1This is a version 3 TBSCertificate containing all the possible optional fields. 2 3 4$ openssl asn1parse -i < [TBS CERTIFICATE] 5 0:d=0 hl=2 l= 75 cons: SEQUENCE 6 2:d=1 hl=2 l= 3 cons: cont [ 0 ] 7 4:d=2 hl=2 l= 1 prim: INTEGER :02 8 7:d=1 hl=2 l= 1 prim: INTEGER :01 9 10:d=1 hl=2 l= 3 cons: SEQUENCE 10 12:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:01 11 15:d=1 hl=2 l= 3 cons: SEQUENCE 12 17:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:05 13 20:d=1 hl=2 l= 30 cons: SEQUENCE 14 22:d=2 hl=2 l= 13 prim: UTCTIME :121018031200Z 15 37:d=2 hl=2 l= 13 prim: UTCTIME :131018145959Z 16 52:d=1 hl=2 l= 3 cons: SEQUENCE 17 54:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:83 18 57:d=1 hl=2 l= 3 cons: SEQUENCE 19 59:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:F3 20 62:d=1 hl=2 l= 2 prim: cont [ 1 ] 21 66:d=1 hl=2 l= 2 prim: cont [ 2 ] 22 70:d=1 hl=2 l= 5 cons: cont [ 3 ] 23 72:d=2 hl=2 l= 3 cons: SEQUENCE 24 74:d=3 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:DD 25-----BEGIN TBS CERTIFICATE----- 26MEugAwIBAgIBATADBAEBMAMEAQUwHhcNMTIxMDE4MDMxMjAwWhcNMTMxMDE4MTQ1OTU5WjADBAG 27DMAMEAfOBAgC5ggIAyqMFMAMEAd0= 28-----END TBS CERTIFICATE----- 29 30-----BEGIN SERIAL NUMBER----- 31AQ== 32-----END SERIAL NUMBER----- 33 34$ openssl asn1parse -i < [SIGNATURE ALGORITHM] 35 0:d=0 hl=2 l= 3 cons: SEQUENCE 36 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:01 37-----BEGIN SIGNATURE ALGORITHM----- 38MAMEAQE= 39-----END SIGNATURE ALGORITHM----- 40 41$ openssl asn1parse -i < [ISSUER] 42 0:d=0 hl=2 l= 3 cons: SEQUENCE 43 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:05 44-----BEGIN ISSUER----- 45MAMEAQU= 46-----END ISSUER----- 47 48VALIDITY NOTBEFORE: year=2012, month=10, day=18, hours=3, minutes=12, seconds=0 49-----BEGIN VALIDITY NOTBEFORE----- 50eWVhcj0yMDEyLCBtb250aD0xMCwgZGF5PTE4LCBob3Vycz0zLCBtaW51dGVzPTEyLCBzZWNvbmR 51zPTA= 52-----END VALIDITY NOTBEFORE----- 53 54VALIDITY NOTAFTER: year=2013, month=10, day=18, hours=14, minutes=59, seconds=59 55-----BEGIN VALIDITY NOTAFTER----- 56eWVhcj0yMDEzLCBtb250aD0xMCwgZGF5PTE4LCBob3Vycz0xNCwgbWludXRlcz01OSwgc2Vjb25 57kcz01OQ== 58-----END VALIDITY NOTAFTER----- 59 60$ openssl asn1parse -i < [SUBJECT] 61 0:d=0 hl=2 l= 3 cons: SEQUENCE 62 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:83 63-----BEGIN SUBJECT----- 64MAMEAYM= 65-----END SUBJECT----- 66 67$ openssl asn1parse -i < [SPKI] 68 0:d=0 hl=2 l= 3 cons: SEQUENCE 69 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:F3 70-----BEGIN SPKI----- 71MAMEAfM= 72-----END SPKI----- 73 74-----BEGIN ISSUER UNIQUE ID----- 75uQ== 76-----END ISSUER UNIQUE ID----- 77 78-----BEGIN SUBJECT UNIQUE ID----- 79yg== 80-----END SUBJECT UNIQUE ID----- 81 82$ openssl asn1parse -i < [EXTENSIONS] 83 0:d=0 hl=2 l= 3 cons: SEQUENCE 84 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:DD 85-----BEGIN EXTENSIONS----- 86MAMEAd0= 87-----END EXTENSIONS----- 88