Looks good to me, ok bcook@

On Sat, Dec 31, 2016 at 2:45 PM, Stuart Henderson <[email protected]>
wrote:

> Since there wasn't much interest in that (which unbreaks e.g.
> https://www.nginx.com),
> here's a longer diff that syncs with Mozilla's release branch for those CA
> organisations
> which we currently carry.
>
> Compared to the in-tree version it adds the following:
>
> +  /C=FR/O=Certplus/CN=Certplus Root CA G1
> +  /C=FR/O=Certplus/CN=Certplus Root CA G2
> +  /C=US/O=Digital Signature Trust/OU=DST ACES/CN=DST ACES CA X6
> +  /OU=GlobalSign ECC Root CA - R4/O=GlobalSign/CN=GlobalSign
> +  /OU=GlobalSign ECC Root CA - R5/O=GlobalSign/CN=GlobalSign
> +  /OU=GlobalSign Root CA - R2/O=GlobalSign/CN=GlobalSign
> +  /C=PL/O=Unizeto Technologies S.A./OU=Certum Certification
> Authority/CN=Certum Trusted Network CA
> +  /C=PL/O=Unizeto Technologies S.A./OU=Certum Certification
> Authority/CN=Certum Trusted Network CA 2
>
> And removes these which were removed from Mozilla some time ago, which
> should
> no longer be a problem now that the alt roots diff is committed to
> libressl.
>
> -  /C=US/O=Entrust.net/OU=www.entrust.net/CPS incorp. by ref. (limits
> liab.)/OU=(c) 1999 Entrust.net Limited/CN=Entrust.net Secure Server
> Certification Authority
> -  /C=US/O=Equifax/OU=Equifax Secure Certificate Authority
> -  /C=US/O=Equifax Secure Inc./CN=Equifax Secure eBusiness CA-1
> -  /C=US/O=Equifax Secure Inc./CN=Equifax Secure Global eBusiness CA-1
> -  /C=US/O=GTE Corporation/OU=GTE CyberTrust Solutions, Inc./CN=GTE
> CyberTrust Global Root
> -  /C=CH/O=SwissSign AG/CN=SwissSign Platinum CA - G2
> -  /C=ZA/ST=Western Cape/L=Cape Town/O=Thawte Consulting
> cc/OU=Certification Services Division/CN=Thawte Premium Server
> CA/[email protected]
> -  /C=ZA/ST=Western Cape/L=Cape Town/O=Thawte Consulting
> cc/OU=Certification Services Division/CN=Thawte Server CA/emailAddress=
> [email protected]
> -  /L=ValiCert Validation Network/O=ValiCert, Inc./OU=ValiCert Class 2
> Policy Validation Authority/CN=http://www.valicert.com//emailAddress=
> [email protected]
> -  /C=US/O=VeriSign, Inc./OU=Class 3 Public Primary Certification
> Authority - G2/OU=(c) 1998 VeriSign, Inc. - For authorized use
> only/OU=VeriSign Trust Network
> -  /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=(c) 1999 VeriSign,
> Inc. - For authorized use only/CN=VeriSign Class 4 Public Primary
> Certification Authority - G3
>
> Full diff below - as mentioned previously there is a bunch of churn because
> this is generated with the newer format-pem.pl script which prints and
> sorts
> based on the full certificate subject, rather than a pretty-printed
> version,
> fixing the problem reported by Steven McDonald.
>
> Since this is on ramdisks I will also note that the newer one is smaller.
>
> $ acvs up -p cert.pem | wc
>     3634    7922  191908
> $ wc cert.pem
>     3534    7861  190452 cert.pem
>
> OK?
>
> (StartCom is still in there for now, but we should also consider what to do
> about that.)
>
> Index: cert.pem
> ===================================================================
> RCS file: /cvs/src/lib/libcrypto/cert.pem,v
> retrieving revision 1.13
> diff -u -p -r1.13 cert.pem
> --- cert.pem    4 Sep 2016 11:58:15 -0000       1.13
> +++ cert.pem    31 Dec 2016 20:41:20 -0000
> @@ -2,55 +2,7 @@
>
>  ### AddTrust AB
>
> -=== AddTrust Class 1 CA Root
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> -    Signature Algorithm: sha1WithRSAEncryption
> -        Validity
> -            Not Before: May 30 10:38:31 2000 GMT
> -            Not After : May 30 10:38:31 2020 GMT
> -        Subject: C=SE, O=AddTrust AB, OU=AddTrust TTP Network,
> CN=AddTrust Class 1 CA Root
> -        X509v3 extensions:
> -            X509v3 Subject Key Identifier:
> -                95:B1:B4:F0:94:B6:BD:C7:DA:D1:
> 11:09:21:BE:C1:AF:49:FD:10:7B
> -            X509v3 Key Usage:
> -                Certificate Sign, CRL Sign
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Authority Key Identifier:
> -                keyid:95:B1:B4:F0:94:B6:BD:C7:
> DA:D1:11:09:21:BE:C1:AF:49:FD:10:7B
> -                DirName:/C=SE/O=AddTrust AB/OU=AddTrust TTP
> Network/CN=AddTrust Class 1 CA Root
> -                serial:01
> -
> -SHA1 Fingerprint=CC:AB:0E:A0:4C:23:01:D6:69:7B:DD:37:9F:CD:12:EB:
> 24:E3:94:9D
> -SHA256 Fingerprint=8C:72:09:27:9A:C0:4E:27:5E:16:D0:7F:D3:B7:75:E8:
> 01:54:B5:96:80:46:E3:1F:52:DD:25:76:63:24:E9:A7
> ------BEGIN CERTIFICATE-----
> -MIIEGDCCAwCgAwIBAgIBATANBgkqhkiG9w0BAQUFADBlMQswCQYDVQQGEwJTRTEU
> -MBIGA1UEChMLQWRkVHJ1c3QgQUIxHTAbBgNVBAsTFEFkZFRydXN0IFRUUCBOZXR3
> -b3JrMSEwHwYDVQQDExhBZGRUcnVzdCBDbGFzcyAxIENBIFJvb3QwHhcNMDAwNTMw
> -MTAzODMxWhcNMjAwNTMwMTAzODMxWjBlMQswCQYDVQQGEwJTRTEUMBIGA1UEChML
> -QWRkVHJ1c3QgQUIxHTAbBgNVBAsTFEFkZFRydXN0IFRUUCBOZXR3b3JrMSEwHwYD
> -VQQDExhBZGRUcnVzdCBDbGFzcyAxIENBIFJvb3QwggEiMA0GCSqGSIb3DQEBAQUA
> -A4IBDwAwggEKAoIBAQCWltQhSWDia+hBBwzexODcEyPNwTXH+9ZOEQpnXvUGW2ul
> -CDtbKRY654eyNAbFvAWlA3yCyykQruGIgb3WntP+LVbBFc7jJp0VLhD7Bo8wBN6n
> -tGO0/7Gcrjyvd7ZWxbWroulpOj0OM3kyP3CCkplhbY0wCI9xP6ZIVxn4JdxLZlyl
> -dI+Yrsj5wAYi56xz36Uu+1LcsRVlIPo1Zmne3yzxbrww2ywkEtvrNTVokMsAsJch
> -PXQhI2U0K7t4WaPW4XY5mqRJjox0r26kmqPZm9I4XJuiGMx1I4S+6+JNM3GOGvDC
> -+Mcdoq0Dlyz4zyXG9rgkMbFjXZJ/Y/AlyVMuH79NAgMBAAGjgdIwgc8wHQYDVR0O
> -BBYEFJWxtPCUtr3H2tERCSG+wa9J/RB7MAsGA1UdDwQEAwIBBjAPBgNVHRMBAf8E
> -BTADAQH/MIGPBgNVHSMEgYcwgYSAFJWxtPCUtr3H2tERCSG+wa9J/RB7oWmkZzBl
> -MQswCQYDVQQGEwJTRTEUMBIGA1UEChMLQWRkVHJ1c3QgQUIxHTAbBgNVBAsTFEFk
> -ZFRydXN0IFRUUCBOZXR3b3JrMSEwHwYDVQQDExhBZGRUcnVzdCBDbGFzcyAxIENB
> -IFJvb3SCAQEwDQYJKoZIhvcNAQEFBQADggEBACxtZBsfzQ3duQH6lmM0MkhHma6X
> -7f1yFqZzR1r0693p9db7RcwpiURdv0Y5PejuvE1Uhh4dbOMXJ0PhiVYrqW9yTkkz
> -43J8KiOavD7/KCrto/8cI7pDVwlnTUtiBi34/2ydYB7YHEt9tTEv2dB8Xfjea4MY
> -eDdXL+gzB2ffHsdrKpV2ro9Xo/D0UrSpUwjP4E/TelOL/bscVjby/rK25Xa71SJl
> -pz/+0WatC7xrmYbvP33zGDLKe8bjq2RGlfgmadlVg3sslgf/WSxEo8bl6ancoWOA
> -WiFeIc9TVPC6b4nbqKqVz4vjccweGyBECMB6tkD9xOQ14R0WHNC8K47Wcdk=
> ------END CERTIFICATE-----
> -=== AddTrust External CA Root
> +=== /C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust
> External CA Root
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -99,7 +51,55 @@ Nr4TDea9Y355e6cJDUCrat2PisP29owaQgVR1EX1
>  c4g/VhsxOBi0cQ+azcgOno4uG+GMmIPLHzHxREzGBHNJdmAPx/i9F4BrLunMTA5a
>  mnkPIAou1Z5jJh5VkpTYghdae9C8x49OhgQ=
>  -----END CERTIFICATE-----
> -=== AddTrust Public CA Root
> +=== /C=SE/O=AddTrust AB/OU=AddTrust TTP Network/CN=AddTrust Class 1 CA
> Root
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number: 1 (0x1)
> +    Signature Algorithm: sha1WithRSAEncryption
> +        Validity
> +            Not Before: May 30 10:38:31 2000 GMT
> +            Not After : May 30 10:38:31 2020 GMT
> +        Subject: C=SE, O=AddTrust AB, OU=AddTrust TTP Network,
> CN=AddTrust Class 1 CA Root
> +        X509v3 extensions:
> +            X509v3 Subject Key Identifier:
> +                95:B1:B4:F0:94:B6:BD:C7:DA:D1:
> 11:09:21:BE:C1:AF:49:FD:10:7B
> +            X509v3 Key Usage:
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Authority Key Identifier:
> +                keyid:95:B1:B4:F0:94:B6:BD:C7:
> DA:D1:11:09:21:BE:C1:AF:49:FD:10:7B
> +                DirName:/C=SE/O=AddTrust AB/OU=AddTrust TTP
> Network/CN=AddTrust Class 1 CA Root
> +                serial:01
> +
> +SHA1 Fingerprint=CC:AB:0E:A0:4C:23:01:D6:69:7B:DD:37:9F:CD:12:EB:
> 24:E3:94:9D
> +SHA256 Fingerprint=8C:72:09:27:9A:C0:4E:27:5E:16:D0:7F:D3:B7:75:E8:
> 01:54:B5:96:80:46:E3:1F:52:DD:25:76:63:24:E9:A7
> +-----BEGIN CERTIFICATE-----
> +MIIEGDCCAwCgAwIBAgIBATANBgkqhkiG9w0BAQUFADBlMQswCQYDVQQGEwJTRTEU
> +MBIGA1UEChMLQWRkVHJ1c3QgQUIxHTAbBgNVBAsTFEFkZFRydXN0IFRUUCBOZXR3
> +b3JrMSEwHwYDVQQDExhBZGRUcnVzdCBDbGFzcyAxIENBIFJvb3QwHhcNMDAwNTMw
> +MTAzODMxWhcNMjAwNTMwMTAzODMxWjBlMQswCQYDVQQGEwJTRTEUMBIGA1UEChML
> +QWRkVHJ1c3QgQUIxHTAbBgNVBAsTFEFkZFRydXN0IFRUUCBOZXR3b3JrMSEwHwYD
> +VQQDExhBZGRUcnVzdCBDbGFzcyAxIENBIFJvb3QwggEiMA0GCSqGSIb3DQEBAQUA
> +A4IBDwAwggEKAoIBAQCWltQhSWDia+hBBwzexODcEyPNwTXH+9ZOEQpnXvUGW2ul
> +CDtbKRY654eyNAbFvAWlA3yCyykQruGIgb3WntP+LVbBFc7jJp0VLhD7Bo8wBN6n
> +tGO0/7Gcrjyvd7ZWxbWroulpOj0OM3kyP3CCkplhbY0wCI9xP6ZIVxn4JdxLZlyl
> +dI+Yrsj5wAYi56xz36Uu+1LcsRVlIPo1Zmne3yzxbrww2ywkEtvrNTVokMsAsJch
> +PXQhI2U0K7t4WaPW4XY5mqRJjox0r26kmqPZm9I4XJuiGMx1I4S+6+JNM3GOGvDC
> ++Mcdoq0Dlyz4zyXG9rgkMbFjXZJ/Y/AlyVMuH79NAgMBAAGjgdIwgc8wHQYDVR0O
> +BBYEFJWxtPCUtr3H2tERCSG+wa9J/RB7MAsGA1UdDwQEAwIBBjAPBgNVHRMBAf8E
> +BTADAQH/MIGPBgNVHSMEgYcwgYSAFJWxtPCUtr3H2tERCSG+wa9J/RB7oWmkZzBl
> +MQswCQYDVQQGEwJTRTEUMBIGA1UEChMLQWRkVHJ1c3QgQUIxHTAbBgNVBAsTFEFk
> +ZFRydXN0IFRUUCBOZXR3b3JrMSEwHwYDVQQDExhBZGRUcnVzdCBDbGFzcyAxIENB
> +IFJvb3SCAQEwDQYJKoZIhvcNAQEFBQADggEBACxtZBsfzQ3duQH6lmM0MkhHma6X
> +7f1yFqZzR1r0693p9db7RcwpiURdv0Y5PejuvE1Uhh4dbOMXJ0PhiVYrqW9yTkkz
> +43J8KiOavD7/KCrto/8cI7pDVwlnTUtiBi34/2ydYB7YHEt9tTEv2dB8Xfjea4MY
> +eDdXL+gzB2ffHsdrKpV2ro9Xo/D0UrSpUwjP4E/TelOL/bscVjby/rK25Xa71SJl
> +pz/+0WatC7xrmYbvP33zGDLKe8bjq2RGlfgmadlVg3sslgf/WSxEo8bl6ancoWOA
> +WiFeIc9TVPC6b4nbqKqVz4vjccweGyBECMB6tkD9xOQ14R0WHNC8K47Wcdk=
> +-----END CERTIFICATE-----
> +=== /C=SE/O=AddTrust AB/OU=AddTrust TTP Network/CN=AddTrust Public CA Root
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -147,7 +147,7 @@ GEjwxrzQvzSAlsJKsW2Ox5BF3i9nrEUEo3rcVZLJ
>  4SINhwBk/ox9Yjllpu9CtoAlEmEBqCQTcAARJl/6NVDFSMwGR+gn2HCNX2TmoUQm
>  XiLsks3/QppEIW1cxeMiHV9HEufOX1362KqxMy3ZdvJOOjMMK7MtkAY=
>  -----END CERTIFICATE-----
> -=== AddTrust Qualified CA Root
> +=== /C=SE/O=AddTrust AB/OU=AddTrust TTP Network/CN=AddTrust Qualified CA
> Root
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -199,7 +199,7 @@ xqE=
>
>  ### Baltimore
>
> -=== Baltimore CyberTrust Root
> +=== /C=IE/O=Baltimore/OU=CyberTrust/CN=Baltimore CyberTrust Root
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -242,7 +242,98 @@ R9I4LtD+gdwyah617jzV/OeBHRnDJELqYzmp
>
>  ### Certplus
>
> -=== Class 2 Primary CA
> +=== /C=FR/O=Certplus/CN=Certplus Root CA G1
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            11:20:55:83:e4:2d:3e:54:56:85:2d:83:37:b7:2c:dc:46:11
> +    Signature Algorithm: sha512WithRSAEncryption
> +        Validity
> +            Not Before: May 26 00:00:00 2014 GMT
> +            Not After : Jan 15 00:00:00 2038 GMT
> +        Subject: C=FR, O=Certplus, CN=Certplus Root CA G1
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                A8:C1:C0:9B:91:A8:43:15:7C:5D:
> 06:27:B4:2A:51:D8:97:0B:81:B1
> +            X509v3 Authority Key Identifier:
> +                keyid:A8:C1:C0:9B:91:A8:43:15:
> 7C:5D:06:27:B4:2A:51:D8:97:0B:81:B1
> +
> +SHA1 Fingerprint=22:FD:D0:B7:FD:A2:4E:0D:AC:49:2C:A0:AC:A6:7B:6A:
> 1F:E3:F7:66
> +SHA256 Fingerprint=15:2A:40:2B:FC:DF:2C:D5:48:05:4D:22:75:B3:9C:7F:
> CA:3E:C0:97:80:78:B0:F0:EA:76:E5:61:A6:C7:43:3E
> +-----BEGIN CERTIFICATE-----
> +MIIFazCCA1OgAwIBAgISESBVg+QtPlRWhS2DN7cs3EYRMA0GCSqGSIb3DQEBDQUA
> +MD4xCzAJBgNVBAYTAkZSMREwDwYDVQQKDAhDZXJ0cGx1czEcMBoGA1UEAwwTQ2Vy
> +dHBsdXMgUm9vdCBDQSBHMTAeFw0xNDA1MjYwMDAwMDBaFw0zODAxMTUwMDAwMDBa
> +MD4xCzAJBgNVBAYTAkZSMREwDwYDVQQKDAhDZXJ0cGx1czEcMBoGA1UEAwwTQ2Vy
> +dHBsdXMgUm9vdCBDQSBHMTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB
> +ANpQh7bauKk+nWT6VjOaVj0W5QOVsjQcmm1iBdTYj+eJZJ+622SLZOZ5KmHNr49a
> +iZFluVj8tANfkT8tEBXgfs+8/H9DZ6itXjYj2JizTfNDnjl8KvzsiNWI7nC9hRYt
> +6kuJPKNxQv4c/dMcLRC4hlTqQ7jbxofaqK6AJc96Jh2qkbBIb6613p7Y1/oA/caP
> +0FG7Yn2ksYyy/yARujVjBYZHYEMzkPZHogNPlk2dT8Hq6pyi/jQu3rfKG3akt62f
> +6ajUeD94/vI4CTYd0hYCyOwqaK/1jpTvLRN6HkJKHRUxrgwEV/xhc/MxVoYxgKDE
> +EW4wduOU8F8ExKyHcomYxZ3MVwia9Az8fXoFOvpHgDm2z4QTd28n6v+WZxcIbekN
> +1iNQMLAVdBM+5S//Ds3EC0pd8NgAM0lm66EYfFkuPSi5YXHLtaW6uOrc4nBvCGrc
> +h2c0798wct3zyT8j/zXhviEpIDCB5BmlIOklynMxdCm+4kLV87ImZsdo/Rmz5yCT
> +mehd4F6H50boJZwKKSTUzViGUkAksnsPmBIgJPaQbEfIDbsYIC7Z/fyL8inqh3SV
> +4EJQeIQEQWGw9CEjjy3LKCHyamz0GqbFFLQ3ZU+V/YDI+HLlJWvEYLF7bY5KinPO
> +WftwenMGE9nTdDckQQoRb5fc5+R+ob0V8rqHDz1oihYHAgMBAAGjYzBhMA4GA1Ud
> +DwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBSowcCbkahDFXxd
> +Bie0KlHYlwuBsTAfBgNVHSMEGDAWgBSowcCbkahDFXxdBie0KlHYlwuBsTANBgkq
> +hkiG9w0BAQ0FAAOCAgEAnFZvAX7RvUz1isbwJh/k4DgYzDLDKTudQSk0YcbX8ACh
> +66Ryj5QXvBMsdbRX7gp8CXrc1cqh0DQT+Hern+X+2B50ioUHj3/MeXrKls3N/U/7
> +/SMNkPX0XtPGYX2eEeAC7gkE2Qfdpoq3DIMku4NQkv5gdRE+2J2winq14J2by5BS
> +S7CTKtQ+FjPlnsZlFT5kOwQ/2wyPX1wdaR+v8+khjPPvl/aatxm2hHSco1S1cE5j
> +2FddUyGbQJJD+tZ3VTNPZNX70Cxqjm0lpu+F6ALEUz65noe8zDUa3qHpimOHZR4R
> +Kttjd5cUvpoUmRGywO6wT/gUITJDT5+rosuoD6o7BlXGEilXCNQ314cnrUlZp5Gr
> +RHpejXDbl85IULFzk/bwg2D5zfHhMf1bfHEhYxQUqq/F3pN+aLHsIqKqkHWetUNy
> +6mSjhEv9DKgma3GX7lZjZuhCVPnHHd/Qj1vfyDBviP4NxDMcU6ij/UgQ8uQKTuEV
> +V/xuZDDCVRHc6qnNSlSsKWNEz0pAoNZoWRsz+e86i9sgktxChL8Bq4fA1SCC28a5
> +g4VCXA9DO2pJNdWY9BW/+mGBDAkgGNLQFwzLSABQ6XaCjGTXOqAHVcweMcDvOrRl
> +++O/QmueD6i9a5jc2NvLi6Td11n0bt3+qsOR0C5CB8AMTVPNJLFMWx5R9N/pkvo=
> +-----END CERTIFICATE-----
> +=== /C=FR/O=Certplus/CN=Certplus Root CA G2
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            11:20:d9:91:ce:ae:a3:e8:c5:e7:ff:e9:02:af:cf:73:bc:55
> +    Signature Algorithm: ecdsa-with-SHA384
> +        Validity
> +            Not Before: May 26 00:00:00 2014 GMT
> +            Not After : Jan 15 00:00:00 2038 GMT
> +        Subject: C=FR, O=Certplus, CN=Certplus Root CA G2
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                DA:83:63:02:79:8E:DA:4C:C6:3C:
> 23:14:D8:8F:C3:20:AB:28:60:59
> +            X509v3 Authority Key Identifier:
> +                keyid:DA:83:63:02:79:8E:DA:4C:
> C6:3C:23:14:D8:8F:C3:20:AB:28:60:59
> +
> +SHA1 Fingerprint=4F:65:8E:1F:E9:06:D8:28:02:E9:54:47:41:C9:54:25:
> 5D:69:CC:1A
> +SHA256 Fingerprint=6C:C0:50:41:E6:44:5E:74:69:6C:4C:FB:C9:F8:0F:54:
> 3B:7E:AB:BB:44:B4:CE:6F:78:7C:6A:99:71:C4:2F:17
> +-----BEGIN CERTIFICATE-----
> +MIICHDCCAaKgAwIBAgISESDZkc6uo+jF5//pAq/Pc7xVMAoGCCqGSM49BAMDMD4x
> +CzAJBgNVBAYTAkZSMREwDwYDVQQKDAhDZXJ0cGx1czEcMBoGA1UEAwwTQ2VydHBs
> +dXMgUm9vdCBDQSBHMjAeFw0xNDA1MjYwMDAwMDBaFw0zODAxMTUwMDAwMDBaMD4x
> +CzAJBgNVBAYTAkZSMREwDwYDVQQKDAhDZXJ0cGx1czEcMBoGA1UEAwwTQ2VydHBs
> +dXMgUm9vdCBDQSBHMjB2MBAGByqGSM49AgEGBSuBBAAiA2IABM0PW1aC3/BFGtat
> +93nwHcmsltaeTpwftEIRyoa/bfuFo8XlGVzX7qY/aWfYeOKmycTbLXku54uNAm8x
> +Ik0G42ByRZ0OQneezs/lf4WbGOT8zC5y0xaTTsqZY1yhBSpsBqNjMGEwDgYDVR0P
> +AQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFNqDYwJ5jtpMxjwj
> +FNiPwyCrKGBZMB8GA1UdIwQYMBaAFNqDYwJ5jtpMxjwjFNiPwyCrKGBZMAoGCCqG
> +SM49BAMDA2gAMGUCMHD+sAvZ94OX7PNVHdTcswYO/jOYnYs5kGuUIe22113WTNch
> +p+e/IQ8rzfcq3IUHnQIxAIYUFuXcsGXCwI4Un78kFmjlvPl5adytRSv3tjFzzAal
> +U5ORGpOucGpnutee5WEaXw==
> +-----END CERTIFICATE-----
> +=== /C=FR/O=Certplus/CN=Class 2 Primary CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -292,22 +383,21 @@ kJtN3X3n57LNXMhqlfil9o3EXXgIvnsG1knPGTZQ
>  l7+ijrRU
>  -----END CERTIFICATE-----
>
> -### COMODO CA Limited
> +### Comodo CA Limited
>
> -=== COMODO Certification Authority
> +=== /C=GB/ST=Greater Manchester/L=Salford/O=Comodo CA Limited/CN=AAA
> Certificate Services
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number:
> -            4e:81:2d:8a:82:65:e0:0b:02:ee:3e:35:02:46:e5:3d
> +        Serial Number: 1 (0x1)
>      Signature Algorithm: sha1WithRSAEncryption
>          Validity
> -            Not Before: Dec  1 00:00:00 2006 GMT
> -            Not After : Dec 31 23:59:59 2029 GMT
> -        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA
> Limited, CN=COMODO Certification Authority
> +            Not Before: Jan  1 00:00:00 2004 GMT
> +            Not After : Dec 31 23:59:59 2028 GMT
> +        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA
> Limited, CN=AAA Certificate Services
>          X509v3 extensions:
>              X509v3 Subject Key Identifier:
> -                0B:58:E5:8B:C6:4C:15:37:A4:40:
> A9:30:A9:21:BE:47:36:5A:56:FF
> +                A0:11:0A:23:3E:96:F1:07:EC:E2:
> AF:29:EF:82:A5:7F:D0:30:A4:B4
>              X509v3 Key Usage: critical
>                  Certificate Sign, CRL Sign
>              X509v3 Basic Constraints: critical
> @@ -315,141 +405,159 @@ Certificate:
>              X509v3 CRL Distribution Points:
>
>                  Full Name:
> -                  URI:http://crl.comodoca.com/
> COMODOCertificationAuthority.crl
> +                  URI:http://crl.comodoca.com/AAACertificateServices.crl
>
> -SHA1 Fingerprint=66:31:BF:9E:F7:4F:9E:B6:C9:D5:A6:0C:BA:6A:BE:D1:
> F7:BD:EF:7B
> -SHA256 Fingerprint=0C:2C:D6:3D:F7:80:6F:A3:99:ED:E8:09:11:6B:57:5B:
> F8:79:89:F0:65:18:F9:80:8C:86:05:03:17:8B:AF:66
> +                Full Name:
> +                  URI:http://crl.comodo.net/AAACertificateServices.crl
> +
> +SHA1 Fingerprint=D1:EB:23:A4:6D:17:D6:8F:D9:25:64:C2:F1:F1:60:17:
> 64:D8:E3:49
> +SHA256 Fingerprint=D7:A7:A0:FB:5D:7E:27:31:D7:71:E9:48:4E:BC:DE:F7:
> 1D:5F:0C:3E:0A:29:48:78:2B:C8:3E:E0:EA:69:9E:F4
>  -----BEGIN CERTIFICATE-----
> -MIIEHTCCAwWgAwIBAgIQToEtioJl4AsC7j41AkblPTANBgkqhkiG9w0BAQUFADCB
> -gTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
> -A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxJzAlBgNV
> -BAMTHkNPTU9ETyBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0wNjEyMDEwMDAw
> -MDBaFw0yOTEyMzEyMzU5NTlaMIGBMQswCQYDVQQGEwJHQjEbMBkGA1UECBMSR3Jl
> -YXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01P
> -RE8gQ0EgTGltaXRlZDEnMCUGA1UEAxMeQ09NT0RPIENlcnRpZmljYXRpb24gQXV0
> -aG9yaXR5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0ECLi3LjkRv3
> -UcEbVASY06m/weaKXTuH+7uIzg3jLz8GlvCiKVCZrts7oVewdFFxze1CkU1B/qnI
> -2GqGd0S7WWaXUF601CxwRM/aN5VCaTwwxHGzUvAhTaHYujl8HJ6jJJ3ygxaYqhZ8
> -Q5sVW7euNJH+1GImGEaaP+vB+fGQV+useg2L23IwambV4EajcNxo2f8ESIl33rXp
> -+2dtQem8Ob0y2WIC8bGoPW43nOIv4tOiJovGuFVDiOEjPqXSJDlqR6sA1KGzqSX+
> -DT+nHbrTUcELpNqsOO9VUCQFZUaTNE8tja3G1CEZ0o7KBWFxB3NH5YoZEr0ETc5O
> -nKVIrLsm9wIDAQABo4GOMIGLMB0GA1UdDgQWBBQLWOWLxkwVN6RAqTCpIb5HNlpW
> -/zAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zBJBgNVHR8EQjBAMD6g
> -PKA6hjhodHRwOi8vY3JsLmNvbW9kb2NhLmNvbS9DT01PRE9DZXJ0aWZpY2F0aW9u
> -QXV0aG9yaXR5LmNybDANBgkqhkiG9w0BAQUFAAOCAQEAPpiem/Yb6dc5t3iuHXIY
> -SdOH5EOC6z/JqvWote9VfCFSZfnVDeFs9D6Mk3ORLgLETgdxb8CPOGEIqB6BCsAv
> -IC9Bi5HcSEW88cbeunZrM8gALTFGTO3nnc+IlP8zwFboJIYmuNg4ON8qa90SzMc/
> -RxdMosIGlgnW2/4/PEZB31jiVg88O8EckzXZOFKs7sjsLjBOlDW0JB9LeGna8gI4
> -zJVSk/BwJVmcIGfE7vmLV2H0knZ9P4SNVbfo5azV8fUZVqZa+5Acr5Pr5RzUZ5dd
> -BA6+C4OmF4O5MBKgxTMVBbkN+8cFduPYSo38NBejxiEovjBFMR7HeL5YYTisO+IB
> -ZQ==
> +MIIEMjCCAxqgAwIBAgIBATANBgkqhkiG9w0BAQUFADB7MQswCQYDVQQGEwJHQjEb
> +MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
> +GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEhMB8GA1UEAwwYQUFBIENlcnRpZmlj
> +YXRlIFNlcnZpY2VzMB4XDTA0MDEwMTAwMDAwMFoXDTI4MTIzMTIzNTk1OVowezEL
> +MAkGA1UEBhMCR0IxGzAZBgNVBAgMEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
> +BwwHU2FsZm9yZDEaMBgGA1UECgwRQ29tb2RvIENBIExpbWl0ZWQxITAfBgNVBAMM
> +GEFBQSBDZXJ0aWZpY2F0ZSBTZXJ2aWNlczCCASIwDQYJKoZIhvcNAQEBBQADggEP
> +ADCCAQoCggEBAL5AnfRu4ep2hxxNRUSOvkbIgwadwSr+GB+O5AL686tdUIoWMQua
> +BtDFcCLNSS1UY8y2bmhGC1Pqy0wkwLxyTurxFa70VJoSCsN6sjNg4tqJVfMiWPPe
> +3M/vg4aijJRPn2jymJBGhCfHdr/jzDUsi14HZGWCwEiwqJH5YZ92IFCokcdmtet4
> +YgNW8IoaE+oxox6gmf049vYnMlhvB/VruPsUK6+3qszWY19zjNoFmag4qMsXeDZR
> +rOme9Hg6jc8P2ULimAyrL58OAd7vn5lJ8S3frHRNG5i1R8XlKdH5kBjHYpy+g8cm
> +ez6KJcfA3Z3mNWgQIJ2P2N7Sw4ScDV7oL8kCAwEAAaOBwDCBvTAdBgNVHQ4EFgQU
> +oBEKIz6W8Qfs4q8p74Klf9AwpLQwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQF
> +MAMBAf8wewYDVR0fBHQwcjA4oDagNIYyaHR0cDovL2NybC5jb21vZG9jYS5jb20v
> +QUFBQ2VydGlmaWNhdGVTZXJ2aWNlcy5jcmwwNqA0oDKGMGh0dHA6Ly9jcmwuY29t
> +b2RvLm5ldC9BQUFDZXJ0aWZpY2F0ZVNlcnZpY2VzLmNybDANBgkqhkiG9w0BAQUF
> +AAOCAQEACFb8AvCb6P+k+tZ7xkSAzk/ExfYAWMymtrwUSWgEdujm7l3sAg9g1o1Q
> +GE8mTgHj5rCl7r+8dFRBv/38ErjHT1r0iWAFf2C3BUrz9vHCv8S5dIa2LX1rzNLz
> +Rt0vxuBqw8M0Ayx9lt1awg6nCpnBBYurDC/zXDrPbDdVCYfeU0BsWO/8tqtlbgT2
> +G9w84FoVxp7Z8VlIMCFlA2zs6SFz7JsDoeA3raAVGI/6ugLOpyypEBMs1OUIJqsi
> +l2D4kF501KKaU73yqWjgom7C12yxow+ev+to51byrvLjKzg6CYG1a4XXvi3tPxq3
> +smPi9WIsgtRqAEFQ8TmDn5XpNpaYbg==
>  -----END CERTIFICATE-----
> -=== COMODO ECC Certification Authority
> +=== /C=GB/ST=Greater Manchester/L=Salford/O=Comodo CA Limited/CN=Secure
> Certificate Services
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number:
> -            1f:47:af:aa:62:00:70:50:54:4c:01:9e:9b:63:99:2a
> -    Signature Algorithm: ecdsa-with-SHA384
> +        Serial Number: 1 (0x1)
> +    Signature Algorithm: sha1WithRSAEncryption
>          Validity
> -            Not Before: Mar  6 00:00:00 2008 GMT
> -            Not After : Jan 18 23:59:59 2038 GMT
> -        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA
> Limited, CN=COMODO ECC Certification Authority
> +            Not Before: Jan  1 00:00:00 2004 GMT
> +            Not After : Dec 31 23:59:59 2028 GMT
> +        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA
> Limited, CN=Secure Certificate Services
>          X509v3 extensions:
>              X509v3 Subject Key Identifier:
> -                75:71:A7:19:48:19:BC:9D:9D:EA:
> 41:47:DF:94:C4:48:77:99:D3:79
> +                3C:D8:93:88:C2:C0:82:09:CC:01:
> 99:06:93:20:E9:9E:70:09:63:4F
>              X509v3 Key Usage: critical
>                  Certificate Sign, CRL Sign
>              X509v3 Basic Constraints: critical
>                  CA:TRUE
> -SHA1 Fingerprint=9F:74:4E:9F:2B:4D:BA:EC:0F:31:2C:50:B6:56:3B:8E:
> 2D:93:C3:11
> -SHA256 Fingerprint=17:93:92:7A:06:14:54:97:89:AD:CE:2F:8F:34:F7:F0:
> B6:6D:0F:3A:E3:A3:B8:4D:21:EC:15:DB:BA:4F:AD:C7
> +            X509v3 CRL Distribution Points:
> +
> +                Full Name:
> +                  URI:http://crl.comodoca.com/
> SecureCertificateServices.crl
> +
> +                Full Name:
> +                  URI:http://crl.comodo.net/SecureCertificateServices.crl
> +
> +SHA1 Fingerprint=4A:65:D5:F4:1D:EF:39:B8:B8:90:4A:4A:D3:64:81:33:
> CF:C7:A1:D1
> +SHA256 Fingerprint=BD:81:CE:3B:4F:65:91:D1:1A:67:B5:FC:7A:47:FD:EF:
> 25:52:1B:F9:AA:4E:18:B9:E3:DF:2E:34:A7:80:3B:E8
>  -----BEGIN CERTIFICATE-----
> -MIICiTCCAg+gAwIBAgIQH0evqmIAcFBUTAGem2OZKjAKBggqhkjOPQQDAzCBhTEL
> -MAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
> -BxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxKzApBgNVBAMT
> -IkNPTU9ETyBFQ0MgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMDgwMzA2MDAw
> -MDAwWhcNMzgwMTE4MjM1OTU5WjCBhTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdy
> -ZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09N
> -T0RPIENBIExpbWl0ZWQxKzApBgNVBAMTIkNPTU9ETyBFQ0MgQ2VydGlmaWNhdGlv
> -biBBdXRob3JpdHkwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAAQDR3svdcmCFYX7deSR
> -FtSrYpn1PlILBs5BAH+X4QokPB0BBO490o0JlwzgdeT6+3eKKvUDYEs2ixYjFq0J
> -cfRK9ChQtP6IHG4/bC8vCVlbpVsLM5niwz2J+Wos77LTBumjQjBAMB0GA1UdDgQW
> -BBR1cacZSBm8nZ3qQUfflMRId5nTeTAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/
> -BAUwAwEB/zAKBggqhkjOPQQDAwNoADBlAjEA7wNbeqy3eApyt4jf/7VGFAkK+qDm
> -fQjGGoe9GKhzvSbKYAydzpmfz1wPMOG+FDHqAjAU9JM8SaczepBGR7NjfRObTrdv
> -GDeAU/7dIOA1mjbRxwG55tzd8/8dLDoWV9mSOdY=
> +MIIEPzCCAyegAwIBAgIBATANBgkqhkiG9w0BAQUFADB+MQswCQYDVQQGEwJHQjEb
> +MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
> +GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEkMCIGA1UEAwwbU2VjdXJlIENlcnRp
> +ZmljYXRlIFNlcnZpY2VzMB4XDTA0MDEwMTAwMDAwMFoXDTI4MTIzMTIzNTk1OVow
> +fjELMAkGA1UEBhMCR0IxGzAZBgNVBAgMEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
> +A1UEBwwHU2FsZm9yZDEaMBgGA1UECgwRQ29tb2RvIENBIExpbWl0ZWQxJDAiBgNV
> +BAMMG1NlY3VyZSBDZXJ0aWZpY2F0ZSBTZXJ2aWNlczCCASIwDQYJKoZIhvcNAQEB
> +BQADggEPADCCAQoCggEBAMBxM4KK0HDrc4eCQNUd5MvJDkKQ+d40uaG6EfQlhfPM
> +cm3ye5drswfxdySRXyWP9nQ95IDC+DwN879A6vfIUtFyb+/Iq0G4bi4XKpVpDM3S
> +HpR7LZQdqnXXs5jLrLxkU0C8j6ysNstcrbvd4JQX7NFc0L/vpZXJkMWwrPsbQ996
> +CF23uPJAGysnnlDOXmWCiIxe004MeuoIkbY2qitC++rCoznl2yY4rYsK7hljxxwk
> +3wN42ubqwUcaCwtGCd0C/N7Lh1/XMGNooa7cMqG6vv5Eq2i2pRcV/b3Vp6ea5EQz
> +6YiO/O1R65NxTq0B50SOqy3LqP4BSUjwwN3HaNiS/j0CAwEAAaOBxzCBxDAdBgNV
> +HQ4EFgQUPNiTiMLAggnMAZkGkyDpnnAJY08wDgYDVR0PAQH/BAQDAgEGMA8GA1Ud
> +EwEB/wQFMAMBAf8wgYEGA1UdHwR6MHgwO6A5oDeGNWh0dHA6Ly9jcmwuY29tb2Rv
> +Y2EuY29tL1NlY3VyZUNlcnRpZmljYXRlU2VydmljZXMuY3JsMDmgN6A1hjNodHRw
> +Oi8vY3JsLmNvbW9kby5uZXQvU2VjdXJlQ2VydGlmaWNhdGVTZXJ2aWNlcy5jcmww
> +DQYJKoZIhvcNAQEFBQADggEBAIcBbSMdflsXfcFhMs+P5/OKlFlm4J4oqF7Tt/Q0
> +5qo5spcWxYJvMqTpjOev/e/C6LlLqqP05tqNZSH7uoDrJiiFGv45jN5bBAS0VPmj
> +Z55B+glSzAVIqMk/IQQezkhr/IXownuvf7fM+F86/TXGDe+X3EyrEeFryzHRbPtI
> +gKvcnDe4IRRLDXE97IMzbtFuMhbsmMcWi1mmNKsFVy2T96oTy9IT4rcuO81rUBcJ
> +aD61JlfutuC23bkpgHl9j6PwpCikFcSF9CfUa7/lXORlAnZUtOM3ZiTTGWHIUhDl
> +izeauan5Hb/qmZJhlv8BzaFfDbxxvA6sCx1HRR3B7Hzs/Sk=
>  -----END CERTIFICATE-----
> -=== COMODO RSA Certification Authority
> +=== /C=GB/ST=Greater Manchester/L=Salford/O=Comodo CA Limited/CN=Trusted
> Certificate Services
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number:
> -            4c:aa:f9:ca:db:63:6f:e0:1f:f7:4e:d8:5b:03:86:9d
> -    Signature Algorithm: sha384WithRSAEncryption
> +        Serial Number: 1 (0x1)
> +    Signature Algorithm: sha1WithRSAEncryption
>          Validity
> -            Not Before: Jan 19 00:00:00 2010 GMT
> -            Not After : Jan 18 23:59:59 2038 GMT
> -        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA
> Limited, CN=COMODO RSA Certification Authority
> +            Not Before: Jan  1 00:00:00 2004 GMT
> +            Not After : Dec 31 23:59:59 2028 GMT
> +        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA
> Limited, CN=Trusted Certificate Services
>          X509v3 extensions:
>              X509v3 Subject Key Identifier:
> -                BB:AF:7E:02:3D:FA:A6:F1:3C:84:
> 8E:AD:EE:38:98:EC:D9:32:32:D4
> +                C5:7B:58:BD:ED:DA:25:69:D2:F7:
> 59:16:A8:B3:32:C0:7B:27:5B:F4
>              X509v3 Key Usage: critical
>                  Certificate Sign, CRL Sign
>              X509v3 Basic Constraints: critical
>                  CA:TRUE
> -SHA1 Fingerprint=AF:E5:D2:44:A8:D1:19:42:30:FF:47:9F:E2:F8:97:BB:
> CD:7A:8C:B4
> -SHA256 Fingerprint=52:F0:E1:C4:E5:8E:C6:29:29:1B:60:31:7F:07:46:71:
> B8:5D:7E:A8:0D:5B:07:27:34:63:53:4B:32:B4:02:34
> +            X509v3 CRL Distribution Points:
> +
> +                Full Name:
> +                  URI:http://crl.comodoca.com/
> TrustedCertificateServices.crl
> +
> +                Full Name:
> +                  URI:http://crl.comodo.net/
> TrustedCertificateServices.crl
> +
> +SHA1 Fingerprint=E1:9F:E3:0E:8B:84:60:9E:80:9B:17:0D:72:A8:C5:BA:
> 6E:14:09:BD
> +SHA256 Fingerprint=3F:06:E5:56:81:D4:96:F5:BE:16:9E:B5:38:9F:9F:2B:
> 8F:F6:1E:17:08:DF:68:81:72:48:49:CD:5D:27:CB:69
>  -----BEGIN CERTIFICATE-----
> -MIIF2DCCA8CgAwIBAgIQTKr5yttjb+Af907YWwOGnTANBgkqhkiG9w0BAQwFADCB
> -hTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
> -A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxKzApBgNV
> -BAMTIkNPTU9ETyBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTAwMTE5
> -MDAwMDAwWhcNMzgwMTE4MjM1OTU5WjCBhTELMAkGA1UEBhMCR0IxGzAZBgNVBAgT
> -EkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMR
> -Q09NT0RPIENBIExpbWl0ZWQxKzApBgNVBAMTIkNPTU9ETyBSU0EgQ2VydGlmaWNh
> -dGlvbiBBdXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCR
> -6FSS0gpWsawNJN3Fz0RndJkrN6N9I3AAcbxT38T6KhKPS38QVr2fcHK3YX/JSw8X
> -pz3jsARh7v8Rl8f0hj4K+j5c+ZPmNHrZFGvnnLOFoIJ6dq9xkNfs/Q36nGz637CC
> -9BR++b7Epi9Pf5l/tfxnQ3K9DADWietrLNPtj5gcFKt+5eNu/Nio5JIk2kNrYrhV
> -/erBvGy2i/MOjZrkm2xpmfh4SDBF1a3hDTxFYPwyllEnvGfDyi62a+pGx8cgoLEf
> -Zd5ICLqkTqnyg0Y3hOvozIFIQ2dOciqbXL1MGyiKXCJ7tKuY2e7gUYPDCUZObT6Z
> -+pUX2nwzV0E8jVHtC7ZcryxjGt9XyD+86V3Em69FmeKjWiS0uqlWPc9vqv9JWL7w
> -qP/0uK3pN/u6uPQLOvnoQ0IeidiEyxPx2bvhiWC4jChWrBQdnArncevPDt09qZah
> -SL0896+1DSJMwBGB7FY79tOi4lu3sgQiUpWAk2nojkxl8ZEDLXB0AuqLZxUpaVIC
> -u9ffUGpVRr+goyhhf3DQw6KqLCGqR84onAZFdr+CGCe01a60y1Dma/RMhnEw6abf
> -Fobg2P9A3fvQQoh/ozM6LlweQRGBY84YcWsr7KaKtzFcOmpH4MN5WdYgGq/yapiq
> -crxXStJLnbsQ/LBMQeXtHT1eKJ2czL+zUdqnR+WEUwIDAQABo0IwQDAdBgNVHQ4E
> -FgQUu69+Aj36pvE8hI6t7jiY7NkyMtQwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB
> -/wQFMAMBAf8wDQYJKoZIhvcNAQEMBQADggIBAArx1UaEt65Ru2yyTUEUAJNMnMvl
> -wFTPoCWOAvn9sKIN9SCYPBMtrFaisNZ+EZLpLrqeLppysb0ZRGxhNaKatBYSaVqM
> -4dc+pBroLwP0rmEdEBsqpIt6xf4FpuHA1sj+nq6PK7o9mfjYcwlYRm6mnPTXJ9OV
> -2jeDchzTc+CiR5kDOF3VSXkAKRzH7JsgHAckaVd4sjn8OoSgtZx8jb8uk2Intzna
> -FxiuvTwJaP+EmzzV1gsD41eeFPfR60/IvYcjt7ZJQ3mFXLrrkguhxuhoqEwWsRqZ
> -CuhTLJK7oQkYdQxlqHvLI7cawiiFwxv/0Cti76R7CZGYZ4wUAc1oBmpjIXUDgIiK
> -boHGhfKppC3n9KUkEEeDys30jXlYsQab5xoq2Z0B15R97QNKyvDb6KkBPvVWmcke
> -jkk9u+UJueBPSZI9FoJAzMxZxuY67RIuaTxslbH9qh17f4a+Hg4yRvv7E491f0yL
> -S0Zj/gA0QHDBw7mh3aZw4gSzQbzpgJHqZJx64SIDqZxubw5lT2yHh17zbqD5daWb
> -QOhTsiedSrnAdyGN/4fy3ryM7xfft0kL0fJuMAsaDk527RH89elWsn2/x20Kk4yl
> -0MC2Hb46TpSi125sC8KKfPog88Tk5c0NqMuRkrF8hey1FGlmDoLnzc7ILaZRfyHB
> -NVOFBkpdn627G190
> +MIIEQzCCAyugAwIBAgIBATANBgkqhkiG9w0BAQUFADB/MQswCQYDVQQGEwJHQjEb
> +MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
> +GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDElMCMGA1UEAwwcVHJ1c3RlZCBDZXJ0
> +aWZpY2F0ZSBTZXJ2aWNlczAeFw0wNDAxMDEwMDAwMDBaFw0yODEyMzEyMzU5NTla
> +MH8xCzAJBgNVBAYTAkdCMRswGQYDVQQIDBJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO
> +BgNVBAcMB1NhbGZvcmQxGjAYBgNVBAoMEUNvbW9kbyBDQSBMaW1pdGVkMSUwIwYD
> +VQQDDBxUcnVzdGVkIENlcnRpZmljYXRlIFNlcnZpY2VzMIIBIjANBgkqhkiG9w0B
> +AQEFAAOCAQ8AMIIBCgKCAQEA33FvNlhTWvI2VFeAxHQIIO0Yfyod5jWaHiWsnOWW
> +fnJSoBVC21ndZHoa0Lh73TkVvFVIxO06AOoxEbrycXQaZ7jPM8yoMa+j49d/vzMt
> +TGo87IvDktJTdyR0nAducPy9C1t2ul/y/9c3S0pgePfw+spwtOpZqqPOSC+pw7IL
> +fhdyFgymBwwbOM/JYrc/oJOlh0Hyt3BAd9i+FHzjqMB6juljatEPmsbS9Is6FARW
> +1O24zG71++IsWL1/T2sr92AkWCTOJu80kTrV44HQsvAEAtdbtz6SrGsSivnkBbA7
> +kUlcsutT6vifR4buv5XAwAaf0lteERv0xwQ1KdJVXOTt6wIDAQABo4HJMIHGMB0G
> +A1UdDgQWBBTFe1i97doladL3WRaoszLAeydb9DAOBgNVHQ8BAf8EBAMCAQYwDwYD
> +VR0TAQH/BAUwAwEB/zCBgwYDVR0fBHwwejA8oDqgOIY2aHR0cDovL2NybC5jb21v
> +ZG9jYS5jb20vVHJ1c3RlZENlcnRpZmljYXRlU2VydmljZXMuY3JsMDqgOKA2hjRo
> +dHRwOi8vY3JsLmNvbW9kby5uZXQvVHJ1c3RlZENlcnRpZmljYXRlU2VydmljZXMu
> +Y3JsMA0GCSqGSIb3DQEBBQUAA4IBAQDIk4E7ibSvuIQSTI3S8NtwuleGFTQQuS9/
> +HrCoiWChisJ3DFBKmwCL2Iv0QeLQg4pKHBQGsKNoBXAxMKdTmw7pSqBYaWcOrp32
> +pSxBvzwGa+RZzG0Q8ZZvH9/0BAKkn0U+yNj6NkZEUD+Cl5EfKNsYEYwq5GWDVxIS
> +jBc/lDb+XbDABHcTuPQV1T84zJQ6VdCsmPW6AF/ghhmBeC8owH7TzEIK9a5QoNE+
> +xqFx7D+gIIxmOom0jtTYsU0lR+4viMi14QVFwL4Ucd56/Y57fU0IlqUSc/Atyjcn
> +dBInTMu2l+nZrghtWjlA3QVHdWpaIbOjGM9O9y5Xt5hwXsjEeLBi
>  -----END CERTIFICATE-----
>
> -### Comodo CA Limited
> +### COMODO CA Limited
>
> -=== AAA Certificate Services
> +=== /C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO
> Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> +        Serial Number:
> +            4e:81:2d:8a:82:65:e0:0b:02:ee:3e:35:02:46:e5:3d
>      Signature Algorithm: sha1WithRSAEncryption
>          Validity
> -            Not Before: Jan  1 00:00:00 2004 GMT
> -            Not After : Dec 31 23:59:59 2028 GMT
> -        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA
> Limited, CN=AAA Certificate Services
> +            Not Before: Dec  1 00:00:00 2006 GMT
> +            Not After : Dec 31 23:59:59 2029 GMT
> +        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA
> Limited, CN=COMODO Certification Authority
>          X509v3 extensions:
>              X509v3 Subject Key Identifier:
> -                A0:11:0A:23:3E:96:F1:07:EC:E2:
> AF:29:EF:82:A5:7F:D0:30:A4:B4
> +                0B:58:E5:8B:C6:4C:15:37:A4:40:
> A9:30:A9:21:BE:47:36:5A:56:FF
>              X509v3 Key Usage: critical
>                  Certificate Sign, CRL Sign
>              X509v3 Basic Constraints: critical
> @@ -457,146 +565,129 @@ Certificate:
>              X509v3 CRL Distribution Points:
>
>                  Full Name:
> -                  URI:http://crl.comodoca.com/AAACertificateServices.crl
> -
> -                Full Name:
> -                  URI:http://crl.comodo.net/AAACertificateServices.crl
> +                  URI:http://crl.comodoca.com/
> COMODOCertificationAuthority.crl
>
> -SHA1 Fingerprint=D1:EB:23:A4:6D:17:D6:8F:D9:25:64:C2:F1:F1:60:17:
> 64:D8:E3:49
> -SHA256 Fingerprint=D7:A7:A0:FB:5D:7E:27:31:D7:71:E9:48:4E:BC:DE:F7:
> 1D:5F:0C:3E:0A:29:48:78:2B:C8:3E:E0:EA:69:9E:F4
> +SHA1 Fingerprint=66:31:BF:9E:F7:4F:9E:B6:C9:D5:A6:0C:BA:6A:BE:D1:
> F7:BD:EF:7B
> +SHA256 Fingerprint=0C:2C:D6:3D:F7:80:6F:A3:99:ED:E8:09:11:6B:57:5B:
> F8:79:89:F0:65:18:F9:80:8C:86:05:03:17:8B:AF:66
>  -----BEGIN CERTIFICATE-----
> -MIIEMjCCAxqgAwIBAgIBATANBgkqhkiG9w0BAQUFADB7MQswCQYDVQQGEwJHQjEb
> -MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
> -GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEhMB8GA1UEAwwYQUFBIENlcnRpZmlj
> -YXRlIFNlcnZpY2VzMB4XDTA0MDEwMTAwMDAwMFoXDTI4MTIzMTIzNTk1OVowezEL
> -MAkGA1UEBhMCR0IxGzAZBgNVBAgMEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
> -BwwHU2FsZm9yZDEaMBgGA1UECgwRQ29tb2RvIENBIExpbWl0ZWQxITAfBgNVBAMM
> -GEFBQSBDZXJ0aWZpY2F0ZSBTZXJ2aWNlczCCASIwDQYJKoZIhvcNAQEBBQADggEP
> -ADCCAQoCggEBAL5AnfRu4ep2hxxNRUSOvkbIgwadwSr+GB+O5AL686tdUIoWMQua
> -BtDFcCLNSS1UY8y2bmhGC1Pqy0wkwLxyTurxFa70VJoSCsN6sjNg4tqJVfMiWPPe
> -3M/vg4aijJRPn2jymJBGhCfHdr/jzDUsi14HZGWCwEiwqJH5YZ92IFCokcdmtet4
> -YgNW8IoaE+oxox6gmf049vYnMlhvB/VruPsUK6+3qszWY19zjNoFmag4qMsXeDZR
> -rOme9Hg6jc8P2ULimAyrL58OAd7vn5lJ8S3frHRNG5i1R8XlKdH5kBjHYpy+g8cm
> -ez6KJcfA3Z3mNWgQIJ2P2N7Sw4ScDV7oL8kCAwEAAaOBwDCBvTAdBgNVHQ4EFgQU
> -oBEKIz6W8Qfs4q8p74Klf9AwpLQwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQF
> -MAMBAf8wewYDVR0fBHQwcjA4oDagNIYyaHR0cDovL2NybC5jb21vZG9jYS5jb20v
> -QUFBQ2VydGlmaWNhdGVTZXJ2aWNlcy5jcmwwNqA0oDKGMGh0dHA6Ly9jcmwuY29t
> -b2RvLm5ldC9BQUFDZXJ0aWZpY2F0ZVNlcnZpY2VzLmNybDANBgkqhkiG9w0BAQUF
> -AAOCAQEACFb8AvCb6P+k+tZ7xkSAzk/ExfYAWMymtrwUSWgEdujm7l3sAg9g1o1Q
> -GE8mTgHj5rCl7r+8dFRBv/38ErjHT1r0iWAFf2C3BUrz9vHCv8S5dIa2LX1rzNLz
> -Rt0vxuBqw8M0Ayx9lt1awg6nCpnBBYurDC/zXDrPbDdVCYfeU0BsWO/8tqtlbgT2
> -G9w84FoVxp7Z8VlIMCFlA2zs6SFz7JsDoeA3raAVGI/6ugLOpyypEBMs1OUIJqsi
> -l2D4kF501KKaU73yqWjgom7C12yxow+ev+to51byrvLjKzg6CYG1a4XXvi3tPxq3
> -smPi9WIsgtRqAEFQ8TmDn5XpNpaYbg==
> +MIIEHTCCAwWgAwIBAgIQToEtioJl4AsC7j41AkblPTANBgkqhkiG9w0BAQUFADCB
> +gTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
> +A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxJzAlBgNV
> +BAMTHkNPTU9ETyBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0wNjEyMDEwMDAw
> +MDBaFw0yOTEyMzEyMzU5NTlaMIGBMQswCQYDVQQGEwJHQjEbMBkGA1UECBMSR3Jl
> +YXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01P
> +RE8gQ0EgTGltaXRlZDEnMCUGA1UEAxMeQ09NT0RPIENlcnRpZmljYXRpb24gQXV0
> +aG9yaXR5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0ECLi3LjkRv3
> +UcEbVASY06m/weaKXTuH+7uIzg3jLz8GlvCiKVCZrts7oVewdFFxze1CkU1B/qnI
> +2GqGd0S7WWaXUF601CxwRM/aN5VCaTwwxHGzUvAhTaHYujl8HJ6jJJ3ygxaYqhZ8
> +Q5sVW7euNJH+1GImGEaaP+vB+fGQV+useg2L23IwambV4EajcNxo2f8ESIl33rXp
> ++2dtQem8Ob0y2WIC8bGoPW43nOIv4tOiJovGuFVDiOEjPqXSJDlqR6sA1KGzqSX+
> +DT+nHbrTUcELpNqsOO9VUCQFZUaTNE8tja3G1CEZ0o7KBWFxB3NH5YoZEr0ETc5O
> +nKVIrLsm9wIDAQABo4GOMIGLMB0GA1UdDgQWBBQLWOWLxkwVN6RAqTCpIb5HNlpW
> +/zAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zBJBgNVHR8EQjBAMD6g
> +PKA6hjhodHRwOi8vY3JsLmNvbW9kb2NhLmNvbS9DT01PRE9DZXJ0aWZpY2F0aW9u
> +QXV0aG9yaXR5LmNybDANBgkqhkiG9w0BAQUFAAOCAQEAPpiem/Yb6dc5t3iuHXIY
> +SdOH5EOC6z/JqvWote9VfCFSZfnVDeFs9D6Mk3ORLgLETgdxb8CPOGEIqB6BCsAv
> +IC9Bi5HcSEW88cbeunZrM8gALTFGTO3nnc+IlP8zwFboJIYmuNg4ON8qa90SzMc/
> +RxdMosIGlgnW2/4/PEZB31jiVg88O8EckzXZOFKs7sjsLjBOlDW0JB9LeGna8gI4
> +zJVSk/BwJVmcIGfE7vmLV2H0knZ9P4SNVbfo5azV8fUZVqZa+5Acr5Pr5RzUZ5dd
> +BA6+C4OmF4O5MBKgxTMVBbkN+8cFduPYSo38NBejxiEovjBFMR7HeL5YYTisO+IB
> +ZQ==
>  -----END CERTIFICATE-----
> -=== Secure Certificate Services
> +=== /C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO
> ECC Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> -    Signature Algorithm: sha1WithRSAEncryption
> +        Serial Number:
> +            1f:47:af:aa:62:00:70:50:54:4c:01:9e:9b:63:99:2a
> +    Signature Algorithm: ecdsa-with-SHA384
>          Validity
> -            Not Before: Jan  1 00:00:00 2004 GMT
> -            Not After : Dec 31 23:59:59 2028 GMT
> -        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA
> Limited, CN=Secure Certificate Services
> +            Not Before: Mar  6 00:00:00 2008 GMT
> +            Not After : Jan 18 23:59:59 2038 GMT
> +        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA
> Limited, CN=COMODO ECC Certification Authority
>          X509v3 extensions:
>              X509v3 Subject Key Identifier:
> -                3C:D8:93:88:C2:C0:82:09:CC:01:
> 99:06:93:20:E9:9E:70:09:63:4F
> +                75:71:A7:19:48:19:BC:9D:9D:EA:
> 41:47:DF:94:C4:48:77:99:D3:79
>              X509v3 Key Usage: critical
>                  Certificate Sign, CRL Sign
>              X509v3 Basic Constraints: critical
>                  CA:TRUE
> -            X509v3 CRL Distribution Points:
> -
> -                Full Name:
> -                  URI:http://crl.comodoca.com/
> SecureCertificateServices.crl
> -
> -                Full Name:
> -                  URI:http://crl.comodo.net/SecureCertificateServices.crl
> -
> -SHA1 Fingerprint=4A:65:D5:F4:1D:EF:39:B8:B8:90:4A:4A:D3:64:81:33:
> CF:C7:A1:D1
> -SHA256 Fingerprint=BD:81:CE:3B:4F:65:91:D1:1A:67:B5:FC:7A:47:FD:EF:
> 25:52:1B:F9:AA:4E:18:B9:E3:DF:2E:34:A7:80:3B:E8
> +SHA1 Fingerprint=9F:74:4E:9F:2B:4D:BA:EC:0F:31:2C:50:B6:56:3B:8E:
> 2D:93:C3:11
> +SHA256 Fingerprint=17:93:92:7A:06:14:54:97:89:AD:CE:2F:8F:34:F7:F0:
> B6:6D:0F:3A:E3:A3:B8:4D:21:EC:15:DB:BA:4F:AD:C7
>  -----BEGIN CERTIFICATE-----
> -MIIEPzCCAyegAwIBAgIBATANBgkqhkiG9w0BAQUFADB+MQswCQYDVQQGEwJHQjEb
> -MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
> -GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEkMCIGA1UEAwwbU2VjdXJlIENlcnRp
> -ZmljYXRlIFNlcnZpY2VzMB4XDTA0MDEwMTAwMDAwMFoXDTI4MTIzMTIzNTk1OVow
> -fjELMAkGA1UEBhMCR0IxGzAZBgNVBAgMEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
> -A1UEBwwHU2FsZm9yZDEaMBgGA1UECgwRQ29tb2RvIENBIExpbWl0ZWQxJDAiBgNV
> -BAMMG1NlY3VyZSBDZXJ0aWZpY2F0ZSBTZXJ2aWNlczCCASIwDQYJKoZIhvcNAQEB
> -BQADggEPADCCAQoCggEBAMBxM4KK0HDrc4eCQNUd5MvJDkKQ+d40uaG6EfQlhfPM
> -cm3ye5drswfxdySRXyWP9nQ95IDC+DwN879A6vfIUtFyb+/Iq0G4bi4XKpVpDM3S
> -HpR7LZQdqnXXs5jLrLxkU0C8j6ysNstcrbvd4JQX7NFc0L/vpZXJkMWwrPsbQ996
> -CF23uPJAGysnnlDOXmWCiIxe004MeuoIkbY2qitC++rCoznl2yY4rYsK7hljxxwk
> -3wN42ubqwUcaCwtGCd0C/N7Lh1/XMGNooa7cMqG6vv5Eq2i2pRcV/b3Vp6ea5EQz
> -6YiO/O1R65NxTq0B50SOqy3LqP4BSUjwwN3HaNiS/j0CAwEAAaOBxzCBxDAdBgNV
> -HQ4EFgQUPNiTiMLAggnMAZkGkyDpnnAJY08wDgYDVR0PAQH/BAQDAgEGMA8GA1Ud
> -EwEB/wQFMAMBAf8wgYEGA1UdHwR6MHgwO6A5oDeGNWh0dHA6Ly9jcmwuY29tb2Rv
> -Y2EuY29tL1NlY3VyZUNlcnRpZmljYXRlU2VydmljZXMuY3JsMDmgN6A1hjNodHRw
> -Oi8vY3JsLmNvbW9kby5uZXQvU2VjdXJlQ2VydGlmaWNhdGVTZXJ2aWNlcy5jcmww
> -DQYJKoZIhvcNAQEFBQADggEBAIcBbSMdflsXfcFhMs+P5/OKlFlm4J4oqF7Tt/Q0
> -5qo5spcWxYJvMqTpjOev/e/C6LlLqqP05tqNZSH7uoDrJiiFGv45jN5bBAS0VPmj
> -Z55B+glSzAVIqMk/IQQezkhr/IXownuvf7fM+F86/TXGDe+X3EyrEeFryzHRbPtI
> -gKvcnDe4IRRLDXE97IMzbtFuMhbsmMcWi1mmNKsFVy2T96oTy9IT4rcuO81rUBcJ
> -aD61JlfutuC23bkpgHl9j6PwpCikFcSF9CfUa7/lXORlAnZUtOM3ZiTTGWHIUhDl
> -izeauan5Hb/qmZJhlv8BzaFfDbxxvA6sCx1HRR3B7Hzs/Sk=
> +MIICiTCCAg+gAwIBAgIQH0evqmIAcFBUTAGem2OZKjAKBggqhkjOPQQDAzCBhTEL
> +MAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
> +BxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxKzApBgNVBAMT
> +IkNPTU9ETyBFQ0MgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMDgwMzA2MDAw
> +MDAwWhcNMzgwMTE4MjM1OTU5WjCBhTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdy
> +ZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09N
> +T0RPIENBIExpbWl0ZWQxKzApBgNVBAMTIkNPTU9ETyBFQ0MgQ2VydGlmaWNhdGlv
> +biBBdXRob3JpdHkwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAAQDR3svdcmCFYX7deSR
> +FtSrYpn1PlILBs5BAH+X4QokPB0BBO490o0JlwzgdeT6+3eKKvUDYEs2ixYjFq0J
> +cfRK9ChQtP6IHG4/bC8vCVlbpVsLM5niwz2J+Wos77LTBumjQjBAMB0GA1UdDgQW
> +BBR1cacZSBm8nZ3qQUfflMRId5nTeTAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/
> +BAUwAwEB/zAKBggqhkjOPQQDAwNoADBlAjEA7wNbeqy3eApyt4jf/7VGFAkK+qDm
> +fQjGGoe9GKhzvSbKYAydzpmfz1wPMOG+FDHqAjAU9JM8SaczepBGR7NjfRObTrdv
> +GDeAU/7dIOA1mjbRxwG55tzd8/8dLDoWV9mSOdY=
>  -----END CERTIFICATE-----
> -=== Trusted Certificate Services
> +=== /C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO
> RSA Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> -    Signature Algorithm: sha1WithRSAEncryption
> +        Serial Number:
> +            4c:aa:f9:ca:db:63:6f:e0:1f:f7:4e:d8:5b:03:86:9d
> +    Signature Algorithm: sha384WithRSAEncryption
>          Validity
> -            Not Before: Jan  1 00:00:00 2004 GMT
> -            Not After : Dec 31 23:59:59 2028 GMT
> -        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA
> Limited, CN=Trusted Certificate Services
> +            Not Before: Jan 19 00:00:00 2010 GMT
> +            Not After : Jan 18 23:59:59 2038 GMT
> +        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA
> Limited, CN=COMODO RSA Certification Authority
>          X509v3 extensions:
>              X509v3 Subject Key Identifier:
> -                C5:7B:58:BD:ED:DA:25:69:D2:F7:
> 59:16:A8:B3:32:C0:7B:27:5B:F4
> +                BB:AF:7E:02:3D:FA:A6:F1:3C:84:
> 8E:AD:EE:38:98:EC:D9:32:32:D4
>              X509v3 Key Usage: critical
>                  Certificate Sign, CRL Sign
>              X509v3 Basic Constraints: critical
>                  CA:TRUE
> -            X509v3 CRL Distribution Points:
> -
> -                Full Name:
> -                  URI:http://crl.comodoca.com/
> TrustedCertificateServices.crl
> -
> -                Full Name:
> -                  URI:http://crl.comodo.net/
> TrustedCertificateServices.crl
> -
> -SHA1 Fingerprint=E1:9F:E3:0E:8B:84:60:9E:80:9B:17:0D:72:A8:C5:BA:
> 6E:14:09:BD
> -SHA256 Fingerprint=3F:06:E5:56:81:D4:96:F5:BE:16:9E:B5:38:9F:9F:2B:
> 8F:F6:1E:17:08:DF:68:81:72:48:49:CD:5D:27:CB:69
> +SHA1 Fingerprint=AF:E5:D2:44:A8:D1:19:42:30:FF:47:9F:E2:F8:97:BB:
> CD:7A:8C:B4
> +SHA256 Fingerprint=52:F0:E1:C4:E5:8E:C6:29:29:1B:60:31:7F:07:46:71:
> B8:5D:7E:A8:0D:5B:07:27:34:63:53:4B:32:B4:02:34
>  -----BEGIN CERTIFICATE-----
> -MIIEQzCCAyugAwIBAgIBATANBgkqhkiG9w0BAQUFADB/MQswCQYDVQQGEwJHQjEb
> -MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
> -GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDElMCMGA1UEAwwcVHJ1c3RlZCBDZXJ0
> -aWZpY2F0ZSBTZXJ2aWNlczAeFw0wNDAxMDEwMDAwMDBaFw0yODEyMzEyMzU5NTla
> -MH8xCzAJBgNVBAYTAkdCMRswGQYDVQQIDBJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO
> -BgNVBAcMB1NhbGZvcmQxGjAYBgNVBAoMEUNvbW9kbyBDQSBMaW1pdGVkMSUwIwYD
> -VQQDDBxUcnVzdGVkIENlcnRpZmljYXRlIFNlcnZpY2VzMIIBIjANBgkqhkiG9w0B
> -AQEFAAOCAQ8AMIIBCgKCAQEA33FvNlhTWvI2VFeAxHQIIO0Yfyod5jWaHiWsnOWW
> -fnJSoBVC21ndZHoa0Lh73TkVvFVIxO06AOoxEbrycXQaZ7jPM8yoMa+j49d/vzMt
> -TGo87IvDktJTdyR0nAducPy9C1t2ul/y/9c3S0pgePfw+spwtOpZqqPOSC+pw7IL
> -fhdyFgymBwwbOM/JYrc/oJOlh0Hyt3BAd9i+FHzjqMB6juljatEPmsbS9Is6FARW
> -1O24zG71++IsWL1/T2sr92AkWCTOJu80kTrV44HQsvAEAtdbtz6SrGsSivnkBbA7
> -kUlcsutT6vifR4buv5XAwAaf0lteERv0xwQ1KdJVXOTt6wIDAQABo4HJMIHGMB0G
> -A1UdDgQWBBTFe1i97doladL3WRaoszLAeydb9DAOBgNVHQ8BAf8EBAMCAQYwDwYD
> -VR0TAQH/BAUwAwEB/zCBgwYDVR0fBHwwejA8oDqgOIY2aHR0cDovL2NybC5jb21v
> -ZG9jYS5jb20vVHJ1c3RlZENlcnRpZmljYXRlU2VydmljZXMuY3JsMDqgOKA2hjRo
> -dHRwOi8vY3JsLmNvbW9kby5uZXQvVHJ1c3RlZENlcnRpZmljYXRlU2VydmljZXMu
> -Y3JsMA0GCSqGSIb3DQEBBQUAA4IBAQDIk4E7ibSvuIQSTI3S8NtwuleGFTQQuS9/
> -HrCoiWChisJ3DFBKmwCL2Iv0QeLQg4pKHBQGsKNoBXAxMKdTmw7pSqBYaWcOrp32
> -pSxBvzwGa+RZzG0Q8ZZvH9/0BAKkn0U+yNj6NkZEUD+Cl5EfKNsYEYwq5GWDVxIS
> -jBc/lDb+XbDABHcTuPQV1T84zJQ6VdCsmPW6AF/ghhmBeC8owH7TzEIK9a5QoNE+
> -xqFx7D+gIIxmOom0jtTYsU0lR+4viMi14QVFwL4Ucd56/Y57fU0IlqUSc/Atyjcn
> -dBInTMu2l+nZrghtWjlA3QVHdWpaIbOjGM9O9y5Xt5hwXsjEeLBi
> +MIIF2DCCA8CgAwIBAgIQTKr5yttjb+Af907YWwOGnTANBgkqhkiG9w0BAQwFADCB
> +hTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
> +A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxKzApBgNV
> +BAMTIkNPTU9ETyBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTAwMTE5
> +MDAwMDAwWhcNMzgwMTE4MjM1OTU5WjCBhTELMAkGA1UEBhMCR0IxGzAZBgNVBAgT
> +EkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMR
> +Q09NT0RPIENBIExpbWl0ZWQxKzApBgNVBAMTIkNPTU9ETyBSU0EgQ2VydGlmaWNh
> +dGlvbiBBdXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCR
> +6FSS0gpWsawNJN3Fz0RndJkrN6N9I3AAcbxT38T6KhKPS38QVr2fcHK3YX/JSw8X
> +pz3jsARh7v8Rl8f0hj4K+j5c+ZPmNHrZFGvnnLOFoIJ6dq9xkNfs/Q36nGz637CC
> +9BR++b7Epi9Pf5l/tfxnQ3K9DADWietrLNPtj5gcFKt+5eNu/Nio5JIk2kNrYrhV
> +/erBvGy2i/MOjZrkm2xpmfh4SDBF1a3hDTxFYPwyllEnvGfDyi62a+pGx8cgoLEf
> +Zd5ICLqkTqnyg0Y3hOvozIFIQ2dOciqbXL1MGyiKXCJ7tKuY2e7gUYPDCUZObT6Z
> ++pUX2nwzV0E8jVHtC7ZcryxjGt9XyD+86V3Em69FmeKjWiS0uqlWPc9vqv9JWL7w
> +qP/0uK3pN/u6uPQLOvnoQ0IeidiEyxPx2bvhiWC4jChWrBQdnArncevPDt09qZah
> +SL0896+1DSJMwBGB7FY79tOi4lu3sgQiUpWAk2nojkxl8ZEDLXB0AuqLZxUpaVIC
> +u9ffUGpVRr+goyhhf3DQw6KqLCGqR84onAZFdr+CGCe01a60y1Dma/RMhnEw6abf
> +Fobg2P9A3fvQQoh/ozM6LlweQRGBY84YcWsr7KaKtzFcOmpH4MN5WdYgGq/yapiq
> +crxXStJLnbsQ/LBMQeXtHT1eKJ2czL+zUdqnR+WEUwIDAQABo0IwQDAdBgNVHQ4E
> +FgQUu69+Aj36pvE8hI6t7jiY7NkyMtQwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB
> +/wQFMAMBAf8wDQYJKoZIhvcNAQEMBQADggIBAArx1UaEt65Ru2yyTUEUAJNMnMvl
> +wFTPoCWOAvn9sKIN9SCYPBMtrFaisNZ+EZLpLrqeLppysb0ZRGxhNaKatBYSaVqM
> +4dc+pBroLwP0rmEdEBsqpIt6xf4FpuHA1sj+nq6PK7o9mfjYcwlYRm6mnPTXJ9OV
> +2jeDchzTc+CiR5kDOF3VSXkAKRzH7JsgHAckaVd4sjn8OoSgtZx8jb8uk2Intzna
> +FxiuvTwJaP+EmzzV1gsD41eeFPfR60/IvYcjt7ZJQ3mFXLrrkguhxuhoqEwWsRqZ
> +CuhTLJK7oQkYdQxlqHvLI7cawiiFwxv/0Cti76R7CZGYZ4wUAc1oBmpjIXUDgIiK
> +boHGhfKppC3n9KUkEEeDys30jXlYsQab5xoq2Z0B15R97QNKyvDb6KkBPvVWmcke
> +jkk9u+UJueBPSZI9FoJAzMxZxuY67RIuaTxslbH9qh17f4a+Hg4yRvv7E491f0yL
> +S0Zj/gA0QHDBw7mh3aZw4gSzQbzpgJHqZJx64SIDqZxubw5lT2yHh17zbqD5daWb
> +QOhTsiedSrnAdyGN/4fy3ryM7xfft0kL0fJuMAsaDk527RH89elWsn2/x20Kk4yl
> +0MC2Hb46TpSi125sC8KKfPog88Tk5c0NqMuRkrF8hey1FGlmDoLnzc7ILaZRfyHB
> +NVOFBkpdn627G190
>  -----END CERTIFICATE-----
>
>  ### Deutsche Telekom AG
>
> -=== Deutsche Telekom Root CA 2
> +=== /C=DE/O=Deutsche Telekom AG/OU=T-TeleSec Trust Center/CN=Deutsche
> Telekom Root CA 2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -640,7 +731,7 @@ Cm26OWMohpLzGITY+9HPBVZkVw==
>
>  ### DigiCert Inc
>
> -=== DigiCert Assured ID Root CA
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Assured ID Root
> CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -685,7 +776,7 @@ NW1fiQG2SVufAQWbqz0lwcy2f8Lxb4bG+mRo64Et
>  H2sMNgcWfzd8qVttevESRmCD1ycEvkvOl77DZypoEd+A5wwzZr8TDRRu838fYxAe
>  +o0bJW1sj6W3YQGx0qMmoRBxna3iw/nDmVG3KwcIzi7mULKn+gpFL6Lw8g==
>  -----END CERTIFICATE-----
> -=== DigiCert Assured ID Root G2
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Assured ID Root
> G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -727,7 +818,7 @@ B5yiutkBclzzTcHdDrEcDcRjvq30FPuJ7KJBDkzM
>  ON9vvKO+KSAnq3T/EyJ43pdSVR6DtVQgA+6uwE9W3jfMw3+qBCe703e4YtsXfJwo
>  IhNzbM8m9Yop5w==
>  -----END CERTIFICATE-----
> -=== DigiCert Assured ID Root G3
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Assured ID Root
> G3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -762,7 +853,7 @@ AwNnADBkAjAlpIFFAmsSS3V0T8gj43DydXLefInw
>  JjZ91eQ0hjkCMHw2U/Aw5WJjOpnitqM7mzT6HtoQknFekROn3aRukswy1vUhZscv
>  6pZjamVFkpUBtA==
>  -----END CERTIFICATE-----
> -=== DigiCert Global Root CA
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -807,7 +898,7 @@ PnlUkiaY4IBIqDfv8NZ5YBberOgOzW6sRBc4L0na
>  YSEY1QSteDwsOoBrp+uvFRTp2InBuThs4pFsiv9kuXclVzDAGySj4dzp30d8tbQk
>  CAUw7C29C79Fv1C5qfPrmAESrciIxpg0X40KPMbp1ZWVbd4=
>  -----END CERTIFICATE-----
> -=== DigiCert Global Root G2
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -849,7 +940,7 @@ Fdtom/DzMNU+MeKNhJ7jitralj41E6Vf8PlwUHBH
>  pLiaWN0bfVKfjllDiIGknibVb63dDcY3fe0Dkhvld1927jyNxF1WW6LZZm6zNTfl
>  MrY=
>  -----END CERTIFICATE-----
> -=== DigiCert Global Root G3
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root G3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -884,7 +975,7 @@ AK288mw/EkrRLTnDCgmXc/SINoyIJ7vmiI1Qhadj
>  oAIwOWZbwmSNuJ5Q3KjVSaLtx9zRSX8XAbjIho9OjIgrqJqpisXRAL34VOKa5Vt8
>  sycX
>  -----END CERTIFICATE-----
> -=== DigiCert High Assurance EV Root CA
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert High Assurance
> EV Root CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -930,7 +1021,7 @@ Yzi9RKR/5CYrCsSXaQ3pjOLAEFe4yHYSkVXySGnY
>  vEsXCS+0yx5DaMkHJ8HSXPfqIbloEpw8nL+e/IBcm2PN7EeqJSdnoDfzAIJ9VNep
>  +OkuE6N36B9K
>  -----END CERTIFICATE-----
> -=== DigiCert Trusted Root G4
> +=== /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Trusted Root G4
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -983,9 +1074,62 @@ r/OSmbaz5mEP0oUA51Aa5BuVnRmhuZyxm7EAHu/Q
>  gKDWHrO8Dw9TdSmq6hN35N6MgSGtBxBHEa2HPQfRdbzP82Z+
>  -----END CERTIFICATE-----
>
> +### Digital Signature Trust
> +
> +=== /C=US/O=Digital Signature Trust/OU=DST ACES/CN=DST ACES CA X6
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            0d:5e:99:0a:d6:9d:b7:78:ec:d8:07:56:3b:86:15:d9
> +    Signature Algorithm: sha1WithRSAEncryption
> +        Validity
> +            Not Before: Nov 20 21:19:58 2003 GMT
> +            Not After : Nov 20 21:19:58 2017 GMT
> +        Subject: C=US, O=Digital Signature Trust, OU=DST ACES, CN=DST
> ACES CA X6
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Key Usage: critical
> +                Digital Signature, Non Repudiation, Certificate Sign, CRL
> Sign
> +            X509v3 Subject Alternative Name:
> +                email:[email protected]
> +            X509v3 Certificate Policies:
> +                Policy: 2.16.840.1.101.3.2.1.1.1
> +                  CPS: http://www.trustdst.com/certificates/policy/ACES-
> index.html
> +
> +            X509v3 Subject Key Identifier:
> +                09:72:06:4E:18:43:0F:E5:D6:CC:
> C3:6A:8B:31:7B:78:8F:A8:83:B8
> +SHA1 Fingerprint=40:54:DA:6F:1C:3F:40:74:AC:ED:0F:EC:CD:DB:79:D1:
> 53:FB:90:1D
> +SHA256 Fingerprint=76:7C:95:5A:76:41:2C:89:AF:68:8E:90:A1:C7:0F:55:
> 6C:FD:6B:60:25:DB:EA:10:41:6D:7E:B6:83:1F:8C:40
> +-----BEGIN CERTIFICATE-----
> +MIIECTCCAvGgAwIBAgIQDV6ZCtadt3js2AdWO4YV2TANBgkqhkiG9w0BAQUFADBb
> +MQswCQYDVQQGEwJVUzEgMB4GA1UEChMXRGlnaXRhbCBTaWduYXR1cmUgVHJ1c3Qx
> +ETAPBgNVBAsTCERTVCBBQ0VTMRcwFQYDVQQDEw5EU1QgQUNFUyBDQSBYNjAeFw0w
> +MzExMjAyMTE5NThaFw0xNzExMjAyMTE5NThaMFsxCzAJBgNVBAYTAlVTMSAwHgYD
> +VQQKExdEaWdpdGFsIFNpZ25hdHVyZSBUcnVzdDERMA8GA1UECxMIRFNUIEFDRVMx
> +FzAVBgNVBAMTDkRTVCBBQ0VTIENBIFg2MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
> +MIIBCgKCAQEAuT31LMmU3HWKlV1j6IR3dma5WZFcRt2SPp/5DgO0PWGSvSMmtWPu
> +ktKe1jzIDZBfZIGxqAgNTNj50wUoUrQBJcWVHAx+PhCEdc/BGZFjz+iokYi5Q1K7
> +gLFViYsx+tC3dr5BPTCapCIlF3PoHuLTrCq9Wzgh1SpL11V94zpVvddtawJXa+ZH
> +fAjIgrrep4c9oW24MFbCswKBXy314powGCi4ZtPLAZZv6opFVdbgnf9nKxcCpk4a
> +ahELfrd755jWjHZvwTvbUJN+5dCOHze4vbrGn2zpfDPyMjwmR/onJALJfh1biEIT
> +ajV8fTXpLmaRcpPVMibEdPVTo7NdmvYJywIDAQABo4HIMIHFMA8GA1UdEwEB/wQF
> +MAMBAf8wDgYDVR0PAQH/BAQDAgHGMB8GA1UdEQQYMBaBFHBraS1vcHNAdHJ1c3Rk
> +c3QuY29tMGIGA1UdIARbMFkwVwYKYIZIAWUDAgEBATBJMEcGCCsGAQUFBwIBFjto
> +dHRwOi8vd3d3LnRydXN0ZHN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9saWN5L0FDRVMt
> +aW5kZXguaHRtbDAdBgNVHQ4EFgQUCXIGThhDD+XWzMNqizF7eI+og7gwDQYJKoZI
> +hvcNAQEFBQADggEBAKPYjtay284F5zLNAdMEA+V25FYrnJmQ6AgwbN99Pe7lv7Uk
> +QIRJ4dEorsTCOlMwiPH1d25Ryvr/ma8kXxug/fKshMrfqfBfBC6tFr8hlxCBPeP/
> +h40y3JTlR4peahPJlJU90u7INJXQgNStMgiAVDzgvVJT11J8smk/f3rPanTK+gQq
> +nExaBqXpIK1FZg9p8d2/6eMyi/rgwYZNcjwu2JN4Cir42NInPRmJX1p7ijvMDNpR
> +rscL9yuwNwXsvFcj4jjSm2jzVhKIT0J8uDHEtdvkyCE06UgRNe76x5JXxZ805Mf2
> +9w4LTJxoeHtxMcfrHuBnQfO3oKfN5XozNmr6mis=
> +-----END CERTIFICATE-----
> +
>  ### Digital Signature Trust Co.
>
> -=== DST Root CA X3
> +=== /O=Digital Signature Trust Co./CN=DST Root CA X3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1025,10 +1169,92 @@ R8srzJmwN0jP41ZL9c8PDHIyh8bwRLtTcm1D9SZI
>  JDGFoqgCWjBH4d1QB7wCCZAA62RjYJsWvIjJEubSfZGL+T0yjWW06XyxV3bqxbYo
>  Ob8VZRzI9neWagqNdwvYkQsEjgfbKbYK7p2CNTUQ
>  -----END CERTIFICATE-----
> -
> -### Entrust, Inc.
> -
> -=== Entrust Root Certification Authority
> +
> +### Entrust, Inc.
> +
> +=== /C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2009
> Entrust, Inc. - for authorized use only/CN=Entrust Root Certification
> Authority - G2
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number: 1246989352 (0x4a538c28)
> +    Signature Algorithm: sha256WithRSAEncryption
> +        Validity
> +            Not Before: Jul  7 17:25:54 2009 GMT
> +            Not After : Dec  7 17:55:54 2030 GMT
> +        Subject: C=US, O=Entrust, Inc., OU=See
> www.entrust.net/legal-terms, OU=(c) 2009 Entrust, Inc. - for authorized
> use only, CN=Entrust Root Certification Authority - G2
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                6A:72:26:7A:D0:1E:EF:7D:E7:3B:
> 69:51:D4:6C:8D:9F:90:12:66:AB
> +SHA1 Fingerprint=8C:F4:27:FD:79:0C:3A:D1:66:06:8D:E8:1E:57:EF:BB:
> 93:22:72:D4
> +SHA256 Fingerprint=43:DF:57:74:B0:3E:7F:EF:5F:E4:0D:93:1A:7B:ED:F1:
> BB:2E:6B:42:73:8C:4E:6D:38:41:10:3D:3A:A7:F3:39
> +-----BEGIN CERTIFICATE-----
> +MIIEPjCCAyagAwIBAgIESlOMKDANBgkqhkiG9w0BAQsFADCBvjELMAkGA1UEBhMC
> +VVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3d3cuZW50
> +cnVzdC5uZXQvbGVnYWwtdGVybXMxOTA3BgNVBAsTMChjKSAyMDA5IEVudHJ1c3Qs
> +IEluYy4gLSBmb3IgYXV0aG9yaXplZCB1c2Ugb25seTEyMDAGA1UEAxMpRW50cnVz
> +dCBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0gRzIwHhcNMDkwNzA3MTcy
> +NTU0WhcNMzAxMjA3MTc1NTU0WjCBvjELMAkGA1UEBhMCVVMxFjAUBgNVBAoTDUVu
> +dHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3d3cuZW50cnVzdC5uZXQvbGVnYWwt
> +dGVybXMxOTA3BgNVBAsTMChjKSAyMDA5IEVudHJ1c3QsIEluYy4gLSBmb3IgYXV0
> +aG9yaXplZCB1c2Ugb25seTEyMDAGA1UEAxMpRW50cnVzdCBSb290IENlcnRpZmlj
> +YXRpb24gQXV0aG9yaXR5IC0gRzIwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
> +AoIBAQC6hLZy254Ma+KZ6TABp3bqMriVQRrJ2mFOWHLP/vaCeb9zYQYKpSfYs1/T
> +RU4cctZOMvJyig/3gxnQaoCAAEUesMfnmr8SVycco2gvCoe9amsOXmXzHHfV1IWN
> +cCG0szLni6LVhjkCsbjSR87kyUnEO6fe+1R9V77w6G7CebI6C1XiUJgWMhNcL3hW
> +wcKUs/Ja5CeanyTXxuzQmyWC48zCxEXFjJd6BmsqEZ+pCm5IO2/b1BEZQvePB7/1
> +U1+cPvQXLOZprE4yTGJ36rfo5bs0vBmLrpxR57d+tVOxMyLlbc9wPBr64ptntoP0
> +jaWvYkxN4FisZDQSA/i2jZRjJKRxAgMBAAGjQjBAMA4GA1UdDwEB/wQEAwIBBjAP
> +BgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRqciZ60B7vfec7aVHUbI2fkBJmqzAN
> +BgkqhkiG9w0BAQsFAAOCAQEAeZ8dlsa2eT8ijYfThwMEYGprmi5ZiXMRrEPR9RP/
> +jTkrwPK9T3CMqS/qF8QLVJ7UG5aYMzyorWKiAHarWWluBh1+xLlEjZivEtRh2woZ
> +Rkfz6/djwUAFQKXSt/S1mja/qYh2iARVBCuch38aNzx+LaUa2NSJXsq9rD1s2G2v
> +1fN2D807iDginWyTmsQ9v4IbZT+mD12q/OWyFcq1rca8PdCE6OoGcrBNOTJ4vz4R
> +nAuknZoh8/CbCzB428Hch0P+vGOaysXCHMnHjf87ElgI5rY97HosTvuDls4MPGmH
> +VHOkc8KT/1EQrBVUAdj8BbGJoX90g5pJ19xOe4pIb4tF9g==
> +-----END CERTIFICATE-----
> +=== /C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2012
> Entrust, Inc. - for authorized use only/CN=Entrust Root Certification
> Authority - EC1
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            a6:8b:79:29:00:00:00:00:50:d0:91:f9
> +    Signature Algorithm: ecdsa-with-SHA384
> +        Validity
> +            Not Before: Dec 18 15:25:36 2012 GMT
> +            Not After : Dec 18 15:55:36 2037 GMT
> +        Subject: C=US, O=Entrust, Inc., OU=See
> www.entrust.net/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized
> use only, CN=Entrust Root Certification Authority - EC1
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                B7:63:E7:1A:DD:8D:E9:08:A6:55:
> 83:A4:E0:6A:50:41:65:11:42:49
> +SHA1 Fingerprint=20:D8:06:40:DF:9B:25:F5:12:25:3A:11:EA:F7:59:8A:
> EB:14:B5:47
> +SHA256 Fingerprint=02:ED:0E:B2:8C:14:DA:45:16:5C:56:67:91:70:0D:64:
> 51:D7:FB:56:F0:B2:AB:1D:3B:8E:B0:70:E5:6E:DF:F5
> +-----BEGIN CERTIFICATE-----
> +MIIC+TCCAoCgAwIBAgINAKaLeSkAAAAAUNCR+TAKBggqhkjOPQQDAzCBvzELMAkG
> +A1UEBhMCVVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3
> +d3cuZW50cnVzdC5uZXQvbGVnYWwtdGVybXMxOTA3BgNVBAsTMChjKSAyMDEyIEVu
> +dHJ1c3QsIEluYy4gLSBmb3IgYXV0aG9yaXplZCB1c2Ugb25seTEzMDEGA1UEAxMq
> +RW50cnVzdCBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0gRUMxMB4XDTEy
> +MTIxODE1MjUzNloXDTM3MTIxODE1NTUzNlowgb8xCzAJBgNVBAYTAlVTMRYwFAYD
> +VQQKEw1FbnRydXN0LCBJbmMuMSgwJgYDVQQLEx9TZWUgd3d3LmVudHJ1c3QubmV0
> +L2xlZ2FsLXRlcm1zMTkwNwYDVQQLEzAoYykgMjAxMiBFbnRydXN0LCBJbmMuIC0g
> +Zm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxMzAxBgNVBAMTKkVudHJ1c3QgUm9vdCBD
> +ZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEVDMTB2MBAGByqGSM49AgEGBSuBBAAi
> +A2IABIQTydC6bUF74mzQ61VfZgIaJPRbiWlH47jCffHyAsWfoPZb1YsGGYZPUxBt
> +ByQnoaD41UcZYUx9ypMn6nQM72+WCf5j7HBdNq1nd67JnXxVRDqiY1Ef9eNi1KlH
> +Bz7MIKNCMEAwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0O
> +BBYEFLdj5xrdjekIplWDpOBqUEFlEUJJMAoGCCqGSM49BAMDA2cAMGQCMGF52OVC
> +R98crlOZF7ZvHH3hvxGU0QOIdeSNiaSKd0bebWHvAvX7td/M/k7//qnmpwIwW5nX
> +hTcGtXsI/esni0qU+eH6p44mCOh8kmhtc9hvJqwhAriZtyZBWyVgrtBIGu4G
> +-----END CERTIFICATE-----
> +=== /C=US/O=Entrust, Inc./OU=www.entrust.net/CPS is incorporated by
> reference/OU=(c) 2006 Entrust, Inc./CN=Entrust Root Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1081,92 +1307,10 @@ AGAT/3B+XxFNSRuzFVJ7yVTav52Vr2ua2J7p8eRD
>  eu6FSqdQgPCnXEqULl8FmTxSQeDNtGPPAUO6nIPcj2A781q0tHuu2guQOHXvgR1m
>  0vdXcDazv/wor3ElhVsT/h5/WrQ8
>  -----END CERTIFICATE-----
> -=== Entrust Root Certification Authority - EC1
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number:
> -            a6:8b:79:29:00:00:00:00:50:d0:91:f9
> -    Signature Algorithm: ecdsa-with-SHA384
> -        Validity
> -            Not Before: Dec 18 15:25:36 2012 GMT
> -            Not After : Dec 18 15:55:36 2037 GMT
> -        Subject: C=US, O=Entrust, Inc., OU=See
> www.entrust.net/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized
> use only, CN=Entrust Root Certification Authority - EC1
> -        X509v3 extensions:
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Subject Key Identifier:
> -                B7:63:E7:1A:DD:8D:E9:08:A6:55:
> 83:A4:E0:6A:50:41:65:11:42:49
> -SHA1 Fingerprint=20:D8:06:40:DF:9B:25:F5:12:25:3A:11:EA:F7:59:8A:
> EB:14:B5:47
> -SHA256 Fingerprint=02:ED:0E:B2:8C:14:DA:45:16:5C:56:67:91:70:0D:64:
> 51:D7:FB:56:F0:B2:AB:1D:3B:8E:B0:70:E5:6E:DF:F5
> ------BEGIN CERTIFICATE-----
> -MIIC+TCCAoCgAwIBAgINAKaLeSkAAAAAUNCR+TAKBggqhkjOPQQDAzCBvzELMAkG
> -A1UEBhMCVVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3
> -d3cuZW50cnVzdC5uZXQvbGVnYWwtdGVybXMxOTA3BgNVBAsTMChjKSAyMDEyIEVu
> -dHJ1c3QsIEluYy4gLSBmb3IgYXV0aG9yaXplZCB1c2Ugb25seTEzMDEGA1UEAxMq
> -RW50cnVzdCBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0gRUMxMB4XDTEy
> -MTIxODE1MjUzNloXDTM3MTIxODE1NTUzNlowgb8xCzAJBgNVBAYTAlVTMRYwFAYD
> -VQQKEw1FbnRydXN0LCBJbmMuMSgwJgYDVQQLEx9TZWUgd3d3LmVudHJ1c3QubmV0
> -L2xlZ2FsLXRlcm1zMTkwNwYDVQQLEzAoYykgMjAxMiBFbnRydXN0LCBJbmMuIC0g
> -Zm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxMzAxBgNVBAMTKkVudHJ1c3QgUm9vdCBD
> -ZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEVDMTB2MBAGByqGSM49AgEGBSuBBAAi
> -A2IABIQTydC6bUF74mzQ61VfZgIaJPRbiWlH47jCffHyAsWfoPZb1YsGGYZPUxBt
> -ByQnoaD41UcZYUx9ypMn6nQM72+WCf5j7HBdNq1nd67JnXxVRDqiY1Ef9eNi1KlH
> -Bz7MIKNCMEAwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0O
> -BBYEFLdj5xrdjekIplWDpOBqUEFlEUJJMAoGCCqGSM49BAMDA2cAMGQCMGF52OVC
> -R98crlOZF7ZvHH3hvxGU0QOIdeSNiaSKd0bebWHvAvX7td/M/k7//qnmpwIwW5nX
> -hTcGtXsI/esni0qU+eH6p44mCOh8kmhtc9hvJqwhAriZtyZBWyVgrtBIGu4G
> ------END CERTIFICATE-----
> -=== Entrust Root Certification Authority - G2
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 1246989352 (0x4a538c28)
> -    Signature Algorithm: sha256WithRSAEncryption
> -        Validity
> -            Not Before: Jul  7 17:25:54 2009 GMT
> -            Not After : Dec  7 17:55:54 2030 GMT
> -        Subject: C=US, O=Entrust, Inc., OU=See
> www.entrust.net/legal-terms, OU=(c) 2009 Entrust, Inc. - for authorized
> use only, CN=Entrust Root Certification Authority - G2
> -        X509v3 extensions:
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Subject Key Identifier:
> -                6A:72:26:7A:D0:1E:EF:7D:E7:3B:
> 69:51:D4:6C:8D:9F:90:12:66:AB
> -SHA1 Fingerprint=8C:F4:27:FD:79:0C:3A:D1:66:06:8D:E8:1E:57:EF:BB:
> 93:22:72:D4
> -SHA256 Fingerprint=43:DF:57:74:B0:3E:7F:EF:5F:E4:0D:93:1A:7B:ED:F1:
> BB:2E:6B:42:73:8C:4E:6D:38:41:10:3D:3A:A7:F3:39
> ------BEGIN CERTIFICATE-----
> -MIIEPjCCAyagAwIBAgIESlOMKDANBgkqhkiG9w0BAQsFADCBvjELMAkGA1UEBhMC
> -VVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3d3cuZW50
> -cnVzdC5uZXQvbGVnYWwtdGVybXMxOTA3BgNVBAsTMChjKSAyMDA5IEVudHJ1c3Qs
> -IEluYy4gLSBmb3IgYXV0aG9yaXplZCB1c2Ugb25seTEyMDAGA1UEAxMpRW50cnVz
> -dCBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0gRzIwHhcNMDkwNzA3MTcy
> -NTU0WhcNMzAxMjA3MTc1NTU0WjCBvjELMAkGA1UEBhMCVVMxFjAUBgNVBAoTDUVu
> -dHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3d3cuZW50cnVzdC5uZXQvbGVnYWwt
> -dGVybXMxOTA3BgNVBAsTMChjKSAyMDA5IEVudHJ1c3QsIEluYy4gLSBmb3IgYXV0
> -aG9yaXplZCB1c2Ugb25seTEyMDAGA1UEAxMpRW50cnVzdCBSb290IENlcnRpZmlj
> -YXRpb24gQXV0aG9yaXR5IC0gRzIwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
> -AoIBAQC6hLZy254Ma+KZ6TABp3bqMriVQRrJ2mFOWHLP/vaCeb9zYQYKpSfYs1/T
> -RU4cctZOMvJyig/3gxnQaoCAAEUesMfnmr8SVycco2gvCoe9amsOXmXzHHfV1IWN
> -cCG0szLni6LVhjkCsbjSR87kyUnEO6fe+1R9V77w6G7CebI6C1XiUJgWMhNcL3hW
> -wcKUs/Ja5CeanyTXxuzQmyWC48zCxEXFjJd6BmsqEZ+pCm5IO2/b1BEZQvePB7/1
> -U1+cPvQXLOZprE4yTGJ36rfo5bs0vBmLrpxR57d+tVOxMyLlbc9wPBr64ptntoP0
> -jaWvYkxN4FisZDQSA/i2jZRjJKRxAgMBAAGjQjBAMA4GA1UdDwEB/wQEAwIBBjAP
> -BgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRqciZ60B7vfec7aVHUbI2fkBJmqzAN
> -BgkqhkiG9w0BAQsFAAOCAQEAeZ8dlsa2eT8ijYfThwMEYGprmi5ZiXMRrEPR9RP/
> -jTkrwPK9T3CMqS/qF8QLVJ7UG5aYMzyorWKiAHarWWluBh1+xLlEjZivEtRh2woZ
> -Rkfz6/djwUAFQKXSt/S1mja/qYh2iARVBCuch38aNzx+LaUa2NSJXsq9rD1s2G2v
> -1fN2D807iDginWyTmsQ9v4IbZT+mD12q/OWyFcq1rca8PdCE6OoGcrBNOTJ4vz4R
> -nAuknZoh8/CbCzB428Hch0P+vGOaysXCHMnHjf87ElgI5rY97HosTvuDls4MPGmH
> -VHOkc8KT/1EQrBVUAdj8BbGJoX90g5pJ19xOe4pIb4tF9g==
> ------END CERTIFICATE-----
>
>  ### Entrust.net
>
> -=== Entrust.net Certification Authority (2048)
> +=== /O=Entrust.net/OU=www.entrust.net/CPS_2048 incorp. by ref. (limits
> liab.)/OU=(c) 1999 Entrust.net Limited/CN=Entrust.net Certification
> Authority (2048)
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1210,207 +1354,10 @@ u/8j72gZyxKTJ1wDLW8w0B62GqzeWvfRqqgnpv55
>  bYQLCIt+jerXmCHG8+c8eS9enNFMFY3h7CI3zJpDC5fcgJCNs2ebb0gIFVbPv/Er
>  fF6adulZkMV8gzURZVE=
>  -----END CERTIFICATE-----
> -=== Entrust.net Secure Server Certification Authority
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 927650371 (0x374ad243)
> -    Signature Algorithm: sha1WithRSAEncryption
> -        Validity
> -            Not Before: May 25 16:09:40 1999 GMT
> -            Not After : May 25 16:39:40 2019 GMT
> -        Subject: C=US, O=Entrust.net, OU=www.entrust.net/CPS incorp. by
> ref. (limits liab.), OU=(c) 1999 Entrust.net Limited, CN=Entrust.net Secure
> Server Certification Authority
> -        X509v3 extensions:
> -            Netscape Cert Type:
> -                SSL CA, S/MIME CA, Object Signing CA
> -            X509v3 CRL Distribution Points:
> -
> -                Full Name:
> -                  DirName: C = US, O = Entrust.net, OU =
> www.entrust.net/CPS incorp. by ref. (limits liab.), OU = (c) 1999
> Entrust.net Limited, CN = Entrust.net Secure Server Certification
> Authority, CN = CRL1
> -
> -                Full Name:
> -                  URI:http://www.entrust.net/CRL/net1.crl
> -
> -            X509v3 Private Key Usage Period:
> -                Not Before: May 25 16:09:40 1999 GMT, Not After: May 25
> 16:09:40 2019 GMT
> -            X509v3 Key Usage:
> -                Certificate Sign, CRL Sign
> -            X509v3 Authority Key Identifier:
> -                keyid:F0:17:62:13:55:3D:B3:FF:
> 0A:00:6B:FB:50:84:97:F3:ED:62:D0:1A
> -
> -            X509v3 Subject Key Identifier:
> -                F0:17:62:13:55:3D:B3:FF:0A:00:
> 6B:FB:50:84:97:F3:ED:62:D0:1A
> -            X509v3 Basic Constraints:
> -                CA:TRUE
> -            1.2.840.113533.7.65.0:
> -                0
> -..V4.0....
> -SHA1 Fingerprint=99:A6:9B:E6:1A:FE:88:6B:4D:2B:82:00:7C:B8:54:FC:
> 31:7E:15:39
> -SHA256 Fingerprint=62:F2:40:27:8C:56:4C:4D:D8:BF:7D:9D:4F:6F:36:6E:
> A8:94:D2:2F:5F:34:D9:89:A9:83:AC:EC:2F:FF:ED:50
> ------BEGIN CERTIFICATE-----
> -MIIE2DCCBEGgAwIBAgIEN0rSQzANBgkqhkiG9w0BAQUFADCBwzELMAkGA1UEBhMC
> -VVMxFDASBgNVBAoTC0VudHJ1c3QubmV0MTswOQYDVQQLEzJ3d3cuZW50cnVzdC5u
> -ZXQvQ1BTIGluY29ycC4gYnkgcmVmLiAobGltaXRzIGxpYWIuKTElMCMGA1UECxMc
> -KGMpIDE5OTkgRW50cnVzdC5uZXQgTGltaXRlZDE6MDgGA1UEAxMxRW50cnVzdC5u
> -ZXQgU2VjdXJlIFNlcnZlciBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw05OTA1
> -MjUxNjA5NDBaFw0xOTA1MjUxNjM5NDBaMIHDMQswCQYDVQQGEwJVUzEUMBIGA1UE
> -ChMLRW50cnVzdC5uZXQxOzA5BgNVBAsTMnd3dy5lbnRydXN0Lm5ldC9DUFMgaW5j
> -b3JwLiBieSByZWYuIChsaW1pdHMgbGlhYi4pMSUwIwYDVQQLExwoYykgMTk5OSBF
> -bnRydXN0Lm5ldCBMaW1pdGVkMTowOAYDVQQDEzFFbnRydXN0Lm5ldCBTZWN1cmUg
> -U2VydmVyIENlcnRpZmljYXRpb24gQXV0aG9yaXR5MIGdMA0GCSqGSIb3DQEBAQUA
> -A4GLADCBhwKBgQDNKIM0VBuJ8w+vN5Ex/68xYMmo6LIQaO2f55M28Qpku0f1BBc/
> -I0dNxScZgSYMVHINiC3ZH5oSn7yzcdOAGT9HZnuMNSjSuQrfJNqc1lB5gXpa0zf3
> -wkrYKZImZNHkmGw6AIr1NJtl+O3jEP/9uElY3KDegjlrgbEWGWG5VLbmQwIBA6OC
> -AdcwggHTMBEGCWCGSAGG+EIBAQQEAwIABzCCARkGA1UdHwSCARAwggEMMIHeoIHb
> -oIHYpIHVMIHSMQswCQYDVQQGEwJVUzEUMBIGA1UEChMLRW50cnVzdC5uZXQxOzA5
> -BgNVBAsTMnd3dy5lbnRydXN0Lm5ldC9DUFMgaW5jb3JwLiBieSByZWYuIChsaW1p
> -dHMgbGlhYi4pMSUwIwYDVQQLExwoYykgMTk5OSBFbnRydXN0Lm5ldCBMaW1pdGVk
> -MTowOAYDVQQDEzFFbnRydXN0Lm5ldCBTZWN1cmUgU2VydmVyIENlcnRpZmljYXRp
> -b24gQXV0aG9yaXR5MQ0wCwYDVQQDEwRDUkwxMCmgJ6AlhiNodHRwOi8vd3d3LmVu
> -dHJ1c3QubmV0L0NSTC9uZXQxLmNybDArBgNVHRAEJDAigA8xOTk5MDUyNTE2MDk0
> -MFqBDzIwMTkwNTI1MTYwOTQwWjALBgNVHQ8EBAMCAQYwHwYDVR0jBBgwFoAU8Bdi
> -E1U9s/8KAGv7UISX8+1i0BowHQYDVR0OBBYEFPAXYhNVPbP/CgBr+1CEl/PtYtAa
> -MAwGA1UdEwQFMAMBAf8wGQYJKoZIhvZ9B0EABAwwChsEVjQuMAMCBJAwDQYJKoZI
> -hvcNAQEFBQADgYEAkNwwAvpkdMKnCqV8IY00F6j7Rw7/JXyNEwr75Ji174z4xRAN
> -95K+8cPV1ZVqBLssziY2ZcgxxufuP+NXdYR6Ee9GTxj005i7qIcyunL2POI9n9cd
> -2cNgQ4xYDiKWL2KjLB+6rQXvqzJ4h6BUcxm1XAX5Uj5tLUUL9wqT6u0G+bI=
> ------END CERTIFICATE-----
> -
> -### Equifax
> -
> -=== Equifax Secure Certificate Authority
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 903804111 (0x35def4cf)
> -    Signature Algorithm: sha1WithRSAEncryption
> -        Validity
> -            Not Before: Aug 22 16:41:51 1998 GMT
> -            Not After : Aug 22 16:41:51 2018 GMT
> -        Subject: C=US, O=Equifax, OU=Equifax Secure Certificate Authority
> -        X509v3 extensions:
> -            X509v3 CRL Distribution Points:
> -
> -                Full Name:
> -                  DirName: C = US, O = Equifax, OU = Equifax Secure
> Certificate Authority, CN = CRL1
> -
> -            X509v3 Private Key Usage Period:
> -                Not After: Aug 22 16:41:51 2018 GMT
> -            X509v3 Key Usage:
> -                Certificate Sign, CRL Sign
> -            X509v3 Authority Key Identifier:
> -                keyid:48:E6:68:F9:2B:D2:B2:95:
> D7:47:D8:23:20:10:4F:33:98:90:9F:D4
> -
> -            X509v3 Subject Key Identifier:
> -                48:E6:68:F9:2B:D2:B2:95:D7:47:
> D8:23:20:10:4F:33:98:90:9F:D4
> -            X509v3 Basic Constraints:
> -                CA:TRUE
> -            1.2.840.113533.7.65.0:
> -                0...V3.0c....
> -SHA1 Fingerprint=D2:32:09:AD:23:D3:14:23:21:74:E4:0D:7F:9D:62:13:
> 97:86:63:3A
> -SHA256 Fingerprint=08:29:7A:40:47:DB:A2:36:80:C7:31:DB:6E:31:76:53:
> CA:78:48:E1:BE:BD:3A:0B:01:79:A7:07:F9:2C:F1:78
> ------BEGIN CERTIFICATE-----
> -MIIDIDCCAomgAwIBAgIENd70zzANBgkqhkiG9w0BAQUFADBOMQswCQYDVQQGEwJV
> -UzEQMA4GA1UEChMHRXF1aWZheDEtMCsGA1UECxMkRXF1aWZheCBTZWN1cmUgQ2Vy
> -dGlmaWNhdGUgQXV0aG9yaXR5MB4XDTk4MDgyMjE2NDE1MVoXDTE4MDgyMjE2NDE1
> -MVowTjELMAkGA1UEBhMCVVMxEDAOBgNVBAoTB0VxdWlmYXgxLTArBgNVBAsTJEVx
> -dWlmYXggU2VjdXJlIENlcnRpZmljYXRlIEF1dGhvcml0eTCBnzANBgkqhkiG9w0B
> -AQEFAAOBjQAwgYkCgYEAwV2xWGcIYu6gmi0fCG2RFGiYCh7+2gRvE4RiIcPRfM6f
> -BeC4AfBONOziipUEZKzxa1NfBbPLZ4C/QgKO/t0BCezhABRP/PvwDN1Dulsr4R+A
> -cJkVV5MW8Q+XarfCaCMczE1ZMKxRHjuvK9buY0V7xdlfUNLjUA86iOe/FP3gx7kC
> -AwEAAaOCAQkwggEFMHAGA1UdHwRpMGcwZaBjoGGkXzBdMQswCQYDVQQGEwJVUzEQ
> -MA4GA1UEChMHRXF1aWZheDEtMCsGA1UECxMkRXF1aWZheCBTZWN1cmUgQ2VydGlm
> -aWNhdGUgQXV0aG9yaXR5MQ0wCwYDVQQDEwRDUkwxMBoGA1UdEAQTMBGBDzIwMTgw
> -ODIyMTY0MTUxWjALBgNVHQ8EBAMCAQYwHwYDVR0jBBgwFoAUSOZo+SvSspXXR9gj
> -IBBPM5iQn9QwHQYDVR0OBBYEFEjmaPkr0rKV10fYIyAQTzOYkJ/UMAwGA1UdEwQF
> -MAMBAf8wGgYJKoZIhvZ9B0EABA0wCxsFVjMuMGMDAgbAMA0GCSqGSIb3DQEBBQUA
> -A4GBAFjOKer89961zgK5F7WF0bnj4JXMJTENAKaSbn+2kmOeUJXRmm/kEd5jhW6Y
> -7qj/WsjTVbJmcVfewCHrPSqnI0kBBIZCe/zuf6IWUrVnZ9NA2zsmWLIodz2uFHdh
> -1voqZiegDfqnc1zqcPGUIWVEX/r87yloqaKHee9570+sB3c4
> ------END CERTIFICATE-----
> -
> -### Equifax Secure Inc.
> -
> -=== Equifax Secure eBusiness CA-1
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 4 (0x4)
> -    Signature Algorithm: md5WithRSAEncryption
> -        Validity
> -            Not Before: Jun 21 04:00:00 1999 GMT
> -            Not After : Jun 21 04:00:00 2020 GMT
> -        Subject: C=US, O=Equifax Secure Inc., CN=Equifax Secure eBusiness
> CA-1
> -        X509v3 extensions:
> -            Netscape Cert Type:
> -                SSL CA, S/MIME CA, Object Signing CA
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Authority Key Identifier:
> -                keyid:4A:78:32:52:11:DB:59:16:
> 36:5E:DF:C1:14:36:40:6A:47:7C:4C:A1
> -
> -            X509v3 Subject Key Identifier:
> -                4A:78:32:52:11:DB:59:16:36:5E:
> DF:C1:14:36:40:6A:47:7C:4C:A1
> -SHA1 Fingerprint=DA:40:18:8B:91:89:A3:ED:EE:AE:DA:97:FE:2F:9D:F5:
> B7:D1:8A:41
> -SHA256 Fingerprint=CF:56:FF:46:A4:A1:86:10:9D:D9:65:84:B5:EE:B5:8A:
> 51:0C:42:75:B0:E5:F9:4F:40:BB:AE:86:5E:19:F6:73
> ------BEGIN CERTIFICATE-----
> -MIICgjCCAeugAwIBAgIBBDANBgkqhkiG9w0BAQQFADBTMQswCQYDVQQGEwJVUzEc
> -MBoGA1UEChMTRXF1aWZheCBTZWN1cmUgSW5jLjEmMCQGA1UEAxMdRXF1aWZheCBT
> -ZWN1cmUgZUJ1c2luZXNzIENBLTEwHhcNOTkwNjIxMDQwMDAwWhcNMjAwNjIxMDQw
> -MDAwWjBTMQswCQYDVQQGEwJVUzEcMBoGA1UEChMTRXF1aWZheCBTZWN1cmUgSW5j
> -LjEmMCQGA1UEAxMdRXF1aWZheCBTZWN1cmUgZUJ1c2luZXNzIENBLTEwgZ8wDQYJ
> -KoZIhvcNAQEBBQADgY0AMIGJAoGBAM4vGbwXt3fek6lfWg0XTzQaDJj0ItlZ1MRo
> -RvC0NcWFAyDGr0WlIVFFQesWWDYyb+JQYmT5/VGcqiTZ9J2DKocKIdMSODRsjQBu
> -WqDZQu4aIZX5UkxVWsUPOE9G+m34LjXWHXzr4vCwdYDIqROsvojvOm6rXyo4YgKw
> -Env+j6YDAgMBAAGjZjBkMBEGCWCGSAGG+EIBAQQEAwIABzAPBgNVHRMBAf8EBTAD
> -AQH/MB8GA1UdIwQYMBaAFEp4MlIR21kWNl7fwRQ2QGpHfEyhMB0GA1UdDgQWBBRK
> -eDJSEdtZFjZe38EUNkBqR3xMoTANBgkqhkiG9w0BAQQFAAOBgQB1W6ibAxHm6VZM
> -zfmpTMANmvPMZWnmJXbMWbfWVMMdzZmsGd20hdXgPfxiIKeES1hl8eL5lSE/9dR+
> -WB5Hh1Q+WKG1tfgq73HnvMP2sUlG4tega+VWeponmHxGYhTnyfxuAxJ5gDgdSIKN
> -/Bf+KpYrtWKmpj29f5JZzVoqgrI3eQ==
> ------END CERTIFICATE-----
> -=== Equifax Secure Global eBusiness CA-1
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> -    Signature Algorithm: md5WithRSAEncryption
> -        Validity
> -            Not Before: Jun 21 04:00:00 1999 GMT
> -            Not After : Jun 21 04:00:00 2020 GMT
> -        Subject: C=US, O=Equifax Secure Inc., CN=Equifax Secure Global
> eBusiness CA-1
> -        X509v3 extensions:
> -            Netscape Cert Type:
> -                SSL CA, S/MIME CA, Object Signing CA
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Authority Key Identifier:
> -                keyid:BE:A8:A0:74:72:50:6B:44:
> B7:C9:23:D8:FB:A8:FF:B3:57:6B:68:6C
> -
> -            X509v3 Subject Key Identifier:
> -                BE:A8:A0:74:72:50:6B:44:B7:C9:
> 23:D8:FB:A8:FF:B3:57:6B:68:6C
> -SHA1 Fingerprint=7E:78:4A:10:1C:82:65:CC:2D:E1:F1:6D:47:B4:40:CA:
> D9:0A:19:45
> -SHA256 Fingerprint=5F:0B:62:EA:B5:E3:53:EA:65:21:65:16:58:FB:B6:53:
> 59:F4:43:28:0A:4A:FB:D1:04:D7:7D:10:F9:F0:4C:07
> ------BEGIN CERTIFICATE-----
> -MIICkDCCAfmgAwIBAgIBATANBgkqhkiG9w0BAQQFADBaMQswCQYDVQQGEwJVUzEc
> -MBoGA1UEChMTRXF1aWZheCBTZWN1cmUgSW5jLjEtMCsGA1UEAxMkRXF1aWZheCBT
> -ZWN1cmUgR2xvYmFsIGVCdXNpbmVzcyBDQS0xMB4XDTk5MDYyMTA0MDAwMFoXDTIw
> -MDYyMTA0MDAwMFowWjELMAkGA1UEBhMCVVMxHDAaBgNVBAoTE0VxdWlmYXggU2Vj
> -dXJlIEluYy4xLTArBgNVBAMTJEVxdWlmYXggU2VjdXJlIEdsb2JhbCBlQnVzaW5l
> -c3MgQ0EtMTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAuucXkAJlsTRVPEnC
> -UdXfp9E3j9HngXNBUmCbnaEXJnitx7HoJpQytd4zjTov2/KaelpzmKNc6fuKcxtc
> -58O/gGzNqfTWK8D3+ZmqY6KxRwIP1ORROhI8bIpaVIRw28HFkM9yRcuoWcDNM50/
> -o5brhTMhHD4ePmBudpxnhcXIw2ECAwEAAaNmMGQwEQYJYIZIAYb4QgEBBAQDAgAH
> -MA8GA1UdEwEB/wQFMAMBAf8wHwYDVR0jBBgwFoAUvqigdHJQa0S3ySPY+6j/s1dr
> -aGwwHQYDVR0OBBYEFL6ooHRyUGtEt8kj2Puo/7NXa2hsMA0GCSqGSIb3DQEBBAUA
> -A4GBADDiAVGqx+pf2rnQZQ8w1j7aDRRJbpGTJxQx78T3LUX47Me/okENI7SS+RkA
> -Z70Br83gcfxaz2TE4JaY0KNA4gGK7ycH8WUBikQtBmV1UsCGECAhX2xrD2yuCRyv
> -8qIYNMR1pHMc8Y3c7635s3a0kr/clRAevsvIO1qEYBlWlKlV
> ------END CERTIFICATE-----
>
>  ### GeoTrust Inc.
>
> -=== GeoTrust Global CA
> +=== /C=US/O=GeoTrust Inc./CN=GeoTrust Global CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1450,7 +1397,7 @@ PseKUgzbFbS9bZvlxrFUaKnjaZC2mqUPuLk/IH2u
>  hw4EbNX/3aBd7YdStysVAq45pmp06drE57xNNB6pXE0zX5IJL4hmXXeXxx12E6nV
>  5fEWCRE11azbJHFwLJhWC9kXtNHjUStedejV0NxPNO3CBWaAocvmMw==
>  -----END CERTIFICATE-----
> -=== GeoTrust Global CA 2
> +=== /C=US/O=GeoTrust Inc./CN=GeoTrust Global CA 2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1493,7 +1440,7 @@ abby/+Ea0AzRdoXLiiW9l14sbxWZJue2Kf8i7MkC
>  I8LO57sEAszAR6LkxCkvW0VXiVHuPOtSCP8HNR6fNWpHSlaY0VqFH4z1Ir+rzoPz
>  4iIprn2DQKi6bA==
>  -----END CERTIFICATE-----
> -=== GeoTrust Primary Certification Authority
> +=== /C=US/O=GeoTrust Inc./CN=GeoTrust Primary Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1522,100 +1469,19 @@ Ew1HZW9UcnVzdCBJbmMuMTEwLwYDVQQDEyhHZW9U
>  ZmljYXRpb24gQXV0aG9yaXR5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
>  AQEAvrgVe//UfH1nrYNke8hCUy3f9oQIIGHWAVlqnEQRr+92/ZV+zmEwu3qDXwK9
>  AWbK7hWNb6EwnL2hhZ6UOvNWiAAxz9juapYC2e0DjPt1befquFUWBRaa9OBesYjA
> -ZIVcFU2Ix7e64HXprQU9nceJSOC7KMgD4TCTZF5SwFlwIjVXiIrxlQqD17wxcwE0
> -7e9GceBrAqg1cmuXm2bgyxx5X9gaBGgeRwLmnWDiNpcB3841kt++Z8dtd1k7j53W
> -kBWUvEI0EME5+bEnPn7WinXFsq+W06Lem+SYvn3h6YGttm/81w7a4DSwDRp35+MI
> -mO9Y+pyEtzavwt+s0vQQBnBxNQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4G
> -A1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQULNVQQZcVi/CPNmFbSvtr2ZnJM5IwDQYJ
> -KoZIhvcNAQEFBQADggEBAFpwfyzdtzRP9YZRqSa+S7iq8XEN3GHHoOo0Hnp3DwQ1
> -6CePbJC/kRYkRj5KTs4rFtULUh38H2eiAkUxT87z+gOneZ1TatnaYzr4gNfTmeGl
> -4b7UVXGYNTq+k+qurUKykG/g/CFNNWMziUnWm07Kx+dOCQD32sfvmWKZd7aVIl6K
> -oKv0uHiYyjgZmclynnjNS6yvGaBzEi38wkG6gZHaFloxt/m0cYASSJlyc1pZU8Fj
> -UjPtp8nSOQJw+uCxQmYpqptR7TBUIhRf2asdweSU8Pj1K/fqynhG1riR/aYNKxoU
> -AT6A8EKglQdebc3MS6RFjasS6LPeWuWgfOgPIh1a6Vk=
> ------END CERTIFICATE-----
> -=== GeoTrust Primary Certification Authority - G2
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number:
> -            3c:b2:f4:48:0a:00:e2:fe:eb:24:3b:5e:60:3e:c3:6b
> -    Signature Algorithm: ecdsa-with-SHA384
> -        Validity
> -            Not Before: Nov  5 00:00:00 2007 GMT
> -            Not After : Jan 18 23:59:59 2038 GMT
> -        Subject: C=US, O=GeoTrust Inc., OU=(c) 2007 GeoTrust Inc. - For
> authorized use only, CN=GeoTrust Primary Certification Authority - G2
> -        X509v3 extensions:
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Subject Key Identifier:
> -                15:5F:35:57:51:55:FB:25:B2:AD:
> 03:69:FC:01:A3:FA:BE:11:55:D5
> -SHA1 Fingerprint=8D:17:84:D5:37:F3:03:7D:EC:70:FE:57:8B:51:9A:99:
> E6:10:D7:B0
> -SHA256 Fingerprint=5E:DB:7A:C4:3B:82:A0:6A:87:61:E8:D7:BE:49:79:EB:
> F2:61:1F:7D:D7:9B:F9:1C:1C:6B:56:6A:21:9E:D7:66
> ------BEGIN CERTIFICATE-----
> -MIICrjCCAjWgAwIBAgIQPLL0SAoA4v7rJDteYD7DazAKBggqhkjOPQQDAzCBmDEL
> -MAkGA1UEBhMCVVMxFjAUBgNVBAoTDUdlb1RydXN0IEluYy4xOTA3BgNVBAsTMChj
> -KSAyMDA3IEdlb1RydXN0IEluYy4gLSBGb3IgYXV0aG9yaXplZCB1c2Ugb25seTE2
> -MDQGA1UEAxMtR2VvVHJ1c3QgUHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0
> -eSAtIEcyMB4XDTA3MTEwNTAwMDAwMFoXDTM4MDExODIzNTk1OVowgZgxCzAJBgNV
> -BAYTAlVTMRYwFAYDVQQKEw1HZW9UcnVzdCBJbmMuMTkwNwYDVQQLEzAoYykgMjAw
> -NyBHZW9UcnVzdCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxNjA0BgNV
> -BAMTLUdlb1RydXN0IFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkgLSBH
> -MjB2MBAGByqGSM49AgEGBSuBBAAiA2IABBWx6P0DFUPlrOuHNxFi79KDNlJ9RVcL
> -So17VDs6bl8VAsBQps8lL33KSLjHUGMcKiEIfJo22Av+0SbFWDEwKCXzXV2juLal
> -tJLtbCyf691DiaI8S0iRHVDsJt/WYC69IaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAO
> -BgNVHQ8BAf8EBAMCAQYwHQYDVR0OBBYEFBVfNVdRVfslsq0DafwBo/q+EVXVMAoG
> -CCqGSM49BAMDA2cAMGQCMGSWWaboCd6LuvpaiIjwH5HTRqjySkwCY/tsXzjbLkGT
> -qQ7mndwxHLKgpxgceeHHNgIwOlavmnRs9vuD4DPTCF+hnMJbn0bWtsuRBmOiBucz
> -rD6ogRLQy7rQkgu2npaqBA+K
> ------END CERTIFICATE-----
> -=== GeoTrust Primary Certification Authority - G3
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number:
> -            15:ac:6e:94:19:b2:79:4b:41:f6:27:a9:c3:18:0f:1f
> -    Signature Algorithm: sha256WithRSAEncryption
> -        Validity
> -            Not Before: Apr  2 00:00:00 2008 GMT
> -            Not After : Dec  1 23:59:59 2037 GMT
> -        Subject: C=US, O=GeoTrust Inc., OU=(c) 2008 GeoTrust Inc. - For
> authorized use only, CN=GeoTrust Primary Certification Authority - G3
> -        X509v3 extensions:
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Subject Key Identifier:
> -                C4:79:CA:8E:A1:4E:03:1D:1C:DC:
> 6B:DB:31:5B:94:3E:3F:30:7F:2D
> -SHA1 Fingerprint=03:9E:ED:B8:0B:E7:A0:3C:69:53:89:3B:20:D2:D9:32:
> 3A:4C:2A:FD
> -SHA256 Fingerprint=B4:78:B8:12:25:0D:F8:78:63:5C:2A:A7:EC:7D:15:5E:
> AA:62:5E:E8:29:16:E2:CD:29:43:61:88:6C:D1:FB:D4
> ------BEGIN CERTIFICATE-----
> -MIID/jCCAuagAwIBAgIQFaxulBmyeUtB9iepwxgPHzANBgkqhkiG9w0BAQsFADCB
> -mDELMAkGA1UEBhMCVVMxFjAUBgNVBAoTDUdlb1RydXN0IEluYy4xOTA3BgNVBAsT
> -MChjKSAyMDA4IEdlb1RydXN0IEluYy4gLSBGb3IgYXV0aG9yaXplZCB1c2Ugb25s
> -eTE2MDQGA1UEAxMtR2VvVHJ1c3QgUHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhv
> -cml0eSAtIEczMB4XDTA4MDQwMjAwMDAwMFoXDTM3MTIwMTIzNTk1OVowgZgxCzAJ
> -BgNVBAYTAlVTMRYwFAYDVQQKEw1HZW9UcnVzdCBJbmMuMTkwNwYDVQQLEzAoYykg
> -MjAwOCBHZW9UcnVzdCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxNjA0
> -BgNVBAMTLUdlb1RydXN0IFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkg
> -LSBHMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANziXmJYHTNXOTIz
> -+uvLh4yn1ErdBojqZI4xmKU4kB6Yzy5jK/BGvESyiaHAKAxJcCGVn2TAppMSAmUm
> -hsalifD614SgcK9PGpc/BkTVyetyEH3kMSj7HGHmKAdEc5IiaacDiGydY8hS2pgn
> -5whMcD60yRLBxWeDXTPzAxHsatBT4tG6NmCUgLthY2xbF37fQJQeqw3CIShwiP/W
> -JmxsYAQlTlV+fe+/lEjetx3dcI0FX4ilm/LC7urRQEFtYjgdVgbFA0dRIBn8exAL
> -DmKudlW/X3e+PkkBUz2YJQN2JFodtNuJ6nnltrM7P7pMKEF/BqxqjsHQ9gUdfeZC
> -huOl1UcCAwEAAaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYw
> -HQYDVR0OBBYEFMR5yo6hTgMdHNxr2zFblD4/MH8tMA0GCSqGSIb3DQEBCwUAA4IB
> -AQAtxRPPVoB7eni9n64smefv2t+UXglpp+duaIy9cr5HqQ6XErhK8WTTOd8lNNTB
> -zU6B8A8ExCSzNJbGpqow32hhc9f5joWJ7w5elShKKiePEI4ufIbEAp7aDHdlDkQN
> -kv39sxY2+hENHYwOB4lqKVb3cvTdFZx3NWZXqxNT2I7BQMXXExZacse3aQHEerGD
> -AWh9jUGhlBjBJVz88P6DAod8DQ3PLghcSkANPuyBYeYk28rgDi0Hsj5W3I31QYUH
> -SJsMC8tJP33st/3LjWeJGqvtux6jAAgIFyqCXDFdRootD4abdNlF+9RAsXqqaC2G
> -spki4cErx5z481+oghLrGREt
> +ZIVcFU2Ix7e64HXprQU9nceJSOC7KMgD4TCTZF5SwFlwIjVXiIrxlQqD17wxcwE0
> +7e9GceBrAqg1cmuXm2bgyxx5X9gaBGgeRwLmnWDiNpcB3841kt++Z8dtd1k7j53W
> +kBWUvEI0EME5+bEnPn7WinXFsq+W06Lem+SYvn3h6YGttm/81w7a4DSwDRp35+MI
> +mO9Y+pyEtzavwt+s0vQQBnBxNQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4G
> +A1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQULNVQQZcVi/CPNmFbSvtr2ZnJM5IwDQYJ
> +KoZIhvcNAQEFBQADggEBAFpwfyzdtzRP9YZRqSa+S7iq8XEN3GHHoOo0Hnp3DwQ1
> +6CePbJC/kRYkRj5KTs4rFtULUh38H2eiAkUxT87z+gOneZ1TatnaYzr4gNfTmeGl
> +4b7UVXGYNTq+k+qurUKykG/g/CFNNWMziUnWm07Kx+dOCQD32sfvmWKZd7aVIl6K
> +oKv0uHiYyjgZmclynnjNS6yvGaBzEi38wkG6gZHaFloxt/m0cYASSJlyc1pZU8Fj
> +UjPtp8nSOQJw+uCxQmYpqptR7TBUIhRf2asdweSU8Pj1K/fqynhG1riR/aYNKxoU
> +AT6A8EKglQdebc3MS6RFjasS6LPeWuWgfOgPIh1a6Vk=
>  -----END CERTIFICATE-----
> -=== GeoTrust Universal CA
> +=== /C=US/O=GeoTrust Inc./CN=GeoTrust Universal CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1668,7 +1534,7 @@ ER/frslKxfMnZmaGrGiR/9nmUxwPi1xpZQomyB40
>  DF4JbAiXfKM9fJP/P6EUp8+1Xevb2xzEdt+Iub1FBZUbrvxGakyvSOPOrg/Sfuvm
>  bJxPgWp6ZKy7PtXny3YuxadIwVyQD8vIP/rmMuGNG2+k5o7Y+SlIis5z/iw=
>  -----END CERTIFICATE-----
> -=== GeoTrust Universal CA 2
> +=== /C=US/O=GeoTrust Inc./CN=GeoTrust Universal CA 2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1721,10 +1587,208 @@ OCiNUW7dFGdTbHFcJoRNdVq2fmBWqU2t+5sel/MN
>  6aLcr34YEoP9VhdBLtUpgn2Z9DH2canPLAEnpQW5qrJITirvn5NSUZU8UnOOVkwX
>  QMAJKOSLakhT2+zNVVXxxvjpoixMptEmX36vWkzaH6byHCx+rgIW0lbQL1dTR+iS
>  -----END CERTIFICATE-----
> +=== /C=US/O=GeoTrust Inc./OU=(c) 2007 GeoTrust Inc. - For authorized use
> only/CN=GeoTrust Primary Certification Authority - G2
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            3c:b2:f4:48:0a:00:e2:fe:eb:24:3b:5e:60:3e:c3:6b
> +    Signature Algorithm: ecdsa-with-SHA384
> +        Validity
> +            Not Before: Nov  5 00:00:00 2007 GMT
> +            Not After : Jan 18 23:59:59 2038 GMT
> +        Subject: C=US, O=GeoTrust Inc., OU=(c) 2007 GeoTrust Inc. - For
> authorized use only, CN=GeoTrust Primary Certification Authority - G2
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Subject Key Identifier:
> +                15:5F:35:57:51:55:FB:25:B2:AD:
> 03:69:FC:01:A3:FA:BE:11:55:D5
> +SHA1 Fingerprint=8D:17:84:D5:37:F3:03:7D:EC:70:FE:57:8B:51:9A:99:
> E6:10:D7:B0
> +SHA256 Fingerprint=5E:DB:7A:C4:3B:82:A0:6A:87:61:E8:D7:BE:49:79:EB:
> F2:61:1F:7D:D7:9B:F9:1C:1C:6B:56:6A:21:9E:D7:66
> +-----BEGIN CERTIFICATE-----
> +MIICrjCCAjWgAwIBAgIQPLL0SAoA4v7rJDteYD7DazAKBggqhkjOPQQDAzCBmDEL
> +MAkGA1UEBhMCVVMxFjAUBgNVBAoTDUdlb1RydXN0IEluYy4xOTA3BgNVBAsTMChj
> +KSAyMDA3IEdlb1RydXN0IEluYy4gLSBGb3IgYXV0aG9yaXplZCB1c2Ugb25seTE2
> +MDQGA1UEAxMtR2VvVHJ1c3QgUHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0
> +eSAtIEcyMB4XDTA3MTEwNTAwMDAwMFoXDTM4MDExODIzNTk1OVowgZgxCzAJBgNV
> +BAYTAlVTMRYwFAYDVQQKEw1HZW9UcnVzdCBJbmMuMTkwNwYDVQQLEzAoYykgMjAw
> +NyBHZW9UcnVzdCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxNjA0BgNV
> +BAMTLUdlb1RydXN0IFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkgLSBH
> +MjB2MBAGByqGSM49AgEGBSuBBAAiA2IABBWx6P0DFUPlrOuHNxFi79KDNlJ9RVcL
> +So17VDs6bl8VAsBQps8lL33KSLjHUGMcKiEIfJo22Av+0SbFWDEwKCXzXV2juLal
> +tJLtbCyf691DiaI8S0iRHVDsJt/WYC69IaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAO
> +BgNVHQ8BAf8EBAMCAQYwHQYDVR0OBBYEFBVfNVdRVfslsq0DafwBo/q+EVXVMAoG
> +CCqGSM49BAMDA2cAMGQCMGSWWaboCd6LuvpaiIjwH5HTRqjySkwCY/tsXzjbLkGT
> +qQ7mndwxHLKgpxgceeHHNgIwOlavmnRs9vuD4DPTCF+hnMJbn0bWtsuRBmOiBucz
> +rD6ogRLQy7rQkgu2npaqBA+K
> +-----END CERTIFICATE-----
> +=== /C=US/O=GeoTrust Inc./OU=(c) 2008 GeoTrust Inc. - For authorized use
> only/CN=GeoTrust Primary Certification Authority - G3
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            15:ac:6e:94:19:b2:79:4b:41:f6:27:a9:c3:18:0f:1f
> +    Signature Algorithm: sha256WithRSAEncryption
> +        Validity
> +            Not Before: Apr  2 00:00:00 2008 GMT
> +            Not After : Dec  1 23:59:59 2037 GMT
> +        Subject: C=US, O=GeoTrust Inc., OU=(c) 2008 GeoTrust Inc. - For
> authorized use only, CN=GeoTrust Primary Certification Authority - G3
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Subject Key Identifier:
> +                C4:79:CA:8E:A1:4E:03:1D:1C:DC:
> 6B:DB:31:5B:94:3E:3F:30:7F:2D
> +SHA1 Fingerprint=03:9E:ED:B8:0B:E7:A0:3C:69:53:89:3B:20:D2:D9:32:
> 3A:4C:2A:FD
> +SHA256 Fingerprint=B4:78:B8:12:25:0D:F8:78:63:5C:2A:A7:EC:7D:15:5E:
> AA:62:5E:E8:29:16:E2:CD:29:43:61:88:6C:D1:FB:D4
> +-----BEGIN CERTIFICATE-----
> +MIID/jCCAuagAwIBAgIQFaxulBmyeUtB9iepwxgPHzANBgkqhkiG9w0BAQsFADCB
> +mDELMAkGA1UEBhMCVVMxFjAUBgNVBAoTDUdlb1RydXN0IEluYy4xOTA3BgNVBAsT
> +MChjKSAyMDA4IEdlb1RydXN0IEluYy4gLSBGb3IgYXV0aG9yaXplZCB1c2Ugb25s
> +eTE2MDQGA1UEAxMtR2VvVHJ1c3QgUHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhv
> +cml0eSAtIEczMB4XDTA4MDQwMjAwMDAwMFoXDTM3MTIwMTIzNTk1OVowgZgxCzAJ
> +BgNVBAYTAlVTMRYwFAYDVQQKEw1HZW9UcnVzdCBJbmMuMTkwNwYDVQQLEzAoYykg
> +MjAwOCBHZW9UcnVzdCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxNjA0
> +BgNVBAMTLUdlb1RydXN0IFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkg
> +LSBHMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANziXmJYHTNXOTIz
> ++uvLh4yn1ErdBojqZI4xmKU4kB6Yzy5jK/BGvESyiaHAKAxJcCGVn2TAppMSAmUm
> +hsalifD614SgcK9PGpc/BkTVyetyEH3kMSj7HGHmKAdEc5IiaacDiGydY8hS2pgn
> +5whMcD60yRLBxWeDXTPzAxHsatBT4tG6NmCUgLthY2xbF37fQJQeqw3CIShwiP/W
> +JmxsYAQlTlV+fe+/lEjetx3dcI0FX4ilm/LC7urRQEFtYjgdVgbFA0dRIBn8exAL
> +DmKudlW/X3e+PkkBUz2YJQN2JFodtNuJ6nnltrM7P7pMKEF/BqxqjsHQ9gUdfeZC
> +huOl1UcCAwEAAaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYw
> +HQYDVR0OBBYEFMR5yo6hTgMdHNxr2zFblD4/MH8tMA0GCSqGSIb3DQEBCwUAA4IB
> +AQAtxRPPVoB7eni9n64smefv2t+UXglpp+duaIy9cr5HqQ6XErhK8WTTOd8lNNTB
> +zU6B8A8ExCSzNJbGpqow32hhc9f5joWJ7w5elShKKiePEI4ufIbEAp7aDHdlDkQN
> +kv39sxY2+hENHYwOB4lqKVb3cvTdFZx3NWZXqxNT2I7BQMXXExZacse3aQHEerGD
> +AWh9jUGhlBjBJVz88P6DAod8DQ3PLghcSkANPuyBYeYk28rgDi0Hsj5W3I31QYUH
> +SJsMC8tJP33st/3LjWeJGqvtux6jAAgIFyqCXDFdRootD4abdNlF+9RAsXqqaC2G
> +spki4cErx5z481+oghLrGREt
> +-----END CERTIFICATE-----
>
>  ### GlobalSign
>
> -=== GlobalSign
> +=== /OU=GlobalSign ECC Root CA - R4/O=GlobalSign/CN=GlobalSign
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            2a:38:a4:1c:96:0a:04:de:42:b2:28:a5:0b:e8:34:98:02
> +    Signature Algorithm: ecdsa-with-SHA256
> +        Validity
> +            Not Before: Nov 13 00:00:00 2012 GMT
> +            Not After : Jan 19 03:14:07 2038 GMT
> +        Subject: OU=GlobalSign ECC Root CA - R4, O=GlobalSign,
> CN=GlobalSign
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                54:B0:7B:AD:45:B8:E2:40:7F:FB:
> 0A:6E:FB:BE:33:C9:3C:A3:84:D5
> +SHA1 Fingerprint=69:69:56:2E:40:80:F4:24:A1:E7:19:9F:14:BA:F3:EE:
> 58:AB:6A:BB
> +SHA256 Fingerprint=BE:C9:49:11:C2:95:56:76:DB:6C:0A:55:09:86:D7:6E:
> 3B:A0:05:66:7C:44:2C:97:62:B4:FB:B7:73:DE:22:8C
> +-----BEGIN CERTIFICATE-----
> +MIIB4TCCAYegAwIBAgIRKjikHJYKBN5CsiilC+g0mAIwCgYIKoZIzj0EAwIwUDEk
> +MCIGA1UECxMbR2xvYmFsU2lnbiBFQ0MgUm9vdCBDQSAtIFI0MRMwEQYDVQQKEwpH
> +bG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWduMB4XDTEyMTExMzAwMDAwMFoX
> +DTM4MDExOTAzMTQwN1owUDEkMCIGA1UECxMbR2xvYmFsU2lnbiBFQ0MgUm9vdCBD
> +QSAtIFI0MRMwEQYDVQQKEwpHbG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWdu
> +MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuMZ5049sJQ6fLjkZHAOkrprlOQcJ
> +FspjsbmG+IpXwVfOQvpzofdlQv8ewQCybnMO/8ch5RikqtlxP6jUuc6MHaNCMEAw
> +DgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFFSwe61F
> +uOJAf/sKbvu+M8k8o4TVMAoGCCqGSM49BAMCA0gAMEUCIQDckqGgE6bPA7DmxCGX
> +kPoUVy0D7O48027KqGx2vKLeuwIgJ6iFJzWbVsaj8kfSt24bAgAXqmemFZHe+pTs
> +ewv4n4Q=
> +-----END CERTIFICATE-----
> +=== /OU=GlobalSign ECC Root CA - R5/O=GlobalSign/CN=GlobalSign
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            60:59:49:e0:26:2e:bb:55:f9:0a:77:8a:71:f9:4a:d8:6c
> +    Signature Algorithm: ecdsa-with-SHA384
> +        Validity
> +            Not Before: Nov 13 00:00:00 2012 GMT
> +            Not After : Jan 19 03:14:07 2038 GMT
> +        Subject: OU=GlobalSign ECC Root CA - R5, O=GlobalSign,
> CN=GlobalSign
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                3D:E6:29:48:9B:EA:07:CA:21:44:
> 4A:26:DE:6E:DE:D2:83:D0:9F:59
> +SHA1 Fingerprint=1F:24:C6:30:CD:A4:18:EF:20:69:FF:AD:4F:DD:5F:46:
> 3A:1B:69:AA
> +SHA256 Fingerprint=17:9F:BC:14:8A:3D:D0:0F:D2:4E:A1:34:58:CC:43:BF:
> A7:F5:9C:81:82:D7:83:A5:13:F6:EB:EC:10:0C:89:24
> +-----BEGIN CERTIFICATE-----
> +MIICHjCCAaSgAwIBAgIRYFlJ4CYuu1X5CneKcflK2GwwCgYIKoZIzj0EAwMwUDEk
> +MCIGA1UECxMbR2xvYmFsU2lnbiBFQ0MgUm9vdCBDQSAtIFI1MRMwEQYDVQQKEwpH
> +bG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWduMB4XDTEyMTExMzAwMDAwMFoX
> +DTM4MDExOTAzMTQwN1owUDEkMCIGA1UECxMbR2xvYmFsU2lnbiBFQ0MgUm9vdCBD
> +QSAtIFI1MRMwEQYDVQQKEwpHbG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWdu
> +MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAER0UOlvt9Xb/pOdEh+J8LttV7HpI6SFkc
> +8GIxLcB6KP4ap1yztsyX50XUWPrRd21DosCHZTQKH3rd6zwzocWdTaRvQZU4f8ke
> +hOvRnkmSh5SHDDqFSmafnVmTTZdhBoZKo0IwQDAOBgNVHQ8BAf8EBAMCAQYwDwYD
> +VR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUPeYpSJvqB8ohREom3m7e0oPQn1kwCgYI
> +KoZIzj0EAwMDaAAwZQIxAOVpEslu28YxuglB4Zf4+/2a4n0Sye18ZNPLBSWLVtmg
> +515dTguDnFt2KaAJJiFqYgIwcdK1j1zqO+F4CYWodZI7yFz9SO8NdCKoCOJuxUnO
> +xwy8p2Fp8fc74SrL+SvzZpA3
> +-----END CERTIFICATE-----
> +=== /OU=GlobalSign Root CA - R2/O=GlobalSign/CN=GlobalSign
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            04:00:00:00:00:01:0f:86:26:e6:0d
> +    Signature Algorithm: sha1WithRSAEncryption
> +        Validity
> +            Not Before: Dec 15 08:00:00 2006 GMT
> +            Not After : Dec 15 08:00:00 2021 GMT
> +        Subject: OU=GlobalSign Root CA - R2, O=GlobalSign, CN=GlobalSign
> +        X509v3 extensions:
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                9B:E2:07:57:67:1C:1E:C0:6A:06:
> DE:59:B4:9A:2D:DF:DC:19:86:2E
> +            X509v3 CRL Distribution Points:
> +
> +                Full Name:
> +                  URI:http://crl.globalsign.net/root-r2.crl
> +
> +            X509v3 Authority Key Identifier:
> +                keyid:9B:E2:07:57:67:1C:1E:C0:
> 6A:06:DE:59:B4:9A:2D:DF:DC:19:86:2E
> +
> +SHA1 Fingerprint=75:E0:AB:B6:13:85:12:27:1C:04:F8:5F:DD:DE:38:E4:
> B7:24:2E:FE
> +SHA256 Fingerprint=CA:42:DD:41:74:5F:D0:B8:1E:B9:02:36:2C:F9:D8:BF:
> 71:9D:A1:BD:1B:1E:FC:94:6F:5B:4C:99:F4:2C:1B:9E
> +-----BEGIN CERTIFICATE-----
> +MIIDujCCAqKgAwIBAgILBAAAAAABD4Ym5g0wDQYJKoZIhvcNAQEFBQAwTDEgMB4G
> +A1UECxMXR2xvYmFsU2lnbiBSb290IENBIC0gUjIxEzARBgNVBAoTCkdsb2JhbFNp
> +Z24xEzARBgNVBAMTCkdsb2JhbFNpZ24wHhcNMDYxMjE1MDgwMDAwWhcNMjExMjE1
> +MDgwMDAwWjBMMSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSMjETMBEG
> +A1UEChMKR2xvYmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjCCASIwDQYJKoZI
> +hvcNAQEBBQADggEPADCCAQoCggEBAKbPJA6+Lm8omUVCxKs+IVSbC9N/hHD6ErPL
> +v4dfxn+G07IwXNb9rfF73OX4YJYJkhD10FPe+3t+c4isUoh7SqbKSaZeqKeMWhG8
> +eoLrvozps6yWJQeXSpkqBy+0Hne/ig+1AnwblrjFuTosvNYSuetZfeLQBoZfXklq
> +tTleiDTsvHgMCJiEbKjNS7SgfQx5TfC4LcshytVsW33hoCmEofnTlEnLJGKRILzd
> +C9XZzPnqJworc5HGnRusyMvo4KD0L5CLTfuwNhv2GXqF4G3yYROIXJ/gkwpRl4pa
> +zq+r1feqCapgvdzZX99yqWATXgAByUr6P6TqBwMhAo6CygPCm48CAwEAAaOBnDCB
> +mTAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUm+IH
> +V2ccHsBqBt5ZtJot39wZhi4wNgYDVR0fBC8wLTAroCmgJ4YlaHR0cDovL2NybC5n
> +bG9iYWxzaWduLm5ldC9yb290LXIyLmNybDAfBgNVHSMEGDAWgBSb4gdXZxwewGoG
> +3lm0mi3f3BmGLjANBgkqhkiG9w0BAQUFAAOCAQEAmYFThxxol4aR7OBKuEQLq4Gs
> +J0/WwbgcQ3izDJr86iw8bmEbTUsp9Z8FHSbBuOmDAGJFtqkIk7mpM0sYmsL4h4hO
> +291xNBrBVNpGP+DTKqttVCL1OmLNIG+6KYnX3ZHu01yiPqFbQfXf5WRDLenVOavS
> +ot+3i9DAgBkcRcAtjOj4LaR0VknFBbVPFd5uRHg5h6h+u/N5GJG79G+dwfCMNYxd
> +AfvDbbnvRG15RjF+Cv6pgsH/76tuIMRQyV+dTZsXjAzlAcmgQWpzU/qlULRuJQ/7
> +TBj0/VLZjmmx6BEP3ojY+x1J96relc8geMJgEtslQIxq/H5COEBkEveegeGTLg==
> +-----END CERTIFICATE-----
> +=== /OU=GlobalSign Root CA - R3/O=GlobalSign/CN=GlobalSign
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1768,7 +1832,7 @@ WD9f
>
>  ### GlobalSign nv-sa
>
> -=== GlobalSign Root CA
> +=== /C=BE/O=GlobalSign nv-sa/OU=Root CA/CN=GlobalSign Root CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1812,7 +1876,7 @@ HMUfpIBvFSDJ3gyICh3WZlXi/EjJKSZp4A==
>
>  ### GoDaddy.com, Inc.
>
> -=== Go Daddy Root Certificate Authority - G2
> +=== /C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./CN=Go Daddy Root
> Certificate Authority - G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1855,39 +1919,9 @@ LPAvTK33sefOT6jEm0pUBsV/fdUID+Ic/n4XuKxe
>  4uJEvlz36hz1
>  -----END CERTIFICATE-----
>
> -### GTE Corporation
> -
> -=== GTE CyberTrust Global Root
> -Certificate:
> -    Data:
> -        Version: 1 (0x0)
> -        Serial Number: 421 (0x1a5)
> -    Signature Algorithm: md5WithRSAEncryption
> -        Validity
> -            Not Before: Aug 13 00:29:00 1998 GMT
> -            Not After : Aug 13 23:59:00 2018 GMT
> -        Subject: C=US, O=GTE Corporation, OU=GTE CyberTrust Solutions,
> Inc., CN=GTE CyberTrust Global Root
> -SHA1 Fingerprint=97:81:79:50:D8:1C:96:70:CC:34:D8:09:CF:79:44:31:
> 36:7E:F4:74
> -SHA256 Fingerprint=A5:31:25:18:8D:21:10:AA:96:4B:02:C7:B7:C6:DA:32:
> 03:17:08:94:E5:FB:71:FF:FB:66:67:D5:E6:81:0A:36
> ------BEGIN CERTIFICATE-----
> -MIICWjCCAcMCAgGlMA0GCSqGSIb3DQEBBAUAMHUxCzAJBgNVBAYTAlVTMRgwFgYD
> -VQQKEw9HVEUgQ29ycG9yYXRpb24xJzAlBgNVBAsTHkdURSBDeWJlclRydXN0IFNv
> -bHV0aW9ucywgSW5jLjEjMCEGA1UEAxMaR1RFIEN5YmVyVHJ1c3QgR2xvYmFsIFJv
> -b3QwHhcNOTgwODEzMDAyOTAwWhcNMTgwODEzMjM1OTAwWjB1MQswCQYDVQQGEwJV
> -UzEYMBYGA1UEChMPR1RFIENvcnBvcmF0aW9uMScwJQYDVQQLEx5HVEUgQ3liZXJU
> -cnVzdCBTb2x1dGlvbnMsIEluYy4xIzAhBgNVBAMTGkdURSBDeWJlclRydXN0IEds
> -b2JhbCBSb290MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCVD6C28FCc6HrH
> -iM3dFw4usJTQGz0O9pTAipTHBsiQl8i4ZBp6fmw8U+E3KHNgf7KXUwefU/ltWJTS
> -r41tiGeA5u2ylc9yMcqlHHK6XALnZELn+aks1joNrI1CqiQBOeacPwGFVw1Yh0X4
> -04Wqk2kmhXBIgD8SFcd5tB8FLztimQIDAQABMA0GCSqGSIb3DQEBBAUAA4GBAG3r
> -GwnpXtlR22ciYaQqPEh346B8pt5zohQDhT37qw4wxYMWM4ETCJ57NE7fQMh017l9
> -3PR2VX2bY1QY6fDq81yx2YtCHrnAlU66+tXifPVoYb+O7AWXX1uw16OFNMQkpw0P
> -lZPvy5TYnh+dXIVtx6quTx8itc2VrbqnzPmrC3p/
> ------END CERTIFICATE-----
> -
>  ### Internet Security Research Group
>
> -=== ISRG Root X1
> +=== /C=US/O=Internet Security Research Group/CN=ISRG Root X1
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1941,7 +1975,7 @@ emyPxgcYxn/eR44/KJ4EBs+lVDR3veyJm+kXQ99b
>
>  ### NetLock Kft.
>
> -=== NetLock Arany (Class Gold) F\U0151tan\FAs\EDtv\E1ny
> +=== /C=HU/L=Budapest/O=NetLock 
> Kft./OU=Tan\xC3\xBAs\xC3\xADtv\xC3\xA1nykiad\xC3\xB3k
> (Certification Services)/CN=NetLock Arany (Class Gold)
> F\xC5\x91tan\xC3\xBAs\xC3\xADtv\xC3\xA1ny
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -1987,7 +2021,7 @@ XjG4Kvte9nHfRCaexOYNkbQudZWAUWpLMKawYqGT
>
>  ### Network Solutions L.L.C.
>
> -=== Network Solutions Certificate Authority
> +=== /C=US/O=Network Solutions L.L.C./CN=Network Solutions Certificate
> Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2038,7 +2072,7 @@ pGxlaKFJdlxDydi8NmdspZS11My5vWo1ViHe2MPr
>
>  ### QuoVadis Limited
>
> -=== QuoVadis Root CA 1 G3
> +=== /C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 1 G3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2089,7 +2123,7 @@ ZgKAvQU6O0ec7AAmTPWIUb+oI38YB7AL7YsmoWTT
>  q1467HxpvMc7hU6eFbm0FU/DlXpY18ls6Wy58yljXrQs8C097Vpl4KlbQMJImYFt
>  nh8GKjwStIsPm6Ik8KaN1nrgS7ZklmOVhMJKzRwuJIczYOXD
>  -----END CERTIFICATE-----
> -=== QuoVadis Root CA 2
> +=== /C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2146,7 +2180,7 @@ ohEUGW6yhhtoPkg3Goi3XZZenMfvJ2II4pEZXNLx
>  4aOTHcyKJloJONDO1w2AFrR4pTqHTI2KpdVGl/IsELm8VCLAAVBpQ570su9t+Oza
>  8eOx79+Rj1QqCyXBJhnEUhAFZdWCEOrCMc0u
>  -----END CERTIFICATE-----
> -=== QuoVadis Root CA 2 G3
> +=== /C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 2 G3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2197,7 +2231,7 @@ KCLjsZWDzYWm3S8P52dSbrsvhXz1SnPnxT7AvSES
>  HVOyToV7BjjHLPj4sHKNJeV3UvQDHEimUF+IIDBu8oJDqz2XhOdT+yHBTw8imoa4
>  WSr2Rz0ZiC3oheGe7IUIarFsNMkd7EgrO3jtZsSOeWmD3n+M
>  -----END CERTIFICATE-----
> -=== QuoVadis Root CA 3
> +=== /C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2265,7 +2299,7 @@ Wy10QJLZYxkNc91pvGJHvOB0K7Lrfb5BG7XARsWh
>  mJlglFwjz1onl14LBQaTNx47aTbrqZ5hHY8y2o4M1nQ+ewkk2gF3R8Q7zTSMmfXK
>  4SVhM7JZG+Ju1zdXtg2pEto=
>  -----END CERTIFICATE-----
> -=== QuoVadis Root CA 3 G3
> +=== /C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 3 G3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2316,7 +2350,7 @@ DhcI00iX0HGS8A85PjRqHH3Y8iKuu2n0M7SmSFXR
>  PlopNLk9hM6xZdRZkZFWdSHBd575euFgndOtBBj0fOtek49TSiIp+EgrPk2GrFt/
>  ywaZWWDYWGWVjUTR939+J399roD1B0y2PpxxVJkES/1Y+Zj0
>  -----END CERTIFICATE-----
> -=== QuoVadis Root Certification Authority
> +=== /C=BM/O=QuoVadis Limited/OU=Root Certification Authority/CN=QuoVadis
> Root Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2386,7 +2420,7 @@ SnQ2+Q==
>
>  ### Starfield Technologies, Inc.
>
> -=== Starfield Class 2 Certification Authority
> +=== /C=US/O=Starfield Technologies, Inc./OU=Starfield Class 2
> Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2432,7 +2466,7 @@ xy16paq8U4Zt3VekyvggQQto8PT7dL5WXXp59fkd
>  VSJYACPq4xJDKVtHCN2MQWplBqjlIapBtJUhlbl90TSrE9atvNziPTnNvT51cKEY
>  WQPJIrSPnNVeKtelttQKbfi3QBFGmh95DmK/D5fs4C8fF5Q=
>  -----END CERTIFICATE-----
> -=== Starfield Root Certificate Authority - G2
> +=== /C=US/ST=Arizona/L=Scottsdale/O=Starfield Technologies,
> Inc./CN=Starfield Root Certificate Authority - G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2474,7 +2508,7 @@ sHU48TRqneSfioYmUeYs0cYtbpUgSpIB7LiKZ3sx
>  pL/QlwVKvOoYKAKQvVR4CSFx09F9HdkWsKlhPdAKACL8x3vLCWRFCztAgfd9fDL1
>  mMpYjn0q7pBZc2T5NnReJaH1ZgUufzkVqSr7UIuOhWn0
>  -----END CERTIFICATE-----
> -=== Starfield Services Root Certificate Authority - G2
> +=== /C=US/ST=Arizona/L=Scottsdale/O=Starfield Technologies,
> Inc./CN=Starfield Services Root Certificate Authority - G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2520,85 +2554,7 @@ sSi6
>
>  ### StartCom Ltd.
>
> -=== StartCom Certification Authority
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 45 (0x2d)
> -    Signature Algorithm: sha256WithRSAEncryption
> -        Validity
> -            Not Before: Sep 17 19:46:37 2006 GMT
> -            Not After : Sep 17 19:46:36 2036 GMT
> -        Subject: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate
> Signing, CN=StartCom Certification Authority
> -        X509v3 extensions:
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Subject Key Identifier:
> -                4E:0B:EF:1A:A4:40:5B:A5:17:69:
> 87:30:CA:34:68:43:D0:41:AE:F2
> -            X509v3 Authority Key Identifier:
> -                keyid:4E:0B:EF:1A:A4:40:5B:A5:
> 17:69:87:30:CA:34:68:43:D0:41:AE:F2
> -
> -            X509v3 Certificate Policies:
> -                Policy: 1.3.6.1.4.1.23223.1.1.1
> -                  CPS: http://www.startssl.com/policy.pdf
> -                  CPS: http://www.startssl.com/intermediate.pdf
> -                  User Notice:
> -                    Organization: Start Commercial (StartCom) Ltd.
> -                    Number: 1
> -                    Explicit Text: Limited Liability, read the section
> *Legal Limitations* of the StartCom Certification Authority Policy
> available at http://www.startssl.com/policy.pdf
> -
> -            Netscape Cert Type:
> -                SSL CA, S/MIME CA, Object Signing CA
> -            Netscape Comment:
> -                StartCom Free SSL Certification Authority
> -SHA1 Fingerprint=A3:F1:33:3F:E2:42:BF:CF:C5:D1:4E:8F:39:42:98:40:
> 68:10:D1:A0
> -SHA256 Fingerprint=E1:78:90:EE:09:A3:FB:F4:F4:8B:9C:41:4A:17:D6:37:
> B7:A5:06:47:E9:BC:75:23:22:72:7F:CC:17:42:A9:11
> ------BEGIN CERTIFICATE-----
> -MIIHhzCCBW+gAwIBAgIBLTANBgkqhkiG9w0BAQsFADB9MQswCQYDVQQGEwJJTDEW
> -MBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMiU2VjdXJlIERpZ2l0YWwg
> -Q2VydGlmaWNhdGUgU2lnbmluZzEpMCcGA1UEAxMgU3RhcnRDb20gQ2VydGlmaWNh
> -dGlvbiBBdXRob3JpdHkwHhcNMDYwOTE3MTk0NjM3WhcNMzYwOTE3MTk0NjM2WjB9
> -MQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMi
> -U2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzEpMCcGA1UEAxMgU3Rh
> -cnRDb20gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUA
> -A4ICDwAwggIKAoICAQDBiNsJvGxGfHiflXu1M5DycmLWwTYgIiRezul38kMKogZk
> -pMyONvg45iPwbm2xPN1yo4UcodM9tDMr0y+v/uqwQVlntsQGfQqedIXWeUyAN3rf
> -OQVSWff0G0ZDpNKFhdLDcfN1YjS6LIp/Ho/u7TTQEceWzVI9ujPW3U3eCztKS5/C
> -Ji/6tRYccjV3yjxd5srhJosaNnZcAdt0FCX+7bWgiA/deMotHweXMAEtcnn6RtYT
> -Kqi5pquDSR3l8u/d5AGOGAqPY1MWhWKpDhk6zLVmpsJrdAfkK+F2PrRt2PZE4XNi
> -HzvEvqBTViVsUQn3qqvKv3b9bZvzndu/PWa8DFaqr5hIlTpL36dYUNk4dalb6kMM
> -Av+Z6+hsTXBbKWWc3apdzK8BMewM69KN6Oqce+Zu9ydmDBpI125C4z/eIT574Q1w
> -+2OqqGwaVLRcJXrJosmLFqa7LH4XXgVNWG4SHQHuEhANxjJ/GP/89PrNbpHoNkm+
> -Gkhpi8KWTRoSsmkXwQqQ1vp5Iki/untp+HDH+no32NgN0nZPV/+Qt+OR0t3vwmC3
> -Zzrd/qqc8NSLf3Iizsafl7b4r4qgEKjZ+xjGtrVcUjyJthkqcwEKDwOzEmDyei+B
> -26Nu/yYwl/WL3YlXtq09s68rxbd2AvCl1iuahhQqcvbjM4xdCUsT37uMdBNSSwID
> -AQABo4ICEDCCAgwwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHQYD
> -VR0OBBYEFE4L7xqkQFulF2mHMMo0aEPQQa7yMB8GA1UdIwQYMBaAFE4L7xqkQFul
> -F2mHMMo0aEPQQa7yMIIBWgYDVR0gBIIBUTCCAU0wggFJBgsrBgEEAYG1NwEBATCC
> -ATgwLgYIKwYBBQUHAgEWImh0dHA6Ly93d3cuc3RhcnRzc2wuY29tL3BvbGljeS5w
> -ZGYwNAYIKwYBBQUHAgEWKGh0dHA6Ly93d3cuc3RhcnRzc2wuY29tL2ludGVybWVk
> -aWF0ZS5wZGYwgc8GCCsGAQUFBwICMIHCMCcWIFN0YXJ0IENvbW1lcmNpYWwgKFN0
> -YXJ0Q29tKSBMdGQuMAMCAQEagZZMaW1pdGVkIExpYWJpbGl0eSwgcmVhZCB0aGUg
> -c2VjdGlvbiAqTGVnYWwgTGltaXRhdGlvbnMqIG9mIHRoZSBTdGFydENvbSBDZXJ0
> -aWZpY2F0aW9uIEF1dGhvcml0eSBQb2xpY3kgYXZhaWxhYmxlIGF0IGh0dHA6Ly93
> -d3cuc3RhcnRzc2wuY29tL3BvbGljeS5wZGYwEQYJYIZIAYb4QgEBBAQDAgAHMDgG
> -CWCGSAGG+EIBDQQrFilTdGFydENvbSBGcmVlIFNTTCBDZXJ0aWZpY2F0aW9uIEF1
> -dGhvcml0eTANBgkqhkiG9w0BAQsFAAOCAgEAjo/n3JR5fPGFf59Jb2vKXfuM/gTF
> -wWLRfUKKvFO3lANmMD+x5wqnUCBVJX92ehQN6wQOQOY+2IirByeDqXWmN3PH/UvS
> -Ta0XQMhGvjt/UfzDtgUx3M2FIk5xt/JxXrAaxrqTi3iSSoX4eA+D/i+tLPfkpLst
> -0OcNOrg+zvZ49q5HJMqjNTbOx8aHmNrs++myziebiMMEofYLWWivydsQD032ZGNc
> -pRJvkrKTlMeIFw6Ttn5ii5B/q06f/ON1FE8qMt9bDeD1e5MNq6HPh+GlBEXoPBKl
> -CcWw0bdT82AUuoVpaiF8H3VhFyAXe2w7QSlc4axa0c2Mm+tgHRns9+Ww2vl5GKVF
> -P0lDV9LdJNUso/2RjSe15esUBppMeyG7Oq0wBhjA2MFrLH9ZXF2RsXAiV+uKa0hK
> -1Q8p7MZAwC+ITGgBF3f0JBlPvfrhsiAhS90a2Cl9qrjeVOwhVYBsHvUwyKMQ5bLm
> -KhQxw4UtjJixhlpPiVktucf3HMiKf8CdBUrmQk9io20ppB+Fq9vlgcitKj1MXVuE
> -JnHEhV5xJMqlG2zYYdMa4FTbzrqpMrUi9nNBCV24F10OD5mQ1kfabwo6YigUZ4LZ
> -8dCAWZvLMdibD4x3TrVoivJs9iQOLWxwxXPR3hTQcY+203sC9uO41Alua551hDnm
> -fyWl8kgAwKQB2j8=
> ------END CERTIFICATE-----
> -=== StartCom Certification Authority G2
> +=== /C=IL/O=StartCom Ltd./CN=StartCom Certification Authority G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2648,10 +2604,88 @@ IxKVCCIcl85bBu4M4ru8H0ST9tg4RQUh7eStqxK2
>  hdVddLHRDiBYmxOlsGOm7XtH/UVVMKTumtTm4ofvmMkyghEpIrwACjFeLQ/Ajulr
>  so8uBtjRkcfGEvRM/TAXw8HaOFvjqermobp573PYtlNXLfbQ4ddI
>  -----END CERTIFICATE-----
> +=== /C=IL/O=StartCom Ltd./OU=Secure Digital Certificate
> Signing/CN=StartCom Certification Authority
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number: 45 (0x2d)
> +    Signature Algorithm: sha256WithRSAEncryption
> +        Validity
> +            Not Before: Sep 17 19:46:37 2006 GMT
> +            Not After : Sep 17 19:46:36 2036 GMT
> +        Subject: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate
> Signing, CN=StartCom Certification Authority
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Subject Key Identifier:
> +                4E:0B:EF:1A:A4:40:5B:A5:17:69:
> 87:30:CA:34:68:43:D0:41:AE:F2
> +            X509v3 Authority Key Identifier:
> +                keyid:4E:0B:EF:1A:A4:40:5B:A5:
> 17:69:87:30:CA:34:68:43:D0:41:AE:F2
> +
> +            X509v3 Certificate Policies:
> +                Policy: 1.3.6.1.4.1.23223.1.1.1
> +                  CPS: http://www.startssl.com/policy.pdf
> +                  CPS: http://www.startssl.com/intermediate.pdf
> +                  User Notice:
> +                    Organization: Start Commercial (StartCom) Ltd.
> +                    Number: 1
> +                    Explicit Text: Limited Liability, read the section
> *Legal Limitations* of the StartCom Certification Authority Policy
> available at http://www.startssl.com/policy.pdf
> +
> +            Netscape Cert Type:
> +                SSL CA, S/MIME CA, Object Signing CA
> +            Netscape Comment:
> +                StartCom Free SSL Certification Authority
> +SHA1 Fingerprint=A3:F1:33:3F:E2:42:BF:CF:C5:D1:4E:8F:39:42:98:40:
> 68:10:D1:A0
> +SHA256 Fingerprint=E1:78:90:EE:09:A3:FB:F4:F4:8B:9C:41:4A:17:D6:37:
> B7:A5:06:47:E9:BC:75:23:22:72:7F:CC:17:42:A9:11
> +-----BEGIN CERTIFICATE-----
> +MIIHhzCCBW+gAwIBAgIBLTANBgkqhkiG9w0BAQsFADB9MQswCQYDVQQGEwJJTDEW
> +MBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMiU2VjdXJlIERpZ2l0YWwg
> +Q2VydGlmaWNhdGUgU2lnbmluZzEpMCcGA1UEAxMgU3RhcnRDb20gQ2VydGlmaWNh
> +dGlvbiBBdXRob3JpdHkwHhcNMDYwOTE3MTk0NjM3WhcNMzYwOTE3MTk0NjM2WjB9
> +MQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMi
> +U2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzEpMCcGA1UEAxMgU3Rh
> +cnRDb20gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUA
> +A4ICDwAwggIKAoICAQDBiNsJvGxGfHiflXu1M5DycmLWwTYgIiRezul38kMKogZk
> +pMyONvg45iPwbm2xPN1yo4UcodM9tDMr0y+v/uqwQVlntsQGfQqedIXWeUyAN3rf
> +OQVSWff0G0ZDpNKFhdLDcfN1YjS6LIp/Ho/u7TTQEceWzVI9ujPW3U3eCztKS5/C
> +Ji/6tRYccjV3yjxd5srhJosaNnZcAdt0FCX+7bWgiA/deMotHweXMAEtcnn6RtYT
> +Kqi5pquDSR3l8u/d5AGOGAqPY1MWhWKpDhk6zLVmpsJrdAfkK+F2PrRt2PZE4XNi
> +HzvEvqBTViVsUQn3qqvKv3b9bZvzndu/PWa8DFaqr5hIlTpL36dYUNk4dalb6kMM
> +Av+Z6+hsTXBbKWWc3apdzK8BMewM69KN6Oqce+Zu9ydmDBpI125C4z/eIT574Q1w
> ++2OqqGwaVLRcJXrJosmLFqa7LH4XXgVNWG4SHQHuEhANxjJ/GP/89PrNbpHoNkm+
> +Gkhpi8KWTRoSsmkXwQqQ1vp5Iki/untp+HDH+no32NgN0nZPV/+Qt+OR0t3vwmC3
> +Zzrd/qqc8NSLf3Iizsafl7b4r4qgEKjZ+xjGtrVcUjyJthkqcwEKDwOzEmDyei+B
> +26Nu/yYwl/WL3YlXtq09s68rxbd2AvCl1iuahhQqcvbjM4xdCUsT37uMdBNSSwID
> +AQABo4ICEDCCAgwwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHQYD
> +VR0OBBYEFE4L7xqkQFulF2mHMMo0aEPQQa7yMB8GA1UdIwQYMBaAFE4L7xqkQFul
> +F2mHMMo0aEPQQa7yMIIBWgYDVR0gBIIBUTCCAU0wggFJBgsrBgEEAYG1NwEBATCC
> +ATgwLgYIKwYBBQUHAgEWImh0dHA6Ly93d3cuc3RhcnRzc2wuY29tL3BvbGljeS5w
> +ZGYwNAYIKwYBBQUHAgEWKGh0dHA6Ly93d3cuc3RhcnRzc2wuY29tL2ludGVybWVk
> +aWF0ZS5wZGYwgc8GCCsGAQUFBwICMIHCMCcWIFN0YXJ0IENvbW1lcmNpYWwgKFN0
> +YXJ0Q29tKSBMdGQuMAMCAQEagZZMaW1pdGVkIExpYWJpbGl0eSwgcmVhZCB0aGUg
> +c2VjdGlvbiAqTGVnYWwgTGltaXRhdGlvbnMqIG9mIHRoZSBTdGFydENvbSBDZXJ0
> +aWZpY2F0aW9uIEF1dGhvcml0eSBQb2xpY3kgYXZhaWxhYmxlIGF0IGh0dHA6Ly93
> +d3cuc3RhcnRzc2wuY29tL3BvbGljeS5wZGYwEQYJYIZIAYb4QgEBBAQDAgAHMDgG
> +CWCGSAGG+EIBDQQrFilTdGFydENvbSBGcmVlIFNTTCBDZXJ0aWZpY2F0aW9uIEF1
> +dGhvcml0eTANBgkqhkiG9w0BAQsFAAOCAgEAjo/n3JR5fPGFf59Jb2vKXfuM/gTF
> +wWLRfUKKvFO3lANmMD+x5wqnUCBVJX92ehQN6wQOQOY+2IirByeDqXWmN3PH/UvS
> +Ta0XQMhGvjt/UfzDtgUx3M2FIk5xt/JxXrAaxrqTi3iSSoX4eA+D/i+tLPfkpLst
> +0OcNOrg+zvZ49q5HJMqjNTbOx8aHmNrs++myziebiMMEofYLWWivydsQD032ZGNc
> +pRJvkrKTlMeIFw6Ttn5ii5B/q06f/ON1FE8qMt9bDeD1e5MNq6HPh+GlBEXoPBKl
> +CcWw0bdT82AUuoVpaiF8H3VhFyAXe2w7QSlc4axa0c2Mm+tgHRns9+Ww2vl5GKVF
> +P0lDV9LdJNUso/2RjSe15esUBppMeyG7Oq0wBhjA2MFrLH9ZXF2RsXAiV+uKa0hK
> +1Q8p7MZAwC+ITGgBF3f0JBlPvfrhsiAhS90a2Cl9qrjeVOwhVYBsHvUwyKMQ5bLm
> +KhQxw4UtjJixhlpPiVktucf3HMiKf8CdBUrmQk9io20ppB+Fq9vlgcitKj1MXVuE
> +JnHEhV5xJMqlG2zYYdMa4FTbzrqpMrUi9nNBCV24F10OD5mQ1kfabwo6YigUZ4LZ
> +8dCAWZvLMdibD4x3TrVoivJs9iQOLWxwxXPR3hTQcY+203sC9uO41Alua551hDnm
> +fyWl8kgAwKQB2j8=
> +-----END CERTIFICATE-----
>
>  ### SwissSign AG
>
> -=== SwissSign Gold CA - G2
> +=== /C=CH/O=SwissSign AG/CN=SwissSign Gold CA - G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2710,66 +2744,7 @@ Ld6leNcG2mqeSz53OiATIgHQv2ieY2BrNU0Lbbqh
>  ZMEBnunKoGqYDs/YYPIvSbjkQuE4NRb0yG5P94FW6LqjviOvrv1vA+ACOzB2+htt
>  Qc8Bsem4yWb02ybzOqR08kkkW8mw0FfB+j564ZfJ
>  -----END CERTIFICATE-----
> -=== SwissSign Platinum CA - G2
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 5670595323396054351 (0x4eb200670c035d4f)
> -    Signature Algorithm: sha1WithRSAEncryption
> -        Validity
> -            Not Before: Oct 25 08:36:00 2006 GMT
> -            Not After : Oct 25 08:36:00 2036 GMT
> -        Subject: C=CH, O=SwissSign AG, CN=SwissSign Platinum CA - G2
> -        X509v3 extensions:
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Subject Key Identifier:
> -                50:AF:CC:07:87:15:47:6F:38:C5:
> B4:65:D1:DE:95:AA:E9:DF:9C:CC
> -            X509v3 Authority Key Identifier:
> -                keyid:50:AF:CC:07:87:15:47:6F:
> 38:C5:B4:65:D1:DE:95:AA:E9:DF:9C:CC
> -
> -            X509v3 Certificate Policies:
> -                Policy: 2.16.756.1.89.1.1.1.1
> -                  CPS: http://repository.swisssign.com/
> -
> -SHA1 Fingerprint=56:E0:FA:C0:3B:8F:18:23:55:18:E5:D3:11:CA:E8:C2:
> 43:31:AB:66
> -SHA256 Fingerprint=3B:22:2E:56:67:11:E9:92:30:0D:C0:B1:5A:B9:47:3D:
> AF:DE:F8:C8:4D:0C:EF:7D:33:17:B4:C1:82:1D:14:36
> ------BEGIN CERTIFICATE-----
> -MIIFwTCCA6mgAwIBAgIITrIAZwwDXU8wDQYJKoZIhvcNAQEFBQAwSTELMAkGA1UE
> -BhMCQ0gxFTATBgNVBAoTDFN3aXNzU2lnbiBBRzEjMCEGA1UEAxMaU3dpc3NTaWdu
> -IFBsYXRpbnVtIENBIC0gRzIwHhcNMDYxMDI1MDgzNjAwWhcNMzYxMDI1MDgzNjAw
> -WjBJMQswCQYDVQQGEwJDSDEVMBMGA1UEChMMU3dpc3NTaWduIEFHMSMwIQYDVQQD
> -ExpTd2lzc1NpZ24gUGxhdGludW0gQ0EgLSBHMjCCAiIwDQYJKoZIhvcNAQEBBQAD
> -ggIPADCCAgoCggIBAMrfogLi2vj8Bxax3mCq3pZcZB/HL37PZ/pEQtZ2Y5Wu669y
> -IIpFR4ZieIbWIDkm9K6j/SPnpZy1IiEZtzeTIsBQnIJ71NUERFzLtMKfkr4k2Htn
> -IuJpX+UFeNSH2XFwMyVTtIc7KZAoNppVRDBopIOXfw0enHb/FZ1glwCNioUD7IC+
> -6ixuEFGSzH7VozPY1kneWCqv9hbrS3uQMpe5up1Y8fhXSQQeol0GcN1x2/ndi5ob
> -jM89o03Oy3z2u5yg+gnOI2Ky6Q0f4nIoj5+saCB9bzuohTEJfwvH6GXp43gOCWcw
> -izSC+13gzJ2BbWLuCB4ELE6b7P6pT1/9aXjvCR+htL/68++QHkwFix7qepF6w9fl
> -+zC8bBsQWJj3Gl/QKTIDE0ZNYWqFTFJ0LwYfexHihJfGmfNtf9dng34TaNhxKFrY
> -zt3oEBSa/m0jh26OWnA81Y0JAKeqvLAxN23IhBQeW71FYyBrS3SMvds6DsHPWhaP
> -pZjydomyExI7C3d3rLvlPClKknLKYRorXkzig3R3+jVIeoVNjZpTxN94ypeRSCtF
> -KwH3HBqi7Ri6Cr2D+m+8jVeTO9TUps4e8aCxzqv9KyiaTxvXw3LbpMS/XUz13XuW
> -ae5ogObnmLo2t/5u7Su9IPhlGdpVCX4l3P5hYnL5fhgC72O00Puv5TtjjGePAgMB
> -AAGjgawwgakwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0O
> -BBYEFFCvzAeHFUdvOMW0ZdHelarp35zMMB8GA1UdIwQYMBaAFFCvzAeHFUdvOMW0
> -ZdHelarp35zMMEYGA1UdIAQ/MD0wOwYJYIV0AVkBAQEBMC4wLAYIKwYBBQUHAgEW
> -IGh0dHA6Ly9yZXBvc2l0b3J5LnN3aXNzc2lnbi5jb20vMA0GCSqGSIb3DQEBBQUA
> -A4ICAQAIhab1Fgz8RBrBY+D5VUYI/HAcQiiWjrfFwUF1TglxeeVtlspLpYhg0DB0
> -uMoI3LQwnkAHFmtllXcBrqS3NQuB2nEVqXQXOHtYyvkv+8Bldo1bAbl93oI9ZLi+
> -FHSjClTTLJUYFzX1UWs/j6KWYTl4a0vlpqD4U99REJNi54Av4tHgvI42Rncz7Lj7
> -jposiU0xEQ8mngS7twSNC/K5/FqdOxa3L8iYq/6KUFkuozv8KV2LwUvJ4ooTHbG/
> -u0IdUt1O2BReEMYxB+9xJ/cbOQncguqLs5WGXv312l0xpuAxtpTmREl0xRbl9x8D
> -YSjFyMsSoEJL+WuICI20MhjzdZ/EfwBPBZWcoxcCw7NTm6ogOSkrZvqdr16zktK1
> -puEa+S1BaYEUtLS17Yk9zvupnTVCRLEcFHOBzyoBNZox1S2PbYTfgE1X4z/FhHXa
> -icYwu+uPyyIIoK6q8QNsOktNCaUOcsZWayFCTiMlFGiudgp8DAdwZPmaL/YFOSbG
> -DI8Zf0NebvRbFS/bYV3mZy8/CJT5YLSYMdp08YSTcU1f+2BY0fvEwW2JorsgH51x
> -kcsymxM9Pn2SUjWskpSi0xjCfMfqr3YFFt1nJ8J+HAciIfNAChs0B0QTwoRqjt8Z
> -Wr9/6x3iGjjRXK9HkmuAtTClyY3YqzGBH9/CZjfTk6mFhnll0g==
> ------END CERTIFICATE-----
> -=== SwissSign Silver CA - G2
> +=== /C=CH/O=SwissSign AG/CN=SwissSign Silver CA - G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2831,7 +2806,7 @@ tGMU0gYqZ4yD9c7qB9iaah7s5Aq7KkzrCWA5zspi
>
>  ### T-Systems Enterprise Services GmbH
>
> -=== T-TeleSec GlobalRoot Class 2
> +=== /C=DE/O=T-Systems Enterprise Services GmbH/OU=T-Systems Trust
> Center/CN=T-TeleSec GlobalRoot Class 2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2873,7 +2848,7 @@ g1XqfMIpiRvpb7PO4gWEyS8+eIVibslfwXhjdFjA
>  9noHV8cigwUtPJslJj0Ys6lDfMjIq2SPDqO/nBudMNva0Bkuqjzx+zOAduTNrRlP
>  BSeOE6Fuwg==
>  -----END CERTIFICATE-----
> -=== T-TeleSec GlobalRoot Class 3
> +=== /C=DE/O=T-Systems Enterprise Services GmbH/OU=T-Systems Trust
> Center/CN=T-TeleSec GlobalRoot Class 3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -2916,80 +2891,45 @@ e9eiPZaGzPImNC1qkp2aGtAw4l1OBLBfiyB+d8E9
>  TpPDpFQUWw==
>  -----END CERTIFICATE-----
>
> -### Thawte Consulting cc
> +### thawte, Inc.
>
> -=== Thawte Premium Server CA
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> -    Signature Algorithm: md5WithRSAEncryption
> -        Validity
> -            Not Before: Aug  1 00:00:00 1996 GMT
> -            Not After : Dec 31 23:59:59 2020 GMT
> -        Subject: C=ZA, ST=Western Cape, L=Cape Town, O=Thawte Consulting
> cc, OU=Certification Services Division, CN=Thawte Premium Server
> CA/[email protected]
> -        X509v3 extensions:
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -SHA1 Fingerprint=62:7F:8D:78:27:65:63:99:D2:7D:7F:90:44:C9:FE:B3:
> F3:3E:FA:9A
> -SHA256 Fingerprint=AB:70:36:36:5C:71:54:AA:29:C2:C2:9F:5D:41:91:16:
> 3B:16:2A:22:25:01:13:57:D5:6D:07:FF:A7:BC:1F:72
> ------BEGIN CERTIFICATE-----
> -MIIDJzCCApCgAwIBAgIBATANBgkqhkiG9w0BAQQFADCBzjELMAkGA1UEBhMCWkEx
> -FTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTESMBAGA1UEBxMJQ2FwZSBUb3duMR0wGwYD
> -VQQKExRUaGF3dGUgQ29uc3VsdGluZyBjYzEoMCYGA1UECxMfQ2VydGlmaWNhdGlv
> -biBTZXJ2aWNlcyBEaXZpc2lvbjEhMB8GA1UEAxMYVGhhd3RlIFByZW1pdW0gU2Vy
> -dmVyIENBMSgwJgYJKoZIhvcNAQkBFhlwcmVtaXVtLXNlcnZlckB0aGF3dGUuY29t
> -MB4XDTk2MDgwMTAwMDAwMFoXDTIwMTIzMTIzNTk1OVowgc4xCzAJBgNVBAYTAlpB
> -MRUwEwYDVQQIEwxXZXN0ZXJuIENhcGUxEjAQBgNVBAcTCUNhcGUgVG93bjEdMBsG
> -A1UEChMUVGhhd3RlIENvbnN1bHRpbmcgY2MxKDAmBgNVBAsTH0NlcnRpZmljYXRp
> -b24gU2VydmljZXMgRGl2aXNpb24xITAfBgNVBAMTGFRoYXd0ZSBQcmVtaXVtIFNl
> -cnZlciBDQTEoMCYGCSqGSIb3DQEJARYZcHJlbWl1bS1zZXJ2ZXJAdGhhd3RlLmNv
> -bTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEA0jY2aovXwlue2oFBYo847kkE
> -VdbQ7xwblRZH7xhINTpS9CtqBo87L+pW46+GjZ4X9560ZXUCTe/LCaIhUdib0GfQ
> -ug2SBhRz1JPLlyoAnFxODLz6FVL88kRu2hFKbgifLy3j+ao6hnO2RlNYyIkFvYMR
> -uHM/qgeN9EJN50CdHDcCAwEAAaMTMBEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG
> -9w0BAQQFAAOBgQAmSCwWwlj66BZ0DKqqX1Q/8tfJeGBeXm43YyJ3Nn6yF8Q0ufUI
> -hfzJATj/Tb7yFkJD57taRvvBxhEf8UqwKEbJw8RCfbz6q1lu1bdRiBHjpIUZa4JM
> -pAwSremkrj/xw0llmozFyD4lt5SZu5IycQfwhl7tUCemDaYj+bvLpgcUQg==
> ------END CERTIFICATE-----
> -=== Thawte Server CA
> +=== /C=US/O=thawte, Inc./OU=(c) 2007 thawte, Inc. - For authorized use
> only/CN=thawte Primary Root CA - G2
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> -        Serial Number: 1 (0x1)
> -    Signature Algorithm: md5WithRSAEncryption
> +        Serial Number:
> +            35:fc:26:5c:d9:84:4f:c9:3d:26:3d:57:9b:ae:d7:56
> +    Signature Algorithm: ecdsa-with-SHA384
>          Validity
> -            Not Before: Aug  1 00:00:00 1996 GMT
> -            Not After : Dec 31 23:59:59 2020 GMT
> -        Subject: C=ZA, ST=Western Cape, L=Cape Town, O=Thawte Consulting
> cc, OU=Certification Services Division, CN=Thawte Server CA/emailAddress=
> [email protected]
> +            Not Before: Nov  5 00:00:00 2007 GMT
> +            Not After : Jan 18 23:59:59 2038 GMT
> +        Subject: C=US, O=thawte, Inc., OU=(c) 2007 thawte, Inc. - For
> authorized use only, CN=thawte Primary Root CA - G2
>          X509v3 extensions:
>              X509v3 Basic Constraints: critical
>                  CA:TRUE
> -SHA1 Fingerprint=23:E5:94:94:51:95:F2:41:48:03:B4:D5:64:D2:A3:A3:
> F5:D8:8B:8C
> -SHA256 Fingerprint=B4:41:0B:73:E2:E6:EA:CA:47:FB:C4:2F:8F:A4:01:8A:
> F4:38:1D:C5:4C:FA:A8:44:50:46:1E:ED:09:45:4D:E9
> ------BEGIN CERTIFICATE-----
> -MIIDEzCCAnygAwIBAgIBATANBgkqhkiG9w0BAQQFADCBxDELMAkGA1UEBhMCWkEx
> -FTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTESMBAGA1UEBxMJQ2FwZSBUb3duMR0wGwYD
> -VQQKExRUaGF3dGUgQ29uc3VsdGluZyBjYzEoMCYGA1UECxMfQ2VydGlmaWNhdGlv
> -biBTZXJ2aWNlcyBEaXZpc2lvbjEZMBcGA1UEAxMQVGhhd3RlIFNlcnZlciBDQTEm
> -MCQGCSqGSIb3DQEJARYXc2VydmVyLWNlcnRzQHRoYXd0ZS5jb20wHhcNOTYwODAx
> -MDAwMDAwWhcNMjAxMjMxMjM1OTU5WjCBxDELMAkGA1UEBhMCWkExFTATBgNVBAgT
> -DFdlc3Rlcm4gQ2FwZTESMBAGA1UEBxMJQ2FwZSBUb3duMR0wGwYDVQQKExRUaGF3
> -dGUgQ29uc3VsdGluZyBjYzEoMCYGA1UECxMfQ2VydGlmaWNhdGlvbiBTZXJ2aWNl
> -cyBEaXZpc2lvbjEZMBcGA1UEAxMQVGhhd3RlIFNlcnZlciBDQTEmMCQGCSqGSIb3
> -DQEJARYXc2VydmVyLWNlcnRzQHRoYXd0ZS5jb20wgZ8wDQYJKoZIhvcNAQEBBQAD
> -gY0AMIGJAoGBANOkUG7I/1Zr5s9dtuoMaHVHoqrC2oQl/Kj0R1HahbUgdJSGHg91
> -yekIYfUGbTBuFRkC6VLAYttNmZ7iagxEOM3+vuNkCXDF/rFrKbYvScg71CcEJRCX
> -L+eQbcAoQpnXTEPew/UhbVSfXcNY4cDk2VuwuNy0e982OsK1ZiIS1ocNAgMBAAGj
> -EzARMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQEEBQADgYEAB/pMaVz7lcxG
> -7oWDTSEwjsrZqG9JGubaUeNgcGyEYRGhGshIPllDfU+VPaGLtwtimHp1it2ITk6e
> -QNuozDJ0uW8NxuOzRAvZim+aKZuZGCg70eNAKJpaPNW15yAbi8qkq43pUdniTCxZ
> -qdq5snUb9kLy78fyGPmJvKP/iiMucEc=
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            X509v3 Subject Key Identifier:
> +                9A:D8:00:30:00:E7:6B:7F:85:18:
> EE:8B:B6:CE:8A:0C:F8:11:E1:BB
> +SHA1 Fingerprint=AA:DB:BC:22:23:8F:C4:01:A1:27:BB:38:DD:F4:1D:DB:
> 08:9E:F0:12
> +SHA256 Fingerprint=A4:31:0D:50:AF:18:A6:44:71:90:37:2A:86:AF:AF:8B:
> 95:1F:FB:43:1D:83:7F:1E:56:88:B4:59:71:ED:15:57
> +-----BEGIN CERTIFICATE-----
> +MIICiDCCAg2gAwIBAgIQNfwmXNmET8k9Jj1Xm67XVjAKBggqhkjOPQQDAzCBhDEL
> +MAkGA1UEBhMCVVMxFTATBgNVBAoTDHRoYXd0ZSwgSW5jLjE4MDYGA1UECxMvKGMp
> +IDIwMDcgdGhhd3RlLCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxJDAi
> +BgNVBAMTG3RoYXd0ZSBQcmltYXJ5IFJvb3QgQ0EgLSBHMjAeFw0wNzExMDUwMDAw
> +MDBaFw0zODAxMTgyMzU5NTlaMIGEMQswCQYDVQQGEwJVUzEVMBMGA1UEChMMdGhh
> +d3RlLCBJbmMuMTgwNgYDVQQLEy8oYykgMjAwNyB0aGF3dGUsIEluYy4gLSBGb3Ig
> +YXV0aG9yaXplZCB1c2Ugb25seTEkMCIGA1UEAxMbdGhhd3RlIFByaW1hcnkgUm9v
> +dCBDQSAtIEcyMHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEotWcgnuVnfFSeIf+iha/
> +BebfowJPDQfGAFG6DAJSLSKkQjnE/o/qycG+1E3/n3qe4rF8mq2nhglzh9HnmuN6
> +papu+7qzcMBniKI11KOasf2twu8x+qi58/sIxpHR+ymVo0IwQDAPBgNVHRMBAf8E
> +BTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQUmtgAMADna3+FGO6Lts6K
> +DPgR4bswCgYIKoZIzj0EAwMDaQAwZgIxAN344FdHW6fmCsO99YCKlzUNG4k8VIZ3
> +KMqh9HneteY4sPBlcIx/AlTCv//YoT7ZzwIxAMSNlPzcU9LcnXgWHxUzI1NS41ox
> +XZ3Krr0TKUQNJ1uo52icEvdYPy5yAlejj6EULg==
>  -----END CERTIFICATE-----
> -
> -### thawte, Inc.
> -
> -=== thawte Primary Root CA
> +=== /C=US/O=thawte, Inc./OU=Certification Services Division/OU=(c) 2006
> thawte, Inc. - For authorized use only/CN=thawte Primary Root CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3034,43 +2974,7 @@ xPcW6cTYcvnIc3zfFi8VqT79aie2oetaupgf1eNN
>  LHbTY5xZ3Y+m4Q6gLkH3LpVHz7z9M/P2C2F+fpErgUfCJzDupxBdN49cOSvkBPB7
>  jVaMaA==
>  -----END CERTIFICATE-----
> -=== thawte Primary Root CA - G2
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number:
> -            35:fc:26:5c:d9:84:4f:c9:3d:26:3d:57:9b:ae:d7:56
> -    Signature Algorithm: ecdsa-with-SHA384
> -        Validity
> -            Not Before: Nov  5 00:00:00 2007 GMT
> -            Not After : Jan 18 23:59:59 2038 GMT
> -        Subject: C=US, O=thawte, Inc., OU=(c) 2007 thawte, Inc. - For
> authorized use only, CN=thawte Primary Root CA - G2
> -        X509v3 extensions:
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            X509v3 Subject Key Identifier:
> -                9A:D8:00:30:00:E7:6B:7F:85:18:
> EE:8B:B6:CE:8A:0C:F8:11:E1:BB
> -SHA1 Fingerprint=AA:DB:BC:22:23:8F:C4:01:A1:27:BB:38:DD:F4:1D:DB:
> 08:9E:F0:12
> -SHA256 Fingerprint=A4:31:0D:50:AF:18:A6:44:71:90:37:2A:86:AF:AF:8B:
> 95:1F:FB:43:1D:83:7F:1E:56:88:B4:59:71:ED:15:57
> ------BEGIN CERTIFICATE-----
> -MIICiDCCAg2gAwIBAgIQNfwmXNmET8k9Jj1Xm67XVjAKBggqhkjOPQQDAzCBhDEL
> -MAkGA1UEBhMCVVMxFTATBgNVBAoTDHRoYXd0ZSwgSW5jLjE4MDYGA1UECxMvKGMp
> -IDIwMDcgdGhhd3RlLCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxJDAi
> -BgNVBAMTG3RoYXd0ZSBQcmltYXJ5IFJvb3QgQ0EgLSBHMjAeFw0wNzExMDUwMDAw
> -MDBaFw0zODAxMTgyMzU5NTlaMIGEMQswCQYDVQQGEwJVUzEVMBMGA1UEChMMdGhh
> -d3RlLCBJbmMuMTgwNgYDVQQLEy8oYykgMjAwNyB0aGF3dGUsIEluYy4gLSBGb3Ig
> -YXV0aG9yaXplZCB1c2Ugb25seTEkMCIGA1UEAxMbdGhhd3RlIFByaW1hcnkgUm9v
> -dCBDQSAtIEcyMHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEotWcgnuVnfFSeIf+iha/
> -BebfowJPDQfGAFG6DAJSLSKkQjnE/o/qycG+1E3/n3qe4rF8mq2nhglzh9HnmuN6
> -papu+7qzcMBniKI11KOasf2twu8x+qi58/sIxpHR+ymVo0IwQDAPBgNVHRMBAf8E
> -BTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQUmtgAMADna3+FGO6Lts6K
> -DPgR4bswCgYIKoZIzj0EAwMDaQAwZgIxAN344FdHW6fmCsO99YCKlzUNG4k8VIZ3
> -KMqh9HneteY4sPBlcIx/AlTCv//YoT7ZzwIxAMSNlPzcU9LcnXgWHxUzI1NS41ox
> -XZ3Krr0TKUQNJ1uo52icEvdYPy5yAlejj6EULg==
> ------END CERTIFICATE-----
> -=== thawte Primary Root CA - G3
> +=== /C=US/O=thawte, Inc./OU=Certification Services Division/OU=(c) 2008
> thawte, Inc. - For authorized use only/CN=thawte Primary Root CA - G3
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3118,7 +3022,7 @@ MdRAGmI0Nj81Aa6sY6A=
>
>  ### The Go Daddy Group, Inc.
>
> -=== Go Daddy Class 2 Certification Authority
> +=== /C=US/O=The Go Daddy Group, Inc./OU=Go Daddy Class 2 Certification
> Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3167,7 +3071,7 @@ ReYNnyicsbkqWletNw+vHX/bvZ8=
>
>  ### The USERTRUST Network
>
> -=== USERTrust ECC Certification Authority
> +=== /C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST
> Network/CN=USERTrust ECC Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3203,7 +3107,7 @@ VR0TAQH/BAUwAwEB/zAKBggqhkjOPQQDAwNoADBl
>  zzuqQhFkoJ2UOQIReVx7Hfpkue4WQrO/isIJxOzksU0CMQDpKmFHjFJKS04YcPbW
>  RNZu9YO6bVi9JNlWSOrvxKJGgYhqOkbRqZtNyWHa0V1Xahg=
>  -----END CERTIFICATE-----
> -=== USERTrust RSA Certification Authority
> +=== /C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST
> Network/CN=USERTrust RSA Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3257,7 +3161,7 @@ VXyNWQKV3WKdwrnuWih0hKWbt5DHDAff9Yk2dDLW
>  L6KCq9NjRHDEjf8tM7qtj3u1cIiuPhnPQCjY/MiQu12ZIvVS5ljFH4gxQ+6IHdfG
>  jjxDah2nGN59PRbxYvnKkKj9
>  -----END CERTIFICATE-----
> -=== UTN-USERFirst-Hardware
> +=== /C=US/ST=UT/L=Salt Lake City/O=The USERTRUST Network/OU=http://www.
> usertrust.com/CN=UTN-USERFirst-Hardware
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3313,7 +3217,7 @@ KqMiDP+JJn1fIytH1xUdqWqeUQ0qUZ6B+dQ7XnAS
>
>  ### Unizeto Sp. z o.o.
>
> -=== Certum CA
> +=== /C=PL/O=Unizeto Sp. z o.o./CN=Certum CA
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3348,42 +3252,107 @@ O/fIR/RpbxXyEV6DHpx8Uq79AtoSqFlnGNu8cN2b
>  6GAqm4VKQPNriiTsBhYscw==
>  -----END CERTIFICATE-----
>
> -### ValiCert, Inc.
> +### Unizeto Technologies S.A.
>
> -=== http://www.valicert.com/
> +=== /C=PL/O=Unizeto Technologies S.A./OU=Certum Certification
> Authority/CN=Certum Trusted Network CA
>  Certificate:
>      Data:
> -        Version: 1 (0x0)
> -        Serial Number: 1 (0x1)
> +        Version: 3 (0x2)
> +        Serial Number: 279744 (0x444c0)
>      Signature Algorithm: sha1WithRSAEncryption
>          Validity
> -            Not Before: Jun 26 00:19:54 1999 GMT
> -            Not After : Jun 26 00:19:54 2019 GMT
> -        Subject: L=ValiCert Validation Network, O=ValiCert, Inc.,
> OU=ValiCert Class 2 Policy Validation Authority, CN=
> http://www.valicert.com//[email protected]
> -SHA1 Fingerprint=31:7A:2A:D0:7F:2B:33:5E:F5:A1:C3:4E:4B:57:E8:B7:
> D8:F1:FC:A6
> -SHA256 Fingerprint=58:D0:17:27:9C:D4:DC:63:AB:DD:B1:96:A6:C9:90:6C:
> 30:C4:E0:87:83:EA:E8:C1:60:99:54:D6:93:55:59:6B
> ------BEGIN CERTIFICATE-----
> -MIIC5zCCAlACAQEwDQYJKoZIhvcNAQEFBQAwgbsxJDAiBgNVBAcTG1ZhbGlDZXJ0
> -IFZhbGlkYXRpb24gTmV0d29yazEXMBUGA1UEChMOVmFsaUNlcnQsIEluYy4xNTAz
> -BgNVBAsTLFZhbGlDZXJ0IENsYXNzIDIgUG9saWN5IFZhbGlkYXRpb24gQXV0aG9y
> -aXR5MSEwHwYDVQQDExhodHRwOi8vd3d3LnZhbGljZXJ0LmNvbS8xIDAeBgkqhkiG
> -9w0BCQEWEWluZm9AdmFsaWNlcnQuY29tMB4XDTk5MDYyNjAwMTk1NFoXDTE5MDYy
> -NjAwMTk1NFowgbsxJDAiBgNVBAcTG1ZhbGlDZXJ0IFZhbGlkYXRpb24gTmV0d29y
> -azEXMBUGA1UEChMOVmFsaUNlcnQsIEluYy4xNTAzBgNVBAsTLFZhbGlDZXJ0IENs
> -YXNzIDIgUG9saWN5IFZhbGlkYXRpb24gQXV0aG9yaXR5MSEwHwYDVQQDExhodHRw
> -Oi8vd3d3LnZhbGljZXJ0LmNvbS8xIDAeBgkqhkiG9w0BCQEWEWluZm9AdmFsaWNl
> -cnQuY29tMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDOOnHK5avIWZJV16vY
> -dA757tn2VUdZZUcOBVXc65g2PFxTXdMwzzjsvUGJ7SVCCSRrCl6zfN1SLUzm1NZ9
> -WlmpZdRJEy0kTRxQb7XBhVQ7/nHk01xC+YDgkRoKWzk2Z/M/VXwbP7RfZHM047QS
> -v4dk+NoS/zcnwbNDu+97bi5p9wIDAQABMA0GCSqGSIb3DQEBBQUAA4GBADt/UG9v
> -UJSZSWI4OB9L+KXIPqeCgfYrx+jFzug6EILLGACOTb2oWH+heQC1u+mNr0HZDzTu
> -IYEZoDJJKPTEjlbVUjP9UNV+mWwD5MlM/Mtsq2azSiGM5bUMMj4QssxsodyamEwC
> -W/POuZ6lcg5Ktz885hZo+L7tdEy8W9ViH0Pd
> +            Not Before: Oct 22 12:07:37 2008 GMT
> +            Not After : Dec 31 12:07:37 2029 GMT
> +        Subject: C=PL, O=Unizeto Technologies S.A., OU=Certum
> Certification Authority, CN=Certum Trusted Network CA
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                08:76:CD:CB:07:FF:24:F6:C5:CD:
> ED:BB:90:BC:E2:84:37:46:75:F7
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +SHA1 Fingerprint=07:E0:32:E0:20:B7:2C:3F:19:2F:06:28:A2:59:3A:19:
> A7:0F:06:9E
> +SHA256 Fingerprint=5C:58:46:8D:55:F5:8E:49:7E:74:39:82:D2:B5:00:10:
> B6:D1:65:37:4A:CF:83:A7:D4:A3:2D:B7:68:C4:40:8E
> +-----BEGIN CERTIFICATE-----
> +MIIDuzCCAqOgAwIBAgIDBETAMA0GCSqGSIb3DQEBBQUAMH4xCzAJBgNVBAYTAlBM
> +MSIwIAYDVQQKExlVbml6ZXRvIFRlY2hub2xvZ2llcyBTLkEuMScwJQYDVQQLEx5D
> +ZXJ0dW0gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkxIjAgBgNVBAMTGUNlcnR1bSBU
> +cnVzdGVkIE5ldHdvcmsgQ0EwHhcNMDgxMDIyMTIwNzM3WhcNMjkxMjMxMTIwNzM3
> +WjB+MQswCQYDVQQGEwJQTDEiMCAGA1UEChMZVW5pemV0byBUZWNobm9sb2dpZXMg
> +Uy5BLjEnMCUGA1UECxMeQ2VydHVtIENlcnRpZmljYXRpb24gQXV0aG9yaXR5MSIw
> +IAYDVQQDExlDZXJ0dW0gVHJ1c3RlZCBOZXR3b3JrIENBMIIBIjANBgkqhkiG9w0B
> +AQEFAAOCAQ8AMIIBCgKCAQEA4/t9o3K6wvDJFIf1awFO4W5AB7ptJ11/91sts1rH
> +UV+rpDKmYYe2bg+G0jACl/jXaVehGDldamR5xgFZrDwxSjh80gTSSyjoIF87B6LM
> +TXPb865Px1bVWqeWifrzq2jUI4ZZJ88JJ7ysbnKDHDBy3+Ci6dLhdHUZvSqeexVU
> +BBvXQzmtVSjF4hq79MDkrjhJM8x2hZ85RdKknvISjFH4fOQtf/WsX+sWn7Et0brM
> +kUJ3TCXJkDhv2/DM+44el1k+1WBO5gUo7Ul5E0u6SNsv+XLTOcr+H9g0cvW0QM8x
> +AcPs3hEtF10fuFDRXhmnad4HMyjKUJX5p1TLVIZQRan5SQIDAQABo0IwQDAPBgNV
> +HRMBAf8EBTADAQH/MB0GA1UdDgQWBBQIds3LB/8k9sXN7buQvOKEN0Z19zAOBgNV
> +HQ8BAf8EBAMCAQYwDQYJKoZIhvcNAQEFBQADggEBAKaorSLOAT2mo/9i0Eidi15y
> +sHhE49wcrwn9I0j6vSrEuVUEtRCjjSfeC4Jj0O7eDDd5QVsisrCaQVymcODU0HfL
> +I9MA4GxWL+FpDQ3Zqr8hgVDZBqWo/5U30Kr+4rP1mS1FhIrlQgnXdAIv94nYmem8
> +J9RHjboNRhx3zxSkHLmkMcScKHQDNP8zGSal6Q10tz6XxnboJ5ajZt3hrvJBW8qY
> +VoNzcOSGGtIxQbovvi0TWnZvTuhOgQ4/WwMioBK+ZlgRSssDxLQqKi2WF+A5VLxI
> +03YnnZotBqbJ7DnSq9ufmgsnAjUpsUCV5/nonFWIGUbWtzT1fs45mtk48VH3Tyw=
> +-----END CERTIFICATE-----
> +=== /C=PL/O=Unizeto Technologies S.A./OU=Certum Certification
> Authority/CN=Certum Trusted Network CA 2
> +Certificate:
> +    Data:
> +        Version: 3 (0x2)
> +        Serial Number:
> +            21:d6:d0:4a:4f:25:0f:c9:32:37:fc:aa:5e:12:8d:e9
> +    Signature Algorithm: sha512WithRSAEncryption
> +        Validity
> +            Not Before: Oct  6 08:39:56 2011 GMT
> +            Not After : Oct  6 08:39:56 2046 GMT
> +        Subject: C=PL, O=Unizeto Technologies S.A., OU=Certum
> Certification Authority, CN=Certum Trusted Network CA 2
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Subject Key Identifier:
> +                B6:A1:54:39:02:C3:A0:3F:8E:8A:
> BC:FA:D4:F8:1C:A6:D1:3A:0E:FD
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +SHA1 Fingerprint=D3:DD:48:3E:2B:BF:4C:05:E8:AF:10:F5:FA:76:26:CF:
> D3:DC:30:92
> +SHA256 Fingerprint=B6:76:F2:ED:DA:E8:77:5C:D3:6C:B0:F6:3C:D1:D4:60:
> 39:61:F4:9E:62:65:BA:01:3A:2F:03:07:B6:D0:B8:04
> +-----BEGIN CERTIFICATE-----
> +MIIF0jCCA7qgAwIBAgIQIdbQSk8lD8kyN/yqXhKN6TANBgkqhkiG9w0BAQ0FADCB
> +gDELMAkGA1UEBhMCUEwxIjAgBgNVBAoTGVVuaXpldG8gVGVjaG5vbG9naWVzIFMu
> +QS4xJzAlBgNVBAsTHkNlcnR1bSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTEkMCIG
> +A1UEAxMbQ2VydHVtIFRydXN0ZWQgTmV0d29yayBDQSAyMCIYDzIwMTExMDA2MDgz
> +OTU2WhgPMjA0NjEwMDYwODM5NTZaMIGAMQswCQYDVQQGEwJQTDEiMCAGA1UEChMZ
> +VW5pemV0byBUZWNobm9sb2dpZXMgUy5BLjEnMCUGA1UECxMeQ2VydHVtIENlcnRp
> +ZmljYXRpb24gQXV0aG9yaXR5MSQwIgYDVQQDExtDZXJ0dW0gVHJ1c3RlZCBOZXR3
> +b3JrIENBIDIwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQC9+Xj45tWA
> +DGSdhhuWZGc/IjoedQF97/tcZ4zJzFxrqZHmuULlIEub2pt7uZld2ZuAS9eEQCsn
> +0+i6MLs+CRqnSZXvK0AkwpfHp+6bJe+oCgCXhVqqndwpyeI1B+twTUrWwbNWuKFB
> +OJvR+zF/j+Bf4bE/D44WSWDXBo0Y+aomEKsq09DRZ40bRr5HMNUuctHFY9rnY3lE
> +fktjJImGLjQ/KUxSiyqnwOKRKIm5wFv5HdnnJ63/mgKXwcZQkpsCLL2puTRZCr+E
> +Sv/f/rOf69me4Jgj7KZrdxYq28ytOxykh9xGc14ZYmhFV+SQgkK7QtbwYeDBoz1m
> +o130GO6IyY0XRSmZMnUCMe4pJshrAua1YkV/NxVaI2iJ1D7eTiew8EAMvE0Xy02i
> +sx7QBlrd9pPPV3WZ9fqGGmd4s7+W/jTcvedSVuWz5XV710GRBdxdaeOVDUO5/IOW
> +OZV7bIBaTxNyxtd9KXpEulKkKtVBRgkg/iKgtlswjbyJDNXXcPiHUv3a76xRLgez
> +Tv7QCdpw75j6VuZt27VXS9zlLCUVyJ4ueE742pyehizKV/Ma5ciSixqClnrDvFAS
> +adgOWkaLOusm+iPJtrCBvkIApPjW/jAux9JG9uWOdf3yzLnQh1vMBhBgu4M1t15n
> +3kfsmUjxpKEV/q2MYo45VU85FrmxY53/twIDAQABo0IwQDAPBgNVHRMBAf8EBTAD
> +AQH/MB0GA1UdDgQWBBS2oVQ5AsOgP46KvPrU+Bym0ToO/TAOBgNVHQ8BAf8EBAMC
> +AQYwDQYJKoZIhvcNAQENBQADggIBAHGlDs7k6b8/ONWJWsQCYftMxRQXLYtPU2sQ
> +F/xlhMcQSZDe28cmk4gmb3DWAl45oPePq5a1pRNcgRRtDoGCERuKTsZPpd1iHkTf
> +CVn0W3cLN+mLIMb4Ck4uWBzrM9DPhmDJ2vuAL55MYIR4PSFk1vtBHxgP58l1cb29
> +XN40hz5BsA72udY/CROWFC/emh1auVbONTqwX3BNXuMp8SMoclm2q8KMZiYcdywm
> +djWLKKdpoPk79SPdhRB0yZADVpHnr7pH1BKXESLjokmUbOe3lEu6LaTaM4tMpkT/
> +WjzGHWTYtTHkpjx6qFcL2+1hGsvxznN3Y6SHb0xRONbkX8eftoEq5IVIeVheO/jb
> +AoJnwTnbw3RLPTYe+SmTiGhbqEQZIfCn6IENLOiTNrQ3ssqwGyZ6miUfmpqAnksq
> +P/ujmv5zMnHCnsZy4YpoJ/HkD7TETKVhk/iXEAcqMCWpuchxuO9ozC1+9eB+D4Ko
> +b7a6bINDd82Kkhehnlt4Fj1F4jNy3eFmypnTycUm/Q1oBEauttmbjL4ZvrHG8hnj
> +XALKLNhvSgfZyTXaQHXyxKcZb55CEJh15pWLYLztxRLXis7VmFxWlgPF7ncGNf/P
> +5O4/E2Hu29othfDNrp2yGAlFw5Khchf8R7agCyzxxN5DaAhqXzvwdmP7zAYspsbi
> +DrW5viSP
>  -----END CERTIFICATE-----
>
>  ### VeriSign, Inc.
>
> -=== VeriSign Class 3 Public Primary Certification Authority - G3
> +=== /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=(c) 1999
> VeriSign, Inc. - For authorized use only/CN=VeriSign Class 3 Public Primary
> Certification Authority - G3
>  Certificate:
>      Data:
>          Version: 1 (0x0)
> @@ -3420,50 +3389,7 @@ DGBvtcC1IyIuBwvLqXTLR7sdwdela8wv0kL9Sd2n
>  F4ErWjfJXir0xuKhXFSbplQAz/DxwceYMBo7Nhbbo27q/a2ywtrvAkcTisDxszGt
>  TxzhT5yvDwyd93gN2PQ1VoDat20Xj50egWTh/sVFuq1ruQp6Tk9LhO5L8X3dEQ==
>  -----END CERTIFICATE-----
> -=== VeriSign Class 3 Public Primary Certification Authority - G4
> -Certificate:
> -    Data:
> -        Version: 3 (0x2)
> -        Serial Number:
> -            2f:80:fe:23:8c:0e:22:0f:48:67:12:28:91:87:ac:b3
> -    Signature Algorithm: ecdsa-with-SHA384
> -        Validity
> -            Not Before: Nov  5 00:00:00 2007 GMT
> -            Not After : Jan 18 23:59:59 2038 GMT
> -        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network,
> OU=(c) 2007 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3
> Public Primary Certification Authority - G4
> -        X509v3 extensions:
> -            X509v3 Basic Constraints: critical
> -                CA:TRUE
> -            X509v3 Key Usage: critical
> -                Certificate Sign, CRL Sign
> -            1.3.6.1.5.5.7.1.12:
> -                0_.].[0Y0W0U..image/gif0!0.0..
> .+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
> -            X509v3 Subject Key Identifier:
> -                B3:16:91:FD:EE:A6:6E:E4:B5:2E:
> 49:8F:87:78:81:80:EC:E5:B1:B5
> -SHA1 Fingerprint=22:D5:D8:DF:8F:02:31:D1:8D:F7:9D:B7:CF:8A:2D:64:
> C9:3F:6C:3A
> -SHA256 Fingerprint=69:DD:D7:EA:90:BB:57:C9:3E:13:5D:C8:5E:A6:FC:D5:
> 48:0B:60:32:39:BD:C4:54:FC:75:8B:2A:26:CF:7F:79
> ------BEGIN CERTIFICATE-----
> -MIIDhDCCAwqgAwIBAgIQL4D+I4wOIg9IZxIokYesszAKBggqhkjOPQQDAzCByjEL
> -MAkGA1UEBhMCVVMxFzAVBgNVBAoTDlZlcmlTaWduLCBJbmMuMR8wHQYDVQQLExZW
> -ZXJpU2lnbiBUcnVzdCBOZXR3b3JrMTowOAYDVQQLEzEoYykgMjAwNyBWZXJpU2ln
> -biwgSW5jLiAtIEZvciBhdXRob3JpemVkIHVzZSBvbmx5MUUwQwYDVQQDEzxWZXJp
> -U2lnbiBDbGFzcyAzIFB1YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9y
> -aXR5IC0gRzQwHhcNMDcxMTA1MDAwMDAwWhcNMzgwMTE4MjM1OTU5WjCByjELMAkG
> -A1UEBhMCVVMxFzAVBgNVBAoTDlZlcmlTaWduLCBJbmMuMR8wHQYDVQQLExZWZXJp
> -U2lnbiBUcnVzdCBOZXR3b3JrMTowOAYDVQQLEzEoYykgMjAwNyBWZXJpU2lnbiwg
> -SW5jLiAtIEZvciBhdXRob3JpemVkIHVzZSBvbmx5MUUwQwYDVQQDEzxWZXJpU2ln
> -biBDbGFzcyAzIFB1YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9yaXR5
> -IC0gRzQwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAASnVnp8Utpkmw4tXNherJI9/gHm
> -GUo9FANL+mAnINmDiWn6VMaaGF5VKmTeBvaNSjutEDxlPZCIBIngMGGzrl0Bp3ve
> -fLK+ymVhAIau2o970ImtTR1ZmkGxvEeA3J5iw/mjgbIwga8wDwYDVR0TAQH/BAUw
> -AwEB/zAOBgNVHQ8BAf8EBAMCAQYwbQYIKwYBBQUHAQwEYTBfoV2gWzBZMFcwVRYJ
> -aW1hZ2UvZ2lmMCEwHzAHBgUrDgMCGgQUj+XTGoasjY5rw8+AatRIGCx7GS4wJRYj
> -aHR0cDovL2xvZ28udmVyaXNpZ24uY29tL3ZzbG9nby5naWYwHQYDVR0OBBYEFLMW
> -kf3upm7ktS5Jj4d4gYDs5bG1MAoGCCqGSM49BAMDA2gAMGUCMGYhDBgmYFo4e1ZC
> -4Kf8NoRRkSAsdk1DPcQdhCPQrNZ8NQbOzWm9kA3bbEhCHQ6qQgIxAJw9SDkjOVga
> -FRJZap7v1VmyHVIsmXHNxynfGyphe3HR3vPA5Q06Sqotp9iGKt0uEA==
> ------END CERTIFICATE-----
> -=== VeriSign Class 3 Public Primary Certification Authority - G5
> +=== /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=(c) 2006
> VeriSign, Inc. - For authorized use only/CN=VeriSign Class 3 Public Primary
> Certification Authority - G5
>  Certificate:
>      Data:
>          Version: 3 (0x2)
> @@ -3513,76 +3439,50 @@ WE9gyn6CagsCqiUXObXbf+eEZSqVir2G3l6BFoMt
>  4fQRbxC1lfznQgUy286dUV4otp6F01vvpX1FQHKOtw5rDgb7MzVIcbidJ4vEZV8N
>  hnacRHr2lVz2XTIIM6RUthg/aFzyQkqFOFSDX9HoLPKsEdao7WNq
>  -----END CERTIFICATE-----
> -=== VeriSign Class 4 Public Primary Certification Authority - G3
> +=== /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=(c) 2007
> VeriSign, Inc. - For authorized use only/CN=VeriSign Class 3 Public Primary
> Certification Authority - G4
>  Certificate:
>      Data:
> -        Version: 1 (0x0)
> +        Version: 3 (0x2)
>          Serial Number:
> -            ec:a0:a7:8b:6e:75:6a:01:cf:c4:7c:cc:2f:94:5e:d7
> -    Signature Algorithm: sha1WithRSAEncryption
> +            2f:80:fe:23:8c:0e:22:0f:48:67:12:28:91:87:ac:b3
> +    Signature Algorithm: ecdsa-with-SHA384
>          Validity
> -            Not Before: Oct  1 00:00:00 1999 GMT
> -            Not After : Jul 16 23:59:59 2036 GMT
> -        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network,
> OU=(c) 1999 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 4
> Public Primary Certification Authority - G3
> -SHA1 Fingerprint=C8:EC:8C:87:92:69:CB:4B:AB:39:E9:8D:7E:57:67:F3:
> 14:95:73:9D
> -SHA256 Fingerprint=E3:89:36:0D:0F:DB:AE:B3:D2:50:58:4B:47:30:31:4E:
> 22:2F:39:C1:56:A0:20:14:4E:8D:96:05:61:79:15:06
> +            Not Before: Nov  5 00:00:00 2007 GMT
> +            Not After : Jan 18 23:59:59 2038 GMT
> +        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network,
> OU=(c) 2007 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3
> Public Primary Certification Authority - G4
> +        X509v3 extensions:
> +            X509v3 Basic Constraints: critical
> +                CA:TRUE
> +            X509v3 Key Usage: critical
> +                Certificate Sign, CRL Sign
> +            1.3.6.1.5.5.7.1.12:
> +                0_.].[0Y0W0U..image/gif0!0.0..
> .+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
> +            X509v3 Subject Key Identifier:
> +                B3:16:91:FD:EE:A6:6E:E4:B5:2E:
> 49:8F:87:78:81:80:EC:E5:B1:B5
> +SHA1 Fingerprint=22:D5:D8:DF:8F:02:31:D1:8D:F7:9D:B7:CF:8A:2D:64:
> C9:3F:6C:3A
> +SHA256 Fingerprint=69:DD:D7:EA:90:BB:57:C9:3E:13:5D:C8:5E:A6:FC:D5:
> 48:0B:60:32:39:BD:C4:54:FC:75:8B:2A:26:CF:7F:79
>  -----BEGIN CERTIFICATE-----
> -MIIEGjCCAwICEQDsoKeLbnVqAc/EfMwvlF7XMA0GCSqGSIb3DQEBBQUAMIHKMQsw
> -CQYDVQQGEwJVUzEXMBUGA1UEChMOVmVyaVNpZ24sIEluYy4xHzAdBgNVBAsTFlZl
> -cmlTaWduIFRydXN0IE5ldHdvcmsxOjA4BgNVBAsTMShjKSAxOTk5IFZlcmlTaWdu
> -LCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxRTBDBgNVBAMTPFZlcmlT
> -aWduIENsYXNzIDQgUHVibGljIFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3Jp
> -dHkgLSBHMzAeFw05OTEwMDEwMDAwMDBaFw0zNjA3MTYyMzU5NTlaMIHKMQswCQYD
> -VQQGEwJVUzEXMBUGA1UEChMOVmVyaVNpZ24sIEluYy4xHzAdBgNVBAsTFlZlcmlT
> -aWduIFRydXN0IE5ldHdvcmsxOjA4BgNVBAsTMShjKSAxOTk5IFZlcmlTaWduLCBJ
> -bmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxRTBDBgNVBAMTPFZlcmlTaWdu
> -IENsYXNzIDQgUHVibGljIFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkg
> -LSBHMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK3LpRFpxlmr8Y+1
> -GQ9Wzsy1HyDkniYlS+BzZYlZ3tCD5PUPtbut8XzoIfzk6AzufEUiGXaStBO3IFsJ
> -+mGuqPKljYXCKtbeZjbSmwL0qJJgfJxptI8kHtCGUvYynEFYHiK9zUVilQhu0Gbd
> -U6LM8BDcVHOLBKFGMzNcF0C5nk3T875Vg+ixiY5afJqWIpA7iCXy0lOIAgwLePLm
> -NxdLMEYH5IBtptiWLugs+BGzOA1mppvqySNb247i8xOOGlktqgLw7KSHZtzBP/XY
> -ufTsgsbSPZUd5cBPhMnZo0QoBmrXRazwa2rvTl/4EYIeOGM0ZlDUPpNz+jDDZq3/
> -ky2X7wMCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAj/ola09b5KROJ1WrIhVZPMq1
> -CtRK26vdoV9TxaBXOcLORyu+OshWv8LZJxA6sQU8wHcxuzrTBXttmhwwjIDLk5Mq
> -g6sFUYICABFna/OIYUdfA5PVWw3g8dShMjWFsjrbsIKr0csKvE+MW8VLADsfKoKm
> -fjaF3H48ZwC15DtS4KjrXRX5xm3wrR0OhbepmnMUWluPQSjA1egtTaRezarZ7c7c
> -2NU8Qh0XwRJdRTjDOPP8hS6DRkiy1yBfkjaP53kPmF6Z6PDQpLv1U70qzlmwr25/
> -bLvSHgCwIe34QWKCudiyxLtGUPMxxY8BqHTr9Xgn2uf3ZkPznoM+IKrDNWCRzg==
> ------END CERTIFICATE-----
> -=== VeriSign Trust Network
> -Certificate:
> -    Data:
> -        Version: 1 (0x0)
> -        Serial Number:
> -            7d:d9:fe:07:cf:a8:1e:b7:10:79:67:fb:a7:89:34:c6
> -    Signature Algorithm: sha1WithRSAEncryption
> -        Validity
> -            Not Before: May 18 00:00:00 1998 GMT
> -            Not After : Aug  1 23:59:59 2028 GMT
> -        Subject: C=US, O=VeriSign, Inc., OU=Class 3 Public Primary
> Certification Authority - G2, OU=(c) 1998 VeriSign, Inc. - For authorized
> use only, OU=VeriSign Trust Network
> -SHA1 Fingerprint=85:37:1C:A6:E5:50:14:3D:CE:28:03:47:1B:DE:3A:09:
> E8:F8:77:0F
> -SHA256 Fingerprint=83:CE:3C:12:29:68:8A:59:3D:48:5F:81:97:3C:0F:91:
> 95:43:1E:DA:37:CC:5E:36:43:0E:79:C7:A8:88:63:8B
> ------BEGIN CERTIFICATE-----
> -MIIDAjCCAmsCEH3Z/gfPqB63EHln+6eJNMYwDQYJKoZIhvcNAQEFBQAwgcExCzAJ
> -BgNVBAYTAlVTMRcwFQYDVQQKEw5WZXJpU2lnbiwgSW5jLjE8MDoGA1UECxMzQ2xh
> -c3MgMyBQdWJsaWMgUHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEcy
> -MTowOAYDVQQLEzEoYykgMTk5OCBWZXJpU2lnbiwgSW5jLiAtIEZvciBhdXRob3Jp
> -emVkIHVzZSBvbmx5MR8wHQYDVQQLExZWZXJpU2lnbiBUcnVzdCBOZXR3b3JrMB4X
> -DTk4MDUxODAwMDAwMFoXDTI4MDgwMTIzNTk1OVowgcExCzAJBgNVBAYTAlVTMRcw
> -FQYDVQQKEw5WZXJpU2lnbiwgSW5jLjE8MDoGA1UECxMzQ2xhc3MgMyBQdWJsaWMg
> -UHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEcyMTowOAYDVQQLEzEo
> -YykgMTk5OCBWZXJpU2lnbiwgSW5jLiAtIEZvciBhdXRob3JpemVkIHVzZSBvbmx5
> -MR8wHQYDVQQLExZWZXJpU2lnbiBUcnVzdCBOZXR3b3JrMIGfMA0GCSqGSIb3DQEB
> -AQUAA4GNADCBiQKBgQDMXtERXVxp0KvTuWpMmR9ZmDCOFoUgRm1HP9SFIIThbbP4
> -pO0M8RcPO/mn+SXXwc+EY/J8Y8+iR/LGWzOOZEAEaMGAuWQcRXfH2G71lSk8UOg0
> -13gfqLptQ5GVj0VXXn7F+8qkBOvqlzdUMG+7AUcyM83cV5tkaWH4mx0ciU9cZwID
> -AQABMA0GCSqGSIb3DQEBBQUAA4GBAFFNzb5cy5gZnBWyATl4Lk0PZ3BwmcYQWpSk
> -U01UbSuvDV1Ai2TT1+7eVmGSX6bEHRBhNtMsJzzoKQm5EWR0zLVznxxIqbxhAe7i
> -F6YM40AIOw7n60RzKprxaZLvcRTDOaxxp5EJb+RxBrO6WVcmeQD2+A2iMzAo1KpY
> -oJ2daZH9
> +MIIDhDCCAwqgAwIBAgIQL4D+I4wOIg9IZxIokYesszAKBggqhkjOPQQDAzCByjEL
> +MAkGA1UEBhMCVVMxFzAVBgNVBAoTDlZlcmlTaWduLCBJbmMuMR8wHQYDVQQLExZW
> +ZXJpU2lnbiBUcnVzdCBOZXR3b3JrMTowOAYDVQQLEzEoYykgMjAwNyBWZXJpU2ln
> +biwgSW5jLiAtIEZvciBhdXRob3JpemVkIHVzZSBvbmx5MUUwQwYDVQQDEzxWZXJp
> +U2lnbiBDbGFzcyAzIFB1YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9y
> +aXR5IC0gRzQwHhcNMDcxMTA1MDAwMDAwWhcNMzgwMTE4MjM1OTU5WjCByjELMAkG
> +A1UEBhMCVVMxFzAVBgNVBAoTDlZlcmlTaWduLCBJbmMuMR8wHQYDVQQLExZWZXJp
> +U2lnbiBUcnVzdCBOZXR3b3JrMTowOAYDVQQLEzEoYykgMjAwNyBWZXJpU2lnbiwg
> +SW5jLiAtIEZvciBhdXRob3JpemVkIHVzZSBvbmx5MUUwQwYDVQQDEzxWZXJpU2ln
> +biBDbGFzcyAzIFB1YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9yaXR5
> +IC0gRzQwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAASnVnp8Utpkmw4tXNherJI9/gHm
> +GUo9FANL+mAnINmDiWn6VMaaGF5VKmTeBvaNSjutEDxlPZCIBIngMGGzrl0Bp3ve
> +fLK+ymVhAIau2o970ImtTR1ZmkGxvEeA3J5iw/mjgbIwga8wDwYDVR0TAQH/BAUw
> +AwEB/zAOBgNVHQ8BAf8EBAMCAQYwbQYIKwYBBQUHAQwEYTBfoV2gWzBZMFcwVRYJ
> +aW1hZ2UvZ2lmMCEwHzAHBgUrDgMCGgQUj+XTGoasjY5rw8+AatRIGCx7GS4wJRYj
> +aHR0cDovL2xvZ28udmVyaXNpZ24uY29tL3ZzbG9nby5naWYwHQYDVR0OBBYEFLMW
> +kf3upm7ktS5Jj4d4gYDs5bG1MAoGCCqGSM49BAMDA2gAMGUCMGYhDBgmYFo4e1ZC
> +4Kf8NoRRkSAsdk1DPcQdhCPQrNZ8NQbOzWm9kA3bbEhCHQ6qQgIxAJw9SDkjOVga
> +FRJZap7v1VmyHVIsmXHNxynfGyphe3HR3vPA5Q06Sqotp9iGKt0uEA==
>  -----END CERTIFICATE-----
> -=== VeriSign Universal Root Certification Authority
> +=== /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=(c) 2008
> VeriSign, Inc. - For authorized use only/CN=VeriSign Universal Root
> Certification Authority
>  Certificate:
>      Data:
>          Version: 3 (0x2)
>
>

Reply via email to