1Same test as rsa-pkcs1-sha1.pem except an extra NULL (0x05, 0x00) has been 2appended to the SPKI. 3 4The DER can still be parsed, however it should fail due to the unconsumed data 5at the end. 6 7 8$ openssl asn1parse -i < [PUBLIC KEY] 9 0:d=0 hl=3 l= 159 cons: SEQUENCE 10 3:d=1 hl=2 l= 13 cons: SEQUENCE 11 5:d=2 hl=2 l= 9 prim: OBJECT :rsaEncryption 12 16:d=2 hl=2 l= 0 prim: NULL 13 18:d=1 hl=3 l= 141 prim: BIT STRING 14 162:d=0 hl=2 l= 0 prim: NULL 15-----BEGIN PUBLIC KEY----- 16MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQClbkoOcBAXWJpRh9x+qEHRVvLsDjatUqRN/rH 17mH3rZkdjFEFb/7bFitMDyg6EqiKOU3/Umq3KRy7MHzqv84LHf1c2VCAltWyuLbfXWce9jd8CSHL 18I8Jwpw4lmOb/idGfEFrMLT8Ms18pKA4Thrb2TE7yLh4fINDOjP+yJJvZohNwIDAQABBQA= 19-----END PUBLIC KEY----- 20 21$ openssl asn1parse -i < [ALGORITHM] 22 0:d=0 hl=2 l= 13 cons: SEQUENCE 23 2:d=1 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption 24 13:d=1 hl=2 l= 0 prim: NULL 25-----BEGIN ALGORITHM----- 26MA0GCSqGSIb3DQEBBQUA 27-----END ALGORITHM----- 28 29-----BEGIN DATA----- 30zch9oiPXht87ReC7vHITJtHuKvgGzDFUdcxvDZxm4bYjcdRc4jkuGskoRMMQEC8Vag2NUsH0xAu 31jqmUJV4bLdpdXplY7qVj+0LzJhOi1F6PV9RWyO4pB50qoZ2k/kN+wYabobfqu5kRywA5fIJRXKc 32vr538Gznjgj0CY+6QfnWGTwDF+i2DUtghKy0LSnjgIo7w3LYXjMRcPy/fMctC3HClmSLOk0Q9BY 33pXQgHqmJcqydE/Z6o/SI8QlNwKYKL0WvgJUbxMP0uM7k20mduCK7RtzMYt1CgFn0A== 34-----END DATA----- 35 36$ openssl asn1parse -i < [SIGNATURE] 37 0:d=0 hl=3 l= 129 prim: BIT STRING 38-----BEGIN SIGNATURE----- 39A4GBAGvDoGZWhCkwokfjDVhktNgZI2unxollhirX28TiSvKOhrtTHwM1i+X7dHd8YIb4UMrviT8 40Nb8wtDJHsATaTtOoAuAzUmqxOy1+JEa/lOa2kqPOCPR0T5HLRSQVHxlnHYX89JAh9228rcglhZ/ 41wJfKsY6aRY/LY0zc6O41iUxITX 42-----END SIGNATURE----- 43