blob: 86a472a6180f169e863a99af7c8e50534e01e2ed [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain with a trusted root using RSA, and intermediate using EC,
and a target certificate using RSA. Verification is expected to succeed.
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 1 (0x1)
Signature Algorithm: ecdsa-with-SHA256
Issuer: CN=Intermediate
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2016 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e6:90:14:d7:6c:5e:85:24:21:17:7a:ce:f2:8a:
3e:83:20:e4:3e:eb:cf:4c:06:bb:0a:d5:21:d9:2b:
e1:2e:14:8a:20:16:c8:c9:4b:55:ed:e9:ea:48:ed:
ef:03:2b:de:25:dd:41:9b:0c:0b:bd:f8:58:e2:a0:
ba:92:3f:03:de:ca:e6:35:42:be:ab:e1:33:17:ac:
3e:bc:fc:90:2a:d2:c7:76:1f:51:d2:ca:e9:80:e0:
76:39:ab:88:65:b4:e3:ea:05:dd:c5:8e:fe:4c:86:
c3:06:49:0c:ab:69:a5:4f:14:cc:82:1f:b1:3d:f6:
f9:d5:d4:61:41:35:e5:d4:f7:4f:1a:af:fb:a8:ff:
ef:7b:38:95:40:c5:56:32:a5:cf:8f:d6:04:df:23:
eb:5b:f7:32:a3:d7:a1:df:cb:67:35:25:d6:63:92:
d7:da:d9:83:20:52:58:1d:ef:6e:3c:88:91:14:08:
c7:70:85:b7:b3:93:c1:9a:51:57:d8:d5:4c:81:83:
96:91:b6:5a:b9:b5:7e:fb:90:bd:71:2e:09:04:6e:
f9:0b:ff:51:43:d4:20:77:ee:31:34:98:f8:e8:8f:
5a:2e:75:f1:0f:bf:64:35:a5:00:cb:4a:00:6e:45:
a3:01:d7:97:46:49:55:c1:df:2d:31:c4:98:ae:25:
b2:b3
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A0:D4:34:B4:BC:27:68:8C:38:A0:8F:3A:CF:6E:58:5F:57:97:44:B8
X509v3 Authority Key Identifier:
keyid:B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: ecdsa-with-SHA256
30:66:02:31:00:8b:f2:b6:e1:e9:b7:8d:6b:0e:21:17:26:a8:
5f:79:f8:2e:86:d1:4f:0e:3a:34:2f:75:ad:0a:14:26:5a:8d:
51:64:2c:80:b2:55:2a:36:07:f7:1a:92:79:63:24:61:b2:02:
31:00:a6:52:af:91:62:28:e6:06:25:8c:55:93:41:07:5a:ca:
a3:71:14:5f:91:b6:fa:4a:45:de:7e:2f:01:a4:cf:02:4f:86:
66:1e:bd:09:79:f7:3d:91:c8:1b:8f:c9:6a:d8
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 2 (0x2)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2016 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:f3:8f:d7:88:9f:98:67:05:36:a9:16:7c:85:b2:
cf:8e:02:72:19:eb:ab:48:14:1e:6f:6a:13:93:3e:
80:b9:aa:7f:53:9c:91:91:9e:b1:79:76:ec:31:ef:
97:46:30:d8:f4:ad:9c:60:c0:a6:00:88:62:5a:68:
9e:3e:00:f3:6c:b4:1a:10:0b:78:12:f3:fe:5f:47:
40:14:e7:2d:c0:82:cc:cf:df:93:fb:21:8e:ed:59:
b2:70:1e:7b:70:0c:e5
ASN1 OID: secp384r1
X509v3 extensions:
X509v3 Subject Key Identifier:
B1:0E:68:94:5F:A9:F7:F8:4B:09:42:7D:AE:5A:7A:05:BF:E4:A1:F1
X509v3 Authority Key Identifier:
keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
f0:14:7e:da:d5:be:74:27:15:04:74:cd:f7:94:17:28:11:f0:
31:9f:5f:36:ca:37:18:9d:94:27:54:52:83:92:e2:47:4f:71:
54:e4:dd:a2:77:c6:e0:35:8b:b8:1e:53:5d:52:a9:e3:b5:39:
