blob: 1c58925cdd7505286bfcc1c3151c7702d2aebeb5 [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain where the target certificate sets the extended key usage
to clientAuth. Neither the root nor the intermediate have an EKU.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
3e:03:c9:50:e5:17:af:40:2c:6d:22:39:a4:70:4a:21:ec:34:b6:d1
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c3:82:13:64:0e:35:33:0c:ac:44:be:6d:92:f5:
e4:97:d8:9a:bd:64:f1:b5:67:62:01:7b:0c:98:57:
4a:63:64:b0:9d:6a:7b:84:a2:91:fe:73:0b:4c:81:
ce:89:f9:8d:8d:8a:41:18:c8:d8:64:27:36:32:e6:
36:26:44:16:13:2e:a1:ad:38:06:0b:1b:39:62:6a:
94:ac:a0:59:be:52:cb:47:d7:4b:00:09:91:8e:14:
69:a9:62:df:49:d8:b6:79:73:de:60:d4:b8:76:89:
a4:53:8a:1d:4b:80:88:31:e8:05:46:81:1b:7b:5d:
52:d0:6b:3b:53:0d:25:3c:95:9b:2d:99:83:3c:03:
8c:b5:73:fb:43:6c:82:b3:48:57:38:3c:ff:b7:79:
d8:13:74:06:d0:17:78:a9:38:09:76:ca:f9:b7:5a:
a5:8a:6e:85:7f:27:34:79:82:ef:a2:01:93:ae:fa:
0b:18:47:d4:14:ff:67:78:2b:53:92:f6:ac:27:42:
c7:7f:8e:fd:06:4a:36:b9:7a:98:5e:0d:94:ef:1a:
fa:08:ad:8d:64:28:c7:c1:03:76:63:b9:33:5a:9f:
16:be:d3:e0:5c:e9:43:7b:9b:83:b3:90:31:e7:59:
2b:1c:d2:8c:73:15:a2:3a:94:35:03:80:97:f8:5d:
a3:13
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5A:16:9C:06:85:B6:F4:77:AD:72:58:A2:4F:A1:FE:29:CF:97:8A:2B
X509v3 Authority Key Identifier:
keyid:24:B9:91:41:39:F1:30:5E:F8:C5:3B:C0:51:CC:11:58:A6:13:73:B3
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
Any Extended Key Usage
Signature Algorithm: sha256WithRSAEncryption
c7:c1:e6:af:a5:32:88:83:e4:36:26:cc:da:ff:e8:fd:a9:a7:
04:f2:32:37:24:8c:f9:2e:18:96:6b:aa:09:3e:4d:b3:8b:5f:
fa:7d:8c:1c:f9:74:84:0b:70:67:d6:e4:14:8c:cf:01:c4:d3:
1b:cb:d7:8e:e3:c7:ae:04:4d:93:41:8f:1f:c4:84:bf:34:79:
39:34:c9:6a:38:95:09:d1:c6:75:52:45:a3:dd:f1:af:ea:f2:
ec:4f:ab:2d:48:d5:1f:ef:63:0b:cc:bf:f1:4d:02:68:1a:29:
f4:4a:bd:07:2a:8a:ad:d1:89:fa:9a:eb:56:24:1c:55:fd:57:
5e:97:bc:88:64:84:06:9f:a4:43:01:ee:ca:eb:2c:f9:0a:d8:
1c:bb:4b:96:76:09:0c:65:82:79:ac:6d:33:09:78:b5:0e:cb:
54:98:ba:b8:db:86:aa:81:82:ec:ce:7a:fd:0a:b0:65:78:11:
c0:bb:ed:77:b6:56:b9:bc:48:45:ca:91:e2:6c:2e:54:ff:55:
c9:8b:31:8d:b7:bb:22:22:07:f7:37:03:f3:68:44:e9:59:97:
f3:fc:b1:bd:64:25:df:d4:1e:ee:2b:ca:cb:75:ef:c3:14:e2:
3f:73:4e:f7:56:4a:eb:ba:2d:08:62:91:a7:9d:11:cf:7e:e0:
a6:5b:91:ec
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2c:00:a4:1e:40:78:0d:7c:f5:78:ab:24:e2:16:fa:d7:7b:c1:1c:bf
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ed:3b:bb:f2:8b:20:81:de:42:41:c6:24:63:1c:
4b:e5:63:b0:93:07:fd:22:64:50:7d:ef:8f:ed:65:
aa:ba:f4:d9:ad:0c:68:dd:50:b0:ea:0a:5e:18:9e:
df:48:88:ec:1f:fa:6b:4a:3e:db:ea:24:6e:b1:a3:
bb:0b:12:de:1d:49:d3:32:78:24:f9:e8:4f:aa:85:
90:21:a2:2c:8f:58:95:8c:70:80:8d:cd:99:68:03:
67:0f:48:eb:96:17:63:93:2b:8f:72:77:23:5f:97:
4f:86:bd:17:d2:70:5b:5c:18:f8:01:d6:11:d8:c0:
dc:32:b2:f4:bf:dd:da:65:fb:86:23:c0:a4:bd:ff:
c2:a4:b6:87:9e:10:98:d4:f4:09:cb:26:50:1d:56:
83:72:09:c6:c1:b7:cc:52:9c:61:09:04:bb:aa:2a:
63:66:a5:b1:02:60:85:bc:30:91:62:bb:6f:b0:24:
33:e8:b5:9a:13:1f:3a:73:95:d5:fb:bc:a9:48:dd:
14:a2:a4:62:e1:97:19:57:b1:1a:da:c1:79:93:fd:
74:cb:e1:ff:0c:49:c2:78:57:8e:ef:dc:df:60:96:
8e:e6:a2:97:60:b9:53:6b:17:8e:ae:f9:3d:be:31:
dd:46:18:bd:af:b6:a6:02:fa:48:2f:d8:c6:f0:1f:
bc:43
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
24:B9:91:41:39:F1:30:5E:F8:C5:3B:C0:51:CC:11:58:A6:13:73:B3
X509v3 Authority Key Identifier:
keyid:CD:6F:4C:FE:AA:7A:3A:63:5D:12:79:6D:F4:4C:B0:2A:8A:7F:FB:6C
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
49:eb:02:ed:2a:dd:0d:ea:7a:cf:b3:22:3e:f6:7c:72:e0:9d:
dd:fc:98:2b:5f:de:c5:c8:52:7e:bd:87:25:c9:31:70:ca:e4:
c7:cc:39:ff:ad:8e:42:f0:d7:70:74:89:3b:fa:04:04:ee:f4:
09:02:45:91:1f:d9:be:44:cf:bb:aa:2e:49:86:0c:fa:db:f7:
f8:79:33:2c:e3:04:8f:40:d6:ee:4f:09:66:80:cc:b4:10:d8:
68:57:27:48:c1:d4:82:da:07:d7:92:74:33:23:67:ff:9f:a5:
91:7e:c9:8f:c7:7a:a3:54:bc:5c:48:f8:3e:ce:0e:df:f6:f8:
fd:4f:45:2a:0d:15:58:ae:09:91:cf:17:54:56:34:52:a0:ed:
30:3e:f8:9c:4d:0d:62:c4:39:f0:be:0f:aa:01:bf:bb:80:ba:
34:da:0b:e5:9e:39:7d:7d:80:62:b4:c0:26:e7:92:f1:14:1d:
b2:6d:eb:ff:4c:23:94:94:fb:30:8d:0e:89:0d:aa:44:ec:f6:
08:3f:98:b3:cd:5c:21:3b:b1:ca:65:fb:67:2d:d2:a9:4c:cf:
82:3a:27:ad:54:c2:76:a4:1a:76:70:de:b3:1e:c9:5f:b3:9a:
