1 This is a version 3 TBSCertificate containing all the possible optional fields.
5 -----BEGIN TBS CERTIFICATE-----
6 MEugAwIBAgIBATADBAEBMAMEAQUwHhcNMTIxMDE4MDMxMjAwWhcNMTMxMDE4MTQ1OTU5WjADBAG
7 DMAMEAfOBAgC5ggIAyqMFMAMEAd0=
8 -----END TBS CERTIFICATE-----
10 $ openssl asn1parse -i < [TBS CERTIFICATE]
11 0:d=0 hl=2 l= 75 cons: SEQUENCE
12 2:d=1 hl=2 l= 3 cons: cont [ 0 ]
13 4:d=2 hl=2 l= 1 prim: INTEGER :02
14 7:d=1 hl=2 l= 1 prim: INTEGER :01
15 10:d=1 hl=2 l= 3 cons: SEQUENCE
16 12:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:01
17 15:d=1 hl=2 l= 3 cons: SEQUENCE
18 17:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:05
19 20:d=1 hl=2 l= 30 cons: SEQUENCE
20 22:d=2 hl=2 l= 13 prim: UTCTIME :121018031200Z
21 37:d=2 hl=2 l= 13 prim: UTCTIME :131018145959Z
22 52:d=1 hl=2 l= 3 cons: SEQUENCE
23 54:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:83
24 57:d=1 hl=2 l= 3 cons: SEQUENCE
25 59:d=2 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:F3
26 62:d=1 hl=2 l= 2 prim: cont [ 1 ]
27 66:d=1 hl=2 l= 2 prim: cont [ 2 ]
28 70:d=1 hl=2 l= 5 cons: cont [ 3 ]
29 72:d=2 hl=2 l= 3 cons: SEQUENCE
30 74:d=3 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:DD
34 -----BEGIN SERIAL NUMBER-----
36 -----END SERIAL NUMBER-----
40 -----BEGIN SIGNATURE ALGORITHM-----
42 -----END SIGNATURE ALGORITHM-----
44 $ openssl asn1parse -i < [SIGNATURE ALGORITHM]
45 0:d=0 hl=2 l= 3 cons: SEQUENCE
46 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:01
50 -----BEGIN ISSUER-----
54 $ openssl asn1parse -i < [ISSUER]
55 0:d=0 hl=2 l= 3 cons: SEQUENCE
56 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:05
60 -----BEGIN VALIDITY NOTBEFORE-----
61 eWVhcj0yMDEyLCBtb250aD0xMCwgZGF5PTE4LCBob3Vycz0zLCBtaW51dGVzPTEyLCBzZWNvbmR
63 -----END VALIDITY NOTBEFORE-----
65 VALIDITY NOTBEFORE: year=2012, month=10, day=18, hours=3, minutes=12, seconds=0
69 -----BEGIN VALIDITY NOTAFTER-----
70 eWVhcj0yMDEzLCBtb250aD0xMCwgZGF5PTE4LCBob3Vycz0xNCwgbWludXRlcz01OSwgc2Vjb25
72 -----END VALIDITY NOTAFTER-----
74 VALIDITY NOTAFTER: year=2013, month=10, day=18, hours=14, minutes=59, seconds=59
78 -----BEGIN SUBJECT-----
82 $ openssl asn1parse -i < [SUBJECT]
83 0:d=0 hl=2 l= 3 cons: SEQUENCE
84 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:83
92 $ openssl asn1parse -i < [SPKI]
93 0:d=0 hl=2 l= 3 cons: SEQUENCE
94 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:F3
98 -----BEGIN ISSUER UNIQUE ID-----
100 -----END ISSUER UNIQUE ID-----
104 -----BEGIN SUBJECT UNIQUE ID-----
106 -----END SUBJECT UNIQUE ID-----
110 -----BEGIN EXTENSIONS-----
112 -----END EXTENSIONS-----
114 $ openssl asn1parse -i < [EXTENSIONS]
115 0:d=0 hl=2 l= 3 cons: SEQUENCE
116 2:d=1 hl=2 l= 1 prim: OCTET STRING [HEX DUMP]:DD