Skip to content

Instantly share code, notes, and snippets.

@dschneller
Created January 26, 2015 21:16
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save dschneller/494181493a37ea40bbe6 to your computer and use it in GitHub Desktop.
Save dschneller/494181493a37ea40bbe6 to your computer and use it in GitHub Desktop.
? INTERMEDIATE openssl ca -config intermediate.cnf -in ../EXAMPLE.COM/www.example.com.csr -out www.example.com.crt
Using configuration from intermediate.cnf
Check that the request matches the signature
Signature ok
Certificate Details:
Serial Number: 2097152 (0x200000)
Validity
Not Before: Jan 26 21:14:39 2015 GMT
Not After : Jan 26 21:14:39 2016 GMT
Subject:
countryName = DE
stateOrProvinceName = Baden-Wuerttemberg
localityName = Aalen
organizationName = Example Dot Com GmbH
commonName = www.example.com
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
Netscape Comment:
OpenSSL Generated Certificate
X509v3 Subject Key Identifier:
09:15:8C:88:CA:34:2A:BE:9F:8A:F8:60:01:D6:90:8B:61:64:71:0F
X509v3 Authority Key Identifier:
keyid:2D:A4:FD:6C:50:84:A2:98:D0:1B:37:F3:2B:38:48:0B:7B:A7:D3:FD
Certificate is to be certified until Jan 26 21:14:39 2016 GMT (365 days)
Sign the certificate? [y/n]:y
1 out of 1 certificate requests certified, commit? [y/n]y
Write out database with 1 new entries
Data Base Updated
? INTERMEDIATE ls -l www.example.com.crt
-rw-r--r--@ 1 ds staff 4656 26 Jan 22:14 www.example.com.crt
? INTERMEDIATE openssl x509 -in www.example.com.crt -noout -text
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 2097152 (0x200000)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=DE, ST=Baden-Wuerttemberg, L=Heidenheim, O=DHBW Heidenheim Certificate Authority, OU=Team 42 SHA256 Intermediate CA
Validity
Not Before: Jan 26 21:14:39 2015 GMT
Not After : Jan 26 21:14:39 2016 GMT
Subject: C=DE, ST=Baden-Wuerttemberg, L=Aalen, O=Example Dot Com GmbH, CN=www.example.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:bc:54:2e:e3:a1:1f:b2:3a:79:00:d5:4c:a3:6f:
9c:2d:fe:99:ff:e9:ef:35:60:5a:48:4c:55:5a:3b:
21:73:be:a4:89:88:98:f6:09:62:3b:17:b5:3c:c9:
b6:3d:a8:3c:6b:23:a5:d5:7c:8a:68:0e:cf:ae:9a:
c1:9e:c6:2b:9a:9f:f9:17:c3:17:b2:56:68:60:a9:
72:2b:91:ac:35:5f:57:59:b7:3d:79:0d:49:25:2e:
54:c9:81:9f:49:26:0a:ec:c0:a7:56:03:0f:ae:32:
eb:8c:0e:e7:06:96:07:55:b7:73:c0:29:5e:44:94:
0b:eb:53:e3:3c:b9:5a:f3:09:19:06:9c:b9:8e:9f:
64:61:be:d8:c2:5c:cb:d2:9c:b6:78:11:f1:7c:86:
2e:2e:78:cf:ae:86:94:82:22:9f:e5:13:af:77:45:
c6:86:a9:cc:40:74:21:fa:db:9f:05:cc:fe:34:f0:
a4:d1:c7:51:5a:ea:bc:a0:4e:a5:1e:6f:61:3e:c8:
86:69:da:b8:c9:83:52:57:d5:a8:fc:8e:e6:e3:20:
6c:04:88:ef:f0:08:e8:ae:ac:8a:b5:ef:5a:af:a8:
86:2b:d4:76:b4:37:03:22:e4:b0:6d:85:7d:a7:49:
38:ac:c4:19:d1:b0:7a:72:0f:f0:1c:42:43:eb:3d:
22:79
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
Netscape Comment:
OpenSSL Generated Certificate
X509v3 Subject Key Identifier:
09:15:8C:88:CA:34:2A:BE:9F:8A:F8:60:01:D6:90:8B:61:64:71:0F
X509v3 Authority Key Identifier:
keyid:2D:A4:FD:6C:50:84:A2:98:D0:1B:37:F3:2B:38:48:0B:7B:A7:D3:FD
Signature Algorithm: sha256WithRSAEncryption
62:9a:1d:9a:e1:a1:e6:91:82:4e:26:fe:be:dd:84:e6:fa:68:
27:07:1d:90:1a:05:65:52:08:cd:b7:10:14:cb:e7:3f:62:b6:
aa:2c:af:55:a2:8d:3f:51:39:ff:d2:42:20:1c:2b:c2:9c:ae:
0a:b0:7a:70:d8:42:f0:ec:8a:da:cc:27:f4:a9:04:7d:cb:4f:
79:17:9b:d9:90:03:41:28:ea:5d:0b:0c:f5:fe:48:1b:8d:6b:
c7:81:71:44:97:d7:c8:8e:9a:33:ea:1a:a3:6d:d1:5d:c4:8a:
d7:99:87:6f:14:2f:da:6b:73:b5:fe:e7:28:d0:7c:7a:ce:fb:
9a:56:48:f9:e4:95:2b:4f:87:5f:32:b7:e9:50:b0:5b:50:d6:
97:a7:6e:f9:d9:a0:5a:f6:29:12:08:fa:a9:9d:7d:61:25:a2:
30:06:37:cb:47:1d:48:98:bd:38:b8:04:27:a3:54:3a:71:16:
f3:a8:49:c0:09:1c:ef:1a:71:45:ca:3a:6b:57:7b:8f:6d:04:
b9:b0:09:b0:26:e5:82:b9:3b:2a:51:0e:81:3f:4f:90:69:d9:
68:db:7a:97:49:db:f6:82:3d:47:3b:85:b4:fe:e7:64:a0:7f:
bb:e5:41:92:76:1b:b6:0d:de:d5:e1:34:11:ab:fb:03:ae:30:
d9:22:66:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment