279a0afffb
GnuTLS has a hardcoded three day limit on OCSP response age regardless of the next update value in the response. To make this work in the test scripts, try to generate a new response when starting the authentication server. The old mechanism of a response without next update value is used as a backup option if openssl is not available or fails to generate the response for some reason. Signed-off-by: Jouni Malinen <j@w1.fi>
54 lines
2.6 KiB
Text
54 lines
2.6 KiB
Text
Certificate:
|
|
Data:
|
|
Version: 3 (0x2)
|
|
Serial Number: 15624081837803162829 (0xd8d3e3a6cbe3cccd)
|
|
Signature Algorithm: sha256WithRSAEncryption
|
|
Issuer: C=FI, O=w1.fi, CN=Root CA
|
|
Validity
|
|
Not Before: Jan 11 18:50:24 2015 GMT
|
|
Not After : Jan 11 18:50:24 2016 GMT
|
|
Subject: C=FI, O=w1.fi, CN=ocsp.w1.fi
|
|
Subject Public Key Info:
|
|
Public Key Algorithm: rsaEncryption
|
|
Public-Key: (1024 bit)
|
|
Modulus:
|
|
00:b2:5e:2f:1d:e7:2c:f6:6c:ab:b0:16:9e:fa:12:
|
|
2f:b2:4c:c8:23:7b:68:08:76:38:83:97:f5:3f:05:
|
|
ac:5d:d9:81:a9:ce:75:92:a1:bc:96:c6:c8:00:ee:
|
|
1e:d7:f0:da:8a:d8:e7:c0:d7:42:c3:25:62:e7:c7:
|
|
60:fa:a8:82:4c:1b:ce:73:9a:ab:8d:b3:fe:3d:b6:
|
|
7f:01:fe:59:64:42:75:a8:04:18:07:2d:22:64:27:
|
|
b9:f1:af:01:b4:ed:bf:a6:ea:91:78:d1:9c:30:f5:
|
|
61:37:ff:f9:1b:f8:16:5f:6b:77:32:f9:d7:e3:9d:
|
|
0c:d5:c3:b9:43:16:f0:3a:c3
|
|
Exponent: 65537 (0x10001)
|
|
X509v3 extensions:
|
|
X509v3 Basic Constraints:
|
|
CA:FALSE
|
|
X509v3 Key Usage:
|
|
Digital Signature, Non Repudiation, Key Encipherment
|
|
X509v3 Extended Key Usage:
|
|
OCSP Signing
|
|
Signature Algorithm: sha256WithRSAEncryption
|
|
41:42:b6:70:4a:70:1f:ad:d9:25:f7:02:94:bd:91:b7:69:ad:
|
|
31:59:c6:2a:4e:5e:4a:ed:5d:c1:24:09:98:94:15:42:86:2c:
|
|
b2:9d:62:7a:e0:ec:60:39:47:93:c9:c7:61:01:b5:2c:00:53:
|
|
86:6e:66:99:ee:b3:57:5d:fb:83:6b:d3:77:26:0c:c7:2d:16:
|
|
ea:84:69:59:b7:a8:de:35:61:0b:7a:f3:62:1e:1a:94:91:c4:
|
|
bd:85:4a:63:10:09:11:88:75:c9:f5:57:84:9a:ef:d1:78:29:
|
|
5e:76:fc:33:76:84:b2:b5:f6:88:cc:fb:f9:cf:9f:b4:88:29:
|
|
3c:9d
|
|
-----BEGIN CERTIFICATE-----
|
|
MIICDjCCAXegAwIBAgIJANjT46bL48zNMA0GCSqGSIb3DQEBCwUAMC8xCzAJBgNV
|
|
BAYTAkZJMQ4wDAYDVQQKDAV3MS5maTEQMA4GA1UEAwwHUm9vdCBDQTAeFw0xNTAx
|
|
MTExODUwMjRaFw0xNjAxMTExODUwMjRaMDIxCzAJBgNVBAYTAkZJMQ4wDAYDVQQK
|
|
DAV3MS5maTETMBEGA1UEAwwKb2NzcC53MS5maTCBnzANBgkqhkiG9w0BAQEFAAOB
|
|
jQAwgYkCgYEAsl4vHecs9myrsBae+hIvskzII3toCHY4g5f1PwWsXdmBqc51kqG8
|
|
lsbIAO4e1/DaitjnwNdCwyVi58dg+qiCTBvOc5qrjbP+PbZ/Af5ZZEJ1qAQYBy0i
|
|
ZCe58a8BtO2/puqReNGcMPVhN//5G/gWX2t3MvnX450M1cO5QxbwOsMCAwEAAaMv
|
|
MC0wCQYDVR0TBAIwADALBgNVHQ8EBAMCBeAwEwYDVR0lBAwwCgYIKwYBBQUHAwkw
|
|
DQYJKoZIhvcNAQELBQADgYEAQUK2cEpwH63ZJfcClL2Rt2mtMVnGKk5eSu1dwSQJ
|
|
mJQVQoYssp1ieuDsYDlHk8nHYQG1LABThm5mme6zV137g2vTdyYMxy0W6oRpWbeo
|
|
3jVhC3rzYh4alJHEvYVKYxAJEYh1yfVXhJrv0XgpXnb8M3aEsrX2iMz7+c+ftIgp
|
|
PJ0=
|
|
-----END CERTIFICATE-----
|