| OLD | NEW |
| 1 [Created by: generate-chains.py] | 1 [Created by: generate-chains.py] |
| 2 | 2 |
| 3 Certificate chain with 1 intermediate, a trusted root, and a target | 3 Certificate chain where the target uses a EC key and has the single key usage ke
yAgreement |
| 4 certificate for serverAuth that has only keyAgreement. | |
| 5 | 4 |
| 6 Certificate: | 5 Certificate: |
| 7 Data: | 6 Data: |
| 8 Version: 3 (0x2) | 7 Version: 3 (0x2) |
| 9 Serial Number: 1 (0x1) | 8 Serial Number: 7 (0x7) |
| 10 Signature Algorithm: sha256WithRSAEncryption | 9 Signature Algorithm: sha256WithRSAEncryption |
| 11 Issuer: CN=Intermediate | 10 Issuer: CN=Intermediate |
| 12 Validity | 11 Validity |
| 13 Not Before: Jan 1 12:00:00 2015 GMT | 12 Not Before: Jan 1 12:00:00 2015 GMT |
| 14 Not After : Jan 1 12:00:00 2016 GMT | 13 Not After : Jan 1 12:00:00 2016 GMT |
| 15 Subject: CN=Target | 14 Subject: CN=Target |
| 16 Subject Public Key Info: | 15 Subject Public Key Info: |
| 17 Public Key Algorithm: rsaEncryption | 16 Public Key Algorithm: id-ecPublicKey |
| 18 Public-Key: (2048 bit) | 17 Public-Key: (384 bit) |
| 19 Modulus: | 18 pub: |
| 20 00:c2:71:61:77:a3:d3:f2:28:4a:34:25:90:1c:f7: | 19 04:6a:64:c7:4b:c6:a0:87:b5:c2:07:13:ac:b8:0d: |
| 21 a1:1b:3f:69:d9:ff:ce:c2:4a:bd:e1:61:a1:25:5f: | 20 37:95:90:e4:e2:82:95:31:6f:62:e5:1f:b0:59:30: |
| 22 47:9e:61:0e:91:14:c6:b1:26:41:8c:2a:5f:6e:8c: | 21 e9:2b:c6:e0:b4:83:9b:54:9d:61:56:d6:04:10:b7: |
| 23 2d:a7:89:89:55:95:58:44:6c:4f:87:6d:7b:64:77: | 22 f3:b9:5e:31:e6:cf:af:40:0e:aa:7a:2a:d8:1c:ee: |
| 24 de:1f:eb:51:ad:48:cf:16:44:93:89:1b:d7:6c:54: | 23 5d:d1:5c:17:64:c7:37:f7:34:3d:42:6c:10:0c:ad: |
| 25 76:71:86:28:11:b9:bc:c5:39:72:9f:1e:6c:78:de: | 24 e3:27:a9:ef:e6:02:48:66:0f:61:92:37:fe:26:53: |
| 26 43:0a:d2:91:b4:65:a2:99:e1:97:f9:ef:ea:b6:71: | 25 2c:9f:79:a7:29:7c:4c |
| 27 90:c9:fd:ed:14:9a:55:ed:17:30:43:ee:45:b1:c5: | 26 ASN1 OID: secp384r1 |
| 28 03:42:74:6e:33:d9:68:f1:28:ff:7c:78:6f:84:73: | |
| 29 39:a3:1e:53:e0:4a:ef:92:b2:53:30:83:1f:ec:08: | |
| 30 81:60:6b:44:ea:7e:c1:c9:cc:9f:71:7d:b5:47:6d: | |
| 31 50:05:56:28:96:39:d7:82:46:34:ad:a9:60:05:e3: | |
| 32 e0:4c:d9:ba:a6:70:b2:cd:ba:f4:7a:09:c1:f1:bf: | |
| 33 d0:3b:f2:46:e9:39:30:c2:d2:09:34:48:d9:1b:22: | |
| 34 b8:ba:c6:38:29:89:9a:01:ea:9a:a2:4e:71:eb:62: | |
| 35 3c:e3:8f:c5:e1:36:34:d0:b4:94:44:2e:c5:6b:fd: | |
| 36 8e:6d:1d:bb:a6:9a:78:a2:60:36:c7:2c:15:64:6c: | |
| 37 47:29 | |
| 38 Exponent: 65537 (0x10001) | |
