| OLD | NEW |
| 1 [Created by: generate-chains.py] | 1 [Created by: generate-chains.py] |
| 2 | 2 |
| 3 Certificate chain with 1 intermediate, a trusted root, and a target | 3 Certificate chain where the target uses a EC key and has the single key usage di
gitalSignature |
| 4 certificate for serverAuth that has only keyAgreement. | |
| 5 | 4 |
| 6 Certificate: | 5 Certificate: |
| 7 Data: | 6 Data: |
| 8 Version: 3 (0x2) | 7 Version: 3 (0x2) |
| 9 Serial Number: 1 (0x1) | 8 Serial Number: 6 (0x6) |
| 10 Signature Algorithm: sha256WithRSAEncryption | 9 Signature Algorithm: sha256WithRSAEncryption |
| 11 Issuer: CN=Intermediate | 10 Issuer: CN=Intermediate |
| 12 Validity | 11 Validity |
| 13 Not Before: Jan 1 12:00:00 2015 GMT | 12 Not Before: Jan 1 12:00:00 2015 GMT |
| 14 Not After : Jan 1 12:00:00 2016 GMT | 13 Not After : Jan 1 12:00:00 2016 GMT |
| 15 Subject: CN=Target | 14 Subject: CN=Target |
| 16 Subject Public Key Info: | 15 Subject Public Key Info: |
| 17 Public Key Algorithm: rsaEncryption | 16 Public Key Algorithm: id-ecPublicKey |
| 18 Public-Key: (2048 bit) | 17 Public-Key: (384 bit) |
| 19 Modulus: | 18 pub: |
| 20 00:c2:71:61:77:a3:d3:f2:28:4a:34:25:90:1c:f7: | 19 04:6a:64:c7:4b:c6:a0:87:b5:c2:07:13:ac:b8:0d: |
| 21 a1:1b:3f:69:d9:ff:ce:c2:4a:bd:e1:61:a1:25:5f: | 20 37:95:90:e4:e2:82:95:31:6f:62:e5:1f:b0:59:30: |
| 22 47:9e:61:0e:91:14:c6:b1:26:41:8c:2a:5f:6e:8c: | 21 e9:2b:c6:e0:b4:83:9b:54:9d:61:56:d6:04:10:b7: |
| 23 2d:a7:89:89:55:95:58:44:6c:4f:87:6d:7b:64:77: | 22 f3:b9:5e:31:e6:cf:af:40:0e:aa:7a:2a:d8:1c:ee: |
| 24 de:1f:eb:51:ad:48:cf:16:44:93:89:1b:d7:6c:54: | 23 5d:d1:5c:17:64:c7:37:f7:34:3d:42:6c:10:0c:ad: |
| 25 76:71:86:28:11:b9:bc:c5:39:72:9f:1e:6c:78:de: | 24 e3:27:a9:ef:e6:02:48:66:0f:61:92:37:fe:26:53: |
| 26 43:0a:d2:91:b4:65:a2:99:e1:97:f9:ef:ea:b6:71: | 25 2c:9f:79:a7:29:7c:4c |
| 27 90:c9:fd:ed:14:9a:55:ed:17:30:43:ee:45:b1:c5: | 26 ASN1 OID: secp384r1 |
| 28 03:42:74:6e:33:d9:68:f1:28:ff:7c:78:6f:84:73: | |
| 29 39:a3:1e:53:e0:4a:ef:92:b2:53:30:83:1f:ec:08: | |
| 30 81:60:6b:44:ea:7e:c1:c9:cc:9f:71:7d:b5:47:6d: | |
| 31 50:05:56:28:96:39:d7:82:46:34:ad:a9:60:05:e3: | |
| 32 e0:4c:d9:ba:a6:70:b2:cd:ba:f4:7a:09:c1:f1:bf: | |
| 33 d0:3b:f2:46:e9:39:30:c2:d2:09:34:48:d9:1b:22: | |
| 34 b8:ba:c6:38:29:89:9a:01:ea:9a:a2:4e:71:eb:62: | |
| 35 3c:e3:8f:c5:e1:36:34:d0:b4:94:44:2e:c5:6b:fd: | |
| 36 8e:6d:1d:bb:a6:9a:78:a2:60:36:c7:2c:15:64:6c: | |
| 37 47:29 | |
| 38 Exponent: 65537 (0x10001) | |
| 39 X509v3 extensions: | 27 X509v3 extensions: |
| 40 X509v3 Subject Key Identifier: | 28 X509v3 Subject Key Identifier: |
| 41 8B:F3:5A:A4:F4:0E:9C:EC:39:8A:A0:B0:B9:30:72:E9:8B:75:AB:71 | 29 DE:7D:41:4C:94:83:61:60:ED:FA:58:3C:92:33:58:E5:79:C2:07:A0 |
| 42 X509v3 Authority Key Identifier: | 30 X509v3 Authority Key Identifier: |
| 43 keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:3
8 | 31 keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:3
8 |
| 44 | 32 |
| 45 Authority Information Access: | 33 Authority Information Access: |
| 46 CA Issuers - URI:http://url-for-aia/Intermediate.cer | 34 CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| 47 | 35 |
| 48 X509v3 CRL Distribution Points: | 36 X509v3 CRL Distribution Points: |
| 49 | 37 |
| 50 Full Name: | 38 Full Name: |
| 51 URI:http://url-for-crl/Intermediate.crl | 39 URI:http://url-for-crl/Intermediate.crl |
| 52 | 40 |
| 53 X509v3 Key Usage: critical | 41 X509v3 Key Usage: critical |
| 54 Key Agreement | 42 Digital Signature |
| 55 X509v3 Extended Key Usage: | 43 X509v3 Extended Key Usage: |
| 56 TLS Web Server Authentication | 44 TLS Web Server Authentication |
| 57 Signature Algorithm: sha256WithRSAEncryption | 45 Signature Algorithm: sha256WithRSAEncryption |
| 58 87:b2:f4:c9:6e:18:e1:0e:6c:52:46:e0:b9:e3:17:9b:fa:84: | 46 24:66:4c:fc:c5:ed:2b:fb:9e:97:2d:0c:9d:1b:11:f1:86:90: |
| 59 52:da:41:17:dd:3f:5a:f2:95:1d:d8:2f:5f:73:65:0a:85:dd: | 47 33:8a:37:55:4e:a9:8d:b4:7a:09:27:fa:87:06:0f:0f:d6:89: |
| 60 62:d8:a1:86:37:f0:40:81:57:09:ff:4d:1c:37:a5:1e:a8:75: | 48 04:c0:90:6a:c9:8e:c6:6b:18:1c:2b:59:7e:44:54:53:00:5d: |
| 61 fb:6a:54:3d:03:92:28:2f:8c:ab:7e:fc:bb:a4:b9:1e:35:2c: | 49 ae:5c:b7:ba:23:a8:24:37:04:00:43:b0:78:84:59:04:b8:b1: |
| 62 7c:fe:b0:f8:87:6b:11:e4:8f:72:00:68:54:bd:5e:f3:a8:4f: | 50 07:00:a3:33:77:88:7a:56:df:a9:f8:ea:1e:a6:85:07:cc:53: |
| 63 d3:20:58:c9:b7:96:28:9c:44:f5:16:8d:24:17:d5:19:e8:73: | 51 db:7c:ac:e3:f1:67:83:88:b9:34:02:85:2a:78:1d:d6:87:1a: |
| 64 2b:55:cf:d5:ba:cd:ac:55:e5:ab:cc:6c:2b:1d:bb:bd:5c:80: | 52 8e:2a:29:e1:c8:a5:5c:de:ae:87:b8:6c:8a:93:47:fa:05:4d: |
| 65 c0:cb:a3:5d:99:22:c8:ca:68:22:64:55:1c:46:fd:a9:27:a2: | 53 8a:85:94:10:9b:09:65:57:bf:cf:38:24:77:6d:cd:98:18:cb: |
| 66 46:0c:af:17:fb:65:bc:79:24:d9:a1:06:57:ea:c6:5f:15:2b: | 54 5a:d1:32:2d:08:42:c0:92:17:c8:c5:4f:06:19:e9:9c:3d:84: |
| 67 c7:45:47:1a:c0:9c:d9:90:33:37:b4:7e:e9:51:ba:7f:f5:b0: | 55 d8:00:55:4e:c2:8e:fc:b2:ba:3f:a3:35:11:b4:1c:45:08:31: |
