1This is the same as rsa-pkcs1-sha1.pem, however the ALGORITHM has been change 2to have SHA256 instead of SHA1. Using this algorithm verification should fail. 3 4 5$ openssl asn1parse -i < [PUBLIC KEY] 6 0:d=0 hl=3 l= 159 cons: SEQUENCE 7 3:d=1 hl=2 l= 13 cons: SEQUENCE 8 5:d=2 hl=2 l= 9 prim: OBJECT :rsaEncryption 9 16:d=2 hl=2 l= 0 prim: NULL 10 18:d=1 hl=3 l= 141 prim: BIT STRING 11-----BEGIN PUBLIC KEY----- 12MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQClbkoOcBAXWJpRh9x+qEHRVvLsDjatUqRN/rH 13mH3rZkdjFEFb/7bFitMDyg6EqiKOU3/Umq3KRy7MHzqv84LHf1c2VCAltWyuLbfXWce9jd8CSHL 14I8Jwpw4lmOb/idGfEFrMLT8Ms18pKA4Thrb2TE7yLh4fINDOjP+yJJvZohNwIDAQAB 15-----END PUBLIC KEY----- 16 17$ openssl asn1parse -i < [ALGORITHM] 18 0:d=0 hl=2 l= 13 cons: SEQUENCE 19 2:d=1 hl=2 l= 9 prim: OBJECT :sha256WithRSAEncryption 20 13:d=1 hl=2 l= 0 prim: NULL 21-----BEGIN ALGORITHM----- 22MA0GCSqGSIb3DQEBCwUA 23-----END ALGORITHM----- 24 25-----BEGIN DATA----- 26zch9oiPXht87ReC7vHITJtHuKvgGzDFUdcxvDZxm4bYjcdRc4jkuGskoRMMQEC8Vag2NUsH0xAu 27jqmUJV4bLdpdXplY7qVj+0LzJhOi1F6PV9RWyO4pB50qoZ2k/kN+wYabobfqu5kRywA5fIJRXKc 28vr538Gznjgj0CY+6QfnWGTwDF+i2DUtghKy0LSnjgIo7w3LYXjMRcPy/fMctC3HClmSLOk0Q9BY 29pXQgHqmJcqydE/Z6o/SI8QlNwKYKL0WvgJUbxMP0uM7k20mduCK7RtzMYt1CgFn0A== 30-----END DATA----- 31 32$ openssl asn1parse -i < [SIGNATURE] 33 0:d=0 hl=3 l= 129 prim: BIT STRING 34-----BEGIN SIGNATURE----- 35A4GBAGvDoGZWhCkwokfjDVhktNgZI2unxollhirX28TiSvKOhrtTHwM1i+X7dHd8YIb4UMrviT8 36Nb8wtDJHsATaTtOoAuAzUmqxOy1+JEa/lOa2kqPOCPR0T5HLRSQVHxlnHYX89JAh9228rcglhZ/ 37wJfKsY6aRY/LY0zc6O41iUxITX 38-----END SIGNATURE----- 39