1 This is a very basic TBSCertificate. It is valid from the perspective of
2 ParseTbsCertificate(), however its sub-fields are mainly bogus. This
3 TBSCertificate contains no optional fields (no issuerUniqueID, subjectUniqueID,
8 -----BEGIN TBS CERTIFICATE-----
9 MDygAwIBAgIBATADBAEBMAMEAQUwHhcNMTIxMDE4MDMxMjAwWhcNMTMxMDE4MTQ1OTU5WjADBAG
11 -----END TBS CERTIFICATE-----
13 $ openssl asn1parse -i < [TBS CERTIFICATE]
14 0:d=0 hl=2 l= 60 cons: SEQUENCE
15 2:d=1 hl=2 l= 3 cons: cont [ 0 ]
16 4:d=2 hl=2 l= 1 prim: INTEGER :02
17 7:d=1 hl=2 l= 1 prim: INTEGER :01
18 10:d=1 hl=2 l= 3 cons: SEQUENCE
19 12:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:01
20 15:d=1 hl=2 l= 3 cons: SEQUENCE
21 17:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:05
22 20:d=1 hl=2 l= 30 cons: SEQUENCE
23 22:d=2 hl=2 l= 13 prim: UTCTIME :121018031200Z
24 37:d=2 hl=2 l= 13 prim: UTCTIME :131018145959Z
25 52:d=1 hl=2 l= 3 cons: SEQUENCE
26 54:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:83
27 57:d=1 hl=2 l= 3 cons: SEQUENCE
28 59:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:F3
32 -----BEGIN SERIAL NUMBER-----
34 -----END SERIAL NUMBER-----
38 -----BEGIN SIGNATURE ALGORITHM-----
40 -----END SIGNATURE ALGORITHM-----
42 $ openssl asn1parse -i < [SIGNATURE ALGORITHM]
43 0:d=0 hl=2 l= 3 cons: SEQUENCE
44 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:01
48 -----BEGIN ISSUER-----
52 $ openssl asn1parse -i < [ISSUER]
53 0:d=0 hl=2 l= 3 cons: SEQUENCE
54 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:05
58 -----BEGIN VALIDITY NOTBEFORE-----
59 eWVhcj0yMDEyLCBtb250aD0xMCwgZGF5PTE4LCBob3Vycz0zLCBtaW51dGVzPTEyLCBzZWNvbmR
61 -----END VALIDITY NOTBEFORE-----
63 VALIDITY NOTBEFORE: year=2012, month=10, day=18, hours=3, minutes=12, seconds=0
67 -----BEGIN VALIDITY NOTAFTER-----
68 eWVhcj0yMDEzLCBtb250aD0xMCwgZGF5PTE4LCBob3Vycz0xNCwgbWludXRlcz01OSwgc2Vjb25
70 -----END VALIDITY NOTAFTER-----
72 VALIDITY NOTAFTER: year=2013, month=10, day=18, hours=14, minutes=59, seconds=59
76 -----BEGIN SUBJECT-----
80 $ openssl asn1parse -i < [SUBJECT]
81 0:d=0 hl=2 l= 3 cons: SEQUENCE
82 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:83
90 $ openssl asn1parse -i < [SPKI]
91 0:d=0 hl=2 l= 3 cons: SEQUENCE
92 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:F3