HEX
Server: LiteSpeed
System: Linux w5304130.sdnsbox.com 4.18.0-425.3.1.lve.el8.x86_64 #1 SMP Tue Nov 22 22:59:23 EST 2022 x86_64
User: makefitmeserver (1001)
PHP: 8.2.30
Disabled: NONE
Upload Files
File: //usr/share/pki/ca-trust-source/ca-bundle.trust.p11-kit
# This is a bundle of X.509 certificates of public Certificate
# Authorities.  It was generated from the Mozilla root CA list.
# These certificates and trust/distrust attributes use the file format accepted
# by the p11-kit-trust module.
#
# Source: nss/lib/ckfw/builtins/certdata.txt
# Source: nss/lib/ckfw/builtins/nssckbi.h
#
# Generated from:
# NSS_BUILTINS_LIBRARY_VERSION "2.54"
#
[p11-kit-object-v1]
label: "A-CERT ADVANCED"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3euXIy+mnf6BYKbK+QH5
k679tUFqeT8jlZxMew8eNiHuw9KoxWBzL6KksK+5uK7Gatw+sbAYntEGE80P+Jg1
hADMe+Fr5V0bc6QS3gkVtfUCW/RIvfMM39oxvmqJmOgPnJU7H6+nmLtsq61tv9kV
Ji/24Y5wXW3odet72sF57EoG6s78w0BUVLNcMngS9bZZzmdG3/d6JbkGgoNF/8Dc
gCBJW/t0JrcIzyppXIOVtUzzOrrU86zuUgT3Rtkl5kjG7DEHpFb9H0fTOY1v8+gR
oaO62gA0PCiysgVZjwgVeYe3KAg11nznyleDv198uK3Dc1oXIGYjJx2FpKWUvAuA
EwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-CERT ADVANCED"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, ST = Austria, L = Vienna, O = ARGE DATEN - Austrian Society for Data Protection, OU = A-CERT Certification Service, CN = A-CERT ADVANCED, emailAddress = info@a-cert.at
#        Validity
#            Not Before: Oct 23 14:14:14 2004 GMT
#            Not After : Oct 23 14:14:14 2011 GMT
#        Subject: C = AT, ST = Austria, L = Vienna, O = ARGE DATEN - Austrian Society for Data Protection, OU = A-CERT Certification Service, CN = A-CERT ADVANCED, emailAddress = info@a-cert.at
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:dd:eb:97:23:2f:a6:9d:fe:81:60:a6:ca:f9:01:
#                    f9:93:ae:fd:b5:41:6a:79:3f:23:95:9c:4c:7b:0f:
#                    1e:36:21:ee:c3:d2:a8:c5:60:73:2f:a2:a4:b0:af:
#                    b9:b8:ae:c6:6a:dc:3e:b1:b0:18:9e:d1:06:13:cd:
#                    0f:f8:98:35:84:00:cc:7b:e1:6b:e5:5d:1b:73:a4:
#                    12:de:09:15:b5:f5:02:5b:f4:48:bd:f3:0c:df:da:
#                    31:be:6a:89:98:e8:0f:9c:95:3b:1f:af:a7:98:bb:
#                    6c:ab:ad:6d:bf:d9:15:26:2f:f6:e1:8e:70:5d:6d:
#                    e8:75:eb:7b:da:c1:79:ec:4a:06:ea:ce:fc:c3:40:
#                    54:54:b3:5c:32:78:12:f5:b6:59:ce:67:46:df:f7:
#                    7a:25:b9:06:82:83:45:ff:c0:dc:80:20:49:5b:fb:
#                    74:26:b7:08:cf:2a:69:5c:83:95:b5:4c:f3:3a:ba:
#                    d4:f3:ac:ee:52:04:f7:46:d9:25:e6:48:c6:ec:31:
#                    07:a4:56:fd:1f:47:d3:39:8d:6f:f3:e8:11:a1:a3:
#                    ba:da:00:34:3c:28:b2:b2:05:59:8f:08:15:79:87:
#                    b7:28:08:35:d6:7c:e7:ca:57:83:bf:5f:7c:b8:ad:
#                    c3:73:5a:17:20:66:23:27:1d:85:a4:a5:94:bc:0b:
#                    80:13
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                37:7F:3E:3E:99:71:60:CA:24:D4:91:13:79:D0:74:29:B4:A8:24:D8
#            X509v3 Authority Key Identifier: 
#                keyid:37:7F:3E:3E:99:71:60:CA:24:D4:91:13:79:D0:74:29:B4:A8:24:D8
#                DirName:/C=AT/ST=Austria/L=Vienna/O=ARGE DATEN - Austrian Society for Data Protection/OU=A-CERT Certification Service/CN=A-CERT ADVANCED/emailAddress=info@a-cert.at
#                serial:00
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Key Encipherment, Certificate Sign, CRL Sign
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, Time Stamping, Microsoft Encrypted File System
#            Netscape Cert Type: 
#                SSL Client, SSL Server, S/MIME, Object Signing, Unused, SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Certificate Policies: 
#                Policy: 1.2.40.0.24.1.1.1.3
#                  CPS: http://www.a-cert.at/certificate-policy.html
#
#            Netscape CA Policy Url: 
#                http://www.a-cert.at/certificate-policy.html
#            X509v3 Subject Alternative Name: 
#                email:info@a-cert.at
#            X509v3 Issuer Alternative Name: 
#                email:info@a-cert.at, URI:http://www.a-cert.at
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:https://secure.a-cert.at/cgi-bin/a-cert-advanced.cgi
#
#    Signature Algorithm: sha1WithRSAEncryption
#         25:f5:22:f8:1f:74:6d:ab:bd:fb:f7:e4:ee:3c:bd:21:2f:71:
#         56:84:76:53:7c:51:21:41:1d:6c:f7:25:10:28:ce:0c:ef:68:
#         1b:70:1e:48:ca:67:0b:79:97:f0:56:3a:d8:db:bc:77:d1:8c:
#         3b:7b:8a:39:41:11:cc:4e:3a:b3:42:d5:f7:f2:30:7c:07:ad:
#         7a:6f:7d:fe:98:a5:0e:70:9f:19:88:60:44:1c:51:18:86:1c:
#         ca:ab:b8:45:f4:5a:4b:83:36:04:8a:c1:e7:ec:81:7b:36:ed:
#         e7:81:6a:e1:e0:34:65:5c:4d:81:f5:ae:61:ee:fd:9c:8b:a4:
#         bc:4e:c8:94:36:3c:2c:c0:d4:3c:d6:de:b5:a4:21:7f:76:a2:
#         02:7b:95:34:5d:5a:b6:f1:c1:42:f5:5c:68:a7:c6:79:da:43:
#         be:3e:ff:2d:29:23:d2:4d:12:fe:e2:73:6b:69:93:07:91:32:
#         99:1e:75:a2:d6:9a:c0:b5:fa:8a:df:29:37:9b:b2:0e:bd:68:
#         c6:82:c7:ba:3a:8c:d3:8d:46:64:7f:ed:35:5a:3d:ff:3f:93:
#         a8:39:d9:c1:d9:f5:85:a3:42:fb:a9:db:66:f9:ad:6c:46:27:
#         9a:f9:2d:9e:2f:08:f9:85:e3:e4:f8:96:eb:63:51:80:1a:fe:
#         51:ae:41:38

[p11-kit-object-v1]
label: "A-Trust-Qual-01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApoYHcSG8UxhDh31xonsC
NzRZXQFihVny6HzvuSNVG7wOWr7eyILBl8/7SP3+RxlG2rHCNIu8RtLalZQOXLUI
C0asYMR7YE5DHKrABGHbM9y2bAnVztUK7xARi00gAXcYi/4Elies++wksMe14NNh
8MT1fNnIxpEhdxDRiZ7biAAJ0Q1p/zkR4xWrTUcpqDGx2jhGV0hoX+2ORa6xxKhs
ovROrL+/OA3v09Wk77JJ/HFnlJg87//6Johv2v1fSkHsf+tVzfDrYVEFZ1/rv5Yi
9jSse+CNgvxoB1+QdFpDzarEjoJpbyf3Crk9D73lIFRQwANKGAYHBNSgzJQWzdJJ
jwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-Qual-01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 57923 (0xe243)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, O = A-Trust Ges. f\C3\BCr Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-Qual-01, CN = A-Trust-Qual-01
#        Validity
#            Not Before: Nov 30 23:00:00 2004 GMT
#            Not After : Nov 30 23:00:00 2014 GMT
#        Subject: C = AT, O = A-Trust Ges. f\C3\BCr Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-Qual-01, CN = A-Trust-Qual-01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a6:86:07:71:21:bc:53:18:43:87:7d:71:a2:7b:
#                    02:37:34:59:5d:01:62:85:59:f2:e8:7c:ef:b9:23:
#                    55:1b:bc:0e:5a:be:de:c8:82:c1:97:cf:fb:48:fd:
#                    fe:47:19:46:da:b1:c2:34:8b:bc:46:d2:da:95:94:
#                    0e:5c:b5:08:0b:46:ac:60:c4:7b:60:4e:43:1c:aa:
#                    c0:04:61:db:33:dc:b6:6c:09:d5:ce:d5:0a:ef:10:
#                    11:8b:4d:20:01:77:18:8b:fe:04:96:27:ac:fb:ec:
#                    24:b0:c7:b5:e0:d3:61:f0:c4:f5:7c:d9:c8:c6:91:
#                    21:77:10:d1:89:9e:db:88:00:09:d1:0d:69:ff:39:
#                    11:e3:15:ab:4d:47:29:a8:31:b1:da:38:46:57:48:
#                    68:5f:ed:8e:45:ae:b1:c4:a8:6c:a2:f4:4e:ac:bf:
#                    bf:38:0d:ef:d3:d5:a4:ef:b2:49:fc:71:67:94:98:
#                    3c:ef:ff:fa:26:88:6f:da:fd:5f:4a:41:ec:7f:eb:
#                    55:cd:f0:eb:61:51:05:67:5f:eb:bf:96:22:f6:34:
#                    ac:7b:e0:8d:82:fc:68:07:5f:90:74:5a:43:cd:aa:
#                    c4:8e:82:69:6f:27:f7:0a:b9:3d:0f:bd:e5:20:54:
#                    50:c0:03:4a:18:06:07:04:d4:a0:cc:94:16:cd:d2:
#                    49:8f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4B:3C:8C:1D:85:E9:6F:AD
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         21:4b:ac:98:9c:cc:25:18:90:f1:30:07:ac:90:0e:7a:57:ee:
#         5a:84:c6:72:a7:48:bf:b4:f2:b3:f7:cd:97:6c:85:d9:f8:ef:
#         1d:3f:09:d3:56:8a:89:a9:45:56:96:d5:79:0d:97:29:bd:4e:
#         d9:b1:ce:41:80:0a:82:c7:59:da:36:7f:b1:d2:f6:51:51:51:
#         4c:79:a2:74:bb:ba:3d:d8:16:08:14:61:25:84:04:2d:0a:29:
#         84:ef:50:56:f7:e1:00:0d:13:c1:b1:12:62:a4:f3:fa:79:48:
#         e4:6a:fb:09:97:bc:7f:a1:c4:9a:12:66:0a:d5:10:b1:d4:02:
#         b9:f1:a0:95:18:78:4f:eb:48:1a:23:46:72:7c:95:10:76:7d:
#         de:64:95:7a:91:6b:d5:50:36:f4:24:d1:3e:d7:ae:1a:30:3c:
#         d6:37:80:cf:da:5e:62:21:44:d4:25:ef:c4:af:5c:26:2b:f4:
#         05:c0:0b:14:b5:a6:00:30:a8:44:bc:c8:45:98:40:fa:c0:30:
#         61:49:b0:33:5a:ea:54:23:c0:de:40:50:bc:80:bd:e6:dc:90:
#         bc:dc:b6:74:6d:15:b3:e3:ba:3f:02:da:35:7f:ec:b9:29:44:
#         95:0d:3a:5f:69:75:57:03:1a:61:be:2f:64:a1:6a:37:46:ce:
#         84:15:c4:56

[p11-kit-object-v1]
label: "A-Trust-Qual-02"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlpGr146wWbgBvbQerZn9
ofzqDJZrjy5JSNjp5CSC4di6zOveB1xIxhmCAUdCCeF8uZ+uj/buXmuoqFaIOFaz
5v7JnU80OFE8nL7zrJwcyD1cmoSu95QsFLJkN2COFLA7Ks2JtSKv9+R/7iwrM/mO
PK1MolcP+4LFjh8B31OMwRWk3e6akhLSKOliFyVgMe/PMZTzffPkPCGrkPxtz2On
xhIAcUnXHMig7WOafeOPKN1g+djmFqsm0dAvvecNCd9u1OzlOFP0ZAu6WsyAtThZ
7IBZZYQxal9VkUwk5SSag4R6voDx7l8gB6p3F2wL4lWqlngIAp6X8CuuWPWAUD/+
OwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-Qual-02"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1330660 (0x144de4)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, O = A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-Qual-02, CN = A-Trust-Qual-02
#        Validity
#            Not Before: Jul  1 11:23:33 2014 GMT
#            Not After : Jul  1 09:23:33 2024 GMT
#        Subject: C = AT, O = A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-Qual-02, CN = A-Trust-Qual-02
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:96:91:ab:d7:8e:b0:59:b8:01:bd:b4:1e:ad:99:
#                    fd:a1:fc:ea:0c:96:6b:8f:2e:49:48:d8:e9:e4:24:
#                    82:e1:d8:ba:cc:eb:de:07:5c:48:c6:19:82:01:47:
#                    42:09:e1:7c:b9:9f:ae:8f:f6:ee:5e:6b:a8:a8:56:
#                    88:38:56:b3:e6:fe:c9:9d:4f:34:38:51:3c:9c:be:
#                    f3:ac:9c:1c:c8:3d:5c:9a:84:ae:f7:94:2c:14:b2:
#                    64:37:60:8e:14:b0:3b:2a:cd:89:b5:22:af:f7:e4:
#                    7f:ee:2c:2b:33:f9:8e:3c:ad:4c:a2:57:0f:fb:82:
#                    c5:8e:1f:01:df:53:8c:c1:15:a4:dd:ee:9a:92:12:
#                    d2:28:e9:62:17:25:60:31:ef:cf:31:94:f3:7d:f3:
#                    e4:3c:21:ab:90:fc:6d:cf:63:a7:c6:12:00:71:49:
#                    d7:1c:c8:a0:ed:63:9a:7d:e3:8f:28:dd:60:f9:d8:
#                    e6:16:ab:26:d1:d0:2f:bd:e7:0d:09:df:6e:d4:ec:
#                    e5:38:53:f4:64:0b:ba:5a:cc:80:b5:38:59:ec:80:
#                    59:65:84:31:6a:5f:55:91:4c:24:e5:24:9a:83:84:
#                    7a:be:80:f1:ee:5f:20:07:aa:77:17:6c:0b:e2:55:
#                    aa:96:78:08:02:9e:97:f0:2b:ae:58:f5:80:50:3f:
#                    fe:3b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                42:3D:2B:24:A6:C1:45:CE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         61:31:f3:88:35:09:b8:5e:9c:c5:e8:39:a4:3a:66:ff:02:b4:
#         97:1d:fe:4b:39:ba:85:98:83:28:a0:da:f6:4e:4c:b3:ad:44:
#         ca:fc:d1:3e:99:da:e6:d7:94:5f:76:db:3b:91:95:6a:fc:80:
#         9f:41:21:5e:68:fb:d6:68:05:6a:e2:99:47:ff:6e:8e:8e:f3:
#         13:56:fe:c3:7e:07:cf:05:4c:43:5a:a9:42:b8:39:c3:9c:f0:
#         15:43:ec:a8:fe:8e:62:04:0e:6e:52:53:1b:a7:9c:e7:6c:3b:
#         65:c7:01:7f:e6:05:aa:72:7f:e1:2b:14:94:08:fd:6e:88:e3:
#         c8:94:a7:de:56:fb:11:98:17:09:01:da:22:c5:33:3f:21:cd:
#         74:a5:ab:c9:30:63:88:db:4a:27:02:bb:d0:64:05:04:6d:74:
#         0b:03:c7:2c:f2:76:b1:7c:5e:81:a3:7e:94:f6:79:3a:c2:7e:
#         ea:f1:53:d7:85:58:9e:90:1c:9d:d7:b1:7a:f4:0f:9a:87:42:
#         2a:c3:84:8f:7f:d0:6a:35:12:1e:d5:8c:71:8c:38:42:9a:35:
#         ad:dd:aa:32:13:76:45:06:e1:a3:5b:ea:f6:8a:96:ff:bc:65:
#         35:fb:6a:32:cb:61:5d:d9:d3:26:88:c4:3b:80:68:56:5f:d5:
#         fa:81:62:dd

[p11-kit-object-v1]
label: "A-Trust-Qual-03"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs54kiBzSz0ADSGqqpaAr
vZb1fAqfn6tQkNtBzlaAeSrA/ZNTepxb81lhJIhjo9UY7puEdISc7Iw92sGGem82
Librfj3JPq3nrkt0dygrJCD/Ki7ClWQQ9n57w7faEX2eq+0vjBmiHJ2MzDNwdQkH
/l77QKQljC/9tVFnOqgrTJ/WaJ1gm6TFY7DucM0oP0p06ln5dcUABm4fsGPBKqoT
XfzL0mUbOTEiWsJ5Il0Z8UvCvs4ciAF08SZBdzI5xoxQaM9ThUOKD6CP7o4LkqMA
QL7AolleLKFEuP4fItMMutDo7ynkcjdKi/gW7CIyByojLPOj183KqadPcr+8EY6o
GwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-Qual-03"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 255636 (0x3e694)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, O = A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-Qual-03, CN = A-Trust-Qual-03
#        Validity
#            Not Before: Apr 24 22:00:00 2008 GMT
#            Not After : Apr 24 22:00:00 2018 GMT
#        Subject: C = AT, O = A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-Qual-03, CN = A-Trust-Qual-03
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:9e:24:88:1c:d2:cf:40:03:48:6a:aa:a5:a0:
#                    2b:bd:96:f5:7c:0a:9f:9f:ab:50:90:db:41:ce:56:
#                    80:79:2a:c0:fd:93:53:7a:9c:5b:f3:59:61:24:88:
#                    63:a3:d5:18:ee:9b:84:74:84:9c:ec:8c:3d:da:c1:
#                    86:7a:6f:36:2e:26:eb:7e:3d:c9:3e:ad:e7:ae:4b:
#                    74:77:28:2b:24:20:ff:2a:2e:c2:95:64:10:f6:7e:
#                    7b:c3:b7:da:11:7d:9e:ab:ed:2f:8c:19:a2:1c:9d:
#                    8c:cc:33:70:75:09:07:fe:5e:fb:40:a4:25:8c:2f:
#                    fd:b5:51:67:3a:a8:2b:4c:9f:d6:68:9d:60:9b:a4:
#                    c5:63:b0:ee:70:cd:28:3f:4a:74:ea:59:f9:75:c5:
#                    00:06:6e:1f:b0:63:c1:2a:aa:13:5d:fc:cb:d2:65:
#                    1b:39:31:22:5a:c2:79:22:5d:19:f1:4b:c2:be:ce:
#                    1c:88:01:74:f1:26:41:77:32:39:c6:8c:50:68:cf:
#                    53:85:43:8a:0f:a0:8f:ee:8e:0b:92:a3:00:40:be:
#                    c0:a2:59:5e:2c:a1:44:b8:fe:1f:22:d3:0c:ba:d0:
#                    e8:ef:29:e4:72:37:4a:8b:f8:16:ec:22:32:07:2a:
#                    23:2c:f3:a3:d7:cd:ca:a9:a7:4f:72:bf:bc:11:8e:
#                    a8:1b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                46:06:DF:37:F2:C2:37:10
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         71:08:d4:26:44:be:80:e2:6b:42:b5:2a:50:fd:5d:e8:8c:60:
#         f3:9c:b6:92:81:72:38:b2:6f:a9:3e:81:f2:c3:34:24:53:a1:
#         51:52:c8:a5:89:d3:bc:dc:db:12:b9:db:a9:b0:58:ef:c0:08:
#         66:32:62:e3:e1:f3:a3:58:a3:77:6e:ee:e4:a1:bb:57:11:68:
#         77:33:08:f4:cd:59:b8:ea:5d:1b:09:c6:ac:cc:8d:0b:ba:cd:
#         df:d6:9a:be:ab:76:00:ad:7d:16:4b:64:5c:df:98:3e:6b:6d:
#         5e:2c:7c:39:15:59:42:37:20:3c:9f:c3:dc:7f:f5:53:36:b7:
#         e2:c7:a4:22:8c:7a:be:71:bd:4d:b3:68:c8:b8:a9:89:ff:71:
#         30:8b:cf:91:6d:f2:85:2e:a5:4a:22:7e:72:de:d4:ae:b1:ed:
#         0c:ef:fc:45:7d:2d:dc:24:ad:ed:79:07:e5:ad:4f:b2:e9:52:
#         74:49:b8:8c:52:fa:bd:12:e4:19:c3:fc:51:8d:16:e3:6b:68:
#         6e:39:9a:df:29:39:a5:bb:b1:a1:17:c1:17:e3:75:6a:fc:7d:
#         b1:72:3c:df:c1:ea:e5:a3:1c:d4:9d:59:1b:1a:74:1f:69:2a:
#         83:54:24:18:d3:ee:e5:e0:83:57:be:1b:e2:d0:1f:ad:6c:35:
#         be:8d:ba:5f

[p11-kit-object-v1]
label: "A-Trust-nQual-01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA//UcgBGenh5oWMzSd9vH
9I5nUlBYuhKkajsW94xzT0yKSvNgkes+ZZkp2UDVLgjw/obWzWX33dgylQdOjTsm
dds3DjAoI+BrZGaKhNMz6T0926aBOeZ5GWXv6lhF/+uMM/y/+BHZLyg0ihv1LD++
TLZglWOZthIO90VRUc+HHASDKR3peJcxKkpHQ7WTmOX55KxN994ceu58attb2PBM
n/DuHz0OUbTfHqIUAnD0Nc+sqVNUezfYz0aZyPsszDosHd/kHCoR4tZogs6NKZDm
gdQsJn7E8jZfKlNDSVC/U2unHmu1k4cE4lqJdsg/PHHdnMt/PMaWzZH6wj5mTRi6
FQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-nQual-01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 57922 (0xe242)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, O = A-Trust, OU = A-Trust-nQual-01, CN = A-Trust-nQual-01
#        Validity
#            Not Before: Nov 30 23:00:00 2004 GMT
#            Not After : Nov 30 23:00:00 2014 GMT
#        Subject: C = AT, O = A-Trust, OU = A-Trust-nQual-01, CN = A-Trust-nQual-01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ff:f5:1c:80:11:9e:9e:1e:68:58:cc:d2:77:db:
#                    c7:f4:8e:67:52:50:58:ba:12:a4:6a:3b:16:f7:8c:
#                    73:4f:4c:8a:4a:f3:60:91:eb:3e:65:99:29:d9:40:
#                    d5:2e:08:f0:fe:86:d6:cd:65:f7:dd:d8:32:95:07:
#                    4e:8d:3b:26:75:db:37:0e:30:28:23:e0:6b:64:66:
#                    8a:84:d3:33:e9:3d:3d:db:a6:81:39:e6:79:19:65:
#                    ef:ea:58:45:ff:eb:8c:33:fc:bf:f8:11:d9:2f:28:
#                    34:8a:1b:f5:2c:3f:be:4c:b6:60:95:63:99:b6:12:
#                    0e:f7:45:51:51:cf:87:1c:04:83:29:1d:e9:78:97:
#                    31:2a:4a:47:43:b5:93:98:e5:f9:e4:ac:4d:f7:de:
#                    1c:7a:ee:7c:6a:db:5b:d8:f0:4c:9f:f0:ee:1f:3d:
#                    0e:51:b4:df:1e:a2:14:02:70:f4:35:cf:ac:a9:53:
#                    54:7b:37:d8:cf:46:99:c8:fb:2c:cc:3a:2c:1d:df:
#                    e4:1c:2a:11:e2:d6:68:82:ce:8d:29:90:e6:81:d4:
#                    2c:26:7e:c4:f2:36:5f:2a:53:43:49:50:bf:53:6b:
#                    a7:1e:6b:b5:93:87:04:e2:5a:89:76:c8:3f:3c:71:
#                    dd:9c:cb:7f:3c:c6:96:cd:91:fa:c2:3e:66:4d:18:
#                    ba:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4E:59:CE:C7:02:32:87:30
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         eb:d2:3d:47:58:54:f4:66:e5:f6:f5:7b:5b:b0:07:42:95:09:
#         02:51:40:be:fd:88:b7:f7:98:f2:9d:a8:b9:05:0f:55:a4:99:
#         8a:46:8a:b4:06:2b:08:3f:da:af:37:d7:07:8d:d0:7a:df:9d:
#         33:a0:a9:1e:c9:fc:8a:46:11:bd:02:9e:3e:35:ef:dc:4b:df:
#         f8:2d:5b:c7:02:40:8a:67:27:65:5e:96:f9:b3:4e:4e:97:68:
#         f2:55:e5:8f:19:26:7c:df:99:e5:2f:97:ce:f2:b6:b6:d5:2d:
#         3f:81:2d:60:e5:5a:c4:7c:36:98:f3:0d:6e:f0:de:63:e7:e8:
#         26:48:81:9f:72:98:8c:66:9b:31:a4:7c:9a:86:6a:a1:fe:68:
#         7e:3e:22:4b:f5:b2:6a:64:d9:b6:2e:af:fd:f2:b1:9f:5b:c8:
#         23:ef:ee:5a:47:31:57:90:d3:e7:ea:fd:1c:ba:27:d0:d6:05:
#         d1:58:37:d7:b5:a1:fa:05:83:57:9f:55:66:8f:9d:73:02:43:
#         6f:e9:1e:62:a3:05:62:8a:a9:ef:b4:86:91:91:ae:e3:54:bc:
#         34:66:24:41:8d:d7:f6:b3:47:46:40:db:2d:fa:4a:60:39:b2:
#         e8:d6:a7:a4:e1:35:10:75:b5:fe:c3:52:14:0b:38:de:a6:59:
#         28:91:10:c6

[p11-kit-object-v1]
label: "A-Trust-nQual-03"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArT1hbgPzkDvAQQuEgM3s
KqOda7tuwkKE91EU4aCoLVGjUfLeI/A0RP+U68wFI5VAuQd4pSX2Cr1FhujZvcAE
joVEYe9/p8n6wSXMhSxjPwVgc0kF4GB4lRBL3PkRWc5xf0Cbiqok3wtC4ttWvErS
pQybt0M+3YPTJhACz+ojxElO5dPptIirDK5iktRlh9lq1/SFn+QzIiWl5cgzusPH
QdxfxmrMAA5tMqi2hzYAYnebHh80y5A8eIh0Bet59ZNxZcqdx2sYLT1cTufV+D8x
fY+H7AoiLyPp/rt9yeD07Ot8xLDDLWK1mnHWsWro7Nnt1XLsvlcBzgVVn97RYIgQ
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-nQual-03"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 93214 (0x16c1e)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, O = A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-nQual-03, CN = A-Trust-nQual-03
#        Validity
#            Not Before: Aug 17 22:00:00 2005 GMT
#            Not After : Aug 17 22:00:00 2015 GMT
#        Subject: C = AT, O = A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU = A-Trust-nQual-03, CN = A-Trust-nQual-03
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:3d:61:6e:03:f3:90:3b:c0:41:0b:84:80:cd:
#                    ec:2a:a3:9d:6b:bb:6e:c2:42:84:f7:51:14:e1:a0:
#                    a8:2d:51:a3:51:f2:de:23:f0:34:44:ff:94:eb:cc:
#                    05:23:95:40:b9:07:78:a5:25:f6:0a:bd:45:86:e8:
#                    d9:bd:c0:04:8e:85:44:61:ef:7f:a7:c9:fa:c1:25:
#                    cc:85:2c:63:3f:05:60:73:49:05:e0:60:78:95:10:
#                    4b:dc:f9:11:59:ce:71:7f:40:9b:8a:aa:24:df:0b:
#                    42:e2:db:56:bc:4a:d2:a5:0c:9b:b7:43:3e:dd:83:
#                    d3:26:10:02:cf:ea:23:c4:49:4e:e5:d3:e9:b4:88:
#                    ab:0c:ae:62:92:d4:65:87:d9:6a:d7:f4:85:9f:e4:
#                    33:22:25:a5:e5:c8:33:ba:c3:c7:41:dc:5f:c6:6a:
#                    cc:00:0e:6d:32:a8:b6:87:36:00:62:77:9b:1e:1f:
#                    34:cb:90:3c:78:88:74:05:eb:79:f5:93:71:65:ca:
#                    9d:c7:6b:18:2d:3d:5c:4e:e7:d5:f8:3f:31:7d:8f:
#                    87:ec:0a:22:2f:23:e9:fe:bb:7d:c9:e0:f4:ec:eb:
#                    7c:c4:b0:c3:2d:62:b5:9a:71:d6:b1:6a:e8:ec:d9:
#                    ed:d5:72:ec:be:57:01:ce:05:55:9f:de:d1:60:88:
#                    10:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                44:6A:95:67:55:79:11:4F
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         55:d4:54:d1:59:48:5c:b3:93:85:aa:bf:63:2f:e4:80:ce:34:
#         a3:34:62:3e:f6:d8:ee:67:88:31:04:03:6f:0b:d4:07:fb:4e:
#         75:0f:d3:2e:d3:c0:17:c7:c6:28:ec:06:0d:11:24:0e:0e:a5:
#         5d:bf:8c:b2:13:96:71:dc:d4:ce:0e:0d:0a:68:32:6c:b9:41:
#         31:19:ab:b1:07:7b:4d:98:d3:5c:b0:d1:f0:a7:42:a0:b5:c4:
#         8e:af:fe:f1:3f:f4:ef:4f:46:00:76:eb:02:fb:f9:9d:d2:40:
#         96:c7:88:3a:b8:9f:11:79:f3:80:65:a8:bd:1f:d3:78:81:a0:
#         51:4c:37:b4:a6:5d:25:70:d1:66:c9:68:f9:2e:11:14:68:f1:
#         54:98:08:ac:26:92:0f:de:89:9e:d4:fa:b3:79:2b:d2:a3:79:
#         d4:ec:8b:ac:87:53:68:42:4c:51:51:74:1e:1b:27:2e:e3:f5:
#         1f:29:74:4d:ed:af:f7:e1:92:99:81:e8:be:3a:c7:17:50:f6:
#         b7:c6:fc:9b:b0:8a:6b:d6:88:03:91:8f:06:77:3a:85:02:dd:
#         98:d5:43:78:3f:c6:30:15:ac:9b:6b:cb:57:b7:89:51:8b:3a:
#         e8:c9:84:0c:db:b1:50:20:0a:1a:4a:ba:6a:1a:bd:ec:1b:c8:
#         c5:84:9a:cd

[p11-kit-object-v1]
label: "AC1 RAIZ MTIN"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC1 RAIZ MTIN"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 5545899491963 (0x50b415e827b)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN = AC1 RAIZ MTIN, serialNumber = S2819001E, OU = PRESTADOR DE SERVICIOS DE CERTIFICACION MTIN, OU = SUBDIRECCION GENERAL DE PROCESO DE DATOS, O = MINISTERIO DE TRABAJO E INMIGRACION, L = MADRID, C = ES
#        Validity
#            Not Before: Nov  5 16:17:45 2009 GMT
#            Not After : Nov  3 16:17:45 2019 GMT
#        Subject: CN = AC1 RAIZ MTIN, serialNumber = S2819001E, OU = PRESTADOR DE SERVICIOS DE CERTIFICACION MTIN, OU = SUBDIRECCION GENERAL DE PROCESO DE DATOS, O = MINISTERIO DE TRABAJO E INMIGRACION, L = MADRID, C = ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:dc:cd:cd:b1:bf:de:25:f5:ff:1c:33:73:99:3c:
#                    1b:a1:6d:f5:a0:c4:7d:9b:38:66:8d:09:df:03:6c:
#                    57:35:b4:13:41:fe:e3:5f:e6:22:04:58:18:b9:4e:
#                    69:33:04:3f:95:c7:d9:4e:ff:33:34:a7:32:40:32:
#                    93:57:fe:81:af:25:43:5c:1d:fd:7b:57:0b:62:08:
#                    67:67:62:b4:e3:e5:58:25:80:e6:aa:86:62:40:e7:
#                    4f:10:61:29:49:26:ab:4d:7c:a1:ab:5b:61:31:81:
#                    06:6a:64:94:4d:27:f8:4b:1e:d1:d5:43:e2:d7:b1:
#                    6d:f6:f6:ff:b4:70:55:f6:08:99:b7:74:01:e0:f3:
#                    9e:b5:7c:e4:04:88:08:50:59:78:1f:1a:94:db:ef:
#                    c8:c9:89:d3:37:b8:f3:3d:86:d1:19:cb:83:5a:10:
#                    07:08:4f:99:74:02:07:f0:32:51:c8:fb:e6:d0:3c:
#                    26:76:7d:72:7e:ac:76:37:c1:8a:75:20:5c:40:dc:
#                    84:3f:d0:49:7c:4d:67:ae:39:ef:e4:ce:80:e1:ca:
#                    9d:e6:2d:ab:2e:e6:12:95:da:f9:fb:df:e3:e2:8c:
#                    3d:87:fb:45:6e:44:ab:f6:78:92:27:14:a1:5d:6b:
#                    4f:70:7b:57:73:ef:f9:5d:a8:0f:75:9f:ef:11:60:
#                    19:84:b0:64:40:ee:d8:a9:86:fa:a5:d7:45:f4:11:
#                    6f:f1:86:c8:34:5b:88:48:ce:ba:dd:cd:9b:dd:88:
#                    e3:01:36:e8:ac:6a:e8:12:0b:b0:e0:7b:90:1e:85:
#                    0b:49:89:01:f6:ff:82:df:58:65:22:83:48:d6:07:
#                    d0:1c:66:fc:66:28:3a:c4:c3:e5:f8:99:65:27:52:
#                    58:f3:6b:f1:6f:02:44:84:75:d0:a4:e3:68:53:61:
#                    72:ef:f6:2f:a9:b3:ac:f5:f4:f6:d0:5c:dc:69:4c:
#                    cc:79:d2:a4:1b:c8:73:06:34:74:b4:f1:6a:ca:29:
#                    28:c7:34:84:5b:23:d8:ba:00:8c:cc:09:c1:c7:6f:
#                    5d:04:ab:b7:4f:26:77:a9:35:cf:20:d6:b3:ff:31:
#                    69:d0:34:fb:25:ec:68:96:0a:a2:dd:83:1f:ca:3c:
#                    8f:74:36:25:54:ef:f5:18:7b:c2:24:31:d1:fb:82:
#                    04:ae:04:82:d6:f5:02:29:71:e1:92:71:74:8e:db:
#                    aa:71:1d:c4:3b:c6:62:26:6c:86:3c:23:55:eb:29:
#                    d1:1f:ab:ca:1e:63:e7:b3:73:b4:a7:b8:2a:3a:f6:
#                    1f:fb:87:65:88:fc:f3:9f:fe:bf:eb:d5:1d:b6:a8:
#                    03:e9:65:83:19:8c:e0:18:ed:17:d8:1c:0d:3d:9c:
#                    8a:58:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Authority Information Access: 
#                OCSP - URI:http://ca.mtin.es/mtin/ocsp
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:admin_ca@mtin.es
#            X509v3 Issuer Alternative Name: 
#                email:admin_ca@mtin.es
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://ca.mtin.es/mtin/crl/MTINAutoridadRaiz
#
#                Full Name:
#                  URI:http://ca2.mtin.es/mtin/crl/MTINAutoridadRaiz
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.27781.2.4.1
#                  CPS: http://ca.mtin.es/mtin/DPCyPoliticas
#                  User Notice:
#                    Explicit Text: Certificado ra�z. Consulte las condiciones de uso en http://ca.mtin.es/mtin/DPCyPoliticas
#
#            X509v3 Subject Key Identifier: 
#                33:43:18:B3:C4:4B:1D:CB:1F:F9:F0:4E:FC:DF:4A:E4:15:60:C8:83
#            X509v3 Authority Key Identifier: 
#                keyid:33:43:18:B3:C4:4B:1D:CB:1F:F9:F0:4E:FC:DF:4A:E4:15:60:C8:83
#                DirName:/CN=AC1 RAIZ MTIN/serialNumber=S2819001E/OU=PRESTADOR DE SERVICIOS DE CERTIFICACION MTIN/OU=SUBDIRECCION GENERAL DE PROCESO DE DATOS/O=MINISTERIO DE TRABAJO E INMIGRACION/L=MADRID/C=ES
#                serial:05:0B:41:5E:82:7B
#
#    Signature Algorithm: sha1WithRSAEncryption
#         99:e3:aa:0e:91:d3:92:a9:ea:ff:44:67:d3:a0:2d:20:67:f3:
#         10:0f:1a:37:77:5d:52:46:e6:6a:b8:f7:88:f3:82:c3:2a:f4:
#         61:0d:2c:9f:2f:86:2d:61:e9:60:59:bd:b7:4f:af:93:09:1c:
#         f9:33:77:40:9c:a1:7c:65:dc:5e:90:95:a9:f4:be:82:f4:fc:
#         82:1d:1e:c5:3d:e0:5c:ae:de:2d:d5:63:76:ab:f1:ec:24:a7:
#         20:f8:1e:e8:cf:71:82:03:dd:8e:76:62:2a:b5:29:88:13:24:
#         ad:5c:f4:a0:4a:b8:ea:13:8a:56:8d:6a:2f:68:39:72:86:58:
#         c4:a4:ab:75:7c:44:e7:1a:84:0c:8d:11:dc:19:b9:1c:36:ee:
#         f3:ff:51:9b:b3:43:c8:25:7e:e7:0e:48:a3:e4:4f:06:2d:15:
#         1e:a0:a6:47:90:57:3b:f8:2f:2d:db:23:ba:eb:23:93:b0:b8:
#         52:1b:60:1c:d4:19:b0:6d:78:8f:4b:9d:a7:0b:28:67:4a:dd:
#         78:48:bd:b1:3e:98:d4:bb:15:fe:b3:5f:6d:1d:75:c8:1e:cf:
#         0f:ae:4a:1a:5d:87:2c:06:74:6c:0a:85:53:24:5e:7a:c9:a0:
#         7c:71:9b:92:5d:6f:48:7f:b6:58:71:b2:4c:a6:1a:09:23:34:
#         50:71:15:6b:47:db:fb:be:1a:6d:c2:8c:94:2f:07:67:20:22:
#         67:63:b7:ab:c6:19:9c:96:0d:62:ea:08:a4:1a:70:ef:a9:b9:
#         ef:4e:c5:40:bc:e2:87:57:f3:03:ca:28:99:1a:c0:55:60:75:
#         7b:63:be:64:3f:96:4e:4b:8f:fd:2d:a6:74:c0:df:49:3a:ec:
#         55:7e:66:d3:ba:fd:ef:93:b1:63:f2:5b:3f:ed:76:a1:d9:d3:
#         0c:fe:2e:6f:0a:a6:53:4b:ef:d1:f3:47:ad:b9:1e:ec:4c:1f:
#         be:d0:83:53:c3:9b:15:45:ff:2e:07:d1:da:6a:92:45:e6:6c:
#         57:5b:24:2e:51:69:c9:30:cf:d7:fb:a4:01:35:5a:cd:a7:eb:
#         14:6f:b4:b7:60:22:08:c5:71:c8:93:e2:be:25:5f:f5:0c:fa:
#         58:51:3d:7b:c8:2f:37:f9:93:1c:2a:09:e0:67:fd:96:89:42:
#         ca:eb:36:b0:d6:1b:a6:50:0f:5a:9d:76:ff:a4:4f:c6:ec:0d:
#         c4:e1:d0:e7:58:3e:d6:79:c0:77:4d:0c:d5:b3:e4:98:4d:dd:
#         46:2e:52:b0:e2:0f:0d:42:36:a5:10:24:52:28:be:62:35:42:
#         39:c9:7a:96:1f:ee:e6:4b:59:3f:24:73:8b:bf:22:4b:66:f2:
#         db:0f:35:f1:37:9d:a0:24

[p11-kit-object-v1]
label: "ACA ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACA ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            47:43:91:24:3f:ce:c3:0d:57:48:28:6b:ee:80:5d:ab
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, serialNumber = Q2863006I, O = CONSEJO GENERAL DE LA ABOGACIA, CN = ACA ROOT
#        Validity
#            Not Before: May 27 10:58:51 2016 GMT
#            Not After : May 27 10:58:51 2041 GMT
#        Subject: C = ES, serialNumber = Q2863006I, O = CONSEJO GENERAL DE LA ABOGACIA, CN = ACA ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b9:2b:5e:f5:3e:ba:89:1e:9d:f5:d1:13:cf:bb:
#                    a3:5e:ba:e9:df:39:72:64:98:52:87:69:a5:b6:de:
#                    e1:bf:94:45:be:c5:f8:a4:53:67:15:50:dc:52:4f:
#                    2a:76:2c:2e:8d:20:6a:8c:e6:5d:b9:d9:68:be:91:
#                    1b:ba:69:03:18:ad:18:4e:36:a2:ac:46:ab:20:f8:
#                    03:6a:aa:ad:79:d5:df:1d:c1:ee:45:6f:21:74:f9:
#                    4d:b1:b1:3d:90:3b:3c:32:80:ed:ff:15:cf:51:ca:
#                    d7:a4:87:2e:aa:e5:0e:b6:d1:7a:5a:c7:b9:f8:51:
#                    bb:d9:94:dd:3e:c6:86:4e:0a:fe:3b:89:f2:f8:6e:
#                    24:ce:91:03:58:05:12:4a:dd:50:ab:41:7a:ce:ed:
#                    a9:1f:11:53:1e:a5:13:db:61:f0:f5:aa:80:de:74:
#                    79:1d:a4:e3:29:d6:fb:e0:fc:97:da:a2:b8:ab:22:
#                    3e:65:b0:21:c4:e5:c5:10:44:87:b2:e3:e0:2a:82:
#                    2e:7d:e6:f4:b8:a4:13:25:f3:77:60:5f:63:53:ae:
#                    2e:b1:9d:8a:6b:76:7b:3a:71:bd:92:81:36:b0:9c:
#                    82:f1:f7:c5:89:28:5d:ff:bc:42:06:b3:08:6a:4f:
#                    61:cd:a4:2d:90:d3:39:b8:77:ff:c8:c7:a3:79:bb:
#                    03:b9:91:03:01:34:12:d8:30:8b:b6:8c:02:ca:e4:
#                    48:ec:38:2a:32:4c:6d:ca:76:28:5a:86:0a:ba:d4:
#                    20:8e:af:a0:5f:20:2d:62:9c:88:f9:f1:15:6d:5b:
#                    bd:b1:03:50:c0:3f:36:d7:ae:3f:51:d1:ca:e3:58:
#                    66:44:e6:a3:9b:77:2e:31:fa:d9:7f:22:c4:05:4c:
#                    eb:74:1b:5c:63:7a:a6:02:93:7e:43:0e:76:14:0f:
#                    4d:6f:32:95:88:80:92:52:97:14:f5:3c:fc:94:07:
#                    d3:6c:29:05:95:46:0f:e4:71:e1:7f:f8:6d:14:12:
#                    82:92:b5:f3:53:3e:99:11:97:47:76:4a:09:72:ee:
#                    d4:c3:96:09:ac:da:ff:f1:4b:4b:b6:d7:25:cf:1e:
#                    4c:97:26:0b:34:bb:b6:94:f1:2c:64:71:5f:89:f2:
#                    15:3b:37:a7:02:e4:0d:4f:48:89:33:a3:8c:68:78:
#                    31:51:67:0a:19:db:b4:e2:74:2f:3d:7a:f3:77:00:
#                    9f:71:12:63:ff:73:2a:64:69:54:ec:ac:3a:ae:da:
#                    f2:58:63:34:7e:f8:3c:5e:c0:42:3a:a5:db:b3:a8:
#                    d4:5a:c1:4e:58:b8:69:b6:ac:82:62:db:d1:fb:1a:
#                    43:21:22:fc:1d:f5:9c:4f:4e:3b:e5:8d:ff:76:5a:
#                    23:5e:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1A:55:E4:15:31:E2:31:9B:11:D4:88:71:7A:00:3D:70:28:05:BF:CD
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.acabogacia.org/doc
#
#    Signature Algorithm: sha256WithRSAEncryption
#         7b:30:ca:55:86:d3:af:ee:1a:d7:b8:95:98:ec:f9:3b:dd:90:
#         13:a3:9c:92:45:a0:92:89:69:a1:71:91:bc:71:85:87:a0:2d:
#         30:09:e4:c2:53:3d:f4:a9:b7:68:2d:4d:99:cd:a4:cf:9e:3b:
#         90:9d:9a:0a:29:0d:2a:42:c1:3d:5b:6b:40:82:c5:8b:13:b1:
#         41:67:8f:be:a4:77:e0:c0:76:e4:f3:b6:29:56:2c:ef:71:4f:
#         c2:64:f1:da:b4:0b:ca:d0:39:5f:53:b2:83:01:fb:b2:7d:d9:
#         83:74:7a:35:d0:c1:5d:8f:9b:f7:5e:e7:52:df:ee:aa:37:93:
#         ab:d9:3d:7d:1e:f1:bd:1c:db:e8:75:dd:b8:5b:4c:e3:16:a3:
#         f6:75:88:0e:8f:3c:c3:0b:6c:db:60:59:e4:05:ab:28:46:f7:
#         66:69:25:77:de:ca:4a:33:d8:58:5e:7b:8f:9a:cf:52:8e:3d:
#         6d:fd:d1:b2:bd:3e:79:57:86:1e:44:1c:07:4d:f4:c2:10:aa:
#         78:cb:f3:51:17:0d:76:3d:8d:6e:68:49:e9:ef:07:49:d1:b8:
#         16:c9:79:9d:cc:ae:0b:05:47:7a:fd:98:ac:31:a1:90:5a:87:
#         62:f9:f8:ab:62:5a:e0:21:76:d0:68:42:e8:1c:be:72:81:f0:
#         c6:67:7d:7e:74:3c:d5:55:6f:8f:a5:68:96:11:f1:ca:d3:30:
#         17:bd:46:b6:31:af:70:e9:a4:84:37:57:ba:09:3c:2e:d9:0b:
#         13:56:07:3e:95:c4:b5:70:2f:93:c2:ae:af:81:5d:46:14:30:
#         fb:ae:c5:f3:9a:f7:41:7a:b1:de:4b:16:d9:45:75:47:02:7c:
#         14:1e:d5:b1:3b:a0:2c:41:b5:9b:4b:7b:a3:83:f0:b9:cc:ce:
#         1e:94:b7:5e:2e:23:06:95:91:1c:38:47:1c:ed:c4:78:0e:a4:
#         0f:fc:1b:7c:d6:f2:6b:d0:8a:5b:ea:96:f3:31:d4:5e:6a:c4:
#         94:b8:30:9f:95:e1:07:89:b8:88:d2:27:85:a4:61:74:e5:a8:
#         44:31:7a:20:75:e8:f8:d8:eb:b3:4f:aa:ff:53:3f:96:ed:ea:
#         bb:fc:51:40:a6:2b:ec:24:a1:fb:f9:44:8d:23:e7:a6:97:00:
#         0f:cb:a4:6a:bf:50:a0:ca:71:a2:6c:ae:6f:df:d9:83:82:66:
#         dc:53:5d:af:fa:54:f7:83:ff:ab:3f:89:95:a7:b4:6d:f3:0f:
#         0a:0d:48:33:2f:81:29:c7:4b:05:c4:c6:57:74:84:c3:98:36:
#         ff:ef:85:32:ab:62:9c:13:d1:22:87:b1:be:98:db:74:9a:8f:
#         ea:c2:d6:93:79:45:20:c3

[p11-kit-object-v1]
label: "ACCVRAIZ1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACCVRAIZ1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 6828503384748696800 (0x5ec3b7a6437fa4e0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN = ACCVRAIZ1, OU = PKIACCV, O = ACCV, C = ES
#        Validity
#            Not Before: May  5 09:37:37 2011 GMT
#            Not After : Dec 31 09:37:37 2030 GMT
#        Subject: CN = ACCVRAIZ1, OU = PKIACCV, O = ACCV, C = ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:9b:a9:ab:bf:61:4a:97:af:2f:97:66:9a:74:5f:
#                    d0:d9:96:fd:cf:e2:e4:66:ef:1f:1f:47:33:c2:44:
#                    a3:df:9a:de:1f:b5:54:dd:15:7c:69:35:11:6f:bb:
#                    c8:0c:8e:6a:18:1e:d8:8f:d9:16:bc:10:48:36:5c:
#                    f0:63:b3:90:5a:5c:24:37:d7:a3:d6:cb:09:71:b9:
#                    f1:01:72:84:b0:7d:db:4d:80:cd:fc:d3:6f:c9:f8:
#                    da:b6:0e:82:d2:45:85:a8:1b:68:a8:3d:e8:f4:44:
#                    6c:bd:a1:c2:cb:03:be:8c:3e:13:00:84:df:4a:48:
#                    c0:e3:22:0a:e8:e9:37:a7:18:4c:b1:09:0d:23:56:
#                    7f:04:4d:d9:17:84:18:a5:c8:da:40:94:73:eb:ce:
#                    0e:57:3c:03:81:3a:9d:0a:a1:57:43:69:ac:57:6d:
#                    79:90:78:e5:b5:b4:3b:d8:bc:4c:8d:28:a1:a7:a3:
#                    a7:ba:02:4e:25:d1:2a:ae:ed:ae:03:22:b8:6b:20:
#                    0f:30:28:54:95:7f:e0:ee:ce:0a:66:9d:d1:40:2d:
#                    6e:22:af:9d:1a:c1:05:19:d2:6f:c0:f2:9f:f8:7b:
#                    b3:02:42:fb:50:a9:1d:2d:93:0f:23:ab:c6:c1:0f:
#                    92:ff:d0:a2:15:f5:53:09:71:1c:ff:45:13:84:e6:
#                    26:5e:f8:e0:88:1c:0a:fc:16:b6:a8:73:06:b8:f0:
#                    63:84:02:a0:c6:5a:ec:e7:74:df:70:ae:a3:83:25:
#                    ea:d6:c7:97:87:93:a7:c6:8a:8a:33:97:60:37:10:
#                    3e:97:3e:6e:29:15:d6:a1:0f:d1:88:2c:12:9f:6f:
#                    aa:a4:c6:42:eb:41:a2:e3:95:43:d3:01:85:6d:8e:
#                    bb:3b:f3:23:36:c7:fe:3b:e0:a1:25:07:48:ab:c9:
#                    89:74:ff:08:8f:80:bf:c0:96:65:f3:ee:ec:4b:68:
#                    bd:9d:88:c3:31:b3:40:f1:e8:cf:f6:38:bb:9c:e4:
#                    d1:7f:d4:e5:58:9b:7c:fa:d4:f3:0e:9b:75:91:e4:
#                    ba:52:2e:19:7e:d1:f5:cd:5a:19:fc:ba:06:f6:fb:
#                    52:a8:4b:99:04:dd:f8:f9:b4:8b:50:a3:4e:62:89:
#                    f0:87:24:fa:83:42:c1:87:fa:d5:2d:29:2a:5a:71:
#                    7a:64:6a:d7:27:60:63:0d:db:ce:49:f5:8d:1f:90:
#                    89:32:17:f8:73:43:b8:d2:5a:93:86:61:d6:e1:75:
#                    0a:ea:79:66:76:88:4f:71:eb:04:25:d6:0a:5a:7a:
#                    93:e5:b9:4b:17:40:0f:b1:b6:b9:f5:de:4f:dc:e0:
#                    b3:ac:3b:11:70:60:84:4a:43:6e:99:20:c0:29:71:
#                    0a:c0:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Authority Information Access: 
#                CA Issuers - URI:http://www.accv.es/fileadmin/Archivos/certificados/raizaccv1.crt
#                OCSP - URI:http://ocsp.accv.es
#
#            X509v3 Subject Key Identifier: 
#                D2:87:B4:E3:DF:37:27:93:55:F6:56:EA:81:E5:36:CC:8C:1E:3F:BD
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:D2:87:B4:E3:DF:37:27:93:55:F6:56:EA:81:E5:36:CC:8C:1E:3F:BD
#
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  User Notice:
#                    Explicit Text: 
#                  CPS: http://www.accv.es/legislacion_c.htm
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.accv.es/fileadmin/Archivos/certificados/raizaccv1_der.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:accv@accv.es
#    Signature Algorithm: sha1WithRSAEncryption
#         97:31:02:9f:e7:fd:43:67:48:44:14:e4:29:87:ed:4c:28:66:
#         d0:8f:35:da:4d:61:b7:4a:97:4d:b5:db:90:e0:05:2e:0e:c6:
#         79:d0:f2:97:69:0f:bd:04:47:d9:be:db:b5:29:da:9b:d9:ae:
#         a9:99:d5:d3:3c:30:93:f5:8d:a1:a8:fc:06:8d:44:f4:ca:16:
#         95:7c:33:dc:62:8b:a8:37:f8:27:d8:09:2d:1b:ef:c8:14:27:
#         20:a9:64:44:ff:2e:d6:75:aa:6c:4d:60:40:19:49:43:54:63:
#         da:e2:cc:ba:66:e5:4f:44:7a:5b:d9:6a:81:2b:40:d5:7f:f9:
#         01:27:58:2c:c8:ed:48:91:7c:3f:a6:00:cf:c4:29:73:11:36:
#         de:86:19:3e:9d:ee:19:8a:1b:d5:b0:ed:8e:3d:9c:2a:c0:0d:
#         d8:3d:66:e3:3c:0d:bd:d5:94:5c:e2:e2:a7:35:1b:04:00:f6:
#         3f:5a:8d:ea:43:bd:5f:89:1d:a9:c1:b0:cc:99:e2:4d:00:0a:
#         da:c9:27:5b:e7:13:90:5c:e4:f5:33:a2:55:6d:dc:e0:09:4d:
#         2f:b1:26:5b:27:75:00:09:c4:62:77:29:08:5f:9e:59:ac:b6:
#         7e:ad:9f:54:30:22:03:c1:1e:71:64:fe:f9:38:0a:96:18:dd:
#         02:14:ac:23:cb:06:1c:1e:a4:7d:8d:0d:de:27:41:e8:ad:da:
#         15:b7:b0:23:dd:2b:a8:d3:da:25:87:ed:e8:55:44:4d:88:f4:
#         36:7e:84:9a:78:ac:f7:0e:56:49:0e:d6:33:25:d6:84:50:42:
#         6c:20:12:1d:2a:d5:be:bc:f2:70:81:a4:70:60:be:05:b5:9b:
#         9e:04:44:be:61:23:ac:e9:a5:24:8c:11:80:94:5a:a2:a2:b9:
#         49:d2:c1:dc:d1:a7:ed:31:11:2c:9e:19:a6:ee:e1:55:e1:c0:
#         ea:cf:0d:84:e4:17:b7:a2:7c:a5:de:55:25:06:ee:cc:c0:87:
#         5c:40:da:cc:95:3f:55:e0:35:c7:b8:84:be:b4:5d:cd:7a:83:
#         01:72:ee:87:e6:5f:1d:ae:b5:85:c6:26:df:e6:c1:9a:e9:1e:
#         02:47:9f:2a:a8:6d:a9:5b:cf:ec:45:77:7f:98:27:9a:32:5d:
#         2a:e3:84:ee:c5:98:66:2f:96:20:1d:dd:d8:c3:27:d7:b0:f9:
#         fe:d9:7d:cd:d0:9f:8f:0b:14:58:51:9f:2f:8b:c3:38:2d:de:
#         e8:8f:d6:8d:87:a4:f5:56:43:16:99:2c:f4:a4:56:b4:34:b8:
#         61:37:c9:c2:58:80:1b:a0:97:a1:fc:59:8d:e9:11:f6:d1:0f:
#         4b:55:34:46:2a:8b:86:3b

[p11-kit-object-v1]
label: "ACEDICOM Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACEDICOM Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFtTCCA52gAwIBAgIIYY3HhjsBggUwDQYJKoZIhvcNAQEFBQAwRDEWMBQGA1UE
AwwNQUNFRElDT00gUm9vdDEMMAoGA1UECwwDUEtJMQ8wDQYDVQQKDAZFRElDT00x
CzAJBgNVBAYTAkVTMB4XDTA4MDQxODE2MjQyMloXDTI4MDQxMzE2MjQyMlowRDEW
MBQGA1UEAwwNQUNFRElDT00gUm9vdDEMMAoGA1UECwwDUEtJMQ8wDQYDVQQKDAZF
RElDT00xCzAJBgNVBAYTAkVTMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKC
AgEA/5KV4WgGdrQsyFhIyv2AVClVYyT/kGWbEHV7w2rbYgIB8hiGtXxaOLHkWLn7
09gtn70yN78sFW2+tfQh0hOR2QetAQXW8713zl9CgQr5auODAKgrLlUTY4HKRxx7
XBZXehuDYAQ6PmXDzQHe3qTWDLqO3tkE7hdWIpuPY/1NFgu3e3eM+SW10W2ZEi5P
Grjm6gSSrj0RuVFCPYewMYWveVqc/udOXpJPQ/yrOq2lEiZmueIM15jO1FillUAK
t0SdE3QrwqXrIhWYENiLxQSfHY9g5QYbm8+5eaA9oiM/Qj9r+hwDezCNzmzAv+Yb
X79nuIQZ1RXve8uQNjFiybwCq0Zfm/4aaJQ0PZCOrfbkHQl/Sog4P75n/TSW9R28
MHTLOO7VbKvU/PQAtwBbhTIWdjPp2KOZnQUAqhbm84F9b32qhm2tFXTTxKJxqvQU
fecyuB+81fFOvW8XAjnXDpVCOscAPukmYxHqC9FK/xidstd7LzrZlvvoHpKuE1XI
2Sf23EgbsCTBheN3nZqk8wwRHQ3ItBTutYJXCb8gWH8vIiPYcMt5bMlL8qkqyPyH
K9caUPgn6C9D4zq92Fdx/c6mUlv53U3t5fZvie27k5x2IXXwkkwp9y+cAS7+UEae
ZAwUswdbxcJzbPEHXEUkFDWug/FqTYl6+rPYLWbwNof1K1MCAwEAAaOBqjCBpzAP
BgNVHRMBAf8EBTADAQH/MB8GA1UdIwQYMBaAFKaz4SsrSbbXc6GqlPUB53NlTKxQ
MA4GA1UdDwEB/wQEAwIBhjAdBgNVHQ4EFgQUprPhKytJttdzoaqU9QHnc2VMrFAw
RAYDVR0gBD0wOzA5BgRVHSAAMDEwLwYIKwYBBQUHAgEWI2h0dHA6Ly9hY2VkaWNv
bS5lZGljb21ncm91cC5jb20vZG9jMA0GCSqGSIb3DQEBBQUAA4ICAQDOLAtSUWIm
fQwng4/F9tqgaHtPkl7qpHMyEVNEskTLnewPeUKzEKbHDZ3Ltvo/Onzqv4hTGzz3
gvoFNTPhNahXwOf9jU8/kzJPeGYDdwdY6ZXIfj7QeQCM8htRM5u8lOk6e25SLTKe
I6RF+7YuE7CLGLHdztUdp0J/Vb77W7tH1PwkzQSulgUV1qzOMPPKC8W64iLgpq0i
5ALudBF/TP94HTXa5gI06xgSYXcGCRZj6hitoocf8seACQl1ThCojz2GuHURwCRi
ipZ7SkXp7FnFvmuD5uHorLUwHv4FB4D54SMNUI8FmP8sX+g7tq3PgbUhh8oIKiMn
MCArz+2UW6yyetLHKKGKC5tNSixthT8Jcjxn4tncB7rrZXtaAWPWkFtPF2Y9fwsZ
o5NjEFIqnxQWWOLcpfShFosOkYuByptZ+thrkQdlVV9SH686+5DdaaVbnG0OLLb6
zqylfDJKZ0DcMDQj3dcEI2bw/FWAp/tmGYI1Z2JwOV5vx+qQQEQIHriy1tvuWacN
GHk0vFQYXlPKNFHtRQrmjseCNj6nOGOpMCwXEGCSn1WHElkQwg9naRHMTh5+Spqt
r0CodaxWkHS4oJyleW/c6RrIaQXpuvoDs3zk4E7Czp3otkYNbn5XOmeUwssfnHdK
Z05phkOTOPu220+DkdRgfks+KzgHVZhepA==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 7029493972724711941 (0x618dc7863b018205)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN = ACEDICOM Root, OU = PKI, O = EDICOM, C = ES
#        Validity
#            Not Before: Apr 18 16:24:22 2008 GMT
#            Not After : Apr 13 16:24:22 2028 GMT
#        Subject: CN = ACEDICOM Root, OU = PKI, O = EDICOM, C = ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ff:92:95:e1:68:06:76:b4:2c:c8:58:48:ca:fd:
#                    80:54:29:55:63:24:ff:90:65:9b:10:75:7b:c3:6a:
#                    db:62:02:01:f2:18:86:b5:7c:5a:38:b1:e4:58:b9:
#                    fb:d3:d8:2d:9f:bd:32:37:bf:2c:15:6d:be:b5:f4:
#                    21:d2:13:91:d9:07:ad:01:05:d6:f3:bd:77:ce:5f:
#                    42:81:0a:f9:6a:e3:83:00:a8:2b:2e:55:13:63:81:
#                    ca:47:1c:7b:5c:16:57:7a:1b:83:60:04:3a:3e:65:
#                    c3:cd:01:de:de:a4:d6:0c:ba:8e:de:d9:04:ee:17:
#                    56:22:9b:8f:63:fd:4d:16:0b:b7:7b:77:8c:f9:25:
#                    b5:d1:6d:99:12:2e:4f:1a:b8:e6:ea:04:92:ae:3d:
#                    11:b9:51:42:3d:87:b0:31:85:af:79:5a:9c:fe:e7:
#                    4e:5e:92:4f:43:fc:ab:3a:ad:a5:12:26:66:b9:e2:
#                    0c:d7:98:ce:d4:58:a5:95:40:0a:b7:44:9d:13:74:
#                    2b:c2:a5:eb:22:15:98:10:d8:8b:c5:04:9f:1d:8f:
#                    60:e5:06:1b:9b:cf:b9:79:a0:3d:a2:23:3f:42:3f:
#                    6b:fa:1c:03:7b:30:8d:ce:6c:c0:bf:e6:1b:5f:bf:
#                    67:b8:84:19:d5:15:ef:7b:cb:90:36:31:62:c9:bc:
#                    02:ab:46:5f:9b:fe:1a:68:94:34:3d:90:8e:ad:f6:
#                    e4:1d:09:7f:4a:88:38:3f:be:67:fd:34:96:f5:1d:
#                    bc:30:74:cb:38:ee:d5:6c:ab:d4:fc:f4:00:b7:00:
#                    5b:85:32:16:76:33:e9:d8:a3:99:9d:05:00:aa:16:
#                    e6:f3:81:7d:6f:7d:aa:86:6d:ad:15:74:d3:c4:a2:
#                    71:aa:f4:14:7d:e7:32:b8:1f:bc:d5:f1:4e:bd:6f:
#                    17:02:39:d7:0e:95:42:3a:c7:00:3e:e9:26:63:11:
#                    ea:0b:d1:4a:ff:18:9d:b2:d7:7b:2f:3a:d9:96:fb:
#                    e8:1e:92:ae:13:55:c8:d9:27:f6:dc:48:1b:b0:24:
#                    c1:85:e3:77:9d:9a:a4:f3:0c:11:1d:0d:c8:b4:14:
#                    ee:b5:82:57:09:bf:20:58:7f:2f:22:23:d8:70:cb:
#                    79:6c:c9:4b:f2:a9:2a:c8:fc:87:2b:d7:1a:50:f8:
#                    27:e8:2f:43:e3:3a:bd:d8:57:71:fd:ce:a6:52:5b:
#                    f9:dd:4d:ed:e5:f6:6f:89:ed:bb:93:9c:76:21:75:
#                    f0:92:4c:29:f7:2f:9c:01:2e:fe:50:46:9e:64:0c:
#                    14:b3:07:5b:c5:c2:73:6c:f1:07:5c:45:24:14:35:
#                    ae:83:f1:6a:4d:89:7a:fa:b3:d8:2d:66:f0:36:87:
#                    f5:2b:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A6:B3:E1:2B:2B:49:B6:D7:73:A1:AA:94:F5:01:E7:73:65:4C:AC:50
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A6:B3:E1:2B:2B:49:B6:D7:73:A1:AA:94:F5:01:E7:73:65:4C:AC:50
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://acedicom.edicomgroup.com/doc
#
#    Signature Algorithm: sha1WithRSAEncryption
#         ce:2c:0b:52:51:62:26:7d:0c:27:83:8f:c5:f6:da:a0:68:7b:
#         4f:92:5e:ea:a4:73:32:11:53:44:b2:44:cb:9d:ec:0f:79:42:
#         b3:10:a6:c7:0d:9d:cb:b6:fa:3f:3a:7c:ea:bf:88:53:1b:3c:
#         f7:82:fa:05:35:33:e1:35:a8:57:c0:e7:fd:8d:4f:3f:93:32:
#         4f:78:66:03:77:07:58:e9:95:c8:7e:3e:d0:79:00:8c:f2:1b:
#         51:33:9b:bc:94:e9:3a:7b:6e:52:2d:32:9e:23:a4:45:fb:b6:
#         2e:13:b0:8b:18:b1:dd:ce:d5:1d:a7:42:7f:55:be:fb:5b:bb:
#         47:d4:fc:24:cd:04:ae:96:05:15:d6:ac:ce:30:f3:ca:0b:c5:
#         ba:e2:22:e0:a6:ad:22:e4:02:ee:74:11:7f:4c:ff:78:1d:35:
#         da:e6:02:34:eb:18:12:61:77:06:09:16:63:ea:18:ad:a2:87:
#         1f:f2:c7:80:09:09:75:4e:10:a8:8f:3d:86:b8:75:11:c0:24:
#         62:8a:96:7b:4a:45:e9:ec:59:c5:be:6b:83:e6:e1:e8:ac:b5:
#         30:1e:fe:05:07:80:f9:e1:23:0d:50:8f:05:98:ff:2c:5f:e8:
#         3b:b6:ad:cf:81:b5:21:87:ca:08:2a:23:27:30:20:2b:cf:ed:
#         94:5b:ac:b2:7a:d2:c7:28:a1:8a:0b:9b:4d:4a:2c:6d:85:3f:
#         09:72:3c:67:e2:d9:dc:07:ba:eb:65:7b:5a:01:63:d6:90:5b:
#         4f:17:66:3d:7f:0b:19:a3:93:63:10:52:2a:9f:14:16:58:e2:
#         dc:a5:f4:a1:16:8b:0e:91:8b:81:ca:9b:59:fa:d8:6b:91:07:
#         65:55:5f:52:1f:af:3a:fb:90:dd:69:a5:5b:9c:6d:0e:2c:b6:
#         fa:ce:ac:a5:7c:32:4a:67:40:dc:30:34:23:dd:d7:04:23:66:
#         f0:fc:55:80:a7:fb:66:19:82:35:67:62:70:39:5e:6f:c7:ea:
#         90:40:44:08:1e:b8:b2:d6:db:ee:59:a7:0d:18:79:34:bc:54:
#         18:5e:53:ca:34:51:ed:45:0a:e6:8e:c7:82:36:3e:a7:38:63:
#         a9:30:2c:17:10:60:92:9f:55:87:12:59:10:c2:0f:67:69:11:
#         cc:4e:1e:7e:4a:9a:ad:af:40:a8:75:ac:56:90:74:b8:a0:9c:
#         a5:79:6f:dc:e9:1a:c8:69:05:e9:ba:fa:03:b3:7c:e4:e0:4e:
#         c2:ce:9d:e8:b6:46:0d:6e:7e:57:3a:67:94:c2:cb:1f:9c:77:
#         4a:67:4e:69:86:43:93:38:fb:b6:db:4f:83:91:d4:60:7e:4b:
#         3e:2b:38:07:55:98:5e:a4

[p11-kit-object-v1]
label: "ACNLB"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv3Z1PQx8QDpmX02M+908
Lv59lGTtStRJSKHukXGyeciOKx+q8DK0KLKjwnVPpOmmGvaiZmEjJ2EsbheQC/re
HnFSAikEmXmswLDAZpiYETdkEM+cvDtCHClcVZD2eiJOVq83aL90Omw8xpjMYCG/
4ggn5NkrvOOEldfUJGD8fi0vnSHrnZHGu6TR68kSraPoyLV/VUvrmQJUxIEcDK45
5Gp6BdhOcKD6A3ezrti4FJL7QXcTNWq3osqIS60tUbx2mmy7QL3nJEwipub9Tgh7
nQsQ1hLSpsahZDL0AXOWgeJIsMEoYz0752esbsUU9RcTopwfK1fwFSd1Xd2xNNaT
EQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACNLB"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1053001358 (0x3ec3868e)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SI, O = ACNLB
#        Validity
#            Not Before: May 15 11:52:45 2003 GMT
#            Not After : May 15 12:22:45 2023 GMT
#        Subject: C = SI, O = ACNLB
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:76:75:3d:0c:7c:40:3a:66:5f:4d:8c:fb:dd:
#                    3c:2e:fe:7d:94:64:ed:4a:d4:49:48:a1:ee:91:71:
#                    b2:79:c8:8e:2b:1f:aa:f0:32:b4:28:b2:a3:c2:75:
#                    4f:a4:e9:a6:1a:f6:a2:66:61:23:27:61:2c:6e:17:
#                    90:0b:fa:de:1e:71:52:02:29:04:99:79:ac:c0:b0:
#                    c0:66:98:98:11:37:64:10:cf:9c:bc:3b:42:1c:29:
#                    5c:55:90:f6:7a:22:4e:56:af:37:68:bf:74:3a:6c:
#                    3c:c6:98:cc:60:21:bf:e2:08:27:e4:d9:2b:bc:e3:
#                    84:95:d7:d4:24:60:fc:7e:2d:2f:9d:21:eb:9d:91:
#                    c6:bb:a4:d1:eb:c9:12:ad:a3:e8:c8:b5:7f:55:4b:
#                    eb:99:02:54:c4:81:1c:0c:ae:39:e4:6a:7a:05:d8:
#                    4e:70:a0:fa:03:77:b3:ae:d8:b8:14:92:fb:41:77:
#                    13:35:6a:b7:a2:ca:88:4b:ad:2d:51:bc:76:9a:6c:
#                    bb:40:bd:e7:24:4c:22:a6:e6:fd:4e:08:7b:9d:0b:
#                    10:d6:12:d2:a6:c6:a1:64:32:f4:01:73:96:81:e2:
#                    48:b0:c1:28:63:3d:3b:e7:67:ac:6e:c5:14:f5:17:
#                    13:a2:9c:1f:2b:57:f0:15:27:75:5d:dd:b1:34:d6:
#                    93:11
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:C = SI, O = ACNLB, CN = CRL1
#
#            X509v3 Private Key Usage Period: 
#                Not Before: May 15 11:52:45 2003 GMT, Not After: May 15 12:22:45 2023 GMT
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:CC:BB:BB:86:D6:6F:F8:BE:B4:47:22:77:B3:B6:AD:D7:01:59:96:4D
#
#            X509v3 Subject Key Identifier: 
#                CC:BB:BB:86:D6:6F:F8:BE:B4:47:22:77:B3:B6:AD:D7:01:59:96:4D
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            1.2.840.113533.7.65.0: 
#                0...V6.0:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         11:67:cb:cb:9a:6b:20:21:dd:6f:69:83:d5:3f:0d:ba:93:15:
#         97:4e:70:76:26:5c:e8:9e:24:e7:37:fe:3c:50:f4:d4:f9:2a:
#         2f:0c:13:a1:5d:04:bc:d0:b0:e9:c2:03:17:85:05:61:3d:c0:
#         a7:aa:76:4c:c3:b8:3a:83:a9:86:cf:03:f9:77:0e:2b:b2:3d:
#         76:1b:65:d1:6a:71:60:71:db:bb:b8:7a:8e:f2:f9:21:83:f8:
#         57:4c:a8:c7:dd:65:c6:ee:ef:6f:b3:b6:99:bb:b4:c3:d0:ab:
#         5f:b2:a0:7e:dd:74:21:2c:c3:5a:eb:8d:a1:ca:d8:f0:c8:17:
#         ed:76:ba:84:63:6e:5b:b9:b5:ca:6d:d7:fc:34:39:80:2f:ba:
#         4f:df:8d:d8:fc:18:c4:3c:8a:35:2f:77:82:96:ad:20:92:18:
#         b2:e7:36:f4:ae:32:74:b8:47:d1:d8:0f:d8:2c:cb:6a:c2:00:
#         75:f9:2c:f8:42:0e:cb:fe:73:93:a9:8f:e1:c7:ae:21:37:f3:
#         ca:b9:0c:b4:e7:89:7e:71:1c:56:34:20:c3:f1:34:b9:55:4b:
#         d3:53:52:f1:07:2d:2b:3e:5b:19:40:9f:10:ed:d3:29:33:c5:
#         af:0f:10:56:87:da:3b:c8:b1:ed:38:d9:19:fb:4b:f0:50:2d:
#         a4:cd:d4:58

[p11-kit-object-v1]
label: "AC RAIZ DNIE"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAgACtDMOjIAejY//3NKDN
7mpUCBddsQEVp+a5X4px/wzCHeo3896Tf9YFTYSy1dccDPTEkXBADlrImKSA6A0z
wAfzt/WsoTh6wGZUJPxSzDAq8sPEoSx2v8HAv4Lxm/BoehNAyJe8HCUHCAq3lu/M
KVTg5mUt6rIusQlpEk4w1dj4vACAL02TD80uVxszu58wTsSly3mn++I0GLYgnhuf
XafJOq1FZLMYzhESnG0eVUUohJxXZ035y+KLj1gJ1Dn/yDbSOOIMZX8VDn3BB92p
It+RAMRscTR03Dnq6k9EaX9Y21gKUnEr7KkdUHQz+Slq+v6Z9OfMRUVtylolohLj
ztc4BTnwGgn1dlnOYm96NA0s0bwEEuw9U8j60ALLzj0htcXgOTNlzzlTyZtG+Z0z
81mACEG+b0ug+krOpHYcheKvrxSdZaz3f5fkM0mmr77OKzfxLsFzBZycYEydMA2X
VJ6BYrvn4C/3FAcUqXeR6dyRlY7TiJAzR29xwxRp+qYtAR4b6tMu4n8L3M/nIvDx
QaMBkuWA076pYqhViAs0NOzcIRWq79YiXon1UZITKm+AFtmxDdku+BC4wv5SRTOc
HTh83BVpNHO/oCy7EXuUzfg3LW8974Naxh6bdEmP2cKNvhZ2UMha0SUW9vbMjJxa
MJ5lvtCaSJPX+mgNdTGH+fcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC RAIZ DNIE"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d2:85:70:fd:ae:a7:d6:5f:11:84:15:c6:31:b5:cb
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = DIRECCION GENERAL DE LA POLICIA, OU = DNIE, CN = AC RAIZ DNIE
#        Validity
#            Not Before: Feb 16 10:37:25 2006 GMT
#            Not After : Feb  8 22:59:59 2036 GMT
#        Subject: C = ES, O = DIRECCION GENERAL DE LA POLICIA, OU = DNIE, CN = AC RAIZ DNIE
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:80:00:ad:0c:c3:a3:20:07:a3:63:ff:f7:34:a0:
#                    cd:ee:6a:54:08:17:5d:b1:01:15:a7:e6:b9:5f:8a:
#                    71:ff:0c:c2:1d:ea:37:f3:de:93:7f:d6:05:4d:84:
#                    b2:d5:d7:1c:0c:f4:c4:91:70:40:0e:5a:c8:98:a4:
#                    80:e8:0d:33:c0:07:f3:b7:f5:ac:a1:38:7a:c0:66:
#                    54:24:fc:52:cc:30:2a:f2:c3:c4:a1:2c:76:bf:c1:
#                    c0:bf:82:f1:9b:f0:68:7a:13:40:c8:97:bc:1c:25:
#                    07:08:0a:b7:96:ef:cc:29:54:e0:e6:65:2d:ea:b2:
#                    2e:b1:09:69:12:4e:30:d5:d8:f8:bc:00:80:2f:4d:
#                    93:0f:cd:2e:57:1b:33:bb:9f:30:4e:c4:a5:cb:79:
#                    a7:fb:e2:34:18:b6:20:9e:1b:9f:5d:a7:c9:3a:ad:
#                    45:64:b3:18:ce:11:12:9c:6d:1e:55:45:28:84:9c:
#                    57:67:4d:f9:cb:e2:8b:8f:58:09:d4:39:ff:c8:36:
#                    d2:38:e2:0c:65:7f:15:0e:7d:c1:07:dd:a9:22:df:
#                    91:00:c4:6c:71:34:74:dc:39:ea:ea:4f:44:69:7f:
#                    58:db:58:0a:52:71:2b:ec:a9:1d:50:74:33:f9:29:
#                    6a:fa:fe:99:f4:e7:cc:45:45:6d:ca:5a:25:a2:12:
#                    e3:ce:d7:38:05:39:f0:1a:09:f5:76:59:ce:62:6f:
#                    7a:34:0d:2c:d1:bc:04:12:ec:3d:53:c8:fa:d0:02:
#                    cb:ce:3d:21:b5:c5:e0:39:33:65:cf:39:53:c9:9b:
#                    46:f9:9d:33:f3:59:80:08:41:be:6f:4b:a0:fa:4a:
#                    ce:a4:76:1c:85:e2:af:af:14:9d:65:ac:f7:7f:97:
#                    e4:33:49:a6:af:be:ce:2b:37:f1:2e:c1:73:05:9c:
#                    9c:60:4c:9d:30:0d:97:54:9e:81:62:bb:e7:e0:2f:
#                    f7:14:07:14:a9:77:91:e9:dc:91:95:8e:d3:88:90:
#                    33:47:6f:71:c3:14:69:fa:a6:2d:01:1e:1b:ea:d3:
#                    2e:e2:7f:0b:dc:cf:e7:22:f0:f1:41:a3:01:92:e5:
#                    80:d3:be:a9:62:a8:55:88:0b:34:34:ec:dc:21:15:
#                    aa:ef:d6:22:5e:89:f5:51:92:13:2a:6f:80:16:d9:
#                    b1:0d:d9:2e:f8:10:b8:c2:fe:52:45:33:9c:1d:38:
#                    7c:dc:15:69:34:73:bf:a0:2c:bb:11:7b:94:cd:f8:
#                    37:2d:6f:3d:ef:83:5a:c6:1e:9b:74:49:8f:d9:c2:
#                    8d:be:16:76:50:c8:5a:d1:25:16:f6:f6:cc:8c:9c:
#                    5a:30:9e:65:be:d0:9a:48:93:d7:fa:68:0d:75:31:
#                    87:f9:f7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                8E:45:F4:9F:73:C5:FF:2F:1B:05:DB:01:47:60:1B:03:8A:81:B7:BA
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.dnie.es/dpc
#
#    Signature Algorithm: sha1WithRSAEncryption
#         75:e5:73:c9:51:51:2f:8b:19:a0:87:e9:ff:ae:36:36:a6:fc:
#         41:1f:e3:1e:d7:71:60:19:c6:6f:9a:02:30:bd:62:71:ad:73:
#         fe:91:2d:4e:e4:26:40:44:a9:ae:78:26:23:31:69:dc:9a:73:
#         96:1e:49:51:0b:e0:ef:c1:b8:43:ef:71:9c:ee:41:b7:c5:50:
#         1f:32:84:9e:22:86:f1:f7:1f:8f:d9:ad:2b:4e:da:97:28:97:
#         bb:96:9a:1a:f8:b1:d9:7a:04:f3:54:99:12:19:96:15:80:67:
#         39:ff:02:5f:7a:fc:55:42:50:5a:e6:b9:a2:ff:b8:a8:62:1e:
#         14:cd:d9:3f:be:a3:65:48:c5:3b:d7:37:ce:0d:fa:28:90:da:
#         bf:f9:e3:51:47:25:7d:4a:d3:67:4d:87:aa:62:bc:5e:ec:7a:
#         80:44:7c:f7:9f:0a:bd:65:57:94:ca:f2:11:66:d6:52:7f:e4:
#         3a:70:75:04:cd:3b:97:d4:36:72:f7:51:56:bf:34:f5:d2:41:
#         e1:b4:da:a8:43:fe:6b:12:49:12:b4:5d:cf:22:42:96:8c:08:
#         23:26:8c:b2:10:4e:5d:aa:53:ee:01:2f:75:e5:b9:a2:11:33:
#         c4:d7:6a:fd:f8:0e:ca:6e:82:d9:e7:bb:59:23:4e:b5:f9:11:
#         1d:2f:6b:23:f5:7b:11:20:ea:41:12:90:32:46:db:31:3b:a9:
#         c1:5b:73:68:3a:46:1b:8c:fe:97:b7:56:b9:61:99:cc:4e:f0:
#         83:fa:37:f1:de:1c:9d:1c:71:8b:03:93:c3:c4:73:82:2e:a8:
#         98:1d:64:a2:9a:8c:f7:54:08:4d:cf:ea:81:cb:f5:5b:09:99:
#         63:af:75:8c:96:f8:79:35:d5:dc:eb:41:81:79:38:84:5e:6f:
#         f1:6f:62:76:db:91:ce:5a:85:60:39:1d:5b:e2:2a:2f:43:25:
#         db:c2:7a:24:d3:15:b0:a2:f1:8c:a0:7d:6b:48:09:13:ff:a2:
#         4c:66:8a:ec:70:52:09:53:8c:30:cc:b8:d5:ba:24:dc:30:99:
#         3e:a1:5e:b7:df:81:ac:ec:37:be:4e:9b:27:58:de:7e:a1:9b:
#         54:7f:06:b6:2f:e4:32:50:fd:e7:10:bb:a8:cd:da:18:1b:d4:
#         63:66:3d:ea:51:71:39:f4:9c:3e:df:5a:f4:da:c7:4c:26:ed:
#         8b:b5:21:ba:34:79:02:73:61:10:da:98:31:a8:60:cb:7e:07:
#         a7:d0:b7:05:43:89:5b:cd:85:26:d9:b0:51:af:f7:8c:52:aa:
#         12:a7:58:df:92:9b:67:f2:9d:f2:e6:f4:69:31:f4:16:e7:de:
#         77:5b:1e:dd:9a:05:01:ad

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAunGAekyGbn/IE23Axn0c
AJePLAwjuxCaQKkat4eI+JtWavvme46Lko6nJV1ZEds2LrdRFx+pCB8EFyRYqjdK
GN/lOdRX/dfBLJEBkeIi1APAWPx3R+yPPnRDuqw0jU04dmeOsMhvMDNYcVy09Wtu
1AFQuBN+bEqjSdEgGe68wCkYZafe/u/dCpAh5xpnkkIQmF9PMLw+HEW0ENdoQBTA
QPrndxd65guPZVs82ZpS27W9nkbPPeuRBQLAlrJ2TE0QljuS+px/D5nfviM1RR4C
XP61qJuZJdpe8yLDOfXkKi7Txh/EbKrFHGoBBUov0sXBqDQmXWal0gIh+Ri3BvVO
mW+oq0xR6M9QGMV3yDkJLEmSMpmouxcXebBaxeajxFllRzWDXqnoNQuZu+TNIMab
SgY5tWj8IrruVYwrTurzseP8tpma1UL6cU0Iz4ceanF9+dO06aVxgXvCTkeWpfZ2
haMoj+mAboFTpW1fuEj5wvk2pi5J/7iWwowHs5uIWPzrGxzeLXDil5IwoYnjvFWo
J9ZL7ZCti/pjJVktqDXdypczvOXNx53R7O9eDkqQBiZjrbnZNS0HunZlLKxXj330
B5TXgQKWXaMHSdV60Ff5G+dTRnWqsHlCy2hxCOlgvTlpzvSvw1ZAx61Sognkb4ZH
ih/rKCddgyCvBMlsVpqLRvUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5d:93:8d:30:67:36:c8:06:1d:1a:c7:54:84:69:07
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, O = FNMT-RCM, OU = AC RAIZ FNMT-RCM
#        Validity
#            Not Before: Oct 29 15:59:56 2008 GMT
#            Not After : Jan  1 00:00:00 2030 GMT
#        Subject: C = ES, O = FNMT-RCM, OU = AC RAIZ FNMT-RCM
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:71:80:7a:4c:86:6e:7f:c8:13:6d:c0:c6:7d:
#                    1c:00:97:8f:2c:0c:23:bb:10:9a:40:a9:1a:b7:87:
#                    88:f8:9b:56:6a:fb:e6:7b:8e:8b:92:8e:a7:25:5d:
#                    59:11:db:36:2e:b7:51:17:1f:a9:08:1f:04:17:24:
#                    58:aa:37:4a:18:df:e5:39:d4:57:fd:d7:c1:2c:91:
#                    01:91:e2:22:d4:03:c0:58:fc:77:47:ec:8f:3e:74:
#                    43:ba:ac:34:8d:4d:38:76:67:8e:b0:c8:6f:30:33:
#                    58:71:5c:b4:f5:6b:6e:d4:01:50:b8:13:7e:6c:4a:
#                    a3:49:d1:20:19:ee:bc:c0:29:18:65:a7:de:fe:ef:
#                    dd:0a:90:21:e7:1a:67:92:42:10:98:5f:4f:30:bc:
#                    3e:1c:45:b4:10:d7:68:40:14:c0:40:fa:e7:77:17:
#                    7a:e6:0b:8f:65:5b:3c:d9:9a:52:db:b5:bd:9e:46:
#                    cf:3d:eb:91:05:02:c0:96:b2:76:4c:4d:10:96:3b:
#                    92:fa:9c:7f:0f:99:df:be:23:35:45:1e:02:5c:fe:
#                    b5:a8:9b:99:25:da:5e:f3:22:c3:39:f5:e4:2a:2e:
#                    d3:c6:1f:c4:6c:aa:c5:1c:6a:01:05:4a:2f:d2:c5:
#                    c1:a8:34:26:5d:66:a5:d2:02:21:f9:18:b7:06:f5:
#                    4e:99:6f:a8:ab:4c:51:e8:cf:50:18:c5:77:c8:39:
#                    09:2c:49:92:32:99:a8:bb:17:17:79:b0:5a:c5:e6:
#                    a3:c4:59:65:47:35:83:5e:a9:e8:35:0b:99:bb:e4:
#                    cd:20:c6:9b:4a:06:39:b5:68:fc:22:ba:ee:55:8c:
#                    2b:4e:ea:f3:b1:e3:fc:b6:99:9a:d5:42:fa:71:4d:
#                    08:cf:87:1e:6a:71:7d:f9:d3:b4:e9:a5:71:81:7b:
#                    c2:4e:47:96:a5:f6:76:85:a3:28:8f:e9:80:6e:81:
#                    53:a5:6d:5f:b8:48:f9:c2:f9:36:a6:2e:49:ff:b8:
#                    96:c2:8c:07:b3:9b:88:58:fc:eb:1b:1c:de:2d:70:
#                    e2:97:92:30:a1:89:e3:bc:55:a8:27:d6:4b:ed:90:
#                    ad:8b:fa:63:25:59:2d:a8:35:dd:ca:97:33:bc:e5:
#                    cd:c7:9d:d1:ec:ef:5e:0e:4a:90:06:26:63:ad:b9:
#                    d9:35:2d:07:ba:76:65:2c:ac:57:8f:7d:f4:07:94:
#                    d7:81:02:96:5d:a3:07:49:d5:7a:d0:57:f9:1b:e7:
#                    53:46:75:aa:b0:79:42:cb:68:71:08:e9:60:bd:39:
#                    69:ce:f4:af:c3:56:40:c7:ad:52:a2:09:e4:6f:86:
#                    47:8a:1f:eb:28:27:5d:83:20:af:04:c9:6c:56:9a:
#                    8b:46:f5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F7:7D:C5:FD:C4:E8:9A:1B:77:64:A7:F5:1D:A0:CC:BF:87:60:9A:6D
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.cert.fnmt.es/dpcs/
#
#    Signature Algorithm: sha256WithRSAEncryption
#         07:90:4a:df:f3:23:4e:f0:c3:9c:51:65:9b:9c:22:a2:8a:0c:
#         85:f3:73:29:6b:4d:fe:01:e2:a9:0c:63:01:bf:04:67:a5:9d:
#         98:5f:fd:01:13:fa:ec:9a:62:e9:86:fe:b6:62:d2:6e:4c:94:
#         fb:c0:75:45:7c:65:0c:f8:b2:37:cf:ac:0f:cf:8d:6f:f9:19:
#         f7:8f:ec:1e:f2:70:9e:f0:ca:b8:ef:b7:ff:76:37:76:5b:f6:
#         6e:88:f3:af:62:32:22:93:0d:3a:6a:8e:14:66:0c:2d:53:74:
#         57:65:1e:d5:b2:dd:23:81:3b:a5:66:23:27:67:09:8f:e1:77:
#         aa:43:cd:65:51:08:ed:51:58:fe:e6:39:f9:cb:47:84:a4:15:
#         f1:76:bb:a4:ee:a4:3b:c4:5f:ef:b2:33:96:11:18:b7:c9:65:
#         be:18:e1:a3:a4:dc:fa:18:f9:d3:bc:13:9b:39:7a:34:ba:d3:
#         41:fb:fa:32:8a:2a:b7:2b:86:0b:69:83:38:be:cd:8a:2e:0b:
#         70:ad:8d:26:92:ee:1e:f5:01:2b:0a:d9:d6:97:9b:6e:e0:a8:
#         19:1c:3a:21:8b:0c:1e:40:ad:03:e7:dd:66:7e:f5:b9:20:0d:
#         03:e8:96:f9:82:45:d4:39:e0:a0:00:5d:d7:98:e6:7d:9e:67:
#         73:c3:9a:2a:f7:ab:8b:a1:3a:14:ef:34:bc:52:0e:89:98:9a:
#         04:40:84:1d:7e:45:69:93:57:ce:eb:ce:f8:50:7c:4f:1c:6e:
#         04:43:9b:f9:d6:3b:23:18:e9:ea:8e:d1:4d:46:8d:f1:3b:e4:
#         6a:ca:ba:fb:23:b7:9b:fa:99:01:29:5a:58:5a:2d:e3:f9:d4:
#         6d:0e:26:ad:c1:6e:34:bc:32:f8:0c:05:fa:65:a3:db:3b:37:
#         83:22:e9:d6:dc:72:33:fd:5d:f2:20:bd:76:3c:23:da:28:f7:
#         f9:1b:eb:59:64:d5:dc:5f:72:7e:20:fc:cd:89:b5:90:67:4d:
#         62:7a:3f:4e:ad:1d:c3:39:fe:7a:f4:28:16:df:41:f6:48:80:
#         05:d7:0f:51:79:ac:10:ab:d4:ec:03:66:e6:6a:b0:ba:31:92:
#         42:40:6a:be:3a:d3:72:e1:6a:37:55:bc:ac:1d:95:b7:69:61:
#         f2:43:91:74:e6:a0:d3:0a:24:46:a1:08:af:d6:da:45:19:96:
#         d4:53:1d:5b:84:79:f0:c0:f7:47:ef:8b:8f:c5:06:ae:9d:4c:
#         62:9d:ff:46:04:f8:d3:c9:b6:10:25:40:75:fe:16:aa:c9:4a:
#         60:86:2f:ba:ef:30:77:e4:54:e2:b8:84:99:58:80:aa:13:8b:
#         51:3a:4f:48:f6:8b:b6:b3

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM SERVIDORES SEGUROS"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE9rpXU8jKq982SlIh5JfSg2ee8GVR0F6H
x0exWfJXR5sAApNEF2nbQsexsjoYDrRdjLNmXaE0+TYsSdvzRvyzRGlEE2b918X9
rzZNzgNNB3HPr2oF0qJDWgpSbwEDTo6L
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM SERVIDORES SEGUROS"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            62:f6:32:6c:e5:c4:e3:68:5c:1b:62:dd:9c:2e:9d:95
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = ES, O = FNMT-RCM, OU = Ceres, organizationIdentifier = VATES-Q2826004J, CN = AC RAIZ FNMT-RCM SERVIDORES SEGUROS
#        Validity
#            Not Before: Dec 20 09:37:33 2018 GMT
#            Not After : Dec 20 09:37:33 2043 GMT
#        Subject: C = ES, O = FNMT-RCM, OU = Ceres, organizationIdentifier = VATES-Q2826004J, CN = AC RAIZ FNMT-RCM SERVIDORES SEGUROS
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:f6:ba:57:53:c8:ca:ab:df:36:4a:52:21:e4:97:
#                    d2:83:67:9e:f0:65:51:d0:5e:87:c7:47:b1:59:f2:
#                    57:47:9b:00:02:93:44:17:69:db:42:c7:b1:b2:3a:
#                    18:0e:b4:5d:8c:b3:66:5d:a1:34:f9:36:2c:49:db:
#                    f3:46:fc:b3:44:69:44:13:66:fd:d7:c5:fd:af:36:
#                    4d:ce:03:4d:07:71:cf:af:6a:05:d2:a2:43:5a:0a:
#                    52:6f:01:03:4e:8e:8b
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                01:B9:2F:EF:BF:11:86:60:F2:4F:D0:41:6E:AB:73:1F:E7:D2:6E:49
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:ae:4a:e3:2b:40:c3:74:11:f2:95:ad:16:23:
#         de:4e:0c:1a:e6:5d:a5:24:5e:6b:44:7b:fc:38:e2:4f:cb:9c:
#         45:17:11:4c:14:27:26:55:39:75:4a:03:cc:13:90:9f:92:02:
#         31:00:fa:4a:6c:60:88:73:f3:ee:b8:98:62:a9:ce:2b:c2:d9:
#         8a:a6:70:31:1d:af:b0:94:4c:eb:4f:c6:e3:d1:f3:62:a7:3c:
#         ff:93:2e:07:5c:49:01:67:69:12:02:72:bf:e7

[p11-kit-object-v1]
label: "AC Raíz Certicámara S.A."
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC Raíz Certicámara S.A."
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGZjCCBE6gAwIBAgIPB35Sk3vgFeNX8GmMy+wMMA0GCSqGSIb3DQEBBQUAMHsx
CzAJBgNVBAYTAkNPMUcwRQYDVQQKDD5Tb2NpZWRhZCBDYW1lcmFsIGRlIENlcnRp
ZmljYWNpw7NuIERpZ2l0YWwgLSBDZXJ0aWPDoW1hcmEgUy5BLjEjMCEGA1UEAwwa
QUMgUmHDrXogQ2VydGljw6FtYXJhIFMuQS4wHhcNMDYxMTI3MjA0NjI5WhcNMzAw
NDAyMjE0MjAyWjB7MQswCQYDVQQGEwJDTzFHMEUGA1UECgw+U29jaWVkYWQgQ2Ft
ZXJhbCBkZSBDZXJ0aWZpY2FjacOzbiBEaWdpdGFsIC0gQ2VydGljw6FtYXJhIFMu
QS4xIzAhBgNVBAMMGkFDIFJhw616IENlcnRpY8OhbWFyYSBTLkEuMIICIjANBgkq
hkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAq2uJo1PMSCMI+8PPUZYILrgIem08kBeG
qentLhM0R7LQcNzJPNCNyu5LF6vQhbCnIwTLqKL85XXbQMpiiY9QngE9JlsYhBzL
fDe3fezTf3MZsGqy2IiKLUV0qPezuMDU2s0iiXRNWhU5cxh0T7XrmafBHoi0wpOQ
Y5fzp6cSsgkiBzPZkc0OnB8OIMfuuzONj8LSWKdf/WU34ojC2I+GdV75LaeHM/J4
Ny+LvB2GNzmxlPLYvEqcgxhaBvzz1NS6jBUJJfD5to0EfhcSM2tXSExP2yYe68yQ
54v5aHxwD6Mq0Do43zeX4lvegGHTgNiRg0JaTASJaBE8rF9ogEHMYELODVoqDA+b
MMCm8Ibbq0nXl21Ii/kDwFJnmxL3wvIumGVC2daa49AZMQyth9VXAnow6IYm+48j
ilSH5L887uvDdUhfHjlvgWJsxS3EF1QZtzeNnDeRyPYL1epjb4OsOMLzP96a++Ej
YfDIJss2yKHzMI+ko6Kh3VOz3vCaMh+DkXkwwakfU5tTohVTP92dsxA7SH2JD/zt
A/X7JWR1DhcZDY8AFmd5ekD8LVkH2ZD6mq093ICK5lw1omdMEWux+IBkAC1vImHF
rEsm5VoQgpukg3s0956JkSCXjrdCx2bD0Omk1vUgjcTDlaxECp1bczwmPS9KvqfJ
pxAe+59QafMCAwEAAaOB5jCB4zAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQE
AwIBBjAdBgNVHQ4EFgQU0QnQ6dfOeXRU+Tows/RtLAMDG2gwgaAGA1UdIASBmDCB
lTCBkgYEVR0gADCBiTArBggrBgEFBQcCARYfaHR0cDovL3d3dy5jZXJ0aWNhbWFy
YS5jb20vZHBjLzBaBggrBgEFBQcCAjBOGkxMaW1pdGFjaW9uZXMgZGUgZ2FyYW50
7WFzIGRlIGVzdGUgY2VydGlmaWNhZG8gc2UgcHVlZGVuIGVuY29udHJhciBlbiBs
YSBEUEMuMA0GCSqGSIb3DQEBBQUAA4ICAQBclLW4RZFNjmEfAygPU3zmpFmps4p6
xbD/CHwso3EcIRNnoZUSQDWDg4902zNc8El2CoFS3UnUmjIz75uny3XlesuXEpBc
unvFm9+7OSPI/5jOCk0iAUgHforA1SBClETvv3eiiWdIG0ADBaGJ7M9i4z0ldma/
Jre7Ir5v/zlXdLp6yQGVwZVR6Kss+LGGIOk/yzVb0hfpKv6DExdA7ohiZVvVO2Dp
ezy4ydV/NgIlqmjCMRW3MGXrfx1IebHPOeJCgBbT9ZMj/EyXyVo3bHwi2ErN0o42
gzmRkBDI8ck1fj+404HGIGQatlDCIaR43NAvO2STdPCWkPHv+wlaNECW8DYSwaN0
jJN+Qd53i+yG2dIPPy3RzECiiWZIHiCznCNZc6lEc7wkeZBWN7PGKX6jD/EpOe9+
XCgycDWs2rjIdWb8m0w5R44bb5tNAlQiM+9hup4phO9OSzNHdpdqy35f/RWmnkJD
W2ZaiogN9xa5P1FlK2Zqi9E4UqLWRhH6/JocdJ6PlwsCT2TG9WjTSy3/pDceiz+/
RL5hRqGEPQgnTIEgd4kI6mdAXmwIUV80WoyWaM3X94nCHNMyAK9Sy9NgWyo6R35r
MDOhYil/SrnhLecUIw4OGEfhefwVVdCx/CVxY3UzHCMrr1zZ7Ud3YA47Dx7SwNxk
BYn8eNZcLCZDqQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            07:7e:52:93:7b:e0:15:e3:57:f0:69:8c:cb:ec:0c
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CO, O = Sociedad Cameral de Certificaci\C3\B3n Digital - Certic\C3\A1mara S.A., CN = AC Ra\C3\ADz Certic\C3\A1mara S.A.
#        Validity
#            Not Before: Nov 27 20:46:29 2006 GMT
#            Not After : Apr  2 21:42:02 2030 GMT
#        Subject: C = CO, O = Sociedad Cameral de Certificaci\C3\B3n Digital - Certic\C3\A1mara S.A., CN = AC Ra\C3\ADz Certic\C3\A1mara S.A.
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ab:6b:89:a3:53:cc:48:23:08:fb:c3:cf:51:96:
#                    08:2e:b8:08:7a:6d:3c:90:17:86:a9:e9:ed:2e:13:
#                    34:47:b2:d0:70:dc:c9:3c:d0:8d:ca:ee:4b:17:ab:
#                    d0:85:b0:a7:23:04:cb:a8:a2:fc:e5:75:db:40:ca:
#                    62:89:8f:50:9e:01:3d:26:5b:18:84:1c:cb:7c:37:
#                    b7:7d:ec:d3:7f:73:19:b0:6a:b2:d8:88:8a:2d:45:
#                    74:a8:f7:b3:b8:c0:d4:da:cd:22:89:74:4d:5a:15:
#                    39:73:18:74:4f:b5:eb:99:a7:c1:1e:88:b4:c2:93:
#                    90:63:97:f3:a7:a7:12:b2:09:22:07:33:d9:91:cd:
#                    0e:9c:1f:0e:20:c7:ee:bb:33:8d:8f:c2:d2:58:a7:
#                    5f:fd:65:37:e2:88:c2:d8:8f:86:75:5e:f9:2d:a7:
#                    87:33:f2:78:37:2f:8b:bc:1d:86:37:39:b1:94:f2:
#                    d8:bc:4a:9c:83:18:5a:06:fc:f3:d4:d4:ba:8c:15:
#                    09:25:f0:f9:b6:8d:04:7e:17:12:33:6b:57:48:4c:
#                    4f:db:26:1e:eb:cc:90:e7:8b:f9:68:7c:70:0f:a3:
#                    2a:d0:3a:38:df:37:97:e2:5b:de:80:61:d3:80:d8:
#                    91:83:42:5a:4c:04:89:68:11:3c:ac:5f:68:80:41:
#                    cc:60:42:ce:0d:5a:2a:0c:0f:9b:30:c0:a6:f0:86:
#                    db:ab:49:d7:97:6d:48:8b:f9:03:c0:52:67:9b:12:
#                    f7:c2:f2:2e:98:65:42:d9:d6:9a:e3:d0:19:31:0c:
#                    ad:87:d5:57:02:7a:30:e8:86:26:fb:8f:23:8a:54:
#                    87:e4:bf:3c:ee:eb:c3:75:48:5f:1e:39:6f:81:62:
#                    6c:c5:2d:c4:17:54:19:b7:37:8d:9c:37:91:c8:f6:
#                    0b:d5:ea:63:6f:83:ac:38:c2:f3:3f:de:9a:fb:e1:
#                    23:61:f0:c8:26:cb:36:c8:a1:f3:30:8f:a4:a3:a2:
#                    a1:dd:53:b3:de:f0:9a:32:1f:83:91:79:30:c1:a9:
#                    1f:53:9b:53:a2:15:53:3f:dd:9d:b3:10:3b:48:7d:
#                    89:0f:fc:ed:03:f5:fb:25:64:75:0e:17:19:0d:8f:
#                    00:16:67:79:7a:40:fc:2d:59:07:d9:90:fa:9a:ad:
#                    3d:dc:80:8a:e6:5c:35:a2:67:4c:11:6b:b1:f8:80:
#                    64:00:2d:6f:22:61:c5:ac:4b:26:e5:5a:10:82:9b:
#                    a4:83:7b:34:f7:9e:89:91:20:97:8e:b7:42:c7:66:
#                    c3:d0:e9:a4:d6:f5:20:8d:c4:c3:95:ac:44:0a:9d:
#                    5b:73:3c:26:3d:2f:4a:be:a7:c9:a7:10:1e:fb:9f:
#                    50:69:f3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                D1:09:D0:E9:D7:CE:79:74:54:F9:3A:30:B3:F4:6D:2C:03:03:1B:68
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.certicamara.com/dpc/
#                  User Notice:
#                    Explicit Text: Limitaciones de garant�as de este certificado se pueden encontrar en la DPC.
#
#    Signature Algorithm: sha1WithRSAEncryption
#         5c:94:b5:b8:45:91:4d:8e:61:1f:03:28:0f:53:7c:e6:a4:59:
#         a9:b3:8a:7a:c5:b0:ff:08:7c:2c:a3:71:1c:21:13:67:a1:95:
#         12:40:35:83:83:8f:74:db:33:5c:f0:49:76:0a:81:52:dd:49:
#         d4:9a:32:33:ef:9b:a7:cb:75:e5:7a:cb:97:12:90:5c:ba:7b:
#         c5:9b:df:bb:39:23:c8:ff:98:ce:0a:4d:22:01:48:07:7e:8a:
#         c0:d5:20:42:94:44:ef:bf:77:a2:89:67:48:1b:40:03:05:a1:
#         89:ec:cf:62:e3:3d:25:76:66:bf:26:b7:bb:22:be:6f:ff:39:
#         57:74:ba:7a:c9:01:95:c1:95:51:e8:ab:2c:f8:b1:86:20:e9:
#         3f:cb:35:5b:d2:17:e9:2a:fe:83:13:17:40:ee:88:62:65:5b:
#         d5:3b:60:e9:7b:3c:b8:c9:d5:7f:36:02:25:aa:68:c2:31:15:
#         b7:30:65:eb:7f:1d:48:79:b1:cf:39:e2:42:80:16:d3:f5:93:
#         23:fc:4c:97:c9:5a:37:6c:7c:22:d8:4a:cd:d2:8e:36:83:39:
#         91:90:10:c8:f1:c9:35:7e:3f:b8:d3:81:c6:20:64:1a:b6:50:
#         c2:21:a4:78:dc:d0:2f:3b:64:93:74:f0:96:90:f1:ef:fb:09:
#         5a:34:40:96:f0:36:12:c1:a3:74:8c:93:7e:41:de:77:8b:ec:
#         86:d9:d2:0f:3f:2d:d1:cc:40:a2:89:66:48:1e:20:b3:9c:23:
#         59:73:a9:44:73:bc:24:79:90:56:37:b3:c6:29:7e:a3:0f:f1:
#         29:39:ef:7e:5c:28:32:70:35:ac:da:b8:c8:75:66:fc:9b:4c:
#         39:47:8e:1b:6f:9b:4d:02:54:22:33:ef:61:ba:9e:29:84:ef:
#         4e:4b:33:47:76:97:6a:cb:7e:5f:fd:15:a6:9e:42:43:5b:66:
#         5a:8a:88:0d:f7:16:b9:3f:51:65:2b:66:6a:8b:d1:38:52:a2:
#         d6:46:11:fa:fc:9a:1c:74:9e:8f:97:0b:02:4f:64:c6:f5:68:
#         d3:4b:2d:ff:a4:37:1e:8b:3f:bf:44:be:61:46:a1:84:3d:08:
#         27:4c:81:20:77:89:08:ea:67:40:5e:6c:08:51:5f:34:5a:8c:
#         96:68:cd:d7:f7:89:c2:1c:d3:32:00:af:52:cb:d3:60:5b:2a:
#         3a:47:7e:6b:30:33:a1:62:29:7f:4a:b9:e1:2d:e7:14:23:0e:
#         0e:18:47:e1:79:fc:15:55:d0:b1:fc:25:71:63:75:33:1c:23:
#         2b:af:5c:d9:ed:47:77:60:0e:3b:0f:1e:d2:c0:dc:64:05:89:
#         fc:78:d6:5c:2c:26:43:a9

[p11-kit-object-v1]
label: "ANCERT Certificados CGN"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkHU/PwysytR8xEinGLs6
u6G71XvfixnkgkT7Zey2EmE+aSIZYjUkttUQBqlFaiQq9SeMeDzIufMFbMUCA9JO
gGTshqt4lCICALVom9TlVV/gyIAw5wu/a9cEjk55mHBMHCa5s6jq8BGiuYpTAiZ1
Eonh+4hOWXoA0YLYFq7ltryVJWBAdyUbnu+N5P3wTzMxJb/uegpU8JA4ZxJ7pWDa
DAGJmnaHLvUbQ3vl5yZK+xViq0Ube9UKpU1sTaufKEiE4YN1uBhwVVPb0N8pkK85
xheVwZTFXtllX13/bhaVmCGfXk3wzTE5IQMXDZEfoVWZQexVybs9mVybxX/RHF7q
UwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados CGN"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            44:74:ec:c8:6c:72:1e:58:dd:b8:2c:7e:f4:fc:95
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN = ANCERT Certificados CGN
#        Validity
#            Not Before: Feb 11 17:27:12 2004 GMT
#            Not After : Feb 11 17:27:12 2024 GMT
#        Subject: C = ES, O = Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN = ANCERT Certificados CGN
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:90:75:3f:3f:0c:ac:ca:d4:7c:c4:48:a7:18:bb:
#                    3a:bb:a1:bb:d5:7b:df:8b:19:e4:82:44:fb:65:ec:
#                    b6:12:61:3e:69:22:19:62:35:24:b6:d5:10:06:a9:
#                    45:6a:24:2a:f5:27:8c:78:3c:c8:b9:f3:05:6c:c5:
#                    02:03:d2:4e:80:64:ec:86:ab:78:94:22:02:00:b5:
#                    68:9b:d4:e5:55:5f:e0:c8:80:30:e7:0b:bf:6b:d7:
#                    04:8e:4e:79:98:70:4c:1c:26:b9:b3:a8:ea:f0:11:
#                    a2:b9:8a:53:02:26:75:12:89:e1:fb:88:4e:59:7a:
#                    00:d1:82:d8:16:ae:e5:b6:bc:95:25:60:40:77:25:
#                    1b:9e:ef:8d:e4:fd:f0:4f:33:31:25:bf:ee:7a:0a:
#                    54:f0:90:38:67:12:7b:a5:60:da:0c:01:89:9a:76:
#                    87:2e:f5:1b:43:7b:e5:e7:26:4a:fb:15:62:ab:45:
#                    1b:7b:d5:0a:a5:4d:6c:4d:ab:9f:28:48:84:e1:83:
#                    75:b8:18:70:55:53:db:d0:df:29:90:af:39:c6:17:
#                    95:c1:94:c5:5e:d9:65:5f:5d:ff:6e:16:95:98:21:
#                    9f:5e:4d:f0:cd:31:39:21:03:17:0d:91:1f:a1:55:
#                    99:41:ec:55:c9:bb:3d:99:5c:9b:c5:7f:d1:1c:5e:
#                    ea:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.4
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: Agencia Notarial de Certificacion. La declaracion de practicas de certifiacion que rige el funcionamiento de la presente autoridad se encuentra disponible en http://www.ancert.com/cps
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:ancert@ancert.com
#            X509v3 Authority Key Identifier: 
#                keyid:EC:57:9F:C8:76:22:6F:CC:3A:AE:5B:F0:2D:A1:62:58:D1:8D:02:CC
#
#            X509v3 Subject Key Identifier: 
#                EC:57:9F:C8:76:22:6F:CC:3A:AE:5B:F0:2D:A1:62:58:D1:8D:02:CC
#    Signature Algorithm: sha1WithRSAEncryption
#         8b:3d:df:dc:36:2c:7f:27:9c:fc:b5:58:53:71:0a:12:5d:10:
#         64:51:71:b5:4a:56:f4:5e:44:67:1e:ef:1d:b2:f1:a4:51:3c:
#         67:6c:2c:65:96:7a:a1:12:a3:af:0b:08:37:0e:99:d6:6e:28:
#         87:0b:62:ab:4e:78:4e:72:81:9b:df:11:4f:89:60:c8:51:a6:
#         1b:06:09:71:73:7c:37:b7:1c:38:37:9a:f9:87:e1:ef:a1:ee:
#         7f:d7:c0:ea:39:14:fa:7c:6f:0b:f9:86:ca:e6:c5:77:69:a0:
#         9f:8d:29:a3:77:6e:c5:cc:da:f6:dd:06:7a:d3:69:66:3e:60:
#         3b:e3:32:df:ae:f0:1b:9e:2a:9d:cc:84:df:1a:10:47:ed:a5:
#         56:96:42:37:b5:2d:72:0d:41:12:93:ba:32:88:44:c8:ae:09:
#         c4:bd:80:ed:fd:60:0f:72:b2:b6:64:f6:63:20:32:70:77:87:
#         2e:33:2e:9f:35:c8:5f:a8:92:56:b7:ff:24:3a:2c:5d:f2:26:
#         05:68:19:f2:51:67:cf:df:52:09:e9:82:04:7a:6b:82:a7:7f:
#         e5:d2:a9:74:6b:18:26:c8:ba:d4:d5:1e:a5:4b:3b:26:c1:9d:
#         22:e1:fb:12:bd:d5:62:46:d5:d7:5d:d2:dd:c3:fc:61:0d:30:
#         05:4f:05:8b

[p11-kit-object-v1]
label: "ANCERT Certificados CGN V2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados CGN V2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0f:38:8c:70:fe:a6:95:5d:e9:5d:9c:87:af:79:04:99
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, O = Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN = ANCERT Certificados CGN V2
#        Validity
#            Not Before: May 25 16:31:22 2010 GMT
#            Not After : May 25 16:31:23 2030 GMT
#        Subject: C = ES, O = Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN = ANCERT Certificados CGN V2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:9d:52:70:e9:27:18:83:ca:ea:c4:99:d8:a6:e1:
#                    2e:14:af:6e:1e:0e:64:ca:81:37:55:27:1c:17:77:
#                    58:67:1f:8c:c9:f9:c2:8a:62:65:28:74:9b:e2:d1:
#                    be:55:07:76:76:ee:7c:6d:4e:63:5b:1e:4a:25:75:
#                    e0:07:a1:d0:d2:82:a7:ce:0f:33:eb:ba:14:c0:65:
#                    b2:4a:2e:e5:65:bc:22:d2:af:1a:0e:ca:cb:f3:64:
#                    65:2b:2c:99:a3:97:8b:8b:75:30:fe:66:fa:c1:4f:
#                    4b:37:50:8c:3f:f3:de:99:7a:4e:87:9c:20:46:72:
#                    97:fe:56:1b:66:4e:a0:82:53:a3:5c:d8:28:46:0c:
#                    05:17:6f:38:d6:5c:9f:0e:25:22:c1:86:e3:5c:1a:
#                    54:db:ae:9d:65:7d:00:92:df:a8:21:21:c5:5b:10:
#                    26:74:e1:b1:73:57:64:7c:7d:17:03:0c:ea:f7:14:
#                    97:0f:f9:c5:ee:5d:75:b0:c5:c6:0a:0b:b4:3e:49:
#                    e3:19:c6:9b:44:93:fc:5a:15:64:0a:b2:83:ff:80:
#                    5e:88:09:d0:ca:20:a3:5b:fb:db:cd:e1:1a:77:23:
#                    18:70:1a:8b:ed:44:3f:d6:1a:a8:36:38:e1:9d:2f:
#                    a7:77:c4:7a:b3:c0:72:b2:72:cd:1e:3f:10:5e:1a:
#                    88:74:8d:f0:12:c5:f7:af:49:dc:95:af:2b:4d:b4:
#                    90:ca:f9:ee:ef:0c:e3:bf:16:37:23:53:e3:29:fa:
#                    f4:74:69:68:3d:57:6d:14:60:8a:64:69:28:64:4d:
#                    fa:36:47:fd:b8:12:ce:c3:86:aa:5c:dc:66:39:07:
#                    4f:3b:e3:e3:c5:68:ae:ce:e0:39:5c:20:83:3f:12:
#                    0a:38:b3:00:c1:5c:13:97:22:5e:3a:4b:35:99:f8:
#                    c4:1e:de:f9:88:11:8e:84:c9:8b:32:f2:d2:d7:bf:
#                    22:07:3f:60:78:2e:75:1c:a2:ba:23:12:d3:f0:4f:
#                    50:39:ec:c9:77:27:c7:5a:2a:8e:d3:b9:b5:74:04:
#                    99:15:2f:2e:86:5f:8f:06:c1:ca:ea:e2:a8:1f:4d:
#                    7d:33:84:91:a4:92:c3:d0:a6:48:5d:66:1a:77:84:
#                    20:50:9c:ea:04:0b:0c:23:96:cf:b1:9c:fc:b9:ba:
#                    1f:97:a8:d3:ab:03:65:2f:7d:ae:54:c7:79:e2:1c:
#                    36:dd:6d:d2:06:98:01:fd:ce:fc:3f:4b:c3:d2:ae:
#                    ff:89:d8:39:31:03:d8:b1:64:77:03:c6:f8:a3:8d:
#                    fc:2a:79:e7:10:bd:b9:6d:91:1c:3e:9d:cb:bc:55:
#                    7f:22:fe:61:84:f8:d8:d4:a7:21:7a:39:5e:72:32:
#                    eb:4c:75
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.4
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: 
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                05:6E:E1:A1:9A:EE:07:AF:CE:F5:B4:D3:65:3D:04:50:E2:D0:9B:44
#            X509v3 Authority Key Identifier: 
#                keyid:05:6E:E1:A1:9A:EE:07:AF:CE:F5:B4:D3:65:3D:04:50:E2:D0:9B:44
#
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:54:40:19:24:ca:4c:13:f6:13:f9:5c:62:95:30:d5:b8:e0:
#         93:80:6c:d4:15:46:d4:27:3e:92:52:aa:dc:81:63:86:40:db:
#         d5:25:af:9f:93:6c:0a:f5:4d:a1:fe:54:96:5d:87:af:11:93:
#         0f:8b:f2:e3:f0:1f:4a:9f:fc:a9:d1:c9:50:77:5f:98:08:08:
#         2d:7a:8b:81:10:cc:3b:02:54:58:e5:c6:a7:f4:f7:ca:e8:f6:
#         37:06:7e:e7:11:d7:6c:85:63:f7:a8:a3:0e:e2:25:62:04:a4:
#         f2:62:53:9c:47:b4:a7:64:bb:81:e5:d6:5e:56:11:be:45:11:
#         61:c2:66:e9:f4:0d:74:a8:ab:f9:5b:bf:82:b2:91:a6:50:fb:
#         87:7e:6f:bb:c8:eb:05:a2:b9:10:d7:1b:42:07:55:cf:89:e6:
#         bf:fb:b9:f0:6a:39:57:53:70:8c:bd:4b:a3:69:bf:1f:8b:a6:
#         5c:4d:65:8a:b9:00:09:e8:68:bf:09:27:07:4d:5e:da:52:09:
#         8c:e5:71:93:8a:cc:85:8e:d2:37:5e:53:dc:82:6d:0b:56:4a:
#         84:79:0a:f4:10:25:44:f5:6f:5d:1a:66:b5:cd:d5:10:4b:87:
#         5a:4e:d4:7f:e4:71:ac:ee:68:9f:bc:fa:2e:58:c1:c4:9e:7f:
#         a4:59:85:e0:52:0e:f2:c7:47:75:15:2d:2c:76:8c:0f:45:05:
#         35:60:f8:7b:3b:77:32:7f:28:80:09:da:31:bc:71:7d:e1:ac:
#         91:cd:60:0a:79:20:ec:6e:3b:b7:84:e0:72:f3:a9:4a:d0:2f:
#         e4:5b:e3:d2:1a:d4:4a:bc:f5:76:f9:7f:2a:19:48:eb:dd:0e:
#         cf:99:56:45:b8:7d:d6:09:8e:0e:ce:b3:84:68:49:84:54:35:
#         4b:e4:99:1b:af:f3:a8:14:f3:54:98:0a:80:7e:4f:bc:f2:66:
#         2d:26:ff:30:8d:a7:f6:bd:db:9a:8f:e5:e1:df:bb:b7:32:0e:
#         f9:92:6f:69:e3:e4:76:d3:00:36:f1:2d:5e:c7:13:5f:d5:d9:
#         6a:2d:e8:d1:1b:6b:76:cb:18:6e:0e:05:10:f5:5a:f2:49:1b:
#         59:b4:85:ea:ca:19:74:cc:bb:52:e2:37:8c:c2:6a:02:25:c2:
#         d2:71:a4:92:db:8e:c9:d6:a9:6e:d0:85:28:6d:5c:6d:08:78:
#         02:b0:79:0c:57:6f:0b:5a:01:e3:84:84:02:f6:cf:f2:ab:63:
#         eb:02:6a:b9:cb:4a:18:d5:39:22:3c:56:4a:aa:95:88:e6:30:
#         00:1f:8d:21:21:c9:57:ee:b9:b7:44:29:88:4f:b6:2b:a7:14:
#         ee:8e:ee:6f:be:16:d0:13

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8JEP0GctKbJjTR81efZl
a7nz87VYkydkT6fVW4IFcpt/Ha4I0ozQ0clgsJkZNdYZxgA5aX0i73Qig7R+6hCL
PjMc4d1kNinzUkpuQcO+UQwfY7i/jak/MTE7u/E2RDwnZRR5deYQpDxYG8tTYhL1
h1pGonmjYOMWqN6EpvrlzMQQMvZC2kdNGD3meg8rDmP/Z31D1XQWkDS0D84mcyHB
Stpk5E/jI7XZ9qu3Sn+W4ctH/QZD0ZQ0aQr+PehmqiYM1WM5BnCTrXyz5EfBO0eO
aZcMkaBMB4/JgEyucJNoj6HDIsLxdZsofZKSVTqoWRnsEjEc750X3LlACVv0LRMm
cwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFPDCCBCSgAwIBAgIRAPTPierdpMY+ka1IDi0iNoQwDQYJKoZIhvcNAQEFBQAw
gYMxCzAJBgNVBAYTAkVTMUswSQYDVQQKE0JBZ2VuY2lhIE5vdGFyaWFsIGRlIENl
cnRpZmljYWNpb24gUy5MLiBVbmlwZXJzb25hbCAtIENJRiBCODMzOTU5ODgxJzAl
BgNVBAMTHkFOQ0VSVCBDZXJ0aWZpY2Fkb3MgTm90YXJpYWxlczAeFw0wNDAyMTEx
NTU4MzBaFw0yNDAyMTExNTU4MjZaMIGDMQswCQYDVQQGEwJFUzFLMEkGA1UEChNC
QWdlbmNpYSBOb3RhcmlhbCBkZSBDZXJ0aWZpY2FjaW9uIFMuTC4gVW5pcGVyc29u
YWwgLSBDSUYgQjgzMzk1OTg4MScwJQYDVQQDEx5BTkNFUlQgQ2VydGlmaWNhZG9z
IE5vdGFyaWFsZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDwkQ/Q
Zy0psmNNHzV59mVrufPztViTJ2RPp9VbggVym38drgjSjNDRyWCwmRk11hnGADlp
fSLvdCKDtH7qEIs+Mxzh3WQ2KfNSSm5Bw75RDB9juL+NqT8xMTu78TZEPCdlFHl1
5hCkPFgby1NiEvWHWkaieaNg4xao3oSm+uXMxBAy9kLaR00YPeZ6DysOY/9nfUPV
dBaQNLQPziZzIcFK2mTkT+Mjtdn2q7dKf5bhy0f9BkPRlDRpCv496GaqJgzVYzkG
cJOtfLPkR8E7R45plwyRoEwHj8mATK5wk2iPocMiwvF1myh9kpJVOqhZGewSMRzv
nRfcuUAJW/QtEyZzAgMBAAGjggGnMIIBozAcBgNVHREEFTATgRFhbmNlcnRAYW5j
ZXJ0LmNvbTAfBgNVHSMEGDAWgBSE9/pyXohkZh0ojLB3vQxqn0xNYjAPBgNVHRMB
Af8EBTADAQH/MIIBIAYDVR0gBIIBFzCCARMwggEPBgkrBgEEAYGTaAEwggEAMCUG
CCsGAQUFBwIBFhlodHRwOi8vd3d3LmFuY2VydC5jb20vY3BzMIHWBggrBgEFBQcC
AjCByTANFgZBTkNFUlQwAwIBARqBt0FnZW5jaWEgTm90YXJpYWwgZGUgQ2VydGlm
aWNhY2lvbi4gTGEgZGVjbGFyYWNpb24gZGUgcHJhY3RpY2FzIGRlIGNlcnRpZmlh
Y2lvbiBxdWUgcmlnZSBlbCBmdW5jaW9uYW1pZW50byBkZSBsYSBwcmVzZW50ZSBh
dXRvcmlkYWQgc2UgZW5jdWVudHJhIGRpc3BvbmlibGUgZW4gaHR0cDovL3d3dy5h
bmNlcnQuY29tL2NwczAOBgNVHQ8BAf8EBAMCAYYwHQYDVR0OBBYEFIT3+nJeiGRm
HSiMsHe9DGqfTE1iMA0GCSqGSIb3DQEBBQUAA4IBAQAv+OXYM6XClG5ewPHuoUwK
rYYPwDPdntLZm+7FK4UpdqylElOTHaoH7Ok5ZAto8HUk6dGGjJxTausVoQm3GQe5
nY8CshtJcMJjdN0Lqv4HxjdWxoP+wE8czDiq/e5VmIlcwlOtIIe6FmRSYezBn7vU
YtEqyF3wK/jaEs4jy7HMwdIKvfzAgE5VSfqJ2GSjSsrui9fl7ZL7YOLiKs8tKD6m
/4CcZcwSnqUcdFmQpYd/ZxWAEMCh0agw7KECkYpa0yMXk1pHIXnqM3oPfzg1mspW
uL9kuqewtVEdFp6OiX04OsuETQeY2OXhjAVqpTcM1nkpPvFCxLb36hmgYeACTr8S
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            f4:cf:89:ea:dd:a4:c6:3e:91:ad:48:0e:2d:22:36:84
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN = ANCERT Certificados Notariales
#        Validity
#            Not Before: Feb 11 15:58:30 2004 GMT
#            Not After : Feb 11 15:58:26 2024 GMT
#        Subject: C = ES, O = Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN = ANCERT Certificados Notariales
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:f0:91:0f:d0:67:2d:29:b2:63:4d:1f:35:79:f6:
#                    65:6b:b9:f3:f3:b5:58:93:27:64:4f:a7:d5:5b:82:
#                    05:72:9b:7f:1d:ae:08:d2:8c:d0:d1:c9:60:b0:99:
#                    19:35:d6:19:c6:00:39:69:7d:22:ef:74:22:83:b4:
#                    7e:ea:10:8b:3e:33:1c:e1:dd:64:36:29:f3:52:4a:
#                    6e:41:c3:be:51:0c:1f:63:b8:bf:8d:a9:3f:31:31:
#                    3b:bb:f1:36:44:3c:27:65:14:79:75:e6:10:a4:3c:
#                    58:1b:cb:53:62:12:f5:87:5a:46:a2:79:a3:60:e3:
#                    16:a8:de:84:a6:fa:e5:cc:c4:10:32:f6:42:da:47:
#                    4d:18:3d:e6:7a:0f:2b:0e:63:ff:67:7d:43:d5:74:
#                    16:90:34:b4:0f:ce:26:73:21:c1:4a:da:64:e4:4f:
#                    e3:23:b5:d9:f6:ab:b7:4a:7f:96:e1:cb:47:fd:06:
#                    43:d1:94:34:69:0a:fe:3d:e8:66:aa:26:0c:d5:63:
#                    39:06:70:93:ad:7c:b3:e4:47:c1:3b:47:8e:69:97:
#                    0c:91:a0:4c:07:8f:c9:80:4c:ae:70:93:68:8f:a1:
#                    c3:22:c2:f1:75:9b:28:7d:92:92:55:3a:a8:59:19:
#                    ec:12:31:1c:ef:9d:17:dc:b9:40:09:5b:f4:2d:13:
#                    26:73
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:ancert@ancert.com
#            X509v3 Authority Key Identifier: 
#                keyid:84:F7:FA:72:5E:88:64:66:1D:28:8C:B0:77:BD:0C:6A:9F:4C:4D:62
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.1
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: Agencia Notarial de Certificacion. La declaracion de practicas de certifiacion que rige el funcionamiento de la presente autoridad se encuentra disponible en http://www.ancert.com/cps
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                84:F7:FA:72:5E:88:64:66:1D:28:8C:B0:77:BD:0C:6A:9F:4C:4D:62
#    Signature Algorithm: sha1WithRSAEncryption
#         2f:f8:e5:d8:33:a5:c2:94:6e:5e:c0:f1:ee:a1:4c:0a:ad:86:
#         0f:c0:33:dd:9e:d2:d9:9b:ee:c5:2b:85:29:76:ac:a5:12:53:
#         93:1d:aa:07:ec:e9:39:64:0b:68:f0:75:24:e9:d1:86:8c:9c:
#         53:6a:eb:15:a1:09:b7:19:07:b9:9d:8f:02:b2:1b:49:70:c2:
#         63:74:dd:0b:aa:fe:07:c6:37:56:c6:83:fe:c0:4f:1c:cc:38:
#         aa:fd:ee:55:98:89:5c:c2:53:ad:20:87:ba:16:64:52:61:ec:
#         c1:9f:bb:d4:62:d1:2a:c8:5d:f0:2b:f8:da:12:ce:23:cb:b1:
#         cc:c1:d2:0a:bd:fc:c0:80:4e:55:49:fa:89:d8:64:a3:4a:ca:
#         ee:8b:d7:e5:ed:92:fb:60:e2:e2:2a:cf:2d:28:3e:a6:ff:80:
#         9c:65:cc:12:9e:a5:1c:74:59:90:a5:87:7f:67:15:80:10:c0:
#         a1:d1:a8:30:ec:a1:02:91:8a:5a:d3:23:17:93:5a:47:21:79:
#         ea:33:7a:0f:7f:38:35:9a:ca:56:b8:bf:64:ba:a7:b0:b5:51:
#         1d:16:9e:8e:89:7d:38:3a:cb:84:4d:07:98:d8:e5:e1:8c:05:
#         6a:a5:37:0c:d6:79:29:3e:f1:42:c4:b6:f7:ea:19:a0:61:e0:
#         02:4e:bf:12

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales V2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAsua5xh1qKi1Jxfz81GRA
0OAULvegwv+S80GmtD/avhkUkZR20xXMXn94UHrb2sVFqsscI3lzkKi7ZwFzjs5A
+Rqpqofkk5IPXGhcXvAGYCtY3DxtPMd6MGsFqpKGcyrS8hqIxNvlWmaOdclCP5uI
KEAe9alcHvrIQaEwqwuc7haiwS2lhfrtoAzof5ZKe72PmqIYdtKv3bc9EKtSEIiu
Heu4MnSW9LeqJ/elBw3jlFdqVCB3zR28eS3knLTeUYj+VtY9i6HP+lIejAVzd9YF
z2MAUYdh41C+mZfh/B4ReWtOas+chQoclirAIDYUxQkXYjv0rerV1/3QOSp409Ci
z8hzMAlHxU4Z/bgw1A+AmIiGwUxBeiPFQ/1eErg+D7G3gWIMfm/je5rCwkcRIR/P
ntEwzoPBEE1Ad9e1wksyQEL6m7Csz+sh2BnrZMVr3VUtgIdEfEw8qw3YEr80goyx
qsS4a+gORnfSiwYdQvusvcnnM7Mib37VLgPFXwUWhnzt457RFncaRtjJ0IzkXFwh
BZHxZOSsxTeutb1nE64p5bNCxHAJo11M6zcg4/D1czM7wvyOUYU2KsuB2w6JI9ni
4Wi6LER3PhxAuvBnjhiH8D3X6T9HWzVCzacEzkhyKQUatNGi5w15ipZtZ1ItOyPm
+YKc1rN5XhTeZUgz/B1C6C0CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales V2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            09:bd:56:05:2a:13:16:f4:68:4f:74:0e:a9:7d:1c:48
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, O = Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN = ANCERT Certificados Notariales V2
#        Validity
#            Not Before: May 25 16:56:14 2010 GMT
#            Not After : May 25 16:56:14 2030 GMT
#        Subject: C = ES, O = Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN = ANCERT Certificados Notariales V2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b2:e6:b9:c6:1d:6a:2a:2d:49:c5:fc:fc:d4:64:
#                    40:d0:e0:14:2e:f7:a0:c2:ff:92:f3:41:a6:b4:3f:
#                    da:be:19:14:91:94:76:d3:15:cc:5e:7f:78:50:7a:
#                    db:da:c5:45:aa:cb:1c:23:79:73:90:a8:bb:67:01:
#                    73:8e:ce:40:f9:1a:a9:aa:87:e4:93:92:0f:5c:68:
#                    5c:5e:f0:06:60:2b:58:dc:3c:6d:3c:c7:7a:30:6b:
#                    05:aa:92:86:73:2a:d2:f2:1a:88:c4:db:e5:5a:66:
#                    8e:75:c9:42:3f:9b:88:28:40:1e:f5:a9:5c:1e:fa:
#                    c8:41:a1:30:ab:0b:9c:ee:16:a2:c1:2d:a5:85:fa:
#                    ed:a0:0c:e8:7f:96:4a:7b:bd:8f:9a:a2:18:76:d2:
#                    af:dd:b7:3d:10:ab:52:10:88:ae:1d:eb:b8:32:74:
#                    96:f4:b7:aa:27:f7:a5:07:0d:e3:94:57:6a:54:20:
#                    77:cd:1d:bc:79:2d:e4:9c:b4:de:51:88:fe:56:d6:
#                    3d:8b:a1:cf:fa:52:1e:8c:05:73:77:d6:05:cf:63:
#                    00:51:87:61:e3:50:be:99:97:e1:fc:1e:11:79:6b:
#                    4e:6a:cf:9c:85:0a:1c:96:2a:c0:20:36:14:c5:09:
#                    17:62:3b:f4:ad:ea:d5:d7:fd:d0:39:2a:78:d3:d0:
#                    a2:cf:c8:73:30:09:47:c5:4e:19:fd:b8:30:d4:0f:
#                    80:98:88:86:c1:4c:41:7a:23:c5:43:fd:5e:12:b8:
#                    3e:0f:b1:b7:81:62:0c:7e:6f:e3:7b:9a:c2:c2:47:
#                    11:21:1f:cf:9e:d1:30:ce:83:c1:10:4d:40:77:d7:
#                    b5:c2:4b:32:40:42:fa:9b:b0:ac:cf:eb:21:d8:19:
#                    eb:64:c5:6b:dd:55:2d:80:87:44:7c:4c:3c:ab:0d:
#                    d8:12:bf:34:82:8c:b1:aa:c4:b8:6b:e8:0e:46:77:
#                    d2:8b:06:1d:42:fb:ac:bd:c9:e7:33:b3:22:6f:7e:
#                    d5:2e:03:c5:5f:05:16:86:7c:ed:e3:9e:d1:16:77:
#                    1a:46:d8:c9:d0:8c:e4:5c:5c:21:05:91:f1:64:e4:
#                    ac:c5:37:ae:b5:bd:67:13:ae:29:e5:b3:42:c4:70:
#                    09:a3:5d:4c:eb:37:20:e3:f0:f5:73:33:3b:c2:fc:
#                    8e:51:85:36:2a:cb:81:db:0e:89:23:d9:e2:e1:68:
#                    ba:2c:44:77:3e:1c:40:ba:f0:67:8e:18:87:f0:3d:
#                    d7:e9:3f:47:5b:35:42:cd:a7:04:ce:48:72:29:05:
#                    1a:b4:d1:a2:e7:0d:79:8a:96:6d:67:52:2d:3b:23:
#                    e6:f9:82:9c:d6:b3:79:5e:14:de:65:48:33:fc:1d:
#                    42:e8:2d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.1
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: 
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F6:12:3A:AB:7B:58:C1:8D:43:6F:76:81:D2:F2:B8:D3:EF:17:EA:0B
#            X509v3 Authority Key Identifier: 
#                keyid:F6:12:3A:AB:7B:58:C1:8D:43:6F:76:81:D2:F2:B8:D3:EF:17:EA:0B
#
#    Signature Algorithm: sha256WithRSAEncryption
#         54:35:d3:a2:65:c9:d9:36:c5:53:d1:b4:8d:72:34:89:ba:a7:
#         08:9f:e9:35:10:b9:b8:0c:06:f9:64:aa:95:96:28:a8:c8:a3:
#         80:dc:56:c0:bf:72:4d:56:bf:7f:5d:04:d5:ad:28:5b:4d:bd:
#         f3:c3:0f:15:b0:71:da:56:8d:40:55:57:a6:7d:62:a2:ad:13:
#         69:51:aa:94:50:ba:bd:00:30:50:f5:dd:a4:4e:09:7a:94:31:
#         6b:db:73:03:bd:f3:da:1a:0f:8c:2f:b2:c9:37:bc:54:d5:0b:
#         23:37:f5:e4:5b:37:66:89:4f:b4:c7:05:a4:65:dc:59:30:a6:
#         13:2b:7e:15:ed:ec:10:17:89:52:c9:9d:df:a2:4c:ed:f6:0f:
#         1e:a6:49:b0:0d:51:b3:31:b1:51:99:cb:b4:d1:23:78:d2:4b:
#         a8:b4:1d:16:a6:a0:d0:3e:07:7e:65:3f:25:ce:64:4e:1b:2e:
#         4b:4d:82:85:1a:65:db:ee:e2:03:f0:59:24:05:8f:99:ef:79:
#         82:df:ee:2a:37:68:c3:6a:50:01:59:5f:9f:68:dc:2c:51:60:
#         2b:5d:e0:52:3c:3b:70:b8:00:d3:37:a8:3e:5b:1e:76:08:5a:
#         d4:bb:76:30:ae:f9:c8:f2:8e:a4:8f:0a:75:7d:1a:98:e1:bf:
#         d0:36:94:2f:3c:c1:52:d3:69:ea:1a:60:37:8c:80:db:4d:6d:
#         c6:9a:5d:8d:a0:61:51:bb:3d:0d:e6:12:a0:9f:6f:59:56:74:
#         32:67:0a:fc:37:06:c1:3a:e4:2b:8e:84:1f:da:21:0c:49:88:
#         43:d3:a5:f5:82:0d:76:86:c3:2c:cc:90:bb:b3:b8:ab:c6:cb:
#         ae:c0:17:51:9e:d3:80:f7:24:da:1c:ec:ce:12:83:ce:4e:36:
#         30:39:75:f8:74:76:90:82:9e:3e:40:4c:0c:14:b9:1a:1e:48:
#         6a:b0:31:ea:88:7f:80:41:40:53:7b:38:4b:87:90:60:7a:4b:
#         ce:67:46:68:75:77:8e:00:5d:20:b0:e4:93:37:6d:03:df:58:
#         39:e8:9a:c5:a4:eb:ec:61:33:08:85:24:6b:4f:06:e9:ad:90:
#         a5:36:62:6c:e3:dd:7d:09:1f:33:bf:b7:bb:f7:c9:75:05:f7:
#         5b:ab:fa:87:59:af:1a:67:10:7e:84:dc:8c:70:d6:44:e9:10:
#         c1:d8:9b:2e:d1:c6:40:6a:ea:e6:5a:0f:10:7d:6c:fb:55:87:
#         ba:4d:b5:71:03:9e:17:8f:78:da:55:3d:57:5e:22:0a:6a:98:
#         f0:8d:08:cd:dd:96:42:5a:1b:cd:ba:6f:27:b8:74:27:a8:3f:
#         e5:a0:d6:73:c7:5e:2f:21

[p11-kit-object-v1]
label: "ANCERT Corporaciones de Derecho Publico"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoiGVh9yK69Z6kKhoNf0X
/HQ6VBCSNZNCdS7YPsuplKG+ajc/Urqke9qEmRZ5TgBo1B8T6UY7PEqdgzrYIe/C
8kBF4Q9gRQTt/IoYLvk95KQRMiCOOrfulkAVGpnpIZ1yrM0fia6q2aFAsKhnvvx6
DkexXrz4MGqON58FQuwsw6Ybi6vEUD365HP1IbC4VV+H4KJHOC9AX09sq5QkVuNM
j36Q6SeCKJuYuprWtZtXb2sVHPm7cCl9PPcTqNFx8bD+iEVxqaV0ZcvD+fUDDxDD
hjAAbsHAJqKI/iHHMj27xnsbt5uKs/qxfHHZAadCkKovmJCEqt7Grew8UUoFHQFR
mwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Corporaciones de Derecho Publico"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3f:b2:e5:f2:d1:7c:8b:18:64:56:62:a9:39:81:7f:a7
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN = ANCERT Corporaciones de Derecho Publico
#        Validity
#            Not Before: Feb 11 17:22:45 2004 GMT
#            Not After : Feb 11 17:22:45 2024 GMT
#        Subject: C = ES, O = Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN = ANCERT Corporaciones de Derecho Publico
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a2:21:95:87:dc:8a:eb:d6:7a:90:a8:68:35:fd:
#                    17:fc:74:3a:54:10:92:35:93:42:75:2e:d8:3e:cb:
#                    a9:94:a1:be:6a:37:3f:52:ba:a4:7b:da:84:99:16:
#                    79:4e:00:68:d4:1f:13:e9:46:3b:3c:4a:9d:83:3a:
#                    d8:21:ef:c2:f2:40:45:e1:0f:60:45:04:ed:fc:8a:
#                    18:2e:f9:3d:e4:a4:11:32:20:8e:3a:b7:ee:96:40:
#                    15:1a:99:e9:21:9d:72:ac:cd:1f:89:ae:aa:d9:a1:
#                    40:b0:a8:67:be:fc:7a:0e:47:b1:5e:bc:f8:30:6a:
#                    8e:37:9f:05:42:ec:2c:c3:a6:1b:8b:ab:c4:50:3d:
#                    fa:e4:73:f5:21:b0:b8:55:5f:87:e0:a2:47:38:2f:
#                    40:5f:4f:6c:ab:94:24:56:e3:4c:8f:7e:90:e9:27:
#                    82:28:9b:98:ba:9a:d6:b5:9b:57:6f:6b:15:1c:f9:
#                    bb:70:29:7d:3c:f7:13:a8:d1:71:f1:b0:fe:88:45:
#                    71:a9:a5:74:65:cb:c3:f9:f5:03:0f:10:c3:86:30:
#                    00:6e:c1:c0:26:a2:88:fe:21:c7:32:3d:bb:c6:7b:
#                    1b:b7:9b:8a:b3:fa:b1:7c:71:d9:01:a7:42:90:aa:
#                    2f:98:90:84:aa:de:c6:ad:ec:3c:51:4a:05:1d:01:
#                    51:9b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.3
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: Agencia Notarial de Certificacion. La declaracion de practicas de certifiacion que rige el funcionamiento de la presente autoridad se encuentra disponible en http://www.ancert.com/cps
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:ancert@ancert.com
#            X509v3 Authority Key Identifier: 
#                keyid:8C:4C:1E:37:0C:B1:9F:D2:AC:44:0B:3A:BE:02:CF:F4:8D:2D:66:95
#
#            X509v3 Subject Key Identifier: 
#                8C:4C:1E:37:0C:B1:9F:D2:AC:44:0B:3A:BE:02:CF:F4:8D:2D:66:95
#    Signature Algorithm: sha1WithRSAEncryption
#         47:74:c0:94:91:e2:a5:fb:98:52:44:93:6c:c4:c0:1d:e0:79:
#         db:69:64:2d:61:ae:a4:77:91:35:b5:b7:ca:97:aa:c0:b1:86:
#         f5:1b:68:6b:aa:58:b2:7c:3f:e7:03:27:f8:41:71:bc:a6:d2:
#         20:a9:80:95:a2:47:ad:6d:46:74:ad:84:9b:d8:6f:a9:f5:b9:
#         2f:6d:9b:c0:dd:99:87:ed:59:b2:75:81:a5:89:85:2a:cc:d0:
#         85:81:4d:f3:af:77:de:8c:c1:28:9a:42:ac:05:87:0c:34:9c:
#         71:87:fd:ec:01:14:1f:be:c3:2e:f0:df:fa:24:a6:5d:1f:3c:
#         f1:a2:0b:51:88:01:ae:12:87:a4:b5:5d:71:b2:df:ef:0d:7c:
#         20:e3:7f:13:0b:4d:a6:c0:77:cc:3f:d6:0f:71:c7:71:4c:2e:
#         1e:fa:19:06:65:c9:ad:56:6c:77:8d:46:3f:bd:30:83:1e:e0:
#         2e:55:b8:78:23:74:3c:58:0a:63:3a:4d:81:7b:6f:35:70:ae:
#         b6:25:d9:f6:24:fe:23:c6:da:1a:88:af:a8:14:93:73:e0:c0:
#         5b:b0:31:69:1a:f6:29:5f:56:b7:1a:0a:c2:f9:0b:ea:02:c1:
#         33:11:62:6a:7c:43:e8:ea:1a:ab:90:00:85:e0:45:0f:7d:8e:
#         ba:50:d5:c6

[p11-kit-object-v1]
label: "ANF Secure Server Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANF Secure Server Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 996390341000653745 (0xdd3e3bc6cf96bb1)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: serialNumber = G63287510, C = ES, O = ANF Autoridad de Certificacion, OU = ANF CA Raiz, CN = ANF Secure Server Root CA
#        Validity
#            Not Before: Sep  4 10:00:38 2019 GMT
#            Not After : Aug 30 10:00:38 2039 GMT
#        Subject: serialNumber = G63287510, C = ES, O = ANF Autoridad de Certificacion, OU = ANF CA Raiz, CN = ANF Secure Server Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:db:eb:6b:2b:e6:64:54:95:82:90:a3:72:a4:19:
#                    01:9d:9c:0b:81:5f:73:49:ba:a7:ac:f3:04:4e:7b:
#                    96:0b:ec:11:e0:5b:a6:1c:ce:1b:d2:0d:83:1c:2b:
#                    b8:9e:1d:7e:45:32:60:0f:07:e9:77:58:7e:9f:6a:
#                    c8:61:4e:b6:26:c1:4c:8d:ff:4c:ef:34:b2:1f:65:
#                    d8:b9:78:f5:ad:a9:71:b9:ef:4f:58:1d:a5:de:74:
#                    20:97:a1:ed:68:4c:de:92:17:4b:bc:ab:ff:65:9a:
#                    9e:fb:47:d9:57:72:f3:09:a1:ae:76:44:13:6e:9c:
#                    2d:44:39:bc:f9:c7:3b:a4:58:3d:41:bd:b4:c2:49:
#                    a3:c8:0d:d2:97:2f:07:65:52:00:a7:6e:c8:af:68:
#                    ec:f4:14:96:b6:57:1f:56:c3:39:9f:2b:6d:e4:f3:
#                    3e:f6:35:64:da:0c:1c:a1:84:4b:2f:4b:4b:e2:2c:
#                    24:9d:6d:93:40:eb:b5:23:8e:32:ca:6f:45:d3:a8:
#                    89:7b:1e:cf:1e:fa:5b:43:8b:cd:cd:a8:0f:6a:ca:
#                    0c:5e:b9:9e:47:8f:f0:d9:b6:0a:0b:58:65:17:33:
#                    b9:23:e4:77:19:7d:cb:4a:2e:92:7b:4f:2f:10:77:
#                    b1:8d:2f:68:9c:62:cc:e0:50:f8:ec:91:a7:54:4c:
#                    57:09:d5:76:63:c5:e8:65:1e:ee:6d:6a:cf:09:9d:
#                    fa:7c:4f:ad:60:08:fd:56:99:0f:15:2c:7b:a9:80:
#                    ab:8c:61:8f:4a:07:76:42:de:3d:f4:dd:b2:24:33:
#                    5b:b8:b5:a3:44:c9:ac:7f:77:3c:1d:23:ec:82:a9:
#                    a6:e2:c8:06:4c:02:fe:ac:5c:99:99:0b:2f:10:8a:
#                    a6:f4:7f:d5:87:74:0d:59:49:45:f6:f0:71:5c:39:
#                    29:d6:bf:4a:23:8b:f5:5f:01:63:d2:87:73:28:b5:
#                    4b:0a:f5:f8:ab:82:2c:7e:73:25:32:1d:0b:63:0a:
#                    17:81:00:ff:b6:76:5e:e7:b4:b1:40:ca:21:bb:d5:
#                    80:51:e5:48:52:67:2c:d2:61:89:07:0d:0f:ce:42:
#                    77:c0:44:73:9c:44:50:a0:db:10:0a:2d:95:1c:81:
#                    af:e4:1c:e5:14:1e:f1:36:41:01:02:2f:7d:73:a7:
#                    de:42:cc:4c:e9:89:0d:56:f7:9f:91:d4:03:c6:6c:
#                    c9:8f:db:d8:1c:e0:40:98:5d:66:99:98:80:6e:2d:
#                    ff:01:c5:ce:cb:46:1f:ac:02:c6:43:e6:ae:a2:84:
#                    3c:c5:4e:1e:3d:6d:c9:14:4c:e3:2e:41:bb:ca:39:
#                    bf:36:3c:2a:19:aa:41:87:4e:a5:ce:4b:32:79:dd:
#                    90:49:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:9C:5F:D0:6C:63:A3:5F:93:CA:93:98:08:AD:8C:87:A5:2C:5C:C1:37
#
#            X509v3 Subject Key Identifier: 
#                9C:5F:D0:6C:63:A3:5F:93:CA:93:98:08:AD:8C:87:A5:2C:5C:C1:37
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         4e:1e:b9:8a:c6:a0:98:3f:6e:c3:69:c0:6a:5c:49:52:ac:cb:
#         2b:5d:78:38:c1:d5:54:84:9f:93:f0:87:19:3d:2c:66:89:eb:
#         0d:42:fc:cc:f0:75:85:3f:8b:f4:80:5d:79:e5:17:67:bd:35:
#         82:e2:f2:3c:8e:7d:5b:36:cb:5a:80:00:29:f2:ce:2b:2c:f1:
#         8f:aa:6d:05:93:6c:72:c7:56:eb:df:50:23:28:e5:45:10:3d:
#         e8:67:a3:af:0e:55:0f:90:09:62:ef:4b:59:a2:f6:53:f1:c0:
#         35:e4:2f:c1:24:bd:79:2f:4e:20:22:3b:fd:1a:20:b0:a4:0e:
#         2c:70:ed:74:3f:b8:13:95:06:51:c8:e8:87:26:ca:a4:5b:6a:
#         16:21:92:dd:73:60:9e:10:18:de:3c:81:ea:e8:18:c3:7c:89:
#         f2:8b:50:3e:bd:11:e2:15:03:a8:36:7d:33:01:6c:48:15:d7:
#         88:90:99:04:c5:cc:e6:07:f4:bc:f4:90:ed:13:e2:ea:8b:c3:
#         8f:a3:33:0f:c1:29:4c:13:4e:da:15:56:71:73:72:82:50:f6:
#         9a:33:7c:a2:b1:a8:1a:34:74:65:5c:ce:d1:eb:ab:53:e0:1a:
#         80:d8:ea:3a:49:e4:26:30:9b:e5:1c:8a:a8:a9:15:32:86:99:
#         92:0a:10:23:56:12:e0:f6:ce:4c:e2:bb:be:db:8d:92:73:01:
#         66:2f:62:3e:b2:72:27:45:36:ed:4d:56:e3:97:99:ff:3a:35:
#         3e:a5:54:4a:52:59:4b:60:db:ee:fe:78:11:7f:4a:dc:14:79:
#         60:b6:6b:64:03:db:15:83:e1:a2:be:f6:23:97:50:f0:09:33:
#         36:a7:71:96:25:f3:b9:42:7d:db:38:3f:2c:58:ac:e8:42:e1:
#         0e:d8:d3:3b:4c:2e:82:e9:83:2e:6b:31:d9:dd:47:86:4f:6d:
#         97:91:2e:4f:e2:28:71:35:16:d1:f2:73:fe:25:2b:07:47:24:
#         63:27:c8:f8:f6:d9:6b:fc:12:31:56:08:c0:53:42:af:9c:d0:
#         33:7e:fc:06:f0:31:44:03:14:f1:58:ea:f2:6a:0d:a9:11:b2:
#         83:be:c5:1a:bf:07:ea:59:dc:a3:88:35:ef:9c:76:32:3c:4d:
#         06:22:ce:15:e5:dd:9e:d8:8f:da:de:d2:c4:39:e5:17:81:cf:
#         38:47:eb:7f:88:6d:59:1b:df:9f:42:14:ae:7e:cf:a8:b0:66:
#         65:da:37:af:9f:aa:3d:ea:28:b6:de:d5:31:58:16:82:5b:ea:
#         bb:19:75:02:73:1a:ca:48:1a:21:93:90:0a:8e:93:84:a7:7d:
#         3b:23:18:92:89:a0:8d:ac

[p11-kit-object-v1]
label: "ANF Server CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv+pIp5qIOWssSEAHBJN8
97gtfqU34mHWIfyQN8tpPl6LN99bbzvYtsOIQJD0nQxcEFKxs+VfkRDm/aiAFF/T
i71cvQ8jkgk343LSZpQLXHSUL17yTtgDxrPOVqUc2Xv9TwdM1LfaXylNdfIfVc8y
IxxGCScdRezxjDSJ3nsWp0NeiivplEMe1z6TbW+JPbzusci3/8l9418Nb3d49Sou
jcSLmJcwsUZaC2Nw1HjHhrN//ydCqp+Kbm2hlMrshwIc1lRL/byJm6ZjOGaMFomJ
l8NQ6PZCAad3fRAZkgPoXUXIFcWHGw2R8sY5nHvzwAqZ+O6Db35CdxGOwx8cci89
GwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANF Server CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 78923 (0x1344b)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, ST = Barcelona, L = Barcelona (see current address at https://www.anf.es/address/), O = ANF Autoridad de Certificaci\C3\B3n, OU = ANF Clase 1 CA, serialNumber = G63287510, CN = ANF Server CA
#        Validity
#            Not Before: Nov 30 23:00:00 2009 GMT
#            Not After : Nov 30 23:00:00 2021 GMT
#        Subject: C = ES, ST = Barcelona, L = Barcelona (see current address at https://www.anf.es/address/), O = ANF Autoridad de Certificaci\C3\B3n, OU = ANF Clase 1 CA, serialNumber = G63287510, CN = ANF Server CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:ea:48:a7:9a:88:39:6b:2c:48:40:07:04:93:
#                    7c:f7:b8:2d:7e:a5:37:e2:61:d6:21:fc:90:37:cb:
#                    69:3e:5e:8b:37:df:5b:6f:3b:d8:b6:c3:88:40:90:
#                    f4:9d:0c:5c:10:52:b1:b3:e5:5f:91:10:e6:fd:a8:
#                    80:14:5f:d3:8b:bd:5c:bd:0f:23:92:09:37:e3:72:
#                    d2:66:94:0b:5c:74:94:2f:5e:f2:4e:d8:03:c6:b3:
#                    ce:56:a5:1c:d9:7b:fd:4f:07:4c:d4:b7:da:5f:29:
#                    4d:75:f2:1f:55:cf:32:23:1c:46:09:27:1d:45:ec:
#                    f1:8c:34:89:de:7b:16:a7:43:5e:8a:2b:e9:94:43:
#                    1e:d7:3e:93:6d:6f:89:3d:bc:ee:b1:c8:b7:ff:c9:
#                    7d:e3:5f:0d:6f:77:78:f5:2a:2e:8d:c4:8b:98:97:
#                    30:b1:46:5a:0b:63:70:d4:78:c7:86:b3:7f:ff:27:
#                    42:aa:9f:8a:6e:6d:a1:94:ca:ec:87:02:1c:d6:54:
#                    4b:fd:bc:89:9b:a6:63:38:66:8c:16:89:89:97:c3:
#                    50:e8:f6:42:01:a7:77:7d:10:19:92:03:e8:5d:45:
#                    c8:15:c5:87:1b:0d:91:f2:c6:39:9c:7b:f3:c0:0a:
#                    99:f8:ee:83:6f:7e:42:77:11:8e:c3:1f:1c:72:2f:
#                    3d:1b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BE:3B:F6:B4:31:B7:73:24:48:39:C5:57:13:94:75:AA:9F:81:3F:2C
#            X509v3 Authority Key Identifier: 
#                keyid:BE:3B:F6:B4:31:B7:73:24:48:39:C5:57:13:94:75:AA:9F:81:3F:2C
#                DirName:/C=ES/ST=Barcelona/L=Barcelona (see current address at https://www.anf.es/address/)/O=ANF Autoridad de Certificaci\xC3\xB3n/OU=ANF Clase 1 CA/serialNumber=G63287510/CN=ANF Server CA
#                serial:01:34:4B
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            1.3.6.1.4.1.18332.42.6: 
#                .!https://www.anf.es/AC/ACTAS/78923
#            1.3.6.1.4.1.18332.19.1: 
#                ..801-3400
#            Authority Information Access: 
#                OCSP - URI:http://www.anf.es/AC/RC/ocsp
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:https://www.anf.es/AC/ANFServerCA.crl
#
#                Full Name:
#                  URI:https://crl.anf.es/AC/ANFServerCA.crl
#
#            X509v3 Issuer Alternative Name: 
#                email:info@anf.es
#            X509v3 Subject Alternative Name: 
#                email:info@anf.es
#    Signature Algorithm: sha1WithRSAEncryption
#         b5:c6:c7:bc:46:fa:42:5c:13:c1:94:75:33:56:bf:2f:a7:07:
#         73:ec:37:e3:43:74:ea:f9:66:4f:5e:8d:7f:f0:e6:79:c3:4d:
#         f5:d9:38:a5:cc:ca:43:f4:53:80:86:bf:bc:d0:11:5d:90:c4:
#         c2:40:47:eb:c5:87:93:c1:b6:78:5e:9a:ae:87:f5:62:10:59:
#         4c:4c:6d:06:be:99:13:15:b3:b3:fa:1c:72:7e:e0:22:21:01:
#         58:35:38:68:a2:e4:f8:e1:f0:f0:36:50:91:e0:b4:77:dc:63:
#         84:33:92:60:b8:cb:16:f2:d2:63:3b:4c:5c:35:3a:e7:ac:02:
#         53:c5:1c:81:01:77:c7:1c:11:1f:54:30:ef:54:8f:25:fa:89:
#         27:94:34:a3:0f:14:4f:6f:e9:73:d9:18:62:e7:ee:08:e8:c9:
#         83:7b:c8:33:9b:7c:44:9a:7c:1a:90:b5:d2:71:89:df:3d:f4:
#         1c:4f:4e:51:e0:c9:6b:b6:aa:0b:1e:d9:30:0f:d3:63:d5:ed:
#         70:f4:c1:83:ed:06:45:9a:a8:ea:b4:89:37:fd:5a:37:47:ef:
#         91:79:a7:35:ff:f0:dc:30:ed:0d:14:67:db:7c:5a:e0:8f:6d:
#         33:fe:3c:9e:15:33:c3:c3:2d:0e:5d:aa:7c:0d:8e:31:96:4d:
#         8b:ff:05:d5

[p11-kit-object-v1]
label: "Actalis Authentication CA G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwxyGND8nUkJguitg0CEr
ydfpQHU6bFgPIzvPhj7UZKtu2urIKtiVRd/JHNIlkp4QmFqLcWnAlen2a2jc97bE
Df5u9XA7waSoTyCiJwuf8RJ1fM+uf17LeAJYKNcvqtugrnQ9fqv26XKhKs/WkGDf
4KA1ysDbBMQHVvxmdYyOehOhPAZrGuZ/OZyI5IRvouJ/a5/sAarSxMuy7Jo9uBcY
rB9gmTPm6wXdzPJpZ7AOvigkQ8stuUeEGfnq5PH1aPSfx3tQUa+i/G93iDG/ktt/
nMW1rKEImOdqM/7RuwDhtwUIr/OmVog2PeOKSuINnYCGZp/UwqNQuhwS14eKMUq4
FQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Actalis Authentication CA G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = IT, L = Milano, O = Actalis S.p.A./03358520967, CN = Actalis Authentication CA G1
#        Validity
#            Not Before: Jun 23 14:06:00 2009 GMT
#            Not After : Jun 25 14:06:00 2022 GMT
#        Subject: C = IT, L = Milano, O = Actalis S.p.A./03358520967, CN = Actalis Authentication CA G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c3:1c:86:34:3f:27:52:42:60:ba:2b:60:d0:21:
#                    2b:c9:d7:e9:40:75:3a:6c:58:0f:23:3b:cf:86:3e:
#                    d4:64:ab:6e:da:ea:c8:2a:d8:95:45:df:c9:1c:d2:
#                    25:92:9e:10:98:5a:8b:71:69:c0:95:e9:f6:6b:68:
#                    dc:f7:b6:c4:0d:fe:6e:f5:70:3b:c1:a4:a8:4f:20:
#                    a2:27:0b:9f:f1:12:75:7c:cf:ae:7f:5e:cb:78:02:
#                    58:28:d7:2f:aa:db:a0:ae:74:3d:7e:ab:f6:e9:72:
#                    a1:2a:cf:d6:90:60:df:e0:a0:35:ca:c0:db:04:c4:
#                    07:56:fc:66:75:8c:8e:7a:13:a1:3c:06:6b:1a:e6:
#                    7f:39:9c:88:e4:84:6f:a2:e2:7f:6b:9f:ec:01:aa:
#                    d2:c4:cb:b2:ec:9a:3d:b8:17:18:ac:1f:60:99:33:
#                    e6:eb:05:dd:cc:f2:69:67:b0:0e:be:28:24:43:cb:
#                    2d:b9:47:84:19:f9:ea:e4:f1:f5:68:f4:9f:c7:7b:
#                    50:51:af:a2:fc:6f:77:88:31:bf:92:db:7f:9c:c5:
#                    b5:ac:a1:08:98:e7:6a:33:fe:d1:bb:00:e1:b7:05:
#                    08:af:f3:a6:56:88:36:3d:e3:8a:4a:e2:0d:9d:80:
#                    86:66:9f:d4:c2:a3:50:ba:1c:12:d7:87:8a:31:4a:
#                    b8:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:0
#            X509v3 Subject Key Identifier: 
#                01:BB:D6:9B:56:B4:7E:E6:C5:58:DD:2C:98:F4:CA:72:F6:5F:33:86
#    Signature Algorithm: sha1WithRSAEncryption
#         a1:20:d6:cb:a2:34:6d:3c:6e:e1:55:d2:4a:d0:d9:ba:b2:37:
#         51:88:77:27:ee:02:48:93:45:41:e2:75:51:f2:19:94:09:a0:
#         f3:b8:7d:ba:03:80:23:a0:25:ef:01:19:b5:d9:1a:7a:2d:e3:
#         42:8a:b1:86:31:0f:96:ec:66:84:f2:ce:23:12:46:96:6b:31:
#         5e:06:ba:af:a3:52:aa:42:20:a8:d1:ae:aa:9b:df:c4:17:9e:
#         53:70:01:b4:a9:1a:da:68:c8:63:0f:b6:5a:73:53:d1:69:11:
#         06:13:52:e7:6b:a8:05:31:b7:b0:fc:87:46:c5:75:88:81:f1:
#         5f:78:02:e7:9f:ad:9c:bb:54:ed:5f:99:6a:37:d5:eb:55:b3:
#         2a:c0:43:60:51:dc:b4:71:92:26:a3:0f:cc:7a:3d:dc:c0:42:
#         89:17:29:08:67:54:64:c5:f9:a8:44:bc:84:71:58:96:3d:67:
#         57:7f:bb:ac:90:b3:71:22:bf:3e:ba:ac:66:26:45:10:b3:f0:
#         1f:3a:3a:68:a5:50:35:ca:b4:17:91:06:01:2c:f7:0d:b0:70:
#         b2:5b:56:75:b9:77:99:c0:d9:95:85:02:2d:73:66:07:c9:4f:
#         99:11:ee:5b:2b:a8:e3:68:23:05:a8:f3:04:0f:06:bb:1f:09:
#         8e:c6:5b:1d

[p11-kit-object-v1]
label: "Actalis Authentication Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Actalis Authentication Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 6271844772424770508 (0x570a119742c4e3cc)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = IT, L = Milan, O = Actalis S.p.A./03358520967, CN = Actalis Authentication Root CA
#        Validity
#            Not Before: Sep 22 11:22:02 2011 GMT
#            Not After : Sep 22 11:22:02 2030 GMT
#        Subject: C = IT, L = Milan, O = Actalis S.p.A./03358520967, CN = Actalis Authentication Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a7:c6:c4:a5:29:a4:2c:ef:e5:18:c5:b0:50:a3:
#                    6f:51:3b:9f:0a:5a:c9:c2:48:38:0a:c2:1c:a0:18:
#                    7f:91:b5:87:b9:40:3f:dd:1d:68:1f:08:83:d5:2d:
#                    1e:88:a0:f8:8f:56:8f:6d:99:02:92:90:16:d5:5f:
#                    08:6c:89:d7:e1:ac:bc:20:c2:b1:e0:83:51:8a:69:
#                    4d:00:96:5a:6f:2f:c0:44:7e:a3:0e:e4:91:cd:58:
#                    ee:dc:fb:c7:1e:45:47:dd:27:b9:08:01:9f:a6:21:
#                    1d:f5:41:2d:2f:4c:fd:28:ad:e0:8a:ad:22:b4:56:
#                    65:8e:86:54:8f:93:43:29:de:39:46:78:a3:30:23:
#                    ba:cd:f0:7d:13:57:c0:5d:d2:83:6b:48:4c:c4:ab:
#                    9f:80:5a:5b:3a:bd:c9:a7:22:3f:80:27:33:5b:0e:
#                    b7:8a:0c:5d:07:37:08:cb:6c:d2:7a:47:22:44:35:
#                    c5:cc:cc:2e:8e:dd:2a:ed:b7:7d:66:0d:5f:61:51:
#                    22:55:1b:e3:46:e3:e3:3d:d0:35:62:9a:db:af:14:
#                    c8:5b:a1:cc:89:1b:e1:30:26:fc:a0:9b:1f:81:a7:
#                    47:1f:04:eb:a3:39:92:06:9f:99:d3:bf:d3:ea:4f:
#                    50:9c:19:fe:96:87:1e:3c:65:f6:a3:18:24:83:86:
#                    10:e7:54:3e:a8:3a:76:24:4f:81:21:c5:e3:0f:02:
#                    f8:93:94:47:20:bb:fe:d4:0e:d3:68:b9:dd:c4:7a:
#                    84:82:e3:53:54:79:dd:db:9c:d2:f2:07:9b:2e:b6:
#                    bc:3e:ed:85:6d:ef:25:11:f2:97:1a:42:61:f7:4a:
#                    97:e8:8b:b1:10:07:fa:65:81:b2:a2:39:cf:f7:3c:
#                    ff:18:fb:c6:f1:5a:8b:59:e2:02:ac:7b:92:d0:4e:
#                    14:4f:59:45:f6:0c:5e:28:5f:b0:e8:3f:45:cf:cf:
#                    af:9b:6f:fb:84:d3:77:5a:95:6f:ac:94:84:9e:ee:
#                    bc:c0:4a:8f:4a:93:f8:44:21:e2:31:45:61:50:4e:
#                    10:d8:e3:35:7c:4c:19:b4:de:05:bf:a3:06:9f:c8:
#                    b5:cd:e4:1f:d7:17:06:0d:7a:95:74:55:0d:68:1a:
#                    fc:10:1b:62:64:9d:6d:e0:95:a0:c3:94:07:57:0d:
#                    14:e6:bd:05:fb:b8:9f:e6:df:8b:e2:c6:e7:7e:96:
#                    f6:53:c5:80:34:50:28:58:f0:12:50:71:17:30:ba:
#                    e6:78:63:bc:f4:b2:ad:9b:2b:b2:fe:e1:39:8c:5e:
#                    ba:0b:20:94:de:7b:83:b8:ff:e3:56:8d:b7:11:e9:
#                    3b:8c:f2:b1:c1:5d:9d:a4:0b:4c:2b:d9:b2:18:f5:
#                    b5:9f:4b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                52:D8:88:3A:C8:9F:78:66:ED:89:F3:7B:38:70:94:C9:02:02:36:D0
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:52:D8:88:3A:C8:9F:78:66:ED:89:F3:7B:38:70:94:C9:02:02:36:D0
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         0b:7b:72:87:c0:60:a6:49:4c:88:58:e6:1d:88:f7:14:64:48:
#         a6:d8:58:0a:0e:4f:13:35:df:35:1d:d4:ed:06:31:c8:81:3e:
#         6a:d5:dd:3b:1a:32:ee:90:3d:11:d2:2e:f4:8e:c3:63:2e:23:
#         66:b0:67:be:6f:b6:c0:13:39:60:aa:a2:34:25:93:75:52:de:
#         a7:9d:ad:0e:87:89:52:71:6a:16:3c:19:1d:83:f8:9a:29:65:
#         be:f4:3f:9a:d9:f0:f3:5a:87:21:71:80:4d:cb:e0:38:9b:3f:
#         bb:fa:e0:30:4d:cf:86:d3:65:10:19:18:d1:97:02:b1:2b:72:
#         42:68:ac:a0:bd:4e:5a:da:18:bf:6b:98:81:d0:fd:9a:be:5e:
#         15:48:cd:11:15:b9:c0:29:5c:b4:e8:88:f7:3e:36:ae:b7:62:
#         fd:1e:62:de:70:78:10:1c:48:5b:da:bc:a4:38:ba:67:ed:55:
#         3e:5e:57:df:d4:03:40:4c:81:a4:d2:4f:63:a7:09:42:09:14:
#         fc:00:a9:c2:80:73:4f:2e:c0:40:d9:11:7b:48:ea:7a:02:c0:
#         d3:eb:28:01:26:58:74:c1:c0:73:22:6d:93:95:fd:39:7d:bb:
#         2a:e3:f6:82:e3:2c:97:5f:4e:1f:91:94:fa:fe:2c:a3:d8:76:
#         1a:b8:4d:b2:38:4f:9b:fa:1d:48:60:79:26:e2:f3:fd:a9:d0:
#         9a:e8:70:8f:49:7a:d6:e5:bd:0a:0e:db:2d:f3:8d:bf:eb:e3:
#         a4:7d:cb:c7:95:71:e8:da:a3:7c:c5:c2:f8:74:92:04:1b:86:
#         ac:a4:22:53:40:b6:ac:fe:4c:76:cf:fb:94:32:c0:35:9f:76:
#         3f:6e:e5:90:6e:a0:a6:26:a2:b8:2c:be:d1:2b:85:fd:a7:68:
#         c8:ba:01:2b:b1:6c:74:1d:b8:73:95:e7:ee:b7:c7:25:f0:00:
#         4c:00:b2:7e:b6:0b:8b:1c:f3:c0:50:9e:25:b9:e0:08:de:36:
#         66:ff:37:a5:d1:bb:54:64:2c:c9:27:b5:4b:92:7e:65:ff:d3:
#         2d:e1:b9:4e:bc:7f:a4:41:21:90:41:77:a6:39:1f:ea:9e:e3:
#         9f:d0:66:6f:05:ec:aa:76:7e:bf:6b:16:a0:eb:b5:c7:fc:92:
#         54:2f:2b:11:27:25:37:78:4c:51:6a:b0:f3:cc:58:5d:14:f1:
#         6a:48:15:ff:c2:07:b6:b1:8d:0f:8e:5c:50:46:b3:3d:bf:01:
#         98:4f:b2:59:54:47:3e:34:7b:78:6d:56:93:2e:73:ea:66:28:
#         78:cd:1d:14:bf:a0:8f:2f:2e:b8:2e:8e:f2:14:8a:cc:e9:b5:
#         7c:fb:6c:9d:0c:a5:e1:96

[p11-kit-object-v1]
label: "AddTrust External CA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt/caM+byAAQtOeBOW+0f
vGwPzbX6I7bO3psRM5ekKUx9k5+9SryT7QMa44/P5W1QWtaXKZRagLBJetsulf24
yr83OC0ePpFBrXBWx/BPP+gynnTKyJBU6cZfD3idmkA8Dqxhql4Uj56HoWpQ3Nea
Tq8Fs6ZxlJxxs1BgCscTnTgHhgKo6ahpJhiQq0ywTyOrOk+E2N/On+Fpb7vXQtdr
ROTHre5tQV9yWnEIN7N5ZaRZoJQ39wAvDcKSctrQOHLbFKhFxF0qfbe01sTurM0T
RLfJK91DACX6YblpalgjEbenM49WdVn1zSnXRrcKK2W200JvFbK4e/vv6V1T1TRa
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AddTrust External CA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SE, O = AddTrust AB, OU = AddTrust External TTP Network, CN = AddTrust External CA Root
#        Validity
#            Not Before: May 30 10:48:38 2000 GMT
#            Not After : May 30 10:48:38 2020 GMT
#        Subject: C = SE, O = AddTrust AB, OU = AddTrust External TTP Network, CN = AddTrust External CA Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:f7:1a:33:e6:f2:00:04:2d:39:e0:4e:5b:ed:
#                    1f:bc:6c:0f:cd:b5:fa:23:b6:ce:de:9b:11:33:97:
#                    a4:29:4c:7d:93:9f:bd:4a:bc:93:ed:03:1a:e3:8f:
#                    cf:e5:6d:50:5a:d6:97:29:94:5a:80:b0:49:7a:db:
#                    2e:95:fd:b8:ca:bf:37:38:2d:1e:3e:91:41:ad:70:
#                    56:c7:f0:4f:3f:e8:32:9e:74:ca:c8:90:54:e9:c6:
#                    5f:0f:78:9d:9a:40:3c:0e:ac:61:aa:5e:14:8f:9e:
#                    87:a1:6a:50:dc:d7:9a:4e:af:05:b3:a6:71:94:9c:
#                    71:b3:50:60:0a:c7:13:9d:38:07:86:02:a8:e9:a8:
#                    69:26:18:90:ab:4c:b0:4f:23:ab:3a:4f:84:d8:df:
#                    ce:9f:e1:69:6f:bb:d7:42:d7:6b:44:e4:c7:ad:ee:
#                    6d:41:5f:72:5a:71:08:37:b3:79:65:a4:59:a0:94:
#                    37:f7:00:2f:0d:c2:92:72:da:d0:38:72:db:14:a8:
#                    45:c4:5d:2a:7d:b7:b4:d6:c4:ee:ac:cd:13:44:b7:
#                    c9:2b:dd:43:00:25:fa:61:b9:69:6a:58:23:11:b7:
#                    a7:33:8f:56:75:59:f5:cd:29:d7:46:b7:0a:2b:65:
#                    b6:d3:42:6f:15:b2:b8:7b:fb:ef:e9:5d:53:d5:34:
#                    5a:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                AD:BD:98:7A:34:B4:26:F7:FA:C4:26:54:EF:03:BD:E0:24:CB:54:1A
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:AD:BD:98:7A:34:B4:26:F7:FA:C4:26:54:EF:03:BD:E0:24:CB:54:1A
#                DirName:/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root
#                serial:01
#
#    Signature Algorithm: sha1WithRSAEncryption
#         b0:9b:e0:85:25:c2:d6:23:e2:0f:96:06:92:9d:41:98:9c:d9:
#         84:79:81:d9:1e:5b:14:07:23:36:65:8f:b0:d8:77:bb:ac:41:
#         6c:47:60:83:51:b0:f9:32:3d:e7:fc:f6:26:13:c7:80:16:a5:
#         bf:5a:fc:87:cf:78:79:89:21:9a:e2:4c:07:0a:86:35:bc:f2:
#         de:51:c4:d2:96:b7:dc:7e:4e:ee:70:fd:1c:39:eb:0c:02:51:
#         14:2d:8e:bd:16:e0:c1:df:46:75:e7:24:ad:ec:f4:42:b4:85:
#         93:70:10:67:ba:9d:06:35:4a:18:d3:2b:7a:cc:51:42:a1:7a:
#         63:d1:e6:bb:a1:c5:2b:c2:36:be:13:0d:e6:bd:63:7e:79:7b:
#         a7:09:0d:40:ab:6a:dd:8f:8a:c3:f6:f6:8c:1a:42:05:51:d4:
#         45:f5:9f:a7:62:21:68:15:20:43:3c:99:e7:7c:bd:24:d8:a9:
#         91:17:73:88:3f:56:1b:31:38:18:b4:71:0f:9a:cd:c8:0e:9e:
#         8e:2e:1b:e1:8c:98:83:cb:1f:31:f1:44:4c:c6:04:73:49:76:
#         60:0f:c7:f8:bd:17:80:6b:2e:e9:cc:4c:0e:5a:9a:79:0f:20:
#         0a:2e:d5:9e:63:26:1e:55:92:94:d8:82:17:5a:7b:d0:bc:c7:
#         8f:4e:86:04

[p11-kit-object-v1]
label: "Admin-Root-CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy+CvRBQi/moXSfJdnc9c
AmILgLlav6hVM3ujEiReTG87QYlOgz2fs5UmNKbMEvTMnYdePQwNFy+FJj4qJllz
oai8O+vlRrjzWXsgsV5AAW26Z7Nr6+/F4vk13QxqBraaKJpws0ApdsBxRhFrQ6/l
VkH75hw5g0239qKxZsmoDbLwd742wSAnMrnM11rK9hdBNk37u1WBY5yTXoNrf7gV
d3J8fU0Ja1mV5u0wq0RG2RUBpVuJZbbgKNkoCJV+CCOyIujfJUw8aPdu50vHkP2E
QSa+XIM61yN5txr4BxmCWmlYxf+IcivHvvjTLTN3pxYSqIshxkKuemSv8rPA7Xfk
aQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Admin-Root-CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1005814224 (0x3bf381d0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ch, O = admin, OU = Services, OU = Certification Authorities, CN = Admin-Root-CA
#        Validity
#            Not Before: Nov 15 08:51:07 2001 GMT
#            Not After : Nov 10 07:51:07 2021 GMT
#        Subject: C = ch, O = admin, OU = Services, OU = Certification Authorities, CN = Admin-Root-CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cb:e0:af:44:14:22:fe:6a:17:49:f2:5d:9d:cf:
#                    5c:02:62:0b:80:b9:5a:bf:a8:55:33:7b:a3:12:24:
#                    5e:4c:6f:3b:41:89:4e:83:3d:9f:b3:95:26:34:a6:
#                    cc:12:f4:cc:9d:87:5e:3d:0c:0d:17:2f:85:26:3e:
#                    2a:26:59:73:a1:a8:bc:3b:eb:e5:46:b8:f3:59:7b:
#                    20:b1:5e:40:01:6d:ba:67:b3:6b:eb:ef:c5:e2:f9:
#                    35:dd:0c:6a:06:b6:9a:28:9a:70:b3:40:29:76:c0:
#                    71:46:11:6b:43:af:e5:56:41:fb:e6:1c:39:83:4d:
#                    b7:f6:a2:b1:66:c9:a8:0d:b2:f0:77:be:36:c1:20:
#                    27:32:b9:cc:d7:5a:ca:f6:17:41:36:4d:fb:bb:55:
#                    81:63:9c:93:5e:83:6b:7f:b8:15:77:72:7c:7d:4d:
#                    09:6b:59:95:e6:ed:30:ab:44:46:d9:15:01:a5:5b:
#                    89:65:b6:e0:28:d9:28:08:95:7e:08:23:b2:22:e8:
#                    df:25:4c:3c:68:f7:6e:e7:4b:c7:90:fd:84:41:26:
#                    be:5c:83:3a:d7:23:79:b7:1a:f8:07:19:82:5a:69:
#                    58:c5:ff:88:72:2b:c7:be:f8:d3:2d:33:77:a7:16:
#                    12:a8:8b:21:c6:42:ae:7a:64:af:f2:b3:c0:ed:77:
#                    e4:69
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.17.3.1.0
#                  User Notice:
#                    Explicit Text: This is the Admin-Root-CA CPS
#                  CPS: http://www.informatik.admin.ch/PKI/links/CPS_2_16_756_1_17_3_1_0.pdf
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:CN = Admin-Root-CA, OU = Certification Authorities, OU = Services, O = admin, C = ch
#
#            X509v3 Subject Key Identifier: 
#                82:9F:FA:23:73:20:F1:97:8B:B2:4C:4D:BE:42:C5:7F:66:CD:64:E8
#            X509v3 Authority Key Identifier: 
#                keyid:82:9F:FA:23:73:20:F1:97:8B:B2:4C:4D:BE:42:C5:7F:66:CD:64:E8
#                DirName:/C=ch/O=admin/OU=Services/OU=Certification Authorities/CN=Admin-Root-CA
#                serial:3B:F3:81:D0
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         78:4f:7a:5c:26:11:a7:2e:ae:9a:43:ca:5c:35:82:46:7e:c8:
#         36:8f:7a:66:b5:a9:32:08:1c:0c:e4:6e:a1:f1:c8:c1:d4:e4:
#         80:e7:8c:bd:63:b1:0c:df:f2:b9:3e:c2:0b:71:40:69:46:a3:
#         6c:f4:5b:0f:0d:21:44:c7:2a:2b:3d:1a:0b:c0:a0:c1:cc:88:
#         ca:1c:3f:ac:52:b6:f6:67:cd:4c:6d:c4:be:23:fd:41:2b:04:
#         6e:77:a5:16:78:e9:9b:5c:23:cf:81:1a:06:21:63:6a:dc:29:
#         51:b2:3a:f9:9b:f7:5d:b1:2d:f5:04:17:06:7f:9c:e8:37:85:
#         2d:ee:31:bc:2e:01:f8:c4:eb:6b:8e:34:c5:39:39:f6:94:98:
#         bb:1f:0e:1e:11:2f:a8:8c:07:0a:48:a2:8c:6a:99:85:34:b7:
#         2a:61:85:78:1a:29:69:1f:9d:25:50:51:04:ca:17:c3:39:38:
#         07:71:e7:d1:98:9b:d5:d1:18:15:96:bc:e2:f3:c9:67:2b:f1:
#         09:b2:ce:9c:f4:43:26:01:fa:57:6b:90:a9:b1:be:e8:35:d5:
#         69:ff:f0:39:15:4e:bc:5f:f0:cf:3b:f4:be:23:3f:45:66:c4:
#         b4:96:5d:be:8f:0d:de:c7:6d:09:42:f3:89:f9:f1:3f:f5:74:
#         4f:df:b8:65

[p11-kit-object-v1]
label: "AdminCA-CD-T01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0jQlMZmpLDhV+GNR9TAo
SNleJgQB4xAXJELQf5/ySMfoFA4MmjKqYXQkB6MGPuQKwR9XRRSPf61vqb8YPsdj
RmgpbyHBcUd5t0N8RX6wRZUnPMW+bCCo2VqAU4XFbnlc2gHKaam0wdTtbBTXEkv0
ieIHfxCfFxXqSsSr60IkF/2/xbrAgV/QD5yHk6Ie8feAVWwi5UtaFqtu4LiFEh2Q
MyxsOyz1OcvKzkM2g873tyiE7jzMgZP+Ww3tibk2F9+e6ZeiB37TLOmVtvgpmrws
4fiIrFNXEYSWBVrUTbn81U47yWzOgf5fEHP07bRV5QOCzCm99qNimsbL6CG7nT78
CQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AdminCA-CD-T01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CH, O = admin, OU = Services, OU = Certification Authorities, CN = AdminCA-CD-T01
#        Validity
#            Not Before: Jan 25 13:36:19 2006 GMT
#            Not After : Jan 25 12:36:19 2016 GMT
#        Subject: C = CH, O = admin, OU = Services, OU = Certification Authorities, CN = AdminCA-CD-T01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d2:34:25:31:99:a9:2c:38:55:f8:63:51:f5:30:
#                    28:48:d9:5e:26:04:01:e3:10:17:24:42:d0:7f:9f:
#                    f2:48:c7:e8:14:0e:0c:9a:32:aa:61:74:24:07:a3:
#                    06:3e:e4:0a:c1:1f:57:45:14:8f:7f:ad:6f:a9:bf:
#                    18:3e:c7:63:46:68:29:6f:21:c1:71:47:79:b7:43:
#                    7c:45:7e:b0:45:95:27:3c:c5:be:6c:20:a8:d9:5a:
#                    80:53:85:c5:6e:79:5c:da:01:ca:69:a9:b4:c1:d4:
#                    ed:6c:14:d7:12:4b:f4:89:e2:07:7f:10:9f:17:15:
#                    ea:4a:c4:ab:eb:42:24:17:fd:bf:c5:ba:c0:81:5f:
#                    d0:0f:9c:87:93:a2:1e:f1:f7:80:55:6c:22:e5:4b:
#                    5a:16:ab:6e:e0:b8:85:12:1d:90:33:2c:6c:3b:2c:
#                    f5:39:cb:ca:ce:43:36:83:ce:f7:b7:28:84:ee:3c:
#                    cc:81:93:fe:5b:0d:ed:89:b9:36:17:df:9e:e9:97:
#                    a2:07:7e:d3:2c:e9:95:b6:f8:29:9a:bc:2c:e1:f8:
#                    88:ac:53:57:11:84:96:05:5a:d4:4d:b9:fc:d5:4e:
#                    3b:c9:6c:ce:81:fe:5f:10:73:f4:ed:b4:55:e5:03:
#                    82:cc:29:bd:f6:a3:62:9a:c6:cb:e8:21:bb:9d:3e:
#                    fc:09
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:0
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.17.3.21.1
#                  User Notice:
#                    Explicit Text: This is the AdminCA-CD-T01 Certificate Practice Statement.
#                  CPS: http://www.pki.admin.ch/policy/CPS_2_16_756_1_17_3_21_1.pdf
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                2A:C4:69:0A:A1:C6:55:C6:03:6E:70:CE:86:81:B3:A4:0F:AA:19:DB
#    Signature Algorithm: sha1WithRSAEncryption
#         9f:7e:7a:6d:bb:ac:8c:8e:60:94:65:d1:43:50:d1:bf:6d:6a:
#         41:fd:12:e2:cd:c6:1f:26:66:ed:ca:9d:3a:41:65:78:ce:f4:
#         02:b0:53:fa:43:8f:e4:d9:bb:ae:54:80:17:25:60:12:49:81:
#         74:e8:3b:b3:db:65:5c:29:54:c9:e6:45:9e:9e:94:11:84:54:
#         72:28:cf:37:c0:f5:55:a3:51:2b:a3:c8:50:e6:e9:0c:14:13:
#         d0:2f:a4:01:fc:46:f7:3e:2f:db:d4:f4:4b:14:f8:b2:00:1d:
#         0b:fc:50:17:2b:f9:f0:5a:7d:6c:f9:fb:a3:0b:8a:c0:a7:32:
#         08:7d:57:4b:28:bf:06:9e:17:14:42:e5:2c:e6:a2:80:16:4e:
#         ff:0f:9d:3c:1c:f8:15:c2:52:75:98:d4:f8:16:89:d0:4d:e7:
#         28:08:c7:95:28:4e:e6:8b:81:49:99:da:27:3d:e9:fa:79:30:
#         d9:6c:a8:df:ab:3a:1b:10:8a:d1:76:e4:48:fe:39:8a:78:88:
#         1b:81:66:c3:06:64:a2:76:05:ca:94:27:b4:76:f1:da:82:fb:
#         b5:44:10:63:43:c3:a3:c6:c6:04:c7:0f:cb:f1:b6:8f:e7:5c:
#         8a:a6:51:96:c9:df:80:cc:b5:d1:20:b3:43:d3:14:c7:dd:b1:
#         50:6d:95:7a

[p11-kit-object-v1]
label: "AffirmTrust Commercial"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9htPZwcroRX1BiLLHwGy
43NFBkRJLLtJJRTWzsO3qyxPxkEylFf6EqdbDuKPHx6GGaeqtS25Xw2Kwq+FNXky
LbscYjfysVtKPcrNcV/pQr6U6Mje+SJIZMblq8Yrba0F8PrVC8+a5fBQpIs7R6Uj
W3p6+DM/uO+Zl+MgwdYoic+U+7lF7eNAFxHUdPALMeIrJmqbTFeurCA+ukV6BfO9
m2kVrn1OIGPENXY6BwLJN/3HR+7o8XYdcxXyl6S1yHp52UKqK39c/s4mT6NmgTWv
RLpUHhwwMmWd5jyTXlBOeuM61G7MGvv50jeuJCqrVwMiKA1JdX+3KNp1v47j3A55
MQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Commercial"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8608355977964138876 (0x7777062726a9b17c)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = AffirmTrust, CN = AffirmTrust Commercial
#        Validity
#            Not Before: Jan 29 14:06:06 2010 GMT
#            Not After : Dec 31 14:06:06 2030 GMT
#        Subject: C = US, O = AffirmTrust, CN = AffirmTrust Commercial
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:f6:1b:4f:67:07:2b:a1:15:f5:06:22:cb:1f:01:
#                    b2:e3:73:45:06:44:49:2c:bb:49:25:14:d6:ce:c3:
#                    b7:ab:2c:4f:c6:41:32:94:57:fa:12:a7:5b:0e:e2:
#                    8f:1f:1e:86:19:a7:aa:b5:2d:b9:5f:0d:8a:c2:af:
#                    85:35:79:32:2d:bb:1c:62:37:f2:b1:5b:4a:3d:ca:
#                    cd:71:5f:e9:42:be:94:e8:c8:de:f9:22:48:64:c6:
#                    e5:ab:c6:2b:6d:ad:05:f0:fa:d5:0b:cf:9a:e5:f0:
#                    50:a4:8b:3b:47:a5:23:5b:7a:7a:f8:33:3f:b8:ef:
#                    99:97:e3:20:c1:d6:28:89:cf:94:fb:b9:45:ed:e3:
#                    40:17:11:d4:74:f0:0b:31:e2:2b:26:6a:9b:4c:57:
#                    ae:ac:20:3e:ba:45:7a:05:f3:bd:9b:69:15:ae:7d:
#                    4e:20:63:c4:35:76:3a:07:02:c9:37:fd:c7:47:ee:
#                    e8:f1:76:1d:73:15:f2:97:a4:b5:c8:7a:79:d9:42:
#                    aa:2b:7f:5c:fe:ce:26:4f:a3:66:81:35:af:44:ba:
#                    54:1e:1c:30:32:65:9d:e6:3c:93:5e:50:4e:7a:e3:
#                    3a:d4:6e:cc:1a:fb:f9:d2:37:ae:24:2a:ab:57:03:
#                    22:28:0d:49:75:7f:b7:28:da:75:bf:8e:e3:dc:0e:
#                    79:31
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9D:93:C6:53:8B:5E:CA:AF:3F:9F:1E:0F:E5:99:95:BC:24:F6:94:8F
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         58:ac:f4:04:0e:cd:c0:0d:ff:0a:fd:d4:ba:16:5f:29:bd:7b:
#         68:99:58:49:d2:b4:1d:37:4d:7f:27:7d:46:06:5d:43:c6:86:
#         2e:3e:73:b2:26:7d:4f:93:a9:b6:c4:2a:9a:ab:21:97:14:b1:
#         de:8c:d3:ab:89:15:d8:6b:24:d4:f1:16:ae:d8:a4:5c:d4:7f:
#         51:8e:ed:18:01:b1:93:63:bd:bc:f8:61:80:9a:9e:b1:ce:42:
#         70:e2:a9:7d:06:25:7d:27:a1:fe:6f:ec:b3:1e:24:da:e3:4b:
#         55:1a:00:3b:35:b4:3b:d9:d7:5d:30:fd:81:13:89:f2:c2:06:
#         2b:ed:67:c4:8e:c9:43:b2:5c:6b:15:89:02:bc:62:fc:4e:f2:
#         b5:33:aa:b2:6f:d3:0a:a2:50:e3:f6:3b:e8:2e:44:c2:db:66:
#         38:a9:33:56:48:f1:6d:1b:33:8d:0d:8c:3f:60:37:9d:d3:ca:
#         6d:7e:34:7e:0d:9f:72:76:8b:1b:9f:72:fd:52:35:41:45:02:
#         96:2f:1c:b2:9a:73:49:21:b1:49:47:45:47:b4:ef:6a:34:11:
#         c9:4d:9a:cc:59:b7:d6:02:9e:5a:4e:65:b5:94:ae:1b:df:29:
#         b0:16:f1:bf:00:9e:07:3a:17:64:b5:04:b5:23:21:99:0a:95:
#         3b:97:7c:ef

[p11-kit-object-v1]
label: "AffirmTrust Networking"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtITMMxcua5Rsa2FSoOuj
z3mUTOWUgJnLVWREZY9nZOIG41w3SfYvm4SEHi3yYJ0wTsyEheIszx6e/jarM3c1
RNg1lho9Nuh6DtjVR6FqaYvZ/Ls6rnla1fTWcbuakCNrmreIdIcMHl+5ni36q1Mr
3Lt2PpNMCAiMHqIjHNRqrSK6mQEubWXLviRmVSRLQESxG9fhwoXA3hA/Pe24/PHx
I1Pcv2WXb9n5QHGNfb2V1M6+oF4nI979ptAmDgAp6zxG8D1gvz9Q0twmQVGeFDdC
BKNwV6gbh+0t+nvujArjqWaJGctB+d1ENmHP4ndGyH329JKBNv3bNPFyfvMMFr20
FQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Networking"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8957382827206547757 (0x7c4f04391cd4992d)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = AffirmTrust, CN = AffirmTrust Networking
#        Validity
#            Not Before: Jan 29 14:08:24 2010 GMT
#            Not After : Dec 31 14:08:24 2030 GMT
#        Subject: C = US, O = AffirmTrust, CN = AffirmTrust Networking
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b4:84:cc:33:17:2e:6b:94:6c:6b:61:52:a0:eb:
#                    a3:cf:79:94:4c:e5:94:80:99:cb:55:64:44:65:8f:
#                    67:64:e2:06:e3:5c:37:49:f6:2f:9b:84:84:1e:2d:
#                    f2:60:9d:30:4e:cc:84:85:e2:2c:cf:1e:9e:fe:36:
#                    ab:33:77:35:44:d8:35:96:1a:3d:36:e8:7a:0e:d8:
#                    d5:47:a1:6a:69:8b:d9:fc:bb:3a:ae:79:5a:d5:f4:
#                    d6:71:bb:9a:90:23:6b:9a:b7:88:74:87:0c:1e:5f:
#                    b9:9e:2d:fa:ab:53:2b:dc:bb:76:3e:93:4c:08:08:
#                    8c:1e:a2:23:1c:d4:6a:ad:22:ba:99:01:2e:6d:65:
#                    cb:be:24:66:55:24:4b:40:44:b1:1b:d7:e1:c2:85:
#                    c0:de:10:3f:3d:ed:b8:fc:f1:f1:23:53:dc:bf:65:
#                    97:6f:d9:f9:40:71:8d:7d:bd:95:d4:ce:be:a0:5e:
#                    27:23:de:fd:a6:d0:26:0e:00:29:eb:3c:46:f0:3d:
#                    60:bf:3f:50:d2:dc:26:41:51:9e:14:37:42:04:a3:
#                    70:57:a8:1b:87:ed:2d:fa:7b:ee:8c:0a:e3:a9:66:
#                    89:19:cb:41:f9:dd:44:36:61:cf:e2:77:46:c8:7d:
#                    f6:f4:92:81:36:fd:db:34:f1:72:7e:f3:0c:16:bd:
#                    b4:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                07:1F:D2:E7:9C:DA:C2:6E:A2:40:B4:B0:7A:50:10:50:74:C4:C8:BD
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         89:57:b2:16:7a:a8:c2:fd:d6:d9:9b:9b:34:c2:9c:b4:32:14:
#         4d:a7:a4:df:ec:be:a7:be:f8:43:db:91:37:ce:b4:32:2e:50:
#         55:1a:35:4e:76:43:71:20:ef:93:77:4e:15:70:2e:87:c3:c1:
#         1d:6d:dc:cb:b5:27:d4:2c:56:d1:52:53:3a:44:d2:73:c8:c4:
#         1b:05:65:5a:62:92:9c:ee:41:8d:31:db:e7:34:ea:59:21:d5:
#         01:7a:d7:64:b8:64:39:cd:c9:ed:af:ed:4b:03:48:a7:a0:99:
#         01:80:dc:65:a3:36:ae:65:59:48:4f:82:4b:c8:65:f1:57:1d:
#         e5:59:2e:0a:3f:6c:d8:d1:f5:e5:09:b4:6c:54:00:0a:e0:15:
#         4d:87:75:6d:b7:58:96:5a:dd:6d:d2:00:a0:f4:9b:48:be:c3:
#         37:a4:ba:36:e0:7c:87:85:97:1a:15:a2:de:2e:a2:5b:bd:af:
#         18:f9:90:50:cd:70:59:f8:27:67:47:cb:c7:a0:07:3a:7d:d1:
#         2c:5d:6c:19:3a:66:b5:7d:fd:91:6f:82:b1:be:08:93:db:14:
#         47:f1:a2:37:c7:45:9e:3c:c7:77:af:64:a8:93:df:f6:69:83:
#         82:60:f2:49:42:34:ed:5a:00:54:85:1c:16:36:92:0c:5c:fa:
#         a6:ad:bf:db

[p11-kit-object-v1]
label: "AffirmTrust Premium"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Premium"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 7893706540734352110 (0x6d8c1446b1a60aee)
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = AffirmTrust, CN = AffirmTrust Premium
#        Validity
#            Not Before: Jan 29 14:10:36 2010 GMT
#            Not After : Dec 31 14:10:36 2040 GMT
#        Subject: C = US, O = AffirmTrust, CN = AffirmTrust Premium
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:12:df:a9:5f:fe:41:dd:dd:f5:9f:8a:e3:f6:
#                    ac:e1:3c:78:9a:bc:d8:f0:7f:7a:a0:33:2a:dc:8d:
#                    20:5b:ae:2d:6f:e7:93:d9:36:70:6a:68:cf:8e:51:
#                    a3:85:5b:67:04:a0:10:24:6f:5d:28:82:c1:97:57:
#                    d8:48:29:13:b6:e1:be:91:4d:df:85:0c:53:18:9a:
#                    1e:24:a2:4f:8f:f0:a2:85:0b:cb:f4:29:7f:d2:a4:
#                    58:ee:26:4d:c9:aa:a8:7b:9a:d9:fa:38:de:44:57:
#                    15:e5:f8:8c:c8:d9:48:e2:0d:16:27:1d:1e:c8:83:
#                    85:25:b7:ba:aa:55:41:cc:03:22:4b:2d:91:8d:8b:
#                    e6:89:af:66:c7:e9:ff:2b:e9:3c:ac:da:d2:b3:c3:
#                    e1:68:9c:89:f8:7a:00:56:de:f4:55:95:6c:fb:ba:
#                    64:dd:62:8b:df:0b:77:32:eb:62:cc:26:9a:9b:bb:
#                    aa:62:83:4c:b4:06:7a:30:c8:29:bf:ed:06:4d:97:
#                    b9:1c:c4:31:2b:d5:5f:bc:53:12:17:9c:99:57:29:
#                    66:77:61:21:31:07:2e:25:49:9d:18:f2:ee:f3:2b:
#                    71:8c:b5:ba:39:07:49:77:fc:ef:2e:92:90:05:8d:
#                    2d:2f:77:7b:ef:43:bf:35:bb:9a:d8:f9:73:a7:2c:
#                    f2:d0:57:ee:28:4e:26:5f:8f:90:68:09:2f:b8:f8:
#                    dc:06:e9:2e:9a:3e:51:a7:d1:22:c4:0a:a7:38:48:
#                    6c:b3:f9:ff:7d:ab:86:57:e3:ba:d6:85:78:77:ba:
#                    43:ea:48:7f:f6:d8:be:23:6d:1e:bf:d1:36:6c:58:
#                    5c:f1:ee:a4:19:54:1a:f5:03:d2:76:e6:e1:8c:bd:
#                    3c:b3:d3:48:4b:e2:c8:f8:7f:92:a8:76:46:9c:42:
#                    65:3e:a4:1e:c1:07:03:5a:46:2d:b8:97:f3:b7:d5:
#                    b2:55:21:ef:ba:dc:4c:00:97:fb:14:95:27:33:bf:
#                    e8:43:47:46:d2:08:99:16:60:3b:9a:7e:d2:e6:ed:
#                    38:ea:ec:01:1e:3c:48:56:49:09:c7:4c:37:00:9e:
#                    88:0e:c0:73:e1:6f:66:e9:72:47:30:3e:10:e5:0b:
#                    03:c9:9a:42:00:6c:c5:94:7e:61:c4:8a:df:7f:82:
#                    1a:0b:59:c4:59:32:77:b3:bc:60:69:56:39:fd:b4:
#                    06:7b:2c:d6:64:36:d9:bd:48:ed:84:1f:7e:a5:22:
#                    8f:2a:b8:42:f4:82:b7:d4:53:90:78:4e:2d:1a:fd:
#                    81:6f:44:d7:3b:01:74:96:42:e0:00:e2:2e:6b:ea:
#                    c5:ee:72:ac:bb:bf:fe:ea:aa:a8:f8:dc:f6:b2:79:
#                    8a:b6:67
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9D:C0:67:A6:0C:22:D9:26:F5:45:AB:A6:65:52:11:27:D8:45:AC:63
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha384WithRSAEncryption
#         b3:57:4d:10:62:4e:3a:e4:ac:ea:b8:1c:af:32:23:c8:b3:49:
#         5a:51:9c:76:28:8d:79:aa:57:46:17:d5:f5:52:f6:b7:44:e8:
#         08:44:bf:18:84:d2:0b:80:cd:c5:12:fd:00:55:05:61:87:41:
#         dc:b5:24:9e:3c:c4:d8:c8:fb:70:9e:2f:78:96:83:20:36:de:
#         7c:0f:69:13:88:a5:75:36:98:08:a6:c6:df:ac:ce:e3:58:d6:
#         b7:3e:de:ba:f3:eb:34:40:d8:a2:81:f5:78:3f:2f:d5:a5:fc:
#         d9:a2:d4:5e:04:0e:17:ad:fe:41:f0:e5:b2:72:fa:44:82:33:
#         42:e8:2d:58:f7:56:8c:62:3f:ba:42:b0:9c:0c:5c:7e:2e:65:
#         26:5c:53:4f:00:b2:78:7e:a1:0d:99:2d:8d:b8:1d:8e:a2:c4:
#         b0:fd:60:d0:30:a4:8e:c8:04:62:a9:c4:ed:35:de:7a:97:ed:
#         0e:38:5e:92:2f:93:70:a5:a9:9c:6f:a7:7d:13:1d:7e:c6:08:
#         48:b1:5e:67:eb:51:08:25:e9:e6:25:6b:52:29:91:9c:d2:39:
#         73:08:57:de:99:06:b4:5b:9d:10:06:e1:c2:00:a8:b8:1c:4a:
#         02:0a:14:d0:c1:41:ca:fb:8c:35:21:7d:82:38:f2:a9:54:91:
#         19:35:93:94:6d:6a:3a:c5:b2:d0:bb:89:86:93:e8:9b:c9:0f:
#         3a:a7:7a:b8:a1:f0:78:46:fa:fc:37:2f:e5:8a:84:f3:df:fe:
#         04:d9:a1:68:a0:2f:24:e2:09:95:06:d5:95:ca:e1:24:96:eb:
#         7c:f6:93:05:bb:ed:73:e9:2d:d1:75:39:d7:e7:24:db:d8:4e:
#         5f:43:8f:9e:d0:14:39:bf:55:70:48:99:57:31:b4:9c:ee:4a:
#         98:03:96:30:1f:60:06:ee:1b:23:fe:81:60:23:1a:47:62:85:
#         a5:cc:19:34:80:6f:b3:ac:1a:e3:9f:f0:7b:48:ad:d5:01:d9:
#         67:b6:a9:72:93:ea:2d:66:b5:b2:b8:e4:3d:3c:b2:ef:4c:8c:
#         ea:eb:07:bf:ab:35:9a:55:86:bc:18:a6:b5:a8:5e:b4:83:6c:
#         6b:69:40:d3:9f:dc:f1:c3:69:6b:b9:e1:6d:09:f4:f1:aa:50:
#         76:0a:7a:7d:7a:17:a1:55:96:42:99:31:09:dd:60:11:8d:05:
#         30:7e:e6:8e:46:d1:9d:14:da:c7:17:e4:05:96:8c:c4:24:b5:
#         1b:cf:14:07:b2:40:f8:a3:9e:41:86:bc:04:d0:6b:96:c8:2a:
#         80:34:fd:bf:ef:06:a3:dd:58:c5:85:3d:3e:8f:fe:9e:29:e0:
#         b6:b8:09:68:19:1c:18:43

[p11-kit-object-v1]
label: "AffirmTrust Premium ECC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEDTBeGxWdA9CheTW3OjySesoVHM1i85wm
XAc95VT6o9bMEur0FF/ojhmrLy5I5qwYQ3is0DfDvbLNLOZH4hrmY7g9Li94xE/b
9A+kaExVcmuVHU4YQpV4zDc8keKbZSsp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Premium ECC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIB/jCCAYWgAwIBAgIIdJclisc/elQwCgYIKoZIzj0EAwMwRTELMAkGA1UEBhMC
VVMxFDASBgNVBAoMC0FmZmlybVRydXN0MSAwHgYDVQQDDBdBZmZpcm1UcnVzdCBQ
cmVtaXVtIEVDQzAeFw0xMDAxMjkxNDIwMjRaFw00MDEyMzExNDIwMjRaMEUxCzAJ
BgNVBAYTAlVTMRQwEgYDVQQKDAtBZmZpcm1UcnVzdDEgMB4GA1UEAwwXQWZmaXJt
VHJ1c3QgUHJlbWl1bSBFQ0MwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAAQNMF4bFZ0D
0KF5Nbc6PJJ6yhUczWLznCZcBz3lVPqj1swS6vQUX+iOGasvLkjmrBhDeKzQN8O9
ss0s5kfiGuZjuD0uL3jET9v0D6RoTFVya5UdThhClXjMNzyR4ptlKymjQjBAMB0G
A1UdDgQWBBSaryl6wBE1NSZRMADDav5A1a7WPDAPBgNVHRMBAf8EBTADAQH/MA4G
A1UdDwEB/wQEAwIBBjAKBggqhkjOPQQDAwNnADBkAjAXCfOHiFBar8jAQr9HX/Vs
aobgxCd05DhT1wV/GzTjxi+zygk8N53X57hG8f2h4nECMEJZh0PUUd+60wkyWs6I
flc9nF9Ca/UHLbXwgpP5WW+uZPpY5Yse42O+tYHNbwKMeQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8401224907861490260 (0x7497258ac73f7a54)
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = AffirmTrust, CN = AffirmTrust Premium ECC
#        Validity
#            Not Before: Jan 29 14:20:24 2010 GMT
#            Not After : Dec 31 14:20:24 2040 GMT
#        Subject: C = US, O = AffirmTrust, CN = AffirmTrust Premium ECC
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:0d:30:5e:1b:15:9d:03:d0:a1:79:35:b7:3a:3c:
#                    92:7a:ca:15:1c:cd:62:f3:9c:26:5c:07:3d:e5:54:
#                    fa:a3:d6:cc:12:ea:f4:14:5f:e8:8e:19:ab:2f:2e:
#                    48:e6:ac:18:43:78:ac:d0:37:c3:bd:b2:cd:2c:e6:
#                    47:e2:1a:e6:63:b8:3d:2e:2f:78:c4:4f:db:f4:0f:
#                    a4:68:4c:55:72:6b:95:1d:4e:18:42:95:78:cc:37:
#                    3c:91:e2:9b:65:2b:29
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9A:AF:29:7A:C0:11:35:35:26:51:30:00:C3:6A:FE:40:D5:AE:D6:3C
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:17:09:f3:87:88:50:5a:af:c8:c0:42:bf:47:5f:
#         f5:6c:6a:86:e0:c4:27:74:e4:38:53:d7:05:7f:1b:34:e3:c6:
#         2f:b3:ca:09:3c:37:9d:d7:e7:b8:46:f1:fd:a1:e2:71:02:30:
#         42:59:87:43:d4:51:df:ba:d3:09:32:5a:ce:88:7e:57:3d:9c:
#         5f:42:6b:f5:07:2d:b5:f0:82:93:f9:59:6f:ae:64:fa:58:e5:
#         8b:1e:e3:63:be:b5:81:cd:6f:02:8c:79

[p11-kit-object-v1]
label: "Amazon Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsniAccp41eNxr0eAUHR9
btjXiHb0mWj3WCFg+XSEAS+sAi2G06BDek6ypNA2ugG+jdtIyAcXNkz07ogjxz7r
N/W1GfhJaLDe17l2OB1hnqT+gjal5UpW5EXh+f20Fvp02pybNTkv+rAgUAZsetCA
sqb5r+xHGY9QOAfcooc5WPi61an5SGcwlu6UeF5viaNRwDCGZqFFZrpU66PDkflI
3P/R6DAtfS10cDXXiCT3nsRZbrtzhxfyMkYouEP6tx2qyrTynyQOLUv3cVxeaf/q
lQLLOIquUDhv2/stYhvFxx5U4XfgZ8gPnIcj1j9AIH8ggMSATD47JCaOBK5smsiq
DQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:cf:99:bf:8c:0a:39:e2:f0:78:8a:43:e6:96:36:5b:ca
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = Amazon, CN = Amazon Root CA 1
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : Jan 17 00:00:00 2038 GMT
#        Subject: C = US, O = Amazon, CN = Amazon Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b2:78:80:71:ca:78:d5:e3:71:af:47:80:50:74:
#                    7d:6e:d8:d7:88:76:f4:99:68:f7:58:21:60:f9:74:
#                    84:01:2f:ac:02:2d:86:d3:a0:43:7a:4e:b2:a4:d0:
#                    36:ba:01:be:8d:db:48:c8:07:17:36:4c:f4:ee:88:
#                    23:c7:3e:eb:37:f5:b5:19:f8:49:68:b0:de:d7:b9:
#                    76:38:1d:61:9e:a4:fe:82:36:a5:e5:4a:56:e4:45:
#                    e1:f9:fd:b4:16:fa:74:da:9c:9b:35:39:2f:fa:b0:
#                    20:50:06:6c:7a:d0:80:b2:a6:f9:af:ec:47:19:8f:
#                    50:38:07:dc:a2:87:39:58:f8:ba:d5:a9:f9:48:67:
#                    30:96:ee:94:78:5e:6f:89:a3:51:c0:30:86:66:a1:
#                    45:66:ba:54:eb:a3:c3:91:f9:48:dc:ff:d1:e8:30:
#                    2d:7d:2d:74:70:35:d7:88:24:f7:9e:c4:59:6e:bb:
#                    73:87:17:f2:32:46:28:b8:43:fa:b7:1d:aa:ca:b4:
#                    f2:9f:24:0e:2d:4b:f7:71:5c:5e:69:ff:ea:95:02:
#                    cb:38:8a:ae:50:38:6f:db:fb:2d:62:1b:c5:c7:1e:
#                    54:e1:77:e0:67:c8:0f:9c:87:23:d6:3f:40:20:7f:
#                    20:80:c4:80:4c:3e:3b:24:26:8e:04:ae:6c:9a:c8:
#                    aa:0d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                84:18:CC:85:34:EC:BC:0C:94:94:2E:08:59:9C:C7:B2:10:4E:0A:08
#    Signature Algorithm: sha256WithRSAEncryption
#         98:f2:37:5a:41:90:a1:1a:c5:76:51:28:20:36:23:0e:ae:e6:
#         28:bb:aa:f8:94:ae:48:a4:30:7f:1b:fc:24:8d:4b:b4:c8:a1:
#         97:f6:b6:f1:7a:70:c8:53:93:cc:08:28:e3:98:25:cf:23:a4:
#         f9:de:21:d3:7c:85:09:ad:4e:9a:75:3a:c2:0b:6a:89:78:76:
#         44:47:18:65:6c:8d:41:8e:3b:7f:9a:cb:f4:b5:a7:50:d7:05:
#         2c:37:e8:03:4b:ad:e9:61:a0:02:6e:f5:f2:f0:c5:b2:ed:5b:
#         b7:dc:fa:94:5c:77:9e:13:a5:7f:52:ad:95:f2:f8:93:3b:de:
#         8b:5c:5b:ca:5a:52:5b:60:af:14:f7:4b:ef:a3:fb:9f:40:95:
#         6d:31:54:fc:42:d3:c7:46:1f:23:ad:d9:0f:48:70:9a:d9:75:
#         78:71:d1:72:43:34:75:6e:57:59:c2:02:5c:26:60:29:cf:23:
#         19:16:8e:88:43:a5:d4:e4:cb:08:fb:23:11:43:e8:43:29:72:
#         62:a1:a9:5d:5e:08:d4:90:ae:b8:d8:ce:14:c2:d0:55:f2:86:
#         f6:c4:93:43:77:66:61:c0:b9:e8:41:d7:97:78:60:03:6e:4a:
#         72:ae:a5:d1:7d:ba:10:9e:86:6c:1b:8a:b9:59:33:f8:eb:c4:
#         90:be:f1:b9

[p11-kit-object-v1]
label: "Amazon Root CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArZafLZxKTEqBeVGZ7IrL
a2BRE7xNbQb8sAiN3RkQascmDDXYwG8ghOmUsZuFA8Nb20royPiQdtlbT+NM6AY2
TcyarD0MkCuS1AYZYKw3RHmFgYKtWjfgDcydpkxSdupDnbcE0VD2VeDV0qZJhek3
6cp+rlyVTUiaP64gWm2Ildk0uFIaQ5Cwv2wFubZ4t+rQ5Do8ElNi/0rye741BakS
NOPzZHRiLD0ASVoo/jJEu4fdZScCcTvaSvcf2s33IVWQTw/sroLhn2vZRdO78F+H
7TwsOYbaP97sclXreaOt2918sLoczvzeTzV2zw/4eB9qNlFGJ2Fb6Z7P8KJVfXwl
im8vtMXPhC4r/Q1REGz7Xxu8G37FrjuYATGS/wtX9JqyuVfpq+8NdtHw7vTOhqfg
bum0aaHfafYzxmkulxOepYewVxCBN8lTs7t/9pLRnNAY9JJu2oNPpmOZTKX7Xu8h
ZHogX2xkhRXLN+liDAsqFtwBLjLaPkv1njr2F0CU756RCIb6vmOoWjPsy3RDlfls
aVI2xylv/FUDXB/7n71H6+dJR5ULTokiCUng9WEe8b8uinJugFn/Vzr5dTKjTl/s
7Shi2U1z8syBF2Dtzevc26fKxX4CvfJUCFT9tC0JLBdUSpjRVOFRZwjS7W5+bz/S
LYFZKWbLkDmVER50J/7d668CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:d2:96:35:86:9f:0a:0f:e5:86:78:f8:5b:26:bb:8a:37
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = Amazon, CN = Amazon Root CA 2
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : May 26 00:00:00 2040 GMT
#        Subject: C = US, O = Amazon, CN = Amazon Root CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ad:96:9f:2d:9c:4a:4c:4a:81:79:51:99:ec:8a:
#                    cb:6b:60:51:13:bc:4d:6d:06:fc:b0:08:8d:dd:19:
#                    10:6a:c7:26:0c:35:d8:c0:6f:20:84:e9:94:b1:9b:
#                    85:03:c3:5b:db:4a:e8:c8:f8:90:76:d9:5b:4f:e3:
#                    4c:e8:06:36:4d:cc:9a:ac:3d:0c:90:2b:92:d4:06:
#                    19:60:ac:37:44:79:85:81:82:ad:5a:37:e0:0d:cc:
#                    9d:a6:4c:52:76:ea:43:9d:b7:04:d1:50:f6:55:e0:
#                    d5:d2:a6:49:85:e9:37:e9:ca:7e:ae:5c:95:4d:48:
#                    9a:3f:ae:20:5a:6d:88:95:d9:34:b8:52:1a:43:90:
#                    b0:bf:6c:05:b9:b6:78:b7:ea:d0:e4:3a:3c:12:53:
#                    62:ff:4a:f2:7b:be:35:05:a9:12:34:e3:f3:64:74:
#                    62:2c:3d:00:49:5a:28:fe:32:44:bb:87:dd:65:27:
#                    02:71:3b:da:4a:f7:1f:da:cd:f7:21:55:90:4f:0f:
#                    ec:ae:82:e1:9f:6b:d9:45:d3:bb:f0:5f:87:ed:3c:
#                    2c:39:86:da:3f:de:ec:72:55:eb:79:a3:ad:db:dd:
#                    7c:b0:ba:1c:ce:fc:de:4f:35:76:cf:0f:f8:78:1f:
#                    6a:36:51:46:27:61:5b:e9:9e:cf:f0:a2:55:7d:7c:
#                    25:8a:6f:2f:b4:c5:cf:84:2e:2b:fd:0d:51:10:6c:
#                    fb:5f:1b:bc:1b:7e:c5:ae:3b:98:01:31:92:ff:0b:
#                    57:f4:9a:b2:b9:57:e9:ab:ef:0d:76:d1:f0:ee:f4:
#                    ce:86:a7:e0:6e:e9:b4:69:a1:df:69:f6:33:c6:69:
#                    2e:97:13:9e:a5:87:b0:57:10:81:37:c9:53:b3:bb:
#                    7f:f6:92:d1:9c:d0:18:f4:92:6e:da:83:4f:a6:63:
#                    99:4c:a5:fb:5e:ef:21:64:7a:20:5f:6c:64:85:15:
#                    cb:37:e9:62:0c:0b:2a:16:dc:01:2e:32:da:3e:4b:
#                    f5:9e:3a:f6:17:40:94:ef:9e:91:08:86:fa:be:63:
#                    a8:5a:33:ec:cb:74:43:95:f9:6c:69:52:36:c7:29:
#                    6f:fc:55:03:5c:1f:fb:9f:bd:47:eb:e7:49:47:95:
#                    0b:4e:89:22:09:49:e0:f5:61:1e:f1:bf:2e:8a:72:
#                    6e:80:59:ff:57:3a:f9:75:32:a3:4e:5f:ec:ed:28:
#                    62:d9:4d:73:f2:cc:81:17:60:ed:cd:eb:dc:db:a7:
#                    ca:c5:7e:02:bd:f2:54:08:54:fd:b4:2d:09:2c:17:
#                    54:4a:98:d1:54:e1:51:67:08:d2:ed:6e:7e:6f:3f:
#                    d2:2d:81:59:29:66:cb:90:39:95:11:1e:74:27:fe:
#                    dd:eb:af
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B0:0C:F0:4C:30:F4:05:58:02:48:FD:33:E5:52:AF:4B:84:E3:66:52
#    Signature Algorithm: sha384WithRSAEncryption
#         aa:a8:80:8f:0e:78:a3:e0:a2:d4:cd:e6:f5:98:7a:3b:ea:00:
#         03:b0:97:0e:93:bc:5a:a8:f6:2c:8c:72:87:a9:b1:fc:7f:73:
#         fd:63:71:78:a5:87:59:cf:30:e1:0d:10:b2:13:5a:6d:82:f5:
#         6a:e6:80:9f:a0:05:0b:68:e4:47:6b:c7:6a:df:b6:fd:77:32:
#         72:e5:18:fa:09:f4:a0:93:2c:5d:d2:8c:75:85:76:65:90:0c:
#         03:79:b7:31:23:63:ad:78:83:09:86:68:84:ca:ff:f9:cf:26:
#         9a:92:79:e7:cd:4b:c5:e7:61:a7:17:cb:f3:a9:12:93:93:6b:
#         a7:e8:2f:53:92:c4:60:58:b0:cc:02:51:18:5b:85:8d:62:59:
#         63:b6:ad:b4:de:9a:fb:26:f7:00:27:c0:5d:55:37:74:99:c9:
#         50:7f:e3:59:2e:44:e3:2c:25:ee:ec:4c:32:77:b4:9f:1a:e9:
#         4b:5d:20:c5:da:fd:1c:87:16:c6:43:e8:d4:bb:26:9a:45:70:
#         5e:a9:0b:37:53:e2:46:7b:27:fd:e0:46:f2:89:b7:cc:42:b6:
#         cb:28:26:6e:d9:a5:c9:3a:c8:41:13:60:f7:50:8c:15:ae:b2:
#         6d:1a:15:1a:57:78:e6:92:2a:d9:65:90:82:3f:6c:02:af:ae:
#         12:3a:27:96:36:04:d7:1d:a2:80:63:a9:9b:f1:e5:ba:b4:7c:
#         14:b0:4e:c9:b1:1f:74:5f:38:f6:51:ea:9b:fa:2c:a2:11:d4:
#         a9:2d:27:1a:45:b1:af:b2:4e:71:0d:c0:58:46:d6:69:06:cb:
#         53:cb:b3:fe:6b:41:cd:41:7e:7d:4c:0f:7c:72:79:7a:59:cd:
#         5e:4a:0e:ac:9b:a9:98:73:79:7c:b4:f4:cc:b9:b8:07:0c:b2:
#         74:5c:b8:c7:6f:88:a1:90:a7:f4:aa:f9:bf:67:3a:f4:1a:15:
#         62:1e:b7:9f:be:3d:b1:29:af:67:a1:12:f2:58:10:19:53:03:
#         30:1b:b8:1a:89:f6:9c:bd:97:03:8e:a3:09:f3:1d:8b:21:f1:
#         b4:df:e4:1c:d1:9f:65:02:06:ea:5c:d6:13:b3:84:ef:a2:a5:
#         5c:8c:77:29:a7:68:c0:6b:ae:40:d2:a8:b4:ea:cd:f0:8d:4b:
#         38:9c:19:9a:1b:28:54:b8:89:90:ef:ca:75:81:3e:1e:f2:64:
#         24:c7:18:af:4e:ff:47:9e:07:f6:35:65:a4:d3:0a:56:ff:f5:
#         17:64:6c:ef:a8:22:25:49:93:b6:df:00:17:da:58:7e:5d:ee:
#         c5:1b:b0:d1:d1:5f:21:10:c7:f9:f3:ba:02:0a:27:07:c5:f1:
#         d6:c7:d3:e0:fb:09:60:6c

[p11-kit-object-v1]
label: "Amazon Root CA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEKZenxkF/wA2b6AEbVsbyUqW6LbIS
6NIu1/rJxdiqbR9zgTs7mGs5fDOlxU6GjoAXaGJFV31EWB2zN+VnCOtm3g==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:d5:74:97:36:66:3f:3b:0b:9a:d9:e8:9e:76:03:f2:4a
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C = US, O = Amazon, CN = Amazon Root CA 3
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : May 26 00:00:00 2040 GMT
#        Subject: C = US, O = Amazon, CN = Amazon Root CA 3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub:
#                    04:29:97:a7:c6:41:7f:c0:0d:9b:e8:01:1b:56:c6:
#                    f2:52:a5:ba:2d:b2:12:e8:d2:2e:d7:fa:c9:c5:d8:
#                    aa:6d:1f:73:81:3b:3b:98:6b:39:7c:33:a5:c5:4e:
#                    86:8e:80:17:68:62:45:57:7d:44:58:1d:b3:37:e5:
#                    67:08:eb:66:de
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                AB:B6:DB:D7:06:9E:37:AC:30:86:07:91:70:C7:9C:C4:19:B1:78:C0
#    Signature Algorithm: ecdsa-with-SHA256
#         30:46:02:21:00:e0:85:92:a3:17:b7:8d:f9:2b:06:a5:93:ac:
#         1a:98:68:61:72:fa:e1:a1:d0:fb:1c:78:60:a6:43:99:c5:b8:
#         c4:02:21:00:9c:02:ef:f1:94:9c:b3:96:f9:eb:c6:2a:f8:b6:
#         2c:fe:3a:90:14:16:d7:8c:63:24:48:1c:df:30:7d:d5:68:3b

[p11-kit-object-v1]
label: "Amazon Root CA 4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE0quKN0+jUw3+wYp7S6h7RktjsGL2LRvb
CHEh0gDoY72aJ/vwOW5d6j2lyYGqo1sgmEVdFtv96BBt45zg471fhGLzcGQzoMsk
L3C6iKEqoHX4ga5iBsSB2zluKbAe+i5c
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:d7:c1:bb:10:4c:29:43:e5:71:7b:7b:2c:c8:1a:c1:0e
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = Amazon, CN = Amazon Root CA 4
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : May 26 00:00:00 2040 GMT
#        Subject: C = US, O = Amazon, CN = Amazon Root CA 4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:d2:ab:8a:37:4f:a3:53:0d:fe:c1:8a:7b:4b:a8:
#                    7b:46:4b:63:b0:62:f6:2d:1b:db:08:71:21:d2:00:
#                    e8:63:bd:9a:27:fb:f0:39:6e:5d:ea:3d:a5:c9:81:
#                    aa:a3:5b:20:98:45:5d:16:db:fd:e8:10:6d:e3:9c:
#                    e0:e3:bd:5f:84:62:f3:70:64:33:a0:cb:24:2f:70:
#                    ba:88:a1:2a:a0:75:f8:81:ae:62:06:c4:81:db:39:
#                    6e:29:b0:1e:fa:2e:5c
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                D3:EC:C7:3A:65:6E:CC:E1:DA:76:9A:56:FB:9C:F3:86:6D:57:E5:81
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:3a:8b:21:f1:bd:7e:11:ad:d0:ef:58:96:2f:d6:
#         eb:9d:7e:90:8d:2b:cf:66:55:c3:2c:e3:28:a9:70:0a:47:0e:
#         f0:37:59:12:ff:2d:99:94:28:4e:2a:4f:35:4d:33:5a:02:31:
#         00:ea:75:00:4e:3b:c4:3a:94:12:91:c9:58:46:9d:21:13:72:
#         a7:88:9c:8a:e4:4c:4a:db:96:d4:ac:8b:6b:6b:49:12:53:33:
#         ad:d7:e4:be:24:fc:b5:0a:76:d4:a5:bc:10

[p11-kit-object-v1]
label: "America Online Root Certification Authority 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "America Online Root Certification Authority 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = America Online Inc., CN = America Online Root Certification Authority 2
#        Validity
#            Not Before: May 28 06:00:00 2002 GMT
#            Not After : Sep 29 14:08:00 2037 GMT
#        Subject: C = US, O = America Online Inc., CN = America Online Root Certification Authority 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:cc:41:45:1d:e9:3d:4d:10:f6:8c:b1:41:c9:e0:
#                    5e:cb:0d:b7:bf:47:73:d3:f0:55:4d:dd:c6:0c:fa:
#                    b1:66:05:6a:cd:78:b4:dc:02:db:4e:81:f3:d7:a7:
#                    7c:71:bc:75:63:a0:5d:e3:07:0c:48:ec:25:c4:03:
#                    20:f4:ff:0e:3b:12:ff:9b:8d:e1:c6:d5:1b:b4:6d:
#                    22:e3:b1:db:7f:21:64:af:86:bc:57:22:2a:d6:47:
#                    81:57:44:82:56:53:bd:86:14:01:0b:fc:7f:74:a4:
#                    5a:ae:f1:ba:11:b5:9b:58:5a:80:b4:37:78:09:33:
#                    7c:32:47:03:5c:c4:a5:83:48:f4:57:56:6e:81:36:
#                    27:18:4f:ec:9b:28:c2:d4:b4:d7:7c:0c:3e:0c:2b:
#                    df:ca:04:d7:c6:8e:ea:58:4e:a8:a4:a5:18:1c:6c:
#                    45:98:a3:41:d1:2d:d2:c7:6d:8d:19:f1:ad:79:b7:
#                    81:3f:bd:06:82:27:2d:10:58:05:b5:78:05:b9:2f:
#                    db:0c:6b:90:90:7e:14:59:38:bb:94:24:13:e5:d1:
#                    9d:14:df:d3:82:4d:46:f0:80:39:52:32:0f:e3:84:
#                    b2:7a:43:f2:5e:de:5f:3f:1d:dd:e3:b2:1b:a0:a1:
#                    2a:23:03:6e:2e:01:15:87:5c:a6:75:75:c7:97:61:
#                    be:de:86:dc:d4:48:db:bd:2a:bf:4a:55:da:e8:7d:
#                    50:fb:b4:80:17:b8:94:bf:01:3d:ea:da:ba:7c:e0:
#                    58:67:17:b9:58:e0:88:86:46:67:6c:9d:10:47:58:
#                    32:d0:35:7c:79:2a:90:a2:5a:10:11:23:35:ad:2f:
#                    cc:e4:4a:5b:a7:c8:27:f2:83:de:5e:bb:5e:77:e7:
#                    e8:a5:6e:63:c2:0d:5d:61:d0:8c:d2:6c:5a:21:0e:
#                    ca:28:a3:ce:2a:e9:95:c7:48:cf:96:6f:1d:92:25:
#                    c8:c6:c6:c1:c1:0c:05:ac:26:c4:d2:75:d2:e1:2a:
#                    67:c0:3d:5b:a5:9a:eb:cf:7b:1a:a8:9d:14:45:e5:
#                    0f:a0:9a:65:de:2f:28:bd:ce:6f:94:66:83:48:29:
#                    d8:ea:65:8c:af:93:d9:64:9f:55:57:26:bf:6f:cb:
#                    37:31:99:a3:60:bb:1c:ad:89:34:32:62:b8:43:21:
#                    06:72:0c:a1:5c:6d:46:c5:fa:29:cf:30:de:89:dc:
#                    71:5b:dd:b6:37:3e:df:50:f5:b8:07:25:26:e5:bc:
#                    b5:fe:3c:02:b3:b7:f8:be:43:c1:87:11:94:9e:23:
#                    6c:17:8a:b8:8a:27:0c:54:47:f0:a9:b3:c0:80:8c:
#                    a0:27:eb:1d:19:e3:07:8e:77:70:ca:2b:f4:7d:76:
#                    e0:78:67
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4D:45:C1:68:38:BB:73:A9:69:A1:20:E7:ED:F5:22:A1:23:14:D7:9E
#            X509v3 Authority Key Identifier: 
#                keyid:4D:45:C1:68:38:BB:73:A9:69:A1:20:E7:ED:F5:22:A1:23:14:D7:9E
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         67:6b:06:b9:5f:45:3b:2a:4b:33:b3:e6:1b:6b:59:4e:22:cc:
#         b9:b7:a4:25:c9:a7:c4:f0:54:96:0b:64:f3:b1:58:4f:5e:51:
#         fc:b2:97:7b:27:65:c2:e5:ca:e7:0d:0c:25:7b:62:e3:fa:9f:
#         b4:87:b7:45:46:af:83:a5:97:48:8c:a5:bd:f1:16:2b:9b:76:
#         2c:7a:35:60:6c:11:80:97:cc:a9:92:52:e6:2b:e6:69:ed:a9:
#         f8:36:2d:2c:77:bf:61:48:d1:63:0b:b9:5b:52:ed:18:b0:43:
#         42:22:a6:b1:77:ae:de:69:c5:cd:c7:1c:a1:b1:a5:1c:10:fb:
#         18:be:1a:70:dd:c1:92:4b:be:29:5a:9d:3f:35:be:e5:7d:51:
#         f8:55:e0:25:75:23:87:1e:5c:dc:ba:9d:b0:ac:b3:69:db:17:
#         83:c9:f7:de:0c:bc:08:dc:91:9e:a8:d0:d7:15:37:73:a5:35:
#         b8:fc:7e:c5:44:40:06:c3:eb:f8:22:80:5c:47:ce:02:e3:11:
#         9f:44:ff:fd:9a:32:cc:7d:64:51:0e:eb:57:26:76:3a:e3:1e:
#         22:3c:c2:a6:36:dd:19:ef:a7:fc:12:f3:26:c0:59:31:85:4c:
#         9c:d8:cf:df:a4:cc:cc:29:93:ff:94:6d:76:5c:13:08:97:f2:
#         ed:a5:0b:4d:dd:e8:c9:68:0e:66:d3:00:0e:33:12:5b:bc:95:
#         e5:32:90:a8:b3:c6:6c:83:ad:77:ee:8b:7e:7e:b1:a9:ab:d3:
#         e1:f1:b6:c0:b1:ea:88:c0:e7:d3:90:e9:28:92:94:7b:68:7b:
#         97:2a:0a:67:2d:85:02:38:10:e4:03:61:d4:da:25:36:c7:08:
#         58:2d:a1:a7:51:af:30:0a:49:f5:a6:69:87:07:2d:44:46:76:
#         8e:2a:e5:9a:3b:d7:18:a2:fc:9c:38:10:cc:c6:3b:d2:b5:17:
#         3a:6f:fd:ae:25:bd:f5:72:59:64:b1:74:2a:38:5f:18:4c:df:
#         cf:71:04:5a:36:d4:bf:2f:99:9c:e8:d9:ba:b1:95:e6:02:4b:
#         21:a1:5b:d5:c1:4f:8f:ae:69:6d:53:db:01:93:b5:5c:1e:18:
#         dd:64:5a:ca:18:28:3e:63:04:11:fd:1c:8d:00:0f:b8:37:df:
#         67:8a:9d:66:a9:02:6a:91:ff:13:ca:2f:5d:83:bc:87:93:6c:
#         dc:24:51:16:04:25:66:fa:b3:d9:c2:ba:29:be:9a:48:38:82:
#         99:f4:bf:3b:4a:31:19:f9:bf:8e:21:33:14:ca:4f:54:5f:fb:
#         ce:fb:8f:71:7f:fd:5e:19:a0:0f:4b:91:b8:c4:54:bc:06:b0:
#         45:8f:26:91:a2:8e:fe:a9

[p11-kit-object-v1]
label: "ApplicationCA2 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApqqtJWXWABHW6Hp2qvTm
tEvzzMNStI2spk+1knFvRrXVrYsSIhclzkXoFHqFmuQjEKj6sWdQ5W1H4GqJE+Ou
rjXx9ELFBfdNl348KPywJpEejB44GpbcWESXYuMyyNEVQU11mHi+q2ipXu1HvqS6
jqECl96TdJltZ7QFJe6UyO2qpLoybEIR677LFwaQ4ZOFyGQozh9Hx8BdYO52Ntwz
O1Hre89y2A94qBmCCJA+GpiNjrTPFTambt234k1AIFPZdirQeKyJ8E+LMm1E6i66
sKnrid23b3kPq4FuuOaLKQtZr7ZJDVEsqf2dKGNmuHCVc5rY+jszvEJCGzKssTL7
PQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ApplicationCA2 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:32:35:33:37:32:38:32:38:32:38
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = JP, O = Japanese Government, OU = GPKI, CN = ApplicationCA2 Root
#        Validity
#            Not Before: Mar 12 15:00:00 2013 GMT
#            Not After : Mar 12 15:00:00 2033 GMT
#        Subject: C = JP, O = Japanese Government, OU = GPKI, CN = ApplicationCA2 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a6:aa:ad:25:65:d6:00:11:d6:e8:7a:76:aa:f4:
#                    e6:b4:4b:f3:cc:c3:52:b4:8d:ac:a6:4f:b5:92:71:
#                    6f:46:b5:d5:ad:8b:12:22:17:25:ce:45:e8:14:7a:
#                    85:9a:e4:23:10:a8:fa:b1:67:50:e5:6d:47:e0:6a:
#                    89:13:e3:ae:ae:35:f1:f4:42:c5:05:f7:4d:97:7e:
#                    3c:28:fc:b0:26:91:1e:8c:1e:38:1a:96:dc:58:44:
#                    97:62:e3:32:c8:d1:15:41:4d:75:98:78:be:ab:68:
#                    a9:5e:ed:47:be:a4:ba:8e:a1:02:97:de:93:74:99:
#                    6d:67:b4:05:25:ee:94:c8:ed:aa:a4:ba:32:6c:42:
#                    11:eb:be:cb:17:06:90:e1:93:85:c8:64:28:ce:1f:
#                    47:c7:c0:5d:60:ee:76:36:dc:33:3b:51:eb:7b:cf:
#                    72:d8:0f:78:a8:19:82:08:90:3e:1a:98:8d:8e:b4:
#                    cf:15:36:a6:6e:dd:b7:e2:4d:40:20:53:d9:76:2a:
#                    d0:78:ac:89:f0:4f:8b:32:6d:44:ea:2e:ba:b0:a9:
#                    eb:89:dd:b7:6f:79:0f:ab:81:6e:b8:e6:8b:29:0b:
#                    59:af:b6:49:0d:51:2c:a9:fd:9d:28:63:66:b8:70:
#                    95:73:9a:d8:fa:3b:33:bc:42:42:1b:32:ac:b1:32:
#                    fb:3d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                56:A7:AC:AA:02:1D:B2:AC:3D:90:0E:A0:6F:2E:41:C6:76:E7:7B:DA
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DirName:/C=JP/O=\xE6\x97\xA5\xE6\x9C\xAC\xE5\x9B\xBD\xE6\x94\xBF\xE5\xBA\x9C/OU=\xE6\x94\xBF\xE5\xBA\x9C\xE8\xAA\x8D\xE8\xA8\xBC\xE5\x9F\xBA\xE7\x9B\xA4/CN=\xE3\x82\xA2\xE3\x83\x97\xE3\x83\xAA\xE3\x82\xB1\xE3\x83\xBC\xE3\x82\xB7\xE3\x83\xA7\xE3\x83\xB3CA2 Root
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:9a:09:75:ac:07:d1:72:74:2e:77:57:30:c2:04:9c:d4:80:
#         a6:83:e7:a5:a0:1b:9f:fe:ab:f3:80:bd:d5:4a:a3:a1:8f:b6:
#         4c:60:11:e7:ca:e1:60:81:d7:48:c1:20:59:a5:61:32:8b:9d:
#         9e:97:d3:66:83:da:65:2e:58:3e:db:e5:2f:a5:cd:8c:73:a6:
#         51:be:58:28:a0:79:5c:69:2f:43:df:63:b2:89:47:ca:bb:de:
#         b9:34:11:63:a0:0e:25:17:e5:87:f4:1d:b0:b0:a5:cf:41:a8:
#         74:c6:e8:53:d5:42:f4:82:2d:53:09:11:68:26:71:94:75:13:
#         4d:aa:76:88:3c:74:b1:d6:e3:4c:4f:62:c3:49:4c:4e:6d:f1:
#         70:7e:c3:7f:a6:05:cc:78:9b:e9:81:db:a8:c8:c7:5c:9e:fc:
#         92:92:2d:a6:97:f2:38:b5:6e:73:95:0c:c0:3f:ce:a6:94:30:
#         b5:fa:05:b7:de:9e:20:aa:fc:13:64:c9:8a:ba:64:ef:e2:63:
#         e4:d8:98:ae:6b:b5:3e:a6:55:b8:33:3e:2c:72:fb:2c:11:00:
#         fb:5b:16:2f:84:d2:13:9e:fa:05:c5:c1:cb:72:4e:22:dd:84:
#         ca:4b:bc:d2:2d:86:1a:04:76:59:1f:49:42:62:3b:13:1f:16:
#         e8:ba:d7:fd

[p11-kit-object-v1]
label: "Application CA G3 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzUU+99GWIlyRLz4KAAPM
tvdsVPwoN9QEGOytmMmv06W559m/TuajmTyZbqEgHkYb4nVVvNLs9oga7DRFS4Od
07Lm3QeJwQjZ+DuLkmRyXZo7zK03icfcYHkI4HCs9yvtnwNJH44+g6hu4pJcVNF5
3+wYOn24bY/WoyVNrR9Apl/Uqk6xcBhZmfILVGk+eShEiPdxl81/BdzK3HZKkExr
YOj6JjHYtfjn/G2LJGq270LXI1TFGmOKO8f8qm08j8ts2iCw8rxlHAFMIpUNHCMf
rNX5znVb6jC9TAEkH3XUYUnDG5lljghcOTjNKcM4Rc1kebebTUfqWDL6pvaS8MG3
XwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Application CA G3 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 49 (0x31)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = JP, O = LGPKI, CN = Application CA G3 Root
#        Validity
#            Not Before: Jun  3 15:00:00 2014 GMT
#            Not After : Jun  3 14:59:59 2034 GMT
#        Subject: C = JP, O = LGPKI, CN = Application CA G3 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cd:45:3e:f7:d1:96:22:5c:91:2f:3e:0a:00:03:
#                    cc:b6:f7:6c:54:fc:28:37:d4:04:18:ec:ad:98:c9:
#                    af:d3:a5:b9:e7:d9:bf:4e:e6:a3:99:3c:99:6e:a1:
#                    20:1e:46:1b:e2:75:55:bc:d2:ec:f6:88:1a:ec:34:
#                    45:4b:83:9d:d3:b2:e6:dd:07:89:c1:08:d9:f8:3b:
#                    8b:92:64:72:5d:9a:3b:cc:ad:37:89:c7:dc:60:79:
#                    08:e0:70:ac:f7:2b:ed:9f:03:49:1f:8e:3e:83:a8:
#                    6e:e2:92:5c:54:d1:79:df:ec:18:3a:7d:b8:6d:8f:
#                    d6:a3:25:4d:ad:1f:40:a6:5f:d4:aa:4e:b1:70:18:
#                    59:99:f2:0b:54:69:3e:79:28:44:88:f7:71:97:cd:
#                    7f:05:dc:ca:dc:76:4a:90:4c:6b:60:e8:fa:26:31:
#                    d8:b5:f8:e7:fc:6d:8b:24:6a:b6:ef:42:d7:23:54:
#                    c5:1a:63:8a:3b:c7:fc:aa:6d:3c:8f:cb:6c:da:20:
#                    b0:f2:bc:65:1c:01:4c:22:95:0d:1c:23:1f:ac:d5:
#                    f9:ce:75:5b:ea:30:bd:4c:01:24:1f:75:d4:61:49:
#                    c3:1b:99:65:8e:08:5c:39:38:cd:29:c3:38:45:cd:
#                    64:79:b7:9b:4d:47:ea:58:32:fa:a6:f6:92:f0:c1:
#                    b7:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A9:35:2A:48:BE:2C:37:ED:86:DB:7C:55:87:00:26:BE:18:2D:5C:2E
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A9:35:2A:48:BE:2C:37:ED:86:DB:7C:55:87:00:26:BE:18:2D:5C:2E
#
#    Signature Algorithm: sha256WithRSAEncryption
#         b6:82:bd:c5:46:d0:71:8b:a5:91:3d:7e:2d:5a:f9:9c:84:7d:
#         07:27:95:1d:e7:4d:c8:7c:ec:e6:93:e8:56:1a:7a:30:48:3b:
#         0c:fa:4e:f5:09:b2:af:88:ad:94:ec:fd:b2:ad:2f:e6:05:74:
#         21:1b:84:8b:38:2a:c3:ed:ef:46:68:b5:dd:52:fa:70:c2:75:
#         4f:ff:a3:41:2e:3c:17:94:4c:09:22:b4:8e:c1:7f:c4:a6:ac:
#         ed:83:68:cf:65:5e:ec:7a:bd:c5:66:ee:d0:a3:7f:f2:57:b1:
#         08:c2:79:70:eb:72:7f:41:59:09:79:75:f1:bc:b1:21:fe:83:
#         b3:44:3d:89:a3:be:b1:7a:d8:9d:c3:1f:e6:c4:54:e1:8d:e5:
#         d8:50:dc:e4:56:37:7b:be:28:00:f3:2c:77:da:23:7f:60:98:
#         3d:05:16:f2:78:69:ad:99:c3:3a:74:6c:3e:9a:b2:94:ed:8f:
#         aa:f6:53:6b:e7:c8:b7:e8:3c:8c:fb:c7:7c:4f:19:5d:a4:66:
#         15:e9:7f:87:a0:d0:d5:ad:20:a4:46:09:45:ac:e5:c8:65:87:
#         bb:06:df:fc:d7:68:56:43:73:a2:00:99:32:92:c2:0e:a0:1c:
#         0e:91:bd:95:58:bc:93:9f:84:c2:a5:66:e7:65:cd:29:e2:62:
#         f2:05:92:60

[p11-kit-object-v1]
label: "Atos TrustedRoot 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlYU7l28qOy47z6bzKTW+
zxisPqrZ+E2gPhpHubya3/L+zD5H6HqWwiSONfSpDPyC/W3BcmInvepr6+eKzFQ+
kFDPgNSV++i1gtQUxbapVSVX27FQ9rBgZFl6ac8Dt28Nvso+b3Ry6qowKnNivkmR
YcgR/g4DKvdqINwCFQ1eFWr844LBtcWdZAlso1mYByfHG5YrYXRxbEPx9zWJEOCe
7FWhNyKihwQFLEd9tBy5YilmKMq34ZP1pJQDmblwhbXmSOqNUPzZ3sxvBw7dC3Kd
gDAWB5U/KA79xXVPU9Z0mrQkLo4Ckc92xZseVXSceCGx8C3xC5/C1ZYYH/BUInqM
BwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Atos TrustedRoot 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 6643877497813316402 (0x5c33cb622c5fb332)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: CN = Atos TrustedRoot 2011, O = Atos, C = DE
#        Validity
#            Not Before: Jul  7 14:58:30 2011 GMT
#            Not After : Dec 31 23:59:59 2030 GMT
#        Subject: CN = Atos TrustedRoot 2011, O = Atos, C = DE
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:95:85:3b:97:6f:2a:3b:2e:3b:cf:a6:f3:29:35:
#                    be:cf:18:ac:3e:aa:d9:f8:4d:a0:3e:1a:47:b9:bc:
#                    9a:df:f2:fe:cc:3e:47:e8:7a:96:c2:24:8e:35:f4:
#                    a9:0c:fc:82:fd:6d:c1:72:62:27:bd:ea:6b:eb:e7:
#                    8a:cc:54:3e:90:50:cf:80:d4:95:fb:e8:b5:82:d4:
#                    14:c5:b6:a9:55:25:57:db:b1:50:f6:b0:60:64:59:
#                    7a:69:cf:03:b7:6f:0d:be:ca:3e:6f:74:72:ea:aa:
#                    30:2a:73:62:be:49:91:61:c8:11:fe:0e:03:2a:f7:
#                    6a:20:dc:02:15:0d:5e:15:6a:fc:e3:82:c1:b5:c5:
#                    9d:64:09:6c:a3:59:98:07:27:c7:1b:96:2b:61:74:
#                    71:6c:43:f1:f7:35:89:10:e0:9e:ec:55:a1:37:22:
#                    a2:87:04:05:2c:47:7d:b4:1c:b9:62:29:66:28:ca:
#                    b7:e1:93:f5:a4:94:03:99:b9:70:85:b5:e6:48:ea:
#                    8d:50:fc:d9:de:cc:6f:07:0e:dd:0b:72:9d:80:30:
#                    16:07:95:3f:28:0e:fd:c5:75:4f:53:d6:74:9a:b4:
#                    24:2e:8e:02:91:cf:76:c5:9b:1e:55:74:9c:78:21:
#                    b1:f0:2d:f1:0b:9f:c2:d5:96:18:1f:f0:54:22:7a:
#                    8c:07
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A7:A5:06:B1:2C:A6:09:60:EE:D1:97:E9:70:AE:BC:3B:19:6C:DB:21
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A7:A5:06:B1:2C:A6:09:60:EE:D1:97:E9:70:AE:BC:3B:19:6C:DB:21
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.6189.3.4.1.1
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         26:77:34:db:94:48:86:2a:41:9d:2c:3e:06:90:60:c4:8c:ac:
#         0b:54:b8:1f:b9:7b:d3:07:39:e4:fa:3e:7b:b2:3d:4e:ed:9f:
#         23:bd:97:f3:6b:5c:ef:ee:fd:40:a6:df:a1:93:a1:0a:86:ac:
#         ef:20:d0:79:01:bd:78:f7:19:d8:24:31:34:04:01:a6:ba:15:
#         9a:c3:27:dc:d8:4f:0f:cc:18:63:ff:99:0f:0e:91:6b:75:16:
#         e1:21:fc:d8:26:c7:47:b7:a6:cf:58:72:71:7e:ba:e1:4d:95:
#         47:3b:c9:af:6d:a1:b4:c1:ec:89:f6:b4:0f:38:b5:e2:64:dc:
#         25:cf:a6:db:eb:9a:5c:99:a1:c5:08:de:fd:e6:da:d5:d6:5a:
#         45:0c:c4:b7:c2:b5:14:ef:b4:11:ff:0e:15:b5:f5:f5:db:c6:
#         bd:eb:5a:a7:f0:56:22:a9:3c:65:54:c6:15:a8:bd:86:9e:cd:
#         83:96:68:7a:71:81:89:e1:0b:e1:ea:11:1b:68:08:cc:69:9e:
#         ec:9e:41:9e:44:32:26:7a:e2:87:0a:71:3d:eb:e4:5a:a4:d2:
#         db:c5:cd:c6:de:60:7f:b9:f3:4f:44:92:ef:2a:b7:18:3e:a7:
#         19:d9:0b:7d:b1:37:41:42:b0:ba:60:1d:f2:fe:09:11:b0:f0:
#         87:7b:a7:9d

[p11-kit-object-v1]
label: "Australian Defence Public Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA005UBBvQ9JuduCOH4CDH
npixcXoGkC7irUj+kwVs7Ia/KECFs0x570dTmBAeVO59eLgYEwxEUv3QgaqTCCM5
vl8Pa90ll/MBQt/UgQDEUL56iS0Zr3NKP8w6wL+iqMUV9z58QXSCay53ZuJqpZGI
bgYxp68L5lrgrn1ary9H0PL7hHOcRqEehERRxF8u2pACX4HfEQ7S+7s6F3Oj8o1j
qk//cnplYoNaKjzyzSwjjc/rIR+/1ANX9TcWDF7lVxHCqPr/bDnyPVLmtXnAW+Ky
6mMgDA6lKl4S4eavX4t8oK05NTWYX/GvONAm0029Ynd1Pa9rFIZ7WvYhj9bq4qcO
rQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Australian Defence Public Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            29:eb:92:33:46:4f:32:41:ff:83:19:00:a9:ad:c4:d9:f8:e3:e2:7f
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = AU, O = GOV, OU = DoD, OU = PKI, OU = CAs, CN = Australian Defence Public Root CA
#        Validity
#            Not Before: Nov 28 22:25:28 2016 GMT
#            Not After : Nov 28 22:13:48 2036 GMT
#        Subject: C = AU, O = GOV, OU = DoD, OU = PKI, OU = CAs, CN = Australian Defence Public Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d3:4e:54:04:1b:d0:f4:9b:9d:b8:23:87:e0:20:
#                    c7:9e:98:b1:71:7a:06:90:2e:e2:ad:48:fe:93:05:
#                    6c:ec:86:bf:28:40:85:b3:4c:79:ef:47:53:98:10:
#                    1e:54:ee:7d:78:b8:18:13:0c:44:52:fd:d0:81:aa:
#                    93:08:23:39:be:5f:0f:6b:dd:25:97:f3:01:42:df:
#                    d4:81:00:c4:50:be:7a:89:2d:19:af:73:4a:3f:cc:
#                    3a:c0:bf:a2:a8:c5:15:f7:3e:7c:41:74:82:6b:2e:
#                    77:66:e2:6a:a5:91:88:6e:06:31:a7:af:0b:e6:5a:
#                    e0:ae:7d:5a:af:2f:47:d0:f2:fb:84:73:9c:46:a1:
#                    1e:84:44:51:c4:5f:2e:da:90:02:5f:81:df:11:0e:
#                    d2:fb:bb:3a:17:73:a3:f2:8d:63:aa:4f:ff:72:7a:
#                    65:62:83:5a:2a:3c:f2:cd:2c:23:8d:cf:eb:21:1f:
#                    bf:d4:03:57:f5:37:16:0c:5e:e5:57:11:c2:a8:fa:
#                    ff:6c:39:f2:3d:52:e6:b5:79:c0:5b:e2:b2:ea:63:
#                    20:0c:0e:a5:2a:5e:12:e1:e6:af:5f:8b:7c:a0:ad:
#                    39:35:35:98:5f:f1:af:38:d0:26:d3:4d:bd:62:77:
#                    75:3d:af:6b:14:86:7b:5a:f6:21:8f:d6:ea:e2:a7:
#                    0e:ad
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                Policy: 1.2.36.1.334.1.1.1.7
#                  CPS: http://crl.defence.gov.au/pki
#
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:AC:99:E1:02:2F:E8:5C:4B:41:B7:34:B8:1E:E9:9B:83:36:0D:94:B4
#
#            X509v3 Subject Key Identifier: 
#                AC:99:E1:02:2F:E8:5C:4B:41:B7:34:B8:1E:E9:9B:83:36:0D:94:B4
#    Signature Algorithm: sha256WithRSAEncryption
#         78:bc:81:4a:d8:3a:57:bb:bd:26:bf:ea:2a:28:f0:88:8a:f2:
#         50:4c:90:67:da:4b:f5:b8:14:08:ba:db:7f:72:a8:9a:59:bc:
#         f1:1c:89:a8:f4:3a:03:10:54:13:7a:5d:c6:da:ba:3e:0f:88:
#         d5:6a:d3:1b:97:2d:62:61:3a:6f:f9:00:af:72:06:73:ec:10:
#         c0:61:1e:cc:5c:4f:19:32:46:38:c1:dd:3f:d2:37:1a:a5:8e:
#         86:a0:f0:09:cc:35:d6:19:02:7c:cd:39:fc:f7:f9:1f:e7:94:
#         79:4e:3d:b7:f8:97:4e:3b:44:6a:cd:94:b0:b9:f7:7e:e2:e3:
#         f9:99:7f:c5:d3:a6:50:b4:49:fb:16:7e:4e:41:2c:cf:3e:c7:
#         79:40:ba:81:18:26:08:f9:c5:9d:e3:d8:f1:6f:1c:68:3f:6a:
#         5b:77:17:52:a3:06:de:19:c2:4b:6e:a2:95:fc:d5:08:bf:2c:
#         b5:69:35:51:e3:e3:df:4f:1a:29:6d:83:78:3d:38:24:ca:02:
#         3f:54:10:e1:b3:64:e1:d5:9a:de:f3:37:f6:33:10:b5:76:b3:
#         ab:d7:c9:1f:53:3a:ad:55:41:1c:48:c9:36:9e:87:ff:75:dc:
#         69:d0:af:d9:7a:57:c6:ca:b1:43:fc:39:81:fc:dc:7a:a3:9a:
#         a5:98:50:54

[p11-kit-object-v1]
label: "Autoridad Certificadora Raiz de la Secretaria de Economia"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwWSg9OdScLLqkxP0NTof
6jocxRuLWOGW1gJBXo6FQP9BZkBT/Ji10TIyl2dAgJ3uID8OVPtCB/t3GpnYhvQc
Kogl8+lEo07+B76xyO88jYfgHspJEDso7yRRofyIF0rnHMhUZ2PoajHmQ2z2QBGG
xFbuvckdpkY8HkbCgo0uqejudgpD4HJNjPTFBvosAQAzYM44cDRrFxrremRhp5Ok
ZWrXI8d2epRRC+yeqM87olAyHEK9Y+GHy7mFSA7A1Vi29s5L8gfP4wTVH8LWo26j
u7a3bsTxoh8WvLYtsO/0Wpspjbzh/AdbHgkzgnjMQG1xs2MTL9NMNqw5T8bBsLb1
hQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad Certificadora Raiz de la Secretaria de Economia"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: L = Alvaro Obregon, ST = Distrito Federal, C = MX, postalCode = 01030, street = Insurgentes Sur 1940, CN = Autoridad Certificadora Raiz de la Secretaria de Economia, OU = Direccion General de Normatividad Mercantil, O = Secretaria de Economia, emailAddress = acrse@economia.gob.mx
#        Validity
#            Not Before: May  8 00:00:00 2005 GMT
#            Not After : May  8 00:00:00 2025 GMT
#        Subject: L = Alvaro Obregon, ST = Distrito Federal, C = MX, postalCode = 01030, street = Insurgentes Sur 1940, CN = Autoridad Certificadora Raiz de la Secretaria de Economia, OU = Direccion General de Normatividad Mercantil, O = Secretaria de Economia, emailAddress = acrse@economia.gob.mx
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c1:64:a0:f4:e7:52:70:b2:ea:93:13:f4:35:3a:
#                    1f:ea:3a:1c:c5:1b:8b:58:e1:96:d6:02:41:5e:8e:
#                    85:40:ff:41:66:40:53:fc:98:b5:d1:32:32:97:67:
#                    40:80:9d:ee:20:3f:0e:54:fb:42:07:fb:77:1a:99:
#                    d8:86:f4:1c:2a:88:25:f3:e9:44:a3:4e:fe:07:be:
#                    b1:c8:ef:3c:8d:87:e0:1e:ca:49:10:3b:28:ef:24:
#                    51:a1:fc:88:17:4a:e7:1c:c8:54:67:63:e8:6a:31:
#                    e6:43:6c:f6:40:11:86:c4:56:ee:bd:c9:1d:a6:46:
#                    3c:1e:46:c2:82:8d:2e:a9:e8:ee:76:0a:43:e0:72:
#                    4d:8c:f4:c5:06:fa:2c:01:00:33:60:ce:38:70:34:
#                    6b:17:1a:eb:7a:64:61:a7:93:a4:65:6a:d7:23:c7:
#                    76:7a:94:51:0b:ec:9e:a8:cf:3b:a2:50:32:1c:42:
#                    bd:63:e1:87:cb:b9:85:48:0e:c0:d5:58:b6:f6:ce:
#                    4b:f2:07:cf:e3:04:d5:1f:c2:d6:a3:6e:a3:bb:b6:
#                    b7:6e:c4:f1:a2:1f:16:bc:b6:2d:b0:ef:f4:5a:9b:
#                    29:8d:bc:e1:fc:07:5b:1e:09:33:82:78:cc:40:6d:
#                    71:b3:63:13:2f:d3:4c:36:ac:39:4f:c6:c1:b0:b6:
#                    f5:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://ac.economia.gob.mx/last.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.484.101.10.316.1
#                  CPS: http://ac.economia.gob.mx/cps.html
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         4c:2a:78:53:04:96:73:60:ab:35:ac:c0:c4:e3:e7:c8:70:a5:
#         29:2f:87:18:e5:a8:82:de:07:d5:08:f4:cf:9e:3d:9e:fc:4a:
#         2c:16:7c:9f:a2:9d:65:10:cc:c1:1b:9b:6a:67:da:b2:b3:1d:
#         ff:cd:64:7a:38:63:ad:48:fd:f3:72:e1:fa:9f:bb:57:dd:bf:
#         cc:c2:54:d8:95:3c:66:d7:6b:06:ba:af:a9:e0:6d:08:ef:a4:
#         b6:90:3d:0c:6e:20:17:a7:96:a7:7c:68:4a:9c:98:c4:07:6f:
#         c1:02:62:91:38:9b:9d:e3:8a:79:53:9d:9f:24:76:25:f6:ad:
#         28:56:06:aa:ef:07:ac:ba:f6:6c:e4:25:31:7d:88:80:3a:78:
#         46:f8:79:e1:38:e0:13:e7:61:29:47:f3:cb:14:00:d3:da:e2:
#         dd:ed:73:df:4b:f2:63:e4:26:d8:75:d0:4d:43:14:90:16:94:
#         47:01:ff:a1:59:4b:e4:76:9b:59:03:de:d6:17:f6:7b:d7:5c:
#         f8:e9:e3:6f:c8:4e:e0:47:26:b1:e2:9c:7c:4a:31:e5:64:11:
#         e0:b0:5f:da:91:36:48:1f:fa:09:8a:65:68:f5:0e:c2:9f:ef:
#         b8:6a:cf:77:fe:12:ed:36:da:11:36:ad:19:6a:c2:d4:8e:52:
#         d7:68:ef:31

