tests: Move from 1024 bit private keys to 2048 bit keys

Crypto libraries are starting to refuse to accept the old shorter keys,
so move all test certificates and DH to use 2048 bit (or longer) keys.

Signed-off-by: Jouni Malinen <j@w1.fi>
This commit is contained in:
Jouni Malinen 2020-05-02 20:58:40 +03:00
parent 96b6dd21a0
commit 82f2e3ddce
87 changed files with 2771 additions and 2155 deletions

View file

@ -2,34 +2,43 @@ Certificate:
Data:
Version: 3 (0x2)
Serial Number:
d8:d3:e3:a6:cb:e3:cd:22
d8:d3:e3:a6:cb:e3:cd:62
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=FI, O=w1.fi, CN=Root CA
Issuer: C=FI, L=Tuusula, O=w1.fi, CN=Root CA
Validity
Not Before: Oct 4 13:02:23 2019 GMT
Not After : Oct 3 13:02:23 2020 GMT
Not Before: May 2 19:55:38 2020 GMT
Not After : May 2 19:55:38 2021 GMT
Subject: C=FI, O=w1.fi, CN=server6.w1.fi
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (1024 bit)
RSA Public-Key: (2048 bit)
Modulus:
00:ca:30:1e:fd:13:6a:02:28:51:9a:0e:a9:1e:72:
7e:e7:5a:c8:cb:0c:7e:8a:99:81:8d:05:b3:09:b0:
a9:86:e7:ae:44:fa:e0:c7:ee:f3:18:b4:31:65:e3:
05:6f:66:4e:e3:e4:85:81:9b:47:7f:5f:b5:16:2b:
b0:59:91:9c:c5:55:d3:d3:ca:2c:81:ce:f0:27:a8:
54:de:0e:4f:d8:f0:11:bd:0b:10:56:38:26:df:a9:
3a:95:15:93:a6:16:ed:d2:1e:b4:b5:c0:a8:61:8e:
ae:10:04:fd:e6:26:ca:4a:0d:90:4b:b9:ac:c9:94:
f2:b1:6b:97:6b:60:24:ea:bd
00:d0:23:f4:80:12:be:4a:64:4d:af:99:af:52:ef:
8d:f5:73:9a:1a:28:2b:92:e8:d4:90:25:3e:85:47:
9f:c9:c4:b9:7a:35:24:84:2f:1e:51:16:66:d3:ac:
31:ea:f1:63:a4:4c:ea:26:f0:fa:61:c7:9f:f2:74:
69:6a:78:09:c5:c9:89:74:db:6d:ba:c7:b6:b1:f0:
61:1f:ef:3a:1c:d5:c6:fc:95:5d:9b:37:d6:5b:cb:
37:93:59:ed:50:f2:6a:a2:01:5c:9e:22:af:3a:31:
d9:ee:eb:33:49:93:4e:46:ee:9d:7b:86:86:da:2b:
1d:f9:f3:a2:01:7d:0d:55:1c:3b:67:e9:c9:fb:bc:
a9:52:4c:4a:21:85:68:50:2f:e4:05:c1:3f:e0:b3:
a3:25:d4:6c:2e:61:7c:9d:d5:da:93:bb:19:fe:ea:
bf:f2:c8:f9:dc:de:48:54:e1:fe:d4:b5:94:5a:3f:
2c:2b:8c:b1:6c:ef:3a:b0:d2:0c:2c:13:75:61:db:
97:6b:fa:6b:f9:9d:f7:14:aa:35:72:d8:4c:0b:a1:
5c:08:c5:87:d4:e4:87:1d:6b:0a:50:1f:b5:0e:3f:
bb:36:8b:c6:e0:bd:1e:1a:e1:1c:f3:37:a4:91:65:
4c:43:b4:9e:cc:1b:61:68:09:bd:1e:ab:61:bd:c1:
91:71
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
X509v3 Subject Key Identifier:
C7:C6:EF:F5:61:D2:A0:08:81:6A:6B:44:2C:F5:72:F7:DA:DE:5B:B9
AB:D2:88:CA:9C:44:26:89:2E:C0:B9:8D:46:DD:5C:69:02:9E:01:CB
X509v3 Authority Key Identifier:
keyid:B8:92:DE:FD:8A:18:B3:30:C3:9F:55:F3:33:5D:B4:C8:29:8A:41:14
keyid:A4:FD:B9:39:1B:81:B3:AA:EB:88:1D:D4:81:A9:B5:11:70:CC:A7:E1
Authority Information Access:
OCSP - URI:http://server.w1.fi:8888/
@ -37,27 +46,40 @@ Certificate:
X509v3 Extended Key Usage:
TLS Web Client Authentication, TLS Web Server Authentication
Signature Algorithm: sha256WithRSAEncryption
1c:47:3b:a1:09:82:7d:f8:84:e2:b4:0c:26:5b:bb:f2:9a:62:
80:ae:8e:fa:c6:4d:4b:83:73:b9:b1:d4:f8:61:5b:bb:ff:00:
e4:86:a1:c9:9d:a2:99:e8:70:6b:41:81:4c:12:22:74:60:54:
8c:34:e8:01:a3:d5:4d:47:11:ec:39:71:2b:dc:b4:dc:2b:5d:
49:df:49:bf:ad:de:e6:e6:6a:76:06:74:a5:50:9c:bc:46:ce:
a4:4f:5c:f3:0c:bc:08:c5:f7:a8:aa:bf:4a:60:d6:a1:30:82:
6f:94:f1:68:09:0d:d5:94:64:e5:3f:ee:be:5d:ce:5d:91:99:
60:c2
5f:6e:13:f9:af:c4:47:4d:78:19:5e:d2:bb:21:55:c3:4b:64:
42:94:fe:37:7b:3a:4a:fc:42:f1:fc:b3:c3:05:93:46:39:cd:
a3:40:c9:90:47:a2:6b:af:d8:21:a9:1e:11:02:c8:84:e2:b2:
8b:52:ad:30:49:e7:80:16:98:d2:0c:01:56:c2:f5:6c:a4:98:
b0:a2:af:6c:e8:6e:6d:9b:31:21:22:91:51:81:e1:f0:0d:eb:
97:96:98:58:84:b3:29:a6:8f:d2:b5:ce:37:a7:64:b8:7f:fb:
f7:15:3c:c0:c7:2a:7f:bb:50:67:a0:5b:55:65:5d:1f:0a:90:
10:16:c1:93:cd:a3:ab:8b:4b:9a:f0:e2:e7:ac:e6:5a:fd:bf:
46:37:92:3e:f7:f5:d8:57:87:c2:88:cc:b1:40:06:92:d5:f0:
f2:3d:c5:d0:fd:48:5c:bf:bf:5b:da:82:11:55:6d:95:17:f2:
43:be:8e:e7:f5:0e:d3:b3:de:65:ea:8c:85:4b:bd:4d:93:f0:
6f:8b:2f:0e:fb:9f:cb:65:e8:72:68:92:43:08:1d:3e:1f:5a:
e5:1c:5d:7e:16:06:04:23:9e:c0:82:8a:a6:33:66:c3:3f:2a:
ad:1a:5a:90:02:56:3a:e6:45:d9:f1:02:a5:cd:16:63:03:04:
42:85:1c:49
-----BEGIN CERTIFICATE-----
MIIChzCCAfCgAwIBAgIJANjT46bL480iMA0GCSqGSIb3DQEBCwUAMC8xCzAJBgNV
BAYTAkZJMQ4wDAYDVQQKDAV3MS5maTEQMA4GA1UEAwwHUm9vdCBDQTAeFw0xOTEw
MDQxMzAyMjNaFw0yMDEwMDMxMzAyMjNaMDUxCzAJBgNVBAYTAkZJMQ4wDAYDVQQK
DAV3MS5maTEWMBQGA1UEAwwNc2VydmVyNi53MS5maTCBnzANBgkqhkiG9w0BAQEF
AAOBjQAwgYkCgYEAyjAe/RNqAihRmg6pHnJ+51rIywx+ipmBjQWzCbCphueuRPrg
x+7zGLQxZeMFb2ZO4+SFgZtHf1+1FiuwWZGcxVXT08osgc7wJ6hU3g5P2PARvQsQ
Vjgm36k6lRWTphbt0h60tcCoYY6uEAT95ibKSg2QS7msyZTysWuXa2Ak6r0CAwEA
AaOBpDCBoTAJBgNVHRMEAjAAMB0GA1UdDgQWBBTHxu/1YdKgCIFqa0Qs9XL32t5b
uTAfBgNVHSMEGDAWgBS4kt79ihizMMOfVfMzXbTIKYpBFDA1BggrBgEFBQcBAQQp
MCcwJQYIKwYBBQUHMAGGGWh0dHA6Ly9zZXJ2ZXIudzEuZmk6ODg4OC8wHQYDVR0l
BBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMA0GCSqGSIb3DQEBCwUAA4GBABxHO6EJ
gn34hOK0DCZbu/KaYoCujvrGTUuDc7mx1PhhW7v/AOSGocmdopnocGtBgUwSInRg
VIw06AGj1U1HEew5cSvctNwrXUnfSb+t3ubmanYGdKVQnLxGzqRPXPMMvAjF96iq
v0pg1qEwgm+U8WgJDdWUZOU/7r5dzl2RmWDC
MIIDnjCCAoagAwIBAgIJANjT46bL481iMA0GCSqGSIb3DQEBCwUAMEExCzAJBgNV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-----END CERTIFICATE-----