1[Created by: ./generate_rsa_device_certs.py] 2 3Cast certificate chain where device certificate uses a 4 1024-bit RSA key 5 6Certificate: 7 Data: 8 Version: 3 (0x2) 9 Serial Number: 1 (0x1) 10 Signature Algorithm: sha256WithRSAEncryption 11 Issuer: CN=Intermediate 12 Validity 13 Not Before: Jan 1 12:00:00 2015 GMT 14 Not After : Jan 1 12:00:00 2018 GMT 15 Subject: CN=RSA 1024 Device Cert 16 Subject Public Key Info: 17 Public Key Algorithm: rsaEncryption 18 Public-Key: (1024 bit) 19 Modulus: 20 00:ea:1b:53:46:5f:1d:a2:d8:13:e6:e2:3d:4a:64: 21 5e:fd:cf:72:63:78:be:3b:76:fe:29:ee:51:cd:86: 22 25:72:de:12:8a:e2:fb:10:b8:90:c7:fa:e7:7a:2e: 23 9a:4a:b6:7f:ac:d8:d2:fa:b5:c9:13:7f:31:4b:d7: 24 24:52:c4:db:cf:75:56:11:0b:e4:1a:16:3a:0a:8f: 25 b3:52:8d:28:ed:a1:7b:ba:8f:a8:d4:d1:92:b7:bc: 26 4e:bc:eb:bc:cd:91:3c:7c:95:48:c5:02:56:8d:79: 27 17:74:24:dc:16:04:88:1f:a3:6f:56:5c:ee:0d:91: 28 4f:81:e7:36:0d:42:0b:04:81 29 Exponent: 65537 (0x10001) 30 X509v3 extensions: 31 X509v3 Subject Key Identifier: 32 DE:16:32:07:B9:8D:5C:BC:0B:50:36:20:84:D6:71:94:7F:A4:79:76 33 X509v3 Authority Key Identifier: 34 keyid:B7:38:59:7A:66:A9:B7:DE:6C:1E:81:28:0F:1F:AE:1E:A5:BF:44:8F 35 36 Authority Information Access: 37 CA Issuers - URI:http://url-for-aia/Intermediate.cer 38 39 X509v3 CRL Distribution Points: 40 41 Full Name: 42 URI:http://url-for-crl/Intermediate.crl 43 44 X509v3 Key Usage: critical 45 Digital Signature, Key Encipherment 46 X509v3 Extended Key Usage: 47 TLS Web Client Authentication 48 Signature Algorithm: sha256WithRSAEncryption 49 2b:ba:14:d8:45:7f:f3:95:1f:c6:4b:0b:03:8e:7c:b4:a8:7e: 50 71:f5:05:09:99:b5:b0:1a:13:e1:df:be:cd:9e:06:27:f4:e6: 51 61:db:25:67:06:2e:d2:f1:2f:5c:be:2b:fe:ce:d4:a2:c9:a7: 52 b2:01:6c:f8:a7:b3:94:b8:bc:36:27:c7:ef:4c:7c:aa:d1:b4: 53 e7:a3:2a:ac:b9:f9:d1:bd:60:d2:ff:fa:4e:3c:0f:23:38:b5: 54 ab:82:12:ce:c9:7a:26:d8:a2:60:68:a5:d5:5f:27:d4:50:7c: 55 48:72:b5:14:77:b6:8d:4b:a9:aa:58:6a:d3:a3:ff:07:29:6b: 56 8e:6b:4f:8b:87:38:42:f5:1b:78:36:75:ea:51:ba:7b:75:4a: 57 c4:f9:e4:f8:2e:e3:ea:dd:b1:e9:1a:f6:02:33:99:1e:65:00: 58 a0:9a:63:82:dc:05:cd:40:39:2b:58:3c:e4:ff:80:63:79:65: 59 ce:0c:ce:96:c3:01:64:1c:76:fe:ac:c2:23:32:63:be:bd:eb: 60 68:ba:91:34:20:26:b5:66:a8:f8:0c:6f:82:82:31:1e:1d:e3: 61 51:a3:be:c9:10:d8:82:13:24:02:ee:c6:75:76:75:57:aa:5d: 62 76:d9:5a:44:14:0d:ab:d3:90:93:8f:28:cc:53:6a:74:07:71: 63 ba:9f:2e:21 64-----BEGIN CERTIFICATE----- 65MIIDDTCCAfWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAXMRUwEwYDVQQDDAxJbnRl 66cm1lZGlhdGUwHhcNMTUwMTAxMTIwMDAwWhcNMTgwMTAxMTIwMDAwWjAfMR0wGwYD 67VQQDDBRSU0EgMTAyNCBEZXZpY2UgQ2VydDCBnzANBgkqhkiG9w0BAQEFAAOBjQAw 68gYkCgYEA6htTRl8dotgT5uI9SmRe/c9yY3i+O3b+Ke5RzYYlct4SiuL7ELiQx/rn 69ei6aSrZ/rNjS+rXJE38xS9ckUsTbz3VWEQvkGhY6Co+zUo0o7aF7uo+o1NGSt7xO 70vOu8zZE8fJVIxQJWjXkXdCTcFgSIH6NvVlzuDZFPgec2DUILBIECAwEAAaOB3zCB 713DAdBgNVHQ4EFgQU3hYyB7mNXLwLUDYghNZxlH+keXYwHwYDVR0jBBgwFoAUtzhZ 72emapt95sHoEoDx+uHqW/RI8wPwYIKwYBBQUHAQEEMzAxMC8GCCsGAQUFBzAChiNo 73dHRwOi8vdXJsLWZvci1haWEvSW50ZXJtZWRpYXRlLmNlcjA0BgNVHR8ELTArMCmg 74J6AlhiNodHRwOi8vdXJsLWZvci1jcmwvSW50ZXJtZWRpYXRlLmNybDAOBgNVHQ8B 75Af8EBAMCBaAwEwYDVR0lBAwwCgYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQADggEB 76ACu6FNhFf/OVH8ZLCwOOfLSofnH1BQmZtbAaE+Hfvs2eBif05mHbJWcGLtLxL1y+ 77K/7O1KLJp7IBbPins5S4vDYnx+9MfKrRtOejKqy5+dG9YNL/+k48DyM4tauCEs7J 78eibYomBopdVfJ9RQfEhytRR3to1LqapYatOj/wcpa45rT4uHOEL1G3g2depRunt1 79SsT55Pgu4+rdseka9gIzmR5lAKCaY4LcBc1AOStYPOT/gGN5Zc4MzpbDAWQcdv6s 80wiMyY76962i6kTQgJrVmqPgMb4KCMR4d41GjvskQ2IITJALuxnV2dVeqXXbZWkQU 81DavTkJOPKMxTanQHcbqfLiE= 82-----END CERTIFICATE----- 83 84Certificate: 85 Data: 86 Version: 3 (0x2) 87 Serial Number: 2 (0x2) 88 Signature Algorithm: sha256WithRSAEncryption 89 Issuer: CN=Root 90 Validity 91 Not Before: Jan 1 12:00:00 2015 GMT 92 Not After : Jan 1 12:00:00 2018 GMT 93 Subject: CN=Intermediate 94 Subject Public Key Info: 95 Public Key Algorithm: rsaEncryption 96 Public-Key: (2048 bit) 97 Modulus: 98 00:ac:8b:55:5c:b8:3c:26:2d:d8:fe:22:70:ef:15: 99 38:a8:56:6d:c6:b7:d0:e1:a1:26:81:02:f8:97:f5: 100 73:1b:d5:c6:1a:77:9f:ae:85:30:7c:6e:e0:03:a7: 101 7f:e3:47:98:c2:d5:c3:6b:c2:cc:0d:0f:80:e1:c3: 102 24:41:8f:21:10:cb:fe:ce:04:79:b6:1e:40:83:1a: 103 dd:44:3a:37:fb:42:8b:52:02:c6:6b:b8:47:58:bc: 104 04:fc:8d:e7:fc:70:1f:07:c5:18:db:b2:6b:44:42: 105 90:67:10:7f:83:38:47:4b:fd:94:cb:45:15:40:e5: 106 e8:2a:e1:2b:d0:f5:2e:cc:95:94:10:9c:da:b5:d4: 107 47:5b:49:da:fe:c0:89:6e:7d:91:64:22:f9:fa:b5: 108 f4:ca:77:2e:f2:e6:cb:b3:4f:c6:67:40:f0:b9:ee: 109 5c:ac:ed:cd:a6:73:b4:08:d5:76:7a:ae:91:1a:8a: 110 5e:0e:e7:25:8c:82:7e:ad:d2:82:79:b1:ca:a3:77: 111 1c:8f:71:68:f2:d8:ce:31:4f:db:b8:79:79:ad:2f: 112 d8:1d:9b:4c:c8:04:a9:de:ad:a2:68:f1:46:e4:f9: 113 f7:d1:8a:bd:1f:9a:d9:33:92:d3:c4:a4:a7:67:b2: 114 5d:66:49:2a:15:8b:71:0d:10:1f:70:82:04:4b:70: 115 4f:a5 116 Exponent: 65537 (0x10001) 117 X509v3 extensions: 118 X509v3 Subject Key Identifier: 119 B7:38:59:7A:66:A9:B7:DE:6C:1E:81:28:0F:1F:AE:1E:A5:BF:44:8F 120 X509v3 Authority Key Identifier: 121 keyid:94:38:F3:64:93:E5:2C:C9:0D:36:D1:16:21:13:90:2E:3E:E0:FA:94 122 123 Authority Information Access: 124 CA Issuers - URI:http://url-for-aia/Root.cer 125 126 X509v3 CRL Distribution Points: 127 128 Full Name: 129 URI:http://url-for-crl/Root.crl 130 131 X509v3 Key Usage: critical 132 Certificate Sign, CRL Sign 133 X509v3 Basic Constraints: critical 134 CA:TRUE 135 Signature Algorithm: sha256WithRSAEncryption 136 4f:3f:7a:d4:5d:59:e5:0e:d7:48:49:6f:40:ea:ce:95:87:76: 137 ae:58:fc:59:6b:78:88:33:17:65:79:a9:a1:63:93:6a:1c:5b: 138 33:a2:7d:87:50:8b:47:35:3a:47:8e:0e:e9:3d:e8:1c:9c:a6: 139 ab:68:e2:62:20:09:e2:b3:16:f7:43:9d:e8:61:e8:1d:c0:ac: 140 19:0c:ab:dd:06:5c:8c:ad:55:e3:7f:ba:20:ba:7b:1e:78:c7: 141 40:78:1f:66:e0:db:a0:3b:cd:73:90:a5:6b:71:97:ef:16:ef: 142 a3:91:fa:0f:06:3e:4b:23:68:81:fc:25:de:fa:99:0b:f9:b9: 143 f5:81:15:59:b1:b1:41:42:1c:a5:17:cb:b5:ba:9f:cd:46:fe: 144 22:c8:79:a8:95:03:70:e2:54:2c:58:1a:26:a9:6b:25:b4:ed: 145 77:62:57:5f:e7:94:98:72:7d:a6:b3:4c:35:4e:54:68:85:34: 146 d0:f3:b8:f8:c1:36:94:db:8f:99:2e:fd:ea:68:47:e1:47:4f: 147 bb:0c:7b:dc:85:e1:e6:1c:71:00:5d:15:d3:17:b5:33:dc:a3: 148 8b:2a:5e:16:e2:a5:f0:66:c3:5d:e0:f1:b4:59:df:1a:04:65: 149 77:cb:0c:95:c2:fb:2d:66:12:0a:e6:49:3b:74:76:48:6f:7e: 150 99:b9:02:45 151-----BEGIN CERTIFICATE----- 152MIIDbTCCAlWgAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 153MB4XDTE1MDEwMTEyMDAwMFoXDTE4MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50 154ZXJtZWRpYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArItVXLg8 155Ji3Y/iJw7xU4qFZtxrfQ4aEmgQL4l/VzG9XGGnefroUwfG7gA6d/40eYwtXDa8LM 156DQ+A4cMkQY8hEMv+zgR5th5AgxrdRDo3+0KLUgLGa7hHWLwE/I3n/HAfB8UY27Jr 157REKQZxB/gzhHS/2Uy0UVQOXoKuEr0PUuzJWUEJzatdRHW0na/sCJbn2RZCL5+rX0 158yncu8ubLs0/GZ0Dwue5crO3NpnO0CNV2eq6RGopeDucljIJ+rdKCebHKo3ccj3Fo 1598tjOMU/buHl5rS/YHZtMyASp3q2iaPFG5Pn30Yq9H5rZM5LTxKSnZ7JdZkkqFYtx 160DRAfcIIES3BPpQIDAQABo4HLMIHIMB0GA1UdDgQWBBS3OFl6Zqm33mwegSgPH64e 161pb9EjzAfBgNVHSMEGDAWgBSUOPNkk+UsyQ020RYhE5AuPuD6lDA3BggrBgEFBQcB 162AQQrMCkwJwYIKwYBBQUHMAKGG2h0dHA6Ly91cmwtZm9yLWFpYS9Sb290LmNlcjAs 163BgNVHR8EJTAjMCGgH6AdhhtodHRwOi8vdXJsLWZvci1jcmwvUm9vdC5jcmwwDgYD 164VR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEB 165AE8/etRdWeUO10hJb0DqzpWHdq5Y/FlreIgzF2V5qaFjk2ocWzOifYdQi0c1OkeO 166Duk96Bycpqto4mIgCeKzFvdDnehh6B3ArBkMq90GXIytVeN/uiC6ex54x0B4H2bg 16726A7zXOQpWtxl+8W76OR+g8GPksjaIH8Jd76mQv5ufWBFVmxsUFCHKUXy7W6n81G 168/iLIeaiVA3DiVCxYGiapayW07XdiV1/nlJhyfaazTDVOVGiFNNDzuPjBNpTbj5ku 169/epoR+FHT7sMe9yF4eYccQBdFdMXtTPco4sqXhbipfBmw13g8bRZ3xoEZXfLDJXC 170+y1mEgrmSTt0dkhvfpm5AkU= 171-----END CERTIFICATE----- 172 173Certificate: 174 Data: 175 Version: 3 (0x2) 176 Serial Number: 1 (0x1) 177 Signature Algorithm: sha256WithRSAEncryption 178 Issuer: CN=Root 179 Validity 180 Not Before: Jan 1 12:00:00 2015 GMT 181 Not After : Jan 1 12:00:00 2018 GMT 182 Subject: CN=Root 183 Subject Public Key Info: 184 Public Key Algorithm: rsaEncryption 185 Public-Key: (2048 bit) 186 Modulus: 187 00:df:f8:ef:9a:5c:9c:67:d8:0e:b6:38:1d:ee:7c: 188 41:bb:b2:43:e1:3a:f6:6d:61:1c:68:3b:6d:b7:1d: 189 1b:5c:89:52:d7:2c:1a:05:d8:a5:0f:80:cf:ff:c3: 190 e7:32:d1:75:ca:e0:23:4e:99:96:24:ff:d5:d8:50: 191 de:ef:a0:88:bb:e4:2b:a1:da:80:85:68:05:4b:04: 192 b6:29:be:04:8a:b2:fd:5b:c8:4e:6b:9b:ad:81:c0: 193 25:05:7a:eb:16:ae:21:7d:1c:2a:74:7d:a9:7a:88: 194 64:55:d1:0a:79:45:14:28:ba:25:e1:7f:55:df:22: 195 ee:4a:15:f4:03:11:8f:8f:b4:e4:8a:6d:4a:7b:93: 196 9c:82:ef:f3:f6:ef:f9:10:8e:f5:f0:7b:77:01:40: 197 da:bd:c2:16:e0:53:7a:2d:c2:d1:bd:69:1b:2c:0a: 198 51:c8:63:02:f7:dc:94:6c:19:66:ee:d8:1f:be:41: 199 99:b4:4f:18:ca:41:44:43:8c:f1:95:d7:db:2c:df: 200 6c:a4:b7:b4:24:26:2a:93:8b:c5:a9:e6:91:c2:d7: 201 25:3e:af:bb:c0:b2:4e:3d:38:75:30:07:3b:d7:30: 202 5e:b6:91:c1:de:9d:cb:54:ab:00:f6:2a:fb:a4:4a: 203 9e:8c:27:08:66:35:37:a7:3e:82:50:5a:24:18:91: 204 ca:d7 205 Exponent: 65537 (0x10001) 206 X509v3 extensions: 207 X509v3 Subject Key Identifier: 208 94:38:F3:64:93:E5:2C:C9:0D:36:D1:16:21:13:90:2E:3E:E0:FA:94 209 X509v3 Authority Key Identifier: 210 keyid:94:38:F3:64:93:E5:2C:C9:0D:36:D1:16:21:13:90:2E:3E:E0:FA:94 211 212 Authority Information Access: 213 CA Issuers - URI:http://url-for-aia/Root.cer 214 215 X509v3 CRL Distribution Points: 216 217 Full Name: 218 URI:http://url-for-crl/Root.crl 219 220 X509v3 Key Usage: critical 221 Certificate Sign, CRL Sign 222 X509v3 Basic Constraints: critical 223 CA:TRUE 224 Signature Algorithm: sha256WithRSAEncryption 225 6b:95:68:f5:58:3c:9d:dc:7d:55:6f:fc:51:58:6b:85:87:c4: 226 6a:fd:6d:d3:e3:15:95:61:17:ec:40:67:82:98:a6:d1:36:b3: 227 c3:6c:71:9f:8f:b8:7c:ad:e8:bf:ed:87:46:06:e8:86:94:50: 228 99:db:86:56:5c:8e:45:9b:88:d5:e3:4d:fe:06:19:b3:55:7d: 229 25:a9:a9:cc:b2:99:ad:49:31:0b:89:db:79:65:86:ed:c2:d3: 230 a9:44:68:d3:a4:d7:b0:40:14:d7:ba:f9:d3:b1:b7:57:86:e8: 231 06:ab:8d:6c:fb:be:05:2e:fc:6a:44:8f:80:bd:2d:3c:25:18: 232 2e:dd:28:82:b7:04:a1:d7:dd:99:37:21:c6:0e:8c:74:79:36: 233 f9:95:14:6e:11:7f:3e:91:6e:88:79:9b:f5:8a:e7:32:d3:24: 234 f5:64:60:e2:49:df:14:f0:5b:5a:47:0f:4f:a9:16:89:f2:42: 235 04:d2:ab:fa:26:12:9a:4e:fb:c5:5d:49:a5:82:13:e2:71:80: 236 ca:97:dc:42:9b:72:50:72:0e:06:51:0b:f4:7f:81:43:d2:31: 237 9c:5c:a9:b1:06:90:1e:eb:f7:60:4b:a7:e2:c4:1d:cd:b6:53: 238 e8:9e:11:13:d1:b2:19:25:d8:8c:4b:ac:31:63:13:f5:85:b9: 239 59:14:92:92 240-----BEGIN CERTIFICATE----- 241MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290 242MB4XDTE1MDEwMTEyMDAwMFoXDTE4MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v 243dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAN/475pcnGfYDrY4He58 244QbuyQ+E69m1hHGg7bbcdG1yJUtcsGgXYpQ+Az//D5zLRdcrgI06ZliT/1dhQ3u+g 245iLvkK6HagIVoBUsEtim+BIqy/VvITmubrYHAJQV66xauIX0cKnR9qXqIZFXRCnlF 246FCi6JeF/Vd8i7koV9AMRj4+05IptSnuTnILv8/bv+RCO9fB7dwFA2r3CFuBTei3C 2470b1pGywKUchjAvfclGwZZu7YH75BmbRPGMpBREOM8ZXX2yzfbKS3tCQmKpOLxanm 248kcLXJT6vu8CyTj04dTAHO9cwXraRwd6dy1SrAPYq+6RKnownCGY1N6c+glBaJBiR 249ytcCAwEAAaOByzCByDAdBgNVHQ4EFgQUlDjzZJPlLMkNNtEWIROQLj7g+pQwHwYD 250VR0jBBgwFoAUlDjzZJPlLMkNNtEWIROQLj7g+pQwNwYIKwYBBQUHAQEEKzApMCcG 251CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw 252IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE 253AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBrlWj1WDyd 2543H1Vb/xRWGuFh8Rq/W3T4xWVYRfsQGeCmKbRNrPDbHGfj7h8rei/7YdGBuiGlFCZ 25524ZWXI5Fm4jV403+BhmzVX0lqanMspmtSTELidt5ZYbtwtOpRGjTpNewQBTXuvnT 256sbdXhugGq41s+74FLvxqRI+AvS08JRgu3SiCtwSh192ZNyHGDox0eTb5lRRuEX8+ 257kW6IeZv1iucy0yT1ZGDiSd8U8FtaRw9PqRaJ8kIE0qv6JhKaTvvFXUmlghPicYDK 258l9xCm3JQcg4GUQv0f4FD0jGcXKmxBpAe6/dgS6fixB3NtlPonhET0bIZJdiMS6wx 259YxP1hblZFJKS 260-----END CERTIFICATE----- 261