Skip to content

Instantly share code, notes, and snippets.

@rickmark
Created October 15, 2019 23:55
Show Gist options
  • Save rickmark/c6d260e9ffa803a67aa4bdc3cc5c0b80 to your computer and use it in GitHub Desktop.
Save rickmark/c6d260e9ffa803a67aa4bdc3cc5c0b80 to your computer and use it in GitHub Desktop.
DigiCert Mis-signed
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
0c:79:a9:44:b0:8c:11:95:20:92:61:5f:e2:6b:1d:83
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
Validity
Not Before: Oct 22 12:00:00 2013 GMT
Not After : Oct 22 12:00:00 2028 GMT
Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 Extended Validation Server CA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d7:53:a4:04:51:f8:99:a6:16:48:4b:67:27:aa:
93:49:d0:39:ed:0c:b0:b0:00:87:f1:67:28:86:85:
8c:8e:63:da:bc:b1:40:38:e2:d3:f5:ec:a5:05:18:
b8:3d:3e:c5:99:17:32:ec:18:8c:fa:f1:0c:a6:64:
21:85:cb:07:10:34:b0:52:88:2b:1f:68:9b:d2:b1:
8f:12:b0:b3:d2:e7:88:1f:1f:ef:38:77:54:53:5f:
80:79:3f:2e:1a:aa:a8:1e:4b:2b:0d:ab:b7:63:b9:
35:b7:7d:14:bc:59:4b:df:51:4a:d2:a1:e2:0c:e2:
90:82:87:6a:ae:ea:d7:64:d6:98:55:e8:fd:af:1a:
50:6c:54:bc:11:f2:fd:4a:f2:9d:bb:7f:0e:f4:d5:
be:8e:16:89:12:55:d8:c0:71:34:ee:f6:dc:2d:ec:
c4:87:25:86:8d:d8:21:e4:b0:4d:0c:89:dc:39:26:
17:dd:f6:d7:94:85:d8:04:21:70:9d:6f:6f:ff:5c:
ba:19:e1:45:cb:56:57:28:7e:1c:0d:41:57:aa:b7:
b8:27:bb:b1:e4:fa:2a:ef:21:23:75:1a:ad:2d:9b:
86:35:8c:9c:77:b5:73:ad:d8:94:2d:e4:f3:0c:9d:
ee:c1:4e:62:7e:17:c0:71:9e:2c:de:f1:f9:10:28:
19:33
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 Key Usage: critical
Digital Signature, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Authority Information Access:
OCSP - URI:http://ocsp.digicert.com
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl4.digicert.com/DigiCertHighAssuranceEVRootCA.crl
X509v3 Certificate Policies:
Policy: X509v3 Any Policy
CPS: https://www.digicert.com/CPS
X509v3 Subject Key Identifier:
3D:D3:50:A5:D6:A0:AD:EE:F3:4A:60:0A:65:D3:21:D4:F8:F8:D6:0F
X509v3 Authority Key Identifier:
keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3
Signature Algorithm: sha256WithRSAEncryption
9d:b6:d0:90:86:e1:86:02:ed:c5:a0:f0:34:1c:74:c1:8d:76:
cc:86:0a:a8:f0:4a:8a:42:d6:3f:c8:a9:4d:ad:7c:08:ad:e6:
b6:50:b8:a2:1a:4d:88:07:b1:29:21:dc:e7:da:c6:3c:21:e0:
e3:11:49:70:ac:7a:1d:01:a4:ca:11:3a:57:ab:7d:57:2a:40:
74:fd:d3:1d:85:18:50:df:57:47:75:a1:7d:55:20:2e:47:37:
50:72:8c:7f:82:1b:d2:62:8f:2d:03:5a:da:c3:c8:a1:ce:2c:
52:a2:00:63:eb:73:ba:71:c8:49:27:23:97:64:85:9e:38:0e:
ad:63:68:3c:ba:52:81:58:79:a3:2c:0c:df:de:6d:eb:31:f2:
ba:a0:7c:6c:f1:2c:d4:e1:bd:77:84:37:03:ce:32:b5:c8:9a:
81:1a:4a:92:4e:3b:46:9a:85:fe:83:a2:f9:9e:8c:a3:cc:0d:
5e:b3:3d:cf:04:78:8f:14:14:7b:32:9c:c7:00:a6:5c:c4:b5:
a1:55:8d:5a:56:68:a4:22:70:aa:3c:81:71:d9:9d:a8:45:3b:
f4:e5:f6:a2:51:dd:c7:7b:62:e8:6f:0c:74:eb:b8:da:f8:bf:
87:0d:79:50:91:90:9b:18:3b:91:59:27:f1:35:28:13:ab:26:
7e:d5:f7:7a
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
07:35:f2:63:a6:3d:be:e3:1c:13:45:c2:fe:12:6c:1a
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 Extended Validation Server CA
