Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(1125)

Side by Side Diff: net/data/verify_certificate_chain_unittest/intermediary-basic-constraints-not-critical.pem

Issue 1410713005: NOT FOR REVIEW.... (Closed) Base URL: https://chromium.googlesource.com/chromium/src.git@extension_parsing
Patch Set: Created 5 years, 2 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch
OLDNEW
(Empty)
1 [Created by: generate-intermediary-basic-constraints-not-critical.py]
2
3 Simple certificate chain with 1 intermediary and a trusted
4 root. The intermediary has a basic constraints extension but does not mark it
5 as critical.
6
7 Certificate:
8 Data:
9 Version: 3 (0x2)
10 Serial Number: 1 (0x1)
11 Signature Algorithm: sha256WithRSAEncryption
12 Issuer: CN=Intermediary
13 Validity
14 Not Before: Jan 1 12:00:00 2015 GMT
15 Not After : Jan 1 12:00:00 2016 GMT
16 Subject: CN=Target
17 Subject Public Key Info:
18 Public Key Algorithm: rsaEncryption
19 Public-Key: (2048 bit)
20 Modulus:
21 00:e6:e3:e8:e4:eb:a1:68:42:6a:a4:d2:9e:27:e8:
22 4e:9a:05:fd:8d:a0:53:1c:38:22:40:03:9f:f2:df:
23 45:9a:07:cf:7d:b9:b6:23:3e:80:7d:a5:5d:08:9a:
24 16:ec:7f:b4:1b:37:09:50:7b:1d:d9:ee:db:58:d8:
25 72:ae:e6:51:5c:1b:36:ab:81:b1:d6:ed:84:a3:38:
26 00:9e:47:c9:56:c4:2d:1d:bc:c8:c5:ed:55:52:1e:
27 b5:4b:a8:2f:23:2c:e6:3a:3f:e2:27:77:93:f6:c9:
28 e2:cb:94:fd:7b:32:63:79:d2:34:9b:28:e3:a0:70:
29 a3:75:b8:e5:ca:b7:10:2c:fd:5b:4d:a8:8c:2b:b4:
30 ad:8d:d5:d0:96:de:1c:45:e7:0e:47:8a:b7:ce:05:
31 0b:3c:56:58:5a:5f:7d:fa:7c:e8:c0:aa:fc:f1:90:
32 d3:0d:59:9b:07:60:09:0f:8c:93:41:df:99:f2:44:
33 ef:85:96:e1:09:f0:9b:f7:05:b7:da:b1:47:80:fa:
34 02:e8:0c:83:7b:de:be:1a:20:f1:e2:bb:6f:a2:20:
35 ac:38:42:81:07:49:71:c8:ca:c8:b3:31:9c:1a:8e:
36 18:54:e6:82:9f:96:7d:d6:2d:f3:d5:eb:e6:32:58:
37 fe:ea:00:79:64:46:bd:0a:b0:bf:43:51:38:c6:07:
38 66:57
39 Exponent: 65537 (0x10001)
40 X509v3 extensions:
41 X509v3 Subject Key Identifier:
42 BC:B2:6E:AC:84:BA:FB:7A:F9:D5:99:26:D4:1A:DA:58:A9:46:1B:B2
43 X509v3 Authority Key Identifier:
44 keyid:D8:89:56:5D:5C:5A:1E:89:78:18:20:B5:1E:72:64:2B:EB:9C:D7:1 C
45
46 Authority Information Access:
47 CA Issuers - URI:http://url-for-aia/Intermediary.cer
48
49 X509v3 CRL Distribution Points:
50
51 Full Name:
52 URI:http://url-for-crl/Intermediary.crl
53
54 X509v3 Key Usage: critical
55 Digital Signature, Key Encipherment
56 X509v3 Extended Key Usage:
57 TLS Web Server Authentication, TLS Web Client Authentication
58 Signature Algorithm: sha256WithRSAEncryption
59 97:85:da:f0:27:d1:60:e1:7e:dc:bd:f1:2b:0f:e5:de:c0:f9:
60 cf:15:4d:3d:fa:cb:cb:17:3c:58:92:55:01:91:65:13:02:b8:
61 47:6e:5d:d7:ec:41:fa:bf:e0:6f:0a:b8:db:5f:47:e7:0f:a0:
62 c6:1e:03:9e:fb:02:f0:3d:4b:9e:4b:f4:c3:4b:59:ae:53:9a:
63 08:6c:06:91:33:7b:1c:1d:70:7e:6e:1a:78:ee:09:67:18:9a:
64 cd:c1:4f:8d:41:b0:75:fe:14:e7:d0:bc:53:17:f3:63:41:76:
65 c7:5e:1b:44:cd:bc:a4:f8:c7:8d:eb:6d:40:3a:ef:2a:1e:38:
66 a2:6e:9d:ad:46:42:34:27:ee:4b:ea:cb:27:e5:c3:a7:bc:4a:
67 40:b3:69:69:5c:d4:32:83:84:54:43:a3:74:e1:ba:1a:fb:56:
68 99:0f:2c:14:2e:1f:a1:29:78:f7:be:d1:6b:f5:0a:05:0f:d4:
69 52:6f:aa:f2:81:1f:40:ac:84:cb:ff:08:ad:a2:e8:bf:e3:03:
70 34:da:9a:1d:9b:26:5d:86:70:90:bf:c2:aa:da:a2:4c:2e:da:
71 2b:d3:7f:bd:38:4a:e4:c7:0e:57:9c:4b:2b:bb:2f:4a:6d:7a:
72 e8:cb:6c:4d:52:1e:d1:b9:10:5d:b9:db:fb:67:f6:76:ba:65:
73 d7:4e:1c:79
74 -----BEGIN CERTIFICATE-----
75 MIIDjTCCAnWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl
76 cm1lZGlhcnkwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD
77 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDm4+jk
78 66FoQmqk0p4n6E6aBf2NoFMcOCJAA5/y30WaB899ubYjPoB9pV0Imhbsf7QbNwlQ
79 ex3Z7ttY2HKu5lFcGzargbHW7YSjOACeR8lWxC0dvMjF7VVSHrVLqC8jLOY6P+In
80 d5P2yeLLlP17MmN50jSbKOOgcKN1uOXKtxAs/VtNqIwrtK2N1dCW3hxF5w5HirfO
81 BQs8VlhaX336fOjAqvzxkNMNWZsHYAkPjJNB35nyRO+FluEJ8Jv3BbfasUeA+gLo
82 DIN73r4aIPHiu2+iIKw4QoEHSXHIysizMZwajhhU5oKfln3WLfPV6+YyWP7qAHlk
83 Rr0KsL9DUTjGB2ZXAgMBAAGjgekwgeYwHQYDVR0OBBYEFLyybqyEuvt6+dWZJtQa
84 2lipRhuyMB8GA1UdIwQYMBaAFNiJVl1cWh6JeBggtR5yZCvrnNccMD8GCCsGAQUF
85 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk
86 aWFyeS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu
87 dGVybWVkaWFyeS5jcmwwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUF
88 BwMBBggrBgEFBQcDAjANBgkqhkiG9w0BAQsFAAOCAQEAl4Xa8CfRYOF+3L3xKw/l
