| [Created by: generate-violates-basic-constraints-pathlen-0.py] |
| |
| Certificate chain with 2 intermediaries. The first intermediary has a basic |
| constraints path length of 0, so it is a violation for it to have a subordinate |
| intermediary. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 1 (0x1) |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediary2 |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b2:f1:24:bb:4b:3d:6d:80:7f:67:ad:2e:0e:e8: |
| 07:e4:4b:6c:28:0d:2e:d9:9d:9d:e5:31:0a:7f:37: |
| 3f:9c:c1:c3:03:8e:b8:72:5a:1c:52:d4:4e:84:7a: |
| 9c:4d:f6:2a:a8:4b:f2:5c:5b:6c:f4:23:73:b3:4e: |
| 0a:b9:66:16:ae:e4:c4:8b:d7:1b:b5:d0:5e:5f:03: |
| 21:ce:63:b8:3a:da:e0:3c:f8:0a:7e:4b:99:f9:c6: |
| 0d:01:a2:ab:18:d8:a7:a0:84:8c:3f:09:fd:10:41: |
| 7c:6f:b0:51:34:4f:5d:39:b5:3f:6d:a0:68:87:6d: |
| 09:47:db:0d:2a:62:99:83:02:0c:b9:d7:93:0b:bf: |
| 17:5f:06:58:22:27:62:fc:1c:d9:02:b9:1e:e9:f0: |
| fb:e1:a4:cc:fd:e3:9e:a8:a5:2d:f9:af:8b:b8:1e: |
| 68:dc:f1:52:a2:55:94:20:da:82:14:b7:c0:a0:c5: |
| 53:ff:00:0f:76:f9:fd:bf:53:71:99:60:2f:00:c9: |
| 9e:d0:07:eb:3c:d0:47:5c:7b:65:cb:62:db:9b:74: |
| ed:b8:51:a0:ed:ed:af:e9:6f:44:0e:8c:a4:42:ee: |
| fc:92:bb:19:1a:b3:42:74:27:39:47:b8:d4:06:ed: |
| bd:99:72:0c:83:15:10:ff:4a:66:66:0f:d6:14:ef: |
| dd:17 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 33:73:C0:44:EE:71:53:CD:C0:EA:D9:FC:FF:BE:B7:DD:16:66:19:84 |
| X509v3 Authority Key Identifier: |
| keyid:FD:31:C0:C5:57:AB:1E:A5:78:24:73:72:58:9F:75:7D:78:17:42:AC |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediary2.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediary2.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| 61:39:30:49:95:f7:63:44:f3:a5:97:35:48:84:ea:94:cd:94: |
| 37:ce:09:7a:b1:58:21:3e:f8:9c:a4:a9:65:bf:1d:a1:cb:eb: |
| 09:95:f7:f6:ad:a4:65:95:a1:51:c4:18:06:43:d2:93:eb:16: |
| 41:65:33:8a:42:cc:90:9d:e9:66:1f:d6:98:31:f1:48:f4:a8: |
| a3:89:50:29:bc:f2:2d:af:8b:f7:af:9e:62:02:21:06:75:3d: |
| 4a:8d:98:a0:df:4d:5d:db:9a:af:2a:0f:32:50:aa:61:c3:19: |
| 87:99:54:60:3a:16:c5:46:ea:ed:54:ab:91:34:5f:8e:60:33: |
| 10:e4:e1:4d:05:8d:36:5b:47:1c:c3:f2:58:7f:22:07:c7:95: |
| 02:24:8e:03:f4:1f:06:25:d7:49:76:f8:f1:02:25:7c:9a:cf: |
| 0f:4d:8f:08:e7:bf:fd:13:31:43:e5:56:20:eb:0a:43:ca:41: |
| 0d:7c:4f:68:f6:d1:d1:67:ca:24:4f:e3:8e:8e:12:39:2f:7b: |
| e8:9a:5c:c9:b5:19:01:1a:46:7e:54:21:ad:7e:c5:cd:e2:40: |
| c3:13:aa:b5:e5:16:b3:18:dc:c8:61:d7:73:b7:3b:23:00:04: |
| ce:dc:5a:22:1a:0b:da:8a:99:10:96:33:32:ae:4e:83:f4:d0: |
| 93:e7:75:56 |
| -----BEGIN CERTIFICATE----- |
| MIIDkDCCAnigAwIBAgIBATANBgkqhkiG9w0BAQsFADAYMRYwFAYDVQQDDA1JbnRl |
| cm1lZGlhcnkyMB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowETEPMA0G |
| A1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsvEk |
| u0s9bYB/Z60uDugH5EtsKA0u2Z2d5TEKfzc/nMHDA464clocUtROhHqcTfYqqEvy |
| XFts9CNzs04KuWYWruTEi9cbtdBeXwMhzmO4OtrgPPgKfkuZ+cYNAaKrGNinoISM |
| Pwn9EEF8b7BRNE9dObU/baBoh20JR9sNKmKZgwIMudeTC78XXwZYIidi/BzZArke |
| 6fD74aTM/eOeqKUt+a+LuB5o3PFSolWUINqCFLfAoMVT/wAPdvn9v1NxmWAvAMme |
| 0AfrPNBHXHtly2Lbm3TtuFGg7e2v6W9EDoykQu78krsZGrNCdCc5R7jUBu29mXIM |
| gxUQ/0pmZg/WFO/dFwIDAQABo4HrMIHoMB0GA1UdDgQWBBQzc8BE7nFTzcDq2fz/ |
| vrfdFmYZhDAfBgNVHSMEGDAWgBT9McDFV6sepXgkc3JYn3V9eBdCrDBABggrBgEF |
| BQcBAQQ0MDIwMAYIKwYBBQUHMAKGJGh0dHA6Ly91cmwtZm9yLWFpYS9JbnRlcm1l |
| ZGlhcnkyLmNlcjA1BgNVHR8ELjAsMCqgKKAmhiRodHRwOi8vdXJsLWZvci1jcmwv |
| SW50ZXJtZWRpYXJ5Mi5jcmwwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsG |
| AQUFBwMBBggrBgEFBQcDAjANBgkqhkiG9w0BAQsFAAOCAQEAYTkwSZX3Y0TzpZc1 |
| SITqlM2UN84JerFYIT74nKSpZb8docvrCZX39q2kZZWhUcQYBkPSk+sWQWUzikLM |
| kJ3pZh/WmDHxSPSoo4lQKbzyLa+L96+eYgIhBnU9So2YoN9NXduaryoPMlCqYcMZ |
| h5lUYDoWxUbq7VSrkTRfjmAzEOThTQWNNltHHMPyWH8iB8eVAiSOA/QfBiXXSXb4 |
| 8QIlfJrPD02PCOe//RMxQ+VWIOsKQ8pBDXxPaPbR0WfKJE/jjo4SOS976JpcybUZ |
| ARpGflQhrX7FzeJAwxOqteUWsxjcyGHXc7c7IwAEztxaIhoL2oqZEJYzMq5Og/TQ |
| k+d1Vg== |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 1 (0x1) |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediary1 |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Intermediary2 |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b9:4e:dc:bd:a8:9e:1d:81:d7:bb:c3:4d:8a:5d: |
| 34:3f:b2:71:12:c0:0d:76:05:d6:b3:6a:b6:3d:b5: |
| 97:a8:8d:a0:ba:d9:2f:3c:da:b0:8f:5f:18:f0:83: |
| fb:59:ef:91:8d:5a:57:57:63:36:a1:ff:54:9a:f5: |
| 10:ab:4a:6b:16:fc:c6:f2:4e:9f:97:ec:22:6f:97: |
| dd:0e:63:ef:ce:71:4f:f6:8e:04:68:22:c9:6d:b4: |
| d2:fe:7b:46:aa:e9:05:a0:c0:b0:25:42:cd:ba:e8: |
| 8d:bb:cb:3e:5f:e4:54:b7:dd:48:c6:08:52:30:54: |
| e2:f4:c1:ae:ee:71:71:a7:33:ce:c1:b1:55:e4:77: |
| 15:72:c5:ea:5f:ed:b3:a6:ef:a7:cc:f6:eb:6c:42: |
| 1d:45:c3:75:15:d5:bd:09:44:52:b9:f5:5d:1f:10: |
| e1:fc:31:9e:37:90:ca:7c:8d:16:c4:f7:76:39:b7: |
| 57:ea:5b:75:3d:6c:50:60:26:ed:8b:2a:e4:a2:b8: |
| a2:34:ba:51:89:ce:3c:e3:68:c3:3c:4a:58:cb:be: |
| 79:34:54:2d:61:38:7b:7a:89:3f:4c:5f:3f:c9:c6: |
| fc:d0:81:de:0c:21:2e:5a:2a:74:cd:fe:d7:c9:de: |
| b3:3a:60:d6:16:e7:91:13:87:a4:f4:f8:67:4b:17: |
| e6:13 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| FD:31:C0:C5:57:AB:1E:A5:78:24:73:72:58:9F:75:7D:78:17:42:AC |
| X509v3 Authority Key Identifier: |
| keyid:09:87:C1:14:11:81:04:D8:AF:CF:66:4A:4F:8D:1C:A5:BB:04:CF:DA |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediary1.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediary1.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE, pathlen:0 |
| Signature Algorithm: sha256WithRSAEncryption |
| 51:f3:32:1a:03:bd:bd:a1:40:7d:4a:55:ef:6e:5e:58:57:8c: |
| 50:75:7c:e6:d0:44:ff:7e:0c:f7:9d:c2:67:99:83:e2:da:19: |
| e6:0b:54:8a:61:7d:16:86:99:2d:b7:32:2d:c6:a0:7a:1a:e2: |
| c2:46:8c:a1:b7:f8:bb:d4:22:b1:ae:d0:2f:a9:98:32:4e:14: |
| 20:6c:22:cf:df:c8:08:ce:f4:4c:8b:5c:03:33:0a:d1:32:2b: |
| 5a:0d:d2:99:18:79:a1:e8:ed:8d:31:85:9e:dd:30:52:30:1f: |
| ff:af:1f:09:08:98:a0:75:11:02:e6:6c:2b:7e:67:df:89:91: |
| 1e:57:b4:a2:ba:1e:7b:86:68:f3:62:7a:69:c1:4e:b3:76:58: |
| 74:e5:84:3d:0f:6d:1b:22:97:e9:7f:0b:c7:2f:00:c5:4d:1a: |
| fd:47:ff:9f:c0:84:0b:ee:dc:cd:c2:43:7f:0f:7a:a6:28:6e: |
| c3:2c:7a:a1:cf:4f:16:3f:f5:fc:40:c7:65:91:a5:bc:5c:82: |
| 9c:a0:fb:0a:1d:69:89:85:e5:9e:10:41:7e:4d:83:02:4f:64: |
| 54:04:86:97:d7:5e:6c:e1:ef:65:b0:a4:69:b8:e3:d4:0e:cd: |
| 20:04:1a:05:56:e9:e1:c3:e9:2f:9a:7b:43:59:73:ff:0b:82: |
| 38:e8:b3:b5 |
| -----BEGIN CERTIFICATE----- |
| MIIDjDCCAnSgAwIBAgIBATANBgkqhkiG9w0BAQsFADAYMRYwFAYDVQQDDA1JbnRl |
| cm1lZGlhcnkxMB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowGDEWMBQG |
| A1UEAwwNSW50ZXJtZWRpYXJ5MjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC |
| ggEBALlO3L2onh2B17vDTYpdND+ycRLADXYF1rNqtj21l6iNoLrZLzzasI9fGPCD |
| +1nvkY1aV1djNqH/VJr1EKtKaxb8xvJOn5fsIm+X3Q5j785xT/aOBGgiyW200v57 |
| RqrpBaDAsCVCzbrojbvLPl/kVLfdSMYIUjBU4vTBru5xcaczzsGxVeR3FXLF6l/t |
| s6bvp8z262xCHUXDdRXVvQlEUrn1XR8Q4fwxnjeQynyNFsT3djm3V+pbdT1sUGAm |
| 7Ysq5KK4ojS6UYnOPONowzxKWMu+eTRULWE4e3qJP0xfP8nG/NCB3gwhLloqdM3+ |
| 18neszpg1hbnkROHpPT4Z0sX5hMCAwEAAaOB4DCB3TAdBgNVHQ4EFgQU/THAxVer |
| HqV4JHNyWJ91fXgXQqwwHwYDVR0jBBgwFoAUCYfBFBGBBNivz2ZKT40cpbsEz9ow |
| QAYIKwYBBQUHAQEENDAyMDAGCCsGAQUFBzAChiRodHRwOi8vdXJsLWZvci1haWEv |
| SW50ZXJtZWRpYXJ5MS5jZXIwNQYDVR0fBC4wLDAqoCigJoYkaHR0cDovL3VybC1m |
| b3ItY3JsL0ludGVybWVkaWFyeTEuY3JsMA4GA1UdDwEB/wQEAwIBBjASBgNVHRMB |
| Af8ECDAGAQH/AgEAMA0GCSqGSIb3DQEBCwUAA4IBAQBR8zIaA729oUB9SlXvbl5Y |
| V4xQdXzm0ET/fgz3ncJnmYPi2hnmC1SKYX0WhpkttzItxqB6GuLCRoyht/i71CKx |
| rtAvqZgyThQgbCLP38gIzvRMi1wDMwrRMitaDdKZGHmh6O2NMYWe3TBSMB//rx8J |
| CJigdREC5mwrfmffiZEeV7Siuh57hmjzYnppwU6zdlh05YQ9D20bIpfpfwvHLwDF |
| TRr9R/+fwIQL7tzNwkN/D3qmKG7DLHqhz08WP/X8QMdlkaW8XIKcoPsKHWmJheWe |
| EEF+TYMCT2RUBIaX115s4e9lsKRpuOPUDs0gBBoFVunhw+kvmntDWXP/C4I46LO1 |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 2 (0x2) |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Intermediary1 |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:ab:e9:a0:28:67:38:13:72:12:a0:3b:f2:f9:13: |
| c2:2b:c1:a2:07:e6:45:35:cf:ff:1a:46:b0:d2:58: |
| 12:63:fc:3d:b3:85:50:68:9c:57:21:ff:31:ff:24: |
| 48:db:13:de:b1:f4:f8:39:7a:f3:34:dd:51:58:1a: |
| 12:73:9d:85:e0:d0:f8:be:fd:9d:e2:34:ce:36:e0: |
| a0:48:53:36:23:bf:52:d2:ac:da:d1:ef:6c:da:9f: |
| 11:3b:6c:e1:67:6a:f1:df:97:2c:1a:12:c7:c3:72: |
| 0f:98:21:6a:40:2b:f0:28:b8:c2:ef:7f:cb:ee:7a: |
| e9:8f:17:fe:0a:a1:ff:d5:15:4c:63:5b:53:55:15: |
| 01:b9:5d:91:77:b0:23:03:0e:45:00:84:52:33:2b: |
| 11:51:99:e8:0d:5b:45:ef:d2:e2:c9:0e:a2:ae:43: |
| c2:92:5c:b0:36:76:06:21:91:d0:42:e8:0f:6f:80: |
| 61:98:12:a6:c0:c3:b7:64:7e:77:0c:76:12:1f:50: |
| 73:f8:bb:28:1a:5d:7b:68:36:01:fa:09:e7:9a:90: |
| b6:c5:3d:e9:16:a0:7b:c2:76:19:f0:e9:bc:15:0d: |
| 55:df:ea:67:2a:b2:e0:69:f8:c1:49:c4:a6:51:e9: |
| 43:d2:df:2a:de:e3:a0:66:3f:0c:18:b8:f8:8d:bb: |
| 43:15 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 09:87:C1:14:11:81:04:D8:AF:CF:66:4A:4F:8D:1C:A5:BB:04:CF:DA |
| X509v3 Authority Key Identifier: |
| keyid:A4:9D:E4:F8:B0:AF:D5:A4:2F:B9:3F:42:B8:C3:D5:60:9D:64:C2:8C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE, pathlen:0 |
| Signature Algorithm: sha256WithRSAEncryption |
| 7d:97:b6:93:81:ef:63:d9:d6:31:8d:ba:e0:61:36:7c:06:cd: |
| b5:2f:3f:4a:04:84:c2:c4:51:07:49:55:53:4f:22:b6:2f:15: |
| d9:62:8a:65:97:15:84:a1:e2:2e:4e:66:59:02:b2:8f:b6:d6: |
| 84:d6:ed:d4:df:45:a3:75:93:58:88:76:8d:6c:01:81:cc:c5: |
| 91:99:cc:9c:65:f9:c9:f0:86:ed:3a:fe:d0:a0:2e:6c:04:d2: |
| 49:f8:d4:31:9f:ce:db:93:bb:5a:73:4d:5d:24:83:4b:55:fe: |
| 49:79:67:64:83:18:56:d9:ad:90:96:0b:ab:49:de:08:80:7a: |
| 93:54:b1:38:19:c2:0b:6f:e1:b1:50:52:19:67:15:a9:aa:5a: |
| c5:ed:73:30:63:1a:64:24:d4:8b:95:c9:c4:54:78:62:ce:42: |
| f7:98:f1:94:2e:4d:93:7e:df:6f:cd:6f:41:c4:ef:c8:ed:f7: |
| 73:92:af:ee:19:b5:e5:47:82:f7:47:41:35:29:8c:88:3b:62: |
| 18:c0:f6:80:56:3f:f8:9e:b4:6e:33:2c:ce:41:da:56:83:c7: |
| c7:30:c6:0f:f5:49:f5:79:d6:7b:c5:33:4c:0f:2a:e9:13:27: |
| 0b:e3:b8:63:74:14:c0:2e:19:24:00:a4:f8:17:d7:cd:b5:1b: |
| c1:38:25:9a |
| -----BEGIN CERTIFICATE----- |
| MIIDcTCCAlmgAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowGDEWMBQGA1UEAwwNSW50 |
| ZXJtZWRpYXJ5MTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKvpoChn |
| OBNyEqA78vkTwivBogfmRTXP/xpGsNJYEmP8PbOFUGicVyH/Mf8kSNsT3rH0+Dl6 |
| 8zTdUVgaEnOdheDQ+L79neI0zjbgoEhTNiO/UtKs2tHvbNqfETts4Wdq8d+XLBoS |
| x8NyD5ghakAr8Ci4wu9/y+566Y8X/gqh/9UVTGNbU1UVAbldkXewIwMORQCEUjMr |
| EVGZ6A1bRe/S4skOoq5DwpJcsDZ2BiGR0ELoD2+AYZgSpsDDt2R+dwx2Eh9Qc/i7 |
| KBpde2g2AfoJ55qQtsU96Rage8J2GfDpvBUNVd/qZyqy4Gn4wUnEplHpQ9LfKt7j |
