• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1[Created by: generate-chains.py]
2
3Certificate chain where the root certificate contains a basic constraints
4extension that indicates it is NOT a CA.
5
6Certificate:
7    Data:
8        Version: 3 (0x2)
9        Serial Number:
10            6a:33:a7:7b:9f:65:b9:e0:d2:be:48:ba:f7:f8:a0:3f:bd:05:6f:10
11        Signature Algorithm: sha256WithRSAEncryption
12        Issuer: CN=Intermediate
13        Validity
14            Not Before: Oct  5 12:00:00 2021 GMT
15            Not After : Oct  5 12:00:00 2022 GMT
16        Subject: CN=Target
17        Subject Public Key Info:
18            Public Key Algorithm: rsaEncryption
19                RSA Public-Key: (2048 bit)
20                Modulus:
21                    00:b3:7d:07:29:33:df:ea:eb:78:7f:88:ef:13:78:
22                    ff:42:10:a6:ae:9c:8d:9e:c6:48:37:77:a4:2c:27:
23                    81:cd:a9:b2:54:b5:84:cd:0a:a1:90:11:28:1d:85:
24                    0f:9a:88:a4:a1:75:36:42:53:19:71:4d:da:17:02:
25                    9f:80:94:58:55:87:23:47:47:be:8a:64:15:d6:15:
26                    6f:fe:73:a2:e7:e8:5a:01:48:33:ae:21:a1:7c:a3:
27                    3a:58:fc:2c:25:f5:ab:ff:bb:3d:ff:e1:2f:62:d8:
28                    79:ec:e5:d6:b0:33:dc:ce:68:ca:f5:96:b7:0e:5f:
29                    22:80:09:e8:ca:6c:14:64:84:97:a9:c0:bf:57:e4:
30                    ad:42:46:c6:58:07:2d:12:18:a2:d1:1f:5d:40:0e:
31                    93:19:eb:a0:4b:49:f5:1e:f6:8b:f9:6f:37:96:e4:
32                    07:04:71:bc:da:d4:e0:3f:3d:4e:3e:71:40:e8:39:
33                    27:ab:c8:2d:b4:22:45:51:32:8a:c4:21:10:84:fe:
34                    ba:74:3e:72:8e:64:66:24:f6:a2:7a:f9:10:29:9d:
35                    48:59:57:a9:0a:59:b4:00:60:5c:e1:93:4f:53:23:
36                    a1:2e:a3:a3:eb:49:2c:8a:d1:2d:ba:bb:57:c3:a4:
37                    5f:78:85:4b:8d:b0:6a:89:f0:cc:ba:be:60:89:a8:
38                    9c:49
39                Exponent: 65537 (0x10001)
40        X509v3 extensions:
41            X509v3 Subject Key Identifier:
42                72:41:94:01:8B:5E:D8:39:1C:E1:A1:6F:76:49:3E:9F:93:09:60:3A
43            X509v3 Authority Key Identifier:
44                keyid:7A:10:56:B4:5F:2F:4E:7E:28:92:1A:46:EE:EB:8F:1E:A0:B6:3B:02
45
46            Authority Information Access:
47                CA Issuers - URI:http://url-for-aia/Intermediate.cer
48
49            X509v3 CRL Distribution Points:
50
51                Full Name:
52                  URI:http://url-for-crl/Intermediate.crl
53
54            X509v3 Key Usage: critical
55                Digital Signature, Key Encipherment
56            X509v3 Extended Key Usage:
57                TLS Web Server Authentication, TLS Web Client Authentication
58    Signature Algorithm: sha256WithRSAEncryption
59         35:95:99:64:3a:7f:b4:cd:b7:14:89:22:99:11:0a:66:93:eb:
60         a3:b2:33:65:59:f7:e8:aa:b5:2f:19:41:11:15:b9:ea:72:34:
61         26:75:26:61:6a:28:76:58:c3:78:ed:a1:c1:dc:06:1d:e0:10:
62         0c:ba:d3:c2:b1:35:9e:19:9f:3b:fa:a0:2f:a3:49:48:89:ce:
63         0e:3c:ab:e9:0a:5f:38:bd:a3:e0:c9:8c:6d:fb:67:d2:12:ef:
64         98:46:be:ad:8d:f3:75:a3:20:c1:0b:e0:76:05:b0:b2:c4:c8:
65         ac:70:3c:db:34:3d:93:56:dd:b0:15:d2:1f:90:27:1e:08:5a:
66         26:48:9d:96:69:32:4f:ed:75:fe:35:4a:b8:8d:74:c7:f1:54:
67         2e:91:b7:2b:d7:c1:2d:1d:68:75:f9:0b:89:0a:9d:88:e9:98:
68         1e:ce:08:59:36:ba:45:d1:80:19:a1:b4:38:4a:d3:bb:ef:ee:
69         e6:ef:24:29:1a:7c:c5:30:dd:69:25:78:af:ff:0e:98:2f:28:
70         0f:2e:fc:49:e3:e2:f1:8f:42:63:a4:31:d5:64:b9:95:3f:4e:
71         a7:35:43:81:72:d8:50:d0:52:02:41:aa:40:34:df:20:13:71:
72         c8:3b:d6:2a:e3:86:dd:25:ce:5f:1f:e2:96:49:b3:59:89:8c:
73         42:ff:25:05
74-----BEGIN CERTIFICATE-----
75MIIDoDCCAoigAwIBAgIUajOne59lueDSvki69/igP70FbxAwDQYJKoZIhvcNAQEL
76BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTIxMTAwNTEyMDAwMFoXDTIy
77MTAwNTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF
78AAOCAQ8AMIIBCgKCAQEAs30HKTPf6ut4f4jvE3j/QhCmrpyNnsZIN3ekLCeBzamy
79VLWEzQqhkBEoHYUPmoikoXU2QlMZcU3aFwKfgJRYVYcjR0e+imQV1hVv/nOi5+ha
80AUgzriGhfKM6WPwsJfWr/7s9/+EvYth57OXWsDPczmjK9Za3Dl8igAnoymwUZISX
81qcC/V+StQkbGWActEhii0R9dQA6TGeugS0n1HvaL+W83luQHBHG82tTgPz1OPnFA
826Dknq8gttCJFUTKKxCEQhP66dD5yjmRmJPaievkQKZ1IWVepClm0AGBc4ZNPUyOh
83LqOj60ksitEturtXw6RfeIVLjbBqifDMur5giaicSQIDAQABo4HpMIHmMB0GA1Ud
84DgQWBBRyQZQBi17YORzhoW92ST6fkwlgOjAfBgNVHSMEGDAWgBR6EFa0Xy9OfiiS
85Gkbu648eoLY7AjA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91
86cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0
87dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF
88oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD
89ggEBADWVmWQ6f7TNtxSJIpkRCmaT66OyM2VZ9+iqtS8ZQREVuepyNCZ1JmFqKHZY
90w3jtocHcBh3gEAy608KxNZ4Znzv6oC+jSUiJzg48q+kKXzi9o+DJjG37Z9IS75hG
91vq2N83WjIMEL4HYFsLLEyKxwPNs0PZNW3bAV0h+QJx4IWiZInZZpMk/tdf41SriN
92dMfxVC6RtyvXwS0daHX5C4kKnYjpmB7OCFk2ukXRgBmhtDhK07vv7ubvJCkafMUw
933WkleK//DpgvKA8u/Enj4vGPQmOkMdVkuZU/Tqc1Q4Fy2FDQUgJBqkA03yATccg7
941irjht0lzl8f4pZJs1mJjEL/JQU=
95-----END CERTIFICATE-----
96
97Certificate:
98    Data:
99        Version: 3 (0x2)
100        Serial Number:
101            17:c3:5e:ff:9e:fa:1b:f7:ec:b7:42:5e:7c:00:3a:7e:d7:5e:08:56
102        Signature Algorithm: sha256WithRSAEncryption
103        Issuer: CN=Root
104        Validity
105            Not Before: Oct  5 12:00:00 2021 GMT
106            Not After : Oct  5 12:00:00 2022 GMT
107        Subject: CN=Intermediate
108        Subject Public Key Info:
109            Public Key Algorithm: rsaEncryption
110                RSA Public-Key: (2048 bit)
111                Modulus:
112                    00:bb:be:bc:29:e3:c0:a2:2b:12:a7:b2:77:ff:30:
113                    a1:03:d7:b9:aa:0b:7d:b4:2a:4b:e4:cb:72:cb:5e:
114                    ff:34:16:06:51:e2:e5:bf:a0:ae:0b:19:34:c3:45:
115                    b1:2b:df:94:3c:9c:00:1c:bf:1f:69:a5:a6:08:04:
116                    20:c9:0a:0d:c2:69:0b:a6:63:63:ab:9b:76:5b:d0:
117                    1e:d1:20:32:02:bc:4d:4b:02:7e:8a:6c:90:34:b1:
118                    2b:ae:88:da:99:fd:e0:77:f6:97:54:dc:f5:53:64:
119                    83:87:70:f9:03:c4:aa:45:2c:78:bc:b0:9b:fa:11:
120                    eb:a0:8c:a4:62:12:c2:82:ee:70:83:a8:8f:19:26:
121                    1c:f0:60:e4:17:20:bf:4c:d8:76:90:42:0d:cd:82:
122                    fe:e9:38:39:ca:d8:72:c0:8f:cf:98:4d:af:47:82:
123                    77:63:a7:6e:c0:e8:ac:f8:4c:a8:b1:b0:20:09:03:
124                    74:67:cc:24:5f:91:24:4a:38:05:ca:64:3e:b7:e0:
125                    03:a5:79:44:71:32:19:31:cb:0a:02:84:39:8a:a7:
126                    10:c7:6b:60:72:81:16:3f:9c:ac:f8:af:46:c4:21:
127                    f4:88:30:a8:8d:62:82:1c:36:8d:b0:d9:00:bb:b5:
128                    8c:e5:7a:89:de:6c:fd:3f:f0:e1:12:50:8c:1c:02:
129                    1f:e9
130                Exponent: 65537 (0x10001)
131        X509v3 extensions:
132            X509v3 Subject Key Identifier:
133                7A:10:56:B4:5F:2F:4E:7E:28:92:1A:46:EE:EB:8F:1E:A0:B6:3B:02
134            X509v3 Authority Key Identifier:
135                keyid:9E:16:CB:63:0C:02:2E:E7:DC:BA:AA:D5:D2:10:B0:E0:F7:2D:14:6D
136
137            Authority Information Access:
138                CA Issuers - URI:http://url-for-aia/Root.cer
139
140            X509v3 CRL Distribution Points:
141
142                Full Name:
143                  URI:http://url-for-crl/Root.crl
144
145            X509v3 Key Usage: critical
146                Certificate Sign, CRL Sign
147            X509v3 Basic Constraints: critical
148                CA:TRUE
149    Signature Algorithm: sha256WithRSAEncryption
150         2c:1c:2e:0a:e4:22:a2:d9:ec:79:c6:31:61:9e:18:05:6a:b6:
151         b3:f0:b9:51:72:36:81:88:01:aa:6b:9c:f9:8e:84:32:f7:9f:
152         1c:06:2d:c0:39:81:37:c4:dc:3f:97:ba:9a:6b:fb:b1:27:f2:
153         de:c6:40:94:e7:54:8d:91:85:56:ee:16:af:07:bd:a7:11:7c:
154         e1:25:94:26:73:bb:13:62:11:ea:c2:a8:5e:8b:f3:55:5c:df:
155         13:f0:ed:b9:35:e7:dd:9b:50:23:9d:e1:d0:3d:61:d2:d5:89:
156         e0:98:e9:1f:cd:27:70:65:5e:13:1b:62:1b:fd:7b:55:1d:04:
157         ea:6e:0b:f1:ae:71:93:47:91:98:88:9b:9a:a3:97:86:84:d2:
158         ac:5d:ba:c4:65:58:c2:80:38:9c:ae:ff:97:28:2a:c2:93:76:
159         b0:36:fb:04:b3:a1:41:37:ff:bc:60:27:95:b5:d2:85:9f:90:
160         92:e9:e5:78:ee:cb:01:6e:25:9c:d3:e8:d0:44:9c:b9:96:e4:
161         35:01:57:52:24:27:91:d8:3e:e3:db:df:57:f5:c3:7d:64:ff:
162         39:e0:e7:c3:f9:be:8a:e8:d0:fa:63:5d:df:f7:17:f7:98:30:
163         df:86:f3:e9:68:33:23:92:e7:de:75:42:de:79:77:74:26:67:
164         56:95:9c:4f
165-----BEGIN CERTIFICATE-----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185-----END CERTIFICATE-----
186
187Certificate:
188    Data:
189        Version: 3 (0x2)
190        Serial Number:
191            17:c3:5e:ff:9e:fa:1b:f7:ec:b7:42:5e:7c:00:3a:7e:d7:5e:08:55
192        Signature Algorithm: sha256WithRSAEncryption
193        Issuer: CN=Root
194        Validity
195            Not Before: Oct  5 12:00:00 2021 GMT
196            Not After : Oct  5 12:00:00 2022 GMT
197        Subject: CN=Root
198        Subject Public Key Info:
199            Public Key Algorithm: rsaEncryption
200                RSA Public-Key: (2048 bit)
201                Modulus:
202                    00:a8:a5:0e:06:b7:99:51:ad:fd:57:50:ba:00:3c:
203                    ce:4b:a5:f8:a1:6d:00:ae:32:93:30:ec:a3:1b:58:
204                    e3:09:5e:4e:61:fa:7f:f1:21:1a:a6:8d:bd:72:21:
205                    e6:6d:82:33:7e:20:be:66:54:a6:42:92:18:db:43:
206                    ef:09:93:d8:b4:6e:64:78:ce:b4:3b:9f:44:62:9f:
207                    73:dd:e9:0f:11:ce:9a:a1:82:dd:32:04:71:f2:46:
208                    03:e2:a1:7c:36:2f:78:de:97:b8:7b:da:3a:6a:b8:
209                    81:7c:d1:76:17:72:3c:a6:ba:74:4b:38:db:6b:47:
210                    d3:52:f1:e0:ad:17:4f:48:fe:2b:7a:a5:28:aa:52:
211                    12:4c:f6:c2:4e:23:b5:b2:eb:9c:e1:6b:91:05:b0:
212                    a7:3f:64:6f:bc:08:96:78:de:9f:ed:27:5b:d8:33:
213                    b6:80:aa:80:40:a7:a3:c4:96:37:71:9a:ef:a6:2b:
214                    5d:07:e9:8d:e5:9b:84:4a:ac:db:52:68:b9:80:74:
215                    be:ce:a7:c2:fe:b7:45:37:b2:c2:e9:0f:f9:54:15:
216                    ab:7e:e9:c6:86:05:4a:26:f8:b6:3f:ec:a7:0a:4e:
217                    00:a1:73:3e:f3:db:77:38:0f:bc:37:9b:7c:cb:4d:
218                    fc:ab:4b:d1:a2:ff:7d:1d:b1:d2:14:0d:74:bc:a4:
219                    8d:11
220                Exponent: 65537 (0x10001)
221        X509v3 extensions:
222            X509v3 Subject Key Identifier:
223                9E:16:CB:63:0C:02:2E:E7:DC:BA:AA:D5:D2:10:B0:E0:F7:2D:14:6D
224            X509v3 Authority Key Identifier:
225                keyid:9E:16:CB:63:0C:02:2E:E7:DC:BA:AA:D5:D2:10:B0:E0:F7:2D:14:6D
226
227            Authority Information Access:
228                CA Issuers - URI:http://url-for-aia/Root.cer
229
230            X509v3 CRL Distribution Points:
231
232                Full Name:
233                  URI:http://url-for-crl/Root.crl
234
235            X509v3 Key Usage: critical
236                Certificate Sign, CRL Sign
237            X509v3 Basic Constraints: critical
238                CA:FALSE
239    Signature Algorithm: sha256WithRSAEncryption
240         14:3a:09:30:fd:00:d7:9d:11:56:f0:a8:22:0f:6b:be:c5:0b:
241         5a:5d:b3:88:0f:9f:d2:7d:fc:9f:c7:ef:bd:dc:c8:3b:61:a7:
242         3b:54:a0:2c:29:e7:4e:8b:b5:6f:39:de:57:bc:5b:4a:5f:0d:
243         6d:49:40:5a:73:b3:8a:f0:dc:fc:f7:56:b0:2e:32:44:40:c9:
244         bb:19:07:ad:dd:e7:64:89:2e:31:3c:bb:4a:05:af:99:e3:74:
245         05:46:62:a8:07:65:19:b5:2f:dd:23:87:06:4d:57:38:77:33:
246         b8:2b:67:a2:cc:8f:a0:bc:e4:22:b6:e5:b6:bb:f0:67:77:08:
247         f5:ea:3c:ea:d1:52:f6:64:c1:51:f4:fd:d1:01:8f:eb:29:5b:
248         5b:77:69:2b:23:b2:ab:d6:4f:f4:70:bd:d1:ef:e3:94:63:f3:
249         b2:5e:86:3f:48:32:d4:03:c8:d0:e9:45:8a:36:16:64:4f:89:
250         e7:3a:be:2b:8a:d0:9d:3a:c8:92:36:92:2d:f5:dc:c4:19:cb:
251         a1:9a:e7:ab:42:17:e0:30:76:06:8d:9e:1f:dd:ab:d4:d9:34:
252         6a:54:6c:43:1e:d8:a5:a6:b9:80:84:02:23:9e:40:0d:45:0b:
253         23:d1:89:13:0a:af:10:17:bd:70:b3:26:b7:95:4c:f9:b4:1b:
254         82:d4:1c:49
255-----BEGIN CERTIFICATE-----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275-----END CERTIFICATE-----
276