89 3sD5zxVNPfrLyxc8WJJVAZFlEwK4R25d1+xB+r/gbwq4219H5w+gxh4DnvsC8D1L
90 nkv0w0tZrlOaCGwGkTN7HB1wfm4aeO4JZxiazcFPjUGwdf4U59C8UxfzY0F2x14b
91 RM28pPjHjettQDrvKh44om6drUZCNCfuS+rLJ+XDp7xKQLNpaVzUMoOEVEOjdOG6
92 GvtWmQ8sFC4foSl4977Ra/UKBQ/UUm+q8oEfQKyEy/8IraLov+MDNNqaHZsmXYZw
93 kL/CqtqiTC7aK9N/vThK5McOV5xLK7svSm166MtsTVIe0bkQXbnb+2f2drpl104c
94 eQ==
95 -----END CERTIFICATE-----
96
97 Certificate:
98 Data:
99 Version: 3 (0x2)
100 Serial Number: 2 (0x2)
101 Signature Algorithm: sha256WithRSAEncryption
102 Issuer: CN=Root
103 Validity
104 Not Before: Jan 1 12:00:00 2015 GMT
105 Not After : Jan 1 12:00:00 2016 GMT
106 Subject: CN=Intermediary
107 Subject Public Key Info:
108 Public Key Algorithm: rsaEncryption
109 Public-Key: (2048 bit)
110 Modulus:
111 00:9c:3f:b7:83:c7:4f:4c:23:b4:b3:0c:73:e3:d1:
112 25:3b:b6:6e:17:7f:f2:64:26:90:bf:e0:26:fc:4a:
113 af:10:0c:05:2a:c1:88:ce:cd:b7:ae:b3:73:e8:ca:
114 bc:ae:8a:0a:8a:8f:4d:eb:fe:71:ec:1b:af:80:71:
115 75:90:9a:34:64:a1:0a:88:f0:80:56:9c:90:6c:51:
116 80:db:a8:3c:65:f9:39:82:97:c1:0b:7f:32:bd:3e:
117 59:bf:22:29:50:ec:8b:f3:d0:ea:e5:9e:e2:e1:6a:
118 90:20:83:12:d6:37:ce:59:23:22:1e:df:32:67:30:
119 a8:83:0c:17:7e:4e:90:53:b8:04:9a:33:20:57:79:
120 3c:51:36:52:ea:c4:eb:a0:0e:2b:e5:a7:44:2a:31:
121 92:2c:97:a0:92:11:cf:1f:5b:ac:70:fa:61:73:6d:
122 c6:b8:e6:18:87:b4:4e:cf:8f:71:f5:d0:27:f7:99:
123 0d:d5:06:bc:c9:8a:6d:83:c5:60:85:3a:32:bb:91:
124 91:63:63:e6:0e:46:74:4b:c9:7d:d0:2d:60:da:2d:
125 26:c7:32:a3:a5:db:c0:ef:01:65:11:24:c1:5d:b6:
126 80:bd:b6:8b:b2:54:5e:aa:a9:69:fd:e5:e0:52:a7:
127 78:ce:0c:47:cf:33:a7:19:77:5f:4f:e5:e5:80:81:
128 f0:77
129 Exponent: 65537 (0x10001)
130 X509v3 extensions:
131 X509v3 Subject Key Identifier:
132 D8:89:56:5D:5C:5A:1E:89:78:18:20:B5:1E:72:64:2B:EB:9C:D7:1C
133 X509v3 Authority Key Identifier:
134 keyid:57:B0:A0:49:FC:14:4D:FB:F8:61:9F:00:FB:E2:3B:1D:76:06:AA:5 E
135
136 Authority Information Access:
137 CA Issuers - URI:http://url-for-aia/Root.cer
138
139 X509v3 CRL Distribution Points:
140
141 Full Name:
142 URI:http://url-for-crl/Root.crl
143
144 X509v3 Key Usage: critical
145 Certificate Sign, CRL Sign
146 X509v3 Basic Constraints:
147 CA:TRUE
148 Signature Algorithm: sha256WithRSAEncryption
149 af:d1:9c:3c:f5:d4:93:2b:30:ce:57:73:ed:1c:aa:03:b7:32:
150 4c:e9:d1:41:5e:f6:52:df:42:f5:fe:92:5a:9a:b7:81:ac:b5:
151 c2:95:54:37:67:8d:e9:fa:75:7d:d4:bd:b2:e7:47:e7:92:a7:
152 a6:24:02:1f:9e:14:45:9b:fb:a9:97:3d:52:b3:5d:6b:bf:a4:
153 5c:65:72:1a:55:68:d9:59:83:79:50:ce:d7:b2:7c:9c:c2:98:
154 e8:79:6c:57:c1:7b:10:09:c0:5f:2c:da:83:11:cd:2c:8b:fb:
155 52:ab:58:5e:5a:82:ac:b6:1a:17:68:f8:41:2d:0c:b4:6c:f0:
156 18:9b:d3:d3:49:2a:4a:8c:c3:85:71:35:c4:27:b1:ab:de:e0:
157 22:bf:ad:5f:73:70:9f:38:38:a2:cc:05:be:78:3d:c6:e0:9b:
158 8c:cc:8e:c7:1a:d1:c7:5d:37:01:cb:46:83:81:26:f9:5c:41:
159 ba:5f:84:54:52:50:f6:da:a9:67:f0:a1:ab:1c:8a:c6:bc:91:
160 73:5d:8a:73:dd:98:fa:7a:29:98:71:e1:89:f7:8f:a3:16:aa:
161 83:0d:3c:83:f1:d1:52:9b:bb:5e:43:6f:b8:f2:d0:48:2c:24:
162 58:6c:24:d1:4b:16:c2:60:84:ba:36:c1:8b:89:d1:fb:1a:d9:
163 53:b9:62:6e
164 -----BEGIN CERTIFICATE-----
165 MIIDajCCAlKgAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290
166 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50
167 ZXJtZWRpYXJ5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnD+3g8dP
168 TCO0swxz49ElO7ZuF3/yZCaQv+Am/EqvEAwFKsGIzs23rrNz6Mq8rooKio9N6/5x
169 7BuvgHF1kJo0ZKEKiPCAVpyQbFGA26g8Zfk5gpfBC38yvT5ZvyIpUOyL89Dq5Z7i
170 4WqQIIMS1jfOWSMiHt8yZzCogwwXfk6QU7gEmjMgV3k8UTZS6sTroA4r5adEKjGS
171 LJegkhHPH1uscPphc23GuOYYh7ROz49x9dAn95kN1Qa8yYptg8VghToyu5GRY2Pm
172 DkZ0S8l90C1g2i0mxzKjpdvA7wFlESTBXbaAvbaLslReqqlp/eXgUqd4zgxHzzOn
173 GXdfT+XlgIHwdwIDAQABo4HIMIHFMB0GA1UdDgQWBBTYiVZdXFoeiXgYILUecmQr
174 65zXHDAfBgNVHSMEGDAWgBRXsKBJ/BRN+/hhnwD74jsddgaqXjA3BggrBgEFBQcB
175 AQQrMCkwJwYIKwYBBQUHMAKGG2h0dHA6Ly91cmwtZm9yLWFpYS9Sb290LmNlcjAs
176 BgNVHR8EJTAjMCGgH6AdhhtodHRwOi8vdXJsLWZvci1jcmwvUm9vdC5jcmwwDgYD
177 VR0PAQH/BAQDAgEGMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAK/R
178 nDz11JMrMM5Xc+0cqgO3Mkzp0UFe9lLfQvX+klqat4GstcKVVDdnjen6dX3UvbLn
179 R+eSp6YkAh+eFEWb+6mXPVKzXWu/pFxlchpVaNlZg3lQzteyfJzCmOh5bFfBexAJ
180 wF8s2oMRzSyL+1KrWF5agqy2Ghdo+EEtDLRs8Bib09NJKkqMw4VxNcQnsave4CK/
181 rV9zcJ84OKLMBb54Pcbgm4zMjsca0cddNwHLRoOBJvlcQbpfhFRSUPbaqWfwoasc
182 isa8kXNdinPdmPp6KZhx4Yn3j6MWqoMNPIPx0VKbu15Db7jy0EgsJFhsJNFLFsJg
