1Same test as rsa-pkcs1-sha1.pem except an extra NULL (0x05, 0x00) has been 2appended to the SPKI. 3 4The DER can still be parsed, however it should fail due to the unconsumed data 5at the end. 6 7 8 9-----BEGIN PUBLIC KEY----- 10MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQClbkoOcBAXWJpRh9x+qEHRVvLsDjatUqRN/rH 11mH3rZkdjFEFb/7bFitMDyg6EqiKOU3/Umq3KRy7MHzqv84LHf1c2VCAltWyuLbfXWce9jd8CSHL 12I8Jwpw4lmOb/idGfEFrMLT8Ms18pKA4Thrb2TE7yLh4fINDOjP+yJJvZohNwIDAQABBQA= 13-----END PUBLIC KEY----- 14 15$ openssl asn1parse -i < [PUBLIC KEY] 16 0:d=0 hl=3 l= 159 cons: SEQUENCE 17 3:d=1 hl=2 l= 13 cons: SEQUENCE 18 5:d=2 hl=2 l= 9 prim: OBJECT :rsaEncryption 19 16:d=2 hl=2 l= 0 prim: NULL 20 18:d=1 hl=3 l= 141 prim: BIT STRING 21 162:d=0 hl=2 l= 0 prim: NULL 22 23 24 25-----BEGIN ALGORITHM----- 26MA0GCSqGSIb3DQEBBQUA 27-----END ALGORITHM----- 28 29$ openssl asn1parse -i < [ALGORITHM] 30 0:d=0 hl=2 l= 13 cons: SEQUENCE 31 2:d=1 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption 32 13:d=1 hl=2 l= 0 prim: NULL 33 34 35 36-----BEGIN DATA----- 37zch9oiPXht87ReC7vHITJtHuKvgGzDFUdcxvDZxm4bYjcdRc4jkuGskoRMMQEC8Vag2NUsH0xAu 38jqmUJV4bLdpdXplY7qVj+0LzJhOi1F6PV9RWyO4pB50qoZ2k/kN+wYabobfqu5kRywA5fIJRXKc 39vr538Gznjgj0CY+6QfnWGTwDF+i2DUtghKy0LSnjgIo7w3LYXjMRcPy/fMctC3HClmSLOk0Q9BY 40pXQgHqmJcqydE/Z6o/SI8QlNwKYKL0WvgJUbxMP0uM7k20mduCK7RtzMYt1CgFn0A== 41-----END DATA----- 42 43 44 45-----BEGIN SIGNATURE----- 46A4GBAGvDoGZWhCkwokfjDVhktNgZI2unxollhirX28TiSvKOhrtTHwM1i+X7dHd8YIb4UMrviT8 47Nb8wtDJHsATaTtOoAuAzUmqxOy1+JEa/lOa2kqPOCPR0T5HLRSQVHxlnHYX89JAh9228rcglhZ/ 48wJfKsY6aRY/LY0zc6O41iUxITX 49-----END SIGNATURE----- 50 51$ openssl asn1parse -i < [SIGNATURE] 52 0:d=0 hl=3 l= 129 prim: BIT STRING 53