blob: f32f0f24d73539c4a4efd5cd9cc30bcaf9f493b3 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the intermediate's Basic Constraints extension is
not marked as critical.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
4a:45:83:31:ef:c5:47:03:ae:f7:5a:80:bf:fb:8c:bc:23:1e:dc:c4
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:d8:cc:f6:ec:23:eb:20:d2:0e:7e:29:04:ec:8c:
b9:bd:ee:47:6e:0b:ac:a9:fa:22:a4:fc:41:74:04:
d0:b5:8a:37:56:29:d5:be:e7:e0:45:88:30:d9:5a:
e0:a7:69:fd:d1:c3:4d:1c:42:68:ae:7d:cf:54:db:
84:b9:91:e6:68:c5:d1:6d:a4:34:4a:7f:8f:3e:a3:
a8:c4:0e:3f:90:42:a9:b8:84:c2:fd:51:ed:eb:e9:
6d:cc:5a:22:f7:fb:eb:29:7d:5d:97:9d:26:eb:10:
29:bf:2a:bd:b0:2f:33:9b:e7:a3:17:9b:db:b4:ce:
f8:5e:66:25:7c:8c:e3:c8:53:cf:c2:c3:80:cf:e6:
68:98:ca:bd:e3:b8:d3:bc:e2:03:d0:31:5b:ef:21:
6d:2d:42:5e:cb:9a:3a:4d:7a:bd:e7:75:75:ff:63:
95:aa:08:20:fb:a8:6f:95:a9:ea:45:07:c4:a7:32:
89:58:94:98:76:2f:5d:d4:85:90:e3:be:96:33:1c:
53:d7:bd:58:87:75:4e:8c:c9:c9:6b:c8:b6:3f:d3:
46:1a:9f:4c:de:a5:48:cd:ad:87:fe:7a:82:f2:0c:
65:84:f5:09:ce:cf:fd:6c:66:57:91:dc:fb:85:d1:
ff:b2:4c:ce:2f:a3:73:b1:dc:1e:13:5c:03:1a:a6:
99:13
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
FD:20:6C:45:13:AE:E6:1F:25:FD:C9:1E:E3:09:32:CC:34:28:4E:CF
X509v3 Authority Key Identifier:
keyid:5A:44:77:BA:2D:5E:48:FE:11:68:59:58:40:91:67:E2:22:BF:31:38
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
da:44:ec:6a:27:0f:44:9c:43:dd:cd:b9:a1:e9:a6:fd:10:d9:
2e:b6:70:7d:27:f3:af:2e:14:36:ba:13:0b:65:1d:69:c6:17:
28:bc:8f:0f:bb:b6:ca:f7:77:9a:ac:d6:2f:60:4b:51:2d:0f:
28:9e:3f:7c:0f:03:40:d4:bf:80:78:3c:55:fa:ef:94:e2:db:
2c:9c:47:a2:ea:6d:da:60:40:2c:38:e0:c4:41:a4:9d:5a:9d:
15:3e:04:36:e1:ac:6f:cd:b2:af:af:b0:79:e9:ee:37:78:00:
ad:22:ae:fb:9e:79:be:41:0a:26:d8:ed:4d:8e:3f:5e:66:fd:
66:e5:9b:4d:02:87:00:d6:9a:5d:29:c9:6c:db:56:4f:f4:69:
cf:08:ad:4f:64:0e:ec:73:7a:54:90:17:cc:6e:29:6c:a3:0c:
db:cb:54:4d:e1:fc:3d:7c:82:38:18:40:5c:b3:cb:10:dd:b9:
e4:3f:2b:19:0f:a2:bb:f0:d6:bc:bc:30:03:96:c7:0c:73:f5:
b0:53:b3:5c:8c:8e:c0:d5:05:05:39:a6:62:52:9a:c1:8d:74:
