[Created by: generate-chains.py] Certificate chain where the leaf certificate lacks an extended key usage extension. Certificate: Data: Version: 3 (0x2) Serial Number: 7f:73:f7:58:6c:9c:cb:aa:d7:aa:99:67:42:a3:18:c8:ae:3e:20:ea Signature Algorithm: sha256WithRSAEncryption Issuer: CN=Intermediate Validity Not Before: Oct 5 12:00:00 2021 GMT Not After : Oct 5 12:00:00 2022 GMT Subject: CN=Target Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public-Key: (2048 bit) Modulus: 00:c0:9e:a5:77:70:28:bc:8f:18:ce:a2:39:65:81: 18:d9:31:0a:ee:23:09:81:cd:82:36:98:a5:82:2e: b1:fc:59:a8:46:49:06:16:60:eb:12:46:2c:85:a8: c0:75:7b:2d:45:0f:09:ba:d6:a9:fd:88:0f:d6:97: 78:1e:5d:51:cc:1a:94:1e:2e:b8:82:4e:e3:0c:aa: 58:1b:c6:dd:fd:d2:a3:92:6c:0a:ae:5e:ca:56:87: 9a:6c:bd:89:32:99:5b:da:33:dd:7a:ed:a7:c5:e1: 02:de:25:5b:17:6a:f5:15:8a:31:71:c7:c0:24:7c: 55:c4:8e:cf:4c:03:fd:7f:f4:e1:90:cc:1a:5e:b5: f1:4b:2e:7a:2f:69:06:2a:86:76:33:88:ef:b2:e0: 84:52:98:03:eb:98:7b:16:25:65:6a:a6:5a:fa:37: b5:a1:70:74:5e:96:87:62:78:a4:d4:05:60:97:3a: f9:4c:86:49:0d:54:db:79:8d:68:56:58:83:ee:8f: 1a:da:d7:3a:06:78:6e:75:f0:a9:99:3a:22:a3:06: ee:58:a2:2b:d1:ea:4a:a7:8a:c8:bd:43:f8:b1:70: 4f:fb:51:b6:22:78:cf:5c:c6:dc:80:33:3d:f5:92: 6d:91:c9:1b:7e:87:37:28:76:b4:ff:7f:6d:52:9b: c7:e5 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: 49:EA:B2:99:05:EC:D6:35:F4:11:A5:DD:F1:99:31:AE:C0:D8:B8:08 X509v3 Authority Key Identifier: keyid:7C:05:F1:0D:0B:C4:F8:8E:33:4C:F1:AE:78:6A:2C:16:AD:79:D0:A6 Authority Information Access: CA Issuers - URI:http://url-for-aia/Intermediate.cer X509v3 CRL Distribution Points: Full Name: URI:http://url-for-crl/Intermediate.crl X509v3 Key Usage: critical Digital Signature, Key Encipherment Signature Algorithm: sha256WithRSAEncryption 6a:9a:5e:84:45:65:db:25:7e:aa:12:b8:d8:53:b8:e1:cb:fa: 91:31:75:a3:9f:74:15:2f:6e:a3:4d:86:26:43:ac:80:37:77: 03:a6:e6:4c:6a:5e:3f:16:f5:3a:e1:6c:86:b7:d3:d4:95:08: 6f:7e:ca:5c:1b:b0:63:1b:bd:15:44:c5:5e:26:9c:f3:38:69: 7b:ae:23:80:e9:20:62:c3:58:30:1c:3f:fb:a5:06:eb:e9:d7: ad:d6:52:5d:c8:fb:f8:41:81:c7:6f:f9:e8:3e:73:86:08:eb: bd:7a:fa:95:39:cc:2f:3a:ed:09:cc:d8:d8:a0:66:99:fc:d2: e8:33:f8:cd:a2:bd:31:7a:77:3a:6b:e2:bc:38:c4:ad:7e:33: 23:e0:5f:c1:30:d7:cb:48:96:33:08:f4:c7:28:a5:4a:ee:2e: 16:fd:dd:35:bf:6e:21:27:28:e5:f3:eb:13:65:f0:99:a4:89: 2f:db:a9:1f:98:81:dc:a4:78:4f:8a:78:1a:64:d1:35:41:00: d8:d6:25:cd:1c:5e:bb:50:9c:a3:f3:cc:04:16:9d:b0:8f:94: e9:db:7a:5a:07:6c:13:4a:b9:0e:7b:00:40:8c:72:a1:d1:ea: fc:49:c4:1c:c5:45:28:85:8b:33:af:fd:c9:89:ed:2a:6f:d4: 20:c6:c2:6c -----BEGIN CERTIFICATE----- MIIDgTCCAmmgAwIBAgIUf3P3WGycy6rXqplnQqMYyK4+IOowDQYJKoZIhvcNAQEL BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTIxMTAwNTEyMDAwMFoXDTIy MTAwNTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF AAOCAQ8AMIIBCgKCAQEAwJ6ld3AovI8YzqI5ZYEY2TEK7iMJgc2CNpilgi6x/Fmo RkkGFmDrEkYshajAdXstRQ8Jutap/YgP1pd4Hl1RzBqUHi64gk7jDKpYG8bd/dKj kmwKrl7KVoeabL2JMplb2jPdeu2nxeEC3iVbF2r1FYoxccfAJHxVxI7PTAP9f/Th kMwaXrXxSy56L2kGKoZ2M4jvsuCEUpgD65h7FiVlaqZa+je1oXB0XpaHYnik1AVg lzr5TIZJDVTbeY1oVliD7o8a2tc6BnhudfCpmToiowbuWKIr0epKp4rIvUP4sXBP +1G2InjPXMbcgDM99ZJtkckbfoc3KHa0/39tUpvH5QIDAQABo4HKMIHHMB0GA1Ud DgQWBBRJ6rKZBezWNfQRpd3xmTGuwNi4CDAfBgNVHSMEGDAWgBR8BfENC8T4jjNM 8a54aiwWrXnQpjA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF oDANBgkqhkiG9w0BAQsFAAOCAQEAappehEVl2yV+qhK42FO44cv6kTF1o590FS9u o02GJkOsgDd3A6bmTGpePxb1OuFshrfT1JUIb37KXBuwYxu9FUTFXiac8zhpe64j gOkgYsNYMBw/+6UG6+nXrdZSXcj7+EGBx2/56D5zhgjrvXr6lTnMLzrtCczY2KBm mfzS6DP4zaK9MXp3OmvivDjErX4zI+BfwTDXy0iWMwj0xyilSu4uFv3dNb9uISco 5fPrE2XwmaSJL9upH5iB3KR4T4p4GmTRNUEA2NYlzRxeu1Cco/PMBBadsI+U6dt6 WgdsE0q5DnsAQIxyodHq/EnEHMVFKIWLM6/9yYntKm/UIMbCbA== -----END CERTIFICATE----- Certificate: Data: Version: 3 (0x2) Serial Number: 09:de:a4:e8:b3:85:c2:b7:74:4d:d4:dd:42:5f:7f:11:3b:90:4f:38 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=Root Validity Not Before: Oct 5 12:00:00 2021 GMT Not After : Oct 5 12:00:00 2022 GMT Subject: CN=Intermediate Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public-Key: (2048 bit) Modulus: 00:96:3d:06:43:c1:e6:7e:de:e8:e7:d0:e0:3e:d5: a8:1f:08:fe:98:ef:b9:a3:3d:0f:14:a5:3e:85:27: 6a:a2:aa:8c:3b:f6:21:43:12:2d:c8:9c:b3:cf:a8: ee:4f:8c:b7:3f:7f:49:49:a3:dc:17:3b:4b:28:2a: 93:ae:e1:df:7e:22:b2:1d:9c:5f:43:59:a5:4e:55: dd:db:55:46:55:83:6d:48:76:ef:3f:77:24:58:d3: 7b:78:28:05:7c:66:7c:79:90:99:61:b6:cc:2d:b6: ef:36:ca:11:3b:b5:65:c8:73:91:b0:10:12:17:a3: e1:1c:ea:c7:dc:9c:b3:66:3d:ec:bb:a3:3e:99:e0: 04:98:4d:9c:b5:62:ad:16:71:22:00:68:ef:e6:42: f6:05:28:4d:88:16:05:51:82:f6:d8:83:91:0c:13: 4c:3c:6e:d6:22:2a:52:da:37:56:a9:24:18:ba:8f: 2e:65:d9:3a:4b:e0:a3:69:94:3b:16:5e:4a:cc:a8: 6e:32:6d:f8:74:15:32:c8:9f:af:06:11:81:db:9a: 65:cf:01:05:2f:65:4b:71:4e:92:1c:06:51:7f:29: 57:e9:24:9f:89:f9:80:63:25:97:90:42:56:f8:e1: 26:61:b2:48:b3:20:9b:9a:9b:34:4e:2f:03:06:a7: dc:11 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: 7C:05:F1:0D:0B:C4:F8:8E:33:4C:F1:AE:78:6A:2C:16:AD:79:D0:A6 X509v3 Authority Key Identifier: keyid:F2:26:B1:CF:39:F4:1E:77:A5:A1:DA:65:4B:C4:D0:12:C9:53:25:AE Authority Information Access: CA Issuers - URI:http://url-for-aia/Root.cer X509v3 CRL Distribution Points: Full Name: URI:http://url-for-crl/Root.crl X509v3 Key Usage: critical Certificate Sign, CRL Sign X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha256WithRSAEncryption c9:14:d8:f9:3b:c3:32:e8:6c:69:14:04:5d:27:d0:22:de:68: 87:3d:d4:df:f5:4d:98:f4:eb:c3:06:39:7a:58:46:0d:06:72: 4d:89:86:dd:40:b5:c1:42:7d:d4:33:72:5b:13:af:bd:cb:d9: 64:22:a3:cb:6c:41:6f:e4:cc:65:94:58:8a:10:95:0e:a3:02: 6b:4e:d1:44:bc:fa:1a:4a:86:89:49:f0:d9:2c:17:03:b0:9e: 57:54:ff:ae:90:5e:de:11:31:3a:7f:eb:63:3c:a3:d0:3b:ab: 6d:10:c1:8f:60:3e:19:1b:92:7f:77:1c:81:ad:0f:1d:80:dd: be:dc:b4:b9:46:ce:98:36:31:e8:5f:03:70:4a:36:a9:99:93: 0b:15:78:06:62:b8:d3:84:06:ff:6b:28:cf:ea:f3:2e:52:4f: 67:01:fe:61:28:bb:ec:23:2e:34:03:1d:b2:8a:43:5f:bc:e5: 3b:1a:c0:a3:9c:5e:57:b1:63:8b:10:9c:ec:aa:ee:bb:bc:2d: 4c:2a:11:bb:e7:90:46:63:d7:f7:18:cc:df:e1:51:41:dc:db: 91:41:ff:0a:6c:c9:9d:ff:0d:07:66:46:39:fd:cc:d1:4d:0d: b9:be:1e:36:d7:ad:e7:8a:f9:10:6a:3f:15:4e:06:64:c1:a7: 96:fc:4f:a5 -----BEGIN CERTIFICATE----- MIIDgDCCAmigAwIBAgIUCd6k6LOFwrd0TdTdQl9/ETuQTzgwDQYJKoZIhvcNAQEL BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD ggEPADCCAQoCggEBAJY9BkPB5n7e6OfQ4D7VqB8I/pjvuaM9DxSlPoUnaqKqjDv2 IUMSLcics8+o7k+Mtz9/SUmj3Bc7Sygqk67h334ish2cX0NZpU5V3dtVRlWDbUh2 7z93JFjTe3goBXxmfHmQmWG2zC227zbKETu1ZchzkbAQEhej4Rzqx9ycs2Y97Luj PpngBJhNnLVirRZxIgBo7+ZC9gUoTYgWBVGC9tiDkQwTTDxu1iIqUto3VqkkGLqP LmXZOkvgo2mUOxZeSsyobjJt+HQVMsifrwYRgduaZc8BBS9lS3FOkhwGUX8pV+kk n4n5gGMll5BCVvjhJmGySLMgm5qbNE4vAwan3BECAwEAAaOByzCByDAdBgNVHQ4E FgQUfAXxDQvE+I4zTPGueGosFq150KYwHwYDVR0jBBgwFoAU8iaxzzn0Hnelodpl S8TQEslTJa4wNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ MA0GCSqGSIb3DQEBCwUAA4IBAQDJFNj5O8My6GxpFARdJ9Ai3miHPdTf9U2Y9OvD Bjl6WEYNBnJNiYbdQLXBQn3UM3JbE6+9y9lkIqPLbEFv5MxllFiKEJUOowJrTtFE vPoaSoaJSfDZLBcDsJ5XVP+ukF7eETE6f+tjPKPQO6ttEMGPYD4ZG5J/dxyBrQ8d gN2+3LS5Rs6YNjHoXwNwSjapmZMLFXgGYrjThAb/ayjP6vMuUk9nAf5hKLvsIy40 Ax2yikNfvOU7GsCjnF5XsWOLEJzsqu67vC1MKhG755BGY9f3GMzf4VFB3NuRQf8K bMmd/w0HZkY5/czRTQ25vh42163nivkQaj8VTgZkwaeW/E+l -----END CERTIFICATE----- Certificate: Data: Version: 3 (0x2) Serial Number: 09:de:a4:e8:b3:85:c2:b7:74:4d:d4:dd:42:5f:7f:11:3b:90:4f:37 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=Root Validity Not Before: Oct 5 12:00:00 2021 GMT Not After : Oct 5 12:00:00 2022 GMT Subject: CN=Root Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public-Key: (2048 bit) Modulus: 00:cd:e5:09:a9:89:90:93:c8:33:6e:5b:db:e8:8e: 12:b1:4a:dd:a2:3a:60:ad:e7:26:98:bc:5f:63:12: 8d:39:97:38:53:96:ef:65:d9:43:06:fb:e7:1f:8d: ac:32:87:84:ae:50:cc:8f:48:fa:b2:e2:7e:58:32: 2c:78:a0:c6:82:41:3c:4d:a1:01:43:0f:c4:a7:9d: 5d:24:16:39:b4:13:7b:09:b1:dc:3f:e5:ac:3b:d7: 53:b6:59:52:80:87:b2:12:65:6c:9c:fe:24:92:88: ca:5a:ec:e4:04:81:a4:88:b2:3f:39:e1:4d:6b:91: db:17:76:c3:0e:67:a4:5d:c8:e4:76:16:44:f7:76: ae:db:63:7f:37:70:d0:e5:fc:df:08:0f:2e:f9:08: 72:f6:65:4f:af:15:97:a3:4c:03:f9:8f:5f:69:f8: 97:d8:dd:fe:e7:2c:1d:a3:d8:53:46:df:5c:c5:8e: d8:38:41:ce:d7:ea:7f:f1:3b:0c:dd:13:dd:e7:2f: 44:24:aa:25:e3:eb:a1:8e:43:b1:5b:e3:b8:ad:aa: 1e:49:f0:77:40:64:ef:90:ad:72:a4:a0:d3:95:69: 96:4b:6d:08:34:97:cc:5e:5c:a5:08:c9:fa:66:60: ec:f9:aa:86:d8:bc:21:b7:78:bf:f2:28:01:41:3d: a4:9d Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: F2:26:B1:CF:39:F4:1E:77:A5:A1:DA:65:4B:C4:D0:12:C9:53:25:AE X509v3 Authority Key Identifier: keyid:F2:26:B1:CF:39:F4:1E:77:A5:A1:DA:65:4B:C4:D0:12:C9:53:25:AE Authority Information Access: CA Issuers - URI:http://url-for-aia/Root.cer X509v3 CRL Distribution Points: Full Name: URI:http://url-for-crl/Root.crl X509v3 Key Usage: critical Certificate Sign, CRL Sign X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha256WithRSAEncryption b5:df:1a:a1:ed:15:d9:ad:63:2e:b9:04:35:7c:fa:4c:fa:1f: 89:a8:2b:ce:5e:80:58:f4:5f:af:6f:20:3e:3a:bd:79:8f:ea: c0:ae:19:f2:a5:ea:d8:a1:fb:a0:b7:15:60:e6:d4:e1:70:e4: d4:67:87:02:e0:aa:f9:c3:74:04:97:54:2a:5a:22:18:94:1f: ab:51:61:2f:14:bf:a8:97:46:49:b6:92:53:d1:f9:85:c9:6d: 74:f8:dc:94:b3:3a:04:cb:16:4c:5e:d5:8b:b8:b9:b8:4e:58: 87:b9:bb:c8:f2:4e:99:55:4d:70:c0:7e:e4:e9:b8:7b:7e:6f: ca:42:bc:f5:ad:ce:ab:2e:32:88:e0:0a:a9:0d:47:b2:c6:ed: 13:6a:45:51:8f:3a:43:ed:0e:23:41:ca:b0:23:d2:14:3d:e3: 92:3a:36:50:09:a2:8c:56:cc:c9:ee:d7:b2:5c:e3:35:a9:b3: a6:34:54:53:c6:4e:72:7b:1a:77:14:4c:ab:ca:99:c2:ec:af: e1:96:87:f5:94:5d:90:8d:b6:29:ec:8e:18:85:3c:33:49:61: b4:8e:82:f4:37:62:9e:dd:06:66:df:95:3e:9a:c7:c0:a2:c6: 2f:b2:26:4d:e1:b8:e0:69:a0:36:ba:30:3a:01:b4:c2:02:35: 99:08:e7:99 -----BEGIN CERTIFICATE----- MIIDeDCCAmCgAwIBAgIUCd6k6LOFwrd0TdTdQl9/ETuQTzcwDQYJKoZIhvcNAQEL BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0yMTEwMDUxMjAwMDBaFw0yMjEwMDUxMjAw MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQDN5QmpiZCTyDNuW9vojhKxSt2iOmCt5yaYvF9jEo05lzhTlu9l2UMG++cf jawyh4SuUMyPSPqy4n5YMix4oMaCQTxNoQFDD8SnnV0kFjm0E3sJsdw/5aw711O2 WVKAh7ISZWyc/iSSiMpa7OQEgaSIsj854U1rkdsXdsMOZ6RdyOR2FkT3dq7bY383 cNDl/N8IDy75CHL2ZU+vFZejTAP5j19p+JfY3f7nLB2j2FNG31zFjtg4Qc7X6n/x OwzdE93nL0QkqiXj66GOQ7Fb47itqh5J8HdAZO+QrXKkoNOVaZZLbQg0l8xeXKUI yfpmYOz5qobYvCG3eL/yKAFBPaSdAgMBAAGjgcswgcgwHQYDVR0OBBYEFPImsc85 9B53paHaZUvE0BLJUyWuMB8GA1UdIwQYMBaAFPImsc859B53paHaZUvE0BLJUyWu MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG 9w0BAQsFAAOCAQEAtd8aoe0V2a1jLrkENXz6TPofiagrzl6AWPRfr28gPjq9eY/q wK4Z8qXq2KH7oLcVYObU4XDk1GeHAuCq+cN0BJdUKloiGJQfq1FhLxS/qJdGSbaS U9H5hcltdPjclLM6BMsWTF7Vi7i5uE5Yh7m7yPJOmVVNcMB+5Om4e35vykK89a3O qy4yiOAKqQ1HssbtE2pFUY86Q+0OI0HKsCPSFD3jkjo2UAmijFbMye7XslzjNamz pjRUU8ZOcnsadxRMq8qZwuyv4ZaH9ZRdkI22KeyOGIU8M0lhtI6C9Ddint0GZt+V PprHwKLGL7ImTeG44GmgNrowOgG0wgI1mQjnmQ== -----END CERTIFICATE-----