Skip to content

Commit

Permalink
Trust store release 2024.10.1
Browse files Browse the repository at this point in the history
Rolling trust store release at 2024-10-13T03:23:00+0000.
$ cfssl-trust -d ./cert.db  -b int release 504h
skipping expired certificate (SKI=d910f0dec2a199f57e4b93a213c6d64673c249de, serial=85076825076483007851870499652404066464, subject='/TWCA InfoSec User CA/C=TW/O=TAIWAN-CA Inc./OU=User CA')
skipping expired certificate (SKI=f807c26824ff8595cbdb1ee3339c2a4f9720567b, serial=85076825076483007851870499652303227021, subject='/TWCA Secure SSL Certification Authority/C=TW/O=TAIWAN-CA/OU=Secure SSL Sub-CA')
skipping expired certificate (SKI=beea6fbff1ea1b7e84333d7a9b078e2f25122a03, serial=13088993430995819654219843423247337983, subject='/Saudi Enaya Public Issuing CA/C=SA/O=Saudi Enaya Cooperative Insurance Company/OU=Class 2 DigiCert PKI Platform Individual Subscriber CA')
1419 certificates rolled
3 certificates skipped
Successfully rolled new int release 2024.10.1
$ cfssl-trust -d ./cert.db  -b ca release 504h
354 certificates rolled
0 certificates skipped
Successfully rolled new ca release 2024.10.1
$ cfssl-trust -d ./cert.db  -r 2024.10.1 -b int bundle int-bundle.crt
selected release 2024.10.1
Selected 1419 certificates for this release.
$ cfssl-trust -d ./cert.db  -r 2024.10.1 -b ca bundle ca-bundle.crt
selected release 2024.10.1
Selected 354 certificates for this release.
$ certdump ca-bundle.crt  > certdata/ca-bundle.txt
$ certdump int-bundle.crt > certdata/int-bundle.txt
$ git status --porcelain -uno
M  cert.db
M  certdata/int-bundle.txt
M  int-bundle.crt
  • Loading branch information
mitch292 committed Oct 13, 2024
1 parent f386a10 commit eff7a53
Show file tree
Hide file tree
Showing 3 changed files with 0 additions and 147 deletions.
Binary file modified cert.db
Binary file not shown.
52 changes: 0 additions & 52 deletions certdata/int-bundle.txt
Original file line number Diff line number Diff line change
Expand Up @@ -3298,39 +3298,6 @@ Details:
Basic constraints: valid, is a CA certificate, max path length 0
SANs (0):
CERTIFICATE
Subject: /TWCA InfoSec User CA/C=TW/O=TAIWAN-CA Inc./OU=User CA
Issuer: /TWCA Root Certification Authority/C=TW/O=TAIWAN-CA/OU=Root CA
Signature algorithm: RSA / SHA256
Details:
Public key: RSA-2048
Serial number: 85076825076483007851870499652404066464
AKI: 6A:38:5B:26:8D:DE:8B:5A:F2:4F:7A:54:83:19:18:E3:08:35:A6:BA
SKI: D9:10:F0:DE:C2:A1:99:F5:7E:4B:93:A2:13:C6:D6:46:73:C2:49:DE
Valid from: 2014-10-28T06:48:11+0000
until: 2024-10-28T15:59:59+0000
Key usages: cert sign, crl sign
Basic constraints: valid, is a CA certificate, max path length 0
SANs (0):
CERTIFICATE
Subject: /TWCA Secure SSL Certification Authority/C=TW/O=TAIWAN-CA/OU=Secure
