• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1[Created by: generate-chains.py]
2
3Certificate chain where the intermediate contains an unknown non-critical
4extension.
5
6Certificate:
7    Data:
8        Version: 3 (0x2)
9        Serial Number:
10            15:0f:e8:d3:8e:fb:9a:03:b3:58:55:cb:3f:cf:6d:78:a5:26:b4:1f
11        Signature Algorithm: sha256WithRSAEncryption
12        Issuer: CN=Intermediate
13        Validity
14            Not Before: Oct  5 12:00:00 2021 GMT
15            Not After : Oct  5 12:00:00 2022 GMT
16        Subject: CN=Target
17        Subject Public Key Info:
18            Public Key Algorithm: rsaEncryption
19                RSA Public-Key: (2048 bit)
20                Modulus:
21                    00:c1:45:b7:c7:2a:57:db:f0:c6:44:38:af:69:b5:
22                    8a:33:9c:bf:ba:bf:19:8f:a4:96:5f:61:74:0c:3c:
23                    95:c0:24:0a:a9:55:c9:3b:a3:1c:93:b3:d8:d8:40:
24                    92:4f:c9:c0:9c:51:41:bb:ee:eb:ef:83:4b:d2:a5:
25                    2f:da:74:90:bc:45:3a:62:7b:5a:e2:0e:9e:b3:83:
26                    c2:8e:67:02:a2:4f:4b:8a:5b:33:19:16:3e:0f:f6:
27                    01:f6:b6:c2:6c:17:8f:63:d2:91:3e:6a:2d:08:c8:
28                    7c:51:f8:24:2f:dc:f7:74:24:0e:b6:9b:85:c8:2b:
29                    82:81:0f:04:5f:d6:53:1e:53:2f:7e:1c:16:fc:3a:
30                    77:f3:7f:51:1a:16:e0:7a:a4:05:89:d3:4a:9d:91:
31                    03:db:a5:6d:6e:60:cb:f9:40:53:0f:5d:f8:b4:70:
32                    23:5a:c7:ff:bf:45:1c:f1:21:8c:4a:9b:11:f7:8c:
33                    df:9f:8a:94:be:2b:16:f1:9b:07:90:0d:ff:28:1c:
34                    0e:4c:21:36:4e:18:86:50:2d:24:c0:d3:ce:f5:66:
35                    a2:96:28:01:56:ba:97:d9:f9:fe:c6:0c:af:2f:34:
36                    c3:b7:e1:b3:8a:85:3d:52:ef:fc:61:10:97:17:35:
37                    95:fb:c8:e2:ae:49:1f:b4:8a:a7:70:76:b7:c7:df:
38                    6b:71
39                Exponent: 65537 (0x10001)
40        X509v3 extensions:
41            X509v3 Subject Key Identifier:
42                49:9D:A7:97:77:91:95:74:7C:01:DC:46:BB:A1:09:4F:19:65:53:D1
43            X509v3 Authority Key Identifier:
44                keyid:07:F3:ED:92:2A:F7:2C:67:60:A8:EF:86:B2:9B:CC:97:5C:FA:CF:5A
45
46            Authority Information Access:
47                CA Issuers - URI:http://url-for-aia/Intermediate.cer
48
49            X509v3 CRL Distribution Points:
50
51                Full Name:
52                  URI:http://url-for-crl/Intermediate.crl
53
54            X509v3 Key Usage: critical
55                Digital Signature, Key Encipherment
56            X509v3 Extended Key Usage:
57                TLS Web Server Authentication, TLS Web Client Authentication
58    Signature Algorithm: sha256WithRSAEncryption
59         33:e2:3f:e9:5d:75:96:92:fd:8a:2e:93:5d:79:9d:8e:a0:c4:
60         d9:e8:8e:06:c9:76:91:56:3b:53:be:af:b8:0a:02:1a:5e:4e:
61         f1:c1:68:5a:42:3b:1f:f8:2e:f8:f2:62:65:9f:e0:2d:5c:46:
62         bf:9f:87:e3:e6:3f:59:43:11:fe:68:9c:9f:81:aa:20:2c:42:
63         56:1d:fc:d3:61:57:92:17:e4:cc:e1:e8:e0:1f:a8:d4:f0:f2:
64         ae:cc:cb:f7:e4:23:7e:2b:3d:b9:2c:8d:c3:1b:07:bb:02:42:
65         f4:d1:96:68:aa:68:50:ec:e7:e1:91:53:c3:54:b2:9c:2c:a7:
66         d9:27:b1:54:58:45:2f:ed:88:4b:3a:13:54:df:a3:45:3a:79:
67         f1:e0:b7:73:05:8e:df:0e:3e:74:5b:c5:ea:75:0a:75:25:71:
68         86:20:60:d0:48:bc:b1:4c:d2:23:70:68:6d:80:1d:24:0f:da:
69         4e:b5:5c:26:f8:5b:e3:d9:4c:2b:68:9f:b8:74:77:e4:ff:2a:
70         6f:0f:29:64:ec:1a:68:89:a4:81:dc:3a:31:7a:70:a5:28:ff:
71         78:8f:ec:aa:f8:3a:38:75:93:ee:52:ed:f5:b4:cb:2d:04:3b:
72         cd:52:f2:da:19:1c:08:f8:8c:bb:18:0e:52:0b:51:ce:ed:40:
73         7e:fc:a3:2e
74-----BEGIN CERTIFICATE-----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95-----END CERTIFICATE-----
96
97Certificate:
98    Data:
99        Version: 3 (0x2)
100        Serial Number:
101            29:7e:4d:0e:76:59:e5:dd:a7:55:bf:98:47:02:50:e5:71:03:33:72
102        Signature Algorithm: sha256WithRSAEncryption
103        Issuer: CN=Root
104        Validity
105            Not Before: Oct  5 12:00:00 2021 GMT
106            Not After : Oct  5 12:00:00 2022 GMT
107        Subject: CN=Intermediate
108        Subject Public Key Info:
109            Public Key Algorithm: rsaEncryption
110                RSA Public-Key: (2048 bit)
111                Modulus:
112                    00:c9:47:61:13:ce:5c:97:1f:40:92:f1:86:de:28:
113                    e0:4e:e8:70:01:3a:19:75:23:4f:bd:7b:ec:b6:45:
114                    5f:aa:5e:2c:58:bd:ed:17:3c:ad:fc:74:4e:97:48:
115                    71:a3:ce:04:90:0f:cf:78:62:89:58:18:66:c5:b7:
116                    c9:a2:80:48:57:ee:64:a8:17:90:8c:e1:51:6d:a3:
117                    79:21:d0:67:9f:82:ba:89:70:6e:54:32:67:e2:f5:
118                    d7:8c:de:f8:6f:21:86:26:11:89:e7:7a:52:ab:25:
119                    a4:e9:53:0d:01:58:04:a1:8e:ce:93:52:36:33:82:
120                    17:6f:4c:cd:5c:9b:ee:42:96:2f:5c:ef:e4:c1:8b:
121                    db:78:ad:af:e3:9f:b6:1c:be:f1:1d:36:9b:63:92:
122                    37:be:ea:27:49:b7:7b:89:73:93:2c:b2:cb:bb:74:
123                    d4:a6:c2:fe:08:ae:e8:bc:e3:40:a7:4d:97:db:14:
124                    26:6b:c8:02:d3:95:4a:9b:7b:12:69:d3:3f:e9:88:
125                    07:d7:49:26:6f:87:85:aa:0f:be:88:3c:a7:f0:9f:
126                    7f:21:f0:96:35:26:71:f1:f9:33:3f:f8:c8:92:64:
127                    c1:7a:6a:6b:52:a8:54:dc:88:5c:75:93:81:7f:4f:
128                    cc:c5:cf:51:4b:87:ff:4e:3c:e2:76:08:2d:fc:4d:
129                    cf:0f
130                Exponent: 65537 (0x10001)
131        X509v3 extensions:
132            X509v3 Subject Key Identifier:
133                07:F3:ED:92:2A:F7:2C:67:60:A8:EF:86:B2:9B:CC:97:5C:FA:CF:5A
134            X509v3 Authority Key Identifier:
135                keyid:5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
136
137            Authority Information Access:
138                CA Issuers - URI:http://url-for-aia/Root.cer
139
140            X509v3 CRL Distribution Points:
141
142                Full Name:
143                  URI:http://url-for-crl/Root.crl
144
145            X509v3 Key Usage: critical
146                Certificate Sign, CRL Sign
147            X509v3 Basic Constraints: critical
148                CA:TRUE
149            1.2.3.4:
150                ....
151    Signature Algorithm: sha256WithRSAEncryption
152         74:bf:7a:bf:eb:53:13:85:45:70:1a:ab:4a:a0:0b:75:e4:4c:
153         48:c0:b5:d8:b9:7c:47:cc:96:31:89:bc:7b:af:aa:02:99:de:
154         6f:ce:d6:67:94:13:17:4f:7d:ee:43:da:a1:d3:06:9f:84:fc:
155         c1:98:26:5a:8e:85:fb:00:63:85:42:bd:83:f8:28:18:0d:17:
156         48:30:95:eb:d1:67:eb:5d:c9:fc:26:ad:a0:c9:8e:d7:61:01:
157         70:01:21:8e:ec:1c:fa:14:de:97:52:f2:c2:4f:bc:63:50:c9:
158         a6:26:35:41:d3:04:04:a1:f1:b4:51:46:49:ab:0d:bd:af:76:
159         c6:fe:12:35:42:15:8d:17:1b:69:c7:46:70:d4:9a:f5:bb:ee:
160         95:44:3e:af:5f:ae:42:4d:ba:e8:65:9c:4d:ea:8a:d4:c9:e5:
161         6e:c3:d4:29:93:78:d6:48:ea:e8:94:c6:27:a3:df:e5:d0:07:
162         86:6d:16:81:62:5a:af:4c:a5:b3:21:f2:88:03:e5:be:5b:84:
163         4d:96:0f:d0:cf:35:85:23:b7:a1:4b:cf:fc:f1:ca:a4:91:c7:
164         12:44:d8:e6:fa:aa:84:f8:1e:74:59:d5:04:5a:8b:f2:b8:6b:
165         59:8d:29:59:24:35:2d:e2:dc:e8:4b:6b:f7:e5:92:da:bd:4f:
166         b3:cb:dd:93
167-----BEGIN CERTIFICATE-----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188-----END CERTIFICATE-----
189
190Certificate:
191    Data:
192        Version: 3 (0x2)
193        Serial Number:
194            29:7e:4d:0e:76:59:e5:dd:a7:55:bf:98:47:02:50:e5:71:03:33:71
195        Signature Algorithm: sha256WithRSAEncryption
196        Issuer: CN=Root
197        Validity
198            Not Before: Oct  5 12:00:00 2021 GMT
199            Not After : Oct  5 12:00:00 2022 GMT
200        Subject: CN=Root
201        Subject Public Key Info:
202            Public Key Algorithm: rsaEncryption
203                RSA Public-Key: (2048 bit)
204                Modulus:
205                    00:d0:c9:04:2a:e3:2c:61:f5:b8:fe:95:cf:f0:4f:
206                    49:3a:13:bf:16:40:fd:16:d5:31:53:5b:2c:16:94:
207                    96:7b:63:43:b0:04:9f:0c:9f:f9:30:48:94:ad:03:
208                    c7:84:48:a0:9e:eb:7a:a4:d7:09:f7:48:4d:1d:d8:
209                    05:59:46:52:33:43:a7:6c:c1:66:b4:8e:5a:3e:8a:
210                    5b:bc:18:09:ff:c3:5b:c2:d7:1f:00:e1:5d:85:b1:
211                    b6:8b:aa:ac:7a:9e:30:37:d8:57:c6:d8:82:f5:23:
212                    80:16:2b:ff:95:5b:dc:24:61:0b:0f:62:14:e8:dd:
213                    ee:5c:30:86:6d:4e:e9:99:b5:61:d1:94:cf:4c:f9:
214                    c4:92:be:22:59:2d:be:ca:2c:d3:8d:9f:8e:ea:d3:
215                    88:dc:cd:69:21:18:64:d2:66:23:50:d4:ca:38:76:
216                    09:3d:f5:cc:42:91:a2:12:f1:f4:cb:86:83:7c:0d:
217                    87:f7:89:a7:eb:ff:99:19:c6:04:22:b5:05:18:ca:
218                    04:60:d3:61:b8:b2:b1:64:cf:c4:15:af:a4:62:f6:
219                    a1:c6:cc:f9:f9:3d:3e:25:7c:03:a6:a6:17:d6:43:
220                    90:7d:d8:04:f6:27:c7:79:cf:c9:96:b4:b3:b7:0e:
221                    0a:fc:c4:ea:b4:ce:7e:67:e7:21:33:92:cc:11:af:
222                    f2:9b
223                Exponent: 65537 (0x10001)
224        X509v3 extensions:
225            X509v3 Subject Key Identifier:
226                5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
227            X509v3 Authority Key Identifier:
228                keyid:5E:73:41:09:27:46:17:12:6B:62:FF:2E:78:20:DE:7A:59:ED:29:84
229
230            Authority Information Access:
231                CA Issuers - URI:http://url-for-aia/Root.cer
232
233            X509v3 CRL Distribution Points:
234
235                Full Name:
236                  URI:http://url-for-crl/Root.crl
237
238            X509v3 Key Usage: critical
239                Certificate Sign, CRL Sign
240            X509v3 Basic Constraints: critical
241                CA:TRUE
242    Signature Algorithm: sha256WithRSAEncryption
243         44:c3:bb:ad:70:3c:de:02:bc:50:57:0c:f4:aa:02:d1:40:10:
244         fc:02:26:1c:39:9e:1e:cf:2e:cd:44:a1:c3:88:9b:53:9f:0f:
245         20:83:0e:f4:96:3b:3d:5e:55:6c:ce:71:3d:ad:9c:43:77:ad:
246         01:35:89:6d:a0:e7:07:34:7d:d7:d6:bd:a6:ae:33:53:01:0e:
247         92:32:70:d8:87:33:ad:94:b5:2e:f9:f9:51:44:9b:bc:33:71:
248         6c:ba:28:06:b4:19:63:06:e3:a2:73:bd:6e:b8:1e:55:9f:05:
249         20:58:d6:af:d2:39:66:07:ce:df:63:e8:65:47:ee:10:78:aa:
250         f5:21:a0:99:f9:9c:a0:fc:3a:74:74:f1:76:6c:0f:74:ba:07:
251         a1:e7:65:05:ff:52:c5:e6:c8:ee:37:fa:36:af:7a:6f:47:a8:
252         44:99:73:d3:fd:84:1d:90:e4:27:d7:4b:11:28:bb:91:b3:3a:
253         c0:ab:6f:5a:da:8f:b8:3b:d6:cf:65:a3:dc:c5:9b:48:97:d0:
254         e2:7f:20:3c:7f:48:3f:59:1a:31:bb:ce:14:60:12:38:74:dc:
255         50:95:84:3b:d2:d7:9f:9f:0b:1e:74:5e:69:71:af:46:d9:9e:
256         02:20:5b:a9:a2:8f:be:e1:9f:c2:91:7c:05:b0:8e:48:f8:b7:
257         ec:26:8c:70
258-----BEGIN CERTIFICATE-----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278-----END CERTIFICATE-----
279