Page Menu
Home
FreeBSD
Search
Configure Global Search
Log In
Files
F146153922
D52158.1779354713.diff
No One
Temporary
Actions
View File
Edit File
Delete File
View Transforms
Subscribe
Flag For Later
Award Token
Size
237 KB
Referenced Files
None
Subscribers
None
D52158.1779354713.diff
View Options
diff --git a/ObsoleteFiles.inc b/ObsoleteFiles.inc
--- a/ObsoleteFiles.inc
+++ b/ObsoleteFiles.inc
@@ -51,6 +51,16 @@
# xargs -n1 | sort | uniq -d;
# done
+# 20250827: Expired certificates
+OLD_FILES+=usr/share/certs/trusted/Baltimore_CyberTrust_Root.pem
+OLD_FILES+=usr/share/certs/trusted/Comodo_AAA_Services_root.pem
+OLD_FILES+=usr/share/certs/trusted/Entrust_net_Premium_2048_Secure_Server_CA.pem
+OLD_FILES+=usr/share/certs/trusted/GLOBALTRUST_2020.pem
+OLD_FILES+=usr/share/certs/trusted/GlobalSign_Root_CA.pem
+OLD_FILES+=usr/share/certs/trusted/Go_Daddy_Class_2_CA.pem
+OLD_FILES+=usr/share/certs/trusted/Starfield_Class_2_CA.pem
+OLD_FILES+=usr/share/certs/trusted/XRamp_Global_CA_Root.pem
+
# 20250826: Remove a misspelled manual
OLD_FILES+=usr/share/man/man3/sysdecode_syscallnames.3.gz
diff --git a/secure/caroot/trusted/ACCVRAIZ1.pem b/secure/caroot/trusted/ACCVRAIZ1.pem
--- a/secure/caroot/trusted/ACCVRAIZ1.pem
+++ b/secure/caroot/trusted/ACCVRAIZ1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/AC_RAIZ_FNMT-RCM.pem b/secure/caroot/trusted/AC_RAIZ_FNMT-RCM.pem
--- a/secure/caroot/trusted/AC_RAIZ_FNMT-RCM.pem
+++ b/secure/caroot/trusted/AC_RAIZ_FNMT-RCM.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/AC_RAIZ_FNMT-RCM_SERVIDORES_SEGUROS.pem b/secure/caroot/trusted/AC_RAIZ_FNMT-RCM_SERVIDORES_SEGUROS.pem
--- a/secure/caroot/trusted/AC_RAIZ_FNMT-RCM_SERVIDORES_SEGUROS.pem
+++ b/secure/caroot/trusted/AC_RAIZ_FNMT-RCM_SERVIDORES_SEGUROS.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/ANF_Secure_Server_Root_CA.pem b/secure/caroot/trusted/ANF_Secure_Server_Root_CA.pem
--- a/secure/caroot/trusted/ANF_Secure_Server_Root_CA.pem
+++ b/secure/caroot/trusted/ANF_Secure_Server_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Actalis_Authentication_Root_CA.pem b/secure/caroot/trusted/Actalis_Authentication_Root_CA.pem
--- a/secure/caroot/trusted/Actalis_Authentication_Root_CA.pem
+++ b/secure/caroot/trusted/Actalis_Authentication_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/AffirmTrust_Commercial.pem b/secure/caroot/trusted/AffirmTrust_Commercial.pem
--- a/secure/caroot/trusted/AffirmTrust_Commercial.pem
+++ b/secure/caroot/trusted/AffirmTrust_Commercial.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/AffirmTrust_Networking.pem b/secure/caroot/trusted/AffirmTrust_Networking.pem
--- a/secure/caroot/trusted/AffirmTrust_Networking.pem
+++ b/secure/caroot/trusted/AffirmTrust_Networking.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/AffirmTrust_Premium.pem b/secure/caroot/trusted/AffirmTrust_Premium.pem
--- a/secure/caroot/trusted/AffirmTrust_Premium.pem
+++ b/secure/caroot/trusted/AffirmTrust_Premium.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/AffirmTrust_Premium_ECC.pem b/secure/caroot/trusted/AffirmTrust_Premium_ECC.pem
--- a/secure/caroot/trusted/AffirmTrust_Premium_ECC.pem
+++ b/secure/caroot/trusted/AffirmTrust_Premium_ECC.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Amazon_Root_CA_1.pem b/secure/caroot/trusted/Amazon_Root_CA_1.pem
--- a/secure/caroot/trusted/Amazon_Root_CA_1.pem
+++ b/secure/caroot/trusted/Amazon_Root_CA_1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Amazon_Root_CA_2.pem b/secure/caroot/trusted/Amazon_Root_CA_2.pem
--- a/secure/caroot/trusted/Amazon_Root_CA_2.pem
+++ b/secure/caroot/trusted/Amazon_Root_CA_2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Amazon_Root_CA_3.pem b/secure/caroot/trusted/Amazon_Root_CA_3.pem
--- a/secure/caroot/trusted/Amazon_Root_CA_3.pem
+++ b/secure/caroot/trusted/Amazon_Root_CA_3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Amazon_Root_CA_4.pem b/secure/caroot/trusted/Amazon_Root_CA_4.pem
--- a/secure/caroot/trusted/Amazon_Root_CA_4.pem
+++ b/secure/caroot/trusted/Amazon_Root_CA_4.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Atos_TrustedRoot_2011.pem b/secure/caroot/trusted/Atos_TrustedRoot_2011.pem
--- a/secure/caroot/trusted/Atos_TrustedRoot_2011.pem
+++ b/secure/caroot/trusted/Atos_TrustedRoot_2011.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_ECC_TLS_2021.pem b/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_ECC_TLS_2021.pem
--- a/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_ECC_TLS_2021.pem
+++ b/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_ECC_TLS_2021.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_RSA_TLS_2021.pem b/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_RSA_TLS_2021.pem
--- a/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_RSA_TLS_2021.pem
+++ b/secure/caroot/trusted/Atos_TrustedRoot_Root_CA_RSA_TLS_2021.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.pem b/secure/caroot/trusted/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.pem
--- a/secure/caroot/trusted/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.pem
+++ b/secure/caroot/trusted/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/BJCA_Global_Root_CA1.pem b/secure/caroot/trusted/BJCA_Global_Root_CA1.pem
--- a/secure/caroot/trusted/BJCA_Global_Root_CA1.pem
+++ b/secure/caroot/trusted/BJCA_Global_Root_CA1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/BJCA_Global_Root_CA2.pem b/secure/caroot/trusted/BJCA_Global_Root_CA2.pem
--- a/secure/caroot/trusted/BJCA_Global_Root_CA2.pem
+++ b/secure/caroot/trusted/BJCA_Global_Root_CA2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Baltimore_CyberTrust_Root.pem b/secure/caroot/trusted/Baltimore_CyberTrust_Root.pem
deleted file mode 100644
--- a/secure/caroot/trusted/Baltimore_CyberTrust_Root.pem
+++ /dev/null
@@ -1,92 +0,0 @@
-##
-## Baltimore CyberTrust Root
-##
-## This is a single X.509 certificate for a public Certificate
-## Authority (CA). It was automatically extracted from Mozilla's
-## root CA list (the file `certdata.txt' in security/nss).
-##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
-## @generated
-##
-Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number: 33554617 (0x20000b9)
- Signature Algorithm: sha1WithRSAEncryption
- Issuer: C = IE, O = Baltimore, OU = CyberTrust, CN = Baltimore CyberTrust Root
- Validity
- Not Before: May 12 18:46:00 2000 GMT
- Not After : May 12 23:59:00 2025 GMT
- Subject: C = IE, O = Baltimore, OU = CyberTrust, CN = Baltimore CyberTrust Root
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- Public-Key: (2048 bit)
- Modulus:
- 00:a3:04:bb:22:ab:98:3d:57:e8:26:72:9a:b5:79:
- d4:29:e2:e1:e8:95:80:b1:b0:e3:5b:8e:2b:29:9a:
- 64:df:a1:5d:ed:b0:09:05:6d:db:28:2e:ce:62:a2:
- 62:fe:b4:88:da:12:eb:38:eb:21:9d:c0:41:2b:01:
- 52:7b:88:77:d3:1c:8f:c7:ba:b9:88:b5:6a:09:e7:
- 73:e8:11:40:a7:d1:cc:ca:62:8d:2d:e5:8f:0b:a6:
- 50:d2:a8:50:c3:28:ea:f5:ab:25:87:8a:9a:96:1c:
- a9:67:b8:3f:0c:d5:f7:f9:52:13:2f:c2:1b:d5:70:
- 70:f0:8f:c0:12:ca:06:cb:9a:e1:d9:ca:33:7a:77:
- d6:f8:ec:b9:f1:68:44:42:48:13:d2:c0:c2:a4:ae:
- 5e:60:fe:b6:a6:05:fc:b4:dd:07:59:02:d4:59:18:
- 98:63:f5:a5:63:e0:90:0c:7d:5d:b2:06:7a:f3:85:
- ea:eb:d4:03:ae:5e:84:3e:5f:ff:15:ed:69:bc:f9:
- 39:36:72:75:cf:77:52:4d:f3:c9:90:2c:b9:3d:e5:
- c9:23:53:3f:1f:24:98:21:5c:07:99:29:bd:c6:3a:
- ec:e7:6e:86:3a:6b:97:74:63:33:bd:68:18:31:f0:
- 78:8d:76:bf:fc:9e:8e:5d:2a:86:a7:4d:90:dc:27:
- 1a:39
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Subject Key Identifier:
- E5:9D:59:30:82:47:58:CC:AC:FA:08:54:36:86:7B:3A:B5:04:4D:F0
- X509v3 Basic Constraints: critical
- CA:TRUE, pathlen:3
- X509v3 Key Usage: critical
- Certificate Sign, CRL Sign
- Signature Algorithm: sha1WithRSAEncryption
- Signature Value:
- 85:0c:5d:8e:e4:6f:51:68:42:05:a0:dd:bb:4f:27:25:84:03:
- bd:f7:64:fd:2d:d7:30:e3:a4:10:17:eb:da:29:29:b6:79:3f:
- 76:f6:19:13:23:b8:10:0a:f9:58:a4:d4:61:70:bd:04:61:6a:
- 12:8a:17:d5:0a:bd:c5:bc:30:7c:d6:e9:0c:25:8d:86:40:4f:
- ec:cc:a3:7e:38:c6:37:11:4f:ed:dd:68:31:8e:4c:d2:b3:01:
- 74:ee:be:75:5e:07:48:1a:7f:70:ff:16:5c:84:c0:79:85:b8:
- 05:fd:7f:be:65:11:a3:0f:c0:02:b4:f8:52:37:39:04:d5:a9:
- 31:7a:18:bf:a0:2a:f4:12:99:f7:a3:45:82:e3:3c:5e:f5:9d:
- 9e:b5:c8:9e:7c:2e:c8:a4:9e:4e:08:14:4b:6d:fd:70:6d:6b:
- 1a:63:bd:64:e6:1f:b7:ce:f0:f2:9f:2e:bb:1b:b7:f2:50:88:
- 73:92:c2:e2:e3:16:8d:9a:32:02:ab:8e:18:dd:e9:10:11:ee:
- 7e:35:ab:90:af:3e:30:94:7a:d0:33:3d:a7:65:0f:f5:fc:8e:
- 9e:62:cf:47:44:2c:01:5d:bb:1d:b5:32:d2:47:d2:38:2e:d0:
- fe:81:dc:32:6a:1e:b5:ee:3c:d5:fc:e7:81:1d:19:c3:24:42:
- ea:63:39:a9
-SHA1 Fingerprint=D4:DE:20:D0:5E:66:FC:53:FE:1A:50:88:2C:78:DB:28:52:CA:E4:74
------BEGIN CERTIFICATE-----
-MIIDdzCCAl+gAwIBAgIEAgAAuTANBgkqhkiG9w0BAQUFADBaMQswCQYDVQQGEwJJ
-RTESMBAGA1UEChMJQmFsdGltb3JlMRMwEQYDVQQLEwpDeWJlclRydXN0MSIwIAYD
-VQQDExlCYWx0aW1vcmUgQ3liZXJUcnVzdCBSb290MB4XDTAwMDUxMjE4NDYwMFoX
-DTI1MDUxMjIzNTkwMFowWjELMAkGA1UEBhMCSUUxEjAQBgNVBAoTCUJhbHRpbW9y
-ZTETMBEGA1UECxMKQ3liZXJUcnVzdDEiMCAGA1UEAxMZQmFsdGltb3JlIEN5YmVy
-VHJ1c3QgUm9vdDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKMEuyKr
-mD1X6CZymrV51Cni4eiVgLGw41uOKymaZN+hXe2wCQVt2yguzmKiYv60iNoS6zjr
-IZ3AQSsBUnuId9Mcj8e6uYi1agnnc+gRQKfRzMpijS3ljwumUNKoUMMo6vWrJYeK
-mpYcqWe4PwzV9/lSEy/CG9VwcPCPwBLKBsua4dnKM3p31vjsufFoREJIE9LAwqSu
-XmD+tqYF/LTdB1kC1FkYmGP1pWPgkAx9XbIGevOF6uvUA65ehD5f/xXtabz5OTZy
-dc93Uk3zyZAsuT3lySNTPx8kmCFcB5kpvcY67Oduhjprl3RjM71oGDHweI12v/ye
-jl0qhqdNkNwnGjkCAwEAAaNFMEMwHQYDVR0OBBYEFOWdWTCCR1jMrPoIVDaGezq1
-BE3wMBIGA1UdEwEB/wQIMAYBAf8CAQMwDgYDVR0PAQH/BAQDAgEGMA0GCSqGSIb3
-DQEBBQUAA4IBAQCFDF2O5G9RaEIFoN27TyclhAO992T9Ldcw46QQF+vaKSm2eT92
-9hkTI7gQCvlYpNRhcL0EYWoSihfVCr3FvDB81ukMJY2GQE/szKN+OMY3EU/t3Wgx
-jkzSswF07r51XgdIGn9w/xZchMB5hbgF/X++ZRGjD8ACtPhSNzkE1akxehi/oCr0
-Epn3o0WC4zxe9Z2etciefC7IpJ5OCBRLbf1wbWsaY71k5h+3zvDyny67G7fyUIhz
-ksLi4xaNmjICq44Y3ekQEe5+NauQrz4wlHrQMz2nZQ/1/I6eYs9HRCwBXbsdtTLS
-R9I4LtD+gdwyah617jzV/OeBHRnDJELqYzmp
------END CERTIFICATE-----
diff --git a/secure/caroot/trusted/Buypass_Class_2_Root_CA.pem b/secure/caroot/trusted/Buypass_Class_2_Root_CA.pem
--- a/secure/caroot/trusted/Buypass_Class_2_Root_CA.pem
+++ b/secure/caroot/trusted/Buypass_Class_2_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Buypass_Class_3_Root_CA.pem b/secure/caroot/trusted/Buypass_Class_3_Root_CA.pem
--- a/secure/caroot/trusted/Buypass_Class_3_Root_CA.pem
+++ b/secure/caroot/trusted/Buypass_Class_3_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/CA_Disig_Root_R2.pem b/secure/caroot/trusted/CA_Disig_Root_R2.pem
--- a/secure/caroot/trusted/CA_Disig_Root_R2.pem
+++ b/secure/caroot/trusted/CA_Disig_Root_R2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/CFCA_EV_ROOT.pem b/secure/caroot/trusted/CFCA_EV_ROOT.pem
--- a/secure/caroot/trusted/CFCA_EV_ROOT.pem
+++ b/secure/caroot/trusted/CFCA_EV_ROOT.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/COMODO_Certification_Authority.pem b/secure/caroot/trusted/COMODO_Certification_Authority.pem
--- a/secure/caroot/trusted/COMODO_Certification_Authority.pem
+++ b/secure/caroot/trusted/COMODO_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/COMODO_ECC_Certification_Authority.pem b/secure/caroot/trusted/COMODO_ECC_Certification_Authority.pem
--- a/secure/caroot/trusted/COMODO_ECC_Certification_Authority.pem
+++ b/secure/caroot/trusted/COMODO_ECC_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/COMODO_RSA_Certification_Authority.pem b/secure/caroot/trusted/COMODO_RSA_Certification_Authority.pem
--- a/secure/caroot/trusted/COMODO_RSA_Certification_Authority.pem
+++ b/secure/caroot/trusted/COMODO_RSA_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certainly_Root_E1.pem b/secure/caroot/trusted/Certainly_Root_E1.pem
--- a/secure/caroot/trusted/Certainly_Root_E1.pem
+++ b/secure/caroot/trusted/Certainly_Root_E1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certainly_Root_R1.pem b/secure/caroot/trusted/Certainly_Root_R1.pem
--- a/secure/caroot/trusted/Certainly_Root_R1.pem
+++ b/secure/caroot/trusted/Certainly_Root_R1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certigna.pem b/secure/caroot/trusted/Certigna.pem
--- a/secure/caroot/trusted/Certigna.pem
+++ b/secure/caroot/trusted/Certigna.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certigna_Root_CA.pem b/secure/caroot/trusted/Certigna_Root_CA.pem
--- a/secure/caroot/trusted/Certigna_Root_CA.pem
+++ b/secure/caroot/trusted/Certigna_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certum_EC-384_CA.pem b/secure/caroot/trusted/Certum_EC-384_CA.pem
--- a/secure/caroot/trusted/Certum_EC-384_CA.pem
+++ b/secure/caroot/trusted/Certum_EC-384_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certum_Trusted_Network_CA.pem b/secure/caroot/trusted/Certum_Trusted_Network_CA.pem
--- a/secure/caroot/trusted/Certum_Trusted_Network_CA.pem
+++ b/secure/caroot/trusted/Certum_Trusted_Network_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certum_Trusted_Network_CA_2.pem b/secure/caroot/trusted/Certum_Trusted_Network_CA_2.pem
--- a/secure/caroot/trusted/Certum_Trusted_Network_CA_2.pem
+++ b/secure/caroot/trusted/Certum_Trusted_Network_CA_2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Certum_Trusted_Root_CA.pem b/secure/caroot/trusted/Certum_Trusted_Root_CA.pem
--- a/secure/caroot/trusted/Certum_Trusted_Root_CA.pem
+++ b/secure/caroot/trusted/Certum_Trusted_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-01.pem b/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-01.pem
--- a/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-01.pem
+++ b/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-01.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-02.pem b/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-02.pem
--- a/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-02.pem
+++ b/secure/caroot/trusted/CommScope_Public_Trust_ECC_Root-02.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-01.pem b/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-01.pem
--- a/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-01.pem
+++ b/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-01.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-02.pem b/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-02.pem
--- a/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-02.pem
+++ b/secure/caroot/trusted/CommScope_Public_Trust_RSA_Root-02.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/D-TRUST_BR_Root_CA_1_2020.pem b/secure/caroot/trusted/D-TRUST_BR_Root_CA_1_2020.pem
--- a/secure/caroot/trusted/D-TRUST_BR_Root_CA_1_2020.pem
+++ b/secure/caroot/trusted/D-TRUST_BR_Root_CA_1_2020.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/D-TRUST_BR_Root_CA_2_2023.pem b/secure/caroot/trusted/D-TRUST_BR_Root_CA_2_2023.pem
--- a/secure/caroot/trusted/D-TRUST_BR_Root_CA_2_2023.pem
+++ b/secure/caroot/trusted/D-TRUST_BR_Root_CA_2_2023.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/D-TRUST_EV_Root_CA_1_2020.pem b/secure/caroot/trusted/D-TRUST_EV_Root_CA_1_2020.pem
--- a/secure/caroot/trusted/D-TRUST_EV_Root_CA_1_2020.pem
+++ b/secure/caroot/trusted/D-TRUST_EV_Root_CA_1_2020.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/D-TRUST_EV_Root_CA_2_2023.pem b/secure/caroot/trusted/D-TRUST_EV_Root_CA_2_2023.pem
--- a/secure/caroot/trusted/D-TRUST_EV_Root_CA_2_2023.pem
+++ b/secure/caroot/trusted/D-TRUST_EV_Root_CA_2_2023.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_2009.pem b/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_2009.pem
--- a/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_2009.pem
+++ b/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_2009.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_EV_2009.pem b/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_EV_2009.pem
--- a/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_EV_2009.pem
+++ b/secure/caroot/trusted/D-TRUST_Root_Class_3_CA_2_EV_2009.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Assured_ID_Root_CA.pem b/secure/caroot/trusted/DigiCert_Assured_ID_Root_CA.pem
--- a/secure/caroot/trusted/DigiCert_Assured_ID_Root_CA.pem
+++ b/secure/caroot/trusted/DigiCert_Assured_ID_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Assured_ID_Root_G2.pem b/secure/caroot/trusted/DigiCert_Assured_ID_Root_G2.pem
--- a/secure/caroot/trusted/DigiCert_Assured_ID_Root_G2.pem
+++ b/secure/caroot/trusted/DigiCert_Assured_ID_Root_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Assured_ID_Root_G3.pem b/secure/caroot/trusted/DigiCert_Assured_ID_Root_G3.pem
--- a/secure/caroot/trusted/DigiCert_Assured_ID_Root_G3.pem
+++ b/secure/caroot/trusted/DigiCert_Assured_ID_Root_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Global_Root_CA.pem b/secure/caroot/trusted/DigiCert_Global_Root_CA.pem
--- a/secure/caroot/trusted/DigiCert_Global_Root_CA.pem
+++ b/secure/caroot/trusted/DigiCert_Global_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Global_Root_G2.pem b/secure/caroot/trusted/DigiCert_Global_Root_G2.pem
--- a/secure/caroot/trusted/DigiCert_Global_Root_G2.pem
+++ b/secure/caroot/trusted/DigiCert_Global_Root_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Global_Root_G3.pem b/secure/caroot/trusted/DigiCert_Global_Root_G3.pem
--- a/secure/caroot/trusted/DigiCert_Global_Root_G3.pem
+++ b/secure/caroot/trusted/DigiCert_Global_Root_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_High_Assurance_EV_Root_CA.pem b/secure/caroot/trusted/DigiCert_High_Assurance_EV_Root_CA.pem
--- a/secure/caroot/trusted/DigiCert_High_Assurance_EV_Root_CA.pem
+++ b/secure/caroot/trusted/DigiCert_High_Assurance_EV_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_TLS_ECC_P384_Root_G5.pem b/secure/caroot/trusted/DigiCert_TLS_ECC_P384_Root_G5.pem
--- a/secure/caroot/trusted/DigiCert_TLS_ECC_P384_Root_G5.pem
+++ b/secure/caroot/trusted/DigiCert_TLS_ECC_P384_Root_G5.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_TLS_RSA4096_Root_G5.pem b/secure/caroot/trusted/DigiCert_TLS_RSA4096_Root_G5.pem
--- a/secure/caroot/trusted/DigiCert_TLS_RSA4096_Root_G5.pem
+++ b/secure/caroot/trusted/DigiCert_TLS_RSA4096_Root_G5.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/DigiCert_Trusted_Root_G4.pem b/secure/caroot/trusted/DigiCert_Trusted_Root_G4.pem
--- a/secure/caroot/trusted/DigiCert_Trusted_Root_G4.pem
+++ b/secure/caroot/trusted/DigiCert_Trusted_Root_G4.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Entrust_Root_Certification_Authority.pem b/secure/caroot/trusted/Entrust_Root_Certification_Authority.pem
--- a/secure/caroot/trusted/Entrust_Root_Certification_Authority.pem
+++ b/secure/caroot/trusted/Entrust_Root_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_EC1.pem b/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_EC1.pem
--- a/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_EC1.pem
+++ b/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_EC1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_G2.pem b/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_G2.pem
--- a/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_G2.pem
+++ b/secure/caroot/trusted/Entrust_Root_Certification_Authority_-_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/FIRMAPROFESIONAL_CA_ROOT-A_WEB.pem b/secure/caroot/trusted/FIRMAPROFESIONAL_CA_ROOT-A_WEB.pem
--- a/secure/caroot/trusted/FIRMAPROFESIONAL_CA_ROOT-A_WEB.pem
+++ b/secure/caroot/trusted/FIRMAPROFESIONAL_CA_ROOT-A_WEB.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GDCA_TrustAUTH_R5_ROOT.pem b/secure/caroot/trusted/GDCA_TrustAUTH_R5_ROOT.pem
--- a/secure/caroot/trusted/GDCA_TrustAUTH_R5_ROOT.pem
+++ b/secure/caroot/trusted/GDCA_TrustAUTH_R5_ROOT.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GTS_Root_R1.pem b/secure/caroot/trusted/GTS_Root_R1.pem
--- a/secure/caroot/trusted/GTS_Root_R1.pem
+++ b/secure/caroot/trusted/GTS_Root_R1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GTS_Root_R2.pem b/secure/caroot/trusted/GTS_Root_R2.pem
--- a/secure/caroot/trusted/GTS_Root_R2.pem
+++ b/secure/caroot/trusted/GTS_Root_R2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GTS_Root_R3.pem b/secure/caroot/trusted/GTS_Root_R3.pem
--- a/secure/caroot/trusted/GTS_Root_R3.pem
+++ b/secure/caroot/trusted/GTS_Root_R3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GTS_Root_R4.pem b/secure/caroot/trusted/GTS_Root_R4.pem
--- a/secure/caroot/trusted/GTS_Root_R4.pem
+++ b/secure/caroot/trusted/GTS_Root_R4.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R4.pem b/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R4.pem
--- a/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R4.pem
+++ b/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R4.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R5.pem b/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R5.pem
--- a/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R5.pem
+++ b/secure/caroot/trusted/GlobalSign_ECC_Root_CA_-_R5.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_Root_CA_-_R3.pem b/secure/caroot/trusted/GlobalSign_Root_CA_-_R3.pem
--- a/secure/caroot/trusted/GlobalSign_Root_CA_-_R3.pem
+++ b/secure/caroot/trusted/GlobalSign_Root_CA_-_R3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_Root_CA_-_R6.pem b/secure/caroot/trusted/GlobalSign_Root_CA_-_R6.pem
--- a/secure/caroot/trusted/GlobalSign_Root_CA_-_R6.pem
+++ b/secure/caroot/trusted/GlobalSign_Root_CA_-_R6.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_Root_E46.pem b/secure/caroot/trusted/GlobalSign_Root_E46.pem
--- a/secure/caroot/trusted/GlobalSign_Root_E46.pem
+++ b/secure/caroot/trusted/GlobalSign_Root_E46.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_Root_R46.pem b/secure/caroot/trusted/GlobalSign_Root_R46.pem
--- a/secure/caroot/trusted/GlobalSign_Root_R46.pem
+++ b/secure/caroot/trusted/GlobalSign_Root_R46.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Go_Daddy_Root_Certificate_Authority_-_G2.pem b/secure/caroot/trusted/Go_Daddy_Root_Certificate_Authority_-_G2.pem
--- a/secure/caroot/trusted/Go_Daddy_Root_Certificate_Authority_-_G2.pem
+++ b/secure/caroot/trusted/Go_Daddy_Root_Certificate_Authority_-_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/HARICA_TLS_ECC_Root_CA_2021.pem b/secure/caroot/trusted/HARICA_TLS_ECC_Root_CA_2021.pem
--- a/secure/caroot/trusted/HARICA_TLS_ECC_Root_CA_2021.pem
+++ b/secure/caroot/trusted/HARICA_TLS_ECC_Root_CA_2021.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/HARICA_TLS_RSA_Root_CA_2021.pem b/secure/caroot/trusted/HARICA_TLS_RSA_Root_CA_2021.pem
--- a/secure/caroot/trusted/HARICA_TLS_RSA_Root_CA_2021.pem
+++ b/secure/caroot/trusted/HARICA_TLS_RSA_Root_CA_2021.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.pem b/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.pem
--- a/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.pem
+++ b/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_RootCA_2015.pem b/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_RootCA_2015.pem
--- a/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_RootCA_2015.pem
+++ b/secure/caroot/trusted/Hellenic_Academic_and_Research_Institutions_RootCA_2015.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/HiPKI_Root_CA_-_G1.pem b/secure/caroot/trusted/HiPKI_Root_CA_-_G1.pem
--- a/secure/caroot/trusted/HiPKI_Root_CA_-_G1.pem
+++ b/secure/caroot/trusted/HiPKI_Root_CA_-_G1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Hongkong_Post_Root_CA_3.pem b/secure/caroot/trusted/Hongkong_Post_Root_CA_3.pem
--- a/secure/caroot/trusted/Hongkong_Post_Root_CA_3.pem
+++ b/secure/caroot/trusted/Hongkong_Post_Root_CA_3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/ISRG_Root_X1.pem b/secure/caroot/trusted/ISRG_Root_X1.pem
--- a/secure/caroot/trusted/ISRG_Root_X1.pem
+++ b/secure/caroot/trusted/ISRG_Root_X1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/ISRG_Root_X2.pem b/secure/caroot/trusted/ISRG_Root_X2.pem
--- a/secure/caroot/trusted/ISRG_Root_X2.pem
+++ b/secure/caroot/trusted/ISRG_Root_X2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/IdenTrust_Commercial_Root_CA_1.pem b/secure/caroot/trusted/IdenTrust_Commercial_Root_CA_1.pem
--- a/secure/caroot/trusted/IdenTrust_Commercial_Root_CA_1.pem
+++ b/secure/caroot/trusted/IdenTrust_Commercial_Root_CA_1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/IdenTrust_Public_Sector_Root_CA_1.pem b/secure/caroot/trusted/IdenTrust_Public_Sector_Root_CA_1.pem
--- a/secure/caroot/trusted/IdenTrust_Public_Sector_Root_CA_1.pem
+++ b/secure/caroot/trusted/IdenTrust_Public_Sector_Root_CA_1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Izenpe_com.pem b/secure/caroot/trusted/Izenpe_com.pem
--- a/secure/caroot/trusted/Izenpe_com.pem
+++ b/secure/caroot/trusted/Izenpe_com.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Microsec_e-Szigno_Root_CA_2009.pem b/secure/caroot/trusted/Microsec_e-Szigno_Root_CA_2009.pem
--- a/secure/caroot/trusted/Microsec_e-Szigno_Root_CA_2009.pem
+++ b/secure/caroot/trusted/Microsec_e-Szigno_Root_CA_2009.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Microsoft_ECC_Root_Certificate_Authority_2017.pem b/secure/caroot/trusted/Microsoft_ECC_Root_Certificate_Authority_2017.pem
--- a/secure/caroot/trusted/Microsoft_ECC_Root_Certificate_Authority_2017.pem
+++ b/secure/caroot/trusted/Microsoft_ECC_Root_Certificate_Authority_2017.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Microsoft_RSA_Root_Certificate_Authority_2017.pem b/secure/caroot/trusted/Microsoft_RSA_Root_Certificate_Authority_2017.pem
--- a/secure/caroot/trusted/Microsoft_RSA_Root_Certificate_Authority_2017.pem
+++ b/secure/caroot/trusted/Microsoft_RSA_Root_Certificate_Authority_2017.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/NAVER_Global_Root_Certification_Authority.pem b/secure/caroot/trusted/NAVER_Global_Root_Certification_Authority.pem
--- a/secure/caroot/trusted/NAVER_Global_Root_Certification_Authority.pem
+++ b/secure/caroot/trusted/NAVER_Global_Root_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/NetLock_Arany__Class_Gold__F__tan__s__tv__ny.pem b/secure/caroot/trusted/NetLock_Arany__Class_Gold__F__tan__s__tv__ny.pem
--- a/secure/caroot/trusted/NetLock_Arany__Class_Gold__F__tan__s__tv__ny.pem
+++ b/secure/caroot/trusted/NetLock_Arany__Class_Gold__F__tan__s__tv__ny.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GB_CA.pem b/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GB_CA.pem
--- a/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GB_CA.pem
+++ b/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GB_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GC_CA.pem b/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GC_CA.pem
--- a/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GC_CA.pem
+++ b/secure/caroot/trusted/OISTE_WISeKey_Global_Root_GC_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/QuoVadis_Root_CA_1_G3.pem b/secure/caroot/trusted/QuoVadis_Root_CA_1_G3.pem
--- a/secure/caroot/trusted/QuoVadis_Root_CA_1_G3.pem
+++ b/secure/caroot/trusted/QuoVadis_Root_CA_1_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/QuoVadis_Root_CA_2.pem b/secure/caroot/trusted/QuoVadis_Root_CA_2.pem
--- a/secure/caroot/trusted/QuoVadis_Root_CA_2.pem
+++ b/secure/caroot/trusted/QuoVadis_Root_CA_2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/QuoVadis_Root_CA_2_G3.pem b/secure/caroot/trusted/QuoVadis_Root_CA_2_G3.pem
--- a/secure/caroot/trusted/QuoVadis_Root_CA_2_G3.pem
+++ b/secure/caroot/trusted/QuoVadis_Root_CA_2_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/QuoVadis_Root_CA_3.pem b/secure/caroot/trusted/QuoVadis_Root_CA_3.pem
--- a/secure/caroot/trusted/QuoVadis_Root_CA_3.pem
+++ b/secure/caroot/trusted/QuoVadis_Root_CA_3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/QuoVadis_Root_CA_3_G3.pem b/secure/caroot/trusted/QuoVadis_Root_CA_3_G3.pem
--- a/secure/caroot/trusted/QuoVadis_Root_CA_3_G3.pem
+++ b/secure/caroot/trusted/QuoVadis_Root_CA_3_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_ECC.pem b/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_ECC.pem
--- a/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_ECC.pem
+++ b/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_ECC.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_RSA_R2.pem b/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_RSA_R2.pem
--- a/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_RSA_R2.pem
+++ b/secure/caroot/trusted/SSL_com_EV_Root_Certification_Authority_RSA_R2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SSL_com_Root_Certification_Authority_ECC.pem b/secure/caroot/trusted/SSL_com_Root_Certification_Authority_ECC.pem
--- a/secure/caroot/trusted/SSL_com_Root_Certification_Authority_ECC.pem
+++ b/secure/caroot/trusted/SSL_com_Root_Certification_Authority_ECC.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SSL_com_Root_Certification_Authority_RSA.pem b/secure/caroot/trusted/SSL_com_Root_Certification_Authority_RSA.pem
--- a/secure/caroot/trusted/SSL_com_Root_Certification_Authority_RSA.pem
+++ b/secure/caroot/trusted/SSL_com_Root_Certification_Authority_RSA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SSL_com_TLS_ECC_Root_CA_2022.pem b/secure/caroot/trusted/SSL_com_TLS_ECC_Root_CA_2022.pem
--- a/secure/caroot/trusted/SSL_com_TLS_ECC_Root_CA_2022.pem
+++ b/secure/caroot/trusted/SSL_com_TLS_ECC_Root_CA_2022.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SSL_com_TLS_RSA_Root_CA_2022.pem b/secure/caroot/trusted/SSL_com_TLS_RSA_Root_CA_2022.pem
--- a/secure/caroot/trusted/SSL_com_TLS_RSA_Root_CA_2022.pem
+++ b/secure/caroot/trusted/SSL_com_TLS_RSA_Root_CA_2022.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SZAFIR_ROOT_CA2.pem b/secure/caroot/trusted/SZAFIR_ROOT_CA2.pem
--- a/secure/caroot/trusted/SZAFIR_ROOT_CA2.pem
+++ b/secure/caroot/trusted/SZAFIR_ROOT_CA2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_E46.pem b/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_E46.pem
--- a/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_E46.pem
+++ b/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_E46.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_R46.pem b/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_R46.pem
--- a/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_R46.pem
+++ b/secure/caroot/trusted/Sectigo_Public_Server_Authentication_Root_R46.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SecureSign_Root_CA12.pem b/secure/caroot/trusted/SecureSign_Root_CA12.pem
--- a/secure/caroot/trusted/SecureSign_Root_CA12.pem
+++ b/secure/caroot/trusted/SecureSign_Root_CA12.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SecureSign_Root_CA14.pem b/secure/caroot/trusted/SecureSign_Root_CA14.pem
--- a/secure/caroot/trusted/SecureSign_Root_CA14.pem
+++ b/secure/caroot/trusted/SecureSign_Root_CA14.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SecureSign_Root_CA15.pem b/secure/caroot/trusted/SecureSign_Root_CA15.pem
--- a/secure/caroot/trusted/SecureSign_Root_CA15.pem
+++ b/secure/caroot/trusted/SecureSign_Root_CA15.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SecureTrust_CA.pem b/secure/caroot/trusted/SecureTrust_CA.pem
--- a/secure/caroot/trusted/SecureTrust_CA.pem
+++ b/secure/caroot/trusted/SecureTrust_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Secure_Global_CA.pem b/secure/caroot/trusted/Secure_Global_CA.pem
--- a/secure/caroot/trusted/Secure_Global_CA.pem
+++ b/secure/caroot/trusted/Secure_Global_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Security_Communication_ECC_RootCA1.pem b/secure/caroot/trusted/Security_Communication_ECC_RootCA1.pem
--- a/secure/caroot/trusted/Security_Communication_ECC_RootCA1.pem
+++ b/secure/caroot/trusted/Security_Communication_ECC_RootCA1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Security_Communication_RootCA2.pem b/secure/caroot/trusted/Security_Communication_RootCA2.pem
--- a/secure/caroot/trusted/Security_Communication_RootCA2.pem
+++ b/secure/caroot/trusted/Security_Communication_RootCA2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Starfield_Root_Certificate_Authority_-_G2.pem b/secure/caroot/trusted/Starfield_Root_Certificate_Authority_-_G2.pem
--- a/secure/caroot/trusted/Starfield_Root_Certificate_Authority_-_G2.pem
+++ b/secure/caroot/trusted/Starfield_Root_Certificate_Authority_-_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Starfield_Services_Root_Certificate_Authority_-_G2.pem b/secure/caroot/trusted/Starfield_Services_Root_Certificate_Authority_-_G2.pem
--- a/secure/caroot/trusted/Starfield_Services_Root_Certificate_Authority_-_G2.pem
+++ b/secure/caroot/trusted/Starfield_Services_Root_Certificate_Authority_-_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SwissSign_Gold_CA_-_G2.pem b/secure/caroot/trusted/SwissSign_Gold_CA_-_G2.pem
--- a/secure/caroot/trusted/SwissSign_Gold_CA_-_G2.pem
+++ b/secure/caroot/trusted/SwissSign_Gold_CA_-_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/SwissSign_RSA_TLS_Root_CA_2022_-_1.pem b/secure/caroot/trusted/SwissSign_RSA_TLS_Root_CA_2022_-_1.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/trusted/SwissSign_RSA_TLS_Root_CA_2022_-_1.pem
@@ -0,0 +1,133 @@
+##
+## SwissSign RSA TLS Root CA 2022 - 1
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 43:fa:0c:5f:4e:1b:80:18:44:ef:d1:b4:4f:35:1f:44:f4:80:ed:cb
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: C = CH, O = SwissSign AG, CN = SwissSign RSA TLS Root CA 2022 - 1
+ Validity
+ Not Before: Jun 8 11:08:22 2022 GMT
+ Not After : Jun 8 11:08:22 2047 GMT
+ Subject: C = CH, O = SwissSign AG, CN = SwissSign RSA TLS Root CA 2022 - 1
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:cb:2a:68:e2:0b:c3:57:bc:35:63:bc:70:a5:3b:
+ f3:8c:3c:4e:57:96:6e:c3:4e:36:a4:f6:02:ca:1e:
+ aa:ae:b8:de:a8:af:1d:76:da:ba:35:d0:91:70:07:
+ df:b3:06:f2:8a:f2:2e:55:51:7b:bb:2c:24:cb:7f:
+ 92:26:80:a3:b4:94:f6:82:a1:a4:e8:fa:75:1d:59:
+ f3:07:6a:61:64:e2:c6:8c:95:af:a3:bb:8e:6f:56:
+ cf:71:cc:5e:81:61:0d:6d:f2:ab:02:2e:a4:97:e5:
+ 71:fc:8a:b0:91:20:5b:9c:74:52:6d:ae:15:27:59:
+ 78:f2:09:ca:65:0e:7f:cb:f4:eb:e7:dc:a9:4c:77:
+ f6:2b:16:04:95:ae:9c:71:a5:3f:2a:da:41:42:e7:
+ 3c:84:10:f4:e1:3d:8c:6b:e2:2b:91:47:55:4f:b8:
+ 56:be:45:de:22:51:4d:4e:28:d9:5f:19:41:06:8f:
+ 0e:4d:06:e0:70:40:23:01:6a:e4:cb:13:9b:73:ac:
+ 4d:14:48:92:2d:fe:6d:a7:f8:87:6b:79:75:e1:be:
+ 10:b1:aa:88:40:59:54:d7:cf:c4:d0:9b:44:b3:38:
+ 69:64:8c:81:d1:23:7e:aa:39:3c:3b:0f:9f:4a:7b:
