1 This certificate comes from the CT database. The encoding of validity fails to be parsed using the strict rules.
5 -----BEGIN TBS CERTIFICATE-----
6 MIIE/KADAgECAgMoIdUwDQYJKoZIhvcNAQEFBQAwgdwxCzAJBgNVBAYTAlVTMRAwDgYDVQQIEwd
7 Bcml6b25hMRMwEQYDVQQHEwpTY290dHNkYWxlMSUwIwYDVQQKExxTdGFyZmllbGQgVGVjaG5vbG
8 9naWVzLCBJbmMuMTkwNwYDVQQLEzBodHRwOi8vY2VydGlmaWNhdGVzLnN0YXJmaWVsZHRlY2guY
9 29tL3JlcG9zaXRvcnkxMTAvBgNVBAMTKFN0YXJmaWVsZCBTZWN1cmUgQ2VydGlmaWNhdGlvbiBB
10 dXRob3JpdHkxETAPBgNVBAUTCDEwNjg4NDM1MBwXCzE0MDEwNzAwMDBaFw0xNjA0MDEwNzAwMDB
11 aMIHrMRMwEQYLKwYBBAGCNzwCAQMTAlVTMRgwFgYLKwYBBAGCNzwCAQITB0FyaXpvbmExHTAbBg
12 NVBA8TFFByaXZhdGUgT3JnYW5pemF0aW9uMRQwEgYDVQQFEwtSLTE3MjQ3NDEtNjELMAkGA1UEB
13 hMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxJDAiBgNVBAoTG1N0
14 YXJmaWVsZCBUZWNobm9sb2dpZXMsIExMQzErMCkGA1UEAxMidmFsaWQuc2ZpLmNhdGVzdC5zdGF
15 yZmllbGR0ZWNoLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK3UsdA7Nr22Qr
16 HAYv7/IqL8V7kczSyO9wziJzVdWu+l7Brg//TgjMZKMgY7cJdpICvFAxLOxO3Z1w721InVmTxz0
17 1lczx5WrH3aJMwR/05By5tanNaas9zdMAWFtWd8SYKm2xcSC3FsAhue2s14OT+EE92XgNgVhF2b
18 dlOTgkwh/+q4Nl7k62LncnRSzFZdJKiorI811vrvVD45NB9IOPuRUXj5GLcUh4BXXp3ZSekFbVu
19 A2oDnIhNGyQcThtf3wcM0dRMeKgemAD59d96NaQYH/QVA3gdtlzKxgeF/UvlxYG3P3DknTRiaMz
20 l/Na9NzdRQX2i7ubskThqoRs05Zv0CAwEAAaOCAc4wggHKMAwGA1UdEwEB/wQCMAAwDgYDVR0PA
21 QH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAtBgNVHREEJjAkgiJ2YWxp
22 ZC5zZmkuY2F0ZXN0LnN0YXJmaWVsZHRlY2guY29tMB0GA1UdDgQWBBRw75ASplwemE9b2zPDD23
23 L7UAaZDAfBgNVHSMEGDAWgBRJS1In0Ru88qEhamJ7UUJ6itfVVjA4BgNVHR8EMTAvMC2gK6Aphi
24 dodHRwOi8vY3JsLnN0YXJmaWVsZHRlY2guY29tL3NmczMtMC5jcmwwgY0GCCsGAQUFBwEBBIGAM
25 H4wKgYIKwYBBQUHMAGGHmh0dHA6Ly9vY3NwLnN0YXJmaWVsZHRlY2guY29tLzBQBggrBgEFBQcw
26 AoZEaHR0cDovL2NlcnRpZmljYXRlcy5zdGFyZmllbGR0ZWNoLmNvbS9yZXBvc2l0b3J5L3NmX2l
27 udGVybWVkaWF0ZS5jcnQwUgYDVR0gBEswSTBHBgtghkgBhv1uAQcXAzA4MDYGCCsGAQUFBwIBFi
28 podHRwOi8vY2VydHMuc3RhcmZpZWxkdGVjaC5jb20vcmVwb3NpdG9yeS8=
29 -----END TBS CERTIFICATE-----
31 $ openssl asn1parse -i < [TBS CERTIFICATE]
32 0:d=0 hl=4 l=1276 cons: SEQUENCE
33 4:d=1 hl=2 l= 3 cons: cont [ 0 ]
34 6:d=2 hl=2 l= 1 prim: INTEGER :02
35 9:d=1 hl=2 l= 3 prim: INTEGER :2821D5
36 14:d=1 hl=2 l= 13 cons: SEQUENCE
37 16:d=2 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption
38 27:d=2 hl=2 l= 0 prim: NULL
39 29:d=1 hl=3 l= 220 cons: SEQUENCE
40 32:d=2 hl=2 l= 11 cons: SET
41 34:d=3 hl=2 l= 9 cons: SEQUENCE
42 36:d=4 hl=2 l= 3 prim: OBJECT :countryName
43 41:d=4 hl=2 l= 2 prim: PRINTABLESTRING :US
44 45:d=2 hl=2 l= 16 cons: SET
45 47:d=3 hl=2 l= 14 cons: SEQUENCE
46 49:d=4 hl=2 l= 3 prim: OBJECT :stateOrProvinceName
47 54:d=4 hl=2 l= 7 prim: PRINTABLESTRING :Arizona
48 63:d=2 hl=2 l= 19 cons: SET
49 65:d=3 hl=2 l= 17 cons: SEQUENCE
50 67:d=4 hl=2 l= 3 prim: OBJECT :localityName
51 72:d=4 hl=2 l= 10 prim: PRINTABLESTRING :Scottsdale
52 84:d=2 hl=2 l= 37 cons: SET
53 86:d=3 hl=2 l= 35 cons: SEQUENCE
54 88:d=4 hl=2 l= 3 prim: OBJECT :organizationName
55 93:d=4 hl=2 l= 28 prim: PRINTABLESTRING :Starfield Technologies, Inc.
56 123:d=2 hl=2 l= 57 cons: SET
57 125:d=3 hl=2 l= 55 cons: SEQUENCE
58 127:d=4 hl=2 l= 3 prim: OBJECT :organizationalUnitName
59 132:d=4 hl=2 l= 48 prim: PRINTABLESTRING :http://certificates.starfieldtech.com/repository
60 182:d=2 hl=2 l= 49 cons: SET
61 184:d=3 hl=2 l= 47 cons: SEQUENCE
62 186:d=4 hl=2 l= 3 prim: OBJECT :commonName
63 191:d=4 hl=2 l= 40 prim: PRINTABLESTRING :Starfield Secure Certification Authority
64 233:d=2 hl=2 l= 17 cons: SET
65 235:d=3 hl=2 l= 15 cons: SEQUENCE
66 237:d=4 hl=2 l= 3 prim: OBJECT :serialNumber
67 242:d=4 hl=2 l= 8 prim: PRINTABLESTRING :10688435
68 252:d=1 hl=2 l= 28 cons: SEQUENCE
69 254:d=2 hl=2 l= 11 prim: UTCTIME :1401070000Z
70 267:d=2 hl=2 l= 13 prim: UTCTIME :160401070000Z
71 282:d=1 hl=3 l= 235 cons: SEQUENCE
72 285:d=2 hl=2 l= 19 cons: SET
73 287:d=3 hl=2 l= 17 cons: SEQUENCE
74 289:d=4 hl=2 l= 11 prim: OBJECT :1.3.6.1.4.1.311.60.2.1.3
75 302:d=4 hl=2 l= 2 prim: PRINTABLESTRING :US
76 306:d=2 hl=2 l= 24 cons: SET
77 308:d=3 hl=2 l= 22 cons: SEQUENCE
78 310:d=4 hl=2 l= 11 prim: OBJECT :1.3.6.1.4.1.311.60.2.1.2
79 323:d=4 hl=2 l= 7 prim: PRINTABLESTRING :Arizona
80 332:d=2 hl=2 l= 29 cons: SET
81 334:d=3 hl=2 l= 27 cons: SEQUENCE
82 336:d=4 hl=2 l= 3 prim: OBJECT :businessCategory
83 341:d=4 hl=2 l= 20 prim: PRINTABLESTRING :Private Organization
84 363:d=2 hl=2 l= 20 cons: SET
85 365:d=3 hl=2 l= 18 cons: SEQUENCE
86 367:d=4 hl=2 l= 3 prim: OBJECT :serialNumber
87 372:d=4 hl=2 l= 11 prim: PRINTABLESTRING :R-1724741-6
88 385:d=2 hl=2 l= 11 cons: SET
89 387:d=3 hl=2 l= 9 cons: SEQUENCE
90 389:d=4 hl=2 l= 3 prim: OBJECT :countryName
91 394:d=4 hl=2 l= 2 prim: PRINTABLESTRING :US
92 398:d=2 hl=2 l= 16 cons: SET
93 400:d=3 hl=2 l= 14 cons: SEQUENCE
94 402:d=4 hl=2 l= 3 prim: OBJECT :stateOrProvinceName
95 407:d=4 hl=2 l= 7 prim: PRINTABLESTRING :Arizona
96 416:d=2 hl=2 l= 19 cons: SET
97 418:d=3 hl=2 l= 17 cons: SEQUENCE
98 420:d=4 hl=2 l= 3 prim: OBJECT :localityName
99 425:d=4 hl=2 l= 10 prim: PRINTABLESTRING :Scottsdale
100 437:d=2 hl=2 l= 36 cons: SET
101 439:d=3 hl=2 l= 34 cons: SEQUENCE
102 441:d=4 hl=2 l= 3 prim: OBJECT :organizationName
103 446:d=4 hl=2 l= 27 prim: PRINTABLESTRING :Starfield Technologies, LLC
104 475:d=2 hl=2 l= 43 cons: SET
105 477:d=3 hl=2 l= 41 cons: SEQUENCE
106 479:d=4 hl=2 l= 3 prim: OBJECT :commonName
107 484:d=4 hl=2 l= 34 prim: PRINTABLESTRING :valid.sfi.catest.starfieldtech.com
108 520:d=1 hl=4 l= 290 cons: SEQUENCE
109 524:d=2 hl=2 l= 13 cons: SEQUENCE
110 526:d=3 hl=2 l= 9 prim: OBJECT :rsaEncryption
