Skip to content

Instantly share code, notes, and snippets.

@pzb
Created February 2, 2016 18:39
Show Gist options
  • Save pzb/c55a802c283c7b44002d to your computer and use it in GitHub Desktop.
Save pzb/c55a802c283c7b44002d to your computer and use it in GitHub Desktop.
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
0a:01:41:42:00:00:01:35:d0:b6:e7:8e:00:00:00:02
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Digital Signature Trust, OU=DST ACES, CN=DST ACES CA X6
Validity
Not Before: Mar 2 00:02:22 2012 GMT
Not After : Mar 1 00:02:22 2018 GMT
Subject: C=US, O=IdenTrust, OU=IdenTrust Public Sector, CN=IdenTrust ACES CA 1
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:a5:b2:00:e1:54:15:89:1d:01:ca:7b:5c:93:8a:
39:f6:2f:1f:ca:ca:92:0d:57:57:93:e3:8a:26:b2:
c6:36:79:26:a7:45:72:2f:bc:3e:b2:a6:a4:06:14:
3c:41:3a:23:c2:86:cd:27:77:38:b5:d5:ff:4b:8d:
36:90:bf:f9:28:58:a8:32:69:36:4e:2a:f9:90:77:
e6:27:60:c5:ed:13:86:df:2d:33:ed:a6:e7:1b:62:
4f:33:3e:fe:2d:50:57:99:a7:3d:ee:38:3e:33:5d:
30:15:18:8f:96:74:c6:72:14:98:d3:bb:03:0d:34:
2f:7e:97:72:c5:15:e6:0f:e2:80:4e:9b:23:8a:5a:
eb:30:10:05:be:5c:90:30:02:59:4a:cb:90:eb:e8:
ab:21:7b:85:8f:c8:ab:60:83:72:bf:29:0d:22:29:
34:ce:b7:d0:42:59:4c:ba:3a:c4:c3:85:d6:df:a6:
f9:11:74:c5:30:a5:63:f1:a1:90:35:9d:d7:b8:56:
df:cb:3a:69:2a:6e:81:8e:d7:60:90:8b:eb:20:37:
fc:6b:55:56:72:be:90:b0:f1:6e:7f:6e:da:4a:b7:
d7:ba:5a:16:6d:05:86:5b:ac:0d:52:31:c8:86:de:
a1:b7:7c:50:8a:5d:c7:1c:9c:49:5e:58:56:5f:f5:
49:a1
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.3.2.1.1.1
CPS: https://secure.identrust.com/certificates/policy/aces/index.html
Policy: 2.16.840.1.101.3.2.1.1.2
Policy: 2.16.840.1.101.3.2.1.1.3
Policy: 2.16.840.1.101.3.2.1.1.4
Policy: 2.16.840.1.101.3.2.1.1.8
Policy: 2.16.840.1.101.3.2.1.1.9
Policy: 2.16.840.1.101.3.2.1.1.5
Policy: 2.16.840.1.101.3.2.1.1.10
Policy: 2.16.840.1.101.3.2.1.1.11
Policy: 2.16.840.1.101.3.2.1.1.12
Policy: 2.16.840.1.101.3.2.1.1.13
Policy: 2.16.840.1.101.3.2.1.1.14
X509v3 Subject Key Identifier:
E6:33:09:63:89:B5:66:1A:4F:D5:B3:CC:0F:AB:FB:B5:0C:C7:F3:47
X509v3 CRL Distribution Points:
URI:http://crl.identrust.com/publicsectorroot1.crl
URI:ldap://ldap.identrust.com/cn=IdenTrust%20Public%20Sector%20Root%201,ou=IdenTrust%20Public%20Sector,o=IdenTrust,c=US?certificateRevocationList;binary,authorityRevocationList;binary
Authority Information Access:
CA Issuers - URI:http://apps.identrust.com/roots/acesroot.p7c
OCSP - URI:https://publicsector.ocsp.identrust.com
CA Issuers - URI:ldap://ldap.identrust.com/cn=DST%20ACES%20CA%20X6,ou=DST%20ACES,o=Digital%20Signature%20Trust,c=US?cACertificate;binary,crossCertificatePair;binary
X509v3 Authority Key Identifier:
keyid:09:72:06:4E:18:43:0F:E5:D6:CC:C3:6A:8B:31:7B:78:8F:A8:83:B8
X509v3 Subject Alternative Name:
email:pki-ops@identrust.com
Signature Algorithm: sha256WithRSAEncryption
1e:52:6e:fd:6a:f3:35:3f:0f:62:5b:24:3f:61:1c:00:93:4b:
8f:8a:0e:68:a7:38:5d:70:a2:d1:70:28:a4:b6:f1:31:52:90:
8e:6d:9d:a5:44:93:c1:16:65:53:00:71:97:63:97:f5:6b:e7:
ef:8e:87:23:5a:55:1a:7a:f4:97:24:6b:5e:ed:77:09:b5:d9:
51:51:05:f5:f2:97:f6:74:ec:ce:51:66:e3:3b:7a:e5:54:9c:
39:70:fe:69:75:88:36:d3:c9:d6:c1:a6:83:13:c7:b8:33:91:
21:03:c3:e0:af:a2:b7:0a:a6:3a:a0:da:22:92:fa:65:ef:10:
9e:f6:24:1f:d2:51:40:08:e2:98:3b:ed:94:b0:50:5d:54:a2:
e1:b7:de:97:0d:8a:14:c8:3e:4e:58:36:3c:74:65:67:30:85:
0e:96:6c:74:e9:4f:72:56:d4:f4:fe:2a:6a:79:6f:49:3a:1d:
96:16:01:e6:0d:90:cd:0c:52:6b:18:65:ea:42:dc:93:46:ec:
13:15:52:43:e0:50:d3:15:0d:44:d9:4b:aa:ce:a5:1b:e8:b8:
66:d4:28:4a:77:64:98:53:bb:bc:fc:9f:a1:94:f0:5e:ba:6c:
c9:7f:aa:b9:04:19:c6:95:14:d1:65:9f:4c:13:87:d5:20:4c:
3d:b2:5d:f4
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7f:00:00:01:00:00:01:4a:f3:fc:79:ab:00:00:00:02
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=IdenTrust, OU=IdenTrust Public Sector, CN=IdenTrust ACES CA 1
Validity
Not Before: Jan 16 18:23:37 2015 GMT
Not After : Jan 14 18:23:37 2018 GMT
Subject: C=US, O=U.S. Government, OU=FPKI, CN=Federal Bridge CA 2013
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:9c:e8:17:25:c2:59:ef:34:a5:c5:44:3b:00:35:
ec:31:40:a5:7a:02:d2:3e:19:14:9b:25:89:cd:4a:
8c:3b:e6:5e:6a:da:1c:6b:dd:0c:03:2a:45:84:29:
9d:4f:2e:ff:b0:a0:6c:02:c6:5a:a7:78:67:a5:77:
bb:c6:98:f8:b1:7e:e2:94:bb:fa:11:4f:63:38:1c:
1e:7c:08:0c:9e:f6:2a:15:63:22:62:14:12:e7:9f:
d4:ea:50:2e:d4:7e:3e:64:25:e4:2e:1c:1b:b8:ed:
5f:65:b4:f3:00:15:4f:0d:24:92:2c:71:50:22:3c:
eb:11:69:b3:2c:38:f3:e0:73:a1:98:26:75:a6:2d:
56:a9:05:af:9b:c9:38:8c:66:c0:c8:08:3b:43:3c:
83:dd:2a:52:ab:08:21:7e:cd:4f:ef:45:69:70:0c:
7c:b5:fe:1b:51:4e:09:28:2c:07:2b:4a:79:8c:41:
45:c4:53:0b:cd:e5:d4:a6:bb:93:33:d8:37:96:c3:
b0:2b:5b:c5:c5:e6:49:5c:41:5b:75:a3:02:db:15:
9e:73:d0:a6:cc:e4:c8:9a:1a:c7:01:07:93:b0:df:
eb:b8:fd:7f:dc:ab:18:94:92:8b:8d:f4:0c:29:09:
50:4f:5b:71:e1:da:50:5e:a3:bf:df:dc:a4:8a:f0:
07:4b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Inhibit Any Policy: critical
0
X509v3 Policy Mappings:
2.16.840.1.101.3.2.1.1.2:2.16.840.1.101.3.2.1.3.2, 2.16.840.1.101.3.2.1.1.3:2.16.840.1.101.3.2.1.3.3, 2.16.840.1.101.3.2.1.1.5:2.16.840.1.101.3.2.1.3.3, 2.16.840.1.101.3.2.1.1.6:2.16.840.1.101.3.2.1.3.3, 2.16.840.1.101.3.2.1.1.7:2.16.840.1.101.3.2.1.3.3
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.3.2.1.1.2
Policy: 2.16.840.1.101.3.2.1.1.3
Policy: 2.16.840.1.101.3.2.1.1.5
Policy: 2.16.840.1.101.3.2.1.1.6
Policy: 2.16.840.1.101.3.2.1.1.7
X509v3 Subject Key Identifier:
BB:CE:74:71:83:34:4E:59:32:45:15:5F:40:60:60:DC:2B:B0:B4:E4
X509v3 CRL Distribution Points:
URI:http://crl.identrust.com/acespublicsector1.crl
Subject Information Access:
CA Repository - URI:http://http.fpki.gov/bridge/caCertsIssuedByfbca2013.p7c
Authority Information Access:
CA Issuers - URI:http://apps.identrust.com/roots/acespublicsector1.p7c
OCSP - URI:https://aces.ocsp.identrust.com
X509v3 Authority Key Identifier:
keyid:E6:33:09:63:89:B5:66:1A:4F:D5:B3:CC:0F:AB:FB:B5:0C:C7:F3:47
Signature Algorithm: sha256WithRSAEncryption
6c:c3:71:b3:ed:4e:73:c3:b7:16:83:05:81:bb:17:bb:eb:34:
a3:af:a2:f3:18:8d:3e:65:5b:3c:44:ec:a2:c5:58:ed:1b:6d:
e9:38:4d:d9:30:b8:bb:57:73:df:3f:64:3c:be:b4:8d:7b:9d:
13:c7:93:85:b9:86:c2:82:ff:7a:e5:03:12:f0:9a:84:31:06:
b9:4a:5c:8e:e9:3e:42:d7:35:d0:17:9e:d2:8b:89:bc:cd:84:
d4:73:e0:ed:0c:b9:c9:1c:9e:56:05:79:af:f2:8e:a1:f5:a0:
9e:b0:02:75:80:6a:ac:ac:97:9c:5c:76:af:f0:3f:ab:1f:6f:
7d:cb:ea:78:b3:42:91:8e:19:5e:e0:f8:2d:20:2e:66:3f:7f:
80:b7:44:88:ab:3a:29:c3:59:c7:5b:d2:9a:18:e3:33:2f:39:
47:41:db:d3:c7:4e:12:b3:4b:2b:ef:58:c1:d4:3d:11:f1:7b:
e5:5f:8b:43:c6:92:34:78:1e:f8:42:fe:75:cb:52:89:41:34:
e0:73:80:12:90:2c:94:2a:26:3e:44:36:72:26:73:c0:5c:c0:
88:d0:5f:1f:04:de:3f:9a:66:03:56:b3:d8:73:fd:5a:45:19:
de:99:6b:66:96:43:f3:4a:4a:66:30:32:21:c5:66:45:17:0d:
ce:5b:7c:63
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 5724 (0x165c)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=U.S. Government, OU=FPKI, CN=Federal Bridge CA 2013
Validity
Not Before: Jun 24 15:52:07 2015 GMT
Not After : Jun 24 15:52:07 2018 GMT
Subject: C=US, O=U.S. Government, OU=FPKI, CN=Federal Common Policy CA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:d8:75:fb:35:16:34:5a:41:bf:5a:af:5c:30:04:
14:1c:ad:78:44:b5:ea:26:ea:75:61:c7:cd:36:79:
f8:7c:d8:bd:29:51:66:59:21:e3:79:ab:d4:78:be:
b0:2d:b0:a1:d5:b2:35:16:23:d0:cc:1e:be:0e:e8:
ab:dc:c3:c9:d6:12:d7:a7:72:68:18:31:b8:17:22:
b2:3e:7e:ba:08:6d:c6:fd:d1:58:2c:69:a0:03:f0:
2a:a3:f6:3f:21:25:3d:df:b7:32:c5:8e:27:b3:23:
a5:e0:52:b3:5d:96:e9:b0:b8:c5:c5:9f:bb:c5:a0:
6e:82:40:bb:c5:27:05:36:49:d6:26:27:69:0c:34:
8f:cf:27:7a:2a:0a:a3:41:5f:8d:1d:03:86:83:15:
e0:55:c1:c5:98:2c:9e:ec:1a:72:dc:48:c1:3e:f9:
84:d2:84:82:c1:1b:c3:74:36:b7:b9:c7:36:32:7a:
f8:32:b6:d0:36:ae:22:18:31:8c:50:73:21:9e:fe:
83:3b:30:88:24:e3:e9:c1:7e:de:ed:98:c7:1f:92:
10:8a:9f:5b:62:2f:9d:a4:bc:d5:85:6f:3a:fd:c9:
53:a7:20:4b:aa:db:20:ab:21:4e:1d:0d:4e:e6:98:
85:e5:ab:11:47:5d:9d:3f:c4:23:c0:e3:14:06:6e:
fe:9d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
Authority Information Access:
CA Issuers - URI:http://http.fpki.gov/bridge/caCertsIssuedTofbca2013.p7c
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.3.2.1.3.1
Policy: 2.16.840.1.101.3.2.1.3.2
Policy: 2.16.840.1.101.3.2.1.3.3
Policy: 2.16.840.1.101.3.2.1.3.12
Policy: 2.16.840.1.101.3.2.1.3.14
Policy: 2.16.840.1.101.3.2.1.3.15
Policy: 2.16.840.1.101.3.2.1.3.37
Policy: 2.16.840.1.101.3.2.1.3.38
Policy: 2.16.840.1.101.3.2.1.3.4
Policy: 2.16.840.1.101.3.2.1.3.18
Policy: 2.16.840.1.101.3.2.1.3.19
Policy: 2.16.840.1.101.3.2.1.3.20
Policy: 2.16.840.1.101.3.2.1.3.6
Policy: 2.16.840.1.101.3.2.1.3.7
Policy: 2.16.840.1.101.3.2.1.3.8
Policy: 2.16.840.1.101.3.2.1.3.36
Policy: 2.16.840.1.101.3.2.1.3.13
Policy: 2.16.840.1.101.3.2.1.3.16
Policy: 2.16.840.1.101.3.2.1.3.17
Policy: 2.16.840.1.101.3.2.1.3.40
Policy: 2.16.840.1.101.3.2.1.3.41
Policy: 2.16.840.1.101.3.2.1.3.39
Subject Information Access:
CA Repository - URI:http://http.fpki.gov/fcpca/caCertsIssuedByfcpca.p7c
X509v3 Policy Mappings:
2.16.840.1.101.3.2.1.3.3:2.16.840.1.101.3.2.1.3.6, 2.16.840.1.101.3.2.1.3.4:2.16.840.1.101.3.2.1.3.16, 2.16.840.1.101.3.2.1.3.12:2.16.840.1.101.3.2.1.3.7, 2.16.840.1.101.3.2.1.3.37:2.16.840.1.101.3.2.1.3.8, 2.16.840.1.101.3.2.1.3.38:2.16.840.1.101.3.2.1.3.36
X509v3 Inhibit Any Policy: critical
0
X509v3 Policy Constraints: critical
Inhibit Policy Mapping:1
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Authority Key Identifier:
keyid:BB:CE:74:71:83:34:4E:59:32:45:15:5F:40:60:60:DC:2B:B0:B4:E4
X509v3 CRL Distribution Points:
URI:http://http.fpki.gov/bridge/fbca2013.crl
X509v3 Subject Key Identifier:
AD:0C:7A:75:5C:E5:F3:98:C4:79:98:0E:AC:28:FD:97:F4:E7:02:FC
Signature Algorithm: sha256WithRSAEncryption
7d:ca:6e:2b:56:3a:f7:f9:93:a8:c0:49:ed:15:76:ac:d7:d3:
13:17:b1:21:d5:3a:ee:7c:1a:76:94:f6:8b:3c:8d:e2:a5:0a:
17:20:8d:de:35:e5:d4:fd:f6:a5:25:2b:d4:ca:33:32:5e:cd:
38:0e:68:1d:16:02:f3:c2:35:0f:96:ae:0b:29:82:5b:9e:6c:
3a:de:5f:b3:d4:00:6c:d6:cc:f6:7c:21:6f:2a:ba:44:e3:03:
1f:af:23:e2:75:7a:b1:bd:83:83:bb:25:60:f6:df:e5:46:da:
70:29:aa:20:6c:e3:1a:99:2c:df:8f:42:a6:2d:ff:d8:a7:75:
6e:bc:f1:e3:fd:77:b6:29:cd:94:2f:55:a1:cb:35:47:20:83:
79:c0:bb:34:93:68:13:a9:c0:a6:ae:37:9b:73:6c:e7:df:04:
63:a6:95:95:71:e9:09:60:3d:d7:70:3e:c9:41:b8:1f:ba:e6:
9b:87:eb:fb:93:2b:5d:3e:fd:8f:c8:aa:4c:b4:77:65:b1:3e:
31:82:9a:74:cb:17:84:59:29:72:9d:89:e2:12:8f:b2:8c:9c:
bd:15:de:83:2d:34:e3:5d:59:2e:45:1c:9f:8f:07:6b:c0:dd:
0c:94:a4:b5:44:20:26:89:59:21:e4:8f:22:8f:3a:5a:f2:44:
c0:00:15:86
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 5915 (0x171b)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=U.S. Government, OU=FPKI, CN=Federal Common Policy CA
Validity
Not Before: Dec 3 17:37:18 2013 GMT
Not After : May 2 16:36:28 2017 GMT
Subject: C=US, O=U.S. Government, OU=FPKI, CN=SHA-1 Federal Root CA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:a7:07:9e:05:3a:5c:7e:b1:ff:b0:99:12:ba:65:
72:3e:c3:32:3e:8f:8a:05:4c:32:f8:31:15:ba:80:
39:f3:66:60:78:ae:b7:e8:8e:fe:6a:f5:60:53:64:
33:2e:e6:33:40:c9:21:23:df:6a:b1:33:4e:71:4e:
f1:fc:72:e4:ae:91:99:2a:c1:29:9a:8d:74:ff:b1:
32:39:02:72:09:9b:65:c8:07:11:af:b2:38:b5:c6:
8e:fd:b0:18:c1:ea:11:9d:29:64:8f:28:30:38:e9:
48:14:76:1c:47:93:ec:96:40:c1:ca:59:85:51:0c:
57:3f:bb:e1:c2:c4:7a:3b:0a:19:fb:60:96:8b:65:
6e:e5:29:3d:c0:39:57:b7:00:ae:11:ae:a9:07:85:
e3:72:38:e9:ba:6e:33:01:50:cb:d4:bf:a7:41:c4:
3f:9b:78:fc:01:98:91:f3:e8:2c:88:22:68:22:cf:
94:4a:14:58:79:43:95:ea:40:9a:90:84:7a:dd:67:
13:00:95:49:30:94:b2:85:29:90:a7:68:bd:7e:f6:
36:68:d3:c7:f9:94:31:53:fb:22:d2:2b:1c:92:ae:
d7:da:2f:15:7e:0c:63:a0:dd:db:a5:4c:78:82:e3:
43:dd:58:83:1c:c3:fe:6e:6f:81:f2:0b:b3:65:54:
90:4f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.3.2.1.3.21
Policy: 2.16.840.1.101.3.2.1.3.22
Policy: 2.16.840.1.101.3.2.1.3.23
Policy: 2.16.840.1.101.3.2.1.3.24
Policy: 2.16.840.1.101.3.2.1.3.25
Authority Information Access:
CA Issuers - URI:http://http.fpki.gov/fcpca/caCertsIssuedTofcpca.p7c
Subject Information Access:
CA Repository - URI:http://http.fpki.gov/sha1frca/caCertsIssuedBysha1frca.p7c
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Authority Key Identifier:
keyid:AD:0C:7A:75:5C:E5:F3:98:C4:79:98:0E:AC:28:FD:97:F4:E7:02:FC
X509v3 CRL Distribution Points:
URI:http://http.fpki.gov/fcpca/fcpca.crl
X509v3 Subject Key Identifier:
86:9A:5C:62:FF:73:93:D5:E1:8A:7F:4A:C6:88:2E:9F:6E:A0:AE:12
Signature Algorithm: sha256WithRSAEncryption
bd:b9:83:66:9d:1b:61:f3:e5:e0:09:59:33:d8:a7:53:33:60:
c5:df:95:d6:84:2c:88:b4:1a:b0:96:f9:ab:84:9a:17:00:1f:
48:cc:52:98:bd:50:07:10:43:b4:74:66:41:5a:77:0e:39:9b:
4f:19:1d:04:69:96:94:3c:af:9f:e6:3d:bc:74:8c:de:07:9d:
77:9f:79:cb:f2:6d:9a:fc:fb:91:2d:62:94:f9:0a:76:43:3f:
23:a1:06:75:3a:a7:8d:ef:40:2e:81:76:ba:62:4c:ca:a1:39:
c2:a5:5f:c1:ef:ac:5e:70:65:ec:b5:76:cf:f1:9c:a3:68:ca:
a4:84:a1:72:ce:a8:31:8d:c0:e0:67:a5:7f:ba:8d:f8:6f:09:
55:ce:70:16:2a:85:73:a1:2c:9f:15:89:9b:60:2e:d0:cc:ac:
51:97:13:08:74:17:50:17:75:cb:d4:cc:b5:7d:15:f2:5c:86:
7b:d5:4d:8d:27:ae:5f:eb:44:4e:4f:98:f6:05:1e:ad:6f:4c:
54:54:db:ff:2d:cb:6a:68:0e:5e:e4:b2:6b:bf:a6:44:3a:54:
c8:ab:ce:ae:c2:76:de:bc:56:b3:83:d9:7a:7f:96:ce:f0:3e:
0b:7a:fa:5a:54:39:f6:db:13:7e:2c:83:b2:db:ae:9c:5c:c4:
d1:cc:e5:2b
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 5525 (0x1595)
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=U.S. Government, OU=FPKI, CN=SHA-1 Federal Root CA
Validity
Not Before: Dec 3 16:04:32 2013 GMT
Not After : Dec 3 16:02:48 2016 GMT
Subject: C=US, O=U.S. Government, OU=DoD, OU=PKI, CN=DoD Interoperability Root CA 1
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:9c:7d:b2:f6:cd:5a:1a:5b:b7:30:f5:32:2f:0b:
9e:9a:c3:1c:a8:42:32:6b:6c:59:57:70:42:3c:4a:
a9:a9:b1:dd:42:e0:59:be:78:96:c0:ff:7b:b9:23:
bf:5e:49:32:f1:1b:69:73:eb:c6:72:47:d7:7f:29:
bf:6d:d6:93:e7:b4:61:e4:a4:7c:1c:f0:56:cd:d0:
b3:99:24:c4:c1:7d:d5:ee:d2:83:8d:68:68:8c:8e:
98:e5:5d:29:38:c8:a6:b3:e7:ed:21:2b:58:ba:83:
5b:bc:f4:03:90:3f:60:ee:2b:2f:96:d4:2e:37:8f:
ab:2c:b4:1b:a2:80:0d:35:89:47:63:44:46:c4:aa:
45:43:7b:c1:3c:d2:21:43:8a:02:76:13:6d:7b:57:
19:bf:a7:38:79:9b:5f:fa:6f:df:fa:61:8c:07:d9:
4d:f2:26:ef:f2:90:35:1f:d7:fd:74:72:90:29:36:
f1:6e:74:c4:dc:f7:b5:1b:d7:85:78:21:af:20:c9:
7a:a5:7d:0e:74:e1:8f:24:6c:43:d3:09:f4:83:a5:
39:12:2e:4f:d4:94:fa:b3:5f:07:db:17:83:27:9e:
07:a6:ca:07:de:af:4a:13:ee:37:2e:37:ac:91:e8:
2d:6c:82:52:bd:02:08:ae:1f:09:bc:0a:23:a0:59:
fc:dd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
Authority Information Access:
CA Issuers - URI:http://http.fpki.gov/sha1frca/caCertsIssuedTosha1frca.p7c
X509v3 Policy Mappings:
2.16.840.1.101.3.2.1.3.23:2.16.840.1.101.2.1.11.18, 2.16.840.1.101.3.2.1.3.24:2.16.840.1.101.2.1.11.19, 2.16.840.1.101.3.2.1.3.25:2.16.840.1.101.2.1.11.17, 2.16.840.1.101.3.2.1.3.25:2.16.840.1.101.3.2.1.12.1, 2.16.840.1.101.3.2.1.3.23:2.16.840.1.101.3.2.1.12.1, 2.16.840.1.101.3.2.1.3.24:2.16.840.1.101.3.2.1.12.2, 2.16.840.1.101.3.2.1.3.24:2.16.840.1.101.3.2.1.12.3
X509v3 Name Constraints: critical
Permitted:
DirName: C = US, O = U.S. Government, OU = DoD
DirName: DC = mil
DirName: C = US, O = U.S. Government, OU = ECA
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.3.2.1.3.23
Policy: 2.16.840.1.101.3.2.1.3.24
Policy: 2.16.840.1.101.3.2.1.3.25
Subject Information Access:
CA Repository - URI:http://crl.disa.mil/issuedby/DODINTEROPERABILITYROOTCA1_IB.p7c
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Authority Key Identifier:
keyid:86:9A:5C:62:FF:73:93:D5:E1:8A:7F:4A:C6:88:2E:9F:6E:A0:AE:12
X509v3 CRL Distribution Points:
URI:http://http.fpki.gov/sha1frca/sha1frca.crl
X509v3 Subject Key Identifier:
76:86:1E:DF:ED:00:C9:7E:14:31:7C:5B:94:82:21:49:57:BE:70:07
Signature Algorithm: sha1WithRSAEncryption
35:c2:f1:40:23:9d:d1:61:b5:b7:c4:d7:d8:38:62:f2:f1:20:
29:ba:dd:87:84:a6:cb:87:4a:3d:97:7d:78:2c:d6:24:ba:ce:
81:2c:e4:c9:c4:43:c0:b8:6e:93:f4:ed:e4:2e:3e:0a:82:0c:
62:90:de:e6:f7:ab:03:d1:b3:07:c1:cb:a9:55:9e:5f:29:48:
0a:18:f1:fa:17:7c:34:88:e9:b3:c2:09:4d:d4:17:eb:00:a5:
ba:62:61:ac:37:5a:15:c4:0f:5b:0a:00:ca:95:dd:cc:b4:5e:
c2:81:b2:20:39:6a:84:a3:bd:53:48:e9:2d:02:93:5a:6d:e0:
71:f7:a5:77:a3:ab:22:1f:11:0a:05:0f:3c:5c:33:72:e8:d6:
fb:2a:8c:57:6f:5d:43:52:59:a5:5f:52:4c:99:4b:88:5c:6a:
35:4b:72:5a:55:6d:c4:f9:73:6a:37:18:0a:1c:24:1b:47:ce:
94:4f:8a:3a:95:e0:54:26:93:2e:05:98:10:34:cb:ac:84:96:
d2:e6:ed:cd:e6:06:0a:e0:8d:47:7a:ee:81:aa:da:5d:d5:e9:
45:ff:c7:e6:99:87:12:f8:24:fe:71:ed:9b:69:43:d9:78:dd:
85:73:ee:a7:c4:e2:ea:ae:49:b8:0a:e5:39:9d:0f:f4:4f:f6:
2b:b1:31:d2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 888 (0x378)
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=U.S. Government, OU=DoD, OU=PKI, CN=DoD Interoperability Root CA 1
Validity
Not Before: Oct 10 13:15:40 2013 GMT
Not After : Oct 9 13:15:40 2016 GMT
Subject: C=US, O=U.S. Government, OU=DoD, OU=PKI, CN=DoD Root CA 2
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:c0:2c:c1:f6:8d:3b:ac:ff:3f:3c:d6:71:be:b8:
74:22:07:ec:70:41:15:fc:ab:40:e3:07:aa:c1:c3:
d8:9f:fe:da:4c:3a:bf:3f:c8:d8:28:7b:4b:36:01:
c0:ac:45:25:c3:d2:0e:0a:8f:85:18:64:10:3d:1a:
13:70:2a:6f:8e:d7:dc:8d:93:b3:41:0f:38:21:cd:
ad:ab:c2:3d:2a:05:d3:57:11:37:0d:cd:8c:51:f9:
93:e3:cc:46:49:21:8e:14:b4:cd:cb:14:3e:38:cd:
72:31:ee:ab:12:f2:65:ea:34:2e:56:5d:ff:ee:63:
75:cb:6d:ba:91:34:fc:9e:f3:f4:2d:1c:be:50:c4:
42:df:59:88:ff:6a:b3:fa:a8:6c:3d:cb:56:71:71:
05:96:bb:9f:80:e5:80:45:59:67:41:b0:eb:c3:ad:
60:a4:80:75:06:17:9c:0e:f4:43:e0:99:0e:1b:fb:
7f:f5:b3:cc:b2:81:82:b1:fd:32:c1:b8:be:41:a4:
64:b5:60:3a:5a:51:30:8c:ce:de:41:2c:19:47:5c:
49:10:64:b9:74:a9:87:41:af:7d:6e:ba:c1:b8:a1:
bf:65:31:3a:04:67:f9:b5:bb:8e:92:8a:00:63:b8:
b1:e6:8c:38:5f:83:ff:50:d5:3b:a2:5d:6b:b2:10:
cc:63
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
49:74:BB:0C:5E:BA:7A:FE:02:54:EF:7B:A0:C6:95:C6:09:80:70:96
X509v3 Authority Key Identifier:
keyid:76:86:1E:DF:ED:00:C9:7E:14:31:7C:5B:94:82:21:49:57:BE:70:07
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.2.1.11.5
Policy: 2.16.840.1.101.2.1.11.9
Policy: 2.16.840.1.101.2.1.11.17
Policy: 2.16.840.1.101.2.1.11.18
Policy: 2.16.840.1.101.2.1.11.19
Authority Information Access:
CA Issuers - URI:http://crl.disa.mil/issuedto/DODINTEROPERABILITYROOTCA1_IT.p7c
OCSP - URI:http://ocsp.disa.mil
Subject Information Access:
CA Repository - URI:http://crl.disa.mil/issuedby/DODROOTCA2_IB.p7c
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Policy Constraints:
Require Explicit Policy:0
X509v3 CRL Distribution Points:
URI:http://crl.disa.mil/crl/DODINTEROPERABILITYROOTCA1.crl
Signature Algorithm: sha1WithRSAEncryption
6d:41:16:8c:c9:49:e1:66:ae:06:a1:47:5b:f4:c0:14:ca:9e:
64:d7:ea:49:a7:88:ae:4e:eb:ac:46:e8:15:e5:de:d4:bf:ae:
e3:8b:97:b6:9a:37:7c:54:00:a6:13:f2:c9:82:5a:ec:fc:c5:
61:c0:2d:63:d3:3c:eb:cf:2e:90:57:97:bb:2a:93:f4:21:ba:
7c:25:5b:be:84:91:8b:e8:fa:cd:18:c7:2b:60:99:fe:73:b5:
69:19:1b:37:ef:55:1c:d6:88:a6:90:af:73:58:55:9e:41:df:
eb:56:04:f8:42:55:71:b0:bb:d7:62:22:3f:c1:12:5b:fd:cc:
90:a1:9b:2e:cb:97:b0:42:18:ef:28:92:e3:dc:cd:3e:02:f4:
c5:ae:c3:bd:a3:77:f6:95:9d:18:8c:ae:bb:fd:22:55:4d:da:
39:79:7c:e0:18:aa:0c:13:43:30:e5:62:63:10:71:6b:2c:92:
79:d3:65:4c:cc:56:10:32:a6:2a:9a:d7:b3:27:d0:ff:a0:56:
ed:0e:ff:0e:04:8a:61:7b:27:f6:89:f9:e5:35:de:56:49:1b:
b4:59:ed:11:b5:0a:6e:20:9e:80:65:2a:3b:4d:37:3a:2d:4a:
08:f1:e3:fb:dc:cc:44:07:a5:89:e7:59:99:2c:fa:9a:3b:a5:
2a:a9:27:1a
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 435 (0x1b3)
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=U.S. Government, OU=DoD, OU=PKI, CN=DoD Root CA 2
Validity
Not Before: Sep 8 15:57:01 2011 GMT
Not After : Sep 8 15:57:01 2017 GMT
Subject: C=US, O=U.S. Government, OU=DoD, OU=PKI, CN=DOD CA-28
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:ab:4b:55:9a:d1:83:c6:45:3d:d0:03:2f:ab:f1:
98:ab:34:c3:61:cb:e4:cf:ff:33:4d:0c:16:de:8c:
7b:a4:23:c6:04:c8:d3:d7:d2:98:2e:c2:7c:3d:79:
df:ec:f3:45:14:4f:f0:a9:15:33:e1:d1:a6:3c:16:
84:99:3c:2e:94:78:67:77:31:12:cf:a6:c1:78:19:
d3:c4:cc:fc:b6:f9:1c:55:4f:1f:94:a7:cf:b2:1b:
27:59:6f:a7:e7:78:19:c9:3e:78:4d:52:48:d2:21:
18:e7:1d:22:68:bb:fe:78:3d:b5:0a:2f:b0:ec:7a:
82:e9:d8:65:fd:f0:db:3d:a4:f3:5e:38:fd:4d:eb:
37:fa:02:00:2c:54:ff:79:b5:cb:9e:30:ee:d7:41:
3c:f1:3d:3e:f6:12:1a:35:04:53:4d:34:17:71:ff:
64:b9:38:14:d6:77:47:57:2d:b7:ac:cf:e1:37:50:
24:ee:d1:ca:3f:44:d7:e9:fa:d2:e0:43:35:69:8d:
e6:50:95:df:f1:48:6f:24:5c:ac:55:47:d2:e3:75:
b3:35:51:0a:22:b6:f2:83:8f:a2:71:be:40:b9:ba:
f4:4b:7a:73:7a:f9:f3:40:ad:5f:db:98:1d:e6:13:
7f:df:da:24:51:6b:d8:d0:8b:d2:9f:85:61:a1:f6:
d2:3f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Certificate Sign, CRL Sign
X509v3 Authority Key Identifier:
keyid:49:74:BB:0C:5E:BA:7A:FE:02:54:EF:7B:A0:C6:95:C6:09:80:70:96
X509v3 Subject Key Identifier:
26:B4:AE:AA:2D:8E:E9:8D:8A:6F:B6:B5:5B:9D:EA:4E:AE:B1:9C:69
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 Policy Constraints:
Require Explicit Policy:0
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.2.1.11.5
Policy: 2.16.840.1.101.2.1.11.9
Policy: 2.16.840.1.101.2.1.11.17
Policy: 2.16.840.1.101.2.1.11.18
Policy: 2.16.840.1.101.2.1.11.19
Policy: 2.16.840.1.101.3.2.1.3.26
Policy: 2.16.840.1.101.3.2.1.3.27
X509v3 CRL Distribution Points:
URI:http://crl.disa.mil/crl/DODROOTCA2.crl
Authority Information Access:
CA Issuers - URI:http://crl.disa.mil/issuedto/DODROOTCA2_IT.p7c
OCSP - URI:http://ocsp.disa.mil
CA Issuers - URI:ldap://crl.gds.disa.mil/cn%3dDoD%20Root%20CA%202%2cou%3dPKI%2cou%3dDoD%2co%3dU.S.%20Government%2cc%3dUS?crossCertificatePair;binary
Signature Algorithm: sha1WithRSAEncryption
68:b3:d1:49:11:ab:5b:dd:bd:b4:1d:ea:5a:de:a7:b8:cf:87:
da:a8:90:c5:23:49:d0:49:27:bd:ea:00:2b:fc:7e:1d:8b:e7:
98:ee:5e:b2:e3:cf:83:e1:88:83:b1:4b:27:61:44:d5:a4:5b:
ff:07:c5:c8:42:d4:76:3c:70:e0:38:21:0c:8d:13:cb:ef:17:
3b:23:d2:1f:dd:4d:84:36:8c:a6:87:59:04:fb:d9:2e:1e:69:
9e:56:74:48:b4:c6:52:b1:0a:7d:2e:10:5c:65:82:fc:0c:86:
61:70:a9:c5:3a:46:60:5f:6d:be:81:88:66:df:b3:c4:8e:99:
9b:b0:fc:3d:de:c1:da:8c:1b:44:20:d4:a3:7a:c0:00:10:47:
70:89:44:15:6c:8b:57:ea:7e:b5:8f:78:d0:14:73:cc:3f:95:
91:ec:5b:ad:53:70:4c:79:f5:81:21:98:d1:7e:af:38:b1:38:
87:ce:70:de:23:23:10:25:f8:1a:8a:d1:46:6a:a5:4e:c6:77:
f5:e8:02:83:eb:dc:3f:32:59:52:26:6c:00:69:64:25:90:15:
09:96:e3:de:64:b1:7c:a0:9c:c0:d3:fe:eb:e9:8c:7b:a5:8c:
94:b1:01:04:67:33:04:79:49:58:6a:a6:41:e9:58:27:56:95:
98:03:f7:ee
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 142988 (0x22e8c)
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=U.S. Government, OU=DoD, OU=PKI, CN=DOD CA-28
Validity
Not Before: Jan 5 14:27:44 2016 GMT
Not After : Sep 8 15:57:01 2017 GMT
Subject: C=US, O=U.S. Government, OU=DoD, OU=PKI, OU=USAF, CN=aflsa.jag.af.mil
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:d3:bf:5f:04:41:50:3a:bd:bd:7e:92:58:2f:66:
94:a3:e8:81:b6:64:89:35:99:7c:11:b6:01:b4:d8:
f3:2e:f7:77:0e:bd:dc:58:0b:43:3b:f2:62:fd:60:
29:ab:d6:40:46:70:b4:d2:2e:c1:90:be:4d:d2:e6:
b9:a8:32:08:db:28:73:a3:96:e1:8d:21:5f:d9:7b:
8b:05:e2:87:3e:8f:ad:eb:1a:02:c3:d5:69:b3:0a:
09:ba:d8:fe:01:f0:c7:c5:be:ac:cf:00:d4:14:24:
91:c3:58:9f:a4:ce:84:a8:88:01:e2:63:d5:ee:51:
02:07:39:1f:70:c7:d5:c3:46:04:bb:d8:1e:95:40:
9f:8b:6d:21:6b:0f:3d:42:a8:3e:da:6e:90:60:5a:
51:16:03:b6:a6:cb:69:f2:7f:b8:98:79:ad:28:f1:
bc:54:01:2b:4b:b0:d9:a9:da:b5:34:8e:cc:27:ca:
90:7a:73:38:4b:15:e3:fa:72:42:8f:c1:9f:79:2f:
22:7e:93:d8:24:67:95:be:78:e7:67:0c:bf:d0:19:
7d:a2:b7:c3:c4:27:50:8c:95:a5:77:ff:74:5c:95:
56:b2:f0:b3:18:4e:a3:57:b5:aa:2c:35:c2:f7:72:
13:f6:40:3b:9e:ca:5f:4c:de:47:b0:33:d7:eb:c3:
00:7f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
keyid:26:B4:AE:AA:2D:8E:E9:8D:8A:6F:B6:B5:5B:9D:EA:4E:AE:B1:9C:69
X509v3 Subject Key Identifier:
06:74:F9:82:2B:43:B5:C3:56:55:F7:69:59:6E:64:91:7C:ED:1D:AE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 CRL Distribution Points:
URI:http://crl.disa.mil/crl/DODCA_28.crl
URI:ldap://crl.gds.disa.mil/cn%3dDOD%20CA-28%2cou%3dPKI%2cou%3dDoD%2co%3dU.S.%20Government%2cc%3dUS?certificaterevocationlist;binary
X509v3 Certificate Policies:
Policy: 2.16.840.1.101.2.1.11.5
Policy: 2.16.840.1.101.2.1.11.18
Authority Information Access:
CA Issuers - URI:http://crl.disa.mil/sign/DODCA_28.cer
OCSP - URI:http://ocsp.disa.mil
Signature Algorithm: sha1WithRSAEncryption
69:7c:31:38:5f:8b:75:b7:af:95:ad:6e:f5:fc:60:d3:07:e9:
a7:50:c4:60:29:5f:1c:74:cc:fc:a3:2c:e9:89:ab:0d:0d:1e:
02:09:4a:69:ca:fa:c8:ef:68:16:ec:bd:4a:34:19:aa:6f:31:
77:3e:ff:4e:7b:c2:08:d5:e4:35:30:64:fb:a6:17:fb:a6:43:
ac:20:a2:84:33:6f:18:24:11:ed:7f:b9:d9:e4:41:65:59:c1:
32:49:82:7d:4f:52:8c:f7:86:1d:65:0d:bb:e1:e7:e3:47:c3:
6d:a3:43:dc:6c:ad:7d:ef:b6:3f:2f:3d:e7:2f:3d:29:3f:d7:
f1:3a:ef:40:51:94:34:cc:25:6d:d0:90:05:01:01:3b:bb:32:
c6:dd:77:fc:06:98:b3:82:fa:6d:25:e5:f9:d2:bc:84:70:49:
17:1d:8c:7f:a4:d9:e7:31:67:5a:a5:69:c3:70:91:c1:8d:88:
5f:9a:25:14:68:5d:a5:cb:af:f6:05:f1:d8:72:f4:aa:68:a3:
77:d8:a8:33:03:ad:7e:7f:52:af:00:fe:d4:65:f0:e5:d1:52:
d4:8e:78:b6:9b:34:ef:99:f2:2c:72:3d:56:50:18:b2:09:d5:
75:4d:9f:44:71:a9:e6:36:d8:78:f1:a6:26:09:e7:fb:9e:6f:
72:0e:a5:35
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment