diff options
author | sthen <> | 2015-12-15 20:23:51 +0000 |
---|---|---|
committer | sthen <> | 2015-12-15 20:23:51 +0000 |
commit | 82bcb14ffe18bcb56f7a2b947bcb45d21b21341c (patch) | |
tree | 1bc02fc62f67c5d56dc57729d2ff39f4080a0f13 /src | |
parent | f9a93df50ef815acfe85719ca87ec7a2e02d3fb6 (diff) | |
download | openbsd-82bcb14ffe18bcb56f7a2b947bcb45d21b21341c.tar.gz openbsd-82bcb14ffe18bcb56f7a2b947bcb45d21b21341c.tar.bz2 openbsd-82bcb14ffe18bcb56f7a2b947bcb45d21b21341c.zip |
Remove "C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification
Authority" (serial 3c:91:31:cb:1f:f6:d0:1b:0e:9a:b8:d0:44:bf:12:be) root
certificate from cert.pem. ok rpe@
Symantec/VeriSign say "Browsers/root store operators are encouraged to
remove/untrust this root from their root stores" and "hasn't been used to
generate new certificates in several years, and will now be repurposed to
provide transition support for some of our enterprise customers' legacy,
non-public applications" (https://www.symantec.com/page.jsp?id=roots,
http://www.scmagazine.com/google-will-remove-trust-of-symantecs-pca3-g1-certificate/article/459688/).
Also see
https://knowledge.symantec.com/support/ssl-certificates-support/index?page=content&id=ALERT1941
https://googleonlinesecurity.blogspot.co.uk/2015/12/proactive-measures-in-digital.html
Diffstat (limited to 'src')
-rw-r--r-- | src/lib/libcrypto/cert.pem | 49 |
1 files changed, 0 insertions, 49 deletions
diff --git a/src/lib/libcrypto/cert.pem b/src/lib/libcrypto/cert.pem index 3a626e5a66..8c213a7a58 100644 --- a/src/lib/libcrypto/cert.pem +++ b/src/lib/libcrypto/cert.pem | |||
@@ -533,55 +533,6 @@ qdq5snUb9kLy78fyGPmJvKP/iiMucEc= | |||
533 | -----END CERTIFICATE----- | 533 | -----END CERTIFICATE----- |
534 | Certificate: | 534 | Certificate: |
535 | Data: | 535 | Data: |
536 | Version: 1 (0x0) | ||
537 | Serial Number: | ||
538 | 3c:91:31:cb:1f:f6:d0:1b:0e:9a:b8:d0:44:bf:12:be | ||
539 | Signature Algorithm: sha1WithRSAEncryption | ||
540 | Issuer: C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority | ||
541 | Validity | ||
542 | Not Before: Jan 29 00:00:00 1996 GMT | ||
543 | Not After : Aug 2 23:59:59 2028 GMT | ||
544 | Subject: C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority | ||
545 | Subject Public Key Info: | ||
546 | Public Key Algorithm: rsaEncryption | ||
547 | Public-Key: (1024 bit) | ||
548 | Modulus: | ||
549 | 00:c9:5c:59:9e:f2:1b:8a:01:14:b4:10:df:04:40: | ||
550 | db:e3:57:af:6a:45:40:8f:84:0c:0b:d1:33:d9:d9: | ||
551 | 11:cf:ee:02:58:1f:25:f7:2a:a8:44:05:aa:ec:03: | ||
552 | 1f:78:7f:9e:93:b9:9a:00:aa:23:7d:d6:ac:85:a2: | ||
553 | 63:45:c7:72:27:cc:f4:4c:c6:75:71:d2:39:ef:4f: | ||
554 | 42:f0:75:df:0a:90:c6:8e:20:6f:98:0f:f8:ac:23: | ||
555 | 5f:70:29:36:a4:c9:86:e7:b1:9a:20:cb:53:a5:85: | ||
556 | e7:3d:be:7d:9a:fe:24:45:33:dc:76:15:ed:0f:a2: | ||
557 | 71:64:4c:65:2e:81:68:45:a7 | ||
558 | Exponent: 65537 (0x10001) | ||
559 | Signature Algorithm: sha1WithRSAEncryption | ||
560 | 10:72:52:a9:05:14:19:32:08:41:f0:c5:6b:0a:cc:7e:0f:21: | ||
561 | 19:cd:e4:67:dc:5f:a9:1b:e6:ca:e8:73:9d:22:d8:98:6e:73: | ||
562 | 03:61:91:c5:7c:b0:45:40:6e:44:9d:8d:b0:b1:96:74:61:2d: | ||
563 | 0d:a9:45:d2:a4:92:2a:d6:9a:75:97:6e:3f:53:fd:45:99:60: | ||
564 | 1d:a8:2b:4c:f9:5e:a7:09:d8:75:30:d7:d2:65:60:3d:67:d6: | ||
565 | 48:55:75:69:3f:91:f5:48:0b:47:69:22:69:82:96:be:c9:c8: | ||
566 | 38:86:4a:7a:2c:73:19:48:69:4e:6b:7c:65:bf:0f:fc:70:ce: | ||
567 | 88:90 | ||
568 | SHA1 Fingerprint=A1:DB:63:93:91:6F:17:E4:18:55:09:40:04:15:C7:02:40:B0:AE:6B | ||
569 | -----BEGIN CERTIFICATE----- | ||
570 | MIICPDCCAaUCEDyRMcsf9tAbDpq40ES/Er4wDQYJKoZIhvcNAQEFBQAwXzELMAkG | ||
571 | A1UEBhMCVVMxFzAVBgNVBAoTDlZlcmlTaWduLCBJbmMuMTcwNQYDVQQLEy5DbGFz | ||
572 | cyAzIFB1YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9yaXR5MB4XDTk2 | ||
573 | MDEyOTAwMDAwMFoXDTI4MDgwMjIzNTk1OVowXzELMAkGA1UEBhMCVVMxFzAVBgNV | ||
574 | BAoTDlZlcmlTaWduLCBJbmMuMTcwNQYDVQQLEy5DbGFzcyAzIFB1YmxpYyBQcmlt | ||
575 | YXJ5IENlcnRpZmljYXRpb24gQXV0aG9yaXR5MIGfMA0GCSqGSIb3DQEBAQUAA4GN | ||
576 | ADCBiQKBgQDJXFme8huKARS0EN8EQNvjV69qRUCPhAwL0TPZ2RHP7gJYHyX3KqhE | ||
577 | BarsAx94f56TuZoAqiN91qyFomNFx3InzPRMxnVx0jnvT0Lwdd8KkMaOIG+YD/is | ||
578 | I19wKTakyYbnsZogy1Olhec9vn2a/iRFM9x2Fe0PonFkTGUugWhFpwIDAQABMA0G | ||
579 | CSqGSIb3DQEBBQUAA4GBABByUqkFFBkyCEHwxWsKzH4PIRnN5GfcX6kb5sroc50i | ||
580 | 2JhucwNhkcV8sEVAbkSdjbCxlnRhLQ2pRdKkkirWmnWXbj9T/UWZYB2oK0z5XqcJ | ||
581 | 2HUw19JlYD1n1khVdWk/kfVIC0dpImmClr7JyDiGSnoscxlIaU5rfGW/D/xwzoiQ | ||
582 | -----END CERTIFICATE----- | ||
583 | Certificate: | ||
584 | Data: | ||
585 | Version: 3 (0x2) | 536 | Version: 3 (0x2) |
586 | Serial Number: | 537 | Serial Number: |
587 | 18:da:d1:9e:26:7d:e8:bb:4a:21:58:cd:cc:6b:3b:4a | 538 | 18:da:d1:9e:26:7d:e8:bb:4a:21:58:cd:cc:6b:3b:4a |