[p11-kit-object-v1]
label: "Autoridad Certificadora Raíz Nacional de Uruguay"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad Certificadora Raíz Nacional de Uruguay"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGnTCCBIWgAwIBAgISAu4Am2bYah1n/tqKJW8hWnUbMA0GCSqGSIb3DQEBCwUA
MFoxOjA4BgNVBAMMMUF1dG9yaWRhZCBDZXJ0aWZpY2Fkb3JhIFJhw616IE5hY2lv
bmFsIGRlIFVydWd1YXkxDzANBgNVBAoTBkFHRVNJQzELMAkGA1UEBhMCVVkwHhcN
MTExMTAzMTUwMjQ5WhcNMzExMDI5MTUwMjQ5WjBaMTowOAYDVQQDDDFBdXRvcmlk
YWQgQ2VydGlmaWNhZG9yYSBSYcOteiBOYWNpb25hbCBkZSBVcnVndWF5MQ8wDQYD
VQQKEwZBR0VTSUMxCzAJBgNVBAYTAlVZMIICIDANBgkqhkiG9w0BAQEFAAOCAg0A
MIICCAKCAgEAl8QfKkShgUtIkXXd69qPyhuL8rQ8LMbl9MEe0bgwE29cn+VRln8a
pBb+0tQdJfbQ5jdgXwCjGansJ79QLQWgXF6T6+No/Zs9uRQ2LeclFRCQGpLJEbEp
l5NWVWKtR6x/1Qx3ltKTaGox3VTvk/IKT6BfAlrvtkQ+55myjkXeoPfA6EiwR+ze
QhTbNXugafwewAEpFtozoSGhMjIQdn2ox8Auc4Nk/Fr3mzaMae0gVSN5zfPzbGtg
XHiN/D2FLLyp93DopcpN2HyY74Z2GITVQCkQJzLn7wNEC0/JKvG2tCug1QOUhCHT
dPMpbXjwBWquAQ9hH8al8MeCFdk7+92LdGnu5MfH9BHcFFHBhBolVhNrW85fLP2L
Gy0PyMBVqhhPmJzPoncItDWV2LmLnEkOtBAL/PxHTdSaV/mfer3pV7u0D18VkNho
bNWFJYMthgxHYpezeU25ZQh3Um9K426AwKyj1bzqSeJl4kxZaoLeK/WqPv5l6FFw
TTeEBgQ/koPUVijjJdVUyoXuVsAuzvlwEBJfXZ7GvEsQHVZtynLBUwkqEz3Ytfkc
O0XGhxTQOH6eIV/8dh3/CylC26HEeTnhTdWGUOPy4LPXWZvePx4aA/PUaYZLRxwy
fzwHCRMQp5sHMHczvGkR0TQ9fBAquB6OvUfe+bJ5VWYhAgf7OSwKF6ECAQOjggFd
MIIBWTAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zBiBgNVHR8EWzBZ
MCygKqAohiZodHRwOi8vd3d3LmFnZXNpYy5ndWIudXkvYWNybi9hY3JuLmNybDAp
oCegJYYjaHR0cDovL3d3dy51Y2UuZ3ViLnV5L2Fjcm4vYWNybi5jcmwwgbIGA1Ud
IASBqjCBpzBcBgtghlqE4q4dhIgFADBNMEsGCCsGAQUFBwIBFj9odHRwOi8vd3d3
LnVjZS5ndWIudXkvaW5mb3JtYWNpb24tdGVjbmljYS9wb2xpdGljYXMvY3BfYWNy
bi5wZGYwRwYLYIZahOKuHYSIBQEwODA2BggrBgEFBQcCARYqaHR0cDovL3d3dy5h
Z2VzaWMuZ3ViLnV5L2Fjcm4vY3BzX2Fjcm4ucGRmMB0GA1UdDgQWBBSSnpG4VSg9
d0IsM6WYX9DJrI21ozANBgkqhkiG9w0BAQsFAAOCAgEAXeerWepJ3L9GQ/2Uu5hw
lBT6zgNd8X0xE5JOhSQwFGts0+fO5nnV205VThcr15NF3xMMJ2cdx0KQVDDG8ahp
KLROpm2lNaZQlmhJo+4vC6v8AwJQaPGVKT5xLNza5S3Zdi7uVjN+F6EnAuGhJygh
ir8B52LHu7IlBNobpiOMfJO6yYvrCvk3t5Q5/U2PfqLcgW8brRQPWyADeEFzZ57S
lxeQKopUS6d5fyQSkZ87LMc3pAxccmoTnjIJJ+tDMnVf10fDKkVTFVZ2T7sJ6IRg
Ee9z1edQbmko/evGy8pOE2MNDjcsMR/bp1igsv0NF4ezkq4bKIAftpJ+hhHh9kyY
f2aLHxNJA0L8+5ic7oaWqS4FfnAcwXfI6V2CuA7OW2QFY+4/Bi02DOkfclserN0m
9Rw4bv2MPU2G6yfLygONQPMq0YrYNA7CrbWI7YeaioWih+/puTjnaJajAc+CPRxL
KJ0n9fmZlntI/azQ8DL3OATdTZmuDpKCw/o8GxPHaLdd4JNGuLi4pAzEG8a6Rpbd
nlUPR532gaWsZVnY3a4GbOBDgsZn2HACNfU2BONKOal1Ah7mP0bPnCwehIgXqiap
pkOA4MBbo2SDm5rtawFltsE9GOyTGWaUqNMRUJl6iH2vPn+UkDsKw2q3jV/Sp1HR
Mh+58jJ9d5NtQ+xBaavPyWE=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:ee:00:9b:66:d8:6a:1d:67:fe:da:8a:25:6f:21:5a:75:1b
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: CN = Autoridad Certificadora Ra\C3\ADz Nacional de Uruguay, O = AGESIC, C = UY
#        Validity
#            Not Before: Nov  3 15:02:49 2011 GMT
#            Not After : Oct 29 15:02:49 2031 GMT
#        Subject: CN = Autoridad Certificadora Ra\C3\ADz Nacional de Uruguay, O = AGESIC, C = UY
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:97:c4:1f:2a:44:a1:81:4b:48:91:75:dd:eb:da:
#                    8f:ca:1b:8b:f2:b4:3c:2c:c6:e5:f4:c1:1e:d1:b8:
#                    30:13:6f:5c:9f:e5:51:96:7f:1a:a4:16:fe:d2:d4:
#                    1d:25:f6:d0:e6:37:60:5f:00:a3:19:a9:ec:27:bf:
#                    50:2d:05:a0:5c:5e:93:eb:e3:68:fd:9b:3d:b9:14:
#                    36:2d:e7:25:15:10:90:1a:92:c9:11:b1:29:97:93:
#                    56:55:62:ad:47:ac:7f:d5:0c:77:96:d2:93:68:6a:
#                    31:dd:54:ef:93:f2:0a:4f:a0:5f:02:5a:ef:b6:44:
#                    3e:e7:99:b2:8e:45:de:a0:f7:c0:e8:48:b0:47:ec:
#                    de:42:14:db:35:7b:a0:69:fc:1e:c0:01:29:16:da:
#                    33:a1:21:a1:32:32:10:76:7d:a8:c7:c0:2e:73:83:
#                    64:fc:5a:f7:9b:36:8c:69:ed:20:55:23:79:cd:f3:
#                    f3:6c:6b:60:5c:78:8d:fc:3d:85:2c:bc:a9:f7:70:
#                    e8:a5:ca:4d:d8:7c:98:ef:86:76:18:84:d5:40:29:
#                    10:27:32:e7:ef:03:44:0b:4f:c9:2a:f1:b6:b4:2b:
#                    a0:d5:03:94:84:21:d3:74:f3:29:6d:78:f0:05:6a:
#                    ae:01:0f:61:1f:c6:a5:f0:c7:82:15:d9:3b:fb:dd:
#                    8b:74:69:ee:e4:c7:c7:f4:11:dc:14:51:c1:84:1a:
#                    25:56:13:6b:5b:ce:5f:2c:fd:8b:1b:2d:0f:c8:c0:
#                    55:aa:18:4f:98:9c:cf:a2:77:08:b4:35:95:d8:b9:
#                    8b:9c:49:0e:b4:10:0b:fc:fc:47:4d:d4:9a:57:f9:
#                    9f:7a:bd:e9:57:bb:b4:0f:5f:15:90:d8:68:6c:d5:
#                    85:25:83:2d:86:0c:47:62:97:b3:79:4d:b9:65:08:
#                    77:52:6f:4a:e3:6e:80:c0:ac:a3:d5:bc:ea:49:e2:
#                    65:e2:4c:59:6a:82:de:2b:f5:aa:3e:fe:65:e8:51:
#                    70:4d:37:84:06:04:3f:92:83:d4:56:28:e3:25:d5:
#                    54:ca:85:ee:56:c0:2e:ce:f9:70:10:12:5f:5d:9e:
#                    c6:bc:4b:10:1d:56:6d:ca:72:c1:53:09:2a:13:3d:
#                    d8:b5:f9:1c:3b:45:c6:87:14:d0:38:7e:9e:21:5f:
#                    fc:76:1d:ff:0b:29:42:db:a1:c4:79:39:e1:4d:d5:
#                    86:50:e3:f2:e0:b3:d7:59:9b:de:3f:1e:1a:03:f3:
#                    d4:69:86:4b:47:1c:32:7f:3c:07:09:13:10:a7:9b:
#                    07:30:77:33:bc:69:11:d1:34:3d:7c:10:2a:b8:1e:
#                    8e:bd:47:de:f9:b2:79:55:66:21:02:07:fb:39:2c:
#                    0a:17:a1
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.agesic.gub.uy/acrn/acrn.crl
#
#                Full Name:
#                  URI:http://www.uce.gub.uy/acrn/acrn.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.858.10000157.66565.0
#                  CPS: http://www.uce.gub.uy/informacion-tecnica/politicas/cp_acrn.pdf
#                Policy: 2.16.858.10000157.66565.1
#                  CPS: http://www.agesic.gub.uy/acrn/cps_acrn.pdf
#
#            X509v3 Subject Key Identifier: 
#                92:9E:91:B8:55:28:3D:77:42:2C:33:A5:98:5F:D0:C9:AC:8D:B5:A3
#    Signature Algorithm: sha256WithRSAEncryption
#         5d:e7:ab:59:ea:49:dc:bf:46:43:fd:94:bb:98:70:94:14:fa:
#         ce:03:5d:f1:7d:31:13:92:4e:85:24:30:14:6b:6c:d3:e7:ce:
#         e6:79:d5:db:4e:55:4e:17:2b:d7:93:45:df:13:0c:27:67:1d:
#         c7:42:90:54:30:c6:f1:a8:69:28:b4:4e:a6:6d:a5:35:a6:50:
#         96:68:49:a3:ee:2f:0b:ab:fc:03:02:50:68:f1:95:29:3e:71:
#         2c:dc:da:e5:2d:d9:76:2e:ee:56:33:7e:17:a1:27:02:e1:a1:
#         27:28:21:8a:bf:01:e7:62:c7:bb:b2:25:04:da:1b:a6:23:8c:
#         7c:93:ba:c9:8b:eb:0a:f9:37:b7:94:39:fd:4d:8f:7e:a2:dc:
#         81:6f:1b:ad:14:0f:5b:20:03:78:41:73:67:9e:d2:97:17:90:
#         2a:8a:54:4b:a7:79:7f:24:12:91:9f:3b:2c:c7:37:a4:0c:5c:
#         72:6a:13:9e:32:09:27:eb:43:32:75:5f:d7:47:c3:2a:45:53:
#         15:56:76:4f:bb:09:e8:84:60:11:ef:73:d5:e7:50:6e:69:28:
#         fd:eb:c6:cb:ca:4e:13:63:0d:0e:37:2c:31:1f:db:a7:58:a0:
#         b2:fd:0d:17:87:b3:92:ae:1b:28:80:1f:b6:92:7e:86:11:e1:
#         f6:4c:98:7f:66:8b:1f:13:49:03:42:fc:fb:98:9c:ee:86:96:
#         a9:2e:05:7e:70:1c:c1:77:c8:e9:5d:82:b8:0e:ce:5b:64:05:
#         63:ee:3f:06:2d:36:0c:e9:1f:72:5b:1e:ac:dd:26:f5:1c:38:
#         6e:fd:8c:3d:4d:86:eb:27:cb:ca:03:8d:40:f3:2a:d1:8a:d8:
#         34:0e:c2:ad:b5:88:ed:87:9a:8a:85:a2:87:ef:e9:b9:38:e7:
#         68:96:a3:01:cf:82:3d:1c:4b:28:9d:27:f5:f9:99:96:7b:48:
#         fd:ac:d0:f0:32:f7:38:04:dd:4d:99:ae:0e:92:82:c3:fa:3c:
#         1b:13:c7:68:b7:5d:e0:93:46:b8:b8:b8:a4:0c:c4:1b:c6:ba:
#         46:96:dd:9e:55:0f:47:9d:f6:81:a5:ac:65:59:d8:dd:ae:06:
#         6c:e0:43:82:c6:67:d8:70:02:35:f5:36:04:e3:4a:39:a9:75:
#         02:1e:e6:3f:46:cf:9c:2c:1e:84:88:17:aa:26:a9:a6:43:80:
#         e0:c0:5b:a3:64:83:9b:9a:ed:6b:01:65:b6:c1:3d:18:ec:93:
#         19:66:94:a8:d3:11:50:99:7a:88:7d:af:3e:7f:94:90:3b:0a:
#         c3:6a:b7:8d:5f:d2:a7:51:d1:32:1f:b9:f2:32:7d:77:93:6d:
#         43:ec:41:69:ab:cf:c9:61

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 6047274297262753887 (0x53ec3beefbb2485f)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, CN = Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Validity
#            Not Before: May 20 08:38:15 2009 GMT
#            Not After : Dec 31 08:38:15 2030 GMT
#        Subject: C = ES, CN = Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:96:6b:8e:ea:f8:fb:f1:a2:35:e0:7f:4c:da:
#                    e0:c3:52:d7:7d:b6:10:c8:02:5e:b3:43:2a:c4:4f:
#                    6a:b2:ca:1c:5d:28:9a:78:11:1a:69:59:57:af:b5:
#                    20:42:e4:8b:0f:e6:df:5b:a6:03:92:2f:f5:11:e4:
#                    62:d7:32:71:38:d9:04:0c:71:ab:3d:51:7e:0f:07:
#                    df:63:05:5c:e9:bf:94:6f:c1:29:82:c0:b4:da:51:
#                    b0:c1:3c:bb:ad:37:4a:5c:ca:f1:4b:36:0e:24:ab:
#                    bf:c3:84:77:fd:a8:50:f4:b1:e7:c6:2f:d2:2d:59:
#                    8d:7a:0a:4e:96:69:52:02:aa:36:98:ec:fc:fa:14:
#                    83:0c:37:1f:c9:92:37:7f:d7:81:2d:e5:c4:b9:e0:
#                    3e:34:fe:67:f4:3e:66:d1:d3:f4:40:cf:5e:62:34:
#                    0f:70:06:3e:20:18:5a:ce:f7:72:1b:25:6c:93:74:
#                    14:93:a3:73:b1:0e:aa:87:10:23:59:5f:20:05:19:
#                    47:ed:68:8e:92:12:ca:5d:fc:d6:2b:b2:92:3c:20:
#                    cf:e1:5f:af:20:be:a0:76:7f:76:e5:ec:1a:86:61:
#                    33:3e:e7:7b:b4:3f:a0:0f:8e:a2:b9:6a:6f:b9:87:
#                    26:6f:41:6c:88:a6:50:fd:6a:63:0b:f5:93:16:1b:
#                    19:8f:b2:ed:9b:9b:c9:90:f5:01:0c:df:19:3d:0f:
#                    3e:38:23:c9:2f:8f:0c:d1:02:fe:1b:55:d6:4e:d0:
#                    8d:3c:af:4f:a4:f3:fe:af:2a:d3:05:9d:79:08:a1:
#                    cb:57:31:b4:9c:c8:90:b2:67:f4:18:16:93:3a:fc:
#                    47:d8:d1:78:96:31:1f:ba:2b:0c:5f:5d:99:ad:63:
#                    89:5a:24:20:76:d8:df:fd:ab:4e:a6:22:aa:9d:5e:
#                    e6:27:8a:7d:68:29:a3:e7:8a:b8:da:11:bb:17:2d:
#                    99:9d:13:24:46:f7:c5:e2:d8:9f:8e:7f:c7:8f:74:
#                    6d:5a:b2:e8:72:f5:ac:ee:24:10:ad:2f:14:da:ff:
#                    2d:9a:46:71:47:be:42:df:bb:01:db:f4:7f:d3:28:
#                    8f:31:59:5b:d3:c9:02:a6:b4:52:ca:6e:97:fb:43:
#                    c5:08:26:6f:8a:f4:bb:fd:9f:28:aa:0d:d5:45:f3:
#                    13:3a:1d:d8:c0:78:8f:41:67:3c:1e:94:64:ae:7b:
#                    0b:c5:e8:d9:01:88:39:1a:97:86:64:41:d5:3b:87:
#                    0c:6e:fa:0f:c6:bd:48:14:bf:39:4d:d4:9e:41:b6:
#                    8f:96:1d:63:96:93:d9:95:06:78:31:68:9e:37:06:
#                    3b:80:89:45:61:39:23:c7:1b:44:a3:15:e5:1c:f8:
#                    92:30:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                65:CD:EB:AB:35:1E:00:3E:7E:D5:74:C0:1C:B4:73:47:0E:1A:64:2F
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.firmaprofesional.com/cps
#                  User Notice:
#                    Explicit Text: 
#
#    Signature Algorithm: sha1WithRSAEncryption
#         17:7d:a0:f9:b4:dd:c5:c5:eb:ad:4b:24:b5:a1:02:ab:dd:a5:
#         88:4a:b2:0f:55:4b:2b:57:8c:3b:e5:31:dd:fe:c4:32:f1:e7:
#         5b:64:96:36:32:18:ec:a5:32:77:d7:e3:44:b6:c0:11:2a:80:
#         b9:3d:6a:6e:7c:9b:d3:ad:fc:c3:d6:a3:e6:64:29:7c:d1:e1:
#         38:1e:82:2b:ff:27:65:af:fb:16:15:c4:2e:71:84:e5:b5:ff:
#         fa:a4:47:bd:64:32:bb:f6:25:84:a2:27:42:f5:20:b0:c2:13:
#         10:11:cd:10:15:ba:42:90:2a:d2:44:e1:96:26:eb:31:48:12:
#         fd:2a:da:c9:06:cf:74:1e:a9:4b:d5:87:28:f9:79:34:92:3e:
#         2e:44:e8:f6:8f:4f:8f:35:3f:25:b3:39:dc:63:2a:90:6b:20:
#         5f:c4:52:12:4e:97:2c:2a:ac:9d:97:de:48:f2:a3:66:db:c2:
#         d2:83:95:a6:66:a7:9e:25:0f:e9:0b:33:91:65:0a:5a:c3:d9:
#         54:12:dd:af:c3:4e:0e:1f:26:5e:0d:dc:b3:8d:ec:d5:81:70:
#         de:d2:4f:24:05:f3:6c:4e:f5:4c:49:66:8d:d1:ff:d2:0b:25:
#         41:48:fe:51:84:c6:42:af:80:04:cf:d0:7e:64:49:e4:f2:df:
#         a2:ec:b1:4c:c0:2a:1d:e7:b4:b1:65:a2:c4:bc:f1:98:f4:aa:
#         70:07:63:b4:b8:da:3b:4c:fa:40:22:30:5b:11:a6:f0:05:0e:
#         c6:02:03:48:ab:86:9b:85:dd:db:dd:ea:a2:76:80:73:7d:f5:
#         9c:04:c4:45:8d:e7:b9:1c:8b:9e:ea:d7:75:d1:72:b1:de:75:
#         44:e7:42:7d:e2:57:6b:7d:dc:99:bc:3d:83:28:ea:80:93:8d:
#         c5:4c:65:c1:70:81:b8:38:fc:43:31:b2:f6:03:34:47:b2:ac:
#         fb:22:06:cb:1e:dd:17:47:1c:5f:66:b9:d3:1a:a2:da:11:b1:
#         a4:bc:23:c9:e4:be:87:ff:b9:94:b6:f8:5d:20:4a:d4:5f:e7:
#         bd:68:7b:65:f2:15:1e:d2:3a:a9:2d:e9:d8:6b:24:ac:97:58:
#         44:47:ad:59:18:f1:21:65:70:de:ce:34:60:a8:40:f1:f3:3c:
#         a4:c3:28:23:8c:fe:27:33:43:40:a0:17:3c:eb:ea:3b:b0:72:
#         a6:a3:b9:4a:4b:5e:16:48:f4:b2:bc:c8:8c:92:c5:9d:9f:ac:
#         72:36:bc:34:80:34:6b:a9:8b:92:c0:b8:17:ed:ec:76:53:f5:
#         24:01:8c:b3:22:e8:4b:7c:55:c6:9d:fa:a3:14:bb:65:85:6e:
#         6e:4f:12:7e:0a:3c:9d:95

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGFDCCA/ygAwIBAgIIG3Dp0v+ubHEwDQYJKoZIhvcNAQELBQAwUTELMAkGA1UE
BhMCRVMxQjBABgNVBAMMOUF1dG9yaWRhZCBkZSBDZXJ0aWZpY2FjaW9uIEZpcm1h
cHJvZmVzaW9uYWwgQ0lGIEE2MjYzNDA2ODAeFw0xNDA5MjMxNTIyMDdaFw0zNjA1
MDUxNTIyMDdaMFExCzAJBgNVBAYTAkVTMUIwQAYDVQQDDDlBdXRvcmlkYWQgZGUg
Q2VydGlmaWNhY2lvbiBGaXJtYXByb2Zlc2lvbmFsIENJRiBBNjI2MzQwNjgwggIi
MA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDKlmuO6vj78aI14H9M2uDDUtd9
thDIAl6zQyrET2qyyhxdKJp4ERppWVevtSBC5IsP5t9bpgOSL/UR5GLXMnE42QQM
cas9UX4PB99jBVzpv5RvwSmCwLTaUbDBPLutN0pcyvFLNg4kq7/DhHf9qFD0sefG
L9ItWY16Ck6WaVICqjaY7Pz6FIMMNx/Jkjd/14Et5cS54D40/mf0PmbR0/RAz15i
NA9wBj4gGFrO93IbJWyTdBSTo3OxDqqHECNZXyAFGUftaI6SEspd/NYrspI8IM/h
X68gvqB2f3bl7BqGYTM+53u0P6APjqK5am+5hyZvQWyIplD9amML9ZMWGxmPsu2b
m8mQ9QEM3xk9Dz44I8kvjwzRAv4bVdZO0I08r0+k8/6vKtMFnXkIoctXMbScyJCy
Z/QYFpM6/EfY0XiWMR+6KwxfXZmtY4laJCB22N/9q06mIqqdXuYnin1oKaPnirja
EbsXLZmdEyRG98Xi2J+Of8ePdG1asuhy9azuJBCtLxTa/y2aRnFHvkLfuwHb9H/T
KI8xWVvTyQKmtFLKbpf7Q8UIJm+K9Lv9nyiqDdVF8xM6HdjAeI9BZzwelGSuewvF
6NkBiDkal4ZkQdU7hwxu+g/GvUgUvzlN1J5Bto+WHWOWk9mVBngxaJ43BjuAiUVh
OSPHG0SjFeUc+JIwuwIDAQABo4HvMIHsMB0GA1UdDgQWBBRlzeurNR4APn7VdMAc
tHNHDhpkLzASBgNVHRMBAf8ECDAGAQH/AgEBMIGmBgNVHSAEgZ4wgZswgZgGBFUd
IAAwgY8wLwYIKwYBBQUHAgEWI2h0dHA6Ly93d3cuZmlybWFwcm9mZXNpb25hbC5j
b20vY3BzMFwGCCsGAQUFBwICMFAeTgBQAGEAcwBlAG8AIABkAGUAIABsAGEAIABC
AG8AbgBhAG4AbwB2AGEAIAA0ADcAIABCAGEAcgBjAGUAbABvAG4AYQAgADAAOAAw
ADEANzAOBgNVHQ8BAf8EBAMCAQYwDQYJKoZIhvcNAQELBQADggIBAHSHKAIrdx9m
iWTtj3QuRhy7qPj4Cx2Dtjqn6EWKB7fgPiDL4QjbEwj4KKE1soCzC1HA01aajTNF
Sa9J8OA9B3pFE1r/yJfY0xgsfZb43aJlQ3CTkBW6kN/oGbDbLIpgD7dvlAceHabJ
hfa9NPhAeGIQcDq+fUs5gakQ1JZBu/hfHAsdCPKxsIl68veg4MSPi3i1O1ilI45P
Vf42O+AMt8oqMEEgtIDNrvx2ZnOorm7hfNoD6JQg5iKj0B+QXSBTFCZX2lSX3xZE
EAEeiGaPcjiT3SC3NL7X8e5jjkd5KAb881lFJWAiMxujX6i6KtoaPc1A6ozuBRWV
1aUsIC+nmCjuRfzxuIgALI9C2lHVnOUTaHFFQ4ueCyE8S1wF3BqfmI7avSKecs2t
CsvMo2ebKHTEm9caPARYpoKdrcd7b/+Alun4jWq9GJAd/0kakFI3ky88Al2CdgtR
5xbHV/g4+afNmyJU72OwFW1TZQNKXkqgsqeOSQBZONXH9IBk9W6VULgRfhVwOEqw
f9DEMnDAGf/JOC0ULGb0QkTmVXYbgBVX/8Cnp6o5qtjTcNAuuuuUavpfNIbnYrX9
ivAwhZTJryQCL2/W3Wf+47BVTwSYT6RBVuKT0Gro1vP7ZeDOdcQxWQzugsgMYDNK
GbqEZycPvEJdvSRUDewdcAZfpLz6IHxV
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1977337328857672817 (0x1b70e9d2ffae6c71)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, CN = Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Validity
#            Not Before: Sep 23 15:22:07 2014 GMT
#            Not After : May  5 15:22:07 2036 GMT
#        Subject: C = ES, CN = Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:96:6b:8e:ea:f8:fb:f1:a2:35:e0:7f:4c:da:
#                    e0:c3:52:d7:7d:b6:10:c8:02:5e:b3:43:2a:c4:4f:
#                    6a:b2:ca:1c:5d:28:9a:78:11:1a:69:59:57:af:b5:
#                    20:42:e4:8b:0f:e6:df:5b:a6:03:92:2f:f5:11:e4:
#                    62:d7:32:71:38:d9:04:0c:71:ab:3d:51:7e:0f:07:
#                    df:63:05:5c:e9:bf:94:6f:c1:29:82:c0:b4:da:51:
#                    b0:c1:3c:bb:ad:37:4a:5c:ca:f1:4b:36:0e:24:ab:
#                    bf:c3:84:77:fd:a8:50:f4:b1:e7:c6:2f:d2:2d:59:
#                    8d:7a:0a:4e:96:69:52:02:aa:36:98:ec:fc:fa:14:
#                    83:0c:37:1f:c9:92:37:7f:d7:81:2d:e5:c4:b9:e0:
#                    3e:34:fe:67:f4:3e:66:d1:d3:f4:40:cf:5e:62:34:
#                    0f:70:06:3e:20:18:5a:ce:f7:72:1b:25:6c:93:74:
#                    14:93:a3:73:b1:0e:aa:87:10:23:59:5f:20:05:19:
#                    47:ed:68:8e:92:12:ca:5d:fc:d6:2b:b2:92:3c:20:
#                    cf:e1:5f:af:20:be:a0:76:7f:76:e5:ec:1a:86:61:
#                    33:3e:e7:7b:b4:3f:a0:0f:8e:a2:b9:6a:6f:b9:87:
#                    26:6f:41:6c:88:a6:50:fd:6a:63:0b:f5:93:16:1b:
#                    19:8f:b2:ed:9b:9b:c9:90:f5:01:0c:df:19:3d:0f:
#                    3e:38:23:c9:2f:8f:0c:d1:02:fe:1b:55:d6:4e:d0:
#                    8d:3c:af:4f:a4:f3:fe:af:2a:d3:05:9d:79:08:a1:
#                    cb:57:31:b4:9c:c8:90:b2:67:f4:18:16:93:3a:fc:
#                    47:d8:d1:78:96:31:1f:ba:2b:0c:5f:5d:99:ad:63:
#                    89:5a:24:20:76:d8:df:fd:ab:4e:a6:22:aa:9d:5e:
#                    e6:27:8a:7d:68:29:a3:e7:8a:b8:da:11:bb:17:2d:
#                    99:9d:13:24:46:f7:c5:e2:d8:9f:8e:7f:c7:8f:74:
#                    6d:5a:b2:e8:72:f5:ac:ee:24:10:ad:2f:14:da:ff:
#                    2d:9a:46:71:47:be:42:df:bb:01:db:f4:7f:d3:28:
#                    8f:31:59:5b:d3:c9:02:a6:b4:52:ca:6e:97:fb:43:
#                    c5:08:26:6f:8a:f4:bb:fd:9f:28:aa:0d:d5:45:f3:
#                    13:3a:1d:d8:c0:78:8f:41:67:3c:1e:94:64:ae:7b:
#                    0b:c5:e8:d9:01:88:39:1a:97:86:64:41:d5:3b:87:
#                    0c:6e:fa:0f:c6:bd:48:14:bf:39:4d:d4:9e:41:b6:
#                    8f:96:1d:63:96:93:d9:95:06:78:31:68:9e:37:06:
#                    3b:80:89:45:61:39:23:c7:1b:44:a3:15:e5:1c:f8:
#                    92:30:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                65:CD:EB:AB:35:1E:00:3E:7E:D5:74:C0:1C:B4:73:47:0E:1A:64:2F
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.firmaprofesional.com/cps
#                  User Notice:
#                    Explicit Text: 
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         74:87:28:02:2b:77:1f:66:89:64:ed:8f:74:2e:46:1c:bb:a8:
#         f8:f8:0b:1d:83:b6:3a:a7:e8:45:8a:07:b7:e0:3e:20:cb:e1:
#         08:db:13:08:f8:28:a1:35:b2:80:b3:0b:51:c0:d3:56:9a:8d:
#         33:45:49:af:49:f0:e0:3d:07:7a:45:13:5a:ff:c8:97:d8:d3:
#         18:2c:7d:96:f8:dd:a2:65:43:70:93:90:15:ba:90:df:e8:19:
#         b0:db:2c:8a:60:0f:b7:6f:94:07:1e:1d:a6:c9:85:f6:bd:34:
#         f8:40:78:62:10:70:3a:be:7d:4b:39:81:a9:10:d4:96:41:bb:
#         f8:5f:1c:0b:1d:08:f2:b1:b0:89:7a:f2:f7:a0:e0:c4:8f:8b:
#         78:b5:3b:58:a5:23:8e:4f:55:fe:36:3b:e0:0c:b7:ca:2a:30:
#         41:20:b4:80:cd:ae:fc:76:66:73:a8:ae:6e:e1:7c:da:03:e8:
#         94:20:e6:22:a3:d0:1f:90:5d:20:53:14:26:57:da:54:97:df:
#         16:44:10:01:1e:88:66:8f:72:38:93:dd:20:b7:34:be:d7:f1:
#         ee:63:8e:47:79:28:06:fc:f3:59:45:25:60:22:33:1b:a3:5f:
#         a8:ba:2a:da:1a:3d:cd:40:ea:8c:ee:05:15:95:d5:a5:2c:20:
#         2f:a7:98:28:ee:45:fc:f1:b8:88:00:2c:8f:42:da:51:d5:9c:
#         e5:13:68:71:45:43:8b:9e:0b:21:3c:4b:5c:05:dc:1a:9f:98:
#         8e:da:bd:22:9e:72:cd:ad:0a:cb:cc:a3:67:9b:28:74:c4:9b:
#         d7:1a:3c:04:58:a6:82:9d:ad:c7:7b:6f:ff:80:96:e9:f8:8d:
#         6a:bd:18:90:1d:ff:49:1a:90:52:37:93:2f:3c:02:5d:82:76:
#         0b:51:e7:16:c7:57:f8:38:f9:a7:cd:9b:22:54:ef:63:b0:15:
#         6d:53:65:03:4a:5e:4a:a0:b2:a7:8e:49:00:59:38:d5:c7:f4:
#         80:64:f5:6e:95:50:b8:11:7e:15:70:38:4a:b0:7f:d0:c4:32:
#         70:c0:19:ff:c9:38:2d:14:2c:66:f4:42:44:e6:55:76:1b:80:
#         15:57:ff:c0:a7:a7:aa:39:aa:d8:d3:70:d0:2e:ba:eb:94:6a:
#         fa:5f:34:86:e7:62:b5:fd:8a:f0:30:85:94:c9:af:24:02:2f:
#         6f:d6:dd:67:fe:e3:b0:55:4f:04:98:4f:a4:41:56:e2:93:d0:
#         6a:e8:d6:f3:fb:65:e0:ce:75:c4:31:59:0c:ee:82:c8:0c:60:
#         33:4a:19:ba:84:67:27:0f:bc:42:5d:bd:24:54:0d:ec:1d:70:
#         06:5f:a4:bc:fa:20:7c:55

[p11-kit-object-v1]
label: "Autoridad de Certificacion Raiz del Estado Venezolano"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion Raiz del Estado Venezolano"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10 (0xa)
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: CN = Autoridad de Certificacion Raiz del Estado Venezolano, C = VE, L = Caracas, ST = Distrito Capital, O = Sistema Nacional de Certificacion Electronica, OU = Superintendencia de Servicios de Certificacion Electronica, emailAddress = acraiz@suscerte.gob.ve
#        Validity
#            Not Before: Dec 28 16:41:36 2010 GMT
#            Not After : Dec 23 23:59:59 2030 GMT
#        Subject: CN = Autoridad de Certificacion Raiz del Estado Venezolano, C = VE, L = Caracas, ST = Distrito Capital, O = Sistema Nacional de Certificacion Electronica, OU = Superintendencia de Servicios de Certificacion Electronica, emailAddress = acraiz@suscerte.gob.ve
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c1:3b:ef:13:52:f1:99:56:e3:b4:6c:05:e1:1a:
#                    69:16:61:26:86:78:af:0e:fc:e5:40:05:0a:e3:d9:
#                    38:05:4c:a8:d4:b5:c0:c6:2a:cf:2f:79:ab:a1:a4:
#                    50:ef:35:11:1f:ee:82:24:17:fc:a3:1c:ab:fe:07:
#                    06:7f:37:7f:07:58:5b:13:d9:7f:00:5f:2b:b0:4f:
#                    da:9f:c9:b0:58:33:61:e1:4f:d0:15:ce:2e:6b:e8:
#                    24:8c:e5:25:be:85:5b:ed:4c:3f:01:81:8e:e6:99:
#                    18:52:26:59:9b:12:98:65:1c:95:be:75:99:16:0c:
#                    64:44:e1:f7:f2:79:08:b4:e1:47:57:b1:4a:dc:47:
#                    42:9b:70:4b:3a:da:cc:d1:69:91:06:3f:ce:68:fb:
#                    f9:86:4d:03:dc:83:a2:ba:15:16:fe:ac:c9:b6:0e:
#                    67:b3:b1:34:3a:3b:ce:44:8b:a3:8e:48:ee:03:30:
#                    b7:1a:96:67:c5:64:25:99:02:f3:ea:74:75:7e:a6:
#                    92:15:13:d1:00:15:eb:86:5c:f4:7b:19:88:7f:e8:
#                    2e:11:24:5e:38:6b:81:9d:bc:70:5e:f7:31:72:2a:
#                    2f:1d:5f:c8:ce:24:3c:7d:72:38:98:bf:47:bd:a7:
#                    33:02:fb:0f:e4:9d:ea:66:60:23:4d:f9:4f:1b:87:
#                    5d:cd:bf:b8:ec:17:7c:aa:eb:4e:36:89:0f:3f:09:
#                    a7:a0:dd:7a:cb:0e:93:12:20:90:a5:d1:8c:ff:85:
#                    2b:7c:de:de:7e:0d:50:84:46:84:64:6d:ca:f1:23:
#                    2b:de:7f:da:0d:36:b7:a3:de:62:26:15:1a:ea:fa:
#                    ae:e4:b8:f6:7d:11:01:a4:92:d3:f2:c9:6f:a5:f3:
#                    68:00:1e:d2:69:8e:d9:eb:e7:12:ac:48:2b:0c:b6:
#                    99:94:4d:3d:f0:15:5b:59:77:c0:29:d6:89:4c:2b:
#                    c8:15:3a:3a:c6:c5:70:51:6b:42:6f:b4:d3:03:a2:
#                    71:7b:ce:4c:70:4c:6a:20:95:01:56:53:6f:d4:52:
#                    2f:28:be:2c:9d:65:97:32:59:3b:7a:6a:dc:84:62:
#                    88:18:f7:f0:da:28:a3:ed:99:35:b3:04:72:24:a0:
#                    9a:28:3b:61:76:94:72:6b:9d:49:54:2f:2d:22:fe:
#                    63:0f:92:a9:ac:32:7b:3c:19:b8:04:9b:a7:b7:7f:
#                    d2:bb:ad:43:9f:5d:f3:5c:e5:6c:cb:77:27:bc:81:
#                    e7:ae:eb:4f:62:2a:23:27:50:f2:a0:56:93:e7:e6:
#                    5f:38:21:5f:ef:c5:89:d6:2c:87:f6:8a:fb:36:7b:
#                    5b:2e:bc:90:a1:ee:cc:4c:35:56:a9:1a:b7:90:c6:
#                    b3:e5:73
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:2
#            X509v3 Issuer Alternative Name: 
#                DNS:suscerte.gob.ve, othername:<unsupported>
#            X509v3 Subject Key Identifier: 
#                AD:BB:22:1D:C6:E0:D2:01:A8:FD:76:50:52:93:ED:98:C1:4D:AE:D3
#            X509v3 Authority Key Identifier: 
#                keyid:AD:BB:22:1D:C6:E0:D2:01:A8:FD:76:50:52:93:ED:98:C1:4D:AE:D3
#                DirName:/CN=Autoridad de Certificacion Raiz del Estado Venezolano/C=VE/L=Caracas/ST=Distrito Capital/O=Sistema Nacional de Certificacion Electronica/OU=Superintendencia de Servicios de Certificacion Electronica/emailAddress=acraiz@suscerte.gob.ve
#                serial:0A
#
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DNS:suscerte.gob.ve, othername:<unsupported>
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.suscerte.gob.ve/lcr
#
#                Full Name:
#                  URI:ldap://acraiz.suscerte.gob.ve
#
#            Authority Information Access: 
#                OCSP - URI:http://ocsp.suscerte.gob.ve
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.862.1.2
#                  CPS: http://www.suscerte.gob.ve/dpc
#
#    Signature Algorithm: sha384WithRSAEncryption
#         1c:59:10:e5:5e:a4:51:c1:47:bb:65:b2:0b:55:e2:2f:a9:a3:
#         27:bc:e1:3c:8a:c7:6c:03:56:a3:a9:29:a2:9b:8a:95:d8:1f:
#         f7:b6:12:60:16:be:7a:f4:fd:03:81:4f:fd:81:81:aa:4f:81:
#         70:1e:2e:ef:c0:92:12:7b:bb:0f:85:88:c4:f9:1d:41:b5:ba:
#         24:2a:c3:28:26:13:ca:f9:00:fb:d7:c3:5c:f9:68:e9:1b:c1:
#         18:22:c9:a2:6c:64:c3:f8:39:c3:4e:21:dd:d6:c2:de:e5:b6:
#         2c:c9:5c:38:f0:de:5e:6a:e4:27:f4:b8:33:c4:cb:61:92:33:
#         53:a8:cc:fc:9d:cd:53:fb:28:0b:ef:ed:7f:b0:8f:74:22:b6:
#         35:57:80:a8:ae:05:ae:29:0a:3b:b2:a4:fd:3d:e3:d4:c1:90:
#         f6:3f:ce:bc:e4:44:fe:d1:c1:7e:28:2f:fd:00:24:32:20:88:
#         c4:6f:18:7b:91:0e:48:90:bc:96:62:60:81:6d:14:00:1a:51:
#         ba:b5:5d:69:8d:61:47:1c:2c:ac:4e:45:20:a9:48:45:a3:87:
#         49:a3:78:90:dd:36:42:7f:d8:76:6f:fd:6d:83:01:c6:f9:7f:
#         98:20:7f:96:2e:22:60:ab:a2:27:c0:b0:35:24:d0:c9:bf:33:
#         99:22:53:0e:6e:1f:62:4c:26:fc:24:33:ca:c1:03:cc:a9:17:
#         61:63:33:24:cc:68:40:ef:af:a2:e2:85:c3:88:30:d3:45:1b:
#         ee:56:ea:56:0a:0f:0a:47:9b:30:59:d8:49:d1:30:90:0c:27:
#         2a:26:08:28:5c:32:1f:27:d7:ad:0b:49:e5:17:51:63:cf:e6:
#         0d:3b:60:51:1a:bd:43:09:50:e6:91:b5:63:e6:64:97:aa:0b:
#         97:13:01:06:86:5c:a5:1f:95:be:50:8e:0b:b2:d2:64:7f:db:
#         ab:4c:e6:43:c6:e4:85:8d:6a:fe:8d:fe:bb:94:55:1e:91:53:
#         27:08:d3:ba:67:3d:3a:a1:c9:c1:c5:14:ba:f9:43:5c:c5:8e:
#         21:8c:82:a2:fd:2a:32:25:d5:16:8c:15:56:c0:98:fc:2e:b2:
#         8e:19:a4:16:71:c3:4b:dd:71:fe:71:ec:22:1d:f0:c1:8c:98:
#         81:87:b4:bf:02:b8:c4:30:31:47:c2:c0:b0:af:7b:33:63:0a:
#         dd:ac:45:9b:c1:cc:80:87:f4:d9:98:5e:9c:86:fe:9a:04:ff:
#         66:4a:fc:7b:61:54:be:57:63:05:07:c6:a7:01:75:59:e4:6e:
#         39:3b:00:f4:aa:9d:f3:9f:88:bf:cf:d1:25:2b:df:7f:73:ed:
#         16:86:a9:90:65:0f:70:29

[p11-kit-object-v1]
label: "Autoridad de Certificacion de la Abogacia"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtLJX7oXwI+gN+7KAhPEQ
Z6uy+UnfXN5b5I8pGVPJ1egcUGthAoyH8I88wUWSC6yZocYahdY9rX4mph24PbKz
PorFCjLTS5HvSXV+Vvf+oAhiRivO6vJRn2DeMsjtGqfPdVzrPcC9mkilhpTOWFAU
6mrhmvSMZZXhYBUllRL2uniLssDt5myXJFod5HRDyjjENZRYjvWKsGg8KCxElgm/
CVtyCudnPJC5VDh0VLttLWpDyLzvCawfI+hSVl41F18ru17NZVKlFHw7sqrp3Se1
NyM7Bg0se4262m9mF4anttceB10ebBmXyOUjc3jRrvkeuqGuSSLtZXEff/dadESN
QwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion de la Abogacia"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEvDCCA6SgAwIBAgIQAJCLMk/BkBrOtMM4Cc3P5DANBgkqhkiG9w0BAQUFADB5
MQswCQYDVQQGEwJFUzE2MDQGA1UEChMtQ29uc2VqbyBHZW5lcmFsIGRlIGxhIEFi
b2dhY2lhIE5JRjpRLTI4NjMwMDZJMTIwMAYDVQQDEylBdXRvcmlkYWQgZGUgQ2Vy
dGlmaWNhY2lvbiBkZSBsYSBBYm9nYWNpYTAeFw0wNTA2MTMyMjAwMDBaFw0zMDA2
MTMyMjAwMDBaMHkxCzAJBgNVBAYTAkVTMTYwNAYDVQQKEy1Db25zZWpvIEdlbmVy
YWwgZGUgbGEgQWJvZ2FjaWEgTklGOlEtMjg2MzAwNkkxMjAwBgNVBAMTKUF1dG9y
aWRhZCBkZSBDZXJ0aWZpY2FjaW9uIGRlIGxhIEFib2dhY2lhMIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtLJX7oXwI+gN+7KAhPEQZ6uy+UnfXN5b5I8p
GVPJ1egcUGthAoyH8I88wUWSC6yZocYahdY9rX4mph24PbKzPorFCjLTS5HvSXV+
Vvf+oAhiRivO6vJRn2DeMsjtGqfPdVzrPcC9mkilhpTOWFAU6mrhmvSMZZXhYBUl
lRL2uniLssDt5myXJFod5HRDyjjENZRYjvWKsGg8KCxElgm/CVtyCudnPJC5VDh0
VLttLWpDyLzvCawfI+hSVl41F18ru17NZVKlFHw7sqrp3Se1NyM7Bg0se4262m9m
F4anttceB10ebBmXyOUjc3jRrvkeuqGuSSLtZXEff/dadESNQwIDAQABo4IBPjCC
ATowNwYDVR0RBDAwLoERYWNAYWNhYm9nYWNpYS5vcmeGGWh0dHA6Ly93d3cuYWNh
Ym9nYWNpYS5vcmcwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwEQYJ
YIZIAYb4QgEBBAQDAgAHMB0GA1UdDgQWBBT8iEyObQShIJDT+Byas2cEX3mAxjCB
qwYDVR0gBIGjMIGgMIGdBgsrBgEEAYGBFQoBATCBjTApBggrBgEFBQcCARYdaHR0
cDovL3d3dy5hY2Fib2dhY2lhLm9yZy9kb2MwYAYIKwYBBQUHAgIwVBpSQ29uc3Vs
dGUgbGEgZGVjbGFyYWNpb24gZGUgcHJhY3RpY2FzIGRlIGNlcnRpZmljYWNpb24g
ZW4gaHR0cDovL3d3dy5hY2Fib2dhY2lhLm9yZzANBgkqhkiG9w0BAQUFAAOCAQEA
mKf6ObVzESZ/vIk/tGslMzEKhjhryR4VlxTg0kwthfQ8dJuNKBH7zA4muYCDFtH5
Rpi2RgeOZoVtcMC6TIDzpPDVN1Qrr2aEcnP5SC8JzuGFAcqP4IfeoJfQlLQNtU0O
ZyzIYMQylMBBgQeNur+p6AxAmkJ4BV2B62Ic5E8UCj0LPh/p9M197kW7vN5d85iX
JnvGEyn4K38a1Or6sm4gntoX6qGSvTfpDru7kdUl9mBdhSFQW/9UXfVLO7TDKRFY
AvYl5OGCgruijeeRJF5AkZ5HB4wzV9RiMVF2dYVDbwmrEaUlKbnY/1+l9z/rZTsd
74blFiLVHsoyaX1+BdcwJw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            90:8b:32:4f:c1:90:1a:ce:b4:c3:38:09:cd:cf:e4
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = Consejo General de la Abogacia NIF:Q-2863006I, CN = Autoridad de Certificacion de la Abogacia
#        Validity
#            Not Before: Jun 13 22:00:00 2005 GMT
#            Not After : Jun 13 22:00:00 2030 GMT
#        Subject: C = ES, O = Consejo General de la Abogacia NIF:Q-2863006I, CN = Autoridad de Certificacion de la Abogacia
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b4:b2:57:ee:85:f0:23:e8:0d:fb:b2:80:84:f1:
#                    10:67:ab:b2:f9:49:df:5c:de:5b:e4:8f:29:19:53:
#                    c9:d5:e8:1c:50:6b:61:02:8c:87:f0:8f:3c:c1:45:
#                    92:0b:ac:99:a1:c6:1a:85:d6:3d:ad:7e:26:a6:1d:
#                    b8:3d:b2:b3:3e:8a:c5:0a:32:d3:4b:91:ef:49:75:
#                    7e:56:f7:fe:a0:08:62:46:2b:ce:ea:f2:51:9f:60:
#                    de:32:c8:ed:1a:a7:cf:75:5c:eb:3d:c0:bd:9a:48:
#                    a5:86:94:ce:58:50:14:ea:6a:e1:9a:f4:8c:65:95:
#                    e1:60:15:25:95:12:f6:ba:78:8b:b2:c0:ed:e6:6c:
#                    97:24:5a:1d:e4:74:43:ca:38:c4:35:94:58:8e:f5:
#                    8a:b0:68:3c:28:2c:44:96:09:bf:09:5b:72:0a:e7:
#                    67:3c:90:b9:54:38:74:54:bb:6d:2d:6a:43:c8:bc:
#                    ef:09:ac:1f:23:e8:52:56:5e:35:17:5f:2b:bb:5e:
#                    cd:65:52:a5:14:7c:3b:b2:aa:e9:dd:27:b5:37:23:
#                    3b:06:0d:2c:7b:8d:ba:da:6f:66:17:86:a7:b6:d7:
#                    1e:07:5d:1e:6c:19:97:c8:e5:23:73:78:d1:ae:f9:
#                    1e:ba:a1:ae:49:22:ed:65:71:1f:7f:f7:5a:74:44:
#                    8d:43
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:ac@acabogacia.org, URI:http://www.acabogacia.org
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Key Identifier: 
#                FC:88:4C:8E:6D:04:A1:20:90:D3:F8:1C:9A:B3:67:04:5F:79:80:C6
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.16533.10.1.1
#                  CPS: http://www.acabogacia.org/doc
#                  User Notice:
#                    Explicit Text: Consulte la declaracion de practicas de certificacion en http://www.acabogacia.org
#
#    Signature Algorithm: sha1WithRSAEncryption
#         98:a7:fa:39:b5:73:11:26:7f:bc:89:3f:b4:6b:25:33:31:0a:
#         86:38:6b:c9:1e:15:97:14:e0:d2:4c:2d:85:f4:3c:74:9b:8d:
#         28:11:fb:cc:0e:26:b9:80:83:16:d1:f9:46:98:b6:46:07:8e:
#         66:85:6d:70:c0:ba:4c:80:f3:a4:f0:d5:37:54:2b:af:66:84:
#         72:73:f9:48:2f:09:ce:e1:85:01:ca:8f:e0:87:de:a0:97:d0:
#         94:b4:0d:b5:4d:0e:67:2c:c8:60:c4:32:94:c0:41:81:07:8d:
#         ba:bf:a9:e8:0c:40:9a:42:78:05:5d:81:eb:62:1c:e4:4f:14:
#         0a:3d:0b:3e:1f:e9:f4:cd:7d:ee:45:bb:bc:de:5d:f3:98:97:
#         26:7b:c6:13:29:f8:2b:7f:1a:d4:ea:fa:b2:6e:20:9e:da:17:
#         ea:a1:92:bd:37:e9:0e:bb:bb:91:d5:25:f6:60:5d:85:21:50:
#         5b:ff:54:5d:f5:4b:3b:b4:c3:29:11:58:02:f6:25:e4:e1:82:
#         82:bb:a2:8d:e7:91:24:5e:40:91:9e:47:07:8c:33:57:d4:62:
#         31:51:76:75:85:43:6f:09:ab:11:a5:25:29:b9:d8:ff:5f:a5:
#         f7:3f:eb:65:3b:1d:ef:86:e5:16:22:d5:1e:ca:32:69:7d:7e:
#         05:d7:30:27

[p11-kit-object-v1]
label: "Autoridade Certificadora Raiz Brasileira"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwPMudwX/hvm+Uh2b/lQA
cHVAisamaLkWdkwP9/S/tOKIgRrL6Oy+ZIGlOUdd6uYtk9Ma/3pUpgcfNAj0vYm5
gsyjQo9emsc+x6m4VWwk9iqMZSCK5EQkAq/Ut4n7KuLE1+gdftwdIgxfUsPt4CyN
rY50QV57KM2UT8x5rrmzEjr7TICGpSUAl2gVqe6xaii+bmYR1QrmWaBSAG59Lrkr
jrYtbRhFboUDe1DK+6T8s5L6k8c8okpbHpa9veMztDVC9sPJ60MWXh6anVKo1UcL
cbURyEeNvZneVRKAAU6ouwdjDvwlsaKydFKwed0ToQ47bmUKgcm+wV3eTRk36UOn
TwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridade Certificadora Raiz Brasileira"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 4 (0x4)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BR, O = ICP-Brasil, OU = Instituto Nacional de Tecnologia da Informacao - ITI, L = Brasilia, ST = DF, CN = Autoridade Certificadora Raiz Brasileira
#        Validity
#            Not Before: Nov 30 12:58:00 2001 GMT
#            Not After : Nov 30 23:59:00 2011 GMT
#        Subject: C = BR, O = ICP-Brasil, OU = Instituto Nacional de Tecnologia da Informacao - ITI, L = Brasilia, ST = DF, CN = Autoridade Certificadora Raiz Brasileira
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c0:f3:2e:77:05:ff:86:f9:be:52:1d:9b:fe:54:
#                    00:70:75:40:8a:c6:a6:68:b9:16:76:4c:0f:f7:f4:
#                    bf:b4:e2:88:81:1a:cb:e8:ec:be:64:81:a5:39:47:
#                    5d:ea:e6:2d:93:d3:1a:ff:7a:54:a6:07:1f:34:08:
#                    f4:bd:89:b9:82:cc:a3:42:8f:5e:9a:c7:3e:c7:a9:
#                    b8:55:6c:24:f6:2a:8c:65:20:8a:e4:44:24:02:af:
#                    d4:b7:89:fb:2a:e2:c4:d7:e8:1d:7e:dc:1d:22:0c:
#                    5f:52:c3:ed:e0:2c:8d:ad:8e:74:41:5e:7b:28:cd:
#                    94:4f:cc:79:ae:b9:b3:12:3a:fb:4c:80:86:a5:25:
#                    00:97:68:15:a9:ee:b1:6a:28:be:6e:66:11:d5:0a:
#                    e6:59:a0:52:00:6e:7d:2e:b9:2b:8e:b6:2d:6d:18:
#                    45:6e:85:03:7b:50:ca:fb:a4:fc:b3:92:fa:93:c7:
#                    3c:a2:4a:5b:1e:96:bd:bd:e3:33:b4:35:42:f6:c3:
#                    c9:eb:43:16:5e:1e:9a:9d:52:a8:d5:47:0b:71:b5:
#                    11:c8:47:8d:bd:99:de:55:12:80:01:4e:a8:bb:07:
#                    63:0e:fc:25:b1:a2:b2:74:52:b0:79:dd:13:a1:0e:
#                    3b:6e:65:0a:81:c9:be:c1:5d:de:4d:19:37:e9:43:
#                    a7:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Certificate Policies: 
#                Policy: 2.16.76.1.1.0
#                  CPS: http://acraiz.icpbrasil.gov.br/DPCacraiz.pdf
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://acraiz.icpbrasil.gov.br/LCRacraiz.crl
#
#            X509v3 Subject Key Identifier: 
#                8A:FA:F1:57:84:11:13:35:90:42:FA:57:49:54:69:0D:A4:C4:F0:37
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         19:03:97:35:53:f8:60:22:1e:8e:72:02:c0:7e:22:60:15:6a:
#         6f:98:36:56:aa:55:77:d3:f6:c7:16:98:fc:88:1a:1b:25:29:
#         b9:b8:3a:6d:ed:38:ab:62:1d:54:c5:ed:df:41:a1:a5:62:32:
#         5e:fb:dc:dd:fa:2c:cf:45:b0:6a:5c:f5:50:03:7e:04:5d:cc:
#         24:e2:aa:56:b9:fd:61:1e:b8:96:7d:da:f1:f0:07:2a:4a:aa:
#         fa:0a:e4:05:c1:2a:fb:e4:5a:2c:4b:39:70:0c:00:da:ef:49:
#         93:ef:06:63:02:64:21:9d:9c:76:c4:9e:b0:7d:69:53:f5:54:
#         1f:4b:ff:c9:61:e2:1c:ec:5b:9e:d8:93:4b:77:4d:14:39:23:
#         0c:6a:22:bf:b7:bf:5e:9c:a3:47:10:0d:9f:ba:91:f7:bc:48:
#         a0:7f:91:21:e1:b5:40:37:95:68:86:b4:e6:e8:c6:39:df:1e:
#         d7:41:96:6b:d4:c1:3b:6b:9e:65:14:49:d2:79:3d:2e:9a:53:
#         80:8d:1d:a6:01:bb:d2:33:95:f9:a1:26:4d:ae:67:ad:77:3c:
#         93:8f:67:e5:08:cf:02:0b:b3:0b:69:bd:24:91:d9:e0:44:89:
#         54:04:61:c5:d7:f4:b9:9e:63:db:2b:ef:40:e3:ab:1d:df:7a:
#         2a:2b:c9:fc

[p11-kit-object-v1]
label: "Autoridade Certificadora Raiz Brasileira v1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzhzovpM0zsmx5FTuCfbs
pAiFoD/GisZwMKeAjO0+AVQHjBkjO5+7x7SLILHi90EWLV6HZrqwB91v0T882shZ
M50VsJ+SyFZUWIo6J6I0Hpt4tbfN5ZvpwC4SnnB4B/qO8kzA+OVyfB6pqWADVyZH
24N2w87IErvR/++us2J9mqDkvG59AS40YNyH4F9/BXBcMBUswnWjP1ADZiNmLOd0
d3jbZhff+R8NgmiPdYf36TF6U0/PWGK7QKI0z8BwhFCXFdogS+n7TEKtK2iOo9mt
BWL+CHTE6MHMhRPOrSgwUN3ewIHBSbBeLiY46WMEM3e1gHbNKn/yPKxdk0I59KJz
RQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridade Certificadora Raiz Brasileira v1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BR, O = ICP-Brasil, OU = Instituto Nacional de Tecnologia da Informacao - ITI, CN = Autoridade Certificadora Raiz Brasileira v1
#        Validity
#            Not Before: Jul 29 19:17:10 2008 GMT
#            Not After : Jul 29 19:17:10 2021 GMT
#        Subject: C = BR, O = ICP-Brasil, OU = Instituto Nacional de Tecnologia da Informacao - ITI, CN = Autoridade Certificadora Raiz Brasileira v1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ce:1c:e8:be:93:34:ce:c9:b1:e4:54:ee:09:f6:
#                    ec:a4:08:85:a0:3f:c6:8a:c6:70:30:a7:80:8c:ed:
#                    3e:01:54:07:8c:19:23:3b:9f:bb:c7:b4:8b:20:b1:
#                    e2:f7:41:16:2d:5e:87:66:ba:b0:07:dd:6f:d1:3f:
#                    3c:da:c8:59:33:9d:15:b0:9f:92:c8:56:54:58:8a:
#                    3a:27:a2:34:1e:9b:78:b5:b7:cd:e5:9b:e9:c0:2e:
#                    12:9e:70:78:07:fa:8e:f2:4c:c0:f8:e5:72:7c:1e:
#                    a9:a9:60:03:57:26:47:db:83:76:c3:ce:c8:12:bb:
#                    d1:ff:ef:ae:b3:62:7d:9a:a0:e4:bc:6e:7d:01:2e:
#                    34:60:dc:87:e0:5f:7f:05:70:5c:30:15:2c:c2:75:
#                    a3:3f:50:03:66:23:66:2c:e7:74:77:78:db:66:17:
#                    df:f9:1f:0d:82:68:8f:75:87:f7:e9:31:7a:53:4f:
#                    cf:58:62:bb:40:a2:34:cf:c0:70:84:50:97:15:da:
#                    20:4b:e9:fb:4c:42:ad:2b:68:8e:a3:d9:ad:05:62:
#                    fe:08:74:c4:e8:c1:cc:85:13:ce:ad:28:30:50:dd:
#                    de:c0:81:c1:49:b0:5e:2e:26:38:e9:63:04:33:77:
#                    b5:80:76:cd:2a:7f:f2:3c:ac:5d:93:42:39:f4:a2:
#                    73:45
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Certificate Policies: 
#                Policy: 2.16.76.1.1.0
#                  CPS: http://acraiz.icpbrasil.gov.br/DPCacraiz.pdf
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://acraiz.icpbrasil.gov.br/LCRacraizv1.crl
#
#            X509v3 Subject Key Identifier: 
#                42:B2:2C:5C:74:01:07:BE:9B:FF:55:33:3B:EE:29:BB:5D:91:BF:06
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         59:6c:8a:76:e9:19:71:57:83:fe:a7:f4:7a:0f:9e:81:d0:cf:
#         07:1c:0c:23:e9:24:0d:51:cb:33:e8:2a:09:c3:7a:ff:0e:a3:
#         80:86:60:c1:70:97:e0:c0:0a:55:dd:a4:65:4c:8f:a7:47:b0:
#         57:b7:f3:ab:c4:c3:19:e3:98:ec:0d:b0:1b:51:91:c9:d9:09:
#         d6:e9:6a:b3:e7:0c:b0:b2:92:87:fb:8e:4d:15:ec:12:14:19:
#         78:0c:62:ea:14:39:18:0a:c5:55:db:53:85:dc:7b:28:fa:15:
#         71:a3:ca:74:25:82:0f:67:27:34:d7:ae:52:13:02:fb:c5:ef:
#         9a:80:25:a5:52:9e:39:0e:ed:3a:f4:78:07:5f:d5:28:7a:0a:
#         4a:f5:d0:c3:67:f7:8c:58:17:6f:0a:00:a3:26:10:b4:60:22:
#         3a:4a:48:a5:da:e0:a9:84:de:43:db:9f:43:a7:3f:28:04:47:
#         92:2f:f7:e7:64:75:21:d2:4f:81:ce:aa:3e:64:0e:e3:0e:ad:
#         55:9a:7e:94:9b:34:c1:d0:ae:69:4e:1e:a3:d9:b3:87:57:da:
#         70:c2:5a:7d:87:cd:f9:bf:37:de:ed:56:35:f7:b7:22:0e:4f:
#         92:b8:3f:08:df:9c:9e:98:5e:f2:6f:b9:fa:9b:2c:f8:cd:45:
#         d8:72:b2:20

[p11-kit-object-v1]
label: "Autoridade Certificadora Raiz Brasileira v2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridade Certificadora Raiz Brasileira v2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = BR, O = ICP-Brasil, OU = Instituto Nacional de Tecnologia da Informacao - ITI, CN = Autoridade Certificadora Raiz Brasileira v2
#        Validity
#            Not Before: Jun 21 19:04:57 2010 GMT
#            Not After : Jun 21 19:04:57 2023 GMT
#        Subject: C = BR, O = ICP-Brasil, OU = Instituto Nacional de Tecnologia da Informacao - ITI, CN = Autoridade Certificadora Raiz Brasileira v2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:46:a4:0e:dd:e7:40:f2:b5:a0:7c:52:95:57:
#                    45:fc:6d:84:f3:86:01:c9:85:03:ad:98:ab:d2:f2:
#                    5e:05:99:c9:bb:6f:62:67:fd:77:44:b9:03:07:3c:
#                    d2:1b:00:62:d4:70:2c:42:83:79:66:ab:99:56:ae:
#                    81:bc:6a:49:bd:f3:74:0f:62:b7:eb:5b:07:66:94:
#                    42:24:9d:46:ac:9a:42:18:30:f0:24:a8:51:41:ea:
#                    ab:95:f1:a8:2b:02:78:69:b5:29:27:5e:9c:2e:73:
#                    c6:fe:23:a5:e3:a6:ce:fd:6c:1b:6b:00:54:eb:00:
#                    ad:4f:3a:4c:3c:e7:0a:88:5b:da:5e:9a:0b:56:e4:
#                    b5:54:38:1d:f2:0a:93:64:4e:c3:41:92:53:20:2a:
#                    cf:fc:74:6e:d4:db:33:38:62:e4:fe:8e:4c:58:1c:
#                    f7:8f:2a:4d:ff:c5:92:d9:09:52:bd:cf:70:00:9d:
#                    69:9a:33:6a:88:87:45:21:99:16:51:0d:34:df:82:
#                    bd:b4:69:a8:7c:7c:d4:dd:d3:f2:15:5c:4b:c5:58:
#                    10:ea:85:19:cb:36:22:58:2a:72:0c:9a:96:de:ca:
#                    cf:08:51:61:bf:b4:05:29:06:2b:86:90:fe:e9:4d:
#                    c3:04:05:47:cb:cf:76:d9:7f:71:a6:87:7b:15:40:
#                    e4:33:80:78:07:1d:a4:f2:8e:9b:40:3b:c9:72:50:
#                    df:69:be:f0:2c:96:1f:90:b5:d5:ae:74:e3:65:b4:
#                    8c:1a:e9:6a:1b:fb:72:5c:c5:82:54:ea:e0:53:07:
#                    c4:cc:12:e9:f7:de:d7:2f:d4:48:2f:47:3f:26:61:
#                    04:b1:12:9a:33:6b:b5:86:4b:13:2b:d0:86:9d:47:
#                    ed:69:fb:fc:84:12:66:f8:56:e5:0e:8a:6c:76:c4:
#                    6b:1a:7a:c2:a0:5a:12:d1:23:89:58:01:7c:08:58:
#                    da:15:8e:15:d9:7e:7d:37:b6:a4:45:f5:03:85:cc:
#                    47:fa:8b:79:45:b8:66:62:33:d3:26:4a:de:1c:e9:
#                    d4:7f:e6:6d:26:b9:3c:7d:cd:0f:28:0a:29:0f:9b:
#                    dd:63:ab:b9:a6:47:1a:84:d7:85:a4:03:65:06:04:
#                    4b:52:8d:83:34:42:7f:31:8e:11:2e:e6:b3:67:95:
#                    40:7e:97:7a:40:00:f9:11:6c:83:38:58:ad:03:33:
#                    5b:a6:c4:c1:c5:b0:ac:0d:a9:06:f0:a6:69:01:34:
#                    b6:e9:f8:94:48:4f:3e:a6:75:09:ec:4a:c5:3b:e0:
#                    c9:5e:b0:32:ff:9f:69:59:cf:3c:30:6f:0d:ce:27:
#                    57:ec:5a:1b:68:ff:ec:4f:6f:78:32:3e:79:c5:b4:
#                    5d:95:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Certificate Policies: 
#                Policy: 2.16.76.1.1.0
#                  CPS: http://acraiz.icpbrasil.gov.br/DPCacraiz.pdf
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://acraiz.icpbrasil.gov.br/LCRacraizv2.crl
#
#            X509v3 Authority Key Identifier: 
#                keyid:0C:39:20:3A:B7:01:1F:CB:D7:28:7D:41:A0:C7:FA:4A:AD:32:24:BE
#
#            X509v3 Subject Key Identifier: 
#                0C:39:20:3A:B7:01:1F:CB:D7:28:7D:41:A0:C7:FA:4A:AD:32:24:BE
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         59:9a:14:69:18:6d:7d:29:43:70:7d:76:9b:61:df:77:8e:1a:
#         76:e4:a9:d6:cb:76:a4:16:0c:4c:94:12:c6:90:d1:81:03:c5:
#         ad:06:d9:2d:44:bc:b2:09:76:09:80:39:67:00:18:34:6d:06:
#         0a:e6:b5:10:59:48:ba:75:60:fc:3f:8e:1d:18:55:70:2b:9e:
#         4b:95:ac:89:ab:0a:77:24:7b:61:c4:c7:91:26:8e:46:13:51:
#         37:b6:8c:27:0a:d3:0d:f0:9a:2b:22:83:83:b3:bd:83:35:ad:
#         9b:3c:bc:78:83:29:35:61:36:f8:11:71:33:20:54:63:53:45:
#         01:d8:13:5a:84:3b:d7:66:13:24:b7:c4:46:c5:22:d8:73:24:
#         ee:1c:13:17:96:c8:25:e8:1b:1e:cf:df:85:50:6d:3c:ea:f7:
#         50:9e:1b:97:de:a7:6b:db:d6:73:d2:cf:7c:50:c0:b0:8c:e5:
#         53:12:7a:86:39:ac:35:5b:67:c7:ea:d4:fb:d1:c2:5d:ea:0e:
#         97:73:98:ae:29:bf:e4:3a:f3:04:36:50:2c:ed:de:1e:db:85:
#         e8:1d:84:09:ee:f3:a6:83:33:5b:6f:47:79:4f:48:b5:fc:b8:
#         26:13:ab:aa:b3:f4:61:11:fb:45:67:f3:1d:3e:6e:fe:2a:4b:
#         26:44:1a:9f:b1:a2:e0:3c:da:e0:e4:05:3a:78:ac:fb:a8:a1:
#         4d:bf:5d:2c:77:29:90:cd:13:1d:ef:06:28:d8:b7:14:f3:5b:
#         c8:c9:9e:a7:7e:31:12:8a:78:62:c4:d1:05:bc:06:02:63:04:
#         2b:0d:89:dd:e4:5c:5b:32:80:44:d4:42:ec:2a:f3:f2:40:87:
#         31:d5:3e:e2:0a:32:0c:14:8d:d5:72:6d:0b:e6:fd:8d:e4:a8:
#         f3:05:8d:75:17:77:9b:0a:b9:fa:90:92:99:65:88:32:67:43:
#         05:8e:2d:0b:15:bb:35:f1:61:e8:d9:67:77:ed:16:e5:e8:01:
#         2d:6b:34:3f:8e:83:b3:f7:ea:0f:4a:1e:3e:35:84:9d:8c:80:
#         34:3f:a9:95:e8:c3:ad:c4:cd:9e:ca:14:16:2c:19:9e:e4:36:
#         8b:b9:b9:a3:42:25:07:3e:c3:e5:d5:68:4f:a0:66:1c:a6:b3:
#         b6:73:1c:90:1a:3f:40:b9:1a:56:42:70:87:ff:6f:2d:0f:11:
#         fd:1e:ff:f7:85:30:15:0e:e3:17:31:ee:27:95:cc:c9:e9:99:
#         1e:97:c7:6d:5b:07:b5:05:6a:3d:f2:45:df:ba:82:79:24:70:
#         2e:9b:82:1f:66:a9:a5:6d:27:cc:f6:2a:a2:d1:5f:85:6f:e0:
#         46:9d:aa:d2:a5:4e:55:0e

[p11-kit-object-v1]
label: "BYTE Root Certification Authority 001"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "BYTE Root Certification Authority 001"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8181966546969588800 (0x718c2f397c407440)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = GR, O = BYTE Computer S.A., CN = BYTE Root Certification Authority 001
#        Validity
#            Not Before: Sep 10 22:01:54 2014 GMT
#            Not After : Sep 10 22:01:54 2039 GMT
#        Subject: C = GR, O = BYTE Computer S.A., CN = BYTE Root Certification Authority 001
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ed:12:2e:17:73:9e:6f:f4:f3:99:e8:9e:08:57:
#                    09:34:24:11:40:1f:8c:21:7e:1b:af:38:c3:d1:c7:
#                    e6:14:e5:fa:1b:ba:5e:66:f5:25:69:f7:ed:cd:6e:
#                    82:70:af:ba:42:f0:b1:19:5c:2b:fc:45:84:18:2c:
#                    7a:17:4f:61:85:46:19:7c:ce:c1:8d:9f:54:9e:77:
#                    25:66:0f:e0:f6:f8:92:ca:29:ce:27:57:15:2a:6c:
#                    82:38:6d:27:e6:be:4d:73:0e:73:af:e3:71:3d:bc:
#                    09:42:0f:d5:0d:a1:ed:7d:6b:ae:f7:c1:f0:6c:cd:
#                    c2:97:a1:58:fd:35:15:96:17:4c:9f:bf:f5:f1:39:
#                    4b:70:b7:e7:4a:6c:1c:3f:c1:70:5b:cf:d6:8b:eb:
#                    ef:6f:30:e8:5f:c8:46:77:21:62:16:5e:c6:54:45:
#                    39:f5:74:ba:67:24:68:a5:71:5b:3e:c1:fb:09:93:
#                    eb:22:99:f8:d2:f5:7b:02:6c:8f:58:e2:ab:ef:dd:
#                    74:21:e4:24:69:94:40:d6:c1:04:18:0e:d8:42:f0:
#                    fd:d7:8a:05:c0:5f:1b:8a:eb:2e:c0:0d:07:06:73:
#                    01:85:8e:1f:c1:c0:8a:a1:58:a6:51:b9:58:91:42:
#                    0f:6e:e1:bc:0a:e8:bb:28:83:15:75:e5:0d:fe:49:
#                    30:29:29:42:c2:c2:36:ff:a4:3c:7d:2e:f7:da:f2:
#                    a2:2f:16:bc:61:a8:99:58:18:a4:49:c6:6a:07:12:
#                    eb:1b:7c:b4:ce:e7:fb:21:80:2b:70:a6:c8:ce:ad:
#                    55:1e:1f:1d:84:d0:fd:54:6a:4c:56:63:c8:dd:7e:
#                    a0:f9:39:db:ef:7c:5a:f7:8c:35:a5:6e:2a:56:fa:
#                    fe:e3:5f:93:54:72:0e:68:e3:49:2b:93:4d:35:22:
#                    97:14:95:66:4f:a7:77:3a:2e:25:4c:f6:09:8b:12:
#                    1b:71:c5:72:a7:9b:b9:bc:eb:1c:a0:a5:c9:54:83:
#                    61:dc:57:55:ad:b5:e6:da:78:2b:76:a7:fe:f8:db:
#                    fe:8c:33:a4:8a:a3:46:5c:ad:b2:0a:12:0e:8a:e4:
#                    50:9e:f0:b8:cb:99:53:4c:64:21:6b:8a:38:2a:e0:
#                    88:86:00:d4:17:ac:66:b2:e7:be:2d:3b:29:e5:f8:
#                    a7:94:db:8c:58:f8:d2:4b:30:9f:f2:c4:62:65:50:
#                    47:72:80:cf:a4:70:40:b6:bd:44:fe:d9:bf:28:2b:
#                    2e:37:c7:b3:51:0e:82:29:b5:b1:6f:ad:7e:2c:93:
#                    c0:a9:7f:91:fa:c7:1f:35:f0:bb:97:c9:4f:61:28:
#                    90:84:41:e8:7d:21:40:c5:c9:86:3c:ed:9a:ad:85:
#                    9c:a2:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                B4:4D:66:B7:D3:B3:C8:99:7C:01:32:D0:91:3A:F7:D6:A8:12:31:DE
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:B4:4D:66:B7:D3:B3:C8:99:7C:01:32:D0:91:3A:F7:D6:A8:12:31:DE
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         1c:1a:eb:06:ae:55:bd:3b:3f:36:2c:61:9e:ea:c7:53:fc:70:
#         aa:32:6f:e4:42:aa:eb:bd:85:ec:1b:8a:5a:f2:95:96:29:a1:
#         04:06:92:ce:24:57:ff:40:23:78:4e:c9:f8:30:4d:42:55:44:
#         4e:37:a2:7d:6b:8e:68:fe:0e:fe:7f:df:b0:9f:63:51:f3:e1:
#         c5:a5:94:9f:8a:23:28:48:f3:41:8b:d2:fe:78:ed:d9:d0:08:
#         0f:6d:7d:d5:9d:95:ac:d5:fe:12:66:1a:e4:be:75:54:f3:d1:
#         4d:9c:4e:13:d4:9e:70:34:6d:a8:ba:0a:33:88:8d:ad:05:37:
#         fe:4b:79:7f:7d:03:41:79:13:0d:9f:3d:f7:38:9c:35:5a:44:
#         4f:3e:3c:a2:e5:81:c5:7f:5f:76:4f:1b:3b:6e:6f:9a:6d:b7:
#         ed:0f:cb:32:1f:88:b4:45:0c:9c:11:d2:f8:04:5a:13:37:59:
#         98:81:ce:4c:f4:e5:94:28:04:c4:b5:53:c9:54:8d:70:3f:68:
#         01:db:cc:13:0a:e4:25:a3:6c:99:ed:10:b3:7a:20:a9:49:bc:
#         05:f4:f8:1b:68:d6:ba:20:1d:82:67:66:e0:b0:9f:5c:ca:35:
#         d2:45:ae:d5:88:19:db:7a:06:9b:8c:a0:37:87:51:23:be:45:
#         da:5c:b3:7f:6b:cf:c6:a8:1c:33:8a:7b:1d:91:fa:9e:bc:ec:
#         7d:3b:45:15:4f:1b:a7:3b:35:b4:79:f3:5b:82:50:e0:9c:a7:
#         ed:16:75:db:63:80:62:a1:da:18:02:6a:80:de:82:aa:44:4d:
#         44:38:28:aa:6e:fa:18:63:39:60:f7:43:29:49:5a:ba:24:c0:
#         bf:b3:0a:97:1d:67:49:5a:22:b2:67:04:9c:58:a9:f8:0c:34:
#         5c:40:96:b4:87:b5:45:61:19:e5:8e:ef:06:de:91:15:c0:b8:
#         8a:ca:94:c9:0a:75:7d:71:3b:58:81:33:c8:f7:07:41:55:98:
#         29:43:b5:cb:9a:43:e9:72:fa:cf:f0:8b:31:bc:e7:ef:b9:6a:
#         e3:41:9d:21:3e:0d:15:a8:85:bd:1b:4e:87:8e:47:b2:10:fe:
#         37:18:6a:84:e5:89:1c:14:63:e8:b9:83:a9:b5:bb:e8:63:9a:
#         7a:19:8c:cb:74:f7:f8:17:08:f1:8b:19:d8:b4:ec:1e:6e:49:
#         73:3f:5c:20:dd:35:2a:96:77:e9:46:6f:16:3b:cb:a9:ef:9b:
#         0a:21:11:c8:c3:a4:c9:23:45:6d:3f:62:95:9d:d3:28:c7:9d:
#         0f:b3:fe:37:8d:1d:48:b2:50:e6:25:b9:4e:33:61:36:d6:16:
#         1c:ca:32:37:20:76:1c:2c

[p11-kit-object-v1]
label: "Baltimore CyberTrust Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAowS7IquYPVfoJnKatXnU
KeLh6JWAsbDjW44rKZpk36Fd7bAJBW3bKC7OYqJi/rSI2hLrOOshncBBKwFSe4h3
0xyPx7q5iLVqCedz6BFAp9HMymKNLeWPC6ZQ0qhQwyjq9aslh4qalhypZ7g/DNX3
+VITL8Ib1XBw8I/AEsoGy5rh2cozenfW+Oy58WhEQkgT0sDCpK5eYP62pgX8tN0H
WQLUWRiYY/WlY+CQDH1dsgZ684Xq69QDrl6EPl//Fe1pvPk5NnJ1z3dSTfPJkCy5
PeXJI1M/HySYIVwHmSm9xjrs526GOmuXdGMzvWgYMfB4jXa//J6OXSqGp02Q3Cca
OQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Baltimore CyberTrust Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 33554617 (0x20000b9)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = IE, O = Baltimore, OU = CyberTrust, CN = Baltimore CyberTrust Root
#        Validity
#            Not Before: May 12 18:46:00 2000 GMT
#            Not After : May 12 23:59:00 2025 GMT
#        Subject: C = IE, O = Baltimore, OU = CyberTrust, CN = Baltimore CyberTrust Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a3:04:bb:22:ab:98:3d:57:e8:26:72:9a:b5:79:
#                    d4:29:e2:e1:e8:95:80:b1:b0:e3:5b:8e:2b:29:9a:
#                    64:df:a1:5d:ed:b0:09:05:6d:db:28:2e:ce:62:a2:
#                    62:fe:b4:88:da:12:eb:38:eb:21:9d:c0:41:2b:01:
#                    52:7b:88:77:d3:1c:8f:c7:ba:b9:88:b5:6a:09:e7:
#                    73:e8:11:40:a7:d1:cc:ca:62:8d:2d:e5:8f:0b:a6:
#                    50:d2:a8:50:c3:28:ea:f5:ab:25:87:8a:9a:96:1c:
#                    a9:67:b8:3f:0c:d5:f7:f9:52:13:2f:c2:1b:d5:70:
#                    70:f0:8f:c0:12:ca:06:cb:9a:e1:d9:ca:33:7a:77:
#                    d6:f8:ec:b9:f1:68:44:42:48:13:d2:c0:c2:a4:ae:
#                    5e:60:fe:b6:a6:05:fc:b4:dd:07:59:02:d4:59:18:
#                    98:63:f5:a5:63:e0:90:0c:7d:5d:b2:06:7a:f3:85:
#                    ea:eb:d4:03:ae:5e:84:3e:5f:ff:15:ed:69:bc:f9:
#                    39:36:72:75:cf:77:52:4d:f3:c9:90:2c:b9:3d:e5:
#                    c9:23:53:3f:1f:24:98:21:5c:07:99:29:bd:c6:3a:
#                    ec:e7:6e:86:3a:6b:97:74:63:33:bd:68:18:31:f0:
#                    78:8d:76:bf:fc:9e:8e:5d:2a:86:a7:4d:90:dc:27:
#                    1a:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                E5:9D:59:30:82:47:58:CC:AC:FA:08:54:36:86:7B:3A:B5:04:4D:F0
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:3
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         85:0c:5d:8e:e4:6f:51:68:42:05:a0:dd:bb:4f:27:25:84:03:
#         bd:f7:64:fd:2d:d7:30:e3:a4:10:17:eb:da:29:29:b6:79:3f:
#         76:f6:19:13:23:b8:10:0a:f9:58:a4:d4:61:70:bd:04:61:6a:
#         12:8a:17:d5:0a:bd:c5:bc:30:7c:d6:e9:0c:25:8d:86:40:4f:
#         ec:cc:a3:7e:38:c6:37:11:4f:ed:dd:68:31:8e:4c:d2:b3:01:
#         74:ee:be:75:5e:07:48:1a:7f:70:ff:16:5c:84:c0:79:85:b8:
#         05:fd:7f:be:65:11:a3:0f:c0:02:b4:f8:52:37:39:04:d5:a9:
#         31:7a:18:bf:a0:2a:f4:12:99:f7:a3:45:82:e3:3c:5e:f5:9d:
#         9e:b5:c8:9e:7c:2e:c8:a4:9e:4e:08:14:4b:6d:fd:70:6d:6b:
#         1a:63:bd:64:e6:1f:b7:ce:f0:f2:9f:2e:bb:1b:b7:f2:50:88:
#         73:92:c2:e2:e3:16:8d:9a:32:02:ab:8e:18:dd:e9:10:11:ee:
#         7e:35:ab:90:af:3e:30:94:7a:d0:33:3d:a7:65:0f:f5:fc:8e:
#         9e:62:cf:47:44:2c:01:5d:bb:1d:b5:32:d2:47:d2:38:2e:d0:
#         fe:81:dc:32:6a:1e:b5:ee:3c:d5:fc:e7:81:1d:19:c3:24:42:
#         ea:63:39:a9

[p11-kit-object-v1]
label: "Buypass Class 2 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Buypass Class 2 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NO, O = Buypass AS-983163327, CN = Buypass Class 2 Root CA
#        Validity
#            Not Before: Oct 26 08:38:03 2010 GMT
#            Not After : Oct 26 08:38:03 2040 GMT
#        Subject: C = NO, O = Buypass AS-983163327, CN = Buypass Class 2 Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d7:c7:5e:f7:c1:07:d4:77:fb:43:21:f4:f4:f5:
#                    69:e4:ee:32:01:db:a3:86:1f:e4:59:0d:ba:e7:75:
#                    83:52:eb:ea:1c:61:15:48:bb:1d:07:ca:8c:ae:b0:
#                    dc:96:9d:ea:c3:60:92:86:82:28:73:9c:56:06:ff:
#                    4b:64:f0:0c:2a:37:49:b5:e5:cf:0c:7c:ee:f1:4a:
#                    bb:73:30:65:f3:d5:2f:83:b6:7e:e3:e7:f5:9e:ab:
#                    60:f9:d3:f1:9d:92:74:8a:e4:1c:96:ac:5b:80:e9:
#                    b5:f4:31:87:a3:51:fc:c7:7e:a1:6f:8e:53:77:d4:
#                    97:c1:55:33:92:3e:18:2f:75:d4:ad:86:49:cb:95:
#                    af:54:06:6c:d8:06:13:8d:5b:ff:e1:26:19:59:c0:
#                    24:ba:81:71:79:90:44:50:68:24:94:5f:b8:b3:11:
#                    f1:29:41:61:a3:41:cb:23:36:d5:c1:f1:32:50:10:
#                    4e:7f:f4:86:93:ec:84:d3:8e:bc:4b:bf:5c:01:4e:
#                    07:3d:dc:14:8a:94:0a:a4:ea:73:fb:0b:51:e8:13:
#                    07:18:fa:0e:f1:2b:d1:54:15:7d:3c:e1:f7:b4:19:
#                    42:67:62:5e:77:e0:a2:55:ec:b6:d9:69:17:d5:3a:
#                    af:44:ed:4a:c5:9e:e4:7a:27:7c:e5:75:d7:aa:cb:
#                    25:e7:df:6b:0a:db:0f:4d:93:4e:a8:a0:cd:7b:2e:
#                    f2:59:01:6a:b7:0d:b8:07:81:7e:8b:38:1b:38:e6:
#                    0a:57:99:3d:ee:21:e8:a3:f5:0c:16:dd:8b:ec:34:
#                    8e:9c:2a:1c:00:15:17:8d:68:83:d2:70:9f:18:08:
#                    cd:11:68:d5:c9:6b:52:cd:c4:46:8f:dc:b5:f3:d8:
#                    57:73:1e:e9:94:39:04:bf:d3:de:38:de:b4:53:ec:
#                    69:1c:a2:7e:c4:8f:e4:1b:70:ad:f2:a2:f9:fb:f7:
#                    16:64:66:69:9f:49:51:a2:e2:15:18:67:06:4a:7f:
#                    d5:6c:b5:4d:b3:33:e0:61:eb:5d:be:e9:98:0f:32:
#                    d7:1d:4b:3c:2e:5a:01:52:91:09:f2:df:ea:8d:d8:
#                    06:40:63:aa:11:e4:fe:c3:37:9e:14:52:3f:f4:e2:
#                    cc:f2:61:93:d1:fd:67:6b:d7:52:ae:bf:68:ab:40:
#                    43:a0:57:35:53:78:f0:53:f8:61:42:07:64:c6:d7:
#                    6f:9b:4c:38:0d:63:ac:62:af:36:8b:a2:73:0a:0d:
#                    f5:21:bd:74:aa:4d:ea:72:03:49:db:c7:5f:1d:62:
#                    63:c7:fd:dd:91:ec:33:ee:f5:6d:b4:6e:30:68:de:
#                    c8:d6:26:b0:75:5e:7b:b4:07:20:98:a1:76:32:b8:
#                    4d:6c:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C9:80:77:E0:62:92:82:F5:46:9C:F3:BA:F7:4C:C3:DE:B8:A3:AD:39
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         53:5f:21:f5:ba:b0:3a:52:39:2c:92:b0:6c:00:c9:ef:ce:20:
#         ef:06:f2:96:9e:e9:a4:74:7f:7a:16:fc:b7:f5:b6:fb:15:1b:
#         3f:ab:a6:c0:72:5d:10:b1:71:ee:bc:4f:e3:ad:ac:03:6d:2e:
#         71:2e:af:c4:e3:ad:a3:bd:0c:11:a7:b4:ff:4a:b2:7b:10:10:
#         1f:a7:57:41:b2:c0:ae:f4:2c:59:d6:47:10:88:f3:21:51:29:
#         30:ca:60:86:af:46:ab:1d:ed:3a:5b:b0:94:de:44:e3:41:08:
#         a2:c1:ec:1d:d6:fd:4f:b6:d6:47:d0:14:0b:ca:e6:ca:b5:7b:
#         77:7e:41:1f:5e:83:c7:b6:8c:39:96:b0:3f:96:81:41:6f:60:
#         90:e2:e8:f9:fb:22:71:d9:7d:b3:3d:46:bf:b4:84:af:90:1c:
#         0f:8f:12:6a:af:ef:ee:1e:7a:ae:02:4a:8a:17:2b:76:fe:ac:
#         54:89:24:2c:4f:3f:b6:b2:a7:4e:8c:a8:91:97:fb:29:c6:7b:
#         5c:2d:b9:cb:66:b6:b7:a8:5b:12:51:85:b5:09:7e:62:78:70:
#         fe:a9:6a:60:b6:1d:0e:79:0c:fd:ca:ea:24:80:72:c3:97:3f:
#         f2:77:ab:43:22:0a:c7:eb:b6:0c:84:82:2c:80:6b:41:8a:08:
#         c0:eb:a5:6b:df:99:12:cb:8a:d5:5e:80:0c:91:e0:26:08:36:
#         48:c5:fa:38:11:35:ff:25:83:2d:f2:7a:bf:da:fd:8e:fe:a5:
#         cb:45:2c:1f:c4:88:53:ae:77:0e:d9:9a:76:c5:8e:2c:1d:a3:
#         ba:d5:ec:32:ae:c0:aa:ac:f7:d1:7a:4d:eb:d4:07:e2:48:f7:
#         22:8e:b0:a4:9f:6a:ce:8e:b2:b2:60:f4:a3:22:d0:23:eb:94:
#         5a:7a:69:dd:0f:bf:40:57:ac:6b:59:50:d9:a3:99:e1:6e:fe:
#         8d:01:79:27:23:15:de:92:9d:7b:09:4d:5a:e7:4b:48:30:5a:
#         18:e6:0a:6d:e6:8f:e0:d2:bb:e6:df:7c:6e:21:82:c1:68:39:
#         4d:b4:98:58:66:62:cc:4a:90:5e:c3:fa:27:04:b1:79:15:74:
#         99:cc:be:ad:20:de:26:60:1c:eb:56:51:a6:a3:ea:e4:a3:3f:
#         a7:ff:61:dc:f1:5a:4d:6c:32:23:43:ee:ac:a8:ee:ee:4a:12:
#         09:3c:5d:71:c2:be:79:fa:c2:87:68:1d:0b:fd:5c:69:cc:06:
#         d0:9a:7d:54:99:2a:c9:39:1a:19:af:4b:2a:43:f3:63:5d:5a:
#         58:e2:2f:e3:1d:e4:a9:d6:d0:0a:d0:9e:bf:d7:81:09:f1:c9:
#         c7:26:0d:ac:98:16:56:a0

[p11-kit-object-v1]
label: "Buypass Class 3 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Buypass Class 3 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NO, O = Buypass AS-983163327, CN = Buypass Class 3 Root CA
#        Validity
#            Not Before: Oct 26 08:28:58 2010 GMT
#            Not After : Oct 26 08:28:58 2040 GMT
#        Subject: C = NO, O = Buypass AS-983163327, CN = Buypass Class 3 Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a5:da:0a:95:16:50:e3:95:f2:5e:9d:76:31:06:
#                    32:7a:9b:f1:10:76:b8:00:9a:b5:52:36:cd:24:47:
#                    b0:9f:18:64:bc:9a:f6:fa:d5:79:d8:90:62:4c:22:
#                    2f:de:38:3d:d6:e0:a8:e9:1c:2c:db:78:11:e9:8e:
#                    68:51:15:72:c7:f3:33:87:e4:a0:5d:0b:5c:e0:57:
#                    07:2a:30:f5:cd:c4:37:77:28:4d:18:91:e6:bf:d5:
#                    52:fd:71:2d:70:3e:e7:c6:c4:8a:e3:f0:28:0b:f4:
#                    76:98:a1:8b:87:55:b2:3a:13:fc:b7:3e:27:37:8e:
#                    22:e3:a8:4f:2a:ef:60:bb:3d:b7:39:c3:0e:01:47:
#                    99:5d:12:4f:db:43:fa:57:a1:ed:f9:9d:be:11:47:
#                    26:5b:13:98:ab:5d:16:8a:b0:37:1c:57:9d:45:ff:
#                    88:96:36:bf:bb:ca:07:7b:6f:87:63:d7:d0:32:6a:
#                    d6:5d:6c:0c:f1:b3:6e:39:e2:6b:31:2e:39:00:27:
#                    14:de:38:c0:ec:19:66:86:12:e8:9d:72:16:13:64:
#                    52:c7:a9:37:1c:fd:82:30:ed:84:18:1d:f4:ae:5c:
#                    ff:70:13:00:eb:b1:f5:33:7a:4b:d6:55:f8:05:8d:
#                    4b:69:b0:f5:b3:28:36:5c:14:c4:51:73:4d:6b:0b:
#                    f1:34:07:db:17:39:d7:dc:28:7b:6b:f5:9f:f3:2e:
#                    c1:4f:17:2a:10:f3:cc:ca:e8:eb:fd:6b:ab:2e:9a:
#                    9f:2d:82:6e:04:d4:52:01:93:2d:3d:86:fc:7e:fc:
#                    df:ef:42:1d:a6:6b:ef:b9:20:c6:f7:bd:a0:a7:95:
#                    fd:a7:e6:89:24:d8:cc:8c:34:6c:e2:23:2f:d9:12:
#                    1a:21:b9:55:91:6f:0b:91:79:19:0c:ad:40:88:0b:
#                    70:e2:7a:d2:0e:d8:68:48:bb:82:13:39:10:58:e9:
#                    d8:2a:07:c6:12:db:58:db:d2:3b:55:10:47:05:15:
#                    67:62:7e:18:63:a6:46:3f:09:0e:54:32:5e:bf:0d:
#                    62:7a:27:ef:80:e8:db:d9:4b:06:5a:37:5a:25:d0:
#                    08:12:77:d4:6f:09:50:97:3d:c8:1d:c3:df:8c:45:
#                    30:56:c6:d3:64:ab:66:f3:c0:5e:96:9c:c3:c4:ef:
#                    c3:7c:6b:8b:3a:79:7f:b3:49:cf:3d:e2:89:9f:a0:
#                    30:4b:85:b9:9c:94:24:79:8f:7d:6b:a9:45:68:0f:
#                    2b:d0:f1:da:1c:cb:69:b8:ca:49:62:6d:c8:d0:63:
#                    62:dd:60:0f:58:aa:8f:a1:bc:05:a5:66:a2:cf:1b:
#                    76:b2:84:64:b1:4c:39:52:c0:30:ba:f0:8c:4b:02:
#                    b0:b6:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                47:B8:CD:FF:E5:6F:EE:F8:B2:EC:2F:4E:0E:F9:25:B0:8E:3C:6B:C3
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         00:20:23:41:35:04:90:c2:40:62:60:ef:e2:35:4c:d7:3f:ac:
#         e2:34:90:b8:a1:6f:76:fa:16:16:a4:48:37:2c:e9:90:c2:f2:
#         3c:f8:0a:9f:d8:81:e5:bb:5b:da:25:2c:a4:a7:55:71:24:32:
#         f6:c8:0b:f2:bc:6a:f8:93:ac:b2:07:c2:5f:9f:db:cc:c8:8a:
#         aa:be:6a:6f:e1:49:10:cc:31:d7:80:bb:bb:c8:d8:a2:0e:64:
#         57:ea:a2:f5:c2:a9:31:15:d2:20:6a:ec:fc:22:01:28:cf:86:
#         b8:80:1e:a9:cc:11:a5:3c:f2:16:b3:47:9d:fc:d2:80:21:c4:
#         cb:d0:47:70:41:a1:ca:83:19:08:2c:6d:f2:5d:77:9c:8a:14:
#         13:d4:36:1c:92:f0:e5:06:37:dc:a6:e6:90:9b:38:8f:5c:6b:
#         1b:46:86:43:42:5f:3e:01:07:53:54:5d:65:7d:f7:8a:73:a1:
#         9a:54:5a:1f:29:43:14:27:c2:85:0f:b5:88:7b:1a:3b:94:b7:
#         1d:60:a7:b5:9c:e7:29:69:57:5a:9b:93:7a:43:30:1b:03:d7:
#         62:c8:40:a6:aa:fc:64:e4:4a:d7:91:53:01:a8:20:88:6e:9c:
#         5f:44:b9:cb:60:81:34:ec:6f:d3:7d:da:48:5f:eb:b4:90:bc:
#         2d:a9:1c:0b:ac:1c:d5:a2:68:20:80:04:d6:fc:b1:8f:2f:bb:
#         4a:31:0d:4a:86:1c:eb:e2:36:29:26:f5:da:d8:c4:f2:75:61:
#         cf:7e:ae:76:63:4a:7a:40:65:93:87:f8:1e:80:8c:86:e5:86:
#         d6:8f:0e:fc:53:2c:60:e8:16:61:1a:a2:3e:43:7b:cd:39:60:
#         54:6a:f5:f2:89:26:01:68:83:48:a2:33:e8:c9:04:91:b2:11:
#         34:11:3e:ea:d0:43:19:1f:03:93:90:0c:ff:51:3d:57:f4:41:
#         6e:e1:cb:a0:be:eb:c9:63:cd:6d:cc:e4:f8:36:aa:68:9d:ed:
#         bd:5d:97:70:44:0d:b6:0e:35:dc:e1:0c:5d:bb:a0:51:94:cb:
#         7e:16:eb:11:2f:a3:92:45:c8:4c:71:d9:bc:c9:99:52:57:46:
#         2f:50:cf:bd:35:69:f4:3d:15:ce:06:a5:2c:0f:3e:f6:81:ba:
#         94:bb:c3:bb:bf:65:78:d2:86:79:ff:49:3b:1a:83:0c:f0:de:
#         78:ec:c8:f2:4d:4c:1a:de:82:29:f8:c1:5a:da:ed:ee:e6:27:
#         5e:e8:45:d0:9d:1c:51:a8:68:ab:44:e3:d0:8b:6a:e3:f8:3b:
#         bb:dc:4d:d7:64:f2:51:be:e6:aa:ab:5a:e9:31:ee:06:bc:73:
#         bf:13:62:0a:9f:c7:b9:97

[p11-kit-object-v1]
label: "CAEDICOM Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CAEDICOM Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFUTCCAzmgAwIBAgIIAPtxJlitmeUwDQYJKoZIhvcNAQELBQAwNjEWMBQGA1UE
AwwNQ0FFRElDT00gUm9vdDEPMA0GA1UECgwGRURJQ09NMQswCQYDVQQGEwJFUzAe
Fw0xNDA1MjExMTA2MzVaFw0zNDA1MjExMDIwMDBaMDYxFjAUBgNVBAMMDUNBRURJ
Q09NIFJvb3QxDzANBgNVBAoMBkVESUNPTTELMAkGA1UEBhMCRVMwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQDbgMroSXTH0zgu8cUjYvw2jC8efjkL6Qb0
VZulmCmU7YZHMoPzxZJ6BdcpAj4Wwyh/NWQpenm7oeIeYRSN5wDQ3KJUZYrfablx
R384OBZGp2kxETVM4Sp//21PlT3jXUhNGVMIWmsh1RIwaZeQry3B9X9BX0k2j024
HhqVX9oPb1wVNcQRvF+Fm72tO1Veu9/Ou69cmWDdH2kaSUgh+QkKz3Kn8PLe5XgZ
vhLdzYd5Qc4vRdcLkRARBB4SnfI4A18Waa6gCtrA+eugDRgPeV6RneQfFJw0ExkC
RLpRw+55smAUo6+8SC0oOGgBQ2TKDoaDYtCKGaYn8St7SykhW5rMaEIQyEtPDyOy
iHzEXG4XcMV3r5XAJaQiCtN8+dhyyNAtvafo0i2LTKFuCvy0QDO7mmv8pOrJ/uA0
iEPMxrw/ddKlqa/6l7k+t85UoE3AXS7BKNhjVHK4rFr1OvsgYQY69KArOKvMgwxJ
1G4+bQ8+cy825vNPs8AA0UVJW4z2o5gdhH+ZCsPqCjzD0yR4SGf1GzsOHQ5DsQR1
waA5dov22QKlHeGeWwe7NldKIU35iWm0bA/Xr6AVJJnn+NdTlOwSv6Sl1+3ujjV3
d9ymfyBUktZj1nKeTSq2j3PzGaHEsB/mNKMLAD6XSSdhqqoEQTM4tVBRzDYV2x//
vcpIg0inswIDAQABo2MwYTAdBgNVHQ4EFgQUFM0qWXhjq2EZ6Lg9oeBawHXn+csw
DwYDVR0TAQH/BAUwAwEB/zAfBgNVHSMEGDAWgBQUzSpZeGOrYRnouD2h4FrAdef5
yzAOBgNVHQ8BAf8EBAMCAQYwDQYJKoZIhvcNAQELBQADggIBAD0JGQC2kQJs7A73
4eJisL8zDf1VEvQImvcrLa73nEfYHwYBE7WO57KCCz2EWUPUB9grXBB6JCzKjejV
ozmcMczr4Drh1b/Px4d7YP9HOdejRNYIJlvPWlTsiNOOD3k8yKNPpsKOJ/DeEq5e
Ga3nIlaKWDLg+QbQqSq0NZsMhiZRAJRHUPylxCVh+VjwRXAuSXZ/EdZvtfkpBeEN
w05YH68d7DfQSvkGBoHT26CWuA6RMHnmUN+IuAupXNQH9MmozH2Pk2MJZAAFKmhm
Q7uiu/6VrvnEpQqIYkh4JXwqPxFkptMiIEedMtby48ikYXTngsJEuqDRXV+88UQO
g08cUIXE6eds/Oa4VeGiGoC3kESnhCKXRyLeqzg3z7XyHD5CcLt1tmUoa8t/gjWq
9vMgeChzB5YwcKUqcVyheaQWuUY9XrQASYWJ0w7fga5YjVjW4cVEeC4cILuiR5e/
dhQ7qSiPnwt10qE87SvHjpCheqKZMGL8hR01czvztVkiG80IsQyddWrbhTsOh58y
T5IAAQFMSWiCgEFs+f1xvYv0eApgo56xUh3AiuOexb8rGWqYp7HeFVCfqpQlj6mA
gqdyuklkCSdhK268IygzXZ5u8Lm9IDKM3aALmbu0hAQkdSmW96elF7hRBet0rVF5
lvy7+98JLQiSRM7A0rMYxxQivyHx
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 70774628664842725 (0xfb712658ad99e5)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: CN = CAEDICOM Root, O = EDICOM, C = ES
#        Validity
#            Not Before: May 21 11:06:35 2014 GMT
#            Not After : May 21 10:20:00 2034 GMT
#        Subject: CN = CAEDICOM Root, O = EDICOM, C = ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:db:80:ca:e8:49:74:c7:d3:38:2e:f1:c5:23:62:
#                    fc:36:8c:2f:1e:7e:39:0b:e9:06:f4:55:9b:a5:98:
#                    29:94:ed:86:47:32:83:f3:c5:92:7a:05:d7:29:02:
#                    3e:16:c3:28:7f:35:64:29:7a:79:bb:a1:e2:1e:61:
#                    14:8d:e7:00:d0:dc:a2:54:65:8a:df:69:b9:71:47:
#                    7f:38:38:16:46:a7:69:31:11:35:4c:e1:2a:7f:ff:
#                    6d:4f:95:3d:e3:5d:48:4d:19:53:08:5a:6b:21:d5:
#                    12:30:69:97:90:af:2d:c1:f5:7f:41:5f:49:36:8f:
#                    4d:b8:1e:1a:95:5f:da:0f:6f:5c:15:35:c4:11:bc:
#                    5f:85:9b:bd:ad:3b:55:5e:bb:df:ce:bb:af:5c:99:
#                    60:dd:1f:69:1a:49:48:21:f9:09:0a:cf:72:a7:f0:
#                    f2:de:e5:78:19:be:12:dd:cd:87:79:41:ce:2f:45:
#                    d7:0b:91:10:11:04:1e:12:9d:f2:38:03:5f:16:69:
#                    ae:a0:0a:da:c0:f9:eb:a0:0d:18:0f:79:5e:91:9d:
#                    e4:1f:14:9c:34:13:19:02:44:ba:51:c3:ee:79:b2:
#                    60:14:a3:af:bc:48:2d:28:38:68:01:43:64:ca:0e:
#                    86:83:62:d0:8a:19:a6:27:f1:2b:7b:4b:29:21:5b:
#                    9a:cc:68:42:10:c8:4b:4f:0f:23:b2:88:7c:c4:5c:
#                    6e:17:70:c5:77:af:95:c0:25:a4:22:0a:d3:7c:f9:
#                    d8:72:c8:d0:2d:bd:a7:e8:d2:2d:8b:4c:a1:6e:0a:
#                    fc:b4:40:33:bb:9a:6b:fc:a4:ea:c9:fe:e0:34:88:
#                    43:cc:c6:bc:3f:75:d2:a5:a9:af:fa:97:b9:3e:b7:
#                    ce:54:a0:4d:c0:5d:2e:c1:28:d8:63:54:72:b8:ac:
#                    5a:f5:3a:fb:20:61:06:3a:f4:a0:2b:38:ab:cc:83:
#                    0c:49:d4:6e:3e:6d:0f:3e:73:2f:36:e6:f3:4f:b3:
#                    c0:00:d1:45:49:5b:8c:f6:a3:98:1d:84:7f:99:0a:
#                    c3:ea:0a:3c:c3:d3:24:78:48:67:f5:1b:3b:0e:1d:
#                    0e:43:b1:04:75:c1:a0:39:76:8b:f6:d9:02:a5:1d:
#                    e1:9e:5b:07:bb:36:57:4a:21:4d:f9:89:69:b4:6c:
#                    0f:d7:af:a0:15:24:99:e7:f8:d7:53:94:ec:12:bf:
#                    a4:a5:d7:ed:ee:8e:35:77:77:dc:a6:7f:20:54:92:
#                    d6:63:d6:72:9e:4d:2a:b6:8f:73:f3:19:a1:c4:b0:
#                    1f:e6:34:a3:0b:00:3e:97:49:27:61:aa:aa:04:41:
#                    33:38:b5:50:51:cc:36:15:db:1f:ff:bd:ca:48:83:
#                    48:a7:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                14:CD:2A:59:78:63:AB:61:19:E8:B8:3D:A1:E0:5A:C0:75:E7:F9:CB
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:14:CD:2A:59:78:63:AB:61:19:E8:B8:3D:A1:E0:5A:C0:75:E7:F9:CB
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         3d:09:19:00:b6:91:02:6c:ec:0e:f7:e1:e2:62:b0:bf:33:0d:
#         fd:55:12:f4:08:9a:f7:2b:2d:ae:f7:9c:47:d8:1f:06:01:13:
#         b5:8e:e7:b2:82:0b:3d:84:59:43:d4:07:d8:2b:5c:10:7a:24:
#         2c:ca:8d:e8:d5:a3:39:9c:31:cc:eb:e0:3a:e1:d5:bf:cf:c7:
#         87:7b:60:ff:47:39:d7:a3:44:d6:08:26:5b:cf:5a:54:ec:88:
#         d3:8e:0f:79:3c:c8:a3:4f:a6:c2:8e:27:f0:de:12:ae:5e:19:
#         ad:e7:22:56:8a:58:32:e0:f9:06:d0:a9:2a:b4:35:9b:0c:86:
#         26:51:00:94:47:50:fc:a5:c4:25:61:f9:58:f0:45:70:2e:49:
#         76:7f:11:d6:6f:b5:f9:29:05:e1:0d:c3:4e:58:1f:af:1d:ec:
#         37:d0:4a:f9:06:06:81:d3:db:a0:96:b8:0e:91:30:79:e6:50:
#         df:88:b8:0b:a9:5c:d4:07:f4:c9:a8:cc:7d:8f:93:63:09:64:
#         00:05:2a:68:66:43:bb:a2:bb:fe:95:ae:f9:c4:a5:0a:88:62:
#         48:78:25:7c:2a:3f:11:64:a6:d3:22:20:47:9d:32:d6:f2:e3:
#         c8:a4:61:74:e7:82:c2:44:ba:a0:d1:5d:5f:bc:f1:44:0e:83:
#         4f:1c:50:85:c4:e9:e7:6c:fc:e6:b8:55:e1:a2:1a:80:b7:90:
#         44:a7:84:22:97:47:22:de:ab:38:37:cf:b5:f2:1c:3e:42:70:
#         bb:75:b6:65:28:6b:cb:7f:82:35:aa:f6:f3:20:78:28:73:07:
#         96:30:70:a5:2a:71:5c:a1:79:a4:16:b9:46:3d:5e:b4:00:49:
#         85:89:d3:0e:df:81:ae:58:8d:58:d6:e1:c5:44:78:2e:1c:20:
#         bb:a2:47:97:bf:76:14:3b:a9:28:8f:9f:0b:75:d2:a1:3c:ed:
#         2b:c7:8e:90:a1:7a:a2:99:30:62:fc:85:1d:35:73:3b:f3:b5:
#         59:22:1b:cd:08:b1:0c:9d:75:6a:db:85:3b:0e:87:9f:32:4f:
#         92:00:01:01:4c:49:68:82:80:41:6c:f9:fd:71:bd:8b:f4:78:
#         0a:60:a3:9e:b1:52:1d:c0:8a:e3:9e:c5:bf:2b:19:6a:98:a7:
#         b1:de:15:50:9f:aa:94:25:8f:a9:80:82:a7:72:ba:49:64:09:
#         27:61:2b:6e:bc:23:28:33:5d:9e:6e:f0:b9:bd:20:32:8c:dd:
#         a0:0b:99:bb:b4:84:04:24:75:29:96:f7:a7:a5:17:b8:51:05:
#         eb:74:ad:51:79:96:fc:bb:fb:df:09:2d:08:92:44:ce:c0:d2:
#         b3:18:c7:14:22:bf:21:f1

[p11-kit-object-v1]
label: "CA Disig"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkvYxwX2I/ZkBqdh78nF1
8THG83Vm+lEoRoSXeDS8bPy8RVmIJhhKxDcfoUpEveNxBPVEF+I//EhYb1yeegm6
UTciI2ZDIbA8ZKL4ahUOP+tR4VSp3QaZ15o8VIs5Az8Pxc7G64NyAqgfcfMt+HUI
22JM6PrO+edqH7ZrNYK64o8Wkn0FDGxGA13A7Wm/OsGKoOiO2blFKIcI7LTKFb6C
3bVEiy2thgxoYm2FVvKsFGM6xtGZrDR4VkvPtq0/jIrXBOXjeEz1hqr1j/o9bHGj
Lcpn62h7bjOpDIIoqExqIUAVIAwmW4PCqRYVwCSCXSsWrcpj9nQAsN9DxBBgVmdj
RQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA Disig"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SK, L = Bratislava, O = Disig a.s., CN = CA Disig
#        Validity
#            Not Before: Mar 22 01:39:34 2006 GMT
#            Not After : Mar 22 01:39:34 2016 GMT
#        Subject: C = SK, L = Bratislava, O = Disig a.s., CN = CA Disig
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:92:f6:31:c1:7d:88:fd:99:01:a9:d8:7b:f2:71:
#                    75:f1:31:c6:f3:75:66:fa:51:28:46:84:97:78:34:
#                    bc:6c:fc:bc:45:59:88:26:18:4a:c4:37:1f:a1:4a:
#                    44:bd:e3:71:04:f5:44:17:e2:3f:fc:48:58:6f:5c:
#                    9e:7a:09:ba:51:37:22:23:66:43:21:b0:3c:64:a2:
#                    f8:6a:15:0e:3f:eb:51:e1:54:a9:dd:06:99:d7:9a:
#                    3c:54:8b:39:03:3f:0f:c5:ce:c6:eb:83:72:02:a8:
#                    1f:71:f3:2d:f8:75:08:db:62:4c:e8:fa:ce:f9:e7:
#                    6a:1f:b6:6b:35:82:ba:e2:8f:16:92:7d:05:0c:6c:
#                    46:03:5d:c0:ed:69:bf:3a:c1:8a:a0:e8:8e:d9:b9:
#                    45:28:87:08:ec:b4:ca:15:be:82:dd:b5:44:8b:2d:
#                    ad:86:0c:68:62:6d:85:56:f2:ac:14:63:3a:c6:d1:
#                    99:ac:34:78:56:4b:cf:b6:ad:3f:8c:8a:d7:04:e5:
#                    e3:78:4c:f5:86:aa:f5:8f:fa:3d:6c:71:a3:2d:ca:
#                    67:eb:68:7b:6e:33:a9:0c:82:28:a8:4c:6a:21:40:
#                    15:20:0c:26:5b:83:c2:a9:16:15:c0:24:82:5d:2b:
#                    16:ad:ca:63:f6:74:00:b0:df:43:c4:10:60:56:67:
#                    63:45
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8D:B2:49:68:9D:72:08:25:B9:C0:27:F5:50:93:56:48:46:71:F9:8F
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:caoperator@disig.sk, URI:http://www.disig.sk/ca
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.disig.sk/ca/crl/ca_disig.crl
#
#                Full Name:
#                  URI:http://ca.disig.sk/ca/crl/ca_disig.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.158.35975946.0.0.0.1.1.1
#
#    Signature Algorithm: sha1WithRSAEncryption
#         5d:34:74:61:4c:af:3b:d8:ff:9f:6d:58:36:1c:3d:0b:81:0d:
#         12:2b:46:10:80:fd:e7:3c:27:d0:7a:c8:a9:b6:7e:74:30:33:
#         a3:3a:8a:7b:74:c0:79:79:42:93:6d:ff:b1:29:14:82:ab:21:
#         8c:2f:17:f9:3f:26:2f:f5:59:c6:ef:80:06:b7:9a:49:29:ec:
#         ce:7e:71:3c:6a:10:41:c0:f6:d3:9a:b2:7c:5a:91:9c:c0:ac:
#         5b:c8:4d:5e:f7:e1:53:ff:43:77:fc:9e:4b:67:6c:d7:f3:83:
#         d1:a0:e0:7f:25:df:b8:98:0b:9a:32:38:6c:30:a0:f3:ff:08:
#         15:33:f7:50:4a:7b:3e:a3:3e:20:a9:dc:2f:56:80:0a:ed:41:
#         50:b0:c9:f4:ec:b2:e3:26:44:00:0e:6f:9e:06:bc:22:96:53:
#         70:65:c4:50:0a:46:6b:a4:2f:27:81:12:27:13:5f:10:a1:76:
#         ce:8a:7b:37:ea:c3:39:61:03:95:98:3a:e7:6c:88:25:08:fc:
#         79:68:0d:87:7d:62:f8:b4:5f:fb:c5:d8:4c:bd:58:bc:3f:43:
#         5b:d4:1e:01:4d:3c:63:be:23:ef:8c:cd:5a:50:b8:68:54:f9:
#         0a:99:33:11:00:e1:9e:c2:46:77:82:f5:59:06:8c:21:4c:87:
#         09:cd:e5:a8

[p11-kit-object-v1]
label: "CA Disig Root R1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA Disig Root R1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c3:03:9a:ee:50:90:6e:28
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SK, L = Bratislava, O = Disig a.s., CN = CA Disig Root R1
#        Validity
#            Not Before: Jul 19 09:06:56 2012 GMT
#            Not After : Jul 19 09:06:56 2042 GMT
#        Subject: C = SK, L = Bratislava, O = Disig a.s., CN = CA Disig Root R1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:c3:78:f7:dc:98:a3:a7:5a:5e:77:18:b2:dd:
#                    04:64:0f:63:fd:9b:96:09:80:d5:e8:aa:a5:e2:9c:
#                    26:94:3a:e8:99:73:8c:9d:df:d7:df:83:f3:78:4f:
#                    40:e1:7f:d2:a7:d2:e5:ca:13:93:e7:ed:c6:77:5f:
#                    36:b5:94:af:e8:38:8e:db:9b:e5:7c:bb:cc:8d:eb:
#                    75:73:e1:24:cd:e6:a7:2d:19:2e:d8:d6:8a:6b:14:
#                    eb:08:62:0a:d8:dc:b3:00:4d:c3:23:7c:5f:43:08:
#                    23:32:12:dc:ed:0c:ad:c0:7d:0f:a5:7a:42:d9:5a:
#                    70:d9:bf:a7:d7:01:1c:f6:9b:ab:8e:b7:4a:86:78:
#                    a0:1e:56:31:ae:ef:82:0a:80:41:f7:1b:c9:ae:ab:
#                    32:26:d4:2c:6b:ed:7d:6b:e4:e2:5e:22:0a:45:cb:
#                    84:31:4d:ac:fe:db:d1:47:ba:f9:60:97:39:b1:65:
#                    c7:de:fb:99:e4:0a:22:b1:2d:4d:e5:48:26:69:ab:
#                    e2:aa:f3:fb:fc:92:29:32:e9:b3:3e:4d:1f:27:a1:
#                    cd:8e:b9:17:fb:25:3e:c9:6e:f3:77:da:0d:12:f6:
#                    5d:c7:bb:36:10:d5:54:d6:f3:e0:e2:47:48:e6:de:
#                    14:da:61:52:af:26:b4:f5:71:4f:c9:d7:d2:06:df:
#                    63:ca:ff:21:e8:59:06:e0:08:d5:84:15:53:f7:43:
#                    e5:7c:c5:a0:89:98:6b:73:c6:68:ce:65:de:bd:7f:
#                    05:f7:b1:ee:f6:57:a1:60:95:c5:cc:ea:93:3a:be:
#                    99:ae:9b:02:a3:ad:c9:16:b5:ce:dd:5e:99:78:7e:
#                    1a:39:7e:b2:c0:05:a4:c0:82:a5:a3:47:9e:8c:ea:
#                    5c:b6:bc:67:db:e6:2a:4d:d2:04:dc:a3:ae:45:f7:
#                    bc:8b:9c:1c:a7:d6:d5:03:dc:08:cb:2e:16:ca:5c:
#                    40:33:e8:67:c3:2e:e7:a6:44:ea:11:45:1c:35:65:
#                    2d:1e:45:61:24:1b:82:2e:a5:9d:33:5d:65:f8:41:
#                    f9:2e:cb:94:3f:1f:a3:0c:31:24:44:ed:c7:5e:ad:
#                    50:ba:c6:41:9b:ac:f0:17:65:c0:f8:5d:6f:5b:a0:
#                    0a:34:3c:ee:d7:ea:88:9f:98:f9:af:4e:24:fa:97:
#                    b2:64:76:da:ab:f4:ed:e3:c3:60:ef:d5:f9:02:c8:
#                    2d:9f:83:af:67:69:06:a7:31:55:d5:cf:4b:6f:ff:
#                    04:05:c7:58:ac:5f:16:1b:e5:d2:a3:eb:31:db:1f:
#                    33:15:4d:d0:f2:a5:53:f5:cb:e1:3d:4e:68:2d:d8:
#                    12:dd:aa:f2:e6:4d:9b:49:e5:c5:28:a1:ba:b0:5a:
#                    c6:a0:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                89:0A:B4:38:93:1A:E6:AB:EE:9B:91:18:F9:F5:3C:3E:35:D0:D3:82
#    Signature Algorithm: sha1WithRSAEncryption
#         32:8b:f6:9d:4a:c9:be:14:e5:8c:ac:38:ca:3a:09:d4:1b:ce:
#         86:b3:dd:eb:d4:ba:28:be:12:ae:45:2c:04:74:ac:13:51:c5:
#         58:18:66:4d:82:da:d5:dc:93:c0:27:e1:be:7c:9f:52:9e:12:
#         56:f6:d5:9c:a9:f4:75:9c:fa:37:12:8f:1c:93:ec:57:fe:07:
#         0f:ab:d5:12:f7:0f:ae:61:5e:56:80:49:f5:fc:30:f5:9b:4f:
#         1f:41:2f:1c:84:d3:89:c7:e2:da:02:76:ed:09:cf:6c:c1:b8:
#         1c:83:1c:16:fa:94:cd:7d:a0:c8:18:d2:c8:9d:6e:f5:bd:69:
#         d4:6d:3d:35:e8:1e:a2:4f:60:d7:07:29:fc:b2:a3:a4:9d:6e:
#         15:92:56:19:4c:0a:b0:e9:7c:d2:19:4d:42:46:ec:bd:fd:f6:
#         57:5b:dd:98:7e:a4:4d:cc:72:03:83:58:5d:ef:93:3a:41:7a:
#         63:aa:7c:3a:a8:f5:ac:a4:d1:dd:a2:2d:b6:2a:fc:9f:01:8e:
#         e2:10:b1:c4:ca:e4:67:db:55:25:19:3f:fd:e8:36:7e:b3:e1:
#         e1:81:af:11:16:8b:50:97:60:19:82:00:c0:6b:4d:73:b8:d1:
#         13:07:3e:ea:b6:31:4f:f0:42:9a:6d:e2:11:74:e5:94:ac:8d:
#         84:95:3c:21:af:c5:da:47:c8:df:39:62:62:cb:5b:50:0b:d7:
#         81:40:05:9c:9b:ed:ba:b6:8b:1e:04:6f:96:20:39:ed:a4:7d:
#         29:db:48:ce:82:dc:d4:02:8d:1d:04:31:5a:c7:4b:f0:6c:61:
#         52:d7:b4:51:c2:81:6c:cd:e1:fb:a7:a1:d2:92:76:cf:b1:0f:
#         37:58:a4:f2:52:71:67:3f:0c:88:78:80:89:c1:c8:b5:1f:92:
#         63:be:a7:7a:8a:56:2c:1a:a8:a6:9c:b5:5d:b3:63:d0:13:20:
#         a1:eb:91:6c:d0:8d:7d:af:df:0b:e4:17:b9:86:9e:38:b1:94:
#         0c:58:8c:e0:55:aa:3b:63:6d:9a:89:60:b8:64:2a:92:c6:37:
#         f4:7e:43:43:b7:73:e8:01:e7:7f:97:0f:d7:f2:7b:19:fd:1a:
#         d7:8f:c9:fa:85:6b:7a:9d:9e:89:b6:a6:28:99:93:88:40:f7:
#         3e:cd:51:a3:ca:ea:ef:79:47:21:b5:fe:32:e2:c7:c3:51:6f:
#         be:80:74:f0:a4:c3:3a:f2:4f:e9:5f:df:19:0a:f2:3b:13:43:
#         ac:31:a4:b3:e7:eb:fc:18:d6:01:a9:f3:2a:8f:36:0e:eb:b4:
#         b1:bc:b7:4c:c9:6b:bf:a1:f3:d9:f4:ed:e2:f0:e3:ed:64:9e:
#         3d:2f:96:52:4f:80:53:8b

[p11-kit-object-v1]
label: "CA Disig Root R2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA Disig Root R2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            92:b8:88:db:b0:8a:c1:63
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = SK, L = Bratislava, O = Disig a.s., CN = CA Disig Root R2
#        Validity
#            Not Before: Jul 19 09:15:30 2012 GMT
#            Not After : Jul 19 09:15:30 2042 GMT
#        Subject: C = SK, L = Bratislava, O = Disig a.s., CN = CA Disig Root R2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a2:a3:c4:00:09:d6:85:5d:2d:6d:14:f6:c2:c3:
#                    73:9e:35:c2:71:55:7e:81:fb:ab:46:50:e0:c1:7c:
#                    49:78:e6:ab:79:58:3c:da:ff:7c:1c:9f:d8:97:02:
#                    78:3e:6b:41:04:e9:41:bd:be:03:2c:45:f6:2f:64:
#                    d4:ab:5d:a3:47:3d:64:9b:e9:68:9a:c6:cc:1b:3f:
#                    ba:be:b2:8b:34:02:2e:98:55:19:fc:8c:6f:aa:5f:
#                    da:4c:ce:4d:03:21:a3:d8:d2:34:93:56:96:cb:4c:
#                    0c:00:16:3c:5f:1a:cd:c8:c7:6c:a6:ad:d3:31:a7:
#                    bc:e8:e5:e1:66:d6:d2:fb:03:b4:41:65:c9:10:ae:
#                    0e:05:63:c6:80:6a:69:30:fd:d2:ee:90:ef:0d:27:
#                    df:9f:95:73:f4:e1:25:da:6c:16:de:41:38:34:ea:
#                    8b:fc:d1:e8:04:14:61:2d:41:7e:ac:c7:77:4e:cb:
#                    51:54:fb:5e:92:18:1b:04:5a:68:c6:c9:c4:fa:b7:
#                    13:a0:98:b7:11:2b:b7:d6:57:cc:7c:9e:17:d1:cb:
#                    25:fe:86:4e:24:2e:56:0c:78:4d:9e:01:12:a6:2b:
#                    a7:01:65:6e:7c:62:1d:84:84:df:ea:c0:6b:b5:a5:
#                    2a:95:83:c3:53:11:0c:73:1d:0b:b2:46:90:d1:42:
#                    3a:ce:40:6e:95:ad:ff:c6:94:ad:6e:97:84:8e:7d:
#                    6f:9e:8a:80:0d:49:6d:73:e2:7b:92:1e:c3:f3:c1:
#                    f3:eb:2e:05:6f:d9:1b:cf:37:76:04:c8:b4:5a:e4:
#                    17:a7:cb:dd:76:1f:d0:19:76:e8:2c:05:b3:d6:9c:
#                    34:d8:96:dc:61:87:91:05:e4:44:08:33:c1:da:b9:
#                    08:65:d4:ae:b2:36:0d:eb:ba:38:ba:0c:e5:9b:9e:
#                    eb:8d:66:dd:99:cf:d6:89:41:f6:04:92:8a:29:29:
#                    6d:6b:3a:1c:e7:75:7d:02:71:0e:f3:c0:e7:bd:cb:
#                    19:dd:9d:60:b2:c2:66:60:b6:b1:04:ee:c9:e6:86:
#                    b9:9a:66:40:a8:e7:11:ed:81:45:03:8b:f6:67:59:
#                    e8:c1:06:11:bd:dd:cf:80:02:4f:65:40:78:5c:47:
#                    50:c8:9b:e6:1f:81:7b:e4:44:a8:5b:85:9a:e2:de:
#                    5a:d5:c7:f9:3a:44:66:4b:e4:32:54:7c:e4:6c:9c:
#                    b3:0e:3d:17:a2:b2:34:12:d6:7e:b2:a8:49:bb:d1:
#                    7a:28:40:be:a2:16:1f:df:e4:37:1f:11:73:fb:90:
#                    0a:65:43:a2:0d:7c:f8:06:01:55:33:7d:b0:0d:b8:
#                    f4:f5:ae:a5:42:57:7c:36:11:8c:7b:5e:c4:03:9d:
#                    8c:79:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B5:99:F8:AF:B0:94:F5:E3:20:D6:0A:AD:CE:4E:56:A4:2E:6E:42:ED
#    Signature Algorithm: sha256WithRSAEncryption
#         26:06:5e:70:e7:65:33:c8:82:6e:d9:9c:17:3a:1b:7a:66:b2:
#         01:f6:78:3b:69:5e:2f:ea:ff:4e:f9:28:c3:98:2a:61:4c:b4:
#         24:12:8a:7d:6d:11:14:f7:9c:b5:ca:e6:bc:9e:27:8e:4c:19:
#         c8:a9:bd:7a:c0:d7:36:0e:6d:85:72:6e:a8:c6:a2:6d:f6:fa:
#         73:63:7f:bc:6e:79:08:1c:9d:8a:9f:1a:8a:53:a6:d8:bb:d9:
#         35:55:b1:11:c5:a9:03:b3:56:3b:b9:84:93:22:5e:7e:c1:f6:
#         12:52:8b:ea:2c:67:bc:fe:36:4c:f5:b8:cf:d1:b3:49:92:3b:
#         d3:29:0e:99:1b:96:f7:61:b8:3b:c4:2b:b6:78:6c:b4:23:6f:
#         f0:fd:d3:b2:5e:75:1f:99:95:a8:ac:f6:da:e1:c5:31:7b:fb:
#         d1:46:b3:d2:bc:67:b4:62:54:ba:09:f7:63:b0:93:a2:9a:f9:
#         e9:52:2e:8b:60:12:ab:fc:f5:60:56:ef:10:5c:8b:c4:1a:42:
#         dc:83:5b:64:0e:cb:b5:bc:d6:4f:c1:7c:3c:6e:8d:13:6d:fb:
#         7b:eb:30:d0:dc:4d:af:c5:d5:b6:a5:4c:5b:71:c9:e8:31:be:
#         e8:38:06:48:a1:1a:e2:ea:d2:de:12:39:58:1a:ff:80:0e:82:
#         75:e6:b7:c9:07:6c:0e:ef:ff:38:f1:98:71:c4:b7:7f:0e:15:
#         d0:25:69:bd:22:9d:2b:ed:05:f6:46:47:ac:ed:c0:f0:d4:3b:
#         e2:ec:ee:96:5b:90:13:4e:1e:56:3a:eb:b0:ef:96:bb:96:23:
#         11:ba:f2:43:86:74:64:95:c8:28:75:df:1d:35:ba:d2:37:83:
#         38:53:38:36:3b:cf:6c:e9:f9:6b:0e:d0:fb:04:e8:4f:77:d7:
#         65:01:78:86:0c:7a:3e:21:62:f1:7f:63:71:0c:c9:9f:44:db:
#         a8:27:a2:75:be:6e:81:3e:d7:c0:eb:1b:98:0f:70:5c:34:b2:
#         8a:cc:c0:85:18:eb:6e:7a:b3:f7:5a:a1:07:bf:a9:42:92:f3:
#         60:22:97:e4:14:a1:07:9b:4e:76:c0:8e:7d:fd:a4:25:c7:47:
#         ed:ff:1f:73:ac:cc:c3:a5:e9:6f:0a:8e:9b:65:c2:50:85:b5:
#         a3:a0:53:12:cc:55:87:61:f3:81:ae:10:46:61:bd:44:21:b8:
#         c2:3d:74:cf:7e:24:35:fa:1c:07:0e:9b:3d:22:ca:ef:31:2f:
#         8c:ac:12:bd:ef:40:28:fc:29:67:9f:b2:13:4f:66:24:c4:53:
#         19:e9:1e:29:15:ef:e6:6d:b0:7f:2d:67:fd:f3:6c:1b:75:46:
#         a3:e5:4a:17:e9:a4:d7:0b

[p11-kit-object-v1]
label: "CA WoSign ECC Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE4f2OuEMkq5Z7hcK6C62N4DrjJLnSsb6I
Osq/Srj57ywvr1FQPEd1bPiUt5v8KB7FVMxjnRZLU8HnIKvNrCXSf4/CwVqCXjCL
elTOA7WRf6qU0NGKSMyCBSah1VES1ns2
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA WoSign ECC Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            68:4a:58:70:80:6b:f0:8f:02:fa:f6:de:e8:b0:90:90
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = CN, O = WoSign CA Limited, CN = CA WoSign ECC Root
#        Validity
#            Not Before: Nov  8 00:58:58 2014 GMT
#            Not After : Nov  8 00:58:58 2044 GMT
#        Subject: C = CN, O = WoSign CA Limited, CN = CA WoSign ECC Root
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:e1:fd:8e:b8:43:24:ab:96:7b:85:c2:ba:0b:ad:
#                    8d:e0:3a:e3:24:b9:d2:b1:be:88:3a:ca:bf:4a:b8:
#                    f9:ef:2c:2f:af:51:50:3c:47:75:6c:f8:94:b7:9b:
#                    fc:28:1e:c5:54:cc:63:9d:16:4b:53:c1:e7:20:ab:
#                    cd:ac:25:d2:7f:8f:c2:c1:5a:82:5e:30:8b:7a:54:
#                    ce:03:b5:91:7f:aa:94:d0:d1:8a:48:cc:82:05:26:
#                    a1:d5:51:12:d6:7b:36
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AA:FD:D5:5A:A3:F6:87:8B:32:85:FD:D1:32:5B:80:45:93:F3:03:B8
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:e4:a4:84:b0:81:d5:3d:b0:74:ac:94:a4:e8:
#         0e:3d:00:74:4c:a1:97:6b:f9:0d:51:3c:a1:d9:3b:f4:0d:ab:
#         a9:9f:be:4e:72:ca:85:d4:d9:ec:b5:32:45:18:6f:ab:ad:02:
#         30:7d:c7:f7:69:63:2f:a1:e1:98:ef:13:10:d1:79:3f:d1:fe:
#         ea:3b:7f:de:56:f4:90:b1:15:11:d8:b2:22:15:d0:2f:c3:26:
#         2e:6b:f1:91:b2:90:65:f4:9a:e6:90:ee:4a

[p11-kit-object-v1]
label: "CA 沃通根证书"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA 沃通根证书"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            50:70:6b:cd:d8:13:fc:1b:4e:3b:33:72:d2:11:48:8d
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = WoSign CA Limited, CN = CA \E6\B2\83\E9\80\9A\E6\A0\B9\E8\AF\81\E4\B9\A6
#        Validity
#            Not Before: Aug  8 01:00:01 2009 GMT
#            Not After : Aug  8 01:00:01 2039 GMT
#        Subject: C = CN, O = WoSign CA Limited, CN = CA \E6\B2\83\E9\80\9A\E6\A0\B9\E8\AF\81\E4\B9\A6
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d0:49:21:1e:25:fc:87:c1:2a:c2:ac:db:76:86:
#                    06:4e:e7:d0:74:34:dc:ed:65:35:fc:50:d6:88:3f:
#                    a4:f0:7f:eb:0f:5f:79:2f:89:b1:fd:bc:63:58:37:
#                    93:9b:38:f8:b7:5b:a9:fa:d8:71:c7:b4:bc:80:97:
#                    8d:6c:4b:f1:50:d5:2a:29:aa:a8:19:7a:96:e6:95:
#                    8e:74:ed:97:0a:57:75:f4:05:db:6d:0b:39:b9:01:
#                    7f:aa:f6:d6:da:6c:e6:05:e0:a4:4d:52:fc:db:d0:
#                    74:b7:11:8c:7b:8d:4f:ff:87:83:ae:ff:05:03:13:
#                    57:50:37:fe:8c:96:52:10:4c:5f:bf:94:71:69:d9:
#                    96:3e:0c:43:4f:be:30:c0:9f:39:74:4f:06:45:5d:
#                    a3:d6:56:39:68:07:cc:87:4f:50:77:93:71:d9:44:
#                    08:b1:8a:34:e9:89:ac:db:9b:4e:e1:d9:e4:52:45:
#                    8c:2e:14:1f:91:6b:19:1d:68:29:2c:56:c4:e2:1e:
#                    13:57:64:f0:61:e3:b9:11:df:b0:e1:57:a0:1b:ad:
#                    d7:5f:d1:af:db:2b:2d:3f:d0:68:8e:0f:ea:9f:0f:
#                    8b:35:58:1b:13:1c:f4:de:35:a1:0a:5d:d6:ea:df:
#                    12:6f:c0:fb:69:07:46:72:dc:81:f6:04:23:17:e0:
#                    4d:75:e1:72:6f:b0:28:eb:9b:e1:e1:83:a1:9f:4a:
#                    5d:af:cc:9b:fa:02:20:b6:18:62:77:91:3b:a3:d5:
#                    65:ad:dc:7c:90:77:1c:44:41:a4:4a:8b:eb:95:72:
#                    e9:f6:09:64:dc:a8:2d:9f:74:78:e8:c1:a2:09:63:
#                    9c:ef:a0:db:4f:9d:95:ab:20:4f:b7:b0:f7:87:5c:
#                    a6:a0:e4:37:38:c7:5c:e3:35:0f:2c:ad:a3:80:a2:
#                    ec:2e:5d:c0:cf:ed:8b:05:c2:e6:73:6e:f6:89:d5:
#                    f5:d2:46:8e:ea:6d:63:1b:1e:8a:c9:7d:a6:f8:9c:
#                    eb:e5:d5:63:85:4d:73:66:69:11:fe:c8:0e:f4:c1:
#                    c7:66:49:53:7e:e4:19:6b:f1:e9:7a:59:a3:6d:7e:
#                    c5:17:e6:27:c6:ef:1b:db:6f:fc:0d:4d:06:01:b4:
#                    0e:5c:30:46:55:60:af:38:65:3a:ca:47:ba:ac:2c:
#                    cc:46:1f:b2:46:96:3f:f3:ed:26:05:ee:77:a1:6a:
#                    6b:7e:2d:6d:58:5c:4a:d4:8e:67:b8:f1:da:d5:46:
#                    8a:27:f9:11:f2:c9:42:fe:4e:de:df:1f:5c:c4:a4:
#                    86:87:16:33:a1:a7:17:18:a5:0d:e4:05:e5:2b:c2:
#                    2b:0b:a2:95:90:b9:fd:60:3c:4e:89:3e:e7:9c:ee:
#                    1f:bb:01
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E0:4D:BF:DC:9B:41:5D:13:E8:64:F0:A7:E9:15:A4:E1:81:C1:BA:31
#    Signature Algorithm: sha256WithRSAEncryption
#         6a:8a:70:38:59:b6:da:8b:18:c8:be:2a:d3:b6:19:d5:66:29:
#         7a:5d:cd:5b:2f:73:1c:26:4e:a3:7d:6f:ab:b7:29:4d:a6:e9:
#         a5:11:83:a7:39:73:af:10:44:92:e6:25:5d:4f:61:fa:c8:06:
#         be:4e:4b:ef:fe:f3:31:fe:c6:7c:70:0a:41:58:da:e8:99:4b:
#         96:c9:78:bc:98:7c:02:29:ed:09:80:e6:0a:3a:82:02:2a:e2:
#         c9:2f:c8:56:19:26:ee:78:1c:23:fd:f7:93:65:4e:e7:f3:98:
#         98:af:cd:dd:d9:9e:40:88:31:28:3a:ab:2e:0b:b0:ac:0c:24:
#         fa:7a:26:98:f3:12:61:10:f4:5d:17:f7:7e:e2:78:97:54:e2:
#         8c:e8:29:ba:8c:10:32:bd:dd:33:6b:38:86:7e:39:3d:0e:03:
#         72:a7:5d:79:8f:45:8a:59:ae:5b:21:6e:31:46:d5:59:8d:cf:
#         15:5f:dd:31:25:cf:db:60:d6:81:44:72:29:02:57:f6:96:d4:
#         d6:ff:ea:29:db:39:c5:b8:2c:8a:1a:8d:ce:cb:e7:42:31:86:
#         05:68:0e:9e:14:dd:00:90:ba:69:45:08:db:6e:90:81:86:a7:
#         2a:05:3f:e6:84:39:f8:b7:f9:57:5f:4c:a4:79:5a:10:0c:5e:
#         d5:6b:ff:35:5f:05:51:1e:6c:a3:75:a9:cf:50:83:d3:7c:f4:
#         66:f7:82:8d:3d:0c:7d:e8:df:7b:a8:0e:1b:2c:9c:ae:40:70:
#         87:da:ed:a7:16:82:5a:be:35:6c:20:4e:22:61:d9:bc:51:7a:
#         cd:7a:61:dc:4b:11:f9:fe:67:34:cf:2e:04:66:61:5c:57:97:
#         23:8c:f3:86:1b:48:df:2a:af:a7:c1:ff:d8:8e:3e:03:bb:d8:
#         2a:b0:fa:14:25:b2:51:6b:86:43:85:2e:07:23:16:80:8d:4c:
#         fb:b4:63:3b:cc:c3:74:ed:1b:a3:1e:fe:35:0f:5f:7c:1d:16:
#         86:f5:0e:c3:95:f1:2f:af:5d:25:3b:51:e6:d7:76:41:38:d1:
#         4b:03:39:28:a5:1e:91:72:d4:7d:ab:97:33:c4:d3:3e:e0:69:
#         b6:28:79:a0:09:8d:1c:d1:ff:41:72:48:06:fc:9a:2e:e7:20:
#         f9:9b:a2:de:89:ed:ae:3c:09:af:ca:57:b3:92:89:70:40:e4:
#         2f:4f:c2:70:83:40:d7:24:2c:6b:e7:09:1f:d3:d5:c7:c1:08:
#         f4:db:0e:3b:1c:07:0b:43:11:84:21:86:e9:80:d4:75:d8:ab:
#         f1:02:62:c1:b1:7e:55:61:cf:13:d7:26:b0:d7:9c:cb:29:8b:
#         38:4a:0b:0e:90:8d:ba:a1

[p11-kit-object-v1]
label: "CCA India 2007"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA34/Hykqc0kfijjKCnlHp
CAl3/Ld+J3tOXWv4iG/oC+PANpuA6eUwsFT3pjD+N2pYS9R4X1SesT55PQ8TV+JG
lTodXGE1gu31w7SwUmio+AYrnlFLwlgF9MuZZ6yaIS050PjPmIibH331sbbAQ1CD
g62r/dbW+vz1D8ZNp0oFlZ64WlkxVA24ybw3QpI7A9P0OtwvTfguRhmtBxola2NV
5vZdzUbblUmVuWeNRO7J+G3KjMkNmvYuZ995k8dCOGQqx1E5pAWW276lCA/UELXv
wceKDNLSnP/JMeVRWQ0rQOKJJ/aV27HkoSvQtUNE2N6fltqZrZrYfNwjkLQFJtKM
7QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CCA India 2007"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10112 (0x2780)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = IN, O = India PKI, CN = CCA India 2007
#        Validity
#            Not Before: Jun 13 07:02:48 2007 GMT
#            Not After : Jul  4 07:02:48 2015 GMT
#        Subject: C = IN, O = India PKI, CN = CCA India 2007
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:df:8f:c7:ca:4a:9c:d2:47:e2:8e:32:82:9e:51:
#                    e9:08:09:77:fc:b7:7e:27:7b:4e:5d:6b:f8:88:6f:
#                    e8:0b:e3:c0:36:9b:80:e9:e5:30:b0:54:f7:a6:30:
#                    fe:37:6a:58:4b:d4:78:5f:54:9e:b1:3e:79:3d:0f:
#                    13:57:e2:46:95:3a:1d:5c:61:35:82:ed:f5:c3:b4:
#                    b0:52:68:a8:f8:06:2b:9e:51:4b:c2:58:05:f4:cb:
#                    99:67:ac:9a:21:2d:39:d0:f8:cf:98:88:9b:1f:7d:
#                    f5:b1:b6:c0:43:50:83:83:ad:ab:fd:d6:d6:fa:fc:
#                    f5:0f:c6:4d:a7:4a:05:95:9e:b8:5a:59:31:54:0d:
#                    b8:c9:bc:37:42:92:3b:03:d3:f4:3a:dc:2f:4d:f8:
#                    2e:46:19:ad:07:1a:25:6b:63:55:e6:f6:5d:cd:46:
#                    db:95:49:95:b9:67:8d:44:ee:c9:f8:6d:ca:8c:c9:
#                    0d:9a:f6:2e:67:df:79:93:c7:42:38:64:2a:c7:51:
#                    39:a4:05:96:db:be:a5:08:0f:d4:10:b5:ef:c1:c7:
#                    8a:0c:d2:d2:9c:ff:c9:31:e5:51:59:0d:2b:40:e2:
#                    89:27:f6:95:db:b1:e4:a1:2b:d0:b5:43:44:d8:de:
#                    9f:96:da:99:ad:9a:d8:7c:dc:23:90:b4:05:26:d2:
#                    8c:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4F:1E:C0:58:27:D8:B8:E4
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         72:86:4f:48:82:e8:c5:f0:d9:b8:b0:47:33:19:ef:cb:06:81:
#         a8:b6:ac:87:c3:b9:49:95:92:2a:81:58:d7:2b:8e:a2:b8:27:
#         a0:4c:13:50:9d:1c:b5:71:4c:62:51:88:96:0c:72:ff:0b:60:
#         c4:35:e1:f8:25:6e:b9:c1:e1:a7:56:3a:fe:86:e3:4d:c0:ab:
#         da:d4:2a:70:9b:ad:5a:9d:d8:25:d1:ba:85:df:c2:1b:eb:34:
#         d6:08:77:03:30:64:7f:d6:f6:11:09:8d:ad:7e:9e:79:7f:9b:
#         9b:a3:94:44:e0:74:b7:b7:89:ca:ec:04:5f:8b:cf:e2:eb:e3:
#         46:db:36:f7:9d:31:ae:86:74:a9:9d:ed:dc:70:4f:d3:33:5c:
#         30:86:20:ae:32:c1:2c:8f:27:34:b6:77:5e:00:1a:92:8a:be:
#         88:d9:38:5b:d4:c3:5a:b8:0f:93:24:d6:2a:ae:30:48:41:f6:
#         63:25:cf:4d:87:29:9e:b3:ab:f4:f4:ac:47:84:59:2a:cf:fd:
#         ed:af:94:0d:50:00:27:33:73:ee:77:e6:e3:49:b8:a7:4c:26:
#         c1:ce:91:6a:17:b2:d2:41:b5:a9:9a:dd:d8:4d:d5:e3:10:b5:
#         d2:3d:c5:f4:d1:0c:dd:bc:ac:97:d2:97:58:e8:58:16:05:9a:
#         c6:ad:bd:6a

[p11-kit-object-v1]
label: "CCA India 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhwoeDrmgqCCYGrh6FfZH
8b/SxifkEmqWBGd1zYzG4/TdytXEHDXuTenkItSXONesY2lIwHx5Yr/HIklbRsHx
GBROGB0spVqSuIUVrxdWE46fFg4iloGEeSNC7E/er/a/iU8AXubXCNKVlJoTLAQR
g++RjwhVrHpWRJvF9NQX6+R3TZThQVgR6aKqCYYtJiEg9cDMwxXMTAm73dz1UgN5
YI88eTolNCOHSHXyQXBNGjAIhnXOWBmo1xV+I/LnSb7//ldSeELzJnfdevdi5ctd
ljOUk7vEGhavCFfrnOX3I3SN6R0LsYqUc5kRkcVooPGKDYGttFFobkmGAAZSTilD
5wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CCA India 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10126 (0x278e)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = IN, O = India PKI, CN = CCA India 2011
#        Validity
#            Not Before: Mar 11 06:48:52 2011 GMT
#            Not After : Mar 11 06:48:52 2016 GMT
#        Subject: C = IN, O = India PKI, CN = CCA India 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:87:0a:1e:0e:b9:a0:a8:20:98:1a:b8:7a:15:f6:
#                    47:f1:bf:d2:c6:27:e4:12:6a:96:04:67:75:cd:8c:
#                    c6:e3:f4:dd:ca:d5:c4:1c:35:ee:4d:e9:e4:22:d4:
#                    97:38:d7:ac:63:69:48:c0:7c:79:62:bf:c7:22:49:
#                    5b:46:c1:f1:18:14:4e:18:1d:2c:a5:5a:92:b8:85:
#                    15:af:17:56:13:8e:9f:16:0e:22:96:81:84:79:23:
#                    42:ec:4f:de:af:f6:bf:89:4f:00:5e:e6:d7:08:d2:
#                    95:94:9a:13:2c:04:11:83:ef:91:8f:08:55:ac:7a:
#                    56:44:9b:c5:f4:d4:17:eb:e4:77:4d:94:e1:41:58:
#                    11:e9:a2:aa:09:86:2d:26:21:20:f5:c0:cc:c3:15:
#                    cc:4c:09:bb:dd:dc:f5:52:03:79:60:8f:3c:79:3a:
#                    25:34:23:87:48:75:f2:41:70:4d:1a:30:08:86:75:
#                    ce:58:19:a8:d7:15:7e:23:f2:e7:49:be:ff:fe:57:
#                    52:78:42:f3:26:77:dd:7a:f7:62:e5:cb:5d:96:33:
#                    94:93:bb:c4:1a:16:af:08:57:eb:9c:e5:f7:23:74:
#                    8d:e9:1d:0b:b1:8a:94:73:99:11:91:c5:68:a0:f1:
#                    8a:0d:81:ad:b4:51:68:6e:49:86:00:06:52:4e:29:
#                    43:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4D:07:A8:63:F2:DB:1C:DF
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         6e:14:da:20:f2:48:6b:64:ff:2a:74:cd:56:b5:c5:39:0f:7e:
#         61:1f:35:59:1b:1d:28:6d:23:74:9d:78:bf:ab:ad:89:00:b9:
#         70:85:f5:e8:14:3e:e4:ec:9f:96:64:5c:d2:b1:22:20:a3:08:
#         9c:e8:0c:4b:68:28:8e:55:05:bf:3e:e0:4e:da:d8:9c:d0:6e:
#         20:ec:fe:7a:3b:c2:36:47:97:d8:2b:08:b3:ae:c2:d1:e6:08:
#         3f:4a:e8:3a:3f:56:f5:e0:e5:3f:f2:69:b6:79:12:e0:f0:39:
#         b7:18:ec:d2:e9:84:0e:18:38:16:8a:49:3b:6f:57:d5:39:3b:
#         bf:13:f0:c0:a7:cd:f2:3d:1e:6c:91:a7:77:63:bc:ab:d9:56:
#         38:0f:4a:b9:19:c0:2b:8c:fb:97:1f:c6:a7:ec:86:ce:d3:8d:
#         e3:d1:fb:75:d1:f1:f7:a6:63:c4:cf:e8:b1:a4:92:45:68:f2:
#         e8:8c:b1:ad:7e:2d:20:fb:b8:a5:54:ed:ca:0d:8f:32:1d:68:
#         a6:31:6e:b0:c8:9e:d5:fa:bf:06:9b:6f:29:7d:7a:03:49:bf:
#         2b:7b:59:93:14:c5:ea:cb:f1:4c:29:82:0e:29:ee:8a:54:7c:
#         3c:cd:55:82:25:72:0e:71:4e:25:78:4d:d3:4e:59:40:ca:ce:
#         f3:99:d1:a2

[p11-kit-object-v1]
label: "CCA India 2015 SPL"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAl9c2iT03QQ6RP2sgX/w6
fjtaXS/DDIdTPBiiyGFzDQgOVh7SbmClV2Xc/s9Qhg9aTqtiiwTKVu/h0Z6udK2q
+j9BWNFVcHA+RckbgHP8CIjki3KoCrUpV7CtCpFBGpxfUH2sFxolWyHwlSvn3zes
NPMHsPEdwRPvey46xalhkLJ4X1RQPLNaVWO2yxCjb/sN9Lbv5gjeohC/dpd/6tmW
0dTDcwJxtKmwrKwfFyClR0bWRAI4mb7LFHj+5l/Ef91v6apHFJAR2B2AwBXUjKCZ
4xkOCg/MGgic1FMHAOAfSb+CgkzPm9hu09QRABJsD31gZ0qMUNvyL+C5eYeDw1zC
OQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CCA India 2015 SPL"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10165 (0x27b5)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = IN, O = India PKI, CN = CCA India 2015 SPL
#        Validity
#            Not Before: Jan 29 11:36:43 2015 GMT
#            Not After : Jan 29 11:36:43 2025 GMT
#        Subject: C = IN, O = India PKI, CN = CCA India 2015 SPL
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:97:d7:36:89:3d:37:41:0e:91:3f:6b:20:5f:fc:
#                    3a:7e:3b:5a:5d:2f:c3:0c:87:53:3c:18:a2:c8:61:
#                    73:0d:08:0e:56:1e:d2:6e:60:a5:57:65:dc:fe:cf:
#                    50:86:0f:5a:4e:ab:62:8b:04:ca:56:ef:e1:d1:9e:
#                    ae:74:ad:aa:fa:3f:41:58:d1:55:70:70:3e:45:c9:
#                    1b:80:73:fc:08:88:e4:8b:72:a8:0a:b5:29:57:b0:
#                    ad:0a:91:41:1a:9c:5f:50:7d:ac:17:1a:25:5b:21:
#                    f0:95:2b:e7:df:37:ac:34:f3:07:b0:f1:1d:c1:13:
#                    ef:7b:2e:3a:c5:a9:61:90:b2:78:5f:54:50:3c:b3:
#                    5a:55:63:b6:cb:10:a3:6f:fb:0d:f4:b6:ef:e6:08:
#                    de:a2:10:bf:76:97:7f:ea:d9:96:d1:d4:c3:73:02:
#                    71:b4:a9:b0:ac:ac:1f:17:20:a5:47:46:d6:44:02:
#                    38:99:be:cb:14:78:fe:e6:5f:c4:7f:dd:6f:e9:aa:
#                    47:14:90:11:d8:1d:80:c0:15:d4:8c:a0:99:e3:19:
#                    0e:0a:0f:cc:1a:08:9c:d4:53:07:00:e0:1f:49:bf:
#                    82:82:4c:cf:9b:d8:6e:d3:d4:11:00:12:6c:0f:7d:
#                    60:67:4a:8c:50:db:f2:2f:e0:b9:79:87:83:c3:5c:
#                    c2:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4C:11:70:AA:8F:DD:1F:07
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         2d:bc:8c:15:ca:34:ed:4c:28:22:bb:e1:53:25:4b:3a:97:a9:
#         ed:26:a2:a4:ab:4d:fb:0a:12:6e:e7:35:e6:67:0e:18:81:62:
#         36:a5:cc:c2:df:1a:e5:68:01:81:4e:b3:99:d4:47:15:12:9d:
#         76:e9:a1:a6:13:1d:b0:ff:7d:bb:57:e3:ef:59:9b:c8:3b:50:
#         69:c6:63:3a:ac:a0:c1:e5:90:e8:64:29:5c:48:41:69:37:ac:
#         3b:bb:dd:e3:55:c6:d7:92:0d:95:83:b0:28:57:c2:a3:a9:96:
#         a7:ca:de:4c:1e:9a:ff:3e:a5:2e:27:5e:db:66:67:27:85:ef:
#         ab:8a:5c:73:7c:88:cd:47:66:f0:9d:83:cc:84:8f:e2:29:f4:
#         1f:41:6f:b7:f5:21:0d:f5:94:56:51:e3:fc:ff:13:58:b7:9f:
#         03:ee:29:9f:d2:01:b0:62:9e:94:bd:19:86:5a:43:fa:6a:89:
#         81:b0:ea:5c:18:87:ca:80:95:fb:ed:01:bf:11:1a:df:95:14:
#         ae:2e:e2:af:cd:91:90:ba:b3:27:c3:6f:10:d8:d9:0e:b4:a5:
#         74:6c:81:b7:5f:19:cc:fe:27:4e:b3:45:98:58:18:9c:57:c4:
#         92:72:12:cf:a7:82:39:d5:e1:10:97:0a:86:30:45:85:63:a8:
#         6b:4d:9a:fc

[p11-kit-object-v1]
label: "CFCA EV ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CFCA EV ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 407555286 (0x184accd6)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = China Financial Certification Authority, CN = CFCA EV ROOT
#        Validity
#            Not Before: Aug  8 03:07:01 2012 GMT
#            Not After : Dec 31 03:07:01 2029 GMT
#        Subject: C = CN, O = China Financial Certification Authority, CN = CFCA EV ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d7:5d:6b:cd:10:3f:1f:05:59:d5:05:4d:37:b1:
#                    0e:ec:98:2b:8e:15:1d:fa:93:4b:17:82:21:71:10:
#                    52:d7:51:64:70:16:c2:55:69:4d:8e:15:6d:9f:bf:
#                    0c:1b:c2:e0:a3:67:d6:0c:ac:cf:22:ae:af:77:54:
#                    2a:4b:4c:8a:53:52:7a:c3:ee:2e:de:b3:71:25:c1:
#                    e9:5d:3d:ee:a1:2f:a3:f7:2a:3c:c9:23:1d:6a:ab:
#                    1d:a1:a7:f1:f3:ec:a0:d5:44:cf:15:cf:72:2f:1d:
#                    63:97:e8:99:f9:fd:93:a4:54:80:4c:52:d4:52:ab:
#                    2e:49:df:90:cd:b8:5f:be:3f:de:a1:ca:4d:20:d4:
#                    25:e8:84:29:53:b7:b1:88:1f:ff:fa:da:90:9f:0a:
#                    a9:2d:41:3f:b1:f1:18:29:ee:16:59:2c:34:49:1a:
#                    a8:06:d7:a8:88:d2:03:72:7a:32:e2:ea:68:4d:6e:
#                    2c:96:65:7b:ca:59:fa:f2:e2:dd:ee:30:2c:fb:cc:
#                    46:ac:c4:63:eb:6f:7f:36:2b:34:73:12:94:7f:df:
#                    cc:26:9e:f1:72:5d:50:65:59:8f:69:b3:87:5e:32:
#                    6f:c3:18:8a:b5:95:8f:b0:7a:37:de:5a:45:3b:c7:
#                    36:e1:ef:67:d1:39:d3:97:5b:73:62:19:48:2d:87:
#                    1c:06:fb:74:98:20:49:73:f0:05:d2:1b:b1:a0:a3:
#                    b7:1b:70:d3:88:69:b9:5a:d6:38:f4:62:dc:25:8b:
#                    78:bf:f8:e8:7e:b8:5c:c9:95:4f:5f:a7:2d:b9:20:
#                    6b:cf:6b:dd:f5:0d:f4:82:b7:f4:b2:66:2e:10:28:
#                    f6:97:5a:7b:96:16:8f:01:19:2d:6c:6e:7f:39:58:
#                    06:64:83:01:83:83:c3:4d:92:dd:32:c6:87:a4:37:
#                    e9:16:ce:aa:2d:68:af:0a:81:65:3a:70:c1:9b:ad:
#                    4d:6d:54:ca:2a:2d:4b:85:1b:b3:80:e6:70:45:0d:
#                    6b:5e:35:f0:7f:3b:b8:9c:e4:04:70:89:12:25:93:
#                    da:0a:99:22:60:6a:63:60:4e:76:06:98:4e:bd:83:
#                    ad:1d:58:8a:25:85:d2:c7:65:1e:2d:8e:c6:df:b6:
#                    c6:e1:7f:8a:04:21:15:29:74:f0:3e:9c:90:9d:0c:
#                    2e:f1:8a:3e:5a:aa:0c:09:1e:c7:d5:3c:a3:ed:97:
#                    c3:1e:34:fa:38:f9:08:0e:e3:c0:5d:2b:83:d1:56:
#                    6a:c9:b6:a8:54:53:2e:78:32:67:3d:82:7f:74:d0:
#                    fb:e1:b6:05:60:b9:70:db:8e:0b:f9:13:58:6f:71:
#                    60:10:52:10:b9:c1:41:09:ef:72:1f:67:31:78:ff:
#                    96:05:8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:E3:FE:2D:FD:28:D0:0B:B5:BA:B6:A2:C4:BF:06:AA:05:8C:93:FB:2F
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E3:FE:2D:FD:28:D0:0B:B5:BA:B6:A2:C4:BF:06:AA:05:8C:93:FB:2F
#    Signature Algorithm: sha256WithRSAEncryption
#         25:c6:ba:6b:eb:87:cb:de:82:39:96:3d:f0:44:a7:6b:84:73:
#         03:de:9d:2b:4f:ba:20:7f:bc:78:b2:cf:97:b0:1b:9c:f3:d7:
#         79:2e:f5:48:b6:d2:fb:17:88:e6:d3:7a:3f:ed:53:13:d0:e2:
#         2f:6a:79:cb:00:23:28:e6:1e:37:57:35:89:84:c2:76:4f:34:
#         36:ad:67:c3:ce:41:06:88:c5:f7:ee:d8:1a:b8:d6:0b:7f:50:
#         ff:93:aa:17:4b:8c:ec:ed:52:60:b2:a4:06:ea:4e:eb:f4:6b:
#         19:fd:eb:f5:1a:e0:25:2a:9a:dc:c7:41:36:f7:c8:74:05:84:
#         39:95:39:d6:0b:3b:a4:27:fa:08:d8:5c:1e:f8:04:60:52:11:
#         28:28:03:ff:ef:53:66:00:a5:4a:34:16:66:7c:fd:09:a4:ae:
#         9e:67:1a:6f:41:0b:6b:06:13:9b:8f:86:71:05:b4:2f:8d:89:
#         66:33:29:76:54:9a:11:f8:27:fa:b2:3f:91:e0:ce:0d:1b:f3:
#         30:1a:ad:bf:22:5d:1b:d3:bf:25:05:4d:e1:92:1a:7f:99:9f:
#         3c:44:93:ca:d4:40:49:6c:80:87:d7:04:3a:c3:32:52:35:0e:
#         56:f8:a5:dd:7d:c4:8b:0d:11:1f:53:cb:1e:b2:17:b6:68:77:
#         5a:e0:d4:cb:c8:07:ae:f5:3a:2e:8e:37:b7:d0:01:4b:43:29:
#         77:8c:39:97:8f:82:5a:f8:51:e5:89:a0:18:e7:68:7f:5d:0a:
#         2e:fb:a3:47:0e:3d:a6:23:7a:c6:01:c7:8f:c8:5e:bf:6d:80:
#         56:be:8a:24:ba:33:ea:9f:e1:32:11:9e:f1:d2:4f:80:f6:1b:
#         40:af:38:9e:11:50:79:73:12:12:cd:e6:6c:9d:2c:88:72:3c:
#         30:81:06:91:22:ea:59:ad:da:19:2e:22:c2:8d:b9:8c:87:e0:
#         66:bc:73:23:5f:21:64:63:80:48:f5:a0:3c:18:3d:94:c8:48:
#         41:1d:40:ba:5e:fe:fe:56:39:a1:c8:cf:5e:9e:19:64:46:10:
#         da:17:91:b7:05:80:ac:8b:99:92:7d:e7:a2:d8:07:0b:36:27:
#         e7:48:79:60:8a:c3:d7:13:5c:f8:72:40:df:4a:cb:cf:99:00:
#         0a:00:0b:11:95:da:56:45:03:88:0a:9f:67:d0:d5:79:b1:a8:
#         8d:40:6d:0d:c2:7a:40:fa:f3:5f:64:47:92:cb:53:b9:bb:59:
#         ce:4f:fd:d0:15:53:01:d8:df:eb:d9:e6:76:ef:d0:23:bb:3b:
#         a9:79:b3:d5:02:29:cd:89:a3:96:0f:4a:35:e7:4e:42:c0:75:
#         cd:07:cf:e6:2c:eb:7b:2e

[p11-kit-object-v1]
label: "CFCA GT CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv3PGWiuMePZYt/zSF5Cl
K3TsgSyTzVLMbuQqyyShMeStMG7jmCIx1yGbn9UPNy9auziit3kmZ9YNxRcqnLlU
BOENdYZu2MzFgGcbyIwtACaGPHp5Prapwk4gsDeXxoV2EoIK51S7i/49ruPsa1hD
9qU361iivZDE5fvKa8owbLd7ifYx0oz/T8KWJUOpcTUlCxjhrMijJLZxk4zxXfyc
EAV7/8Bb4LGXrR/Y/kX1wB+dW0c5HAb622aF2yQj6nvSOSD46yqyGlHzlFooAk6n
XEduz/zZ6OZhWhYnxxUNmNno0wM1kCnfsi+NEHcjyLh60xFhavP/gZKl7EJLaE6A
1wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CFCA GT CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDHzCCAgegAwIBAgIEGZk8PzANBgkqhkiG9w0BAQUFADAiMQswCQYDVQQGEwJD
TjETMBEGA1UEChMKQ0ZDQSBHVCBDQTAeFw0xMTA2MTMwODE1MDlaFw0yNjA2MDkw
ODE1MDlaMCIxCzAJBgNVBAYTAkNOMRMwEQYDVQQKEwpDRkNBIEdUIENBMIIBIjAN
BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv3PGWiuMePZYt/zSF5ClK3TsgSyT
zVLMbuQqyyShMeStMG7jmCIx1yGbn9UPNy9auziit3kmZ9YNxRcqnLlUBOENdYZu
2MzFgGcbyIwtACaGPHp5Prapwk4gsDeXxoV2EoIK51S7i/49ruPsa1hD9qU361ii
vZDE5fvKa8owbLd7ifYx0oz/T8KWJUOpcTUlCxjhrMijJLZxk4zxXfycEAV7/8Bb
4LGXrR/Y/kX1wB+dW0c5HAb622aF2yQj6nvSOSD46yqyGlHzlFooAk6nXEduz/zZ
6OZhWhYnxxUNmNno0wM1kCnfsi+NEHcjyLh60xFhavP/gZKl7EJLaE6A1wIDAQAB
o10wWzAfBgNVHSMEGDAWgBSMdlDOJdN5Kzz0bZ2a4Z4FT+g9JTAMBgNVHRMEBTAD
AQH/MAsGA1UdDwQEAwIBxjAdBgNVHQ4EFgQUjHZQziXTeSs89G2dmuGeBU/oPSUw
DQYJKoZIhvcNAQEFBQADggEBAL67lljU3YmJDyzN+mNFdg05gJqN+qhFYT0hVejO
aMcZ6cKxB8KLOy/PYYWQp1IXMjqvCgUVyMbO3Y6UJgb40GDus27UDbpa3augfFBy
ptWQk1bXWTnb6H+zlXhTgVJSX/SSgQLB+yK50QNXp37L+8BGvBN0TCgrdpJpH8FQ
kRHFTN4LlIwXg4yvN4e06mtvolo1QWGFL5wXwPu5DqJhBkd2vJAJmHQN0ggvveQN
cvGmX8N8wH3qvNOrIJHLXAWMnag1+jZWuwnzhF3W8eIsntl+8YKg4bcvfu35e6AA
uLLeHXnhgfNSWZoUXefCEfOawzp4I75OZt6kOWnymDosCgA=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 429472831 (0x19993c3f)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CN, O = CFCA GT CA
#        Validity
#            Not Before: Jun 13 08:15:09 2011 GMT
#            Not After : Jun  9 08:15:09 2026 GMT
#        Subject: C = CN, O = CFCA GT CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:73:c6:5a:2b:8c:78:f6:58:b7:fc:d2:17:90:
#                    a5:2b:74:ec:81:2c:93:cd:52:cc:6e:e4:2a:cb:24:
#                    a1:31:e4:ad:30:6e:e3:98:22:31:d7:21:9b:9f:d5:
#                    0f:37:2f:5a:bb:38:a2:b7:79:26:67:d6:0d:c5:17:
#                    2a:9c:b9:54:04:e1:0d:75:86:6e:d8:cc:c5:80:67:
#                    1b:c8:8c:2d:00:26:86:3c:7a:79:3e:b6:a9:c2:4e:
#                    20:b0:37:97:c6:85:76:12:82:0a:e7:54:bb:8b:fe:
#                    3d:ae:e3:ec:6b:58:43:f6:a5:37:eb:58:a2:bd:90:
#                    c4:e5:fb:ca:6b:ca:30:6c:b7:7b:89:f6:31:d2:8c:
#                    ff:4f:c2:96:25:43:a9:71:35:25:0b:18:e1:ac:c8:
#                    a3:24:b6:71:93:8c:f1:5d:fc:9c:10:05:7b:ff:c0:
#                    5b:e0:b1:97:ad:1f:d8:fe:45:f5:c0:1f:9d:5b:47:
#                    39:1c:06:fa:db:66:85:db:24:23:ea:7b:d2:39:20:
#                    f8:eb:2a:b2:1a:51:f3:94:5a:28:02:4e:a7:5c:47:
#                    6e:cf:fc:d9:e8:e6:61:5a:16:27:c7:15:0d:98:d9:
#                    e8:d3:03:35:90:29:df:b2:2f:8d:10:77:23:c8:b8:
#                    7a:d3:11:61:6a:f3:ff:81:92:a5:ec:42:4b:68:4e:
#                    80:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:8C:76:50:CE:25:D3:79:2B:3C:F4:6D:9D:9A:E1:9E:05:4F:E8:3D:25
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                8C:76:50:CE:25:D3:79:2B:3C:F4:6D:9D:9A:E1:9E:05:4F:E8:3D:25
#    Signature Algorithm: sha1WithRSAEncryption
#         be:bb:96:58:d4:dd:89:89:0f:2c:cd:fa:63:45:76:0d:39:80:
#         9a:8d:fa:a8:45:61:3d:21:55:e8:ce:68:c7:19:e9:c2:b1:07:
#         c2:8b:3b:2f:cf:61:85:90:a7:52:17:32:3a:af:0a:05:15:c8:
#         c6:ce:dd:8e:94:26:06:f8:d0:60:ee:b3:6e:d4:0d:ba:5a:dd:
#         ab:a0:7c:50:72:a6:d5:90:93:56:d7:59:39:db:e8:7f:b3:95:
#         78:53:81:52:52:5f:f4:92:81:02:c1:fb:22:b9:d1:03:57:a7:
#         7e:cb:fb:c0:46:bc:13:74:4c:28:2b:76:92:69:1f:c1:50:91:
#         11:c5:4c:de:0b:94:8c:17:83:8c:af:37:87:b4:ea:6b:6f:a2:
#         5a:35:41:61:85:2f:9c:17:c0:fb:b9:0e:a2:61:06:47:76:bc:
#         90:09:98:74:0d:d2:08:2f:bd:e4:0d:72:f1:a6:5f:c3:7c:c0:
#         7d:ea:bc:d3:ab:20:91:cb:5c:05:8c:9d:a8:35:fa:36:56:bb:
#         09:f3:84:5d:d6:f1:e2:2c:9e:d9:7e:f1:82:a0:e1:b7:2f:7e:
#         ed:f9:7b:a0:00:b8:b2:de:1d:79:e1:81:f3:52:59:9a:14:5d:
#         e7:c2:11:f3:9a:c3:3a:78:23:be:4e:66:de:a4:39:69:f2:98:
#         3a:2c:0a:00

[p11-kit-object-v1]
label: "CHAMBERS OF COMMERCE ROOT - 2016"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CHAMBERS OF COMMERCE ROOT - 2016"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3790392208080155315 (0x349a2da18206b2b3)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, ST = MADRID, L = MADRID, OU = see current address at www.camerfirma.com/address, OU = CHAMBERS OF COMMERCE ROOT - 2016, serialNumber = A82743287, organizationIdentifier = VATES-A82743287, O = AC CAMERFIRMA S.A., CN = CHAMBERS OF COMMERCE ROOT - 2016
#        Validity
#            Not Before: Apr 14 07:35:48 2016 GMT
#            Not After : Apr  8 07:35:48 2040 GMT
#        Subject: C = ES, ST = MADRID, L = MADRID, OU = see current address at www.camerfirma.com/address, OU = CHAMBERS OF COMMERCE ROOT - 2016, serialNumber = A82743287, organizationIdentifier = VATES-A82743287, O = AC CAMERFIRMA S.A., CN = CHAMBERS OF COMMERCE ROOT - 2016
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ea:c6:a4:a1:d4:ad:99:96:c9:9f:f5:bc:50:00:
#                    f4:2c:cf:f2:78:e8:f2:2c:02:27:d6:83:8c:04:ab:
#                    d3:0e:7b:57:20:c9:d4:af:65:f4:87:dd:30:08:d7:
#                    ce:41:a3:76:0a:db:8a:46:e4:a6:fd:ed:08:ce:70:
#                    3f:fa:10:60:79:4c:6b:81:54:80:55:e4:e7:7a:21:
#                    b6:75:9a:dc:5e:f6:0e:99:fc:f8:c2:df:41:8e:2f:
#                    ab:c7:5b:6d:1c:50:59:c0:ed:e8:ac:82:42:fe:b9:
#                    af:2f:0c:41:51:9c:bd:00:6e:64:51:b2:3b:e5:36:
#                    ab:95:91:12:fb:31:c7:73:ac:1c:d8:65:76:3b:ce:
#                    1b:4c:4e:b0:1f:20:06:fb:50:b4:fb:9b:a1:79:8e:
#                    16:95:e3:9f:eb:18:4b:84:ab:39:93:cd:37:83:d0:
#                    e9:7c:0b:27:8f:ed:42:08:e9:86:46:32:ac:9a:26:
#                    69:70:61:2d:18:bd:3f:50:f0:9e:f6:68:50:4e:69:
#                    95:70:c1:ed:93:a9:97:4e:29:a2:ba:dd:c2:9f:6e:
#                    49:08:2b:a3:fa:23:f1:29:5e:b0:7d:31:59:9b:ed:
#                    8c:cd:a6:6e:f8:f8:f7:d8:18:e8:da:56:e9:48:f2:
#                    40:74:7e:9e:cd:20:af:14:24:59:ee:77:35:85:bf:
#                    4a:99:4a:a9:75:dd:b3:26:e3:06:ce:7d:6f:4b:64:
#                    a3:76:34:19:3e:14:6f:85:54:38:e2:8b:2d:40:b5:
#                    64:66:1f:57:33:1c:70:cd:c3:b4:28:5a:14:23:5c:
#                    fc:b8:bd:b3:fe:3b:12:5f:f6:b9:8c:1d:c8:94:0a:
#                    56:db:72:7e:ef:27:07:0d:00:b4:bf:7d:99:3f:4d:
#                    45:b3:9b:f7:1d:19:d0:4f:04:fa:c7:73:94:88:7d:
#                    8b:14:2a:99:e0:e9:99:92:09:c6:d6:01:6b:b7:f0:
#                    db:43:57:62:1b:c7:44:52:e2:97:63:ba:cf:ea:ce:
#                    60:e6:0a:e5:18:68:2d:33:80:75:a0:30:07:68:f6:
#                    d5:f7:13:2c:3a:b0:9e:e8:58:55:6e:8c:56:44:4d:
#                    43:17:41:02:cc:77:dc:5f:45:05:59:cf:cd:60:d3:
#                    bf:d2:f6:e2:f4:d5:dc:87:71:33:07:1a:f5:6f:b4:
#                    7f:3d:97:fb:5f:64:f4:4e:0e:00:44:09:e9:eb:ec:
#                    3e:71:19:04:17:39:48:60:b8:4b:ff:5e:c8:65:99:
#                    2b:a6:32:f2:5b:86:a8:9d:e8:23:74:10:78:ef:cb:
#                    27:9d:31:ba:60:8b:4e:06:50:e2:50:1d:07:60:c2:
#                    41:8c:15:b4:5b:37:1c:0a:e5:09:19:72:04:8a:3c:
#                    e3:01:db
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                9E:2E:65:4F:3E:57:F5:AB:7D:96:C6:8B:DF:B3:35:6D:4A:E8:9E:8B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         05:69:2a:85:97:26:50:ba:42:39:1c:93:2c:d2:4f:5b:d1:5d:
#         44:26:da:6f:69:2b:b5:7b:9e:d0:f4:4a:2e:48:c7:ec:7f:9f:
#         ca:59:7a:b9:44:f7:3e:bd:f7:50:6b:51:9f:74:ff:90:1a:40:
#         d0:93:79:92:0f:8a:23:5e:8b:af:81:0b:d0:8b:ad:66:e0:2a:
#         dc:9a:29:bd:35:d8:6c:40:14:49:42:3d:89:2f:ba:9b:2b:38:
#         bc:1a:a3:0b:b7:88:d7:ad:c6:14:0c:ee:7c:49:ac:ae:ec:f2:
#         3d:18:4f:8c:6d:14:5d:0e:aa:b7:df:77:ab:3b:8f:62:4e:8b:
#         0c:65:c6:19:8e:cd:c0:0c:a1:77:aa:b4:dd:7a:a7:13:05:e6:
#         39:18:c7:95:64:7e:03:b6:8b:90:c1:e5:5f:00:23:98:e6:73:
#         da:11:d2:10:ff:1e:53:22:27:c7:d3:01:c9:2f:c5:3b:32:6e:
#         f0:c3:38:ca:12:67:bc:ba:23:29:bb:c4:95:49:5a:06:dd:d4:
#         5a:90:d4:13:6d:e7:d5:c2:7c:e2:58:04:c0:ec:c4:bd:a2:3c:
#         7e:c6:23:81:75:7c:ab:70:5f:34:84:95:f7:b3:d5:47:96:4f:
#         71:ca:78:32:08:20:b4:42:a4:42:6b:d5:25:9c:b2:27:eb:c1:
#         0e:47:44:09:e1:2b:0f:d0:23:36:6e:1c:b9:ba:4e:ac:cc:f0:
#         0c:94:ce:41:0f:6b:dd:0f:d5:c8:e0:17:8b:de:3a:5d:52:be:
#         e9:75:25:1d:ba:05:07:da:56:19:3c:8d:d1:d7:f1:51:36:d9:
#         92:ef:a2:78:51:05:58:bd:52:cc:0a:5e:6f:af:da:d0:e5:0c:
#         db:6c:c1:23:ef:39:31:77:17:07:00:8c:f6:ba:0f:70:f9:bc:
#         be:e1:e4:7d:e1:cc:44:7a:a4:21:ec:47:3f:a8:d6:15:a5:ec:
#         01:a9:c8:70:e8:98:67:1d:bd:59:54:7e:a1:57:15:35:07:c5:
#         72:c9:3e:b7:29:86:8d:9f:da:32:79:32:dc:db:a8:e5:09:ff:
#         ef:56:2a:fe:93:b1:8e:2a:13:ed:ad:a2:2b:6b:2f:04:de:cd:
#         2f:92:92:d6:3e:60:b5:78:01:95:07:08:a9:6c:e3:1c:da:fb:
#         e5:9b:23:56:20:5b:e9:d0:5c:c6:4a:24:3b:bc:e3:b6:22:16:
#         2a:84:92:ff:a8:fe:97:bf:a3:9d:db:61:5e:ee:19:2a:2c:d7:
#         eb:0d:76:56:38:75:7e:49:00:93:57:c9:fc:23:5a:fc:f4:f1:
#         df:2a:9d:b0:8c:69:f4:10:a3:55:9d:70:3c:22:ff:07:d6:2b:
#         b6:99:c0:97:d0:f4:2a:a0

[p11-kit-object-v1]
label: "CISRCA1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CISRCA1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 12656674354038 (0xb82dc943376)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CA, O = Carillon Information Security Inc., OU = Certification Authorities, CN = CISRCA1
#        Validity
#            Not Before: Oct 16 18:28:33 2012 GMT
#            Not After : Oct 16 18:28:33 2032 GMT
#        Subject: C = CA, O = Carillon Information Security Inc., OU = Certification Authorities, CN = CISRCA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:76:f1:62:6a:5f:cd:29:cd:04:36:7f:6e:61:
#                    7e:73:f4:9d:66:df:22:5a:9a:83:44:81:66:fd:4e:
#                    11:b0:3e:ac:e8:88:b2:53:39:ff:e3:ba:be:d4:ff:
#                    d3:85:d8:bd:5b:af:68:4f:33:ac:b8:14:7d:12:5b:
#                    7a:95:6b:c7:36:fe:2b:8f:f4:88:60:89:3a:aa:59:
#                    38:4c:c1:5d:55:81:a5:df:d8:1f:31:7a:d3:a3:4e:
#                    f0:51:cb:c3:31:87:ae:0b:de:ca:5e:1b:a1:74:38:
#                    f0:92:77:71:3c:cb:13:7e:a0:c1:0a:98:bd:d8:b8:
#                    f8:54:34:98:4e:67:16:9a:57:4b:26:86:5f:1b:66:
#                    72:aa:c1:f2:68:82:9d:58:41:7c:71:22:e2:cf:01:
#                    31:fe:e2:e0:56:a9:68:e0:ad:33:af:35:39:2e:9c:
#                    6e:06:4c:f3:23:76:2f:69:26:e8:05:39:69:b7:f5:
#                    48:1a:f7:df:d9:39:37:32:55:11:27:04:81:1f:9d:
#                    3c:8b:8c:83:52:77:c1:ae:2c:cd:2b:2a:4a:e5:2d:
#                    f1:19:69:ba:87:5e:8b:9d:e0:71:c8:74:d2:cd:ee:
#                    6e:38:37:6a:5d:19:00:d2:76:dd:a2:eb:6e:3b:aa:
#                    1d:f5:36:06:4f:5f:5e:6c:c2:10:f3:dd:6f:b5:da:
#                    79:5a:fe:d5:46:44:34:48:af:86:00:34:7c:24:84:
#                    dd:45:90:f9:16:82:ac:a8:91:d4:e9:46:33:6f:7e:
#                    ba:47:1f:e1:ef:af:e5:50:d6:c6:f9:a7:ed:6c:97:
#                    aa:2b:29:4e:5d:c5:f8:1e:f6:74:c9:ab:24:f8:0d:
#                    53:c7:68:15:be:fc:5c:ab:3d:72:0b:d2:70:04:b7:
#                    16:e3:69:a9:f1:67:ba:c6:00:4c:7b:80:34:35:2e:
#                    5e:ed:1f:a0:25:f7:a5:82:6a:10:7f:bf:8f:59:6f:
#                    c3:46:a6:ca:42:4e:42:23:85:06:39:35:8c:b5:f1:
#                    d7:c1:23:42:45:fd:2f:25:71:f8:f3:07:d3:07:68:
#                    be:db:98:6c:2a:f6:a5:47:f7:b0:65:60:ad:ae:7c:
#                    e6:11:1d:27:54:08:65:b0:d8:82:c0:61:6b:e9:7e:
#                    8f:22:d6:71:1d:6b:41:20:65:d8:57:9a:1f:7c:0e:
#                    5a:54:e0:94:b0:6d:75:ef:28:32:35:3c:55:c3:6d:
#                    67:f8:24:bd:fb:40:f3:5a:9d:36:d9:35:4c:bb:e2:
#                    6b:d9:b1:36:0f:e4:6f:20:1a:c5:6f:7a:c3:91:39:
#                    af:af:cc:f3:f6:bd:20:86:ba:d3:24:21:3c:1f:37:
#                    29:e6:9f:fc:1a:bf:98:df:3c:ba:20:21:12:a9:c2:
#                    3a:2a:93
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                EA:95:15:DA:5C:39:00:E2:9A:DB:C4:BA:2D:67:FA:A1:F7:75:34:ED
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         35:d0:d8:b8:9e:f2:09:f8:f0:9f:b2:6e:48:b2:d7:ea:a1:9b:
#         28:89:39:cd:fe:16:6a:1d:e9:9c:82:5f:51:47:3a:f5:9e:d1:
#         bc:ae:1f:9f:e2:5c:4a:c8:ec:ed:46:42:f1:7c:43:07:15:df:
#         6e:97:f6:ed:86:fc:9f:c5:08:5e:82:0e:a3:2e:a8:0a:2e:bc:
#         8e:1b:31:12:28:f6:79:28:c1:22:b6:d1:95:69:40:e8:59:09:
#         27:a2:91:64:76:ea:d0:13:8d:70:fc:65:c3:6f:11:9f:2a:48:
#         ca:a7:62:f5:83:14:e5:1a:16:c7:91:8b:b4:09:c5:ce:7b:e3:
#         e4:1d:6d:97:a2:e9:cb:26:1e:6b:b4:dc:3e:83:76:2f:5e:4d:
#         a8:68:89:54:fd:4e:d2:46:a8:40:f6:d8:ca:78:cf:36:1a:3d:
#         59:65:8c:9b:f5:2b:1f:4c:82:df:78:78:4d:26:4a:47:69:ad:
#         6f:33:1f:03:1e:22:4e:d9:06:59:9e:46:fc:50:35:5f:c6:85:
#         1b:e4:1b:f8:00:c9:e0:d3:3a:ab:26:43:cd:47:fa:5a:f8:85:
#         0b:c7:32:da:b5:0d:2d:30:29:3a:79:b3:14:e9:a5:0f:70:25:
#         d1:8d:09:50:94:ed:4d:92:9e:30:37:40:db:5a:78:49:8f:0f:
#         39:2f:bd:2e:d7:ab:08:94:c9:29:8a:f7:dd:8c:bd:82:7c:30:
#         5b:62:e8:35:46:56:38:5d:91:f6:0e:6f:8c:ee:95:9f:fd:74:
#         9d:ed:ed:10:ab:ce:8b:8f:b7:ad:7f:4d:69:49:f0:c7:11:55:
#         9b:9a:82:f7:a2:fa:33:f2:44:11:fa:15:4b:46:a9:9b:6b:97:
#         42:d6:b4:b7:09:11:14:79:53:a6:e7:7f:2d:27:3a:0a:34:24:
#         44:ce:55:8c:7a:80:75:73:02:4b:e2:fa:46:94:7d:33:14:0d:
#         42:56:b9:a0:e6:2f:85:48:91:9f:44:ba:a1:28:a9:b1:1f:89:
#         7a:26:0a:53:5c:85:b9:7c:84:98:8c:28:60:a5:b6:7a:8d:3d:
#         a0:00:3d:dc:7f:aa:48:e9:a8:2e:ac:5f:de:87:2d:5c:a4:6b:
#         16:ea:bd:e8:95:b5:ce:78:09:f8:71:36:e5:90:68:d2:07:96:
#         ba:bc:00:8b:0e:98:6d:4d:70:53:c0:c3:cc:1b:13:9c:48:9a:
#         99:3d:12:c0:27:8e:61:92:4c:68:52:6f:8d:03:1c:89:f5:d3:
#         86:c0:ff:71:49:4f:20:6b:fd:d1:6f:91:24:f5:f1:47:23:4d:
#         59:df:d0:bd:49:42:fd:40:38:3e:e2:f1:05:5c:25:e8:10:e4:
#         5a:02:03:e3:bb:7c:25:2a

[p11-kit-object-v1]
label: "CNNIC ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0zX3P3N3rehbcxfC0W/t
Vbxu6uikebJsw6Pv4Z+xO0iF9ZpcISIQLMWCztrjmm434Ycs3LkMWrqIVd/9qtsf
MeoB8d85AcET/UhSIcRV39rYs1R2unSxt33XwOj2WcVNyL2tHxTa31hEJTIZKsd+
fo6uOLAwe0dyCTHwMNvDG3Ypu2l2Tlf5G2Sik1a3b5lu2woEnBHjgB/LY5QQCqnh
ZIIx+Ywn7aaZAPZwkxj4oTSGo916whh59nplNc+Q670zk59Tq3M75ps0IC8d76kd
YxqggNsDL/kmGobSjbupvlI6h2dIDb+0oNgmviNfczd/JuaSBKN/zyCnt/M6ysuZ
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CNNIC ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDVTCCAj2gAwIBAgIESTMAATANBgkqhkiG9w0BAQUFADAyMQswCQYDVQQGEwJD
TjEOMAwGA1UEChMFQ05OSUMxEzARBgNVBAMTCkNOTklDIFJPT1QwHhcNMDcwNDE2
MDcwOTE0WhcNMjcwNDE2MDcwOTE0WjAyMQswCQYDVQQGEwJDTjEOMAwGA1UEChMF
Q05OSUMxEzARBgNVBAMTCkNOTklDIFJPT1QwggEiMA0GCSqGSIb3DQEBAQUAA4IB
DwAwggEKAoIBAQDTNfc/c3et6FtzF8LRb+1VvG7q6KR5smzDo+/hn7E7SIX1mlwh
IhAsxYLO2uOabjfhhyzcuQxauohV3/2q2x8x6gHx3zkBwRP9SFIhxFXf2tizVHa6
dLG3fdfA6PZZxU3Iva0fFNrfWEQlMhkqx35+jq44sDB7R3IJMfAw28Mbdim7aXZO
V/kbZKKTVrdvmW7bCgScEeOAH8tjlBAKqeFkgjH5jCftppkA9nCTGPihNIaj3XrC
GHn2emU1z5DrvTOTn1OrczvmmzQgLx3vqR1jGqCA2wMv+SYahtKNu6m+UjqHZ0gN
v7Sg2Ca+I19zN38m5pIEo3/PIKe38zrKy5nLAgMBAAGjczBxMBEGCWCGSAGG+EIB
AQQEAwIABzAfBgNVHSMEGDAWgBRl8jGtKvf33VKWCscCwQ7vptU7ETAPBgNVHRMB
Af8EBTADAQH/MAsGA1UdDwQEAwIB/jAdBgNVHQ4EFgQUZfIxrSr3991SlgrHAsEO
76bVOxEwDQYJKoZIhvcNAQEFBQADggEBAEs17szkrr/Dbq2flTtLP1se31cpolnK
OOK5Gv+e5m4y3R6u6jW39ZORTtpC4cMXYFDy0VwmuYK36m3knITnA3kXr5g9lNvH
ugDnuL8BV8F3RTIMO/G0HAiw/VGgod2aHRM2mm23xzy54cXZF/qD1T0VoDy7Hgvi
yJA/qIYM/PmLXoXLT1tLYhFHxUV8BS9BsZ4QaRuZluBVeftOhpm4lNqGOGqTo+fL
buXf6iFViZx9fX+Y9QCJ7uOEwFyWtcVG6kbghVW2G8kS1sHNzYDzAgE8yGnLRUhj
2JTQ7IUOO04RZfSCjKY9ri4ilAnIXOo8gV0WKgOXFlUJ24pBgp5mmxE=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1228079105 (0x49330001)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CN, O = CNNIC, CN = CNNIC ROOT
#        Validity
#            Not Before: Apr 16 07:09:14 2007 GMT
#            Not After : Apr 16 07:09:14 2027 GMT
#        Subject: C = CN, O = CNNIC, CN = CNNIC ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d3:35:f7:3f:73:77:ad:e8:5b:73:17:c2:d1:6f:
#                    ed:55:bc:6e:ea:e8:a4:79:b2:6c:c3:a3:ef:e1:9f:
#                    b1:3b:48:85:f5:9a:5c:21:22:10:2c:c5:82:ce:da:
#                    e3:9a:6e:37:e1:87:2c:dc:b9:0c:5a:ba:88:55:df:
#                    fd:aa:db:1f:31:ea:01:f1:df:39:01:c1:13:fd:48:
#                    52:21:c4:55:df:da:d8:b3:54:76:ba:74:b1:b7:7d:
#                    d7:c0:e8:f6:59:c5:4d:c8:bd:ad:1f:14:da:df:58:
#                    44:25:32:19:2a:c7:7e:7e:8e:ae:38:b0:30:7b:47:
#                    72:09:31:f0:30:db:c3:1b:76:29:bb:69:76:4e:57:
#                    f9:1b:64:a2:93:56:b7:6f:99:6e:db:0a:04:9c:11:
#                    e3:80:1f:cb:63:94:10:0a:a9:e1:64:82:31:f9:8c:
#                    27:ed:a6:99:00:f6:70:93:18:f8:a1:34:86:a3:dd:
#                    7a:c2:18:79:f6:7a:65:35:cf:90:eb:bd:33:93:9f:
#                    53:ab:73:3b:e6:9b:34:20:2f:1d:ef:a9:1d:63:1a:
#                    a0:80:db:03:2f:f9:26:1a:86:d2:8d:bb:a9:be:52:
#                    3a:87:67:48:0d:bf:b4:a0:d8:26:be:23:5f:73:37:
#                    7f:26:e6:92:04:a3:7f:cf:20:a7:b7:f3:3a:ca:cb:
#                    99:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Authority Key Identifier: 
#                keyid:65:F2:31:AD:2A:F7:F7:DD:52:96:0A:C7:02:C1:0E:EF:A6:D5:3B:11
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Key Encipherment, Data Encipherment, Key Agreement, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                65:F2:31:AD:2A:F7:F7:DD:52:96:0A:C7:02:C1:0E:EF:A6:D5:3B:11
#    Signature Algorithm: sha1WithRSAEncryption
#         4b:35:ee:cc:e4:ae:bf:c3:6e:ad:9f:95:3b:4b:3f:5b:1e:df:
#         57:29:a2:59:ca:38:e2:b9:1a:ff:9e:e6:6e:32:dd:1e:ae:ea:
#         35:b7:f5:93:91:4e:da:42:e1:c3:17:60:50:f2:d1:5c:26:b9:
#         82:b7:ea:6d:e4:9c:84:e7:03:79:17:af:98:3d:94:db:c7:ba:
#         00:e7:b8:bf:01:57:c1:77:45:32:0c:3b:f1:b4:1c:08:b0:fd:
#         51:a0:a1:dd:9a:1d:13:36:9a:6d:b7:c7:3c:b9:e1:c5:d9:17:
#         fa:83:d5:3d:15:a0:3c:bb:1e:0b:e2:c8:90:3f:a8:86:0c:fc:
#         f9:8b:5e:85:cb:4f:5b:4b:62:11:47:c5:45:7c:05:2f:41:b1:
#         9e:10:69:1b:99:96:e0:55:79:fb:4e:86:99:b8:94:da:86:38:
#         6a:93:a3:e7:cb:6e:e5:df:ea:21:55:89:9c:7d:7d:7f:98:f5:
#         00:89:ee:e3:84:c0:5c:96:b5:c5:46:ea:46:e0:85:55:b6:1b:
#         c9:12:d6:c1:cd:cd:80:f3:02:01:3c:c8:69:cb:45:48:63:d8:
#         94:d0:ec:85:0e:3b:4e:11:65:f4:82:8c:a6:3d:ae:2e:22:94:
#         09:c8:5c:ea:3c:81:5d:16:2a:03:97:16:55:09:db:8a:41:82:
#         9e:66:9b:11

[p11-kit-object-v1]
label: "COMODO Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0ECLi3LjkRv3UcEbVASY
06m/weaKXTuH+7uIzg3jLz8GlvCiKVCZrts7oVewdFFxze1CkU1B/qnI2GqGd0S7
WWaXUF601CxwRM/aN5VCaTwwxHGzUvAhTaHYujl8HJ6jJJ3ygxaYqhZ8Q5sVW7eu
NJH+1GImGEaaP+vB+fGQV+useg2L23IwambV4EajcNxo2f8ESIl33rXp+2dtQem8
Ob0y2WIC8bGoPW43nOIv4tOiJovGuFVDiOEjPqXSJDlqR6sA1KGzqSX+DT+nHbrT
UcELpNqsOO9VUCQFZUaTNE8tja3G1CEZ0o7KBWFxB3NH5YoZEr0ETc5OnKVIrLsm
9wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "COMODO Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4e:81:2d:8a:82:65:e0:0b:02:ee:3e:35:02:46:e5:3d
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO Certification Authority
#        Validity
#            Not Before: Dec  1 00:00:00 2006 GMT
#            Not After : Dec 31 23:59:59 2029 GMT
#        Subject: C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d0:40:8b:8b:72:e3:91:1b:f7:51:c1:1b:54:04:
#                    98:d3:a9:bf:c1:e6:8a:5d:3b:87:fb:bb:88:ce:0d:
#                    e3:2f:3f:06:96:f0:a2:29:50:99:ae:db:3b:a1:57:
#                    b0:74:51:71:cd:ed:42:91:4d:41:fe:a9:c8:d8:6a:
#                    86:77:44:bb:59:66:97:50:5e:b4:d4:2c:70:44:cf:
#                    da:37:95:42:69:3c:30:c4:71:b3:52:f0:21:4d:a1:
#                    d8:ba:39:7c:1c:9e:a3:24:9d:f2:83:16:98:aa:16:
#                    7c:43:9b:15:5b:b7:ae:34:91:fe:d4:62:26:18:46:
#                    9a:3f:eb:c1:f9:f1:90:57:eb:ac:7a:0d:8b:db:72:
#                    30:6a:66:d5:e0:46:a3:70:dc:68:d9:ff:04:48:89:
#                    77:de:b5:e9:fb:67:6d:41:e9:bc:39:bd:32:d9:62:
#                    02:f1:b1:a8:3d:6e:37:9c:e2:2f:e2:d3:a2:26:8b:
#                    c6:b8:55:43:88:e1:23:3e:a5:d2:24:39:6a:47:ab:
#                    00:d4:a1:b3:a9:25:fe:0d:3f:a7:1d:ba:d3:51:c1:
#                    0b:a4:da:ac:38:ef:55:50:24:05:65:46:93:34:4f:
#                    2d:8d:ad:c6:d4:21:19:d2:8e:ca:05:61:71:07:73:
#                    47:e5:8a:19:12:bd:04:4d:ce:4e:9c:a5:48:ac:bb:
#                    26:f7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                0B:58:E5:8B:C6:4C:15:37:A4:40:A9:30:A9:21:BE:47:36:5A:56:FF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.comodoca.com/COMODOCertificationAuthority.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:98:9e:9b:f6:1b:e9:d7:39:b7:78:ae:1d:72:18:49:d3:87:
#         e4:43:82:eb:3f:c9:aa:f5:a8:b5:ef:55:7c:21:52:65:f9:d5:
#         0d:e1:6c:f4:3e:8c:93:73:91:2e:02:c4:4e:07:71:6f:c0:8f:
#         38:61:08:a8:1e:81:0a:c0:2f:20:2f:41:8b:91:dc:48:45:bc:
#         f1:c6:de:ba:76:6b:33:c8:00:2d:31:46:4c:ed:e7:9d:cf:88:
#         94:ff:33:c0:56:e8:24:86:26:b8:d8:38:38:df:2a:6b:dd:12:
#         cc:c7:3f:47:17:4c:a2:c2:06:96:09:d6:db:fe:3f:3c:46:41:
#         df:58:e2:56:0f:3c:3b:c1:1c:93:35:d9:38:52:ac:ee:c8:ec:
#         2e:30:4e:94:35:b4:24:1f:4b:78:69:da:f2:02:38:cc:95:52:
#         93:f0:70:25:59:9c:20:67:c4:ee:f9:8b:57:61:f4:92:76:7d:
#         3f:84:8d:55:b7:e8:e5:ac:d5:f1:f5:19:56:a6:5a:fb:90:1c:
#         af:93:eb:e5:1c:d4:67:97:5d:04:0e:be:0b:83:a6:17:83:b9:
#         30:12:a0:c5:33:15:05:b9:0d:fb:c7:05:76:e3:d8:4a:8d:fc:
#         34:17:a3:c6:21:28:be:30:45:31:1e:c7:78:be:58:61:38:ac:
#         3b:e2:01:65

[p11-kit-object-v1]
label: "COMODO ECC Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEA0d7L3XJghWF+3XkkRbUq2KZ9T5SCwbO
QQB/l+EKJDwdAQTuPdKNCZcM4HXk+vt3iir1A2BLNosWIxatCXH0SvQoULT+iBxu
P2wvLwlZW6VbCzOZ4sM9iflqLO+y0wbp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "COMODO ECC Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICiTCCAg+gAwIBAgIQH0evqmIAcFBUTAGem2OZKjAKBggqhkjOPQQDAzCBhTEL
MAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
BxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxKzApBgNVBAMT
IkNPTU9ETyBFQ0MgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMDgwMzA2MDAw
MDAwWhcNMzgwMTE4MjM1OTU5WjCBhTELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdy
ZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09N
T0RPIENBIExpbWl0ZWQxKzApBgNVBAMTIkNPTU9ETyBFQ0MgQ2VydGlmaWNhdGlv
biBBdXRob3JpdHkwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAAQDR3svdcmCFYX7deSR
FtSrYpn1PlILBs5BAH+X4QokPB0BBO490o0JlwzgdeT6+3eKKvUDYEs2ixYjFq0J
cfRK9ChQtP6IHG4/bC8vCVlbpVsLM5niwz2J+Wos77LTBumjQjBAMB0GA1UdDgQW
BBR1cacZSBm8nZ3qQUfflMRId5nTeTAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/
BAUwAwEB/zAKBggqhkjOPQQDAwNoADBlAjEA7wNbeqy3eApyt4jf/7VGFAkK+qDm
fQjGGoe9GKhzvSbKYAydzpmfz1wPMOG+FDHqAjAU9JM8SaczepBGR7NjfRObTrdv
GDeAU/7dIOA1mjbRxwG55tzd8/8dLDoWV9mSOdY=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1f:47:af:aa:62:00:70:50:54:4c:01:9e:9b:63:99:2a
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO ECC Certification Authority
#        Validity
#            Not Before: Mar  6 00:00:00 2008 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO ECC Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:03:47:7b:2f:75:c9:82:15:85:fb:75:e4:91:16:
#                    d4:ab:62:99:f5:3e:52:0b:06:ce:41:00:7f:97:e1:
#                    0a:24:3c:1d:01:04:ee:3d:d2:8d:09:97:0c:e0:75:
#                    e4:fa:fb:77:8a:2a:f5:03:60:4b:36:8b:16:23:16:
#                    ad:09:71:f4:4a:f4:28:50:b4:fe:88:1c:6e:3f:6c:
#                    2f:2f:09:59:5b:a5:5b:0b:33:99:e2:c3:3d:89:f9:
#                    6a:2c:ef:b2:d3:06:e9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                75:71:A7:19:48:19:BC:9D:9D:EA:41:47:DF:94:C4:48:77:99:D3:79
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:ef:03:5b:7a:ac:b7:78:0a:72:b7:88:df:ff:
#         b5:46:14:09:0a:fa:a0:e6:7d:08:c6:1a:87:bd:18:a8:73:bd:
#         26:ca:60:0c:9d:ce:99:9f:cf:5c:0f:30:e1:be:14:31:ea:02:
#         30:14:f4:93:3c:49:a7:33:7a:90:46:47:b3:63:7d:13:9b:4e:
#         b7:6f:18:37:80:53:fe:dd:20:e0:35:9a:36:d1:c7:01:b9:e6:
#         dc:dd:f3:ff:1d:2c:3a:16:57:d9:92:39:d6

[p11-kit-object-v1]
label: "COMODO RSA Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "COMODO RSA Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:aa:f9:ca:db:63:6f:e0:1f:f7:4e:d8:5b:03:86:9d
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Certification Authority
#        Validity
#            Not Before: Jan 19 00:00:00 2010 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:91:e8:54:92:d2:0a:56:b1:ac:0d:24:dd:c5:cf:
#                    44:67:74:99:2b:37:a3:7d:23:70:00:71:bc:53:df:
#                    c4:fa:2a:12:8f:4b:7f:10:56:bd:9f:70:72:b7:61:
#                    7f:c9:4b:0f:17:a7:3d:e3:b0:04:61:ee:ff:11:97:
#                    c7:f4:86:3e:0a:fa:3e:5c:f9:93:e6:34:7a:d9:14:
#                    6b:e7:9c:b3:85:a0:82:7a:76:af:71:90:d7:ec:fd:
#                    0d:fa:9c:6c:fa:df:b0:82:f4:14:7e:f9:be:c4:a6:
#                    2f:4f:7f:99:7f:b5:fc:67:43:72:bd:0c:00:d6:89:
#                    eb:6b:2c:d3:ed:8f:98:1c:14:ab:7e:e5:e3:6e:fc:
#                    d8:a8:e4:92:24:da:43:6b:62:b8:55:fd:ea:c1:bc:
#                    6c:b6:8b:f3:0e:8d:9a:e4:9b:6c:69:99:f8:78:48:
#                    30:45:d5:ad:e1:0d:3c:45:60:fc:32:96:51:27:bc:
#                    67:c3:ca:2e:b6:6b:ea:46:c7:c7:20:a0:b1:1f:65:
#                    de:48:08:ba:a4:4e:a9:f2:83:46:37:84:eb:e8:cc:
#                    81:48:43:67:4e:72:2a:9b:5c:bd:4c:1b:28:8a:5c:
#                    22:7b:b4:ab:98:d9:ee:e0:51:83:c3:09:46:4e:6d:
#                    3e:99:fa:95:17:da:7c:33:57:41:3c:8d:51:ed:0b:
#                    b6:5c:af:2c:63:1a:df:57:c8:3f:bc:e9:5d:c4:9b:
#                    af:45:99:e2:a3:5a:24:b4:ba:a9:56:3d:cf:6f:aa:
#                    ff:49:58:be:f0:a8:ff:f4:b8:ad:e9:37:fb:ba:b8:
#                    f4:0b:3a:f9:e8:43:42:1e:89:d8:84:cb:13:f1:d9:
#                    bb:e1:89:60:b8:8c:28:56:ac:14:1d:9c:0a:e7:71:
#                    eb:cf:0e:dd:3d:a9:96:a1:48:bd:3c:f7:af:b5:0d:
#                    22:4c:c0:11:81:ec:56:3b:f6:d3:a2:e2:5b:b7:b2:
#                    04:22:52:95:80:93:69:e8:8e:4c:65:f1:91:03:2d:
#                    70:74:02:ea:8b:67:15:29:69:52:02:bb:d7:df:50:
#                    6a:55:46:bf:a0:a3:28:61:7f:70:d0:c3:a2:aa:2c:
#                    21:aa:47:ce:28:9c:06:45:76:bf:82:18:27:b4:d5:
#                    ae:b4:cb:50:e6:6b:f4:4c:86:71:30:e9:a6:df:16:
#                    86:e0:d8:ff:40:dd:fb:d0:42:88:7f:a3:33:3a:2e:
#                    5c:1e:41:11:81:63:ce:18:71:6b:2b:ec:a6:8a:b7:
#                    31:5c:3a:6a:47:e0:c3:79:59:d6:20:1a:af:f2:6a:
#                    98:aa:72:bc:57:4a:d2:4b:9d:bb:10:fc:b0:4c:41:
#                    e5:ed:1d:3d:5e:28:9d:9c:cc:bf:b3:51:da:a7:47:
#                    e5:84:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BB:AF:7E:02:3D:FA:A6:F1:3C:84:8E:AD:EE:38:98:EC:D9:32:32:D4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         0a:f1:d5:46:84:b7:ae:51:bb:6c:b2:4d:41:14:00:93:4c:9c:
#         cb:e5:c0:54:cf:a0:25:8e:02:f9:fd:b0:a2:0d:f5:20:98:3c:
#         13:2d:ac:56:a2:b0:d6:7e:11:92:e9:2e:ba:9e:2e:9a:72:b1:
#         bd:19:44:6c:61:35:a2:9a:b4:16:12:69:5a:8c:e1:d7:3e:a4:
#         1a:e8:2f:03:f4:ae:61:1d:10:1b:2a:a4:8b:7a:c5:fe:05:a6:
#         e1:c0:d6:c8:fe:9e:ae:8f:2b:ba:3d:99:f8:d8:73:09:58:46:
#         6e:a6:9c:f4:d7:27:d3:95:da:37:83:72:1c:d3:73:e0:a2:47:
#         99:03:38:5d:d5:49:79:00:29:1c:c7:ec:9b:20:1c:07:24:69:
#         57:78:b2:39:fc:3a:84:a0:b5:9c:7c:8d:bf:2e:93:62:27:b7:
#         39:da:17:18:ae:bd:3c:09:68:ff:84:9b:3c:d5:d6:0b:03:e3:
#         57:9e:14:f7:d1:eb:4f:c8:bd:87:23:b7:b6:49:43:79:85:5c:
#         ba:eb:92:0b:a1:c6:e8:68:a8:4c:16:b1:1a:99:0a:e8:53:2c:
#         92:bb:a1:09:18:75:0c:65:a8:7b:cb:23:b7:1a:c2:28:85:c3:
#         1b:ff:d0:2b:62:ef:a4:7b:09:91:98:67:8c:14:01:cd:68:06:
#         6a:63:21:75:03:80:88:8a:6e:81:c6:85:f2:a9:a4:2d:e7:f4:
#         a5:24:10:47:83:ca:cd:f4:8d:79:58:b1:06:9b:e7:1a:2a:d9:
#         9d:01:d7:94:7d:ed:03:4a:ca:f0:db:e8:a9:01:3e:f5:56:99:
#         c9:1e:8e:49:3d:bb:e5:09:b9:e0:4f:49:92:3d:16:82:40:cc:
#         cc:59:c6:e6:3a:ed:12:2e:69:3c:6c:95:b1:fd:aa:1d:7b:7f:
#         86:be:1e:0e:32:46:fb:fb:13:8f:75:7f:4c:8b:4b:46:63:fe:
#         00:34:40:70:c1:c3:b9:a1:dd:a6:70:e2:04:b3:41:bc:e9:80:
#         91:ea:64:9c:7a:e1:22:03:a9:9c:6e:6f:0e:65:4f:6c:87:87:
#         5e:f3:6e:a0:f9:75:a5:9b:40:e8:53:b2:27:9d:4a:b9:c0:77:
#         21:8d:ff:87:f2:de:bc:8c:ef:17:df:b7:49:0b:d1:f2:6e:30:
#         0b:1a:0e:4e:76:ed:11:fc:f5:e9:56:b2:7d:bf:c7:6d:0a:93:
#         8c:a5:d0:c0:b6:1d:be:3a:4e:94:a2:d7:6e:6c:0b:c2:8a:7c:
#         fa:20:f3:c4:e4:e5:cd:0d:a8:cb:91:92:b1:7c:85:ec:b5:14:
#         69:66:0e:82:e7:cd:ce:c8:2d:a6:51:7f:21:c1:35:53:85:06:
#         4a:5d:9f:ad:bb:1b:5f:74

[p11-kit-object-v1]
label: "Camerfirma Chambers of Commerce Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAtzZV5aVdGDDg2olUkfzI
x1L4L1DZ77F1c2VHfRtbunXF/KGIJPov7coISjlUxFF6tdpg6jg8gbLL8bvZkSM/
SAFwdakFKq0fcfPJVD0dBmpAPrMMhe5cG3nCYsS4No41XQEMIwRHNaqbYE6gZj3L
JgqcQKH0XZi/caulAGgq7YN6D6IUtdQis4CwPAxaUWktWBiP7Zme8a7ileb2R6jW
DA+wWFjbw2Y3npuRVDM30pQcakjJyfKl2qUMI/cjDpwyVV5xnIQFUZot/eZOKjRa
3spAN2cMVCFVd9oKDMyXroDclDZK9D7ONhMeU+SsTjoF7Nuucpw4i9A5O4kKPnf+
dQIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Camerfirma Chambers of Commerce Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = EU, O = AC Camerfirma SA CIF A82743287, OU = http://www.chambersign.org, CN = Chambers of Commerce Root
#        Validity
#            Not Before: Sep 30 16:13:43 2003 GMT
#            Not After : Sep 30 16:13:44 2037 GMT
#        Subject: C = EU, O = AC Camerfirma SA CIF A82743287, OU = http://www.chambersign.org, CN = Chambers of Commerce Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:36:55:e5:a5:5d:18:30:e0:da:89:54:91:fc:
#                    c8:c7:52:f8:2f:50:d9:ef:b1:75:73:65:47:7d:1b:
#                    5b:ba:75:c5:fc:a1:88:24:fa:2f:ed:ca:08:4a:39:
#                    54:c4:51:7a:b5:da:60:ea:38:3c:81:b2:cb:f1:bb:
#                    d9:91:23:3f:48:01:70:75:a9:05:2a:ad:1f:71:f3:
#                    c9:54:3d:1d:06:6a:40:3e:b3:0c:85:ee:5c:1b:79:
#                    c2:62:c4:b8:36:8e:35:5d:01:0c:23:04:47:35:aa:
#                    9b:60:4e:a0:66:3d:cb:26:0a:9c:40:a1:f4:5d:98:
#                    bf:71:ab:a5:00:68:2a:ed:83:7a:0f:a2:14:b5:d4:
#                    22:b3:80:b0:3c:0c:5a:51:69:2d:58:18:8f:ed:99:
#                    9e:f1:ae:e2:95:e6:f6:47:a8:d6:0c:0f:b0:58:58:
#                    db:c3:66:37:9e:9b:91:54:33:37:d2:94:1c:6a:48:
#                    c9:c9:f2:a5:da:a5:0c:23:f7:23:0e:9c:32:55:5e:
#                    71:9c:84:05:51:9a:2d:fd:e6:4e:2a:34:5a:de:ca:
#                    40:37:67:0c:54:21:55:77:da:0a:0c:cc:97:ae:80:
#                    dc:94:36:4a:f4:3e:ce:36:13:1e:53:e4:ac:4e:3a:
#                    05:ec:db:ae:72:9c:38:8b:d0:39:3b:89:0a:3e:77:
#                    fe:75
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.chambersign.org/chambersroot.crl
#
#            X509v3 Subject Key Identifier: 
#                E3:94:F5:B1:4D:E9:DB:A1:29:5B:57:8B:4D:76:06:76:E1:D1:A2:8A
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Alternative Name: 
#                email:chambersroot@chambersign.org
#            X509v3 Issuer Alternative Name: 
#                email:chambersroot@chambersign.org
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.17326.10.3.1
#                  CPS: http://cps.chambersign.org/cps/chambersroot.html
#
#    Signature Algorithm: sha1WithRSAEncryption
#         0c:41:97:c2:1a:86:c0:22:7c:9f:fb:90:f3:1a:d1:03:b1:ef:
#         13:f9:21:5f:04:9c:da:c9:a5:8d:27:6c:96:87:91:be:41:90:
#         01:72:93:e7:1e:7d:5f:f6:89:c6:5d:a7:40:09:3d:ac:49:45:
#         45:dc:2e:8d:30:68:b2:09:ba:fb:c3:2f:cc:ba:0b:df:3f:77:
#         7b:46:7d:3a:12:24:8e:96:8f:3c:05:0a:6f:d2:94:28:1d:6d:
#         0c:c0:2e:88:22:d5:d8:cf:1d:13:c7:f0:48:d7:d7:05:a7:cf:
#         c7:47:9e:3b:3c:34:c8:80:4f:d4:14:bb:fc:0d:50:f7:fa:b3:
#         ec:42:5f:a9:dd:6d:c8:f4:75:cf:7b:c1:72:26:b1:01:1c:5c:
#         2c:fd:7a:4e:b4:01:c5:05:57:b9:e7:3c:aa:05:d9:88:e9:07:
#         46:41:ce:ef:41:81:ae:58:df:83:a2:ae:ca:d7:77:1f:e7:00:
#         3c:9d:6f:8e:e4:32:09:1d:4d:78:34:78:34:3c:94:9b:26:ed:
#         4f:71:c6:19:7a:bd:20:22:48:5a:fe:4b:7d:03:b7:e7:58:be:
#         c6:32:4e:74:1e:68:dd:a8:68:5b:b3:3e:ee:62:7d:d9:80:e8:
#         0a:75:7a:b7:ee:b4:65:9a:21:90:e0:aa:d0:98:bc:38:b5:73:
#         3c:8b:f8:dc

[p11-kit-object-v1]
label: "Camerfirma Global Chambersign Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAonCi0J9CrlsXx9h9zxSD
/E/JobcTr4rXnj4ECpKLYFb6tDIviE2hYAj0twlOoEkvSdbT352XWp+UBHDsP1nZ
t8xmi5hSKAkC38UvhI16l3e/7ECdJXKrtT8ymPu3t/xyhOU1h/lV+qMfDm8uKN1p
oNlCEMb4tUTC0EN/27zkojxqVXgKd6nY6hkyty/+XD8b7rGY7MqtemlF45YPVfbm
7XXqZegyVpNGiaglimUG7mu/eQfQ8bev7SxNkrvAqF+nZ30E8hUIcKyS1n0E0jP7
TLYLC/saycSNA6l+XPJQqxKloc9IUKXv0sgaE/qwf7GCHHdqD1/cC5WP70N+5kUJ
JQIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Camerfirma Global Chambersign Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = EU, O = AC Camerfirma SA CIF A82743287, OU = http://www.chambersign.org, CN = Global Chambersign Root
#        Validity
#            Not Before: Sep 30 16:14:18 2003 GMT
#            Not After : Sep 30 16:14:18 2037 GMT
#        Subject: C = EU, O = AC Camerfirma SA CIF A82743287, OU = http://www.chambersign.org, CN = Global Chambersign Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a2:70:a2:d0:9f:42:ae:5b:17:c7:d8:7d:cf:14:
#                    83:fc:4f:c9:a1:b7:13:af:8a:d7:9e:3e:04:0a:92:
#                    8b:60:56:fa:b4:32:2f:88:4d:a1:60:08:f4:b7:09:
#                    4e:a0:49:2f:49:d6:d3:df:9d:97:5a:9f:94:04:70:
#                    ec:3f:59:d9:b7:cc:66:8b:98:52:28:09:02:df:c5:
#                    2f:84:8d:7a:97:77:bf:ec:40:9d:25:72:ab:b5:3f:
#                    32:98:fb:b7:b7:fc:72:84:e5:35:87:f9:55:fa:a3:
#                    1f:0e:6f:2e:28:dd:69:a0:d9:42:10:c6:f8:b5:44:
#                    c2:d0:43:7f:db:bc:e4:a2:3c:6a:55:78:0a:77:a9:
#                    d8:ea:19:32:b7:2f:fe:5c:3f:1b:ee:b1:98:ec:ca:
#                    ad:7a:69:45:e3:96:0f:55:f6:e6:ed:75:ea:65:e8:
#                    32:56:93:46:89:a8:25:8a:65:06:ee:6b:bf:79:07:
#                    d0:f1:b7:af:ed:2c:4d:92:bb:c0:a8:5f:a7:67:7d:
#                    04:f2:15:08:70:ac:92:d6:7d:04:d2:33:fb:4c:b6:
#                    0b:0b:fb:1a:c9:c4:8d:03:a9:7e:5c:f2:50:ab:12:
#                    a5:a1:cf:48:50:a5:ef:d2:c8:1a:13:fa:b0:7f:b1:
#                    82:1c:77:6a:0f:5f:dc:0b:95:8f:ef:43:7e:e6:45:
#                    09:25
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.chambersign.org/chambersignroot.crl
#
#            X509v3 Subject Key Identifier: 
#                43:9C:36:9F:B0:9E:30:4D:C6:CE:5F:AD:10:AB:E5:03:A5:FA:A9:14
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Alternative Name: 
#                email:chambersignroot@chambersign.org
#            X509v3 Issuer Alternative Name: 
#                email:chambersignroot@chambersign.org
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.17326.10.1.1
#                  CPS: http://cps.chambersign.org/cps/chambersignroot.html
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3c:3b:70:91:f9:04:54:27:91:e1:ed:ed:fe:68:7f:61:5d:e5:
#         41:65:4f:32:f1:18:05:94:6a:1c:de:1f:70:db:3e:7b:32:02:
#         34:b5:0c:6c:a1:8a:7c:a5:f4:8f:ff:d4:d8:ad:17:d5:2d:04:
#         d1:3f:58:80:e2:81:59:88:be:c0:e3:46:93:24:fe:90:bd:26:
#         a2:30:2d:e8:97:26:57:35:89:74:96:18:f6:15:e2:af:24:19:
#         56:02:02:b2:ba:0f:14:ea:c6:8a:66:c1:86:45:55:8b:be:92:
#         be:9c:a4:04:c7:49:3c:9e:e8:29:7a:89:d7:fe:af:ff:68:f5:
#         a5:17:90:bd:ac:99:cc:a5:86:57:09:67:46:db:d6:16:c2:46:
#         f1:e4:a9:50:f5:8f:d1:92:15:d3:5f:3e:c6:00:49:3a:6e:58:
#         b2:d1:d1:27:0d:25:c8:32:f8:20:11:cd:7d:32:33:48:94:54:
#         4c:dd:dc:79:c4:30:9f:eb:8e:b8:55:b5:d7:88:5c:c5:6a:24:
#         3d:b2:d3:05:03:51:c6:07:ef:cc:14:72:74:3d:6e:72:ce:18:
#         28:8c:4a:a0:77:e5:09:2b:45:44:47:ac:b7:67:7f:01:8a:05:
#         5a:93:be:a1:c1:ff:f8:e7:0e:67:a4:47:49:76:5d:75:90:1a:
#         f5:26:8f:f0

[p11-kit-object-v1]
label: "CertRSA01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzs/t4ehWHclLMmCbKreX
h2EGNGjLF67AeMXGEVtLfJeruWxOLwD2Uyzp4ZxakGo9ejg4NVqtHApZhbv1Y2cJ
E+kmT9g8Xe9TQt5FYuQ+zXKk+rPA4B+OlOJlLVXBFZIsb/ND1DUFBTQ3oCy0c1vx
JyaUmvW6Esz6eDWirVTVZo8R6qYZTdcTNVR7kZcDR2OwqQ9ovtL0nuqNtXtEtbkt
OMkA4+W/xnWJA5n/jEsID8IFMaRNFxHOw3UPa7Bf0KyGrX3poIi5xhLWwDos0m9s
Jx2q/0WbxgMQAmn5Bu+fIqA4OILIJBGsoZ6PTb54X9+6P4MDfVGj+MddqJFoHx5y
3QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CertRSA01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3 (0x3)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = KR, O = KISA, OU = ROOTCA, CN = CertRSA01
#        Validity
#            Not Before: Mar  2 15:00:00 2000 GMT
#            Not After : Mar  3 14:59:59 2010 GMT
#        Subject: C = KR, O = KISA, OU = ROOTCA, CN = CertRSA01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ce:cf:ed:e1:e8:56:1d:c9:4b:32:60:9b:2a:b7:
#                    97:87:61:06:34:68:cb:17:ae:c0:78:c5:c6:11:5b:
#                    4b:7c:97:ab:b9:6c:4e:2f:00:f6:53:2c:e9:e1:9c:
#                    5a:90:6a:3d:7a:38:38:35:5a:ad:1c:0a:59:85:bb:
#                    f5:63:67:09:13:e9:26:4f:d8:3c:5d:ef:53:42:de:
#                    45:62:e4:3e:cd:72:a4:fa:b3:c0:e0:1f:8e:94:e2:
#                    65:2d:55:c1:15:92:2c:6f:f3:43:d4:35:05:05:34:
#                    37:a0:2c:b4:73:5b:f1:27:26:94:9a:f5:ba:12:cc:
#                    fa:78:35:a2:ad:54:d5:66:8f:11:ea:a6:19:4d:d7:
#                    13:35:54:7b:91:97:03:47:63:b0:a9:0f:68:be:d2:
#                    f4:9e:ea:8d:b5:7b:44:b5:b9:2d:38:c9:00:e3:e5:
#                    bf:c6:75:89:03:99:ff:8c:4b:08:0f:c2:05:31:a4:
#                    4d:17:11:ce:c3:75:0f:6b:b0:5f:d0:ac:86:ad:7d:
#                    e9:a0:88:b9:c6:12:d6:c0:3a:2c:d2:6f:6c:27:1d:
#                    aa:ff:45:9b:c6:03:10:02:69:f9:06:ef:9f:22:a0:
#                    38:38:82:c8:24:11:ac:a1:9e:8f:4d:be:78:5f:df:
#                    ba:3f:83:03:7d:51:a3:f8:c7:5d:a8:91:68:1f:1e:
#                    72:dd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FF:8A:46:72:33:58:E8:48:88:22:AA:17:68:DA:16:48:09:8B:35:91
#            X509v3 Authority Key Identifier: 
#                keyid:FF:8A:46:72:33:58:E8:48:88:22:AA:17:68:DA:16:48:09:8B:35:91
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.2.410.200004.2.1
#
#            X509v3 Subject Alternative Name: 
#                DirName:/CN=\xED\x95\x9C\xEA\xB5\xAD\xEC\xA0\x95\xEB\xB3\xB4\xEB\xB3\xB4\xED\x98\xB8\xEC\x84\xBC\xED\x84\xB0
#            X509v3 Issuer Alternative Name: 
#                DirName:/CN=\xED\x95\x9C\xEA\xB5\xAD\xEC\xA0\x95\xEB\xB3\xB4\xEB\xB3\xB4\xED\x98\xB8\xEC\x84\xBC\xED\x84\xB0
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Policy Constraints: 
#                Require Explicit Policy:0
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://dirsys.rootca.or.kr:389/CN=ROOT-RSA-CRL, OU=ROOTCA, O=KISA, C=KR
#
#    Signature Algorithm: sha1WithRSAEncryption
#         2c:3c:a4:23:6c:42:f8:89:28:47:50:7c:e3:e6:e7:23:2d:36:
#         36:c6:88:2a:91:98:fb:1e:7c:0f:ab:9d:11:ad:75:ac:e4:5c:
#         6b:31:11:74:33:62:6f:d4:06:91:11:c6:72:74:98:2f:b0:62:
#         fb:34:29:af:14:f2:c6:64:e0:bf:ab:cb:57:b9:61:9c:f3:62:
#         4d:33:79:d7:66:2a:51:cc:dc:00:54:05:01:56:7e:8c:b6:8e:
#         13:f4:2d:99:51:e1:9a:78:bc:55:51:4a:49:da:5b:0b:82:fb:
#         43:3d:da:cd:93:09:cb:b5:a3:09:c3:b0:7d:59:48:a2:9b:d8:
#         fb:37:c3:6f:0e:37:ea:05:97:bf:d2:6e:a1:c8:e8:c3:fb:f3:
#         ad:32:c8:55:92:34:42:e0:d4:12:e5:d4:ed:21:8a:e7:98:92:
#         ff:5c:d7:a5:66:aa:bf:f1:3a:7c:2d:c2:e0:55:35:05:da:91:
#         6a:07:53:d1:85:b1:94:c7:26:0d:1b:68:29:08:c1:21:93:0f:
#         6b:a2:60:b8:53:af:44:d9:64:5d:d3:6e:9b:84:12:78:31:18:
#         da:73:bf:ac:24:f8:ab:2d:bf:0e:7e:ba:7b:09:ca:5a:89:a8:
#         2c:52:cc:4c:74:ad:d9:5f:b3:b7:d6:05:f7:41:5f:71:e5:66:
#         19:06:25:79

[p11-kit-object-v1]
label: "Certification Authority of WoSign"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certification Authority of WoSign"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5e:68:d6:11:71:94:63:50:56:00:68:f3:3e:c9:c5:91
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CN, O = WoSign CA Limited, CN = Certification Authority of WoSign
#        Validity
#            Not Before: Aug  8 01:00:01 2009 GMT
#            Not After : Aug  8 01:00:01 2039 GMT
#        Subject: C = CN, O = WoSign CA Limited, CN = Certification Authority of WoSign
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:bd:ca:8d:ac:b8:91:15:56:97:7b:6b:5c:7a:c2:
#                    de:6b:d9:a1:b0:c3:10:23:fa:a7:a1:b2:cc:31:fa:
#                    3e:d9:a6:29:6f:16:3d:e0:6b:f8:b8:40:5f:db:39:
#                    a8:00:7a:8b:a0:4d:54:7d:c2:22:78:fc:8e:09:b8:
#                    a8:85:d7:cc:95:97:4b:74:d8:9e:7e:f0:00:e4:0e:
#                    89:ae:49:28:44:1a:10:99:32:0f:25:88:53:a4:0d:
#                    b3:0f:12:08:16:0b:03:71:27:1c:7f:e1:db:d2:fd:
#                    67:68:c4:05:5d:0a:0e:5d:70:d7:d8:97:a0:bc:53:
#                    41:9a:91:8d:f4:9e:36:66:7a:7e:56:c1:90:5f:e6:
#                    b1:68:20:36:a4:8c:24:2c:2c:47:0b:59:76:66:30:
#                    b5:be:de:ed:8f:f8:9d:d3:bb:01:30:e6:f2:f3:0e:
#                    e0:2c:92:80:f3:85:f9:28:8a:b4:54:2e:9a:ed:f7:
#                    76:fc:15:68:16:eb:4a:6c:eb:2e:12:8f:d4:cf:fe:
#                    0c:c7:5c:1d:0b:7e:05:32:be:5e:b0:09:2a:42:d5:
#                    c9:4e:90:b3:59:0d:bb:7a:7e:cd:d5:08:5a:b4:7f:
#                    d8:1c:69:11:f9:27:0f:7b:06:af:54:83:18:7b:e1:
#                    dd:54:7a:51:68:6e:77:fc:c6:bf:52:4a:66:46:a1:
#                    b2:67:1a:bb:a3:4f:77:a0:be:5d:ff:fc:56:0b:43:
#                    72:77:90:ca:9e:f9:f2:39:f5:0d:a9:f4:ea:d7:e7:
#                    b3:10:2f:30:42:37:21:cc:30:70:c9:86:98:0f:cc:
#                    58:4d:83:bb:7d:e5:1a:a5:37:8d:b6:ac:32:97:00:
#                    3a:63:71:24:1e:9e:37:c4:ff:74:d4:37:c0:e2:fe:
#                    88:46:60:11:dd:08:3f:50:36:ab:b8:7a:a4:95:62:
#                    6a:6e:b0:ca:6a:21:5a:69:f3:f3:fb:1d:70:39:95:
#                    f3:a7:6e:a6:81:89:a1:88:c5:3b:71:ca:a3:52:ee:
#                    83:bb:fd:a0:77:f4:e4:6f:e7:42:db:6d:4a:99:8a:
#                    34:48:bc:17:dc:e4:80:08:22:b6:f2:31:c0:3f:04:
#                    3e:eb:9f:20:79:d6:b8:06:64:64:02:31:d7:a9:cd:
#                    52:fb:84:45:69:09:00:2a:dc:55:8b:c4:06:46:4b:
#                    c0:4a:1d:09:5b:39:28:fd:a9:ab:ce:00:f9:2e:48:
#                    4b:26:e6:30:4c:a5:58:ca:b4:44:82:4f:e7:91:1e:
#                    33:c3:b0:93:ff:11:fc:81:d2:ca:1f:71:29:dd:76:
#                    4f:92:25:af:1d:81:b7:0f:2f:8c:c3:06:cc:2f:27:
#                    a3:4a:e4:0e:99:ba:7c:1e:45:1f:7f:aa:19:45:96:
#                    fd:fc:3d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E1:66:CF:0E:D1:F1:B3:4B:B7:06:20:14:FE:87:12:D5:F6:FE:FB:3E
#    Signature Algorithm: sha1WithRSAEncryption
#         a8:cb:72:40:b2:76:c1:7e:7b:fc:ad:64:e3:32:7b:cc:3c:b6:
#         5d:46:d3:f5:2c:e2:70:5d:c8:2e:d8:06:7d:98:d1:0b:21:a0:
#         89:59:24:01:9d:f9:af:09:7d:0a:23:82:34:d5:fc:7c:72:99:
#         b9:a3:d7:54:f4:ea:52:70:0e:c5:f5:d6:3b:e1:3a:09:32:e6:
#         21:39:93:bd:b3:15:ea:4f:6a:f4:f5:8b:3f:2f:7c:8d:58:2e:
#         c5:e1:39:a0:3e:c7:3d:4a:73:9e:40:7a:c0:2b:61:a9:67:c9:
#         f3:24:b9:b3:6d:55:2c:5a:1d:9e:25:72:ce:0b:ad:aa:c7:55:
#         62:0b:be:fb:63:b3:61:44:23:a3:cb:e1:1a:0e:f7:9a:06:4d:
#         de:d4:23:4e:21:96:5b:39:5b:57:1d:2f:5d:08:5e:09:79:ff:
#         7c:97:b5:4d:83:ae:0d:d6:e6:a3:79:e0:33:d0:99:96:02:30:
#         a7:3e:ff:d2:a3:43:3f:05:5a:06:ea:44:02:da:7c:f8:48:d0:
#         33:a9:f9:07:c7:95:e1:f5:3e:f5:5d:71:ba:f2:95:a9:74:88:
#         61:59:e3:bf:ca:5a:13:ba:72:b4:8c:5d:36:87:e9:a6:c5:3c:
#         13:bf:de:d0:44:26:ee:b7:ec:2e:70:fa:d7:9d:b7:ac:e5:c5:
#         40:5a:e6:d7:6c:7b:2c:c3:56:9b:47:cd:0b:ce:fa:1b:b4:21:
#         d7:b7:66:b8:f4:25:30:8b:5c:0d:b9:ea:67:b2:f4:6d:ae:d5:
#         a1:9e:4f:d8:9f:e9:27:02:b0:1d:06:d6:8f:e3:fb:48:12:9f:
#         7f:11:a1:10:3e:4c:51:3a:96:b0:d1:13:f1:c7:d8:26:ae:3a:
#         ca:91:c4:69:9d:df:01:29:64:51:6f:68:da:14:ec:08:41:97:
#         90:8d:d0:b2:80:f2:cf:c2:3d:bf:91:68:c5:80:67:1e:c4:60:
#         13:55:d5:61:99:57:7c:ba:95:0f:61:49:3a:ca:75:bc:c9:0a:
#         93:3f:67:0e:12:f2:28:e2:31:1b:c0:57:16:df:08:7c:19:c1:
#         7e:0f:1f:85:1e:0a:36:7c:5b:7e:27:bc:7a:bf:e0:db:f4:da:
#         52:bd:de:0c:54:70:31:91:43:95:c8:bc:f0:3e:dd:09:7e:30:
#         64:50:ed:7f:01:a4:33:67:4d:68:4f:be:15:ef:b0:f6:02:11:
#         a2:1b:13:25:3a:dc:c2:59:f1:e3:5c:46:bb:67:2c:02:46:ea:
#         1e:48:a6:e6:5b:d9:b5:bc:51:a2:92:96:db:aa:c6:37:22:a6:
#         fe:cc:20:74:a3:2d:a9:2e:6b:cb:c0:82:11:21:b5:93:79:ee:
#         44:86:be:d7:1e:e4:1e:fb

[p11-kit-object-v1]
label: "Certification Authority of WoSign G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvsXEoCKASU+/2YcRxlPh
uw+9YH+v9oIOH9ywjj2X4FA8jzrvZjtFB5sg+OPXJYY1kBaiXW8wGQiHC38Gsp1i
j96vkqVg1CuAmlI/9ZqD6TRay9nVYlzmDuDfBpgOgHzKtB0TiGsOqCR3A9DuW/PK
aZE1OVbFbeP3PU9ekzgkyhjpJMuSA93MHD0JcOQg5PGurLtzaaNjOg9FD6FKmsLR
Y6zLEPg95k4ot+vElbGs/V6r+kHLXZ1L3PR8du9nfwB6jdKgGlxNIuG12t12s9R2
3164i5jIFFTMaxeSt+BKv0mUYQs4kI9dJGwlezt52eJ+na2fmKEG/HgUYFf47oB3
sQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certification Authority of WoSign G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6b:25:da:8a:88:9d:7c:bc:0f:05:b3:b1:7a:61:45:44
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = WoSign CA Limited, CN = Certification Authority of WoSign G2
#        Validity
#            Not Before: Nov  8 00:58:58 2014 GMT
#            Not After : Nov  8 00:58:58 2044 GMT
#        Subject: C = CN, O = WoSign CA Limited, CN = Certification Authority of WoSign G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:be:c5:c4:a0:22:80:49:4f:bf:d9:87:11:c6:53:
#                    e1:bb:0f:bd:60:7f:af:f6:82:0e:1f:dc:b0:8e:3d:
#                    97:e0:50:3c:8f:3a:ef:66:3b:45:07:9b:20:f8:e3:
#                    d7:25:86:35:90:16:a2:5d:6f:30:19:08:87:0b:7f:
#                    06:b2:9d:62:8f:de:af:92:a5:60:d4:2b:80:9a:52:
#                    3f:f5:9a:83:e9:34:5a:cb:d9:d5:62:5c:e6:0e:e0:
#                    df:06:98:0e:80:7c:ca:b4:1d:13:88:6b:0e:a8:24:
#                    77:03:d0:ee:5b:f3:ca:69:91:35:39:56:c5:6d:e3:
#                    f7:3d:4f:5e:93:38:24:ca:18:e9:24:cb:92:03:dd:
#                    cc:1c:3d:09:70:e4:20:e4:f1:ae:ac:bb:73:69:a3:
#                    63:3a:0f:45:0f:a1:4a:9a:c2:d1:63:ac:cb:10:f8:
#                    3d:e6:4e:28:b7:eb:c4:95:b1:ac:fd:5e:ab:fa:41:
#                    cb:5d:9d:4b:dc:f4:7c:76:ef:67:7f:00:7a:8d:d2:
#                    a0:1a:5c:4d:22:e1:b5:da:dd:76:b3:d4:76:df:5e:
#                    b8:8b:98:c8:14:54:cc:6b:17:92:b7:e0:4a:bf:49:
#                    94:61:0b:38:90:8f:5d:24:6c:25:7b:3b:79:d9:e2:
#                    7e:9d:ad:9f:98:a1:06:fc:78:14:60:57:f8:ee:80:
#                    77:b1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                FA:60:A9:EB:65:C5:DD:16:14:08:4E:0C:0F:8D:9B:E0:F7:64:AF:67
#    Signature Algorithm: sha256WithRSAEncryption
#         57:c3:7a:36:82:9c:8d:98:e2:ab:40:aa:47:8f:c7:a7:5b:ed:
#         7c:e7:3d:66:5a:3b:31:bb:df:f3:16:33:91:fc:7c:7b:a5:c2:
#         a6:66:e3:aa:b0:b7:27:98:3f:49:d7:60:67:67:3f:36:4f:4a:
#         cb:f1:14:fa:5a:87:28:1c:ed:8f:41:32:c6:95:f9:7d:da:bd:
#         7b:5b:c2:b0:21:e3:8f:46:dc:21:38:43:74:4c:fb:30:f8:17:
#         72:c1:32:fc:c8:91:17:c4:cc:58:37:4e:0b:cc:5a:f7:21:35:
#         28:83:6c:60:2d:44:eb:52:8c:50:3d:b5:6c:12:d7:fa:09:bb:
#         6c:b2:4a:b1:c5:89:e4:fc:d3:52:d8:61:17:fe:7a:94:84:8f:
#         79:b6:33:59:ba:0f:c4:0b:e2:70:a0:4b:78:2e:fa:c8:9f:fd:
#         af:91:65:0a:78:38:15:e5:97:17:14:dd:f9:e0:2c:34:f8:38:
#         d0:84:22:00:c0:14:51:18:2b:02:dc:30:5a:f0:e8:01:7c:35:
#         3a:23:af:08:e4:af:aa:8e:28:42:49:2e:f0:f5:99:34:be:ed:
#         0f:4b:18:e1:d2:24:3c:bb:5d:47:b7:21:f2:8d:d1:0a:99:8e:
#         e3:6e:3e:ad:70:e0:8f:b9:ca:cc:6e:81:31:f6:7b:9c:7a:79:
#         e4:67:71:18

[p11-kit-object-v1]
label: "Certigna"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyGjxydbWszR1JoIe7LS+
6lzhJu0RR2HhonwWeEAh5GCeWshj4cSxlpL/GG1pI+ErYvfd4jYvkQe5SM8O7Hm2
LOc0S3AIJaM8hxsZ8oEHDziQGdMR/oa08tFeHh6WzYBszjsxk7byoNCplRJ9pZrM
a8iEVoozqeciFVMW8MwX7Fdf6aIKmAne41+cb9xI44ULFVqmup+sSOMJsvf0Mt5e
NL4ceF1CW84OIo9NkNd9MhizCyxqv44/FBGJIA53FLU9lAiH9yUe1bJgAOxvKigl
bio+GGMXJT8+RCAW9ibIJa4FSrTnYyzzjBZTflz7ERoIwUZinyK48cKNadz6OlgG
3wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certigna"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            fe:dc:e3:01:0f:c9:48:ff
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = FR, O = Dhimyotis, CN = Certigna
#        Validity
#            Not Before: Jun 29 15:13:05 2007 GMT
#            Not After : Jun 29 15:13:05 2027 GMT
#        Subject: C = FR, O = Dhimyotis, CN = Certigna
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c8:68:f1:c9:d6:d6:b3:34:75:26:82:1e:ec:b4:
#                    be:ea:5c:e1:26:ed:11:47:61:e1:a2:7c:16:78:40:
#                    21:e4:60:9e:5a:c8:63:e1:c4:b1:96:92:ff:18:6d:
#                    69:23:e1:2b:62:f7:dd:e2:36:2f:91:07:b9:48:cf:
#                    0e:ec:79:b6:2c:e7:34:4b:70:08:25:a3:3c:87:1b:
#                    19:f2:81:07:0f:38:90:19:d3:11:fe:86:b4:f2:d1:
#                    5e:1e:1e:96:cd:80:6c:ce:3b:31:93:b6:f2:a0:d0:
#                    a9:95:12:7d:a5:9a:cc:6b:c8:84:56:8a:33:a9:e7:
#                    22:15:53:16:f0:cc:17:ec:57:5f:e9:a2:0a:98:09:
#                    de:e3:5f:9c:6f:dc:48:e3:85:0b:15:5a:a6:ba:9f:
#                    ac:48:e3:09:b2:f7:f4:32:de:5e:34:be:1c:78:5d:
#                    42:5b:ce:0e:22:8f:4d:90:d7:7d:32:18:b3:0b:2c:
#                    6a:bf:8e:3f:14:11:89:20:0e:77:14:b5:3d:94:08:
#                    87:f7:25:1e:d5:b2:60:00:ec:6f:2a:28:25:6e:2a:
#                    3e:18:63:17:25:3f:3e:44:20:16:f6:26:c8:25:ae:
#                    05:4a:b4:e7:63:2c:f3:8c:16:53:7e:5c:fb:11:1a:
#                    08:c1:46:62:9f:22:b8:f1:c2:8d:69:dc:fa:3a:58:
#                    06:df
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                1A:ED:FE:41:39:90:B4:24:59:BE:01:F2:52:D5:45:F6:5A:39:DC:11
#            X509v3 Authority Key Identifier: 
#                keyid:1A:ED:FE:41:39:90:B4:24:59:BE:01:F2:52:D5:45:F6:5A:39:DC:11
#                DirName:/C=FR/O=Dhimyotis/CN=Certigna
#                serial:FE:DC:E3:01:0F:C9:48:FF
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         85:03:1e:92:71:f6:42:af:e1:a3:61:9e:eb:f3:c0:0f:f2:a5:
#         d4:da:95:e6:d6:be:68:36:3d:7e:6e:1f:4c:8a:ef:d1:0f:21:
#         6d:5e:a5:52:63:ce:12:f8:ef:2a:da:6f:eb:37:fe:13:02:c7:
#         cb:3b:3e:22:6b:da:61:2e:7f:d4:72:3d:dd:30:e1:1e:4c:40:
#         19:8c:0f:d7:9c:d1:83:30:7b:98:59:dc:7d:c6:b9:0c:29:4c:
#         a1:33:a2:eb:67:3a:65:84:d3:96:e2:ed:76:45:70:8f:b5:2b:
#         de:f9:23:d6:49:6e:3c:14:b5:c6:9f:35:1e:50:d0:c1:8f:6a:
#         70:44:02:62:cb:ae:1d:68:41:a7:aa:57:e8:53:aa:07:d2:06:
#         f6:d5:14:06:0b:91:03:75:2c:6c:72:b5:61:95:9a:0d:8b:b9:
#         0d:e7:f5:df:54:cd:de:e6:d8:d6:09:08:97:63:e5:c1:2e:b0:
#         b7:44:26:c0:26:c0:af:55:30:9e:3b:d5:36:2a:19:04:f4:5c:
#         1e:ff:cf:2c:b7:ff:d0:fd:87:40:11:d5:11:23:bb:48:c0:21:
#         a9:a4:28:2d:fd:15:f8:b0:4e:2b:f4:30:5b:21:fc:11:91:34:
#         be:41:ef:7b:9d:97:75:ff:97:95:c0:96:58:2f:ea:bb:46:d7:
#         bb:e4:d9:2e

[p11-kit-object-v1]
label: "Certigna Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAzRg5ZRpZsepkFg6MlCSV
fIPTxTkm3AzvFleN19iso0J/gsrtzVvbDrct7UUIF7LZs8vWF1JyKNuOTp6Ktgv5
noSaTXbeIilc0rPSBj4wOal0o5JWHKFvTAogbZ8jerTG2izkHSzcsyjQE/JMTgJJ
oVRAnublBaAthMj/mGzQ64oahAget2gj7iPVcM5tUWkQ7qF6wtEiMcKChdLyVXZQ
fCV6yYRcC6zdQk4r54KiJInLkLLQ7iO6Zky7YqT5U1pke3yY+qNIng+VrqcY9Grs
LgNFr/B0+CrNel3RvkQmMinx8fVszH4CIQufb6Q/vp1T4s99qSx8WBqX4T03Nxhm
KNJAxVGKjMMtzlOIJFhkMBbFquDWCqZA33j29QR8aROEvNHRpwbPAfdowKhXuzph
rQSMk+Ot/PDbRG1Z3ElZrqyamTYwQXt2MyKHo8KShm75cO6uh4eVG8R6vTHz1NLl
mf++SOx19XgWHaZwwX88G6GS+8/IPNbFkwqP9VU6dpXOWZiKCZV3MpqDuiwEOpe9
1C++12ybosp9bSbJVdXPw3lSCAmZByQtZCVrpiFpm2rddE1rl3pBvasX+ZAXSI82
+S3VxdvuqoVFQfrNOkWxaOY2TJuQV+wjuYcIwsQJ8ZeGKihN4nTA2sSM29/ioRdZ
ziRZdDHaf/0wbdnc4Wrh/F8CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certigna Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            ca:e9:1b:89:f1:55:03:0d:a3:e6:41:6d:c4:e3:a6:e1
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = FR, O = Dhimyotis, OU = 0002 48146308100036, CN = Certigna Root CA
#        Validity
#            Not Before: Oct  1 08:32:27 2013 GMT
#            Not After : Oct  1 08:32:27 2033 GMT
#        Subject: C = FR, O = Dhimyotis, OU = 0002 48146308100036, CN = Certigna Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:cd:18:39:65:1a:59:b1:ea:64:16:0e:8c:94:24:
#                    95:7c:83:d3:c5:39:26:dc:0c:ef:16:57:8d:d7:d8:
#                    ac:a3:42:7f:82:ca:ed:cd:5b:db:0e:b7:2d:ed:45:
#                    08:17:b2:d9:b3:cb:d6:17:52:72:28:db:8e:4e:9e:
#                    8a:b6:0b:f9:9e:84:9a:4d:76:de:22:29:5c:d2:b3:
#                    d2:06:3e:30:39:a9:74:a3:92:56:1c:a1:6f:4c:0a:
#                    20:6d:9f:23:7a:b4:c6:da:2c:e4:1d:2c:dc:b3:28:
#                    d0:13:f2:4c:4e:02:49:a1:54:40:9e:e6:e5:05:a0:
#                    2d:84:c8:ff:98:6c:d0:eb:8a:1a:84:08:1e:b7:68:
#                    23:ee:23:d5:70:ce:6d:51:69:10:ee:a1:7a:c2:d1:
#                    22:31:c2:82:85:d2:f2:55:76:50:7c:25:7a:c9:84:
#                    5c:0b:ac:dd:42:4e:2b:e7:82:a2:24:89:cb:90:b2:
#                    d0:ee:23:ba:66:4c:bb:62:a4:f9:53:5a:64:7b:7c:
#                    98:fa:a3:48:9e:0f:95:ae:a7:18:f4:6a:ec:2e:03:
#                    45:af:f0:74:f8:2a:cd:7a:5d:d1:be:44:26:32:29:
#                    f1:f1:f5:6c:cc:7e:02:21:0b:9f:6f:a4:3f:be:9d:
#                    53:e2:cf:7d:a9:2c:7c:58:1a:97:e1:3d:37:37:18:
#                    66:28:d2:40:c5:51:8a:8c:c3:2d:ce:53:88:24:58:
#                    64:30:16:c5:aa:e0:d6:0a:a6:40:df:78:f6:f5:04:
#                    7c:69:13:84:bc:d1:d1:a7:06:cf:01:f7:68:c0:a8:
#                    57:bb:3a:61:ad:04:8c:93:e3:ad:fc:f0:db:44:6d:
#                    59:dc:49:59:ae:ac:9a:99:36:30:41:7b:76:33:22:
#                    87:a3:c2:92:86:6e:f9:70:ee:ae:87:87:95:1b:c4:
#                    7a:bd:31:f3:d4:d2:e5:99:ff:be:48:ec:75:f5:78:
#                    16:1d:a6:70:c1:7f:3c:1b:a1:92:fb:cf:c8:3c:d6:
#                    c5:93:0a:8f:f5:55:3a:76:95:ce:59:98:8a:09:95:
#                    77:32:9a:83:ba:2c:04:3a:97:bd:d4:2f:be:d7:6c:
#                    9b:a2:ca:7d:6d:26:c9:55:d5:cf:c3:79:52:08:09:
#                    99:07:24:2d:64:25:6b:a6:21:69:9b:6a:dd:74:4d:
#                    6b:97:7a:41:bd:ab:17:f9:90:17:48:8f:36:f9:2d:
#                    d5:c5:db:ee:aa:85:45:41:fa:cd:3a:45:b1:68:e6:
#                    36:4c:9b:90:57:ec:23:b9:87:08:c2:c4:09:f1:97:
#                    86:2a:28:4d:e2:74:c0:da:c4:8c:db:df:e2:a1:17:
#                    59:ce:24:59:74:31:da:7f:fd:30:6d:d9:dc:e1:6a:
#                    e1:fc:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                18:87:56:E0:6E:77:EE:24:35:3C:4E:73:9A:1F:D6:E1:E2:79:7E:2B
#            X509v3 Authority Key Identifier: 
#                keyid:18:87:56:E0:6E:77:EE:24:35:3C:4E:73:9A:1F:D6:E1:E2:79:7E:2B
#
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: https://wwww.certigna.fr/autorites/
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.certigna.fr/certignarootca.crl
#
#                Full Name:
#                  URI:http://crl.dhimyotis.com/certignarootca.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         94:b8:9e:4f:f0:e3:95:08:22:e7:cd:68:41:f7:1c:55:d5:7c:
#         00:e2:2d:3a:89:5d:68:38:2f:51:22:0b:4a:8d:cb:e9:bb:5d:
#         3e:bb:5c:3d:b1:28:fe:e4:53:55:13:cf:a1:90:1b:02:1d:5f:
#         66:46:09:33:28:e1:0d:24:97:70:d3:10:1f:ea:64:57:96:bb:
#         5d:da:e7:c4:8c:4f:4c:64:46:1d:5c:87:e3:59:de:42:d1:9b:
#         a8:7e:a6:89:dd:8f:1c:c9:30:82:ed:3b:9c:cd:c0:e9:19:e0:
#         6a:d8:02:75:37:ab:f7:34:28:28:91:f2:04:0a:4f:35:e3:60:
#         26:01:fa:d0:11:8c:f9:11:6a:ee:af:3d:c3:50:d3:8f:5f:33:
#         79:3c:86:a8:73:45:90:8c:20:b6:72:73:17:23:be:07:65:e5:
#         78:92:0d:ba:01:c0:eb:8c:1c:66:bf:ac:86:77:01:94:0d:9c:
#         e6:e9:39:8d:1f:a6:51:8c:99:0c:39:77:e1:b4:9b:fa:1c:67:
#         57:6f:6a:6a:8e:a9:2b:4c:57:79:7a:57:22:cf:cd:5f:63:46:
#         8d:5c:59:3a:86:f8:32:47:62:a3:67:0d:18:91:dc:fb:a6:6b:
#         f5:48:61:73:23:59:8e:02:a7:bc:44:ea:f4:49:9d:f1:54:58:
#         f9:60:af:da:18:a4:2f:28:45:dc:7a:a0:88:86:5d:f3:3b:e7:
#         ff:29:35:80:fc:64:43:94:e6:e3:1c:6f:be:ad:0e:2a:63:99:
#         2b:c9:7e:85:f6:71:e8:06:03:95:fe:de:8f:48:1c:5a:d4:92:
#         e8:2b:ee:e7:31:db:ba:04:6a:87:98:e7:c5:5f:ef:7d:a7:22:
#         f7:01:d8:4d:f9:89:d0:0e:9a:05:59:a4:9e:98:d9:6f:2b:ca:
#         70:be:64:c2:55:a3:f4:e9:af:c3:92:29:dc:88:16:24:99:3c:
#         8d:26:98:b6:5b:b7:cc:ce:b7:37:07:fd:26:d9:98:85:24:ff:
#         59:23:03:9a:ed:9d:9d:a8:e4:5e:38:ce:d7:52:0d:6f:d2:3f:
#         6d:b1:05:6b:49:ce:8a:91:46:73:f4:f6:2f:f0:a8:73:77:0e:
#         65:ac:a1:8d:66:52:69:7e:4b:68:0c:c7:1e:37:27:83:a5:8c:
#         c7:02:e4:14:cd:49:01:b0:73:b3:fd:c6:90:3a:6f:d2:6c:ed:
#         3b:ee:ec:91:be:a2:43:5d:8b:00:4a:66:25:44:70:de:40:0f:
#         f8:7c:15:f7:a2:ce:3c:d7:5e:13:8c:81:17:18:17:d1:bd:f1:
#         77:10:3a:d4:65:39:c1:27:ac:57:2c:25:54:ff:a2:da:4f:8a:
#         61:39:5e:ae:3d:4a:8c:bd

[p11-kit-object-v1]
label: "Certinomis - Autorité Racine"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certinomis - Autorité Racine"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = FR, O = Certinomis, OU = 0002 433998903, CN = Certinomis - Autorit\C3\A9 Racine
#        Validity
#            Not Before: Sep 17 08:28:59 2008 GMT
#            Not After : Sep 17 08:28:59 2028 GMT
#        Subject: C = FR, O = Certinomis, OU = 0002 433998903, CN = Certinomis - Autorit\C3\A9 Racine
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:9d:85:9f:86:d3:e3:af:c7:b2:6b:6e:33:e0:9e:
#                    b7:42:34:55:9d:f9:81:be:63:d8:23:76:0e:97:54:
#                    cd:99:4c:1a:f1:39:c7:88:d8:17:50:0c:9e:61:da:
#                    c0:4e:55:de:e7:5a:b8:7a:4e:77:87:0d:e5:b8:eb:
#                    fa:9e:5e:7b:1e:c4:cf:28:74:c7:93:f5:14:c6:22:
#                    28:04:f9:91:c3:ab:27:73:6a:0e:2e:4d:f3:2e:28:
#                    1f:70:df:55:2f:4e:ed:c7:71:6f:09:72:2e:ed:d5:
#                    32:97:d0:f1:58:77:d1:60:bc:4e:5e:db:9a:84:f6:
#                    47:61:45:2b:f6:50:a6:7f:6a:71:27:48:84:35:9e:
#                    ac:fe:69:a9:9e:7a:5e:35:25:fa:b4:a7:49:35:77:
#                    96:a7:36:5b:e1:cd:df:23:70:d8:5d:4c:a5:08:83:
#                    f1:a6:24:38:13:a8:ec:2f:a8:a1:67:c7:a6:2d:86:
#                    47:ee:8a:fc:ec:9b:0e:74:f4:2b:49:02:7b:90:75:
#                    8c:fc:99:39:01:39:d6:4a:89:e5:9e:76:ab:3e:96:
#                    28:38:26:8b:dd:8d:8c:c0:f6:01:1e:6f:a5:31:12:
#                    38:7d:95:c2:71:ee:ed:74:ae:e4:36:a2:43:75:d5:
#                    f1:00:9b:e2:e4:d7:cc:42:03:4b:78:7a:e5:7d:bb:
#                    b8:ae:2e:20:93:d3:e4:61:df:71:e1:76:67:97:3f:
#                    b6:df:6a:73:5a:64:22:e5:42:db:cf:81:03:93:d8:
#                    f4:e3:10:e0:72:f6:00:70:ac:f0:c1:7a:0f:05:7f:
#                    cf:34:69:45:b5:93:e4:19:db:52:16:23:05:89:0e:
#                    8d:48:e4:25:6f:b3:78:bf:62:f5:07:fa:95:24:c2:
#                    96:b2:e8:a3:23:c2:5d:03:fc:c3:d3:e5:7c:c9:75:
#                    23:d7:f4:f5:bc:de:e4:df:cd:80:bf:91:88:7d:a7:
#                    13:b4:39:ba:2c:ba:bd:d1:6b:cc:f3:a5:28:ed:44:
#                    9e:7d:52:a3:6f:96:2e:19:7e:1c:f3:5b:c7:16:8e:
#                    bb:60:7d:77:66:47:54:82:00:11:60:6c:32:c1:a8:
#                    38:1b:eb:6e:98:13:d6:ee:38:f5:f0:9f:0e:ef:fe:
#                    31:81:c1:d2:24:95:2f:53:7a:69:a2:f0:0f:86:45:
#                    8e:58:82:2b:4c:22:d4:5e:a0:e7:7d:26:27:48:df:
#                    25:46:8d:4a:28:7c:86:9e:f9:9b:1a:59:b9:65:bf:
#                    05:dd:b6:42:5d:3d:e6:00:48:82:5e:20:f7:11:82:
#                    de:ca:d8:9f:e6:37:47:26:1e:eb:78:f7:61:c3:41:
#                    64:58:02:41:f9:da:e0:d1:f8:f9:e8:fd:52:38:b6:
#                    f5:89:df
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                0D:8C:B6:61:DA:44:B8:D1:14:7D:C3:BE:7D:5E:48:F0:CE:CA:6A:B0
#            X509v3 Certificate Policies: 
#                Policy: 1.2.250.1.86.2.2.0.1.1
#
#    Signature Algorithm: sha1WithRSAEncryption
#         24:3e:60:06:7e:1d:ef:3a:3e:db:ea:af:1c:9a:2c:01:0b:f4:
#         c5:b5:d9:49:31:f4:5d:41:8d:89:0c:4e:ff:6c:a2:fd:ff:e2:
#         06:c8:39:9f:f1:5a:a9:dd:22:58:15:a8:8a:d3:b1:e6:32:09:
#         82:03:6c:d7:3f:08:c7:f8:b9:ba:00:6d:b9:d6:fc:52:32:5d:
#         a4:7f:a4:31:94:bb:b6:4c:38:7f:28:30:35:ff:9f:23:53:b7:
#         b6:ee:14:70:00:40:2b:da:47:ab:34:7e:5e:a7:56:30:61:2b:
#         8b:43:ac:fd:b6:88:28:f5:6b:b6:3e:60:4a:ba:42:90:34:67:
#         8d:ea:eb:5f:45:54:3b:17:ac:8b:e4:c6:65:0f:ee:d0:8c:5d:
#         66:39:ce:32:a7:d8:10:97:c0:7e:34:9c:9f:94:f3:f6:86:1f:
#         cf:1b:73:ad:94:79:87:68:70:c3:33:a5:70:e7:d8:d5:38:94:
#         6f:63:79:eb:bf:0a:0e:08:e7:c5:2f:0f:42:a0:2b:14:40:ff:
#         21:e0:05:c5:27:e1:84:11:13:ba:d6:86:1d:41:0b:13:23:89:
#         d3:c9:0b:e8:8a:ba:7a:a3:a3:73:37:35:80:7d:12:b8:33:77:
#         40:38:c0:fa:5e:30:d2:f2:b6:a3:b1:d6:a2:95:97:81:9b:52:
#         ed:69:4c:ff:80:e4:53:db:54:5b:03:6d:54:5f:b1:b8:ef:24:
#         bd:6f:9f:11:c3:c7:64:c2:0f:28:62:85:66:5e:1a:7b:b2:b7:
#         ef:ae:35:c9:19:33:a8:b8:27:db:33:55:bf:68:e1:75:48:44:
#         56:fb:cd:d3:48:bb:47:89:3a:ac:69:f5:80:c6:e4:44:50:2f:
#         54:c4:aa:43:c5:31:31:58:bd:96:c5:ea:75:6c:9a:75:b1:4d:
#         f8:f7:97:ff:96:16:f2:97:4d:e8:f6:f3:11:f9:3a:7d:8a:38:
#         6e:04:cb:e1:d3:45:15:aa:a5:d1:1d:9d:5d:63:e8:24:e6:36:
#         14:e2:87:ad:1b:59:f5:44:9b:fb:d7:77:7c:1f:01:70:62:a1:
#         20:1a:a2:c5:1a:28:f4:21:03:ee:2e:d9:c1:80:ea:b9:d9:82:
#         d6:5b:76:c2:cb:3b:b5:d2:00:f0:a3:0e:e1:ad:6e:40:f7:db:
#         a0:b4:d0:46:ae:15:d7:44:c2:4d:35:f9:d2:0b:f2:17:f6:ac:
#         66:d5:24:b2:4f:d1:1c:99:c0:6e:f5:7d:eb:74:04:b8:f9:4d:
#         77:09:d7:b4:cf:07:30:09:f1:b8:00:56:d9:17:16:16:0a:2b:
#         86:df:8f:01:19:1a:e5:bb:82:63:ff:be:0b:76:16:5e:37:37:
#         e6:d8:74:97:a2:99:45:79