| 68 6a:c9:92:13:5d:da:b4:d6:f2:90:01:c3:a9:b7:bf:19:e3:13: | 56 7a:70:2d:8b:07:8e:46:e2:1d:ed:bb:e5:ca:bf:2a:2f:71:bb: |
| 69 58:a3:e3:63:6d:aa:17:cf:17:a9:c6:db:ce:30:75:5d:e2:be: | 57 75:95:05:50:ff:b8:00:b0:66:e2:f0:43:ba:8d:67:36:1d:5c: |
| 70 16:57:04:a4:74:90:78:64:92:c5:68:d2:cc:5b:14:44:a6:01: | 58 6d:f7:51:9a:15:40:76:89:53:8a:4b:93:3a:72:97:7b:d3:94: |
| 71 52:a2:6e:be:d6:f9:b0:5b:b5:22:36:78:41:73:a9:62:1b:0f: | 59 60:ef:1b:0c:20:dc:73:08:05:b5:27:78:30:33:10:23:ec:ac: |
| 72 77:34:a9:21 | 60 b9:d4:01:4c |
| 73 -----BEGIN CERTIFICATE----- | 61 -----BEGIN CERTIFICATE----- |
| 74 MIIDgzCCAmugAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl | 62 MIIC1TCCAb2gAwIBAgIBBjANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl |
| 75 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD | 63 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD |
| 76 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDCcWF3 | 64 VQQDDAZUYXJnZXQwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAARqZMdLxqCHtcIHE6y4 |
| 77 o9PyKEo0JZAc96EbP2nZ/87CSr3hYaElX0eeYQ6RFMaxJkGMKl9ujC2niYlVlVhE | 65 DTeVkOTigpUxb2LlH7BZMOkrxuC0g5tUnWFW1gQQt/O5XjHmz69ADqp6Ktgc7l3R |
| 78 bE+HbXtkd94f61GtSM8WRJOJG9dsVHZxhigRubzFOXKfHmx43kMK0pG0ZaKZ4Zf5 | 66 XBdkxzf3ND1CbBAMreMnqe/mAkhmD2GSN/4mUyyfeacpfEyjgd8wgdwwHQYDVR0O |
| 79 7+q2cZDJ/e0UmlXtFzBD7kWxxQNCdG4z2WjxKP98eG+EczmjHlPgSu+SslMwgx/s | 67 BBYEFN59QUyUg2Fg7fpYPJIzWOV5wgegMB8GA1UdIwQYMBaAFIAUHgTGoMQoJTAo |
| 80 CIFga0TqfsHJzJ9xfbVHbVAFViiWOdeCRjStqWAF4+BM2bqmcLLNuvR6CcHxv9A7 | 68 Wb1AGmUHBRg4MD8GCCsGAQUFBwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3Vy |
| 81 8kbpOTDC0gk0SNkbIri6xjgpiZoB6pqiTnHrYjzjj8XhNjTQtJRELsVr/Y5tHbum | 69 bC1mb3ItYWlhL0ludGVybWVkaWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0 |
| 82 mniiYDbHLBVkbEcpAgMBAAGjgd8wgdwwHQYDVR0OBBYEFIvzWqT0DpzsOYqgsLkw | 70 cDovL3VybC1mb3ItY3JsL0ludGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgeA |
| 83 cumLdatxMB8GA1UdIwQYMBaAFIAUHgTGoMQoJTAoWb1AGmUHBRg4MD8GCCsGAQUF | 71 MBMGA1UdJQQMMAoGCCsGAQUFBwMBMA0GCSqGSIb3DQEBCwUAA4IBAQAkZkz8xe0r |
| 84 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk | 72 +56XLQydGxHxhpAzijdVTqmNtHoJJ/qHBg8P1okEwJBqyY7GaxgcK1l+RFRTAF2u |
| 85 aWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu | 73 XLe6I6gkNwQAQ7B4hFkEuLEHAKMzd4h6Vt+p+OoepoUHzFPbfKzj8WeDiLk0AoUq |
| 86 dGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgMIMBMGA1UdJQQMMAoGCCsGAQUF | 74 eB3WhxqOKinhyKVc3q6HuGyKk0f6BU2KhZQQmwllV7/POCR3bc2YGMta0TItCELA |