+ 82:ca:6b:6f:ca:22:3e:31:d0:b0:d0:2a:1c:92:8a:
+ 8f:d8:19:9c:47:e4:3e:0c:b9:c2:cd:be:41:0c:f8:
+ a4:47:05:db:c1:17:30:38:3a:69:dc:cd:c3:69:23:
+ fd:9a:0f:02:ce:10:6a:ce:ca:f8:b9:29:a3:36:89:
+ 86:ae:0b:c0:4f:63:b9:06:59:49:5e:0e:c1:69:b3:
+ 0a:f3:77:7e:2e:9d:8c:b3:27:98:d2:99:8d:25:a7:
+ 1f:86:b3:a6:54:70:38:fc:7d:5d:e8:4f:83:0c:d1:
+ 93:e5:12:e4:54:da:3e:f2:ad:3a:de:3e:3c:45:f0:
+ 28:0f:06:b9:e1:db:97:7b:99:45:9e:dd:fe:95:59:
+ 04:2f:75:3f:d3:ae:89:99:86:ac:14:b4:a8:84:fa:
+ c8:5d:3b:1b:58:93:c1:17:94:55:c8:0b:e3:82:79:
+ 84:9f:f3:00:84:34:ee:dc:31:d5:8f:f2:fa:4f:96:
+ 4c:06:aa:78:fb:de:64:a2:23:cd:1f:3e:c5:8c:bc:
+ 37:54:0e:bb:5a:72:55:ef:c8:5b:b5:72:f8:78:df:
+ 37:20:4c:57:91:73:92:73:ac:18:77:43:82:20:69:
+ ec:e9:ac:29:46:e5:0b:4e:f8:37:73:89:96:8a:1c:
+ 6d:bd:ef:be:d8:b6:f4:ca:c0:fd:47:f0:ae:0b:58:
+ 20:c5:c8:1d:36:ae:97:8d:50:83:26:24:29:f7:9d:
+ 3b:0f:05
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Authority Key Identifier:
+ 6F:8E:62:8B:93:43:B0:E1:40:F6:A7:C3:FD:F1:0F:B8:0F:15:38:A5
+ X509v3 Subject Key Identifier:
+ 6F:8E:62:8B:93:43:B0:E1:40:F6:A7:C3:FD:F1:0F:B8:0F:15:38:A5
+ Signature Algorithm: sha256WithRSAEncryption
+ Signature Value:
+ ac:2c:29:41:7d:fa:5c:f5:1a:95:18:bf:2c:a9:8a:a9:24:54:
+ 75:f5:b8:40:ab:cb:a8:24:51:2b:18:3f:63:a9:ae:98:56:2b:
+ 05:43:22:a3:b7:d7:46:9e:c0:2a:12:3d:8e:96:96:40:df:0c:
+ 33:8b:6b:37:91:3a:95:bb:39:29:6d:c0:02:6c:8a:94:0b:07:
+ 02:4d:18:3e:fb:fb:7b:f5:76:3d:9b:f6:5e:30:06:58:33:1e:
+ aa:78:d5:e6:54:04:3a:b2:82:09:8d:ce:16:33:59:45:28:f1:
+ a5:a3:97:0e:43:23:fd:0b:20:80:90:ff:e3:26:cf:b8:64:91:
+ e5:05:8f:13:a0:76:0d:d7:37:0c:10:88:96:f4:3e:be:95:bd:
+ f1:c3:7d:f0:a3:c3:79:47:0b:5c:92:15:63:ed:52:75:8a:e7:
+ 46:69:cb:51:55:0b:2a:4c:f5:f2:64:4f:a9:5c:ff:67:32:8e:
+ 55:2d:32:82:1c:80:2f:6a:91:f8:cb:bc:7e:18:a2:26:a8:2e:
+ a3:53:28:87:ed:57:e5:65:7a:4e:00:4a:5b:4e:53:c9:62:36:
+ bd:c2:8e:5b:eb:cc:6e:27:81:18:59:8b:44:63:9f:d5:0c:65:
+ f4:29:65:7f:91:2c:e5:7f:7e:e8:89:cf:8f:20:cb:6d:07:42:
+ 11:51:26:32:8a:2e:3a:47:13:b8:8d:bd:47:0d:09:f0:16:a4:
+ ed:96:86:2e:19:d8:be:8c:3a:e8:45:2e:11:ba:ae:5a:e7:b9:
+ bf:b1:cc:8f:e0:a0:ff:b8:b3:d1:85:7b:79:66:a3:39:b5:3b:
+ 66:d8:40:be:cf:b7:67:8b:48:c9:19:25:55:fc:bd:8d:cf:5e:
+ da:4e:a6:f2:69:ce:fd:7f:4c:77:d0:c1:46:35:98:5c:23:9b:
+ 02:45:43:94:5a:dd:bc:47:ad:22:fe:ba:5e:2f:91:29:29:86:
+ 7b:21:de:6e:64:b7:cb:0d:8f:37:5b:a3:08:6a:eb:f4:dd:02:
+ 8f:50:03:02:b1:b8:37:68:96:50:eb:b8:5f:d4:28:8a:a5:22:
+ 0c:8a:84:f0:59:2e:d5:37:d1:61:e5:42:73:58:2a:81:f7:76:
+ db:e2:e2:4d:0d:5f:f6:b7:be:05:b4:ae:4e:0d:de:16:3d:03:
+ 81:b3:26:5e:4b:b8:4b:00:cf:ff:8c:17:ba:6c:60:2d:27:87:
+ 37:24:e6:7a:60:2f:b5:d3:83:04:aa:4f:43:75:a2:c1:83:b2:
+ 27:98:2b:b1:0e:80:ba:c0:85:5e:42:b9:df:b1:60:91:d3:eb:
+ 18:7e:70:78:ae:76:83:be:71:5a:d0:90:e3:ca:c1:16:25:67:
+ 4a:f0:b6:7b:ba:e1:9c:d9
+SHA1 Fingerprint=81:34:0A:BE:4C:CD:CE:CC:E7:7D:CC:8A:D4:57:E2:45:A0:77:5D:CE
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_2.pem b/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_2.pem
--- a/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_2.pem
+++ b/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_3.pem b/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_3.pem
--- a/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_3.pem
+++ b/secure/caroot/trusted/T-TeleSec_GlobalRoot_Class_3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.pem b/secure/caroot/trusted/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.pem
--- a/secure/caroot/trusted/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.pem
+++ b/secure/caroot/trusted/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TWCA_CYBER_Root_CA.pem b/secure/caroot/trusted/TWCA_CYBER_Root_CA.pem
--- a/secure/caroot/trusted/TWCA_CYBER_Root_CA.pem
+++ b/secure/caroot/trusted/TWCA_CYBER_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TWCA_Global_Root_CA.pem b/secure/caroot/trusted/TWCA_Global_Root_CA.pem
--- a/secure/caroot/trusted/TWCA_Global_Root_CA.pem
+++ b/secure/caroot/trusted/TWCA_Global_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TWCA_Root_Certification_Authority.pem b/secure/caroot/trusted/TWCA_Root_Certification_Authority.pem
--- a/secure/caroot/trusted/TWCA_Root_Certification_Authority.pem
+++ b/secure/caroot/trusted/TWCA_Root_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Telekom_Security_TLS_ECC_Root_2020.pem b/secure/caroot/trusted/Telekom_Security_TLS_ECC_Root_2020.pem
--- a/secure/caroot/trusted/Telekom_Security_TLS_ECC_Root_2020.pem
+++ b/secure/caroot/trusted/Telekom_Security_TLS_ECC_Root_2020.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Telekom_Security_TLS_RSA_Root_2023.pem b/secure/caroot/trusted/Telekom_Security_TLS_RSA_Root_2023.pem
--- a/secure/caroot/trusted/Telekom_Security_TLS_RSA_Root_2023.pem
+++ b/secure/caroot/trusted/Telekom_Security_TLS_RSA_Root_2023.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TeliaSonera_Root_CA_v1.pem b/secure/caroot/trusted/TeliaSonera_Root_CA_v1.pem
--- a/secure/caroot/trusted/TeliaSonera_Root_CA_v1.pem
+++ b/secure/caroot/trusted/TeliaSonera_Root_CA_v1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Telia_Root_CA_v2.pem b/secure/caroot/trusted/Telia_Root_CA_v2.pem
--- a/secure/caroot/trusted/Telia_Root_CA_v2.pem
+++ b/secure/caroot/trusted/Telia_Root_CA_v2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TrustAsia_Global_Root_CA_G3.pem b/secure/caroot/trusted/TrustAsia_Global_Root_CA_G3.pem
--- a/secure/caroot/trusted/TrustAsia_Global_Root_CA_G3.pem
+++ b/secure/caroot/trusted/TrustAsia_Global_Root_CA_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TrustAsia_Global_Root_CA_G4.pem b/secure/caroot/trusted/TrustAsia_Global_Root_CA_G4.pem
--- a/secure/caroot/trusted/TrustAsia_Global_Root_CA_G4.pem
+++ b/secure/caroot/trusted/TrustAsia_Global_Root_CA_G4.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TrustAsia_TLS_ECC_Root_CA.pem b/secure/caroot/trusted/TrustAsia_TLS_ECC_Root_CA.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/trusted/TrustAsia_TLS_ECC_Root_CA.pem
@@ -0,0 +1,63 @@
+##
+## TrustAsia TLS ECC Root CA
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 36:74:e1:4d:7c:65:13:c9:ac:83:55:25:a0:3e:52:7e:2f:50:68:c7
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia TLS ECC Root CA
+ Validity
+ Not Before: May 15 05:41:56 2024 GMT
+ Not After : May 15 05:41:55 2044 GMT
+ Subject: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia TLS ECC Root CA
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:b8:7f:a5:5b:3f:01:3e:7d:f0:88:6d:ae:29:98:
+ e1:9b:5c:53:99:db:f7:08:ff:d5:6a:e0:8e:cb:44:
+ a6:f0:c1:8c:bd:4f:d4:ce:d4:88:53:e8:5e:57:d7:
+ 4e:be:2c:3f:f3:12:a7:00:e9:82:e3:2a:5b:32:7c:
+ 4b:9b:14:29:9e:f8:2d:83:b5:eb:8e:31:49:3d:26:
+ 61:e9:1d:72:8b:89:b6:0a:bb:9c:33:35:0f:da:ec:
+ de:a9:4a:1f:c9:33:b1
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ 2C:85:53:BB:B1:43:CD:32:EA:9E:A3:87:FE:A2:98:A8:A6:93:E9:10
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:65:02:30:54:47:d7:c3:2d:61:86:48:f4:79:5a:55:0d:35:
+ 2f:5f:0d:f6:67:6c:77:40:1a:46:e7:f8:68:5b:4e:27:1d:b8:
+ 98:7d:7f:93:bf:08:4d:c4:da:45:30:a1:0f:5e:4a:78:02:31:
+ 00:a3:91:87:f2:11:33:83:c3:c1:8a:91:3a:4c:2b:50:b1:bd:
+ 22:94:5d:35:89:73:83:c5:9b:19:fe:b4:a1:e9:d4:a1:66:b6:
+ 01:a5:36:f9:d8:68:61:28:b7:74:e1:a2:31
+SHA1 Fingerprint=B5:EC:39:F3:A1:66:37:AE:C3:05:94:57:E2:BE:11:BE:B7:A1:7F:36
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/trusted/TrustAsia_TLS_RSA_Root_CA.pem b/secure/caroot/trusted/TrustAsia_TLS_RSA_Root_CA.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/trusted/TrustAsia_TLS_RSA_Root_CA.pem
@@ -0,0 +1,131 @@
+##
+## TrustAsia TLS RSA Root CA
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 1c:18:d8:cf:e5:53:3f:22:35:46:53:54:24:3c:6c:47:d1:5c:4a:9c
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia TLS RSA Root CA
+ Validity
+ Not Before: May 15 05:41:57 2024 GMT
+ Not After : May 15 05:41:56 2044 GMT
+ Subject: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia TLS RSA Root CA
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:c3:16:b8:1b:6a:a4:44:73:e5:d6:4e:f4:b9:cf:
+ 5b:0b:c1:d1:9a:81:f5:63:b0:8f:43:c1:bb:08:5a:
+ 1a:7a:e1:07:76:26:1f:8f:69:56:be:fe:36:60:d0:
+ 0c:83:cd:94:ea:e7:c5:2d:5c:2f:05:16:02:9e:0a:
+ a8:2f:e5:60:26:54:96:f8:98:40:1d:ac:ae:9d:74:
+ 67:2f:54:fb:94:63:98:e3:26:4a:83:c6:95:b6:09:
+ 43:50:cd:0d:7d:de:44:0e:60:12:4f:5b:35:bd:bf:
+ 99:38:6d:7d:6c:da:e2:68:73:1f:f9:31:a5:19:10:
+ 73:05:2a:c3:32:19:85:ea:34:aa:dd:42:1e:30:8d:
+ 3f:9e:b5:1e:61:d5:6f:bd:00:72:72:ad:12:3f:aa:
+ a6:49:73:f2:86:15:95:0c:10:5f:51:64:ce:ff:77:
+ b8:c9:6d:ac:e5:d5:98:f1:99:2e:6c:e3:c9:44:f9:
+ b5:43:27:08:4d:f6:7e:de:44:79:bb:b2:8c:1c:da:
+ d3:4b:6c:2e:d6:c3:78:b7:4c:d5:a4:e4:da:dc:8a:
+ 8e:0e:ff:0f:c3:a6:60:26:28:cf:36:bf:fa:57:0a:
+ ec:5b:3f:e9:30:16:7b:c4:db:c4:d4:64:a0:30:fb:
+ e5:fd:1d:71:92:dd:29:8f:41:58:de:00:ad:3a:fd:
+ 3d:7c:1a:a8:b1:17:f0:4e:34:78:58:25:d6:85:21:
+ eb:79:1d:d0:dc:ab:cf:62:3c:b0:c7:97:8b:d6:d0:
+ 9f:d3:fe:3c:de:c5:e3:fc:3a:83:70:84:21:1d:09:
+ c2:a1:fc:bb:28:21:65:53:60:7a:90:6d:96:38:5b:
+ ff:f1:d7:7a:5b:6d:d3:c9:70:49:4a:ba:1d:3a:d0:
+ 50:da:32:20:19:e4:8b:3f:eb:d5:16:26:37:3c:fb:
+ 75:9e:b0:07:70:b8:14:60:77:dc:f6:0f:5c:52:0a:
+ bc:5d:6d:8d:51:0a:da:c5:18:c8:9b:6d:dc:b0:83:
+ b3:7f:a3:4e:78:4c:98:25:ab:f2:7e:2e:20:5e:82:
+ 15:a6:d6:d8:8f:ac:e5:cd:32:86:c8:f9:e4:da:89:
+ e2:3b:3e:93:c5:13:6a:ff:c7:f7:18:fc:67:b5:ef:
+ 18:2c:54:ab:40:d3:6c:4d:ed:c5:c8:b7:38:4f:64:
+ c4:94:4c:4f:a0:cd:ae:a5:c6:27:25:75:27:6d:c6:
+ da:9c:8e:b0:05:99:d5:28:11:c5:21:d4:b8:fc:c7:
+ 96:ab:4a:64:59:61:6b:13:fc:4b:cc:92:a6:0f:a4:
+ 51:bf:0e:58:90:d9:82:83:39:a6:5f:b3:fa:6e:92:
+ b3:cd:33:0e:85:a8:f1:29:d3:ab:59:ad:d6:db:de:
+ d4:2b:81
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ B8:07:91:79:5C:06:F4:46:FD:7B:59:CA:5A:26:91:A7:45:2B:F8:53
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 21:9b:6a:05:20:5d:18:16:a7:12:a4:f7:47:3f:cd:ca:3b:ae:
+ 8e:c0:82:ce:dc:48:25:78:17:6c:e0:e0:70:c4:d6:96:d9:d9:
+ f6:bf:7a:9c:13:bb:53:95:92:ff:cf:92:e0:f3:c5:27:35:57:
+ a8:3b:a2:19:eb:f8:8a:a3:04:de:69:8b:e4:3c:3c:bd:e5:af:
+ d0:12:1b:e5:89:6b:73:9b:6f:25:02:4b:90:82:af:40:c2:ad:
+ ba:9a:60:24:5a:81:4d:05:18:a3:e2:33:79:7a:0b:1f:93:ed:
+ ec:39:4a:f5:13:04:ec:8d:74:9d:81:0a:a8:6f:e8:76:fe:8b:
+ 4f:2b:69:12:86:0a:34:36:dd:82:9b:6f:4f:e0:73:dd:49:7f:
+ 28:3e:c9:3b:a3:57:04:d8:93:d9:3c:29:db:12:10:68:e1:c4:
+ 89:b8:06:20:e7:1b:7a:bc:b1:93:61:9a:19:40:11:b5:6a:85:
+ 57:01:f1:b6:5a:2d:26:73:27:96:f9:b9:3f:5b:d0:88:9d:e4:
+ a0:fd:ba:4e:95:09:83:7f:77:dc:51:05:94:9d:20:71:76:b1:
+ ec:fa:89:b5:9c:2e:85:f1:b9:5b:24:5a:b1:09:ab:da:ca:1a:
+ 07:cd:86:df:db:69:db:b4:48:18:00:2d:bc:a2:c4:89:45:23:
+ a5:0e:e1:44:65:3e:8a:c1:6a:30:1d:e2:60:f8:3a:aa:87:09:
+ 42:b9:81:92:dc:25:88:98:89:f1:7c:35:f1:62:ca:ee:79:f8:
+ 19:2f:fe:5f:f8:db:87:ce:ea:a8:0f:0c:a6:e8:0b:a0:3c:e0:
+ 6b:94:98:9c:7f:ad:06:e6:1c:ea:42:10:5f:e2:26:15:3c:37:
+ 39:f7:d7:bc:ee:b8:e5:ef:03:ee:bd:22:fb:28:86:34:58:c4:
+ 5a:7f:61:a2:78:0f:5e:f3:ca:9d:bc:1b:3c:a7:c8:2d:f6:a7:
+ 22:11:ca:03:d8:e7:67:0a:8a:0e:cb:35:8e:34:39:d8:c8:ea:
+ 8d:9f:64:e0:37:b0:6c:d7:c5:8f:c1:90:61:26:db:24:8c:1e:
+ 4a:c0:88:df:35:90:ce:3f:02:f4:64:61:de:c7:c8:07:95:de:
+ 32:18:3a:8f:a2:42:40:24:e5:d6:33:5d:7c:ae:ef:b1:4d:4f:
+ d4:57:90:35:6a:dc:ae:04:97:49:89:34:97:2e:30:04:e7:98:
+ f7:db:0b:01:90:c1:1f:0a:3f:f8:c2:fe:4e:fa:db:9a:73:73:
+ 16:bc:05:b8:79:d8:59:af:06:e7:3f:67:38:39:b1:7c:ab:94:
+ e0:29:14:a6:28:f2:df:6d:e2:9a:db:54:43:f8:47:58:a3:5d:
+ 74:15:9c:c1:ab:b0:c7:34
+SHA1 Fingerprint=A5:46:50:C5:62:EA:95:9A:1A:A7:04:6F:17:58:C7:29:53:3D:03:FA
+-----BEGIN CERTIFICATE-----
+MIIFgDCCA2igAwIBAgIUHBjYz+VTPyI1RlNUJDxsR9FcSpwwDQYJKoZIhvcNAQEM
+BQAwWDELMAkGA1UEBhMCQ04xJTAjBgNVBAoTHFRydXN0QXNpYSBUZWNobm9sb2dp
+ZXMsIEluYy4xIjAgBgNVBAMTGVRydXN0QXNpYSBUTFMgUlNBIFJvb3QgQ0EwHhcN
+MjQwNTE1MDU0MTU3WhcNNDQwNTE1MDU0MTU2WjBYMQswCQYDVQQGEwJDTjElMCMG
+A1UEChMcVHJ1c3RBc2lhIFRlY2hub2xvZ2llcywgSW5jLjEiMCAGA1UEAxMZVHJ1
+c3RBc2lhIFRMUyBSU0EgUm9vdCBDQTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCC
+AgoCggIBAMMWuBtqpERz5dZO9LnPWwvB0ZqB9WOwj0PBuwhaGnrhB3YmH49pVr7+
+NmDQDIPNlOrnxS1cLwUWAp4KqC/lYCZUlviYQB2srp10Zy9U+5RjmOMmSoPGlbYJ
+Q1DNDX3eRA5gEk9bNb2/mThtfWza4mhzH/kxpRkQcwUqwzIZheo0qt1CHjCNP561
+HmHVb70AcnKtEj+qpklz8oYVlQwQX1Fkzv93uMltrOXVmPGZLmzjyUT5tUMnCE32
+ft5EebuyjBza00tsLtbDeLdM1aTk2tyKjg7/D8OmYCYozza/+lcK7Fs/6TAWe8Tb
+xNRkoDD75f0dcZLdKY9BWN4ArTr9PXwaqLEX8E40eFgl1oUh63kd0Nyrz2I8sMeX
+i9bQn9P+PN7F4/w6g3CEIR0JwqH8uyghZVNgepBtljhb//HXeltt08lwSUq6HTrQ
+UNoyIBnkiz/r1RYmNzz7dZ6wB3C4FGB33PYPXFIKvF1tjVEK2sUYyJtt3LCDs3+j
+TnhMmCWr8n4uIF6CFabW2I+s5c0yhsj55NqJ4js+k8UTav/H9xj8Z7XvGCxUq0DT
+bE3txci3OE9kxJRMT6DNrqXGJyV1J23G2pyOsAWZ1SgRxSHUuPzHlqtKZFlhaxP8
+S8ySpg+kUb8OWJDZgoM5pl+z+m6Ss80zDoWo8SnTq1mt1tve1CuBAgMBAAGjQjBA
+MA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFLgHkXlcBvRG/XtZylomkadFK/hT
+MA4GA1UdDwEB/wQEAwIBBjANBgkqhkiG9w0BAQwFAAOCAgEAIZtqBSBdGBanEqT3
+Rz/NyjuujsCCztxIJXgXbODgcMTWltnZ9r96nBO7U5WS/8+S4PPFJzVXqDuiGev4
+iqME3mmL5Dw8veWv0BIb5Ylrc5tvJQJLkIKvQMKtuppgJFqBTQUYo+IzeXoLH5Pt
+7DlK9RME7I10nYEKqG/odv6LTytpEoYKNDbdgptvT+Bz3Ul/KD7JO6NXBNiT2Twp
+2xIQaOHEibgGIOcberyxk2GaGUARtWqFVwHxtlotJnMnlvm5P1vQiJ3koP26TpUJ
+g3933FEFlJ0gcXax7PqJtZwuhfG5WyRasQmr2soaB82G39tp27RIGAAtvKLEiUUj
+pQ7hRGU+isFqMB3iYPg6qocJQrmBktwliJiJ8Xw18WLK7nn4GS/+X/jbh87qqA8M
+pugLoDzga5SYnH+tBuYc6kIQX+ImFTw3OffXvO645e8D7r0i+yiGNFjEWn9hongP
+XvPKnbwbPKfILfanIhHKA9jnZwqKDss1jjQ52MjqjZ9k4DewbNfFj8GQYSbbJIwe
+SsCI3zWQzj8C9GRh3sfIB5XeMhg6j6JCQCTl1jNdfK7vsU1P1FeQNWrcrgSXSYk0
+ly4wBOeY99sLAZDBHwo/+ML+TvrbmnNzFrwFuHnYWa8G5z9nODmxfKuU4CkUpijy
+323imttUQ/hHWKNddBWcwauwxzQ=
+-----END CERTIFICATE-----
diff --git a/secure/caroot/trusted/Trustwave_Global_Certification_Authority.pem b/secure/caroot/trusted/Trustwave_Global_Certification_Authority.pem
--- a/secure/caroot/trusted/Trustwave_Global_Certification_Authority.pem
+++ b/secure/caroot/trusted/Trustwave_Global_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Trustwave_Global_ECC_P256_Certification_Authority.pem b/secure/caroot/trusted/Trustwave_Global_ECC_P256_Certification_Authority.pem
--- a/secure/caroot/trusted/Trustwave_Global_ECC_P256_Certification_Authority.pem
+++ b/secure/caroot/trusted/Trustwave_Global_ECC_P256_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Trustwave_Global_ECC_P384_Certification_Authority.pem b/secure/caroot/trusted/Trustwave_Global_ECC_P384_Certification_Authority.pem
--- a/secure/caroot/trusted/Trustwave_Global_ECC_P384_Certification_Authority.pem
+++ b/secure/caroot/trusted/Trustwave_Global_ECC_P384_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/TunTrust_Root_CA.pem b/secure/caroot/trusted/TunTrust_Root_CA.pem
--- a/secure/caroot/trusted/TunTrust_Root_CA.pem
+++ b/secure/caroot/trusted/TunTrust_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/UCA_Extended_Validation_Root.pem b/secure/caroot/trusted/UCA_Extended_Validation_Root.pem
--- a/secure/caroot/trusted/UCA_Extended_Validation_Root.pem
+++ b/secure/caroot/trusted/UCA_Extended_Validation_Root.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/UCA_Global_G2_Root.pem b/secure/caroot/trusted/UCA_Global_G2_Root.pem
--- a/secure/caroot/trusted/UCA_Global_G2_Root.pem
+++ b/secure/caroot/trusted/UCA_Global_G2_Root.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/USERTrust_ECC_Certification_Authority.pem b/secure/caroot/trusted/USERTrust_ECC_Certification_Authority.pem
--- a/secure/caroot/trusted/USERTrust_ECC_Certification_Authority.pem
+++ b/secure/caroot/trusted/USERTrust_ECC_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/USERTrust_RSA_Certification_Authority.pem b/secure/caroot/trusted/USERTrust_RSA_Certification_Authority.pem
--- a/secure/caroot/trusted/USERTrust_RSA_Certification_Authority.pem
+++ b/secure/caroot/trusted/USERTrust_RSA_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/certSIGN_ROOT_CA.pem b/secure/caroot/trusted/certSIGN_ROOT_CA.pem
--- a/secure/caroot/trusted/certSIGN_ROOT_CA.pem
+++ b/secure/caroot/trusted/certSIGN_ROOT_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/certSIGN_Root_CA_G2.pem b/secure/caroot/trusted/certSIGN_Root_CA_G2.pem
--- a/secure/caroot/trusted/certSIGN_Root_CA_G2.pem
+++ b/secure/caroot/trusted/certSIGN_Root_CA_G2.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/e-Szigno_Root_CA_2017.pem b/secure/caroot/trusted/e-Szigno_Root_CA_2017.pem
--- a/secure/caroot/trusted/e-Szigno_Root_CA_2017.pem
+++ b/secure/caroot/trusted/e-Szigno_Root_CA_2017.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/ePKI_Root_Certification_Authority.pem b/secure/caroot/trusted/ePKI_Root_Certification_Authority.pem
--- a/secure/caroot/trusted/ePKI_Root_Certification_Authority.pem
+++ b/secure/caroot/trusted/ePKI_Root_Certification_Authority.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/emSign_ECC_Root_CA_-_C3.pem b/secure/caroot/trusted/emSign_ECC_Root_CA_-_C3.pem
--- a/secure/caroot/trusted/emSign_ECC_Root_CA_-_C3.pem
+++ b/secure/caroot/trusted/emSign_ECC_Root_CA_-_C3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/emSign_ECC_Root_CA_-_G3.pem b/secure/caroot/trusted/emSign_ECC_Root_CA_-_G3.pem
--- a/secure/caroot/trusted/emSign_ECC_Root_CA_-_G3.pem
+++ b/secure/caroot/trusted/emSign_ECC_Root_CA_-_G3.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/emSign_Root_CA_-_C1.pem b/secure/caroot/trusted/emSign_Root_CA_-_C1.pem
--- a/secure/caroot/trusted/emSign_Root_CA_-_C1.pem
+++ b/secure/caroot/trusted/emSign_Root_CA_-_C1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/emSign_Root_CA_-_G1.pem b/secure/caroot/trusted/emSign_Root_CA_-_G1.pem
--- a/secure/caroot/trusted/emSign_Root_CA_-_G1.pem
+++ b/secure/caroot/trusted/emSign_Root_CA_-_G1.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/vTrus_ECC_Root_CA.pem b/secure/caroot/trusted/vTrus_ECC_Root_CA.pem
--- a/secure/caroot/trusted/vTrus_ECC_Root_CA.pem
+++ b/secure/caroot/trusted/vTrus_ECC_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/vTrus_Root_CA.pem b/secure/caroot/trusted/vTrus_Root_CA.pem
--- a/secure/caroot/trusted/vTrus_Root_CA.pem
+++ b/secure/caroot/trusted/vTrus_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/Atos_TrustedRoot_Root_CA_ECC_G2_2020.pem b/secure/caroot/untrusted/Atos_TrustedRoot_Root_CA_ECC_G2_2020.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/Atos_TrustedRoot_Root_CA_ECC_G2_2020.pem
@@ -0,0 +1,65 @@
+##
+## Atos TrustedRoot Root CA ECC G2 2020
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 0b:73:28:11:18:74:30:1c:ef:6f:08:84
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = DE, O = Atos, CN = Atos TrustedRoot Root CA ECC G2 2020
+ Validity
+ Not Before: Dec 15 08:39:10 2020 GMT
+ Not After : Dec 10 08:39:09 2040 GMT
+ Subject: C = DE, O = Atos, CN = Atos TrustedRoot Root CA ECC G2 2020
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:c8:5c:80:ca:4e:c2:28:1f:57:bf:38:e6:61:23:
+ fc:d0:a9:5b:96:16:16:c3:0c:5e:15:a5:90:09:ff:
+ 38:28:b4:7a:1e:0a:d6:53:2a:c1:bb:90:40:74:37:
+ e9:81:e8:8d:2f:68:01:35:7c:52:2e:d8:f4:58:b3:
+ 11:1c:5b:d9:87:18:93:91:2d:ec:9d:da:6c:9e:6d:
+ 84:48:fc:c2:89:05:eb:98:13:02:01:6c:53:1e:0e:
+ 49:63:58:47:b1:af:c2
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ 5B:1F:C4:71:6C:B2:1B:9F:BE:5C:1F:8C:FD:B3:B6:FB:B3:0E:09:87
+ X509v3 Subject Key Identifier:
+ 5B:1F:C4:71:6C:B2:1B:9F:BE:5C:1F:8C:FD:B3:B6:FB:B3:0E:09:87
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:66:02:31:00:ec:e0:99:fd:dd:e4:54:c1:cb:1f:e8:3e:28:
+ d7:15:59:4a:82:ca:53:30:ec:eb:36:a5:b9:c8:ce:93:47:56:
+ c8:61:a6:e1:6d:92:53:95:8f:f6:e3:55:53:f0:dd:7a:e7:02:
+ 31:00:b0:87:d5:1b:b3:60:fc:91:8d:80:ca:a2:1b:51:4b:38:
+ 54:cb:aa:1e:7b:d7:e5:44:95:16:2f:3c:44:78:2e:25:ba:ea:
+ 90:e4:ec:52:ee:57:ec:03:84:f3:5e:db:16:0d
+SHA1 Fingerprint=61:25:56:DA:62:94:E5:AE:B3:3C:F8:11:BD:B1:DC:F8:A5:D8:B3:E4
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Atos_TrustedRoot_Root_CA_RSA_G2_2020.pem b/secure/caroot/untrusted/Atos_TrustedRoot_Root_CA_RSA_G2_2020.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/Atos_TrustedRoot_Root_CA_RSA_G2_2020.pem
@@ -0,0 +1,133 @@
+##
+## Atos TrustedRoot Root CA RSA G2 2020
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 47:ba:29:46:55:3e:16:92:97:b0:ab:40
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = DE, O = Atos, CN = Atos TrustedRoot Root CA RSA G2 2020
+ Validity
+ Not Before: Dec 15 08:41:23 2020 GMT
+ Not After : Dec 10 08:41:22 2040 GMT
+ Subject: C = DE, O = Atos, CN = Atos TrustedRoot Root CA RSA G2 2020
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:96:31:85:4a:aa:0f:32:fe:79:e1:43:87:9c:fb:
+ 23:b7:8e:7f:0d:54:bd:c7:62:93:77:e4:1c:35:04:
+ 76:a3:03:8b:22:ee:c4:84:dd:a5:93:6e:6e:b2:8e:
+ 09:03:eb:51:16:31:17:aa:69:15:18:0e:67:74:23:
+ 5e:ea:9a:7d:b5:39:3e:3d:82:a9:6b:e1:fe:a9:1c:
+ b0:ad:5a:4d:4c:78:83:41:8b:cf:f2:1d:62:9a:98:
+ 04:9c:63:e9:ab:65:fe:48:1d:24:65:07:47:3e:b9:
+ 91:2e:e9:9d:9b:7f:1a:35:a9:34:b0:b7:e5:70:33:
+ ef:4a:72:51:b6:07:bf:60:3f:2a:9f:9d:54:df:f3:
+ d7:94:49:51:03:5a:40:a9:68:dd:11:59:5c:f8:76:
+ a6:bc:50:52:10:ed:ac:ec:95:e0:d4:83:6b:49:da:
+ 0a:4f:99:83:de:32:83:48:83:67:95:b2:7e:e7:81:
+ 85:3d:cd:82:f7:ca:02:ed:6d:88:5d:08:8d:b8:35:
+ bf:2a:69:30:99:bb:4b:d1:41:db:45:a0:93:99:51:
+ 81:90:36:08:aa:8a:b6:e8:8f:b3:cb:ee:e5:46:0d:
+ 72:75:f5:49:6c:e1:a2:7f:2f:bc:ed:84:a6:37:ee:
+ de:c2:4f:39:4e:f6:9e:f0:c9:d1:9b:30:9d:49:6d:
+ e1:da:ff:12:10:8c:d6:e5:99:7b:05:b6:7d:b0:09:
+ c7:a4:f8:b2:1c:39:95:39:33:f4:35:ce:25:62:7b:
+ b0:5f:20:f3:cb:6d:f8:6c:52:14:64:44:8f:d3:c8:
+ a9:76:07:e5:af:71:99:2d:2d:04:25:48:76:af:c3:
+ e7:cc:43:f2:07:bc:4a:24:24:37:dd:fa:6e:94:09:
+ 6f:4c:5e:01:b4:fe:54:ec:23:96:a5:5e:dd:86:ff:
+ e9:46:2a:f1:e8:dc:ec:a5:3d:af:6f:aa:0e:0f:b4:
+ 75:fa:3e:08:b9:26:45:4f:66:86:4c:bc:19:b8:e1:
+ d5:35:ee:82:84:c8:d3:ab:12:e7:cd:73:33:62:77:
+ f4:17:cb:bd:34:76:2a:05:ce:95:e5:78:79:4b:9e:
+ b0:8d:f9:3c:58:38:91:ea:5e:87:38:c0:b7:42:fd:
+ aa:4c:87:23:ad:04:20:b1:7e:76:42:da:bb:b6:16:
+ ba:57:c8:8e:13:fa:75:d5:08:4c:af:38:91:aa:ef:
+ 8f:fa:9f:49:2e:54:7c:0a:56:b1:7a:fa:c4:4e:2f:
+ d4:a3:fa:16:8a:d0:95:e5:97:a6:ff:c3:fc:7c:0e:
+ 47:58:f3:7f:07:7b:12:dc:57:3f:2d:e3:a1:4d:5b:
+ 52:4c:33:87:99:a8:09:7b:6c:7e:0e:f2:cf:56:42:
+ 9e:eb:05
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ 20:25:F3:07:FD:A7:6F:F1:96:EE:91:10:69:CC:9A:EF:7D:C8:68:78
+ X509v3 Subject Key Identifier:
+ 20:25:F3:07:FD:A7:6F:F1:96:EE:91:10:69:CC:9A:EF:7D:C8:68:78
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 24:2b:4e:98:f2:1d:17:ed:d9:76:26:b6:30:33:e8:69:45:a1:
+ 51:4b:52:d8:7a:3a:30:b6:e4:12:ea:bf:9f:4c:e0:04:a4:f6:
+ 35:c6:fe:a1:30:f7:53:85:92:ad:54:05:57:5f:92:e5:2a:de:
+ 36:27:9e:7b:13:47:c9:6a:75:af:fc:f3:37:e7:0c:f5:3d:01:
+ 73:b5:69:51:f8:bd:59:d1:ba:0b:f8:ba:ba:64:27:43:b3:7c:
+ 83:95:8a:e7:9e:13:96:d7:6f:4a:96:41:49:8b:0e:20:ad:16:
+ c6:f7:a6:87:5b:88:12:89:8b:89:ca:12:d2:56:af:22:01:21:
+ 46:e9:ab:98:3f:a7:88:de:e4:cb:2a:9a:75:19:fa:39:5e:09:
+ 05:d7:03:32:1a:b8:17:51:08:c7:00:40:7d:f4:be:f8:0c:59:
+ f4:69:76:6e:d3:a4:58:5b:5e:26:73:e4:42:55:06:5e:78:40:
+ 0f:d3:38:9f:ef:26:51:70:74:91:f1:77:62:01:e8:d9:cb:eb:
+ a1:df:39:32:1d:bb:6b:fd:71:fe:eb:cf:a5:e6:14:fd:00:80:
+ 13:c6:9a:00:48:b0:99:05:e9:ae:80:48:fb:09:3f:51:14:b5:
+ b9:e7:60:4d:4d:ca:2f:81:21:ee:52:0c:65:7a:dc:f5:89:49:
+ 4c:30:92:34:58:80:32:59:b1:0d:ff:24:61:0f:e7:0a:42:d0:
+ 7b:bc:f8:8e:27:47:3f:70:9d:27:d9:b6:06:3d:a5:bb:cb:5e:
+ 8f:ae:0e:53:c7:9c:6a:6f:3b:4c:0f:a3:40:70:a8:9a:07:ce:
+ d4:6e:5b:07:a2:d2:e2:54:b6:bd:6f:33:72:63:ad:51:98:e1:
+ 8f:76:f1:6a:07:38:25:fe:f6:62:ce:5f:db:63:c2:6e:99:ef:
+ 06:dc:b9:de:19:1a:e8:54:3d:7d:d2:76:75:d9:5e:3e:32:48:
+ a7:8c:f2:9e:72:0c:f8:b8:58:b8:17:23:a5:14:87:75:58:7a:
+ 00:81:07:22:39:6a:4c:94:a0:b5:a2:db:a7:2c:c1:b0:f1:a3:
+ 9b:c0:4c:f7:6d:70:ea:31:9f:f1:ae:7d:3e:73:28:d9:a1:df:
+ fa:93:f0:9b:b0:f0:e2:cd:25:20:75:ef:e2:7d:32:05:c9:9b:
+ 76:ee:cb:bd:31:1e:f9:94:98:4b:24:58:56:48:c0:de:06:4c:
+ bd:a6:34:5d:ed:16:61:63:73:fb:19:e2:fa:5b:d8:97:75:d4:
+ 6d:9e:60:39:5e:94:8b:02:2c:eb:99:ce:60:2a:6e:1b:8c:a7:
+ 4b:bc:fd:36:e6:98:1f:65:f2:7f:f1:e3:8f:4c:80:46:36:58:
+ b6:a1:65:cb:ce:1c:44:75
+SHA1 Fingerprint=32:D1:27:FA:93:B1:C1:4C:99:E2:4A:40:BC:7F:94:41:1B:5A:AC:A4
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Certum_Root_CA.pem b/secure/caroot/untrusted/Certum_Root_CA.pem
--- a/secure/caroot/untrusted/Certum_Root_CA.pem
+++ b/secure/caroot/untrusted/Certum_Root_CA.pem
@@ -5,8 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Comodo_AAA_Services_root.pem b/secure/caroot/untrusted/Comodo_AAA_Services_root.pem
rename from secure/caroot/trusted/Comodo_AAA_Services_root.pem
rename to secure/caroot/untrusted/Comodo_AAA_Services_root.pem
--- a/secure/caroot/trusted/Comodo_AAA_Services_root.pem
+++ b/secure/caroot/untrusted/Comodo_AAA_Services_root.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/D-TRUST_Root_CA_3_2013.pem b/secure/caroot/untrusted/D-TRUST_Root_CA_3_2013.pem
--- a/secure/caroot/untrusted/D-TRUST_Root_CA_3_2013.pem
+++ b/secure/caroot/untrusted/D-TRUST_Root_CA_3_2013.pem
@@ -5,8 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/D-Trust_SBR_Root_CA_1_2022.pem b/secure/caroot/untrusted/D-Trust_SBR_Root_CA_1_2022.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/D-Trust_SBR_Root_CA_1_2022.pem
@@ -0,0 +1,67 @@
+##
+## D-Trust SBR Root CA 1 2022
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 52:cf:e4:8c:6d:a0:4a:f7:3f:82:97:0c:80:09:8c:95
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = DE, O = D-Trust GmbH, CN = D-Trust SBR Root CA 1 2022
+ Validity
+ Not Before: Jul 6 11:30:00 2022 GMT
+ Not After : Jul 6 11:29:59 2037 GMT
+ Subject: C = DE, O = D-Trust GmbH, CN = D-Trust SBR Root CA 1 2022
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:59:93:39:f6:8c:49:66:28:d7:61:0c:c8:ab:7f:
+ 0c:a3:2d:df:a2:a4:7c:92:2b:68:d5:2e:7e:1e:40:
+ cb:b4:68:49:7f:12:a1:ab:7f:57:9f:19:2e:63:2e:
+ 5b:fe:66:71:0c:33:0f:b9:de:6b:c4:88:c3:b1:ef:
+ ec:39:40:e3:96:ab:db:e5:7b:ae:1f:dc:f9:af:46:
+ 9a:6a:46:06:2f:c7:37:64:8b:17:62:fe:96:c3:a2:
+ ee:84:e0:b0:97:39:bc
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ F1:29:A3:1E:01:12:1D:3D:75:56:4D:C7:50:7C:C5:19:AA:0F:18:B7
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 CRL Distribution Points:
+ Full Name:
+ URI:http://crl.d-trust.net/crl/d-trust_sbr_root_ca_1_2022.crl
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:66:02:31:00:97:f9:de:ae:4b:8f:98:b5:1e:40:7f:32:7d:
+ 4d:54:43:da:89:cd:c2:aa:92:3c:d1:82:1e:73:cf:fa:4c:92:
+ 20:fb:63:27:c5:f5:73:3d:09:3d:f7:a7:61:86:8c:f3:6a:02:
+ 31:00:e7:2f:7c:b8:f5:25:8c:3b:39:1f:36:ab:8d:f5:86:a2:
+ 2e:e1:7a:64:da:67:39:02:fe:fe:33:3f:d9:73:b6:58:5b:3a:
+ fc:b2:a4:d9:60:78:77:cc:79:a7:a6:ae:55:bd
+SHA1 Fingerprint=0F:52:3A:6B:4E:7D:1D:18:05:A5:48:F9:4D:CD:E4:C3:1E:1B:E9:E6
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/D-Trust_SBR_Root_CA_2_2022.pem b/secure/caroot/untrusted/D-Trust_SBR_Root_CA_2_2022.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/D-Trust_SBR_Root_CA_2_2022.pem
@@ -0,0 +1,135 @@
+##
+## D-Trust SBR Root CA 2 2022
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 54:d5:a3:95:1e:3d:95:ba:72:1b:9a:d0:31:21:4a:ba
+ Signature Algorithm: sha512WithRSAEncryption
+ Issuer: C = DE, O = D-Trust GmbH, CN = D-Trust SBR Root CA 2 2022
+ Validity
+ Not Before: Jul 7 07:30:00 2022 GMT
+ Not After : Jul 7 07:29:59 2037 GMT
+ Subject: C = DE, O = D-Trust GmbH, CN = D-Trust SBR Root CA 2 2022
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:af:2c:bc:8e:36:8c:eb:64:af:51:6a:d6:6e:3c:
+ 5e:91:3a:ea:9a:c3:ca:6c:fb:aa:27:9e:64:22:a9:
+ 40:df:b9:28:45:5a:ec:53:61:16:28:98:c2:8a:a4:
+ 75:78:50:84:dd:fa:20:48:92:07:65:41:35:66:51:
+ 12:74:61:9d:07:06:85:39:31:57:7b:28:3f:d5:9c:
+ a5:ec:5a:e9:1c:4b:27:9f:ce:27:06:f3:37:f5:52:
+ d8:11:33:16:41:3a:1f:f5:63:78:65:63:86:c9:bf:
+ c8:01:04:1f:6e:ee:e2:ec:ac:0c:ee:82:92:e2:f6:
+ 1a:0d:3f:39:f9:9d:65:93:ad:f8:b9:05:c1:3d:f8:
+ 37:81:56:c3:a0:fe:05:ec:e0:94:16:3a:23:16:04:
+ da:a6:0a:93:85:72:6d:61:3b:a1:8d:45:d6:e3:7f:
+ be:15:bd:36:84:08:f6:0b:83:6b:26:aa:a2:bd:e0:
+ b0:e7:aa:e0:ae:67:c4:d3:82:a5:0c:a9:a4:f0:33:
+ 79:0d:50:3f:f0:ef:90:3d:24:b9:7f:d2:20:6c:ea:
+ 97:f3:bf:9c:dc:47:de:09:61:bd:94:79:95:5a:02:
+ 76:35:60:c4:47:22:0d:f7:76:63:03:d3:c6:fb:83:
+ c6:5d:ab:ad:ed:69:25:2b:03:5b:4d:25:00:41:e3:
+ 8c:87:17:52:a8:e0:05:2b:43:4d:14:13:ca:e7:3f:
+ 43:22:bc:37:a4:75:f1:f6:bf:3a:ef:32:1e:ae:ee:
+ 58:86:90:72:ba:04:ac:40:48:ef:5c:c4:78:a7:a9:
+ 8f:27:5a:cb:7a:ec:58:f2:c2:08:58:90:6d:4d:03:
+ 85:79:71:15:05:0e:4e:3e:f9:df:0f:05:f7:5f:14:
+ 48:56:21:0d:33:92:b1:ac:8c:e5:18:fe:bf:0f:ee:
+ e0:04:aa:bd:21:f2:58:b6:5c:89:0a:8b:18:09:22:
+ 1a:b3:35:c6:66:c2:f5:33:15:99:80:e0:08:f9:96:
+ 2f:13:8c:ee:da:b7:88:c4:e9:37:b5:d7:6a:d7:3a:
+ 84:4d:ab:70:8c:d3:4e:14:55:a0:a2:10:fc:64:da:
+ 67:e8:f1:cb:33:dd:c9:9a:8a:8f:96:2f:58:81:d9:
+ f8:9a:00:43:cc:90:fb:55:76:fb:86:e3:37:01:28:
+ 0c:6f:f4:e9:59:4d:15:77:51:42:4a:cc:34:b8:80:
+ 43:50:81:ef:57:a5:13:db:a7:94:79:0f:4b:ca:7e:
+ 17:7d:af:a3:21:64:e8:71:55:56:8f:06:b0:47:ec:
+ 59:0f:5d:70:5b:2c:16:42:f0:86:9e:75:de:6b:4d:
+ 48:98:84:e2:57:18:b6:9c:82:99:65:3a:8b:80:78:
+ 57:0c:49
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ 5D:B3:80:94:1B:E5:86:BF:68:BA:14:34:A4:F6:EE:6D:F2:DD:DF:E7
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 CRL Distribution Points:
+ Full Name:
+ URI:http://crl.d-trust.net/crl/d-trust_sbr_root_ca_2_2022.crl
+ Signature Algorithm: sha512WithRSAEncryption
+ Signature Value:
+ 34:54:2e:58:18:56:cd:4a:bd:97:d3:f5:7d:2b:dc:af:0f:51:
+ e1:4d:bc:21:4b:93:f4:00:44:13:07:10:0b:25:18:3e:48:59:
+ 96:f7:a1:e1:93:90:78:66:1a:3d:23:eb:22:ab:01:a6:8e:0c:
+ 51:33:e6:6d:8c:31:ee:ac:a4:01:70:39:48:de:c7:66:2c:6b:
+ 0d:cb:73:9f:87:92:e9:3e:47:1f:b8:ef:2f:ee:b7:56:8c:48:
+ 89:f0:38:a7:15:39:b2:ee:c0:3f:17:a4:73:02:08:9c:bc:06:
+ 8a:a4:c2:b7:61:61:f9:c3:db:c4:d0:7a:7c:61:de:b1:58:91:
+ f5:dd:65:4c:2f:0b:f8:eb:3d:b5:ed:8a:be:77:1c:ba:59:02:
+ 12:66:71:e5:98:27:ce:0e:3d:af:51:a2:45:f9:82:fb:5a:a5:
+ 94:70:f7:8b:84:c3:4c:65:25:9b:7b:e2:1f:30:70:b3:40:8e:
+ 3a:ee:bd:f4:e7:68:c5:9d:c9:29:47:71:0e:93:c8:b5:48:4e:
+ f5:66:bb:07:88:71:69:6b:7b:48:8e:6f:f0:11:c4:b4:c9:70:
+ 14:98:20:bd:ed:a7:ea:01:da:6e:a5:9b:12:fe:3e:44:30:b3:
+ f0:eb:75:52:c0:f4:c3:fa:77:26:a4:77:82:2d:6f:f3:28:1e:
+ 4e:95:f0:30:f7:89:f8:2c:a2:50:5b:f2:be:32:7e:6c:54:db:
+ 72:c9:2a:5a:e0:1c:b6:0b:d8:52:9a:59:a1:e3:b0:01:27:c5:
+ a0:16:50:66:dc:eb:ae:6d:f4:9b:5b:3d:84:6d:5b:87:e7:a9:
+ 89:bb:6e:b8:e0:9b:53:89:c0:ff:2e:40:1a:89:44:2e:18:43:
+ 67:38:e4:7c:72:5f:d9:a3:29:25:41:41:3d:1c:77:1b:64:a8:
+ c3:55:ee:63:71:66:62:83:f4:7f:26:99:a0:54:3b:a1:12:6d:
+ 70:62:ce:d3:f9:b8:bd:22:fc:d4:9a:d4:bb:e2:38:16:2f:b7:
+ 7d:39:c2:b0:a9:03:e9:9c:cf:7e:18:8d:76:dc:5f:11:bb:eb:
+ 42:ec:50:09:3e:5c:ec:90:31:d8:1a:72:ba:3f:69:07:ee:98:
+ 34:c2:34:a4:d6:da:13:d6:a9:84:f2:00:86:c0:54:ba:1e:11:
+ b0:e2:b9:c4:07:b4:91:e7:aa:e6:31:56:6f:b1:44:c4:2a:62:
+ bc:c9:b0:65:9c:34:fc:0c:1a:53:df:21:17:bb:c2:6d:a1:0a:
+ e6:f1:b0:aa:44:09:50:49:38:7a:5d:71:e2:31:2e:19:b0:df:
+ 95:42:04:7d:84:88:ce:0a:23:67:6b:38:9d:16:de:06:fe:28:
+ 70:38:a5:5a:ae:fc:83:ed
+SHA1 Fingerprint=27:FF:63:B9:EF:34:29:31:03:38:1A:D8:60:60:DA:CC:60:28:35:E1
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/DIGITALSIGN_GLOBAL_ROOT_ECDSA_CA.pem b/secure/caroot/untrusted/DIGITALSIGN_GLOBAL_ROOT_ECDSA_CA.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/DIGITALSIGN_GLOBAL_ROOT_ECDSA_CA.pem
@@ -0,0 +1,66 @@
+##
+## DIGITALSIGN GLOBAL ROOT ECDSA CA
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 36:2d:8f:72:88:a2:28:27:e4:00:ff:24:c6:2d:e4:eb:fa:9d:b6:e1
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = PT, O = DigitalSign Certificadora Digital, CN = DIGITALSIGN GLOBAL ROOT ECDSA CA
+ Validity
+ Not Before: Jan 21 11:07:50 2021 GMT
+ Not After : Jan 15 11:07:50 2046 GMT
+ Subject: C = PT, O = DigitalSign Certificadora Digital, CN = DIGITALSIGN GLOBAL ROOT ECDSA CA
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:6e:0b:a3:ab:33:4d:1c:ea:4a:e8:fc:04:8d:14:
+ a0:7d:f0:08:2c:5f:83:ab:93:d1:d2:7b:ba:d7:49:
+ 7d:8f:ec:12:50:5f:d4:b9:cb:e5:f0:f9:33:63:1f:
+ c9:57:ec:40:d8:11:0b:97:e8:52:16:cc:29:8e:f4:
+ 06:86:1e:38:dc:3d:57:c4:ee:aa:bd:c8:54:04:26:
+ 5a:27:13:51:47:3d:1f:1f:1a:8e:a8:95:a4:33:d0:
+ cc:47:cc:6d:b8:fc:48
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ CE:AF:4A:8B:1A:75:E2:F1:38:E7:02:F0:16:AD:5E:EA:64:D5:7B:B4
+ X509v3 Subject Key Identifier:
+ CE:AF:4A:8B:1A:75:E2:F1:38:E7:02:F0:16:AD:5E:EA:64:D5:7B:B4
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:65:02:30:0a:88:c4:71:9c:44:03:4d:8d:b4:c7:bc:a8:ae:
+ d9:30:27:35:6a:6b:16:63:d7:fc:e7:59:e1:a7:89:1b:4c:31:
+ 9a:23:55:44:e6:f3:43:21:d5:47:27:6f:6d:57:01:aa:02:31:
+ 00:fb:b2:ea:e2:97:7f:51:b5:9f:48:eb:bc:6f:35:89:a8:64:
+ 70:ab:57:76:cd:c0:c6:14:60:ca:7f:e2:82:00:73:f7:cc:35:
+ ea:8e:24:9b:e5:08:59:c7:04:8c:73:78:fe
+SHA1 Fingerprint=67:A8:08:EB:8F:88:F5:80:6C:05:45:1B:17:F3:D7:00:2F:D2:4A:8A
+-----BEGIN CERTIFICATE-----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==
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/DIGITALSIGN_GLOBAL_ROOT_RSA_CA.pem b/secure/caroot/untrusted/DIGITALSIGN_GLOBAL_ROOT_RSA_CA.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/DIGITALSIGN_GLOBAL_ROOT_RSA_CA.pem
@@ -0,0 +1,134 @@
+##
+## DIGITALSIGN GLOBAL ROOT RSA CA
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 5d:59:c8:ca:ab:09:57:f5:e6:b5:da:29:94:04:6a:ff:c5:d4:95:87
+ Signature Algorithm: sha512WithRSAEncryption
+ Issuer: C = PT, O = DigitalSign Certificadora Digital, CN = DIGITALSIGN GLOBAL ROOT RSA CA
+ Validity
+ Not Before: Jan 21 10:50:34 2021 GMT
+ Not After : Jan 15 10:50:34 2046 GMT
+ Subject: C = PT, O = DigitalSign Certificadora Digital, CN = DIGITALSIGN GLOBAL ROOT RSA CA
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:c8:87:b6:38:d3:1c:f0:de:12:f8:83:c7:c4:8a:
+ e2:89:b8:b4:22:7a:78:f8:0c:66:51:68:76:37:0a:
+ d5:4f:c2:5a:08:b8:16:5c:f7:72:01:09:37:84:81:
+ 2a:54:6b:d7:92:d0:6c:fa:a8:a7:43:12:34:eb:0e:
+ db:37:0f:29:fe:8a:31:51:42:e8:4b:9c:90:a8:c8:
+ 2c:11:d3:fd:a0:29:7e:ce:de:94:f6:82:e0:58:b4:
+ 4e:45:25:f1:22:f2:3d:d3:0f:7b:54:1a:dc:32:b6:
+ d6:51:4e:7e:41:b4:57:b8:2c:c6:b9:0e:2e:ca:57:
+ f1:d5:c8:d3:58:e7:a5:e9:42:11:ae:d3:20:25:94:
+ 69:d7:8f:ca:a2:0d:c3:d3:9f:07:68:3f:15:d2:67:
+ 2e:53:fd:76:82:9b:0b:73:a9:29:0d:9e:11:93:14:
+ 08:98:ec:9e:54:12:4a:56:a2:06:15:ec:6b:6c:2e:
+ 92:60:2e:86:0d:ae:82:1f:51:4d:e3:b2:07:d7:10:
+ 19:57:22:f6:a9:69:44:84:f3:d9:3d:a0:06:bf:cc:
+ 88:7e:7f:f5:ce:5b:a5:c2:2a:6a:74:42:ea:6f:a6:
+ ff:f9:68:b1:d0:5f:bd:91:d2:55:6f:33:57:4c:1e:
+ 9d:e4:e2:8b:c1:85:65:a0:e0:6a:9c:00:00:88:92:
+ dd:58:08:16:f2:70:31:a8:1c:e1:de:bd:4e:71:e9:
+ d6:be:7e:b5:a1:5a:c3:4d:f7:bf:9b:bd:94:a4:fd:
+ f5:aa:53:93:46:c9:26:01:04:70:c4:a0:71:ba:ce:
+ 25:66:fb:91:7e:55:70:ee:49:0a:4d:62:7f:c2:50:
+ 9a:72:f2:18:67:9d:e9:45:a8:34:84:e8:f8:81:f6:
+ d1:5a:22:1e:07:4f:3b:b3:7f:dd:11:a5:73:dc:be:
+ a9:19:3a:69:a9:6d:1b:32:e2:89:aa:a5:27:0b:5a:
+ 7e:74:e2:0f:64:39:5d:7e:5c:b9:c1:17:fc:c7:8d:
+ 5e:c9:ec:24:ed:d2:f2:3f:7a:84:45:37:02:be:3e:
+ 6b:59:c4:e6:5b:16:6d:c0:aa:9e:aa:b5:59:2e:2c:
+ 70:55:9c:cc:99:96:98:24:54:d1:8e:da:ca:b4:11:
+ b4:b7:70:43:1f:6f:90:0b:20:a0:a8:76:13:65:db:
+ db:23:5a:75:4b:a1:0b:31:77:0a:ee:7d:68:61:1a:
+ 13:8c:ea:51:7e:5c:56:a3:57:4c:5d:a1:eb:13:65:
+ bf:54:14:cc:f3:ee:dc:d7:ec:3c:97:f2:78:56:b8:
+ df:72:5c:70:fc:ce:06:dd:9f:d2:07:31:ef:e7:52:
+ 91:9e:cd:ba:d7:c0:18:44:07:31:65:49:32:69:13:
+ 4a:eb:8f
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ B5:36:BC:3C:8C:1A:AB:2C:F6:59:19:2D:83:14:DA:93:25:15:D6:86
+ X509v3 Subject Key Identifier:
+ B5:36:BC:3C:8C:1A:AB:2C:F6:59:19:2D:83:14:DA:93:25:15:D6:86
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: sha512WithRSAEncryption
+ Signature Value:
+ 14:fb:31:25:38:31:f8:ca:08:b2:23:76:38:ad:f8:d3:59:f5:
+ cc:b4:57:25:e1:44:be:7e:fc:16:ec:ae:fa:26:9f:4f:67:16:
+ 4a:56:f0:fd:ed:c7:19:01:34:8e:90:5a:2d:d6:80:5c:ec:71:
+ d2:81:25:82:1e:00:71:df:9a:d1:d5:1d:22:bb:d1:a5:f3:62:
+ 0f:b4:eb:dc:24:73:fe:a6:56:cd:9a:14:c5:04:35:16:31:a2:
+ 07:eb:a5:00:e2:b6:f8:5f:72:fd:3f:61:49:8e:de:7e:4d:38:
+ d7:7a:1e:74:37:6c:51:dc:be:00:04:b8:38:14:f3:20:c1:ed:
+ 9b:a7:23:fd:0d:42:84:1d:7f:f2:73:c3:d0:78:63:f1:9f:ec:
+ d7:5b:e9:f1:be:6c:a0:4b:03:9e:8d:69:e1:14:da:88:10:81:
+ 23:53:ff:da:54:2b:0b:c6:b9:96:95:04:18:46:f3:7b:a8:97:
+ d8:5b:68:a4:e4:38:1c:0e:45:e5:98:d3:09:ae:9a:5e:ec:b3:
+ 79:0d:39:72:f2:f4:94:9d:0e:9e:60:22:e6:a8:f6:4c:85:cd:
+ 07:82:3a:68:39:cd:3d:5f:e3:38:f4:b6:af:3b:6b:4a:9f:60:
+ 51:45:a2:40:02:e5:aa:0c:e3:3e:d1:78:d4:a2:74:9c:26:ba:
+ 05:9a:28:70:4a:3e:a6:0b:d0:1d:49:f0:ba:f8:ae:41:10:7e:
+ a4:07:12:bd:a8:cf:29:3d:57:bb:c7:f1:43:47:00:3e:ae:70:
+ 18:5a:20:7b:09:cb:3a:3a:70:80:e5:4c:60:98:c1:15:c1:1d:
+ 4a:f7:c8:f0:9b:e1:72:ad:e7:5d:68:58:0b:04:b1:8c:bc:9f:
+ b7:fb:6e:8b:5b:04:55:fb:eb:23:55:d7:78:50:da:25:cb:be:
+ 27:36:bb:24:1a:79:1c:51:d1:fe:13:bb:ff:78:2c:dc:a4:be:
+ 2f:f6:c5:4b:53:cf:a7:4c:99:5e:70:ac:59:88:04:ae:64:04:
+ bf:7b:a6:7a:4d:d3:e8:77:bd:a1:7e:50:15:f3:ef:49:30:85:
+ 4d:21:57:aa:db:2c:75:97:ad:81:01:87:a2:b1:70:9d:1e:06:
+ 5a:03:60:b1:3f:a6:6d:82:2c:d4:14:b1:81:a5:e8:3d:88:1d:
+ b4:72:2c:58:37:8a:8e:38:94:b8:73:dd:a9:e0:b8:f6:77:a2:
+ b3:7c:58:de:ae:69:3a:b5:8b:a5:1a:bb:f2:d8:74:06:9c:fd:
+ 62:73:20:21:76:b1:7e:70:9e:19:d4:eb:17:62:19:38:99:cd:
+ 36:2b:47:fe:31:cb:df:b9:e4:ac:08:d3:d8:a6:eb:d4:9e:7e:
+ 4b:64:a4:55:5d:2b:17:c9
+SHA1 Fingerprint=B9:82:07:97:AE:52:A5:68:6F:46:07:DF:FD:03:72:3D:92:86:88:2D
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/DigiCert_SMIME_ECC_P384_Root_G5.pem b/secure/caroot/untrusted/DigiCert_SMIME_ECC_P384_Root_G5.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/DigiCert_SMIME_ECC_P384_Root_G5.pem
@@ -0,0 +1,63 @@
+##
+## DigiCert SMIME ECC P384 Root G5
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 05:3f:6e:a0:06:01:72:7d:ed:3f:c3:a3:b6:a3:d6:ef
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = US, O = "DigiCert, Inc.", CN = DigiCert SMIME ECC P384 Root G5
+ Validity
+ Not Before: Jan 15 00:00:00 2021 GMT
+ Not After : Jan 14 23:59:59 2046 GMT
+ Subject: C = US, O = "DigiCert, Inc.", CN = DigiCert SMIME ECC P384 Root G5
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:16:9d:55:e5:b6:d4:fb:fb:67:6b:1a:d4:a1:aa:
+ d2:77:95:3e:88:e5:07:9f:b6:70:66:20:28:a4:88:
+ ec:70:35:af:b3:32:ff:37:13:4a:9e:bc:01:03:de:
+ 84:c1:b8:c6:e6:65:47:89:f2:13:55:bf:cd:a5:1e:
+ 08:60:7f:ad:7f:e8:61:92:29:cf:09:47:5e:0b:1c:
+ c0:1f:a4:bf:f2:5b:bc:98:ef:99:4c:cc:70:6b:b6:
+ ba:d0:28:1d:bf:be:04
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ 73:7A:6B:96:DB:42:07:8B:52:66:C2:64:32:17:FE:E0:67:90:2E:AD
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:64:02:30:37:44:f5:32:80:e3:71:eb:f4:6d:cf:7c:cc:91:
+ 9a:c3:6e:71:d8:d2:23:5d:92:4d:82:42:6d:5c:61:95:f6:91:
+ f5:a7:08:f6:6a:97:e9:9c:94:2d:98:70:fd:33:b6:09:02:30:
+ 07:3c:2f:b9:58:82:5e:0f:a3:62:a8:93:67:f0:20:c3:69:bf:
+ 03:2c:3b:50:a7:3b:af:41:38:c9:52:48:91:d6:0e:fb:bc:60:
+ 30:7c:64:3f:12:1e:45:7f:51:3e:f4:a6
+SHA1 Fingerprint=1C:B8:A7:08:C9:0D:20:79:01:A0:B2:36:7F:F0:95:65:E4:53:24:FE
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/DigiCert_SMIME_RSA4096_Root_G5.pem b/secure/caroot/untrusted/DigiCert_SMIME_RSA4096_Root_G5.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/DigiCert_SMIME_RSA4096_Root_G5.pem
@@ -0,0 +1,130 @@
+##
+## DigiCert SMIME RSA4096 Root G5
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 05:f6:ba:04:23:83:46:cb:7d:5c:e6:b9:5b:ba:1c:55
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = US, O = "DigiCert, Inc.", CN = DigiCert SMIME RSA4096 Root G5
+ Validity
+ Not Before: Jan 15 00:00:00 2021 GMT
+ Not After : Jan 14 23:59:59 2046 GMT
+ Subject: C = US, O = "DigiCert, Inc.", CN = DigiCert SMIME RSA4096 Root G5
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:e0:6a:5b:d9:f8:f9:7d:ec:b5:7b:ef:5f:dd:5c:
+ 34:d8:da:5d:d1:cb:65:75:ab:21:7c:5b:00:d4:82:
+ 6f:45:85:41:8a:a9:12:02:72:32:f0:14:f5:03:75:
+ bb:63:97:49:0f:40:99:0b:1a:1e:56:a7:d2:d0:e1:
+ ab:dd:e5:04:1b:e3:1f:14:12:02:88:f5:a0:80:09:
+ f6:27:9a:50:f0:ba:e3:a2:e0:ac:6a:14:91:b5:6b:
+ 38:10:7a:a2:31:e1:91:1b:b7:b9:f0:2b:5b:c8:77:
+ 09:76:b7:51:c4:36:0a:99:53:54:44:25:b7:09:35:
+ 86:17:05:56:93:3d:41:b7:02:d7:62:1f:8a:92:11:
+ 87:ea:11:6d:ea:08:11:dc:b1:78:48:49:92:f6:b4:
+ 51:80:78:23:d8:fe:e1:56:1a:3a:90:13:56:34:89:
+ d5:e2:95:8b:5f:de:b2:cc:fb:3f:38:b7:85:f7:ea:
+ 9e:bf:2e:a1:2e:2f:4d:7d:6a:11:2e:36:a0:ff:11:
+ 08:04:95:55:e0:1b:3b:67:93:a9:94:55:ea:32:ed:
+ 06:3a:7f:c2:7f:e3:ad:13:27:d1:34:41:b3:30:c3:
+ bf:b4:88:f8:03:82:a4:df:3e:ab:78:77:a0:59:93:
+ 71:e7:dd:eb:00:04:7b:cc:48:39:28:e0:1e:a3:15:
+ 69:c8:36:b2:a1:0b:97:df:55:d6:ef:91:9c:a4:f6:
+ 16:f7:51:0a:ee:03:23:91:dc:04:ff:e0:dd:38:f6:
+ 22:03:00:c2:07:71:1a:12:c9:d7:46:2a:94:1b:cd:
+ d6:bb:1b:ee:bf:be:4d:50:58:b0:0b:cd:30:76:29:
+ f5:cf:e5:b6:6a:2f:76:b0:b0:69:6a:d0:6d:65:18:
+ 35:7e:93:bc:72:17:c1:55:42:cd:2f:c2:25:bb:f4:
+ fd:1d:a1:64:22:54:5d:e2:9e:72:41:84:6e:71:96:
+ ea:45:07:b6:5e:7a:4a:86:9d:73:64:77:38:03:d2:
+ 0f:53:a5:55:20:c4:4d:ff:68:6f:55:a9:ea:dd:71:
+ e4:4f:d9:85:a3:7c:4e:29:02:9e:0b:09:f2:1a:53:
+ cc:00:a6:dd:d1:34:f6:0d:c1:30:b1:9c:02:64:ac:
+ 35:ed:a5:b0:29:b1:d2:95:33:0f:d2:20:33:bd:ec:
+ 23:4b:f2:19:f9:da:98:64:e4:2c:31:1f:2e:e1:8d:
+ 1c:04:95:28:4d:8c:58:cd:4b:e5:73:82:86:8c:ec:
+ a8:d6:79:5c:fb:64:bb:dc:0c:4c:28:f6:17:af:e2:
+ 68:d6:16:86:98:db:fc:01:dc:31:ba:f8:9c:0e:f9:
+ 28:46:4a:e1:fd:96:06:45:79:11:68:17:65:5c:8b:
+ 26:87:5b
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ D1:A3:D4:57:1D:4F:55:DB:75:4C:5C:42:9E:63:16:CE:B4:C6:3B:1F
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 07:a7:0a:de:53:bb:9a:eb:70:bf:b2:36:90:cd:e4:a7:b8:f1:
+ 0c:e4:5d:5a:1d:78:65:fc:c9:b8:1e:23:11:57:7c:69:35:6d:
+ 01:ff:53:50:bf:07:0e:ba:c7:01:3f:58:2a:94:75:03:ab:1c:
+ 0b:23:dc:1b:8a:1e:37:3d:1d:58:8f:73:d9:b3:2a:6f:df:10:
+ a0:5b:0c:a7:ca:b0:7f:b9:24:a2:01:35:32:e5:5e:46:41:eb:
+ d8:7f:73:e7:42:e9:a4:51:26:77:81:0a:a8:eb:0f:0a:50:9d:
+ 7e:8a:20:67:fc:0b:8e:3a:11:d3:c5:8c:60:18:d9:4b:b1:fc:
+ d4:f1:b4:49:4e:ae:87:e1:d1:fb:76:a1:5f:f3:06:cf:97:96:
+ 0c:e9:9e:75:81:5c:53:0d:22:fc:36:e6:49:6e:74:db:00:85:
+ 8d:7c:22:a0:8e:fb:10:4c:d4:62:13:5b:ef:4b:72:26:8b:fc:
+ 4e:8a:8f:fe:97:10:53:c5:78:8b:42:64:1b:5f:e0:89:fd:bb:
+ 09:7f:50:e0:54:85:26:11:6a:1d:65:f9:49:29:dc:7c:36:df:
+ fb:3d:f7:d2:ac:ee:32:8d:6e:a6:7d:39:9c:45:c4:ca:0d:f5:
+ 3b:b4:79:53:a5:2f:56:c7:51:c5:8a:4c:64:5d:90:43:23:8e:
+ 6b:4c:17:78:cc:e8:bf:f5:3b:e4:a8:48:cf:ad:9b:0c:df:32:
+ 4a:d3:d9:12:8e:23:78:0d:2d:af:9f:af:9e:3c:09:c2:97:00:
+ ed:3a:69:1c:71:3f:39:df:d3:8f:c4:66:f5:ef:36:94:0f:f3:
+ dd:92:b6:96:5f:90:a6:dd:73:aa:a6:20:94:94:25:6a:09:0c:
+ 72:e4:13:23:60:4c:a3:ca:17:2e:7b:67:00:db:d0:cd:ea:7a:
+ 1f:39:26:57:89:30:77:cb:4e:e5:95:45:4f:5f:fb:36:5c:3d:
+ f9:20:b5:3a:10:25:4f:93:32:5a:ee:c1:96:e8:e9:56:04:b0:
+ 49:61:4d:ec:78:a8:9d:18:c1:ff:d8:ea:2f:56:ef:95:2b:7b:
+ 04:5e:67:e3:55:40:ed:39:04:f9:0b:79:f5:6a:8c:5c:0f:89:
+ 9a:90:c7:cd:8b:de:db:26:35:a1:6e:cd:b3:42:f2:a2:0f:3b:
+ 0c:8e:93:ff:14:cf:fc:f7:93:f7:e4:41:08:6e:19:52:11:0f:
+ 53:19:73:78:0c:cf:d8:85:81:f8:ad:55:c8:b0:9e:46:63:af:
+ 9c:52:ee:5c:bf:f0:c0:5b:37:1e:09:20:d2:3e:23:c6:a1:15:
+ 4a:0e:36:7e:30:c5:79:6a:bc:22:88:d9:0c:52:40:1f:dd:4e:
+ 0f:67:26:16:d2:ad:17:1c
+SHA1 Fingerprint=5B:C5:AD:E2:9A:A7:54:DA:84:89:53:A5:FE:D7:5B:46:86:D0:57:08
+-----BEGIN CERTIFICATE-----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==
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Entrust_Root_Certification_Authority_-_G4.pem b/secure/caroot/untrusted/Entrust_Root_Certification_Authority_-_G4.pem
--- a/secure/caroot/untrusted/Entrust_Root_Certification_Authority_-_G4.pem
+++ b/secure/caroot/untrusted/Entrust_Root_Certification_Authority_-_G4.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Entrust_net_Premium_2048_Secure_Server_CA.pem b/secure/caroot/untrusted/Entrust_net_Premium_2048_Secure_Server_CA.pem
rename from secure/caroot/trusted/Entrust_net_Premium_2048_Secure_Server_CA.pem
rename to secure/caroot/untrusted/Entrust_net_Premium_2048_Secure_Server_CA.pem
--- a/secure/caroot/trusted/Entrust_net_Premium_2048_Secure_Server_CA.pem
+++ b/secure/caroot/untrusted/Entrust_net_Premium_2048_Secure_Server_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GLOBALTRUST_2020.pem b/secure/caroot/untrusted/GLOBALTRUST_2020.pem
rename from secure/caroot/trusted/GLOBALTRUST_2020.pem
rename to secure/caroot/untrusted/GLOBALTRUST_2020.pem
--- a/secure/caroot/trusted/GLOBALTRUST_2020.pem
+++ b/secure/caroot/untrusted/GLOBALTRUST_2020.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/GlobalSign_Root_CA.pem b/secure/caroot/untrusted/GlobalSign_Root_CA.pem
rename from secure/caroot/trusted/GlobalSign_Root_CA.pem
rename to secure/caroot/untrusted/GlobalSign_Root_CA.pem
--- a/secure/caroot/trusted/GlobalSign_Root_CA.pem
+++ b/secure/caroot/untrusted/GlobalSign_Root_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/GlobalSign_Secure_Mail_Root_E45.pem b/secure/caroot/untrusted/GlobalSign_Secure_Mail_Root_E45.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/GlobalSign_Secure_Mail_Root_E45.pem
@@ -0,0 +1,63 @@
+##
+## GlobalSign Secure Mail Root E45
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 76:53:fe:aa:27:1d:95:46:5d:d6:f1:9e:e5:b8:90:0a
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root E45
+ Validity
+ Not Before: Mar 18 00:00:00 2020 GMT
+ Not After : Mar 18 00:00:00 2045 GMT
+ Subject: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root E45
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:f9:79:8b:81:47:37:89:96:3f:45:49:50:7f:1a:
+ 26:0b:93:32:7e:2e:c0:c0:a7:08:9a:c3:6e:8f:9b:
+ 3e:0b:22:ec:37:53:b7:6f:8a:b0:bc:27:37:4b:6d:
+ a9:46:3b:d9:1f:ff:a5:a1:44:bb:2d:73:bf:9e:41:
+ 07:5c:53:9b:51:08:3a:5a:bb:6f:38:c7:16:91:78:
+ c2:4a:13:69:1d:82:df:5a:2f:00:88:96:a2:2e:1c:
+ 74:f9:9d:7e:66:37:8a
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ DF:13:5E:8B:5F:C2:40:02:FD:56:B7:94:4C:B6:1E:D5:A6:B1:14:96
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:65:02:30:13:b0:be:d7:71:20:3e:e4:ab:9c:ce:36:12:7d:
+ 5f:4c:1f:2a:b5:69:45:33:5f:d3:2d:5a:b2:e4:88:c7:de:0a:
+ 36:42:32:79:9d:a6:6b:ba:e1:f9:44:2a:7b:8a:c3:12:02:31:
+ 00:a0:66:1c:4e:87:9d:87:c9:ed:99:4c:1b:0a:ee:2d:60:c3:
+ 37:c7:1d:cd:b5:72:b0:d9:c6:ef:bc:f2:ff:3f:f0:52:dd:08:
+ e7:aa:64:79:c3:e4:69:57:91:2f:a4:cb:7c
+SHA1 Fingerprint=18:2E:1F:32:4F:89:DF:BE:FE:88:89:F0:93:C2:C4:A0:2B:67:75:21
+-----BEGIN CERTIFICATE-----
+MIICITCCAaegAwIBAgIQdlP+qicdlUZd1vGe5biQCjAKBggqhkjOPQQDAzBSMQsw
+CQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEoMCYGA1UEAxMf
+R2xvYmFsU2lnbiBTZWN1cmUgTWFpbCBSb290IEU0NTAeFw0yMDAzMTgwMDAwMDBa
+Fw00NTAzMTgwMDAwMDBaMFIxCzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxT
+aWduIG52LXNhMSgwJgYDVQQDEx9HbG9iYWxTaWduIFNlY3VyZSBNYWlsIFJvb3Qg
+RTQ1MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE+XmLgUc3iZY/RUlQfxomC5Myfi7A
+wKcImsNuj5s+CyLsN1O3b4qwvCc3S22pRjvZH/+loUS7LXO/nkEHXFObUQg6Wrtv
+OMcWkXjCShNpHYLfWi8AiJaiLhx0+Z1+ZjeKo0IwQDAOBgNVHQ8BAf8EBAMCAYYw
+DwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQU3xNei1/CQAL9VreUTLYe1aaxFJYw
+CgYIKoZIzj0EAwMDaAAwZQIwE7C+13EgPuSrnM42En1fTB8qtWlFM1/TLVqy5IjH
+3go2QjJ5naZruuH5RCp7isMSAjEAoGYcToedh8ntmUwbCu4tYMM3xx3NtXKw2cbv
+vPL/P/BS3QjnqmR5w+RpV5EvpMt8
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/GlobalSign_Secure_Mail_Root_R45.pem b/secure/caroot/untrusted/GlobalSign_Secure_Mail_Root_R45.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/GlobalSign_Secure_Mail_Root_R45.pem
@@ -0,0 +1,131 @@
+##
+## GlobalSign Secure Mail Root R45
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 76:53:fe:a8:4c:50:ab:9f:8d:32:b5:1d:03:8f:57:dc
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root R45
+ Validity
+ Not Before: Mar 18 00:00:00 2020 GMT
+ Not After : Mar 18 00:00:00 2045 GMT
+ Subject: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root R45
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:dc:79:cc:6d:06:f9:6d:bb:e0:56:04:6c:7f:e0:
+ 75:cc:2d:05:49:e8:4b:dc:54:ec:5b:77:95:72:bf:
+ 7f:62:9d:85:a9:8a:24:50:5f:53:e5:db:74:6f:a4:
+ 29:5b:13:2a:09:ad:9a:c5:2f:c2:f7:76:3b:a1:45:
+ 46:aa:43:e6:24:fe:2b:b0:6f:32:70:19:46:5a:79:
+ 26:2f:fc:3d:7d:5f:64:cb:57:cc:61:61:a8:d9:95:
+ 6e:e3:95:a0:6e:7f:47:12:18:d6:ef:03:c9:fb:8a:
+ fa:9a:bd:82:15:a9:55:77:4b:11:4f:59:e0:6b:c3:
+ 71:f3:0c:d8:54:d5:81:68:3e:13:b9:15:2e:87:8a:
+ 3c:44:27:36:62:24:6e:f8:2c:05:72:30:61:bd:42:
+ 91:23:c4:9d:25:a7:d9:54:9a:14:a3:31:ad:80:79:
+ 0c:a7:63:6c:98:a3:ac:57:47:33:1f:65:96:e1:d0:
+ d2:35:da:f9:71:f7:a1:a6:25:b5:41:5d:df:3e:60:
+ d8:d1:f6:9f:a5:f2:b8:cc:13:aa:8f:f9:b2:6e:e1:
+ 83:2d:93:dd:3e:85:1a:dd:e8:b1:5c:26:01:cb:49:
+ 85:fc:fc:d2:d4:7f:85:62:86:74:f9:cb:ec:35:22:
+ a2:0c:30:8f:3b:ab:79:eb:56:f2:fa:42:f3:ed:f9:
+ 1f:45:89:40:29:ad:ea:92:74:ea:52:fd:56:b4:2b:
+ da:a2:ed:75:c2:6e:ab:ce:52:90:4b:f6:de:f0:49:
+ 8f:9a:48:d4:88:19:6d:45:e6:cc:8c:b9:dd:64:60:
+ 60:02:40:f8:b9:cf:bc:58:eb:3d:85:b9:c6:0a:d3:
+ 9c:07:66:8f:c7:18:39:23:46:e1:3c:1e:a3:2f:50:
+ 61:92:0b:3d:2b:6c:f1:a3:47:38:57:91:ab:0d:8f:
+ c6:9d:4d:04:d2:26:52:5c:e5:a5:fd:2a:2d:16:2a:
+ 01:69:e7:a9:7d:e1:36:b7:b1:2a:c5:d9:b1:8d:bd:
+ b9:8b:ce:cc:8b:a1:3e:0b:48:cd:50:95:34:c4:d8:
+ 08:59:d8:6b:26:f4:be:f5:d4:22:17:00:57:c9:ae:
+ 9b:04:30:33:9f:0b:fb:df:56:a2:c9:6e:54:76:da:
+ b1:97:62:27:59:0f:11:8a:22:1b:64:96:3f:a8:f1:
+ b7:24:4a:8d:3c:53:7c:6d:83:76:3d:b2:26:48:73:
+ f5:44:16:01:2d:09:2a:8e:16:96:50:d0:73:06:5d:
+ bb:22:48:82:4c:0a:46:5a:3f:80:ff:5c:f2:f2:9a:
+ ac:2c:08:e0:d6:ea:f0:12:38:81:4f:a6:10:ed:46:
+ ab:cc:16:9c:0b:cf:64:a6:99:02:85:44:67:46:ad:
+ fd:4d:e7
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ A0:93:15:28:6E:EE:8F:08:B2:35:C6:9E:62:79:74:A7:B1:0E:2B:7B
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 45:0a:f8:d1:5c:ac:62:81:d0:04:d7:b6:ff:57:51:89:0b:0c:
+ cb:de:24:65:37:fb:ab:9e:ed:66:f4:ea:0c:19:69:89:b8:19:
+ b1:30:56:b4:d9:f6:f7:be:c6:ae:97:cb:45:f6:11:8c:3a:30:
+ 64:4c:c1:9f:59:c0:46:42:08:06:47:64:17:78:e0:95:07:06:
+ d6:8c:a2:ac:a9:d9:3f:d3:7b:56:4f:fc:c4:87:28:df:b6:2b:
+ 16:23:c0:9f:1f:5b:e3:d6:44:5e:22:4f:23:04:8c:35:16:b5:
+ 79:07:86:5c:2f:97:e2:f6:08:64:a6:dc:db:a8:8a:e3:a4:7b:
+ 77:0d:d1:29:93:28:20:b4:53:a3:4b:4e:5f:de:c1:f6:75:23:
+ fc:1f:3c:78:4f:70:31:78:2f:a2:35:54:71:04:ac:c8:c4:6d:
+ c3:f6:91:b1:fe:cd:ee:44:6e:81:f6:40:c5:3e:2a:01:bf:ab:
+ 4c:b1:03:3f:0d:11:e4:0f:d2:24:e3:22:88:9b:9f:5f:47:3d:
+ 51:49:e0:09:37:7e:17:21:31:76:b7:67:71:48:28:4b:25:d7:
+ 10:e8:9f:61:59:16:c5:3e:32:4e:1f:0c:ce:a3:cc:0f:e4:c7:
+ 11:07:22:2f:38:08:dd:5b:97:eb:42:6c:59:9a:9a:ee:7a:d0:
+ 9d:df:c5:db:09:43:2e:0a:aa:19:3d:6b:e8:6a:30:7a:57:e6:
+ bf:b3:6a:39:a9:8f:e3:f1:4f:65:68:b6:bd:9f:28:8f:a1:16:
+ 5a:09:50:3a:32:2e:1d:2f:44:11:42:a6:00:e6:31:98:ff:2d:
+ a1:0f:e6:a4:60:56:cf:79:d7:b2:4e:d7:b0:fa:6e:0c:57:23:
+ c7:ce:1f:a5:b1:4c:6d:19:49:9e:0e:7f:70:8f:71:3f:58:28:
+ 9f:75:dd:61:e0:3a:b7:39:b6:ee:97:d4:35:51:fb:8b:49:60:
+ c8:3c:66:ae:97:ee:8d:26:59:57:bb:78:f0:7a:50:30:09:b0:
+ 60:aa:9f:4e:dc:c9:3e:1e:3a:dc:62:93:33:b0:3a:54:74:6f:
+ 2c:31:45:d1:6b:11:32:6a:68:76:f6:3d:f6:6a:13:5e:24:98:
+ e7:ea:1d:9a:cf:78:82:07:60:f7:4d:10:d3:81:9a:45:8d:9e:
+ af:9b:dc:80:c7:43:b2:95:68:a4:c3:0e:e8:0a:47:15:bf:54:
+ 33:dc:01:e7:d5:a6:1e:73:d8:7a:b2:bf:2f:ad:e3:55:30:9e:
+ df:0e:41:bc:e0:11:f5:a1:0c:a8:22:e1:e3:00:a3:4e:70:7c:
+ 92:e3:04:d1:7a:42:8a:75:90:59:e3:9b:d1:4c:a2:64:bd:73:
+ 79:9b:6f:f2:b3:c1:f6:3c
+SHA1 Fingerprint=76:18:D1:F3:80:24:3D:52:40:C6:11:6A:AD:57:77:09:7D:81:30:A0
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/trusted/Go_Daddy_Class_2_CA.pem b/secure/caroot/untrusted/Go_Daddy_Class_2_CA.pem
rename from secure/caroot/trusted/Go_Daddy_Class_2_CA.pem
rename to secure/caroot/untrusted/Go_Daddy_Class_2_CA.pem
--- a/secure/caroot/trusted/Go_Daddy_Class_2_CA.pem
+++ b/secure/caroot/untrusted/Go_Daddy_Class_2_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/HARICA_Client_ECC_Root_CA_2021.pem b/secure/caroot/untrusted/HARICA_Client_ECC_Root_CA_2021.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/HARICA_Client_ECC_Root_CA_2021.pem
@@ -0,0 +1,64 @@
+##
+## HARICA Client ECC Root CA 2021
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 31:68:d9:d8:e1:62:57:1e:d2:19:44:88:e6:10:7d:f0
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client ECC Root CA 2021
+ Validity
+ Not Before: Feb 19 11:03:34 2021 GMT
+ Not After : Feb 13 11:03:33 2045 GMT
+ Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client ECC Root CA 2021
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:07:18:ad:95:96:94:d0:5c:0f:82:f7:2a:40:fa:
+ 02:c9:c9:3d:36:a6:a3:04:6a:c1:6d:95:01:88:60:
+ 12:54:6c:5c:a2:2b:6e:13:3a:88:95:0c:1c:26:86:
+ 36:4a:89:19:b7:18:de:3b:e8:a8:50:1f:ca:df:5b:
+ bf:49:80:15:db:e3:30:e1:1d:5a:c7:2a:8a:01:07:
+ fe:6d:2c:34:ef:28:28:97:bc:c1:f9:57:86:95:8b:
+ 35:cf:9e:5a:d1:68:95
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ 52:08:D2:BE:32:81:25:FD:F5:1A:97:EC:4E:5F:1A:BB:53:CD:90:AD
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:64:02:30:4c:31:45:46:4f:a8:e6:be:c3:77:b2:1a:18:4b:
+ 2d:88:7b:58:e6:ab:94:6b:44:03:b0:17:ff:df:82:73:44:51:
+ 2c:fd:93:1d:06:7b:14:d2:89:ec:40:0c:ef:21:01:2e:02:30:
+ 2f:c9:2e:5a:6c:2c:1d:d9:95:e0:9e:b0:b9:5c:52:7c:f6:f8:
+ 38:ca:2e:f1:d4:1d:f2:a2:49:a2:95:f8:c1:58:5e:4f:fe:73:
+ 0a:ef:31:b0:ab:23:58:13:8c:8b:de:3b
+SHA1 Fingerprint=BE:64:D3:DA:14:4B:D2:6B:CD:AF:8F:DB:A6:A6:72:F8:DE:26:F9:00
+-----BEGIN CERTIFICATE-----
+MIICWjCCAeGgAwIBAgIQMWjZ2OFiVx7SGUSI5hB98DAKBggqhkjOPQQDAzBvMQsw
+CQYDVQQGEwJHUjE3MDUGA1UECgwuSGVsbGVuaWMgQWNhZGVtaWMgYW5kIFJlc2Vh
+cmNoIEluc3RpdHV0aW9ucyBDQTEnMCUGA1UEAwweSEFSSUNBIENsaWVudCBFQ0Mg
+Um9vdCBDQSAyMDIxMB4XDTIxMDIxOTExMDMzNFoXDTQ1MDIxMzExMDMzM1owbzEL
+MAkGA1UEBhMCR1IxNzA1BgNVBAoMLkhlbGxlbmljIEFjYWRlbWljIGFuZCBSZXNl
+YXJjaCBJbnN0aXR1dGlvbnMgQ0ExJzAlBgNVBAMMHkhBUklDQSBDbGllbnQgRUND
+IFJvb3QgQ0EgMjAyMTB2MBAGByqGSM49AgEGBSuBBAAiA2IABAcYrZWWlNBcD4L3
+KkD6AsnJPTamowRqwW2VAYhgElRsXKIrbhM6iJUMHCaGNkqJGbcY3jvoqFAfyt9b
+v0mAFdvjMOEdWscqigEH/m0sNO8oKJe8wflXhpWLNc+eWtFolaNCMEAwDwYDVR0T
+AQH/BAUwAwEB/zAdBgNVHQ4EFgQUUgjSvjKBJf31GpfsTl8au1PNkK0wDgYDVR0P
+AQH/BAQDAgGGMAoGCCqGSM49BAMDA2cAMGQCMEwxRUZPqOa+w3eyGhhLLYh7WOar
+lGtEA7AX/9+Cc0RRLP2THQZ7FNKJ7EAM7yEBLgIwL8kuWmwsHdmV4J6wuVxSfPb4
+OMou8dQd8qJJopX4wVheT/5zCu8xsKsjWBOMi947
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/HARICA_Client_RSA_Root_CA_2021.pem b/secure/caroot/untrusted/HARICA_Client_RSA_Root_CA_2021.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/HARICA_Client_RSA_Root_CA_2021.pem
@@ -0,0 +1,132 @@
+##
+## HARICA Client RSA Root CA 2021
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 55:52:f8:1e:db:1b:24:2c:9e:bb:96:18:cd:02:28:3e
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client RSA Root CA 2021
+ Validity
+ Not Before: Feb 19 10:58:46 2021 GMT
+ Not After : Feb 13 10:58:45 2045 GMT
+ Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client RSA Root CA 2021
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:81:db:57:42:90:2c:74:35:f4:f8:b8:74:19:4d:
+ ab:09:5a:77:45:81:73:62:b0:35:9f:f8:d0:b7:33:
+ 00:87:13:b6:96:ab:0e:54:12:30:07:bc:9b:b7:48:
+ d7:d1:19:83:ae:8e:d8:a9:f1:a9:00:84:b0:8c:5e:
+ 9e:e8:0c:8f:54:69:bf:f6:d4:08:4f:26:70:fe:18:
+ 41:63:1a:b3:32:8b:40:f8:07:ab:57:31:f0:c6:16:
+ 76:67:9a:b4:dd:2f:f2:d1:6b:c5:d0:92:84:91:71:
+ 6e:0f:2e:63:e9:1f:53:a4:dd:52:13:cc:09:83:29:
+ 81:0c:c5:53:75:44:b1:0e:67:53:18:d0:c3:1f:88:
+ 4b:9f:94:24:b4:29:bc:bb:e8:4e:fd:6f:d2:15:1d:
+ 49:dc:8d:70:f2:11:1a:20:51:55:11:ba:88:6f:c4:
+ f7:50:79:d6:aa:31:e2:84:3d:5e:32:c8:77:2a:50:
+ 71:e5:0b:2f:e9:b6:ea:ef:ab:0a:33:39:0e:fd:8f:
+ a5:67:43:82:8e:98:69:09:09:1b:40:cd:38:67:47:
+ ea:c9:ec:97:71:12:de:24:f5:72:3c:d1:f7:43:4c:
+ 26:f7:90:b2:89:e9:45:4b:55:3d:31:05:7a:41:e2:
+ 95:ba:43:c0:17:c5:b6:85:3d:19:8d:64:70:f3:5b:
+ ac:cd:9f:d3:29:75:87:4b:95:67:6a:a6:f8:d1:dd:
+ bc:90:86:89:43:29:a9:37:5b:f5:5d:b0:26:5a:53:
+ 42:76:90:2b:cf:9e:56:6c:2b:54:cf:5c:9a:65:df:
+ 5b:8b:48:60:38:7c:fb:c5:0b:cf:76:04:63:02:33:
+ 2a:7d:f5:83:67:e7:fa:c6:43:fd:2b:0f:d4:26:2f:
+ 77:a4:32:c1:24:ea:64:9d:bf:b3:38:71:31:44:f2:
+ 47:b8:a2:66:41:a1:fb:9b:7b:bc:c7:46:6a:75:bf:
+ 5a:a2:8c:e8:6a:44:c1:b8:96:b5:c0:32:08:2d:7b:
+ 74:35:73:b2:ca:c6:fe:af:11:72:18:f6:e7:c8:c2:
+ cf:a5:2a:ea:7b:d6:59:e8:7c:a0:b2:6a:40:09:69:
+ 0e:a5:96:db:d1:00:b9:f1:88:6e:36:f0:88:b2:9d:
+ f1:52:f2:c3:7c:bf:30:89:3c:0a:69:f9:22:a4:65:
+ e1:9b:e0:74:c6:b1:85:97:96:2c:ae:94:8f:50:a6:
+ 39:12:1f:be:47:f2:81:78:d3:75:36:9e:7d:5a:20:
+ 97:e2:52:ae:99:9f:c6:7c:9b:66:f3:fe:d8:cf:ee:
+ bd:97:06:1d:2d:85:dc:3e:36:53:96:7b:20:ba:e8:
+ c8:e1:ad:96:62:3e:11:7c:b3:00:84:9e:a7:4c:71:
+ ab:4a:37
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ A0:D6:07:3D:5E:24:F7:7B:A0:44:2E:24:52:0D:19:AA:2B:04:91:A7
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ Signature Algorithm: sha256WithRSAEncryption
+ Signature Value:
+ 0d:47:f9:09:66:31:52:ec:79:ee:c2:a8:f2:68:3e:ed:96:45:
+ cb:3a:a6:98:63:3f:ea:2b:4d:4e:03:d0:1c:82:e1:cb:d3:e5:
+ d6:ab:5b:67:28:bc:9d:fe:0c:99:0a:80:55:a7:ce:1b:23:61:
+ 0d:b0:57:f0:fe:e0:ca:be:e6:90:db:83:2c:be:83:8e:f4:79:
+ b6:fe:d0:0d:42:a7:58:1f:69:ea:81:f5:05:a5:fe:46:68:eb:
+ 6c:78:c9:e0:ea:e7:e6:de:31:c5:d2:d5:2c:82:63:28:9d:5d:
+ a8:1a:7e:88:e6:e7:2b:f1:2c:d5:d0:05:9e:dc:2d:bd:37:66:
+ d4:04:a2:a7:ad:bf:3a:c2:a8:3b:ad:ff:8d:9d:33:e0:b9:9a:
+ 84:a1:87:1f:76:f4:82:74:d7:0e:f9:30:48:3e:5b:88:3e:aa:
+ 5c:6b:d6:2f:0c:e8:8e:73:c2:18:91:83:39:b6:66:5a:d0:1f:
+ 60:27:5d:4d:e3:f6:3a:0d:66:50:9c:78:7b:ab:f3:13:10:ae:
+ 0f:2f:ab:e8:64:b3:18:20:9d:46:35:64:25:73:ea:9b:10:5c:
+ 58:35:89:b1:46:48:a7:f4:ac:d4:1d:9e:5b:cc:a9:a5:1a:13:
+ 4f:24:50:aa:d9:1b:6d:b1:40:fb:9d:dd:58:74:c4:c2:6f:14:
+ 72:ec:db:35:9f:b8:54:75:45:c3:a6:c8:1a:28:35:3a:ae:65:
+ f2:a9:98:ce:af:5b:c9:38:8c:31:3b:7f:cc:dc:96:fd:e2:5b:
+ d6:d0:59:f4:76:ba:0b:cb:4f:83:10:c7:40:d0:1d:60:e9:2a:
+ e5:48:58:77:0c:45:69:be:19:71:04:24:e2:e3:24:1f:4a:c8:
+ c1:3e:99:f5:96:98:38:48:25:a1:15:b0:1b:d7:e2:84:18:5b:
+ f6:71:35:9a:68:7b:40:cc:18:5c:0c:24:9d:d4:95:f5:99:aa:
+ 46:ea:ae:ac:bf:f4:14:19:24:e8:8c:ec:e3:f5:bc:06:68:8a:
+ 2a:0c:05:5f:0a:97:75:a7:dc:7e:c0:fd:d7:7a:18:df:30:d1:
+ 38:4b:1f:b0:98:70:bf:cc:7c:73:f0:6e:c4:31:a5:a4:97:1d:
+ ac:bf:ce:6c:21:4a:be:27:23:67:f3:06:56:81:0a:91:8e:b6:
+ e1:03:05:33:2c:da:34:08:4d:4e:50:23:ad:1f:a5:c5:d4:7a:
+ fe:ea:09:ec:a7:28:60:8b:46:7c:b5:ea:9b:dd:4f:f9:e7:6b:
+ 15:c6:88:cf:43:db:e5:27:dc:04:56:6e:6f:46:15:f1:56:2d:
+ e8:5c:0c:73:c3:23:81:38:20:cb:c9:0c:69:cf:2c:ab:3b:84:
+ 60:33:19:52:fd:69:14:33
+SHA1 Fingerprint=46:C6:90:0A:77:3A:B6:BC:F4:65:AD:AC:FC:E3:F7:07:00:6E:DE:6E
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/LAWtrust_Root_CA2__4096_.pem b/secure/caroot/untrusted/LAWtrust_Root_CA2__4096_.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/LAWtrust_Root_CA2__4096_.pem
@@ -0,0 +1,134 @@
+##
+## LAWtrust Root CA2 (4096)
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number: 1427795633 (0x551a6eb1)
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: C = ZA, O = LAWtrust, CN = LAWtrust Root CA2 (4096)
+ Validity
+ Not Before: Feb 14 09:19:38 2023 GMT
+ Not After : Feb 14 09:49:38 2053 GMT
+ Subject: C = ZA, O = LAWtrust, CN = LAWtrust Root CA2 (4096)
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:cc:17:cb:2b:43:ba:6c:f9:c9:93:8a:65:0d:12:
+ 4c:ec:27:14:b7:13:79:e0:d4:d5:2d:18:56:f1:f9:
+ ea:2a:10:16:4e:6c:44:c7:6a:65:46:f3:9a:89:35:
+ d1:87:f8:33:89:2f:88:09:1a:92:10:91:90:c1:6b:
+ 9f:0e:6e:7f:26:8a:13:5d:18:ac:68:01:0d:10:78:
+ 65:70:d8:8e:8f:84:5a:97:30:18:d0:11:0e:4a:8d:
+ 52:10:a5:81:2b:51:28:f5:63:c4:b6:ec:40:b3:01:
+ e5:ad:77:bd:e5:38:ef:bc:8d:b3:dd:19:a0:7b:0d:
+ 8d:b4:db:6a:fb:25:33:5a:fa:91:af:c4:71:45:30:
+ f8:88:29:7b:cb:bf:d5:ba:27:04:8e:dd:b2:00:f7:
+ ca:5c:99:35:14:ea:fd:75:06:15:08:bb:ca:57:68:
+ fb:3f:fb:b4:34:73:63:d1:d5:e3:c8:38:5a:69:7d:
+ 6a:7a:44:0c:0d:8a:4e:ed:92:1d:10:8f:3b:22:2c:
+ b6:df:ed:c5:c6:f0:89:79:54:65:5e:5f:1b:bd:8f:
+ 7d:df:b9:b7:ed:eb:e4:c5:07:d1:67:3c:95:3b:91:
+ fe:42:7a:52:40:80:04:d2:39:57:4b:f4:92:7d:ff:
+ 9b:ef:e5:9d:c9:09:b2:91:12:38:a6:29:08:3b:ae:
+ eb:ca:cc:ed:4d:e7:4e:21:01:07:fc:6f:32:ce:69:
+ 8c:84:52:c6:77:ea:27:30:0a:de:a5:af:30:2b:68:
+ 1f:ac:d4:ec:21:ad:22:49:76:ce:0f:c2:f2:07:2a:
+ f9:6a:12:83:9a:3b:04:ae:19:7a:fe:a1:86:24:fa:
+ 41:5e:25:7c:40:ac:27:b6:e3:29:36:6f:35:e2:57:
+ d0:19:58:df:ff:64:f6:c3:01:49:76:db:2b:be:bc:
+ b9:4f:14:0a:d5:1b:58:21:f6:1c:2e:00:7c:f8:94:
+ b5:cb:37:1a:14:e4:32:b9:16:d4:60:ec:05:aa:5f:
+ 32:fa:6a:23:12:ac:d4:10:bb:d2:a2:82:b4:4b:0e:
+ 8b:70:27:aa:d6:07:c1:67:88:fa:84:c3:08:c9:8a:
+ 84:c8:d2:37:72:81:0f:8d:16:4a:e4:d7:35:51:a5:
+ 38:0f:8c:84:4b:95:36:c0:f5:d7:9d:e0:5d:8f:ab:
+ 91:ee:00:08:b9:9d:52:1f:ec:f8:99:bb:79:56:b1:
+ 49:da:d2:e5:d8:61:8b:5b:af:f0:ab:37:c5:7b:1a:
+ 8e:86:be:7e:c5:7b:15:1e:61:68:e8:0b:87:8b:73:
+ 49:a1:17:73:7e:29:78:8e:ca:e0:41:2f:75:73:74:
+ a2:97:3a:7f:f7:2e:74:09:b8:4c:60:8b:46:36:19:
+ 10:2d:9d
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Private Key Usage Period:
+ Not Before: Feb 14 09:19:38 2023 GMT, Not After: Feb 14 09:49:38 2053 GMT
+ X509v3 Authority Key Identifier:
+ D7:D6:56:62:5C:3F:17:81:E6:73:44:29:F5:51:05:EF:0B:60:37:AC
+ X509v3 Subject Key Identifier:
+ D7:D6:56:62:5C:3F:17:81:E6:73:44:29:F5:51:05:EF:0B:60:37:AC
+ Signature Algorithm: sha256WithRSAEncryption
+ Signature Value:
+ 49:9c:29:fe:3d:ec:9e:45:7f:ab:3e:3c:fe:23:6f:37:3e:77:
+ a7:53:ff:78:9f:fc:49:44:80:57:66:9c:6e:da:79:ff:cd:45:
+ ad:4c:93:bf:b5:59:c6:e9:10:b7:e5:f8:8c:fb:87:c5:1e:8b:
+ d8:b3:3f:02:96:0a:bb:8a:8e:ef:d7:b4:c0:83:20:38:97:59:
+ 45:64:fc:f6:77:13:f2:09:d7:a1:c8:38:74:08:ea:f9:48:4c:
+ fa:1f:04:9c:b4:ff:ec:6e:56:36:72:93:6c:95:3e:2c:5f:de:
+ 0f:0b:ab:c9:cc:15:3e:16:8f:66:fc:b2:10:b8:a1:d1:b4:de:
+ c0:63:19:cc:ef:53:aa:75:36:22:8b:25:1f:bf:9b:c8:d7:c1:
+ 5f:ec:a6:37:09:aa:7b:62:bc:f6:22:2d:f1:d6:58:dd:8c:bb:
+ 52:f4:0b:a7:76:a9:7a:7b:1a:8d:dc:ad:9a:81:62:2e:86:05:
+ 90:72:47:2f:a1:c9:67:84:b0:0d:6c:b0:b8:9b:16:b7:d0:99:
+ 14:2f:9c:12:9b:23:a8:8d:a6:43:1e:e9:e5:2d:e5:78:a7:1f:
+ 64:94:64:b6:77:b2:a8:5c:fb:09:ab:29:eb:1e:6d:75:d1:f6:
+ d0:c5:a5:c3:1d:9f:1e:f3:1a:2d:b2:c8:1f:e5:28:0a:6e:f3:
+ 5f:fd:da:e6:23:a1:76:90:5c:4b:98:01:82:2c:ee:47:2d:02:
+ 1a:5f:7f:34:c5:69:b5:72:ad:3e:f3:cf:9e:6d:f8:29:e8:11:
+ 27:2b:e0:59:0b:1b:61:eb:4a:ca:69:a5:a4:d5:cd:51:1b:94:
+ 8e:79:cd:df:f6:ae:74:5d:b1:2c:1b:86:53:fe:d1:30:06:41:
+ 34:07:62:82:4c:f4:7e:c7:87:74:0e:b0:21:1e:09:20:80:c1:
+ b3:15:3d:46:6d:d3:f1:06:92:3f:ef:a0:95:8a:1c:6e:77:31:
+ b6:eb:78:29:0c:7b:ee:82:a5:4f:7e:a4:29:5e:9e:aa:2d:f8:
+ 8e:c0:f3:fc:0d:06:85:9b:4e:dc:f7:e2:09:7c:d0:14:51:1e:
+ 7a:b3:23:af:fa:d1:61:2a:65:b5:01:d9:b8:e3:07:ca:24:76:
+ d2:f0:4a:be:ef:86:04:80:42:15:70:11:68:7e:d7:c7:bb:fe:
+ e7:4e:9b:9c:95:a5:1c:4a:a4:c9:d0:09:8c:aa:ce:48:d2:1e:
+ 92:97:d7:11:e9:ed:66:cc:37:dc:f5:d7:1b:74:9b:a6:ea:42:
+ ac:5d:32:e0:58:f4:81:47:ff:d2:12:e2:7e:1c:dc:49:76:96:
+ c3:1d:9f:4b:ca:5c:2a:37:5b:3d:8a:d1:38:9b:21:da:e3:bf:
+ 45:43:d3:e0:58:77:1f:28
+SHA1 Fingerprint=EC:A2:D5:30:A9:AB:2C:7D:0E:75:61:64:4E:0A:E0:16:A1:54:38:7D
+-----BEGIN CERTIFICATE-----
+MIIFmDCCA4CgAwIBAgIEVRpusTANBgkqhkiG9w0BAQsFADBDMQswCQYDVQQGEwJa
+QTERMA8GA1UEChMITEFXdHJ1c3QxITAfBgNVBAMTGExBV3RydXN0IFJvb3QgQ0Ey
+ICg0MDk2KTAgFw0yMzAyMTQwOTE5MzhaGA8yMDUzMDIxNDA5NDkzOFowQzELMAkG
+A1UEBhMCWkExETAPBgNVBAoTCExBV3RydXN0MSEwHwYDVQQDExhMQVd0cnVzdCBS
+b290IENBMiAoNDA5NikwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDM
+F8srQ7ps+cmTimUNEkzsJxS3E3ng1NUtGFbx+eoqEBZObETHamVG85qJNdGH+DOJ
+L4gJGpIQkZDBa58Obn8mihNdGKxoAQ0QeGVw2I6PhFqXMBjQEQ5KjVIQpYErUSj1
+Y8S27ECzAeWtd73lOO+8jbPdGaB7DY2022r7JTNa+pGvxHFFMPiIKXvLv9W6JwSO
+3bIA98pcmTUU6v11BhUIu8pXaPs/+7Q0c2PR1ePIOFppfWp6RAwNik7tkh0Qjzsi
+LLbf7cXG8Il5VGVeXxu9j33fubft6+TFB9FnPJU7kf5CelJAgATSOVdL9JJ9/5vv
+5Z3JCbKREjimKQg7ruvKzO1N504hAQf8bzLOaYyEUsZ36icwCt6lrzAraB+s1Owh
+rSJJds4PwvIHKvlqEoOaOwSuGXr+oYYk+kFeJXxArCe24yk2bzXiV9AZWN//ZPbD
+AUl22yu+vLlPFArVG1gh9hwuAHz4lLXLNxoU5DK5FtRg7AWqXzL6aiMSrNQQu9Ki
+grRLDotwJ6rWB8FniPqEwwjJioTI0jdygQ+NFkrk1zVRpTgPjIRLlTbA9ded4F2P
+q5HuAAi5nVIf7PiZu3lWsUna0uXYYYtbr/CrN8V7Go6Gvn7FexUeYWjoC4eLc0mh
+F3N+KXiOyuBBL3VzdKKXOn/3LnQJuExgi0Y2GRAtnQIDAQABo4GRMIGOMA8GA1Ud
+EwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgEGMCsGA1UdEAQkMCKADzIwMjMwMjE0
+MDkxOTM4WoEPMjA1MzAyMTQwOTQ5MzhaMB8GA1UdIwQYMBaAFNfWVmJcPxeB5nNE
+KfVRBe8LYDesMB0GA1UdDgQWBBTX1lZiXD8XgeZzRCn1UQXvC2A3rDANBgkqhkiG
+9w0BAQsFAAOCAgEASZwp/j3snkV/qz48/iNvNz53p1P/eJ/8SUSAV2acbtp5/81F
+rUyTv7VZxukQt+X4jPuHxR6L2LM/ApYKu4qO79e0wIMgOJdZRWT89ncT8gnXocg4
+dAjq+UhM+h8EnLT/7G5WNnKTbJU+LF/eDwurycwVPhaPZvyyELih0bTewGMZzO9T
+qnU2IoslH7+byNfBX+ymNwmqe2K89iIt8dZY3Yy7UvQLp3apensajdytmoFiLoYF
+kHJHL6HJZ4SwDWywuJsWt9CZFC+cEpsjqI2mQx7p5S3leKcfZJRktneyqFz7Casp
+6x5tddH20MWlwx2fHvMaLbLIH+UoCm7zX/3a5iOhdpBcS5gBgizuRy0CGl9/NMVp
+tXKtPvPPnm34KegRJyvgWQsbYetKymmlpNXNURuUjnnN3/audF2xLBuGU/7RMAZB
+NAdigkz0fseHdA6wIR4JIIDBsxU9Rm3T8QaSP++glYocbncxtut4KQx77oKlT36k
+KV6eqi34jsDz/A0GhZtO3PfiCXzQFFEeerMjr/rRYSpltQHZuOMHyiR20vBKvu+G
+BIBCFXARaH7Xx7v+506bnJWlHEqkydAJjKrOSNIekpfXEentZsw33PXXG3SbpupC
+rF0y4Fj0gUf/0hLifhzcSXaWwx2fS8pcKjdbPYrROJsh2uO/RUPT4Fh3Hyg=
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/OISTE_WISeKey_Global_Root_GA_CA.pem b/secure/caroot/untrusted/OISTE_WISeKey_Global_Root_GA_CA.pem
--- a/secure/caroot/untrusted/OISTE_WISeKey_Global_Root_GA_CA.pem
+++ b/secure/caroot/untrusted/OISTE_WISeKey_Global_Root_GA_CA.pem
@@ -5,8 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/SSL_com_Client_ECC_Root_CA_2022.pem b/secure/caroot/untrusted/SSL_com_Client_ECC_Root_CA_2022.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/SSL_com_Client_ECC_Root_CA_2022.pem
@@ -0,0 +1,66 @@
+##
+## SSL.com Client ECC Root CA 2022
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 76:f8:48:1e:ae:f0:3c:70:1f:e0:3f:25:54:01:83:d5
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = US, O = SSL Corporation, CN = SSL.com Client ECC Root CA 2022
+ Validity
+ Not Before: Aug 25 16:30:32 2022 GMT
+ Not After : Aug 19 16:30:31 2046 GMT
+ Subject: C = US, O = SSL Corporation, CN = SSL.com Client ECC Root CA 2022
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:2d:53:7e:9f:8b:3e:b3:36:ba:50:e2:cc:eb:dc:
+ ba:26:8a:d3:8c:06:3f:67:0f:ef:f5:17:e5:d4:ae:
+ 9a:46:2a:41:01:07:69:e7:67:71:f1:c2:03:36:c6:
+ f0:2b:52:8e:cf:14:92:68:a4:3e:70:51:12:69:8d:
+ 78:a2:82:ca:29:14:c0:e4:94:22:b2:44:92:60:6f:
+ c8:04:a4:67:d5:a2:d0:f3:d0:d7:ea:8e:3c:0f:ba:
+ d2:40:47:90:34:ee:7d
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ B7:FE:2D:62:C5:81:53:CD:52:1A:2F:5D:60:A0:C3:5D:FB:B2:1C:1C
+ X509v3 Subject Key Identifier:
+ B7:FE:2D:62:C5:81:53:CD:52:1A:2F:5D:60:A0:C3:5D:FB:B2:1C:1C
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:65:02:30:4d:07:11:2d:11:fb:b9:26:c3:21:dd:72:e1:17:
+ fc:c1:cf:14:ea:49:ce:71:87:8e:d6:53:dc:11:cd:5d:54:8a:
+ af:d9:2d:f4:8c:51:ea:bc:66:47:e2:7f:95:83:60:65:02:31:
+ 00:8c:21:4c:4f:bb:e5:b0:50:df:90:62:49:e6:cc:91:db:f8:
+ 3f:5d:71:91:08:8e:4f:92:c9:7f:a6:5c:ea:13:7e:ed:6d:c4:
+ e8:c3:2a:6f:5c:11:e1:a5:f3:6a:5a:9a:4d
+SHA1 Fingerprint=80:7B:1D:9D:65:72:3D:C7:56:F9:EC:C5:00:83:49:F6:F2:AC:F4:86
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/SSL_com_Client_RSA_Root_CA_2022.pem b/secure/caroot/untrusted/SSL_com_Client_RSA_Root_CA_2022.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/SSL_com_Client_RSA_Root_CA_2022.pem
@@ -0,0 +1,133 @@
+##
+## SSL.com Client RSA Root CA 2022
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 76:af:ee:88:93:15:45:b6:50:53:9b:80:9c:a4:df:9a
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: C = US, O = SSL Corporation, CN = SSL.com Client RSA Root CA 2022
+ Validity
+ Not Before: Aug 25 16:31:07 2022 GMT
+ Not After : Aug 19 16:31:06 2046 GMT
+ Subject: C = US, O = SSL Corporation, CN = SSL.com Client RSA Root CA 2022
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:b8:58:db:46:30:fb:c9:3f:e3:c8:f0:01:33:34:
+ e2:da:48:a8:18:e9:20:6e:9a:d7:01:e1:d5:29:8f:
+ 30:b4:23:6a:e4:cb:62:b0:be:e2:9f:20:bd:3e:54:
+ a0:39:68:c7:86:37:66:74:06:06:ef:74:2b:da:dc:
+ 9f:84:a9:52:2f:90:d2:ee:7e:7c:fb:a5:22:ad:6f:
+ 70:46:67:96:3d:29:d4:a3:bb:56:7b:14:04:59:c1:
+ 21:63:44:1e:b2:1f:12:5c:90:87:65:0d:88:f6:1e:
+ 88:22:e2:63:54:bb:f3:36:f8:d6:7f:dc:da:ff:29:
+ 35:a9:c6:6e:0e:69:5b:3f:d8:be:82:87:15:70:5d:
+ b0:c7:5c:12:0f:63:a6:38:cd:cf:73:b9:c3:0e:89:
+ 26:37:1b:3f:62:1c:32:69:d1:9b:d9:ff:55:90:31:
+ de:b1:63:dd:cf:c5:74:77:fc:ef:88:21:53:bf:00:
+ 31:1a:26:2c:00:30:a5:5f:6c:e3:e4:f6:00:8a:ca:
+ 98:87:9c:74:03:7a:8b:66:ec:7e:fd:a3:8f:35:25:
+ 5c:78:a5:b3:a4:fb:3d:6d:a9:8a:f0:6c:88:82:8b:
+ fd:4a:d0:6f:e4:d7:a3:b4:8e:34:49:38:be:ce:45:
+ e5:d2:1c:ca:5e:c2:37:14:8b:cd:66:56:33:37:9d:
+ e5:6b:ec:43:92:64:a0:42:da:75:6f:c0:15:ec:f9:
+ 69:bd:34:b9:8a:7b:fa:16:fb:55:fe:52:20:e8:04:
+ 04:56:56:65:f5:37:44:98:c8:8a:46:e9:b7:ac:b8:
+ e8:be:62:8e:54:36:5b:f7:3b:70:bf:5d:ee:2d:ba:
+ 5f:de:42:19:86:f0:7f:8b:eb:08:cb:d8:be:ea:0e:
+ 42:42:a0:36:73:57:17:ed:32:ea:d0:8d:e8:07:1b:
+ 9b:99:e8:c4:9a:62:04:0e:48:f7:3c:12:ba:f7:58:
+ c1:9a:8c:e9:c7:b0:23:36:56:34:1d:cb:6c:da:ba:
+ 07:84:1d:fd:d1:ac:9f:e6:c2:89:ef:c3:b9:6c:18:
+ b3:69:87:57:5f:b5:0c:38:5b:a7:21:24:2a:3b:a7:
+ 34:91:9e:b4:54:ea:28:4f:d3:c1:a3:8b:e4:e6:2b:
+ d5:f2:9d:bf:9b:61:00:22:dd:d6:4b:44:1f:3f:5d:
+ 56:fe:de:9c:78:cc:99:5b:aa:e4:bd:ba:db:43:4b:
+ ad:4c:26:4c:a3:4d:34:8a:6c:74:36:13:db:62:fc:
+ 9b:b2:05:81:ff:ae:3f:0c:cd:f6:1b:a2:f4:39:e7:
+ ca:f5:4c:5c:fb:54:77:35:80:5a:c0:12:a1:13:01:
+ 33:67:3d:9d:81:a1:a9:f5:85:24:58:88:78:e7:f4:
+ e3:68:55
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ F0:38:42:94:34:A9:3C:00:7F:52:EE:39:A5:F7:4B:0D:BC:6A:7D:23
+ X509v3 Subject Key Identifier:
+ F0:38:42:94:34:A9:3C:00:7F:52:EE:39:A5:F7:4B:0D:BC:6A:7D:23
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ Signature Algorithm: sha256WithRSAEncryption
+ Signature Value:
+ 99:4f:db:f0:ea:d6:11:fa:2a:fd:c8:ab:6d:e4:0e:73:62:d2:
+ 42:9f:15:fe:7c:70:52:3f:64:87:82:31:3f:45:40:2e:e1:22:
+ 9f:06:66:29:fc:96:d3:2d:8d:b6:38:c7:d9:f3:27:c1:59:29:
+ a0:8c:f6:73:24:0f:28:22:d7:4e:61:dd:13:dd:db:9f:32:52:
+ 93:fb:4f:cc:ea:38:3c:98:6a:03:ab:16:af:21:d1:42:ae:7d:
+ 45:2b:ea:c4:cf:8a:59:9f:82:70:76:3a:f8:62:26:c9:10:97:
+ 58:40:24:a4:2d:b9:2f:29:80:27:e1:89:6b:72:ca:49:08:71:
+ 37:53:05:f1:80:ce:d3:42:02:d2:fc:c2:d1:94:06:ee:07:e2:
+ f6:83:e2:7f:9f:e7:bb:56:c3:5b:bf:dd:95:93:09:1e:24:c1:
+ cf:26:cd:ad:a4:ae:c2:b4:69:e7:aa:b5:ed:37:94:e9:dd:d1:
+ 63:85:6b:9a:7a:4a:56:76:dc:19:85:28:d4:e4:c6:a4:d8:b8:
+ 96:41:77:d0:b4:59:f1:46:05:87:87:02:1f:69:b9:82:18:d0:
+ 43:d9:26:da:1a:67:a8:d6:75:76:ea:f2:6d:0e:42:ff:88:26:
+ a2:6e:84:fe:7e:62:1b:f0:c6:3d:ed:c0:1c:6a:c7:91:d6:b8:
+ 00:37:49:9b:b9:84:05:a1:cd:6e:31:d6:44:ea:53:8b:ba:53:
+ 98:1d:a1:90:8a:e9:85:f8:1b:f2:93:58:c3:c8:dc:9a:26:4f:
+ 3e:20:cf:4f:43:f3:10:8c:7f:10:61:7a:36:ca:aa:0b:7d:cc:
+ 9f:47:44:59:ae:a5:95:c6:99:53:e3:07:6b:3d:49:10:b0:18:
+ ff:5d:0e:85:43:14:4b:e7:6b:d3:4a:b5:b2:60:61:dc:69:49:
+ 02:23:5d:e8:92:71:c3:9c:9f:45:67:79:1e:dc:32:86:ba:aa:
+ 55:3c:64:6f:32:b5:10:40:15:de:72:40:78:e0:6e:70:bb:6e:
+ eb:09:e8:39:d9:ac:ba:92:75:dd:43:ca:ba:01:95:ad:1a:81:
+ 2b:3a:f0:e3:c5:2f:0c:18:4d:10:c6:ae:c0:ed:fe:05:52:7f:
+ 19:05:cb:a9:af:35:08:0c:38:22:e4:fe:56:e5:53:3e:bf:e4:
+ d6:b3:d9:08:c3:3d:d5:33:32:81:24:c5:a9:e1:65:11:b8:32:
+ 33:30:71:18:49:1d:1a:45:c6:9a:14:8a:58:39:28:6e:f3:cb:
+ 51:b9:49:26:64:78:03:c7:91:11:83:a9:b9:90:34:b6:6f:aa:
+ 05:9e:85:28:57:99:be:7f:27:06:49:62:4d:a1:fc:09:e1:2b:
+ 46:09:4c:14:9b:56:8f:45
+SHA1 Fingerprint=AA:59:70:E5:20:32:9F:CB:D0:D5:79:9F:FB:1B:82:1D:FD:1F:79:65
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Sectigo_Public_Email_Protection_Root_E46.pem b/secure/caroot/untrusted/Sectigo_Public_Email_Protection_Root_E46.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/Sectigo_Public_Email_Protection_Root_E46.pem
@@ -0,0 +1,63 @@
+##
+## Sectigo Public Email Protection Root E46
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 6e:f5:d3:a7:41:8e:a0:59:40:a7:30:6b:d2:40:65:56
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = GB, O = Sectigo Limited, CN = Sectigo Public Email Protection Root E46
+ Validity
+ Not Before: Mar 22 00:00:00 2021 GMT
+ Not After : Mar 21 23:59:59 2046 GMT
+ Subject: C = GB, O = Sectigo Limited, CN = Sectigo Public Email Protection Root E46
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:b8:a7:52:94:f5:3e:05:b0:1b:f6:1f:b1:d3:7e:
+ b9:e4:05:66:54:80:ce:6c:a5:68:7d:e4:53:52:db:
+ 82:fa:c4:86:df:43:78:f7:c8:ad:16:bc:3f:78:32:
+ cb:6b:d3:49:d6:44:e5:b3:7e:9f:7b:a6:c6:2c:f2:
+ e2:b6:d3:89:b0:9a:3c:4b:ce:89:4b:c6:c6:cb:3a:
+ 49:60:0f:46:bc:6d:4e:7a:9c:c9:9b:85:7b:0a:b6:
+ b0:47:c2:88:e3:d4:d1
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ 2D:4E:8C:A7:C2:23:B2:57:A9:06:6B:3E:6B:2B:89:F3:C3:5E:47:CE
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:65:02:31:00:92:9d:1a:59:63:45:58:8e:1b:16:e4:7d:7a:
+ 6c:36:48:30:1f:2b:72:e7:90:33:34:fd:24:a2:c6:06:8c:6f:
+ 3b:32:57:5a:f8:fe:c6:49:12:53:9a:d9:10:b2:99:51:72:02:
+ 30:05:25:2a:33:21:fc:93:e6:22:a2:cc:70:55:28:35:56:a2:
+ 07:c4:21:84:23:1a:4c:4c:99:50:99:92:14:cb:4a:dc:56:fb:
+ f5:d3:8f:6a:2c:f5:71:3a:f8:8b:3b:03:9e
+SHA1 Fingerprint=3A:C5:C3:78:34:5B:E1:82:92:46:ED:17:86:B3:93:91:7B:51:F2:14
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Sectigo_Public_Email_Protection_Root_R46.pem b/secure/caroot/untrusted/Sectigo_Public_Email_Protection_Root_R46.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/Sectigo_Public_Email_Protection_Root_R46.pem
@@ -0,0 +1,131 @@
+##
+## Sectigo Public Email Protection Root R46
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 1d:44:9e:b9:0d:83:91:74:ae:dd:f2:eb:88:b7:a6:a3
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = GB, O = Sectigo Limited, CN = Sectigo Public Email Protection Root R46
+ Validity
+ Not Before: Mar 22 00:00:00 2021 GMT
+ Not After : Mar 21 23:59:59 2046 GMT
+ Subject: C = GB, O = Sectigo Limited, CN = Sectigo Public Email Protection Root R46
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:91:e5:1b:fa:aa:6d:37:2b:75:c7:2e:5f:14:a5:
+ db:2c:97:b6:2c:46:8f:69:d9:ec:96:2d:f3:1d:5a:
+ be:d3:1d:23:e6:68:09:ff:4a:11:73:1a:ae:67:9f:
+ 76:9a:d2:e7:ec:b8:d9:5f:2b:f9:26:56:51:af:76:
+ 9d:a9:fc:17:ef:32:0a:d0:23:3c:ba:2c:4f:47:83:
+ ec:9d:05:68:42:5e:06:e0:d5:e8:2b:68:48:97:b2:
+ fa:f3:a4:71:35:7d:34:9b:17:8b:7f:4d:0d:db:dc:
+ 4f:05:4c:94:62:bf:35:fa:2f:c8:a7:1c:66:d9:71:
+ 5f:e5:e6:5a:55:ca:ab:f4:b8:77:19:45:50:45:4e:
+ 4a:ab:db:9e:66:c1:19:b7:37:42:c8:56:a5:40:12:
+ f9:33:e8:38:45:3a:c6:84:a3:02:8e:2f:24:b0:c3:
+ 41:85:07:49:9c:cf:dc:d1:f2:26:6f:ed:33:1c:33:
+ 67:2a:45:37:d9:85:65:22:1a:b1:b5:10:52:09:6b:
+ 03:c6:1f:70:3d:91:c4:7d:90:3d:ed:66:f8:90:ff:
+ 25:e0:ed:92:a2:8b:31:29:ad:9c:12:66:78:63:9d:
+ 57:ec:fb:0b:de:8e:dc:8b:cb:3a:a9:77:f4:ba:e5:
+ ec:38:8c:8b:e6:13:66:a7:69:58:c3:82:1a:1a:cd:
+ f1:9f:d8:53:92:4e:49:7d:a9:45:e7:f1:43:21:5a:
+ b7:3e:40:cd:63:89:cf:d9:bf:c7:50:0b:e1:bc:e7:
+ 88:96:ad:9e:d4:17:da:5d:cf:e0:91:fd:a6:10:d4:
+ b9:03:81:9b:69:ac:fb:84:a8:81:35:eb:1b:eb:68:
+ 6c:7c:60:3e:c3:df:c9:b4:ae:74:1d:48:ad:dd:6e:
+ 11:86:e1:2a:6a:36:16:ae:c8:ce:bc:db:58:fc:40:
+ 93:40:d8:8e:53:97:c2:ac:22:38:e5:88:31:b3:2e:
+ a1:ef:ec:e0:42:0d:ea:ff:93:56:4a:06:a4:9b:4c:
+ 02:68:64:8f:56:50:c1:81:05:fd:cb:db:c5:d7:15:
+ f2:6b:b5:76:c3:a3:f9:32:ce:ca:b5:4a:a9:1b:7d:
+ 19:dc:7f:c7:6a:7e:95:ec:b6:b8:8d:fd:95:4a:9c:
+ a3:2b:6d:8b:f1:70:e5:47:2b:00:5c:e4:b9:9e:d4:
+ f8:d9:58:29:d0:cb:e0:28:62:6c:ae:9c:62:e2:cc:
+ bc:36:93:41:f5:ef:fe:46:62:95:b0:57:4a:74:2c:
+ 47:52:29:9d:dd:a2:a1:4f:42:c2:92:ce:2d:50:52:
+ 5e:8c:0a:a1:f7:d8:9d:c5:f8:fd:36:87:4e:57:fd:
+ 68:a1:5f:99:83:1c:f0:b5:dd:e8:92:d3:65:40:55:
+ ca:96:85
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ A7:D7:95:77:EB:4A:C3:27:CD:93:BE:37:4C:26:84:21:14:7D:5D:98
+ X509v3 Key Usage: critical
+ Digital Signature, Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 34:d2:f1:15:f3:93:01:d4:72:8b:f0:ab:08:1f:13:3c:73:b4:
+ b0:ab:e8:78:d9:6c:ba:9a:af:26:ec:10:80:e5:0d:53:31:dd:
+ e3:fa:8c:51:22:24:33:37:b8:18:7e:3a:fa:58:e8:34:e5:8c:
+ e0:a1:1f:09:41:d2:37:3f:cc:cb:09:35:42:88:e9:fc:11:d7:
+ cf:42:aa:a4:70:b6:71:c1:53:bd:c5:74:af:c4:22:24:63:cf:
+ 62:82:7d:c9:cb:51:c1:88:90:6d:5b:5c:be:fb:99:a8:ba:b6:
+ 86:b0:e9:66:0b:e5:1b:6b:af:ea:2b:86:a7:df:a8:23:4c:96:
+ 3f:4f:57:42:18:15:83:43:f1:86:26:b7:2a:03:ce:0b:9d:e8:
+ a5:68:1e:8c:6f:bd:85:e3:1b:51:8f:e7:17:2f:2b:d0:d6:78:
+ c2:2d:dd:72:88:d4:65:9e:fa:99:d4:7e:e7:97:0a:92:01:9a:
+ a5:a9:84:3a:0c:2a:74:3d:33:18:c8:87:f7:e8:a4:f5:86:42:
+ 39:fd:6b:75:29:fc:00:06:ac:a2:a5:1a:54:8e:e9:50:49:17:
+ 66:af:4b:04:2d:9b:94:80:a5:54:ab:8c:57:17:44:9f:0f:d6:
+ 68:64:72:b4:4b:1e:01:c7:d9:9b:94:d9:83:99:af:12:05:11:
+ a3:98:22:d2:f2:57:ca:24:f9:ba:38:15:12:48:ba:63:3b:fc:
+ 8b:95:78:d6:72:07:56:cc:cd:fc:9d:1c:d0:c5:64:3b:63:34:
+ cf:04:99:8a:b7:30:79:7a:b6:f2:c6:d5:d9:54:7a:87:0b:7e:
+ 4e:f7:84:ec:14:f3:88:16:12:f1:d5:ae:0a:1a:09:ee:86:ad:
+ e5:ab:fd:ae:c3:29:79:74:c3:01:5f:11:9b:df:75:99:c6:4a:
+ f7:9b:8f:6c:49:ec:21:2f:b4:02:59:b3:2d:d0:72:90:ba:0b:
+ 14:74:78:4b:cf:c1:5f:55:72:8e:54:2b:13:ce:fa:58:0c:d3:
+ bb:2c:d9:a9:91:61:f8:f8:f1:b6:7b:de:bc:a9:cc:92:04:cc:
+ 4b:6b:5f:73:80:b6:21:ed:50:4f:d7:76:87:6e:ce:df:d2:b7:
+ bd:62:a1:7d:58:62:68:45:52:b6:3f:de:12:db:ed:04:69:9e:
+ 76:88:aa:01:6d:da:86:c7:60:1b:c3:52:ac:37:ec:50:71:80:
+ 72:2a:21:45:0a:53:47:3c:19:eb:8d:d2:59:04:de:25:b0:eb:
+ 1f:35:6f:60:7d:d7:b5:c6:bb:0b:27:8d:e0:4d:54:e5:cf:1d:
+ 26:01:6e:3b:35:c8:20:12:89:83:f0:d2:ed:58:3b:34:9d:bb:
+ 31:f5:32:fd:31:f3:56:1a
+SHA1 Fingerprint=D3:7B:8B:0A:E8:42:44:FB:6B:80:38:EE:AE:91:80:26:1A:48:70:66
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Staat_der_Nederlanden_Root_CA_-_G3.pem b/secure/caroot/untrusted/Staat_der_Nederlanden_Root_CA_-_G3.pem
--- a/secure/caroot/untrusted/Staat_der_Nederlanden_Root_CA_-_G3.pem
+++ b/secure/caroot/untrusted/Staat_der_Nederlanden_Root_CA_-_G3.pem
@@ -5,8 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/trusted/Starfield_Class_2_CA.pem b/secure/caroot/untrusted/Starfield_Class_2_CA.pem
rename from secure/caroot/trusted/Starfield_Class_2_CA.pem
rename to secure/caroot/untrusted/Starfield_Class_2_CA.pem
--- a/secure/caroot/trusted/Starfield_Class_2_CA.pem
+++ b/secure/caroot/untrusted/Starfield_Class_2_CA.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
diff --git a/secure/caroot/untrusted/SwissSign_RSA_SMIME_Root_CA_2022_-_1.pem b/secure/caroot/untrusted/SwissSign_RSA_SMIME_Root_CA_2022_-_1.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/SwissSign_RSA_SMIME_Root_CA_2022_-_1.pem
@@ -0,0 +1,133 @@
+##
+## SwissSign RSA SMIME Root CA 2022 - 1
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 46:0e:d4:01:71:90:a0:1a:83:2c:4a:42:10:28:15:d2:61:1b:ad:32
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: C = CH, O = SwissSign AG, CN = SwissSign RSA SMIME Root CA 2022 - 1
+ Validity
+ Not Before: Jun 8 10:53:13 2022 GMT
+ Not After : Jun 8 10:53:13 2047 GMT
+ Subject: C = CH, O = SwissSign AG, CN = SwissSign RSA SMIME Root CA 2022 - 1
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:d4:fb:fa:3f:86:a2:99:70:09:3a:c9:d6:a1:4e:
+ 01:ce:46:b5:2d:24:48:0d:45:e9:ac:c9:1a:d7:32:
+ 80:a4:e6:d3:ca:d6:f2:29:37:ec:9a:2c:d6:81:ce:
+ e6:1b:9d:b1:0f:41:df:58:d3:5f:aa:a0:79:59:0b:
+ 8c:ad:f9:c5:f9:1c:fb:c3:e9:35:40:74:c3:c1:0c:
+ cb:67:fb:9c:5e:0c:23:f9:d0:2f:fa:4c:82:45:1c:
+ b5:f5:1f:f8:19:6e:da:93:b7:4e:68:83:7e:62:2d:
+ 1d:8c:95:1f:70:d9:ce:5a:8c:21:5d:a8:be:08:a9:
+ 56:6d:d9:f7:b9:90:99:c7:3b:d7:bd:9e:2e:c9:67:
+ 57:2e:21:ce:f0:32:83:fb:04:01:f9:b7:82:44:0d:
+ b2:cb:7a:09:a1:48:3e:4f:c0:0b:6a:1b:1b:ec:cf:
+ 1d:9e:7f:06:90:ac:28:05:0b:a8:e6:54:3b:a2:a7:
+ 2c:39:13:99:a8:fb:34:eb:f5:f0:bd:01:d8:88:11:
+ c8:ae:ba:19:02:49:02:dc:8a:2c:b4:bd:61:60:ec:
+ 9d:78:5c:6a:8b:2f:17:86:5e:f2:4f:93:00:6b:5d:
+ c5:b2:a9:a5:18:ea:e6:6d:7e:57:05:fb:07:fc:bc:
+ 7c:a1:43:b1:66:1c:a8:67:fb:ab:37:f6:aa:aa:b8:
+ 7a:41:f7:39:d5:8c:9f:ae:72:36:27:e4:62:c6:43:
+ 99:f1:a1:41:e9:ff:89:9f:0f:49:af:c9:14:06:17:
+ 27:64:39:0d:a5:b4:2a:5b:ec:3c:fb:9f:c5:5f:c6:
+ 3b:5d:26:19:f2:84:29:b8:95:44:09:52:fd:6c:30:
+ d0:62:8f:28:a5:81:96:2b:94:2f:26:75:e4:09:8c:
+ 0a:df:38:f3:7e:5d:38:8e:82:9a:8c:dc:9e:ae:ce:
+ 12:42:3a:22:f2:35:8d:4f:d2:1a:c8:49:33:0b:fa:
+ 36:3f:ff:2c:6b:6a:20:71:4c:cd:ad:10:3f:69:32:
+ 84:8e:5c:ee:53:88:44:e2:dd:cc:03:30:92:86:79:
+ 90:2a:4b:75:fb:52:62:c4:f4:6f:4d:f7:db:23:a1:
+ 18:dd:45:53:17:9a:63:24:48:89:22:cd:7e:9b:01:
+ 1c:80:28:03:8f:5b:2b:fa:1f:e3:7c:19:bd:e6:8f:
+ b1:40:76:a0:f2:c7:37:b2:32:94:10:32:cd:a7:13:
+ 97:f1:3b:2c:7a:34:22:7b:74:3a:40:e2:af:82:f8:
+ c1:c1:78:fc:5f:e4:35:7f:c0:f4:4c:f0:4c:b2:ea:
+ 87:03:72:25:59:83:2a:08:a4:51:de:cf:ee:a8:e7:
+ e8:40:3f:88:f0:36:ab:09:4e:d8:a0:a8:7f:f3:e1:
+ 09:db:b9
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Authority Key Identifier:
+ CC:2E:AD:89:8C:83:E3:40:A3:25:69:A5:EA:92:7D:D2:37:3A:C7:C6
+ X509v3 Subject Key Identifier:
+ CC:2E:AD:89:8C:83:E3:40:A3:25:69:A5:EA:92:7D:D2:37:3A:C7:C6
+ Signature Algorithm: sha256WithRSAEncryption
+ Signature Value:
+ 00:07:66:16:a5:ed:c7:b9:bf:bc:c8:91:ad:58:ed:5e:12:05:
+ b3:f6:46:9b:7b:e4:84:10:2f:07:b1:5a:5e:32:6e:6d:00:f0:
+ 5e:c7:9a:62:39:87:4d:e4:3c:f3:be:f6:ba:6a:53:6c:84:6d:
+ 07:d4:61:ca:67:66:be:9b:3e:45:30:9d:51:d2:d7:5a:42:ae:
+ 9d:92:0e:23:ab:d0:15:94:3e:a8:9a:ca:9b:ed:c1:c2:5f:21:
+ a3:99:80:fc:b9:a6:61:0e:50:80:80:27:c7:e8:7d:a0:d4:94:
+ 7a:98:03:e7:ee:42:8b:f3:52:50:5c:ef:be:b0:76:5a:1c:09:
+ a1:bf:83:c0:1e:76:65:d0:25:41:5b:69:91:93:77:f9:8c:4b:
+ f0:2c:db:9b:06:00:17:83:fa:5a:94:b4:86:89:ef:bc:0a:0b:
+ 12:f8:06:4d:d2:73:e2:91:38:5d:b9:6a:4b:4f:a7:af:da:26:
+ 25:92:23:1a:7c:1f:27:0d:91:84:ef:17:72:f6:46:eb:6b:3b:
+ 37:a9:d4:d5:9a:63:ba:5e:79:8c:2a:b5:9b:a2:34:b5:cc:96:
+ 27:f9:79:08:3c:7f:6d:e0:ff:7c:dc:c5:26:af:c3:a1:7a:69:
+ 16:dd:87:35:73:c6:6b:31:6b:56:01:2d:4f:99:d9:ee:ca:e1:
+ d0:83:de:b6:85:e7:16:f8:d1:ae:33:48:fb:1a:cf:5d:5f:8a:
+ 84:61:74:07:6f:19:b0:51:21:b2:a1:04:b1:7b:53:8f:ef:a2:
+ 45:ad:1f:98:dd:f9:6a:04:6c:aa:36:c5:af:8c:ea:29:49:4a:
+ e7:ff:57:b3:c6:3c:11:49:18:17:e6:66:85:e1:e8:23:f2:8b:
+ 0e:3c:93:c4:3f:76:4e:7e:62:a2:29:cb:16:30:de:2c:69:af:
+ 91:a7:e2:57:e5:33:4c:bf:d8:8e:07:a2:7f:a1:35:46:69:4a:
+ a8:20:29:ff:eb:de:20:95:59:b1:ae:4d:30:6b:d8:9a:b4:03:
+ 1f:c2:38:e4:20:d5:0e:d6:1a:30:4c:68:9c:8c:e0:ed:a1:0f:
+ 8e:42:5d:eb:80:2a:12:79:a6:17:17:b4:95:2a:8e:34:91:a7:
+ bd:d1:ac:a8:1a:43:21:8b:de:ef:e0:ac:46:25:65:0a:c6:2b:
+ a1:9b:3e:22:e8:18:38:b5:26:f6:2c:ca:08:20:de:30:d1:ad:
+ 54:fd:dc:48:15:9f:cd:a7:41:d7:37:38:85:30:4f:12:88:43:
+ 34:83:d7:2a:4d:d4:00:57:5c:e5:ca:f0:dd:e1:92:28:2b:18:
+ 75:bd:47:a4:42:13:e9:56:5a:8d:4a:5e:ce:0e:75:35:80:73:
+ 19:0f:2c:29:8b:bb:95:b8
+SHA1 Fingerprint=14:D7:65:62:74:10:50:47:9F:8B:32:C6:86:8A:18:FA:E1:19:99:B0
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/TWCA_Global_Root_CA_G2.pem b/secure/caroot/untrusted/TWCA_Global_Root_CA_G2.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/TWCA_Global_Root_CA_G2.pem
@@ -0,0 +1,133 @@
+##
+## TWCA Global Root CA G2
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 40:01:34:8c:c2:00:00:00:00:00:00:00:01:97:58:f4
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = TW, O = TAIWAN-CA, OU = Root CA, CN = TWCA Global Root CA G2
+ Validity
+ Not Before: Nov 22 06:42:21 2022 GMT
+ Not After : Nov 22 15:59:59 2047 GMT
+ Subject: C = TW, O = TAIWAN-CA, OU = Root CA, CN = TWCA Global Root CA G2
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:aa:0e:d5:20:92:01:ad:82:f9:0c:08:91:34:6b:
+ 8a:16:d0:46:16:ff:03:b8:d8:8d:ea:93:34:fb:ff:
+ 2b:bd:fd:6e:aa:dc:9b:f2:86:81:55:f5:89:1c:c4:
+ 8d:75:6a:58:78:91:13:1e:02:13:70:3d:ef:be:0a:
+ e7:00:8f:b8:31:e5:74:c5:30:be:ff:7d:d6:99:e5:
+ c2:42:a3:cf:21:d6:b3:08:7f:91:d5:61:e6:a2:95:
+ 10:0d:ef:5e:97:0b:49:38:d5:22:b0:d7:8b:59:6f:
+ 9f:35:9b:7f:d2:91:cc:7a:7f:bb:a0:9f:de:55:33:
+ f6:4b:8d:0a:ea:7d:09:c0:79:dc:bd:44:e2:fe:1c:
+ e7:64:21:28:cf:04:4a:e2:b4:bf:86:79:2a:bb:0e:
+ 93:c9:8f:5e:ac:30:39:52:90:07:b9:ea:9c:26:42:
+ 14:c4:67:46:fe:d1:1a:68:a1:3e:50:19:a3:26:0a:
+ 27:29:90:c2:f6:b4:eb:73:9a:78:1e:e1:98:f4:65:
+ 0c:35:21:06:f8:0b:de:62:e5:4d:c1:b3:5d:d9:b9:
+ fa:61:97:2a:e3:ea:c7:44:55:24:92:fe:12:a7:3f:
+ c4:77:e0:2d:02:81:07:d5:fb:7d:e6:10:9e:3a:b4:
+ a8:ef:ec:fb:50:ea:35:cf:cc:7e:bb:42:b9:44:6c:
+ 52:e9:bf:2a:72:1f:3f:de:9b:70:e9:dc:5a:c5:3b:
+ bb:bf:f0:59:85:af:2f:c1:b0:14:79:05:ac:75:9f:
+ 25:f5:11:27:06:60:21:c7:6d:65:be:a8:89:9c:e5:
+ ac:46:df:f8:5d:44:03:8d:60:bd:f7:b1:0d:cc:2f:
+ ef:41:54:2f:ee:6b:95:b9:4e:7c:34:df:3b:f9:77:
+ 9d:7d:cd:07:3d:1c:06:33:12:80:ec:72:9c:f2:2d:
+ 82:da:d5:3b:c4:c7:f9:04:c3:64:02:7c:f5:35:60:
+ a7:b4:46:29:2e:1b:ef:a5:58:80:2e:7a:89:51:38:
+ 36:3c:fd:a1:77:b8:80:30:d0:8a:de:8d:a7:34:26:
+ ec:23:bb:18:55:18:36:45:ee:ed:01:06:aa:4d:bf:
+ 64:0c:ca:98:97:1a:31:02:66:f8:78:68:5b:88:df:
+ 09:a8:e7:9b:fa:34:6d:70:1c:21:ad:08:8b:f2:a1:
+ b6:ac:76:6a:bf:f1:80:25:00:be:3c:1e:4d:ae:b9:
+ 3c:b6:95:63:bd:6b:7e:47:12:90:55:45:11:8d:ec:
+ 17:1f:c1:be:27:81:93:57:63:69:00:26:77:8b:c3:
+ 59:e5:7b:d1:0d:44:f2:a8:f0:f7:85:9a:05:f7:c2:
+ 2e:70:9a:93:85:d8:95:90:31:90:54:a6:ec:0b:9f:
+ 37:45:0f
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ 92:8C:D4:36:D1:5B:47:53:C4:71:0D:84:DD:64:2A:F5:36:64:40:E7
+ X509v3 Subject Key Identifier:
+ 92:8C:D4:36:D1:5B:47:53:C4:71:0D:84:DD:64:2A:F5:36:64:40:E7
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 25:fc:4b:da:90:b4:da:75:e7:41:3a:81:d1:a6:fe:a0:6a:f3:
+ 18:71:62:6a:24:08:8b:a9:7a:4d:c9:55:ce:cf:10:28:2e:04:
+ 19:96:05:cf:5d:02:20:2a:3b:b3:55:3f:01:cd:42:cd:b2:77:
+ ed:ff:75:f3:7c:77:db:96:a5:cf:8c:67:06:f4:a4:9b:72:f6:
+ 21:49:09:98:a3:32:5e:77:5a:63:09:ef:62:43:97:02:38:b5:
+ ea:3c:18:50:68:fc:59:5b:d9:79:d4:f1:e4:56:48:13:56:d8:
+ d3:71:0b:5e:78:94:38:11:45:fa:05:17:f5:0e:75:1e:62:52:
+ 61:46:ba:2e:19:ad:86:b4:88:0f:b1:50:e6:40:00:34:1a:95:
+ 9d:93:e0:51:f9:d4:55:46:e9:95:3c:25:86:2e:97:d7:01:31:
+ 18:44:ec:1c:60:e9:7d:69:af:32:f8:97:40:25:24:b6:8d:1a:
+ 55:3c:c5:b7:f7:bc:06:52:3b:71:30:70:3e:71:17:7e:f1:66:
+ 04:5e:5d:bc:8a:31:43:a6:92:1d:7b:54:d2:a5:36:8b:6f:8d:
+ d6:5e:da:d4:c3:2e:1d:df:39:55:60:82:30:9e:27:ff:8e:80:
+ dd:63:4c:a6:55:35:d8:d0:33:a9:80:6d:3e:5e:9d:cc:a8:67:
+ 80:66:fa:99:57:0c:52:ca:19:75:b0:38:35:55:2a:81:c5:8c:
+ 1e:56:d7:5f:90:f2:20:d8:da:e0:66:71:e9:b2:78:ab:67:b9:
+ 24:6e:6b:36:72:fc:6f:8d:fd:7f:72:39:28:67:52:91:05:1f:
+ 57:65:d2:a3:a7:0d:61:fa:a1:e7:d5:35:46:95:c9:06:87:f6:
+ 30:ec:32:51:a9:ac:56:c0:21:4e:a3:14:74:05:3a:bc:e3:bf:
+ 6d:3d:4e:3f:5e:a5:a4:6d:29:bf:84:51:75:53:8e:86:1a:f5:
+ 51:70:2a:0d:1c:4e:40:e1:fd:a3:e3:a5:2b:67:90:92:c7:6c:
+ ae:85:bf:3a:9b:17:15:ca:9c:2a:93:d4:4d:39:0d:bc:20:08:
+ a3:8d:88:6c:09:0d:8c:ae:44:21:4d:c9:71:ec:d8:26:d7:17:
+ 9e:2d:11:18:3c:a3:22:7d:b8:27:54:bf:68:c8:3b:42:cc:8f:
+ 5e:4e:e7:dc:c2:c5:fa:6a:44:0f:8d:56:88:7a:df:89:84:6c:
+ a0:b3:3e:3d:f1:65:00:09:88:ea:2a:eb:40:ce:b3:5d:ac:32:
+ 17:ae:c1:9b:e9:d0:c1:f5:49:94:dd:a7:ce:7c:5a:07:eb:ae:
+ 20:9c:17:30:92:69:93:72:f3:9a:5b:71:9b:fe:6a:df:7a:30:
+ 69:8e:b3:2e:db:0f:2c:dd
+SHA1 Fingerprint=73:FE:92:2F:83:63:91:FF:C8:C6:C4:DA:D6:20:2F:6B:07:2E:7F:1B
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Telekom_Security_SMIME_ECC_Root_2021.pem b/secure/caroot/untrusted/Telekom_Security_SMIME_ECC_Root_2021.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/Telekom_Security_SMIME_ECC_Root_2021.pem
@@ -0,0 +1,64 @@
+##
+## Telekom Security SMIME ECC Root 2021
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 15:2a:dd:14:c9:18:d1:a4:56:40:86:a6:25:af:07:5f
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = DE, O = Deutsche Telekom Security GmbH, CN = Telekom Security SMIME ECC Root 2021
+ Validity
+ Not Before: Mar 18 11:08:30 2021 GMT
+ Not After : Mar 17 23:59:59 2046 GMT
+ Subject: C = DE, O = Deutsche Telekom Security GmbH, CN = Telekom Security SMIME ECC Root 2021
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:b0:19:8f:a2:6b:b5:c7:cd:0f:30:99:37:0c:c3:
+ 60:5b:f1:f1:27:20:55:3d:c0:92:8b:ab:57:a1:6f:
+ 73:83:21:c2:43:13:0c:5e:89:aa:c7:05:35:79:93:
+ 62:90:d6:5d:13:1f:d1:7a:a0:bc:9e:10:a7:66:7c:
+ 46:0a:b0:57:6c:bf:e6:54:39:38:21:6c:12:5c:71:
+ cc:d3:5a:5f:6d:b7:a7:86:df:b3:df:ee:c2:e7:89:
+ 41:96:35:f6:2f:4a:b5
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ 2B:CB:01:0C:63:C3:53:12:A5:A8:57:AF:D0:9C:83:FB:BD:90:3A:4B
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:65:02:31:00:d6:bc:48:92:87:47:03:c7:70:3b:25:b6:1f:
+ ae:46:67:73:74:00:27:4b:e4:a5:04:a2:03:df:5e:28:ad:6e:
+ 5e:03:c8:dd:68:9c:b6:bf:94:10:48:95:2f:0f:ff:18:8b:02:
+ 30:01:40:33:9e:97:97:4d:05:f2:74:54:0c:cd:39:fd:6a:6b:
+ 09:c1:24:3f:61:8e:38:a1:b7:e8:d7:44:15:11:62:ff:0e:61:
+ 37:47:4b:40:7f:4a:5f:b2:67:5a:73:75:c2
+SHA1 Fingerprint=B7:F9:1D:98:EC:25:93:F3:50:14:84:9A:A8:7E:22:10:3C:C4:39:27
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/Telekom_Security_SMIME_RSA_Root_2023.pem b/secure/caroot/untrusted/Telekom_Security_SMIME_RSA_Root_2023.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/Telekom_Security_SMIME_RSA_Root_2023.pem
@@ -0,0 +1,134 @@
+##
+## Telekom Security SMIME RSA Root 2023
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 0c:7e:62:f5:79:73:3b:9d:43:8e:8b:63:ed:91:95:b8
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = DE, O = Deutsche Telekom Security GmbH, CN = Telekom Security SMIME RSA Root 2023
+ Validity
+ Not Before: Mar 28 12:09:22 2023 GMT
+ Not After : Mar 27 23:59:59 2048 GMT
+ Subject: C = DE, O = Deutsche Telekom Security GmbH, CN = Telekom Security SMIME RSA Root 2023
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:ef:c5:0e:8b:be:32:d2:67:47:ff:0a:4c:67:b3:
+ 2a:bf:c8:c3:c5:91:eb:b5:c7:1e:91:e1:66:a8:88:
+ 8b:55:20:80:1f:51:5e:77:97:9e:19:0a:5c:c7:6b:
+ 37:21:7c:03:36:01:f4:88:25:d9:a8:2e:41:aa:fc:
+ d8:26:e0:96:40:62:79:ae:57:9e:03:38:1a:1c:b2:
+ 77:14:3e:e9:a1:72:d0:e4:e0:37:d1:17:46:ed:50:
+ 5c:7a:58:c5:f8:2b:f7:75:2f:cf:81:9e:5a:2c:b7:
+ 3a:ac:a0:59:98:04:51:0c:ff:49:c5:50:fd:1e:d3:
+ 47:85:4b:33:4f:a2:37:b5:af:04:9a:27:32:9d:56:
+ d5:3f:55:61:e3:8b:6f:ae:51:fe:97:fe:69:07:fa:
+ 62:5b:26:e6:14:79:15:a5:13:38:ae:5f:37:be:94:
+ 4a:d6:0d:80:16:69:a4:91:b2:3a:49:98:75:9d:46:
+ 10:8a:5c:7a:7f:84:a5:e8:af:1e:c7:ab:b3:5a:46:
+ b5:a3:4b:f5:a6:23:36:00:46:b1:db:05:b6:1b:ce:
+ 9e:7a:32:5c:9a:d5:72:c3:9d:86:4d:2b:84:d3:1e:
+ b5:88:da:10:78:9c:22:c3:3b:23:b5:eb:13:07:bd:
+ 6f:53:ec:9b:ec:9b:d3:65:f5:07:09:e3:5d:a7:99:
+ b5:7e:86:8e:d5:02:ff:b7:85:09:e3:47:14:dd:96:
+ 66:18:34:de:08:d5:df:cb:18:99:62:0b:2b:ec:00:
+ 5d:52:44:d3:c6:96:fc:32:56:25:91:cf:cd:19:3b:
+ 95:39:3e:02:87:99:63:b6:d5:3e:34:7a:0f:11:75:
+ 81:bc:7d:04:ca:60:b4:28:75:d7:02:51:dd:52:00:
+ 2e:c7:fd:89:f1:5c:f3:cb:a4:27:12:38:8f:bb:fb:
+ 89:f0:e4:c4:38:2c:be:82:a0:71:61:62:91:8f:48:
+ 0c:2f:2b:a9:b0:f1:cb:10:04:e7:74:bf:37:90:ef:
+ 4f:2a:43:35:97:12:c6:2a:70:0d:de:2c:55:47:79:
+ 63:29:f5:ca:1f:6a:06:52:1c:ae:2d:24:22:83:22:
+ af:d0:aa:30:b7:2a:1f:ff:65:23:58:65:93:c8:8e:
+ 7d:40:10:31:86:78:d9:55:cb:3c:30:f0:de:51:2a:
+ 00:36:d2:27:45:5f:d8:e8:a1:21:3d:7e:46:56:3b:
+ 29:45:f1:1d:05:09:ce:b6:43:30:dc:45:90:10:30:
+ 4c:a4:6b:86:8b:3f:3d:2f:31:91:71:ef:26:b9:f6:
+ be:9d:b0:6c:df:11:ee:58:3f:43:79:86:39:80:f1:
+ 26:17:07:98:f0:99:aa:30:2c:43:59:14:ce:ed:e2:
+ 40:13:85
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Subject Key Identifier:
+ 9A:CE:AC:2A:EC:01:FA:65:70:DE:97:9D:F1:D2:00:8C:A5:A3:64:BB
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Authority Key Identifier:
+ 9A:CE:AC:2A:EC:01:FA:65:70:DE:97:9D:F1:D2:00:8C:A5:A3:64:BB
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ e3:50:fd:f5:40:16:22:09:96:3a:0d:a9:ef:81:e7:2e:32:f0:
+ a1:f1:49:5e:7b:88:0d:04:72:d7:be:67:a8:ba:1d:ee:50:bb:
+ 72:6e:7a:d1:bb:0c:72:30:46:c8:d5:d7:02:12:16:99:4e:1e:
+ df:5a:96:ee:8f:91:be:ae:86:f8:10:77:a5:c4:6e:47:61:c0:
+ f2:26:d9:4f:61:68:05:48:75:08:15:a5:a1:7b:d5:b8:b3:89:
+ 79:e6:ed:f1:f3:61:00:86:7b:2e:31:fe:a3:5c:f8:79:3d:b4:
+ 5b:88:7b:e0:23:bb:0d:a1:17:fa:cb:68:0d:98:77:71:08:e2:
+ 6d:43:74:6b:c4:36:c5:94:41:a4:00:d6:57:2d:99:8a:8b:20:
+ 12:15:02:32:0e:d2:49:ec:81:48:c5:6a:27:52:d7:b2:73:55:
+ 53:96:3c:9e:4f:4c:b5:a0:d0:4f:57:d0:67:28:48:64:be:c6:
+ b8:ba:ec:64:cf:c8:7b:c5:6a:e7:2a:e6:59:57:b6:d6:d4:d6:
+ c0:67:5c:d9:9e:28:09:40:bf:f3:a9:35:31:65:60:03:cb:19:
+ 6c:82:95:03:1e:5f:3f:e1:bd:ea:49:71:e5:5b:b7:0b:47:16:
+ 1b:20:89:6d:94:99:0c:7e:88:6c:1d:0d:f4:b7:21:1a:59:97:
+ ac:cb:e8:be:17:1f:95:7c:53:9b:af:50:52:aa:8d:0b:2e:af:
+ 5a:d7:60:f2:2a:69:2a:b9:ee:54:70:18:aa:bd:f5:a1:3f:d2:
+ dd:a1:63:19:00:f8:a7:0c:eb:a3:79:f2:70:59:a3:f8:a2:12:
+ 03:ec:13:ff:e4:02:86:36:d7:c1:c3:a4:b5:d4:a4:c2:37:45:
+ b6:94:70:3d:c5:bd:eb:a3:15:1d:e3:36:7a:15:69:2a:56:34:
+ 39:cf:a5:9a:36:aa:c8:ed:79:bc:cf:f6:ce:04:53:0b:da:b2:
+ 50:23:7c:bc:3e:26:ad:f0:0e:43:bb:26:cb:ae:c2:40:de:37:
+ 1f:0a:a0:51:cd:63:9d:b6:4f:d8:c6:47:7c:bc:d8:b4:ed:9e:
+ 8b:f3:11:e2:a8:b5:3e:ec:ae:70:3e:7e:22:bb:35:48:17:60:
+ 62:14:91:30:a3:76:3d:a6:51:36:8b:1f:0d:dd:6a:31:1c:a5:
+ ed:dd:96:a3:6e:72:0f:13:4d:aa:a7:a9:5c:78:f9:03:12:18:
+ 93:37:45:12:89:3d:f8:be:ca:bd:d9:be:0c:d9:18:64:a7:c8:
+ 41:3e:75:82:21:38:7d:65:f4:a0:d4:13:4b:07:78:29:f9:9d:
+ 7e:cc:87:3f:c4:da:2e:88:dd:e3:0b:dc:5a:51:5a:e9:d9:12:
+ 4f:9e:02:db:f7:05:25:51
+SHA1 Fingerprint=89:3F:6F:1C:E2:4D:7F:FB:C3:D3:14:7A:05:80:A7:DE:E1:0A:5E:4D
+-----BEGIN CERTIFICATE-----
+MIIFtzCCA5+gAwIBAgIQDH5i9XlzO51Djotj7ZGVuDANBgkqhkiG9w0BAQwFADBl
+MQswCQYDVQQGEwJERTEnMCUGA1UECgweRGV1dHNjaGUgVGVsZWtvbSBTZWN1cml0
+eSBHbWJIMS0wKwYDVQQDDCRUZWxla29tIFNlY3VyaXR5IFNNSU1FIFJTQSBSb290
+IDIwMjMwHhcNMjMwMzI4MTIwOTIyWhcNNDgwMzI3MjM1OTU5WjBlMQswCQYDVQQG
+EwJERTEnMCUGA1UECgweRGV1dHNjaGUgVGVsZWtvbSBTZWN1cml0eSBHbWJIMS0w
+KwYDVQQDDCRUZWxla29tIFNlY3VyaXR5IFNNSU1FIFJTQSBSb290IDIwMjMwggIi
+MA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDvxQ6LvjLSZ0f/Ckxnsyq/yMPF
+keu1xx6R4WaoiItVIIAfUV53l54ZClzHazchfAM2AfSIJdmoLkGq/Ngm4JZAYnmu
+V54DOBocsncUPumhctDk4DfRF0btUFx6WMX4K/d1L8+BnlostzqsoFmYBFEM/0nF
+UP0e00eFSzNPoje1rwSaJzKdVtU/VWHji2+uUf6X/mkH+mJbJuYUeRWlEziuXze+
+lErWDYAWaaSRsjpJmHWdRhCKXHp/hKXorx7Hq7NaRrWjS/WmIzYARrHbBbYbzp56
+Mlya1XLDnYZNK4TTHrWI2hB4nCLDOyO16xMHvW9T7Jvsm9Nl9QcJ412nmbV+ho7V
+Av+3hQnjRxTdlmYYNN4I1d/LGJliCyvsAF1SRNPGlvwyViWRz80ZO5U5PgKHmWO2
+1T40eg8RdYG8fQTKYLQoddcCUd1SAC7H/YnxXPPLpCcSOI+7+4nw5MQ4LL6CoHFh
+YpGPSAwvK6mw8csQBOd0vzeQ708qQzWXEsYqcA3eLFVHeWMp9cofagZSHK4tJCKD
+Iq/QqjC3Kh//ZSNYZZPIjn1AEDGGeNlVyzww8N5RKgA20idFX9jooSE9fkZWOylF
+8R0FCc62QzDcRZAQMEyka4aLPz0vMZFx7ya59r6dsGzfEe5YP0N5hjmA8SYXB5jw
+maowLENZFM7t4kAThQIDAQABo2MwYTAOBgNVHQ8BAf8EBAMCAQYwHQYDVR0OBBYE
+FJrOrCrsAfplcN6XnfHSAIylo2S7MA8GA1UdEwEB/wQFMAMBAf8wHwYDVR0jBBgw
+FoAUms6sKuwB+mVw3ped8dIAjKWjZLswDQYJKoZIhvcNAQEMBQADggIBAONQ/fVA
+FiIJljoNqe+B5y4y8KHxSV57iA0Ecte+Z6i6He5Qu3JuetG7DHIwRsjV1wISFplO
+Ht9alu6Pkb6uhvgQd6XEbkdhwPIm2U9haAVIdQgVpaF71biziXnm7fHzYQCGey4x
+/qNc+Hk9tFuIe+Ajuw2hF/rLaA2Yd3EI4m1DdGvENsWUQaQA1lctmYqLIBIVAjIO
+0knsgUjFaidS17JzVVOWPJ5PTLWg0E9X0GcoSGS+xri67GTPyHvFaucq5llXttbU
+1sBnXNmeKAlAv/OpNTFlYAPLGWyClQMeXz/hvepJceVbtwtHFhsgiW2UmQx+iGwd
+DfS3IRpZl6zL6L4XH5V8U5uvUFKqjQsur1rXYPIqaSq57lRwGKq99aE/0t2hYxkA
++KcM66N58nBZo/iiEgPsE//kAoY218HDpLXUpMI3RbaUcD3FveujFR3jNnoVaSpW
+NDnPpZo2qsjtebzP9s4EUwvaslAjfLw+Jq3wDkO7JsuuwkDeNx8KoFHNY522T9jG
+R3y82LTtnovzEeKotT7srnA+fiK7NUgXYGIUkTCjdj2mUTaLHw3dajEcpe3dlqNu
+cg8TTaqnqVx4+QMSGJM3RRKJPfi+yr3ZvgzZGGSnyEE+dYIhOH1l9KDUE0sHeCn5
+nX7Mhz/E2i6I3eML3FpRWunZEk+eAtv3BSVR
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/TrustAsia_SMIME_ECC_Root_CA.pem b/secure/caroot/untrusted/TrustAsia_SMIME_ECC_Root_CA.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/TrustAsia_SMIME_ECC_Root_CA.pem
@@ -0,0 +1,63 @@
+##
+## TrustAsia SMIME ECC Root CA
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 5a:c2:f8:29:4f:e3:7d:c5:5e:1d:18:6f:3b:93:20:1f:ff:7b:ba:2d
+ Signature Algorithm: ecdsa-with-SHA384
+ Issuer: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia SMIME ECC Root CA
+ Validity
+ Not Before: May 15 05:41:59 2024 GMT
+ Not After : May 15 05:41:58 2044 GMT
+ Subject: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia SMIME ECC Root CA
+ Subject Public Key Info:
+ Public Key Algorithm: id-ecPublicKey
+ Public-Key: (384 bit)
+ pub:
+ 04:cd:d9:fb:27:bd:69:ec:86:c9:90:43:b1:70:17:
+ 94:a7:c9:77:23:3a:3f:23:65:d3:1c:a3:1d:1e:42:
+ 54:20:eb:d0:42:bb:59:b9:8b:ac:f2:86:8d:4b:8e:
+ 1d:aa:96:22:23:39:76:6d:92:9b:eb:22:cb:7a:43:
+ a2:73:fd:73:4b:c2:25:0f:2a:b1:69:c6:ff:45:df:
+ a9:3c:95:80:bb:a9:1e:4a:93:2f:ec:1c:1d:88:f4:
+ 11:92:37:9f:37:98:72
+ ASN1 OID: secp384r1
+ NIST CURVE: P-384
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ 31:67:E6:72:B2:0D:E6:22:A0:AC:CF:7E:22:A7:59:32:E3:66:23:A5
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: ecdsa-with-SHA384
+ Signature Value:
+ 30:66:02:31:00:dd:3a:4c:8d:a4:c6:7f:ed:bd:a5:c6:4f:3e:
+ fd:31:4b:28:d6:8a:56:df:65:16:77:87:4d:fb:ba:32:08:81:
+ e0:9e:33:48:8b:9f:94:86:ef:01:2b:94:e6:8c:d6:d4:8e:02:
+ 31:00:9f:81:9c:b0:26:fd:2b:d6:f2:f5:71:84:9e:a8:c7:8a:
+ 8c:d6:58:11:52:b5:b8:04:cb:cc:71:75:63:e2:c6:19:38:d9:
+ 6d:6c:19:71:a4:16:19:21:93:ba:06:44:28:6c
+SHA1 Fingerprint=8C:0D:AA:FE:13:FA:59:F2:DB:9D:0C:97:DA:12:A2:45:1A:02:13:54
+-----BEGIN CERTIFICATE-----
+MIICNjCCAbugAwIBAgIUWsL4KU/jfcVeHRhvO5MgH/97ui0wCgYIKoZIzj0EAwMw
+WjELMAkGA1UEBhMCQ04xJTAjBgNVBAoTHFRydXN0QXNpYSBUZWNobm9sb2dpZXMs
+IEluYy4xJDAiBgNVBAMTG1RydXN0QXNpYSBTTUlNRSBFQ0MgUm9vdCBDQTAeFw0y
+NDA1MTUwNTQxNTlaFw00NDA1MTUwNTQxNThaMFoxCzAJBgNVBAYTAkNOMSUwIwYD
+VQQKExxUcnVzdEFzaWEgVGVjaG5vbG9naWVzLCBJbmMuMSQwIgYDVQQDExtUcnVz
+dEFzaWEgU01JTUUgRUNDIFJvb3QgQ0EwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAATN
+2fsnvWnshsmQQ7FwF5SnyXcjOj8jZdMcox0eQlQg69BCu1m5i6zyho1Ljh2qliIj
+OXZtkpvrIst6Q6Jz/XNLwiUPKrFpxv9F36k8lYC7qR5Kky/sHB2I9BGSN583mHKj
+QjBAMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFDFn5nKyDeYioKzPfiKnWTLj
+ZiOlMA4GA1UdDwEB/wQEAwIBBjAKBggqhkjOPQQDAwNpADBmAjEA3TpMjaTGf+29
+pcZPPv0xSyjWilbfZRZ3h037ujIIgeCeM0iLn5SG7wErlOaM1tSOAjEAn4GcsCb9
+K9by9XGEnqjHiozWWBFStbgEy8xxdWPixhk42W1sGXGkFhkhk7oGRChs
+-----END CERTIFICATE-----
diff --git a/secure/caroot/untrusted/TrustAsia_SMIME_RSA_Root_CA.pem b/secure/caroot/untrusted/TrustAsia_SMIME_RSA_Root_CA.pem
new file mode 100644
--- /dev/null
+++ b/secure/caroot/untrusted/TrustAsia_SMIME_RSA_Root_CA.pem
@@ -0,0 +1,131 @@
+##
+## TrustAsia SMIME RSA Root CA
+##
+## This is a single X.509 certificate for a public Certificate
+## Authority (CA). It was automatically extracted from Mozilla's
+## root CA list (the file `certdata.txt' in security/nss).
+##
+## @generated
+##
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number:
+ 5a:ee:71:df:de:0c:57:85:b5:bb:36:22:d7:b8:76:46:02:73:ca:ff
+ Signature Algorithm: sha384WithRSAEncryption
+ Issuer: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia SMIME RSA Root CA
+ Validity
+ Not Before: May 15 05:42:01 2024 GMT
+ Not After : May 15 05:42:00 2044 GMT
+ Subject: C = CN, O = "TrustAsia Technologies, Inc.", CN = TrustAsia SMIME RSA Root CA
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (4096 bit)
+ Modulus:
+ 00:98:95:9c:ad:3c:59:73:d3:93:76:a6:48:54:a6:
+ 1c:88:72:4c:4d:e1:82:ff:1a:13:1f:50:de:8c:d9:
+ 90:42:d1:bc:99:d3:37:a3:d7:71:3a:ca:dd:5e:1b:
+ 90:61:42:6e:8f:40:01:73:7d:1f:31:ba:d4:1d:6e:
+ 04:d2:aa:90:84:4a:33:0a:44:9f:5a:19:1f:b4:6e:
+ 2d:68:fc:af:c0:9f:4a:10:12:bf:3e:82:c2:82:b0:
+ 2f:e7:90:6f:90:64:10:83:ec:ec:36:94:0c:7c:4f:
+ e0:02:0d:3d:87:79:42:4d:00:e5:30:ae:70:1f:15:
+ fd:fa:cf:52:25:36:4d:79:20:bb:f1:10:98:e0:60:
+ 87:c9:f5:78:0c:22:ed:02:e6:11:6c:f1:9b:5a:91:
+ 11:74:86:d0:fe:78:92:96:04:c3:98:ef:c6:70:af:
+ a9:90:aa:16:f6:22:ed:d8:fa:46:28:71:e2:c9:08:
+ c0:50:bc:76:a3:ba:2d:96:f2:11:f9:a4:bd:10:56:
+ f8:27:6d:2b:4b:64:88:dc:17:5d:cf:00:08:8a:92:
+ ae:1a:cc:12:d7:df:f0:10:28:f3:cd:3a:ea:3a:12:
+ 8c:1b:e7:61:09:43:6a:e4:38:e9:fe:74:39:db:cd:
+ 0a:3b:c3:4f:53:d6:ae:71:d5:38:83:87:1f:ce:e7:
+ 4c:f3:11:55:87:df:b7:af:f7:eb:1a:86:10:6d:a8:
+ ed:48:dd:32:d0:db:aa:2a:0b:72:77:29:77:fd:7a:
+ e8:3f:78:20:2a:68:be:de:6f:08:e6:b5:85:47:80:
+ 37:f9:71:96:8b:a5:98:56:97:7c:11:65:16:8e:d4:
+ ce:d8:27:d4:f9:5a:c5:a7:8d:bb:d1:37:0d:a5:ab:
+ 65:5d:da:74:93:88:5e:db:75:f6:7f:9b:c2:9a:b1:
+ 6d:08:02:0c:98:4a:bb:cd:30:af:76:35:02:85:56:
+ 23:51:09:40:09:05:f7:f0:3d:1e:c2:c8:7a:1a:ba:
+ c5:41:15:b9:0d:76:b4:b4:a4:b8:45:fd:8d:a3:3b:
+ 3d:03:2a:cd:b3:95:7f:34:7b:dd:a1:4f:d9:3a:ff:
+ 27:f5:0d:c2:01:9c:ff:59:75:5a:1a:c9:e7:d2:fd:
+ 7f:4f:0f:b5:fe:0d:3c:e6:a0:d6:fb:b5:76:5c:b4:
+ 30:4d:10:3f:fe:e2:eb:5a:0e:b1:4f:4f:50:7e:08:
+ 33:02:91:57:32:49:89:a7:40:10:50:17:6b:9f:63:
+ ba:b2:b2:56:98:76:f4:ff:72:e9:04:9c:d4:a7:4c:
+ 4f:f6:3a:1f:5a:54:31:6f:cb:ba:32:ad:f8:6d:af:
+ 45:c7:7b:63:44:df:c2:fd:78:e8:4a:8a:b0:74:75:
+ 16:de:8f
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ X509v3 Subject Key Identifier:
+ 80:1A:AA:43:C1:C9:7F:8B:1A:96:45:BC:3D:BB:6B:48:52:6C:5B:AB
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ Signature Algorithm: sha384WithRSAEncryption
+ Signature Value:
+ 2a:75:81:a1:82:20:ea:7f:56:ae:09:30:97:10:78:f4:d9:40:
+ 14:52:a4:ee:6a:7f:f0:09:28:d6:10:63:e0:4e:7b:c9:31:c7:
+ 08:a5:17:eb:af:86:e2:97:07:4f:a9:0e:a2:85:cc:ed:a4:80:
+ 81:1d:5a:53:06:3c:4c:1a:a9:b7:84:86:cf:7c:f5:85:0a:70:
+ 99:d0:ed:36:91:8d:e7:77:2e:ce:84:9c:28:86:2d:25:35:8c:
+ 4c:01:e6:7d:db:61:5d:e2:77:84:d3:01:d1:62:dd:0c:a2:0a:
+ 64:a4:fc:f0:ed:3a:48:f2:39:ec:35:d6:a1:7a:17:71:ec:d3:
+ d2:ec:b8:26:fb:ad:15:70:56:4a:cf:64:c0:b9:60:5b:f7:e6:
+ cd:a0:c2:03:2b:f9:b2:e5:da:ba:a5:37:1c:d8:8d:da:79:74:
+ 2a:67:e4:a2:7a:c7:2c:8d:a5:c1:6a:81:6c:cc:f5:a9:39:6a:
+ 22:7d:a2:e2:08:cd:e9:93:db:ba:cb:1f:75:77:9e:f7:98:af:
+ 14:e4:3b:a0:4c:a7:72:e7:b5:5e:53:49:cc:ff:92:57:f1:59:
+ 2b:09:ba:e9:52:93:c0:0f:45:0b:61:d6:6c:59:73:0b:d8:f9:
+ 01:2f:da:03:4f:37:1c:f4:df:83:5e:0b:41:a0:b1:7c:39:00:
+ a1:6c:d0:d8:b4:91:72:2b:1b:3f:a2:9a:d1:c4:df:2b:d5:c8:
+ 95:7d:84:cd:76:1b:dc:e4:24:c6:3f:15:22:3d:85:a7:42:2b:
+ ed:7e:71:59:61:48:c2:3d:91:63:40:7c:29:b3:80:16:0a:25:
+ fc:18:60:0e:53:ad:0e:2a:ce:fc:41:3a:cd:b1:e4:6a:6b:cc:
+ 39:6d:c8:4d:65:b8:aa:93:88:78:6e:0f:02:8b:e0:96:8e:74:
+ 1f:d0:7e:e1:74:b7:f6:81:6a:e4:23:ac:8e:fd:8f:35:1d:9a:
+ 71:0a:4f:2a:55:2f:fe:18:c1:00:f7:7b:48:8a:65:af:6f:08:
+ 1d:43:e7:5a:b8:1f:a4:e8:03:eb:fd:4c:b5:b4:93:a8:31:de:
+ 43:9d:12:bd:e7:e9:a4:d2:df:6f:fc:6f:46:a3:ef:31:4e:8d:
+ 17:ab:1b:a9:e0:f8:a9:34:56:a1:0e:e7:74:ec:a8:87:85:d8:
+ 77:35:4b:8d:3e:6e:72:7c:48:cc:1f:72:b3:71:74:d4:24:86:
+ bc:c8:c0:e3:79:14:01:ce:d9:fa:81:c6:5c:b3:f9:5d:0c:38:
+ be:ce:f2:8e:8d:5f:3d:25:e1:51:39:23:a8:ea:00:8e:04:b3:
+ bf:72:a0:c2:ba:83:fb:cd:a4:97:75:20:9a:bf:a7:50:e2:dd:
+ ad:2c:1f:f4:3f:a3:c8:31
+SHA1 Fingerprint=8C:69:21:7C:CE:49:73:36:5A:5C:EF:2B:B0:86:97:50:E3:E3:33:65
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
diff --git a/secure/caroot/trusted/XRamp_Global_CA_Root.pem b/secure/caroot/untrusted/XRamp_Global_CA_Root.pem
rename from secure/caroot/trusted/XRamp_Global_CA_Root.pem
rename to secure/caroot/untrusted/XRamp_Global_CA_Root.pem
--- a/secure/caroot/trusted/XRamp_Global_CA_Root.pem
+++ b/secure/caroot/untrusted/XRamp_Global_CA_Root.pem
@@ -5,10 +5,6 @@
## Authority (CA). It was automatically extracted from Mozilla's
## root CA list (the file `certdata.txt' in security/nss).
##
-## It contains a certificate trusted for server authentication.
-##
-## Extracted from nss
-##
## @generated
##
Certificate:
File Metadata
Details
Attached
Mime Type
text/plain
Expires
Thu, May 21, 9:11 AM (5 h, 45 m)
Storage Engine
blob
Storage Format
Raw Data
Storage Handle
28756353
Default Alt Text
D52158.1779354713.diff (237 KB)
Attached To
Mode
D52158: caroot: Regenerate
Attached
Detach File
Event Timeline
Log In to Comment