[Created by: generate_policies_tests.py]
Cast certificate chain with the following policies:
Root: policies={}
Intermediate: policies={}
Leaf: policies={audioOnly}
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 6 (0x6)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2018 GMT
Subject: CN=Leaf
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ce:cf:14:1b:85:8a:fe:37:1a:11:aa:1b:4e:00:
f4:87:22:32:a2:69:45:94:a5:69:c3:06:ea:49:cf:
1c:a3:37:70:e7:99:11:b6:cc:16:fa:ca:e7:a6:24:
9e:1d:fb:29:08:87:3c:df:38:4d:86:c5:56:62:dc:
47:8a:ba:89:93:97:08:3d:37:91:88:41:1c:c4:37:
8f:c0:b5:90:2e:3d:67:8c:ea:49:30:c1:89:8e:7c:
7e:a6:4a:9c:b7:66:6a:f3:fc:f4:00:ec:ca:52:d3:
59:b3:ac:ef:d5:8b:71:1b:d0:4c:35:0c:ff:df:d8:
7d:12:d6:98:78:08:02:49:2f:dc:ce:f2:1d:42:49:
b6:2c:9b:71:8e:c0:b6:61:a2:d7:5b:91:6d:36:1e:
7d:9d:02:6e:b2:07:01:b1:33:13:a1:04:c9:1d:34:
86:6a:2f:9f:37:7b:2e:51:03:3a:44:48:d3:a2:cf:
91:de:62:84:a1:e7:8c:8d:cb:bf:ef:ef:50:81:a1:
0b:19:ac:6b:91:a1:a0:d9:f9:a0:fb:b4:38:fb:99:
84:ce:3f:61:0c:0f:5d:1f:63:3e:25:d2:75:35:af:
af:96:c8:94:a3:de:3f:0a:1d:1f:e0:6f:c8:8d:8a:
d6:f7:71:27:c2:15:ad:8c:d8:89:23:72:61:22:51:
23:05
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
FC:0C:BC:60:61:F0:88:F1:90:76:19:33:F5:69:D3:B9:B3:4A:1B:C4
X509v3 Authority Key Identifier:
keyid:2B:C4:DA:B5:A0:44:1C:31:AA:B3:55:36:E2:8B:DE:4A:47:67:81:40
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.11129.2.5.2
Signature Algorithm: sha256WithRSAEncryption
1f:da:82:97:e6:d1:3e:8a:15:f9:7f:eb:3f:2f:0b:e4:df:34:
fe:ad:97:3f:ed:12:61:20:ac:4d:09:d5:5e:d6:b2:b3:43:d7:
24:76:49:c3:e8:15:e5:6a:7d:a8:e0:ee:06:96:73:42:75:e2:
d7:d3:87:e9:d7:c2:e0:cc:7c:38:81:75:fc:10:62:4f:1e:83:
5c:4c:76:5d:40:8d:cb:1d:d2:ea:11:b9:13:93:08:98:80:ea:
d1:65:3d:e6:68:a7:5e:fe:24:f0:eb:65:0a:65:3e:39:dc:b1:
20:52:5e:2e:c2:7f:29:07:9c:97:dd:12:29:da:44:b5:64:6c:
77:e0:6d:43:3a:d3:bc:19:a2:6e:88:e6:27:4a:66:ba:55:cc:
d7:ab:61:75:f1:80:c1:95:e1:a6:76:1b:7b:7d:b1:fa:14:61:
0e:21:5c:3c:72:ca:c9:4d:66:f9:d4:4d:8e:73:4f:ad:09:c3:
60:c7:c6:09:f6:2a:1b:32:cf:e1:62:bd:45:35:ab:80:66:48:
67:36:e2:94:21:44:b5:1e:6d:b0:99:d8:b7:d3:5a:67:f3:c3:
e4:78:41:64:44:45:cd:72:45:58:c0:fd:56:79:ea:d8:df:72:
64:c4:2e:fe:e5:ee:93:44:3f:34:2f:70:6e:82:24:71:12:68:
a6:fc:22:f1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 12 (0xc)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2018 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:de:a0:23:b3:bd:d5:d1:c0:14:ed:17:0d:7e:1f:
72:17:17:6e:29:31:10:57:f9:37:e7:c8:57:0d:0c:
25:c4:fe:98:90:e1:2d:e8:86:23:27:a0:0e:30:81:
60:c1:2b:ba:74:29:00:58:71:c6:d6:2c:b3:8f:4b:
67:c5:a8:7a:5a:8b:28:5b:4e:3b:1b:c9:4e:44:66:
38:71:ed:37:83:6d:6e:01:0f:a8:a5:42:f8:ea:4f:
7e:15:01:f5:16:70:d4:d4:95:b2:79:ee:4d:5b:02:
18:38:ee:2b:17:6b:47:41:6b:08:50:d4:7d:b8:9f:
5a:01:4f:4b:19:d5:18:70:24:a9:2a:8e:05:a4:af:
53:a0:43:1d:f0:9e:2c:b2:e0:2c:de:48:66:f3:f8:
84:3c:fc:a7:a6:b7:cd:6f:33:43:9e:05:64:34:47:
4d:de:36:17:5b:17:6b:31:80:6f:d0:05:3e:a0:25:
c1:78:36:dc:cb:82:3e:c7:46:a2:31:ba:3c:0b:2a:
cf:bb:c7:54:8a:2c:97:2c:b9:2a:d0:e7:c5:25:38:
8f:ab:06:67:99:8a:a4:b7:09:38:13:92:d5:b0:fe:
65:51:7f:65:01:f9:7b:23:86:87:a5:2b:33:c3:b4:
a1:9a:77:e2:f2:cc:a6:5f:fc:2b:f0:d4:c1:0a:9e:
a6:ff
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
2B:C4:DA:B5:A0:44:1C:31:AA:B3:55:36:E2:8B:DE:4A:47:67:81:40
X509v3 Authority Key Identifier:
keyid:55:BB:79:DB:0A:21:38:5B:B5:81:BD:78:5B:40:BE:D1:83:FD:41:69
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
0a:5e:0d:e7:9f:eb:e9:14:07:d7:94:6e:2e:25:ab:1b:5d:1d:
c8:81:3b:e5:1d:4b:8e:f1:31:05:99:e8:78:c2:d2:e2:24:69:
3d:54:19:68:4f:9e:d6:eb:34:94:5d:f4:46:e4:40:f7:23:d9:
ca:43:d5:30:30:b9:1c:3a:4a:a8:4f:f5:e9:97:6b:13:ce:20:
4b:cb:e6:2c:e5:ea:b5:0f:02:9f:32:55:ef:73:a4:ca:75:e5:
10:04:10:36:b9:00:a1:22:bb:69:01:c3:96:8b:3c:55:f6:75:
93:1b:d2:e6:9d:3c:ae:e2:56:66:08:eb:5f:bb:be:87:73:5f:
b4:e3:27:77:d9:83:e3:b5:5a:b2:20:c6:7e:23:b5:92:38:b9:
3c:16:09:2d:dd:00:01:ec:bc:9b:2d:ba:81:a6:88:63:5e:81:
c2:22:bd:ae:43:38:49:89:53:23:a4:c6:02:ca:13:9a:0d:98:
f7:82:2f:23:2f:4d:4b:c0:a4:36:ed:e2:50:06:2d:98:30:78:
e3:35:60:3a:20:a0:be:9d:f4:5d:de:84:8d:6c:f9:4f:c5:e5:
e7:74:8d:8d:dd:2a:61:4f:91:a4:98:07:c2:b3:18:fd:27:3d:
55:1e:04:89:d7:e6:81:0d:c6:0d:f0:45:c3:b3:b9:f3:69:4d:
6b:3c:0b:05
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 11 (0xb)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2018 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c7:a4:96:f2:24:b8:16:ab:04:c1:cb:e0:f0:94:
36:75:84:9e:d3:64:35:28:f0:7b:76:09:65:78:1a:
0f:cf:8c:9b:ac:fe:e2:e9:b8:67:4e:40:17:ec:4e:
04:69:ce:73:dd:6d:87:06:24:ba:9f:30:1b:e1:57:
5e:ab:13:a3:5b:b4:2b:05:9e:8b:40:f5:a9:db:41:
0d:13:6e:f9:61:50:83:ea:f5:21:6d:54:0e:18:66:
36:a3:5c:48:31:dc:50:b6:c0:78:91:6e:39:11:30:
90:2e:40:46:33:9d:06:08:a4:4a:29:f7:1c:f4:60:
80:f3:a7:42:aa:c6:f2:b2:44:f7:b2:29:65:06:bb:
44:a1:58:86:7b:eb:15:04:b4:14:c7:e6:7d:c4:0a:
1b:d3:25:c7:80:fc:9d:c5:b6:fd:92:c8:9d:ed:b6:
94:5a:90:f5:1a:9d:d3:17:8c:09:bc:f0:d1:16:70:
91:32:d0:b6:73:3e:f3:b2:48:03:65:fd:d4:6f:c4:
f8:6f:73:c5:21:6d:19:6b:c6:ce:b4:6d:3b:3e:a7:
5f:a0:6b:e3:76:97:62:97:b9:ce:51:8e:c2:ab:4a:
48:ea:a1:69:f9:e9:8e:1b:46:ee:44:fd:47:4b:c0:
19:12:74:c7:44:25:97:39:6d:02:f4:41:ec:dc:33:
e4:25
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
55:BB:79:DB:0A:21:38:5B:B5:81:BD:78:5B:40:BE:D1:83:FD:41:69
X509v3 Authority Key Identifier:
keyid:55:BB:79:DB:0A:21:38:5B:B5:81:BD:78:5B:40:BE:D1:83:FD:41:69
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
03:dd:b9:22:de:fd:99:74:25:a7:9d:8d:f4:36:2f:23:1b:8f:
97:d9:c2:28:53:38:3a:78:43:b0:ed:eb:a8:14:f7:39:cc:52:
cd:f8:3d:04:4a:43:9f:c9:35:32:ae:9b:5b:66:9c:54:db:d8:
ed:51:b3:09:33:0f:23:31:4b:2c:0b:04:75:05:e8:a7:e7:cb:
f9:44:55:8f:ae:34:4a:d9:c2:9e:88:aa:29:c7:02:12:f8:69:
71:ac:b9:6f:50:72:c6:11:cf:02:37:03:e3:ec:86:28:61:6d:
91:83:f5:21:42:d3:33:48:a0:29:32:30:0a:4a:c8:15:2b:f7:
c8:f6:6e:e4:f2:d4:46:69:08:a0:3c:33:1f:65:3a:fc:74:0e:
92:90:61:d1:dd:48:93:4b:ac:a5:3a:0b:91:04:c2:0f:84:b2:
40:d5:aa:20:24:98:95:34:54:37:45:9b:69:a3:f4:77:58:ce:
d0:8a:33:e1:2f:17:17:0d:48:c1:44:cd:4b:f3:6e:6c:6e:0f:
42:4a:d7:d2:84:e8:2f:b0:dc:7a:bd:a6:c3:50:27:e5:1a:95:
ec:a6:f6:50:46:29:80:5d:63:b6:8f:1d:f9:74:5e:e7:60:8f:
1a:19:02:c4:ee:0f:eb:4a:1c:aa:75:d7:72:bf:be:ba:62:c9:
06:02:1d:da
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----