c6:9f:68:cb:29:ab:0a:c5:20:5d:e4:9f:e7:7d:54:5e:b3:08:
50:d0:fe:fd
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2c:00:a4:1e:40:78:0d:7c:f5:78:ab:24:e2:16:fa:d7:7b:c1:1c:be
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e8:17:31:b6:0e:84:10:a4:9b:bf:9e:ae:9e:29:
b7:6f:81:ae:d7:df:45:89:d1:29:51:0e:1e:39:7a:
96:6b:7f:c0:78:df:88:cf:db:b3:ab:8d:49:0f:fb:
70:55:85:4f:93:9f:12:a1:a6:55:5c:a9:ae:8d:79:
4d:a6:3a:32:03:9c:bf:ad:95:c4:8b:49:1f:02:b5:
23:a0:9f:da:d3:45:c6:8c:fc:ec:97:46:57:dd:77:
56:c6:a2:46:78:da:a2:59:bb:22:ea:de:63:94:50:
19:91:1c:10:cd:67:e0:57:10:bd:e0:de:69:67:80:
6d:31:a8:43:bc:49:2c:8a:d6:4a:23:0f:a6:78:f4:
74:c7:4f:37:52:3a:af:9c:03:b2:b3:6c:26:ab:62:
61:12:6d:22:15:66:da:ec:d6:b8:1f:9b:14:b9:04:
9c:9b:5e:b5:cb:8b:62:95:67:6a:a1:57:44:02:77:
a2:81:3e:c7:20:52:a2:16:2e:ba:c2:29:a1:54:ed:
33:67:f2:2a:26:a3:b6:da:08:8d:63:6c:ca:4f:c6:
84:88:b9:60:08:cf:50:8e:5a:3e:75:d7:ec:d7:63:
c1:fe:18:3f:4e:fb:08:de:39:45:d2:81:34:8e:89:
5a:48:ce:49:bf:ca:84:cb:26:ac:c2:f7:1f:6b:3f:
0d:49
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
CD:6F:4C:FE:AA:7A:3A:63:5D:12:79:6D:F4:4C:B0:2A:8A:7F:FB:6C
X509v3 Authority Key Identifier:
keyid:CD:6F:4C:FE:AA:7A:3A:63:5D:12:79:6D:F4:4C:B0:2A:8A:7F:FB:6C
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
ad:29:2e:53:15:47:00:7e:ac:fc:4d:99:bc:cc:1b:f6:7f:12:
16:d5:f8:19:b3:38:4c:7e:18:40:0f:1f:24:32:09:6c:8f:ba:
e2:c3:d2:95:2b:35:54:b7:87:ec:88:fb:e2:7f:0a:9c:cc:61:
f2:bf:57:d4:09:d9:61:ee:76:4a:a1:af:3c:cc:ac:3b:68:31:
8f:e3:1a:ef:2f:c8:6b:b6:34:b7:44:40:28:a7:a3:f4:56:6c:
56:49:9e:af:ca:4b:ee:7b:7c:b9:b3:a6:69:d1:d2:6c:ad:ec:
c5:a8:67:4b:91:f5:86:7f:b7:b8:d2:b2:24:c7:f2:e7:05:b4:
c5:cd:70:ba:1d:d3:86:8c:53:78:2c:5c:24:1d:7f:60:d8:1b:
b4:83:a4:21:0e:13:d3:41:bf:2d:57:1f:5a:f7:e6:b8:eb:9a:
cd:e9:31:69:26:b7:79:c6:aa:f2:a2:86:3b:95:48:4f:8a:8d:
59:d8:5f:aa:72:d0:d4:56:30:db:ab:e9:83:f6:8b:58:3a:38:
cc:ed:72:d8:36:4b:aa:fa:1c:22:03:ca:f8:48:93:49:91:10:
b0:53:2b:20:d9:b1:9f:56:a7:04:3b:58:cf:ec:f2:41:b2:2d:
65:8c:40:ea:5f:d2:c8:6b:87:17:3f:4c:62:5b:7a:25:e1:a5:
a4:af:8d:54
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----