| [Created by: generate-chains.py] |
| |
| Certificate chain with a trusted root using RSA, and intermediate using EC, |
| and a target certificate using RSA. Verification is expected to succeed. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 1 (0x1) |
| Signature Algorithm: ecdsa-with-SHA256 |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:e6:90:14:d7:6c:5e:85:24:21:17:7a:ce:f2:8a: |
| 3e:83:20:e4:3e:eb:cf:4c:06:bb:0a:d5:21:d9:2b: |
| e1:2e:14:8a:20:16:c8:c9:4b:55:ed:e9:ea:48:ed: |
| ef:03:2b:de:25:dd:41:9b:0c:0b:bd:f8:58:e2:a0: |
| ba:92:3f:03:de:ca:e6:35:42:be:ab:e1:33:17:ac: |
| 3e:bc:fc:90:2a:d2:c7:76:1f:51:d2:ca:e9:80:e0: |
| 76:39:ab:88:65:b4:e3:ea:05:dd:c5:8e:fe:4c:86: |
| c3:06:49:0c:ab:69:a5:4f:14:cc:82:1f:b1:3d:f6: |
| f9:d5:d4:61:41:35:e5:d4:f7:4f:1a:af:fb:a8:ff: |
| ef:7b:38:95:40:c5:56:32:a5:cf:8f:d6:04:df:23: |
| eb:5b:f7:32:a3:d7:a1:df:cb:67:35:25:d6:63:92: |
| d7:da:d9:83:20:52:58:1d:ef:6e:3c:88:91:14:08: |
| c7:70:85:b7:b3:93:c1:9a:51:57:d8:d5:4c:81:83: |
| 96:91:b6:5a:b9:b5:7e:fb:90:bd:71:2e:09:04:6e: |
| f9:0b:ff:51:43:d4:20:77:ee:31:34:98:f8:e8:8f: |
| 5a:2e:75:f1:0f:bf:64:35:a5:00:cb:4a:00:6e:45: |
| a3:01:d7:97:46:49:55:c1:df:2d:31:c4:98:ae:25: |
| b2:b3 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| A0:D4:34:B4:BC:27:68:8C:38:A0:8F:3A:CF:6E:58:5F:57:97:44:B8 |
| X509v3 Authority Key Identifier: |
| keyid:B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: ecdsa-with-SHA256 |
| 30:66:02:31:00:8b:f2:b6:e1:e9:b7:8d:6b:0e:21:17:26:a8: |
| 5f:79:f8:2e:86:d1:4f:0e:3a:34:2f:75:ad:0a:14:26:5a:8d: |
| 51:64:2c:80:b2:55:2a:36:07:f7:1a:92:79:63:24:61:b2:02: |
| 31:00:a6:52:af:91:62:28:e6:06:25:8c:55:93:41:07:5a:ca: |
| a3:71:14:5f:91:b6:fa:4a:45:de:7e:2f:01:a4:cf:02:4f:86: |
| 66:1e:bd:09:79:f7:3d:91:c8:1b:8f:c9:6a:d8 |
| -----BEGIN CERTIFICATE----- |
| MIIC7TCCAnKgAwIBAgIBATAKBggqhkjOPQQDAjAXMRUwEwYDVQQDDAxJbnRlcm1l |
| ZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYDVQQD |
| DAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDmkBTXbF6F |
| JCEXes7yij6DIOQ+689MBrsK1SHZK+EuFIogFsjJS1Xt6epI7e8DK94l3UGbDAu9 |
| +FjioLqSPwPeyuY1Qr6r4TMXrD68/JAq0sd2H1HSyumA4HY5q4hltOPqBd3Fjv5M |
| hsMGSQyraaVPFMyCH7E99vnV1GFBNeXU908ar/uo/+97OJVAxVYypc+P1gTfI+tb |
| 9zKj16Hfy2c1JdZjktfa2YMgUlgd7248iJEUCMdwhbezk8GaUVfY1UyBg5aRtlq5 |
| tX77kL1xLgkEbvkL/1FD1CB37jE0mPjoj1oudfEPv2Q1pQDLSgBuRaMB15dGSVXB |
| 3y0xxJiuJbKzAgMBAAGjgekwgeYwHQYDVR0OBBYEFKDUNLS8J2iMOKCPOs9uWF9X |
| l0S4MB8GA1UdIwQYMBaAFLEOaJRfqff4SwlCfa5aegW/5KHxMD8GCCsGAQUFBwEB |
| BDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVkaWF0 |
| ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0ludGVy |
| bWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMB |
| BggrBgEFBQcDAjAKBggqhkjOPQQDAgNpADBmAjEAi/K24em3jWsOIRcmqF95+C6G |
| 0U8OOjQvda0KFCZajVFkLICyVSo2B/caknljJGGyAjEAplKvkWIo5gYljFWTQQda |
| yqNxFF+RtvpKRd5+LwGkzwJPhmYevQl59z2RyBuPyWrY |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 2 (0x2) |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: id-ecPublicKey |
| Public-Key: (384 bit) |
| pub: |
| 04:f3:8f:d7:88:9f:98:67:05:36:a9:16:7c:85:b2: |
| cf:8e:02:72:19:eb:ab:48:14:1e:6f:6a:13:93:3e: |
| 80:b9:aa:7f:53:9c:91:91:9e:b1:79:76:ec:31:ef: |
| 97:46:30:d8:f4:ad:9c:60:c0:a6:00:88:62:5a:68: |
| 9e:3e:00:f3:6c:b4:1a:10:0b:78:12:f3:fe:5f:47: |
| 40:14:e7:2d:c0:82:cc:cf:df:93:fb:21:8e:ed:59: |
| b2:70:1e:7b:70:0c:e5 |
| ASN1 OID: secp384r1 |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1 |
| X509v3 Authority Key Identifier: |
| keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| f0:14:7e:da:d5:be:74:27:15:04:74:cd:f7:94:17:28:11:f0: |
| 31:9f:5f:36:ca:37:18:9d:94:27:54:52:83:92:e2:47:4f:71: |
| 54:e4:dd:a2:77:c6:e0:35:8b:b8:1e:53:5d:52:a9:e3:b5:39: |
| 17:80:f1:4c:e5:c1:d5:af:9b:f7:41:2e:3e:c6:05:8a:ad:b8: |
| 93:d0:75:34:d6:ae:21:25:d8:61:87:5d:8b:68:ee:78:80:d2: |
| fe:91:1e:d4:4e:6b:42:c3:57:8a:7c:0a:52:33:5d:9b:51:59: |
| 8e:79:3f:af:aa:d1:96:b1:a9:14:94:4c:78:47:88:d2:a9:16: |
| a5:2e:21:64:2e:3a:7d:82:6f:ac:66:f7:82:b4:56:60:2a:24: |
| 4b:44:13:99:af:59:87:86:96:4a:49:83:02:ce:dc:6a:dd:0d: |
| 02:28:64:e0:9c:c3:50:58:a9:2c:5b:2b:0f:dc:98:45:cf:79: |
| d5:28:75:d7:20:62:ea:c1:0b:ca:94:53:33:1a:e2:09:8d:d5: |
| 38:c9:d5:1e:ee:23:4f:b3:2c:bb:7b:5b:f4:0c:45:8d:35:7d: |
| d1:4f:7e:16:be:1b:bf:96:cd:9b:a9:20:94:06:28:76:ee:e9: |
| 3b:8d:d4:d4:73:6f:92:94:6f:f9:07:a8:82:7b:e1:5c:83:be: |
| 0d:00:34:c0 |
| -----BEGIN CERTIFICATE----- |
| MIICvzCCAaegAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50 |
| ZXJtZWRpYXRlMHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE84/XiJ+YZwU2qRZ8hbLP |
| jgJyGeurSBQeb2oTkz6Auap/U5yRkZ6xeXbsMe+XRjDY9K2cYMCmAIhiWmiePgDz |
| bLQaEAt4EvP+X0dAFOctwILMz9+T+yGO7VmycB57cAzlo4HLMIHIMB0GA1UdDgQW |
| BBSxDmiUX6n3+EsJQn2uWnoFv+Sh8TAfBgNVHSMEGDAWgBRD58w8RT5Yp23SkFaP |
| FpOeL/MGLjA3BggrBgEFBQcBAQQrMCkwJwYIKwYBBQUHMAKGG2h0dHA6Ly91cmwt |
| Zm9yLWFpYS9Sb290LmNlcjAsBgNVHR8EJTAjMCGgH6AdhhtodHRwOi8vdXJsLWZv |
| ci1jcmwvUm9vdC5jcmwwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8w |
| DQYJKoZIhvcNAQELBQADggEBAPAUftrVvnQnFQR0zfeUFygR8DGfXzbKNxidlCdU |
| UoOS4kdPcVTk3aJ3xuA1i7geU11SqeO1OReA8UzlwdWvm/dBLj7GBYqtuJPQdTTW |
| riEl2GGHXYto7niA0v6RHtROa0LDV4p8ClIzXZtRWY55P6+q0ZaxqRSUTHhHiNKp |
| FqUuIWQuOn2Cb6xm94K0VmAqJEtEE5mvWYeGlkpJgwLO3GrdDQIoZOCcw1BYqSxb |
| Kw/cmEXPedUoddcgYurBC8qUUzMa4gmN1TjJ1R7uI0+zLLt7W/QMRY01fdFPfha+ |
| G7+WzZupIJQGKHbu6TuN1NRzb5KUb/kHqIJ74VyDvg0ANMA= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 1 (0x1) |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:f5:c6:4e:ee:3f:f0:7c:64:c3:5d:09:15:02:1c: |
| 1b:f3:43:19:a5:c1:a9:a0:fb:f9:98:ee:e4:af:7c: |
| e2:ad:51:6d:c5:74:03:4d:db:f1:e0:69:ed:9a:23: |
| d8:cd:34:0b:83:6a:32:4e:1d:c0:91:fc:88:17:02: |
| 0d:bd:6d:d9:b9:92:71:6b:8f:23:40:f9:48:fe:16: |
| 59:af:f4:9c:33:7d:3f:08:65:ff:f1:e5:9c:4d:e8: |
| e8:7b:4a:c3:16:6d:53:9d:92:d7:86:9b:95:fb:5d: |
| 86:6d:af:00:dd:6f:25:0d:53:70:7e:b6:36:11:94: |
| d1:90:b5:f1:6d:a8:b0:e8:2d:0d:c5:85:b5:50:4b: |
| 7e:b0:57:8d:82:6d:bb:e0:82:64:3b:a4:d6:c4:d7: |
| 0a:2c:89:61:47:99:67:5e:71:1f:5c:66:14:08:fa: |
| 29:88:09:3b:38:60:4d:01:67:53:fe:16:85:70:54: |
| bf:e1:5e:76:b8:33:e3:9c:17:08:a4:0f:f2:c5:e1: |
| ac:99:94:7e:10:47:7d:51:43:42:85:df:e2:9a:53: |
| 07:c4:2f:c8:bf:56:da:0b:7f:41:6d:8f:76:42:b0: |
| 25:3c:fb:0a:f4:d0:d0:b3:79:72:70:0d:07:95:97: |
| c1:11:82:ff:c4:13:ec:0f:cf:bb:4e:b8:4a:ed:ca: |
| 3c:a3 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E |
| X509v3 Authority Key Identifier: |
| keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 04:44:15:f7:92:8f:fd:1f:13:fb:26:12:d8:04:7a:5b:17:6d: |
| 1c:93:22:a5:0c:6c:44:d2:09:29:27:da:7a:49:7f:88:47:43: |
| 04:db:d7:50:68:aa:c9:18:34:fc:32:d2:c4:2d:44:bd:c6:19: |
| 36:68:d3:44:e7:3a:4c:b9:d0:d8:94:0a:06:bd:3a:76:ad:81: |
| 9a:3e:fa:b3:90:ac:31:d5:2d:6d:82:9f:f0:9e:a1:2c:74:0e: |
| f8:16:62:92:63:8d:82:05:73:a0:cb:b4:98:9c:67:7b:da:a9: |
| 9d:91:40:37:82:c1:12:ff:d7:0e:89:12:27:75:97:8d:af:dd: |
| d5:e9:61:14:af:3d:5c:ad:cb:ed:73:0a:f6:6c:da:a2:d3:2a: |
| 5c:54:d0:68:4c:49:43:d6:7b:c7:18:6d:c6:2e:dc:a6:a7:3a: |
| ab:b4:27:24:a1:b6:d4:1a:d0:b6:5c:80:6e:7c:66:31:99:56: |
| a7:55:bf:65:ee:53:36:87:37:7d:6f:8c:64:d0:fa:27:bf:41: |
| 95:e2:42:6e:72:8f:14:34:e2:cd:b3:15:6f:72:cd:bb:43:0d: |
| de:87:5c:b9:5f:d1:26:46:5e:26:25:f8:b8:bc:b8:58:d5:79: |
| 40:61:7d:de:a4:74:25:f0:cc:7a:45:e0:98:88:a9:7f:d1:93: |
| ce:45:dc:59 |
| -----BEGIN CERTIFICATE----- |
| MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v |
| dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAPXGTu4/8Hxkw10JFQIc |
| G/NDGaXBqaD7+Zju5K984q1RbcV0A03b8eBp7Zoj2M00C4NqMk4dwJH8iBcCDb1t |
| 2bmScWuPI0D5SP4WWa/0nDN9Pwhl//HlnE3o6HtKwxZtU52S14ablftdhm2vAN1v |
| JQ1TcH62NhGU0ZC18W2osOgtDcWFtVBLfrBXjYJtu+CCZDuk1sTXCiyJYUeZZ15x |
| H1xmFAj6KYgJOzhgTQFnU/4WhXBUv+Fedrgz45wXCKQP8sXhrJmUfhBHfVFDQoXf |
| 4ppTB8QvyL9W2gt/QW2PdkKwJTz7CvTQ0LN5cnANB5WXwRGC/8QT7A/Pu064Su3K |
| PKMCAwEAAaOByzCByDAdBgNVHQ4EFgQUQ+fMPEU+WKdt0pBWjxaTni/zBi4wHwYD |
| VR0jBBgwFoAUQ+fMPEU+WKdt0pBWjxaTni/zBi4wNwYIKwYBBQUHAQEEKzApMCcG |
| CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAERBX3ko/9 |
| HxP7JhLYBHpbF20ckyKlDGxE0gkpJ9p6SX+IR0ME29dQaKrJGDT8MtLELUS9xhk2 |
| aNNE5zpMudDYlAoGvTp2rYGaPvqzkKwx1S1tgp/wnqEsdA74FmKSY42CBXOgy7SY |
| nGd72qmdkUA3gsES/9cOiRIndZeNr93V6WEUrz1crcvtcwr2bNqi0ypcVNBoTElD |
| 1nvHGG3GLtympzqrtCckobbUGtC2XIBufGYxmVanVb9l7lM2hzd9b4xk0Ponv0GV |
| 4kJuco8UNOLNsxVvcs27Qw3eh1y5X9EmRl4mJfi4vLhY1XlAYX3epHQl8Mx6ReCY |
| iKl/0ZPORdxZ |
| -----END CERTIFICATE----- |