| oGY/DBi4+I27QxUCAwEAAaOBzjCByzAdBgNVHQ4EFgQUCYfBFBGBBNivz2ZKT40c |
| pbsEz9owHwYDVR0jBBgwFoAUpJ3k+LCv1aQvuT9CuMPVYJ1kwowwNwYIKwYBBQUH |
| AQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIw |
| LAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4G |
| A1UdDwEB/wQEAwIBBjASBgNVHRMBAf8ECDAGAQH/AgEAMA0GCSqGSIb3DQEBCwUA |
| A4IBAQB9l7aTge9j2dYxjbrgYTZ8Bs21Lz9KBITCxFEHSVVTTyK2LxXZYopllxWE |
| oeIuTmZZArKPttaE1u3U30WjdZNYiHaNbAGBzMWRmcycZfnJ8IbtOv7QoC5sBNJJ |
| +NQxn87bk7tac01dJINLVf5JeWdkgxhW2a2QlgurSd4IgHqTVLE4GcILb+GxUFIZ |
| ZxWpqlrF7XMwYxpkJNSLlcnEVHhizkL3mPGULk2Tft9vzW9BxO/I7fdzkq/uGbXl |
| R4L3R0E1KYyIO2IYwPaAVj/4nrRuMyzOQdpWg8fHMMYP9Un1edZ7xTNMDyrpEycL |
| 47hjdBTALhkkAKT4F9fNtRvBOCWa |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: 1 (0x1) |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Jan 1 12:00:00 2015 GMT |
| Not After : Jan 1 12:00:00 2016 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:9e:1f:9a:ec:aa:50:56:02:47:76:c8:ff:b9:91: |
| c0:58:8d:08:b9:87:d9:ac:9e:7c:6e:2e:b7:60:68: |
| d6:ab:1c:3d:f3:e2:a8:e6:05:58:ff:52:27:7c:f9: |
| 7e:96:2d:19:71:35:84:eb:8d:3c:db:27:f7:5f:2f: |
| d1:56:af:73:a8:26:84:f5:bb:7f:7a:7c:40:81:66: |
| e9:e5:c1:53:eb:ac:d5:65:47:3d:a1:0a:67:c6:c8: |
| 3b:cb:2f:a9:1e:9c:d5:30:6b:7b:50:cb:ad:46:6b: |
| 33:44:91:14:94:20:ad:e2:79:1b:62:bb:1d:7e:a7: |
| 2a:45:03:4b:d4:64:1b:15:82:c6:dc:cb:48:84:c5: |
| 77:22:2a:20:6d:d8:bd:25:8d:55:11:95:46:73:97: |
| fa:53:66:2e:ec:1a:73:66:09:f7:ef:e4:f8:df:ea: |
| ce:90:c8:f8:38:67:bb:3c:c2:48:e7:69:01:98:6b: |
| c1:3e:8f:17:05:0f:c0:d0:eb:49:f1:c7:ab:c6:07: |
| 49:85:a7:57:ac:11:42:e5:de:bf:a1:65:4b:e6:ba: |
| e8:44:64:2d:84:d8:a4:4a:ba:62:56:76:49:bf:67: |
| 19:91:e1:29:e9:fb:aa:de:ef:df:58:01:08:65:14: |
| 8e:71:b5:3b:43:fb:6c:65:9a:d6:6e:42:65:24:2d: |
| f4:99 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| A4:9D:E4:F8:B0:AF:D5:A4:2F:B9:3F:42:B8:C3:D5:60:9D:64:C2:8C |
| X509v3 Authority Key Identifier: |
| keyid:A4:9D:E4:F8:B0:AF:D5:A4:2F:B9:3F:42:B8:C3:D5:60:9D:64:C2:8C |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 39:75:b8:af:a2:4e:d6:2f:15:08:4e:6d:06:1f:e7:65:29:96: |
| c2:77:96:ed:1b:b2:48:e3:f9:cf:fd:8c:40:d1:67:37:1a:7c: |
| e8:40:f0:ca:ee:72:9e:ef:6d:eb:e7:e9:5c:c4:61:e5:65:0e: |
| 25:62:8e:ca:b1:5d:08:d2:21:6d:cb:0f:d6:f3:41:4a:66:56: |
| 5b:06:3a:a7:6e:df:ad:6c:4d:18:01:95:b4:c9:7e:f4:80:e7: |
| 75:17:e0:41:25:7e:03:1b:5b:bd:a0:2d:1c:f8:f5:18:e6:0b: |
| 4c:69:7e:aa:54:78:f3:b4:84:b8:eb:8c:37:e9:60:dd:df:b8: |
| f8:43:57:37:99:db:b1:ed:99:2e:1f:f2:af:94:33:97:86:83: |
| 58:6d:e6:37:56:36:f8:68:e6:32:70:3f:5b:9b:13:75:a5:fc: |
| c0:5a:e5:61:61:37:d2:b6:d8:d5:5c:55:21:d5:8e:3a:ed:bf: |
| 83:81:76:e7:71:2b:3f:5b:0f:77:43:20:3a:d2:f6:ef:53:c8: |
| 29:19:2c:0a:4d:a6:2e:fb:9b:3b:10:73:e1:dc:ac:0e:8d:e4: |
| bd:36:da:e9:1e:0a:e6:57:b4:1d:ea:d8:cd:a0:dd:e3:88:8d: |
| a5:b4:43:7f:fd:b1:3c:29:e5:6a:b4:c9:4e:e6:77:83:ae:c6: |
| f7:04:47:a2 |
| -----BEGIN TRUSTED_CERTIFICATE----- |
| MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v |
| dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ4fmuyqUFYCR3bI/7mR |
| wFiNCLmH2ayefG4ut2Bo1qscPfPiqOYFWP9SJ3z5fpYtGXE1hOuNPNsn918v0Vav |
| c6gmhPW7f3p8QIFm6eXBU+us1WVHPaEKZ8bIO8svqR6c1TBre1DLrUZrM0SRFJQg |
| reJ5G2K7HX6nKkUDS9RkGxWCxtzLSITFdyIqIG3YvSWNVRGVRnOX+lNmLuwac2YJ |
| 9+/k+N/qzpDI+DhnuzzCSOdpAZhrwT6PFwUPwNDrSfHHq8YHSYWnV6wRQuXev6Fl |
| S+a66ERkLYTYpEq6YlZ2Sb9nGZHhKen7qt7v31gBCGUUjnG1O0P7bGWa1m5CZSQt |
| 9JkCAwEAAaOByzCByDAdBgNVHQ4EFgQUpJ3k+LCv1aQvuT9CuMPVYJ1kwowwHwYD |
| VR0jBBgwFoAUpJ3k+LCv1aQvuT9CuMPVYJ1kwowwNwYIKwYBBQUHAQEEKzApMCcG |
| CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA5dbivok7W |
| LxUITm0GH+dlKZbCd5btG7JI4/nP/YxA0Wc3GnzoQPDK7nKe723r5+lcxGHlZQ4l |
| Yo7KsV0I0iFtyw/W80FKZlZbBjqnbt+tbE0YAZW0yX70gOd1F+BBJX4DG1u9oC0c |
| +PUY5gtMaX6qVHjztIS464w36WDd37j4Q1c3mdux7ZkuH/KvlDOXhoNYbeY3Vjb4 |
| aOYycD9bmxN1pfzAWuVhYTfSttjVXFUh1Y467b+DgXbncSs/Ww93QyA60vbvU8gp |
| GSwKTaYu+5s7EHPh3KwOjeS9NtrpHgrmV7Qd6tjNoN3jiI2ltEN//bE8KeVqtMlO |
| 5neDrsb3BEei |
| -----END TRUSTED_CERTIFICATE----- |
| |
| -----BEGIN TIME----- |
| MTUwMzAyMTIwMDAwWg== |
| -----END TIME----- |
| |
| -----BEGIN VERIFY_RESULT----- |
| RkFJTA== |
| -----END VERIFY_RESULT----- |