| 39 X509v3 extensions: | 27 X509v3 extensions: |
| 40 X509v3 Subject Key Identifier: | 28 X509v3 Subject Key Identifier: |
| 41 8B:F3:5A:A4:F4:0E:9C:EC:39:8A:A0:B0:B9:30:72:E9:8B:75:AB:71 | 29 DE:7D:41:4C:94:83:61:60:ED:FA:58:3C:92:33:58:E5:79:C2:07:A0 |
| 42 X509v3 Authority Key Identifier: | 30 X509v3 Authority Key Identifier: |
| 43 keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:3
8 | 31 keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:3
8 |
| 44 | 32 |
| 45 Authority Information Access: | 33 Authority Information Access: |
| 46 CA Issuers - URI:http://url-for-aia/Intermediate.cer | 34 CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| 47 | 35 |
| 48 X509v3 CRL Distribution Points: | 36 X509v3 CRL Distribution Points: |
| 49 | 37 |
| 50 Full Name: | 38 Full Name: |
| 51 URI:http://url-for-crl/Intermediate.crl | 39 URI:http://url-for-crl/Intermediate.crl |
| 52 | 40 |
| 53 X509v3 Key Usage: critical | 41 X509v3 Key Usage: critical |
| 54 Key Agreement | 42 Key Agreement |
| 55 X509v3 Extended Key Usage: | 43 X509v3 Extended Key Usage: |
| 56 TLS Web Server Authentication | 44 TLS Web Server Authentication |
| 57 Signature Algorithm: sha256WithRSAEncryption | 45 Signature Algorithm: sha256WithRSAEncryption |
| 58 87:b2:f4:c9:6e:18:e1:0e:6c:52:46:e0:b9:e3:17:9b:fa:84: | 46 2d:41:10:d3:9a:e4:6c:2f:62:73:a0:b6:1e:c6:1c:79:67:ce: |
| 59 52:da:41:17:dd:3f:5a:f2:95:1d:d8:2f:5f:73:65:0a:85:dd: | 47 7c:f7:0c:75:6a:60:8d:82:38:75:11:e3:2b:8b:97:5c:63:9f: |
| 60 62:d8:a1:86:37:f0:40:81:57:09:ff:4d:1c:37:a5:1e:a8:75: | 48 6b:8a:cd:72:19:ad:80:b0:dd:a0:99:85:90:33:9a:80:c5:01: |
| 61 fb:6a:54:3d:03:92:28:2f:8c:ab:7e:fc:bb:a4:b9:1e:35:2c: | 49 6f:cc:86:79:dd:13:ca:c5:70:54:d8:bf:5e:b1:f5:94:2f:2b: |
| 62 7c:fe:b0:f8:87:6b:11:e4:8f:72:00:68:54:bd:5e:f3:a8:4f: | 50 42:96:13:8d:ca:ea:91:6d:4c:90:e7:5e:59:3e:e3:9c:3e:b4: |
| 63 d3:20:58:c9:b7:96:28:9c:44:f5:16:8d:24:17:d5:19:e8:73: | 51 4a:6f:e2:61:3a:f9:71:28:de:3b:f8:af:cb:a0:25:ad:ce:b9: |
| 64 2b:55:cf:d5:ba:cd:ac:55:e5:ab:cc:6c:2b:1d:bb:bd:5c:80: | 52 ca:9e:ca:42:98:5d:c4:5a:50:92:29:3e:e4:69:20:7a:24:fe: |
| 65 c0:cb:a3:5d:99:22:c8:ca:68:22:64:55:1c:46:fd:a9:27:a2: | 53 47:e8:05:72:3b:0b:03:31:39:9e:ba:82:22:be:3b:9c:85:01: |
| 66 46:0c:af:17:fb:65:bc:79:24:d9:a1:06:57:ea:c6:5f:15:2b: | 54 01:5a:df:ba:6b:03:c9:61:0d:8b:14:8c:15:ff:2b:5a:10:60: |
| 67 c7:45:47:1a:c0:9c:d9:90:33:37:b4:7e:e9:51:ba:7f:f5:b0: | 55 bb:90:d1:b3:79:d1:fe:1d:f4:27:7c:32:48:14:a8:fa:0e:68: |
