blob: 091d6bc03bb71e6b4fcce19a6e39fb72609ea892 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the intermediate has a basic constraints extension
that indicates it is NOT a CA.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5d:89:40:ce:2b:53:75:88:ff:8e:84:70:5e:89:c5:8b:d1:5c:22:c2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:96:d4:6b:47:00:ed:9a:72:03:1f:bc:14:42:63:
28:8d:c9:5a:08:27:59:06:2e:61:d9:28:aa:ed:58:
17:5f:f2:bf:ee:33:ab:74:0b:1c:c3:00:b6:38:96:
96:d0:dc:91:44:ab:1d:fa:e5:99:ed:fe:ee:43:dd:
21:b0:b8:1a:31:70:bb:c6:a5:eb:6e:2e:79:cf:c3:
c9:32:f7:39:e5:ff:9f:1e:fd:c8:8c:8f:9d:42:e6:
5d:cc:b1:75:fa:94:f3:f8:df:f8:47:ea:7a:4f:4c:
1d:67:fd:37:2e:75:a3:13:84:00:92:c5:6c:86:66:
80:39:7b:0f:2e:af:14:ce:82:1c:e4:78:7b:f3:d8:
f4:b3:b1:d1:7d:5f:ed:19:6f:1d:eb:7e:be:3a:33:
e1:b4:86:82:22:05:28:87:85:b8:2b:70:f1:88:45:
6b:b4:fb:d0:f0:0a:e5:45:f6:a8:e2:18:88:74:56:
4c:a7:4b:cb:13:8e:61:8b:1a:c2:a2:2b:2d:24:7a:
f0:4c:53:49:8b:98:be:52:31:72:5d:38:e7:8d:36:
7b:bb:34:4d:66:2d:b3:8b:82:85:9f:e6:f9:d8:58:
da:0d:e9:d5:d2:be:53:4b:88:ad:58:8a:3b:3c:1d:
53:60:ed:15:50:9c:fd:c3:bf:0c:fc:56:02:8f:06:
ab:9d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
69:F2:C8:4F:15:5E:61:18:40:61:41:B1:88:18:21:B5:77:6F:F9:DE
X509v3 Authority Key Identifier:
keyid:AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
81:4c:16:39:06:21:f4:37:69:aa:a6:28:f9:7f:e4:66:af:a6:
7a:fb:8f:24:7d:5b:f4:97:0f:78:ae:e0:19:e4:ac:96:01:5b:
83:d4:90:dc:3d:95:e9:37:fb:f0:8b:cb:a1:4b:26:3a:91:ae:
0f:7e:ad:47:e7:54:e7:92:60:7c:d8:c3:ba:39:0e:1f:f7:43:
65:2e:cd:4b:33:5b:8c:30:65:4b:a3:13:da:4f:80:bb:5e:a0:
2d:a7:6e:6a:4b:e7:28:36:da:5c:5e:ec:a8:2b:0b:57:e6:74:
d7:a0:10:7a:00:76:e9:3a:1e:7b:b0:a7:89:48:51:aa:c6:de:
8f:cc:2f:fc:29:6d:f6:fb:7f:97:bc:4e:1a:0f:f4:72:52:21:
e5:70:26:9e:fa:95:50:20:35:68:db:ac:5c:04:1b:47:c5:e7:
c6:07:3b:5f:e6:39:f2:1e:d1:66:c5:80:7e:84:cb:b3:c1:21:
0a:a0:ee:aa:1b:9e:4c:b6:00:bf:6b:98:bf:8a:8d:a2:8f:a7:
e4:98:6b:de:ad:f4:da:fe:54:13:99:1d:ec:c9:71:53:ba:c7:
8d:41:42:ca:8e:3e:a1:16:d2:c0:01:af:98:d6:66:6f:83:42:
fe:c2:3e:c4:71:78:e9:00:04:47:20:1e:8c:83:c8:92:28:8a:
a7:a0:28:4c
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:ba
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:c2:02:78:c1:e7:a0:b7:63:87:52:e4:d4:11:71:
3e:cb:65:9c:d9:2f:cb:48:30:8e:62:29:ae:c9:22:
36:a6:67:d2:ea:10:58:d2:82:ab:bc:1e:a3:12:64:
6e:fd:79:af:2e:6c:c0:8b:fd:36:68:ea:e0:0a:09:
53:99:89:75:92:61:13:ac:aa:d9:e2:f1:ac:93:72:
94:65:99:9e:52:9d:8f:6d:1e:b1:3e:83:fb:fa:c4:
dd:b4:b3:d2:0b:bb:f8:21:10:a9:51:8e:9e:b4:c8:
a8:63:79:50:62:03:59:3f:53:19:02:7c:a4:d9:45:
dd:07:b7:76:89:ac:ac:6f:b1:1d:aa:8c:4a:e5:40:
a2:05:32:2f:ba:a8:a9:8a:f3:eb:f0:f3:d9:9e:97:
e6:89:42:dd:95:67:de:33:62:2c:10:59:0b:b6:de:
9a:3e:54:10:b8:a4:a9:33:05:4d:fc:ea:8b:56:38:
2a:11:88:cd:75:1f:74:ea:4e:ad:3c:ef:da:d4:00:
72:57:1c:16:d3:20:b6:99:cc:7f:aa:58:fa:48:e8:
e9:a9:bd:00:2e:87:ce:39:9b:1c:17:23:ac:28:55:
77:81:e7:ac:f6:d6:6d:77:27:fb:e7:a0:22:72:58:
83:4d:1a:1a:be:b6:00:8e:d1:11:c7:71:28:93:09:
74:7b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
AF:9B:3A:70:86:45:08:AD:02:CD:FC:FD:46:48:82:7D:46:63:31:DB
X509v3 Authority Key Identifier:
keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:FALSE
Signature Algorithm: sha256WithRSAEncryption
49:b5:b7:cf:f6:1f:c2:b8:de:b0:18:55:84:5b:30:90:ab:2b:
f6:19:57:db:34:dc:65:9b:50:b7:7d:f9:a3:2e:3f:60:ff:de:
7e:8d:a3:20:c3:ee:0c:b2:b2:f0:68:ab:93:c3:f4:3d:ec:da:
54:86:4a:c0:0a:5e:e9:c3:bf:4b:cd:1a:28:8e:b3:1f:b5:5b:
ce:d6:fc:1d:cc:7b:8d:a6:31:a7:ef:43:4c:3d:3c:d9:17:e0:
3f:23:ca:1f:d6:cd:d2:ce:da:f3:a7:c8:f3:3b:ab:c9:e1:c1:
56:37:f7:79:0f:ae:ad:52:43:35:95:8d:34:a4:d7:e0:21:a7:
f0:37:63:c3:63:8a:d3:ce:50:ff:e1:0d:30:6b:b3:75:e1:5d:
43:31:9f:3a:b5:59:cd:aa:7a:06:bc:4b:4d:74:ed:59:ac:fc:
bc:4a:4e:a1:be:1e:2d:12:70:6e:36:e9:4e:5a:11:19:91:85:
da:b2:54:ec:9d:9a:2b:cd:c1:7e:7c:18:fd:ae:a2:9c:b2:17:
68:8a:43:b2:25:16:a9:7b:bf:42:ed:fd:54:cb:84:f1:40:76:
54:a4:3a:62:1e:f9:98:2a:ff:37:66:bf:05:1f:b7:55:7d:8b:
03:e8:a3:12:b3:40:78:52:77:62:aa:71:2b:cb:86:50:d1:83:
08:bd:b8:50
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:d2:b9:cc:38:a5:71:aa:e1:ce:1e:c1:8b:50:10:aa:15:44:3f:b9
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:bb:74:06:fa:a6:03:d1:64:c6:fa:62:8c:f6:40:
93:be:4e:7d:71:8b:3c:fb:57:b2:64:7a:08:9d:ce:
c3:40:ff:eb:84:43:e9:0c:e0:80:2c:e3:9c:38:43:
90:9d:e1:a5:4e:a1:10:9f:ac:b4:bf:24:38:7a:d7:
37:21:0d:ae:de:f0:99:37:43:6a:e7:7f:d0:4a:ba:
d3:a4:f4:df:ce:fa:d1:b0:03:f9:5d:79:a5:c5:82:
b0:cf:62:02:87:84:ec:73:d2:65:33:86:02:d7:f4:
57:8d:98:a2:2a:8f:89:c6:23:29:68:ff:56:46:d2:
dc:9a:e3:d2:24:d8:e9:fe:18:0c:4f:67:b3:cd:5e:
31:4a:70:2e:4c:b2:7e:10:e1:38:c7:a1:fa:bc:8f:
9b:23:e9:19:56:c5:38:4a:e8:7d:31:e2:6e:03:70:
ce:f2:0b:52:7d:6d:d7:d7:53:d8:e0:1c:6e:95:f3:
1c:b6:04:50:03:23:39:86:42:28:68:26:5f:ca:a7:
13:e2:51:ed:f0:55:bb:ac:4e:9d:cf:e5:07:44:41:
45:f8:5c:65:cf:d7:7f:0a:e0:ee:5e:5e:2c:0c:13:
10:f6:d4:e3:ba:9f:16:f4:8c:85:b2:53:4c:e1:56:
63:f0:08:11:84:df:dc:e1:a0:7f:fb:78:5d:eb:21:
f9:e5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
X509v3 Authority Key Identifier:
keyid:6C:B8:FE:A6:74:44:97:70:ED:FE:CB:24:38:90:2A:A9:61:48:FB:EB
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
0f:63:30:43:fc:d4:2f:ab:61:22:7e:19:62:9c:64:a4:5c:98:
b8:bd:d3:04:be:06:be:6d:7d:2f:a5:f8:c1:5d:29:90:fe:9a:
fb:e2:08:58:7f:60:ba:e8:63:a1:17:90:88:3b:35:1e:92:98:
37:2a:79:4a:db:1b:23:07:c3:75:82:90:1b:97:1b:4e:e1:40:
a8:74:99:03:72:de:05:46:f5:4b:f2:ab:00:4f:27:e7:e8:c3:
95:d9:ba:63:f0:42:99:ec:61:44:1a:03:e5:6d:58:28:c2:f9:
8a:36:6d:10:fc:d4:4e:91:38:91:7b:4c:e2:69:e1:1b:c2:c9:
51:50:cf:13:08:66:d1:27:5b:0d:c1:f0:fd:70:4e:63:17:0e:
53:2b:36:72:18:b2:a1:fc:fc:e8:21:e3:15:2b:39:e3:01:18:
11:52:c8:0e:20:e7:29:ae:2f:35:4e:dd:2a:f6:12:cd:55:38:
89:f3:2a:11:43:d7:33:c2:47:c1:c7:78:f4:d0:a0:5a:cb:ec:
86:88:5d:5d:54:d2:b2:0d:cb:5c:0e:05:28:80:e8:8c:09:45:
1e:66:44:f7:6c:b4:07:a3:4e:8e:8c:33:38:c5:de:10:1f:f8:
1e:a9:12:3b:f2:18:d8:84:95:79:50:66:49:49:58:b5:e0:89:
9a:ac:59:e7
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----