SSL Sub-CA
Issuer: /TWCA Global Root CA/C=TW/O=TAIWAN-CA/OU=Root CA
Signature algorithm: RSA / SHA256
Details:
Public key: RSA-2048
Serial number: 85076825076483007851870499652303227021
AKI: 48:DB:CD:DE:8E:E9:49:72:5A:88:E8:B1:D8:3D:07:B3:B9:6B:66:50
SKI: F8:07:C2:68:24:FF:85:95:CB:DB:1E:E3:33:9C:2A:4F:97:20:56:7B
Valid from: 2014-10-28T07:27:56+0000
until: 2024-10-28T15:59:59+0000
Key usages: cert sign, crl sign
Basic constraints: valid, is a CA certificate, max path length 0
SANs (0):
1 AIA:
http://sslserver.twca.com.tw/cacert/root4096.crt
OCSP server:
- http://rootocsp.twca.com.tw/
CERTIFICATE
Subject: /TWCA Global Root CA/C=TW/O=TAIWAN-CA/OU=Root CA
Issuer: /TWCA Root Certification Authority/C=TW/O=TAIWAN-CA/OU=Root CA
Signature algorithm: RSA / SHA256
Expand Down Expand Up @@ -18911,25 +18878,6 @@ Details:
OCSP server:
- http://ocsp.digicert.com
CERTIFICATE
Subject: /Saudi Enaya Public Issuing CA/C=SA/O=Saudi Enaya Cooperative
Insurance Company/OU=Class 2 DigiCert PKI Platform Individual Subscriber
CA
Issuer: /DigiCert Assured ID Root G2/C=US/O=DigiCert Inc/OU=www.digicert.com
Signature algorithm: RSA / SHA256
Details:
Public key: RSA-2048
Serial number: 13088993430995819654219843423247337983
AKI: CE:C3:4A:B9:99:55:F2:B8:DB:60:BF:A9:7E:BD:56:B5:97:36:A7:D6
SKI: BE:EA:6F:BF:F1:EA:1B:7E:84:33:3D:7A:9B:07:8E:2F:25:12:2A:03
Valid from: 2019-10-31T12:52:56+0000
until: 2024-10-31T12:52:56+0000
Key usages: cert sign, crl sign, digital signature
Extended usages: client auth, s/mime
Basic constraints: valid, is a CA certificate, max path length 0
SANs (0):
OCSP server:
- http://ocsp.digicert.com
CERTIFICATE
Subject: /SwissSign Advanced Platinum CA 2019 - G22/C=CH/O=SwissSign AG
Issuer: /SwissSign Platinum CA - G2/C=CH/O=SwissSign AG
Signature algorithm: RSA / SHA256
Expand Down
95 changes: 0 additions & 95 deletions int-bundle.crt
Original file line number Diff line number Diff line change
Expand Up @@ -6137,67 +6137,6 @@ Yd1Qm1/gbnCgkq7hgYu/BuONFgMn+R3osSEVAWp3exw7MzL1sm0hK0sVPbbPg8Qf
VV+IM+HHyTwCHwhD92Ms4CjZ
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIFWTCCBEGgAwIBAgIQQAEzU+QAAAAAAAAMyl0baTANBgkqhkiG9w0BAQsFADBf
MQswCQYDVQQGEwJUVzESMBAGA1UECgwJVEFJV0FOLUNBMRAwDgYDVQQLDAdSb290
IENBMSowKAYDVQQDDCFUV0NBIFJvb3QgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkw
Expand Down Expand Up @@ -32174,40 +32113,6 @@ YL9RlqNKw8JLUzublOzIir1nN05p2DUMJXIZQ+cyAI8QKx9fL2EWxjFdzLxuszsb
+g8+3Q==
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIH5jCCBc6gAwIBAgIQAM6m80pTVeoL0yP3WDrKGDANBgkqhkiG9w0BAQsFADBJ
MQswCQYDVQQGEwJDSDEVMBMGA1UEChMMU3dpc3NTaWduIEFHMSMwIQYDVQQDExpT
d2lzc1NpZ24gUGxhdGludW0gQ0EgLSBHMjAeFw0xOTExMTIwOTMxMzVaFw0zNDEx
Expand Down

0 comments on commit eff7a53

Please sign in to comment.