| 87 BwMBMA0GCSqGSIb3DQEBCwUAA4IBAQCHsvTJbhjhDmxSRuC54xeb+oRS2kEX3T9a | 75 khfIxU8GGemcPYTYAFVOwo78sro/ozURtBxFCDF6cC2LB45G4h3tu+XKvyovcbt1 |
| 88 8pUd2C9fc2UKhd1i2KGGN/BAgVcJ/00cN6UeqHX7alQ9A5IoL4yrfvy7pLkeNSx8 | 76 lQVQ/7gAsGbi8EO6jWc2HVxt91GaFUB2iVOKS5M6cpd705Rg7xsMINxzCAW1J3gw |
| 89 /rD4h2sR5I9yAGhUvV7zqE/TIFjJt5YonET1Fo0kF9UZ6HMrVc/Vus2sVeWrzGwr | 77 MxAj7Ky51AFM |
| 90 Hbu9XIDAy6NdmSLIymgiZFUcRv2pJ6JGDK8X+2W8eSTZoQZX6sZfFSvHRUcawJzZ | |
| 91 kDM3tH7pUbp/9bBqyZITXdq01vKQAcOpt78Z4xNYo+NjbaoXzxepxtvOMHVd4r4W | |
| 92 VwSkdJB4ZJLFaNLMWxREpgFSom6+1vmwW7UiNnhBc6liGw93NKkh | |
| 93 -----END CERTIFICATE----- | 78 -----END CERTIFICATE----- |
| 94 | 79 |
| 95 Certificate: | 80 Certificate: |
| 96 Data: | 81 Data: |
| 97 Version: 3 (0x2) | 82 Version: 3 (0x2) |
| 98 Serial Number: 2 (0x2) | 83 Serial Number: 2 (0x2) |
| 99 Signature Algorithm: sha256WithRSAEncryption | 84 Signature Algorithm: sha256WithRSAEncryption |
| 100 Issuer: CN=Root | 85 Issuer: CN=Root |
| 101 Validity | 86 Validity |
| 102 Not Before: Jan 1 12:00:00 2015 GMT | 87 Not Before: Jan 1 12:00:00 2015 GMT |
| (...skipping 159 matching lines...) Expand 10 before | Expand all | Expand 10 after Loading... |
| 262 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw | 247 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| 263 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE | 248 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| 264 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6yqCHKJT0 | 249 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6yqCHKJT0 |
| 265 FibLHTuW960XcRgxhnnw9OtXM2FYM6tFtEBQBafGtqg4t1CfWYXyVzPpamIrTV3J | 250 FibLHTuW960XcRgxhnnw9OtXM2FYM6tFtEBQBafGtqg4t1CfWYXyVzPpamIrTV3J |
| 266 +/6hys5ZJV3n+1V5EaXvFVGQlJpYIO+pgzhCLRHoGNktHz8eUuNZJdUt8t3/DIkH | 251 +/6hys5ZJV3n+1V5EaXvFVGQlJpYIO+pgzhCLRHoGNktHz8eUuNZJdUt8t3/DIkH |
| 267 aAVFPA6FPB/pgV/D9+rC0e0k2FWDFHVJP1LiGST21p+CdXTll6+vBKtrQcdhHJvt | 252 aAVFPA6FPB/pgV/D9+rC0e0k2FWDFHVJP1LiGST21p+CdXTll6+vBKtrQcdhHJvt |
| 268 PpzG/+dhOyApMF9ftUdxxoeuqjHO0bE/J+7KZg5tK+GZZmaUgRAYKE9RMnrE4c4W | 253 PpzG/+dhOyApMF9ftUdxxoeuqjHO0bE/J+7KZg5tK+GZZmaUgRAYKE9RMnrE4c4W |
| 269 rmkmDq0u4DDMUgAYPeJ1doMfGQJ89lQed/gY4h7ACyq5amppJV2n+ck7vSLMO/H9 | 254 rmkmDq0u4DDMUgAYPeJ1doMfGQJ89lQed/gY4h7ACyq5amppJV2n+ck7vSLMO/H9 |
| 270 QfGl/Gtlnt98 | 255 QfGl/Gtlnt98 |
| 271 -----END CERTIFICATE----- | 256 -----END CERTIFICATE----- |
| OLD | NEW |