OLD | NEW |
(Empty) | |
| 1 [Created by: ./generate-key-rollover.py] |
| 2 |
| 3 A certificate tree with two self-signed root certificates(oldroot, newroot), |
| 4 and a third root certificate (newrootrollover) which has the same key as newroot |
| 5 but is signed by oldroot, all with the same subject and issuer. |
| 6 There are two intermediates with the same key, subject and issuer |
| 7 (oldintermediate signed by oldroot, and newintermediate signed by newroot). |
| 8 The target certificate is signed by the intermediate key. |
| 9 |
| 10 |
| 11 In graphical form: |
| 12 |
| 13 oldroot-------->newrootrollover newroot |
| 14 | | | |
| 15 v v v |
| 16 oldintermediate newintermediate |
| 17 | | |
| 18 +------------+-------------+ |
| 19 | |
| 20 v |
| 21 target |
| 22 |
| 23 |
| 24 Several chains are output: |
| 25 key-rollover-oldchain.pem: |
| 26 target<-oldintermediate<-oldroot |
| 27 key-rollover-rolloverchain.pem: |
| 28 target<-newintermediate<-newrootrollover<-oldroot |
| 29 key-rollover-longrolloverchain.pem: |
| 30 target<-newintermediate<-newroot<-newrootrollover<-oldroot |
| 31 key-rollover-newchain.pem: |
| 32 target<-newintermediate<-newroot |
| 33 |
| 34 All of these chains should verify successfully. |
| 35 |
| 36 |
| 37 Certificate: |
| 38 Data: |
| 39 Version: 3 (0x2) |
| 40 Serial Number: 1 (0x1) |
| 41 Signature Algorithm: sha256WithRSAEncryption |
| 42 Issuer: CN=Intermediate |
| 43 Validity |
| 44 Not Before: Jan 1 12:00:00 2015 GMT |
| 45 Not After : Jan 1 12:00:00 2016 GMT |
| 46 Subject: CN=Target |
| 47 Subject Public Key Info: |
| 48 Public Key Algorithm: rsaEncryption |
| 49 Public-Key: (2048 bit) |
| 50 Modulus: |
| 51 00:be:12:1c:48:e4:73:1f:5c:d2:54:a9:7b:58:1c: |
| 52 37:73:c2:49:26:3e:ed:b5:6b:55:17:c9:4c:52:34: |
| 53 ce:d9:76:86:32:74:74:ae:11:b2:99:1b:51:a0:33: |
| 54 48:34:2f:b9:d3:2b:06:c2:5c:29:53:35:ce:7c:a6: |
| 55 67:b2:6a:d4:33:c3:13:62:30:a1:53:5f:45:78:5b: |
| 56 bb:47:ad:07:a4:98:9a:e9:e3:b1:3b:e6:33:c2:c1: |
| 57 5c:95:d7:c8:b9:a6:72:27:7a:79:da:c4:c8:5a:1a: |
| 58 3e:5e:5e:a6:62:64:c6:72:86:b1:78:98:5b:63:27: |
| 59 70:15:04:6b:b1:0f:11:9c:4d:3b:5c:e7:8d:c0:be: |
| 60 d5:84:46:6c:bd:11:1e:21:c1:82:9c:d0:aa:2d:2f: |
| 61 f8:2a:e9:3b:e4:35:15:6d:c7:4a:dd:a8:65:69:b8: |
| 62 16:a1:8a:04:a2:44:68:40:b6:99:ae:61:df:9f:6c: |
| 63 40:ef:79:c9:a3:6d:e4:2d:07:01:68:f1:21:4e:0e: |
| 64 28:a7:fd:2f:ad:ee:7d:65:cf:36:fd:4f:1b:ba:10: |
| 65 8e:86:fd:ec:37:67:0c:20:71:66:48:64:f3:82:af: |
| 66 f5:e1:73:c9:09:36:03:3f:c2:47:7a:f2:33:b9:f9: |
| 67 9f:53:9b:24:5e:c3:cc:05:d9:a9:ed:d7:b2:2a:c5: |
| 68 b7:39 |
| 69 Exponent: 65537 (0x10001) |
| 70 X509v3 extensions: |
| 71 X509v3 Subject Key Identifier: |
| 72 C9:45:0B:2A:F2:D8:8D:2A:D7:CE:AF:56:BF:82:B0:84:0C:C8:2E:F4 |
| 73 X509v3 Authority Key Identifier: |
| 74 keyid:B1:39:79:13:35:D0:03:6B:E9:C4:63:2B:CC:D6:61:C3:82:EC:14:C
1 |
| 75 |
| 76 Authority Information Access: |
| 77 CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| 78 |
| 79 X509v3 CRL Distribution Points: |
| 80 |
| 81 Full Name: |
| 82 URI:http://url-for-crl/Intermediate.crl |
| 83 |
| 84 X509v3 Key Usage: critical |
| 85 Digital Signature, Key Encipherment |
| 86 X509v3 Extended Key Usage: |
| 87 TLS Web Server Authentication, TLS Web Client Authentication |
| 88 Signature Algorithm: sha256WithRSAEncryption |
| 89 63:66:9e:6c:34:8c:5d:74:ae:90:25:55:ae:86:49:b9:3d:fd: |
| 90 27:bc:4f:69:7b:70:cb:25:0e:a3:8c:7a:7d:9c:4f:0b:7c:f2: |
| 91 85:a5:ea:82:d2:37:c2:74:a2:ae:a8:bf:62:f4:5f:d4:c6:41: |
| 92 45:0c:cc:27:53:aa:8f:66:58:e9:b0:de:ae:98:14:bd:92:df: |
| 93 9b:0f:f2:c5:3b:d2:bc:1c:3e:80:b4:09:0f:c1:9f:d6:3a:29: |
| 94 52:71:b6:1a:92:95:5a:18:dc:b4:30:dc:61:61:93:54:d1:55: |
| 95 83:92:5d:c0:c7:dc:ab:d7:08:dd:8a:44:cf:92:f9:4d:86:25: |
| 96 aa:ac:52:f6:0e:17:99:0b:31:d2:75:5e:33:f9:f5:b6:77:42: |
| 97 07:62:a9:53:cc:f3:79:84:57:d9:14:3f:ab:4c:8b:ae:c7:9f: |
| 98 cf:7a:1f:bf:7e:1d:44:bd:76:b4:cd:8d:c8:1d:75:f7:3b:b5: |
| 99 bc:35:8b:3f:29:b1:cb:67:a4:17:af:a4:ca:9f:2b:e7:15:66: |
| 100 e4:c8:c1:7c:08:78:9e:5d:4b:c3:c6:58:66:96:42:e8:e6:40: |
| 101 fd:dc:24:ce:3b:58:11:38:40:0e:fc:a9:c0:2c:0f:e5:cc:bb: |
| 102 02:32:31:b9:bc:6f:2d:1d:f6:2b:7c:d3:f8:24:f6:60:38:8a: |
| 103 1f:dd:e1:50 |
| 104 -----BEGIN CERTIFICATE----- |
| 105 MIIDjTCCAnWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl |
| 106 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD |
| 107 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC+EhxI |
| 108 5HMfXNJUqXtYHDdzwkkmPu21a1UXyUxSNM7ZdoYydHSuEbKZG1GgM0g0L7nTKwbC |
| 109 XClTNc58pmeyatQzwxNiMKFTX0V4W7tHrQekmJrp47E75jPCwVyV18i5pnInenna |
| 110 xMhaGj5eXqZiZMZyhrF4mFtjJ3AVBGuxDxGcTTtc543AvtWERmy9ER4hwYKc0Kot |
| 111 L/gq6TvkNRVtx0rdqGVpuBahigSiRGhAtpmuYd+fbEDvecmjbeQtBwFo8SFODiin |
| 112 /S+t7n1lzzb9Txu6EI6G/ew3ZwwgcWZIZPOCr/Xhc8kJNgM/wkd68jO5+Z9TmyRe |
