mirror of
https://github.com/curl/curl.git
synced 2024-12-15 06:40:09 +08:00
ef07452a5c
The SHA-1 algorithm is deprecated (particularly for security-sensitive applications) in a variety of OS environments. This already affects RHEL-9 and derivatives, which are not willing to use certificates using that algorithm. The fix is to use sha256 instead, which is already used for most of the other certificates in the test suite. Fixes #10135 This gets rid of issues related to sha1 signatures. Manual steps after "make clean-certs" and "make build-certs": - Copy tests/certs/stunnel-sv.pem to tests/stunnel.pem (make clean-certs does not remove the original tests/stunnel.pem) - Copy tests/certs/Server-localhost-sv.pubkey-pinned into --pinnedpubkey options of tests/data/test2041 and tests/data/test2087 Closes #10153
96 lines
5.1 KiB
Plaintext
96 lines
5.1 KiB
Plaintext
Certificate:
|
|
Data:
|
|
Version: 3 (0x2)
|
|
Serial Number: 16717980969522 (0xf3475512a32)
|
|
Signature Algorithm: sha256WithRSAEncryption
|
|
Issuer:
|
|
countryName = NN
|
|
organizationName = Edel Curl Arctic Illudium Research Cloud
|
|
commonName = Northern Nowhere Trust Anchor
|
|
Validity
|
|
Not Before: Dec 23 12:21:36 2022 GMT
|
|
Not After : May 28 12:21:36 2039 GMT
|
|
Subject:
|
|
countryName = NN
|
|
organizationName = Edel Curl Arctic Illudium Research Cloud
|
|
commonName = Northern Nowhere Trust Anchor
|
|
Subject Public Key Info:
|
|
Public Key Algorithm: rsaEncryption
|
|
Public-Key: (2048 bit)
|
|
Modulus:
|
|
00:a1:d8:60:15:d1:5b:09:3b:d1:4e:79:40:0a:03:
|
|
81:07:60:ba:6b:03:f4:87:4e:1e:e9:77:b1:ea:83:
|
|
66:56:c4:6c:19:5e:cf:64:23:44:03:f5:d0:27:e1:
|
|
1d:a5:05:dd:a5:f2:c1:9a:28:e2:31:66:a2:7b:e0:
|
|
3b:bb:f3:b4:06:b4:43:97:7b:80:3c:96:1b:ed:85:
|
|
7c:8b:2e:0f:62:b9:53:69:3d:2b:19:af:16:d3:e2:
|
|
a9:d3:2d:f2:ec:b1:31:76:2d:d9:78:67:91:ce:16:
|
|
52:e3:68:34:f1:bc:f0:5e:99:bf:28:cf:91:88:31:
|
|
a6:48:cc:fb:84:a1:87:85:8b:08:18:eb:39:e9:34:
|
|
ee:1b:3a:a3:bd:2a:77:63:50:c8:88:6b:f1:d3:c4:
|
|
b7:25:db:7f:eb:b9:84:73:a8:86:8a:69:7d:40:5a:
|
|
c3:24:81:10:8d:97:ae:ce:45:eb:5d:fb:14:31:5b:
|
|
a1:c2:d1:aa:2f:44:a0:42:28:38:16:c7:42:1e:dd:
|
|
db:0f:a9:d9:70:25:cc:da:be:e9:8c:8c:84:48:a3:
|
|
ab:af:20:7a:7e:b3:09:a9:05:0d:ce:f8:9b:c2:77:
|
|
e8:82:f8:6a:56:21:db:92:a7:0a:3c:f1:0c:a0:d4:
|
|
9c:8c:c0:62:2b:62:bc:5e:c4:ba:5e:3a:fc:1a:05:
|
|
49:ef
|
|
Exponent: 65537 (0x10001)
|
|
X509v3 extensions:
|
|
X509v3 Basic Constraints: critical
|
|
CA:TRUE
|
|
X509v3 Key Usage: critical
|
|
Certificate Sign, CRL Sign
|
|
X509v3 Subject Key Identifier:
|
|
87:CB:B1:33:2E:C1:67:7E:71:E3:E5:2B:4C:4D:A4:B3:6E:D2:5B:A9
|
|
X509v3 Authority Key Identifier:
|
|
87:CB:B1:33:2E:C1:67:7E:71:E3:E5:2B:4C:4D:A4:B3:6E:D2:5B:A9
|
|
Authority Information Access:
|
|
CA Issuers - URI:http://test.curl.se/ca/EdelCurlRoot.cer
|
|
X509v3 CRL Distribution Points:
|
|
Full Name:
|
|
URI:http://test.curl.se/ca/EdelCurlRoot.crl
|
|
Signature Algorithm: sha256WithRSAEncryption
|
|
Signature Value:
|
|
86:19:bd:3d:12:4f:6b:8c:8e:1b:72:db:8f:9b:67:68:96:f8:
|
|
f4:ad:d9:a0:b5:48:0e:19:f6:34:09:92:a5:b8:ab:70:c6:6b:
|
|
44:be:f7:fd:a4:75:ad:16:c4:ad:54:aa:c4:36:e6:86:87:84:
|
|
0d:d9:1f:ea:b5:95:3a:69:60:02:2f:5c:a2:a3:1d:c9:28:f6:
|
|
78:22:cd:e3:1d:47:37:a0:a0:a4:8a:3b:da:50:a9:12:e0:e4:
|
|
e7:1f:b6:bc:7e:e8:b6:a1:b7:99:9f:98:2c:c1:70:db:32:ea:
|
|
82:45:ff:71:ea:36:34:65:bd:ad:cd:c5:2b:a2:a1:6b:2e:a3:
|
|
30:b2:95:ea:77:a9:17:cf:bf:e4:df:4f:ef:6d:72:d0:a1:95:
|
|
c6:ef:e5:b8:70:0f:d2:82:b3:a7:54:4b:f7:2d:b9:2f:dc:37:
|
|
ff:f7:4d:26:b4:4b:6a:46:a3:f9:2c:ad:58:8c:96:e8:e6:a4:
|
|
aa:d0:c1:2d:35:db:b5:2f:ac:34:40:e3:7f:da:f7:34:f8:a2:
|
|
fd:6f:61:46:69:f0:24:20:32:f3:ad:e2:72:27:1a:58:a3:aa:
|
|
77:4e:fa:06:5e:34:40:d3:50:39:66:29:f6:a6:f5:40:3a:af:
|
|
97:23:19:cf:58:27:c9:8f:c4:b3:58:9e:87:78:2f:a7:24:9e:
|
|
3e:5d:d1:52
|
|
-----BEGIN CERTIFICATE-----
|
|
MIIENDCCAxygAwIBAgIGDzR1USoyMA0GCSqGSIb3DQEBCwUAMGgxCzAJBgNVBAYT
|
|
Ak5OMTEwLwYDVQQKDChFZGVsIEN1cmwgQXJjdGljIElsbHVkaXVtIFJlc2VhcmNo
|
|
IENsb3VkMSYwJAYDVQQDDB1Ob3J0aGVybiBOb3doZXJlIFRydXN0IEFuY2hvcjAe
|
|
Fw0yMjEyMjMxMjIxMzZaFw0zOTA1MjgxMjIxMzZaMGgxCzAJBgNVBAYTAk5OMTEw
|
|
LwYDVQQKDChFZGVsIEN1cmwgQXJjdGljIElsbHVkaXVtIFJlc2VhcmNoIENsb3Vk
|
|
MSYwJAYDVQQDDB1Ob3J0aGVybiBOb3doZXJlIFRydXN0IEFuY2hvcjCCASIwDQYJ
|
|
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAKHYYBXRWwk70U55QAoDgQdgumsD9IdO
|
|
Hul3seqDZlbEbBlez2QjRAP10CfhHaUF3aXywZoo4jFmonvgO7vztAa0Q5d7gDyW
|
|
G+2FfIsuD2K5U2k9KxmvFtPiqdMt8uyxMXYt2Xhnkc4WUuNoNPG88F6ZvyjPkYgx
|
|
pkjM+4Shh4WLCBjrOek07hs6o70qd2NQyIhr8dPEtyXbf+u5hHOohoppfUBawySB
|
|
EI2Xrs5F6137FDFbocLRqi9EoEIoOBbHQh7d2w+p2XAlzNq+6YyMhEijq68gen6z
|
|
CakFDc74m8J36IL4alYh25KnCjzxDKDUnIzAYitivF7Eul46/BoFSe8CAwEAAaOB
|
|
4zCB4DAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQU
|
|
h8uxMy7BZ35x4+UrTE2ks27SW6kwHwYDVR0jBBgwFoAUh8uxMy7BZ35x4+UrTE2k
|
|
s27SW6kwQwYIKwYBBQUHAQEENzA1MDMGCCsGAQUFBzAChidodHRwOi8vdGVzdC5j
|
|
dXJsLnNlL2NhL0VkZWxDdXJsUm9vdC5jZXIwOAYDVR0fBDEwLzAtoCugKYYnaHR0
|
|
cDovL3Rlc3QuY3VybC5zZS9jYS9FZGVsQ3VybFJvb3QuY3JsMA0GCSqGSIb3DQEB
|
|
CwUAA4IBAQCGGb09Ek9rjI4bctuPm2dolvj0rdmgtUgOGfY0CZKluKtwxmtEvvf9
|
|
pHWtFsStVKrENuaGh4QN2R/qtZU6aWACL1yiox3JKPZ4Is3jHUc3oKCkijvaUKkS
|
|
4OTnH7a8fui2obeZn5gswXDbMuqCRf9x6jY0Zb2tzcUroqFrLqMwspXqd6kXz7/k
|
|
30/vbXLQoZXG7+W4cA/SgrOnVEv3Lbkv3Df/900mtEtqRqP5LK1YjJbo5qSq0MEt
|
|
Ndu1L6w0QON/2vc0+KL9b2FGafAkIDLzreJyJxpYo6p3TvoGXjRA01A5Zin2pvVA
|
|
Oq+XIxnPWCfJj8SzWJ6HeC+nJJ4+XdFS
|
|
-----END CERTIFICATE-----
|