Skip to content

Instantly share code, notes, and snippets.

@DavidIAm
Created January 13, 2019 06:39
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save DavidIAm/e2af5ed1979691bb07f1ab5a7e5dda4a to your computer and use it in GitHub Desktop.
Save DavidIAm/e2af5ed1979691bb07f1ab5a7e5dda4a to your computer and use it in GitHub Desktop.
Weird cert wouldn't verify
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:34:36]
$ docker run --rm -it de1f4cb61c4d cat /home/holder/pki/sshservermqttbridge.key > BADCERTsshservermqttbridge.key
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:34:56]
$ docker run --rm -it de1f4cb61c4d cat /home/holder/pki/sshservermqttbridge.crt > BADCERTsshservermqttbridge.crt
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:35:07]
$ md5sum pki/issued/sshservermqttbridge.crt
dff99beb7bf13035c3658c9379062f00 pki/issued/sshservermqttbridge.crt
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:35:10]
$ md5sum BADCERTsshservermqttbridge.crt
b93aa2d1ab4843e724a8eac2be471be8 BADCERTsshservermqttbridge.crt
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:35:21]
$ cat BADCERTsshservermqttbridge.crt
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:35:27]
$ cat pki/issued/sshservermqttbridge.crt
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
e9:20:cf:c5:bd:05:d3:66:00:c1:16:83:80:94:f7:3d
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=experimental
Validity
Not Before: Jan 13 05:52:02 2019 GMT
Not After : Jan 10 05:52:02 2029 GMT
Subject: CN=sshservermqttbridge
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b0:ce:16:eb:6a:6e:0c:40:94:3a:01:3b:df:51:
9f:a6:38:b9:5f:e7:56:c2:36:14:8c:b8:22:ec:24:
6e:06:ef:e0:75:fd:9d:b9:ae:71:c3:ee:05:af:66:
ba:5a:98:c6:8d:d5:47:89:01:69:b0:0d:81:13:c5:
ae:36:73:4b:4d:ff:f9:71:97:84:2d:31:20:b6:5f:
26:cf:27:09:8a:56:fa:2c:33:ce:fa:12:78:0a:fd:
9f:56:69:0f:d8:02:43:82:11:9d:03:70:1b:66:84:
2f:e5:da:40:f9:23:83:08:0f:bc:e0:65:98:d2:ef:
ce:71:cf:3b:fb:00:b9:c3:cf:aa:cb:29:95:f1:e4:
08:60:01:48:94:6c:9c:83:86:28:b6:92:8e:ce:7b:
1b:b3:67:f4:ac:36:55:59:4b:09:23:dc:9e:df:9d:
82:29:48:d7:94:d0:44:ed:b2:26:12:1b:78:e7:9b:
5a:7f:5a:ba:3b:01:60:06:e6:56:e6:51:02:92:a1:
43:02:33:d5:92:43:72:80:24:39:e5:dc:52:31:b1:
c5:9b:b3:03:9a:b1:88:54:b6:0c:b0:15:8a:62:9d:
92:d5:a1:3a:ee:91:4b:45:52:5c:ad:49:de:e7:f0:
a4:94:16:df:d7:af:9d:42:7a:f7:c8:0f:e0:eb:70:
7c:3b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
X509v3 Subject Key Identifier:
85:DC:53:9C:10:C1:54:E6:A6:6E:86:ED:07:FD:11:E3:C9:A9:4E:24
X509v3 Authority Key Identifier:
keyid:D0:9C:4E:7A:4B:E3:01:0A:85:64:59:2C:D3:D4:FC:00:93:75:15:BF
DirName:/CN=experimental
serial:C2:19:71:63:6C:17:61:3A
X509v3 Extended Key Usage:
TLS Web Client Authentication
X509v3 Key Usage:
Digital Signature
Signature Algorithm: sha256WithRSAEncryption
2f:2e:76:e3:71:a2:16:66:f0:1b:4d:55:1d:b9:9e:19:c6:4c:
30:e9:dc:d0:e9:2d:2b:10:a3:b1:94:b3:76:63:ed:dd:48:fc:
4a:d2:38:56:e3:ee:e7:ef:47:1e:42:97:1f:33:5f:bf:75:a9:
87:d1:23:22:95:5e:09:4a:32:dd:c4:e4:ac:6c:2f:8c:dd:2e:
d6:5d:c0:a1:ee:c2:a0:04:e7:16:d9:83:8f:fd:11:22:a2:61:
45:72:86:f4:94:46:de:f5:ab:18:02:46:2d:07:ea:21:5c:98:
db:8d:9b:09:3c:c0:69:c0:c3:63:de:c2:c5:b4:e3:83:c7:18:
94:fe:4c:1c:66:3f:90:d4:fa:ab:35:ce:34:d1:d0:dc:d9:5b:
b6:59:d7:ca:23:e7:89:50:c2:0b:e9:a4:96:67:4e:56:87:21:
fe:af:40:4b:05:2e:5e:27:7e:f1:11:aa:ad:e4:d9:e4:73:e0:
b4:47:67:ca:66:ab:54:11:87:48:fa:50:e2:89:7e:ff:18:3a:
d1:74:dc:a0:25:0a:4d:af:ee:9d:7b:d5:dc:28:63:90:d9:bc:
4d:72:c3:f7:c9:82:5a:0d:8b:79:59:fd:f7:aa:8a:15:e0:24:
7e:db:de:30:a6:48:16:fe:14:b6:99:a1:8f:df:ba:df:0f:db:
21:9a:f6:ca
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:35:37]
$ cat pki/private/sshservermqttbridge.key
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:37:22]
$ cat BADCERTsshservermqttbridge.key
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:37:27]
$ cat pki/ca.crt
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
ec2-user@ip-172-31-25-180:~/compose-work (git alpha) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - [06:38:28]
$
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment