Subject: CAcert Code Development list.
List archive
- From: "Kenneth R. van Wyk" <ken AT krvw.com>
- To: Wytze van der Raay <wytze AT cacert.org>
- Cc: "Kenneth R. van Wyk" <ken AT krvw.com>, inopiae AT cacert.org, Michael Tänzer <michael.taenzer AT cacert.org>, "critical-admin AT cacert.org" <critical-admin AT cacert.org>, cacert-devel AT lists.cacert.org, Ulrich Schröter CAcert <ulrich AT cacert.org>, Dirk Astrath <dirk.astrath AT cacert.org>, Daniel Wagner <dwkwaxi AT gmail.com>
- Subject: Re: Patch request: Bug #540
- Date: Mon, 30 Jul 2012 15:25:39 -0400
On Jul 28, 2012, at 4:22 AM, Wytze van der Raay
<wytze AT cacert.org>
wrote:
> Do you still have the working certificate from the test system?
> If so, could you please send us the output from these:
>
> openssl x509 -in old-working-certificate -text -noout
> openssl x509 -in new-nonworking-certificate -text -noout
>
> Even if you don't have the old working certificate anymore, it will
> still be useful to send us the output for the new-nonworking-cert.
Alas, that test cert was long ago discarded. But I do have the two I
generated after the patch was installed. One is signed with the class-3....
Neither of these work on my iPhone or iPad (running standard, off the shelf
iOS 5.1.1).
Attached is the above output for each of my certs. I hope it helps. If I can
do any further testing, just let me know.
Cheers,
Ken
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 790319 (0xc0f2f)
Signature Algorithm: sha1WithRSAEncryption
Issuer: O=Root CA, OU=http://www.cacert.org, CN=CA Cert Signing
Authority/emailAddress=support AT cacert.org
Validity
Not Before: Jul 27 16:29:27 2012 GMT
Not After : Jul 27 16:29:27 2014 GMT
Subject: CN=Kenneth Van
Wyk/emailAddress=ken AT krvw.com/emailAddress=ken AT vanwyk.org
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:c0:52:f1:1f:60:1d:da:68:d4:61:bd:28:39:d9:
12:92:ae:67:22:11:d3:64:ec:ce:ad:72:d8:3e:d6:
7e:38:00:e0:ac:59:41:b9:ec:57:5f:9d:d1:a2:d8:
28:c3:05:0f:33:b3:a4:32:07:b2:e2:f9:a5:f3:b2:
a6:0a:70:32:dd:29:14:1a:1f:f4:1c:df:08:f2:10:
31:c1:c2:3a:d7:a3:32:05:03:6c:2a:cb:33:71:fd:
f9:c7:2e:c6:e6:52:b4:9f:ac:bc:af:fe:19:88:c3:
42:e9:e7:93:73:39:19:c7:e8:90:5f:45:80:0d:00:
c6:08:5d:f8:ac:e9:57:ee:62:bd:11:84:3b:b6:04:
00:4a:5a:09:e8:98:07:eb:9a:36:f4:94:56:e8:57:
77:1d:22:13:7d:48:22:e5:f1:61:4c:ee:e1:8c:e3:
a3:83:68:ce:05:e6:80:28:ac:8a:6e:c9:a1:a5:7d:
6e:2e:e7:d0:e8:a0:a0:13:cc:3e:06:60:32:f6:90:
26:2d:e9:20:d3:ac:08:13:01:6e:13:a7:fa:e3:89:
f1:41:f9:88:02:1b:dd:16:ad:f8:c2:3d:c8:e1:da:
93:3b:a9:ab:b0:41:1f:c8:28:d1:52:a3:02:e2:93:
28:c7:9f:95:48:61:19:67:7e:2f:03:01:68:35:95:
a1:a7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
Netscape Comment:
To get your own certificate for FREE head over to
http://www.CAcert.org
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Key Agreement
X509v3 Extended Key Usage:
E-mail Protection, TLS Web Client Authentication, Microsoft
Encrypted File System, Microsoft Server Gated Crypto, Netscape Server Gated
Crypto
Authority Information Access:
OCSP - URI:http://ocsp.cacert.org
X509v3 CRL Distribution Points:
URI:http://crl.cacert.org/revoke.crl
X509v3 Subject Alternative Name:
email:ken AT krvw.com,
email:ken AT vanwyk.org
Signature Algorithm: sha1WithRSAEncryption
8a:fc:b6:9f:ef:f2:0a:90:66:c0:74:3b:30:e9:26:43:fd:d4:
05:2d:67:31:ce:e5:fc:f9:81:d3:66:a5:54:15:f5:d3:86:33:
d4:2d:51:fa:77:7e:2b:76:a0:01:41:d6:d9:d7:91:df:63:fc:
b8:07:34:f2:18:48:b6:4a:e2:b1:6d:d5:72:7d:61:51:c6:48:
c9:ce:13:df:a0:dc:e6:f1:4c:e3:03:a7:e6:68:31:31:3f:e6:
98:16:ce:4c:ea:86:91:83:3b:f1:7e:ef:35:26:f2:a3:fb:ae:
6b:bd:5e:8b:92:ca:a8:31:82:46:b4:40:0b:3e:38:a7:12:f3:
fe:2a:e6:a9:c8:5a:76:0c:8f:3a:e4:60:cf:c9:58:ae:e8:81:
bc:91:72:97:26:9f:c8:c1:93:1a:ee:29:5a:b9:02:20:be:d2:
8f:e0:6e:b4:13:80:43:26:15:d8:ec:25:c8:6c:d9:bb:10:1a:
52:82:39:c4:10:f8:b0:82:19:18:35:c7:03:f8:5f:34:dc:d9:
7f:2a:40:76:74:ca:af:81:cd:6b:48:6f:e4:3f:be:ea:d3:ab:
f3:a8:21:9a:aa:48:d5:1e:2b:75:d7:1f:1f:b5:56:d1:bd:c3:
21:13:9f:71:a7:7a:6c:54:c2:b3:0a:5c:33:7d:21:5d:f6:f6:
6d:14:cf:bd:bb:09:3d:de:ec:93:5f:4f:e3:25:fe:1e:05:7a:
59:bb:1a:77:db:67:62:7a:ef:60:b7:e8:56:f5:8c:02:b4:65:
ea:29:98:86:42:95:9c:96:72:ba:a5:6e:85:98:91:c4:e0:a2:
67:5c:90:25:a9:76:c4:ee:e3:d2:b6:3b:87:c7:7a:fc:e6:16:
09:9f:29:cf:eb:a8:f4:55:6e:69:04:1b:36:71:6f:55:ca:6a:
fa:74:f9:d2:e2:be:c5:22:d9:7e:55:4f:c8:9b:c9:28:f3:9a:
ac:d9:61:38:36:6e:9c:26:a3:cc:71:a4:4e:0a:70:6e:80:10:
ce:98:c6:e4:65:5b:e9:bd:7b:9e:9c:bc:91:f6:8f:99:d2:a9:
71:ab:54:d2:1e:49:43:be:2f:7c:92:ee:21:2b:b5:e8:9b:45:
53:4b:3d:7c:c4:aa:e3:d4:e8:90:33:f2:c9:3e:de:03:d1:e5:
81:1d:eb:7a:be:7a:fc:48:65:0c:f2:d7:9c:9b:f1:dd:25:8f:
ce:ad:8f:45:a9:15:0b:7e:52:1a:56:84:8a:51:b5:62:f5:18:
f8:29:c1:67:90:e9:08:ee:91:b5:d3:89:f4:09:ca:0f:42:c8:
26:72:52:49:7b:64:53:08:d0:92:6a:ac:2b:76:a7:83:d0:2f:
28:35:6b:33:39:e3:76:44
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 66066 (0x10212)
Signature Algorithm: sha1WithRSAEncryption
Issuer: O=CAcert Inc., OU=http://www.CAcert.org, CN=CAcert Class 3
Root
Validity
Not Before: Jul 27 16:54:51 2012 GMT
Not After : Jul 27 16:54:51 2014 GMT
Subject: CN=Kenneth Van
Wyk/emailAddress=ken AT krvw.com/emailAddress=ken AT vanwyk.org
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (2048 bit)
Modulus (2048 bit):
00:bb:56:10:2f:db:e1:96:29:13:2b:8f:63:47:08:
9f:6c:88:7f:8c:c5:f9:3c:ed:63:36:65:bc:5d:af:
c2:88:16:00:c5:de:0e:8e:dd:4b:fe:a7:be:58:0b:
a3:70:cd:a5:d9:9b:68:4c:57:68:ab:58:d3:6d:4d:
dd:6e:ea:89:a1:52:2a:26:d1:b0:1e:f6:49:7f:5e:
f6:fc:6d:0c:92:83:0e:34:54:2d:20:2d:48:1f:18:
41:74:5a:fb:be:4c:08:2c:af:01:e7:5e:f0:fe:ad:
f9:a2:42:76:ef:67:7a:54:ff:1d:0c:cf:0c:d3:09:
31:c9:34:f4:9d:cc:e2:f9:06:8c:32:ed:d3:a1:3a:
bd:15:16:0e:ff:72:2e:e2:72:0c:70:ad:ff:96:1f:
8f:a0:88:58:99:b0:96:5a:70:e7:05:78:ea:31:e3:
7f:e0:da:78:77:11:39:04:0a:b6:90:fd:00:36:d2:
fd:4a:1c:cc:f6:e7:ed:29:fd:a0:26:89:06:12:90:
3e:0e:2d:b2:38:09:5b:91:ba:f9:f8:4d:5a:81:8e:
9e:02:44:ca:7a:5a:4e:50:e1:a1:7c:9d:c4:df:ea:
5d:cd:57:9c:07:99:39:f9:b8:59:fd:a5:cb:57:b4:
c8:ad:20:6a:2d:2d:82:79:7d:d9:dd:e1:91:7a:62:
ed:69
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
Netscape Comment:
To get your own certificate for FREE head over to
http://www.CAcert.org
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Key Agreement
X509v3 Extended Key Usage:
E-mail Protection, TLS Web Client Authentication, Microsoft
Encrypted File System, Microsoft Server Gated Crypto, Netscape Server Gated
Crypto
Authority Information Access:
OCSP - URI:http://ocsp.cacert.org
X509v3 CRL Distribution Points:
URI:http://crl.cacert.org/class3-revoke.crl
X509v3 Subject Alternative Name:
email:ken AT krvw.com,
email:ken AT vanwyk.org
Signature Algorithm: sha1WithRSAEncryption
86:16:ba:d2:38:b6:a8:31:06:7e:7d:8d:41:3d:ed:8f:0d:90:
2d:eb:be:ba:2c:53:fd:92:0e:61:42:25:f4:ee:d4:44:04:00:
ad:99:ce:17:53:2b:6c:c7:7b:86:3c:d8:f3:02:b7:e9:9e:c0:
9d:74:5c:45:58:21:b2:a6:12:73:b8:9a:c0:8e:d7:1b:92:1b:
94:f4:52:b1:04:63:21:c7:79:d4:7e:08:6f:3b:cb:62:f1:2d:
ff:45:3b:1c:65:31:b3:d1:a1:e9:35:4b:6e:a1:1b:3c:bd:52:
b1:1e:ba:d7:92:0d:a2:a0:d4:9e:ea:18:2a:6c:13:ac:b7:fe:
a6:40:e7:44:9a:e6:7d:63:27:d9:b2:63:dd:a4:95:39:13:16:
48:57:ac:1e:2a:6a:17:a1:42:b5:a9:db:33:76:04:dc:e6:40:
90:3b:f3:c5:e2:c8:4d:e6:0d:03:28:c7:9e:59:d1:2d:8e:a0:
2c:4d:62:86:3c:c5:0f:7f:df:70:2e:ca:c2:df:fc:48:4d:70:
9e:8e:b0:89:1b:6f:94:51:37:ba:d6:65:24:90:48:60:96:d5:
af:33:14:79:73:53:cf:dc:34:ff:86:d4:58:f2:6a:10:cf:74:
2a:73:b4:4d:ca:a9:29:76:80:9d:d1:0c:83:50:ef:90:dc:a7:
42:41:d5:57:bd:95:2e:ed:29:2f:4c:a2:66:b9:e2:7f:c6:f5:
0d:4b:a9:0f:1d:4a:d0:e4:f0:d8:04:60:c4:60:ab:60:c9:d9:
28:07:f8:6d:53:c8:09:8a:34:da:48:67:70:c0:11:94:81:93:
c5:45:c6:fe:8d:2e:7f:d3:a8:02:c4:a2:93:59:d1:61:9f:59:
b9:80:61:29:21:ea:87:f4:1d:d5:f2:6e:0b:12:4f:e1:d0:a6:
eb:f1:6d:39:2d:f0:6c:09:30:7a:64:46:5e:c2:33:12:11:b9:
8f:73:a4:bb:6f:5c:bc:cf:88:b5:6b:87:89:e1:72:31:fe:51:
1c:4e:37:03:8d:42:35:7b:0f:27:11:69:05:82:3c:0f:c9:58:
76:56:64:a4:63:42:eb:7f:d3:87:43:90:4b:3a:f9:84:9f:ba:
44:43:5b:83:9d:76:83:cb:58:11:71:9a:dc:4c:39:94:bf:51:
68:64:74:65:12:47:81:6e:30:93:42:9a:78:7a:1e:b2:e3:51:
e9:e6:e9:b4:45:84:4e:6d:41:15:08:2e:54:0f:b8:ac:60:a6:
53:3d:0f:2e:74:e2:3b:f5:c5:d2:a0:58:2c:91:66:af:ac:9c:
ac:48:94:10:de:37:3a:e1:0d:8b:68:ca:c5:1c:4c:60:8c:ec:
bf:8c:22:b3:28:44:56:80
Attachment:
smime.p7s
Description: S/MIME cryptographic signature
- Re: Patch request: Bug #540, (continued)
- Re: Patch request: Bug #540, David McIlwraith, 07/25/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/25/2012
- Re: Patch request: Bug #540, Wytze van der Raay, 07/25/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/26/2012
- Re: Patch request: Bug #540, Wytze van der Raay, 07/26/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/26/2012
- Re: Patch request: Bug #540, Wytze van der Raay, 07/27/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/27/2012
- Re: Patch request: Bug #540, INOPIAE (Marcus), 07/27/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/27/2012
- Re: Patch request: Bug #540, Wytze van der Raay, 07/28/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/30/2012
- Re: Patch request: Bug #540, David McIlwraith, 07/31/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/30/2012
- Re: Patch request: Bug #540, Wytze van der Raay, 07/28/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/27/2012
- Re: Patch request: Bug #540, INOPIAE (Marcus), 07/27/2012
- Re: Patch request: Bug #540, Kenneth R. van Wyk, 07/27/2012
Archive powered by MHonArc 2.6.16.