| 68 6a:c9:92:13:5d:da:b4:d6:f2:90:01:c3:a9:b7:bf:19:e3:13: | 56 31:54:ea:86:16:95:2f:f1:4f:e2:34:48:c8:68:a9:15:c3:db: |
| 69 58:a3:e3:63:6d:aa:17:cf:17:a9:c6:db:ce:30:75:5d:e2:be: | 57 9a:5d:34:10:60:48:d8:78:42:ce:54:0a:44:38:b1:9b:ca:69: |
| 70 16:57:04:a4:74:90:78:64:92:c5:68:d2:cc:5b:14:44:a6:01: | 58 c7:d2:94:27:2e:44:ea:7f:2c:df:ca:a2:62:6f:e6:6a:d9:a3: |
| 71 52:a2:6e:be:d6:f9:b0:5b:b5:22:36:78:41:73:a9:62:1b:0f: | 59 ec:5f:00:db:09:00:cf:a2:c2:39:fd:1b:65:78:f3:53:23:a3: |
| 72 77:34:a9:21 | 60 2f:ec:bb:a3 |
| 73 -----BEGIN CERTIFICATE----- | 61 -----BEGIN CERTIFICATE----- |
| 74 MIIDgzCCAmugAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl | 62 MIIC1TCCAb2gAwIBAgIBBzANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl |
| 75 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD | 63 cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTYwMTAxMTIwMDAwWjARMQ8wDQYD |
| 76 VQQDDAZUYXJnZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDCcWF3 | 64 VQQDDAZUYXJnZXQwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAARqZMdLxqCHtcIHE6y4 |
| 77 o9PyKEo0JZAc96EbP2nZ/87CSr3hYaElX0eeYQ6RFMaxJkGMKl9ujC2niYlVlVhE | 65 DTeVkOTigpUxb2LlH7BZMOkrxuC0g5tUnWFW1gQQt/O5XjHmz69ADqp6Ktgc7l3R |
| 78 bE+HbXtkd94f61GtSM8WRJOJG9dsVHZxhigRubzFOXKfHmx43kMK0pG0ZaKZ4Zf5 | 66 XBdkxzf3ND1CbBAMreMnqe/mAkhmD2GSN/4mUyyfeacpfEyjgd8wgdwwHQYDVR0O |
| 79 7+q2cZDJ/e0UmlXtFzBD7kWxxQNCdG4z2WjxKP98eG+EczmjHlPgSu+SslMwgx/s | 67 BBYEFN59QUyUg2Fg7fpYPJIzWOV5wgegMB8GA1UdIwQYMBaAFIAUHgTGoMQoJTAo |
| 80 CIFga0TqfsHJzJ9xfbVHbVAFViiWOdeCRjStqWAF4+BM2bqmcLLNuvR6CcHxv9A7 | 68 Wb1AGmUHBRg4MD8GCCsGAQUFBwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3Vy |
| 81 8kbpOTDC0gk0SNkbIri6xjgpiZoB6pqiTnHrYjzjj8XhNjTQtJRELsVr/Y5tHbum | 69 bC1mb3ItYWlhL0ludGVybWVkaWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0 |
| 82 mniiYDbHLBVkbEcpAgMBAAGjgd8wgdwwHQYDVR0OBBYEFIvzWqT0DpzsOYqgsLkw | 70 cDovL3VybC1mb3ItY3JsL0ludGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgMI |
| 83 cumLdatxMB8GA1UdIwQYMBaAFIAUHgTGoMQoJTAoWb1AGmUHBRg4MD8GCCsGAQUF | 71 MBMGA1UdJQQMMAoGCCsGAQUFBwMBMA0GCSqGSIb3DQEBCwUAA4IBAQAtQRDTmuRs |
| 84 BwEBBDMwMTAvBggrBgEFBQcwAoYjaHR0cDovL3VybC1mb3ItYWlhL0ludGVybWVk | 72 L2JzoLYexhx5Z8589wx1amCNgjh1EeMri5dcY59ris1yGa2AsN2gmYWQM5qAxQFv |
| 85 aWF0ZS5jZXIwNAYDVR0fBC0wKzApoCegJYYjaHR0cDovL3VybC1mb3ItY3JsL0lu | 73 zIZ53RPKxXBU2L9esfWULytClhONyuqRbUyQ515ZPuOcPrRKb+JhOvlxKN47+K/L |
| 86 dGVybWVkaWF0ZS5jcmwwDgYDVR0PAQH/BAQDAgMIMBMGA1UdJQQMMAoGCCsGAQUF | 74 oCWtzrnKnspCmF3EWlCSKT7kaSB6JP5H6AVyOwsDMTmeuoIivjuchQEBWt+6awPJ |
