CERTIFICATE----- |
| MIIDfTCCAmWgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7owDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBAMICeMHnoLdjh1Lk1BFxPstlnNkvy0gwjmIprskiNqZn0uoQ |
| WNKCq7weoxJkbv15ry5swIv9Nmjq4AoJU5mJdZJhE6yq2eLxrJNylGWZnlKdj20e |
| sT6D+/rE3bSz0gu7+CEQqVGOnrTIqGN5UGIDWT9TGQJ8pNlF3Qe3domsrG+xHaqM |
| SuVAogUyL7qoqYrz6/Dz2Z6X5olC3ZVn3jNiLBBZC7bemj5UELikqTMFTfzqi1Y4 |
| KhGIzXUfdOpOrTzv2tQAclccFtMgtpnMf6pY+kjo6am9AC6HzjmbHBcjrChVd4Hn |
| rPbWbXcn++egInJYg00aGr62AI7REcdxKJMJdHsCAwEAAaOByDCBxTAdBgNVHQ4E |
| FgQUr5s6cIZFCK0Czfz9RkiCfUZjMdswHwYDVR0jBBgwFoAUbLj+pnREl3Dt/ssk |
| OJAqqWFI++swNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAMBgNVHRMBAf8EAjAAMA0G |
| CSqGSIb3DQEBCwUAA4IBAQBJtbfP9h/CuN6wGFWEWzCQqyv2GVfbNNxlm1C3ffmj |
| Lj9g/95+jaMgw+4MsrLwaKuTw/Q97NpUhkrACl7pw79LzRoojrMftVvO1vwdzHuN |
| pjGn70NMPTzZF+A/I8of1s3Sztrzp8jzO6vJ4cFWN/d5D66tUkM1lY00pNfgIafw |
| N2PDY4rTzlD/4Q0wa7N14V1DMZ86tVnNqnoGvEtNdO1ZrPy8Sk6hvh4tEnBuNulO |
| WhEZkYXaslTsnZorzcF+fBj9rqKcshdoikOyJRape79C7f1Uy4TxQHZUpDpiHvmY |
| Kv83Zr8FH7dVfYsD6KMSs0B4UndiqnEry4ZQ0YMIvbhQ |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:b9 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Oct 5 12:00:00 2021 GMT |
| Not After : Oct 5 12:00:00 2022 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| RSA Public-Key: (2048 bit) |
| Modulus: |
| 00:bb:74:06:fa:a6:03:d1:64:c6:fa:62:8c:f6:40: |
| 93:be:4e:7d:71:8b:3c:fb:57:b2:64:7a:08:9d:ce: |
| c3:40:ff:eb:84:43:e9:0c:e0:80:2c:e3:9c:38:43: |
| 90:9d:e1:a5:4e:a1:10:9f:ac:b4:bf:24:38:7a:d7: |
| 37:21:0d:ae:de:f0:99:37:43:6a:e7:7f:d0:4a:ba: |
| d3:a4:f4:df:ce:fa:d1:b0:03:f9:5d:79:a5:c5:82: |
| b0:cf:62:02:87:84:ec:73:d2:65:33:86:02:d7:f4: |
| 57:8d:98:a2:2a:8f:89:c6:23:29:68:ff:56:46:d2: |
| dc:9a:e3:d2:24:d8:e9:fe:18:0c:4f:67:b3:cd:5e: |
| 31:4a:70:2e:4c:b2:7e:10:e1:38:c7:a1:fa:bc:8f: |
| 9b:23:e9:19:56:c5:38:4a:e8:7d:31:e2:6e:03:70: |
| ce:f2:0b:52:7d:6d:d7:d7:53:d8:e0:1c:6e:95:f3: |
| 1c:b6:04:50:03:23:39:86:42:28:68:26:5f:ca:a7: |
| 13:e2:51:ed:f0:55:bb:ac:4e:9d:cf:e5:07:44:41: |
| 45:f8:5c:65:cf:d7:7f:0a:e0:ee:5e:5e:2c:0c:13: |
| 10:f6:d4:e3:ba:9f:16:f4:8c:85:b2:53:4c:e1:56: |
| 63:f0:08:11:84:df:dc:e1:a0:7f:fb:78:5d:eb:21: |
| f9:e5 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB |
| X509v3 Authority Key Identifier: |
| keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 0f:63:30:43:fc:d4:2f:ab:61:22:7e:19:62:9c:64:a4:5c:98: |
| b8:bd:d3:04:be:06:be:6d:7d:2f:a5:f8:c1:5d:29:90:fe:9a: |
| fb:e2:08:58:7f:60:ba:e8:63:a1:17:90:88:3b:35:1e:92:98: |
| 37:2a:79:4a:db:1b:23:07:c3:75:82:90:1b:97:1b:4e:e1:40: |
| a8:74:99:03:72:de:05:46:f5:4b:f2:ab:00:4f:27:e7:e8:c3: |
| 95:d9:ba:63:f0:42:99:ec:61:44:1a:03:e5:6d:58:28:c2:f9: |
| 8a:36:6d:10:fc:d4:4e:91:38:91:7b:4c:e2:69:e1:1b:c2:c9: |
| 51:50:cf:13:08:66:d1:27:5b:0d:c1:f0:fd:70:4e:63:17:0e: |
| 53:2b:36:72:18:b2:a1:fc:fc:e8:21:e3:15:2b:39:e3:01:18: |
| 11:52:c8:0e:20:e7:29:ae:2f:35:4e:dd:2a:f6:12:cd:55:38: |
| 89:f3:2a:11:43:d7:33:c2:47:c1:c7:78:f4:d0:a0:5a:cb:ec: |
| 86:88:5d:5d:54:d2:b2:0d:cb:5c:0e:05:28:80:e8:8c:09:45: |
| 1e:66:44:f7:6c:b4:07:a3:4e:8e:8c:33:38:c5:de:10:1f:f8: |
| 1e:a9:12:3b:f2:18:d8:84:95:79:50:66:49:49:58:b5:e0:89: |
| 9a:ac:59:e7 |
| -----BEGIN CERTIFICATE----- |
| MIIDeDCCAmCgAwIBAgIUXtK5zDilcarhzh7Bi1AQqhVEP7kwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQC7dAb6pgPRZMb6Yoz2QJO+Tn1xizz7V7JkegidzsNA/+uEQ+kM4IAs45w4 |
| Q5Cd4aVOoRCfrLS/JDh61zchDa7e8Jk3Q2rnf9BKutOk9N/O+tGwA/ldeaXFgrDP |
| YgKHhOxz0mUzhgLX9FeNmKIqj4nGIylo/1ZG0tya49Ik2On+GAxPZ7PNXjFKcC5M |
| sn4Q4TjHofq8j5sj6RlWxThK6H0x4m4DcM7yC1J9bdfXU9jgHG6V8xy2BFADIzmG |
| QihoJl/KpxPiUe3wVbusTp3P5QdEQUX4XGXP138K4O5eXiwMExD21OO6nxb0jIWy |
| U0zhVmPwCBGE39zhoH/7eF3rIfnlAgMBAAGjgcswgcgwHQYDVR0OBBYEFGy4/qZ0 |
| RJdw7f7LJDiQKqlhSPvrMB8GA1UdIwQYMBaAFGy4/qZ0RJdw7f7LJDiQKqlhSPvr |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG |
| 9w0BAQsFAAOCAQEAD2MwQ/zUL6thIn4ZYpxkpFyYuL3TBL4Gvm19L6X4wV0pkP6a |
| ++IIWH9guuhjoReQiDs1HpKYNyp5StsbIwfDdYKQG5cbTuFAqHSZA3LeBUb1S/Kr |
| AE8n5+jDldm6Y/BCmexhRBoD5W1YKML5ijZtEPzUTpE4kXtM4mnhG8LJUVDPEwhm |
| 0SdbDcHw/XBOYxcOUys2chiyofz86CHjFSs54wEYEVLIDiDnKa4vNU7dKvYSzVU4 |
| ifMqEUPXM8JHwcd49NCgWsvshohdXVTSsg3LXA4FKIDojAlFHmZE92y0B6NOjowz |
| OMXeEB/4HqkSO/IY2ISVeVBmSUlYteCJmqxZ5w== |
| -----END CERTIFICATE----- |