raise max-age for HTTP Public Key Pins from 5 min to 1 hour
[mirror/dsa-puppet.git] / modules / ssl / files / servicecerts / munin.debian.org.crt
index 44567be..41dcb7d 100644 (file)
 Certificate:
     Data:
         Version: 3 (0x2)
-        Serial Number: 96 (0x60)
-        Signature Algorithm: sha1WithRSAEncryption
-        Issuer: O=Debian, CN=ca.debian.org/emailAddress=debian-admin@debian.org
+        Serial Number:
+            45:85:54:2e:05:b2:b2:96:17:9a:2f:a2:cd:ef:82:7b
+    Signature Algorithm: sha256WithRSAEncryption
+        Issuer: C=FR, ST=Paris, L=Paris, O=Gandi, CN=Gandi Standard SSL CA 2
         Validity
-            Not Before: Feb 20 19:44:41 2013 GMT
-            Not After : Feb 20 19:44:41 2014 GMT
-        Subject: O=Debian, CN=munin.debian.org/emailAddress=debian-admin@debian.org
+            Not Before: Dec 11 00:00:00 2015 GMT
+            Not After : Jan 22 23:59:59 2017 GMT
+        Subject: OU=Domain Control Validated, OU=Gandi Standard SSL, CN=munin.debian.org
         Subject Public Key Info:
             Public Key Algorithm: rsaEncryption
-            RSA Public Key: (2048 bit)
-                Modulus (2048 bit):
-                    00:c4:07:85:c8:f7:13:f3:6a:0c:0c:b0:3c:44:f6:
-                    e0:1d:cb:4c:82:0f:86:e9:3d:b2:83:13:f9:9e:e7:
-                    a7:34:6f:2a:7b:30:f8:86:46:04:6c:f2:cc:88:2c:
-                    14:63:06:5d:eb:b6:7d:9e:a6:ae:2a:af:e5:e1:37:
-                    45:bc:1b:c5:48:1e:d6:d1:7f:f7:e2:05:81:83:4a:
-                    b6:60:ee:d6:d1:f8:c6:43:f9:5d:37:91:6e:c6:fa:
-                    d3:64:fb:fa:9c:5e:dc:97:4b:dd:81:25:9a:57:5e:
-                    8c:ef:f1:a7:63:c0:c2:0a:6c:72:26:40:f7:2a:41:
-                    4f:2f:17:6f:8e:a4:05:b6:2a:12:4e:ce:04:d9:3a:
-                    21:fe:05:35:72:02:10:32:40:10:c1:b0:92:04:1c:
-                    b8:08:50:42:1c:4e:65:b0:d9:f5:6f:ea:13:43:35:
-                    5f:f1:14:25:31:e4:80:7f:88:af:e4:3b:d2:fa:42:
-                    7d:8f:68:82:42:2a:4e:4b:47:1f:0f:c4:2f:52:4a:
-                    af:21:c0:95:87:2c:8f:57:56:b9:c3:b2:2f:06:0e:
-                    f0:c9:25:c2:7c:f3:5f:8e:30:39:07:66:51:a0:7c:
-                    9b:b4:d3:a5:6c:10:32:a5:d9:fb:09:b6:89:bf:67:
-                    82:e8:e6:6a:58:fe:e5:39:12:1c:56:d9:c2:65:8d:
-                    32:59
+                Public-Key: (3072 bit)
+                Modulus:
+                    00:ad:44:54:d7:90:e4:eb:64:c4:27:3c:b1:8f:ef:
+                    2f:28:3e:c5:07:b9:48:36:72:d4:1e:76:3e:81:e3:
+                    6a:74:2a:fa:e9:e3:c6:0d:5b:46:7a:dd:a8:9b:31:
+                    5a:38:e4:fa:72:52:10:29:04:9f:b9:ae:53:38:95:
+                    0e:70:3b:12:09:2c:ec:b9:e1:d0:b8:2b:07:84:4d:
+                    62:27:f2:13:24:9f:10:38:73:98:7b:ee:74:77:ea:
+                    86:2d:98:99:e5:2f:ad:9e:d1:a7:b3:9c:ce:de:a6:
+                    36:28:a3:6b:f5:16:60:52:f2:af:7a:ec:55:04:8c:
+                    bb:13:80:d8:2a:ca:41:40:8e:26:8b:85:56:25:97:
+                    eb:d0:83:68:f6:3d:f8:f2:03:e2:bc:5a:25:cf:ac:
+                    eb:1a:6b:98:46:25:b3:ec:f0:2d:05:67:07:de:89:
+                    62:2d:22:7d:e8:65:d8:2b:ec:63:20:06:9f:3d:bb:
+                    fe:8b:7a:99:c9:eb:69:1e:e1:dc:31:54:b0:8c:50:
+                    3e:9b:aa:f7:a7:52:f5:37:0d:be:8a:e3:11:41:9d:
+                    4b:05:7d:63:a6:bd:fd:90:9b:63:be:45:56:8b:11:
+                    79:c4:3b:82:43:49:54:d1:cd:f1:fe:92:bd:f7:83:
+                    90:3e:7b:3c:3b:46:7f:70:cf:e0:5b:b3:c0:3d:3f:
+                    41:32:6a:5b:48:47:52:89:c7:a1:8d:00:cc:ad:8b:
+                    e7:fb:97:36:d4:96:0f:31:66:44:b8:fc:67:b4:e3:
+                    30:64:37:b1:9b:ec:81:b0:a9:25:79:12:0e:d8:ec:
+                    5d:04:9a:6b:91:ef:d6:7a:07:f7:fd:94:fa:83:9b:
+                    d6:1a:e9:50:6f:38:08:ab:f3:06:df:e9:d3:15:42:
+                    e6:8f:e2:6d:54:9f:c7:dd:d4:2d:70:39:b9:b2:29:
+                    fd:a5:0e:aa:ae:5c:ea:a9:fd:95:73:27:5a:00:08:
+                    12:d0:c0:94:50:4a:f8:0b:f5:7d:cb:d6:9a:90:00:
+                    01:75:63:53:81:b4:f8:25:5e:45
                 Exponent: 65537 (0x10001)
         X509v3 extensions:
-            X509v3 Basic Constraints: 
-                CA:FALSE
-            X509v3 Subject Key Identifier: 
-                D1:F0:F8:D2:1A:61:0D:30:DC:A2:70:59:22:A4:28:27:68:04:84:7C
             X509v3 Authority Key Identifier: 
-                keyid:A7:CF:4B:FA:5F:12:C6:23:74:2E:9E:A3:95:90:75:8C:CC:26:76:96
-                DirName:/C=US/ST=Indiana/L=Indianapolis/O=Software in the Public Interest/OU=hostmaster/CN=Certificate Authority/emailAddress=hostmaster@spi-inc.org
-                serial:03
+                keyid:B3:90:A7:D8:C9:AF:4E:CD:61:3C:9F:7C:AD:5D:7F:41:FD:69:30:EA
+
+            X509v3 Subject Key Identifier: 
+                F2:10:87:60:72:B8:D3:A5:A1:69:80:47:EE:52:B2:3B:18:4D:89:DC
+            X509v3 Key Usage: critical
+                Digital Signature, Key Encipherment
+            X509v3 Basic Constraints: critical
+                CA:FALSE
+            X509v3 Extended Key Usage: 
+                TLS Web Server Authentication, TLS Web Client Authentication
+            X509v3 Certificate Policies: 
+                Policy: 1.3.6.1.4.1.6449.1.2.2.26
+                  CPS: https://cps.usertrust.com
+                Policy: 2.23.140.1.2.1
+
+            X509v3 CRL Distribution Points: 
+
+                Full Name:
+                  URI:http://crl.usertrust.com/GandiStandardSSLCA2.crl
+
+            Authority Information Access: 
+                CA Issuers - URI:http://crt.usertrust.com/GandiStandardSSLCA2.crt
+                OCSP - URI:http://ocsp.usertrust.com
 
-    Signature Algorithm: sha1WithRSAEncryption
-        6e:67:77:95:fb:26:9c:54:16:83:4e:bd:01:7c:cc:91:b3:1a:
-        0c:6d:36:ac:2e:09:63:4b:08:cb:82:a6:77:34:61:21:ed:d7:
-        23:3f:2a:f4:1b:52:60:64:a8:44:11:fb:5f:05:d7:22:9c:86:
-        67:15:ea:8b:67:d8:c9:87:45:4a:41:1e:a0:38:74:fc:0f:59:
-        2f:48:5e:bf:76:0d:0b:e4:b4:c0:fc:86:be:62:58:6d:55:5d:
-        e8:fa:8f:42:8e:e5:53:ec:a1:7d:5d:7e:87:76:88:cb:67:21:
-        9d:1b:7d:2f:33:ff:2a:18:67:b7:07:cf:be:ac:b5:a7:e0:40:
-        60:87:dc:28:e4:51:4d:6f:a4:94:e9:ea:82:1a:90:c7:1c:7a:
-        fd:d3:53:ce:df:c2:0f:a5:58:42:54:fe:89:c7:ed:ee:0f:5d:
-        53:3d:89:1a:fe:90:7d:7b:b5:dc:22:81:6b:ed:c5:c2:9c:2c:
-        c0:4c:0e:91:f4:e3:65:9a:81:11:f6:7a:bc:68:44:16:dd:ae:
-        d6:cc:1b:bc:da:38:3f:ce:51:e1:10:35:0f:11:4b:18:63:c1:
-        d1:a9:96:09:86:fd:8b:58:b5:56:b5:7c:a2:fa:48:84:d8:51:
-        80:9f:36:8f:94:98:86:c1:34:e6:f3:e5:d2:a9:d1:83:db:c3:
-        4c:45:ec:1a:12:99:10:ce:a6:bf:d4:aa:36:81:e2:14:e1:45:
-        74:94:c5:85:61:17:0c:16:cb:46:e1:a2:70:24:db:c5:40:58:
-        28:a4:d9:70:29:36:b9:8b:e0:f1:99:dd:3d:04:3c:95:16:d6:
-        7e:52:f7:e3:3b:e8:b0:da:0b:27:91:c9:67:7c:d9:c5:ee:de:
-        ea:e1:e2:57:ee:f6:5e:a1:c9:87:0c:a3:77:88:89:6f:fb:8a:
-        5c:ce:ac:8e:6a:1d:60:6f:6a:ae:89:18:7c:66:6e:0a:20:1a:
-        8f:91:8d:50:ed:84:10:d5:dd:85:9c:9e:fd:4a:e4:a9:38:01:
-        de:bf:0c:df:cf:18:7e:2e:f6:c4:ee:a5:4b:4e:26:cc:99:be:
-        de:3b:3a:6d:9d:4c:85:67:1e:97:e9:bf:50:9e:5c:15:3b:87:
-        7a:63:a8:a9:7e:15:d8:8e:6c:1d:56:40:56:c7:4f:64:49:6a:
-        63:5f:1f:d9:d2:64:e2:44:7f:80:b2:95:fb:fc:ee:a5:02:28:
-        62:a6:5e:fd:94:6e:8d:48:74:ce:9b:9f:e4:ba:d7:4b:bd:a1:
-        99:2b:42:e0:56:fe:b0:69:24:88:61:24:00:74:c8:f8:97:c9:
-        3f:37:72:39:f3:d1:88:7d:f0:1f:4b:66:e1:fc:21:d2:6b:3f:
-        1e:a9:67:42:78:f8:fd:f0
+            X509v3 Subject Alternative Name: 
+                DNS:munin.debian.org, DNS:www.munin.debian.org
+    Signature Algorithm: sha256WithRSAEncryption
+         38:c9:52:4f:64:3e:4c:49:e4:4a:5d:3f:23:00:79:ad:d6:e5:
+         2b:20:52:5b:1f:76:9a:70:31:ba:07:bc:10:20:da:a6:d6:fb:
+         9d:b9:2f:7f:fe:67:b7:a3:bc:d8:ce:21:30:7f:b5:3b:8c:64:
+         24:98:00:0a:ac:88:66:ea:ff:09:ed:8a:7b:8a:ed:3e:21:04:
+         2c:a3:34:1c:c3:b2:fd:0f:09:7d:7e:36:d9:9c:7c:0b:f6:c1:
+         5d:e2:6c:fc:7f:fa:fb:74:c0:33:5f:19:a8:f1:24:8e:4c:b6:
+         99:a4:65:f3:b9:41:f7:51:be:ee:25:81:1f:d8:80:f6:84:95:
+         a5:35:d1:8b:bb:dc:33:ab:4f:58:bf:65:3c:25:96:8d:37:c9:
+         2f:4c:94:99:9d:6f:01:1c:a6:ee:c6:e2:2c:21:4e:a9:14:4e:
+         2c:bd:11:a9:e7:46:f1:87:0b:f8:a5:0a:b6:82:db:7b:4e:35:
+         82:b4:7e:dc:b1:7f:64:42:41:d9:90:ab:df:26:51:88:64:9f:
+         21:f9:5e:e2:08:2e:68:2e:b9:00:01:3e:59:fc:5b:bb:c5:01:
+         24:6f:2a:0c:f2:26:79:33:64:c1:61:5e:1e:4a:75:b9:d0:ba:
+         ba:b7:5b:b1:f5:a5:cf:bf:e5:43:9a:50:20:7b:aa:2c:33:e9:
+         fb:5d:55:8b
 -----BEGIN CERTIFICATE-----
-MIIFPDCCAySgAwIBAgIBYDANBgkqhkiG9w0BAQUFADBRMQ8wDQYDVQQKEwZEZWJp
-YW4xFjAUBgNVBAMTDWNhLmRlYmlhbi5vcmcxJjAkBgkqhkiG9w0BCQEWF2RlYmlh
-bi1hZG1pbkBkZWJpYW4ub3JnMB4XDTEzMDIyMDE5NDQ0MVoXDTE0MDIyMDE5NDQ0
-MVowVDEPMA0GA1UEChMGRGViaWFuMRkwFwYDVQQDExBtdW5pbi5kZWJpYW4ub3Jn
-MSYwJAYJKoZIhvcNAQkBFhdkZWJpYW4tYWRtaW5AZGViaWFuLm9yZzCCASIwDQYJ
-KoZIhvcNAQEBBQADggEPADCCAQoCggEBAMQHhcj3E/NqDAywPET24B3LTIIPhuk9
-soMT+Z7npzRvKnsw+IZGBGzyzIgsFGMGXeu2fZ6mriqv5eE3RbwbxUge1tF/9+IF
-gYNKtmDu1tH4xkP5XTeRbsb602T7+pxe3JdL3YElmldejO/xp2PAwgpsciZA9ypB
-Ty8Xb46kBbYqEk7OBNk6If4FNXICEDJAEMGwkgQcuAhQQhxOZbDZ9W/qE0M1X/EU
-JTHkgH+Ir+Q70vpCfY9ogkIqTktHHw/EL1JKryHAlYcsj1dWucOyLwYO8Mklwnzz
-X44wOQdmUaB8m7TTpWwQMqXZ+wm2ib9ngujmalj+5TkSHFbZwmWNMlkCAwEAAaOC
-ARowggEWMAkGA1UdEwQCMAAwHQYDVR0OBBYEFNHw+NIaYQ0w3KJwWSKkKCdoBIR8
-MIHpBgNVHSMEgeEwgd6AFKfPS/pfEsYjdC6eo5WQdYzMJnaWoYHCpIG/MIG8MQsw
-CQYDVQQGEwJVUzEQMA4GA1UECBMHSW5kaWFuYTEVMBMGA1UEBxMMSW5kaWFuYXBv
-bGlzMSgwJgYDVQQKEx9Tb2Z0d2FyZSBpbiB0aGUgUHVibGljIEludGVyZXN0MRMw
-EQYDVQQLEwpob3N0bWFzdGVyMR4wHAYDVQQDExVDZXJ0aWZpY2F0ZSBBdXRob3Jp
-dHkxJTAjBgkqhkiG9w0BCQEWFmhvc3RtYXN0ZXJAc3BpLWluYy5vcmeCAQMwDQYJ
-KoZIhvcNAQEFBQADggIBAG5nd5X7JpxUFoNOvQF8zJGzGgxtNqwuCWNLCMuCpnc0
-YSHt1yM/KvQbUmBkqEQR+18F1yKchmcV6otn2MmHRUpBHqA4dPwPWS9IXr92DQvk
-tMD8hr5iWG1VXej6j0KO5VPsoX1dfod2iMtnIZ0bfS8z/yoYZ7cHz76stafgQGCH
-3CjkUU1vpJTp6oIakMccev3TU87fwg+lWEJU/onH7e4PXVM9iRr+kH17tdwigWvt
-xcKcLMBMDpH042WagRH2erxoRBbdrtbMG7zaOD/OUeEQNQ8RSxhjwdGplgmG/YtY
-tVa1fKL6SITYUYCfNo+UmIbBNObz5dKp0YPbw0xF7BoSmRDOpr/UqjaB4hThRXSU
-xYVhFwwWy0bhonAk28VAWCik2XApNrmL4PGZ3T0EPJUW1n5S9+M76LDaCyeRyWd8
-2cXu3urh4lfu9l6hyYcMo3eIiW/7ilzOrI5qHWBvaq6JGHxmbgogGo+RjVDthBDV
-3YWcnv1K5Kk4Ad6/DN/PGH4u9sTupUtOJsyZvt47Om2dTIVnHpfpv1CeXBU7h3pj
-qKl+FdiObB1WQFbHT2RJamNfH9nSZOJEf4Cylfv87qUCKGKmXv2Ubo1IdM6bn+S6
-10u9oZkrQuBW/rBpJIhhJAB0yPiXyT83cjnz0Yh98B9LZuH8IdJrPx6pZ0J4+P3w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 -----END CERTIFICATE-----