| OLD | NEW |
| 1 [Created by: generate-chains.py] | 1 [Created by: generate-chains.py] |
| 2 | 2 |
| 3 Certificate chain with 1 intermediate, a trusted root, and a target | 3 Certificate chain where the target uses a EC key and has the single key usage de
cipherOnly |
| 4 certificate for serverAuth that has only keyAgreement. | |
| 5 | 4 |
| 6 Certificate: | 5 Certificate: |
| 7 Data: | 6 Data: |
| 8 Version: 3 (0x2) | 7 Version: 3 (0x2) |
| 9 Serial Number: 1 (0x1) | 8 Serial Number: 5 (0x5) |
| 10 Signature Algorithm: sha256WithRSAEncryption | 9 Signature Algorithm: sha256WithRSAEncryption |
| 11 Issuer: CN=Intermediate | 10 Issuer: CN=Intermediate |
| 12 Validity | 11 Validity |
| 13 Not Before: Jan 1 12:00:00 2015 GMT | 12 Not Before: Jan 1 12:00:00 2015 GMT |
| 14 Not After : Jan 1 12:00:00 2016 GMT | 13 Not After : Jan 1 12:00:00 2016 GMT |
| 15 Subject: CN=Target | 14 Subject: CN=Target |
| 16 Subject Public Key Info: | 15 Subject Public Key Info: |
| 17 Public Key Algorithm: rsaEncryption | 16 Public Key Algorithm: id-ecPublicKey |
| 18 Public-Key: (2048 bit) | 17 Public-Key: (384 bit) |
| 19 Modulus: | 18 pub: |
| 20 00:c2:71:61:77:a3:d3:f2:28:4a:34:25:90:1c:f7: | 19 04:6a:64:c7:4b:c6:a0:87:b5:c2:07:13:ac:b8:0d: |
| 21 a1:1b:3f:69:d9:ff:ce:c2:4a:bd:e1:61:a1:25:5f: | 20 37:95:90:e4:e2:82:95:31:6f:62:e5:1f:b0:59:30: |
| 22 47:9e:61:0e:91:14:c6:b1:26:41:8c:2a:5f:6e:8c: | 21 e9:2b:c6:e0:b4:83:9b:54:9d:61:56:d6:04:10:b7: |
| 23 2d:a7:89:89:55:95:58:44:6c:4f:87:6d:7b:64:77: | 22 f3:b9:5e:31:e6:cf:af:40:0e:aa:7a:2a:d8:1c:ee: |
| 24 de:1f:eb:51:ad:48:cf:16:44:93:89:1b:d7:6c:54: | 23 5d:d1:5c:17:64:c7:37:f7:34:3d:42:6c:10:0c:ad: |
| 25 76:71:86:28:11:b9:bc:c5:39:72:9f:1e:6c:78:de: | 24 e3:27:a9:ef:e6:02:48:66:0f:61:92:37:fe:26:53: |
| 26 43:0a:d2:91:b4:65:a2:99:e1:97:f9:ef:ea:b6:71: | 25 2c:9f:79:a7:29:7c:4c |
| 27 90:c9:fd:ed:14:9a:55:ed:17:30:43:ee:45:b1:c5: | 26 ASN1 OID: secp384r1 |
| 28 03:42:74:6e:33:d9:68:f1:28:ff:7c:78:6f:84:73: | |
| 29 39:a3:1e:53:e0:4a:ef:92:b2:53:30:83:1f:ec:08: | |
| 30 81:60:6b:44:ea:7e:c1:c9:cc:9f:71:7d:b5:47:6d: | |
| 31 50:05:56:28:96:39:d7:82:46:34:ad:a9:60:05:e3: | |
| 32 e0:4c:d9:ba:a6:70:b2:cd:ba:f4:7a:09:c1:f1:bf: | |
| 33 d0:3b:f2:46:e9:39:30:c2:d2:09:34:48:d9:1b:22: | |
| 34 b8:ba:c6:38:29:89:9a:01:ea:9a:a2:4e:71:eb:62: | |
| 35 3c:e3:8f:c5:e1:36:34:d0:b4:94:44:2e:c5:6b:fd: | |
| 36 8e:6d:1d:bb:a6:9a:78:a2:60:36:c7:2c:15:64:6c: | |
| 37 47:29 | |
| 38 Exponent: 65537 (0x10001) | |
| 39 X509v3 extensions: | 27 X509v3 extensions: |
| 40 X509v3 Subject Key Identifier: | 28 X509v3 Subject Key Identifier: |
| 41 8B:F3:5A:A4:F4:0E:9C:EC:39:8A:A0:B0:B9:30:72:E9:8B:75:AB:71 | 29 DE:7D:41:4C:94:83:61:60:ED:FA:58:3C:92:33:58:E5:79:C2:07:A0 |
| 42 X509v3 Authority Key Identifier: | 30 X509v3 Authority Key Identifier: |
| 43 keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:3
8 | 31 keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:3
8 |
| 44 | 32 |
| 45 Authority Information Access: | 33 Authority Information Access: |
| 46 CA Issuers - URI:http://url-for-aia/Intermediate.cer | 34 CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| 47 | 35 |
| 48 X509v3 CRL Distribution Points: | 36 X509v3 CRL Distribution Points: |
| 49 | 37 |
| 50 Full Name: | 38 Full Name: |
| 51 URI:http://url-for-crl/Intermediate.crl | 39 URI:http://url-for-crl/Intermediate.crl |
| 52 | 40 |
| 53 X509v3 Key Usage: critical | 41 X509v3 Key Usage: critical |
| 54 Key Agreement | 42 Decipher Only |
| 55 X509v3 Extended Key Usage: | 43 X509v3 Extended Key Usage: |
| 56 TLS Web Server Authentication | 44 TLS Web Server Authentication |
| 57 Signature Algorithm: sha256WithRSAEncryption | 45 Signature Algorithm: sha256WithRSAEncryption |
| 58 87:b2:f4:c9:6e:18:e1:0e:6c:52:46:e0:b9:e3:17:9b:fa:84: | 46 11:f2:af:e1:4f:41:30:fd:4f:d5:d9:3d:70:38:82:12:04:93: |
| 59 52:da:41:17:dd:3f:5a:f2:95:1d:d8:2f:5f:73:65:0a:85:dd: | 47 ee:1a:aa:d7:b8:72:91:84:d9:91:26:70:be:49:e5:a6:4a:69: |
| 60 62:d8:a1:86:37:f0:40:81:57:09:ff:4d:1c:37:a5:1e:a8:75: | 48 c1:4e:ec:95:9a:b6:52:81:9e:4d:a6:db:ab:2e:27:50:92:8b: |
| 61 fb:6a:54:3d:03:92:28:2f:8c:ab:7e:fc:bb:a4:b9:1e:35:2c: | 49 e7:3d:c4:43:c7:24:1b:04:b6:77:c4:bf:25:03:58:04:2b:b7: |
| 62 7c:fe:b0:f8:87:6b:11:e4:8f:72:00:68:54:bd:5e:f3:a8:4f: | 50 8f:6e:6e:f9:0b:f2:1f:0f:5c:62:d5:56:6e:1c:00:ca:97:03: |
| 63 d3:20:58:c9:b7:96:28:9c:44:f5:16:8d:24:17:d5:19:e8:73: | 51 17:f7:e4:54:d0:91:46:35:e5:b2:4b:19:e0:28:6d:2d:ef:69: |
| 64 2b:55:cf:d5:ba:cd:ac:55:e5:ab:cc:6c:2b:1d:bb:bd:5c:80: | 52 f0:ed:41:19:89:92:82:32:71:4d:e1:fe:92:7a:4e:73:9a:fe: |
| 65 c0:cb:a3:5d:99:22:c8:ca:68:22:64:55:1c:46:fd:a9:27:a2: | 53 30:57:ad:f7:c9:04:54:e1:d9:26:73:fc:b0:09:33:7d:31:6e: |
| 66 46:0c:af:17:fb:65:bc:79:24:d9:a1:06:57:ea:c6:5f:15:2b: | 54 92:6a:f3:f6:05:84:bb:17:14:dc:13:de:b6:d2:25:d8:f0:22: |
| 67 c7:45:47:1a:c0:9c:d9:90:33:37:b4:7e:e9:51:ba:7f:f5:b0: | 55 9c:19:55:cf:e4:79:42:f6:82:0d:ac:c8:96:8d:c8:06:7a:13: |
| 68 6a:c9:92:13:5d:da:b4:d6:f2:90:01:c3:a9:b7:bf:19:e3:13: | 56 43:84:8a:6e:e0:9b:1c:cd:05:4c:bc:00:7a:3d:e4:64:9b:f7: |
| 69 58:a3:e3:63:6d:aa:17:cf:17:a9:c6:db:ce:30:75:5d:e2:be: | 57 4e:d2:34:5d:31:f1:a4:86:38:a1:f5:9d:66:2d:a9:04:ed:19: |
| 70 16:57:04:a4:74:90:78:64:92:c5:68:d2:cc:5b:14:44:a6:01: | 58 80:99:3e:14:80:0d:5e:3d:7f:44:97:14:12:f8:43:32:6c:7c: |
| 71 52:a2:6e:be:d6:f9:b0:5b:b5:22:36:78:41:73:a9:62:1b:0f: | 59 b0:43:fa:85:c0:86:0d:8e:11:2a:e7:5c:40:ba:06:91:7f:18: |
| 72 77:34:a9:21 | 60 e1:a0:1d:f1 |
| 73 -----BEGIN CERTIFICATE----- | 61 -----BEGIN CERTIFICATE----- |
| 74 MIIDgzCCAmugAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl | 62 MIIC1jCCAb6gAwIBAgIBBTANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl |
| 75 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD | 63 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD |
| 76 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDCcWF3 | 64 VQQDDAZUYXJnZXQwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAARqZMdLxqCHtcIHE6y4 |
| 77 o9PyKEo0JZAc96EbP2nZ/87CSr3hYaElX0eeYQ6RFMaxJkGMKl9ujC2niYlVlVhE | 65 DTeVkOTigpUxb2LlH7BZMOkrxuC0g5tUnWFW1gQQt/O5XjHmz69ADqp6Ktgc7l3R |
| 78 bE+HbXtkd94f61GtSM8WRJOJG9dsVHZxhigRubzFOXKfHmx43kMK0pG0ZaKZ4Zf5 | 66 XBdkxzf3ND1CbBAMreMnqe/mAkhmD2GSN/4mUyyfeacpfEyjgeAwgd0wHQYDVR0O |
| 79 7+q2cZDJ/e0UmlXtFzBD7kWxxQNCdG4z2WjxKP98eG+EczmjHlPgSu+SslMwgx/s | 67 BBYEFN59QUyUg2Fg7fpYPJIzWOV5wgegMB8GA1UdIwQYMBaAFIAUHgTGoMQoJTAo |
| 80 CIFga0TqfsHJzJ9xfbVHbVAFViiWOdeCRjStqWAF4+BM2bqmcLLNuvR6CcHxv9A7 | 68 Wb1AGmUHBRg4MD8GCCsGAQUFBwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3Vy |
| 81 8kbpOTDC0gk0SNkbIri6xjgpiZoB6pqiTnHrYjzjj8XhNjTQtJRELsVr/Y5tHbum | 69 bC1mb3ItYWlhL0ludGVybWVkaWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0 |
| 82 mniiYDbHLBVkbEcpAgMBAAGjgd8wgdwwHQYDVR0OBBYEFIvzWqT0DpzsOYqgsLkw | 70 cDovL3VybC1mb3ItY3JsL0ludGVybWVkaWF0ZS5jcmwwDwYDVR0PAQH/BAUDAwcA |
| 83 cumLdatxMB8GA1UdIwQYMBaAFIAUHgTGoMQoJTAoWb1AGmUHBRg4MD8GCCsGAQUF | 71 gDATBgNVHSUEDDAKBggrBgEFBQcDATANBgkqhkiG9w0BAQsFAAOCAQEAEfKv4U9B |
| 84 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk | 72 MP1P1dk9cDiCEgST7hqq17hykYTZkSZwvknlpkppwU7slZq2UoGeTabbqy4nUJKL |
| 85 aWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu | 73 5z3EQ8ckGwS2d8S/JQNYBCu3j25u+QvyHw9cYtVWbhwAypcDF/fkVNCRRjXlsksZ |
| 86 dGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgMIMBMGA1UdJQQMMAoGCCsGAQUF | 74 4ChtLe9p8O1BGYmSgjJxTeH+knpOc5r+MFet98kEVOHZJnP8sAkzfTFukmrz9gWE |
| 87 BwMBMA0GCSqGSIb3DQEBCwUAA4IBAQCHsvTJbhjhDmxSRuC54xeb+oRS2kEX3T9a | 75 uxcU3BPettIl2PAinBlVz+R5QvaCDazIlo3IBnoTQ4SKbuCbHM0FTLwAej3kZJv3 |
| 88 8pUd2C9fc2UKhd1i2KGGN/BAgVcJ/00cN6UeqHX7alQ9A5IoL4yrfvy7pLkeNSx8 | 76 TtI0XTHxpIY4ofWdZi2pBO0ZgJk+FIANXj1/RJcUEvhDMmx8sEP6hcCGDY4RKudc |
| 89 /rD4h2sR5I9yAGhUvV7zqE/TIFjJt5YonET1Fo0kF9UZ6HMrVc/Vus2sVeWrzGwr | 77 QLoGkX8Y4aAd8Q== |
| 90 Hbu9XIDAy6NdmSLIymgiZFUcRv2pJ6JGDK8X+2W8eSTZoQZX6sZfFSvHRUcawJzZ | |
| 91 kDM3tH7pUbp/9bBqyZITXdq01vKQAcOpt78Z4xNYo+NjbaoXzxepxtvOMHVd4r4W | |
| 92 VwSkdJB4ZJLFaNLMWxREpgFSom6+1vmwW7UiNnhBc6liGw93NKkh | |
| 93 -----END CERTIFICATE----- | 78 -----END CERTIFICATE----- |
| 94 | 79 |
| 95 Certificate: | 80 Certificate: |
| 96 Data: | 81 Data: |
| 97 Version: 3 (0x2) | 82 Version: 3 (0x2) |
| 98 Serial Number: 2 (0x2) | 83 Serial Number: 2 (0x2) |
| 99 Signature Algorithm: sha256WithRSAEncryption | 84 Signature Algorithm: sha256WithRSAEncryption |
| 100 Issuer: CN=Root | 85 Issuer: CN=Root |
| 101 Validity | 86 Validity |
| 102 Not Before: Jan 1 12:00:00 2015 GMT | 87 Not Before: Jan 1 12:00:00 2015 GMT |
| (...skipping 159 matching lines...) Expand 10 before | Expand all | Expand 10 after Loading... |
| 262 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw | 247 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| 263 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE | 248 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| 264 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6yqCHKJT0 | 249 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6yqCHKJT0 |
| 265 FibLHTuW960XcRgxhnnw9OtXM2FYM6tFtEBQBafGtqg4t1CfWYXyVzPpamIrTV3J | 250 FibLHTuW960XcRgxhnnw9OtXM2FYM6tFtEBQBafGtqg4t1CfWYXyVzPpamIrTV3J |
| 266 +/6hys5ZJV3n+1V5EaXvFVGQlJpYIO+pgzhCLRHoGNktHz8eUuNZJdUt8t3/DIkH | 251 +/6hys5ZJV3n+1V5EaXvFVGQlJpYIO+pgzhCLRHoGNktHz8eUuNZJdUt8t3/DIkH |
| 267 aAVFPA6FPB/pgV/D9+rC0e0k2FWDFHVJP1LiGST21p+CdXTll6+vBKtrQcdhHJvt | 252 aAVFPA6FPB/pgV/D9+rC0e0k2FWDFHVJP1LiGST21p+CdXTll6+vBKtrQcdhHJvt |
| 268 PpzG/+dhOyApMF9ftUdxxoeuqjHO0bE/J+7KZg5tK+GZZmaUgRAYKE9RMnrE4c4W | 253 PpzG/+dhOyApMF9ftUdxxoeuqjHO0bE/J+7KZg5tK+GZZmaUgRAYKE9RMnrE4c4W |
| 269 rmkmDq0u4DDMUgAYPeJ1doMfGQJ89lQed/gY4h7ACyq5amppJV2n+ck7vSLMO/H9 | 254 rmkmDq0u4DDMUgAYPeJ1doMfGQJ89lQed/gY4h7ACyq5amppJV2n+ck7vSLMO/H9 |
| 270 QfGl/Gtlnt98 | 255 QfGl/Gtlnt98 |
| 271 -----END CERTIFICATE----- | 256 -----END CERTIFICATE----- |
| OLD | NEW |