raise max-age for HTTP Public Key Pins from 5 min to 1 hour
[mirror/dsa-puppet.git] / modules / ssl / files / servicecerts / munin.debian.org.crt
index 51df0f9..41dcb7d 100644 (file)
@@ -2,12 +2,12 @@ Certificate:
     Data:
         Version: 3 (0x2)
         Serial Number:
-            a7:2b:fb:dc:8c:c1:63:7f:43:b9:32:c0:51:bd:3c:27
-    Signature Algorithm: sha1WithRSAEncryption
-        Issuer: C=FR, O=GANDI SAS, CN=Gandi Standard SSL CA
+            45:85:54:2e:05:b2:b2:96:17:9a:2f:a2:cd:ef:82:7b
+    Signature Algorithm: sha256WithRSAEncryption
+        Issuer: C=FR, ST=Paris, L=Paris, O=Gandi, CN=Gandi Standard SSL CA 2
         Validity
-            Not Before: Jan  1 00:00:00 2014 GMT
-            Not After : Jan  1 23:59:59 2015 GMT
+            Not Before: Dec 11 00:00:00 2015 GMT
+            Not After : Jan 22 23:59:59 2017 GMT
         Subject: OU=Domain Control Validated, OU=Gandi Standard SSL, CN=munin.debian.org
         Subject Public Key Info:
             Public Key Algorithm: rsaEncryption
@@ -42,7 +42,7 @@ Certificate:
                 Exponent: 65537 (0x10001)
         X509v3 extensions:
             X509v3 Authority Key Identifier: 
-                keyid:B6:A8:FF:A2:A8:2F:D0:A6:CD:4B:B1:68:F3:E7:50:10:31:A7:79:21
+                keyid:B3:90:A7:D8:C9:AF:4E:CD:61:3C:9F:7C:AD:5D:7F:41:FD:69:30:EA
 
             X509v3 Subject Key Identifier: 
                 F2:10:87:60:72:B8:D3:A5:A1:69:80:47:EE:52:B2:3B:18:4D:89:DC
@@ -54,64 +54,65 @@ Certificate:
                 TLS Web Server Authentication, TLS Web Client Authentication
             X509v3 Certificate Policies: 
                 Policy: 1.3.6.1.4.1.6449.1.2.2.26
-                  CPS: http://www.gandi.net/contracts/fr/ssl/cps/pdf/
+                  CPS: https://cps.usertrust.com
                 Policy: 2.23.140.1.2.1
 
             X509v3 CRL Distribution Points: 
 
                 Full Name:
-                  URI:http://crl.gandi.net/GandiStandardSSLCA.crl
+                  URI:http://crl.usertrust.com/GandiStandardSSLCA2.crl
 
             Authority Information Access: 
