| OLD | NEW |
| 1 [Created by: generate-target-signed-by-512bit-rsa.py] | 1 [Created by: generate-target-signed-by-512bit-rsa.py] |
| 2 | 2 |
| 3 Certificate chain with 1 intermediate and a trusted root. The target | 3 Certificate chain with 1 intermediate and a trusted root. The target |
| 4 certificate is signed using a weak RSA key (512-bit modulus), and so | 4 certificate is signed using a weak RSA key (512-bit modulus), and so |
| 5 verification is expected to fail. | 5 verification is expected to fail. |
| 6 | 6 |
| 7 Certificate: | 7 Certificate: |
| 8 Data: | 8 Data: |
| 9 Version: 3 (0x2) | 9 Version: 3 (0x2) |
| 10 Serial Number: 1 (0x1) | 10 Serial Number: 1 (0x1) |
| 11 Signature Algorithm: sha256WithRSAEncryption | 11 Signature Algorithm: sha256WithRSAEncryption |
| 12 Issuer: CN=Intermediate | 12 Issuer: CN=Intermediate |
| 13 Validity | 13 Validity |
| 14 Not Before: Jan 1 12:00:00 2015 GMT | 14 Not Before: Jan 1 12:00:00 2015 GMT |
| 15 Not After : Jan 1 12:00:00 2016 GMT | 15 Not After : Jan 1 12:00:00 2016 GMT |
| 16 Subject: CN=Target | 16 Subject: CN=Target |
| 17 Subject Public Key Info: | 17 Subject Public Key Info: |
| 18 Public Key Algorithm: rsaEncryption | 18 Public Key Algorithm: rsaEncryption |
| 19 Public-Key: (2048 bit) | 19 Public-Key: (2048 bit) |
| 20 Modulus: | 20 Modulus: |
| 21 00:e6:5f:a8:d2:f3:bc:ce:7c:a1:a7:97:8a:a5:bb: | 21 00:f2:42:db:44:b2:6b:f2:0a:41:04:53:7d:0b:34: |
| 22 3a:24:dd:5b:87:a1:3c:71:b1:e3:14:2e:72:39:ec: | 22 a4:fe:8d:d5:3a:ff:e5:a9:0c:5d:e4:2d:69:fe:e3: |
| 23 7b:1b:b6:a4:05:b5:4b:82:29:40:ef:1e:5a:2b:b5: | 23 dd:8a:47:2f:e8:9e:5a:54:ab:0b:95:84:16:af:fa: |
| 24 f0:62:b2:2e:f2:2d:cd:a4:fe:2f:a4:5a:b6:6a:8c: | 24 29:11:43:5c:c9:59:15:30:59:77:bb:62:dd:d6:e4: |
| 25 b0:2f:46:f7:bc:f0:6e:71:1f:56:2f:6e:0d:5f:7d: | 25 27:3a:bf:a9:82:cb:b8:f4:3c:5c:1d:74:87:8d:57: |
| 26 15:24:76:d7:8a:b7:66:8f:b8:25:70:ba:3f:fa:ac: | 26 af:0a:69:91:68:b4:aa:f6:14:8b:25:14:60:68:c9: |
| 27 2b:81:99:85:49:53:ae:a5:4c:27:d9:63:d3:67:6d: | 27 8d:56:09:06:a6:ad:12:8a:cb:05:33:b0:1e:11:03: |
| 28 6a:dc:c0:84:01:5f:35:49:3c:6a:21:76:7c:1e:e0: | 28 52:bf:af:7d:87:b0:97:22:fb:5a:f4:ea:5b:14:56: |
| 29 f0:f4:8d:ed:31:a8:e8:f8:0b:a1:ae:e4:d6:79:18: | 29 cc:ad:03:2a:da:75:59:35:8b:88:3a:b7:66:3b:18: |
| 30 21:51:3a:08:98:30:6b:94:54:fe:e5:92:98:2d:e8: | 30 a8:7c:c4:29:4f:66:ac:da:1f:ba:ec:ef:fc:55:01: |
| 31 ee:12:05:53:96:21:9a:d3:cb:fc:8b:dd:0b:10:63: | 31 1e:31:7a:af:ca:5c:5d:cf:73:49:2f:50:b9:0d:3b: |
| 32 c2:e3:de:69:f8:3a:04:db:dc:ee:07:95:19:3b:32: | 32 4c:0c:d9:b0:d6:25:86:ea:3d:4d:ea:de:3b:9c:2a: |
| 33 fb:a7:5a:39:60:71:63:af:78:1d:dd:f5:5a:77:99: | 33 79:b3:c6:13:9a:bb:22:53:62:7c:a9:05:a6:a3:c7: |
| 34 23:76:a8:e9:1e:6f:e2:50:3c:4c:b8:fa:58:83:26: | 34 f5:28:72:24:c0:d6:ec:6f:66:eb:5a:85:91:5e:cd: |
| 35 1a:ee:63:7e:cb:2d:93:2c:f6:19:aa:b3:4a:57:81: | 35 a5:95:cc:9f:60:88:a1:bc:95:33:1f:f4:8f:99:68: |
| 36 6a:db:d7:59:44:29:a4:e0:71:5d:07:00:6b:83:99: | 36 56:64:39:4c:a4:df:f3:41:10:14:50:e5:ba:42:e5: |
| 37 49:3b:bc:f8:ab:d8:fe:7d:5d:ba:b4:02:f5:95:e9: | 37 c6:ec:50:37:44:26:de:0d:28:71:b8:63:bb:38:7e: |
| 38 90:65 | 38 04:a9 |
| 39 Exponent: 65537 (0x10001) | 39 Exponent: 65537 (0x10001) |
| 40 X509v3 extensions: | 40 X509v3 extensions: |
| 41 X509v3 Subject Key Identifier: | 41 X509v3 Subject Key Identifier: |
| 42 4A:CE:67:BF:3B:63:C0:09:D1:FF:FF:E6:FE:83:5A:03:0F:C3:43:10 | 42 78:F8:8D:81:56:D4:CD:CF:11:9F:9E:DD:3D:6C:F2:07:FE:0F:37:7D |
| 43 X509v3 Authority Key Identifier: | 43 X509v3 Authority Key Identifier: |
| 44 keyid:77:0D:A9:84:E8:2A:53:B8:C9:BB:D7:0F:D7:D0:85:E8:98:1A:E3:6
8 | 44 keyid:E9:D8:44:8D:24:EE:A1:82:18:6F:21:FA:4E:EC:FB:DF:D1:91:57:9
D |
| 45 | 45 |
| 46 Authority Information Access: | 46 Authority Information Access: |
| 47 CA Issuers - URI:http://url-for-aia/Intermediate.cer | 47 CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| 48 | 48 |
| 49 X509v3 CRL Distribution Points: | 49 X509v3 CRL Distribution Points: |
| 50 | 50 |
| 51 Full Name: | 51 Full Name: |
| 52 URI:http://url-for-crl/Intermediate.crl | 52 URI:http://url-for-crl/Intermediate.crl |
| 53 | 53 |
| 54 X509v3 Key Usage: critical | 54 X509v3 Key Usage: critical |
| 55 Digital Signature, Key Encipherment | 55 Digital Signature, Key Encipherment |
| 56 X509v3 Extended Key Usage: | 56 X509v3 Extended Key Usage: |
| 57 TLS Web Server Authentication, TLS Web Client Authentication | 57 TLS Web Server Authentication, TLS Web Client Authentication |
| 58 Signature Algorithm: sha256WithRSAEncryption | 58 Signature Algorithm: sha256WithRSAEncryption |
| 59 65:fb:6d:6c:1a:df:48:9c:d1:36:07:e3:94:7b:d9:ea:36:84: | 59 96:6a:e6:ba:df:4c:9f:c4:01:e6:e3:5a:79:d9:56:ae:76:14: |
| 60 37:f2:c2:03:53:74:4b:f9:a3:91:75:f4:bf:11:14:86:b5:34: | 60 8a:33:3a:65:e2:28:2f:90:81:5c:1e:8b:ca:1c:0e:a5:f1:ca: |
| 61 8e:24:3d:9a:37:25:c2:27:19:48:f3:f0:a3:a6:51:e6:61:4a: | 61 8a:f3:fc:17:f4:2f:0d:3b:cf:ee:06:23:d8:81:6e:14:e4:72: |
| 62 77:db:7a:1e:ae:f1:94:ad:de:93 | 62 1b:9c:05:50:37:ca:ce:da:ea:f8 |
| 63 -----BEGIN CERTIFICATE----- | 63 -----BEGIN CERTIFICATE----- |
| 64 MIICyzCCAnWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl | 64 MIICyzCCAnWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl |
| 65 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD | 65 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD |
| 66 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDmX6jS | 66 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDyQttE |
| 67 87zOfKGnl4qluzok3VuHoTxxseMULnI57HsbtqQFtUuCKUDvHlortfBisi7yLc2k | 67 smvyCkEEU30LNKT+jdU6/+WpDF3kLWn+492KRy/onlpUqwuVhBav+ikRQ1zJWRUw |
| 68 /i+kWrZqjLAvRve88G5xH1Yvbg1ffRUkdteKt2aPuCVwuj/6rCuBmYVJU66lTCfZ | 68 WXe7Yt3W5Cc6v6mCy7j0PFwddIeNV68KaZFotKr2FIslFGBoyY1WCQamrRKKywUz |
| 69 Y9NnbWrcwIQBXzVJPGohdnwe4PD0je0xqOj4C6Gu5NZ5GCFROgiYMGuUVP7lkpgt | 69 sB4RA1K/r32HsJci+1r06lsUVsytAyradVk1i4g6t2Y7GKh8xClPZqzaH7rs7/xV |
| 70 6O4SBVOWIZrTy/yL3QsQY8Lj3mn4OgTb3O4HlRk7MvunWjlgcWOveB3d9Vp3mSN2 | 70 AR4xeq/KXF3Pc0kvULkNO0wM2bDWJYbqPU3q3jucKnmzxhOauyJTYnypBaajx/Uo |