| 87 BwMBMA0GCSqGSIb3DQEBCwUAA4IBAQCHsvTJbhjhDmxSRuC54xeb+oRS2kEX3T9a | 75 YQ2LFIwV/ytaEGC7kNGzedH+HfQnfDJIFKj6DmgxVOqGFpUv8U/iNEjIaKkVw9ua |
| 88 8pUd2C9fc2UKhd1i2KGGN/BAgVcJ/00cN6UeqHX7alQ9A5IoL4yrfvy7pLkeNSx8 | 76 XTQQYEjYeELOVApEOLGbymnH0pQnLkTqfyzfyqJib+Zq2aPsXwDbCQDPosI5/Rtl |
| 89 /rD4h2sR5I9yAGhUvV7zqE/TIFjJt5YonET1Fo0kF9UZ6HMrVc/Vus2sVeWrzGwr | 77 ePNTI6Mv7Luj |
| 90 Hbu9XIDAy6NdmSLIymgiZFUcRv2pJ6JGDK8X+2W8eSTZoQZX6sZfFSvHRUcawJzZ | |
| 91 kDM3tH7pUbp/9bBqyZITXdq01vKQAcOpt78Z4xNYo+NjbaoXzxepxtvOMHVd4r4W | |
| 92 VwSkdJB4ZJLFaNLMWxREpgFSom6+1vmwW7UiNnhBc6liGw93NKkh | |
| 93 -----END CERTIFICATE----- | 78 -----END CERTIFICATE----- |
| 94 | 79 |
| 95 Certificate: | 80 Certificate: |
| 96 Data: | 81 Data: |
| 97 Version: 3 (0x2) | 82 Version: 3 (0x2) |
| 98 Serial Number: 2 (0x2) | 83 Serial Number: 2 (0x2) |
| 99 Signature Algorithm: sha256WithRSAEncryption | 84 Signature Algorithm: sha256WithRSAEncryption |
| 100 Issuer: CN=Root | 85 Issuer: CN=Root |
| 101 Validity | 86 Validity |
| 102 Not Before: Jan 1 12:00:00 2015 GMT | 87 Not Before: Jan 1 12:00:00 2015 GMT |
| (...skipping 159 matching lines...) Expand 10 before | Expand all | Expand 10 after Loading... |
| 262 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw | 247 CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw |
| 263 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE | 248 IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE |
| 264 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6yqCHKJT0 | 249 AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB6yqCHKJT0 |
| 265 FibLHTuW960XcRgxhnnw9OtXM2FYM6tFtEBQBafGtqg4t1CfWYXyVzPpamIrTV3J | 250 FibLHTuW960XcRgxhnnw9OtXM2FYM6tFtEBQBafGtqg4t1CfWYXyVzPpamIrTV3J |
| 266 +/6hys5ZJV3n+1V5EaXvFVGQlJpYIO+pgzhCLRHoGNktHz8eUuNZJdUt8t3/DIkH | 251 +/6hys5ZJV3n+1V5EaXvFVGQlJpYIO+pgzhCLRHoGNktHz8eUuNZJdUt8t3/DIkH |
| 267 aAVFPA6FPB/pgV/D9+rC0e0k2FWDFHVJP1LiGST21p+CdXTll6+vBKtrQcdhHJvt | 252 aAVFPA6FPB/pgV/D9+rC0e0k2FWDFHVJP1LiGST21p+CdXTll6+vBKtrQcdhHJvt |
| 268 PpzG/+dhOyApMF9ftUdxxoeuqjHO0bE/J+7KZg5tK+GZZmaUgRAYKE9RMnrE4c4W | 253 PpzG/+dhOyApMF9ftUdxxoeuqjHO0bE/J+7KZg5tK+GZZmaUgRAYKE9RMnrE4c4W |
| 269 rmkmDq0u4DDMUgAYPeJ1doMfGQJ89lQed/gY4h7ACyq5amppJV2n+ck7vSLMO/H9 | 254 rmkmDq0u4DDMUgAYPeJ1doMfGQJ89lQed/gY4h7ACyq5amppJV2n+ck7vSLMO/H9 |
| 270 QfGl/Gtlnt98 | 255 QfGl/Gtlnt98 |
| 271 -----END CERTIFICATE----- | 256 -----END CERTIFICATE----- |
| OLD | NEW |