From: Peter Palfrader Date: Wed, 17 Dec 2014 15:42:08 +0000 (+0100) Subject: new www cert X-Git-Url: https://git.adam-barratt.org.uk/?a=commitdiff_plain;h=9778751d316c833955b78c1ad8869f2c8187ef4a;p=mirror%2Fdsa-puppet.git new www cert --- diff --git a/modules/ssl/files/chains/www.debian.org.crt b/modules/ssl/files/chains/www.debian.org.crt index 6aaa9147c..50d224a83 120000 --- a/modules/ssl/files/chains/www.debian.org.crt +++ b/modules/ssl/files/chains/www.debian.org.crt @@ -1 +1 @@ -GANDI-CA \ No newline at end of file +GANDI-2-CA \ No newline at end of file diff --git a/modules/ssl/files/servicecerts/www.debian.org.crt b/modules/ssl/files/servicecerts/www.debian.org.crt index 2603bad91..36847c317 100644 --- a/modules/ssl/files/servicecerts/www.debian.org.crt +++ b/modules/ssl/files/servicecerts/www.debian.org.crt @@ -2,12 +2,12 @@ Certificate: Data: Version: 3 (0x2) Serial Number: - de:28:c6:a7:02:8c:11:d6:b7:50:d8:19:80:87:1d:ed - Signature Algorithm: sha1WithRSAEncryption - Issuer: C=FR, O=GANDI SAS, CN=Gandi Standard SSL CA + 1e:65:41:58:65:da:93:4f:0a:4c:b9:fc:d7:8b:65:4e + Signature Algorithm: sha256WithRSAEncryption + Issuer: C=FR, ST=Paris, L=Paris, O=Gandi, CN=Gandi Standard SSL CA 2 Validity - Not Before: Dec 31 00:00:00 2013 GMT - Not After : Dec 31 23:59:59 2014 GMT + Not Before: Dec 17 00:00:00 2014 GMT + Not After : Dec 31 23:59:59 2015 GMT Subject: OU=Domain Control Validated, OU=Gandi Standard SSL, CN=debian.org Subject Public Key Info: Public Key Algorithm: rsaEncryption @@ -42,7 +42,7 @@ Certificate: Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: - keyid:B6:A8:FF:A2:A8:2F:D0:A6:CD:4B:B1:68:F3:E7:50:10:31:A7:79:21 + keyid:B3:90:A7:D8:C9:AF:4E:CD:61:3C:9F:7C:AD:5D:7F:41:FD:69:30:EA X509v3 Subject Key Identifier: FE:E1:00:FF:AA:4F:A0:36:54:84:72:5D:42:0C:F4:E7:6F:BE:9F:D5 @@ -54,64 +54,65 @@ Certificate: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.26 - CPS: http://www.gandi.net/contracts/fr/ssl/cps/pdf/ + CPS: https://cps.usertrust.com Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: - URI:http://crl.gandi.net/GandiStandardSSLCA.crl + URI:http://crl.usertrust.com/GandiStandardSSLCA2.crl Authority Information Access: - CA Issuers - URI:http://crt.gandi.net/GandiStandardSSLCA.crt - OCSP - URI:http://ocsp.gandi.net + CA Issuers - URI:http://crt.usertrust.com/GandiStandardSSLCA2.crt + OCSP - URI:http://ocsp.usertrust.com X509v3 Subject Alternative Name: DNS:debian.org, DNS:www.debian.org - Signature Algorithm: sha1WithRSAEncryption - 24:ee:37:b4:a9:ca:a2:e2:05:3f:c3:fe:df:14:3f:ef:c2:6e: - 96:93:2f:bd:2e:6c:44:ee:18:bc:82:06:3d:de:4d:de:30:5c: - be:ca:36:5a:55:3a:e4:30:ac:30:5b:ad:bd:c4:33:f8:12:51: - 49:06:39:99:df:67:aa:f5:c3:75:28:d2:09:51:fd:12:fb:6d: - 2e:71:04:94:ed:3e:7e:73:54:af:43:fa:3f:d2:53:d9:b5:26: - 06:43:ea:47:5c:07:f4:31:5b:7f:26:4d:f3:1f:b3:49:9c:4c: - c5:35:63:f2:80:79:31:b9:3e:6d:d9:a9:4c:fe:62:2a:16:cf: - 3f:f3:5f:23:71:f9:7c:a7:6a:da:18:9a:3c:15:32:f7:61:a4: - ba:39:2a:8a:7b:ad:81:4d:8a:44:4d:55:68:91:bc:d6:8f:d5: - 90:5c:e7:ce:33:8e:24:f8:ee:2a:c8:ee:e3:90:c6:3d:54:3a: - 40:b1:4c:a3:63:52:2b:11:6e:1f:88:f1:a4:6b:00:7f:42:26: - ce:eb:41:9e:8d:32:04:cc:c2:7a:c2:2d:68:7c:65:c9:94:98: - 4b:19:1f:c5:cb:6e:56:3c:c6:bf:ec:9c:b4:88:06:41:f2:7d: - 6d:ae:05:02:24:f5:54:3f:37:d6:83:9e:eb:ee:3a:4c:0b:76: - 84:18:1b:44 + Signature Algorithm: sha256WithRSAEncryption + 8f:4a:e4:1c:c2:61:1b:45:b4:01:d1:3a:28:c2:e6:50:62:a0: + 1d:26:36:05:49:48:b6:c3:81:19:f0:95:8e:44:15:24:23:74: + 06:b2:5d:38:52:64:2e:cd:f5:12:3d:fb:34:75:2e:3a:10:a6: + 1a:d1:51:db:7f:2c:fb:ae:26:0b:11:de:76:14:3f:07:95:05: + bd:62:e9:3f:12:e2:f5:02:3f:5b:7e:80:be:57:af:f5:e6:51: + ac:7f:1a:98:c3:2c:87:b5:f3:f2:d8:4b:90:a3:1b:cc:2a:b1: + 1e:c7:92:00:70:18:eb:13:a1:36:03:39:8d:92:4d:c3:3b:0a: + 1c:46:c5:bb:7b:cc:96:0f:07:72:a0:3a:40:00:7e:13:7c:c3: + 56:85:fe:01:89:39:78:ce:80:c9:2d:35:2c:77:07:36:64:9f: + 6a:cb:0e:0b:32:4d:7d:87:92:c6:15:90:9b:e0:81:cf:6a:dc: + ae:a6:5c:18:c7:fc:60:f2:6e:c1:56:51:b4:2e:ae:27:35:1e: + 38:99:06:e9:48:1b:fe:94:dc:a3:de:68:e0:2c:25:26:28:50: + 11:2a:68:56:82:d6:40:fd:8a:c7:fc:c0:cb:8c:80:82:14:42: + a1:9b:0a:a2:ec:d4:2c:2e:d3:93:39:35:99:66:a3:83:b0:b6: + 18:3a:70:bf -----BEGIN CERTIFICATE----- -MIIFVzCCBD+gAwIBAgIRAN4oxqcCjBHWt1DYGYCHHe0wDQYJKoZIhvcNAQEFBQAw -QTELMAkGA1UEBhMCRlIxEjAQBgNVBAoTCUdBTkRJIFNBUzEeMBwGA1UEAxMVR2Fu -ZGkgU3RhbmRhcmQgU1NMIENBMB4XDTEzMTIzMTAwMDAwMFoXDTE0MTIzMTIzNTk1 -OVowVTEhMB8GA1UECxMYRG9tYWluIENvbnRyb2wgVmFsaWRhdGVkMRswGQYDVQQL -ExJHYW5kaSBTdGFuZGFyZCBTU0wxEzARBgNVBAMTCmRlYmlhbi5vcmcwggGiMA0G -CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDmZOW3mRShnQcv6RoO2ihuE42Dwofi -kBu9HxJMyhy2PQgNxYFvjeIBdnR9LQRuQb/1xY5Az8jtRrDI/1aLU7JQz1sHD1pO -tInP1Z7e26HJt0j/G4Jp75dkk6ucoFcDS8fhAMrbW4feQ3/ruEaPUocjEBdv8C68 -XD7mfYIkxx3A1DW2uzt0bN71jQeoZzU386OGVjy/BM75CSgESp2oCLF3gXpRkZAk -fi8raxG1z8bHo1eVAQAlTTVayAmKZ8U9D9u9BmV4ekX/y7CsFdDUt6BeRQnacTlO -bKPnG/dVG2InkTEwAj/RnLVThsDdHQUocsfMvtIJF3YrhTUY8wnbZ55VByE1avKW -MNKKj2rkeGrE/k6dA8YWSaXkLCIVVMBOI4L+NpaIfgFQy71P4lAbxfyTMmIlQHg/ -q2aX6NdRlocj+rYg/Arqa4t1x1oMZ0sy4ad0r/8dpn9+riMCZmyM8H9VAzBD6IXN -n9AAnqVKHH8fUgYuBbwM01FqC/tapqRdxzECAwEAAaOCAbQwggGwMB8GA1UdIwQY -MBaAFLao/6KoL9CmzUuxaPPnUBAxp3khMB0GA1UdDgQWBBT+4QD/qk+gNlSEcl1C -DPTnb76f1TAOBgNVHQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAU -BggrBgEFBQcDAQYIKwYBBQUHAwIwYAYDVR0gBFkwVzBLBgsrBgEEAbIxAQICGjA8 -MDoGCCsGAQUFBwIBFi5odHRwOi8vd3d3LmdhbmRpLm5ldC9jb250cmFjdHMvZnIv -c3NsL2Nwcy9wZGYvMAgGBmeBDAECATA8BgNVHR8ENTAzMDGgL6AthitodHRwOi8v -Y3JsLmdhbmRpLm5ldC9HYW5kaVN0YW5kYXJkU1NMQ0EuY3JsMGoGCCsGAQUFBwEB -BF4wXDA3BggrBgEFBQcwAoYraHR0cDovL2NydC5nYW5kaS5uZXQvR2FuZGlTdGFu -ZGFyZFNTTENBLmNydDAhBggrBgEFBQcwAYYVaHR0cDovL29jc3AuZ2FuZGkubmV0 -MCUGA1UdEQQeMByCCmRlYmlhbi5vcmeCDnd3dy5kZWJpYW4ub3JnMA0GCSqGSIb3 -DQEBBQUAA4IBAQAk7je0qcqi4gU/w/7fFD/vwm6Wky+9LmxE7hi8ggY93k3eMFy+ -yjZaVTrkMKwwW629xDP4ElFJBjmZ32eq9cN1KNIJUf0S+20ucQSU7T5+c1SvQ/o/ -0lPZtSYGQ+pHXAf0MVt/Jk3zH7NJnEzFNWPygHkxuT5t2alM/mIqFs8/818jcfl8 -p2raGJo8FTL3YaS6OSqKe62BTYpETVVokbzWj9WQXOfOM44k+O4qyO7jkMY9VDpA -sUyjY1IrEW4fiPGkawB/QibO60GejTIEzMJ6wi1ofGXJlJhLGR/Fy25WPMa/7Jy0 -iAZB8n1trgUCJPVUPzfWg57r7jpMC3aEGBtE +MIIFbTCCBFWgAwIBAgIQHmVBWGXak08KTLn814tlTjANBgkqhkiG9w0BAQsFADBf +MQswCQYDVQQGEwJGUjEOMAwGA1UECBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4w +DAYDVQQKEwVHYW5kaTEgMB4GA1UEAxMXR2FuZGkgU3RhbmRhcmQgU1NMIENBIDIw +HhcNMTQxMjE3MDAwMDAwWhcNMTUxMjMxMjM1OTU5WjBVMSEwHwYDVQQLExhEb21h +aW4gQ29udHJvbCBWYWxpZGF0ZWQxGzAZBgNVBAsTEkdhbmRpIFN0YW5kYXJkIFNT +TDETMBEGA1UEAxMKZGViaWFuLm9yZzCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCC +AYoCggGBAOZk5beZFKGdBy/pGg7aKG4TjYPCh+KQG70fEkzKHLY9CA3FgW+N4gF2 +dH0tBG5Bv/XFjkDPyO1GsMj/VotTslDPWwcPWk60ic/Vnt7bocm3SP8bgmnvl2ST +q5ygVwNLx+EAyttbh95Df+u4Ro9ShyMQF2/wLrxcPuZ9giTHHcDUNba7O3Rs3vWN +B6hnNTfzo4ZWPL8EzvkJKARKnagIsXeBelGRkCR+LytrEbXPxsejV5UBACVNNVrI +CYpnxT0P270GZXh6Rf/LsKwV0NS3oF5FCdpxOU5so+cb91UbYieRMTACP9GctVOG +wN0dBShyx8y+0gkXdiuFNRjzCdtnnlUHITVq8pYw0oqPauR4asT+Tp0DxhZJpeQs +IhVUwE4jgv42loh+AVDLvU/iUBvF/JMyYiVAeD+rZpfo11GWhyP6tiD8Cupri3XH +WgxnSzLhp3Sv/x2mf36uIwJmbIzwf1UDMEPohc2f0ACepUocfx9SBi4FvAzTUWoL ++1qmpF3HMQIDAQABo4IBrTCCAakwHwYDVR0jBBgwFoAUs5Cn2MmvTs1hPJ98rV1/ +Qf1pMOowHQYDVR0OBBYEFP7hAP+qT6A2VIRyXUIM9Odvvp/VMA4GA1UdDwEB/wQE +AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD +AjBLBgNVHSAERDBCMDYGCysGAQQBsjEBAgIaMCcwJQYIKwYBBQUHAgEWGWh0dHBz +Oi8vY3BzLnVzZXJ0cnVzdC5jb20wCAYGZ4EMAQIBMEEGA1UdHwQ6MDgwNqA0oDKG +MGh0dHA6Ly9jcmwudXNlcnRydXN0LmNvbS9HYW5kaVN0YW5kYXJkU1NMQ0EyLmNy +bDBzBggrBgEFBQcBAQRnMGUwPAYIKwYBBQUHMAKGMGh0dHA6Ly9jcnQudXNlcnRy +dXN0LmNvbS9HYW5kaVN0YW5kYXJkU1NMQ0EyLmNydDAlBggrBgEFBQcwAYYZaHR0 +cDovL29jc3AudXNlcnRydXN0LmNvbTAlBgNVHREEHjAcggpkZWJpYW4ub3Jngg53 +d3cuZGViaWFuLm9yZzANBgkqhkiG9w0BAQsFAAOCAQEAj0rkHMJhG0W0AdE6KMLm +UGKgHSY2BUlItsOBGfCVjkQVJCN0BrJdOFJkLs31Ej37NHUuOhCmGtFR238s+64m +CxHedhQ/B5UFvWLpPxLi9QI/W36Avlev9eZRrH8amMMsh7Xz8thLkKMbzCqxHseS +AHAY6xOhNgM5jZJNwzsKHEbFu3vMlg8HcqA6QAB+E3zDVoX+AYk5eM6AyS01LHcH +NmSfassOCzJNfYeSxhWQm+CBz2rcrqZcGMf8YPJuwVZRtC6uJzUeOJkG6Ugb/pTc +o95o4CwlJihQESpoVoLWQP2Kx/zAy4yAghRCoZsKouzULC7Tkzk1mWajg7C2GDpw +vw== -----END CERTIFICATE-----