blob: ec51495dce29d816a361b84e0ec340d61e88139c [file] [log] [blame]
[Created by: generate-chains.py]
Certificate chain with 2 intermediates and one end entity certificate. The
root certificate has a pathlen:1 restriction. Ordinarily this would be an
invalid chain, however constraints on this trust anchor are not enforced.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6f:b6:20:7f:8e:28:e1:ab:46:5c:ea:21:e3:04:e6:9e:26:6c:cd:7a
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate2
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:9d:b0:80:41:9a:d5:31:ea:d0:f6:46:1d:cd:f5:
e0:b8:d1:d4:21:fa:7b:01:03:9a:2a:dc:f0:f1:91:
75:4e:57:cb:b6:d2:03:4d:49:16:cf:85:87:a7:e8:
b5:de:55:67:d1:9f:1a:2a:19:2c:00:91:00:81:c4:
92:cc:03:be:c1:f2:c5:72:39:94:b6:1e:5f:4a:70:
83:7d:5a:05:2d:02:a7:84:25:2a:da:11:c4:d4:e8:
7f:1a:fb:88:6b:52:f9:8c:c9:c7:99:21:75:35:c3:
84:a0:a1:b1:32:6e:1f:e4:b4:bc:21:5b:e4:7b:e0:
85:06:3d:bf:fb:c0:92:66:1e:53:ff:d0:16:3b:a5:
7c:32:07:10:54:b7:98:3d:70:2f:fc:ee:54:3e:74:
a8:ec:4b:45:11:e5:08:d1:54:2b:a9:78:83:bc:55:
92:3e:71:e4:ba:ac:67:28:f2:4d:3e:8c:8f:26:88:
02:fc:04:82:a9:88:bf:c7:95:4d:8c:d5:0e:17:2d:
ea:90:ad:6e:e4:7e:76:89:c6:0d:f4:5a:35:1a:72:
d4:91:38:50:cc:f3:1b:05:ff:80:d3:b2:e9:0a:5d:
8a:9f:b8:b2:2a:20:a8:76:b5:41:1b:80:33:7c:79:
12:fa:ff:36:df:61:22:c5:fa:27:4a:88:75:a8:f5:
5d:49
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
ED:D0:2C:C2:73:F7:C3:03:A2:08:6E:44:C9:E5:97:16:A5:B9:C9:EC
X509v3 Authority Key Identifier:
keyid:48:81:22:AA:57:F7:0B:70:A7:D6:32:4B:AA:85:CD:7C:F2:85:30:2B
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate2.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate2.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
4d:7e:4c:ef:2d:23:0a:e0:2d:63:8c:cd:69:6e:aa:b3:66:07:
b7:f7:7f:0f:47:7d:0a:2b:62:ad:75:da:9e:77:61:6e:eb:81:
f2:11:4b:85:61:f0:80:5c:52:b5:f7:ad:35:d3:6b:a1:58:8c:
14:24:ae:f7:9e:d0:4b:65:a3:ab:9d:4c:3f:c5:6d:97:59:fd:
b5:17:d9:93:71:76:0d:c2:51:94:68:e4:04:9d:66:db:8d:81:
5a:44:a5:d8:c9:36:d2:5d:e2:9b:58:71:7a:43:c8:b4:31:d9:
39:4a:e9:d0:2c:9e:0d:8a:7c:b8:5b:57:71:8b:cd:62:b5:82:
e8:cc:ce:85:13:10:e2:59:dd:50:4e:0a:8f:1f:7c:5c:c1:f8:
d5:73:79:be:e9:0e:b2:7b:e3:04:59:31:4f:c6:e6:b8:5a:f4:
81:bf:d2:b6:b7:56:d8:50:97:39:af:89:1a:9e:db:c7:c1:5e:
6f:53:50:23:e7:ac:52:09:16:62:89:c6:05:71:84:98:a8:98:
46:55:12:4e:b5:6b:14:28:d0:5a:76:db:98:5f:d0:56:da:4a:
3d:7a:e2:d0:66:f4:61:6f:40:cb:b5:95:ef:7b:57:80:8e:c0:
e4:25:54:f2:1d:ec:46:47:64:3f:86:55:95:94:9f:87:11:f4:
e2:04:04:c9
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6b:9a:a5:a2:a4:4b:4d:13:90:3b:56:a2:99:01:90:63:01:79:c0:69