111 537:d=3 hl=2 l= 0 prim: NULL
112 539:d=2 hl=4 l= 271 prim: BIT STRING
113 814:d=1 hl=4 l= 462 cons: cont [ 3 ]
114 818:d=2 hl=4 l= 458 cons: SEQUENCE
115 822:d=3 hl=2 l= 12 cons: SEQUENCE
116 824:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Basic Constraints
117 829:d=4 hl=2 l= 1 prim: BOOLEAN :255
118 832:d=4 hl=2 l= 2 prim: OCTET STRING [HEX DUMP]:3000
119 836:d=3 hl=2 l= 14 cons: SEQUENCE
120 838:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Key Usage
121 843:d=4 hl=2 l= 1 prim: BOOLEAN :255
122 846:d=4 hl=2 l= 4 prim: OCTET STRING [HEX DUMP]:030205A0
123 852:d=3 hl=2 l= 29 cons: SEQUENCE
124 854:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Extended Key Usage
125 859:d=4 hl=2 l= 22 prim: OCTET STRING [HEX DUMP]:301406082B0601050507030106082B06010505070302
126 883:d=3 hl=2 l= 45 cons: SEQUENCE
127 885:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Subject Alternative Name
128 890:d=4 hl=2 l= 38 prim: OCTET STRING [HEX DUMP]:3024822276616C69642E7366692E6361746573742E737461726669656C64746563682E636F6D
129 930:d=3 hl=2 l= 29 cons: SEQUENCE
130 932:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Subject Key Identifier
131 937:d=4 hl=2 l= 22 prim: OCTET STRING [HEX DUMP]:041470EF9012A65C1E984F5BDB33C30F6DCBED401A64
132 961:d=3 hl=2 l= 31 cons: SEQUENCE
133 963:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Authority Key Identifier
134 968:d=4 hl=2 l= 24 prim: OCTET STRING [HEX DUMP]:30168014494B5227D11BBCF2A1216A627B51427A8AD7D556
135 994:d=3 hl=2 l= 56 cons: SEQUENCE
136 996:d=4 hl=2 l= 3 prim: OBJECT :X509v3 CRL Distribution Points
137 1001:d=4 hl=2 l= 49 prim: OCTET STRING [HEX DUMP]:302F302DA02BA0298627687474703A2F2F63726C2E737461726669656C64746563682E636F6D2F736673332D302E63726C
138 1052:d=3 hl=3 l= 141 cons: SEQUENCE
139 1055:d=4 hl=2 l= 8 prim: OBJECT :Authority Information Access
140 1065:d=4 hl=3 l= 128 prim: OCTET STRING [HEX DUMP]:307E302A06082B06010505073001861E687474703A2F2F6F6373702E737461726669656C64746563682E636F6D2F305006082B060105050730028644687474703A2F2F6365727469666963617465732E737461726669656C64746563682E636F6D2F7265706F7369746F72792F73665F696E7465726D6564696174652E637274
141 1196:d=3 hl=2 l= 82 cons: SEQUENCE
142 1198:d=4 hl=2 l= 3 prim: OBJECT :X509v3 Certificate Policies
143 1203:d=4 hl=2 l= 75 prim: OCTET STRING [HEX DUMP]:30493047060B6086480186FD6E010717033038303606082B06010505070201162A687474703A2F2F63657274732E737461726669656C64746563682E636F6D2F7265706F7369746F72792F