From: Peter Palfrader Date: Mon, 13 Jul 2015 16:29:49 +0000 (+0200) Subject: people cert update X-Git-Url: https://git.adam-barratt.org.uk/?a=commitdiff_plain;h=28d95787ba13c93266f277f802df6af31823cb5a;p=mirror%2Fdsa-puppet.git people cert update --- diff --git a/modules/ssl/files/chains/people.debian.org.crt b/modules/ssl/files/chains/people.debian.org.crt index 6aaa9147c..50d224a83 120000 --- a/modules/ssl/files/chains/people.debian.org.crt +++ b/modules/ssl/files/chains/people.debian.org.crt @@ -1 +1 @@ -GANDI-CA \ No newline at end of file +GANDI-2-CA \ No newline at end of file diff --git a/modules/ssl/files/servicecerts/people.debian.org.crt b/modules/ssl/files/servicecerts/people.debian.org.crt index 964b0e2c8..9c1600ab2 100644 --- a/modules/ssl/files/servicecerts/people.debian.org.crt +++ b/modules/ssl/files/servicecerts/people.debian.org.crt @@ -2,12 +2,12 @@ Certificate: Data: Version: 3 (0x2) Serial Number: - ba:f1:d8:98:d0:bd:9c:0a:49:67:ae:70:fa:7e:9c:ca - Signature Algorithm: sha1WithRSAEncryption - Issuer: C=FR, O=GANDI SAS, CN=Gandi Standard SSL CA + e0:c3:a1:74:af:f7:c1:7d:ed:60:17:90:11:13:d3:03 + Signature Algorithm: sha256WithRSAEncryption + Issuer: C=FR, ST=Paris, L=Paris, O=Gandi, CN=Gandi Standard SSL CA 2 Validity - Not Before: Jul 27 00:00:00 2014 GMT - Not After : Jul 27 23:59:59 2015 GMT + Not Before: Jul 13 00:00:00 2015 GMT + Not After : Jul 27 23:59:59 2016 GMT Subject: OU=Domain Control Validated, OU=Gandi Standard SSL, CN=people.debian.org Subject Public Key Info: Public Key Algorithm: rsaEncryption @@ -42,7 +42,7 @@ Certificate: Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: - keyid:B6:A8:FF:A2:A8:2F:D0:A6:CD:4B:B1:68:F3:E7:50:10:31:A7:79:21 + keyid:B3:90:A7:D8:C9:AF:4E:CD:61:3C:9F:7C:AD:5D:7F:41:FD:69:30:EA X509v3 Subject Key Identifier: 8E:22:C1:B4:53:40:A3:E9:31:81:23:CB:C9:77:6B:FA:9B:C3:5D:FB @@ -54,64 +54,65 @@ Certificate: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.26 - CPS: http://www.gandi.net/contracts/fr/ssl/cps/pdf/ + CPS: https://cps.usertrust.com Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: - URI:http://crl.gandi.net/GandiStandardSSLCA.crl + URI:http://crl.usertrust.com/GandiStandardSSLCA2.crl Authority Information Access: - CA Issuers - URI:http://crt.gandi.net/GandiStandardSSLCA.crt - OCSP - URI:http://ocsp.gandi.net + CA Issuers - URI:http://crt.usertrust.com/GandiStandardSSLCA2.crt + OCSP - URI:http://ocsp.usertrust.com X509v3 Subject Alternative Name: DNS:people.debian.org, DNS:www.people.debian.org - Signature Algorithm: sha1WithRSAEncryption - 2f:ba:eb:17:63:cf:cc:b2:02:e0:1e:e7:a9:d7:8b:a2:c5:91: - 49:af:03:77:c3:cb:b4:cc:68:df:66:a9:d9:cb:11:06:ee:f1: - 5e:48:d4:0a:42:f0:4e:9e:3f:4e:c7:e6:11:f4:e6:a6:f3:c5: - 6b:fa:b0:d5:d8:dc:bd:f9:02:b0:dc:d8:43:5c:c4:7d:99:2f: - a2:04:64:19:0e:62:71:30:76:63:8f:b5:18:4d:b6:49:43:35: - 85:55:8d:0d:71:63:ad:12:e3:57:ed:7e:fe:9f:4f:af:7b:e5: - 2e:a7:ba:c7:9a:81:07:d9:ed:95:80:30:33:43:70:a2:b9:43: - bc:f6:78:20:68:c2:fa:0c:85:80:84:7c:91:bc:b6:99:fe:45: - 8f:7d:c7:98:26:06:38:ec:20:d3:de:d3:b7:1a:c1:c4:16:82: - 6b:1f:40:db:46:d7:ab:0e:ad:1c:00:99:4f:8e:e7:9e:fe:7e: - 47:e8:cc:fc:83:a0:4b:64:11:30:ea:22:86:28:c1:dd:eb:27: - 4e:1b:b3:a4:59:3e:bc:10:32:8b:ff:60:44:f0:74:2c:67:1e: - bd:ae:e6:70:39:ab:2e:8c:8f:7f:96:b6:b6:9a:73:76:81:ec: - 62:03:b7:da:dd:1d:4f:63:9b:b2:99:76:32:4a:aa:db:a1:b7: - 59:b4:cc:3a + Signature Algorithm: sha256WithRSAEncryption + 92:fe:5d:c6:c0:32:ae:d2:b2:dc:70:87:80:8f:b9:d9:ea:ad: + 52:88:75:1f:bd:9b:ae:9d:e1:70:a3:de:09:42:7c:b9:dc:17: + fb:d7:5c:f4:8d:5b:f1:ba:e0:70:09:2b:ae:1e:59:5c:d6:7a: + 28:6d:54:d7:c0:83:92:0a:d9:15:25:bb:2d:e6:e9:af:1c:fe: + 00:d4:74:dc:45:bb:8f:ed:0a:0e:31:3c:26:fd:aa:ec:52:f2: + e7:6d:bb:5f:a3:07:7b:18:8f:81:12:16:38:fb:ef:bf:fd:6e: + 99:53:de:ba:e7:c9:92:e2:30:6d:84:41:a2:69:aa:24:b4:4d: + 4d:17:e9:f1:b2:ba:5e:51:81:f5:9e:2f:95:c2:2d:7f:18:94: + 71:75:d6:87:4b:53:6e:02:45:03:ea:49:4f:a0:7f:1f:dc:23: + 62:a8:2f:80:66:62:aa:e3:23:7f:2b:aa:4f:41:61:a7:ad:1b: + 18:61:3b:8c:8f:0d:ba:25:06:a9:79:ab:df:80:0b:26:f8:57: + 2b:8a:d4:8e:78:e9:0e:49:d9:36:5b:f2:c8:ce:84:05:26:c9: + 41:b8:76:84:58:a0:ac:f2:64:22:42:e6:e1:58:57:72:c8:de: + d8:b8:62:70:60:af:29:c4:6f:93:df:c4:32:15:04:f4:11:0f: + d7:27:57:69 -----BEGIN CERTIFICATE----- -MIIFbDCCBFSgAwIBAgIRALrx2JjQvZwKSWeucPp+nMowDQYJKoZIhvcNAQEFBQAw -QTELMAkGA1UEBhMCRlIxEjAQBgNVBAoTCUdBTkRJIFNBUzEeMBwGA1UEAxMVR2Fu -ZGkgU3RhbmRhcmQgU1NMIENBMB4XDTE0MDcyNzAwMDAwMFoXDTE1MDcyNzIzNTk1 -OVowXDEhMB8GA1UECxMYRG9tYWluIENvbnRyb2wgVmFsaWRhdGVkMRswGQYDVQQL -ExJHYW5kaSBTdGFuZGFyZCBTU0wxGjAYBgNVBAMTEXBlb3BsZS5kZWJpYW4ub3Jn -MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAvtaE0x49yj0pojCjsleb -0MHcMOuSodIwXZD5jK9zHql7y+fcw+kKTgs/1TxwyCidU0AXiu+uED1isNAiIrvu -hjOZi/NX3EQvQwbgzRA0cWC1ZOGcbmblhvtbbGNYfFV4K6jtq1NgjkRRk2HPfdd9 -wOwwS8Fl56E1k1NlEEFO6kzhh3JtIAcsU+yZ5X5CZKBi/5GTiasZHnsChC+8dDgD -pmohEdC2uiSr7Gq0Z3Qzv5vJZ9xfc5quxB1Icp81nRONVARfPOJJMERpGW4SleUc -mIYLVieGYrlbr0lIhhg71L6J7PcwAiMX597RrS6kyX+diB/reS1u69ykd1e5HJ2V -VkaWk9T64q150CLnUVnWvSm3cQ8vmDf/n14a6PxzCgmi/iYTHfgFVWbPusi+4CJL -uNcoKlKKNAgzaITpzYhyEVHmjPypAf+0lsPg6T0MRkgAhiV0JWB/MyALGhObzUae -yBlkwZfYfJ8smQQH+cAzsheOqJid+K0Odj7gQGN6RT4vAgMBAAGjggHCMIIBvjAf -BgNVHSMEGDAWgBS2qP+iqC/Qps1LsWjz51AQMad5ITAdBgNVHQ4EFgQUjiLBtFNA -o+kxgSPLyXdr+pvDXfswDgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYD -VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMGAGA1UdIARZMFcwSwYLKwYBBAGy -MQECAhowPDA6BggrBgEFBQcCARYuaHR0cDovL3d3dy5nYW5kaS5uZXQvY29udHJh -Y3RzL2ZyL3NzbC9jcHMvcGRmLzAIBgZngQwBAgEwPAYDVR0fBDUwMzAxoC+gLYYr -aHR0cDovL2NybC5nYW5kaS5uZXQvR2FuZGlTdGFuZGFyZFNTTENBLmNybDBqBggr -BgEFBQcBAQReMFwwNwYIKwYBBQUHMAKGK2h0dHA6Ly9jcnQuZ2FuZGkubmV0L0dh -bmRpU3RhbmRhcmRTU0xDQS5jcnQwIQYIKwYBBQUHMAGGFWh0dHA6Ly9vY3NwLmdh -bmRpLm5ldDAzBgNVHREELDAqghFwZW9wbGUuZGViaWFuLm9yZ4IVd3d3LnBlb3Bs -ZS5kZWJpYW4ub3JnMA0GCSqGSIb3DQEBBQUAA4IBAQAvuusXY8/MsgLgHuep14ui -xZFJrwN3w8u0zGjfZqnZyxEG7vFeSNQKQvBOnj9Ox+YR9Oam88Vr+rDV2Ny9+QKw -3NhDXMR9mS+iBGQZDmJxMHZjj7UYTbZJQzWFVY0NcWOtEuNX7X7+n0+ve+Uup7rH -moEH2e2VgDAzQ3CiuUO89nggaML6DIWAhHyRvLaZ/kWPfceYJgY47CDT3tO3GsHE -FoJrH0DbRterDq0cAJlPjuee/n5H6Mz8g6BLZBEw6iKGKMHd6ydOG7OkWT68EDKL -/2BE8HQsZx69ruZwOasujI9/lra2mnN2gexiA7fa3R1PY5uymXYySqrbobdZtMw6 +MIIFgzCCBGugAwIBAgIRAODDoXSv98F97WAXkBET0wMwDQYJKoZIhvcNAQELBQAw +XzELMAkGA1UEBhMCRlIxDjAMBgNVBAgTBVBhcmlzMQ4wDAYDVQQHEwVQYXJpczEO +MAwGA1UEChMFR2FuZGkxIDAeBgNVBAMTF0dhbmRpIFN0YW5kYXJkIFNTTCBDQSAy +MB4XDTE1MDcxMzAwMDAwMFoXDTE2MDcyNzIzNTk1OVowXDEhMB8GA1UECxMYRG9t +YWluIENvbnRyb2wgVmFsaWRhdGVkMRswGQYDVQQLExJHYW5kaSBTdGFuZGFyZCBT +U0wxGjAYBgNVBAMTEXBlb3BsZS5kZWJpYW4ub3JnMIIBojANBgkqhkiG9w0BAQEF +AAOCAY8AMIIBigKCAYEAvtaE0x49yj0pojCjsleb0MHcMOuSodIwXZD5jK9zHql7 +y+fcw+kKTgs/1TxwyCidU0AXiu+uED1isNAiIrvuhjOZi/NX3EQvQwbgzRA0cWC1 +ZOGcbmblhvtbbGNYfFV4K6jtq1NgjkRRk2HPfdd9wOwwS8Fl56E1k1NlEEFO6kzh +h3JtIAcsU+yZ5X5CZKBi/5GTiasZHnsChC+8dDgDpmohEdC2uiSr7Gq0Z3Qzv5vJ +Z9xfc5quxB1Icp81nRONVARfPOJJMERpGW4SleUcmIYLVieGYrlbr0lIhhg71L6J +7PcwAiMX597RrS6kyX+diB/reS1u69ykd1e5HJ2VVkaWk9T64q150CLnUVnWvSm3 +cQ8vmDf/n14a6PxzCgmi/iYTHfgFVWbPusi+4CJLuNcoKlKKNAgzaITpzYhyEVHm +jPypAf+0lsPg6T0MRkgAhiV0JWB/MyALGhObzUaeyBlkwZfYfJ8smQQH+cAzsheO +qJid+K0Odj7gQGN6RT4vAgMBAAGjggG7MIIBtzAfBgNVHSMEGDAWgBSzkKfYya9O +zWE8n3ytXX9B/Wkw6jAdBgNVHQ4EFgQUjiLBtFNAo+kxgSPLyXdr+pvDXfswDgYD +VR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYBBQUHAwEG +CCsGAQUFBwMCMEsGA1UdIAREMEIwNgYLKwYBBAGyMQECAhowJzAlBggrBgEFBQcC +ARYZaHR0cHM6Ly9jcHMudXNlcnRydXN0LmNvbTAIBgZngQwBAgEwQQYDVR0fBDow +ODA2oDSgMoYwaHR0cDovL2NybC51c2VydHJ1c3QuY29tL0dhbmRpU3RhbmRhcmRT +U0xDQTIuY3JsMHMGCCsGAQUFBwEBBGcwZTA8BggrBgEFBQcwAoYwaHR0cDovL2Ny +dC51c2VydHJ1c3QuY29tL0dhbmRpU3RhbmRhcmRTU0xDQTIuY3J0MCUGCCsGAQUF +BzABhhlodHRwOi8vb2NzcC51c2VydHJ1c3QuY29tMDMGA1UdEQQsMCqCEXBlb3Bs +ZS5kZWJpYW4ub3JnghV3d3cucGVvcGxlLmRlYmlhbi5vcmcwDQYJKoZIhvcNAQEL +BQADggEBAJL+XcbAMq7Sstxwh4CPudnqrVKIdR+9m66d4XCj3glCfLncF/vXXPSN +W/G64HAJK64eWVzWeihtVNfAg5IK2RUluy3m6a8c/gDUdNxFu4/tCg4xPCb9quxS +8udtu1+jB3sYj4ESFjj777/9bplT3rrnyZLiMG2EQaJpqiS0TU0X6fGyul5RgfWe +L5XCLX8YlHF11odLU24CRQPqSU+gfx/cI2KoL4BmYqrjI38rqk9BYaetGxhhO4yP +DbolBql5q9+ACyb4VyuK1I546Q5J2TZb8sjOhAUmyUG4doRYoKzyZCJC5uFYV3LI +3ti4YnBgrynEb5PfxDIVBPQRD9cnV2k= -----END CERTIFICATE-----