Skip to content

Commit

Permalink
Trust store release 2024.11.0
Browse files Browse the repository at this point in the history
Rolling trust store release at 2024-11-03T03:23:41+0000.
$ cfssl-trust -d ./cert.db  -b int release 504h
1411 certificates rolled
0 certificates skipped
Successfully rolled new int release 2024.11.0
$ cfssl-trust -d ./cert.db  -b ca release 504h
skipping expired certificate (SKI=9eec991000496bcc8a3fdb6f06e5ca1418729383, serial=5056230419077763488, subject='/Serasa Certificate Authority II/C=BR/O=Serasa S.A./OU=Serasa CA II')
skipping expired certificate (SKI=46c278ab54e0f8682739df42b3f354c3067d26a1, serial=4276163686201040820, subject='/Serasa Certificate Authority III/C=BR/O=Serasa S.A./OU=Serasa CA III')
skipping expired certificate (SKI=f838ee5c6eedab96a045eb360fdcd9ab3a3158fd, serial=3015013576204765766, subject='/Serasa Certificate Authority I/C=BR/O=Serasa S.A./OU=Serasa CA I')
351 certificates rolled
3 certificates skipped
Successfully rolled new ca release 2024.11.0
$ cfssl-trust -d ./cert.db  -r 2024.11.0 -b int bundle int-bundle.crt
selected release 2024.11.0
Selected 1411 certificates for this release.
$ cfssl-trust -d ./cert.db  -r 2024.11.0 -b ca bundle ca-bundle.crt
selected release 2024.11.0
Selected 351 certificates for this release.
$ certdump ca-bundle.crt  > certdata/ca-bundle.txt
$ certdump int-bundle.crt > certdata/int-bundle.txt
$ git status --porcelain -uno
M  ca-bundle.crt
M  cert.db
M  certdata/ca-bundle.txt
  • Loading branch information
mitalirawat committed Nov 3, 2024
1 parent c45e36b commit e0acb44
Show file tree
Hide file tree
Showing 3 changed files with 0 additions and 115 deletions.
73 changes: 0 additions & 73 deletions ca-bundle.crt
Original file line number Diff line number Diff line change
Expand Up @@ -957,79 +957,6 @@ i6mx5O+aGtA9aZnuqCij4Tyz8LIRnM98QObd50N9otg6tamN8jSZxNQQ4Qb9CYQQ
O+7ETPTsJ3xCwnR8gooJybQDJbw=
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIEFjCCAv6gAwIBAgIIRitWxu+nkaAwDQYJKoZIhvcNAQEFBQAwZDELMAkGA1UE
BhMCQlIxFDASBgNVBAoTC1NlcmFzYSBTLkEuMRUwEwYDVQQLEwxTZXJhc2EgQ0Eg
SUkxKDAmBgNVBAMTH1NlcmFzYSBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkgSUkwHhcN
MDQxMTI2MTIzNDQ4WhcNMjQxMTIxMTI0NDQ4WjBkMQswCQYDVQQGEwJCUjEUMBIG
A1UEChMLU2VyYXNhIFMuQS4xFTATBgNVBAsTDFNlcmFzYSBDQSBJSTEoMCYGA1UE
AxMfU2VyYXNhIENlcnRpZmljYXRlIEF1dGhvcml0eSBJSTCCASIwDQYJKoZIhvcN
AQEBBQADggEPADCCAQoCggEBAK0fibJmnVu3qdXl8mBEhPmUbeJ5XW7Apa66MWOg
qZ5RXlxuB9lKRXRfjZ5pOLYoQ5KuT4Kg/DZRNT6NoOcOKQgMNbcjPe9LGg4wWFdA
ABLxgJqAI0rBoIaNQTiIUHNo8V9TiJQKESHFYLSiYGUrGPoQO5GSP/jVYk6+Vl7F
kIVKNYCubjtBDJUS7qcqA068Zz1LgBkS4nQuXetIuU87bzz3wrAfGkQ9m1zAvboG
ZQzndGcfyWQ+95+NLBtBkvgd3KlfkNJTcDWNBKokfvTNpSZO6PbzOBUwvq0a80ck
j0pQJydT/mGaelzYbMdPVvQpLKWjFJffYg28kiNbo0r0OpUCAwEAAaOByzCByDAn
BgNVHSUEIDAeBggrBgEFBQcDAQYIKwYBBQUHAwMGCCsGAQUFBwMIMF0GA1UdHwRW
MFQwUqBQoE6GTGh0dHA6Ly93d3cuY2VydGlmaWNhZG9kaWdpdGFsLmNvbS5ici9y
ZXBvc2l0b3Jpby9zZXJhc2FjYS9jcmwvU2VyYXNhQ0FJSS5jcmwwHQYDVR0OBBYE
FJ7smRAASWvMij/bbwblyhQYcpODMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/
BAQDAgEGMA0GCSqGSIb3DQEBBQUAA4IBAQCgC7an3c01SOhuj6ho4LGbkSQhyVbp
mvXucKE0sOR8PqrKl+iA/2IF5OxA7NnlnGVbAJm0ojBFBFwvtdCTr9qRBenfmTH1
ioQPJdhn3ilrHLdI/bbekxKvd6oB6cPhMBSqX3ioR3/UulJhMfEZuNseK6iJnsYw
cpEGsCOpAxlo8qcEq+7OUjZgykjbU/qcp3y19TQvQ36s9IS2lTKlpL7paqqLQZnK
Ar0SO+cH0bHyRad0pybkvGhvzBkh8JTKyEJf/jn32zpeM6WbBqrQMqzIqn6LsTiI
v+ZM6KDlj5xEHh4gHvAvYapphnzV9bfOySvFDN3KtyjCBd5nGastjaNn
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIDcDCCAligAwIBAgIBBTANBgkqhkiG9w0BAQUFADBbMQswCQYDVQQGEwJVUzEY
MBYGA1UEChMPVS5TLiBHb3Zlcm5tZW50MQwwCgYDVQQLEwNEb0QxDDAKBgNVBAsT
A1BLSTEWMBQGA1UEAxMNRG9EIFJvb3QgQ0EgMjAeFw0wNDEyMTMxNTAwMTBaFw0y
Expand Down
Binary file modified cert.db
Binary file not shown.
42 changes: 0 additions & 42 deletions certdata/ca-bundle.txt
Original file line number Diff line number Diff line change
Expand Up @@ -623,48 +623,6 @@ Details:
Basic constraints: valid, is a CA certificate
SANs (0):
CERTIFICATE
Subject: /Serasa Certificate Authority II/C=BR/O=Serasa S.A./OU=Serasa CA II
Issuer: /Serasa Certificate Authority II/C=BR/O=Serasa S.A./OU=Serasa CA II
Signature algorithm: RSA / SHA1
Details:
Public key: RSA-2048
Serial number: 5056230419077763488
SKI: 9E:EC:99:10:00:49:6B:CC:8A:3F:DB:6F:06:E5:CA:14:18:72:93:83
Valid from: 2004-11-26T12:34:48+0000
until: 2024-11-21T12:44:48+0000
Key usages: cert sign, crl sign
Extended usages: code signing, server auth, timestamping
Basic constraints: valid, is a CA certificate
SANs (0):
CERTIFICATE
Subject: /Serasa Certificate Authority III/C=BR/O=Serasa S.A./OU=Serasa CA III
Issuer: /Serasa Certificate Authority III/C=BR/O=Serasa S.A./OU=Serasa CA III
Signature algorithm: RSA / SHA1
Details:
Public key: RSA-2048
Serial number: 4276163686201040820
SKI: 46:C2:78:AB:54:E0:F8:68:27:39:DF:42:B3:F3:54:C3:06:7D:26:A1
Valid from: 2004-11-26T13:14:14+0000
until: 2024-11-21T13:24:14+0000
Key usages: cert sign, crl sign
Extended usages: client auth, code signing, s/mime, server auth
Basic constraints: valid, is a CA certificate
SANs (0):
CERTIFICATE
Subject: /Serasa Certificate Authority I/C=BR/O=Serasa S.A./OU=Serasa CA I
Issuer: /Serasa Certificate Authority I/C=BR/O=Serasa S.A./OU=Serasa CA I
Signature algorithm: RSA / SHA1
Details:
Public key: RSA-2048
Serial number: 3015013576204765766
SKI: F8:38:EE:5C:6E:ED:AB:96:A0:45:EB:36:0F:DC:D9:AB:3A:31:58:FD
Valid from: 2004-11-26T14:02:45+0000
until: 2024-11-21T14:12:45+0000
Key usages: cert sign, crl sign
Extended usages: client auth, s/mime, timestamping
Basic constraints: valid, is a CA certificate
SANs (0):
CERTIFICATE
Subject: /DoD Root CA 2/C=US/O=U.S. Government/OU=DoD/OU=PKI
Issuer: /DoD Root CA 2/C=US/O=U.S. Government/OU=DoD/OU=PKI
Signature algorithm: RSA / SHA1
Expand Down

0 comments on commit e0acb44

Please sign in to comment.