chromium/net/data/ov_name_constraints/nc-int-permit-dns.pem

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            16:8a:5f:b1:01:c8:f4:45:bd:aa:8c:4e:f9:0c:db:e6:68:45:46:7c
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: CN=Root
        Validity
            Not Before: Oct  5 12:00:00 2021 GMT
            Not After : Oct  5 12:00:00 2022 GMT
        Subject: CN=NC5
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:d5:ac:80:14:b9:d2:78:ad:43:c8:51:69:3e:98:
                    7f:bd:a8:57:a3:65:28:19:6d:44:e5:6a:5d:f7:c2:
                    31:ed:4e:66:a9:f1:d2:9d:36:b6:b9:98:3f:d8:54:
                    d2:e9:77:3a:fb:9f:d5:c9:f9:c9:df:5e:b7:da:34:
                    42:f6:cb:e3:66:e0:b7:5a:82:9b:77:20:0f:b1:17:
                    1e:2a:70:62:d2:67:9b:a0:54:f2:1b:a4:9f:06:b7:
                    bb:af:5a:6f:55:b1:7e:f8:20:cb:ed:e4:55:d8:18:
                    cb:4f:0e:c3:c4:5d:13:fc:fd:d7:b1:1c:c5:58:81:
                    cf:e9:56:78:67:78:aa:fe:06:29:9e:34:3e:4b:fe:
                    7e:ec:22:16:15:d6:2b:c3:6e:17:23:42:1b:28:2e:
                    21:13:31:8b:8a:33:23:a2:67:f6:23:bc:f2:68:9b:
                    71:92:92:7f:23:09:53:96:67:3c:fe:c2:81:88:9f:
                    00:55:93:4d:b3:e7:02:01:13:48:4b:34:12:45:6e:
                    48:6a:88:21:33:ff:5a:03:49:56:a2:69:64:97:a4:
                    53:0e:90:73:84:c6:b8:28:b0:5b:c0:67:85:fd:9a:
                    25:f2:cf:0e:79:24:78:20:80:f0:2c:ae:46:8e:c5:
                    cf:29:be:7f:f5:7d:73:6d:aa:0b:10:59:4f:d6:46:
                    f1:bf
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                9D:44:AA:2B:9B:4C:66:4C:20:C5:32:B2:EA:08:13:13:69:17:49:B1
            X509v3 Authority Key Identifier: 
                keyid:FF:8B:FC:A5:69:36:2F:62:3B:D4:1B:ED:58:2F:E9:77:3D:29:81:83

            Authority Information Access: 
                CA Issuers - URI:http://url-for-aia/Root.cer

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://url-for-crl/Root.crl

            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Name Constraints: critical
                Permitted:
                  DNS:test.invalid

    Signature Algorithm: sha256WithRSAEncryption
         2e:0e:86:fd:61:9f:0e:e5:7e:84:45:21:c4:6b:eb:f8:39:9c:
         48:aa:a2:bd:d9:90:7f:3b:68:c7:cd:e6:f1:c1:a1:f1:e8:a3:
         76:d4:0c:7f:84:66:1f:c9:5c:40:a6:d9:e8:49:2b:17:bc:ec:
         ef:7a:b0:b5:26:33:5e:8b:4e:ef:da:05:57:52:21:76:53:cd:
         18:63:30:95:34:9b:c3:80:05:71:55:6a:45:dc:81:d7:b1:a0:
         b8:21:e1:e9:43:e2:72:f2:7f:8e:8d:53:07:ec:ee:5f:0d:10:
         02:73:93:c6:67:a7:1b:72:91:5a:19:a4:4b:26:f0:72:36:c4:
         3c:b9:b2:13:f2:04:4a:fc:c5:88:9b:2c:86:70:dd:f3:04:74:
         dc:b0:b3:83:83:c0:83:94:c1:11:56:e6:2c:c4:59:0f:58:4c:
         e0:be:d5:88:db:e3:e4:61:32:a1:46:52:68:b0:3a:1b:db:1e:
         ff:be:6f:9b:0e:c9:c5:b2:9a:b1:34:62:f8:6a:1e:53:56:ea:
         4d:a2:ad:56:5f:30:cb:f1:a4:e7:84:3b:51:3e:2b:8b:5c:cc:
         66:e6:aa:32:d8:40:b9:24:3a:89:91:3a:c5:0e:61:d8:b3:80:
         f9:bc:3c:39:b3:22:08:fa:f4:2b:62:3d:e8:1e:1b:b3:83:6d:
         6d:ef:e9:58
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----