| 71 qOkeb+JQPEy4+liDJhruY37LLZMs9hmqs0pXgWrb11lEKaTgcV0HAGuDmUk7vPir | 71 ciTA1uxvZutahZFezaWVzJ9giKG8lTMf9I+ZaFZkOUyk3/NBEBRQ5bpC5cbsUDdE |
| 72 2P59Xbq0AvWV6ZBlAgMBAAGjgekwgeYwHQYDVR0OBBYEFErOZ787Y8AJ0f//5v6D | 72 Jt4NKHG4Y7s4fgSpAgMBAAGjgekwgeYwHQYDVR0OBBYEFHj4jYFW1M3PEZ+e3T1s |
| 73 WgMPw0MQMB8GA1UdIwQYMBaAFHcNqYToKlO4ybvXD9fQheiYGuNoMD8GCCsGAQUF | 73 8gf+Dzd9MB8GA1UdIwQYMBaAFOnYRI0k7qGCGG8h+k7s+9/RkVedMD8GCCsGAQUF |
| 74 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk | 74 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk |
| 75 aWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu | 75 aWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu |
| 76 dGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUF | 76 dGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUF |
| 77 BwMBBggrBgEFBQcDAjANBgkqhkiG9w0BAQsFAANBAGX7bWwa30ic0TYH45R72eo2 | 77 BwMBBggrBgEFBQcDAjANBgkqhkiG9w0BAQsFAANBAJZq5rrfTJ/EAebjWnnZVq52 |
| 78 hDfywgNTdEv5o5F19L8RFIa1NI4kPZo3JcInGUjz8KOmUeZhSnfbeh6u8ZSt3pM= | 78 FIozOmXiKC+QgVwei8ocDqXxyorz/Bf0Lw07z+4GI9iBbhTkchucBVA3ys7a6vg= |
| 79 -----END CERTIFICATE----- | 79 -----END CERTIFICATE----- |
| 80 | 80 |
| 81 Certificate: | 81 Certificate: |
| 82 Data: | 82 Data: |
| 83 Version: 3 (0x2) | 83 Version: 3 (0x2) |
| 84 Serial Number: 2 (0x2) | 84 Serial Number: 2 (0x2) |
| 85 Signature Algorithm: sha256WithRSAEncryption | 85 Signature Algorithm: sha256WithRSAEncryption |
| 86 Issuer: CN=Root | 86 Issuer: CN=Root |
| 87 Validity | 87 Validity |
| 88 Not Before: Jan 1 12:00:00 2015 GMT | 88 Not Before: Jan 1 12:00:00 2015 GMT |
| 89 Not After : Jan 1 12:00:00 2016 GMT | 89 Not After : Jan 1 12:00:00 2016 GMT |
| 90 Subject: CN=Intermediate | 90 Subject: CN=Intermediate |
| 91 Subject Public Key Info: | 91 Subject Public Key Info: |
| 92 Public Key Algorithm: rsaEncryption | 92 Public Key Algorithm: rsaEncryption |
| 93 Public-Key: (512 bit) | 93 Public-Key: (512 bit) |
| 94 Modulus: | 94 Modulus: |
| 95 00:9e:57:91:28:65:2e:3a:22:df:b6:61:df:cb:09: | 95 00:d5:13:bb:52:bf:ca:19:1a:06:19:68:07:1d:e6: |
| 96 a2:92:53:3b:bc:7a:20:99:41:d7:1e:fd:da:08:98: | 96 87:16:d3:f0:e0:12:ba:a2:b5:2a:3d:ed:b3:64:16: |
| 97 2d:dd:12:82:3c:c5:29:51:95:eb:cb:50:c0:ca:5c: | 97 06:a3:50:fc:b0:a4:49:f2:f9:ab:34:ad:4f:db:0a: |
| 98 76:06:df:b1:b6:48:bd:87:d2:71:6f:ee:21:78:0d: | 98 3d:2b:25:92:86:3f:94:df:fb:fc:54:f2:c7:6d:9e: |
| 99 ca:4e:2b:f6:c7 | 99 d2:10:e0:cd:0d |
| 100 Exponent: 65537 (0x10001) | 100 Exponent: 65537 (0x10001) |
| 101 X509v3 extensions: | 101 X509v3 extensions: |
| 102 X509v3 Subject Key Identifier: | 102 X509v3 Subject Key Identifier: |
| 103 77:0D:A9:84:E8:2A:53:B8:C9:BB:D7:0F:D7:D0:85:E8:98:1A:E3:68 | 103 E9:D8:44:8D:24:EE:A1:82:18:6F:21:FA:4E:EC:FB:DF:D1:91:57:9D |
| 104 X509v3 Authority Key Identifier: | 104 X509v3 Authority Key Identifier: |
| 105 keyid:68:01:72:7E:35:BD:80:A0:AE:59:5C:D2:1E:21:52:72:04:31:4C:E
0 | 105 keyid:BE:33:72:47:C2:B1:97:41:99:C0:31:57:52:56:0C:B5:53:78:5A:A
4 |
| 106 | 106 |
| 107 Authority Information Access: | 107 Authority Information Access: |
| 108 CA Issuers - URI:http://url-for-aia/Root.cer | 108 CA Issuers - URI:http://url-for-aia/Root.cer |
| 109 | 109 |
| 110 X509v3 CRL Distribution Points: | 110 X509v3 CRL Distribution Points: |
| 111 | 111 |
| 112 Full Name: | 112 Full Name: |
| 113 URI:http://url-for-crl/Root.crl | 113 URI:http://url-for-crl/Root.crl |
| 114 | 114 |
| 115 X509v3 Key Usage: critical | 115 X509v3 Key Usage: critical |
| 116 Certificate Sign, CRL Sign | 116 Certificate Sign, CRL Sign |
| 117 X509v3 Basic Constraints: critical | 117 X509v3 Basic Constraints: critical |
| 118 CA:TRUE | 118 CA:TRUE |
| 119 Signature Algorithm: sha256WithRSAEncryption | 119 Signature Algorithm: sha256WithRSAEncryption |
| 120 ad:f2:3c:b7:fe:59:a6:08:95:6f:a2:3a:b8:84:05:b2:5b:94: | 120 71:33:95:7f:18:b3:82:8b:63:87:5b:f0:c3:e5:6b:06:f4:07: |
| 121 1a:c0:36:8f:c2:9e:31:92:16:1a:de:e8:0b:d8:77:6a:5e:39: | 121 42:35:3d:af:0f:b9:e9:9e:91:07:04:c4:6d:00:de:11:81:0e: |
| 122 93:91:77:20:e0:93:75:be:09:65:ea:03:3c:02:f3:5f:be:14: | 122 49:ce:7c:92:ad:c7:5d:c6:42:9f:b9:8f:c7:ab:02:46:f6:ef: |
| 123 40:c9:8f:e6:17:9d:bd:bd:2d:91:c2:cd:cd:f3:fe:06:a0:21: | 123 8b:47:be:ad:f6:1f:ee:04:aa:b8:07:1a:43:66:6d:1f:39:2a: |
| 124 e5:19:a3:95:d5:77:a1:b7:c3:0b:c8:a1:b9:0e:3c:77:e0:fc: | 124 f5:98:4f:4f:60:2d:ca:2f:f7:0e:d8:f3:16:7b:48:03:42:00: |
| 125 1c:66:dd:48:49:fd:41:74:b8:55:e3:51:16:13:3b:7c:c6:d7: | 125 dc:ff:7e:d7:cf:e3:5e:d5:29:33:46:16:a8:42:65:ae:42:bd: |
| 126 48:65:ea:1d:6c:5d:a8:02:fb:f9:dc:74:a5:79:ee:e0:20:8a: | 126 e6:15:2a:07:bb:05:25:cd:b9:99:05:87:61:69:ef:b5:3d:7e: |
| 127 14:84:d6:af:18:b5:5e:32:2d:f7:8d:e9:17:3c:50:af:cf:1c: | 127 10:af:7e:7a:64:44:cb:73:65:b5:bc:e3:db:a6:7f:92:5d:31: |
| 128 3e:0c:b1:71:d4:4c:67:fe:b9:75:8a:65:72:95:0a:36:06:19: | 128 87:f3:6c:4d:ac:6a:7f:1b:12:ba:ff:16:2a:80:16:3c:a5:cc: |
| 129 46:15:3c:90:a0:8e:8c:b1:cd:25:9d:06:04:98:8a:c6:f3:38: | 129 d4:4d:a4:ed:28:0b:5d:cb:d5:7d:c0:a4:7e:c7:10:df:d1:25: |
| 130 5e:f9:ac:45:ee:ca:1b:84:c5:59:9f:55:58:7a:01:c3:9e:ca: | 130 a9:8a:a3:f1:fc:e1:27:2e:f8:27:0c:09:36:78:2c:a3:6f:78: |
| 131 33:68:fd:bc:a3:94:46:85:d9:5a:6b:60:d9:d7:cb:47:c9:61: | 131 0c:b3:4b:7c:f3:5a:31:93:94:74:61:94:0e:c3:ba:3d:94:54: |
| 132 7f:dd:97:11:75:55:b9:72:3a:61:3d:dc:52:fb:29:04:f3:22: | 132 f5:c1:1e:e9:c1:a9:07:a1:d2:78:e5:6b:e6:06:34:77:62:bb: |
| 133 86:40:b8:fc:1f:cb:7b:35:3f:56:11:e7:7d:91:01:9a:13:89: | 133 80:5a:98:c0:bf:10:38:b9:6f:ed:11:36:01:b1:ad:72:42:30: |
| 134 bc:3a:2e:b9 | 134 c1:da:ad:2b |
| 135 -----BEGIN CERTIFICATE----- | 135 -----BEGIN CERTIFICATE----- |
| 136 MIICpTCCAY2gAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 | 136 MIICpTCCAY2gAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| 137 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50 | 137 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50 |
| 138 ZXJtZWRpYXRlMFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBAJ5XkShlLjoi37Zh38sJ | 138 ZXJtZWRpYXRlMFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANUTu1K/yhkaBhloBx3m |
| 139 opJTO7x6IJlB1x792giYLd0SgjzFKVGV68tQwMpcdgbfsbZIvYfScW/uIXgNyk4r | 139 hxbT8OASuqK1Kj3ts2QWBqNQ/LCkSfL5qzStT9sKPSslkoY/lN/7/FTyx22e0hDg |
| 140 9scCAwEAAaOByzCByDAdBgNVHQ4EFgQUdw2phOgqU7jJu9cP19CF6Jga42gwHwYD | 140 zQ0CAwEAAaOByzCByDAdBgNVHQ4EFgQU6dhEjSTuoYIYbyH6Tuz739GRV50wHwYD |
| 141 VR0jBBgwFoAUaAFyfjW9gKCuWVzSHiFScgQxTOAwNwYIKwYBBQUHAQEEKzApMCcG | 141 VR0jBBgwFoAUvjNyR8Kxl0GZwDFXUlYMtVN4WqQwNwYIKwYBBQUHAQEEKzApMCcG |
| 142 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw | 142 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| 143 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE | 143 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| 144 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCt8jy3/lmm | 144 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBxM5V/GLOC |
| 145 CJVvojq4hAWyW5QawDaPwp4xkhYa3ugL2HdqXjmTkXcg4JN1vgll6gM8AvNfvhRA | 145 i2OHW/DD5WsG9AdCNT2vD7npnpEHBMRtAN4RgQ5JznySrcddxkKfuY/HqwJG9u+L |
| 146 yY/mF529vS2Rws3N8/4GoCHlGaOV1Xeht8MLyKG5Djx34PwcZt1ISf1BdLhV41EW | 146 R76t9h/uBKq4BxpDZm0fOSr1mE9PYC3KL/cO2PMWe0gDQgDc/37Xz+Ne1SkzRhao |
| 147 Ezt8xtdIZeodbF2oAvv53HSlee7gIIoUhNavGLVeMi33jekXPFCvzxw+DLFx1Exn | 147 QmWuQr3mFSoHuwUlzbmZBYdhae+1PX4Qr356ZETLc2W1vOPbpn+SXTGH82xNrGp/ |
| 148 /rl1imVylQo2BhlGFTyQoI6Msc0lnQYEmIrG8zhe+axF7sobhMVZn1VYegHDnsoz | 148 GxK6/xYqgBY8pczUTaTtKAtdy9V9wKR+xxDf0SWpiqPx/OEnLvgnDAk2eCyjb3gM |
| 149 aP28o5RGhdlaa2DZ18tHyWF/3ZcRdVW5cjphPdxS+ykE8yKGQLj8H8t7NT9WEed9 | 149 s0t881oxk5R0YZQOw7o9lFT1wR7pwakHodJ45WvmBjR3YruAWpjAvxA4uW/tETYB |
| 150 kQGaE4m8Oi65 | 150 sa1yQjDB2q0r |
| 151 -----END CERTIFICATE----- | 151 -----END CERTIFICATE----- |
| 152 | 152 |
| 153 Certificate: | 153 Certificate: |
| 154 Data: | 154 Data: |
| 155 Version: 3 (0x2) | 155 Version: 3 (0x2) |
| 156 Serial Number: 1 (0x1) | 156 Serial Number: 1 (0x1) |
| 157 Signature Algorithm: sha256WithRSAEncryption | 157 Signature Algorithm: sha256WithRSAEncryption |
| 158 Issuer: CN=Root | 158 Issuer: CN=Root |
| 159 Validity | 159 Validity |
| 160 Not Before: Jan 1 12:00:00 2015 GMT | 160 Not Before: Jan 1 12:00:00 2015 GMT |
| 161 Not After : Jan 1 12:00:00 2016 GMT | 161 Not After : Jan 1 12:00:00 2016 GMT |
| 162 Subject: CN=Root | 162 Subject: CN=Root |
| 163 Subject Public Key Info: | 163 Subject Public Key Info: |
| 164 Public Key Algorithm: rsaEncryption | 164 Public Key Algorithm: rsaEncryption |
| 165 Public-Key: (2048 bit) | 165 Public-Key: (2048 bit) |
| 166 Modulus: | 166 Modulus: |
| 167 00:c4:1c:75:6c:84:a2:59:08:8c:30:5b:1f:63:1a: | 167 00:ca:3f:f8:1f:42:8f:55:98:f8:9f:fb:94:03:42: |
| 168 b7:80:76:db:e1:82:28:60:f8:b5:dc:6b:b0:92:43: | 168 2a:c1:42:3a:2b:2a:f3:54:14:f3:fe:67:25:24:d3: |
| 169 d4:c9:3c:ee:8d:0c:e1:04:14:9e:2a:03:24:02:fb: | 169 9a:7f:66:1a:60:0b:9d:d8:bd:65:71:b5:f5:d9:fe: |
| 170 3c:7a:cb:d2:42:4a:9f:36:5c:a7:7e:e4:c8:3d:2c: | 170 eb:f6:04:72:57:97:bc:23:b0:be:bd:ce:94:9e:58: |
| 171 34:0a:9e:0b:43:07:87:69:0a:9d:dc:40:39:66:31: | 171 1a:10:e7:33:09:0b:57:a8:1c:6f:fa:f7:ce:d1:31: |
| 172 71:f0:51:b8:d2:24:2e:ad:8d:3d:f6:72:40:ba:a3: | 172 34:90:1a:b4:60:2d:d2:7f:29:9b:4e:ec:f4:6e:99: |
| 173 d8:12:fd:f6:2d:ab:23:41:3d:32:76:1d:e2:77:e2: | 173 21:6b:98:9c:90:09:fc:bd:2f:55:c3:34:38:48:4a: |
| 174 2e:0b:5d:f8:05:12:d9:08:aa:49:18:52:41:01:43: | 174 73:fe:58:e2:09:b9:d9:f9:53:f6:84:e2:5d:fc:eb: |
| 175 f4:da:b1:a5:c9:06:2f:d7:52:b3:1b:dd:ee:16:46: | 175 3c:ba:92:f5:bc:97:cc:ef:43:54:f7:4f:c9:b4:2c: |
| 176 8b:e4:ef:f8:12:52:7d:05:29:cf:a2:b2:4b:33:66: | 176 86:95:32:a6:e8:91:f5:8e:31:f8:de:b5:d9:c9:3d: |
| 177 18:27:18:3a:ba:16:0f:62:7b:c2:d3:d5:19:62:1d: | 177 4d:d7:24:4c:8c:58:aa:8a:c5:79:ab:e7:cd:3b:5c: |
| 178 da:6a:84:a0:2e:e3:d1:71:91:3c:91:68:c0:40:22: | 178 84:67:52:5a:88:33:c3:55:d5:a9:2e:c9:5b:61:7c: |
| 179 4b:fb:0d:b6:68:80:d8:b8:f8:a0:11:f4:d9:6f:f9: | 179 87:05:c1:0b:d7:19:4a:fe:bd:ba:af:d7:e5:70:d1: |
| 180 50:cc:76:ff:af:1c:bf:4e:12:76:d1:ea:3c:96:85: | 180 a4:92:08:d2:f2:ca:2b:b1:94:d0:84:57:f9:30:92: |
| 181 76:c2:30:07:03:92:53:35:fd:26:66:7c:ea:48:ad: | 181 fc:3a:67:82:10:6e:e3:89:9f:b3:df:75:6e:99:46: |
| 182 97:e7:25:16:83:6d:84:01:cf:9f:06:0b:d7:37:79: | 182 bd:ce:b1:e8:ac:a2:3b:21:80:da:11:13:bd:df:93: |
| 183 8e:68:25:44:88:72:a7:9d:2b:7c:57:24:6b:72:15: | 183 0e:0e:ee:5d:f5:39:a2:a8:f7:41:c8:cb:00:5c:ac: |
| 184 a5:ed | 184 ee:b1 |
| 185 Exponent: 65537 (0x10001) | 185 Exponent: 65537 (0x10001) |
| 186 X509v3 extensions: | 186 X509v3 extensions: |
| 187 X509v3 Subject Key Identifier: | 187 X509v3 Subject Key Identifier: |
| 188 68:01:72:7E:35:BD:80:A0:AE:59:5C:D2:1E:21:52:72:04:31:4C:E0 | 188 BE:33:72:47:C2:B1:97:41:99:C0:31:57:52:56:0C:B5:53:78:5A:A4 |
| 189 X509v3 Authority Key Identifier: | 189 X509v3 Authority Key Identifier: |
| 190 keyid:68:01:72:7E:35:BD:80:A0:AE:59:5C:D2:1E:21:52:72:04:31:4C:E
0 | 190 keyid:BE:33:72:47:C2:B1:97:41:99:C0:31:57:52:56:0C:B5:53:78:5A:A
4 |
| 191 | 191 |
| 192 Authority Information Access: | 192 Authority Information Access: |
| 193 CA Issuers - URI:http://url-for-aia/Root.cer | 193 CA Issuers - URI:http://url-for-aia/Root.cer |
| 194 | 194 |
| 195 X509v3 CRL Distribution Points: | 195 X509v3 CRL Distribution Points: |
| 196 | 196 |
| 197 Full Name: | 197 Full Name: |
| 198 URI:http://url-for-crl/Root.crl | 198 URI:http://url-for-crl/Root.crl |
| 199 | 199 |
| 200 X509v3 Key Usage: critical | 200 X509v3 Key Usage: critical |
| 201 Certificate Sign, CRL Sign | 201 Certificate Sign, CRL Sign |
| 202 X509v3 Basic Constraints: critical | 202 X509v3 Basic Constraints: critical |
| 203 CA:TRUE | 203 CA:TRUE |
| 204 Signature Algorithm: sha256WithRSAEncryption | 204 Signature Algorithm: sha256WithRSAEncryption |
| 205 3b:71:85:c5:bf:83:55:c7:84:5e:51:cc:4b:00:35:82:f5:90: | 205 6a:f1:5f:9d:b3:dd:07:5a:5c:44:0a:17:df:04:6c:e5:17:03: |
| 206 c0:7b:95:f5:c4:f0:ff:5b:8a:ba:83:8a:42:3a:bb:0b:5d:e6: | 206 a6:ba:c1:85:f3:4f:ff:15:52:85:7c:98:aa:58:ab:39:b2:6d: |
| 207 0a:3a:91:2c:99:28:40:d3:49:6e:34:57:7b:de:1f:bd:d9:2c: | 207 ae:71:ff:85:36:de:d6:72:c6:3f:7b:6e:e3:13:32:d5:cd:d8: |
| 208 b4:95:69:eb:e7:79:01:6c:ec:a9:e0:78:82:8e:68:33:56:a7: | 208 22:c3:48:71:e7:ed:02:97:5a:b0:bd:e7:fd:d4:21:53:66:7e: |
| 209 58:99:d4:4a:97:73:b1:bd:d7:ee:bd:07:18:a8:47:d3:28:5d: | 209 17:df:97:cd:c0:75:18:f3:a8:6a:0c:bc:de:c3:02:36:17:eb: |
| 210 23:07:59:21:2a:b1:e0:3a:f0:21:24:1d:44:66:dd:29:ea:02: | 210 99:a4:b7:01:be:89:27:3c:43:9e:d4:e8:24:2a:81:0b:fa:32: |
| 211 f8:17:7d:2b:b3:f8:15:3a:0d:60:42:d3:7d:f0:1d:59:30:99: | 211 74:90:53:5f:c1:3c:2e:cf:04:ec:90:5e:f4:20:8e:39:06:49: |
| 212 ae:36:24:bc:c7:d1:97:4f:44:67:19:b9:ea:33:0d:e7:57:81: | 212 ee:8d:69:1e:5f:7f:e0:90:ea:b3:cd:70:42:40:76:22:ec:53: |
| 213 88:6e:35:3d:47:84:43:f7:f7:43:1a:dc:67:21:2e:a3:97:78: | 213 b4:c7:cd:bf:41:34:92:29:80:97:9a:28:f1:f4:8c:65:a2:74: |
| 214 bc:06:46:69:04:20:8b:e8:94:4b:a8:82:c3:2a:a4:ac:59:60: | 214 f3:79:a5:0a:fa:4f:a7:df:d2:c2:a8:23:9f:51:15:19:2c:40: |
| 215 4e:59:46:e4:7f:cc:59:21:b4:73:9e:29:51:a9:48:71:e6:f6: | 215 fd:67:75:3a:24:8c:5b:9a:71:df:02:92:90:d8:e2:58:22:79: |
| 216 5e:ec:25:f0:8e:87:4c:b4:4d:62:12:14:65:49:a3:4c:fd:59: | 216 44:10:e5:2c:fd:7e:25:6e:e2:42:ec:02:67:44:17:8a:ac:e5: |
| 217 80:39:97:2a:57:f0:6f:9a:fa:cd:d0:a7:db:35:60:81:23:13: | 217 9c:b2:0b:d3:22:f5:88:2f:53:e6:e8:a5:43:a4:65:97:a6:36: |
| 218 be:a4:29:00:bd:58:e8:e2:e1:90:24:fd:f7:4e:fe:4d:fb:c7: | 218 f6:57:d3:4b:15:28:55:05:df:52:b5:19:c8:7e:a8:3a:4a:79: |
| 219 a9:2a:e8:24 | 219 52:33:b9:52 |
| 220 -----BEGIN TRUST_ANCHOR_UNCONSTRAINED----- | 220 -----BEGIN TRUST_ANCHOR_UNCONSTRAINED----- |
| 221 MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 | 221 MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 |
| 222 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v | 222 MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v |
| 223 dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMQcdWyEolkIjDBbH2Ma | 223 dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMo/+B9Cj1WY+J/7lANC |
| 224 t4B22+GCKGD4tdxrsJJD1Mk87o0M4QQUnioDJAL7PHrL0kJKnzZcp37kyD0sNAqe | 224 KsFCOisq81QU8/5nJSTTmn9mGmALndi9ZXG19dn+6/YEcleXvCOwvr3OlJ5YGhDn |
| 225 C0MHh2kKndxAOWYxcfBRuNIkLq2NPfZyQLqj2BL99i2rI0E9MnYd4nfiLgtd+AUS | 225 MwkLV6gcb/r3ztExNJAatGAt0n8pm07s9G6ZIWuYnJAJ/L0vVcM0OEhKc/5Y4gm5 |
| 226 2QiqSRhSQQFD9NqxpckGL9dSsxvd7hZGi+Tv+BJSfQUpz6KySzNmGCcYOroWD2J7 | 226 2flT9oTiXfzrPLqS9byXzO9DVPdPybQshpUypuiR9Y4x+N612ck9TdckTIxYqorF |
| 227 wtPVGWId2mqEoC7j0XGRPJFowEAiS/sNtmiA2Lj4oBH02W/5UMx2/68cv04SdtHq | 227 eavnzTtchGdSWogzw1XVqS7JW2F8hwXBC9cZSv69uq/X5XDRpJII0vLKK7GU0IRX |
| 228 PJaFdsIwBwOSUzX9JmZ86kitl+clFoNthAHPnwYL1zd5jmglRIhyp50rfFcka3IV | 228 +TCS/DpnghBu44mfs991bplGvc6x6KyiOyGA2hETvd+TDg7uXfU5oqj3QcjLAFys |
| 229 pe0CAwEAAaOByzCByDAdBgNVHQ4EFgQUaAFyfjW9gKCuWVzSHiFScgQxTOAwHwYD | 229 7rECAwEAAaOByzCByDAdBgNVHQ4EFgQUvjNyR8Kxl0GZwDFXUlYMtVN4WqQwHwYD |
| 230 VR0jBBgwFoAUaAFyfjW9gKCuWVzSHiFScgQxTOAwNwYIKwYBBQUHAQEEKzApMCcG | 230 VR0jBBgwFoAUvjNyR8Kxl0GZwDFXUlYMtVN4WqQwNwYIKwYBBQUHAQEEKzApMCcG |
| 231 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw | 231 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| 232 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE | 232 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| 233 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA7cYXFv4NV | 233 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBq8V+ds90H |
| 234 x4ReUcxLADWC9ZDAe5X1xPD/W4q6g4pCOrsLXeYKOpEsmShA00luNFd73h+92Sy0 | 234 WlxEChffBGzlFwOmusGF80//FVKFfJiqWKs5sm2ucf+FNt7WcsY/e27jEzLVzdgi |
| 235 lWnr53kBbOyp4HiCjmgzVqdYmdRKl3OxvdfuvQcYqEfTKF0jB1khKrHgOvAhJB1E | 235 w0hx5+0Cl1qwvef91CFTZn4X35fNwHUY86hqDLzewwI2F+uZpLcBvoknPEOe1Ogk |
| 236 Zt0p6gL4F30rs/gVOg1gQtN98B1ZMJmuNiS8x9GXT0RnGbnqMw3nV4GIbjU9R4RD | 236 KoEL+jJ0kFNfwTwuzwTskF70II45BknujWkeX3/gkOqzzXBCQHYi7FO0x82/QTSS |
| 237 9/dDGtxnIS6jl3i8BkZpBCCL6JRLqILDKqSsWWBOWUbkf8xZIbRznilRqUhx5vZe | 237 KYCXmijx9IxlonTzeaUK+k+n39LCqCOfURUZLED9Z3U6JIxbmnHfApKQ2OJYInlE |
| 238 7CXwjodMtE1iEhRlSaNM/VmAOZcqV/BvmvrN0KfbNWCBIxO+pCkAvVjo4uGQJP33 | 238 EOUs/X4lbuJC7AJnRBeKrOWcsgvTIvWIL1Pm6KVDpGWXpjb2V9NLFShVBd9StRnI |
| 239 Tv5N+8epKugk | 239 fqg6SnlSM7lS |
| 240 -----END TRUST_ANCHOR_UNCONSTRAINED----- | 240 -----END TRUST_ANCHOR_UNCONSTRAINED----- |
| 241 | 241 |
| 242 150302120000Z | 242 150302120000Z |
| 243 -----BEGIN TIME----- | 243 -----BEGIN TIME----- |
| 244 MTUwMzAyMTIwMDAwWg== | 244 MTUwMzAyMTIwMDAwWg== |
| 245 -----END TIME----- | 245 -----END TIME----- |
| 246 | 246 |
| 247 FAIL | 247 FAIL |
| 248 -----BEGIN VERIFY_RESULT----- | 248 -----BEGIN VERIFY_RESULT----- |
| 249 RkFJTA== | 249 RkFJTA== |
| 250 -----END VERIFY_RESULT----- | 250 -----END VERIFY_RESULT----- |
| 251 | 251 |
| 252 serverAuth | 252 serverAuth |
| 253 -----BEGIN KEY_PURPOSE----- | 253 -----BEGIN KEY_PURPOSE----- |
| 254 c2VydmVyQXV0aA== | 254 c2VydmVyQXV0aA== |
| 255 -----END KEY_PURPOSE----- | 255 -----END KEY_PURPOSE----- |
| 256 | 256 |
| 257 ----- Certificate i=0 (CN=Target) ----- | 257 ----- Certificate i=0 (CN=Target) ----- |
| 258 ERROR: RSA modulus too small | 258 ERROR: RSA modulus too small |
| 259 actual: 512 | 259 actual: 512 |
| 260 minimum: 1024 | 260 minimum: 1024 |
| 261 ERROR: Unacceptable modulus length for RSA key | 261 ERROR: Unacceptable modulus length for RSA key |
| 262 ERROR: VerifySignedData failed | 262 ERROR: VerifySignedData failed |
| 263 | 263 |
| 264 | 264 |
| 265 -----BEGIN ERRORS----- | 265 -----BEGIN ERRORS----- |
| 266 LS0tLS0gQ2VydGlmaWNhdGUgaT0wIChDTj1UYXJnZXQpIC0tLS0tCkVSUk9SOiBSU0EgbW9kdWx1cyB0
b28gc21hbGwKICBhY3R1YWw6IDUxMgogIG1pbmltdW06IDEwMjQKRVJST1I6IFVuYWNjZXB0YWJsZSBt
b2R1bHVzIGxlbmd0aCBmb3IgUlNBIGtleQpFUlJPUjogVmVyaWZ5U2lnbmVkRGF0YSBmYWlsZWQKCg== | 266 LS0tLS0gQ2VydGlmaWNhdGUgaT0wIChDTj1UYXJnZXQpIC0tLS0tCkVSUk9SOiBSU0EgbW9kdWx1cyB0
b28gc21hbGwKICBhY3R1YWw6IDUxMgogIG1pbmltdW06IDEwMjQKRVJST1I6IFVuYWNjZXB0YWJsZSBt
b2R1bHVzIGxlbmd0aCBmb3IgUlNBIGtleQpFUlJPUjogVmVyaWZ5U2lnbmVkRGF0YSBmYWlsZWQKCg== |
| 267 -----END ERRORS----- | 267 -----END ERRORS----- |
| OLD | NEW |