1[Created by: generate-chains.py]
2
3Certificate chain where the intermediate has a valid signature, however uses
4MD5 in the signature algorithm.
5
6Certificate:
7    Data:
8        Version: 3 (0x2)
9        Serial Number:
10            70:a7:83:31:c0:be:2b:86:e1:e6:72:7f:d3:1f:63:e7:80:79:6e:d5
11        Signature Algorithm: sha256WithRSAEncryption
12        Issuer: CN=Intermediate
13        Validity
14            Not Before: Oct  5 12:00:00 2021 GMT
15            Not After : Oct  5 12:00:00 2022 GMT
16        Subject: CN=Target
17        Subject Public Key Info:
18            Public Key Algorithm: rsaEncryption
19                Public-Key: (2048 bit)
20                Modulus:
21                    00:c7:dd:eb:5a:f4:88:03:0a:d7:b6:29:95:e0:58:
22                    03:c6:35:36:b0:9e:e8:09:94:21:ba:07:cf:70:cc:
23                    52:c7:2c:fd:fe:c0:86:50:b3:0c:7b:46:cf:eb:a3:
24                    bd:5a:29:32:58:81:09:ff:85:f8:b3:77:75:58:61:
25                    22:f1:59:99:1f:0d:58:dd:ff:f5:a8:51:62:0a:58:
26                    db:20:8e:fd:5a:43:96:8f:cd:8c:98:ca:f4:ef:4c:
27                    f6:1e:48:dc:48:46:60:8c:67:0f:9a:41:2b:6b:72:
28                    e2:ce:11:25:3d:21:99:fa:3f:ca:34:b8:ae:f1:29:
29                    7a:ce:bc:1c:ce:98:50:d6:70:93:0a:a5:c4:7e:05:
30                    34:46:f1:ef:36:59:90:62:c2:b8:b9:71:ed:df:c0:
31                    f8:fd:ff:08:fa:db:05:7d:99:35:2a:65:08:e0:a1:
32                    66:cb:7d:55:bc:72:d8:1f:7d:0c:11:e2:8b:11:51:
33                    2e:88:b1:d1:72:5f:c5:6b:ac:f0:1e:3f:97:b8:0e:
34                    d4:49:9d:a0:b5:be:23:79:b1:0f:19:90:c6:00:e1:
35                    62:b4:d5:db:25:8c:11:01:92:9d:17:16:fd:ee:bf:
36                    37:6a:2a:d9:b4:4d:83:0c:24:2c:f8:28:7f:52:9d:
37                    6b:b3:ac:b2:2b:86:e8:fe:f8:a5:3a:cc:9d:eb:08:
38                    f0:6f
39                Exponent: 65537 (0x10001)
40        X509v3 extensions:
41            X509v3 Subject Key Identifier:
42                4A:A4:1B:84:D7:FB:A1:F1:FB:D4:71:87:01:11:63:87:06:5D:A6:D1
43            X509v3 Authority Key Identifier:
44                A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31
45            Authority Information Access:
46                CA Issuers - URI:http://url-for-aia/Intermediate.cer
47            X509v3 CRL Distribution Points:
48                Full Name:
49                  URI:http://url-for-crl/Intermediate.crl
50            X509v3 Key Usage: critical
51                Digital Signature, Key Encipherment
52            X509v3 Extended Key Usage:
53                TLS Web Server Authentication, TLS Web Client Authentication
54    Signature Algorithm: sha256WithRSAEncryption
55    Signature Value:
56        a5:7a:5a:3e:ea:47:b5:47:48:1e:41:61:22:65:0b:49:84:1f:
57        c7:08:08:21:a5:13:1a:ff:0a:d4:83:a6:b0:87:f4:89:5b:9d:
58        5a:9a:ad:2a:fe:6c:b6:0a:24:cc:16:0b:79:7b:59:77:52:16:
59        45:67:cb:8b:35:dc:ea:fd:6b:0c:9e:fa:c7:2d:2d:a3:53:ef:
60        2a:0d:ae:b1:bb:50:5b:b6:59:08:13:4b:2a:39:3c:b5:09:e5:
61        58:ad:4b:36:8a:82:3f:65:0b:1d:80:30:b1:af:ea:07:47:39:
62        99:9d:2c:ea:13:c6:a6:c3:a0:b0:8e:6e:19:5a:8d:0b:3b:b1:
63        17:6d:cd:71:68:69:32:40:42:ba:47:16:c1:a1:02:dd:95:da:
64        69:dd:4f:5a:8c:d1:ba:c5:e9:a3:d6:67:50:83:19:8b:08:63:
65        cc:11:24:5b:63:df:84:c8:16:8a:57:22:cb:51:8d:ec:6f:35:
66        32:fa:84:c3:2c:77:47:fe:a6:53:61:f0:1e:55:1d:b8:3a:0d:
67        19:ed:ff:2a:d8:81:f6:e8:e0:18:f2:37:68:c8:4e:ef:18:a3:
68        9e:e7:f5:f8:f9:51:e9:70:47:98:35:31:07:63:7d:4f:27:cb:
69        29:30:5b:78:0a:61:44:15:af:c8:bd:c7:d2:e4:18:dc:5b:40:
70        2c:66:b4:78
71-----BEGIN CERTIFICATE-----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92-----END CERTIFICATE-----
93
94Certificate:
95    Data:
96        Version: 3 (0x2)
97        Serial Number:
98            33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6d
99        Signature Algorithm: sha1WithRSAEncryption
100        Issuer: CN=Root
101        Validity
102            Not Before: Oct  5 12:00:00 2021 GMT
103            Not After : Oct  5 12:00:00 2022 GMT
104        Subject: CN=Intermediate
105        Subject Public Key Info:
106            Public Key Algorithm: rsaEncryption
107                Public-Key: (2048 bit)
108                Modulus:
109                    00:eb:61:9e:9d:4b:23:cc:8e:39:d9:ac:07:05:da:
110                    32:34:de:2a:dd:2f:62:ed:87:ce:7c:59:c4:9d:8e:
111                    28:76:d1:f2:65:60:91:3f:7b:63:a4:2f:50:c4:da:
112                    12:5b:71:a0:97:4f:26:cf:e7:b2:01:84:67:57:f5:
113                    86:36:54:68:0f:28:f0:ea:7b:ca:1e:1a:bc:7e:67:
114                    cf:fd:14:63:ee:c1:33:92:01:70:bc:12:6b:7d:2c:
115                    8d:02:34:8e:85:1a:e4:f5:99:b6:c8:d5:18:d9:04:
116                    a6:f5:40:fc:96:50:e2:3f:87:a0:d6:72:be:a3:a3:
117                    45:89:07:74:d0:2e:9c:0d:88:12:02:a3:ef:17:ad:
118                    2c:2d:71:66:11:89:3f:cf:57:77:28:77:70:bb:0f:
119                    39:b0:b1:34:9d:e9:f7:a2:56:af:57:7e:ed:44:f8:
120                    be:78:3d:28:c5:0d:37:15:2c:f6:99:4e:05:70:ae:
121                    c5:99:45:a7:3f:bd:83:79:6a:a3:67:ff:71:2d:60:
122                    e2:08:91:23:45:40:b1:40:52:e1:3b:1d:5d:d1:e9:
123                    c2:b0:b1:c4:fb:7c:af:9c:c1:95:f1:a5:23:16:19:
124                    75:9f:ef:be:b8:79:a7:f4:c5:b2:47:ae:6d:1c:15:
125                    9c:26:0f:b2:0f:ec:92:8d:5a:79:c9:9e:16:e0:70:
126                    bc:ef
127                Exponent: 65537 (0x10001)
128        X509v3 extensions:
129            X509v3 Subject Key Identifier:
130                A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31
131            X509v3 Authority Key Identifier:
132                C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
133            Authority Information Access:
134                CA Issuers - URI:http://url-for-aia/Root.cer
135            X509v3 CRL Distribution Points:
136                Full Name:
137                  URI:http://url-for-crl/Root.crl
138            X509v3 Key Usage: critical
139                Certificate Sign, CRL Sign
140            X509v3 Basic Constraints: critical
141                CA:TRUE
142    Signature Algorithm: sha1WithRSAEncryption
143    Signature Value:
144        10:e8:02:e9:1f:ed:c1:c6:ad:7b:2e:8f:07:ea:1a:0e:ca:5a:
145        e3:6e:bf:d6:ff:be:2a:f1:8e:01:88:32:ae:d2:b7:a0:98:f6:
146        ee:5e:24:ea:a6:5c:4b:dc:15:58:a0:1a:1a:e6:cd:b4:75:65:
147        fd:fc:6a:b7:f5:06:fa:df:36:c4:8e:e1:6a:73:93:62:f3:73:
148        29:35:53:30:b0:15:76:9a:7e:6b:a7:ae:ae:eb:d1:56:54:34:
149        ec:77:1b:7f:05:7e:e4:b1:21:2d:65:1d:83:e3:43:ae:ad:d3:
150        bd:f5:19:60:a5:de:67:9b:eb:84:58:e2:8f:50:a8:2f:32:b1:
151        73:fc:1d:41:47:0f:0d:c2:1d:7e:b5:5c:eb:0e:6c:9e:e5:6e:
152        c4:ec:a0:1c:f5:af:ca:6f:d4:28:53:8b:a8:09:83:6b:ef:13:
153        3c:87:38:f2:63:0b:9c:20:cd:31:22:e6:08:0f:be:1c:04:e8:
154        72:7d:a3:f2:cb:2d:2d:ef:fb:c4:8e:f1:3f:f9:77:2a:d6:66:
155        54:11:f1:d7:7a:5a:04:5b:f0:f4:dc:13:b0:14:6c:e2:b3:95:
156        a0:1f:c3:9a:21:6c:4f:5f:bb:37:3c:f8:8b:d0:19:25:53:c9:
157        79:d6:a1:53:9a:03:e2:ba:f3:72:f9:45:c4:2c:19:e4:73:ca:
158        7d:b6:4e:2a
159-----BEGIN CERTIFICATE-----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179-----END CERTIFICATE-----
180
181Certificate:
182    Data:
183        Version: 3 (0x2)
184        Serial Number:
185            33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6c
186        Signature Algorithm: sha256WithRSAEncryption
187        Issuer: CN=Root
188        Validity
189            Not Before: Oct  5 12:00:00 2021 GMT
190            Not After : Oct  5 12:00:00 2022 GMT
191        Subject: CN=Root
192        Subject Public Key Info:
193            Public Key Algorithm: rsaEncryption
194                Public-Key: (2048 bit)
195                Modulus:
196                    00:cc:b2:cd:77:8f:be:c9:a5:17:ad:e5:ac:2d:b2:
197                    c0:1f:33:5e:ed:d9:96:57:14:9b:a4:37:d8:a0:3d:
198                    e4:2c:56:95:4d:75:68:4f:77:06:24:e0:0f:e9:b6:
199                    de:6f:dd:a7:f6:93:dc:f3:48:10:fa:fb:90:b5:43:
200                    42:0b:9d:d7:e9:0c:2c:69:7b:3a:4f:73:31:00:0c:
201                    ba:15:cc:dd:77:a6:a9:f9:21:b8:97:aa:b7:a4:99:
202                    6c:08:a0:8e:9f:b8:29:47:df:db:b9:b0:39:e5:4f:
203                    be:47:2f:93:76:5b:6b:02:fe:ec:66:31:c2:de:8e:
204                    0a:67:89:a4:70:cb:32:40:db:63:00:57:40:b4:8e:
205                    b8:24:e4:de:33:62:24:7a:e5:b2:18:41:54:f7:98:
206                    d9:f5:c8:23:1e:88:5a:a6:1c:7e:92:0f:92:56:49:
207                    0e:5a:dc:49:4b:d1:f8:1b:73:b0:31:6f:37:7e:cf:
208                    91:f4:40:e6:8b:36:11:fb:0f:79:ea:d2:80:f5:8e:
209                    c1:24:d2:fe:2f:c1:58:6d:32:2e:04:64:b2:20:d2:
210                    cd:a1:79:8b:08:25:8f:1e:89:fe:43:3f:bf:de:49:
211                    f2:fa:bb:d7:52:6e:19:8f:4c:b6:6e:4f:59:48:63:
212                    e2:c9:55:0f:58:89:93:85:e0:58:ee:80:16:5f:c4:
213                    77:b9
214                Exponent: 65537 (0x10001)
215        X509v3 extensions:
216            X509v3 Subject Key Identifier:
217                C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
218            X509v3 Authority Key Identifier:
219                C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
220            Authority Information Access:
221                CA Issuers - URI:http://url-for-aia/Root.cer
222            X509v3 CRL Distribution Points:
223                Full Name:
224                  URI:http://url-for-crl/Root.crl
225            X509v3 Key Usage: critical
226                Certificate Sign, CRL Sign
227            X509v3 Basic Constraints: critical
228                CA:TRUE
229    Signature Algorithm: sha256WithRSAEncryption
230    Signature Value:
231        68:2f:fb:af:72:54:4d:44:20:01:20:d2:62:e6:b2:f7:d2:e3:
232        6c:b9:6a:04:e2:1e:55:0f:23:aa:4e:e3:06:5e:38:d5:50:49:
233        da:09:64:d5:98:83:53:15:3f:58:94:93:1f:db:38:d3:8c:5b:
234        56:7b:1b:6f:1d:e9:0c:df:54:7e:18:46:a5:8e:f0:8f:af:62:
235        5a:5d:0a:5d:ea:2c:be:59:a1:ee:5b:36:26:74:29:c5:5a:48:
236        e4:04:cc:9c:0b:33:55:55:fa:b2:9b:16:f5:81:70:ec:f9:73:
237        81:0e:b0:d4:68:26:d4:78:3f:e0:cb:e4:d3:3f:65:f8:ff:f1:
238        5a:1d:42:c9:fa:be:8f:95:d2:5b:d2:a8:76:de:48:b5:7c:d1:
239        ba:e6:45:4f:ce:b2:ed:7e:bf:20:12:94:3c:43:cc:40:49:a1:
240        d8:04:f6:09:a4:3e:d1:40:cd:eb:04:70:ce:9c:1b:09:8c:4d:
241        43:f6:9e:09:01:3f:cb:88:83:69:28:ea:9e:ae:3e:a9:c8:db:
242        b4:7c:18:88:ac:03:c6:bd:a7:9e:dc:d3:96:c0:27:26:b0:02:
243        1a:68:7d:67:6e:72:35:8e:ff:b2:f7:53:de:96:54:6c:78:91:
244        03:9a:9b:33:c2:79:94:b4:68:b7:ad:49:22:bb:e0:b2:80:ac:
245        9d:18:05:f8
246-----BEGIN CERTIFICATE-----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266-----END CERTIFICATE-----
267