183 hLo2wYuJ0fsa2VO5Ym4=
184 -----END CERTIFICATE-----
185
186 Certificate:
187 Data:
188 Version: 3 (0x2)
189 Serial Number: 1 (0x1)
190 Signature Algorithm: sha256WithRSAEncryption
191 Issuer: CN=Root
192 Validity
193 Not Before: Jan 1 12:00:00 2015 GMT
194 Not After : Jan 1 12:00:00 2016 GMT
195 Subject: CN=Root
196 Subject Public Key Info:
197 Public Key Algorithm: rsaEncryption
198 Public-Key: (2048 bit)
199 Modulus:
200 00:d1:26:67:07:c1:b5:20:d0:5d:b5:cb:7e:20:ea:
201 43:20:53:fa:86:e1:03:65:4e:d9:0f:fa:8c:38:ac:
202 74:38:da:57:57:e1:fd:04:85:93:b9:c3:79:cc:33:
203 dc:79:10:40:33:25:0a:d9:d8:ca:fe:5e:f8:b0:7c:
204 bb:86:94:b5:ea:6f:cd:55:fe:35:d4:f7:7b:20:79:
205 6d:c4:8d:0d:a7:64:9c:1c:4c:d8:47:53:08:8c:f2:
206 bc:80:22:f2:a6:f9:8c:61:7c:02:1a:fd:b8:f7:59:
207 b0:c0:3a:7a:65:84:5b:00:52:c6:0b:c8:23:00:4f:
208 69:59:d8:9f:b9:e9:ef:fa:a1:68:82:2c:6b:72:6a:
209 5a:a9:d5:51:44:c2:4a:f8:81:93:93:d0:e7:8d:ae:
210 57:ec:c9:81:d6:1a:fd:38:95:43:11:b8:be:39:24:
211 32:47:51:0f:6c:e1:3d:df:54:a0:4c:ef:f7:35:7c:
212 31:3c:d8:a4:68:07:19:9f:ef:ed:e0:84:c8:ff:88:
213 9d:80:3a:83:e0:ec:6e:8f:bf:82:b6:27:b3:a7:6c:
214 6e:f2:bd:8e:69:a6:e5:f1:1c:7a:d1:01:fd:0b:22:
215 af:26:82:8a:cc:ba:1c:fe:e3:5f:97:da:13:61:3f:
216 10:a8:e3:3b:21:de:f7:a1:fb:aa:eb:49:ca:d5:f1:
217 ed:7d
218 Exponent: 65537 (0x10001)
219 X509v3 extensions:
220 X509v3 Subject Key Identifier:
221 57:B0:A0:49:FC:14:4D:FB:F8:61:9F:00:FB:E2:3B:1D:76:06:AA:5E
222 X509v3 Authority Key Identifier:
223 keyid:57:B0:A0:49:FC:14:4D:FB:F8:61:9F:00:FB:E2:3B:1D:76:06:AA:5 E
224
225 Authority Information Access:
226 CA Issuers - URI:http://url-for-aia/Root.cer
227
228 X509v3 CRL Distribution Points:
229
230 Full Name:
231 URI:http://url-for-crl/Root.crl
232
233 X509v3 Key Usage: critical
234 Certificate Sign, CRL Sign
235 X509v3 Basic Constraints: critical
236 CA:TRUE
237 Signature Algorithm: sha256WithRSAEncryption
238 13:2c:77:90:a3:14:3d:8b:96:f2:6d:6e:14:d4:8a:46:f7:04:
239 9d:03:72:a0:c5:08:f3:ba:af:c7:36:b5:c3:67:9e:9e:52:f4:
240 a1:eb:8f:6d:bc:a3:ef:d1:af:df:2e:50:61:75:92:8f:72:be:
241 ae:db:1d:50:c6:e7:bb:2b:04:d6:9c:d5:35:f2:04:e3:68:3b:
242 4a:98:4b:93:16:67:2a:82:13:55:ad:de:be:16:59:61:f1:6c:
243 19:87:ad:70:3d:91:b4:c1:01:36:23:77:62:9b:86:a4:33:49:
244 f2:90:bf:5f:30:43:2e:22:be:ff:27:d1:40:88:18:42:52:0b:
245 30:40:a3:08:68:ab:c9:05:6e:a7:41:5d:c0:82:b6:97:6c:bb:
246 34:48:64:d0:5b:de:e1:1e:8b:46:23:02:9a:d3:1b:0d:7d:71:
247 2d:3c:04:c7:47:d3:2b:4e:e6:78:2a:22:23:13:a5:03:b4:f4:
248 8e:5d:71:12:bc:a4:1f:4d:bd:87:c5:aa:58:24:10:30:24:fc:
249 b6:bc:1b:e2:e7:56:6c:aa:d9:f1:bb:c9:43:7e:35:56:d8:35:
250 92:11:bb:1c:0d:1e:2a:6a:17:fa:cc:34:27:bc:58:ec:40:2b:
251 55:b9:06:f5:f3:35:09:a2:df:d8:38:9a:92:14:3e:fa:cd:a2:
252 aa:b1:ca:eb
253 -----BEGIN TRUSTED_CERTIFICATE-----
254 MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290
255 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v
256 dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANEmZwfBtSDQXbXLfiDq
257 QyBT+obhA2VO2Q/6jDisdDjaV1fh/QSFk7nDecwz3HkQQDMlCtnYyv5e+LB8u4aU
258 tepvzVX+NdT3eyB5bcSNDadknBxM2EdTCIzyvIAi8qb5jGF8Ahr9uPdZsMA6emWE
259 WwBSxgvIIwBPaVnYn7np7/qhaIIsa3JqWqnVUUTCSviBk5PQ542uV+zJgdYa/TiV
260 QxG4vjkkMkdRD2zhPd9UoEzv9zV8MTzYpGgHGZ/v7eCEyP+InYA6g+Dsbo+/grYn
261 s6dsbvK9jmmm5fEcetEB/QsiryaCisy6HP7jX5faE2E/EKjjOyHe96H7qutJytXx
262 7X0CAwEAAaOByzCByDAdBgNVHQ4EFgQUV7CgSfwUTfv4YZ8A++I7HXYGql4wHwYD
263 VR0jBBgwFoAUV7CgSfwUTfv4YZ8A++I7HXYGql4wNwYIKwYBBQUHAQEEKzApMCcG
264 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw
265 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE
266 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQATLHeQoxQ9
267 i5bybW4U1IpG9wSdA3KgxQjzuq/HNrXDZ56eUvSh649tvKPv0a/fLlBhdZKPcr6u
268 2x1Qxue7KwTWnNU18gTjaDtKmEuTFmcqghNVrd6+Fllh8WwZh61wPZG0wQE2I3di
269 m4akM0nykL9fMEMuIr7/J9FAiBhCUgswQKMIaKvJBW6nQV3AgraXbLs0SGTQW97h
270 HotGIwKa0xsNfXEtPATHR9MrTuZ4KiIjE6UDtPSOXXESvKQfTb2HxapYJBAwJPy2
271 vBvi51Zsqtnxu8lDfjVW2DWSEbscDR4qahf6zDQnvFjsQCtVuQb18zUJot/YOJqS
272 FD76zaKqscrr
273 -----END TRUSTED_CERTIFICATE-----
274
275 -----BEGIN TIME-----
276 MTYwMzAyMTIwMDAwWg==
277 -----END TIME-----
278
279 -----BEGIN VERIFY_RESULT-----
280 U1VDQ0VTUw==
281 -----END VERIFY_RESULT-----
OLDNEW

Powered by Google App Engine
This is Rietveld 408576698