[p11-kit-object-v1]
label: "Certipost E-Trust Primary Normalised CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1bOqUoR6F5MiD7gEGMrJ
8oIqrBULp1Bxtkwla/f/AapXWndOXhMUDVXyHvGFzYXXghwM2gkrvf28nv5tiU2i
AiTmUeo3fzFGWnuadrMuoF1f5PiZCge+7pImEsl7511s0INHDsCMp9F5V8ALGZyb
nkPFTpElzogrbXnZeYrWZk4iwxpFTu/IsGImTiZUUJ8Mb7NrzHyff94PDbWPw2vU
4cL7u1ZQqow9jwCLPPxIF2rSWvN1bWWBvUZdn6JiU67O86nkkStaJsN5ZtGmU2Y1
HAZxse6ZDsT7WBKsIkYt4iKS2+E8v7v+hueTNHPPeGnTy975DLJo2smKCmBUxPNW
YwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certipost E-Trust Primary Normalised CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:05:52:64:c7:61
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BE, O = Certipost s.a./n.v., CN = Certipost E-Trust Primary Normalised CA
#        Validity
#            Not Before: Jul 26 10:00:00 2005 GMT
#            Not After : Jul 26 10:00:00 2020 GMT
#        Subject: C = BE, O = Certipost s.a./n.v., CN = Certipost E-Trust Primary Normalised CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d5:b3:aa:52:84:7a:17:93:22:0f:b8:04:18:ca:
#                    c9:f2:82:2a:ac:15:0b:a7:50:71:b6:4c:25:6b:f7:
#                    ff:01:aa:57:5a:77:4e:5e:13:14:0d:55:f2:1e:f1:
#                    85:cd:85:d7:82:1c:0c:da:09:2b:bd:fd:bc:9e:fe:
#                    6d:89:4d:a2:02:24:e6:51:ea:37:7f:31:46:5a:7b:
#                    9a:76:b3:2e:a0:5d:5f:e4:f8:99:0a:07:be:ee:92:
#                    26:12:c9:7b:e7:5d:6c:d0:83:47:0e:c0:8c:a7:d1:
#                    79:57:c0:0b:19:9c:9b:9e:43:c5:4e:91:25:ce:88:
#                    2b:6d:79:d9:79:8a:d6:66:4e:22:c3:1a:45:4e:ef:
#                    c8:b0:62:26:4e:26:54:50:9f:0c:6f:b3:6b:cc:7c:
#                    9f:7f:de:0f:0d:b5:8f:c3:6b:d4:e1:c2:fb:bb:56:
#                    50:aa:8c:3d:8f:00:8b:3c:fc:48:17:6a:d2:5a:f3:
#                    75:6d:65:81:bd:46:5d:9f:a2:62:53:ae:ce:f3:a9:
#                    e4:91:2b:5a:26:c3:79:66:d1:a6:53:66:35:1c:06:
#                    71:b1:ee:99:0e:c4:fb:58:12:ac:22:46:2d:e2:22:
#                    92:db:e1:3c:bf:bb:fe:86:e7:93:34:73:cf:78:69:
#                    d3:cb:de:f9:0c:b2:68:da:c9:8a:0a:60:54:c4:f3:
#                    56:63
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 0.3.2062.7.1.0.1.2.0
#                  CPS: http://www.e-trust.be/CPS/QNcerts 
#
#            X509v3 Subject Key Identifier: 
#                11:F2:0B:96:D2:33:38:81:57:58:13:FD:40:A4:11:6F:4E:99:FA:67
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         35:6b:4f:de:9d:f3:03:b6:1d:c8:bc:8d:e7:5e:6a:9e:a9:e9:
#         ed:a2:2b:97:ea:af:d1:e1:46:d3:02:49:7d:c4:52:85:eb:ba:
#         f6:d3:bf:39:62:18:9d:93:49:bd:78:03:bf:d3:5e:15:dd:ef:
#         27:1c:e1:bb:45:01:22:81:00:4d:3a:e0:85:ca:5a:32:03:cc:
#         20:8f:af:ef:c1:db:a8:fa:f3:dc:d7:b2:b1:0f:03:81:09:29:
#         e0:71:7c:8b:fa:7f:cb:36:6e:1b:e8:14:ce:f0:4b:26:a1:32:
#         29:4f:cc:b4:f5:87:48:0c:13:fc:c7:9d:af:ab:d4:93:f5:2a:
#         4d:7f:48:82:58:3e:17:ff:c3:80:2a:ab:3f:57:55:b8:39:2c:
#         66:10:64:26:6d:8c:6b:d6:dd:a0:83:1a:5a:56:11:96:46:bd:
#         ae:70:28:d6:38:57:5b:91:d5:3f:4d:e9:ac:b3:c3:24:4a:96:
#         65:5c:34:d0:1e:d4:bf:08:a5:97:5d:f7:46:db:76:f0:cd:3e:
#         75:63:00:2b:af:ad:ae:86:de:5f:a6:99:54:0d:85:23:a5:fc:
#         ba:ed:1b:52:fa:49:18:77:85:5b:aa:72:9b:27:08:35:45:37:
#         27:db:97:c9:fa:8b:3d:c8:d0:9d:de:5a:ef:5d:a3:16:b6:98:
#         79:ca:7c:cb

[p11-kit-object-v1]
label: "Certipost E-Trust Primary Qualified CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAriDSeNuaoHKcBFIlLG1S
2NcniTOg4bLV+zB1ay1/HGeODucfEt8XeRi7tBtv+D11G55nN/Dx+g917YadAwSh
KHAtPLJroHNR4zWpdKUIPpSFJzYqqnJk/HfudpQccuu/Msd3A2olggkFr19gPH+s
G7yS6Dx0Wc7xfFQtOK6W8KxvoTMMIVoBuiMgW6CGAtVT3EkfqDKzrztGO7bvnzmz
OAvneor2KPmnb1ApyHlYi0nSpdiFflbxaRV4RBE116VUPqtmJdLb4xjxLivicSMJ
N2RDQnQylnfel6LploacJUQJ1AGdUX4ztwlE5YCXDWRbdxiXpUupnhCdh/pWp88K
fQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certipost E-Trust Primary Qualified CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:05:52:64:c4:25
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BE, O = Certipost s.a./n.v., CN = Certipost E-Trust Primary Qualified CA
#        Validity
#            Not Before: Jul 26 10:00:00 2005 GMT
#            Not After : Jul 26 10:00:00 2020 GMT
#        Subject: C = BE, O = Certipost s.a./n.v., CN = Certipost E-Trust Primary Qualified CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ae:20:d2:78:db:9a:a0:72:9c:04:52:25:2c:6d:
#                    52:d8:d7:27:89:33:a0:e1:b2:d5:fb:30:75:6b:2d:
#                    7f:1c:67:8e:0e:e7:1f:12:df:17:79:18:bb:b4:1b:
#                    6f:f8:3d:75:1b:9e:67:37:f0:f1:fa:0f:75:ed:86:
#                    9d:03:04:a1:28:70:2d:3c:b2:6b:a0:73:51:e3:35:
#                    a9:74:a5:08:3e:94:85:27:36:2a:aa:72:64:fc:77:
#                    ee:76:94:1c:72:eb:bf:32:c7:77:03:6a:25:82:09:
#                    05:af:5f:60:3c:7f:ac:1b:bc:92:e8:3c:74:59:ce:
#                    f1:7c:54:2d:38:ae:96:f0:ac:6f:a1:33:0c:21:5a:
#                    01:ba:23:20:5b:a0:86:02:d5:53:dc:49:1f:a8:32:
#                    b3:af:3b:46:3b:b6:ef:9f:39:b3:38:0b:e7:7a:8a:
#                    f6:28:f9:a7:6f:50:29:c8:79:58:8b:49:d2:a5:d8:
#                    85:7e:56:f1:69:15:78:44:11:35:d7:a5:54:3e:ab:
#                    66:25:d2:db:e3:18:f1:2e:2b:e2:71:23:09:37:64:
#                    43:42:74:32:96:77:de:97:a2:e9:96:86:9c:25:44:
#                    09:d4:01:9d:51:7e:33:b7:09:44:e5:80:97:0d:64:
#                    5b:77:18:97:a5:4b:a9:9e:10:9d:87:fa:56:a7:cf:
#                    0a:7d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                F0:78:F9:07:77:10:BB:DC:1E:A1:AE:79:FB:30:10:DB:C6:34:F8:17
#            X509v3 Certificate Policies: 
#                Policy: 0.3.2062.7.1.0.1.2.0
#                  CPS: http://www.e-trust.be/CPS/QNcerts 
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         6c:e1:d8:5f:74:58:e9:70:49:d6:ca:0d:2c:58:da:ca:64:b6:
#         51:4f:c3:06:64:01:e9:8a:73:1d:9e:cf:46:78:bf:3b:85:86:
#         e2:3d:4a:18:94:2a:81:77:6f:82:f8:6f:f4:ee:22:fc:9d:18:
#         21:72:60:bb:18:80:82:95:fb:f9:f7:95:24:81:66:c1:b5:c3:
#         b5:d2:b6:76:8b:3b:81:5c:b8:a1:0e:2b:01:14:8b:80:09:40:
#         ee:f8:60:4c:19:e4:17:cd:27:01:b3:63:12:05:a4:08:c9:b4:
#         bf:9e:50:4e:b5:de:0f:92:33:66:75:d0:3d:e7:23:7c:ea:25:
#         71:7c:fe:3e:2e:36:79:a1:e5:29:50:23:35:05:95:78:bb:9f:
#         79:64:dc:57:48:27:2c:e2:5c:33:cd:c2:bb:7e:68:77:a7:2f:
#         a3:49:17:72:e1:00:84:6b:7d:7a:af:39:0b:2c:d5:d8:57:64:
#         32:6c:84:0a:6a:76:3a:d3:ac:cd:9d:b1:e7:37:dc:ec:0c:2f:
#         c5:57:60:df:88:f5:43:b1:01:64:26:b4:27:82:10:b2:a3:50:
#         ef:97:e6:7f:bf:91:87:b3:db:90:a9:2a:e2:7a:34:6c:73:49:
#         f4:e8:8d:2e:6b:8a:dd:a1:8a:7f:63:d0:bf:58:1e:af:cc:3f:
#         92:50:2d:d1

[p11-kit-object-v1]
label: "Certipost E-Trust TOP Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApdRLQNb78TUYO6KwQ+TJ
VaHAB7sIvjoZtSPDHp2zCEr0Q0vpwRlgkN+E11jGOt0KLJUsvZd//qJ12gbjq5ts
0bjPRIbBUmC33D47sPLpxFE8SrmDuU5hagObHFKAOlC0ILLb07LGVH/LYJvIJJ6v
CcdlDSj22poiwjNu8vMl1KT5lvVvqjxr3EEw5eZvykgfMHgdeX2n0b+uxV5D+cYv
g3abNEqkKFgrqIiFRGor8lZCdpmQM6ru+SHP8j35d4TL3SmExNSKKqQ5XD75HCVo
TfXnm12xGjReygJz+QjEDG1e3RIq5XvFNnhSnTLBxSilIKjlmA25b8+5gJ7lvrmb
/QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certipost E-Trust TOP Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:05:52:64:c1:95
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BE, O = Certipost s.a./n.v., CN = Certipost E-Trust TOP Root CA
#        Validity
#            Not Before: Jul 26 10:00:00 2005 GMT
#            Not After : Jul 26 10:00:00 2025 GMT
#        Subject: C = BE, O = Certipost s.a./n.v., CN = Certipost E-Trust TOP Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a5:d4:4b:40:d6:fb:f1:35:18:3b:a2:b0:43:e4:
#                    c9:55:a1:c0:07:bb:08:be:3a:19:b5:23:c3:1e:9d:
#                    b3:08:4a:f4:43:4b:e9:c1:19:60:90:df:84:d7:58:
#                    c6:3a:dd:0a:2c:95:2c:bd:97:7f:fe:a2:75:da:06:
#                    e3:ab:9b:6c:d1:b8:cf:44:86:c1:52:60:b7:dc:3e:
#                    3b:b0:f2:e9:c4:51:3c:4a:b9:83:b9:4e:61:6a:03:
#                    9b:1c:52:80:3a:50:b4:20:b2:db:d3:b2:c6:54:7f:
#                    cb:60:9b:c8:24:9e:af:09:c7:65:0d:28:f6:da:9a:
#                    22:c2:33:6e:f2:f3:25:d4:a4:f9:96:f5:6f:aa:3c:
#                    6b:dc:41:30:e5:e6:6f:ca:48:1f:30:78:1d:79:7d:
#                    a7:d1:bf:ae:c5:5e:43:f9:c6:2f:83:76:9b:34:4a:
#                    a4:28:58:2b:a8:88:85:44:6a:2b:f2:56:42:76:99:
#                    90:33:aa:ee:f9:21:cf:f2:3d:f9:77:84:cb:dd:29:
#                    84:c4:d4:8a:2a:a4:39:5c:3e:f9:1c:25:68:4d:f5:
#                    e7:9b:5d:b1:1a:34:5e:ca:02:73:f9:08:c4:0c:6d:
#                    5e:dd:12:2a:e5:7b:c5:36:78:52:9d:32:c1:c5:28:
#                    a5:20:a8:e5:98:0d:b9:6f:cf:b9:80:9e:e5:be:b9:
#                    9b:fd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4B:DE:BE:05:31:2E:F3:35:C8:D8:CA:A7:56:C5:94:0D:B4:5A:65:C5
#            X509v3 Certificate Policies: 
#                Policy: 0.3.2062.7.1.0.1.2.0
#                  CPS: http://www.e-trust.be/CPS/QNcerts 
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         89:63:cc:a2:ce:f8:54:6a:7c:59:34:78:ab:01:b4:96:2d:2a:
#         21:6e:40:2d:5f:d0:96:22:99:83:05:1c:e5:24:cd:e2:f5:35:
#         04:bf:00:96:07:ec:b2:a4:3a:6a:2b:23:3e:c9:0f:ca:13:1d:
#         b8:24:96:09:26:d8:3c:2a:81:ce:e1:81:c8:c9:73:3e:f5:bb:
#         0f:08:1e:90:e0:b0:92:b9:d2:3a:97:50:e0:06:8e:e4:82:30:
#         3c:60:20:b7:a4:ee:ab:89:06:e1:fc:25:bb:91:d4:f9:b7:5f:
#         68:63:a8:a0:68:86:6b:a7:ec:92:cb:22:fa:50:5b:13:58:27:
#         ae:2b:43:0b:b6:17:c6:30:72:04:33:44:26:4a:44:07:1f:73:
#         a0:83:41:29:e0:92:06:bc:d5:01:ea:fe:bc:af:71:eb:20:1f:
#         0a:5d:0d:a0:29:5e:ce:e4:41:51:55:96:c3:1f:b4:31:a5:a3:
#         f3:53:ea:ff:c2:9c:86:72:cf:36:4c:56:5a:06:32:7e:5e:ab:
#         4a:a1:ce:a7:eb:9f:a4:8c:2a:b9:24:8b:b8:b5:f3:06:4d:a6:
#         ca:7d:99:fb:f6:55:ea:ae:48:79:ee:26:59:d3:1f:0c:53:15:
#         f7:62:51:f9:84:0d:96:6c:5e:b1:08:e6:59:08:2b:26:29:0a:
#         c1:83:40:73

[p11-kit-object-v1]
label: "Certplus Root CA G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA2lCHttq4qT6dZPpWM5pW
PRblA5WyNByabWIF1NiP54lkn7rbZItk5nkqYc2vj1qJkWW5WPy0A1+RPy0QFeB+
z7z8f0NnqK1eNiPYmLNN80OeOXwq/OyI1YjucL2FFi3qS4k8o3FC/hz90xwtELiG
VOpDuNvGh9qoroAlz3omHaqRsEhvrrXentjX+gD9xo/QUbtifaSxjLL/IBG6NWMF
hkdgQzOQ9keiA0+WTZ1PwerqnKL+NC7et8obdqS3rZ/pqNR4P3j+8jgJNh3SFgLI
7Cpor/WOlO8tE3oeQkodFTGuDARX/GFz8zFWhjGAoMQRbjB245TwXwTErIdyiZjF
ncxXCJr0DPx9egU6+keAObbPhBN3byfq/5ZnFwht6Q3WI1AwsBV0Ez7lL/8OzcQL
Sl3w2AAzSWbroRh8WS49KLlhccu1pbq46tzicG8IatyHZzTv3zBy3fPJPyP/NeG+
ISkgMIHkGaUg6SXKczF0Kb7iQtXzsiZmx2j9GbPnIJOZ6F3gXofnRuglnAopJNTN
WIZSQCSyew+YEiAk9pBsR8gNuxggLtn9/IvyKeqHdJXgQlB4hARBYbD0ISOPLcso
IfJqbPQapsUUtDdlT5X9gMj4cuUla8RgsXttjkqKc85Z+3B6cwYT2dN0NyRBChFv
l9zn5H6hvRXyuocPPWiKFgcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certplus Root CA G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:55:83:e4:2d:3e:54:56:85:2d:83:37:b7:2c:dc:46:11
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = FR, O = Certplus, CN = Certplus Root CA G1
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C = FR, O = Certplus, CN = Certplus Root CA G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:da:50:87:b6:da:b8:a9:3e:9d:64:fa:56:33:9a:
#                    56:3d:16:e5:03:95:b2:34:1c:9a:6d:62:05:d4:d8:
#                    8f:e7:89:64:9f:ba:db:64:8b:64:e6:79:2a:61:cd:
#                    af:8f:5a:89:91:65:b9:58:fc:b4:03:5f:91:3f:2d:
#                    10:15:e0:7e:cf:bc:fc:7f:43:67:a8:ad:5e:36:23:
#                    d8:98:b3:4d:f3:43:9e:39:7c:2a:fc:ec:88:d5:88:
#                    ee:70:bd:85:16:2d:ea:4b:89:3c:a3:71:42:fe:1c:
#                    fd:d3:1c:2d:10:b8:86:54:ea:43:b8:db:c6:87:da:
#                    a8:ae:80:25:cf:7a:26:1d:aa:91:b0:48:6f:ae:b5:
#                    de:9e:d8:d7:fa:00:fd:c6:8f:d0:51:bb:62:7d:a4:
#                    b1:8c:b2:ff:20:11:ba:35:63:05:86:47:60:43:33:
#                    90:f6:47:a2:03:4f:96:4d:9d:4f:c1:ea:ea:9c:a2:
#                    fe:34:2e:de:b7:ca:1b:76:a4:b7:ad:9f:e9:a8:d4:
#                    78:3f:78:fe:f2:38:09:36:1d:d2:16:02:c8:ec:2a:
#                    68:af:f5:8e:94:ef:2d:13:7a:1e:42:4a:1d:15:31:
#                    ae:0c:04:57:fc:61:73:f3:31:56:86:31:80:a0:c4:
#                    11:6e:30:76:e3:94:f0:5f:04:c4:ac:87:72:89:98:
#                    c5:9d:cc:57:08:9a:f4:0c:fc:7d:7a:05:3a:fa:47:
#                    80:39:b6:cf:84:13:77:6f:27:ea:ff:96:67:17:08:
#                    6d:e9:0d:d6:23:50:30:b0:15:74:13:3e:e5:2f:ff:
#                    0e:cd:c4:0b:4a:5d:f0:d8:00:33:49:66:eb:a1:18:
#                    7c:59:2e:3d:28:b9:61:71:cb:b5:a5:ba:b8:ea:dc:
#                    e2:70:6f:08:6a:dc:87:67:34:ef:df:30:72:dd:f3:
#                    c9:3f:23:ff:35:e1:be:21:29:20:30:81:e4:19:a5:
#                    20:e9:25:ca:73:31:74:29:be:e2:42:d5:f3:b2:26:
#                    66:c7:68:fd:19:b3:e7:20:93:99:e8:5d:e0:5e:87:
#                    e7:46:e8:25:9c:0a:29:24:d4:cd:58:86:52:40:24:
#                    b2:7b:0f:98:12:20:24:f6:90:6c:47:c8:0d:bb:18:
#                    20:2e:d9:fd:fc:8b:f2:29:ea:87:74:95:e0:42:50:
#                    78:84:04:41:61:b0:f4:21:23:8f:2d:cb:28:21:f2:
#                    6a:6c:f4:1a:a6:c5:14:b4:37:65:4f:95:fd:80:c8:
#                    f8:72:e5:25:6b:c4:60:b1:7b:6d:8e:4a:8a:73:ce:
#                    59:fb:70:7a:73:06:13:d9:d3:74:37:24:41:0a:11:
#                    6f:97:dc:e7:e4:7e:a1:bd:15:f2:ba:87:0f:3d:68:
#                    8a:16:07
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A8:C1:C0:9B:91:A8:43:15:7C:5D:06:27:B4:2A:51:D8:97:0B:81:B1
#            X509v3 Authority Key Identifier: 
#                keyid:A8:C1:C0:9B:91:A8:43:15:7C:5D:06:27:B4:2A:51:D8:97:0B:81:B1
#
#    Signature Algorithm: sha512WithRSAEncryption
#         9c:56:6f:01:7e:d1:bd:4c:f5:8a:c6:f0:26:1f:e4:e0:38:18:
#         cc:32:c3:29:3b:9d:41:29:34:61:c6:d7:f0:00:a1:eb:a4:72:
#         8f:94:17:bc:13:2c:75:b4:57:ee:0a:7c:09:7a:dc:d5:ca:a1:
#         d0:34:13:f8:77:ab:9f:e5:fe:d8:1e:74:8a:85:07:8f:7f:cc:
#         79:7a:ca:96:cd:cd:fd:4f:fb:fd:23:0d:90:f5:f4:5e:d3:c6:
#         61:7d:9e:11:e0:02:ee:09:04:d9:07:dd:a6:8a:b7:0c:83:24:
#         bb:83:50:92:fe:60:75:11:3e:d8:9d:b0:8a:7a:b5:e0:9d:9b:
#         cb:90:52:4b:b0:93:2a:d4:3e:16:33:e5:9e:c6:65:15:3e:64:
#         3b:04:3f:db:0c:8f:5f:5c:1d:69:1f:af:f3:e9:21:8c:f3:ef:
#         97:f6:9a:b7:19:b6:84:74:9c:a3:54:b5:70:4e:63:d8:57:5d:
#         53:21:9b:40:92:43:fa:d6:77:55:33:4f:64:d5:fb:d0:2c:6a:
#         8e:6d:25:a6:ef:85:e8:02:c4:53:3e:b9:9e:87:bc:cc:35:1a:
#         de:a1:e9:8a:63:87:65:1e:11:2a:db:63:77:97:14:be:9a:14:
#         99:11:b2:c0:ee:b0:4f:f8:14:21:32:43:4f:9f:ab:a2:cb:a8:
#         0f:aa:3b:06:55:c6:12:29:57:08:d4:37:d7:87:27:ad:49:59:
#         a7:91:ab:44:7a:5e:8d:70:db:97:ce:48:50:b1:73:93:f6:f0:
#         83:60:f9:cd:f1:e1:31:fd:5b:7c:71:21:63:14:14:aa:af:c5:
#         de:93:7e:68:b1:ec:22:a2:aa:90:75:9e:b5:43:72:ea:64:a3:
#         84:4b:fd:0c:a8:26:6b:71:97:ee:56:63:66:e8:42:54:f9:c7:
#         1d:df:d0:8f:5b:df:c8:30:6f:88:fe:0d:c4:33:1c:53:a8:a3:
#         fd:48:10:f2:e4:0a:4e:e1:15:57:fc:6e:64:30:c2:55:11:dc:
#         ea:a9:cd:4a:54:ac:29:63:44:cf:4a:40:a0:d6:68:59:1b:33:
#         f9:ef:3a:8b:db:20:92:dc:42:84:bf:01:ab:87:c0:d5:20:82:
#         db:c6:b9:83:85:42:5c:0f:43:3b:6a:49:35:d5:98:f4:15:bf:
#         fa:61:81:0c:09:20:18:d2:d0:17:0c:cb:48:00:50:e9:76:82:
#         8c:64:d7:3a:a0:07:55:cc:1e:31:c0:ef:3a:b4:65:fb:e3:bf:
#         42:6b:9e:0f:a8:bd:6b:98:dc:d8:db:cb:8b:a4:dd:d7:59:f4:
#         6e:dd:fe:aa:c3:91:d0:2e:42:07:c0:0c:4d:53:cd:24:b1:4c:
#         5b:1e:51:f4:df:e9:92:fa

[p11-kit-object-v1]
label: "Certplus Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEzQ9bVoLf8EUa1q33efAdyayW1p5OnB+0
QhHKhr9t+4WjxeUZXNfupj9pZ9h44qbJxNsteS7ni40CbzEiTQbjYHJFnQ5Cd57O
z+V/hZsY5PzMLnLTFpNOypljXKEFKmwG
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certplus Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:d9:91:ce:ae:a3:e8:c5:e7:ff:e9:02:af:cf:73:bc:55
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = FR, O = Certplus, CN = Certplus Root CA G2
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C = FR, O = Certplus, CN = Certplus Root CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:cd:0f:5b:56:82:df:f0:45:1a:d6:ad:f7:79:f0:
#                    1d:c9:ac:96:d6:9e:4e:9c:1f:b4:42:11:ca:86:bf:
#                    6d:fb:85:a3:c5:e5:19:5c:d7:ee:a6:3f:69:67:d8:
#                    78:e2:a6:c9:c4:db:2d:79:2e:e7:8b:8d:02:6f:31:
#                    22:4d:06:e3:60:72:45:9d:0e:42:77:9e:ce:cf:e5:
#                    7f:85:9b:18:e4:fc:cc:2e:72:d3:16:93:4e:ca:99:
#                    63:5c:a1:05:2a:6c:06
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DA:83:63:02:79:8E:DA:4C:C6:3C:23:14:D8:8F:C3:20:AB:28:60:59
#            X509v3 Authority Key Identifier: 
#                keyid:DA:83:63:02:79:8E:DA:4C:C6:3C:23:14:D8:8F:C3:20:AB:28:60:59
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:70:fe:b0:0b:d9:f7:83:97:ec:f3:55:1d:d4:dc:
#         b3:06:0e:fe:33:98:9d:8b:39:90:6b:94:21:ed:b6:d7:5d:d6:
#         4c:d7:21:a7:e7:bf:21:0f:2b:cd:f7:2a:dc:85:07:9d:02:31:
#         00:86:14:16:e5:dc:b0:65:c2:c0:8e:14:9f:bf:24:16:68:e5:
#         bc:f9:79:69:dc:ad:45:2b:f7:b6:31:73:cc:06:a5:53:93:91:
#         1a:93:ae:70:6a:67:ba:d7:9e:e5:61:1a:5f

[p11-kit-object-v1]
label: "Certum EC-384 CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAExCiOqxhbar5uZDdj5M3sqzr3zKG4DoJJ
14Ypn6GU8uNgeJiBeAZN8uyaDldgg5+05hcvGrNdAluJIzzCEQUqp4gTGPNQhNe9
NCwniVX/zkzn36YfKMTwVMO5fLdTrevC
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum EC-384 CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICZTCCAeugAwIBAgIQeI8nXIESUiClBNAt3bpz9DAKBggqhkjOPQQDAzB0MQsw
CQYDVQQGEwJQTDEhMB8GA1UEChMYQXNzZWNvIERhdGEgU3lzdGVtcyBTLkEuMScw
JQYDVQQLEx5DZXJ0dW0gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkxGTAXBgNVBAMT
EENlcnR1bSBFQy0zODQgQ0EwHhcNMTgwMzI2MDcyNDU0WhcNNDMwMzI2MDcyNDU0
WjB0MQswCQYDVQQGEwJQTDEhMB8GA1UEChMYQXNzZWNvIERhdGEgU3lzdGVtcyBT
LkEuMScwJQYDVQQLEx5DZXJ0dW0gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkxGTAX
BgNVBAMTEENlcnR1bSBFQy0zODQgQ0EwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAATE
KI6rGFtqvm5kN2PkzeyrOvfMobgOgknXhimfoZTy42B4mIF4Bk3y7JoOV2CDn7Tm
Fy8as10CW4kjPMIRBSqniBMY81CE1700LCeJVf/OTOffph8oxPBUw7l8t1Ot68Kj
QjBAMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFI0GZnQkdjrzife81r1HfS+8
EF9LMA4GA1UdDwEB/wQEAwIBBjAKBggqhkjOPQQDAwNoADBlAjADVS2m5hjEfO/J
UG7BJw+ch69u1RsIGL2SKcHvlJF40jocVYli5RsJHrpka/F2tNQCMQC0QoSZ/6vn
nvuRlydd3LBbMHHOXjgaatkl5+r3YZJW+OraNsKHZZYuciUvf9/DE8k=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            78:8f:27:5c:81:12:52:20:a5:04:d0:2d:dd:ba:73:f4
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = PL, O = Asseco Data Systems S.A., OU = Certum Certification Authority, CN = Certum EC-384 CA
#        Validity
#            Not Before: Mar 26 07:24:54 2018 GMT
#            Not After : Mar 26 07:24:54 2043 GMT
#        Subject: C = PL, O = Asseco Data Systems S.A., OU = Certum Certification Authority, CN = Certum EC-384 CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:c4:28:8e:ab:18:5b:6a:be:6e:64:37:63:e4:cd:
#                    ec:ab:3a:f7:cc:a1:b8:0e:82:49:d7:86:29:9f:a1:
#                    94:f2:e3:60:78:98:81:78:06:4d:f2:ec:9a:0e:57:
#                    60:83:9f:b4:e6:17:2f:1a:b3:5d:02:5b:89:23:3c:
#                    c2:11:05:2a:a7:88:13:18:f3:50:84:d7:bd:34:2c:
#                    27:89:55:ff:ce:4c:e7:df:a6:1f:28:c4:f0:54:c3:
#                    b9:7c:b7:53:ad:eb:c2
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8D:06:66:74:24:76:3A:F3:89:F7:BC:D6:BD:47:7D:2F:BC:10:5F:4B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:03:55:2d:a6:e6:18:c4:7c:ef:c9:50:6e:c1:27:
#         0f:9c:87:af:6e:d5:1b:08:18:bd:92:29:c1:ef:94:91:78:d2:
#         3a:1c:55:89:62:e5:1b:09:1e:ba:64:6b:f1:76:b4:d4:02:31:
#         00:b4:42:84:99:ff:ab:e7:9e:fb:91:97:27:5d:dc:b0:5b:30:
#         71:ce:5e:38:1a:6a:d9:25:e7:ea:f7:61:92:56:f8:ea:da:36:
#         c2:87:65:96:2e:72:25:2f:7f:df:c3:13:c9

[p11-kit-object-v1]
label: "Certum Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzrHBLtNPfM0lzhg+T8SM
b4Bqc8hbUfib0ty7AFyxoPx1A+6B8IjuI1Lp5hUzjawtCcV2+Ss5gInkl0uQpah4
+HNDe6RhsNhYzOFsZn6c8wleVWOE1ajv87EuMGizxDzYrG6NmVqQTjTcNpqPgYhQ
t22WQgnz15WDDUFLsGpr+PwPfmKfZ8TtJl8QJg8IT/CkVyjOj7jtRfZu7iVdqm45
vuSTL9lHoHLr+qZbr8pTP+IOxpZWEW736WapJth/lVPtCoWIuk8ppUKMXrb8hSAA
qmgLoRqFAZzERmOCiLYise7+qkZZfs81LNW22l33SDMUVLbr2W/OzYjWqxvaljsd
WQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 65568 (0x10020)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = PL, O = Unizeto Sp. z o.o., CN = Certum CA
#        Validity
#            Not Before: Jun 11 10:46:39 2002 GMT
#            Not After : Jun 11 10:46:39 2027 GMT
#        Subject: C = PL, O = Unizeto Sp. z o.o., CN = Certum CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ce:b1:c1:2e:d3:4f:7c:cd:25:ce:18:3e:4f:c4:
#                    8c:6f:80:6a:73:c8:5b:51:f8:9b:d2:dc:bb:00:5c:
#                    b1:a0:fc:75:03:ee:81:f0:88:ee:23:52:e9:e6:15:
#                    33:8d:ac:2d:09:c5:76:f9:2b:39:80:89:e4:97:4b:
#                    90:a5:a8:78:f8:73:43:7b:a4:61:b0:d8:58:cc:e1:
#                    6c:66:7e:9c:f3:09:5e:55:63:84:d5:a8:ef:f3:b1:
#                    2e:30:68:b3:c4:3c:d8:ac:6e:8d:99:5a:90:4e:34:
#                    dc:36:9a:8f:81:88:50:b7:6d:96:42:09:f3:d7:95:
#                    83:0d:41:4b:b0:6a:6b:f8:fc:0f:7e:62:9f:67:c4:
#                    ed:26:5f:10:26:0f:08:4f:f0:a4:57:28:ce:8f:b8:
#                    ed:45:f6:6e:ee:25:5d:aa:6e:39:be:e4:93:2f:d9:
#                    47:a0:72:eb:fa:a6:5b:af:ca:53:3f:e2:0e:c6:96:
#                    56:11:6e:f7:e9:66:a9:26:d8:7f:95:53:ed:0a:85:
#                    88:ba:4f:29:a5:42:8c:5e:b6:fc:85:20:00:aa:68:
#                    0b:a1:1a:85:01:9c:c4:46:63:82:88:b6:22:b1:ee:
#                    fe:aa:46:59:7e:cf:35:2c:d5:b6:da:5d:f7:48:33:
#                    14:54:b6:eb:d9:6f:ce:cd:88:d6:ab:1b:da:96:3b:
#                    1d:59
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         b8:8d:ce:ef:e7:14:ba:cf:ee:b0:44:92:6c:b4:39:3e:a2:84:
#         6e:ad:b8:21:77:d2:d4:77:82:87:e6:20:41:81:ee:e2:f8:11:
#         b7:63:d1:17:37:be:19:76:24:1c:04:1a:4c:eb:3d:aa:67:6f:
#         2d:d4:cd:fe:65:31:70:c5:1b:a6:02:0a:ba:60:7b:6d:58:c2:
#         9a:49:fe:63:32:0b:6b:e3:3a:c0:ac:ab:3b:b0:e8:d3:09:51:
#         8c:10:83:c6:34:e0:c5:2b:e0:1a:b6:60:14:27:6c:32:77:8c:
#         bc:b2:72:98:cf:cd:cc:3f:b9:c8:24:42:14:d6:57:fc:e6:26:
#         43:a9:1d:e5:80:90:ce:03:54:28:3e:f7:3f:d3:f8:4d:ed:6a:
#         0a:3a:93:13:9b:3b:14:23:13:63:9c:3f:d1:87:27:79:e5:4c:
#         51:e3:01:ad:85:5d:1a:3b:b1:d5:73:10:a4:d3:f2:bc:6e:64:
#         f5:5a:56:90:a8:c7:0e:4c:74:0f:2e:71:3b:f7:c8:47:f4:69:
#         6f:15:f2:11:5e:83:1e:9c:7c:52:ae:fd:02:da:12:a8:59:67:
#         18:db:bc:70:dd:9b:b1:69:ed:80:ce:89:40:48:6a:0e:35:ca:
#         29:66:15:21:94:2c:e8:60:2a:9b:85:4a:40:f3:6b:8a:24:ec:
#         06:16:2c:73

[p11-kit-object-v1]
label: "Certum Trusted Network CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4/t9o3K6wvDJFIf1awFO
4W5AB7ptJ11/91sts1rHUV+rpDKmYYe2bg+G0jACl/jXaVehGDldamR5xgFZrDwx
Sjh80gTSSyjoIF87B6LMTXPb865Px1bVWqeWifrzq2jUI4ZZJ88JJ7ysbnKDHDBy
3+Ci6dLhdHUZvSqeexVUBBvXQzmtVSjF4hq79MDkrjhJM8x2hZ85RdKknvISjFH4
fOQtf/WsX+sWn7Et0brMkUJ3TCXJkDhv2/DM+44el1k+1WBO5gUo7Ul5E0u6SNsv
+XLTOcr+H9g0cvW0QM8xAcPs3hEtF10fuFDRXhmnad4HMyjKUJX5p1TLVIZQRan5
SQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Trusted Network CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 279744 (0x444c0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = PL, O = Unizeto Technologies S.A., OU = Certum Certification Authority, CN = Certum Trusted Network CA
#        Validity
#            Not Before: Oct 22 12:07:37 2008 GMT
#            Not After : Dec 31 12:07:37 2029 GMT
#        Subject: C = PL, O = Unizeto Technologies S.A., OU = Certum Certification Authority, CN = Certum Trusted Network CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:e3:fb:7d:a3:72:ba:c2:f0:c9:14:87:f5:6b:01:
#                    4e:e1:6e:40:07:ba:6d:27:5d:7f:f7:5b:2d:b3:5a:
#                    c7:51:5f:ab:a4:32:a6:61:87:b6:6e:0f:86:d2:30:
#                    02:97:f8:d7:69:57:a1:18:39:5d:6a:64:79:c6:01:
#                    59:ac:3c:31:4a:38:7c:d2:04:d2:4b:28:e8:20:5f:
#                    3b:07:a2:cc:4d:73:db:f3:ae:4f:c7:56:d5:5a:a7:
#                    96:89:fa:f3:ab:68:d4:23:86:59:27:cf:09:27:bc:
#                    ac:6e:72:83:1c:30:72:df:e0:a2:e9:d2:e1:74:75:
#                    19:bd:2a:9e:7b:15:54:04:1b:d7:43:39:ad:55:28:
#                    c5:e2:1a:bb:f4:c0:e4:ae:38:49:33:cc:76:85:9f:
#                    39:45:d2:a4:9e:f2:12:8c:51:f8:7c:e4:2d:7f:f5:
#                    ac:5f:eb:16:9f:b1:2d:d1:ba:cc:91:42:77:4c:25:
#                    c9:90:38:6f:db:f0:cc:fb:8e:1e:97:59:3e:d5:60:
#                    4e:e6:05:28:ed:49:79:13:4b:ba:48:db:2f:f9:72:
#                    d3:39:ca:fe:1f:d8:34:72:f5:b4:40:cf:31:01:c3:
#                    ec:de:11:2d:17:5d:1f:b8:50:d1:5e:19:a7:69:de:
#                    07:33:28:ca:50:95:f9:a7:54:cb:54:86:50:45:a9:
#                    f9:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                08:76:CD:CB:07:FF:24:F6:C5:CD:ED:BB:90:BC:E2:84:37:46:75:F7
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         a6:a8:ad:22:ce:01:3d:a6:a3:ff:62:d0:48:9d:8b:5e:72:b0:
#         78:44:e3:dc:1c:af:09:fd:23:48:fa:bd:2a:c4:b9:55:04:b5:
#         10:a3:8d:27:de:0b:82:63:d0:ee:de:0c:37:79:41:5b:22:b2:
#         b0:9a:41:5c:a6:70:e0:d4:d0:77:cb:23:d3:00:e0:6c:56:2f:
#         e1:69:0d:0d:d9:aa:bf:21:81:50:d9:06:a5:a8:ff:95:37:d0:
#         aa:fe:e2:b3:f5:99:2d:45:84:8a:e5:42:09:d7:74:02:2f:f7:
#         89:d8:99:e9:bc:27:d4:47:8d:ba:0d:46:1c:77:cf:14:a4:1c:
#         b9:a4:31:c4:9c:28:74:03:34:ff:33:19:26:a5:e9:0d:74:b7:
#         3e:97:c6:76:e8:27:96:a3:66:dd:e1:ae:f2:41:5b:ca:98:56:
#         83:73:70:e4:86:1a:d2:31:41:ba:2f:be:2d:13:5a:76:6f:4e:
#         e8:4e:81:0e:3f:5b:03:22:a0:12:be:66:58:11:4a:cb:03:c4:
#         b4:2a:2a:2d:96:17:e0:39:54:bc:48:d3:76:27:9d:9a:2d:06:
#         a6:c9:ec:39:d2:ab:db:9f:9a:0b:27:02:35:29:b1:40:95:e7:
#         f9:e8:9c:55:88:19:46:d6:b7:34:f5:7e:ce:39:9a:d9:38:f1:
#         51:f7:4f:2c

[p11-kit-object-v1]
label: "Certum Trusted Network CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAvfl4+ObVgAxknYYblmRn
PyI6HnUBfe/7XGeMycxca6mR5rlC5SBLm9qbe7mZXdmbgEvXhEArJ9PoujC7Pgka
p0mV7ytAJMKXx6fumyXvqAoAl4Vaqp3cKcniNQfrcE1K1sGzVrihQTib0fsxf4/g
X+GxPw+OFklg1waNGPmqJhCrKtPQ0WeNG0a+RzDVLnLRxWPa52N5RH5LYySJhi40
PylMUosqp8DikSiJucBb+R3Z5yet/5oCl8HGUJKbAiy9qbk0WQq/hEr/3/6zn+vZ
nuCYI+yma3cWKtvMrTscpIfcRnNeGWJoRVfkkIJCu0LW8GHgwaM9ZqNd9BjuiMmN
F0UpmTJ1AjHuKSbIawLmtWJFfzcVWiNoidQ+3k4nsPBADLxNF8tNorMe0AZa3faT
z1d1mfX6hhpneLO/lv403L3nUlbls+V1e9dBkQXcXWnjlQ1DufyDljmVe2yAWk8T
csbXfSl6RLpSpCrVQUYJIP4ioLZbMI28iQzV13D4h1L92u+sUS4Hs07+0AnacO+Y
+lbmbdu1V0vc5SwlFcieLnhO+NqcnoYsylfzGuXIkosagpZ6w7xQEmnYDlpGizrr
Jvojybawgb5CAKT41v4wLsfSRvbljnX98sy50IdbzAYQYLuDNbdeZ95H7JlI8aSh
Ff6tjGKOOVVPORa5sWOd/7cCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Trusted Network CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF0jCCA7qgAwIBAgIQIdbQSk8lD8kyN/yqXhKN6TANBgkqhkiG9w0BAQ0FADCB
gDELMAkGA1UEBhMCUEwxIjAgBgNVBAoTGVVuaXpldG8gVGVjaG5vbG9naWVzIFMu
QS4xJzAlBgNVBAsTHkNlcnR1bSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTEkMCIG
A1UEAxMbQ2VydHVtIFRydXN0ZWQgTmV0d29yayBDQSAyMCIYDzIwMTExMDA2MDgz
OTU2WhgPMjA0NjEwMDYwODM5NTZaMIGAMQswCQYDVQQGEwJQTDEiMCAGA1UEChMZ
VW5pemV0byBUZWNobm9sb2dpZXMgUy5BLjEnMCUGA1UECxMeQ2VydHVtIENlcnRp
ZmljYXRpb24gQXV0aG9yaXR5MSQwIgYDVQQDExtDZXJ0dW0gVHJ1c3RlZCBOZXR3
b3JrIENBIDIwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQC9+Xj45tWA
DGSdhhuWZGc/IjoedQF97/tcZ4zJzFxrqZHmuULlIEub2pt7uZld2ZuAS9eEQCsn
0+i6MLs+CRqnSZXvK0AkwpfHp+6bJe+oCgCXhVqqndwpyeI1B+twTUrWwbNWuKFB
OJvR+zF/j+Bf4bE/D44WSWDXBo0Y+aomEKsq09DRZ40bRr5HMNUuctHFY9rnY3lE
fktjJImGLjQ/KUxSiyqnwOKRKIm5wFv5HdnnJ63/mgKXwcZQkpsCLL2puTRZCr+E
Sv/f/rOf69me4Jgj7KZrdxYq28ytOxykh9xGc14ZYmhFV+SQgkK7QtbwYeDBoz1m
o130GO6IyY0XRSmZMnUCMe4pJshrAua1YkV/NxVaI2iJ1D7eTiew8EAMvE0Xy02i
sx7QBlrd9pPPV3WZ9fqGGmd4s7+W/jTcvedSVuWz5XV710GRBdxdaeOVDUO5/IOW
OZV7bIBaTxNyxtd9KXpEulKkKtVBRgkg/iKgtlswjbyJDNXXcPiHUv3a76xRLgez
Tv7QCdpw75j6VuZt27VXS9zlLCUVyJ4ueE742pyehizKV/Ma5ciSixqClnrDvFAS
adgOWkaLOusm+iPJtrCBvkIApPjW/jAux9JG9uWOdf3yzLnQh1vMBhBgu4M1t15n
3kfsmUjxpKEV/q2MYo45VU85FrmxY53/twIDAQABo0IwQDAPBgNVHRMBAf8EBTAD
AQH/MB0GA1UdDgQWBBS2oVQ5AsOgP46KvPrU+Bym0ToO/TAOBgNVHQ8BAf8EBAMC
AQYwDQYJKoZIhvcNAQENBQADggIBAHGlDs7k6b8/ONWJWsQCYftMxRQXLYtPU2sQ
F/xlhMcQSZDe28cmk4gmb3DWAl45oPePq5a1pRNcgRRtDoGCERuKTsZPpd1iHkTf
CVn0W3cLN+mLIMb4Ck4uWBzrM9DPhmDJ2vuAL55MYIR4PSFk1vtBHxgP58l1cb29
XN40hz5BsA72udY/CROWFC/emh1auVbONTqwX3BNXuMp8SMoclm2q8KMZiYcdywm
djWLKKdpoPk79SPdhRB0yZADVpHnr7pH1BKXESLjokmUbOe3lEu6LaTaM4tMpkT/
WjzGHWTYtTHkpjx6qFcL2+1hGsvxznN3Y6SHb0xRONbkX8eftoEq5IVIeVheO/jb
AoJnwTnbw3RLPTYe+SmTiGhbqEQZIfCn6IENLOiTNrQ3ssqwGyZ6miUfmpqAnksq
P/ujmv5zMnHCnsZy4YpoJ/HkD7TETKVhk/iXEAcqMCWpuchxuO9ozC1+9eB+D4Ko
b7a6bINDd82Kkhehnlt4Fj1F4jNy3eFmypnTycUm/Q1oBEauttmbjL4ZvrHG8hnj
XALKLNhvSgfZyTXaQHXyxKcZb55CEJh15pWLYLztxRLXis7VmFxWlgPF7ncGNf/P
5O4/E2Hu29othfDNrp2yGAlFw5Khchf8R7agCyzxxN5DaAhqXzvwdmP7zAYspsbi
DrW5viSP
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            21:d6:d0:4a:4f:25:0f:c9:32:37:fc:aa:5e:12:8d:e9
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = PL, O = Unizeto Technologies S.A., OU = Certum Certification Authority, CN = Certum Trusted Network CA 2
#        Validity
#            Not Before: Oct  6 08:39:56 2011 GMT
#            Not After : Oct  6 08:39:56 2046 GMT
#        Subject: C = PL, O = Unizeto Technologies S.A., OU = Certum Certification Authority, CN = Certum Trusted Network CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:bd:f9:78:f8:e6:d5:80:0c:64:9d:86:1b:96:64:
#                    67:3f:22:3a:1e:75:01:7d:ef:fb:5c:67:8c:c9:cc:
#                    5c:6b:a9:91:e6:b9:42:e5:20:4b:9b:da:9b:7b:b9:
#                    99:5d:d9:9b:80:4b:d7:84:40:2b:27:d3:e8:ba:30:
#                    bb:3e:09:1a:a7:49:95:ef:2b:40:24:c2:97:c7:a7:
#                    ee:9b:25:ef:a8:0a:00:97:85:5a:aa:9d:dc:29:c9:
#                    e2:35:07:eb:70:4d:4a:d6:c1:b3:56:b8:a1:41:38:
#                    9b:d1:fb:31:7f:8f:e0:5f:e1:b1:3f:0f:8e:16:49:
#                    60:d7:06:8d:18:f9:aa:26:10:ab:2a:d3:d0:d1:67:
#                    8d:1b:46:be:47:30:d5:2e:72:d1:c5:63:da:e7:63:
#                    79:44:7e:4b:63:24:89:86:2e:34:3f:29:4c:52:8b:
#                    2a:a7:c0:e2:91:28:89:b9:c0:5b:f9:1d:d9:e7:27:
#                    ad:ff:9a:02:97:c1:c6:50:92:9b:02:2c:bd:a9:b9:
#                    34:59:0a:bf:84:4a:ff:df:fe:b3:9f:eb:d9:9e:e0:
#                    98:23:ec:a6:6b:77:16:2a:db:cc:ad:3b:1c:a4:87:
#                    dc:46:73:5e:19:62:68:45:57:e4:90:82:42:bb:42:
#                    d6:f0:61:e0:c1:a3:3d:66:a3:5d:f4:18:ee:88:c9:
#                    8d:17:45:29:99:32:75:02:31:ee:29:26:c8:6b:02:
#                    e6:b5:62:45:7f:37:15:5a:23:68:89:d4:3e:de:4e:
#                    27:b0:f0:40:0c:bc:4d:17:cb:4d:a2:b3:1e:d0:06:
#                    5a:dd:f6:93:cf:57:75:99:f5:fa:86:1a:67:78:b3:
#                    bf:96:fe:34:dc:bd:e7:52:56:e5:b3:e5:75:7b:d7:
#                    41:91:05:dc:5d:69:e3:95:0d:43:b9:fc:83:96:39:
#                    95:7b:6c:80:5a:4f:13:72:c6:d7:7d:29:7a:44:ba:
#                    52:a4:2a:d5:41:46:09:20:fe:22:a0:b6:5b:30:8d:
#                    bc:89:0c:d5:d7:70:f8:87:52:fd:da:ef:ac:51:2e:
#                    07:b3:4e:fe:d0:09:da:70:ef:98:fa:56:e6:6d:db:
#                    b5:57:4b:dc:e5:2c:25:15:c8:9e:2e:78:4e:f8:da:
#                    9c:9e:86:2c:ca:57:f3:1a:e5:c8:92:8b:1a:82:96:
#                    7a:c3:bc:50:12:69:d8:0e:5a:46:8b:3a:eb:26:fa:
#                    23:c9:b6:b0:81:be:42:00:a4:f8:d6:fe:30:2e:c7:
#                    d2:46:f6:e5:8e:75:fd:f2:cc:b9:d0:87:5b:cc:06:
#                    10:60:bb:83:35:b7:5e:67:de:47:ec:99:48:f1:a4:
#                    a1:15:fe:ad:8c:62:8e:39:55:4f:39:16:b9:b1:63:
#                    9d:ff:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B6:A1:54:39:02:C3:A0:3F:8E:8A:BC:FA:D4:F8:1C:A6:D1:3A:0E:FD
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         71:a5:0e:ce:e4:e9:bf:3f:38:d5:89:5a:c4:02:61:fb:4c:c5:
#         14:17:2d:8b:4f:53:6b:10:17:fc:65:84:c7:10:49:90:de:db:
#         c7:26:93:88:26:6f:70:d6:02:5e:39:a0:f7:8f:ab:96:b5:a5:
#         13:5c:81:14:6d:0e:81:82:11:1b:8a:4e:c6:4f:a5:dd:62:1e:
#         44:df:09:59:f4:5b:77:0b:37:e9:8b:20:c6:f8:0a:4e:2e:58:
#         1c:eb:33:d0:cf:86:60:c9:da:fb:80:2f:9e:4c:60:84:78:3d:
#         21:64:d6:fb:41:1f:18:0f:e7:c9:75:71:bd:bd:5c:de:34:87:
#         3e:41:b0:0e:f6:b9:d6:3f:09:13:96:14:2f:de:9a:1d:5a:b9:
#         56:ce:35:3a:b0:5f:70:4d:5e:e3:29:f1:23:28:72:59:b6:ab:
#         c2:8c:66:26:1c:77:2c:26:76:35:8b:28:a7:69:a0:f9:3b:f5:
#         23:dd:85:10:74:c9:90:03:56:91:e7:af:ba:47:d4:12:97:11:
#         22:e3:a2:49:94:6c:e7:b7:94:4b:ba:2d:a4:da:33:8b:4c:a6:
#         44:ff:5a:3c:c6:1d:64:d8:b5:31:e4:a6:3c:7a:a8:57:0b:db:
#         ed:61:1a:cb:f1:ce:73:77:63:a4:87:6f:4c:51:38:d6:e4:5f:
#         c7:9f:b6:81:2a:e4:85:48:79:58:5e:3b:f8:db:02:82:67:c1:
#         39:db:c3:74:4b:3d:36:1e:f9:29:93:88:68:5b:a8:44:19:21:
#         f0:a7:e8:81:0d:2c:e8:93:36:b4:37:b2:ca:b0:1b:26:7a:9a:
#         25:1f:9a:9a:80:9e:4b:2a:3f:fb:a3:9a:fe:73:32:71:c2:9e:
#         c6:72:e1:8a:68:27:f1:e4:0f:b4:c4:4c:a5:61:93:f8:97:10:
#         07:2a:30:25:a9:b9:c8:71:b8:ef:68:cc:2d:7e:f5:e0:7e:0f:
#         82:a8:6f:b6:ba:6c:83:43:77:cd:8a:92:17:a1:9e:5b:78:16:
#         3d:45:e2:33:72:dd:e1:66:ca:99:d3:c9:c5:26:fd:0d:68:04:
#         46:ae:b6:d9:9b:8c:be:19:be:b1:c6:f2:19:e3:5c:02:ca:2c:
#         d8:6f:4a:07:d9:c9:35:da:40:75:f2:c4:a7:19:6f:9e:42:10:
#         98:75:e6:95:8b:60:bc:ed:c5:12:d7:8a:ce:d5:98:5c:56:96:
#         03:c5:ee:77:06:35:ff:cf:e4:ee:3f:13:61:ee:db:da:2d:85:
#         f0:cd:ae:9d:b2:18:09:45:c3:92:a1:72:17:fc:47:b6:a0:0b:
#         2c:f1:c4:de:43:68:08:6a:5f:3b:f0:76:63:fb:cc:06:2c:a6:
#         c6:e2:0e:b5:b9:be:24:8f

[p11-kit-object-v1]
label: "Certum Trusted Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA0S2Ou7c26m03kZ9Ok6cF
5CkDJc4cgvd8mZ9BBs3to7rA2wkswXzfKX5LZS+Tp9QBawMoGKPYnQXBKthF8ZHe
3zvQgAKMzzgP6qdceBGkwciFXCXT07LnJc8RVJerNcAedhzvAFOfOdwUpSwiJbNy
cvyNs+U+CB4UKjcLiDzKsPTIwqGuvMG+KWdV4vytWVz+vVcssJCNwu03tnyZiLXV
A5o9FQ09OqioRfCVTiVZHc2YabvTzDLJje+B/q19ibu6YBPKZZVnoPMZ9gNW1GrT
J+KhrYPwShIidxwFc+IZcULA7HVGmpBY4GqOK6VGMASOGbIX476pun9W8SQD17Ih
KHYONjBMedVBmpqouDW6DDryRBsgiPfFJdc9xuM+Q92H/sTq9VM+TGX/O0rLeFpr
F18Nx8NPTpoqou1XTSLiRpo/D5E0JH1V44yVN9Ma8AkrLNLJjbQNAKtnKSjYAfUZ
BLYdvnb+clzEhcrSgEHfBaij1YSQTwvz4D+bGdI3iT/ye1IcjPbh9zwHl4wOolmB
DLKQPdPjWUbtD6mn3oBrWqoHthnLvFfzlyF6DLErdD7r2qdnLUzEmJ42CXZmZvwa
P+pIVBy+ML2AUL98tc4A9gxh2eckA+DjAYEOvdiFNIi9sjaoe1wI5USAjG/4L9Uh
yh0c0PvEtYfROk7HdrU1SLUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Trusted Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1e:bf:59:50:b8:c9:80:37:4c:06:f7:eb:55:4f:b5:ed
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = PL, O = Asseco Data Systems S.A., OU = Certum Certification Authority, CN = Certum Trusted Root CA
#        Validity
#            Not Before: Mar 16 12:10:13 2018 GMT
#            Not After : Mar 16 12:10:13 2043 GMT
#        Subject: C = PL, O = Asseco Data Systems S.A., OU = Certum Certification Authority, CN = Certum Trusted Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d1:2d:8e:bb:b7:36:ea:6d:37:91:9f:4e:93:a7:
#                    05:e4:29:03:25:ce:1c:82:f7:7c:99:9f:41:06:cd:
#                    ed:a3:ba:c0:db:09:2c:c1:7c:df:29:7e:4b:65:2f:
#                    93:a7:d4:01:6b:03:28:18:a3:d8:9d:05:c1:2a:d8:
#                    45:f1:91:de:df:3b:d0:80:02:8c:cf:38:0f:ea:a7:
#                    5c:78:11:a4:c1:c8:85:5c:25:d3:d3:b2:e7:25:cf:
#                    11:54:97:ab:35:c0:1e:76:1c:ef:00:53:9f:39:dc:
#                    14:a5:2c:22:25:b3:72:72:fc:8d:b3:e5:3e:08:1e:
#                    14:2a:37:0b:88:3c:ca:b0:f4:c8:c2:a1:ae:bc:c1:
#                    be:29:67:55:e2:fc:ad:59:5c:fe:bd:57:2c:b0:90:
#                    8d:c2:ed:37:b6:7c:99:88:b5:d5:03:9a:3d:15:0d:
#                    3d:3a:a8:a8:45:f0:95:4e:25:59:1d:cd:98:69:bb:
#                    d3:cc:32:c9:8d:ef:81:fe:ad:7d:89:bb:ba:60:13:
#                    ca:65:95:67:a0:f3:19:f6:03:56:d4:6a:d3:27:e2:
#                    a1:ad:83:f0:4a:12:22:77:1c:05:73:e2:19:71:42:
#                    c0:ec:75:46:9a:90:58:e0:6a:8e:2b:a5:46:30:04:
#                    8e:19:b2:17:e3:be:a9:ba:7f:56:f1:24:03:d7:b2:
#                    21:28:76:0e:36:30:4c:79:d5:41:9a:9a:a8:b8:35:
#                    ba:0c:3a:f2:44:1b:20:88:f7:c5:25:d7:3d:c6:e3:
#                    3e:43:dd:87:fe:c4:ea:f5:53:3e:4c:65:ff:3b:4a:
#                    cb:78:5a:6b:17:5f:0d:c7:c3:4f:4e:9a:2a:a2:ed:
#                    57:4d:22:e2:46:9a:3f:0f:91:34:24:7d:55:e3:8c:
#                    95:37:d3:1a:f0:09:2b:2c:d2:c9:8d:b4:0d:00:ab:
#                    67:29:28:d8:01:f5:19:04:b6:1d:be:76:fe:72:5c:
#                    c4:85:ca:d2:80:41:df:05:a8:a3:d5:84:90:4f:0b:
#                    f3:e0:3f:9b:19:d2:37:89:3f:f2:7b:52:1c:8c:f6:
#                    e1:f7:3c:07:97:8c:0e:a2:59:81:0c:b2:90:3d:d3:
#                    e3:59:46:ed:0f:a9:a7:de:80:6b:5a:aa:07:b6:19:
#                    cb:bc:57:f3:97:21:7a:0c:b1:2b:74:3e:eb:da:a7:
#                    67:2d:4c:c4:98:9e:36:09:76:66:66:fc:1a:3f:ea:
#                    48:54:1c:be:30:bd:80:50:bf:7c:b5:ce:00:f6:0c:
#                    61:d9:e7:24:03:e0:e3:01:81:0e:bd:d8:85:34:88:
#                    bd:b2:36:a8:7b:5c:08:e5:44:80:8c:6f:f8:2f:d5:
#                    21:ca:1d:1c:d0:fb:c4:b5:87:d1:3a:4e:c7:76:b5:
#                    35:48:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8C:FB:1C:75:BC:02:D3:9F:4E:2E:48:D9:F9:60:54:AA:C4:B3:4F:FA
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         48:a2:d5:00:0b:2e:d0:3f:bc:1c:d5:b5:54:49:1e:5a:6b:f4:
#         e4:f2:e0:40:37:e0:cc:14:7b:b9:c9:fa:35:b5:75:17:93:6a:
#         05:69:85:9c:cd:4f:19:78:5b:19:81:f3:63:3e:c3:ce:5b:8f:
#         f5:2f:5e:01:76:13:3f:2c:00:b9:cd:96:52:39:49:6d:04:4e:
#         c5:e9:0f:86:0d:e1:fa:b3:5f:82:12:f1:3a:ce:66:06:24:34:
#         2b:e8:cc:ca:e7:69:dc:87:9d:c2:34:d7:79:d1:d3:77:b8:aa:
#         59:58:fe:9d:26:fa:38:86:3e:9d:8a:87:64:57:e5:17:3a:e2:
#         f9:8d:b9:e3:33:78:c1:90:d8:b8:dd:b7:83:51:e4:c4:cc:23:
#         d5:06:7c:e6:51:d3:cd:34:31:c0:f6:46:bb:0b:ad:fc:3d:10:
#         05:2a:3b:4a:91:25:ee:8c:d4:84:87:80:2a:bc:09:8c:aa:3a:
#         13:5f:e8:34:79:50:c1:10:19:f9:d3:28:1e:d4:d1:51:30:29:
#         b3:ae:90:67:d6:1f:0a:63:b1:c5:a9:c6:42:31:63:17:94:ef:
#         69:cb:2f:fa:8c:14:7d:c4:43:18:89:d9:f0:32:40:e6:80:e2:
#         46:5f:e5:e3:c1:00:59:a8:f9:e8:20:bc:89:2c:0e:47:34:0b:
#         ea:57:c2:53:36:fc:a7:d4:af:31:cd:fe:02:e5:75:fa:b9:27:
#         09:f9:f3:f5:3b:ca:7d:9f:a9:22:cb:88:c9:aa:d1:47:3d:36:
#         77:a8:59:64:6b:27:cf:ef:27:c1:e3:24:b5:86:f7:ae:7e:32:
#         4d:b0:79:68:d1:39:e8:90:58:c3:83:bc:0f:2c:d6:97:eb:ce:
#         0c:e1:20:c7:da:b7:3e:c3:3f:bf:2f:dc:34:a4:fb:2b:21:cd:
#         67:8f:4b:f4:e3:ea:d4:3f:e7:4f:ba:b9:a5:93:45:1c:66:1f:
#         21:fa:64:5e:6f:e0:76:94:32:cb:75:f5:6e:e5:f6:8f:c7:b8:
#         a4:cc:a8:96:7d:64:fb:24:5a:4a:03:6c:6b:38:c6:e8:03:43:
#         9a:f7:57:b9:b3:29:69:93:38:f4:03:f2:bb:fb:82:6b:07:20:
#         d1:52:1f:9a:64:02:7b:98:66:db:5c:4d:5a:0f:d0:84:95:a0:
#         3c:14:43:06:ca:ca:db:b8:41:36:da:6a:44:67:87:af:af:e3:
#         45:11:15:69:08:b2:be:16:39:97:24:6f:12:45:d1:67:5d:09:
#         a8:c9:15:da:fa:d2:a6:5f:13:61:1f:bf:85:ac:b4:ad:ad:05:
#         94:08:83:1e:75:17:d3:71:3b:93:50:23:59:a0:ed:3c:91:54:
#         9d:76:00:c5:c3:b8:38:db

[p11-kit-object-v1]
label: "Chambers of Commerce Root - 2008"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Chambers of Commerce Root - 2008"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIHTzCCBTegAwIBAgIJAKPaQn6ksa7aMA0GCSqGSIb3DQEBBQUAMIGuMQswCQYD
VQQGEwJFVTFDMEEGA1UEBxM6TWFkcmlkIChzZWUgY3VycmVudCBhZGRyZXNzIGF0
IHd3dy5jYW1lcmZpcm1hLmNvbS9hZGRyZXNzKTESMBAGA1UEBRMJQTgyNzQzMjg3
MRswGQYDVQQKExJBQyBDYW1lcmZpcm1hIFMuQS4xKTAnBgNVBAMTIENoYW1iZXJz
IG9mIENvbW1lcmNlIFJvb3QgLSAyMDA4MB4XDTA4MDgwMTEyMjk1MFoXDTM4MDcz
MTEyMjk1MFowga4xCzAJBgNVBAYTAkVVMUMwQQYDVQQHEzpNYWRyaWQgKHNlZSBj
dXJyZW50IGFkZHJlc3MgYXQgd3d3LmNhbWVyZmlybWEuY29tL2FkZHJlc3MpMRIw
EAYDVQQFEwlBODI3NDMyODcxGzAZBgNVBAoTEkFDIENhbWVyZmlybWEgUy5BLjEp
MCcGA1UEAxMgQ2hhbWJlcnMgb2YgQ29tbWVyY2UgUm9vdCAtIDIwMDgwggIiMA0G
CSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCvAMtwNyuAWko6bHiUfaN/Gh/2NdW9
28sNRHI+JrKQUrpjOyhYb6WzbZSm891kDFX29ufyIiKAXuFixrYp4YFs8r/lfTJq
VKAyGVn+H4vXPWCGhSRv4xGzdz4gljUha7MI2XAuZPeEklPWDrCQiorjh40G072Q
DuKZoRuGDtqaCrsLYVAGUvGef3bsyw/QHg3PmTA9HMRFEFis1tPo1+XqxQEHd9ZR
5gN/ikilTWh1uem8nk4ZcfUyS5xtYBkL+8ydddy/Js2Pk3g5eXNeJQ7KXOt3EgfL
ZEFHcpOrUMPrCXZkNNI5t3YRCQ12RcSprj1qr7V9ZS+UWBDsXHyvfuK2GNnQm05a
Sd+pZgvMPMZ4fKecHePOjlO+Bd5gD2vlGts/4+EhySnB8esHnFIbAURRPHsl18Tl
UlRdJQfKFiC4reRB7noI/plvg6aRArBsNlVq5331lubKgdaX8ZSD6e2wsWsSaR6s
+12pxZjptFtYer49okQ6Y1nUCyXeG0+95QGezdIp1Z8XGQpvvwyQ0wlf2eOKNcx5
Wk0ZN5K3xMGtr/R5JJqyAQuxr1yW84Ay+1w9mPGgP0revq+ULtlVmhduYJ1jbLhj
ya6BXBg14JC7vjxPNyK5fuvPnnchpj04gftI2jE9K+OJ9dC1vX7gUMQSibMjmhAx
hduub+84Mxh2EQIDAQABo4IBbDCCAWgwEgYDVR0TAQH/BAgwBgEB/wIBDDAdBgNV
HQ4EFgQU+SSsD7K1+HnA+mCIG8TZTQKeFxkwgeMGA1UdIwSB2zCB2IAU+SSsD7K1
+HnA+mCIG8TZTQKeFxmhgbSkgbEwga4xCzAJBgNVBAYTAkVVMUMwQQYDVQQHEzpN
YWRyaWQgKHNlZSBjdXJyZW50IGFkZHJlc3MgYXQgd3d3LmNhbWVyZmlybWEuY29t
L2FkZHJlc3MpMRIwEAYDVQQFEwlBODI3NDMyODcxGzAZBgNVBAoTEkFDIENhbWVy
ZmlybWEgUy5BLjEpMCcGA1UEAxMgQ2hhbWJlcnMgb2YgQ29tbWVyY2UgUm9vdCAt
IDIwMDiCCQCj2kJ+pLGu2jAOBgNVHQ8BAf8EBAMCAQYwPQYDVR0gBDYwNDAyBgRV
HSAAMCowKAYIKwYBBQUHAgEWHGh0dHA6Ly9wb2xpY3kuY2FtZXJmaXJtYS5jb20w
DQYJKoZIhvcNAQEFBQADggIBAJASryI1wqM58C7e6bXpeHxIvj99RZJe6dqxGfwW
PJ+0W2aeaufDuV2I6A+tzyMP3iU6XsxPpcG1Lawk0lgH3qLPaYRgM+gQDROpI9CF
5Y57pp49chNyM/WqfcZjHwj0/gF/JM8rLFQJ3uIrbZLGOU8W6jx+ekbURWpGqOt1
glanq6B8aBMz9p0w8G8nOSQjKpD9kCk18pPfNKXG9/jvjA9iSnyu0/VU+I22mlaH
FoI6M6taIgj3grrqLuBHmrS1RaMFO9ncLkVAO+rcf+g769HsJtg1pDDFOqxXnrN2
pSB7+R5KBWIBpih1YJeSDW4+TTdDDZIVnBgizVGZoCkaPF+KMjNbMMeJL0eYD6MD
xvbxrN8y8NmBGuScvfaAFPDRLLmF9dijscilIeUcE5fuDr3fKanvNFNb0+RqE4QG
tjICxFKuItLcsiFCGtpA8CnJ7AoMXOLQusxI0zcKzBIKinmwPQN/aUv0NCB9szTq
jktk9T79syNnFQ0EuPAtwQlRPLJsFfClI9eDdOTlLsn+mCdCxqvGnrDQWzilm1De
fhiYtUU79nm06PcaewaD+9CL2rvHvRirCG88gGtAPxkZumWK5r7VXNM21+9AUiRg
OGcEMeyP84LG3rlV8zsxkVrctQgVrXYlCg17LofiDKYGvCYQbTed7N14jHyAxfDZ
d0jQ
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            a3:da:42:7e:a4:b1:ae:da
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = EU, L = Madrid (see current address at www.camerfirma.com/address), serialNumber = A82743287, O = AC Camerfirma S.A., CN = Chambers of Commerce Root - 2008
#        Validity
#            Not Before: Aug  1 12:29:50 2008 GMT
#            Not After : Jul 31 12:29:50 2038 GMT
#        Subject: C = EU, L = Madrid (see current address at www.camerfirma.com/address), serialNumber = A82743287, O = AC Camerfirma S.A., CN = Chambers of Commerce Root - 2008
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:af:00:cb:70:37:2b:80:5a:4a:3a:6c:78:94:7d:
#                    a3:7f:1a:1f:f6:35:d5:bd:db:cb:0d:44:72:3e:26:
#                    b2:90:52:ba:63:3b:28:58:6f:a5:b3:6d:94:a6:f3:
#                    dd:64:0c:55:f6:f6:e7:f2:22:22:80:5e:e1:62:c6:
#                    b6:29:e1:81:6c:f2:bf:e5:7d:32:6a:54:a0:32:19:
#                    59:fe:1f:8b:d7:3d:60:86:85:24:6f:e3:11:b3:77:
#                    3e:20:96:35:21:6b:b3:08:d9:70:2e:64:f7:84:92:
#                    53:d6:0e:b0:90:8a:8a:e3:87:8d:06:d3:bd:90:0e:
#                    e2:99:a1:1b:86:0e:da:9a:0a:bb:0b:61:50:06:52:
#                    f1:9e:7f:76:ec:cb:0f:d0:1e:0d:cf:99:30:3d:1c:
#                    c4:45:10:58:ac:d6:d3:e8:d7:e5:ea:c5:01:07:77:
#                    d6:51:e6:03:7f:8a:48:a5:4d:68:75:b9:e9:bc:9e:
#                    4e:19:71:f5:32:4b:9c:6d:60:19:0b:fb:cc:9d:75:
#                    dc:bf:26:cd:8f:93:78:39:79:73:5e:25:0e:ca:5c:
#                    eb:77:12:07:cb:64:41:47:72:93:ab:50:c3:eb:09:
#                    76:64:34:d2:39:b7:76:11:09:0d:76:45:c4:a9:ae:
#                    3d:6a:af:b5:7d:65:2f:94:58:10:ec:5c:7c:af:7e:
#                    e2:b6:18:d9:d0:9b:4e:5a:49:df:a9:66:0b:cc:3c:
#                    c6:78:7c:a7:9c:1d:e3:ce:8e:53:be:05:de:60:0f:
#                    6b:e5:1a:db:3f:e3:e1:21:c9:29:c1:f1:eb:07:9c:
#                    52:1b:01:44:51:3c:7b:25:d7:c4:e5:52:54:5d:25:
#                    07:ca:16:20:b8:ad:e4:41:ee:7a:08:fe:99:6f:83:
#                    a6:91:02:b0:6c:36:55:6a:e7:7d:f5:96:e6:ca:81:
#                    d6:97:f1:94:83:e9:ed:b0:b1:6b:12:69:1e:ac:fb:
#                    5d:a9:c5:98:e9:b4:5b:58:7a:be:3d:a2:44:3a:63:
#                    59:d4:0b:25:de:1b:4f:bd:e5:01:9e:cd:d2:29:d5:
#                    9f:17:19:0a:6f:bf:0c:90:d3:09:5f:d9:e3:8a:35:
#                    cc:79:5a:4d:19:37:92:b7:c4:c1:ad:af:f4:79:24:
#                    9a:b2:01:0b:b1:af:5c:96:f3:80:32:fb:5c:3d:98:
#                    f1:a0:3f:4a:de:be:af:94:2e:d9:55:9a:17:6e:60:
#                    9d:63:6c:b8:63:c9:ae:81:5c:18:35:e0:90:bb:be:
#                    3c:4f:37:22:b9:7e:eb:cf:9e:77:21:a6:3d:38:81:
#                    fb:48:da:31:3d:2b:e3:89:f5:d0:b5:bd:7e:e0:50:
#                    c4:12:89:b3:23:9a:10:31:85:db:ae:6f:ef:38:33:
#                    18:76:11
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 Subject Key Identifier: 
#                F9:24:AC:0F:B2:B5:F8:79:C0:FA:60:88:1B:C4:D9:4D:02:9E:17:19
#            X509v3 Authority Key Identifier: 
#                keyid:F9:24:AC:0F:B2:B5:F8:79:C0:FA:60:88:1B:C4:D9:4D:02:9E:17:19
#                DirName:/C=EU/L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287/O=AC Camerfirma S.A./CN=Chambers of Commerce Root - 2008
#                serial:A3:DA:42:7E:A4:B1:AE:DA
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://policy.camerfirma.com
#
#    Signature Algorithm: sha1WithRSAEncryption
#         90:12:af:22:35:c2:a3:39:f0:2e:de:e9:b5:e9:78:7c:48:be:
#         3f:7d:45:92:5e:e9:da:b1:19:fc:16:3c:9f:b4:5b:66:9e:6a:
#         e7:c3:b9:5d:88:e8:0f:ad:cf:23:0f:de:25:3a:5e:cc:4f:a5:
#         c1:b5:2d:ac:24:d2:58:07:de:a2:cf:69:84:60:33:e8:10:0d:
#         13:a9:23:d0:85:e5:8e:7b:a6:9e:3d:72:13:72:33:f5:aa:7d:
#         c6:63:1f:08:f4:fe:01:7f:24:cf:2b:2c:54:09:de:e2:2b:6d:
#         92:c6:39:4f:16:ea:3c:7e:7a:46:d4:45:6a:46:a8:eb:75:82:
#         56:a7:ab:a0:7c:68:13:33:f6:9d:30:f0:6f:27:39:24:23:2a:
#         90:fd:90:29:35:f2:93:df:34:a5:c6:f7:f8:ef:8c:0f:62:4a:
#         7c:ae:d3:f5:54:f8:8d:b6:9a:56:87:16:82:3a:33:ab:5a:22:
#         08:f7:82:ba:ea:2e:e0:47:9a:b4:b5:45:a3:05:3b:d9:dc:2e:
#         45:40:3b:ea:dc:7f:e8:3b:eb:d1:ec:26:d8:35:a4:30:c5:3a:
#         ac:57:9e:b3:76:a5:20:7b:f9:1e:4a:05:62:01:a6:28:75:60:
#         97:92:0d:6e:3e:4d:37:43:0d:92:15:9c:18:22:cd:51:99:a0:
#         29:1a:3c:5f:8a:32:33:5b:30:c7:89:2f:47:98:0f:a3:03:c6:
#         f6:f1:ac:df:32:f0:d9:81:1a:e4:9c:bd:f6:80:14:f0:d1:2c:
#         b9:85:f5:d8:a3:b1:c8:a5:21:e5:1c:13:97:ee:0e:bd:df:29:
#         a9:ef:34:53:5b:d3:e4:6a:13:84:06:b6:32:02:c4:52:ae:22:
#         d2:dc:b2:21:42:1a:da:40:f0:29:c9:ec:0a:0c:5c:e2:d0:ba:
#         cc:48:d3:37:0a:cc:12:0a:8a:79:b0:3d:03:7f:69:4b:f4:34:
#         20:7d:b3:34:ea:8e:4b:64:f5:3e:fd:b3:23:67:15:0d:04:b8:
#         f0:2d:c1:09:51:3c:b2:6c:15:f0:a5:23:d7:83:74:e4:e5:2e:
#         c9:fe:98:27:42:c6:ab:c6:9e:b0:d0:5b:38:a5:9b:50:de:7e:
#         18:98:b5:45:3b:f6:79:b4:e8:f7:1a:7b:06:83:fb:d0:8b:da:
#         bb:c7:bd:18:ab:08:6f:3c:80:6b:40:3f:19:19:ba:65:8a:e6:
#         be:d5:5c:d3:36:d7:ef:40:52:24:60:38:67:04:31:ec:8f:f3:
#         82:c6:de:b9:55:f3:3b:31:91:5a:dc:b5:08:15:ad:76:25:0a:
#         0d:7b:2e:87:e2:0c:a6:06:bc:26:10:6d:37:9d:ec:dd:78:8c:
#         7c:80:c5:f0:d9:77:48:d0

[p11-kit-object-v1]
label: "China Internet Network Information Center EV Certificates Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAm35z7r07eKpkQ0H1UN+U
8i6yjUqORlTSIRLIOTJCBumD1Z9S7eVnAztUwYyZmczpwA//DdmEEbK40ctb3B75
aDFk4Zv6dOtouSCV98YPjUesWgbdYavi7NifFy2cyjw1l1VxzUOFsUcW9SxTgHbP
0wBkvUCZ3czY28Sf1hNfQYOL+Q2HklY0bBoQCxfVWhyXWIQ8hBouXJE0bhlffxdp
xWXvayHG1VA6v2G5BY3vbzQ6sm8UY78WO5upKv23KzhmBsUs4qpnHkWnjQRmQvaP
K++IIGmPMowUc9orhpFjIpryp9vOiYurXccUwVswah+xt54ugQEC7c+WXmPbqOY4
twIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "China Internet Network Information Center EV Certificates Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1218379777 (0x489f0001)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CN, O = China Internet Network Information Center, CN = China Internet Network Information Center EV Certificates Root
#        Validity
#            Not Before: Aug 31 07:11:25 2010 GMT
#            Not After : Aug 31 07:11:25 2030 GMT
#        Subject: C = CN, O = China Internet Network Information Center, CN = China Internet Network Information Center EV Certificates Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:9b:7e:73:ee:bd:3b:78:aa:64:43:41:f5:50:df:
#                    94:f2:2e:b2:8d:4a:8e:46:54:d2:21:12:c8:39:32:
#                    42:06:e9:83:d5:9f:52:ed:e5:67:03:3b:54:c1:8c:
#                    99:99:cc:e9:c0:0f:ff:0d:d9:84:11:b2:b8:d1:cb:
#                    5b:dc:1e:f9:68:31:64:e1:9b:fa:74:eb:68:b9:20:
#                    95:f7:c6:0f:8d:47:ac:5a:06:dd:61:ab:e2:ec:d8:
#                    9f:17:2d:9c:ca:3c:35:97:55:71:cd:43:85:b1:47:
#                    16:f5:2c:53:80:76:cf:d3:00:64:bd:40:99:dd:cc:
#                    d8:db:c4:9f:d6:13:5f:41:83:8b:f9:0d:87:92:56:
#                    34:6c:1a:10:0b:17:d5:5a:1c:97:58:84:3c:84:1a:
#                    2e:5c:91:34:6e:19:5f:7f:17:69:c5:65:ef:6b:21:
#                    c6:d5:50:3a:bf:61:b9:05:8d:ef:6f:34:3a:b2:6f:
#                    14:63:bf:16:3b:9b:a9:2a:fd:b7:2b:38:66:06:c5:
#                    2c:e2:aa:67:1e:45:a7:8d:04:66:42:f6:8f:2b:ef:
#                    88:20:69:8f:32:8c:14:73:da:2b:86:91:63:22:9a:
#                    f2:a7:db:ce:89:8b:ab:5d:c7:14:c1:5b:30:6a:1f:
#                    b1:b7:9e:2e:81:01:02:ed:cf:96:5e:63:db:a8:e6:
#                    38:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:7C:72:4B:39:C7:C0:DB:62:A5:4F:9B:AA:18:34:92:A2:CA:83:82:59
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7C:72:4B:39:C7:C0:DB:62:A5:4F:9B:AA:18:34:92:A2:CA:83:82:59
#    Signature Algorithm: sha1WithRSAEncryption
#         2a:c3:c7:43:37:8f:dd:ad:a4:b2:0c:ee:dc:14:6d:8f:28:a4:
#         98:49:cb:0c:80:ea:f3:ed:23:66:75:7d:c5:d3:21:67:79:d1:
#         73:c5:b5:03:b7:58:ac:0c:54:2f:c6:56:13:0f:31:da:06:e7:
#         65:3b:1d:6f:36:db:c8:1d:f9:fd:80:06:ca:a3:3d:66:16:a8:
#         9d:4c:16:7d:c0:95:46:b5:51:e4:e2:1f:d7:ea:06:4d:63:8d:
#         96:8c:ef:e7:33:57:42:3a:eb:8c:c1:79:c8:4d:76:7d:de:f6:
#         b1:b7:81:e0:a0:f9:a1:78:46:17:1a:56:98:f0:4e:3d:ab:1c:
#         ed:ec:39:dc:07:48:f7:63:fe:06:ae:c2:a4:5c:6a:5b:32:88:
#         c5:c7:33:85:ac:66:42:47:c2:58:24:99:e1:e5:3e:e5:75:2c:
#         8e:43:d6:5d:3c:78:1e:a8:95:82:29:50:d1:d1:16:ba:ef:c1:
#         be:7a:d9:b4:d8:cc:1e:4c:46:e1:77:b1:31:ab:bd:2a:c8:ce:
#         8f:6e:a1:5d:7f:03:75:34:e4:ad:89:45:54:5e:be:ae:28:a5:
#         bb:3f:78:79:eb:73:b3:0a:0d:fd:be:c9:f7:56:ac:f6:b7:ed:
#         2f:9b:21:29:c7:38:b6:95:c4:04:f2:c3:2d:fd:14:2a:90:99:
#         b9:07:cc:9f

[p11-kit-object-v1]
label: "Cisco Root CA 2048"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAsJq5q6evCnen4nG2tGZi
lHiIR8ZiVYRAMr/Aqy6lHHHWvG57qKq6btIViEhFnaL8g9DMuYzgJmhwSnjfIRee
9GEFyRXIzxbaNWGJlEOohKgxmHibuU5vLFMSbM0drSskuzHEK/+DRG+2PSR3Ceq/
Kqgfalb2IA8RVJeBdaclzllqgmXvt+rn4o11i27y3U+mXmKczxAKZNBObc4rzFv1
YKUnR41p9H/OG3DecBsg1m7NpgGoPBLSqT+ga167jiCLepHjtWjuoOfEAXSoUwsr
SpoPZRIOgk2OY/3v65sa21OmE2Cvwn3Xx2wXJdRz+0dkUIGAlEzhv65LHN+S7S4F
3wIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Cisco Root CA 2048"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDQzCCAiugAwIBAgIQX/h7KCtU3I1CoxW1aMmt/zANBgkqhkiG9w0BAQUFADA1
MRYwFAYDVQQKEw1DaXNjbyBTeXN0ZW1zMRswGQYDVQQDExJDaXNjbyBSb290IENB
IDIwNDgwHhcNMDQwNTE0MjAxNzEyWhcNMjkwNTE0MjAyNTQyWjA1MRYwFAYDVQQK
Ew1DaXNjbyBTeXN0ZW1zMRswGQYDVQQDExJDaXNjbyBSb290IENBIDIwNDgwggEg
MA0GCSqGSIb3DQEBAQUAA4IBDQAwggEIAoIBAQCwmrmrp68Kd6ficba0ZmKUeIhH
xmJVhEAyv8CrLqUccda8bnuoqrpu0hWISEWdovyD0My5jOAmaHBKeN8hF570YQXJ
FcjPFto1YYmUQ6iEqDGYeJu5Tm8sUxJszR2tKyS7McQr/4NEb7Y9JHcJ6r8qqB9q
VvYgDxFUl4F1pyXOWWqCZe+36ufijXWLbvLdT6ZeYpzPEApk0E5tzivMW/VgpSdH
jWn0f84bcN5wGyDWbs2mAag8EtKpP6BrXruOIIt6keO1aO6g58QBdKhTCytKmg9l
Eg6CTY5j/e/rmxrbU6YTYK/CfdfHbBcl1HP7R2RQgYCUTOG/rksc35LtLgXfAgED
o1EwTzALBgNVHQ8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUJ/PI
FR5umgIJFq0roIlgX9p7L6owEAYJKwYBBAGCNxUBBAMCAQAwDQYJKoZIhvcNAQEF
BQADggEBAJ2dhISjQal8dwy3U8pORFBi71R803UXHOjgxkhLtv5MOhmBVrBW7hmW
Yqpao2TB9k5UM8Z3/sUcuuVdJcr18JOagxEu5sv4dEX+5wW4q+ffy0vhN4TauYuX
cB7w4ovXsNgOnbFp1iqRe6lJT37mjpXYgyc81WhJDtSd9i7rp77rMKSsH0T8lasz
Bvt9YAretIpjsJyp8qS5UwGH0GikJ3+r/+n6yUA4iGe0OcaEb1fJU9u6ju7AQ7L4
CYNu/2bPPu8Xs1gYJQk0XuPL1hS27PKSb3TkL4Eq1ZKR4OCXPDJoBYVL0fdX4lId
kxpUnwVwwEpxYB5DC2Ae/qPOgRnhCzU=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5f:f8:7b:28:2b:54:dc:8d:42:a3:15:b5:68:c9:ad:ff
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O = Cisco Systems, CN = Cisco Root CA 2048
#        Validity
#            Not Before: May 14 20:17:12 2004 GMT
#            Not After : May 14 20:25:42 2029 GMT
#        Subject: O = Cisco Systems, CN = Cisco Root CA 2048
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b0:9a:b9:ab:a7:af:0a:77:a7:e2:71:b6:b4:66:
#                    62:94:78:88:47:c6:62:55:84:40:32:bf:c0:ab:2e:
#                    a5:1c:71:d6:bc:6e:7b:a8:aa:ba:6e:d2:15:88:48:
#                    45:9d:a2:fc:83:d0:cc:b9:8c:e0:26:68:70:4a:78:
#                    df:21:17:9e:f4:61:05:c9:15:c8:cf:16:da:35:61:
#                    89:94:43:a8:84:a8:31:98:78:9b:b9:4e:6f:2c:53:
#                    12:6c:cd:1d:ad:2b:24:bb:31:c4:2b:ff:83:44:6f:
#                    b6:3d:24:77:09:ea:bf:2a:a8:1f:6a:56:f6:20:0f:
#                    11:54:97:81:75:a7:25:ce:59:6a:82:65:ef:b7:ea:
#                    e7:e2:8d:75:8b:6e:f2:dd:4f:a6:5e:62:9c:cf:10:
#                    0a:64:d0:4e:6d:ce:2b:cc:5b:f5:60:a5:27:47:8d:
#                    69:f4:7f:ce:1b:70:de:70:1b:20:d6:6e:cd:a6:01:
#                    a8:3c:12:d2:a9:3f:a0:6b:5e:bb:8e:20:8b:7a:91:
#                    e3:b5:68:ee:a0:e7:c4:01:74:a8:53:0b:2b:4a:9a:
#                    0f:65:12:0e:82:4d:8e:63:fd:ef:eb:9b:1a:db:53:
#                    a6:13:60:af:c2:7d:d7:c7:6c:17:25:d4:73:fb:47:
#                    64:50:81:80:94:4c:e1:bf:ae:4b:1c:df:92:ed:2e:
#                    05:df
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                27:F3:C8:15:1E:6E:9A:02:09:16:AD:2B:A0:89:60:5F:DA:7B:2F:AA
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         9d:9d:84:84:a3:41:a9:7c:77:0c:b7:53:ca:4e:44:50:62:ef:
#         54:7c:d3:75:17:1c:e8:e0:c6:48:4b:b6:fe:4c:3a:19:81:56:
#         b0:56:ee:19:96:62:aa:5a:a3:64:c1:f6:4e:54:33:c6:77:fe:
#         c5:1c:ba:e5:5d:25:ca:f5:f0:93:9a:83:11:2e:e6:cb:f8:74:
#         45:fe:e7:05:b8:ab:e7:df:cb:4b:e1:37:84:da:b9:8b:97:70:
#         1e:f0:e2:8b:d7:b0:d8:0e:9d:b1:69:d6:2a:91:7b:a9:49:4f:
#         7e:e6:8e:95:d8:83:27:3c:d5:68:49:0e:d4:9d:f6:2e:eb:a7:
#         be:eb:30:a4:ac:1f:44:fc:95:ab:33:06:fb:7d:60:0a:de:b4:
#         8a:63:b0:9c:a9:f2:a4:b9:53:01:87:d0:68:a4:27:7f:ab:ff:
#         e9:fa:c9:40:38:88:67:b4:39:c6:84:6f:57:c9:53:db:ba:8e:
#         ee:c0:43:b2:f8:09:83:6e:ff:66:cf:3e:ef:17:b3:58:18:25:
#         09:34:5e:e3:cb:d6:14:b6:ec:f2:92:6f:74:e4:2f:81:2a:d5:
#         92:91:e0:e0:97:3c:32:68:05:85:4b:d1:f7:57:e2:52:1d:93:
#         1a:54:9f:05:70:c0:4a:71:60:1e:43:0b:60:1e:fe:a3:ce:81:
#         19:e1:0b:35

[p11-kit-object-v1]
label: "Common Policy"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAl429MyfkrVv7eL0vR0du
x3jpk5yk3skc/S8bOTisRxfAfncpADsDH2gPzU2l7ne4LGJrMfb6cgl9MCkGfOd8
oz2EGIodriySqB/oXk+Njus/GvicCmedsGdN8C7QMN7DlLCgzy4KNH9UCdM2vaRJ
V1Jz6Z3+5Eh5RhtbjTLkpUhk8yINkp0IFb9gPIP3RyIlIq0pcbd37xfJoraUXsgw
kKQUSFxWVwtBTAXUKkw/rhKbWRF1cAciaS0s0zHMkn7MzaR+lEeqnAkI9kuvUuhq
QJHFVb1AschtV4aVF+Yfc75HLj6LTBe5uSUcpVIXNghZwEK+Ciu0VlE8G1XJjJB3
6wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Common Policy"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            29:36:47:aa:e3:8a:ac:86:4a:23:56:f2:ca:b7:61:af
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = us, O = U.S. Government, OU = FBCA, CN = Common Policy
#        Validity
#            Not Before: Oct 15 15:58:00 2007 GMT
#            Not After : Oct 15 16:08:00 2027 GMT
#        Subject: C = us, O = U.S. Government, OU = FBCA, CN = Common Policy
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:97:8d:bd:33:27:e4:ad:5b:fb:78:bd:2f:47:47:
#                    6e:c7:78:e9:93:9c:a4:de:c9:1c:fd:2f:1b:39:38:
#                    ac:47:17:c0:7e:77:29:00:3b:03:1f:68:0f:cd:4d:
#                    a5:ee:77:b8:2c:62:6b:31:f6:fa:72:09:7d:30:29:
#                    06:7c:e7:7c:a3:3d:84:18:8a:1d:ae:2c:92:a8:1f:
#                    e8:5e:4f:8d:8e:eb:3f:1a:f8:9c:0a:67:9d:b0:67:
#                    4d:f0:2e:d0:30:de:c3:94:b0:a0:cf:2e:0a:34:7f:
#                    54:09:d3:36:bd:a4:49:57:52:73:e9:9d:fe:e4:48:
#                    79:46:1b:5b:8d:32:e4:a5:48:64:f3:22:0d:92:9d:
#                    08:15:bf:60:3c:83:f7:47:22:25:22:ad:29:71:b7:
#                    77:ef:17:c9:a2:b6:94:5e:c8:30:90:a4:14:48:5c:
#                    56:57:0b:41:4c:05:d4:2a:4c:3f:ae:12:9b:59:11:
#                    75:70:07:22:69:2d:2c:d3:31:cc:92:7e:cc:cd:a4:
#                    7e:94:47:aa:9c:09:08:f6:4b:af:52:e8:6a:40:91:
#                    c5:55:bd:40:b1:c8:6d:57:86:95:17:e6:1f:73:be:
#                    47:2e:3e:8b:4c:17:b9:b9:25:1c:a5:52:17:36:08:
#                    59:c0:42:be:0a:2b:b4:56:51:3c:1b:55:c9:8c:90:
#                    77:eb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                2F:58:97:D8:A9:05:98:A5:56:1F:FB:D9:AB:75:EF:02:3C:36:34:C7
#            1.3.6.1.4.1.311.21.1: 
#                .....
#            1.3.6.1.4.1.311.21.2: 
#                ..v.`...V).u..pc..G...
#    Signature Algorithm: sha1WithRSAEncryption
#         60:ae:f3:48:16:40:72:a6:08:88:c9:bc:47:2c:24:4b:5d:a0:
#         91:73:ed:65:78:90:f0:67:90:7a:a5:bf:0a:ad:b6:2a:f9:99:
#         67:df:83:c5:77:1f:34:09:38:f9:7e:9e:41:e0:48:60:fe:e2:
#         aa:5d:87:88:ea:88:fd:5c:45:b2:c9:6a:da:7d:a4:ad:b1:4f:
#         bf:1c:0d:9f:1e:9a:c0:d5:14:73:38:2b:8a:78:40:6e:30:f7:
#         62:e1:cd:99:fc:51:69:67:6c:11:dd:b8:10:a3:68:de:26:a5:
#         56:fd:36:6c:37:98:6c:fb:ee:7c:3c:6c:6b:70:3f:f7:48:37:
#         09:8f:0b:42:81:ad:46:46:b8:0b:83:06:f4:1b:38:a0:7f:4f:
#         cd:0b:ef:83:89:87:97:1c:8a:30:67:dc:fd:54:a1:03:7e:01:
#         cb:85:4c:b1:0b:29:c3:be:ec:7c:e1:3f:0f:09:52:3c:2f:a7:
#         9a:48:fe:37:e9:11:06:58:e1:36:41:8a:c4:b6:bf:8e:dd:ce:
#         4a:b3:bc:1a:c0:cd:fa:1a:99:d2:71:9b:fa:cf:bc:f2:c4:54:
#         a3:88:35:76:cc:1b:2c:46:6f:0c:b4:d1:c3:61:76:92:74:11:
#         ea:4b:80:8d:1c:89:11:8b:ec:5b:ff:17:c9:48:fc:e7:e0:06:
#         11:e2:84:5e

[p11-kit-object-v1]
label: "Comodo AAA Services root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvkCd9G7h6naHHE1FRI6+
RsiDBp3BKv4YH47kAvrzq11QihYxC5oG0MVwIs1JLVRjzLZuaEYLU+rLTCTAvHJO
6vEVrvRUmhIKw3qyM2Di2olV8yJY897cz++DhqKMlE+faPKYkEaEJ8d2v+PMNSyL
XgdkZYLASLCokflhn3YgUKiRx2a163hiA1bwihoT6jGjHqCZ/Tj29icyWG8H9Wu4
+xQrr7eqzNZjX3OM2gWZqDioyxd4NlGs6Z70eDqNzw/ZQuKYDKsvnw4B3u+fmUnx
Ld+sdE0bmLVHxeUp0fmQGMdinL6DxyZ7Poolx8DdneY1aBAgnY/Y3tLDhJwNXugv
yQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Comodo AAA Services root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEMjCCAxqgAwIBAgIBATANBgkqhkiG9w0BAQUFADB7MQswCQYDVQQGEwJHQjEb
MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEhMB8GA1UEAwwYQUFBIENlcnRpZmlj
YXRlIFNlcnZpY2VzMB4XDTA0MDEwMTAwMDAwMFoXDTI4MTIzMTIzNTk1OVowezEL
MAkGA1UEBhMCR0IxGzAZBgNVBAgMEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
BwwHU2FsZm9yZDEaMBgGA1UECgwRQ29tb2RvIENBIExpbWl0ZWQxITAfBgNVBAMM
GEFBQSBDZXJ0aWZpY2F0ZSBTZXJ2aWNlczCCASIwDQYJKoZIhvcNAQEBBQADggEP
ADCCAQoCggEBAL5AnfRu4ep2hxxNRUSOvkbIgwadwSr+GB+O5AL686tdUIoWMQua
BtDFcCLNSS1UY8y2bmhGC1Pqy0wkwLxyTurxFa70VJoSCsN6sjNg4tqJVfMiWPPe
3M/vg4aijJRPn2jymJBGhCfHdr/jzDUsi14HZGWCwEiwqJH5YZ92IFCokcdmtet4
YgNW8IoaE+oxox6gmf049vYnMlhvB/VruPsUK6+3qszWY19zjNoFmag4qMsXeDZR
rOme9Hg6jc8P2ULimAyrL58OAd7vn5lJ8S3frHRNG5i1R8XlKdH5kBjHYpy+g8cm
ez6KJcfA3Z3mNWgQIJ2P2N7Sw4ScDV7oL8kCAwEAAaOBwDCBvTAdBgNVHQ4EFgQU
oBEKIz6W8Qfs4q8p74Klf9AwpLQwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQF
MAMBAf8wewYDVR0fBHQwcjA4oDagNIYyaHR0cDovL2NybC5jb21vZG9jYS5jb20v
QUFBQ2VydGlmaWNhdGVTZXJ2aWNlcy5jcmwwNqA0oDKGMGh0dHA6Ly9jcmwuY29t
b2RvLm5ldC9BQUFDZXJ0aWZpY2F0ZVNlcnZpY2VzLmNybDANBgkqhkiG9w0BAQUF
AAOCAQEACFb8AvCb6P+k+tZ7xkSAzk/ExfYAWMymtrwUSWgEdujm7l3sAg9g1o1Q
GE8mTgHj5rCl7r+8dFRBv/38ErjHT1r0iWAFf2C3BUrz9vHCv8S5dIa2LX1rzNLz
Rt0vxuBqw8M0Ayx9lt1awg6nCpnBBYurDC/zXDrPbDdVCYfeU0BsWO/8tqtlbgT2
G9w84FoVxp7Z8VlIMCFlA2zs6SFz7JsDoeA3raAVGI/6ugLOpyypEBMs1OUIJqsi
l2D4kF501KKaU73yqWjgom7C12yxow+ev+to51byrvLjKzg6CYG1a4XXvi3tPxq3
smPi9WIsgtRqAEFQ8TmDn5XpNpaYbg==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = GB, ST = Greater Manchester, L = Salford, O = Comodo CA Limited, CN = AAA Certificate Services
#        Validity
#            Not Before: Jan  1 00:00:00 2004 GMT
#            Not After : Dec 31 23:59:59 2028 GMT
#        Subject: C = GB, ST = Greater Manchester, L = Salford, O = Comodo CA Limited, CN = AAA Certificate Services
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:be:40:9d:f4:6e:e1:ea:76:87:1c:4d:45:44:8e:
#                    be:46:c8:83:06:9d:c1:2a:fe:18:1f:8e:e4:02:fa:
#                    f3:ab:5d:50:8a:16:31:0b:9a:06:d0:c5:70:22:cd:
#                    49:2d:54:63:cc:b6:6e:68:46:0b:53:ea:cb:4c:24:
#                    c0:bc:72:4e:ea:f1:15:ae:f4:54:9a:12:0a:c3:7a:
#                    b2:33:60:e2:da:89:55:f3:22:58:f3:de:dc:cf:ef:
#                    83:86:a2:8c:94:4f:9f:68:f2:98:90:46:84:27:c7:
#                    76:bf:e3:cc:35:2c:8b:5e:07:64:65:82:c0:48:b0:
#                    a8:91:f9:61:9f:76:20:50:a8:91:c7:66:b5:eb:78:
#                    62:03:56:f0:8a:1a:13:ea:31:a3:1e:a0:99:fd:38:
#                    f6:f6:27:32:58:6f:07:f5:6b:b8:fb:14:2b:af:b7:
#                    aa:cc:d6:63:5f:73:8c:da:05:99:a8:38:a8:cb:17:
#                    78:36:51:ac:e9:9e:f4:78:3a:8d:cf:0f:d9:42:e2:
#                    98:0c:ab:2f:9f:0e:01:de:ef:9f:99:49:f1:2d:df:
#                    ac:74:4d:1b:98:b5:47:c5:e5:29:d1:f9:90:18:c7:
#                    62:9c:be:83:c7:26:7b:3e:8a:25:c7:c0:dd:9d:e6:
#                    35:68:10:20:9d:8f:d8:de:d2:c3:84:9c:0d:5e:e8:
#                    2f:c9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A0:11:0A:23:3E:96:F1:07:EC:E2:AF:29:EF:82:A5:7F:D0:30:A4:B4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.comodoca.com/AAACertificateServices.crl
#
#                Full Name:
#                  URI:http://crl.comodo.net/AAACertificateServices.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         08:56:fc:02:f0:9b:e8:ff:a4:fa:d6:7b:c6:44:80:ce:4f:c4:
#         c5:f6:00:58:cc:a6:b6:bc:14:49:68:04:76:e8:e6:ee:5d:ec:
#         02:0f:60:d6:8d:50:18:4f:26:4e:01:e3:e6:b0:a5:ee:bf:bc:
#         74:54:41:bf:fd:fc:12:b8:c7:4f:5a:f4:89:60:05:7f:60:b7:
#         05:4a:f3:f6:f1:c2:bf:c4:b9:74:86:b6:2d:7d:6b:cc:d2:f3:
#         46:dd:2f:c6:e0:6a:c3:c3:34:03:2c:7d:96:dd:5a:c2:0e:a7:
#         0a:99:c1:05:8b:ab:0c:2f:f3:5c:3a:cf:6c:37:55:09:87:de:
#         53:40:6c:58:ef:fc:b6:ab:65:6e:04:f6:1b:dc:3c:e0:5a:15:
#         c6:9e:d9:f1:59:48:30:21:65:03:6c:ec:e9:21:73:ec:9b:03:
#         a1:e0:37:ad:a0:15:18:8f:fa:ba:02:ce:a7:2c:a9:10:13:2c:
#         d4:e5:08:26:ab:22:97:60:f8:90:5e:74:d4:a2:9a:53:bd:f2:
#         a9:68:e0:a2:6e:c2:d7:6c:b1:a3:0f:9e:bf:eb:68:e7:56:f2:
#         ae:f2:e3:2b:38:3a:09:81:b5:6b:85:d7:be:2d:ed:3f:1a:b7:
#         b2:63:e2:f5:62:2c:82:d4:6a:00:41:50:f1:39:83:9f:95:e9:
#         36:96:98:6e

[p11-kit-object-v1]
label: "Configuration"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqPK9iL7Ar0S+m0qiYxzW
VqsdKbIcqhUeRdGsnaBh1TX55FqDNmND3jhXFfzwlGL0B4BXg1eosxW8+00jeF/a
9seBFr6r3+fcg1NzK7bdY4iNRfMN3X2/6IiwZsFDXTfSbaGcmkbDsz/QwqCKlC6D
pjzDYL0szB6LY4J2QSjkFWtcDGE5VThByshm6Me4l1IQJnC3B7cJHqYTXq6ZWiZv
ZD3sxNOluVx2ZK1jfYiD4kvMDd7UxtMIQvVbF/Vx4ZEtA5+eHNyLcqToR2QQh2Qw
c9jytPFXJpNXy7bHDYiLHc8FMF0E1nY36CAyV78PnDPGCIz2tMKpBrBbMKEeLRK6
PwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Configuration"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1224507125 (0x48fc7ef5)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: DC = rs, DC = posta, DC = ca, CN = Configuration, CN = Services, CN = Public Key Services, CN = AIA, CN = Posta CA Root
#        Validity
#            Not Before: Oct 20 12:22:08 2008 GMT
#            Not After : Oct 20 12:52:08 2028 GMT
#        Subject: DC = rs, DC = posta, DC = ca, CN = Configuration, CN = Services, CN = Public Key Services, CN = AIA, CN = Posta CA Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a8:f2:bd:88:be:c0:af:44:be:9b:4a:a2:63:1c:
#                    d6:56:ab:1d:29:b2:1c:aa:15:1e:45:d1:ac:9d:a0:
#                    61:d5:35:f9:e4:5a:83:36:63:43:de:38:57:15:fc:
#                    f0:94:62:f4:07:80:57:83:57:a8:b3:15:bc:fb:4d:
#                    23:78:5f:da:f6:c7:81:16:be:ab:df:e7:dc:83:53:
#                    73:2b:b6:dd:63:88:8d:45:f3:0d:dd:7d:bf:e8:88:
#                    b0:66:c1:43:5d:37:d2:6d:a1:9c:9a:46:c3:b3:3f:
#                    d0:c2:a0:8a:94:2e:83:a6:3c:c3:60:bd:2c:cc:1e:
#                    8b:63:82:76:41:28:e4:15:6b:5c:0c:61:39:55:38:
#                    41:ca:c8:66:e8:c7:b8:97:52:10:26:70:b7:07:b7:
#                    09:1e:a6:13:5e:ae:99:5a:26:6f:64:3d:ec:c4:d3:
#                    a5:b9:5c:76:64:ad:63:7d:88:83:e2:4b:cc:0d:de:
#                    d4:c6:d3:08:42:f5:5b:17:f5:71:e1:91:2d:03:9f:
#                    9e:1c:dc:8b:72:a4:e8:47:64:10:87:64:30:73:d8:
#                    f2:b4:f1:57:26:93:57:cb:b6:c7:0d:88:8b:1d:cf:
#                    05:30:5d:04:d6:76:37:e8:20:32:57:bf:0f:9c:33:
#                    c6:08:8c:f6:b4:c2:a9:06:b0:5b:30:a1:1e:2d:12:
#                    ba:3f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.15672.10.10.1.1
#                  CPS: http://www.ca.posta.rs/dokumentacija
#                  User Notice:
#                    Explicit Text: Ovo je elektronski sertifikat ROOT CA servera Sertifikacionog tela Poste: "Posta CA Root".
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:DC = rs, DC = posta, DC = ca, CN = Configuration, CN = Services, CN = Public Key Services, CN = AIA, CN = Posta CA Root, CN = CRL1
#
#                Full Name:
#                  URI:ldap://ldap.ca.posta.rs/cn=Posta%20CA%20Root,cn=AIA,cn=Public%20Key%20Services,cn=Services,cn=Configuration,dc=ca,dc=posta,dc=rs?certificateRevocationList%3Bbinary
#                  URI:http://sertifikati.ca.posta.rs/crl/PostaCARoot.crl
#
#            X509v3 Private Key Usage Period: 
#                Not Before: Oct 20 12:22:08 2008 GMT, Not After: Oct 20 12:52:08 2028 GMT
#            X509v3 Authority Key Identifier: 
#                keyid:F2:CB:8D:E2:35:EF:10:43:C4:DA:7B:CA:FA:EB:89:03:A1:22:AF:B8
#
#            X509v3 Subject Key Identifier: 
#                F2:CB:8D:E2:35:EF:10:43:C4:DA:7B:CA:FA:EB:89:03:A1:22:AF:B8
#            1.2.840.113533.7.65.0: 
#                0...V7.1:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         70:46:a1:c8:e4:17:05:66:0f:9d:e2:43:31:48:1d:92:90:19:
#         c4:85:01:85:16:6e:f8:92:ce:7b:ae:52:16:c4:97:8d:0a:28:
#         7d:d5:cb:6c:e3:d5:e5:0e:32:4f:c8:68:2d:34:08:3d:73:a8:
#         93:42:29:33:46:0c:44:67:f1:d0:9a:9c:69:01:e5:91:f1:0d:
#         c9:69:3c:33:4b:4e:19:93:63:33:05:29:21:a1:d8:ff:3e:54:
#         ab:9e:f6:a1:7a:02:d7:dc:ff:a5:3e:54:78:f9:d3:c1:ca:12:
#         95:f9:89:9e:14:e2:f2:a1:44:b2:cb:e9:2d:75:35:cc:96:55:
#         bb:38:0b:88:26:da:d6:ac:ef:d3:52:a2:0b:4b:3a:53:da:4b:
#         22:53:cc:ca:2a:24:9a:62:aa:c4:32:9a:7e:dc:cc:c1:b2:6c:
#         cd:8f:d9:b4:c0:cf:f5:02:c0:8c:2b:84:5b:1b:40:bc:10:d0:
#         50:e1:61:d6:66:56:9a:04:91:a5:e3:d5:bd:a0:2e:22:81:b1:
#         d9:38:da:e4:a8:87:5f:3c:46:04:96:de:c9:9a:3b:bf:ad:78:
#         6c:1d:49:49:b4:69:b9:70:0f:05:92:56:b6:fd:af:ae:f8:20:
#         2d:47:23:cf:b6:1c:cd:c4:9b:80:4e:f9:bf:31:c0:54:be:bb:
#         31:7f:f3:3e

[p11-kit-object-v1]
label: "Correo Uruguayo - Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Correo Uruguayo - Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            ca:22:79:08:23:2a:f0:f5:82:b8:85:d3:63:dd:f1
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = UY, O = ADMINISTRACION NACIONAL DE CORREOS, OU = SERVICIOS ELECTRONICOS, CN = Correo Uruguayo - Root CA
#        Validity
#            Not Before: Jul 14 16:52:15 2008 GMT
#            Not After : Dec 31 02:59:59 2030 GMT
#        Subject: C = UY, O = ADMINISTRACION NACIONAL DE CORREOS, OU = SERVICIOS ELECTRONICOS, CN = Correo Uruguayo - Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b1:3d:d2:a7:25:70:97:83:78:0e:d7:32:c9:66:
#                    0e:78:23:e4:2a:1b:ec:c3:ef:53:85:83:bb:ca:cf:
#                    7e:ea:53:99:6d:27:55:c8:d1:38:21:40:6e:49:4d:
#                    c3:3d:f6:09:2b:06:19:43:a9:98:c9:01:4e:f4:aa:
#                    80:30:07:55:f3:f5:b7:7d:99:b7:73:85:d5:1c:65:
#                    56:6c:0d:32:9b:08:0e:34:61:2a:40:09:84:37:c3:
#                    66:ed:0d:4c:9c:0c:78:40:3a:ec:ed:ab:cc:a4:84:
#                    f2:75:31:95:40:a8:aa:bb:93:b5:77:98:6c:f2:c8:
#                    e0:21:5a:23:e4:42:a7:93:c8:a8:1d:38:ce:a4:1a:
#                    40:40:bf:3c:93:90:9b:5f:d6:94:c1:22:5b:46:d7:
#                    c5:00:15:d5:8f:c6:f7:de:0b:af:6e:8b:05:8f:5b:
#                    80:95:0e:a3:bd:93:cc:90:f2:7d:e3:48:7e:b2:cd:
#                    07:3d:1b:ed:14:90:74:f3:dd:34:1f:7c:e4:03:59:
#                    f1:2d:cd:e0:a3:a0:3b:21:2e:5c:ae:ac:08:06:50:
#                    15:31:35:ee:5f:f9:1f:0d:34:a5:80:6e:62:72:4f:
#                    e3:21:ba:38:40:5d:5f:db:68:2a:5c:34:c6:08:3b:
#                    f6:7c:2e:a8:8d:c4:b7:a6:ad:d9:9b:bf:19:41:0e:
#                    48:39:09:66:6e:0d:34:01:c5:bb:07:11:23:a4:da:
#                    fe:60:96:28:47:dc:8f:67:9b:13:af:7d:79:0e:78:
#                    cd:c0:8c:2f:bb:21:2c:fc:74:16:1e:de:c0:32:9d:
#                    fa:78:3a:86:ba:3e:c9:78:0a:00:d1:e4:e0:c9:12:
#                    e2:5b:dc:eb:bb:80:9a:32:35:ab:f0:30:c3:0e:48:
#                    84:2f:8d:08:0a:f6:2c:8c:4d:32:80:45:55:08:db:
#                    cd:0d:a8:bf:08:7a:b8:e7:68:5d:9a:94:89:95:bc:
#                    fc:9a:8e:b8:7f:3a:d8:6c:d5:f4:18:ac:69:e2:a4:
#                    c1:0b:b3:1f:a3:82:9f:f3:8a:3c:85:40:38:09:fa:
#                    c2:05:3e:e1:9c:89:fa:c3:05:6c:08:8f:5d:51:f4:
#                    7f:bb:c4:f3:6c:01:bd:3d:4f:c4:19:8b:39:d9:ca:
#                    cc:e9:79:88:04:55:ab:6d:b8:da:16:45:65:39:15:
#                    05:18:fb:0b:2c:73:01:ed:94:52:e5:7d:0c:01:3b:
#                    09:a0:4d:f1:3d:08:81:66:34:36:17:44:f0:67:f3:
#                    5b:f2:05:b6:21:98:58:d9:f4:a1:37:d9:6f:e6:ef:
#                    56:c4:fb:bf:56:62:02:ac:30:30:b6:02:d6:d2:16:
#                    fc:4e:ea:87:43:9a:68:5d:88:a3:91:46:28:2b:bf:
#                    39:15:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7D:BB:69:EB:88:61:E1:40:CF:47:23:64:00:86:A2:66:6B:DC:84:95
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.correo.com.uy/correocert/cps.pdf
#
#    Signature Algorithm: sha1WithRSAEncryption
#         56:df:13:89:be:62:b7:0e:81:21:73:a4:d4:37:ca:ed:b7:2f:
#         95:74:d7:89:f8:4b:47:81:ee:67:ed:b8:29:df:21:a0:fc:54:
#         67:67:c8:57:2c:5b:a1:0a:75:78:21:21:ca:a0:a8:df:6b:9c:
#         d9:36:02:8d:b8:01:c1:6f:8e:7b:6c:c9:a4:b2:c5:46:a9:ca:
#         4c:02:81:fa:a3:7b:9d:3d:48:e6:ca:40:66:d2:44:9d:76:e0:
#         55:b9:a6:9c:a7:d1:43:d8:f5:a0:b4:9d:f8:f7:e5:a6:a6:42:
#         f3:02:32:59:46:72:2b:14:ec:5e:65:d5:51:81:78:ce:aa:2f:
#         8d:96:89:79:6a:fb:0f:c8:5b:cf:b4:ae:90:b6:5f:e3:7c:62:
#         6c:b7:a6:ff:90:81:b5:98:91:73:12:30:af:c7:e8:81:02:68:
#         73:29:bb:58:75:3d:b7:d6:43:d5:ae:4d:f2:42:b9:f0:df:da:
#         31:00:13:da:e1:b3:b6:06:8b:5b:fd:c9:98:b8:a2:13:d1:ba:
#         8f:c1:8a:1a:9e:0f:ff:82:be:04:82:e5:2b:93:3e:1e:b5:a2:
#         0c:1b:c6:1a:b0:73:89:76:83:bc:8e:3b:bb:17:6d:14:c3:8b:
#         be:7d:15:26:b5:a9:9c:17:7a:50:7a:2d:eb:e9:99:94:ae:98:
#         10:bd:ee:2a:5d:5d:d6:8e:34:5b:ac:1e:87:60:6b:98:c7:87:
#         8f:d3:9c:b2:68:05:49:07:f9:a9:31:66:9c:fe:bf:a7:59:e8:
#         2c:f0:36:d4:f2:a8:19:82:c0:9e:a7:39:f9:b1:98:34:a3:1f:
#         fa:cd:c9:19:2d:78:de:b7:fd:62:f0:93:a3:fe:00:5b:d6:0a:
#         e4:f3:7e:7c:97:28:e1:05:ec:05:34:45:13:ff:29:13:61:8a:
#         27:4f:db:b8:d2:92:21:27:b5:88:77:67:a8:7e:cf:24:3c:87:
#         08:04:33:73:8f:0b:b6:86:f8:cf:ef:b2:a6:24:1e:0b:91:91:
#         00:50:16:32:12:d8:09:25:da:63:4e:dd:db:2d:d7:e7:04:6b:
#         e3:63:1f:a9:fe:a9:01:63:c4:ca:4c:14:68:83:bc:05:ac:59:
#         16:fb:6e:a1:07:6f:bb:4b:be:6d:98:48:76:25:7b:4a:11:96:
#         54:08:ac:a9:f3:37:ab:83:c3:d1:cd:81:98:c0:e5:40:35:b8:
#         9f:91:e7:6f:e6:4b:20:16:8a:53:7b:ac:3a:d1:98:35:54:d0:
#         d4:bf:ae:7e:9a:4b:1e:e9:75:a3:25:b0:3b:e7:65:bf:4f:95:
#         f4:1d:bd:c4:ba:c9:4d:81:51:c2:3f:5a:d9:12:f4:21:1b:d6:
#         95:ea:3d:90:fe:a9:93:e2

[p11-kit-object-v1]
label: "Cybertrust Global Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA+Mi8vRRQZhP/8NN57CPy
txrHjoXxEnOmGaoQ25yiZXRadz5RfVb23CO21O1fWLE3TdVJDm71aofW0ozSJ8bi
/zafmGWgE07GKmSb1ZASzxQG9Dvj1Ci+6A74q05IlG2OlTEQXO2iLb3VOm2yHLtg
wEZLAfVJrn5GitB0jaEMAs7u/OePuGtm839EAL9mJRQr3RAwHQeWP032a7iPt3sM
pTjr3kfb1V05/Iin89cqdPHoWqI7n1C6poxFNcJQZZXcY4Lv3b93TZxiyWNzFtAp
D0mpSPCzqrdsxacwOUBdrsTiXSZT8M4cIwhhqJQZugRiQOwfOHB3EgZxpzAYXSUn
pQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Cybertrust Global Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDoTCCAomgAwIBAgILBAAAAAABD4WqLUgwDQYJKoZIhvcNAQEFBQAwOzEYMBYG
A1UEChMPQ3liZXJ0cnVzdCwgSW5jMR8wHQYDVQQDExZDeWJlcnRydXN0IEdsb2Jh
bCBSb290MB4XDTA2MTIxNTA4MDAwMFoXDTIxMTIxNTA4MDAwMFowOzEYMBYGA1UE
ChMPQ3liZXJ0cnVzdCwgSW5jMR8wHQYDVQQDExZDeWJlcnRydXN0IEdsb2JhbCBS
b290MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA+Mi8vRRQZhP/8NN5
7CPytxrHjoXxEnOmGaoQ25yiZXRadz5RfVb23CO21O1fWLE3TdVJDm71aofW0ozS
J8bi/zafmGWgE07GKmSb1ZASzxQG9Dvj1Ci+6A74q05IlG2OlTEQXO2iLb3VOm2y
HLtgwEZLAfVJrn5GitB0jaEMAs7u/OePuGtm839EAL9mJRQr3RAwHQeWP032a7iP
t3sMpTjr3kfb1V05/Iin89cqdPHoWqI7n1C6poxFNcJQZZXcY4Lv3b93TZxiyWNz
FtApD0mpSPCzqrdsxacwOUBdrsTiXSZT8M4cIwhhqJQZugRiQOwfOHB3EgZxpzAY
XSUnpQIDAQABo4GlMIGiMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/
MB0GA1UdDgQWBBS2CHsNesysIEyGVjJez6tuhS1wVzA/BgNVHR8EODA2MDSgMqAw
hi5odHRwOi8vd3d3Mi5wdWJsaWMtdHJ1c3QuY29tL2NybC9jdC9jdHJvb3QuY3Js
MB8GA1UdIwQYMBaAFLYIew16zKwgTIZWMl7Pq26FLXBXMA0GCSqGSIb3DQEBBQUA
A4IBAQBW7wojoFROlZfJ+InaRcHUowAl9B8Tq7ejhVhpwjCt2BWKLePJzYFa+HMj
Wqd8BfP9IjsO0QbE2zZMcwSO5bAi5MXzLqXZI+O4Tkogp24CJJ8iYGd7ix1yCcUx
XOl5n4BHPa2hCwcUPUf/A2kaDAtE52Mlp3+yybh2hO0j9n0Hq0V+09+zv+mKts2o
omcrUtW3ZfA5TGOgkXmTUg9U3YO7n9GPp1Nzw8v/MOx8BLjYRB+TX3EJIrduPuoc
A06dGiBh+4E37F78CkWr1+cXVdCg6mCbpvbjjFspwgZgFJ0tl0ypkxWdYcQBX0jW
WL1WMRJOEcgh4LMRkWXbtKaIOM5V
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:0f:85:aa:2d:48
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O = "Cybertrust, Inc", CN = Cybertrust Global Root
#        Validity
#            Not Before: Dec 15 08:00:00 2006 GMT
#            Not After : Dec 15 08:00:00 2021 GMT
#        Subject: O = "Cybertrust, Inc", CN = Cybertrust Global Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:f8:c8:bc:bd:14:50:66:13:ff:f0:d3:79:ec:23:
#                    f2:b7:1a:c7:8e:85:f1:12:73:a6:19:aa:10:db:9c:
#                    a2:65:74:5a:77:3e:51:7d:56:f6:dc:23:b6:d4:ed:
#                    5f:58:b1:37:4d:d5:49:0e:6e:f5:6a:87:d6:d2:8c:
#                    d2:27:c6:e2:ff:36:9f:98:65:a0:13:4e:c6:2a:64:
#                    9b:d5:90:12:cf:14:06:f4:3b:e3:d4:28:be:e8:0e:
#                    f8:ab:4e:48:94:6d:8e:95:31:10:5c:ed:a2:2d:bd:
#                    d5:3a:6d:b2:1c:bb:60:c0:46:4b:01:f5:49:ae:7e:
#                    46:8a:d0:74:8d:a1:0c:02:ce:ee:fc:e7:8f:b8:6b:
#                    66:f3:7f:44:00:bf:66:25:14:2b:dd:10:30:1d:07:
#                    96:3f:4d:f6:6b:b8:8f:b7:7b:0c:a5:38:eb:de:47:
#                    db:d5:5d:39:fc:88:a7:f3:d7:2a:74:f1:e8:5a:a2:
#                    3b:9f:50:ba:a6:8c:45:35:c2:50:65:95:dc:63:82:
#                    ef:dd:bf:77:4d:9c:62:c9:63:73:16:d0:29:0f:49:
#                    a9:48:f0:b3:aa:b7:6c:c5:a7:30:39:40:5d:ae:c4:
#                    e2:5d:26:53:f0:ce:1c:23:08:61:a8:94:19:ba:04:
#                    62:40:ec:1f:38:70:77:12:06:71:a7:30:18:5d:25:
#                    27:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B6:08:7B:0D:7A:CC:AC:20:4C:86:56:32:5E:CF:AB:6E:85:2D:70:57
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www2.public-trust.com/crl/ct/ctroot.crl
#
#            X509v3 Authority Key Identifier: 
#                keyid:B6:08:7B:0D:7A:CC:AC:20:4C:86:56:32:5E:CF:AB:6E:85:2D:70:57
#
#    Signature Algorithm: sha1WithRSAEncryption
#         56:ef:0a:23:a0:54:4e:95:97:c9:f8:89:da:45:c1:d4:a3:00:
#         25:f4:1f:13:ab:b7:a3:85:58:69:c2:30:ad:d8:15:8a:2d:e3:
#         c9:cd:81:5a:f8:73:23:5a:a7:7c:05:f3:fd:22:3b:0e:d1:06:
#         c4:db:36:4c:73:04:8e:e5:b0:22:e4:c5:f3:2e:a5:d9:23:e3:
#         b8:4e:4a:20:a7:6e:02:24:9f:22:60:67:7b:8b:1d:72:09:c5:
#         31:5c:e9:79:9f:80:47:3d:ad:a1:0b:07:14:3d:47:ff:03:69:
#         1a:0c:0b:44:e7:63:25:a7:7f:b2:c9:b8:76:84:ed:23:f6:7d:
#         07:ab:45:7e:d3:df:b3:bf:e9:8a:b6:cd:a8:a2:67:2b:52:d5:
#         b7:65:f0:39:4c:63:a0:91:79:93:52:0f:54:dd:83:bb:9f:d1:
#         8f:a7:53:73:c3:cb:ff:30:ec:7c:04:b8:d8:44:1f:93:5f:71:
#         09:22:b7:6e:3e:ea:1c:03:4e:9d:1a:20:61:fb:81:37:ec:5e:
#         fc:0a:45:ab:d7:e7:17:55:d0:a0:ea:60:9b:a6:f6:e3:8c:5b:
#         29:c2:06:60:14:9d:2d:97:4c:a9:93:15:9d:61:c4:01:5f:48:
#         d6:58:bd:56:31:12:4e:11:c8:21:e0:b3:11:91:65:db:b4:a6:
#         88:38:ce:55

[p11-kit-object-v1]
label: "D-TRUST BR Root CA 1 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAExsvHKNH7hPWa70IUIOFDa251rfwrA4TU
dpMl11k7QWVrHuY0Krt09hLO6G3nq+Q8Tj9ECIvNFnHLv5KZ9KTXPFBUUpCFg3iU
Z2ejHAkZPXU0hd7tYH3HDLRBUrlu5e5C
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST BR Root CA 1 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7c:c9:8f:2b:84:d7:df:ea:0f:c9:65:9a:d3:4b:4d:96
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST BR Root CA 1 2020
#        Validity
#            Not Before: Feb 11 09:45:00 2020 GMT
#            Not After : Feb 11 09:44:59 2035 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST BR Root CA 1 2020
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:c6:cb:c7:28:d1:fb:84:f5:9a:ef:42:14:20:e1:
#                    43:6b:6e:75:ad:fc:2b:03:84:d4:76:93:25:d7:59:
#                    3b:41:65:6b:1e:e6:34:2a:bb:74:f6:12:ce:e8:6d:
#                    e7:ab:e4:3c:4e:3f:44:08:8b:cd:16:71:cb:bf:92:
#                    99:f4:a4:d7:3c:50:54:52:90:85:83:78:94:67:67:
#                    a3:1c:09:19:3d:75:34:85:de:ed:60:7d:c7:0c:b4:
#                    41:52:b9:6e:e5:ee:42
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                73:91:10:AB:FF:55:B3:5A:7C:09:25:D5:B2:BA:08:A0:6B:AB:1F:6D
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.d-trust.net/crl/d-trust_br_root_ca_1_2020.crl
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20BR%20Root%20CA%201%202020,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:94:90:2d:13:fa:e1:63:f8:61:63:e8:ad:85:
#         78:54:91:9c:b8:93:38:3e:1a:41:da:40:16:53:42:08:ca:2f:
#         8e:f1:3e:81:56:c0:aa:d8:ed:18:c4:b0:ae:f4:3e:fa:26:02:
#         31:00:f3:28:e2:c6:db:2b:99:fb:b7:51:b8:24:a3:a4:94:7a:
#         1a:3f:e6:36:e2:03:57:33:8a:30:cb:82:c7:d6:14:11:d5:75:
#         63:5b:14:95:9c:1f:01:cf:d8:d5:72:a7:0f:3b

[p11-kit-object-v1]
label: "D-TRUST EV Root CA 1 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE8QvdhkMgGd+XhegiSpvPnZi/tAUmycvj
ptKPxZ54ezGJqYmtJzxlEIL838OdTvAzI8TSMvUcsN8zF13F8LGK+e+5txTKKUrC
D6l/dWVJKjBn9GT31hp32sPCl2FCe0mt
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST EV Root CA 1 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5f:02:41:d7:7a:87:7c:4c:03:a3:ac:96:8d:fb:ff:d0
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST EV Root CA 1 2020
#        Validity
#            Not Before: Feb 11 10:00:00 2020 GMT
#            Not After : Feb 11 09:59:59 2035 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST EV Root CA 1 2020
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:f1:0b:dd:86:43:20:19:df:97:85:e8:22:4a:9b:
#                    cf:9d:98:bf:b4:05:26:c9:cb:e3:a6:d2:8f:c5:9e:
#                    78:7b:31:89:a9:89:ad:27:3c:65:10:82:fc:df:c3:
#                    9d:4e:f0:33:23:c4:d2:32:f5:1c:b0:df:33:17:5d:
#                    c5:f0:b1:8a:f9:ef:b9:b7:14:ca:29:4a:c2:0f:a9:
#                    7f:75:65:49:2a:30:67:f4:64:f7:d6:1a:77:da:c3:
#                    c2:97:61:42:7b:49:ad
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                7F:10:01:16:37:3A:A4:28:E4:50:F8:A4:F7:EC:6B:32:B6:FE:E9:8B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.d-trust.net/crl/d-trust_ev_root_ca_1_2020.crl
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20EV%20Root%20CA%201%202020,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:ca:3c:c6:2a:75:c2:5e:75:62:39:36:00:60:
#         5a:8b:c1:93:99:cc:d9:db:41:3b:3b:87:99:17:3b:d5:cc:4f:
#         ca:22:f7:a0:80:cb:f9:b4:b1:1b:56:f5:72:d2:fc:19:d1:02:
#         31:00:91:f7:30:93:3f:10:46:2b:71:a4:d0:3b:44:9b:c0:29:
#         02:05:b2:41:77:51:f3:79:5a:9e:8e:14:a0:4e:42:d2:5b:81:
#         f3:34:6a:03:e7:22:38:50:5b:ed:19:4f:43:16

[p11-kit-object-v1]
label: "D-TRUST Qualified Root CA 1 2007:PN"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBJDANBgkqhkiG9w0BAQEFAAOCAREAMIIBDAKCAQEAidn/0/83/FeIFWDBvS9o
EIC3LVmlokrHCtYvjkA3eyoyqsa2Ew0g50/+Pw5urflUz2sFC/5p8vq8gT/e7bMz
uzksdMQ09rT6w9PSWMp5cI9j45U0+DlXnwF0i5ecreocu2X9SuYkOEk+nrLGUONc
1jvphzl32aQeByigXZKHK0yLdcVAA70/QA2UPDsUp+Cucr0r69LxsN4I4tGkEdY4
wk7yEncfz0hGC/gXM5uDHwi4BedGU0uIe4f80qM9RXLpDhm0BYpqHzcMDwzMyKi5
WwK687ijDQ/DFOtrezeB6p5Y0bC3R0sFMQTpTAqhwJIUvSM30iH25MDsTpl/jY3o
UQIFAOnMRSk=
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Qualified Root CA 1 2007:PN"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 206554 (0x326da)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST Qualified Root CA 1 2007:PN
#        Validity
#            Not Before: Jun  8 11:47:46 2007 GMT
#            Not After : Jun  8 11:47:46 2012 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST Qualified Root CA 1 2007:PN
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:89:d9:ff:d3:ff:37:fc:57:88:15:60:c1:bd:2f:
#                    68:10:80:b7:2d:59:a5:a2:4a:c7:0a:d6:2f:8e:40:
#                    37:7b:2a:32:aa:c6:b6:13:0d:20:e7:4f:fe:3f:0e:
#                    6e:ad:f9:54:cf:6b:05:0b:fe:69:f2:fa:bc:81:3f:
#                    de:ed:b3:33:bb:39:2c:74:c4:34:f6:b4:fa:c3:d3:
#                    d2:58:ca:79:70:8f:63:e3:95:34:f8:39:57:9f:01:
#                    74:8b:97:9c:ad:ea:1c:bb:65:fd:4a:e6:24:38:49:
#                    3e:9e:b2:c6:50:e3:5c:d6:3b:e9:87:39:77:d9:a4:
#                    1e:07:28:a0:5d:92:87:2b:4c:8b:75:c5:40:03:bd:
#                    3f:40:0d:94:3c:3b:14:a7:e0:ae:72:bd:2b:eb:d2:
#                    f1:b0:de:08:e2:d1:a4:11:d6:38:c2:4e:f2:12:77:
#                    1f:cf:48:46:0b:f8:17:33:9b:83:1f:08:b8:05:e7:
#                    46:53:4b:88:7b:87:fc:d2:a3:3d:45:72:e9:0e:19:
#                    b4:05:8a:6a:1f:37:0c:0f:0c:cc:c8:a8:b9:5b:02:
#                    ba:f3:b8:a3:0d:0f:c3:14:eb:6b:7b:37:81:ea:9e:
#                    58:d1:b0:b7:47:4b:05:31:04:e9:4c:0a:a1:c0:92:
#                    14:bd:23:37:d2:21:f6:e4:c0:ec:4e:99:7f:8d:8d:
#                    e8:51
#                Exponent: 3922478377 (0xe9cc4529)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                2C:4C:F6:9A:2A:9F:28:82:01:C1:99:06:11:AF:B3:4B:7C:B7:9A:FE
#            Authority Information Access: 
#                OCSP - URI:http://qual.ocsp.d-trust.net
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.4788.2.31.1
#
#            X509v3 Subject Alternative Name: 
#                email:info@d-trust.net, URI:http://www.d-trust.net
#            qcStatements: 
#                0
#0......F..
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Qualified%20Root%20CA%201%202007%3APN,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#                  URI:http://www.d-trust.net/crl/d-trust_qualified_root_ca_1_2007_pn.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         69:a9:f1:84:c8:b6:06:9d:1a:17:07:65:f3:aa:47:9c:f7:72:
#         aa:3d:af:26:66:e5:14:21:0e:ce:1b:89:3e:8a:54:c8:ff:36:
#         c9:1d:2c:8a:11:e5:cd:c7:72:a4:84:5b:1e:5b:c3:35:35:b1:
#         b1:6d:4b:aa:08:d4:d9:d4:e2:fd:07:4b:e4:56:5b:f6:ca:70:
#         c8:75:ba:9c:7e:44:0e:05:8a:fd:d6:1b:74:d3:bb:d2:e5:5a:
#         e4:da:f6:0f:b2:1f:8d:54:cc:15:65:fe:76:1a:2c:10:b9:c6:
#         d4:24:26:3b:0c:ad:68:49:6f:63:ac:ac:58:5e:d6:17:b9:06:
#         68:0c:b4:30:cc:e1:b7:e6:3f:c0:ee:d2:0f:4d:a0:d8:a2:5f:
#         7c:80:c8:e0:17:8a:54:f7:45:08:72:77:4a:4b:b3:29:a0:93:
#         a0:e1:ca:43:c1:73:2d:bb:da:b4:92:f1:5c:e6:10:26:d5:88:
#         f1:86:e7:3e:1b:62:27:26:cc:bb:ce:cc:30:de:cf:d8:ba:ff:
#         8c:82:37:1e:6c:45:84:d9:23:b5:86:96:97:0e:c7:aa:22:8d:
#         4f:a2:fb:29:03:b0:1a:dc:10:54:63:bd:9c:d6:9e:9c:e4:1f:
#         32:97:90:d0:d7:9a:bb:79:a3:23:8f:b4:75:ae:64:c8:77:97:
#         fa:2c:23:8d

[p11-kit-object-v1]
label: "D-TRUST Root CA 3 2013"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxHtCkoIf7O1UmI4SwMoJ
35NuOpNcG+QQd55OaYhs9uFp8vabomGxvQcgdJhl8YwmCM2oNcqANtFjbehEeoLD
bF7eu+g20sRoNoyfMr2EIuDcwu4QRjltr5M5rofmw7wJySxrZ1vZm3Z1TAvgu8XX
vD558l++0ZBX+a72Zl8xv9Ntj6e6SvMjZbu376Ml1wrqWLbviPr6ebJSWNXwrIyh
UXQplapRO5AyA58ccnSQ3j3tYdLl4/1kR+W5t0qp9x+uloYErC/jpIF3t1oW/9gP
P/a3eMykr/pbPBJbqFKJcu+I89VEgYaVI5973bzZNO98lDyqwEHC451QGsDkGSL8
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root CA 3 2013"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1039788 (0xfddac)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST Root CA 3 2013
#        Validity
#            Not Before: Sep 20 08:25:51 2013 GMT
#            Not After : Sep 20 08:25:51 2028 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST Root CA 3 2013
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c4:7b:42:92:82:1f:ec:ed:54:98:8e:12:c0:ca:
#                    09:df:93:6e:3a:93:5c:1b:e4:10:77:9e:4e:69:88:
#                    6c:f6:e1:69:f2:f6:9b:a2:61:b1:bd:07:20:74:98:
#                    65:f1:8c:26:08:cd:a8:35:ca:80:36:d1:63:6d:e8:
#                    44:7a:82:c3:6c:5e:de:bb:e8:36:d2:c4:68:36:8c:
#                    9f:32:bd:84:22:e0:dc:c2:ee:10:46:39:6d:af:93:
#                    39:ae:87:e6:c3:bc:09:c9:2c:6b:67:5b:d9:9b:76:
#                    75:4c:0b:e0:bb:c5:d7:bc:3e:79:f2:5f:be:d1:90:
#                    57:f9:ae:f6:66:5f:31:bf:d3:6d:8f:a7:ba:4a:f3:
#                    23:65:bb:b7:ef:a3:25:d7:0a:ea:58:b6:ef:88:fa:
#                    fa:79:b2:52:58:d5:f0:ac:8c:a1:51:74:29:95:aa:
#                    51:3b:90:32:03:9f:1c:72:74:90:de:3d:ed:61:d2:
#                    e5:e3:fd:64:47:e5:b9:b7:4a:a9:f7:1f:ae:96:86:
#                    04:ac:2f:e3:a4:81:77:b7:5a:16:ff:d8:0f:3f:f6:
#                    b7:78:cc:a4:af:fa:5b:3c:12:5b:a8:52:89:72:ef:
#                    88:f3:d5:44:81:86:95:23:9f:7b:dd:bc:d9:34:ef:
#                    7c:94:3c:aa:c0:41:c2:e3:9d:50:1a:c0:e4:19:22:
#                    fc:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                3F:90:C8:7D:C7:15:6F:F3:24:8F:A9:C3:2F:4B:A2:0F:21:B2:2F:E7
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%203%202013,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#                Full Name:
#                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_3_2013.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         0e:59:0e:58:e4:74:48:23:44:cf:34:21:b5:9c:14:1a:ad:9a:
#         4b:b7:b3:88:6d:5c:a9:17:70:f0:2a:9f:8d:7b:f9:7b:85:fa:
#         c7:39:e8:10:08:b0:35:2b:5f:cf:02:d2:d3:9c:c8:0b:1e:ee:
#         05:54:ae:37:93:04:09:7d:6c:8f:c2:74:bc:f8:1c:94:be:31:
#         01:40:2d:f3:24:20:b7:84:55:2c:5c:c8:f5:74:4a:10:19:8b:
#         a3:c7:ed:35:d6:09:48:d3:0e:c0:ba:39:a8:b0:46:02:b0:db:
#         c6:88:59:c2:be:fc:7b:b1:2b:cf:7e:62:87:55:96:cc:01:6f:
#         9b:67:21:95:35:8b:f8:10:fc:71:1b:b7:4b:37:69:a6:3b:d6:
#         ec:8b:ee:c1:b0:f3:25:c9:8f:92:7d:a1:ea:c3:ca:44:bf:26:
#         a5:74:92:9c:e3:74:eb:9d:74:d9:cb:4d:87:d8:fc:b4:69:6c:
#         8b:a0:43:07:60:78:97:e9:d9:93:7c:c2:46:bc:9b:37:52:a3:
#         ed:8a:3c:13:a9:7b:53:4b:49:9a:11:05:2c:0b:6e:56:ac:1f:
#         2e:82:6c:e0:69:67:b5:0e:6d:2d:d9:e4:c0:15:f1:3f:fa:18:
#         72:e1:15:6d:27:5b:2d:30:28:2b:9f:48:9a:64:2b:99:ef:f2:
#         75:49:5f:5c

[p11-kit-object-v1]
label: "D-TRUST Root Class 2 CA 2007"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs83khBVJ+OTWzoSzmq32
MHWQDYTr7tqzenUq4juk6jAs6z13jYGEaEqmpGjckHNhNGUHHSOlDOa/090zXdoy
7aYNU6Z0alwZWaZMtS95AV6ef0r6usknftT/zQBZIOsGzLNEz9aF6e07DGzB6oxc
4LmpAvATACeTnFD+zRNPbRtqqt0P/0YlGdzhXlCsGn8Oy9ruIPzD9JxKeDVu7jHH
RRZyhdKCINtSRXw8v1lX+Yd0VphbHVCOzC+zsz+L7uw3SQGI79ghDJPT9m6JT7oX
y0SBt3unI7t0CtPY6jdFJ//c8J5D47p7ihuafemGoP4v0db2h1eq8imUh3MV+mpO
rQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root Class 2 CA 2007"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 200341 (0x30e95)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 2 CA 2007
#        Validity
#            Not Before: May 16 05:20:47 2007 GMT
#            Not After : May 16 05:20:47 2022 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 2 CA 2007
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:cd:e4:84:15:49:f8:e4:d6:ce:84:b3:9a:ad:
#                    f6:30:75:90:0d:84:eb:ee:da:b3:7a:75:2a:e2:3b:
#                    a4:ea:30:2c:eb:3d:77:8d:81:84:68:4a:a6:a4:68:
#                    dc:90:73:61:34:65:07:1d:23:a5:0c:e6:bf:d3:dd:
#                    33:5d:da:32:ed:a6:0d:53:a6:74:6a:5c:19:59:a6:
#                    4c:b5:2f:79:01:5e:9e:7f:4a:fa:ba:c9:27:7e:d4:
#                    ff:cd:00:59:20:eb:06:cc:b3:44:cf:d6:85:e9:ed:
#                    3b:0c:6c:c1:ea:8c:5c:e0:b9:a9:02:f0:13:00:27:
#                    93:9c:50:fe:cd:13:4f:6d:1b:6a:aa:dd:0f:ff:46:
#                    25:19:dc:e1:5e:50:ac:1a:7f:0e:cb:da:ee:20:fc:
#                    c3:f4:9c:4a:78:35:6e:ee:31:c7:45:16:72:85:d2:
#                    82:20:db:52:45:7c:3c:bf:59:57:f9:87:74:56:98:
#                    5b:1d:50:8e:cc:2f:b3:b3:3f:8b:ee:ec:37:49:01:
#                    88:ef:d8:21:0c:93:d3:f6:6e:89:4f:ba:17:cb:44:
#                    81:b7:7b:a7:23:bb:74:0a:d3:d8:ea:37:45:27:ff:
#                    dc:f0:9e:43:e3:ba:7b:8a:1b:9a:7d:e9:86:a0:fe:
#                    2f:d1:d6:f6:87:57:aa:f2:29:94:87:73:15:fa:6a:
#                    4e:ad
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                91:30:AB:F6:F3:C6:44:B7:EB:DD:28:BC:0F:14:9F:52:5D:62:7F:02
#            Authority Information Access: 
#                OCSP - URI:http://users.ocsp.d-trust.net
#
#            X509v3 Subject Alternative Name: 
#                email:info@d-trust.net, URI:http://www.d-trust.net
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%202%20CA%202007,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#                  URI:http://www.d-trust.net/crl/d-trust_root_class_2_ca_2007.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         5b:8b:f2:43:e3:05:2e:64:1f:d5:92:a9:51:6b:64:fc:0e:46:
#         cc:07:99:e2:b7:fc:93:29:20:dc:fc:2f:60:e4:ac:7d:25:32:
#         ed:10:e1:0f:6f:db:f2:bc:4e:ee:41:c9:b3:d4:07:48:7a:0a:
#         af:a4:b6:ff:51:30:ed:cb:d2:9c:eb:7f:50:ee:4b:e2:62:a7:
#         34:c2:20:f6:f3:f6:f5:36:c0:cb:91:10:eb:ed:2e:8d:f4:07:
#         1a:21:0c:35:77:f4:7c:2d:8d:49:a5:d7:0b:44:68:d5:d2:e2:
#         e5:0c:78:38:13:ca:b1:4c:52:aa:2a:e5:d5:af:5c:05:39:9d:
#         2d:ad:be:23:56:d5:2f:55:f3:de:9d:ab:82:36:a0:4d:b7:59:
#         91:47:ee:de:83:a5:ea:3b:5e:27:05:80:0b:6d:2c:50:f4:01:
#         37:d5:a3:77:17:ec:fe:dd:84:f4:c5:f8:50:92:d0:4b:c6:2e:
#         a3:8b:40:e4:c3:37:a3:77:bd:ce:2c:55:e2:ac:df:5d:64:00:
#         ba:be:a7:6a:31:06:fc:99:6b:50:15:25:9d:a9:76:9a:a7:4d:
#         2a:9a:02:63:eb:70:e7:fe:11:26:d0:18:c5:a6:1f:0a:43:93:
#         f2:18:d9:f5:39:79:b8:07:5d:8c:1f:e6:3f:f3:c5:cb:21:66:
#         31:7b:7b:cf

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2007"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuo3NNVMy7qa9SJCa8uro
WA9HZqjMbgkS5KHLW9+TuPbpOTn4xtjpzxqGvKauD4yvCEXj8o4rwlxZK/qMNrNw
HchQPKVWvuqu6Uf250kPr3+UJtQCGge4ujlVzp+7Ijkp2DXFmQMh2Kc4Y/HkNN9H
rp838WygmcIisG1y3CLJMTnoVtegjzohW4aaTyj5HHb3zE8/+U53iyqciqp5QYrV
HNk5b5jJXkWXHQmUGdlQUYVyc7+sS510NHGHIRYPfu7SSX7KSdP5kipHSE8PXVqh
y9Uo7PCSxXJDRuuzA6bzVyVKCmGECibW76a42BSNeLnTtyXRTuNaFqrsnwfuIxB9
tQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2007"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 200342 (0x30e96)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 3 CA 2007
#        Validity
#            Not Before: May 16 05:20:47 2007 GMT
#            Not After : May 16 05:20:47 2022 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 3 CA 2007
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ba:8d:cd:35:53:32:ee:a6:bd:48:90:9a:f2:ea:
#                    e8:58:0f:47:66:a8:cc:6e:09:12:e4:a1:cb:5b:df:
#                    93:b8:f6:e9:39:39:f8:c6:d8:e9:cf:1a:86:bc:a6:
#                    ae:0f:8c:af:08:45:e3:f2:8e:2b:c2:5c:59:2b:fa:
#                    8c:36:b3:70:1d:c8:50:3c:a5:56:be:ea:ae:e9:47:
#                    f6:e7:49:0f:af:7f:94:26:d4:02:1a:07:b8:ba:39:
#                    55:ce:9f:bb:22:39:29:d8:35:c5:99:03:21:d8:a7:
#                    38:63:f1:e4:34:df:47:ae:9f:37:f1:6c:a0:99:c2:
#                    22:b0:6d:72:dc:22:c9:31:39:e8:56:d7:a0:8f:3a:
#                    21:5b:86:9a:4f:28:f9:1c:76:f7:cc:4f:3f:f9:4e:
#                    77:8b:2a:9c:8a:aa:79:41:8a:d5:1c:d9:39:6f:98:
#                    c9:5e:45:97:1d:09:94:19:d9:50:51:85:72:73:bf:
#                    ac:4b:9d:74:34:71:87:21:16:0f:7e:ee:d2:49:7e:
#                    ca:49:d3:f9:92:2a:47:48:4f:0f:5d:5a:a1:cb:d5:
#                    28:ec:f0:92:c5:72:43:46:eb:b3:03:a6:f3:57:25:
#                    4a:0a:61:84:0a:26:d6:ef:a6:b8:d8:14:8d:78:b9:
#                    d3:b7:25:d1:4e:e3:5a:16:aa:ec:9f:07:ee:23:10:
#                    7d:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                82:2F:36:23:49:78:20:42:D7:B0:52:58:A0:D6:74:54:15:78:BF:AA
#            Authority Information Access: 
#                OCSP - URI:http://users.ocsp.d-trust.net
#
#            X509v3 Subject Alternative Name: 
#                email:info@d-trust.net, URI:http://www.d-trust.net
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202007,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#                  URI:http://www.d-trust.net/crl/d-trust_root_class_3_ca_2007.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         55:0e:68:0a:8d:dc:d9:a8:86:60:02:69:79:8d:7d:e9:90:c2:
#         d9:1d:1d:b5:0e:bb:73:92:64:63:14:46:4c:d0:6a:bb:a3:75:
#         5d:86:19:38:61:86:1d:b8:8a:22:34:a3:b4:35:15:b3:a9:60:
#         4c:54:17:9f:b1:de:5b:32:e2:7e:6b:de:4f:22:f0:2d:1d:22:
#         04:9e:b6:4a:4f:ab:2c:56:9d:e3:dd:ec:b1:26:4e:2a:d7:55:
#         c2:3e:bd:82:d7:be:55:bb:45:c8:29:5b:86:3c:9d:3f:68:44:
#         44:44:36:0d:68:bf:ae:01:a2:19:b5:4c:97:ff:f2:96:3c:67:
#         b2:42:de:0f:e1:a0:97:4e:ca:e7:34:65:ae:95:82:61:67:26:
#         73:2d:dd:7b:e7:95:4b:0e:21:aa:92:ae:4c:fc:c6:b3:a9:e5:
#         99:83:32:39:f0:60:c2:4c:51:a8:c1:47:14:35:89:a5:4d:36:
#         0f:9f:1b:02:71:41:8d:42:4a:24:f8:af:6e:9d:0d:70:86:8d:
#         aa:62:13:1e:03:8b:24:f9:c3:54:93:49:85:1b:75:76:62:7f:
#         22:ff:49:bd:76:73:0c:3f:98:ad:2a:b2:fa:e7:c5:df:74:f5:
#         ff:69:31:55:0a:3a:c0:19:62:35:c4:49:b9:2b:19:1d:f4:70:
#         99:ee:d8:dc

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA07JKz3pH73WbI/o6L9ZQ
RYk1OsZr2/7bAGio4AMRHTdQCJ9NSmiUNbNT0ZRjpyBWr95ReOwqPfNISFA+Ct9G
VYsnbcMQTQ2RUkPYh+BdTja1IcpfOUAEX1t+zKPGK6lAHtk2hNZI85IeNEYgJMGk
UY5KGu9QP2ldGX9Fw8cBj1HJI+hyrrS8Vgl/Esscsa8pkArJVcwP07Qa7Uc1Wkrt
nHMEIdCqvQwTtQDKJmzEawyUWpWU2lCa8f+lK2YxpMk4oN8dH7gJLvOn6GdSq5Uf
4EY+2KTDylrFMYDoSJqflGn+Gd3Yc3yBypbeju2zMgVlhDTm5v1XELVfdr8vsBAN
xQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 623603 (0x983f3)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 3 CA 2 2009
#        Validity
#            Not Before: Nov  5 08:35:58 2009 GMT
#            Not After : Nov  5 08:35:58 2029 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 3 CA 2 2009
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d3:b2:4a:cf:7a:47:ef:75:9b:23:fa:3a:2f:d6:
#                    50:45:89:35:3a:c6:6b:db:fe:db:00:68:a8:e0:03:
#                    11:1d:37:50:08:9f:4d:4a:68:94:35:b3:53:d1:94:
#                    63:a7:20:56:af:de:51:78:ec:2a:3d:f3:48:48:50:
#                    3e:0a:df:46:55:8b:27:6d:c3:10:4d:0d:91:52:43:
#                    d8:87:e0:5d:4e:36:b5:21:ca:5f:39:40:04:5f:5b:
#                    7e:cc:a3:c6:2b:a9:40:1e:d9:36:84:d6:48:f3:92:
#                    1e:34:46:20:24:c1:a4:51:8e:4a:1a:ef:50:3f:69:
#                    5d:19:7f:45:c3:c7:01:8f:51:c9:23:e8:72:ae:b4:
#                    bc:56:09:7f:12:cb:1c:b1:af:29:90:0a:c9:55:cc:
#                    0f:d3:b4:1a:ed:47:35:5a:4a:ed:9c:73:04:21:d0:
#                    aa:bd:0c:13:b5:00:ca:26:6c:c4:6b:0c:94:5a:95:
#                    94:da:50:9a:f1:ff:a5:2b:66:31:a4:c9:38:a0:df:
#                    1d:1f:b8:09:2e:f3:a7:e8:67:52:ab:95:1f:e0:46:
#                    3e:d8:a4:c3:ca:5a:c5:31:80:e8:48:9a:9f:94:69:
#                    fe:19:dd:d8:73:7c:81:ca:96:de:8e:ed:b3:32:05:
#                    65:84:34:e6:e6:fd:57:10:b5:5f:76:bf:2f:b0:10:
#                    0d:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                FD:DA:14:C4:9F:30:DE:21:BD:1E:42:39:FC:AB:63:23:49:E0:F1:84
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202%202009,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#                Full Name:
#                  URI:http://www.d-trust.net/crl/d-trust_root_class_3_ca_2_2009.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:97:db:30:c8:df:a4:9c:7d:21:7a:80:70:ce:14:12:69:88:
#         14:95:60:44:01:ac:b2:e9:30:4f:9b:50:c2:66:d8:7e:8d:30:
#         b5:70:31:e9:e2:69:c7:f3:70:db:20:15:86:d0:0d:f0:be:ac:
#         01:75:84:ce:7e:9f:4d:bf:b7:60:3b:9c:f3:ca:1d:e2:5e:68:
#         d8:a3:9d:97:e5:40:60:d2:36:21:fe:d0:b4:b8:17:da:74:a3:
#         7f:d4:df:b0:98:02:ac:6f:6b:6b:2c:25:24:72:a1:65:ee:25:
#         5a:e5:e6:32:e7:f2:df:ab:49:fa:f3:90:69:23:db:04:d9:e7:
#         5c:58:fc:65:d4:97:be:cc:fc:2e:0a:cc:25:2a:35:04:f8:60:
#         91:15:75:3d:41:ff:23:1f:19:c8:6c:eb:82:53:04:a6:e4:4c:
#         22:4d:8d:8c:ba:ce:5b:73:ec:64:54:50:6d:d1:9c:55:fb:69:
#         c3:36:c3:8c:bc:3c:85:a6:6b:0a:26:0d:e0:93:98:60:ae:7e:
#         c6:24:97:8a:61:5f:91:8e:66:92:09:87:36:cd:8b:9b:2d:3e:
#         f6:51:d4:50:d4:59:28:bd:83:f2:cc:28:7b:53:86:6d:d8:26:
#         88:70:d7:ea:91:cd:3e:b9:ca:c0:90:6e:5a:c6:5e:74:65:d7:
#         5c:fe:a3:e2

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 EV 2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmfGENHC6L7cwoI69fATP
vmK8mf2Cl9J6CmeWOAn2EE6VInOZjdoVLecF/BlzIreOmAC8PD2soWz71nklS63w
zGTaiD4puA8J0zTdM/Vi0eHNGenuGE9MWK7iHtYMWxVa2Dq4xBhkHuMzsrWJd04M
v9mUaxOXbxKj/pmpBMwV7GBoNu0Ie7f1v5PtZjGDjMZxNIdOF+qvi5GNHFZBriI3
XjfyHdnRLQ0vaVGnvmamijoqvccaseEU8L46HbnPW7Fq/rSxRiCi+x47cO+TmH2M
c5byxe+FcK0pJvweBD4coNgPy1KDYnzui1OVkKlXouphBdj5TcQn+m6t7fnXUfdr
pQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 EV 2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 623604 (0x983f4)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 3 CA 2 EV 2009
#        Validity
#            Not Before: Nov  5 08:50:46 2009 GMT
#            Not After : Nov  5 08:50:46 2029 GMT
#        Subject: C = DE, O = D-Trust GmbH, CN = D-TRUST Root Class 3 CA 2 EV 2009
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:99:f1:84:34:70:ba:2f:b7:30:a0:8e:bd:7c:04:
#                    cf:be:62:bc:99:fd:82:97:d2:7a:0a:67:96:38:09:
#                    f6:10:4e:95:22:73:99:8d:da:15:2d:e7:05:fc:19:
#                    73:22:b7:8e:98:00:bc:3c:3d:ac:a1:6c:fb:d6:79:
#                    25:4b:ad:f0:cc:64:da:88:3e:29:b8:0f:09:d3:34:
#                    dd:33:f5:62:d1:e1:cd:19:e9:ee:18:4f:4c:58:ae:
#                    e2:1e:d6:0c:5b:15:5a:d8:3a:b8:c4:18:64:1e:e3:
#                    33:b2:b5:89:77:4e:0c:bf:d9:94:6b:13:97:6f:12:
#                    a3:fe:99:a9:04:cc:15:ec:60:68:36:ed:08:7b:b7:
#                    f5:bf:93:ed:66:31:83:8c:c6:71:34:87:4e:17:ea:
#                    af:8b:91:8d:1c:56:41:ae:22:37:5e:37:f2:1d:d9:
#                    d1:2d:0d:2f:69:51:a7:be:66:a6:8a:3a:2a:bd:c7:
#                    1a:b1:e1:14:f0:be:3a:1d:b9:cf:5b:b1:6a:fe:b4:
#                    b1:46:20:a2:fb:1e:3b:70:ef:93:98:7d:8c:73:96:
#                    f2:c5:ef:85:70:ad:29:26:fc:1e:04:3e:1c:a0:d8:
#                    0f:cb:52:83:62:7c:ee:8b:53:95:90:a9:57:a2:ea:
#                    61:05:d8:f9:4d:c4:27:fa:6e:ad:ed:f9:d7:51:f7:
#                    6b:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                D3:94:8A:4C:62:13:2A:19:2E:CC:AF:72:8A:7D:36:D7:9A:1C:DC:67
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202%20EV%202009,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#                Full Name:
#                  URI:http://www.d-trust.net/crl/d-trust_root_class_3_ca_2_ev_2009.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         34:ed:7b:5a:3c:a4:94:88:ef:1a:11:75:07:2f:b3:fe:3c:fa:
#         1e:51:26:eb:87:f6:29:de:e0:f1:d4:c6:24:09:e9:c1:cf:55:
#         1b:b4:30:d9:ce:1a:fe:06:51:a6:15:a4:2d:ef:b2:4b:bf:20:
#         28:25:49:d1:a6:36:77:34:e8:64:df:52:b1:11:c7:73:7a:cd:
#         39:9e:c2:ad:8c:71:21:f2:5a:6b:af:df:3c:4e:55:af:b2:84:
#         65:14:89:b9:77:cb:2a:31:be:cf:a3:6d:cf:6f:48:94:32:46:
#         6f:e7:71:8c:a0:a6:84:19:37:07:f2:03:45:09:2b:86:75:7c:
#         df:5f:69:57:00:db:6e:d8:a6:72:22:4b:50:d4:75:98:56:df:
#         b7:18:ff:43:43:50:ae:7a:44:7b:f0:79:51:d7:43:3d:a7:d3:
#         81:d3:f0:c9:4f:b9:da:c6:97:86:d0:82:c3:e4:42:6d:fe:b0:
#         e2:64:4e:0e:26:e7:40:34:26:b5:08:89:d7:08:63:63:38:27:
#         75:1e:33:ea:6e:a8:dd:9f:99:4f:74:4d:81:89:80:4b:dd:9a:
#         97:29:5c:2f:be:81:41:b9:8c:ff:ea:7d:60:06:9e:cd:d7:3d:
#         d3:2e:a3:15:bc:a8:e6:26:e5:6f:c3:dc:b8:03:21:ea:9f:16:
#         f1:2c:54:b5

[p11-kit-object-v1]
label: "DigiCert Assured ID Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArQ4VzuRDgFyxh/O3YPlx
EqWu3CaUiKr0zvUgOShYYAz4gNqpFZUyYTy1sSiEiorcnwoMgxd6j5Csiud5U1wx
hCr2D5gyNnbM3t08qKLvavsh8lJh358g1x/isdn+GGTSEltf+VgYNbxHzaE2+Wt/
1LA4PsEbw4wz2dgvGP4oD7Ong9bDbkTAYTWWFv5ZnIt2bdfxoksNK/8LctqeYNCO
kDXGeFWHIKHP5W0KyEl8MZgzbCLph9AyWqK6E4IR7TkXnZk6cqHm+qTZ1Rcxda6F
fSKuPwFGhvYoecix2uRXF8R+HA6wtJKmVrO9spftqqfwt8WoP5UW0P+hlusIXxh3
TwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Assured ID Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0c:e7:e0:e5:17:d8:46:fe:8f:e5:60:fc:1b:f0:30:39
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Assured ID Root CA
#        Validity
#            Not Before: Nov 10 00:00:00 2006 GMT
#            Not After : Nov 10 00:00:00 2031 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Assured ID Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:0e:15:ce:e4:43:80:5c:b1:87:f3:b7:60:f9:
#                    71:12:a5:ae:dc:26:94:88:aa:f4:ce:f5:20:39:28:
#                    58:60:0c:f8:80:da:a9:15:95:32:61:3c:b5:b1:28:
#                    84:8a:8a:dc:9f:0a:0c:83:17:7a:8f:90:ac:8a:e7:
#                    79:53:5c:31:84:2a:f6:0f:98:32:36:76:cc:de:dd:
#                    3c:a8:a2:ef:6a:fb:21:f2:52:61:df:9f:20:d7:1f:
#                    e2:b1:d9:fe:18:64:d2:12:5b:5f:f9:58:18:35:bc:
#                    47:cd:a1:36:f9:6b:7f:d4:b0:38:3e:c1:1b:c3:8c:
#                    33:d9:d8:2f:18:fe:28:0f:b3:a7:83:d6:c3:6e:44:
#                    c0:61:35:96:16:fe:59:9c:8b:76:6d:d7:f1:a2:4b:
#                    0d:2b:ff:0b:72:da:9e:60:d0:8e:90:35:c6:78:55:
#                    87:20:a1:cf:e5:6d:0a:c8:49:7c:31:98:33:6c:22:
#                    e9:87:d0:32:5a:a2:ba:13:82:11:ed:39:17:9d:99:
#                    3a:72:a1:e6:fa:a4:d9:d5:17:31:75:ae:85:7d:22:
#                    ae:3f:01:46:86:f6:28:79:c8:b1:da:e4:57:17:c4:
#                    7e:1c:0e:b0:b4:92:a6:56:b3:bd:b2:97:ed:aa:a7:
#                    f0:b7:c5:a8:3f:95:16:d0:ff:a1:96:eb:08:5f:18:
#                    77:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                45:EB:A2:AF:F4:92:CB:82:31:2D:51:8B:A7:A7:21:9D:F3:6D:C8:0F
#            X509v3 Authority Key Identifier: 
#                keyid:45:EB:A2:AF:F4:92:CB:82:31:2D:51:8B:A7:A7:21:9D:F3:6D:C8:0F
#
#    Signature Algorithm: sha1WithRSAEncryption
#         a2:0e:bc:df:e2:ed:f0:e3:72:73:7a:64:94:bf:f7:72:66:d8:
#         32:e4:42:75:62:ae:87:eb:f2:d5:d9:de:56:b3:9f:cc:ce:14:
#         28:b9:0d:97:60:5c:12:4c:58:e4:d3:3d:83:49:45:58:97:35:
#         69:1a:a8:47:ea:56:c6:79:ab:12:d8:67:81:84:df:7f:09:3c:
#         94:e6:b8:26:2c:20:bd:3d:b3:28:89:f7:5f:ff:22:e2:97:84:
#         1f:e9:65:ef:87:e0:df:c1:67:49:b3:5d:eb:b2:09:2a:eb:26:
#         ed:78:be:7d:3f:2b:f3:b7:26:35:6d:5f:89:01:b6:49:5b:9f:
#         01:05:9b:ab:3d:25:c1:cc:b6:7f:c2:f1:6f:86:c6:fa:64:68:
#         eb:81:2d:94:eb:42:b7:fa:8c:1e:dd:62:f1:be:50:67:b7:6c:
#         bd:f3:f1:1f:6b:0c:36:07:16:7f:37:7c:a9:5b:6d:7a:f1:12:
#         46:60:83:d7:27:04:be:4b:ce:97:be:c3:67:2a:68:11:df:80:
#         e7:0c:33:66:bf:13:0d:14:6e:f3:7f:1f:63:10:1e:fa:8d:1b:
#         25:6d:6c:8f:a5:b7:61:01:b1:d2:a3:26:a1:10:71:9d:ad:e2:
#         c3:f9:c3:99:51:b7:2b:07:08:ce:2e:e6:50:b2:a7:fa:0a:45:
#         2f:a2:f0:f2

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2ecoL1I/NnJJiJM08/hq
HjFUgJ+tVEG1R9+WqNSvgC25Cs91/YmlfST64yIMK7yVFwszvxlNQQaQAL0MTRD+
B7XnHG4iVTFll73TF9IeYvPb6mxQjD+EDJbPt8sD4MptoRRMG4nd7QCwUnyvkWyx
OBPR6RIIwACwHCsR2ndwNpuuznmH3IJw5gl0cFVpr6Non7/dtnmz8p1wKVX0q/+V
YfPJQG8d0b6Tu9OIKrudv3JaVnE7P9Tz0Qr+KO+j7tmZrwPTj2C38pKhsb2JiR8w
zcOmLmIzrhYCd0Ra54EKPKdELnm4PwS8XKCH4RuvUY7N7Cz6+P5t8Dp8qovkZ5Ux
jQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0b:93:1c:3a:d6:39:67:ea:67:23:bf:c3:af:9a:f4:4b
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Assured ID Root G2
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Assured ID Root G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d9:e7:28:2f:52:3f:36:72:49:88:93:34:f3:f8:
#                    6a:1e:31:54:80:9f:ad:54:41:b5:47:df:96:a8:d4:
#                    af:80:2d:b9:0a:cf:75:fd:89:a5:7d:24:fa:e3:22:
#                    0c:2b:bc:95:17:0b:33:bf:19:4d:41:06:90:00:bd:
#                    0c:4d:10:fe:07:b5:e7:1c:6e:22:55:31:65:97:bd:
#                    d3:17:d2:1e:62:f3:db:ea:6c:50:8c:3f:84:0c:96:
#                    cf:b7:cb:03:e0:ca:6d:a1:14:4c:1b:89:dd:ed:00:
#                    b0:52:7c:af:91:6c:b1:38:13:d1:e9:12:08:c0:00:
#                    b0:1c:2b:11:da:77:70:36:9b:ae:ce:79:87:dc:82:
#                    70:e6:09:74:70:55:69:af:a3:68:9f:bf:dd:b6:79:
#                    b3:f2:9d:70:29:55:f4:ab:ff:95:61:f3:c9:40:6f:
#                    1d:d1:be:93:bb:d3:88:2a:bb:9d:bf:72:5a:56:71:
#                    3b:3f:d4:f3:d1:0a:fe:28:ef:a3:ee:d9:99:af:03:
#                    d3:8f:60:b7:f2:92:a1:b1:bd:89:89:1f:30:cd:c3:
#                    a6:2e:62:33:ae:16:02:77:44:5a:e7:81:0a:3c:a7:
#                    44:2e:79:b8:3f:04:bc:5c:a0:87:e1:1b:af:51:8e:
#                    cd:ec:2c:fa:f8:fe:6d:f0:3a:7c:aa:8b:e4:67:95:
#                    31:8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CE:C3:4A:B9:99:55:F2:B8:DB:60:BF:A9:7E:BD:56:B5:97:36:A7:D6
#    Signature Algorithm: sha256WithRSAEncryption
#         ca:a5:55:8c:e3:c8:41:6e:69:27:a7:75:11:ef:3c:86:36:6f:
#         d2:9d:c6:78:38:1d:69:96:a2:92:69:2e:38:6c:9b:7d:04:d4:
#         89:a5:b1:31:37:8a:c9:21:cc:ab:6c:cd:8b:1c:9a:d6:bf:48:
#         d2:32:66:c1:8a:c0:f3:2f:3a:ef:c0:e3:d4:91:86:d1:50:e3:
#         03:db:73:77:6f:4a:39:53:ed:de:26:c7:b5:7d:af:2b:42:d1:
#         75:62:e3:4a:2b:02:c7:50:4b:e0:69:e2:96:6c:0e:44:66:10:
#         44:8f:ad:05:eb:f8:79:ac:a6:1b:e8:37:34:9d:53:c9:61:aa:
#         a2:52:af:4a:70:16:86:c2:3a:c8:b1:13:70:36:d8:cf:ee:f4:
#         0a:34:d5:5b:4c:fd:07:9c:a2:ba:d9:01:72:5c:f3:4d:c1:dd:
#         0e:b1:1c:0d:c4:63:be:ad:f4:14:fb:89:ec:a2:41:0e:4c:cc:
#         c8:57:40:d0:6e:03:aa:cd:0c:8e:89:99:99:6c:f0:3c:30:af:
#         38:df:6f:bc:a3:be:29:20:27:ab:74:ff:13:22:78:de:97:52:
#         55:1e:83:b5:54:20:03:ee:ae:c0:4f:56:de:37:cc:c3:7f:aa:
#         04:27:bb:d3:77:b8:62:db:17:7c:9c:28:22:13:73:6c:cf:26:
#         f5:8a:29:e7

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEGee8rERl7c24P1j7jbFXqUQtBRXy7wv/
EHSftWJSX2Z+H+XcG0V5C8zGUwqdjV0C2alZ3gJa9pUqDo04SopJxrzGAzgHX1Xa
fglu4n9e0EUgD1l2ENagJPAt3jbybCk5
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0b:a1:5a:fa:1d:df:a0:b5:49:44:af:cd:24:a0:6c:ec
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Assured ID Root G3
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Assured ID Root G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:19:e7:bc:ac:44:65:ed:cd:b8:3f:58:fb:8d:b1:
#                    57:a9:44:2d:05:15:f2:ef:0b:ff:10:74:9f:b5:62:
#                    52:5f:66:7e:1f:e5:dc:1b:45:79:0b:cc:c6:53:0a:
#                    9d:8d:5d:02:d9:a9:59:de:02:5a:f6:95:2a:0e:8d:
#                    38:4a:8a:49:c6:bc:c6:03:38:07:5f:55:da:7e:09:
#                    6e:e2:7f:5e:d0:45:20:0f:59:76:10:d6:a0:24:f0:
#                    2d:de:36:f2:6c:29:39
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CB:D0:BD:A9:E1:98:05:51:A1:4D:37:A2:83:79:CE:8D:1D:2A:E4:84
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:25:a4:81:45:02:6b:12:4b:75:74:4f:c8:23:e3:
#         70:f2:75:72:de:7c:89:f0:cf:91:72:61:9e:5e:10:92:59:56:
#         b9:83:c7:10:e7:38:e9:58:26:36:7d:d5:e4:34:86:39:02:30:
#         7c:36:53:f0:30:e5:62:63:3a:99:e2:b6:a3:3b:9b:34:fa:1e:
#         da:10:92:71:5e:91:13:a7:dd:a4:6e:92:cc:32:d6:f5:21:66:
#         c7:2f:ea:96:63:6a:65:45:92:95:01:b4

[p11-kit-object-v1]
label: "DigiCert CS ECC P384 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEfxSthbaX/QIhNU1g6DiTk5s9BRBtr9P+
7/q7+3OZ8+wyEo3HaLiL3omiiFR3jbshfjOVVpYJ6NWMoQS4m24ZAGLoQiimWDeE
GVUmezM3Z/Kacq2hrq4AQjwcfrh6niGc
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert CS ECC P384 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            03:69:8f:e7:12:d5:19:f3:ce:d0:fd:b7:b1:64:30:11
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = "DigiCert, Inc.", CN = DigiCert CS ECC P384 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C = US, O = "DigiCert, Inc.", CN = DigiCert CS ECC P384 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:7f:14:ad:85:b6:97:fd:02:21:35:4d:60:e8:38:
#                    93:93:9b:3d:05:10:6d:af:d3:fe:ef:fa:bb:fb:73:
#                    99:f3:ec:32:12:8d:c7:68:b8:8b:de:89:a2:88:54:
#                    77:8d:bb:21:7e:33:95:56:96:09:e8:d5:8c:a1:04:
#                    b8:9b:6e:19:00:62:e8:42:28:a6:58:37:84:19:55:
#                    26:7b:33:37:67:f2:9a:72:ad:a1:ae:ae:00:42:3c:
#                    1c:7e:b8:7a:9e:21:9c
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                F0:8C:98:71:39:38:65:C2:3A:1B:A6:17:66:1D:C8:ED:65:DE:92:36
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:23:6f:e1:00:19:26:50:e4:46:20:65:8b:37:a7:
#         cf:eb:06:e1:cc:32:c9:2a:a1:ec:32:0d:73:a2:1e:02:1c:35:
#         61:2a:4e:69:ab:39:77:ed:97:88:c0:7d:6b:ea:89:dd:02:30:
#         43:f1:d1:58:a3:75:3e:86:9b:b6:55:11:8b:17:f7:3d:fe:0a:
#         69:c5:7f:4e:c6:75:1b:5a:94:cb:ea:11:11:c6:08:22:88:de:
#         d0:7a:a2:a5:79:e8:e3:21:a7:cd:13:b3

[p11-kit-object-v1]
label: "DigiCert CS RSA4096 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert CS RSA4096 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:ce:e1:31:be:6d:55:c8:07:f7:c0:c7:fb:44:e6:20
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = "DigiCert, Inc.", CN = DigiCert CS RSA4096 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C = US, O = "DigiCert, Inc.", CN = DigiCert CS RSA4096 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:33:73:80:d8:62:03:70:14:2c:11:1c:39:5e:
#                    7c:ae:7c:83:86:1d:fe:26:2f:4c:24:ad:8b:ea:83:
#                    5f:a9:bc:3d:5b:fc:0b:98:4c:02:47:30:ec:e2:fe:
#                    ec:e8:34:5b:66:5e:bf:3b:d7:2c:a6:25:ff:8c:59:
#                    b3:df:ea:da:7c:29:d9:46:50:72:08:1d:6e:d1:1b:
#                    0a:dd:1f:cd:99:89:fa:0f:0f:73:c4:e1:9c:1d:75:
#                    32:cd:6f:97:da:2a:6a:95:b2:6c:c9:09:d0:ea:0b:
#                    7b:7d:17:06:49:99:ef:d6:de:e0:c8:53:d4:ae:c6:
#                    77:f1:86:bb:23:1c:b8:c0:df:59:f7:8e:7d:d1:ef:
#                    82:e6:26:8b:5a:38:b5:ff:75:d5:b2:d9:4f:09:f3:
#                    37:88:50:da:11:a4:8a:14:14:d1:53:04:00:7d:f3:
#                    6a:44:18:fe:50:70:32:07:1c:a8:9a:0e:3a:1d:c5:
#                    0a:1f:6e:0b:26:69:b7:3c:a2:57:70:2c:86:fa:4c:
#                    6e:95:a9:58:43:b9:ac:12:d6:ff:3f:ed:d7:43:17:
#                    6b:4c:ce:9e:c4:90:ab:ff:fa:10:50:9a:a3:90:57:
#                    d6:e7:8c:10:ae:9f:16:1a:cf:35:1d:7f:d7:76:ed:
#                    8a:9c:35:a7:28:b8:a7:5d:21:fc:30:37:dd:de:08:
#                    19:4f:15:c6:e7:a6:da:90:47:8e:f7:94:53:4c:8e:
#                    53:02:be:fd:99:e5:ea:86:d0:af:03:02:d3:9b:aa:
#                    93:f1:ab:28:8e:20:01:ff:4c:fb:cc:b7:29:40:f5:
#                    87:a4:12:13:05:1f:43:6e:d7:51:50:9f:38:b4:20:
#                    ed:17:09:12:8f:cc:b9:19:af:9f:cd:be:69:11:d3:
#                    af:55:10:6d:17:86:79:96:52:c6:b2:00:9d:e5:af:
#                    38:b0:35:f4:88:6b:8f:0e:04:3d:7c:ee:af:cd:d3:
#                    6a:10:4a:c6:cd:86:ca:22:3d:a1:4a:5c:fb:0e:ff:
#                    88:df:5c:62:a7:c0:b9:1e:d9:ac:6c:7e:38:37:fe:
#                    77:93:25:c2:85:8a:4f:b5:37:06:5a:06:81:14:f1:
#                    ce:94:9d:99:91:ea:32:5a:ce:67:3d:6e:04:66:ad:
#                    0c:4f:2d:a3:2e:f7:9e:f5:78:9d:f7:0a:fd:7e:8f:
#                    e3:42:8a:55:96:bc:f1:9f:37:2d:fc:9e:5f:95:fe:
#                    8c:18:1b:fc:8e:fd:4b:90:af:d7:03:68:12:63:ac:
#                    e2:93:a7:a2:cb:04:e5:4f:64:ce:03:fa:c6:14:9f:
#                    d9:8b:e8:cc:d4:62:8c:6b:e4:00:2c:19:9f:1a:06:
#                    c6:31:81:54:fb:53:24:9a:af:55:99:ba:9d:75:ae:
#                    b8:c2:dd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                68:01:93:B1:D2:4A:40:42:69:94:46:2C:1C:5A:88:A9:25:B4:47:4F
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         92:fc:ee:b8:02:79:17:02:51:7d:21:c5:49:67:a7:a4:f1:a8:
#         24:38:eb:0c:68:ea:5a:42:6b:9c:f4:73:c1:69:4a:2d:b3:37:
#         05:50:42:98:92:9e:06:79:2c:2e:06:99:f6:ef:df:2b:a0:cd:
#         b3:92:01:83:b5:a0:cb:27:b5:3c:23:1a:98:49:a2:ec:2d:99:
#         a5:59:43:ac:d2:b1:93:d6:57:d7:1c:bc:93:d6:c6:40:e1:b3:
#         6f:19:55:b7:13:d7:e5:43:33:a4:b5:ab:cb:da:c1:31:64:0d:
#         74:d6:2c:ed:c3:8d:6e:eb:bb:af:19:47:61:61:2d:c0:f4:05:
#         b9:6f:78:dc:3a:f7:42:40:65:53:91:bd:99:0d:93:92:54:a6:
#         a9:37:59:2b:9b:cb:99:c6:bc:3d:f7:04:84:f0:94:33:1d:0f:
#         82:5a:39:cb:2e:45:c3:28:19:a3:b2:9b:98:c8:fc:31:6b:60:
#         8f:f6:e9:86:28:bc:e0:3c:7d:74:5d:16:89:5b:69:24:c7:10:
#         8b:c4:4b:bb:36:4f:d4:59:3f:c3:b0:a4:91:99:f8:2e:d1:4a:
#         01:9d:f5:88:12:ef:bf:5a:11:6a:59:4f:59:6b:5a:67:f3:8f:
#         b4:13:0f:c0:d8:2f:3d:28:72:aa:19:7f:11:7d:6a:5b:9f:95:
#         e7:5f:b7:94:4f:f1:3e:a1:5a:ff:2d:cc:9d:df:27:77:8f:32:
#         73:1c:67:0a:76:f3:fa:5c:b1:bf:bc:1d:bd:0c:28:9b:b2:c7:
#         17:67:0b:33:0f:c3:bd:36:dc:fb:ba:42:0b:ab:ed:84:c3:62:
#         d6:84:16:a9:b1:07:6b:a9:6e:ee:c6:cf:e6:b0:44:29:c2:f0:
#         b3:61:80:2a:8b:6f:d2:14:5c:25:87:54:64:f3:a4:4c:c1:a1:
#         f8:a7:6b:ea:fe:ea:3a:fc:79:db:0e:8f:dc:c6:f3:c9:d4:6c:
#         de:e9:83:a1:8e:1d:22:ec:c9:3a:b2:00:7b:dc:3b:a7:42:1a:
#         7f:dc:8b:a9:11:3d:8e:a7:c0:20:6f:5d:09:5d:43:44:e6:8f:
#         66:cc:a9:5b:07:f1:ef:9b:7a:0e:b3:54:e1:94:fd:0e:2c:c6:
#         93:d7:55:fd:71:98:35:b8:09:4a:ff:c6:29:28:2c:f6:52:2d:
#         db:14:18:92:27:e2:16:7e:8c:ca:d4:61:be:82:87:91:eb:98:
#         37:3f:bf:5f:5d:77:3f:34:ac:1b:38:43:ab:68:72:99:32:1e:
#         3a:1a:19:a5:a3:38:4c:23:d7:a3:e7:cc:d5:2a:92:17:90:0b:
#         5a:4b:bd:16:bd:fb:86:6a:e2:89:99:ec:e4:a0:55:18:c9:a3:
#         08:1f:13:e0:32:08:72:d0

[p11-kit-object-v1]
label: "DigiCert ECC P384 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE/Fkfzplsf5sOtiljb8aF8wrT1puuVxVM
Du1d4wl+bSqjhqq6eKCncb1E+gjASgbWb90sSjh05dC9/3r/5TlOvb0XHh9DrdW8
J9hLv3aMMDKk+/lT5diqOFNdqKA3oGcK
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert ECC P384 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICETCCAZegAwIBAgIQDfPZN2WjecWVZuqS4iRPNDAKBggqhkjOPQQDAzBKMQsw
CQYDVQQGEwJVUzEXMBUGA1UEChMORGlnaUNlcnQsIEluYy4xIjAgBgNVBAMTGURp
Z2lDZXJ0IEVDQyBQMzg0IFJvb3QgRzUwHhcNMjEwMTE1MDAwMDAwWhcNNDYwMTE0
MjM1OTU5WjBKMQswCQYDVQQGEwJVUzEXMBUGA1UEChMORGlnaUNlcnQsIEluYy4x
IjAgBgNVBAMTGURpZ2lDZXJ0IEVDQyBQMzg0IFJvb3QgRzUwdjAQBgcqhkjOPQIB
BgUrgQQAIgNiAAT8WR/OmWx/mw62KWNvxoXzCtPWm65XFUwO7V3jCX5tKqOGqrp4
oKdxvUT6CMBKBtZv3SxKOHTl0L3/ev/lOU69vRceH0Ot1bwn2Eu/dowwMqT7+VPl
2Ko4U12ooDegZwqjQjBAMB0GA1UdDgQWBBSSlvfmutURuvkiLnt+WtnwJeUFGzAO
BgNVHQ8BAf8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAKBggqhkjOPQQDAwNoADBl
AjEA/cBN8aSn26cMJhH0Sb0HOGMrRGIGeQjHw9TPmz6rOieqkMf9WaK4MlLbyo4X
CwqQAjBdGuxRidRk3PnlHji9Wy7j5UTkOxh61/CVQI/y68/0+dBlokHysOZ8wTYs
j1453Tc=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0d:f3:d9:37:65:a3:79:c5:95:66:ea:92:e2:24:4f:34
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = "DigiCert, Inc.", CN = DigiCert ECC P384 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C = US, O = "DigiCert, Inc.", CN = DigiCert ECC P384 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:fc:59:1f:ce:99:6c:7f:9b:0e:b6:29:63:6f:c6:
#                    85:f3:0a:d3:d6:9b:ae:57:15:4c:0e:ed:5d:e3:09:
#                    7e:6d:2a:a3:86:aa:ba:78:a0:a7:71:bd:44:fa:08:
#                    c0:4a:06:d6:6f:dd:2c:4a:38:74:e5:d0:bd:ff:7a:
#                    ff:e5:39:4e:bd:bd:17:1e:1f:43:ad:d5:bc:27:d8:
#                    4b:bf:76:8c:30:32:a4:fb:f9:53:e5:d8:aa:38:53:
#                    5d:a8:a0:37:a0:67:0a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                92:96:F7:E6:BA:D5:11:BA:F9:22:2E:7B:7E:5A:D9:F0:25:E5:05:1B
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:fd:c0:4d:f1:a4:a7:db:a7:0c:26:11:f4:49:
#         bd:07:38:63:2b:44:62:06:79:08:c7:c3:d4:cf:9b:3e:ab:3a:
#         27:aa:90:c7:fd:59:a2:b8:32:52:db:ca:8e:17:0b:0a:90:02:
#         30:5d:1a:ec:51:89:d4:64:dc:f9:e5:1e:38:bd:5b:2e:e3:e5:
#         44:e4:3b:18:7a:d7:f0:95:40:8f:f2:eb:cf:f4:f9:d0:65:a2:
#         41:f2:b0:e6:7c:c1:36:2c:8f:5e:39:dd:37

[p11-kit-object-v1]
label: "DigiCert Global Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4jvhEXLeqKTTo1eqUKKP
C3eQyaKl7hLOllsBCSDMAZOnTjC3U/dDxGkAV53ijSLdhwZAAIEJzs4bg7/fzTtx
RuLWZscFs3YnFo97nh6Vfe63SKMI2tavegw5BmV/Sl0fvBf4q77uKNd0f3p4mVmF
aG5cIzJLv07A6Fpt43C/dxC//AH2hdmoRBBYMql1GNXRor5H4idq9Joz+EkIYIvU
X7Q6hL+hqkpMfT7PT19sdl6gSzeRntwi5m3OFBqOasv+zbMUZBfHWymeMr/y7vrT
C0LUq7dBMtoM1O/4gdW7jVg/tRvoSSiicNoxBN33shbyTApOB6jtSj1etX+jkMOv
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Global Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:3b:e0:56:90:42:46:b1:a1:75:6a:c9:59:91:c7:4a
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
#        Validity
#            Not Before: Nov 10 00:00:00 2006 GMT
#            Not After : Nov 10 00:00:00 2031 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:e2:3b:e1:11:72:de:a8:a4:d3:a3:57:aa:50:a2:
#                    8f:0b:77:90:c9:a2:a5:ee:12:ce:96:5b:01:09:20:
#                    cc:01:93:a7:4e:30:b7:53:f7:43:c4:69:00:57:9d:
#                    e2:8d:22:dd:87:06:40:00:81:09:ce:ce:1b:83:bf:
#                    df:cd:3b:71:46:e2:d6:66:c7:05:b3:76:27:16:8f:
#                    7b:9e:1e:95:7d:ee:b7:48:a3:08:da:d6:af:7a:0c:
#                    39:06:65:7f:4a:5d:1f:bc:17:f8:ab:be:ee:28:d7:
#                    74:7f:7a:78:99:59:85:68:6e:5c:23:32:4b:bf:4e:
#                    c0:e8:5a:6d:e3:70:bf:77:10:bf:fc:01:f6:85:d9:
#                    a8:44:10:58:32:a9:75:18:d5:d1:a2:be:47:e2:27:
#                    6a:f4:9a:33:f8:49:08:60:8b:d4:5f:b4:3a:84:bf:
#                    a1:aa:4a:4c:7d:3e:cf:4f:5f:6c:76:5e:a0:4b:37:
#                    91:9e:dc:22:e6:6d:ce:14:1a:8e:6a:cb:fe:cd:b3:
#                    14:64:17:c7:5b:29:9e:32:bf:f2:ee:fa:d3:0b:42:
#                    d4:ab:b7:41:32:da:0c:d4:ef:f8:81:d5:bb:8d:58:
#                    3f:b5:1b:e8:49:28:a2:70:da:31:04:dd:f7:b2:16:
#                    f2:4c:0a:4e:07:a8:ed:4a:3d:5e:b5:7f:a3:90:c3:
#                    af:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                03:DE:50:35:56:D1:4C:BB:66:F0:A3:E2:1B:1B:C3:97:B2:3D:D1:55
#            X509v3 Authority Key Identifier: 
#                keyid:03:DE:50:35:56:D1:4C:BB:66:F0:A3:E2:1B:1B:C3:97:B2:3D:D1:55
#
#    Signature Algorithm: sha1WithRSAEncryption
#         cb:9c:37:aa:48:13:12:0a:fa:dd:44:9c:4f:52:b0:f4:df:ae:
#         04:f5:79:79:08:a3:24:18:fc:4b:2b:84:c0:2d:b9:d5:c7:fe:
#         f4:c1:1f:58:cb:b8:6d:9c:7a:74:e7:98:29:ab:11:b5:e3:70:
#         a0:a1:cd:4c:88:99:93:8c:91:70:e2:ab:0f:1c:be:93:a9:ff:
#         63:d5:e4:07:60:d3:a3:bf:9d:5b:09:f1:d5:8e:e3:53:f4:8e:
#         63:fa:3f:a7:db:b4:66:df:62:66:d6:d1:6e:41:8d:f2:2d:b5:
#         ea:77:4a:9f:9d:58:e2:2b:59:c0:40:23:ed:2d:28:82:45:3e:
#         79:54:92:26:98:e0:80:48:a8:37:ef:f0:d6:79:60:16:de:ac:
#         e8:0e:cd:6e:ac:44:17:38:2f:49:da:e1:45:3e:2a:b9:36:53:
#         cf:3a:50:06:f7:2e:e8:c4:57:49:6c:61:21:18:d5:04:ad:78:
#         3c:2c:3a:80:6b:a7:eb:af:15:14:e9:d8:89:c1:b9:38:6c:e2:
#         91:6c:8a:ff:64:b9:77:25:57:30:c0:1b:24:a3:e1:dc:e9:df:
#         47:7c:b5:b4:24:08:05:30:ec:2d:bd:0b:bf:45:bf:50:b9:a9:
#         f3:eb:98:01:12:ad:c8:88:c6:98:34:5f:8d:0a:3c:c6:e9:d5:
#         95:95:6d:de

[p11-kit-object-v1]
label: "DigiCert Global Root G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuzfNNNx7a8myaJCtSnX/
RrohCgiN9RlUyfuI2/Ou8jqJkTx65qsGGmvPrC3oXgkkRLpimn7Wo6h+4FR1IAWs
ULecYxpsMNzaHxmx1x7e/dfgy5SDN67sH0NO3Xss0r0upS/kqbitOtSZpLYl6Ztr
AGCSYP9PIUkY92eQq2EGnI/yuum06ZIya7XzV+hdG82MHauVBJVJ8zUtluNJbd13
4/tJS7SsVQepj5WztCO7TG1F8PapspUwtP1MVYwnSlcUfIKdzXOS0xZKBgyMUNGP
Hgm+F6HmIcr9g+UQvIOlCsRnKPZzFBQ9RnbDhxSJITRNrw9FDKZJobq7nMWxM4Mp
hQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Global Root G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            03:3a:f1:e6:a7:11:a9:a0:bb:28:64:b1:1d:09:fa:e5
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G2
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bb:37:cd:34:dc:7b:6b:c9:b2:68:90:ad:4a:75:
#                    ff:46:ba:21:0a:08:8d:f5:19:54:c9:fb:88:db:f3:
#                    ae:f2:3a:89:91:3c:7a:e6:ab:06:1a:6b:cf:ac:2d:
#                    e8:5e:09:24:44:ba:62:9a:7e:d6:a3:a8:7e:e0:54:
#                    75:20:05:ac:50:b7:9c:63:1a:6c:30:dc:da:1f:19:
#                    b1:d7:1e:de:fd:d7:e0:cb:94:83:37:ae:ec:1f:43:
#                    4e:dd:7b:2c:d2:bd:2e:a5:2f:e4:a9:b8:ad:3a:d4:
#                    99:a4:b6:25:e9:9b:6b:00:60:92:60:ff:4f:21:49:
#                    18:f7:67:90:ab:61:06:9c:8f:f2:ba:e9:b4:e9:92:
#                    32:6b:b5:f3:57:e8:5d:1b:cd:8c:1d:ab:95:04:95:
#                    49:f3:35:2d:96:e3:49:6d:dd:77:e3:fb:49:4b:b4:
#                    ac:55:07:a9:8f:95:b3:b4:23:bb:4c:6d:45:f0:f6:
#                    a9:b2:95:30:b4:fd:4c:55:8c:27:4a:57:14:7c:82:
#                    9d:cd:73:92:d3:16:4a:06:0c:8c:50:d1:8f:1e:09:
#                    be:17:a1:e6:21:ca:fd:83:e5:10:bc:83:a5:0a:c4:
#                    67:28:f6:73:14:14:3d:46:76:c3:87:14:89:21:34:
#                    4d:af:0f:45:0c:a6:49:a1:ba:bb:9c:c5:b1:33:83:
#                    29:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4E:22:54:20:18:95:E6:E3:6E:E6:0F:FA:FA:B9:12:ED:06:17:8F:39
#    Signature Algorithm: sha256WithRSAEncryption
#         60:67:28:94:6f:0e:48:63:eb:31:dd:ea:67:18:d5:89:7d:3c:
#         c5:8b:4a:7f:e9:be:db:2b:17:df:b0:5f:73:77:2a:32:13:39:
#         81:67:42:84:23:f2:45:67:35:ec:88:bf:f8:8f:b0:61:0c:34:
#         a4:ae:20:4c:84:c6:db:f8:35:e1:76:d9:df:a6:42:bb:c7:44:
#         08:86:7f:36:74:24:5a:da:6c:0d:14:59:35:bd:f2:49:dd:b6:
#         1f:c9:b3:0d:47:2a:3d:99:2f:bb:5c:bb:b5:d4:20:e1:99:5f:
#         53:46:15:db:68:9b:f0:f3:30:d5:3e:31:e2:8d:84:9e:e3:8a:
#         da:da:96:3e:35:13:a5:5f:f0:f9:70:50:70:47:41:11:57:19:
#         4e:c0:8f:ae:06:c4:95:13:17:2f:1b:25:9f:75:f2:b1:8e:99:
#         a1:6f:13:b1:41:71:fe:88:2a:c8:4f:10:20:55:d7:f3:14:45:
#         e5:e0:44:f4:ea:87:95:32:93:0e:fe:53:46:fa:2c:9d:ff:8b:
#         22:b9:4b:d9:09:45:a4:de:a4:b8:9a:58:dd:1b:7d:52:9f:8e:
#         59:43:88:81:a4:9e:26:d5:6f:ad:dd:0d:c6:37:7d:ed:03:92:
#         1b:e5:77:5f:76:ee:3c:8d:c4:5d:56:5b:a2:d9:66:6e:b3:35:
#         37:e5:32:b6

[p11-kit-object-v1]
label: "DigiCert Global Root G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE3afZu4q4C/sLfyHS8L6+c/MzXRq8NOre
xpu80JX28MzQC7phW1FGfp4tn+6OYwwX7Adw9c+ELkCDnOg/QW07rdOkFFk2eJ0D
Q+4QE2xy3q6Ip6FrtUPOZ9wj/wMco+I+
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Global Root G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:55:56:bc:f2:5e:a4:35:35:c3:a4:0f:d5:ab:45:72
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G3
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:dd:a7:d9:bb:8a:b8:0b:fb:0b:7f:21:d2:f0:be:
#                    be:73:f3:33:5d:1a:bc:34:ea:de:c6:9b:bc:d0:95:
#                    f6:f0:cc:d0:0b:ba:61:5b:51:46:7e:9e:2d:9f:ee:
#                    8e:63:0c:17:ec:07:70:f5:cf:84:2e:40:83:9c:e8:
#                    3f:41:6d:3b:ad:d3:a4:14:59:36:78:9d:03:43:ee:
#                    10:13:6c:72:de:ae:88:a7:a1:6b:b5:43:ce:67:dc:
#                    23:ff:03:1c:a3:e2:3e
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B3:DB:48:A4:F9:A1:C5:D8:AE:36:41:CC:11:63:69:62:29:BC:4B:C6
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:ad:bc:f2:6c:3f:12:4a:d1:2d:39:c3:0a:09:
#         97:73:f4:88:36:8c:88:27:bb:e6:88:8d:50:85:a7:63:f9:9e:
#         32:de:66:93:0f:f1:cc:b1:09:8f:dd:6c:ab:fa:6b:7f:a0:02:
#         30:39:66:5b:c2:64:8d:b8:9e:50:dc:a8:d5:49:a2:ed:c7:dc:
#         d1:49:7f:17:01:b8:c8:86:8f:4e:8c:88:2b:a8:9a:a9:8a:c5:
#         d1:00:bd:f8:54:e2:9a:e5:5b:7c:b3:27:17

[p11-kit-object-v1]
label: "DigiCert High Assurance EV Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxszlc+b71LvlLS0ypt/l
gT/JzSVJtnEqw9WUNGeiChywX2mmQLHEt7KP0JikqUFZOtPclNY823Q4pErMTSWC
90qlUxI47vNJbXGRfmO2q6Zfw6SE+E9iUb74xezbOJLjBuUIkQzEKEFV+8taiRV+
ceg1v01yCT2+OjhQW3cxG42zxyRFmqesbQAUWgS3uhPrUQqYQUEiTmVhh4FBUKZ5
XIneGUpX1S7mXRxTLH6YzRoGFqRoc9A0BBNcoXHTWnxV215k4TeHMFYE5RG0KYAS
8Xk5iKICEXwnZreIt3jyygqoOKsKZMK/Zl2VhMGhJR6HXRpQCyASzEG7bgtROLhL
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert High Assurance EV Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:ac:5c:26:6a:0b:40:9b:8f:0b:79:f2:ae:46:25:77
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert High Assurance EV Root CA
#        Validity
#            Not Before: Nov 10 00:00:00 2006 GMT
#            Not After : Nov 10 00:00:00 2031 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert High Assurance EV Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c6:cc:e5:73:e6:fb:d4:bb:e5:2d:2d:32:a6:df:
#                    e5:81:3f:c9:cd:25:49:b6:71:2a:c3:d5:94:34:67:
#                    a2:0a:1c:b0:5f:69:a6:40:b1:c4:b7:b2:8f:d0:98:
#                    a4:a9:41:59:3a:d3:dc:94:d6:3c:db:74:38:a4:4a:
#                    cc:4d:25:82:f7:4a:a5:53:12:38:ee:f3:49:6d:71:
#                    91:7e:63:b6:ab:a6:5f:c3:a4:84:f8:4f:62:51:be:
#                    f8:c5:ec:db:38:92:e3:06:e5:08:91:0c:c4:28:41:
#                    55:fb:cb:5a:89:15:7e:71:e8:35:bf:4d:72:09:3d:
#                    be:3a:38:50:5b:77:31:1b:8d:b3:c7:24:45:9a:a7:
#                    ac:6d:00:14:5a:04:b7:ba:13:eb:51:0a:98:41:41:
#                    22:4e:65:61:87:81:41:50:a6:79:5c:89:de:19:4a:
#                    57:d5:2e:e6:5d:1c:53:2c:7e:98:cd:1a:06:16:a4:
#                    68:73:d0:34:04:13:5c:a1:71:d3:5a:7c:55:db:5e:
#                    64:e1:37:87:30:56:04:e5:11:b4:29:80:12:f1:79:
#                    39:88:a2:02:11:7c:27:66:b7:88:b7:78:f2:ca:0a:
#                    a8:38:ab:0a:64:c2:bf:66:5d:95:84:c1:a1:25:1e:
#                    87:5d:1a:50:0b:20:12:cc:41:bb:6e:0b:51:38:b8:
#                    4b:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3
#            X509v3 Authority Key Identifier: 
#                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3
#
#    Signature Algorithm: sha1WithRSAEncryption
#         1c:1a:06:97:dc:d7:9c:9f:3c:88:66:06:08:57:21:db:21:47:
#         f8:2a:67:aa:bf:18:32:76:40:10:57:c1:8a:f3:7a:d9:11:65:
#         8e:35:fa:9e:fc:45:b5:9e:d9:4c:31:4b:b8:91:e8:43:2c:8e:
#         b3:78:ce:db:e3:53:79:71:d6:e5:21:94:01:da:55:87:9a:24:
#         64:f6:8a:66:cc:de:9c:37:cd:a8:34:b1:69:9b:23:c8:9e:78:
#         22:2b:70:43:e3:55:47:31:61:19:ef:58:c5:85:2f:4e:30:f6:
#         a0:31:16:23:c8:e7:e2:65:16:33:cb:bf:1a:1b:a0:3d:f8:ca:
#         5e:8b:31:8b:60:08:89:2d:0c:06:5c:52:b7:c4:f9:0a:98:d1:
#         15:5f:9f:12:be:7c:36:63:38:bd:44:a4:7f:e4:26:2b:0a:c4:
#         97:69:0d:e9:8c:e2:c0:10:57:b8:c8:76:12:91:55:f2:48:69:
#         d8:bc:2a:02:5b:0f:44:d4:20:31:db:f4:ba:70:26:5d:90:60:
#         9e:bc:4b:17:09:2f:b4:cb:1e:43:68:c9:07:27:c1:d2:5c:f7:
#         ea:21:b9:68:12:9c:3c:9c:bf:9e:fc:80:5c:9b:63:cd:ec:47:
#         aa:25:27:67:a0:37:f3:00:82:7d:54:d7:a9:f8:e9:2e:13:a3:
#         77:e8:1f:4a

[p11-kit-object-v1]
label: "DigiCert RSA4096 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAqr4NsgZ9JvlH6uQb50Jp
uJnCue4ksUaQy1kkUlQ1piTCX5EZyLZC1vNHZZVk54VlZ6mufABP4HgDUK3zf464
EeeBYrGL3/JJJgneDxa82iibociXL5OQ2iAq44TU/6mesC2/tADemx/IoGNTaIVv
TYXGqmP5jbI1dmJ0A9yTmGgFns2QZd3SejGrJC1tQC6QP2NsLOv6HoBUjXkCkBSz
tU9O9YgEQ4DDSLMmL6xRlTJVJS9BlrBWoQg73JgfcoUsd8qYzDj7jnLJbewF7O1N
tzxbFFCF3Zf7WfeQEvQTv4NNgLIVZRGXYOXWXOYEtVDmcTO2IJOpaAA4zknbtFw7
ctdFXFS/zTwBIx581vhpLKUACmwySLTecC06ExfBf2TL8zDtoT2WZ/GUtWBsW2lo
9YIzCaK22fOFsm6glPDCxH2hLMpz9a7gUpyiZuYDzurf7RjUuWOL9+j/+7Nbj0PF
r7d0lFA1Za7WL/GFj1OhcPSNMl28lsMewgQEnAQPs11+iSDKXicNiUoSI7T2xN3Y
H/hoszb4HrzG94S26IpOiDA4wCbYcAoJOjQOa4ISlhwv5p6t2HE1gbGMBm70bmb/
S0quvfD+11xfU7syPM1i0RSgKR8Q3qlyT7GtZOWDKo+L6oSV7pglmJqzcTzBp1Dy
rEJiMcKhkMbu4reKqLW2GzsCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert RSA4096 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:bf:a2:6f:9a:3f:33:65:a2:ac:f0:a6:38:c4:01:70
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = "DigiCert, Inc.", CN = DigiCert RSA4096 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C = US, O = "DigiCert, Inc.", CN = DigiCert RSA4096 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:be:0d:b2:06:7d:26:f9:47:ea:e4:1b:e7:42:
#                    69:b8:99:c2:b9:ee:24:b1:46:90:cb:59:24:52:54:
#                    35:a6:24:c2:5f:91:19:c8:b6:42:d6:f3:47:65:95:
#                    64:e7:85:65:67:a9:ae:7c:00:4f:e0:78:03:50:ad:
#                    f3:7f:8e:b8:11:e7:81:62:b1:8b:df:f2:49:26:09:
#                    de:0f:16:bc:da:28:9b:a1:c8:97:2f:93:90:da:20:
#                    2a:e3:84:d4:ff:a9:9e:b0:2d:bf:b4:00:de:9b:1f:
#                    c8:a0:63:53:68:85:6f:4d:85:c6:aa:63:f9:8d:b2:
#                    35:76:62:74:03:dc:93:98:68:05:9e:cd:90:65:dd:
#                    d2:7a:31:ab:24:2d:6d:40:2e:90:3f:63:6c:2c:eb:
#                    fa:1e:80:54:8d:79:02:90:14:b3:b5:4f:4e:f5:88:
#                    04:43:80:c3:48:b3:26:2f:ac:51:95:32:55:25:2f:
#                    41:96:b0:56:a1:08:3b:dc:98:1f:72:85:2c:77:ca:
#                    98:cc:38:fb:8e:72:c9:6d:ec:05:ec:ed:4d:b7:3c:
#                    5b:14:50:85:dd:97:fb:59:f7:90:12:f4:13:bf:83:
#                    4d:80:b2:15:65:11:97:60:e5:d6:5c:e6:04:b5:50:
#                    e6:71:33:b6:20:93:a9:68:00:38:ce:49:db:b4:5c:
#                    3b:72:d7:45:5c:54:bf:cd:3c:01:23:1e:7c:d6:f8:
#                    69:2c:a5:00:0a:6c:32:48:b4:de:70:2d:3a:13:17:
#                    c1:7f:64:cb:f3:30:ed:a1:3d:96:67:f1:94:b5:60:
#                    6c:5b:69:68:f5:82:33:09:a2:b6:d9:f3:85:b2:6e:
#                    a0:94:f0:c2:c4:7d:a1:2c:ca:73:f5:ae:e0:52:9c:
#                    a2:66:e6:03:ce:ea:df:ed:18:d4:b9:63:8b:f7:e8:
#                    ff:fb:b3:5b:8f:43:c5:af:b7:74:94:50:35:65:ae:
#                    d6:2f:f1:85:8f:53:a1:70:f4:8d:32:5d:bc:96:c3:
#                    1e:c2:04:04:9c:04:0f:b3:5d:7e:89:20:ca:5e:27:
#                    0d:89:4a:12:23:b4:f6:c4:dd:d8:1f:f8:68:b3:36:
#                    f8:1e:bc:c6:f7:84:b6:e8:8a:4e:88:30:38:c0:26:
#                    d8:70:0a:09:3a:34:0e:6b:82:12:96:1c:2f:e6:9e:
#                    ad:d8:71:35:81:b1:8c:06:6e:f4:6e:66:ff:4b:4a:
#                    ae:bd:f0:fe:d7:5c:5f:53:bb:32:3c:cd:62:d1:14:
#                    a0:29:1f:10:de:a9:72:4f:b1:ad:64:e5:83:2a:8f:
#                    8b:ea:84:95:ee:98:25:98:9a:b3:71:3c:c1:a7:50:
#                    f2:ac:42:62:31:c2:a1:90:c6:ee:e2:b7:8a:a8:b5:
#                    b6:1b:3b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                62:6D:B7:91:4F:C4:EA:A3:62:60:8F:A0:D0:BE:B5:8F:06:7C:68:00
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         61:e8:fb:27:6d:d6:e2:b8:b3:09:af:aa:f0:b1:82:4c:fe:3d:
#         17:89:4d:2d:15:9d:fb:ee:d0:bb:84:ec:84:75:db:43:13:de:
#         8c:9f:c7:29:ef:87:74:cb:13:70:81:56:00:74:fc:ae:f4:d9:
#         3a:de:22:08:51:a5:a0:5c:82:66:b6:7b:4c:a9:da:8f:ab:ac:
#         1c:41:96:66:d6:9d:de:56:e6:bf:4e:b1:b2:5e:5f:c0:c3:6e:
#         d4:c2:84:90:f5:7d:b1:ba:16:d1:29:8a:c8:9d:e9:cf:d0:c7:
#         19:3b:3f:cf:ee:f7:e1:33:ae:42:c8:98:c0:08:9e:f3:5a:f3:
#         df:d4:2b:3b:8e:a8:28:56:19:c7:4e:77:3c:25:54:dc:b8:48:
#         48:d1:f9:27:6a:3e:ec:13:af:b2:05:89:fd:55:5f:f3:7d:8e:
#         0d:9c:09:5d:2c:8a:7e:85:ce:f8:e1:bf:11:3d:32:8c:5a:d7:
#         7e:3d:f4:33:58:cf:a2:05:98:a3:b3:fb:ce:89:bf:fd:c2:16:
#         dd:6e:dc:88:49:0d:0b:a0:03:ff:e7:45:e9:04:c1:e9:fd:aa:
#         9d:75:f8:b8:1f:87:83:d9:eb:39:d3:5a:a7:cb:98:ac:13:89:
#         00:fc:6f:95:4e:e1:7d:11:46:6d:f6:38:46:a3:13:a0:2c:01:
#         f5:62:cf:bf:1c:50:91:27:74:5d:b7:ec:47:7c:d0:d1:75:cb:
#         7b:ee:d1:4d:23:0a:c3:60:a5:77:2d:80:da:67:0f:8e:6b:76:
#         07:f0:a6:0f:ea:84:ae:1e:79:bf:08:8a:da:09:f3:f4:ee:b5:
#         36:f3:d4:7a:43:ba:94:35:e1:fa:c1:3b:1b:96:99:a4:57:63:
#         eb:b5:a8:82:f7:ad:f8:77:d7:76:86:f3:76:53:56:5b:fc:26:
#         42:84:ce:9f:83:91:91:af:f4:be:70:15:80:a5:d8:e8:69:b1:
#         d8:91:54:b8:19:b2:62:f9:a2:fa:55:ed:04:bf:b9:44:86:e4:
#         cf:f1:9b:00:bf:11:0f:be:b5:74:24:51:ff:77:34:63:ec:48:
#         23:0e:e8:11:eb:77:6d:da:ca:82:91:be:a4:84:93:4c:da:a1:
#         fe:cc:06:84:e8:21:e8:54:ba:e6:d3:1d:63:3d:c2:5a:fc:e6:
#         c9:83:9e:72:64:a9:86:59:00:8c:c2:f7:13:83:b6:d0:a4:31:
#         c6:ac:91:8e:7b:a4:22:56:13:c6:75:c7:23:bc:8b:5b:fc:46:
#         3d:fe:5d:52:29:af:af:e8:c9:c3:76:4b:e8:ab:47:02:f2:9a:
#         0d:d3:2c:88:80:07:86:c0:63:0f:02:4c:8e:04:53:76:b9:58:
#         42:6f:7c:29:70:5d:bf:27

[p11-kit-object-v1]
label: "DigiCert Trusted Root G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAv+aQc2jeu+RdSjwwIjBp
M+zCpyUuySE98orYWcLhKac9WKt2ms2uexuEDcQwH/MbpDgW61bGl20dq7J58soR
0uRf1gU8Ug9SH8aeFaV+vp+pVxZZVXKvaJNwwrK6dZlqczKU0RBEEC7fgvMHhOZ0
O21x4i0MG+4g1ckgHWMpLc7sXk7Ik/ghYZs06wXGXuxbGrzryc/NrDRAX7F6Zu53
yEioZldXn1RYjgwrt0+nMNlW7sp7XeOtyU9e5TXnMcvak17cjo+A2raRmECQecN4
x7axxLVqGDgDEI3Y1DekLgV9iPWCPhCRcKtVgkEy19sEcypukQF8IUzUvK4bA3Vd
eGbZOjFEmjNAvwjXWkmkwuapoGfdpCe8oU85tRFYF/ckXEaPZPfBaYh2mHY9WV1C
doeJl2l6SPDgohIbZpp0yt5LHucOY67m1O+SkjqePdwA5EUlibaaRBkrfsCUtNJh
besz2cXfSwQAzH0clcOP9yGyshG3u3/y1YxwLEFgqrFjGESVGnZifvaAsPvoZKYz
0YkH4b235kOkGLimdwHhD5QMIR2yVCkliWzlDlJRR3S+Jqy2QXXeeqxfjT/JvNNB
ERJb5RBQ6zHFynIWIgnffEx1P2PsIV/EIFFrb7GrhotPwtZFX50g/KEexcCPorF+
CiaZ9eRpL5gdLfXZqbId5RsCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Trusted Root G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:9b:1b:57:9e:8e:21:32:e2:39:07:bd:a7:77:75:5c
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Trusted Root G4
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Trusted Root G4
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:bf:e6:90:73:68:de:bb:e4:5d:4a:3c:30:22:30:
#                    69:33:ec:c2:a7:25:2e:c9:21:3d:f2:8a:d8:59:c2:
#                    e1:29:a7:3d:58:ab:76:9a:cd:ae:7b:1b:84:0d:c4:
#                    30:1f:f3:1b:a4:38:16:eb:56:c6:97:6d:1d:ab:b2:
#                    79:f2:ca:11:d2:e4:5f:d6:05:3c:52:0f:52:1f:c6:
#                    9e:15:a5:7e:be:9f:a9:57:16:59:55:72:af:68:93:
#                    70:c2:b2:ba:75:99:6a:73:32:94:d1:10:44:10:2e:
#                    df:82:f3:07:84:e6:74:3b:6d:71:e2:2d:0c:1b:ee:
#                    20:d5:c9:20:1d:63:29:2d:ce:ec:5e:4e:c8:93:f8:
#                    21:61:9b:34:eb:05:c6:5e:ec:5b:1a:bc:eb:c9:cf:
#                    cd:ac:34:40:5f:b1:7a:66:ee:77:c8:48:a8:66:57:
#                    57:9f:54:58:8e:0c:2b:b7:4f:a7:30:d9:56:ee:ca:
#                    7b:5d:e3:ad:c9:4f:5e:e5:35:e7:31:cb:da:93:5e:
#                    dc:8e:8f:80:da:b6:91:98:40:90:79:c3:78:c7:b6:
#                    b1:c4:b5:6a:18:38:03:10:8d:d8:d4:37:a4:2e:05:
#                    7d:88:f5:82:3e:10:91:70:ab:55:82:41:32:d7:db:
#                    04:73:2a:6e:91:01:7c:21:4c:d4:bc:ae:1b:03:75:
#                    5d:78:66:d9:3a:31:44:9a:33:40:bf:08:d7:5a:49:
#                    a4:c2:e6:a9:a0:67:dd:a4:27:bc:a1:4f:39:b5:11:
#                    58:17:f7:24:5c:46:8f:64:f7:c1:69:88:76:98:76:
#                    3d:59:5d:42:76:87:89:97:69:7a:48:f0:e0:a2:12:
#                    1b:66:9a:74:ca:de:4b:1e:e7:0e:63:ae:e6:d4:ef:
#                    92:92:3a:9e:3d:dc:00:e4:45:25:89:b6:9a:44:19:
#                    2b:7e:c0:94:b4:d2:61:6d:eb:33:d9:c5:df:4b:04:
#                    00:cc:7d:1c:95:c3:8f:f7:21:b2:b2:11:b7:bb:7f:
#                    f2:d5:8c:70:2c:41:60:aa:b1:63:18:44:95:1a:76:
#                    62:7e:f6:80:b0:fb:e8:64:a6:33:d1:89:07:e1:bd:
#                    b7:e6:43:a4:18:b8:a6:77:01:e1:0f:94:0c:21:1d:
#                    b2:54:29:25:89:6c:e5:0e:52:51:47:74:be:26:ac:
#                    b6:41:75:de:7a:ac:5f:8d:3f:c9:bc:d3:41:11:12:
#                    5b:e5:10:50:eb:31:c5:ca:72:16:22:09:df:7c:4c:
#                    75:3f:63:ec:21:5f:c4:20:51:6b:6f:b1:ab:86:8b:
#                    4f:c2:d6:45:5f:9d:20:fc:a1:1e:c5:c0:8f:a2:b1:
#                    7e:0a:26:99:f5:e4:69:2f:98:1d:2d:f5:d9:a9:b2:
#                    1d:e5:1b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                EC:D7:E3:82:D2:71:5D:64:4C:DF:2E:67:3F:E7:BA:98:AE:1C:0F:4F
#    Signature Algorithm: sha384WithRSAEncryption
#         bb:61:d9:7d:a9:6c:be:17:c4:91:1b:c3:a1:a2:00:8d:e3:64:
#         68:0f:56:cf:77:ae:70:f9:fd:9a:4a:99:b9:c9:78:5c:0c:0c:
#         5f:e4:e6:14:29:56:0b:36:49:5d:44:63:e0:ad:9c:96:18:66:
#         1b:23:0d:3d:79:e9:6d:6b:d6:54:f8:d2:3c:c1:43:40:ae:1d:
#         50:f5:52:fc:90:3b:bb:98:99:69:6b:c7:c1:a7:a8:68:a4:27:
#         dc:9d:f9:27:ae:30:85:b9:f6:67:4d:3a:3e:8f:59:39:22:53:
#         44:eb:c8:5d:03:ca:ed:50:7a:7d:62:21:0a:80:c8:73:66:d1:
#         a0:05:60:5f:e8:a5:b4:a7:af:a8:f7:6d:35:9c:7c:5a:8a:d6:
#         a2:38:99:f3:78:8b:f4:4d:d2:20:0b:de:04:ee:8c:9b:47:81:
#         72:0d:c0:14:32:ef:30:59:2e:ae:e0:71:f2:56:e4:6a:97:6f:
#         92:50:6d:96:8d:68:7a:9a:b2:36:14:7a:06:f2:24:b9:09:11:
#         50:d7:08:b1:b8:89:7a:84:23:61:42:29:e5:a3:cd:a2:20:41:
#         d7:d1:9c:64:d9:ea:26:a1:8b:14:d7:4c:19:b2:50:41:71:3d:
#         3f:4d:70:23:86:0c:4a:dc:81:d2:cc:32:94:84:0d:08:09:97:
#         1c:4f:c0:ee:6b:20:74:30:d2:e0:39:34:10:85:21:15:01:08:
#         e8:55:32:de:71:49:d9:28:17:50:4d:e6:be:4d:d1:75:ac:d0:
#         ca:fb:41:b8:43:a5:aa:d3:c3:05:44:4f:2c:36:9b:e2:fa:e2:
#         45:b8:23:53:6c:06:6f:67:55:7f:46:b5:4c:3f:6e:28:5a:79:
#         26:d2:a4:a8:62:97:d2:1e:e2:ed:4a:8b:bc:1b:fd:47:4a:0d:
#         df:67:66:7e:b2:5b:41:d0:3b:e4:f4:3b:f4:04:63:e9:ef:c2:
#         54:00:51:a0:8a:2a:c9:ce:78:cc:d5:ea:87:04:18:b3:ce:af:
#         49:88:af:f3:92:99:b6:b3:e6:61:0f:d2:85:00:e7:50:1a:e4:
#         1b:95:9d:19:a1:b9:9c:b1:9b:b1:00:1e:ef:d0:0f:4f:42:6c:
#         c9:0a:bc:ee:43:fa:3a:71:a5:c8:4d:26:a5:35:fd:89:5d:bc:
#         85:62:1d:32:d2:a0:2b:54:ed:9a:57:c1:db:fa:10:cf:19:b7:
#         8b:4a:1b:8f:01:b6:27:95:53:e8:b6:89:6d:5b:bc:68:d4:23:
#         e8:8b:51:a2:56:f9:f0:a6:80:a0:d6:1e:b3:bc:0f:0f:53:75:
#         29:aa:ea:13:77:e4:de:8c:81:21:ad:07:10:47:11:ad:87:3d:
#         07:d1:75:bc:cf:f3:66:7e

[p11-kit-object-v1]
label: "DigiNotar Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArLBYwQC92CEICyua/m5W
MAWfG3eQEEFcww2HEXeOgfHKfOmMau04dDW72t/5u8AJN7SWc4F9MxqYOfeTb5V/
PbmxdYe6UUjoi3A+lQTF2LbDFtmIsLGHHXDahrQPFIt6zxDRdDaiEnt3hkp55nvf
AhFopU6GrjRYmyQTeFYiJR4Bi0tRcfuCzFmWaYhaaFPFuQ0CN8tLvGZKkH4qCwUH
7RZfVZB12EbJG4PiCL7xI8yZHdYqD4MgFVgngi764iLCSbG5AYFqnW2dQHdodk4h
Km2EQIVOdpl8gvPztwJZ1CYBG47frVMG0a4Y3eKyOsvXiDiOrFspuRnTmPkYA89I
goZmCxtpD8nrOIh6JhoFTJLXJNSW8qxSLaNH1VL2P/7OhAZwpqo+ovK2VjQYV6Lk
gW3nyvBq08eRawKDQXwV72uaZF7j0Dzlset7XYb7y+Z3Sc2jZdz3uZy45Atfk8/M
MBoyHM4cY5Wl+erhdIue6SupMHugGB8OGAvlW6nT0WweB2ePkUupirzSZqqTAYiy
kfoxXNWmwVIICc0KY6LTIqboodk5Bpf1bo0CkIwUez+AzRucusRYciOvtlafxnpC
MykHP4LJ5h8FDc1MKDaL08g+HMaI717uiWTpHevaiX4ypmnR3cyIn9HQyWYh3AZn
xZR6mm1iTH3M4GSAsp5HjqMCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiNotar Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0c:76:da:9c:91:0c:4e:2c:9e:fe:15:d0:58:93:3c:4c
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = NL, O = DigiNotar, CN = DigiNotar Root CA, emailAddress = info@diginotar.nl
#        Validity
#            Not Before: May 16 17:19:36 2007 GMT
#            Not After : Mar 31 18:19:21 2025 GMT
#        Subject: C = NL, O = DigiNotar, CN = DigiNotar Root CA, emailAddress = info@diginotar.nl
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ac:b0:58:c1:00:bd:d8:21:08:0b:2b:9a:fe:6e:
#                    56:30:05:9f:1b:77:90:10:41:5c:c3:0d:87:11:77:
#                    8e:81:f1:ca:7c:e9:8c:6a:ed:38:74:35:bb:da:df:
#                    f9:bb:c0:09:37:b4:96:73:81:7d:33:1a:98:39:f7:
#                    93:6f:95:7f:3d:b9:b1:75:87:ba:51:48:e8:8b:70:
#                    3e:95:04:c5:d8:b6:c3:16:d9:88:b0:b1:87:1d:70:
#                    da:86:b4:0f:14:8b:7a:cf:10:d1:74:36:a2:12:7b:
#                    77:86:4a:79:e6:7b:df:02:11:68:a5:4e:86:ae:34:
#                    58:9b:24:13:78:56:22:25:1e:01:8b:4b:51:71:fb:
#                    82:cc:59:96:69:88:5a:68:53:c5:b9:0d:02:37:cb:
#                    4b:bc:66:4a:90:7e:2a:0b:05:07:ed:16:5f:55:90:
#                    75:d8:46:c9:1b:83:e2:08:be:f1:23:cc:99:1d:d6:
#                    2a:0f:83:20:15:58:27:82:2e:fa:e2:22:c2:49:b1:
#                    b9:01:81:6a:9d:6d:9d:40:77:68:76:4e:21:2a:6d:
#                    84:40:85:4e:76:99:7c:82:f3:f3:b7:02:59:d4:26:
#                    01:1b:8e:df:ad:53:06:d1:ae:18:dd:e2:b2:3a:cb:
#                    d7:88:38:8e:ac:5b:29:b9:19:d3:98:f9:18:03:cf:
#                    48:82:86:66:0b:1b:69:0f:c9:eb:38:88:7a:26:1a:
#                    05:4c:92:d7:24:d4:96:f2:ac:52:2d:a3:47:d5:52:
#                    f6:3f:fe:ce:84:06:70:a6:aa:3e:a2:f2:b6:56:34:
#                    18:57:a2:e4:81:6d:e7:ca:f0:6a:d3:c7:91:6b:02:
#                    83:41:7c:15:ef:6b:9a:64:5e:e3:d0:3c:e5:b1:eb:
#                    7b:5d:86:fb:cb:e6:77:49:cd:a3:65:dc:f7:b9:9c:
#                    b8:e4:0b:5f:93:cf:cc:30:1a:32:1c:ce:1c:63:95:
#                    a5:f9:ea:e1:74:8b:9e:e9:2b:a9:30:7b:a0:18:1f:
#                    0e:18:0b:e5:5b:a9:d3:d1:6c:1e:07:67:8f:91:4b:
#                    a9:8a:bc:d2:66:aa:93:01:88:b2:91:fa:31:5c:d5:
#                    a6:c1:52:08:09:cd:0a:63:a2:d3:22:a6:e8:a1:d9:
#                    39:06:97:f5:6e:8d:02:90:8c:14:7b:3f:80:cd:1b:
#                    9c:ba:c4:58:72:23:af:b6:56:9f:c6:7a:42:33:29:
#                    07:3f:82:c9:e6:1f:05:0d:cd:4c:28:36:8b:d3:c8:
#                    3e:1c:c6:88:ef:5e:ee:89:64:e9:1d:eb:da:89:7e:
#                    32:a6:69:d1:dd:cc:88:9f:d1:d0:c9:66:21:dc:06:
#                    67:c5:94:7a:9a:6d:62:4c:7d:cc:e0:64:80:b2:9e:
#                    47:8e:a3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                88:68:BF:E0:8E:35:C4:3B:38:6B:62:F7:28:3B:84:81:C8:0C:D7:4D
#    Signature Algorithm: sha1WithRSAEncryption
#         3b:02:8d:cb:3c:30:e8:6e:a0:ad:f2:73:b3:5f:9e:25:13:04:
#         05:d3:f6:e3:8b:bb:0b:79:ce:53:de:e4:96:c5:d1:af:73:bc:
#         d5:c3:d0:40:55:7c:40:7f:cd:1b:5f:09:d5:f2:7c:9f:68:1d:
#         bb:5d:ce:7a:39:c2:8c:d6:98:7b:c5:83:55:a8:d5:7d:40:ca:
#         e0:1e:f7:89:5e:63:5d:a1:13:c2:5d:8a:b6:8a:7c:00:f3:23:
#         c3:ed:85:5f:71:76:f0:68:63:aa:45:21:39:48:61:78:36:dc:
#         f1:43:93:d4:25:c7:f2:80:65:e1:53:02:75:51:fc:7a:3a:ef:
#         37:ab:84:28:57:0c:d8:d4:d4:99:56:6c:e3:a2:fe:59:84:b4:
#         31:e8:33:f8:64:94:94:51:97:ab:39:c5:4b:ed:da:dd:80:0b:
#         6f:7c:29:0d:c4:8e:8a:72:0d:e7:53:14:b2:60:41:3d:84:91:
#         31:68:3d:27:44:db:e5:de:f4:fa:63:45:c8:4c:3e:98:f5:3f:
#         41:ba:4e:cb:37:0d:ba:66:98:f1:dd:cb:9f:5c:f7:54:36:82:
#         6b:2c:bc:13:61:97:42:f8:78:bb:cc:c8:a2:9f:ca:f0:68:bd:
#         6b:1d:b2:df:8d:6f:07:9d:da:8e:67:c7:47:1e:ca:b9:bf:2a:
#         42:91:b7:63:53:66:f1:42:a3:e1:f4:5a:4d:58:6b:b5:e4:a4:
#         33:ad:5c:70:1d:dc:e0:f2:eb:73:14:91:9a:03:c1:ea:00:65:
#         bc:07:fc:cf:12:11:22:2c:ae:a0:bd:3a:e0:a2:2a:d8:59:e9:
#         29:d3:18:35:a4:ac:11:5f:19:b5:b5:1b:ff:22:4a:5c:c6:7a:
#         e4:17:ef:20:a9:a7:f4:3f:ad:8a:a7:9a:04:25:9d:0e:ca:37:
#         e6:50:fd:8c:42:29:04:9a:ec:b9:cf:4b:72:bd:e2:08:36:af:
#         23:2f:62:e5:ca:01:d3:70:db:7c:82:23:2c:16:31:0c:c6:36:
#         07:90:7a:b1:1f:67:58:c4:3b:58:59:89:b0:8c:8c:50:b3:d8:
#         86:cb:68:a3:c4:0a:e7:69:4b:20:ce:c1:1e:56:4b:95:a9:23:
#         68:d8:30:d8:c3:eb:b0:55:51:cd:e5:fd:2b:b8:f5:bb:11:9f:
#         53:54:f6:34:19:8c:79:09:36:ca:61:17:25:17:0b:82:98:73:
#         0c:77:74:c3:d5:0d:c7:a8:12:4c:c7:a7:54:71:47:2e:2c:1a:
#         7d:c9:e3:2b:3b:48:de:27:84:a7:63:36:b3:7d:8f:a0:64:39:
#         24:0d:3d:7b:87:af:66:5c:74:1b:4b:73:b2:e5:8c:f0:86:99:
#         b8:e5:c5:df:84:c1:b7:eb

[p11-kit-object-v1]
label: "DigiNotar Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiNotar Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:82:bd:1e:14:4e:88:14:d7:5b:1a:55:27:be:bf:3e
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NL, O = DigiNotar, CN = DigiNotar Root CA G2, emailAddress = info@diginotar.nl
#        Validity
#            Not Before: Jul  3 13:59:02 2009 GMT
#            Not After : Jul  3 13:59:02 2029 GMT
#        Subject: C = NL, O = DigiNotar, CN = DigiNotar Root CA G2, emailAddress = info@diginotar.nl
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:bf:ae:10:01:fb:4c:3e:b6:ac:03:f5:98:cf:23:
#                    92:28:a4:13:3d:1a:da:a0:4f:8b:65:e5:2e:e4:e0:
#                    a6:8e:38:75:3b:e5:b3:58:15:dc:32:65:fe:7e:76:
#                    18:05:d9:82:a9:b6:a1:f6:fd:c4:bb:6b:6c:7b:24:
#                    b4:81:f5:2c:3d:87:a9:c0:43:d7:dc:38:2c:e0:4d:
#                    12:84:17:bc:0d:4c:d3:71:4b:33:b8:42:04:31:71:
#                    c7:24:1e:45:17:d0:fc:69:2a:5a:21:95:8d:04:87:
#                    8c:c0:77:13:62:8d:bd:e4:c8:8f:8a:10:15:7d:75:
#                    c5:a0:76:65:b0:8e:01:36:0e:88:09:7c:a0:a3:39:
#                    25:ab:68:92:ad:e6:34:79:ef:94:17:d2:6b:2f:20:
#                    30:05:a9:91:39:ac:0c:5c:01:c7:a5:72:b0:8f:0f:
#                    18:8d:a2:39:da:dc:34:94:44:a5:90:40:45:b8:ee:
#                    e7:e4:6b:f4:69:37:d8:d5:a2:80:2f:d5:f9:f6:4d:
#                    26:eb:53:a0:a1:85:5f:d0:bd:ca:2d:1c:26:ae:70:
#                    98:3d:1a:bc:71:63:23:99:43:89:ae:3c:3b:59:67:
#                    53:36:36:42:0d:e1:65:10:08:9a:53:b9:e8:7e:e1:
#                    b0:ba:23:da:9b:22:47:2d:b3:5b:7d:c4:7f:02:fa:
#                    32:4e:16:fe:fa:8a:ab:59:1a:b6:62:3a:bd:c8:a0:
#                    5b:af:e3:93:b9:5c:86:b4:8d:e7:20:0b:6e:04:04:
#                    fd:d2:a5:a6:ee:fd:b4:29:19:21:ef:42:91:23:84:
#                    4a:2b:fa:0e:4a:34:cd:b0:b0:95:7a:04:0d:a8:30:
#                    5e:3d:20:7b:3f:6a:03:45:db:05:05:94:90:c7:d6:
#                    4e:66:84:02:3b:80:cc:df:e2:87:6c:64:d2:70:5f:
#                    4f:70:bb:6c:43:18:1a:e9:6c:e0:80:56:c5:c5:e6:
#                    00:ad:df:4d:ed:51:8d:c6:ea:09:f1:09:0a:a2:da:
#                    53:47:4f:9b:98:d3:e0:c9:be:d8:87:5c:a5:53:a3:
#                    8d:ab:d3:bc:2e:0b:7a:bf:46:11:63:a4:58:15:aa:
#                    1c:6e:fe:49:06:53:02:4a:f3:d3:f2:41:cd:57:5f:
#                    95:25:b8:e1:87:f3:60:97:7f:ec:21:89:ca:d3:76:
#                    6c:dd:51:91:46:33:40:d8:48:94:2d:ea:05:72:bb:
#                    b4:1c:a1:54:b7:c7:e6:e9:4a:7e:2b:b2:d7:21:19:
#                    5f:00:e4:9a:5c:8d:a1:38:af:39:2a:ec:60:35:48:
#                    58:2f:79:a2:ca:4c:2a:e4:7e:a8:11:88:51:ed:bf:
#                    0f:3b:6e:05:b1:80:47:39:e4:67:e2:87:61:c4:8e:
#                    ac:87:c9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                29:0D:DB:3F:07:52:E5:0B:D4:21:68:2E:24:4A:DE:5B:5A:96:F2:21
#    Signature Algorithm: sha256WithRSAEncryption
#         22:ef:ee:c0:53:e3:a4:65:e3:cf:20:ae:13:e2:a2:de:d7:37:
#         2b:54:0f:0e:9b:8d:5f:98:e7:69:2a:1e:3b:a5:b5:59:bc:ac:
#         7e:6a:e6:96:30:de:97:01:fd:74:f6:5f:25:00:f7:a3:63:8a:
#         b4:b1:0d:c2:19:18:03:ce:e5:30:21:12:91:30:71:e2:91:8b:
#         f3:dc:6b:c3:05:ad:cc:2d:62:98:36:27:5d:a3:e0:15:9b:82:
#         3d:1a:68:75:95:dd:7a:68:2a:0f:22:69:36:33:b7:6b:a2:28:
#         86:50:91:55:11:5a:12:00:8c:9d:51:dc:e0:b2:56:bd:50:45:
#         74:ff:94:7b:d1:d7:f0:3b:e4:4d:e1:44:e9:df:6b:84:e2:22:
#         4c:95:78:b4:94:cc:57:09:9e:21:87:ac:96:a1:13:1b:0b:c5:
#         99:67:5c:1d:f1:15:b5:34:dc:bc:f8:1e:ec:ab:3f:94:27:b2:
#         89:99:fc:d5:58:3e:a5:a4:06:d3:43:f9:1c:36:0d:8f:02:10:
#         5c:f5:05:00:77:fa:a7:ec:99:56:ce:98:05:f8:72:a6:b9:05:
#         1b:23:0e:0e:40:67:b5:79:4a:64:3b:81:b5:a1:8a:11:5b:9f:
#         87:19:7c:f0:94:4e:33:a3:51:10:d5:bb:bd:51:8b:68:18:07:
#         ae:1a:57:ff:44:1b:c7:df:5b:d3:b3:cd:f9:b0:6f:4d:c2:cb:
#         82:e5:8b:6e:29:d0:59:81:9c:6c:4e:fd:7b:10:d7:76:10:9f:
#         2c:45:81:fe:5d:70:ac:bc:80:cb:f2:21:c2:c3:62:22:db:18:
#         4e:10:8f:45:b0:1b:9a:22:23:a4:d4:1c:f7:6a:a2:33:df:f9:
#         cc:05:a8:55:e8:bd:97:85:a8:de:b3:65:dd:4e:04:12:78:9d:
#         e9:ca:93:36:2a:01:4a:7c:cd:e0:10:c3:94:48:90:a1:9d:87:
#         e8:75:d4:20:cf:87:11:35:ea:f0:c0:77:27:c2:52:f6:2d:6f:
#         87:99:27:b5:f9:80:fe:ee:46:aa:ff:f6:3d:c5:bf:60:aa:34:
#         61:35:2b:f3:02:01:8a:4a:9c:0a:22:61:fe:99:0b:05:59:f2:
#         84:85:aa:ac:90:37:1f:f7:9f:14:e8:d3:7e:bd:04:46:3f:6d:
#         f6:e0:dc:42:4e:81:fc:5d:e0:9a:56:71:98:62:4f:e3:5e:fc:
#         79:f9:cb:cc:c5:b8:5c:05:31:c8:62:f6:a9:6f:ff:6b:e3:f0:
#         76:d3:ea:be:e7:41:01:f7:0c:a7:44:53:29:e0:dd:ef:d9:6b:
#         2c:58:c8:d7:98:e2:1d:e4:29:b3:8b:e5:6c:76:c9:63:83:6d:
#         1a:79:6e:73:4c:e0:c0:cb

[p11-kit-object-v1]
label: "Digidentity L3 Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Digidentity L3 Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NL, O = Digidentity B.V., CN = Digidentity L3 Root CA - G2
#        Validity
#            Not Before: Apr 29 10:44:19 2011 GMT
#            Not After : Nov 10 10:44:19 2031 GMT
#        Subject: C = NL, O = Digidentity B.V., CN = Digidentity L3 Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b8:11:a3:45:de:01:47:56:0d:62:b8:8e:ba:58:
#                    66:5c:fa:32:c6:6b:80:6e:b8:7f:f8:53:df:7e:df:
#                    62:a8:c1:57:4f:9a:45:25:c8:4a:45:2d:53:38:24:
#                    b3:20:ac:4f:ea:ad:ff:9a:10:af:7f:e2:0e:ca:b4:
#                    0e:24:25:91:ce:76:8e:10:a9:2f:99:53:a7:90:4b:
#                    04:8b:6d:7a:b9:41:1b:d3:01:79:8c:9f:41:6b:b9:
#                    90:d7:81:12:1a:07:96:d0:09:af:e9:e4:6a:21:53:
#                    80:b8:86:9e:62:68:43:ad:b3:6a:15:fa:f6:6d:03:
#                    32:6a:35:b1:50:13:48:c7:7a:b5:21:13:9c:04:9c:
#                    da:93:f9:6a:2b:c1:a7:18:fd:f6:c0:7e:59:f6:fb:
#                    e7:0e:11:b5:dc:23:ea:1c:ef:67:05:57:ce:17:e9:
#                    f1:7b:b1:d1:32:24:8c:cf:65:e7:d4:bc:36:19:70:
#                    7c:a2:27:21:d6:80:d2:2d:15:4f:4a:b5:e0:55:90:
#                    95:51:93:21:80:f3:9c:44:1f:ff:1d:55:55:e4:e2:
#                    10:11:94:16:53:d0:fe:af:f3:ef:97:ba:46:e2:77:
#                    5b:cb:d6:a2:59:11:88:a6:e7:55:41:c3:92:65:1d:
#                    23:14:62:14:7f:25:72:20:f6:a4:87:29:6f:07:fc:
#                    fe:e0:d0:18:d2:97:f9:14:8e:36:c6:e8:0c:18:97:
#                    f1:76:1c:f4:24:da:e3:4a:f9:b7:4c:12:19:67:f3:
#                    f0:e1:53:fb:5d:e4:c0:74:63:5f:25:91:0a:d9:3e:
#                    f4:33:ac:e4:0b:75:5f:ce:e6:98:bc:54:0d:9d:a2:
#                    31:c5:15:54:5d:22:1c:8b:3a:54:a6:0d:d1:d7:23:
#                    3a:ac:3e:aa:4a:17:64:76:2d:0d:fb:54:e5:eb:82:
#                    3c:39:41:43:9d:e1:ae:79:60:cf:66:ee:c7:71:83:
#                    7b:0c:6b:09:db:9e:a2:4d:4e:46:93:68:b7:fa:67:
#                    e1:da:bf:df:91:80:da:a3:a2:89:ad:5e:6c:cc:4b:
#                    77:75:64:6f:8d:24:e3:88:88:0b:e3:3f:e9:bf:a7:
#                    e5:56:62:0d:83:7f:bd:6a:61:c8:90:89:78:5b:0c:
#                    af:12:2a:e2:93:ad:64:e7:d9:45:2e:f6:b0:c8:ab:
#                    45:ee:70:38:6f:bb:35:3e:16:fe:ab:9e:c3:66:2f:
#                    f3:be:09:60:d5:6f:80:bd:4d:db:af:8d:fe:0c:60:
#                    33:6b:0f:e8:9d:6b:c4:30:77:9f:2c:50:38:d0:98:
#                    69:ec:37:e8:9e:0f:e4:62:ea:fa:ff:11:44:54:d9:
#                    ef:cd:93:75:91:4c:e1:89:65:a6:94:b9:53:f9:f9:
#                    49:63:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                2B:23:20:60:BD:2D:8A:88:47:AC:AD:2B:BE:02:39:BA:98:D4:EC:98
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://pki.digidentity.eu/validatie
#
#    Signature Algorithm: sha256WithRSAEncryption
#         a9:fd:ef:ba:8f:1b:7e:32:12:67:1d:41:0d:2d:a6:8b:cf:f2:
#         f4:ad:56:78:7e:0a:98:d8:9b:a8:d1:b4:4b:2c:26:ac:e4:d2:
#         7f:67:37:bd:09:8d:e5:b9:73:11:3a:6e:09:c7:57:64:07:21:
#         34:f8:0e:5d:2a:d8:91:7c:f1:54:51:bc:9c:f0:0c:6a:42:f4:
#         3c:01:4e:93:45:41:3d:ac:f3:98:4b:1e:71:1e:33:59:32:ff:
#         7c:30:f0:5c:e4:e1:be:2d:2e:b5:ea:dd:62:21:0e:3d:b4:0d:
#         95:fc:c9:b8:d9:ba:a0:f7:62:a7:ed:c3:03:ae:08:2c:41:d5:
#         ef:43:71:38:b7:14:72:ae:3f:f4:14:74:47:d8:de:8c:51:79:
#         ce:ef:b1:54:ac:70:47:96:7e:2d:2e:dd:9b:ee:a1:01:2e:19:
#         ef:be:58:60:71:2d:ad:97:5b:5a:60:30:cb:32:82:62:4e:56:
#         e5:67:6a:b4:d2:31:54:72:3f:02:d0:bc:30:39:8f:b7:43:09:
#         2a:1f:26:3b:0c:c7:7c:1d:9b:80:60:84:0e:e9:2e:d2:f9:15:
#         bb:5b:e0:8a:a4:00:e9:e3:29:fb:28:5b:bd:36:45:60:21:43:
#         31:ff:70:a1:5f:5c:83:5b:97:7c:0d:b7:53:59:ec:98:b5:4e:
#         e2:29:b1:d4:7c:46:e3:e8:e3:43:ea:3a:96:35:1f:53:f1:04:
#         16:25:e3:2c:f3:68:a1:a6:91:df:15:fb:bd:9f:e6:4e:9e:c2:
#         54:6b:7e:22:57:e3:a4:9c:5c:22:25:1f:81:af:99:c8:df:11:
#         15:48:43:f8:b3:33:a9:23:7f:0e:33:8f:bc:46:1d:43:b4:3b:
#         60:f5:97:85:19:a2:16:b0:55:dc:1a:70:29:65:da:d9:7e:09:
#         17:34:eb:89:ba:e9:61:92:d8:de:34:63:3c:4a:55:6a:bf:da:
#         86:ed:ce:33:de:bb:53:6f:cf:1c:da:94:4f:76:54:ac:65:55:
#         10:53:9a:c8:b8:6b:dc:06:e6:ba:e5:51:d5:41:7f:1f:c4:c0:
#         41:a1:60:91:34:f3:13:82:d1:a1:77:d3:f7:4c:e4:19:ff:d7:
#         44:9a:b0:b5:bc:dc:ca:5e:8f:dc:ce:f1:a0:69:36:e0:44:92:
#         2e:99:fa:bc:af:b3:c7:78:3a:55:66:c7:6b:a5:e4:69:26:e9:
#         34:1d:1f:2a:97:0a:e9:77:a9:77:5b:73:48:32:81:bf:ff:d1:
#         ec:83:c5:70:83:69:9e:98:1b:c3:57:df:91:95:1c:80:fc:8d:
#         e8:96:83:05:d3:9f:7a:88:7b:fa:e8:57:f1:c1:84:28:bd:cd:
#         d6:1c:cc:a5:e2:49:0a:73

[p11-kit-object-v1]
label: "E-ME SSI (RCA)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "E-ME SSI (RCA)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2e:ef:db:fb:d8:89:3d:8f:49:1c:93:72:fe:45:df:ed
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = LV, OU = Sertifikacijas pakalpojumu dala, CN = E-ME SSI (RCA)
#        Validity
#            Not Before: May 19 08:45:56 2009 GMT
#            Not After : May 19 08:48:15 2027 GMT
#        Subject: C = LV, OU = Sertifikacijas pakalpojumu dala, CN = E-ME SSI (RCA)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:04:6b:00:c3:b0:e0:2e:3b:e8:53:05:05:08:
#                    be:c8:84:27:55:d6:1d:8a:12:e2:17:22:5a:6c:ff:
#                    b3:dd:b6:99:c3:ca:c1:ea:f9:d8:25:b5:df:3a:9d:
#                    9d:3f:52:c5:e9:f2:ac:bf:89:74:8a:54:ae:4e:cf:
#                    6e:f2:5e:ae:da:bd:12:07:99:95:cf:64:ab:fe:99:
#                    91:64:59:8c:c9:be:44:6a:31:9b:98:ea:ba:ea:d1:
#                    21:0e:28:0b:39:9b:e3:d6:8a:a6:f7:02:ba:3f:3d:
#                    d9:59:f4:79:99:de:d3:24:9b:8b:70:1b:2a:84:d6:
#                    e5:09:0f:26:26:24:58:8f:25:5e:f3:c5:9d:74:89:
#                    a5:36:c5:e5:52:b2:eb:e8:86:93:47:6e:a7:29:87:
#                    a4:7e:dc:b4:a3:cb:32:56:f7:45:80:da:5c:c7:2f:
#                    a0:a7:d7:ef:f5:fc:b5:a8:cd:84:95:62:f8:a9:2b:
#                    23:3b:6d:d3:b7:92:c8:ea:c1:bc:14:4d:e8:6b:9c:
#                    16:7a:d3:ec:07:fb:07:25:10:4f:14:87:7b:92:36:
#                    ce:56:82:65:4b:13:26:06:d8:a3:a3:a6:df:c2:7a:
#                    fb:7b:35:05:a2:13:3d:3e:76:bc:1c:57:83:03:51:
#                    c7:34:de:5a:f5:3c:bd:36:25:9c:16:0f:4d:ce:e8:
#                    0d:1a:cb:5d:43:a2:14:6f:ba:7c:60:d4:02:85:76:
#                    c5:6b:2a:b8:45:b1:5c:77:47:11:ad:a0:25:a9:66:
#                    91:8c:51:17:6d:61:55:0a:19:3f:9b:02:ff:c4:f5:
#                    d6:d2:b3:e9:25:53:e1:04:3d:8f:22:d0:a2:65:e5:
#                    ae:a7:b4:e0:1d:91:6a:c2:86:92:f7:3a:5d:13:a7:
#                    7a:4c:42:df:5a:b3:4a:88:44:2c:ef:47:ba:a9:af:
#                    d6:cf:62:73:8a:06:22:16:2c:c2:ec:1f:06:a8:d3:
#                    47:50:59:32:12:e5:b9:9d:62:35:9e:ca:5e:0a:b4:
#                    9d:23:88:c2:d3:4f:2c:2c:c9:93:e8:7e:b8:09:ec:
#                    a6:d9:dd:63:e1:c9:a8:6a:68:dc:84:51:ac:5a:12:
#                    e7:3b:a6:b5:07:0a:b1:aa:4e:b3:b4:a2:57:df:37:
#                    6c:16:4e:ab:99:32:7a:f0:9c:23:25:8b:ca:9a:a8:
#                    8c:e0:38:21:b4:ce:f7:6c:61:c8:e2:0c:12:59:06:
#                    81:26:36:5a:0f:35:73:d4:16:45:fd:de:95:de:d6:
#                    4b:5c:9f:73:d9:be:19:bd:e7:bf:e4:55:6a:c8:6b:
#                    44:f7:c7:b8:33:88:79:19:0d:06:64:e8:af:0b:a1:
#                    75:0c:52:65:ba:0a:23:95:71:f7:63:fc:7e:e5:8c:
#                    8f:cc:d1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            qcStatements: 
#                0
#0......F..
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                3B:26:03:BA:CF:E3:59:46:42:50:AD:14:9C:BF:03:3B:EF:D6:3E:31
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.32061.1.1.1
#                  CPS: http://www.eme.lv/repository
#
#    Signature Algorithm: sha1WithRSAEncryption
#         85:e6:a6:94:e4:d9:46:5f:9d:bf:93:bb:f9:6b:76:64:28:ae:
#         bf:3c:45:2a:8a:93:79:6c:d3:4b:88:86:20:6b:22:26:38:3d:
#         1c:13:aa:eb:61:97:6c:2e:3e:57:9c:6c:43:a2:de:6d:40:c4:
#         31:f2:6d:ba:46:16:b3:2d:c6:bb:a6:dc:e5:2f:b1:d8:c1:d5:
#         91:1e:11:7f:fb:5f:a1:dc:1d:61:f8:6d:9b:61:f0:e2:3f:2b:
#         71:d5:0d:cb:de:df:65:3f:a0:6f:95:9b:7a:cb:db:35:37:29:
#         5d:5e:9d:b9:54:b1:ac:60:12:e5:63:d9:cd:af:52:1b:05:96:
#         13:7c:da:24:75:01:ad:d4:9e:a5:cb:c1:12:45:4f:57:af:23:
#         bf:29:bc:ea:8e:ad:78:f8:87:23:e8:48:cb:40:a8:be:5d:33:
#         d6:ec:c6:06:43:c2:67:2a:e8:e3:85:2e:60:9e:44:2f:2b:4f:
#         31:b1:07:9d:95:21:d5:2a:92:af:80:91:d3:c7:29:bd:cd:f1:
#         15:0c:9f:01:ee:f8:2d:3b:a4:07:70:49:79:24:ed:bc:a1:d3:
#         96:51:82:9f:c2:c8:bc:de:23:9a:c7:50:2b:9a:b6:78:52:aa:
#         ce:95:f6:60:3b:a2:99:f9:26:66:f4:47:2c:41:25:bc:41:fa:
#         d6:8b:7f:bd:5f:82:7c:d3:45:85:b4:4c:d8:ec:b3:17:ef:44:
#         3a:f5:28:65:ef:f5:9e:71:cc:21:de:e8:d6:51:1c:10:fb:40:
#         fc:49:e5:5c:84:17:af:aa:19:5e:a2:ed:4e:1e:a2:fb:ca:47:
#         1c:1c:64:3e:14:91:a2:39:19:34:88:7f:91:cb:3b:9d:19:70:
#         ea:28:fb:fc:50:0f:cc:bd:3d:5e:02:03:6b:79:35:44:41:76:
#         ee:b6:2d:74:84:e1:82:71:d3:25:b0:d3:c3:99:44:ab:3f:e2:
#         0c:a5:ee:bd:a6:fc:a4:11:00:ee:9c:bd:37:d1:d6:62:c4:30:
#         14:2d:10:0a:97:8a:88:f5:25:3c:96:be:46:40:1a:8a:c0:85:
#         76:c4:a0:49:e0:49:a5:e7:19:b5:09:f3:cc:4d:ed:16:5e:9a:
#         d4:d3:c8:69:d0:d8:8a:37:85:6b:4e:e4:aa:07:92:5c:d4:71:
#         71:81:48:d3:78:f5:56:60:fe:cc:02:d4:00:93:1f:4c:92:40:
#         97:be:72:53:79:2e:26:52:be:a6:a3:74:b1:94:d9:14:63:3a:
#         6e:5b:d1:3c:92:27:52:90:32:5a:92:d2:0f:4e:5b:0b:06:3a:
#         62:e5:d6:27:0c:01:f6:25:02:b8:8b:10:29:42:a9:f7:69:ca:
#         dc:eb:0a:92:4b:28:31:86

[p11-kit-object-v1]
label: "E-Tugra Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "E-Tugra Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 7667447206703254355 (0x6a683e9c519bcb53)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TR, L = Ankara, O = E-Tu\C4\9Fra EBG Bili\C5\9Fim Teknolojileri ve Hizmetleri A.\C5\9E., OU = E-Tugra Sertifikasyon Merkezi, CN = E-Tugra Certification Authority
#        Validity
#            Not Before: Mar  5 12:09:48 2013 GMT
#            Not After : Mar  3 12:09:48 2023 GMT
#        Subject: C = TR, L = Ankara, O = E-Tu\C4\9Fra EBG Bili\C5\9Fim Teknolojileri ve Hizmetleri A.\C5\9E., OU = E-Tugra Sertifikasyon Merkezi, CN = E-Tugra Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:e2:f5:3f:93:05:51:1e:85:62:54:5e:7a:0b:f5:
#                    18:07:83:ae:7e:af:7c:f7:d4:8a:6b:a5:63:43:39:
#                    b9:4b:f7:c3:c6:64:89:3d:94:2e:54:80:52:39:39:
#                    07:4b:4b:dd:85:07:76:87:cc:bf:2f:95:4c:cc:7d:
#                    a7:3d:bc:47:0f:98:70:f8:8c:85:1e:74:8e:92:6d:
#                    1b:40:d1:99:0d:bb:75:6e:c8:a9:6b:9a:c0:84:31:
#                    af:ca:43:cb:eb:2b:34:e8:8f:97:6b:01:9b:d5:0e:
#                    4a:08:aa:5b:92:74:85:43:d3:80:ae:a1:88:5b:ae:
#                    b3:ea:5e:cb:16:9a:77:44:c8:a1:f6:54:68:ce:de:
#                    8f:97:2b:ba:5b:40:02:0c:64:17:c0:b5:93:cd:e1:
#                    f1:13:66:ce:0c:79:ef:d1:91:28:ab:5f:a0:12:52:
#                    30:73:19:8e:8f:e1:8c:07:a2:c3:bb:4a:f0:ea:1f:
#                    15:a8:ee:25:cc:a4:46:f8:1b:22:ef:b3:0e:43:ba:
#                    2c:24:b8:c5:2c:5c:d4:1c:f8:5d:64:bd:c3:93:5e:
#                    28:a7:3f:27:f1:8e:1e:d3:2a:50:05:a3:55:d9:cb:
#                    e7:39:53:c0:98:9e:8c:54:62:8b:26:b0:f7:7d:8d:
#                    7c:e4:c6:9e:66:42:55:82:47:e7:b2:58:8d:66:f7:
#                    07:7c:2e:36:e6:50:1c:3f:db:43:24:c5:bf:86:47:
#                    79:b3:79:1c:f7:5a:f4:13:ec:6c:f8:3f:e2:59:1f:
#                    95:ee:42:3e:b9:ad:a8:32:85:49:97:46:fe:4b:31:
#                    8f:5a:cb:ad:74:47:1f:e9:91:b7:df:28:04:22:a0:
#                    d4:0f:5d:e2:79:4f:ea:6c:85:86:bd:a8:a6:ce:e4:
#                    fa:c3:e1:b3:ae:de:3c:51:ee:cb:13:7c:01:7f:84:
#                    0e:5d:51:94:9e:13:0c:b6:2e:a5:4c:f9:39:70:36:
#                    6f:96:ca:2e:0c:44:55:c5:ca:fa:5d:02:a3:df:d6:
#                    64:8c:5a:b3:01:0a:a9:b5:0a:47:17:ff:ef:91:40:
#                    2a:8e:a1:46:3a:31:98:e5:11:fc:cc:bb:49:56:8a:
#                    fc:b9:d0:61:9a:6f:65:6c:e6:c3:cb:3e:75:49:fe:
#                    8f:a7:e2:89:c5:67:d7:9d:46:13:4e:31:76:3b:24:
#                    b3:9e:11:65:86:ab:7f:ef:1d:d4:f8:bc:e7:ac:5a:
#                    5c:b7:5a:47:5c:55:ce:55:b4:22:71:5b:5b:0b:f0:
#                    cf:dc:a0:61:64:ea:a9:d7:68:0a:63:a7:e0:0d:3f:
#                    a0:af:d3:aa:d2:7e:ef:51:a0:e6:51:2b:55:92:15:
#                    17:53:cb:b7:66:0e:66:4c:f8:f9:75:4c:90:e7:12:
#                    70:c7:45
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                2E:E3:DB:B2:49:D0:9C:54:79:5C:FA:27:2A:FE:CC:4E:D2:E8:4E:54
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:2E:E3:DB:B2:49:D0:9C:54:79:5C:FA:27:2A:FE:CC:4E:D2:E8:4E:54
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         05:37:3a:f4:4d:b7:45:e2:45:75:24:8f:b6:77:52:e8:1c:d8:
#         10:93:65:f3:f2:59:06:a4:3e:1e:29:ec:5d:d1:d0:ab:7c:e0:
#         0a:90:48:78:ed:4e:98:03:99:fe:28:60:91:1d:30:1d:b8:63:
#         7c:a8:e6:35:b5:fa:d3:61:76:e6:d6:07:4b:ca:69:9a:b2:84:
#         7a:77:93:45:17:15:9f:24:d0:98:13:12:ff:bb:a0:2e:fd:4e:
#         4c:87:f8:ce:5c:aa:98:1b:05:e0:00:46:4a:82:80:a5:33:8b:
#         28:dc:ed:38:d3:df:e5:3e:e9:fe:fb:59:dd:61:84:4f:d2:54:
#         96:13:61:13:3e:8f:80:69:be:93:47:b5:35:43:d2:5a:bb:3d:
#         5c:ef:b3:42:47:cd:3b:55:13:06:b0:09:db:fd:63:f6:3a:88:
#         0a:99:6f:7e:e1:ce:1b:53:6a:44:66:23:51:08:7b:bc:5b:52:
#         a2:fd:06:37:38:40:61:8f:4a:96:b8:90:37:f8:66:c7:78:90:
#         00:15:2e:8b:ad:51:35:53:07:a8:6b:68:ae:f9:4e:3c:07:26:
#         cd:08:05:70:cc:39:3f:76:bd:a5:d3:67:26:01:86:a6:53:d2:
#         60:3b:7c:43:7f:55:8a:bc:95:1a:c1:28:39:4c:1f:43:d2:91:
#         f4:72:59:8a:b9:56:fc:3f:b4:9d:da:70:9c:76:5a:8c:43:50:
#         ee:8e:30:72:4d:df:ff:49:f7:c6:a9:67:d9:6d:ac:02:11:e2:
#         3a:16:25:a7:58:08:cb:6f:53:41:9c:48:38:47:68:33:d1:d7:
#         c7:8f:d4:74:21:d4:c3:05:90:7a:ff:ce:96:88:b1:15:29:5d:
#         23:ab:d0:60:a1:12:4f:de:f4:17:cd:32:e5:c9:bf:c8:43:ad:
#         fd:2e:8e:f1:af:e2:f4:98:fa:12:1f:20:d8:c0:a7:0c:85:c5:
#         90:f4:3b:2d:96:26:b1:2c:be:4c:ab:eb:b1:d2:8a:c9:db:78:
#         13:0f:1e:09:9d:6d:8f:00:9f:02:da:c1:fa:1f:7a:7a:09:c4:
#         4a:e6:88:2a:97:9f:89:8b:fd:37:5f:5f:3a:ce:38:59:86:4b:
#         af:71:0b:b4:d8:f2:70:4f:9f:32:13:e3:b0:a7:57:e5:da:da:
#         43:cb:84:34:f2:28:c4:ea:6d:f4:2a:ef:c1:6b:76:da:fb:7e:
#         bb:85:3c:d2:53:c2:4d:be:71:e1:45:d1:fd:23:67:0d:13:75:
#         fb:cf:65:67:22:9d:ae:b0:09:d1:09:ff:1d:34:bf:fe:23:97:
#         37:d2:39:fa:3d:0d:06:0b:b4:db:3b:a3:ab:6f:5c:1d:b6:7e:
#         e8:b3:82:34:ed:06:5c:24

[p11-kit-object-v1]
label: "EC-ACC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsyLHT+KXQpWIR4NA9h0X
84NzJB5R85iKw5K4/0CQBXCHYMkAqbWUZRkiFRfCQ2xmRJoNBD45b6VLeqpjt4pE
ndljkYRm4CgPukLjbo73FCeTae6RDqNfDrHrZqJyTxIThmV6PttPB/SnCWDaOkKZ
x7J/sxaVHMf5NLWUhdWZXqBIoH7nF2W4onW4HvPlQn2v7fOKSGRdghST2MDk/7NQ
cvJ29rNdQlB50JQ+awwAvthrDk4q7D7SzIKiGGUzE3eeml0aE9jD2z3Il3rucO2n
5nzbcc8tlGLfbdb1OL4/pYUKGbio2Al1QnDE6u/LDsg0qBIimAy4E5S2S+zw0JDn
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "EC-ACC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#             (Negative)11:d4:c2:14:2b:de:21:eb:57:9d:53:fb:0c:22:3b:ff
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = Agencia Catalana de Certificacio (NIF Q-0801176-I), OU = Serveis Publics de Certificacio, OU = Vegeu https://www.catcert.net/verarrel (c)03, OU = Jerarquia Entitats de Certificacio Catalanes, CN = EC-ACC
#        Validity
#            Not Before: Jan  7 23:00:00 2003 GMT
#            Not After : Jan  7 22:59:59 2031 GMT
#        Subject: C = ES, O = Agencia Catalana de Certificacio (NIF Q-0801176-I), OU = Serveis Publics de Certificacio, OU = Vegeu https://www.catcert.net/verarrel (c)03, OU = Jerarquia Entitats de Certificacio Catalanes, CN = EC-ACC
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:22:c7:4f:e2:97:42:95:88:47:83:40:f6:1d:
#                    17:f3:83:73:24:1e:51:f3:98:8a:c3:92:b8:ff:40:
#                    90:05:70:87:60:c9:00:a9:b5:94:65:19:22:15:17:
#                    c2:43:6c:66:44:9a:0d:04:3e:39:6f:a5:4b:7a:aa:
#                    63:b7:8a:44:9d:d9:63:91:84:66:e0:28:0f:ba:42:
#                    e3:6e:8e:f7:14:27:93:69:ee:91:0e:a3:5f:0e:b1:
#                    eb:66:a2:72:4f:12:13:86:65:7a:3e:db:4f:07:f4:
#                    a7:09:60:da:3a:42:99:c7:b2:7f:b3:16:95:1c:c7:
#                    f9:34:b5:94:85:d5:99:5e:a0:48:a0:7e:e7:17:65:
#                    b8:a2:75:b8:1e:f3:e5:42:7d:af:ed:f3:8a:48:64:
#                    5d:82:14:93:d8:c0:e4:ff:b3:50:72:f2:76:f6:b3:
#                    5d:42:50:79:d0:94:3e:6b:0c:00:be:d8:6b:0e:4e:
#                    2a:ec:3e:d2:cc:82:a2:18:65:33:13:77:9e:9a:5d:
#                    1a:13:d8:c3:db:3d:c8:97:7a:ee:70:ed:a7:e6:7c:
#                    db:71:cf:2d:94:62:df:6d:d6:f5:38:be:3f:a5:85:
#                    0a:19:b8:a8:d8:09:75:42:70:c4:ea:ef:cb:0e:c8:
#                    34:a8:12:22:98:0c:b8:13:94:b6:4b:ec:f0:d0:90:
#                    e7:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:ec_acc@catcert.net
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A0:C3:8B:44:AA:37:A5:45:BF:97:80:5A:D1:F1:78:A2:9B:E9:5D:8D
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.15096.1.3.1.10
#                  CPS: https://www.catcert.net/verarrel
#                  User Notice:
#                    Explicit Text: Vegeu https://www.catcert.net/verarrel 
#
#    Signature Algorithm: sha1WithRSAEncryption
#         a0:48:5b:82:01:f6:4d:48:b8:39:55:35:9c:80:7a:53:99:d5:
#         5a:ff:b1:71:3b:cc:39:09:94:5e:d6:da:ef:be:01:5b:5d:d3:
#         1e:d8:fd:7d:4f:cd:a0:41:e0:34:93:bf:cb:e2:86:9c:37:92:
#         90:56:1c:dc:eb:29:05:e5:c4:9e:c7:35:df:8a:0c:cd:c5:21:
#         43:e9:aa:88:e5:35:c0:19:42:63:5a:02:5e:a4:48:18:3a:85:
#         6f:dc:9d:bc:3f:9d:9c:c1:87:b8:7a:61:08:e9:77:0b:7f:70:
#         ab:7a:dd:d9:97:2c:64:1e:85:bf:bc:74:96:a1:c3:7a:12:ec:
#         0c:1a:6e:83:0c:3c:e8:72:46:9f:fb:48:d5:5e:97:e6:b1:a1:
#         f8:e4:ef:46:25:94:9c:89:db:69:38:be:ec:5c:0e:56:c7:65:
#         51:e5:50:88:88:bf:42:d5:2b:3d:e5:f9:ba:9e:2e:b3:ca:f4:
#         73:92:02:0b:be:4c:66:eb:20:fe:b9:cb:b5:99:7f:e6:b6:13:
#         fa:ca:4b:4d:d9:ee:53:46:06:3b:c6:4e:ad:93:5a:81:7e:6c:
#         2a:4b:6a:05:45:8c:f2:21:a4:31:90:87:6c:65:9c:9d:a5:60:
#         95:3a:52:7f:f5:d1:ab:08:6e:f3:ee:5b:f9:88:3d:7e:b8:6f:
#         6e:03:e4:42

[p11-kit-object-v1]
label: "ECRaizEstado"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ECRaizEstado"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            42:ea:5b:0a:51:11:26:7c:d8:27:74:b7:df:7f:71
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = PT, O = SCEE, CN = ECRaizEstado
#        Validity
#            Not Before: Jun 23 13:41:27 2006 GMT
#            Not After : Jun 23 13:41:27 2030 GMT
#        Subject: C = PT, O = SCEE, CN = ECRaizEstado
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:db:ef:a2:43:6e:c8:a9:fd:6e:d7:df:ac:a2:92:
#                    84:a1:c8:59:a0:0c:9a:53:fe:ef:ae:cc:19:0d:72:
#                    8a:a4:c2:33:23:ef:e7:06:72:ea:6d:4b:3a:41:52:
#                    0f:c9:48:0e:2d:e7:ba:64:ee:a2:3a:4c:63:5c:66:
#                    29:8b:df:a9:88:c5:bd:e8:f1:f7:8e:4b:fc:01:3c:
#                    44:12:39:2a:70:a2:c0:db:c5:a2:df:5f:c7:4b:c6:
#                    a8:dc:3d:61:7c:4a:58:c1:44:32:93:de:70:99:a1:
#                    23:26:56:3f:a3:e1:ea:5f:30:46:d8:78:f5:30:a3:
#                    96:09:89:b0:3d:f1:86:93:05:b6:12:6a:18:8d:f0:
#                    a5:64:3b:2b:87:64:5e:3d:17:8e:0b:6e:e6:98:cc:
#                    97:38:38:20:8c:70:5a:69:2b:bd:65:8d:cd:37:59:
#                    5c:6c:d1:72:74:59:06:4e:c8:b7:01:d7:77:bf:f0:
#                    48:86:a8:b3:1a:5d:41:d4:37:17:11:10:5f:4a:6e:
#                    8d:75:c5:03:40:7d:21:ae:00:f0:db:fc:9f:6c:3a:
#                    66:a4:df:f7:ca:df:80:66:5a:d9:d8:7f:14:a2:26:
#                    19:f4:ae:0b:21:e0:ca:3e:05:dd:16:d8:7e:59:da:
#                    a1:b0:69:c3:9d:34:13:fa:65:49:39:87:ee:76:2f:
#                    8d:bd:3c:27:19:03:4e:ad:0e:0b:2b:2c:c6:2e:71:
#                    13:35:29:57:e9:70:dc:1b:51:ea:cd:97:f1:95:8d:
#                    b2:86:fa:26:06:2f:80:1a:95:f1:98:3b:ee:f6:e5:
#                    86:a5:ce:1b:01:e5:f4:e9:33:ca:0f:55:44:5f:68:
#                    8a:2c:c7:5b:66:28:dd:96:4b:83:9d:5e:1d:7e:18:
#                    d5:fe:b2:60:fb:9a:51:68:c3:96:8c:1f:68:4b:50:
#                    52:0b:36:e6:31:27:e4:d7:29:0c:1b:da:1b:2f:e1:
#                    04:53:b8:d4:79:49:b0:3b:81:5e:08:88:22:77:e2:
#                    29:c0:ae:72:aa:ab:b4:72:52:bd:6c:bb:f5:ba:78:
#                    d9:9c:b8:20:6f:30:8d:4a:9d:32:f9:f4:01:e6:62:
#                    79:98:42:40:05:7a:6f:1c:2a:3f:b5:fb:df:cd:18:
#                    40:8e:e5:10:c4:39:5b:56:f1:3c:57:05:ab:d2:39:
#                    4d:3f:f8:8b:23:c7:6b:b9:40:b1:e2:fe:ff:b3:1c:
#                    0a:69:1f:9b:8c:0f:b4:1f:e0:0a:de:48:fd:8d:5f:
#                    8f:99:f5:01:76:05:36:5d:8e:dc:33:8e:51:6e:11:
#                    e2:41:fd:cc:b7:8d:2a:5f:3e:92:e5:f2:b1:e0:a4:
#                    23:e2:a2:b7:c6:8d:18:9b:29:4a:d1:46:7f:f4:64:
#                    20:18:dd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                71:7F:35:DE:F5:77:71:6D:1D:12:9C:E1:90:A4:BA:F0:A9:83:8F:80
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.ecee.gov.pt/dpc
#
#    Signature Algorithm: sha1WithRSAEncryption
#         8c:ad:9c:72:a5:b5:67:76:67:38:87:e9:3a:8c:fe:9d:59:35:
#         be:90:f1:03:00:a0:58:d8:98:d1:bf:fc:fc:f3:50:dc:b4:65:
#         d5:da:ba:f0:8c:2e:7c:0d:e6:09:91:5f:4d:a3:f6:5d:78:9c:
#         58:5d:6a:70:94:a3:af:db:2f:00:c9:03:40:6b:df:51:03:16:
#         19:8c:2b:bc:99:36:f6:c0:ad:92:18:13:8c:a7:ed:1d:d2:df:
#         03:90:05:ec:b0:93:98:9b:f7:4d:5a:13:f8:e7:9b:f7:36:76:
#         de:7c:26:f8:11:38:4f:49:4e:b3:73:1f:5f:27:5b:e1:9e:32:
#         1e:f6:c0:98:1b:d9:20:2c:5c:96:8d:86:c9:0b:45:d7:92:ad:
#         8a:bd:ea:57:a2:a3:56:b6:20:3c:ec:b2:c7:39:7e:b0:80:fe:
#         bd:51:2b:2a:b4:c3:72:69:c3:f9:47:2e:6e:ff:9c:87:ed:dc:
#         75:cb:10:88:e0:b4:ce:2e:0e:53:1d:0b:e8:6e:1e:42:4c:d0:
#         be:39:78:75:c9:14:de:27:91:73:aa:ec:6a:80:f0:f0:17:96:
#         62:4f:be:04:cb:e2:a7:e5:5d:0f:93:45:cb:59:48:26:13:de:
#         dd:b1:f5:0a:da:16:b1:a8:1d:8f:7e:58:1b:b7:d5:09:de:88:
#         6b:ce:84:3e:a8:be:52:62:ca:d2:a1:a1:c7:cb:3c:16:e0:76:
#         56:30:3f:e6:0f:6b:06:77:fe:64:9d:5a:6a:73:7c:ee:de:21:
#         e9:9a:49:97:37:b6:84:7f:a2:91:3e:45:fb:d7:5a:06:c5:87:
#         35:dc:ba:48:4c:86:01:08:47:36:b6:38:50:95:11:99:73:d1:
#         37:49:0a:fa:42:4f:2f:10:54:d3:41:90:fa:c8:dc:bb:11:dc:
#         0d:cc:7d:7c:9b:dc:0e:91:71:86:4d:b8:f2:15:9a:2b:38:17:
#         11:a1:f2:9e:a8:6c:9c:e3:ce:ae:e2:e6:4b:8b:f2:8a:06:3b:
#         07:77:02:11:ee:83:ea:9d:66:86:ca:f0:62:a9:d5:57:83:a4:
#         15:f1:45:14:fe:1a:75:7f:a5:0f:dc:52:74:59:75:0a:f8:fb:
#         55:41:a9:5c:8d:31:44:dd:cd:94:4e:33:d1:1b:41:aa:db:d7:
#         a1:3c:f0:c5:48:6d:45:41:35:b5:79:83:e6:f9:4d:f1:56:38:
#         d7:bf:40:22:fb:20:80:e3:1c:c2:59:46:07:63:02:61:00:3b:
#         9b:50:bb:43:c3:b0:e9:0a:9a:b8:76:f4:47:61:55:64:70:4f:
#         37:d9:9c:11:a3:13:b2:e1:dd:40:42:bb:98:d7:a0:06:8b:e6:
#         68:57:4b:0e:38:68:7f:ba

[p11-kit-object-v1]
label: "EE Certification Centre Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyCDA7ODFS6sHeJXzRO77
Cwz/dI5hu7Fi6iPYq6FlMnrrjhdPltgKe5GiY2zHjEwueb+pBfxpXJWNYvm5cO3D
UX3Qk+Zs6zBL4bx9v1Kbzm57ZfI4scCiMu9ismjgYVPBNpX/7JS6Nq6cHKcyD+V8
tMZvdP17GOisV+0GIEsyMFhb/c2o5qH8cLyOknPbl6d8Ia49wfVIh2wnvZ8ldIFV
sPd19j2kZGvWT+fOQK0P3TLTvIoSU5jJifsQHU1+zX4fVg0hcIX2IIMf9rofBI/q
d4g1xP/qTqGLTT9jG0TDRNQldsq3jdceSmZkzVzFnIPhwgiImuxOo/E+HCzZbB2h
SwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "EE Certification Centre Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:80:f9:a0:73:ed:3f:00:4c:ca:89:d8:e3:71:e6:4a
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = EE, O = AS Sertifitseerimiskeskus, CN = EE Certification Centre Root CA, emailAddress = pki@sk.ee
#        Validity
#            Not Before: Oct 30 10:10:30 2010 GMT
#            Not After : Dec 17 23:59:59 2030 GMT
#        Subject: C = EE, O = AS Sertifitseerimiskeskus, CN = EE Certification Centre Root CA, emailAddress = pki@sk.ee
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c8:20:c0:ec:e0:c5:4b:ab:07:78:95:f3:44:ee:
#                    fb:0b:0c:ff:74:8e:61:bb:b1:62:ea:23:d8:ab:a1:
#                    65:32:7a:eb:8e:17:4f:96:d8:0a:7b:91:a2:63:6c:
#                    c7:8c:4c:2e:79:bf:a9:05:fc:69:5c:95:8d:62:f9:
#                    b9:70:ed:c3:51:7d:d0:93:e6:6c:eb:30:4b:e1:bc:
#                    7d:bf:52:9b:ce:6e:7b:65:f2:38:b1:c0:a2:32:ef:
#                    62:b2:68:e0:61:53:c1:36:95:ff:ec:94:ba:36:ae:
#                    9c:1c:a7:32:0f:e5:7c:b4:c6:6f:74:fd:7b:18:e8:
#                    ac:57:ed:06:20:4b:32:30:58:5b:fd:cd:a8:e6:a1:
#                    fc:70:bc:8e:92:73:db:97:a7:7c:21:ae:3d:c1:f5:
#                    48:87:6c:27:bd:9f:25:74:81:55:b0:f7:75:f6:3d:
#                    a4:64:6b:d6:4f:e7:ce:40:ad:0f:dd:32:d3:bc:8a:
#                    12:53:98:c9:89:fb:10:1d:4d:7e:cd:7e:1f:56:0d:
#                    21:70:85:f6:20:83:1f:f6:ba:1f:04:8f:ea:77:88:
#                    35:c4:ff:ea:4e:a1:8b:4d:3f:63:1b:44:c3:44:d4:
#                    25:76:ca:b7:8d:d7:1e:4a:66:64:cd:5c:c5:9c:83:
#                    e1:c2:08:88:9a:ec:4e:a3:f1:3e:1c:2c:d9:6c:1d:
#                    a1:4b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                12:F2:5A:3E:EA:56:1C:BF:CD:06:AC:F1:F1:25:C9:A9:4B:D4:14:99
#            X509v3 Extended Key Usage: 
#                TLS Web Client Authentication, TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
#    Signature Algorithm: sha1WithRSAEncryption
#         7b:f6:e4:c0:0d:aa:19:47:b7:4d:57:a3:fe:ad:bb:b1:6a:d5:
#         0f:9e:db:e4:63:c5:8e:a1:50:56:93:96:b8:38:c0:24:22:66:
#         bc:53:14:61:95:bf:d0:c7:2a:96:39:3f:7d:28:b3:10:40:21:
#         6a:c4:af:b0:52:77:18:e1:96:d8:56:5d:e3:dd:36:5e:1d:a7:
#         50:54:a0:c5:2a:e4:aa:8c:94:8a:4f:9d:35:ff:76:a4:06:13:
#         91:a2:a2:7d:00:44:3f:55:d3:82:3c:1a:d5:5b:bc:56:4c:22:
#         2e:46:43:8a:24:40:2d:f3:12:b8:3b:70:1a:a4:96:b9:1a:af:
#         87:41:1a:6a:18:0d:06:4f:c7:3e:6e:b9:29:4d:0d:49:89:11:
#         87:32:5b:e6:4b:04:c8:e4:5c:e6:74:73:94:5d:16:98:13:95:
#         fe:fb:db:b1:44:e5:3a:70:ac:37:6b:e6:b3:33:72:28:c9:b3:
#         57:a0:f6:02:16:88:06:0b:b6:a6:4b:20:28:d4:de:3d:8b:ad:
#         37:05:53:74:fe:6e:cc:bc:43:17:71:5e:f9:c5:cc:1a:a9:61:
#         ee:f7:76:0c:f3:72:f4:72:ad:cf:72:02:36:07:47:cf:ef:19:
#         50:89:60:cc:e9:24:95:0f:c2:cb:1d:f2:6f:76:90:c7:cc:75:
#         c1:96:c5:9d

[p11-kit-object-v1]
label: "Entrust.net Premium 2048 Secure Server CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArU1LqRKGsuqjIAcVFmQq
K0vRvwtKTY7tgHalZ7d4QMBzQshowNtTK91euHaYNZOLGp18EzoOH1u3Hs/lJBQe
sYGpjX24zGtLA/ECDNyrpUAkAH90lKGdCCmziAv1h3edVc3kw37XamSrhRSGlVuX
MlBvPci6Zgzj/L24ScF2iUkZ/cCovYmjZy/Gn7xxGWC4LeksyZB2ZnuU4q941mVT
XTzWnLLPKQP5L6RQstRIzgUyVYr9smRMDuSYB3Xbf9+5CFVghTAp+XtIpGmG4zU/
HoZdenoVve8AjhUiVBcAkCaTvA5JaJG/+EfTnZVCwQ5N328mz8MYIWJmQ3DW1cAH
4QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust.net Premium 2048 Secure Server CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 946069240 (0x3863def8)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O = Entrust.net, OU = www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), OU = (c) 1999 Entrust.net Limited, CN = Entrust.net Certification Authority (2048)
#        Validity
#            Not Before: Dec 24 17:50:51 1999 GMT
#            Not After : Jul 24 14:15:12 2029 GMT
#        Subject: O = Entrust.net, OU = www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), OU = (c) 1999 Entrust.net Limited, CN = Entrust.net Certification Authority (2048)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:4d:4b:a9:12:86:b2:ea:a3:20:07:15:16:64:
#                    2a:2b:4b:d1:bf:0b:4a:4d:8e:ed:80:76:a5:67:b7:
#                    78:40:c0:73:42:c8:68:c0:db:53:2b:dd:5e:b8:76:
#                    98:35:93:8b:1a:9d:7c:13:3a:0e:1f:5b:b7:1e:cf:
#                    e5:24:14:1e:b1:81:a9:8d:7d:b8:cc:6b:4b:03:f1:
#                    02:0c:dc:ab:a5:40:24:00:7f:74:94:a1:9d:08:29:
#                    b3:88:0b:f5:87:77:9d:55:cd:e4:c3:7e:d7:6a:64:
#                    ab:85:14:86:95:5b:97:32:50:6f:3d:c8:ba:66:0c:
#                    e3:fc:bd:b8:49:c1:76:89:49:19:fd:c0:a8:bd:89:
#                    a3:67:2f:c6:9f:bc:71:19:60:b8:2d:e9:2c:c9:90:
#                    76:66:7b:94:e2:af:78:d6:65:53:5d:3c:d6:9c:b2:
#                    cf:29:03:f9:2f:a4:50:b2:d4:48:ce:05:32:55:8a:
#                    fd:b2:64:4c:0e:e4:98:07:75:db:7f:df:b9:08:55:
#                    60:85:30:29:f9:7b:48:a4:69:86:e3:35:3f:1e:86:
#                    5d:7a:7a:15:bd:ef:00:8e:15:22:54:17:00:90:26:
#                    93:bc:0e:49:68:91:bf:f8:47:d3:9d:95:42:c1:0e:
#                    4d:df:6f:26:cf:c3:18:21:62:66:43:70:d6:d5:c0:
#                    07:e1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                55:E4:81:D1:11:80:BE:D8:89:B9:08:A3:31:F9:A1:24:09:16:B9:70
#    Signature Algorithm: sha1WithRSAEncryption
#         3b:9b:8f:56:9b:30:e7:53:99:7c:7a:79:a7:4d:97:d7:19:95:
#         90:fb:06:1f:ca:33:7c:46:63:8f:96:66:24:fa:40:1b:21:27:
#         ca:e6:72:73:f2:4f:fe:31:99:fd:c8:0c:4c:68:53:c6:80:82:
#         13:98:fa:b6:ad:da:5d:3d:f1:ce:6e:f6:15:11:94:82:0c:ee:
#         3f:95:af:11:ab:0f:d7:2f:de:1f:03:8f:57:2c:1e:c9:bb:9a:
#         1a:44:95:eb:18:4f:a6:1f:cd:7d:57:10:2f:9b:04:09:5a:84:
#         b5:6e:d8:1d:3a:e1:d6:9e:d1:6c:79:5e:79:1c:14:c5:e3:d0:
#         4c:93:3b:65:3c:ed:df:3d:be:a6:e5:95:1a:c3:b5:19:c3:bd:
#         5e:5b:bb:ff:23:ef:68:19:cb:12:93:27:5c:03:2d:6f:30:d0:
#         1e:b6:1a:ac:de:5a:f7:d1:aa:a8:27:a6:fe:79:81:c4:79:99:
#         33:57:ba:12:b0:a9:e0:42:6c:93:ca:56:de:fe:6d:84:0b:08:
#         8b:7e:8d:ea:d7:98:21:c6:f3:e7:3c:79:2f:5e:9c:d1:4c:15:
#         8d:e1:ec:22:37:cc:9a:43:0b:97:dc:80:90:8d:b3:67:9b:6f:
#         48:08:15:56:cf:bf:f1:2b:7c:5e:9a:76:e9:59:90:c5:7c:83:
#         35:11:65:51

[p11-kit-object-v1]
label: "Entrust.net Secure Server Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIGdMA0GCSqGSIb3DQEBAQUAA4GLADCBhwKBgQDNKIM0VBuJ8w+vN5Ex/68xYMmo
6LIQaO2f55M28Qpku0f1BBc/I0dNxScZgSYMVHINiC3ZH5oSn7yzcdOAGT9HZnuM
NSjSuQrfJNqc1lB5gXpa0zf3wkrYKZImZNHkmGw6AIr1NJtl+O3jEP/9uElY3KDe
gjlrgbEWGWG5VLbmQwIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust.net Secure Server Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 927650371 (0x374ad243)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = Entrust.net, OU = www.entrust.net/CPS incorp. by ref. (limits liab.), OU = (c) 1999 Entrust.net Limited, CN = Entrust.net Secure Server Certification Authority
#        Validity
#            Not Before: May 25 16:09:40 1999 GMT
#            Not After : May 25 16:39:40 2019 GMT
#        Subject: C = US, O = Entrust.net, OU = www.entrust.net/CPS incorp. by ref. (limits liab.), OU = (c) 1999 Entrust.net Limited, CN = Entrust.net Secure Server Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (1024 bit)
#                Modulus:
#                    00:cd:28:83:34:54:1b:89:f3:0f:af:37:91:31:ff:
#                    af:31:60:c9:a8:e8:b2:10:68:ed:9f:e7:93:36:f1:
#                    0a:64:bb:47:f5:04:17:3f:23:47:4d:c5:27:19:81:
#                    26:0c:54:72:0d:88:2d:d9:1f:9a:12:9f:bc:b3:71:
#                    d3:80:19:3f:47:66:7b:8c:35:28:d2:b9:0a:df:24:
#                    da:9c:d6:50:79:81:7a:5a:d3:37:f7:c2:4a:d8:29:
#                    92:26:64:d1:e4:98:6c:3a:00:8a:f5:34:9b:65:f8:
#                    ed:e3:10:ff:fd:b8:49:58:dc:a0:de:82:39:6b:81:
#                    b1:16:19:61:b9:54:b6:e6:43
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:C = US, O = Entrust.net, OU = www.entrust.net/CPS incorp. by ref. (limits liab.), OU = (c) 1999 Entrust.net Limited, CN = Entrust.net Secure Server Certification Authority, CN = CRL1
#
#                Full Name:
#                  URI:http://www.entrust.net/CRL/net1.crl
#
#            X509v3 Private Key Usage Period: 
#                Not Before: May 25 16:09:40 1999 GMT, Not After: May 25 16:09:40 2019 GMT
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:F0:17:62:13:55:3D:B3:FF:0A:00:6B:FB:50:84:97:F3:ED:62:D0:1A
#
#            X509v3 Subject Key Identifier: 
#                F0:17:62:13:55:3D:B3:FF:0A:00:6B:FB:50:84:97:F3:ED:62:D0:1A
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            1.2.840.113533.7.65.0: 
#                0
#..V4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         90:dc:30:02:fa:64:74:c2:a7:0a:a5:7c:21:8d:34:17:a8:fb:
#         47:0e:ff:25:7c:8d:13:0a:fb:e4:98:b5:ef:8c:f8:c5:10:0d:
#         f7:92:be:f1:c3:d5:d5:95:6a:04:bb:2c:ce:26:36:65:c8:31:
#         c6:e7:ee:3f:e3:57:75:84:7a:11:ef:46:4f:18:f4:d3:98:bb:
#         a8:87:32:ba:72:f6:3c:e2:3d:9f:d7:1d:d9:c3:60:43:8c:58:
#         0e:22:96:2f:62:a3:2c:1f:ba:ad:05:ef:ab:32:78:87:a0:54:
#         73:19:b5:5c:05:f9:52:3e:6d:2d:45:0b:f7:0a:93:ea:ed:06:
#         f9:b2

[p11-kit-object-v1]
label: "Entrust Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtpW2Q0L6xm0qb0jflEw5
VwXuw3kRQWg27ez+mgGPoTgo/PcQRmYuTR4asRpOxtHAlYiwyf8xizMD27eDez4g
hF7tslYop/jguUBxN8XLRw6XKmjAIpViFdtH2fXQK/+CS8mtPt5M25CAUD8JioQA
7DAKPRjN+/0qWZojlRcsRZ4fbkN5bQxcmP5Ip8UjR1xe/W7nHrT2aEXRhoNbooqN
seMpgP4lcYitvryPrFKWS6pRjeQTMRnoTk2f26yzatW8OVRxynp6f5DdfR2A2YG7
WSbCEf7mk+L3gORl+zQ3DimAcE2vOIYunn9Xr54XruscyyghX7Yc2OeiBCL509rY
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1164660820 (0x456b5054)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = "Entrust, Inc.", OU = www.entrust.net/CPS is incorporated by reference, OU = "(c) 2006 Entrust, Inc.", CN = Entrust Root Certification Authority
#        Validity
#            Not Before: Nov 27 20:23:42 2006 GMT
#            Not After : Nov 27 20:53:42 2026 GMT
#        Subject: C = US, O = "Entrust, Inc.", OU = www.entrust.net/CPS is incorporated by reference, OU = "(c) 2006 Entrust, Inc.", CN = Entrust Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b6:95:b6:43:42:fa:c6:6d:2a:6f:48:df:94:4c:
#                    39:57:05:ee:c3:79:11:41:68:36:ed:ec:fe:9a:01:
#                    8f:a1:38:28:fc:f7:10:46:66:2e:4d:1e:1a:b1:1a:
#                    4e:c6:d1:c0:95:88:b0:c9:ff:31:8b:33:03:db:b7:
#                    83:7b:3e:20:84:5e:ed:b2:56:28:a7:f8:e0:b9:40:
#                    71:37:c5:cb:47:0e:97:2a:68:c0:22:95:62:15:db:
#                    47:d9:f5:d0:2b:ff:82:4b:c9:ad:3e:de:4c:db:90:
#                    80:50:3f:09:8a:84:00:ec:30:0a:3d:18:cd:fb:fd:
#                    2a:59:9a:23:95:17:2c:45:9e:1f:6e:43:79:6d:0c:
#                    5c:98:fe:48:a7:c5:23:47:5c:5e:fd:6e:e7:1e:b4:
#                    f6:68:45:d1:86:83:5b:a2:8a:8d:b1:e3:29:80:fe:
#                    25:71:88:ad:be:bc:8f:ac:52:96:4b:aa:51:8d:e4:
#                    13:31:19:e8:4e:4d:9f:db:ac:b3:6a:d5:bc:39:54:
#                    71:ca:7a:7a:7f:90:dd:7d:1d:80:d9:81:bb:59:26:
#                    c2:11:fe:e6:93:e2:f7:80:e4:65:fb:34:37:0e:29:
#                    80:70:4d:af:38:86:2e:9e:7f:57:af:9e:17:ae:eb:
#                    1c:cb:28:21:5f:b6:1c:d8:e7:a2:04:22:f9:d3:da:
#                    d8:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Private Key Usage Period: 
#                Not Before: Nov 27 20:23:42 2006 GMT, Not After: Nov 27 20:53:42 2026 GMT
#            X509v3 Authority Key Identifier: 
#                keyid:68:90:E4:67:A4:A6:53:80:C7:86:66:A4:F1:F7:4B:43:FB:84:BD:6D
#
#            X509v3 Subject Key Identifier: 
#                68:90:E4:67:A4:A6:53:80:C7:86:66:A4:F1:F7:4B:43:FB:84:BD:6D
#            1.2.840.113533.7.65.0: 
#                0...V7.1:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         93:d4:30:b0:d7:03:20:2a:d0:f9:63:e8:91:0c:05:20:a9:5f:
#         19:ca:7b:72:4e:d4:b1:db:d0:96:fb:54:5a:19:2c:0c:08:f7:
#         b2:bc:85:a8:9d:7f:6d:3b:52:b3:2a:db:e7:d4:84:8c:63:f6:
#         0f:cb:26:01:91:50:6c:f4:5f:14:e2:93:74:c0:13:9e:30:3a:
#         50:e3:b4:60:c5:1c:f0:22:44:8d:71:47:ac:c8:1a:c9:e9:9b:
#         9a:00:60:13:ff:70:7e:5f:11:4d:49:1b:b3:15:52:7b:c9:54:
#         da:bf:9d:95:af:6b:9a:d8:9e:e9:f1:e4:43:8d:e2:11:44:3a:
#         bf:af:bd:83:42:73:52:8b:aa:bb:a7:29:cf:f5:64:1c:0a:4d:
#         d1:bc:aa:ac:9f:2a:d0:ff:7f:7f:da:7d:ea:b1:ed:30:25:c1:
#         84:da:34:d2:5b:78:83:56:ec:9c:36:c3:26:e2:11:f6:67:49:
#         1d:92:ab:8c:fb:eb:ff:7a:ee:85:4a:a7:50:80:f0:a7:5c:4a:
#         94:2e:5f:05:99:3c:52:41:e0:cd:b4:63:cf:01:43:ba:9c:83:
#         dc:8f:60:3b:f3:5a:b4:b4:7b:ae:da:0b:90:38:75:ef:81:1d:
#         66:d2:f7:57:70:36:b3:bf:fc:28:af:71:25:85:5b:13:fe:1e:
#         7f:5a:b4:3c

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - EC1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEhBPJ0LptQXvibNDrVV9mAhok9FuJaUfj
uMJ98fICxZ+g9lvViwYZhk9TEG0HJCehoPjVRxlhTH3KkyfqdAzvb5YJ/mPscF02
rWd3rsmdfFVEOqJjUR/142LUqUcHPswg
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - EC1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIC+TCCAoCgAwIBAgINAKaLeSkAAAAAUNCR+TAKBggqhkjOPQQDAzCBvzELMAkG
A1UEBhMCVVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xKDAmBgNVBAsTH1NlZSB3
d3cuZW50cnVzdC5uZXQvbGVnYWwtdGVybXMxOTA3BgNVBAsTMChjKSAyMDEyIEVu
dHJ1c3QsIEluYy4gLSBmb3IgYXV0aG9yaXplZCB1c2Ugb25seTEzMDEGA1UEAxMq
RW50cnVzdCBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0gRUMxMB4XDTEy
MTIxODE1MjUzNloXDTM3MTIxODE1NTUzNlowgb8xCzAJBgNVBAYTAlVTMRYwFAYD
VQQKEw1FbnRydXN0LCBJbmMuMSgwJgYDVQQLEx9TZWUgd3d3LmVudHJ1c3QubmV0
L2xlZ2FsLXRlcm1zMTkwNwYDVQQLEzAoYykgMjAxMiBFbnRydXN0LCBJbmMuIC0g
Zm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxMzAxBgNVBAMTKkVudHJ1c3QgUm9vdCBD
ZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEVDMTB2MBAGByqGSM49AgEGBSuBBAAi
A2IABIQTydC6bUF74mzQ61VfZgIaJPRbiWlH47jCffHyAsWfoPZb1YsGGYZPUxBt
ByQnoaD41UcZYUx9ypMn6nQM72+WCf5j7HBdNq1nd67JnXxVRDqiY1Ef9eNi1KlH
Bz7MIKNCMEAwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0O
BBYEFLdj5xrdjekIplWDpOBqUEFlEUJJMAoGCCqGSM49BAMDA2cAMGQCMGF52OVC
R98crlOZF7ZvHH3hvxGU0QOIdeSNiaSKd0bebWHvAvX7td/M/k7//qnmpwIwW5nX
hTcGtXsI/esni0qU+eH6p44mCOh8kmhtc9hvJqwhAriZtyZBWyVgrtBIGu4G
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            a6:8b:79:29:00:00:00:00:50:d0:91:f9
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - EC1
#        Validity
#            Not Before: Dec 18 15:25:36 2012 GMT
#            Not After : Dec 18 15:55:36 2037 GMT
#        Subject: C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - EC1
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:84:13:c9:d0:ba:6d:41:7b:e2:6c:d0:eb:55:5f:
#                    66:02:1a:24:f4:5b:89:69:47:e3:b8:c2:7d:f1:f2:
#                    02:c5:9f:a0:f6:5b:d5:8b:06:19:86:4f:53:10:6d:
#                    07:24:27:a1:a0:f8:d5:47:19:61:4c:7d:ca:93:27:
#                    ea:74:0c:ef:6f:96:09:fe:63:ec:70:5d:36:ad:67:
#                    77:ae:c9:9d:7c:55:44:3a:a2:63:51:1f:f5:e3:62:
#                    d4:a9:47:07:3e:cc:20
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B7:63:E7:1A:DD:8D:E9:08:A6:55:83:A4:E0:6A:50:41:65:11:42:49
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:61:79:d8:e5:42:47:df:1c:ae:53:99:17:b6:6f:
#         1c:7d:e1:bf:11:94:d1:03:88:75:e4:8d:89:a4:8a:77:46:de:
#         6d:61:ef:02:f5:fb:b5:df:cc:fe:4e:ff:fe:a9:e6:a7:02:30:
#         5b:99:d7:85:37:06:b5:7b:08:fd:eb:27:8b:4a:94:f9:e1:fa:
#         a7:8e:26:08:e8:7c:92:68:6d:73:d8:6f:26:ac:21:02:b8:99:
#         b7:26:41:5b:25:60:ae:d0:48:1a:ee:06

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuoS2ctueDGvimekwAad2
6jK4lUEaydphTlhyz/72gnm/c2EGCqUn2LNf00VOHHLWTjLycooP94MZ0GqAgABF
HrDH55q/ElcnHKNoLwqHvWprDl5l8xx31dSFjXAhtLMy54ui1YY5ArG40kfO5MlJ
xDun3vtUfVe+8OhuwnmyOgtV4lCYFjITXC94VsHClLPyWuQnmp8k18bs0JslguPM
wsRFxYyXegZrKhGfqQpuSDtv29QRGUL3jwe/9VNfnD70FyzmaaxOMkxid+q36OW7
NLwZi66cUee3frVTsTMi5W3PcDwa+uKbZ7aD9I2lr2JMTeBYrGQ0EgP4to2UYySk
cQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1246989352 (0x4a538c28)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
#        Validity
#            Not Before: Jul  7 17:25:54 2009 GMT
#            Not After : Dec  7 17:55:54 2030 GMT
#        Subject: C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ba:84:b6:72:db:9e:0c:6b:e2:99:e9:30:01:a7:
#                    76:ea:32:b8:95:41:1a:c9:da:61:4e:58:72:cf:fe:
#                    f6:82:79:bf:73:61:06:0a:a5:27:d8:b3:5f:d3:45:
#                    4e:1c:72:d6:4e:32:f2:72:8a:0f:f7:83:19:d0:6a:
#                    80:80:00:45:1e:b0:c7:e7:9a:bf:12:57:27:1c:a3:
#                    68:2f:0a:87:bd:6a:6b:0e:5e:65:f3:1c:77:d5:d4:
#                    85:8d:70:21:b4:b3:32:e7:8b:a2:d5:86:39:02:b1:
#                    b8:d2:47:ce:e4:c9:49:c4:3b:a7:de:fb:54:7d:57:
#                    be:f0:e8:6e:c2:79:b2:3a:0b:55:e2:50:98:16:32:
#                    13:5c:2f:78:56:c1:c2:94:b3:f2:5a:e4:27:9a:9f:
#                    24:d7:c6:ec:d0:9b:25:82:e3:cc:c2:c4:45:c5:8c:
#                    97:7a:06:6b:2a:11:9f:a9:0a:6e:48:3b:6f:db:d4:
#                    11:19:42:f7:8f:07:bf:f5:53:5f:9c:3e:f4:17:2c:
#                    e6:69:ac:4e:32:4c:62:77:ea:b7:e8:e5:bb:34:bc:
#                    19:8b:ae:9c:51:e7:b7:7e:b5:53:b1:33:22:e5:6d:
#                    cf:70:3c:1a:fa:e2:9b:67:b6:83:f4:8d:a5:af:62:
#                    4c:4d:e0:58:ac:64:34:12:03:f8:b6:8d:94:63:24:
#                    a4:71
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:72:26:7A:D0:1E:EF:7D:E7:3B:69:51:D4:6C:8D:9F:90:12:66:AB
#    Signature Algorithm: sha256WithRSAEncryption
#         79:9f:1d:96:c6:b6:79:3f:22:8d:87:d3:87:03:04:60:6a:6b:
#         9a:2e:59:89:73:11:ac:43:d1:f5:13:ff:8d:39:2b:c0:f2:bd:
#         4f:70:8c:a9:2f:ea:17:c4:0b:54:9e:d4:1b:96:98:33:3c:a8:
#         ad:62:a2:00:76:ab:59:69:6e:06:1d:7e:c4:b9:44:8d:98:af:
#         12:d4:61:db:0a:19:46:47:f3:eb:f7:63:c1:40:05:40:a5:d2:
#         b7:f4:b5:9a:36:bf:a9:88:76:88:04:55:04:2b:9c:87:7f:1a:
#         37:3c:7e:2d:a5:1a:d8:d4:89:5e:ca:bd:ac:3d:6c:d8:6d:af:
#         d5:f3:76:0f:cd:3b:88:38:22:9d:6c:93:9a:c4:3d:bf:82:1b:
#         65:3f:a6:0f:5d:aa:fc:e5:b2:15:ca:b5:ad:c6:bc:3d:d0:84:
#         e8:ea:06:72:b0:4d:39:32:78:bf:3e:11:9c:0b:a4:9d:9a:21:
#         f3:f0:9b:0b:30:78:db:c1:dc:87:43:fe:bc:63:9a:ca:c5:c2:
#         1c:c9:c7:8d:ff:3b:12:58:08:e6:b6:3d:ec:7a:2c:4e:fb:83:
#         96:ce:0c:3c:69:87:54:73:a4:73:c2:93:ff:51:10:ac:15:54:
#         01:d8:fc:05:b1:89:a1:7f:74:83:9a:49:d7:dc:4e:7b:8a:48:
#         6f:8b:45:f6

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d9:b5:43:7f:af:a9:39:0f:00:00:00:00:55:65:ad:58
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2015 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G4
#        Validity
#            Not Before: May 27 11:11:16 2015 GMT
#            Not After : Dec 27 11:41:16 2037 GMT
#        Subject: C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2015 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G4
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b1:ec:2c:42:ee:e2:d1:30:ff:a5:92:47:e2:2d:
#                    c3:ba:64:97:6d:ca:f7:0d:b5:59:c1:b3:cb:a8:68:
#                    19:d8:af:84:6d:30:70:5d:7e:f3:2e:d2:53:99:e1:
#                    fe:1f:5e:d9:48:af:5d:13:8d:db:ff:63:33:4d:d3:
#                    00:02:bc:c4:f8:d1:06:08:94:79:58:8a:15:de:29:
#                    b3:fd:fd:c4:4f:e8:aa:e2:a0:3b:79:cd:bf:6b:43:
#                    32:dd:d9:74:10:b9:f7:f4:68:d4:bb:d0:87:d5:aa:
#                    4b:8a:2a:6f:2a:04:b5:b2:a6:c7:a0:7a:e6:48:ab:
#                    d2:d1:59:cc:d6:7e:23:e6:97:6c:f0:42:e5:dc:51:
#                    4b:15:41:ed:49:4a:c9:de:10:97:d6:76:c1:ef:a5:
#                    b5:36:14:97:35:d8:78:22:35:52:ef:43:bd:db:27:
#                    db:61:56:82:34:dc:cb:88:60:0c:0b:5a:e5:2c:01:
#                    c6:54:af:d7:aa:c1:10:7b:d2:05:5a:b8:40:9e:86:
#                    a7:c3:90:86:02:56:52:09:7a:9c:d2:27:82:53:4a:
#                    65:52:6a:f5:3c:e7:a8:f2:9c:af:8b:bd:d3:0e:d4:
#                    d4:5e:6e:87:9e:6a:3d:45:1d:d1:5d:1b:f4:e9:0a:
#                    ac:60:99:fb:89:b4:ff:98:2c:cf:7c:1d:e9:02:aa:
#                    04:9a:1e:b8:dc:88:6e:25:b3:6c:66:f7:3c:90:f3:
#                    57:c1:b3:2f:f5:6d:f2:fb:ca:a1:f8:29:9d:46:8b:
#                    b3:6a:f6:e6:67:07:be:2c:67:0a:2a:1f:5a:b2:3e:
#                    57:c4:d3:21:21:63:65:52:91:1b:b1:99:8e:79:7e:
#                    e6:eb:8d:00:d9:5a:aa:ea:73:e8:a4:82:02:47:96:
#                    fe:5b:8e:54:61:a3:eb:2f:4b:30:b0:8b:23:75:72:
#                    7c:21:3c:c8:f6:f1:74:d4:1c:7b:a3:05:55:ee:bb:
#                    4d:3b:32:be:9a:77:66:9e:ac:69:90:22:07:1f:61:
#                    3a:96:be:e5:9a:4f:cc:05:3c:28:59:d3:c1:0c:54:
#                    a8:59:61:bd:c8:72:4c:e8:dc:9f:87:7f:bd:9c:48:
#                    36:5e:95:a3:0e:b9:38:24:55:fc:75:66:eb:02:e3:
#                    08:34:29:4a:c6:e3:2b:2f:33:a0:da:a3:86:a5:12:
#                    97:fd:80:2b:da:14:42:e3:92:bd:3e:f2:5d:5e:67:
#                    74:2e:1c:88:47:29:34:5f:e2:32:a8:9c:25:37:8c:
#                    ba:98:00:97:8b:49:96:1e:fd:25:8a:ac:dc:da:d8:
#                    5d:74:6e:66:b0:ff:44:df:a1:18:c6:be:48:2f:37:
#                    94:78:f8:95:4a:3f:7f:13:5e:5d:59:fd:74:86:43:
#                    63:73:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9F:38:C4:56:23:C3:39:E8:A0:71:6C:E8:54:4C:E4:E8:3A:B1:BF:67
#    Signature Algorithm: sha256WithRSAEncryption
#         12:e5:42:a6:7b:8b:0f:0c:e4:46:a5:b6:60:40:87:8c:25:7e:
#         ad:b8:68:2e:5b:c6:40:76:3c:03:f8:c9:59:f4:f3:ab:62:ce:
#         10:8d:b4:5a:64:8c:68:c0:b0:72:43:34:d2:1b:0b:f6:2c:53:
#         d2:ca:90:4b:86:66:fc:aa:83:22:f4:8b:1a:6f:26:48:ac:76:
#         77:08:bf:c5:98:5c:f4:26:89:9e:7b:c3:b9:64:32:01:7f:d3:
#         c3:dd:58:6d:ec:b1:ab:84:55:74:77:84:04:27:52:6b:86:4c:
#         ce:dd:b9:65:ff:d6:c6:5e:9f:9a:10:99:4b:75:6a:fe:6a:e9:
#         97:20:e4:e4:76:7a:c6:d0:24:aa:90:cd:20:90:ba:47:64:fb:
#         7f:07:b3:53:78:b5:0a:62:f2:73:43:ce:41:2b:81:6a:2e:85:
#         16:94:53:d4:6b:5f:72:22:ab:51:2d:42:d5:00:9c:99:bf:de:
#         bb:94:3b:57:fd:9a:f5:86:cb:56:3b:5b:88:01:e5:7c:28:4b:
#         03:f9:49:83:7c:b2:7f:7c:e3:ed:8e:a1:7f:60:53:8e:55:9d:
#         50:34:12:0f:b7:97:7b:6c:87:4a:44:e7:f5:6d:ec:80:37:f0:
#         58:19:6e:4a:68:76:f0:1f:92:e4:ea:b5:92:d3:61:51:10:0b:
#         ad:a7:d9:5f:c7:5f:dc:1f:a3:5c:8c:a1:7e:9b:b7:9e:d3:56:
#         6f:66:5e:07:96:20:ed:0b:74:fb:66:4e:8b:11:15:e9:81:49:
#         7e:6f:b0:d4:50:7f:22:d7:5f:65:02:0d:a6:f4:85:1e:d8:ae:
#         06:4b:4a:a7:d2:31:66:c2:f8:ce:e5:08:a6:a4:02:96:44:68:
#         57:c4:d5:33:cf:19:2f:14:c4:94:1c:7b:a4:d9:f0:9f:0e:b1:
#         80:e2:d1:9e:11:64:a9:88:11:3a:76:82:e5:62:c2:80:d8:a4:
#         83:ed:93:ef:7c:2f:90:b0:32:4c:96:15:68:48:52:d4:99:08:
#         c0:24:e8:1c:e3:b3:a5:21:0e:92:c0:90:1f:cf:20:5f:ca:3b:
#         38:c7:b7:6d:3a:f3:e6:44:b8:0e:31:6b:88:8e:70:eb:9c:17:
#         52:a8:41:94:2e:87:b6:e7:a6:12:c5:75:df:5b:c0:0a:6e:7b:
#         a4:e4:5e:86:f9:36:94:df:77:c3:e9:0d:c0:39:f1:79:bb:46:
#         8e:ab:43:59:27:b7:20:bb:23:e9:56:40:21:ec:31:3d:65:aa:
#         43:f2:3d:df:70:44:e1:ba:4d:26:10:3b:98:9f:f3:c8:8e:1b:
#         38:56:21:6a:51:93:d3:91:ca:46:da:89:b7:3d:53:83:2c:08:
#         1f:8b:8f:53:dd:ff:ac:1f

[p11-kit-object-v1]
label: "Explicitly Distrust DigiNotar Root CA"
class: x-certificate-extension
object-id: 1.3.6.1.4.1.3319.6.10.1
value: "0.%06%0a%2b%06%01%04%01%99w%06%0a%01%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----
[p11-kit-object-v1]
label: "Explicitly Distrust DigiNotar Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%18%06%03U%1d%25%01%01%ff%04%0e0%0c%06%0a%2b%06%01%04%01%99w%06%0a%10"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Explicitly Distrust DigiNotar Root CA"
x-distrusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0f:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = NL, O = DigiNotar, CN = DigiNotar Root CA, emailAddress = info@diginotar.nl
#        Validity
#            Not Before: Jul 27 17:19:37 2007 GMT
#            Not After : Mar 31 18:19:22 2025 GMT
#        Subject: C = NL, O = DigiNotar, CN = DigiNotar Root CA, emailAddress = info@diginotar.nl
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ac:b0:58:c1:00:bd:d8:21:08:0b:2b:9a:fe:6e:
#                    56:30:05:9f:1b:77:90:10:41:5c:c3:0d:87:11:77:
#                    8e:81:f1:ca:7c:e9:8c:6a:ed:38:74:35:bb:da:df:
#                    f9:bb:c0:09:37:b4:96:73:81:7d:33:1a:98:39:f7:
#                    93:6f:95:7f:3d:b9:b1:75:87:ba:51:48:e8:8b:70:
#                    3e:95:04:c5:d8:b6:c3:16:d9:88:b0:b1:87:1d:70:
#                    da:86:b4:0f:14:8b:7a:cf:10:d1:74:36:a2:12:7b:
#                    77:86:4a:79:e6:7b:df:02:11:68:a5:4e:86:ae:34:
#                    58:9b:24:13:78:56:22:25:1e:01:8b:4b:51:71:fb:
#                    82:cc:59:96:69:88:5a:68:53:c5:b9:0d:02:37:cb:
#                    4b:bc:66:4a:90:7e:2a:0b:05:07:ed:16:5f:55:90:
#                    75:d8:46:c9:1b:83:e2:08:be:f1:23:cc:99:1d:d6:
#                    2a:0f:83:20:15:58:27:82:2e:fa:e2:22:c2:49:b1:
#                    b9:01:81:6a:9d:6d:9d:40:77:68:76:4e:21:2a:6d:
#                    84:40:85:4e:76:99:7c:82:f3:f3:b7:02:59:d4:26:
#                    01:1b:8e:df:ad:53:06:d1:ae:18:dd:e2:b2:3a:cb:
#                    d7:88:38:8e:ac:5b:29:b9:19:d3:98:f9:18:03:cf:
#                    48:82:86:66:0b:1b:69:0f:c9:eb:38:88:7a:26:1a:
#                    05:4c:92:d7:24:d4:96:f2:ac:52:2d:a3:47:d5:52:
#                    f6:3f:fe:ce:84:06:70:a6:aa:3e:a2:f2:b6:56:34:
#                    18:57:a2:e4:81:6d:e7:ca:f0:6a:d3:c7:91:6b:02:
#                    83:41:7c:15:ef:6b:9a:64:5e:e3:d0:3c:e5:b1:eb:
#                    7b:5d:86:fb:cb:e6:77:49:cd:a3:65:dc:f7:b9:9c:
#                    b8:e4:0b:5f:93:cf:cc:30:1a:32:1c:ce:1c:63:95:
#                    a5:f9:ea:e1:74:8b:9e:e9:2b:a9:30:7b:a0:18:1f:
#                    0e:18:0b:e5:5b:a9:d3:d1:6c:1e:07:67:8f:91:4b:
#                    a9:8a:bc:d2:66:aa:93:01:88:b2:91:fa:31:5c:d5:
#                    a6:c1:52:08:09:cd:0a:63:a2:d3:22:a6:e8:a1:d9:
#                    39:06:97:f5:6e:8d:02:90:8c:14:7b:3f:80:cd:1b:
#                    9c:ba:c4:58:72:23:af:b6:56:9f:c6:7a:42:33:29:
#                    07:3f:82:c9:e6:1f:05:0d:cd:4c:28:36:8b:d3:c8:
#                    3e:1c:c6:88:ef:5e:ee:89:64:e9:1d:eb:da:89:7e:
#                    32:a6:69:d1:dd:cc:88:9f:d1:d0:c9:66:21:dc:06:
#                    67:c5:94:7a:9a:6d:62:4c:7d:cc:e0:64:80:b2:9e:
#                    47:8e:a3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                88:68:BF:E0:8E:35:C4:3B:38:6B:62:F7:28:3B:84:81:C8:0C:D7:4D
#    Signature Algorithm: sha1WithRSAEncryption
#         3b:02:8d:cb:3c:30:e8:6e:a0:ad:f2:73:b3:5f:9e:25:13:04:
#         05:d3:f6:e3:8b:bb:0b:79:ce:53:de:e4:96:c5:d1:af:73:bc:
#         d5:c3:d0:40:55:7c:40:7f:cd:1b:5f:09:d5:f2:7c:9f:68:1d:
#         bb:5d:ce:7a:39:c2:8c:d6:98:7b:c5:83:55:a8:d5:7d:40:ca:
#         e0:1e:f7:89:5e:63:5d:a1:13:c2:5d:8a:b6:8a:7c:00:f3:23:
#         c3:ed:85:5f:71:76:f0:68:63:aa:45:21:39:48:61:78:36:dc:
#         f1:43:93:d4:25:c7:f2:80:65:e1:53:02:75:51:fc:7a:3a:ef:
#         37:ab:84:28:57:0c:d8:d4:d4:99:56:6c:e3:a2:fe:59:84:b4:
#         31:e8:33:f8:64:94:94:51:97:ab:39:c5:4b:ed:da:dd:80:0b:
#         6f:7c:29:0d:c4:8e:8a:72:0d:e7:53:14:b2:60:41:3d:84:91:
#         31:68:3d:27:44:db:e5:de:f4:fa:63:45:c8:4c:3e:98:f5:3f:
#         41:ba:4e:cb:37:0d:ba:66:98:f1:dd:cb:9f:5c:f7:54:36:82:
#         6b:2c:bc:13:61:97:42:f8:78:bb:cc:c8:a2:9f:ca:f0:68:bd:
#         6b:1d:b2:df:8d:6f:07:9d:da:8e:67:c7:47:1e:ca:b9:bf:2a:
#         42:91:b7:63:53:66:f1:42:a3:e1:f4:5a:4d:58:6b:b5:e4:a4:
#         33:ad:5c:70:1d:dc:e0:f2:eb:73:14:91:9a:03:c1:ea:00:65:
#         bc:07:fc:cf:12:11:22:2c:ae:a0:bd:3a:e0:a2:2a:d8:59:e9:
#         29:d3:18:35:a4:ac:11:5f:19:b5:b5:1b:ff:22:4a:5c:c6:7a:
#         e4:17:ef:20:a9:a7:f4:3f:ad:8a:a7:9a:04:25:9d:0e:ca:37:
#         e6:50:fd:8c:42:29:04:9a:ec:b9:cf:4b:72:bd:e2:08:36:af:
#         23:2f:62:e5:ca:01:d3:70:db:7c:82:23:2c:16:31:0c:c6:36:
#         07:90:7a:b1:1f:67:58:c4:3b:58:59:89:b0:8c:8c:50:b3:d8:
#         86:cb:68:a3:c4:0a:e7:69:4b:20:ce:c1:1e:56:4b:95:a9:23:
#         68:d8:30:d8:c3:eb:b0:55:51:cd:e5:fd:2b:b8:f5:bb:11:9f:
#         53:54:f6:34:19:8c:79:09:36:ca:61:17:25:17:0b:82:98:73:
#         0c:77:74:c3:d5:0d:c7:a8:12:4c:c7:a7:54:71:47:2e:2c:1a:
#         7d:c9:e3:2b:3b:48:de:27:84:a7:63:36:b3:7d:8f:a0:64:39:
#         24:0d:3d:7b:87:af:66:5c:74:1b:4b:73:b2:e5:8c:f0:86:99:
#         b8:e5:c5:df:84:c1:b7:eb

[p11-kit-object-v1]
label: "FNMT-RCM"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "FNMT-RCM"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            81:bb:dd:6b:24:1f:da:b4:be:8f:1b:da:08:55:c4
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = FNMT-RCM, OU = AC RAIZ FNMT-RCM
#        Validity
#            Not Before: Oct 29 15:59:55 2008 GMT
#            Not After : Jan  1 00:00:00 2030 GMT
#        Subject: C = ES, O = FNMT-RCM, OU = AC RAIZ FNMT-RCM
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:71:80:7a:4c:86:6e:7f:c8:13:6d:c0:c6:7d:
#                    1c:00:97:8f:2c:0c:23:bb:10:9a:40:a9:1a:b7:87:
#                    88:f8:9b:56:6a:fb:e6:7b:8e:8b:92:8e:a7:25:5d:
#                    59:11:db:36:2e:b7:51:17:1f:a9:08:1f:04:17:24:
#                    58:aa:37:4a:18:df:e5:39:d4:57:fd:d7:c1:2c:91:
#                    01:91:e2:22:d4:03:c0:58:fc:77:47:ec:8f:3e:74:
#                    43:ba:ac:34:8d:4d:38:76:67:8e:b0:c8:6f:30:33:
#                    58:71:5c:b4:f5:6b:6e:d4:01:50:b8:13:7e:6c:4a:
#                    a3:49:d1:20:19:ee:bc:c0:29:18:65:a7:de:fe:ef:
#                    dd:0a:90:21:e7:1a:67:92:42:10:98:5f:4f:30:bc:
#                    3e:1c:45:b4:10:d7:68:40:14:c0:40:fa:e7:77:17:
#                    7a:e6:0b:8f:65:5b:3c:d9:9a:52:db:b5:bd:9e:46:
#                    cf:3d:eb:91:05:02:c0:96:b2:76:4c:4d:10:96:3b:
#                    92:fa:9c:7f:0f:99:df:be:23:35:45:1e:02:5c:fe:
#                    b5:a8:9b:99:25:da:5e:f3:22:c3:39:f5:e4:2a:2e:
#                    d3:c6:1f:c4:6c:aa:c5:1c:6a:01:05:4a:2f:d2:c5:
#                    c1:a8:34:26:5d:66:a5:d2:02:21:f9:18:b7:06:f5:
#                    4e:99:6f:a8:ab:4c:51:e8:cf:50:18:c5:77:c8:39:
#                    09:2c:49:92:32:99:a8:bb:17:17:79:b0:5a:c5:e6:
#                    a3:c4:59:65:47:35:83:5e:a9:e8:35:0b:99:bb:e4:
#                    cd:20:c6:9b:4a:06:39:b5:68:fc:22:ba:ee:55:8c:
#                    2b:4e:ea:f3:b1:e3:fc:b6:99:9a:d5:42:fa:71:4d:
#                    08:cf:87:1e:6a:71:7d:f9:d3:b4:e9:a5:71:81:7b:
#                    c2:4e:47:96:a5:f6:76:85:a3:28:8f:e9:80:6e:81:
#                    53:a5:6d:5f:b8:48:f9:c2:f9:36:a6:2e:49:ff:b8:
#                    96:c2:8c:07:b3:9b:88:58:fc:eb:1b:1c:de:2d:70:
#                    e2:97:92:30:a1:89:e3:bc:55:a8:27:d6:4b:ed:90:
#                    ad:8b:fa:63:25:59:2d:a8:35:dd:ca:97:33:bc:e5:
#                    cd:c7:9d:d1:ec:ef:5e:0e:4a:90:06:26:63:ad:b9:
#                    d9:35:2d:07:ba:76:65:2c:ac:57:8f:7d:f4:07:94:
#                    d7:81:02:96:5d:a3:07:49:d5:7a:d0:57:f9:1b:e7:
#                    53:46:75:aa:b0:79:42:cb:68:71:08:e9:60:bd:39:
#                    69:ce:f4:af:c3:56:40:c7:ad:52:a2:09:e4:6f:86:
#                    47:8a:1f:eb:28:27:5d:83:20:af:04:c9:6c:56:9a:
#                    8b:46:f5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F7:7D:C5:FD:C4:E8:9A:1B:77:64:A7:F5:1D:A0:CC:BF:87:60:9A:6D
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.cert.fnmt.es/dpcs/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         76:b9:26:d7:bc:60:7c:3b:c3:c7:84:51:92:59:79:b6:8d:bf:
#         53:e0:bc:88:a0:b5:d9:4c:e9:ad:f5:66:4e:ef:a0:60:c8:0b:
#         b8:91:ed:33:8e:82:f1:86:95:fe:c6:d3:1a:89:ab:4f:3b:d9:
#         33:1f:d0:0b:c7:b1:f5:4f:a4:4b:bb:03:0c:23:5c:6c:b0:de:
#         ac:72:fa:69:de:00:10:cd:f1:d6:cf:36:52:be:7f:fc:26:41:
#         f3:f2:fc:30:e2:31:c6:db:10:3e:a9:74:ba:4f:ec:ed:20:99:
#         c9:b0:e2:a2:a3:a9:42:99:33:cb:7f:f7:aa:02:e9:24:96:2a:
#         f8:e4:ce:5d:41:a0:06:09:55:5a:da:df:1a:4f:eb:39:fc:5f:
#         e0:a9:a9:44:d7:18:ea:95:b1:44:7b:da:ea:38:09:74:1e:67:
#         28:3f:e0:8b:39:2c:53:fa:0c:e0:39:f7:2b:1a:0e:31:01:d4:
#         66:79:88:74:9d:48:48:8e:b4:93:61:e6:bf:29:09:ef:be:06:
#         a9:1a:6c:08:70:04:0a:bf:6e:09:76:a4:64:43:ce:1f:57:9d:
#         97:9e:6c:f8:74:17:1c:51:03:fa:60:53:d4:56:46:96:d0:50:
#         9f:c6:9d:33:f3:43:b1:a8:d7:a2:c9:b0:c9:83:b1:7d:c7:dc:
#         ac:81:76:d7:89:ed:43:26:d6:ff:a2:5c:a2:2d:a0:24:47:aa:
#         46:9a:69:31:09:c1:fd:10:79:b0:85:ec:70:20:e6:3d:41:54:
#         a2:4a:62:2f:d6:de:4c:c3:9c:8f:bd:cb:a6:55:94:1c:dd:bd:
#         41:cf:28:65:8d:d0:4d:d7:87:d1:4c:d3:43:73:21:ec:d7:2e:
#         17:67:32:87:b6:d0:1b:74:aa:69:c7:e4:6c:87:d7:7d:19:9a:
#         ec:3d:44:f1:aa:82:59:72:cd:45:db:da:66:42:e1:38:6c:36:
#         5f:54:dd:26:56:57:a2:d9:3e:a4:0a:f2:ef:fc:19:80:1f:db:
#         ba:aa:80:bc:d8:51:cd:54:6a:d5:7f:d8:6f:b5:dc:16:fb:40:
#         e2:55:54:90:c3:dd:87:33:d1:ff:1e:a5:62:8b:36:44:ac:a8:
#         bf:c0:d6:c4:94:77:b3:bd:c4:75:24:69:e9:ff:39:94:ab:fc:
#         51:67:24:ea:40:1e:eb:89:2d:13:06:7d:ae:07:a1:c3:0c:f5:
#         d4:5a:b2:4e:b7:21:1d:17:c5:e5:b9:f2:1f:e3:86:01:5d:0b:
#         06:79:5d:c9:ca:3f:16:7e:81:1e:4d:7e:f0:9a:3c:25:c5:ce:
#         74:79:9e:4a:e1:f1:e9:f5:25:46:f6:c4:de:e4:44:64:73:1d:
#         c6:39:3e:7a:e6:85:7b:18

[p11-kit-object-v1]
label: "Federal Common Policy CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2HX7NRY0WkG/Wq9cMAQU
HK14RLXqJup1YcfNNnn4fNi9KVFmWSHjeavUeL6wLbCh1bI1FiPQzB6+Duir3MPJ
1hLXp3JoGDG4FyKyPn66CG3G/dFYLGmgA/Aqo/Y/ISU937cyxY4nsyOl4FKzXZbp
sLjFxZ+7xaBugkC7xScFNknWJidpDDSPzyd6KgqjQV+NHQOGgxXgVcHFmCye7Bpy
3EjBPvmE0oSCwRvDdDa3ucc2Mnr4MrbQNq4iGDGMUHMhnv6DOzCIJOPpwX7e7ZjH
H5IQip9bYi+dpLzVhW86/clTpyBLqtsgqyFOHQ1O5piF5asRR12dP8QjwOMUBm7+
nQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Federal Common Policy CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 304 (0x130)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = U.S. Government, OU = FPKI, CN = Federal Common Policy CA
#        Validity
#            Not Before: Dec  1 16:45:27 2010 GMT
#            Not After : Dec  1 16:45:27 2030 GMT
#        Subject: C = US, O = U.S. Government, OU = FPKI, CN = Federal Common Policy CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d8:75:fb:35:16:34:5a:41:bf:5a:af:5c:30:04:
#                    14:1c:ad:78:44:b5:ea:26:ea:75:61:c7:cd:36:79:
#                    f8:7c:d8:bd:29:51:66:59:21:e3:79:ab:d4:78:be:
#                    b0:2d:b0:a1:d5:b2:35:16:23:d0:cc:1e:be:0e:e8:
#                    ab:dc:c3:c9:d6:12:d7:a7:72:68:18:31:b8:17:22:
#                    b2:3e:7e:ba:08:6d:c6:fd:d1:58:2c:69:a0:03:f0:
#                    2a:a3:f6:3f:21:25:3d:df:b7:32:c5:8e:27:b3:23:
#                    a5:e0:52:b3:5d:96:e9:b0:b8:c5:c5:9f:bb:c5:a0:
#                    6e:82:40:bb:c5:27:05:36:49:d6:26:27:69:0c:34:
#                    8f:cf:27:7a:2a:0a:a3:41:5f:8d:1d:03:86:83:15:
#                    e0:55:c1:c5:98:2c:9e:ec:1a:72:dc:48:c1:3e:f9:
#                    84:d2:84:82:c1:1b:c3:74:36:b7:b9:c7:36:32:7a:
#                    f8:32:b6:d0:36:ae:22:18:31:8c:50:73:21:9e:fe:
#                    83:3b:30:88:24:e3:e9:c1:7e:de:ed:98:c7:1f:92:
#                    10:8a:9f:5b:62:2f:9d:a4:bc:d5:85:6f:3a:fd:c9:
#                    53:a7:20:4b:aa:db:20:ab:21:4e:1d:0d:4e:e6:98:
#                    85:e5:ab:11:47:5d:9d:3f:c4:23:c0:e3:14:06:6e:
#                    fe:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            Subject Information Access: 
#                CA Repository - URI:http://http.fpki.gov/fcpca/caCertsIssuedByfcpca.p7c
#                CA Repository - URI:ldap://ldap.fpki.gov/cn=Federal%20Common%20Policy%20CA,ou=FPKI,o=U.S.%20Government,c=US?cACertificate;binary,crossCertificatePair;binary
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                AD:0C:7A:75:5C:E5:F3:98:C4:79:98:0E:AC:28:FD:97:F4:E7:02:FC
#    Signature Algorithm: sha256WithRSAEncryption
#         8f:73:da:e1:7f:80:b1:87:f6:ec:2c:cf:d1:84:63:1e:f6:f1:
#         88:b7:9a:f2:11:b5:ef:54:ad:8a:6e:18:37:28:ef:5c:1b:e4:
#         ef:50:b7:6c:26:18:23:22:4d:1d:26:47:20:e9:09:9c:e2:70:
#         62:71:ab:11:cf:91:89:e8:b3:f5:2a:a0:47:c0:14:cb:4e:42:
#         c1:dd:0c:0e:1b:f0:87:5b:ec:e5:77:d7:aa:e0:54:d7:45:f4:
#         85:3e:ec:b4:1d:de:7c:8a:7f:5b:4d:9c:96:8a:d0:a2:32:9f:
#         da:6c:31:0c:f8:a4:ef:7e:73:e8:91:dc:08:7a:70:5a:a0:af:
#         62:81:59:f8:00:74:a2:c8:dd:54:ca:41:56:47:bd:e9:c0:4f:
#         ed:20:dd:e3:a5:09:df:ae:28:c2:fc:d1:c8:17:d8:12:c7:6f:
#         de:2e:e9:bd:9a:91:f2:3c:5a:94:2e:91:22:80:89:a1:8c:58:
#         cc:83:7a:26:19:75:02:a5:0e:7d:0a:26:73:51:ea:86:cb:07:
#         a8:c8:fd:63:5a:35:9b:d2:af:bf:4f:31:48:c1:84:70:db:35:
#         7b:9a:19:0f:e5:8f:f4:6a:0c:6f:33:d9:eb:1c:70:a2:0d:e3:
#         b9:50:03:61:02:ff:4a:ec:92:a4:dc:2d:ee:2a:34:93:07:b7:
#         2c:e7:18:8f

[p11-kit-object-v1]
label: "GDCA TrustAUTH R5 ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GDCA TrustAUTH R5 ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 9009899650740120186 (0x7d0997fef047ea7a)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = "GUANG DONG CERTIFICATE AUTHORITY CO.,LTD.", CN = GDCA TrustAUTH R5 ROOT
#        Validity
#            Not Before: Nov 26 05:13:15 2014 GMT
#            Not After : Dec 31 15:59:59 2040 GMT
#        Subject: C = CN, O = "GUANG DONG CERTIFICATE AUTHORITY CO.,LTD.", CN = GDCA TrustAUTH R5 ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d9:a3:16:f0:c8:74:74:77:9b:ef:33:0d:3b:06:
#                    7e:55:fc:b5:60:8f:76:86:12:42:7d:56:66:3e:88:
#                    82:ed:72:63:0e:9e:8b:dd:34:2c:02:51:51:c3:19:
#                    fd:59:54:84:c9:f1:6b:b3:4c:b0:e9:e8:46:5d:38:
#                    c6:a2:a7:2e:11:57:ba:82:15:a2:9c:8f:6d:b0:99:
#                    4a:0a:f2:eb:89:70:63:4e:79:c4:b7:5b:bd:a2:5d:
#                    b1:f2:41:02:2b:ad:a9:3a:a3:ec:79:0a:ec:5f:3a:
#                    e3:fd:ef:80:3c:ad:34:9b:1a:ab:88:26:7b:56:a2:
#                    82:86:1f:eb:35:89:83:7f:5f:ae:29:4e:3d:b6:6e:
#                    ec:ae:c1:f0:27:9b:ae:e3:f4:ec:ef:ae:7f:f7:86:
#                    3d:72:7a:eb:a5:fb:59:4e:a7:eb:95:8c:22:39:79:
#                    e1:2d:08:8f:cc:bc:91:b8:41:f7:14:c1:23:a9:c3:
#                    ad:9a:45:44:b3:b2:d7:2c:cd:c6:29:e2:50:10:ae:
#                    5c:cb:82:8e:17:18:36:7d:97:e6:88:9a:b0:4d:34:
#                    09:f4:2c:b9:5a:66:2a:b0:17:9b:9e:1e:76:9d:4a:
#                    66:31:41:df:3f:fb:c5:06:ef:1b:b6:7e:1a:46:36:
#                    f7:64:63:3b:e3:39:18:23:e7:67:75:14:d5:75:57:
#                    92:37:bd:be:6a:1b:26:50:f2:36:26:06:90:c5:70:
#                    01:64:6d:76:66:e1:91:db:6e:07:c0:61:80:2e:b2:
#                    2e:2f:8c:70:a7:d1:3b:3c:b3:91:e4:6e:b6:c4:3b:
#                    70:f2:6c:92:97:09:cd:47:7d:18:c0:f3:bb:9e:0f:
#                    d6:8b:ae:07:b6:5a:0f:ce:0b:0c:47:a7:e5:3e:b8:
#                    bd:7d:c7:9b:35:a0:61:97:3a:41:75:17:cc:2b:96:
#                    77:2a:92:21:1e:d9:95:76:20:67:68:cf:0d:bd:df:
#                    d6:1f:09:6a:9a:e2:cc:73:71:a4:2f:7d:12:80:b7:
#                    53:30:46:5e:4b:54:99:0f:67:c9:a5:c8:f2:20:c1:
#                    82:ec:9d:11:df:c2:02:fb:1a:3b:d1:ed:20:9a:ef:
#                    65:64:92:10:0d:2a:e2:de:70:f1:18:67:82:8c:61:
#                    de:b8:bc:d1:2f:9c:fb:0f:d0:2b:ed:1b:76:b9:e4:
#                    39:55:f8:f8:a1:1d:b8:aa:80:00:4c:82:e7:b2:7f:
#                    09:b8:bc:30:a0:2f:0d:f5:52:9e:8e:f7:92:b3:0a:
#                    00:1d:00:54:97:06:e0:b1:07:d9:c7:0f:5c:65:7d:
#                    3c:6d:59:57:e4:ed:a5:8d:e9:40:53:9f:15:4b:a0:
#                    71:f6:1a:21:e3:da:70:06:21:58:14:87:85:77:79:
#                    aa:82:79
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                E2:C9:40:9F:4D:CE:E8:9A:A1:7C:CF:0E:3F:65:C5:29:88:6A:19:51
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         d1:49:57:e0:a7:cc:68:58:ba:01:0f:2b:19:cd:8d:b0:61:45:
#         ac:11:ed:63:50:69:f8:1f:7f:be:16:8f:fd:9d:eb:0b:aa:32:
#         47:76:d2:67:24:ed:bd:7c:33:32:97:2a:c7:05:86:66:0d:17:
#         7d:14:15:1b:d4:eb:fd:1f:9a:f6:5e:97:69:b7:1a:25:a4:0a:
#         b3:91:3f:5f:36:ac:8b:ec:57:a8:3e:e7:81:8a:18:57:39:85:
#         74:1a:42:c7:e9:5b:13:5f:8f:f9:08:e9:92:74:8d:f5:47:d2:
#         ab:3b:d6:fb:78:66:4e:36:7d:f9:e9:92:e9:04:de:fd:49:63:
#         fc:6d:fb:14:71:93:67:2f:47:4a:b7:b9:ff:1e:2a:73:70:46:
#         30:bf:5a:f2:2f:79:a5:e1:8d:0c:d9:f9:b2:63:37:8c:37:65:
#         85:70:6a:5c:5b:09:72:b9:ad:63:3c:b1:dd:f8:fc:32:bf:37:
#         86:e4:bb:8e:98:27:7e:ba:1f:16:e1:70:11:f2:03:df:25:62:
#         32:27:26:18:32:84:9f:ff:00:3a:13:ba:9a:4d:f4:4f:b8:14:
#         70:22:b1:ca:2b:90:ce:29:c1:70:f4:2f:9d:7f:f2:90:1e:d6:
#         5a:df:b7:46:fc:e6:86:fa:cb:e0:20:76:7a:ba:a6:cb:f5:7c:
#         de:62:a5:b1:8b:ee:de:82:66:8a:4e:3a:30:1f:3f:80:cb:ad:
#         27:ba:0c:5e:d7:d0:b1:56:ca:77:71:b2:b5:75:a1:50:a9:40:
#         43:17:c2:28:d9:cf:52:8b:5b:c8:63:d4:42:3e:a0:33:7a:46:
#         2e:f7:0a:20:46:54:7e:6a:4f:31:f1:81:7e:42:74:38:65:73:
#         27:ee:c6:7c:b8:8e:d7:a5:3a:d7:98:a1:9c:8c:10:55:d3:db:
#         4b:ec:40:90:f2:cd:6e:57:d2:62:0e:7c:57:93:b1:a7:6d:cd:
#         9d:83:bb:2a:e7:e5:b6:3b:71:58:ad:fd:d1:45:bc:5a:91:ee:
#         53:15:6f:d3:45:09:75:6e:ba:90:5d:1e:04:cf:37:df:1e:a8:
#         66:b1:8c:e6:20:6a:ef:fc:48:4e:74:98:42:af:29:6f:2e:6a:
#         c7:fb:7d:d1:66:31:22:cc:86:00:7e:66:83:0c:42:f4:bd:34:
#         92:c3:1a:ea:4f:ca:7e:72:4d:0b:70:8c:a6:48:bb:a6:a1:14:
#         f6:fb:58:44:99:14:ae:aa:0b:93:69:a0:29:25:4a:a5:cb:2b:
#         dd:8a:66:07:16:78:15:57:71:1b:ec:f5:47:84:f3:9e:31:37:
#         7a:d5:7f:24:ad:e4:bc:fd:fd:cc:6e:83:e8:0c:a8:b7:41:6c:
#         07:dd:bd:3c:86:97:2f:d2

[p11-kit-object-v1]
label: "GLOBALTRUST"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GLOBALTRUST"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = AT, L = Vienna, ST = Austria, O = ARGE DATEN - Austrian Society for Data Protection, OU = GLOBALTRUST Certification Service, CN = GLOBALTRUST, emailAddress = info@globaltrust.info
#        Validity
#            Not Before: Aug  7 14:12:35 2006 GMT
#            Not After : Sep 18 14:12:35 2036 GMT
#        Subject: C = AT, L = Vienna, ST = Austria, O = ARGE DATEN - Austrian Society for Data Protection, OU = GLOBALTRUST Certification Service, CN = GLOBALTRUST, emailAddress = info@globaltrust.info
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d2:12:47:ec:5f:98:e8:0d:86:15:49:c4:dd:ec:
#                    9e:f1:6c:cd:51:b6:fb:95:4f:8b:c4:90:3d:53:33:
#                    b1:d3:13:c5:48:e2:a5:bf:f5:f4:03:84:0f:9c:78:
#                    71:f6:92:97:f1:5b:59:75:18:3f:27:0b:51:2f:5c:
#                    68:c7:a1:eb:00:f3:f6:95:3d:69:c3:7e:c2:ac:c4:
#                    0a:36:72:7a:5b:a6:d0:f7:01:7b:28:c7:2a:c7:32:
#                    60:ee:59:b8:d7:0b:27:dd:b3:45:05:2b:7b:64:a7:
#                    73:5c:e8:93:02:97:68:ec:fc:84:db:9e:d4:d5:81:
#                    47:c6:9c:c0:ac:97:cb:19:ea:87:a5:0a:a3:b8:75:
#                    24:e7:50:27:0d:ab:16:f9:56:5d:b1:81:01:16:7d:
#                    f3:e9:e1:24:f3:08:21:b9:ba:ac:5d:9e:c7:48:79:
#                    7f:6a:ca:df:39:77:04:6d:1b:6e:3a:cd:7f:ce:5c:
#                    48:ac:12:3c:59:f2:6a:cf:80:48:e1:f6:00:67:78:
#                    20:e0:fd:b5:64:7b:17:97:b3:e5:27:dd:45:6b:9b:
#                    61:99:06:be:f2:e7:9e:a4:6d:8b:3b:6b:0c:81:ee:
#                    b4:6f:a1:be:1a:12:41:4b:9e:ad:0e:f9:46:b4:5a:
#                    d1:03:00:94:16:c0:c0:f3:ac:fb:7c:bc:96:c0:29:
#                    d8:f9:33:16:89:a3:0e:1d:95:d9:03:d4:21:0c:dd:
#                    56:08:49:65:c8:8d:ab:21:1f:54:bb:99:bc:f1:44:
#                    5b:7b:00:18:fd:2a:19:58:d2:05:c9:d9:29:36:25:
#                    fe:77:ee:6b:59:54:4f:08:14:a2:99:09:45:57:ad:
#                    07:de:22:fc:87:1c:a0:ef:a0:79:dd:0a:7d:c0:7f:
#                    35:e8:0c:66:4d:e3:b5:6a:16:59:71:5b:f3:90:b0:
#                    52:5e:91:02:c7:a8:b9:c2:04:6f:9e:4f:b4:00:2d:
#                    ec:08:ec:ae:40:6e:f0:29:27:22:39:b6:cd:a0:86:
#                    10:ba:0b:35:ec:7b:5a:0d:b6:79:c3:fa:c7:ad:c1:
#                    fb:eb:ed:2b:84:0d:ea:de:f9:eb:9a:59:33:6c:c1:
#                    2b:12:8c:b8:3e:c5:36:23:38:1a:d6:77:93:90:d6:
#                    77:75:6a:58:19:17:a1:15:8e:6e:76:0e:a3:73:e1:
#                    5c:95:49:db:c1:0f:94:14:c5:d5:62:1b:99:ab:38:
#                    d5:67:6e:d2:a9:19:e1:5a:3a:87:6a:48:3f:91:96:
#                    e3:c6:c5:27:6b:57:74:31:98:f6:3e:71:71:ed:7e:
#                    de:b0:4d:2c:f3:ee:8f:db:7b:68:d7:10:44:29:ad:
#                    ec:ab:50:59:52:9a:6c:6a:72:14:4d:16:14:51:f7:
#                    d7:7e:1f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                C0:01:D5:E0:78:1F:2F:74:3A:E3:EB:C0:21:52:A6:04:EE:26:CB:A4
#            X509v3 Authority Key Identifier: 
#                keyid:C0:01:D5:E0:78:1F:2F:74:3A:E3:EB:C0:21:52:A6:04:EE:26:CB:A4
#                DirName:/C=AT/L=Vienna/ST=Austria/O=ARGE DATEN - Austrian Society for Data Protection/OU=GLOBALTRUST Certification Service/CN=GLOBALTRUST/emailAddress=info@globaltrust.info
#                serial:00
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#
#            X509v3 Subject Alternative Name: 
#                email:info@globaltrust.info, URI:http://www.globaltrust.info
#            X509v3 Issuer Alternative Name: 
#                email:info@globaltrust.info, URI:http://www.globaltrust.info
#    Signature Algorithm: sha1WithRSAEncryption
#         15:3b:88:83:5e:0e:de:3e:f0:3e:5d:dc:2d:a1:4a:fa:28:a5:
#         d6:07:a5:24:48:ce:9e:79:e8:79:9a:5c:24:8e:58:72:14:41:
#         85:c7:45:ee:3c:28:69:38:49:ae:22:8d:bb:8c:05:6d:ae:65:
#         bb:87:b9:7e:76:3b:28:63:6a:d6:6f:33:30:88:7e:55:05:ba:
#         b9:15:03:98:1d:62:d2:ce:c0:0f:6e:1c:9a:34:ee:e4:af:1f:
#         62:d1:ec:b4:79:cf:cf:69:92:8a:58:fd:c1:c7:76:0b:5c:cd:
#         52:34:48:6b:e5:0b:7f:c9:32:12:df:98:0a:16:d9:33:56:16:
#         8f:df:43:3f:d7:bd:3f:c5:1e:c5:ad:21:ac:87:2c:9a:e4:1c:
#         1f:85:03:ac:8b:c7:b7:33:62:49:c1:f8:aa:2b:4e:5d:87:3e:
#         76:52:ae:59:7e:31:e1:7c:ba:52:8b:58:90:d7:80:46:0b:34:
#         36:de:ef:11:c9:5c:22:46:c2:3c:a7:7f:62:04:6f:df:3e:48:
#         8e:ea:0b:3e:08:ac:18:1a:52:d6:f1:f6:d4:62:2f:03:b9:9a:
#         d6:3c:53:7f:55:26:c6:35:2b:21:74:b0:89:90:54:e4:01:88:
#         5c:9c:85:2a:9a:65:5e:4b:57:f2:80:1c:ec:67:34:9a:46:dc:
#         02:76:fe:72:37:72:09:b1:f0:23:8f:58:b3:02:7d:ee:78:0e:
#         b9:3d:73:12:2d:55:9f:17:63:af:ae:d8:ae:73:b6:c7:50:6a:
#         85:c1:db:7d:fb:94:59:70:c6:c3:07:6c:56:c5:b0:07:fc:4e:
#         7d:93:1d:b9:27:c0:b0:95:d5:e7:7c:05:bc:f7:0f:0a:b3:f4:
#         6e:15:57:49:1b:b5:14:00:a4:30:2b:5a:f4:56:58:bf:76:34:
#         a2:3d:fe:01:26:f0:dd:b8:6d:f0:a4:e7:bc:20:f6:51:08:f6:
#         e3:37:89:57:36:f6:f7:2f:fe:cd:b8:64:bd:ea:d7:a6:d0:ff:
#         78:ef:7e:e1:1c:1e:54:7e:0f:34:19:81:10:73:d2:e3:78:06:
#         17:b6:d2:51:fb:35:78:76:da:77:83:37:41:3e:2d:46:a8:7e:
#         86:de:56:f4:ca:90:9e:b4:ad:b0:1e:45:18:3c:34:88:02:87:
#         e8:f0:36:91:eb:f2:e7:b5:d2:04:b9:2e:b8:5d:8d:1d:9a:2e:
#         0b:16:19:cd:76:a4:ab:fb:d1:e2:a3:a2:dc:84:7d:7b:ea:50:
#         ea:f5:b2:04:3b:89:52:3a:b2:c3:19:4f:b9:26:b1:bc:bc:2c:
#         b2:e1:81:a6:b3:61:b5:f4:45:60:2f:2c:75:c5:c8:2d:88:4b:
#         26:bb:70:ee:3b:7f:01:2d

[p11-kit-object-v1]
label: "GLOBALTRUST 2015"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GLOBALTRUST 2015"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGDDCCA/SgAwIBAgIBADANBgkqhkiG9w0BAQsFADCBlzELMAkGA1UEBhMCQVQx
DTALBgNVBAgTBFdpZW4xDTALBgNVBAcTBFdpZW4xIzAhBgNVBAoTGmUtY29tbWVy
Y2UgbW9uaXRvcmluZyBHbWJIMSowKAYDVQQLEyFHTE9CQUxUUlVTVCBDZXJ0aWZp
Y2F0aW9uIFNlcnZpY2UxGTAXBgNVBAMTEEdMT0JBTFRSVVNUIDIwMTUwHhcNMTUw
NjExMDAwMDAwWhcNNDAwNjEwMDAwMDAwWjCBlzELMAkGA1UEBhMCQVQxDTALBgNV
BAgTBFdpZW4xDTALBgNVBAcTBFdpZW4xIzAhBgNVBAoTGmUtY29tbWVyY2UgbW9u
aXRvcmluZyBHbWJIMSowKAYDVQQLEyFHTE9CQUxUUlVTVCBDZXJ0aWZpY2F0aW9u
IFNlcnZpY2UxGTAXBgNVBAMTEEdMT0JBTFRSVVNUIDIwMTUwggIgMA0GCSqGSIb3
DQEBAQUAA4ICDQAwggIIAoICAQDUppeo8vSQEUOttIJGQfEvkW9jos0NINy9DDiK
ZUoKKzqodKl3oYuO8i+B94QYza3rYraSfeBB5U5UODeC78vg7c+7ysyjS/db/rh8
pwhty0PETCIUZuOdA7l3IatEayFHI8gg+irLkXYddWz4m+kPJulDL5ogBWgYx46Z
hS1BB6ZkjljhjZWApE1f9QLYgXnb1effoiL9FKdnFuzZWEzKqd3qGo6pCGRPUSG2
cqJO/1BxvTtl5L1/UxGu3xA5e132R3AX90ORA3phJV8s/PiJETzsOVQWScQhmnHg
eYt2HXY9B1m4B7GM3MfNTuH7rUNNP0DvIWIvMUROacdvIsurVEvowvoRaKzIbg7e
bMUnlglRAk0Btle/MijVCUOW98SItflU/ho6arcstSRk+0p4csP82U/ITiO5KdgN
oUhBkwJtvxKFm8bFYC3wkfyZ/SCUnnFjq9VJq5DshzmFf42FzAvo20s7DvzCdn1G
5zkmnt9V3x6E+UE2JmwCWSuO+7zpHyckYgRnhOE/2J0YTpagJe7KKANPAlHP9zU3
aaS01tbVHhlDJxYfR1HuSglMEVq2Wz1h6DsQvtZG5vQc/bhFvXz6dVrs4VIjDY4f
hpdTkVybmyjWjuVuJ60gjKfBQamXN4ss6m4YBZf2zgNS8b15NJtAxyOSdPNv7aPp
WfBVSwIBA6NjMGEwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHQYD
VR0OBBYEFMuw3T2MPN9iLCtmPJ486RVtcbTXMB8GA1UdIwQYMBaAFMuw3T2MPN9i
LCtmPJ486RVtcbTXMA0GCSqGSIb3DQEBCwUAA4ICAQCifVUEZu4WFLyCgYclGTli
9P47H+HAcwBxynWp4nPxxQ1Bo12OwS3ZZVvZieLwjsWgfb3LzEZTH1/tILYCKtYT
8p19UUpAVXGtnux26kUgjqr6ekOacGd+E96Y6MuN3R+sNNKhte3+uOcWz/jRODCN
NInSzn2B0h7/URhTNpPcCcsIFrgI11owkIoK+S+1z8TNVHIqxr0B51gLbgZAtAnO
tI6zmumJkZSselTh++OELIOgT/7r6MH067Ym0zjELa2sRYA0bSE9XYU64nv+VLfd
6IVUy6TxqylQeNcktaMvnq8RZq4YuP1dKM9A11XgLOtSMWhDZgWXkrvF8SEs/RJk
MZlDb4udS2D+FF5SsyOo4Zh67hTJoeLMP3YhYv1rDdm0SpXmblt6JMPTxtYfous3
a06j32Lr6w5KCL/rGIj7RxqtwlHD1Xz3HyuzyEpQDmlYIGIBSlvKY5YmIq726ZxA
rGcDnZ1pFcLA+F2nJLEnPL8F4quiysmwLX6jwTEgRiFlkt3K3t+TG7xtL1+pFqRX
hyxymlqCZ9FE4j0JCoGMHhD9xjRo7P93YXZ/Jvfb/BJGEqrA0fh5haICzIuqpK1s
FMC9/GiuRH0i+QpFXewE5vrjpMXm+bIZw9mMqJN7OoppO1ITPB0zAk6WQJ+5lf2T
FzPByQv2/b1pEPWtKfvj2g==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = AT, ST = Wien, L = Wien, O = e-commerce monitoring GmbH, OU = GLOBALTRUST Certification Service, CN = GLOBALTRUST 2015
#        Validity
#            Not Before: Jun 11 00:00:00 2015 GMT
#            Not After : Jun 10 00:00:00 2040 GMT
#        Subject: C = AT, ST = Wien, L = Wien, O = e-commerce monitoring GmbH, OU = GLOBALTRUST Certification Service, CN = GLOBALTRUST 2015
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d4:a6:97:a8:f2:f4:90:11:43:ad:b4:82:46:41:
#                    f1:2f:91:6f:63:a2:cd:0d:20:dc:bd:0c:38:8a:65:
#                    4a:0a:2b:3a:a8:74:a9:77:a1:8b:8e:f2:2f:81:f7:
#                    84:18:cd:ad:eb:62:b6:92:7d:e0:41:e5:4e:54:38:
#                    37:82:ef:cb:e0:ed:cf:bb:ca:cc:a3:4b:f7:5b:fe:
#                    b8:7c:a7:08:6d:cb:43:c4:4c:22:14:66:e3:9d:03:
#                    b9:77:21:ab:44:6b:21:47:23:c8:20:fa:2a:cb:91:
#                    76:1d:75:6c:f8:9b:e9:0f:26:e9:43:2f:9a:20:05:
#                    68:18:c7:8e:99:85:2d:41:07:a6:64:8e:58:e1:8d:
#                    95:80:a4:4d:5f:f5:02:d8:81:79:db:d5:e7:df:a2:
#                    22:fd:14:a7:67:16:ec:d9:58:4c:ca:a9:dd:ea:1a:
#                    8e:a9:08:64:4f:51:21:b6:72:a2:4e:ff:50:71:bd:
#                    3b:65:e4:bd:7f:53:11:ae:df:10:39:7b:5d:f6:47:
#                    70:17:f7:43:91:03:7a:61:25:5f:2c:fc:f8:89:11:
#                    3c:ec:39:54:16:49:c4:21:9a:71:e0:79:8b:76:1d:
#                    76:3d:07:59:b8:07:b1:8c:dc:c7:cd:4e:e1:fb:ad:
#                    43:4d:3f:40:ef:21:62:2f:31:44:4e:69:c7:6f:22:
#                    cb:ab:54:4b:e8:c2:fa:11:68:ac:c8:6e:0e:de:6c:
#                    c5:27:96:09:51:02:4d:01:b6:57:bf:32:28:d5:09:
#                    43:96:f7:c4:88:b5:f9:54:fe:1a:3a:6a:b7:2c:b5:
#                    24:64:fb:4a:78:72:c3:fc:d9:4f:c8:4e:23:b9:29:
#                    d8:0d:a1:48:41:93:02:6d:bf:12:85:9b:c6:c5:60:
#                    2d:f0:91:fc:99:fd:20:94:9e:71:63:ab:d5:49:ab:
#                    90:ec:87:39:85:7f:8d:85:cc:0b:e8:db:4b:3b:0e:
#                    fc:c2:76:7d:46:e7:39:26:9e:df:55:df:1e:84:f9:
#                    41:36:26:6c:02:59:2b:8e:fb:bc:e9:1f:27:24:62:
#                    04:67:84:e1:3f:d8:9d:18:4e:96:a0:25:ee:ca:28:
#                    03:4f:02:51:cf:f7:35:37:69:a4:b4:d6:d6:d5:1e:
#                    19:43:27:16:1f:47:51:ee:4a:09:4c:11:5a:b6:5b:
#                    3d:61:e8:3b:10:be:d6:46:e6:f4:1c:fd:b8:45:bd:
#                    7c:fa:75:5a:ec:e1:52:23:0d:8e:1f:86:97:53:91:
#                    5c:9b:9b:28:d6:8e:e5:6e:27:ad:20:8c:a7:c1:41:
#                    a9:97:37:8b:2c:ea:6e:18:05:97:f6:ce:03:52:f1:
#                    bd:79:34:9b:40:c7:23:92:74:f3:6f:ed:a3:e9:59:
#                    f0:55:4b
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CB:B0:DD:3D:8C:3C:DF:62:2C:2B:66:3C:9E:3C:E9:15:6D:71:B4:D7
#            X509v3 Authority Key Identifier: 
#                keyid:CB:B0:DD:3D:8C:3C:DF:62:2C:2B:66:3C:9E:3C:E9:15:6D:71:B4:D7
#
#    Signature Algorithm: sha256WithRSAEncryption
#         a2:7d:55:04:66:ee:16:14:bc:82:81:87:25:19:39:62:f4:fe:
#         3b:1f:e1:c0:73:00:71:ca:75:a9:e2:73:f1:c5:0d:41:a3:5d:
#         8e:c1:2d:d9:65:5b:d9:89:e2:f0:8e:c5:a0:7d:bd:cb:cc:46:
#         53:1f:5f:ed:20:b6:02:2a:d6:13:f2:9d:7d:51:4a:40:55:71:
#         ad:9e:ec:76:ea:45:20:8e:aa:fa:7a:43:9a:70:67:7e:13:de:
#         98:e8:cb:8d:dd:1f:ac:34:d2:a1:b5:ed:fe:b8:e7:16:cf:f8:
#         d1:38:30:8d:34:89:d2:ce:7d:81:d2:1e:ff:51:18:53:36:93:
#         dc:09:cb:08:16:b8:08:d7:5a:30:90:8a:0a:f9:2f:b5:cf:c4:
#         cd:54:72:2a:c6:bd:01:e7:58:0b:6e:06:40:b4:09:ce:b4:8e:
#         b3:9a:e9:89:91:94:ac:7a:54:e1:fb:e3:84:2c:83:a0:4f:fe:
#         eb:e8:c1:f4:eb:b6:26:d3:38:c4:2d:ad:ac:45:80:34:6d:21:
#         3d:5d:85:3a:e2:7b:fe:54:b7:dd:e8:85:54:cb:a4:f1:ab:29:
#         50:78:d7:24:b5:a3:2f:9e:af:11:66:ae:18:b8:fd:5d:28:cf:
#         40:d7:55:e0:2c:eb:52:31:68:43:66:05:97:92:bb:c5:f1:21:
#         2c:fd:12:64:31:99:43:6f:8b:9d:4b:60:fe:14:5e:52:b3:23:
#         a8:e1:98:7a:ee:14:c9:a1:e2:cc:3f:76:21:62:fd:6b:0d:d9:
#         b4:4a:95:e6:6e:5b:7a:24:c3:d3:c6:d6:1f:a2:eb:37:6b:4e:
#         a3:df:62:eb:eb:0e:4a:08:bf:eb:18:88:fb:47:1a:ad:c2:51:
#         c3:d5:7c:f7:1f:2b:b3:c8:4a:50:0e:69:58:20:62:01:4a:5b:
#         ca:63:96:26:22:ae:f6:e9:9c:40:ac:67:03:9d:9d:69:15:c2:
#         c0:f8:5d:a7:24:b1:27:3c:bf:05:e2:ab:a2:ca:c9:b0:2d:7e:
#         a3:c1:31:20:46:21:65:92:dd:ca:de:df:93:1b:bc:6d:2f:5f:
#         a9:16:a4:57:87:2c:72:9a:5a:82:67:d1:44:e2:3d:09:0a:81:
#         8c:1e:10:fd:c6:34:68:ec:ff:77:61:76:7f:26:f7:db:fc:12:
#         46:12:aa:c0:d1:f8:79:85:a2:02:cc:8b:aa:a4:ad:6c:14:c0:
#         bd:fc:68:ae:44:7d:22:f9:0a:45:5d:ec:04:e6:fa:e3:a4:c5:
#         e6:f9:b2:19:c3:d9:8c:a8:93:7b:3a:8a:69:3b:52:13:3c:1d:
#         33:02:4e:96:40:9f:b9:95:fd:93:17:33:c1:c9:0b:f6:fd:bd:
#         69:10:f5:ad:29:fb:e3:da

[p11-kit-object-v1]
label: "GLOBALTRUST 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GLOBALTRUST 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5a:4b:bd:5a:fb:4f:8a:5b:fa:65:e5
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = AT, O = e-commerce monitoring GmbH, CN = GLOBALTRUST 2020
#        Validity
#            Not Before: Feb 10 00:00:00 2020 GMT
#            Not After : Jun 10 00:00:00 2040 GMT
#        Subject: C = AT, O = e-commerce monitoring GmbH, CN = GLOBALTRUST 2020
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ae:2e:56:ad:1b:1c:ef:f6:95:8f:a0:77:1b:2b:
#                    d3:63:8f:84:4d:45:a2:0f:9f:5b:45:ab:59:7b:51:
#                    34:f9:ec:8b:8a:78:c5:dd:6b:af:bd:c4:df:93:45:
#                    1e:bf:91:38:0b:ae:0e:16:e7:41:73:f8:db:bb:d1:
#                    b8:51:e0:cb:83:3b:73:38:6e:77:8a:0f:59:63:26:
#                    cd:a7:2a:ce:54:fb:b8:e2:c0:7c:47:ce:60:7c:3f:
#                    b2:73:f2:c0:19:b6:8a:92:87:35:0d:90:28:a2:e4:
#                    15:04:63:3e:ba:af:ee:7c:5e:cc:a6:8b:50:b2:38:
#                    f7:41:63:ca:ce:ff:69:8f:68:0e:95:36:e5:cc:b9:
#                    8c:09:ca:4b:dd:31:90:96:c8:cc:1f:fd:56:96:34:
#                    db:8e:1c:ea:2c:be:85:2e:63:dd:aa:a9:95:d3:fd:
#                    29:95:13:f0:c8:98:93:d9:2d:16:47:90:11:83:a2:
#                    3a:22:a2:28:57:a2:eb:fe:c0:8c:28:a0:a6:7d:e7:
#                    2a:42:3b:82:80:63:a5:63:1f:19:cc:7c:b2:66:a8:
#                    c2:d3:6d:37:6f:e2:7e:06:51:d9:45:84:1f:12:ce:
#                    24:52:64:85:0b:48:80:4e:87:b1:22:22:30:aa:eb:
#                    ae:be:e0:02:e0:40:e8:b0:42:80:03:51:aa:b4:7e:
#                    aa:44:d7:43:61:f3:a2:6b:16:89:49:a4:a3:a4:2b:
#                    8a:02:c4:78:f4:68:8a:c1:e4:7a:36:b1:6f:1b:96:
#                    1b:77:49:8d:d4:c9:06:72:8f:cf:53:e3:dc:17:85:
#                    20:4a:dc:98:27:d3:91:26:2b:47:1e:69:07:af:de:
#                    a2:e4:e4:d4:6b:0b:b3:5e:7c:d4:24:80:47:29:69:
#                    3b:6e:e8:ac:fd:40:eb:d8:ed:71:71:2b:f2:e8:58:
#                    1d:eb:41:97:22:c5:1f:d4:39:d0:27:8f:87:e3:18:
#                    f4:e0:a9:46:0d:f5:74:3a:82:2e:d0:6e:2c:91:a3:
#                    31:5c:3b:46:ea:7b:04:10:56:5e:80:1d:f5:a5:65:
#                    e8:82:fc:e2:07:8c:62:45:f5:20:de:46:70:86:a1:
#                    bc:93:d3:1e:74:a6:6c:b0:2c:f7:03:0c:88:0c:cb:
#                    d4:72:53:86:bc:60:46:f3:98:6a:c2:f1:bf:43:f9:
#                    70:20:77:ca:37:41:79:55:52:63:8d:5b:12:9f:c5:
#                    68:c4:88:9d:ac:f2:30:ab:b7:a3:31:97:67:ad:8f:
#                    17:0f:6c:c7:73:ed:24:94:6b:c8:83:9a:d0:9a:37:
#                    49:04:ab:b1:16:c8:6c:49:49:2d:ab:a1:d0:8c:92:
#                    f2:41:4a:79:21:25:db:63:d7:b6:9c:a7:7e:42:69:
#                    fb:3a:63
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                DC:2E:1F:D1:61:37:79:E4:AB:D5:D5:B3:12:71:68:3D:6A:68:9C:22
#            X509v3 Authority Key Identifier: 
#                keyid:DC:2E:1F:D1:61:37:79:E4:AB:D5:D5:B3:12:71:68:3D:6A:68:9C:22
#
#    Signature Algorithm: sha256WithRSAEncryption
#         91:f0:42:02:68:40:ee:c3:68:c0:54:2f:df:ec:62:c3:c3:9e:
#         8a:a0:31:28:aa:83:8e:a4:56:96:12:10:86:56:ba:97:72:d2:
#         54:30:7c:ad:19:d5:1d:68:6f:fb:14:42:d8:8d:0e:f3:b5:d1:
#         a5:e3:02:42:5e:dc:e8:46:58:07:35:02:30:e0:bc:74:4a:c1:
#         43:2a:ff:db:1a:d0:b0:af:6c:c3:fd:cb:b3:f5:7f:6d:03:2e:
#         59:56:9d:2d:2d:35:8c:b2:d6:43:17:2c:92:0a:cb:5d:e8:8c:
#         0f:4b:70:43:d0:82:ff:a8:cc:bf:a4:94:c0:be:87:bd:8a:e3:
#         93:7b:c6:8f:9b:16:9d:27:65:bc:7a:c5:42:82:6c:5c:07:d0:
#         a9:c1:88:60:44:e9:98:85:16:5f:f8:8f:ca:01:10:ce:25:c3:
#         f9:60:1b:a0:c5:97:c3:d3:2c:88:31:a2:bd:30:ec:d0:d0:c0:
#         12:f1:c1:39:e3:e5:f5:f8:d6:4a:dd:34:cd:fb:6f:c1:4f:e3:
#         00:8b:56:e2:92:f7:28:b2:42:77:72:23:67:c7:3f:11:15:b2:
#         c4:03:05:be:bb:11:7b:0a:bf:a8:6e:e7:ff:58:43:cf:9b:67:
#         a0:80:07:b6:1d:ca:ad:6d:ea:41:11:7e:2d:74:93:fb:c2:bc:
#         be:51:44:c5:ef:68:25:27:80:e3:c8:a0:d4:12:ec:d9:a5:37:
#         1d:37:7c:b4:91:ca:da:d4:b1:96:81:ef:68:5c:76:10:49:af:
#         7e:a5:37:80:b1:1c:52:bd:33:81:4c:8f:f9:dd:65:d9:14:cd:
#         8a:25:58:f4:e2:c5:83:a5:09:90:d4:6c:14:63:b5:40:df:eb:
#         c0:fc:c4:58:7e:0d:14:16:87:54:27:6e:56:e4:70:84:b8:6c:
#         32:12:7e:82:31:43:be:d7:dd:7c:a1:ad:ae:d6:ab:20:12:ef:
#         0a:c3:10:8c:49:96:35:dc:0b:75:5e:b1:4f:d5:4f:34:0e:11:
#         20:07:75:43:45:e9:a3:11:da:ac:a3:99:c2:b6:79:27:e2:b9:
#         ef:c8:e2:f6:35:29:7a:74:fa:c5:7f:82:05:62:a6:0a:ea:68:
#         b2:79:47:06:6e:f2:57:a8:15:33:c6:f7:78:4a:3d:42:7b:6b:
#         7e:fe:f7:46:ea:d1:eb:8e:ef:88:68:5b:e8:c1:d9:71:7e:fd:
#         64:ef:ff:67:47:88:58:25:2f:3e:86:07:bd:fb:a8:e5:82:a8:
#         ac:a5:d3:69:43:cd:31:88:49:84:53:92:c0:b1:39:1b:39:83:
#         01:30:c4:f2:a9:fa:d0:03:bd:72:37:60:56:1f:36:7c:bd:39:
#         91:f5:6d:0d:bf:7b:d7:92

[p11-kit-object-v1]
label: "GPKIRootCA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBITANBgkqhkiG9w0BAQEFAAOCAQ4AMIIBCQKCAQBaK0EVm9t2JgHwVHILhxMf
oNA/lqoNszSB3khan/NwWsLxOp4E8E6UeZfh9LUUTNdvxIsYt9wSKx0Km+4gDFuP
//mvgp6YRtA9XSjzlxbBXOVWv0SkAKF6y5t6W9zU7fvyoAJnAB5E5YoB3KWjTv7W
DGfKSbnw0KD5TR8D04bvDYV1TfPt+81qZgRX9FebrGaKT8KoT3GJCd1MAN+Wu9WQ
CrS2am3Gv9OZKf9i8BDaRawJcguCEOgVqItf4qJaeR7CZ/3pRFcLA9AhFVGwAPOP
beIj8Ekh2W3PYj3s6/0okgE/eqNyfOvzruf4CuxurXqbVckwS5y2YUZrWBr+n0gd
AgMBAAE=
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GPKIRootCA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDijCCAnKgAwIBAgIQRfjg5AHFPnHmvXFtl5xBIzANBgkqhkiG9w0BAQUFADBP
MQswCQYDVQQGEwJLUjEcMBoGA1UEChMTR292ZXJubWVudCBvZiBLb3JlYTENMAsG
A1UECxMER1BLSTETMBEGA1UEAxMKR1BLSVJvb3RDQTAeFw0wNzAzMTUwNjAwMDRa
Fw0xNzAzMTUwNjAwMDRaME8xCzAJBgNVBAYTAktSMRwwGgYDVQQKExNHb3Zlcm5t
ZW50IG9mIEtvcmVhMQ0wCwYDVQQLEwRHUEtJMRMwEQYDVQQDEwpHUEtJUm9vdENB
MIIBITANBgkqhkiG9w0BAQEFAAOCAQ4AMIIBCQKCAQBaK0EVm9t2JgHwVHILhxMf
oNA/lqoNszSB3khan/NwWsLxOp4E8E6UeZfh9LUUTNdvxIsYt9wSKx0Km+4gDFuP
//mvgp6YRtA9XSjzlxbBXOVWv0SkAKF6y5t6W9zU7fvyoAJnAB5E5YoB3KWjTv7W
DGfKSbnw0KD5TR8D04bvDYV1TfPt+81qZgRX9FebrGaKT8KoT3GJCd1MAN+Wu9WQ
CrS2am3Gv9OZKf9i8BDaRawJcguCEOgVqItf4qJaeR7CZ/3pRFcLA9AhFVGwAPOP
beIj8Ekh2W3PYj3s6/0okgE/eqNyfOvzruf4CuxurXqbVckwS5y2YUZrWBr+n0gd
AgMBAAGjYzBhMB8GA1UdIwQYMBaAFBZnMvRoXmgxR9vt7M5hLpokRsR9MB0GA1Ud
DgQWBBQWZzL0aF5oMUfb7ezOYS6aJEbEfTAOBgNVHQ8BAf8EBAMCAa4wDwYDVR0T
AQH/BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEANWNSxmAYHLfCwVpYAuwH1aGQ
k/yAR9BSeKuF+HbTuLAYMqC2kGgTZj1vr47c9qPEzjlfr+0KZuB8EcgMy54fOCmK
i97IYy7HtNLONpGU4E+EkraqIqj9MaczSMlb9hPYFhbrHz+lTgaTOtkGZTCW+o0G
26Ea9Cv6D2jwwSt8nQXXCUI70i+RkPwOazhbsnWpV5xXZPWYIKT/1DAE5M4fkMkv
wd9aVrjLqqq0v+u49yJKTcE19GW9eLxveBtWOoHoDfXCpRcw041Xd8ulwUyxMN00
uKuSCiICNov2bPdhuQjuMK0aqETxLjLsg6JISDpnX+lvGxczCCrBycNnmg6FZw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            45:f8:e0:e4:01:c5:3e:71:e6:bd:71:6d:97:9c:41:23
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = KR, O = Government of Korea, OU = GPKI, CN = GPKIRootCA
#        Validity
#            Not Before: Mar 15 06:00:04 2007 GMT
#            Not After : Mar 15 06:00:04 2017 GMT
#        Subject: C = KR, O = Government of Korea, OU = GPKI, CN = GPKIRootCA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2047 bit)
#                Modulus:
#                    5a:2b:41:15:9b:db:76:26:01:f0:54:72:0b:87:13:
#                    1f:a0:d0:3f:96:aa:0d:b3:34:81:de:48:5a:9f:f3:
#                    70:5a:c2:f1:3a:9e:04:f0:4e:94:79:97:e1:f4:b5:
#                    14:4c:d7:6f:c4:8b:18:b7:dc:12:2b:1d:0a:9b:ee:
#                    20:0c:5b:8f:ff:f9:af:82:9e:98:46:d0:3d:5d:28:
#                    f3:97:16:c1:5c:e5:56:bf:44:a4:00:a1:7a:cb:9b:
#                    7a:5b:dc:d4:ed:fb:f2:a0:02:67:00:1e:44:e5:8a:
#                    01:dc:a5:a3:4e:fe:d6:0c:67:ca:49:b9:f0:d0:a0:
#                    f9:4d:1f:03:d3:86:ef:0d:85:75:4d:f3:ed:fb:cd:
#                    6a:66:04:57:f4:57:9b:ac:66:8a:4f:c2:a8:4f:71:
#                    89:09:dd:4c:00:df:96:bb:d5:90:0a:b4:b6:6a:6d:
#                    c6:bf:d3:99:29:ff:62:f0:10:da:45:ac:09:72:0b:
#                    82:10:e8:15:a8:8b:5f:e2:a2:5a:79:1e:c2:67:fd:
#                    e9:44:57:0b:03:d0:21:15:51:b0:00:f3:8f:6d:e2:
#                    23:f0:49:21:d9:6d:cf:62:3d:ec:eb:fd:28:92:01:
#                    3f:7a:a3:72:7c:eb:f3:ae:e7:f8:0a:ec:6e:ad:7a:
#                    9b:55:c9:30:4b:9c:b6:61:46:6b:58:1a:fe:9f:48:
#                    1d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:16:67:32:F4:68:5E:68:31:47:DB:ED:EC:CE:61:2E:9A:24:46:C4:7D
#
#            X509v3 Subject Key Identifier: 
#                16:67:32:F4:68:5E:68:31:47:DB:ED:EC:CE:61:2E:9A:24:46:C4:7D
#            X509v3 Key Usage: critical
#                Digital Signature, Key Encipherment, Key Agreement, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         35:63:52:c6:60:18:1c:b7:c2:c1:5a:58:02:ec:07:d5:a1:90:
#         93:fc:80:47:d0:52:78:ab:85:f8:76:d3:b8:b0:18:32:a0:b6:
#         90:68:13:66:3d:6f:af:8e:dc:f6:a3:c4:ce:39:5f:af:ed:0a:
#         66:e0:7c:11:c8:0c:cb:9e:1f:38:29:8a:8b:de:c8:63:2e:c7:
#         b4:d2:ce:36:91:94:e0:4f:84:92:b6:aa:22:a8:fd:31:a7:33:
#         48:c9:5b:f6:13:d8:16:16:eb:1f:3f:a5:4e:06:93:3a:d9:06:
#         65:30:96:fa:8d:06:db:a1:1a:f4:2b:fa:0f:68:f0:c1:2b:7c:
#         9d:05:d7:09:42:3b:d2:2f:91:90:fc:0e:6b:38:5b:b2:75:a9:
#         57:9c:57:64:f5:98:20:a4:ff:d4:30:04:e4:ce:1f:90:c9:2f:
#         c1:df:5a:56:b8:cb:aa:aa:b4:bf:eb:b8:f7:22:4a:4d:c1:35:
#         f4:65:bd:78:bc:6f:78:1b:56:3a:81:e8:0d:f5:c2:a5:17:30:
#         d3:8d:57:77:cb:a5:c1:4c:b1:30:dd:34:b8:ab:92:0a:22:02:
#         36:8b:f6:6c:f7:61:b9:08:ee:30:ad:1a:a8:44:f1:2e:32:ec:
#         83:a2:48:48:3a:67:5f:e9:6f:1b:17:33:08:2a:c1:c9:c3:67:
#         9a:0e:85:67

[p11-kit-object-v1]
label: "GTS Root R1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFVzCCAz+gAwIBAgINAgPlk28xsBNJiGuiFzANBgkqhkiG9w0BAQwFADBHMQsw
CQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZpY2VzIExMQzEU
MBIGA1UEAxMLR1RTIFJvb3QgUjEwHhcNMTYwNjIyMDAwMDAwWhcNMzYwNjIyMDAw
MDAwWjBHMQswCQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZp
Y2VzIExMQzEUMBIGA1UEAxMLR1RTIFJvb3QgUjEwggIiMA0GCSqGSIb3DQEBAQUA
A4ICDwAwggIKAoICAQC2EQKLHuOhd5s73L+UPreVp0A8of2C+X0yBoJx9vaMf/vo
27xqLpeXo4xL+Sv2sfnOhB2x+cWX3u+58qPpvBKJXqeqUqv4IyfLpLGcY9vXmX7w
Cl7raKb0xlpHDU0QM+NOsROjyBhsS+z8CZDfnWQpJSMHobTSPS5g4M/SCYe7zUjw
TcLCeoiKu7rPWRnWr4+wB7CeMfGCwcDfLqZtbBkOtdh+JhpFAz2weaSUKK0Pfybl
qAj+lug8aJRT7oM6iCsVlgmy4HqMLnXWnOunVmSPlk9orj2XwoSPwLxAwAtcvfaH
szVsrBhQf4TgTM2S0yDpM7xSma8ytSmzJSq0SPly4cpk9+aCEI3oncKKiPo4Zor8
Y/kB+Xj9e1x3+naH+uzfsQ55lVe0vSbv1gHR6xYKu44LtcXFilWr06zqkUspzBmk
MiVOKvFlRNACzqrOSbTqn3yDsEB750Orp2yjj32JgfpMpf/VjsPOS+C12LOORc92
wO1AK/1TD7Cn1TsNsYqiA94xrcx36m97PtbfkSIS5r762DL8EGMUUXLeXdYWk70p
aDPvOmbsB4om3xPXV2V4J95eSRQAogB/mqghtqmxlbCluQ0WEdrHbEg8QOB+DVrN
VjzRlwW5y0vtOUucxD/SVRNuJLDWcfr0wbrM7Rv1/oFB2ACYPTrIrnqYNxgFlQID
AQABo0IwQDAOBgNVHQ8BAf8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4E
FgQU5K8rJnEaK0gnhS9SZizv8IkTcT4wDQYJKoZIhvcNAQEMBQADggIBAJ+qQibb
C5u+/x6Wki4+omVKapi6Ist9wTrYggoGxval3sBOh2Z5ofmmWJyq+bXmYOfg6LEe
QkEzCzc9zolwFcq1JKjPa7XSQCGYzyI0zzvFIoTgxQ6KfF2I5DUkzps+GlQebtuy
h6f88/qBVRRiClmpIgUxPoLW7ttXNLwzldMXG+gnoot7TiYaelpkttGsN/H9oPM4
7HLwEXWdyzRSjeZ2axfG34arJ45JK3VmgRAhpuo+9K4l/3wV3s6MJT/KYnAK9y8J
ZgfIPxz88NtFMN9iiMG1D53Dn0reWVlHxYciNuaCp+0KueIHoI17eko8cdLiA6Ef
MgfdG+RCzgwARWGAtQsgWSl4vflVy2PFPEz0tv/bal8xa5meLMFrUKTX5hgUvYU/
Z6tGn6D/Qqc6f1zLXbBwHSs09dR2CQzreExZBfMzQsNhFRAbd03OIozUhfJFfbdT
6u9AWpQKXCBfTkBdYiJ23//OYb2MI3jSNwLgjt7RETeJ9r/tSQdirpLsQBqvFAnZ
0E6yove+7u7Y/9waLd64NnHi/Hm3lCXRSHNboTXns5lndcEZOitHTtNCjv0xyBZm
2tIMPNuzjsmhDYAPexZ3FL//2wmUspO8IFgV6dtxQ/PeEMMA3KgqlbbC1j+Qa3bb
bP6MvPJwNQzcmRk13NfIRmPVNnGuV/u3gm3c
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:93:6f:31:b0:13:49:88:6b:a2:17
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = Google Trust Services LLC, CN = GTS Root R1
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C = US, O = Google Trust Services LLC, CN = GTS Root R1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:11:02:8b:1e:e3:a1:77:9b:3b:dc:bf:94:3e:
#                    b7:95:a7:40:3c:a1:fd:82:f9:7d:32:06:82:71:f6:
#                    f6:8c:7f:fb:e8:db:bc:6a:2e:97:97:a3:8c:4b:f9:
#                    2b:f6:b1:f9:ce:84:1d:b1:f9:c5:97:de:ef:b9:f2:
#                    a3:e9:bc:12:89:5e:a7:aa:52:ab:f8:23:27:cb:a4:
#                    b1:9c:63:db:d7:99:7e:f0:0a:5e:eb:68:a6:f4:c6:
#                    5a:47:0d:4d:10:33:e3:4e:b1:13:a3:c8:18:6c:4b:
#                    ec:fc:09:90:df:9d:64:29:25:23:07:a1:b4:d2:3d:
#                    2e:60:e0:cf:d2:09:87:bb:cd:48:f0:4d:c2:c2:7a:
#                    88:8a:bb:ba:cf:59:19:d6:af:8f:b0:07:b0:9e:31:
#                    f1:82:c1:c0:df:2e:a6:6d:6c:19:0e:b5:d8:7e:26:
#                    1a:45:03:3d:b0:79:a4:94:28:ad:0f:7f:26:e5:a8:
#                    08:fe:96:e8:3c:68:94:53:ee:83:3a:88:2b:15:96:
#                    09:b2:e0:7a:8c:2e:75:d6:9c:eb:a7:56:64:8f:96:
#                    4f:68:ae:3d:97:c2:84:8f:c0:bc:40:c0:0b:5c:bd:
#                    f6:87:b3:35:6c:ac:18:50:7f:84:e0:4c:cd:92:d3:
#                    20:e9:33:bc:52:99:af:32:b5:29:b3:25:2a:b4:48:
#                    f9:72:e1:ca:64:f7:e6:82:10:8d:e8:9d:c2:8a:88:
#                    fa:38:66:8a:fc:63:f9:01:f9:78:fd:7b:5c:77:fa:
#                    76:87:fa:ec:df:b1:0e:79:95:57:b4:bd:26:ef:d6:
#                    01:d1:eb:16:0a:bb:8e:0b:b5:c5:c5:8a:55:ab:d3:
#                    ac:ea:91:4b:29:cc:19:a4:32:25:4e:2a:f1:65:44:
#                    d0:02:ce:aa:ce:49:b4:ea:9f:7c:83:b0:40:7b:e7:
#                    43:ab:a7:6c:a3:8f:7d:89:81:fa:4c:a5:ff:d5:8e:
#                    c3:ce:4b:e0:b5:d8:b3:8e:45:cf:76:c0:ed:40:2b:
#                    fd:53:0f:b0:a7:d5:3b:0d:b1:8a:a2:03:de:31:ad:
#                    cc:77:ea:6f:7b:3e:d6:df:91:22:12:e6:be:fa:d8:
#                    32:fc:10:63:14:51:72:de:5d:d6:16:93:bd:29:68:
#                    33:ef:3a:66:ec:07:8a:26:df:13:d7:57:65:78:27:
#                    de:5e:49:14:00:a2:00:7f:9a:a8:21:b6:a9:b1:95:
#                    b0:a5:b9:0d:16:11:da:c7:6c:48:3c:40:e0:7e:0d:
#                    5a:cd:56:3c:d1:97:05:b9:cb:4b:ed:39:4b:9c:c4:
#                    3f:d2:55:13:6e:24:b0:d6:71:fa:f4:c1:ba:cc:ed:
#                    1b:f5:fe:81:41:d8:00:98:3d:3a:c8:ae:7a:98:37:
#                    18:05:95
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E4:AF:2B:26:71:1A:2B:48:27:85:2F:52:66:2C:EF:F0:89:13:71:3E
#    Signature Algorithm: sha384WithRSAEncryption
#         9f:aa:42:26:db:0b:9b:be:ff:1e:96:92:2e:3e:a2:65:4a:6a:
#         98:ba:22:cb:7d:c1:3a:d8:82:0a:06:c6:f6:a5:de:c0:4e:87:
#         66:79:a1:f9:a6:58:9c:aa:f9:b5:e6:60:e7:e0:e8:b1:1e:42:
#         41:33:0b:37:3d:ce:89:70:15:ca:b5:24:a8:cf:6b:b5:d2:40:
#         21:98:cf:22:34:cf:3b:c5:22:84:e0:c5:0e:8a:7c:5d:88:e4:
#         35:24:ce:9b:3e:1a:54:1e:6e:db:b2:87:a7:fc:f3:fa:81:55:
#         14:62:0a:59:a9:22:05:31:3e:82:d6:ee:db:57:34:bc:33:95:
#         d3:17:1b:e8:27:a2:8b:7b:4e:26:1a:7a:5a:64:b6:d1:ac:37:
#         f1:fd:a0:f3:38:ec:72:f0:11:75:9d:cb:34:52:8d:e6:76:6b:
#         17:c6:df:86:ab:27:8e:49:2b:75:66:81:10:21:a6:ea:3e:f4:
#         ae:25:ff:7c:15:de:ce:8c:25:3f:ca:62:70:0a:f7:2f:09:66:
#         07:c8:3f:1c:fc:f0:db:45:30:df:62:88:c1:b5:0f:9d:c3:9f:
#         4a:de:59:59:47:c5:87:22:36:e6:82:a7:ed:0a:b9:e2:07:a0:
#         8d:7b:7a:4a:3c:71:d2:e2:03:a1:1f:32:07:dd:1b:e4:42:ce:
#         0c:00:45:61:80:b5:0b:20:59:29:78:bd:f9:55:cb:63:c5:3c:
#         4c:f4:b6:ff:db:6a:5f:31:6b:99:9e:2c:c1:6b:50:a4:d7:e6:
#         18:14:bd:85:3f:67:ab:46:9f:a0:ff:42:a7:3a:7f:5c:cb:5d:
#         b0:70:1d:2b:34:f5:d4:76:09:0c:eb:78:4c:59:05:f3:33:42:
#         c3:61:15:10:1b:77:4d:ce:22:8c:d4:85:f2:45:7d:b7:53:ea:
#         ef:40:5a:94:0a:5c:20:5f:4e:40:5d:62:22:76:df:ff:ce:61:
#         bd:8c:23:78:d2:37:02:e0:8e:de:d1:11:37:89:f6:bf:ed:49:
#         07:62:ae:92:ec:40:1a:af:14:09:d9:d0:4e:b2:a2:f7:be:ee:
#         ee:d8:ff:dc:1a:2d:de:b8:36:71:e2:fc:79:b7:94:25:d1:48:
#         73:5b:a1:35:e7:b3:99:67:75:c1:19:3a:2b:47:4e:d3:42:8e:
#         fd:31:c8:16:66:da:d2:0c:3c:db:b3:8e:c9:a1:0d:80:0f:7b:
#         16:77:14:bf:ff:db:09:94:b2:93:bc:20:58:15:e9:db:71:43:
#         f3:de:10:c3:00:dc:a8:2a:95:b6:c2:d6:3f:90:6b:76:db:6c:
#         fe:8c:bc:f2:70:35:0c:dc:99:19:35:dc:d7:c8:46:63:d5:36:
#         71:ae:57:fb:b7:82:6d:dc

[p11-kit-object-v1]
label: "GTS Root R2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:ae:c5:8d:04:25:1a:ab:11:25:aa
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = Google Trust Services LLC, CN = GTS Root R2
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C = US, O = Google Trust Services LLC, CN = GTS Root R2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ce:de:fd:a6:fb:ec:ec:14:34:3c:07:06:5a:6c:
#                    59:f7:19:35:dd:f7:c1:9d:55:aa:d3:cd:3b:a4:93:
#                    72:ef:0a:fa:6d:9d:f6:f0:85:80:5b:a1:48:52:9f:
#                    39:c5:b7:ee:28:ac:ef:cb:76:68:14:b9:df:ad:01:
#                    6c:99:1f:c4:22:1d:9f:fe:72:77:e0:2c:5b:af:e4:
#                    04:bf:4f:72:a0:1a:34:98:e8:39:68:ec:95:25:7b:
#                    76:a1:e6:69:b9:85:19:bd:89:8c:fe:ad:ed:36:ea:
#                    73:bc:ff:83:e2:cb:7d:c1:d2:ce:4a:b3:8d:05:9e:
#                    8b:49:93:df:c1:5b:d0:6e:5e:f0:2e:30:2e:82:fc:
#                    fa:bc:b4:17:0a:48:e5:88:9b:c5:9b:6b:de:b0:ca:
#                    b4:03:f0:da:f4:90:b8:65:64:f7:5c:4c:ad:e8:7e:
#                    66:5e:99:d7:b8:c2:3e:c8:d0:13:9d:ad:ee:e4:45:
#                    7b:89:55:f7:8a:1f:62:52:84:12:b3:c2:40:97:e3:
#                    8a:1f:47:91:a6:74:5a:d2:f8:b1:63:28:10:b8:b3:
#                    09:b8:56:77:40:a2:26:98:79:c6:fe:df:25:ee:3e:
#                    e5:a0:7f:d4:61:0f:51:4b:3c:3f:8c:da:e1:70:74:
#                    d8:c2:68:a1:f9:c1:0c:e9:a1:e2:7f:bb:55:3c:76:
#                    06:ee:6a:4e:cc:92:88:30:4d:9a:bd:4f:0b:48:9a:
#                    84:b5:98:a3:d5:fb:73:c1:57:61:dd:28:56:75:13:
#                    ae:87:8e:e7:0c:51:09:10:75:88:4c:bc:8d:f9:7b:
#                    3c:d4:22:48:1f:2a:dc:eb:6b:bb:44:b1:cb:33:71:
#                    32:46:af:ad:4a:f1:8c:e8:74:3a:ac:e7:1a:22:73:
#                    80:d2:30:f7:25:42:c7:22:3b:3b:12:ad:96:2e:c6:
#                    c3:76:07:aa:20:b7:35:49:57:e9:92:49:e8:76:16:
#                    72:31:67:2b:96:7e:8a:a3:c7:94:56:22:bf:6a:4b:
#                    7e:01:21:b2:23:32:df:e4:9a:44:6d:59:5b:5d:f5:
#                    00:a0:1c:9b:c6:78:97:8d:90:ff:9b:c8:aa:b4:af:
#                    11:51:39:5e:d9:fb:67:ad:d5:5b:11:9d:32:9a:1b:
#                    bd:d5:ba:5b:a5:c9:cb:25:69:53:55:27:5c:e0:ca:
#                    36:cb:88:61:fb:1e:b7:d0:cb:ee:16:fb:d3:a6:4c:
#                    de:92:a5:d4:e2:df:f5:06:54:de:2e:9d:4b:b4:93:
#                    30:aa:81:ce:dd:1a:dc:51:73:0d:4f:70:e9:e5:b6:
#                    16:21:19:79:b2:e6:89:0b:75:64:ca:d5:ab:bc:09:
#                    c1:18:a1:ff:d4:54:a1:85:3c:fd:14:24:03:b2:87:
#                    d3:a4:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                BB:FF:CA:8E:23:9F:4F:99:CA:DB:E2:68:A6:A5:15:27:17:1E:D9:0E
#    Signature Algorithm: sha384WithRSAEncryption
#         1f:ca:ce:dd:c7:be:a1:9f:d9:27:4c:0b:dc:17:98:11:6a:88:
#         de:3d:e6:71:56:72:b2:9e:1a:4e:9c:d5:2b:98:24:5d:9b:6b:
#         7b:b0:33:82:09:bd:df:25:46:ea:98:9e:b6:1b:fe:83:3c:d2:
#         62:61:c1:04:ed:ce:e0:c5:c9:c8:13:13:55:e7:a8:63:ad:8c:
#         7b:01:fe:77:30:e1:ce:68:9b:05:f8:12:ee:79:31:a0:41:45:
#         35:28:0a:71:a4:24:4f:8c:dc:3c:82:07:5f:66:dc:7d:10:fe:
#         0c:61:b3:05:95:ee:e1:ae:81:0f:a8:f8:c7:8f:4d:a8:23:02:
#         26:6b:1d:83:52:55:ce:b5:2f:00:ca:80:40:e0:e1:74:ac:60:
#         f5:87:80:9d:ae:36:64:91:5d:b0:68:18:ea:8a:61:c9:77:a8:
#         97:c4:c9:c7:a5:fc:55:4b:f3:f0:7f:b9:65:3d:27:68:d0:cc:
#         6b:fa:53:9d:e1:91:1a:c9:5d:1a:96:6d:32:87:ed:03:20:c8:
#         02:ce:5a:be:d9:ea:fd:b2:4d:c4:2f:1b:df:5f:7a:f5:f8:8b:
#         c6:ee:31:3a:25:51:55:67:8d:64:32:7b:e9:9e:c3:82:ba:2a:
#         2d:e9:1e:b4:e0:48:06:a2:fc:67:af:1f:22:02:73:fb:20:0a:
#         af:9d:54:4b:a1:cd:ff:60:47:b0:3f:5d:ef:1b:56:bd:97:21:
#         96:2d:0a:d1:5e:9d:38:02:47:6c:b9:f4:f6:23:25:b8:a0:6a:
#         9a:2b:77:08:fa:c4:b1:28:90:26:58:08:3c:e2:7e:aa:d7:3d:
#         6f:ba:31:88:0a:05:eb:27:b5:a1:49:ee:a0:45:54:7b:e6:27:
#         65:99:20:21:a8:a3:bc:fb:18:96:bb:52:6f:0c:ed:83:51:4c:
#         e9:59:e2:20:60:c5:c2:65:92:82:8c:f3:10:1f:0e:8a:97:be:
#         77:82:6d:3f:8f:1d:5d:bc:49:27:bd:cc:4f:0f:e1:ce:76:86:
#         04:23:c5:c0:8c:12:5b:fd:db:84:a0:24:f1:48:ff:64:7c:d0:
#         be:5c:16:d1:ef:99:ad:c0:1f:fb:cb:ae:bc:38:22:06:26:64:
#         da:da:97:0e:3f:28:15:44:a8:4f:00:ca:f0:9a:cc:cf:74:6a:
#         b4:3e:3c:eb:95:ec:b5:d3:5a:d8:81:99:e9:43:18:37:eb:b3:
#         bb:d1:58:62:41:f3:66:d2:8f:aa:78:95:54:20:c3:5a:2e:74:
#         2b:d5:d1:be:18:69:c0:ac:d5:a4:cf:39:ba:51:84:03:65:e9:
#         62:c0:62:fe:d8:4d:55:96:e2:d0:11:fa:48:34:11:ec:9e:ed:
#         05:1d:e4:c8:d6:1d:86:cb

[p11-kit-object-v1]
label: "GTS Root R3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEH08zhzMpiqGE3svHIVhBiepWnStLhcYd
TCe8fyZRcm/in9ajysxFFEaLre9+hozssX4v/6lxnRiERQRBVW4r6iZ/u5AB40sZ
uuRUlkUJsdVskUSthBOOmowNgAwy9uAn
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:b8:82:eb:20:f8:25:27:6d:3d:66
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = Google Trust Services LLC, CN = GTS Root R3
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C = US, O = Google Trust Services LLC, CN = GTS Root R3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:1f:4f:33:87:33:29:8a:a1:84:de:cb:c7:21:58:
#                    41:89:ea:56:9d:2b:4b:85:c6:1d:4c:27:bc:7f:26:
#                    51:72:6f:e2:9f:d6:a3:ca:cc:45:14:46:8b:ad:ef:
#                    7e:86:8c:ec:b1:7e:2f:ff:a9:71:9d:18:84:45:04:
#                    41:55:6e:2b:ea:26:7f:bb:90:01:e3:4b:19:ba:e4:
#                    54:96:45:09:b1:d5:6c:91:44:ad:84:13:8e:9a:8c:
#                    0d:80:0c:32:f6:e0:27
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C1:F1:26:BA:A0:2D:AE:85:81:CF:D3:F1:2A:12:BD:B8:0A:67:FD:BC
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:f6:e1:20:95:14:7b:54:a3:90:16:11:bf:84:
#         c8:ea:6f:6b:17:9e:1e:46:98:20:9b:9f:d3:0d:d9:ac:d3:2f:
#         cd:7c:f8:5b:2e:55:bb:bf:dd:92:f7:a4:0c:dc:31:e1:a2:02:
#         31:00:fc:97:66:66:e5:43:16:13:83:dd:c7:df:2f:be:14:38:
#         ed:01:ce:b1:17:1a:11:75:e9:bd:03:8f:26:7e:84:e5:c9:60:
#         a6:95:d7:54:59:b7:e7:11:2c:89:d4:b9:ee:17

[p11-kit-object-v1]
label: "GTS Root R4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE83Rzp2iLYK5DuDXFgTB7S0md+8Fhzube
Rr1r1WEYNa5A3XP3iZEwWus87oV8okB2O6nGuEfYKueSkWpz6bFyOZ8pn6KY019e
WIZlD6GEZQbR3IvJx3PIjGov5cSr0R2K
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:c0:68:ef:63:1a:9c:72:90:50:52
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = Google Trust Services LLC, CN = GTS Root R4
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C = US, O = Google Trust Services LLC, CN = GTS Root R4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:f3:74:73:a7:68:8b:60:ae:43:b8:35:c5:81:30:
#                    7b:4b:49:9d:fb:c1:61:ce:e6:de:46:bd:6b:d5:61:
#                    18:35:ae:40:dd:73:f7:89:91:30:5a:eb:3c:ee:85:
#                    7c:a2:40:76:3b:a9:c6:b8:47:d8:2a:e7:92:91:6a:
#                    73:e9:b1:72:39:9f:29:9f:a2:98:d3:5f:5e:58:86:
#                    65:0f:a1:84:65:06:d1:dc:8b:c9:c7:73:c8:8c:6a:
#                    2f:e5:c4:ab:d1:1d:8a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                80:4C:D6:EB:74:FF:49:36:A3:D5:D8:FC:B5:3E:C5:6A:F0:94:1D:8C
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:e8:40:ff:83:de:03:f4:9f:ae:1d:7a:a7:2e:
#         b9:af:4f:f6:83:1d:0e:2d:85:01:1d:d1:d9:6a:ec:0f:c2:af:
#         c7:5e:56:5e:5c:d5:1c:58:22:28:0b:f7:30:b6:2f:b1:7c:02:
#         31:00:f0:61:3c:a7:f4:a0:82:e3:21:d5:84:1d:73:86:9c:2d:
#         af:ca:34:9b:f1:9f:b9:23:36:e2:bc:60:03:9d:80:b3:9a:56:
#         c8:e1:e2:bb:14:79:ca:cd:21:d4:94:b5:49:43

[p11-kit-object-v1]
label: "GeoTrust Global CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2swYYzD99BcjGlZ+W988
bDjkcbd4kdS8odhM+KhDtgPpTSEHCIjaWC9mOSm9BXiLnTjoBbdqfnGk5sRgprDv
gOSJKA+eJdbtg/OtppHHmMlCGDUUna2YRpIuT8rxh0PBFpVXLVDviS2Aelet8u5f
a9IAjbkU+BQVNdnARqN7csiRv8lVK83Qlz6cJmTM386DGXHKTubU1XupGc1V3sjs
0l44U+VcT4wt/lAjNvxm5suOpDkZALeVAjmRCw7+OC7RHQWa9k0+bw8HHa8sHo9g
OeL6NlMTOdReJivbPagUvTLrGAMoUgRx5aszPeE4uwc2hGKceeoWMPRfwCvocWvk
+QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Global CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 144470 (0x23456)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = GeoTrust Inc., CN = GeoTrust Global CA
#        Validity
#            Not Before: May 21 04:00:00 2002 GMT
#            Not After : May 21 04:00:00 2022 GMT
#        Subject: C = US, O = GeoTrust Inc., CN = GeoTrust Global CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:da:cc:18:63:30:fd:f4:17:23:1a:56:7e:5b:df:
#                    3c:6c:38:e4:71:b7:78:91:d4:bc:a1:d8:4c:f8:a8:
#                    43:b6:03:e9:4d:21:07:08:88:da:58:2f:66:39:29:
#                    bd:05:78:8b:9d:38:e8:05:b7:6a:7e:71:a4:e6:c4:
#                    60:a6:b0:ef:80:e4:89:28:0f:9e:25:d6:ed:83:f3:
#                    ad:a6:91:c7:98:c9:42:18:35:14:9d:ad:98:46:92:
#                    2e:4f:ca:f1:87:43:c1:16:95:57:2d:50:ef:89:2d:
#                    80:7a:57:ad:f2:ee:5f:6b:d2:00:8d:b9:14:f8:14:
#                    15:35:d9:c0:46:a3:7b:72:c8:91:bf:c9:55:2b:cd:
#                    d0:97:3e:9c:26:64:cc:df:ce:83:19:71:ca:4e:e6:
#                    d4:d5:7b:a9:19:cd:55:de:c8:ec:d2:5e:38:53:e5:
#                    5c:4f:8c:2d:fe:50:23:36:fc:66:e6:cb:8e:a4:39:
#                    19:00:b7:95:02:39:91:0b:0e:fe:38:2e:d1:1d:05:
#                    9a:f6:4d:3e:6f:0f:07:1d:af:2c:1e:8f:60:39:e2:
#                    fa:36:53:13:39:d4:5e:26:2b:db:3d:a8:14:bd:32:
#                    eb:18:03:28:52:04:71:e5:ab:33:3d:e1:38:bb:07:
#                    36:84:62:9c:79:ea:16:30:f4:5f:c0:2b:e8:71:6b:
#                    e4:f9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C0:7A:98:68:8D:89:FB:AB:05:64:0C:11:7D:AA:7D:65:B8:CA:CC:4E
#            X509v3 Authority Key Identifier: 
#                keyid:C0:7A:98:68:8D:89:FB:AB:05:64:0C:11:7D:AA:7D:65:B8:CA:CC:4E
#
#    Signature Algorithm: sha1WithRSAEncryption
#         35:e3:29:6a:e5:2f:5d:54:8e:29:50:94:9f:99:1a:14:e4:8f:
#         78:2a:62:94:a2:27:67:9e:d0:cf:1a:5e:47:e9:c1:b2:a4:cf:
#         dd:41:1a:05:4e:9b:4b:ee:4a:6f:55:52:b3:24:a1:37:0a:eb:
#         64:76:2a:2e:2c:f3:fd:3b:75:90:bf:fa:71:d8:c7:3d:37:d2:
#         b5:05:95:62:b9:a6:de:89:3d:36:7b:38:77:48:97:ac:a6:20:
#         8f:2e:a6:c9:0c:c2:b2:99:45:00:c7:ce:11:51:22:22:e0:a5:
#         ea:b6:15:48:09:64:ea:5e:4f:74:f7:05:3e:c7:8a:52:0c:db:
#         15:b4:bd:6d:9b:e5:c6:b1:54:68:a9:e3:69:90:b6:9a:a5:0f:
#         b8:b9:3f:20:7d:ae:4a:b5:b8:9c:e4:1d:b6:ab:e6:94:a5:c1:
#         c7:83:ad:db:f5:27:87:0e:04:6c:d5:ff:dd:a0:5d:ed:87:52:
#         b7:2b:15:02:ae:39:a6:6a:74:e9:da:c4:e7:bc:4d:34:1e:a9:
#         5c:4d:33:5f:92:09:2f:88:66:5d:77:97:c7:1d:76:13:a9:d5:
#         e5:f1:16:09:11:35:d5:ac:db:24:71:70:2c:98:56:0b:d9:17:
#         b4:d1:e3:51:2b:5e:75:e8:d5:d0:dc:4f:34:ed:c2:05:66:80:
#         a1:cb:e6:33

[p11-kit-object-v1]
label: "GeoTrust Global CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7zxNQD0Q3ztTAOFn/pRg
FT6FiPGJDZDIKCOZBegrIJ3G82BG2MGy1Ywx2dwgeSSBvzUy/GNp27Eqa+4hWPII
6XjLb8v8FlLIkcT/PXPesT6nwn1mwfV+UiQa4tVnkdCCENd4S08rQjm9ZC1AoLAQ
0zhIRoihDLs6MypimPsAnRNZf287cqrupg+G+QVh6md/DDeWi+ZpFkcRwidZA7Om
YMIhQFb6oMd9OhPj7FfHs9aunYmA9wHnLPaWKxMNeSzZwOSGe0uMDHKCivsXzQBs
OhM8sISHSxZ6KbJP2x3UC/NmN73Y9le7XiR6uDyLufqSGhqEnth0j6obf170/kUi
IQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Global CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = GeoTrust Inc., CN = GeoTrust Global CA 2
#        Validity
#            Not Before: Mar  4 05:00:00 2004 GMT
#            Not After : Mar  4 05:00:00 2019 GMT
#        Subject: C = US, O = GeoTrust Inc., CN = GeoTrust Global CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ef:3c:4d:40:3d:10:df:3b:53:00:e1:67:fe:94:
#                    60:15:3e:85:88:f1:89:0d:90:c8:28:23:99:05:e8:
#                    2b:20:9d:c6:f3:60:46:d8:c1:b2:d5:8c:31:d9:dc:
#                    20:79:24:81:bf:35:32:fc:63:69:db:b1:2a:6b:ee:
#                    21:58:f2:08:e9:78:cb:6f:cb:fc:16:52:c8:91:c4:
#                    ff:3d:73:de:b1:3e:a7:c2:7d:66:c1:f5:7e:52:24:
#                    1a:e2:d5:67:91:d0:82:10:d7:78:4b:4f:2b:42:39:
#                    bd:64:2d:40:a0:b0:10:d3:38:48:46:88:a1:0c:bb:
#                    3a:33:2a:62:98:fb:00:9d:13:59:7f:6f:3b:72:aa:
#                    ee:a6:0f:86:f9:05:61:ea:67:7f:0c:37:96:8b:e6:
#                    69:16:47:11:c2:27:59:03:b3:a6:60:c2:21:40:56:
#                    fa:a0:c7:7d:3a:13:e3:ec:57:c7:b3:d6:ae:9d:89:
#                    80:f7:01:e7:2c:f6:96:2b:13:0d:79:2c:d9:c0:e4:
#                    86:7b:4b:8c:0c:72:82:8a:fb:17:cd:00:6c:3a:13:
#                    3c:b0:84:87:4b:16:7a:29:b2:4f:db:1d:d4:0b:f3:
#                    66:37:bd:d8:f6:57:bb:5e:24:7a:b8:3c:8b:b9:fa:
#                    92:1a:1a:84:9e:d8:74:8f:aa:1b:7f:5e:f4:fe:45:
#                    22:21
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                71:38:36:F2:02:31:53:47:2B:6E:BA:65:46:A9:10:15:58:20:05:09
#            X509v3 Authority Key Identifier: 
#                keyid:71:38:36:F2:02:31:53:47:2B:6E:BA:65:46:A9:10:15:58:20:05:09
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         03:f7:b5:2b:ab:5d:10:fc:7b:b2:b2:5e:ac:9b:0e:7e:53:78:
#         59:3e:42:04:fe:75:a3:ad:ac:81:4e:d7:02:8b:5e:c4:2d:c8:
#         52:76:c7:2c:1f:fc:81:32:98:d1:4b:c6:92:93:33:35:31:2f:
#         fc:d8:1d:44:dd:e0:81:7f:9d:e9:8b:e1:64:91:62:0b:39:08:
#         8c:ac:74:9d:59:d9:7a:59:52:97:11:b9:16:7b:6f:45:d3:96:
#         d9:31:7d:02:36:0f:9c:3b:6e:cf:2c:0d:03:46:45:eb:a0:f4:
#         7f:48:44:c6:08:40:cc:de:1b:70:b5:29:ad:ba:8b:3b:34:65:
#         75:1b:71:21:1d:2c:14:0a:b0:96:95:b8:d6:ea:f2:65:fb:29:
#         ba:4f:ea:91:93:74:69:b6:f2:ff:e1:1a:d0:0c:d1:76:85:cb:
#         8a:25:bd:97:5e:2c:6f:15:99:26:e7:b6:29:ff:22:ec:c9:02:
#         c7:56:00:cd:49:b9:b3:6c:7b:53:04:1a:e2:a8:c9:aa:12:05:
#         23:c2:ce:e7:bb:04:02:cc:c0:47:a2:e4:c4:29:2f:5b:45:57:
#         89:51:ee:3c:eb:52:08:ff:07:35:1e:9f:35:6a:47:4a:56:98:
#         d1:5a:85:1f:8c:f5:22:bf:ab:ce:83:f3:e2:22:29:ae:7d:83:
#         40:a8:ba:6c

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEFbHo/QMVQ+Ws64c3EWLv0oM2Un1FVwtK
jXtUOzpuXxUCwFCmzyUvfcpIuMdQYxwqIQh8mjbYC/7RJsVYMTAoJfNdXaO4tqW0
ku1sLJ/r3UOJojxLSJEdUOwm39ZgLr0h
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3c:b2:f4:48:0a:00:e2:fe:eb:24:3b:5e:60:3e:c3:6b
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = GeoTrust Inc., OU = (c) 2007 GeoTrust Inc. - For authorized use only, CN = GeoTrust Primary Certification Authority - G2
#        Validity
#            Not Before: Nov  5 00:00:00 2007 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, O = GeoTrust Inc., OU = (c) 2007 GeoTrust Inc. - For authorized use only, CN = GeoTrust Primary Certification Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:15:b1:e8:fd:03:15:43:e5:ac:eb:87:37:11:62:
#                    ef:d2:83:36:52:7d:45:57:0b:4a:8d:7b:54:3b:3a:
#                    6e:5f:15:02:c0:50:a6:cf:25:2f:7d:ca:48:b8:c7:
#                    50:63:1c:2a:21:08:7c:9a:36:d8:0b:fe:d1:26:c5:
#                    58:31:30:28:25:f3:5d:5d:a3:b8:b6:a5:b4:92:ed:
#                    6c:2c:9f:eb:dd:43:89:a2:3c:4b:48:91:1d:50:ec:
#                    26:df:d6:60:2e:bd:21
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                15:5F:35:57:51:55:FB:25:B2:AD:03:69:FC:01:A3:FA:BE:11:55:D5
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:64:96:59:a6:e8:09:de:8b:ba:fa:5a:88:88:f0:
#         1f:91:d3:46:a8:f2:4a:4c:02:63:fb:6c:5f:38:db:2e:41:93:
#         a9:0e:e6:9d:dc:31:1c:b2:a0:a7:18:1c:79:e1:c7:36:02:30:
#         3a:56:af:9a:74:6c:f6:fb:83:e0:33:d3:08:5f:a1:9c:c2:5b:
#         9f:46:d6:b6:cb:91:06:63:a2:06:e7:33:ac:3e:a8:81:12:d0:
#         cb:ba:d0:92:0b:b6:9e:96:aa:04:0f:8a

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3OJeYlgdM1c5MjP668uH
jKfUSt0GiOpkjjGYpTiQHpjPLmMr8Ea8RLKJocAoDElwIZWfZMCmkxICZSaGxqWJ
8PrXhKBwr08alz8GRNXJ63IQfeQxKPscYeYoB0RzkiJppwOIbJ1jyFLamCfnCExw
PrTJEsHFZ4NdM/MDEexq0FPi0bo2YJSAu2FjbFsXft9AlB6rDcIhKHCI/9YmbGxg
BCVOVX5977+USN63Hd1wjQVfiKWb8sLu6tFAQW1iOB1WBsUDR1EgGfx7EAsOYq52
Vb9fd74+SQFTPZglA3YkWh2024nqeeW2szs/ukwoQX8GrGqOwdD2BR195kKG46XV
RwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:ac:6e:94:19:b2:79:4b:41:f6:27:a9:c3:18:0f:1f
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = GeoTrust Inc., OU = (c) 2008 GeoTrust Inc. - For authorized use only, CN = GeoTrust Primary Certification Authority - G3
#        Validity
#            Not Before: Apr  2 00:00:00 2008 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = GeoTrust Inc., OU = (c) 2008 GeoTrust Inc. - For authorized use only, CN = GeoTrust Primary Certification Authority - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:dc:e2:5e:62:58:1d:33:57:39:32:33:fa:eb:cb:
#                    87:8c:a7:d4:4a:dd:06:88:ea:64:8e:31:98:a5:38:
#                    90:1e:98:cf:2e:63:2b:f0:46:bc:44:b2:89:a1:c0:
#                    28:0c:49:70:21:95:9f:64:c0:a6:93:12:02:65:26:
#                    86:c6:a5:89:f0:fa:d7:84:a0:70:af:4f:1a:97:3f:
#                    06:44:d5:c9:eb:72:10:7d:e4:31:28:fb:1c:61:e6:
#                    28:07:44:73:92:22:69:a7:03:88:6c:9d:63:c8:52:
#                    da:98:27:e7:08:4c:70:3e:b4:c9:12:c1:c5:67:83:
#                    5d:33:f3:03:11:ec:6a:d0:53:e2:d1:ba:36:60:94:
#                    80:bb:61:63:6c:5b:17:7e:df:40:94:1e:ab:0d:c2:
#                    21:28:70:88:ff:d6:26:6c:6c:60:04:25:4e:55:7e:
#                    7d:ef:bf:94:48:de:b7:1d:dd:70:8d:05:5f:88:a5:
#                    9b:f2:c2:ee:ea:d1:40:41:6d:62:38:1d:56:06:c5:
#                    03:47:51:20:19:fc:7b:10:0b:0e:62:ae:76:55:bf:
#                    5f:77:be:3e:49:01:53:3d:98:25:03:76:24:5a:1d:
#                    b4:db:89:ea:79:e5:b6:b3:3b:3f:ba:4c:28:41:7f:
#                    06:ac:6a:8e:c1:d0:f6:05:1d:7d:e6:42:86:e3:a5:
#                    d5:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                C4:79:CA:8E:A1:4E:03:1D:1C:DC:6B:DB:31:5B:94:3E:3F:30:7F:2D
#    Signature Algorithm: sha256WithRSAEncryption
#         2d:c5:13:cf:56:80:7b:7a:78:bd:9f:ae:2c:99:e7:ef:da:df:
#         94:5e:09:69:a7:e7:6e:68:8c:bd:72:be:47:a9:0e:97:12:b8:
#         4a:f1:64:d3:39:df:25:34:d4:c1:cd:4e:81:f0:0f:04:c4:24:
#         b3:34:96:c6:a6:aa:30:df:68:61:73:d7:f9:8e:85:89:ef:0e:
#         5e:95:28:4a:2a:27:8f:10:8e:2e:7c:86:c4:02:9e:da:0c:77:
#         65:0e:44:0d:92:fd:fd:b3:16:36:fa:11:0d:1d:8c:0e:07:89:
#         6a:29:56:f7:72:f4:dd:15:9c:77:35:66:57:ab:13:53:d8:8e:
#         c1:40:c5:d7:13:16:5a:72:c7:b7:69:01:c4:7a:b1:83:01:68:
#         7d:8d:41:a1:94:18:c1:25:5c:fc:f0:fe:83:02:87:7c:0d:0d:
#         cf:2e:08:5c:4a:40:0d:3e:ec:81:61:e6:24:db:ca:e0:0e:2d:
#         07:b2:3e:56:dc:8d:f5:41:85:07:48:9b:0c:0b:cb:49:3f:7d:
#         ec:b7:fd:cb:8d:67:89:1a:ab:ed:bb:1e:a3:00:08:08:17:2a:
#         82:5c:31:5d:46:8a:2d:0f:86:9b:74:d9:45:fb:d4:40:b1:7a:
#         aa:68:2d:86:b2:99:22:e1:c1:2b:c7:9c:f8:f3:5f:a8:82:12:
#         eb:19:11:2d

[p11-kit-object-v1]
label: "GeoTrust Universal CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Universal CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = GeoTrust Inc., CN = GeoTrust Universal CA
#        Validity
#            Not Before: Mar  4 05:00:00 2004 GMT
#            Not After : Mar  4 05:00:00 2029 GMT
#        Subject: C = US, O = GeoTrust Inc., CN = GeoTrust Universal CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a6:15:55:a0:a3:c6:e0:1f:8c:9d:21:50:d7:c1:
#                    be:2b:5b:b5:a4:9e:a1:d9:72:58:bd:00:1b:4c:bf:
#                    61:c9:14:1d:45:82:ab:c6:1d:80:d6:3d:eb:10:9c:
#                    3a:af:6d:24:f8:bc:71:01:9e:06:f5:7c:5f:1e:c1:
#                    0e:55:ca:83:9a:59:30:ae:19:cb:30:48:95:ed:22:
#                    37:8d:f4:4a:9a:72:66:3e:ad:95:c0:e0:16:00:e0:
#                    10:1f:2b:31:0e:d7:94:54:d3:42:33:a0:34:1d:1e:
#                    45:76:dd:4f:ca:18:37:ec:85:15:7a:19:08:fc:d5:
#                    c7:9c:f0:f2:a9:2e:10:a9:92:e6:3d:58:3d:a9:16:
#                    68:3c:2f:75:21:18:7f:28:77:a5:e1:61:17:b7:a6:
#                    e9:f8:1e:99:db:73:6e:f4:0a:a2:21:6c:ee:da:aa:
#                    85:92:66:af:f6:7a:6b:82:da:ba:22:08:35:0f:cf:
#                    42:f1:35:fa:6a:ee:7e:2b:25:cc:3a:11:e4:6d:af:
#                    73:b2:76:1d:ad:d0:b2:78:67:1a:a4:39:1c:51:0b:
#                    67:56:83:fd:38:5d:0d:ce:dd:f0:bb:2b:96:1f:de:
#                    7b:32:52:fd:1d:bb:b5:06:a1:b2:21:5e:a5:d6:95:
#                    68:7f:f0:99:9e:dc:45:08:3e:e7:d2:09:0d:35:94:
#                    dd:80:4e:53:97:d7:b5:09:44:20:64:16:17:03:02:
#                    4c:53:0d:68:de:d5:aa:72:4d:93:6d:82:0e:db:9c:
#                    bd:cf:b4:f3:5c:5d:54:7a:69:09:96:d6:db:11:c1:
#                    8d:75:a8:b4:cf:39:c8:ce:3c:bc:24:7c:e6:62:ca:
#                    e1:bd:7d:a7:bd:57:65:0b:e4:fe:25:ed:b6:69:10:
#                    dc:28:1a:46:bd:01:1d:d0:97:b5:e1:98:3b:c0:37:
#                    64:d6:3d:94:ee:0b:e1:f5:28:ae:0b:56:bf:71:8b:
#                    23:29:41:8e:86:c5:4b:52:7b:d8:71:ab:1f:8a:15:
#                    a6:3b:83:5a:d7:58:01:51:c6:4c:41:d9:7f:d8:41:
#                    67:72:a2:28:df:60:83:a9:9e:c8:7b:fc:53:73:72:
#                    59:f5:93:7a:17:76:0e:ce:f7:e5:5c:d9:0b:55:34:
#                    a2:aa:5b:b5:6a:54:e7:13:ca:57:ec:97:6d:f4:5e:
#                    06:2f:45:8b:58:d4:23:16:92:e4:16:6e:28:63:59:
#                    30:df:50:01:9c:63:89:1a:9f:db:17:94:82:70:37:
#                    c3:24:9e:9a:47:d6:5a:ca:4e:a8:69:89:72:1f:91:
#                    6c:db:7e:9e:1b:ad:c7:1f:73:dd:2c:4f:19:65:fd:
#                    7f:93:40:10:2e:d2:f0:ed:3c:9e:2e:28:3e:69:26:
#                    33:c5:7b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DA:BB:2E:AA:B0:0C:B8:88:26:51:74:5C:6D:03:D3:C0:D8:8F:7A:D6
#            X509v3 Authority Key Identifier: 
#                keyid:DA:BB:2E:AA:B0:0C:B8:88:26:51:74:5C:6D:03:D3:C0:D8:8F:7A:D6
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         31:78:e6:c7:b5:df:b8:94:40:c9:71:c4:a8:35:ec:46:1d:c2:
#         85:f3:28:58:86:b0:0b:fc:8e:b2:39:8f:44:55:ab:64:84:5c:
#         69:a9:d0:9a:38:3c:fa:e5:1f:35:e5:44:e3:80:79:94:68:a4:
#         bb:c4:9f:3d:e1:34:cd:30:46:8b:54:2b:95:a5:ef:f7:3f:99:
#         84:fd:35:e6:cf:31:c6:dc:6a:bf:a7:d7:23:08:e1:98:5e:c3:
#         5a:08:76:a9:a6:af:77:2f:b7:60:bd:44:46:6a:ef:97:ff:73:
#         95:c1:8e:e8:93:fb:fd:31:b7:ec:57:11:11:45:9b:30:f1:1a:
#         88:39:c1:4f:3c:a7:00:d5:c7:fc:ab:6d:80:22:70:a5:0c:e0:
#         5d:04:29:02:fb:cb:a0:91:d1:7c:d6:c3:7e:50:d5:9d:58:be:
#         41:38:eb:b9:75:3c:15:d9:9b:c9:4a:83:59:c0:da:53:fd:33:
#         bb:36:18:9b:85:0f:15:dd:ee:2d:ac:76:93:b9:d9:01:8d:48:
#         10:a8:fb:f5:38:86:f1:db:0a:c6:bd:84:a3:23:41:de:d6:77:
#         6f:85:d4:85:1c:50:e0:ae:51:8a:ba:8d:3e:76:e2:b9:ca:27:
#         f2:5f:9f:ef:6e:59:0d:06:d8:2b:17:a4:d2:7c:6b:bb:5f:14:
#         1a:48:8f:1a:4c:e7:b3:47:1c:8e:4c:45:2b:20:ee:48:df:e7:
#         dd:09:8e:18:a8:da:40:8d:92:26:11:53:61:73:5d:eb:bd:e7:
#         c4:4d:29:37:61:eb:ac:39:2d:67:2e:16:d6:f5:00:83:85:a1:
#         cc:7f:76:c4:7d:e4:b7:4b:66:ef:03:45:60:69:b6:0c:52:96:
#         92:84:5e:a6:a3:b5:a4:3e:2b:d9:cc:d8:1b:47:aa:f2:44:da:
#         4f:f9:03:e8:f0:14:cb:3f:f3:83:de:d0:c1:54:e3:b7:e8:0a:
#         37:4d:8b:20:59:03:30:19:a1:2c:c8:bd:11:1f:df:ae:c9:4a:
#         c5:f3:27:66:66:86:ac:68:91:ff:d9:e6:53:1c:0f:8b:5c:69:
#         65:0a:26:c8:1e:34:c3:5d:51:7b:d7:a9:9c:06:a1:36:dd:d5:
#         89:94:bc:d9:e4:2d:0c:5e:09:6c:08:97:7c:a3:3d:7c:93:ff:
#         3f:a1:14:a7:cf:b5:5d:eb:db:db:1c:c4:76:df:88:b9:bd:45:
#         05:95:1b:ae:fc:46:6a:4c:af:48:e3:ce:ae:0f:d2:7e:eb:e6:
#         6c:9c:4f:81:6a:7a:64:ac:bb:3e:d5:e7:cb:76:2e:c5:a7:48:
#         c1:5c:90:0f:cb:c8:3f:fa:e6:32:e1:8d:1b:6f:a4:e6:8e:d8:
#         f9:29:48:8a:ce:73:fe:2c

[p11-kit-object-v1]
label: "GeoTrust Universal CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Universal CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = GeoTrust Inc., CN = GeoTrust Universal CA 2
#        Validity
#            Not Before: Mar  4 05:00:00 2004 GMT
#            Not After : Mar  4 05:00:00 2029 GMT
#        Subject: C = US, O = GeoTrust Inc., CN = GeoTrust Universal CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:54:52:c1:c9:3e:f2:d9:dc:b1:53:1a:59:29:
#                    e7:b1:c3:45:28:e5:d7:d1:ed:c5:c5:4b:a1:aa:74:
#                    7b:57:af:4a:26:fc:d8:f5:5e:a7:6e:19:db:74:0c:
#                    4f:35:5b:32:0b:01:e3:db:eb:7a:77:35:ea:aa:5a:
#                    e0:d6:e8:a1:57:94:f0:90:a3:74:56:94:44:30:03:
#                    1e:5c:4e:2b:85:26:74:82:7a:0c:76:a0:6f:4d:ce:
#                    41:2d:a0:15:06:14:5f:b7:42:cd:7b:8f:58:61:34:
#                    dc:2a:08:f9:2e:c3:01:a6:22:44:1c:4c:07:82:e6:
#                    5b:ce:d0:4a:7c:04:d3:19:73:27:f0:aa:98:7f:2e:
#                    af:4e:eb:87:1e:24:77:6a:5d:b6:e8:5b:45:ba:dc:
#                    c3:a1:05:6f:56:8e:8f:10:26:a5:49:c3:2e:d7:41:
#                    87:22:e0:4f:86:ca:60:b5:ea:a1:63:c0:01:97:10:
#                    79:bd:00:3c:12:6d:2b:15:b1:ac:4b:b1:ee:18:b9:
#                    4e:96:dc:dc:76:ff:3b:be:cf:5f:03:c0:fc:3b:e8:
#                    be:46:1b:ff:da:40:c2:52:f7:fe:e3:3a:f7:6a:77:
#                    35:d0:da:8d:eb:5e:18:6a:31:c7:1e:ba:3c:1b:28:
#                    d6:6b:54:c6:aa:5b:d7:a2:2c:1b:19:cc:a2:02:f6:
#                    9b:59:bd:37:6b:86:b5:6d:82:ba:d8:ea:c9:56:bc:
#                    a9:36:58:fd:3e:19:f3:ed:0c:26:a9:93:38:f8:4f:
#                    c1:5d:22:06:d0:97:ea:e1:ad:c6:55:e0:81:2b:28:
#                    83:3a:fa:f4:7b:21:51:00:be:52:38:ce:cd:66:79:
#                    a8:f4:81:56:e2:d0:83:09:47:51:5b:50:6a:cf:db:
#                    48:1a:5d:3e:f7:cb:f6:65:f7:6c:f1:95:f8:02:3b:
#                    32:56:82:39:7a:5b:bd:2f:89:1b:bf:a1:b4:e8:ff:
#                    7f:8d:8c:df:03:f1:60:4e:58:11:4c:eb:a3:3f:10:
#                    2b:83:9a:01:73:d9:94:6d:84:00:27:66:ac:f0:70:
#                    40:09:42:92:ad:4f:93:0d:61:09:51:24:d8:92:d5:
#                    0b:94:61:b2:87:b2:ed:ff:9a:35:ff:85:54:ca:ed:
#                    44:43:ac:1b:3c:16:6b:48:4a:0a:1c:40:88:1f:92:
#                    c2:0b:00:05:ff:f2:c8:02:4a:a4:aa:a9:cc:99:96:
#                    9c:2f:58:e0:7d:e1:be:bb:07:dc:5f:04:72:5c:31:
#                    34:c3:ec:5f:2d:e0:3d:64:90:22:e6:d1:ec:b8:2e:
#                    dd:59:ae:d9:a1:37:bf:54:35:dc:73:32:4f:8c:04:
#                    1e:33:b2:c9:46:f1:d8:5c:c8:55:50:c9:68:bd:a8:
#                    ba:36:09
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                76:F3:55:E1:FA:A4:36:FB:F0:9F:5C:62:71:ED:3C:F4:47:38:10:2B
#            X509v3 Authority Key Identifier: 
#                keyid:76:F3:55:E1:FA:A4:36:FB:F0:9F:5C:62:71:ED:3C:F4:47:38:10:2B
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         66:c1:c6:23:f3:d9:e0:2e:6e:5f:e8:cf:ae:b0:b0:25:4d:2b:
#         f8:3b:58:9b:40:24:37:5a:cb:ab:16:49:ff:b3:75:79:33:a1:
#         2f:6d:70:17:34:91:fe:67:7e:8f:ec:9b:e5:5e:82:a9:55:1f:
#         2f:dc:d4:51:07:12:fe:ac:16:3e:2c:35:c6:63:fc:dc:10:eb:
#         0d:a3:aa:d0:7c:cc:d1:d0:2f:51:2e:c4:14:5a:de:e8:19:e1:
#         3e:c6:cc:a4:29:e7:2e:84:aa:06:30:78:76:54:73:28:98:59:
#         38:e0:00:0d:62:d3:42:7d:21:9f:ae:3d:3a:8c:d5:fa:77:0d:
#         18:2b:16:0e:5f:36:e1:fc:2a:b5:30:24:cf:e0:63:0c:7b:58:
#         1a:fe:99:ba:42:12:b1:91:f4:7c:68:e2:c8:e8:af:2c:ea:c9:
#         7e:ae:bb:2a:3d:0d:15:dc:34:95:b6:18:74:a8:6a:0f:c7:b4:
#         f4:13:c4:e4:5b:ed:0a:d2:a4:97:4c:2a:ed:2f:6c:12:89:3d:
#         f1:27:70:aa:6a:03:52:21:9f:40:a8:67:50:f2:f3:5a:1f:df:
#         df:23:f6:dc:78:4e:e6:98:4f:55:3a:53:e3:ef:f2:f4:9f:c7:
#         7c:d8:58:af:29:22:97:b8:e0:bd:91:2e:b0:76:ec:57:11:cf:
#         ef:29:44:f3:e9:85:7a:60:63:e4:5d:33:89:17:d9:31:aa:da:
#         d6:f3:18:35:72:cf:87:2b:2f:63:23:84:5d:84:8c:3f:57:a0:
#         88:fc:99:91:28:26:69:99:d4:8f:97:44:be:8e:d5:48:b1:a4:
#         28:29:f1:15:b4:e1:e5:9e:dd:f8:8f:a6:6f:26:d7:09:3c:3a:
#         1c:11:0e:a6:6c:37:f7:ad:44:87:2c:28:c7:d8:74:82:b3:d0:
#         6f:4a:57:bb:35:29:27:a0:8b:e8:21:a7:87:64:36:5d:cc:d8:
#         16:ac:c7:b2:27:40:92:55:38:28:8d:51:6e:dd:14:67:53:6c:
#         71:5c:26:84:4d:75:5a:b6:7e:60:56:a9:4d:ad:fb:9b:1e:97:
#         f3:0d:d9:d2:97:54:77:da:3d:12:b7:e0:1e:ef:08:06:ac:f9:
#         85:87:e9:a2:dc:af:7e:18:12:83:fd:56:17:41:2e:d5:29:82:
#         7d:99:f4:31:f6:71:a9:cf:2c:01:27:a5:05:b9:aa:b2:48:4e:
#         2a:ef:9f:93:52:51:95:3c:52:73:8e:56:4c:17:40:c0:09:28:
#         e4:8b:6a:48:53:db:ec:cd:55:55:f1:c6:f8:e9:a2:2c:4c:a6:
#         d1:26:5f:7e:af:5a:4c:da:1f:a6:f2:1c:2c:7e:ae:02:16:d2:
#         56:d0:2f:57:53:47:e8:92

[p11-kit-object-v1]
label: "GlobalSign"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuMZ5049sJQ6fLjkZHAOkrprlOQcJ
FspjsbmG+IpXwVfOQvpzofdlQv8ewQCybnMO/8ch5RikqtlxP6jUuc6MHQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIB4TCCAYegAwIBAgIRKjikHJYKBN5CsiilC+g0mAIwCgYIKoZIzj0EAwIwUDEk
MCIGA1UECxMbR2xvYmFsU2lnbiBFQ0MgUm9vdCBDQSAtIFI0MRMwEQYDVQQKEwpH
bG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWduMB4XDTEyMTExMzAwMDAwMFoX
DTM4MDExOTAzMTQwN1owUDEkMCIGA1UECxMbR2xvYmFsU2lnbiBFQ0MgUm9vdCBD
QSAtIFI0MRMwEQYDVQQKEwpHbG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWdu
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuMZ5049sJQ6fLjkZHAOkrprlOQcJ
FspjsbmG+IpXwVfOQvpzofdlQv8ewQCybnMO/8ch5RikqtlxP6jUuc6MHaNCMEAw
DgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFFSwe61F
uOJAf/sKbvu+M8k8o4TVMAoGCCqGSM49BAMCA0gAMEUCIQDckqGgE6bPA7DmxCGX
kPoUVy0D7O48027KqGx2vKLeuwIgJ6iFJzWbVsaj8kfSt24bAgAXqmemFZHe+pTs
ewv4n4Q=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2a:38:a4:1c:96:0a:04:de:42:b2:28:a5:0b:e8:34:98:02
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: OU = GlobalSign ECC Root CA - R4, O = GlobalSign, CN = GlobalSign
#        Validity
#            Not Before: Nov 13 00:00:00 2012 GMT
#            Not After : Jan 19 03:14:07 2038 GMT
#        Subject: OU = GlobalSign ECC Root CA - R4, O = GlobalSign, CN = GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub:
#                    04:b8:c6:79:d3:8f:6c:25:0e:9f:2e:39:19:1c:03:
#                    a4:ae:9a:e5:39:07:09:16:ca:63:b1:b9:86:f8:8a:
#                    57:c1:57:ce:42:fa:73:a1:f7:65:42:ff:1e:c1:00:
#                    b2:6e:73:0e:ff:c7:21:e5:18:a4:aa:d9:71:3f:a8:
#                    d4:b9:ce:8c:1d
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                54:B0:7B:AD:45:B8:E2:40:7F:FB:0A:6E:FB:BE:33:C9:3C:A3:84:D5
#    Signature Algorithm: ecdsa-with-SHA256
#         30:45:02:21:00:dc:92:a1:a0:13:a6:cf:03:b0:e6:c4:21:97:
#         90:fa:14:57:2d:03:ec:ee:3c:d3:6e:ca:a8:6c:76:bc:a2:de:
#         bb:02:20:27:a8:85:27:35:9b:56:c6:a3:f2:47:d2:b7:6e:1b:
#         02:00:17:aa:67:a6:15:91:de:fa:94:ec:7b:0b:f8:9f:84

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuMZ5049sJQ6fLjkZHAOkrprlOQcJ
FspjsbmG+IpXwVfOQvpzofdlQv8ewQCybnMO/8ch5RikqtlxP6jUuc6MHQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:7e:f5:3f:93:fd:a5:09:21:b2:a6
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: OU = GlobalSign ECC Root CA - R4, O = GlobalSign, CN = GlobalSign
#        Validity
#            Not Before: Nov 13 00:00:00 2012 GMT
#            Not After : Jan 19 03:14:07 2038 GMT
#        Subject: OU = GlobalSign ECC Root CA - R4, O = GlobalSign, CN = GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub:
#                    04:b8:c6:79:d3:8f:6c:25:0e:9f:2e:39:19:1c:03:
#                    a4:ae:9a:e5:39:07:09:16:ca:63:b1:b9:86:f8:8a:
#                    57:c1:57:ce:42:fa:73:a1:f7:65:42:ff:1e:c1:00:
#                    b2:6e:73:0e:ff:c7:21:e5:18:a4:aa:d9:71:3f:a8:
#                    d4:b9:ce:8c:1d
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                54:B0:7B:AD:45:B8:E2:40:7F:FB:0A:6E:FB:BE:33:C9:3C:A3:84:D5
#    Signature Algorithm: ecdsa-with-SHA256
#         30:44:02:20:22:4f:74:72:b9:60:af:f1:e6:9c:a0:16:05:50:
#         5f:c3:5e:3b:6e:61:74:ef:be:01:c4:be:18:48:59:61:82:32:
#         02:20:26:9d:54:63:40:de:37:60:50:cf:c8:d8:ed:9d:82:ae:
#         37:98:bc:a3:8f:4c:4c:a9:34:2b:6c:ef:fb:95:9b:26

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAER0UOlvt9Xb/pOdEh+J8LttV7HpI6SFkc
8GIxLcB6KP4ap1yztsyX50XUWPrRd21DosCHZTQKH3rd6zwzocWdTaRvQZU4f8ke
hOvRnkmSh5SHDDqFSmafnVmTTZdhBoZK
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            60:59:49:e0:26:2e:bb:55:f9:0a:77:8a:71:f9:4a:d8:6c
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: OU = GlobalSign ECC Root CA - R5, O = GlobalSign, CN = GlobalSign
#        Validity
#            Not Before: Nov 13 00:00:00 2012 GMT
#            Not After : Jan 19 03:14:07 2038 GMT
#        Subject: OU = GlobalSign ECC Root CA - R5, O = GlobalSign, CN = GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:47:45:0e:96:fb:7d:5d:bf:e9:39:d1:21:f8:9f:
#                    0b:b6:d5:7b:1e:92:3a:48:59:1c:f0:62:31:2d:c0:
#                    7a:28:fe:1a:a7:5c:b3:b6:cc:97:e7:45:d4:58:fa:
#                    d1:77:6d:43:a2:c0:87:65:34:0a:1f:7a:dd:eb:3c:
#                    33:a1:c5:9d:4d:a4:6f:41:95:38:7f:c9:1e:84:eb:
#                    d1:9e:49:92:87:94:87:0c:3a:85:4a:66:9f:9d:59:
#                    93:4d:97:61:06:86:4a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                3D:E6:29:48:9B:EA:07:CA:21:44:4A:26:DE:6E:DE:D2:83:D0:9F:59
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:e5:69:12:c9:6e:db:c6:31:ba:09:41:e1:97:
#         f8:fb:fd:9a:e2:7d:12:c9:ed:7c:64:d3:cb:05:25:8b:56:d9:
#         a0:e7:5e:5d:4e:0b:83:9c:5b:76:29:a0:09:26:21:6a:62:02:
#         30:71:d2:b5:8f:5c:ea:3b:e1:78:09:85:a8:75:92:3b:c8:5c:
#         fd:48:ef:0d:74:22:a8:08:e2:6e:c5:49:ce:c7:0c:bc:a7:61:
#         69:f1:f7:3b:e1:2a:cb:f9:2b:f3:66:90:37

[p11-kit-object-v1]
label: "GlobalSign Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2g7mmY3Oo+NPin778YuD
JWvqSB/xKrC5lREEvfBj0eJnZs8c3c8bSCvujYmOmq8pgGWr6cctEsurHExwB6E9
CjDNFY1P+N3UjFAVHO9Q7sQu9/zpUvKRfeBt1TUwjl5Dc/JB6dVq47KJOlY5OG8G
PIhpWypNxadUuGyJzJv5PMrl/Yn1EjySeJbW3HRuk0Rh0Y3HRrJ1DoboGYrVbWzV
eBaVounICjjr8iQTT3NUkxOFOhu8HjS1iwWMuXeLsdsfIJGrCVNukM57N3S5cEeR
IlFjFnmusa5BJgjIGSvRRqpI1mQq14M0/ywqwWwZQ0oHhefTfPYhaO/q8lKff5OQ
zwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:15:4b:5a:c3:94
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
#        Validity
#            Not Before: Sep  1 12:00:00 1998 GMT
#            Not After : Jan 28 12:00:00 2028 GMT
#        Subject: C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:da:0e:e6:99:8d:ce:a3:e3:4f:8a:7e:fb:f1:8b:
#                    83:25:6b:ea:48:1f:f1:2a:b0:b9:95:11:04:bd:f0:
#                    63:d1:e2:67:66:cf:1c:dd:cf:1b:48:2b:ee:8d:89:
#                    8e:9a:af:29:80:65:ab:e9:c7:2d:12:cb:ab:1c:4c:
#                    70:07:a1:3d:0a:30:cd:15:8d:4f:f8:dd:d4:8c:50:
#                    15:1c:ef:50:ee:c4:2e:f7:fc:e9:52:f2:91:7d:e0:
#                    6d:d5:35:30:8e:5e:43:73:f2:41:e9:d5:6a:e3:b2:
#                    89:3a:56:39:38:6f:06:3c:88:69:5b:2a:4d:c5:a7:
#                    54:b8:6c:89:cc:9b:f9:3c:ca:e5:fd:89:f5:12:3c:
#                    92:78:96:d6:dc:74:6e:93:44:61:d1:8d:c7:46:b2:
#                    75:0e:86:e8:19:8a:d5:6d:6c:d5:78:16:95:a2:e9:
#                    c8:0a:38:eb:f2:24:13:4f:73:54:93:13:85:3a:1b:
#                    bc:1e:34:b5:8b:05:8c:b9:77:8b:b1:db:1f:20:91:
#                    ab:09:53:6e:90:ce:7b:37:74:b9:70:47:91:22:51:
#                    63:16:79:ae:b1:ae:41:26:08:c8:19:2b:d1:46:aa:
#                    48:d6:64:2a:d7:83:34:ff:2c:2a:c1:6c:19:43:4a:
#                    07:85:e7:d3:7c:f6:21:68:ef:ea:f2:52:9f:7f:93:
#                    90:cf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                60:7B:66:1A:45:0D:97:CA:89:50:2F:7D:04:CD:34:A8:FF:FC:FD:4B
#    Signature Algorithm: sha1WithRSAEncryption
#         d6:73:e7:7c:4f:76:d0:8d:bf:ec:ba:a2:be:34:c5:28:32:b5:
#         7c:fc:6c:9c:2c:2b:bd:09:9e:53:bf:6b:5e:aa:11:48:b6:e5:
#         08:a3:b3:ca:3d:61:4d:d3:46:09:b3:3e:c3:a0:e3:63:55:1b:
#         f2:ba:ef:ad:39:e1:43:b9:38:a3:e6:2f:8a:26:3b:ef:a0:50:
#         56:f9:c6:0a:fd:38:cd:c4:0b:70:51:94:97:98:04:df:c3:5f:
#         94:d5:15:c9:14:41:9c:c4:5d:75:64:15:0d:ff:55:30:ec:86:
#         8f:ff:0d:ef:2c:b9:63:46:f6:aa:fc:df:bc:69:fd:2e:12:48:
#         64:9a:e0:95:f0:a6:ef:29:8f:01:b1:15:b5:0c:1d:a5:fe:69:
#         2c:69:24:78:1e:b3:a7:1c:71:62:ee:ca:c8:97:ac:17:5d:8a:
#         c2:f8:47:86:6e:2a:c4:56:31:95:d0:67:89:85:2b:f9:6c:a6:
#         5d:46:9d:0c:aa:82:e4:99:51:dd:70:b7:db:56:3d:61:e4:6a:
#         e1:5c:d6:f6:fe:3d:de:41:cc:07:ae:63:52:bf:53:53:f4:2b:
#         e9:c7:fd:b6:f7:82:5f:85:d2:41:18:db:81:b3:04:1c:c5:1f:
#         a4:80:6f:15:20:c9:de:0c:88:0a:1d:d6:66:55:e2:fc:48:c9:
#         29:26:69:e0

[p11-kit-object-v1]
label: "GlobalSign Root CA - R3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzCV2kHkGeCIW9cCDtoTK
KJ79BXYRxa2IcvxGAkPHsoqdBF8kyy5L4WCCRuFSqwyBR3Bs3WTR6/Usow+CPQwr
rpfXthSGEHm7OxOAd4wI4UnSamIvH176lmjfiSeVOJ8G1z7JyyZZDXPesMjpJg6D
FcbvW4vSBGDKSaYo9mk79svIKJHlnYphVzesdBTcdOA67nIvLpz70Lu/9T0A4QYz
6IIrrlOmOhZzjN1BDiA6wLSnoemyT5AuMmDpV8u5BJJoaOU4JmB1sp93/5EU764g
SfytQBVI0QIxYRleuJfvrXe3ZJp6v1/BE++bYvsNbOBUaRapA9pu6YOTcXbGaYWC
FwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root CA - R3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:21:58:53:08:a2
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
#        Validity
#            Not Before: Mar 18 10:00:00 2009 GMT
#            Not After : Mar 18 10:00:00 2029 GMT
#        Subject: OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cc:25:76:90:79:06:78:22:16:f5:c0:83:b6:84:
#                    ca:28:9e:fd:05:76:11:c5:ad:88:72:fc:46:02:43:
#                    c7:b2:8a:9d:04:5f:24:cb:2e:4b:e1:60:82:46:e1:
#                    52:ab:0c:81:47:70:6c:dd:64:d1:eb:f5:2c:a3:0f:
#                    82:3d:0c:2b:ae:97:d7:b6:14:86:10:79:bb:3b:13:
#                    80:77:8c:08:e1:49:d2:6a:62:2f:1f:5e:fa:96:68:
#                    df:89:27:95:38:9f:06:d7:3e:c9:cb:26:59:0d:73:
#                    de:b0:c8:e9:26:0e:83:15:c6:ef:5b:8b:d2:04:60:
#                    ca:49:a6:28:f6:69:3b:f6:cb:c8:28:91:e5:9d:8a:
#                    61:57:37:ac:74:14:dc:74:e0:3a:ee:72:2f:2e:9c:
#                    fb:d0:bb:bf:f5:3d:00:e1:06:33:e8:82:2b:ae:53:
#                    a6:3a:16:73:8c:dd:41:0e:20:3a:c0:b4:a7:a1:e9:
#                    b2:4f:90:2e:32:60:e9:57:cb:b9:04:92:68:68:e5:
#                    38:26:60:75:b2:9f:77:ff:91:14:ef:ae:20:49:fc:
#                    ad:40:15:48:d1:02:31:61:19:5e:b8:97:ef:ad:77:
#                    b7:64:9a:7a:bf:5f:c1:13:ef:9b:62:fb:0d:6c:e0:
#                    54:69:16:a9:03:da:6e:e9:83:93:71:76:c6:69:85:
#                    82:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8F:F0:4B:7F:A8:2E:45:24:AE:4D:50:FA:63:9A:8B:DE:E2:DD:1B:BC
#    Signature Algorithm: sha256WithRSAEncryption
#         4b:40:db:c0:50:aa:fe:c8:0c:ef:f7:96:54:45:49:bb:96:00:
#         09:41:ac:b3:13:86:86:28:07:33:ca:6b:e6:74:b9:ba:00:2d:
#         ae:a4:0a:d3:f5:f1:f1:0f:8a:bf:73:67:4a:83:c7:44:7b:78:
#         e0:af:6e:6c:6f:03:29:8e:33:39:45:c3:8e:e4:b9:57:6c:aa:
#         fc:12:96:ec:53:c6:2d:e4:24:6c:b9:94:63:fb:dc:53:68:67:
#         56:3e:83:b8:cf:35:21:c3:c9:68:fe:ce:da:c2:53:aa:cc:90:
#         8a:e9:f0:5d:46:8c:95:dd:7a:58:28:1a:2f:1d:de:cd:00:37:
#         41:8f:ed:44:6d:d7:53:28:97:7e:f3:67:04:1e:15:d7:8a:96:
#         b4:d3:de:4c:27:a4:4c:1b:73:73:76:f4:17:99:c2:1f:7a:0e:
#         e3:2d:08:ad:0a:1c:2c:ff:3c:ab:55:0e:0f:91:7e:36:eb:c3:
#         57:49:be:e1:2e:2d:7c:60:8b:c3:41:51:13:23:9d:ce:f7:32:
#         6b:94:01:a8:99:e7:2c:33:1f:3a:3b:25:d2:86:40:ce:3b:2c:
#         86:78:c9:61:2f:14:ba:ee:db:55:6f:df:84:ee:05:09:4d:bd:
#         28:d8:72:ce:d3:62:50:65:1e:eb:92:97:83:31:d9:b3:b5:ca:
#         47:58:3f:5f

[p11-kit-object-v1]
label: "GlobalSign Root CA - R6"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root CA - R6"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            45:e6:bb:03:83:33:c3:85:65:48:e6:ff:45:51
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: OU = GlobalSign Root CA - R6, O = GlobalSign, CN = GlobalSign
#        Validity
#            Not Before: Dec 10 00:00:00 2014 GMT
#            Not After : Dec 10 00:00:00 2034 GMT
#        Subject: OU = GlobalSign Root CA - R6, O = GlobalSign, CN = GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:95:07:e8:73:ca:66:f9:ec:14:ca:7b:3c:f7:0d:
#                    08:f1:b4:45:0b:2c:82:b4:48:c6:eb:5b:3c:ae:83:
#                    b8:41:92:33:14:a4:6f:7f:e9:2a:cc:c6:b0:88:6b:
#                    c5:b6:89:d1:c6:b2:ff:14:ce:51:14:21:ec:4a:dd:
#                    1b:5a:c6:d6:87:ee:4d:3a:15:06:ed:64:66:0b:92:
#                    80:ca:44:de:73:94:4e:f3:a7:89:7f:4f:78:63:08:
#                    c8:12:50:6d:42:66:2f:4d:b9:79:28:4d:52:1a:8a:
#                    1a:80:b7:19:81:0e:7e:c4:8a:bc:64:4c:21:1c:43:
#                    68:d7:3d:3c:8a:c5:b2:66:d5:90:9a:b7:31:06:c5:
#                    be:e2:6d:32:06:a6:1e:f9:b9:eb:aa:a3:b8:bf:be:
#                    82:63:50:d0:f0:18:89:df:e4:0f:79:f5:ea:a2:1f:
#                    2a:d2:70:2e:7b:e7:bc:93:bb:6d:53:e2:48:7c:8c:
#                    10:07:38:ff:66:b2:77:61:7e:e0:ea:8c:3c:aa:b4:
#                    a4:f6:f3:95:4a:12:07:6d:fd:8c:b2:89:cf:d0:a0:
#                    61:77:c8:58:74:b0:d4:23:3a:f7:5d:3a:ca:a2:db:
#                    9d:09:de:5d:44:2d:90:f1:81:cd:57:92:fa:7e:bc:
#                    50:04:63:34:df:6b:93:18:be:6b:36:b2:39:e4:ac:
#                    24:36:b7:f0:ef:b6:1c:13:57:93:b6:de:b2:f8:e2:
#                    85:b7:73:a2:b8:35:aa:45:f2:e0:9d:36:a1:6f:54:
#                    8a:f1:72:56:6e:2e:88:c5:51:42:44:15:94:ee:a3:
#                    c5:38:96:9b:4e:4e:5a:0b:47:f3:06:36:49:77:30:
#                    bc:71:37:e5:a6:ec:21:08:75:fc:e6:61:16:3f:77:
#                    d5:d9:91:97:84:0a:6c:d4:02:4d:74:c0:14:ed:fd:
#                    39:fb:83:f2:5e:14:a1:04:b0:0b:e9:fe:ee:8f:e1:
#                    6e:0b:b2:08:b3:61:66:09:6a:b1:06:3a:65:96:59:
#                    c0:f0:35:fd:c9:da:28:8d:1a:11:87:70:81:0a:a8:
#                    9a:75:1d:9e:3a:86:05:00:9e:db:80:d6:25:f9:dc:
#                    05:9e:27:59:4c:76:39:5b:ea:f9:a5:a1:d8:83:0f:
#                    d1:ff:df:30:11:f9:85:cf:33:48:f5:ca:6d:64:14:
#                    2c:7a:58:4f:d3:4b:08:49:c5:95:64:1a:63:0e:79:
#                    3d:f5:b3:8c:ca:58:ad:9c:42:45:79:6e:0e:87:19:
#                    5c:54:b1:65:b6:bf:8c:9b:dc:13:e9:0d:6f:b8:2e:
#                    dc:67:6e:c9:8b:11:b5:84:14:8a:00:19:70:83:79:
#                    91:97:91:d4:1a:27:bf:37:1e:32:07:d8:14:63:3c:
#                    28:4c:af
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AE:6C:05:A3:93:13:E2:A2:E7:E2:D7:1C:D6:C7:F0:7F:C8:67:53:A0
#            X509v3 Authority Key Identifier: 
#                keyid:AE:6C:05:A3:93:13:E2:A2:E7:E2:D7:1C:D6:C7:F0:7F:C8:67:53:A0
#
#    Signature Algorithm: sha384WithRSAEncryption
#         83:25:ed:e8:d1:fd:95:52:cd:9e:c0:04:a0:91:69:e6:5c:d0:
#         84:de:dc:ad:a2:4f:e8:47:78:d6:65:98:a9:5b:a8:3c:87:7c:
#         02:8a:d1:6e:b7:16:73:e6:5f:c0:54:98:d5:74:be:c1:cd:e2:
#         11:91:ad:23:18:3d:dd:e1:72:44:96:b4:95:5e:c0:7b:8e:99:
#         78:16:43:13:56:57:b3:a2:b3:3b:b5:77:dc:40:72:ac:a3:eb:
#         9b:35:3e:b1:08:21:a1:e7:c4:43:37:79:32:be:b5:e7:9c:2c:
#         4c:bc:43:29:99:8e:30:d3:ac:21:e0:e3:1d:fa:d8:07:33:76:
#         54:00:22:2a:b9:4d:20:2e:70:68:da:e5:53:fc:83:5c:d3:9d:
#         f2:ff:44:0c:44:66:f2:d2:e3:bd:46:00:1a:6d:02:ba:25:5d:
#         8d:a1:31:51:dd:54:46:1c:4d:db:99:96:ef:1a:1c:04:5c:a6:
#         15:ef:78:e0:79:fe:5d:db:3e:aa:4c:55:fd:9a:15:a9:6f:e1:
#         a6:fb:df:70:30:e9:c3:ee:42:46:ed:c2:93:05:89:fa:7d:63:
#         7b:3f:d0:71:81:7c:00:e8:98:ae:0e:78:34:c3:25:fb:af:0a:
#         9f:20:6b:dd:3b:13:8f:12:8c:e2:41:1a:48:7a:73:a0:77:69:
#         c7:b6:5c:7f:82:c8:1e:fe:58:1b:28:2b:a8:6c:ad:5e:6d:c0:
#         05:d2:7b:b7:eb:80:fe:25:37:fe:02:9b:68:ac:42:5d:c3:ee:
#         f5:cc:dc:f0:50:75:d2:36:69:9c:e6:7b:04:df:6e:06:69:b6:
#         de:0a:09:48:59:87:eb:7b:14:60:7a:64:aa:69:43:ef:91:c7:
#         4c:ec:18:dd:6c:ef:53:2d:8c:99:e1:5e:f2:72:3e:cf:54:c8:
#         bd:67:ec:a4:0f:4c:45:ff:d3:b9:30:23:07:4c:8f:10:bf:86:
#         96:d9:99:5a:b4:99:57:1c:a4:cc:bb:15:89:53:ba:2c:05:0f:
#         e4:c4:9e:19:b1:18:34:d5:4c:9d:ba:ed:f7:1f:af:24:95:04:
#         78:a8:03:bb:ee:81:e5:da:5f:7c:8b:4a:a1:90:74:25:a7:b3:
#         3e:4b:c8:2c:56:bd:c7:c8:ef:38:e2:5c:92:f0:79:f7:9c:84:
#         ba:74:2d:61:01:20:7e:7e:d1:f2:4f:07:59:5f:8b:2d:43:52:
#         eb:46:0c:94:e1:f5:66:47:79:77:d5:54:5b:1f:ad:24:37:cb:
#         45:5a:4e:a0:44:48:c8:d8:b0:99:c5:15:84:09:f6:d6:49:49:
#         c0:65:b8:e6:1a:71:6e:a0:a8:f1:82:e8:45:3e:6c:d6:02:d7:
#         0a:67:83:05:5a:c9:a4:10

[p11-kit-object-v1]
label: "GlobalSign Root E46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEnA6xz7fonlJ3dTT6pUanrTIZMrQHqSfK
lLsM0goQx9qJsJcMcBMJAY7Y6kfqvrKAK838KA3brLykhjftcAgAdeqTC3suUpwj
aCMGQ+ySL1OE2/tHFAfoX5RnXcl6gTwg
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root E46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:d2:bb:ba:33:6e:d4:bc:e6:24:68:c5:0d:84:1d:98:e8:43
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Root E46
#        Validity
#            Not Before: Mar 20 00:00:00 2019 GMT
#            Not After : Mar 20 00:00:00 2046 GMT
#        Subject: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Root E46
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:9c:0e:b1:cf:b7:e8:9e:52:77:75:34:fa:a5:46:
#                    a7:ad:32:19:32:b4:07:a9:27:ca:94:bb:0c:d2:0a:
#                    10:c7:da:89:b0:97:0c:70:13:09:01:8e:d8:ea:47:
#                    ea:be:b2:80:2b:cd:fc:28:0d:db:ac:bc:a4:86:37:
#                    ed:70:08:00:75:ea:93:0b:7b:2e:52:9c:23:68:23:
#                    06:43:ec:92:2f:53:84:db:fb:47:14:07:e8:5f:94:
#                    67:5d:c9:7a:81:3c:20
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                31:0A:90:8F:B6:C6:9D:D2:44:4B:80:B5:A2:E6:1F:B1:12:4F:1B:95
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:df:54:90:ed:9b:ef:8b:94:02:93:17:82:99:
#         be:b3:9e:2c:f6:0b:91:8c:9f:4a:14:b1:f6:64:bc:bb:68:51:
#         13:0c:03:f7:15:8b:84:60:b9:8b:ff:52:8e:e7:8c:bc:1c:02:
#         30:3c:f9:11:d4:8c:4e:c0:c1:61:c2:15:4c:aa:ab:1d:0b:31:
#         5f:3b:1c:e2:00:97:44:31:e6:fe:73:96:2f:da:96:d3:fe:08:
#         07:b3:34:89:bc:05:9f:f7:1e:86:ee:8b:70

[p11-kit-object-v1]
label: "GlobalSign Root R46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArKx0MuizZeW67UMmHaaJ
DUW6KYiypB1j3dPBLAlXiTmhVelnNHcMbuRVHVIl0hNrXuEdqbd9iTJfDZ6fLHpj
YEAfprC2eI+ZVJYIWK7kBrxiBQIWv6+oIwO2lA+8bmzCy9Wmuwzp9sEC+yHeZt0X
q3RC7/B0LyX06mtVW5Dbnd9ehwpA+60Za/v3ymCI3trBj9au1X/UPIPu1xZMg0Uz
ayfQhtAcLWvzq33xhan1KNKt7/OESxyH/BOjOnKiWhEr1idxJ+2BLW1mgZKHtBtY
esw/CvpGT014XPgrSOMEhMtd9rRqs2X8Qp5RJiMgyz0U+YHtZRYATxpkl2YIz4x7
4yvAnfkU8hvxVmoWvyyFhc14OJrrQmoCNBiDF06UVvi2grXzlt09875/IHc+exkj
ayzUcnNDV33g+NdpTxc2BPnAkGA3Rd7mDNh0ja6com10XUK+BvXZZG4CEKyJsEw7
B01AfiTFipiCeY6kp4IgjSP6J3HJ38ZBdKBN9pEW3EaMXyljMVlxDNhvwrYyffvm
XVOmfhX8u3V8Xez49hcc7MdrGcvze/ArB6XZbHlUdmydHKZuDul5DKgjaqPfGzAx
n7FUe/5qy2aq3GXQop5Kmgcha4GP28RZ+t4iwASc46pbNpPoPb16oZ0LdrELx539
z5ioBsL4KqOhg6C3JXKlAuMCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root R46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:d2:bb:b9:d7:23:18:9e:40:5f:0a:9d:2d:d0:df:25:67:d1
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Root R46
#        Validity
#            Not Before: Mar 20 00:00:00 2019 GMT
#            Not After : Mar 20 00:00:00 2046 GMT
#        Subject: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Root R46
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ac:ac:74:32:e8:b3:65:e5:ba:ed:43:26:1d:a6:
#                    89:0d:45:ba:29:88:b2:a4:1d:63:dd:d3:c1:2c:09:
#                    57:89:39:a1:55:e9:67:34:77:0c:6e:e4:55:1d:52:
#                    25:d2:13:6b:5e:e1:1d:a9:b7:7d:89:32:5f:0d:9e:
#                    9f:2c:7a:63:60:40:1f:a6:b0:b6:78:8f:99:54:96:
#                    08:58:ae:e4:06:bc:62:05:02:16:bf:af:a8:23:03:
#                    b6:94:0f:bc:6e:6c:c2:cb:d5:a6:bb:0c:e9:f6:c1:
#                    02:fb:21:de:66:dd:17:ab:74:42:ef:f0:74:2f:25:
#                    f4:ea:6b:55:5b:90:db:9d:df:5e:87:0a:40:fb:ad:
#                    19:6b:fb:f7:ca:60:88:de:da:c1:8f:d6:ae:d5:7f:
#                    d4:3c:83:ee:d7:16:4c:83:45:33:6b:27:d0:86:d0:
#                    1c:2d:6b:f3:ab:7d:f1:85:a9:f5:28:d2:ad:ef:f3:
#                    84:4b:1c:87:fc:13:a3:3a:72:a2:5a:11:2b:d6:27:
#                    71:27:ed:81:2d:6d:66:81:92:87:b4:1b:58:7a:cc:
#                    3f:0a:fa:46:4f:4d:78:5c:f8:2b:48:e3:04:84:cb:
#                    5d:f6:b4:6a:b3:65:fc:42:9e:51:26:23:20:cb:3d:
#                    14:f9:81:ed:65:16:00:4f:1a:64:97:66:08:cf:8c:
#                    7b:e3:2b:c0:9d:f9:14:f2:1b:f1:56:6a:16:bf:2c:
#                    85:85:cd:78:38:9a:eb:42:6a:02:34:18:83:17:4e:
#                    94:56:f8:b6:82:b5:f3:96:dd:3d:f3:be:7f:20:77:
#                    3e:7b:19:23:6b:2c:d4:72:73:43:57:7d:e0:f8:d7:
#                    69:4f:17:36:04:f9:c0:90:60:37:45:de:e6:0c:d8:
#                    74:8d:ae:9c:a2:6d:74:5d:42:be:06:f5:d9:64:6e:
#                    02:10:ac:89:b0:4c:3b:07:4d:40:7e:24:c5:8a:98:
#                    82:79:8e:a4:a7:82:20:8d:23:fa:27:71:c9:df:c6:
#                    41:74:a0:4d:f6:91:16:dc:46:8c:5f:29:63:31:59:
#                    71:0c:d8:6f:c2:b6:32:7d:fb:e6:5d:53:a6:7e:15:
#                    fc:bb:75:7c:5d:ec:f8:f6:17:1c:ec:c7:6b:19:cb:
#                    f3:7b:f0:2b:07:a5:d9:6c:79:54:76:6c:9d:1c:a6:
#                    6e:0e:e9:79:0c:a8:23:6a:a3:df:1b:30:31:9f:b1:
#                    54:7b:fe:6a:cb:66:aa:dc:65:d0:a2:9e:4a:9a:07:
#                    21:6b:81:8f:db:c4:59:fa:de:22:c0:04:9c:e3:aa:
#                    5b:36:93:e8:3d:bd:7a:a1:9d:0b:76:b1:0b:c7:9d:
#                    fd:cf:98:a8:06:c2:f8:2a:a3:a1:83:a0:b7:25:72:
#                    a5:02:e3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                03:5C:AB:73:81:87:A8:CC:B0:A6:D5:94:E2:36:96:49:FF:05:99:2C
#    Signature Algorithm: sha384WithRSAEncryption
#         7c:78:ec:f6:02:2c:bb:5b:7e:92:2b:5d:39:dc:be:d8:1d:a2:
#         42:33:4d:f9:ef:a4:2a:3b:44:69:1e:ac:d9:45:a3:4e:3c:a7:
#         d8:24:51:b2:54:1c:93:4e:c4:ef:7b:93:85:60:26:ea:09:48:
#         e0:f5:bb:c7:e9:68:d2:bb:6a:31:71:cc:79:ae:11:a8:f0:99:
#         fd:e5:1f:bc:2f:a8:cc:57:eb:76:c4:21:a6:47:53:55:4d:68:
#         bf:05:a4:ee:d7:26:ab:62:da:43:37:4b:e2:c6:b5:e5:b2:83:
#         19:3a:c7:d3:db:4d:9e:08:7a:f3:ee:cf:3e:62:fb:ac:e8:60:
#         cc:d1:c7:a1:5c:83:45:c4:45:cc:f3:17:6b:14:c9:04:02:3e:
#         d2:24:a6:79:e9:1e:ce:a2:e7:c1:59:15:9f:1d:e2:4b:9a:3e:
#         9f:76:08:2d:6b:d8:ba:57:14:da:83:ea:fe:8c:55:e9:d0:4e:
#         a9:cc:77:31:b1:44:11:7a:5c:b1:3e:d3:14:45:15:18:62:24:
#         13:d2:cb:4d:ce:5c:83:c1:36:f2:10:b5:0e:88:6d:b8:e1:56:
#         9f:89:de:96:66:39:47:64:2c:6e:4d:ae:62:7b:bf:60:74:19:
#         b8:56:ac:92:ac:16:32:ed:ad:68:55:fe:98:ba:d3:34:de:f4:
#         c9:61:c3:0e:86:f6:4b:84:60:ee:0d:7b:b5:32:58:79:91:55:
#         2c:81:43:b3:74:1f:7a:aa:25:9e:1d:d7:a1:8b:b9:cd:42:2e:
#         04:a4:66:83:4d:89:35:b6:6c:a8:36:4a:79:21:78:22:d0:42:
#         bc:d1:40:31:90:a1:be:04:cf:ca:67:ed:f5:f0:80:d3:60:c9:
#         83:2a:22:05:d0:07:3b:52:bf:0c:9e:aa:2b:f9:bb:e6:1f:8f:
#         25:ba:85:8d:17:1e:02:fe:5d:50:04:57:cf:fe:2d:bc:ef:5c:
#         c0:1a:ab:b6:9f:24:c6:df:73:68:48:90:2c:14:f4:3f:52:1a:
#         e4:d2:cb:14:c3:61:69:cf:e2:f9:18:c5:ba:33:9f:14:a3:04:
#         5d:b9:71:f7:b5:94:d8:f6:33:c1:5a:c1:34:8b:7c:9b:dd:93:
#         3a:e7:13:a2:70:61:9f:af:8f:eb:d8:c5:75:f8:33:66:d4:74:
#         67:3a:37:77:9c:e7:dd:a4:0f:76:43:66:8a:43:f2:9f:fb:0c:
#         42:78:63:d1:e2:0f:6f:7b:d4:a1:3d:74:97:85:b7:48:39:41:
#         d6:20:fc:d0:3a:b3:fa:e8:6f:c4:8a:ba:71:37:be:8b:97:b1:
#         78:31:4f:b3:e7:b6:03:13:ce:54:9d:ae:25:59:cc:7f:35:5f:
#         08:f7:40:45:31:78:2a:7a

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root E45"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE+XmLgUc3iZY/RUlQfxomC5Myfi7AwKcI
msNuj5s+CyLsN1O3b4qwvCc3S22pRjvZH/+loUS7LXO/nkEHXFObUQg6WrtvOMcW
kXjCShNpHYLfWi8AiJaiLhx0+Z1+ZjeK
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root E45"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:53:fe:aa:27:1d:95:46:5d:d6:f1:9e:e5:b8:90:0a
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root E45
#        Validity
#            Not Before: Mar 18 00:00:00 2020 GMT
#            Not After : Mar 18 00:00:00 2045 GMT
#        Subject: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root E45
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:f9:79:8b:81:47:37:89:96:3f:45:49:50:7f:1a:
#                    26:0b:93:32:7e:2e:c0:c0:a7:08:9a:c3:6e:8f:9b:
#                    3e:0b:22:ec:37:53:b7:6f:8a:b0:bc:27:37:4b:6d:
#                    a9:46:3b:d9:1f:ff:a5:a1:44:bb:2d:73:bf:9e:41:
#                    07:5c:53:9b:51:08:3a:5a:bb:6f:38:c7:16:91:78:
#                    c2:4a:13:69:1d:82:df:5a:2f:00:88:96:a2:2e:1c:
#                    74:f9:9d:7e:66:37:8a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DF:13:5E:8B:5F:C2:40:02:FD:56:B7:94:4C:B6:1E:D5:A6:B1:14:96
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:13:b0:be:d7:71:20:3e:e4:ab:9c:ce:36:12:7d:
#         5f:4c:1f:2a:b5:69:45:33:5f:d3:2d:5a:b2:e4:88:c7:de:0a:
#         36:42:32:79:9d:a6:6b:ba:e1:f9:44:2a:7b:8a:c3:12:02:31:
#         00:a0:66:1c:4e:87:9d:87:c9:ed:99:4c:1b:0a:ee:2d:60:c3:
#         37:c7:1d:cd:b5:72:b0:d9:c6:ef:bc:f2:ff:3f:f0:52:dd:08:
#         e7:aa:64:79:c3:e4:69:57:91:2f:a4:cb:7c

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root R45"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root R45"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:53:fe:a8:4c:50:ab:9f:8d:32:b5:1d:03:8f:57:dc
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root R45
#        Validity
#            Not Before: Mar 18 00:00:00 2020 GMT
#            Not After : Mar 18 00:00:00 2045 GMT
#        Subject: C = BE, O = GlobalSign nv-sa, CN = GlobalSign Secure Mail Root R45
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:dc:79:cc:6d:06:f9:6d:bb:e0:56:04:6c:7f:e0:
#                    75:cc:2d:05:49:e8:4b:dc:54:ec:5b:77:95:72:bf:
#                    7f:62:9d:85:a9:8a:24:50:5f:53:e5:db:74:6f:a4:
#                    29:5b:13:2a:09:ad:9a:c5:2f:c2:f7:76:3b:a1:45:
#                    46:aa:43:e6:24:fe:2b:b0:6f:32:70:19:46:5a:79:
#                    26:2f:fc:3d:7d:5f:64:cb:57:cc:61:61:a8:d9:95:
#                    6e:e3:95:a0:6e:7f:47:12:18:d6:ef:03:c9:fb:8a:
#                    fa:9a:bd:82:15:a9:55:77:4b:11:4f:59:e0:6b:c3:
#                    71:f3:0c:d8:54:d5:81:68:3e:13:b9:15:2e:87:8a:
#                    3c:44:27:36:62:24:6e:f8:2c:05:72:30:61:bd:42:
#                    91:23:c4:9d:25:a7:d9:54:9a:14:a3:31:ad:80:79:
#                    0c:a7:63:6c:98:a3:ac:57:47:33:1f:65:96:e1:d0:
#                    d2:35:da:f9:71:f7:a1:a6:25:b5:41:5d:df:3e:60:
#                    d8:d1:f6:9f:a5:f2:b8:cc:13:aa:8f:f9:b2:6e:e1:
#                    83:2d:93:dd:3e:85:1a:dd:e8:b1:5c:26:01:cb:49:
#                    85:fc:fc:d2:d4:7f:85:62:86:74:f9:cb:ec:35:22:
#                    a2:0c:30:8f:3b:ab:79:eb:56:f2:fa:42:f3:ed:f9:
#                    1f:45:89:40:29:ad:ea:92:74:ea:52:fd:56:b4:2b:
#                    da:a2:ed:75:c2:6e:ab:ce:52:90:4b:f6:de:f0:49:
#                    8f:9a:48:d4:88:19:6d:45:e6:cc:8c:b9:dd:64:60:
#                    60:02:40:f8:b9:cf:bc:58:eb:3d:85:b9:c6:0a:d3:
#                    9c:07:66:8f:c7:18:39:23:46:e1:3c:1e:a3:2f:50:
#                    61:92:0b:3d:2b:6c:f1:a3:47:38:57:91:ab:0d:8f:
#                    c6:9d:4d:04:d2:26:52:5c:e5:a5:fd:2a:2d:16:2a:
#                    01:69:e7:a9:7d:e1:36:b7:b1:2a:c5:d9:b1:8d:bd:
#                    b9:8b:ce:cc:8b:a1:3e:0b:48:cd:50:95:34:c4:d8:
#                    08:59:d8:6b:26:f4:be:f5:d4:22:17:00:57:c9:ae:
#                    9b:04:30:33:9f:0b:fb:df:56:a2:c9:6e:54:76:da:
#                    b1:97:62:27:59:0f:11:8a:22:1b:64:96:3f:a8:f1:
#                    b7:24:4a:8d:3c:53:7c:6d:83:76:3d:b2:26:48:73:
#                    f5:44:16:01:2d:09:2a:8e:16:96:50:d0:73:06:5d:
#                    bb:22:48:82:4c:0a:46:5a:3f:80:ff:5c:f2:f2:9a:
#                    ac:2c:08:e0:d6:ea:f0:12:38:81:4f:a6:10:ed:46:
#                    ab:cc:16:9c:0b:cf:64:a6:99:02:85:44:67:46:ad:
#                    fd:4d:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A0:93:15:28:6E:EE:8F:08:B2:35:C6:9E:62:79:74:A7:B1:0E:2B:7B
#    Signature Algorithm: sha384WithRSAEncryption
#         45:0a:f8:d1:5c:ac:62:81:d0:04:d7:b6:ff:57:51:89:0b:0c:
#         cb:de:24:65:37:fb:ab:9e:ed:66:f4:ea:0c:19:69:89:b8:19:
#         b1:30:56:b4:d9:f6:f7:be:c6:ae:97:cb:45:f6:11:8c:3a:30:
#         64:4c:c1:9f:59:c0:46:42:08:06:47:64:17:78:e0:95:07:06:
#         d6:8c:a2:ac:a9:d9:3f:d3:7b:56:4f:fc:c4:87:28:df:b6:2b:
#         16:23:c0:9f:1f:5b:e3:d6:44:5e:22:4f:23:04:8c:35:16:b5:
#         79:07:86:5c:2f:97:e2:f6:08:64:a6:dc:db:a8:8a:e3:a4:7b:
#         77:0d:d1:29:93:28:20:b4:53:a3:4b:4e:5f:de:c1:f6:75:23:
#         fc:1f:3c:78:4f:70:31:78:2f:a2:35:54:71:04:ac:c8:c4:6d:
#         c3:f6:91:b1:fe:cd:ee:44:6e:81:f6:40:c5:3e:2a:01:bf:ab:
#         4c:b1:03:3f:0d:11:e4:0f:d2:24:e3:22:88:9b:9f:5f:47:3d:
#         51:49:e0:09:37:7e:17:21:31:76:b7:67:71:48:28:4b:25:d7:
#         10:e8:9f:61:59:16:c5:3e:32:4e:1f:0c:ce:a3:cc:0f:e4:c7:
#         11:07:22:2f:38:08:dd:5b:97:eb:42:6c:59:9a:9a:ee:7a:d0:
#         9d:df:c5:db:09:43:2e:0a:aa:19:3d:6b:e8:6a:30:7a:57:e6:
#         bf:b3:6a:39:a9:8f:e3:f1:4f:65:68:b6:bd:9f:28:8f:a1:16:
#         5a:09:50:3a:32:2e:1d:2f:44:11:42:a6:00:e6:31:98:ff:2d:
#         a1:0f:e6:a4:60:56:cf:79:d7:b2:4e:d7:b0:fa:6e:0c:57:23:
#         c7:ce:1f:a5:b1:4c:6d:19:49:9e:0e:7f:70:8f:71:3f:58:28:
#         9f:75:dd:61:e0:3a:b7:39:b6:ee:97:d4:35:51:fb:8b:49:60:
#         c8:3c:66:ae:97:ee:8d:26:59:57:bb:78:f0:7a:50:30:09:b0:
#         60:aa:9f:4e:dc:c9:3e:1e:3a:dc:62:93:33:b0:3a:54:74:6f:
#         2c:31:45:d1:6b:11:32:6a:68:76:f6:3d:f6:6a:13:5e:24:98:
#         e7:ea:1d:9a:cf:78:82:07:60:f7:4d:10:d3:81:9a:45:8d:9e:
#         af:9b:dc:80:c7:43:b2:95:68:a4:c3:0e:e8:0a:47:15:bf:54:
#         33:dc:01:e7:d5:a6:1e:73:d8:7a:b2:bf:2f:ad:e3:55:30:9e:
#         df:0e:41:bc:e0:11:f5:a1:0c:a8:22:e1:e3:00:a3:4e:70:7c:
#         92:e3:04:d1:7a:42:8a:75:90:59:e3:9b:d1:4c:a2:64:bd:73:
#         79:9b:6f:f2:b3:c1:f6:3c

[p11-kit-object-v1]
label: "Global Chambersign Root - 2008"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAwN9W0+Q6m3ZFtBPb/8G2
GYs3QRiVUkfrF50piI41bAYyLkdi80kEv31ENrFxzL1aCXPV2YVE/5FXJd9eNo5w
0VxxQx3Z2u9c0vsbvTq1y62jzESnDa4hFT+5eluSddikEjiJGYq3gNLiMm9WnJHW
iBALs3RkknRg8/bPGE9gsiPQxzvOYUuZj8IM0ECymNwNqE6juQquYKCtRVJjuma9
aOD5vhqogbseQXh108H+AFWwh1ToJ5A1HUwzrZf8ly6YhL8syaO/0ZgRFO1j+MqY
iFgXme1FA5d+PIYeiIy+8pGEj2U02ABMfbcxF1opegoYJDCjN7V6qQF9Jtb5Do5Z
8f0bM7UpOxc7QbYh3dTAPaWfnx9DUMm7vGx6l5juzYwf+5xRrotwvSefccBrrH2Q
ZujXXToNsNXCjdXInZ3BbdDQv1Hk4/jDODau1qd15q+EQ12TkgxqB947HZgi1qzB
NdujoCX/crV2Hd5t6SxmLFKE0EWSzhzl5TMd3AdTVKOqgjuaNy/c3aBk6ebdva78
ZIUdPKfJBt6E/2voaxo8xaKzQvuLCT5fCFLHYsTUBXG/xGTk+KGD6D4Sm6ge1DZN
L3H2jSj2g6kT0mHBkbtIwDSPQYxLTNtpEv9QlJwgg1lz7Xyh8vH93fdJ00NYoFZj
yj095TVWWekOyiDMK0uTKQ8CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Global Chambersign Root - 2008"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c9:cd:d3:e9:d5:7d:23:ce
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = EU, L = Madrid (see current address at www.camerfirma.com/address), serialNumber = A82743287, O = AC Camerfirma S.A., CN = Global Chambersign Root - 2008
#        Validity
#            Not Before: Aug  1 12:31:40 2008 GMT
#            Not After : Jul 31 12:31:40 2038 GMT
#        Subject: C = EU, L = Madrid (see current address at www.camerfirma.com/address), serialNumber = A82743287, O = AC Camerfirma S.A., CN = Global Chambersign Root - 2008
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:df:56:d3:e4:3a:9b:76:45:b4:13:db:ff:c1:
#                    b6:19:8b:37:41:18:95:52:47:eb:17:9d:29:88:8e:
#                    35:6c:06:32:2e:47:62:f3:49:04:bf:7d:44:36:b1:
#                    71:cc:bd:5a:09:73:d5:d9:85:44:ff:91:57:25:df:
#                    5e:36:8e:70:d1:5c:71:43:1d:d9:da:ef:5c:d2:fb:
#                    1b:bd:3a:b5:cb:ad:a3:cc:44:a7:0d:ae:21:15:3f:
#                    b9:7a:5b:92:75:d8:a4:12:38:89:19:8a:b7:80:d2:
#                    e2:32:6f:56:9c:91:d6:88:10:0b:b3:74:64:92:74:
#                    60:f3:f6:cf:18:4f:60:b2:23:d0:c7:3b:ce:61:4b:
#                    99:8f:c2:0c:d0:40:b2:98:dc:0d:a8:4e:a3:b9:0a:
#                    ae:60:a0:ad:45:52:63:ba:66:bd:68:e0:f9:be:1a:
#                    a8:81:bb:1e:41:78:75:d3:c1:fe:00:55:b0:87:54:
#                    e8:27:90:35:1d:4c:33:ad:97:fc:97:2e:98:84:bf:
#                    2c:c9:a3:bf:d1:98:11:14:ed:63:f8:ca:98:88:58:
#                    17:99:ed:45:03:97:7e:3c:86:1e:88:8c:be:f2:91:
#                    84:8f:65:34:d8:00:4c:7d:b7:31:17:5a:29:7a:0a:
#                    18:24:30:a3:37:b5:7a:a9:01:7d:26:d6:f9:0e:8e:
#                    59:f1:fd:1b:33:b5:29:3b:17:3b:41:b6:21:dd:d4:
#                    c0:3d:a5:9f:9f:1f:43:50:c9:bb:bc:6c:7a:97:98:
#                    ee:cd:8c:1f:fb:9c:51:ae:8b:70:bd:27:9f:71:c0:
#                    6b:ac:7d:90:66:e8:d7:5d:3a:0d:b0:d5:c2:8d:d5:
#                    c8:9d:9d:c1:6d:d0:d0:bf:51:e4:e3:f8:c3:38:36:
#                    ae:d6:a7:75:e6:af:84:43:5d:93:92:0c:6a:07:de:
#                    3b:1d:98:22:d6:ac:c1:35:db:a3:a0:25:ff:72:b5:
#                    76:1d:de:6d:e9:2c:66:2c:52:84:d0:45:92:ce:1c:
#                    e5:e5:33:1d:dc:07:53:54:a3:aa:82:3b:9a:37:2f:
#                    dc:dd:a0:64:e9:e6:dd:bd:ae:fc:64:85:1d:3c:a7:
#                    c9:06:de:84:ff:6b:e8:6b:1a:3c:c5:a2:b3:42:fb:
#                    8b:09:3e:5f:08:52:c7:62:c4:d4:05:71:bf:c4:64:
#                    e4:f8:a1:83:e8:3e:12:9b:a8:1e:d4:36:4d:2f:71:
#                    f6:8d:28:f6:83:a9:13:d2:61:c1:91:bb:48:c0:34:
#                    8f:41:8c:4b:4c:db:69:12:ff:50:94:9c:20:83:59:
#                    73:ed:7c:a1:f2:f1:fd:dd:f7:49:d3:43:58:a0:56:
#                    63:ca:3d:3d:e5:35:56:59:e9:0e:ca:20:cc:2b:4b:
#                    93:29:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 Subject Key Identifier: 
#                B9:09:CA:9C:1E:DB:D3:6C:3A:6B:AE:ED:54:F1:5B:93:06:35:2E:5E
#            X509v3 Authority Key Identifier: 
#                keyid:B9:09:CA:9C:1E:DB:D3:6C:3A:6B:AE:ED:54:F1:5B:93:06:35:2E:5E
#                DirName:/C=EU/L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287/O=AC Camerfirma S.A./CN=Global Chambersign Root - 2008
#                serial:C9:CD:D3:E9:D5:7D:23:CE
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://policy.camerfirma.com
#
#    Signature Algorithm: sha1WithRSAEncryption
#         80:88:7f:70:de:92:28:d9:05:94:46:ff:90:57:a9:f1:2f:df:
#         1a:0d:6b:fa:7c:0e:1c:49:24:79:27:d8:46:aa:6f:29:59:52:
#         88:70:12:ea:dd:3d:f5:9b:53:54:6f:e1:60:a2:a8:09:b9:ec:
#         eb:59:7c:c6:35:f1:dc:18:e9:f1:67:e5:af:ba:45:e0:09:de:
#         ca:44:0f:c2:17:0e:77:91:45:7a:33:5f:5f:96:2c:68:8b:c1:
#         47:8f:98:9b:3d:c0:ec:cb:f5:d5:82:92:84:35:d1:be:36:38:
#         56:72:31:5b:47:2d:aa:17:a4:63:51:eb:0a:01:ad:7f:ec:75:
#         9e:cb:a1:1f:f1:7f:12:b1:b9:e4:64:7f:67:d6:23:2a:f4:b8:
#         39:5d:98:e8:21:a7:e1:bd:3d:42:1a:74:9a:70:af:68:6c:50:
#         5d:49:cf:ff:fb:0e:5d:e6:2c:47:d7:81:3a:59:00:b5:73:6b:
#         63:20:f6:31:45:08:39:0e:f4:70:7e:40:70:5a:3f:d0:6b:42:
#         a9:74:3d:28:2f:02:6d:75:72:95:09:8d:48:63:c6:c6:23:57:
#         92:93:5e:35:c1:8d:f9:0a:f7:2c:9d:62:1c:f6:ad:7c:dd:a6:
#         31:1e:b6:b1:c7:7e:85:26:fa:a4:6a:b5:da:63:30:d1:ef:93:
#         37:b2:66:2f:7d:05:f7:e7:b7:4b:98:94:35:c0:d9:3a:29:c1:
#         9d:b2:50:33:1d:4a:a9:5a:a6:c9:03:ef:ed:f4:e7:a8:6e:8a:
#         b4:57:84:eb:a4:3f:d0:ee:aa:aa:87:5b:63:e8:93:e2:6b:a8:
#         d4:b8:72:78:6b:1b:ed:39:e4:5d:cb:9b:aa:87:d5:4f:4e:00:
#         fe:d9:6a:9f:3c:31:0f:28:02:01:7d:98:e8:a7:b0:a2:64:9e:
#         79:f8:48:f2:15:a9:cc:e6:c8:44:eb:3f:78:99:f2:7b:71:3e:
#         3c:f1:98:a7:c5:18:12:3f:e6:bb:28:33:42:e9:45:0a:7c:6d:
#         f2:86:79:2f:c5:82:19:7d:09:89:7c:b2:54:76:88:ae:de:c1:
#         f3:cc:e1:6e:db:31:d6:93:ae:99:a0:ef:25:6a:73:98:89:5b:
#         3a:2e:13:88:1e:bf:c0:92:94:34:1b:e3:27:b7:8b:1e:6f:42:
#         ff:e7:e9:37:9b:50:1d:2d:a2:f9:02:ee:cb:58:58:3a:71:bc:
#         68:e3:aa:c1:af:1c:28:1f:a2:dc:23:65:3f:81:ea:ae:99:d3:
#         d8:30:cf:13:0d:4f:15:c9:84:bc:a7:48:2d:f8:30:23:77:d8:
#         46:4b:79:6d:f6:8c:ed:3a:7f:60:11:78:f4:e9:9b:ae:d5:54:
#         c0:74:80:d1:0b:42:9f:c1

[p11-kit-object-v1]
label: "Go Daddy Class 2 CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEA3p3X6lcYSaFb69dfSIbq
vt3/5O9nHPRlaLNXcaBed7vtm0npcIA9VhhjCG/a8szQP38CVCJUENiygdTAdT1L
f8d3wz54qxoDtSBrL2orscWIfsS7HrDB2EUnb6o3WPeHJtfYLfapF7cfcjZOphc/
ZZiS2ypuXaL+iOAL3n/ljRXh68s61eISohMt2I6vXxI9oAgFCLZcpWU4BEWZHqNg
YHTFQaVyYhtixR9vXxpCvgJRZaiuIxhq/HgDqU1/gMP6q1r8oUCkyhkW/rLI715z
De53vZr2eZi8sQdnohUN3aBYxkR7Cj5iKF+6QQdTWM8Rfjh0xfj/tWmQj4R06pcb
rwIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Go Daddy Class 2 CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = "The Go Daddy Group, Inc.", OU = Go Daddy Class 2 Certification Authority
#        Validity
#            Not Before: Jun 29 17:06:20 2004 GMT
#            Not After : Jun 29 17:06:20 2034 GMT
#        Subject: C = US, O = "The Go Daddy Group, Inc.", OU = Go Daddy Class 2 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:de:9d:d7:ea:57:18:49:a1:5b:eb:d7:5f:48:86:
#                    ea:be:dd:ff:e4:ef:67:1c:f4:65:68:b3:57:71:a0:
#                    5e:77:bb:ed:9b:49:e9:70:80:3d:56:18:63:08:6f:
#                    da:f2:cc:d0:3f:7f:02:54:22:54:10:d8:b2:81:d4:
#                    c0:75:3d:4b:7f:c7:77:c3:3e:78:ab:1a:03:b5:20:
#                    6b:2f:6a:2b:b1:c5:88:7e:c4:bb:1e:b0:c1:d8:45:
#                    27:6f:aa:37:58:f7:87:26:d7:d8:2d:f6:a9:17:b7:
#                    1f:72:36:4e:a6:17:3f:65:98:92:db:2a:6e:5d:a2:
#                    fe:88:e0:0b:de:7f:e5:8d:15:e1:eb:cb:3a:d5:e2:
#                    12:a2:13:2d:d8:8e:af:5f:12:3d:a0:08:05:08:b6:
#                    5c:a5:65:38:04:45:99:1e:a3:60:60:74:c5:41:a5:
#                    72:62:1b:62:c5:1f:6f:5f:1a:42:be:02:51:65:a8:
#                    ae:23:18:6a:fc:78:03:a9:4d:7f:80:c3:fa:ab:5a:
#                    fc:a1:40:a4:ca:19:16:fe:b2:c8:ef:5e:73:0d:ee:
#                    77:bd:9a:f6:79:98:bc:b1:07:67:a2:15:0d:dd:a0:
#                    58:c6:44:7b:0a:3e:62:28:5f:ba:41:07:53:58:cf:
#                    11:7e:38:74:c5:f8:ff:b5:69:90:8f:84:74:ea:97:
#                    1b:af
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D2:C4:B0:D2:91:D4:4C:11:71:B3:61:CB:3D:A1:FE:DD:A8:6A:D4:E3
#            X509v3 Authority Key Identifier: 
#                keyid:D2:C4:B0:D2:91:D4:4C:11:71:B3:61:CB:3D:A1:FE:DD:A8:6A:D4:E3
#                DirName:/C=US/O=The Go Daddy Group, Inc./OU=Go Daddy Class 2 Certification Authority
#                serial:00
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         32:4b:f3:b2:ca:3e:91:fc:12:c6:a1:07:8c:8e:77:a0:33:06:
#         14:5c:90:1e:18:f7:08:a6:3d:0a:19:f9:87:80:11:6e:69:e4:
#         96:17:30:ff:34:91:63:72:38:ee:cc:1c:01:a3:1d:94:28:a4:
#         31:f6:7a:c4:54:d7:f6:e5:31:58:03:a2:cc:ce:62:db:94:45:
#         73:b5:bf:45:c9:24:b5:d5:82:02:ad:23:79:69:8d:b8:b6:4d:
#         ce:cf:4c:ca:33:23:e8:1c:88:aa:9d:8b:41:6e:16:c9:20:e5:
#         89:9e:cd:3b:da:70:f7:7e:99:26:20:14:54:25:ab:6e:73:85:
#         e6:9b:21:9d:0a:6c:82:0e:a8:f8:c2:0c:fa:10:1e:6c:96:ef:
#         87:0d:c4:0f:61:8b:ad:ee:83:2b:95:f8:8e:92:84:72:39:eb:
#         20:ea:83:ed:83:cd:97:6e:08:bc:eb:4e:26:b6:73:2b:e4:d3:
#         f6:4c:fe:26:71:e2:61:11:74:4a:ff:57:1a:87:0f:75:48:2e:
#         cf:51:69:17:a0:02:12:61:95:d5:d1:40:b2:10:4c:ee:c4:ac:
#         10:43:a6:a5:9e:0a:d5:95:62:9a:0d:cf:88:82:c5:32:0c:e4:
#         2b:9f:45:e6:0d:9f:28:9c:b1:b9:2a:5a:57:ad:37:0f:af:1d:
#         7f:db:bd:9f

[p11-kit-object-v1]
label: "Go Daddy Root Certificate Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv3FiCPH6WTT3G8kYo/eA
SVjpIoMTpsUgQwE7hPHmhUmfJ+r2hBtOoLTbcJjHMgGxBT4HTu70+k8vWTAi56sZ
VmvigAf88xZ1gDlRe+X5NbZ0TqmNghPktj+pA4P6or6KFWp/3gvDthkUBcrqw6gE
lDtGfDIN8wBmIsiNaW02jBEYt9OyHGC0OPoCjM7T3UYH3go+6118yHz7sCtTpJJi
aVElBWEaRIGMLKlDliPfrDqBmg4pxRyp6V0etp6eMAo5zvGIgPtLXcwy7IViQyU0
AlYnAZG0O3AqP26x6JyIAX2f1PnbU21gnb8s51iruF9G/M7EGwM8CetJMVxpRrPg
RwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Go Daddy Root Certificate Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", CN = Go Daddy Root Certificate Authority - G2
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Dec 31 23:59:59 2037 GMT
#        Subject: C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", CN = Go Daddy Root Certificate Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:71:62:08:f1:fa:59:34:f7:1b:c9:18:a3:f7:
#                    80:49:58:e9:22:83:13:a6:c5:20:43:01:3b:84:f1:
#                    e6:85:49:9f:27:ea:f6:84:1b:4e:a0:b4:db:70:98:
#                    c7:32:01:b1:05:3e:07:4e:ee:f4:fa:4f:2f:59:30:
#                    22:e7:ab:19:56:6b:e2:80:07:fc:f3:16:75:80:39:
#                    51:7b:e5:f9:35:b6:74:4e:a9:8d:82:13:e4:b6:3f:
#                    a9:03:83:fa:a2:be:8a:15:6a:7f:de:0b:c3:b6:19:
#                    14:05:ca:ea:c3:a8:04:94:3b:46:7c:32:0d:f3:00:
#                    66:22:c8:8d:69:6d:36:8c:11:18:b7:d3:b2:1c:60:
#                    b4:38:fa:02:8c:ce:d3:dd:46:07:de:0a:3e:eb:5d:
#                    7c:c8:7c:fb:b0:2b:53:a4:92:62:69:51:25:05:61:
#                    1a:44:81:8c:2c:a9:43:96:23:df:ac:3a:81:9a:0e:
#                    29:c5:1c:a9:e9:5d:1e:b6:9e:9e:30:0a:39:ce:f1:
#                    88:80:fb:4b:5d:cc:32:ec:85:62:43:25:34:02:56:
#                    27:01:91:b4:3b:70:2a:3f:6e:b1:e8:9c:88:01:7d:
#                    9f:d4:f9:db:53:6d:60:9d:bf:2c:e7:58:ab:b8:5f:
#                    46:fc:ce:c4:1b:03:3c:09:eb:49:31:5c:69:46:b3:
#                    e0:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                3A:9A:85:07:10:67:28:B6:EF:F6:BD:05:41:6E:20:C1:94:DA:0F:DE
#    Signature Algorithm: sha256WithRSAEncryption
#         99:db:5d:79:d5:f9:97:59:67:03:61:f1:7e:3b:06:31:75:2d:
#         a1:20:8e:4f:65:87:b4:f7:a6:9c:bc:d8:e9:2f:d0:db:5a:ee:
#         cf:74:8c:73:b4:38:42:da:05:7b:f8:02:75:b8:fd:a5:b1:d7:
#         ae:f6:d7:de:13:cb:53:10:7e:8a:46:d1:97:fa:b7:2e:2b:11:
#         ab:90:b0:27:80:f9:e8:9f:5a:e9:37:9f:ab:e4:df:6c:b3:85:
#         17:9d:3d:d9:24:4f:79:91:35:d6:5f:04:eb:80:83:ab:9a:02:
#         2d:b5:10:f4:d8:90:c7:04:73:40:ed:72:25:a0:a9:9f:ec:9e:
#         ab:68:12:99:57:c6:8f:12:3a:09:a4:bd:44:fd:06:15:37:c1:
#         9b:e4:32:a3:ed:38:e8:d8:64:f3:2c:7e:14:fc:02:ea:9f:cd:
#         ff:07:68:17:db:22:90:38:2d:7a:8d:d1:54:f1:69:e3:5f:33:
#         ca:7a:3d:7b:0a:e3:ca:7f:5f:39:e5:e2:75:ba:c5:76:18:33:
#         ce:2c:f0:2f:4c:ad:f7:b1:e7:ce:4f:a8:c4:9b:4a:54:06:c5:
#         7f:7d:d5:08:0f:e2:1c:fe:7e:17:b8:ac:5e:f6:d4:16:b2:43:
#         09:0c:4d:f6:a7:6b:b4:99:84:65:ca:7a:88:e2:e2:44:be:5c:
#         f7:ea:1c:f5

[p11-kit-object-v1]
label: "Government Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAtv+XPIG+AVgkJ6+OASvW
cpIwMhtfm3zU1H/ooWBzMFcQAPpQliT+UOaMOpXRV3mE1WdTDCqCPhhcuDAmGtZe
xi2yBFEO798MY0frxBIIUSuZcV7VaXvhXcl3HSDsVo7lYWAt/OkcgN/6aoO7BbUe
IxKcgsoK8xQdIOQGj0MkmZ+2CpNacxsWOb4FtvGMpWSSjwXkXHb3OcPPLb0O2Muo
DjGbyUYPZ1NDBI/IssiDgF+68g+rgTWiICGXzg+JNHgPzx9O6fuMKDzeNOftn9Jm
9cXKMXjSzlDRYIJjneBM9weugzSdSUlD1H69LeLqx3FlgAjkNp55cAo8hynp5JKU
6gaSKSd45q3XPekKC1704NaGnS1yy4tkVub0rniloDkzWDzcqI+NtGot/Yhz6ZVQ
cwTfEYg+QtYCdPssxG+8bNbggG/RhqUyVwPWTfROCpkidn5KQIL4yeROy1Mtx7G2
4tPCdSduuQ5xsjT8vxxOwj34NukKzFiaoRiGTuLhqrNzWW5enbTCCK+vXP2kAm//
uA271avXbp8aT5FA8B9GVW2gksOJzbex/xyzy6OcCuP+zaq8AezdVMqR3U8Th6T2
mO/9SdZXKjymXPZgN7/YPn5OaCojMjq+buQiPQckz4rLm11RszDScW3ORoptfEoz
RNoSLzZL8unxUQlt22qXDhcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Government Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            b6:4b:88:07:e2:23:ee:c8:5c:12:ad:a6:0e:06:a1:f2
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TW, O = Government Root Certification Authority
#        Validity
#            Not Before: Sep 28 08:58:51 2012 GMT
#            Not After : Dec 31 15:59:59 2037 GMT
#        Subject: C = TW, O = Government Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:ff:97:3c:81:be:01:58:24:27:af:8e:01:2b:
#                    d6:72:92:30:32:1b:5f:9b:7c:d4:d4:7f:e8:a1:60:
#                    73:30:57:10:00:fa:50:96:24:fe:50:e6:8c:3a:95:
#                    d1:57:79:84:d5:67:53:0c:2a:82:3e:18:5c:b8:30:
#                    26:1a:d6:5e:c6:2d:b2:04:51:0e:ef:df:0c:63:47:
#                    eb:c4:12:08:51:2b:99:71:5e:d5:69:7b:e1:5d:c9:
#                    77:1d:20:ec:56:8e:e5:61:60:2d:fc:e9:1c:80:df:
#                    fa:6a:83:bb:05:b5:1e:23:12:9c:82:ca:0a:f3:14:
#                    1d:20:e4:06:8f:43:24:99:9f:b6:0a:93:5a:73:1b:
#                    16:39:be:05:b6:f1:8c:a5:64:92:8f:05:e4:5c:76:
#                    f7:39:c3:cf:2d:bd:0e:d8:cb:a8:0e:31:9b:c9:46:
#                    0f:67:53:43:04:8f:c8:b2:c8:83:80:5f:ba:f2:0f:
#                    ab:81:35:a2:20:21:97:ce:0f:89:34:78:0f:cf:1f:
#                    4e:e9:fb:8c:28:3c:de:34:e7:ed:9f:d2:66:f5:c5:
#                    ca:31:78:d2:ce:50:d1:60:82:63:9d:e0:4c:f7:07:
#                    ae:83:34:9d:49:49:43:d4:7e:bd:2d:e2:ea:c7:71:
#                    65:80:08:e4:36:9e:79:70:0a:3c:87:29:e9:e4:92:
#                    94:ea:06:92:29:27:78:e6:ad:d7:3d:e9:0a:0b:5e:
#                    f4:e0:d6:86:9d:2d:72:cb:8b:64:56:e6:f4:ae:78:
#                    a5:a0:39:33:58:3c:dc:a8:8f:8d:b4:6a:2d:fd:88:
#                    73:e9:95:50:73:04:df:11:88:3e:42:d6:02:74:fb:
#                    2c:c4:6f:bc:6c:d6:e0:80:6f:d1:86:a5:32:57:03:
#                    d6:4d:f4:4e:0a:99:22:76:7e:4a:40:82:f8:c9:e4:
#                    4e:cb:53:2d:c7:b1:b6:e2:d3:c2:75:27:6e:b9:0e:
#                    71:b2:34:fc:bf:1c:4e:c2:3d:f8:36:e9:0a:cc:58:
#                    9a:a1:18:86:4e:e2:e1:aa:b3:73:59:6e:5e:9d:b4:
#                    c2:08:af:af:5c:fd:a4:02:6f:ff:b8:0d:bb:d5:ab:
#                    d7:6e:9f:1a:4f:91:40:f0:1f:46:55:6d:a0:92:c3:
#                    89:cd:b7:b1:ff:1c:b3:cb:a3:9c:0a:e3:fe:cd:aa:
#                    bc:01:ec:dd:54:ca:91:dd:4f:13:87:a4:f6:98:ef:
#                    fd:49:d6:57:2a:3c:a6:5c:f6:60:37:bf:d8:3e:7e:
#                    4e:68:2a:23:32:3a:be:6e:e4:22:3d:07:24:cf:8a:
#                    cb:9b:5d:51:b3:30:d2:71:6d:ce:46:8a:6d:7c:4a:
#                    33:44:da:12:2f:36:4b:f2:e9:f1:51:09:6d:db:6a:
#                    97:0e:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                D5:67:1D:E0:9C:7A:2C:9C:CB:C5:98:E7:1D:07:26:2A:86:EC:74:CD
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         90:3b:e5:c2:53:42:28:ea:f5:31:4e:8e:3d:91:9e:4d:09:f3:
#         d8:b1:52:e6:4f:ac:0c:31:21:bb:f1:ea:99:cc:83:fc:b6:28:
#         e4:ec:84:07:0e:0f:4e:97:bb:6f:68:46:8f:0e:51:15:95:f8:
#         3a:3b:1f:5f:82:0e:0c:71:0e:bc:91:4f:ae:33:2e:23:41:f4:
#         26:6b:4f:13:87:fa:78:f6:2e:c2:0f:91:05:97:aa:6a:c1:6a:
#         9f:bc:84:9e:08:2a:27:dd:da:87:17:86:e1:b3:ca:5d:ed:38:
#         a9:29:6e:84:de:46:6b:fc:27:19:50:a5:12:7a:8c:7d:62:fc:
#         da:e7:cc:bc:9f:49:af:06:b8:27:27:f2:89:f7:16:3d:18:e6:
#         bd:de:f5:8c:12:91:9f:e3:04:8d:fe:07:14:1a:5a:ac:39:82:
#         1b:f1:38:19:e1:63:e3:af:6c:b6:a6:51:17:eb:fa:4b:eb:8b:
#         22:f6:97:fe:10:3a:5f:94:a0:4b:53:71:3f:5a:e1:10:f8:72:
#         8f:96:80:dd:8d:02:98:00:61:3d:8d:bc:2d:b1:47:cc:da:5d:
#         e1:20:a7:8c:31:5c:f1:e3:da:b9:0a:86:47:c8:a1:3d:07:a3:
#         3c:a6:73:6e:94:91:ed:6e:24:3a:f9:c9:30:d1:07:a8:81:7d:
#         26:7d:7d:84:df:86:c9:8b:e5:ae:0d:1e:be:89:48:51:15:83:
#         98:96:2f:4a:eb:73:34:d7:74:cd:c9:6f:d0:c2:ba:2b:f6:9a:
#         fe:99:dd:60:14:8e:1b:f9:9c:39:3c:7f:43:89:53:e8:e5:c2:
#         ab:be:22:ad:27:38:9b:77:28:b7:a3:63:63:a7:81:e7:a9:69:
#         45:eb:8e:78:56:cc:05:84:c7:fb:ad:b6:30:7c:63:05:9f:2d:
#         8c:24:7f:4b:8b:92:fc:38:1e:9f:a0:a5:57:b3:6e:9d:d8:64:
#         b8:70:9a:60:52:70:c8:a9:d0:ff:c6:9c:ed:10:61:5e:cd:83:
#         0e:6e:e8:4d:02:41:4a:e2:76:04:79:d6:54:3f:8a:98:32:14:
#         a0:dd:2d:9c:e7:ba:82:71:a3:86:55:29:99:d2:29:db:75:3a:
#         f7:db:43:ff:b6:5b:fb:b7:7e:35:80:8e:0d:6c:ae:79:b7:36:
#         2d:97:52:a1:b0:07:9c:07:e5:2b:36:cd:03:97:94:bd:2d:0e:
#         34:06:fc:c0:16:89:fc:37:54:e4:d6:cf:3d:13:04:f2:91:d9:
#         c9:36:2e:3e:c5:5a:d0:a5:4c:82:c3:ff:2e:7c:26:76:f7:f3:
#         fd:45:a2:a5:6e:55:ae:2e:cc:cf:2c:89:34:da:f6:0d:e7:91:
#         a8:10:ea:17:9d:f2:f6:ec

[p11-kit-object-v1]
label: "HARICA Client ECC Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEBxitlZaU0FwPgvcqQPoCyck9NqajBGrB
bZUBiGASVGxcoituEzqIlQwcJoY2SokZtxjeO+ioUB/K31u/SYAV2+Mw4R1axyqK
AQf+bSw07ygol7zB+VeGlYs1z55a0WiV
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Client ECC Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:68:d9:d8:e1:62:57:1e:d2:19:44:88:e6:10:7d:f0
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client ECC Root CA 2021
#        Validity
#            Not Before: Feb 19 11:03:34 2021 GMT
#            Not After : Feb 13 11:03:33 2045 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client ECC Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:07:18:ad:95:96:94:d0:5c:0f:82:f7:2a:40:fa:
#                    02:c9:c9:3d:36:a6:a3:04:6a:c1:6d:95:01:88:60:
#                    12:54:6c:5c:a2:2b:6e:13:3a:88:95:0c:1c:26:86:
#                    36:4a:89:19:b7:18:de:3b:e8:a8:50:1f:ca:df:5b:
#                    bf:49:80:15:db:e3:30:e1:1d:5a:c7:2a:8a:01:07:
#                    fe:6d:2c:34:ef:28:28:97:bc:c1:f9:57:86:95:8b:
#                    35:cf:9e:5a:d1:68:95
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                52:08:D2:BE:32:81:25:FD:F5:1A:97:EC:4E:5F:1A:BB:53:CD:90:AD
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:4c:31:45:46:4f:a8:e6:be:c3:77:b2:1a:18:4b:
#         2d:88:7b:58:e6:ab:94:6b:44:03:b0:17:ff:df:82:73:44:51:
#         2c:fd:93:1d:06:7b:14:d2:89:ec:40:0c:ef:21:01:2e:02:30:
#         2f:c9:2e:5a:6c:2c:1d:d9:95:e0:9e:b0:b9:5c:52:7c:f6:f8:
#         38:ca:2e:f1:d4:1d:f2:a2:49:a2:95:f8:c1:58:5e:4f:fe:73:
#         0a:ef:31:b0:ab:23:58:13:8c:8b:de:3b

[p11-kit-object-v1]
label: "HARICA Client RSA Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Client RSA Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFqjCCA5KgAwIBAgIQVVL4HtsbJCyeu5YYzQIoPjANBgkqhkiG9w0BAQsFADBv
MQswCQYDVQQGEwJHUjE3MDUGA1UECgwuSGVsbGVuaWMgQWNhZGVtaWMgYW5kIFJl
c2VhcmNoIEluc3RpdHV0aW9ucyBDQTEnMCUGA1UEAwweSEFSSUNBIENsaWVudCBS
U0EgUm9vdCBDQSAyMDIxMB4XDTIxMDIxOTEwNTg0NloXDTQ1MDIxMzEwNTg0NVow
bzELMAkGA1UEBhMCR1IxNzA1BgNVBAoMLkhlbGxlbmljIEFjYWRlbWljIGFuZCBS
ZXNlYXJjaCBJbnN0aXR1dGlvbnMgQ0ExJzAlBgNVBAMMHkhBUklDQSBDbGllbnQg
UlNBIFJvb3QgQ0EgMjAyMTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB
AIHbV0KQLHQ19Pi4dBlNqwlad0WBc2KwNZ/40LczAIcTtparDlQSMAe8m7dI19EZ
g66O2KnxqQCEsIxenugMj1Rpv/bUCE8mcP4YQWMaszKLQPgHq1cx8MYWdmeatN0v
8tFrxdCShJFxbg8uY+kfU6TdUhPMCYMpgQzFU3VEsQ5nUxjQwx+IS5+UJLQpvLvo
Tv1v0hUdSdyNcPIRGiBRVRG6iG/E91B51qox4oQ9XjLIdypQceULL+m26u+rCjM5
Dv2PpWdDgo6YaQkJG0DNOGdH6snsl3ES3iT1cjzR90NMJveQsonpRUtVPTEFekHi
lbpDwBfFtoU9GY1kcPNbrM2f0yl1h0uVZ2qm+NHdvJCGiUMpqTdb9V2wJlpTQnaQ
K8+eVmwrVM9cmmXfW4tIYDh8+8ULz3YEYwIzKn31g2fn+sZD/SsP1CYvd6QywSTq
ZJ2/szhxMUTyR7iiZkGh+5t7vMdGanW/WqKM6GpEwbiWtcAyCC17dDVzssrG/q8R
chj258jCz6Uq6nvWWeh8oLJqQAlpDqWW29EAufGIbjbwiLKd8VLyw3y/MIk8Cmn5
IqRl4ZvgdMaxhZeWLK6Uj1CmORIfvkfygXjTdTaefVogl+JSrpmfxnybZvP+2M/u
vZcGHS2F3D42U5Z7ILroyOGtlmI+EXyzAISep0xxq0o3AgMBAAGjQjBAMA8GA1Ud
EwEB/wQFMAMBAf8wHQYDVR0OBBYEFKDWBz1eJPd7oEQuJFINGaorBJGnMA4GA1Ud
DwEB/wQEAwIBhjANBgkqhkiG9w0BAQsFAAOCAgEADUf5CWYxUux57sKo8mg+7ZZF
yzqmmGM/6itNTgPQHILhy9Pl1qtbZyi8nf4MmQqAVafOGyNhDbBX8P7gyr7mkNuD
LL6DjvR5tv7QDUKnWB9p6oH1BaX+RmjrbHjJ4Orn5t4xxdLVLIJjKJ1dqBp+iObn
K/Es1dAFntwtvTdm1ASip62/OsKoO63/jZ0z4LmahKGHH3b0gnTXDvkwSD5biD6q
XGvWLwzojnPCGJGDObZmWtAfYCddTeP2Og1mUJx4e6vzExCuDy+r6GSzGCCdRjVk
JXPqmxBcWDWJsUZIp/Ss1B2eW8yppRoTTyRQqtkbbbFA+53dWHTEwm8UcuzbNZ+4
VHVFw6bIGig1Oq5l8qmYzq9byTiMMTt/zNyW/eJb1tBZ9Ha6C8tPgxDHQNAdYOkq
5UhYdwxFab4ZcQQk4uMkH0rIwT6Z9ZaYOEgloRWwG9fihBhb9nE1mmh7QMwYXAwk
ndSV9ZmqRuqurL/0FBkk6Izs4/W8BmiKKgwFXwqXdafcfsD913oY3zDROEsfsJhw
v8x8c/BuxDGlpJcdrL/ObCFKvicjZ/MGVoEKkY624QMFMyzaNAhNTlAjrR+lxdR6
/uoJ7KcoYItGfLXqm91P+edrFcaIz0Pb5SfcBFZub0YV8VYt6FwMc8MjgTggy8kM
ac8sqzuEYDMZUv1pFDM=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            55:52:f8:1e:db:1b:24:2c:9e:bb:96:18:cd:02:28:3e
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client RSA Root CA 2021
#        Validity
#            Not Before: Feb 19 10:58:46 2021 GMT
#            Not After : Feb 13 10:58:45 2045 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Client RSA Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:81:db:57:42:90:2c:74:35:f4:f8:b8:74:19:4d:
#                    ab:09:5a:77:45:81:73:62:b0:35:9f:f8:d0:b7:33:
#                    00:87:13:b6:96:ab:0e:54:12:30:07:bc:9b:b7:48:
#                    d7:d1:19:83:ae:8e:d8:a9:f1:a9:00:84:b0:8c:5e:
#                    9e:e8:0c:8f:54:69:bf:f6:d4:08:4f:26:70:fe:18:
#                    41:63:1a:b3:32:8b:40:f8:07:ab:57:31:f0:c6:16:
#                    76:67:9a:b4:dd:2f:f2:d1:6b:c5:d0:92:84:91:71:
#                    6e:0f:2e:63:e9:1f:53:a4:dd:52:13:cc:09:83:29:
#                    81:0c:c5:53:75:44:b1:0e:67:53:18:d0:c3:1f:88:
#                    4b:9f:94:24:b4:29:bc:bb:e8:4e:fd:6f:d2:15:1d:
#                    49:dc:8d:70:f2:11:1a:20:51:55:11:ba:88:6f:c4:
#                    f7:50:79:d6:aa:31:e2:84:3d:5e:32:c8:77:2a:50:
#                    71:e5:0b:2f:e9:b6:ea:ef:ab:0a:33:39:0e:fd:8f:
#                    a5:67:43:82:8e:98:69:09:09:1b:40:cd:38:67:47:
#                    ea:c9:ec:97:71:12:de:24:f5:72:3c:d1:f7:43:4c:
#                    26:f7:90:b2:89:e9:45:4b:55:3d:31:05:7a:41:e2:
#                    95:ba:43:c0:17:c5:b6:85:3d:19:8d:64:70:f3:5b:
#                    ac:cd:9f:d3:29:75:87:4b:95:67:6a:a6:f8:d1:dd:
#                    bc:90:86:89:43:29:a9:37:5b:f5:5d:b0:26:5a:53:
#                    42:76:90:2b:cf:9e:56:6c:2b:54:cf:5c:9a:65:df:
#                    5b:8b:48:60:38:7c:fb:c5:0b:cf:76:04:63:02:33:
#                    2a:7d:f5:83:67:e7:fa:c6:43:fd:2b:0f:d4:26:2f:
#                    77:a4:32:c1:24:ea:64:9d:bf:b3:38:71:31:44:f2:
#                    47:b8:a2:66:41:a1:fb:9b:7b:bc:c7:46:6a:75:bf:
#                    5a:a2:8c:e8:6a:44:c1:b8:96:b5:c0:32:08:2d:7b:
#                    74:35:73:b2:ca:c6:fe:af:11:72:18:f6:e7:c8:c2:
#                    cf:a5:2a:ea:7b:d6:59:e8:7c:a0:b2:6a:40:09:69:
#                    0e:a5:96:db:d1:00:b9:f1:88:6e:36:f0:88:b2:9d:
#                    f1:52:f2:c3:7c:bf:30:89:3c:0a:69:f9:22:a4:65:
#                    e1:9b:e0:74:c6:b1:85:97:96:2c:ae:94:8f:50:a6:
#                    39:12:1f:be:47:f2:81:78:d3:75:36:9e:7d:5a:20:
#                    97:e2:52:ae:99:9f:c6:7c:9b:66:f3:fe:d8:cf:ee:
#                    bd:97:06:1d:2d:85:dc:3e:36:53:96:7b:20:ba:e8:
#                    c8:e1:ad:96:62:3e:11:7c:b3:00:84:9e:a7:4c:71:
#                    ab:4a:37
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A0:D6:07:3D:5E:24:F7:7B:A0:44:2E:24:52:0D:19:AA:2B:04:91:A7
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         0d:47:f9:09:66:31:52:ec:79:ee:c2:a8:f2:68:3e:ed:96:45:
#         cb:3a:a6:98:63:3f:ea:2b:4d:4e:03:d0:1c:82:e1:cb:d3:e5:
#         d6:ab:5b:67:28:bc:9d:fe:0c:99:0a:80:55:a7:ce:1b:23:61:
#         0d:b0:57:f0:fe:e0:ca:be:e6:90:db:83:2c:be:83:8e:f4:79:
#         b6:fe:d0:0d:42:a7:58:1f:69:ea:81:f5:05:a5:fe:46:68:eb:
#         6c:78:c9:e0:ea:e7:e6:de:31:c5:d2:d5:2c:82:63:28:9d:5d:
#         a8:1a:7e:88:e6:e7:2b:f1:2c:d5:d0:05:9e:dc:2d:bd:37:66:
#         d4:04:a2:a7:ad:bf:3a:c2:a8:3b:ad:ff:8d:9d:33:e0:b9:9a:
#         84:a1:87:1f:76:f4:82:74:d7:0e:f9:30:48:3e:5b:88:3e:aa:
#         5c:6b:d6:2f:0c:e8:8e:73:c2:18:91:83:39:b6:66:5a:d0:1f:
#         60:27:5d:4d:e3:f6:3a:0d:66:50:9c:78:7b:ab:f3:13:10:ae:
#         0f:2f:ab:e8:64:b3:18:20:9d:46:35:64:25:73:ea:9b:10:5c:
#         58:35:89:b1:46:48:a7:f4:ac:d4:1d:9e:5b:cc:a9:a5:1a:13:
#         4f:24:50:aa:d9:1b:6d:b1:40:fb:9d:dd:58:74:c4:c2:6f:14:
#         72:ec:db:35:9f:b8:54:75:45:c3:a6:c8:1a:28:35:3a:ae:65:
#         f2:a9:98:ce:af:5b:c9:38:8c:31:3b:7f:cc:dc:96:fd:e2:5b:
#         d6:d0:59:f4:76:ba:0b:cb:4f:83:10:c7:40:d0:1d:60:e9:2a:
#         e5:48:58:77:0c:45:69:be:19:71:04:24:e2:e3:24:1f:4a:c8:
#         c1:3e:99:f5:96:98:38:48:25:a1:15:b0:1b:d7:e2:84:18:5b:
#         f6:71:35:9a:68:7b:40:cc:18:5c:0c:24:9d:d4:95:f5:99:aa:
#         46:ea:ae:ac:bf:f4:14:19:24:e8:8c:ec:e3:f5:bc:06:68:8a:
#         2a:0c:05:5f:0a:97:75:a7:dc:7e:c0:fd:d7:7a:18:df:30:d1:
#         38:4b:1f:b0:98:70:bf:cc:7c:73:f0:6e:c4:31:a5:a4:97:1d:
#         ac:bf:ce:6c:21:4a:be:27:23:67:f3:06:56:81:0a:91:8e:b6:
#         e1:03:05:33:2c:da:34:08:4d:4e:50:23:ad:1f:a5:c5:d4:7a:
#         fe:ea:09:ec:a7:28:60:8b:46:7c:b5:ea:9b:dd:4f:f9:e7:6b:
#         15:c6:88:cf:43:db:e5:27:dc:04:56:6e:6f:46:15:f1:56:2d:
#         e8:5c:0c:73:c3:23:81:38:20:cb:c9:0c:69:cf:2c:ab:3b:84:
#         60:33:19:52:fd:69:14:33

[p11-kit-object-v1]
label: "HARICA Code Signing ECC Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEQ5+8XEJqQ+GsS7gOX4AG4wV3i38Leddh
oJC/8lMoo1i6lMBmahxZ2oBYgQBMvMl5mBAMxx0L45PchTlo2b+nQ9IxzIKCJ7qI
0dItVjf3OtpuOdxxEGXuOAuHegO6MF9k
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Code Signing ECC Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:8a:63:1d:a9:63:8f:05:a2:fb:76:14:ff:5b:a2:cd
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Code Signing ECC Root CA 2021
#        Validity
#            Not Before: Feb 19 11:04:36 2021 GMT
#            Not After : Feb 13 11:04:35 2045 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Code Signing ECC Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:43:9f:bc:5c:42:6a:43:e1:ac:4b:b8:0e:5f:80:
#                    06:e3:05:77:8b:7f:0b:79:d7:61:a0:90:bf:f2:53:
#                    28:a3:58:ba:94:c0:66:6a:1c:59:da:80:58:81:00:
#                    4c:bc:c9:79:98:10:0c:c7:1d:0b:e3:93:dc:85:39:
#                    68:d9:bf:a7:43:d2:31:cc:82:82:27:ba:88:d1:d2:
#                    2d:56:37:f7:3a:da:6e:39:dc:71:10:65:ee:38:0b:
#                    87:7a:03:ba:30:5f:64
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:71:C1:73:6A:93:42:A6:97:72:5E:BB:90:5F:82:92:0F:2B:D6:EB
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:1e:a5:d5:0b:44:95:10:e4:67:7c:4e:85:5e:b9:
#         45:49:02:73:b0:b2:1c:b3:a7:22:d1:00:61:40:0f:b3:87:37:
#         16:8d:00:ed:b6:8b:55:25:06:94:90:dc:d7:e7:75:9f:02:30:
#         7f:74:6b:f1:4a:df:f0:f7:84:7b:f2:c5:79:30:03:48:f2:1e:
#         20:22:57:64:54:57:34:80:77:b7:3f:23:4f:b4:f5:80:98:c2:
#         c1:56:5b:a0:e7:d6:a1:8f:f5:0c:6f:1d

[p11-kit-object-v1]
label: "HARICA Code Signing RSA Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Code Signing RSA Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:c2:ae:2a:4d:99:9a:63:8c:d3:ba:13:19:76:08:f5
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Code Signing RSA Root CA 2021
#        Validity
#            Not Before: Feb 19 10:59:54 2021 GMT
#            Not After : Feb 13 10:59:53 2045 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA Code Signing RSA Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:8a:6a:ee:aa:0a:23:55:0c:8b:06:42:e3:95:5b:
#                    54:78:5f:c5:8e:06:2c:7c:3c:31:be:af:0d:a9:a1:
#                    ec:4a:20:58:05:9d:e2:68:b2:bb:eb:5f:7f:2a:33:
#                    b9:f2:55:9c:6f:aa:a4:1e:ed:10:be:83:29:11:36:
#                    e6:9e:3f:fa:6d:7b:51:e1:d5:77:a5:bd:cb:69:0e:
#                    3b:22:20:94:0c:31:65:40:0d:09:af:10:35:7a:9b:
#                    ea:79:08:44:a4:8b:67:a9:2b:4d:c1:e7:d0:d7:a7:
#                    f6:b5:3a:8d:d9:a3:a9:79:b8:a4:65:5c:bc:f3:3e:
#                    f7:9f:99:f6:b8:c3:65:68:2d:ab:83:2e:dd:85:99:
#                    04:a9:f5:d1:5c:d5:51:42:01:b9:9f:41:b5:4b:22:
#                    b2:00:f4:cb:67:10:ef:69:c4:10:ad:fa:94:06:76:
#                    50:12:57:82:ae:c5:14:ad:3c:7d:bb:9d:f1:73:e1:
#                    7c:f0:ae:71:de:5b:f7:12:dd:f7:80:f1:dc:3e:f1:
#                    60:ba:c9:19:97:6f:75:74:85:4c:fd:39:43:c3:64:
#                    6e:34:ac:13:c1:1c:65:b6:52:42:f1:46:eb:2f:fa:
#                    5d:a6:cf:0e:49:9d:f7:74:7c:78:0d:06:3a:2c:12:
#                    fb:e2:4b:26:e4:6f:8b:21:81:33:42:39:13:e8:42:
#                    ab:5b:55:d4:1b:bb:37:b6:12:91:f7:f3:7d:bc:d2:
#                    ff:ec:b1:c3:d5:a0:cc:b2:2b:c7:8f:5d:7e:4c:52:
#                    42:48:fb:8f:fd:5a:90:73:10:d5:a9:72:54:8d:49:
#                    db:38:52:aa:46:48:0e:2f:fa:00:2c:cc:73:0c:36:
#                    4b:24:ce:13:6c:a6:a4:a4:a3:d6:7c:9b:e9:38:0b:
#                    c6:24:db:4d:ac:67:21:49:5b:41:37:64:e6:60:6b:
#                    1f:ed:2a:2f:60:19:30:1e:d8:3c:9c:19:43:87:df:
#                    c0:0a:f4:e4:ca:60:88:7a:d6:a3:b9:e4:25:2e:79:
#                    e2:fe:c1:cb:3c:b7:f7:cf:4e:58:4c:fb:c3:ad:ab:
#                    7d:aa:ca:88:fb:0e:38:0d:1f:9e:5c:39:eb:b8:07:
#                    c4:50:22:4d:f8:85:7f:6e:ec:8c:fa:b6:71:4d:de:
#                    7d:96:69:c4:dd:3e:1e:de:26:90:0a:2c:4d:15:95:
#                    a9:a2:3e:dc:3d:0e:77:7c:8d:41:28:4f:b8:83:51:
#                    be:3e:b7:8f:90:3a:70:31:89:5a:fa:93:53:fc:60:
#                    c9:8d:75:90:ee:5a:2f:1d:84:9f:00:a9:e6:c3:86:
#                    23:a2:1e:dd:12:e3:a1:46:60:1b:67:bf:50:15:22:
#                    92:7c:4a:b4:8c:8f:6e:9c:95:c2:2c:dc:3b:3a:20:
#                    b6:bc:8b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B4:64:16:48:E8:FC:5A:4B:33:29:89:EB:99:40:B9:20:B4:F6:61:1A
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         2b:ac:59:8b:e6:39:44:dc:fb:ad:4a:88:e0:64:ff:ab:c3:f2:
#         d2:ce:70:2f:03:e5:6f:b2:c4:f5:36:d6:53:6b:87:ab:1d:8b:
#         99:07:c8:30:8e:47:72:fd:a1:b8:75:d6:17:a1:16:bd:64:73:
#         91:30:57:ad:7d:fd:05:40:86:93:d1:49:96:b2:0b:d4:7c:64:
#         13:8b:d3:21:49:38:bb:fb:e8:cc:3e:31:f1:ae:7b:4c:2a:df:
#         82:06:a3:8e:05:84:9c:7f:70:ce:c0:bb:45:17:df:5d:65:0c:
#         e4:50:48:07:44:8b:a4:2f:56:da:c6:7a:f6:60:8d:a4:38:f1:
#         9d:87:16:30:b2:f0:5f:7a:42:55:20:71:cf:cc:ee:00:b1:12:
#         47:bf:42:b9:e4:b3:b5:1d:19:84:b9:98:6d:e0:69:b4:15:41:
#         b5:e2:50:48:c7:1f:ea:9a:b7:79:91:dd:d5:d5:53:19:fc:ae:
#         18:6c:69:db:ad:59:28:9b:64:98:a7:3c:c7:55:8e:d1:30:00:
#         cf:d4:32:9e:62:b1:c3:2a:ee:35:22:c6:bb:f0:7c:bb:83:b8:
#         00:89:f5:dc:1a:97:d9:38:9a:29:53:61:19:a6:a7:f4:3b:47:
#         fd:dd:67:95:0f:8e:a4:66:2c:82:9a:b7:2d:71:e6:df:ae:f8:
#         f8:68:c1:bb:0f:ea:50:a0:45:97:b7:1a:95:12:6f:c8:b3:b6:
#         05:68:da:6a:1e:0e:35:85:84:ac:74:0c:8a:b4:f4:75:9f:22:
#         af:b0:54:bb:b6:9e:22:f9:d9:eb:d5:8a:0d:c7:dc:f8:98:31:
#         5f:9e:fa:c6:97:f4:41:10:75:d3:81:b6:31:5f:7a:dd:88:85:
#         08:af:70:47:02:37:7b:e2:4a:ec:5d:f2:dd:29:12:44:c8:8a:
#         aa:dd:d2:55:78:17:75:af:71:69:0d:77:70:4a:b0:1f:7f:42:
#         db:c7:71:dc:58:d6:18:bd:50:c5:b9:72:04:c7:67:7b:7c:53:
#         60:ca:49:18:15:bc:40:73:ae:2b:a8:2b:ac:6f:11:44:39:ec:
#         82:48:7e:11:ca:fb:d6:3f:b6:c0:b9:b8:06:93:75:bd:93:27:
#         77:17:0d:5c:a5:9e:ea:c1:5b:00:2d:0c:a8:35:60:c7:e2:6f:
#         35:1b:3d:76:b5:e7:ad:dd:74:23:4f:86:b2:47:ef:c8:2f:d0:
#         85:7c:39:96:37:a1:2b:29:02:bd:3e:87:cf:a8:f6:1d:75:32:
#         cf:38:e3:73:b1:ee:10:81:b5:2a:b1:88:06:51:1e:5a:3a:48:
#         51:f3:36:59:62:df:42:66:59:50:b7:58:be:f5:76:40:9a:12:
#         16:e6:0e:aa:d7:6c:a0:d5

[p11-kit-object-v1]
label: "HARICA TLS ECC Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEOAj+saCW0nqsr0k60MDgwzsoqvFybWUA
R4iE/Joma6pLumwECoheF/JVh/wwsDTiNFhXGoRT6TDZqfKWdMNRH1hJMcyYTmAR
h3XTcpSQT5sQJSqoeC2+kEFYkBVyp6G3
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA TLS ECC Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            67:74:9d:8d:77:d8:3b:6a:db:22:f4:ff:59:e2:bf:ce
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA TLS ECC Root CA 2021
#        Validity
#            Not Before: Feb 19 11:01:10 2021 GMT
#            Not After : Feb 13 11:01:09 2045 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA TLS ECC Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:38:08:fe:b1:a0:96:d2:7a:ac:af:49:3a:d0:c0:
#                    e0:c3:3b:28:aa:f1:72:6d:65:00:47:88:84:fc:9a:
#                    26:6b:aa:4b:ba:6c:04:0a:88:5e:17:f2:55:87:fc:
#                    30:b0:34:e2:34:58:57:1a:84:53:e9:30:d9:a9:f2:
#                    96:74:c3:51:1f:58:49:31:cc:98:4e:60:11:87:75:
#                    d3:72:94:90:4f:9b:10:25:2a:a8:78:2d:be:90:41:
#                    58:90:15:72:a7:a1:b7
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C9:1B:53:81:12:FE:04:D5:16:D1:AA:BC:9A:6F:B7:A0:95:19:6E:CA
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:11:de:ae:f8:dc:4e:88:b0:a9:f0:22:ad:c2:51:
#         40:ef:60:71:2d:ee:8f:02:c4:5d:03:70:49:a4:92:ea:c5:14:
#         88:70:a6:d3:0d:b0:aa:ca:2c:40:9c:fb:e9:82:6e:9a:02:30:
#         2b:47:9a:07:c6:d1:c2:81:7c:ca:0b:96:18:41:1b:a3:f4:30:
#         09:9e:b5:23:28:0d:9f:14:b6:3c:53:a2:4c:06:69:7d:fa:6c:
#         91:c6:2a:49:45:e6:ec:b7:13:e1:3a:6c

[p11-kit-object-v1]
label: "HARICA TLS RSA Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA TLS RSA Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            39:ca:93:1c:ef:43:f3:c6:8e:93:c7:f4:64:89:38:7e
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA TLS RSA Root CA 2021
#        Validity
#            Not Before: Feb 19 10:55:38 2021 GMT
#            Not After : Feb 13 10:55:37 2045 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions CA, CN = HARICA TLS RSA Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:8b:c2:e7:af:65:9b:05:67:96:c9:0d:24:b9:d0:
#                    0e:64:fc:ce:e2:24:18:2c:84:7f:77:51:cb:04:11:
#                    36:b8:5e:ed:69:71:a7:9e:e4:25:09:97:67:c1:47:
#                    c2:cf:91:16:36:62:3d:38:04:e1:51:82:ff:ac:d2:
#                    b4:69:dd:2e:ec:11:a3:45:ee:6b:6b:3b:4c:bf:8c:
#                    8d:a4:1e:9d:11:b9:e9:38:f9:7a:0e:0c:98:e2:23:
#                    1d:d1:4e:63:d4:e7:b8:41:44:fb:6b:af:6b:da:1f:
#                    d3:c5:91:88:5b:a4:89:92:d1:81:e6:8c:39:58:a0:
#                    d6:69:43:a9:ad:98:52:58:6e:db:0a:fb:6b:cf:68:
#                    fa:e3:a4:5e:3a:45:73:98:07:ea:5f:02:72:de:0c:
#                    a5:b3:9f:ae:a9:1d:b7:1d:b3:fc:8a:59:e7:6e:72:
#                    65:ad:f5:30:94:23:07:f3:82:16:4b:35:98:9c:53:
#                    bb:2f:ca:e4:5a:d9:c7:8d:1d:fc:98:99:fb:2c:a4:
#                    82:6b:f0:2a:1f:8e:0b:5f:71:5c:5c:ae:42:7b:29:
#                    89:81:cb:03:a3:99:ca:88:9e:0b:40:09:41:33:db:
#                    e6:58:7a:fd:ae:99:70:c0:5a:0f:d6:13:86:71:2f:
#                    76:69:fc:90:dd:db:2d:6e:d1:f2:9b:f5:1a:6b:9e:
#                    6f:15:8c:7a:f0:4b:28:a0:22:38:80:24:6c:36:a4:
#                    3b:f2:30:91:f3:78:13:cf:c1:3f:35:ab:f1:1d:11:
#                    23:b5:43:22:9e:01:92:b7:18:02:e5:11:d1:82:db:
#                    15:00:cc:61:37:c1:2a:7c:9a:e1:d0:ba:b3:50:46:
#                    ee:82:ac:9d:31:f8:fb:23:e2:03:00:48:70:a3:09:
#                    26:79:15:53:60:f3:38:5c:ad:38:ea:81:00:63:14:
#                    b9:33:5e:dd:0b:db:a0:45:07:1a:33:09:f8:4d:b4:
#                    a7:02:a6:69:f4:c2:59:05:88:65:85:56:ae:4b:cb:
#                    e0:de:3c:7d:2d:1a:c8:e9:fb:1f:a3:61:4a:d6:2a:
#                    13:ad:77:4c:1a:18:9b:91:0f:58:d8:06:54:c5:97:
#                    f8:aa:3f:20:8a:a6:85:a6:77:f6:a6:fc:1c:e2:ee:
#                    6e:94:33:2a:83:50:84:0a:e5:4f:86:f8:50:45:78:
#                    00:81:eb:5b:68:e3:26:8d:cc:7b:5c:51:f4:14:2c:
#                    40:be:1a:60:1d:7a:72:61:1d:1f:63:2d:88:aa:ce:
#                    a2:45:90:08:fc:6b:be:b3:50:2a:5a:fd:a8:48:18:
#                    46:d6:90:40:92:90:0a:84:5e:68:31:f8:eb:ed:0d:
#                    d3:1d:c6:7d:99:18:55:56:27:65:2e:8d:45:c5:24:
#                    ec:ce:e3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                0A:48:23:A6:60:A4:92:0A:33:EA:93:5B:C5:57:EA:25:4D:BD:12:EE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         3e:90:48:aa:6e:62:15:25:66:7b:0c:d5:8c:8b:89:9d:d7:ed:
#         4e:07:ef:9c:d0:14:5f:5e:50:bd:68:96:90:a4:14:11:aa:68:
#         6d:09:35:39:40:09:da:f4:09:2c:34:a5:7b:59:84:49:29:97:
#         74:c8:07:1e:47:6d:f2:ce:1c:50:26:e3:9e:3d:40:53:3f:f7:
#         7f:96:76:10:c5:46:a5:d0:20:4b:50:f4:35:3b:18:f4:55:6a:
#         41:1b:47:06:68:3c:bb:09:08:62:d9:5f:55:42:aa:ac:53:85:
#         ac:95:56:36:56:ab:e4:05:8c:c5:a8:da:1f:a3:69:bd:53:0f:
#         c4:ff:dc:ca:e3:7e:f2:4c:88:86:47:46:1a:f3:00:f5:80:91:
#         a2:dc:43:42:94:9b:20:f0:d1:cd:b2:eb:2c:53:c2:53:78:4a:
#         4f:04:94:41:9a:8f:27:32:c1:e5:49:19:bf:f1:f2:c2:8b:a8:
#         0a:39:31:28:b4:7d:62:36:2c:4d:ec:1f:33:b6:7e:77:6d:7e:
#         50:f0:9f:0e:d7:11:8f:cf:18:c5:e3:27:fe:26:ef:05:9d:cf:
#         cf:37:c5:d0:7b:da:3b:b0:16:84:0c:3a:93:d6:be:17:db:0f:
#         3e:0e:19:78:09:c7:a9:02:72:22:4b:f7:37:76:ba:75:c4:85:
#         03:5a:63:d5:b1:75:05:c2:b9:bd:94:ad:8c:15:99:a7:93:7d:
#         f6:c5:f3:aa:74:cf:04:85:94:98:00:f4:e2:f9:ca:24:65:bf:
#         e0:62:af:c8:c5:fa:b2:c9:9e:56:48:da:79:fd:96:76:15:be:
#         a3:8e:56:c4:b3:34:fc:be:47:f4:c1:b4:a8:fc:d5:30:88:68:
#         ee:cb:ae:c9:63:c4:76:be:ac:38:18:e1:5e:5c:cf:ae:3a:22:
#         51:eb:d1:8b:b3:f3:2b:33:07:54:87:fa:b4:b2:13:7b:ba:53:
#         04:62:01:9d:f1:c0:4f:ee:e1:3a:d4:8b:20:10:fa:02:57:e6:
#         ef:c1:0b:b7:90:46:9c:19:29:8c:dc:6f:a0:4a:69:69:94:b7:
#         24:65:a0:ff:ac:3f:ce:01:fb:21:2e:fd:68:f8:9b:f2:a5:cf:
#         31:38:5c:15:aa:e6:97:00:c1:df:5a:a5:a7:39:aa:e9:84:7f:
#         3c:51:a8:3a:d9:94:5b:8c:bf:4f:08:71:e5:db:a8:5c:d4:d2:
#         a6:fe:00:a3:c6:16:c7:0f:e8:80:ce:1c:28:64:74:19:08:d3:
#         42:e3:ce:00:5d:7f:b1:dc:13:b0:e1:05:cb:d1:20:aa:86:74:
#         9e:39:e7:91:fd:ff:5b:d6:f7:ad:a6:2f:03:0b:6d:e3:57:54:
#         eb:76:53:18:8d:11:98:ba

[p11-kit-object-v1]
label: "Halcom CA FO"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvKMmAZblnawaAgI5fKzc
Bkw3Sq4HSHXoJxykMf0KpyNdfD8O+vCMkW9VNIQDdMwDNXjNccFHG7vqIW64B94h
kqqsud43oh/0mhwbyO4Qg9ZTQ8jd6fOQRjlyCk78EilJgVgmOnETDHtTj99mcjwX
3N7heUqf6WA+bTXkTVHRHMAaMFwGP3NDyM029B7Ch4xPSJ/adVcqTK+NVDxEX5g8
UNrQGAZ8YG7ShP9nhZA9Xsbr2HqjtW0MvnW4qdpWcTZa7utJUz7iGXZ8QquhkPH3
L7i6SkG0K6QuYTbn1tp/9Z+NuEtbhDVQxb0FqqrCDHRBY1cZjv/hRuZ7BST+md0x
vQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Halcom CA FO"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDGjCCAgKgAwIBAgIDAbplMA0GCSqGSIb3DQEBBQUAMDUxCzAJBgNVBAYTAlNJ
MQ8wDQYDVQQKEwZIYWxjb20xFTATBgNVBAMTDEhhbGNvbSBDQSBGTzAeFw0wNTA2
MDUxMDMzMzFaFw0yMDA2MDUxMDMzMzFaMDUxCzAJBgNVBAYTAlNJMQ8wDQYDVQQK
EwZIYWxjb20xFTATBgNVBAMTDEhhbGNvbSBDQSBGTzCCASIwDQYJKoZIhvcNAQEB
BQADggEPADCCAQoCggEBALyjJgGW5Z2sGgICOXys3AZMN0quB0h16CccpDH9Cqcj
XXw/DvrwjJFvVTSEA3TMAzV4zXHBRxu76iFuuAfeIZKqrLneN6If9JocG8juEIPW
U0PI3enzkEY5cgpO/BIpSYFYJjpxEwx7U4/fZnI8F9ze4XlKn+lgPm015E1R0RzA
GjBcBj9zQ8jNNvQewoeMT0if2nVXKkyvjVQ8RF+YPFDa0BgGfGBu0oT/Z4WQPV7G
69h6o7VtDL51uKnaVnE2Wu7rSVM+4hl2fEKroZDx9y+4ukpBtCukLmE259baf/Wf
jbhLW4Q1UMW9Baqqwgx0QWNXGY7/4UbmewUk/pndMb0CAwEAAaMzMDEwDwYDVR0T
AQH/BAUwAwEB/zARBgNVHQ4ECgQISCAcYg1YUiUwCwYDVR0PBAQDAgEGMA0GCSqG
SIb3DQEBBQUAA4IBAQBbdfXmMEZYivcP0U8LAVgEuWTkMA0+dtlrE60cbslM8Gzm
QhH964PvUNi7VJ20kYpatYQPjEbNPIKopR4gnND1QQbKASuYsOopUB/idHtZgsoK
5W5OrrA37T7MujLZPwtoLLLTPNw4xRHWGzPuuaJqRJMbUOphG3lXUVaeMtAzeLTP
Ryr7983x523gumT7FZu+yrHyRwF/4Ey3pUGsHtkabJHh0KhKw154K3qAwE/NJV9Q
J8a8WHWcHbWaXZVz84Rm081tHc3gWs4gOO+Sc3heAtaN+XTUt4nYjPt71Ytx1RkX
JtgkSTxVvIKH2mO7OdeOkc80cFxzT9BQR1r75VpR
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 113253 (0x1ba65)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SI, O = Halcom, CN = Halcom CA FO
#        Validity
#            Not Before: Jun  5 10:33:31 2005 GMT
#            Not After : Jun  5 10:33:31 2020 GMT
#        Subject: C = SI, O = Halcom, CN = Halcom CA FO
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bc:a3:26:01:96:e5:9d:ac:1a:02:02:39:7c:ac:
#                    dc:06:4c:37:4a:ae:07:48:75:e8:27:1c:a4:31:fd:
#                    0a:a7:23:5d:7c:3f:0e:fa:f0:8c:91:6f:55:34:84:
#                    03:74:cc:03:35:78:cd:71:c1:47:1b:bb:ea:21:6e:
#                    b8:07:de:21:92:aa:ac:b9:de:37:a2:1f:f4:9a:1c:
#                    1b:c8:ee:10:83:d6:53:43:c8:dd:e9:f3:90:46:39:
#                    72:0a:4e:fc:12:29:49:81:58:26:3a:71:13:0c:7b:
#                    53:8f:df:66:72:3c:17:dc:de:e1:79:4a:9f:e9:60:
#                    3e:6d:35:e4:4d:51:d1:1c:c0:1a:30:5c:06:3f:73:
#                    43:c8:cd:36:f4:1e:c2:87:8c:4f:48:9f:da:75:57:
#                    2a:4c:af:8d:54:3c:44:5f:98:3c:50:da:d0:18:06:
#                    7c:60:6e:d2:84:ff:67:85:90:3d:5e:c6:eb:d8:7a:
#                    a3:b5:6d:0c:be:75:b8:a9:da:56:71:36:5a:ee:eb:
#                    49:53:3e:e2:19:76:7c:42:ab:a1:90:f1:f7:2f:b8:
#                    ba:4a:41:b4:2b:a4:2e:61:36:e7:d6:da:7f:f5:9f:
#                    8d:b8:4b:5b:84:35:50:c5:bd:05:aa:aa:c2:0c:74:
#                    41:63:57:19:8e:ff:e1:46:e6:7b:05:24:fe:99:dd:
#                    31:bd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                48:20:1C:62:0D:58:52:25
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         5b:75:f5:e6:30:46:58:8a:f7:0f:d1:4f:0b:01:58:04:b9:64:
#         e4:30:0d:3e:76:d9:6b:13:ad:1c:6e:c9:4c:f0:6c:e6:42:11:
#         fd:eb:83:ef:50:d8:bb:54:9d:b4:91:8a:5a:b5:84:0f:8c:46:
#         cd:3c:82:a8:a5:1e:20:9c:d0:f5:41:06:ca:01:2b:98:b0:ea:
#         29:50:1f:e2:74:7b:59:82:ca:0a:e5:6e:4e:ae:b0:37:ed:3e:
#         cc:ba:32:d9:3f:0b:68:2c:b2:d3:3c:dc:38:c5:11:d6:1b:33:
#         ee:b9:a2:6a:44:93:1b:50:ea:61:1b:79:57:51:56:9e:32:d0:
#         33:78:b4:cf:47:2a:fb:f7:cd:f1:e7:6d:e0:ba:64:fb:15:9b:
#         be:ca:b1:f2:47:01:7f:e0:4c:b7:a5:41:ac:1e:d9:1a:6c:91:
#         e1:d0:a8:4a:c3:5e:78:2b:7a:80:c0:4f:cd:25:5f:50:27:c6:
#         bc:58:75:9c:1d:b5:9a:5d:95:73:f3:84:66:d3:cd:6d:1d:cd:
#         e0:5a:ce:20:38:ef:92:73:78:5e:02:d6:8d:f9:74:d4:b7:89:
#         d8:8c:fb:7b:d5:8b:71:d5:19:17:26:d8:24:49:3c:55:bc:82:
#         87:da:63:bb:39:d7:8e:91:cf:34:70:5c:73:4f:d0:50:47:5a:
#         fb:e5:5a:51

[p11-kit-object-v1]
label: "Halcom CA PO 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCUF/JJNzAyCQg8vvU3t3RsEDvL
InEHBrnG7NpI858nbWSNVd55R1D7aM55Ab6nG/ZhrX0xC1MgrTHxW84j+v/MEgJa
AJz8zWsSUuis1DM7cyYQcZBAvwOI37xfIQ2M1oqTH+euFVTGTOSZYZLg941yx9xi
EzOjPkkp+4S/cDqRIQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Halcom CA PO 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 79074 (0x134e2)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SI, O = Halcom, CN = Halcom CA PO 2
#        Validity
#            Not Before: Feb  7 18:33:31 2004 GMT
#            Not After : Feb  7 18:33:31 2019 GMT
#        Subject: C = SI, O = Halcom, CN = Halcom CA PO 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (1024 bit)
#                Modulus:
#                    00:94:17:f2:49:37:30:32:09:08:3c:be:f5:37:b7:
#                    74:6c:10:3b:cb:22:71:07:06:b9:c6:ec:da:48:f3:
#                    9f:27:6d:64:8d:55:de:79:47:50:fb:68:ce:79:01:
#                    be:a7:1b:f6:61:ad:7d:31:0b:53:20:ad:31:f1:5b:
#                    ce:23:fa:ff:cc:12:02:5a:00:9c:fc:cd:6b:12:52:
#                    e8:ac:d4:33:3b:73:26:10:71:90:40:bf:03:88:df:
#                    bc:5f:21:0d:8c:d6:8a:93:1f:e7:ae:15:54:c6:4c:
#                    e4:99:61:92:e0:f7:8d:72:c7:dc:62:13:33:a3:3e:
#                    49:29:fb:84:bf:70:3a:91:21
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                48:AF:57:66:BF:D2:C0:02
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         90:16:57:76:b8:79:ce:fc:c4:d1:37:00:a2:cd:ff:38:07:11:
#         73:13:05:49:ed:df:c1:c5:ce:c6:40:d8:f7:02:96:0d:b7:6f:
#         11:84:38:66:fb:71:f7:10:01:67:7c:5d:7d:24:da:f6:64:3b:
#         08:80:48:a6:4e:bd:44:e2:b0:07:32:8f:7c:86:37:46:6f:c0:
#         83:03:93:b5:f4:f3:12:7c:a3:e8:cb:e2:3a:23:78:fa:68:6f:
#         fe:58:ca:0c:a7:57:51:2d:62:90:f9:e4:a8:dc:f5:ca:df:0e:
#         87:51:6e:37:75:26:0e:d7:7e:78:8a:03:a2:95:19:b6:5e:91:
#         01:56

[p11-kit-object-v1]
label: "Halcom Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAibmFyv70dX1/7J1CN7q6
jbzsPRcD/dlFZdbNyU5fjEhclwhXFIstnDyQSZnPaa9JjdscAbBu6fTqkWddyrNp
T9jMwQ097qoDduDJcKKf/uub0LbJltPw+1vQ8AerTF5NpOJHXgVodKaOIkfuftNn
hFQ3kkcO86PsFRrzbXu/GTUhj4JLrFScCc1utsFXvdBJPW+fc46xbH69/ta7PQPo
5kwatO6vtINOMpBU9k4b4S/OpTQajqMg+dk+ImtvbuP62TNcCKD3FQA9nBCSSlXN
gLIGqv3Xj7dakickDzM8KLrxH2i1dylersLajTZw4noyGyOm3sVhDZqlEiC185ZZ
tQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Halcom Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 504275 (0x7b1d3)
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = SI, O = Halcom, CN = Halcom Root CA
#        Validity
#            Not Before: Feb  8 09:55:41 2012 GMT
#            Not After : Feb  8 09:55:41 2032 GMT
#        Subject: C = SI, O = Halcom, CN = Halcom Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:89:b9:85:ca:fe:f4:75:7d:7f:ec:9d:42:37:ba:
#                    ba:8d:bc:ec:3d:17:03:fd:d9:45:65:d6:cd:c9:4e:
#                    5f:8c:48:5c:97:08:57:14:8b:2d:9c:3c:90:49:99:
#                    cf:69:af:49:8d:db:1c:01:b0:6e:e9:f4:ea:91:67:
#                    5d:ca:b3:69:4f:d8:cc:c1:0d:3d:ee:aa:03:76:e0:
#                    c9:70:a2:9f:fe:eb:9b:d0:b6:c9:96:d3:f0:fb:5b:
#                    d0:f0:07:ab:4c:5e:4d:a4:e2:47:5e:05:68:74:a6:
#                    8e:22:47:ee:7e:d3:67:84:54:37:92:47:0e:f3:a3:
#                    ec:15:1a:f3:6d:7b:bf:19:35:21:8f:82:4b:ac:54:
#                    9c:09:cd:6e:b6:c1:57:bd:d0:49:3d:6f:9f:73:8e:
#                    b1:6c:7e:bd:fe:d6:bb:3d:03:e8:e6:4c:1a:b4:ee:
#                    af:b4:83:4e:32:90:54:f6:4e:1b:e1:2f:ce:a5:34:
#                    1a:8e:a3:20:f9:d9:3e:22:6b:6f:6e:e3:fa:d9:33:
#                    5c:08:a0:f7:15:00:3d:9c:10:92:4a:55:cd:80:b2:
#                    06:aa:fd:d7:8f:b7:5a:92:27:24:0f:33:3c:28:ba:
#                    f1:1f:68:b5:77:29:5e:ae:c2:da:8d:36:70:e2:7a:
#                    32:1b:23:a6:de:c5:61:0d:9a:a5:12:20:b5:f3:96:
#                    59:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4E:94:D8:8A:63:C2:CF:79
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         29:be:e7:b1:e4:fa:03:a2:0f:af:76:59:9d:f8:4e:53:4d:3c:
#         04:83:9f:a1:e2:8c:f6:94:d9:b4:ae:68:2a:56:6b:32:53:28:
#         83:07:72:4c:b0:4e:a8:1d:81:83:21:67:03:37:d1:8c:c6:c1:
#         4e:84:e9:34:3b:d3:f5:f5:27:b6:8d:23:05:52:b8:4c:32:f2:
#         2e:da:d1:2a:7d:3e:83:03:2a:d2:b1:e3:9a:e9:8a:83:42:f0:
#         2c:0a:a1:53:0f:c0:2b:e2:8f:1a:4e:95:b9:45:bc:4b:67:3a:
#         bd:32:f3:ad:a5:8f:8f:c3:2e:ea:f6:f4:7b:62:d0:6e:6e:c5:
#         61:31:13:66:e6:67:49:99:3b:2f:80:4f:7a:7c:73:8a:03:0d:
#         5f:f5:b3:32:28:0a:8a:c0:e1:f9:b8:a3:26:ee:dc:1b:57:cf:
#         76:1a:4f:53:be:f6:4a:8b:57:17:2b:2f:99:86:aa:de:8c:da:
#         b6:a8:6c:df:68:36:d6:61:8b:6e:c0:73:4e:b7:39:45:f4:7d:
#         ce:49:c4:f3:1d:f9:a9:77:6c:ef:ef:92:15:13:27:99:46:e8:
#         9f:a9:8a:1b:9f:29:2f:a2:1d:3e:d6:2b:c7:e4:55:10:3a:18:
#         f7:b3:7b:4f:2e:c7:00:22:ed:e4:31:d0:e7:b8:e4:54:4f:c1:
#         80:45:25:6e

[p11-kit-object-v1]
label: "Halcom Root Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6VKmxhrvY7utgfSQslqP
DdUWM7QcGPvLiSowu2WBxOH7AqmUB3bl1xXkemQQgOo80LOira4cH+q7gWGY1PmN
aZXERS4DCcqG+lxaERdAMD7wxmMJyfGNQaVWDQVkaUtYrCoplrtAMxY0S2ds1/G0
RqXqWahDaA+MOCqqPPZEA4b4ittFISspHhK3+qVlQd4GCFhwlT70TNnrDympkYqe
rcoS9eWV5jjZGqaLnE+mSBMQpXlEvWo7KfUWd0DLfptc376L6+egGW+fFT8nnimx
9Q38X0eiPN0uCwL79I3q7Ayx+bQFrPmPqT1uLB05n9BOn07Iap6AA2Hcz/htlMsP
zwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Halcom Root Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 843675 (0xcdf9b)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = SI, O = Halcom d.d., organizationIdentifier = VATSI-43353126, CN = Halcom Root Certificate Authority
#        Validity
#            Not Before: Jun 10 07:07:50 2016 GMT
#            Not After : Jun 10 07:07:50 2036 GMT
#        Subject: C = SI, O = Halcom d.d., organizationIdentifier = VATSI-43353126, CN = Halcom Root Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:e9:52:a6:c6:1a:ef:63:bb:ad:81:f4:90:b2:5a:
#                    8f:0d:d5:16:33:b4:1c:18:fb:cb:89:2a:30:bb:65:
#                    81:c4:e1:fb:02:a9:94:07:76:e5:d7:15:e4:7a:64:
#                    10:80:ea:3c:d0:b3:a2:ad:ae:1c:1f:ea:bb:81:61:
#                    98:d4:f9:8d:69:95:c4:45:2e:03:09:ca:86:fa:5c:
#                    5a:11:17:40:30:3e:f0:c6:63:09:c9:f1:8d:41:a5:
#                    56:0d:05:64:69:4b:58:ac:2a:29:96:bb:40:33:16:
#                    34:4b:67:6c:d7:f1:b4:46:a5:ea:59:a8:43:68:0f:
#                    8c:38:2a:aa:3c:f6:44:03:86:f8:8a:db:45:21:2b:
#                    29:1e:12:b7:fa:a5:65:41:de:06:08:58:70:95:3e:
#                    f4:4c:d9:eb:0f:29:a9:91:8a:9e:ad:ca:12:f5:e5:
#                    95:e6:38:d9:1a:a6:8b:9c:4f:a6:48:13:10:a5:79:
#                    44:bd:6a:3b:29:f5:16:77:40:cb:7e:9b:5c:df:be:
#                    8b:eb:e7:a0:19:6f:9f:15:3f:27:9e:29:b1:f5:0d:
#                    fc:5f:47:a2:3c:dd:2e:0b:02:fb:f4:8d:ea:ec:0c:
#                    b1:f9:b4:05:ac:f9:8f:a9:3d:6e:2c:1d:39:9f:d0:
#                    4e:9f:4e:c8:6a:9e:80:03:61:dc:cf:f8:6d:94:cb:
#                    0f:cf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                42:AE:A6:43:C7:98:28:B0
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         52:b9:79:d0:db:63:fe:19:81:fb:0c:f9:c1:e5:50:59:ca:9d:
#         b2:fb:5c:33:d0:38:a8:ab:b5:1a:4e:53:25:75:22:d3:49:bf:
#         ca:81:cf:d3:e1:7b:a3:91:46:75:ca:1a:eb:d9:f5:5d:bc:7b:
#         86:35:fd:81:97:9c:84:d7:26:98:22:fc:b1:35:d0:a9:95:b6:
#         7c:ff:e4:97:b4:40:7e:49:5d:68:c8:e2:d4:39:75:27:4f:03:
#         91:b2:31:57:bf:86:d7:6d:ca:71:00:22:37:d0:3b:58:24:50:
#         a0:9c:8c:9a:89:8e:f5:28:46:6c:e7:16:ed:b0:81:ab:f4:46:
#         26:af:a6:e8:1a:45:77:70:16:92:b2:7b:71:71:dc:f7:df:49:
#         67:c0:33:08:0e:2e:53:c1:77:ab:c7:4a:91:4c:12:ef:e7:0e:
#         09:e5:75:31:20:ae:6e:fc:5a:8a:80:9c:10:b0:db:a8:4a:cc:
#         f3:2b:dc:36:34:a6:f7:a9:0b:67:9d:90:cb:3d:26:9f:75:cd:
#         4c:c9:1d:06:0a:75:8b:52:c0:81:f0:d1:26:ac:cc:92:a6:14:
#         9c:5c:3c:16:42:fb:93:cc:02:a8:13:f3:da:ae:0a:c3:b8:15:
#         f4:b0:d0:d4:e0:16:20:4f:ac:50:98:78:26:94:1e:68:eb:94:
#         72:fe:f7:8b

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions ECC RootCA 2015"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEkqBB6EuChFzi+DERmYZkTgklL51BLwqu
NU90lbJRZGuNa+Y/cJXwBURHpnI4UHaVAlqOriie+S1Ome8sSG9MJSno0XFb3x3B
dTe01/p7ekKcagpWWnxpC6qACSRsfsFG
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions ECC RootCA 2015"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C = GR, L = Athens, O = Hellenic Academic and Research Institutions Cert. Authority, CN = Hellenic Academic and Research Institutions ECC RootCA 2015
#        Validity
#            Not Before: Jul  7 10:37:12 2015 GMT
#            Not After : Jun 30 10:37:12 2040 GMT
#        Subject: C = GR, L = Athens, O = Hellenic Academic and Research Institutions Cert. Authority, CN = Hellenic Academic and Research Institutions ECC RootCA 2015
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:92:a0:41:e8:4b:82:84:5c:e2:f8:31:11:99:86:
#                    64:4e:09:25:2f:9d:41:2f:0a:ae:35:4f:74:95:b2:
#                    51:64:6b:8d:6b:e6:3f:70:95:f0:05:44:47:a6:72:
#                    38:50:76:95:02:5a:8e:ae:28:9e:f9:2d:4e:99:ef:
#                    2c:48:6f:4c:25:29:e8:d1:71:5b:df:1d:c1:75:37:
#                    b4:d7:fa:7b:7a:42:9c:6a:0a:56:5a:7c:69:0b:aa:
#                    80:09:24:6c:7e:c1:46
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B4:22:0B:82:99:24:01:0E:9C:BB:E4:0E:FD:BF:FB:97:20:93:99:2A
#    Signature Algorithm: ecdsa-with-SHA256
#         30:64:02:30:67:ce:16:62:38:a2:ac:62:45:a7:a9:95:24:c0:
#         1a:27:9c:32:3b:c0:c0:d5:ba:a9:e7:f8:04:43:53:85:ee:52:
#         21:de:9d:f5:25:83:3e:9e:58:4b:2f:d7:67:13:0e:21:02:30:
#         05:e1:75:01:de:68:ed:2a:1f:4d:4c:09:08:0d:ec:4b:ad:64:
#         17:28:e7:75:ce:45:65:72:21:17:cb:22:41:0e:8c:13:98:38:
#         9a:54:6d:9b:ca:e2:7c:ea:02:58:22:91

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqVMA4y6m9o76YNgtlT74
LCpUTs25hGGUWE+PPYvkQ/N1iY1R5MM30oqITXketxLdQ3hKipLm10jVD6Q6KUQ1
uAf2aB1VzThR8IwkMYWvg8l96Xev7Rp7nRf5s504UA+mWnmRgK83rqbTMfu1Jgmd
PFrvUcUr35Zd6zIeAtpwSexuDMiaN4338TZgSyYsgp7QePMND2OkUTDh+SsnEgfY
6r0YYpiwWTd9vu7zIFFCWoPvk7ppFfFinZ+ZOYKht3Qui9TFC3sv8MgK2j15CpqT
HKUocnORQ5qn0U2FhLmpdI8UQMfc3qxBZGy0GZsCY20kZI9EsiXqzl10DGMyXI2H
5QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = GR, O = Hellenic Academic and Research Institutions Cert. Authority, CN = Hellenic Academic and Research Institutions RootCA 2011
#        Validity
#            Not Before: Dec  6 13:49:52 2011 GMT
#            Not After : Dec  1 13:49:52 2031 GMT
#        Subject: C = GR, O = Hellenic Academic and Research Institutions Cert. Authority, CN = Hellenic Academic and Research Institutions RootCA 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a9:53:00:e3:2e:a6:f6:8e:fa:60:d8:2d:95:3e:
#                    f8:2c:2a:54:4e:cd:b9:84:61:94:58:4f:8f:3d:8b:
#                    e4:43:f3:75:89:8d:51:e4:c3:37:d2:8a:88:4d:79:
#                    1e:b7:12:dd:43:78:4a:8a:92:e6:d7:48:d5:0f:a4:
#                    3a:29:44:35:b8:07:f6:68:1d:55:cd:38:51:f0:8c:
#                    24:31:85:af:83:c9:7d:e9:77:af:ed:1a:7b:9d:17:
#                    f9:b3:9d:38:50:0f:a6:5a:79:91:80:af:37:ae:a6:
#                    d3:31:fb:b5:26:09:9d:3c:5a:ef:51:c5:2b:df:96:
#                    5d:eb:32:1e:02:da:70:49:ec:6e:0c:c8:9a:37:8d:
#                    f7:f1:36:60:4b:26:2c:82:9e:d0:78:f3:0d:0f:63:
#                    a4:51:30:e1:f9:2b:27:12:07:d8:ea:bd:18:62:98:
#                    b0:59:37:7d:be:ee:f3:20:51:42:5a:83:ef:93:ba:
#                    69:15:f1:62:9d:9f:99:39:82:a1:b7:74:2e:8b:d4:
#                    c5:0b:7b:2f:f0:c8:0a:da:3d:79:0a:9a:93:1c:a5:
#                    28:72:73:91:43:9a:a7:d1:4d:85:84:b9:a9:74:8f:
#                    14:40:c7:dc:de:ac:41:64:6c:b4:19:9b:02:63:6d:
#                    24:64:8f:44:b2:25:ea:ce:5d:74:0c:63:32:5c:8d:
#                    87:e5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A6:91:42:FD:13:61:4A:23:9E:08:A4:29:E5:D8:13:04:23:EE:41:25
#            X509v3 Name Constraints: 
#                Permitted:
#                  DNS:.gr
#                  DNS:.eu
#                  DNS:.edu
#                  DNS:.org
#                  email:.gr
#                  email:.eu
#                  email:.edu
#                  email:.org
#
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:ef:79:41:e1:7b:6e:3f:b2:8c:86:37:42:4a:4e:1c:37:1e:
#         8d:66:ba:24:81:c9:4f:12:0f:21:c0:03:97:86:25:6d:5d:d3:
#         22:29:a8:6c:a2:0d:a9:eb:3d:06:5b:99:3a:c7:cc:c3:9a:34:
#         7f:ab:0e:c8:4e:1c:e1:fa:e4:dc:cd:0d:be:bf:24:fe:6c:e7:
#         6b:c2:0d:c8:06:9e:4e:8d:61:28:a6:6a:fd:e5:f6:62:ea:18:
#         3c:4e:a0:53:9d:b2:3a:9c:eb:a5:9c:91:16:b6:4d:82:e0:0c:
#         05:48:a9:6c:f5:cc:f8:cb:9d:49:b4:f0:02:a5:fd:70:03:ed:
#         8a:21:a5:ae:13:86:49:c3:33:73:be:87:3b:74:8b:17:45:26:
#         4c:16:91:83:fe:67:7d:cd:4d:63:67:fa:f3:03:12:96:78:06:
#         8d:b1:67:ed:8e:3f:be:9f:4f:02:f5:b3:09:2f:f3:4c:87:df:
#         2a:cb:95:7c:01:cc:ac:36:7a:bf:a2:73:7a:f7:8f:c1:b5:9a:
#         a1:14:b2:8f:33:9f:0d:ef:22:dc:66:7b:84:bd:45:17:06:3d:
#         3c:ca:b9:77:34:8f:ca:ea:cf:3f:31:3e:e3:88:e3:80:49:25:
#         c8:97:b5:9d:9a:99:4d:b0:3c:f8:4a:00:9b:64:dd:9f:39:4b:
#         d1:27:d7:b8

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2015"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2015"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGCzCCA/OgAwIBAgIBADANBgkqhkiG9w0BAQsFADCBpjELMAkGA1UEBhMCR1Ix
DzANBgNVBAcTBkF0aGVuczFEMEIGA1UEChM7SGVsbGVuaWMgQWNhZGVtaWMgYW5k
IFJlc2VhcmNoIEluc3RpdHV0aW9ucyBDZXJ0LiBBdXRob3JpdHkxQDA+BgNVBAMT
N0hlbGxlbmljIEFjYWRlbWljIGFuZCBSZXNlYXJjaCBJbnN0aXR1dGlvbnMgUm9v
dENBIDIwMTUwHhcNMTUwNzA3MTAxMTIxWhcNNDAwNjMwMTAxMTIxWjCBpjELMAkG
A1UEBhMCR1IxDzANBgNVBAcTBkF0aGVuczFEMEIGA1UEChM7SGVsbGVuaWMgQWNh
ZGVtaWMgYW5kIFJlc2VhcmNoIEluc3RpdHV0aW9ucyBDZXJ0LiBBdXRob3JpdHkx
QDA+BgNVBAMTN0hlbGxlbmljIEFjYWRlbWljIGFuZCBSZXNlYXJjaCBJbnN0aXR1
dGlvbnMgUm9vdENBIDIwMTUwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoIC
AQDC+Kk/G4n8PDwEXT2QNrCROnk8ZlrvbTkBSRq0t89/TSNTt5AA4xMqKKYx8ZEA
4yjsriFBzh/a/X0SWwGDD7mwX5nh8hKDgE0GPt+sr+ehiGsxr/CL0BgzuNtFajT0
AoAkKAoCFZVedioNmToUW/bLy1O8E00BiDeUJRtCvCLYjqOWXjrZMts+6PAQZe10
4S+nfK8nNLspfZu2zwnI5dMK/IhlZXQK3HMcXM1AsRzUtoSMTFDPaI6oWa7CJ06C
ojXdFPQf/7J31Ycvqm59JCfnxssm5uX+Zwdj2EUN3TpZZTlYepKZcj2chF6IIbjV
9Cz82XBST3i4vTwri5WY9bPRaM8gFH5MXF/ni+X1NYEZN9cRCLdmvtNKzoNXADrD
gfgXy5I2XdGj2HUb4Ysn6npIQf1FGQatJ5lOwXBH3bWfgVMS5bGMSF0xQxfjjMZ6
Y5ZLKTBOhE5iGV48zpeQpX8B653g+IuJ3SWYPZK2fu/Z8VFRfS0myGlZYeCsargq
NhEEelC9MoS+L9xy1dcdFkfkR2YgP/SWxa+OAXqlD3pk9Q0Yh9muiNX6hME6wGko
LfINaFGq46V3xqSQDqE3izEjR8EJCOtu93ib14L8hCCZSRm2Ekax+0VVFqmjZayc
Bw/qa9wfLgZy7IaIEuQt218FL+TwA9MmM+eAws1CoRc0CwIDAQABo0IwQDAPBgNV
HRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQUcRVnyMjJvXVd
ctA4GGqd83EkVAswDQYJKoZIhvcNAQELBQADggIBAHW7bVRLqhBYRjTyYtcWNl0I
XtVsyIe9tC5G8jH4fOpCtZMWVdyhDBKg2mF+D1hYc2Ryx+hFjtyp8iY/xnmMsVMI
M4GwVhO+5lFc2JsKT0ucVlMC6U/2DWDqTUJV6HwbISHTGzrMd/K4kPFox/la/vot
9L/J9UUbzjgQKjeKeaO04wlshYaT/4mWJ3iBj2fjRnRUjtkNaeJK9E10A/+yd+2V
Z5fkscWrv2oj6NSU4kQoYsRL4vDY4ilrGnB+JGGTe08DMiUNRSQrlrRGar9KC/ea
j8GsGsVn82800vpzY4zvFrCopEYq+OsS7HK07/grfoxSwIuEVPkvPuNVqNxmsdnh
X9izjFk0WaSrT2y7HxjbdavYy5LNlDhhDgcGH0tGEPEVvo2FXDtKK4F5D7Rpn0lQ
l033DlZdwJVqwjbDG2jJ9SrcR5q+ss7FJej6A7na+RZukYT1HCjI/CbM1xyQVqdf
bzoEvM14iQuODy+jqk+iGxI9FghAD/FGTNeqewjBCvVtJ94Cj8rDtSvK6evIIVM4
pcw72Hc3MKJP2W/R8kCtQXoXxdZKNYm3QdV8hn9VTYNKpXMgwDqvkPGaJI7ZjnHK
e7iG2rKPmT4dEw0SEe7Uq/DpFXYC5ODfqiAeW2GFZECpkJcNrVPSWh2HagCXZWK0
vm9qp/UsQu0yrbYhnr68
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = GR, L = Athens, O = Hellenic Academic and Research Institutions Cert. Authority, CN = Hellenic Academic and Research Institutions RootCA 2015
#        Validity
#            Not Before: Jul  7 10:11:21 2015 GMT
#            Not After : Jun 30 10:11:21 2040 GMT
#        Subject: C = GR, L = Athens, O = Hellenic Academic and Research Institutions Cert. Authority, CN = Hellenic Academic and Research Institutions RootCA 2015
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c2:f8:a9:3f:1b:89:fc:3c:3c:04:5d:3d:90:36:
#                    b0:91:3a:79:3c:66:5a:ef:6d:39:01:49:1a:b4:b7:
#                    cf:7f:4d:23:53:b7:90:00:e3:13:2a:28:a6:31:f1:
#                    91:00:e3:28:ec:ae:21:41:ce:1f:da:fd:7d:12:5b:
#                    01:83:0f:b9:b0:5f:99:e1:f2:12:83:80:4d:06:3e:
#                    df:ac:af:e7:a1:88:6b:31:af:f0:8b:d0:18:33:b8:
#                    db:45:6a:34:f4:02:80:24:28:0a:02:15:95:5e:76:
#                    2a:0d:99:3a:14:5b:f6:cb:cb:53:bc:13:4d:01:88:
#                    37:94:25:1b:42:bc:22:d8:8e:a3:96:5e:3a:d9:32:
#                    db:3e:e8:f0:10:65:ed:74:e1:2f:a7:7c:af:27:34:
#                    bb:29:7d:9b:b6:cf:09:c8:e5:d3:0a:fc:88:65:65:
#                    74:0a:dc:73:1c:5c:cd:40:b1:1c:d4:b6:84:8c:4c:
#                    50:cf:68:8e:a8:59:ae:c2:27:4e:82:a2:35:dd:14:
#                    f4:1f:ff:b2:77:d5:87:2f:aa:6e:7d:24:27:e7:c6:
#                    cb:26:e6:e5:fe:67:07:63:d8:45:0d:dd:3a:59:65:
#                    39:58:7a:92:99:72:3d:9c:84:5e:88:21:b8:d5:f4:
#                    2c:fc:d9:70:52:4f:78:b8:bd:3c:2b:8b:95:98:f5:
#                    b3:d1:68:cf:20:14:7e:4c:5c:5f:e7:8b:e5:f5:35:
#                    81:19:37:d7:11:08:b7:66:be:d3:4a:ce:83:57:00:
#                    3a:c3:81:f8:17:cb:92:36:5d:d1:a3:d8:75:1b:e1:
#                    8b:27:ea:7a:48:41:fd:45:19:06:ad:27:99:4e:c1:
#                    70:47:dd:b5:9f:81:53:12:e5:b1:8c:48:5d:31:43:
#                    17:e3:8c:c6:7a:63:96:4b:29:30:4e:84:4e:62:19:
#                    5e:3c:ce:97:90:a5:7f:01:eb:9d:e0:f8:8b:89:dd:
#                    25:98:3d:92:b6:7e:ef:d9:f1:51:51:7d:2d:26:c8:
#                    69:59:61:e0:ac:6a:b8:2a:36:11:04:7a:50:bd:32:
#                    84:be:2f:dc:72:d5:d7:1d:16:47:e4:47:66:20:3f:
#                    f4:96:c5:af:8e:01:7a:a5:0f:7a:64:f5:0d:18:87:
#                    d9:ae:88:d5:fa:84:c1:3a:c0:69:28:2d:f2:0d:68:
#                    51:aa:e3:a5:77:c6:a4:90:0e:a1:37:8b:31:23:47:
#                    c1:09:08:eb:6e:f7:78:9b:d7:82:fc:84:20:99:49:
#                    19:b6:12:46:b1:fb:45:55:16:a9:a3:65:ac:9c:07:
#                    0f:ea:6b:dc:1f:2e:06:72:ec:86:88:12:e4:2d:db:
#                    5f:05:2f:e4:f0:03:d3:26:33:e7:80:c2:cd:42:a1:
#                    17:34:0b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                71:15:67:C8:C8:C9:BD:75:5D:72:D0:38:18:6A:9D:F3:71:24:54:0B
#    Signature Algorithm: sha256WithRSAEncryption
#         75:bb:6d:54:4b:aa:10:58:46:34:f2:62:d7:16:36:5d:08:5e:
#         d5:6c:c8:87:bd:b4:2e:46:f2:31:f8:7c:ea:42:b5:93:16:55:
#         dc:a1:0c:12:a0:da:61:7e:0f:58:58:73:64:72:c7:e8:45:8e:
#         dc:a9:f2:26:3f:c6:79:8c:b1:53:08:33:81:b0:56:13:be:e6:
#         51:5c:d8:9b:0a:4f:4b:9c:56:53:02:e9:4f:f6:0d:60:ea:4d:
#         42:55:e8:7c:1b:21:21:d3:1b:3a:cc:77:f2:b8:90:f1:68:c7:
#         f9:5a:fe:fa:2d:f4:bf:c9:f5:45:1b:ce:38:10:2a:37:8a:79:
#         a3:b4:e3:09:6c:85:86:93:ff:89:96:27:78:81:8f:67:e3:46:
#         74:54:8e:d9:0d:69:e2:4a:f4:4d:74:03:ff:b2:77:ed:95:67:
#         97:e4:b1:c5:ab:bf:6a:23:e8:d4:94:e2:44:28:62:c4:4b:e2:
#         f0:d8:e2:29:6b:1a:70:7e:24:61:93:7b:4f:03:32:25:0d:45:
#         24:2b:96:b4:46:6a:bf:4a:0b:f7:9a:8f:c1:ac:1a:c5:67:f3:
#         6f:34:d2:fa:73:63:8c:ef:16:b0:a8:a4:46:2a:f8:eb:12:ec:
#         72:b4:ef:f8:2b:7e:8c:52:c0:8b:84:54:f9:2f:3e:e3:55:a8:
#         dc:66:b1:d9:e1:5f:d8:b3:8c:59:34:59:a4:ab:4f:6c:bb:1f:
#         18:db:75:ab:d8:cb:92:cd:94:38:61:0e:07:06:1f:4b:46:10:
#         f1:15:be:8d:85:5c:3b:4a:2b:81:79:0f:b4:69:9f:49:50:97:
#         4d:f7:0e:56:5d:c0:95:6a:c2:36:c3:1b:68:c9:f5:2a:dc:47:
#         9a:be:b2:ce:c5:25:e8:fa:03:b9:da:f9:16:6e:91:84:f5:1c:
#         28:c8:fc:26:cc:d7:1c:90:56:a7:5f:6f:3a:04:bc:cd:78:89:
#         0b:8e:0f:2f:a3:aa:4f:a2:1b:12:3d:16:08:40:0f:f1:46:4c:
#         d7:aa:7b:08:c1:0a:f5:6d:27:de:02:8f:ca:c3:b5:2b:ca:e9:
#         eb:c8:21:53:38:a5:cc:3b:d8:77:37:30:a2:4f:d9:6f:d1:f2:
#         40:ad:41:7a:17:c5:d6:4a:35:89:b7:41:d5:7c:86:7f:55:4d:
#         83:4a:a5:73:20:c0:3a:af:90:f1:9a:24:8e:d9:8e:71:ca:7b:
#         b8:86:da:b2:8f:99:3e:1d:13:0d:12:11:ee:d4:ab:f0:e9:15:
#         76:02:e4:e0:df:aa:20:1e:5b:61:85:64:40:a9:90:97:0d:ad:
#         53:d2:5a:1d:87:6a:00:97:65:62:b4:be:6f:6a:a7:f5:2c:42:
#         ed:32:ad:b6:21:9e:be:bc

[p11-kit-object-v1]
label: "HiPKI Root CA - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HiPKI Root CA - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2d:dd:ac:ce:62:97:94:a1:43:e8:b0:cd:76:6a:5e:60
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TW, O = "Chunghwa Telecom Co., Ltd.", CN = HiPKI Root CA - G1
#        Validity
#            Not Before: Feb 22 09:46:04 2019 GMT
#            Not After : Dec 31 15:59:59 2037 GMT
#        Subject: C = TW, O = "Chunghwa Telecom Co., Ltd.", CN = HiPKI Root CA - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:f4:1e:7f:52:73:32:0c:73:e4:bd:13:74:a3:d4:
#                    30:a8:d0:ae:4b:d8:b6:df:75:47:66:f4:7c:e7:39:
#                    04:1e:6a:70:20:d2:5a:47:72:67:55:f4:a5:e8:9d:
#                    d5:1e:21:a1:f0:67:ba:cc:21:68:be:44:53:bf:8d:
#                    f9:e2:dc:2f:55:c8:37:3f:1f:a4:c0:9c:b3:e4:77:
#                    5c:a0:46:fe:77:fa:1a:a0:38:ea:ed:9a:72:de:2b:
#                    bd:94:57:3a:ba:ec:79:e7:5f:7d:42:64:39:7a:26:
#                    36:f7:24:f0:d5:2f:ba:95:98:11:66:ad:97:35:d6:
#                    75:01:80:e0:af:f4:84:61:8c:0d:1e:5f:7c:87:96:
#                    5e:41:af:eb:87:ea:f8:5d:f1:2e:88:05:3e:4c:22:
#                    bb:da:1f:2a:dd:52:46:64:39:f3:42:ce:d9:9e:0c:
#                    b3:b0:77:97:64:9c:c0:f4:a3:2e:1f:95:07:b0:17:
#                    df:30:db:00:18:96:4c:a1:81:4b:dd:04:6d:53:a3:
#                    3d:fc:07:ac:d4:c5:37:82:eb:e4:95:08:19:28:82:
#                    d2:42:3a:a3:d8:53:ec:79:89:60:48:60:c8:72:92:
#                    50:dc:03:8f:83:3f:b2:42:57:5a:db:6a:e9:11:97:
#                    dd:85:28:bc:30:4c:ab:e3:c2:b1:45:44:47:1f:e0:
#                    8a:16:07:96:d2:21:0f:53:c0:ed:a9:7e:d4:4e:ec:
#                    9b:09:ec:af:42:ac:30:d6:bf:d1:10:45:e0:a6:16:
#                    b2:a5:c5:d3:4f:73:94:33:71:02:a1:6a:a3:d6:33:
#                    97:4f:21:63:1e:5b:8f:d9:c1:5e:45:71:77:0f:81:
#                    5d:5f:21:9a:ad:83:cc:fa:5e:d6:8d:23:5f:1b:3d:
#                    41:af:20:75:66:5a:4a:f6:9f:fb:ab:18:f7:71:c0:
#                    b6:1d:31:ec:3b:20:eb:cb:e2:b8:f5:ae:92:b2:f7:
#                    e1:84:4b:f2:a2:f2:93:9a:22:9e:d3:14:6f:36:54:
#                    bd:1f:5e:59:15:b9:73:a8:c1:7c:6f:7b:62:e9:16:
#                    6c:47:5a:65:f3:0e:11:9b:46:d9:fd:6d:dc:d6:9c:
#                    c0:b4:7d:a5:b0:dd:3f:56:6f:a1:f9:f6:e4:12:48:
#                    fd:06:7f:12:57:b6:a9:23:4f:5b:03:c3:e0:71:2a:
#                    23:b7:f7:b0:b1:3b:bc:98:bd:d6:98:a8:0c:6b:f6:
#                    8e:12:67:a6:f2:b2:58:e4:02:09:13:3c:a9:bb:10:
#                    b4:d2:30:45:f1:ec:f7:00:11:df:65:f8:dc:2b:43:
#                    55:bf:16:97:c4:0f:d5:2c:61:84:aa:72:86:fe:e6:
#                    3a:7e:c2:3f:7d:ee:fc:2f:14:3e:e6:85:dd:50:6f:
#                    b7:49:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                F2:77:17:FA:5E:A8:FE:F6:3D:71:D5:68:BA:C9:46:0C:38:D8:AF:B0
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         50:51:f0:75:dc:70:04:e3:ff:aa:75:d4:71:a2:cb:9e:8f:a8:
#         a9:d3:af:75:c7:54:cf:3a:1c:04:99:22:ac:c4:11:e2:ef:33:
#         4a:a6:23:1d:0e:0d:47:d8:37:c7:6f:af:34:7f:4f:81:6b:35:
#         4f:e9:72:a5:31:e2:78:e7:f7:4e:94:18:5b:40:7d:cf:6b:21:
#         54:86:e6:95:7a:fb:c6:ca:ea:9c:48:4e:57:09:5d:2f:ac:f4:
#         a5:b4:97:33:58:d5:ac:79:a9:cc:5f:f9:85:fa:52:c5:8d:f8:
#         91:14:eb:3a:0d:17:d0:52:c2:7b:e3:c2:73:8e:46:78:06:38:
#         2c:e8:5c:da:66:c4:f4:a4:f0:56:19:33:29:5a:65:92:05:47:
#         46:4a:ab:84:c3:1e:27:a1:1f:11:92:99:27:75:93:0f:bc:36:
#         3b:97:57:8f:26:5b:0c:bb:9c:0f:d4:6e:30:07:d4:dc:5f:36:
#         68:66:39:83:96:27:26:8a:c8:c4:39:fe:9a:21:6f:d5:72:86:
#         e9:7f:62:e5:97:4e:d0:24:d0:40:b0:d0:75:08:8e:bd:68:ee:
#         08:d7:6e:7c:10:70:46:1b:7c:e0:88:b2:9e:72:86:99:01:e3:
#         bf:9f:49:19:b4:25:be:56:65:ae:17:63:e5:1e:df:e8:ff:47:
#         a5:bf:e1:26:05:84:e4:b0:c0:af:e7:08:99:a8:0c:5e:26:80:
#         45:d4:f8:68:2f:96:8f:ae:e2:4a:1c:9c:16:0c:13:6f:38:87:
#         f6:bb:c8:34:5f:92:03:51:79:70:a6:df:cb:f5:99:4d:79:cd:
#         4e:bc:57:9f:43:4e:6b:2e:2b:18:f8:6a:73:8c:ba:c5:35:ef:
#         39:6a:41:1e:cf:71:a8:a2:b2:86:07:5b:3a:c9:e1:ef:3f:65:
#         04:80:47:32:44:70:95:4e:31:67:6a:74:5b:10:45:75:ea:b0:
#         9f:d0:e6:35:fe:4e:9f:8b:cc:2b:92:45:5b:6e:25:60:85:46:
#         cd:d1:aa:b0:76:66:93:77:96:be:83:be:38:b6:24:4e:26:0b:
#         cc:ed:7a:56:1a:e0:e9:5a:c6:64:ad:4c:7a:00:48:44:2f:b9:
#         40:bb:13:3e:be:15:78:9d:85:81:4a:2a:57:de:d5:19:43:da:
#         db:ca:5b:47:86:83:0b:3f:b6:0d:76:78:73:79:22:5e:b1:80:
#         1f:cf:be:d1:3f:56:10:98:2b:95:87:a1:1f:9d:64:14:60:39:
#         2c:b3:00:55:2e:e4:f5:b3:0e:57:c4:91:41:00:9c:3f:e8:a5:
#         df:ea:f6:ff:c8:f0:ad:6d:52:a8:17:ab:9b:61:fc:12:51:35:
#         e4:25:fd:af:aa:6a:86:39

[p11-kit-object-v1]
label: "Hongkong Post Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArP84tulmAknjorThkPlA
j3n54r15/gK97iSSHSL22oVyaf7XPwnU3ZG1ApzQjVrhVcNQhrkpJsLj2aDxaQMo
IIBFIi1WpztUlVYiWR8o3x8gPW2iNr4joLFutbEnPzlTCeqrauh0ssJlXI6/fMN4
hM2eFvz1Lk8gKgifd/PFHsSaUmYeSF7jEAaPIpjhZY4bXSNmO7ilMlHIhqqhqZ5/
dpTCpmy3QfDVyAY45tQM4vM7TG1QjMSDJ8EThFk9nnV0ttgCXjqQesBCNnLsak3c
78QA3xMYV18meMjWCnl3v/evt3a5pQuEF10Q6m/hq5URX208o1xNg1vysxmKgIsL
hwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hongkong Post Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1000 (0x3e8)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = HK, O = Hongkong Post, CN = Hongkong Post Root CA 1
#        Validity
#            Not Before: May 15 05:13:14 2003 GMT
#            Not After : May 15 04:52:29 2023 GMT
#        Subject: C = HK, O = Hongkong Post, CN = Hongkong Post Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ac:ff:38:b6:e9:66:02:49:e3:a2:b4:e1:90:f9:
#                    40:8f:79:f9:e2:bd:79:fe:02:bd:ee:24:92:1d:22:
#                    f6:da:85:72:69:fe:d7:3f:09:d4:dd:91:b5:02:9c:
#                    d0:8d:5a:e1:55:c3:50:86:b9:29:26:c2:e3:d9:a0:
#                    f1:69:03:28:20:80:45:22:2d:56:a7:3b:54:95:56:
#                    22:59:1f:28:df:1f:20:3d:6d:a2:36:be:23:a0:b1:
#                    6e:b5:b1:27:3f:39:53:09:ea:ab:6a:e8:74:b2:c2:
#                    65:5c:8e:bf:7c:c3:78:84:cd:9e:16:fc:f5:2e:4f:
#                    20:2a:08:9f:77:f3:c5:1e:c4:9a:52:66:1e:48:5e:
#                    e3:10:06:8f:22:98:e1:65:8e:1b:5d:23:66:3b:b8:
#                    a5:32:51:c8:86:aa:a1:a9:9e:7f:76:94:c2:a6:6c:
#                    b7:41:f0:d5:c8:06:38:e6:d4:0c:e2:f3:3b:4c:6d:
#                    50:8c:c4:83:27:c1:13:84:59:3d:9e:75:74:b6:d8:
#                    02:5e:3a:90:7a:c0:42:36:72:ec:6a:4d:dc:ef:c4:
#                    00:df:13:18:57:5f:26:78:c8:d6:0a:79:77:bf:f7:
#                    af:b7:76:b9:a5:0b:84:17:5d:10:ea:6f:e1:ab:95:
#                    11:5f:6d:3c:a3:5c:4d:83:5b:f2:b3:19:8a:80:8b:
#                    0b:87
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:3
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         0e:46:d5:3c:ae:e2:87:d9:5e:81:8b:02:98:41:08:8c:4c:bc:
#         da:db:ee:27:1b:82:e7:6a:45:ec:16:8b:4f:85:a0:f3:b2:70:
#         bd:5a:96:ba:ca:6e:6d:ee:46:8b:6e:e7:2a:2e:96:b3:19:33:
#         eb:b4:9f:a8:b2:37:ee:98:a8:97:b6:2e:b6:67:27:d4:a6:49:
#         fd:1c:93:65:76:9e:42:2f:dc:22:6c:9a:4f:f2:5a:15:39:b1:
#         71:d7:2b:51:e8:6d:1c:98:c0:d9:2a:f4:a1:82:7b:d5:c9:41:
#         a2:23:01:74:38:55:8b:0f:b9:2e:67:a2:20:04:37:da:9c:0b:
#         d3:17:21:e0:8f:97:79:34:6f:84:48:02:20:33:1b:e6:34:44:
#         9f:91:70:f4:80:5e:84:43:c2:29:d2:6c:12:14:e4:61:8d:ac:
#         10:90:9e:84:50:bb:f0:96:6f:45:9f:8a:f3:ca:6c:4f:fa:11:
#         3a:15:15:46:c3:cd:1f:83:5b:2d:41:12:ed:50:67:41:13:3d:
#         21:ab:94:8a:aa:4e:7c:c1:b1:fb:a7:d6:b5:27:2f:97:ab:6e:
#         e0:1d:e2:d1:1c:2c:1f:44:e2:fc:be:91:a1:9c:fb:d6:29:53:
#         73:86:9f:53:d8:43:0e:5d:d6:63:82:71:1d:80:74:ca:f6:e2:
#         02:6b:d9:5a

[p11-kit-object-v1]
label: "Hongkong Post Root CA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAs4jX6s4PIE6+5tYDbe5Z
/MJX3ylooYMOPmjHaFicHGBLiUMMudQVsu7BTnXptafv5ek1meTMHOdLX40zMCAz
U9mmu9U+E47pH4dJrVAtUMoYvgFYohNwlruJiFaAXPi9LDzhTFeIu9O5le/Lx/ba
MXQopuZUifVBMcrlJhrNguBw2jspu9UD9Zm6VfVk0WAOs4lJuIovBdKERSh8j2hQ
Enj8C7VTy8KYHISjnrC+I6Ta3MgrHtpuRR6JmNr5AC4G6Qw7cNVQJYiZy81zYPfV
/zVnxaG8XqvNSrhF68hoHg0NFEYS49JkYopCmLy0xggI+P2oTGScdgG9L6lsMw/Y
Pyi4PGkBQoZ+acHJBsrlekZl6cLWUEEuP7fk7WzXvyYBEaIWKUprNAaQ7BPStvtq
dtI87fDWLd3hFeyjmy8syT4r5Gk7/3IlsTaGW8d/a4tVG0rFIGE9rstQ4Qg6vrCP
Y0FTMAhZPJgdd7pjkXrKEFBgv/DXvJWHj5fF/pdqAZSjfFuFHSo5OtBUodE5cZ39
Ifm1e/Di4AKPbpYkJSygHiyoxImn7+2ZBi+2CkxP26LMNxqvR4Util/ENDRMAP0Y
k2cT0TfmSLSLBsVXexmGCnnLAMlSr0L/N4/hox56PVCrYwbnFbU/tkU3lDexfvJI
w3/Fdf6XjUWPGqcacigaQA8CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hongkong Post Root CA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:16:5f:8a:4c:a5:ec:00:c9:93:40:df:c4:c6:ae:23:b8:1c:5a:a4
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = HK, ST = Hong Kong, L = Hong Kong, O = Hongkong Post, CN = Hongkong Post Root CA 3
#        Validity
#            Not Before: Jun  3 02:29:46 2017 GMT
#            Not After : Jun  3 02:29:46 2042 GMT
#        Subject: C = HK, ST = Hong Kong, L = Hong Kong, O = Hongkong Post, CN = Hongkong Post Root CA 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:88:d7:ea:ce:0f:20:4e:be:e6:d6:03:6d:ee:
#                    59:fc:c2:57:df:29:68:a1:83:0e:3e:68:c7:68:58:
#                    9c:1c:60:4b:89:43:0c:b9:d4:15:b2:ee:c1:4e:75:
#                    e9:b5:a7:ef:e5:e9:35:99:e4:cc:1c:e7:4b:5f:8d:
#                    33:30:20:33:53:d9:a6:bb:d5:3e:13:8e:e9:1f:87:
#                    49:ad:50:2d:50:ca:18:be:01:58:a2:13:70:96:bb:
#                    89:88:56:80:5c:f8:bd:2c:3c:e1:4c:57:88:bb:d3:
#                    b9:95:ef:cb:c7:f6:da:31:74:28:a6:e6:54:89:f5:
#                    41:31:ca:e5:26:1a:cd:82:e0:70:da:3b:29:bb:d5:
#                    03:f5:99:ba:55:f5:64:d1:60:0e:b3:89:49:b8:8a:
#                    2f:05:d2:84:45:28:7c:8f:68:50:12:78:fc:0b:b5:
#                    53:cb:c2:98:1c:84:a3:9e:b0:be:23:a4:da:dc:c8:
#                    2b:1e:da:6e:45:1e:89:98:da:f9:00:2e:06:e9:0c:
#                    3b:70:d5:50:25:88:99:cb:cd:73:60:f7:d5:ff:35:
#                    67:c5:a1:bc:5e:ab:cd:4a:b8:45:eb:c8:68:1e:0d:
#                    0d:14:46:12:e3:d2:64:62:8a:42:98:bc:b4:c6:08:
#                    08:f8:fd:a8:4c:64:9c:76:01:bd:2f:a9:6c:33:0f:
#                    d8:3f:28:b8:3c:69:01:42:86:7e:69:c1:c9:06:ca:
#                    e5:7a:46:65:e9:c2:d6:50:41:2e:3f:b7:e4:ed:6c:
#                    d7:bf:26:01:11:a2:16:29:4a:6b:34:06:90:ec:13:
#                    d2:b6:fb:6a:76:d2:3c:ed:f0:d6:2d:dd:e1:15:ec:
#                    a3:9b:2f:2c:c9:3e:2b:e4:69:3b:ff:72:25:b1:36:
#                    86:5b:c7:7f:6b:8b:55:1b:4a:c5:20:61:3d:ae:cb:
#                    50:e1:08:3a:be:b0:8f:63:41:53:30:08:59:3c:98:
#                    1d:77:ba:63:91:7a:ca:10:50:60:bf:f0:d7:bc:95:
#                    87:8f:97:c5:fe:97:6a:01:94:a3:7c:5b:85:1d:2a:
#                    39:3a:d0:54:a1:d1:39:71:9d:fd:21:f9:b5:7b:f0:
#                    e2:e0:02:8f:6e:96:24:25:2c:a0:1e:2c:a8:c4:89:
#                    a7:ef:ed:99:06:2f:b6:0a:4c:4f:db:a2:cc:37:1a:
#                    af:47:85:2d:8a:5f:c4:34:34:4c:00:fd:18:93:67:
#                    13:d1:37:e6:48:b4:8b:06:c5:57:7b:19:86:0a:79:
#                    cb:00:c9:52:af:42:ff:37:8f:e1:a3:1e:7a:3d:50:
#                    ab:63:06:e7:15:b5:3f:b6:45:37:94:37:b1:7e:f2:
#                    48:c3:7f:c5:75:fe:97:8d:45:8f:1a:a7:1a:72:28:
#                    1a:40:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:17:9D:CD:1E:8B:D6:39:2B:70:D3:5C:D4:A0:B8:1F:B0:00:FC:C5:61
#
#            X509v3 Subject Key Identifier: 
#                17:9D:CD:1E:8B:D6:39:2B:70:D3:5C:D4:A0:B8:1F:B0:00:FC:C5:61
#    Signature Algorithm: sha256WithRSAEncryption
#         56:d5:7b:6e:e6:22:01:d2:42:9b:18:d5:0e:d7:66:23:5c:e3:
#         fe:a0:c7:92:d2:e9:94:ad:4b:a2:c6:ec:12:7c:74:d5:48:d2:
#         59:14:99:c0:eb:b9:d1:eb:f4:48:30:5b:ad:a7:57:73:99:a9:
#         d3:e5:b7:d1:2e:59:24:58:dc:68:2e:2e:62:d8:6a:e4:70:0b:
#         2d:20:50:20:a4:32:95:d1:00:98:bb:d3:fd:f7:32:f2:49:ae:
#         c6:7a:e0:47:be:6e:ce:cb:a3:72:3a:2d:69:5d:cb:c8:e8:45:
#         39:d4:fa:42:c1:11:4c:77:5d:92:fb:6a:ff:58:44:e5:eb:81:
#         9e:af:a0:99:ad:be:a9:01:66:cb:38:1d:3c:df:43:1f:f4:4d:
#         6e:b4:ba:17:46:fc:7d:fd:87:81:79:6a:0d:33:0f:fa:2f:f8:
#         14:b9:80:b3:5d:4d:aa:97:e1:f9:e4:18:c5:f8:d5:38:8c:26:
#         3c:fd:f2:28:e2:ee:5a:49:88:2c:df:79:3d:8e:9e:90:3c:bd:
#         41:4a:3a:dd:5b:f6:9a:b4:ce:3f:25:30:7f:32:7d:a2:03:94:
#         d0:dc:7a:a1:52:de:6e:93:8d:18:26:fd:55:ac:bd:8f:9b:d2:
#         cf:af:e7:86:2c:cb:1f:09:6f:a3:6f:a9:84:d4:73:bf:4d:a1:
#         74:1b:4e:23:60:f2:cc:0e:aa:7f:a4:9c:4c:25:a8:b2:66:3b:
#         38:ff:d9:94:30:f6:72:84:be:68:55:10:0f:c6:73:2c:16:69:
#         93:07:fe:b1:45:ed:bb:a2:55:6a:b0:da:b5:4a:02:25:27:85:
#         d7:b7:b7:86:44:16:89:6c:80:2b:3e:97:a9:9c:d5:7e:55:4c:
#         c6:de:45:10:1c:ea:e9:3b:9f:03:53:ee:ee:7a:01:02:16:78:
#         d4:e8:c2:be:46:76:88:13:3f:22:bb:48:12:1d:52:00:b4:02:
#         7e:21:1a:1e:9c:25:f4:f3:3d:5e:1e:d2:1c:f9:b3:2d:b6:f7:
#         37:5c:c6:cb:21:4e:b0:f7:99:47:18:85:c1:2b:ba:55:ae:06:
#         ea:d0:07:b2:dc:ab:d0:82:96:75:ce:d2:50:fe:99:e7:cf:2f:
#         9f:e7:76:d1:61:2a:fb:21:bb:31:d0:aa:9f:47:a4:b2:22:ca:
#         16:3a:50:57:c4:5b:43:67:c5:65:62:03:49:01:eb:43:d9:d8:
#         f8:9e:ad:cf:b1:63:0e:45:f4:a0:5a:2c:9b:2d:c5:a6:c0:ad:
#         a8:47:f4:27:4c:38:0d:2e:1b:49:3b:52:f4:e8:88:83:2b:54:
#         28:d4:f2:35:52:b4:32:83:62:69:64:0c:91:9c:9f:97:ea:74:
#         16:fd:1f:11:06:9a:9b:f4

[p11-kit-object-v1]
label: "I.CA - Qualified Certification Authority, 09/2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtTaEy0KC8M9l4lSaWHMs
4+sVV1LwzyJYiIQNeCrv1HHm/YpGIdY/Z640ceankjQvIX7m23BK4OSC6KO8kZYA
3zopOz6GFCOKV2PvLukbc+c2imF6kLHEv6qNA8WxhPbR3xKwlHDwB2yhWzo7V3QV
gDRG83sugqQntKYC3LnlTGbJpNP+Az72gpO9AHUn/IBhFk4ksc8lYS2L9GCy9Csm
dKSBP78p9w8Lx7vDLqkDgt1/zBrcUWmSSb7AE/BPEeMryQV1IdI6nlGnBhWkXOYf
6GSdayJw86btuxC7viDKNrbp44HjQRaSxnp6O3eto1x4DfiYdw/YbJFe7EjkxSQB
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "I.CA - Qualified Certification Authority, 09/2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10500000 (0xa037a0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CZ, CN = "I.CA - Qualified Certification Authority, 09/2009", O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s.", OU = I.CA - Accredited Provider of Certification Services
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Sep  1 00:00:00 2019 GMT
#        Subject: C = CZ, CN = "I.CA - Qualified Certification Authority, 09/2009", O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s.", OU = I.CA - Accredited Provider of Certification Services
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b5:36:84:cb:42:82:f0:cf:65:e2:54:9a:58:73:
#                    2c:e3:eb:15:57:52:f0:cf:22:58:88:84:0d:78:2a:
#                    ef:d4:71:e6:fd:8a:46:21:d6:3f:67:ae:34:71:e6:
#                    a7:92:34:2f:21:7e:e6:db:70:4a:e0:e4:82:e8:a3:
#                    bc:91:96:00:df:3a:29:3b:3e:86:14:23:8a:57:63:
#                    ef:2e:e9:1b:73:e7:36:8a:61:7a:90:b1:c4:bf:aa:
#                    8d:03:c5:b1:84:f6:d1:df:12:b0:94:70:f0:07:6c:
#                    a1:5b:3a:3b:57:74:15:80:34:46:f3:7b:2e:82:a4:
#                    27:b4:a6:02:dc:b9:e5:4c:66:c9:a4:d3:fe:03:3e:
#                    f6:82:93:bd:00:75:27:fc:80:61:16:4e:24:b1:cf:
#                    25:61:2d:8b:f4:60:b2:f4:2b:26:74:a4:81:3f:bf:
#                    29:f7:0f:0b:c7:bb:c3:2e:a9:03:82:dd:7f:cc:1a:
#                    dc:51:69:92:49:be:c0:13:f0:4f:11:e3:2b:c9:05:
#                    75:21:d2:3a:9e:51:a7:06:15:a4:5c:e6:1f:e8:64:
#                    9d:6b:22:70:f3:a6:ed:bb:10:bb:be:20:ca:36:b6:
#                    e9:e3:81:e3:41:16:92:c6:7a:7a:3b:77:ad:a3:5c:
#                    78:0d:f8:98:77:0f:d8:6c:91:5e:ec:48:e4:c5:24:
#                    01:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  User Notice:
#                    Explicit Text: Tento certifikat je vydan jako kvalifikovany systemovy certifikat podle zakona c. 227/2000 Sb. v platnem zneni/This is qualified system certificate according to Czech Act No. 227/2000 Coll.
#
#            X509v3 Subject Key Identifier: 
#                79:CB:D0:23:E9:3A:67:70:91:74:4F:D3:51:E2:E0:20:FD:E1:28:FB
#    Signature Algorithm: sha256WithRSAEncryption
#         7d:95:a5:36:d7:88:58:68:11:cf:65:fb:5b:0d:2f:f6:74:81:
#         8b:59:d9:9d:49:b8:f5:39:96:c9:f0:b2:0f:04:cc:58:8c:fa:
#         04:32:ac:c0:47:be:2d:c3:de:93:8b:a6:96:45:ae:56:74:e5:
#         9a:4b:a2:3f:aa:26:c4:28:56:61:24:05:57:5f:99:a4:c7:67:
#         b0:18:52:c9:fb:41:a8:f9:e4:f1:9e:32:ce:9e:15:45:d9:5d:
#         ac:fb:9e:db:9b:c7:3c:8f:af:db:4b:a2:23:e8:3b:29:70:71:
#         18:a5:f8:e3:87:ae:21:13:6a:f4:69:2a:59:0e:31:b3:28:53:
#         3a:62:9a:ac:08:93:7c:a9:87:b6:5f:5a:a6:18:c2:d0:c2:f3:
#         5d:8c:6f:a7:3f:30:89:38:eb:94:13:2a:48:5a:de:79:e5:90:
#         cb:5e:a4:b9:17:b6:63:06:39:5f:c8:36:63:11:f4:b6:12:cf:
#         48:76:89:3c:6a:57:f9:eb:73:22:f7:fa:3e:05:ae:3a:c0:c6:
#         0e:92:4d:cf:d4:89:54:d1:1a:82:6a:37:5b:96:28:a8:00:22:
#         83:ce:d0:2a:b9:b3:8d:53:58:2e:65:5c:d5:f2:db:8c:01:25:
#         73:6c:97:8b:fc:60:01:ec:40:93:c1:ed:51:b8:aa:cb:62:d8:
#         25:30:a2:3d

[p11-kit-object-v1]
label: "I.CA - Qualified root certificate"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqwiIpPB08p/429Z3jTAZ
PqbFx4rFvd3mAq6OPVB1uK99Nqv+9e0IZ7QAipjBA2OIUfIbNol0Wi3IxILEP7mI
/Wz9Oh0VBUSVgBqmhsshdZCFXLBwAIc0qNEfSf1sOG1qrLhFn7wU12bUIeMnCo11
4FovCku0535zoyq9cPGRhgiPv5CEHIep9ZklJZTB424HwUsHW1T8NMtGN5zFoSDO
pqyHqYM8OE/AQPPp/5vXOXbkEyN1tf+hQq5chk/FTkO2mQtSUyCos8JM0wAsFdJZ
bAqfIbVzFnkehiXuGvuTnq1j8UzidjFeN+/80Kk25PkR6Xr8UOdBIwM0uH26Ds/d
UwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "I.CA - Qualified root certificate"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10300000 (0x9d2a60)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CZ, CN = I.CA - Qualified root certificate, O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s."
#        Validity
#            Not Before: Apr  1 00:00:00 2008 GMT
#            Not After : Apr  1 00:00:00 2018 GMT
#        Subject: C = CZ, CN = I.CA - Qualified root certificate, O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s."
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ab:08:88:a4:f0:74:f2:9f:f8:db:d6:77:8d:30:
#                    19:3e:a6:c5:c7:8a:c5:bd:dd:e6:02:ae:8e:3d:50:
#                    75:b8:af:7d:36:ab:fe:f5:ed:08:67:b4:00:8a:98:
#                    c1:03:63:88:51:f2:1b:36:89:74:5a:2d:c8:c4:82:
#                    c4:3f:b9:88:fd:6c:fd:3a:1d:15:05:44:95:80:1a:
#                    a6:86:cb:21:75:90:85:5c:b0:70:00:87:34:a8:d1:
#                    1f:49:fd:6c:38:6d:6a:ac:b8:45:9f:bc:14:d7:66:
#                    d4:21:e3:27:0a:8d:75:e0:5a:2f:0a:4b:b4:e7:7e:
#                    73:a3:2a:bd:70:f1:91:86:08:8f:bf:90:84:1c:87:
#                    a9:f5:99:25:25:94:c1:e3:6e:07:c1:4b:07:5b:54:
#                    fc:34:cb:46:37:9c:c5:a1:20:ce:a6:ac:87:a9:83:
#                    3c:38:4f:c0:40:f3:e9:ff:9b:d7:39:76:e4:13:23:
#                    75:b5:ff:a1:42:ae:5c:86:4f:c5:4e:43:b6:99:0b:
#                    52:53:20:a8:b3:c2:4c:d3:00:2c:15:d2:59:6c:0a:
#                    9f:21:b5:73:16:79:1e:86:25:ee:1a:fb:93:9e:ad:
#                    63:f1:4c:e2:76:31:5e:37:ef:fc:d0:a9:36:e4:f9:
#                    11:e9:7a:fc:50:e7:41:23:03:34:b8:7d:ba:0e:cf:
#                    dd:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.23624.1.4.0.1
#                  User Notice:
#                    Explicit Text: Tento certifikat je vydan jako kvalifikovany systemovy certifikat v souladu se zakonem 227/2000 Sb. v platnem zneni.
#
#            X509v3 Subject Key Identifier: 
#                68:9D:7E:D6:C4:25:39:FB:3B:A0:37:D6:4F:DC:8C:D1:7A:F0:56:59
#    Signature Algorithm: sha1WithRSAEncryption
#         72:f5:bc:06:8d:d2:2c:96:f2:82:db:58:7b:47:f0:40:64:e5:
#         2e:1b:ef:fa:e0:fa:d3:f1:72:48:01:44:f2:88:f4:de:98:81:
#         53:84:e7:7d:4e:47:e7:31:37:56:ae:b3:c1:30:6f:c6:ab:48:
#         83:f5:98:53:52:69:2a:28:c1:40:65:eb:65:e7:b4:30:0b:f0:
#         ab:0e:a5:12:25:bf:f4:50:5d:bf:a3:7e:e5:d1:74:f8:0a:28:
#         ae:42:9c:b0:14:52:c4:a0:60:5d:f7:45:17:42:ba:42:2d:9b:
#         92:fb:6e:94:b3:70:47:20:08:9d:53:f0:b0:ad:bd:a9:84:5a:
#         dd:07:2a:0c:cd:2b:6d:61:28:df:3b:92:28:ec:51:81:7f:51:
#         7c:8e:2e:7f:9d:e9:bc:c1:34:3d:8b:ad:81:ad:f1:1e:74:66:
#         43:3c:41:4d:b8:2e:33:4f:b1:3a:1e:db:12:df:36:8e:71:ff:
#         57:63:b1:d6:8f:b4:3d:86:12:6a:cf:42:30:b4:93:16:ea:99:
#         ea:02:5b:fe:08:ee:b2:4f:70:bf:33:00:e7:7a:4a:38:a1:f2:
#         48:91:a6:1e:cb:23:b2:38:9d:f0:2e:49:a2:c9:88:56:65:65:
#         8e:3a:67:45:8c:8c:0b:e2:aa:b1:4b:07:ff:b1:1f:ba:14:cf:
#         72:fa:a7:78

[p11-kit-object-v1]
label: "I.CA - Standard Certification Authority, 09/2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqAhWEj/7lIOpYHa9RYN+
ljQ8z0lO1s/8IOHhsQIUba3KflByKan9nHcmOGT3Q0E/FIIEokGQAueZ94NieESF
6J0FcNT+eKF0NMesO4UC3e5RW0Y7UzPWZ+zsFC7jxOWzdIMAzMaW5hyD2twYUGn6
3UPRjkD9FqS3jGWH4L6slx+wcesAZVcWzmyHr5eI8F33h006EQqiwkQUwBbyT/Xb
lUKvKbMpoINRbv48UVeTMCUmujtqhsj2C9FxP5y3OsjOZwmM+kAbemzeyBygxly7
YRiIPy5ZHVb8ekWcptk42cVgzLlBVbfKvE3utKfE9qAOvInFAZWxXN9P8MzCzUK7
XwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "I.CA - Standard Certification Authority, 09/2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1500000 (0x16e360)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CZ, CN = "I.CA - Standard Certification Authority, 09/2009", O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s.", OU = I.CA - Provider of Certification Services
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Sep  1 00:00:00 2019 GMT
#        Subject: C = CZ, CN = "I.CA - Standard Certification Authority, 09/2009", O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s.", OU = I.CA - Provider of Certification Services
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a8:08:56:12:3f:fb:94:83:a9:60:76:bd:45:83:
#                    7e:96:34:3c:cf:49:4e:d6:cf:fc:20:e1:e1:b1:02:
#                    14:6d:ad:ca:7e:50:72:29:a9:fd:9c:77:26:38:64:
#                    f7:43:41:3f:14:82:04:a2:41:90:02:e7:99:f7:83:
#                    62:78:44:85:e8:9d:05:70:d4:fe:78:a1:74:34:c7:
#                    ac:3b:85:02:dd:ee:51:5b:46:3b:53:33:d6:67:ec:
#                    ec:14:2e:e3:c4:e5:b3:74:83:00:cc:c6:96:e6:1c:
#                    83:da:dc:18:50:69:fa:dd:43:d1:8e:40:fd:16:a4:
#                    b7:8c:65:87:e0:be:ac:97:1f:b0:71:eb:00:65:57:
#                    16:ce:6c:87:af:97:88:f0:5d:f7:87:4d:3a:11:0a:
#                    a2:c2:44:14:c0:16:f2:4f:f5:db:95:42:af:29:b3:
#                    29:a0:83:51:6e:fe:3c:51:57:93:30:25:26:ba:3b:
#                    6a:86:c8:f6:0b:d1:71:3f:9c:b7:3a:c8:ce:67:09:
#                    8c:fa:40:1b:7a:6c:de:c8:1c:a0:c6:5c:bb:61:18:
#                    88:3f:2e:59:1d:56:fc:7a:45:9c:a6:d9:38:d9:c5:
#                    60:cc:b9:41:55:b7:ca:bc:4d:ee:b4:a7:c4:f6:a0:
#                    0e:bc:89:c5:01:95:b1:5c:df:4f:f0:cc:c2:cd:42:
#                    bb:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#
#            X509v3 Subject Key Identifier: 
#                C1:4C:38:94:D5:80:86:48:D9:22:90:2C:D3:EE:19:10:DB:67:47:87
#    Signature Algorithm: sha256WithRSAEncryption
#         a3:cb:d1:7d:74:fb:35:78:07:92:e8:ee:68:e9:e4:52:5e:f0:
#         d8:63:91:94:9f:68:fb:be:5b:ba:a9:e1:63:77:ab:50:76:c6:
#         e9:56:47:54:50:99:b4:25:8b:e8:c1:19:72:36:5a:09:be:e7:
#         d6:fa:c2:b6:32:3d:47:c3:50:4e:99:6e:93:36:c5:8a:51:77:
#         63:e0:49:33:ab:3c:1f:8a:e9:3b:d9:86:b5:28:c7:c2:75:71:
#         5b:66:6a:8d:58:0e:f3:75:90:b5:ad:2c:81:18:cd:9c:d8:c3:
#         cd:4f:f1:fb:69:20:97:c0:48:cf:13:45:12:b5:1c:f6:3e:83:
#         e2:4e:5e:dd:59:c6:6b:4a:e0:48:ce:d9:2a:9d:65:3a:bd:2f:
#         f0:f0:4c:bc:09:7a:cb:37:00:a4:3f:3b:0c:23:dd:e3:fb:c6:
#         42:a2:b4:b6:e6:d2:72:85:4c:df:b3:de:16:a7:7e:1d:e7:d4:
#         cf:ad:ab:b3:50:e4:70:8c:df:b0:70:90:c9:86:9e:ee:7c:84:
#         8b:64:1c:6b:e1:68:15:7e:c9:a5:74:e0:4e:f7:5a:ea:dd:12:
#         31:ab:91:40:85:71:0b:ce:29:28:f9:6e:38:14:5c:1d:fe:ec:
#         11:bf:4d:43:7e:9e:5f:38:bf:d7:ea:9e:93:2f:d0:1d:74:b5:
#         05:09:d3:22

[p11-kit-object-v1]
label: "I.CA - Standard root certificate"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0S0VxDlMaqHE5fMrtP2p
Fum4UY83kdmn05eQtnBph/WvWdJiQVjV85WNAhX6ZpzBIRTYH636Kmx0VqFi4fGw
rbj+0qPgkaG1rlOtjaQND1lglyr8oy5zNSNzzKimoRRtv4nDhDjzZFnMMfPg+Sdg
CjxBBW9aUvCPblJu7F6Ib+BAjCFHVyLpOG7m+vMktK6vL3M/gNUyj4zZhBnYYM7b
aY0+rwKvrt6vUPXP5rNhGMTg3fBOSmYNenMgt+TUk4ZHYdhPyjqOq8I/xiIXo12d
IMbFDiRpyKZ9ZgbNRuYz4UN0k/WDYtKwRSIBpHa961GTWGz6GqGfdYDa2ADi8YhN
PwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "I.CA - Standard root certificate"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1300000 (0x13d620)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CZ, CN = I.CA - Standard root certificate, O = Prvni certifikacni autorita a.s.
#        Validity
#            Not Before: Apr  1 00:00:00 2008 GMT
#            Not After : Apr  1 00:00:00 2018 GMT
#        Subject: C = CZ, CN = I.CA - Standard root certificate, O = Prvni certifikacni autorita a.s.
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d1:2d:15:c4:39:4c:6a:a1:c4:e5:f3:2b:b4:fd:
#                    a9:16:e9:b8:51:8f:37:91:d9:a7:d3:97:90:b6:70:
#                    69:87:f5:af:59:d2:62:41:58:d5:f3:95:8d:02:15:
#                    fa:66:9c:c1:21:14:d8:1f:ad:fa:2a:6c:74:56:a1:
#                    62:e1:f1:b0:ad:b8:fe:d2:a3:e0:91:a1:b5:ae:53:
#                    ad:8d:a4:0d:0f:59:60:97:2a:fc:a3:2e:73:35:23:
#                    73:cc:a8:a6:a1:14:6d:bf:89:c3:84:38:f3:64:59:
#                    cc:31:f3:e0:f9:27:60:0a:3c:41:05:6f:5a:52:f0:
#                    8f:6e:52:6e:ec:5e:88:6f:e0:40:8c:21:47:57:22:
#                    e9:38:6e:e6:fa:f3:24:b4:ae:af:2f:73:3f:80:d5:
#                    32:8f:8c:d9:84:19:d8:60:ce:db:69:8d:3e:af:02:
#                    af:ae:de:af:50:f5:cf:e6:b3:61:18:c4:e0:dd:f0:
#                    4e:4a:66:0d:7a:73:20:b7:e4:d4:93:86:47:61:d8:
#                    4f:ca:3a:8e:ab:c2:3f:c6:22:17:a3:5d:9d:20:c6:
#                    c5:0e:24:69:c8:a6:7d:66:06:cd:46:e6:33:e1:43:
#                    74:93:f5:83:62:d2:b0:45:22:01:a4:76:bd:eb:51:
#                    93:58:6c:fa:1a:a1:9f:75:80:da:d8:00:e2:f1:88:
#                    4d:3f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                EB:37:A4:BE:B9:6F:60:17:FB:D3:FF:2D:60:E1:04:1E:AF:CF:C6:D3
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.23624.1.1.0.1
#                  User Notice:
#                    Explicit Text: Tento certifikat je vydan jako kvalifikovany systemovy certifikat v souladu se zakonem 227/2000 Sb. v platnem zneni.
#
#    Signature Algorithm: sha1WithRSAEncryption
#         17:22:58:aa:2f:18:55:02:a1:4c:36:49:37:4b:9b:73:ba:ae:
#         63:36:0e:8b:2b:84:45:37:cc:fa:e0:67:f7:a0:73:6a:67:68:
#         56:bc:61:a8:34:9a:28:ba:66:2c:61:9b:8b:1c:f8:04:70:8c:
#         86:e3:41:ef:94:79:0d:dd:34:87:04:ee:b5:9e:31:6b:39:f4:
#         7e:58:e5:f2:b0:04:4d:a9:57:25:49:e0:0b:d5:e4:ec:7d:0e:
#         3e:3b:01:e0:8c:fc:52:90:93:e6:f2:b0:ab:f5:31:77:cc:d1:
#         c9:43:82:ab:0f:2e:b4:f9:98:ae:3e:e3:44:f4:a4:03:69:55:
#         da:5c:8e:db:c1:b9:ac:e4:98:d5:76:15:46:a1:2e:5a:0c:22:
#         60:a0:c2:eb:70:7f:71:03:b0:68:d3:31:64:cd:ea:cb:4b:55:
#         89:82:3e:5c:66:cb:1a:08:98:47:c2:de:d9:2e:38:4c:05:fd:
#         2d:8c:fa:e3:22:25:b9:92:fd:d6:b2:2d:ca:a2:34:9c:df:49:
#         ef:d5:84:01:2c:92:ff:05:41:0a:67:c6:42:6b:9e:cb:d8:9f:
#         90:bc:0d:0f:10:7d:c7:66:bd:ea:73:07:e0:18:ea:51:81:b4:
#         45:40:3c:0f:a1:22:37:15:01:85:a9:2e:7c:0e:5f:5d:ce:6a:
#         93:be:d9:be

[p11-kit-object-v1]
label: "I.CA Root CA/RSA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "I.CA Root CA/RSA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGfjCCBGagAwIBAgIEBfXhADANBgkqhkiG9w0BAQ0FADBwMQswCQYDVQQGEwJD
WjEtMCsGA1UECgwkUHJ2bsOtIGNlcnRpZmlrYcSNbsOtIGF1dG9yaXRhLCBhLnMu
MRkwFwYDVQQDDBBJLkNBIFJvb3QgQ0EvUlNBMRcwFQYDVQQFEw5OVFJDWi0yNjQz
OTM5NTAeFw0xNTA1MjcxMjIwMDBaFw00MDA1MjcxMjIwMDBaMHAxCzAJBgNVBAYT
AkNaMS0wKwYDVQQKDCRQcnZuw60gY2VydGlmaWthxI1uw60gYXV0b3JpdGEsIGEu
cy4xGTAXBgNVBAMMEEkuQ0EgUm9vdCBDQS9SU0ExFzAVBgNVBAUTDk5UUkNaLTI2
NDM5Mzk1MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAqj9VtYmvdhQG
KmQmlDgPX/bcBG8xRfUK/Tt/m3Jv+EB8/l39NJkFOJRJurHwvfiZXMBR+qoN++Zx
FYVjESp3BpGSBoiz/BThmUa0KYKuhIPutSaHbviLVUSdQNj/Klqq6H/SZeEUR8J8
Mf11YQobjIBKnrTiLhRHMe68BVGupn7PEbjFSL0FVMKE5Kdoa/i4+n4oybnP5CFP
ZcmIaKA42XWlETtMHG5LHtSGbMGtBUfTLJQNzIctGi3D1szehP7sa8DhIxOh05wY
fuBy11xVvEyzQDEbnEDNmuuADnGu12JuWhZPH/ZlRdGfeoVBGcJ6Os4hkuSUcEy7
qEHGxLs1zfU6nmOpjaBq0SBEqiq2SKVyw86e5FhIRwl/AkHzDRxtCXjw1xTRoFX8
EdZaGgB55TvmCMtSnqQJq2vnbJwqLyJ9+7lQst5Q0y8McrnWs7ezCObre6z0tMX2
wTIfpxkh9dxeN6rHH1ObQz7mnp/aDddWog9TaS1Vv+uGeBG/ptdaTfMOk3Pq/w7Q
54/xyLPw2BhzbKVyiPFwTEdUtpta0bwmN40Y35trLtsLJbOKsuOtBlxtu30XAwcB
ijCXiXRtSpR3Luvuz7Aetep29LUUOJXX1dkvP7KkJsxNo1yNCfNeDIUyzlZsAgjx
S6Orv8hUoAWFdOR1HXq8nDtgPWr9GZECAwEAAaOCAR4wggEaMA4GA1UdDwEB/wQE
AwIBBjAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBR2uQNI+9UYoaE3oO3MaIJM
UjQ2DTCB1wYDVR0gBIHPMIHMMIHJBgRVHSAAMIHAMIG9BggrBgEFBQcCAjCBsBqB
rVRlbnRvIGt2YWxpZmlrb3Zhbnkgc3lzdGVtb3Z5IGNlcnRpZmlrYXQgYnlsIHZ5
ZGFuIHBvZGxlIHpha29uYSAyMjcvMjAwMCBTYi4gdiBwbGF0bmVtIHpuZW5pL1Ro
aXMgcXVhbGlmaWVkIHN5c3RlbSBjZXJ0aWZpY2F0ZSB3YXMgaXNzdWVkIGFjY29y
ZGluZyB0byBBY3QgTm8uIDIyNy8yMDAwIENvbGwuMA0GCSqGSIb3DQEBDQUAA4IC
AQAZVAIlg9silosdlZ6Z2zTOk9AfLntcYCRqDNeFRHgfHEnyFPiDVBmmnTJmuCOm
O4Yqnzb8F/xQD2DGN/0kqPd5p46/2AcVVF5SDL74ptjIQUTx9hPcgxlbr91k9zMW
hw8VWvFkvNTnVT8yOIma88xIxWwxcZKaJhfCfEcCbTUnn/Ma4aodDXQRqZN8Qahv
u46cxQHkc/a6UC7mENS8bxOaOLlpRqUG1vJMbDerPPjbGsZV8Mj4HSFuLwBqseJt
WgQtfd0JT/bvFC/AEuoJGSsayqBxm7E6Mrz/QxjzfS/1LojpUbbxSZBM/ybHw1nd
dF/BUF04XJ1oVWlqtEB3yV8yKUhUk8GzISN2oVUwaSM/MUnEoc07dlmVWoK0rXG1
vqaRzIAVSi/OlK4YVUl1IES48wGbwXgsjhBMp2StrTrrTB1WLn+U1B7QCtXJVIEO
Hv73lPlhOj817tNgyftIsm7C2b56bpgFcACj0RfHxjSvbPVNj11SDN2Am3pt55jj
OYVcP4vMRKJANjKTElaQAp4+WWgCH1aIHq/B/g97VY2X2bumk0e6fPhHtjnXjPJA
bIecDP4t3dxx/A6RCKRDPYpX3d0H66eXUdC6hJmti3n+yQSQgxMr6ZcNZYnyES03
jku4u9J6OSrF3NBdDd0EJ5ifWP2OhrsFf/DtN5KQ3Zy9/A==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 100000000 (0x5f5e100)
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = CZ, O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s.", CN = I.CA Root CA/RSA, serialNumber = NTRCZ-26439395
#        Validity
#            Not Before: May 27 12:20:00 2015 GMT
#            Not After : May 27 12:20:00 2040 GMT
#        Subject: C = CZ, O = "Prvn\C3\AD certifika\C4\8Dn\C3\AD autorita, a.s.", CN = I.CA Root CA/RSA, serialNumber = NTRCZ-26439395
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:3f:55:b5:89:af:76:14:06:2a:64:26:94:38:
#                    0f:5f:f6:dc:04:6f:31:45:f5:0a:fd:3b:7f:9b:72:
#                    6f:f8:40:7c:fe:5d:fd:34:99:05:38:94:49:ba:b1:
#                    f0:bd:f8:99:5c:c0:51:fa:aa:0d:fb:e6:71:15:85:
#                    63:11:2a:77:06:91:92:06:88:b3:fc:14:e1:99:46:
#                    b4:29:82:ae:84:83:ee:b5:26:87:6e:f8:8b:55:44:
#                    9d:40:d8:ff:2a:5a:aa:e8:7f:d2:65:e1:14:47:c2:
#                    7c:31:fd:75:61:0a:1b:8c:80:4a:9e:b4:e2:2e:14:
#                    47:31:ee:bc:05:51:ae:a6:7e:cf:11:b8:c5:48:bd:
#                    05:54:c2:84:e4:a7:68:6b:f8:b8:fa:7e:28:c9:b9:
#                    cf:e4:21:4f:65:c9:88:68:a0:38:d9:75:a5:11:3b:
#                    4c:1c:6e:4b:1e:d4:86:6c:c1:ad:05:47:d3:2c:94:
#                    0d:cc:87:2d:1a:2d:c3:d6:cc:de:84:fe:ec:6b:c0:
#                    e1:23:13:a1:d3:9c:18:7e:e0:72:d7:5c:55:bc:4c:
#                    b3:40:31:1b:9c:40:cd:9a:eb:80:0e:71:ae:d7:62:
#                    6e:5a:16:4f:1f:f6:65:45:d1:9f:7a:85:41:19:c2:
#                    7a:3a:ce:21:92:e4:94:70:4c:bb:a8:41:c6:c4:bb:
#                    35:cd:f5:3a:9e:63:a9:8d:a0:6a:d1:20:44:aa:2a:
#                    b6:48:a5:72:c3:ce:9e:e4:58:48:47:09:7f:02:41:
#                    f3:0d:1c:6d:09:78:f0:d7:14:d1:a0:55:fc:11:d6:
#                    5a:1a:00:79:e5:3b:e6:08:cb:52:9e:a4:09:ab:6b:
#                    e7:6c:9c:2a:2f:22:7d:fb:b9:50:b2:de:50:d3:2f:
#                    0c:72:b9:d6:b3:b7:b3:08:e6:eb:7b:ac:f4:b4:c5:
#                    f6:c1:32:1f:a7:19:21:f5:dc:5e:37:aa:c7:1f:53:
#                    9b:43:3e:e6:9e:9f:da:0d:d7:56:a2:0f:53:69:2d:
#                    55:bf:eb:86:78:11:bf:a6:d7:5a:4d:f3:0e:93:73:
#                    ea:ff:0e:d0:e7:8f:f1:c8:b3:f0:d8:18:73:6c:a5:
#                    72:88:f1:70:4c:47:54:b6:9b:5a:d1:bc:26:37:8d:
#                    18:df:9b:6b:2e:db:0b:25:b3:8a:b2:e3:ad:06:5c:
#                    6d:bb:7d:17:03:07:01:8a:30:97:89:74:6d:4a:94:
#                    77:2e:eb:ee:cf:b0:1e:b5:ea:76:f4:b5:14:38:95:
#                    d7:d5:d9:2f:3f:b2:a4:26:cc:4d:a3:5c:8d:09:f3:
#                    5e:0c:85:32:ce:56:6c:02:08:f1:4b:a3:ab:bf:c8:
#                    54:a0:05:85:74:e4:75:1d:7a:bc:9c:3b:60:3d:6a:
#                    fd:19:91
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                76:B9:03:48:FB:D5:18:A1:A1:37:A0:ED:CC:68:82:4C:52:34:36:0D
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  User Notice:
#                    Explicit Text: Tento kvalifikovany systemovy certifikat byl vydan podle zakona 227/2000 Sb. v platnem zneni/This qualified system certificate was issued according to Act No. 227/2000 Coll.
#
#    Signature Algorithm: sha512WithRSAEncryption
#         19:54:02:25:83:db:22:96:8b:1d:95:9e:99:db:34:ce:93:d0:
#         1f:2e:7b:5c:60:24:6a:0c:d7:85:44:78:1f:1c:49:f2:14:f8:
#         83:54:19:a6:9d:32:66:b8:23:a6:3b:86:2a:9f:36:fc:17:fc:
#         50:0f:60:c6:37:fd:24:a8:f7:79:a7:8e:bf:d8:07:15:54:5e:
#         52:0c:be:f8:a6:d8:c8:41:44:f1:f6:13:dc:83:19:5b:af:dd:
#         64:f7:33:16:87:0f:15:5a:f1:64:bc:d4:e7:55:3f:32:38:89:
#         9a:f3:cc:48:c5:6c:31:71:92:9a:26:17:c2:7c:47:02:6d:35:
#         27:9f:f3:1a:e1:aa:1d:0d:74:11:a9:93:7c:41:a8:6f:bb:8e:
#         9c:c5:01:e4:73:f6:ba:50:2e:e6:10:d4:bc:6f:13:9a:38:b9:
#         69:46:a5:06:d6:f2:4c:6c:37:ab:3c:f8:db:1a:c6:55:f0:c8:
#         f8:1d:21:6e:2f:00:6a:b1:e2:6d:5a:04:2d:7d:dd:09:4f:f6:
#         ef:14:2f:c0:12:ea:09:19:2b:1a:ca:a0:71:9b:b1:3a:32:bc:
#         ff:43:18:f3:7d:2f:f5:2e:88:e9:51:b6:f1:49:90:4c:ff:26:
#         c7:c3:59:dd:74:5f:c1:50:5d:38:5c:9d:68:55:69:6a:b4:40:
#         77:c9:5f:32:29:48:54:93:c1:b3:21:23:76:a1:55:30:69:23:
#         3f:31:49:c4:a1:cd:3b:76:59:95:5a:82:b4:ad:71:b5:be:a6:
#         91:cc:80:15:4a:2f:ce:94:ae:18:55:49:75:20:44:b8:f3:01:
#         9b:c1:78:2c:8e:10:4c:a7:64:ad:ad:3a:eb:4c:1d:56:2e:7f:
#         94:d4:1e:d0:0a:d5:c9:54:81:0e:1e:fe:f7:94:f9:61:3a:3f:
#         35:ee:d3:60:c9:fb:48:b2:6e:c2:d9:be:7a:6e:98:05:70:00:
#         a3:d1:17:c7:c6:34:af:6c:f5:4d:8f:5d:52:0c:dd:80:9b:7a:
#         6d:e7:98:e3:39:85:5c:3f:8b:cc:44:a2:40:36:32:93:12:56:
#         90:02:9e:3e:59:68:02:1f:56:88:1e:af:c1:fe:0f:7b:55:8d:
#         97:d9:bb:a6:93:47:ba:7c:f8:47:b6:39:d7:8c:f2:40:6c:87:
#         9c:0c:fe:2d:dd:dc:71:fc:0e:91:08:a4:43:3d:8a:57:dd:dd:
#         07:eb:a7:97:51:d0:ba:84:99:ad:8b:79:fe:c9:04:90:83:13:
#         2b:e9:97:0d:65:89:f2:11:2d:37:8e:4b:b8:bb:d2:7a:39:2a:
#         c5:dc:d0:5d:0d:dd:04:27:98:9f:58:fd:8e:86:bb:05:7f:f0:
#         ed:37:92:90:dd:9c:bd:fc

[p11-kit-object-v1]
label: "IGC/A"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsh/R0GLFMzvABIaIs9z4
iPf930Pfeo2aSVz2TqrMHLmh6yeJ8kbpO0px1R2OLc/mratjUMdUC24SyZA2xtgv
2pGqaMVy/hcKshd+ebUyiHDKcMCWSo7kVc0dJ5S/znIq7Fz5cyD+vfcuiWe4u0dz
EvfRNWk68gq5rv9GQkaiv6GFGvm/5P9JhfejcIYyHF2fYPepraX/z9E0+X1bF8bc
1g4oa8Ld8fUzaJ1O/Id8NhLWo4DoQw1VYZTqZDdH6nfK0LJYBcNdfrGoRpAxVs5w
KpayMLh35nnAvSk7/ZR3TL0gzUEl4C7HG7vupARB0l2tEmqKm0f7yd1GQOGdPDPQ
tQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IGC/A"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEAjCCAuqgAwIBAgIFORFFEJQwDQYJKoZIhvcNAQEFBQAwgYUxCzAJBgNVBAYT
AkZSMQ8wDQYDVQQIEwZGcmFuY2UxDjAMBgNVBAcTBVBhcmlzMRAwDgYDVQQKEwdQ
TS9TR0ROMQ4wDAYDVQQLEwVEQ1NTSTEOMAwGA1UEAxMFSUdDL0ExIzAhBgkqhkiG
9w0BCQEWFGlnY2FAc2dkbi5wbS5nb3V2LmZyMB4XDTAyMTIxMzE0MjkyM1oXDTIw
MTAxNzE0MjkyMlowgYUxCzAJBgNVBAYTAkZSMQ8wDQYDVQQIEwZGcmFuY2UxDjAM
BgNVBAcTBVBhcmlzMRAwDgYDVQQKEwdQTS9TR0ROMQ4wDAYDVQQLEwVEQ1NTSTEO
MAwGA1UEAxMFSUdDL0ExIzAhBgkqhkiG9w0BCQEWFGlnY2FAc2dkbi5wbS5nb3V2
LmZyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsh/R0GLFMzvABIaI
s9z4iPf930Pfeo2aSVz2TqrMHLmh6yeJ8kbpO0px1R2OLc/mratjUMdUC24SyZA2
xtgv2pGqaMVy/hcKshd+ebUyiHDKcMCWSo7kVc0dJ5S/znIq7Fz5cyD+vfcuiWe4
u0dzEvfRNWk68gq5rv9GQkaiv6GFGvm/5P9JhfejcIYyHF2fYPepraX/z9E0+X1b
F8bc1g4oa8Ld8fUzaJ1O/Id8NhLWo4DoQw1VYZTqZDdH6nfK0LJYBcNdfrGoRpAx
Vs5wKpayMLh35nnAvSk7/ZR3TL0gzUEl4C7HG7vupARB0l2tEmqKm0f7yd1GQOGd
PDPQtQIDAQABo3cwdTAPBgNVHRMBAf8EBTADAQH/MAsGA1UdDwQEAwIBRjAVBgNV
HSAEDjAMMAoGCCqBegF5AQEBMB0GA1UdDgQWBBSjBS8YYFDCiQrdKyFP/45OqDAx
NjAfBgNVHSMEGDAWgBSjBS8YYFDCiQrdKyFP/45OqDAxNjANBgkqhkiG9w0BAQUF
AAOCAQEABdwm2Pp3FURo/C9mOnTgXeQp/wYHE4RKq89toB9RlPhJy3Q2FLwV3duJ
L92PoF189RLrn544pEfMs5bZvpwlqwN+Mw+VgQ39FuCIvjfwbF3QMZsyK10XZZOY
YLxuj7GoPB7ZHPOpJkL5ZB3C55L29B5aqhlSXa/oovdgoPaN8In1buAKBQGVyYsg
Crpa/JosPL3Dt8ldeCUFP1YUmwza+zpI/pdpXsoQhvdOlgQITeywvl3cO45Pwf2a
NjSaTFR+FwNIlQgRHAdvhQh+XU3Endv7rs6y0bO4g2wdsrN58dhwmX7wEwLOXt1R
0982gaEbeC9xs/FZTEYYKKuF0mBWWg==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 245102874772 (0x3911451094)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = FR, ST = France, L = Paris, O = PM/SGDN, OU = DCSSI, CN = IGC/A, emailAddress = igca@sgdn.pm.gouv.fr
#        Validity
#            Not Before: Dec 13 14:29:23 2002 GMT
#            Not After : Oct 17 14:29:22 2020 GMT
#        Subject: C = FR, ST = France, L = Paris, O = PM/SGDN, OU = DCSSI, CN = IGC/A, emailAddress = igca@sgdn.pm.gouv.fr
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b2:1f:d1:d0:62:c5:33:3b:c0:04:86:88:b3:dc:
#                    f8:88:f7:fd:df:43:df:7a:8d:9a:49:5c:f6:4e:aa:
#                    cc:1c:b9:a1:eb:27:89:f2:46:e9:3b:4a:71:d5:1d:
#                    8e:2d:cf:e6:ad:ab:63:50:c7:54:0b:6e:12:c9:90:
#                    36:c6:d8:2f:da:91:aa:68:c5:72:fe:17:0a:b2:17:
#                    7e:79:b5:32:88:70:ca:70:c0:96:4a:8e:e4:55:cd:
#                    1d:27:94:bf:ce:72:2a:ec:5c:f9:73:20:fe:bd:f7:
#                    2e:89:67:b8:bb:47:73:12:f7:d1:35:69:3a:f2:0a:
#                    b9:ae:ff:46:42:46:a2:bf:a1:85:1a:f9:bf:e4:ff:
#                    49:85:f7:a3:70:86:32:1c:5d:9f:60:f7:a9:ad:a5:
#                    ff:cf:d1:34:f9:7d:5b:17:c6:dc:d6:0e:28:6b:c2:
#                    dd:f1:f5:33:68:9d:4e:fc:87:7c:36:12:d6:a3:80:
#                    e8:43:0d:55:61:94:ea:64:37:47:ea:77:ca:d0:b2:
#                    58:05:c3:5d:7e:b1:a8:46:90:31:56:ce:70:2a:96:
#                    b2:30:b8:77:e6:79:c0:bd:29:3b:fd:94:77:4c:bd:
#                    20:cd:41:25:e0:2e:c7:1b:bb:ee:a4:04:41:d2:5d:
#                    ad:12:6a:8a:9b:47:fb:c9:dd:46:40:e1:9d:3c:33:
#                    d0:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.2.250.1.121.1.1.1
#
#            X509v3 Subject Key Identifier: 
#                A3:05:2F:18:60:50:C2:89:0A:DD:2B:21:4F:FF:8E:4E:A8:30:31:36
#            X509v3 Authority Key Identifier: 
#                keyid:A3:05:2F:18:60:50:C2:89:0A:DD:2B:21:4F:FF:8E:4E:A8:30:31:36
#
#    Signature Algorithm: sha1WithRSAEncryption
#         05:dc:26:d8:fa:77:15:44:68:fc:2f:66:3a:74:e0:5d:e4:29:
#         ff:06:07:13:84:4a:ab:cf:6d:a0:1f:51:94:f8:49:cb:74:36:
#         14:bc:15:dd:db:89:2f:dd:8f:a0:5d:7c:f5:12:eb:9f:9e:38:
#         a4:47:cc:b3:96:d9:be:9c:25:ab:03:7e:33:0f:95:81:0d:fd:
#         16:e0:88:be:37:f0:6c:5d:d0:31:9b:32:2b:5d:17:65:93:98:
#         60:bc:6e:8f:b1:a8:3c:1e:d9:1c:f3:a9:26:42:f9:64:1d:c2:
#         e7:92:f6:f4:1e:5a:aa:19:52:5d:af:e8:a2:f7:60:a0:f6:8d:
#         f0:89:f5:6e:e0:0a:05:01:95:c9:8b:20:0a:ba:5a:fc:9a:2c:
#         3c:bd:c3:b7:c9:5d:78:25:05:3f:56:14:9b:0c:da:fb:3a:48:
#         fe:97:69:5e:ca:10:86:f7:4e:96:04:08:4d:ec:b0:be:5d:dc:
#         3b:8e:4f:c1:fd:9a:36:34:9a:4c:54:7e:17:03:48:95:08:11:
#         1c:07:6f:85:08:7e:5d:4d:c4:9d:db:fb:ae:ce:b2:d1:b3:b8:
#         83:6c:1d:b2:b3:79:f1:d8:70:99:7e:f0:13:02:ce:5e:dd:51:
#         d3:df:36:81:a1:1b:78:2f:71:b3:f1:59:4c:46:18:28:ab:85:
#         d2:60:56:5a

[p11-kit-object-v1]
label: "IGC/A AC racine Etat francais"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IGC/A AC racine Etat francais"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:21:85:0c:b3:9c:6a:32:fa:be:67:1b:81:3f:a4:86:15:8f
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = FR, O = ANSSI, OU = 0002 130007669, CN = IGC/A AC racine Etat francais
#        Validity
#            Not Before: Jul  8 09:00:00 2011 GMT
#            Not After : Apr 15 09:00:00 2028 GMT
#        Subject: C = FR, O = ANSSI, OU = 0002 130007669, CN = IGC/A AC racine Etat francais
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:7c:28:9f:11:30:98:cd:6f:6e:2c:85:12:26:
#                    3b:08:06:ca:41:fd:52:4f:43:bd:c0:26:27:71:76:
#                    1a:59:96:d8:09:eb:07:aa:26:4e:4f:3e:4b:a1:e3:
#                    97:87:85:66:81:71:c9:b9:15:76:6f:77:50:18:93:
#                    10:2d:37:88:4d:17:b7:f3:45:bd:22:2e:b7:27:98:
#                    5b:c7:05:fd:bd:33:ed:a2:f5:53:1d:28:23:65:bf:
#                    40:35:6e:ce:6a:0b:c3:a9:f5:25:0c:ab:22:f0:b8:
#                    c0:c4:7d:37:0c:a3:62:7c:ee:b4:db:3d:21:39:a7:
#                    9c:89:e3:9b:a2:10:f8:8a:b6:4a:2f:2e:98:69:2b:
#                    6a:a0:86:da:f1:08:e5:be:4c:67:16:2d:25:61:f3:
#                    d5:0d:0b:17:44:47:09:d4:46:05:9d:0f:c0:88:4d:
#                    61:e4:24:c4:c7:68:09:af:ac:d2:af:b9:95:26:6f:
#                    80:04:fc:76:ac:aa:c7:23:b6:e4:06:91:55:44:ec:
#                    64:db:99:81:1c:d2:56:74:fd:d6:32:28:bb:cb:c9:
#                    37:0d:fb:69:6c:6f:ba:a3:6b:06:8c:6a:40:2e:17:
#                    3a:39:ea:d0:0c:df:5a:1c:ba:6f:a4:32:b0:b8:cc:
#                    3e:77:1b:d3:8b:1f:86:fa:ff:3e:3e:6f:5c:88:46:
#                    e7:e3:0f:fa:ab:1d:f3:7d:4b:f8:54:6e:4e:cc:dc:
#                    32:5a:63:78:a2:32:af:33:78:ea:43:e1:4c:7a:4d:
#                    d7:94:06:2d:e6:4f:a5:42:92:af:28:8a:4f:c3:15:
#                    ec:a9:6b:a9:df:e0:dd:13:02:bc:cc:7d:ff:2d:e6:
#                    07:a9:be:75:96:ea:42:5e:5b:1a:de:a2:33:b3:63:
#                    bd:ab:05:f9:8b:e6:bd:4d:d1:6d:56:9a:eb:89:3c:
#                    9f:c0:78:e4:be:25:70:06:c5:11:73:a0:c8:ca:14:
#                    cb:3a:d4:f2:9c:2a:3c:da:5f:17:33:d9:76:14:37:
#                    aa:49:87:65:d9:f4:d9:2e:19:5f:f9:a0:cd:a8:b9:
#                    41:32:6d:71:a6:a4:cb:f7:63:22:d0:29:e4:ba:81:
#                    1a:6a:29:1d:9a:a5:a4:5c:46:54:24:45:d4:c8:ed:
#                    7a:79:85:ec:84:77:6e:67:4d:64:0f:43:de:7a:83:
#                    a4:a7:d8:db:b5:53:4c:fe:62:c8:13:c3:62:36:a5:
#                    28:31:32:9b:b4:96:87:e2:99:c6:1f:56:bf:46:a3:
#                    a9:64:31:e5:d5:b1:4b:a8:66:cc:5b:a1:ff:16:fc:
#                    0a:38:2a:68:8f:77:25:26:ad:91:74:85:68:c8:7f:
#                    1a:e5:5a:14:b8:7d:0e:b7:23:31:c0:64:b7:05:2f:
#                    41:58:55
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.2.250.1.223.1.1.2
#
#            X509v3 Subject Key Identifier: 
#                9F:AA:D3:29:96:DF:00:E5:43:E0:F1:63:AC:DE:12:8E:C2:27:78:FA
#            X509v3 Authority Key Identifier: 
#                keyid:9F:AA:D3:29:96:DF:00:E5:43:E0:F1:63:AC:DE:12:8E:C2:27:78:FA
#
#    Signature Algorithm: sha256WithRSAEncryption
#         75:b5:75:d1:8e:36:66:9c:48:f7:85:0d:4e:05:bb:4d:9a:9c:
#         b4:0e:28:a2:04:bc:50:30:bb:f4:94:4c:98:90:85:ab:e0:52:
#         64:4f:d2:d2:2e:62:93:90:b0:85:0d:88:54:fb:c6:54:6c:9e:
#         eb:95:79:80:5e:a2:97:16:1f:f2:67:74:41:9c:55:f4:b7:6a:
#         9b:4a:16:86:bd:05:1f:66:80:70:7e:c9:d1:f5:2d:21:71:50:
#         39:a5:ad:88:a6:26:1c:8b:d7:25:1c:3a:d6:e3:f4:c2:0c:9f:
#         57:c1:64:c8:57:51:23:16:23:8d:0f:23:6a:56:4b:ff:fa:c6:
#         9f:35:93:c6:22:c0:65:f1:af:de:a9:6c:18:be:57:65:59:cd:
#         f4:23:55:64:21:d8:ed:95:61:69:33:72:6a:51:f6:9f:e5:95:
#         6d:8e:de:6b:73:27:13:94:5e:7e:97:48:c0:32:16:be:3d:37:
#         ed:d6:dc:8e:bc:5c:2d:fc:62:a8:cf:f6:90:f7:b1:8b:09:eb:
#         3a:24:63:0d:c8:96:45:d4:2f:77:48:42:f5:2d:62:e7:27:0b:
#         e0:11:86:19:dd:a7:10:f7:63:06:91:30:69:5a:75:f4:ac:f9:
#         a1:8d:97:c6:a0:ef:3a:1f:93:25:48:56:3a:1a:88:21:19:93:
#         c3:95:20:49:08:55:49:4d:a2:53:9c:99:9c:73:69:2e:a7:f5:
#         ca:b7:0e:25:ef:37:23:5f:90:d8:43:7e:ee:84:17:6a:27:5e:
#         7f:d2:2d:3f:ac:3e:af:30:a7:8d:91:c4:f4:8f:09:1d:f3:f7:
#         91:0e:e3:18:ba:dc:44:c9:7d:05:53:03:b7:6e:a0:f3:79:d7:
#         d1:1a:4f:d0:b8:6c:88:76:c1:80:98:55:85:53:61:cf:44:57:
#         4c:de:4e:0d:16:51:f1:3d:89:81:ae:7d:0b:ad:8a:b5:ee:56:
#         c4:c6:cc:11:0b:18:d4:fc:fd:79:fb:fe:04:11:9c:23:ef:76:
#         72:c7:8d:be:b9:1e:78:76:f2:9a:1c:ad:63:42:c7:d8:ed:6d:
#         61:90:c2:21:2a:0f:08:14:2d:20:43:25:7c:18:b5:b7:a0:a4:
#         7d:b9:a5:0c:19:fe:c9:ab:3d:e7:5b:de:af:fa:57:19:27:85:
#         e7:23:0e:f4:cd:0d:19:30:3e:8a:e4:c6:11:1e:f0:b4:7d:69:
#         63:9b:0e:96:86:90:e0:fb:03:6f:5b:59:3e:1d:21:f5:57:67:
#         56:26:f2:87:19:07:84:ba:2c:90:3a:c3:28:a4:05:5a:20:cd:
#         a9:5b:95:75:39:7f:22:50:0a:4e:7f:17:f7:b3:ac:d3:07:a6:
#         be:2d:52:0a:30:4c:78:10

[p11-kit-object-v1]
label: "ISRG Root X1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ISRG Root X1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            82:10:cf:b0:d2:40:e3:59:44:63:e0:bb:63:82:8b:00
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = Internet Security Research Group, CN = ISRG Root X1
#        Validity
#            Not Before: Jun  4 11:04:38 2015 GMT
#            Not After : Jun  4 11:04:38 2035 GMT
#        Subject: C = US, O = Internet Security Research Group, CN = ISRG Root X1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ad:e8:24:73:f4:14:37:f3:9b:9e:2b:57:28:1c:
#                    87:be:dc:b7:df:38:90:8c:6e:3c:e6:57:a0:78:f7:
#                    75:c2:a2:fe:f5:6a:6e:f6:00:4f:28:db:de:68:86:
#                    6c:44:93:b6:b1:63:fd:14:12:6b:bf:1f:d2:ea:31:
#                    9b:21:7e:d1:33:3c:ba:48:f5:dd:79:df:b3:b8:ff:
#                    12:f1:21:9a:4b:c1:8a:86:71:69:4a:66:66:6c:8f:
#                    7e:3c:70:bf:ad:29:22:06:f3:e4:c0:e6:80:ae:e2:
#                    4b:8f:b7:99:7e:94:03:9f:d3:47:97:7c:99:48:23:
#                    53:e8:38:ae:4f:0a:6f:83:2e:d1:49:57:8c:80:74:
#                    b6:da:2f:d0:38:8d:7b:03:70:21:1b:75:f2:30:3c:
#                    fa:8f:ae:dd:da:63:ab:eb:16:4f:c2:8e:11:4b:7e:
#                    cf:0b:e8:ff:b5:77:2e:f4:b2:7b:4a:e0:4c:12:25:
#                    0c:70:8d:03:29:a0:e1:53:24:ec:13:d9:ee:19:bf:
#                    10:b3:4a:8c:3f:89:a3:61:51:de:ac:87:07:94:f4:
#                    63:71:ec:2e:e2:6f:5b:98:81:e1:89:5c:34:79:6c:
#                    76:ef:3b:90:62:79:e6:db:a4:9a:2f:26:c5:d0:10:
#                    e1:0e:de:d9:10:8e:16:fb:b7:f7:a8:f7:c7:e5:02:
#                    07:98:8f:36:08:95:e7:e2:37:96:0d:36:75:9e:fb:
#                    0e:72:b1:1d:9b:bc:03:f9:49:05:d8:81:dd:05:b4:
#                    2a:d6:41:e9:ac:01:76:95:0a:0f:d8:df:d5:bd:12:
#                    1f:35:2f:28:17:6c:d2:98:c1:a8:09:64:77:6e:47:
#                    37:ba:ce:ac:59:5e:68:9d:7f:72:d6:89:c5:06:41:
#                    29:3e:59:3e:dd:26:f5:24:c9:11:a7:5a:a3:4c:40:
#                    1f:46:a1:99:b5:a7:3a:51:6e:86:3b:9e:7d:72:a7:
#                    12:05:78:59:ed:3e:51:78:15:0b:03:8f:8d:d0:2f:
#                    05:b2:3e:7b:4a:1c:4b:73:05:12:fc:c6:ea:e0:50:
#                    13:7c:43:93:74:b3:ca:74:e7:8e:1f:01:08:d0:30:
#                    d4:5b:71:36:b4:07:ba:c1:30:30:5c:48:b7:82:3b:
#                    98:a6:7d:60:8a:a2:a3:29:82:cc:ba:bd:83:04:1b:
#                    a2:83:03:41:a1:d6:05:f1:1b:c2:b6:f0:a8:7c:86:
#                    3b:46:a8:48:2a:88:dc:76:9a:76:bf:1f:6a:a5:3d:
#                    19:8f:eb:38:f3:64:de:c8:2b:0d:0a:28:ff:f7:db:
#                    e2:15:42:d4:22:d0:27:5d:e1:79:fe:18:e7:70:88:
#                    ad:4e:e6:d9:8b:3a:c6:dd:27:51:6e:ff:bc:64:f5:
#                    33:43:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                79:B4:59:E6:7B:B6:E5:E4:01:73:80:08:88:C8:1A:58:F6:E9:9B:6E
#    Signature Algorithm: sha256WithRSAEncryption
#         55:1f:58:a9:bc:b2:a8:50:d0:0c:b1:d8:1a:69:20:27:29:08:
#         ac:61:75:5c:8a:6e:f8:82:e5:69:2f:d5:f6:56:4b:b9:b8:73:
#         10:59:d3:21:97:7e:e7:4c:71:fb:b2:d2:60:ad:39:a8:0b:ea:
#         17:21:56:85:f1:50:0e:59:eb:ce:e0:59:e9:ba:c9:15:ef:86:
#         9d:8f:84:80:f6:e4:e9:91:90:dc:17:9b:62:1b:45:f0:66:95:
#         d2:7c:6f:c2:ea:3b:ef:1f:cf:cb:d6:ae:27:f1:a9:b0:c8:ae:
#         fd:7d:7e:9a:fa:22:04:eb:ff:d9:7f:ea:91:2b:22:b1:17:0e:
#         8f:f2:8a:34:5b:58:d8:fc:01:c9:54:b9:b8:26:cc:8a:88:33:
#         89:4c:2d:84:3c:82:df:ee:96:57:05:ba:2c:bb:f7:c4:b7:c7:
#         4e:3b:82:be:31:c8:22:73:73:92:d1:c2:80:a4:39:39:10:33:
#         23:82:4c:3c:9f:86:b2:55:98:1d:be:29:86:8c:22:9b:9e:e2:
#         6b:3b:57:3a:82:70:4d:dc:09:c7:89:cb:0a:07:4d:6c:e8:5d:
#         8e:c9:ef:ce:ab:c7:bb:b5:2b:4e:45:d6:4a:d0:26:cc:e5:72:
#         ca:08:6a:a5:95:e3:15:a1:f7:a4:ed:c9:2c:5f:a5:fb:ff:ac:
#         28:02:2e:be:d7:7b:bb:e3:71:7b:90:16:d3:07:5e:46:53:7c:
#         37:07:42:8c:d3:c4:96:9c:d5:99:b5:2a:e0:95:1a:80:48:ae:
#         4c:39:07:ce:cc:47:a4:52:95:2b:ba:b8:fb:ad:d2:33:53:7d:
#         e5:1d:4d:6d:d5:a1:b1:c7:42:6f:e6:40:27:35:5c:a3:28:b7:
#         07:8d:e7:8d:33:90:e7:23:9f:fb:50:9c:79:6c:46:d5:b4:15:
#         b3:96:6e:7e:9b:0c:96:3a:b8:52:2d:3f:d6:5b:e1:fb:08:c2:
#         84:fe:24:a8:a3:89:da:ac:6a:e1:18:2a:b1:a8:43:61:5b:d3:
#         1f:dc:3b:8d:76:f2:2d:e8:8d:75:df:17:33:6c:3d:53:fb:7b:
#         cb:41:5f:ff:dc:a2:d0:61:38:e1:96:b8:ac:5d:8b:37:d7:75:
#         d5:33:c0:99:11:ae:9d:41:c1:72:75:84:be:02:41:42:5f:67:
#         24:48:94:d1:9b:27:be:07:3f:b9:b8:4f:81:74:51:e1:7a:b7:
#         ed:9d:23:e2:be:e0:d5:28:04:13:3c:31:03:9e:dd:7a:6c:8f:
#         c6:07:18:c6:7f:de:47:8e:3f:28:9e:04:06:cf:a5:54:34:77:
#         bd:ec:89:9b:e9:17:43:df:5b:db:5f:fe:8e:1e:57:a2:cd:40:
#         9d:7e:62:22:da:de:18:27

[p11-kit-object-v1]
label: "ISRG Root X2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEzZvVn4CDCuwJSvMWSj5cz3es3mcFDR0H
ttwW+1qLFNvicWDEukWVEYmO6gbf9yoWHKS5xcUy4APgHoIYOIvXRdgKam7mAHf7
AlF9ItgKbppbd9/w+kHsOdx1ymgHDB/q
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ISRG Root X2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            41:d2:9d:d1:72:ea:ee:a7:80:c1:2c:6c:e9:2f:87:52
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = Internet Security Research Group, CN = ISRG Root X2
#        Validity
#            Not Before: Sep  4 00:00:00 2020 GMT
#            Not After : Sep 17 16:00:00 2040 GMT
#        Subject: C = US, O = Internet Security Research Group, CN = ISRG Root X2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:cd:9b:d5:9f:80:83:0a:ec:09:4a:f3:16:4a:3e:
#                    5c:cf:77:ac:de:67:05:0d:1d:07:b6:dc:16:fb:5a:
#                    8b:14:db:e2:71:60:c4:ba:45:95:11:89:8e:ea:06:
#                    df:f7:2a:16:1c:a4:b9:c5:c5:32:e0:03:e0:1e:82:
#                    18:38:8b:d7:45:d8:0a:6a:6e:e6:00:77:fb:02:51:
#                    7d:22:d8:0a:6e:9a:5b:77:df:f0:fa:41:ec:39:dc:
#                    75:ca:68:07:0c:1f:ea
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                7C:42:96:AE:DE:4B:48:3B:FA:92:F8:9E:8C:CF:6D:8B:A9:72:37:95
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:7b:79:4e:46:50:84:c2:44:87:46:1b:45:70:ff:
#         58:99:de:f4:fd:a4:d2:55:a6:20:2d:74:d6:34:bc:41:a3:50:
#         5f:01:27:56:b4:be:27:75:06:af:12:2e:75:98:8d:fc:02:31:
#         00:8b:f5:77:6c:d4:c8:65:aa:e0:0b:2c:ee:14:9d:27:37:a4:
#         f9:53:a5:51:e4:29:83:d7:f8:90:31:5b:42:9f:0a:f5:fe:ae:
#         00:68:e7:8c:49:0f:b6:6f:5b:5b:15:f2:e7

[p11-kit-object-v1]
label: "IdenTrust Commercial Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IdenTrust Commercial Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFYDCCA0igAwIBAgIQCgFCgAAAAUUjyES1AAAAAjANBgkqhkiG9w0BAQsFADBK
MQswCQYDVQQGEwJVUzESMBAGA1UEChMJSWRlblRydXN0MScwJQYDVQQDEx5JZGVu
VHJ1c3QgQ29tbWVyY2lhbCBSb290IENBIDEwHhcNMTQwMTE2MTgxMjIzWhcNMzQw
MTE2MTgxMjIzWjBKMQswCQYDVQQGEwJVUzESMBAGA1UEChMJSWRlblRydXN0MScw
JQYDVQQDEx5JZGVuVHJ1c3QgQ29tbWVyY2lhbCBSb290IENBIDEwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQCnUBneP5k91DNG8W9RYYKyqU+PZ4ldhNlT
3Qwo2dfw/66VQ3KZ+bVdfIrBQuExUHTRgQ18zZshq0PirK1ehm7zCYofWjK9ouuU
+ehcCuz/mNKvcbO0U59Oh++SvL3sTzIwiEsXXlfEU8L2ApeN2WIrvyQfYo3fw7gp
S0l4PJNgiCL8mdo2yMKi1CxUAGc1bnO/AljwpN3lsKImesrgNqUZFvX9t++uP0D1
bVoE/c40yiTcdCMbXTMTEl3EASX2MN0CXZ/g1Ue9tOsbobtJSdifWwLziuQkkORi
T0/Br4sOdBeo0XKIanoBScy0RnnGF7HamB4HWfp1IYVl3ZBWzvurpWCdxJ35UrCL
vYf5jysjCiN2O/cz4ckA82n5S6LgTrx+kzmEB/dEcH7+B1rlsazRGMzyNeVJSQjK
Vsk9+w8YfYs7wRPCTY/JTw436R+hDmrfYi7LNQZReSzIJTj0+kuniVyc0uMNOYZK
dHzVWYfCP04MXFL0PfdSgvHqo6z9STQaKPNBiDoT7uje/5kdX7rL6B7yuVBgwDHT
c+XvvqDtMwt0viAgxGds8AgDelWAf0ZOlqf0Hj7h9tgJ4TNkK2PXMl6f+cB7D3hv
l7yTmvmcEpB4eoCHFddydJxVdHixuuFucAS6T6C6aMN7/zHwcz09lCqxC0EOoP5N
iGVreTO01wIDAQABo0IwQDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB
/zAdBgNVHQ4EFgQU7UQZwNPwBovupHu+QucmVMiONnYwDQYJKoZIhvcNAQELBQAD
ggIBAA2ukDL2pkt8RHYZYR4nKM1eVO8lvOMIkPkp165oCOGUAFjvLi5+U1KMtlwH
6oi6mYtQlNeCgN9hCQCTrQ0U5s7B8jeUeLBfnLOic7iPBZM4zY0+sLj7wM+x8uwt
LRvM7Kqas6pgghstO8OEPVeKlh6cdbjTMM1gCIOQ045U8U1mwF10A0Cj7oV+wh93
nAbowacYXVKV7cndJZ5t+qntozo00Fl72u1Q8zW/7esUTTHHYPTa8Yec4kjixsU3
+wYQ+nVZZjFHKdp2mhzpgq7vmrlR94gjmmmVYjzlVYA211QC//G5Xc7UI2/YRYRK
W2XviQzdFKcgyxilJbQN+QHwotL0AMh0jqEqSI5l2xPE4iUXfeu+h1sXIFRRk0pT
AwvsXcoz7WL9RccvW9xYoIA55vrX/hMUpu09lEpCdNTDd1lzzY9GvlU47/rokTLq
l1gEIt44w8y8bckzOmoKaT+gyOpyj4xjhiO9bTyWnpXgSUyqorkqG5w2gXjtw+hG
4iZZRHUe2XWJUc0QhJ1hYMtd+ZciTY6Y5uN/9lu7rs3KSoFrXgvzUeF0K+l+J6fZ
mUlO+KWA2yUPHGNiiskzZ2s8EIPGrd6ozRaOjfAHN3Gf8qv8QfXBi+wAN10J5U6A
7/qxXDgGpRtK4dw4LTzcqx+QGtVKnO7RcGzM7vRX+Bi6hG6H
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:01:42:80:00:00:01:45:23:c8:44:b5:00:00:00:02
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = IdenTrust, CN = IdenTrust Commercial Root CA 1
#        Validity
#            Not Before: Jan 16 18:12:23 2014 GMT
#            Not After : Jan 16 18:12:23 2034 GMT
#        Subject: C = US, O = IdenTrust, CN = IdenTrust Commercial Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a7:50:19:de:3f:99:3d:d4:33:46:f1:6f:51:61:
#                    82:b2:a9:4f:8f:67:89:5d:84:d9:53:dd:0c:28:d9:
#                    d7:f0:ff:ae:95:43:72:99:f9:b5:5d:7c:8a:c1:42:
#                    e1:31:50:74:d1:81:0d:7c:cd:9b:21:ab:43:e2:ac:
#                    ad:5e:86:6e:f3:09:8a:1f:5a:32:bd:a2:eb:94:f9:
#                    e8:5c:0a:ec:ff:98:d2:af:71:b3:b4:53:9f:4e:87:
#                    ef:92:bc:bd:ec:4f:32:30:88:4b:17:5e:57:c4:53:
#                    c2:f6:02:97:8d:d9:62:2b:bf:24:1f:62:8d:df:c3:
#                    b8:29:4b:49:78:3c:93:60:88:22:fc:99:da:36:c8:
#                    c2:a2:d4:2c:54:00:67:35:6e:73:bf:02:58:f0:a4:
#                    dd:e5:b0:a2:26:7a:ca:e0:36:a5:19:16:f5:fd:b7:
#                    ef:ae:3f:40:f5:6d:5a:04:fd:ce:34:ca:24:dc:74:
#                    23:1b:5d:33:13:12:5d:c4:01:25:f6:30:dd:02:5d:
#                    9f:e0:d5:47:bd:b4:eb:1b:a1:bb:49:49:d8:9f:5b:
#                    02:f3:8a:e4:24:90:e4:62:4f:4f:c1:af:8b:0e:74:
#                    17:a8:d1:72:88:6a:7a:01:49:cc:b4:46:79:c6:17:
#                    b1:da:98:1e:07:59:fa:75:21:85:65:dd:90:56:ce:
#                    fb:ab:a5:60:9d:c4:9d:f9:52:b0:8b:bd:87:f9:8f:
#                    2b:23:0a:23:76:3b:f7:33:e1:c9:00:f3:69:f9:4b:
#                    a2:e0:4e:bc:7e:93:39:84:07:f7:44:70:7e:fe:07:
#                    5a:e5:b1:ac:d1:18:cc:f2:35:e5:49:49:08:ca:56:
#                    c9:3d:fb:0f:18:7d:8b:3b:c1:13:c2:4d:8f:c9:4f:
#                    0e:37:e9:1f:a1:0e:6a:df:62:2e:cb:35:06:51:79:
#                    2c:c8:25:38:f4:fa:4b:a7:89:5c:9c:d2:e3:0d:39:
#                    86:4a:74:7c:d5:59:87:c2:3f:4e:0c:5c:52:f4:3d:
#                    f7:52:82:f1:ea:a3:ac:fd:49:34:1a:28:f3:41:88:
#                    3a:13:ee:e8:de:ff:99:1d:5f:ba:cb:e8:1e:f2:b9:
#                    50:60:c0:31:d3:73:e5:ef:be:a0:ed:33:0b:74:be:
#                    20:20:c4:67:6c:f0:08:03:7a:55:80:7f:46:4e:96:
#                    a7:f4:1e:3e:e1:f6:d8:09:e1:33:64:2b:63:d7:32:
#                    5e:9f:f9:c0:7b:0f:78:6f:97:bc:93:9a:f9:9c:12:
#                    90:78:7a:80:87:15:d7:72:74:9c:55:74:78:b1:ba:
#                    e1:6e:70:04:ba:4f:a0:ba:68:c3:7b:ff:31:f0:73:
#                    3d:3d:94:2a:b1:0b:41:0e:a0:fe:4d:88:65:6b:79:
#                    33:b4:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                ED:44:19:C0:D3:F0:06:8B:EE:A4:7B:BE:42:E7:26:54:C8:8E:36:76
#    Signature Algorithm: sha256WithRSAEncryption
#         0d:ae:90:32:f6:a6:4b:7c:44:76:19:61:1e:27:28:cd:5e:54:
#         ef:25:bc:e3:08:90:f9:29:d7:ae:68:08:e1:94:00:58:ef:2e:
#         2e:7e:53:52:8c:b6:5c:07:ea:88:ba:99:8b:50:94:d7:82:80:
#         df:61:09:00:93:ad:0d:14:e6:ce:c1:f2:37:94:78:b0:5f:9c:
#         b3:a2:73:b8:8f:05:93:38:cd:8d:3e:b0:b8:fb:c0:cf:b1:f2:
#         ec:2d:2d:1b:cc:ec:aa:9a:b3:aa:60:82:1b:2d:3b:c3:84:3d:
#         57:8a:96:1e:9c:75:b8:d3:30:cd:60:08:83:90:d3:8e:54:f1:
#         4d:66:c0:5d:74:03:40:a3:ee:85:7e:c2:1f:77:9c:06:e8:c1:
#         a7:18:5d:52:95:ed:c9:dd:25:9e:6d:fa:a9:ed:a3:3a:34:d0:
#         59:7b:da:ed:50:f3:35:bf:ed:eb:14:4d:31:c7:60:f4:da:f1:
#         87:9c:e2:48:e2:c6:c5:37:fb:06:10:fa:75:59:66:31:47:29:
#         da:76:9a:1c:e9:82:ae:ef:9a:b9:51:f7:88:23:9a:69:95:62:
#         3c:e5:55:80:36:d7:54:02:ff:f1:b9:5d:ce:d4:23:6f:d8:45:
#         84:4a:5b:65:ef:89:0c:dd:14:a7:20:cb:18:a5:25:b4:0d:f9:
#         01:f0:a2:d2:f4:00:c8:74:8e:a1:2a:48:8e:65:db:13:c4:e2:
#         25:17:7d:eb:be:87:5b:17:20:54:51:93:4a:53:03:0b:ec:5d:
#         ca:33:ed:62:fd:45:c7:2f:5b:dc:58:a0:80:39:e6:fa:d7:fe:
#         13:14:a6:ed:3d:94:4a:42:74:d4:c3:77:59:73:cd:8f:46:be:
#         55:38:ef:fa:e8:91:32:ea:97:58:04:22:de:38:c3:cc:bc:6d:
#         c9:33:3a:6a:0a:69:3f:a0:c8:ea:72:8f:8c:63:86:23:bd:6d:
#         3c:96:9e:95:e0:49:4c:aa:a2:b9:2a:1b:9c:36:81:78:ed:c3:
#         e8:46:e2:26:59:44:75:1e:d9:75:89:51:cd:10:84:9d:61:60:
#         cb:5d:f9:97:22:4d:8e:98:e6:e3:7f:f6:5b:bb:ae:cd:ca:4a:
#         81:6b:5e:0b:f3:51:e1:74:2b:e9:7e:27:a7:d9:99:49:4e:f8:
#         a5:80:db:25:0f:1c:63:62:8a:c9:33:67:6b:3c:10:83:c6:ad:
#         de:a8:cd:16:8e:8d:f0:07:37:71:9f:f2:ab:fc:41:f5:c1:8b:
#         ec:00:37:5d:09:e5:4e:80:ef:fa:b1:5c:38:06:a5:1b:4a:e1:
#         dc:38:2d:3c:dc:ab:1f:90:1a:d5:4a:9c:ee:d1:70:6c:cc:ee:
#         f4:57:f8:18:ba:84:6e:87

[p11-kit-object-v1]
label: "IdenTrust Public Sector Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IdenTrust Public Sector Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:01:42:80:00:00:01:45:23:cf:46:7c:00:00:00:02
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = IdenTrust, CN = IdenTrust Public Sector Root CA 1
#        Validity
#            Not Before: Jan 16 17:53:32 2014 GMT
#            Not After : Jan 16 17:53:32 2034 GMT
#        Subject: C = US, O = IdenTrust, CN = IdenTrust Public Sector Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:22:94:fc:a4:48:af:e8:47:6b:0a:fb:27:76:
#                    e4:f2:3f:8a:3b:7a:4a:2c:31:2a:8c:8d:b0:a9:c3:
#                    31:6b:a8:77:76:84:26:b6:ac:81:42:0d:08:eb:55:
#                    58:bb:7a:f8:bc:65:7d:f2:a0:6d:8b:a8:47:e9:62:
#                    76:1e:11:ee:08:14:d1:b2:44:16:f4:ea:d0:fa:1e:
#                    2f:5e:db:cb:73:41:ae:bc:00:b0:4a:2b:40:b2:ac:
#                    e1:3b:4b:c2:2d:9d:e4:a1:9b:ec:1a:3a:1e:f0:08:
#                    b3:d0:e4:24:35:07:9f:9c:b4:c9:52:6d:db:07:ca:
#                    8f:b5:5b:f0:83:f3:4f:c7:2d:a5:c8:ad:cb:95:20:
#                    a4:31:28:57:58:5a:e4:8d:1b:9a:ab:9e:0d:0c:f2:
#                    0a:33:39:22:39:0a:97:2e:f3:53:77:b9:44:45:fd:
#                    84:cb:36:20:81:59:2d:9a:6f:6d:48:48:61:ca:4c:
#                    df:53:d1:af:52:bc:44:9f:ab:2f:6b:83:72:ef:75:
#                    80:da:06:33:1b:5d:c8:da:63:c6:4d:cd:ac:66:31:
#                    cd:d1:de:3e:87:10:36:e1:b9:a4:7a:ef:60:50:b2:
#                    cb:ca:a6:56:e0:37:af:ab:34:13:39:25:e8:39:66:
#                    e4:98:7a:aa:12:98:9c:59:66:86:3e:ad:f1:b0:ca:
#                    3e:06:0f:7b:f0:11:4b:37:a0:44:6d:7b:cb:a8:8c:
#                    71:f4:d5:b5:91:36:cc:f0:15:c6:2b:de:51:17:b1:
#                    97:4c:50:3d:b1:95:59:7c:05:7d:2d:21:d5:00:bf:
#                    01:67:a2:5e:7b:a6:5c:f2:f7:22:f1:90:0d:93:db:
#                    aa:44:51:66:cc:7d:76:03:eb:6a:a8:2a:38:19:97:
#                    76:0d:6b:8a:61:f9:bc:f6:ee:76:fd:70:2b:dd:29:
#                    3c:f8:0a:1e:5b:42:1c:8b:56:2f:55:1b:1c:a1:2e:
#                    b5:c7:16:e6:f8:aa:3c:92:8e:69:b6:01:c1:b5:86:
#                    9d:89:0f:0b:38:94:54:e8:ea:dc:9e:3d:25:bc:53:
#                    26:ed:d5:ab:39:aa:c5:40:4c:54:ab:b2:b4:d9:d9:
#                    f8:d7:72:db:1c:bc:6d:bd:65:5f:ef:88:35:2a:66:
#                    2f:ee:f6:b3:65:f0:33:8d:7c:98:41:69:46:0f:43:
#                    1c:69:fa:9b:b5:d0:61:6a:cd:ca:4b:d9:4c:90:46:
#                    ab:15:59:a1:47:54:29:2e:83:28:5f:1c:c2:a2:ab:
#                    72:17:00:06:8e:45:ec:8b:e2:33:3d:7f:da:19:44:
#                    e4:62:72:c3:df:22:c6:f2:56:d4:dd:5f:95:72:ed:
#                    6d:5f:f7:48:03:5b:fd:c5:2a:a0:f6:73:23:84:10:
#                    1b:01:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E3:71:E0:9E:D8:A7:42:D9:DB:71:91:6B:94:93:EB:C3:A3:D1:14:A3
#    Signature Algorithm: sha256WithRSAEncryption
#         47:fa:dd:0a:b0:11:91:38:ad:4d:5d:f7:e5:0e:97:54:19:82:
#         48:87:54:8c:aa:64:99:d8:5a:fe:88:01:c5:58:a5:99:b1:23:
#         54:23:b7:6a:1d:20:57:e5:01:62:41:17:d3:09:db:75:cb:6e:
#         54:90:75:fe:1a:9f:81:0a:c2:dd:d7:f7:09:d0:5b:72:15:e4:
#         1e:09:6a:3d:33:f3:21:9a:e6:15:7e:ad:51:d5:0d:10:ed:7d:
#         42:c0:8f:ee:c0:9a:08:d5:41:d6:5c:0e:21:69:6e:80:61:0e:
#         15:c0:b8:cf:c5:49:12:52:cc:be:3a:cc:d4:2e:38:05:de:35:
#         fd:1f:6f:b8:80:68:98:3d:4d:a0:ca:40:65:d2:73:7c:f5:8b:
#         d9:0a:95:3f:d8:3f:23:6d:1a:d1:2a:24:19:d9:85:b3:17:ef:
#         78:6e:a9:58:d1:23:d3:c7:13:ed:72:25:7f:5d:b1:73:70:d0:
#         7f:06:97:09:84:29:80:61:1d:fa:5e:ff:73:ac:a0:e3:89:b8:
#         1c:71:15:c6:de:31:7f:12:dc:e1:6d:9b:af:e7:e8:9f:75:78:
#         4c:ab:46:3b:9a:ce:bf:05:18:5d:4d:15:3c:16:9a:19:50:04:
#         9a:b2:9a:6f:65:8b:52:5f:3c:58:04:28:25:c0:66:61:31:7e:
#         b9:e0:75:b9:1a:a8:81:d6:72:17:b3:c5:03:31:35:11:78:78:
#         a2:e0:e9:30:8c:7f:80:df:58:df:3c:ba:27:96:e2:80:34:6d:
#         e3:98:d3:64:27:ac:48:7e:28:77:5c:c6:25:61:25:f8:85:0c:
#         65:fa:c4:32:2f:a5:98:05:e4:f8:0b:67:16:16:c6:82:b8:32:
#         19:f9:f9:b9:79:dc:1f:cd:eb:af:ab:0e:dd:1b:db:45:e4:7a:
#         e7:02:e2:95:5d:fc:69:f0:53:69:61:95:75:79:0b:5e:55:e6:
#         38:1c:94:a9:59:33:9e:c8:71:74:79:7f:51:89:b6:c8:6a:b8:
#         30:c8:6a:38:c3:6e:9e:e1:37:16:ea:05:62:4c:5b:12:47:ed:
#         a7:b4:b3:58:56:c7:49:f3:7f:12:68:09:31:71:f0:6d:f8:4e:
#         47:fb:d6:85:ee:c5:58:40:19:a4:1d:a7:f9:4b:43:37:dc:68:
#         5a:4f:cf:eb:c2:64:74:de:b4:15:d9:f4:54:54:1a:2f:1c:d7:
#         97:71:54:90:8e:d9:20:9d:53:2b:7f:ab:8f:e2:ea:30:bc:50:
#         37:ef:f1:47:b5:7d:7c:2c:04:ec:68:9d:b4:49:44:10:f4:72:
#         4b:1c:64:e7:fc:e6:6b:90:dd:69:7d:69:fd:00:56:a5:b7:ac:
#         b6:ad:b7:ca:3e:01:ef:9c

[p11-kit-object-v1]
label: "InfoNotary CSP Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "InfoNotary CSP Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIHxDCCBaygAwIBAgIIGq+SbI+Tr2AwDQYJKoZIhvcNAQEFBQAwgZUxgZIwCQYD
VQQGDAJCRzAVBgNVBAoMDkluZm9Ob3RhcnkgUExDMBUGCgmSJomT8ixkARkWB3Jv
b3QtY2EwGgYDVQQDDBNJbmZvTm90YXJ5IENTUCBSb290MBoGA1UECwwTSW5mb05v
dGFyeSBDU1AgUm9vdDAfBgkqhkiG9w0BCQEWEmNzcEBpbmZvbm90YXJ5LmNvbTAi
GA8yMDA2MDMwNjE3MzMwNVoYDzIwMjYwMzA2MTczMzA1WjCBlTGBkjAJBgNVBAYM
AkJHMBUGA1UECgwOSW5mb05vdGFyeSBQTEMwFQYKCZImiZPyLGQBGRYHcm9vdC1j
YTAaBgNVBAMME0luZm9Ob3RhcnkgQ1NQIFJvb3QwGgYDVQQLDBNJbmZvTm90YXJ5
IENTUCBSb290MB8GCSqGSIb3DQEJARYSY3NwQGluZm9ub3RhcnkuY29tMIICIjAN
BgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAnM2kXh+kfgiCT4B2wSeMRxZgn3Os
yZF/LRBsO5RJnEIzX5TxgyEJkfeStw84RYuUB0qr/j82NVvR1VI4QkboR8dKUDPI
5OBztpCauqOIONMrQsBu36ITF/JPuefyId1l+qb9UsJgsstPN72vJ45pazJAU1n1
8jF2iAZtaJ8wvLeBHI5nY8MFZfcz9lmpq7OKRwsUE8c23SL7+EQ0NUEowIG6TrVx
E68DqEkKLqSbYXdrHSTSpfEt0Udegv9Ig7AVmEfedvtPTsC/VElmvE8B0Xw6Zf7F
rHBbxRUbcqV9pls7F8O+wz9dEn9nLXZHDIu/FiO1g3LNgM3ouq9eaDM41JDtbtLp
VgQkofm+bF7KniMgkiuaDUtN46JIj77tqg6Mvqk4cLkQfzJdgCdaA+DURzMlWnap
g9mYQO1/dQLv7mGRrDE+gNM0S/DCTjUwSV63Keh9IbD/KnmcNDEZZjMgYRovsILV
sWdTkA2dKpcobrdmPxp/psSaaJbmZlt6N99adxXg2eN8s7LQ1WjbPh1YH47KmHRj
v9R9Nmju0C+kKvKIL3fDEj+NqCUsBGlYpsu0OfGI0Kbels5zQkbTo/nx2I6KnW6K
wFJPRbdw/hx7PQ2W3PmQlm3GGKFCwrbc2SMfl5ObDxn5sLc/JXS9glPsDS9t1j9S
L9h20CW90Ln1vQ8CAwEAAaOCAhAwggIMMA4GA1UdDwEB/wQEAwIBBjBEBggrBgEF
BQcBAQQ4MDYwNAYIKwYBBQUHMAGGKGh0dHA6Ly9vY3NwLmluZm9ub3RhcnkuY29t
L3Jlc3BvbmRlci5jZ2kwVgYIKwYBBQUHAQsESjBIMEYGCCsGAQUFBzAFhjpsZGFw
Oi8vbGRhcC5pbmZvbm90YXJ5LmNvbS9kYz1yb290LWNhLGRjPWluZm9ub3Rhcnks
ZGM9Y29tMIGqBgNVHSAEgaIwgZ8wbwYJKwYBBAGBrQABMGIwOgYIKwYBBQUHAgEW
Lmh0dHA6Ly9yZXBvc2l0b3J5LmluZm9ub3RhcnkuY29tL2Nwcy9xY3BzLmh0bWww
JAYIKwYBBQUHAgIwGBoWSW5mb05vdGFyeSBDU1AgUm9vdCBDQTAsBgkrBgEEAYGt
AAAwHzAdBggrBgEFBQcCARYRaHR0cDovL3d3dy5jcmMuYmcwDwYDVR0TAQH/BAUw
AwEB/zB/BgNVHREEeDB2pHQwcjFwMAsGA1UEEQwEMTAwMDAMBgNVBAcMBVNvZmlh
MBMGA1UEFAwMKzM1OTI5ODc1NzE3MBsGBlUECmQBAQwRMTMxMjc2ODI3OkJVTFNU
QVQwIQYJKoZIhvcNAQkIDBQxNiBJdmFuIFZhc292IFN0cmVldDAdBgNVHQ4EFgQU
3dROZ0M/0+pi6NqJbo47bgu7lZ8wDQYJKoZIhvcNAQEFBQADggIBABib/A3B+HGs
1MwUtScJwVhKNEDmm2XK4PGLUj2Wfoke3qgV+t2ULoPGNl0bIak2Dlw9SYgMUyFd
H21JNm+cUOvbZM+Juq9erRREh2LvMHzAlt9wOcs7Ue4r/AgFh1bNMyXggBrgpucN
Q0wAI0NWog4ZVOKN0Q0WuVpvm3flHKmDiyjx4TJ2X0ewmjbqsm/dhjFY/gZpsMNg
pvvYKNQI3fFuThq9zbesviKHFkmxOADVjEMp5ylrKxJiWapD8LRyiDjWAl8f2iSS
jY18/B99OJBYCx8ctxy7NictWhzHMd20K529R6ExtwkR4s1vp270uKMpj/Ngv6cd
4E+XJSUKMEnH/no5RNTTZe+IXf/Z7lM5vDpEqDE7JZd7mr/R3Wvi1xJq+zK70diO
85azj5DqeFjBCtulJb6KAx/lktK8f6Ry5OtWeqn6fLjxoL8m/ko0zyWqZMS7e+0Y
5Uwsb0Fl7eC7PSx1VW/kFQbFS2yT9g9VzJN1hWEmA9LMlct6ECAnVnq/dVjc9Q2W
2UoHhNgimxDR1gZuFgcDs69546AXurhDCEKdPDsnzHwR1H4x82ZRAhFyOqPpcr2V
XaEVf0cTOZWyta728WF0MHjHZgHTsnCXCMkNJPREKnCmnS8SZAZuio0g437a8VS/
DRSsKb59f3+5a0UCUWcVWaIOISfJgmcx
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1922916560873434976 (0x1aaf926c8f93af60)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BG + O = InfoNotary PLC + DC = root-ca + CN = InfoNotary CSP Root + OU = InfoNotary CSP Root + emailAddress = csp@infonotary.com
#        Validity
#            Not Before: Mar  6 17:33:05 2006 GMT
#            Not After : Mar  6 17:33:05 2026 GMT
#        Subject: C = BG + O = InfoNotary PLC + DC = root-ca + CN = InfoNotary CSP Root + OU = InfoNotary CSP Root + emailAddress = csp@infonotary.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:9c:cd:a4:5e:1f:a4:7e:08:82:4f:80:76:c1:27:
#                    8c:47:16:60:9f:73:ac:c9:91:7f:2d:10:6c:3b:94:
#                    49:9c:42:33:5f:94:f1:83:21:09:91:f7:92:b7:0f:
#                    38:45:8b:94:07:4a:ab:fe:3f:36:35:5b:d1:d5:52:
#                    38:42:46:e8:47:c7:4a:50:33:c8:e4:e0:73:b6:90:
#                    9a:ba:a3:88:38:d3:2b:42:c0:6e:df:a2:13:17:f2:
#                    4f:b9:e7:f2:21:dd:65:fa:a6:fd:52:c2:60:b2:cb:
#                    4f:37:bd:af:27:8e:69:6b:32:40:53:59:f5:f2:31:
#                    76:88:06:6d:68:9f:30:bc:b7:81:1c:8e:67:63:c3:
#                    05:65:f7:33:f6:59:a9:ab:b3:8a:47:0b:14:13:c7:
#                    36:dd:22:fb:f8:44:34:35:41:28:c0:81:ba:4e:b5:
#                    71:13:af:03:a8:49:0a:2e:a4:9b:61:77:6b:1d:24:
#                    d2:a5:f1:2d:d1:47:5e:82:ff:48:83:b0:15:98:47:
#                    de:76:fb:4f:4e:c0:bf:54:49:66:bc:4f:01:d1:7c:
#                    3a:65:fe:c5:ac:70:5b:c5:15:1b:72:a5:7d:a6:5b:
#                    3b:17:c3:be:c3:3f:5d:12:7f:67:2d:76:47:0c:8b:
#                    bf:16:23:b5:83:72:cd:80:cd:e8:ba:af:5e:68:33:
#                    38:d4:90:ed:6e:d2:e9:56:04:24:a1:f9:be:6c:5e:
#                    ca:9e:23:20:92:2b:9a:0d:4b:4d:e3:a2:48:8f:be:
#                    ed:aa:0e:8c:be:a9:38:70:b9:10:7f:32:5d:80:27:
#                    5a:03:e0:d4:47:33:25:5a:76:a9:83:d9:98:40:ed:
#                    7f:75:02:ef:ee:61:91:ac:31:3e:80:d3:34:4b:f0:
#                    c2:4e:35:30:49:5e:b7:29:e8:7d:21:b0:ff:2a:79:
#                    9c:34:31:19:66:33:20:61:1a:2f:b0:82:d5:b1:67:
#                    53:90:0d:9d:2a:97:28:6e:b7:66:3f:1a:7f:a6:c4:
#                    9a:68:96:e6:66:5b:7a:37:df:5a:77:15:e0:d9:e3:
#                    7c:b3:b2:d0:d5:68:db:3e:1d:58:1f:8e:ca:98:74:
#                    63:bf:d4:7d:36:68:ee:d0:2f:a4:2a:f2:88:2f:77:
#                    c3:12:3f:8d:a8:25:2c:04:69:58:a6:cb:b4:39:f1:
#                    88:d0:a6:de:96:ce:73:42:46:d3:a3:f9:f1:d8:8e:
#                    8a:9d:6e:8a:c0:52:4f:45:b7:70:fe:1c:7b:3d:0d:
#                    96:dc:f9:90:96:6d:c6:18:a1:42:c2:b6:dc:d9:23:
#                    1f:97:93:9b:0f:19:f9:b0:b7:3f:25:74:bd:82:53:
#                    ec:0d:2f:6d:d6:3f:52:2f:d8:76:d0:25:bd:d0:b9:
#                    f5:bd:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Authority Information Access: 
#                OCSP - URI:http://ocsp.infonotary.com/responder.cgi
#
#            Subject Information Access: 
#                CA Repository - URI:ldap://ldap.infonotary.com/dc=root-ca,dc=infonotary,dc=com
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22144.1
#                  CPS: http://repository.infonotary.com/cps/qcps.html
#                  User Notice:
#                    Explicit Text: InfoNotary CSP Root CA
#                Policy: 1.3.6.1.4.1.22144.0
#                  CPS: http://www.crc.bg
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Alternative Name: 
#                DirName:/postalCode=1000/L=Sofia/telephoneNumber=+35929875717/2.5.4.10.100.1.1=131276827:BULSTAT/unstructuredAddress=16 Ivan Vasov Street
#            X509v3 Subject Key Identifier: 
#                DD:D4:4E:67:43:3F:D3:EA:62:E8:DA:89:6E:8E:3B:6E:0B:BB:95:9F
#    Signature Algorithm: sha1WithRSAEncryption
#         18:9b:fc:0d:c1:f8:71:ac:d4:cc:14:b5:27:09:c1:58:4a:34:
#         40:e6:9b:65:ca:e0:f1:8b:52:3d:96:7e:89:1e:de:a8:15:fa:
#         dd:94:2e:83:c6:36:5d:1b:21:a9:36:0e:5c:3d:49:88:0c:53:
#         21:5d:1f:6d:49:36:6f:9c:50:eb:db:64:cf:89:ba:af:5e:ad:
#         14:44:87:62:ef:30:7c:c0:96:df:70:39:cb:3b:51:ee:2b:fc:
#         08:05:87:56:cd:33:25:e0:80:1a:e0:a6:e7:0d:43:4c:00:23:
#         43:56:a2:0e:19:54:e2:8d:d1:0d:16:b9:5a:6f:9b:77:e5:1c:
#         a9:83:8b:28:f1:e1:32:76:5f:47:b0:9a:36:ea:b2:6f:dd:86:
#         31:58:fe:06:69:b0:c3:60:a6:fb:d8:28:d4:08:dd:f1:6e:4e:
#         1a:bd:cd:b7:ac:be:22:87:16:49:b1:38:00:d5:8c:43:29:e7:
#         29:6b:2b:12:62:59:aa:43:f0:b4:72:88:38:d6:02:5f:1f:da:
#         24:92:8d:8d:7c:fc:1f:7d:38:90:58:0b:1f:1c:b7:1c:bb:36:
#         27:2d:5a:1c:c7:31:dd:b4:2b:9d:bd:47:a1:31:b7:09:11:e2:
#         cd:6f:a7:6e:f4:b8:a3:29:8f:f3:60:bf:a7:1d:e0:4f:97:25:
#         25:0a:30:49:c7:fe:7a:39:44:d4:d3:65:ef:88:5d:ff:d9:ee:
#         53:39:bc:3a:44:a8:31:3b:25:97:7b:9a:bf:d1:dd:6b:e2:d7:
#         12:6a:fb:32:bb:d1:d8:8e:f3:96:b3:8f:90:ea:78:58:c1:0a:
#         db:a5:25:be:8a:03:1f:e5:92:d2:bc:7f:a4:72:e4:eb:56:7a:
#         a9:fa:7c:b8:f1:a0:bf:26:fe:4a:34:cf:25:aa:64:c4:bb:7b:
#         ed:18:e5:4c:2c:6f:41:65:ed:e0:bb:3d:2c:75:55:6f:e4:15:
#         06:c5:4b:6c:93:f6:0f:55:cc:93:75:85:61:26:03:d2:cc:95:
#         cb:7a:10:20:27:56:7a:bf:75:58:dc:f5:0d:96:d9:4a:07:84:
#         d8:22:9b:10:d1:d6:06:6e:16:07:03:b3:af:79:e3:a0:17:ba:
#         b8:43:08:42:9d:3c:3b:27:cc:7c:11:d4:7e:31:f3:66:51:02:
#         11:72:3a:a3:e9:72:bd:95:5d:a1:15:7f:47:13:39:95:b2:b5:
#         ae:f6:f1:61:74:30:78:c7:66:01:d3:b2:70:97:08:c9:0d:24:
#         f4:44:2a:70:a6:9d:2f:12:64:06:6e:8a:8d:20:e3:7e:da:f1:
#         54:bf:0d:14:ac:29:be:7d:7f:7f:b9:6b:45:02:51:67:15:59:
#         a2:0e:21:27:c9:82:67:31

[p11-kit-object-v1]
label: "Izenpe.com"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Izenpe.com"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            b0:b7:5a:16:48:5f:bf:e1:cb:f5:8b:d7:19:e6:7d
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ES, O = IZENPE S.A., CN = Izenpe.com
#        Validity
#            Not Before: Dec 13 13:08:28 2007 GMT
#            Not After : Dec 13 08:27:25 2037 GMT
#        Subject: C = ES, O = IZENPE S.A., CN = Izenpe.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c9:d3:7a:ca:0f:1e:ac:a7:86:e8:16:65:6a:b1:
#                    c2:1b:45:32:71:95:d9:fe:10:5b:cc:af:e7:a5:79:
#                    01:8f:89:c3:ca:f2:55:71:f7:77:be:77:94:f3:72:
#                    a4:2c:44:d8:9e:92:9b:14:3a:a1:e7:24:90:0a:0a:
#                    56:8e:c5:d8:26:94:e1:d9:48:e1:2d:3e:da:0a:72:
#                    dd:a3:99:15:da:81:a2:87:f4:7b:6e:26:77:89:58:
#                    ad:d6:eb:0c:b2:41:7a:73:6e:6d:db:7a:78:41:e9:
#                    08:88:12:7e:87:2e:66:11:63:6c:54:fb:3c:9d:72:
#                    c0:bc:2e:ff:c2:b7:dd:0d:76:e3:3a:d7:f7:b4:68:
#                    be:a2:f5:e3:81:6e:c1:46:6f:5d:8d:e0:4d:c6:54:
#                    55:89:1a:33:31:0a:b1:57:b9:a3:8a:98:c3:ec:3b:
#                    34:c5:95:41:69:7e:75:c2:3c:20:c5:61:ba:51:47:
#                    a0:20:90:93:a1:90:4b:f3:4e:7c:85:45:54:9a:d1:
#                    05:26:41:b0:b5:4d:1d:33:be:c4:03:c8:25:7c:c1:
#                    70:db:3b:f4:09:2d:54:27:48:ac:2f:e1:c4:ac:3e:
#                    c8:cb:92:4c:53:39:37:23:ec:d3:01:f9:e0:09:44:
#                    4d:4d:64:c0:e1:0d:5a:87:22:bc:ad:1b:a3:fe:26:
#                    b5:15:f3:a7:fc:84:19:e9:ec:a1:88:b4:44:69:84:
#                    83:f3:89:d1:74:06:a9:cc:0b:d6:c2:de:27:85:50:
#                    26:ca:17:b8:c9:7a:87:56:2c:1a:01:1e:6c:be:13:
#                    ad:10:ac:b5:24:f5:38:91:a1:d6:4b:da:f1:bb:d2:
#                    de:47:b5:f1:bc:81:f6:59:6b:cf:19:53:e9:8d:15:
#                    cb:4a:cb:a9:6f:44:e5:1b:41:cf:e1:86:a7:ca:d0:
#                    6a:9f:bc:4c:8d:06:33:5a:a2:85:e5:90:35:a0:62:
#                    5c:16:4e:f0:e3:a2:fa:03:1a:b4:2c:71:b3:58:2c:
#                    de:7b:0b:db:1a:0f:eb:de:21:1f:06:77:06:03:b0:
#                    c9:ef:99:fc:c0:b9:4f:0b:86:28:fe:d2:b9:ea:e3:
#                    da:a5:c3:47:69:12:e0:db:f0:f6:19:8b:ed:7b:70:
#                    d7:02:d6:ed:87:18:28:2c:04:24:4c:77:e4:48:8a:
#                    1a:c6:3b:9a:d4:0f:ca:fa:75:d2:01:40:5a:8d:79:
#                    bf:8b:cf:4b:cf:aa:16:c1:95:e4:ad:4c:8a:3e:17:
#                    91:d4:b1:62:e5:82:e5:80:04:a4:03:7e:8d:bf:da:
#                    7f:a2:0f:97:4f:0c:d3:0d:fb:d7:d1:e5:72:7e:1c:
#                    c8:77:ff:5b:9a:0f:b7:ae:05:46:e5:f1:a8:16:ec:
#                    47:a4:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:info@izenpe.com, DirName:/O=IZENPE S.A. - CIF A01337260-RMerc.Vitoria-Gasteiz T1055 F62 S8/street=Avda del Mediterraneo Etorbidea 14 - 01010 Vitoria-Gasteiz
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1D:1C:65:0E:A8:F2:25:7B:B4:91:CF:E4:B1:B1:E6:BD:55:74:6C:05
#    Signature Algorithm: sha256WithRSAEncryption
#         78:a6:0c:16:4a:9f:4c:88:3a:c0:cb:0e:a5:16:7d:9f:b9:48:
#         5f:18:8f:0d:62:36:f6:cd:19:6b:ac:ab:d5:f6:91:7d:ae:71:
#         f3:3f:b3:0e:78:85:9b:95:a4:27:21:47:42:4a:7c:48:3a:f5:
#         45:7c:b3:0c:8e:51:78:ac:95:13:de:c6:fd:7d:b8:1a:90:4c:
#         ab:92:03:c7:ed:42:01:ce:0f:d8:b1:fa:a2:92:e1:60:6d:ae:
#         7a:6b:09:aa:c6:29:ee:68:49:67:30:80:24:7a:31:16:39:5b:
#         7e:f1:1c:2e:dd:6c:09:ad:f2:31:c1:82:4e:b9:bb:f9:be:bf:
#         2a:85:3f:c0:40:a3:3a:59:fc:59:4b:3c:28:24:db:b4:15:75:
#         ae:0d:88:ba:2e:73:c0:bd:58:87:e5:42:f2:eb:5e:ee:1e:30:
#         22:99:cb:37:d1:c4:21:6c:81:ec:be:6d:26:e6:1c:e4:42:20:
#         9e:47:b0:ac:83:59:70:2c:35:d6:af:36:34:b4:cd:3b:f8:32:
#         a8:ef:e3:78:89:fb:8d:45:2c:da:9c:b8:7e:40:1c:61:e7:3e:
#         a2:92:2c:4b:f2:cd:fa:98:b6:29:ff:f3:f2:7b:a9:1f:2e:a0:
#         93:57:2b:de:85:03:f9:69:37:cb:9e:78:6a:05:b4:c5:31:78:
#         89:ec:7a:a7:85:e1:b9:7b:3c:de:be:1e:79:84:ce:9f:70:0e:
#         59:c2:35:2e:90:2a:31:d9:e4:45:7a:41:a4:2e:13:9b:34:0e:
#         66:7b:49:ab:64:97:d0:46:c3:79:9d:72:50:63:a6:98:5b:06:
#         bd:48:6d:d8:39:83:70:e8:35:f0:05:d1:aa:bc:e3:db:c8:02:
#         ea:7c:fd:82:da:c2:5b:52:35:ae:98:3a:ad:ba:35:93:23:a7:
#         1f:48:dd:35:46:98:b2:10:68:e4:a5:31:c2:0a:58:2e:19:81:
#         10:c9:50:75:fc:ea:5a:16:ce:11:d7:ee:ef:50:88:2d:61:ff:
#         3f:42:73:05:94:43:d5:8e:3c:4e:01:3a:19:a5:1f:46:4e:77:
#         d0:5d:e5:81:22:21:87:fe:94:7d:84:d8:93:ad:d6:68:43:48:
#         b2:db:eb:73:24:e7:91:7f:54:a4:b6:80:3e:9d:a3:3c:4c:72:
#         c2:57:c4:a0:d4:cc:38:27:ce:d5:06:9e:a2:48:d9:e9:9f:ce:
#         82:70:36:93:9a:3b:df:96:21:e3:59:b7:0c:da:91:37:f0:fd:
#         59:5a:b3:99:c8:69:6c:43:26:01:35:63:60:55:89:03:3a:75:
#         d8:ba:4a:d9:54:ff:ee:de:80:d8:2d:d1:38:d5:5e:2d:0b:98:
#         7d:3e:6c:db:fc:26:88:c7

[p11-kit-object-v1]
label: "Japanese Government"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAp23gdE6Hj6UG3mii24aZ
S2QNcfAKBZuOquHMLtJqO8F6tJdhjYq+xpqcBrSGUeQ3DnR4fl+Kf5Sk10cI/VBa
VuRorChzoHvpfxiSQE8tnfWuREhzNgaeZCw7NCPbXCbkcXmP1G55IrmTwcrNwVbt
iGrXoDkhBFcsovW8R0FPXjQilbUfKW1eSvNNcr5BViCH/OlQR9cwFO5cjFW6WY2H
/CPek9AEjP3vbb3QesmlOmpyM8ZKDQUXKi17safY1vC+9D/qDihtQWEjdnjDuGWk
81quzMKq2edY3rZ+nYVunyoKb58DKTCXKB28t89UKU5RMfkntigm/qJj5kEW8DOY
RwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Japanese Government"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 49 (0x31)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = JP, O = Japanese Government, OU = ApplicationCA
#        Validity
#            Not Before: Dec 12 15:00:00 2007 GMT
#            Not After : Dec 12 15:00:00 2017 GMT
#        Subject: C = JP, O = Japanese Government, OU = ApplicationCA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a7:6d:e0:74:4e:87:8f:a5:06:de:68:a2:db:86:
#                    99:4b:64:0d:71:f0:0a:05:9b:8e:aa:e1:cc:2e:d2:
#                    6a:3b:c1:7a:b4:97:61:8d:8a:be:c6:9a:9c:06:b4:
#                    86:51:e4:37:0e:74:78:7e:5f:8a:7f:94:a4:d7:47:
#                    08:fd:50:5a:56:e4:68:ac:28:73:a0:7b:e9:7f:18:
#                    92:40:4f:2d:9d:f5:ae:44:48:73:36:06:9e:64:2c:
#                    3b:34:23:db:5c:26:e4:71:79:8f:d4:6e:79:22:b9:
#                    93:c1:ca:cd:c1:56:ed:88:6a:d7:a0:39:21:04:57:
#                    2c:a2:f5:bc:47:41:4f:5e:34:22:95:b5:1f:29:6d:
#                    5e:4a:f3:4d:72:be:41:56:20:87:fc:e9:50:47:d7:
#                    30:14:ee:5c:8c:55:ba:59:8d:87:fc:23:de:93:d0:
#                    04:8c:fd:ef:6d:bd:d0:7a:c9:a5:3a:6a:72:33:c6:
#                    4a:0d:05:17:2a:2d:7b:b1:a7:d8:d6:f0:be:f4:3f:
#                    ea:0e:28:6d:41:61:23:76:78:c3:b8:65:a4:f3:5a:
#                    ae:cc:c2:aa:d9:e7:58:de:b6:7e:9d:85:6e:9f:2a:
#                    0a:6f:9f:03:29:30:97:28:1d:bc:b7:cf:54:29:4e:
#                    51:31:f9:27:b6:28:26:fe:a2:63:e6:41:16:f0:33:
#                    98:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                54:5A:CB:26:3F:71:CC:94:46:0D:96:53:EA:6B:48:D0:93:FE:42:75
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DirName:/C=JP/O=\xE6\x97\xA5\xE6\x9C\xAC\xE5\x9B\xBD\xE6\x94\xBF\xE5\xBA\x9C/OU=\xE3\x82\xA2\xE3\x83\x97\xE3\x83\xAA\xE3\x82\xB1\xE3\x83\xBC\xE3\x82\xB7\xE3\x83\xA7\xE3\x83\xB3CA
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         39:6a:44:76:77:38:3a:ec:a3:67:46:0f:f9:8b:06:a8:fb:6a:
#         90:31:ce:7e:ec:da:d1:89:7c:7a:eb:2e:0c:bd:99:32:e7:b0:
#         24:d6:c3:ff:f5:b2:88:09:87:2c:e3:54:e1:a3:a6:b2:08:0b:
#         c0:85:a8:c8:d2:9c:71:f6:1d:9f:60:fc:38:33:13:e1:9e:dc:
#         0b:5f:da:16:50:29:7b:2f:70:91:0f:99:ba:34:34:8d:95:74:
#         c5:7e:78:a9:66:5d:bd:ca:21:77:42:10:ac:66:26:3d:de:91:
#         ab:fd:15:f0:6f:ed:6c:5f:10:f8:f3:16:f6:03:8a:8f:a7:12:
#         11:0c:cb:fd:3f:79:c1:9c:fd:62:ee:a3:cf:54:0c:d1:2b:5f:
#         17:3e:e3:3e:bf:c0:2b:3e:09:9b:fe:88:a6:7e:b4:92:17:fc:
#         23:94:81:bd:6e:a7:c5:8c:c2:eb:11:45:db:f8:41:c9:96:76:
#         ea:70:5f:79:12:6b:e4:a3:07:5a:05:ef:27:49:cf:21:9f:8a:
#         4c:09:70:66:a9:26:c1:2b:11:4e:33:d2:0e:fc:d6:6c:d2:0e:
#         32:64:68:ff:ad:05:78:5f:03:1d:a8:e3:90:ac:24:e0:0f:40:
#         a7:4b:ae:8b:28:b7:82:ca:18:07:e6:b7:5b:74:e9:20:19:7f:
#         b2:1b:89:54

[p11-kit-object-v1]
label: "KEYNECTIS ROOT CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxv2zF4WhrSYblWk1IT2k
iPre22A2QBdpwhRj+7jZwnQVNy6c0CDNaY2EMqKFTBS0m/Ils1Qqgz8tvg/zO2TR
/6BQ73dPO07hPwtkhZq6WH7Sw2LTZCWi1LKXPHddYyozkvzNgg2bVJWH9bXrjM1b
0cowL8mIRrXNDRG0GI/u0aE+XRXoKM/fw5CbbMzRDEV3szrripAd6a9kaol7qT1D
dPrkZyKh+9xNxPViycoltMmAYDOp3XugAr+WJQpeyV8pe7QXgYttgRnQ2YNcBY9B
aRppQ4CfqK/g6YyRiycroiZgzQ/ypKMCg44YgcIXikMV+W3zHRCkWpxEYSMhetj7
0QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "KEYNECTIS ROOT CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIID5TCCAs2gAwIBAgISESG8J2xVR69YTu/UztYpsqKFMA0GCSqGSIb3DQEBCwUA
MEwxCzAJBgNVBAYTAkZSMRIwEAYDVQQKEwlLRVlORUNUSVMxDTALBgNVBAsTBFJP
T1QxGjAYBgNVBAMTEUtFWU5FQ1RJUyBST09UIENBMB4XDTA5MDUyNjAwMDAwMFoX
DTIwMDUyNjAwMDAwMFowTDELMAkGA1UEBhMCRlIxEjAQBgNVBAoTCUtFWU5FQ1RJ
UzENMAsGA1UECxMEUk9PVDEaMBgGA1UEAxMRS0VZTkVDVElTIFJPT1QgQ0EwggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDG/bMXhaGtJhuVaTUhPaSI+t7b
YDZAF2nCFGP7uNnCdBU3LpzQIM1pjYQyooVMFLSb8iWzVCqDPy2+D/M7ZNH/oFDv
d087TuE/C2SFmrpYftLDYtNkJaLUspc8d11jKjOS/M2CDZtUlYf1teuMzVvRyjAv
yYhGtc0NEbQYj+7RoT5dFegoz9/DkJtszNEMRXezOuuKkB3pr2RqiXupPUN0+uRn
IqH73E3E9WLJyiW0yYBgM6nde6ACv5YlCl7JXyl7tBeBi22BGdDZg1wFj0FpGmlD
gJ+or+DpjJGLJyuiJmDND/KkowKDjhiBwheKQxX5bfMdEKRanERhIyF62PvRAgMB
AAGjgcAwgb0wEgYDVR0TAQH/BAgwBgEB/wIBBDAOBgNVHQ8BAf8EBAMCAQYwVwYD
VR0fBFAwTjBMoEqgSIZGaHR0cDovL3RydXN0Y2VudGVyLWNybC5jZXJ0aWZpY2F0
Mi5jb20vS2V5bmVjdGlzL0tFWU5FQ1RJU19ST09UX0NBLmNybDAdBgNVHQ4EFgQU
77cjl9CokX+mz6YhwDSfzHdB4dAwHwYDVR0jBBgwFoAU77cjl9CokX+mz6YhwDSf
zHdB4dAwDQYJKoZIhvcNAQELBQADggEBABoxaZlCwuVAhaKfksNj1I8hOagZIf56
/MNNQPMr6EusW0xZk8bcfguvfF+VhWu9x2+6wb74xjpnS5PGBWk+JC3wG5HGPj/s
QhiTbAMkim75IGcrfG2rNMkqIjMN132P7tI2ZELINZpuGWHLjWfwaKfQJAXmwxe6
Ra58Q7WAeANNIHMF/EMQnTVpQnWUJYIrpjuQGN7Bqa/zLZW/lafPGJfhWeKirxoW
YQ33E3FTkzf9PK8AHWyLFK9Gloy2UnzMLU7N4elLCu6a/nqY5ym6G9ocutxrzQQO
JkCp63M8/lCoESdVvduOS+9PGO0V/72GmGbumiVxNGxQ8bJRy2adTSk=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:21:bc:27:6c:55:47:af:58:4e:ef:d4:ce:d6:29:b2:a2:85
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = FR, O = KEYNECTIS, OU = ROOT, CN = KEYNECTIS ROOT CA
#        Validity
#            Not Before: May 26 00:00:00 2009 GMT
#            Not After : May 26 00:00:00 2020 GMT
#        Subject: C = FR, O = KEYNECTIS, OU = ROOT, CN = KEYNECTIS ROOT CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c6:fd:b3:17:85:a1:ad:26:1b:95:69:35:21:3d:
#                    a4:88:fa:de:db:60:36:40:17:69:c2:14:63:fb:b8:
#                    d9:c2:74:15:37:2e:9c:d0:20:cd:69:8d:84:32:a2:
#                    85:4c:14:b4:9b:f2:25:b3:54:2a:83:3f:2d:be:0f:
#                    f3:3b:64:d1:ff:a0:50:ef:77:4f:3b:4e:e1:3f:0b:
#                    64:85:9a:ba:58:7e:d2:c3:62:d3:64:25:a2:d4:b2:
#                    97:3c:77:5d:63:2a:33:92:fc:cd:82:0d:9b:54:95:
#                    87:f5:b5:eb:8c:cd:5b:d1:ca:30:2f:c9:88:46:b5:
#                    cd:0d:11:b4:18:8f:ee:d1:a1:3e:5d:15:e8:28:cf:
#                    df:c3:90:9b:6c:cc:d1:0c:45:77:b3:3a:eb:8a:90:
#                    1d:e9:af:64:6a:89:7b:a9:3d:43:74:fa:e4:67:22:
#                    a1:fb:dc:4d:c4:f5:62:c9:ca:25:b4:c9:80:60:33:
#                    a9:dd:7b:a0:02:bf:96:25:0a:5e:c9:5f:29:7b:b4:
#                    17:81:8b:6d:81:19:d0:d9:83:5c:05:8f:41:69:1a:
#                    69:43:80:9f:a8:af:e0:e9:8c:91:8b:27:2b:a2:26:
#                    60:cd:0f:f2:a4:a3:02:83:8e:18:81:c2:17:8a:43:
#                    15:f9:6d:f3:1d:10:a4:5a:9c:44:61:23:21:7a:d8:
#                    fb:d1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://trustcenter-crl.certificat2.com/Keynectis/KEYNECTIS_ROOT_CA.crl
#
#            X509v3 Subject Key Identifier: 
#                EF:B7:23:97:D0:A8:91:7F:A6:CF:A6:21:C0:34:9F:CC:77:41:E1:D0
#            X509v3 Authority Key Identifier: 
#                keyid:EF:B7:23:97:D0:A8:91:7F:A6:CF:A6:21:C0:34:9F:CC:77:41:E1:D0
#
#    Signature Algorithm: sha256WithRSAEncryption
#         1a:31:69:99:42:c2:e5:40:85:a2:9f:92:c3:63:d4:8f:21:39:
#         a8:19:21:fe:7a:fc:c3:4d:40:f3:2b:e8:4b:ac:5b:4c:59:93:
#         c6:dc:7e:0b:af:7c:5f:95:85:6b:bd:c7:6f:ba:c1:be:f8:c6:
#         3a:67:4b:93:c6:05:69:3e:24:2d:f0:1b:91:c6:3e:3f:ec:42:
#         18:93:6c:03:24:8a:6e:f9:20:67:2b:7c:6d:ab:34:c9:2a:22:
#         33:0d:d7:7d:8f:ee:d2:36:64:42:c8:35:9a:6e:19:61:cb:8d:
#         67:f0:68:a7:d0:24:05:e6:c3:17:ba:45:ae:7c:43:b5:80:78:
#         03:4d:20:73:05:fc:43:10:9d:35:69:42:75:94:25:82:2b:a6:
#         3b:90:18:de:c1:a9:af:f3:2d:95:bf:95:a7:cf:18:97:e1:59:
#         e2:a2:af:1a:16:61:0d:f7:13:71:53:93:37:fd:3c:af:00:1d:
#         6c:8b:14:af:46:96:8c:b6:52:7c:cc:2d:4e:cd:e1:e9:4b:0a:
#         ee:9a:fe:7a:98:e7:29:ba:1b:da:1c:ba:dc:6b:cd:04:0e:26:
#         40:a9:eb:73:3c:fe:50:a8:11:27:55:bd:db:8e:4b:ef:4f:18:
#         ed:15:ff:bd:86:98:66:ee:9a:25:71:34:6c:50:f1:b2:51:cb:
#         66:9d:4d:29

[p11-kit-object-v1]
label: "KISA RootCA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAvATk+hM58DSWIGtsaLv6
23f/J/es7C/n/fB/bW+MKs0lCVsk9KFo/CjsySXirO3eyDOE9bClCTqnsUdIxcxP
jHmc+QZXfd3uOPbPFLKc6tPAXXdi8EcNuRpAU1xkcK8IWsD3z3X5bI1kKB4g/rcb
GdNaZoNy4rCbvdMlFQ0yb2Q3lIVGyHK+d9VuHygvx2nt54OJM1jT3qC/QOhDUO7c
TWu8peqmyGGO9cNkrwYV3CmLP3WMvHFE2/yttRcdbYmDz8Yzvb9Fov4Kn6MRXw+5
H5wawkbMnChmn3AmPC7fqoD+jMUECSVPzZNHPDfqAmeS/vwiJFys0izgXAEzisEZ
2wIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "KISA RootCA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 4 (0x4)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = KR, O = KISA, OU = Korea Certification Authority Central, CN = KISA RootCA 1
#        Validity
#            Not Before: Aug 24 08:05:46 2005 GMT
#            Not After : Aug 24 08:05:46 2025 GMT
#        Subject: C = KR, O = KISA, OU = Korea Certification Authority Central, CN = KISA RootCA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bc:04:e4:fa:13:39:f0:34:96:20:6b:6c:68:bb:
#                    fa:db:77:ff:27:f7:ac:ec:2f:e7:fd:f0:7f:6d:6f:
#                    8c:2a:cd:25:09:5b:24:f4:a1:68:fc:28:ec:c9:25:
#                    e2:ac:ed:de:c8:33:84:f5:b0:a5:09:3a:a7:b1:47:
#                    48:c5:cc:4f:8c:79:9c:f9:06:57:7d:dd:ee:38:f6:
#                    cf:14:b2:9c:ea:d3:c0:5d:77:62:f0:47:0d:b9:1a:
#                    40:53:5c:64:70:af:08:5a:c0:f7:cf:75:f9:6c:8d:
#                    64:28:1e:20:fe:b7:1b:19:d3:5a:66:83:72:e2:b0:
#                    9b:bd:d3:25:15:0d:32:6f:64:37:94:85:46:c8:72:
#                    be:77:d5:6e:1f:28:2f:c7:69:ed:e7:83:89:33:58:
#                    d3:de:a0:bf:40:e8:43:50:ee:dc:4d:6b:bc:a5:ea:
#                    a6:c8:61:8e:f5:c3:64:af:06:15:dc:29:8b:3f:75:
#                    8c:bc:71:44:db:fc:ad:b5:17:1d:6d:89:83:cf:c6:
#                    33:bd:bf:45:a2:fe:0a:9f:a3:11:5f:0f:b9:1f:9c:
#                    1a:c2:46:cc:9c:28:66:9f:70:26:3c:2e:df:aa:80:
#                    fe:8c:c5:04:09:25:4f:cd:93:47:3c:37:ea:02:67:
#                    92:fe:fc:22:24:5c:ac:d2:2c:e0:5c:01:33:8a:c1:
#                    19:db
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BF:B6:27:D8:03:5A:76:65:4C:61:01:41:56:31:E5:8B:7B:3A:D9:CC
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         13:af:51:0b:de:8a:6a:5b:e6:9a:0a:c8:b1:90:4a:4e:a1:02:
#         9d:cc:88:d2:ab:66:bd:3d:ec:bb:b1:42:95:6a:b2:5c:5a:ff:
#         a1:63:64:96:a9:68:15:7f:25:5e:8a:f8:a4:73:c1:80:8a:85:
#         0a:0e:52:e8:32:e7:45:f8:4e:65:80:91:99:74:43:e5:45:9d:
#         49:2a:f0:94:95:dd:e9:e1:30:d2:13:6e:c9:4e:b1:77:e5:04:
#         cf:ad:5a:1e:94:09:5a:d7:3c:08:1c:ae:7a:e9:14:32:c1:45:
#         ad:d2:26:48:72:ac:a8:41:da:f0:21:87:39:5e:df:fc:64:ff:
#         61:74:2a:9c:d9:9b:8b:5f:c2:37:93:d8:a3:37:2f:3b:93:6b:
#         b2:1b:07:a7:7f:09:50:ef:d3:3a:be:21:6b:8a:90:3b:27:4a:
#         51:4e:6b:9e:9c:87:9d:f8:78:90:31:ed:11:27:c6:a8:59:be:
#         fc:18:0b:fb:8e:7e:2e:42:e1:ed:e7:09:21:bd:b9:13:c5:56:
#         67:f4:26:a6:42:43:90:44:54:b4:71:9b:76:e4:1a:12:ac:1a:
#         28:00:df:9b:c1:d5:f8:db:5c:a3:f8:92:b1:bd:b4:d4:f9:50:
#         d9:00:02:4f:db:83:d0:11:4f:a4:42:56:61:3a:7e:13:32:d3:
#         84:1f:c9:ba

[p11-kit-object-v1]
label: "KISA RootCA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEA3rrtF2Wu0b1KPazbgHLM
WOHn4ZPazDB6z+8Lri2nQ6u/p0LPCFYIpEcdffqG79gwlyY0YTyADvjU65/8IjAb
oW0+40zSVU4WQDfC9gdu2we1pYyWgeKbXH6UYcjOhDyx+gDmctMJhXfp3F4hT7Tk
TvTiF6tQrxz/oTlYdVsSspa5jfBwYkhbVigqpYeRNrkeJPW5unu2UlFbF1pgBWyc
wubGjD756t08jP+J3kNwrB248XXNOMpTDUdoasY8GMq94bS+DvTQ49IT+rBRERHU
Qavo9DmO4TSETwuTqmo4/OXGeEeudhf6oYA3BgAVCP1rI476cg2V1ktisWjC3TSb
XQIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "KISA RootCA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFUjCCBDqgAwIBAgIBAjANBgkqhkiG9w0BAQUFADBkMQswCQYDVQQGEwJLUjEN
MAsGA1UEChMES0lTQTEuMCwGA1UECxMlS29yZWEgQ2VydGlmaWNhdGlvbiBBdXRo
b3JpdHkgQ2VudHJhbDEWMBQGA1UEAxMNS0lTQSBSb290Q0EgMzAeFw0wNDExMTkw
NjM5NTFaFw0xNDExMTkwNjM5NTFaMGQxCzAJBgNVBAYTAktSMQ0wCwYDVQQKEwRL
SVNBMS4wLAYDVQQLEyVLb3JlYSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSBDZW50
cmFsMRYwFAYDVQQDEw1LSVNBIFJvb3RDQSAzMIIBIDANBgkqhkiG9w0BAQEFAAOC
AQ0AMIIBCAKCAQEA3rrtF2Wu0b1KPazbgHLMWOHn4ZPazDB6z+8Lri2nQ6u/p0LP
CFYIpEcdffqG79gwlyY0YTyADvjU65/8IjAboW0+40zSVU4WQDfC9gdu2we1pYyW
geKbXH6UYcjOhDyx+gDmctMJhXfp3F4hT7TkTvTiF6tQrxz/oTlYdVsSspa5jfBw
YkhbVigqpYeRNrkeJPW5unu2UlFbF1pgBWycwubGjD756t08jP+J3kNwrB248XXN
OMpTDUdoasY8GMq94bS+DvTQ49IT+rBRERHUQavo9DmO4TSETwuTqmo4/OXGeEeu
dhf6oYA3BgAVCP1rI476cg2V1ktisWjC3TSbXQIBA6OCAg8wggILMB8GA1UdIwQY
MBaAFI+B8NqmzXQ8vmb0FWtGpP4GKMyqMB0GA1UdDgQWBBSPgfDaps10PL5m9BVr
RqT+BijMqjAOBgNVHQ8BAf8EBAMCAQYwggEuBgNVHSAEggElMIIBITCCAR0GBFUd
IAAwggETMDAGCCsGAQUFBwIBFiRodHRwOi8vd3d3LnJvb3RjYS5vci5rci9yY2Ev
Y3BzLmh0bWwwgd4GCCsGAQUFBwICMIHRHoHOx3QAIMd4yZ3BHLKUACCs9cd4x3jJ
ncEcx4WyyLLkACgAVABoAGkAcwAgAGMAZQByAHQAaQBmAGkAYwBhAHQAZQAgAGkA
cwAgAGEAYwBjAHIAZQBkAGkAdABlAGQAIAB1AG4AZABlAHIAIABFAGwAZQBjAHQA
cgBvAG4AaQBjACAAUwBpAGcAbgBhAHQAdQByAGUAIABBAGMAdAAgAG8AZgAgAHQA
aABlACAAUgBlAHAAdQBiAGwAaQBjACAAbwBmACAASwBvAHIAZQBhACkwMwYDVR0R
BCwwKqQoMCYxJDAiBgNVBAMMG+2VnOq1reygleuztOuztO2YuOynhO2dpeybkDAz
BgNVHRIELDAqpCgwJjEkMCIGA1UEAwwb7ZWc6rWt7KCV67O067O07Zi47KeE7Z2l
7JuQMA8GA1UdEwEB/wQFMAMBAf8wDAYDVR0kBAUwA4ABADANBgkqhkiG9w0BAQUF
AAOCAQEAz9b3Dv2wjG4FFY6oXCuyWtEeV6ZeGKqCEQj8mbdbp+PI0qLT+SQ09+Pk
rolUR9NpScmAwRHr4inH9gaLX7riXs+rw87P7pIl3J85Hg4D9N6QW6FwmVzHc07J
pHVJeyWhn4KSjU3sYcUMMqfHODiAVToqgx2cZHm5Dac1Smjvj/8F2LpOVmHY+Epw
mAiWk9hgxzrsX58dKzVPSBShmrtv7tIDhlPxEMcHVGJeNo7iHCsdF03m9VrvirqC
6HfZKBF+N4dKlArJQOk1pTr7ZD7yXxZ683bXzu4/RB1Fql8RqlMcOh9SUWJUD6OQ
Nc9Nb7rHviwJ8TX4Absk3TC8SA/u2Q==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = KR, O = KISA, OU = Korea Certification Authority Central, CN = KISA RootCA 3
#        Validity
#            Not Before: Nov 19 06:39:51 2004 GMT
#            Not After : Nov 19 06:39:51 2014 GMT
#        Subject: C = KR, O = KISA, OU = Korea Certification Authority Central, CN = KISA RootCA 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:de:ba:ed:17:65:ae:d1:bd:4a:3d:ac:db:80:72:
#                    cc:58:e1:e7:e1:93:da:cc:30:7a:cf:ef:0b:ae:2d:
#                    a7:43:ab:bf:a7:42:cf:08:56:08:a4:47:1d:7d:fa:
#                    86:ef:d8:30:97:26:34:61:3c:80:0e:f8:d4:eb:9f:
#                    fc:22:30:1b:a1:6d:3e:e3:4c:d2:55:4e:16:40:37:
#                    c2:f6:07:6e:db:07:b5:a5:8c:96:81:e2:9b:5c:7e:
#                    94:61:c8:ce:84:3c:b1:fa:00:e6:72:d3:09:85:77:
#                    e9:dc:5e:21:4f:b4:e4:4e:f4:e2:17:ab:50:af:1c:
#                    ff:a1:39:58:75:5b:12:b2:96:b9:8d:f0:70:62:48:
#                    5b:56:28:2a:a5:87:91:36:b9:1e:24:f5:b9:ba:7b:
#                    b6:52:51:5b:17:5a:60:05:6c:9c:c2:e6:c6:8c:3e:
#                    f9:ea:dd:3c:8c:ff:89:de:43:70:ac:1d:b8:f1:75:
#                    cd:38:ca:53:0d:47:68:6a:c6:3c:18:ca:bd:e1:b4:
#                    be:0e:f4:d0:e3:d2:13:fa:b0:51:11:11:d4:41:ab:
#                    e8:f4:39:8e:e1:34:84:4f:0b:93:aa:6a:38:fc:e5:
#                    c6:78:47:ae:76:17:fa:a1:80:37:06:00:15:08:fd:
#                    6b:23:8e:fa:72:0d:95:d6:4b:62:b1:68:c2:dd:34:
#                    9b:5d
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:8F:81:F0:DA:A6:CD:74:3C:BE:66:F4:15:6B:46:A4:FE:06:28:CC:AA
#
#            X509v3 Subject Key Identifier: 
#                8F:81:F0:DA:A6:CD:74:3C:BE:66:F4:15:6B:46:A4:FE:06:28:CC:AA
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.rootca.or.kr/rca/cps.html
#                  User Notice:
#                    Explicit Text: �t
#
#            X509v3 Subject Alternative Name: 
#                DirName:/CN=\xED\x95\x9C\xEA\xB5\xAD\xEC\xA0\x95\xEB\xB3\xB4\xEB\xB3\xB4\xED\x98\xB8\xEC\xA7\x84\xED\x9D\xA5\xEC\x9B\x90
#            X509v3 Issuer Alternative Name: 
#                DirName:/CN=\xED\x95\x9C\xEA\xB5\xAD\xEC\xA0\x95\xEB\xB3\xB4\xEB\xB3\xB4\xED\x98\xB8\xEC\xA7\x84\xED\x9D\xA5\xEC\x9B\x90
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Policy Constraints: 
#                Require Explicit Policy:0
#    Signature Algorithm: sha1WithRSAEncryption
#         cf:d6:f7:0e:fd:b0:8c:6e:05:15:8e:a8:5c:2b:b2:5a:d1:1e:
#         57:a6:5e:18:aa:82:11:08:fc:99:b7:5b:a7:e3:c8:d2:a2:d3:
#         f9:24:34:f7:e3:e4:ae:89:54:47:d3:69:49:c9:80:c1:11:eb:
#         e2:29:c7:f6:06:8b:5f:ba:e2:5e:cf:ab:c3:ce:cf:ee:92:25:
#         dc:9f:39:1e:0e:03:f4:de:90:5b:a1:70:99:5c:c7:73:4e:c9:
#         a4:75:49:7b:25:a1:9f:82:92:8d:4d:ec:61:c5:0c:32:a7:c7:
#         38:38:80:55:3a:2a:83:1d:9c:64:79:b9:0d:a7:35:4a:68:ef:
#         8f:ff:05:d8:ba:4e:56:61:d8:f8:4a:70:98:08:96:93:d8:60:
#         c7:3a:ec:5f:9f:1d:2b:35:4f:48:14:a1:9a:bb:6f:ee:d2:03:
#         86:53:f1:10:c7:07:54:62:5e:36:8e:e2:1c:2b:1d:17:4d:e6:
#         f5:5a:ef:8a:ba:82:e8:77:d9:28:11:7e:37:87:4a:94:0a:c9:
#         40:e9:35:a5:3a:fb:64:3e:f2:5f:16:7a:f3:76:d7:ce:ee:3f:
#         44:1d:45:aa:5f:11:aa:53:1c:3a:1f:52:51:62:54:0f:a3:90:
#         35:cf:4d:6f:ba:c7:be:2c:09:f1:35:f8:01:bb:24:dd:30:bc:
#         48:0f:ee:d9

[p11-kit-object-v1]
label: "LGPKI"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuTXGEPjbaNsHxEBMsB0e
NtzDQfbPVRVtCH9cxmhV5edX8ZZR5uFNeA9uQBVwO2X+Ed/n09ZYNTvhnwL8lFJG
LrOeYJsCnsmC0vbjrglPhES2YpsAUWi4Oq3sZNEyS+mURIO0Ds4hiWuwNsCYxkuc
wj5bYCoJMSstq0zesaD9WFbCgx0gvMSECYd7qJWXxiWOg+A+kw3Rx31zqaj8GQBA
LiK4ejNB9Xj9WnHngtlIiFzsqIWHLW2AiWcaab4QwFqO7Yh9Pm8sOGs3zkfYojEw
3n5TZWyLhlNBIGy9SKV+rwBaVhJYgdHciVn5te74TZrYRCmLeaf3IqrqfFy0Fogg
DQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "LGPKI"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 49 (0x31)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = JP, O = LGPKI, OU = Application CA G2
#        Validity
#            Not Before: Mar 31 15:00:00 2006 GMT
#            Not After : Mar 31 14:59:59 2016 GMT
#        Subject: C = JP, O = LGPKI, OU = Application CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b9:35:c6:10:f8:db:68:db:07:c4:40:4c:b0:1d:
#                    1e:36:dc:c3:41:f6:cf:55:15:6d:08:7f:5c:c6:68:
#                    55:e5:e7:57:f1:96:51:e6:e1:4d:78:0f:6e:40:15:
#                    70:3b:65:fe:11:df:e7:d3:d6:58:35:3b:e1:9f:02:
#                    fc:94:52:46:2e:b3:9e:60:9b:02:9e:c9:82:d2:f6:
#                    e3:ae:09:4f:84:44:b6:62:9b:00:51:68:b8:3a:ad:
#                    ec:64:d1:32:4b:e9:94:44:83:b4:0e:ce:21:89:6b:
#                    b0:36:c0:98:c6:4b:9c:c2:3e:5b:60:2a:09:31:2b:
#                    2d:ab:4c:de:b1:a0:fd:58:56:c2:83:1d:20:bc:c4:
#                    84:09:87:7b:a8:95:97:c6:25:8e:83:e0:3e:93:0d:
#                    d1:c7:7d:73:a9:a8:fc:19:00:40:2e:22:b8:7a:33:
#                    41:f5:78:fd:5a:71:e7:82:d9:48:88:5c:ec:a8:85:
#                    87:2d:6d:80:89:67:1a:69:be:10:c0:5a:8e:ed:88:
#                    7d:3e:6f:2c:38:6b:37:ce:47:d8:a2:31:30:de:7e:
#                    53:65:6c:8b:86:53:41:20:6c:bd:48:a5:7e:af:00:
#                    5a:56:12:58:81:d1:dc:89:59:f9:b5:ee:f8:4d:9a:
#                    d8:44:29:8b:79:a7:f7:22:aa:ea:7c:5c:b4:16:88:
#                    20:0d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                7F:B8:5D:8E:C4:18:6B:C6:7D:CC:2E:E9:AE:CE:34:E7:17:5D:E0:A1
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:C = JP, O = LGPKI, OU = Application CA G2
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:7F:B8:5D:8E:C4:18:6B:C6:7D:CC:2E:E9:AE:CE:34:E7:17:5D:E0:A1
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3c:d8:73:36:40:06:48:4a:54:19:f5:27:48:39:25:a5:6e:42:
#         e7:b6:cd:1b:cb:39:34:b7:9b:ec:4f:2a:be:77:e4:ca:84:fc:
#         1d:eb:9b:22:40:d5:f4:fb:68:87:72:fc:47:5d:6a:0e:52:4a:
#         e3:b5:5d:48:c6:22:96:e6:33:6d:6d:ab:f6:cd:d7:cb:24:5a:
#         8c:a8:45:9e:3e:61:82:7d:94:d5:05:f0:1a:35:5f:71:2f:2e:
#         54:b5:41:05:ef:86:0d:52:ef:9c:98:1b:f1:2c:4c:3a:d1:f3:
#         86:d3:8c:3e:7a:2f:86:45:8e:83:32:26:5b:bf:53:ca:0e:51:
#         56:dc:9a:c2:5a:30:19:0d:a7:9e:d5:aa:9b:20:39:69:78:21:
#         f4:97:6d:d1:0e:11:4c:2e:d3:1b:5a:b0:f9:97:78:5c:2a:8f:
#         52:65:ee:4c:42:25:c2:37:30:0e:6d:2b:35:94:83:06:e8:af:
#         45:3b:04:66:a7:30:bb:f9:e0:21:3b:63:6e:7d:44:5d:3a:6a:
#         53:ef:11:17:24:fd:54:b2:5a:6c:73:56:21:c9:6c:2d:97:a4:
#         42:b3:27:61:05:21:63:6d:ea:28:bc:4f:1a:6f:42:dc:98:ab:
#         55:d3:1e:1b:c0:92:3f:9b:c1:e6:3b:17:56:e2:c4:98:43:25:
#         ee:b6:cb:00

[p11-kit-object-v1]
label: "LuxTrust Global Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsn+nQPAiygz267Hxyw6V
V0B1r6A/Ps7sqjJX5hmxZ0OYWmt8s7j6eJyqpoSyYBuAQc5jzR8XCJmk9e8+EsdM
sFeaXHhAePxFjdqRZ9w6Ubltc+a3OY52OrQfBfVpVfmTz3iISr6qm9d7R1tGBEyC
FqY19vx039a0r9jitScRdFmiwmYsaArhmIiIPIoFdRTjuK7zCISbasE/MRivJ6VL
m6T9eTHemD0OYcqHmMH4ijCc+j4z1aXEAwfh95Z0GAAnOCfRK6qq4UFFi2/xJcLc
opeVx0IUM115hCNq52XAV6DYXaljAeew5Ivo+MVjuOVsdJA9x3f8K7p56aTGEnin
/wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "LuxTrust Global Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3000 (0xbb8)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = LU, O = LuxTrust s.a., CN = LuxTrust Global Root
#        Validity
#            Not Before: Mar 17 09:51:37 2011 GMT
#            Not After : Mar 17 09:51:37 2021 GMT
#        Subject: C = LU, O = LuxTrust s.a., CN = LuxTrust Global Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b2:7f:a7:40:f0:22:ca:0c:f6:eb:b1:f1:cb:0e:
#                    95:57:40:75:af:a0:3f:3e:ce:ec:aa:32:57:e6:19:
#                    b1:67:43:98:5a:6b:7c:b3:b8:fa:78:9c:aa:a6:84:
#                    b2:60:1b:80:41:ce:63:cd:1f:17:08:99:a4:f5:ef:
#                    3e:12:c7:4c:b0:57:9a:5c:78:40:78:fc:45:8d:da:
#                    91:67:dc:3a:51:b9:6d:73:e6:b7:39:8e:76:3a:b4:
#                    1f:05:f5:69:55:f9:93:cf:78:88:4a:be:aa:9b:d7:
#                    7b:47:5b:46:04:4c:82:16:a6:35:f6:fc:74:df:d6:
#                    b4:af:d8:e2:b5:27:11:74:59:a2:c2:66:2c:68:0a:
#                    e1:98:88:88:3c:8a:05:75:14:e3:b8:ae:f3:08:84:
#                    9b:6a:c1:3f:31:18:af:27:a5:4b:9b:a4:fd:79:31:
#                    de:98:3d:0e:61:ca:87:98:c1:f8:8a:30:9c:fa:3e:
#                    33:d5:a5:c4:03:07:e1:f7:96:74:18:00:27:38:27:
#                    d1:2b:aa:aa:e1:41:45:8b:6f:f1:25:c2:dc:a2:97:
#                    95:c7:42:14:33:5d:79:84:23:6a:e7:65:c0:57:a0:
#                    d8:5d:a9:63:01:e7:b0:e4:8b:e8:f8:c5:63:b8:e5:
#                    6c:74:90:3d:c7:77:fc:2b:ba:79:e9:a4:c6:12:78:
#                    a7:ff
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:17:15:85:89:09:2F:24:87:6F:3F:1D:1B:E4:F2:96:79:83:48:13:CE
#
#            X509v3 Subject Key Identifier: 
#                17:15:85:89:09:2F:24:87:6F:3F:1D:1B:E4:F2:96:79:83:48:13:CE
#    Signature Algorithm: sha256WithRSAEncryption
#         5a:f0:1c:d0:d4:50:cf:41:7e:e6:b8:9d:7d:c3:70:d0:5e:36:
#         ff:6e:8e:7a:2f:de:48:11:d5:34:2e:3c:b7:45:c2:54:25:a7:
#         e1:c1:1e:37:83:b6:94:ae:b6:45:48:03:ea:95:be:eb:9c:6a:
#         b4:37:5c:1f:2e:d3:6b:82:81:43:5b:0a:3f:11:55:63:ac:fa:
#         7c:08:02:37:a0:3c:39:04:33:fe:97:32:c8:52:e5:d9:25:4d:
#         b0:c6:ee:68:1f:70:aa:73:ce:57:03:dc:7d:0a:0d:33:f2:d2:
#         5a:df:0a:6c:3b:cc:11:51:97:1a:a4:21:a2:85:35:02:d7:80:
#         22:d2:84:b2:f8:c0:aa:68:bf:d5:eb:aa:c3:0b:ab:a1:7c:2b:
#         f7:f5:3b:87:e1:54:57:ec:05:24:ef:79:42:4e:f3:8b:68:9f:
#         e4:6e:cb:82:99:c9:cc:2a:dc:53:c2:1f:70:83:ab:21:0f:56:
#         b4:48:ff:df:07:22:b3:8c:f9:1d:a6:04:df:2d:03:36:b9:dd:
#         6f:fe:31:88:66:ff:6c:6d:44:34:af:08:77:3e:26:d2:72:f4:
#         bb:47:56:93:3c:98:63:e1:33:bb:99:23:92:b5:83:79:e8:1d:
#         9f:67:ad:62:d6:89:d6:f6:fc:27:de:32:27:cb:84:da:77:85:
#         21:a1:12:21

[p11-kit-object-v1]
label: "LuxTrust Global Root 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA14WXvxGY6fBig0w8h/lT
ajcL8g88h85v3CYpvcWJusmDPffuylvGbUlztMlGoxs0Ez/BiUVX9Nmx+zZlS/sI
4khxEchuO56d34llN6aF9jtEGLbGNzBiRJKXaX1CMCTkDQyJa2PexeHfTqkUbFPg
Yc72Fy8dPL3mIkwdk/UQxKF27GrexWzflrRWQELAYpIwoS0VlKDSIAYJbmpt5eu3
vtTw8RV8i+ZOuhPMSydemTwXXY+BfzM9T9M/G+xcP/A8THVu8qbVndotB2MCxnLp
lLxMSZVPiFLI2+hpgvjMNFsi8Ianib1ICm1mgW3IyGT7AeH04d7Znt3bW9QqmSYV
Gx5MkimCntWSgZJBcBn3pOWTS7x3ZzHdHP0xcA0XmQz5DDkZKhe1MHFV1Q+uWOE9
LzSbz5/2eIXCk3pyPmaPnBYRYI+eiW9nvuBHWjsMmmeLz0bGrjij8qe85taFazMk
cCJLywibu8j4AikdviAMRr9rh5uzKmZCNUZsqrqt+Zh76VBVFDG/sdot7YCtaCT7
aavYcRMw5mezh0D9iX7yQ9ER3y9lL2TOXxS5sb8xvYd4WllliKr8WTJIhtZMuSlL
ldN283clbUIcOINN/aNfm38trHkbDkIxl2Ok+4pp1SINNJAwLqi04G22lKy8i07X
cPzFOI5kJeFNOZDOyYeEWHECAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "LuxTrust Global Root 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:7e:a6:df:4b:44:9e:da:6a:24:85:9e:e6:b8:15:d3:16:7f:bb:b1
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = LU, O = LuxTrust S.A., CN = LuxTrust Global Root 2
#        Validity
#            Not Before: Mar  5 13:21:57 2015 GMT
#            Not After : Mar  5 13:21:57 2035 GMT
#        Subject: C = LU, O = LuxTrust S.A., CN = LuxTrust Global Root 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d7:85:97:bf:11:98:e9:f0:62:83:4c:3c:87:f9:
#                    53:6a:37:0b:f2:0f:3c:87:ce:6f:dc:26:29:bd:c5:
#                    89:ba:c9:83:3d:f7:ee:ca:5b:c6:6d:49:73:b4:c9:
#                    46:a3:1b:34:13:3f:c1:89:45:57:f4:d9:b1:fb:36:
#                    65:4b:fb:08:e2:48:71:11:c8:6e:3b:9e:9d:df:89:
#                    65:37:a6:85:f6:3b:44:18:b6:c6:37:30:62:44:92:
#                    97:69:7d:42:30:24:e4:0d:0c:89:6b:63:de:c5:e1:
#                    df:4e:a9:14:6c:53:e0:61:ce:f6:17:2f:1d:3c:bd:
#                    e6:22:4c:1d:93:f5:10:c4:a1:76:ec:6a:de:c5:6c:
#                    df:96:b4:56:40:42:c0:62:92:30:a1:2d:15:94:a0:
#                    d2:20:06:09:6e:6a:6d:e5:eb:b7:be:d4:f0:f1:15:
#                    7c:8b:e6:4e:ba:13:cc:4b:27:5e:99:3c:17:5d:8f:
#                    81:7f:33:3d:4f:d3:3f:1b:ec:5c:3f:f0:3c:4c:75:
#                    6e:f2:a6:d5:9d:da:2d:07:63:02:c6:72:e9:94:bc:
#                    4c:49:95:4f:88:52:c8:db:e8:69:82:f8:cc:34:5b:
#                    22:f0:86:a7:89:bd:48:0a:6d:66:81:6d:c8:c8:64:
#                    fb:01:e1:f4:e1:de:d9:9e:dd:db:5b:d4:2a:99:26:
#                    15:1b:1e:4c:92:29:82:9e:d5:92:81:92:41:70:19:
#                    f7:a4:e5:93:4b:bc:77:67:31:dd:1c:fd:31:70:0d:
#                    17:99:0c:f9:0c:39:19:2a:17:b5:30:71:55:d5:0f:
#                    ae:58:e1:3d:2f:34:9b:cf:9f:f6:78:85:c2:93:7a:
#                    72:3e:66:8f:9c:16:11:60:8f:9e:89:6f:67:be:e0:
#                    47:5a:3b:0c:9a:67:8b:cf:46:c6:ae:38:a3:f2:a7:
#                    bc:e6:d6:85:6b:33:24:70:22:4b:cb:08:9b:bb:c8:
#                    f8:02:29:1d:be:20:0c:46:bf:6b:87:9b:b3:2a:66:
#                    42:35:46:6c:aa:ba:ad:f9:98:7b:e9:50:55:14:31:
#                    bf:b1:da:2d:ed:80:ad:68:24:fb:69:ab:d8:71:13:
#                    30:e6:67:b3:87:40:fd:89:7e:f2:43:d1:11:df:2f:
#                    65:2f:64:ce:5f:14:b9:b1:bf:31:bd:87:78:5a:59:
#                    65:88:aa:fc:59:32:48:86:d6:4c:b9:29:4b:95:d3:
#                    76:f3:77:25:6d:42:1c:38:83:4d:fd:a3:5f:9b:7f:
#                    2d:ac:79:1b:0e:42:31:97:63:a4:fb:8a:69:d5:22:
#                    0d:34:90:30:2e:a8:b4:e0:6d:b6:94:ac:bc:8b:4e:
#                    d7:70:fc:c5:38:8e:64:25:e1:4d:39:90:ce:c9:87:
#                    84:58:71
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.171.1.1.1.10
#                  CPS: https://repository.luxtrust.lu
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:FF:18:28:76:F9:48:05:2C:A1:AE:F1:2B:1B:2B:B2:53:F8:4B:7C:B3
#
#            X509v3 Subject Key Identifier: 
#                FF:18:28:76:F9:48:05:2C:A1:AE:F1:2B:1B:2B:B2:53:F8:4B:7C:B3
#    Signature Algorithm: sha256WithRSAEncryption
#         6a:19:14:ed:6e:79:c1:2c:87:d4:0d:70:7e:d7:f6:78:c9:0b:
#         04:4e:c4:b1:ce:93:70:fe:b0:54:c0:32:cd:99:30:64:17:bf:
#         0f:e5:e2:33:fd:07:36:40:72:0e:1a:b6:6a:59:d6:00:e5:68:
#         20:dd:2e:72:0d:1f:6a:64:31:20:84:7d:49:a6:5a:37:eb:45:
#         c9:85:f5:d4:c7:17:99:07:e6:9b:55:e4:0c:e8:a9:b4:ce:8c:
#         5b:b5:11:5c:cf:8a:0e:0d:d6:ac:77:81:fe:32:9c:24:9e:72:
#         ce:54:f3:d0:6f:a2:56:d6:ec:c3:37:2c:65:58:be:57:00:1a:
#         f2:35:fa:eb:7b:31:5d:c2:c1:12:3d:96:81:88:96:89:c1:59:
#         5c:7a:e6:7f:70:34:e7:83:e2:b1:e1:e1:b8:58:ef:d4:95:e4:
#         60:9c:f0:96:97:72:8c:eb:84:02:2e:65:8f:a4:b7:d2:7f:67:
#         dd:c8:d3:9e:5c:aa:a9:a4:a0:25:14:06:9b:ec:4f:7e:2d:0b:
#         7f:1d:75:f1:33:d8:ed:ce:b8:75:6d:3e:5b:b9:98:1d:31:0d:
#         56:d8:43:0f:30:91:b2:04:6b:dd:56:be:95:80:55:67:be:d8:
#         cd:83:d9:18:ee:2e:0f:86:2d:92:9e:70:13:ec:de:51:c9:43:
#         78:02:a5:4d:c8:f9:5f:c4:91:58:46:16:77:5a:74:aa:40:bc:
#         07:9f:30:b9:b1:f7:12:17:dd:e3:ff:24:40:1d:7a:6a:d1:4f:
#         18:0a:aa:90:1d:eb:40:1e:df:a1:1e:44:92:10:9a:f2:8d:e1:
#         d1:4b:46:9e:e8:45:42:97:ea:45:99:f3:ec:66:d5:02:fa:f2:
#         a6:4a:24:aa:de:ce:b9:ca:f9:3f:93:6f:f9:a3:ba:ea:a5:3e:
#         99:ad:fd:ff:7b:99:f5:65:ee:f0:59:28:67:d7:90:95:a4:13:
#         84:a9:84:c1:e8:ce:ce:75:93:63:1a:bc:3c:ea:d5:64:1f:2d:
#         2a:12:39:c6:c3:5a:32:ed:47:91:16:0e:bc:38:c1:50:de:8f:
#         ca:2a:90:34:1c:ee:41:94:9c:5e:19:2e:f8:45:49:99:74:91:
#         b0:04:6f:e3:04:5a:b1:ab:2a:ab:fe:c7:d0:96:b6:da:e1:4a:
#         64:06:6e:60:4d:bd:42:4e:ff:78:da:24:ca:1b:b4:d7:96:39:
#         6c:ae:f1:0e:aa:a7:7d:48:8b:20:4c:cf:64:d6:b8:97:46:b0:
#         4e:d1:2a:56:3a:a0:93:bd:af:80:24:e0:0a:7e:e7:ca:d5:ca:
#         e8:85:55:dc:36:2a:e1:94:68:93:c7:66:72:44:0f:80:21:32:
#         6c:25:c7:23:80:83:0a:eb

[p11-kit-object-v1]
label: "MULTICERT Root Certification Authority 01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "MULTICERT Root Certification Authority 01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 6074693700342339162 (0x544da5bc4035565a)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = PT, O = MULTICERT - Servi\C3\A7os de Certifica\C3\A7\C3\A3o Electr\C3\B3nica S.A., CN = MULTICERT Root Certification Authority 01
#        Validity
#            Not Before: Apr  4 08:59:47 2014 GMT
#            Not After : Apr  4 08:59:47 2039 GMT
#        Subject: C = PT, O = MULTICERT - Servi\C3\A7os de Certifica\C3\A7\C3\A3o Electr\C3\B3nica S.A., CN = MULTICERT Root Certification Authority 01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ce:dc:3f:f4:19:6e:bb:15:69:86:f4:e4:cd:e7:
#                    3a:70:3b:c7:9a:8b:3b:83:00:81:5b:fb:20:16:5a:
#                    be:bf:58:00:5f:29:e6:57:6f:7e:8a:2c:15:07:5c:
#                    1a:63:8c:42:5f:16:dd:da:89:84:45:57:17:96:a0:
#                    9c:a1:75:22:41:1a:3a:fd:c5:17:91:13:f6:be:62:
#                    0a:bc:6e:25:2d:5b:c0:8c:10:66:f7:e2:d6:fb:dc:
#                    48:31:a3:1a:a8:e5:4d:48:c9:a2:1c:73:fe:8f:66:
#                    40:63:77:59:07:3c:3d:14:9f:d4:f7:85:91:d0:c3:
#                    42:f5:1b:61:b3:77:80:80:2a:6d:12:02:96:8b:51:
#                    d9:c1:6f:27:0b:1a:07:34:00:ff:d2:59:4c:29:e8:
#                    d7:19:63:d8:91:b4:3f:fc:8e:0e:25:f2:a1:12:07:
#                    65:ca:35:de:ab:fe:16:a3:08:8c:af:7f:7e:12:f4:
#                    59:16:05:1f:e8:ad:74:79:32:f7:78:02:b6:b4:cc:
#                    ab:db:1e:38:61:04:19:7a:41:40:da:5a:11:64:75:
#                    02:fd:64:d1:d6:94:42:0f:22:e7:65:cd:af:90:0e:
#                    0c:5b:31:01:99:51:ef:45:8c:7d:a5:38:da:9e:7c:
#                    4b:e4:a6:e8:b3:a4:82:d6:03:34:2e:4f:b7:51:ab:
#                    77:38:09:f5:06:fe:dc:66:1b:0f:3f:fa:7d:ef:8c:
#                    55:be:e0:0d:86:95:a1:dc:bd:c4:c3:08:d1:45:1e:
#                    f2:bd:be:70:f1:e6:26:c6:bb:08:b1:28:a5:c2:a5:
#                    ed:88:d6:a1:c0:fb:23:f1:27:39:cc:e1:84:07:19:
#                    bc:7e:f6:cc:38:ff:6e:10:bb:46:e9:23:89:24:81:
#                    ff:00:e2:51:00:dc:52:50:7d:13:50:7d:16:3d:40:
#                    8d:d3:bf:f9:8a:65:d8:62:12:29:77:c2:ba:c2:49:
#                    34:4f:8a:79:69:c9:4b:15:f3:34:de:cf:af:86:e2:
#                    e5:c8:a9:56:61:4c:06:54:5a:c5:6c:19:ea:f3:c8:
#                    44:cd:24:1a:76:d1:71:00:59:6b:d9:75:9b:ce:fd:
#                    10:fe:b1:83:a2:a5:b7:92:86:76:9b:4a:f7:1d:dc:
#                    8c:85:a6:58:ad:8a:a6:68:69:17:c9:6d:1b:a6:cf:
#                    27:4b:29:2c:dd:71:42:1a:89:10:e5:d5:9b:12:5f:
#                    49:8b:84:bc:d8:08:5c:fb:cf:38:42:af:be:d1:6e:
#                    7b:91:aa:66:40:c5:05:7e:2b:d0:66:b6:c7:df:52:
#                    fe:f4:45:6d:23:92:21:9e:12:01:90:73:83:e2:a5:
#                    09:0d:d7:c0:f8:85:95:1e:63:d1:3f:35:da:94:d1:
#                    37:d9:f5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D5:39:1C:9C:5B:6F:04:AA:A2:95:4C:EF:20:DD:29:74:A4:C5:45:71
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:D5:39:1C:9C:5B:6F:04:AA:A2:95:4C:EF:20:DD:29:74:A4:C5:45:71
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         3f:e7:5f:f3:22:16:de:83:9e:20:e4:82:e7:e5:9e:77:c9:fb:
#         2b:b0:74:0d:df:1b:74:22:0f:73:10:a1:b0:17:ec:4c:0c:d4:
#         28:70:6a:66:72:44:69:10:93:76:35:cf:2f:f8:8f:3c:ab:19:
#         7c:71:92:95:71:1b:37:15:c2:1b:28:7a:ef:6e:78:38:df:fb:
#         8f:9b:01:20:dc:af:f6:d6:8d:09:66:da:c4:46:a9:fc:95:aa:
#         44:23:12:df:47:c0:b0:15:ec:b5:b1:9e:6c:0f:91:aa:a6:3a:
#         e5:c1:0d:60:6c:50:40:70:5c:5c:c8:ce:b3:cc:eb:ed:aa:88:
#         19:56:a5:a4:c8:0c:7a:e5:76:40:67:33:b4:3d:96:dc:77:cb:
#         23:78:f9:53:5b:cf:8d:de:b1:a7:8e:5a:7a:a2:32:63:a3:88:
#         d7:25:61:5a:5d:49:3a:72:e6:cf:aa:94:86:6c:6e:f7:82:e0:
#         8e:67:93:28:c5:a8:0d:4d:ef:38:ad:79:4a:66:8d:84:01:08:
#         04:79:f3:52:c6:41:e7:9a:62:06:b3:f5:12:1e:ec:d9:00:43:
#         d3:eb:96:77:74:e1:79:f9:14:94:84:6d:ba:54:82:05:8c:df:
#         01:f2:30:88:81:ac:7a:2f:8b:43:2c:76:34:ce:35:e7:87:8e:
#         4e:0b:0a:a5:1a:57:b1:53:5a:bf:6b:d8:be:00:7e:c6:f9:ee:
#         66:31:08:b1:df:94:33:84:9c:77:4f:7b:64:2f:ef:8e:0f:59:
#         28:22:cb:f0:5c:3e:2b:fd:35:d6:95:ff:03:ec:65:52:7e:be:
#         f2:19:f8:7b:d5:52:2c:52:77:9a:91:66:41:70:8d:d5:49:e7:
#         0b:48:7f:8a:ae:de:45:3d:dd:fe:e6:d2:e4:92:c3:7b:ce:30:
#         a0:49:6e:37:ad:a8:d3:2c:b6:3d:9e:21:db:06:57:e2:f0:ae:
#         06:fb:d9:c5:11:37:a1:7b:db:1d:11:7c:68:76:20:3e:f5:bc:
#         a5:d9:66:b5:21:ad:45:26:c6:5d:1e:02:a3:41:c4:d4:7d:81:
#         19:cb:17:97:06:0f:e6:ec:74:00:46:c4:75:dd:3d:f0:43:34:
#         af:a6:bc:fc:f6:82:fb:cf:c5:fa:b3:0f:25:a5:3f:66:10:d6:
#         9e:82:a5:db:3a:13:79:de:8d:a9:d7:a6:8d:86:d2:2f:d9:69:
#         0d:e2:75:78:7e:49:5f:22:ab:86:70:28:51:b3:7a:b6:a0:79:
#         fa:d4:e5:83:a7:b0:77:ca:db:01:82:ef:e2:be:4d:2f:d3:c0:
#         4d:d0:e3:69:6e:7c:26:9b:eb:a6:fb:45:ef:b1:04:8a:2f:aa:
#         21:06:f6:e6:d4:bc:41:23

[p11-kit-object-v1]
label: "Macao Post eSignTrust Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAohy2uLixzVRJg646x62E
0F3/lav1/wEbXu8gPr2AIEksaLKDMeyVLW5Jsnu/ZJ9XLdUia+5Xl3SH6vtQzXLn
JC1wVLyk4iqFtQL5p2C2clnrUaxGSvyndfsE1AD/2gzOy5MPMnl21ibgzXINS+om
j0t81uNiaIgm0E23miebwJu2EsGb7ATRNdonvjDifQPORjgIb+H3niwOugox18Jq
RIZn0ehJkxTAzF6Rp/tWuoEAOGzSmcG/XOik7Uqc6uJSveP5i/hE5sRAQc3vAEy5
wqn8AfTu/rCRD4BxtuWRaKLlZ9fo5eijznSsXhetOxFEF15ldrIiTbgLO+k/iWn1
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Macao Post eSignTrust Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDZTCCAk2gAwIBAgIQQxFalh9lWtbwMxL97dC5dTANBgkqhkiG9w0BAQQFADBf
MQswCQYDVQQGEwJNTzETMBEGA1UEChMKTWFjYW8gUG9zdDE7MDkGA1UEAxMyTWFj
YW8gUG9zdCBlU2lnblRydXN0IFJvb3QgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkw
HhcNMDMwMTMwMDAwMDAwWhcNMTMwMTI5MjM1OTU5WjBfMQswCQYDVQQGEwJNTzET
MBEGA1UEChMKTWFjYW8gUG9zdDE7MDkGA1UEAxMyTWFjYW8gUG9zdCBlU2lnblRy
dXN0IFJvb3QgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwggEiMA0GCSqGSIb3DQEB
AQUAA4IBDwAwggEKAoIBAQCiHLa4uLHNVEmDrjrHrYTQXf+Vq/X/ARte7yA+vYAg
SSxosoMx7JUtbkmye79kn1ct1SJr7leXdIfq+1DNcuckLXBUvKTiKoW1AvmnYLZy
WetRrEZK/Kd1+wTUAP/aDM7Lkw8yeXbWJuDNcg1L6iaPS3zW42JoiCbQTbeaJ5vA
m7YSwZvsBNE12ie+MOJ9A85GOAhv4feeLA66CjHXwmpEhmfR6EmTFMDMXpGn+1a6
gQA4bNKZwb9c6KTtSpzq4lK94/mL+ETmxEBBze8ATLnCqfwB9O7+sJEPgHG25ZFo
ouVn1+jl6KPOdKxeF607EUQXXmV2siJNuAs76T+JafWzAgMBAAGjHTAbMAwGA1Ud
EwQFMAMBAf8wCwYDVR0PBAQDAgEGMA0GCSqGSIb3DQEBBAUAA4IBAQCglFEB2Mz7
F37cnX7BiLJcF8+wxiTJNLAGZZkTVEWHF33ByC5hNO7GbcNNaqkeqz0jFOIFCJhV
Ag68aYvXz09fJdBnuVY+S+tDgg3XKCvL7xGa8NpkaXDimCoAhm+Y6ksOmpyNvKpP
uP1v+1Mkc6/Umbz1bsyWPtZd1zQ1aXmx0cp1ycCEvS5xpRqBkfwbicIyRzJ8aMG7
VOIhgGz27mzGB5ZePcC5ajPEBXCpbJ7VbN7G9ZNnb5UJwGjl+OPhMuSjDWmhDapA
wOOEocv9MS7QBpQ26KAh/3TdETdJJlFFT5ESIFbyvwH82fEXbpr4XBmcNCLEJtGF
CITSCANIyhgG
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            43:11:5a:96:1f:65:5a:d6:f0:33:12:fd:ed:d0:b9:75
#        Signature Algorithm: md5WithRSAEncryption
#        Issuer: C = MO, O = Macao Post, CN = Macao Post eSignTrust Root Certification Authority
#        Validity
#            Not Before: Jan 30 00:00:00 2003 GMT
#            Not After : Jan 29 23:59:59 2013 GMT
#        Subject: C = MO, O = Macao Post, CN = Macao Post eSignTrust Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a2:1c:b6:b8:b8:b1:cd:54:49:83:ae:3a:c7:ad:
#                    84:d0:5d:ff:95:ab:f5:ff:01:1b:5e:ef:20:3e:bd:
#                    80:20:49:2c:68:b2:83:31:ec:95:2d:6e:49:b2:7b:
#                    bf:64:9f:57:2d:d5:22:6b:ee:57:97:74:87:ea:fb:
#                    50:cd:72:e7:24:2d:70:54:bc:a4:e2:2a:85:b5:02:
#                    f9:a7:60:b6:72:59:eb:51:ac:46:4a:fc:a7:75:fb:
#                    04:d4:00:ff:da:0c:ce:cb:93:0f:32:79:76:d6:26:
#                    e0:cd:72:0d:4b:ea:26:8f:4b:7c:d6:e3:62:68:88:
#                    26:d0:4d:b7:9a:27:9b:c0:9b:b6:12:c1:9b:ec:04:
#                    d1:35:da:27:be:30:e2:7d:03:ce:46:38:08:6f:e1:
#                    f7:9e:2c:0e:ba:0a:31:d7:c2:6a:44:86:67:d1:e8:
#                    49:93:14:c0:cc:5e:91:a7:fb:56:ba:81:00:38:6c:
#                    d2:99:c1:bf:5c:e8:a4:ed:4a:9c:ea:e2:52:bd:e3:
#                    f9:8b:f8:44:e6:c4:40:41:cd:ef:00:4c:b9:c2:a9:
#                    fc:01:f4:ee:fe:b0:91:0f:80:71:b6:e5:91:68:a2:
#                    e5:67:d7:e8:e5:e8:a3:ce:74:ac:5e:17:ad:3b:11:
#                    44:17:5e:65:76:b2:22:4d:b8:0b:3b:e9:3f:89:69:
#                    f5:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: md5WithRSAEncryption
#         a0:94:51:01:d8:cc:fb:17:7e:dc:9d:7e:c1:88:b2:5c:17:cf:
#         b0:c6:24:c9:34:b0:06:65:99:13:54:45:87:17:7d:c1:c8:2e:
#         61:34:ee:c6:6d:c3:4d:6a:a9:1e:ab:3d:23:14:e2:05:08:98:
#         55:02:0e:bc:69:8b:d7:cf:4f:5f:25:d0:67:b9:56:3e:4b:eb:
#         43:82:0d:d7:28:2b:cb:ef:11:9a:f0:da:64:69:70:e2:98:2a:
#         00:86:6f:98:ea:4b:0e:9a:9c:8d:bc:aa:4f:b8:fd:6f:fb:53:
#         24:73:af:d4:99:bc:f5:6e:cc:96:3e:d6:5d:d7:34:35:69:79:
#         b1:d1:ca:75:c9:c0:84:bd:2e:71:a5:1a:81:91:fc:1b:89:c2:
#         32:47:32:7c:68:c1:bb:54:e2:21:80:6c:f6:ee:6c:c6:07:96:
#         5e:3d:c0:b9:6a:33:c4:05:70:a9:6c:9e:d5:6c:de:c6:f5:93:
#         67:6f:95:09:c0:68:e5:f8:e3:e1:32:e4:a3:0d:69:a1:0d:aa:
#         40:c0:e3:84:a1:cb:fd:31:2e:d0:06:94:36:e8:a0:21:ff:74:
#         dd:11:37:49:26:51:45:4f:91:12:20:56:f2:bf:01:fc:d9:f1:
#         17:6e:9a:f8:5c:19:9c:34:22:c4:26:d1:85:08:84:d2:08:03:
#         48:ca:18:06

[p11-kit-object-v1]
label: "Macao Post eSignTrust Root Certification Authority (G02)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Macao Post eSignTrust Root Certification Authority (G02)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            52:ac:be:07:11:49:97:bb:1f:bf:87:1b:25:17:bf:a4
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = MO, O = Macao Post, CN = Macao Post eSignTrust Root Certification Authority (G02)
#        Validity
#            Not Before: Jan  6 00:00:00 2010 GMT
#            Not After : Jan  5 23:59:59 2020 GMT
#        Subject: C = MO, O = Macao Post, CN = Macao Post eSignTrust Root Certification Authority (G02)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:f8:87:a7:74:cc:5d:23:5e:ae:ab:96:dc:d7:
#                    24:28:1d:a4:14:66:d7:a0:68:8c:5e:9d:45:d4:d4:
#                    29:d3:b3:0b:eb:ad:16:ea:9d:52:11:c9:a4:e1:70:
#                    e5:dd:be:0e:1c:11:77:eb:9f:a3:70:78:17:8f:b9:
#                    3e:17:53:69:a9:eb:f5:55:f9:95:97:e9:df:39:76:
#                    9e:1f:52:17:b4:1b:00:12:d0:cd:3c:e3:aa:49:d1:
#                    9e:41:37:36:f5:61:cd:23:0f:57:b1:f6:4d:d3:db:
#                    0d:42:53:02:88:f4:f0:a9:86:8b:57:cf:72:0a:d5:
#                    94:4b:5a:da:37:e5:3d:47:59:67:be:d3:8e:56:d5:
#                    57:39:d0:27:db:9f:49:4f:a8:16:54:bf:78:5f:cf:
#                    1c:9d:5e:a1:0b:8c:83:03:b3:0c:14:c9:5a:a9:bb:
#                    ff:c6:ae:59:cf:f5:65:1f:23:89:01:53:8a:d5:5b:
#                    17:9d:9b:ff:98:51:0f:43:49:f7:aa:2c:ed:e5:e9:
#                    86:3a:33:50:73:dc:52:a5:6b:63:84:e9:13:a2:7c:
#                    c7:77:1a:f3:aa:a9:0d:0b:4e:4e:1d:44:c3:72:3b:
#                    99:59:e7:41:22:3b:2c:54:5e:12:31:96:68:41:19:
#                    d5:ed:75:a7:b9:57:5b:11:f6:9a:a4:49:2f:62:f3:
#                    0b:98:51:1b:b3:33:42:d2:cc:d4:61:19:c3:d3:dc:
#                    9b:fb:93:b2:62:cd:36:fb:8c:e9:1a:6e:1a:b1:39:
#                    24:8e:5d:d9:3e:3b:86:7c:88:e6:b7:27:03:f8:95:
#                    51:b0:bf:50:37:fe:f8:4e:13:01:1b:27:2d:9b:92:
#                    d0:72:57:d7:a3:9a:56:e8:6b:a3:f7:55:de:40:5d:
#                    e2:08:1f:5c:bb:51:a6:9e:b4:dd:0e:a6:1a:59:62:
#                    67:86:73:10:95:9d:95:cd:ba:bf:d8:9c:2a:0e:8b:
#                    76:99:93:d4:4b:b0:e8:54:3f:0d:d8:8a:f9:80:cf:
#                    41:fd:01:7a:45:7c:7d:d6:3d:4e:f9:62:4f:41:25:
#                    7c:aa:6d:58:56:1b:07:b4:73:aa:1f:11:1f:3c:ba:
#                    53:23:e0:ed:4a:cd:96:89:dc:48:d0:4d:62:cb:93:
#                    07:f6:a0:ae:53:17:7c:5f:5c:07:1c:05:4c:ab:4c:
#                    6a:aa:c2:0f:a0:19:6b:79:79:c2:7c:b3:a9:fd:3d:
#                    fb:cc:7c:71:c5:bb:be:25:6d:21:a7:fb:d6:be:60:
#                    f3:b5:a9:a9:6c:74:18:3f:a8:9e:42:60:41:f2:39:
#                    2d:1d:c2:0d:73:f2:e0:b1:b6:4a:1a:18:bd:77:69:
#                    19:d7:d2:7a:b1:dc:96:35:9a:d8:26:85:83:b6:13:
#                    29:c2:e3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                02:81:B7:B6:66:F8:92:45:6D:C2:71:D2:9F:EC:2F:D3:BA:1F:B9:FF
#    Signature Algorithm: sha1WithRSAEncryption
#         58:53:8b:be:cf:41:b2:4f:b6:d5:de:4a:68:cd:65:cf:c6:40:
#         8a:ac:4b:9a:5b:63:6d:bd:f1:3f:59:50:42:d0:df:9a:e3:5f:
#         56:91:b3:5b:9b:d9:45:06:43:ef:93:1b:fd:33:77:1d:06:54:
#         38:48:f1:54:8c:3a:53:6b:3b:71:35:09:76:65:e9:57:0f:43:
#         f6:91:9a:de:10:bb:ba:68:92:2a:25:cb:67:44:09:6b:bf:9d:
#         97:66:cb:a9:45:b6:be:37:99:1d:75:25:be:3d:3c:63:6c:bf:
#         a9:13:47:c7:72:8c:cb:c3:cf:f4:f6:87:05:99:89:17:a8:34:
#         20:f1:df:a1:27:67:d3:a7:23:ef:ab:59:83:3d:1a:d8:2a:cd:
#         c2:ad:4a:30:0c:06:3a:20:8b:a4:f8:da:46:37:43:2e:b4:89:
#         1d:84:73:8a:60:be:64:31:27:42:c0:eb:72:61:6d:cc:de:7c:
#         73:2b:e8:bf:39:42:5e:79:91:ec:80:1b:aa:36:76:4e:21:e8:
#         86:04:97:09:28:cb:47:e7:40:d4:2c:5e:1a:5e:48:fa:ae:c7:
#         e9:04:ea:47:24:9b:be:f1:47:9e:d5:d5:7a:d1:5e:d4:85:f2:
#         0b:23:04:98:d4:2b:9a:56:72:46:4c:41:9a:33:f0:92:b4:bf:
#         41:d4:bd:9b:b0:b3:f1:f5:13:d6:af:5b:d4:f2:d1:41:f0:47:
#         5d:7a:bc:7a:59:f1:7d:60:68:94:0e:4a:4f:81:92:22:aa:1f:
#         c4:3c:be:1c:3a:3a:4c:f0:70:a1:7f:bb:9f:dc:d2:c5:a4:f1:
#         26:6e:e1:f3:26:a9:70:fb:f1:89:96:62:15:5c:59:a0:b5:23:
#         fa:96:6a:b2:1a:92:3d:0d:24:4a:2b:b8:08:fe:6f:df:dc:c2:
#         ee:96:ff:ce:bf:7b:b8:f9:84:ef:41:3b:e4:4d:b9:87:91:ba:
#         c6:5f:c8:ed:f0:cb:8b:d3:0f:91:f6:20:de:91:98:c6:e7:48:
#         64:d1:ce:53:12:ee:c4:15:6d:dc:80:50:1b:13:60:4f:79:5b:
#         fc:1a:9c:fe:a2:9f:a0:11:33:91:c9:4b:6d:3a:66:96:2d:d3:
#         38:f8:d9:99:81:b4:44:26:7f:b1:e7:9e:70:6d:1d:6d:f5:22:
#         09:e4:ac:19:36:fb:27:05:d8:7a:9b:d9:bc:9e:1b:da:19:37:
#         d8:f1:dd:15:98:64:1b:8f:53:f0:28:9d:ac:14:ba:5f:69:cf:
#         96:23:ee:56:ac:99:cd:3a:8f:d5:5e:19:e6:62:13:3a:5f:eb:
#         8b:5f:16:c0:3b:e1:d1:93:8f:56:61:37:05:d0:79:1b:fd:a8:
#         bc:0f:79:d2:b3:e6:d3:66

[p11-kit-object-v1]
label: "Microsec e-Szigno Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7cgA1YF7zTgAR8zbhMEh
aSx0kAwh2VOH7T5DRFOvq/iAmzx4jdSNrrjv0xHcgebPO5aM1m8Vxnd+oS/gX5K2
J9d2mh1DPOrZ7C/uOfNqZ0uLgs8i+GVV/izLL31Iej11+aqgJ7t4wgbKUcJ+Zkuv
zaKnTQKCP4KshcbhD5BHmZQKcXKTKsmmwL48Vkxzkifxa7X1/fwwBWCSxuuWfgGR
wmmxHh17U0W43EEfyYtx1lQU44tUeD++9GI7W/Wj7NWSdOJ0MO8B2+HUq5mbKmv4
vaYchiNCX+xJ3pqLW/RyOkDFST6lvo6qcets+vUa5Gr9e31VQO9YbubZ1bwkq8Hv
twIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsec e-Szigno Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            cc:b8:e7:bf:4e:29:1a:fd:a2:dc:66:a5:1c:2c:0f:11
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = HU, L = Budapest, O = Microsec Ltd., OU = e-Szigno CA, CN = Microsec e-Szigno Root CA
#        Validity
#            Not Before: Apr  6 12:28:44 2005 GMT
#            Not After : Apr  6 12:28:44 2017 GMT
#        Subject: C = HU, L = Budapest, O = Microsec Ltd., OU = e-Szigno CA, CN = Microsec e-Szigno Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ed:c8:00:d5:81:7b:cd:38:00:47:cc:db:84:c1:
#                    21:69:2c:74:90:0c:21:d9:53:87:ed:3e:43:44:53:
#                    af:ab:f8:80:9b:3c:78:8d:d4:8d:ae:b8:ef:d3:11:
#                    dc:81:e6:cf:3b:96:8c:d6:6f:15:c6:77:7e:a1:2f:
#                    e0:5f:92:b6:27:d7:76:9a:1d:43:3c:ea:d9:ec:2f:
#                    ee:39:f3:6a:67:4b:8b:82:cf:22:f8:65:55:fe:2c:
#                    cb:2f:7d:48:7a:3d:75:f9:aa:a0:27:bb:78:c2:06:
#                    ca:51:c2:7e:66:4b:af:cd:a2:a7:4d:02:82:3f:82:
#                    ac:85:c6:e1:0f:90:47:99:94:0a:71:72:93:2a:c9:
#                    a6:c0:be:3c:56:4c:73:92:27:f1:6b:b5:f5:fd:fc:
#                    30:05:60:92:c6:eb:96:7e:01:91:c2:69:b1:1e:1d:
#                    7b:53:45:b8:dc:41:1f:c9:8b:71:d6:54:14:e3:8b:
#                    54:78:3f:be:f4:62:3b:5b:f5:a3:ec:d5:92:74:e2:
#                    74:30:ef:01:db:e1:d4:ab:99:9b:2a:6b:f8:bd:a6:
#                    1c:86:23:42:5f:ec:49:de:9a:8b:5b:f4:72:3a:40:
#                    c5:49:3e:a5:be:8e:aa:71:eb:6c:fa:f5:1a:e4:6a:
#                    fd:7b:7d:55:40:ef:58:6e:e6:d9:d5:bc:24:ab:c1:
#                    ef:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Authority Information Access: 
#                OCSP - URI:https://rca.e-szigno.hu/ocsp
#                CA Issuers - URI:http://www.e-szigno.hu/RootCA.crt
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.21528.2.1.1.1
#                  CPS: http://www.e-szigno.hu/SZSZ/
#                  User Notice:
#                    Explicit Text: 
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.e-szigno.hu/RootCA.crl
#                  URI:ldap://ldap.e-szigno.hu/CN=Microsec%20e-Szigno%20Root%20CA,OU=e-Szigno%20CA,O=Microsec%20Ltd.,L=Budapest,C=HU?certificateRevocationList;binary
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:info@e-szigno.hu, DirName:/CN=Microsec e-Szign\xC3\xB3 Root CA/OU=e-Szign\xC3\xB3 HSZ/O=Microsec Kft./L=Budapest/C=HU
#            X509v3 Authority Key Identifier: 
#                keyid:C7:A0:49:75:16:61:84:DB:31:4B:84:D2:F1:37:40:90:EF:4E:DC:F7
#                DirName:/C=HU/L=Budapest/O=Microsec Ltd./OU=e-Szigno CA/CN=Microsec e-Szigno Root CA
#                serial:CC:B8:E7:BF:4E:29:1A:FD:A2:DC:66:A5:1C:2C:0F:11
#
#            X509v3 Subject Key Identifier: 
#                C7:A0:49:75:16:61:84:DB:31:4B:84:D2:F1:37:40:90:EF:4E:DC:F7
#    Signature Algorithm: sha1WithRSAEncryption
#         d3:13:9c:66:63:59:2e:ca:5c:70:0c:fc:83:bc:55:b1:f4:8e:
#         07:6c:66:27:ce:c1:3b:20:a9:1c:bb:46:54:70:ee:5a:cc:a0:
#         77:ea:68:44:27:eb:f2:29:dd:77:a9:d5:fb:e3:d4:a7:04:c4:
#         95:b8:0b:e1:44:68:60:07:43:30:31:42:61:e5:ee:d9:e5:24:
#         d5:1b:df:e1:4a:1b:aa:9f:c7:5f:f8:7a:11:ea:13:93:00:ca:
#         8a:58:b1:ee:ed:0e:4d:b4:d7:a8:36:26:7c:e0:3a:c1:d5:57:
#         82:f1:75:b6:fd:89:5f:da:f3:a8:38:9f:35:06:08:ce:22:95:
#         be:cd:d5:fc:be:5b:de:79:6b:dc:7a:a9:65:66:be:b1:25:5a:
#         5f:ed:7e:d3:ac:46:6d:4c:f4:32:87:b4:20:04:e0:6c:78:b0:
#         77:d1:85:46:4b:a6:12:b7:75:e8:4a:c9:56:6c:d7:92:ab:9d:
#         f5:49:38:d2:4f:53:e3:55:90:11:db:98:96:c6:49:f2:3e:f4:
#         9f:1b:e0:f7:88:dc:25:62:99:44:d8:73:bf:3f:30:f3:0c:37:
#         3e:d4:c2:28:80:73:b1:01:b7:9d:5a:96:14:01:4b:a9:11:9d:
#         29:6a:2e:d0:5d:81:c0:cf:b2:20:43:c7:03:e0:37:4e:5d:0a:
#         dc:59:20:25

[p11-kit-object-v1]
label: "Microsec e-Szigno Root CA 2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6fiP82Ot2obYp+BC+8+R
3qYm+JmlY3Ctm67KM0B9bZZuoQ5E7uETnZRCUpq9dYV0LKgOHZO2GLeMLKjP+1xx
udrs/uh+j+QvHbKodYfYt6HlO8+ZSkbQgxl9wKESHJVtSvTYx6VNMy6FOUB1fhR8
gBKYUMdBZ7iggGFUpmxOH+CdDgfpyboz5/7AVSgsAoCnGfWe3FVTA5d7B0j/mfs3
iiTEWcxQEGOOqqkasIQahvlfu7FQbqTRCszVcX4fpxt89VNuIl/LK+bUfF2u1sLG
TOUFAdntV/zBI3n8+sgkg5XztWpRAdB31ukSofkag/uCG7mwl/R2BjNDSaD/C7X6
tQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsec e-Szigno Root CA 2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIECjCCAvKgAwIBAgIJAMJ+QwRORz8ZMA0GCSqGSIb3DQEBCwUAMIGCMQswCQYD
VQQGEwJIVTERMA8GA1UEBwwIQnVkYXBlc3QxFjAUBgNVBAoMDU1pY3Jvc2VjIEx0
ZC4xJzAlBgNVBAMMHk1pY3Jvc2VjIGUtU3ppZ25vIFJvb3QgQ0EgMjAwOTEfMB0G
CSqGSIb3DQEJARYQaW5mb0BlLXN6aWduby5odTAeFw0wOTA2MTYxMTMwMThaFw0y
OTEyMzAxMTMwMThaMIGCMQswCQYDVQQGEwJIVTERMA8GA1UEBwwIQnVkYXBlc3Qx
FjAUBgNVBAoMDU1pY3Jvc2VjIEx0ZC4xJzAlBgNVBAMMHk1pY3Jvc2VjIGUtU3pp
Z25vIFJvb3QgQ0EgMjAwOTEfMB0GCSqGSIb3DQEJARYQaW5mb0BlLXN6aWduby5o
dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOn4j/NjrdqG2KfgQvvP
kd6mJviZpWNwrZuuyjNAfW2WbqEORO7hE52UQlKavXWFdCyoDh2Tthi3jCyoz/tc
cbna7P7ofo/kLx2yqHWH2Leh5TvPmUpG0IMZfcChEhyVbUr02MelTTMuhTlAdX4U
fIASmFDHQWe4oIBhVKZsTh/gnQ4H6cm6M+f+wFUoLAKApxn1ntxVUwOXewdI/5n7
N4okxFnMUBBjjqqpGrCEGob5X7uxUG6k0QrM1XF+H6cbfPVTbiJfyyvm1HxdrtbC
xkzlBQHZ7Vf8wSN5/PrIJIOV87VqUQHQd9bpEqH5GoP7ghu5sJf0dgYzQ0mg/wu1
+rUCAwEAAaOBgDB+MA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgEGMB0G
A1UdDgQWBBTLD8bfQkPMPcu1SCOhGnqmKrs0aDAfBgNVHSMEGDAWgBTLD8bfQkPM
Pcu1SCOhGnqmKrs0aDAbBgNVHREEFDASgRBpbmZvQGUtc3ppZ25vLmh1MA0GCSqG
SIb3DQEBCwUAA4IBAQDJ0Q5eLtXMs3w+y/w9/w0olZMEyL/azXm4Q5DwpL7v8u8h
mLzU1F0G9u5C7DBsoKqpyvGvivo/C3NqPuouQH4frlRheesuCDfXI/OMn74dseGk
ddug4lQUsbocKaQY9hK6ohQU4zE1yED/t+AFdlfBHFny+L/k7SViXITwfn4fs775
tyERzAMBVnCnEJIeGzSBHq2cGsMEPO0CYdYeBvNfOofyK/FFh+U9rNHHV4S9a67c
2Pm2G2JwCz02yULyMtd6YebS2z3PyKnJm9zbWETXbzivf3jTo60adbocwTZ8jx5t
HMN1Rq41Bab2XD0h7lbwyYIiLXpUq3DDfSJlgnCW
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c2:7e:43:04:4e:47:3f:19
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = HU, L = Budapest, O = Microsec Ltd., CN = Microsec e-Szigno Root CA 2009, emailAddress = info@e-szigno.hu
#        Validity
#            Not Before: Jun 16 11:30:18 2009 GMT
#            Not After : Dec 30 11:30:18 2029 GMT
#        Subject: C = HU, L = Budapest, O = Microsec Ltd., CN = Microsec e-Szigno Root CA 2009, emailAddress = info@e-szigno.hu
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:e9:f8:8f:f3:63:ad:da:86:d8:a7:e0:42:fb:cf:
#                    91:de:a6:26:f8:99:a5:63:70:ad:9b:ae:ca:33:40:
#                    7d:6d:96:6e:a1:0e:44:ee:e1:13:9d:94:42:52:9a:
#                    bd:75:85:74:2c:a8:0e:1d:93:b6:18:b7:8c:2c:a8:
#                    cf:fb:5c:71:b9:da:ec:fe:e8:7e:8f:e4:2f:1d:b2:
#                    a8:75:87:d8:b7:a1:e5:3b:cf:99:4a:46:d0:83:19:
#                    7d:c0:a1:12:1c:95:6d:4a:f4:d8:c7:a5:4d:33:2e:
#                    85:39:40:75:7e:14:7c:80:12:98:50:c7:41:67:b8:
#                    a0:80:61:54:a6:6c:4e:1f:e0:9d:0e:07:e9:c9:ba:
#                    33:e7:fe:c0:55:28:2c:02:80:a7:19:f5:9e:dc:55:
#                    53:03:97:7b:07:48:ff:99:fb:37:8a:24:c4:59:cc:
#                    50:10:63:8e:aa:a9:1a:b0:84:1a:86:f9:5f:bb:b1:
#                    50:6e:a4:d1:0a:cc:d5:71:7e:1f:a7:1b:7c:f5:53:
#                    6e:22:5f:cb:2b:e6:d4:7c:5d:ae:d6:c2:c6:4c:e5:
#                    05:01:d9:ed:57:fc:c1:23:79:fc:fa:c8:24:83:95:
#                    f3:b5:6a:51:01:d0:77:d6:e9:12:a1:f9:1a:83:fb:
#                    82:1b:b9:b0:97:f4:76:06:33:43:49:a0:ff:0b:b5:
#                    fa:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CB:0F:C6:DF:42:43:CC:3D:CB:B5:48:23:A1:1A:7A:A6:2A:BB:34:68
#            X509v3 Authority Key Identifier: 
#                keyid:CB:0F:C6:DF:42:43:CC:3D:CB:B5:48:23:A1:1A:7A:A6:2A:BB:34:68
#
#            X509v3 Subject Alternative Name: 
#                email:info@e-szigno.hu
#    Signature Algorithm: sha256WithRSAEncryption
#         c9:d1:0e:5e:2e:d5:cc:b3:7c:3e:cb:fc:3d:ff:0d:28:95:93:
#         04:c8:bf:da:cd:79:b8:43:90:f0:a4:be:ef:f2:ef:21:98:bc:
#         d4:d4:5d:06:f6:ee:42:ec:30:6c:a0:aa:a9:ca:f1:af:8a:fa:
#         3f:0b:73:6a:3e:ea:2e:40:7e:1f:ae:54:61:79:eb:2e:08:37:
#         d7:23:f3:8c:9f:be:1d:b1:e1:a4:75:db:a0:e2:54:14:b1:ba:
#         1c:29:a4:18:f6:12:ba:a2:14:14:e3:31:35:c8:40:ff:b7:e0:
#         05:76:57:c1:1c:59:f2:f8:bf:e4:ed:25:62:5c:84:f0:7e:7e:
#         1f:b3:be:f9:b7:21:11:cc:03:01:56:70:a7:10:92:1e:1b:34:
#         81:1e:ad:9c:1a:c3:04:3c:ed:02:61:d6:1e:06:f3:5f:3a:87:
#         f2:2b:f1:45:87:e5:3d:ac:d1:c7:57:84:bd:6b:ae:dc:d8:f9:
#         b6:1b:62:70:0b:3d:36:c9:42:f2:32:d7:7a:61:e6:d2:db:3d:
#         cf:c8:a9:c9:9b:dc:db:58:44:d7:6f:38:af:7f:78:d3:a3:ad:
#         1a:75:ba:1c:c1:36:7c:8f:1e:6d:1c:c3:75:46:ae:35:05:a6:
#         f6:5c:3d:21:ee:56:f0:c9:82:22:2d:7a:54:ab:70:c3:7d:22:
#         65:82:70:96

[p11-kit-object-v1]
label: "Microsoft ECC Product Root Certificate Authority 2018"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAExxEWKnYdVo6+uWJl1MPOtPDDMOyPbddu
ObzISauruONDeNWBBl3vx32fztazkHXeDLCQ3iO6yNE+Z+AZqRuGMR5fNC3uF/0V
+34nijKh6smPyX4Yyy87LEh6fab0AQes
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft ECC Product Root Certificate Authority 2018"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            14:98:26:66:dc:7c:cd:8f:40:53:67:7b:b9:99:ec:85
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft ECC Product Root Certificate Authority 2018
#        Validity
#            Not Before: Feb 27 20:42:08 2018 GMT
#            Not After : Feb 27 20:50:46 2043 GMT
#        Subject: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft ECC Product Root Certificate Authority 2018
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:c7:11:16:2a:76:1d:56:8e:be:b9:62:65:d4:c3:
#                    ce:b4:f0:c3:30:ec:8f:6d:d7:6e:39:bc:c8:49:ab:
#                    ab:b8:e3:43:78:d5:81:06:5d:ef:c7:7d:9f:ce:d6:
#                    b3:90:75:de:0c:b0:90:de:23:ba:c8:d1:3e:67:e0:
#                    19:a9:1b:86:31:1e:5f:34:2d:ee:17:fd:15:fb:7e:
#                    27:8a:32:a1:ea:c9:8f:c9:7e:18:cb:2f:3b:2c:48:
#                    7a:7d:a6:f4:01:07:ac
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                43:EF:70:87:B8:9D:BF:EC:88:19:DC:C6:C4:6B:75:0D:75:34:33:08
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                Policy: 1.3.6.1.4.1.311.76.509.1.1
#                  CPS: http://www.microsoft.com/pkiops/Docs/Repository.htm
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:a1:c0:49:44:5d:32:55:27:cc:3e:90:6e:25:
#         22:9d:24:5b:9b:51:35:c7:91:49:49:2a:a3:f9:6f:4f:1c:cd:
#         dd:9c:e1:b5:57:c9:9e:c2:22:45:9b:06:15:70:1c:45:bf:02:
#         31:00:c5:d3:28:eb:72:c7:3e:b0:ac:27:09:7f:62:3d:60:79:
#         e5:92:f1:45:2a:b9:a5:02:e4:60:bb:fe:7a:2b:9c:60:a7:b5:
#         99:14:f2:b0:be:f0:bb:05:96:56:56:8f:c1:68

[p11-kit-object-v1]
label: "Microsoft ECC Root Certificate Authority 2017"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE1Lw9AkJ1QRMjzYAEhgJRL2qogWILZcz2
yp0eb0pmUaID2Z2R+rYWsYxu3nzN23mmL867znEv5aWrKOxjBGaZ+PrykxAF4YEo
QuPGaPTmG4RgSomv7XkPO87x9kT1AXjA
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft ECC Root Certificate Authority 2017"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICWTCCAd+gAwIBAgIQZvI9r4fei7FK6gxXMQHC7DAKBggqhkjOPQQDAzBlMQsw
CQYDVQQGEwJVUzEeMBwGA1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMTYwNAYD
VQQDEy1NaWNyb3NvZnQgRUNDIFJvb3QgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IDIw
MTcwHhcNMTkxMjE4MjMwNjQ1WhcNNDIwNzE4MjMxNjA0WjBlMQswCQYDVQQGEwJV
UzEeMBwGA1UEChMVTWljcm9zb2Z0IENvcnBvcmF0aW9uMTYwNAYDVQQDEy1NaWNy
b3NvZnQgRUNDIFJvb3QgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IDIwMTcwdjAQBgcq
hkjOPQIBBgUrgQQAIgNiAATUvD0CQnVBEyPNgASGAlEvaqiBYgtlzPbKnR5vSmZR
ogPZnZH6thaxjG7efM3beaYvzrvOcS/lpaso7GMEZpn4+vKTEAXhgShC48Zo9OYb
hGBKia/teQ87zvH2RPUBeMCjVDBSMA4GA1UdDwEB/wQEAwIBhjAPBgNVHRMBAf8E
BTADAQH/MB0GA1UdDgQWBBTIy5lycFIM+Oa+sgRXKSrPQhDtNTAQBgkrBgEEAYI3
FQEEAwIBADAKBggqhkjOPQQDAwNoADBlAjBY8k3qDPlfXu5gKcs68tvWMoQZP3zV
L8KxzJOuULsJMsbG7X7JNpQS5GiFBqIb0C8CMQCZ6Ra0DvpWSNSkMBaReNtUjGUB
iudQZsIxtzm6uBoiB078a1QWIP8rtedMDE2mT3M=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            66:f2:3d:af:87:de:8b:b1:4a:ea:0c:57:31:01:c2:ec
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = Microsoft Corporation, CN = Microsoft ECC Root Certificate Authority 2017
#        Validity
#            Not Before: Dec 18 23:06:45 2019 GMT
#            Not After : Jul 18 23:16:04 2042 GMT
#        Subject: C = US, O = Microsoft Corporation, CN = Microsoft ECC Root Certificate Authority 2017
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:d4:bc:3d:02:42:75:41:13:23:cd:80:04:86:02:
#                    51:2f:6a:a8:81:62:0b:65:cc:f6:ca:9d:1e:6f:4a:
#                    66:51:a2:03:d9:9d:91:fa:b6:16:b1:8c:6e:de:7c:
#                    cd:db:79:a6:2f:ce:bb:ce:71:2f:e5:a5:ab:28:ec:
#                    63:04:66:99:f8:fa:f2:93:10:05:e1:81:28:42:e3:
#                    c6:68:f4:e6:1b:84:60:4a:89:af:ed:79:0f:3b:ce:
#                    f1:f6:44:f5:01:78:c0
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C8:CB:99:72:70:52:0C:F8:E6:BE:B2:04:57:29:2A:CF:42:10:ED:35
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:58:f2:4d:ea:0c:f9:5f:5e:ee:60:29:cb:3a:f2:
#         db:d6:32:84:19:3f:7c:d5:2f:c2:b1:cc:93:ae:50:bb:09:32:
#         c6:c6:ed:7e:c9:36:94:12:e4:68:85:06:a2:1b:d0:2f:02:31:
#         00:99:e9:16:b4:0e:fa:56:48:d4:a4:30:16:91:78:db:54:8c:
#         65:01:8a:e7:50:66:c2:31:b7:39:ba:b8:1a:22:07:4e:fc:6b:
#         54:16:20:ff:2b:b5:e7:4c:0c:4d:a6:4f:73

[p11-kit-object-v1]
label: "Microsoft ECC TS Root Certificate Authority 2018"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE3s27cCDxJSC0lOjXtDsPbofdq6zPTUAv
gTNrWQkY1ocNJiOctI2VnXafpbkGQuatNrLEs656PAjVy506XkUhbAvjIPWbwt1E
M+NCueryKEKSqv4MB8qKE5k7YgDt2vM1
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft ECC TS Root Certificate Authority 2018"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDFzCCAp6gAwIBAgIQFTh14WR+0bBHtO+vQRKCRTAKBggqhkjOPQQDAzCBjzEL
MAkGA1UEBhMCVVMxEzARBgNVBAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1JlZG1v
bmQxHjAcBgNVBAoTFU1pY3Jvc29mdCBDb3Jwb3JhdGlvbjE5MDcGA1UEAxMwTWlj
cm9zb2Z0IEVDQyBUUyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0eSAyMDE4MB4X
DTE4MDIyNzIwNTEzNFoXDTQzMDIyNzIxMDAxMlowgY8xCzAJBgNVBAYTAlVTMRMw
EQYDVQQIEwpXYXNoaW5ndG9uMRAwDgYDVQQHEwdSZWRtb25kMR4wHAYDVQQKExVN
aWNyb3NvZnQgQ29ycG9yYXRpb24xOTA3BgNVBAMTME1pY3Jvc29mdCBFQ0MgVFMg
Um9vdCBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkgMjAxODB2MBAGByqGSM49AgEGBSuB
BAAiA2IABN7Nu3Ag8SUgtJTo17Q7D26H3ausz01AL4Eza1kJGNaHDSYjnLSNlZ12
n6W5BkLmrTayxLOuejwI1cudOl5FIWwL4yD1m8LdRDPjQrnq8ihCkqr+DAfKihOZ
O2IA7drzNaOBvDCBuTAOBgNVHQ8BAf8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAd
BgNVHQ4EFgQU6EfIQpqwna5vCyg7mBWP47HogLIwEAYJKwYBBAGCNxUBBAMCAQAw
ZQYDVR0gBF4wXDAGBgRVHSAAMFIGDCsGAQQBgjdMg30BATBCMEAGCCsGAQUFBwIB
FjRodHRwOi8vd3d3Lm1pY3Jvc29mdC5jb20vcGtpb3BzL0RvY3MvUmVwb3NpdG9y
eS5odG0AMAoGCCqGSM49BAMDA2cAMGQCMBSGUMAmGuvqoRR3OlvfYzmlM8dQQNVr
NWsPtN99VrnhpZ14GYKhQ24a11ijVQNC2wIwGJS0HjqNZPoMJxuHE0rStzoAlMby
5WO/r+P63JPV50aaa4FpPgLfUQ2PKHFBiZEv
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:38:75:e1:64:7e:d1:b0:47:b4:ef:af:41:12:82:45
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft ECC TS Root Certificate Authority 2018
#        Validity
#            Not Before: Feb 27 20:51:34 2018 GMT
#            Not After : Feb 27 21:00:12 2043 GMT
#        Subject: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft ECC TS Root Certificate Authority 2018
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:de:cd:bb:70:20:f1:25:20:b4:94:e8:d7:b4:3b:
#                    0f:6e:87:dd:ab:ac:cf:4d:40:2f:81:33:6b:59:09:
#                    18:d6:87:0d:26:23:9c:b4:8d:95:9d:76:9f:a5:b9:
#                    06:42:e6:ad:36:b2:c4:b3:ae:7a:3c:08:d5:cb:9d:
#                    3a:5e:45:21:6c:0b:e3:20:f5:9b:c2:dd:44:33:e3:
#                    42:b9:ea:f2:28:42:92:aa:fe:0c:07:ca:8a:13:99:
#                    3b:62:00:ed:da:f3:35
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E8:47:C8:42:9A:B0:9D:AE:6F:0B:28:3B:98:15:8F:E3:B1:E8:80:B2
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                Policy: 1.3.6.1.4.1.311.76.509.1.1
#                  CPS: http://www.microsoft.com/pkiops/Docs/Repository.htm
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:14:86:50:c0:26:1a:eb:ea:a1:14:77:3a:5b:df:
#         63:39:a5:33:c7:50:40:d5:6b:35:6b:0f:b4:df:7d:56:b9:e1:
#         a5:9d:78:19:82:a1:43:6e:1a:d7:58:a3:55:03:42:db:02:30:
#         18:94:b4:1e:3a:8d:64:fa:0c:27:1b:87:13:4a:d2:b7:3a:00:
#         94:c6:f2:e5:63:bf:af:e3:fa:dc:93:d5:e7:46:9a:6b:81:69:
#         3e:02:df:51:0d:8f:28:71:41:89:91:2f

[p11-kit-object-v1]
label: "Microsoft Identity Verification Root Certificate Authority 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAs5EqB4MGZ/2eneDHwLek
5kIEfw+m21/71VrXRaD7dwvwgPOmbVpNeVPYoIaEV0Ugx6JU+8eiv4rHbjXzohXE
L07jSoWWSQ3/vpnYFPa8JwfuQpsr9QuSBuT9aRNlqJFy8piE64M9DuTXcRJIIcsN
7fZHSbeb+cnHF7aET/+4rJrXc2dJheOGvTdA0CWG1N61wm1iatWpeLwtb0n55WwU
FP0Ux9NlFjfey268XimN/WKbFSzWBea5iTIzo2LH19ZSZwjELvRWK54Lh8zsp7Sm
qusFzRlXpToLBCcckWeeLWItLx6+2sAgywQZyjP7ib6Y4nKgcjW+eeGcg2/kbRdv
kPM9AIZ1OI7Q4Emau9vT+DDK1VeIaE1y079tf3HY/b0NrpJkSLdbb3kmtc2blSGE
0e8PMj17V4zzRQdMfOBeGA41dottnss2dKsF+OBzXTJWlGeXJQrGNT2Ul+fBRIuA
/cH49HQZ5TD2BvshVz4GHItrFYYnSXuCk8pZ6HVH6D849MdTeaC2tOJcUe+9XzjB
E+Z4DJVaLsVAWSjMDyTA7LoJdyOZOKa2HNrHuiC21zfYfzevCOM7cdtucxt9mXKw
5IYzWXS1FgB7UG3GhhPa/cQ5gj0kAJpg2rqUwAVRLDSsUJkTh7uzBYCyTTACXLgm
g120Y3PvriOVT2AovjfVW6UCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Identity Verification Root Certificate Authority 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:98:d2:d1:d4:5b:19:95:48:13:79:c8:11:c0:87:99
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = Microsoft Corporation, CN = Microsoft Identity Verification Root Certificate Authority 2020
#        Validity
#            Not Before: Apr 16 18:36:16 2020 GMT
#            Not After : Apr 16 18:44:40 2045 GMT
#        Subject: C = US, O = Microsoft Corporation, CN = Microsoft Identity Verification Root Certificate Authority 2020
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:91:2a:07:83:06:67:fd:9e:9d:e0:c7:c0:b7:
#                    a4:e6:42:04:7f:0f:a6:db:5f:fb:d5:5a:d7:45:a0:
#                    fb:77:0b:f0:80:f3:a6:6d:5a:4d:79:53:d8:a0:86:
#                    84:57:45:20:c7:a2:54:fb:c7:a2:bf:8a:c7:6e:35:
#                    f3:a2:15:c4:2f:4e:e3:4a:85:96:49:0d:ff:be:99:
#                    d8:14:f6:bc:27:07:ee:42:9b:2b:f5:0b:92:06:e4:
#                    fd:69:13:65:a8:91:72:f2:98:84:eb:83:3d:0e:e4:
#                    d7:71:12:48:21:cb:0d:ed:f6:47:49:b7:9b:f9:c9:
#                    c7:17:b6:84:4f:ff:b8:ac:9a:d7:73:67:49:85:e3:
#                    86:bd:37:40:d0:25:86:d4:de:b5:c2:6d:62:6a:d5:
#                    a9:78:bc:2d:6f:49:f9:e5:6c:14:14:fd:14:c7:d3:
#                    65:16:37:de:cb:6e:bc:5e:29:8d:fd:62:9b:15:2c:
#                    d6:05:e6:b9:89:32:33:a3:62:c7:d7:d6:52:67:08:
#                    c4:2e:f4:56:2b:9e:0b:87:cc:ec:a7:b4:a6:aa:eb:
#                    05:cd:19:57:a5:3a:0b:04:27:1c:91:67:9e:2d:62:
#                    2d:2f:1e:be:da:c0:20:cb:04:19:ca:33:fb:89:be:
#                    98:e2:72:a0:72:35:be:79:e1:9c:83:6f:e4:6d:17:
#                    6f:90:f3:3d:00:86:75:38:8e:d0:e0:49:9a:bb:db:
#                    d3:f8:30:ca:d5:57:88:68:4d:72:d3:bf:6d:7f:71:
#                    d8:fd:bd:0d:ae:92:64:48:b7:5b:6f:79:26:b5:cd:
#                    9b:95:21:84:d1:ef:0f:32:3d:7b:57:8c:f3:45:07:
#                    4c:7c:e0:5e:18:0e:35:76:8b:6d:9e:cb:36:74:ab:
#                    05:f8:e0:73:5d:32:56:94:67:97:25:0a:c6:35:3d:
#                    94:97:e7:c1:44:8b:80:fd:c1:f8:f4:74:19:e5:30:
#                    f6:06:fb:21:57:3e:06:1c:8b:6b:15:86:27:49:7b:
#                    82:93:ca:59:e8:75:47:e8:3f:38:f4:c7:53:79:a0:
#                    b6:b4:e2:5c:51:ef:bd:5f:38:c1:13:e6:78:0c:95:
#                    5a:2e:c5:40:59:28:cc:0f:24:c0:ec:ba:09:77:23:
#                    99:38:a6:b6:1c:da:c7:ba:20:b6:d7:37:d8:7f:37:
#                    af:08:e3:3b:71:db:6e:73:1b:7d:99:72:b0:e4:86:
#                    33:59:74:b5:16:00:7b:50:6d:c6:86:13:da:fd:c4:
#                    39:82:3d:24:00:9a:60:da:ba:94:c0:05:51:2c:34:
#                    ac:50:99:13:87:bb:b3:05:80:b2:4d:30:02:5c:b8:
#                    26:83:5d:b4:63:73:ef:ae:23:95:4f:60:28:be:37:
#                    d5:5b:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C8:7E:D2:6A:85:2A:1B:CA:19:98:04:07:27:CF:50:10:4F:68:A8:A2
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha384WithRSAEncryption
#         af:6a:dd:e6:19:e7:2d:94:43:19:4e:cb:e9:50:95:64:a5:03:
#         91:02:8b:e2:36:80:3b:15:a2:52:c2:16:19:b6:6a:5a:5d:74:
#         43:30:f4:9b:ff:60:74:09:b1:21:1e:90:16:6d:c5:24:8f:5c:
#         66:88:63:f4:4f:cc:7d:f2:12:4c:40:10:8b:01:9f:da:a9:c8:
#         ae:f2:95:1b:cf:9d:05:eb:49:3e:74:a0:68:5b:e5:56:2c:65:
#         1c:82:7e:53:da:56:d9:46:17:79:92:45:c4:10:36:08:52:29:
#         17:cb:2f:a6:f2:7e:d4:69:24:8a:1e:8f:b0:73:0d:cc:1c:4a:
#         ab:b2:aa:ed:a7:91:63:01:64:22:a8:32:b8:7e:32:28:b3:67:
#         73:2d:91:b4:dc:31:01:0b:f7:47:0a:a6:f1:d7:4a:ed:56:60:
#         c4:2c:08:a3:7b:40:b0:bc:74:27:52:87:d6:be:88:dd:37:8a:
#         89:6e:67:88:1d:f5:c9:5d:a0:fe:b6:ab:3a:80:d7:1a:97:3c:
#         17:36:22:41:1e:ac:4d:d5:83:e6:3c:38:bd:4f:30:e9:54:a9:
#         d3:b6:04:c3:32:76:61:bb:b0:18:c5:2b:18:b3:c0:80:d5:b7:
#         95:b0:5e:51:4d:22:fc:ec:58:aa:e8:d8:94:b4:a5:2e:ed:92:
#         de:e7:18:7c:21:57:dd:55:63:f7:bf:6d:cd:1f:d2:a6:77:28:
#         70:c7:e2:5b:3a:5b:08:d2:5b:4e:c8:00:96:b3:e1:83:36:af:
#         86:0a:65:5c:74:f6:ea:ec:7a:6a:74:a0:f0:4b:ee:ef:94:a3:
#         ac:50:f2:87:ed:d7:3a:30:83:c9:fb:7d:57:be:e5:e3:f8:41:
#         ca:e5:64:ae:b3:a3:ec:58:ec:85:9a:cc:ef:b9:ea:f3:56:18:
#         b9:5c:73:9a:af:c5:77:17:83:59:db:37:1a:18:72:54:a5:41:
#         d2:b6:23:75:a3:43:9a:e5:77:7c:96:79:b7:41:8d:bf:ec:dc:
#         80:a0:9f:d1:77:75:58:5f:35:13:e0:25:1a:67:0b:7d:ce:25:
#         fa:07:0a:e4:61:21:d8:d4:1c:e5:07:c6:36:99:f4:96:d0:c6:
#         15:fe:4e:cd:d7:ae:8b:9d:db:16:fd:04:c6:92:bd:d4:88:e6:
#         a9:a3:aa:bb:f7:64:38:3b:5f:cc:0c:d0:35:be:74:19:03:a6:
#         c5:aa:4c:a2:61:36:82:3e:1d:f3:2b:bc:97:5d:db:4b:78:3b:
#         2d:f5:3b:ef:60:23:e8:f5:ec:0b:23:36:95:af:98:66:bf:53:
#         d3:7b:b8:69:4a:2a:96:66:69:c4:94:c6:f4:5f:6e:ac:98:78:
#         88:80:06:5c:a2:b2:ed:a2

[p11-kit-object-v1]
label: "Microsoft RSA Root Certificate Authority 2017"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAylu+lDOMKZWRFgqVvUdi
wYnzmTbfRpDJpe14am9HkWj4J2dQMx2hpvvg5UOjhAJXAV2cSECCUxC8v8c7aJC2
gi3l9GXQzG0ZzJX5e6xKlK0O3ktDHYcHkhOQgINkNTkE/OXpbLO2H1CUOGVQXBdG
ubaFtRy1F+jWRZ3YsiawysRwSq5gpN2z2ez8O9VXcrw/yMmy3ktr+CNsA8AFvZXH
zXM7ZoBk4xqsLvlHBfIGtptz9XgzW8eh+ycqobSakYyR0zqCPnZAtM1SYVFwKD/F
xVryyYxJuxRbTcj/Z01MEpat9f54qJeH1/1eIIDcoUsi+9SJrbrOR5dHVXuPRchn
KISVHGgw7+9J4DV7ZOeYsJTaTYU7PlXEKK9X854T20Ynnx6iXkSDpKXK1ROzSz/E
48LmhmGkUjC5eiBPbw84U8szDBMrj9aavSrILbEcfUtRykfRSCdyXYfr1UXmSGWd
r1KQuluiGGVXEp9oudQVa5TEaSKY9DPg7flRjkFQyTRPdpCs/DjB2OF7uePjlOFG
acsOClBrE7qsDzdatxK1kIEeVq5XIobZydLR11HjqzvGVf0eDtN0CtHaquppuJco
j0jEB/hSQzr0ylU1LLCmasCc+fKB4RJqwEXZZ7PO/yOiiQpU1BS5KqjX7PmrzSVY
MnmPkFuYOcQIBsGsfw49AKUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft RSA Root Certificate Authority 2017"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1e:d3:97:09:5f:d8:b4:b3:47:70:1e:aa:be:7f:45:b3
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = Microsoft Corporation, CN = Microsoft RSA Root Certificate Authority 2017
#        Validity
#            Not Before: Dec 18 22:51:22 2019 GMT
#            Not After : Jul 18 23:00:23 2042 GMT
#        Subject: C = US, O = Microsoft Corporation, CN = Microsoft RSA Root Certificate Authority 2017
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:5b:be:94:33:8c:29:95:91:16:0a:95:bd:47:
#                    62:c1:89:f3:99:36:df:46:90:c9:a5:ed:78:6a:6f:
#                    47:91:68:f8:27:67:50:33:1d:a1:a6:fb:e0:e5:43:
#                    a3:84:02:57:01:5d:9c:48:40:82:53:10:bc:bf:c7:
#                    3b:68:90:b6:82:2d:e5:f4:65:d0:cc:6d:19:cc:95:
#                    f9:7b:ac:4a:94:ad:0e:de:4b:43:1d:87:07:92:13:
#                    90:80:83:64:35:39:04:fc:e5:e9:6c:b3:b6:1f:50:
#                    94:38:65:50:5c:17:46:b9:b6:85:b5:1c:b5:17:e8:
#                    d6:45:9d:d8:b2:26:b0:ca:c4:70:4a:ae:60:a4:dd:
#                    b3:d9:ec:fc:3b:d5:57:72:bc:3f:c8:c9:b2:de:4b:
#                    6b:f8:23:6c:03:c0:05:bd:95:c7:cd:73:3b:66:80:
#                    64:e3:1a:ac:2e:f9:47:05:f2:06:b6:9b:73:f5:78:
#                    33:5b:c7:a1:fb:27:2a:a1:b4:9a:91:8c:91:d3:3a:
#                    82:3e:76:40:b4:cd:52:61:51:70:28:3f:c5:c5:5a:
#                    f2:c9:8c:49:bb:14:5b:4d:c8:ff:67:4d:4c:12:96:
#                    ad:f5:fe:78:a8:97:87:d7:fd:5e:20:80:dc:a1:4b:
#                    22:fb:d4:89:ad:ba:ce:47:97:47:55:7b:8f:45:c8:
#                    67:28:84:95:1c:68:30:ef:ef:49:e0:35:7b:64:e7:
#                    98:b0:94:da:4d:85:3b:3e:55:c4:28:af:57:f3:9e:
#                    13:db:46:27:9f:1e:a2:5e:44:83:a4:a5:ca:d5:13:
#                    b3:4b:3f:c4:e3:c2:e6:86:61:a4:52:30:b9:7a:20:
#                    4f:6f:0f:38:53:cb:33:0c:13:2b:8f:d6:9a:bd:2a:
#                    c8:2d:b1:1c:7d:4b:51:ca:47:d1:48:27:72:5d:87:
#                    eb:d5:45:e6:48:65:9d:af:52:90:ba:5b:a2:18:65:
#                    57:12:9f:68:b9:d4:15:6b:94:c4:69:22:98:f4:33:
#                    e0:ed:f9:51:8e:41:50:c9:34:4f:76:90:ac:fc:38:
#                    c1:d8:e1:7b:b9:e3:e3:94:e1:46:69:cb:0e:0a:50:
#                    6b:13:ba:ac:0f:37:5a:b7:12:b5:90:81:1e:56:ae:
#                    57:22:86:d9:c9:d2:d1:d7:51:e3:ab:3b:c6:55:fd:
#                    1e:0e:d3:74:0a:d1:da:aa:ea:69:b8:97:28:8f:48:
#                    c4:07:f8:52:43:3a:f4:ca:55:35:2c:b0:a6:6a:c0:
#                    9c:f9:f2:81:e1:12:6a:c0:45:d9:67:b3:ce:ff:23:
#                    a2:89:0a:54:d4:14:b9:2a:a8:d7:ec:f9:ab:cd:25:
#                    58:32:79:8f:90:5b:98:39:c4:08:06:c1:ac:7f:0e:
#                    3d:00:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                09:CB:59:7F:86:B2:70:8F:1A:C3:39:E3:C0:D9:E9:BF:BB:4D:B2:23
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha384WithRSAEncryption
#         ac:af:3e:5d:c2:11:96:89:8e:a3:e7:92:d6:97:15:b8:13:a2:
#         a6:42:2e:02:cd:16:05:59:27:ca:20:e8:ba:b8:e8:1a:ec:4d:
#         a8:97:56:ae:65:43:b1:8f:00:9b:52:cd:55:cd:53:39:6d:62:
#         4c:8b:0d:5b:7c:2e:44:bf:83:10:8f:f3:53:82:80:c3:4f:3a:
#         c7:6e:11:3f:e6:e3:16:91:84:fb:6d:84:7f:34:74:ad:89:a7:
#         ce:b9:d7:d7:9f:84:64:92:be:95:a1:ad:09:53:33:dd:ee:0a:
#         ea:4a:51:8e:6f:55:ab:ba:b5:94:46:ae:8c:7f:d8:a2:50:25:
#         65:60:80:46:db:33:04:ae:6c:b5:98:74:54:25:dc:93:e4:f8:
#         e3:55:15:3d:b8:6d:c3:0a:a4:12:c1:69:85:6e:df:64:f1:53:
#         99:e1:4a:75:20:9d:95:0f:e4:d6:dc:03:f1:59:18:e8:47:89:
#         b2:57:5a:94:b6:a9:d8:17:2b:17:49:e5:76:cb:c1:56:99:3a:
#         37:b1:ff:69:2c:91:91:93:e1:df:4c:a3:37:76:4d:a1:9f:f8:
#         6d:1e:1d:d3:fa:ec:fb:f4:45:1d:13:6d:cf:f7:59:e5:22:27:
#         72:2b:86:f3:57:bb:30:ed:24:4d:dc:7d:56:bb:a3:b3:f8:34:
#         79:89:c1:e0:f2:02:61:f7:a6:fc:0f:bb:1c:17:0b:ae:41:d9:
#         7c:bd:27:a3:fd:2e:3a:d1:93:94:b1:73:1d:24:8b:af:5b:20:
#         89:ad:b7:67:66:79:f5:3a:c6:a6:96:33:fe:53:92:c8:46:b1:
#         11:91:c6:99:7f:8f:c9:d6:66:31:20:41:10:87:2d:0c:d6:c1:
#         af:34:98:ca:64:83:fb:13:57:d1:c1:f0:3c:7a:8c:a5:c1:fd:
#         95:21:a0:71:c1:93:67:71:12:ea:8f:88:0a:69:19:64:99:23:
#         56:fb:ac:2a:2e:70:be:66:c4:0c:84:ef:e5:8b:f3:93:01:f8:
#         6a:90:93:67:4b:b2:68:a3:b5:62:8f:e9:3f:8c:7a:3b:5e:0f:
#         e7:8c:b8:c6:7c:ef:37:fd:74:e2:c8:4f:33:72:e1:94:39:6d:
#         bd:12:af:be:0c:4e:70:7c:1b:6f:8d:b3:32:93:73:44:16:6d:
#         e8:f4:f7:e0:95:80:8f:96:5d:38:a4:f4:ab:de:0a:30:87:93:
#         d8:4d:00:71:62:45:27:4b:3a:42:84:5b:7f:65:b7:67:34:52:
#         2d:9c:16:6b:aa:a8:d8:7b:a3:42:4c:71:c7:0c:ca:3e:83:e4:
#         a6:ef:b7:01:30:5e:51:a3:79:f5:70:69:a6:41:44:0f:86:b0:
#         2c:91:c6:3d:ea:ae:0f:84

[p11-kit-object-v1]
label: "Microsoft Root Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqQK9wXDmO/JOGyifl3he
MOqiqY0lX/j+lUyjt/6doiA+fFGim6KPYDJr0UJkee6sdslU2vLrnIYcj5+EZrPF
a3piI9YdPN4PAZLolsS/LWaammgmmdA6LL8MtVgmwUbnCj44liypKDmo7EmDQuOE
D7uabFVhrIJ8oWAtd0zpmbRkO5pQHDEIJBSfqeeRKxjmPZhjFGBYBWWfHTdSh/en
75QCxhvTv1VFs4mAvzrsVJROrv2nem10Tq8YzJYJKCEAV5BgaTe7SxIHPFb/W/uk
ZgoIptKBVlfvtjteFoF3BNr2vq6Alf6wzX/WpxpyXDzKvPAIoyIwswaFybMgdxOF
3wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Root Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c1:00:8b:3c:3c:88:11:d1:3e:f6:63:ec:df:40
#        Signature Algorithm: md5WithRSAEncryption
#        Issuer: OU = Copyright (c) 1997 Microsoft Corp., OU = Microsoft Corporation, CN = Microsoft Root Authority
#        Validity
#            Not Before: Jan 10 07:00:00 1997 GMT
#            Not After : Dec 31 07:00:00 2020 GMT
#        Subject: OU = Copyright (c) 1997 Microsoft Corp., OU = Microsoft Corporation, CN = Microsoft Root Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a9:02:bd:c1:70:e6:3b:f2:4e:1b:28:9f:97:78:
#                    5e:30:ea:a2:a9:8d:25:5f:f8:fe:95:4c:a3:b7:fe:
#                    9d:a2:20:3e:7c:51:a2:9b:a2:8f:60:32:6b:d1:42:
#                    64:79:ee:ac:76:c9:54:da:f2:eb:9c:86:1c:8f:9f:
#                    84:66:b3:c5:6b:7a:62:23:d6:1d:3c:de:0f:01:92:
#                    e8:96:c4:bf:2d:66:9a:9a:68:26:99:d0:3a:2c:bf:
#                    0c:b5:58:26:c1:46:e7:0a:3e:38:96:2c:a9:28:39:
#                    a8:ec:49:83:42:e3:84:0f:bb:9a:6c:55:61:ac:82:
#                    7c:a1:60:2d:77:4c:e9:99:b4:64:3b:9a:50:1c:31:
#                    08:24:14:9f:a9:e7:91:2b:18:e6:3d:98:63:14:60:
#                    58:05:65:9f:1d:37:52:87:f7:a7:ef:94:02:c6:1b:
#                    d3:bf:55:45:b3:89:80:bf:3a:ec:54:94:4e:ae:fd:
#                    a7:7a:6d:74:4e:af:18:cc:96:09:28:21:00:57:90:
#                    60:69:37:bb:4b:12:07:3c:56:ff:5b:fb:a4:66:0a:
#                    08:a6:d2:81:56:57:ef:b6:3b:5e:16:81:77:04:da:
#                    f6:be:ae:80:95:fe:b0:cd:7f:d6:a7:1a:72:5c:3c:
#                    ca:bc:f0:08:a3:22:30:b3:06:85:c9:b3:20:77:13:
#                    85:df
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            2.5.29.1: 
#                0....[.p.ir.#Q~..M....r0p1+0)..U..."Copyright (c) 1997 Microsoft Corp.1.0...U....Microsoft Corporation1!0...U....Microsoft Root Authority......<<...>.c..@
#    Signature Algorithm: md5WithRSAEncryption
#         95:e8:0b:c0:8d:f3:97:18:35:ed:b8:01:24:d8:77:11:f3:5c:
#         60:32:9f:9e:0b:cb:3e:05:91:88:8f:c9:3a:e6:21:f2:f0:57:
#         93:2c:b5:a0:47:c8:62:ef:fc:d7:cc:3b:3b:5a:a9:36:54:69:
#         fe:24:6d:3f:c9:cc:aa:de:05:7c:dd:31:8d:3d:9f:10:70:6a:
#         bb:fe:12:4f:18:69:c0:fc:d0:43:e3:11:5a:20:4f:ea:62:7b:
#         af:aa:19:c8:2b:37:25:2d:be:65:a1:12:8a:25:0f:63:a3:f7:
#         54:1c:f9:21:c9:d6:15:f3:52:ac:6e:43:32:07:fd:82:17:f8:
#         e5:67:6c:0d:51:f6:bd:f1:52:c7:bd:e7:c4:30:fc:20:31:09:
#         88:1d:95:29:1a:4d:d5:1d:02:a5:f1:80:e0:03:b4:5b:f4:b1:
#         dd:c8:57:ee:65:49:c7:52:54:b6:b4:03:28:12:ff:90:d6:f0:
#         08:8f:7e:b8:97:c5:ab:37:2c:e4:7a:e4:a8:77:e3:76:a0:00:
#         d0:6a:3f:c1:d2:36:8a:e0:41:12:a8:35:6a:1b:6a:db:35:e1:
#         d4:1c:04:e4:a8:45:04:c8:5a:33:38:6e:4d:1c:0d:62:b7:0a:
#         a2:8c:d3:d5:54:3f:46:cd:1c:55:a6:70:db:12:3a:87:93:75:
#         9f:a7:d2:a0

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            79:ad:16:a1:4a:a0:a5:ad:4c:73:58:f4:07:13:2e:65
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: DC = com, DC = microsoft, CN = Microsoft Root Certificate Authority
#        Validity
#            Not Before: May  9 23:19:22 2001 GMT
#            Not After : May  9 23:28:13 2021 GMT
#        Subject: DC = com, DC = microsoft, CN = Microsoft Root Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:f3:5d:fa:80:67:d4:5a:a7:a9:0c:2c:90:20:d0:
#                    35:08:3c:75:84:cd:b7:07:89:9c:89:da:de:ce:c3:
#                    60:fa:91:68:5a:9e:94:71:29:18:76:7c:c2:e0:c8:
#                    25:76:94:0e:58:fa:04:34:36:e6:df:af:f7:80:ba:
#                    e9:58:0b:2b:93:e5:9d:05:e3:77:22:91:f7:34:64:
#                    3c:22:91:1d:5e:e1:09:90:bc:14:fe:fc:75:58:19:
#                    e1:79:b7:07:92:a3:ae:88:59:08:d8:9f:07:ca:03:
#                    58:fc:68:29:6d:32:d7:d2:a8:cb:4b:fc:e1:0b:48:
#                    32:4f:e6:eb:b8:ad:4f:e4:5c:6f:13:94:99:db:95:
#                    d5:75:db:a8:1a:b7:94:91:b4:77:5b:f5:48:0c:8f:
#                    6a:79:7d:14:70:04:7d:6d:af:90:f5:da:70:d8:47:
#                    b7:bf:9b:2f:6c:e7:05:b7:e1:11:60:ac:79:91:14:
#                    7c:c5:d6:a6:e4:e1:7e:d5:c3:7e:e5:92:d2:3c:00:
#                    b5:36:82:de:79:e1:6d:f3:b5:6e:f8:9f:33:c9:cb:
#                    52:7d:73:98:36:db:8b:a1:6b:a2:95:97:9b:a3:de:
#                    c2:4d:26:ff:06:96:67:25:06:c8:e7:ac:e4:ee:12:
#                    33:95:31:99:c8:35:08:4e:34:ca:79:53:d5:b5:be:
#                    63:32:59:40:36:c0:a5:4e:04:4d:3d:db:5b:07:33:
#                    e4:58:bf:ef:3f:53:64:d8:42:59:35:57:fd:0f:45:
#                    7c:24:04:4d:9e:d6:38:74:11:97:22:90:ce:68:44:
#                    74:92:6f:d5:4b:6f:b0:86:e3:c7:36:42:a0:d0:fc:
#                    c1:c0:5a:f9:a3:61:b9:30:47:71:96:0a:16:b0:91:
#                    c0:42:95:ef:10:7f:28:6a:e3:2a:1f:b1:e4:cd:03:
#                    3f:77:71:04:c7:20:fc:49:0f:1d:45:88:a4:d7:cb:
#                    7e:88:ad:8e:2d:ec:45:db:c4:51:04:c9:2a:fc:ec:
#                    86:9e:9a:11:97:5b:de:ce:53:88:e6:e2:b7:fd:ac:
#                    95:c2:28:40:db:ef:04:90:df:81:33:39:d9:b2:45:
#                    a5:23:87:06:a5:55:89:31:bb:06:2d:60:0e:41:18:
#                    7d:1f:2e:b5:97:cb:11:eb:15:d5:24:a5:94:ef:15:
#                    14:89:fd:4b:73:fa:32:5b:fc:d1:33:00:f9:59:62:
#                    70:07:32:ea:2e:ab:40:2d:7b:ca:dd:21:67:1b:30:
#                    99:8f:16:aa:23:a8:41:d1:b0:6e:11:9b:36:c4:de:
#                    40:74:9c:e1:58:65:c1:60:1e:7a:5b:38:c8:8f:bb:
#                    04:26:7c:d4:16:40:e5:b6:6b:6c:aa:86:fd:00:bf:
#                    ce:c1:35
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                0E:AC:82:60:40:56:27:97:E5:25:13:FC:2A:E1:0A:53:95:59:E4:A4
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         c5:11:4d:03:3a:60:dd:5d:52:11:77:8f:b2:bb:36:c8:b2:05:
#         bf:b4:b7:a8:d8:20:9d:5c:13:03:b6:1c:22:fa:06:13:35:b6:
#         c8:63:d4:9a:47:6f:26:57:d2:55:f1:04:b1:26:5f:d6:a9:50:
#         68:a0:bc:d2:b8:6e:cc:c3:e9:ac:df:19:cd:78:ac:59:74:ac:
#         66:34:36:c4:1b:3e:6c:38:4c:33:0e:30:12:0d:a3:26:fe:51:
#         53:00:ff:af:5a:4e:84:0d:0f:1f:e4:6d:05:2e:4e:85:4b:8d:
#         6c:33:6f:54:d2:64:ab:bf:50:af:7d:7a:39:a0:37:ed:63:03:
#         0f:fc:13:06:ce:16:36:d4:54:3b:95:1b:51:62:3a:e5:4d:17:
#         d4:05:39:92:9a:27:a8:5b:aa:bd:ec:bb:be:e3:20:89:60:71:
#         6c:56:b3:a5:13:d0:6d:0e:23:7e:95:03:ed:68:3d:f2:d8:63:
#         b8:6b:4d:b6:e8:30:b5:e1:ca:94:4b:f7:a2:aa:5d:99:30:b2:
#         3d:a7:c2:51:6c:28:20:01:24:27:2b:4b:00:b7:9d:11:6b:70:
#         be:b2:10:82:bc:0c:9b:68:d0:8d:3b:24:87:aa:99:28:72:9d:
#         33:5f:59:90:bd:f5:de:93:9e:3a:62:5a:34:39:e2:88:55:1d:
#         b9:06:b0:c1:89:6b:2d:d7:69:c3:19:12:36:84:d0:c9:a0:da:
#         ff:2f:69:78:b2:e5:7a:da:eb:d7:0c:c0:f7:bd:63:17:b8:39:
#         13:38:a2:36:5b:7b:f2:85:56:6a:1d:64:62:c1:38:e2:aa:bf:
#         51:66:a2:94:f5:12:9c:66:22:10:6b:f2:b7:30:92:2d:f2:29:
#         f0:3d:3b:14:43:68:a2:f1:9c:29:37:cb:ce:38:20:25:6d:7c:
#         67:f3:7e:24:12:24:03:08:81:47:ec:a5:9e:97:f5:18:d7:cf:
#         bb:d5:ef:76:96:ef:fd:ce:db:56:9d:95:a0:42:f9:97:58:e1:
#         d7:31:22:d3:5f:59:e6:3e:6e:22:00:ea:43:84:b6:25:db:d9:
#         f3:08:56:68:c0:64:6b:1d:7c:ec:b6:93:a2:62:57:6e:2e:d8:
#         e7:58:8f:c4:31:49:26:dd:de:29:35:87:f5:30:71:70:5b:14:
#         3c:69:bd:89:12:7d:eb:2e:a3:fe:d8:7f:9e:82:5a:52:0a:2b:
#         c1:43:2b:d9:30:88:9f:c8:10:fb:89:8d:e6:a1:85:75:33:7e:
#         6c:9e:db:73:13:64:62:69:a5:2f:7d:ca:96:6d:9f:f8:04:4d:
#         30:92:3d:6e:21:14:21:c9:3d:e0:c3:fd:8a:6b:9d:4a:fd:d1:
#         a1:9d:99:43:77:3f:b0:da

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2010"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2010"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF7TCCA9WgAwIBAgIQKMw6Jb+6RKxEmptYa0M5qjANBgkqhkiG9w0BAQsFADCB
iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1Jl
ZG1vbmQxHjAcBgNVBAoTFU1pY3Jvc29mdCBDb3Jwb3JhdGlvbjEyMDAGA1UEAxMp
TWljcm9zb2Z0IFJvb3QgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IDIwMTAwHhcNMTAw
NjIzMjE1NzI0WhcNMzUwNjIzMjIwNDAxWjCBiDELMAkGA1UEBhMCVVMxEzARBgNV
BAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1JlZG1vbmQxHjAcBgNVBAoTFU1pY3Jv
c29mdCBDb3Jwb3JhdGlvbjEyMDAGA1UEAxMpTWljcm9zb2Z0IFJvb3QgQ2VydGlm
aWNhdGUgQXV0aG9yaXR5IDIwMTAwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIK
AoICAQC5CJ4o5OTsBk5QaLNBxXvrrraOr4G6IkQfZTRpTL5wQBfyFnvief2G7Q05
9BuorZKQHss9do9a2bWREC48BY2KbSRU5x/tVq2DtFCcFaUXdIhZIPwIxYR202jU
byh4zly481CQRP/jY1++oZoslhUE1gf+HoQh4EIxEcQoNpTPUKRinsnWq3EAslsM
5pbUCiSW9f/G1bcb18u3IWKvEtyhXTfjGvsaRpjAm8DnYx8qCJMCfh5qjvKfGInk
IoWisYRXQP/1DthvnO3iRTEBzRfpf7CBReOqIUAmoXKqp088AQV+7oNYsV4GY5li
kXiCtw2TDCRqtBvbJ+xflQQ/k0ow9ZcYs6f5GaeTMx0ByNsiUlzXJclG+aL7h1lD
vptisY0thkQaRqx4YX4wCfquicRBKiJmA5E5RZzHiwyoyg0v+1LqDPdjMyOd/rAf
rWfWp1ADxgRwY7UssYZaQ7f7rvluKW4hIUEmBozJw+6wwoWTobmF2eYybEtMP9Zd
o+W1nXfDnMBVt3QA47g4q4OXUOGaQiQdxsCjMNEaWshSNPdz8ccYHzOteuzLQWDz
I5QgwkhFrFxRxi6AwuJ3Fb2Fh+02nZaR7gC1o3Dsn+ONgGiDdrqvXXBSIhbiZvu6
s8XC9z4vd6bK3sGmxkhMwzdRI9Mn17hOcJbwoUR2r3jPmuFmEwIDAQABo1EwTzAL
BgNVHQ8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQU1fZWy4/oolxi
aNE9lJBb186aGMQwEAYJKwYBBAGCNxUBBAMCAQAwDQYJKoZIhvcNAQELBQADggIB
AKylloy/u66m9tdxh0MxVoj9HDJxWzW31PCR8q834hTx8wImBT4WFH8UurhP+4my
sufUCcxtuVs7ZGVwZrfysVrfGgLz9VG4Z215879We+SEuSsem0CcJjT5RxiYadgc
17bRv49hwmfEte9gQ44QGzZJ5CDKrafBsSdlCfjN9Vsq0IQz8+8f8vWcC1iTN6B1
oN5y3mx1KmYi9YwGMFafQLkwqkB3FYLXi+zA07K9g8V3DB6urxlToE15cZ8PrzDO
Z/nWLMwiQXoH8pdCGM5ZeRBV3m8Q5Ljag2ZAFgloI1uXLiaaArtXjMW4umliMoCJ
nqH9wJJ8eyszGYQqY8UAaGL6n0eNmXpFOqfp7e5pQrXzgZtHVhB7/HA2hBhz6u/5
l02eMyPdJgu6Krc/RNyDJ/+9YVkrEbfKT9vFiwwcMa4y+Pi5Qvd/3GGadrFaBOER
PWZFtxhxvskkhdbz1LpBNF0SLSW5jaYTSG1LsAd9mZMJYYF0VyaKq2nj5NnHiMwk
2OxSJFwevJEU4pbe6wrant1fs1vb1ILsxiBQhyVAOvvH7s3+M+Vuw4QJVQMlOcDp
NV1lMaj2v6AJzSnHszYyLtyV84PBWs+LjfbqsyH4pO0eMQ62TBGrYAukEiMiF6M2
ZIKRBBLgq28ey1AFYbRA/1mGcdHVM2l8qXOKONdkDPFp
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            28:cc:3a:25:bf:ba:44:ac:44:9a:9b:58:6b:43:39:aa
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft Root Certificate Authority 2010
#        Validity
#            Not Before: Jun 23 21:57:24 2010 GMT
#            Not After : Jun 23 22:04:01 2035 GMT
#        Subject: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft Root Certificate Authority 2010
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b9:08:9e:28:e4:e4:ec:06:4e:50:68:b3:41:c5:
#                    7b:eb:ae:b6:8e:af:81:ba:22:44:1f:65:34:69:4c:
#                    be:70:40:17:f2:16:7b:e2:79:fd:86:ed:0d:39:f4:
#                    1b:a8:ad:92:90:1e:cb:3d:76:8f:5a:d9:b5:91:10:
#                    2e:3c:05:8d:8a:6d:24:54:e7:1f:ed:56:ad:83:b4:
#                    50:9c:15:a5:17:74:88:59:20:fc:08:c5:84:76:d3:
#                    68:d4:6f:28:78:ce:5c:b8:f3:50:90:44:ff:e3:63:
#                    5f:be:a1:9a:2c:96:15:04:d6:07:fe:1e:84:21:e0:
#                    42:31:11:c4:28:36:94:cf:50:a4:62:9e:c9:d6:ab:
#                    71:00:b2:5b:0c:e6:96:d4:0a:24:96:f5:ff:c6:d5:
#                    b7:1b:d7:cb:b7:21:62:af:12:dc:a1:5d:37:e3:1a:
#                    fb:1a:46:98:c0:9b:c0:e7:63:1f:2a:08:93:02:7e:
#                    1e:6a:8e:f2:9f:18:89:e4:22:85:a2:b1:84:57:40:
#                    ff:f5:0e:d8:6f:9c:ed:e2:45:31:01:cd:17:e9:7f:
#                    b0:81:45:e3:aa:21:40:26:a1:72:aa:a7:4f:3c:01:
#                    05:7e:ee:83:58:b1:5e:06:63:99:62:91:78:82:b7:
#                    0d:93:0c:24:6a:b4:1b:db:27:ec:5f:95:04:3f:93:
#                    4a:30:f5:97:18:b3:a7:f9:19:a7:93:33:1d:01:c8:
#                    db:22:52:5c:d7:25:c9:46:f9:a2:fb:87:59:43:be:
#                    9b:62:b1:8d:2d:86:44:1a:46:ac:78:61:7e:30:09:
#                    fa:ae:89:c4:41:2a:22:66:03:91:39:45:9c:c7:8b:
#                    0c:a8:ca:0d:2f:fb:52:ea:0c:f7:63:33:23:9d:fe:
#                    b0:1f:ad:67:d6:a7:50:03:c6:04:70:63:b5:2c:b1:
#                    86:5a:43:b7:fb:ae:f9:6e:29:6e:21:21:41:26:06:
#                    8c:c9:c3:ee:b0:c2:85:93:a1:b9:85:d9:e6:32:6c:
#                    4b:4c:3f:d6:5d:a3:e5:b5:9d:77:c3:9c:c0:55:b7:
#                    74:00:e3:b8:38:ab:83:97:50:e1:9a:42:24:1d:c6:
#                    c0:a3:30:d1:1a:5a:c8:52:34:f7:73:f1:c7:18:1f:
#                    33:ad:7a:ec:cb:41:60:f3:23:94:20:c2:48:45:ac:
#                    5c:51:c6:2e:80:c2:e2:77:15:bd:85:87:ed:36:9d:
#                    96:91:ee:00:b5:a3:70:ec:9f:e3:8d:80:68:83:76:
#                    ba:af:5d:70:52:22:16:e2:66:fb:ba:b3:c5:c2:f7:
#                    3e:2f:77:a6:ca:de:c1:a6:c6:48:4c:c3:37:51:23:
#                    d3:27:d7:b8:4e:70:96:f0:a1:44:76:af:78:cf:9a:
#                    e1:66:13
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                D5:F6:56:CB:8F:E8:A2:5C:62:68:D1:3D:94:90:5B:D7:CE:9A:18:C4
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         ac:a5:96:8c:bf:bb:ae:a6:f6:d7:71:87:43:31:56:88:fd:1c:
#         32:71:5b:35:b7:d4:f0:91:f2:af:37:e2:14:f1:f3:02:26:05:
#         3e:16:14:7f:14:ba:b8:4f:fb:89:b2:b2:e7:d4:09:cc:6d:b9:
#         5b:3b:64:65:70:66:b7:f2:b1:5a:df:1a:02:f3:f5:51:b8:67:
#         6d:79:f3:bf:56:7b:e4:84:b9:2b:1e:9b:40:9c:26:34:f9:47:
#         18:98:69:d8:1c:d7:b6:d1:bf:8f:61:c2:67:c4:b5:ef:60:43:
#         8e:10:1b:36:49:e4:20:ca:ad:a7:c1:b1:27:65:09:f8:cd:f5:
#         5b:2a:d0:84:33:f3:ef:1f:f2:f5:9c:0b:58:93:37:a0:75:a0:
#         de:72:de:6c:75:2a:66:22:f5:8c:06:30:56:9f:40:b9:30:aa:
#         40:77:15:82:d7:8b:ec:c0:d3:b2:bd:83:c5:77:0c:1e:ae:af:
#         19:53:a0:4d:79:71:9f:0f:af:30:ce:67:f9:d6:2c:cc:22:41:
#         7a:07:f2:97:42:18:ce:59:79:10:55:de:6f:10:e4:b8:da:83:
#         66:40:16:09:68:23:5b:97:2e:26:9a:02:bb:57:8c:c5:b8:ba:
#         69:62:32:80:89:9e:a1:fd:c0:92:7c:7b:2b:33:19:84:2a:63:
#         c5:00:68:62:fa:9f:47:8d:99:7a:45:3a:a7:e9:ed:ee:69:42:
#         b5:f3:81:9b:47:56:10:7b:fc:70:36:84:18:73:ea:ef:f9:97:
#         4d:9e:33:23:dd:26:0b:ba:2a:b7:3f:44:dc:83:27:ff:bd:61:
#         59:2b:11:b7:ca:4f:db:c5:8b:0c:1c:31:ae:32:f8:f8:b9:42:
#         f7:7f:dc:61:9a:76:b1:5a:04:e1:11:3d:66:45:b7:18:71:be:
#         c9:24:85:d6:f3:d4:ba:41:34:5d:12:2d:25:b9:8d:a6:13:48:
#         6d:4b:b0:07:7d:99:93:09:61:81:74:57:26:8a:ab:69:e3:e4:
#         d9:c7:88:cc:24:d8:ec:52:24:5c:1e:bc:91:14:e2:96:de:eb:
#         0a:da:9e:dd:5f:b3:5b:db:d4:82:ec:c6:20:50:87:25:40:3a:
#         fb:c7:ee:cd:fe:33:e5:6e:c3:84:09:55:03:25:39:c0:e9:35:
#         5d:65:31:a8:f6:bf:a0:09:cd:29:c7:b3:36:32:2e:dc:95:f3:
#         83:c1:5a:cf:8b:8d:f6:ea:b3:21:f8:a4:ed:1e:31:0e:b6:4c:
#         11:ab:60:0b:a4:12:23:22:17:a3:36:64:82:91:04:12:e0:ab:
#         6f:1e:cb:50:05:61:b4:40:ff:59:86:71:d1:d5:33:69:7c:a9:
#         73:8a:38:d7:64:0c:f1:69

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAsoBBqjU4TRNyMmgiTbiy
8f/VUrxsx/XSSow27tHCXH6Miq6vEyhvwHPjOs7QJahaOm3vqLhZqxMjaM0MKYfR
b4Bcj0R/XZABUlisUcVfKofc3NgKHcEDuXuwVuij3mRhwp7483y57A21VP5MtmVP
iPCcSJkMQgsJfDFZF3kGeCiNiTpMAyW+cWpcC+eEYKSZIuPSr4Skp/vRmO0Mqd6U
ieEOoNzAzpk96ghSu1Z55B+Euh64tMRJXE8xS4fd3QVnJpmA4HERo7ilQeKkU7n3
MimDDBO/Nl4Es0tDRy9r4pEe05hP3UIHyOgdEvyZqWs+kn7I1mk6/GS9tgmdyv0M
C6Kbd2BLA5SkMGkS1kItwUFMytyq/Y9bg0aa2fyx0eOzyX9Ies0k8EGPXHTQrLAQ
IAZJt8ctIchX49CG8wNo+9DOccGJmUpkAWz97DCRz0E8ksfluoYdYYTHX4M5Yq60
ki9H8wv4VeugH1nQu3SbHtB25vLpBtcQ6Ppk3mnGNZaIAvBGuD8nmW/LcYkpNfdI
FgI1j9V5fE0Cz1/rioNPRXGI+akNTnLpwpwHz0kbTgQOY1GMXtgAwVUstsbgwmVO
yTQ59ZyzxH7oYW4TXxXEX9l+7R3O7kTsyy6Gsew49nDtq1wTwdkPDceAslXtNPes
m+TD2udHPKa1jzHfxUuv6/ECAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3f:8b:c8:b5:fc:9f:b2:96:43:b5:69:d6:6c:42:e1:44
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft Root Certificate Authority 2011
#        Validity
#            Not Before: Mar 22 22:05:28 2011 GMT
#            Not After : Mar 22 22:13:04 2036 GMT
#        Subject: C = US, ST = Washington, L = Redmond, O = Microsoft Corporation, CN = Microsoft Root Certificate Authority 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b2:80:41:aa:35:38:4d:13:72:32:68:22:4d:b8:
#                    b2:f1:ff:d5:52:bc:6c:c7:f5:d2:4a:8c:36:ee:d1:
#                    c2:5c:7e:8c:8a:ae:af:13:28:6f:c0:73:e3:3a:ce:
#                    d0:25:a8:5a:3a:6d:ef:a8:b8:59:ab:13:23:68:cd:
#                    0c:29:87:d1:6f:80:5c:8f:44:7f:5d:90:01:52:58:
#                    ac:51:c5:5f:2a:87:dc:dc:d8:0a:1d:c1:03:b9:7b:
#                    b0:56:e8:a3:de:64:61:c2:9e:f8:f3:7c:b9:ec:0d:
#                    b5:54:fe:4c:b6:65:4f:88:f0:9c:48:99:0c:42:0b:
#                    09:7c:31:59:17:79:06:78:28:8d:89:3a:4c:03:25:
#                    be:71:6a:5c:0b:e7:84:60:a4:99:22:e3:d2:af:84:
#                    a4:a7:fb:d1:98:ed:0c:a9:de:94:89:e1:0e:a0:dc:
#                    c0:ce:99:3d:ea:08:52:bb:56:79:e4:1f:84:ba:1e:
#                    b8:b4:c4:49:5c:4f:31:4b:87:dd:dd:05:67:26:99:
#                    80:e0:71:11:a3:b8:a5:41:e2:a4:53:b9:f7:32:29:
#                    83:0c:13:bf:36:5e:04:b3:4b:43:47:2f:6b:e2:91:
#                    1e:d3:98:4f:dd:42:07:c8:e8:1d:12:fc:99:a9:6b:
#                    3e:92:7e:c8:d6:69:3a:fc:64:bd:b6:09:9d:ca:fd:
#                    0c:0b:a2:9b:77:60:4b:03:94:a4:30:69:12:d6:42:
#                    2d:c1:41:4c:ca:dc:aa:fd:8f:5b:83:46:9a:d9:fc:
#                    b1:d1:e3:b3:c9:7f:48:7a:cd:24:f0:41:8f:5c:74:
#                    d0:ac:b0:10:20:06:49:b7:c7:2d:21:c8:57:e3:d0:
#                    86:f3:03:68:fb:d0:ce:71:c1:89:99:4a:64:01:6c:
#                    fd:ec:30:91:cf:41:3c:92:c7:e5:ba:86:1d:61:84:
#                    c7:5f:83:39:62:ae:b4:92:2f:47:f3:0b:f8:55:eb:
#                    a0:1f:59:d0:bb:74:9b:1e:d0:76:e6:f2:e9:06:d7:
#                    10:e8:fa:64:de:69:c6:35:96:88:02:f0:46:b8:3f:
#                    27:99:6f:cb:71:89:29:35:f7:48:16:02:35:8f:d5:
#                    79:7c:4d:02:cf:5f:eb:8a:83:4f:45:71:88:f9:a9:
#                    0d:4e:72:e9:c2:9c:07:cf:49:1b:4e:04:0e:63:51:
#                    8c:5e:d8:00:c1:55:2c:b6:c6:e0:c2:65:4e:c9:34:
#                    39:f5:9c:b3:c4:7e:e8:61:6e:13:5f:15:c4:5f:d9:
#                    7e:ed:1d:ce:ee:44:ec:cb:2e:86:b1:ec:38:f6:70:
#                    ed:ab:5c:13:c1:d9:0f:0d:c7:80:b2:55:ed:34:f7:
#                    ac:9b:e4:c3:da:e7:47:3c:a6:b5:8f:31:df:c5:4b:
#                    af:eb:f1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                72:2D:3A:02:31:90:43:B9:14:05:4E:E1:EA:A7:C7:31:D1:23:89:34
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:72:cf:0f:b7:c5:15:db:9b:c0:49:ca:26:5b:fe:9e:13:e6:
#         d3:f0:d2:db:97:5f:f2:4b:3f:4d:b3:ae:19:ae:ed:d7:97:a0:
#         ac:ef:a9:3a:a3:c2:41:b0:e5:b8:91:9e:13:81:24:03:e6:09:
#         fd:3f:57:40:39:21:24:56:d1:10:2f:4b:40:a9:36:86:4b:b4:
#         53:57:9a:fb:f1:7e:89:8f:11:fe:18:6c:51:aa:e8:ed:09:95:
#         b5:e5:71:c9:a1:e9:87:75:a6:15:7f:c9:7e:37:54:5e:74:93:
#         c5:c3:67:cc:0d:4f:6b:a8:17:0c:6d:08:92:7e:8b:dd:81:aa:
#         2d:70:21:c3:3d:06:14:bb:bf:24:5e:a7:84:d7:3f:0f:21:22:
#         bd:4b:00:06:db:97:1c:d8:5e:d4:c5:0b:5c:87:6e:50:a4:e8:
#         c3:38:a4:fb:cb:2c:c5:92:66:9b:85:5e:cb:7a:6c:93:7c:80:
#         29:58:5b:57:b5:40:69:ba:08:79:a6:64:62:15:9d:87:96:45:
#         b5:66:23:20:03:8b:1c:73:a0:d3:a2:79:33:e0:50:59:86:db:
#         2f:e5:02:25:ea:73:2a:9f:00:14:c8:36:c7:92:3b:e9:4e:00:
#         ec:d8:56:09:b9:33:49:12:d2:54:0b:01:ab:ac:47:b6:91:29:
#         7d:4c:b4:75:80:52:01:e8:ca:82:f6:9f:cc:ac:9c:8f:17:ea:
#         2f:26:b0:ab:72:ac:0b:fe:9e:51:1e:c7:43:55:67:4f:51:b3:
#         57:d6:b6:ec:ee:52:b7:3a:e9:4e:e1:d7:81:88:bc:4f:8e:75:
#         bb:4b:a8:f0:35:aa:26:d4:67:67:49:b2:70:4c:3b:93:dc:1d:
#         df:78:90:86:72:b2:38:a4:d1:dc:92:4d:c9:58:eb:2b:12:5c:
#         d4:3b:ae:8c:6b:b0:83:e5:01:3f:f8:09:32:f6:93:35:34:22:
#         af:dd:37:0d:77:09:80:2b:cd:48:00:f1:8c:99:19:47:05:01:
#         e9:d1:bf:d1:4e:d0:e6:28:43:37:99:a4:0a:4a:08:d9:9a:71:
#         73:d2:aa:cd:31:13:63:76:a1:37:6f:92:38:1e:7d:12:3c:66:
#         32:e7:cb:6d:e1:fc:52:89:dd:ca:d6:66:05:9a:96:61:be:a2:
#         28:c7:1c:a3:a7:36:50:3c:3a:a4:df:4a:6e:e6:87:3b:ce:eb:
#         f0:e0:81:37:9d:13:3c:52:8e:bd:b9:1d:34:c6:1d:d5:0a:6a:
#         3d:98:29:70:8c:89:2a:d1:ab:82:10:48:1f:dc:f4:ef:a5:c5:
#         bb:55:1a:38:63:84:4e:b7:6c:ad:95:54:ec:65:22:10:49:17:
#         b8:c0:1e:c7:0f:ac:54:47

[p11-kit-object-v1]
label: "NAVER Global Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NAVER Global Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:94:30:1e:a2:0b:dd:f5:c5:33:2a:b1:43:44:71:f8:d6:50:4d:0d
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = KR, O = NAVER BUSINESS PLATFORM Corp., CN = NAVER Global Root Certification Authority
#        Validity
#            Not Before: Aug 18 08:58:42 2017 GMT
#            Not After : Aug 18 23:59:59 2037 GMT
#        Subject: C = KR, O = NAVER BUSINESS PLATFORM Corp., CN = NAVER Global Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:d4:f1:93:5c:b5:40:89:0a:ab:0d:90:5b:50:
#                    63:ae:90:94:74:17:45:72:d6:7b:65:5a:29:4b:a7:
#                    56:a0:4b:b8:2f:42:75:e9:d9:7b:24:5a:31:65:ab:
#                    17:17:d1:33:3a:d9:11:dc:40:36:87:df:c7:6a:e9:
#                    26:5e:59:8a:77:e3:e8:48:9c:31:16:fa:3e:91:b1:
#                    ca:c9:a3:e2:9f:ce:21:53:a3:02:36:30:cb:52:02:
#                    e5:da:32:5d:c3:c5:e6:f9:ee:11:c7:8b:c9:44:1e:
#                    84:93:18:4a:b4:9f:e5:12:64:69:d0:26:85:62:01:
#                    b6:c9:02:1d:be:83:51:bb:5c:da:f8:ad:15:6a:99:
#                    f7:92:54:f7:34:5b:e9:bf:ea:29:81:12:d4:53:91:
#                    96:b3:91:5a:dd:fe:90:73:28:fb:30:46:b5:ca:08:
#                    07:c7:71:72:c9:66:d3:34:97:f6:8c:f4:18:4a:e1:
#                    d0:3d:5a:45:b6:69:a7:29:fb:23:ce:88:d8:12:9c:
#                    00:48:a8:a6:0f:b3:3b:92:8d:71:0e:74:c5:8b:c8:
#                    4c:f9:f4:9b:8e:b8:3c:69:ed:6f:3b:50:2f:58:ed:
#                    c4:b0:d0:1c:1b:6a:0c:e2:bc:44:aa:d8:cd:14:5d:
#                    94:78:61:bf:0e:6e:da:2a:bc:2f:0c:0b:71:a6:b3:
#                    16:3f:9c:e6:f9:cc:9f:53:35:e2:03:a0:a0:18:bf:
#                    bb:f1:be:f4:d6:8c:87:0d:42:f7:06:b9:f1:6d:ed:
#                    04:94:a8:fe:b6:d3:06:c6:40:61:df:9d:9d:f3:54:
#                    76:ce:53:3a:01:a6:92:41:ec:04:a3:8f:0d:a2:d5:
#                    09:ca:d6:cb:9a:f1:ef:43:5d:c0:ab:a5:41:cf:5c:
#                    53:70:70:c9:88:a6:2d:d4:6b:61:73:50:26:86:61:
#                    0e:5f:1b:c2:2b:e2:8c:d5:bb:9d:c1:03:42:ba:94:
#                    da:5f:a9:b0:ca:cc:4d:0a:ef:47:69:03:2f:22:fb:
#                    f1:28:ce:bf:5d:50:65:a8:90:6d:b3:74:b0:08:c7:
#                    ac:a8:d1:eb:3e:9c:fc:5d:1a:83:2e:2b:cb:b5:f3:
#                    44:9d:3a:a7:17:61:96:a2:71:d3:70:96:15:4d:b7:
#                    4c:73:ee:19:5c:c5:5b:3e:41:fe:ac:75:60:3b:1b:
#                    63:ce:00:dd:da:08:90:62:b4:e5:2d:ee:48:a7:6b:
#                    17:99:54:be:87:4a:e3:a9:5e:04:4c:eb:10:6d:54:
#                    d6:ef:f1:e8:f2:62:16:cb:80:6b:ed:3d:ed:f5:1f:
#                    30:a5:ae:4b:c9:13:ed:8a:01:01:c9:b8:51:58:c0:
#                    66:3a:b1:66:4b:c4:d5:31:02:62:e9:74:84:0c:db:
#                    4d:46:2d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D2:9F:88:DF:A1:CD:2C:BD:EC:F5:3B:01:01:93:33:27:B2:EB:60:4B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         32:ca:80:b3:9d:3d:54:06:dd:d2:d2:2e:f0:a4:01:21:0b:67:
#         48:ca:6d:8e:e0:c8:aa:0d:aa:8d:21:57:8f:c6:3e:7a:ca:db:
#         51:d4:52:b3:d4:96:84:a5:58:60:7f:e5:0b:8e:1f:f5:dc:0a:
#         15:81:e5:3b:b6:b7:22:2f:09:9c:13:16:b1:6c:0c:35:08:6d:
#         ab:63:72:ed:dc:be:ec:c7:57:e6:30:20:71:d6:d7:10:c1:13:
#         55:01:8c:2a:43:e4:41:f1:cf:3a:7a:53:92:ce:a2:03:05:0d:
#         38:df:02:bb:10:2e:d9:3b:d2:9b:7a:c0:a1:a6:f8:b5:31:e6:
#         f4:75:c9:b9:53:99:75:47:22:5a:14:15:c7:78:1b:b6:9d:e9:
#         0c:f8:1b:76:f1:85:84:de:a1:da:12:ef:a4:e2:10:97:7a:78:
#         de:0c:51:97:a8:21:40:8b:86:bd:0d:f0:5e:4e:4b:36:bb:3b:
#         20:1f:8a:42:56:e1:0b:1a:bf:7b:d0:22:43:2c:44:8c:fb:e5:
#         2a:b4:6c:1c:1c:ba:94:e0:13:7e:21:e6:9a:c2:cb:c5:42:64:
#         b4:1e:94:7b:08:25:c8:71:cc:87:45:57:85:d3:9f:29:62:22:
#         83:51:97:00:18:97:77:6a:98:92:c9:7c:60:6c:df:6c:7d:4a:
#         e4:70:4c:c2:9e:b8:1d:f7:d0:34:c7:0f:cc:fb:a7:ff:03:be:
#         ad:70:90:da:0b:dd:c8:6d:97:5f:9a:7f:09:32:41:fd:cd:a2:
#         cc:5a:6d:4c:f2:aa:49:fe:66:f8:e9:d8:35:eb:0e:28:1e:ee:
#         48:2f:3a:d0:79:09:38:7c:a6:22:82:93:95:d0:03:be:be:02:
#         a0:05:dd:20:22:e3:6f:1d:88:34:60:c6:e6:0a:b9:09:75:0b:
#         f0:07:e8:69:96:35:c7:fb:23:81:8e:38:39:b8:45:2b:43:78:
#         a2:d1:2c:14:ff:0d:28:72:72:95:9b:5e:09:db:89:44:98:aa:
#         a1:49:bb:71:52:f2:bf:f6:ff:27:a1:36:af:b8:b6:77:88:dd:
#         3a:a4:6d:9b:34:90:dc:14:5d:30:bf:b7:eb:17:e4:87:b7:71:
#         d0:a1:d7:77:15:d4:42:d7:f2:f3:31:99:5d:9b:dd:16:6d:3f:
#         ea:06:23:f8:46:a2:22:ed:93:f6:dd:9a:e6:2a:87:b1:98:54:
#         f1:22:f7:6b:45:e3:e2:8e:76:1d:9a:8d:c4:06:8d:36:b7:14:
#         f3:9d:54:69:b7:8e:3c:d5:a4:6d:93:81:b7:ad:f6:bd:64:7b:
#         c2:c9:68:39:a0:92:9c:cd:34:86:91:90:fa:64:51:9d:fe:fe:
#         eb:a5:f5:75:de:89:f7:72

[p11-kit-object-v1]
label: "NetLock Arany (Class Gold) Főtanúsítvány"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxCRec75LbRTDofTjl5Bu
0jBFHjzuZ9lk4BqKf8owyoPjIMHj9DrTlF8afFttvzBPhCf2nx9JvMaZCpDyD/V/
Q4Q3Y1GLeqVw/HpYzY6b7cNGbIRwXdrzAZAj/E4wqX7hJ2Pn7WQ8oLjJM2P+FpD/
sLj916jAwJRDC7bVWaaeVtAkH3B5r9s5VA1lddkVQZQBr17s9o3x/61k/iCa11zr
/qYfCGSji3ZVrR47KGAuhyXoqq8fxmRGILdwfzzeSNuWU7c5d+Qa4scWhHaXWy+7
GRWF+GmF9ZmnqfI0p6m2pgP8b4Y9VHx2BJtr+UBdADTHLpl1neWIA6pN+APSQnbA
GwIDAKiL
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NetLock Arany (Class Gold) Főtanúsítvány"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 80544274841616 (0x49412ce40010)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = HU, L = Budapest, O = NetLock Kft., OU = Tan\C3\BAs\C3\ADtv\C3\A1nykiad\C3\B3k (Certification Services), CN = NetLock Arany (Class Gold) F\C5\91tan\C3\BAs\C3\ADtv\C3\A1ny
#        Validity
#            Not Before: Dec 11 15:08:21 2008 GMT
#            Not After : Dec  6 15:08:21 2028 GMT
#        Subject: C = HU, L = Budapest, O = NetLock Kft., OU = Tan\C3\BAs\C3\ADtv\C3\A1nykiad\C3\B3k (Certification Services), CN = NetLock Arany (Class Gold) F\C5\91tan\C3\BAs\C3\ADtv\C3\A1ny
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c4:24:5e:73:be:4b:6d:14:c3:a1:f4:e3:97:90:
#                    6e:d2:30:45:1e:3c:ee:67:d9:64:e0:1a:8a:7f:ca:
#                    30:ca:83:e3:20:c1:e3:f4:3a:d3:94:5f:1a:7c:5b:
#                    6d:bf:30:4f:84:27:f6:9f:1f:49:bc:c6:99:0a:90:
#                    f2:0f:f5:7f:43:84:37:63:51:8b:7a:a5:70:fc:7a:
#                    58:cd:8e:9b:ed:c3:46:6c:84:70:5d:da:f3:01:90:
#                    23:fc:4e:30:a9:7e:e1:27:63:e7:ed:64:3c:a0:b8:
#                    c9:33:63:fe:16:90:ff:b0:b8:fd:d7:a8:c0:c0:94:
#                    43:0b:b6:d5:59:a6:9e:56:d0:24:1f:70:79:af:db:
#                    39:54:0d:65:75:d9:15:41:94:01:af:5e:ec:f6:8d:
#                    f1:ff:ad:64:fe:20:9a:d7:5c:eb:fe:a6:1f:08:64:
#                    a3:8b:76:55:ad:1e:3b:28:60:2e:87:25:e8:aa:af:
#                    1f:c6:64:46:20:b7:70:7f:3c:de:48:db:96:53:b7:
#                    39:77:e4:1a:e2:c7:16:84:76:97:5b:2f:bb:19:15:
#                    85:f8:69:85:f5:99:a7:a9:f2:34:a7:a9:b6:a6:03:
#                    fc:6f:86:3d:54:7c:76:04:9b:6b:f9:40:5d:00:34:
#                    c7:2e:99:75:9d:e5:88:03:aa:4d:f8:03:d2:42:76:
#                    c0:1b
#                Exponent: 43147 (0xa88b)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CC:FA:67:93:F0:B6:B8:D0:A5:C0:1E:F3:53:FD:8C:53:DF:83:D7:96
#    Signature Algorithm: sha256WithRSAEncryption
#         ab:7f:ee:1c:16:a9:9c:3c:51:00:a0:c0:11:08:05:a7:99:e6:
#         6f:01:88:54:61:6e:f1:b9:18:ad:4a:ad:fe:81:40:23:94:2f:
#         fb:75:7c:2f:28:4b:62:24:81:82:0b:f5:61:f1:1c:6e:b8:61:
#         38:eb:81:fa:62:a1:3b:5a:62:d3:94:65:c4:e1:e6:6d:82:f8:
#         2f:25:70:b2:21:26:c1:72:51:1f:8c:2c:c3:84:90:c3:5a:8f:
#         ba:cf:f4:a7:65:a5:eb:98:d1:fb:05:b2:46:75:15:23:6a:6f:
#         85:63:30:80:f0:d5:9e:1f:29:1c:c2:6c:b0:50:59:5d:90:5b:
#         3b:a8:0d:30:cf:bf:7d:7f:ce:f1:9d:83:bd:c9:46:6e:20:a6:
#         f9:61:51:ba:21:2f:7b:be:a5:15:63:a1:d4:95:87:f1:9e:b9:
#         f3:89:f3:3d:85:b8:b8:db:be:b5:b9:29:f9:da:37:05:00:49:
#         94:03:84:44:e7:bf:43:31:cf:75:8b:25:d1:f4:a6:64:f5:92:
#         f6:ab:05:eb:3d:e9:a5:0b:36:62:da:cc:06:5f:36:8b:b6:5e:
#         31:b8:2a:fb:5e:f6:71:df:44:26:9e:c4:e6:0d:91:b4:2e:75:
#         95:80:51:6a:4b:30:a6:b0:62:a1:93:f1:9b:d8:ce:c4:63:75:
#         3f:59:47:b1

[p11-kit-object-v1]
label: "NetLock Minositett Kozjegyzoi (Class QA) Tanusitvanykiado"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx1Ilstg91IRVCacbvWy5
FPSKAtt2/GoqeKvld/Bu4IwjZ9ulZJm53QE+b+8tmjwi8F3JV6BVQX/yQ15YglMx
Zc4e8ia6AFQer7C8HORSjKAyr7c3sVNnaHRnUPYtLmTeriZ539+Zhqurf4XsoPuA
zPS4DB6TRWO53Lhbm+1bOdRfYrCnjnxmOCyqsQhjF2d9zL2z8cM/z1A57dEZgxXb
hxInlrfa6uWdvLrqOU+L73Sa58XQ0uqGURzk/mQIKAR5BevKxXEOC++r6uwSEaEY
BTJp0QwsGj0lmT+1fMptsK6ZmfoIYOcZwvK9UdPM0wKswREMgM6r3JSda6M5UzrW
hQIDAMV9
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NetLock Minositett Kozjegyzoi (Class QA) Tanusitvanykiado"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 123 (0x7b)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = HU, L = Budapest, O = NetLock Halozatbiztonsagi Kft., OU = Tanusitvanykiadok, CN = NetLock Minositett Kozjegyzoi (Class QA) Tanusitvanykiado, emailAddress = info@netlock.hu
#        Validity
#            Not Before: Mar 30 01:47:11 2003 GMT
#            Not After : Dec 15 01:47:11 2022 GMT
#        Subject: C = HU, L = Budapest, O = NetLock Halozatbiztonsagi Kft., OU = Tanusitvanykiadok, CN = NetLock Minositett Kozjegyzoi (Class QA) Tanusitvanykiado, emailAddress = info@netlock.hu
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c7:52:25:b2:d8:3d:d4:84:55:09:a7:1b:bd:6c:
#                    b9:14:f4:8a:02:db:76:fc:6a:2a:78:ab:e5:77:f0:
#                    6e:e0:8c:23:67:db:a5:64:99:b9:dd:01:3e:6f:ef:
#                    2d:9a:3c:22:f0:5d:c9:57:a0:55:41:7f:f2:43:5e:
#                    58:82:53:31:65:ce:1e:f2:26:ba:00:54:1e:af:b0:
#                    bc:1c:e4:52:8c:a0:32:af:b7:37:b1:53:67:68:74:
#                    67:50:f6:2d:2e:64:de:ae:26:79:df:df:99:86:ab:
#                    ab:7f:85:ec:a0:fb:80:cc:f4:b8:0c:1e:93:45:63:
#                    b9:dc:b8:5b:9b:ed:5b:39:d4:5f:62:b0:a7:8e:7c:
#                    66:38:2c:aa:b1:08:63:17:67:7d:cc:bd:b3:f1:c3:
#                    3f:cf:50:39:ed:d1:19:83:15:db:87:12:27:96:b7:
#                    da:ea:e5:9d:bc:ba:ea:39:4f:8b:ef:74:9a:e7:c5:
#                    d0:d2:ea:86:51:1c:e4:fe:64:08:28:04:79:05:eb:
#                    ca:c5:71:0e:0b:ef:ab:ea:ec:12:11:a1:18:05:32:
#                    69:d1:0c:2c:1a:3d:25:99:3f:b5:7c:ca:6d:b0:ae:
#                    99:99:fa:08:60:e7:19:c2:f2:bd:51:d3:cc:d3:02:
#                    ac:c1:11:0c:80:ce:ab:dc:94:9d:6b:a3:39:53:3a:
#                    d6:85
#                Exponent: 50557 (0xc57d)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Comment: 
#                FIGYELEM! Ezen tanusitvany a NetLock Kft. Minositett Szolgaltatasi Szabalyzataban leirt eljarasok alapjan keszult. A minositett elektronikus alairas joghatas ervenyesulesenek, valamint elfogadasanak feltetele a Minositett Szolgaltatasi Szabalyzatban, az Altalanos Szerzodesi Feltetelekben eloirt ellenorzesi eljaras megtetele. A dokumentumok megtalalhatok a https://www.netlock.hu/docs/ cimen vagy kerhetok az info@netlock.net e-mail cimen. WARNING! The issuance and the use of this certificate are subject to the NetLock Qualified CPS available at https://www.netlock.hu/docs/ or by e-mail at info@netlock.net
#            X509v3 Subject Key Identifier: 
#                09:6A:62:16:92:B0:5A:BB:55:0E:CB:75:32:3A:32:E5:B2:21:C9:28
#    Signature Algorithm: sha1WithRSAEncryption
#         91:6a:50:9c:db:78:81:9b:3f:8b:42:e3:3b:fc:a6:c3:ee:43:
#         e0:cf:f3:e2:80:35:49:45:76:02:e2:e3:2f:05:c5:f1:2a:e7:
#         c0:41:33:c6:b6:9b:d0:33:39:cd:c0:db:a1:ad:6c:37:02:4c:
#         58:41:3b:f2:97:92:c6:48:a8:cd:e5:8a:39:89:61:f9:52:97:
#         e9:bd:f6:f9:94:74:e8:71:0e:bc:77:86:c3:06:cc:5a:7c:4a:
#         7e:34:50:30:2e:fb:7f:32:9a:8d:3d:f3:20:5b:f8:6a:ca:86:
#         f3:31:4c:2c:59:80:02:7d:fe:38:c9:30:75:1c:b7:55:e3:bc:
#         9f:ba:a8:6d:84:28:05:75:b3:8b:0d:c0:91:54:21:e7:a6:0b:
#         b4:99:f5:51:41:dc:cd:a3:47:22:d9:c7:01:81:c4:dc:47:4f:
#         26:ea:1f:ed:db:cd:0d:98:f4:a3:9c:b4:73:32:4a:96:99:fe:
#         bc:7f:c8:25:58:f8:58:f3:76:66:89:54:a4:a6:3e:c4:50:5c:
#         ba:89:18:82:75:48:21:d2:4f:13:e8:60:7e:07:76:db:10:b5:
#         51:e6:aa:b9:68:aa:cd:f6:9d:90:75:12:ea:38:1a:ca:44:e8:
#         b7:99:a7:2a:68:95:66:95:ab:ad:ef:89:cb:60:a9:06:12:c6:
#         94:47:e9:28

[p11-kit-object-v1]
label: "NetLock Platina (Class Platinum) Főtanúsítvány"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NetLock Platina (Class Platinum) Főtanúsítvány"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 80544292143120 (0x49412dec0010)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = HU, L = Budapest, O = NetLock Kft., OU = Tan\C3\BAs\C3\ADtv\C3\A1nykiad\C3\B3k (Certification Services), CN = NetLock Platina (Class Platinum) F\C5\91tan\C3\BAs\C3\ADtv\C3\A1ny
#        Validity
#            Not Before: Dec 11 15:12:44 2008 GMT
#            Not After : Dec  6 15:12:44 2028 GMT
#        Subject: C = HU, L = Budapest, O = NetLock Kft., OU = Tan\C3\BAs\C3\ADtv\C3\A1nykiad\C3\B3k (Certification Services), CN = NetLock Platina (Class Platinum) F\C5\91tan\C3\BAs\C3\ADtv\C3\A1ny
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:cd:f2:ee:c4:1a:7a:eb:74:29:4c:b6:bd:e4:d6:
#                    0a:17:6c:65:e2:66:3d:c4:d1:bc:0c:b6:5a:d6:2b:
#                    70:5f:2d:cc:21:d1:59:10:e4:b1:13:bd:f6:cc:22:
#                    95:d6:6c:46:4e:91:32:b3:eb:f5:ac:cb:04:01:4f:
#                    76:dd:53:3e:78:9f:f9:5e:bc:b5:82:13:46:ca:10:
#                    e3:1d:2d:69:2b:94:32:10:73:21:ab:a9:38:c5:e3:
#                    6e:13:64:d5:63:a9:ed:09:66:ec:8a:6f:89:8d:11:
#                    86:d0:f5:bf:32:96:0b:75:70:f5:28:58:42:5e:ac:
#                    69:b4:f5:fc:91:39:2e:a2:91:40:d1:3c:54:41:87:
#                    23:64:50:48:79:68:4b:68:93:4b:72:eb:80:69:b3:
#                    4a:1c:90:be:b2:41:a3:a5:cd:17:c0:d1:1a:69:7f:
#                    02:18:4a:b5:62:87:26:57:2d:6c:a8:2c:21:39:f5:
#                    97:5e:9b:9a:a6:f8:e7:4c:79:c4:7b:3b:56:dc:7a:
#                    f8:b4:58:ce:76:0a:ae:22:55:eb:8f:c7:84:64:7b:
#                    bd:6b:ca:95:4f:d8:be:31:13:bf:8d:a1:0a:2b:d5:
#                    79:b7:f5:76:ad:da:51:5c:81:47:62:a8:aa:ff:cf:
#                    53:e0:34:71:cf:0d:25:53:a9:9e:63:47:af:85:91:
#                    f8:cf:19:11:e5:4e:f9:cf:ed:e3:35:05:01:22:03:
#                    cf:9a:7c:ea:1d:51:5a:cb:fd:73:3d:39:0b:31:eb:
#                    c4:3b:ca:85:2a:11:14:00:a0:1b:81:a2:09:88:48:
#                    f3:7c:a2:64:a1:ec:67:b4:58:87:f0:14:ea:a9:be:
#                    a5:22:41:4d:ec:bd:a4:0e:e8:3d:87:f7:2f:aa:ce:
#                    35:86:4f:30:57:92:8d:36:ae:78:d6:fd:18:fc:d7:
#                    25:1e:cf:7a:fc:19:fd:a0:3f:72:17:36:08:41:3f:
#                    97:36:95:0c:89:95:71:45:fa:84:d6:d4:20:60:b3:
#                    45:0a:f2:b7:95:3d:0b:e5:a4:c3:b8:12:f2:91:6c:
#                    e9:6d:60:83:f6:45:11:05:ba:e6:47:83:d9:91:e2:
#                    6e:e1:bb:46:6b:48:1b:bc:c6:fb:cf:7e:de:2c:bb:
#                    90:84:ee:b6:27:39:e7:8d:a2:31:0f:df:81:b7:2c:
#                    6c:00:e2:b1:d8:2a:17:5c:1b:1e:47:89:4b:17:51:
#                    14:40:40:4f:c4:39:18:32:c2:80:60:36:e5:7a:47:
#                    67:f6:a8:05:54:c1:5d:96:a0:1f:b6:88:52:0c:02:
#                    be:8d:55:7e:14:4b:c3:a2:01:ee:9c:8a:41:5d:f9:
#                    5f:96:91:09:8e:b4:e4:b5:c5:04:df:d6:36:ad:59:
#                    b4:b2:d7
#                Exponent: 62353 (0xf391)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E6:A1:13:83:FE:97:4B:F2:D8:FF:31:A1:A7:74:33:89:CE:5E:7F:A4
#    Signature Algorithm: sha256WithRSAEncryption
#         69:84:42:c0:e3:5e:13:61:97:20:49:f1:f4:16:85:a5:9f:a4:
#         11:08:25:c4:63:86:8f:f0:4b:af:b3:29:f5:07:57:1a:62:c7:
#         1b:45:6e:af:5d:16:b7:c1:d0:64:83:3b:97:f5:43:b6:45:90:
#         f1:66:2a:83:24:2a:ff:88:e9:7a:0b:f9:c2:5b:7a:af:63:f7:
#         09:78:86:48:59:34:5e:9b:6a:10:4e:f1:6e:95:89:36:4a:68:
#         d0:6f:9b:e0:7e:4f:b7:35:0f:e3:79:b1:05:af:27:7c:aa:89:
#         0a:43:de:fa:0c:ef:d9:57:2f:28:71:cd:69:6b:52:42:c9:8a:
#         30:45:59:a1:cc:fa:59:4a:8f:f7:d6:dd:44:a5:b3:2e:5b:11:
#         18:e2:b2:b5:e7:11:53:38:fe:82:4c:d3:73:be:65:92:1a:3a:
#         a8:d2:d2:aa:bc:d4:be:6d:36:52:ff:6b:d4:d2:b5:1b:37:f3:
#         17:42:f1:2e:a7:d5:90:6c:74:9d:74:f5:fa:5f:22:1b:d3:dc:
#         75:a8:b5:ff:f2:1a:d1:bc:2b:00:5c:3c:c5:b8:86:08:54:49:
#         a2:9c:23:fb:ef:a6:8d:70:f4:42:52:4d:1b:20:00:81:f8:a0:
#         b8:f4:74:23:9c:be:f4:b9:0e:ec:1e:6a:d8:65:4a:15:75:f1:
#         77:5b:6e:d8:b1:e6:0f:b4:96:b8:1d:fa:86:c8:92:6e:8b:e9:
#         7d:df:a2:0e:d5:f1:f1:7c:ae:4a:e3:66:bf:5d:fc:5b:ef:48:
#         b2:9e:69:c7:7d:90:a0:55:b6:94:70:81:b9:0a:bd:89:75:53:
#         ec:84:a9:03:a5:df:51:99:08:d0:74:0c:02:d6:73:72:06:7b:
#         8b:bb:5d:aa:4e:fc:67:67:d8:8e:10:03:19:2d:37:3a:d4:77:
#         a9:3a:1c:9d:c0:79:7b:6c:29:77:32:4d:4a:8b:30:88:c2:e7:
#         36:ce:68:a3:9a:98:86:f9:89:15:9e:bf:aa:51:7d:f1:50:46:
#         54:0f:02:2e:5c:9f:e3:de:57:33:15:fe:18:92:61:a8:d2:29:
#         05:5d:65:44:1e:9b:e3:ef:fb:dc:05:df:15:ab:a6:d8:0b:a4:
#         73:b2:4c:3a:e0:9e:d4:b3:6a:e5:3a:0e:0a:f0:4e:cf:78:81:
#         1f:be:a9:98:6f:b1:47:51:7d:42:33:36:b3:a6:a9:02:52:05:
#         74:7e:2a:6c:d4:aa:92:56:b0:3e:3b:23:58:b1:8d:35:a7:13:
#         8f:67:1e:71:15:a6:b3:b5:03:86:b8:20:66:c0:48:6f:b9:ac:
#         d4:4a:03:55:b2:37:df:04:dd:22:0c:53:86:2a:4a:2a:a1:c1:
#         38:3e:3c:e5:3c:df:75:97

[p11-kit-object-v1]
label: "Network Solutions Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5Lx+kjBtxtiOKwu8Rs7g
J5be3vn6EtM8M3OzBC+8cYzln7YiYD5fXc4J/4IMG5pRUBomid3VYV0Z3BIPLQqi
Q10X0DSSIOpzzzgsBiYJenL3+lAy+MKT02miI85Bsczk1R820Yo6+Ixj4hRZae0N
039r6LgD5U9q5ZhjaUgFvi7/M7bpl1lp+GcZrpNhlkQV03KwP7xqfexIf43Dq6px
K1NpQVM0tbC5xQYKxLBF9UFdbolFez07Jox0wuXS0X2yEdT7WDIimoDJ3P0M6X9e
A5fOOwAUhydwOKmObrMndphR4AXjIasa1YUiPCm1mhbFgKj0u2swjy9GAqKxDCLg
0wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Network Solutions Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIID5jCCAs6gAwIBAgIQV8szb8JcFuZHFhfjkDFo4DANBgkqhkiG9w0BAQUFADBi
MQswCQYDVQQGEwJVUzEhMB8GA1UEChMYTmV0d29yayBTb2x1dGlvbnMgTC5MLkMu
MTAwLgYDVQQDEydOZXR3b3JrIFNvbHV0aW9ucyBDZXJ0aWZpY2F0ZSBBdXRob3Jp
dHkwHhcNMDYxMjAxMDAwMDAwWhcNMjkxMjMxMjM1OTU5WjBiMQswCQYDVQQGEwJV
UzEhMB8GA1UEChMYTmV0d29yayBTb2x1dGlvbnMgTC5MLkMuMTAwLgYDVQQDEydO
ZXR3b3JrIFNvbHV0aW9ucyBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkwggEiMA0GCSqG
SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDkvH6SMG3G2I4rC7xGzuAnlt7e+foS0zwz
c7MEL7xxjOWftiJgPl9dzgn/ggwbmlFQGiaJ3dVhXRncEg8tCqJDXRfQNJIg6nPP
OCwGJgl6cvf6UDL4wpPTaaIjzkGxzOTVHzbRijr4jGPiFFlp7Q3Tf2vouAPlT2rl
mGNpSAW+Lv8ztumXWWn4Zxmuk2GWRBXTcrA/vGp97Eh/jcOrqnErU2lBUzS1sLnF
BgrEsEX1QV1uiUV7PTsmjHTC5dLRfbIR1PtYMiKagMnc/Qzpf14Dl847ABSHJ3A4
qY5usyd2mFHgBeMhqxrVhSI8KbWaFsWAqPS7azCPL0YCorEMIuDTAgMBAAGjgZcw
gZQwHQYDVR0OBBYEFCEwyfsA106Y2oeqKtCnLrFAMadMMA4GA1UdDwEB/wQEAwIB
BjAPBgNVHRMBAf8EBTADAQH/MFIGA1UdHwRLMEkwR6BFoEOGQWh0dHA6Ly9jcmwu
bmV0c29sc3NsLmNvbS9OZXR3b3JrU29sdXRpb25zQ2VydGlmaWNhdGVBdXRob3Jp
dHkuY3JsMA0GCSqGSIb3DQEBBQUAA4IBAQC7rkvnt1frf6ott3NHhWrB5KUd5Oc8
6fRZZXe1eltajSU24HqXLjjAV2CDmAaDn7l2em5Q4LqILPxFzBiwmZVRDuwduIj/
h1AcgsLj4DKAv6ALR8jDMe+ZZzKATxcheQxpXN5eNK4CtSbqUN9/GGUsyfJj4akH
/nxxH2szJGoeBfcFaMBqEssuXmHLrijTfsK0ZpEmXzwuJF/LWA/rKOyvEZbz3Htv
wKeI8lN3s2Berq4o2jUsbzRF0ybh3uxbTydrFny9RAQYgrOJeRcQcT16ohZO9QHN
pGxlaKFJdlxDydi8NmdspZS11My5vWo1ViHe2MPr+8ukYEywVaCge1ey
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            57:cb:33:6f:c2:5c:16:e6:47:16:17:e3:90:31:68:e0
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = Network Solutions L.L.C., CN = Network Solutions Certificate Authority
#        Validity
#            Not Before: Dec  1 00:00:00 2006 GMT
#            Not After : Dec 31 23:59:59 2029 GMT
#        Subject: C = US, O = Network Solutions L.L.C., CN = Network Solutions Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:e4:bc:7e:92:30:6d:c6:d8:8e:2b:0b:bc:46:ce:
#                    e0:27:96:de:de:f9:fa:12:d3:3c:33:73:b3:04:2f:
#                    bc:71:8c:e5:9f:b6:22:60:3e:5f:5d:ce:09:ff:82:
#                    0c:1b:9a:51:50:1a:26:89:dd:d5:61:5d:19:dc:12:
#                    0f:2d:0a:a2:43:5d:17:d0:34:92:20:ea:73:cf:38:
#                    2c:06:26:09:7a:72:f7:fa:50:32:f8:c2:93:d3:69:
#                    a2:23:ce:41:b1:cc:e4:d5:1f:36:d1:8a:3a:f8:8c:
#                    63:e2:14:59:69:ed:0d:d3:7f:6b:e8:b8:03:e5:4f:
#                    6a:e5:98:63:69:48:05:be:2e:ff:33:b6:e9:97:59:
#                    69:f8:67:19:ae:93:61:96:44:15:d3:72:b0:3f:bc:
#                    6a:7d:ec:48:7f:8d:c3:ab:aa:71:2b:53:69:41:53:
#                    34:b5:b0:b9:c5:06:0a:c4:b0:45:f5:41:5d:6e:89:
#                    45:7b:3d:3b:26:8c:74:c2:e5:d2:d1:7d:b2:11:d4:
#                    fb:58:32:22:9a:80:c9:dc:fd:0c:e9:7f:5e:03:97:
#                    ce:3b:00:14:87:27:70:38:a9:8e:6e:b3:27:76:98:
#                    51:e0:05:e3:21:ab:1a:d5:85:22:3c:29:b5:9a:16:
#                    c5:80:a8:f4:bb:6b:30:8f:2f:46:02:a2:b1:0c:22:
#                    e0:d3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                21:30:C9:FB:00:D7:4E:98:DA:87:AA:2A:D0:A7:2E:B1:40:31:A7:4C
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.netsolssl.com/NetworkSolutionsCertificateAuthority.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         bb:ae:4b:e7:b7:57:eb:7f:aa:2d:b7:73:47:85:6a:c1:e4:a5:
#         1d:e4:e7:3c:e9:f4:59:65:77:b5:7a:5b:5a:8d:25:36:e0:7a:
#         97:2e:38:c0:57:60:83:98:06:83:9f:b9:76:7a:6e:50:e0:ba:
#         88:2c:fc:45:cc:18:b0:99:95:51:0e:ec:1d:b8:88:ff:87:50:
#         1c:82:c2:e3:e0:32:80:bf:a0:0b:47:c8:c3:31:ef:99:67:32:
#         80:4f:17:21:79:0c:69:5c:de:5e:34:ae:02:b5:26:ea:50:df:
#         7f:18:65:2c:c9:f2:63:e1:a9:07:fe:7c:71:1f:6b:33:24:6a:
#         1e:05:f7:05:68:c0:6a:12:cb:2e:5e:61:cb:ae:28:d3:7e:c2:
#         b4:66:91:26:5f:3c:2e:24:5f:cb:58:0f:eb:28:ec:af:11:96:
#         f3:dc:7b:6f:c0:a7:88:f2:53:77:b3:60:5e:ae:ae:28:da:35:
#         2c:6f:34:45:d3:26:e1:de:ec:5b:4f:27:6b:16:7c:bd:44:04:
#         18:82:b3:89:79:17:10:71:3d:7a:a2:16:4e:f5:01:cd:a4:6c:
#         65:68:a1:49:76:5c:43:c9:d8:bc:36:67:6c:a5:94:b5:d4:cc:
#         b9:bd:6a:35:56:21:de:d8:c3:eb:fb:cb:a4:60:4c:b0:55:a0:
#         a0:7b:57:b2

[p11-kit-object-v1]
label: "Network Solutions ECC Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEFOEDC2VvrVnWHu7Jv7RMxcZcLzDHn1Lb
aGHAaRDiknoaw7+SqIk5ivvnoLtxpKDD33fWlDcTX35TXVC640wIx2XiQbDmWfKc
+MCyd8EKkSZ38mm2u9BBPCqIGpSRFsY+
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Network Solutions ECC Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIClDCCAhmgAwIBAgIQeThLtBkajXQizP+FMvLkujAKBggqhkjOPQQDAzCBijEL
MAkGA1UEBhMCVVMxCzAJBgNVBAgTAkZMMRUwEwYDVQQHEwxKYWNrc29udmlsbGUx
ITAfBgNVBAoTGE5ldHdvcmsgU29sdXRpb25zIEwuTC5DLjE0MDIGA1UEAxMrTmV0
d29yayBTb2x1dGlvbnMgRUNDIENlcnRpZmljYXRlIEF1dGhvcml0eTAeFw0xNTEx
MTgwMDAwMDBaFw0zODAxMTgyMzU5NTlaMIGKMQswCQYDVQQGEwJVUzELMAkGA1UE
CBMCRkwxFTATBgNVBAcTDEphY2tzb252aWxsZTEhMB8GA1UEChMYTmV0d29yayBT
b2x1dGlvbnMgTC5MLkMuMTQwMgYDVQQDEytOZXR3b3JrIFNvbHV0aW9ucyBFQ0Mg
Q2VydGlmaWNhdGUgQXV0aG9yaXR5MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEFOED
C2VvrVnWHu7Jv7RMxcZcLzDHn1LbaGHAaRDiknoaw7+SqIk5ivvnoLtxpKDD33fW
lDcTX35TXVC640wIx2XiQbDmWfKc+MCyd8EKkSZ38mm2u9BBPCqIGpSRFsY+o0Iw
QDAdBgNVHQ4EFgQUm3vryP+D8lKYRzAKVvg4vuPrAM4wDgYDVR0PAQH/BAQDAgGG
MA8GA1UdEwEB/wQFMAMBAf8wCgYIKoZIzj0EAwMDaQAwZgIxAKlkWPecuRNmIkl/
stEC6RP8HPukNJLkygcNt7FSeCg0y/IhVpGGhsiKC68yhFRliQIxAOx5DZ2J8AwY
6ntXUq0L5tR5W8ub4gZFdRi90Pyn3cfhxyK240EkXSPmqJ8AalAyJQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            79:38:4b:b4:19:1a:8d:74:22:cc:ff:85:32:f2:e4:ba
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, ST = FL, L = Jacksonville, O = Network Solutions L.L.C., CN = Network Solutions ECC Certificate Authority
#        Validity
#            Not Before: Nov 18 00:00:00 2015 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, ST = FL, L = Jacksonville, O = Network Solutions L.L.C., CN = Network Solutions ECC Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:14:e1:03:0b:65:6f:ad:59:d6:1e:ee:c9:bf:b4:
#                    4c:c5:c6:5c:2f:30:c7:9f:52:db:68:61:c0:69:10:
#                    e2:92:7a:1a:c3:bf:92:a8:89:39:8a:fb:e7:a0:bb:
#                    71:a4:a0:c3:df:77:d6:94:37:13:5f:7e:53:5d:50:
#                    ba:e3:4c:08:c7:65:e2:41:b0:e6:59:f2:9c:f8:c0:
#                    b2:77:c1:0a:91:26:77:f2:69:b6:bb:d0:41:3c:2a:
#                    88:1a:94:91:16:c6:3e
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9B:7B:EB:C8:FF:83:F2:52:98:47:30:0A:56:F8:38:BE:E3:EB:00:CE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:a9:64:58:f7:9c:b9:13:66:22:49:7f:b2:d1:
#         02:e9:13:fc:1c:fb:a4:34:92:e4:ca:07:0d:b7:b1:52:78:28:
#         34:cb:f2:21:56:91:86:86:c8:8a:0b:af:32:84:54:65:89:02:
#         31:00:ec:79:0d:9d:89:f0:0c:18:ea:7b:57:52:ad:0b:e6:d4:
#         79:5b:cb:9b:e2:06:45:75:18:bd:d0:fc:a7:dd:c7:e1:c7:22:
#         b6:e3:41:24:5d:23:e6:a8:9f:00:6a:50:32:25

[p11-kit-object-v1]
label: "Network Solutions RSA Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Network Solutions RSA Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:03:4b:ac:67:18:4c:7f:af:44:08:4d:82:96:c7:b2
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, ST = FL, L = Jacksonville, O = Network Solutions L.L.C., CN = Network Solutions RSA Certificate Authority
#        Validity
#            Not Before: Nov 18 00:00:00 2015 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, ST = FL, L = Jacksonville, O = Network Solutions L.L.C., CN = Network Solutions RSA Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:84:df:a8:a6:a3:8c:0b:78:1e:c8:4d:19:95:dd:
#                    29:90:92:20:35:90:2a:94:8d:82:33:2d:70:12:58:
#                    a5:08:8a:9e:c1:08:f3:93:d6:68:c0:2f:14:be:79:
#                    a4:fc:7d:cc:d5:bc:3e:8f:ed:9c:4a:02:61:59:3d:
#                    aa:c3:6f:74:00:d2:f8:1a:34:d4:54:9e:6a:74:47:
#                    9a:2f:e0:d2:f7:0f:f7:c3:dd:3f:a5:bf:c1:fa:7d:
#                    42:69:60:00:80:ec:3c:e6:bb:81:37:a4:1e:06:14:
#                    3d:57:8f:90:a4:35:4a:34:73:87:b6:1a:c3:5d:90:
#                    ef:06:4d:70:76:36:3c:82:89:ed:cf:64:19:83:25:
#                    43:4e:1c:e2:f1:6a:52:86:fe:51:e4:7e:38:df:15:
#                    8d:4c:6c:60:41:4a:4f:b0:40:55:46:39:75:c9:81:
#                    39:00:73:8a:62:ea:0f:65:b7:8f:4f:97:40:ce:cf:
#                    ee:c1:6a:28:a0:71:a9:99:27:d1:3d:c9:35:73:7a:
#                    80:99:f8:7d:86:b9:9d:79:3a:ed:d3:2a:fa:7e:a6:
#                    b8:ff:57:2a:73:b2:a6:bf:da:89:ba:06:1b:da:65:
#                    a0:e6:be:60:94:88:f6:df:66:e1:27:6a:1b:fe:d0:
#                    5e:a9:8d:20:8b:0a:c4:1f:7e:88:41:2f:b2:c1:d0:
#                    f3:b6:68:ed:c8:3b:f1:ef:aa:07:de:7e:d7:22:e0:
#                    81:f6:a5:ea:7b:16:f4:42:54:9d:96:7e:f6:62:16:
#                    53:cd:fd:0a:ab:b2:42:a1:4e:2a:88:42:75:83:bd:
#                    8c:e5:4d:7a:e7:1d:e3:4c:b8:de:e3:ab:60:38:2d:
#                    67:29:fe:e4:5f:ae:c2:a8:e8:bf:ae:6c:f9:eb:b3:
#                    52:f1:7f:e9:ec:c2:2f:d9:9d:ca:17:9e:42:fa:3b:
#                    58:c1:3e:88:62:4f:5f:93:c1:97:6d:66:8f:1c:22:
#                    f3:9a:c1:f4:ed:b9:6b:1a:7e:36:84:c8:31:b8:f0:
#                    5e:2b:7e:95:e4:79:cf:75:4c:c2:d8:04:bf:38:8e:
#                    28:b3:dd:5b:b6:d8:4f:23:6e:92:e8:37:95:ae:83:
#                    ae:d6:fc:39:2a:46:06:1f:f1:84:75:21:d6:b8:4e:
#                    a6:2a:97:58:65:f5:9a:18:01:d7:f5:c3:7f:29:c9:
#                    10:ee:73:4a:43:76:7b:d1:a6:30:51:ff:d6:2b:1d:
#                    1e:62:84:be:f9:be:69:97:99:c7:0d:e7:7c:24:50:
#                    75:17:fd:a4:20:e7:35:68:03:60:94:a7:d9:0d:c6:
#                    1a:2c:e5:e2:4e:d5:cc:0e:c0:7a:30:56:ef:60:92:
#                    be:d9:2e:f5:c7:f0:e8:45:cf:da:86:ae:ef:d8:77:
#                    a9:12:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                0F:F1:4A:4A:75:74:05:11:0C:1D:D8:5B:99:EB:BF:FE:AA:7D:5E:D7
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         3d:cb:d2:46:78:f5:f6:3a:17:e8:c3:7b:64:d1:c5:bb:90:78:
#         8d:f5:4f:b9:c4:2d:97:fb:0b:e6:c5:b8:f1:b6:ea:e8:58:4b:
#         34:ad:77:79:2c:35:1f:72:7d:02:3e:ee:b5:d0:16:8a:06:37:
#         96:b5:ef:43:d0:09:10:2c:97:66:c7:81:1f:1e:e6:27:c5:82:
#         91:58:5e:f3:c8:5b:41:68:80:83:91:b9:9c:81:f8:27:fa:45:
#         df:ee:79:f2:5c:6d:70:02:54:ee:c0:53:d8:43:eb:05:7a:cc:
#         f4:51:dd:a9:d4:22:7d:6a:3b:f2:fe:88:d4:52:49:3a:85:92:
#         64:53:f8:6a:53:60:88:8f:f2:5b:d4:ae:2b:52:e0:ea:ff:54:
#         7e:a1:e4:ef:86:1b:a7:83:0b:06:66:5e:30:80:8c:55:a0:47:
#         33:ff:6b:1e:44:48:4b:61:aa:1e:3e:e8:4c:64:c7:d8:6d:7d:
#         0e:ae:3c:3c:42:3d:ca:24:1a:70:f1:61:14:9c:3a:18:d5:f0:
#         06:29:91:22:b2:3a:3a:a1:16:54:63:1a:f9:33:95:44:9f:24:
#         a3:21:64:04:08:e2:9b:d5:de:08:52:1c:62:1c:53:16:47:35:
#         42:26:c7:a7:0c:fd:f3:5b:13:77:02:8c:5c:e2:16:f0:18:1f:
#         d9:7d:f5:df:02:24:88:7a:f3:5e:ff:17:0e:b3:62:67:a1:ab:
#         b1:17:8e:3d:3a:46:b0:f5:46:8c:ab:84:d8:f5:0e:a1:20:eb:
#         c2:f0:99:74:3d:8e:b3:03:d8:24:c5:6c:eb:6b:0c:53:bf:60:
#         69:dd:8c:28:c5:6f:cf:bb:d2:81:77:2b:c6:7c:b1:c4:4a:6c:
#         15:10:37:29:5d:ae:f8:b1:11:05:c4:14:8d:ec:13:a3:44:fd:
#         4d:8b:68:b8:c1:ff:9d:d5:37:2e:48:f8:28:7c:dc:f9:73:53:
#         d9:b6:01:75:42:7a:bf:0b:df:51:50:b8:53:b2:e1:ee:74:90:
#         cb:bc:aa:d0:71:83:a2:ab:4e:c9:10:b6:3d:1c:ef:40:d7:4f:
#         43:90:33:b9:01:96:54:5d:2a:d5:06:5b:92:86:b8:06:10:81:
#         06:c8:91:db:29:20:b2:53:bd:f3:4b:5b:4c:db:69:1f:89:6e:
#         54:3f:d7:89:5d:e7:b5:cd:0c:be:3f:7d:78:38:01:d2:b6:67:
#         a6:cf:58:48:94:1a:45:fd:90:73:49:ca:b5:43:a0:21:62:8d:
#         49:04:26:aa:f8:1f:2e:3f:f2:2e:a1:f2:ab:f4:06:1e:b0:2d:
#         c4:c1:70:42:3d:fd:c3:51:49:88:00:0e:ca:82:0d:9b:79:02:
#         e2:c0:2e:93:df:e4:f2:f1

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GA CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy0+zAJs9Nt350UlqaxBJ
H+zYK7LG+DKBKUOVTJoZIyEVRd7jyBxRVVuuk+g3/ytr6dTqvirdqFEr12bDYVxg
Asj1znJ7O7jyTmUIms2kahnBAbtzptf2w93NvKSLtZlhuAGio9RN1AU9ka34tAhx
ZK9w8RxrfvbDd50kc3vkDIzh2TbhmYsFmQvtRTEJysIA2/dyoJaqlYfQjse2YXMN
dmaM3Bu0Y6Kff5MTMPGhJ9vZ/yxViJGg4E8HsChWjBgbl0SOid3gF27nKu+POQox
hILYQBRJLnpB5Kf+42TMwVlxSywhp1t94B3RLoGbw9ho972WG6xwsRYUC9tguSYB
BQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GA CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIID8TCCAtmgAwIBAgIQQT1yx/RrH4FDffHSKFTfmjANBgkqhkiG9w0BAQUFADCB
ijELMAkGA1UEBhMCQ0gxEDAOBgNVBAoTB1dJU2VLZXkxGzAZBgNVBAsTEkNvcHly
aWdodCAoYykgMjAwNTEiMCAGA1UECxMZT0lTVEUgRm91bmRhdGlvbiBFbmRvcnNl
ZDEoMCYGA1UEAxMfT0lTVEUgV0lTZUtleSBHbG9iYWwgUm9vdCBHQSBDQTAeFw0w
NTEyMTExNjAzNDRaFw0zNzEyMTExNjA5NTFaMIGKMQswCQYDVQQGEwJDSDEQMA4G
A1UEChMHV0lTZUtleTEbMBkGA1UECxMSQ29weXJpZ2h0IChjKSAyMDA1MSIwIAYD
VQQLExlPSVNURSBGb3VuZGF0aW9uIEVuZG9yc2VkMSgwJgYDVQQDEx9PSVNURSBX
SVNlS2V5IEdsb2JhbCBSb290IEdBIENBMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
MIIBCgKCAQEAy0+zAJs9Nt350UlqaxBJH+zYK7LG+DKBKUOVTJoZIyEVRd7jyBxR
VVuuk+g3/ytr6dTqvirdqFEr12bDYVxgAsj1znJ7O7jyTmUIms2kahnBAbtzptf2
w93NvKSLtZlhuAGio9RN1AU9ka34tAhxZK9w8RxrfvbDd50kc3vkDIzh2TbhmYsF
mQvtRTEJysIA2/dyoJaqlYfQjse2YXMNdmaM3Bu0Y6Kff5MTMPGhJ9vZ/yxViJGg
4E8HsChWjBgbl0SOid3gF27nKu+POQoxhILYQBRJLnpB5Kf+42TMwVlxSywhp1t9
4B3RLoGbw9ho972WG6xwsRYUC9tguSYBBQIDAQABo1EwTzALBgNVHQ8EBAMCAYYw
DwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUswN+rja8sHnR3JQmthG+IbJphpQw
EAYJKwYBBAGCNxUBBAMCAQAwDQYJKoZIhvcNAQEFBQADggEBAEuh/wuHbrP5wUOx
SPMowB0uyQlB+pQAHKSkq0lPjz0e701vvbyk9vImMMkQyh2I+3QZH4VFvbBsUfk2
ftv1TDI6QU9bR8/oCy22xBmddMVHxjtqD6wU2zz0c5ypBd8A3HR4+vg1YFkCExh8
vPtNsCBtQ7tgMHpnM1zFmdH4LTlSc/uMqpclXHLZCB6rTjzjgTGfA6b7wP4piFXa
hNVQA7bihKOmNqoROgHhGEvWRGizPflTdISzRpFGlgC3gCy24eMQ4tui5yiPAZZi
Fj4A4xylNoEYokxSdsARo27mHbrjWr42U8U+dY+GaSlYU7Wcu2+fXMUY7N0v4ZjJ
/L7fCg0=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            41:3d:72:c7:f4:6b:1f:81:43:7d:f1:d2:28:54:df:9a
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CH, O = WISeKey, OU = Copyright (c) 2005, OU = OISTE Foundation Endorsed, CN = OISTE WISeKey Global Root GA CA
#        Validity
#            Not Before: Dec 11 16:03:44 2005 GMT
#            Not After : Dec 11 16:09:51 2037 GMT
#        Subject: C = CH, O = WISeKey, OU = Copyright (c) 2005, OU = OISTE Foundation Endorsed, CN = OISTE WISeKey Global Root GA CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cb:4f:b3:00:9b:3d:36:dd:f9:d1:49:6a:6b:10:
#                    49:1f:ec:d8:2b:b2:c6:f8:32:81:29:43:95:4c:9a:
#                    19:23:21:15:45:de:e3:c8:1c:51:55:5b:ae:93:e8:
#                    37:ff:2b:6b:e9:d4:ea:be:2a:dd:a8:51:2b:d7:66:
#                    c3:61:5c:60:02:c8:f5:ce:72:7b:3b:b8:f2:4e:65:
#                    08:9a:cd:a4:6a:19:c1:01:bb:73:a6:d7:f6:c3:dd:
#                    cd:bc:a4:8b:b5:99:61:b8:01:a2:a3:d4:4d:d4:05:
#                    3d:91:ad:f8:b4:08:71:64:af:70:f1:1c:6b:7e:f6:
#                    c3:77:9d:24:73:7b:e4:0c:8c:e1:d9:36:e1:99:8b:
#                    05:99:0b:ed:45:31:09:ca:c2:00:db:f7:72:a0:96:
#                    aa:95:87:d0:8e:c7:b6:61:73:0d:76:66:8c:dc:1b:
#                    b4:63:a2:9f:7f:93:13:30:f1:a1:27:db:d9:ff:2c:
#                    55:88:91:a0:e0:4f:07:b0:28:56:8c:18:1b:97:44:
#                    8e:89:dd:e0:17:6e:e7:2a:ef:8f:39:0a:31:84:82:
#                    d8:40:14:49:2e:7a:41:e4:a7:fe:e3:64:cc:c1:59:
#                    71:4b:2c:21:a7:5b:7d:e0:1d:d1:2e:81:9b:c3:d8:
#                    68:f7:bd:96:1b:ac:70:b1:16:14:0b:db:60:b9:26:
#                    01:05
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B3:03:7E:AE:36:BC:B0:79:D1:DC:94:26:B6:11:BE:21:B2:69:86:94
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         4b:a1:ff:0b:87:6e:b3:f9:c1:43:b1:48:f3:28:c0:1d:2e:c9:
#         09:41:fa:94:00:1c:a4:a4:ab:49:4f:8f:3d:1e:ef:4d:6f:bd:
#         bc:a4:f6:f2:26:30:c9:10:ca:1d:88:fb:74:19:1f:85:45:bd:
#         b0:6c:51:f9:36:7e:db:f5:4c:32:3a:41:4f:5b:47:cf:e8:0b:
#         2d:b6:c4:19:9d:74:c5:47:c6:3b:6a:0f:ac:14:db:3c:f4:73:
#         9c:a9:05:df:00:dc:74:78:fa:f8:35:60:59:02:13:18:7c:bc:
#         fb:4d:b0:20:6d:43:bb:60:30:7a:67:33:5c:c5:99:d1:f8:2d:
#         39:52:73:fb:8c:aa:97:25:5c:72:d9:08:1e:ab:4e:3c:e3:81:
#         31:9f:03:a6:fb:c0:fe:29:88:55:da:84:d5:50:03:b6:e2:84:
#         a3:a6:36:aa:11:3a:01:e1:18:4b:d6:44:68:b3:3d:f9:53:74:
#         84:b3:46:91:46:96:00:b7:80:2c:b6:e1:e3:10:e2:db:a2:e7:
#         28:8f:01:96:62:16:3e:00:e3:1c:a5:36:81:18:a2:4c:52:76:
#         c0:11:a3:6e:e6:1d:ba:e3:5a:be:36:53:c5:3e:75:8f:86:69:
#         29:58:53:b5:9c:bb:6f:9f:5c:c5:18:ec:dd:2f:e1:98:c9:fc:
#         be:df:0a:0d

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GB CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2Be3HEokKtaXscriHvt9
OO+Y9bI5mE4nuBFde9IllIiCFSZqGzG7qFshISvYD06fWvGxWuR51jIjK+FTzJlF
XHtPrby/h0oLS5daqPZI7H17Dc0hBt+eFf1Biki3IPShehtX1F1Q/7pn2COZH8g/
497/b1t3sWtuuMlk9+HKQUYOKXHQuSP8yYFfTvdv37+ErXNku7dCjmn21HYdfp2n
uFeKUWdy19SouJVUQHMD9ur06/4oQnc/nSMbsrY9gBQHTC5P99UKFg29ZkM3fiND
ecNAhvVMKdqOmq0NpQSHiB6F4+lT1ZvIiwNjeOvgGUpuuy9rM2RYk61pv48b74JI
xwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GB CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:b1:20:52:74:f0:85:87:46:b3:f8:23:1a:f6:c2:c0
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CH, O = WISeKey, OU = OISTE Foundation Endorsed, CN = OISTE WISeKey Global Root GB CA
#        Validity
#            Not Before: Dec  1 15:00:32 2014 GMT
#            Not After : Dec  1 15:10:31 2039 GMT
#        Subject: C = CH, O = WISeKey, OU = OISTE Foundation Endorsed, CN = OISTE WISeKey Global Root GB CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d8:17:b7:1c:4a:24:2a:d6:97:b1:ca:e2:1e:fb:
#                    7d:38:ef:98:f5:b2:39:98:4e:27:b8:11:5d:7b:d2:
#                    25:94:88:82:15:26:6a:1b:31:bb:a8:5b:21:21:2b:
#                    d8:0f:4e:9f:5a:f1:b1:5a:e4:79:d6:32:23:2b:e1:
#                    53:cc:99:45:5c:7b:4f:ad:bc:bf:87:4a:0b:4b:97:
#                    5a:a8:f6:48:ec:7d:7b:0d:cd:21:06:df:9e:15:fd:
#                    41:8a:48:b7:20:f4:a1:7a:1b:57:d4:5d:50:ff:ba:
#                    67:d8:23:99:1f:c8:3f:e3:de:ff:6f:5b:77:b1:6b:
#                    6e:b8:c9:64:f7:e1:ca:41:46:0e:29:71:d0:b9:23:
#                    fc:c9:81:5f:4e:f7:6f:df:bf:84:ad:73:64:bb:b7:
#                    42:8e:69:f6:d4:76:1d:7e:9d:a7:b8:57:8a:51:67:
#                    72:d7:d4:a8:b8:95:54:40:73:03:f6:ea:f4:eb:fe:
#                    28:42:77:3f:9d:23:1b:b2:b6:3d:80:14:07:4c:2e:
#                    4f:f7:d5:0a:16:0d:bd:66:43:37:7e:23:43:79:c3:
#                    40:86:f5:4c:29:da:8e:9a:ad:0d:a5:04:87:88:1e:
#                    85:e3:e9:53:d5:9b:c8:8b:03:63:78:eb:e0:19:4a:
#                    6e:bb:2f:6b:33:64:58:93:ad:69:bf:8f:1b:ef:82:
#                    48:c7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                35:0F:C8:36:63:5E:E2:A3:EC:F9:3B:66:15:CE:51:52:E3:91:9A:3D
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         40:4c:fb:87:b2:99:81:90:7e:9d:c5:b0:b0:26:cd:88:7b:2b:
#         32:8d:6e:b8:21:71:58:97:7d:ae:37:14:af:3e:e7:f7:9a:e2:
#         7d:f6:71:98:99:04:aa:43:74:78:a3:e3:49:61:3e:73:8c:4d:
#         94:e0:f9:71:c4:b6:16:0e:53:78:1f:d6:a2:87:2f:02:39:81:
#         29:3c:af:15:98:21:30:fe:28:90:00:8c:d1:e1:cb:fa:5e:c8:
#         fd:f8:10:46:3b:a2:78:42:91:17:74:55:0a:de:50:67:4d:66:
#         d1:a7:ff:fd:d9:c0:b5:a8:a3:8a:ce:66:f5:0f:43:cd:a7:2b:
#         57:7b:63:46:6a:aa:2e:52:d8:f4:ed:e1:6d:ad:29:90:78:48:
#         ba:e1:23:aa:a3:89:ec:b5:ab:96:c0:b4:4b:a2:1d:97:9e:7a:
#         f2:6e:40:71:df:68:f1:65:4d:ce:7c:05:df:53:65:a9:a5:f0:
#         b1:97:04:70:15:46:03:98:d4:d2:bf:54:b4:a0:58:7d:52:6f:
#         da:56:26:62:d4:d8:db:89:31:6f:1c:f0:22:c2:d3:62:1c:35:
#         cd:4c:69:15:54:1a:90:98:de:eb:1e:5f:ca:77:c7:cb:8e:3d:
#         43:69:9c:9a:58:d0:24:3b:df:1b:40:96:7e:35:ad:81:c7:4e:
#         71:ba:88:13

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GC CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAETOlQwMYPchi82PG6s4nieUqjFqdrVCTb
Uf/q9Akkwwsin8tqJ4KBDdLArzHkdIJuyiXZjHWd8dvQmqJLIX4Wp2OQ0jnUsYd4
XxiWD1AbNTcPasbc2RNNpI6QN+a9WzGR
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GC CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            21:2a:56:0c:ae:da:0c:ab:40:45:bf:2b:a2:2d:3a:ea
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = CH, O = WISeKey, OU = OISTE Foundation Endorsed, CN = OISTE WISeKey Global Root GC CA
#        Validity
#            Not Before: May  9 09:48:34 2017 GMT
#            Not After : May  9 09:58:33 2042 GMT
#        Subject: C = CH, O = WISeKey, OU = OISTE Foundation Endorsed, CN = OISTE WISeKey Global Root GC CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:4c:e9:50:c0:c6:0f:72:18:bc:d8:f1:ba:b3:89:
#                    e2:79:4a:a3:16:a7:6b:54:24:db:51:ff:ea:f4:09:
#                    24:c3:0b:22:9f:cb:6a:27:82:81:0d:d2:c0:af:31:
#                    e4:74:82:6e:ca:25:d9:8c:75:9d:f1:db:d0:9a:a2:
#                    4b:21:7e:16:a7:63:90:d2:39:d4:b1:87:78:5f:18:
#                    96:0f:50:1b:35:37:0f:6a:c6:dc:d9:13:4d:a4:8e:
#                    90:37:e6:bd:5b:31:91
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                48:87:14:AC:E3:C3:9E:90:60:3A:D7:CA:89:EE:D3:AD:8C:B4:50:66
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:26:c7:69:5b:dc:d5:e7:b2:e7:c8:0c:8c:8c:c3:
#         dd:79:8c:1b:63:d5:c9:52:94:4e:4d:82:4a:73:1e:b2:80:84:
#         a9:25:c0:4c:5a:6d:49:29:60:78:13:e2:7e:48:eb:64:02:31:
#         00:db:34:20:32:08:ff:9a:49:02:b6:88:de:14:af:5d:6c:99:
#         71:8d:1a:3f:8b:d7:e0:a2:36:86:1c:07:82:3a:76:53:fd:c2:
#         a2:ed:ef:7b:b0:80:4f:58:0f:4b:53:39:bd

[p11-kit-object-v1]
label: "OpenTrust Root CA G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OpenTrust Root CA G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFbzCCA1egAwIBAgISESCzkFU5fX82bWTCp59rY45nMA0GCSqGSIb3DQEBCwUA
MEAxCzAJBgNVBAYTAkZSMRIwEAYDVQQKDAlPcGVuVHJ1c3QxHTAbBgNVBAMMFE9w
ZW5UcnVzdCBSb290IENBIEcxMB4XDTE0MDUyNjA4NDU1MFoXDTM4MDExNTAwMDAw
MFowQDELMAkGA1UEBhMCRlIxEjAQBgNVBAoMCU9wZW5UcnVzdDEdMBsGA1UEAwwU
T3BlblRydXN0IFJvb3QgQ0EgRzEwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIK
AoICAQD4eUbalsUwXopxAy1wpLuwxQjczeY1wICkES3d5oeuXT2R0odsN7faYp6b
wiTXj/HbpqbfRm9RpnHLPhsxZ2L3EVs0J9V5ToybWL0iEA1cJwzdMOWo010hOHQX
/uMftk87ay3bfWAfjH1MBcLrARYVmBSO0ZB3Ij/swjm4eTrwSSTilZHcYTSSjFR0
77F9jAHiOH3BX2pfJLKOYheteSCtqx234LSWSE9mQxAGFiQD4eCcjsZGT44ameGP
uY4zbGneWK2gDqdkVBFpRGZPTBKnjix9xNRbxQA0MMHZmf4yzgeEtE7NCv82TWLx
p2NX5Ntqp66/K7nJ5rInieV+mhxNaMbBGN4zK1FGSxyO9z0M+Yo0FMT7MzUj8czx
Kselu7Cizv5Ta01BG2Yospb6p64KTrk5M0ScdMGTHPjgniQlQ/GbI4Kq3ywgsNw2
TgOzfALU5nsaqocTvz6hdLubDuHAk5/XpGbKuxs74zD0M1mKB3IDVedzagMxbm+W
G+Oin6+Sx+31QrclTDsTBM8clq8cIqPQqwWyTBIjUtz9GVsnnB47ev1CI9sjgBPw
vFEVVJSmdz7QdFG9URQIOTfLHzSpMJ1ShC5VkLG631UAC9hWLbFJSXKAqWLXwPYY
EQRVzXR7z2FwefR7LFxckvzluFqrTJOVoSfupb7PcSNCupt2LQIDAQABo2MwYTAO
BgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUl0YhVyE1
2jZVx/PxN3DlCPaTKbYwHwYDVR0jBBgwFoAUl0YhVyE12jZVx/PxN3DlCPaTKbYw
DQYJKoZIhvcNAQELBQADggIBAB3dAmB84DWn5ph76kTOZ0BP8pNuZtQ5iSas000E
PLuHIT839HEl2ku6q5aCgZG27dmxpGWX4m9kWaSW7mDKHyP7Rbr/jyTwyqkxf3kf
gLMtMrpkZ2CvuVnN35pJ06iCsfmYlIrM4LvgBBuZYLFGZdwIorJGnkSI6pN+VxbS
FXJfLkur1J1juONI5f6ELlgKn0Md/rcYkoZDSw6cMoYsYPXpSOqV7XAp8dUv/TW0
V8/bhUiZucJvbI/NeJWsZCj9VrDDb8O+WVLhX4SPgPL0DTatdrOjteFkdjpY3H1P
XlZs5VVZV6Xf8YpmMIzUUmI4d7S+KNfKNsSbBfD4Fdvb8e80nR14SohWZ25g/4/I
i+GOvUKpMwpZQhISKvqxnUOOBZuZ2mKtVzazHbYNeS2WuOvyDEsMpZTGMKcmGS3t
TAZQMPH9WD25SxdfGbRqhFS0OE85og2WaMMolP3tLR9Ka0OWLpABEPs4poEL0L91
09S5zvE/bw4cHjdx5RiHdRk/ULlepEU0rbDK5uUTdg8xFKmOLZTW1YVNcxVPS/Ky
Pu1svf0OnWZzsD2097+o4BGkxK51CUpjAEggpsadCwmKtODmzj7HPiY46SvepghJ
AwSQiumPv+i2tCqjI40cHLI5kqiPAlxAOXXUc0ECd97N4EOH1uS6SsNsEn/+KuYj
1oxx
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:b3:90:55:39:7d:7f:36:6d:64:c2:a7:9f:6b:63:8e:67
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = FR, O = OpenTrust, CN = OpenTrust Root CA G1
#        Validity
#            Not Before: May 26 08:45:50 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C = FR, O = OpenTrust, CN = OpenTrust Root CA G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:f8:79:46:da:96:c5:30:5e:8a:71:03:2d:70:a4:
#                    bb:b0:c5:08:dc:cd:e6:35:c0:80:a4:11:2d:dd:e6:
#                    87:ae:5d:3d:91:d2:87:6c:37:b7:da:62:9e:9b:c2:
#                    24:d7:8f:f1:db:a6:a6:df:46:6f:51:a6:71:cb:3e:
#                    1b:31:67:62:f7:11:5b:34:27:d5:79:4e:8c:9b:58:
#                    bd:22:10:0d:5c:27:0c:dd:30:e5:a8:d3:5d:21:38:
#                    74:17:fe:e3:1f:b6:4f:3b:6b:2d:db:7d:60:1f:8c:
#                    7d:4c:05:c2:eb:01:16:15:98:14:8e:d1:90:77:22:
#                    3f:ec:c2:39:b8:79:3a:f0:49:24:e2:95:91:dc:61:
#                    34:92:8c:54:74:ef:b1:7d:8c:01:e2:38:7d:c1:5f:
#                    6a:5f:24:b2:8e:62:17:ad:79:20:ad:ab:1d:b7:e0:
#                    b4:96:48:4f:66:43:10:06:16:24:03:e1:e0:9c:8e:
#                    c6:46:4f:8e:1a:99:e1:8f:b9:8e:33:6c:69:de:58:
#                    ad:a0:0e:a7:64:54:11:69:44:66:4f:4c:12:a7:8e:
#                    2c:7d:c4:d4:5b:c5:00:34:30:c1:d9:99:fe:32:ce:
#                    07:84:b4:4e:cd:0a:ff:36:4d:62:f1:a7:63:57:e4:
#                    db:6a:a7:ae:bf:2b:b9:c9:e6:b2:27:89:e5:7e:9a:
#                    1c:4d:68:c6:c1:18:de:33:2b:51:46:4b:1c:8e:f7:
#                    3d:0c:f9:8a:34:14:c4:fb:33:35:23:f1:cc:f1:2a:
#                    c7:a5:bb:b0:a2:ce:fe:53:6b:4d:41:1b:66:28:b2:
#                    96:fa:a7:ae:0a:4e:b9:39:33:44:9c:74:c1:93:1c:
#                    f8:e0:9e:24:25:43:f1:9b:23:82:aa:df:2c:20:b0:
#                    dc:36:4e:03:b3:7c:02:d4:e6:7b:1a:aa:87:13:bf:
#                    3e:a1:74:bb:9b:0e:e1:c0:93:9f:d7:a4:66:ca:bb:
#                    1b:3b:e3:30:f4:33:59:8a:07:72:03:55:e7:73:6a:
#                    03:31:6e:6f:96:1b:e3:a2:9f:af:92:c7:ed:f5:42:
#                    b7:25:4c:3b:13:04:cf:1c:96:af:1c:22:a3:d0:ab:
#                    05:b2:4c:12:23:52:dc:fd:19:5b:27:9c:1e:3b:7a:
#                    fd:42:23:db:23:80:13:f0:bc:51:15:54:94:a6:77:
#                    3e:d0:74:51:bd:51:14:08:39:37:cb:1f:34:a9:30:
#                    9d:52:84:2e:55:90:b1:ba:df:55:00:0b:d8:56:2d:
#                    b1:49:49:72:80:a9:62:d7:c0:f6:18:11:04:55:cd:
#                    74:7b:cf:61:70:79:f4:7b:2c:5c:5c:92:fc:e5:b8:
#                    5a:ab:4c:93:95:a1:27:ee:a5:be:cf:71:23:42:ba:
#                    9b:76:2d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                97:46:21:57:21:35:DA:36:55:C7:F3:F1:37:70:E5:08:F6:93:29:B6
#            X509v3 Authority Key Identifier: 
#                keyid:97:46:21:57:21:35:DA:36:55:C7:F3:F1:37:70:E5:08:F6:93:29:B6
#
#    Signature Algorithm: sha256WithRSAEncryption
#         1d:dd:02:60:7c:e0:35:a7:e6:98:7b:ea:44:ce:67:40:4f:f2:
#         93:6e:66:d4:39:89:26:ac:d3:4d:04:3c:bb:87:21:3f:37:f4:
#         71:25:da:4b:ba:ab:96:82:81:91:b6:ed:d9:b1:a4:65:97:e2:
#         6f:64:59:a4:96:ee:60:ca:1f:23:fb:45:ba:ff:8f:24:f0:ca:
#         a9:31:7f:79:1f:80:b3:2d:32:ba:64:67:60:af:b9:59:cd:df:
#         9a:49:d3:a8:82:b1:f9:98:94:8a:cc:e0:bb:e0:04:1b:99:60:
#         b1:46:65:dc:08:a2:b2:46:9e:44:88:ea:93:7e:57:16:d2:15:
#         72:5f:2e:4b:ab:d4:9d:63:b8:e3:48:e5:fe:84:2e:58:0a:9f:
#         43:1d:fe:b7:18:92:86:43:4b:0e:9c:32:86:2c:60:f5:e9:48:
#         ea:95:ed:70:29:f1:d5:2f:fd:35:b4:57:cf:db:85:48:99:b9:
#         c2:6f:6c:8f:cd:78:95:ac:64:28:fd:56:b0:c3:6f:c3:be:59:
#         52:e1:5f:84:8f:80:f2:f4:0d:36:ad:76:b3:a3:b5:e1:64:76:
#         3a:58:dc:7d:4f:5e:56:6c:e5:55:59:57:a5:df:f1:8a:66:30:
#         8c:d4:52:62:38:77:b4:be:28:d7:ca:36:c4:9b:05:f0:f8:15:
#         db:db:f1:ef:34:9d:1d:78:4a:88:56:67:6e:60:ff:8f:c8:8b:
#         e1:8e:bd:42:a9:33:0a:59:42:12:12:2a:fa:b1:9d:43:8e:05:
#         9b:99:da:62:ad:57:36:b3:1d:b6:0d:79:2d:96:b8:eb:f2:0c:
#         4b:0c:a5:94:c6:30:a7:26:19:2d:ed:4c:06:50:30:f1:fd:58:
#         3d:b9:4b:17:5f:19:b4:6a:84:54:b4:38:4f:39:a2:0d:96:68:
#         c3:28:94:fd:ed:2d:1f:4a:6b:43:96:2e:90:01:10:fb:38:a6:
#         81:0b:d0:bf:75:d3:d4:b9:ce:f1:3f:6f:0e:1c:1e:37:71:e5:
#         18:87:75:19:3f:50:b9:5e:a4:45:34:ad:b0:ca:e6:e5:13:76:
#         0f:31:14:a9:8e:2d:94:d6:d5:85:4d:73:15:4f:4b:f2:b2:3e:
#         ed:6c:bd:fd:0e:9d:66:73:b0:3d:b4:f7:bf:a8:e0:11:a4:c4:
#         ae:75:09:4a:63:00:48:20:a6:c6:9d:0b:09:8a:b4:e0:e6:ce:
#         3e:c7:3e:26:38:e9:2b:de:a6:08:49:03:04:90:8a:e9:8f:bf:
#         e8:b6:b4:2a:a3:23:8d:1c:1c:b2:39:92:a8:8f:02:5c:40:39:
#         75:d4:73:41:02:77:de:cd:e0:43:87:d6:e4:ba:4a:c3:6c:12:
#         7f:fe:2a:e6:23:d6:8c:71

[p11-kit-object-v1]
label: "OpenTrust Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OpenTrust Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:a1:69:1b:bf:bd:b9:bd:52:96:8f:23:e8:48:bf:26:11
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = FR, O = OpenTrust, CN = OpenTrust Root CA G2
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C = FR, O = OpenTrust, CN = OpenTrust Root CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:cc:b6:57:a5:33:94:10:81:32:53:df:61:7e:0f:
#                    76:39:cf:5c:c2:53:75:1d:49:7a:96:38:dd:a2:73:
#                    6a:f1:6f:de:5e:a2:5a:b9:71:21:be:36:d9:a1:fc:
#                    bc:ee:6c:a8:7c:34:1a:71:1a:e8:1a:d8:5f:0e:44:
#                    06:ed:a7:e0:f3:d2:61:0b:e0:32:a2:96:d1:38:f0:
#                    c2:da:01:17:fc:e4:ac:4f:e8:ee:89:1e:74:ab:4f:
#                    bf:1e:09:b6:36:6a:56:f3:e1:ee:96:89:66:24:06:
#                    e4:cd:42:3a:4a:dd:e0:9a:b0:c4:82:45:b3:fe:c9:
#                    ab:5c:7c:3e:c9:eb:17:2f:0c:7d:6e:ae:a5:8f:c8:
#                    ac:25:0a:6f:fa:d5:45:98:d2:35:09:f6:03:43:94:
#                    fe:d9:bf:20:95:79:80:98:8a:d9:89:35:bb:51:1b:
#                    a4:37:7d:fc:99:3b:ab:ff:bf:ac:0d:8f:43:b1:99:
#                    7b:16:10:7e:1d:6f:47:c4:15:8f:04:96:08:06:42:
#                    04:f8:84:d6:1d:bc:91:a6:42:be:49:d5:6a:88:3f:
#                    bc:2d:51:d1:9e:8d:e0:52:cc:57:dd:35:35:58:db:
#                    b4:8f:24:88:e4:8b:df:dc:6b:54:d2:81:2b:b2:ce:
#                    92:4b:1c:1f:46:fa:1d:d8:92:cb:76:67:b5:09:99:
#                    09:e5:ac:17:14:55:70:c6:3c:a0:56:0a:03:b3:dc:
#                    62:19:df:c8:b5:30:7f:f5:3c:26:75:11:bd:d7:1b:
#                    b3:87:9e:07:af:65:71:e5:a0:cf:1a:a7:09:10:1d:
#                    93:89:66:5b:e8:3c:62:32:b5:b5:3a:6e:e9:85:01:
#                    8b:9e:43:8c:67:73:28:59:5b:eb:e3:dc:2c:cc:a5:
#                    26:72:62:12:b4:e6:9c:83:44:f6:51:a4:e2:c0:7a:
#                    24:57:ca:0e:a5:3f:3a:b5:3b:8b:e5:76:ee:70:e6:
#                    92:de:16:5c:28:5b:97:19:27:92:fe:7a:92:54:ce:
#                    93:39:0a:16:87:bc:63:b3:f5:b1:93:5c:e0:6e:b7:
#                    d0:ea:f9:62:32:88:44:fb:bf:27:28:b6:30:95:5d:
#                    12:28:b9:95:be:8f:53:18:e5:a2:18:16:e2:56:a4:
#                    b2:2c:10:f5:1d:37:a6:f8:b7:f6:d0:59:5c:89:f7:
#                    c2:d5:b5:94:74:d1:d5:fe:1b:b6:f0:e6:d6:1e:7b:
#                    d2:3c:cb:a8:e3:f5:18:f3:21:1f:6e:ef:4d:68:06:
#                    7b:2d:5d:6e:43:89:a6:c0:f9:a0:bf:82:1e:cf:53:
#                    7f:b4:eb:2c:db:5d:f6:6a:7d:40:24:05:72:89:38:
#                    01:93:cb:71:c2:39:5d:06:11:f6:6f:78:f8:37:0d:
#                    39:84:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:39:FA:42:22:F7:E6:89:00:4D:5E:7D:33:83:CB:B8:6E:77:86:AF
#            X509v3 Authority Key Identifier: 
#                keyid:6A:39:FA:42:22:F7:E6:89:00:4D:5E:7D:33:83:CB:B8:6E:77:86:AF
#
#    Signature Algorithm: sha512WithRSAEncryption
#         98:cb:ab:40:3c:e5:33:02:97:7f:2d:87:a6:8f:d4:5e:4a:af:
#         b8:1e:e7:bb:71:fb:80:64:25:a9:b3:1a:3e:68:5d:27:26:a7:
#         ba:2a:e1:f0:57:83:0a:64:4f:1e:22:74:1b:e9:90:5f:f0:ac:
#         cf:ff:4f:68:7a:38:a4:10:6c:0d:b1:c7:a4:77:80:18:b6:a2:
#         28:44:76:a7:34:9d:71:84:2f:ca:59:d2:47:88:99:41:22:c9:
#         30:98:61:6e:3d:a8:a8:05:6d:d1:1f:c0:51:44:56:7f:27:35:
#         02:dd:5e:98:0a:42:eb:30:bf:8d:a1:9b:51:aa:3b:ea:93:46:
#         64:c5:00:79:de:21:6b:f6:57:a0:86:d7:06:72:ec:70:46:4b:
#         8b:73:dd:a0:21:75:3e:dc:1d:c0:8f:d3:4f:73:1c:85:d9:fe:
#         7f:62:c8:95:6f:b6:d3:7b:8c:ba:53:c2:6f:9b:44:4c:79:d0:
#         1d:70:b3:d7:9f:02:f4:b2:07:b0:c7:e5:f8:ad:23:0e:a6:56:
#         c9:29:12:77:48:d9:2f:46:fd:3b:f0:fc:74:70:92:a5:8e:38:
#         08:1f:64:30:b6:b7:4b:fb:36:ac:10:8e:a0:52:33:63:9d:03:
#         35:56:c5:69:bd:c6:23:5a:27:94:f6:a4:12:f8:2d:33:3c:a1:
#         56:a5:5f:d6:19:e9:ed:7c:08:bd:77:cd:27:64:cc:94:da:4e:
#         46:50:87:e0:f9:c1:53:80:1e:bb:ad:fb:47:52:8b:1b:fd:a2:
#         f9:de:0e:22:b7:3d:33:59:6c:d4:de:f5:95:06:32:0d:51:19:
#         41:5c:3e:4f:06:f7:b9:2b:80:27:f6:a3:aa:7a:7c:06:e1:43:
#         c3:13:39:62:1a:36:bd:e0:28:2e:94:02:e4:29:2e:60:55:ae:
#         40:3d:b0:74:92:5e:f0:20:64:96:3f:5f:45:5d:88:b5:8a:da:
#         02:a0:5b:45:54:de:38:3d:09:c0:a8:4a:65:46:16:fc:aa:bf:
#         54:4e:4d:5b:be:38:43:b7:28:ca:8b:33:aa:1a:25:ba:25:5c:
#         29:2f:5b:4a:6e:8c:ea:2d:9c:2a:f6:05:76:e0:77:97:80:88:
#         dd:67:13:6f:1d:68:24:8b:4f:b7:74:81:e5:f4:60:9f:7a:55:
#         d7:3e:37:da:16:6b:3e:77:ac:ae:18:70:95:08:79:29:03:8a:
#         fe:c1:3b:b3:3f:1a:0f:a4:3b:5e:1f:58:a1:95:c9:ab:2f:73:
#         4a:d0:2d:6e:9a:59:0f:55:18:78:2d:3c:51:a6:97:8b:e6:bb:
#         b2:70:aa:4c:11:de:ff:7c:2b:37:d4:7a:d1:77:34:8f:e7:f9:
#         42:f7:3c:81:0c:4b:52:0a

[p11-kit-object-v1]
label: "OpenTrust Root CA G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAESu5Yrk3KZt4GOqMR/OAY8G4cui0wDInZ
1u6bc4OpIxWML1mKWt0U6p1ZK0O3BuwytrruQbWtXaGFzOodFGajZ35G4pTz57ZW
oRVZoU83l7kiHr0R6/SyH17DFJrl2ZeZ
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OpenTrust Root CA G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:e6:f8:4c:fc:24:b0:be:05:40:ac:da:83:1b:34:60:3f
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = FR, O = OpenTrust, CN = OpenTrust Root CA G3
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C = FR, O = OpenTrust, CN = OpenTrust Root CA G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:4a:ee:58:ae:4d:ca:66:de:06:3a:a3:11:fc:e0:
#                    18:f0:6e:1c:ba:2d:30:0c:89:d9:d6:ee:9b:73:83:
#                    a9:23:15:8c:2f:59:8a:5a:dd:14:ea:9d:59:2b:43:
#                    b7:06:ec:32:b6:ba:ee:41:b5:ad:5d:a1:85:cc:ea:
#                    1d:14:66:a3:67:7e:46:e2:94:f3:e7:b6:56:a1:15:
#                    59:a1:4f:37:97:b9:22:1e:bd:11:eb:f4:b2:1f:5e:
#                    c3:14:9a:e5:d9:97:99
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                47:77:C3:14:8B:62:39:0C:C9:6F:E1:50:4D:D0:10:58:DC:95:88:6D
#            X509v3 Authority Key Identifier: 
#                keyid:47:77:C3:14:8B:62:39:0C:C9:6F:E1:50:4D:D0:10:58:DC:95:88:6D
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:8f:a8:dc:9d:ba:0c:04:17:fa:15:e9:3d:2f:
#         29:01:97:bf:81:16:33:40:93:6c:fc:f9:ed:80:70:6f:aa:8f:
#         db:84:c2:8b:f5:35:ca:06:dc:64:6f:68:16:e1:8f:91:b9:02:
#         31:00:d8:4b:a5:cb:c2:d0:08:6c:e9:18:fb:5a:dd:4d:5f:24:
#         0b:b0:00:21:25:ef:8f:a7:04:26:71:e2:7c:69:e5:5d:9a:f8:
#         41:1f:3b:39:93:93:9d:55:ea:cd:8d:f1:fb:c1

[p11-kit-object-v1]
label: "PersonalID Trustworthy RootCA 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "PersonalID Trustworthy RootCA 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            58:cb:f9:64:96:71:74:95:40:f4:ad:08:ac:64:e4:e3
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = IL, O = PersonalID Ltd., OU = Certificate Services, CN = PersonalID Trustworthy RootCA 2011
#        Validity
#            Not Before: Sep  1 08:35:21 2011 GMT
#            Not After : Sep  1 08:45:16 2041 GMT
#        Subject: C = IL, O = PersonalID Ltd., OU = Certificate Services, CN = PersonalID Trustworthy RootCA 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:95:8c:60:fe:05:0e:6a:33:ed:f7:8b:e3:f2:
#                    d5:f2:7c:d3:56:42:54:f7:2b:f2:88:a5:f5:e7:b7:
#                    6c:87:01:2b:69:be:05:49:44:d8:db:21:7a:2a:d7:
#                    8a:31:a1:21:10:9e:d3:e2:6e:63:82:85:54:84:4d:
#                    28:26:1b:e2:13:f7:51:fb:2f:eb:12:d5:3d:39:8c:
#                    64:9f:a4:13:87:c3:d8:c9:fa:29:23:8e:09:8f:49:
#                    46:c4:d4:c9:57:58:69:9f:17:cf:73:74:a5:ee:ca:
#                    18:b9:c7:c1:30:cd:4f:3a:35:08:53:f8:ec:1a:fb:
#                    6f:30:ed:f6:9f:09:f0:f0:d0:c4:8e:3b:79:4e:2e:
#                    85:22:5c:d4:7d:70:d1:ff:92:ba:1f:d4:55:53:67:
#                    ba:28:58:2d:f7:13:8c:fc:a5:0b:9c:38:a6:46:1c:
#                    0e:e8:aa:78:2b:f5:0a:30:d3:3b:60:86:c8:7f:a5:
#                    9b:a2:63:01:2f:d0:d3:12:25:85:7e:96:cd:31:b1:
#                    e4:9b:8e:ea:2c:93:a4:62:a8:37:d5:f6:8f:df:21:
#                    9a:d3:3e:1d:e1:50:11:70:54:9b:04:17:9d:4d:ab:
#                    61:ce:8f:2a:2c:ef:79:e6:77:45:59:d6:68:d5:b6:
#                    4b:9a:ab:91:4b:0e:61:17:b9:58:c2:9e:66:a1:8f:
#                    89:c1:43:20:42:b0:7f:80:9c:4a:2a:b7:7a:20:41:
#                    c6:4d:c4:92:6f:7a:7e:5d:5b:b9:a3:c9:4e:ca:e5:
#                    50:65:bc:00:00:79:47:f0:45:04:b0:22:fb:0e:98:
#                    aa:61:1d:4f:60:63:72:8f:b5:b0:04:94:7f:10:ac:
#                    19:3f:27:62:69:d6:1c:57:dd:39:4f:38:ea:00:9a:
#                    fd:28:9d:40:26:c0:40:9d:c4:a0:49:c8:41:b5:67:
#                    3d:a0:4b:94:29:12:a9:58:27:59:04:7f:8f:d1:8c:
#                    7e:0c:b3:08:17:34:ac:8f:b9:5c:bd:e9:70:a1:7e:
#                    c2:a5:65:61:e9:b6:10:50:8f:dc:e4:74:61:f1:5f:
#                    72:7b:7f:5c:2f:2d:7c:ab:d6:43:31:10:1c:59:77:
#                    ca:48:4a:18:a2:64:0b:00:59:67:c7:d4:ca:c3:9b:
#                    1a:08:52:15:be:d7:c5:c6:b7:2f:e6:62:9c:a6:c7:
#                    d8:de:f0:15:fb:ae:39:55:2d:6f:50:75:2e:fd:a0:
#                    07:b4:5f:7a:7e:04:8b:f6:99:a2:75:ed:c9:3b:d5:
#                    3d:cf:67:52:3d:3e:ef:1f:70:9a:18:3c:a7:20:06:
#                    49:0c:b1:65:ac:33:bb:d4:7f:47:69:88:f6:8a:81:
#                    ee:9d:d4:b4:c7:2f:03:e8:ae:1a:c9:56:05:67:69:
#                    a8:c8:81
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:2
#            X509v3 Subject Key Identifier: 
#                C7:7F:0B:C8:2F:57:8E:29:F2:F6:01:8B:EB:27:A5:56:8E:FD:A4:1E
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.12440.1
#                  CPS: http://www.ica.co.il/repository/cps/PersonalID_Practice_Statement.pdf
#
#    Signature Algorithm: sha256WithRSAEncryption
#         42:65:8b:24:fa:92:15:34:1a:1c:fa:c8:ce:4d:7a:2f:7b:df:
#         d0:03:41:1c:d4:a4:e1:fb:e8:cc:ad:09:dd:1d:a4:08:d9:a8:
#         20:7d:97:9f:0c:49:f1:a5:c2:e6:d5:77:46:97:7e:a4:90:a2:
#         79:e9:bd:1a:5e:34:82:66:09:52:fc:50:d1:8f:d0:ab:1c:a2:
#         ff:ff:3d:ee:fe:23:f8:bf:23:b3:cd:be:e1:f7:cf:e4:d8:12:
#         e3:94:c8:4e:cc:d7:7b:b0:37:9b:77:ea:ed:5c:81:c8:cc:8f:
#         ce:39:e3:e4:65:5d:de:82:d8:8f:23:69:e1:51:af:5f:b7:4f:
#         90:69:a4:99:65:53:ba:e6:fd:af:78:67:94:4a:c8:c3:7f:8c:
#         02:4f:4a:e6:87:98:f6:38:b7:48:f8:6d:28:7f:f7:c6:6c:25:
#         54:fd:2e:d6:ea:da:06:e2:b1:fd:07:68:f0:af:80:8c:b4:c2:
#         e9:74:15:a4:1a:bf:b9:ca:43:5b:12:e7:85:47:5e:52:03:f0:
#         91:e0:e9:50:71:d4:21:02:2c:7b:86:91:70:36:c6:9c:b6:74:
#         f9:2a:55:f7:21:fb:6f:a0:06:5d:d7:30:12:f2:51:f1:c9:38:
#         36:8f:c8:66:61:41:d9:c7:4b:82:68:52:a3:f5:89:0c:15:bc:
#         4e:2a:95:ac:31:69:a7:1b:e2:d4:d7:48:f4:91:f5:03:7c:79:
#         16:3e:2c:0d:69:e1:8a:37:1e:9f:7c:18:55:41:2f:5f:e7:a4:
#         72:9b:55:f3:e3:01:b0:02:a5:84:12:6a:40:a6:ab:e4:a1:ac:
#         eb:03:d9:bc:5f:24:56:27:ad:20:e0:66:35:45:3d:47:09:f0:
#         05:b1:6f:71:7e:40:b0:d0:15:5e:2b:ac:52:81:a8:fb:83:f5:
#         2c:57:44:86:34:e4:14:6a:e3:cf:7d:9a:77:d8:6c:48:5c:cb:
#         9a:e1:a6:fb:bf:11:a2:06:e5:1f:71:bd:34:b5:cf:bd:c4:42:
#         16:c5:29:f8:d4:c0:4c:8a:b2:de:c5:94:82:86:9b:cc:e0:a9:
#         06:44:31:24:24:4d:fa:ed:e1:42:25:66:a2:c1:d7:80:17:ef:
#         7a:95:65:43:3e:66:d3:05:f1:01:e4:42:56:44:00:78:6b:9d:
#         36:20:fb:65:ff:40:5c:e8:68:35:1f:e1:26:a0:82:03:76:03:
#         cb:70:46:11:24:ae:df:2f:60:fd:f1:27:00:03:bd:4b:27:db:
#         bc:9c:97:37:51:2b:e5:78:b4:c1:36:90:10:8c:ff:3d:00:d4:
#         ba:48:9f:48:ca:87:31:9a:ed:c4:9a:53:d2:dd:73:14:3f:09:
#         82:a1:5d:65:4e:4d:26:e2

[p11-kit-object-v1]
label: "Post.Trust Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1n8T5A0k2Nj76bbDsVKj
Tty3O+L3Dl+B5gHwpuY2cNgTc6H/UgiQ8hW88jIcqNfhBhB7QaiUxz89RBXcgFHn
MP5TSPWQX21tJeBgu6D71sYp+E1wUBo3oA7NeCq2aPOZ1AyOXhJi/8JfWporiEeq
u6HZdfAsXP5twrFbMcyDhxqnvpAO6BBUU1ILnEnzgAL+byemo1cwuNu40AAEA+Tl
1EMG66toTWgm0pk0ueASln9Lu2tuIXHmCEVKHWYNN8kD4dHK3LEvcPa3gWKWG2Sn
/rvhhutBn6ic2Mqg4dYv+A/hukA4923RpcpMGciW3MxJHAq206iROvna7B3Nc0ok
PwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Post.Trust Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 966956003 (0x39a293e3)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = IE, O = An Post, OU = Post.Trust Ltd., CN = Post.Trust Root CA
#        Validity
#            Not Before: Aug 22 14:56:21 2000 GMT
#            Not After : Aug 20 13:56:21 2010 GMT
#        Subject: C = IE, O = An Post, OU = Post.Trust Ltd., CN = Post.Trust Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d6:7f:13:e4:0d:24:d8:d8:fb:e9:b6:c3:b1:52:
#                    a3:4e:dc:b7:3b:e2:f7:0e:5f:81:e6:01:f0:a6:e6:
#                    36:70:d8:13:73:a1:ff:52:08:90:f2:15:bc:f2:32:
#                    1c:a8:d7:e1:06:10:7b:41:a8:94:c7:3f:3d:44:15:
#                    dc:80:51:e7:30:fe:53:48:f5:90:5f:6d:6d:25:e0:
#                    60:bb:a0:fb:d6:c6:29:f8:4d:70:50:1a:37:a0:0e:
#                    cd:78:2a:b6:68:f3:99:d4:0c:8e:5e:12:62:ff:c2:
#                    5f:5a:9a:2b:88:47:aa:bb:a1:d9:75:f0:2c:5c:fe:
#                    6d:c2:b1:5b:31:cc:83:87:1a:a7:be:90:0e:e8:10:
#                    54:53:52:0b:9c:49:f3:80:02:fe:6f:27:a6:a3:57:
#                    30:b8:db:b8:d0:00:04:03:e4:e5:d4:43:06:eb:ab:
#                    68:4d:68:26:d2:99:34:b9:e0:12:96:7f:4b:bb:6b:
#                    6e:21:71:e6:08:45:4a:1d:66:0d:37:c9:03:e1:d1:
#                    ca:dc:b1:2f:70:f6:b7:81:62:96:1b:64:a7:fe:bb:
#                    e1:86:eb:41:9f:a8:9c:d8:ca:a0:e1:d6:2f:f8:0f:
#                    e1:ba:40:38:f7:6d:d1:a5:ca:4c:19:c8:96:dc:cc:
#                    49:1c:0a:b6:d3:a8:91:3a:f9:da:ec:1d:cd:73:4a:
#                    24:3f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.2.372.980002.1
#                  User Notice:
#                    Explicit Text: This certificate is issued subject to the Post.Trust CPS terms and conditions which outline the warranties provided with this certificate and the extent of the liability of Post.Trust Limited.  Post.Trust Limited expressly excludes certain express and implied warranties and conditions, including warranties as to fitness for purpose or merchantability, and will not be liable for indirect and consequential type losses, or for loss in excess of a specified amount.  Accordingly, the CPS terms and conditions must be read before any reliance can be placed on this certificate, and by accepting on this certificate, a subscriber and/or relying party is acknowledging that it has read, understood and accepted the CPS terms and conditions. 
#                  CPS: http://www.post.trust.ie/reposit/cps.html
#
#            X509v3 Subject Key Identifier: 
#                41:1A:8C:E3:4F:3D:EF:F1
#            X509v3 Authority Key Identifier: 
#                keyid:41:1A:8C:E3:4F:3D:EF:F1
#
#    Signature Algorithm: sha1WithRSAEncryption
#         67:8d:a9:e3:af:f8:f1:e1:6d:2c:fb:d7:0d:62:4b:ae:f0:58:
#         3b:be:32:43:50:5b:f2:43:8e:3e:1b:f0:37:35:12:90:3c:36:
#         01:1d:ff:29:f4:08:a6:7e:ee:b1:1e:51:b8:b9:0b:5c:eb:b7:
#         e2:0d:f4:8a:30:f8:a8:35:18:0b:c7:8e:73:ea:06:99:2b:07:
#         25:07:0f:73:4b:ff:ba:24:5b:84:fc:ce:94:36:52:fb:90:9c:
#         7a:8d:8b:a0:88:7a:46:fc:9a:28:58:cb:8d:ab:54:f4:ed:78:
#         3a:f7:3b:d3:67:e3:8f:90:83:99:a2:08:52:82:16:b5:81:5c:
#         9b:08:31:fc:e5:d6:78:ae:80:f1:4c:02:63:6c:8e:04:9c:b9:
#         7b:99:f1:1c:33:a1:af:7b:43:51:85:07:ae:df:2e:c5:09:fc:
#         84:a5:fe:55:bc:0a:e4:78:5c:a6:d8:f7:3b:8f:0a:c7:6e:f9:
#         9f:8e:10:0f:42:04:fc:57:41:fe:52:3f:b1:31:94:6f:f0:6d:
#         d4:4e:05:dd:9e:2b:00:5f:c1:12:7e:42:64:a7:61:16:31:4f:
#         7c:be:0e:c8:e3:10:fb:2e:f7:15:65:a7:54:ca:5d:a4:cc:2c:
#         cc:78:00:bd:01:d7:cd:df:d0:db:33:dd:89:a7:14:d7:a2:21:
#         bc:35:d6:0e

[p11-kit-object-v1]
label: "Public Notary Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBHzANBgkqhkiG9w0BAQEFAAOCAQwAMIIBBwKCAQBYegK8fuyTZu3LEU6n3Q7L
lY3HHjdhCecAxdnpBXvq/J6001i2GUbkaJdPgW2srgGemkA4bHhEeXg5j+fixPV6
bP8yTFPLR47WkD2sRXwnykLPfnTTqekzTtClmGWqUAxUhh2Aao5wap1sQivHNpXA
nEIRLGho/mz+ama9W7LXpc6bUDkEnaEkH7YQby4XduQ7UHvAeQIAiNs1R+WxH9kn
/2010LlsVvS19U90Vy2YcgTHGQd/fr0tVaKsjomwSCtO33QF21RlBjXVcTzhOtk0
0a9eB0gcHQB0KiEFDsEfd04K5eKTgA7cVrS7BuA/SEJT+Qk1CWW4QnM/PI1L5AGl
AgED
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Public Notary Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = EU, O = AC Camerfirma SA CIF A82743287, OU = http://www.chambersign.org, CN = Public Notary Root
#        Validity
#            Not Before: Sep 30 16:14:49 2003 GMT
#            Not After : Sep 30 16:14:49 2037 GMT
#        Subject: C = EU, O = AC Camerfirma SA CIF A82743287, OU = http://www.chambersign.org, CN = Public Notary Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2047 bit)
#                Modulus:
#                    58:7a:02:bc:7e:ec:93:66:ed:cb:11:4e:a7:dd:0e:
#                    cb:95:8d:c7:1e:37:61:09:e7:00:c5:d9:e9:05:7b:
#                    ea:fc:9e:b4:d3:58:b6:19:46:e4:68:97:4f:81:6d:
#                    ac:ae:01:9e:9a:40:38:6c:78:44:79:78:39:8f:e7:
#                    e2:c4:f5:7a:6c:ff:32:4c:53:cb:47:8e:d6:90:3d:
#                    ac:45:7c:27:ca:42:cf:7e:74:d3:a9:e9:33:4e:d0:
#                    a5:98:65:aa:50:0c:54:86:1d:80:6a:8e:70:6a:9d:
#                    6c:42:2b:c7:36:95:c0:9c:42:11:2c:68:68:fe:6c:
#                    fe:6a:66:bd:5b:b2:d7:a5:ce:9b:50:39:04:9d:a1:
#                    24:1f:b6:10:6f:2e:17:76:e4:3b:50:7b:c0:79:02:
#                    00:88:db:35:47:e5:b1:1f:d9:27:ff:6d:35:d0:b9:
#                    6c:56:f4:b5:f5:4f:74:57:2d:98:72:04:c7:19:07:
#                    7f:7e:bd:2d:55:a2:ac:8e:89:b0:48:2b:4e:df:74:
#                    05:db:54:65:06:35:d5:71:3c:e1:3a:d9:34:d1:af:
#                    5e:07:48:1c:1d:00:74:2a:21:05:0e:c1:1f:77:4e:
#                    0a:e5:e2:93:80:0e:dc:56:b4:bb:06:e0:3f:48:42:
#                    53:f9:09:35:09:65:b8:42:73:3f:3c:8d:4b:e4:01:
#                    a5
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.chambersign.org/publicnotaryroot.crl
#
#            X509v3 Subject Key Identifier: 
#                1A:58:87:CC:CF:64:C6:3B:F0:A2:33:74:49:64:5D:06:C3:AB:E7:F9
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Alternative Name: 
#                email:publicnotaryroot@chambersign.org
#            X509v3 Issuer Alternative Name: 
#                email:publicnotaryroot@chambersign.org
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.17326.10.2.1
#                  CPS: http://cps.chambersign.org/cps/publicnotaryroot.html
#
#    Signature Algorithm: sha1WithRSAEncryption
#         15:28:29:fe:b8:22:b2:55:bf:63:1f:71:99:01:e4:b3:88:6d:
#         b7:75:b7:2f:51:99:91:4e:ea:69:d7:5d:b0:9e:7f:4a:23:93:
#         b8:47:c6:7e:8f:fe:7e:03:9e:89:96:52:3e:2f:a1:1b:f6:3d:
#         70:c3:3d:a6:de:41:c3:44:10:5e:a7:27:af:b5:0f:e2:7a:93:
#         c4:bd:cc:8b:fb:bc:b6:73:4d:1f:32:23:a4:a3:7b:d0:e1:83:
#         5d:bf:c3:9e:c1:54:48:43:1f:29:2e:de:e5:cf:4a:5c:ec:b3:
#         98:59:bb:41:0f:85:39:e6:06:a4:1c:bf:a9:6d:9a:e4:29:61:
#         3c:9d:e8:1d:50:37:b6:ac:9f:30:af:9e:e7:30:ec:26:fc:2a:
#         24:a1:a1:53:a8:3e:fd:11:78:d7:00:6d:38:b2:b8:ac:df:d2:
#         1f:bf:86:58:05:ef:1c:25:c5:4d:39:1a:2c:44:53:52:c2:d7:
#         20:01:2c:c2:59:4f:be:e4:db:16:d5:b3:5b:fa:0e:0f:f6:66:
#         99:c2:58:6b:97:e8:0c:10:2d:2d:af:cb:dd:6f:23:b3:97:9d:
#         48:46:7a:42:13:02:a1:8d:36:5f:f2:ee:d6:a1:98:ea:37:7c:
#         e9:bc:a1:18:96:02:b6:ca:58:2a:1a:38:d5:b2:71:be:78:a6:
#         4c:f7:ea:c7

[p11-kit-object-v1]
label: "QuoVadis Root CA 1 G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 1 G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            78:58:5f:2e:ad:2c:19:4b:e3:37:07:35:34:13:28:b5:96:d4:65:93
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 1 G3
#        Validity
#            Not Before: Jan 12 17:27:44 2012 GMT
#            Not After : Jan 12 17:27:44 2042 GMT
#        Subject: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 1 G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a0:be:50:10:8e:e9:f2:6c:40:b4:04:9c:85:b9:
#                    31:ca:dc:2d:e4:11:a9:04:3c:1b:55:c1:e7:58:30:
#                    1d:24:b4:c3:ef:85:de:8c:2c:e1:c1:3d:df:82:e6:
#                    4f:ad:47:87:6c:ec:5b:49:c1:4a:d5:bb:8f:ec:87:
#                    ac:7f:82:9a:86:ec:3d:03:99:52:01:d2:35:9e:ac:
#                    da:f0:53:c9:66:3c:d4:ac:02:01:da:24:d3:3b:a8:
#                    02:46:af:a4:1c:e3:f8:73:58:76:b7:f6:0e:90:0d:
#                    b5:f0:cf:cc:fa:f9:c6:4c:e5:c3:86:30:0a:8d:17:
#                    7e:35:eb:c5:df:bb:0e:9c:c0:8d:87:e3:88:38:85:
#                    67:fa:3e:c7:ab:e0:13:9c:05:18:98:cf:93:f5:b1:
#                    92:b4:fc:23:d3:cf:d5:c4:27:49:e0:9e:3c:9b:08:
#                    a3:8b:5d:2a:21:e0:fc:39:aa:53:da:7d:7e:cf:1a:
#                    09:53:bc:5d:05:04:cf:a1:4a:8f:8b:76:82:0d:a1:
#                    f8:d2:c7:14:77:5b:90:36:07:81:9b:3e:06:fa:52:
#                    5e:63:c5:a6:00:fe:a5:e9:52:1b:52:b5:92:39:72:
#                    03:09:62:bd:b0:60:16:6e:a6:dd:25:c2:03:66:dd:
#                    f3:04:d1:40:e2:4e:8b:86:f4:6f:e5:83:a0:27:84:
#                    5e:04:c1:f5:90:bd:30:3d:c4:ef:a8:69:bc:38:9b:
#                    a4:a4:96:d1:62:da:69:c0:01:96:ae:cb:c4:51:34:
#                    ea:0c:aa:ff:21:8e:59:8f:4a:5c:e4:61:9a:a7:d2:
#                    e9:2a:78:8d:51:3d:3a:15:ee:a2:59:8e:a9:5c:de:
#                    c5:f9:90:22:e5:88:45:71:dd:91:99:6c:7a:9f:3d:
#                    3d:98:7c:5e:f6:be:16:68:a0:5e:ae:0b:23:fc:5a:
#                    0f:aa:22:76:2d:c9:a1:10:1d:e4:d3:44:23:90:88:
#                    9f:c6:2a:e6:d7:f5:9a:b3:58:1e:2f:30:89:08:1b:
#                    54:a2:b5:98:23:ec:08:77:1c:95:5d:61:d1:cb:89:
#                    9c:5f:a2:4a:91:9a:ef:21:aa:49:16:08:a8:bd:61:
#                    28:31:c9:74:ad:85:f6:d9:c5:b1:8b:d1:e5:10:32:
#                    4d:5f:8b:20:3a:3c:49:1f:33:85:59:0d:db:cb:09:
#                    75:43:69:73:fb:6b:71:7d:f0:df:c4:4c:7d:c6:a3:
#                    2e:c8:95:79:cb:73:a2:8e:4e:4d:24:fb:5e:e4:04:
#                    be:72:1b:a6:27:2d:49:5a:99:7a:d7:5c:09:20:b7:
#                    7f:94:b9:4f:f1:0d:1c:5e:88:42:1b:11:b7:e7:91:
#                    db:9e:6c:f4:6a:df:8c:06:98:03:ad:cc:28:ef:a5:
#                    47:f3:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A3:97:D6:F3:5E:A2:10:E1:AB:45:9F:3C:17:64:3C:EE:01:70:9C:CC
#    Signature Algorithm: sha256WithRSAEncryption
#         18:fa:5b:75:fc:3e:7a:c7:5f:77:c7:ca:df:cf:5f:c3:12:c4:
#         40:5d:d4:32:aa:b8:6a:d7:d5:15:15:46:98:23:a5:e6:90:5b:
#         18:99:4c:e3:ad:42:a3:82:31:36:88:cd:e9:fb:c4:04:96:48:
#         8b:01:c7:8d:01:cf:5b:33:06:96:46:66:74:1d:4f:ed:c1:b6:
#         b9:b4:0d:61:cc:63:7e:d7:2e:77:8c:96:1c:2a:23:68:6b:85:
#         57:76:70:33:13:fe:e1:4f:a6:23:77:18:fa:1a:8c:e8:bd:65:
#         c9:cf:3f:f4:c9:17:dc:eb:c7:bc:c0:04:2e:2d:46:2f:69:66:
#         c3:1b:8f:fe:ec:3e:d3:ca:94:bf:76:0a:25:0d:a9:7b:02:1c:
#         a9:d0:3b:5f:0b:c0:81:3a:3d:64:e1:bf:a7:2d:4e:bd:4d:c4:
#         d8:29:c6:22:18:d0:c5:ac:72:02:82:3f:aa:3a:a2:3a:22:97:
#         31:dd:08:63:c3:75:14:b9:60:28:2d:5b:68:e0:16:a9:66:82:
#         23:51:f5:eb:53:d8:31:9b:7b:e9:b7:9d:4b:eb:88:16:cf:f9:
#         5d:38:8a:49:30:8f:ed:f1:eb:19:f4:77:1a:31:18:4d:67:54:
#         6c:2f:6f:65:f9:db:3d:ec:21:ec:5e:f4:f4:8b:ca:60:65:54:
#         d1:71:64:f4:f9:a6:a3:81:33:36:33:71:f0:a4:78:5f:4e:ad:
#         83:21:de:34:49:8d:e8:59:ac:9d:f2:76:5a:36:f2:13:f4:af:
#         e0:09:c7:61:2a:6c:f7:e0:9d:ae:bb:86:4a:28:6f:2e:ee:b4:
#         79:cd:90:33:c3:b3:76:fa:f5:f0:6c:9d:01:90:fa:9e:90:f6:
#         9c:72:cf:47:da:c3:1f:e4:35:20:53:f2:54:d1:df:61:83:a6:
#         02:e2:25:38:de:85:32:2d:5e:73:90:52:5d:42:c4:ce:3d:4b:
#         e1:f9:19:84:1d:d5:a2:50:cc:41:fb:41:14:c3:bd:d6:c9:5a:
#         a3:63:66:02:80:bd:05:3a:3b:47:9c:ec:00:26:4c:f5:88:51:
#         bf:a8:23:7f:18:07:b0:0b:ed:8b:26:a1:64:d3:61:4a:eb:5c:
#         9f:de:b3:af:67:03:b3:1f:dd:6d:5d:69:68:69:ab:5e:3a:ec:
#         7c:69:bc:c7:3b:85:4e:9e:15:b9:b4:15:4f:c3:95:7a:58:d7:
#         c9:6c:e9:6c:b9:f3:29:63:5e:b4:2c:f0:2d:3d:ed:5a:65:e0:
#         a9:5b:40:c2:48:99:81:6d:9e:1f:06:2a:3c:12:b4:8b:0f:9b:
#         a2:24:f0:a6:8d:d6:7a:e0:4b:b6:64:96:63:95:84:c2:4a:cd:
#         1c:2e:24:87:33:60:e5:c3

[p11-kit-object-v1]
label: "QuoVadis Root CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1289 (0x509)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 2
#        Validity
#            Not Before: Nov 24 18:27:00 2006 GMT
#            Not After : Nov 24 18:23:33 2031 GMT
#        Subject: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:9a:18:ca:4b:94:0d:00:2d:af:03:29:8a:f0:0f:
#                    81:c8:ae:4c:19:85:1d:08:9f:ab:29:44:85:f3:2f:
#                    81:ad:32:1e:90:46:bf:a3:86:26:1a:1e:fe:7e:1c:
#                    18:3a:5c:9c:60:17:2a:3a:74:83:33:30:7d:61:54:
#                    11:cb:ed:ab:e0:e6:d2:a2:7e:f5:6b:6f:18:b7:0a:
#                    0b:2d:fd:e9:3e:ef:0a:c6:b3:10:e9:dc:c2:46:17:
#                    f8:5d:fd:a4:da:ff:9e:49:5a:9c:e6:33:e6:24:96:
#                    f7:3f:ba:5b:2b:1c:7a:35:c2:d6:67:fe:ab:66:50:
#                    8b:6d:28:60:2b:ef:d7:60:c3:c7:93:bc:8d:36:91:
#                    f3:7f:f8:db:11:13:c4:9c:77:76:c1:ae:b7:02:6a:
#                    81:7a:a9:45:83:e2:05:e6:b9:56:c1:94:37:8f:48:
#                    71:63:22:ec:17:65:07:95:8a:4b:df:8f:c6:5a:0a:
#                    e5:b0:e3:5f:5e:6b:11:ab:0c:f9:85:eb:44:e9:f8:
#                    04:73:f2:e9:fe:5c:98:8c:f5:73:af:6b:b4:7e:cd:
#                    d4:5c:02:2b:4c:39:e1:b2:95:95:2d:42:87:d7:d5:
#                    b3:90:43:b7:6c:13:f1:de:dd:f6:c4:f8:89:3f:d1:
#                    75:f5:92:c3:91:d5:8a:88:d0:90:ec:dc:6d:de:89:
#                    c2:65:71:96:8b:0d:03:fd:9c:bf:5b:16:ac:92:db:
#                    ea:fe:79:7c:ad:eb:af:f7:16:cb:db:cd:25:2b:e5:
#                    1f:fb:9a:9f:e2:51:cc:3a:53:0c:48:e6:0e:bd:c9:
#                    b4:76:06:52:e6:11:13:85:72:63:03:04:e0:04:36:
#                    2b:20:19:02:e8:74:a7:1f:b6:c9:56:66:f0:75:25:
#                    dc:67:c1:0e:61:60:88:b3:3e:d1:a8:fc:a3:da:1d:
#                    b0:d1:b1:23:54:df:44:76:6d:ed:41:d8:c1:b2:22:
#                    b6:53:1c:df:35:1d:dc:a1:77:2a:31:e4:2d:f5:e5:
#                    e5:db:c8:e0:ff:e5:80:d7:0b:63:a0:ff:33:a1:0f:
#                    ba:2c:15:15:ea:97:b3:d2:a2:b5:be:f2:8c:96:1e:
#                    1a:8f:1d:6c:a4:61:37:b9:86:73:33:d7:97:96:9e:
#                    23:7d:82:a4:4c:81:e2:a1:d1:ba:67:5f:95:07:a3:
#                    27:11:ee:16:10:7b:bc:45:4a:4c:b2:04:d2:ab:ef:
#                    d5:fd:0c:51:ce:50:6a:08:31:f9:91:da:0c:8f:64:
#                    5c:03:c3:3a:8b:20:3f:6e:8d:67:3d:3a:d6:fe:7d:
#                    5b:88:c9:5e:fb:cc:61:dc:8b:33:77:d3:44:32:35:
#                    09:62:04:92:16:10:d8:9e:27:47:fb:3b:21:e3:f8:
#                    eb:1d:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1A:84:62:BC:48:4C:33:25:04:D4:EE:D0:F6:03:C4:19:46:D1:94:6B
#            X509v3 Authority Key Identifier: 
#                keyid:1A:84:62:BC:48:4C:33:25:04:D4:EE:D0:F6:03:C4:19:46:D1:94:6B
#                DirName:/C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 2
#                serial:05:09
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:0a:16:4d:9f:06:5b:a8:ae:71:5d:2f:05:2f:67:e6:13:45:
#         83:c4:36:f6:f3:c0:26:0c:0d:b5:47:64:5d:f8:b4:72:c9:46:
#         a5:03:18:27:55:89:78:7d:76:ea:96:34:80:17:20:dc:e7:83:
#         f8:8d:fc:07:b8:da:5f:4d:2e:67:b2:84:fd:d9:44:fc:77:50:
#         81:e6:7c:b4:c9:0d:0b:72:53:f8:76:07:07:41:47:96:0c:fb:
#         e0:82:26:93:55:8c:fe:22:1f:60:65:7c:5f:e7:26:b3:f7:32:
#         90:98:50:d4:37:71:55:f6:92:21:78:f7:95:79:fa:f8:2d:26:
#         87:66:56:30:77:a6:37:78:33:52:10:58:ae:3f:61:8e:f2:6a:
#         b1:ef:18:7e:4a:59:63:ca:8d:a2:56:d5:a7:2f:bc:56:1f:cf:
#         39:c1:e2:fb:0a:a8:15:2c:7d:4d:7a:63:c6:6c:97:44:3c:d2:
#         6f:c3:4a:17:0a:f8:90:d2:57:a2:19:51:a5:2d:97:41:da:07:
#         4f:a9:50:da:90:8d:94:46:e1:3e:f0:94:fd:10:00:38:f5:3b:
#         e8:40:e1:b4:6e:56:1a:20:cc:6f:58:8d:ed:2e:45:8f:d6:e9:
#         93:3f:e7:b1:2c:df:3a:d6:22:8c:dc:84:bb:22:6f:d0:f8:e4:
#         c6:39:e9:04:88:3c:c3:ba:eb:55:7a:6d:80:99:24:f5:6c:01:
#         fb:f8:97:b0:94:5b:eb:fd:d2:6f:f1:77:68:0d:35:64:23:ac:
#         b8:55:a1:03:d1:4d:42:19:dc:f8:75:59:56:a3:f9:a8:49:79:
#         f8:af:0e:b9:11:a0:7c:b7:6a:ed:34:d0:b6:26:62:38:1a:87:
#         0c:f8:e8:fd:2e:d3:90:7f:07:91:2a:1d:d6:7e:5c:85:83:99:
#         b0:38:08:3f:e9:5e:f9:35:07:e4:c9:62:6e:57:7f:a7:50:95:
#         f7:ba:c8:9b:e6:8e:a2:01:c5:d6:66:bf:79:61:f3:3c:1c:e1:
#         b9:82:5c:5d:a0:c3:e9:d8:48:bd:19:a2:11:14:19:6e:b2:86:
#         1b:68:3e:48:37:1a:88:b7:5d:96:5e:9c:c7:ef:27:62:08:e2:
#         91:19:5c:d2:f1:21:dd:ba:17:42:82:97:71:81:53:31:a9:9f:
#         f6:7d:62:bf:72:e1:a3:93:1d:cc:8a:26:5a:09:38:d0:ce:d7:
#         0d:80:16:b4:78:a5:3a:87:4c:8d:8a:a5:d5:46:97:f2:2c:10:
#         b9:bc:54:22:c0:01:50:69:43:9e:f4:b2:ef:6d:f8:ec:da:f1:
#         e3:b1:ef:df:91:8f:54:2a:0b:25:c1:26:19:c4:52:10:05:65:
#         d5:82:10:ea:c2:31:cd:2e

[p11-kit-object-v1]
label: "QuoVadis Root CA 2 G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 2 G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            44:57:34:24:5b:81:89:9b:35:f2:ce:b8:2b:3b:5b:a7:26:f0:75:28
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 2 G3
#        Validity
#            Not Before: Jan 12 18:59:32 2012 GMT
#            Not After : Jan 12 18:59:32 2042 GMT
#        Subject: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 2 G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a1:ae:25:b2:01:18:dc:57:88:3f:46:eb:f9:af:
#                    e2:eb:23:71:e2:9a:d1:61:66:21:5f:aa:af:27:51:
#                    e5:6e:1b:16:d4:2d:7d:50:b0:53:77:bd:78:3a:60:
#                    e2:64:02:9b:7c:86:9b:d6:1a:8e:ad:ff:1f:15:7f:
#                    d5:95:1e:12:cb:e6:14:84:04:c1:df:36:b3:16:9f:
#                    8a:e3:c9:db:98:34:ce:d8:33:17:28:46:fc:a7:c9:
#                    f0:d2:b4:d5:4d:09:72:49:f9:f2:87:e3:a9:da:7d:
#                    a1:7d:6b:b2:3a:25:a9:6d:52:44:ac:f8:be:6e:fb:
#                    dc:a6:73:91:90:61:a6:03:14:20:f2:e7:87:a3:88:
#                    ad:ad:a0:8c:ff:a6:0b:25:52:25:e7:16:01:d5:cb:
#                    b8:35:81:0c:a3:3b:f0:e1:e1:fc:5a:5d:ce:80:71:
#                    6d:f8:49:ab:3e:3b:ba:b8:d7:80:01:fb:a5:eb:5b:
#                    b3:c5:5e:60:2a:31:a0:af:37:e8:20:3a:9f:a8:32:
#                    2c:0c:cc:09:1d:d3:9e:8e:5d:bc:4c:98:ee:c5:1a:
#                    68:7b:ec:53:a6:e9:14:35:a3:df:cd:80:9f:0c:48:
#                    fb:1c:f4:f1:bf:4a:b8:fa:d5:8c:71:4a:c7:1f:ad:
#                    fe:41:9a:b3:83:5d:f2:84:56:ef:a5:57:43:ce:29:
#                    ad:8c:ab:55:bf:c4:fb:5b:01:dd:23:21:a1:58:00:
#                    8e:c3:d0:6a:13:ed:13:e3:12:2b:80:dc:67:e6:95:
#                    b2:cd:1e:22:6e:2a:f8:41:d4:f2:ca:14:07:8d:8a:
#                    55:12:c6:69:f5:b8:86:68:2f:53:5e:b0:d2:aa:21:
#                    c1:98:e6:30:e3:67:55:c7:9b:6e:ac:19:a8:55:a6:
#                    45:06:d0:23:3a:db:eb:65:5d:2a:11:11:f0:3b:4f:
#                    ca:6d:f4:34:c4:71:e4:ff:00:5a:f6:5c:ae:23:60:
#                    85:73:f1:e4:10:b1:25:ae:d5:92:bb:13:c1:0c:e0:
#                    39:da:b4:39:57:b5:ab:35:aa:72:21:3b:83:35:e7:
#                    31:df:7a:21:6e:b8:32:08:7d:1d:32:91:15:4a:62:
#                    72:cf:e3:77:a1:bc:d5:11:1b:76:01:67:08:e0:41:
#                    0b:c3:eb:15:6e:f8:a4:19:d9:a2:ab:af:e2:27:52:
#                    56:2b:02:8a:2c:14:24:f9:bf:42:02:bf:26:c8:c6:
#                    8f:e0:6e:38:7d:53:2d:e5:ed:98:b3:95:63:68:7f:
#                    f9:35:f4:df:88:c5:60:35:92:c0:7c:69:1c:61:95:
#                    16:d0:eb:de:0b:af:3e:04:10:45:65:58:50:38:af:
#                    48:f2:59:b6:16:f2:3c:0d:90:02:c6:70:2e:01:ad:
#                    3c:15:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                ED:E7:6F:76:5A:BF:60:EC:49:5B:C6:A5:77:BB:72:16:71:9B:C4:3D
#    Signature Algorithm: sha256WithRSAEncryption
#         91:df:80:3f:43:09:7e:71:c2:f7:eb:b3:88:8f:e1:51:b2:bc:
#         3d:75:f9:28:5d:c8:bc:99:9b:7b:5d:aa:e5:ca:e1:0a:f7:e8:
#         b2:d3:9f:dd:67:31:7e:ba:01:aa:c7:6a:41:3b:90:d4:08:5c:
#         b2:60:6a:90:f0:c8:ce:03:62:f9:8b:ed:fb:6e:2a:dc:06:4d:
#         3c:29:0f:89:16:8a:58:4c:48:0f:e8:84:61:ea:3c:72:a6:77:
#         e4:42:ae:88:a3:43:58:79:7e:ae:ca:a5:53:0d:a9:3d:70:bd:
#         20:19:61:a4:6c:38:fc:43:32:e1:c1:47:ff:f8:ec:f1:11:22:
#         32:96:9c:c2:f6:5b:69:96:7b:20:0c:43:41:9a:5b:f6:59:19:
#         88:de:55:88:37:51:0b:78:5c:0a:1e:a3:42:fd:c7:9d:88:0f:
#         c0:f2:78:02:24:54:93:af:89:87:88:c9:4a:80:1d:ea:d0:6e:
#         3e:61:2e:36:bb:35:0e:27:96:fd:66:34:3b:61:72:73:f1:16:
#         5c:47:06:54:49:00:7a:58:12:b0:0a:ef:85:fd:b1:b8:33:75:
#         6a:93:1c:12:e6:60:5e:6f:1d:7f:c9:1f:23:cb:84:61:9f:1e:
#         82:44:f9:5f:ad:62:55:24:9a:52:98:ed:51:e7:a1:7e:97:3a:
#         e6:2f:1f:11:da:53:80:2c:85:9e:ab:35:10:db:22:5f:6a:c5:
#         5e:97:53:f2:32:02:09:30:a3:58:f0:0d:01:d5:72:c6:b1:7c:
#         69:7b:c3:f5:36:45:cc:61:6e:5e:4c:94:c5:5e:ae:e8:0e:5e:
#         8b:bf:f7:cd:e0:ed:a1:0e:1b:33:ee:54:18:fe:0f:be:ef:7e:
#         84:6b:43:e3:70:98:db:5d:75:b2:0d:59:07:85:15:23:39:d6:
#         f1:df:a9:26:0f:d6:48:c7:b3:a6:22:f5:33:37:5a:95:47:9f:
#         7b:ba:18:15:6f:ff:d6:14:64:83:49:d2:0a:67:21:db:0f:35:
#         63:60:28:22:e3:b1:95:83:cd:85:a6:dd:2f:0f:e7:67:52:6e:
#         bb:2f:85:7c:f5:4a:73:e7:c5:3e:c0:bd:21:12:05:3f:fc:b7:
#         03:49:02:5b:c8:25:e6:e2:54:38:f5:79:87:8c:1d:53:b2:4e:
#         85:7b:06:38:c7:2c:f8:f8:b0:72:8d:25:e5:77:52:f4:03:1c:
#         48:a6:50:5f:88:20:30:6e:f2:82:43:ab:3d:97:84:e7:53:fb:
#         21:c1:4f:0f:22:9a:86:b8:59:2a:f6:47:3d:19:88:2d:e8:85:
#         e1:9e:ec:85:08:6a:b1:6c:34:c9:1d:ec:48:2b:3b:78:ed:66:
#         c4:8e:79:69:83:de:7f:8c

[p11-kit-object-v1]
label: "QuoVadis Root CA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGnTCCBIWgAwIBAgICBcYwDQYJKoZIhvcNAQEFBQAwRTELMAkGA1UEBhMCQk0x
GTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxGzAZBgNVBAMTElF1b1ZhZGlzIFJv
b3QgQ0EgMzAeFw0wNjExMjQxOTExMjNaFw0zMTExMjQxOTA2NDRaMEUxCzAJBgNV
BAYTAkJNMRkwFwYDVQQKExBRdW9WYWRpcyBMaW1pdGVkMRswGQYDVQQDExJRdW9W
YWRpcyBSb290IENBIDMwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDM
V0IWVJzmmNPTTe7+7cefQzlKZbPoFog02w1ZkXTPkrgEQK0CSzGrvI2RaNggDhoB
4hp7Thdd4oq3P5kazethq8Jlph+3t723j/z9cI8LoGe+AaJZz3HmDyl2/7FWeUUr
H556VOijKTVopAFPD6QuN+8bv+OPEKhyq1hX51SGyMnzW9os2l2ObjyjPtr7guXd
8lyyBTNvijbO0BNO/79KDDRMpsMhvVAEVeuxu537RR5kFd5VAYwCdrXLoT9Cabwv
vWhDFlaJKjdhkf2mrk7AyxRllDdLkgbvBNDInIjbC3uBr7E9KsRlOni27tyAsdLT
mZw67mtaa7ONt9XOnMK+pUsvFrGeaDsGb659n/je7Mwpp5ijJUMv7/FfJuGITfhe
btfZFG4ZM2mnO4SJk8RTVROhUXhA+LjJou57ulJCg54U7QVSWllWp5f8nT8KKdjc
T5EOE7zelaTfi5m+rJsziO+1ga8bxiJTyPbH7pcUsMV8eFLI8M5ud2CEpukqdiDt
WAEXMJPpGovgc2PZapKUSU60rUqFxKMiMPwJ7Wgic6aIDFUhWMXhOp8q3crhkODZ
c6tsgLjoC2SToJyMGf+z0gzskSaHirOi4XCPLArlzW1oUevaPwV/izLmE1xr/l9A
4iLItLRkT9a6fUg+qGkM17uGcclzuD87nSVL2v9A6wIDAQABo4IBlTCCAZEwDwYD
VR0TAQH/BAUwAwEB/zCB4QYDVR0gBIHZMIHWMIHTBgkrBgEEAb5YAAMwgcUwgZMG
CCsGAQUFBwICMIGGGoGDQW55IHVzZSBvZiB0aGlzIENlcnRpZmljYXRlIGNvbnN0
aXR1dGVzIGFjY2VwdGFuY2Ugb2YgdGhlIFF1b1ZhZGlzIFJvb3QgQ0EgMyBDZXJ0
aWZpY2F0ZSBQb2xpY3kgLyBDZXJ0aWZpY2F0aW9uIFByYWN0aWNlIFN0YXRlbWVu
dC4wLQYIKwYBBQUHAgEWIWh0dHA6Ly93d3cucXVvdmFkaXNnbG9iYWwuY29tL2Nw
czALBgNVHQ8EBAMCAQYwHQYDVR0OBBYEFPLAE+CCQz777i9nMpY1XNu4ywLQMG4G
A1UdIwRnMGWAFPLAE+CCQz777i9nMpY1XNu4ywLQoUmkRzBFMQswCQYDVQQGEwJC
TTEZMBcGA1UEChMQUXVvVmFkaXMgTGltaXRlZDEbMBkGA1UEAxMSUXVvVmFkaXMg
Um9vdCBDQSAzggIFxjANBgkqhkiG9w0BAQUFAAOCAgEAT62gLEz6wPJv92ZVqyM0
7ucp2sNbtrCD2dDQ4iH782CnO11gUyeim/YIIirnv6By5ZwkajGxkHon24QRiSem
d1o417+shvzuXYO8BsbRd2sPbSQvS3pspweWyuOEn62Iix2rFo1bZhfZFvSLgNLd
+LJ2w/w4E6oM3kJpK27zPOuAJ9v1pkQNn1pVWQvVDVJIxa6f8i+AxeoyUDUSly7B
4f/xI4hROJ/yZlZ25w9Rl6VSDE1JUZU2Pb+iSwwQHYaZTKrzchGT5Or2m9qoXadN
t54CrnMAyNojA+j56hl0YgCUyyIgvpSnWbWCar6ZeXqp8kokUvd0/bpO5qgdAm6x
DYBEwa7TIzdfu4V8K5Iu6H6li92Z4b8nby1dqnuH/grdS/yO9SbkbnBCbjPsMZ57
k8HkyWkaPcBrTiJt7qtYTcbQQcEr6k8Sh17rRdhs9ZgC06DYVYoGmRmioHfRMJ6s
zHXug/WwYjnPbFfiTNKRCw51KBuav/0aQ/HKd/s7j2G4aSgWQgRecCocIdiP4b0j
Wy10QJLZYxkNc91pvGJHvOB0K7Lrfb5BG7XARsWhIstfTsEokt4YutUqKLsRixeT
mJlglFwjz1onl14LBQaTNx47aTbrqZ5hHY8y2o4M1nQ+ewkk2gF3R8Q7zTSMmfXK
4SVhM7JZG+Ju1zdXtg2pEto=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1478 (0x5c6)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 3
#        Validity
#            Not Before: Nov 24 19:11:23 2006 GMT
#            Not After : Nov 24 19:06:44 2031 GMT
#        Subject: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:cc:57:42:16:54:9c:e6:98:d3:d3:4d:ee:fe:ed:
#                    c7:9f:43:39:4a:65:b3:e8:16:88:34:db:0d:59:91:
#                    74:cf:92:b8:04:40:ad:02:4b:31:ab:bc:8d:91:68:
#                    d8:20:0e:1a:01:e2:1a:7b:4e:17:5d:e2:8a:b7:3f:
#                    99:1a:cd:eb:61:ab:c2:65:a6:1f:b7:b7:bd:b7:8f:
#                    fc:fd:70:8f:0b:a0:67:be:01:a2:59:cf:71:e6:0f:
#                    29:76:ff:b1:56:79:45:2b:1f:9e:7a:54:e8:a3:29:
#                    35:68:a4:01:4f:0f:a4:2e:37:ef:1b:bf:e3:8f:10:
#                    a8:72:ab:58:57:e7:54:86:c8:c9:f3:5b:da:2c:da:
#                    5d:8e:6e:3c:a3:3e:da:fb:82:e5:dd:f2:5c:b2:05:
#                    33:6f:8a:36:ce:d0:13:4e:ff:bf:4a:0c:34:4c:a6:
#                    c3:21:bd:50:04:55:eb:b1:bb:9d:fb:45:1e:64:15:
#                    de:55:01:8c:02:76:b5:cb:a1:3f:42:69:bc:2f:bd:
#                    68:43:16:56:89:2a:37:61:91:fd:a6:ae:4e:c0:cb:
#                    14:65:94:37:4b:92:06:ef:04:d0:c8:9c:88:db:0b:
#                    7b:81:af:b1:3d:2a:c4:65:3a:78:b6:ee:dc:80:b1:
#                    d2:d3:99:9c:3a:ee:6b:5a:6b:b3:8d:b7:d5:ce:9c:
#                    c2:be:a5:4b:2f:16:b1:9e:68:3b:06:6f:ae:7d:9f:
#                    f8:de:ec:cc:29:a7:98:a3:25:43:2f:ef:f1:5f:26:
#                    e1:88:4d:f8:5e:6e:d7:d9:14:6e:19:33:69:a7:3b:
#                    84:89:93:c4:53:55:13:a1:51:78:40:f8:b8:c9:a2:
#                    ee:7b:ba:52:42:83:9e:14:ed:05:52:5a:59:56:a7:
#                    97:fc:9d:3f:0a:29:d8:dc:4f:91:0e:13:bc:de:95:
#                    a4:df:8b:99:be:ac:9b:33:88:ef:b5:81:af:1b:c6:
#                    22:53:c8:f6:c7:ee:97:14:b0:c5:7c:78:52:c8:f0:
#                    ce:6e:77:60:84:a6:e9:2a:76:20:ed:58:01:17:30:
#                    93:e9:1a:8b:e0:73:63:d9:6a:92:94:49:4e:b4:ad:
#                    4a:85:c4:a3:22:30:fc:09:ed:68:22:73:a6:88:0c:
#                    55:21:58:c5:e1:3a:9f:2a:dd:ca:e1:90:e0:d9:73:
#                    ab:6c:80:b8:e8:0b:64:93:a0:9c:8c:19:ff:b3:d2:
#                    0c:ec:91:26:87:8a:b3:a2:e1:70:8f:2c:0a:e5:cd:
#                    6d:68:51:eb:da:3f:05:7f:8b:32:e6:13:5c:6b:fe:
#                    5f:40:e2:22:c8:b4:b4:64:4f:d6:ba:7d:48:3e:a8:
#                    69:0c:d7:bb:86:71:c9:73:b8:3f:3b:9d:25:4b:da:
#                    ff:40:eb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.8024.0.3
#                  User Notice:
#                    Explicit Text: Any use of this Certificate constitutes acceptance of the QuoVadis Root CA 3 Certificate Policy / Certification Practice Statement.
#                  CPS: http://www.quovadisglobal.com/cps
#
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F2:C0:13:E0:82:43:3E:FB:EE:2F:67:32:96:35:5C:DB:B8:CB:02:D0
#            X509v3 Authority Key Identifier: 
#                keyid:F2:C0:13:E0:82:43:3E:FB:EE:2F:67:32:96:35:5C:DB:B8:CB:02:D0
#                DirName:/C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 3
#                serial:05:C6
#
#    Signature Algorithm: sha1WithRSAEncryption
#         4f:ad:a0:2c:4c:fa:c0:f2:6f:f7:66:55:ab:23:34:ee:e7:29:
#         da:c3:5b:b6:b0:83:d9:d0:d0:e2:21:fb:f3:60:a7:3b:5d:60:
#         53:27:a2:9b:f6:08:22:2a:e7:bf:a0:72:e5:9c:24:6a:31:b1:
#         90:7a:27:db:84:11:89:27:a6:77:5a:38:d7:bf:ac:86:fc:ee:
#         5d:83:bc:06:c6:d1:77:6b:0f:6d:24:2f:4b:7a:6c:a7:07:96:
#         ca:e3:84:9f:ad:88:8b:1d:ab:16:8d:5b:66:17:d9:16:f4:8b:
#         80:d2:dd:f8:b2:76:c3:fc:38:13:aa:0c:de:42:69:2b:6e:f3:
#         3c:eb:80:27:db:f5:a6:44:0d:9f:5a:55:59:0b:d5:0d:52:48:
#         c5:ae:9f:f2:2f:80:c5:ea:32:50:35:12:97:2e:c1:e1:ff:f1:
#         23:88:51:38:9f:f2:66:56:76:e7:0f:51:97:a5:52:0c:4d:49:
#         51:95:36:3d:bf:a2:4b:0c:10:1d:86:99:4c:aa:f3:72:11:93:
#         e4:ea:f6:9b:da:a8:5d:a7:4d:b7:9e:02:ae:73:00:c8:da:23:
#         03:e8:f9:ea:19:74:62:00:94:cb:22:20:be:94:a7:59:b5:82:
#         6a:be:99:79:7a:a9:f2:4a:24:52:f7:74:fd:ba:4e:e6:a8:1d:
#         02:6e:b1:0d:80:44:c1:ae:d3:23:37:5f:bb:85:7c:2b:92:2e:
#         e8:7e:a5:8b:dd:99:e1:bf:27:6f:2d:5d:aa:7b:87:fe:0a:dd:
#         4b:fc:8e:f5:26:e4:6e:70:42:6e:33:ec:31:9e:7b:93:c1:e4:
#         c9:69:1a:3d:c0:6b:4e:22:6d:ee:ab:58:4d:c6:d0:41:c1:2b:
#         ea:4f:12:87:5e:eb:45:d8:6c:f5:98:02:d3:a0:d8:55:8a:06:
#         99:19:a2:a0:77:d1:30:9e:ac:cc:75:ee:83:f5:b0:62:39:cf:
#         6c:57:e2:4c:d2:91:0b:0e:75:28:1b:9a:bf:fd:1a:43:f1:ca:
#         77:fb:3b:8f:61:b8:69:28:16:42:04:5e:70:2a:1c:21:d8:8f:
#         e1:bd:23:5b:2d:74:40:92:d9:63:19:0d:73:dd:69:bc:62:47:
#         bc:e0:74:2b:b2:eb:7d:be:41:1b:b5:c0:46:c5:a1:22:cb:5f:
#         4e:c1:28:92:de:18:ba:d5:2a:28:bb:11:8b:17:93:98:99:60:
#         94:5c:23:cf:5a:27:97:5e:0b:05:06:93:37:1e:3b:69:36:eb:
#         a9:9e:61:1d:8f:32:da:8e:0c:d6:74:3e:7b:09:24:da:01:77:
#         47:c4:3b:cd:34:8c:99:f5:ca:e1:25:61:33:b2:59:1b:e2:6e:
#         d7:37:57:b6:0d:a9:12:da

[p11-kit-object-v1]
label: "QuoVadis Root CA 3 G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 3 G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFYDCCA0igAwIBAgIULvWbAiin23r/1aOp7r0DoM8Sah0wDQYJKoZIhvcNAQEL
BQAwSDELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxHjAc
BgNVBAMTFVF1b1ZhZGlzIFJvb3QgQ0EgMyBHMzAeFw0xMjAxMTIyMDI2MzJaFw00
MjAxMTIyMDI2MzJaMEgxCzAJBgNVBAYTAkJNMRkwFwYDVQQKExBRdW9WYWRpcyBM
aW1pdGVkMR4wHAYDVQQDExVRdW9WYWRpcyBSb290IENBIDMgRzMwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQCzyw4QZ47qFJenMioKVjZ/aEzHs286IxSR
/xl/pcqs7rN2nXrpixurazHb+gtTTK/FpRp5PIpM/6zfJd5O2YIyC0TeytuMrKNu
FoM7pmRLMon7FhY4futD4tN0SsJiCnMK3UmzV9KwCoWdcTzeo8vAMvMBOSBDGzXR
U7Ox7sWTaYI+FrUoRqHe6okJ7UO4BUaKhvVZR74bbwEhELn9qdIoyhA5CcoTNs+c
ra1AdHkrAj80//ogaX3T7mH1urPnMNA3I4ZyYUUpSFlob3emLoG+B01vr87ERROR
FHAGjx+f+IdpsQ7vw4kZ6+ocYfx6bIrc1gMLnia6Et3UVDmrJqMz6nWB2i3ND0/k
A9HvFZcba5DFApCTZgIhsUfei5pKgLlVj7WiL8DWM2fafsSntARE60f75li59wzw
eyuxwHApw0BiLTtIadwjPEjrewl5qW3aqDCYz4ByA4imW0aucnl8CAMhZa634Ryl
sSqiMd5mBPfAdOhx3v89WcyWJhKLhZVXGqtrdQtEPREoPHtht+KPZ0/l7DxMYIBp
VzgeAVuNVejH38DMdyM0SXV89pgR6y3e7UEuFAUCf+D+IOs15xGsIs5XPd7JMG0Q
A4XN8f+MFrXBsj6IbGB/kE+V9/YtrQE5BwT6dYB9v0lQ7e/JxHwc64B+27bQ3RP+
ydOc17KXqQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIB
BjAdBgNVHQ4EFgQUxhfQvKjqAkPyGwaZXSuQILnXnOQwDQYJKoZIhvcNAQELBQAD
ggIBADRh2Va1EodVTd2jNTFGu6QHcrxfYWLopfsLN7E8trP6KZ1/AvWkyaiTt3px
KGmPc+FSkNrVvjrlt3ZqVoAh313m6Tqe5T72omnHKgqwGEfcIHB9UqM+WXzBusnI
FUBhynLWcKzSt/Ac5IYp8M7vaGPQtSCKFWGafoaYtMnCdvvMujAWzKNhxnQT5Wvv
oxXqA/4Ti2Tk08HS6IT7SdEQTXlm66r99I0xHnAUrdzeZxNMgRVhvLfZkXdxGYFg
u/BYpbWcC/ePIlUnwEsBbTuZDdQdm2NnL9DuDcpmvJRPpq3t/O5jrFc/ZSXPsoaP
0Aj/uHYUbt7lJ+yreLVTubY/6CD50qi+YUbKh4yE8/nxoGibIh6BJpsQBJFxwAYf
3KDTuVan45gtf4Od34wrnDKOMpTwATwiKp9Dwi7DmDkHOHv8XgBCH/MyJnmDhPbl
8MFREsALHgQjDFSlTC9JxUrRtm5gDWv8a4uFJGS3iQ6rJUdbPM9+Sb3H6QrG2vd+
DhcI00iX0HGS8A85PjRqHH3Y8iKuu2n0M7SmSFXRDw4m6Oy2Cy2nhTXN/VnIn9HN
PlopNLk9hM6xZdRZkZFWdSHBd575euFgndOtBBj0fOtek49TSiIp+EgrPk2GrFt/
ywaZWWDYWGWVjUTR939+J399roD1B0y2PpxxVJkES/1Y+Zj0
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2e:f5:9b:02:28:a7:db:7a:ff:d5:a3:a9:ee:bd:03:a0:cf:12:6a:1d
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 3 G3
#        Validity
#            Not Before: Jan 12 20:26:32 2012 GMT
#            Not After : Jan 12 20:26:32 2042 GMT
#        Subject: C = BM, O = QuoVadis Limited, CN = QuoVadis Root CA 3 G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:cb:0e:10:67:8e:ea:14:97:a7:32:2a:0a:56:
#                    36:7f:68:4c:c7:b3:6f:3a:23:14:91:ff:19:7f:a5:
#                    ca:ac:ee:b3:76:9d:7a:e9:8b:1b:ab:6b:31:db:fa:
#                    0b:53:4c:af:c5:a5:1a:79:3c:8a:4c:ff:ac:df:25:
#                    de:4e:d9:82:32:0b:44:de:ca:db:8c:ac:a3:6e:16:
#                    83:3b:a6:64:4b:32:89:fb:16:16:38:7e:eb:43:e2:
#                    d3:74:4a:c2:62:0a:73:0a:dd:49:b3:57:d2:b0:0a:
#                    85:9d:71:3c:de:a3:cb:c0:32:f3:01:39:20:43:1b:
#                    35:d1:53:b3:b1:ee:c5:93:69:82:3e:16:b5:28:46:
#                    a1:de:ea:89:09:ed:43:b8:05:46:8a:86:f5:59:47:
#                    be:1b:6f:01:21:10:b9:fd:a9:d2:28:ca:10:39:09:
#                    ca:13:36:cf:9c:ad:ad:40:74:79:2b:02:3f:34:ff:
#                    fa:20:69:7d:d3:ee:61:f5:ba:b3:e7:30:d0:37:23:
#                    86:72:61:45:29:48:59:68:6f:77:a6:2e:81:be:07:
#                    4d:6f:af:ce:c4:45:13:91:14:70:06:8f:1f:9f:f8:
#                    87:69:b1:0e:ef:c3:89:19:eb:ea:1c:61:fc:7a:6c:
#                    8a:dc:d6:03:0b:9e:26:ba:12:dd:d4:54:39:ab:26:
#                    a3:33:ea:75:81:da:2d:cd:0f:4f:e4:03:d1:ef:15:
#                    97:1b:6b:90:c5:02:90:93:66:02:21:b1:47:de:8b:
#                    9a:4a:80:b9:55:8f:b5:a2:2f:c0:d6:33:67:da:7e:
#                    c4:a7:b4:04:44:eb:47:fb:e6:58:b9:f7:0c:f0:7b:
#                    2b:b1:c0:70:29:c3:40:62:2d:3b:48:69:dc:23:3c:
#                    48:eb:7b:09:79:a9:6d:da:a8:30:98:cf:80:72:03:
#                    88:a6:5b:46:ae:72:79:7c:08:03:21:65:ae:b7:e1:
#                    1c:a5:b1:2a:a2:31:de:66:04:f7:c0:74:e8:71:de:
#                    ff:3d:59:cc:96:26:12:8b:85:95:57:1a:ab:6b:75:
#                    0b:44:3d:11:28:3c:7b:61:b7:e2:8f:67:4f:e5:ec:
#                    3c:4c:60:80:69:57:38:1e:01:5b:8d:55:e8:c7:df:
#                    c0:cc:77:23:34:49:75:7c:f6:98:11:eb:2d:de:ed:
#                    41:2e:14:05:02:7f:e0:fe:20:eb:35:e7:11:ac:22:
#                    ce:57:3d:de:c9:30:6d:10:03:85:cd:f1:ff:8c:16:
#                    b5:c1:b2:3e:88:6c:60:7f:90:4f:95:f7:f6:2d:ad:
#                    01:39:07:04:fa:75:80:7d:bf:49:50:ed:ef:c9:c4:
#                    7c:1c:eb:80:7e:db:b6:d0:dd:13:fe:c9:d3:9c:d7:
#                    b2:97:a9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                C6:17:D0:BC:A8:EA:02:43:F2:1B:06:99:5D:2B:90:20:B9:D7:9C:E4
#    Signature Algorithm: sha256WithRSAEncryption
#         34:61:d9:56:b5:12:87:55:4d:dd:a3:35:31:46:bb:a4:07:72:
#         bc:5f:61:62:e8:a5:fb:0b:37:b1:3c:b6:b3:fa:29:9d:7f:02:
#         f5:a4:c9:a8:93:b7:7a:71:28:69:8f:73:e1:52:90:da:d5:be:
#         3a:e5:b7:76:6a:56:80:21:df:5d:e6:e9:3a:9e:e5:3e:f6:a2:
#         69:c7:2a:0a:b0:18:47:dc:20:70:7d:52:a3:3e:59:7c:c1:ba:
#         c9:c8:15:40:61:ca:72:d6:70:ac:d2:b7:f0:1c:e4:86:29:f0:
#         ce:ef:68:63:d0:b5:20:8a:15:61:9a:7e:86:98:b4:c9:c2:76:
#         fb:cc:ba:30:16:cc:a3:61:c6:74:13:e5:6b:ef:a3:15:ea:03:
#         fe:13:8b:64:e4:d3:c1:d2:e8:84:fb:49:d1:10:4d:79:66:eb:
#         aa:fd:f4:8d:31:1e:70:14:ad:dc:de:67:13:4c:81:15:61:bc:
#         b7:d9:91:77:71:19:81:60:bb:f0:58:a5:b5:9c:0b:f7:8f:22:
#         55:27:c0:4b:01:6d:3b:99:0d:d4:1d:9b:63:67:2f:d0:ee:0d:
#         ca:66:bc:94:4f:a6:ad:ed:fc:ee:63:ac:57:3f:65:25:cf:b2:
#         86:8f:d0:08:ff:b8:76:14:6e:de:e5:27:ec:ab:78:b5:53:b9:
#         b6:3f:e8:20:f9:d2:a8:be:61:46:ca:87:8c:84:f3:f9:f1:a0:
#         68:9b:22:1e:81:26:9b:10:04:91:71:c0:06:1f:dc:a0:d3:b9:
#         56:a7:e3:98:2d:7f:83:9d:df:8c:2b:9c:32:8e:32:94:f0:01:
#         3c:22:2a:9f:43:c2:2e:c3:98:39:07:38:7b:fc:5e:00:42:1f:
#         f3:32:26:79:83:84:f6:e5:f0:c1:51:12:c0:0b:1e:04:23:0c:
#         54:a5:4c:2f:49:c5:4a:d1:b6:6e:60:0d:6b:fc:6b:8b:85:24:
#         64:b7:89:0e:ab:25:47:5b:3c:cf:7e:49:bd:c7:e9:0a:c6:da:
#         f7:7e:0e:17:08:d3:48:97:d0:71:92:f0:0f:39:3e:34:6a:1c:
#         7d:d8:f2:22:ae:bb:69:f4:33:b4:a6:48:55:d1:0f:0e:26:e8:
#         ec:b6:0b:2d:a7:85:35:cd:fd:59:c8:9f:d1:cd:3e:5a:29:34:
#         b9:3d:84:ce:b1:65:d4:59:91:91:56:75:21:c1:77:9e:f9:7a:
#         e1:60:9d:d3:ad:04:18:f4:7c:eb:5e:93:8f:53:4a:22:29:f8:
#         48:2b:3e:4d:86:ac:5b:7f:cb:06:99:59:60:d8:58:65:95:8d:
#         44:d1:f7:7f:7e:27:7f:7d:ae:80:f5:07:4c:b6:3e:9c:71:54:
#         99:04:4b:fd:58:f9:98:f4

[p11-kit-object-v1]
label: "QuoVadis Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2G1lVO6V/z68mcLOhrf
EYBklbTRvM16z/Ypli4kVEAkOPcahdxYTMukJ0KX0J+DisPkBgNbAKVRHnAEdOLB
1Dqr1607BxgFjv2DrOpm2RgbaIr1VxqYuvXtdj182d6UajtLF8HVj71lODqV0D1V
Nk7feVcxKh7YWWVJWCCYfqtffp/p1k3sg3Spx2zY7ilKhSoGFPlU5tPaZQeLYzcS
19Dsw3sgQUSj7cugF+FxZc4dZjH3dgEZyH0DWLaVSR2mEiboxgx24ONmy+pdpibu
5cxfvWenAScOospUxbF6lR1xHkopigPcakXBpBlebzbNw6Kwt/5cOOJSvPhEQ+aQ
uwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 985026699 (0x3ab6508b)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BM, O = QuoVadis Limited, OU = Root Certification Authority, CN = QuoVadis Root Certification Authority
#        Validity
#            Not Before: Mar 19 18:33:33 2001 GMT
#            Not After : Mar 17 18:33:33 2021 GMT
#        Subject: C = BM, O = QuoVadis Limited, OU = Root Certification Authority, CN = QuoVadis Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:61:b5:95:53:ba:57:fc:fa:f2:67:0b:3a:1a:
#                    df:11:80:64:95:b4:d1:bc:cd:7a:cf:f6:29:96:2e:
#                    24:54:40:24:38:f7:1a:85:dc:58:4c:cb:a4:27:42:
#                    97:d0:9f:83:8a:c3:e4:06:03:5b:00:a5:51:1e:70:
#                    04:74:e2:c1:d4:3a:ab:d7:ad:3b:07:18:05:8e:fd:
#                    83:ac:ea:66:d9:18:1b:68:8a:f5:57:1a:98:ba:f5:
#                    ed:76:3d:7c:d9:de:94:6a:3b:4b:17:c1:d5:8f:bd:
#                    65:38:3a:95:d0:3d:55:36:4e:df:79:57:31:2a:1e:
#                    d8:59:65:49:58:20:98:7e:ab:5f:7e:9f:e9:d6:4d:
#                    ec:83:74:a9:c7:6c:d8:ee:29:4a:85:2a:06:14:f9:
#                    54:e6:d3:da:65:07:8b:63:37:12:d7:d0:ec:c3:7b:
#                    20:41:44:a3:ed:cb:a0:17:e1:71:65:ce:1d:66:31:
#                    f7:76:01:19:c8:7d:03:58:b6:95:49:1d:a6:12:26:
#                    e8:c6:0c:76:e0:e3:66:cb:ea:5d:a6:26:ee:e5:cc:
#                    5f:bd:67:a7:01:27:0e:a2:ca:54:c5:b1:7a:95:1d:
#                    71:1e:4a:29:8a:03:dc:6a:45:c1:a4:19:5e:6f:36:
#                    cd:c3:a2:b0:b7:fe:5c:38:e2:52:bc:f8:44:43:e6:
#                    90:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Authority Information Access: 
#                OCSP - URI:https://ocsp.quovadisoffshore.com
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.8024.0.1
#                  User Notice:
#                    Explicit Text: Reliance on the QuoVadis Root Certificate by any party assumes acceptance of the then applicable standard terms and conditions of use, certification practices, and the QuoVadis Certificate Policy.
#                  CPS: http://www.quovadis.bm
#
#            X509v3 Subject Key Identifier: 
#                8B:4B:6D:ED:D3:29:B9:06:19:EC:39:39:A9:F0:97:84:6A:CB:EF:DF
#            X509v3 Authority Key Identifier: 
#                keyid:8B:4B:6D:ED:D3:29:B9:06:19:EC:39:39:A9:F0:97:84:6A:CB:EF:DF
#                DirName:/C=BM/O=QuoVadis Limited/OU=Root Certification Authority/CN=QuoVadis Root Certification Authority
#                serial:3A:B6:50:8B
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         8a:d4:14:b5:fe:f4:9a:92:a7:19:d4:a4:7e:72:18:8f:d9:68:
#         7c:52:24:dd:67:6f:39:7a:c4:aa:5e:3d:e2:58:b0:4d:70:98:
#         84:61:e8:1b:e3:69:18:0e:ce:fb:47:50:a0:4e:ff:f0:24:1f:
#         bd:b2:ce:f5:27:fc:ec:2f:53:aa:73:7b:03:3d:74:6e:e6:16:
#         9e:eb:a5:2e:c4:bf:56:27:50:2b:62:ba:be:4b:1c:3c:55:5c:
#         41:1d:24:be:82:20:47:5d:d5:44:7e:7a:16:68:df:7d:4d:51:
#         70:78:57:1d:33:1e:fd:02:99:9c:0c:cd:0a:05:4f:c7:bb:8e:
#         a4:75:fa:4a:6d:b1:80:8e:09:56:b9:9c:1a:60:fe:5d:c1:d7:
#         7a:dc:11:78:d0:d6:5d:c1:b7:d5:ad:32:99:03:3a:8a:cc:54:
#         25:39:31:81:7b:13:22:51:ba:46:6c:a1:bb:9e:fa:04:6c:49:
#         26:74:8f:d2:73:eb:cc:30:a2:e6:ea:59:22:87:f8:97:f5:0e:
#         fd:ea:cc:92:a4:16:c4:52:18:ea:21:ce:b1:f1:e6:84:81:e5:
#         ba:a9:86:28:f2:43:5a:5d:12:9d:ac:1e:d9:a8:e5:0a:6a:a7:
#         7f:a0:87:29:cf:f2:89:4d:d4:ec:c5:e2:e6:7a:d0:36:23:8a:
#         4a:74:36:f9

[p11-kit-object-v1]
label: "RSA Security Inc"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt49VcdKA3XtpeafwGFAy
PGJn9gqVB93mG/Oe2dJBVGutn3y+Gc37RqtBaB4Y6lXIL5F4iSj7Jylg/9+PjDvJ
SZu1pJTOAeo+tWN7fyb9Gd3AIb2E0S1PRsNO3Ng3OTsor8udGuorryGlwSMiuLgb
WhOHV4PR8CDn6E8jQrAApX2J6elhc5SYcSa8LWrg903w8bYqODGBDSnhAMFRD0xS
+ARaqn1y07iHKrtjEAMqs6FPDVpeRrc9DvV07Jmf+T0kgYim3WBU6JU2PcYJk5qj
EoAAVZkZR73QpXzDuvsf9/UP+Ky5tfQ3mBMY3oVbtwyCO4dvlTlYMNpuAWgXIszA
CwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "RSA Security Inc"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:01:01:01:00:00:02:7c:00:00:00:0a:00:00:00:02
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O = RSA Security Inc, OU = RSA Security 2048 V3
#        Validity
#            Not Before: Feb 22 20:39:23 2001 GMT
#            Not After : Feb 22 20:39:23 2026 GMT
#        Subject: O = RSA Security Inc, OU = RSA Security 2048 V3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:8f:55:71:d2:80:dd:7b:69:79:a7:f0:18:50:
#                    32:3c:62:67:f6:0a:95:07:dd:e6:1b:f3:9e:d9:d2:
#                    41:54:6b:ad:9f:7c:be:19:cd:fb:46:ab:41:68:1e:
#                    18:ea:55:c8:2f:91:78:89:28:fb:27:29:60:ff:df:
#                    8f:8c:3b:c9:49:9b:b5:a4:94:ce:01:ea:3e:b5:63:
#                    7b:7f:26:fd:19:dd:c0:21:bd:84:d1:2d:4f:46:c3:
#                    4e:dc:d8:37:39:3b:28:af:cb:9d:1a:ea:2b:af:21:
#                    a5:c1:23:22:b8:b8:1b:5a:13:87:57:83:d1:f0:20:
#                    e7:e8:4f:23:42:b0:00:a5:7d:89:e9:e9:61:73:94:
#                    98:71:26:bc:2d:6a:e0:f7:4d:f0:f1:b6:2a:38:31:
#                    81:0d:29:e1:00:c1:51:0f:4c:52:f8:04:5a:aa:7d:
#                    72:d3:b8:87:2a:bb:63:10:03:2a:b3:a1:4f:0d:5a:
#                    5e:46:b7:3d:0e:f5:74:ec:99:9f:f9:3d:24:81:88:
#                    a6:dd:60:54:e8:95:36:3d:c6:09:93:9a:a3:12:80:
#                    00:55:99:19:47:bd:d0:a5:7c:c3:ba:fb:1f:f7:f5:
#                    0f:f8:ac:b9:b5:f4:37:98:13:18:de:85:5b:b7:0c:
#                    82:3b:87:6f:95:39:58:30:da:6e:01:68:17:22:cc:
#                    c0:0b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:07:C3:51:30:A4:AA:E9:45:AE:35:24:FA:FF:24:2C:33:D0:B1:9D:8C
#
#            X509v3 Subject Key Identifier: 
#                07:C3:51:30:A4:AA:E9:45:AE:35:24:FA:FF:24:2C:33:D0:B1:9D:8C
#    Signature Algorithm: sha1WithRSAEncryption
#         5f:3e:86:76:6e:b8:35:3c:4e:36:1c:1e:79:98:bf:fd:d5:12:
#         11:79:52:0e:ee:31:89:bc:dd:7f:f9:d1:c6:15:21:e8:8a:01:
#         54:0d:3a:fb:54:b9:d6:63:d4:b1:aa:96:4d:a2:42:4d:d4:53:
#         1f:8b:10:de:7f:65:be:60:13:27:71:88:a4:73:e3:84:63:d1:
#         a4:55:e1:50:93:e6:1b:0e:79:d0:67:bc:46:c8:bf:3f:17:0d:
#         95:e6:c6:90:69:de:e7:b4:2f:de:95:7d:d0:12:3f:3d:3e:7f:
#         4d:3f:14:68:f5:11:50:d5:c1:f4:90:a5:08:1d:31:60:ff:60:
#         8c:23:54:0a:af:fe:a1:6e:c5:d1:7a:2a:68:78:cf:1e:82:0a:
#         20:b4:1f:ad:e5:85:b2:6a:68:75:4e:ad:25:37:94:85:be:bd:
#         a1:d4:ea:b7:0c:4b:3c:9d:e8:12:00:f0:5f:ac:0d:e1:ac:70:
#         63:73:f7:7f:79:9f:32:25:42:74:05:80:28:bf:bd:c1:24:96:
#         58:15:b1:17:21:e9:89:4b:db:07:88:67:f4:15:ad:70:3e:2f:
#         4d:85:3b:c2:b7:db:fe:98:68:23:89:e1:74:0f:de:f4:c5:84:
#         63:29:1b:cc:cb:07:c9:00:a4:a9:d7:c2:22:4f:67:d7:77:ec:
#         20:05:61:de

[p11-kit-object-v1]
label: "Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBITANBgkqhkiG9w0BAQEFAAOCAQ4AMIIBCQKCAQBA1qFCFyxVQN+aesOR9OO9
kSv121xmL4lc/XjUCUw9p8ScLvrwWba9tNKNKAirrxNBroBC9OtcLV9+Q3o1ta8/
3MQ9NkWSsrh+Dbysx8Fk2N5tzrOkjlB+SPStjtmGGTUDincodS2CW0rspctxAvRE
MYNKeezOZf8coTNmr1syZf7mrYcnTP1PGAmYZH4/zjdW88LgxpmbAEs3mO8cYyqV
rq0DzzpcIg492fVwcXb7RM8rACEmcDrhquvNSfs7Yrh0Wlal8iySPrUAvIS/YONC
bo2j4GS2raVDmPdh38Xo4PDVpr2gaW9ybo6ND8v2+Ov2zFtzndUt8c4X294If9yN
AgMBAAE=
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3c:c2:81:4b:00:e7:52:4d:9b:aa:47:b7:e1:61:f5:0e
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = KR, O = Government of Korea, OU = GPKI, CN = Root CA
#        Validity
#            Not Before: Apr 21 09:07:23 2002 GMT
#            Not After : Apr 21 09:07:23 2012 GMT
#        Subject: C = KR, O = Government of Korea, OU = GPKI, CN = Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2047 bit)
#                Modulus:
#                    40:d6:a1:42:17:2c:55:40:df:9a:7a:c3:91:f4:e3:
#                    bd:91:2b:f5:db:5c:66:2f:89:5c:fd:78:d4:09:4c:
#                    3d:a7:c4:9c:2e:fa:f0:59:b6:bd:b4:d2:8d:28:08:
#                    ab:af:13:41:ae:80:42:f4:eb:5c:2d:5f:7e:43:7a:
#                    35:b5:af:3f:dc:c4:3d:36:45:92:b2:b8:7e:0d:bc:
#                    ac:c7:c1:64:d8:de:6d:ce:b3:a4:8e:50:7e:48:f4:
#                    ad:8e:d9:86:19:35:03:8a:77:28:75:2d:82:5b:4a:
#                    ec:a5:cb:71:02:f4:44:31:83:4a:79:ec:ce:65:ff:
#                    1c:a1:33:66:af:5b:32:65:fe:e6:ad:87:27:4c:fd:
#                    4f:18:09:98:64:7e:3f:ce:37:56:f3:c2:e0:c6:99:
#                    9b:00:4b:37:98:ef:1c:63:2a:95:ae:ad:03:cf:3a:
#                    5c:22:0e:3d:d9:f5:70:71:76:fb:44:cf:2b:00:21:
#                    26:70:3a:e1:aa:eb:cd:49:fb:3b:62:b8:74:5a:56:
#                    a5:f2:2c:92:3e:b5:00:bc:84:bf:60:e3:42:6e:8d:
#                    a3:e0:64:b6:ad:a5:43:98:f7:61:df:c5:e8:e0:f0:
#                    d5:a6:bd:a0:69:6f:72:6e:8e:8d:0f:cb:f6:f8:eb:
#                    f6:cc:5b:73:9d:d5:2d:f1:ce:17:db:de:08:7f:dc:
#                    8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:02:13:EE:AE:1C:20:38:2C:A9:F0:6F:EA:5F:9F:07:3A:93:EF:47:74
#
#            X509v3 Subject Key Identifier: 
#                02:13:EE:AE:1C:20:38:2C:A9:F0:6F:EA:5F:9F:07:3A:93:EF:47:74
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         01:a8:a9:c8:26:7c:ac:3e:b4:f7:b6:92:c1:7e:f3:a8:90:6d:
#         7d:17:cc:68:0c:44:c2:e5:0c:52:f8:b1:02:4f:ca:39:3b:57:
#         58:e6:df:bf:64:0a:8d:46:b4:d4:d9:b2:e7:83:07:ad:4b:fd:
#         11:bf:ef:e7:99:c0:89:dd:b8:c4:a7:e8:2d:84:92:cd:1f:d7:
#         18:c7:7b:86:4f:eb:b9:5e:5e:c9:d5:b0:e0:f4:fa:f6:a4:c1:
#         90:e6:6d:dc:f6:0e:4b:e1:ef:dd:35:39:fe:f1:c6:6c:90:41:
#         a4:61:89:23:e6:a4:3f:63:67:ba:f1:9e:77:e3:0e:ed:2a:7b:
#         e3:7a:25:73:48:37:7f:79:e5:2a:53:06:d9:8c:b2:08:6f:34:
#         04:5b:89:76:07:ab:2c:a3:28:01:ff:13:52:74:a0:13:53:91:
#         66:38:c2:89:a5:19:48:4a:30:b8:c4:be:64:dc:ec:9f:30:59:
#         9a:66:c5:96:1f:7d:13:30:ea:7d:0a:df:d6:bd:82:30:28:e8:
#         4d:8d:da:70:ca:80:9b:1c:68:15:7c:43:b3:8a:f5:2f:69:04:
#         86:17:0f:30:a2:8f:d1:36:d7:8d:19:4a:6a:6b:38:17:64:2b:
#         bb:09:d2:ab:d6:11:ae:f6:a7:b9:2b:90:67:8a:2a:04:da:36:
#         93:1b:7c:3e

[p11-kit-object-v1]
label: "Root CA Generalitat Valenciana"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxiqrVxE3LyKKygN0Hcrt
LaILvDNSQCZHvlpppjtyNhdM6N+4uy924UBGdGUCkFIItP+ojMHgx4lWEDkz72i0
X1/abSOhiV4io0oG8CfwV7n46U4ydwo/QWTz62Xudv5Uqn0dIK7z13TCCl/1CChS
CMxVXdIP25qBpbuhs8GUzVTgMnUxkRpist514s9PidmRkA9BG7RaSne9Z4Pgk+de
pwzngdP0UqxTsgPHRCb7eeXLNGBQEHsb22vXR6tffGjKbp1BAxDua5l7XiWowqvk
wPNcnOO+zjFMZB5egKL1g34M1sqMVY6+4L5JBw+jJEF6WB2E6lgSyOG37e+T3pQI
MQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Root CA Generalitat Valenciana"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGizCCBXOgAwIBAgIEO0XlaDANBgkqhkiG9w0BAQUFADBoMQswCQYDVQQGEwJF
UzEfMB0GA1UEChMWR2VuZXJhbGl0YXQgVmFsZW5jaWFuYTEPMA0GA1UECxMGUEtJ
R1ZBMScwJQYDVQQDEx5Sb290IENBIEdlbmVyYWxpdGF0IFZhbGVuY2lhbmEwHhcN
MDEwNzA2MTYyMjQ3WhcNMjEwNzAxMTUyMjQ3WjBoMQswCQYDVQQGEwJFUzEfMB0G
A1UEChMWR2VuZXJhbGl0YXQgVmFsZW5jaWFuYTEPMA0GA1UECxMGUEtJR1ZBMScw
JQYDVQQDEx5Sb290IENBIEdlbmVyYWxpdGF0IFZhbGVuY2lhbmEwggEiMA0GCSqG
SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDGKqtXETcvIorKA3Qdyu0togu8M1JAJke+
WmmmO3I2F0zo37i7L3bhQEZ0ZQKQUgi0/6iMweDHiVYQOTPvaLRfX9ptI6GJXiKj
SgbwJ/BXufjpTjJ3Cj9BZPPrZe52/lSqfR0grvPXdMIKX/UIKFIIzFVd0g/bmoGl
u6GzwZTNVOAydTGRGmKy3nXiz0+J2ZGQD0EbtFpKd71ng+CT516nDOeB0/RSrFOy
A8dEJvt55cs0YFAQexvba9dHq198aMpunUEDEO5rmXteJajCq+TA81yc477OMUxk
Hl6AovWDfgzWyoxVjr7gvkkHD6MkQXpYHYTqWBLI4bft75PelAgxAgMBAAGjggM7
MIIDNzAyBggrBgEFBQcBAQQmMCQwIgYIKwYBBQUHMAGGFmh0dHA6Ly9vY3NwLnBr
aS5ndmEuZXMwEgYDVR0TAQH/BAgwBgEB/wIBAjCCAjQGA1UdIASCAiswggInMIIC
IwYKKwYBBAG/VQIBADCCAhMwggHoBggrBgEFBQcCAjCCAdoeggHWAEEAdQB0AG8A
cgBpAGQAYQBkACAAZABlACAAQwBlAHIAdABpAGYAaQBjAGEAYwBpAPMAbgAgAFIA
YQDtAHoAIABkAGUAIABsAGEAIABHAGUAbgBlAHIAYQBsAGkAdABhAHQAIABWAGEA
bABlAG4AYwBpAGEAbgBhAC4ADQAKAEwAYQAgAEQAZQBjAGwAYQByAGEAYwBpAPMA
bgAgAGQAZQAgAFAAcgDhAGMAdABpAGMAYQBzACAAZABlACAAQwBlAHIAdABpAGYA
aQBjAGEAYwBpAPMAbgAgAHEAdQBlACAAcgBpAGcAZQAgAGUAbAAgAGYAdQBuAGMA
aQBvAG4AYQBtAGkAZQBuAHQAbwAgAGQAZQAgAGwAYQAgAHAAcgBlAHMAZQBuAHQA
ZQAgAEEAdQB0AG8AcgBpAGQAYQBkACAAZABlACAAQwBlAHIAdABpAGYAaQBjAGEA
YwBpAPMAbgAgAHMAZQAgAGUAbgBjAHUAZQBuAHQAcgBhACAAZQBuACAAbABhACAA
ZABpAHIAZQBjAGMAaQDzAG4AIAB3AGUAYgAgAGgAdAB0AHAAOgAvAC8AdwB3AHcA
LgBwAGsAaQAuAGcAdgBhAC4AZQBzAC8AYwBwAHMwJQYIKwYBBQUHAgEWGWh0dHA6
Ly93d3cucGtpLmd2YS5lcy9jcHMwHQYDVR0OBBYEFHs100DSHHgZZu90ECjcPk+y
eAT8MIGVBgNVHSMEgY0wgYqAFHs100DSHHgZZu90ECjcPk+yeAT8oWykajBoMQsw
CQYDVQQGEwJFUzEfMB0GA1UEChMWR2VuZXJhbGl0YXQgVmFsZW5jaWFuYTEPMA0G
A1UECxMGUEtJR1ZBMScwJQYDVQQDEx5Sb290IENBIEdlbmVyYWxpdGF0IFZhbGVu
Y2lhbmGCBDtF5WgwDQYJKoZIhvcNAQEFBQADggEBACRhTvW1yEICKrNcda3Fbcrn
lD+laJWIwVTAEGmiEi8YPyVQqHxK6sYJ2fR1xkDar1CdPaUWu20xxsdzCkj+IHLt
b8zog2EWRpABlUt9jppSCS/2bxzkoXHPjCpaF3ODR00PNvsETUlR4hTJZGH71BTg
9J63NI8KJr2XXPR5OkowGcytT6CYirQxlyric21+eLj4iIlPsSKRZEv1UN4D2+XF
ducTZnV+ZfsBn5OHiJ35Rld8TWCvmHMTI6QgkYH60GFmuH3Rr9ZvHmw96RH9qfmC
IoaZM3Fa6hlXPZHNqcCjbgcTpsnt+GijnsNacgmHKNHEc8RzGF9QdRYxn7fofMM=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 994436456 (0x3b45e568)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, O = Generalitat Valenciana, OU = PKIGVA, CN = Root CA Generalitat Valenciana
#        Validity
#            Not Before: Jul  6 16:22:47 2001 GMT
#            Not After : Jul  1 15:22:47 2021 GMT
#        Subject: C = ES, O = Generalitat Valenciana, OU = PKIGVA, CN = Root CA Generalitat Valenciana
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c6:2a:ab:57:11:37:2f:22:8a:ca:03:74:1d:ca:
#                    ed:2d:a2:0b:bc:33:52:40:26:47:be:5a:69:a6:3b:
#                    72:36:17:4c:e8:df:b8:bb:2f:76:e1:40:46:74:65:
#                    02:90:52:08:b4:ff:a8:8c:c1:e0:c7:89:56:10:39:
#                    33:ef:68:b4:5f:5f:da:6d:23:a1:89:5e:22:a3:4a:
#                    06:f0:27:f0:57:b9:f8:e9:4e:32:77:0a:3f:41:64:
#                    f3:eb:65:ee:76:fe:54:aa:7d:1d:20:ae:f3:d7:74:
#                    c2:0a:5f:f5:08:28:52:08:cc:55:5d:d2:0f:db:9a:
#                    81:a5:bb:a1:b3:c1:94:cd:54:e0:32:75:31:91:1a:
#                    62:b2:de:75:e2:cf:4f:89:d9:91:90:0f:41:1b:b4:
#                    5a:4a:77:bd:67:83:e0:93:e7:5e:a7:0c:e7:81:d3:
#                    f4:52:ac:53:b2:03:c7:44:26:fb:79:e5:cb:34:60:
#                    50:10:7b:1b:db:6b:d7:47:ab:5f:7c:68:ca:6e:9d:
#                    41:03:10:ee:6b:99:7b:5e:25:a8:c2:ab:e4:c0:f3:
#                    5c:9c:e3:be:ce:31:4c:64:1e:5e:80:a2:f5:83:7e:
#                    0c:d6:ca:8c:55:8e:be:e0:be:49:07:0f:a3:24:41:
#                    7a:58:1d:84:ea:58:12:c8:e1:b7:ed:ef:93:de:94:
#                    08:31
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Authority Information Access: 
#                OCSP - URI:http://ocsp.pki.gva.es
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:2
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.8149.2.1.0
#                  User Notice:
#                    Explicit Text: 
#                  CPS: http://www.pki.gva.es/cps
#
#            X509v3 Subject Key Identifier: 
#                7B:35:D3:40:D2:1C:78:19:66:EF:74:10:28:DC:3E:4F:B2:78:04:FC
#            X509v3 Authority Key Identifier: 
#                keyid:7B:35:D3:40:D2:1C:78:19:66:EF:74:10:28:DC:3E:4F:B2:78:04:FC
#                DirName:/C=ES/O=Generalitat Valenciana/OU=PKIGVA/CN=Root CA Generalitat Valenciana
#                serial:3B:45:E5:68
#
#    Signature Algorithm: sha1WithRSAEncryption
#         24:61:4e:f5:b5:c8:42:02:2a:b3:5c:75:ad:c5:6d:ca:e7:94:
#         3f:a5:68:95:88:c1:54:c0:10:69:a2:12:2f:18:3f:25:50:a8:
#         7c:4a:ea:c6:09:d9:f4:75:c6:40:da:af:50:9d:3d:a5:16:bb:
#         6d:31:c6:c7:73:0a:48:fe:20:72:ed:6f:cc:e8:83:61:16:46:
#         90:01:95:4b:7d:8e:9a:52:09:2f:f6:6f:1c:e4:a1:71:cf:8c:
#         2a:5a:17:73:83:47:4d:0f:36:fb:04:4d:49:51:e2:14:c9:64:
#         61:fb:d4:14:e0:f4:9e:b7:34:8f:0a:26:bd:97:5c:f4:79:3a:
#         4a:30:19:cc:ad:4f:a0:98:8a:b4:31:97:2a:e2:73:6d:7e:78:
#         b8:f8:88:89:4f:b1:22:91:64:4b:f5:50:de:03:db:e5:c5:76:
#         e7:13:66:75:7e:65:fb:01:9f:93:87:88:9d:f9:46:57:7c:4d:
#         60:af:98:73:13:23:a4:20:91:81:fa:d0:61:66:b8:7d:d1:af:
#         d6:6f:1e:6c:3d:e9:11:fd:a9:f9:82:22:86:99:33:71:5a:ea:
#         19:57:3d:91:cd:a9:c0:a3:6e:07:13:a6:c9:ed:f8:68:a3:9e:
#         c3:5a:72:09:87:28:d1:c4:73:c4:73:18:5f:50:75:16:31:9f:
#         b7:e8:7c:c3

[p11-kit-object-v1]
label: "S-TRUST Authentication and Encryption Root CA 2005:PN"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2bVKwdMz6tNGs9HiTNL1
toPQb9UY6ZOvJ44TzbUlNlA0EmQpoVXhOmCTnijJ4/Ob4QSwI7+Vio5bG0F/WsPo
TUzVJBY+h0jUJ67m91MduwwA7z5hca2/OnpYH5Q9XIHV1W/fuJvS9eXLg3KSwlOy
ggLrra1fFi2SU3bxibYs9cEv4KdKb6AwajLrmnQDaHgTncovmwsdvs91DSaXm8f1
XgqfeN+zvOyauu9VjxuapgdjKRdZYgkqeQd3peDRF2npW932kKvimAoA0SVtnteF
hy+S8dF2g08LOlk3KC8zpxdQ1iALCvQm+Z845y2kuJuJja2tyWp9iRe79n+Ag3rm
7QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "S-TRUST Authentication and Encryption Root CA 2005:PN"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            37:19:18:e6:53:54:7c:1a:b5:b8:cb:59:5a:db:35:b7
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, ST = Baden-Wuerttemberg (BW), L = Stuttgart, O = Deutscher Sparkassen Verlag GmbH, CN = S-TRUST Authentication and Encryption Root CA 2005:PN
#        Validity
#            Not Before: Jun 22 00:00:00 2005 GMT
#            Not After : Jun 21 23:59:59 2030 GMT
#        Subject: C = DE, ST = Baden-Wuerttemberg (BW), L = Stuttgart, O = Deutscher Sparkassen Verlag GmbH, CN = S-TRUST Authentication and Encryption Root CA 2005:PN
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d9:b5:4a:c1:d3:33:ea:d3:46:b3:d1:e2:4c:d2:
#                    f5:b6:83:d0:6f:d5:18:e9:93:af:27:8e:13:cd:b5:
#                    25:36:50:34:12:64:29:a1:55:e1:3a:60:93:9e:28:
#                    c9:e3:f3:9b:e1:04:b0:23:bf:95:8a:8e:5b:1b:41:
#                    7f:5a:c3:e8:4d:4c:d5:24:16:3e:87:48:d4:27:ae:
#                    e6:f7:53:1d:bb:0c:00:ef:3e:61:71:ad:bf:3a:7a:
#                    58:1f:94:3d:5c:81:d5:d5:6f:df:b8:9b:d2:f5:e5:
#                    cb:83:72:92:c2:53:b2:82:02:eb:ad:ad:5f:16:2d:
#                    92:53:76:f1:89:b6:2c:f5:c1:2f:e0:a7:4a:6f:a0:
#                    30:6a:32:eb:9a:74:03:68:78:13:9d:ca:2f:9b:0b:
#                    1d:be:cf:75:0d:26:97:9b:c7:f5:5e:0a:9f:78:df:
#                    b3:bc:ec:9a:ba:ef:55:8f:1b:9a:a6:07:63:29:17:
#                    59:62:09:2a:79:07:77:a5:e0:d1:17:69:e9:5b:dd:
#                    f6:90:ab:e2:98:0a:00:d1:25:6d:9e:d7:85:87:2f:
#                    92:f1:d1:76:83:4f:0b:3a:59:37:28:2f:33:a7:17:
#                    50:d6:20:0b:0a:f4:26:f9:9f:38:e7:2d:a4:b8:9b:
#                    89:8d:ad:ad:c9:6a:7d:89:17:bb:f6:7f:80:83:7a:
#                    e6:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:0
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DirName:/CN=STRonline1-2048-5
#            X509v3 Subject Key Identifier: 
#                0F:CA:1E:5C:79:E0:A2:F3:29:B6:D2:85:B3:0B:4A:B5:65:EC:6B:52
#            X509v3 Authority Key Identifier: 
#                keyid:0F:CA:1E:5C:79:E0:A2:F3:29:B6:D2:85:B3:0B:4A:B5:65:EC:6B:52
#
#    Signature Algorithm: sha1WithRSAEncryption
#         af:01:f0:ed:19:3c:28:e8:4d:5c:bb:a5:63:1c:88:33:03:a7:
#         00:87:a4:1f:20:ab:d6:1c:e3:06:1f:97:7e:54:bd:b7:d1:b2:
#         c9:d5:da:80:ec:17:d7:8a:f5:7b:c2:00:f6:e9:11:6f:84:a0:
#         5a:25:31:e2:89:f9:a4:00:3f:31:68:2e:d5:3d:e8:6e:e6:d5:
#         1d:3c:3f:b2:bd:9f:77:eb:9d:d3:8c:ba:c0:d7:b6:4d:ec:53:
#         9c:0f:04:6e:ea:35:67:57:e3:0a:65:7b:90:3a:e1:4f:3e:c3:
#         00:92:7a:bb:05:89:73:8c:cb:a6:4d:c0:fb:f6:02:d6:b0:07:
#         a3:03:c2:27:40:9f:0c:e4:85:82:2d:af:9a:42:1d:d0:c7:8d:
#         f8:40:ee:9d:06:57:1c:d9:a2:d8:80:14:fe:e1:63:2d:32:87:
#         d5:94:52:96:3a:46:c6:71:96:3d:f7:98:0e:b2:91:aa:8f:da:
#         f4:4e:24:00:39:55:e8:ad:17:b9:d3:34:2b:4a:a9:40:cc:17:
#         2a:55:65:41:74:42:7e:f5:c0:af:c8:93:ad:f2:18:5b:3d:89:
#         0c:db:47:39:24:f8:e0:4c:f2:1f:b0:3d:0a:ca:05:4e:89:21:
#         1a:e3:2a:99:ac:fc:7f:a1:f1:0f:1b:1f:3d:9e:04:83:dd:96:
#         d9:1d:3a:94

[p11-kit-object-v1]
label: "SAPO Class 2 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt3xpfGD1bCb0qhwXf13U
EUvn89rnc6f6pEJJaD/apUBcBmhfTsy9voE4JC3MJqBEbQPLI+C73oVTS5RfX3uq
yBqX/tcjk+2war3Y/AA+s5IE4Eu+TzuYp53tzWPwgedsmNRsYFUA5bk85jSVXeD9
cYfp/4Hu5XdvGP/zyXylld2C3BTZouG+zSdzu0VbP3SxYnhmECIs9WjzF4gWO5ob
HfsUrg268pBVotUw1iuVMsc5bntl0nc4zm5WpdkjqziyO1GFwB0btxEvBWlH2ALK
kqjhM96FCJvtkNXYIZlxv7b1c+9nCJhk0vIqekshFuEfWGHekUcfIZ8f/owjhoMY
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SAPO Class 2 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ZA, ST = Western Cape, L = Somerset West, O = South African Post Office Limited, OU = SAPO Trust Centre, CN = SAPO Class 2 Root CA, emailAddress = pkiadmin@trustcentre.co.za
#        Validity
#            Not Before: Sep 15 00:00:00 2010 GMT
#            Not After : Sep 14 00:00:00 2030 GMT
#        Subject: C = ZA, ST = Western Cape, L = Somerset West, O = South African Post Office Limited, OU = SAPO Trust Centre, CN = SAPO Class 2 Root CA, emailAddress = pkiadmin@trustcentre.co.za
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:7c:69:7c:60:f5:6c:26:f4:aa:1c:17:7f:5d:
#                    d4:11:4b:e7:f3:da:e7:73:a7:fa:a4:42:49:68:3f:
#                    da:a5:40:5c:06:68:5f:4e:cc:bd:be:81:38:24:2d:
#                    cc:26:a0:44:6d:03:cb:23:e0:bb:de:85:53:4b:94:
#                    5f:5f:7b:aa:c8:1a:97:fe:d7:23:93:ed:b0:6a:bd:
#                    d8:fc:00:3e:b3:92:04:e0:4b:be:4f:3b:98:a7:9d:
#                    ed:cd:63:f0:81:e7:6c:98:d4:6c:60:55:00:e5:b9:
#                    3c:e6:34:95:5d:e0:fd:71:87:e9:ff:81:ee:e5:77:
#                    6f:18:ff:f3:c9:7c:a5:95:dd:82:dc:14:d9:a2:e1:
#                    be:cd:27:73:bb:45:5b:3f:74:b1:62:78:66:10:22:
#                    2c:f5:68:f3:17:88:16:3b:9a:1b:1d:fb:14:ae:0d:
#                    ba:f2:90:55:a2:d5:30:d6:2b:95:32:c7:39:6e:7b:
#                    65:d2:77:38:ce:6e:56:a5:d9:23:ab:38:b2:3b:51:
#                    85:c0:1d:1b:b7:11:2f:05:69:47:d8:02:ca:92:a8:
#                    e1:33:de:85:08:9b:ed:90:d5:d8:21:99:71:bf:b6:
#                    f5:73:ef:67:08:98:64:d2:f2:2a:7a:4b:21:16:e1:
#                    1f:58:61:de:91:47:1f:21:9f:1f:fe:8c:23:86:83:
#                    18:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AB:9D:23:93:FD:1F:33:4A:32:2D:AA:24:5A:F2:2D:64:A9:01:9A:41
#    Signature Algorithm: sha1WithRSAEncryption
#         56:52:51:b9:0f:02:e1:f6:2e:9c:b1:31:5a:a6:f8:ce:bc:ee:
#         02:84:15:09:f1:28:52:5f:e7:e1:2c:bd:db:79:0a:7a:bf:eb:
#         62:9e:d5:86:47:29:ee:74:30:ec:4c:75:b5:1e:e3:aa:33:ef:
#         ad:e1:6a:4c:bf:37:01:be:55:83:4c:a9:52:d8:37:98:50:6f:
#         68:dd:47:41:b7:2c:30:c8:6e:4c:07:2c:c6:d3:49:b9:b5:5c:
#         d2:cb:cc:d4:36:c6:07:0d:18:4f:3f:63:00:c4:ec:b6:88:fb:
#         01:64:63:ad:d1:f7:77:7c:64:54:2b:12:3d:34:15:85:f0:a0:
#         ba:79:29:5f:98:9b:42:ea:ae:c1:a8:9f:13:89:8a:6d:e9:b8:
#         38:c9:61:ed:60:ec:f7:2a:58:05:9b:a1:60:78:83:17:e1:7e:
#         5f:e8:fd:78:e0:6b:56:2a:86:76:ae:5b:c2:5e:eb:45:e4:30:
#         b8:31:ed:64:b1:5d:2e:c0:3d:80:0d:c7:27:13:d3:76:e2:86:
#         fb:dc:db:80:0a:81:e1:fd:08:f9:0b:c4:31:b4:63:5b:e7:8c:
#         33:e5:06:b6:52:6a:b3:d7:e9:6b:e3:32:78:32:66:94:4e:dd:
#         8d:77:6d:d3:24:28:5b:54:61:77:02:67:75:94:4b:57:4b:e6:
#         6c:c5:39:6f

[p11-kit-object-v1]
label: "SAPO Class 3 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SAPO Class 3 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGWDCCBECgAwIBAgIBAjANBgkqhkiG9w0BAQUFADCBzjELMAkGA1UEBhMCWkEx
FTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTEWMBQGA1UEBxMNU29tZXJzZXQgV2VzdDEq
MCgGA1UEChMhU291dGggQWZyaWNhbiBQb3N0IE9mZmljZSBMaW1pdGVkMRowGAYD
VQQLExFTQVBPIFRydXN0IENlbnRyZTEdMBsGA1UEAxMUU0FQTyBDbGFzcyAzIFJv
b3QgQ0ExKTAnBgkqhkiG9w0BCQEWGnBraWFkbWluQHRydXN0Y2VudHJlLmNvLnph
MB4XDTEwMDkxNTAwMDAwMFoXDTMwMDkxNDAwMDAwMFowgc4xCzAJBgNVBAYTAlpB
MRUwEwYDVQQIEwxXZXN0ZXJuIENhcGUxFjAUBgNVBAcTDVNvbWVyc2V0IFdlc3Qx
KjAoBgNVBAoTIVNvdXRoIEFmcmljYW4gUG9zdCBPZmZpY2UgTGltaXRlZDEaMBgG
A1UECxMRU0FQTyBUcnVzdCBDZW50cmUxHTAbBgNVBAMTFFNBUE8gQ2xhc3MgMyBS
b290IENBMSkwJwYJKoZIhvcNAQkBFhpwa2lhZG1pbkB0cnVzdGNlbnRyZS5jby56
YTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAMp4Gge89vu0t4m80BlW
OCpZnQfqGvn4+GhnXo/vyvf1aonmo5V/qdspJBw10DiWbD5WJP9eYlGQLofonMfa
vDPxnqFvC44KJPT4TZCmss1eEdPCl0z1X0AdJiRNjQkQC/+7IBuTJhkMQz/pjrwx
NxBukcpIglZGx7y5Op5GgWbP2ehcEM85nmXDnsVa9EvMRJlmhvRyG6NTSequR80y
DXDmoKB2B53/WO/kPJHAteTcuAEM0/6zQqA7YQLUN1vXTEWV0nVd9W4wX1dRi7L/
fsiLnKqjQTcMEJGopoVcucePBVGy0HjS4ktJ6dQapzusqjPmmioDQJhvdFITMZTR
EsG0yzD5/0S4kltS1jDZM9F14xmlFhW3VFfxVlDOTr4DOy/stjDuFGBeX3o19E5k
BxHqpQdmG26T4rBPXtbgROCz3K7vuP2os+zs5TmIRLShuxRgZI/WkpPL88xQ3ekH
yGdn+fCHhJGyAGLpv0oVdMW/BEwFRl0Ky+XqYQDhb0GxNI6mAKJ8pqWm+mxMQ+Wo
Jpo0mB6HmOdMeNGPnwVVXYpLyc+gC30GkJwYkrLEstfjRdlrc8OXOb8pHgYJVUC6
vNpIdUPt/kR+PSzmYpED/T2J7370XSSPpQsrsz56KSi8uz+/63eFBCaLlLKQ9euN
T6JEIlConCpESAB4GaudCJYVAgMBAAGjPzA9MA4GA1UdDwEB/wQEAwIBBjAMBgNV
HRMEBTADAQH/MB0GA1UdDgQWBBRhs3lSnUqVklGOgiRw045AyMVm0DANBgkqhkiG
9w0BAQUFAAOCAgEAf8azJIRQN/nEsMUwPBbpUA16urQ70iPl6Yl4auXjGwUekRzO
BpeNZhYHRO+BuQh+o8c5NLi/mm2NsMEgQi4N9wsGA09uy7y3sC8ZcY2OrwpNWDGL
RJkqKGaFx4AmZrBHwjmy+k8+Vb3ciSdLczME/ntHkMkFwC0z+LcIgilBQ/0mU+b6
HzdWjU8Xutj9OoRw2D7wM67EBUhUobnVIT/qPsepMUf3m65KYpjRZyBl3nnhsTIe
a9/7gGtHXDnHDgiqx6PuKek04pv5dbgm64idtDkRLnD9UQQyuw95hFAhRXwv5Nn/
JTgGI6tOsQ7cOzEKrdpLAGlrLuLDDMkFAUVm4aWJYRxkmY0LmJCzfmY7C9ir6HUO
2X+abn3JgyfJvOg0OMJahzJyBwz+1ZTR8MB48oCoRvVrmuzi2RaOivqE9tFSyZyy
IVZgQ6YQ939Jv74H01BkbQK6KlUsz9nCbq98C0jQ8eGnwq10j4bk7ar6XIN9Quh9
Bx0HVcwraTK5d4JoxnfyImmmyQpdh5nlcZ59LxMe0vT9CXknWCsKh4Eq+2ojLUsk
hXQWRxgPCcX+qUgk46zQaT1fU5gyvezgUcFTSrH2O/A0SPWa3tzR4OO9JbNE6Dpz
yXnQrNHt4gAKX6EdZllKc2jUBXIzOKdrr5HbDceMQOiekIjJ+/4k14Gs894=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ZA, ST = Western Cape, L = Somerset West, O = South African Post Office Limited, OU = SAPO Trust Centre, CN = SAPO Class 3 Root CA, emailAddress = pkiadmin@trustcentre.co.za
#        Validity
#            Not Before: Sep 15 00:00:00 2010 GMT
#            Not After : Sep 14 00:00:00 2030 GMT
#        Subject: C = ZA, ST = Western Cape, L = Somerset West, O = South African Post Office Limited, OU = SAPO Trust Centre, CN = SAPO Class 3 Root CA, emailAddress = pkiadmin@trustcentre.co.za
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:78:1a:07:bc:f6:fb:b4:b7:89:bc:d0:19:56:
#                    38:2a:59:9d:07:ea:1a:f9:f8:f8:68:67:5e:8f:ef:
#                    ca:f7:f5:6a:89:e6:a3:95:7f:a9:db:29:24:1c:35:
#                    d0:38:96:6c:3e:56:24:ff:5e:62:51:90:2e:87:e8:
#                    9c:c7:da:bc:33:f1:9e:a1:6f:0b:8e:0a:24:f4:f8:
#                    4d:90:a6:b2:cd:5e:11:d3:c2:97:4c:f5:5f:40:1d:
#                    26:24:4d:8d:09:10:0b:ff:bb:20:1b:93:26:19:0c:
#                    43:3f:e9:8e:bc:31:37:10:6e:91:ca:48:82:56:46:
#                    c7:bc:b9:3a:9e:46:81:66:cf:d9:e8:5c:10:cf:39:
#                    9e:65:c3:9e:c5:5a:f4:4b:cc:44:99:66:86:f4:72:
#                    1b:a3:53:49:ea:ae:47:cd:32:0d:70:e6:a0:a0:76:
#                    07:9d:ff:58:ef:e4:3c:91:c0:b5:e4:dc:b8:01:0c:
#                    d3:fe:b3:42:a0:3b:61:02:d4:37:5b:d7:4c:45:95:
#                    d2:75:5d:f5:6e:30:5f:57:51:8b:b2:ff:7e:c8:8b:
#                    9c:aa:a3:41:37:0c:10:91:a8:a6:85:5c:b9:c7:8f:
#                    05:51:b2:d0:78:d2:e2:4b:49:e9:d4:1a:a7:3b:ac:
#                    aa:33:e6:9a:2a:03:40:98:6f:74:52:13:31:94:d1:
#                    12:c1:b4:cb:30:f9:ff:44:b8:92:5b:52:d6:30:d9:
#                    33:d1:75:e3:19:a5:16:15:b7:54:57:f1:56:50:ce:
#                    4e:be:03:3b:2f:ec:b6:30:ee:14:60:5e:5f:7a:35:
#                    f4:4e:64:07:11:ea:a5:07:66:1b:6e:93:e2:b0:4f:
#                    5e:d6:e0:44:e0:b3:dc:ae:ef:b8:fd:a8:b3:ec:ec:
#                    e5:39:88:44:b4:a1:bb:14:60:64:8f:d6:92:93:cb:
#                    f3:cc:50:dd:e9:07:c8:67:67:f9:f0:87:84:91:b2:
#                    00:62:e9:bf:4a:15:74:c5:bf:04:4c:05:46:5d:0a:
#                    cb:e5:ea:61:00:e1:6f:41:b1:34:8e:a6:00:a2:7c:
#                    a6:a5:a6:fa:6c:4c:43:e5:a8:26:9a:34:98:1e:87:
#                    98:e7:4c:78:d1:8f:9f:05:55:5d:8a:4b:c9:cf:a0:
#                    0b:7d:06:90:9c:18:92:b2:c4:b2:d7:e3:45:d9:6b:
#                    73:c3:97:39:bf:29:1e:06:09:55:40:ba:bc:da:48:
#                    75:43:ed:fe:44:7e:3d:2c:e6:62:91:03:fd:3d:89:
#                    ef:7e:f4:5d:24:8f:a5:0b:2b:b3:3e:7a:29:28:bc:
#                    bb:3f:bf:eb:77:85:04:26:8b:94:b2:90:f5:eb:8d:
#                    4f:a2:44:22:50:a8:9c:2a:44:48:00:78:19:ab:9d:
#                    08:96:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                61:B3:79:52:9D:4A:95:92:51:8E:82:24:70:D3:8E:40:C8:C5:66:D0
#    Signature Algorithm: sha1WithRSAEncryption
#         7f:c6:b3:24:84:50:37:f9:c4:b0:c5:30:3c:16:e9:50:0d:7a:
#         ba:b4:3b:d2:23:e5:e9:89:78:6a:e5:e3:1b:05:1e:91:1c:ce:
#         06:97:8d:66:16:07:44:ef:81:b9:08:7e:a3:c7:39:34:b8:bf:
#         9a:6d:8d:b0:c1:20:42:2e:0d:f7:0b:06:03:4f:6e:cb:bc:b7:
#         b0:2f:19:71:8d:8e:af:0a:4d:58:31:8b:44:99:2a:28:66:85:
#         c7:80:26:66:b0:47:c2:39:b2:fa:4f:3e:55:bd:dc:89:27:4b:
#         73:33:04:fe:7b:47:90:c9:05:c0:2d:33:f8:b7:08:82:29:41:
#         43:fd:26:53:e6:fa:1f:37:56:8d:4f:17:ba:d8:fd:3a:84:70:
#         d8:3e:f0:33:ae:c4:05:48:54:a1:b9:d5:21:3f:ea:3e:c7:a9:
#         31:47:f7:9b:ae:4a:62:98:d1:67:20:65:de:79:e1:b1:32:1e:
#         6b:df:fb:80:6b:47:5c:39:c7:0e:08:aa:c7:a3:ee:29:e9:34:
#         e2:9b:f9:75:b8:26:eb:88:9d:b4:39:11:2e:70:fd:51:04:32:
#         bb:0f:79:84:50:21:45:7c:2f:e4:d9:ff:25:38:06:23:ab:4e:
#         b1:0e:dc:3b:31:0a:ad:da:4b:00:69:6b:2e:e2:c3:0c:c9:05:
#         01:45:66:e1:a5:89:61:1c:64:99:8d:0b:98:90:b3:7e:66:3b:
#         0b:d8:ab:e8:75:0e:d9:7f:9a:6e:7d:c9:83:27:c9:bc:e8:34:
#         38:c2:5a:87:32:72:07:0c:fe:d5:94:d1:f0:c0:78:f2:80:a8:
#         46:f5:6b:9a:ec:e2:d9:16:8e:8a:fa:84:f6:d1:52:c9:9c:b2:
#         21:56:60:43:a6:10:f7:7f:49:bf:be:07:d3:50:64:6d:02:ba:
#         2a:55:2c:cf:d9:c2:6e:af:7c:0b:48:d0:f1:e1:a7:c2:ad:74:
#         8f:86:e4:ed:aa:fa:5c:83:7d:42:e8:7d:07:1d:07:55:cc:2b:
#         69:32:b9:77:82:68:c6:77:f2:22:69:a6:c9:0a:5d:87:99:e5:
#         71:9e:7d:2f:13:1e:d2:f4:fd:09:79:27:58:2b:0a:87:81:2a:
#         fb:6a:23:2d:4b:24:85:74:16:47:18:0f:09:c5:fe:a9:48:24:
#         e3:ac:d0:69:3d:5f:53:98:32:bd:ec:e0:51:c1:53:4a:b1:f6:
#         3b:f0:34:48:f5:9a:de:dc:d1:e0:e3:bd:25:b3:44:e8:3a:73:
#         c9:79:d0:ac:d1:ed:e2:00:0a:5f:a1:1d:66:59:4a:73:68:d4:
#         05:72:33:38:a7:6b:af:91:db:0d:c7:8c:40:e8:9e:90:88:c9:
#         fb:fe:24:d7:81:ac:f3:de

[p11-kit-object-v1]
label: "SAPO Class 4 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SAPO Class 4 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGWDCCBECgAwIBAgIBAzANBgkqhkiG9w0BAQUFADCBzjELMAkGA1UEBhMCWkEx
FTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTEWMBQGA1UEBxMNU29tZXJzZXQgV2VzdDEq
MCgGA1UEChMhU291dGggQWZyaWNhbiBQb3N0IE9mZmljZSBMaW1pdGVkMRowGAYD
VQQLExFTQVBPIFRydXN0IENlbnRyZTEdMBsGA1UEAxMUU0FQTyBDbGFzcyA0IFJv
b3QgQ0ExKTAnBgkqhkiG9w0BCQEWGnBraWFkbWluQHRydXN0Y2VudHJlLmNvLnph
MB4XDTEwMDkxNTAwMDAwMFoXDTMwMDkxNDAwMDAwMFowgc4xCzAJBgNVBAYTAlpB
MRUwEwYDVQQIEwxXZXN0ZXJuIENhcGUxFjAUBgNVBAcTDVNvbWVyc2V0IFdlc3Qx
KjAoBgNVBAoTIVNvdXRoIEFmcmljYW4gUG9zdCBPZmZpY2UgTGltaXRlZDEaMBgG
A1UECxMRU0FQTyBUcnVzdCBDZW50cmUxHTAbBgNVBAMTFFNBUE8gQ2xhc3MgNCBS
b290IENBMSkwJwYJKoZIhvcNAQkBFhpwa2lhZG1pbkB0cnVzdGNlbnRyZS5jby56
YTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBANvc7UiaoKOf4BGO2ciS
dTpVwVEiygt6pDUNxeZXLYPwKm8iODcxbXyFJKIGL0OCPUUwQCUc7lhHQebwngAe
+PQvEbuSsphFLdMfgMl2FBPDzEDmres5YPzPyN8q/YwSUe/PDGTGV+gjUV3nZlLq
Zr2Tf516KPEZcG6EnzBHt7A5axMs60tNLq8/v/0CE0o55z4zxRCRUb4PR51NUvws
8+MTogCC4RQMzdKes/Lggdq+mZJT432Zd0Ph4UgpgZ7WBVc6cdw+mK1YcG9Gu34y
A+KDm1lX9/izzVQW7LatoRwaktHUKZ6PzbPofVDxwoKsur20dVag9UVdGH0sjPF7
QcyGsZqESwoqXZuW4c36qxYnQeeVNabLiqeW86XMUfktfR5D+9xttbk4vQX7WPou
0+xeZC2vWAFKfCJG00HLPeSWXklDOLuJ6/ScaTkSA1yEu+WMHurgZrvAv4z+ngpN
PWg/QHbWMqnqRbhqB1KOzVHxXShjDNNZOPzJ/YLJRSC85ujMogzLe2Q5SUZF9XMc
apcg6yFC97QgUrdK/XW8yw8MZxFXH/cw8auQzF08lgVi08pVAUtGxYCHHHLQc1Qh
6tejnNOuf9RT2Sj8V97lP1JKu8gmJEdTHHO6z8a0MM1eccdWvEk4JebFEAl42dQd
XM1u7duRXKFTFFaqjSeppo4bAgMBAAGjPzA9MA4GA1UdDwEB/wQEAwIBBjAMBgNV
HRMEBTADAQH/MB0GA1UdDgQWBBQWhC37G+e0HmiY00IgGm5+T5FXAjANBgkqhkiG
9w0BAQUFAAOCAgEAe+MNYzpkIG3M/Cy46dar29erJilHogxW7XXMlZlSNssg+xE0
F0JOdQWw2OS4sIQvmBm5+9A5bHIGGMlcinp0CDdIaf0ioV3F13gT8ChCQcPJwzkJ
B9Sh+DciaeTfMlVvwny5k/GyN3XMrtIzlow29wHt42TpC2hbEKoBNpl8z5qUXf0a
WWGiZRV9nhdk1J9TmAH9cVfQXUARFj8/RNKvyfwIMn12+NVD6Nw2aAfDTsOWl1fG
fTZe23Ct/q7UiJ21pGDWo2K+fPk0Hvy79EpyxYMeRmjDDpeDGD3TDgoRNXxplcWr
KvXIORBNDIkwKYlJG0SXkfTqZSEbPwpDcoIcbRFd4CJFX2FMoqb636NGuuGBYGwy
tPzk3DYF5DP36493SaqNCu9IiuZBl347q0OH8ghgC2/XWWb9K7svzjNPcuC217NT
V4nwO7xu4hC/cz5ij6UI6VNnwU7BLkJDp7Kk+RaLQu7cNH9Is5DbJOLI5FM1U5zq
N4XPv5gGNUcm165t3YSpY1gmQfV1Mi5hnk+TUlL2WiPrwaBzJiUiQpGRkYBP/4jO
XnPnlsLtCRL3dpapeWKQSYGDnwwyMuJbyt1INKyHjnGVrkzkfHgdp1HDvRH6AtGV
iXMIRiKJaQDPT4DBTVuUxMqZUZgvDb19VGTUCtonWac3u1YM0AaicrkSuVs=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3 (0x3)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ZA, ST = Western Cape, L = Somerset West, O = South African Post Office Limited, OU = SAPO Trust Centre, CN = SAPO Class 4 Root CA, emailAddress = pkiadmin@trustcentre.co.za
#        Validity
#            Not Before: Sep 15 00:00:00 2010 GMT
#            Not After : Sep 14 00:00:00 2030 GMT
#        Subject: C = ZA, ST = Western Cape, L = Somerset West, O = South African Post Office Limited, OU = SAPO Trust Centre, CN = SAPO Class 4 Root CA, emailAddress = pkiadmin@trustcentre.co.za
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:db:dc:ed:48:9a:a0:a3:9f:e0:11:8e:d9:c8:92:
#                    75:3a:55:c1:51:22:ca:0b:7a:a4:35:0d:c5:e6:57:
#                    2d:83:f0:2a:6f:22:38:37:31:6d:7c:85:24:a2:06:
#                    2f:43:82:3d:45:30:40:25:1c:ee:58:47:41:e6:f0:
#                    9e:00:1e:f8:f4:2f:11:bb:92:b2:98:45:2d:d3:1f:
#                    80:c9:76:14:13:c3:cc:40:e6:ad:eb:39:60:fc:cf:
#                    c8:df:2a:fd:8c:12:51:ef:cf:0c:64:c6:57:e8:23:
#                    51:5d:e7:66:52:ea:66:bd:93:7f:9d:7a:28:f1:19:
#                    70:6e:84:9f:30:47:b7:b0:39:6b:13:2c:eb:4b:4d:
#                    2e:af:3f:bf:fd:02:13:4a:39:e7:3e:33:c5:10:91:
#                    51:be:0f:47:9d:4d:52:fc:2c:f3:e3:13:a2:00:82:
#                    e1:14:0c:cd:d2:9e:b3:f2:e0:81:da:be:99:92:53:
#                    e3:7d:99:77:43:e1:e1:48:29:81:9e:d6:05:57:3a:
#                    71:dc:3e:98:ad:58:70:6f:46:bb:7e:32:03:e2:83:
#                    9b:59:57:f7:f8:b3:cd:54:16:ec:b6:ad:a1:1c:1a:
#                    92:d1:d4:29:9e:8f:cd:b3:e8:7d:50:f1:c2:82:ac:
#                    ba:bd:b4:75:56:a0:f5:45:5d:18:7d:2c:8c:f1:7b:
#                    41:cc:86:b1:9a:84:4b:0a:2a:5d:9b:96:e1:cd:fa:
#                    ab:16:27:41:e7:95:35:a6:cb:8a:a7:96:f3:a5:cc:
#                    51:f9:2d:7d:1e:43:fb:dc:6d:b5:b9:38:bd:05:fb:
#                    58:fa:2e:d3:ec:5e:64:2d:af:58:01:4a:7c:22:46:
#                    d3:41:cb:3d:e4:96:5e:49:43:38:bb:89:eb:f4:9c:
#                    69:39:12:03:5c:84:bb:e5:8c:1e:ea:e0:66:bb:c0:
#                    bf:8c:fe:9e:0a:4d:3d:68:3f:40:76:d6:32:a9:ea:
#                    45:b8:6a:07:52:8e:cd:51:f1:5d:28:63:0c:d3:59:
#                    38:fc:c9:fd:82:c9:45:20:bc:e6:e8:cc:a2:0c:cb:
#                    7b:64:39:49:46:45:f5:73:1c:6a:97:20:eb:21:42:
#                    f7:b4:20:52:b7:4a:fd:75:bc:cb:0f:0c:67:11:57:
#                    1f:f7:30:f1:ab:90:cc:5d:3c:96:05:62:d3:ca:55:
#                    01:4b:46:c5:80:87:1c:72:d0:73:54:21:ea:d7:a3:
#                    9c:d3:ae:7f:d4:53:d9:28:fc:57:de:e5:3f:52:4a:
#                    bb:c8:26:24:47:53:1c:73:ba:cf:c6:b4:30:cd:5e:
#                    71:c7:56:bc:49:38:25:e6:c5:10:09:78:d9:d4:1d:
#                    5c:cd:6e:ed:db:91:5c:a1:53:14:56:aa:8d:27:a9:
#                    a6:8e:1b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                16:84:2D:FB:1B:E7:B4:1E:68:98:D3:42:20:1A:6E:7E:4F:91:57:02
#    Signature Algorithm: sha1WithRSAEncryption
#         7b:e3:0d:63:3a:64:20:6d:cc:fc:2c:b8:e9:d6:ab:db:d7:ab:
#         26:29:47:a2:0c:56:ed:75:cc:95:99:52:36:cb:20:fb:11:34:
#         17:42:4e:75:05:b0:d8:e4:b8:b0:84:2f:98:19:b9:fb:d0:39:
#         6c:72:06:18:c9:5c:8a:7a:74:08:37:48:69:fd:22:a1:5d:c5:
#         d7:78:13:f0:28:42:41:c3:c9:c3:39:09:07:d4:a1:f8:37:22:
#         69:e4:df:32:55:6f:c2:7c:b9:93:f1:b2:37:75:cc:ae:d2:33:
#         96:8c:36:f7:01:ed:e3:64:e9:0b:68:5b:10:aa:01:36:99:7c:
#         cf:9a:94:5d:fd:1a:59:61:a2:65:15:7d:9e:17:64:d4:9f:53:
#         98:01:fd:71:57:d0:5d:40:11:16:3f:3f:44:d2:af:c9:fc:08:
#         32:7d:76:f8:d5:43:e8:dc:36:68:07:c3:4e:c3:96:97:57:c6:
#         7d:36:5e:db:70:ad:fe:ae:d4:88:9d:b5:a4:60:d6:a3:62:be:
#         7c:f9:34:1e:fc:bb:f4:4a:72:c5:83:1e:46:68:c3:0e:97:83:
#         18:3d:d3:0e:0a:11:35:7c:69:95:c5:ab:2a:f5:c8:39:10:4d:
#         0c:89:30:29:89:49:1b:44:97:91:f4:ea:65:21:1b:3f:0a:43:
#         72:82:1c:6d:11:5d:e0:22:45:5f:61:4c:a2:a6:fa:df:a3:46:
#         ba:e1:81:60:6c:32:b4:fc:e4:dc:36:05:e4:33:f7:eb:8f:77:
#         49:aa:8d:0a:ef:48:8a:e6:41:97:7e:3b:ab:43:87:f2:08:60:
#         0b:6f:d7:59:66:fd:2b:bb:2f:ce:33:4f:72:e0:b6:d7:b3:53:
#         57:89:f0:3b:bc:6e:e2:10:bf:73:3e:62:8f:a5:08:e9:53:67:
#         c1:4e:c1:2e:42:43:a7:b2:a4:f9:16:8b:42:ee:dc:34:7f:48:
#         b3:90:db:24:e2:c8:e4:53:35:53:9c:ea:37:85:cf:bf:98:06:
#         35:47:26:d7:ae:6d:dd:84:a9:63:58:26:41:f5:75:32:2e:61:
#         9e:4f:93:52:52:f6:5a:23:eb:c1:a0:73:26:25:22:42:91:91:
#         91:80:4f:ff:88:ce:5e:73:e7:96:c2:ed:09:12:f7:76:96:a9:
#         79:62:90:49:81:83:9f:0c:32:32:e2:5b:ca:dd:48:34:ac:87:
#         8e:71:95:ae:4c:e4:7c:78:1d:a7:51:c3:bd:11:fa:02:d1:95:
#         89:73:08:46:22:89:69:00:cf:4f:80:c1:4d:5b:94:c4:ca:99:
#         51:98:2f:0d:bd:7d:54:64:d4:0a:da:27:59:a7:37:bb:56:0c:
#         d0:06:a2:72:b9:12:b9:5b

[p11-kit-object-v1]
label: "SECOM Trust Systems CO.,LTD."
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvH/sV5sk4P6cukJ5qYiK
+oDg9QcpQ+qOCjQ2jRz6p7U5eP+Xdfcv5KprBIREyqbiaI79VVBiD6RxDs4HOC1C
hVCtPJZvi9WiDs/eSYk91mQuOOUebLVXip7vSA7NemkWh0S1kOQGna6hBJdYee8g
SoJrjCK/7B8P6YRx7fEO5LgYE8xWNl3Rmh5RazluYHaINAvzs9Gwncph4mQdwUYH
uGPdHjNls44JVVI9tb3/B+utYVUYLKlpmEqqQMUzFGV0APmR3q8DSMVAVNwPhJBo
IMWSltwu5QJFqsBfVPht6knPXWxLr++awlZcxjVWQmowX8Kr9uI9P7PJEY8xTNef
SQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SECOM Trust Systems CO.,LTD."
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = JP, O = "SECOM Trust Systems CO.,LTD.", OU = Security Communication EV RootCA1
#        Validity
#            Not Before: Jun  6 02:12:32 2007 GMT
#            Not After : Jun  6 02:12:32 2037 GMT
#        Subject: C = JP, O = "SECOM Trust Systems CO.,LTD.", OU = Security Communication EV RootCA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bc:7f:ec:57:9b:24:e0:fe:9c:ba:42:79:a9:88:
#                    8a:fa:80:e0:f5:07:29:43:ea:8e:0a:34:36:8d:1c:
#                    fa:a7:b5:39:78:ff:97:75:f7:2f:e4:aa:6b:04:84:
#                    44:ca:a6:e2:68:8e:fd:55:50:62:0f:a4:71:0e:ce:
#                    07:38:2d:42:85:50:ad:3c:96:6f:8b:d5:a2:0e:cf:
#                    de:49:89:3d:d6:64:2e:38:e5:1e:6c:b5:57:8a:9e:
#                    ef:48:0e:cd:7a:69:16:87:44:b5:90:e4:06:9d:ae:
#                    a1:04:97:58:79:ef:20:4a:82:6b:8c:22:bf:ec:1f:
#                    0f:e9:84:71:ed:f1:0e:e4:b8:18:13:cc:56:36:5d:
#                    d1:9a:1e:51:6b:39:6e:60:76:88:34:0b:f3:b3:d1:
#                    b0:9d:ca:61:e2:64:1d:c1:46:07:b8:63:dd:1e:33:
#                    65:b3:8e:09:55:52:3d:b5:bd:ff:07:eb:ad:61:55:
#                    18:2c:a9:69:98:4a:aa:40:c5:33:14:65:74:00:f9:
#                    91:de:af:03:48:c5:40:54:dc:0f:84:90:68:20:c5:
#                    92:96:dc:2e:e5:02:45:aa:c0:5f:54:f8:6d:ea:49:
#                    cf:5d:6c:4b:af:ef:9a:c2:56:5c:c6:35:56:42:6a:
#                    30:5f:c2:ab:f6:e2:3d:3f:b3:c9:11:8f:31:4c:d7:
#                    9f:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                35:4A:F5:4D:AF:3F:D7:82:38:AC:AB:71:65:17:75:8C:9D:55:93:E6
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         a8:87:e9:ec:f8:40:67:5d:c3:c1:66:c7:40:4b:97:fc:87:13:
#         90:5a:c4:ef:a0:ca:5f:8b:b7:a7:b7:f1:d6:b5:64:b7:8a:b3:
#         b8:1b:cc:da:fb:ac:66:88:41:ce:e8:fc:e4:db:1e:88:a6:ed:
#         27:50:1b:02:30:24:46:79:fe:04:87:70:97:40:73:d1:c0:c1:
#         57:19:9a:69:a5:27:99:ab:9d:62:84:f6:51:c1:2c:c9:23:15:
#         d8:28:b7:ab:25:13:b5:46:e1:86:02:ff:26:8c:c4:88:92:1d:
#         56:fe:19:67:f2:55:e4:80:a3:6b:9c:ab:77:e1:51:71:0d:20:
#         db:10:9a:db:bd:76:79:07:77:99:28:ad:9a:5e:da:b1:4f:44:
#         2c:35:8e:a5:96:c7:fd:83:f0:58:c6:79:d6:98:7c:a8:8d:fe:
#         86:3e:07:16:92:e1:7b:e7:1d:ec:33:76:7e:42:2e:4a:85:f9:
#         91:89:68:84:03:81:a5:9b:9a:be:e3:37:c5:54:ab:56:3b:18:
#         2d:41:a4:0c:f8:42:db:99:a0:e0:72:6f:bb:5d:e1:16:4f:53:
#         0a:64:f9:4e:f4:bf:4e:54:bd:78:6c:88:ea:bf:9c:13:24:c2:
#         70:69:a2:7f:0f:c8:3c:ad:08:c9:b0:98:40:a3:2a:e7:88:83:
#         ed:77:8f:74

[p11-kit-object-v1]
label: "SI-TRUST Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA08ucLcLgMENlMST/S7A4
2alT1zXR27dLk7RyjfHLldJTK3SbMpqkLz4CBt2vcBWhqs8Rh4pme8vMHXBEXI+s
yubDWye0jaOOEL9uVHQIcIoj6MrHdMRmkSDdS+ilhHWlmJWCixvhICQHRqsMZTZA
Z4t17qnZkSkb7W8tRcLW4mABsfNOOSs7bz+Fvgj2Uyt7oslFoUSBgGaaYDobxL4M
zDAQfxE2OErmm6GWU5yUzBHGBEyiVUv/gOGvjBw1/LmTN9/5XT3c6w0nbETJWWYr
Vm//BBv39WnDXcMY/r2n2WQvop9g2XJsPTx18iUnmC46uMndTXW9q7AiYVgBNyim
IJ0uYFz7kLxGQ7j+bdjAZiIkazR4IuW54ljpSDjuTL0Be24+QOrRwgpCk2fDJi8/
B1vPr+Md6DriZeGEkT/1ZgD9qjNGQuwWPtITZS8OCVP25Cp1FJwZMxaaReHbV8/P
ONSn9+1YQ+QOmFzE4DE/lKRvS0qi1UqNJqkdZCUINQ3nAgMBAAE=
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SI-TRUST Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            90:ae:77:76:00:00:00:00:57:1d:d0:6f
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = SI, O = Republika Slovenija, organizationIdentifier = VATSI-17659957, CN = SI-TRUST Root
#        Validity
#            Not Before: Apr 25 07:38:17 2016 GMT
#            Not After : Dec 25 08:08:17 2037 GMT
#        Subject: C = SI, O = Republika Slovenija, organizationIdentifier = VATSI-17659957, CN = SI-TRUST Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (3072 bit)
#                Modulus:
#                    00:d3:cb:9c:2d:c2:e0:30:43:65:31:24:ff:4b:b0:
#                    38:d9:a9:53:d7:35:d1:db:b7:4b:93:b4:72:8d:f1:
#                    cb:95:d2:53:2b:74:9b:32:9a:a4:2f:3e:02:06:dd:
#                    af:70:15:a1:aa:cf:11:87:8a:66:7b:cb:cc:1d:70:
#                    44:5c:8f:ac:ca:e6:c3:5b:27:b4:8d:a3:8e:10:bf:
#                    6e:54:74:08:70:8a:23:e8:ca:c7:74:c4:66:91:20:
#                    dd:4b:e8:a5:84:75:a5:98:95:82:8b:1b:e1:20:24:
#                    07:46:ab:0c:65:36:40:67:8b:75:ee:a9:d9:91:29:
#                    1b:ed:6f:2d:45:c2:d6:e2:60:01:b1:f3:4e:39:2b:
#                    3b:6f:3f:85:be:08:f6:53:2b:7b:a2:c9:45:a1:44:
#                    81:80:66:9a:60:3a:1b:c4:be:0c:cc:30:10:7f:11:
#                    36:38:4a:e6:9b:a1:96:53:9c:94:cc:11:c6:04:4c:
#                    a2:55:4b:ff:80:e1:af:8c:1c:35:fc:b9:93:37:df:
#                    f9:5d:3d:dc:eb:0d:27:6c:44:c9:59:66:2b:56:6f:
#                    ff:04:1b:f7:f5:69:c3:5d:c3:18:fe:bd:a7:d9:64:
#                    2f:a2:9f:60:d9:72:6c:3d:3c:75:f2:25:27:98:2e:
#                    3a:b8:c9:dd:4d:75:bd:ab:b0:22:61:58:01:37:28:
#                    a6:20:9d:2e:60:5c:fb:90:bc:46:43:b8:fe:6d:d8:
#                    c0:66:22:24:6b:34:78:22:e5:b9:e2:58:e9:48:38:
#                    ee:4c:bd:01:7b:6e:3e:40:ea:d1:c2:0a:42:93:67:
#                    c3:26:2f:3f:07:5b:cf:af:e3:1d:e8:3a:e2:65:e1:
#                    84:91:3f:f5:66:00:fd:aa:33:46:42:ec:16:3e:d2:
#                    13:65:2f:0e:09:53:f6:e4:2a:75:14:9c:19:33:16:
#                    9a:45:e1:db:57:cf:cf:38:d4:a7:f7:ed:58:43:e4:
#                    0e:98:5c:c4:e0:31:3f:94:a4:6f:4b:4a:a2:d5:4a:
#                    8d:26:a9:1d:64:25:08:35:0d:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:4C:A3:C3:68:5E:08:02:63
#
#            X509v3 Subject Key Identifier: 
#                4C:A3:C3:68:5E:08:02:63
#    Signature Algorithm: sha256WithRSAEncryption
#         26:23:85:bb:5d:41:19:6e:92:83:8a:ee:01:8b:04:35:19:7f:
#         ab:8f:dc:d6:33:c1:f9:79:96:5e:23:f5:f0:ce:dd:ea:db:61:
#         3b:5a:af:dd:58:e9:42:89:40:ef:f9:d9:67:11:7f:4d:f1:ed:
#         e9:11:7b:b1:41:0f:ed:a4:d2:16:b6:ef:c1:fd:8b:f6:11:2b:
#         2c:ef:fc:07:06:46:0c:cf:02:0b:ed:3b:de:8f:09:b9:33:ab:
#         26:80:54:44:42:65:d7:e7:af:cd:50:0e:ca:c8:88:a1:12:9c:
#         2a:95:3b:3e:54:3c:48:73:f6:7c:78:d4:9b:ff:93:f7:45:e4:
#         29:84:63:fc:fa:7e:1a:e7:5c:e0:72:57:b0:2f:78:1d:30:c6:
#         13:fd:88:5f:b1:65:88:da:5e:97:13:81:7b:fe:1e:cf:7b:bf:
#         57:30:c1:70:92:43:a6:99:f0:55:9f:98:c5:23:42:bd:74:1c:
#         31:8e:12:a5:d9:45:6a:2a:5a:c8:58:cd:bd:d6:dd:3e:35:0b:
#         19:7f:03:1c:ce:07:0f:87:45:93:15:a1:6b:bd:34:1c:e0:de:
#         f5:d4:b8:e5:91:1c:4b:05:b5:27:26:bc:cf:d1:09:98:16:c6:
#         e1:f1:55:4b:3a:7b:6d:de:c6:67:b6:c1:37:2d:9f:a8:8e:59:
#         c7:b7:a6:c5:ef:df:16:e2:ed:de:b2:b7:f3:a2:36:a4:28:32:
#         3a:0a:94:cb:3f:5e:fe:6e:59:ed:ba:36:b2:93:d6:c6:c3:19:
#         fe:f5:99:78:eb:47:47:e5:ad:42:7a:ec:bc:7b:c9:2e:41:4e:
#         4d:0f:04:0e:8a:4b:33:87:dc:f1:76:7c:5a:18:8c:9c:0a:12:
#         d7:a2:b3:c2:85:87:ae:6d:31:50:62:32:21:a0:68:16:5f:94:
#         35:74:55:29:d2:71:81:08:4a:e1:d7:5d:aa:54:01:b3:1b:7c:
#         59:ae:be:ac:0c:ca:b8:40:64:67:5b:9d:ea:06:06:11:d6:d0:
#         30:73:1e:e3:bc:2b

[p11-kit-object-v1]
label: "SITHS CA v3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxdlb0dQrf0Bn7qFbXdHa
arkZMfLwJkkBZfxBVPGWkewq7gREJB5AnOcXUD/qHHzuuDc5/MfTr5tuXd8+vgX8
6srZ+UVW4ZWcsdBaj/7IKqbXamzgbV3sXHb+4ZlHmql7p+rmb1QCJ01RTig9rAY6
gYKmHL1LpO1SEtyKKusn9MEiShCEWnW1gCJWZevMgPKl4WS+fN4PvScHTClbqrHv
tHv/hzToo5NCyz1gu3fTwi9eFPhzb6R/oJwB1dWpuwxXj8zAO5F4npI5eTJMRH/H
C33e+sx+2szeDdRmtmKmM79s+dXdR1JwlMtl4EW3DdevlUjXQaM7IFANPBRVk8zq
DQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SITHS CA v3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1b:d4:0e:d4:34:d1:da:15:a6:00:30:15:02:4d:a4:6c
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SE, O = Carelink, CN = SITHS CA v3
#        Validity
#            Not Before: Nov 28 10:27:50 2005 GMT
#            Not After : Nov 28 06:02:38 2015 GMT
#        Subject: C = SE, O = Carelink, CN = SITHS CA v3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c5:d9:5b:d1:d4:2b:7f:40:67:ee:a1:5b:5d:d1:
#                    da:6a:b9:19:31:f2:f0:26:49:01:65:fc:41:54:f1:
#                    96:91:ec:2a:ee:04:44:24:1e:40:9c:e7:17:50:3f:
#                    ea:1c:7c:ee:b8:37:39:fc:c7:d3:af:9b:6e:5d:df:
#                    3e:be:05:fc:ea:ca:d9:f9:45:56:e1:95:9c:b1:d0:
#                    5a:8f:fe:c8:2a:a6:d7:6a:6c:e0:6d:5d:ec:5c:76:
#                    fe:e1:99:47:9a:a9:7b:a7:ea:e6:6f:54:02:27:4d:
#                    51:4e:28:3d:ac:06:3a:81:82:a6:1c:bd:4b:a4:ed:
#                    52:12:dc:8a:2a:eb:27:f4:c1:22:4a:10:84:5a:75:
#                    b5:80:22:56:65:eb:cc:80:f2:a5:e1:64:be:7c:de:
#                    0f:bd:27:07:4c:29:5b:aa:b1:ef:b4:7b:ff:87:34:
#                    e8:a3:93:42:cb:3d:60:bb:77:d3:c2:2f:5e:14:f8:
#                    73:6f:a4:7f:a0:9c:01:d5:d5:a9:bb:0c:57:8f:cc:
#                    c0:3b:91:78:9e:92:39:79:32:4c:44:7f:c7:0b:7d:
#                    de:fa:cc:7e:da:cc:de:0d:d4:66:b6:62:a6:33:bf:
#                    6c:f9:d5:dd:47:52:70:94:cb:65:e0:45:b7:0d:d7:
#                    af:95:48:d7:41:a3:3b:20:50:0d:3c:14:55:93:cc:
#                    ea:0d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:0
#            Netscape Cert Type: 
#                SSL CA
#            X509v3 Certificate Policies: 
#                Policy: 1.2.752.74.1.1.3
#
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7C:2E:39:23:32:44:E8:0F:4E:66:F2:0D:28:FE:40:BE:C2:B6:E2:A0
#    Signature Algorithm: sha1WithRSAEncryption
#         08:53:5a:88:29:0d:f5:54:d8:ab:b1:83:b9:27:69:5a:aa:5f:
#         2b:58:49:d4:b9:df:6f:eb:c7:06:eb:fd:87:9a:bf:ca:12:df:
#         7a:9e:01:22:25:63:52:85:6f:a7:2f:0e:97:74:60:8c:e0:48:
#         80:73:dd:42:8d:21:ed:0f:72:7f:74:06:6e:50:56:3b:2d:87:
#         ec:81:58:8b:36:c7:ca:00:fb:a4:04:b6:2f:38:58:8e:77:f1:
#         06:c4:2d:2c:27:2d:18:82:0b:8a:5f:22:94:14:15:63:38:c6:
#         a5:b1:ba:e0:ac:be:3e:26:3f:91:bb:1c:83:fc:0e:ca:c9:37:
#         be:37:d7:f0:7b:f3:8c:d8:bc:90:0b:f4:00:bf:54:bc:6a:4a:
#         58:e7:ca:5b:0c:19:53:42:07:95:57:35:b8:4f:96:53:9a:a8:
#         98:dd:4e:7d:55:b4:9c:e3:ba:c0:36:b9:b7:dc:02:98:f8:f6:
#         e5:30:be:2c:77:b2:f3:c9:e2:02:a3:e6:f7:44:7c:d6:6a:7f:
#         d0:78:be:39:73:f8:0b:c2:1f:52:00:0e:4d:7b:c6:0a:ee:62:
#         cb:09:d5:0f:0a:30:87:82:93:bc:ca:11:a4:1f:09:fa:fa:37:
#         50:ec:3b:e2:3c:24:a0:80:28:cc:fb:a6:dd:ef:37:9a:a9:31:
#         dd:df:ea:51

[p11-kit-object-v1]
label: "SITHS Root CA v1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SITHS Root CA v1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            90:66:61:a8:62:3d:65:44:77:04:3f:71:9a:c3:97:0c
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SE, O = Inera AB, CN = SITHS Root CA v1
#        Validity
#            Not Before: Mar 29 07:54:49 2012 GMT
#            Not After : Mar 29 07:54:49 2032 GMT
#        Subject: C = SE, O = Inera AB, CN = SITHS Root CA v1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:ed:e6:9e:a8:ac:a8:ff:d8:35:b9:fc:fb:f0:
#                    95:4f:3f:3d:47:23:d1:92:c9:c9:f8:f0:e2:1f:86:
#                    ad:88:3f:e0:00:cf:4f:11:95:61:3d:a5:d6:20:19:
#                    d1:88:d2:c2:56:09:45:20:a1:2a:ea:22:c3:ea:ba:
#                    cc:42:69:9e:b8:85:9f:70:c0:6c:a7:be:6f:a3:5c:
#                    dd:43:88:07:cd:ca:29:df:69:7a:1f:2d:9f:56:6a:
#                    1b:62:20:21:61:c6:50:4b:65:75:49:46:bf:5c:d7:
#                    29:1e:c2:1e:85:42:e1:0e:38:4d:c3:36:71:42:44:
#                    51:3a:d1:58:cc:c9:b4:aa:6c:40:c7:83:f1:c7:09:
#                    9f:4a:f3:6b:f3:07:16:35:f4:82:8e:5e:8b:84:dc:
#                    71:79:b9:fb:6e:57:45:b7:c5:70:3a:ff:42:02:d1:
#                    34:bf:85:70:6d:4f:8f:e7:1f:19:21:f7:d5:34:bc:
#                    ee:59:e6:2e:22:f3:71:82:62:19:9f:05:64:7c:3b:
#                    22:71:18:a5:2d:c1:78:58:99:d1:af:de:94:40:06:
#                    19:76:13:50:87:23:cb:47:57:ae:6c:c5:13:ea:9a:
#                    85:52:c3:ca:57:26:1f:de:16:6d:ad:71:7e:f2:d8:
#                    61:fd:e6:36:4e:71:1a:9d:d3:20:35:ad:12:21:58:
#                    75:36:8b:89:16:a4:37:28:cf:a0:83:3a:40:a3:ca:
#                    11:ef:b4:e5:90:1b:e3:65:92:67:98:6f:0e:29:e5:
#                    67:18:d7:88:fa:8d:b6:c7:7a:a5:a0:7f:91:1e:ab:
#                    b6:f9:74:98:76:52:60:2f:5a:37:99:a8:db:d1:3e:
#                    d6:84:6a:6f:52:d3:b4:da:1a:c7:b8:b2:d1:94:11:
#                    1f:c5:88:89:e9:5b:a9:a3:94:e6:a2:7d:4d:a7:32:
#                    89:a1:de:26:6b:cd:d5:a3:f2:32:1b:da:35:13:89:
#                    11:49:4d:bf:46:31:bb:e9:2d:13:f8:0e:00:a5:fe:
#                    03:f5:56:46:3c:8f:13:2b:e0:e5:c7:1e:03:df:8a:
#                    ea:46:85:45:86:d9:ed:5e:0b:b8:64:93:f4:d0:58:
#                    2e:29:8d:45:57:4d:89:75:90:65:cc:6a:3b:c1:9c:
#                    80:b9:b4:80:35:03:8e:df:6e:2a:93:be:a6:be:0a:
#                    01:44:6f:40:73:aa:2a:82:1c:84:76:7f:69:dd:b1:
#                    bb:92:58:e8:40:51:72:5c:f7:3e:39:44:fa:a5:99:
#                    a0:7f:8d:8b:b0:41:58:77:ad:22:c5:a0:c0:ba:fd:
#                    31:99:35:6a:d9:c9:20:1a:5e:f3:bd:bc:08:7f:dd:
#                    49:2d:2f:9d:91:10:0d:5b:a8:3f:cf:b4:57:73:3b:
#                    5b:e0:67
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.2.752.74.8.1.2.1.1
#                  CPS: http://cps.siths.se/sithsrootcav1.html
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                32:F9:9D:4F:69:E9:98:8D:A0:D6:8C:7D:F9:1D:CE:A3:3C:BA:76:15
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:3f:e3:78:58:c8:0a:ca:34:22:09:d8:b2:05:8b:d1:65:9c:
#         e1:d7:d7:7d:0a:c0:1c:98:a5:24:52:38:33:da:64:22:23:80:
#         ae:fe:3d:80:be:4f:8f:dd:83:f6:0d:4c:33:5a:d5:a3:3b:50:
#         8a:52:5a:26:14:73:51:94:e4:52:97:63:db:b7:06:a8:ef:8f:
#         ad:e2:ed:de:a3:bf:20:d1:46:db:2d:78:e8:2c:27:44:9c:3c:
#         ec:b7:17:fc:89:97:f3:a3:a2:5e:c2:59:53:e0:cf:e4:b5:01:
#         3b:63:53:28:d3:af:66:4b:34:39:af:61:0e:3e:9b:ee:b3:89:
#         d6:93:a0:3b:01:c4:b3:23:54:10:3c:4d:d7:aa:b0:da:d9:6c:
#         ca:30:44:2d:dd:b2:28:62:8a:41:60:f2:40:13:6c:b0:7c:3e:
#         41:e0:8b:a6:34:f1:e7:ae:51:87:03:8e:99:7f:d9:68:a2:f6:
#         9c:0d:79:82:b2:9f:df:24:c8:66:60:e8:b6:48:44:27:c8:6b:
#         56:b7:44:85:ce:02:b7:d3:8a:71:5c:57:51:57:21:8c:ea:c2:
#         51:0f:50:3f:80:ab:04:4d:c9:52:dd:e4:a5:f2:2e:1f:6d:75:
#         ba:87:1d:90:0b:ee:18:84:80:73:bb:8b:95:84:8a:61:0d:4e:
#         5d:62:9f:e3:66:0c:fb:36:0e:27:d3:48:f8:06:88:06:a5:5f:
#         ee:7e:5c:dd:ad:0a:1d:3d:1c:aa:40:79:98:79:b8:50:8c:36:
#         8d:0b:0a:36:0b:d5:3e:e7:5d:81:dd:6c:dc:6d:b1:6f:0d:74:
#         9e:2c:2f:c2:05:f2:44:11:b2:33:fa:81:c5:4a:6d:3e:45:d6:
#         2c:e2:6b:5f:2e:e4:43:95:51:1b:99:31:05:df:25:1b:73:d1:
#         7b:9c:c4:73:49:fb:62:60:d9:69:63:dd:d1:3e:65:6d:47:fa:
#         64:4c:03:58:50:d9:a6:be:e5:2a:68:eb:3f:8b:10:f1:e6:bb:
#         22:06:28:9a:a0:a4:98:69:6f:36:b4:d4:0d:0e:0c:7d:c0:29:
#         31:bb:2c:03:27:e1:67:a7:bd:d1:8b:2e:b6:87:c4:0a:e0:09:
#         0b:82:a1:e6:4f:58:9d:fb:d8:f8:61:e1:ca:97:c4:b8:b7:50:
#         39:cc:31:4e:fd:2d:1c:1a:f6:47:e3:6c:ec:1b:05:e8:7f:17:
#         35:10:84:da:33:e7:34:e6:b5:a4:eb:c4:22:07:4a:f6:9b:58:
#         d8:0f:9c:40:fb:b1:8b:5f:a2:fd:99:ea:a2:7b:59:62:d1:5e:
#         ae:d1:4a:72:18:2b:4b:36:39:72:07:9a:5a:f0:63:3a:cf:1b:
#         f9:cf:dd:48:73:59:70:e4

[p11-kit-object-v1]
label: "SSC GDL CA Root B"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC GDL CA Root B"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3e:8c:4f:bc:e4:29:83:82:4d:84:55:8e:d5:35:80:cf
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = LT, O = Skaitmeninio sertifikavimo centras, OU = CA ROOT Services, CN = SSC GDL CA Root B
#        Validity
#            Not Before: Jun  4 14:20:15 2013 GMT
#            Not After : Jun  4 14:21:55 2033 GMT
#        Subject: C = LT, O = Skaitmeninio sertifikavimo centras, OU = CA ROOT Services, CN = SSC GDL CA Root B
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:8f:95:e9:d2:eb:c1:73:25:c7:38:67:f0:83:8e:
#                    53:bc:b6:cb:ce:ba:73:db:4f:27:f6:22:90:3f:42:
#                    bf:21:d6:de:62:82:b4:6f:04:05:49:09:3b:77:01:
#                    d7:4b:5f:52:d2:d9:19:c7:6d:7c:0c:a9:3a:09:62:
#                    e4:2a:18:69:8c:a0:dd:eb:ac:13:b6:0e:39:11:80:
#                    69:4e:63:5f:dc:3c:0d:fa:d9:8c:62:be:64:85:32:
#                    32:59:97:50:93:89:df:fb:ff:d4:d8:65:71:c7:46:
#                    55:a2:1b:99:61:1f:dc:50:00:c8:17:79:e8:50:b0:
#                    0c:5e:e6:fe:76:a6:01:4e:09:c8:70:6c:fa:90:b3:
#                    5e:dc:3d:07:cd:49:a3:4e:56:5e:12:4f:64:41:7f:
#                    7e:0c:15:c3:a0:de:b3:a3:29:06:49:44:a1:5f:6f:
#                    3f:81:a0:44:4d:f0:7b:0a:38:28:ed:12:ee:63:97:
#                    c3:7b:5d:8c:4f:71:dd:95:3a:da:2e:a8:01:46:0a:
#                    f3:6c:e8:b5:f1:1f:08:00:f1:40:92:1b:26:00:31:
#                    75:39:46:49:26:b9:a4:d4:71:77:11:a4:4f:33:cc:
#                    09:db:d9:d1:21:4b:92:44:ac:ce:78:62:82:17:fb:
#                    fa:12:b4:7d:d5:f2:86:ed:f4:7e:96:14:e6:8d:03:
#                    52:af:cd:17:a2:d5:1c:a5:fe:81:a6:9a:ed:7d:e4:
#                    d9:0e:32:66:10:8f:db:d9:33:31:81:7e:29:57:ef:
#                    cc:b2:a1:60:ee:8a:5b:b9:65:db:7f:1b:9a:2c:8f:
#                    27:31:89:8a:28:b5:af:b1:56:d4:03:22:ee:25:4f:
#                    d8:9a:bd:d2:6c:57:bc:83:a6:48:1f:2c:55:07:09:
#                    34:2b:b9:79:2c:02:a5:a0:5f:7c:76:9f:24:32:3c:
#                    2d:92:df:eb:48:57:87:a1:f6:fe:23:fa:34:ab:89:
#                    f5:68:1b:8e:1f:aa:6e:0e:a5:d2:21:d2:ef:b9:d1:
#                    b1:49:57:35:5a:84:d3:1e:e2:02:6d:52:10:7f:e2:
#                    8c:4d:21:db:32:32:1c:7d:cc:96:22:03:2d:6a:a7:
#                    06:42:6d:6e:90:87:fa:1c:5c:b0:4f:d0:03:41:13:
#                    fa:0b:53:e6:c1:10:02:48:0b:77:63:f4:a5:9c:51:
#                    7b:98:66:d7:c5:76:32:e5:6f:5d:14:61:7d:0c:bb:
#                    6d:95:40:da:a9:26:c7:f7:a9:cb:d2:fe:27:c1:2b:
#                    f6:b1:68:86:fe:e3:62:52:99:50:8e:2b:de:41:21:
#                    07:1b:87:f5:40:1d:70:ad:cf:fd:c2:43:a8:35:56:
#                    11:42:c5:cb:5e:66:a1:c8:a8:68:f7:fe:4c:57:61:
#                    36:52:81
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                72:03:46:87:61:F6:1D:B3:D4:95:63:B9:50:77:6E:0D:AB:98:FE:2F
#    Signature Algorithm: sha256WithRSAEncryption
#         08:db:8a:32:81:74:33:71:16:ec:21:85:53:48:0a:6f:1f:72:
#         e3:e3:04:f8:2e:b7:3f:f3:24:95:4f:9c:ed:13:e1:88:82:02:
#         f6:66:f7:b7:b1:2d:80:27:ad:ae:b8:6d:fe:23:07:11:08:ab:
#         74:61:8c:28:12:f9:f6:10:34:f0:cf:b6:7c:a3:75:2d:12:d4:
#         94:df:74:ee:b1:98:ab:b1:ee:22:62:4b:59:1f:7f:fe:1a:65:
#         ad:4d:e2:a4:11:3f:13:21:b4:d8:35:8b:76:40:a6:5f:bd:33:
#         11:df:98:e3:21:5e:1d:a3:bb:78:36:02:3b:d8:fd:64:84:da:
#         37:cd:59:ed:fc:0c:d0:74:a4:6b:71:3c:36:12:44:9e:7e:6e:
#         4f:0a:21:1c:65:1f:4b:12:6c:bf:8e:72:d6:dd:3e:00:70:98:
#         01:45:2b:ec:95:90:e3:d3:69:38:e7:2b:9d:7e:65:59:5b:e1:
#         db:85:ca:63:fe:ab:bf:e4:d0:fd:e4:52:ba:1a:e6:fe:c6:90:
#         ba:7b:ce:f1:a4:62:c5:47:be:24:c7:a0:7a:e5:21:e1:c6:08:
#         e0:0c:89:83:8f:80:69:fd:ee:a0:df:7a:4c:3a:d3:48:2a:16:
#         bf:ae:a6:95:b5:dd:68:1f:fb:0e:b5:05:8c:d1:b2:44:7c:60:
#         30:56:76:17:b5:35:4f:a8:d5:0a:eb:c2:b5:6e:02:ee:9c:5f:
#         0e:a3:b1:01:a8:e5:53:6f:7e:83:41:1f:15:d8:ff:e1:c2:b6:
#         1a:f1:46:9c:64:a0:1a:e0:4a:ca:b8:a6:b4:89:24:ee:7b:95:
#         99:62:d4:e2:40:bb:ce:a3:9a:7d:1d:72:f3:1b:81:41:77:00:
#         5e:ec:3c:a2:30:05:3c:cd:7c:48:36:13:c8:32:b0:6b:6f:9f:
#         38:28:38:69:5c:7b:e6:e2:ad:83:bb:6d:13:d1:2e:b7:d1:76:
#         6f:5d:30:5e:b9:50:45:48:d6:48:80:93:51:c9:16:a9:10:5d:
#         67:c6:cb:7e:67:7d:05:4f:f4:20:ef:24:25:5e:ed:67:43:c6:
#         fb:6e:79:fb:b2:f2:c8:c9:ce:41:7c:05:e0:ad:8b:cd:0a:45:
#         2e:e2:62:9f:97:91:f4:f9:63:ec:f2:c2:60:8a:dc:1b:ff:21:
#         a8:ff:23:87:8c:73:8d:b0:3a:cc:1f:8f:31:72:0a:fd:96:a1:
#         df:1a:53:d3:36:b6:b0:77:46:de:03:f6:c2:80:2e:6f:97:23:
#         e1:11:cc:51:98:3f:ee:40:ff:f4:3d:9b:88:7f:8c:bb:e1:59:
#         86:bd:09:34:27:5c:9e:0a:93:32:3b:55:2a:a9:5e:0b:0d:0f:
#         a9:a6:51:04:e2:9b:2a:11

[p11-kit-object-v1]
label: "SSC Root CA A"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAuupPvoTAGSSKIalMmX33
DNWlUZKoZeOJowtm50L4edIPgyN7t6bBJNY11tjlAcpwsRbWR26+EGx+6VBudvfl
5IMPeNWgc/WN0ZkflEQjlsbuclr52l08ka9s6Jfohl33nov6xKxmT+RyPzvdnk41
0hMffbtES/RTrNYU10A5usA//IUg08QA0OfYR5kEeYeGQLKsXsl1IMMJFK8Ejqai
rSpXiGWhzCi+NskfJQ/DayKEOXdOOgPAats+uraJnuTXLpq3QwE/+dqsqazkdzOH
7Qs53cfBrQ1ZgzDRNgRYtGRO5v8I6EKxgKv4mP/zKYYWESROCaHPMH+8XrAKaqFx
a/WaEmslbXcCokZe+Wkv+zsYlV+OXJeUYF4dcahBtF3PWnpn49RKNR834HYWAzv0
UZyYFClJiAxC0C1tqadAJjp5ADA7wLtEmK0kztGW3Il4gfZaW0K8dOGH02XIR+Y2
sszBb8DH3IAlUjwxkN3JyFCoert24O8TlM4Efmq2Tnf5g9Bv+DrQCkPKuhC2/zwd
lGCUhG31pcl9TAp+L49v/d0te0rp7zTbu37/DG83+vnDzMkv0eksPSqsbCY70Ale
xIAni91h8OeVUUPEDeYx0HjWwcbCZgHR48zH0x4VBTbblJrsUsORxy+x9AP3B6zT
S5GrVjzQrv1fbS3TABHPk70CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC Root CA A"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            66:07:a3:d2:9d:29:56:18:0e:e1:5e:59:98:b1:84:55
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = LT, O = Skaitmeninio sertifikavimo centras, OU = Certification Authority, CN = SSC Root CA A
#        Validity
#            Not Before: Dec 27 12:18:52 2006 GMT
#            Not After : Dec 28 12:05:04 2026 GMT
#        Subject: C = LT, O = Skaitmeninio sertifikavimo centras, OU = Certification Authority, CN = SSC Root CA A
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:ea:4f:be:84:c0:19:24:8a:21:a9:4c:99:7d:
#                    f7:0c:d5:a5:51:92:a8:65:e3:89:a3:0b:66:e7:42:
#                    f8:79:d2:0f:83:23:7b:b7:a6:c1:24:d6:35:d6:d8:
#                    e5:01:ca:70:b1:16:d6:47:6e:be:10:6c:7e:e9:50:
#                    6e:76:f7:e5:e4:83:0f:78:d5:a0:73:f5:8d:d1:99:
#                    1f:94:44:23:96:c6:ee:72:5a:f9:da:5d:3c:91:af:
#                    6c:e8:97:e8:86:5d:f7:9e:8b:fa:c4:ac:66:4f:e4:
#                    72:3f:3b:dd:9e:4e:35:d2:13:1f:7d:bb:44:4b:f4:
#                    53:ac:d6:14:d7:40:39:ba:c0:3f:fc:85:20:d3:c4:
#                    00:d0:e7:d8:47:99:04:79:87:86:40:b2:ac:5e:c9:
#                    75:20:c3:09:14:af:04:8e:a6:a2:ad:2a:57:88:65:
#                    a1:cc:28:be:36:c9:1f:25:0f:c3:6b:22:84:39:77:
#                    4e:3a:03:c0:6a:db:3e:ba:b6:89:9e:e4:d7:2e:9a:
#                    b7:43:01:3f:f9:da:ac:a9:ac:e4:77:33:87:ed:0b:
#                    39:dd:c7:c1:ad:0d:59:83:30:d1:36:04:58:b4:64:
#                    4e:e6:ff:08:e8:42:b1:80:ab:f8:98:ff:f3:29:86:
#                    16:11:24:4e:09:a1:cf:30:7f:bc:5e:b0:0a:6a:a1:
#                    71:6b:f5:9a:12:6b:25:6d:77:02:a2:46:5e:f9:69:
#                    2f:fb:3b:18:95:5f:8e:5c:97:94:60:5e:1d:71:a8:
#                    41:b4:5d:cf:5a:7a:67:e3:d4:4a:35:1f:37:e0:76:
#                    16:03:3b:f4:51:9c:98:14:29:49:88:0c:42:d0:2d:
#                    6d:a9:a7:40:26:3a:79:00:30:3b:c0:bb:44:98:ad:
#                    24:ce:d1:96:dc:89:78:81:f6:5a:5b:42:bc:74:e1:
#                    87:d3:65:c8:47:e6:36:b2:cc:c1:6f:c0:c7:dc:80:
#                    25:52:3c:31:90:dd:c9:c8:50:a8:7a:bb:76:e0:ef:
#                    13:94:ce:04:7e:6a:b6:4e:77:f9:83:d0:6f:f8:3a:
#                    d0:0a:43:ca:ba:10:b6:ff:3c:1d:94:60:94:84:6d:
#                    f5:a5:c9:7d:4c:0a:7e:2f:8f:6f:fd:dd:2d:7b:4a:
#                    e9:ef:34:db:bb:7e:ff:0c:6f:37:fa:f9:c3:cc:c9:
#                    2f:d1:e9:2c:3d:2a:ac:6c:26:3b:d0:09:5e:c4:80:
#                    27:8b:dd:61:f0:e7:95:51:43:c4:0d:e6:31:d0:78:
#                    d6:c1:c6:c2:66:01:d1:e3:cc:c7:d3:1e:15:05:36:
#                    db:94:9a:ec:52:c3:91:c7:2f:b1:f4:03:f7:07:ac:
#                    d3:4b:91:ab:56:3c:d0:ae:fd:5f:6d:2d:d3:00:11:
#                    cf:93:bd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22501.1.2.0
#                  CPS: http://www.ssc.lt/cps
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.ssc.lt/root-a/cacrl.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CC:BF:DE:A7:90:77:62:6A:1D:78:69:2E:0A:38:9B:77:51:53:03:F0
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:af:c8:a8:c7:33:4f:f0:6e:9a:43:e1:f2:b0:57:52:e1:9c:
#         9e:06:5f:42:d6:f1:fd:ca:8b:51:3f:e1:c7:65:69:4f:74:19:
#         50:8a:cf:18:93:49:8d:a0:1c:b0:3b:3d:8e:48:93:d9:e8:05:
#         7e:c4:09:b1:0f:52:8a:6b:97:6f:d7:8e:3c:80:00:d0:41:73:
#         ad:3d:c3:44:07:71:6a:8f:62:7e:05:d8:53:60:72:b1:01:e9:
#         00:62:aa:0d:d8:d8:49:c2:b4:7d:0d:5b:b3:97:29:36:99:b9:
#         a7:d1:4b:98:6b:44:bc:b2:12:8e:76:64:75:4c:0d:cd:c2:2e:
#         b3:58:fc:7a:4f:55:b3:59:7f:5d:e0:2f:30:33:cf:88:1b:69:
#         e9:4d:8a:90:9e:90:b9:31:3a:f3:a2:05:bc:fe:f9:dd:50:8d:
#         0e:94:19:9d:7e:8d:aa:15:7e:0f:52:93:25:e4:81:0e:96:2d:
#         1c:03:1c:30:83:11:96:42:a9:98:a4:9d:5f:c9:a9:5c:3b:49:
#         68:c2:84:6d:99:da:f6:fe:a2:f2:dc:37:5e:8d:7a:e5:a5:57:
#         ca:23:4b:93:5d:92:2a:55:84:b3:96:b3:1e:98:94:49:7c:6c:
#         3c:dc:9e:1d:b6:ab:c3:ac:09:c5:9d:de:37:d7:54:c4:9c:ad:
#         3f:b0:d6:69:01:e5:10:86:7d:b9:81:83:6e:9c:66:4e:95:05:
#         92:90:31:87:26:b2:da:91:74:bd:84:e4:71:68:e4:76:00:e0:
#         76:73:34:47:86:95:65:ba:5b:90:a2:6d:05:29:78:60:eb:86:
#         f9:12:4d:e8:08:56:a4:cc:8c:a2:56:4a:ce:80:f4:14:61:22:
#         e5:ab:1d:3a:41:3b:84:d7:82:78:05:2f:ac:1d:23:68:ab:72:
#         79:85:cd:46:e6:7a:a7:82:5a:28:d0:15:3d:1d:db:8c:98:50:
#         ce:fb:af:58:3b:d3:a9:ae:80:3b:16:00:76:27:d5:70:e9:09:
#         8d:36:94:09:7f:e3:ef:60:10:51:ca:c6:55:70:66:ab:51:6f:
#         f3:51:4f:12:56:ae:fb:d7:d9:0d:e0:fa:ab:10:de:6a:81:ac:
#         85:77:2d:ac:7a:63:7b:46:e1:37:da:57:6e:ad:65:fc:21:04:
#         99:85:01:cf:23:3a:32:c5:ed:5a:9b:d5:a1:82:04:77:11:45:
#         8e:a4:44:7d:c2:cb:cb:a7:0f:e8:12:ba:f2:6e:ba:8f:33:30:
#         1b:dd:29:f8:f0:42:a3:6e:42:a5:6e:fa:56:a5:a9:50:83:d1:
#         05:66:16:8b:2d:fb:e6:92:d1:e6:6c:0b:d5:5a:29:6d:2b:cf:
#         79:d7:d9:da:4f:f0:68:b6

[p11-kit-object-v1]
label: "SSC Root CA B"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC Root CA B"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGKzCCBBOgAwIBAgIRAL6SgxjzVYp4o2dZHGkkCT8wDQYJKoZIhvcNAQEFBQAw
dDELMAkGA1UEBhMCTFQxKzApBgNVBAoTIlNrYWl0bWVuaW5pbyBzZXJ0aWZpa2F2
aW1vIGNlbnRyYXMxIDAeBgNVBAsTF0NlcnRpZmljYXRpb24gQXV0aG9yaXR5MRYw
FAYDVQQDEw1TU0MgUm9vdCBDQSBCMB4XDTA2MTIyNzEyMjI1MFoXDTI2MTIyNTEy
MDgyNlowdDELMAkGA1UEBhMCTFQxKzApBgNVBAoTIlNrYWl0bWVuaW5pbyBzZXJ0
aWZpa2F2aW1vIGNlbnRyYXMxIDAeBgNVBAsTF0NlcnRpZmljYXRpb24gQXV0aG9y
aXR5MRYwFAYDVQQDEw1TU0MgUm9vdCBDQSBCMIICIjANBgkqhkiG9w0BAQEFAAOC
Ag8AMIICCgKCAgEAwfNV9UdRTlUXZY2wskEooUrRn0v2c/8+0slNWT/kt8efBl3Y
PKOIhOBzXf0F6seO16QEauufvUP9FJJGuMW6qu1g7OzKkI0KcqlBm9SdvLBsohEf
ZMvnHdRFZw4Ja+V47PE/BFTzmpnHWdHSeaekGrB8Sfwch1ReeAbV3R3MhaBCeNXQ
sIrq6PGhnlbv08F9h6zn2mhPGdZv4JOtSVxzFMFGap33WEDZV1hObDf0ciME+NtK
sN7xQZYSQKEVi2e4XnhWy3/kvsBJaJG4RwiTgcG1GzEG04B70UWhzww9YfOS+PGw
FQ74LjBbAKNJ923+7ty/iM/wfVc+r8DRiut80m0xVfqEjXNq2nCAxPTCz5COMJrh
xjVyAQjmP+ZmAKPy+JIdvFLsj/bc9wrvvBCH+YQYjF4fA7j/NS8BauXwW2J847N/
M6qU105RgbXoV3iPIpapDIlUPrbu2XNfZPRE4fFqGP9SlsQcv4mXpMOnyn4Ybhbc
E4y71bUlCYav9i9FlCowwRSUNfZdyiWVnLFYibi1YIXJxr4UGaM++VaFq8ps1pl5
okoUb8M62OdmUQrpHP7MaeY0bPSB232iEfhMxIcFFj3rl3Q/buycubYnjCTfLbOv
3RNhdo//8kzgCBkwMiQyXDaAF+6Gyd8vUeJWroOS8LO92Ic6LJ7E3GmZ+csCAwEA
AaOBtzCBtDAPBgNVHRMBAf8EBTADAQH/MD0GA1UdIAQ2MDQwMgYLKwYBBAGBr2UB
AgAwIzAhBggrBgEFBQcCARYVaHR0cDovL3d3dy5zc2MubHQvY3BzMDMGA1UdHwQs
MCowKKAmoCSGImh0dHA6Ly9jcmwuc3NjLmx0L3Jvb3QtYi9jYWNybC5jcmwwDgYD
VR0PAQH/BAQDAgEGMB0GA1UdDgQWBBScA/Co0phyaK7y7eBP4oUOsiVOzzANBgkq
hkiG9w0BAQUFAAOCAgEArFy8L/yuASSmED6sqOGnJ5mNyojBHT2R9qJ+pfGYQf+q
YfgJvs0aJWF0tMOvQloJD5EBvkiV9Mp3XguDzoSdz0D9gCy942Y1Crix+mDa5dhU
tUuXuqIawyBpjbRGc1yqv717/xowNFhA+StgC3lE+feilgtrUnvwK0s70ouga5M9
yVdjimvMUBOPd6hRvhpMLUxdDJBbjvPvUCBtgeZRSavE59ddCCtR/D1GEufRpXbF
UyQFyarTjljF84p0kjLt8C/dq63p0jWPdCPjmQDiizDkw0Ku8Lvp4ggbSnAtffjS
mieRQnB1egh+vi8cfzc9qIvcRnL16G82aPpujSCd1PUHcb+9J0K5cyjW7Em0BYVP
aEj2q5TfDqNGFGDCMSA76y5b3tWhLG3lUvqBX5eIyWO9AezjzWsKNcLJOOMO81gb
fdqQbbf1yFhWna4B35GdrVWCAwwRdASRhsd8k4zzJ/vFJFdui9kbmJ2IMfCvd7gN
tMzP9gpvEpvsCStTiexE4KFpi6h0hnQYUuDSv6ChZSG5CIN686T1+F43JUeZpl3X
Ilrbk2cX2xDjjNESkUeKlaVHoQP4Sy4hxZBisH8no9sVfzh/bH9OBcUDtC3fRV91
LB3xX6a19hc5Qen4ZcIeWBHKfI7itbqSD2e3j+uZ1DH7cntamF+SlMcE6jD2uxo=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            be:92:83:18:f3:55:8a:78:a3:67:59:1c:69:24:09:3f
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = LT, O = Skaitmeninio sertifikavimo centras, OU = Certification Authority, CN = SSC Root CA B
#        Validity
#            Not Before: Dec 27 12:22:50 2006 GMT
#            Not After : Dec 25 12:08:26 2026 GMT
#        Subject: C = LT, O = Skaitmeninio sertifikavimo centras, OU = Certification Authority, CN = SSC Root CA B
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c1:f3:55:f5:47:51:4e:55:17:65:8d:b0:b2:41:
#                    28:a1:4a:d1:9f:4b:f6:73:ff:3e:d2:c9:4d:59:3f:
#                    e4:b7:c7:9f:06:5d:d8:3c:a3:88:84:e0:73:5d:fd:
#                    05:ea:c7:8e:d7:a4:04:6a:eb:9f:bd:43:fd:14:92:
#                    46:b8:c5:ba:aa:ed:60:ec:ec:ca:90:8d:0a:72:a9:
#                    41:9b:d4:9d:bc:b0:6c:a2:11:1f:64:cb:e7:1d:d4:
#                    45:67:0e:09:6b:e5:78:ec:f1:3f:04:54:f3:9a:99:
#                    c7:59:d1:d2:79:a7:a4:1a:b0:7c:49:fc:1c:87:54:
#                    5e:78:06:d5:dd:1d:cc:85:a0:42:78:d5:d0:b0:8a:
#                    ea:e8:f1:a1:9e:56:ef:d3:c1:7d:87:ac:e7:da:68:
#                    4f:19:d6:6f:e0:93:ad:49:5c:73:14:c1:46:6a:9d:
#                    f7:58:40:d9:57:58:4e:6c:37:f4:72:23:04:f8:db:
#                    4a:b0:de:f1:41:96:12:40:a1:15:8b:67:b8:5e:78:
#                    56:cb:7f:e4:be:c0:49:68:91:b8:47:08:93:81:c1:
#                    b5:1b:31:06:d3:80:7b:d1:45:a1:cf:0c:3d:61:f3:
#                    92:f8:f1:b0:15:0e:f8:2e:30:5b:00:a3:49:f7:6d:
#                    fe:ee:dc:bf:88:cf:f0:7d:57:3e:af:c0:d1:8a:eb:
#                    7c:d2:6d:31:55:fa:84:8d:73:6a:da:70:80:c4:f4:
#                    c2:cf:90:8e:30:9a:e1:c6:35:72:01:08:e6:3f:e6:
#                    66:00:a3:f2:f8:92:1d:bc:52:ec:8f:f6:dc:f7:0a:
#                    ef:bc:10:87:f9:84:18:8c:5e:1f:03:b8:ff:35:2f:
#                    01:6a:e5:f0:5b:62:7c:e3:b3:7f:33:aa:94:d7:4e:
#                    51:81:b5:e8:57:78:8f:22:96:a9:0c:89:54:3e:b6:
#                    ee:d9:73:5f:64:f4:44:e1:f1:6a:18:ff:52:96:c4:
#                    1c:bf:89:97:a4:c3:a7:ca:7e:18:6e:16:dc:13:8c:
#                    bb:d5:b5:25:09:86:af:f6:2f:45:94:2a:30:c1:14:
#                    94:35:f6:5d:ca:25:95:9c:b1:58:89:b8:b5:60:85:
#                    c9:c6:be:14:19:a3:3e:f9:56:85:ab:ca:6c:d6:99:
#                    79:a2:4a:14:6f:c3:3a:d8:e7:66:51:0a:e9:1c:fe:
#                    cc:69:e6:34:6c:f4:81:db:7d:a2:11:f8:4c:c4:87:
#                    05:16:3d:eb:97:74:3f:6e:ec:9c:b9:b6:27:8c:24:
#                    df:2d:b3:af:dd:13:61:76:8f:ff:f2:4c:e0:08:19:
#                    30:32:24:32:5c:36:80:17:ee:86:c9:df:2f:51:e2:
#                    56:ae:83:92:f0:b3:bd:d8:87:3a:2c:9e:c4:dc:69:
#                    99:f9:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22501.1.2.0
#                  CPS: http://www.ssc.lt/cps
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.ssc.lt/root-b/cacrl.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9C:03:F0:A8:D2:98:72:68:AE:F2:ED:E0:4F:E2:85:0E:B2:25:4E:CF
#    Signature Algorithm: sha1WithRSAEncryption
#         ac:5c:bc:2f:fc:ae:01:24:a6:10:3e:ac:a8:e1:a7:27:99:8d:
#         ca:88:c1:1d:3d:91:f6:a2:7e:a5:f1:98:41:ff:aa:61:f8:09:
#         be:cd:1a:25:61:74:b4:c3:af:42:5a:09:0f:91:01:be:48:95:
#         f4:ca:77:5e:0b:83:ce:84:9d:cf:40:fd:80:2c:bd:e3:66:35:
#         0a:b8:b1:fa:60:da:e5:d8:54:b5:4b:97:ba:a2:1a:c3:20:69:
#         8d:b4:46:73:5c:aa:bf:bd:7b:ff:1a:30:34:58:40:f9:2b:60:
#         0b:79:44:f9:f7:a2:96:0b:6b:52:7b:f0:2b:4b:3b:d2:8b:a0:
#         6b:93:3d:c9:57:63:8a:6b:cc:50:13:8f:77:a8:51:be:1a:4c:
#         2d:4c:5d:0c:90:5b:8e:f3:ef:50:20:6d:81:e6:51:49:ab:c4:
#         e7:d7:5d:08:2b:51:fc:3d:46:12:e7:d1:a5:76:c5:53:24:05:
#         c9:aa:d3:8e:58:c5:f3:8a:74:92:32:ed:f0:2f:dd:ab:ad:e9:
#         d2:35:8f:74:23:e3:99:00:e2:8b:30:e4:c3:42:ae:f0:bb:e9:
#         e2:08:1b:4a:70:2d:7d:f8:d2:9a:27:91:42:70:75:7a:08:7e:
#         be:2f:1c:7f:37:3d:a8:8b:dc:46:72:f5:e8:6f:36:68:fa:6e:
#         8d:20:9d:d4:f5:07:71:bf:bd:27:42:b9:73:28:d6:ec:49:b4:
#         05:85:4f:68:48:f6:ab:94:df:0e:a3:46:14:60:c2:31:20:3b:
#         eb:2e:5b:de:d5:a1:2c:6d:e5:52:fa:81:5f:97:88:c9:63:bd:
#         01:ec:e3:cd:6b:0a:35:c2:c9:38:e3:0e:f3:58:1b:7d:da:90:
#         6d:b7:f5:c8:58:56:9d:ae:01:df:91:9d:ad:55:82:03:0c:11:
#         74:04:91:86:c7:7c:93:8c:f3:27:fb:c5:24:57:6e:8b:d9:1b:
#         98:9d:88:31:f0:af:77:b8:0d:b4:cc:cf:f6:0a:6f:12:9b:ec:
#         09:2b:53:89:ec:44:e0:a1:69:8b:a8:74:86:74:18:52:e0:d2:
#         bf:a0:a1:65:21:b9:08:83:7a:f3:a4:f5:f8:5e:37:25:47:99:
#         a6:5d:d7:22:5a:db:93:67:17:db:10:e3:8c:d1:12:91:47:8a:
#         95:a5:47:a1:03:f8:4b:2e:21:c5:90:62:b0:7f:27:a3:db:15:
#         7f:38:7f:6c:7f:4e:05:c5:03:b4:2d:df:45:5f:75:2c:1d:f1:
#         5f:a6:b5:f6:17:39:41:e9:f8:65:c2:1e:58:11:ca:7c:8e:e2:
#         b5:ba:92:0f:67:b7:8f:eb:99:d4:31:fb:72:7b:5a:98:5f:92:
#         94:c7:04:ea:30:f6:bb:1a

[p11-kit-object-v1]
label: "SSC Root CA C"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC Root CA C"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            34:b9:12:9f:ac:c7:92:55:42:5c:de:57:ff:e3:c0:05
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = LT, O = Skaitmeninio sertifikavimo centras, OU = Certification Authority, CN = SSC Root CA C
#        Validity
#            Not Before: Dec 27 12:26:30 2006 GMT
#            Not After : Dec 22 12:11:30 2026 GMT
#        Subject: C = LT, O = Skaitmeninio sertifikavimo centras, OU = Certification Authority, CN = SSC Root CA C
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a1:45:22:fa:8c:cc:a9:6f:04:b3:f4:68:32:16:
#                    69:11:4f:79:df:43:bd:51:60:70:1a:98:dd:78:78:
#                    96:98:62:f7:70:4b:81:a8:e0:1d:04:89:f4:8f:eb:
#                    6e:e9:f0:ff:81:d8:2e:7d:af:17:20:f1:22:ef:f0:
#                    3f:45:47:40:b4:cb:b2:b8:20:3f:3e:4a:68:50:ff:
#                    9a:06:d7:97:c5:b7:8a:16:2e:71:d2:47:73:5d:18:
#                    65:2f:ef:39:33:e8:b6:55:af:26:ad:02:80:e9:63:
#                    d7:21:70:07:3e:cc:be:5f:89:c0:f8:ce:1d:25:6e:
#                    c3:fc:7f:56:39:61:d1:8e:c2:26:7a:e7:78:02:0a:
#                    59:dd:55:23:b0:f8:35:a7:e2:ab:f3:ab:2f:d7:b5:
#                    8b:0a:2a:72:54:2b:6d:79:bc:f2:d9:e9:43:f9:cf:
#                    f1:8e:66:12:f7:97:59:2a:d9:d7:94:dc:f8:94:b3:
#                    45:a3:af:16:2d:b3:80:ca:3d:ce:e8:a6:c7:0a:94:
#                    74:fc:37:9a:e9:3f:0c:37:16:20:43:c9:47:70:bb:
#                    8c:85:fc:98:89:29:cb:87:19:7e:19:53:10:89:80:
#                    75:ae:13:f1:bf:a4:5d:30:05:29:7c:a8:f7:b6:5e:
#                    07:30:15:88:ae:4d:15:a0:ca:cd:d7:ff:ab:a3:06:
#                    57:0f:a7:e3:89:69:1c:d6:1a:d1:d4:27:df:96:c6:
#                    38:5c:af:77:fe:15:ab:44:41:7d:d3:98:bb:a8:20:
#                    18:af:8b:6d:d4:5a:c2:d8:96:8d:48:f5:07:31:7e:
#                    61:f4:61:9b:52:81:40:8e:4a:27:04:b2:07:d3:02:
#                    10:94:f3:fb:dd:b1:7b:70:b8:b4:c8:81:f5:00:07:
#                    a6:8d:88:05:4d:c4:8f:96:ce:d4:b6:c0:c1:66:8c:
#                    2a:ac:68:4a:c9:46:dc:0d:e6:2e:a8:79:28:7d:77:
#                    43:70:16:7e:1c:1a:3a:a6:79:4f:13:40:89:b1:32:
#                    bb:09:46:11:0d:74:bc:27:e5:d8:ed:2d:fa:50:29:
#                    dc:25:ca:97:10:e7:a9:a2:61:2e:3a:89:a6:44:61:
#                    be:4f:5e:92:09:ed:dc:2e:a6:ef:53:bb:61:25:d8:
#                    27:a5:14:46:29:85:26:00:d8:f9:f9:05:d5:7b:16:
#                    31:42:43:05:17:91:9c:4a:60:40:24:6d:b5:6d:7a:
#                    79:fb:9c:9a:63:c3:98:69:e5:77:62:23:2a:51:89:
#                    0f:6c:b2:fd:c3:ca:d8:f4:1a:43:94:d0:7d:0b:e1:
#                    58:3e:1a:c8:74:84:9b:f7:ac:82:ae:51:45:92:d2:
#                    06:59:e1:b3:c1:de:a5:1f:93:22:79:d8:cd:c4:79:
#                    60:23:95
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22501.1.2.0
#                  CPS: http://www.ssc.lt/cps
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.ssc.lt/root-c/cacrl.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                88:07:73:F6:F1:BC:52:1A:5A:1D:3D:91:62:ED:5D:AC:9D:0B:E5:B7
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:90:71:50:98:d5:d9:34:d2:96:84:18:c2:ac:46:02:20:1c:
#         cb:39:b1:b7:af:05:a4:d7:58:f3:91:51:7d:8e:81:27:9c:e8:
#         92:b1:e7:1c:9f:3a:8b:10:52:73:4c:c2:c7:42:1d:d0:eb:de:
#         2a:ca:22:51:7d:8c:74:7a:1a:fc:bc:a4:f3:73:c8:66:23:c4:
#         2e:43:10:47:e0:8a:69:57:ee:2f:f2:00:52:b0:30:92:aa:d6:
#         d4:15:c5:57:cb:60:7a:f4:0e:8d:fe:1e:09:63:74:8f:e0:fe:
#         be:50:d9:01:39:56:ba:50:4c:f6:e3:45:9a:bb:52:76:de:7e:
#         9d:fb:8d:c2:54:31:3e:c7:b1:3c:3e:df:e3:4f:fd:dd:9b:24:
#         69:7c:ed:e8:71:b6:42:06:c7:1f:c5:5f:fb:20:75:db:c1:fd:
#         e9:6c:a2:2a:90:d4:86:fd:cd:0d:ff:e0:05:8a:58:61:3d:9f:
#         c4:99:2f:ed:db:7c:c4:0d:98:98:55:9c:74:a2:17:5e:db:aa:
#         11:e4:37:0c:24:ff:20:67:d1:25:db:9a:89:a0:65:88:31:91:
#         04:71:5f:20:94:58:33:36:1d:32:de:6f:d7:67:08:a9:a0:3b:
#         fd:db:a4:50:25:96:1e:a9:5f:89:17:a5:97:99:51:95:69:db:
#         c4:f1:8f:f4:6f:30:2b:59:f3:ac:75:87:33:7d:06:dd:e1:c1:
#         6b:d6:c4:c9:5e:70:44:7a:6a:c7:9c:77:3b:16:fe:fe:75:be:
#         9f:2c:d1:c0:03:ee:11:79:75:ec:a9:5b:1c:7a:85:b5:28:50:
#         20:a9:1a:1d:e6:7b:8c:33:18:ff:c1:ed:c8:76:65:1f:1d:f0:
#         4c:3b:a7:db:ea:cd:56:d8:94:57:3f:e0:48:a9:7f:8c:33:4b:
#         bd:f4:0c:65:14:80:82:f4:35:77:d8:04:10:70:ce:0f:6c:c1:
#         59:cb:99:ad:81:ee:de:3d:48:d0:7a:88:2f:40:93:d7:9c:ba:
#         79:84:18:80:75:df:d0:5a:df:51:77:3e:58:89:69:75:47:31:
#         e4:6a:16:70:54:04:ec:bd:5c:79:53:63:d2:e2:5e:bd:4d:25:
#         da:11:b6:0f:aa:e9:2c:ae:f5:d1:a9:8d:02:56:cb:fc:b0:24:
#         ea:8c:ba:70:ff:32:d0:b7:c6:04:2a:63:d5:ca:46:91:d5:99:
#         72:09:07:5e:28:03:ab:12:1c:25:b3:6c:3a:59:65:b4:74:6d:
#         2d:2d:19:72:6f:fd:e7:98:11:87:1e:73:23:bf:35:f1:9b:b6:
#         c3:d9:cc:3b:50:7c:72:e8:cf:5e:c0:98:cc:2e:03:fd:1f:2f:
#         ca:74:5c:b1:1c:d1:ec:69

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority ECC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEqhJHkJgb++/DQAeDIE7xMIKiBtHykoZh
8vYhaMoAxMfqQwBUhtz9H98AuEFiXNxwFjLeH5nUzMUHyAgfYRYHUT19XAdT4zU4
jN/Nn9kuDUq2GS5acFoG7b7wobDK0Akp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority ECC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3182246526754555285 (0x2c299c5b16ed0595)
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com EV Root Certification Authority ECC
#        Validity
#            Not Before: Feb 12 18:15:23 2016 GMT
#            Not After : Feb 12 18:15:23 2041 GMT
#        Subject: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com EV Root Certification Authority ECC
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:aa:12:47:90:98:1b:fb:ef:c3:40:07:83:20:4e:
#                    f1:30:82:a2:06:d1:f2:92:86:61:f2:f6:21:68:ca:
#                    00:c4:c7:ea:43:00:54:86:dc:fd:1f:df:00:b8:41:
#                    62:5c:dc:70:16:32:de:1f:99:d4:cc:c5:07:c8:08:
#                    1f:61:16:07:51:3d:7d:5c:07:53:e3:35:38:8c:df:
#                    cd:9f:d9:2e:0d:4a:b6:19:2e:5a:70:5a:06:ed:be:
#                    f0:a1:b0:ca:d0:09:29
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                5B:CA:5E:E5:DE:D2:81:AA:CD:A8:2D:64:51:B6:D9:72:9B:97:E6:4F
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:5B:CA:5E:E5:DE:D2:81:AA:CD:A8:2D:64:51:B6:D9:72:9B:97:E6:4F
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA256
#         30:65:02:31:00:8a:e6:40:89:37:eb:e9:d5:13:d9:ca:d4:6b:
#         24:f3:b0:3d:87:46:58:1a:ec:b1:df:6f:fb:56:ba:70:6b:c7:
#         38:cc:e8:b1:8c:4f:0f:f7:f1:67:76:0e:83:d0:1e:51:8f:02:
#         30:3d:f6:23:28:26:4c:c6:60:87:93:26:9b:b2:35:1e:ba:d6:
#         f7:3c:d1:1c:ce:fa:25:3c:a6:1a:81:15:5b:f3:12:0f:6c:ee:
#         65:8a:c9:87:a8:f9:07:e0:62:9a:8c:5c:4a

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2120089227476220317 (0x1d6c11eb6fda399d)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com EV Root Certification Authority RSA
#        Validity
#            Not Before: Feb 12 17:50:48 2016 GMT
#            Not After : Feb 12 17:50:48 2041 GMT
#        Subject: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com EV Root Certification Authority RSA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c6:37:7c:13:6f:cf:0f:d9:50:cf:e6:d7:aa:68:
#                    2f:5c:51:d4:bf:cd:4c:a6:d5:37:31:40:10:34:41:
#                    7a:fd:cb:94:8d:62:7f:b8:90:cd:ce:69:96:3a:c4:
#                    ff:d9:d7:63:e6:d0:84:25:80:11:bf:d1:ed:30:e8:
#                    84:06:e1:a0:97:b8:55:90:1d:ad:f3:a4:9a:1b:4e:
#                    9c:11:f7:f5:d9:d6:8f:60:2a:3e:37:f8:75:ec:80:
#                    a3:55:a0:f4:27:41:c2:aa:39:e4:52:df:10:f9:f5:
#                    65:39:3f:8c:9d:cc:7b:27:cf:06:14:77:4e:3d:52:
#                    e7:84:81:31:6c:12:32:ac:84:5a:17:6a:c4:c1:5c:
#                    80:31:c2:da:47:7b:76:0f:42:e8:e7:22:14:d3:8d:
#                    c4:5b:8f:8b:65:58:29:2c:8f:0e:8e:49:d4:d4:d8:
#                    0a:5a:d3:26:d3:09:8e:d8:43:b2:94:4f:d2:c0:1c:
#                    dd:74:62:11:69:bc:54:22:e8:3a:1e:d0:55:56:45:
#                    8f:70:70:8d:2f:ef:c2:5d:bd:5e:54:dd:2e:7b:e9:
#                    18:8b:8a:49:d9:4f:8d:10:f3:a5:57:e1:6b:ab:18:
#                    4b:8e:ae:2e:f1:f2:ba:f5:5d:41:f7:39:d8:a3:c2:
#                    5d:de:9f:5a:b1:2f:44:93:3e:3f:f1:22:39:94:40:
#                    6d:27:c6:cc:0d:78:0c:0b:bd:2a:56:26:ad:29:57:
#                    b8:71:e4:7f:eb:13:b2:c8:7d:f5:6b:5d:f3:f2:00:
#                    30:33:fa:5b:cb:12:6a:7a:41:6f:6f:09:4c:b7:69:
#                    0d:0f:79:23:23:1a:66:8d:59:36:63:96:80:7b:18:
#                    22:6b:1e:22:18:2d:e4:a5:75:0a:10:59:fb:a3:7e:
#                    26:10:53:c6:c8:19:2e:1e:27:18:fb:30:05:3d:91:
#                    04:7a:ae:70:c6:cc:0f:a0:34:d3:24:16:18:01:05:
#                    67:69:e5:45:d1:56:a8:9b:bf:af:fa:ac:55:08:0c:
#                    02:7e:4b:77:ac:37:c1:d8:ed:99:34:a0:41:b3:35:
#                    3a:eb:31:34:c9:3b:df:c4:3d:29:45:35:54:b8:7f:
#                    96:cf:08:0f:e9:b1:9e:55:ca:67:84:a0:27:60:ab:
#                    fa:50:31:39:d5:7b:ca:b6:9a:ed:91:8c:78:1e:f9:
#                    ee:e0:e2:59:41:d4:1f:42:80:79:f5:f4:83:50:08:
#                    ad:f3:47:41:5f:50:a3:9f:89:f3:b4:27:2a:54:b9:
#                    1a:59:6b:09:9c:51:c0:28:6b:5b:b8:28:d2:6f:35:
#                    7e:d5:93:03:6e:74:25:65:ea:16:05:91:01:f1:07:
#                    63:4f:ab:84:c5:72:d9:cd:68:9b:4d:2c:7e:04:38:
#                    f0:ea:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D9:5A:2A:FF:A5:CE:9D:A1:91:7D:FF:87:5D:AB:6A:35:12:D9:C9:4C
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:D9:5A:2A:FF:A5:CE:9D:A1:91:7D:FF:87:5D:AB:6A:35:12:D9:C9:4C
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         bc:8c:cf:23:fa:bd:33:57:96:1f:d0:82:f0:12:ae:34:44:ea:
#         f1:bc:21:d7:f5:89:c6:34:1e:78:a6:e2:51:df:dd:78:80:d5:
#         ea:6d:c6:aa:6f:09:02:8c:a7:e6:cb:c8:89:5a:94:7a:4a:b3:
#         56:ef:dd:dd:53:32:63:f0:69:ef:dd:40:b9:90:a2:2e:03:77:
#         96:b5:29:00:52:ee:fb:0e:a7:94:68:c5:3c:03:2d:e9:6b:aa:
#         9d:ee:a7:d8:67:92:e2:11:5a:38:df:98:66:a3:a0:8e:cb:0c:
#         42:36:4c:c5:56:5b:9f:75:f0:40:d1:e8:3b:2a:08:9b:52:c3:
#         1c:5f:90:34:57:fb:c6:f9:1d:71:fc:25:7c:cf:7a:7d:1e:69:
#         c6:bb:f4:14:fe:1d:1d:e7:97:a2:86:9b:f2:df:57:92:06:52:
#         64:93:29:59:0a:2f:a1:17:dc:bb:ee:ad:3b:b3:00:65:38:d9:
#         a8:9c:81:ad:cd:35:9c:8b:e9:e2:f4:84:8f:0e:cf:8d:71:6d:
#         00:80:39:6f:b3:04:35:a0:38:61:a9:f2:2f:f4:35:8d:d8:df:
#         de:a4:69:30:fa:a0:26:7c:5a:22:79:f0:68:fe:cb:cd:bc:ef:
#         95:8c:27:e5:84:f9:fd:84:42:c6:ba:fd:b9:c9:c6:5a:71:30:
#         76:36:02:1f:d0:7c:a9:13:0e:e1:20:d9:52:0c:ac:1e:88:77:
#         a0:29:86:3a:88:66:53:af:c3:a5:c9:db:54:b1:a4:e8:ee:4c:
#         6e:3f:b9:7b:30:a3:42:e8:02:a6:bd:84:6d:2a:7c:fd:f4:ed:
#         45:b7:30:fa:6c:5c:23:56:5a:3c:61:2a:c7:9b:e6:c5:f2:44:
#         b7:07:bf:76:9d:42:e4:5c:f0:ee:b9:3e:10:f3:cf:52:d2:cd:
#         ce:52:18:7f:60:f6:2e:95:4c:35:00:4c:46:d6:10:ec:34:cb:
#         58:7b:6a:0d:e4:63:55:cc:58:d9:4f:63:67:31:c2:52:a1:79:
#         0f:2a:cf:c9:4e:cc:12:cb:8d:1a:5a:aa:46:31:13:3b:0d:e9:
#         57:68:5a:0b:84:04:36:2f:9f:11:bc:3c:7a:ad:5a:bf:46:e3:
#         b7:20:89:1d:dc:07:7c:dc:7a:eb:e9:76:c9:00:0d:70:b7:9f:
#         97:1a:62:ef:18:e6:64:be:08:a7:a4:99:bb:7f:8c:68:9a:98:
#         c9:86:62:f6:a1:98:36:39:a3:f3:96:57:a4:02:63:f9:55:3e:
#         b0:8c:9f:bf:a9:7a:4b:3c:d9:b9:ae:0f:8a:f4:ba:1c:25:ab:
#         55:59:a1:56:c2:33:b9:3a:c4:40:cf:8b:1a:f7:03:0e:bd:1b:
#         60:63:7d:25:d4:a9:be:e5

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA R2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA R2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 6248227494352943350 (0x56b629cd34bc78f6)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com EV Root Certification Authority RSA R2
#        Validity
#            Not Before: May 31 18:14:37 2017 GMT
#            Not After : May 30 18:14:37 2042 GMT
#        Subject: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com EV Root Certification Authority RSA R2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:8f:36:65:40:e1:d6:4d:c0:d7:b4:e9:46:da:6b:
#                    ea:33:47:cd:4c:f9:7d:7d:be:bd:2d:3d:f0:db:78:
#                    e1:86:a5:d9:ba:09:57:68:ed:57:3e:a0:d0:08:41:
#                    83:e7:28:41:24:1f:e3:72:15:d0:01:1a:fb:5e:70:
#                    23:b2:cb:9f:39:e3:cf:c5:4e:c6:92:6d:26:c6:7b:
#                    bb:b3:da:27:9d:0a:86:e9:81:37:05:fe:f0:71:71:
#                    ec:c3:1c:e9:63:a2:17:14:9d:ef:1b:67:d3:85:55:
#                    02:02:d6:49:c9:cc:5a:e1:b1:f7:6f:32:9f:c9:d4:
#                    3b:88:41:a8:9c:bd:cb:ab:db:6d:7b:09:1f:a2:4c:
#                    72:90:da:2b:08:fc:cf:3c:54:ce:67:0f:a8:cf:5d:
#                    96:19:0b:c4:e3:72:eb:ad:d1:7d:1d:27:ef:92:eb:
#                    10:bf:5b:eb:3b:af:cf:80:dd:c1:d2:96:04:5b:7a:
#                    7e:a4:a9:3c:38:76:a4:62:8e:a0:39:5e:ea:77:cf:
#                    5d:00:59:8f:66:2c:3e:07:a2:a3:05:26:11:69:97:
#                    ea:85:b7:0f:96:0b:4b:c8:40:e1:50:ba:2e:8a:cb:
#                    f7:0f:9a:22:e7:7f:9a:37:13:cd:f2:4d:13:6b:21:
#                    d1:c0:cc:22:f2:a1:46:f6:44:69:9c:ca:61:35:07:
#                    00:6f:d6:61:08:11:ea:ba:b8:f6:e9:b3:60:e5:4d:
#                    b9:ec:9f:14:66:c9:57:58:db:cd:87:69:f8:8a:86:
#                    12:03:47:bf:66:13:76:ac:77:7d:34:24:85:83:cd:
#                    d7:aa:9c:90:1a:9f:21:2c:7f:78:b7:64:b8:d8:e8:
#                    a6:f4:78:b3:55:cb:84:d2:32:c4:78:ae:a3:8f:61:
#                    dd:ce:08:53:ad:ec:88:fc:15:e4:9a:0d:e6:9f:1a:
#                    77:ce:4c:8f:b8:14:15:3d:62:9c:86:38:06:00:66:
#                    12:e4:59:76:5a:53:c0:02:98:a2:10:2b:68:44:7b:
#                    8e:79:ce:33:4a:76:aa:5b:81:16:1b:b5:8a:d8:d0:
#                    00:7b:5e:62:b4:09:d6:86:63:0e:a6:05:95:49:ba:
#                    28:8b:88:93:b2:34:1c:d8:a4:55:6e:b7:1c:d0:de:
#                    99:55:3b:23:f4:22:e0:f9:29:66:26:ec:20:50:77:
#                    db:4a:0b:8f:be:e5:02:60:70:41:5e:d4:ae:50:39:
#                    22:14:26:cb:b2:3b:73:74:55:47:07:79:81:39:a8:
#                    30:13:44:e5:04:8a:ae:96:13:25:42:0f:b9:53:c4:
#                    9b:fc:cd:e4:1c:de:3c:fa:ab:d6:06:4a:1f:67:a6:
#                    98:30:1c:dd:2c:db:dc:18:95:57:66:c6:ff:5c:8b:
#                    56:f5:77
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:F9:60:BB:D4:E3:D5:34:F6:B8:F5:06:80:25:A7:73:DB:46:69:A8:9E
#
#            X509v3 Subject Key Identifier: 
#                F9:60:BB:D4:E3:D5:34:F6:B8:F5:06:80:25:A7:73:DB:46:69:A8:9E
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         56:b3:8e:cb:0a:9d:49:8e:bf:a4:c4:91:bb:66:17:05:51:98:
#         75:fb:e5:50:2c:7a:9e:f1:14:fa:ab:d3:8a:3e:ff:91:29:8f:
#         63:8b:d8:b4:a9:54:01:0d:be:93:86:2f:f9:4a:6d:c7:5e:f5:
#         57:f9:ca:55:1c:12:be:47:0f:36:c5:df:6a:b7:db:75:c2:47:
#         25:7f:b9:f1:63:f8:68:2d:55:04:d1:f2:8d:b0:a4:cf:bc:3c:
#         5e:1f:78:e7:a5:a0:20:70:b0:04:c5:b7:f7:72:a7:de:22:0d:
#         bd:33:25:46:8c:64:92:26:e3:3e:2e:63:96:da:9b:8c:3d:f8:
#         18:09:d7:03:cc:7d:86:82:e0:ca:04:07:51:50:d7:ff:92:d5:
#         0c:ef:da:86:9f:99:d7:eb:b7:af:68:e2:39:26:94:ba:68:b7:
#         bf:83:d3:ea:7a:67:3d:62:67:ae:25:e5:72:e8:e2:e4:ec:ae:
#         12:f6:4b:2b:3c:9f:e9:b0:40:f3:38:54:b3:fd:b7:68:c8:da:
#         c6:8f:51:3c:b2:fb:91:dc:1c:e7:9b:9d:e1:b7:0d:72:8f:e2:
#         a4:c4:a9:78:f9:eb:14:ac:c6:43:05:c2:65:39:28:18:02:c3:
#         82:b2:9d:05:be:65:ed:96:5f:65:74:3c:fb:09:35:2e:7b:9c:
#         13:fd:1b:0f:5d:c7:6d:81:3a:56:0f:cc:3b:e1:af:02:2f:22:
#         ac:46:ca:46:3c:a0:1c:4c:d6:44:b4:5e:2e:5c:15:66:09:e1:
#         26:29:fe:c6:52:61:ba:b1:73:ff:c3:0c:9c:e5:6c:6a:94:3f:
#         14:ca:40:16:95:84:f3:59:a9:ac:5f:4c:61:93:6d:d1:3b:cc:
#         a2:95:0c:22:a6:67:67:44:2e:b9:d9:d2:8a:41:b3:66:0b:5a:
#         fb:7d:23:a5:f2:1a:b0:ff:de:9b:83:94:2e:d1:3f:df:92:b7:
#         91:af:05:3b:65:c7:a0:6c:b1:cd:62:12:c3:90:1b:e3:25:ce:
#         34:bc:6f:77:76:b1:10:c3:f7:05:1a:c0:d6:af:74:62:48:17:
#         77:92:69:90:61:1c:de:95:80:74:54:8f:18:1c:c3:f3:03:d0:
#         bf:a4:43:75:86:53:18:7a:0a:2e:09:1c:36:9f:91:fd:82:8a:
#         22:4b:d1:0e:50:25:dd:cb:03:0c:17:c9:83:00:08:4e:35:4d:
#         8a:8b:ed:f0:02:94:66:2c:44:7f:cb:95:27:96:17:ad:09:30:
#         ac:b6:71:17:6e:8b:17:f6:1c:09:d4:2d:3b:98:a5:71:d3:54:
#         13:d9:60:f3:f5:4b:66:4f:fa:f1:ee:20:12:8d:b4:ac:57:b1:
#         45:63:a1:ac:76:a9:c2:fb

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority ECC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAERW6pUMSmIzaeXyiNF8uWImQ/3HqOHcwI
s6JxJLqOSbkEG0eWWKstlcjtngg1yCfriYxTWOtiiv7wWw9rMVJjQTuJzezsto0Z
0zQH3LvGBn/CRZXsy3+oI+AJ6YH680fT
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority ECC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8495723813297216424 (0x75e6dfcbc1685ba8)
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com Root Certification Authority ECC
#        Validity
#            Not Before: Feb 12 18:14:03 2016 GMT
#            Not After : Feb 12 18:14:03 2041 GMT
#        Subject: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com Root Certification Authority ECC
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:45:6e:a9:50:c4:a6:23:36:9e:5f:28:8d:17:cb:
#                    96:22:64:3f:dc:7a:8e:1d:cc:08:b3:a2:71:24:ba:
#                    8e:49:b9:04:1b:47:96:58:ab:2d:95:c8:ed:9e:08:
#                    35:c8:27:eb:89:8c:53:58:eb:62:8a:fe:f0:5b:0f:
#                    6b:31:52:63:41:3b:89:cd:ec:ec:b6:8d:19:d3:34:
#                    07:dc:bb:c6:06:7f:c2:45:95:ec:cb:7f:a8:23:e0:
#                    09:e9:81:fa:f3:47:d3
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                82:D1:85:73:30:E7:35:04:D3:8E:02:92:FB:E5:A4:D1:C4:21:E8:CD
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:82:D1:85:73:30:E7:35:04:D3:8E:02:92:FB:E5:A4:D1:C4:21:E8:CD
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA256
#         30:64:02:30:6f:e7:eb:59:11:a4:60:cf:61:b0:96:7b:ed:05:
#         f9:2f:13:91:dc:ed:e5:fc:50:6b:11:46:46:b3:1c:21:00:62:
#         bb:be:c3:e7:e8:cd:07:99:f9:0d:0b:5d:72:3e:c4:aa:02:30:
#         1f:bc:ba:0b:e2:30:24:fb:7c:6d:80:55:0a:99:3e:80:0d:33:
#         e5:66:a3:b3:a3:bb:a5:d5:8b:8f:09:2c:a6:5d:7e:e2:f0:07:
#         08:68:6d:d2:7c:69:6e:5f:df:e5:6a:65

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority RSA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority RSA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8875640296558310041 (0x7b2c9bd316803299)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com Root Certification Authority RSA
#        Validity
#            Not Before: Feb 12 17:39:39 2016 GMT
#            Not After : Feb 12 17:39:39 2041 GMT
#        Subject: C = US, ST = Texas, L = Houston, O = SSL Corporation, CN = SSL.com Root Certification Authority RSA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:f9:0f:dd:a3:2b:7d:cb:d0:2a:fe:ec:67:85:a6:
#                    e7:2e:1b:ba:77:e1:e3:f5:af:a4:ec:fa:4a:5d:91:
#                    c4:57:47:6b:18:77:6b:76:f2:fd:93:e4:3d:0f:c2:
#                    16:9e:0b:66:c3:56:94:9e:17:83:85:ce:56:ef:f2:
#                    16:fd:00:62:f5:22:09:54:e8:65:17:4e:41:b9:e0:
#                    4f:46:97:aa:1b:c8:b8:6e:62:5e:69:b1:5f:db:2a:
#                    02:7e:fc:6c:ca:f3:41:d8:ed:d0:e8:fc:3f:61:48:
#                    ed:b0:03:14:1d:10:0e:4b:19:e0:bb:4e:ec:86:65:
#                    ff:36:f3:5e:67:02:0b:9d:86:55:61:fd:7a:38:ed:
#                    fe:e2:19:00:b7:6f:a1:50:62:75:74:3c:a0:fa:c8:
#                    25:92:b4:6e:7a:22:c7:f8:1e:a1:e3:b2:dd:91:31:
#                    ab:2b:1d:04:ff:a5:4a:04:37:e9:85:a4:33:2b:fd:
#                    e2:d6:55:34:7c:19:a4:4a:68:c7:b2:a8:d3:b7:ca:
#                    a1:93:88:eb:c1:97:bc:8c:f9:1d:d9:22:84:24:74:
#                    c7:04:3d:6a:a9:29:93:cc:eb:b8:5b:e1:fe:5f:25:
#                    aa:34:58:c8:c1:23:54:9d:1b:98:11:c3:38:9c:7e:
#                    3d:86:6c:a5:0f:40:86:7c:02:f4:5c:02:4f:28:cb:
#                    ae:71:9f:0f:3a:c8:33:fe:11:25:35:ea:fc:ba:c5:
#                    60:3d:d9:7c:18:d5:b2:a9:d3:75:78:03:72:22:ca:
#                    3a:c3:1f:ef:2c:e5:2e:a9:fa:9e:2c:b6:51:46:fd:
#                    af:03:d6:ea:60:68:ea:85:16:36:6b:85:e9:1e:c0:
#                    b3:dd:c4:24:dc:80:2a:81:41:6d:94:3e:c8:e0:c9:
#                    81:41:00:9e:5e:bf:7f:c5:08:98:a2:18:2c:42:40:
#                    b3:f9:6f:38:27:4b:4e:80:f4:3d:81:47:e0:88:7c:
#                    ea:1c:ce:b5:75:5c:51:2e:1c:2b:7f:1a:72:28:e7:
#                    00:b5:d1:74:c6:d7:e4:9f:ad:07:93:b6:53:35:35:
#                    fc:37:e4:c3:f6:5d:16:be:21:73:de:92:0a:f8:a0:
#                    63:6a:bc:96:92:6a:3e:f8:bc:65:55:9b:de:f5:0d:
#                    89:26:04:fc:25:1a:a6:25:69:cb:c2:6d:ca:7c:e2:
#                    59:5f:97:ac:eb:ef:2e:c8:bc:d7:1b:59:3c:2b:cc:
#                    f2:19:c8:93:6b:27:63:19:cf:fc:e9:26:f8:ca:71:
#                    9b:7f:93:fe:34:67:84:4e:99:eb:fc:b3:78:09:33:
#                    70:ba:66:a6:76:ed:1b:73:eb:1a:a5:0d:c4:22:13:
#                    20:94:56:0a:4e:2c:6c:4e:b1:fd:cf:9c:09:ba:a2:
#                    33:ed:87
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                DD:04:09:07:A2:F5:7A:7D:52:53:12:92:95:EE:38:80:25:0D:A6:59
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:DD:04:09:07:A2:F5:7A:7D:52:53:12:92:95:EE:38:80:25:0D:A6:59
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         20:18:11:94:29:fb:26:9d:1c:1e:1e:70:61:f1:95:72:93:71:
#         24:ad:68:93:58:8e:32:af:1b:b3:70:03:fc:25:2b:74:85:90:
#         3d:78:6a:f4:b9:8b:a5:97:3b:b5:18:91:bb:1e:a7:f9:40:5b:
#         91:f9:55:99:af:1e:11:d0:5c:1d:a7:66:e3:b1:94:07:0c:32:
#         39:a6:ea:1b:b0:79:d8:1d:9c:70:44:e3:8a:dd:c4:f9:95:1f:
#         8a:38:43:3f:01:85:a5:47:a7:3d:46:b2:bc:e5:22:68:f7:7b:
#         9c:d8:2c:3e:0a:21:c8:2d:33:ac:bf:c5:81:99:31:74:c1:75:
#         71:c5:be:b1:f0:23:45:f4:9d:6b:fc:19:63:9d:a3:bc:04:c6:
#         18:0b:25:bb:53:89:0f:b3:80:50:de:45:ee:44:7f:ab:94:78:
#         64:98:d3:f6:28:dd:87:d8:70:65:74:fb:0e:b9:13:eb:a7:0f:
#         61:a9:32:96:cc:de:bb:ed:63:4c:18:bb:a9:40:f7:a0:54:6e:
#         20:88:71:75:18:ea:7a:b4:34:72:e0:23:27:77:5c:b6:90:ea:
#         86:25:40:ab:ef:33:0f:cb:9f:82:be:a2:20:fb:f6:b5:2d:1a:
#         e6:c2:85:b1:74:0f:fb:c8:65:02:a4:52:01:47:dd:49:22:c1:
#         bf:d8:eb:6b:ac:7e:de:ec:63:33:15:b7:23:08:8f:c6:0f:8d:
#         41:5a:dd:8e:c5:b9:8f:e5:45:3f:78:db:ba:d2:1b:40:b1:fe:
#         71:4d:3f:e0:81:a2:ba:5e:b4:ec:15:e0:93:dd:08:1f:7e:e1:
#         55:99:0b:21:de:93:9e:0a:fb:e6:a3:49:bd:36:30:fe:e7:77:
#         b2:a0:75:97:b5:2d:81:88:17:65:20:f7:da:90:00:9f:c9:52:
#         cc:32:ca:35:7c:f5:3d:0f:d8:2b:d7:f5:26:6c:c9:06:34:96:
#         16:ea:70:59:1a:32:79:79:0b:b6:88:7f:0f:52:48:3d:bf:6c:
#         d8:a2:44:2e:d1:4e:b7:72:58:d3:89:13:95:fe:44:ab:f8:d7:
#         8b:1b:6e:9c:bc:2c:a0:5b:d5:6a:00:af:5f:37:e1:d5:fa:10:
#         0b:98:9c:86:e7:26:8f:ce:f0:ec:6e:8a:57:0b:80:e3:4e:b2:
#         c0:a0:63:61:90:ba:55:68:37:74:6a:b6:92:db:9f:a1:86:22:
#         b6:65:27:0e:ec:b6:9f:42:60:e4:67:c2:b5:da:41:0b:c4:d3:
#         8b:61:1b:bc:fa:1f:91:2b:d7:44:07:5e:ba:29:ac:d9:c5:e9:
#         ef:53:48:5a:eb:80:f1:28:58:21:cd:b0:06:55:fb:27:3f:53:
#         90:70:a9:04:1e:57:27:b9

[p11-kit-object-v1]
label: "SZAFIR ROOT CA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt7w+UKhLzUC1zmHnlsq0
odoMIrD6tXt2AHeMC899qIbMJlHkID2FDNZY4+f0Khid2tGuJu7rU9z0kNYTSgyQ
PMP02tKODZI63LGx/zjew7otX4C5Ar1KnRsPtMPCwWcD3dwbnD2zsN4AHqg0R7ua
6/4LFL02hNoNIL/6W8upFiCtOWDuL3W255ec+T79fk1vTS/viA1q+t3xPW4gpaAS
tE1wuc7XcjuJk6eAhBwnSXJJtf87lZ7BzMgB7OgOigqW57Omh+XW+QUrDZdAcDy6
rHVanNVNnQIK0kubZktGBxdlrZ9siADcIong4WTUZ7wxeWE8u8pBzVxqAMg8OI5Y
rwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SZAFIR ROOT CA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3e:8a:5d:07:ec:55:d2:32:d5:b7:e3:b6:5f:01:eb:2d:dc:e4:d6:e4
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = PL, O = Krajowa Izba Rozliczeniowa S.A., CN = SZAFIR ROOT CA2
#        Validity
#            Not Before: Oct 19 07:43:30 2015 GMT
#            Not After : Oct 19 07:43:30 2035 GMT
#        Subject: C = PL, O = Krajowa Izba Rozliczeniowa S.A., CN = SZAFIR ROOT CA2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:bc:3e:50:a8:4b:cd:40:b5:ce:61:e7:96:ca:
#                    b4:a1:da:0c:22:b0:fa:b5:7b:76:00:77:8c:0b:cf:
#                    7d:a8:86:cc:26:51:e4:20:3d:85:0c:d6:58:e3:e7:
#                    f4:2a:18:9d:da:d1:ae:26:ee:eb:53:dc:f4:90:d6:
#                    13:4a:0c:90:3c:c3:f4:da:d2:8e:0d:92:3a:dc:b1:
#                    b1:ff:38:de:c3:ba:2d:5f:80:b9:02:bd:4a:9d:1b:
#                    0f:b4:c3:c2:c1:67:03:dd:dc:1b:9c:3d:b3:b0:de:
#                    00:1e:a8:34:47:bb:9a:eb:fe:0b:14:bd:36:84:da:
#                    0d:20:bf:fa:5b:cb:a9:16:20:ad:39:60:ee:2f:75:
#                    b6:e7:97:9c:f9:3e:fd:7e:4d:6f:4d:2f:ef:88:0d:
#                    6a:fa:dd:f1:3d:6e:20:a5:a0:12:b4:4d:70:b9:ce:
#                    d7:72:3b:89:93:a7:80:84:1c:27:49:72:49:b5:ff:
#                    3b:95:9e:c1:cc:c8:01:ec:e8:0e:8a:0a:96:e7:b3:
#                    a6:87:e5:d6:f9:05:2b:0d:97:40:70:3c:ba:ac:75:
#                    5a:9c:d5:4d:9d:02:0a:d2:4b:9b:66:4b:46:07:17:
#                    65:ad:9f:6c:88:00:dc:22:89:e0:e1:64:d4:67:bc:
#                    31:79:61:3c:bb:ca:41:cd:5c:6a:00:c8:3c:38:8e:
#                    58:af
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                2E:16:A9:4A:18:B5:CB:CC:F5:6F:50:F3:23:5F:F8:5D:E7:AC:F0:C8
#    Signature Algorithm: sha256WithRSAEncryption
#         b5:73:f8:03:dc:59:5b:1d:76:e9:a3:2a:7b:90:28:b2:4d:c0:
#         33:4f:aa:9a:b1:d4:b8:e4:27:ff:a9:96:99:ce:46:e0:6d:7c:
#         4c:a2:38:a4:06:70:f0:f4:41:11:ec:3f:47:8d:3f:72:87:f9:
#         3b:fd:a4:6f:2b:53:00:e0:ff:39:b9:6a:07:0e:eb:1d:1c:f6:
#         a2:72:90:cb:82:3d:11:82:8b:d2:bb:9f:2a:af:21:e6:63:86:
#         9d:79:19:ef:f7:bb:0c:35:90:c3:8a:ed:4f:0f:f5:cc:12:d9:
#         a4:3e:bb:a0:fc:20:95:5f:4f:26:2f:11:23:83:4e:75:07:0f:
#         bf:9b:d1:b4:1d:e9:10:04:fe:ca:60:8f:a2:4c:b8:ad:cf:e1:
#         90:0f:cd:ae:0a:c7:5d:7b:b7:50:d2:d4:61:fa:d5:15:db:d7:
#         9f:87:51:54:eb:a5:e3:eb:c9:85:a0:25:20:37:fb:8e:ce:0c:
#         34:84:e1:3c:81:b2:77:4e:43:a5:88:5f:86:67:a1:3d:e6:b4:
#         5c:61:b6:3e:db:fe:b7:28:c5:a2:07:ae:b5:ca:ca:8d:2a:12:
#         ef:97:ed:c2:30:a4:c9:2a:7a:fb:f3:4d:23:1b:99:33:34:a0:
#         2e:f5:a9:0b:3f:d4:5d:e1:cf:84:9f:e2:19:c2:5f:8a:d6:20:
#         1e:e3:73:b7

[p11-kit-object-v1]
label: "SecureSign RootCA11"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA/XeqpRyQBTvLTJszi1oU
RaTnkBbR31fSIRCkF/3frNYfp+TbfPfs37gD2pRY/V1yfIw/XwFndBWW4wI8h9uu
ywGOwvNmxoVF9ALGOrVisq/6nL+k5tSAMJjzDbaTj6nU2DbysPyKyiyhFTOVMdrA
G/LuYpmGYz+/3ZMqg6h2uRMft85OQoWPIucuGvKVCbIFtUROd6EgvanyTgp9UK31
BQ1FT0Zx/Sg+U/sE2C3XZR1KG/rPO7AxmjVuyIsG0wCR8pQIZUyxNAYAeoni8McD
Wc/V1uinMrPmmECGxc0nEovMe863ETxiYAcjPitAbpSACW22s293bzUIUPsCh8U+
iQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SecureSign RootCA11"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDbTCCAlWgAwIBAgIBATANBgkqhkiG9w0BAQUFADBYMQswCQYDVQQGEwJKUDEr
MCkGA1UEChMiSmFwYW4gQ2VydGlmaWNhdGlvbiBTZXJ2aWNlcywgSW5jLjEcMBoG
A1UEAxMTU2VjdXJlU2lnbiBSb290Q0ExMTAeFw0wOTA0MDgwNDU2NDdaFw0yOTA0
MDgwNDU2NDdaMFgxCzAJBgNVBAYTAkpQMSswKQYDVQQKEyJKYXBhbiBDZXJ0aWZp
Y2F0aW9uIFNlcnZpY2VzLCBJbmMuMRwwGgYDVQQDExNTZWN1cmVTaWduIFJvb3RD
QTExMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA/XeqpRyQBTvLTJsz
i1oURaTnkBbR31fSIRCkF/3frNYfp+TbfPfs37gD2pRY/V1yfIw/XwFndBWW4wI8
h9uuywGOwvNmxoVF9ALGOrVisq/6nL+k5tSAMJjzDbaTj6nU2DbysPyKyiyhFTOV
MdrAG/LuYpmGYz+/3ZMqg6h2uRMft85OQoWPIucuGvKVCbIFtUROd6EgvanyTgp9
UK31BQ1FT0Zx/Sg+U/sE2C3XZR1KG/rPO7AxmjVuyIsG0wCR8pQIZUyxNAYAeoni
8McDWc/V1uinMrPmmECGxc0nEovMe863ETxiYAcjPitAbpSACW22s293bzUIUPsC
h8U+iQIDAQABo0IwQDAdBgNVHQ4EFgQUW/hNT7KlhtQ60vFjmqC+CfZXt94wDgYD
VR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQEFBQADggEB
AKChOBZmLqdWHyGcBvod7bkixTgm2E5P7KN/ed5GIaGHd48HCJqypMWvDzKYC3xm
KbabfSVSSUOrTC4rbnpwrxYO4wJs+0LmGJ1F2FXI6Dvd5+H0LgscNFxsWEr7jIhQ
X5Ucv+2rIrVls4W6ng+4reV6G4pQOh29Dbx7VFALuUKvVaAYga1lme++5Jy/xIWr
QbJUb9wlze144o4MjQlJ3WN7WmmWAiGovVJZ6X01y8hSyn+B/tlr0/cR7SXf+Of5
pPpyl4RTDaXQMhhRdlkUbA/r7F+AjHVDg8OFmP9Mni0N5HeDk061lgeLKBObjBmN
QSdJQO7e5iNEOdyhIta6A/I=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = JP, O = "Japan Certification Services, Inc.", CN = SecureSign RootCA11
#        Validity
#            Not Before: Apr  8 04:56:47 2009 GMT
#            Not After : Apr  8 04:56:47 2029 GMT
#        Subject: C = JP, O = "Japan Certification Services, Inc.", CN = SecureSign RootCA11
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:fd:77:aa:a5:1c:90:05:3b:cb:4c:9b:33:8b:5a:
#                    14:45:a4:e7:90:16:d1:df:57:d2:21:10:a4:17:fd:
#                    df:ac:d6:1f:a7:e4:db:7c:f7:ec:df:b8:03:da:94:
#                    58:fd:5d:72:7c:8c:3f:5f:01:67:74:15:96:e3:02:
#                    3c:87:db:ae:cb:01:8e:c2:f3:66:c6:85:45:f4:02:
#                    c6:3a:b5:62:b2:af:fa:9c:bf:a4:e6:d4:80:30:98:
#                    f3:0d:b6:93:8f:a9:d4:d8:36:f2:b0:fc:8a:ca:2c:
#                    a1:15:33:95:31:da:c0:1b:f2:ee:62:99:86:63:3f:
#                    bf:dd:93:2a:83:a8:76:b9:13:1f:b7:ce:4e:42:85:
#                    8f:22:e7:2e:1a:f2:95:09:b2:05:b5:44:4e:77:a1:
#                    20:bd:a9:f2:4e:0a:7d:50:ad:f5:05:0d:45:4f:46:
#                    71:fd:28:3e:53:fb:04:d8:2d:d7:65:1d:4a:1b:fa:
#                    cf:3b:b0:31:9a:35:6e:c8:8b:06:d3:00:91:f2:94:
#                    08:65:4c:b1:34:06:00:7a:89:e2:f0:c7:03:59:cf:
#                    d5:d6:e8:a7:32:b3:e6:98:40:86:c5:cd:27:12:8b:
#                    cc:7b:ce:b7:11:3c:62:60:07:23:3e:2b:40:6e:94:
#                    80:09:6d:b6:b3:6f:77:6f:35:08:50:fb:02:87:c5:
#                    3e:89
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                5B:F8:4D:4F:B2:A5:86:D4:3A:D2:F1:63:9A:A0:BE:09:F6:57:B7:DE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         a0:a1:38:16:66:2e:a7:56:1f:21:9c:06:fa:1d:ed:b9:22:c5:
#         38:26:d8:4e:4f:ec:a3:7f:79:de:46:21:a1:87:77:8f:07:08:
#         9a:b2:a4:c5:af:0f:32:98:0b:7c:66:29:b6:9b:7d:25:52:49:
#         43:ab:4c:2e:2b:6e:7a:70:af:16:0e:e3:02:6c:fb:42:e6:18:
#         9d:45:d8:55:c8:e8:3b:dd:e7:e1:f4:2e:0b:1c:34:5c:6c:58:
#         4a:fb:8c:88:50:5f:95:1c:bf:ed:ab:22:b5:65:b3:85:ba:9e:
#         0f:b8:ad:e5:7a:1b:8a:50:3a:1d:bd:0d:bc:7b:54:50:0b:b9:
#         42:af:55:a0:18:81:ad:65:99:ef:be:e4:9c:bf:c4:85:ab:41:
#         b2:54:6f:dc:25:cd:ed:78:e2:8e:0c:8d:09:49:dd:63:7b:5a:
#         69:96:02:21:a8:bd:52:59:e9:7d:35:cb:c8:52:ca:7f:81:fe:
#         d9:6b:d3:f7:11:ed:25:df:f8:e7:f9:a4:fa:72:97:84:53:0d:
#         a5:d0:32:18:51:76:59:14:6c:0f:eb:ec:5f:80:8c:75:43:83:
#         c3:85:98:ff:4c:9e:2d:0d:e4:77:83:93:4e:b5:96:07:8b:28:
#         13:9b:8c:19:8d:41:27:49:40:ee:de:e6:23:44:39:dc:a1:22:
#         d6:ba:03:f2

[p11-kit-object-v1]
label: "SecureTrust CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq6SB5ZXN9fYUjsJPytTi
eJVYnEHhDZlAJBc5kTNm6b7hg69iXInR/CRbYbPgERFBHB1u8Li7+N6ngbqmSMaf
Hb2+jqlBPriU7Ska1I7SAx0D720NZxxX1watysj1/g6vZiVIBJYLXaO6FsMIT9FG
+BRc8sheAZlt/YjMhqjBbzFCbFI+aMvzGTTfu4cYVoAmxNDcwG/f3qDCkRagZBFL
RLwe9uf6Y95mrHakcaPsNpRoeneksecOL4F64rVyhu+ia4vwD9vTWT+6crxEJJzj
c7P3r1cvQiadqXS6AFLyS81TfEcLNoUOZqkIlxY0V8Fm94Dj7XBUx5PgLigVWYe6
uwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SecureTrust CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0c:f0:8e:5c:08:16:a5:ad:42:7f:f0:eb:27:18:59:d0
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = SecureTrust Corporation, CN = SecureTrust CA
#        Validity
#            Not Before: Nov  7 19:31:18 2006 GMT
#            Not After : Dec 31 19:40:55 2029 GMT
#        Subject: C = US, O = SecureTrust Corporation, CN = SecureTrust CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ab:a4:81:e5:95:cd:f5:f6:14:8e:c2:4f:ca:d4:
#                    e2:78:95:58:9c:41:e1:0d:99:40:24:17:39:91:33:
#                    66:e9:be:e1:83:af:62:5c:89:d1:fc:24:5b:61:b3:
#                    e0:11:11:41:1c:1d:6e:f0:b8:bb:f8:de:a7:81:ba:
#                    a6:48:c6:9f:1d:bd:be:8e:a9:41:3e:b8:94:ed:29:
#                    1a:d4:8e:d2:03:1d:03:ef:6d:0d:67:1c:57:d7:06:
#                    ad:ca:c8:f5:fe:0e:af:66:25:48:04:96:0b:5d:a3:
#                    ba:16:c3:08:4f:d1:46:f8:14:5c:f2:c8:5e:01:99:
#                    6d:fd:88:cc:86:a8:c1:6f:31:42:6c:52:3e:68:cb:
#                    f3:19:34:df:bb:87:18:56:80:26:c4:d0:dc:c0:6f:
#                    df:de:a0:c2:91:16:a0:64:11:4b:44:bc:1e:f6:e7:
#                    fa:63:de:66:ac:76:a4:71:a3:ec:36:94:68:7a:77:
#                    a4:b1:e7:0e:2f:81:7a:e2:b5:72:86:ef:a2:6b:8b:
#                    f0:0f:db:d3:59:3f:ba:72:bc:44:24:9c:e3:73:b3:
#                    f7:af:57:2f:42:26:9d:a9:74:ba:00:52:f2:4b:cd:
#                    53:7c:47:0b:36:85:0e:66:a9:08:97:16:34:57:c1:
#                    66:f7:80:e3:ed:70:54:c7:93:e0:2e:28:15:59:87:
#                    ba:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            1.3.6.1.4.1.311.20.2: 
#                ...C.A
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                42:32:B6:16:FA:04:FD:FE:5D:4B:7A:C3:FD:F7:4C:40:1D:5A:43:AF
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.securetrust.com/STCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         30:ed:4f:4a:e1:58:3a:52:72:5b:b5:a6:a3:65:18:a6:bb:51:
#         3b:77:e9:9d:ea:d3:9f:5c:e0:45:65:7b:0d:ca:5b:e2:70:50:
#         b2:94:05:14:ae:49:c7:8d:41:07:12:73:94:7e:0c:23:21:fd:
#         bc:10:7f:60:10:5a:72:f5:98:0e:ac:ec:b9:7f:dd:7a:6f:5d:
#         d3:1c:f4:ff:88:05:69:42:a9:05:71:c8:b7:ac:26:e8:2e:b4:
#         8c:6a:ff:71:dc:b8:b1:df:99:bc:7c:21:54:2b:e4:58:a2:bb:
#         57:29:ae:9e:a9:a3:19:26:0f:99:2e:08:b0:ef:fd:69:cf:99:
#         1a:09:8d:e3:a7:9f:2b:c9:36:34:7b:24:b3:78:4c:95:17:a4:
#         06:26:1e:b6:64:52:36:5f:60:67:d9:9c:c5:05:74:0b:e7:67:
#         23:d2:08:fc:88:e9:ae:8b:7f:e1:30:f4:37:7e:fd:c6:32:da:
#         2d:9e:44:30:30:6c:ee:07:de:d2:34:fc:d2:ff:40:f6:4b:f4:
#         66:46:06:54:a6:f2:32:0a:63:26:30:6b:9b:d1:dc:8b:47:ba:
#         e1:b9:d5:62:d0:a2:a0:f4:67:05:78:29:63:1a:6f:04:d6:f8:
#         c6:4c:a3:9a:b1:37:b4:8d:e5:28:4b:1d:9e:2c:c2:b8:68:bc:
#         ed:02:ee:31

[p11-kit-object-v1]
label: "Secure Global CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArzUu2KxsVWkGceUTaCSz
T9jMIUf48WA4iYkD6b3qXkZTCdxc9Vro90UqAusxYdcpM0zOx3wKN34PujKY4R2X
r4/H3Mk4lvPbGvxR7WjG0G6kfCTRrkLIllBjLuD+df6Yp19JLpXjOTNkjh6kX5DS
Zzyy2f5BuVWnCY5yBR6L3USFgkLQScAdYPDRFyyV6/alwZKjxcKnCGANYAQQlnme
FjTmqbb6JUU5yB5l+ZP1qvFS3JmYPaWGGgw1M/pLpQQGFRwxgO+qGGvCe9fazvkz
INX1vWozLYEE+7Bc1Jyj4lwd46lCdV571HfvOVS6yQoYGxKZSS+IS/1QYtFz5496
QwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Secure Global CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            07:56:22:a4:e8:d4:8a:89:4d:f4:13:c8:f0:f8:ea:a5
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = SecureTrust Corporation, CN = Secure Global CA
#        Validity
#            Not Before: Nov  7 19:42:28 2006 GMT
#            Not After : Dec 31 19:52:06 2029 GMT
#        Subject: C = US, O = SecureTrust Corporation, CN = Secure Global CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:af:35:2e:d8:ac:6c:55:69:06:71:e5:13:68:24:
#                    b3:4f:d8:cc:21:47:f8:f1:60:38:89:89:03:e9:bd:
#                    ea:5e:46:53:09:dc:5c:f5:5a:e8:f7:45:2a:02:eb:
#                    31:61:d7:29:33:4c:ce:c7:7c:0a:37:7e:0f:ba:32:
#                    98:e1:1d:97:af:8f:c7:dc:c9:38:96:f3:db:1a:fc:
#                    51:ed:68:c6:d0:6e:a4:7c:24:d1:ae:42:c8:96:50:
#                    63:2e:e0:fe:75:fe:98:a7:5f:49:2e:95:e3:39:33:
#                    64:8e:1e:a4:5f:90:d2:67:3c:b2:d9:fe:41:b9:55:
#                    a7:09:8e:72:05:1e:8b:dd:44:85:82:42:d0:49:c0:
#                    1d:60:f0:d1:17:2c:95:eb:f6:a5:c1:92:a3:c5:c2:
#                    a7:08:60:0d:60:04:10:96:79:9e:16:34:e6:a9:b6:
#                    fa:25:45:39:c8:1e:65:f9:93:f5:aa:f1:52:dc:99:
#                    98:3d:a5:86:1a:0c:35:33:fa:4b:a5:04:06:15:1c:
#                    31:80:ef:aa:18:6b:c2:7b:d7:da:ce:f9:33:20:d5:
#                    f5:bd:6a:33:2d:81:04:fb:b0:5c:d4:9c:a3:e2:5c:
#                    1d:e3:a9:42:75:5e:7b:d4:77:ef:39:54:ba:c9:0a:
#                    18:1b:12:99:49:2f:88:4b:fd:50:62:d1:73:e7:8f:
#                    7a:43
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            1.3.6.1.4.1.311.20.2: 
#                ...C.A
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AF:44:04:C2:41:7E:48:83:DB:4E:39:02:EC:EC:84:7A:E6:CE:C9:A4
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.securetrust.com/SGCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         63:1a:08:40:7d:a4:5e:53:0d:77:d8:7a:ae:1f:0d:0b:51:16:
#         03:ef:18:7c:c8:e3:af:6a:58:93:14:60:91:b2:84:dc:88:4e:
#         be:39:8a:3a:f3:e6:82:89:5d:01:37:b3:ab:24:a4:15:0e:92:
#         35:5a:4a:44:5e:4e:57:fa:75:ce:1f:48:ce:66:f4:3c:40:26:
#         92:98:6c:1b:ee:24:46:0c:17:b3:52:a5:db:a5:91:91:cf:37:
#         d3:6f:e7:27:08:3a:4e:19:1f:3a:a7:58:5c:17:cf:79:3f:8b:
#         e4:a7:d3:26:23:9d:26:0f:58:69:fc:47:7e:b2:d0:8d:8b:93:
#         bf:29:4f:43:69:74:76:67:4b:cf:07:8c:e6:02:f7:b5:e1:b4:
#         43:b5:4b:2d:14:9f:f9:dc:26:0d:bf:a6:47:74:06:d8:88:d1:
#         3a:29:30:84:ce:d2:39:80:62:1b:a8:c7:57:49:bc:6a:55:51:
#         67:15:4a:be:35:07:e4:d5:75:98:37:79:30:14:db:29:9d:6c:
#         c5:69:cc:47:55:a2:30:f7:cc:5c:7f:c2:c3:98:1c:6b:4e:16:
#         80:eb:7a:78:65:45:a2:00:1a:af:0c:0d:55:64:34:48:b8:92:
#         b9:f1:b4:50:29:f2:4f:23:1f:da:6c:ac:1f:44:e1:dd:23:78:
#         51:5b:c7:16

[p11-kit-object-v1]
label: "Security Communication ECC RootCA1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEpKVvYAMDw70x9NMXnCuEdazl/T1Xbtdj
v+YEiZKOgZzj6UduypASyBPgp533ZXQfbBCy6OTp722FMplEsV79zHYQ2Fu9osb5
1kLkV3bckMI1qUuIPBJHbVz/SU8aSlCx
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication ECC RootCA1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d6:5d:9b:b3:78:81:2e:eb
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = JP, O = "SECOM Trust Systems CO.,LTD.", CN = Security Communication ECC RootCA1
#        Validity
#            Not Before: Jun 16 05:15:28 2016 GMT
#            Not After : Jan 18 05:15:28 2038 GMT
#        Subject: C = JP, O = "SECOM Trust Systems CO.,LTD.", CN = Security Communication ECC RootCA1
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:a4:a5:6f:60:03:03:c3:bd:31:f4:d3:17:9c:2b:
#                    84:75:ac:e5:fd:3d:57:6e:d7:63:bf:e6:04:89:92:
#                    8e:81:9c:e3:e9:47:6e:ca:90:12:c8:13:e0:a7:9d:
#                    f7:65:74:1f:6c:10:b2:e8:e4:e9:ef:6d:85:32:99:
#                    44:b1:5e:fd:cc:76:10:d8:5b:bd:a2:c6:f9:d6:42:
#                    e4:57:76:dc:90:c2:35:a9:4b:88:3c:12:47:6d:5c:
#                    ff:49:4f:1a:4a:50:b1
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                86:1C:E7:FE:2D:A5:4A:8B:08:FE:28:11:FA:BE:A3:66:F8:60:59:2F
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:15:5d:42:3d:fc:b6:ee:f7:3b:b1:36:e8:9e:f6:
#         c4:46:28:49:33:d0:58:43:2a:63:29:cc:4d:b1:b4:7a:a2:b9:
#         0d:38:a5:5d:48:2a:fd:cb:b2:73:5d:a3:88:08:c7:0c:02:31:
#         00:c0:ab:2d:0e:6d:ed:18:a2:db:53:e9:25:db:55:08:e0:50:
#         cc:df:44:61:16:82:ab:49:b0:b2:81:ec:73:87:78:b4:4c:b2:
#         62:1b:12:fa:16:4d:25:4b:63:bd:1e:37:d9

[p11-kit-object-v1]
label: "Security Communication RootCA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0BU5UrFSs7rFWYLEXVKu
OkNlgEvH8pa82zaX1qZkjKhe8OMKHPfflz1LrvZd7CG1QavNuX52n775PjY0oDvB
9jERRXSTPVeAxfmJmcrlq2rUtdpBkBDB1tZCicK/9DgSlUxUBfc25EWDexRl1twM
TdHefgyrO8QVvjpWplpvdmlSqXq5yOtqml1S0C0KazUWCRCE0GrKOgYAN0fkfldP
P4vrZ7iIqsW+U1WykcR9ubCFGQZ4LtthGvqF9UqRoecW1Y6iOd+UuHAfKD+L/EBe
Y4M8gyoamWvP3llqO/xvFtcf/UoQ606CFjqsJwxT8a3VJLBrA1DBLTwW3UQ0Jxp1
+wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication RootCA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = JP, O = "SECOM Trust Systems CO.,LTD.", OU = Security Communication RootCA2
#        Validity
#            Not Before: May 29 05:00:39 2009 GMT
#            Not After : May 29 05:00:39 2029 GMT
#        Subject: C = JP, O = "SECOM Trust Systems CO.,LTD.", OU = Security Communication RootCA2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d0:15:39:52:b1:52:b3:ba:c5:59:82:c4:5d:52:
#                    ae:3a:43:65:80:4b:c7:f2:96:bc:db:36:97:d6:a6:
#                    64:8c:a8:5e:f0:e3:0a:1c:f7:df:97:3d:4b:ae:f6:
#                    5d:ec:21:b5:41:ab:cd:b9:7e:76:9f:be:f9:3e:36:
#                    34:a0:3b:c1:f6:31:11:45:74:93:3d:57:80:c5:f9:
#                    89:99:ca:e5:ab:6a:d4:b5:da:41:90:10:c1:d6:d6:
#                    42:89:c2:bf:f4:38:12:95:4c:54:05:f7:36:e4:45:
#                    83:7b:14:65:d6:dc:0c:4d:d1:de:7e:0c:ab:3b:c4:
#                    15:be:3a:56:a6:5a:6f:76:69:52:a9:7a:b9:c8:eb:
#                    6a:9a:5d:52:d0:2d:0a:6b:35:16:09:10:84:d0:6a:
#                    ca:3a:06:00:37:47:e4:7e:57:4f:3f:8b:eb:67:b8:
#                    88:aa:c5:be:53:55:b2:91:c4:7d:b9:b0:85:19:06:
#                    78:2e:db:61:1a:fa:85:f5:4a:91:a1:e7:16:d5:8e:
#                    a2:39:df:94:b8:70:1f:28:3f:8b:fc:40:5e:63:83:
#                    3c:83:2a:1a:99:6b:cf:de:59:6a:3b:fc:6f:16:d7:
#                    1f:fd:4a:10:eb:4e:82:16:3a:ac:27:0c:53:f1:ad:
#                    d5:24:b0:6b:03:50:c1:2d:3c:16:dd:44:34:27:1a:
#                    75:fb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                0A:85:A9:77:65:05:98:7C:40:81:F8:0F:97:2C:38:F1:0A:EC:3C:CF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         4c:3a:a3:44:ac:b9:45:b1:c7:93:7e:c8:0b:0a:42:df:64:ea:
#         1c:ee:59:6c:08:ba:89:5f:6a:ca:4a:95:9e:7a:8f:07:c5:da:
#         45:72:82:71:0e:3a:d2:cc:6f:a7:b4:a1:23:bb:f6:24:9f:cb:
#         17:fe:8c:a6:ce:c2:d2:db:cc:8d:fc:71:fc:03:29:c1:6c:5d:
#         33:5f:64:b6:65:3b:89:6f:18:76:78:f5:dc:a2:48:1f:19:3f:
#         8e:93:eb:f1:fa:17:ee:cd:4e:e3:04:12:55:d6:e5:e4:dd:fb:
#         3e:05:7c:e2:1d:5e:c6:a7:bc:97:4f:68:3a:f5:e9:2e:0a:43:
#         b6:af:57:5c:62:68:7c:b7:fd:a3:8a:84:a0:ac:62:be:2b:09:
#         87:34:f0:6a:01:bb:9b:29:56:3c:fe:00:37:cf:23:6c:f1:4e:
#         aa:b6:74:46:12:6c:91:ee:34:d5:ec:9a:91:e7:44:be:90:31:
#         72:d5:49:02:f6:02:e5:f4:1f:eb:7c:d9:96:55:a9:ff:ec:8a:
#         f9:99:47:ff:35:5a:02:aa:04:cb:8a:5b:87:71:29:91:bd:a4:
#         b4:7a:0d:bd:9a:f5:57:23:00:07:21:17:3f:4a:39:d1:05:49:
#         0b:a7:b6:37:81:a5:5d:8c:aa:33:5e:81:28:7c:a7:7d:27:eb:
#         00:ae:8d:37

[p11-kit-object-v1]
label: "Security Communication RootCA3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication RootCA3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFfzCCA2egAwIBAgIJAOF8N0D9G/5nMA0GCSqGSIb3DQEBDAUAMF0xCzAJBgNV
BAYTAkpQMSUwIwYDVQQKExxTRUNPTSBUcnVzdCBTeXN0ZW1zIENPLixMVEQuMScw
JQYDVQQDEx5TZWN1cml0eSBDb21tdW5pY2F0aW9uIFJvb3RDQTMwHhcNMTYwNjE2
MDYxNzE2WhcNMzgwMTE4MDYxNzE2WjBdMQswCQYDVQQGEwJKUDElMCMGA1UEChMc
U0VDT00gVHJ1c3QgU3lzdGVtcyBDTy4sTFRELjEnMCUGA1UEAxMeU2VjdXJpdHkg
Q29tbXVuaWNhdGlvbiBSb290Q0EzMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIIC
CgKCAgEA48lySfcw3gl8qUCBWNO0Ot26YQ+TUG5pPDXC7ltzkBtnTCHsXzW7OT4r
CmDvu20rhvtxosis5FaU+cmvsXLUIKx00rgVrVH+hXShuRD+BYD5UpOzQD11EKzA
lrenfna84xtSGc4RHwsENPXY9Wk8d/Nk9A2qhd7gCVAEF5aEt8iKvE1y/By7z/MG
TfmfZPd+pmaGNXHIEYBMwXFAWB6+oHP2/D5Q4eAvJj1+XCO1eXDe+uDRpdYMQXF7
9+qMHIjH7Iv10S9VlkZ8WjtYO/u62C21Jdp6Ts9EriGmnpjKIG58u4iFW/vAEGK7
8vknR+/RiTlDxN/e4UG/VHMgly1s2vPUB6PmudhvrvyMGS7TZ2crldtYXLVqAvO4
g160a75BflcJdURQVc1aEWEhCmHCqYj9E7wtiS/NYeCVvsq1e+F7NGcLH7YMx3we
GVPKp7FKFSBWFHA9K4IsD50VHUeAR/94mQ4xr28+j+2GaR57GIgUssL8gjMunEst
+3A7caoreyYn8xrC3PsXuKHqy6C0rtOUfnrQq8PsOC0RLoi/1D+tEjtCrI8Cbn3M
0V9hvqG8OmpI6iZVIhZdXw3/JzOfGAN0iltSIEdrRU0id4xVJ/CvHozJgyJUt5rQ
T9nO/NkuHJYosQLTA70lUhw0Zk8jq/R3gpYd0VcwCBEF/VfR2ccCAwEAAaNCMEAw
HQYDVR0OBBYEFGQUfPxYchamCik0FW8qy7z8r6irMA4GA1UdDwEB/wQEAwIBBjAP
BgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBDAUAA4ICAQDcAiMI4u8hOscNtybS
YpOnpSNyByCCYN8Y11StaSWSntkUz5m5UoHPrmyKO1o5yGwBQ8IibQLwYs1OY0PA
FNr0Y/Dq9HHuTofjcan0yVflLl8cebsjqodEV+m9NU1Bu0soo5iyG9kLFwfl9+qd
9XbXv8S2gVj/yP9kaWJ5rW4OH3/uHWnlt3Jxs/6lATWUVCvAUm2PVcTJ0rjLyjQI
UYWg9by0F1jqClx6vWPGOi//lkkZhOpn2ASxYfQAW0q3nHE3GYV5v4GwxxMOdnE+
OoAGrgYWp421wsTL/0ClXI2lyTrtcoHKXJg80jQDdwj98ClZXSEIx2C/pHF7uNke
gr4Jr2VvKKu/S7XuPghHJ6APbw+LP6yVGPO5DtxnVW5inkYO0QR4ynKudtml+LLf
iAlhi+8kTtFZP1rUPcmTPCtk9YENFpb3ksP+MW/oKjJ0DvRMmEoYDjBU1cXrvMUV
nuiZIesnKwkK2/HmcBhWuwzkvvnoEKQTkrgc4NtnHVMDpCKn3F2SEDzq//wbEBrD
2NCcnWXL0CsnMQMeNuE9dnUM/0Umud1RvCPHX9jYhxBAEg09ODfnRDwYwFMJZI//
1ZqmfHAuc1Uh6N//g7kdPjIe1qZ9LPFm6Vwdp6POXiUyK+OVrCoHzrQoeIY8Laad
TdJ0MN1kURXbg4NR16/9M51NZg==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            e1:7c:37:40:fd:1b:fe:67
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = JP, O = "SECOM Trust Systems CO.,LTD.", CN = Security Communication RootCA3
#        Validity
#            Not Before: Jun 16 06:17:16 2016 GMT
#            Not After : Jan 18 06:17:16 2038 GMT
#        Subject: C = JP, O = "SECOM Trust Systems CO.,LTD.", CN = Security Communication RootCA3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:e3:c9:72:49:f7:30:de:09:7c:a9:40:81:58:d3:
#                    b4:3a:dd:ba:61:0f:93:50:6e:69:3c:35:c2:ee:5b:
#                    73:90:1b:67:4c:21:ec:5f:35:bb:39:3e:2b:0a:60:
#                    ef:bb:6d:2b:86:fb:71:a2:c8:ac:e4:56:94:f9:c9:
#                    af:b1:72:d4:20:ac:74:d2:b8:15:ad:51:fe:85:74:
#                    a1:b9:10:fe:05:80:f9:52:93:b3:40:3d:75:10:ac:
#                    c0:96:b7:a7:7e:76:bc:e3:1b:52:19:ce:11:1f:0b:
#                    04:34:f5:d8:f5:69:3c:77:f3:64:f4:0d:aa:85:de:
#                    e0:09:50:04:17:96:84:b7:c8:8a:bc:4d:72:fc:1c:
#                    bb:cf:f3:06:4d:f9:9f:64:f7:7e:a6:66:86:35:71:
#                    c8:11:80:4c:c1:71:40:58:1e:be:a0:73:f6:fc:3e:
#                    50:e1:e0:2f:26:3d:7e:5c:23:b5:79:70:de:fa:e0:
#                    d1:a5:d6:0c:41:71:7b:f7:ea:8c:1c:88:c7:ec:8b:
#                    f5:d1:2f:55:96:46:7c:5a:3b:58:3b:fb:ba:d8:2d:
#                    b5:25:da:7a:4e:cf:44:ae:21:a6:9e:98:ca:20:6e:
#                    7c:bb:88:85:5b:fb:c0:10:62:bb:f2:f9:27:47:ef:
#                    d1:89:39:43:c4:df:de:e1:41:bf:54:73:20:97:2d:
#                    6c:da:f3:d4:07:a3:e6:b9:d8:6f:ae:fc:8c:19:2e:
#                    d3:67:67:2b:95:db:58:5c:b5:6a:02:f3:b8:83:5e:
#                    b4:6b:be:41:7e:57:09:75:44:50:55:cd:5a:11:61:
#                    21:0a:61:c2:a9:88:fd:13:bc:2d:89:2f:cd:61:e0:
#                    95:be:ca:b5:7b:e1:7b:34:67:0b:1f:b6:0c:c7:7c:
#                    1e:19:53:ca:a7:b1:4a:15:20:56:14:70:3d:2b:82:
#                    2c:0f:9d:15:1d:47:80:47:ff:78:99:0e:31:af:6f:
#                    3e:8f:ed:86:69:1e:7b:18:88:14:b2:c2:fc:82:33:
#                    2e:9c:4b:2d:fb:70:3b:71:aa:2b:7b:26:27:f3:1a:
#                    c2:dc:fb:17:b8:a1:ea:cb:a0:b4:ae:d3:94:7e:7a:
#                    d0:ab:c3:ec:38:2d:11:2e:88:bf:d4:3f:ad:12:3b:
#                    42:ac:8f:02:6e:7d:cc:d1:5f:61:be:a1:bc:3a:6a:
#                    48:ea:26:55:22:16:5d:5f:0d:ff:27:33:9f:18:03:
#                    74:8a:5b:52:20:47:6b:45:4d:22:77:8c:55:27:f0:
#                    af:1e:8c:c9:83:22:54:b7:9a:d0:4f:d9:ce:fc:d9:
#                    2e:1c:96:28:b1:02:d3:03:bd:25:52:1c:34:66:4f:
#                    23:ab:f4:77:82:96:1d:d1:57:30:08:11:05:fd:57:
#                    d1:d9:c7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                64:14:7C:FC:58:72:16:A6:0A:29:34:15:6F:2A:CB:BC:FC:AF:A8:AB
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         dc:02:23:08:e2:ef:21:3a:c7:0d:b7:26:d2:62:93:a7:a5:23:
#         72:07:20:82:60:df:18:d7:54:ad:69:25:92:9e:d9:14:cf:99:
#         b9:52:81:cf:ae:6c:8a:3b:5a:39:c8:6c:01:43:c2:22:6d:02:
#         f0:62:cd:4e:63:43:c0:14:da:f4:63:f0:ea:f4:71:ee:4e:87:
#         e3:71:a9:f4:c9:57:e5:2e:5f:1c:79:bb:23:aa:87:44:57:e9:
#         bd:35:4d:41:bb:4b:28:a3:98:b2:1b:d9:0b:17:07:e5:f7:ea:
#         9d:f5:76:d7:bf:c4:b6:81:58:ff:c8:ff:64:69:62:79:ad:6e:
#         0e:1f:7f:ee:1d:69:e5:b7:72:71:b3:fe:a5:01:35:94:54:2b:
#         c0:52:6d:8f:55:c4:c9:d2:b8:cb:ca:34:08:51:85:a0:f5:bc:
#         b4:17:58:ea:0a:5c:7a:bd:63:c6:3a:2f:ff:96:49:19:84:ea:
#         67:d8:04:b1:61:f4:00:5b:4a:b7:9c:71:37:19:85:79:bf:81:
#         b0:c7:13:0e:76:71:3e:3a:80:06:ae:06:16:a7:8d:b5:c2:c4:
#         cb:ff:40:a5:5c:8d:a5:c9:3a:ed:72:81:ca:5c:98:3c:d2:34:
#         03:77:08:fd:f0:29:59:5d:21:08:c7:60:bf:a4:71:7b:b8:d9:
#         1e:82:be:09:af:65:6f:28:ab:bf:4b:b5:ee:3e:08:47:27:a0:
#         0f:6f:0f:8b:3f:ac:95:18:f3:b9:0e:dc:67:55:6e:62:9e:46:
#         0e:d1:04:78:ca:72:ae:76:d9:a5:f8:b2:df:88:09:61:8b:ef:
#         24:4e:d1:59:3f:5a:d4:3d:c9:93:3c:2b:64:f5:81:0d:16:96:
#         f7:92:c3:fe:31:6f:e8:2a:32:74:0e:f4:4c:98:4a:18:0e:30:
#         54:d5:c5:eb:bc:c5:15:9e:e8:99:21:eb:27:2b:09:0a:db:f1:
#         e6:70:18:56:bb:0c:e4:be:f9:e8:10:a4:13:92:b8:1c:e0:db:
#         67:1d:53:03:a4:22:a7:dc:5d:92:10:3c:ea:ff:fc:1b:10:1a:
#         c3:d8:d0:9c:9d:65:cb:d0:2b:27:31:03:1e:36:e1:3d:76:75:
#         0c:ff:45:26:b9:dd:51:bc:23:c7:5f:d8:d8:87:10:40:12:0d:
#         3d:38:37:e7:44:3c:18:c0:53:09:64:8f:ff:d5:9a:a6:7c:70:
#         2e:73:55:21:e8:df:ff:83:b9:1d:3e:32:1e:d6:a6:7d:2c:f1:
#         66:e9:5c:1d:a7:a3:ce:5e:25:32:2b:e3:95:ac:2a:07:ce:b4:
#         28:78:86:3c:2d:a6:9d:4d:d2:74:30:dd:64:51:15:db:83:83:
#         51:d7:af:fd:33:9d:4d:66

[p11-kit-object-v1]
label: "Security Communication Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs7P+f9Ntse8WfFelDG12
ii9Lv2T7TO6K8PMpfPX/7irg6em6W2QimppvLDomaVEFmSbc1RxqccaafR6d3Xxs
xoxnZ0o++HGwGSepCQymlb9LjAz6VZg72OgioUtxOHmsl5Jps4l+6iFoBpgUlofS
YTa8bSdWnlfuwMBW/TLPpNmOwiPXjajz2CWsl+RwOPS2OrSdO5cmQ6OhvElZckwj
MIcBWPZOvhxoVmavzUFdyLNNKlVGqx/aHuJAPdvNfbmSgJw33QyWZJ3cIvdki99h
3hWUUhWgfVLJS6ghycax7cvDlWDRD/CrcPjfy01+7Nb6q9m9f1Typel5+tnWdiQo
cwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = JP, O = SECOM Trust.net, OU = Security Communication RootCA1
#        Validity
#            Not Before: Sep 30 04:20:49 2003 GMT
#            Not After : Sep 30 04:20:49 2023 GMT
#        Subject: C = JP, O = SECOM Trust.net, OU = Security Communication RootCA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:b3:fe:7f:d3:6d:b1:ef:16:7c:57:a5:0c:6d:
#                    76:8a:2f:4b:bf:64:fb:4c:ee:8a:f0:f3:29:7c:f5:
#                    ff:ee:2a:e0:e9:e9:ba:5b:64:22:9a:9a:6f:2c:3a:
#                    26:69:51:05:99:26:dc:d5:1c:6a:71:c6:9a:7d:1e:
#                    9d:dd:7c:6c:c6:8c:67:67:4a:3e:f8:71:b0:19:27:
#                    a9:09:0c:a6:95:bf:4b:8c:0c:fa:55:98:3b:d8:e8:
#                    22:a1:4b:71:38:79:ac:97:92:69:b3:89:7e:ea:21:
#                    68:06:98:14:96:87:d2:61:36:bc:6d:27:56:9e:57:
#                    ee:c0:c0:56:fd:32:cf:a4:d9:8e:c2:23:d7:8d:a8:
#                    f3:d8:25:ac:97:e4:70:38:f4:b6:3a:b4:9d:3b:97:
#                    26:43:a3:a1:bc:49:59:72:4c:23:30:87:01:58:f6:
#                    4e:be:1c:68:56:66:af:cd:41:5d:c8:b3:4d:2a:55:
#                    46:ab:1f:da:1e:e2:40:3d:db:cd:7d:b9:92:80:9c:
#                    37:dd:0c:96:64:9d:dc:22:f7:64:8b:df:61:de:15:
#                    94:52:15:a0:7d:52:c9:4b:a8:21:c9:c6:b1:ed:cb:
#                    c3:95:60:d1:0f:f0:ab:70:f8:df:cb:4d:7e:ec:d6:
#                    fa:ab:d9:bd:7f:54:f2:a5:e9:79:fa:d9:d6:76:24:
#                    28:73
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A0:73:49:99:68:DC:85:5B:65:E3:9B:28:2F:57:9F:BD:33:BC:07:48
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         68:40:a9:a8:bb:e4:4f:5d:79:b3:05:b5:17:b3:60:13:eb:c6:
#         92:5d:e0:d1:d3:6a:fe:fb:be:9b:6d:bf:c7:05:6d:59:20:c4:
#         1c:f0:b7:da:84:58:02:63:fa:48:16:ef:4f:a5:0b:f7:4a:98:
#         f2:3f:9e:1b:ad:47:6b:63:ce:08:47:eb:52:3f:78:9c:af:4d:
#         ae:f8:d5:4f:cf:9a:98:2a:10:41:39:52:c4:dd:d9:9b:0e:ef:
#         93:01:ae:b2:2e:ca:68:42:24:42:6c:b0:b3:3a:3e:cd:e9:da:
#         48:c4:15:cb:e9:f9:07:0f:92:50:49:8a:dd:31:97:5f:c9:e9:
#         37:aa:3b:59:65:97:94:32:c9:b3:9f:3e:3a:62:58:c5:49:ad:
#         62:0e:71:a5:32:aa:2f:c6:89:76:43:40:13:13:67:3d:a2:54:
#         25:10:cb:f1:3a:f2:d9:fa:db:49:56:bb:a6:fe:a7:41:35:c3:
#         e0:88:61:c9:88:c7:df:36:10:22:98:59:ea:b0:4a:fb:56:16:
#         73:6e:ac:4d:f7:22:a1:4f:ad:1d:7a:2d:45:27:e5:30:c1:5e:
#         f2:da:13:cb:25:42:51:95:47:03:8c:6c:21:cc:74:42:ed:53:
#         ff:33:8b:8f:0f:57:01:16:2f:cf:a6:ee:c9:70:22:14:bd:fd:
#         be:6c:0b:03

[p11-kit-object-v1]
label: "Serasa Certificate Authority II"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArR+JsmadW7ep1eXyYESE
+ZRt4nldbsClrroxY6CpnlFeXG4H2UpFdF+Nnmk4tihDkq5PgqD8NlE1Po2g5w4p
CAw1tyM970saDjBYV0AAEvGAmoAjSsGgho1BOIhQc2jxX1OIlAoRIcVgtKJgZSsY
+hA7kZI/+NViTr5WXsWQhUo1gK5uO0EMlRLupyoDTrxnPUuAGRLidC5d60i5Tztv
PPfCsB8aRD2bXMC9ugZlDOd0Zx/JZD73n40sG0GS+B3cqV+Q0lNwNY0EqiR+9M2l
Jk7o9vM4FTC+rRrzRySPSlAnJ1P+YZp6XNhsx09W9CkspaMUl99iDbySI1ujSvQ6
lQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Serasa Certificate Authority II"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 5056230419077763488 (0x462b56c6efa791a0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = BR, O = Serasa S.A., OU = Serasa CA II, CN = Serasa Certificate Authority II
#        Validity
#            Not Before: Nov 26 12:34:48 2004 GMT
#            Not After : Nov 21 12:44:48 2024 GMT
#        Subject: C = BR, O = Serasa S.A., OU = Serasa CA II, CN = Serasa Certificate Authority II
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:1f:89:b2:66:9d:5b:b7:a9:d5:e5:f2:60:44:
#                    84:f9:94:6d:e2:79:5d:6e:c0:a5:ae:ba:31:63:a0:
#                    a9:9e:51:5e:5c:6e:07:d9:4a:45:74:5f:8d:9e:69:
#                    38:b6:28:43:92:ae:4f:82:a0:fc:36:51:35:3e:8d:
#                    a0:e7:0e:29:08:0c:35:b7:23:3d:ef:4b:1a:0e:30:
#                    58:57:40:00:12:f1:80:9a:80:23:4a:c1:a0:86:8d:
#                    41:38:88:50:73:68:f1:5f:53:88:94:0a:11:21:c5:
#                    60:b4:a2:60:65:2b:18:fa:10:3b:91:92:3f:f8:d5:
#                    62:4e:be:56:5e:c5:90:85:4a:35:80:ae:6e:3b:41:
#                    0c:95:12:ee:a7:2a:03:4e:bc:67:3d:4b:80:19:12:
#                    e2:74:2e:5d:eb:48:b9:4f:3b:6f:3c:f7:c2:b0:1f:
#                    1a:44:3d:9b:5c:c0:bd:ba:06:65:0c:e7:74:67:1f:
#                    c9:64:3e:f7:9f:8d:2c:1b:41:92:f8:1d:dc:a9:5f:
#                    90:d2:53:70:35:8d:04:aa:24:7e:f4:cd:a5:26:4e:
#                    e8:f6:f3:38:15:30:be:ad:1a:f3:47:24:8f:4a:50:
#                    27:27:53:fe:61:9a:7a:5c:d8:6c:c7:4f:56:f4:29:
#                    2c:a5:a3:14:97:df:62:0d:bc:92:23:5b:a3:4a:f4:
#                    3a:95
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, Code Signing, Time Stamping
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAII.crl
#
#            X509v3 Subject Key Identifier: 
#                9E:EC:99:10:00:49:6B:CC:8A:3F:DB:6F:06:E5:CA:14:18:72:93:83
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         a0:0b:b6:a7:dd:cd:35:48:e8:6e:8f:a8:68:e0:b1:9b:91:24:
#         21:c9:56:e9:9a:f5:ee:70:a1:34:b0:e4:7c:3e:aa:ca:97:e8:
#         80:ff:62:05:e4:ec:40:ec:d9:e5:9c:65:5b:00:99:b4:a2:30:
#         45:04:5c:2f:b5:d0:93:af:da:91:05:e9:df:99:31:f5:8a:84:
#         0f:25:d8:67:de:29:6b:1c:b7:48:fd:b6:de:93:12:af:77:aa:
#         01:e9:c3:e1:30:14:aa:5f:78:a8:47:7f:d4:ba:52:61:31:f1:
#         19:b8:db:1e:2b:a8:89:9e:c6:30:72:91:06:b0:23:a9:03:19:
#         68:f2:a7:04:ab:ee:ce:52:36:60:ca:48:db:53:fa:9c:a7:7c:
#         b5:f5:34:2f:43:7e:ac:f4:84:b6:95:32:a5:a4:be:e9:6a:aa:
#         8b:41:99:ca:02:bd:12:3b:e7:07:d1:b1:f2:45:a7:74:a7:26:
#         e4:bc:68:6f:cc:19:21:f0:94:ca:c8:42:5f:fe:39:f7:db:3a:
#         5e:33:a5:9b:06:aa:d0:32:ac:c8:aa:7e:8b:b1:38:88:bf:e6:
#         4c:e8:a0:e5:8f:9c:44:1e:1e:20:1e:f0:2f:61:aa:69:86:7c:
#         d5:f5:b7:ce:c9:2b:c5:0c:dd:ca:b7:28:c2:05:de:67:19:ab:
#         2d:8d:a3:67

[p11-kit-object-v1]
label: "Staat der Nederlanden EV Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Staat der Nederlanden EV Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10000013 (0x98968d)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden EV Root CA
#        Validity
#            Not Before: Dec  8 11:19:29 2010 GMT
#            Not After : Dec  8 11:10:28 2022 GMT
#        Subject: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden EV Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:e3:c7:7e:89:f9:24:4b:3a:d2:33:83:35:2c:69:
#                    ec:dc:09:a4:e3:51:a8:25:2b:79:b8:08:3d:e0:91:
#                    ba:84:85:c6:85:a4:ca:e6:c9:2e:53:a4:c9:24:1e:
#                    fd:55:66:71:5d:2c:c5:60:68:04:b7:d9:c2:52:26:
#                    38:88:a4:d6:3b:40:a6:c2:cd:3f:cd:98:93:b3:54:
#                    14:58:96:55:d5:50:fe:86:ad:a4:63:7f:5c:87:f6:
#                    8e:e6:27:92:67:17:92:02:03:2c:dc:d6:66:74:ed:
#                    dd:67:ff:c1:61:8d:63:4f:0f:9b:6d:17:30:26:ef:
#                    ab:d2:1f:10:a0:f9:c5:7f:16:69:81:03:47:ed:1e:
#                    68:8d:72:a1:4d:b2:26:c6:ba:6c:5f:6d:d6:af:d1:
#                    b1:13:8e:a9:ad:f3:5e:69:75:26:18:3e:41:2b:21:
#                    7f:ee:8b:5d:07:06:9d:43:c4:29:0a:2b:fc:2a:3e:
#                    86:cb:3c:83:3a:f9:c9:0d:da:c5:99:e2:bc:78:41:
#                    33:76:e1:bf:2f:5d:e5:a4:98:50:0c:15:dd:e0:fa:
#                    9c:7f:38:68:d0:b2:a6:7a:a7:d1:31:bd:7e:8a:58:
#                    27:43:b3:ba:33:91:d3:a7:98:15:5c:9a:e6:d3:0f:
#                    75:d9:fc:41:98:97:3e:aa:25:db:8f:92:2e:b0:7b:
#                    0c:5f:f1:63:a9:37:f9:9b:75:69:4c:28:26:25:da:
#                    d5:f2:12:70:45:55:e3:df:73:5e:37:f5:21:6c:90:
#                    8e:35:5a:c9:d3:23:eb:d3:c0:be:78:ac:42:28:58:
#                    66:a5:46:6d:70:02:d7:10:f9:4b:54:fc:5d:86:4a:
#                    87:cf:7f:ca:45:ac:11:5a:b5:20:51:8d:2f:88:47:
#                    97:39:c0:cf:ba:c0:42:01:40:99:48:21:0b:6b:a7:
#                    d2:fd:96:d5:d1:be:46:9d:49:e0:0b:a6:a0:22:4e:
#                    38:d0:c1:3c:30:bc:70:8f:2c:75:cc:d0:c5:8c:51:
#                    3b:3d:94:08:64:26:61:7d:b9:c3:65:8f:14:9c:21:
#                    d0:aa:fd:17:72:03:8f:bd:9b:8c:e6:5e:53:9e:b9:
#                    9d:ef:82:bb:e1:bc:e2:72:41:5b:21:94:d3:45:37:
#                    94:d1:df:09:39:5d:e7:23:aa:9a:1d:ca:6d:a8:0a:
#                    86:85:8a:82:be:42:07:d6:f2:38:82:73:da:87:5b:
#                    e5:3c:d3:9e:3e:a7:3b:9e:f4:03:b3:f9:f1:7d:13:
#                    74:02:ff:bb:a1:e5:fa:00:79:1c:a6:66:41:88:5c:
#                    60:57:a6:2e:09:c4:ba:fd:9a:cf:a7:1f:40:c3:bb:
#                    cc:5a:0a:55:4b:3b:38:76:51:b8:63:8b:84:94:16:
#                    e6:56:f3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                FE:AB:00:90:98:9E:24:FC:A9:CC:1A:8A:FB:27:B8:BF:30:6E:A8:3B
#    Signature Algorithm: sha256WithRSAEncryption
#         cf:77:2c:6e:56:be:4e:b3:b6:84:00:94:ab:47:c9:0d:d2:76:
#         c7:86:9f:1d:07:d3:b6:b4:bb:08:78:af:69:d2:0b:49:de:33:
#         c5:ac:ad:c2:88:02:7d:06:b7:35:02:c1:60:c9:bf:c4:e8:94:
#         de:d4:d3:a9:13:25:5a:fe:6e:a2:ae:7d:05:dc:7d:f3:6c:f0:
#         7e:a6:8d:ee:d9:d7:ce:58:17:e8:a9:29:ae:73:48:87:e7:9b:
#         ca:6e:29:a1:64:5f:19:13:f7:ae:06:10:ff:51:c6:9b:4d:55:
#         25:4f:93:99:10:01:53:75:f1:13:ce:c7:a6:41:41:d2:bf:88:
#         a5:7f:45:fc:ac:b8:a5:b5:33:0c:82:c4:fb:07:f6:6a:e5:25:
#         84:5f:06:ca:c1:86:39:11:db:58:cd:77:3b:2c:c2:4c:0f:5e:
#         9a:e3:f0:ab:3e:61:1b:50:24:c2:c0:f4:f1:19:f0:11:29:b6:
#         a5:18:02:9b:d7:63:4c:70:8c:47:a3:03:43:5c:b9:5d:46:a0:
#         0d:6f:ff:59:8e:be:dd:9f:72:c3:5b:2b:df:8c:5b:ce:e5:0c:
#         46:6c:92:b2:0a:a3:4c:54:42:18:15:12:18:bd:da:fc:ba:74:
#         6e:ff:c1:b6:a0:64:d8:a9:5f:55:ae:9f:5c:6a:76:96:d8:73:
#         67:87:fb:4d:7f:5c:ee:69:ca:73:10:fb:8a:a9:fd:9e:bd:36:
#         38:49:49:87:f4:0e:14:f0:e9:87:b8:3f:a7:4f:7a:5a:8e:79:
#         d4:93:e4:bb:68:52:84:ac:6c:e9:f3:98:70:55:72:32:f9:34:
#         ab:2b:49:b5:cd:20:62:e4:3a:7a:67:63:ab:96:dc:6d:ae:97:
#         ec:fc:9f:76:56:88:2e:66:cf:5b:b6:c9:a4:b0:d7:05:ba:e1:
#         27:2f:93:bb:26:2a:a2:93:b0:1b:f3:8e:be:1d:40:a3:b9:36:
#         8f:3e:82:1a:1a:5e:88:ea:50:f8:59:e2:83:46:29:0b:e3:44:
#         5c:e1:95:b6:69:90:9a:14:6f:97:ae:81:cf:68:ef:99:9a:be:
#         b5:e7:e1:7f:f8:fa:13:47:16:4c:cc:6d:08:40:e7:8b:78:6f:
#         50:82:44:50:3f:66:06:8a:ab:43:84:56:4a:0f:20:2d:86:0e:
#         f5:d2:db:d2:7a:8a:4b:cd:a5:e8:4e:f1:5e:26:25:01:59:23:
#         a0:7e:d2:f6:7e:21:57:d7:27:bc:15:57:4c:a4:46:c1:e0:83:
#         1e:0c:4c:4d:1f:4f:06:19:e2:f9:a8:f4:3a:82:a1:b2:79:43:
#         79:d6:ad:6f:7a:27:90:03:a4:ea:24:87:3f:d9:bd:d9:e9:f2:
#         5f:50:49:1c:ee:ec:d7:2e

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmNK1URF6gaYUmHFtvszn
ExvWJw56s2oYHLZhWtVhCb/ekBPHZ+7d89rFDBKeNVU+LCeIQGv33N0iYfXCxw71
9tV2U02PjLwYdjeFnejKScfST5gTCaI+Ioicf9byEGW07l8Y1Rfj+MX94p2i71MO
hXeiD+EwR+4A5zN9RGcaC1Hoi6CeUJhoNFIfLm0B8mBF8jHrqTFoKbt6QZ7GGX+U
tFE5A3+y3qcym7RHjm+0Sq7lr7HcsBthvJly3uSJt3omXdozSVtSnA71iq3DuD3o
BmrC1SoLbHuEvVYFy4ZlkuxEK7COudxwC0barbxjiDn622r+I/q85Ej0ZytqERAh
SQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10000010 (0x98968a)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden Root CA
#        Validity
#            Not Before: Dec 17 09:23:49 2002 GMT
#            Not After : Dec 16 09:15:38 2015 GMT
#        Subject: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:98:d2:b5:51:11:7a:81:a6:14:98:71:6d:be:cc:
#                    e7:13:1b:d6:27:0e:7a:b3:6a:18:1c:b6:61:5a:d5:
#                    61:09:bf:de:90:13:c7:67:ee:dd:f3:da:c5:0c:12:
#                    9e:35:55:3e:2c:27:88:40:6b:f7:dc:dd:22:61:f5:
#                    c2:c7:0e:f5:f6:d5:76:53:4d:8f:8c:bc:18:76:37:
#                    85:9d:e8:ca:49:c7:d2:4f:98:13:09:a2:3e:22:88:
#                    9c:7f:d6:f2:10:65:b4:ee:5f:18:d5:17:e3:f8:c5:
#                    fd:e2:9d:a2:ef:53:0e:85:77:a2:0f:e1:30:47:ee:
#                    00:e7:33:7d:44:67:1a:0b:51:e8:8b:a0:9e:50:98:
#                    68:34:52:1f:2e:6d:01:f2:60:45:f2:31:eb:a9:31:
#                    68:29:bb:7a:41:9e:c6:19:7f:94:b4:51:39:03:7f:
#                    b2:de:a7:32:9b:b4:47:8e:6f:b4:4a:ae:e5:af:b1:
#                    dc:b0:1b:61:bc:99:72:de:e4:89:b7:7a:26:5d:da:
#                    33:49:5b:52:9c:0e:f5:8a:ad:c3:b8:3d:e8:06:6a:
#                    c2:d5:2a:0b:6c:7b:84:bd:56:05:cb:86:65:92:ec:
#                    44:2b:b0:8e:b9:dc:70:0b:46:da:ad:bc:63:88:39:
#                    fa:db:6a:fe:23:fa:bc:e4:48:f4:67:2b:6a:11:10:
#                    21:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.pkioverheid.nl/policies/root-policy
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A8:7D:EB:BC:63:A4:74:13:74:00:EC:96:E0:D3:34:C1:2C:BF:6C:F8
#    Signature Algorithm: sha1WithRSAEncryption
#         05:84:87:55:74:36:61:c1:bb:d1:d4:c6:15:a8:13:b4:9f:a4:
#         fe:bb:ee:15:b4:2f:06:0c:29:f2:a8:92:a4:61:0d:fc:ab:5c:
#         08:5b:51:13:2b:4d:c2:2a:61:c8:f8:09:58:fc:2d:02:b2:39:
#         7d:99:66:81:bf:6e:5c:95:45:20:6c:e6:79:a7:d1:d8:1c:29:
#         fc:c2:20:27:51:c8:f1:7c:5d:34:67:69:85:11:30:c6:00:d2:
#         d7:f3:d3:7c:b6:f0:31:57:28:12:82:73:e9:33:2f:a6:55:b4:
#         0b:91:94:47:9c:fa:bb:7a:42:32:e8:ae:7e:2d:c8:bc:ac:14:
#         bf:d9:0f:d9:5b:fc:c1:f9:7a:95:e1:7d:7e:96:fc:71:b0:c2:
#         4c:c8:df:45:34:c9:ce:0d:f2:9c:64:08:d0:3b:c3:29:c5:b2:
#         ed:90:04:c1:b1:29:91:c5:30:6f:c1:a9:72:33:cc:fe:5d:16:
#         17:2c:11:69:e7:7e:fe:c5:83:08:df:bc:dc:22:3a:2e:20:69:
#         23:39:56:60:67:90:8b:2e:76:39:fb:11:88:97:f6:7c:bd:4b:
#         b8:20:16:67:05:8d:e2:3b:c1:72:3f:94:95:37:c7:5d:b9:9e:
#         d8:93:a1:17:8f:ff:0c:66:15:c1:24:7c:32:7c:03:1d:3b:a1:
#         58:45:32:93

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxVnnb3WqPkuctbisngvk
+dnKq12PtTkQgtevUeA74QBIas/a4QZDEZmqFCUSrSLoAG1DxKm45R+JS2e9YUjv
/dLgYIjluRhgKMN3K62wN6o33mRZKkZX5Eu5+Dd81TbngMG289Rnm5boztfGClPQ
a0mW86MLBXdI9yXlcKwwFCAl4391WuVI+E57AwcE+oJhh27wO8Skx9D1dD6lXRoI
8psl0vasBCY+VTpiKKV7sjCv+DfC0brWOP3070kwN5kmIUiFAanlFufckFXfD+g4
zZk3IU9d9SJvasUSFmAXVfJlZqanMJE4wTgdhgSEuholeF6dr8xQYNYTh1LtYx9t
ZX3CFRh0yuF+ZCmMctgWE30LSUrxKBsgdGvFPd2wqkgJPS6ClM0aZdkriJqZvBh+
n+59Znw+vZS4gc7NmDB4wW9n0L5f4Gjt3uKxySxZeJKq3ytgY/LlXrnjyvp/UIY+
ojQYDAloKBEc5OG5XD5HujI/GMxbhPXza3TEcnTh44ugSr2NZi/qrTXaINOIgmHw
EiK2vNDVpOyvVIglJDynbbFyKT8+V6Z/Va9uJsb+58xAXFFEgQp43krOVb8d1dm3
Vu/wdv8LebWvvfupaZFGl2iAFDYds3+7KZg2pSD6gmBiM6Ts1roHp27FzxSm59aS
NNiB9fwdXapcHvajTTu49zkCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10000012 (0x98968c)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden Root CA - G2
#        Validity
#            Not Before: Mar 26 11:18:17 2008 GMT
#            Not After : Mar 25 11:03:10 2020 GMT
#        Subject: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c5:59:e7:6f:75:aa:3e:4b:9c:b5:b8:ac:9e:0b:
#                    e4:f9:d9:ca:ab:5d:8f:b5:39:10:82:d7:af:51:e0:
#                    3b:e1:00:48:6a:cf:da:e1:06:43:11:99:aa:14:25:
#                    12:ad:22:e8:00:6d:43:c4:a9:b8:e5:1f:89:4b:67:
#                    bd:61:48:ef:fd:d2:e0:60:88:e5:b9:18:60:28:c3:
#                    77:2b:ad:b0:37:aa:37:de:64:59:2a:46:57:e4:4b:
#                    b9:f8:37:7c:d5:36:e7:80:c1:b6:f3:d4:67:9b:96:
#                    e8:ce:d7:c6:0a:53:d0:6b:49:96:f3:a3:0b:05:77:
#                    48:f7:25:e5:70:ac:30:14:20:25:e3:7f:75:5a:e5:
#                    48:f8:4e:7b:03:07:04:fa:82:61:87:6e:f0:3b:c4:
#                    a4:c7:d0:f5:74:3e:a5:5d:1a:08:f2:9b:25:d2:f6:
#                    ac:04:26:3e:55:3a:62:28:a5:7b:b2:30:af:f8:37:
#                    c2:d1:ba:d6:38:fd:f4:ef:49:30:37:99:26:21:48:
#                    85:01:a9:e5:16:e7:dc:90:55:df:0f:e8:38:cd:99:
#                    37:21:4f:5d:f5:22:6f:6a:c5:12:16:60:17:55:f2:
#                    65:66:a6:a7:30:91:38:c1:38:1d:86:04:84:ba:1a:
#                    25:78:5e:9d:af:cc:50:60:d6:13:87:52:ed:63:1f:
#                    6d:65:7d:c2:15:18:74:ca:e1:7e:64:29:8c:72:d8:
#                    16:13:7d:0b:49:4a:f1:28:1b:20:74:6b:c5:3d:dd:
#                    b0:aa:48:09:3d:2e:82:94:cd:1a:65:d9:2b:88:9a:
#                    99:bc:18:7e:9f:ee:7d:66:7c:3e:bd:94:b8:81:ce:
#                    cd:98:30:78:c1:6f:67:d0:be:5f:e0:68:ed:de:e2:
#                    b1:c9:2c:59:78:92:aa:df:2b:60:63:f2:e5:5e:b9:
#                    e3:ca:fa:7f:50:86:3e:a2:34:18:0c:09:68:28:11:
#                    1c:e4:e1:b9:5c:3e:47:ba:32:3f:18:cc:5b:84:f5:
#                    f3:6b:74:c4:72:74:e1:e3:8b:a0:4a:bd:8d:66:2f:
#                    ea:ad:35:da:20:d3:88:82:61:f0:12:22:b6:bc:d0:
#                    d5:a4:ec:af:54:88:25:24:3c:a7:6d:b1:72:29:3f:
#                    3e:57:a6:7f:55:af:6e:26:c6:fe:e7:cc:40:5c:51:
#                    44:81:0a:78:de:4a:ce:55:bf:1d:d5:d9:b7:56:ef:
#                    f0:76:ff:0b:79:b5:af:bd:fb:a9:69:91:46:97:68:
#                    80:14:36:1d:b3:7f:bb:29:98:36:a5:20:fa:82:60:
#                    62:33:a4:ec:d6:ba:07:a7:6e:c5:cf:14:a6:e7:d6:
#                    92:34:d8:81:f5:fc:1d:5d:aa:5c:1e:f6:a3:4d:3b:
#                    b8:f7:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.pkioverheid.nl/policies/root-policy-G2
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                91:68:32:87:15:1D:89:E2:B5:F1:AC:36:28:34:8D:0B:7C:62:88:EB
#    Signature Algorithm: sha256WithRSAEncryption
#         a8:41:4a:67:2a:92:81:82:50:6e:e1:d7:d8:b3:39:3b:f3:02:
#         15:09:50:51:ef:2d:bd:24:7b:88:86:3b:f9:b4:bc:92:09:96:
#         b9:f6:c0:ab:23:60:06:79:8c:11:4e:51:d2:79:80:33:fb:9d:
#         48:be:ec:41:43:81:1f:7e:47:40:1c:e5:7a:08:ca:aa:8b:75:
#         ad:14:c4:c2:e8:66:3c:82:07:a7:e6:27:82:5b:18:e6:0f:6e:
#         d9:50:3e:8a:42:18:29:c6:b4:56:fc:56:10:a0:05:17:bd:0c:
#         23:7f:f4:93:ed:9c:1a:51:be:dd:45:41:bf:91:24:b4:1f:8c:
#         e9:5f:cf:7b:21:99:9f:95:9f:39:3a:46:1c:6c:f9:cd:7b:9c:
#         90:cd:28:a9:c7:a9:55:bb:ac:62:34:62:35:13:4b:14:3a:55:
#         83:b9:86:8d:92:a6:c6:f4:07:25:54:cc:16:57:12:4a:82:78:
#         c8:14:d9:17:82:26:2d:5d:20:1f:79:ae:fe:d4:70:16:16:95:
#         83:d8:35:39:ff:52:5d:75:1c:16:c5:13:55:cf:47:cc:75:65:
#         52:4a:de:f0:b0:a7:e4:0a:96:0b:fb:ad:c2:e2:25:84:b2:dd:
#         e4:bd:7e:59:6c:9b:f0:f0:d8:e7:ca:f2:e9:97:38:7e:89:be:
#         cc:fb:39:17:61:3f:72:db:3a:91:d8:65:01:19:1d:ad:50:a4:
#         57:0a:7c:4b:bc:9c:71:73:2a:45:51:19:85:cc:8e:fd:47:a7:
#         74:95:1d:a8:d1:af:4e:17:b1:69:26:c2:aa:78:57:5b:c5:4d:
#         a7:e5:9e:05:17:94:ca:b2:5f:a0:49:18:8d:34:e9:26:6c:48:
#         1e:aa:68:92:05:e1:82:73:5a:9b:dc:07:5b:08:6d:7d:9d:d7:
#         8d:21:d9:fc:14:20:aa:c2:45:df:3f:e7:00:b2:51:e4:c2:f8:
#         05:b9:79:1a:8c:34:f3:9e:5b:e4:37:5b:6b:4a:df:2c:57:8a:
#         40:5a:36:ba:dd:75:44:08:37:42:70:0c:fe:dc:5e:21:a0:a3:
#         8a:c0:90:9c:68:da:50:e6:45:10:47:78:b6:4e:d2:65:c9:c3:
#         37:df:e1:42:63:b0:57:37:45:2d:7b:8a:9c:bf:05:ea:65:55:
#         33:f7:39:10:c5:28:2a:21:7a:1b:8a:c4:24:f9:3f:15:c8:9a:
#         15:20:f5:55:62:96:ed:6d:93:50:bc:e4:aa:78:ad:d9:cb:0a:
#         65:87:a6:66:c1:c4:81:a3:77:3a:58:1e:0b:ee:83:8b:9d:1e:
#         d2:52:a4:cc:1d:6f:b0:98:6d:94:31:b5:f8:71:0a:dc:b9:fc:
#         7d:32:60:e6:eb:af:8a:01

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAvjKiVA9w+yxcWetsxKRR
6IUqs8xKNPKwX/MOxxw9Ux6ICGjYbz2twp7MgmcHJ4docTqfdZYiRgWw7a3HW54q
3pz8OsaVp/UXZxjnL0kIDFzP5sw07Xj7ULHcazLwov62POTsWpfHPx5wCDCg3MWz
bW/QgnIRq9KBaFmCF7d4kmD6zN4/hOuNODOQCnIj+jXMJnEx0XIoktlbI21mtW0H
QuumM86S28D2bGN4zcpOPbXlUpvxvjvmVGCwZh4Jqwf+VIkRQtH3JLpgeBqY98kR
/RbBNRpUde9D0+WuTs7ne8PGTmFRS6uaRUuhH0G9SFMVcWQLhrPlLr7OpBvBKYSi
tcsII3ZDIiQfFwTUbpzG/H8rZhrsiuXWz031Ywm3FTnWe6zr43zpTvx1QsjtWJUM
BkKinPfkcLPfcm9aN0CJ2IWk1/EL3kMZ1EpYLIyKOZ6/hIfxFjs2DOnTtMpsGUFS
CaEdsGq/gu9wUSEy3AV2jMv3ZOQDUK+MkWerxfLuWNjevvfnMc9syTtxwdWItWW8
wOgXFwcStVzSqyCTtOaCg3A2xc2jja2L7KPBQ4fmQ+I0vpWLNe0HOdqoHXqfNp4S
sAxlEpAVYNkmQETjVmClENRqPP1B3A5aR7bvl2F1T9n+x7Id1O1dSbOpastmhBPV
XKDc3253BtFxdchXb68Pd1sCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10003001 (0x98a239)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden Root CA - G3
#        Validity
#            Not Before: Nov 14 11:28:42 2013 GMT
#            Not After : Nov 13 23:00:00 2028 GMT
#        Subject: C = NL, O = Staat der Nederlanden, CN = Staat der Nederlanden Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:be:32:a2:54:0f:70:fb:2c:5c:59:eb:6c:c4:a4:
#                    51:e8:85:2a:b3:cc:4a:34:f2:b0:5f:f3:0e:c7:1c:
#                    3d:53:1e:88:08:68:d8:6f:3d:ad:c2:9e:cc:82:67:
#                    07:27:87:68:71:3a:9f:75:96:22:46:05:b0:ed:ad:
#                    c7:5b:9e:2a:de:9c:fc:3a:c6:95:a7:f5:17:67:18:
#                    e7:2f:49:08:0c:5c:cf:e6:cc:34:ed:78:fb:50:b1:
#                    dc:6b:32:f0:a2:fe:b6:3c:e4:ec:5a:97:c7:3f:1e:
#                    70:08:30:a0:dc:c5:b3:6d:6f:d0:82:72:11:ab:d2:
#                    81:68:59:82:17:b7:78:92:60:fa:cc:de:3f:84:eb:
#                    8d:38:33:90:0a:72:23:fa:35:cc:26:71:31:d1:72:
#                    28:92:d9:5b:23:6d:66:b5:6d:07:42:eb:a6:33:ce:
#                    92:db:c0:f6:6c:63:78:cd:ca:4e:3d:b5:e5:52:9b:
#                    f1:be:3b:e6:54:60:b0:66:1e:09:ab:07:fe:54:89:
#                    11:42:d1:f7:24:ba:60:78:1a:98:f7:c9:11:fd:16:
#                    c1:35:1a:54:75:ef:43:d3:e5:ae:4e:ce:e7:7b:c3:
#                    c6:4e:61:51:4b:ab:9a:45:4b:a1:1f:41:bd:48:53:
#                    15:71:64:0b:86:b3:e5:2e:be:ce:a4:1b:c1:29:84:
#                    a2:b5:cb:08:23:76:43:22:24:1f:17:04:d4:6e:9c:
#                    c6:fc:7f:2b:66:1a:ec:8a:e5:d6:cf:4d:f5:63:09:
#                    b7:15:39:d6:7b:ac:eb:e3:7c:e9:4e:fc:75:42:c8:
#                    ed:58:95:0c:06:42:a2:9c:f7:e4:70:b3:df:72:6f:
#                    5a:37:40:89:d8:85:a4:d7:f1:0b:de:43:19:d4:4a:
#                    58:2c:8c:8a:39:9e:bf:84:87:f1:16:3b:36:0c:e9:
#                    d3:b4:ca:6c:19:41:52:09:a1:1d:b0:6a:bf:82:ef:
#                    70:51:21:32:dc:05:76:8c:cb:f7:64:e4:03:50:af:
#                    8c:91:67:ab:c5:f2:ee:58:d8:de:be:f7:e7:31:cf:
#                    6c:c9:3b:71:c1:d5:88:b5:65:bc:c0:e8:17:17:07:
#                    12:b5:5c:d2:ab:20:93:b4:e6:82:83:70:36:c5:cd:
#                    a3:8d:ad:8b:ec:a3:c1:43:87:e6:43:e2:34:be:95:
#                    8b:35:ed:07:39:da:a8:1d:7a:9f:36:9e:12:b0:0c:
#                    65:12:90:15:60:d9:26:40:44:e3:56:60:a5:10:d4:
#                    6a:3c:fd:41:dc:0e:5a:47:b6:ef:97:61:75:4f:d9:
#                    fe:c7:b2:1d:d4:ed:5d:49:b3:a9:6a:cb:66:84:13:
#                    d5:5c:a0:dc:df:6e:77:06:d1:71:75:c8:57:6f:af:
#                    0f:77:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                54:AD:FA:C7:92:57:AE:CA:35:9C:2E:12:FB:E4:BA:5D:20:DC:94:57
#    Signature Algorithm: sha256WithRSAEncryption
#         30:99:9d:05:32:c8:5e:0e:3b:98:01:3a:8a:a4:e7:07:f7:7a:
#         f8:e7:9a:df:50:43:53:97:2a:3d:ca:3c:47:98:2e:e1:15:7b:
#         f1:92:f3:61:da:90:25:16:65:c0:9f:54:5d:0e:03:3b:5b:77:
#         02:9c:84:b6:0d:98:5f:34:dd:3b:63:c2:c3:28:81:c2:9c:29:
#         2e:29:e2:c8:c3:01:f2:33:ea:2a:aa:cc:09:08:f7:65:67:c6:
#         cd:df:d3:b6:2b:a7:bd:cc:d1:0e:70:5f:b8:23:d1:cb:91:4e:
#         0a:f4:c8:7a:e5:d9:63:36:c1:d4:df:fc:22:97:f7:60:5d:ea:
#         29:2f:58:b2:bd:58:bd:8d:96:4f:10:75:bf:48:7b:3d:51:87:
#         a1:3c:74:22:c2:fc:07:7f:80:dc:c4:ac:fe:6a:c1:70:30:b0:
#         e9:8e:69:e2:2c:69:81:94:09:ba:dd:fe:4d:c0:83:8c:94:58:
#         c0:46:20:af:9c:1f:02:f8:35:55:49:2f:46:d4:c0:f0:a0:96:
#         02:0f:33:c5:71:f3:9e:23:7d:94:b7:fd:3a:d3:09:83:06:21:
#         fd:60:3d:ae:32:c0:d2:ee:8d:a6:f0:e7:b4:82:7c:0a:cc:70:
#         c9:79:80:f8:fe:4c:f7:35:84:19:8a:31:fb:0a:d9:d7:7f:9b:
#         f0:a2:9a:6b:c3:05:4a:ed:41:60:14:30:d1:aa:11:42:6e:d3:
#         23:02:04:0b:c6:65:dd:dd:52:77:da:81:6b:b2:a8:fa:01:38:
#         b9:96:ea:2a:6c:67:97:89:94:9e:bc:e1:54:d5:e4:6a:78:ef:
#         4a:bd:2b:9a:3d:40:7e:c6:c0:75:d2:6e:fb:68:30:ec:ec:8b:
#         9d:f9:49:35:9a:1a:2c:d9:b3:95:39:d5:1e:92:f7:a6:b9:65:
#         2f:e5:3d:6d:3a:48:4c:08:dc:e4:28:12:28:be:7d:35:5c:ea:
#         e0:16:7e:13:1b:6a:d7:3e:d7:9e:fc:2d:75:b2:c1:14:d5:23:
#         03:db:5b:6f:0b:3e:78:2f:0d:de:33:8d:16:b7:48:e7:83:9a:
#         81:0f:7b:c1:43:4d:55:04:17:38:4a:51:d5:59:a2:89:74:d3:
#         9f:be:1e:4b:d7:c6:6d:b7:88:24:6f:60:91:a4:82:85:5b:56:
#         41:bc:d0:44:ab:6a:13:be:d1:2c:58:b7:12:33:58:b2:37:63:
#         dc:13:f5:94:1d:3f:40:51:f5:4f:f5:3a:ed:c8:c5:eb:c2:1e:
#         1d:16:95:7a:c7:7e:42:71:93:6e:4b:15:b7:30:df:aa:ed:57:
#         85:48:ac:1d:6a:dd:39:69:e4:e1:79:78:be:ce:05:bf:a1:0c:
#         f7:80:7b:21:67:27:30:59

[p11-kit-object-v1]
label: "Starfield Class 2 CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAtzLI/ulxpgSFrQwRZN/O
Te/IAxiHP6Gr+zymn/DDodrU2G4rU5D7JKQ+hPCe6F/s5SdE9SimP3ve4CrwyK9T
L57KBQGTHo9mHDmnTfpatnMEJWbrd3/nWcZKmSUUVOsmx/N/GdUwcI+vsEYq/63r
Ke3Xn6oEh6PU+YmlNF/bQ5GCNtlmPLG4uYL9nDo+EMg77wZlZnqbGRg9/3FRPDAu
X749d3OyXQZswyNWmiuFJpIcpwKz5D8Nrwh5grg2Peqc0zWzvGnK9cyd6P1kjReA
M25eSl2ZyR6HtJ0awNVuEzUjXt+bXz3v1vd2wuo+u3gNHEJnawTY+Nbab4vyRKAB
qwIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Class 2 CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEDzCCAvegAwIBAgIBADANBgkqhkiG9w0BAQUFADBoMQswCQYDVQQGEwJVUzEl
MCMGA1UEChMcU3RhcmZpZWxkIFRlY2hub2xvZ2llcywgSW5jLjEyMDAGA1UECxMp
U3RhcmZpZWxkIENsYXNzIDIgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMDQw
NjI5MTczOTE2WhcNMzQwNjI5MTczOTE2WjBoMQswCQYDVQQGEwJVUzElMCMGA1UE
ChMcU3RhcmZpZWxkIFRlY2hub2xvZ2llcywgSW5jLjEyMDAGA1UECxMpU3RhcmZp
ZWxkIENsYXNzIDIgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwggEgMA0GCSqGSIb3
DQEBAQUAA4IBDQAwggEIAoIBAQC3Msj+6XGmBIWtDBFk385N78gDGIc/oav7PKaf
8MOh2tTYbitTkPskpD6E8J7oX+zlJ0T1KKY/e97gKvDIr1MvnsoFAZMej2YcOadN
+lq2cwQlZut3f+dZxkqZJRRU6ybH838Z1TBwj6+wRir/resp7defqgSHo9T5iaU0
X9tDkYI22WY8sbi5gv2cOj4QyDvvBmVmepsZGD3/cVE8MC5fvj13c7JdBmzDI1aa
K4UmkhynArPkPw2vCHmCuDY96pzTNbO8acr1zJ3o/WSNF4Azbl5KXZnJHoe0nRrA
1W4TNSNe35tfPe/W93bC6j67eA0cQmdrBNj41tpvi/JEoAGrAgEDo4HFMIHCMB0G
A1UdDgQWBBS/X7fRzt0fhvRbVazc1xDCDqmI5zCBkgYDVR0jBIGKMIGHgBS/X7fR
zt0fhvRbVazc1xDCDqmI56FspGowaDELMAkGA1UEBhMCVVMxJTAjBgNVBAoTHFN0
YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4xMjAwBgNVBAsTKVN0YXJmaWVsZCBD
bGFzcyAyIENlcnRpZmljYXRpb24gQXV0aG9yaXR5ggEAMAwGA1UdEwQFMAMBAf8w
DQYJKoZIhvcNAQEFBQADggEBAAWdP4id0ckaVaGsafPzWdqbAYcaT1epoXkJKtv3
L7IezMdeatiDh6GX70k1PncGQVhiv45YuApnP+yz3SFmH8lU+nLMPUxA2IGvd56D
eruix/U0F47ZEUD0/CwqTRV/p2JdLiXTAAsgGh1o+Re49L2L7ShZ3U0WixeDyLJl
xy16paq8U4Zt3VekyvggQQto8PT7dL5WXXp59fkdheMtlb71cZBDzI0fmgAKhynp
VSJYACPq4xJDKVtHCN2MQWplBqjlIapBtJUhlbl90TSrE9atvNziPTnNvT51cKEY
WQPJIrSPnNVeKtelttQKbfi3QBFGmh95DmK/D5fs4C8fF5Q=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority
#        Validity
#            Not Before: Jun 29 17:39:16 2004 GMT
#            Not After : Jun 29 17:39:16 2034 GMT
#        Subject: C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:32:c8:fe:e9:71:a6:04:85:ad:0c:11:64:df:
#                    ce:4d:ef:c8:03:18:87:3f:a1:ab:fb:3c:a6:9f:f0:
#                    c3:a1:da:d4:d8:6e:2b:53:90:fb:24:a4:3e:84:f0:
#                    9e:e8:5f:ec:e5:27:44:f5:28:a6:3f:7b:de:e0:2a:
#                    f0:c8:af:53:2f:9e:ca:05:01:93:1e:8f:66:1c:39:
#                    a7:4d:fa:5a:b6:73:04:25:66:eb:77:7f:e7:59:c6:
#                    4a:99:25:14:54:eb:26:c7:f3:7f:19:d5:30:70:8f:
#                    af:b0:46:2a:ff:ad:eb:29:ed:d7:9f:aa:04:87:a3:
#                    d4:f9:89:a5:34:5f:db:43:91:82:36:d9:66:3c:b1:
#                    b8:b9:82:fd:9c:3a:3e:10:c8:3b:ef:06:65:66:7a:
#                    9b:19:18:3d:ff:71:51:3c:30:2e:5f:be:3d:77:73:
#                    b2:5d:06:6c:c3:23:56:9a:2b:85:26:92:1c:a7:02:
#                    b3:e4:3f:0d:af:08:79:82:b8:36:3d:ea:9c:d3:35:
#                    b3:bc:69:ca:f5:cc:9d:e8:fd:64:8d:17:80:33:6e:
#                    5e:4a:5d:99:c9:1e:87:b4:9d:1a:c0:d5:6e:13:35:
#                    23:5e:df:9b:5f:3d:ef:d6:f7:76:c2:ea:3e:bb:78:
#                    0d:1c:42:67:6b:04:d8:f8:d6:da:6f:8b:f2:44:a0:
#                    01:ab
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BF:5F:B7:D1:CE:DD:1F:86:F4:5B:55:AC:DC:D7:10:C2:0E:A9:88:E7
#            X509v3 Authority Key Identifier: 
#                keyid:BF:5F:B7:D1:CE:DD:1F:86:F4:5B:55:AC:DC:D7:10:C2:0E:A9:88:E7
#                DirName:/C=US/O=Starfield Technologies, Inc./OU=Starfield Class 2 Certification Authority
#                serial:00
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         05:9d:3f:88:9d:d1:c9:1a:55:a1:ac:69:f3:f3:59:da:9b:01:
#         87:1a:4f:57:a9:a1:79:09:2a:db:f7:2f:b2:1e:cc:c7:5e:6a:
#         d8:83:87:a1:97:ef:49:35:3e:77:06:41:58:62:bf:8e:58:b8:
#         0a:67:3f:ec:b3:dd:21:66:1f:c9:54:fa:72:cc:3d:4c:40:d8:
#         81:af:77:9e:83:7a:bb:a2:c7:f5:34:17:8e:d9:11:40:f4:fc:
#         2c:2a:4d:15:7f:a7:62:5d:2e:25:d3:00:0b:20:1a:1d:68:f9:
#         17:b8:f4:bd:8b:ed:28:59:dd:4d:16:8b:17:83:c8:b2:65:c7:
#         2d:7a:a5:aa:bc:53:86:6d:dd:57:a4:ca:f8:20:41:0b:68:f0:
#         f4:fb:74:be:56:5d:7a:79:f5:f9:1d:85:e3:2d:95:be:f5:71:
#         90:43:cc:8d:1f:9a:00:0a:87:29:e9:55:22:58:00:23:ea:e3:
#         12:43:29:5b:47:08:dd:8c:41:6a:65:06:a8:e5:21:aa:41:b4:
#         95:21:95:b9:7d:d1:34:ab:13:d6:ad:bc:dc:e2:3d:39:cd:bd:
#         3e:75:70:a1:18:59:03:c9:22:b4:8f:9c:d5:5e:2a:d7:a5:b6:
#         d4:0a:6d:f8:b7:40:11:46:9a:1f:79:0e:62:bf:0f:97:ec:e0:
#         2f:1f:17:94

[p11-kit-object-v1]
label: "Starfield Root Certificate Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAve3BA/z2j/wCsW9bn0jZ
nXniorcDYVYYw0e218o9NS6JQ/ehaZveihr9EyCctEl3MilW/bnsjN0i+nLcJ2GX
7vZahOxuGbmJLNyEW9V0+2tfxYmlEFKJRlX0uHUc5n/kVK5L+FVyVwIZ+BdxWese
KAd0xZ1Ivmy09KSw82Q3eZLA7EZef+FtU0xir80fC2O7Op37/HkAmGF0zyaCQGPz
snJqGQ2ZytQOdcw3+4uJwVnxYn9fs19lMPint012Wh52XjTA6JZWmYqz8H+kzb3c
MjF8kc/gXxH4a6pJXNGZlNGi42NbCXa1VmLhS3QdltQm1AgEWdCYDg7m3vzD7B+Q
8QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Root Certificate Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Root Certificate Authority - G2
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Dec 31 23:59:59 2037 GMT
#        Subject: C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Root Certificate Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bd:ed:c1:03:fc:f6:8f:fc:02:b1:6f:5b:9f:48:
#                    d9:9d:79:e2:a2:b7:03:61:56:18:c3:47:b6:d7:ca:
#                    3d:35:2e:89:43:f7:a1:69:9b:de:8a:1a:fd:13:20:
#                    9c:b4:49:77:32:29:56:fd:b9:ec:8c:dd:22:fa:72:
#                    dc:27:61:97:ee:f6:5a:84:ec:6e:19:b9:89:2c:dc:
#                    84:5b:d5:74:fb:6b:5f:c5:89:a5:10:52:89:46:55:
#                    f4:b8:75:1c:e6:7f:e4:54:ae:4b:f8:55:72:57:02:
#                    19:f8:17:71:59:eb:1e:28:07:74:c5:9d:48:be:6c:
#                    b4:f4:a4:b0:f3:64:37:79:92:c0:ec:46:5e:7f:e1:
#                    6d:53:4c:62:af:cd:1f:0b:63:bb:3a:9d:fb:fc:79:
#                    00:98:61:74:cf:26:82:40:63:f3:b2:72:6a:19:0d:
#                    99:ca:d4:0e:75:cc:37:fb:8b:89:c1:59:f1:62:7f:
#                    5f:b3:5f:65:30:f8:a7:b7:4d:76:5a:1e:76:5e:34:
#                    c0:e8:96:56:99:8a:b3:f0:7f:a4:cd:bd:dc:32:31:
#                    7c:91:cf:e0:5f:11:f8:6b:aa:49:5c:d1:99:94:d1:
#                    a2:e3:63:5b:09:76:b5:56:62:e1:4b:74:1d:96:d4:
#                    26:d4:08:04:59:d0:98:0e:0e:e6:de:fc:c3:ec:1f:
#                    90:f1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7C:0C:32:1F:A7:D9:30:7F:C4:7D:68:A3:62:A8:A1:CE:AB:07:5B:27
#    Signature Algorithm: sha256WithRSAEncryption
#         11:59:fa:25:4f:03:6f:94:99:3b:9a:1f:82:85:39:d4:76:05:
#         94:5e:e1:28:93:6d:62:5d:09:c2:a0:a8:d4:b0:75:38:f1:34:
#         6a:9d:e4:9f:8a:86:26:51:e6:2c:d1:c6:2d:6e:95:20:4a:92:
#         01:ec:b8:8a:67:7b:31:e2:67:2e:8c:95:03:26:2e:43:9d:4a:
#         31:f6:0e:b5:0c:bb:b7:e2:37:7f:22:ba:00:a3:0e:7b:52:fb:
#         6b:bb:3b:c4:d3:79:51:4e:cd:90:f4:67:07:19:c8:3c:46:7a:
#         0d:01:7d:c5:58:e7:6d:e6:85:30:17:9a:24:c4:10:e0:04:f7:
#         e0:f2:7f:d4:aa:0a:ff:42:1d:37:ed:94:e5:64:59:12:20:77:
#         38:d3:32:3e:38:81:75:96:73:fa:68:8f:b1:cb:ce:1f:c5:ec:
#         fa:9c:7e:cf:7e:b1:f1:07:2d:b6:fc:bf:ca:a4:bf:d0:97:05:
#         4a:bc:ea:18:28:02:90:bd:54:78:09:21:71:d3:d1:7d:1d:d9:
#         16:b0:a9:61:3d:d0:0a:00:22:fc:c7:7b:cb:09:64:45:0b:3b:
#         40:81:f7:7d:7c:32:f5:98:ca:58:8e:7d:2a:ee:90:59:73:64:
#         f9:36:74:5e:25:a1:f5:66:05:2e:7f:39:15:a9:2a:fb:50:8b:
#         8e:85:69:f4

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8sxWKk3mFjdal+ptNTjR
EJvbuNypBAmVMy4JxQB7GnhCj8j0BY7+0miDHk6ZzRfbRz5Q84nS59yY+wX4qtZj
9FRNwXEDsB8bdrMaNDBz8SgyYIP9tJzXttIiN3wZqjveExBpblwG02+j8mZadkJI
r4DRVFk91LnU2+25qzmZ9O5iq+F4cnvYOI1AtszcEgBwQ4Vp2Bjjyldyn7TfP/wi
qEJS9XdbmfBWLSZwFjYSwieeV6Z80CPxedyjk1goOD2frTZD7jf7+PlDrchW8pQS
XkLrc7gTDcum1Ya5qihqVAOhPw8p6wkA6D9eon8XPaEr+L7QdR2khOOrF2UGUgCv
sQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEfjCCA2agAwIBAgIBADANBgkqhkiG9w0BAQUFADCBzzELMAkGA1UEBhMCVVMx
EDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxJTAjBgNVBAoT
HFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4xOjA4BgNVBAsTMWh0dHA6Ly9j
ZXJ0aWZpY2F0ZXMuc3RhcmZpZWxkdGVjaC5jb20vcmVwb3NpdG9yeS8xNjA0BgNV
BAMTLVN0YXJmaWVsZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0
eTAeFw0wODA2MDIwMDAwMDBaFw0yOTEyMzEyMzU5NTlaMIHPMQswCQYDVQQGEwJV
UzEQMA4GA1UECBMHQXJpem9uYTETMBEGA1UEBxMKU2NvdHRzZGFsZTElMCMGA1UE
ChMcU3RhcmZpZWxkIFRlY2hub2xvZ2llcywgSW5jLjE6MDgGA1UECxMxaHR0cDov
L2NlcnRpZmljYXRlcy5zdGFyZmllbGR0ZWNoLmNvbS9yZXBvc2l0b3J5LzE2MDQG
A1UEAxMtU3RhcmZpZWxkIFNlcnZpY2VzIFJvb3QgQ2VydGlmaWNhdGUgQXV0aG9y
aXR5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8sxWKk3mFjdal+pt
NTjREJvbuNypBAmVMy4JxQB7GnhCj8j0BY7+0miDHk6ZzRfbRz5Q84nS59yY+wX4
qtZj9FRNwXEDsB8bdrMaNDBz8SgyYIP9tJzXttIiN3wZqjveExBpblwG02+j8mZa
dkJIr4DRVFk91LnU2+25qzmZ9O5iq+F4cnvYOI1AtszcEgBwQ4Vp2Bjjyldyn7Tf
P/wiqEJS9XdbmfBWLSZwFjYSwieeV6Z80CPxedyjk1goOD2frTZD7jf7+PlDrchW
8pQSXkLrc7gTDcum1Ya5qihqVAOhPw8p6wkA6D9eon8XPaEr+L7QdR2khOOrF2UG
UgCvsQIDAQABo2MwYTAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAd
BgNVHQ4EFgQUtMZ/GkPMm3VdL8RL8ouYEOnxURAwHwYDVR0jBBgwFoAUtMZ/GkPM
m3VdL8RL8ouYEOnxURAwDQYJKoZIhvcNAQEFBQADggEBAKyAu8QlBQtYpOR+KX6v
vDvsLcBELvmR4NI7MieQLfaACVzCq2Uk2jgQRsRJ0v2aqyhId4jG6W/RR5HVNU8U
CahbQAcdfHFWy4lC1L9hwCL3Lt+r83JDi0DolOuwJtrRE9Or0DYtLjqVs3cuFTkY
DGm6qoDt8VNOM5toBOKgMC7X0V3UpmadhObnuzyJuzad/BepPVUrivubxEyE/9/S
vmkbdLCo9uqwnLIpdIFMaDqaf3MlOfUT4GaRadRXS7furUXgLMOI076USYkf/3DV
W205E7Ady5jmZ2MNY/b7w9dhcoOIP3B+U8meiVTWT399cbmu8WCLd2Ds+L/6aqOc
ASI=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", OU = http://certificates.starfieldtech.com/repository/, CN = Starfield Services Root Certificate Authority
#        Validity
#            Not Before: Jun  2 00:00:00 2008 GMT
#            Not After : Dec 31 23:59:59 2029 GMT
#        Subject: C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", OU = http://certificates.starfieldtech.com/repository/, CN = Starfield Services Root Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:f2:cc:56:2a:4d:e6:16:37:5a:97:ea:6d:35:38:
#                    d1:10:9b:db:b8:dc:a9:04:09:95:33:2e:09:c5:00:
#                    7b:1a:78:42:8f:c8:f4:05:8e:fe:d2:68:83:1e:4e:
#                    99:cd:17:db:47:3e:50:f3:89:d2:e7:dc:98:fb:05:
#                    f8:aa:d6:63:f4:54:4d:c1:71:03:b0:1f:1b:76:b3:
#                    1a:34:30:73:f1:28:32:60:83:fd:b4:9c:d7:b6:d2:
#                    22:37:7c:19:aa:3b:de:13:10:69:6e:5c:06:d3:6f:
#                    a3:f2:66:5a:76:42:48:af:80:d1:54:59:3d:d4:b9:
#                    d4:db:ed:b9:ab:39:99:f4:ee:62:ab:e1:78:72:7b:
#                    d8:38:8d:40:b6:cc:dc:12:00:70:43:85:69:d8:18:
#                    e3:ca:57:72:9f:b4:df:3f:fc:22:a8:42:52:f5:77:
#                    5b:99:f0:56:2d:26:70:16:36:12:c2:27:9e:57:a6:
#                    7c:d0:23:f1:79:dc:a3:93:58:28:38:3d:9f:ad:36:
#                    43:ee:37:fb:f8:f9:43:ad:c8:56:f2:94:12:5e:42:
#                    eb:73:b8:13:0d:cb:a6:d5:86:b9:aa:28:6a:54:03:
#                    a1:3f:0f:29:eb:09:00:e8:3f:5e:a2:7f:17:3d:a1:
#                    2b:f8:be:d0:75:1d:a4:84:e3:ab:17:65:06:52:00:
#                    af:b1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B4:C6:7F:1A:43:CC:9B:75:5D:2F:C4:4B:F2:8B:98:10:E9:F1:51:10
#            X509v3 Authority Key Identifier: 
#                keyid:B4:C6:7F:1A:43:CC:9B:75:5D:2F:C4:4B:F2:8B:98:10:E9:F1:51:10
#
#    Signature Algorithm: sha1WithRSAEncryption
#         ac:80:bb:c4:25:05:0b:58:a4:e4:7e:29:7e:af:bc:3b:ec:2d:
#         c0:44:2e:f9:91:e0:d2:3b:32:27:90:2d:f6:80:09:5c:c2:ab:
#         65:24:da:38:10:46:c4:49:d2:fd:9a:ab:28:48:77:88:c6:e9:
#         6f:d1:47:91:d5:35:4f:14:09:a8:5b:40:07:1d:7c:71:56:cb:
#         89:42:d4:bf:61:c0:22:f7:2e:df:ab:f3:72:43:8b:40:e8:94:
#         eb:b0:26:da:d1:13:d3:ab:d0:36:2d:2e:3a:95:b3:77:2e:15:
#         39:18:0c:69:ba:aa:80:ed:f1:53:4e:33:9b:68:04:e2:a0:30:
#         2e:d7:d1:5d:d4:a6:66:9d:84:e6:e7:bb:3c:89:bb:36:9d:fc:
#         17:a9:3d:55:2b:8a:fb:9b:c4:4c:84:ff:df:d2:be:69:1b:74:
#         b0:a8:f6:ea:b0:9c:b2:29:74:81:4c:68:3a:9a:7f:73:25:39:
#         f5:13:e0:66:91:69:d4:57:4b:b7:ee:ad:45:e0:2c:c3:88:d3:
#         be:94:49:89:1f:ff:70:d5:5b:6d:39:13:b0:1d:cb:98:e6:67:
#         63:0d:63:f6:fb:c3:d7:61:72:83:88:3f:70:7e:53:c9:9e:89:
#         54:d6:4f:7f:7d:71:b9:ae:f1:60:8b:77:60:ec:f8:bf:fa:6a:
#         a3:9c:01:22

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1Qw6xCr5TuL1vhmXX46I
U7EfP8vPnyATbSk6yA99PPdrdjhj2TZgqJteXACAsi9Zf/aH+SVDhudpG1KakOFx
49gtDU5v9shJ2bbzGlauK7Z0FOvP+ybjGrodli5qO1iUiUdW/yWgk3BTg9qEdBTD
Z54EaDrfjkBaHUpOz0ORO+dW1gBwy1Lue32uOue8MflF9sJgzxNZAiuAzDRH37ne
kGVtAs8skaam596FGEl8Zk6jOm2pte40LroNA7gz30frsWuNJdmbzoHRRUYylnCH
3gIOSUOFtmxzu2TqYUGsydRU34cvxyKyJsyfWVRon/y+Ki/EVRx1QGAXhQJVOYt/
BQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIID7zCCAtegAwIBAgIBADANBgkqhkiG9w0BAQsFADCBmDELMAkGA1UEBhMCVVMx
EDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxJTAjBgNVBAoT
HFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4xOzA5BgNVBAMTMlN0YXJmaWVs
ZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0eSAtIEcyMB4XDTA5
MDkwMTAwMDAwMFoXDTM3MTIzMTIzNTk1OVowgZgxCzAJBgNVBAYTAlVTMRAwDgYD
VQQIEwdBcml6b25hMRMwEQYDVQQHEwpTY290dHNkYWxlMSUwIwYDVQQKExxTdGFy
ZmllbGQgVGVjaG5vbG9naWVzLCBJbmMuMTswOQYDVQQDEzJTdGFyZmllbGQgU2Vy
dmljZXMgUm9vdCBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkgLSBHMjCCASIwDQYJKoZI
hvcNAQEBBQADggEPADCCAQoCggEBANUMOsQq+U7i9b4Zl1+OiFOxHz/Lz58gE20p
OsgPfTz3a3Y4Y9k2YKibXlwAgLIvWX/2h/klQ4bnaRtSmpDhcePYLQ1Ob/bISdm2
8xpWriu2dBTrz/sm4xq6HZYuajtYlIlHVv8loJNwU4PahHQUw2eeBGg6345AWh1K
Ts9DkTvnVtYAcMtS7nt9rjrnvDH5RfbCYM8TWQIrgMw0R9+53pBlbQLPLJGmpufe
hRhJfGZOozptqbXuNC66DQO4M99H67FrjSXZm86B0UVGMpZwh94CDklDhbZsc7tk
6mFBrMnUVN+HL8cisibMn1lUaJ/8viovxFUcdUBgF4UCVTmLfwUCAwEAAaNCMEAw
DwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHQYDVR0OBBYEFJxfAN+q
AdcwKziIorhtSpzyEZGDMA0GCSqGSIb3DQEBCwUAA4IBAQBLNqaEd2ndOxmfZyMI
bw5hyf2E3F/YNoHN2BtBLZ9g3ccaaNnRbobhiCPPE95Dz+I0swSdHynVv/heyNXB
ve6SbzJ08pGCL72CQnqtKrcgfU28elUSwhXqvfdqlS5sdJ/PHLTyxQGjhdByPq1z
qwubdQxtRbeOlKyWN7Wg0I8VRw7j6IPdj/3vQQF3zCepYoUz8jcI73HPdwbeyBkd
iEDPfUYd/x7H4c7/I9vG+o1VTqkC50cRRj70/b17KSa7qWFiNyi2LSr2EIZkyXCn
0q23KXB56jzaYyWf/Wi3MOxw+3WKt21gZ7IeyLnp2KhvAotnDU0mV3HaIPzBSlCN
sSi6
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Dec 31 23:59:59 2037 GMT
#        Subject: C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:d5:0c:3a:c4:2a:f9:4e:e2:f5:be:19:97:5f:8e:
#                    88:53:b1:1f:3f:cb:cf:9f:20:13:6d:29:3a:c8:0f:
#                    7d:3c:f7:6b:76:38:63:d9:36:60:a8:9b:5e:5c:00:
#                    80:b2:2f:59:7f:f6:87:f9:25:43:86:e7:69:1b:52:
#                    9a:90:e1:71:e3:d8:2d:0d:4e:6f:f6:c8:49:d9:b6:
#                    f3:1a:56:ae:2b:b6:74:14:eb:cf:fb:26:e3:1a:ba:
#                    1d:96:2e:6a:3b:58:94:89:47:56:ff:25:a0:93:70:
#                    53:83:da:84:74:14:c3:67:9e:04:68:3a:df:8e:40:
#                    5a:1d:4a:4e:cf:43:91:3b:e7:56:d6:00:70:cb:52:
#                    ee:7b:7d:ae:3a:e7:bc:31:f9:45:f6:c2:60:cf:13:
#                    59:02:2b:80:cc:34:47:df:b9:de:90:65:6d:02:cf:
#                    2c:91:a6:a6:e7:de:85:18:49:7c:66:4e:a3:3a:6d:
#                    a9:b5:ee:34:2e:ba:0d:03:b8:33:df:47:eb:b1:6b:
#                    8d:25:d9:9b:ce:81:d1:45:46:32:96:70:87:de:02:
#                    0e:49:43:85:b6:6c:73:bb:64:ea:61:41:ac:c9:d4:
#                    54:df:87:2f:c7:22:b2:26:cc:9f:59:54:68:9f:fc:
#                    be:2a:2f:c4:55:1c:75:40:60:17:85:02:55:39:8b:
#                    7f:05
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9C:5F:00:DF:AA:01:D7:30:2B:38:88:A2:B8:6D:4A:9C:F2:11:91:83
#    Signature Algorithm: sha256WithRSAEncryption
#         4b:36:a6:84:77:69:dd:3b:19:9f:67:23:08:6f:0e:61:c9:fd:
#         84:dc:5f:d8:36:81:cd:d8:1b:41:2d:9f:60:dd:c7:1a:68:d9:
#         d1:6e:86:e1:88:23:cf:13:de:43:cf:e2:34:b3:04:9d:1f:29:
#         d5:bf:f8:5e:c8:d5:c1:bd:ee:92:6f:32:74:f2:91:82:2f:bd:
#         82:42:7a:ad:2a:b7:20:7d:4d:bc:7a:55:12:c2:15:ea:bd:f7:
#         6a:95:2e:6c:74:9f:cf:1c:b4:f2:c5:01:a3:85:d0:72:3e:ad:
#         73:ab:0b:9b:75:0c:6d:45:b7:8e:94:ac:96:37:b5:a0:d0:8f:
#         15:47:0e:e3:e8:83:dd:8f:fd:ef:41:01:77:cc:27:a9:62:85:
#         33:f2:37:08:ef:71:cf:77:06:de:c8:19:1d:88:40:cf:7d:46:
#         1d:ff:1e:c7:e1:ce:ff:23:db:c6:fa:8d:55:4e:a9:02:e7:47:
#         11:46:3e:f4:fd:bd:7b:29:26:bb:a9:61:62:37:28:b6:2d:2a:
#         f6:10:86:64:c9:70:a7:d2:ad:b7:29:70:79:ea:3c:da:63:25:
#         9f:fd:68:b7:30:ec:70:fb:75:8a:b7:6d:60:67:b2:1e:c8:b9:
#         e9:d8:a8:6f:02:8b:67:0d:4d:26:57:71:da:20:fc:c1:4a:50:
#         8d:b1:28:ba

[p11-kit-object-v1]
label: "StartCom Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "StartCom Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = IL, O = StartCom Ltd., OU = Secure Digital Certificate Signing, CN = StartCom Certification Authority
#        Validity
#            Not Before: Sep 17 19:46:36 2006 GMT
#            Not After : Sep 17 19:46:36 2036 GMT
#        Subject: C = IL, O = StartCom Ltd., OU = Secure Digital Certificate Signing, CN = StartCom Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c1:88:db:09:bc:6c:46:7c:78:9f:95:7b:b5:33:
#                    90:f2:72:62:d6:c1:36:20:22:24:5e:ce:e9:77:f2:
#                    43:0a:a2:06:64:a4:cc:8e:36:f8:38:e6:23:f0:6e:
#                    6d:b1:3c:dd:72:a3:85:1c:a1:d3:3d:b4:33:2b:d3:
#                    2f:af:fe:ea:b0:41:59:67:b6:c4:06:7d:0a:9e:74:
#                    85:d6:79:4c:80:37:7a:df:39:05:52:59:f7:f4:1b:
#                    46:43:a4:d2:85:85:d2:c3:71:f3:75:62:34:ba:2c:
#                    8a:7f:1e:8f:ee:ed:34:d0:11:c7:96:cd:52:3d:ba:
#                    33:d6:dd:4d:de:0b:3b:4a:4b:9f:c2:26:2f:fa:b5:
#                    16:1c:72:35:77:ca:3c:5d:e6:ca:e1:26:8b:1a:36:
#                    76:5c:01:db:74:14:25:fe:ed:b5:a0:88:0f:dd:78:
#                    ca:2d:1f:07:97:30:01:2d:72:79:fa:46:d6:13:2a:
#                    a8:b9:a6:ab:83:49:1d:e5:f2:ef:dd:e4:01:8e:18:
#                    0a:8f:63:53:16:85:62:a9:0e:19:3a:cc:b5:66:a6:
#                    c2:6b:74:07:e4:2b:e1:76:3e:b4:6d:d8:f6:44:e1:
#                    73:62:1f:3b:c4:be:a0:53:56:25:6c:51:09:f7:aa:
#                    ab:ca:bf:76:fd:6d:9b:f3:9d:db:bf:3d:66:bc:0c:
#                    56:aa:af:98:48:95:3a:4b:df:a7:58:50:d9:38:75:
#                    a9:5b:ea:43:0c:02:ff:99:eb:e8:6c:4d:70:5b:29:
#                    65:9c:dd:aa:5d:cc:af:01:31:ec:0c:eb:d2:8d:e8:
#                    ea:9c:7b:e6:6e:f7:27:66:0c:1a:48:d7:6e:42:e3:
#                    3f:de:21:3e:7b:e1:0d:70:fb:63:aa:a8:6c:1a:54:
#                    b4:5c:25:7a:c9:a2:c9:8b:16:a6:bb:2c:7e:17:5e:
#                    05:4d:58:6e:12:1d:01:ee:12:10:0d:c6:32:7f:18:
#                    ff:fc:f4:fa:cd:6e:91:e8:36:49:be:1a:48:69:8b:
#                    c2:96:4d:1a:12:b2:69:17:c1:0a:90:d6:fa:79:22:
#                    48:bf:ba:7b:69:f8:70:c7:fa:7a:37:d8:d8:0d:d2:
#                    76:4f:57:ff:90:b7:e3:91:d2:dd:ef:c2:60:b7:67:
#                    3a:dd:fe:aa:9c:f0:d4:8b:7f:72:22:ce:c6:9f:97:
#                    b6:f8:af:8a:a0:10:a8:d9:fb:18:c6:b6:b5:5c:52:
#                    3c:89:b6:19:2a:73:01:0a:0f:03:b3:12:60:f2:7a:
#                    2f:81:db:a3:6e:ff:26:30:97:f5:8b:dd:89:57:b6:
#                    ad:3d:b3:af:2b:c5:b7:76:02:f0:a5:d6:2b:9a:86:
#                    14:2a:72:f6:e3:33:8c:5d:09:4b:13:df:bb:8c:74:
#                    13:52:4b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Key Encipherment, Key Agreement, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4E:0B:EF:1A:A4:40:5B:A5:17:69:87:30:CA:34:68:43:D0:41:AE:F2
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://cert.startcom.org/sfsca-crl.crl
#
#                Full Name:
#                  URI:http://crl.startcom.org/sfsca-crl.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.23223.1.1.1
#                  CPS: http://cert.startcom.org/policy.pdf
#                  CPS: http://cert.startcom.org/intermediate.pdf
#                  User Notice:
#                    Organization: Start Commercial (StartCom) Ltd.
#                    Number: 1
#                    Explicit Text: Limited Liability, read the section *Legal Limitations* of the StartCom Certification Authority Policy available at http://cert.startcom.org/policy.pdf
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            Netscape Comment: 
#                StartCom Free SSL Certification Authority
#    Signature Algorithm: sha1WithRSAEncryption
#         16:6c:99:f4:66:0c:34:f5:d0:85:5e:7d:0a:ec:da:10:4e:38:
#         1c:5e:df:a6:25:05:4b:91:32:c1:e8:3b:f1:3d:dd:44:09:5b:
#         07:49:8a:29:cb:66:02:b7:b1:9a:f7:25:98:09:3c:8e:1b:e1:
#         dd:36:87:2b:4b:bb:68:d3:39:66:3d:a0:26:c7:f2:39:91:1d:
#         51:ab:82:7b:7e:d5:ce:5a:e4:e2:03:57:70:69:97:08:f9:5e:
#         58:a6:0a:df:8c:06:9a:45:16:16:38:0a:5e:57:f6:62:c7:7a:
#         02:05:e6:bc:1e:b5:f2:9e:f4:a9:29:83:f8:b2:14:e3:6e:28:
#         87:44:c3:90:1a:de:38:a9:3c:ac:43:4d:64:45:ce:dd:28:a9:
#         5c:f2:73:7b:04:f8:17:e8:ab:b1:f3:2e:5c:64:6e:73:31:3a:
#         12:b8:bc:b3:11:e4:7d:8f:81:51:9a:3b:8d:89:f4:4d:93:66:
#         7b:3c:03:ed:d3:9a:1d:9a:f3:65:50:f5:a0:d0:75:9f:2f:af:
#         f0:ea:82:43:98:f8:69:9c:89:79:c4:43:8e:46:72:e3:64:36:
#         12:af:f7:25:1e:38:89:90:77:7e:c3:6b:6a:b9:c3:cb:44:4b:
#         ac:78:90:8b:e7:c7:2c:1e:4b:11:44:c8:34:52:27:cd:0a:5d:
#         9f:85:c1:89:d5:1a:78:f2:95:10:53:32:dd:80:84:66:75:d9:
#         b5:68:28:fb:61:2e:be:84:a8:38:c0:99:12:86:a5:1e:67:64:
#         ad:06:2e:2f:a9:70:85:c7:96:0f:7c:89:65:f5:8e:43:54:0e:
#         ab:dd:a5:80:39:94:60:c0:34:c9:96:70:2c:a3:12:f5:1f:48:
#         7b:bd:1c:7e:6b:b7:9d:90:f4:22:3b:ae:f8:fc:2a:ca:fa:82:
#         52:a0:ef:af:4b:55:93:eb:c1:b5:f0:22:8b:ac:34:4e:26:22:
#         04:a1:87:2c:75:4a:b7:e5:7d:13:d7:b8:0c:64:c0:36:d2:c9:
#         2f:86:12:8c:23:09:c1:1b:82:3b:73:49:a3:6a:57:87:94:e5:
#         d6:78:c5:99:43:63:e3:4d:e0:77:2d:e1:65:99:72:69:04:1a:
#         47:09:e6:0f:01:56:24:fb:1f:bf:0e:79:a9:58:2e:b9:c4:09:
#         01:7e:95:ba:6d:00:06:3e:b2:ea:4a:10:39:d8:d0:2b:f5:bf:
#         ec:75:bf:97:02:c5:09:1b:08:dc:55:37:e2:81:fb:37:84:43:
#         62:20:ca:e7:56:4b:65:ea:fe:6c:c1:24:93:24:a1:34:eb:05:
#         ff:9a:22:ae:9b:7d:3f:f1:65:51:0a:a6:30:6a:b3:f4:88:1c:
#         80:0d:fc:72:8a:e8:83:5e

[p11-kit-object-v1]
label: "Swedish Government Root Authority v1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyhxPdBX31V7JwFiEMufc
/FGRkM4RIuElcINCcPtw3BsLb8It0IrbXVYpqrdehbV358FaIGLIl0JhwkNw21hs
deALtjKK4KQtRb7nWzuLerH9Bcwzf5/wW+1yjs0z08kSi8CTQKOPhm7fjYjz5mpM
b6VG+mimWxCWgy5XoE+PFVk2pW5ohEUeEIe24lXVuL+rt65lv1dHjMTj5AKN89wz
2+8nR/jsy/I85wnz+eX5i8fpWuAtk6uqKTYvfsbI9vDmgEUxFjRq8OhJOURhAPOb
5r4KZRsyI3lid6wifxukXXqw56zY4HYDL33va/c376OiZBzM133agqLOtQFN+Aks
NQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swedish Government Root Authority v1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3e:bd:43:96:a3:65:42:a8:49:b6:91:a8:12:51:26:cf
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = SE, O = Swedish Social Insurance Agency, CN = Swedish Government Root Authority v1
#        Validity
#            Not Before: Apr 14 13:33:23 2010 GMT
#            Not After : Apr 14 13:43:19 2030 GMT
#        Subject: C = SE, O = Swedish Social Insurance Agency, CN = Swedish Government Root Authority v1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ca:1c:4f:74:15:f7:d5:5e:c9:c0:58:84:32:e7:
#                    dc:fc:51:91:90:ce:11:22:e1:25:70:83:42:70:fb:
#                    70:dc:1b:0b:6f:c2:2d:d0:8a:db:5d:56:29:aa:b7:
#                    5e:85:b5:77:e7:c1:5a:20:62:c8:97:42:61:c2:43:
#                    70:db:58:6c:75:e0:0b:b6:32:8a:e0:a4:2d:45:be:
#                    e7:5b:3b:8b:7a:b1:fd:05:cc:33:7f:9f:f0:5b:ed:
#                    72:8e:cd:33:d3:c9:12:8b:c0:93:40:a3:8f:86:6e:
#                    df:8d:88:f3:e6:6a:4c:6f:a5:46:fa:68:a6:5b:10:
#                    96:83:2e:57:a0:4f:8f:15:59:36:a5:6e:68:84:45:
#                    1e:10:87:b6:e2:55:d5:b8:bf:ab:b7:ae:65:bf:57:
#                    47:8c:c4:e3:e4:02:8d:f3:dc:33:db:ef:27:47:f8:
#                    ec:cb:f2:3c:e7:09:f3:f9:e5:f9:8b:c7:e9:5a:e0:
#                    2d:93:ab:aa:29:36:2f:7e:c6:c8:f6:f0:e6:80:45:
#                    31:16:34:6a:f0:e8:49:39:44:61:00:f3:9b:e6:be:
#                    0a:65:1b:32:23:79:62:77:ac:22:7f:1b:a4:5d:7a:
#                    b0:e7:ac:d8:e0:76:03:2f:7d:ef:6b:f7:37:ef:a3:
#                    a2:64:1c:cc:d7:7d:da:82:a2:ce:b5:01:4d:f8:09:
#                    2c:35
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Subject Key Identifier: 
#                5D:07:BA:F7:8D:5D:49:F0:5C:95:90:09:F3:5E:EA:AC:D0:F6:43:B6
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         30:df:a4:9c:e8:94:73:29:6b:ae:1f:0c:70:ba:4c:fe:64:7d:
#         ac:4f:af:49:0f:72:8b:a4:b2:00:48:69:4e:d5:f2:84:33:0b:
#         8d:73:db:ce:69:0e:b7:62:bf:b1:91:e4:6a:e1:12:49:7c:46:
#         47:9b:84:d8:98:29:2c:07:83:24:f0:1e:eb:71:9d:91:68:7a:
#         f7:5b:43:ad:82:04:0f:43:df:26:bd:82:5d:b6:91:bc:62:be:
#         43:5a:a3:54:6f:7e:51:31:2d:f9:37:9c:b6:1f:a8:fb:e7:11:
#         9b:16:0b:ee:61:12:54:d5:a5:84:d9:ff:9f:92:27:9d:53:f7:
#         b6:0b:33:17:c6:eb:b2:ea:82:f2:f6:43:76:1c:bc:31:93:30:
#         9d:e9:48:62:0e:3e:43:3b:ac:29:cc:94:e0:2b:6c:9a:bf:17:
#         de:f1:ca:f0:e6:1d:85:d2:0f:ab:bd:87:9d:82:4d:86:30:35:
#         b4:09:d3:40:a8:bb:b7:22:fe:78:a8:db:d1:50:69:80:33:60:
#         2d:7d:8f:84:b9:ec:87:d2:98:e9:0b:cc:db:79:18:71:13:58:
#         a0:f9:6b:d6:ce:e4:46:4c:00:77:8a:2f:5c:9d:ae:89:05:eb:
#         ea:1c:e0:9a:63:f9:bb:46:a3:b9:4a:bd:9d:1a:7d:ca:84:cd:
#         fe:90:f1:ba

[p11-kit-object-v1]
label: "Swedish Government Root Authority v2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swedish Government Root Authority v2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:12:15:9f:ab:8a:75:93:44:94:ca:77:40:56:2e:ef
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = SE, O = Swedish Social Insurance Agency, CN = Swedish Government Root Authority v2
#        Validity
#            Not Before: May  5 11:15:23 2015 GMT
#            Not After : May  5 11:24:19 2040 GMT
#        Subject: C = SE, O = Swedish Social Insurance Agency, CN = Swedish Government Root Authority v2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:ae:b5:43:bc:42:45:4b:35:63:3f:02:4b:c5:
#                    ff:db:36:d7:27:c5:c2:ae:45:66:a3:71:87:16:4d:
#                    89:4f:61:94:e0:56:46:b8:d0:44:13:e6:73:90:f0:
#                    61:78:41:8a:e0:1a:7e:37:ac:02:29:be:e8:ff:02:
#                    26:c6:1a:7c:0a:b1:8f:64:29:a2:da:07:8a:d5:24:
#                    85:68:19:92:32:df:9f:29:60:58:6d:2a:85:80:11:
#                    36:c9:b6:c2:d3:9e:84:0c:ba:51:11:cc:54:e9:ab:
#                    06:30:12:8f:20:77:05:c0:c6:8d:9a:9b:59:c8:b6:
#                    85:e8:70:07:02:b1:1e:ff:d7:69:cf:16:46:8b:61:
#                    2f:42:cd:52:a6:d8:0e:7a:2f:87:2d:c6:2f:3c:22:
#                    43:b1:93:7e:c3:16:76:d9:cc:d7:8b:ec:11:1b:d0:
#                    c9:71:14:c2:89:49:7e:f1:a4:10:aa:35:3c:a8:1b:
#                    bb:ff:ec:32:40:e5:bd:2a:f3:a6:01:13:c8:8c:97:
#                    19:90:ce:63:f9:b0:6b:7d:f7:f9:8a:ce:6e:e0:85:
#                    e7:db:94:d5:7a:20:25:a0:35:f0:a9:f7:af:5a:28:
#                    5a:0c:c8:f3:74:39:8b:31:3b:22:cc:49:25:c9:6f:
#                    b8:5c:7a:2e:2c:96:e3:2f:a3:3e:ca:79:77:69:91:
#                    5a:f8:f0:c5:53:37:4e:53:6d:49:27:56:62:ca:e5:
#                    f9:73:60:a9:17:3b:5b:a2:25:af:2d:7b:c9:b7:db:
#                    cf:19:11:3a:33:71:39:59:5a:03:e9:e7:2c:0c:ff:
#                    6d:9c:72:63:63:80:05:58:53:86:dc:28:75:16:c2:
#                    e5:f0:13:59:a1:81:ff:05:0c:99:a8:b6:3c:6c:2e:
#                    c5:0e:00:98:81:e9:83:77:66:43:3b:5a:8e:85:45:
#                    4c:b2:cf:b9:3d:e4:9c:36:93:40:7a:53:15:29:d4:
#                    11:90:ba:a1:60:8a:9d:ab:f4:4a:4a:6a:dd:87:aa:
#                    c1:ed:05:da:9e:5b:56:e1:88:4f:2a:6b:95:28:86:
#                    66:50:a1:ef:da:4a:b2:90:0a:36:37:49:85:97:42:
#                    78:07:67:e6:9b:20:a1:0c:6c:c9:cf:cf:fe:77:95:
#                    84:5a:7a:3b:17:b0:ef:4c:f7:2d:91:aa:cf:19:6f:
#                    c6:f9:12:28:e7:1e:0a:a6:96:cd:21:b0:03:62:50:
#                    83:06:20:e6:e8:de:df:43:16:16:b9:81:a0:f0:81:
#                    34:5b:cb:c1:89:f6:f3:e8:22:b8:ce:b8:52:3e:51:
#                    1e:b1:05:b8:b7:03:2b:0b:ac:74:75:53:24:e1:76:
#                    b8:4f:25:76:5d:ef:d1:9a:f3:6e:4a:b8:7c:4b:f8:
#                    8a:c0:19
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Subject Key Identifier: 
#                63:6B:42:60:53:57:11:BB:C8:24:89:25:02:66:44:74:A1:0D:25:6E
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, E-mail Protection, 1.3.6.1.4.1.311.10.3.12, Code Signing, Time Stamping
#    Signature Algorithm: sha256WithRSAEncryption
#         23:2e:aa:85:97:4b:a4:5c:10:af:da:f8:3d:bd:93:58:2f:78:
#         fb:19:77:03:39:16:47:49:72:55:cc:87:e8:bd:a4:7f:d2:ab:
#         24:ac:e7:d4:50:ee:9d:d8:83:c6:99:20:fb:16:2f:88:c6:17:
#         37:ca:8b:1e:ab:d0:e2:6c:07:58:b8:64:91:a1:10:a1:69:37:
#         75:5e:fe:da:73:14:e6:8a:6b:be:c2:60:21:2f:c0:f9:a3:04:
#         48:36:5b:37:be:da:6c:fd:e9:96:8e:9e:f1:53:7c:8f:65:44:
#         a7:55:7d:0b:94:4e:54:f6:ff:32:bd:2f:7d:9c:a5:5e:42:c4:
#         4c:29:e3:10:64:2f:e6:cf:5a:3b:34:55:28:61:d1:27:12:bb:
#         6e:54:9b:81:58:ac:d5:5e:9d:57:03:a0:4d:d1:ff:37:74:a6:
#         8d:f3:f9:95:fd:2a:89:75:7a:79:37:fd:26:79:2f:27:73:7f:
#         a9:19:20:e5:d0:5f:98:e8:96:05:8f:98:79:e9:79:10:41:29:
#         01:43:f5:69:37:cc:50:10:68:b5:d8:44:4e:0e:f2:99:e3:27:
#         2c:6a:8e:5f:bb:7d:bb:6b:71:4b:06:8a:dd:2a:d8:0a:3f:5b:
#         c8:72:2e:58:61:0a:0f:81:68:1e:47:c7:e9:2d:ba:ef:8d:dc:
#         0e:a3:23:c3:b2:2d:b5:47:b1:8b:b4:3e:27:48:e7:dc:08:62:
#         0c:54:fe:43:d7:95:4a:bf:07:2f:4a:40:7e:06:a5:51:87:26:
#         89:05:dd:3c:ca:4f:fe:1c:27:e9:db:88:1e:c0:b2:fe:e3:ef:
#         1f:7e:b1:e8:59:95:a0:4f:ab:0a:89:00:e0:73:b2:e7:1c:c1:
#         17:50:80:87:4c:d2:43:19:59:95:d2:5b:14:5b:0a:5b:c0:7c:
#         89:71:7a:b5:0a:c0:8a:45:2f:ee:c4:c0:fe:54:2d:e7:95:24:
#         77:05:2e:ee:74:c6:a0:90:b1:73:dc:42:d6:a0:75:c9:58:59:
#         05:a2:de:11:bf:59:e9:0d:a7:26:c2:6e:c0:46:8a:c6:1e:d3:
#         f5:ea:0f:7d:3d:72:cd:19:95:4c:ba:e0:68:97:8d:58:c0:6a:
#         ef:79:f7:b2:68:6a:b8:72:36:c3:24:0c:e8:32:ed:bd:f1:9f:
#         c8:ef:de:75:d2:db:76:a9:94:27:38:f4:01:61:bf:66:38:8f:
#         6a:3d:dc:00:5b:b3:fc:44:df:03:4b:f9:f1:76:25:35:ff:52:
#         1f:08:1d:d0:a5:14:e9:8b:06:2b:78:83:2c:71:5c:4f:91:87:
#         63:d6:0c:0e:05:88:3c:94:a0:b1:5a:54:16:df:dd:51:c3:a8:
#         36:2e:2c:82:7c:b9:9a:b0

[p11-kit-object-v1]
label: "Swedish Government Root Authority v3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAuh6iaRtoT1yPuvQjx15m
BXiFNlijon9n76IMFpKkSovgoJKHVTcLxNHE0EBDlzJQT+yVR7c/r0MF5YSXCe9W
VOdDM0f9rfE6m5ik4eRRo7msjAvuJQYJ8tO6NWdhjMK9JsvXY8zXgzPZTOLv+Ruf
qMsNdgEtcskiu2iR3pAPOz20Qr0ZfZ+EXDx+QjeGsWDCSIdSTlxX/s6Srso+Vrez
npWalPgvodCiLsJUWmzMzNatS0fQLoeCM6h7UDmnKiyxWycKn631FOv8jVOycytU
I/SMl5mX+zXczLX6MxQmjXWnJKboFC4tpoAog5o/uMo7x/UY4P3sjnn7qkJsSksW
fvOCA2665xEGpZ+EK9JgbelG7kFalrkU/Rw/hhLxVCYm/WeAL+WoLSguQ7dkwu/k
t36W3ISLJ9l2PZiBUxTcQkWhVGf52hhmkAq0R5A8AeUro2bvb/syg/EzfTIhbKVF
FT8v81WRSJOfJc8tPDk7Ug0ar8ffq2+A2JDLnnFyakJpk+qSAD1JBNmjXLpF+wIQ
/61pdFKlOGOaZogEshG6E6o51YNf7WVbU8idXLKFoHhwNU1cJBCk9jEqklVB2fMX
bJkTWPrdKNBsE71bh42Tg61YKVYVtFgnSpsRbKCmZ0U6ztDYzv+QM+xaMU0PUhL7
rfZhX+Qvbw1mMOWgT8/P/V8CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swedish Government Root Authority v3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            32:69:a2:bf:40:6b:8d:b4:47:83:64:3c:8b:0d:c9:43
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = SE, O = Swedish Social Insurance Agency, CN = Swedish Government Root Authority v3
#        Validity
#            Not Before: Sep 29 11:32:32 2015 GMT
#            Not After : Sep 29 11:42:09 2040 GMT
#        Subject: C = SE, O = Swedish Social Insurance Agency, CN = Swedish Government Root Authority v3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:1e:a2:69:1b:68:4f:5c:8f:ba:f4:23:c7:5e:
#                    66:05:78:85:36:58:a3:a2:7f:67:ef:a2:0c:16:92:
#                    a4:4a:8b:e0:a0:92:87:55:37:0b:c4:d1:c4:d0:40:
#                    43:97:32:50:4f:ec:95:47:b7:3f:af:43:05:e5:84:
#                    97:09:ef:56:54:e7:43:33:47:fd:ad:f1:3a:9b:98:
#                    a4:e1:e4:51:a3:b9:ac:8c:0b:ee:25:06:09:f2:d3:
#                    ba:35:67:61:8c:c2:bd:26:cb:d7:63:cc:d7:83:33:
#                    d9:4c:e2:ef:f9:1b:9f:a8:cb:0d:76:01:2d:72:c9:
#                    22:bb:68:91:de:90:0f:3b:3d:b4:42:bd:19:7d:9f:
#                    84:5c:3c:7e:42:37:86:b1:60:c2:48:87:52:4e:5c:
#                    57:fe:ce:92:ae:ca:3e:56:b7:b3:9e:95:9a:94:f8:
#                    2f:a1:d0:a2:2e:c2:54:5a:6c:cc:cc:d6:ad:4b:47:
#                    d0:2e:87:82:33:a8:7b:50:39:a7:2a:2c:b1:5b:27:
#                    0a:9f:ad:f5:14:eb:fc:8d:53:b2:73:2b:54:23:f4:
#                    8c:97:99:97:fb:35:dc:cc:b5:fa:33:14:26:8d:75:
#                    a7:24:a6:e8:14:2e:2d:a6:80:28:83:9a:3f:b8:ca:
#                    3b:c7:f5:18:e0:fd:ec:8e:79:fb:aa:42:6c:4a:4b:
#                    16:7e:f3:82:03:6e:ba:e7:11:06:a5:9f:84:2b:d2:
#                    60:6d:e9:46:ee:41:5a:96:b9:14:fd:1c:3f:86:12:
#                    f1:54:26:26:fd:67:80:2f:e5:a8:2d:28:2e:43:b7:
#                    64:c2:ef:e4:b7:7e:96:dc:84:8b:27:d9:76:3d:98:
#                    81:53:14:dc:42:45:a1:54:67:f9:da:18:66:90:0a:
#                    b4:47:90:3c:01:e5:2b:a3:66:ef:6f:fb:32:83:f1:
#                    33:7d:32:21:6c:a5:45:15:3f:2f:f3:55:91:48:93:
#                    9f:25:cf:2d:3c:39:3b:52:0d:1a:af:c7:df:ab:6f:
#                    80:d8:90:cb:9e:71:72:6a:42:69:93:ea:92:00:3d:
#                    49:04:d9:a3:5c:ba:45:fb:02:10:ff:ad:69:74:52:
#                    a5:38:63:9a:66:88:04:b2:11:ba:13:aa:39:d5:83:
#                    5f:ed:65:5b:53:c8:9d:5c:b2:85:a0:78:70:35:4d:
#                    5c:24:10:a4:f6:31:2a:92:55:41:d9:f3:17:6c:99:
#                    13:58:fa:dd:28:d0:6c:13:bd:5b:87:8d:93:83:ad:
#                    58:29:56:15:b4:58:27:4a:9b:11:6c:a0:a6:67:45:
#                    3a:ce:d0:d8:ce:ff:90:33:ec:5a:31:4d:0f:52:12:
#                    fb:ad:f6:61:5f:e4:2f:6f:0d:66:30:e5:a0:4f:cf:
#                    cf:fd:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                9C:BC:01:E7:AB:64:35:F5:31:9B:8D:B5:FB:17:99:88:02:CB:9B:F2
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         87:ab:6a:e4:e7:6b:24:52:3d:f6:22:83:4f:53:04:45:32:9c:
#         61:5a:16:5c:9c:44:b5:a3:d1:96:d0:40:fe:cf:66:15:5e:7e:
#         40:00:20:15:fd:a7:aa:64:da:a7:61:66:68:c2:dd:52:71:25:
#         a0:6a:b9:dd:c0:cd:ce:86:08:d4:3c:35:11:2f:7d:f4:6f:d2:
#         da:0c:97:03:65:97:83:b4:3e:3a:cb:09:74:8d:eb:05:ca:7a:
#         e9:80:b0:b7:51:2d:22:93:e3:9a:19:ee:ed:97:08:21:83:ad:
#         c7:0a:91:5f:c4:ca:db:5e:af:b8:e7:8c:ba:3a:49:d2:55:03:
#         35:19:19:50:4a:e2:86:a7:bb:78:3d:95:fd:b1:1f:46:f2:4f:
#         66:f2:fb:bf:85:64:b6:0a:23:18:92:09:9e:49:45:31:b6:d6:
#         14:57:9e:fc:89:45:74:7f:39:cc:c0:6a:68:c8:cf:47:d0:e1:
#         1e:c7:d3:2f:2d:f9:2c:24:3b:fc:6a:ba:94:13:de:cc:72:f2:
#         a2:1d:cb:1f:9f:d5:83:77:26:5e:7e:9b:a0:af:69:9f:78:db:
#         a5:c1:6e:71:5c:48:42:4e:2b:d8:78:b8:d5:0f:a5:3f:6c:cb:
#         8f:90:cd:47:d8:90:19:49:85:d6:6c:fc:e2:ab:aa:42:bf:cb:
#         13:97:bf:69:44:75:63:35:2d:da:a0:c7:fd:61:f7:ca:41:3d:
#         54:9c:f4:36:c0:e4:6e:21:48:9f:5d:71:62:81:d3:f2:25:e6:
#         59:8c:59:41:26:48:a7:e3:eb:67:6a:d3:ec:34:b7:98:f7:cc:
#         ca:a3:36:06:95:e7:c8:30:59:f7:ff:c9:a1:d1:e4:79:bc:df:
#         13:1f:2e:d9:b3:75:d1:04:b7:23:09:21:cc:1d:21:1c:27:9c:
#         0e:2b:fa:c1:87:18:c9:fa:f9:49:83:8c:12:16:fb:c5:12:ce:
#         3b:0f:42:fa:f0:05:65:7e:a8:c7:eb:52:4a:f9:98:5e:71:a3:
#         ac:12:c7:28:71:1a:5a:75:cf:87:ca:1f:37:28:1c:14:9d:90:
#         50:6f:c6:bf:4a:cc:c7:25:cf:31:dd:5b:91:4e:76:a8:11:d5:
#         76:66:d9:bf:80:73:62:b0:ec:c3:fe:44:bc:cd:59:13:0b:0c:
#         2d:d8:a1:cc:aa:62:4d:54:45:5e:a4:52:a3:8c:57:3c:14:31:
#         93:54:ce:a5:16:54:5e:2d:42:b3:ee:65:a9:b6:9d:3f:6c:ce:
#         61:d9:56:cb:de:ea:a0:56:de:6d:86:03:fa:b7:81:6a:8c:d2:
#         d8:f3:d7:b6:c0:ac:29:84:59:23:0e:9b:97:6a:e6:a0:ce:d5:
#         2a:54:18:ef:50:98:79:20

[p11-kit-object-v1]
label: "SwissSign Gold CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Gold CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            bb:40:1c:43:f5:5e:4f:b0
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CH, O = SwissSign AG, CN = SwissSign Gold CA - G2
#        Validity
#            Not Before: Oct 25 08:30:35 2006 GMT
#            Not After : Oct 25 08:30:35 2036 GMT
#        Subject: C = CH, O = SwissSign AG, CN = SwissSign Gold CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:af:e4:ee:7e:8b:24:0e:12:6e:a9:50:2d:16:44:
#                    3b:92:92:5c:ca:b8:5d:84:92:42:13:2a:bc:65:57:
#                    82:40:3e:57:24:cd:50:8b:25:2a:b7:6f:fc:ef:a2:
#                    d0:c0:1f:02:24:4a:13:96:8f:23:13:e6:28:58:00:
#                    a3:47:c7:06:a7:84:23:2b:bb:bd:96:2b:7f:55:cc:
#                    8b:c1:57:1f:0e:62:65:0f:dd:3d:56:8a:73:da:ae:
#                    7e:6d:ba:81:1c:7e:42:8c:20:35:d9:43:4d:84:fa:
#                    84:db:52:2c:f3:0e:27:77:0b:6b:bf:11:2f:72:78:
#                    9f:2e:d8:3e:e6:18:37:5a:2a:72:f9:da:62:90:92:
#                    95:ca:1f:9c:e9:b3:3c:2b:cb:f3:01:13:bf:5a:cf:
#                    c1:b5:0a:60:bd:dd:b5:99:64:53:b8:a0:96:b3:6f:
#                    e2:26:77:91:8c:e0:62:10:02:9f:34:0f:a4:d5:92:
#                    33:51:de:be:8d:ba:84:7a:60:3c:6a:db:9f:2b:ec:
#                    de:de:01:3f:6e:4d:e5:50:86:cb:b4:af:ed:44:40:
#                    c5:ca:5a:8c:da:d2:2b:7c:a8:ee:be:a6:e5:0a:aa:
#                    0e:a5:df:05:52:b7:55:c7:22:5d:32:6a:97:97:63:
#                    13:db:c9:db:79:36:7b:85:3a:4a:c5:52:89:f9:24:
#                    e7:9d:77:a9:82:ff:55:1c:a5:71:69:2b:d1:02:24:
#                    f2:b3:26:d4:6b:da:04:55:e5:c1:0a:c7:6d:30:37:
#                    90:2a:e4:9e:14:33:5e:16:17:55:c5:5b:b5:cb:34:
#                    89:92:f1:9d:26:8f:a1:07:d4:c6:b2:78:50:db:0c:
#                    0c:0b:7c:0b:8c:41:d7:b9:e9:dd:8c:88:f7:a3:4d:
#                    b2:32:cc:d8:17:da:cd:b7:ce:66:9d:d4:fd:5e:ff:
#                    bd:97:3e:29:75:e7:7e:a7:62:58:af:25:34:a5:41:
#                    c7:3d:bc:0d:50:ca:03:03:0f:08:5a:1f:95:73:78:
#                    62:bf:af:72:14:69:0e:a5:e5:03:0e:78:8e:26:28:
#                    42:f0:07:0b:62:20:10:67:39:46:fa:a9:03:cc:04:
#                    38:7a:66:ef:20:83:b5:8c:4a:56:8e:91:00:fc:8e:
#                    5c:82:de:88:a0:c3:e2:68:6e:7d:8d:ef:3c:dd:65:
#                    f4:5d:ac:51:ef:24:80:ae:aa:56:97:6f:f9:ad:7d:
#                    da:61:3f:98:77:3c:a5:91:b6:1c:8c:26:da:65:a2:
#                    09:6d:c1:e2:54:e3:b9:ca:4c:4c:80:8f:77:7b:60:
#                    9a:1e:df:b6:f2:48:1e:0e:ba:4e:54:6d:98:e0:e1:
#                    a2:1a:a2:77:50:cf:c4:63:92:ec:47:19:9d:eb:e6:
#                    6b:ce:c1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                5B:25:7B:96:A4:65:51:7E:B8:39:F3:C0:78:66:5E:E8:3A:E7:F0:EE
#            X509v3 Authority Key Identifier: 
#                keyid:5B:25:7B:96:A4:65:51:7E:B8:39:F3:C0:78:66:5E:E8:3A:E7:F0:EE
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.89.1.2.1.1
#                  CPS: http://repository.swisssign.com/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         27:ba:e3:94:7c:f1:ae:c0:de:17:e6:e5:d8:d5:f5:54:b0:83:
#         f4:bb:cd:5e:05:7b:4f:9f:75:66:af:3c:e8:56:7e:fc:72:78:
#         38:03:d9:2b:62:1b:00:b9:f8:e9:60:cd:cc:ce:51:8a:c7:50:
#         31:6e:e1:4a:7e:18:2f:69:59:b6:3d:64:81:2b:e3:83:84:e6:
#         22:87:8e:7d:e0:ee:02:99:61:b8:1e:f4:b8:2b:88:12:16:84:
#         c2:31:93:38:96:31:a6:b9:3b:53:3f:c3:24:93:56:5b:69:92:
#         ec:c5:c1:bb:38:00:e3:ec:17:a9:b8:dc:c7:7c:01:83:9f:32:
#         47:ba:52:22:34:1d:32:7a:09:56:a7:7c:25:36:a9:3d:4b:da:
#         c0:82:6f:0a:bb:12:c8:87:4b:27:11:f9:1e:2d:c7:93:3f:9e:
#         db:5f:26:6b:52:d9:2e:8a:f1:14:c6:44:8d:15:a9:b7:bf:bd:
#         de:a6:1a:ee:ae:2d:fb:48:77:17:fe:bb:ec:af:18:f5:2a:51:
#         f0:39:84:97:95:6c:6e:1b:c3:2b:c4:74:60:79:25:b0:0a:27:
#         df:df:5e:d2:39:cf:45:7d:42:4b:df:b3:2c:1e:c5:c6:5d:ca:
#         55:3a:a0:9c:69:9a:8f:da:ef:b2:b0:3c:9f:87:6c:12:2b:65:
#         70:15:52:31:1a:24:cf:6f:31:23:50:1f:8c:4f:8f:23:c3:74:
#         41:63:1c:55:a8:14:dd:3e:e0:51:50:cf:f1:1b:30:56:0e:92:
#         b0:82:85:d8:83:cb:22:64:bc:2d:b8:25:d5:54:a2:b8:06:ea:
#         ad:92:a4:24:a0:c1:86:b5:4a:13:6a:47:cf:2e:0b:56:95:54:
#         cb:ce:9a:db:6a:b4:a6:b2:db:41:08:86:27:77:f7:6a:a0:42:
#         6c:0b:38:ce:d7:75:50:32:92:c2:df:2b:30:22:48:d0:d5:41:
#         38:25:5d:a4:e9:5d:9f:c6:94:75:d0:45:fd:30:97:43:8f:90:
#         ab:0a:c7:86:73:60:4a:69:2d:de:a5:78:d7:06:da:6a:9e:4b:
#         3e:77:3a:20:13:22:01:d0:bf:68:9e:63:60:6b:35:4d:0b:6d:
#         ba:a1:3d:c0:93:e0:7f:23:b3:55:ad:72:25:4e:46:f9:d2:16:
#         ef:b0:64:c1:01:9e:e9:ca:a0:6a:98:0e:cf:d8:60:f2:2f:49:
#         b8:e4:42:e1:38:35:16:f4:c8:6e:4f:f7:81:56:e8:ba:a3:be:
#         23:af:ae:fd:6f:03:e0:02:3b:30:76:fa:1b:6d:41:cf:01:b1:
#         e9:b8:c9:66:f4:db:26:f3:3a:a4:74:f2:49:24:5b:c9:b0:d0:
#         57:c1:fa:3e:7a:e1:97:c9