Validity
Not Before: Feb 14 00:00:00 2019 GMT
Not After : Feb 22 12:00:00 2020 GMT
Subject: businessCategory=Private Organization/jurisdictionCountryName=US/jurisdictionStateOrProvinceName=California/serialNumber=C0806592, C=US, ST=California, L=Cupertino, O=Apple Inc., OU=ISG for Akamai, CN=swdist.apple.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:91:68:5c:62:d1:a7:26:e8:58:0e:77:2e:89:b9:
3c:b0:95:cf:7a:47:2b:fb:ae:0b:b9:96:01:92:17:
bd:fd:38:52:46:f5:fd:54:ca:b1:51:5a:25:92:c4:
a2:08:9a:d4:8f:a0:ab:42:fd:53:e8:74:93:5b:79:
15:e5:dd:14:f8:6c:f1:4b:ce:fd:1e:b5:25:aa:b0:
c5:0c:2d:08:26:8c:6c:8a:1c:f1:7f:00:8a:0a:e4:
46:81:8e:a2:d0:93:6a:38:f7:78:2b:9a:5c:7c:60:
fb:b1:75:f5:cf:67:1d:2d:41:fe:cc:0e:f1:47:8d:
70:ae:9a:06:41:38:b5:04:75:0c:bb:35:b4:2f:a6:
4f:11:6b:06:dd:50:c4:64:f8:33:2a:21:6c:54:3f:
a5:a7:3c:7d:e8:6f:41:43:6f:de:96:ec:99:23:7a:
d3:ae:db:56:b7:a9:38:74:3e:ae:65:f6:2d:04:d5:
1a:39:d3:09:39:85:a3:0e:2e:6c:4b:46:64:97:84:
a7:13:3f:1b:8b:46:14:92:f5:bc:6c:23:60:88:22:
2c:0e:5f:be:c7:e6:9d:f2:47:bd:fc:3e:6b:5a:ac:
9e:23:ed:7f:c5:e2:7d:ea:0c:c3:74:1d:25:8c:6f:
ed:d8:ae:cb:e3:c8:76:ec:05:af:af:99:45:31:38:
9d:5f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
keyid:3D:D3:50:A5:D6:A0:AD:EE:F3:4A:60:0A:65:D3:21:D4:F8:F8:D6:0F
X509v3 Subject Key Identifier:
93:C8:32:F9:B9:AA:D1:07:EF:D7:E0:11:F9:EF:F4:99:19:D4:4F:AF
X509v3 Subject Alternative Name:
DNS:swcdn.apple.com, DNS:swdist.apple.com, DNS:swscan.apple.com, DNS:swcatalog.apple.com
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl3.digicert.com/sha2-ev-server-g2.crl
Full Name:
URI:http://crl4.digicert.com/sha2-ev-server-g2.crl
X509v3 Certificate Policies:
Policy: 2.16.840.1.114412.2.1
CPS: https://www.digicert.com/CPS
Policy: 2.23.140.1.1
Authority Information Access:
OCSP - URI:http://ocsp.digicert.com
CA Issuers - URI:http://cacerts.digicert.com/DigiCertSHA2ExtendedValidationServerCA.crt
X509v3 Basic Constraints:
CA:FALSE
1.3.6.1.4.1.11129.2.4.2:
......u..K..u.`..Bi....f..~_.r....{.z......h..w
.....F0D. w...v.....F..-......c)...Z.s.2@.. ........w...
.....k...3.g....!..v.V.../.......D.>.Fv....\....U.......h..wq.....G0E. fW.P..{.*...{.O_"(k.&..x;.."@.^7.!..:.t`gE..A....eY..>.bV..{.Q."M..
Signature Algorithm: sha256WithRSAEncryption
52:b9:c2:5f:5e:57:39:c4:c9:a6:49:52:05:02:54:03:19:d5:
80:10:6e:50:85:a5:86:d3:de:da:45:e9:d6:e3:11:26:cf:17:
6d:56:0c:73:61:70:60:3a:f5:34:2c:04:f0:52:d6:ed:b4:48:
79:6f:9d:6f:77:18:7c:30:61:37:2b:5a:91:0b:f4:5a:6f:5e:
12:37:65:fb:4a:3e:f2:e9:cf:78:8f:6e:75:09:29:f2:c2:8f:
70:2c:6b:1d:a2:5e:95:c6:e3:a5:d8:35:16:ff:9d:4d:25:e6:
e2:6a:f2:1a:d0:84:ad:05:c4:9b:43:5b:2a:b2:6a:19:eb:d7:
02:8e:91:71:cc:ec:02:78:01:19:e6:73:bb:88:81:de:b5:ad:
d4:cb:8c:f0:f2:30:f1:98:80:d5:2a:e6:b4:d1:2a:46:13:7f:
a1:5c:01:30:4f:2c:79:85:b1:d1:05:a1:8b:7d:a6:b9:7d:25:
1d:15:2a:d6:09:15:88:99:e2:d9:6a:e8:13:99:9f:78:ce:bc:
61:02:93:d8:90:ee:7c:e9:ce:4e:c6:ff:2f:7a:59:f4:37:1b:
28:53:65:17:e0:b4:e2:ed:ea:00:fb:fb:b6:c7:9a:4a:f5:e7:
b9:e9:51:76:55:3e:4e:55:37:ae:33:5b:1b:a1:a3:ff:68:53:
91:da:0a:db
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment