Ms User Certificate

This certificate example is part of the Sample Certificates collection.

Description

A certificate that allows the user to encrypt files, protect e-mail and authenticate against a webserver.

Openssl X509 Output

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            61:0b:23:90:00:00:00:00:00:03
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: DC=local, DC=Company, CN=EnterpriseTestCAv1
        Validity
            Not Before: Feb 11 14:49:58 2008 GMT
            Not After : Feb 10 14:49:58 2009 GMT
        Subject: DC=local, DC=Company, CN=Users, CN=Administrator
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
            RSA Public Key: (1024 bit)
                Modulus (1024 bit):
                    00:89:8b:13:78:fe:e3:c9:72:e4:c0:32:2f:c7:78:
                    98:6e:0c:88:bc:0d:cf:5e:fc:16:18:c0:eb:01:3c:
                    fc:bf:53:44:e4:cf:88:b2:38:de:3a:ce:d0:46:a2:
                    d6:20:11:b8:f4:3f:4f:1d:eb:00:35:73:dc:33:36:
                    f2:bf:f5:25:07:6d:8e:de:ae:f5:37:fa:f9:79:e1:
                    c1:59:ba:36:83:6a:76:55:a8:d5:a4:79:d8:8e:77:
                    a4:81:3a:17:4e:db:3d:a0:ca:28:e8:1e:e6:61:dd:
                    30:34:a4:d7:2d:5a:e9:6a:a0:5d:1c:90:b9:8c:97:
                    b1:36:3d:e1:eb:28:48:7a:bf
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: 
                Digital Signature, Key Encipherment
            S/MIME Capabilities: 
                0'0
..*.H..
....80
..*.H..
....80...+....
            X509v3 Subject Key Identifier: 
                F2:65:01:75:4A:09:03:7C:5A:90:76:74:C9:C0:68:CD:C2:11:79:D7
            1.3.6.1.4.1.311.20.2: 
                ...U.s.e.r
            X509v3 Authority Key Identifier: 
                keyid:C7:E8:5F:B9:D3:AC:7D:F9:C6:EB:80:26:2C:47:34:75:7F:B8:2C:08

            X509v3 CRL Distribution Points: 
                URI:ldap:///CN=EnterpriseTestCAv1,CN=company-1,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=Company,DC=local?certificateRevocationList?base?objectClass=cRLDistributionPoint
                URI:http://company-1.company.local/CertEnroll/EnterpriseTestCAv1.crl

            Authority Information Access: 
                CA Issuers - URI:ldap:///CN=EnterpriseTestCAv1,CN=AIA,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=Company,DC=local?cACertificate?base?objectClass=certificationAuthority
                CA Issuers - URI:http://company-1.company.local/CertEnroll/company-1.Company.local_EnterpriseTestCAv1.crt

            X509v3 Extended Key Usage: 
                Microsoft Encrypted File System, E-mail Protection, TLS Web Client Authentication
            X509v3 Subject Alternative Name: 
                othername:<unsupported>
    Signature Algorithm: sha1WithRSAEncryption
        5c:0f:27:34:ef:3f:af:10:96:f4:53:7d:ca:d9:cb:76:d4:85:
        7d:28:bb:32:a1:e9:6f:c0:28:dc:a4:6f:0b:86:f1:3b:b9:af:
        9d:4a:a1:db:71:df:8f:73:55:dd:d7:51:28:47:e9:8a:53:82:
        cc:43:5b:7f:17:f7:b9:c0:8d:8d:88:f1:48:ba:8b:9c:da:cb:
        2d:30:61:8e:70:36:b8:c7:44:e3:03:4b:41:5b:b3:9d:20:f8:
        26:20:6a:81:47:65:5c:97:ce:ff:f6:ad:1c:7f:a3:ae:0f:df:
        d2:7f:27:34:02:b0:14:d2:65:1b:e7:19:e5:6a:ca:60:48:7c:
        43:4b:0e:8c:fd:8d:48:c7:87:57:9d:93:5d:06:be:db:49:25:
        6e:27:ed:64:fa:18:95:44:cd:80:3b:30:7b:44:15:c1:f1:71:
        6e:99:40:2c:17:e8:4c:b6:88:19:2d:07:ea:86:b2:d8:0f:82:
        89:c5:73:e0:d2:b1:b2:af:4f:fc:6e:85:b3:ac:23:90:cb:e2:
        c4:2e:34:fa:45:0b:94:4f:be:1a:5c:13:65:aa:6a:b8:20:af:
        22:5b:21:3b:e9:78:d5:d5:ca:a6:15:03:10:dd:29:5f:0c:69:
        7e:82:7f:32:b1:fe:c5:2b:bb:ef:83:08:a0:62:e5:29:98:fe:
        3c:b5:4c:24

DumpASN1 Output

0 1533: SEQUENCE {
   4 1253:   SEQUENCE {
   8    3:     [0] {
  10    1:       INTEGER 2
         :       }
  13   10:     INTEGER 61 0B 23 90 00 00 00 00 00 03
  25   13:     SEQUENCE {
  27    9:       OBJECT IDENTIFIER sha1withRSAEncryption (1 2 840 113549 1 1 5)
  38    0:       NULL
         :       }
  40   77:     SEQUENCE {
  42   21:       SET {
  44   19:         SEQUENCE {
  46   10:           OBJECT IDENTIFIER
         :             domainComponent (0 9 2342 19200300 100 1 25)
  58    5:           IA5String 'local'
         :           }
         :         }
  65   23:       SET {
  67   21:         SEQUENCE {
  69   10:           OBJECT IDENTIFIER
         :             domainComponent (0 9 2342 19200300 100 1 25)
  81    7:           IA5String 'Company'
         :           }
         :         }
  90   27:       SET {
  92   25:         SEQUENCE {
  94    3:           OBJECT IDENTIFIER commonName (2 5 4 3)
  99   18:           PrintableString 'EnterpriseTestCAv1'
         :           }
         :         }
         :       }
 119   30:     SEQUENCE {
 121   13:       UTCTime 11/02/2008 14:49:58 GMT
 136   13:       UTCTime 10/02/2009 14:49:58 GMT
         :       }
 151   88:     SEQUENCE {
 153   21:       SET {
 155   19:         SEQUENCE {
 157   10:           OBJECT IDENTIFIER
         :             domainComponent (0 9 2342 19200300 100 1 25)
 169    5:           IA5String 'local'
         :           }
         :         }
 176   23:       SET {
 178   21:         SEQUENCE {
 180   10:           OBJECT IDENTIFIER
         :             domainComponent (0 9 2342 19200300 100 1 25)
 192    7:           IA5String 'Company'
         :           }
         :         }
 201   14:       SET {
 203   12:         SEQUENCE {
 205    3:           OBJECT IDENTIFIER commonName (2 5 4 3)
 210    5:           PrintableString 'Users'
         :           }
         :         }
 217   22:       SET {
 219   20:         SEQUENCE {
 221    3:           OBJECT IDENTIFIER commonName (2 5 4 3)
 226   13:           PrintableString 'Administrator'
         :           }
         :         }
         :       }
 241  159:     SEQUENCE {
 244   13:       SEQUENCE {
 246    9:         OBJECT IDENTIFIER rsaEncryption (1 2 840 113549 1 1 1)
 257    0:         NULL
         :         }
 259  141:       BIT STRING, encapsulates {
 263  137:         SEQUENCE {
 266  129:           INTEGER
         :             00 89 8B 13 78 FE E3 C9 72 E4 C0 32 2F C7 78 98
         :             6E 0C 88 BC 0D CF 5E FC 16 18 C0 EB 01 3C FC BF
         :             53 44 E4 CF 88 B2 38 DE 3A CE D0 46 A2 D6 20 11
         :             B8 F4 3F 4F 1D EB 00 35 73 DC 33 36 F2 BF F5 25
         :             07 6D 8E DE AE F5 37 FA F9 79 E1 C1 59 BA 36 83
         :             6A 76 55 A8 D5 A4 79 D8 8E 77 A4 81 3A 17 4E DB
         :             3D A0 CA 28 E8 1E E6 61 DD 30 34 A4 D7 2D 5A E9
         :             6A A0 5D 1C 90 B9 8C 97 B1 36 3D E1 EB 28 48 7A
         :                     [ Another 1 bytes skipped ]
 398    3:           INTEGER 65537
         :           }
         :         }
         :       }
 403  854:     [3] {
 407  850:       SEQUENCE {
 411   11:         SEQUENCE {
 413    3:           OBJECT IDENTIFIER keyUsage (2 5 29 15)
 418    4:           OCTET STRING, encapsulates {
 420    2:             BIT STRING 5 unused bits
         :               '101'B
         :             }
         :           }
 424   54:         SEQUENCE {
 426    9:           OBJECT IDENTIFIER
         :             sMIMECapabilities (1 2 840 113549 1 9 15)
 437   41:           OCTET STRING, encapsulates {
 439   39:             SEQUENCE {
 441   13:               SEQUENCE {
 443    8:                 OBJECT IDENTIFIER rc2CBC (1 2 840 113549 3 2)
 453    1:                 INTEGER 56
         :                 }
 456   13:               SEQUENCE {
 458    8:                 OBJECT IDENTIFIER rc4 (1 2 840 113549 3 4)
 468    1:                 INTEGER 56
         :                 }
 471    7:               SEQUENCE {
 473    5:                 OBJECT IDENTIFIER desCBC (1 3 14 3 2 7)
         :                 }
         :               }
         :             }
         :           }
 480   29:         SEQUENCE {
 482    3:           OBJECT IDENTIFIER subjectKeyIdentifier (2 5 29 14)
 487   22:           OCTET STRING, encapsulates {
 489   20:             OCTET STRING
         :               F2 65 01 75 4A 09 03 7C 5A 90 76 74 C9 C0 68 CD
         :               C2 11 79 D7
         :             }
         :           }
 511   23:         SEQUENCE {
 513    9:           OBJECT IDENTIFIER '1 3 6 1 4 1 311 20 2'
 524   10:           OCTET STRING, encapsulates {
 526    8:             BMPString ''
         :             }
         :           }
 536   31:         SEQUENCE {
 538    3:           OBJECT IDENTIFIER authorityKeyIdentifier (2 5 29 35)
 543   24:           OCTET STRING, encapsulates {
 545   22:             SEQUENCE {
 547   20:               [0]
         :                 C7 E8 5F B9 D3 AC 7D F9 C6 EB 80 26 2C 47 34 75
         :                 7F B8 2C 08
         :               }
         :             }
         :           }
 569  283:         SEQUENCE {
 573    3:           OBJECT IDENTIFIER cRLDistributionPoints (2 5 29 31)
 578  274:           OCTET STRING, encapsulates {
 582  270:             SEQUENCE {
 586  266:               SEQUENCE {
 590  262:                 [0] {
 594  258:                   [0] {
 598  189:                     [6]
         :                   'ldap:///CN=EnterpriseTestCAv1,CN=company-1,CN=CD'
         :                   'P,CN=Public%20Key%20Services,CN=Services,CN=Conf'
         :                   'iguration,DC=Company,DC=local?certificateRevocat'
         :                   'ionList?base?objectClass=cRLDistributionPoint'
 790   64:                     [6]
         :                   'http://company-1.company.local/CertEnroll/Enterp'
         :                   'riseTestCAv1.crl'
         :                     }
         :                   }
         :                 }
         :               }
         :             }
         :           }
 856  302:         SEQUENCE {
 860    8:           OBJECT IDENTIFIER authorityInfoAccess (1 3 6 1 5 5 7 1 1)
 870  288:           OCTET STRING, encapsulates {
 874  284:             SEQUENCE {
 878  179:               SEQUENCE {
 881    8:                 OBJECT IDENTIFIER caIssuers (1 3 6 1 5 5 7 48 2)
 891  166:                 [6]
         :                   'ldap:///CN=EnterpriseTestCAv1,CN=AIA,CN=Public%2'
         :                   '0Key%20Services,CN=Services,CN=Configuration,DC='
         :                   'Company,DC=local?cACertificate?base?objectClass='
         :                   'certificationAuthority'
         :                 }
1060  100:               SEQUENCE {
1062    8:                 OBJECT IDENTIFIER caIssuers (1 3 6 1 5 5 7 48 2)
1072   88:                 [6]
         :                   'http://company-1.company.local/CertEnroll/compan'
         :                   'y-1.Company.local_EnterpriseTestCAv1.crt'
         :                 }
         :               }
         :             }
         :           }
1162   41:         SEQUENCE {
1164    3:           OBJECT IDENTIFIER extKeyUsage (2 5 29 37)
1169   34:           OCTET STRING, encapsulates {
1171   32:             SEQUENCE {
1173   10:               OBJECT IDENTIFIER
         :                 encryptedFileSystem (1 3 6 1 4 1 311 10 3 4)
1185    8:               OBJECT IDENTIFIER emailProtection (1 3 6 1 5 5 7 3 4)
1195    8:               OBJECT IDENTIFIER clientAuth (1 3 6 1 5 5 7 3 2)
         :               }
         :             }
         :           }
1205   54:         SEQUENCE {
1207    3:           OBJECT IDENTIFIER subjectAltName (2 5 29 17)
1212   47:           OCTET STRING, encapsulates {
1214   45:             SEQUENCE {
1216   43:               [0] {
1218   10:                 OBJECT IDENTIFIER '1 3 6 1 4 1 311 20 2 3'
1230   29:                 [0] {
1232   27:                   UTF8String 'Administrator@Company.local'
         :                   }
         :                 }
         :               }
         :             }
         :           }
         :         }
         :       }
         :     }
1261   13:   SEQUENCE {
1263    9:     OBJECT IDENTIFIER sha1withRSAEncryption (1 2 840 113549 1 1 5)
1274    0:     NULL
         :     }
1276  257:   BIT STRING
         :     5C 0F 27 34 EF 3F AF 10 96 F4 53 7D CA D9 CB 76
         :     D4 85 7D 28 BB 32 A1 E9 6F C0 28 DC A4 6F 0B 86
         :     F1 3B B9 AF 9D 4A A1 DB 71 DF 8F 73 55 DD D7 51
         :     28 47 E9 8A 53 82 CC 43 5B 7F 17 F7 B9 C0 8D 8D
         :     88 F1 48 BA 8B 9C DA CB 2D 30 61 8E 70 36 B8 C7
         :     44 E3 03 4B 41 5B B3 9D 20 F8 26 20 6A 81 47 65
         :     5C 97 CE FF F6 AD 1C 7F A3 AE 0F DF D2 7F 27 34
         :     02 B0 14 D2 65 1B E7 19 E5 6A CA 60 48 7C 43 4B
         :             [ Another 128 bytes skipped ]
         :   }

PEM

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
page_revision: 1, last_edited: 1202809850|%e %b %Y, %H:%M %Z (%O ago)
Unless stated otherwise Content of this page is licensed under Creative Commons Attribution-ShareAlike 3.0 License