[Created by: generate-chains.py] Certificate chain where the intermediate has a valid signature, however uses MD5 in the signature algorithm. Certificate: Data: Version: 3 (0x2) Serial Number: 70:a7:83:31:c0:be:2b:86:e1:e6:72:7f:d3:1f:63:e7:80:79:6e:d5 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=Intermediate Validity Not Before: Oct 5 12:00:00 2021 GMT Not After : Oct 5 12:00:00 2022 GMT Subject: CN=Target Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c7:dd:eb:5a:f4:88:03:0a:d7:b6:29:95:e0:58: 03:c6:35:36:b0:9e:e8:09:94:21:ba:07:cf:70:cc: 52:c7:2c:fd:fe:c0:86:50:b3:0c:7b:46:cf:eb:a3: bd:5a:29:32:58:81:09:ff:85:f8:b3:77:75:58:61: 22:f1:59:99:1f:0d:58:dd:ff:f5:a8:51:62:0a:58: db:20:8e:fd:5a:43:96:8f:cd:8c:98:ca:f4:ef:4c: f6:1e:48:dc:48:46:60:8c:67:0f:9a:41:2b:6b:72: e2:ce:11:25:3d:21:99:fa:3f:ca:34:b8:ae:f1:29: 7a:ce:bc:1c:ce:98:50:d6:70:93:0a:a5:c4:7e:05: 34:46:f1:ef:36:59:90:62:c2:b8:b9:71:ed:df:c0: f8:fd:ff:08:fa:db:05:7d:99:35:2a:65:08:e0:a1: 66:cb:7d:55:bc:72:d8:1f:7d:0c:11:e2:8b:11:51: 2e:88:b1:d1:72:5f:c5:6b:ac:f0:1e:3f:97:b8:0e: d4:49:9d:a0:b5:be:23:79:b1:0f:19:90:c6:00:e1: 62:b4:d5:db:25:8c:11:01:92:9d:17:16:fd:ee:bf: 37:6a:2a:d9:b4:4d:83:0c:24:2c:f8:28:7f:52:9d: 6b:b3:ac:b2:2b:86:e8:fe:f8:a5:3a:cc:9d:eb:08: f0:6f Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: 4A:A4:1B:84:D7:FB:A1:F1:FB:D4:71:87:01:11:63:87:06:5D:A6:D1 X509v3 Authority Key Identifier: A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31 Authority Information Access: CA Issuers - URI:http://url-for-aia/Intermediate.cer X509v3 CRL Distribution Points: Full Name: URI:http://url-for-crl/Intermediate.crl X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication Signature Algorithm: sha256WithRSAEncryption Signature Value: a5:7a:5a:3e:ea:47:b5:47:48:1e:41:61:22:65:0b:49:84:1f: c7:08:08:21:a5:13:1a:ff:0a:d4:83:a6:b0:87:f4:89:5b:9d: 5a:9a:ad:2a:fe:6c:b6:0a:24:cc:16:0b:79:7b:59:77:52:16: 45:67:cb:8b:35:dc:ea:fd:6b:0c:9e:fa:c7:2d:2d:a3:53:ef: 2a:0d:ae:b1:bb:50:5b:b6:59:08:13:4b:2a:39:3c:b5:09:e5: 58:ad:4b:36:8a:82:3f:65:0b:1d:80:30:b1:af:ea:07:47:39: 99:9d:2c:ea:13:c6:a6:c3:a0:b0:8e:6e:19:5a:8d:0b:3b:b1: 17:6d:cd:71:68:69:32:40:42:ba:47:16:c1:a1:02:dd:95:da: 69:dd:4f:5a:8c:d1:ba:c5:e9:a3:d6:67:50:83:19:8b:08:63: cc:11:24:5b:63:df:84:c8:16:8a:57:22:cb:51:8d:ec:6f:35: 32:fa:84:c3:2c:77:47:fe:a6:53:61:f0:1e:55:1d:b8:3a:0d: 19:ed:ff:2a:d8:81:f6:e8:e0:18:f2:37:68:c8:4e:ef:18:a3: 9e:e7:f5:f8:f9:51:e9:70:47:98:35:31:07:63:7d:4f:27:cb: 29:30:5b:78:0a:61:44:15:af:c8:bd:c7:d2:e4:18:dc:5b:40: 2c:66:b4:78 -----BEGIN CERTIFICATE----- MIIDoDCCAoigAwIBAgIUcKeDMcC+K4bh5nJ/0x9j54B5btUwDQYJKoZIhvcNAQEL BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTIxMTAwNTEyMDAwMFoXDTIy MTAwNTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF AAOCAQ8AMIIBCgKCAQEAx93rWvSIAwrXtimV4FgDxjU2sJ7oCZQhugfPcMxSxyz9 /sCGULMMe0bP66O9WikyWIEJ/4X4s3d1WGEi8VmZHw1Y3f/1qFFiCljbII79WkOW j82MmMr070z2HkjcSEZgjGcPmkEra3LizhElPSGZ+j/KNLiu8Sl6zrwczphQ1nCT CqXEfgU0RvHvNlmQYsK4uXHt38D4/f8I+tsFfZk1KmUI4KFmy31VvHLYH30MEeKL EVEuiLHRcl/Fa6zwHj+XuA7USZ2gtb4jebEPGZDGAOFitNXbJYwRAZKdFxb97r83 airZtE2DDCQs+Ch/Up1rs6yyK4bo/vilOsyd6wjwbwIDAQABo4HpMIHmMB0GA1Ud DgQWBBRKpBuE1/uh8fvUcYcBEWOHBl2m0TAfBgNVHSMEGDAWgBSmhhQiq0DoB18T ZPONYN4wtAuzMTA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD ggEBAKV6Wj7qR7VHSB5BYSJlC0mEH8cICCGlExr/CtSDprCH9IlbnVqarSr+bLYK JMwWC3l7WXdSFkVny4s13Or9awye+sctLaNT7yoNrrG7UFu2WQgTSyo5PLUJ5Vit SzaKgj9lCx2AMLGv6gdHOZmdLOoTxqbDoLCObhlajQs7sRdtzXFoaTJAQrpHFsGh At2V2mndT1qM0brF6aPWZ1CDGYsIY8wRJFtj34TIFopXIstRjexvNTL6hMMsd0f+ plNh8B5VHbg6DRnt/yrYgfbo4BjyN2jITu8Yo57n9fj5UelwR5g1MQdjfU8nyykw W3gKYUQVr8i9x9LkGNxbQCxmtHg= -----END CERTIFICATE----- Certificate: Data: Version: 3 (0x2) Serial Number: 33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6d Signature Algorithm: sha1WithRSAEncryption Issuer: CN=Root Validity Not Before: Oct 5 12:00:00 2021 GMT Not After : Oct 5 12:00:00 2022 GMT Subject: CN=Intermediate Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:eb:61:9e:9d:4b:23:cc:8e:39:d9:ac:07:05:da: 32:34:de:2a:dd:2f:62:ed:87:ce:7c:59:c4:9d:8e: 28:76:d1:f2:65:60:91:3f:7b:63:a4:2f:50:c4:da: 12:5b:71:a0:97:4f:26:cf:e7:b2:01:84:67:57:f5: 86:36:54:68:0f:28:f0:ea:7b:ca:1e:1a:bc:7e:67: cf:fd:14:63:ee:c1:33:92:01:70:bc:12:6b:7d:2c: 8d:02:34:8e:85:1a:e4:f5:99:b6:c8:d5:18:d9:04: a6:f5:40:fc:96:50:e2:3f:87:a0:d6:72:be:a3:a3: 45:89:07:74:d0:2e:9c:0d:88:12:02:a3:ef:17:ad: 2c:2d:71:66:11:89:3f:cf:57:77:28:77:70:bb:0f: 39:b0:b1:34:9d:e9:f7:a2:56:af:57:7e:ed:44:f8: be:78:3d:28:c5:0d:37:15:2c:f6:99:4e:05:70:ae: c5:99:45:a7:3f:bd:83:79:6a:a3:67:ff:71:2d:60: e2:08:91:23:45:40:b1:40:52:e1:3b:1d:5d:d1:e9: c2:b0:b1:c4:fb:7c:af:9c:c1:95:f1:a5:23:16:19: 75:9f:ef:be:b8:79:a7:f4:c5:b2:47:ae:6d:1c:15: 9c:26:0f:b2:0f:ec:92:8d:5a:79:c9:9e:16:e0:70: bc:ef Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31 X509v3 Authority Key Identifier: C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96 Authority Information Access: CA Issuers - URI:http://url-for-aia/Root.cer X509v3 CRL Distribution Points: Full Name: URI:http://url-for-crl/Root.crl X509v3 Key Usage: critical Certificate Sign, CRL Sign X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha1WithRSAEncryption Signature Value: 10:e8:02:e9:1f:ed:c1:c6:ad:7b:2e:8f:07:ea:1a:0e:ca:5a: e3:6e:bf:d6:ff:be:2a:f1:8e:01:88:32:ae:d2:b7:a0:98:f6: ee:5e:24:ea:a6:5c:4b:dc:15:58:a0:1a:1a:e6:cd:b4:75:65: fd:fc:6a:b7:f5:06:fa:df:36:c4:8e:e1:6a:73:93:62:f3:73: 29:35:53:30:b0:15:76:9a:7e:6b:a7:ae:ae:eb:d1:56:54:34: ec:77:1b:7f:05:7e:e4:b1:21:2d:65:1d:83:e3:43:ae:ad:d3: bd:f5:19:60:a5:de:67:9b:eb:84:58:e2:8f:50:a8:2f:32:b1: 73:fc:1d:41:47:0f:0d:c2:1d:7e:b5:5c:eb:0e:6c:9e:e5:6e: c4:ec:a0:1c:f5:af:ca:6f:d4:28:53:8b:a8:09:83:6b:ef:13: 3c:87:38:f2:63:0b:9c:20:cd:31:22:e6:08:0f:be:1c:04:e8: 72:7d:a3:f2:cb:2d:2d:ef:fb:c4:8e:f1:3f:f9:77:2a:d6:66: 54:11:f1:d7:7a:5a:04:5b:f0:f4:dc:13:b0:14:6c:e2:b3:95: a0:1f:c3:9a:21:6c:4f:5f:bb:37:3c:f8:8b:d0:19:25:53:c9: 79:d6:a1:53:9a:03:e2:ba:f3:72:f9:45:c4:2c:19:e4:73:ca: 7d:b6:4e:2a -----BEGIN CERTIFICATE----- MIIDgDCCAmigAwIBAgIUM1eZ/Yek4VGqlI+X8Z0y0bAiw20wDQYJKoZIhvcNAQEF BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD ggEPADCCAQoCggEBAOthnp1LI8yOOdmsBwXaMjTeKt0vYu2HznxZxJ2OKHbR8mVg kT97Y6QvUMTaEltxoJdPJs/nsgGEZ1f1hjZUaA8o8Op7yh4avH5nz/0UY+7BM5IB cLwSa30sjQI0joUa5PWZtsjVGNkEpvVA/JZQ4j+HoNZyvqOjRYkHdNAunA2IEgKj 7xetLC1xZhGJP89Xdyh3cLsPObCxNJ3p96JWr1d+7UT4vng9KMUNNxUs9plOBXCu xZlFpz+9g3lqo2f/cS1g4giRI0VAsUBS4TsdXdHpwrCxxPt8r5zBlfGlIxYZdZ/v vrh5p/TFskeubRwVnCYPsg/sko1aecmeFuBwvO8CAwEAAaOByzCByDAdBgNVHQ4E FgQUpoYUIqtA6AdfE2TzjWDeMLQLszEwHwYDVR0jBBgwFoAUxAEW5aAWECliZ3vR IkJsbxUrr5YwNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ MA0GCSqGSIb3DQEBBQUAA4IBAQAQ6ALpH+3Bxq17Lo8H6hoOylrjbr/W/74q8Y4B iDKu0regmPbuXiTqplxL3BVYoBoa5s20dWX9/Gq39Qb63zbEjuFqc5Ni83MpNVMw sBV2mn5rp66u69FWVDTsdxt/BX7ksSEtZR2D40OurdO99Rlgpd5nm+uEWOKPUKgv MrFz/B1BRw8Nwh1+tVzrDmye5W7E7KAc9a/Kb9QoU4uoCYNr7xM8hzjyYwucIM0x IuYID74cBOhyfaPyyy0t7/vEjvE/+Xcq1mZUEfHXeloEW/D03BOwFGzis5WgH8Oa IWxPX7s3PPiL0BklU8l51qFTmgPiuvNy+UXELBnkc8p9tk4q -----END CERTIFICATE----- Certificate: Data: Version: 3 (0x2) Serial Number: 33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6c Signature Algorithm: sha256WithRSAEncryption Issuer: CN=Root Validity Not Before: Oct 5 12:00:00 2021 GMT Not After : Oct 5 12:00:00 2022 GMT Subject: CN=Root Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:cc:b2:cd:77:8f:be:c9:a5:17:ad:e5:ac:2d:b2: c0:1f:33:5e:ed:d9:96:57:14:9b:a4:37:d8:a0:3d: e4:2c:56:95:4d:75:68:4f:77:06:24:e0:0f:e9:b6: de:6f:dd:a7:f6:93:dc:f3:48:10:fa:fb:90:b5:43: 42:0b:9d:d7:e9:0c:2c:69:7b:3a:4f:73:31:00:0c: ba:15:cc:dd:77:a6:a9:f9:21:b8:97:aa:b7:a4:99: 6c:08:a0:8e:9f:b8:29:47:df:db:b9:b0:39:e5:4f: be:47:2f:93:76:5b:6b:02:fe:ec:66:31:c2:de:8e: 0a:67:89:a4:70:cb:32:40:db:63:00:57:40:b4:8e: b8:24:e4:de:33:62:24:7a:e5:b2:18:41:54:f7:98: d9:f5:c8:23:1e:88:5a:a6:1c:7e:92:0f:92:56:49: 0e:5a:dc:49:4b:d1:f8:1b:73:b0:31:6f:37:7e:cf: 91:f4:40:e6:8b:36:11:fb:0f:79:ea:d2:80:f5:8e: c1:24:d2:fe:2f:c1:58:6d:32:2e:04:64:b2:20:d2: cd:a1:79:8b:08:25:8f:1e:89:fe:43:3f:bf:de:49: f2:fa:bb:d7:52:6e:19:8f:4c:b6:6e:4f:59:48:63: e2:c9:55:0f:58:89:93:85:e0:58:ee:80:16:5f:c4: 77:b9 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96 X509v3 Authority Key Identifier: C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96 Authority Information Access: CA Issuers - URI:http://url-for-aia/Root.cer X509v3 CRL Distribution Points: Full Name: URI:http://url-for-crl/Root.crl X509v3 Key Usage: critical Certificate Sign, CRL Sign X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha256WithRSAEncryption Signature Value: 68:2f:fb:af:72:54:4d:44:20:01:20:d2:62:e6:b2:f7:d2:e3: 6c:b9:6a:04:e2:1e:55:0f:23:aa:4e:e3:06:5e:38:d5:50:49: da:09:64:d5:98:83:53:15:3f:58:94:93:1f:db:38:d3:8c:5b: 56:7b:1b:6f:1d:e9:0c:df:54:7e:18:46:a5:8e:f0:8f:af:62: 5a:5d:0a:5d:ea:2c:be:59:a1:ee:5b:36:26:74:29:c5:5a:48: e4:04:cc:9c:0b:33:55:55:fa:b2:9b:16:f5:81:70:ec:f9:73: 81:0e:b0:d4:68:26:d4:78:3f:e0:cb:e4:d3:3f:65:f8:ff:f1: 5a:1d:42:c9:fa:be:8f:95:d2:5b:d2:a8:76:de:48:b5:7c:d1: ba:e6:45:4f:ce:b2:ed:7e:bf:20:12:94:3c:43:cc:40:49:a1: d8:04:f6:09:a4:3e:d1:40:cd:eb:04:70:ce:9c:1b:09:8c:4d: 43:f6:9e:09:01:3f:cb:88:83:69:28:ea:9e:ae:3e:a9:c8:db: b4:7c:18:88:ac:03:c6:bd:a7:9e:dc:d3:96:c0:27:26:b0:02: 1a:68:7d:67:6e:72:35:8e:ff:b2:f7:53:de:96:54:6c:78:91: 03:9a:9b:33:c2:79:94:b4:68:b7:ad:49:22:bb:e0:b2:80:ac: 9d:18:05:f8 -----BEGIN CERTIFICATE----- MIIDeDCCAmCgAwIBAgIUM1eZ/Yek4VGqlI+X8Z0y0bAiw2wwDQYJKoZIhvcNAQEL BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQDMss13j77JpRet5awtssAfM17t2ZZXFJukN9igPeQsVpVNdWhPdwYk4A/p tt5v3af2k9zzSBD6+5C1Q0ILndfpDCxpezpPczEADLoVzN13pqn5IbiXqrekmWwI oI6fuClH39u5sDnlT75HL5N2W2sC/uxmMcLejgpniaRwyzJA22MAV0C0jrgk5N4z YiR65bIYQVT3mNn1yCMeiFqmHH6SD5JWSQ5a3ElL0fgbc7Axbzd+z5H0QOaLNhH7 D3nq0oD1jsEk0v4vwVhtMi4EZLIg0s2heYsIJY8eif5DP7/eSfL6u9dSbhmPTLZu T1lIY+LJVQ9YiZOF4FjugBZfxHe5AgMBAAGjgcswgcgwHQYDVR0OBBYEFMQBFuWg FhApYmd70SJCbG8VK6+WMB8GA1UdIwQYMBaAFMQBFuWgFhApYmd70SJCbG8VK6+W MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG 9w0BAQsFAAOCAQEAaC/7r3JUTUQgASDSYuay99LjbLlqBOIeVQ8jqk7jBl441VBJ 2glk1ZiDUxU/WJSTH9s404xbVnsbbx3pDN9UfhhGpY7wj69iWl0KXeosvlmh7ls2 JnQpxVpI5ATMnAszVVX6spsW9YFw7PlzgQ6w1Ggm1Hg/4Mvk0z9l+P/xWh1Cyfq+ j5XSW9Kodt5ItXzRuuZFT86y7X6/IBKUPEPMQEmh2AT2CaQ+0UDN6wRwzpwbCYxN Q/aeCQE/y4iDaSjqnq4+qcjbtHwYiKwDxr2nntzTlsAnJrACGmh9Z25yNY7/svdT 3pZUbHiRA5qbM8J5lLRot61JIrvgsoCsnRgF+A== -----END CERTIFICATE-----