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate1
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate2
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:b9:41:a3:79:b8:9d:70:a4:25:58:5b:47:07:ad:
0a:23:3e:36:c4:44:c3:27:bb:cd:ab:c8:1b:4e:b8:
ba:d7:33:af:4a:59:74:cb:c1:5f:8c:8f:b6:0d:89:
ad:43:1f:3c:f4:64:11:0a:dc:ec:65:6d:85:5c:97:
7e:8d:79:4d:bf:2c:bc:7e:31:59:bc:b7:cb:1c:8b:
9a:10:ae:12:ed:93:50:72:66:45:c0:af:be:e7:e2:
0a:cd:b4:60:f8:03:3e:6a:e2:ca:ff:75:52:20:73:
d3:2b:af:72:91:1b:ee:31:ea:74:9b:a0:aa:b2:3a:
84:96:f3:00:65:a4:a7:21:e0:b1:96:d2:32:45:c6:
bd:6e:17:67:74:34:89:71:a8:2e:18:6b:12:1f:f1:
97:07:10:61:b2:c2:38:ac:44:97:e4:fb:99:33:4b:
7d:60:52:86:44:d4:df:91:0b:2d:04:37:b5:7e:5c:
fa:3d:46:9e:cf:0b:4f:1a:43:d9:9a:68:56:47:b5:
f0:68:80:67:a0:e4:d9:e2:25:d4:ff:3c:1a:b3:e0:
5f:d5:44:ec:d5:1b:e0:b2:be:fd:d1:26:89:25:4a:
18:4a:ca:44:d0:94:74:cb:a8:39:75:64:5a:19:21:
d1:4c:d9:b2:13:f0:d1:4f:6f:45:02:b7:3e:6e:10:
fe:5f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
48:81:22:AA:57:F7:0B:70:A7:D6:32:4B:AA:85:CD:7C:F2:85:30:2B
X509v3 Authority Key Identifier:
keyid:A7:AB:30:41:BC:BB:CC:D3:7C:21:06:CA:C4:71:84:FF:FA:00:FC:D3
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate1.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate1.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
c0:be:40:38:07:07:a8:77:d8:a2:61:2f:b8:21:c1:75:c1:41:
96:8c:af:f3:b9:74:84:3b:59:6e:1b:05:0a:ad:a1:7c:ae:ed:
aa:85:7b:91:7a:97:39:02:9f:bd:e9:d8:f7:ed:d1:f3:cb:04:
be:01:69:e2:8d:83:c2:fb:8f:db:0a:73:2e:c7:be:92:1a:2b:
b5:e6:84:4b:e4:5e:78:ae:ea:b4:41:8a:ec:30:4a:90:8f:66:
b9:2f:17:1f:a3:6e:a8:44:38:46:01:be:00:07:5a:4e:4c:f6:
e7:b3:6f:22:48:fe:ad:74:48:0b:6d:85:eb:22:3b:cf:2c:53:
c2:6b:d5:bf:3e:39:ff:1e:87:03:3f:37:8c:ee:6c:3f:ee:33:
71:b4:bb:0a:62:a7:cc:58:99:b4:c2:3a:8b:02:e0:14:50:7d:
2c:3d:32:e2:2d:cc:41:5f:e3:5a:f6:74:2c:a5:50:d6:ad:ce:
e2:ce:c7:2f:9a:75:20:53:9b:85:65:48:fc:61:c4:39:2f:b2:
d6:2b:77:c2:b9:fd:93:57:d6:40:01:8b:6a:23:5e:63:2f:fa:
b4:96:93:01:8e:2e:70:ce:4f:9b:d9:aa:e0:5c:a3:2b:c0:b0:
ef:20:7e:bd:6d:f4:5b:7a:49:a6:39:79:19:0c:e7:15:05:55:
35:37:7f:4e
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
18:cb:b5:af:52:5d:40:86:d1:39:30:e5:fe:1a:28:65:33:e0:37:a9
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Intermediate1
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:c1:37:3b:43:f5:80:3a:6f:88:94:a1:ea:18:3b:
56:7b:bc:4d:3e:b3:3c:dc:99:4a:aa:11:0c:3e:95:
ee:ed:76:27:5b:a5:81:59:73:69:dc:33:da:20:35:
48:00:ac:3e:43:5e:df:10:17:d8:d3:e9:11:da:00:
72:e7:d3:42:54:f1:93:39:0b:18:7a:0c:69:4d:12:
50:73:0c:f6:4f:44:8d:5f:c0:62:89:e5:f0:63:78:
1b:92:bb:23:67:8f:77:b1:d3:3f:b1:67:de:6b:aa:
0f:73:c3:d3:f2:69:84:7e:e3:04:34:25:69:23:13:
23:92:4d:d5:08:55:7d:77:b8:42:96:fd:f7:09:35:
20:4a:bf:8e:3d:16:9c:93:5d:81:a2:ed:9d:b4:b3:
43:06:74:f2:79:f1:26:d8:1a:b8:3c:35:e6:cd:d6:
36:79:5c:2d:3f:3e:df:1c:08:e9:5a:7a:cb:e4:e7:
aa:54:db:7e:96:38:a0:0c:39:65:68:88:3a:a0:05:
5a:79:ee:8e:dd:96:08:86:8d:3e:79:b1:7e:28:bd:
0f:9a:26:f5:de:8c:6c:7a:d8:e7:79:c4:9a:48:35:
26:2c:ac:1c:ce:d4:7f:a4:a2:75:e3:27:0f:0f:de:
5a:ba:7a:59:c7:ef:d8:39:8d:74:81:fc:37:a6:b1:
b7:4d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A7:AB:30:41:BC:BB:CC:D3:7C:21:06:CA:C4:71:84:FF:FA:00:FC:D3
X509v3 Authority Key Identifier:
keyid:2A:A9:CA:EF:18:15:3E:D3:AC:C4:EC:2D:A1:3C:8F:19:F8:EE:51:B5
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
45:d1:1e:ed:5a:d0:33:9c:56:d6:af:c1:32:74:ba:13:b2:c6:
b6:4c:30:64:82:e9:ea:47:e5:4e:7f:f3:e3:52:9c:3e:fb:ae:
cf:ab:4f:1a:e9:63:c6:5c:ff:d3:3f:ab:5d:a0:63:4d:fa:d5:
04:8a:c5:53:8e:0a:a1:05:07:e1:4d:8c:7b:05:12:28:df:fb:
53:71:2f:80:fb:c6:dd:db:3e:46:8c:ec:57:6f:85:e3:44:a8:
3a:59:5a:f7:90:8f:bb:d9:d7:e4:e5:3d:fb:5e:56:0d:d8:83:
00:e1:9d:48:9b:c4:ab:fb:42:15:fc:47:57:51:13:42:af:49:
c4:39:86:37:b9:f5:8b:60:bb:9f:ab:e8:62:5c:2a:fd:17:0c:
5f:10:4c:99:8e:f3:ac:78:e0:db:f7:23:b7:ac:9f:c3:b3:08:
73:1b:27:7c:e4:7f:9e:5a:32:aa:49:d7:08:d9:65:d3:f9:2e:
0f:e4:dc:41:47:42:50:01:ef:89:9c:60:a8:f9:1e:71:8b:54:
1c:d1:34:38:68:fe:5c:da:de:a0:14:aa:9e:bb:99:d1:4f:5c:
f4:cb:23:37:ed:ea:8f:a8:75:bd:69:c6:41:f7:40:80:c1:a6:
3a:45:55:c0:ee:6e:06:bb:d0:fb:ad:a8:dd:26:87:38:b0:6b:
e2:e5:1b:6b
-----BEGIN CERTIFICATE-----
MIIDgTCCAmmgAwIBAgIUGMu1r1JdQIbROTDl/hooZTPgN6kwDQYJKoZIhvcNAQEL
BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw
MDBaMBgxFjAUBgNVBAMMDUludGVybWVkaWF0ZTEwggEiMA0GCSqGSIb3DQEBAQUA
A4IBDwAwggEKAoIBAQDBNztD9YA6b4iUoeoYO1Z7vE0+szzcmUqqEQw+le7tdidb
pYFZc2ncM9ogNUgArD5DXt8QF9jT6RHaAHLn00JU8ZM5Cxh6DGlNElBzDPZPRI1f
wGKJ5fBjeBuSuyNnj3ex0z+xZ95rqg9zw9PyaYR+4wQ0JWkjEyOSTdUIVX13uEKW
/fcJNSBKv449FpyTXYGi7Z20s0MGdPJ58SbYGrg8NebN1jZ5XC0/Pt8cCOlaesvk
56pU236WOKAMOWVoiDqgBVp57o7dlgiGjT55sX4ovQ+aJvXejGx62Od5xJpINSYs
rBzO1H+konXjJw8P3lq6elnH79g5jXSB/DemsbdNAgMBAAGjgcswgcgwHQYDVR0O
BBYEFKerMEG8u8zTfCEGysRxhP/6APzTMB8GA1UdIwQYMBaAFCqpyu8YFT7TrMTs
LaE8jxn47lG1MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3Vy
bC1mb3ItYWlhL1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwt
Zm9yLWNybC9Sb290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB
/zANBgkqhkiG9w0BAQsFAAOCAQEARdEe7VrQM5xW1q/BMnS6E7LGtkwwZILp6kfl
Tn/z41KcPvuuz6tPGuljxlz/0z+rXaBjTfrVBIrFU44KoQUH4U2MewUSKN/7U3Ev
gPvG3ds+RozsV2+F40SoOlla95CPu9nX5OU9+15WDdiDAOGdSJvEq/tCFfxHV1ET
Qq9JxDmGN7n1i2C7n6voYlwq/RcMXxBMmY7zrHjg2/cjt6yfw7MIcxsnfOR/nloy
qknXCNll0/kuD+TcQUdCUAHviZxgqPkecYtUHNE0OGj+XNreoBSqnruZ0U9c9Msj
N+3qj6h1vWnGQfdAgMGmOkVVwO5uBrvQ+62o3SaHOLBr4uUbaw==
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
18:cb:b5:af:52:5d:40:86:d1:39:30:e5:fe:1a:28:65:33:e0:37:a8
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Oct 5 12:00:00 2021 GMT
Not After : Oct 5 12:00:00 2022 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:b6:f5:2f:2d:0b:bf:09:20:92:56:ed:6f:1b:b3:
4e:2c:7b:1b:7d:8e:97:f1:ee:95:bf:2e:b7:63:de:
9c:5b:35:3e:c1:5b:78:1e:6c:fd:94:fe:23:7d:6c:
28:bf:da:ac:d4:47:58:b4:ba:00:9e:aa:ce:23:44:
c6:a3:84:7a:5b:53:99:bc:20:f7:f9:76:10:1c:3d:
c4:45:af:b4:55:7f:03:26:54:6f:92:15:3c:e1:ea:
3d:00:c7:02:fb:ce:59:f9:5c:21:17:b2:18:9c:b8:
d2:d5:36:56:8d:7c:24:a0:76:66:7e:2e:18:88:d0:
ae:18:d8:65:98:56:33:0a:50:e8:28:eb:a9:fe:7e:
2e:b7:c7:39:93:61:2c:6b:04:80:fa:5b:c3:b5:3f:
82:b3:81:b3:92:2a:0a:ab:b0:1c:0d:3b:88:63:5e:
19:dd:bd:c4:0a:43:b6:a2:f8:c9:e7:86:33:7e:4a:
b4:8b:1d:87:24:a4:67:6a:1d:32:41:a9:73:74:05:
dd:09:34:b9:42:63:fd:2c:bc:53:6e:06:51:f4:9f:
eb:b0:8d:0f:ec:9c:4b:61:6e:18:e0:d0:e4:03:34:
34:66:1c:7c:33:64:f7:4d:4f:89:2d:a9:c3:b5:43:
08:82:df:ad:0b:03:0d:20:6b:cf:27:81:cb:a7:53:
7d:13
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
2A:A9:CA:EF:18:15:3E:D3:AC:C4:EC:2D:A1:3C:8F:19:F8:EE:51:B5
X509v3 Authority Key Identifier:
keyid:2A:A9:CA:EF:18:15:3E:D3:AC:C4:EC:2D:A1:3C:8F:19:F8:EE:51:B5
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:1
Signature Algorithm: sha256WithRSAEncryption
68:a8:4b:73:15:52:f9:1f:62:a3:fd:d7:b2:32:45:bd:cd:a9:
d0:9d:6b:6a:f9:34:dc:35:9e:52:36:ea:b7:b3:9d:ce:28:27:
5c:f3:c8:b5:3a:8f:9c:56:41:e3:0a:c4:eb:f9:05:5d:be:01:
e7:69:39:f9:0e:04:24:ef:23:21:1f:28:84:ac:97:6c:bd:01:
23:ad:10:3a:78:3c:7d:82:c6:5e:25:e2:51:2b:7e:76:ac:b1:
6c:7e:8b:cc:9f:12:5e:27:ee:79:bf:bf:68:93:a0:7c:cc:da:
8c:c8:ee:ef:4c:c0:65:6a:a4:2b:aa:ce:71:62:3a:ef:a9:c8:
d2:76:53:13:0b:47:3b:ad:6a:46:b7:60:b2:87:c5:b1:5a:75:
23:87:57:de:1d:55:46:76:99:e7:f9:f1:90:7a:8a:6a:af:4b:
9d:61:b7:fd:a2:71:c8:29:a5:ec:4a:d8:2b:e2:91:3b:0a:a5:
69:65:f1:9e:1b:bb:23:c9:d8:00:7c:44:6b:91:b2:92:e7:02:
f8:80:57:0f:31:72:e9:ed:f0:24:96:a0:50:f9:b4:18:94:11:
31:05:ba:b4:7e:21:73:1a:f2:5f:37:2a:de:ac:14:36:1c:25:
d7:a6:81:c6:69:6b:63:a2:9a:a7:e1:8e:43:86:d2:bd:95:b3:
78:d3:5e:20
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----