29:6a:93:ef:29:53:52:63:14:fc:f9:b9:1b:34:dc:7f:4f:ba:
30:c9:4f:5e:61:73:f2:df:c3:ae:51:37:26:ee:8e:4b:91:16:
d5:c2:a5:ce
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2d:b0:5d:cd:6e:fd:4d:77:89:ef:99:fc:fd:05:d3:22:44:3f:93:ef
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:fb:af:dd:12:ab:aa:06:e0:72:bd:43:4c:3e:5b:
cd:02:9c:ca:c1:42:6d:cd:47:6e:6c:4c:6b:3f:2e:
c1:3f:2e:88:3d:77:4f:1c:34:60:ba:f7:fb:58:64:
3c:c2:76:5d:30:88:48:22:81:2f:27:c8:1f:b4:ed:
96:07:5d:f7:7c:4a:37:be:fe:4f:7b:1f:19:82:21:
24:18:c9:ae:a7:a5:58:62:9d:6b:f9:9a:88:56:0f:
7f:b4:0c:1a:d5:4f:ab:2c:c4:97:6e:ec:db:b1:a0:
43:86:34:08:2e:21:16:f8:f6:3e:2a:e8:ca:9a:a4:
fb:91:7e:f9:43:19:42:08:10:7e:92:af:60:45:4e:
30:e4:d3:d3:e9:bf:32:cf:c1:1b:a0:52:6e:a4:aa:
ed:13:6d:e8:7f:68:c6:88:84:67:20:8f:6b:82:9c:
49:5d:b4:95:63:9d:0a:dc:9f:ab:7b:b3:eb:f7:ad:
48:35:f5:44:ec:84:23:e1:5b:ca:49:16:e0:c2:5a:
8f:3e:d2:2b:fa:50:08:bf:12:3b:da:8c:96:66:93:
69:5b:27:4e:b8:e7:8d:11:14:e6:29:23:b5:d9:f7:
b0:f9:e2:90:e2:d8:be:8d:1d:dc:89:f5:eb:15:df:
58:88:e8:91:14:94:9d:37:e3:10:1a:de:30:3c:18:
d7:6f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5A:44:77:BA:2D:5E:48:FE:11:68:59:58:40:91:67:E2:22:BF:31:38
X509v3 Authority Key Identifier:
keyid:B8:16:92:87:E1:0C:B9:E5:61:C3:DA:A5:05:11:6A:58:DD:78:65:8E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
3c:1a:07:71:b2:e0:cd:a3:3f:a4:a3:32:26:a8:6b:f8:72:83:
0c:f1:e9:88:03:59:53:33:1f:b3:9b:cd:93:c9:ed:e3:ca:a2:
ef:43:ac:87:8c:7f:9a:06:6b:85:41:a2:c3:25:6a:82:12:39:
8c:57:22:37:86:6e:08:28:86:aa:ea:60:21:95:b5:ec:d5:2e:
39:90:89:e1:76:5d:71:e0:3f:42:92:5e:17:2e:09:88:48:b3:
e3:83:e5:b6:ec:67:e0:03:1d:11:4a:df:4f:6e:f5:18:8b:7f:
79:8c:89:69:59:45:9b:f7:f6:f3:ea:83:fe:05:49:bb:13:64:
d4:28:0c:78:83:1d:f6:17:86:16:5a:f7:81:06:11:ce:ef:35:
8d:79:7d:f1:d1:ff:a7:a9:b3:1a:f4:a3:20:b0:0f:d0:d3:5b:
1c:f6:1d:73:3d:96:8c:e6:19:70:a4:55:a5:ad:a8:f0:93:46:
f4:40:41:b2:3c:b3:78:1b:eb:74:29:6c:3f:7e:7f:f5:b0:c0:
e3:60:e1:8e:cc:a7:70:00:3d:de:66:f6:ee:e5:17:61:1f:c4:
d0:1c:f7:1c:19:5d:cd:e8:a6:45:14:d4:f0:78:87:7f:30:0f:
91:f8:8e:4c:d8:37:cf:c7:c1:08:c4:76:0f:7d:b9:48:06:89:
6a:05:b1:4d
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2d:b0:5d:cd:6e:fd:4d:77:89:ef:99:fc:fd:05:d3:22:44:3f:93:ee
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:aa:94:1d:65:8c:79:04:f0:c9:d1:3c:23:76:e9:
3e:2c:c9:52:e1:fc:b9:bf:35:8d:66:e4:37:66:b5:
4b:ff:1a:9b:cb:30:e1:d4:30:54:fb:6e:f2:43:fd:
76:b8:84:51:79:12:5a:65:95:87:ec:3d:19:b0:ab:
04:94:64:aa:bc:e5:bf:e2:77:fd:07:28:3c:b5:20:
da:55:2c:79:04:f2:71:6e:31:b4:63:14:80:4e:c3:
83:1e:ea:7e:5a:c0:4d:48:4a:2e:9e:52:80:80:98:
22:10:4a:05:d7:db:13:8f:37:67:20:63:19:01:92:
07:46:94:b5:c9:ba:e7:68:af:06:57:35:69:50:50:
22:23:0b:92:a1:98:32:08:88:5c:8b:4c:7c:a5:6a:
f3:31:ee:bf:4c:59:b0:a1:cb:e8:28:1d:fa:4c:d3:
1b:e6:2b:03:1a:4f:b5:8d:93:5d:18:95:c7:93:c1:
8b:6f:55:17:34:17:e9:d8:70:47:c8:4c:b2:5a:fa:
a7:aa:66:b7:a3:62:17:0a:7c:27:15:ef:c2:bc:5b:
7a:7d:88:c7:2a:45:0c:d7:3b:91:7e:72:c6:30:cb:
12:39:1e:a2:8a:88:39:30:f0:54:b4:19:6f:b6:5e:
e8:01:60:2c:2b:27:cb:e5:93:49:ab:b8:9e:f0:29:
e6:c7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
B8:16:92:87:E1:0C:B9:E5:61:C3:DA:A5:05:11:6A:58:DD:78:65:8E
X509v3 Authority Key Identifier:
keyid:B8:16:92:87:E1:0C:B9:E5:61:C3:DA:A5:05:11:6A:58:DD:78:65:8E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
86:e3:13:ea:c4:23:12:a4:15:aa:2d:23:f7:2a:4f:97:f4:57:
05:f5:d5:a8:aa:a1:dd:ad:a6:c2:6a:f4:d8:2d:f4:5c:2d:7a:
d4:6f:9c:ea:a9:09:e3:62:86:1f:aa:59:fe:d8:6b:35:0a:a1:
c4:87:8b:4d:b4:30:1f:9d:10:35:d8:94:82:bf:b4:42:dc:1d:
94:af:01:45:40:6e:02:e6:fa:b5:78:f5:ed:97:23:4c:95:cc:
89:33:69:83:59:04:fd:fa:48:5f:63:7d:08:9d:f1:26:a2:c1:
71:74:68:00:13:1c:d4:70:45:52:f5:a2:57:5b:34:1d:6b:e9:
fe:8c:46:84:2a:99:2a:3a:58:31:d9:be:35:5e:c8:97:34:f3:
6d:c3:d3:23:30:e2:fc:35:1f:82:68:02:ad:df:85:7b:4b:63:
96:b1:fc:1f:3c:68:04:63:1d:bf:ab:e5:9e:1a:8c:4f:d1:d5:
44:70:b4:4f:2b:30:a6:39:1c:4a:5e:4f:05:64:0d:83:3d:1d:
3b:17:b3:0b:b7:f4:ee:f5:44:47:36:92:aa:dd:30:74:68:0f:
07:da:14:c2:b3:b0:80:2a:0c:36:c0:a2:a6:77:f1:0c:e0:e2:
80:5e:2d:98:f1:af:b0:24:81:4f:d3:1e:df:46:95:fe:5e:8b:
44:84:a8:e0
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----