17:80:f1:4c:e5:c1:d5:af:9b:f7:41:2e:3e:c6:05:8a:ad:b8:
93:d0:75:34:d6:ae:21:25:d8:61:87:5d:8b:68:ee:78:80:d2:
fe:91:1e:d4:4e:6b:42:c3:57:8a:7c:0a:52:33:5d:9b:51:59:
8e:79:3f:af:aa:d1:96:b1:a9:14:94:4c:78:47:88:d2:a9:16:
a5:2e:21:64:2e:3a:7d:82:6f:ac:66:f7:82:b4:56:60:2a:24:
4b:44:13:99:af:59:87:86:96:4a:49:83:02:ce:dc:6a:dd:0d:
02:28:64:e0:9c:c3:50:58:a9:2c:5b:2b:0f:dc:98:45:cf:79:
d5:28:75:d7:20:62:ea:c1:0b:ca:94:53:33:1a:e2:09:8d:d5:
38:c9:d5:1e:ee:23:4f:b3:2c:bb:7b:5b:f4:0c:45:8d:35:7d:
d1:4f:7e:16:be:1b:bf:96:cd:9b:a9:20:94:06:28:76:ee:e9:
3b:8d:d4:d4:73:6f:92:94:6f:f9:07:a8:82:7b:e1:5c:83:be:
0d:00:34:c0
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 1 (0x1)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2016 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:f5:c6:4e:ee:3f:f0:7c:64:c3:5d:09:15:02:1c:
1b:f3:43:19:a5:c1:a9:a0:fb:f9:98:ee:e4:af:7c:
e2:ad:51:6d:c5:74:03:4d:db:f1:e0:69:ed:9a:23:
d8:cd:34:0b:83:6a:32:4e:1d:c0:91:fc:88:17:02:
0d:bd:6d:d9:b9:92:71:6b:8f:23:40:f9:48:fe:16:
59:af:f4:9c:33:7d:3f:08:65:ff:f1:e5:9c:4d:e8:
e8:7b:4a:c3:16:6d:53:9d:92:d7:86:9b:95:fb:5d:
86:6d:af:00:dd:6f:25:0d:53:70:7e:b6:36:11:94:
d1:90:b5:f1:6d:a8:b0:e8:2d:0d:c5:85:b5:50:4b:
7e:b0:57:8d:82:6d:bb:e0:82:64:3b:a4:d6:c4:d7:
0a:2c:89:61:47:99:67:5e:71:1f:5c:66:14:08:fa:
29:88:09:3b:38:60:4d:01:67:53:fe:16:85:70:54:
bf:e1:5e:76:b8:33:e3:9c:17:08:a4:0f:f2:c5:e1:
ac:99:94:7e:10:47:7d:51:43:42:85:df:e2:9a:53:
07:c4:2f:c8:bf:56:da:0b:7f:41:6d:8f:76:42:b0:
25:3c:fb:0a:f4:d0:d0:b3:79:72:70:0d:07:95:97:
c1:11:82:ff:c4:13:ec:0f:cf:bb:4e:b8:4a:ed:ca:
3c:a3
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E
X509v3 Authority Key Identifier:
keyid:43:E7:CC:3C:45:3E:58:A7:6D:D2:90:56:8F:16:93:9E:2F:F3:06:2E
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
04:44:15:f7:92:8f:fd:1f:13:fb:26:12:d8:04:7a:5b:17:6d:
1c:93:22:a5:0c:6c:44:d2:09:29:27:da:7a:49:7f:88:47:43:
04:db:d7:50:68:aa:c9:18:34:fc:32:d2:c4:2d:44:bd:c6:19:
36:68:d3:44:e7:3a:4c:b9:d0:d8:94:0a:06:bd:3a:76:ad:81:
9a:3e:fa:b3:90:ac:31:d5:2d:6d:82:9f:f0:9e:a1:2c:74:0e:
f8:16:62:92:63:8d:82:05:73:a0:cb:b4:98:9c:67:7b:da:a9:
9d:91:40:37:82:c1:12:ff:d7:0e:89:12:27:75:97:8d:af:dd:
d5:e9:61:14:af:3d:5c:ad:cb:ed:73:0a:f6:6c:da:a2:d3:2a:
5c:54:d0:68:4c:49:43:d6:7b:c7:18:6d:c6:2e:dc:a6:a7:3a:
ab:b4:27:24:a1:b6:d4:1a:d0:b6:5c:80:6e:7c:66:31:99:56:
a7:55:bf:65:ee:53:36:87:37:7d:6f:8c:64:d0:fa:27:bf:41:
95:e2:42:6e:72:8f:14:34:e2:cd:b3:15:6f:72:cd:bb:43:0d:
de:87:5c:b9:5f:d1:26:46:5e:26:25:f8:b8:bc:b8:58:d5:79:
40:61:7d:de:a4:74:25:f0:cc:7a:45:e0:98:88:a9:7f:d1:93:
ce:45:dc:59
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----