1[Created by: generate-chains.py]
2
3Certificate chain where the intermediate has a valid signature, however uses
4MD5 in the signature algorithm.
5
6Certificate:
7    Data:
8        Version: 3 (0x2)
9        Serial Number:
10            70:a7:83:31:c0:be:2b:86:e1:e6:72:7f:d3:1f:63:e7:80:79:6e:d5
11        Signature Algorithm: sha256WithRSAEncryption
12        Issuer: CN=Intermediate
13        Validity
14            Not Before: Nov  3 12:00:00 2020 GMT
15            Not After : Nov  3 12:00:00 2021 GMT
16        Subject: CN=Target
17        Subject Public Key Info:
18            Public Key Algorithm: rsaEncryption
19                RSA Public-Key: (2048 bit)
20                Modulus:
21                    00:c7:dd:eb:5a:f4:88:03:0a:d7:b6:29:95:e0:58:
22                    03:c6:35:36:b0:9e:e8:09:94:21:ba:07:cf:70:cc:
23                    52:c7:2c:fd:fe:c0:86:50:b3:0c:7b:46:cf:eb:a3:
24                    bd:5a:29:32:58:81:09:ff:85:f8:b3:77:75:58:61:
25                    22:f1:59:99:1f:0d:58:dd:ff:f5:a8:51:62:0a:58:
26                    db:20:8e:fd:5a:43:96:8f:cd:8c:98:ca:f4:ef:4c:
27                    f6:1e:48:dc:48:46:60:8c:67:0f:9a:41:2b:6b:72:
28                    e2:ce:11:25:3d:21:99:fa:3f:ca:34:b8:ae:f1:29:
29                    7a:ce:bc:1c:ce:98:50:d6:70:93:0a:a5:c4:7e:05:
30                    34:46:f1:ef:36:59:90:62:c2:b8:b9:71:ed:df:c0:
31                    f8:fd:ff:08:fa:db:05:7d:99:35:2a:65:08:e0:a1:
32                    66:cb:7d:55:bc:72:d8:1f:7d:0c:11:e2:8b:11:51:
33                    2e:88:b1:d1:72:5f:c5:6b:ac:f0:1e:3f:97:b8:0e:
34                    d4:49:9d:a0:b5:be:23:79:b1:0f:19:90:c6:00:e1:
35                    62:b4:d5:db:25:8c:11:01:92:9d:17:16:fd:ee:bf:
36                    37:6a:2a:d9:b4:4d:83:0c:24:2c:f8:28:7f:52:9d:
37                    6b:b3:ac:b2:2b:86:e8:fe:f8:a5:3a:cc:9d:eb:08:
38                    f0:6f
39                Exponent: 65537 (0x10001)
40        X509v3 extensions:
41            X509v3 Subject Key Identifier:
42                4A:A4:1B:84:D7:FB:A1:F1:FB:D4:71:87:01:11:63:87:06:5D:A6:D1
43            X509v3 Authority Key Identifier:
44                keyid:A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31
45
46            Authority Information Access:
47                CA Issuers - URI:http://url-for-aia/Intermediate.cer
48
49            X509v3 CRL Distribution Points:
50
51                Full Name:
52                  URI:http://url-for-crl/Intermediate.crl
53
54            X509v3 Key Usage: critical
55                Digital Signature, Key Encipherment
56            X509v3 Extended Key Usage:
57                TLS Web Server Authentication, TLS Web Client Authentication
58    Signature Algorithm: sha256WithRSAEncryption
59         6c:8d:54:4b:dd:98:01:e8:aa:50:70:99:df:ea:ef:8b:e6:92:
60         f6:d3:8d:12:be:5d:46:8a:aa:09:47:0f:7c:24:c4:02:89:fa:
61         c2:45:bf:18:41:9d:b6:bd:e7:15:6b:01:9d:cc:b9:3b:3e:95:
62         61:64:e1:36:af:79:99:27:58:56:05:20:96:8d:d2:da:61:23:
63         07:b9:fa:c3:dc:b4:8c:53:00:7d:8b:3c:f5:63:fd:3d:1d:d6:
64         78:68:f8:2a:82:e3:a3:d2:69:44:30:02:dd:53:f6:bb:13:22:
65         06:71:8e:a1:4e:a1:9d:ad:30:9e:8e:f4:5e:89:98:ca:ee:54:
66         ee:23:4b:1d:08:a9:22:71:af:e1:47:67:c2:a9:30:f7:a1:27:
67         b7:d9:17:ad:d4:e1:d0:7c:18:fe:cf:96:97:36:94:8b:ed:ce:
68         19:49:15:6d:f8:50:e3:a1:d7:6e:35:e8:c1:7c:68:2f:bf:5f:
69         57:fc:40:aa:3d:d2:99:e8:45:20:07:14:3d:0b:06:8e:21:00:
70         f2:27:b3:57:f8:42:6a:d9:65:34:a7:21:d8:02:bf:1e:04:61:
71         a7:8c:72:e1:43:cf:3c:87:c7:d9:76:28:21:d4:5a:68:20:82:
72         f5:0b:df:e5:26:43:42:5c:36:d4:2b:49:4d:81:c2:02:1c:80:
73         14:c7:33:b0
74-----BEGIN CERTIFICATE-----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95-----END CERTIFICATE-----
96
97Certificate:
98    Data:
99        Version: 3 (0x2)
100        Serial Number:
101            33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6d
102        Signature Algorithm: md5WithRSAEncryption
103        Issuer: CN=Root
104        Validity
105            Not Before: Nov  3 12:00:00 2020 GMT
106            Not After : Nov  3 12:00:00 2021 GMT
107        Subject: CN=Intermediate
108        Subject Public Key Info:
109            Public Key Algorithm: rsaEncryption
110                RSA Public-Key: (2048 bit)
111                Modulus:
112                    00:eb:61:9e:9d:4b:23:cc:8e:39:d9:ac:07:05:da:
113                    32:34:de:2a:dd:2f:62:ed:87:ce:7c:59:c4:9d:8e:
114                    28:76:d1:f2:65:60:91:3f:7b:63:a4:2f:50:c4:da:
115                    12:5b:71:a0:97:4f:26:cf:e7:b2:01:84:67:57:f5:
116                    86:36:54:68:0f:28:f0:ea:7b:ca:1e:1a:bc:7e:67:
117                    cf:fd:14:63:ee:c1:33:92:01:70:bc:12:6b:7d:2c:
118                    8d:02:34:8e:85:1a:e4:f5:99:b6:c8:d5:18:d9:04:
119                    a6:f5:40:fc:96:50:e2:3f:87:a0:d6:72:be:a3:a3:
120                    45:89:07:74:d0:2e:9c:0d:88:12:02:a3:ef:17:ad:
121                    2c:2d:71:66:11:89:3f:cf:57:77:28:77:70:bb:0f:
122                    39:b0:b1:34:9d:e9:f7:a2:56:af:57:7e:ed:44:f8:
123                    be:78:3d:28:c5:0d:37:15:2c:f6:99:4e:05:70:ae:
124                    c5:99:45:a7:3f:bd:83:79:6a:a3:67:ff:71:2d:60:
125                    e2:08:91:23:45:40:b1:40:52:e1:3b:1d:5d:d1:e9:
126                    c2:b0:b1:c4:fb:7c:af:9c:c1:95:f1:a5:23:16:19:
127                    75:9f:ef:be:b8:79:a7:f4:c5:b2:47:ae:6d:1c:15:
128                    9c:26:0f:b2:0f:ec:92:8d:5a:79:c9:9e:16:e0:70:
129                    bc:ef
130                Exponent: 65537 (0x10001)
131        X509v3 extensions:
132            X509v3 Subject Key Identifier:
133                A6:86:14:22:AB:40:E8:07:5F:13:64:F3:8D:60:DE:30:B4:0B:B3:31
134            X509v3 Authority Key Identifier:
135                keyid:C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
136
137            Authority Information Access:
138                CA Issuers - URI:http://url-for-aia/Root.cer
139
140            X509v3 CRL Distribution Points:
141
142                Full Name:
143                  URI:http://url-for-crl/Root.crl
144
145            X509v3 Key Usage: critical
146                Certificate Sign, CRL Sign
147            X509v3 Basic Constraints: critical
148                CA:TRUE
149    Signature Algorithm: md5WithRSAEncryption
150         ab:a8:ad:a5:eb:0f:02:58:36:67:30:2a:94:d7:64:a1:28:40:
151         3c:13:29:52:99:ab:c9:a9:c5:a4:15:4d:9c:5b:33:db:14:30:
152         8b:ba:15:25:ac:10:55:cb:ac:99:3b:5e:8f:e1:f2:5a:b6:3c:
153         42:59:4c:ca:2a:4a:55:43:54:b2:77:34:ce:81:94:cf:40:61:
154         96:de:ba:80:2a:a2:3a:d4:74:85:64:73:7a:ec:c5:7f:4e:29:
155         8a:03:ca:78:47:f7:d9:b0:b2:43:07:db:23:0e:ca:3e:a8:ad:
156         36:2e:04:b9:cc:f0:fc:5c:3e:41:bb:23:bf:7f:56:c7:1d:85:
157         2e:9a:d5:6a:22:63:b8:7c:c3:8d:f2:0b:67:b0:28:de:78:a6:
158         e3:4b:47:3e:7f:14:8a:dc:5d:54:48:ce:e1:36:d2:bf:72:d4:
159         48:18:91:80:7b:39:10:b5:b5:7b:3e:95:b5:eb:89:4f:71:1e:
160         ce:0c:62:fa:87:4e:88:45:96:9c:a7:b9:9f:d3:e1:79:79:d0:
161         61:b0:0a:d1:d1:f5:89:16:14:6b:9f:89:ee:05:45:54:e1:ba:
162         4f:3f:f8:ae:af:bc:1d:e5:ec:54:5d:c0:8b:bb:88:b2:db:ac:
163         e5:da:3e:48:60:5c:21:ea:15:1e:78:3d:c1:95:f7:e7:f7:4b:
164         81:2c:06:a7
165-----BEGIN CERTIFICATE-----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185-----END CERTIFICATE-----
186
187Certificate:
188    Data:
189        Version: 3 (0x2)
190        Serial Number:
191            33:57:99:fd:87:a4:e1:51:aa:94:8f:97:f1:9d:32:d1:b0:22:c3:6c
192        Signature Algorithm: sha256WithRSAEncryption
193        Issuer: CN=Root
194        Validity
195            Not Before: Nov  3 12:00:00 2020 GMT
196            Not After : Nov  3 12:00:00 2021 GMT
197        Subject: CN=Root
198        Subject Public Key Info:
199            Public Key Algorithm: rsaEncryption
200                RSA Public-Key: (2048 bit)
201                Modulus:
202                    00:cc:b2:cd:77:8f:be:c9:a5:17:ad:e5:ac:2d:b2:
203                    c0:1f:33:5e:ed:d9:96:57:14:9b:a4:37:d8:a0:3d:
204                    e4:2c:56:95:4d:75:68:4f:77:06:24:e0:0f:e9:b6:
205                    de:6f:dd:a7:f6:93:dc:f3:48:10:fa:fb:90:b5:43:
206                    42:0b:9d:d7:e9:0c:2c:69:7b:3a:4f:73:31:00:0c:
207                    ba:15:cc:dd:77:a6:a9:f9:21:b8:97:aa:b7:a4:99:
208                    6c:08:a0:8e:9f:b8:29:47:df:db:b9:b0:39:e5:4f:
209                    be:47:2f:93:76:5b:6b:02:fe:ec:66:31:c2:de:8e:
210                    0a:67:89:a4:70:cb:32:40:db:63:00:57:40:b4:8e:
211                    b8:24:e4:de:33:62:24:7a:e5:b2:18:41:54:f7:98:
212                    d9:f5:c8:23:1e:88:5a:a6:1c:7e:92:0f:92:56:49:
213                    0e:5a:dc:49:4b:d1:f8:1b:73:b0:31:6f:37:7e:cf:
214                    91:f4:40:e6:8b:36:11:fb:0f:79:ea:d2:80:f5:8e:
215                    c1:24:d2:fe:2f:c1:58:6d:32:2e:04:64:b2:20:d2:
216                    cd:a1:79:8b:08:25:8f:1e:89:fe:43:3f:bf:de:49:
217                    f2:fa:bb:d7:52:6e:19:8f:4c:b6:6e:4f:59:48:63:
218                    e2:c9:55:0f:58:89:93:85:e0:58:ee:80:16:5f:c4:
219                    77:b9
220                Exponent: 65537 (0x10001)
221        X509v3 extensions:
222            X509v3 Subject Key Identifier:
223                C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
224            X509v3 Authority Key Identifier:
225                keyid:C4:01:16:E5:A0:16:10:29:62:67:7B:D1:22:42:6C:6F:15:2B:AF:96
226
227            Authority Information Access:
228                CA Issuers - URI:http://url-for-aia/Root.cer
229
230            X509v3 CRL Distribution Points:
231
232                Full Name:
233                  URI:http://url-for-crl/Root.crl
234
235            X509v3 Key Usage: critical
236                Certificate Sign, CRL Sign
237            X509v3 Basic Constraints: critical
238                CA:TRUE
239    Signature Algorithm: sha256WithRSAEncryption
240         41:f1:9d:60:2f:d5:2b:e9:48:d7:aa:b9:26:56:e1:0c:a3:6a:
241         d7:2f:30:5b:05:e0:4a:17:43:82:44:9e:3d:f0:78:b5:23:cc:
242         17:a2:59:04:84:96:71:89:9f:1c:78:62:d6:cc:a8:e0:d0:40:
243         95:2e:d8:22:39:8d:e3:f4:b9:f3:2f:62:0f:12:c3:99:e1:36:
244         35:90:02:de:fa:cf:18:cf:1a:18:2c:3e:8a:e2:5c:a1:e1:5e:
245         f8:2e:1b:9c:85:39:31:c2:62:e9:82:4d:75:11:e6:b9:82:39:
246         18:aa:ad:c8:77:a9:78:a6:2e:7f:4c:ab:51:21:5a:38:57:a4:
247         56:93:a0:d6:aa:7a:b7:63:42:74:7a:d0:58:cd:43:e1:5f:9a:
248         ea:12:6d:b1:f4:96:35:e3:c8:6b:44:77:cf:d1:b9:72:52:c7:
249         1f:dd:18:b5:64:6b:97:65:d3:73:3a:82:b6:0a:e1:57:d4:0a:
250         58:a8:1b:75:ee:6e:6b:42:b6:99:53:95:cc:74:cc:29:73:33:
251         de:a4:d1:76:cb:6c:ff:5b:e6:34:d6:85:13:92:68:dd:80:37:
252         bf:fe:55:43:6d:f0:54:1a:43:71:30:f2:f9:fb:92:a6:61:d8:
253         27:e3:88:94:bf:30:a4:21:89:59:9a:44:72:8d:fe:f9:0b:18:
254         7f:86:3c:b4
255-----BEGIN CERTIFICATE-----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275-----END CERTIFICATE-----
276