1[Created by: generate-chains.py]
2
3Certificate chain where the target certificate uses a EC key and has the single key usage decipherOnly
4
5Certificate:
6    Data:
7        Version: 3 (0x2)
8        Serial Number:
9            72:41:46:e2:6f:47:ae:e6:ef:ca:22:1e:bc:61:9b:ed:27:e8:61:3f
10        Signature Algorithm: sha256WithRSAEncryption
11        Issuer: CN=Intermediate
12        Validity
13            Not Before: Oct  5 12:00:00 2021 GMT
14            Not After : Oct  5 12:00:00 2022 GMT
15        Subject: CN=Target
16        Subject Public Key Info:
17            Public Key Algorithm: id-ecPublicKey
18                Public-Key: (384 bit)
19                pub:
20                    04:6a:64:c7:4b:c6:a0:87:b5:c2:07:13:ac:b8:0d:
21                    37:95:90:e4:e2:82:95:31:6f:62:e5:1f:b0:59:30:
22                    e9:2b:c6:e0:b4:83:9b:54:9d:61:56:d6:04:10:b7:
23                    f3:b9:5e:31:e6:cf:af:40:0e:aa:7a:2a:d8:1c:ee:
24                    5d:d1:5c:17:64:c7:37:f7:34:3d:42:6c:10:0c:ad:
25                    e3:27:a9:ef:e6:02:48:66:0f:61:92:37:fe:26:53:
26                    2c:9f:79:a7:29:7c:4c
27                ASN1 OID: secp384r1
28                NIST CURVE: P-384
29        X509v3 extensions:
30            X509v3 Subject Key Identifier:
31                DE:7D:41:4C:94:83:61:60:ED:FA:58:3C:92:33:58:E5:79:C2:07:A0
32            X509v3 Authority Key Identifier:
33                keyid:80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:38
34
35            Authority Information Access:
36                CA Issuers - URI:http://url-for-aia/Intermediate.cer
37
38            X509v3 CRL Distribution Points:
39
40                Full Name:
41                  URI:http://url-for-crl/Intermediate.crl
42
43            X509v3 Key Usage: critical
44                Decipher Only
45            X509v3 Extended Key Usage:
46                TLS Web Server Authentication
47    Signature Algorithm: sha256WithRSAEncryption
48         99:27:6a:c2:c1:fa:99:62:9e:7e:cd:a0:95:15:46:60:06:75:
49         26:c8:d2:b1:3f:96:36:a1:bb:e1:20:42:2e:6a:f0:dd:cd:33:
50         1a:31:7e:10:c3:6c:34:c9:22:b8:c5:46:28:6d:32:9f:8c:7c:
51         c8:c5:8f:bc:0b:2a:06:68:ed:9f:36:26:fb:bb:88:17:3f:43:
52         87:aa:16:da:c9:c5:a5:2f:65:2d:cf:23:fd:09:e0:81:4c:b9:
53         a6:25:67:1c:53:74:38:35:9c:f8:64:87:6f:db:99:39:36:b3:
54         38:f2:6e:28:32:c4:2a:f4:c5:3d:3a:41:80:ef:22:a6:2c:ab:
55         1c:eb:f1:d6:e8:a4:19:ad:67:b5:2c:be:23:00:e4:91:50:f2:
56         21:d0:07:ae:c0:5a:cb:e7:09:9f:c5:a3:4e:41:10:6f:ca:4c:
57         f8:5e:23:6e:77:f3:7b:ed:ef:2b:fa:15:07:3d:a6:47:52:b0:
58         0b:c0:5c:24:a4:31:3a:ea:84:e5:f0:f0:2e:70:17:b9:df:7c:
59         e0:cd:b4:a8:19:51:b2:9f:14:c3:92:19:2c:99:b6:b8:1d:bf:
60         7a:25:89:7d:32:6f:ba:bb:ac:5a:6a:64:50:50:76:62:87:48:
61         3b:3c:63:e5:87:fa:cd:d1:f8:3c:a6:9b:e3:5e:f7:c1:4a:bf:
62         38:b1:4f:e8
63-----BEGIN CERTIFICATE-----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80-----END CERTIFICATE-----
81
82Certificate:
83    Data:
84        Version: 3 (0x2)
85        Serial Number:
86            31:2c:98:11:ad:7d:7c:47:ab:8a:21:e3:43:a7:12:a0:c9:a9:32:4f
87        Signature Algorithm: sha256WithRSAEncryption
88        Issuer: CN=Root
89        Validity
90            Not Before: Oct  5 12:00:00 2021 GMT
91            Not After : Oct  5 12:00:00 2022 GMT
92        Subject: CN=Intermediate
93        Subject Public Key Info:
94            Public Key Algorithm: rsaEncryption
95                RSA Public-Key: (2048 bit)
96                Modulus:
97                    00:ad:ea:23:0c:dc:31:55:3d:23:7a:a3:0f:5e:16:
98                    9e:62:44:e4:28:bf:0b:b0:76:a3:5e:71:e7:a9:85:
99                    52:1e:ae:3b:2b:21:0d:95:35:73:c2:c0:a0:78:13:
100                    d3:fc:27:57:8a:98:de:83:e3:8f:a3:13:a5:20:a7:
101                    a9:bf:c8:f5:02:1b:08:1a:2e:a5:04:7a:11:24:a1:
102                    59:11:3d:c0:3b:57:35:62:cd:2a:41:cd:5c:15:35:
103                    ac:c8:66:f8:a9:f2:d4:1c:0c:b4:dc:9d:7b:99:f9:
104                    07:1b:c9:f0:03:6a:6c:71:d8:e6:cb:7a:ec:c7:a7:
105                    b7:36:0b:f0:49:22:37:22:f4:77:f3:1a:a6:57:59:
106                    0b:6c:6a:3b:b8:d1:47:df:48:ac:54:ee:82:1e:39:
107                    14:dc:a6:9c:ab:33:b7:87:4f:3b:70:55:af:db:40:
108                    e5:26:a9:0f:bc:59:8f:61:92:47:0a:34:73:de:fb:
109                    25:fa:f1:bd:a4:03:35:93:5e:57:a3:a3:3f:13:e6:
110                    09:68:c5:51:29:20:53:b8:5e:fa:8a:ce:e8:0a:ef:
111                    9e:07:6e:55:f7:f6:c1:e7:12:9f:22:c1:72:b8:2a:
112                    af:25:34:eb:08:28:36:73:8e:f6:80:70:21:16:8a:
113                    81:2b:69:47:62:c5:ef:7e:dd:80:7c:09:4e:6d:57:
114                    86:4f
115                Exponent: 65537 (0x10001)
116        X509v3 extensions:
117            X509v3 Subject Key Identifier:
118                80:14:1E:04:C6:A0:C4:28:25:30:28:59:BD:40:1A:65:07:05:18:38
119            X509v3 Authority Key Identifier:
120                keyid:71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80
121
122            Authority Information Access:
123                CA Issuers - URI:http://url-for-aia/Root.cer
124
125            X509v3 CRL Distribution Points:
126
127                Full Name:
128                  URI:http://url-for-crl/Root.crl
129
130            X509v3 Key Usage: critical
131                Certificate Sign, CRL Sign
132            X509v3 Basic Constraints: critical
133                CA:TRUE
134    Signature Algorithm: sha256WithRSAEncryption
135         9b:a2:b5:c1:e1:98:7e:0f:1d:2a:0e:eb:b8:65:57:0f:4d:78:
136         85:7e:81:cb:0f:8c:04:5c:1a:40:6b:f1:00:71:61:59:0b:19:
137         3a:f0:97:a3:94:38:55:35:65:9b:b7:0c:a3:a0:99:eb:1d:f7:
138         68:ed:3c:21:90:99:80:69:52:00:71:3d:b1:1d:64:66:62:c3:
139         37:4e:f4:38:1e:c9:14:3f:50:66:2f:b9:f5:11:31:2c:87:30:
140         1e:f1:1b:14:c3:90:05:ba:bc:57:06:39:6a:e9:46:f1:67:6a:
141         a9:9b:16:04:b9:bd:93:bb:df:48:5a:77:9d:03:07:bb:8b:2e:
142         2d:88:4d:aa:de:d3:73:2e:d8:04:e8:25:8b:ea:9b:e0:c5:87:
143         5f:64:56:ac:b4:4e:74:ac:21:ac:ec:6a:a9:54:cd:77:24:2e:
144         bd:56:b6:70:26:a8:81:b6:1a:69:31:4a:53:5e:93:46:f4:28:
145         40:90:6b:65:44:94:3b:61:f8:5f:8c:b7:31:e7:46:a6:79:e0:
146         33:38:69:27:6b:b3:6e:5c:e4:f7:5a:2f:f9:bc:67:57:3e:e3:
147         dd:3a:99:5f:3a:ac:c7:5f:b7:5b:38:4b:ab:e1:1a:12:ec:e1:
148         95:0a:2d:54:a4:99:30:d0:93:78:27:5b:a4:d5:69:5b:c8:c1:
149         ef:ff:84:02
150-----BEGIN CERTIFICATE-----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170-----END CERTIFICATE-----
171
172Certificate:
173    Data:
174        Version: 3 (0x2)
175        Serial Number:
176            31:2c:98:11:ad:7d:7c:47:ab:8a:21:e3:43:a7:12:a0:c9:a9:32:4e
177        Signature Algorithm: sha256WithRSAEncryption
178        Issuer: CN=Root
179        Validity
180            Not Before: Oct  5 12:00:00 2021 GMT
181            Not After : Oct  5 12:00:00 2022 GMT
182        Subject: CN=Root
183        Subject Public Key Info:
184            Public Key Algorithm: rsaEncryption
185                RSA Public-Key: (2048 bit)
186                Modulus:
187                    00:b2:df:0b:0b:a2:8a:9c:9c:68:ad:24:f9:f9:e6:
188                    95:ef:e4:71:1e:00:fb:ec:bf:b1:cb:6e:d6:40:30:
189                    42:7a:38:87:9e:5b:cd:58:3e:b7:31:5c:8d:0d:84:
190                    7a:be:ef:e6:98:ba:4e:c5:ae:2b:2f:66:b2:b2:3f:
191                    e7:c0:a8:8b:75:60:61:2a:67:8a:d2:55:72:83:e2:
192                    ff:de:76:d6:63:58:79:ba:91:c1:80:e1:06:1b:35:
193                    9c:b3:e9:19:f8:c7:21:80:dd:9e:04:18:35:de:df:
194                    00:80:21:09:06:3c:6c:9a:de:10:d1:fd:4d:2f:27:
195                    5e:56:24:44:67:88:48:e4:25:52:cc:c7:17:3f:69:
196                    1f:76:fc:b1:83:45:48:5d:37:da:80:3e:3d:7f:f6:
197                    8d:ec:83:00:d6:2f:c4:41:5d:79:ae:ad:14:4c:24:
198                    b3:5e:1e:fe:ed:e8:39:17:4a:4b:ca:eb:10:5d:6e:
199                    af:38:58:b1:12:a5:69:bd:bd:63:dd:f5:21:71:2c:
200                    36:37:72:51:3b:3a:de:8f:1e:a0:e2:6b:45:da:02:
201                    ad:7e:04:b7:d3:c8:64:34:c6:f4:08:a0:e5:c9:02:
202                    1b:6f:42:22:be:d3:8b:7b:63:6e:39:c4:97:17:c6:
203                    9a:ba:9e:26:9b:e1:65:a6:4d:4a:93:5e:b2:4e:18:
204                    9d:c1
205                Exponent: 65537 (0x10001)
206        X509v3 extensions:
207            X509v3 Subject Key Identifier:
208                71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80
209            X509v3 Authority Key Identifier:
210                keyid:71:50:52:35:92:69:F7:54:B1:8A:0C:C1:93:87:3E:84:E9:BE:5C:80
211
212            Authority Information Access:
213                CA Issuers - URI:http://url-for-aia/Root.cer
214
215            X509v3 CRL Distribution Points:
216
217                Full Name:
218                  URI:http://url-for-crl/Root.crl
219
220            X509v3 Key Usage: critical
221                Certificate Sign, CRL Sign
222            X509v3 Basic Constraints: critical
223                CA:TRUE
224    Signature Algorithm: sha256WithRSAEncryption
225         6f:c2:f5:0d:cc:f7:a8:c4:03:50:ff:33:02:72:38:ac:72:19:
226         da:fe:1e:d0:20:79:44:d9:ce:cf:22:b1:09:78:16:5d:12:12:
227         aa:bd:9b:27:08:6f:18:08:08:7d:d2:06:52:a1:ae:19:35:61:
228         be:27:8f:20:e4:59:d5:f3:4e:56:55:77:28:2b:f8:a4:9c:8d:
229         75:d8:4f:99:92:75:0f:a1:79:c5:47:6b:32:c7:86:a2:ce:17:
230         55:ab:78:b0:ac:b4:15:04:19:0f:55:f3:09:ca:48:84:bf:32:
231         01:58:04:33:75:84:57:8e:67:32:53:a7:09:1b:13:c0:3a:9f:
232         65:2e:e2:82:26:1a:9c:47:c2:4f:bb:b9:c4:d2:b9:b3:cc:86:
233         bc:25:03:3c:6a:66:e2:82:58:03:fb:3e:dd:f5:a3:cc:d5:b9:
234         1f:53:d5:63:6a:2c:a2:36:0a:8a:a8:15:bf:63:50:ad:db:98:
235         e8:40:97:24:2c:80:27:35:e1:53:27:da:26:86:72:67:ea:b7:
236         a1:30:5a:67:3f:ff:2c:3e:a4:7f:8a:6e:ff:e2:41:f2:02:34:
237         8e:12:59:c0:c6:80:3b:78:d9:fd:1a:b8:e1:b5:b7:7f:c8:63:
238         27:30:4d:00:7a:96:f1:4d:6e:a0:e9:da:9f:11:a2:b4:69:2f:
239         8d:d4:9c:1a
240-----BEGIN CERTIFICATE-----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260-----END CERTIFICATE-----
261