-                CA Issuers - URI:http://crt.gandi.net/GandiStandardSSLCA.crt
-                OCSP - URI:http://ocsp.gandi.net
+                CA Issuers - URI:http://crt.usertrust.com/GandiStandardSSLCA2.crt
+                OCSP - URI:http://ocsp.usertrust.com
 
             X509v3 Subject Alternative Name: 
                 DNS:munin.debian.org, DNS:www.munin.debian.org
-    Signature Algorithm: sha1WithRSAEncryption
-         38:60:c3:ed:44:39:40:92:ec:c2:62:39:cf:8e:ea:38:d9:e7:
-         18:4f:c8:ba:4a:09:1d:cb:69:0a:cc:ec:e4:e4:de:e5:4d:85:
-         6e:1c:a1:d8:4e:69:4c:a4:66:58:b5:70:b1:21:5b:a4:c2:05:
-         86:c4:bc:ec:df:5c:02:32:ef:a5:40:25:ec:72:30:26:1f:c0:
-         d0:ec:81:95:b9:4b:d0:c5:51:d4:b4:3a:a3:27:df:8f:50:c6:
-         85:45:cb:ad:d9:42:0d:7c:9e:6a:c9:95:1e:42:0c:d5:b6:bb:
-         43:9d:da:ec:80:8a:42:9c:6d:76:2e:04:e8:5f:8e:6c:bd:51:
-         06:7d:2f:a2:fd:83:9f:77:f7:4a:54:15:d8:3a:f7:7a:b5:c5:
-         1b:13:0d:d4:be:90:eb:4d:e9:5f:d3:b1:ef:bb:e8:b4:eb:d0:
-         d3:52:2d:91:2d:44:e5:13:fc:49:cc:98:19:08:79:0d:4e:f2:
-         be:c2:fe:02:84:e8:2d:ed:61:ba:61:70:1f:4f:6d:5a:44:3a:
-         55:7b:ab:fd:17:8b:96:c1:a4:0f:33:fb:b9:43:78:ab:b6:f7:
-         9f:95:a0:9b:e6:83:6f:8b:23:bb:6b:48:8b:fb:7a:3e:d0:cc:
-         f2:87:e1:e7:5e:71:b5:d0:6a:51:77:c6:91:a5:23:14:7c:92:
-         7c:1d:43:a8
+    Signature Algorithm: sha256WithRSAEncryption
+         38:c9:52:4f:64:3e:4c:49:e4:4a:5d:3f:23:00:79:ad:d6:e5:
+         2b:20:52:5b:1f:76:9a:70:31:ba:07:bc:10:20:da:a6:d6:fb:
+         9d:b9:2f:7f:fe:67:b7:a3:bc:d8:ce:21:30:7f:b5:3b:8c:64:
+         24:98:00:0a:ac:88:66:ea:ff:09:ed:8a:7b:8a:ed:3e:21:04:
+         2c:a3:34:1c:c3:b2:fd:0f:09:7d:7e:36:d9:9c:7c:0b:f6:c1:
+         5d:e2:6c:fc:7f:fa:fb:74:c0:33:5f:19:a8:f1:24:8e:4c:b6:
+         99:a4:65:f3:b9:41:f7:51:be:ee:25:81:1f:d8:80:f6:84:95:
+         a5:35:d1:8b:bb:dc:33:ab:4f:58:bf:65:3c:25:96:8d:37:c9:
+         2f:4c:94:99:9d:6f:01:1c:a6:ee:c6:e2:2c:21:4e:a9:14:4e:
+         2c:bd:11:a9:e7:46:f1:87:0b:f8:a5:0a:b6:82:db:7b:4e:35:
+         82:b4:7e:dc:b1:7f:64:42:41:d9:90:ab:df:26:51:88:64:9f:
+         21:f9:5e:e2:08:2e:68:2e:b9:00:01:3e:59:fc:5b:bb:c5:01:
+         24:6f:2a:0c:f2:26:79:33:64:c1:61:5e:1e:4a:75:b9:d0:ba:
+         ba:b7:5b:b1:f5:a5:cf:bf:e5:43:9a:50:20:7b:aa:2c:33:e9:
+         fb:5d:55:8b
 -----BEGIN CERTIFICATE-----
-MIIFaTCCBFGgAwIBAgIRAKcr+9yMwWN/Q7kywFG9PCcwDQYJKoZIhvcNAQEFBQAw
-QTELMAkGA1UEBhMCRlIxEjAQBgNVBAoTCUdBTkRJIFNBUzEeMBwGA1UEAxMVR2Fu
-ZGkgU3RhbmRhcmQgU1NMIENBMB4XDTE0MDEwMTAwMDAwMFoXDTE1MDEwMTIzNTk1
-OVowWzEhMB8GA1UECxMYRG9tYWluIENvbnRyb2wgVmFsaWRhdGVkMRswGQYDVQQL
-ExJHYW5kaSBTdGFuZGFyZCBTU0wxGTAXBgNVBAMTEG11bmluLmRlYmlhbi5vcmcw
-ggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCtRFTXkOTrZMQnPLGP7y8o
-PsUHuUg2ctQedj6B42p0Kvrp48YNW0Z63aibMVo45PpyUhApBJ+5rlM4lQ5wOxIJ
-LOy54dC4KweETWIn8hMknxA4c5h77nR36oYtmJnlL62e0aeznM7epjYoo2v1FmBS
-8q967FUEjLsTgNgqykFAjiaLhVYll+vQg2j2PfjyA+K8WiXPrOsaa5hGJbPs8C0F
-ZwfeiWItIn3oZdgr7GMgBp89u/6LepnJ62ke4dwxVLCMUD6bqvenUvU3Db6K4xFB
-nUsFfWOmvf2Qm2O+RVaLEXnEO4JDSVTRzfH+kr33g5A+ezw7Rn9wz+Bbs8A9P0Ey
-altIR1KJx6GNAMyti+f7lzbUlg8xZkS4/Ge04zBkN7Gb7IGwqSV5Eg7Y7F0EmmuR
-79Z6B/f9lPqDm9Ya6VBvOAir8wbf6dMVQuaP4m1Un8fd1C1wObmyKf2lDqquXOqp
-/ZVzJ1oACBLQwJRQSvgL9X3L1pqQAAF1Y1OBtPglXkUCAwEAAaOCAcAwggG8MB8G
-A1UdIwQYMBaAFLao/6KoL9CmzUuxaPPnUBAxp3khMB0GA1UdDgQWBBTyEIdgcrjT
-paFpgEfuUrI7GE2J3DAOBgNVHQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNV
-HSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwYAYDVR0gBFkwVzBLBgsrBgEEAbIx
-AQICGjA8MDoGCCsGAQUFBwIBFi5odHRwOi8vd3d3LmdhbmRpLm5ldC9jb250cmFj
-dHMvZnIvc3NsL2Nwcy9wZGYvMAgGBmeBDAECATA8BgNVHR8ENTAzMDGgL6Athito
-dHRwOi8vY3JsLmdhbmRpLm5ldC9HYW5kaVN0YW5kYXJkU1NMQ0EuY3JsMGoGCCsG
-AQUFBwEBBF4wXDA3BggrBgEFBQcwAoYraHR0cDovL2NydC5nYW5kaS5uZXQvR2Fu
-ZGlTdGFuZGFyZFNTTENBLmNydDAhBggrBgEFBQcwAYYVaHR0cDovL29jc3AuZ2Fu
-ZGkubmV0MDEGA1UdEQQqMCiCEG11bmluLmRlYmlhbi5vcmeCFHd3dy5tdW5pbi5k
-ZWJpYW4ub3JnMA0GCSqGSIb3DQEBBQUAA4IBAQA4YMPtRDlAkuzCYjnPjuo42ecY
-T8i6Sgkdy2kKzOzk5N7lTYVuHKHYTmlMpGZYtXCxIVukwgWGxLzs31wCMu+lQCXs
-cjAmH8DQ7IGVuUvQxVHUtDqjJ9+PUMaFRcut2UINfJ5qyZUeQgzVtrtDndrsgIpC
-nG12LgToX45svVEGfS+i/YOfd/dKVBXYOvd6tcUbEw3UvpDrTelf07Hvu+i069DT
-Ui2RLUTlE/xJzJgZCHkNTvK+wv4ChOgt7WG6YXAfT21aRDpVe6v9F4uWwaQPM/u5
-Q3irtveflaCb5oNviyO7a0iL+3o+0Mzyh+HnXnG10GpRd8aRpSMUfJJ8HUOo
+MIIFfzCCBGegAwIBAgIQRYVULgWyspYXmi+ize+CezANBgkqhkiG9w0BAQsFADBf
+MQswCQYDVQQGEwJGUjEOMAwGA1UECBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4w
+DAYDVQQKEwVHYW5kaTEgMB4GA1UEAxMXR2FuZGkgU3RhbmRhcmQgU1NMIENBIDIw
+HhcNMTUxMjExMDAwMDAwWhcNMTcwMTIyMjM1OTU5WjBbMSEwHwYDVQQLExhEb21h
+aW4gQ29udHJvbCBWYWxpZGF0ZWQxGzAZBgNVBAsTEkdhbmRpIFN0YW5kYXJkIFNT
+TDEZMBcGA1UEAxMQbXVuaW4uZGViaWFuLm9yZzCCAaIwDQYJKoZIhvcNAQEBBQAD
+ggGPADCCAYoCggGBAK1EVNeQ5OtkxCc8sY/vLyg+xQe5SDZy1B52PoHjanQq+unj
+xg1bRnrdqJsxWjjk+nJSECkEn7muUziVDnA7Egks7Lnh0LgrB4RNYifyEySfEDhz
+mHvudHfqhi2YmeUvrZ7Rp7Oczt6mNiija/UWYFLyr3rsVQSMuxOA2CrKQUCOJouF
+ViWX69CDaPY9+PID4rxaJc+s6xprmEYls+zwLQVnB96JYi0ifehl2CvsYyAGnz27
+/ot6mcnraR7h3DFUsIxQPpuq96dS9TcNvorjEUGdSwV9Y6a9/ZCbY75FVosRecQ7
+gkNJVNHN8f6SvfeDkD57PDtGf3DP4FuzwD0/QTJqW0hHUonHoY0AzK2L5/uXNtSW
+DzFmRLj8Z7TjMGQ3sZvsgbCpJXkSDtjsXQSaa5Hv1noH9/2U+oOb1hrpUG84CKvz
+Bt/p0xVC5o/ibVSfx93ULXA5ubIp/aUOqq5c6qn9lXMnWgAIEtDAlFBK+Av1fcvW
+mpAAAXVjU4G0+CVeRQIDAQABo4IBuTCCAbUwHwYDVR0jBBgwFoAUs5Cn2MmvTs1h
+PJ98rV1/Qf1pMOowHQYDVR0OBBYEFPIQh2ByuNOloWmAR+5SsjsYTYncMA4GA1Ud
+DwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggr
+BgEFBQcDAjBLBgNVHSAERDBCMDYGCysGAQQBsjEBAgIaMCcwJQYIKwYBBQUHAgEW
+GWh0dHBzOi8vY3BzLnVzZXJ0cnVzdC5jb20wCAYGZ4EMAQIBMEEGA1UdHwQ6MDgw
+NqA0oDKGMGh0dHA6Ly9jcmwudXNlcnRydXN0LmNvbS9HYW5kaVN0YW5kYXJkU1NM
+Q0EyLmNybDBzBggrBgEFBQcBAQRnMGUwPAYIKwYBBQUHMAKGMGh0dHA6Ly9jcnQu
+dXNlcnRydXN0LmNvbS9HYW5kaVN0YW5kYXJkU1NMQ0EyLmNydDAlBggrBgEFBQcw
+AYYZaHR0cDovL29jc3AudXNlcnRydXN0LmNvbTAxBgNVHREEKjAoghBtdW5pbi5k
+ZWJpYW4ub3JnghR3d3cubXVuaW4uZGViaWFuLm9yZzANBgkqhkiG9w0BAQsFAAOC
+AQEAOMlST2Q+TEnkSl0/IwB5rdblKyBSWx92mnAxuge8ECDaptb7nbkvf/5nt6O8
+2M4hMH+1O4xkJJgACqyIZur/Ce2Ke4rtPiEELKM0HMOy/Q8JfX422Zx8C/bBXeJs
+/H/6+3TAM18ZqPEkjky2maRl87lB91G+7iWBH9iA9oSVpTXRi7vcM6tPWL9lPCWW
+jTfJL0yUmZ1vARym7sbiLCFOqRROLL0RqedG8YcL+KUKtoLbe041grR+3LF/ZEJB
+2ZCr3yZRiGSfIfle4gguaC65AAE+Wfxbu8UBJG8qDPImeTNkwWFeHkp1udC6urdb
+sfWlz7/lQ5pQIHuqLDPp+11Viw==
 -----END CERTIFICATE-----