| 113 w8wF2ant17Iqxbc5AgMBAAGjgekwgeYwHQYDVR0OBBYEFMlFCyry2I0q186vVr+C |
| 114 sIQMyC70MB8GA1UdIwQYMBaAFLE5eRM10ANr6cRjK8zWYcOC7BTBMD8GCCsGAQUF |
| 115 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk |
| 116 aWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu |
| 117 dGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUF |
| 118 BwMBBggrBgEFBQcDAjANBgkqhkiG9w0BAQsFAAOCAQEAY2aebDSMXXSukCVVroZJ |
| 119 uT39J7xPaXtwyyUOo4x6fZxPC3zyhaXqgtI3wnSirqi/YvRf1MZBRQzMJ1Oqj2ZY |
| 120 6bDerpgUvZLfmw/yxTvSvBw+gLQJD8Gf1jopUnG2GpKVWhjctDDcYWGTVNFVg5Jd |
| 121 wMfcq9cI3YpEz5L5TYYlqqxS9g4XmQsx0nVeM/n1tndCB2KpU8zzeYRX2RQ/q0yL |
| 122 rsefz3ofv34dRL12tM2NyB119zu1vDWLPymxy2ekF6+kyp8r5xVm5MjBfAh4nl1L |
| 123 w8ZYZpZC6OZA/dwkzjtYEThADvypwCwP5cy7AjIxubxvLR32K3zT+CT2YDiKH93h |
| 124 UA== |
| 125 -----END CERTIFICATE----- |
| 126 |
| 127 Certificate: |
| 128 Data: |
| 129 Version: 3 (0x2) |
| 130 Serial Number: 2 (0x2) |
| 131 Signature Algorithm: sha256WithRSAEncryption |
| 132 Issuer: CN=Root |
| 133 Validity |
| 134 Not Before: Jan 1 12:00:00 2015 GMT |
| 135 Not After : Jan 1 12:00:00 2016 GMT |
| 136 Subject: CN=Intermediate |
| 137 Subject Public Key Info: |
| 138 Public Key Algorithm: rsaEncryption |
| 139 Public-Key: (2048 bit) |
| 140 Modulus: |
| 141 00:9c:d0:2e:3b:06:d6:ea:65:bd:dd:b2:d3:e8:88: |
| 142 ea:08:73:01:42:ac:ca:38:28:17:32:93:5e:16:a8: |
| 143 c1:79:44:9a:db:24:08:ba:81:52:63:9c:b4:ed:57: |
| 144 d4:b2:ac:54:64:3b:70:39:7e:37:da:11:e1:8c:ba: |
| 145 09:bc:1a:9b:e7:fe:6d:75:f8:71:31:f0:ca:52:89: |
| 146 2a:9e:d5:53:db:b8:c0:76:cf:bf:58:58:e1:bb:81: |
| 147 de:62:bb:06:58:1f:9b:64:03:75:7d:ee:76:6f:39: |
| 148 47:cb:8e:34:32:07:83:89:b0:83:2a:78:d0:ac:e2: |
| 149 86:0a:a8:ab:3b:97:81:de:9d:36:b4:03:b7:d5:06: |
| 150 05:53:d7:80:03:44:86:53:72:db:7a:5f:c5:20:dd: |
| 151 c7:44:58:3b:40:7f:0e:39:bc:be:0d:ca:6a:f6:82: |
| 152 a2:97:a2:17:79:51:6f:42:5d:0d:6a:b7:a0:de:5f: |
| 153 6a:00:be:e7:5a:b7:91:e9:fc:77:fd:75:88:8d:52: |
| 154 76:3d:0e:91:4b:c7:db:96:a4:5f:39:59:55:62:65: |
| 155 3b:15:7a:bc:7b:09:9f:3e:75:d9:9e:c5:00:b3:19: |
| 156 d4:26:7e:eb:db:62:07:c2:f5:b6:4e:87:2d:eb:56: |
| 157 8b:5a:68:6c:85:2f:b4:3e:1d:dd:5d:31:49:98:8b: |
| 158 06:55 |
| 159 Exponent: 65537 (0x10001) |
| 160 X509v3 extensions: |
| 161 X509v3 Subject Key Identifier: |
| 162 B1:39:79:13:35:D0:03:6B:E9:C4:63:2B:CC:D6:61:C3:82:EC:14:C1 |
| 163 X509v3 Authority Key Identifier: |
| 164 keyid:02:CE:F6:AC:1A:39:1E:85:E8:72:D1:8A:C6:1D:E8:7A:8F:9D:15:6
B |
| 165 |
| 166 Authority Information Access: |
| 167 CA Issuers - URI:http://url-for-aia/Root.cer |
| 168 |
| 169 X509v3 CRL Distribution Points: |
| 170 |
| 171 Full Name: |
| 172 URI:http://url-for-crl/Root.crl |
| 173 |
| 174 X509v3 Key Usage: critical |
| 175 Certificate Sign, CRL Sign |
| 176 X509v3 Basic Constraints: critical |
| 177 CA:TRUE |
| 178 Signature Algorithm: sha256WithRSAEncryption |
| 179 56:90:dd:ae:50:4b:18:56:7f:e9:1c:e4:29:7c:60:7e:87:27: |
| 180 b5:cd:2b:00:67:2b:f7:a2:32:db:38:92:18:46:00:22:c4:2d: |
| 181 1f:ff:32:5f:62:69:30:db:c8:aa:63:68:6a:0f:db:2d:13:15: |
| 182 8f:74:22:54:67:fb:95:19:35:49:66:1e:a1:65:67:3c:71:02: |
| 183 85:34:f7:3b:20:51:03:e9:a1:b9:7d:9b:3b:21:d4:7a:28:6e: |
| 184 bd:01:50:a6:7e:2b:a0:bc:ad:d5:55:63:3d:04:f3:f0:aa:c3: |
| 185 4e:b3:aa:b8:68:89:a0:8c:b7:9e:38:37:81:2c:01:57:93:7c: |
| 186 3f:aa:54:2e:35:66:a4:c0:81:ca:06:5c:c6:ab:72:f4:38:08: |
| 187 cd:60:40:53:42:48:71:0a:e7:f5:82:3c:bb:51:89:a4:8b:1e: |
| 188 c9:44:4c:7f:10:7d:d3:f4:60:04:07:36:b2:44:82:b2:0a:3c: |
| 189 e9:82:55:4a:37:cf:47:b6:d3:ea:e5:fc:b8:49:4c:6b:77:a6: |
| 190 42:29:1c:1f:97:78:18:f7:88:da:52:42:87:19:e4:13:0d:91: |
| 191 73:cc:98:6a:22:70:e2:5c:54:d0:96:b7:94:37:3c:0f:f6:9a: |
| 192 e3:02:fb:95:63:5a:87:d4:0d:16:16:bd:95:fa:88:c3:a8:e4: |
| 193 d0:91:dd:be |
| 194 -----BEGIN CERTIFICATE----- |
| 195 MIIDbTCCAlWgAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| 196 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50 |
| 197 ZXJtZWRpYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnNAuOwbW |
| 198 6mW93bLT6IjqCHMBQqzKOCgXMpNeFqjBeUSa2yQIuoFSY5y07VfUsqxUZDtwOX43 |
| 199 2hHhjLoJvBqb5/5tdfhxMfDKUokqntVT27jAds+/WFjhu4HeYrsGWB+bZAN1fe52 |
| 200 bzlHy440MgeDibCDKnjQrOKGCqirO5eB3p02tAO31QYFU9eAA0SGU3Lbel/FIN3H |
| 201 RFg7QH8OOby+Dcpq9oKil6IXeVFvQl0Nareg3l9qAL7nWreR6fx3/XWIjVJ2PQ6R |
| 202 S8fblqRfOVlVYmU7FXq8ewmfPnXZnsUAsxnUJn7r22IHwvW2Toct61aLWmhshS+0 |
| 203 Ph3dXTFJmIsGVQIDAQABo4HLMIHIMB0GA1UdDgQWBBSxOXkTNdADa+nEYyvM1mHD |
| 204 guwUwTAfBgNVHSMEGDAWgBQCzvasGjkehehy0YrGHeh6j50VazA3BggrBgEFBQcB |
| 205 AQQrMCkwJwYIKwYBBQUHMAKGG2h0dHA6Ly91cmwtZm9yLWFpYS9Sb290LmNlcjAs |
| 206 BgNVHR8EJTAjMCGgH6AdhhtodHRwOi8vdXJsLWZvci1jcmwvUm9vdC5jcmwwDgYD |
| 207 VR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEB |
| 208 AFaQ3a5QSxhWf+kc5Cl8YH6HJ7XNKwBnK/eiMts4khhGACLELR//Ml9iaTDbyKpj |
| 209 aGoP2y0TFY90IlRn+5UZNUlmHqFlZzxxAoU09zsgUQPpobl9mzsh1Hoobr0BUKZ+ |
| 210 K6C8rdVVYz0E8/Cqw06zqrhoiaCMt544N4EsAVeTfD+qVC41ZqTAgcoGXMarcvQ4 |
| 211 CM1gQFNCSHEK5/WCPLtRiaSLHslETH8QfdP0YAQHNrJEgrIKPOmCVUo3z0e20+rl |
| 212 /LhJTGt3pkIpHB+XeBj3iNpSQocZ5BMNkXPMmGoicOJcVNCWt5Q3PA/2muMC+5Vj |
| 213 WofUDRYWvZX6iMOo5NCR3b4= |
| 214 -----END CERTIFICATE----- |
| 215 |
| 216 Certificate: |
| 217 Data: |
| 218 Version: 3 (0x2) |
| 219 Serial Number: 1 (0x1) |
| 220 Signature Algorithm: sha256WithRSAEncryption |
| 221 Issuer: CN=Root |
| 222 Validity |
| 223 Not Before: Jan 1 12:00:00 2015 GMT |
| 224 Not After : Jan 1 12:00:00 2016 GMT |
| 225 Subject: CN=Root |
| 226 Subject Public Key Info: |
| 227 Public Key Algorithm: rsaEncryption |
| 228 Public-Key: (2048 bit) |
| 229 Modulus: |
| 230 00:a6:44:ec:a7:15:00:1f:89:ac:91:f8:ec:7b:03: |
| 231 46:0b:53:15:ed:23:40:35:94:f3:96:80:27:d3:4a: |
| 232 84:92:68:c9:0c:e0:14:32:c7:31:67:49:29:58:77: |
| 233 ea:ce:8a:72:5b:93:b1:a0:a8:e5:84:c6:52:9d:5a: |
| 234 c0:41:bf:98:5f:18:5d:aa:d1:65:79:fb:e9:b0:84: |
| 235 92:9d:2c:58:bc:f1:c4:29:59:ed:bc:ac:85:ce:d7: |
| 236 0e:aa:08:e8:2d:90:25:cb:91:9d:7d:91:74:42:a0: |
| 237 ae:77:d2:11:7b:57:49:04:24:c0:94:f4:20:54:60: |
| 238 d9:1b:76:76:0b:2c:23:3c:67:90:8c:06:ed:4e:df: |
| 239 ac:24:22:26:f7:26:8f:5a:d2:5b:79:8a:6f:6e:53: |
| 240 27:60:10:cb:c7:b4:9f:60:2d:8f:32:69:4b:01:d1: |
| 241 f0:6d:69:1a:22:14:06:66:63:97:e8:fc:79:41:8d: |
| 242 15:44:44:d1:43:2a:37:5e:77:e4:06:e6:a9:85:13: |
| 243 e9:24:63:9d:09:d0:f5:13:d5:ba:59:2e:1c:d2:70: |
| 244 06:b1:80:f7:57:d7:30:f7:14:f3:18:06:7f:84:38: |
| 245 b6:81:46:9f:a2:36:87:0e:5f:1a:45:38:b7:20:16: |
| 246 b7:c6:e1:91:3b:0e:0c:ab:b7:4e:3d:a4:6d:66:d8: |
| 247 85:fb |
| 248 Exponent: 65537 (0x10001) |
| 249 X509v3 extensions: |
| 250 X509v3 Subject Key Identifier: |
| 251 02:CE:F6:AC:1A:39:1E:85:E8:72:D1:8A:C6:1D:E8:7A:8F:9D:15:6B |
| 252 X509v3 Authority Key Identifier: |
| 253 keyid:02:CE:F6:AC:1A:39:1E:85:E8:72:D1:8A:C6:1D:E8:7A:8F:9D:15:6
B |
| 254 |
| 255 Authority Information Access: |
| 256 CA Issuers - URI:http://url-for-aia/Root.cer |
| 257 |
| 258 X509v3 CRL Distribution Points: |
| 259 |
| 260 Full Name: |
| 261 URI:http://url-for-crl/Root.crl |
| 262 |
| 263 X509v3 Key Usage: critical |
| 264 Certificate Sign, CRL Sign |
| 265 X509v3 Basic Constraints: critical |
| 266 CA:TRUE |
| 267 Signature Algorithm: sha256WithRSAEncryption |
| 268 0e:00:56:5c:72:31:88:bd:95:13:f7:64:96:1c:63:c2:1c:11: |
| 269 60:04:d2:c3:5f:7c:a2:d7:d1:33:6d:51:6b:77:61:78:a8:70: |
| 270 2e:50:97:5d:c1:e8:9b:dd:c6:61:a7:d3:e1:2c:83:07:85:5c: |
| 271 c9:d7:1e:22:c2:5f:76:83:19:d7:de:4a:5e:82:0f:43:80:45: |
| 272 02:d7:d0:3d:ca:c3:c0:fc:04:c8:f6:89:32:d7:47:c6:bf:1f: |
| 273 c6:bd:71:e1:07:00:90:12:ec:61:63:1b:6c:e9:58:2c:fc:4c: |
| 274 a9:8f:58:e1:b1:6e:a5:ca:4d:be:7e:32:16:74:5f:fd:35:e4: |
| 275 37:aa:1a:c5:33:21:20:8a:3e:1c:af:da:f3:c7:a2:22:d3:93: |
| 276 6c:5e:ac:0a:65:d5:db:e4:8b:11:5e:ca:eb:8f:da:c4:5d:2f: |
| 277 7a:98:e8:3c:d1:89:15:05:02:86:ef:eb:17:18:81:28:ca:d6: |
| 278 58:87:bd:d4:e2:50:41:92:d9:7f:b1:f7:53:8f:f3:cc:f3:1e: |
| 279 1d:e4:5a:c2:60:1b:17:42:78:53:e9:2d:5d:bb:f9:21:50:ff: |
| 280 87:53:be:5f:e6:d4:8f:25:7f:d7:83:d7:f8:4d:c1:7c:7a:40: |
| 281 0b:11:f1:d9:c6:eb:97:45:00:d6:6b:84:1c:4f:fc:8e:1f:5b: |
| 282 b5:3d:60:0c |
| 283 -----BEGIN TRUSTED_CERTIFICATE----- |
| 284 MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| 285 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v |
| 286 dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKZE7KcVAB+JrJH47HsD |
| 287 RgtTFe0jQDWU85aAJ9NKhJJoyQzgFDLHMWdJKVh36s6KcluTsaCo5YTGUp1awEG/ |
| 288 mF8YXarRZXn76bCEkp0sWLzxxClZ7byshc7XDqoI6C2QJcuRnX2RdEKgrnfSEXtX |
| 289 SQQkwJT0IFRg2Rt2dgssIzxnkIwG7U7frCQiJvcmj1rSW3mKb25TJ2AQy8e0n2At |
| 290 jzJpSwHR8G1pGiIUBmZjl+j8eUGNFURE0UMqN1535AbmqYUT6SRjnQnQ9RPVulku |
| 291 HNJwBrGA91fXMPcU8xgGf4Q4toFGn6I2hw5fGkU4tyAWt8bhkTsODKu3Tj2kbWbY |
| 292 hfsCAwEAAaOByzCByDAdBgNVHQ4EFgQUAs72rBo5HoXoctGKxh3oeo+dFWswHwYD |
| 293 VR0jBBgwFoAUAs72rBo5HoXoctGKxh3oeo+dFWswNwYIKwYBBQUHAQEEKzApMCcG |
| 294 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| 295 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| 296 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAOAFZccjGI |
| 297 vZUT92SWHGPCHBFgBNLDX3yi19EzbVFrd2F4qHAuUJddweib3cZhp9PhLIMHhVzJ |
| 298 1x4iwl92gxnX3kpegg9DgEUC19A9ysPA/ATI9oky10fGvx/GvXHhBwCQEuxhYxts |
| 299 6Vgs/Eypj1jhsW6lyk2+fjIWdF/9NeQ3qhrFMyEgij4cr9rzx6Ii05NsXqwKZdXb |
| 300 5IsRXsrrj9rEXS96mOg80YkVBQKG7+sXGIEoytZYh73U4lBBktl/sfdTj/PM8x4d |
| 301 5FrCYBsXQnhT6S1du/khUP+HU75f5tSPJX/Xg9f4TcF8ekALEfHZxuuXRQDWa4Qc |
| 302 T/yOH1u1PWAM |
| 303 -----END TRUSTED_CERTIFICATE----- |
| 304 |
| 305 -----BEGIN TIME----- |
| 306 MTUwMzAyMTIwMDAwWg== |
| 307 -----END TIME----- |
| 308 |
| 309 -----BEGIN VERIFY_RESULT----- |
| 310 U1VDQ0VTUw== |
| 311 -----END VERIFY_RESULT----- |
OLD | NEW |