[p11-kit-object-v1]
label: "SwissSign Gold Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Gold Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFejCCA2KgAwIBAgIJAN7E8kTzHab8MA0GCSqGSIb3DQEBCwUAMEoxCzAJBgNV
BAYTAkNIMRUwEwYDVQQKEwxTd2lzc1NpZ24gQUcxJDAiBgNVBAMTG1N3aXNzU2ln
biBHb2xkIFJvb3QgQ0EgLSBHMzAeFw0wOTA4MDQxMzMxNDdaFw0zNzA4MDQxMzMx
NDdaMEoxCzAJBgNVBAYTAkNIMRUwEwYDVQQKEwxTd2lzc1NpZ24gQUcxJDAiBgNV
BAMTG1N3aXNzU2lnbiBHb2xkIFJvb3QgQ0EgLSBHMzCCAiIwDQYJKoZIhvcNAQEB
BQADggIPADCCAgoCggIBAMPon8hlWp1nG8FFl7S0h0NbYWCAnvJ/XvlnRN1E+qu1
q3f/KhlMzm/Ej0Gf4OLNcuDR1FJhQQkKvwpw++CDaWEpytsimlul5t0XlbBvhI46
PmRaQfsbWPz9Kz6ypOasyYK8zvaV+Jd37Sb2WK6eJ+IPg+zFNljIe8/Vh6GphxoT
Z2EBbaZpnOKQ8StoZfPosHz8gj3erdgKAAlEeROc8P5udXvCvLNZAQt8xdUt8L//
bVfSSYHrtLNQrFv5CxUVjGn/ozkB7fzc3CeXjnuL1Wqm1uAdX80Bkeb1Ipi6LgkY
OG8TqIHS+yE35y20YueBkLDGeVm3Z3X+vo87+jbsr63ST3Q2AeVXqyMEzEpel89+
xu+MzJUjaY3LOMcZ9taKABQeND1v2gwLw7qX/BFLUmE+vzNnUxC/eBsJwke6Hq9Y
9XWBf71W8etW19lpDAfpNzGwEhwy71bZvnorfL3TPbxqM006PFAQhyfHegpnU9t/
gJvoniP6+Qg6i6GONFpIM19k05eGBxl9iJTOKnzFat+vvKmfzTqmurtU+X+P388O
WsStmryzOndzg0yTPJBotXxQlRHIgl6UcdBBGPvJxmXszom2ziKzEVs/4J0+Gxho
DaoDoWdZv2udvPjyZS+aQTpF2F7QNmxvOx5jtI6YTBPbIQ6fe+3qoKpxw+ujoNIl
AgMBAAGjYzBhMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/MB0GA1Ud
DgQWBBRclwZGNKvfMMV8xQ1VcWYwtWCPnjAfBgNVHSMEGDAWgBRclwZGNKvfMMV8
xQ1VcWYwtWCPnjANBgkqhkiG9w0BAQsFAAOCAgEAd0tN3uqFSqssJ9ZFx/FfIMFb
YO0Hy6Iz3DbPx5TxBsfV2s/NrYQ+/xJIf0HopWZXMMQd5KcaLy1Cwe9Gc7LV9Vr9
Dnpr0sgxow1IlldlY1UYwPzkisyYhlurDIonN/ojaFlcJtehwcK5Tiz/KV7mlAu+
zXJPleiP9ve4Pl7Oz54RyawDKUiKqbamNLmsQP/EtnM3scd/qVHbSypHX0AkB4gG
tySz+3/3sIsz+r8jdaNc/qplGsK+8X2BdwOBsY3XlQ16PEKYt4+pfVDh31IGmqBS
VHiDB2FSCTdeipynxlHRXGPRhNzC29L6Wxg2fWa81CiXL3WWHIQHrIuOUxG+JCGq
Z/LBrYic07B4Z3j101gDIApdIPG152XMDiDj1d/mLxkrhWjBBCbPj+0FU6HdBw7r
QSbHtKksW+NpPWbAYhvAqobAN8MxBIZwOb5rXyFAQaB/5dkPOEtwX0n4hbgrLqof
k0FD+PuydDwfS1dbt9RRoZJKzr4Qou7YFCJ7uUG9jemIqdGPAxpg/z+HiaCZJyJm
sD5onnKIUTidEz5FbQXlRrVz7UOGsRQKHrzaDb8eJFxmjw6+of3G62m8Q3nXA3b5
3IeZuJjEzX9tEPkQvixC/pwpTYNrCr21jsRIiv0hB6aAfR+b6au9gmFECnEnX22b
kJ6u/zYks2gD1pWMa3M=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            de:c4:f2:44:f3:1d:a6:fc
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CH, O = SwissSign AG, CN = SwissSign Gold Root CA - G3
#        Validity
#            Not Before: Aug  4 13:31:47 2009 GMT
#            Not After : Aug  4 13:31:47 2037 GMT
#        Subject: C = CH, O = SwissSign AG, CN = SwissSign Gold Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c3:e8:9f:c8:65:5a:9d:67:1b:c1:45:97:b4:b4:
#                    87:43:5b:61:60:80:9e:f2:7f:5e:f9:67:44:dd:44:
#                    fa:ab:b5:ab:77:ff:2a:19:4c:ce:6f:c4:8f:41:9f:
#                    e0:e2:cd:72:e0:d1:d4:52:61:41:09:0a:bf:0a:70:
#                    fb:e0:83:69:61:29:ca:db:22:9a:5b:a5:e6:dd:17:
#                    95:b0:6f:84:8e:3a:3e:64:5a:41:fb:1b:58:fc:fd:
#                    2b:3e:b2:a4:e6:ac:c9:82:bc:ce:f6:95:f8:97:77:
#                    ed:26:f6:58:ae:9e:27:e2:0f:83:ec:c5:36:58:c8:
#                    7b:cf:d5:87:a1:a9:87:1a:13:67:61:01:6d:a6:69:
#                    9c:e2:90:f1:2b:68:65:f3:e8:b0:7c:fc:82:3d:de:
#                    ad:d8:0a:00:09:44:79:13:9c:f0:fe:6e:75:7b:c2:
#                    bc:b3:59:01:0b:7c:c5:d5:2d:f0:bf:ff:6d:57:d2:
#                    49:81:eb:b4:b3:50:ac:5b:f9:0b:15:15:8c:69:ff:
#                    a3:39:01:ed:fc:dc:dc:27:97:8e:7b:8b:d5:6a:a6:
#                    d6:e0:1d:5f:cd:01:91:e6:f5:22:98:ba:2e:09:18:
#                    38:6f:13:a8:81:d2:fb:21:37:e7:2d:b4:62:e7:81:
#                    90:b0:c6:79:59:b7:67:75:fe:be:8f:3b:fa:36:ec:
#                    af:ad:d2:4f:74:36:01:e5:57:ab:23:04:cc:4a:5e:
#                    97:cf:7e:c6:ef:8c:cc:95:23:69:8d:cb:38:c7:19:
#                    f6:d6:8a:00:14:1e:34:3d:6f:da:0c:0b:c3:ba:97:
#                    fc:11:4b:52:61:3e:bf:33:67:53:10:bf:78:1b:09:
#                    c2:47:ba:1e:af:58:f5:75:81:7f:bd:56:f1:eb:56:
#                    d7:d9:69:0c:07:e9:37:31:b0:12:1c:32:ef:56:d9:
#                    be:7a:2b:7c:bd:d3:3d:bc:6a:33:4d:3a:3c:50:10:
#                    87:27:c7:7a:0a:67:53:db:7f:80:9b:e8:9e:23:fa:
#                    f9:08:3a:8b:a1:8e:34:5a:48:33:5f:64:d3:97:86:
#                    07:19:7d:88:94:ce:2a:7c:c5:6a:df:af:bc:a9:9f:
#                    cd:3a:a6:ba:bb:54:f9:7f:8f:df:cf:0e:5a:c4:ad:
#                    9a:bc:b3:3a:77:73:83:4c:93:3c:90:68:b5:7c:50:
#                    95:11:c8:82:5e:94:71:d0:41:18:fb:c9:c6:65:ec:
#                    ce:89:b6:ce:22:b3:11:5b:3f:e0:9d:3e:1b:18:68:
#                    0d:aa:03:a1:67:59:bf:6b:9d:bc:f8:f2:65:2f:9a:
#                    41:3a:45:d8:5e:d0:36:6c:6f:3b:1e:63:b4:8e:98:
#                    4c:13:db:21:0e:9f:7b:ed:ea:a0:aa:71:c3:eb:a3:
#                    a0:d2:25
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                5C:97:06:46:34:AB:DF:30:C5:7C:C5:0D:55:71:66:30:B5:60:8F:9E
#            X509v3 Authority Key Identifier: 
#                keyid:5C:97:06:46:34:AB:DF:30:C5:7C:C5:0D:55:71:66:30:B5:60:8F:9E
#
#    Signature Algorithm: sha256WithRSAEncryption
#         77:4b:4d:de:ea:85:4a:ab:2c:27:d6:45:c7:f1:5f:20:c1:5b:
#         60:ed:07:cb:a2:33:dc:36:cf:c7:94:f1:06:c7:d5:da:cf:cd:
#         ad:84:3e:ff:12:48:7f:41:e8:a5:66:57:30:c4:1d:e4:a7:1a:
#         2f:2d:42:c1:ef:46:73:b2:d5:f5:5a:fd:0e:7a:6b:d2:c8:31:
#         a3:0d:48:96:57:65:63:55:18:c0:fc:e4:8a:cc:98:86:5b:ab:
#         0c:8a:27:37:fa:23:68:59:5c:26:d7:a1:c1:c2:b9:4e:2c:ff:
#         29:5e:e6:94:0b:be:cd:72:4f:95:e8:8f:f6:f7:b8:3e:5e:ce:
#         cf:9e:11:c9:ac:03:29:48:8a:a9:b6:a6:34:b9:ac:40:ff:c4:
#         b6:73:37:b1:c7:7f:a9:51:db:4b:2a:47:5f:40:24:07:88:06:
#         b7:24:b3:fb:7f:f7:b0:8b:33:fa:bf:23:75:a3:5c:fe:aa:65:
#         1a:c2:be:f1:7d:81:77:03:81:b1:8d:d7:95:0d:7a:3c:42:98:
#         b7:8f:a9:7d:50:e1:df:52:06:9a:a0:52:54:78:83:07:61:52:
#         09:37:5e:8a:9c:a7:c6:51:d1:5c:63:d1:84:dc:c2:db:d2:fa:
#         5b:18:36:7d:66:bc:d4:28:97:2f:75:96:1c:84:07:ac:8b:8e:
#         53:11:be:24:21:aa:67:f2:c1:ad:88:9c:d3:b0:78:67:78:f5:
#         d3:58:03:20:0a:5d:20:f1:b5:e7:65:cc:0e:20:e3:d5:df:e6:
#         2f:19:2b:85:68:c1:04:26:cf:8f:ed:05:53:a1:dd:07:0e:eb:
#         41:26:c7:b4:a9:2c:5b:e3:69:3d:66:c0:62:1b:c0:aa:86:c0:
#         37:c3:31:04:86:70:39:be:6b:5f:21:40:41:a0:7f:e5:d9:0f:
#         38:4b:70:5f:49:f8:85:b8:2b:2e:aa:1f:93:41:43:f8:fb:b2:
#         74:3c:1f:4b:57:5b:b7:d4:51:a1:92:4a:ce:be:10:a2:ee:d8:
#         14:22:7b:b9:41:bd:8d:e9:88:a9:d1:8f:03:1a:60:ff:3f:87:
#         89:a0:99:27:22:66:b0:3e:68:9e:72:88:51:38:9d:13:3e:45:
#         6d:05:e5:46:b5:73:ed:43:86:b1:14:0a:1e:bc:da:0d:bf:1e:
#         24:5c:66:8f:0e:be:a1:fd:c6:eb:69:bc:43:79:d7:03:76:f9:
#         dc:87:99:b8:98:c4:cd:7f:6d:10:f9:10:be:2c:42:fe:9c:29:
#         4d:83:6b:0a:bd:b5:8e:c4:48:8a:fd:21:07:a6:80:7d:1f:9b:
#         e9:ab:bd:82:61:44:0a:71:27:5f:6d:9b:90:9e:ae:ff:36:24:
#         b3:68:03:d6:95:8c:6b:73

[p11-kit-object-v1]
label: "SwissSign Platinum CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Platinum CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 5670595323396054351 (0x4eb200670c035d4f)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CH, O = SwissSign AG, CN = SwissSign Platinum CA - G2
#        Validity
#            Not Before: Oct 25 08:36:00 2006 GMT
#            Not After : Oct 25 08:36:00 2036 GMT
#        Subject: C = CH, O = SwissSign AG, CN = SwissSign Platinum CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:df:a2:02:e2:da:f8:fc:07:16:b1:de:60:aa:
#                    de:96:5c:64:1f:c7:2f:7e:cf:67:fa:44:42:d6:76:
#                    63:95:ae:eb:af:72:20:8a:45:47:86:62:78:86:d6:
#                    20:39:26:f4:ae:a3:fd:23:e7:a5:9c:b5:22:21:19:
#                    b7:37:93:22:c0:50:9c:82:7b:d4:d5:04:44:5c:cb:
#                    b4:c2:9f:92:be:24:d8:7b:67:22:e2:69:5f:e5:05:
#                    78:d4:87:d9:71:70:33:25:53:b4:87:3b:29:90:28:
#                    36:9a:55:44:30:68:a4:83:97:7f:0d:1e:9c:76:ff:
#                    15:9d:60:97:00:8d:8a:85:03:ec:80:be:ea:2c:6e:
#                    10:51:92:cc:7e:d5:a3:33:d8:d6:49:de:58:2a:af:
#                    f6:16:eb:4b:7b:90:32:97:b9:ba:9d:58:f1:f8:57:
#                    49:04:1e:a2:5d:06:70:dd:71:db:f9:dd:8b:9a:1b:
#                    8c:cf:3d:a3:4d:ce:cb:7c:f6:bb:9c:a0:fa:09:ce:
#                    23:62:b2:e9:0d:1f:e2:72:28:8f:9f:ac:68:20:7d:
#                    6f:3b:a8:85:31:09:7f:0b:c7:e8:65:e9:e3:78:0e:
#                    09:67:30:8b:34:82:fb:5d:e0:cc:9d:81:6d:62:ee:
#                    08:1e:04:2c:4e:9b:ec:fe:a9:4f:5f:fd:69:78:ef:
#                    09:1f:a1:b4:bf:fa:f3:ef:90:1e:4c:05:8b:1e:ea:
#                    7a:91:7a:c3:d7:e5:fb:30:bc:6c:1b:10:58:98:f7:
#                    1a:5f:d0:29:32:03:13:46:4d:61:6a:85:4c:52:74:
#                    2f:06:1f:7b:11:e2:84:97:c6:99:f3:6d:7f:d7:67:
#                    83:7e:13:68:d8:71:28:5a:d8:ce:dd:e8:10:14:9a:
#                    fe:6d:23:87:6e:8e:5a:70:3c:d5:8d:09:00:a7:aa:
#                    bc:b0:31:37:6d:c8:84:14:1e:5b:bd:45:63:20:6b:
#                    4b:74:8c:bd:db:3a:0e:c1:cf:5a:16:8f:a5:98:f2:
#                    76:89:b2:13:12:3b:0b:77:77:ac:bb:e5:3c:29:4a:
#                    92:72:ca:61:1a:2b:5e:4c:e2:83:74:77:fa:35:48:
#                    7a:85:4d:8d:9a:53:c4:df:78:ca:97:91:48:2b:45:
#                    2b:01:f7:1c:1a:a2:ed:18:ba:0a:bd:83:fa:6f:bc:
#                    8d:57:93:3b:d4:d4:a6:ce:1e:f1:a0:b1:ce:ab:fd:
#                    2b:28:9a:4f:1b:d7:c3:72:db:a4:c4:bf:5d:4c:f5:
#                    dd:7b:96:69:ee:68:80:e6:e7:98:ba:36:b7:fe:6e:
#                    ed:2b:bd:20:f8:65:19:da:55:09:7e:25:dc:fe:61:
#                    62:72:f9:7e:18:02:ef:63:b4:d0:fb:af:e5:3b:63:
#                    8c:67:8f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                50:AF:CC:07:87:15:47:6F:38:C5:B4:65:D1:DE:95:AA:E9:DF:9C:CC
#            X509v3 Authority Key Identifier: 
#                keyid:50:AF:CC:07:87:15:47:6F:38:C5:B4:65:D1:DE:95:AA:E9:DF:9C:CC
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.89.1.1.1.1
#                  CPS: http://repository.swisssign.com/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         08:85:a6:f5:16:0c:fc:44:1a:c1:63:e0:f9:55:46:08:fc:70:
#         1c:42:28:96:8e:b7:c5:c1:41:75:4e:09:71:79:e5:6d:96:ca:
#         4b:a5:88:60:d0:30:74:b8:ca:08:dc:b4:30:9e:40:07:16:6b:
#         65:95:77:01:ae:a4:b7:35:0b:81:da:71:15:a9:74:17:38:7b:
#         58:ca:f9:2f:fb:c0:65:76:8d:5b:01:b9:7d:de:82:3d:64:b8:
#         be:14:74:a3:0a:54:d3:2c:95:18:17:35:f5:51:6b:3f:8f:a2:
#         96:61:39:78:6b:4b:e5:a6:a0:f8:53:df:51:10:93:62:e7:80:
#         2f:e2:d1:e0:bc:8e:36:46:77:33:ec:b8:fb:8e:9a:2c:89:4d:
#         31:11:0f:26:9e:04:bb:b7:04:8d:0b:f2:b9:fc:5a:9d:3b:16:
#         b7:2f:c8:98:ab:fe:8a:50:59:2e:a3:3b:fc:29:5d:8b:c1:4b:
#         c9:e2:8a:13:1d:b1:bf:bb:42:1d:52:dd:4e:d8:14:5e:10:c6:
#         31:07:ef:71:27:f7:1b:39:09:dc:82:ea:8b:b3:95:86:5e:fd:
#         f5:da:5d:31:a6:e0:31:b6:94:e6:44:49:74:c5:16:e5:f7:1f:
#         03:61:28:c5:c8:cb:12:a0:42:4b:f9:6b:88:08:8d:b4:32:18:
#         f3:75:9f:c4:7f:00:4f:05:95:9c:a3:17:02:c3:b3:53:9b:aa:
#         20:39:29:2b:66:fa:9d:af:5e:b3:92:d2:b5:a6:e1:1a:f9:2d:
#         41:69:81:14:b4:b4:b5:ed:89:3d:ce:fb:a9:9d:35:42:44:b1:
#         1c:14:73:81:cf:2a:01:35:9a:31:d5:2d:8f:6d:84:df:80:4d:
#         57:e3:3f:c5:84:75:da:89:c6:30:bb:eb:8f:cb:22:08:a0:ae:
#         aa:f1:03:6c:3a:4b:4d:09:a5:0e:72:c6:56:6b:21:42:4e:23:
#         25:14:68:ae:76:0a:7c:0c:07:70:64:f9:9a:2f:f6:05:39:26:
#         c6:0c:8f:19:7f:43:5e:6e:f4:5b:15:2f:db:61:5d:e6:67:2f:
#         3f:08:94:f9:60:b4:98:31:da:74:f1:84:93:71:4d:5f:fb:60:
#         58:d1:fb:c4:c1:6d:89:a2:bb:20:1f:9d:71:91:cb:32:9b:13:
#         3d:3e:7d:92:52:35:ac:92:94:a2:d3:18:c2:7c:c7:ea:af:76:
#         05:16:dd:67:27:c2:7e:1c:07:22:21:f3:40:0a:1b:34:07:44:
#         13:c2:84:6a:8e:df:19:5a:bf:7f:eb:1d:e2:1a:38:d1:5c:af:
#         47:92:6b:80:b5:30:a5:c9:8d:d8:ab:31:81:1f:df:c2:66:37:
#         d3:93:a9:85:86:79:65:d2

[p11-kit-object-v1]
label: "SwissSign Platinum Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Platinum Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2467877037623116180 (0x223fa91720de8194)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CH, O = SwissSign AG, CN = SwissSign Platinum Root CA - G3
#        Validity
#            Not Before: Aug  4 13:34:04 2009 GMT
#            Not After : Aug  4 13:34:04 2037 GMT
#        Subject: C = CH, O = SwissSign AG, CN = SwissSign Platinum Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:94:a0:ef:13:1b:9f:44:20:1b:cd:c5:aa:22:bb:
#                    d9:f2:52:3e:7a:5a:58:77:e6:8d:a1:2b:c9:dc:a4:
#                    f3:e4:b3:13:94:00:62:9b:1c:f2:43:50:43:81:7e:
#                    af:30:36:49:ac:18:89:0c:18:45:b8:3e:c7:54:6d:
#                    e3:d8:9a:59:6b:8a:1a:25:a9:b6:b5:0d:b7:7d:23:
#                    f0:5f:7d:a8:07:a9:f7:3e:86:2e:c8:01:4d:dc:e6:
#                    36:ed:1d:e5:37:07:69:12:4b:e3:83:d1:04:1c:24:
#                    f0:1f:70:71:e7:19:ed:73:48:6e:95:2b:15:b6:56:
#                    e6:02:df:56:e9:9b:fa:ea:a6:ee:e0:c2:c3:ba:e0:
#                    cc:c6:c8:7b:d7:6f:3a:95:9b:3a:8f:be:5b:2c:d2:
#                    a9:a0:38:3e:d6:88:e1:b1:62:13:8e:dc:ab:30:67:
#                    cd:a8:6a:a6:63:2b:82:b0:cb:c7:3d:4e:ed:72:f6:
#                    7d:ab:32:4e:65:02:eb:0f:99:74:f8:1c:1a:28:8c:
#                    0e:45:00:93:2c:14:9f:6d:c7:1b:9e:f6:8a:dc:7b:
#                    78:e3:b4:94:47:1d:4d:05:6d:84:7a:90:54:b2:9e:
#                    8b:75:c2:80:df:87:39:3f:9f:fb:48:54:07:8d:a0:
#                    29:f5:f9:60:5f:5a:72:e8:bb:9b:a0:42:e0:08:00:
#                    34:a3:15:3c:13:e3:d6:1a:6b:02:b2:94:21:a3:9d:
#                    41:bc:2a:6b:4e:33:3b:a6:94:38:fc:3d:c7:2b:33:
#                    b3:2e:2b:06:74:ac:9b:10:6f:c5:4e:45:f7:5d:a1:
#                    56:03:2c:0d:5f:7a:bd:1e:de:1d:77:90:6b:da:a5:
#                    2d:8a:4c:e9:df:41:f4:e7:4b:ec:7d:95:42:9f:4c:
#                    a9:09:0f:43:88:3f:3d:93:e7:2b:f4:7a:48:da:68:
#                    c4:dd:12:80:31:1a:5d:24:54:26:a6:24:21:b3:4c:
#                    ad:da:17:08:36:02:57:c6:9c:86:70:c9:75:c9:9e:
#                    7c:61:d8:78:e6:b9:e8:14:69:f9:1c:10:28:12:5d:
#                    4b:75:50:ba:3c:d0:67:70:55:55:56:4b:fb:3d:1c:
#                    d8:db:79:4d:97:df:b8:9e:db:17:2c:d5:35:07:b8:
#                    50:a9:f7:8e:f7:56:ff:7a:67:43:4f:20:d9:ca:66:
#                    d6:38:60:4b:ee:94:31:d6:0d:a2:48:9b:ff:34:69:
#                    94:c6:35:f5:96:88:ef:aa:66:cc:81:a6:eb:4c:53:
#                    ff:32:74:a7:b6:9d:98:57:b4:ba:26:a9:f1:33:33:
#                    62:7e:3a:b0:03:11:57:ff:dc:6f:11:23:ad:3e:c6:
#                    0a:d0:cc:54:b7:2d:c2:93:1d:e5:c2:a6:8c:c7:d8:
#                    ef:53:f7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                56:2A:3F:90:58:F4:17:5A:14:B2:D7:08:1B:85:5B:54:6A:54:1A:28
#            X509v3 Authority Key Identifier: 
#                keyid:56:2A:3F:90:58:F4:17:5A:14:B2:D7:08:1B:85:5B:54:6A:54:1A:28
#
#    Signature Algorithm: sha256WithRSAEncryption
#         6c:ed:8a:e7:43:a8:79:27:9b:b8:cf:87:3e:64:38:18:8c:11:
#         42:92:86:37:e0:58:c3:1b:ee:04:2e:f7:84:ec:83:10:68:0c:
#         7f:78:2d:9c:c2:97:8e:36:4e:16:d8:0e:ea:6b:48:ad:4f:9e:
#         5d:0d:cc:0d:a9:3e:18:85:7e:cc:68:99:39:35:d6:d8:9f:86:
#         c1:32:fb:4d:65:b3:22:14:4b:c8:85:66:da:17:ff:71:91:ac:
#         9c:56:57:de:71:2c:56:42:bf:f8:cd:0e:f0:a2:d3:ff:d2:22:
#         15:fb:d0:78:0a:7e:e1:b0:5a:ce:8e:37:db:a9:9e:e7:95:cf:
#         63:f2:2c:0d:d2:fa:6f:f3:c8:d5:fb:00:b7:f7:35:67:10:d3:
#         7b:52:ec:10:32:f8:bf:dd:5e:c9:a6:82:a4:f1:b0:bf:1d:2e:
#         dd:25:e4:bd:4d:f0:35:a9:91:01:47:f8:10:02:94:5b:eb:3e:
#         eb:0d:ba:d5:1d:63:2c:a5:2e:ab:e7:e3:1e:a3:ee:4b:aa:5f:
#         b1:66:01:b4:82:5a:f9:46:4b:c7:f1:f8:df:2c:be:fd:75:dd:
#         96:38:9a:37:3a:6e:a5:e6:32:15:6e:b3:90:c0:39:8a:74:a5:
#         95:a0:be:0d:2e:89:79:cd:29:56:8e:c3:5e:57:51:c4:05:6f:
#         04:55:8f:81:e9:4c:bd:59:46:cb:2a:bc:4d:c9:1d:f2:c6:4f:
#         05:e4:c8:04:0d:f7:6e:4f:da:c3:3a:9c:d2:c2:f5:e9:c6:24:
#         7a:14:3e:1c:42:30:a8:02:45:31:a9:fc:50:a9:dc:dc:86:38:
#         0f:5b:93:3f:7f:08:4e:6a:0d:27:3a:10:79:56:c3:15:b8:3e:
#         06:86:f6:d9:70:67:af:75:7a:8b:e2:58:cc:c6:75:4f:32:55:
#         c5:6c:14:09:28:3b:f2:95:e4:6a:de:2c:28:07:ad:a0:7d:07:
#         28:dd:d4:5a:a3:e9:a6:7c:13:8c:99:0b:52:78:db:d9:d1:df:
#         3e:5a:43:76:7f:46:60:53:c2:cd:e7:76:47:7c:55:cd:b4:39:
#         64:10:5b:95:4b:35:5d:44:83:24:d5:e0:2e:24:0c:c1:80:6e:
#         69:00:80:06:77:0a:66:82:10:0c:51:6f:37:89:57:db:f3:4c:
#         e5:b8:b9:ee:23:66:97:60:b7:52:dd:d9:96:fb:ba:8a:3b:a0:
#         4d:ce:5e:f0:44:4c:90:cc:21:4f:1b:3a:98:6b:8e:31:83:f9:
#         83:08:52:cb:19:c1:35:6b:ee:a1:15:5b:88:3f:6d:ac:f2:34:
#         92:53:a6:30:2a:13:d7:e6:86:a8:5d:d9:42:d2:c7:9d:a9:7a:
#         8b:cb:df:ee:a2:31:c2:e5

[p11-kit-object-v1]
label: "SwissSign Silver CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxPGHf9N4Mfc4yfjDmUO8
x/e8N+dOcbpLj6VzHVxumK4DV644N0MvFz0fyM5oEMF4rhkDKxD6LHmD9ui5aLlV
8gREpzn5/ASLHvGiTSf5YXu6t+WiE7brYT7QbNHm+/pe7R20nqA1W6GSy/BJkv6F
CgU+5tkL4k+73JU3/JHpMjUi0R86TieFnbAVlDLaYQ1HTWBCrpJH6INaUFjpiou5
XaHc3ZlKHzZnu0jkg7Y360g6rw9njxcH6ATK72oxh9TAtvmUcXtnZLi2kUpCe2Uu
MGoM9ZDulebyzYLs2aFK7PayS+VFheZteJMELpyCbTapxDFkH4aDCyr0NQp4yVXP
QbBH6TCfmb5hqAaEuSh6XzjZG6k4sIN/c8HDO0gqgg8hm7jMqDXDhBuDsz6+pJVp
ATqJAHgE2cn0mRmrVn5bi4Y5FZGkECwJMoBgs5PAKrYYC51+jUnyEEp/+dVGLxmS
o5mnJqy7jDzmDrxHB9xzUfFwZC8I+bRHHTBsROopN4WSaGa8gzj+ezku01DwH/te
YLappvonQfGbGHLy9YR0SslnxFSuSGTfjNFusB3hB48IHpmccelM2KX3RxIfdNFR
nobzwqIjQAtz20um53MGjMGg6cFZrEb65i/4z3GcRm25xBWNOHkDRUjvxF3XCO6H
OSKGsg0PWEP3calILv3q1h8CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Silver CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 5700383053117599563 (0x4f1bd42f54bb2f4b)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CH, O = SwissSign AG, CN = SwissSign Silver CA - G2
#        Validity
#            Not Before: Oct 25 08:32:46 2006 GMT
#            Not After : Oct 25 08:32:46 2036 GMT
#        Subject: C = CH, O = SwissSign AG, CN = SwissSign Silver CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:f1:87:7f:d3:78:31:f7:38:c9:f8:c3:99:43:
#                    bc:c7:f7:bc:37:e7:4e:71:ba:4b:8f:a5:73:1d:5c:
#                    6e:98:ae:03:57:ae:38:37:43:2f:17:3d:1f:c8:ce:
#                    68:10:c1:78:ae:19:03:2b:10:fa:2c:79:83:f6:e8:
#                    b9:68:b9:55:f2:04:44:a7:39:f9:fc:04:8b:1e:f1:
#                    a2:4d:27:f9:61:7b:ba:b7:e5:a2:13:b6:eb:61:3e:
#                    d0:6c:d1:e6:fb:fa:5e:ed:1d:b4:9e:a0:35:5b:a1:
#                    92:cb:f0:49:92:fe:85:0a:05:3e:e6:d9:0b:e2:4f:
#                    bb:dc:95:37:fc:91:e9:32:35:22:d1:1f:3a:4e:27:
#                    85:9d:b0:15:94:32:da:61:0d:47:4d:60:42:ae:92:
#                    47:e8:83:5a:50:58:e9:8a:8b:b9:5d:a1:dc:dd:99:
#                    4a:1f:36:67:bb:48:e4:83:b6:37:eb:48:3a:af:0f:
#                    67:8f:17:07:e8:04:ca:ef:6a:31:87:d4:c0:b6:f9:
#                    94:71:7b:67:64:b8:b6:91:4a:42:7b:65:2e:30:6a:
#                    0c:f5:90:ee:95:e6:f2:cd:82:ec:d9:a1:4a:ec:f6:
#                    b2:4b:e5:45:85:e6:6d:78:93:04:2e:9c:82:6d:36:
#                    a9:c4:31:64:1f:86:83:0b:2a:f4:35:0a:78:c9:55:
#                    cf:41:b0:47:e9:30:9f:99:be:61:a8:06:84:b9:28:
#                    7a:5f:38:d9:1b:a9:38:b0:83:7f:73:c1:c3:3b:48:
#                    2a:82:0f:21:9b:b8:cc:a8:35:c3:84:1b:83:b3:3e:
#                    be:a4:95:69:01:3a:89:00:78:04:d9:c9:f4:99:19:
#                    ab:56:7e:5b:8b:86:39:15:91:a4:10:2c:09:32:80:
#                    60:b3:93:c0:2a:b6:18:0b:9d:7e:8d:49:f2:10:4a:
#                    7f:f9:d5:46:2f:19:92:a3:99:a7:26:ac:bb:8c:3c:
#                    e6:0e:bc:47:07:dc:73:51:f1:70:64:2f:08:f9:b4:
#                    47:1d:30:6c:44:ea:29:37:85:92:68:66:bc:83:38:
#                    fe:7b:39:2e:d3:50:f0:1f:fb:5e:60:b6:a9:a6:fa:
#                    27:41:f1:9b:18:72:f2:f5:84:74:4a:c9:67:c4:54:
#                    ae:48:64:df:8c:d1:6e:b0:1d:e1:07:8f:08:1e:99:
#                    9c:71:e9:4c:d8:a5:f7:47:12:1f:74:d1:51:9e:86:
#                    f3:c2:a2:23:40:0b:73:db:4b:a6:e7:73:06:8c:c1:
#                    a0:e9:c1:59:ac:46:fa:e6:2f:f8:cf:71:9c:46:6d:
#                    b9:c4:15:8d:38:79:03:45:48:ef:c4:5d:d7:08:ee:
#                    87:39:22:86:b2:0d:0f:58:43:f7:71:a9:48:2e:fd:
#                    ea:d6:1f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                17:A0:CD:C1:E4:41:B6:3A:5B:3B:CB:45:9D:BD:1C:C2:98:FA:86:58
#            X509v3 Authority Key Identifier: 
#                keyid:17:A0:CD:C1:E4:41:B6:3A:5B:3B:CB:45:9D:BD:1C:C2:98:FA:86:58
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.89.1.3.1.1
#                  CPS: http://repository.swisssign.com/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         73:c6:81:e0:27:d2:2d:0f:e0:95:30:e2:9a:41:7f:50:2c:5f:
#         5f:62:61:a9:86:6a:69:18:0c:74:49:d6:5d:84:ea:41:52:18:
#         6f:58:ad:50:56:20:6a:c6:bd:28:69:58:91:dc:91:11:35:a9:
#         3a:1d:bc:1a:a5:60:9e:d8:1f:7f:45:91:69:d9:7e:bb:78:72:
#         c1:06:0f:2a:ce:8f:85:70:61:ac:a0:cd:0b:b8:39:29:56:84:
#         32:4e:86:bb:3d:c4:2a:d9:d7:1f:72:ee:fe:51:a1:22:41:b1:
#         71:02:63:1a:82:b0:62:ab:5e:57:12:1f:df:cb:dd:75:a0:c0:
#         5d:79:90:8c:1b:e0:50:e6:de:31:fe:98:7b:70:5f:a5:90:d8:
#         ad:f8:02:b6:6f:d3:60:dd:40:4b:22:c5:3d:ad:3a:7a:9f:1a:
#         1a:47:91:79:33:ba:82:dc:32:69:03:96:6e:1f:4b:f0:71:fe:
#         e3:67:72:a0:b1:bf:5c:8b:e4:fa:99:22:c7:84:b9:1b:8d:23:
#         97:3f:ed:25:e0:cf:65:bb:f5:61:04:ef:dd:1e:b2:5a:41:22:
#         5a:a1:9f:5d:2c:e8:5b:c9:6d:a9:0c:0c:78:aa:60:c6:56:8f:
#         01:5a:0c:68:bc:69:19:79:c4:1f:7e:97:05:bf:c5:e9:24:51:
#         5e:d4:d5:4b:53:ed:d9:23:5a:36:03:65:a3:c1:03:ad:41:30:
#         f3:46:1b:85:90:af:65:b5:d5:b1:e4:16:5b:78:75:1d:97:7a:
#         6d:59:a9:2a:8f:7b:de:c3:87:89:10:99:49:73:78:c8:3d:bd:
#         51:35:74:2a:d5:f1:7e:69:1b:2a:bb:3b:bd:25:b8:9a:5a:3d:
#         72:61:90:66:87:ee:0c:d6:4d:d4:11:74:0b:6a:fe:0b:03:fc:
#         a3:55:57:89:fe:4a:cb:ae:5b:17:05:c8:f2:8d:23:31:53:38:
#         d2:2d:6a:3f:82:b9:8d:08:6a:f7:5e:41:74:6e:c3:11:7e:07:
#         ac:29:60:91:3f:38:ca:57:10:0d:bd:30:2f:c7:a5:e6:41:a0:
#         da:ae:05:87:9a:a0:a4:65:6c:4c:09:0c:89:ba:b8:d3:b9:c0:
#         93:8a:30:fa:8d:e5:9a:6b:15:01:4e:67:aa:da:62:56:3e:84:
#         08:66:d2:c4:36:7d:a7:3e:10:fc:88:e0:d4:80:e5:00:bd:aa:
#         f3:4e:06:a3:7a:6a:f9:62:72:e3:09:4f:eb:9b:0e:01:23:f1:
#         9f:bb:7c:dc:dc:6c:11:97:25:b2:f2:b4:63:14:d2:06:2a:67:
#         8c:83:f5:ce:ea:07:d8:9a:6a:1e:ec:e4:0a:bb:2a:4c:eb:09:
#         60:39:ce:ca:62:d8:2e:6e

[p11-kit-object-v1]
label: "SwissSign Silver Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Silver Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            aa:88:b0:5a:0b:b1:76:9b
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CH, O = SwissSign AG, CN = SwissSign Silver Root CA - G3
#        Validity
#            Not Before: Aug  4 13:19:14 2009 GMT
#            Not After : Aug  4 13:19:14 2037 GMT
#        Subject: C = CH, O = SwissSign AG, CN = SwissSign Silver Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:be:87:9b:05:e6:71:7c:52:6f:6d:ec:37:a9:e9:
#                    b3:dc:cc:5f:7f:d3:50:ea:21:9b:04:f0:3d:bf:be:
#                    8e:c9:a5:14:16:32:10:cf:99:fc:ec:70:ad:48:36:
#                    67:24:0c:17:32:d6:29:e5:4a:39:b1:37:eb:a6:78:
#                    0c:6c:6f:19:ca:4e:f7:51:da:1a:e8:fa:21:38:6c:
#                    95:9c:2f:d6:8b:cc:3b:02:9b:bf:26:9b:11:45:b6:
#                    b8:34:5a:1d:a6:54:48:52:c8:9d:78:71:ce:48:4a:
#                    cc:a7:78:83:dc:68:ab:66:1e:77:07:d3:36:18:08:
#                    d7:d4:6d:60:f8:f0:79:d3:33:36:09:92:63:b7:04:
#                    9a:f5:a7:96:da:45:af:74:1a:fc:82:e3:a8:5b:0e:
#                    3a:3f:52:57:98:7e:bc:9c:8c:c1:c0:b2:5a:df:c4:
#                    7e:fe:0c:a6:54:76:83:7e:ba:dd:e7:2a:f4:4a:36:
#                    4f:87:65:2e:a5:ba:39:8d:59:61:29:f3:d3:8e:24:
#                    70:8c:53:9b:11:a5:47:07:b2:75:05:5c:0d:84:d9:
#                    44:d9:cd:c9:26:44:57:6e:02:7d:95:01:d4:ab:24:
#                    86:ee:3d:70:fb:57:fa:b0:29:14:d0:9d:f2:c5:97:
#                    cb:09:ca:f1:f2:3d:e7:d8:4b:96:e9:88:2f:9e:47:
#                    51:8a:54:65:98:48:d2:12:e4:54:77:0c:07:e6:be:
#                    5b:9c:f1:dd:03:7e:8d:84:fc:be:c9:62:d5:fc:c9:
#                    3a:e8:89:b5:5f:c2:05:52:61:f0:9c:3e:ec:2e:4d:
#                    8c:72:91:8e:c8:43:c1:a2:28:5e:f5:80:24:dc:e2:
#                    2f:87:3b:53:00:e5:cb:f0:b2:7c:8d:79:19:a0:88:
#                    cd:78:f8:c5:8a:5a:77:e5:06:ac:dd:4a:de:e6:70:
#                    6e:be:af:be:f5:b1:ab:0e:08:b0:db:a0:3f:94:c5:
#                    be:12:b9:bc:7b:27:79:b5:32:29:5d:ae:c5:20:23:
#                    92:03:7b:54:39:b0:89:22:54:6d:12:e3:c3:78:ea:
#                    3a:40:fd:a4:93:ac:e9:2d:88:3c:db:a6:47:66:4c:
#                    df:d8:17:ed:16:de:1a:d6:d7:41:66:bf:1d:80:f1:
#                    a4:e0:64:11:29:5e:0c:27:05:62:eb:e5:c4:04:62:
#                    d1:c4:9f:0c:6a:55:d6:58:38:9c:66:0f:9d:fb:ab:
#                    54:80:99:9c:ec:49:d6:82:9f:da:45:d6:3f:53:06:
#                    03:b7:fd:1f:ec:86:7d:74:e0:a4:b4:e8:32:b6:aa:
#                    07:23:f8:ef:24:41:9e:63:30:78:f4:54:dd:8e:f0:
#                    5a:38:8e:12:7f:78:c7:6f:02:56:21:33:ce:b8:b8:
#                    ad:69:55
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A1:8C:45:93:0A:12:63:0B:A7:57:5F:32:4A:7D:E1:21:E7:B7:3E:66
#            X509v3 Authority Key Identifier: 
#                keyid:A1:8C:45:93:0A:12:63:0B:A7:57:5F:32:4A:7D:E1:21:E7:B7:3E:66
#
#    Signature Algorithm: sha256WithRSAEncryption
#         87:ae:61:6d:48:38:2a:c6:1c:dc:4a:2e:84:78:49:c0:23:2a:
#         45:b8:35:4d:d1:05:fa:b9:05:33:c4:64:bd:db:ad:54:16:2a:
#         b0:3e:0d:5a:28:da:a6:1a:80:73:0c:c4:41:6f:af:b8:34:b6:
#         77:d4:5b:8e:1d:0b:8b:46:90:44:b5:b3:ee:49:18:89:c1:4b:
#         34:b3:87:35:74:a2:9e:45:67:ed:45:71:66:b6:b9:a1:25:73:
#         d7:c2:ac:88:fb:d2:1d:a7:6b:da:c0:5a:e6:d8:59:64:34:97:
#         65:20:31:33:03:4f:ce:ad:09:9e:ae:e9:c2:3e:18:75:b4:33:
#         25:12:bb:05:ec:50:ba:71:40:e2:bd:de:88:46:05:21:84:8b:
#         a3:2b:1e:eb:30:30:89:bf:11:f5:5c:44:f8:91:8b:4b:59:45:
#         0b:30:0d:ca:0c:4f:6f:63:be:04:fe:c1:ed:e0:87:fe:c8:cd:
#         56:bf:e5:dc:8e:7a:d4:d6:29:4e:80:db:ab:9b:3f:8e:65:07:
#         22:f7:44:cd:96:1f:2d:c7:f5:09:b6:98:70:ff:38:dc:50:15:
#         11:84:3b:7f:a9:f0:d8:24:54:c8:17:8c:2b:13:49:d6:99:7f:
#         45:d1:0f:8e:bf:69:72:37:53:07:f4:e6:ae:fd:5b:3e:79:b9:
#         06:cd:b8:81:78:b4:4d:a0:d0:35:ba:e4:ae:ff:d3:49:bc:35:
#         ed:63:c6:b3:fc:e3:ab:61:5a:05:b6:0b:e4:ff:a9:2a:be:df:
#         54:4e:c2:4b:5c:68:da:a3:32:a2:c9:4d:57:18:53:34:59:3c:
#         66:99:d7:3c:02:78:a7:4c:71:d0:bf:db:f1:c4:3c:e7:01:e6:
#         04:f2:44:f6:48:26:30:33:c9:b1:01:19:eb:02:f1:cc:21:fa:
#         3a:02:30:17:9d:c8:5f:80:3f:dd:25:ac:02:9b:e3:17:de:bd:
#         ca:92:14:d2:52:81:53:e6:ea:fc:30:67:32:a9:62:f6:93:17:
#         15:07:31:5e:0f:1b:69:f5:f4:a9:b7:7c:2d:b3:ed:84:44:32:
#         47:28:07:3b:86:69:45:a9:c7:36:96:90:72:74:d8:12:a6:73:
#         23:d1:4e:b9:b6:7a:3a:c4:29:a1:50:06:11:b9:d9:f4:26:6e:
#         62:08:12:20:16:f0:01:57:17:d4:05:36:67:97:eb:51:f9:ff:
#         33:24:0c:05:0f:56:bf:ef:3d:1c:52:8e:8a:de:69:0f:5a:1f:
#         f0:d5:03:31:44:b3:92:c6:ea:75:a8:ae:bb:c7:60:03:88:98:
#         ff:c7:04:84:52:90:86:e1:b4:93:a9:50:2f:e8:eb:d2:36:ac:
#         30:60:a7:d0:03:13:b5:0a

[p11-kit-object-v1]
label: "Swiss Government Root CA I"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swiss Government Root CA I"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            fd:75:04:8d:7a:60:86:93:69:4c:aa:00:3c:65:d3:3d
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CH, O = The Federal Authorities of the Swiss Confederation, OU = Services, OU = Certification Authorities, CN = Swiss Government Root CA I
#        Validity
#            Not Before: Feb 15 09:00:00 2011 GMT
#            Not After : Feb 15 08:59:59 2035 GMT
#        Subject: C = CH, O = The Federal Authorities of the Swiss Confederation, OU = Services, OU = Certification Authorities, CN = Swiss Government Root CA I
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:0e:72:f4:01:2f:86:7b:0b:c2:63:b0:8d:68:
#                    ed:1f:3d:de:b9:83:9b:5c:a1:5d:ba:0f:36:27:11:
#                    04:ad:06:54:20:b7:1e:a0:e6:ce:be:f0:99:69:72:
#                    19:35:64:66:31:8d:2c:bd:8e:42:0a:9f:c6:ca:a9:
#                    90:2c:da:bc:85:30:03:d9:32:96:96:f0:be:a0:22:
#                    0d:24:6c:d4:c6:7f:5a:4c:51:24:2d:54:72:08:7c:
#                    33:e9:cc:28:c7:66:65:23:69:6b:95:b4:eb:be:e3:
#                    87:e7:63:d7:e4:fb:07:ad:12:92:eb:e7:e4:0a:43:
#                    b2:a9:df:c7:90:bc:26:5b:91:f9:a3:b7:87:9c:94:
#                    b9:10:8d:88:c5:58:5c:32:bc:16:ec:0e:57:4f:fe:
#                    a7:93:78:8f:e0:c5:39:bb:07:88:60:c1:54:65:eb:
#                    87:be:9f:31:97:71:3c:fa:8b:c8:83:6c:52:96:e0:
#                    ac:c0:ef:cb:69:08:95:5b:e0:e0:bb:af:27:a4:c2:
#                    17:f1:51:9f:84:76:61:d8:24:e2:fe:61:6d:64:35:
#                    49:ea:39:c4:21:62:bd:cc:e2:02:ff:48:6b:38:af:
#                    69:c7:b9:92:2d:82:11:8d:bd:0b:89:85:2a:ea:b7:
#                    b4:b2:cd:4b:eb:d1:fa:aa:f0:e0:4c:09:3c:4d:df:
#                    f6:31:1d:86:30:a8:41:88:57:70:2c:27:51:de:cf:
#                    8b:4e:3f:02:f2:50:a5:17:e0:67:1b:72:0c:41:31:
#                    1f:01:a2:96:3e:3c:db:02:b6:9d:94:e6:02:4e:f3:
#                    f0:19:82:b2:08:23:13:eb:91:cd:51:d3:aa:46:c2:
#                    73:98:98:3f:ba:c3:ee:9a:fc:fa:cd:af:72:0a:37:
#                    13:8f:f9:a0:50:b3:ea:fb:3f:2c:bc:fa:63:55:35:
#                    f4:d2:bc:b8:71:d2:91:eb:e9:ca:ca:5c:ec:51:66:
#                    a8:9e:59:05:22:2f:a3:1a:db:4f:e0:45:62:23:3c:
#                    5d:55:fb:30:95:2b:34:a2:cf:a7:b4:4b:c0:33:c9:
#                    34:51:9d:d3:b3:2b:df:c5:ea:2c:2c:c7:df:44:1f:
#                    b6:8d:b9:fe:f3:5c:cd:37:2f:b0:6c:9c:4a:08:bd:
#                    e8:f5:d6:fa:70:e5:69:32:37:5c:5f:0b:cb:3f:e4:
#                    88:02:cc:ca:b3:78:2f:7d:bf:48:b3:21:b0:1f:88:
#                    79:9b:5a:8a:71:d8:21:84:29:0f:4a:04:31:2a:bd:
#                    0d:21:44:ce:74:9d:26:d3:49:1d:f8:86:a8:e5:12:
#                    77:c5:c0:73:0c:50:83:6a:90:6b:a1:ca:f8:d0:95:
#                    d9:35:86:c7:11:a3:3b:14:c7:cb:86:58:56:0d:fb:
#                    83:f7:01
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.17.3.1.0
#                  CPS: http://www.pki.admin.ch/cps/CPS_2_16_756_1_17_3_1_0.pdf
#                  User Notice:
#                    Explicit Text: This is the Swiss Government Root CA I CPS.
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://admindir.admin.ch:389/cn=Swiss%20Government%20Root%20CA%20I,ou=Certification%20Authorities,ou=Services,o=Admin,c=CH
#
#            X509v3 Subject Key Identifier: 
#                B5:1B:83:BB:3B:4F:B2:D2:FB:E5:03:8E:D4:61:5D:D1:1A:8E:B0:A2
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:B5:1B:83:BB:3B:4F:B2:D2:FB:E5:03:8E:D4:61:5D:D1:1A:8E:B0:A2
#                DirName:/C=CH/O=The Federal Authorities of the Swiss Confederation/OU=Services/OU=Certification Authorities/CN=Swiss Government Root CA I
#                serial:FD:75:04:8D:7A:60:86:93:69:4C:AA:00:3C:65:D3:3D
#
#    Signature Algorithm: sha256WithRSAEncryption
#         25:da:df:78:b0:26:dc:9f:99:eb:33:9c:c9:45:ba:5c:63:52:
#         8d:6e:03:73:aa:74:48:c5:0d:0b:d2:17:0c:2c:0b:d2:c6:25:
#         83:d4:54:cd:07:81:54:2f:67:76:25:a7:e9:d7:7f:96:47:77:
#         a4:1d:9b:45:ff:f1:d8:f6:9e:47:0e:74:8c:13:c4:f2:be:d6:
#         07:28:18:3c:98:75:c1:db:eb:92:88:26:e6:06:64:8e:f9:d2:
#         fd:e2:99:35:81:d1:d8:75:17:b5:73:ea:dd:e8:18:22:95:16:
#         19:0a:59:2a:22:dc:86:5a:43:4f:25:68:36:a9:d8:93:00:8f:
#         5e:c5:c3:61:86:f0:d2:14:09:95:51:c4:7e:d8:52:ee:b0:8d:
#         8a:88:71:a5:d7:28:a7:f4:dc:06:58:25:5e:c4:55:18:08:95:
#         74:7c:b8:01:e7:4e:d8:d6:f6:7c:20:43:48:0d:a3:e0:de:54:
#         c4:a8:5f:00:49:43:d3:45:3b:82:65:6e:ee:8b:a3:01:22:56:
#         9a:f1:ce:29:e5:0c:c4:6b:ed:e7:4e:f8:b1:55:81:ad:71:ff:
#         84:fb:08:57:e6:47:ca:ad:87:f8:46:f8:fa:f0:35:84:ed:b4:
#         d8:88:97:22:77:a4:8f:16:c8:3c:67:d1:e1:6e:04:ac:7b:8f:
#         36:cd:de:a5:08:ac:2a:8d:f5:a7:1d:9f:c7:c3:91:21:42:a3:
#         86:81:b9:2a:d8:b1:e9:38:1d:54:08:98:39:0a:11:ca:32:0e:
#         33:cd:f4:4c:ea:a8:4a:06:e9:18:3e:41:c6:cf:a0:f6:e0:2b:
#         6b:20:8e:a7:20:02:eb:30:41:81:b0:e8:e4:ae:a4:18:89:2b:
#         df:14:f0:12:29:6d:78:fa:4d:44:fb:b2:34:e5:af:f3:8e:35:
#         f7:c3:ce:2c:0b:18:b4:d0:79:8f:13:bf:03:8b:66:b8:b5:61:
#         d4:ac:0e:fd:78:3d:09:ad:b5:d2:2c:4f:56:41:99:88:44:0c:
#         7e:67:e3:64:9f:fa:5a:2a:58:77:51:69:b1:cd:2c:9a:a7:34:
#         10:05:74:fa:6e:45:63:cb:8b:52:ad:47:91:a2:12:c8:a2:26:
#         04:c5:d0:22:1e:03:b3:b2:92:37:54:57:fd:89:83:75:03:6d:
#         2d:3b:b3:f1:a4:a2:10:7c:9c:93:8d:a3:50:84:39:8b:95:59:
#         41:f6:02:76:06:8a:bc:0e:90:e7:d9:3a:eb:ad:26:5e:57:53:
#         d1:6f:c8:75:e0:ab:91:7b:6b:a1:7f:f9:1b:50:a8:dc:fe:4d:
#         06:e1:15:8a:a4:10:eb:1e:06:cf:54:48:15:96:28:b6:23:1f:
#         1a:e3:7c:a5:8f:fa:37:57

[p11-kit-object-v1]
label: "Swiss Government Root CA II"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swiss Government Root CA II"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0e:9f:17:99:a5:b1:3d:9c:cb:ec:06:eb:a3:f0:0e:69
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CH, O = The Federal Authorities of the Swiss Confederation, OU = Services, OU = Certification Authorities, CN = Swiss Government Root CA II
#        Validity
#            Not Before: Feb 16 09:00:00 2011 GMT
#            Not After : Feb 16 08:59:59 2035 GMT
#        Subject: C = CH, O = The Federal Authorities of the Swiss Confederation, OU = Services, OU = Certification Authorities, CN = Swiss Government Root CA II
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a9:2c:12:ed:bf:c0:22:e9:86:e8:1c:37:82:83:
#                    9b:68:05:6f:16:e3:88:a8:01:0f:cb:71:9e:7f:47:
#                    90:4b:cc:25:77:c8:f0:d7:69:2e:91:68:57:21:b2:
#                    b2:07:21:33:ee:4c:a4:37:25:98:4c:b4:46:32:4e:
#                    d6:f9:6b:8b:51:8a:ef:2c:37:f2:98:d5:f5:d4:b4:
#                    b7:e7:00:ca:ef:c1:13:5e:94:ab:6e:bb:9c:bd:fa:
#                    6b:8f:ab:f8:1e:36:56:69:38:66:3a:d0:f4:33:0d:
#                    00:39:02:a8:c5:1c:0b:21:b7:5c:20:0c:61:d0:ad:
#                    ae:ce:8e:5e:d9:3a:e9:de:ff:47:7c:78:57:0e:1c:
#                    71:f4:60:1c:dd:db:9a:18:29:af:d9:80:a3:9f:85:
#                    84:63:33:91:ef:bd:74:ee:dd:03:7a:c8:fa:e0:84:
#                    e6:d9:bd:4e:7e:fa:6e:4f:76:d1:5d:3e:a8:e8:87:
#                    45:90:79:f3:ad:ae:f5:c2:5d:11:4d:29:f7:88:13:
#                    c9:d5:93:73:01:ab:dd:ed:fd:af:77:fb:69:4e:ef:
#                    8f:52:1c:cf:f5:2c:5a:6c:ec:fe:82:9b:db:7c:39:
#                    ab:75:23:7e:38:90:4f:94:8e:2d:62:58:9e:f7:e7:
#                    72:fc:94:5b:72:56:c5:9d:a3:ae:ab:b5:b6:c0:d7:
#                    76:50:00:3c:3f:47:88:92:5a:60:d4:bf:32:1b:a6:
#                    94:40:0d:76:79:e9:3c:ce:e4:b3:1d:c7:8c:f5:e8:
#                    86:31:b9:d8:2b:50:4a:80:12:89:d7:2c:50:80:e6:
#                    67:2f:b6:93:9c:ad:ac:05:52:22:53:20:99:0e:bd:
#                    97:c6:e1:da:73:a9:1d:89:f2:c4:59:e6:87:e6:56:
#                    2b:0e:95:02:1a:87:c6:79:fe:99:6a:e9:74:ec:f0:
#                    12:f9:14:28:20:95:96:3a:2f:5d:57:b5:6f:ff:93:
#                    bc:b6:28:6a:2c:a4:28:78:46:61:af:41:24:a4:f3:
#                    fa:04:8e:f1:8a:19:a2:91:73:e2:77:8f:b4:a7:f9:
#                    9c:ff:6e:51:ec:bd:1f:96:13:e8:63:91:5e:87:68:
#                    6f:eb:d8:7c:2e:10:4f:50:18:90:c7:b7:74:ef:33:
#                    c0:81:df:33:e3:1a:93:2b:55:04:2c:7c:d2:2b:b7:
#                    63:0c:fe:ad:7b:bd:b6:3a:97:b9:3d:03:23:74:73:
#                    03:a6:2c:59:00:6c:d5:d5:e8:ec:af:42:cc:d3:7f:
#                    70:8b:60:60:e7:b2:a0:b6:8a:52:4c:fe:0a:96:cb:
#                    cf:3a:b0:58:08:ee:1c:42:c9:86:77:42:6e:3f:b4:
#                    ac:90:00:58:42:1c:40:c4:6e:b8:45:c8:bc:33:36:
#                    df:bd:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.17.3.21.1
#                  CPS: http://www.pki.admin.ch/cps/CPS_2_16_756_1_17_3_21_1.pdf
#                  User Notice:
#                    Explicit Text: This is the Swiss Government Root CA II CPS.
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://admindir.admin.ch:389/cn=Swiss%20Government%20Root%20CA%20II,ou=Certification%20Authorities,ou=Services,o=Admin,c=CH
#
#            X509v3 Subject Key Identifier: 
#                E5:84:6F:89:69:3D:76:00:17:7F:C1:AB:BD:AE:5F:C1:7D:BA:E1:62
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:E5:84:6F:89:69:3D:76:00:17:7F:C1:AB:BD:AE:5F:C1:7D:BA:E1:62
#                DirName:/C=CH/O=The Federal Authorities of the Swiss Confederation/OU=Services/OU=Certification Authorities/CN=Swiss Government Root CA II
#                serial:0E:9F:17:99:A5:B1:3D:9C:CB:EC:06:EB:A3:F0:0E:69
#
#    Signature Algorithm: sha256WithRSAEncryption
#         83:37:57:75:c9:38:50:bf:41:06:96:70:c2:d9:c7:d7:b0:5a:
#         00:cd:a3:40:4f:d3:d2:f9:8a:87:91:b2:89:cb:5d:a4:bc:6f:
#         4f:3e:54:f6:ca:3c:b3:c4:4c:8b:c7:3e:f4:d9:c4:62:dd:c7:
#         55:9e:d1:f9:d2:44:e7:1e:4f:cf:e8:ee:2b:1c:a8:01:f0:33:
#         07:fb:e1:3b:14:d3:cf:50:91:5e:d8:ea:42:c6:79:58:85:aa:
#         fb:dc:db:70:ca:95:f9:f4:0e:62:02:70:69:44:2d:68:4f:d1:
#         70:ea:28:52:66:b7:71:de:25:e8:a1:a7:6f:b0:a1:26:c7:d7:
#         ca:20:64:dc:c0:73:3c:10:a2:14:1e:f4:ad:c1:3e:14:90:39:
#         36:63:88:6f:28:e0:60:a5:91:f7:62:e4:9a:cf:d2:b5:71:9e:
#         5d:3b:f6:99:2c:ed:91:3a:08:9c:b4:84:85:49:e3:e1:ba:a6:
#         b6:68:b3:b6:b6:4f:4b:5c:53:0a:57:6c:a1:07:92:f6:62:9e:
#         a8:fa:8a:d6:f3:6b:a7:0f:b2:2b:66:bd:af:42:47:08:4f:e8:
#         d7:7c:9f:86:0f:fa:5a:83:be:2d:6f:00:04:b5:76:87:16:af:
#         dd:4f:3a:96:b4:34:57:b7:e2:ff:41:ff:de:42:1c:66:c5:85:
#         eb:c2:72:1f:b8:1c:4e:ee:17:f2:62:ef:0a:04:ac:9b:ab:a1:
#         f2:ee:ee:a2:40:24:1c:47:de:42:8b:18:b4:a9:57:b3:4f:3c:
#         62:32:1c:ad:6c:44:ad:bc:d5:1c:63:38:3d:c9:33:a6:fb:bc:
#         28:37:44:46:e3:7a:62:fa:80:48:35:e2:9e:1b:88:19:4c:b3:
#         41:fd:ee:77:e0:59:80:1a:61:1e:35:a4:41:7a:b3:c1:8d:44:
#         e9:c5:21:59:e9:ac:d3:44:ca:76:85:36:14:46:0a:1e:16:34:
#         a6:c4:34:77:c3:82:38:48:21:02:fe:12:6c:da:d7:ea:b0:ec:
#         f6:cd:2c:cc:f3:9b:0a:63:80:d3:f5:0b:7d:04:2d:84:0d:c2:
#         d9:4c:2b:97:f1:d5:54:f7:8f:b3:0a:e2:bd:58:3c:99:f2:af:
#         39:1b:90:f9:3b:e7:b7:45:e7:5a:6a:7d:c1:9f:14:6f:30:57:
#         98:19:a0:07:43:eb:ee:d1:08:86:d7:49:9c:12:0a:00:3b:0f:
#         a7:41:b1:4a:ab:90:b3:d4:bd:09:e7:88:0f:9e:24:0e:2b:fb:
#         61:3d:55:99:d3:58:e4:b8:c7:7d:f4:15:4d:65:0e:18:79:41:
#         c9:bb:e9:9a:c1:59:18:44:34:62:d5:e8:38:7b:ca:85:18:98:
#         86:79:cd:7d:ba:47:db:95

[p11-kit-object-v1]
label: "Swisscom Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA0LmwqAzZuz8h+BvVM5OA
FmUgdbI9m2BtRsiMMW8Xw/qabFbtPMWRV8PNq5ZJkCoZSx6jbVfd8StiKHVFXqrW
W/oLJdihFvkcxC7mlSpnzNApbjyFNDhhSbEAn9Y6cV9Nbc5fuankiX9qUvrKm/Lc
qfmdmUc/TilftKaNXXsLmREDA/7n29uj/x2lzZAeAR81sH8A25Bvxn570e56eqeq
DFdvpG3FEzuwpdntMhy0XmeLVNxzh+XTF3xmUHJd1BpYwdnP2IkCb6dJtDZd0KTe
Byy2dbcokdaXvij1mB7qWybJvbCXc9qukSbraMH5ORXWZ0sKbU/Lz7DkQnGMU3nn
7uHbHaBuHYwadzVcFh4rUx80i9Fs/PJnB3r1re3WmquhsUvhzDdf/X/NTa64H5xD
+SpYVUNFvJbNcA78yeNmuk6NO4HLFWR7uZToXTNShXEuT46iBhFRyePLoW4xCGQM
wtI89Tbo19AOeCMgkckkKmUpWyL3Ic6DXqTz3kvTaI9GdVyDCW4pa8RwjPWd1yAv
/0bSKzjCL3UcPX7ape8eYIVpQtPM+GP+HkM5haa2Y0EQs3MevNP6yn0WR+Kn1dCj
igoIlmJWbjTb2QK5MHXjBNLnj8KwEUAKrNVxAmKLMb7dxiNYMUJDLXT5xp6mig/p
/r+D5kNXJLrvRjSq1xIBOO0CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swisscom Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5c:0b:85:5c:0b:e7:59:41:df:57:cc:3f:7f:9d:a8:36
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ch, O = Swisscom, OU = Digital Certificate Services, CN = Swisscom Root CA 1
#        Validity
#            Not Before: Aug 18 12:06:20 2005 GMT
#            Not After : Aug 18 22:06:20 2025 GMT
#        Subject: C = ch, O = Swisscom, OU = Digital Certificate Services, CN = Swisscom Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d0:b9:b0:a8:0c:d9:bb:3f:21:f8:1b:d5:33:93:
#                    80:16:65:20:75:b2:3d:9b:60:6d:46:c8:8c:31:6f:
#                    17:c3:fa:9a:6c:56:ed:3c:c5:91:57:c3:cd:ab:96:
#                    49:90:2a:19:4b:1e:a3:6d:57:dd:f1:2b:62:28:75:
#                    45:5e:aa:d6:5b:fa:0b:25:d8:a1:16:f9:1c:c4:2e:
#                    e6:95:2a:67:cc:d0:29:6e:3c:85:34:38:61:49:b1:
#                    00:9f:d6:3a:71:5f:4d:6d:ce:5f:b9:a9:e4:89:7f:
#                    6a:52:fa:ca:9b:f2:dc:a9:f9:9d:99:47:3f:4e:29:
#                    5f:b4:a6:8d:5d:7b:0b:99:11:03:03:fe:e7:db:db:
#                    a3:ff:1d:a5:cd:90:1e:01:1f:35:b0:7f:00:db:90:
#                    6f:c6:7e:7b:d1:ee:7a:7a:a7:aa:0c:57:6f:a4:6d:
#                    c5:13:3b:b0:a5:d9:ed:32:1c:b4:5e:67:8b:54:dc:
#                    73:87:e5:d3:17:7c:66:50:72:5d:d4:1a:58:c1:d9:
#                    cf:d8:89:02:6f:a7:49:b4:36:5d:d0:a4:de:07:2c:
#                    b6:75:b7:28:91:d6:97:be:28:f5:98:1e:ea:5b:26:
#                    c9:bd:b0:97:73:da:ae:91:26:eb:68:c1:f9:39:15:
#                    d6:67:4b:0a:6d:4f:cb:cf:b0:e4:42:71:8c:53:79:
#                    e7:ee:e1:db:1d:a0:6e:1d:8c:1a:77:35:5c:16:1e:
#                    2b:53:1f:34:8b:d1:6c:fc:f2:67:07:7a:f5:ad:ed:
#                    d6:9a:ab:a1:b1:4b:e1:cc:37:5f:fd:7f:cd:4d:ae:
#                    b8:1f:9c:43:f9:2a:58:55:43:45:bc:96:cd:70:0e:
#                    fc:c9:e3:66:ba:4e:8d:3b:81:cb:15:64:7b:b9:94:
#                    e8:5d:33:52:85:71:2e:4f:8e:a2:06:11:51:c9:e3:
#                    cb:a1:6e:31:08:64:0c:c2:d2:3c:f5:36:e8:d7:d0:
#                    0e:78:23:20:91:c9:24:2a:65:29:5b:22:f7:21:ce:
#                    83:5e:a4:f3:de:4b:d3:68:8f:46:75:5c:83:09:6e:
#                    29:6b:c4:70:8c:f5:9d:d7:20:2f:ff:46:d2:2b:38:
#                    c2:2f:75:1c:3d:7e:da:a5:ef:1e:60:85:69:42:d3:
#                    cc:f8:63:fe:1e:43:39:85:a6:b6:63:41:10:b3:73:
#                    1e:bc:d3:fa:ca:7d:16:47:e2:a7:d5:d0:a3:8a:0a:
#                    08:96:62:56:6e:34:db:d9:02:b9:30:75:e3:04:d2:
#                    e7:8f:c2:b0:11:40:0a:ac:d5:71:02:62:8b:31:be:
#                    dd:c6:23:58:31:42:43:2d:74:f9:c6:9e:a6:8a:0f:
#                    e9:fe:bf:83:e6:43:57:24:ba:ef:46:34:aa:d7:12:
#                    01:38:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Policy Mappings: 
#                2.16.756.1.83.0.1:2.16.756.1.83.0.1
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:7
#            X509v3 Authority Key Identifier: 
#                keyid:03:25:2F:DE:6F:82:01:3A:5C:2C:DC:2B:A1:69:B5:67:D4:8C:D3:FD
#
#            X509v3 Subject Key Identifier: 
#                03:25:2F:DE:6F:82:01:3A:5C:2C:DC:2B:A1:69:B5:67:D4:8C:D3:FD
#    Signature Algorithm: sha1WithRSAEncryption
#         35:10:cb:ec:a6:04:0d:0d:0f:cd:c0:db:ab:a8:f2:88:97:0c:
#         df:93:2f:4d:7c:40:56:31:7a:eb:a4:0f:60:cd:7a:f3:be:c3:
#         27:8e:03:3e:a4:dd:12:ef:7e:1e:74:06:3c:3f:31:f2:1c:7b:
#         91:31:21:b4:f0:d0:6c:97:d4:e9:97:b2:24:56:1e:56:c3:35:
#         bd:88:05:0f:5b:10:1a:64:e1:c7:82:30:f9:32:ad:9e:50:2c:
#         e7:78:05:d0:31:b1:5a:98:8a:75:4e:90:5c:6a:14:2a:e0:52:
#         47:82:60:e6:1e:da:81:b1:fb:14:0b:5a:f1:9f:d2:95:ba:3e:
#         d0:1b:d6:15:1d:a3:be:86:d5:db:0f:c0:49:64:bb:2e:50:19:
#         4b:d2:24:f8:dd:1e:07:56:d0:38:a0:95:70:20:76:8c:d7:dd:
#         1e:de:9f:71:c4:23:ef:83:13:5c:a3:24:15:4d:29:40:3c:6a:
#         c4:a9:d8:b7:a6:44:a5:0d:f4:e0:9d:77:1e:40:70:26:fc:da:
#         d9:36:e4:79:e4:b5:3f:bc:9b:65:be:bb:11:96:cf:db:c6:28:
#         39:3a:08:ce:47:5b:53:5a:c5:99:fe:5d:a9:dd:ef:4c:d4:c6:
#         a5:ad:02:e6:8c:07:12:1e:6f:03:d1:6f:a0:a3:f3:29:bd:12:
#         c7:50:a2:b0:7f:88:a9:99:77:9a:b1:c0:a5:39:2e:5c:7c:69:
#         e2:2c:b0:ea:37:6a:a4:e1:5a:e1:f5:50:e5:83:ef:a5:bb:2a:
#         88:e7:8c:db:fd:6d:5e:97:19:a8:7e:66:75:6b:71:ea:bf:b1:
#         c7:6f:a0:f4:8e:a4:ec:34:51:5b:8c:26:03:70:a1:77:d5:01:
#         12:57:00:35:db:23:de:0e:8a:28:99:fd:b1:10:6f:4b:ff:38:
#         2d:60:4e:2c:9c:eb:67:b5:ad:49:ee:4b:1f:ac:af:fb:0d:90:
#         5a:66:60:70:5d:aa:cd:78:d4:24:ee:c8:41:a0:93:01:92:9c:
#         6a:9e:fc:b9:24:c5:b3:15:82:7e:be:ae:95:2b:eb:b1:c0:da:
#         e3:01:60:0b:5e:69:ac:84:56:61:be:71:17:fe:1d:13:0f:fe:
#         c6:87:45:e9:fe:32:a0:1a:0d:13:a4:94:55:71:a5:16:8b:ba:
#         ca:89:b0:b2:c7:fc:8f:d8:54:b5:93:62:9d:ce:cf:59:fb:3d:
#         18:ce:2a:cb:35:15:82:5d:ff:54:22:5b:71:52:fb:b7:c9:fe:
#         60:9b:00:41:64:f0:aa:2a:ec:b6:42:43:ce:89:66:81:c8:8b:
#         9f:39:54:03:25:d3:16:35:8e:84:d0:5f:fa:30:1a:f5:9a:6c:
#         f4:0e:53:f9:3a:5b:d1:1c

[p11-kit-object-v1]
label: "Swisscom Root CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swisscom Root CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1e:9e:28:e8:48:f2:e5:ef:c3:7c:4a:1e:5a:18:67:b6
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ch, O = Swisscom, OU = Digital Certificate Services, CN = Swisscom Root CA 2
#        Validity
#            Not Before: Jun 24 08:38:14 2011 GMT
#            Not After : Jun 25 07:38:14 2031 GMT
#        Subject: C = ch, O = Swisscom, OU = Digital Certificate Services, CN = Swisscom Root CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:95:42:4e:84:9d:51:e6:d3:09:e8:72:5a:23:69:
#                    db:78:70:8e:16:f1:2b:8f:0d:03:ce:93:cc:2e:00:
#                    08:7b:ab:33:8c:f4:e9:40:e6:17:4c:ab:9e:b8:47:
#                    14:32:77:32:dd:28:0c:de:18:4b:5f:76:9f:f8:39:
#                    3b:fc:4e:89:d8:7c:c5:67:ef:ab:d2:b9:34:5f:6b:
#                    3a:f3:64:36:ce:c2:b0:cf:13:68:ca:c8:cb:eb:b5:
#                    e2:3d:2e:21:df:ea:2c:d4:e0:f9:70:96:4c:ff:6a:
#                    58:98:b7:17:e4:1b:52:e5:7e:07:00:1d:5f:da:e6:
#                    3e:95:04:b7:69:88:39:a1:41:60:25:61:4b:95:39:
#                    68:62:1c:b1:0b:05:89:c0:36:82:14:21:3f:ae:db:
#                    a1:fd:bc:6f:1c:60:86:b6:53:94:49:b9:2b:46:c5:
#                    4f:00:2b:bf:a1:bb:cb:3f:e0:c7:57:1c:57:e8:d6:
#                    69:f8:c1:24:52:9d:88:55:dd:c2:87:2e:74:23:d0:
#                    14:fd:2a:47:5a:bb:a6:9d:fd:94:e4:d1:8a:a5:5f:
#                    86:63:76:85:cb:af:ff:49:28:fc:80:ed:4c:79:d2:
#                    bb:e4:c0:ef:01:ee:50:41:08:35:23:70:2b:a9:16:
#                    b4:8c:6e:85:e9:b6:11:cf:31:dd:53:26:1b:df:2d:
#                    5a:4a:02:40:fc:c4:c0:b6:e9:31:1a:08:28:e5:60:
#                    c3:1f:c4:90:8e:10:62:60:44:0d:ec:0a:be:55:18:
#                    71:2c:a5:f4:b2:bc:15:62:ff:1c:e3:be:1d:da:1e:
#                    57:b3:3c:7e:cd:82:1d:91:e3:4b:eb:2c:52:34:b0:
#                    8a:fd:12:4e:96:b0:eb:70:7f:9e:39:f7:66:42:b1:
#                    ab:ac:52:da:76:40:57:7b:2a:bd:e8:6e:03:b2:0b:
#                    80:85:88:9d:0c:c7:c2:77:b0:9a:9a:57:f4:b8:fa:
#                    13:5c:68:93:3a:67:a4:97:d0:1b:99:b7:86:32:4b:
#                    60:d8:ce:ef:d0:0c:7f:95:9f:6f:87:4f:87:8a:8e:
#                    5f:08:7c:aa:5b:fc:5a:be:a1:91:9f:55:7d:4e:b0:
#                    0b:69:cc:b0:94:a8:a7:87:f2:d3:4a:50:dc:5f:72:
#                    b0:16:75:1e:cb:b4:18:62:9a:b0:a7:39:aa:9b:9f:
#                    66:d8:8d:a6:6c:96:15:e3:e6:f2:f8:f1:83:62:6c:
#                    bb:55:e9:61:93:a3:3d:f5:b1:57:8b:4f:23:b0:9b:
#                    e5:94:6a:2f:df:8c:df:95:51:29:60:a1:0b:29:e4:
#                    5c:55:58:b7:a8:fc:99:ee:25:4d:4c:0e:b3:d3:4c:
#                    8f:84:e8:29:0f:fd:10:54:02:85:c8:f9:e5:c3:8b:
#                    cf:e7:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Policy Mappings: 
#                2.16.756.1.83.2.1:2.16.756.1.83.2.1
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:7
#            X509v3 Subject Key Identifier: 
#                4D:26:20:22:89:4B:D3:D5:A4:0A:A1:6F:DE:E2:12:81:C5:F1:3C:2E
#            X509v3 Authority Key Identifier: 
#                keyid:4D:26:20:22:89:4B:D3:D5:A4:0A:A1:6F:DE:E2:12:81:C5:F1:3C:2E
#
#    Signature Algorithm: sha256WithRSAEncryption
#         32:0a:b2:a4:1b:cb:7d:be:82:57:89:b9:6a:7f:f3:f4:c1:2e:
#         11:7d:b8:19:3e:79:b7:a8:a8:72:37:66:9b:1a:ed:ac:13:3b:
#         0e:bf:62:f0:9c:df:9e:7b:a1:53:48:0e:41:7a:ca:20:a7:17:
#         1b:b6:78:ec:40:91:f3:42:ad:10:c3:5c:ef:ff:60:59:7f:cd:
#         85:a3:8b:3d:48:1c:25:02:3c:67:7d:f5:32:e9:2f:30:e5:7d:
#         a5:7a:38:d0:f3:66:2a:66:1e:8d:33:83:8a:6f:7c:6e:a8:5a:
#         75:9a:b8:d7:da:58:48:44:47:a8:4c:fa:4c:49:0a:4a:c2:12:
#         37:a8:40:0c:c3:c8:e1:d0:57:0d:97:32:95:c7:3a:9f:97:d3:
#         57:f8:0b:de:e5:72:f3:a3:db:ff:b5:d8:59:b2:73:dd:4d:2a:
#         71:b2:ba:49:f5:cb:1c:d5:f5:79:c8:99:b3:fc:c1:4c:74:e3:
#         b4:bd:29:37:15:04:28:1e:de:45:46:70:ec:af:ba:78:0e:8a:
#         2a:ce:00:79:dc:c0:5f:19:67:2c:6b:4b:ef:68:68:0b:43:e3:
#         ac:c1:62:09:ef:a6:dd:65:61:a0:af:84:55:48:91:52:1c:c6:
#         25:91:2a:d0:c1:22:23:61:59:af:45:11:85:1d:01:24:34:8f:
#         cf:b3:ff:17:72:20:13:c2:80:aa:21:2c:71:39:0e:d0:8f:5c:
#         c1:d3:d1:8e:22:72:46:4c:1d:96:ae:4f:71:b1:e1:05:29:96:
#         59:f4:bb:9e:75:3d:cf:0d:37:0d:62:db:26:8c:63:a9:23:df:
#         67:06:3c:7c:3a:da:34:42:e1:66:b4:46:04:de:c6:96:98:0f:
#         4b:48:7a:24:32:75:91:9f:ac:f7:68:e9:2a:b9:55:65:ce:5d:
#         61:d3:27:70:d8:37:fe:9f:b9:af:a0:2e:56:b7:a3:65:51:ed:
#         3b:ab:14:bf:4c:51:03:e8:5f:8a:05:9b:ee:8a:6e:9c:ef:bf:
#         68:fa:c8:da:0b:e3:42:c9:d0:17:14:9c:b7:4a:e0:af:93:27:
#         21:55:26:b5:64:2f:8d:f1:ff:a6:40:05:85:05:5c:ca:07:19:
#         5c:0b:13:28:4c:58:7f:c2:a5:ef:45:da:60:d3:ae:65:61:9d:
#         53:83:74:c2:ae:f2:5c:c2:16:ed:92:3e:84:3e:73:60:88:bc:
#         76:f4:2c:cf:d0:7d:7d:d3:b8:5e:d1:91:12:10:e9:cd:dd:ca:
#         25:e3:d5:ed:99:2f:be:75:81:4b:24:f9:45:46:94:c9:29:21:
#         53:9c:26:45:aa:13:17:e4:e7:cd:78:e2:39:c1:2b:12:9e:a6:
#         9e:1b:c5:e6:0e:d9:31:d9

[p11-kit-object-v1]
label: "Swisscom Root EV CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxPcdL1fqV2z3cF1jsHFS
CWBEKDOjek4K+tjqbItRFhpVrlQmxMxFB0FPEHl/cdJ6Tj84TrMAxpXKW83BKoPX
Jx8xDiMWtyXLHLS5gDJeGp2T8eg8YCynXlcZWFFevCxWC7jY74uCtDy4wiSoE8eg
ITYbelcpKKcuv3ElkPNEg2lQpOThG2IZlAmj88O87/S97NsTnc+dSAlSZ8A3KREe
+9IRp4UYdHnkT4UU61I34rFF2MwNQ3+uE9JrKz+nwuKobXZbQ5++tJ2zJoY7H3/l
8uhmKBYl0EuXOKfkzwnRNsMLvto7RFiNvvGeCWs+8zLHK4fG7F6c9odlrTMpxC+J
2bnLyQOd+2yUUZcQG4YLGhs/9gJ+e9TFUWQonfXTrIOBiNN0tFmdwethM1pF0cs5
0AZqU2Adr/b7abxq3AHPvfmP2b1bwTpfjtoPS6mbnSooaxoKfDyrIgvldy1x9oI1
ga74e4Hm6v6s9BqbdFzojyT2XZ1GxCzSHishaoMnZ1VKpOPIMpdmkHLa49RkLl/j
oWr2YNTnNc3KxGiN13HI0yQzc7Fs+WrhKNtfxj3ovlXmNxvtJNkPGY9fYxhYUIFR
ZW/yn35qBOc0JHG6dktYHhm9FWBFqgwSQAGdEOLHOAdyCmXAtrslKdoWnos1i2Ht
5XFXg7U8cZ/jT79+HoGfQZcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swisscom Root EV CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            f2:fa:64:e2:74:63:d3:8d:fd:10:1d:04:1f:76:ca:58
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = ch, O = Swisscom, OU = Digital Certificate Services, CN = Swisscom Root EV CA 2
#        Validity
#            Not Before: Jun 24 09:45:08 2011 GMT
#            Not After : Jun 25 08:45:08 2031 GMT
#        Subject: C = ch, O = Swisscom, OU = Digital Certificate Services, CN = Swisscom Root EV CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:f7:1d:2f:57:ea:57:6c:f7:70:5d:63:b0:71:
#                    52:09:60:44:28:33:a3:7a:4e:0a:fa:d8:ea:6c:8b:
#                    51:16:1a:55:ae:54:26:c4:cc:45:07:41:4f:10:79:
#                    7f:71:d2:7a:4e:3f:38:4e:b3:00:c6:95:ca:5b:cd:
#                    c1:2a:83:d7:27:1f:31:0e:23:16:b7:25:cb:1c:b4:
#                    b9:80:32:5e:1a:9d:93:f1:e8:3c:60:2c:a7:5e:57:
#                    19:58:51:5e:bc:2c:56:0b:b8:d8:ef:8b:82:b4:3c:
#                    b8:c2:24:a8:13:c7:a0:21:36:1b:7a:57:29:28:a7:
#                    2e:bf:71:25:90:f3:44:83:69:50:a4:e4:e1:1b:62:
#                    19:94:09:a3:f3:c3:bc:ef:f4:bd:ec:db:13:9d:cf:
#                    9d:48:09:52:67:c0:37:29:11:1e:fb:d2:11:a7:85:
#                    18:74:79:e4:4f:85:14:eb:52:37:e2:b1:45:d8:cc:
#                    0d:43:7f:ae:13:d2:6b:2b:3f:a7:c2:e2:a8:6d:76:
#                    5b:43:9f:be:b4:9d:b3:26:86:3b:1f:7f:e5:f2:e8:
#                    66:28:16:25:d0:4b:97:38:a7:e4:cf:09:d1:36:c3:
#                    0b:be:da:3b:44:58:8d:be:f1:9e:09:6b:3e:f3:32:
#                    c7:2b:87:c6:ec:5e:9c:f6:87:65:ad:33:29:c4:2f:
#                    89:d9:b9:cb:c9:03:9d:fb:6c:94:51:97:10:1b:86:
#                    0b:1a:1b:3f:f6:02:7e:7b:d4:c5:51:64:28:9d:f5:
#                    d3:ac:83:81:88:d3:74:b4:59:9d:c1:eb:61:33:5a:
#                    45:d1:cb:39:d0:06:6a:53:60:1d:af:f6:fb:69:bc:
#                    6a:dc:01:cf:bd:f9:8f:d9:bd:5b:c1:3a:5f:8e:da:
#                    0f:4b:a9:9b:9d:2a:28:6b:1a:0a:7c:3c:ab:22:0b:
#                    e5:77:2d:71:f6:82:35:81:ae:f8:7b:81:e6:ea:fe:
#                    ac:f4:1a:9b:74:5c:e8:8f:24:f6:5d:9d:46:c4:2c:
#                    d2:1e:2b:21:6a:83:27:67:55:4a:a4:e3:c8:32:97:
#                    66:90:72:da:e3:d4:64:2e:5f:e3:a1:6a:f6:60:d4:
#                    e7:35:cd:ca:c4:68:8d:d7:71:c8:d3:24:33:73:b1:
#                    6c:f9:6a:e1:28:db:5f:c6:3d:e8:be:55:e6:37:1b:
#                    ed:24:d9:0f:19:8f:5f:63:18:58:50:81:51:65:6f:
#                    f2:9f:7e:6a:04:e7:34:24:71:ba:76:4b:58:1e:19:
#                    bd:15:60:45:aa:0c:12:40:01:9d:10:e2:c7:38:07:
#                    72:0a:65:c0:b6:bb:25:29:da:16:9e:8b:35:8b:61:
#                    ed:e5:71:57:83:b5:3c:71:9f:e3:4f:bf:7e:1e:81:
#                    9f:41:97
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Policy Mappings: 
#                2.16.756.1.83.2.2:2.16.756.1.83.2.2
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:3
#            X509v3 Subject Key Identifier: 
#                45:D9:A5:81:6E:3D:88:4D:8D:71:D2:46:C1:6E:45:1E:F3:C4:80:9D
#            X509v3 Authority Key Identifier: 
#                keyid:45:D9:A5:81:6E:3D:88:4D:8D:71:D2:46:C1:6E:45:1E:F3:C4:80:9D
#
#    Signature Algorithm: sha256WithRSAEncryption
#         94:3a:73:06:9f:52:4b:30:5c:d4:fe:b1:5c:25:f9:d7:8e:6f:
#         f5:87:64:9f:ed:14:8e:b8:04:8e:28:4b:8f:aa:7b:8e:39:b4:
#         d9:58:f6:7b:a1:35:0a:a1:9d:8a:f7:63:e5:eb:bd:39:82:d4:
#         e3:7a:2d:6f:df:13:3c:ba:fe:7e:56:98:0b:f3:54:9f:cd:44:
#         4e:6e:3c:e1:3e:15:bf:06:26:9d:e4:f0:90:b6:d4:c2:9e:30:
#         2e:1f:ef:c7:7a:c4:50:c7:ea:7b:da:50:cb:7a:26:cb:00:b4:
#         5a:ab:b5:93:1f:80:89:84:04:95:8d:8d:7f:09:93:bf:d4:a8:
#         a8:e4:63:6d:d9:64:e4:b8:29:5a:08:bf:50:e1:84:0f:55:7b:
#         5f:08:22:1b:f5:bd:99:1e:14:f6:ce:f4:58:10:82:b3:0a:3d:
#         19:c1:bf:5b:ab:aa:99:d8:f2:31:bd:e5:38:66:dc:58:05:c7:
#         ed:63:1a:2e:0a:97:7c:87:93:2b:b2:8a:e3:f1:ec:18:e5:75:
#         b6:29:87:e7:dc:8b:1a:7e:b4:d8:c9:d3:8a:17:6c:7d:29:44:
#         be:8a:aa:f5:7e:3a:2e:68:31:93:b9:6a:da:9a:e0:db:e9:2e:
#         a5:84:cd:1c:0a:b8:4a:08:f9:9c:f1:61:26:98:93:b7:7b:66:
#         ec:91:5e:dd:51:3f:db:73:0f:ad:04:58:09:dd:04:02:95:0a:
#         3e:d3:76:df:a6:10:1e:80:3d:e8:cd:a4:64:d1:33:c7:92:c7:
#         e2:4e:44:e3:09:c9:4e:c2:5d:87:0e:12:9e:bf:0f:c9:05:10:
#         de:7a:a3:b1:3c:f2:3f:a5:aa:27:79:ad:31:7d:1f:fd:fc:19:
#         69:c5:dd:b9:3f:7c:cd:c6:b4:c2:30:1e:7e:6e:92:d7:7f:61:
#         76:5a:8f:eb:95:4d:bc:11:6e:21:7c:59:37:99:d0:06:bc:f9:
#         06:6d:32:16:a5:d9:69:a8:e1:dc:3c:80:1e:60:51:dc:d7:54:
#         21:1e:ca:62:77:4f:fa:d8:8f:b3:2b:3a:0d:78:72:c9:68:41:
#         5a:47:4a:c2:a3:eb:1a:d7:0a:ab:3c:32:55:c8:0a:11:9c:df:
#         74:d6:f0:40:15:1d:c8:b9:8f:b5:36:c5:af:f8:22:b8:ca:1d:
#         f3:d6:b6:19:0f:9f:61:65:6a:ea:74:c8:7c:8f:c3:4f:5d:65:
#         82:1f:d9:0d:89:da:75:72:fb:ef:f1:47:67:13:b3:c8:d1:19:
#         88:27:26:9a:99:79:7f:1e:e4:2c:3f:7b:ee:f1:de:4d:8b:96:
#         97:c3:d5:3f:7c:1b:23:ed:a4:b3:1d:16:72:43:4b:20:e1:59:
#         7e:c2:e8:ad:26:bf:a2:f7

[p11-kit-object-v1]
label: "Symantec Class 1 Public Primary Certification Authority - G6"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxznXSWSpmYIiTOpF2QcW
43v0g+iZc/prsTbgmnegQMKBjQHHzIy9j333eeN6TANN2fv9hzgoLN2ai1QI22f7
G4z+KJIvvreySKeBodheiMPMOUBBWtHc5doQny/aAU39LkZ8+S4nCmk37pGjG2rM
RL8bx8PUEbJQYJcJvS4i9UGEZp/NQKapAIDBH5WSn97zSO/bHXdh/H/f7pakctC2
Pv94J6/LkhVpCNtjEOLml6xu3Kz2os4eR5m5ibcS5qHUzVkRZ8NvhdhCTii+WVVZ
BJWrjzeAvw3w/B86ZDFYgXjX4jX2ID8puI8Wbj5I3LVMB+HyGup+CnnWqL3rXYYr
TQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Class 1 Public Primary Certification Authority - G6"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            24:32:75:f2:1d:2f:d2:09:33:f7:b4:6a:ca:d0:f3:98
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 1 Public Primary Certification Authority - G6
#        Validity
#            Not Before: Oct 18 00:00:00 2011 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 1 Public Primary Certification Authority - G6
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c7:39:d7:49:64:a9:99:82:22:4c:ea:45:d9:07:
#                    16:e3:7b:f4:83:e8:99:73:fa:6b:b1:36:e0:9a:77:
#                    a0:40:c2:81:8d:01:c7:cc:8c:bd:8f:7d:f7:79:e3:
#                    7a:4c:03:4d:d9:fb:fd:87:38:28:2c:dd:9a:8b:54:
#                    08:db:67:fb:1b:8c:fe:28:92:2f:be:b7:b2:48:a7:
#                    81:a1:d8:5e:88:c3:cc:39:40:41:5a:d1:dc:e5:da:
#                    10:9f:2f:da:01:4d:fd:2e:46:7c:f9:2e:27:0a:69:
#                    37:ee:91:a3:1b:6a:cc:44:bf:1b:c7:c3:d4:11:b2:
#                    50:60:97:09:bd:2e:22:f5:41:84:66:9f:cd:40:a6:
#                    a9:00:80:c1:1f:95:92:9f:de:f3:48:ef:db:1d:77:
#                    61:fc:7f:df:ee:96:a4:72:d0:b6:3e:ff:78:27:af:
#                    cb:92:15:69:08:db:63:10:e2:e6:97:ac:6e:dc:ac:
#                    f6:a2:ce:1e:47:99:b9:89:b7:12:e6:a1:d4:cd:59:
#                    11:67:c3:6f:85:d8:42:4e:28:be:59:55:59:04:95:
#                    ab:8f:37:80:bf:0d:f0:fc:1f:3a:64:31:58:81:78:
#                    d7:e2:35:f6:20:3f:29:b8:8f:16:6e:3e:48:dc:b5:
#                    4c:07:e1:f2:1a:ea:7e:0a:79:d6:a8:bd:eb:5d:86:
#                    2b:4d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                33:41:E8:C8:39:12:15:93:48:F2:96:32:2E:5A:F5:DA:94:5F:53:60
#    Signature Algorithm: sha256WithRSAEncryption
#         15:e3:73:57:b1:17:b6:5f:49:69:44:a6:f6:5e:7a:67:ac:d2:
#         de:75:49:ab:fe:25:55:c7:3a:c9:44:15:10:6e:bf:31:6b:cb:
#         d9:07:93:7f:1c:85:63:00:e3:32:12:e0:cc:cb:fb:39:6c:8f:
#         e2:53:e2:3c:40:33:d9:a4:8c:47:e6:ad:58:fb:89:af:e3:de:
#         86:29:56:34:2c:45:b8:12:fa:44:89:6e:2d:14:25:28:24:01:
#         65:d6:ea:52:ac:05:6e:56:12:09:3d:d0:74:f4:d7:bd:06:ca:
#         a8:3a:8d:56:42:fa:8d:72:3e:74:f1:03:72:df:87:1b:5e:0e:
#         7a:55:96:2c:38:b7:98:85:cd:4d:33:44:c9:94:8f:5a:31:30:
#         37:4b:a3:3a:12:b3:e7:36:d1:21:68:4b:2d:38:e6:53:ae:1c:
#         25:56:08:56:03:67:84:9d:c6:c3:ce:24:62:c7:4c:36:cf:b0:
#         06:44:b7:f5:5f:02:dd:d9:54:e9:2f:90:4e:7a:c8:4e:83:40:
#         0c:9a:97:3c:37:bf:bf:ec:f6:f0:b4:85:77:28:c1:0b:c8:67:
#         82:10:17:38:a2:b7:06:ea:9b:bf:3a:f8:e9:23:07:bf:74:e0:
#         98:38:15:55:78:ee:72:00:5c:19:a3:f4:d2:33:e0:ff:bd:d1:
#         54:39:29:0f

[p11-kit-object-v1]
label: "Symantec Class 2 Public Primary Certification Authority - G6"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzczpBchjhcs/QGMXvRj6
NeYEZ1dlmCmkT8lcjw800vjaqBNiqrgeUGd4sBZMoDmpFXqu7dKiwPCQNykYJlzo
DTy2bEk/weDc2Uu2FBkLptOW4dYJ4xkmHPkfZUv5GkMcAIPW0KpJotTb5mI4ulAU
Q235MfhWFtk4ApHP62zduzlOmeEwZ0Xx1PCNw9/+8jgHIX0AXlZEs+RgvZErnKtb
BHIPsijZcqsFIEIlqVsDaiAQzDHwK9o1LND7mpdO8IJLK9hfNqMLLa9jDR0lf6Fu
XGKhjSg+ofwcIPgBL7pVmhGwGdLIUHlrDmoF16oENrKj8uFfd6d3nOUe3OnfasFl
XQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Class 2 Public Primary Certification Authority - G6"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            64:82:9e:fc:37:1e:74:5d:fc:97:ff:97:c8:b1:ff:41
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 2 Public Primary Certification Authority - G6
#        Validity
#            Not Before: Oct 18 00:00:00 2011 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 2 Public Primary Certification Authority - G6
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cd:cc:e9:05:c8:63:85:cb:3f:40:63:17:bd:18:
#                    fa:35:e6:04:67:57:65:98:29:a4:4f:c9:5c:8f:0f:
#                    34:d2:f8:da:a8:13:62:aa:b8:1e:50:67:78:b0:16:
#                    4c:a0:39:a9:15:7a:ae:ed:d2:a2:c0:f0:90:37:29:
#                    18:26:5c:e8:0d:3c:b6:6c:49:3f:c1:e0:dc:d9:4b:
#                    b6:14:19:0b:a6:d3:96:e1:d6:09:e3:19:26:1c:f9:
#                    1f:65:4b:f9:1a:43:1c:00:83:d6:d0:aa:49:a2:d4:
#                    db:e6:62:38:ba:50:14:43:6d:f9:31:f8:56:16:d9:
#                    38:02:91:cf:eb:6c:dd:bb:39:4e:99:e1:30:67:45:
#                    f1:d4:f0:8d:c3:df:fe:f2:38:07:21:7d:00:5e:56:
#                    44:b3:e4:60:bd:91:2b:9c:ab:5b:04:72:0f:b2:28:
#                    d9:72:ab:05:20:42:25:a9:5b:03:6a:20:10:cc:31:
#                    f0:2b:da:35:2c:d0:fb:9a:97:4e:f0:82:4b:2b:d8:
#                    5f:36:a3:0b:2d:af:63:0d:1d:25:7f:a1:6e:5c:62:
#                    a1:8d:28:3e:a1:fc:1c:20:f8:01:2f:ba:55:9a:11:
#                    b0:19:d2:c8:50:79:6b:0e:6a:05:d7:aa:04:36:b2:
#                    a3:f2:e1:5f:77:a7:77:9c:e5:1e:dc:e9:df:6a:c1:
#                    65:5d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                87:8C:20:95:C8:98:4A:D1:D6:80:06:4A:90:34:44:DF:1C:4D:BF:B0
#    Signature Algorithm: sha256WithRSAEncryption
#         81:8e:b2:a5:66:96:b7:21:a5:b6:ef:6f:23:5a:5f:db:81:c5:
#         42:a5:78:c1:69:fd:f4:3c:d7:f9:5c:6b:70:72:1a:fc:5a:97:
#         4d:00:80:88:88:82:8a:c3:71:0d:8e:c5:89:9b:2c:ed:8d:0b:
#         d2:72:54:f5:7d:d4:5c:43:57:e9:f3:ae:a5:02:11:f6:76:2b:
#         81:57:dd:7d:da:74:30:fd:54:47:f6:e0:16:6e:a6:b4:0a:48:
#         e6:e7:75:07:0f:29:19:39:ce:79:f4:b6:6c:c5:5f:99:d5:1f:
#         4b:fa:df:6d:2c:3c:0d:54:80:70:f0:88:0b:80:cf:c6:68:a2:
#         b8:1d:70:d9:76:8c:fc:ee:a5:c9:cf:ad:1d:cf:99:25:57:5a:
#         62:45:cb:16:6b:bd:49:cd:a5:a3:8c:69:79:25:ae:b8:4c:6c:
#         8b:40:66:4b:16:3f:cf:02:1a:dd:e1:6c:6b:07:61:6a:76:15:
#         29:99:7f:1b:dd:88:80:c1:bf:b5:8f:73:c5:a6:96:23:84:a6:
#         28:86:24:33:6a:01:2e:57:73:25:b6:5e:bf:8f:e6:1d:61:a8:
#         40:29:67:1d:87:9b:1d:7f:9b:9f:99:cd:31:d6:54:be:62:bb:
#         39:ac:68:12:48:91:20:a5:cb:b1:dd:fe:6f:fc:5a:e4:82:55:
#         59:af:31:a9

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEV8/qszlNP6Eh4G4vOHLGh5fzhQtH5w9R
yNH0mZvKWWX/TPnqC7cl1dL27DEtMmIS13aGp/o4yWXU/nPihDn4TEliE9261Yig
Xz3IT7A/j6FQEeSTRq3DX8vxpGqVVujA
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:79:b5:9a:28:9c:76:31:64:f5:89:44:d0:91:02:de
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 3 Public Primary Certification Authority - G4
#        Validity
#            Not Before: Oct 18 00:00:00 2012 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 3 Public Primary Certification Authority - G4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:57:cf:ea:b3:39:4d:3f:a1:21:e0:6e:2f:38:72:
#                    c6:87:97:f3:85:0b:47:e7:0f:51:c8:d1:f4:99:9b:
#                    ca:59:65:ff:4c:f9:ea:0b:b7:25:d5:d2:f6:ec:31:
#                    2d:32:62:12:d7:76:86:a7:fa:38:c9:65:d4:fe:73:
#                    e2:84:39:f8:4c:49:62:13:dd:ba:d5:88:a0:5f:3d:
#                    c8:4f:b0:3f:8f:a1:50:11:e4:93:46:ad:c3:5f:cb:
#                    f1:a4:6a:95:56:e8:c0
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                24:9D:BC:D2:71:F7:1D:C2:25:BE:22:F1:89:A5:2C:15:3B:34:1E:5E
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:b9:66:68:65:db:05:d0:38:7d:0e:f3:c8:75:
#         61:b8:d0:28:c4:b1:4a:33:51:58:fb:f2:3c:10:c8:ae:47:78:
#         76:ca:66:24:17:86:3e:50:56:6e:a5:2d:99:88:b8:bd:24:02:
#         30:03:ea:a7:e7:a8:3c:ea:9d:62:c6:5f:54:da:98:f4:77:bd:
#         4f:8f:18:9c:91:5c:47:6b:40:4d:10:1d:b3:e1:89:ca:0b:22:
#         c8:1a:c5:c5:fe:8b:dd:c1:df:6f:78:9f:91

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G6"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G6"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            65:63:71:85:d3:6f:45:c6:8f:7f:31:f9:09:87:92:82
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 3 Public Primary Certification Authority - G6
#        Validity
#            Not Before: Oct 18 00:00:00 2012 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = Symantec Corporation, OU = Symantec Trust Network, CN = Symantec Class 3 Public Primary Certification Authority - G6
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b7:0e:b2:fa:4d:bc:9a:72:15:fb:77:5b:db:fd:
#                    43:0f:cb:0b:f7:60:2e:b3:2b:7e:0c:bb:53:f2:cc:
#                    4e:65:f3:19:bb:ff:35:1d:f7:d3:a9:bb:40:2d:b5:
#                    dd:78:d4:a6:f9:37:ea:85:05:7b:6d:b7:e6:13:4b:
#                    06:7c:fb:76:63:8f:20:1d:2d:38:2b:04:85:f2:e8:
#                    b0:d1:5f:4d:4a:21:c9:6a:d8:94:ea:1e:02:50:a6:
#                    aa:90:07:a0:47:21:ea:66:f9:04:a0:e6:83:f0:c4:
#                    f5:5e:96:e2:27:4d:61:c3:b3:c1:8c:22:b6:66:a1:
#                    00:d1:56:29:fb:ed:c1:7f:24:ca:3d:fa:5a:94:b0:
#                    84:c3:c7:ba:43:1c:fd:64:0e:f1:28:fb:47:59:f2:
#                    26:e1:31:b9:44:f9:ab:dd:fb:be:be:2c:37:e3:ac:
#                    0b:18:d3:fc:01:a2:f1:a4:0a:35:82:47:4c:ab:bd:
#                    8a:5e:df:13:85:fc:20:cc:48:59:af:af:41:6f:cb:
#                    23:cd:ca:93:a7:dd:d5:5f:c8:64:3b:ff:01:03:a0:
#                    0a:4f:2d:6e:3d:84:be:af:c8:32:b2:53:29:90:15:
#                    f7:b0:05:9a:0a:3c:f6:b9:06:90:c9:a5:e1:5d:a0:
#                    3b:b0:fe:a8:b6:bf:f5:89:28:57:24:3a:21:86:71:
#                    e4:dc:8a:8b:41:55:ec:1e:30:24:59:d1:c0:59:b8:
#                    78:af:aa:5a:74:de:25:80:30:98:ed:30:44:6f:21:
#                    70:1c:db:12:53:0e:d6:a6:28:66:93:2c:1f:cc:4f:
#                    3c:1b:81:c5:b9:f6:78:6f:d0:32:3a:08:72:db:6b:
#                    0e:46:17:85:94:f3:bc:ef:bc:f7:a4:5e:8e:e9:e9:
#                    b5:64:e5:b7:4b:45:12:2c:4c:37:b7:60:43:0a:4d:
#                    71:06:00:94:26:35:74:1f:bb:7a:39:5c:4e:3b:e6:
#                    b8:03:e2:c7:93:8b:84:2c:25:49:45:dd:7f:23:94:
#                    60:1f:cb:e9:cd:f6:ab:97:f7:61:e7:fb:7f:62:81:
#                    c8:dc:0a:30:5c:18:7c:e6:ce:ef:c7:6e:1e:87:7c:
#                    b3:e9:ca:c8:7b:6a:f4:68:fc:83:a5:0c:56:b4:ba:
#                    b2:8d:4a:0a:c7:97:97:c5:88:30:15:3d:10:08:54:
#                    15:72:72:67:33:33:f4:7c:b7:ce:00:27:53:65:ce:
#                    24:f1:5a:64:e7:36:2f:f2:2e:02:c2:97:df:72:e8:
#                    02:1e:a0:f7:3d:b5:fb:68:60:03:fa:33:a9:e6:12:
#                    6d:06:e1:a9:a8:5d:4e:3c:fe:d9:e7:00:65:ac:b6:
#                    19:4d:7b:83:7f:34:47:ea:e1:18:6d:b1:8b:1c:79:
#                    ab:e7:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                39:71:08:00:3E:DE:C8:86:E7:90:FF:E4:FD:21:0F:CE:24:19:16:F6
#    Signature Algorithm: sha384WithRSAEncryption
#         50:6b:88:4d:60:48:ce:5a:e3:22:ce:67:7c:84:a7:cd:1c:fd:
#         e9:0c:03:8c:36:af:0a:87:0e:6a:ae:57:ae:01:d0:36:bb:f2:
#         fd:b9:73:c1:5f:b5:a8:ae:4c:a2:fa:49:cb:07:46:16:36:bd:
#         e3:c8:57:38:7e:38:e4:bf:25:33:60:c6:dc:37:9c:63:bb:5e:
#         98:1e:1a:b2:82:f0:ae:a6:77:11:80:44:47:a1:29:c5:f0:b3:
#         3a:ce:98:f0:b8:ec:d3:0e:80:06:77:23:30:4c:ff:79:64:63:
#         22:5b:77:93:43:4b:75:b3:db:3b:6e:3b:4a:dd:f1:c8:ae:b5:
#         37:8a:95:88:3a:10:68:70:38:b9:5b:70:7e:d5:43:c9:fc:5f:
#         4f:e5:e6:7b:36:ee:f0:20:ed:47:57:13:26:10:5e:14:06:0d:
#         7b:76:07:c2:c6:2d:16:f4:ae:a7:6c:0f:bc:88:0f:4f:2c:02:
#         b6:a3:d7:22:e6:99:47:35:d8:8d:a5:4f:81:12:3a:11:7d:b3:
#         cc:0b:75:f3:1e:70:a3:1b:03:ea:fa:9a:e8:e6:2e:36:39:cc:
#         99:ce:3a:3f:0c:b7:ae:f8:43:99:b0:93:6e:6f:aa:d9:0f:6a:
#         31:91:bb:9c:d3:b4:28:fb:83:4c:7a:73:82:50:67:d2:0e:ac:
#         ed:60:c5:b2:5d:35:98:cf:87:7e:1e:59:1d:24:bc:56:ba:da:
#         a4:5a:d8:cc:e6:bc:1e:10:8f:1b:8c:8e:f3:c1:db:b7:be:d4:
#         b0:5b:65:8f:16:68:f3:56:c5:2a:19:16:4d:0f:b8:65:87:6d:
#         24:83:b8:62:dc:e0:47:61:1a:88:7b:ce:4e:7f:fd:dc:c6:0d:
#         5a:9a:a4:f3:b5:4c:f6:dd:31:a6:e8:1d:11:21:33:30:04:61:
#         7d:1c:e0:3e:4f:8d:3f:b5:8b:12:00:5a:7d:a9:a1:00:d4:83:
#         eb:70:bb:18:f8:a4:d2:1c:81:2d:b7:08:11:c8:26:7b:b6:d4:
#         e5:0f:03:46:72:d4:25:40:1e:be:49:5d:6d:93:f1:5c:b2:3b:
#         75:54:69:3a:a0:ee:4c:22:ba:ac:9a:e2:08:ad:45:63:05:4a:
#         52:35:76:c4:34:f5:5e:07:32:ad:dc:7c:26:d1:5b:8f:ad:e4:
#         e6:aa:1b:75:9f:eb:5d:b4:e8:c0:a9:15:7c:4e:4a:07:72:df:
#         46:c9:d4:91:92:75:56:b0:e1:ee:37:36:65:28:c5:15:c8:2b:
#         76:cc:6d:6f:19:83:f4:fd:da:15:e2:41:e7:33:79:46:83:57:
#         f9:f1:a5:b6:6d:d3:bc:d7:53:e7:ee:71:6d:78:a9:97:a7:ee:
#         20:9c:19:15:72:15:3d:04

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAql/aG1/oc5Hl2lz0ouZH
5fNoVWAFHQKks5tZ8x6KrzSt/A3C2UgZ7mmPySD8IaoHGe2wXKxlx1/tAnx7fC0b
1rq5gMIYghaE+mawCMZUI4HkzblJP/ZPbjdIKDgPxb7naHD9OZdN0seYkVCqxESz
I305R+lSYtYSk163MZZCBft2px6j9cL86XrFbKlxT+rLeLxgr8fe9NnLvn4zpW6U
g/A0+iGr6o5yoD+k3jBb74ZNapVbQ0SoEBUc5QFXxZjx5gYokaogxbdTJlFDsgsR
lVjhwA922cCNfIHzcnCeb/4ajtlfNcaybzR8vkhP4lo519ideJ6fhj4DXhmLRKLV
xwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = DE, O = T-Systems Enterprise Services GmbH, OU = T-Systems Trust Center, CN = T-TeleSec GlobalRoot Class 2
#        Validity
#            Not Before: Oct  1 10:40:14 2008 GMT
#            Not After : Oct  1 23:59:59 2033 GMT
#        Subject: C = DE, O = T-Systems Enterprise Services GmbH, OU = T-Systems Trust Center, CN = T-TeleSec GlobalRoot Class 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:aa:5f:da:1b:5f:e8:73:91:e5:da:5c:f4:a2:e6:
#                    47:e5:f3:68:55:60:05:1d:02:a4:b3:9b:59:f3:1e:
#                    8a:af:34:ad:fc:0d:c2:d9:48:19:ee:69:8f:c9:20:
#                    fc:21:aa:07:19:ed:b0:5c:ac:65:c7:5f:ed:02:7c:
#                    7b:7c:2d:1b:d6:ba:b9:80:c2:18:82:16:84:fa:66:
#                    b0:08:c6:54:23:81:e4:cd:b9:49:3f:f6:4f:6e:37:
#                    48:28:38:0f:c5:be:e7:68:70:fd:39:97:4d:d2:c7:
#                    98:91:50:aa:c4:44:b3:23:7d:39:47:e9:52:62:d6:
#                    12:93:5e:b7:31:96:42:05:fb:76:a7:1e:a3:f5:c2:
#                    fc:e9:7a:c5:6c:a9:71:4f:ea:cb:78:bc:60:af:c7:
#                    de:f4:d9:cb:be:7e:33:a5:6e:94:83:f0:34:fa:21:
#                    ab:ea:8e:72:a0:3f:a4:de:30:5b:ef:86:4d:6a:95:
#                    5b:43:44:a8:10:15:1c:e5:01:57:c5:98:f1:e6:06:
#                    28:91:aa:20:c5:b7:53:26:51:43:b2:0b:11:95:58:
#                    e1:c0:0f:76:d9:c0:8d:7c:81:f3:72:70:9e:6f:fe:
#                    1a:8e:d9:5f:35:c6:b2:6f:34:7c:be:48:4f:e2:5a:
#                    39:d7:d8:9d:78:9e:9f:86:3e:03:5e:19:8b:44:a2:
#                    d5:c7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                BF:59:20:36:00:79:A0:A0:22:6B:8C:D5:F2:61:D2:B8:2C:CB:82:4A
#    Signature Algorithm: sha256WithRSAEncryption
#         31:03:a2:61:0b:1f:74:e8:72:36:c6:6d:f9:4d:9e:fa:22:a8:
#         e1:81:56:cf:cd:bb:9f:ea:ab:91:19:38:af:aa:7c:15:4d:f3:
#         b6:a3:8d:a5:f4:8e:f6:44:a9:a7:e8:21:95:ad:3e:00:62:16:
#         88:f0:02:ba:fc:61:23:e6:33:9b:30:7a:6b:36:62:7b:ad:04:
#         23:84:58:65:e2:db:2b:8a:e7:25:53:37:62:53:5f:bc:da:01:
#         62:29:a2:a6:27:71:e6:3a:22:7e:c1:6f:1d:95:70:20:4a:07:
#         34:df:ea:ff:15:80:e5:ba:d7:7a:d8:5b:75:7c:05:7a:29:47:
#         7e:40:a8:31:13:77:cd:40:3b:b4:51:47:7a:2e:11:e3:47:11:
#         de:9d:66:d0:8b:d5:54:66:fa:83:55:ea:7c:c2:29:89:1b:e9:
#         6f:b3:ce:e2:05:84:c9:2f:3e:78:85:62:6e:c9:5f:c1:78:63:
#         74:58:c0:48:18:0c:99:39:eb:a4:cc:1a:b5:79:5a:8d:15:9c:
#         d8:14:0d:f6:7a:07:57:c7:22:83:05:2d:3c:9b:25:26:3d:18:
#         b3:a9:43:7c:c8:c8:ab:64:8f:0e:a3:bf:9c:1b:9d:30:db:da:
#         d0:19:2e:aa:3c:f1:fb:33:80:76:e4:cd:ad:19:4f:05:27:8e:
#         13:a1:6e:c2

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvXWT8GIibySu4Hp2rH29
2STVuLf8zfBC4Ot4iFZem5pUHU0MivbTz3D0UrXYkwTjRoZxQUor8CosVQPWSMPg
OTjt8lw8P0S8kz1hq07NDb7wICdYDkR/BBqHpdeWFDaQ0El7oXX7GmtzsfjOqQks
8lPVwxREuIal9osrOdqjM1TZ+nIa9yIVHIiRa39m5cNqgLAk89+GRYj9GX91hx8f
sRsKcyRbuWXgLFTIYNNmFz/hzFQzc5ECOqZ/e3Y5oh+WtjiutciTdB2eubTlYJ0v
VtHg615bTBJwDGxEIKsR2PQZ9tKcUjfn+rbCMTtK1BSZrcca9V1f+ge4fA0f1oMe
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDwzCCAqugAwIBAgIBATANBgkqhkiG9w0BAQsFADCBgjELMAkGA1UEBhMCREUx
KzApBgNVBAoMIlQtU3lzdGVtcyBFbnRlcnByaXNlIFNlcnZpY2VzIEdtYkgxHzAd
BgNVBAsMFlQtU3lzdGVtcyBUcnVzdCBDZW50ZXIxJTAjBgNVBAMMHFQtVGVsZVNl
YyBHbG9iYWxSb290IENsYXNzIDMwHhcNMDgxMDAxMTAyOTU2WhcNMzMxMDAxMjM1
OTU5WjCBgjELMAkGA1UEBhMCREUxKzApBgNVBAoMIlQtU3lzdGVtcyBFbnRlcnBy
aXNlIFNlcnZpY2VzIEdtYkgxHzAdBgNVBAsMFlQtU3lzdGVtcyBUcnVzdCBDZW50
ZXIxJTAjBgNVBAMMHFQtVGVsZVNlYyBHbG9iYWxSb290IENsYXNzIDMwggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC9dZPwYiJvJK7genasfb3ZJNW4t/zN
8ELg63iIVl6bmlQdTQyK9tPPcPRStdiTBONGhnFBSivwKixVA9ZIw+A5OO3yXDw/
RLyTPWGrTs0NvvAgJ1gORH8EGoel15YUNpDQSXuhdfsaa3Ox+M6pCSzyU9XDFES4
hqX2iys52qMzVNn6chr3IhUciJFrf2blw2qAsCTz34ZFiP0Zf3WHHx+xGwpzJFu5
ZeAsVMhg02YXP+HMVDNzkQI6pn97djmiH5a2OK61yJN0HZ65tOVgnS9W0eDrXltM
EnAMbEQgqxHY9Bn20pxSN+f6tsIxO0rUFJmtxxr1XV/6B7h8DR/Wgx6zAgMBAAGj
QjBAMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgEGMB0GA1UdDgQWBBS1
A/d2O2GCahKqGFPrAyGUv/7OyjANBgkqhkiG9w0BAQsFAAOCAQEAVj3vlNW92nOy
WL6ukK2YJ5f+AbGwUgC4TeQbIXQbfsDuXmkqJa9c1h3a0nnJ85cp4IaH3gRZD/FZ
1GSFS5mvJQQeyUapl96Cshtwn5z2r3Ex3XsFpSzTucpH9sry9uetuUg/vBa3wW30
6gmv7PO15wWeph6KU1HWk4HMdJP2udqmJQV0eVp+QD6CSyYRMG7hP0HHRwA11fXT
91Q+gT3aSWqas+8QPebrb9HIIkfLzM8BMZLZGOMivgkeGj5asuRrDFR6fUNOuIml
e9eiPZaGzPImNC1qkp2aGtAw4l1OBLBfiyB+d8E9lYLRRpo7PHi4b6HQDWSieB4p
TpPDpFQUWw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = DE, O = T-Systems Enterprise Services GmbH, OU = T-Systems Trust Center, CN = T-TeleSec GlobalRoot Class 3
#        Validity
#            Not Before: Oct  1 10:29:56 2008 GMT
#            Not After : Oct  1 23:59:59 2033 GMT
#        Subject: C = DE, O = T-Systems Enterprise Services GmbH, OU = T-Systems Trust Center, CN = T-TeleSec GlobalRoot Class 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bd:75:93:f0:62:22:6f:24:ae:e0:7a:76:ac:7d:
#                    bd:d9:24:d5:b8:b7:fc:cd:f0:42:e0:eb:78:88:56:
#                    5e:9b:9a:54:1d:4d:0c:8a:f6:d3:cf:70:f4:52:b5:
#                    d8:93:04:e3:46:86:71:41:4a:2b:f0:2a:2c:55:03:
#                    d6:48:c3:e0:39:38:ed:f2:5c:3c:3f:44:bc:93:3d:
#                    61:ab:4e:cd:0d:be:f0:20:27:58:0e:44:7f:04:1a:
#                    87:a5:d7:96:14:36:90:d0:49:7b:a1:75:fb:1a:6b:
#                    73:b1:f8:ce:a9:09:2c:f2:53:d5:c3:14:44:b8:86:
#                    a5:f6:8b:2b:39:da:a3:33:54:d9:fa:72:1a:f7:22:
#                    15:1c:88:91:6b:7f:66:e5:c3:6a:80:b0:24:f3:df:
#                    86:45:88:fd:19:7f:75:87:1f:1f:b1:1b:0a:73:24:
#                    5b:b9:65:e0:2c:54:c8:60:d3:66:17:3f:e1:cc:54:
#                    33:73:91:02:3a:a6:7f:7b:76:39:a2:1f:96:b6:38:
#                    ae:b5:c8:93:74:1d:9e:b9:b4:e5:60:9d:2f:56:d1:
#                    e0:eb:5e:5b:4c:12:70:0c:6c:44:20:ab:11:d8:f4:
#                    19:f6:d2:9c:52:37:e7:fa:b6:c2:31:3b:4a:d4:14:
#                    99:ad:c7:1a:f5:5d:5f:fa:07:b8:7c:0d:1f:d6:83:
#                    1e:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B5:03:F7:76:3B:61:82:6A:12:AA:18:53:EB:03:21:94:BF:FE:CE:CA
#    Signature Algorithm: sha256WithRSAEncryption
#         56:3d:ef:94:d5:bd:da:73:b2:58:be:ae:90:ad:98:27:97:fe:
#         01:b1:b0:52:00:b8:4d:e4:1b:21:74:1b:7e:c0:ee:5e:69:2a:
#         25:af:5c:d6:1d:da:d2:79:c9:f3:97:29:e0:86:87:de:04:59:
#         0f:f1:59:d4:64:85:4b:99:af:25:04:1e:c9:46:a9:97:de:82:
#         b2:1b:70:9f:9c:f6:af:71:31:dd:7b:05:a5:2c:d3:b9:ca:47:
#         f6:ca:f2:f6:e7:ad:b9:48:3f:bc:16:b7:c1:6d:f4:ea:09:af:
#         ec:f3:b5:e7:05:9e:a6:1e:8a:53:51:d6:93:81:cc:74:93:f6:
#         b9:da:a6:25:05:74:79:5a:7e:40:3e:82:4b:26:11:30:6e:e1:
#         3f:41:c7:47:00:35:d5:f5:d3:f7:54:3e:81:3d:da:49:6a:9a:
#         b3:ef:10:3d:e6:eb:6f:d1:c8:22:47:cb:cc:cf:01:31:92:d9:
#         18:e3:22:be:09:1e:1a:3e:5a:b2:e4:6b:0c:54:7a:7d:43:4e:
#         b8:89:a5:7b:d7:a2:3d:96:86:cc:f2:26:34:2d:6a:92:9d:9a:
#         1a:d0:30:e2:5d:4e:04:b0:5f:8b:20:7e:77:c1:3d:95:82:d1:
#         46:9a:3b:3c:78:b8:6f:a1:d0:0d:64:a2:78:1e:29:4e:93:c3:
#         a4:54:14:5b

[p11-kit-object-v1]
label: "TC TrustCenter Class 2 CA II"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq4CHm47ww3yH1+gkghGz
PN1DYu74w0Xa6OGgX9EqsuqTaN+0yNZD6cR1WX/84R34MXAjG4ieJ7l7/TrSyanp
FC+QvgNSwUnN9v3kCGYLV4qiQqC41X9pXJAyspcNykrcRj4CVYlT4xpayzbGB1b3
jM8R9Ey7MHAElaX2OYz9c4EIfYleMh4iqSJFS7BmLjDMn2X9/MuBqfHgO6+jhtGJ
6sRFeVBdrukhdJJNi1mCj5Tj6Urx50mwFOP1YsvVcr0fudKfoM2o+gHI2Q3f2vxH
nbPIVN9JSvEhqf4YTu5I1Bm7733k4p3LW7Zu/+PNWud0ggW6gCU4y+Rpnq9BqhqE
9QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TC TrustCenter Class 2 CA II"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2e:6a:00:01:00:02:1f:d7:52:21:2c:11:5c:3b
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Class 2 CA, CN = TC TrustCenter Class 2 CA II
#        Validity
#            Not Before: Jan 12 14:38:43 2006 GMT
#            Not After : Dec 31 22:59:59 2025 GMT
#        Subject: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Class 2 CA, CN = TC TrustCenter Class 2 CA II
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ab:80:87:9b:8e:f0:c3:7c:87:d7:e8:24:82:11:
#                    b3:3c:dd:43:62:ee:f8:c3:45:da:e8:e1:a0:5f:d1:
#                    2a:b2:ea:93:68:df:b4:c8:d6:43:e9:c4:75:59:7f:
#                    fc:e1:1d:f8:31:70:23:1b:88:9e:27:b9:7b:fd:3a:
#                    d2:c9:a9:e9:14:2f:90:be:03:52:c1:49:cd:f6:fd:
#                    e4:08:66:0b:57:8a:a2:42:a0:b8:d5:7f:69:5c:90:
#                    32:b2:97:0d:ca:4a:dc:46:3e:02:55:89:53:e3:1a:
#                    5a:cb:36:c6:07:56:f7:8c:cf:11:f4:4c:bb:30:70:
#                    04:95:a5:f6:39:8c:fd:73:81:08:7d:89:5e:32:1e:
#                    22:a9:22:45:4b:b0:66:2e:30:cc:9f:65:fd:fc:cb:
#                    81:a9:f1:e0:3b:af:a3:86:d1:89:ea:c4:45:79:50:
#                    5d:ae:e9:21:74:92:4d:8b:59:82:8f:94:e3:e9:4a:
#                    f1:e7:49:b0:14:e3:f5:62:cb:d5:72:bd:1f:b9:d2:
#                    9f:a0:cd:a8:fa:01:c8:d9:0d:df:da:fc:47:9d:b3:
#                    c8:54:df:49:4a:f1:21:a9:fe:18:4e:ee:48:d4:19:
#                    bb:ef:7d:e4:e2:9d:cb:5b:b6:6e:ff:e3:cd:5a:e7:
#                    74:82:05:ba:80:25:38:cb:e4:69:9e:af:41:aa:1a:
#                    84:f5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E3:AB:54:4C:80:A1:DB:56:43:B7:91:4A:CB:F3:82:7A:13:5C:08:AB
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.trustcenter.de/crl/v2/tc_class_2_ca_II.crl
#                  URI:ldap://www.trustcenter.de/CN=TC%20TrustCenter%20Class%202%20CA%20II,O=TC%20TrustCenter%20GmbH,OU=rootcerts,DC=trustcenter,DC=de?certificateRevocationList?base?
#
#    Signature Algorithm: sha1WithRSAEncryption
#         8c:d7:df:7e:ee:1b:80:10:b3:83:f5:db:11:ea:6b:4b:a8:92:
#         18:d9:f7:07:39:f5:2c:be:06:75:7a:68:53:15:1c:ea:4a:ed:
#         5e:fc:23:b2:13:a0:d3:09:ff:f6:f6:2e:6b:41:71:79:cd:e2:
#         6d:fd:ae:59:6b:85:1d:b8:4e:22:9a:ed:66:39:6e:4b:94:e6:
#         55:fc:0b:1b:8b:77:c1:53:13:66:89:d9:28:d6:8b:f3:45:4a:
#         63:b7:fd:7b:0b:61:5d:b8:6d:be:c3:dc:5b:79:d2:ed:86:e5:
#         a2:4d:be:5e:74:7c:6a:ed:16:38:1f:7f:58:81:5a:1a:eb:32:
#         88:2d:b2:f3:39:77:80:af:5e:b6:61:75:29:db:23:4d:88:ca:
#         50:28:cb:85:d2:d3:10:a2:59:6e:d3:93:54:00:7a:a2:46:95:
#         86:05:9c:a9:19:98:e5:31:72:0c:00:e2:67:d9:40:e0:24:33:
#         7b:6f:2c:b9:5c:ab:65:9d:2c:ac:76:ea:35:99:f5:97:b9:0f:
#         24:ec:c7:76:21:28:65:ae:57:e8:07:88:75:4a:56:a0:d2:05:
#         3a:a4:e6:8d:92:88:2c:f3:f2:e1:c1:c6:61:db:41:c5:c7:9b:
#         f7:0e:1a:51:45:c2:61:6b:dc:64:27:17:8c:5a:b7:da:74:28:
#         cd:97:e4:bd

[p11-kit-object-v1]
label: "TC TrustCenter Class 4 CA II"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtc1MnK2uUbt8SMUNKYZ6
FK3ZUD0JciANFLZjxv5YnuAhXvOPIhncTpEgzW+IKaKzwawqcrqLVLhAX/Kq+EOG
wjBczKddf8YISeQOOS+OGNaR3SMWeYDbbEgdvMHfKBBj0YHj3d8veXWiG3jylAHm
EGJ5y6B9AsA0gnvHwK0dTNdqlnZbvyaESP2H9oQKqpIHmUg8YbxOhVjHly39gUqh
xpsS9UJQ0WQ+iWiCInDd9frjKEIvTjLzs6M2imrWYlys+gFttOByLpVotPGTDMaK
gtIdU+p84D9CtxJauM3apQZny6F3faWW8JIeZw4dQkbm+e37R1N/VwRGH0Zfx67g
jwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TC TrustCenter Class 4 CA II"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDtjCCAp6gAwIBAgIOBcAAAQACQdAGCk3OdRAwDQYJKoZIhvcNAQEFBQAwdjEL
MAkGA1UEBhMCREUxHDAaBgNVBAoTE1RDIFRydXN0Q2VudGVyIEdtYkgxIjAgBgNV
BAsTGVRDIFRydXN0Q2VudGVyIENsYXNzIDQgQ0ExJTAjBgNVBAMTHFRDIFRydXN0
Q2VudGVyIENsYXNzIDQgQ0EgSUkwHhcNMDYwMzIzMTQxMDIzWhcNMjUxMjMxMjI1
OTU5WjB2MQswCQYDVQQGEwJERTEcMBoGA1UEChMTVEMgVHJ1c3RDZW50ZXIgR21i
SDEiMCAGA1UECxMZVEMgVHJ1c3RDZW50ZXIgQ2xhc3MgNCBDQTElMCMGA1UEAxMc
VEMgVHJ1c3RDZW50ZXIgQ2xhc3MgNCBDQSBJSTCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBALXNTJytrlG7fEjFDSmGehSt2VA9CXIgDRS2Y8b+WJ7gIV7z
jyIZ3E6RIM1viCmis8GsKnK6i1S4QF/yqvhDhsIwXMynXX/GCEnkDjkvjhjWkd0j
FnmA22xIHbzB3ygQY9GB493fL3l1oht48pQB5hBiecugfQLANIJ7x8CtHUzXapZ2
W78mhEj9h/aECqqSB5lIPGG8ToVYx5ct/YFKocabEvVCUNFkPologiJw3fX64yhC
L04y87OjNopq1mJcrPoBbbTgci6VaLTxkwzGioLSHVPqfOA/QrcSWrjN2qUGZ8uh
d32llvCSHmcOHUJG5vnt+0dTf1cERh9GX8eu4I8CAwEAAaNCMEAwDwYDVR0TAQH/
BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAYYwHQYDVR0OBBYEFB/quz4lGwa9pd1iBX7G
TFq/6A9DMA0GCSqGSIb3DQEBBQUAA4IBAQBYpCubTPfkpJKknGWYGWIi/HIy6QRd
xMRwLVpG3kxHiiW5ot3u6hKvSI3vK2fbO8w0mCr3CEf/Iq978fTr4jgCMxh1KBue
dmWsiANy8jhHHYz1nwqIUxAUu4DlDLNdjRfuHhkcho0UZ3iMksseIUn3f9MYv5x5
+F0IebWqak2SNmy8eesOPXmK2PajVnBd3ttPedJ60pVchidlvqDTB4FAVd0Qy+BL
iILAkH0457+W4Ze6mqtCD9Of2J4VMxHL94J59bXAQVaS4d9VA61Iz9PyLrHHLVZM
ZHQqMc7cdalUR6SnQnIJ5+ECpkeyBM1CE+FhDOB4OiIgohxgQoaH96Xm
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:c0:00:01:00:02:41:d0:06:0a:4d:ce:75:10
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Class 4 CA, CN = TC TrustCenter Class 4 CA II
#        Validity
#            Not Before: Mar 23 14:10:23 2006 GMT
#            Not After : Dec 31 22:59:59 2025 GMT
#        Subject: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Class 4 CA, CN = TC TrustCenter Class 4 CA II
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b5:cd:4c:9c:ad:ae:51:bb:7c:48:c5:0d:29:86:
#                    7a:14:ad:d9:50:3d:09:72:20:0d:14:b6:63:c6:fe:
#                    58:9e:e0:21:5e:f3:8f:22:19:dc:4e:91:20:cd:6f:
#                    88:29:a2:b3:c1:ac:2a:72:ba:8b:54:b8:40:5f:f2:
#                    aa:f8:43:86:c2:30:5c:cc:a7:5d:7f:c6:08:49:e4:
#                    0e:39:2f:8e:18:d6:91:dd:23:16:79:80:db:6c:48:
#                    1d:bc:c1:df:28:10:63:d1:81:e3:dd:df:2f:79:75:
#                    a2:1b:78:f2:94:01:e6:10:62:79:cb:a0:7d:02:c0:
#                    34:82:7b:c7:c0:ad:1d:4c:d7:6a:96:76:5b:bf:26:
#                    84:48:fd:87:f6:84:0a:aa:92:07:99:48:3c:61:bc:
#                    4e:85:58:c7:97:2d:fd:81:4a:a1:c6:9b:12:f5:42:
#                    50:d1:64:3e:89:68:82:22:70:dd:f5:fa:e3:28:42:
#                    2f:4e:32:f3:b3:a3:36:8a:6a:d6:62:5c:ac:fa:01:
#                    6d:b4:e0:72:2e:95:68:b4:f1:93:0c:c6:8a:82:d2:
#                    1d:53:ea:7c:e0:3f:42:b7:12:5a:b8:cd:da:a5:06:
#                    67:cb:a1:77:7d:a5:96:f0:92:1e:67:0e:1d:42:46:
#                    e6:f9:ed:fb:47:53:7f:57:04:46:1f:46:5f:c7:ae:
#                    e0:8f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1F:EA:BB:3E:25:1B:06:BD:A5:DD:62:05:7E:C6:4C:5A:BF:E8:0F:43
#    Signature Algorithm: sha1WithRSAEncryption
#         58:a4:2b:9b:4c:f7:e4:a4:92:a4:9c:65:98:19:62:22:fc:72:
#         32:e9:04:5d:c4:c4:70:2d:5a:46:de:4c:47:8a:25:b9:a2:dd:
#         ee:ea:12:af:48:8d:ef:2b:67:db:3b:cc:34:98:2a:f7:08:47:
#         ff:22:af:7b:f1:f4:eb:e2:38:02:33:18:75:28:1b:9e:76:65:
#         ac:88:03:72:f2:38:47:1d:8c:f5:9f:0a:88:53:10:14:bb:80:
#         e5:0c:b3:5d:8d:17:ee:1e:19:1c:86:8d:14:67:78:8c:92:cb:
#         1e:21:49:f7:7f:d3:18:bf:9c:79:f8:5d:08:79:b5:aa:6a:4d:
#         92:36:6c:bc:79:eb:0e:3d:79:8a:d8:f6:a3:56:70:5d:de:db:
#         4f:79:d2:7a:d2:95:5c:86:27:65:be:a0:d3:07:81:40:55:dd:
#         10:cb:e0:4b:88:82:c0:90:7d:38:e7:bf:96:e1:97:ba:9a:ab:
#         42:0f:d3:9f:d8:9e:15:33:11:cb:f7:82:79:f5:b5:c0:41:56:
#         92:e1:df:55:03:ad:48:cf:d3:f2:2e:b1:c7:2d:56:4c:64:74:
#         2a:31:ce:dc:75:a9:54:47:a4:a7:42:72:09:e7:e1:02:a6:47:
#         b2:04:cd:42:13:e1:61:0c:e0:78:3a:22:20:a2:1c:60:42:86:
#         87:f7:a5:e6

[p11-kit-object-v1]
label: "TC TrustCenter Universal CA I"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApHcjlkSvkPQxpxD0Joec
8zjZD17ez0HoMa3GdJEklngeCaCbmpVKSvVifAKoyqz7WgR2Od5f8fmzv/MDWFXS
qrfjBCLR+JTaIggAjdN8Jl3Md3nnLHg5qCZzDqJdJWmFT1UOmu/GuUThVz3fH1Qi
5W9lqjOEOvPOer5Vl66NEg8UM+JQcMNJhxO8Ud7XmBJa7zqDM5IGdYuSfBJoe3Bq
D7WbtndbSFmd5O9arfPBntTXRU7KVjQhvD4XW293DEgBQymw3T+WbuaVqgzAILb9
PjYnnONcz06B3Bm7kZB97OaXBB6TzCJJ15eGthMKPEMjd37w3ObNJB87g5s0OoM0
4wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TC TrustCenter Universal CA I"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1d:a2:00:01:00:02:ec:b7:60:80:78:8d:b6:06
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Universal CA, CN = TC TrustCenter Universal CA I
#        Validity
#            Not Before: Mar 22 15:54:28 2006 GMT
#            Not After : Dec 31 22:59:59 2025 GMT
#        Subject: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Universal CA, CN = TC TrustCenter Universal CA I
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a4:77:23:96:44:af:90:f4:31:a7:10:f4:26:87:
#                    9c:f3:38:d9:0f:5e:de:cf:41:e8:31:ad:c6:74:91:
#                    24:96:78:1e:09:a0:9b:9a:95:4a:4a:f5:62:7c:02:
#                    a8:ca:ac:fb:5a:04:76:39:de:5f:f1:f9:b3:bf:f3:
#                    03:58:55:d2:aa:b7:e3:04:22:d1:f8:94:da:22:08:
#                    00:8d:d3:7c:26:5d:cc:77:79:e7:2c:78:39:a8:26:
#                    73:0e:a2:5d:25:69:85:4f:55:0e:9a:ef:c6:b9:44:
#                    e1:57:3d:df:1f:54:22:e5:6f:65:aa:33:84:3a:f3:
#                    ce:7a:be:55:97:ae:8d:12:0f:14:33:e2:50:70:c3:
#                    49:87:13:bc:51:de:d7:98:12:5a:ef:3a:83:33:92:
#                    06:75:8b:92:7c:12:68:7b:70:6a:0f:b5:9b:b6:77:
#                    5b:48:59:9d:e4:ef:5a:ad:f3:c1:9e:d4:d7:45:4e:
#                    ca:56:34:21:bc:3e:17:5b:6f:77:0c:48:01:43:29:
#                    b0:dd:3f:96:6e:e6:95:aa:0c:c0:20:b6:fd:3e:36:
#                    27:9c:e3:5c:cf:4e:81:dc:19:bb:91:90:7d:ec:e6:
#                    97:04:1e:93:cc:22:49:d7:97:86:b6:13:0a:3c:43:
#                    23:77:7e:f0:dc:e6:cd:24:1f:3b:83:9b:34:3a:83:
#                    34:e3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:92:A4:75:2C:A4:9E:BE:81:44:EB:79:FC:8A:C5:95:A5:EB:10:75:73
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                92:A4:75:2C:A4:9E:BE:81:44:EB:79:FC:8A:C5:95:A5:EB:10:75:73
#    Signature Algorithm: sha1WithRSAEncryption
#         28:d2:e0:86:d5:e6:f8:7b:f0:97:dc:22:6b:3b:95:14:56:0f:
#         11:30:a5:9a:4f:3a:b0:3a:e0:06:cb:65:f5:ed:c6:97:27:fe:
#         25:f2:57:e6:5e:95:8c:3e:64:60:15:5a:7f:2f:0d:01:c5:b1:
#         60:fd:45:35:cf:f0:b2:bf:06:d9:ef:5a:be:b3:62:21:b4:d7:
#         ab:35:7c:53:3e:a6:27:f1:a1:2d:da:1a:23:9d:cc:dd:ec:3c:
#         2d:9e:27:34:5d:0f:c2:36:79:bc:c9:4a:62:2d:ed:6b:d9:7d:
#         41:43:7c:b6:aa:ca:ed:61:b1:37:82:15:09:1a:8a:16:30:d8:
#         ec:c9:d6:47:72:78:4b:10:46:14:8e:5f:0e:af:ec:c7:2f:ab:
#         10:d7:b6:f1:6e:ec:86:b2:c2:e8:0d:92:73:dc:a2:f4:0f:3a:
#         bf:61:23:10:89:9c:48:40:6e:70:00:b3:d3:ba:37:44:58:11:
#         7a:02:6a:88:f0:37:34:f0:19:e9:ac:d4:65:73:f6:69:8c:64:
#         94:3a:79:85:29:b0:16:2b:0c:82:3f:06:9c:c7:fd:10:2b:9e:
#         0f:2c:b6:9e:e3:15:bf:d9:36:1c:ba:25:1a:52:3d:1a:ec:22:
#         0c:1c:e0:a4:a2:3d:f0:e8:39:cf:81:c0:7b:ed:5d:1f:6f:c5:
#         d0:0b:d7:98

[p11-kit-object-v1]
label: "TC TrustCenter Universal CA II"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TC TrustCenter Universal CA II"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            19:33:00:01:00:02:28:1a:9a:04:bc:f2:55:45
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Universal CA, CN = TC TrustCenter Universal CA II
#        Validity
#            Not Before: Mar 22 15:58:34 2006 GMT
#            Not After : Dec 31 22:59:59 2030 GMT
#        Subject: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Universal CA, CN = TC TrustCenter Universal CA II
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:8b:d4:77:6b:34:6c:e5:36:d8:6a:5c:5e:38:ee:
#                    fc:d5:1d:79:03:3b:7b:83:62:44:82:4e:88:ed:de:
#                    83:ff:ee:cc:50:62:05:05:95:99:76:98:f6:b9:f2:
#                    5f:d8:06:91:92:c2:f6:2d:66:17:1f:fd:53:03:e8:
#                    a8:8d:63:a9:6e:e1:d6:1b:8c:bc:98:b3:8b:3b:d4:
#                    e4:2e:ca:7d:85:49:26:5b:79:b8:1a:8b:40:9e:7f:
#                    bb:c9:3f:63:2c:cf:d1:5a:7c:ba:28:22:41:12:5a:
#                    4d:f9:17:77:fc:85:fd:c2:49:e0:2a:18:7f:e9:a0:
#                    2c:9c:f9:44:fc:0c:68:39:42:f5:27:05:be:8e:15:
#                    7a:60:9d:f0:3b:c7:3c:e6:3e:16:bc:af:76:de:6a:
#                    b7:a2:e1:ab:46:45:eb:8c:65:7d:d1:97:f3:97:11:
#                    25:ab:59:eb:a0:22:d9:82:dd:98:ed:7e:e2:fa:a0:
#                    61:0a:4a:32:de:2c:17:f7:6d:44:ea:81:47:59:97:
#                    57:37:03:39:dd:5e:82:22:d4:33:b8:fa:26:09:b6:
#                    bc:39:88:2f:51:15:4e:9b:c3:3b:df:13:82:88:dd:
#                    4b:34:f2:33:d6:90:e9:f3:53:dc:35:7c:c0:c3:d9:
#                    7c:78:b3:cd:70:3f:8d:6a:e0:a3:81:48:e4:29:ad:
#                    63:b8:f0:fc:28:64:3b:99:b3:7d:fe:9a:9d:88:f6:
#                    99:22:08:91:47:16:89:35:78:5d:77:a1:cf:bf:49:
#                    e1:fd:24:94:2b:69:36:7b:e8:1c:e6:2a:90:8a:5b:
#                    d5:3b:34:59:42:dc:6d:cf:bb:0f:41:1c:55:cd:f5:
#                    0d:5b:2e:16:22:26:ef:61:1e:97:fc:e2:53:c8:cf:
#                    5b:a3:c7:a9:f1:ba:0e:86:12:cb:13:ca:15:c7:ec:
#                    e4:36:8d:da:5c:13:3d:65:d2:0e:5d:70:74:dc:bf:
#                    8f:7a:6a:c1:2e:0f:d3:c6:5e:0f:2b:59:6c:cc:61:
#                    6c:fe:c0:61:4e:d9:e6:4f:46:b2:5a:e2:19:14:70:
#                    84:f8:20:00:ed:01:a7:97:7e:c3:bd:12:5c:92:23:
#                    17:a0:a5:1d:45:17:15:23:9a:92:08:b5:22:88:8d:
#                    dc:2b:24:eb:e0:b1:17:68:d3:af:61:bd:d9:85:78:
#                    f6:8d:ba:78:ca:37:8d:63:be:e7:ac:1f:df:a5:47:
#                    09:b9:c8:25:31:54:46:51:11:55:0d:89:5c:8d:da:
#                    d2:18:2d:73:f2:b8:d5:27:f5:48:22:37:d1:62:f7:
#                    7b:0d:c8:38:8b:a1:4a:b0:fc:d0:f1:eb:b7:86:63:
#                    e7:e0:0e:73:7f:fd:72:51:b5:e9:7d:e2:55:05:64:
#                    78:67:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:CD:D7:90:A1:6E:A3:BF:DB:30:D6:DA:32:25:90:0C:E6:39:1E:80:65
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CD:D7:90:A1:6E:A3:BF:DB:30:D6:DA:32:25:90:0C:E6:39:1E:80:65
#    Signature Algorithm: sha1WithRSAEncryption
#         7e:16:88:e8:13:0e:36:cc:6e:2a:85:07:38:c6:56:89:7a:e3:
#         47:21:66:4c:50:08:31:5a:51:d0:fc:a6:5e:14:75:de:4c:3b:
#         ec:f1:ed:cc:7e:11:07:4a:61:ee:ea:b3:8e:3a:a4:33:c6:ed:
#         8a:42:66:4f:f1:3c:7b:c9:a5:05:41:99:b1:ec:2c:5b:ee:dc:
#         96:d2:88:53:4b:78:34:b9:6e:e6:bb:0f:c5:7a:a6:7c:0e:18:
#         df:6f:0f:74:4c:d1:a9:f1:a1:e9:d8:54:64:cc:5e:96:78:a2:
#         56:1a:c1:73:b2:15:c6:57:05:df:da:f7:48:24:8a:8e:7f:6a:
#         a9:f9:4d:e9:3e:6a:ce:60:2c:7d:2d:90:08:f6:63:8f:15:d0:
#         2d:9c:8c:ff:f1:fd:fc:0c:16:50:56:14:fb:ba:97:86:ee:b4:
#         49:03:54:ee:1b:59:7f:30:3a:02:82:86:21:ae:fe:f0:15:f2:
#         df:4e:83:e6:99:c5:ba:35:f7:20:90:8c:38:ed:75:cf:e1:2e:
#         f7:04:30:fb:51:ad:8e:82:24:40:ca:7d:29:5d:d5:d9:f7:65:
#         64:fc:aa:9f:74:b8:7d:92:5d:d2:84:29:e0:13:ea:8a:f7:d0:
#         ab:c4:ae:ef:15:c5:c2:89:f2:7b:b6:3b:49:98:61:f3:4e:72:
#         91:37:8c:49:92:e9:c8:ec:2a:a0:f7:49:6e:7c:0d:24:c6:6b:
#         6c:f2:38:2f:ca:70:05:e5:7f:df:c6:2b:2b:80:80:d5:da:6f:
#         cb:40:bb:d8:1b:f0:24:c9:10:c8:44:02:7e:2e:d3:98:aa:a2:
#         0d:f1:2b:d0:da:fa:8e:1c:ff:54:e8:e1:4a:6e:dd:a8:d6:78:
#         b5:37:a5:ac:64:d5:14:23:c7:0e:a5:eb:e1:09:38:d7:c0:7c:
#         60:a5:5d:98:8f:8c:02:d5:dc:56:a8:f3:4d:58:a9:0b:d4:7c:
#         64:74:01:32:f2:df:0f:4a:8a:a9:02:a2:a2:1d:84:77:c2:f1:
#         cc:97:bd:34:19:74:5d:e2:74:3e:75:27:f7:af:bf:ee:7c:0e:
#         6d:54:88:a6:56:e2:26:ad:31:12:3c:1e:41:79:6d:17:ea:13:
#         5e:1f:f5:5c:9f:49:59:a3:b2:2f:a3:42:c3:fa:a8:7e:bf:a5:
#         9f:48:c9:60:62:62:0a:df:bd:45:de:e3:42:b5:51:96:fd:c4:
#         f5:1a:99:b8:52:a2:44:cd:2d:61:8c:15:8f:81:d5:5d:a2:d4:
#         90:3d:8c:6e:40:61:c3:59:5d:d8:d9:e1:f6:74:47:22:79:74:
#         7d:da:ca:a3:6f:37:15:36:f0:2c:1a:71:3c:11:76:df:5d:1a:
#         3e:54:63:78:6b:65:7e:1f

[p11-kit-object-v1]
label: "TC TrustCenter Universal CA III"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwtqcYrC5cRKwC8gaV7Ku
gxSZszRLm5CixefnLwKgTS2k+oXamyWFLUAoIG3q4L2xSIMiKUSfToPuNVETc3TV
vPIwZpRTwEA2LwyEZc4PbsJYk+gsCzrpwY778mvKPOKcTo7k+X3TJ58b1Wd4hy1/
C0ezx+jJSHyvL8wK2UHvn/6a4bKu+VO15elGn2Dj343Tf/uWfrO1cvhLrQh5zWmJ
QCf1KsGtQ+ykU8hhtvfSeSpnGHZIbVslAdEmxbdXaSMVW2GKrfAbLdmvXPEmkGmp
1QxA9TOAQ4+co3YqRbSvv38+hz92xc0q3iDFFljL+Rv1D8sNEVJkuNJ2YneD8Vif
/wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TC TrustCenter Universal CA III"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIID4TCCAsmgAwIBAgIOYyUAAQACFI0zFQLkbPQwDQYJKoZIhvcNAQEFBQAwezEL
MAkGA1UEBhMCREUxHDAaBgNVBAoTE1RDIFRydXN0Q2VudGVyIEdtYkgxJDAiBgNV
BAsTG1RDIFRydXN0Q2VudGVyIFVuaXZlcnNhbCBDQTEoMCYGA1UEAxMfVEMgVHJ1
c3RDZW50ZXIgVW5pdmVyc2FsIENBIElJSTAeFw0wOTA5MDkwODE1MjdaFw0yOTEy
MzEyMzU5NTlaMHsxCzAJBgNVBAYTAkRFMRwwGgYDVQQKExNUQyBUcnVzdENlbnRl
ciBHbWJIMSQwIgYDVQQLExtUQyBUcnVzdENlbnRlciBVbml2ZXJzYWwgQ0ExKDAm
BgNVBAMTH1RDIFRydXN0Q2VudGVyIFVuaXZlcnNhbCBDQSBJSUkwggEiMA0GCSqG
SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDC2pxisLlxErALyBpXsq6DFJmzNEubkKLF
5+cvAqBNLaT6hdqbJYUtQCggbergvbFIgyIpRJ9Og+41URNzdNW88jBmlFPAQDYv
DIRlzg9uwliT6CwLOunBjvvya8o84pxOjuT5fdMnnxvVZ3iHLX8LR7PH6MlIfK8v
zArZQe+f/prhsq75U7Xl6UafYOPfjdN/+5Z+s7Vy+EutCHnNaYlAJ/Uqwa1D7KRT
yGG299J5KmcYdkhtWyUB0SbFt1dpIxVbYYqt8Bst2a9c8SaQaanVDED1M4BDj5yj
dipFtK+/fz6HP3bFzSreIMUWWMv5G/UPyw0RUmS40nZid4PxWJ//AgMBAAGjYzBh
MB8GA1UdIwQYMBaAFFbn4VslQ4Dg9ozhcbyO5YAvxEjiMA8GA1UdEwEB/wQFMAMB
Af8wDgYDVR0PAQH/BAQDAgEGMB0GA1UdDgQWBBRW5+FbJUOA4PaM4XG8juWAL8RI
4jANBgkqhkiG9w0BAQUFAAOCAQEAg8ev6n9NCjw5sWi+e22JLumzCecYV42Fmhfz
dkJQEw/HkG8zrcVJYCtsSVgZ1OK+t7+rSbyUyKu+KGwWaODIl0YgoGhnYIg5IFHY
aAERzqf2EQf27OysGh+yZm5WZ2B6dF7AbZc2rrUNXWZzwCUyRdhKBgePxLcHsU0G
DeGl6/R1yrqc0L2z0zIkTO5+4nYES0lT2PLpVDP85XEfPRRclkvxOvIAu2y0+pZV
CIgJwcyRGSmwIC3/yzikQOEXvnlhgP8HA4ZMTnsGnxGGjYnuJ8Tb4rwZjgvDwxPH
LQNjO9Po5KIqwoIIlBZU8O8fJ5AluA0OKBtHd0e9HKgl8ZS0Zg==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            63:25:00:01:00:02:14:8d:33:15:02:e4:6c:f4
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Universal CA, CN = TC TrustCenter Universal CA III
#        Validity
#            Not Before: Sep  9 08:15:27 2009 GMT
#            Not After : Dec 31 23:59:59 2029 GMT
#        Subject: C = DE, O = TC TrustCenter GmbH, OU = TC TrustCenter Universal CA, CN = TC TrustCenter Universal CA III
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c2:da:9c:62:b0:b9:71:12:b0:0b:c8:1a:57:b2:
#                    ae:83:14:99:b3:34:4b:9b:90:a2:c5:e7:e7:2f:02:
#                    a0:4d:2d:a4:fa:85:da:9b:25:85:2d:40:28:20:6d:
#                    ea:e0:bd:b1:48:83:22:29:44:9f:4e:83:ee:35:51:
#                    13:73:74:d5:bc:f2:30:66:94:53:c0:40:36:2f:0c:
#                    84:65:ce:0f:6e:c2:58:93:e8:2c:0b:3a:e9:c1:8e:
#                    fb:f2:6b:ca:3c:e2:9c:4e:8e:e4:f9:7d:d3:27:9f:
#                    1b:d5:67:78:87:2d:7f:0b:47:b3:c7:e8:c9:48:7c:
#                    af:2f:cc:0a:d9:41:ef:9f:fe:9a:e1:b2:ae:f9:53:
#                    b5:e5:e9:46:9f:60:e3:df:8d:d3:7f:fb:96:7e:b3:
#                    b5:72:f8:4b:ad:08:79:cd:69:89:40:27:f5:2a:c1:
#                    ad:43:ec:a4:53:c8:61:b6:f7:d2:79:2a:67:18:76:
#                    48:6d:5b:25:01:d1:26:c5:b7:57:69:23:15:5b:61:
#                    8a:ad:f0:1b:2d:d9:af:5c:f1:26:90:69:a9:d5:0c:
#                    40:f5:33:80:43:8f:9c:a3:76:2a:45:b4:af:bf:7f:
#                    3e:87:3f:76:c5:cd:2a:de:20:c5:16:58:cb:f9:1b:
#                    f5:0f:cb:0d:11:52:64:b8:d2:76:62:77:83:f1:58:
#                    9f:ff
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:56:E7:E1:5B:25:43:80:E0:F6:8C:E1:71:BC:8E:E5:80:2F:C4:48:E2
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                56:E7:E1:5B:25:43:80:E0:F6:8C:E1:71:BC:8E:E5:80:2F:C4:48:E2
#    Signature Algorithm: sha1WithRSAEncryption
#         83:c7:af:ea:7f:4d:0a:3c:39:b1:68:be:7b:6d:89:2e:e9:b3:
#         09:e7:18:57:8d:85:9a:17:f3:76:42:50:13:0f:c7:90:6f:33:
#         ad:c5:49:60:2b:6c:49:58:19:d4:e2:be:b7:bf:ab:49:bc:94:
#         c8:ab:be:28:6c:16:68:e0:c8:97:46:20:a0:68:67:60:88:39:
#         20:51:d8:68:01:11:ce:a7:f6:11:07:f6:ec:ec:ac:1a:1f:b2:
#         66:6e:56:67:60:7a:74:5e:c0:6d:97:36:ae:b5:0d:5d:66:73:
#         c0:25:32:45:d8:4a:06:07:8f:c4:b7:07:b1:4d:06:0d:e1:a5:
#         eb:f4:75:ca:ba:9c:d0:bd:b3:d3:32:24:4c:ee:7e:e2:76:04:
#         4b:49:53:d8:f2:e9:54:33:fc:e5:71:1f:3d:14:5c:96:4b:f1:
#         3a:f2:00:bb:6c:b4:fa:96:55:08:88:09:c1:cc:91:19:29:b0:
#         20:2d:ff:cb:38:a4:40:e1:17:be:79:61:80:ff:07:03:86:4c:
#         4e:7b:06:9f:11:86:8d:89:ee:27:c4:db:e2:bc:19:8e:0b:c3:
#         c3:13:c7:2d:03:63:3b:d3:e8:e4:a2:2a:c2:82:08:94:16:54:
#         f0:ef:1f:27:90:25:b8:0d:0e:28:1b:47:77:47:bd:1c:a8:25:
#         f1:94:b4:66

[p11-kit-object-v1]
label: "TDC Internet"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxLhAvJHVYx/XmaCLDEAe
dLdInUaMArLgJF/wGROnN4NrXceO+YQwzho7+vvOi20jxsNuZp+Jpd/gQlBn+h9s
HvTQBda/ytZO5GhgbEaqHF1j4QeGDmUApy6mcca8uYGoOn0a0vnRrEvLznWv3Hv6
gXPU/Lq9QYjUdLP5Xjg6PEOo0pVOd20TDJ2PeAG3WiAfAzc14izbSysseLlJ28TQ
x5yc5IogCSEWVmb/Bexb4/DPqyQkXsN/cHoSxNK1EKC2IeGNeGlVRGn1ypYcNIUX
JXfi9i8nmHj9eQY6otZaQ8H/7AQ77hPv01ha/5Lr7K7a8jcDR0G2l8ktCkEiu7vm
pwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TDC Internet"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEKzCCAxOgAwIBAgIEOsylTDANBgkqhkiG9w0BAQUFADBDMQswCQYDVQQGEwJE
SzEVMBMGA1UEChMMVERDIEludGVybmV0MR0wGwYDVQQLExRUREMgSW50ZXJuZXQg
Um9vdCBDQTAeFw0wMTA0MDUxNjMzMTdaFw0yMTA0MDUxNzAzMTdaMEMxCzAJBgNV
BAYTAkRLMRUwEwYDVQQKEwxUREMgSW50ZXJuZXQxHTAbBgNVBAsTFFREQyBJbnRl
cm5ldCBSb290IENBMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxLhA
vJHVYx/XmaCLDEAedLdInUaMArLgJF/wGROnN4NrXceO+YQwzho7+vvOi20jxsNu
Zp+Jpd/gQlBn+h9sHvTQBda/ytZO5GhgbEaqHF1j4QeGDmUApy6mcca8uYGoOn0a
0vnRrEvLznWv3Hv6gXPU/Lq9QYjUdLP5Xjg6PEOo0pVOd20TDJ2PeAG3WiAfAzc1
4izbSysseLlJ28TQx5yc5IogCSEWVmb/Bexb4/DPqyQkXsN/cHoSxNK1EKC2IeGN
eGlVRGn1ypYcNIUXJXfi9i8nmHj9eQY6otZaQ8H/7AQ77hPv01ha/5Lr7K7a8jcD
R0G2l8ktCkEiu7vmpwIDAQABo4IBJTCCASEwEQYJYIZIAYb4QgEBBAQDAgAHMGUG
A1UdHwReMFwwWqBYoFakVDBSMQswCQYDVQQGEwJESzEVMBMGA1UEChMMVERDIElu
dGVybmV0MR0wGwYDVQQLExRUREMgSW50ZXJuZXQgUm9vdCBDQTENMAsGA1UEAxME
Q1JMMTArBgNVHRAEJDAigA8yMDAxMDQwNTE2MzMxN1qBDzIwMjEwNDA1MTcwMzE3
WjALBgNVHQ8EBAMCAQYwHwYDVR0jBBgwFoAUbGQBx/2FbazI2p5QCIUItTxWqFAw
HQYDVR0OBBYEFGxkAcf9hW2syNqeUAiFCLU8VqhQMAwGA1UdEwQFMAMBAf8wHQYJ
KoZIhvZ9B0EABBAwDhsIVjUuMDo0LjADAgSQMA0GCSqGSIb3DQEBBQUAA4IBAQBO
Q8zR3R0QGwZ/t6T609lN+yOfI1Rb5osvBCiLtSdtiaHsmGnc540mgwV5dOy0uaOX
wTUA/RXaOYE6lTGQ3pfphqiZdwzlWqCE/xIWrG64jcN7ksKsLtB9KOy282A4aW8+
2ARVPp7MVdK6/rtHBNcK2RYKNCn1WBPVT8+PVkuzHu7TmHnaCB4Mb7j4Fifvwm89
9qNLPg7kbWzbO0ESm70NRyN/PErQr8Cv9u8btRXE64PECV90i9kR+8JWsTz4cMo0
jUNAE4z9mQNUecYu6oah9jrUCbz0vGbMPVjQV0kK7iXiQe4T+Zs4NNEA9X7nlB38
aQNiuJkFBT1reBK9sG9l
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 986490188 (0x3acca54c)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = DK, O = TDC Internet, OU = TDC Internet Root CA
#        Validity
#            Not Before: Apr  5 16:33:17 2001 GMT
#            Not After : Apr  5 17:03:17 2021 GMT
#        Subject: C = DK, O = TDC Internet, OU = TDC Internet Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c4:b8:40:bc:91:d5:63:1f:d7:99:a0:8b:0c:40:
#                    1e:74:b7:48:9d:46:8c:02:b2:e0:24:5f:f0:19:13:
#                    a7:37:83:6b:5d:c7:8e:f9:84:30:ce:1a:3b:fa:fb:
#                    ce:8b:6d:23:c6:c3:6e:66:9f:89:a5:df:e0:42:50:
#                    67:fa:1f:6c:1e:f4:d0:05:d6:bf:ca:d6:4e:e4:68:
#                    60:6c:46:aa:1c:5d:63:e1:07:86:0e:65:00:a7:2e:
#                    a6:71:c6:bc:b9:81:a8:3a:7d:1a:d2:f9:d1:ac:4b:
#                    cb:ce:75:af:dc:7b:fa:81:73:d4:fc:ba:bd:41:88:
#                    d4:74:b3:f9:5e:38:3a:3c:43:a8:d2:95:4e:77:6d:
#                    13:0c:9d:8f:78:01:b7:5a:20:1f:03:37:35:e2:2c:
#                    db:4b:2b:2c:78:b9:49:db:c4:d0:c7:9c:9c:e4:8a:
#                    20:09:21:16:56:66:ff:05:ec:5b:e3:f0:cf:ab:24:
#                    24:5e:c3:7f:70:7a:12:c4:d2:b5:10:a0:b6:21:e1:
#                    8d:78:69:55:44:69:f5:ca:96:1c:34:85:17:25:77:
#                    e2:f6:2f:27:98:78:fd:79:06:3a:a2:d6:5a:43:c1:
#                    ff:ec:04:3b:ee:13:ef:d3:58:5a:ff:92:eb:ec:ae:
#                    da:f2:37:03:47:41:b6:97:c9:2d:0a:41:22:bb:bb:
#                    e6:a7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:C = DK, O = TDC Internet, OU = TDC Internet Root CA, CN = CRL1
#
#            X509v3 Private Key Usage Period: 
#                Not Before: Apr  5 16:33:17 2001 GMT, Not After: Apr  5 17:03:17 2021 GMT
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:6C:64:01:C7:FD:85:6D:AC:C8:DA:9E:50:08:85:08:B5:3C:56:A8:50
#
#            X509v3 Subject Key Identifier: 
#                6C:64:01:C7:FD:85:6D:AC:C8:DA:9E:50:08:85:08:B5:3C:56:A8:50
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            1.2.840.113533.7.65.0: 
#                0...V5.0:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         4e:43:cc:d1:dd:1d:10:1b:06:7f:b7:a4:fa:d3:d9:4d:fb:23:
#         9f:23:54:5b:e6:8b:2f:04:28:8b:b5:27:6d:89:a1:ec:98:69:
#         dc:e7:8d:26:83:05:79:74:ec:b4:b9:a3:97:c1:35:00:fd:15:
#         da:39:81:3a:95:31:90:de:97:e9:86:a8:99:77:0c:e5:5a:a0:
#         84:ff:12:16:ac:6e:b8:8d:c3:7b:92:c2:ac:2e:d0:7d:28:ec:
#         b6:f3:60:38:69:6f:3e:d8:04:55:3e:9e:cc:55:d2:ba:fe:bb:
#         47:04:d7:0a:d9:16:0a:34:29:f5:58:13:d5:4f:cf:8f:56:4b:
#         b3:1e:ee:d3:98:79:da:08:1e:0c:6f:b8:f8:16:27:ef:c2:6f:
#         3d:f6:a3:4b:3e:0e:e4:6d:6c:db:3b:41:12:9b:bd:0d:47:23:
#         7f:3c:4a:d0:af:c0:af:f6:ef:1b:b5:15:c4:eb:83:c4:09:5f:
#         74:8b:d9:11:fb:c2:56:b1:3c:f8:70:ca:34:8d:43:40:13:8c:
#         fd:99:03:54:79:c6:2e:ea:86:a1:f6:3a:d4:09:bc:f4:bc:66:
#         cc:3d:58:d0:57:49:0a:ee:25:e2:41:ee:13:f9:9b:38:34:d1:
#         00:f5:7e:e7:94:1d:fc:69:03:62:b8:99:05:05:3d:6b:78:12:
#         bd:b0:6f:65

[p11-kit-object-v1]
label: "TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr3UwM6q7a9OZLBI3hNmN
e5eA027n/5tQlT6QlVZC1xl8JoSNkvoBHToP4mQ4t4y86Ij5iySrLqP1N+RAjhgl
eYN1Hzv/bKjFxlb4tO2KRKOrbEz8HdDc72i9z+SqzvBV96I01INrN3wcwv61A+xX
zry0tcXtAA9TNypN9E8Mg/uGz8v+jE69h/mniyFXnHrfA2eJLJ2XYacQuFWQfw4t
Jzh03+f92k4S400VIgLI4OD8D62K18lUUMw7D8oWgITQUVbDjlZ/iSIzL+aFCr2l
qBs23tPcLG07xxO9WSMs5uWk99gL7eqQQESolbuT1dCANLZGeA4fAJNG4e7p+exP
FwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TR, L = Gebze - Kocaeli, O = Turkiye Bilimsel ve Teknolojik Arastirma Kurumu - TUBITAK, OU = Kamu Sertifikasyon Merkezi - Kamu SM, CN = TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1
#        Validity
#            Not Before: Nov 25 08:25:55 2013 GMT
#            Not After : Oct 25 08:25:55 2043 GMT
#        Subject: C = TR, L = Gebze - Kocaeli, O = Turkiye Bilimsel ve Teknolojik Arastirma Kurumu - TUBITAK, OU = Kamu Sertifikasyon Merkezi - Kamu SM, CN = TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:af:75:30:33:aa:bb:6b:d3:99:2c:12:37:84:d9:
#                    8d:7b:97:80:d3:6e:e7:ff:9b:50:95:3e:90:95:56:
#                    42:d7:19:7c:26:84:8d:92:fa:01:1d:3a:0f:e2:64:
#                    38:b7:8c:bc:e8:88:f9:8b:24:ab:2e:a3:f5:37:e4:
#                    40:8e:18:25:79:83:75:1f:3b:ff:6c:a8:c5:c6:56:
#                    f8:b4:ed:8a:44:a3:ab:6c:4c:fc:1d:d0:dc:ef:68:
#                    bd:cf:e4:aa:ce:f0:55:f7:a2:34:d4:83:6b:37:7c:
#                    1c:c2:fe:b5:03:ec:57:ce:bc:b4:b5:c5:ed:00:0f:
#                    53:37:2a:4d:f4:4f:0c:83:fb:86:cf:cb:fe:8c:4e:
#                    bd:87:f9:a7:8b:21:57:9c:7a:df:03:67:89:2c:9d:
#                    97:61:a7:10:b8:55:90:7f:0e:2d:27:38:74:df:e7:
#                    fd:da:4e:12:e3:4d:15:22:02:c8:e0:e0:fc:0f:ad:
#                    8a:d7:c9:54:50:cc:3b:0f:ca:16:80:84:d0:51:56:
#                    c3:8e:56:7f:89:22:33:2f:e6:85:0a:bd:a5:a8:1b:
#                    36:de:d3:dc:2c:6d:3b:c7:13:bd:59:23:2c:e6:e5:
#                    a4:f7:d8:0b:ed:ea:90:40:44:a8:95:bb:93:d5:d0:
#                    80:34:b6:46:78:0e:1f:00:93:46:e1:ee:e9:f9:ec:
#                    4f:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                65:3F:C7:8A:86:C6:3C:DD:3C:54:5C:35:F8:3A:ED:52:0C:47:57:C8
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         2a:3f:e1:f1:32:8e:ae:e1:98:5c:4b:5e:cf:6b:1e:6a:09:d2:
#         22:a9:12:c7:5e:57:7d:73:56:64:80:84:7a:93:e4:09:b9:10:
#         cd:9f:2a:27:e1:00:77:be:48:c8:35:a8:81:9f:e4:b8:2c:c9:
#         7f:0e:b0:d2:4b:37:5d:ea:b9:d5:0b:5e:34:bd:f4:73:29:c3:
#         ed:26:15:9c:7e:08:53:8a:58:8d:d0:4b:28:df:c1:b3:df:20:
#         f3:f9:e3:e3:3a:df:cc:9c:94:d8:4e:4f:c3:6b:17:b7:f7:72:
#         e8:ad:66:33:b5:25:53:ab:e0:f8:4c:a9:9d:fd:f2:0d:ba:ae:
#         b9:d9:aa:c6:6b:f9:93:bb:ae:ab:b8:97:3c:03:1a:ba:43:c6:
#         96:b9:45:72:38:b3:a7:a1:96:3d:91:7b:7e:c0:21:53:4c:87:
#         ed:f2:0b:54:95:51:93:d5:22:a5:0d:8a:f1:93:0e:3e:54:0e:
#         b0:d8:c9:4e:dc:f2:31:32:56:ea:64:f9:ea:b5:9d:16:66:42:
#         72:f3:7f:d3:b1:31:43:fc:a4:8e:17:f1:6d:23:ab:94:66:f8:
#         ad:fb:0f:08:6e:26:2d:7f:17:07:09:b2:8c:fb:50:c0:9f:96:
#         8d:cf:b6:fd:00:9d:5a:14:9a:bf:02:44:f5:c1:c2:9f:22:5e:
#         a2:0f:a1:e3

[p11-kit-object-v1]
label: "TWCA Global Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TWCA Global Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFQTCCAymgAwIBAgICDL4wDQYJKoZIhvcNAQELBQAwUTELMAkGA1UEBhMCVFcx
EjAQBgNVBAoTCVRBSVdBTi1DQTEQMA4GA1UECxMHUm9vdCBDQTEcMBoGA1UEAxMT
VFdDQSBHbG9iYWwgUm9vdCBDQTAeFw0xMjA2MjcwNjI4MzNaFw0zMDEyMzExNTU5
NTlaMFExCzAJBgNVBAYTAlRXMRIwEAYDVQQKEwlUQUlXQU4tQ0ExEDAOBgNVBAsT
B1Jvb3QgQ0ExHDAaBgNVBAMTE1RXQ0EgR2xvYmFsIFJvb3QgQ0EwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQCwBdvI64zEbooh745NnHEKH1Jw7W2CnJfF
10xORUnLQEK1EjRsGcJ0pDFfhQKX7EMzClPSnIyOt7h52yvVavKOZsTuKwEHktSz
0ALfUPZVr2YOy+BHYC8rMjk1Ujoog/h7FsYYuGLWRyWRzvAZEk2tY/XTP3VfKfCh
MBwqoJimFb3u/Rk28OKRQ4/6ytYQJ0lM793B8YVwm8rqqFpD/G2Gb3PpN0Wp8DbH
zIh1HrtsBv+baz4X7GGqcXzGHaL3SekVtTzWoWH1EfcFbx39Eb7QMAfCKbAJTibc
46KokWofwpFFiFzlmLhxpRUZyXx1EcxwdE8tmx2RRP1WKKD+u4ZqyPpcC1jcxkt2
yKsi2XMPpfRaAok/T54igu6idFMqPVMnaR1sjjIsZAAmY2E2TqNGtz99sy2sbZCi
laLOz9qC5wc0GZbpuCGqKX6mOL6OKUohZnkfs8O1CWfe1tQHRvMq2uYiN2DLgbYP
oA/pyJV/v1WRBXrPPRXAb94JlAGD1zQbzECl8LibZ9WYkTunhHiVJqRaCPgrdLQA
BDzfuBSO6N+pjWxnkjMdwLfS7JLIvgm/LCkFbwJrnu+8vyq8W8BQj0FwcYeyTbcE
qYSjMq+u7msXi7Kx/mzhkIyIqJdIzshNy/MGz19qCkKxHh53L46g5pIOBvwFItIm
4TFRfTLcDwIDAQABoyMwITAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB
/zANBgkqhkiG9w0BAQsFAAOCAgEAXzSBdu+WHdXltdkCY4QWwa6gcFGn90xHNcgL
1yg9iXHZqjNB6hQbbCEAwGxCGX6faVsgQt+i0trEfJdLjbDorMjupWkEmQqSpqsn
LhpNgb+E1HAerUf+/UqdM+DyucRFCCEK2mlpc3INvjT+lIutwx4116KD7+U4x6WF
H6vPNOw/KP4M8VeGTslV9xzU2KV9Bnpv1d8Q34FOIWWxtuEXeZVFBs5fzNxGiWNo
RI2T9GRwoD2dKAXDOXC4Ynsg/eTb6QihuJ49CcdP+yz4k3ZB3lLg4VfSnQO8d57+
nile98FRYB/e2guyLXW3Q0iT5/Z5xoRdgFlglPx4mI88k1HtQJAH32RjJMtOcQWh
15QaiDLxInQirqWm2BJpTGCjAu4r7NRjkgtevi92a6O2JryPA9gK8kxkRr05YuWW
6zRjESjMlfGt7+/cgFhI6Uu46mWs6fyAtbXIRfmswZ/ZuepiiI7E8UuDEq3mi4TW
nsLrgxifarsbJGAzcMzs9zLzXNl5fe+epP7JI8Mk7hWSsT2RTyaGvWZzJBPqpK5j
wa19hAM8EHiGG3njxPPyBJUgriOCxLM6AGK/5jYk4Ve6xx6QddVfP5VhK8E7zeWz
aGHQRiapIVJpLesux+t3zqY6tQMzT3bR51xUAV3LePTJDL/PEo4XLSNolOer/qmy
KwbQBM0=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3262 (0xcbe)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TW, O = TAIWAN-CA, OU = Root CA, CN = TWCA Global Root CA
#        Validity
#            Not Before: Jun 27 06:28:33 2012 GMT
#            Not After : Dec 31 15:59:59 2030 GMT
#        Subject: C = TW, O = TAIWAN-CA, OU = Root CA, CN = TWCA Global Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:05:db:c8:eb:8c:c4:6e:8a:21:ef:8e:4d:9c:
#                    71:0a:1f:52:70:ed:6d:82:9c:97:c5:d7:4c:4e:45:
#                    49:cb:40:42:b5:12:34:6c:19:c2:74:a4:31:5f:85:
#                    02:97:ec:43:33:0a:53:d2:9c:8c:8e:b7:b8:79:db:
#                    2b:d5:6a:f2:8e:66:c4:ee:2b:01:07:92:d4:b3:d0:
#                    02:df:50:f6:55:af:66:0e:cb:e0:47:60:2f:2b:32:
#                    39:35:52:3a:28:83:f8:7b:16:c6:18:b8:62:d6:47:
#                    25:91:ce:f0:19:12:4d:ad:63:f5:d3:3f:75:5f:29:
#                    f0:a1:30:1c:2a:a0:98:a6:15:bd:ee:fd:19:36:f0:
#                    e2:91:43:8f:fa:ca:d6:10:27:49:4c:ef:dd:c1:f1:
#                    85:70:9b:ca:ea:a8:5a:43:fc:6d:86:6f:73:e9:37:
#                    45:a9:f0:36:c7:cc:88:75:1e:bb:6c:06:ff:9b:6b:
#                    3e:17:ec:61:aa:71:7c:c6:1d:a2:f7:49:e9:15:b5:
#                    3c:d6:a1:61:f5:11:f7:05:6f:1d:fd:11:be:d0:30:
#                    07:c2:29:b0:09:4e:26:dc:e3:a2:a8:91:6a:1f:c2:
#                    91:45:88:5c:e5:98:b8:71:a5:15:19:c9:7c:75:11:
#                    cc:70:74:4f:2d:9b:1d:91:44:fd:56:28:a0:fe:bb:
#                    86:6a:c8:fa:5c:0b:58:dc:c6:4b:76:c8:ab:22:d9:
#                    73:0f:a5:f4:5a:02:89:3f:4f:9e:22:82:ee:a2:74:
#                    53:2a:3d:53:27:69:1d:6c:8e:32:2c:64:00:26:63:
#                    61:36:4e:a3:46:b7:3f:7d:b3:2d:ac:6d:90:a2:95:
#                    a2:ce:cf:da:82:e7:07:34:19:96:e9:b8:21:aa:29:
#                    7e:a6:38:be:8e:29:4a:21:66:79:1f:b3:c3:b5:09:
#                    67:de:d6:d4:07:46:f3:2a:da:e6:22:37:60:cb:81:
#                    b6:0f:a0:0f:e9:c8:95:7f:bf:55:91:05:7a:cf:3d:
#                    15:c0:6f:de:09:94:01:83:d7:34:1b:cc:40:a5:f0:
#                    b8:9b:67:d5:98:91:3b:a7:84:78:95:26:a4:5a:08:
#                    f8:2b:74:b4:00:04:3c:df:b8:14:8e:e8:df:a9:8d:
#                    6c:67:92:33:1d:c0:b7:d2:ec:92:c8:be:09:bf:2c:
#                    29:05:6f:02:6b:9e:ef:bc:bf:2a:bc:5b:c0:50:8f:
#                    41:70:71:87:b2:4d:b7:04:a9:84:a3:32:af:ae:ee:
#                    6b:17:8b:b2:b1:fe:6c:e1:90:8c:88:a8:97:48:ce:
#                    c8:4d:cb:f3:06:cf:5f:6a:0a:42:b1:1e:1e:77:2f:
#                    8e:a0:e6:92:0e:06:fc:05:22:d2:26:e1:31:51:7d:
#                    32:dc:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         5f:34:81:76:ef:96:1d:d5:e5:b5:d9:02:63:84:16:c1:ae:a0:
#         70:51:a7:f7:4c:47:35:c8:0b:d7:28:3d:89:71:d9:aa:33:41:
#         ea:14:1b:6c:21:00:c0:6c:42:19:7e:9f:69:5b:20:42:df:a2:
#         d2:da:c4:7c:97:4b:8d:b0:e8:ac:c8:ee:a5:69:04:99:0a:92:
#         a6:ab:27:2e:1a:4d:81:bf:84:d4:70:1e:ad:47:fe:fd:4a:9d:
#         33:e0:f2:b9:c4:45:08:21:0a:da:69:69:73:72:0d:be:34:fe:
#         94:8b:ad:c3:1e:35:d7:a2:83:ef:e5:38:c7:a5:85:1f:ab:cf:
#         34:ec:3f:28:fe:0c:f1:57:86:4e:c9:55:f7:1c:d4:d8:a5:7d:
#         06:7a:6f:d5:df:10:df:81:4e:21:65:b1:b6:e1:17:79:95:45:
#         06:ce:5f:cc:dc:46:89:63:68:44:8d:93:f4:64:70:a0:3d:9d:
#         28:05:c3:39:70:b8:62:7b:20:fd:e4:db:e9:08:a1:b8:9e:3d:
#         09:c7:4f:fb:2c:f8:93:76:41:de:52:e0:e1:57:d2:9d:03:bc:
#         77:9e:fe:9e:29:5e:f7:c1:51:60:1f:de:da:0b:b2:2d:75:b7:
#         43:48:93:e7:f6:79:c6:84:5d:80:59:60:94:fc:78:98:8f:3c:
#         93:51:ed:40:90:07:df:64:63:24:cb:4e:71:05:a1:d7:94:1a:
#         88:32:f1:22:74:22:ae:a5:a6:d8:12:69:4c:60:a3:02:ee:2b:
#         ec:d4:63:92:0b:5e:be:2f:76:6b:a3:b6:26:bc:8f:03:d8:0a:
#         f2:4c:64:46:bd:39:62:e5:96:eb:34:63:11:28:cc:95:f1:ad:
#         ef:ef:dc:80:58:48:e9:4b:b8:ea:65:ac:e9:fc:80:b5:b5:c8:
#         45:f9:ac:c1:9f:d9:b9:ea:62:88:8e:c4:f1:4b:83:12:ad:e6:
#         8b:84:d6:9e:c2:eb:83:18:9f:6a:bb:1b:24:60:33:70:cc:ec:
#         f7:32:f3:5c:d9:79:7d:ef:9e:a4:fe:c9:23:c3:24:ee:15:92:
#         b1:3d:91:4f:26:86:bd:66:73:24:13:ea:a4:ae:63:c1:ad:7d:
#         84:03:3c:10:78:86:1b:79:e3:c4:f3:f2:04:95:20:ae:23:82:
#         c4:b3:3a:00:62:bf:e6:36:24:e1:57:ba:c7:1e:90:75:d5:5f:
#         3f:95:61:2b:c1:3b:cd:e5:b3:68:61:d0:46:26:a9:21:52:69:
#         2d:eb:2e:c7:eb:77:ce:a6:3a:b5:03:33:4f:76:d1:e7:5c:54:
#         01:5d:cb:78:f4:c9:0c:bf:cf:12:8e:17:2d:23:68:94:e7:ab:
#         fe:a9:b2:2b:06:d0:04:cd

[p11-kit-object-v1]
label: "TWCA Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsH5yuKQDlOan3gk4kUoR
QIenfFlkFHu1ERDd/r/VwLtW4oUl9DVyD/hT0EHhRAHCtBzDMUIWR4UzInayCm8P
5SVQT4WGvr+YLhBnHr4RBYYFkMRZ0Hx4ELCAXLfhxyt1y3yfrrXRnSM3Y6fcQqIt
kgQbUMF7uD4byVYEiy9Sm62pVunB/62pWIcwtoH3l0X8GVc7K2/kR/SZRf4d8fiX
o4gdNxxcj+B2JZpQ+KBU/0SQdiPSMsbDqwa//Pu/8619kmICWynTNaOTmkNkYF2y
+jL/OwSvTUBq+cfj7yP9a8vlD4s4De4K/P4PmJ8wMd1sUmX5i4G+IuEcWAO6kRuJ
BwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TWCA Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = TW, O = TAIWAN-CA, OU = Root CA, CN = TWCA Root Certification Authority
#        Validity
#            Not Before: Aug 28 07:24:33 2008 GMT
#            Not After : Dec 31 15:59:59 2030 GMT
#        Subject: C = TW, O = TAIWAN-CA, OU = Root CA, CN = TWCA Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b0:7e:72:b8:a4:03:94:e6:a7:de:09:38:91:4a:
#                    11:40:87:a7:7c:59:64:14:7b:b5:11:10:dd:fe:bf:
#                    d5:c0:bb:56:e2:85:25:f4:35:72:0f:f8:53:d0:41:
#                    e1:44:01:c2:b4:1c:c3:31:42:16:47:85:33:22:76:
#                    b2:0a:6f:0f:e5:25:50:4f:85:86:be:bf:98:2e:10:
#                    67:1e:be:11:05:86:05:90:c4:59:d0:7c:78:10:b0:
#                    80:5c:b7:e1:c7:2b:75:cb:7c:9f:ae:b5:d1:9d:23:
#                    37:63:a7:dc:42:a2:2d:92:04:1b:50:c1:7b:b8:3e:
#                    1b:c9:56:04:8b:2f:52:9b:ad:a9:56:e9:c1:ff:ad:
#                    a9:58:87:30:b6:81:f7:97:45:fc:19:57:3b:2b:6f:
#                    e4:47:f4:99:45:fe:1d:f1:f8:97:a3:88:1d:37:1c:
#                    5c:8f:e0:76:25:9a:50:f8:a0:54:ff:44:90:76:23:
#                    d2:32:c6:c3:ab:06:bf:fc:fb:bf:f3:ad:7d:92:62:
#                    02:5b:29:d3:35:a3:93:9a:43:64:60:5d:b2:fa:32:
#                    ff:3b:04:af:4d:40:6a:f9:c7:e3:ef:23:fd:6b:cb:
#                    e5:0f:8b:38:0d:ee:0a:fc:fe:0f:98:9f:30:31:dd:
#                    6c:52:65:f9:8b:81:be:22:e1:1c:58:03:ba:91:1b:
#                    89:07
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:38:5B:26:8D:DE:8B:5A:F2:4F:7A:54:83:19:18:E3:08:35:A6:BA
#    Signature Algorithm: sha1WithRSAEncryption
#         3c:d5:77:3d:da:df:89:ba:87:0c:08:54:6a:20:50:92:be:b0:
#         41:3d:b9:26:64:83:0a:2f:e8:40:c0:97:28:27:82:30:4a:c9:
#         93:ff:6a:e7:a6:00:7f:89:42:9a:d6:11:e5:53:ce:2f:cc:f2:
#         da:05:c4:fe:e2:50:c4:3a:86:7d:cc:da:7e:10:09:3b:92:35:
#         2a:53:b2:fe:eb:2b:05:d9:6c:5d:e6:d0:ef:d3:6a:66:9e:15:
#         28:85:7a:e8:82:00:ac:1e:a7:09:69:56:42:d3:68:51:18:be:
#         54:9a:bf:44:41:ba:49:be:20:ba:69:5c:ee:b8:77:cd:ce:6c:
#         1f:ad:83:96:18:7d:0e:b5:14:39:84:f1:28:e9:2d:a3:9e:7b:
#         1e:7a:72:5a:83:b3:79:6f:ef:b4:fc:d0:0a:a5:58:4f:46:df:
#         fb:6d:79:59:f2:84:22:52:ae:0f:cc:fb:7c:3b:e7:6a:ca:47:
#         61:c3:7a:f8:d3:92:04:1f:b8:20:84:e1:36:54:16:c7:40:de:
#         3b:8a:73:dc:df:c6:09:4c:df:ec:da:ff:d4:53:42:a1:c9:f2:
#         62:1d:22:83:3c:97:c5:f9:19:62:27:ac:65:22:d7:d3:3c:c6:
#         e5:8e:b2:53:cc:49:ce:bc:30:fe:7b:0e:33:90:fb:ed:d2:14:
#         91:1f:07:af

[p11-kit-object-v1]
label: "TeliaSonera Root CA v1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TeliaSonera Root CA v1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            95:be:16:a0:f7:2e:46:f1:7b:39:82:72:fa:8b:cd:96
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O = TeliaSonera, CN = TeliaSonera Root CA v1
#        Validity
#            Not Before: Oct 18 12:00:50 2007 GMT
#            Not After : Oct 18 12:00:50 2032 GMT
#        Subject: O = TeliaSonera, CN = TeliaSonera Root CA v1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c2:be:eb:27:f0:21:a3:f3:69:26:55:7e:9d:c5:
#                    55:16:91:5c:fd:ef:21:bf:53:80:7a:2d:d2:91:8c:
#                    63:31:f0:ec:24:f0:c3:a5:d2:72:7c:10:6d:f4:37:
#                    b7:e5:e6:7c:79:ea:8c:b5:82:8b:ae:48:b6:ac:00:
#                    dc:65:75:ec:2a:4d:5f:c1:87:f5:20:65:2b:81:a8:
#                    47:3e:89:23:95:30:16:90:7f:e8:57:07:48:e7:19:
#                    ae:bf:45:67:b1:37:1b:06:2a:fe:de:f9:ac:7d:83:
#                    fb:5e:ba:e4:8f:97:67:be:4b:8e:8d:64:07:57:38:
#                    55:69:34:36:3d:13:48:ef:4f:e2:d3:66:1e:a4:cf:
#                    1a:b7:5e:36:33:d4:b4:06:bd:18:01:fd:77:84:50:
#                    00:45:f5:8c:5d:e8:23:bc:7e:fe:35:e1:ed:50:7b:
#                    a9:30:8d:19:d3:09:8e:68:67:5d:bf:3c:97:18:53:
#                    bb:29:62:c5:ca:5e:72:c1:c7:96:d4:db:2d:a0:b4:
#                    1f:69:03:ec:ea:e2:50:f1:0c:3c:f0:ac:f3:53:2d:
#                    f0:1c:f5:ed:6c:39:39:73:80:16:c8:52:b0:23:cd:
#                    e0:3e:dc:dd:3c:47:a0:bb:35:8a:e2:98:68:8b:be:
#                    e5:bf:72:ee:d2:fa:a5:ed:12:ed:fc:98:18:a9:26:
#                    76:dc:28:4b:10:20:1c:d3:7f:16:77:2d:ed:6f:80:
#                    f7:49:bb:53:05:bb:5d:68:c7:d4:c8:75:16:3f:89:
#                    5a:8b:f7:17:47:d4:4c:f1:d2:89:79:3e:4d:3d:98:
#                    a8:61:de:3a:1e:d2:f8:5e:03:e0:c1:c9:1c:8c:d3:
#                    8d:4d:d3:95:36:b3:37:5f:63:63:9b:33:14:f0:2d:
#                    26:6b:53:7c:89:8c:32:c2:6e:ec:3d:21:00:39:c9:
#                    a1:68:e2:50:83:2e:b0:3a:2b:f3:36:a0:ac:2f:e4:
#                    6f:61:c2:51:09:39:3e:8b:53:b9:bb:67:da:dc:53:
#                    b9:76:59:36:9d:43:e5:20:e0:3d:32:60:85:22:51:
#                    b7:c7:33:bb:dd:15:2f:a4:78:a6:07:7b:81:46:36:
#                    04:86:dd:79:35:c7:95:2c:3b:b0:a3:17:35:e5:73:
#                    1f:b4:5c:59:ef:da:ea:10:65:7b:7a:d0:7f:9f:b3:
#                    b4:2a:37:3b:70:8b:9b:5b:b9:2b:b7:ec:b2:51:12:
#                    97:53:29:5a:d4:f0:12:10:dc:4f:02:bb:12:92:2f:
#                    62:d4:3f:69:43:7c:0d:d6:fc:58:75:01:88:9d:58:
#                    16:4b:de:ba:90:ff:47:01:89:06:6a:f6:5f:b2:90:
#                    6a:b3:02:a6:02:88:bf:b3:47:7e:2a:d9:d5:fa:68:
#                    78:35:4d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F0:8F:59:38:00:B3:F5:8F:9A:96:0C:D5:EB:FA:7B:AA:17:E8:13:12
#    Signature Algorithm: sha1WithRSAEncryption
#         be:e4:5c:62:4e:24:f4:0c:08:ff:f0:d3:0c:68:e4:93:49:22:
#         3f:44:27:6f:bb:6d:de:83:66:ce:a8:cc:0d:fc:f5:9a:06:e5:
#         77:14:91:eb:9d:41:7b:99:2a:84:e5:ff:fc:21:c1:5d:f0:e4:
#         1f:57:b7:75:a9:a1:5f:02:26:ff:d7:c7:f7:4e:de:4f:f8:f7:
#         1c:46:c0:7a:4f:40:2c:22:35:f0:19:b1:d0:6b:67:2c:b0:a8:
#         e0:c0:40:37:35:f6:84:5c:5c:e3:af:42:78:fe:a7:c9:0d:50:
#         ea:0d:84:76:f6:51:ef:83:53:c6:7a:ff:0e:56:49:2e:8f:7a:
#         d6:0c:e6:27:54:e3:4d:0a:60:72:62:cd:91:07:d6:a5:bf:c8:
#         99:6b:ed:c4:19:e6:ab:4c:11:38:c5:6f:31:e2:6e:49:c8:3f:
#         76:80:26:03:26:29:e0:36:f6:f6:20:53:e3:17:70:34:17:9d:
#         63:68:1e:6b:ec:c3:4d:86:b8:13:30:2f:5d:46:0d:47:43:d5:
#         1b:aa:59:0e:b9:5c:8d:06:48:ad:74:87:5f:c7:fc:31:54:41:
#         13:e2:c7:21:0e:9e:e0:1e:0d:e1:c0:7b:43:85:90:c5:8a:58:
#         c6:65:0a:78:57:f2:c6:23:0f:01:d9:20:4b:de:0f:fb:92:85:
#         75:2a:5c:73:8d:6d:7b:25:91:ca:ee:45:ae:06:4b:00:cc:d3:
#         b1:59:50:da:3a:88:3b:29:43:46:5e:97:2b:54:ce:53:6f:8d:
#         4a:e7:96:fa:bf:71:0e:42:8b:7c:fd:28:a0:d0:48:ca:da:c4:
#         81:4c:bb:a2:73:93:26:c8:eb:0c:d6:26:88:b6:c0:24:cf:bb:
#         bd:5b:eb:75:7d:e9:08:8e:86:33:2c:79:77:09:69:a5:89:fc:
#         b3:70:90:87:76:8f:d3:22:bb:42:ce:bd:73:0b:20:26:2a:d0:
#         9b:3d:70:1e:24:6c:cd:87:76:a9:17:96:b7:cf:0d:92:fb:8e:
#         18:a9:98:49:d1:9e:fe:60:44:72:21:b9:19:ed:c2:f5:31:f1:
#         39:48:88:90:24:75:54:16:ad:ce:f4:f8:69:14:64:39:fb:a3:
#         b8:ba:70:40:c7:27:1c:bf:c4:56:53:fa:63:65:d0:f3:1c:0e:
#         16:f5:6b:86:58:4d:18:d4:e4:0d:8e:a5:9d:5b:91:dc:76:24:
#         50:3f:c6:2a:fb:d9:b7:9c:b5:d6:e6:d0:d9:e8:19:8b:15:71:
#         48:ad:b7:ea:d8:59:88:d4:90:bf:16:b3:d9:e9:ac:59:61:54:
#         c8:1c:ba:ca:c1:ca:e1:b9:20:4c:8f:3a:93:89:a5:a0:cc:bf:
#         d3:f6:75:a4:75:96:6d:56

[p11-kit-object-v1]
label: "Telia Root CA v2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Telia Root CA v2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:67:5f:27:d6:fe:7a:e3:e4:ac:be:09:5b:05:9e
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = FI, O = Telia Finland Oyj, CN = Telia Root CA v2
#        Validity
#            Not Before: Nov 29 11:55:54 2018 GMT
#            Not After : Nov 29 11:55:54 2043 GMT
#        Subject: C = FI, O = Telia Finland Oyj, CN = Telia Root CA v2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b2:d0:3f:07:bc:e2:7b:d0:6b:99:f8:e2:77:69:
#                    e7:ce:9d:a4:03:bc:82:6d:a1:fe:81:65:1f:4c:27:
#                    ac:8e:00:ba:16:7b:eb:30:6a:00:c0:b3:74:68:7e:
#                    b2:af:c7:d5:62:b3:7a:3f:50:ca:8c:36:44:24:63:
#                    d2:36:e9:0c:85:f6:43:76:d5:4c:a1:60:72:67:e2:
#                    28:33:a5:cb:31:b8:3a:22:23:34:b8:7d:bd:56:22:
#                    40:9d:ea:f4:7b:03:ad:68:fc:b2:81:4f:98:d0:74:
#                    ea:8d:e5:7d:cd:63:c3:a3:f6:de:92:c2:58:19:e0:
#                    96:bb:c5:c4:a9:3d:a5:74:96:fe:af:f9:89:aa:bd:
#                    95:17:54:d8:78:44:f1:0c:77:15:92:e0:98:42:a7:
#                    a4:d6:aa:20:92:cd:c1:a0:b3:96:b2:3a:84:42:8d:
#                    7d:d5:95:e4:d6:db:e9:62:c4:58:b3:79:c5:8c:d3:
#                    35:33:83:9f:75:a1:52:27:61:38:f1:59:3d:8e:50:
#                    e0:bd:79:3c:e7:6c:96:fe:5e:d9:02:65:b4:8e:5c:
#                    d0:11:34:df:5d:bf:52:a7:81:00:c3:7f:99:45:99:
#                    15:d5:17:c8:0a:53:ec:63:f3:99:7d:cc:69:12:86:
#                    c2:17:f0:01:9e:bf:84:bc:d1:52:cb:1b:92:66:ce:
#                    a4:53:e5:a1:bf:c4:db:09:d6:e6:89:56:2b:c8:e3:
#                    7c:de:e3:ff:89:e5:35:6e:28:e8:6c:0b:23:51:a9:
#                    25:05:eb:48:f8:dd:b1:ca:fa:6c:08:51:ef:b7:18:
#                    6c:44:ca:26:e1:73:c6:89:06:81:e5:8a:ac:b0:e2:
#                    29:c6:b9:24:b3:6b:44:11:f4:a5:43:c2:4c:43:e5:
#                    70:36:8c:b6:33:57:7a:95:2e:82:a0:f4:5c:10:b3:
#                    61:83:f6:02:05:86:2e:7c:2d:6c:dc:03:46:6e:35:
#                    93:d5:7a:95:2f:de:20:d8:5b:7e:94:90:04:6a:ba:
#                    59:3d:04:05:75:9d:37:a2:0e:2e:3d:eb:c1:a4:52:
#                    83:fe:d0:6b:d4:66:8e:dc:c6:e9:12:4e:1d:2a:57:
#                    aa:10:bc:7c:5e:82:7d:a6:a6:c9:f2:2d:b9:f5:17:
#                    27:ad:d1:0e:89:54:2b:95:fa:c0:ad:1d:98:14:78:
#                    33:42:86:0a:a9:73:b5:fb:74:0d:b7:1b:30:19:c4:
#                    5a:0e:1c:27:b7:da:18:d0:ff:8a:c8:05:ba:f1:aa:
#                    1c:a2:37:b7:e6:48:a4:46:2c:94:ea:a8:76:62:47:
#                    8b:10:53:07:48:57:6c:e2:92:4d:b6:ae:05:cb:dc:
#                    c1:4a:5e:8f:ac:3d:19:4e:c2:ed:60:75:2b:db:c1:
#                    ca:42:d5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:72:AC:E4:33:79:AA:45:87:F6:FD:AC:1D:9E:D6:C7:2F:86:D8:24:39
#
#            X509v3 Subject Key Identifier: 
#                72:AC:E4:33:79:AA:45:87:F6:FD:AC:1D:9E:D6:C7:2F:86:D8:24:39
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         a0:3b:59:a7:09:94:3e:36:84:d2:7e:2f:39:a5:96:97:fa:11:
#         ad:fc:67:f3:71:09:f2:b2:89:84:67:44:af:b9:ef:ed:96:ec:
#         9c:64:db:32:30:6f:67:9a:ac:7e:5f:b2:ab:01:36:7e:81:fa:
#         e4:84:5e:d2:ac:36:e0:6b:62:c5:7d:4b:0e:82:6d:d2:76:62:
#         d1:fe:97:f8:9f:30:7c:18:f9:b4:52:77:82:1d:76:db:d3:1d:
#         a9:f0:c1:9a:00:bd:6d:75:d8:7d:e7:fa:c7:38:a3:9c:70:e8:
#         46:79:03:af:2e:74:db:75:f8:6e:53:0c:03:c8:99:1a:89:35:
#         19:3c:d3:c9:54:7c:a8:f0:2c:e6:6e:07:79:6f:6a:e1:e6:ea:
#         91:82:69:0a:1d:c3:7e:59:a2:9e:6b:46:15:98:5b:d3:af:46:
#         1d:62:c8:ce:80:52:49:11:3f:c9:04:12:c3:13:7c:3f:3b:8a:
#         96:db:3c:a0:1e:0a:b4:8b:54:b2:24:67:0d:ef:82:cb:be:3c:
#         7d:d1:e2:7f:ae:16:d6:56:58:b9:da:20:b1:83:15:a1:ef:8a:
#         4d:32:6f:41:2f:13:52:82:94:d7:1a:c1:78:a2:51:dd:2b:70:
#         6d:b7:1a:f9:f7:b0:e0:67:97:56:db:7c:61:53:09:03:28:02:
#         40:c7:b3:d8:fd:9c:70:6a:c6:28:c3:85:e9:e2:ed:1a:93:a0:
#         de:4b:98:a2:84:3e:05:77:01:96:3d:fb:b4:20:0f:9c:72:02:
#         7a:12:2f:d5:a3:ba:51:78:af:2a:2b:44:65:4e:b5:fd:0a:e8:
#         c1:cd:79:87:61:2b:de:80:57:45:bf:67:f1:9b:91:5e:a5:a4:
#         ec:59:48:10:0d:38:c7:b0:fa:c3:44:6d:04:f5:78:50:1c:92:
#         96:5b:da:f5:b8:2e:ba:5b:cf:e5:f0:6a:9d:4b:2f:58:73:2d:
#         4f:2d:c4:1c:3e:f4:b3:3f:ab:15:0e:3b:19:41:8a:a4:c1:57:
#         12:66:71:4c:fa:53:e3:57:eb:62:95:09:9e:54:dd:d1:c2:3c:
#         57:3c:bd:38:ad:98:64:b7:b8:03:9a:53:56:60:5d:b3:d8:42:
#         1b:5c:4b:12:8a:1c:eb:eb:7d:c6:7a:69:c7:27:7f:a4:f8:8b:
#         f2:e4:94:66:87:4b:e9:94:07:09:12:79:8a:b2:eb:74:04:dc:
#         ce:f4:44:59:e0:16:ca:c5:2c:58:d7:3c:7b:cf:62:86:6a:50:
#         7d:35:36:66:a7:fb:37:e7:28:c7:d8:d0:ad:a5:69:94:8f:e8:
#         c1:df:24:f8:1b:07:31:87:81:d8:5d:f6:e8:28:d8:4a:52:80:
#         ac:13:ee:50:14:1e:98:c7

[p11-kit-object-v1]
label: "Thailand National Root Certification Authority - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Thailand National Root Certification Authority - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGgTCCBGmgAwIBAgIEUVLFjDANBgkqhkiG9w0BAQ0FADCBzzELMAkGA1UEBhMC
VEgxSTBHBgNVBAoMQEVsZWN0cm9uaWMgVHJhbnNhY3Rpb25zIERldmVsb3BtZW50
IEFnZW5jeSAoUHVibGljIE9yZ2FuaXphdGlvbikxNzA1BgNVBAsMLlRoYWlsYW5k
IE5hdGlvbmFsIFJvb3QgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkxPDA6BgNVBAMM
M1RoYWlsYW5kIE5hdGlvbmFsIFJvb3QgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkg
LSBHMTAeFw0xMzAzMjcwOTQwMjJaFw0zNjAzMjcxMDEwMjJaMIHPMQswCQYDVQQG
EwJUSDFJMEcGA1UECgxARWxlY3Ryb25pYyBUcmFuc2FjdGlvbnMgRGV2ZWxvcG1l
bnQgQWdlbmN5IChQdWJsaWMgT3JnYW5pemF0aW9uKTE3MDUGA1UECwwuVGhhaWxh
bmQgTmF0aW9uYWwgUm9vdCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTE8MDoGA1UE
AwwzVGhhaWxhbmQgTmF0aW9uYWwgUm9vdCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0
eSAtIEcxMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA1rpK5Izxmi6J
F8JA84IAMf4TAnplygjYqyKxAppxNEpkWYLlQkbrI/aLWiKxzzbnc20UbfdJlF7v
5zRZZ/aoz1ZZI4RV4vsaEcqj+YqrZx6CE9CLOZq/D8IPPNZh2OqbzxUOvtTwzD9z
nAT0onFzfYCwnTHxBvmwE+WISTD2Fn2IVyk6LKKMkJjOERbOTVEP/MeyzPJmGCGA
BYitudDFC3gB/k7SCIs28VbPbrpzJgvW96VGamlOlranBlbM5i4xn26L7ZwAVUf0
e6Z6tt8BHUgEC6tCwnBKlL38rFHyqz/W62DfCP/1ErKJKnq5RZklfXzvzxXQSCwQ
1tS8CCe1hinU49PEKpAS9qIq+YuvFv8C83puz6LLarTgcgv7PoV/4ofgL0Mj+IXJ
merWQN6g++fedv+PgDnrZxITpvvlo/wmgFlj8tIj6x/GSHNRnbezoFuraoj5v/tx
UdxutnbvsFvyy4gwugbbG0HTVbSttOogIfzUd7Y9W6EMLSUhUiNS1zRTbRYEUmb4
1erxLFjyO7HxfkO13IK4XuOH4aOkX+eJDryc6Sk6JafYT2qH1JZElxgWh8JxUoXO
eoytHme+ui2/oyEnxecw6QaZG7AM475SZZNNYUvyOOaPGPECUpgupg4dBc8m7AEj
Bzb24BM3qUeIA4dHy92yAR9fZBsEm8UCAwEAAaNjMGEwDwYDVR0TAQH/BAUwAwEB
/zAOBgNVHQ8BAf8EBAMCAQYwHwYDVR0jBBgwFoAUfyN2t4Mqcfcs0YgP3UxfMgpo
u38wHQYDVR0OBBYEFH8jdreDKnH3LNGID91MXzIKaLt/MA0GCSqGSIb3DQEBDQUA
A4ICAQANZRxaB6merEzJX0/dMWzZ4lMdP5GNWrOMvTSeLk3KWNOvWWJJNnOwYXYR
vos2x5Sq+DZpByDfXC8L9o4CFu9SBjjd7TRgqodeF844bVBN5d/lUb4dBJb03Orl
2eqO3p90y4KUU4Fs+14s1aF1lk37MFzNYaCeocyCuVJyC4djYXthNHS2Lt3i4Ye1
SRRhFUdKSz53uQjSNk9YZ0KJgHhaEiPtRTvdvyAmVPxbP2ABGEHjZ3UTtyoVcMzL
edIU+PPC4CoQ9/lC2NzaCtMBBdtXmMm26wyZCsqMfe87FijA91/hR1HT+AZFB/AL
usKcmOzSf01+/Qb8c8LCVRJi0CNE3yLk+HnnpRBOPsmOqoPpNuqrecYFhM2WaHx0
rD8y/67JQOyPUL9QqLdO1a02atcnM/rn2C3ZN5iFG6YM6nsQE3AenojF3D6OuQ1V
3wHO0El2UdsQYnhBrWljpZUJtxgGb/0EZ9QQD07bO18MY3zrZL1uSwCogfqSMoYw
jAm/fVg/ZQ2pN9FF42ZpxGj0YqmoHjfZLplJoLAGjEB/hbH18UxLOKAIzCrZlsDs
wA08LkVXw++V2rbL7ltlqCsyr8kn+RVTN3VYH0vql6IiXGdW4qDMNcSswzFAuZwD
er3JSA7qahXanLx4b8kV52QD2UkTZkVLLfSEmbPqpxKV5ZMu/A==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1364379020 (0x5152c58c)
#        Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C = TH, O = Electronic Transactions Development Agency (Public Organization), OU = Thailand National Root Certification Authority, CN = Thailand National Root Certification Authority - G1
#        Validity
#            Not Before: Mar 27 09:40:22 2013 GMT
#            Not After : Mar 27 10:10:22 2036 GMT
#        Subject: C = TH, O = Electronic Transactions Development Agency (Public Organization), OU = Thailand National Root Certification Authority, CN = Thailand National Root Certification Authority - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:d6:ba:4a:e4:8c:f1:9a:2e:89:17:c2:40:f3:82:
#                    00:31:fe:13:02:7a:65:ca:08:d8:ab:22:b1:02:9a:
#                    71:34:4a:64:59:82:e5:42:46:eb:23:f6:8b:5a:22:
#                    b1:cf:36:e7:73:6d:14:6d:f7:49:94:5e:ef:e7:34:
#                    59:67:f6:a8:cf:56:59:23:84:55:e2:fb:1a:11:ca:
#                    a3:f9:8a:ab:67:1e:82:13:d0:8b:39:9a:bf:0f:c2:
#                    0f:3c:d6:61:d8:ea:9b:cf:15:0e:be:d4:f0:cc:3f:
#                    73:9c:04:f4:a2:71:73:7d:80:b0:9d:31:f1:06:f9:
#                    b0:13:e5:88:49:30:f6:16:7d:88:57:29:3a:2c:a2:
#                    8c:90:98:ce:11:16:ce:4d:51:0f:fc:c7:b2:cc:f2:
#                    66:18:21:80:05:88:ad:b9:d0:c5:0b:78:01:fe:4e:
#                    d2:08:8b:36:f1:56:cf:6e:ba:73:26:0b:d6:f7:a5:
#                    46:6a:69:4e:96:b6:a7:06:56:cc:e6:2e:31:9f:6e:
#                    8b:ed:9c:00:55:47:f4:7b:a6:7a:b6:df:01:1d:48:
#                    04:0b:ab:42:c2:70:4a:94:bd:fc:ac:51:f2:ab:3f:
#                    d6:eb:60:df:08:ff:f5:12:b2:89:2a:7a:b9:45:99:
#                    25:7d:7c:ef:cf:15:d0:48:2c:10:d6:d4:bc:08:27:
#                    b5:86:29:d4:e3:d3:c4:2a:90:12:f6:a2:2a:f9:8b:
#                    af:16:ff:02:f3:7a:6e:cf:a2:cb:6a:b4:e0:72:0b:
#                    fb:3e:85:7f:e2:87:e0:2f:43:23:f8:85:c9:99:ea:
#                    d6:40:de:a0:fb:e7:de:76:ff:8f:80:39:eb:67:12:
#                    13:a6:fb:e5:a3:fc:26:80:59:63:f2:d2:23:eb:1f:
#                    c6:48:73:51:9d:b7:b3:a0:5b:ab:6a:88:f9:bf:fb:
#                    71:51:dc:6e:b6:76:ef:b0:5b:f2:cb:88:30:ba:06:
#                    db:1b:41:d3:55:b4:ad:b4:ea:20:21:fc:d4:77:b6:
#                    3d:5b:a1:0c:2d:25:21:52:23:52:d7:34:53:6d:16:
#                    04:52:66:f8:d5:ea:f1:2c:58:f2:3b:b1:f1:7e:43:
#                    b5:dc:82:b8:5e:e3:87:e1:a3:a4:5f:e7:89:0e:bc:
#                    9c:e9:29:3a:25:a7:d8:4f:6a:87:d4:96:44:97:18:
#                    16:87:c2:71:52:85:ce:7a:8c:ad:1e:67:be:ba:2d:
#                    bf:a3:21:27:c5:e7:30:e9:06:99:1b:b0:0c:e3:be:
#                    52:65:93:4d:61:4b:f2:38:e6:8f:18:f1:02:52:98:
#                    2e:a6:0e:1d:05:cf:26:ec:01:23:07:36:f6:e0:13:
#                    37:a9:47:88:03:87:47:cb:dd:b2:01:1f:5f:64:1b:
#                    04:9b:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:7F:23:76:B7:83:2A:71:F7:2C:D1:88:0F:DD:4C:5F:32:0A:68:BB:7F
#
#            X509v3 Subject Key Identifier: 
#                7F:23:76:B7:83:2A:71:F7:2C:D1:88:0F:DD:4C:5F:32:0A:68:BB:7F
#    Signature Algorithm: sha512WithRSAEncryption
#         0d:65:1c:5a:07:a9:9e:ac:4c:c9:5f:4f:dd:31:6c:d9:e2:53:
#         1d:3f:91:8d:5a:b3:8c:bd:34:9e:2e:4d:ca:58:d3:af:59:62:
#         49:36:73:b0:61:76:11:be:8b:36:c7:94:aa:f8:36:69:07:20:
#         df:5c:2f:0b:f6:8e:02:16:ef:52:06:38:dd:ed:34:60:aa:87:
#         5e:17:ce:38:6d:50:4d:e5:df:e5:51:be:1d:04:96:f4:dc:ea:
#         e5:d9:ea:8e:de:9f:74:cb:82:94:53:81:6c:fb:5e:2c:d5:a1:
#         75:96:4d:fb:30:5c:cd:61:a0:9e:a1:cc:82:b9:52:72:0b:87:
#         63:61:7b:61:34:74:b6:2e:dd:e2:e1:87:b5:49:14:61:15:47:
#         4a:4b:3e:77:b9:08:d2:36:4f:58:67:42:89:80:78:5a:12:23:
#         ed:45:3b:dd:bf:20:26:54:fc:5b:3f:60:01:18:41:e3:67:75:
#         13:b7:2a:15:70:cc:cb:79:d2:14:f8:f3:c2:e0:2a:10:f7:f9:
#         42:d8:dc:da:0a:d3:01:05:db:57:98:c9:b6:eb:0c:99:0a:ca:
#         8c:7d:ef:3b:16:28:c0:f7:5f:e1:47:51:d3:f8:06:45:07:f0:
#         0b:ba:c2:9c:98:ec:d2:7f:4d:7e:fd:06:fc:73:c2:c2:55:12:
#         62:d0:23:44:df:22:e4:f8:79:e7:a5:10:4e:3e:c9:8e:aa:83:
#         e9:36:ea:ab:79:c6:05:84:cd:96:68:7c:74:ac:3f:32:ff:ae:
#         c9:40:ec:8f:50:bf:50:a8:b7:4e:d5:ad:36:6a:d7:27:33:fa:
#         e7:d8:2d:d9:37:98:85:1b:a6:0c:ea:7b:10:13:70:1e:9e:88:
#         c5:dc:3e:8e:b9:0d:55:df:01:ce:d0:49:76:51:db:10:62:78:
#         41:ad:69:63:a5:95:09:b7:18:06:6f:fd:04:67:d4:10:0f:4e:
#         db:3b:5f:0c:63:7c:eb:64:bd:6e:4b:00:a8:81:fa:92:32:86:
#         30:8c:09:bf:7d:58:3f:65:0d:a9:37:d1:45:e3:66:69:c4:68:
#         f4:62:a9:a8:1e:37:d9:2e:99:49:a0:b0:06:8c:40:7f:85:b1:
#         f5:f1:4c:4b:38:a0:08:cc:2a:d9:96:c0:ec:c0:0d:3c:2e:45:
#         57:c3:ef:95:da:b6:cb:ee:5b:65:a8:2b:32:af:c9:27:f9:15:
#         53:37:75:58:1f:4b:ea:97:a2:22:5c:67:56:e2:a0:cc:35:c4:
#         ac:c3:31:40:b9:9c:03:7a:bd:c9:48:0e:ea:6a:15:da:9c:bc:
#         78:6f:c9:15:e7:64:03:d9:49:13:66:45:4b:2d:f4:84:99:b3:
#         ea:a7:12:95:e5:93:2e:fc

[p11-kit-object-v1]
label: "Thawte Premium Server CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDSNjZqi9fCW57agUFijzjuSQRV
1tDvHBuVFkfvGEg1OlL0K2oGjzsv6lbjr4aNnhf3nrRldQJN78sJoiFR2JvQZ9C6
DZIGFHPUk8uXKgCcXE4MvPoVUvzyRG7aEUpuCJ8vLeP5qjqGc7ZGU1jIiQW9gxG4
cz+qB430Qk3nQJ0cNwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Thawte Premium Server CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            36:12:22:96:c5:e3:38:a5:20:a1:d2:5f:4c:d7:09:54
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ZA, ST = Western Cape, L = Cape Town, O = Thawte Consulting cc, OU = Certification Services Division, CN = Thawte Premium Server CA, emailAddress = premium-server@thawte.com
#        Validity
#            Not Before: Aug  1 00:00:00 1996 GMT
#            Not After : Jan  1 23:59:59 2021 GMT
#        Subject: C = ZA, ST = Western Cape, L = Cape Town, O = Thawte Consulting cc, OU = Certification Services Division, CN = Thawte Premium Server CA, emailAddress = premium-server@thawte.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (1024 bit)
#                Modulus:
#                    00:d2:36:36:6a:8b:d7:c2:5b:9e:da:81:41:62:8f:
#                    38:ee:49:04:55:d6:d0:ef:1c:1b:95:16:47:ef:18:
#                    48:35:3a:52:f4:2b:6a:06:8f:3b:2f:ea:56:e3:af:
#                    86:8d:9e:17:f7:9e:b4:65:75:02:4d:ef:cb:09:a2:
#                    21:51:d8:9b:d0:67:d0:ba:0d:92:06:14:73:d4:93:
#                    cb:97:2a:00:9c:5c:4e:0c:bc:fa:15:52:fc:f2:44:
#                    6e:da:11:4a:6e:08:9f:2f:2d:e3:f9:aa:3a:86:73:
#                    b6:46:53:58:c8:89:05:bd:83:11:b8:73:3f:aa:07:
#                    8d:f4:42:4d:e7:40:9d:1c:37
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         65:90:ac:88:0f:56:d9:e6:30:34:d4:26:c7:d0:50:f1:92:de:
#         6b:d4:39:88:09:22:c6:a6:63:83:03:f7:99:77:d8:b2:e5:18:
#         b8:5d:63:f3:d4:73:fb:6c:9c:99:78:f1:4b:78:7d:19:24:c3:
#         2b:02:84:f8:bc:22:d9:8a:22:d7:a0:fc:71:ec:91:87:20:f1:
#         b8:ec:b1:e5:55:80:ac:3d:52:c8:39:0e:c2:f0:c0:05:4f:d6:
#         82:75:8c:bd:5f:d2:dc:76:9a:05:12:c9:af:72:c3:dc:25:7e:
#         a4:4d:8e:17:a5:e0:87:7f:e1:9a:5a:e1:60:dc:64:23:3c:42:
#         2e:4d

[p11-kit-object-v1]
label: "Thawte Server CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDTpFBuyP9Wa+bPXbbqDGh1R6Kq
wtqEJfyo9EdR2oW1IHSUhh4PdcnpCGH1Bm0wbhUZAulSwGLbTZme4moMRDjN/r7j
ZAlwxf6xaym2L0nIO9QnBCUQly/nkG3AKEKZ10xD3sP1IW1Un13DWOHA5NlbsLjc
tHvfNjrCtWYiEtaHDQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Thawte Server CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDIjCCAougAwIBAgIQNKT/9jCvTKU8MxdCoZRmdTANBgkqhkiG9w0BAQUFADCB
xDELMAkGA1UEBhMCWkExFTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTESMBAGA1UEBxMJ
Q2FwZSBUb3duMR0wGwYDVQQKExRUaGF3dGUgQ29uc3VsdGluZyBjYzEoMCYGA1UE
CxMfQ2VydGlmaWNhdGlvbiBTZXJ2aWNlcyBEaXZpc2lvbjEZMBcGA1UEAxMQVGhh
d3RlIFNlcnZlciBDQTEmMCQGCSqGSIb3DQEJARYXc2VydmVyLWNlcnRzQHRoYXd0
ZS5jb20wHhcNOTYwODAxMDAwMDAwWhcNMjEwMTAxMjM1OTU5WjCBxDELMAkGA1UE
BhMCWkExFTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTESMBAGA1UEBxMJQ2FwZSBUb3du
MR0wGwYDVQQKExRUaGF3dGUgQ29uc3VsdGluZyBjYzEoMCYGA1UECxMfQ2VydGlm
aWNhdGlvbiBTZXJ2aWNlcyBEaXZpc2lvbjEZMBcGA1UEAxMQVGhhd3RlIFNlcnZl
ciBDQTEmMCQGCSqGSIb3DQEJARYXc2VydmVyLWNlcnRzQHRoYXd0ZS5jb20wgZ8w
DQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBANOkUG7I/1Zr5s9dtuoMaHVHoqrC2oQl
/Kj0R1HahbUgdJSGHg91yekIYfUGbTBuFRkC6VLAYttNmZ7iagxEOM3+vuNkCXDF
/rFrKbYvScg71CcEJRCXL+eQbcAoQpnXTEPew/UhbVSfXcNY4cDk2VuwuNy0e982
OsK1ZiIS1ocNAgMBAAGjEzARMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQEF
BQADgYEAvkBpQW/G28GnvwfAReTQtUMeTJUzNelewj4o9qgNUNX/4gwP/FACjq6R
ua00io2fJ3GqGcxL6ATK1BdrEhrWxl/WzV7/iXa/2EjYWb0IiokdV81FHlK6EpqE
+hiJX+j5MDVqAWC5mYCDhQpu2vTJj15zLTFKY6B08h+LItIpPus=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            34:a4:ff:f6:30:af:4c:a5:3c:33:17:42:a1:94:66:75
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ZA, ST = Western Cape, L = Cape Town, O = Thawte Consulting cc, OU = Certification Services Division, CN = Thawte Server CA, emailAddress = server-certs@thawte.com
#        Validity
#            Not Before: Aug  1 00:00:00 1996 GMT
#            Not After : Jan  1 23:59:59 2021 GMT
#        Subject: C = ZA, ST = Western Cape, L = Cape Town, O = Thawte Consulting cc, OU = Certification Services Division, CN = Thawte Server CA, emailAddress = server-certs@thawte.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (1024 bit)
#                Modulus:
#                    00:d3:a4:50:6e:c8:ff:56:6b:e6:cf:5d:b6:ea:0c:
#                    68:75:47:a2:aa:c2:da:84:25:fc:a8:f4:47:51:da:
#                    85:b5:20:74:94:86:1e:0f:75:c9:e9:08:61:f5:06:
#                    6d:30:6e:15:19:02:e9:52:c0:62:db:4d:99:9e:e2:
#                    6a:0c:44:38:cd:fe:be:e3:64:09:70:c5:fe:b1:6b:
#                    29:b6:2f:49:c8:3b:d4:27:04:25:10:97:2f:e7:90:
#                    6d:c0:28:42:99:d7:4c:43:de:c3:f5:21:6d:54:9f:
#                    5d:c3:58:e1:c0:e4:d9:5b:b0:b8:dc:b4:7b:df:36:
#                    3a:c2:b5:66:22:12:d6:87:0d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         be:40:69:41:6f:c6:db:c1:a7:bf:07:c0:45:e4:d0:b5:43:1e:
#         4c:95:33:35:e9:5e:c2:3e:28:f6:a8:0d:50:d5:ff:e2:0c:0f:
#         fc:50:02:8e:ae:91:b9:ad:34:8a:8d:9f:27:71:aa:19:cc:4b:
#         e8:04:ca:d4:17:6b:12:1a:d6:c6:5f:d6:cd:5e:ff:89:76:bf:
#         d8:48:d8:59:bd:08:8a:89:1d:57:cd:45:1e:52:ba:12:9a:84:
#         fa:18:89:5f:e8:f9:30:35:6a:01:60:b9:99:80:83:85:0a:6e:
#         da:f4:c9:8f:5e:73:2d:31:4a:63:a0:74:f2:1f:8b:22:d2:29:
#         3e:eb

[p11-kit-object-v1]
label: "TrustCor ECA-1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz4/gEbWfqHZ2298PVO9z
YymCrUfGo2vt/l8z+ENR6RozkTEXoHTE1KcB5rKSPmqd7Q75dJhA0z8DgAaCQOix
4qdRpx2DJmur3voXkSvYxqwesZ4ZAdWXpuoNt8RVHyd80gjVdh8pFYdAOd04RRF1
0JqnNOC/zchSHblHfg24u8YM9nNXFlp+Q5EfVTrGbUQEqpypnKdMiReDrqMEXlKA
ix4SJREZ1wx9fTFEQerbr7Ac74HQLMWaIZs97UI7UCby7M5xYQZiIVROf8GdPn8g
jIDLKtiXYsiDM5F9sKJaD1foO8zyJbLUfC/sTcahOhV657ZdNfX2SEo2RWbUuphY
wQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TrustCor ECA-1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            84:82:2c:5f:1c:62:d0:40
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = PA, ST = Panama, L = Panama City, O = TrustCor Systems S. de R.L., OU = TrustCor Certificate Authority, CN = TrustCor ECA-1
#        Validity
#            Not Before: Feb  4 12:32:33 2016 GMT
#            Not After : Dec 31 17:28:07 2029 GMT
#        Subject: C = PA, ST = Panama, L = Panama City, O = TrustCor Systems S. de R.L., OU = TrustCor Certificate Authority, CN = TrustCor ECA-1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cf:8f:e0:11:b5:9f:a8:76:76:db:df:0f:54:ef:
#                    73:63:29:82:ad:47:c6:a3:6b:ed:fe:5f:33:f8:43:
#                    51:e9:1a:33:91:31:17:a0:74:c4:d4:a7:01:e6:b2:
#                    92:3e:6a:9d:ed:0e:f9:74:98:40:d3:3f:03:80:06:
#                    82:40:e8:b1:e2:a7:51:a7:1d:83:26:6b:ab:de:fa:
#                    17:91:2b:d8:c6:ac:1e:b1:9e:19:01:d5:97:a6:ea:
#                    0d:b7:c4:55:1f:27:7c:d2:08:d5:76:1f:29:15:87:
#                    40:39:dd:38:45:11:75:d0:9a:a7:34:e0:bf:cd:c8:
#                    52:1d:b9:47:7e:0d:b8:bb:c6:0c:f6:73:57:16:5a:
#                    7e:43:91:1f:55:3a:c6:6d:44:04:aa:9c:a9:9c:a7:
#                    4c:89:17:83:ae:a3:04:5e:52:80:8b:1e:12:25:11:
#                    19:d7:0c:7d:7d:31:44:41:ea:db:af:b0:1c:ef:81:
#                    d0:2c:c5:9a:21:9b:3d:ed:42:3b:50:26:f2:ec:ce:
#                    71:61:06:62:21:54:4e:7f:c1:9d:3e:7f:20:8c:80:
#                    cb:2a:d8:97:62:c8:83:33:91:7d:b0:a2:5a:0f:57:
#                    e8:3b:cc:f2:25:b2:d4:7c:2f:ec:4d:c6:a1:3a:15:
#                    7a:e7:b6:5d:35:f5:f6:48:4a:36:45:66:d4:ba:98:
#                    58:c1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                44:9E:48:F5:CC:6D:48:D4:A0:4B:7F:FE:59:24:2F:83:97:99:9A:86
#            X509v3 Authority Key Identifier: 
#                keyid:44:9E:48:F5:CC:6D:48:D4:A0:4B:7F:FE:59:24:2F:83:97:99:9A:86
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         05:3e:35:5c:15:70:9b:c9:c7:73:61:6f:72:2b:d4:c2:8f:f2:
#         43:5d:02:ce:c4:94:b9:94:11:83:67:5d:e2:67:6c:75:76:bf:
#         bb:0c:aa:36:c6:ad:47:93:63:dc:1e:7e:d6:de:2e:fe:e9:19:
#         32:38:03:7f:14:f6:00:73:2c:59:b1:21:06:e1:fb:ac:18:95:
#         0c:a3:ff:99:96:f7:2b:27:9b:d5:24:cc:1d:dd:c1:3a:e0:98:
#         44:b0:c4:e4:3e:77:b1:73:a9:64:2c:f6:1c:01:7c:3f:5d:45:
#         85:c0:85:e7:25:8f:95:dc:17:f3:3c:9f:1a:6e:b0:ca:e3:1d:
#         2a:e9:4c:63:fa:24:61:62:d6:da:7e:b6:1c:6c:f5:02:1d:d4:
#         2a:dd:55:90:eb:2a:11:47:3c:2e:5e:74:b2:82:22:a5:7d:53:
#         1f:45:ec:27:91:7d:e7:22:16:e8:c0:68:36:d8:c6:f1:4f:80:
#         44:32:f9:e1:d1:d1:1d:aa:de:a8:ab:9c:04:af:ad:20:0e:64:
#         98:4d:a5:6b:c0:48:58:96:69:4d:dc:07:8c:51:93:a2:df:9f:
#         0f:3d:8b:60:b4:82:8d:aa:08:4e:62:45:e0:f9:0b:d2:e0:e0:
#         3c:5b:de:5c:71:27:25:c2:e6:03:81:8b:10:53:e3:c7:55:a2:
#         b4:9f:d7:e6

[p11-kit-object-v1]
label: "TrustCor RootCert CA-1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv463leLCJhJrMxnHQFgK
q1mqjQCj/IDHUHuO1CAmujIS2CNUSSUQIpidRtLByZ5OGy4sDjjzGiVoHKZaBeYe
i0i/mJZ0PmnK6bV4pQa81QBeCQryJ3pS/C3Vseq0iWEk8xoT26nPUu0MJLq5nux+
AHT6k61sKZKuUbS701e/s/OojZz0JEsq1pme9J7+wH5COucLlVPat2gOkEz7cD+P
SiyU8ybdY2mplNgQTsVHCJCZGxdNuWxu72CVEY4hgLW9oHPY0LJ3xEXqWib7ZnZ2
+AYfYW0PVcWDtxBWcgYHpfOxGgMFZA6dWorWhnAbJN7+KIor0Gqw/Hqi3LJ5Dotl
DwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TrustCor RootCert CA-1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            da:9b:ec:71:f3:03:b0:19
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = PA, ST = Panama, L = Panama City, O = TrustCor Systems S. de R.L., OU = TrustCor Certificate Authority, CN = TrustCor RootCert CA-1
#        Validity
#            Not Before: Feb  4 12:32:16 2016 GMT
#            Not After : Dec 31 17:23:16 2029 GMT
#        Subject: C = PA, ST = Panama, L = Panama City, O = TrustCor Systems S. de R.L., OU = TrustCor Certificate Authority, CN = TrustCor RootCert CA-1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:8e:b7:95:e2:c2:26:12:6b:33:19:c7:40:58:
#                    0a:ab:59:aa:8d:00:a3:fc:80:c7:50:7b:8e:d4:20:
#                    26:ba:32:12:d8:23:54:49:25:10:22:98:9d:46:d2:
#                    c1:c9:9e:4e:1b:2e:2c:0e:38:f3:1a:25:68:1c:a6:
#                    5a:05:e6:1e:8b:48:bf:98:96:74:3e:69:ca:e9:b5:
#                    78:a5:06:bc:d5:00:5e:09:0a:f2:27:7a:52:fc:2d:
#                    d5:b1:ea:b4:89:61:24:f3:1a:13:db:a9:cf:52:ed:
#                    0c:24:ba:b9:9e:ec:7e:00:74:fa:93:ad:6c:29:92:
#                    ae:51:b4:bb:d3:57:bf:b3:f3:a8:8d:9c:f4:24:4b:
#                    2a:d6:99:9e:f4:9e:fe:c0:7e:42:3a:e7:0b:95:53:
#                    da:b7:68:0e:90:4c:fb:70:3f:8f:4a:2c:94:f3:26:
#                    dd:63:69:a9:94:d8:10:4e:c5:47:08:90:99:1b:17:
#                    4d:b9:6c:6e:ef:60:95:11:8e:21:80:b5:bd:a0:73:
#                    d8:d0:b2:77:c4:45:ea:5a:26:fb:66:76:76:f8:06:
#                    1f:61:6d:0f:55:c5:83:b7:10:56:72:06:07:a5:f3:
#                    b1:1a:03:05:64:0e:9d:5a:8a:d6:86:70:1b:24:de:
#                    fe:28:8a:2b:d0:6a:b0:fc:7a:a2:dc:b2:79:0e:8b:
#                    65:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                EE:6B:49:3C:7A:3F:0D:E3:B1:09:B7:8A:C8:AB:19:9F:73:33:50:E7
#            X509v3 Authority Key Identifier: 
#                keyid:EE:6B:49:3C:7A:3F:0D:E3:B1:09:B7:8A:C8:AB:19:9F:73:33:50:E7
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         25:18:d4:91:8f:13:ee:8f:1e:1d:11:53:da:2d:44:29:19:a0:
#         1e:6b:31:9e:4d:0e:9e:ad:3d:5c:41:6f:95:2b:24:a1:79:98:
#         3a:38:36:fb:bb:66:9e:48:ff:90:90:ef:3d:d4:b8:9b:b4:87:
#         75:3f:20:9b:ce:72:cf:a1:55:c1:4d:64:a2:19:06:a1:07:33:
#         0c:0b:29:e5:f1:ea:ab:a3:ec:b5:0a:74:90:c7:7d:72:f2:d7:
#         5c:9f:91:ef:91:8b:b7:dc:ed:66:a2:cf:8e:66:3b:bc:9f:3a:
#         02:e0:27:dd:16:98:c0:95:d4:0a:a4:e4:81:9a:75:94:35:9c:
#         90:5f:88:37:06:ad:59:95:0a:b0:d1:67:d3:19:ca:89:e7:32:
#         5a:36:1c:3e:82:a8:5a:93:be:c6:d0:64:91:b6:cf:d9:b6:18:
#         cf:db:7e:d2:65:a3:a6:c4:8e:17:31:c1:fb:7e:76:db:d3:85:
#         e3:58:b2:77:7a:76:3b:6c:2f:50:1c:e7:db:f6:67:79:1f:f5:
#         82:95:9a:07:a7:14:af:8f:dc:28:21:67:09:d2:d6:4d:5a:1c:
#         19:1c:8e:77:5c:c3:94:24:3d:32:6b:4b:7e:d4:78:94:83:be:
#         37:4d:ce:5f:c7:1e:4e:3c:e0:89:33:95:0b:0f:a5:32:d6:3c:
#         5a:79:2c:19

[p11-kit-object-v1]
label: "TrustCor RootCert CA-2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TrustCor RootCert CA-2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2711694510199101698 (0x25a1dfca33cb5902)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = PA, ST = Panama, L = Panama City, O = TrustCor Systems S. de R.L., OU = TrustCor Certificate Authority, CN = TrustCor RootCert CA-2
#        Validity
#            Not Before: Feb  4 12:32:23 2016 GMT
#            Not After : Dec 31 17:26:39 2034 GMT
#        Subject: C = PA, ST = Panama, L = Panama City, O = TrustCor Systems S. de R.L., OU = TrustCor Certificate Authority, CN = TrustCor RootCert CA-2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a7:20:6e:c2:2a:a2:62:24:95:90:76:c8:38:7e:
#                    80:d2:ab:c1:9b:65:05:94:f4:c1:0a:10:d5:02:ac:
#                    ed:9f:93:c7:87:c8:b0:27:2b:42:0c:3d:0a:3e:41:
#                    5a:9e:75:dd:8d:ca:e0:9b:ec:68:32:a4:69:92:68:
#                    8c:0b:81:0e:56:a0:3e:1a:dd:2c:25:14:82:2f:97:
#                    d3:64:46:f4:54:a9:dc:3a:54:2d:31:2b:99:82:f2:
#                    d9:2a:d7:ef:71:00:b8:31:a4:be:7a:24:07:c3:42:
#                    20:f2:8a:d4:92:04:1b:65:56:4c:6c:d4:fb:b6:61:
#                    5a:47:23:b4:d8:69:b4:b7:3a:d0:74:3c:0c:75:a1:
#                    8c:4e:76:a1:e9:db:2a:a5:3b:fa:ce:b0:ff:7e:6a:
#                    28:fd:27:1c:c8:b1:e9:29:f1:57:6e:64:b4:d0:c1:
#                    15:6d:0e:be:2e:0e:46:c8:5e:f4:51:fe:ef:0e:63:
#                    3a:3b:71:ba:cf:6f:59:ca:0c:e3:9b:5d:49:b8:4c:
#                    e2:57:b1:98:8a:42:57:9c:76:ef:ef:bd:d1:68:a8:
#                    d2:f4:09:bb:77:35:be:25:82:08:c4:16:2c:44:20:
#                    56:a9:44:11:77:ef:5d:b4:1d:aa:5e:6b:3e:8b:32:
#                    f6:07:2f:57:04:92:ca:f5:fe:9d:c2:e9:e8:b3:8e:
#                    4c:4b:02:31:d9:e4:3c:48:82:27:f7:18:82:76:48:
#                    3a:71:b1:13:a1:39:d5:2e:c5:34:c2:1d:62:85:df:
#                    03:fe:4d:f4:af:3d:df:5c:5b:8d:fa:70:e1:a5:7e:
#                    27:c7:86:2e:6a:8f:12:c6:84:5e:43:51:50:9c:19:
#                    9b:78:e6:fc:f6:ed:47:7e:7b:3d:66:ef:13:13:88:
#                    5f:3c:a1:63:fb:f9:ac:87:35:9f:f3:82:9e:a4:3f:
#                    0a:9c:31:69:8b:99:a4:88:4a:8e:6e:66:4d:ef:16:
#                    c4:0f:79:28:21:60:0d:85:16:7d:d7:54:38:f1:92:
#                    56:fd:b5:33:4c:83:dc:d7:10:9f:4b:fd:c6:f8:42:
#                    bd:ba:7c:73:02:e0:ff:7d:cd:5b:e1:d4:ac:61:7b:
#                    57:d5:4a:7b:5b:d4:85:58:27:5d:bf:f8:2b:60:ac:
#                    a0:26:ae:14:21:27:c6:77:9a:33:80:3c:5e:46:3f:
#                    f7:c3:b1:a3:86:33:c6:e8:5e:0d:b9:35:2c:aa:46:
#                    c1:85:02:75:80:a0:eb:24:fb:15:aa:e4:67:7f:6e:
#                    77:3f:f4:04:8a:2f:7c:7b:e3:17:61:f0:dd:09:a9:
#                    20:c8:be:09:a4:d0:7e:44:c3:b2:30:4a:38:aa:a9:
#                    ec:18:9a:07:82:2b:db:b8:9c:18:ad:da:e0:46:17:
#                    ac:cf:5d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D9:FE:21:40:6E:94:9E:BC:9B:3D:9C:7D:98:20:19:E5:8C:30:62:B2
#            X509v3 Authority Key Identifier: 
#                keyid:D9:FE:21:40:6E:94:9E:BC:9B:3D:9C:7D:98:20:19:E5:8C:30:62:B2
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         9e:45:9e:0c:3b:b6:ef:e1:3a:c8:7c:d1:00:3d:cf:e2:ea:06:
#         b5:b2:3a:bb:06:4b:68:7a:d0:23:97:74:a7:2c:f0:08:d8:79:
#         5a:d7:5a:84:8a:d8:12:9a:1b:d9:7d:5c:4d:70:c5:a5:f9:ab:
#         e5:a3:89:89:dd:01:fa:ec:dd:f9:e9:92:97:db:b0:46:42:f3:
#         d3:62:aa:95:fe:31:67:14:69:58:90:0a:aa:0b:ee:37:23:c7:
#         50:51:b4:f5:7e:9e:e3:7b:f7:e4:cc:42:32:2d:49:0c:cb:ff:
#         49:0c:9b:1e:34:fd:6e:6e:96:8a:79:03:b6:6f:db:09:cb:fd:
#         5f:65:14:37:e1:38:f5:f3:61:16:58:e4:b5:6d:0d:0b:04:1b:
#         3f:50:2d:7f:b3:c7:7a:1a:16:80:60:f8:8a:1f:e9:1b:2a:c6:
#         f9:ba:01:1a:69:bf:d2:58:c7:54:57:08:8f:e1:39:60:77:4b:
#         ac:59:84:1a:88:f1:dd:cb:4f:78:d7:e7:e1:33:2d:fc:ee:41:
#         fa:20:b0:be:cb:f7:38:94:c0:e1:d0:85:0f:bb:ed:2c:73:ab:
#         ed:fe:92:76:1a:64:7f:5b:0d:33:09:07:33:7b:06:3f:11:a4:
#         5c:70:3c:85:c0:cf:e3:90:a8:83:77:fa:db:e6:c5:8c:68:67:
#         10:67:a5:52:2d:f0:c4:99:8f:7f:bf:d1:6b:e2:b5:47:d6:d9:
#         d0:85:99:4d:94:9b:0f:4b:8d:ee:00:5a:47:1d:11:03:ac:41:
#         18:af:87:b7:6f:0c:3a:8f:ca:cf:dc:03:c1:a2:09:c8:e5:fd:
#         80:5e:c8:60:42:01:1b:1a:53:5a:bb:37:a6:b7:bc:ba:84:e9:
#         1e:6c:1a:d4:64:da:d4:43:fe:93:8b:4b:f2:2c:79:16:10:d4:
#         93:0b:88:8f:a1:d8:86:14:46:91:47:9b:28:24:ef:57:52:4e:
#         5c:42:9c:aa:f7:49:ec:27:e8:40:1e:b3:a6:89:22:72:9c:f5:
#         0d:33:b4:58:a3:30:3b:dd:d4:6a:54:93:be:1a:4d:f3:93:94:
#         f7:fc:84:0b:3f:84:20:5c:34:03:44:c5:da:ad:bc:0a:c1:02:
#         cf:1e:e5:94:d9:f3:8e:5b:d8:4c:f0:9d:ec:61:17:bb:14:32:
#         54:0c:02:29:93:1e:92:86:f6:7f:ef:e7:92:05:0e:59:dd:99:
#         08:2e:2e:fa:9c:00:52:d3:c5:66:29:e4:a7:97:44:a4:0e:28:
#         81:13:35:c5:f6:6f:64:e6:41:c4:d5:2f:cc:34:45:25:cf:41:
#         00:96:3d:4a:2e:c2:96:98:4f:4e:4a:9c:97:b7:db:1f:92:32:
#         c8:ff:0f:51:6e:d6:ec:09

[p11-kit-object-v1]
label: "Trustwave Global Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAuV1RKEs8N5LRgs69Hb3N
3birzwo+4V3l3KoJuVcCPuZjYd/yD4JjrqP3rHPRfOezC68IAAlZf80pKoiThxcY
gO2IsrS2EB8t1l9VohNd0cbrBlaJiP6sMp39XMMFx27uhom6iAOdciGGkK6PA6Xc
n4goy6OSSQ/s0A/ibURPgGqy1OegClMBuo6XkXZuvPzVazbmQIjWey9fBegsbRHz
57K+kkRM0pek/tJygUMHnOkRPvWLGll9H2hY3QQALJbzQ7N+mBl02Zxz2Ri+Qcc0
edn0YsJDubMnsCLL+T1SxzBHs8k+uGri5+iBcF5Ci08mpf46wiBuu/gWjs0MqbQb
bHYQ4Vh5Rj5UzoCoVwk3KRuZE48MyNYsHPsF6AiVPWVG3O7NaeJNj4coTjQLPs8U
2bvdtlCarXfUGdbaGojIThsnddiyCPGugzC5EQ7Nh/CEjRVyfKHvzPKIYbr0absM
jAt1VwS4TioULj0PHB4ypmI27mbiIrgFQGMQIvMzHXRyiiz1OSmg0+cbgIQtxT3j
TbH9Gm+6ZQc7WOxCRSb72NolcsT2ALEieb3jfFliSpwFbz3O5tZHY5nGJG9yEsis
f5C0C5Fw6LfmFhBxF87eBk9IQX01SqOJ8slLe0ERbWe3CJhM5REZrkKA3PuQBdT4
UMq+5K3HwpTXFp3mF4+vNvsCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Trustwave Global Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF2jCCA8KgAwIBAgIMBfcOhtpJ80Y1LrqyMA0GCSqGSIb3DQEBCwUAMIGIMQsw
CQYDVQQGEwJVUzERMA8GA1UECAwISWxsaW5vaXMxEDAOBgNVBAcMB0NoaWNhZ28x
ITAfBgNVBAoMGFRydXN0d2F2ZSBIb2xkaW5ncywgSW5jLjExMC8GA1UEAwwoVHJ1
c3R3YXZlIEdsb2JhbCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0xNzA4MjMx
OTM0MTJaFw00MjA4MjMxOTM0MTJaMIGIMQswCQYDVQQGEwJVUzERMA8GA1UECAwI
SWxsaW5vaXMxEDAOBgNVBAcMB0NoaWNhZ28xITAfBgNVBAoMGFRydXN0d2F2ZSBI
b2xkaW5ncywgSW5jLjExMC8GA1UEAwwoVHJ1c3R3YXZlIEdsb2JhbCBDZXJ0aWZp
Y2F0aW9uIEF1dGhvcml0eTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB
ALldUShLPDeS0YLOvR29zd24q88KPuFd5dyqCblXAj7mY2Hf8g+CY66j96xz0Xzn
swuvCAAJWX/NKSqIk4cXGIDtiLK0thAfLdZfVaITXdHG6wZWiYj+rDKd/VzDBcdu
7oaJuogDnXIhhpCujwOl3J+IKMujkkkP7NAP4m1ET4BqstTnoApTAbqOl5F2brz8
1Ws25kCI1nsvXwXoLG0R8+eyvpJETNKXpP7ScoFDB5zpET71ixpZfR9oWN0EACyW
80OzfpgZdNmcc9kYvkHHNHnZ9GLCQ7mzJ7Aiy/k9UscwR7PJPrhq4ufogXBeQotP
JqX+OsIgbrv4Fo7NDKm0G2x2EOFYeUY+VM6AqFcJNykbmROPDMjWLBz7BegIlT1l
RtzuzWniTY+HKE40Cz7PFNm73bZQmq131BnW2hqIyE4bJ3XYsgjxroMwuREOzYfw
hI0Vcnyh78zyiGG69Gm7DIwLdVcEuE4qFC49DxweMqZiNu5m4iK4BUBjECLzMx10
coos9TkpoNPnG4CELcU9402x/RpvumUHO1jsQkUm+9jaJXLE9gCxInm943xZYkqc
BW89zubWR2OZxiRvchLIrH+QtAuRcOi35hYQcRfO3gZPSEF9NUqjifLJS3tBEW1n
twiYTOURGa5CgNz7kAXU+FDKvuStx8KU1xad5hePrzb7AgMBAAGjQjBAMA8GA1Ud
EwEB/wQFMAMBAf8wHQYDVR0OBBYEFJngGWcNYtt2s9o9uFvo/ULSMQ6HMA4GA1Ud
DwEB/wQEAwIBBjANBgkqhkiG9w0BAQsFAAOCAgEAmHNw4rDT7TnsTGDZqRKGFx6W
0OhUKDtkLSGm+J1WE2pIPU/HPinbbViDVD2HfSMF1OQc3Og4ZYbFdada2zUFvXfe
uyk3QAUHw5RSn8pk3fEbK9xGChACMf1KaA0HZJDmHvUqoai7PF35owgLEQzxPy0Q
lG/+4jSHg9bP5Rs1bdID4bANqKCqRieCNqcVtgimQlRXtpla4gt5kNdXElE1GYhB
aCXUNxeEFfsBctyV3lImIJgm4nb1J2/6ADtKYdkNy1GTKv0WBpanI5ojSP5RvbbE
sLFUzt5sQa0WZ37b/TjNuThOssFgy50X31ieemKyJo90lZvkWx3SD92YHJtZuSPT
MaCm/zjdzyBP6VhWOmfD0faZmZ26NraAL4hHT4a/RDqA5Dccprrql5gR0IRiR2Qe
qu5AvzSxnI9O4fKSTx+O856X3vOmeWqJcU9LJxdI/uz0UA9PSX3MReO9ekDFQdxh
VicGaeVyQYHTtgGJoC86cnn+OjC/QezHYj6RS8fZMXZC+fc8Y+wmjHMMfRod6qh8
h6jCJ3zhM0EPz8/8AKAigJ5Kp28AsEFFtyLKaEjFQqKu3R3y4G5OBVixwJAWKqQ9
EEC+j2Jjg6mcgn0tAumDMHzLJ8n9HmYAsC7TIS+OMxZsmO0QqAfWzJPP29FpHOTK
yeC2nOnOcXHebD8WpHk=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:f7:0e:86:da:49:f3:46:35:2e:ba:b2
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, ST = Illinois, L = Chicago, O = "Trustwave Holdings, Inc.", CN = Trustwave Global Certification Authority
#        Validity
#            Not Before: Aug 23 19:34:12 2017 GMT
#            Not After : Aug 23 19:34:12 2042 GMT
#        Subject: C = US, ST = Illinois, L = Chicago, O = "Trustwave Holdings, Inc.", CN = Trustwave Global Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b9:5d:51:28:4b:3c:37:92:d1:82:ce:bd:1d:bd:
#                    cd:dd:b8:ab:cf:0a:3e:e1:5d:e5:dc:aa:09:b9:57:
#                    02:3e:e6:63:61:df:f2:0f:82:63:ae:a3:f7:ac:73:
#                    d1:7c:e7:b3:0b:af:08:00:09:59:7f:cd:29:2a:88:
#                    93:87:17:18:80:ed:88:b2:b4:b6:10:1f:2d:d6:5f:
#                    55:a2:13:5d:d1:c6:eb:06:56:89:88:fe:ac:32:9d:
#                    fd:5c:c3:05:c7:6e:ee:86:89:ba:88:03:9d:72:21:
#                    86:90:ae:8f:03:a5:dc:9f:88:28:cb:a3:92:49:0f:
#                    ec:d0:0f:e2:6d:44:4f:80:6a:b2:d4:e7:a0:0a:53:
#                    01:ba:8e:97:91:76:6e:bc:fc:d5:6b:36:e6:40:88:
#                    d6:7b:2f:5f:05:e8:2c:6d:11:f3:e7:b2:be:92:44:
#                    4c:d2:97:a4:fe:d2:72:81:43:07:9c:e9:11:3e:f5:
#                    8b:1a:59:7d:1f:68:58:dd:04:00:2c:96:f3:43:b3:
#                    7e:98:19:74:d9:9c:73:d9:18:be:41:c7:34:79:d9:
#                    f4:62:c2:43:b9:b3:27:b0:22:cb:f9:3d:52:c7:30:
#                    47:b3:c9:3e:b8:6a:e2:e7:e8:81:70:5e:42:8b:4f:
#                    26:a5:fe:3a:c2:20:6e:bb:f8:16:8e:cd:0c:a9:b4:
#                    1b:6c:76:10:e1:58:79:46:3e:54:ce:80:a8:57:09:
#                    37:29:1b:99:13:8f:0c:c8:d6:2c:1c:fb:05:e8:08:
#                    95:3d:65:46:dc:ee:cd:69:e2:4d:8f:87:28:4e:34:
#                    0b:3e:cf:14:d9:bb:dd:b6:50:9a:ad:77:d4:19:d6:
#                    da:1a:88:c8:4e:1b:27:75:d8:b2:08:f1:ae:83:30:
#                    b9:11:0e:cd:87:f0:84:8d:15:72:7c:a1:ef:cc:f2:
#                    88:61:ba:f4:69:bb:0c:8c:0b:75:57:04:b8:4e:2a:
#                    14:2e:3d:0f:1c:1e:32:a6:62:36:ee:66:e2:22:b8:
#                    05:40:63:10:22:f3:33:1d:74:72:8a:2c:f5:39:29:
#                    a0:d3:e7:1b:80:84:2d:c5:3d:e3:4d:b1:fd:1a:6f:
#                    ba:65:07:3b:58:ec:42:45:26:fb:d8:da:25:72:c4:
#                    f6:00:b1:22:79:bd:e3:7c:59:62:4a:9c:05:6f:3d:
#                    ce:e6:d6:47:63:99:c6:24:6f:72:12:c8:ac:7f:90:
#                    b4:0b:91:70:e8:b7:e6:16:10:71:17:ce:de:06:4f:
#                    48:41:7d:35:4a:a3:89:f2:c9:4b:7b:41:11:6d:67:
#                    b7:08:98:4c:e5:11:19:ae:42:80:dc:fb:90:05:d4:
#                    f8:50:ca:be:e4:ad:c7:c2:94:d7:16:9d:e6:17:8f:
#                    af:36:fb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                99:E0:19:67:0D:62:DB:76:B3:DA:3D:B8:5B:E8:FD:42:D2:31:0E:87
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         98:73:70:e2:b0:d3:ed:39:ec:4c:60:d9:a9:12:86:17:1e:96:
#         d0:e8:54:28:3b:64:2d:21:a6:f8:9d:56:13:6a:48:3d:4f:c7:
#         3e:29:db:6d:58:83:54:3d:87:7d:23:05:d4:e4:1c:dc:e8:38:
#         65:86:c5:75:a7:5a:db:35:05:bd:77:de:bb:29:37:40:05:07:
#         c3:94:52:9f:ca:64:dd:f1:1b:2b:dc:46:0a:10:02:31:fd:4a:
#         68:0d:07:64:90:e6:1e:f5:2a:a1:a8:bb:3c:5d:f9:a3:08:0b:
#         11:0c:f1:3f:2d:10:94:6f:fe:e2:34:87:83:d6:cf:e5:1b:35:
#         6d:d2:03:e1:b0:0d:a8:a0:aa:46:27:82:36:a7:15:b6:08:a6:
#         42:54:57:b6:99:5a:e2:0b:79:90:d7:57:12:51:35:19:88:41:
#         68:25:d4:37:17:84:15:fb:01:72:dc:95:de:52:26:20:98:26:
#         e2:76:f5:27:6f:fa:00:3b:4a:61:d9:0d:cb:51:93:2a:fd:16:
#         06:96:a7:23:9a:23:48:fe:51:bd:b6:c4:b0:b1:54:ce:de:6c:
#         41:ad:16:67:7e:db:fd:38:cd:b9:38:4e:b2:c1:60:cb:9d:17:
#         df:58:9e:7a:62:b2:26:8f:74:95:9b:e4:5b:1d:d2:0f:dd:98:
#         1c:9b:59:b9:23:d3:31:a0:a6:ff:38:dd:cf:20:4f:e9:58:56:
#         3a:67:c3:d1:f6:99:99:9d:ba:36:b6:80:2f:88:47:4f:86:bf:
#         44:3a:80:e4:37:1c:a6:ba:ea:97:98:11:d0:84:62:47:64:1e:
#         aa:ee:40:bf:34:b1:9c:8f:4e:e1:f2:92:4f:1f:8e:f3:9e:97:
#         de:f3:a6:79:6a:89:71:4f:4b:27:17:48:fe:ec:f4:50:0f:4f:
#         49:7d:cc:45:e3:bd:7a:40:c5:41:dc:61:56:27:06:69:e5:72:
#         41:81:d3:b6:01:89:a0:2f:3a:72:79:fe:3a:30:bf:41:ec:c7:
#         62:3e:91:4b:c7:d9:31:76:42:f9:f7:3c:63:ec:26:8c:73:0c:
#         7d:1a:1d:ea:a8:7c:87:a8:c2:27:7c:e1:33:41:0f:cf:cf:fc:
#         00:a0:22:80:9e:4a:a7:6f:00:b0:41:45:b7:22:ca:68:48:c5:
#         42:a2:ae:dd:1d:f2:e0:6e:4e:05:58:b1:c0:90:16:2a:a4:3d:
#         10:40:be:8f:62:63:83:a9:9c:82:7d:2d:02:e9:83:30:7c:cb:
#         27:c9:fd:1e:66:00:b0:2e:d3:21:2f:8e:33:16:6c:98:ed:10:
#         a8:07:d6:cc:93:cf:db:d1:69:1c:e4:ca:c9:e0:b6:9c:e9:ce:
#         71:71:de:6c:3f:16:a4:79

[p11-kit-object-v1]
label: "Trustwave Global ECC P256 Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEfvts5iPjczIIymDmU5y6dI0YsHiQ
UoDdOMBKHdGozJOklwY4yg0VYsaOASplnarfNJEugcHkM5IxxP0JOqY/rQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Trustwave Global ECC P256 Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICYDCCAgegAwIBAgIMDWpfCD8oXD5Rld9dMAoGCCqGSM49BAMCMIGRMQswCQYD
VQQGEwJVUzERMA8GA1UECBMISWxsaW5vaXMxEDAOBgNVBAcTB0NoaWNhZ28xITAf
BgNVBAoTGFRydXN0d2F2ZSBIb2xkaW5ncywgSW5jLjE6MDgGA1UEAxMxVHJ1c3R3
YXZlIEdsb2JhbCBFQ0MgUDI1NiBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0x
NzA4MjMxOTM1MTBaFw00MjA4MjMxOTM1MTBaMIGRMQswCQYDVQQGEwJVUzERMA8G
A1UECBMISWxsaW5vaXMxEDAOBgNVBAcTB0NoaWNhZ28xITAfBgNVBAoTGFRydXN0
d2F2ZSBIb2xkaW5ncywgSW5jLjE6MDgGA1UEAxMxVHJ1c3R3YXZlIEdsb2JhbCBF
Q0MgUDI1NiBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTBZMBMGByqGSM49AgEGCCqG
SM49AwEHA0IABH77bOYj43MyCMpg5lOcunSNGLB4kFKA3TjASh3RqMyTpJcGOMoN
FWLGjgEqZZ2q3zSRLoHB5DOSMcT9CTqmP62jQzBBMA8GA1UdEwEB/wQFMAMBAf8w
DwYDVR0PAQH/BAUDAwcGADAdBgNVHQ4EFgQUo0EGrJBt0UrrdaVKEJmzsaGLSvcw
CgYIKoZIzj0EAwIDRwAwRAIgB+ZU2g6gWrKuEZ+Hxbb/ad4lvvigtwjzRM4q3wgh
DDcCIC0mA6AFvWvR9lz4ZcyGbbOcNEhjhAnFjXca4syc4XR7
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0d:6a:5f:08:3f:28:5c:3e:51:95:df:5d
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C = US, ST = Illinois, L = Chicago, O = "Trustwave Holdings, Inc.", CN = Trustwave Global ECC P256 Certification Authority
#        Validity
#            Not Before: Aug 23 19:35:10 2017 GMT
#            Not After : Aug 23 19:35:10 2042 GMT
#        Subject: C = US, ST = Illinois, L = Chicago, O = "Trustwave Holdings, Inc.", CN = Trustwave Global ECC P256 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub:
#                    04:7e:fb:6c:e6:23:e3:73:32:08:ca:60:e6:53:9c:
#                    ba:74:8d:18:b0:78:90:52:80:dd:38:c0:4a:1d:d1:
#                    a8:cc:93:a4:97:06:38:ca:0d:15:62:c6:8e:01:2a:
#                    65:9d:aa:df:34:91:2e:81:c1:e4:33:92:31:c4:fd:
#                    09:3a:a6:3f:ad
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A3:41:06:AC:90:6D:D1:4A:EB:75:A5:4A:10:99:B3:B1:A1:8B:4A:F7
#    Signature Algorithm: ecdsa-with-SHA256
#         30:44:02:20:07:e6:54:da:0e:a0:5a:b2:ae:11:9f:87:c5:b6:
#         ff:69:de:25:be:f8:a0:b7:08:f3:44:ce:2a:df:08:21:0c:37:
#         02:20:2d:26:03:a0:05:bd:6b:d1:f6:5c:f8:65:cc:86:6d:b3:
#         9c:34:48:63:84:09:c5:8d:77:1a:e2:cc:9c:e1:74:7b

[p11-kit-object-v1]
label: "Trustwave Global ECC P384 Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEa9oNdTUIMUcFrkWZVfEREy5K+BAxI6N+
g9N/KAg6Jho6z5eCH4C3JwmP0Y4wxAqbDqxYBKv3Nn2UI6SbCoqLq+v9OSVm8V7+
jK6NQXmdCWDOKKnTim3z1kXU8piEOGWg
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Trustwave Global ECC P384 Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:bd:85:97:6c:99:27:a4:80:68:47:3b
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, ST = Illinois, L = Chicago, O = "Trustwave Holdings, Inc.", CN = Trustwave Global ECC P384 Certification Authority
#        Validity
#            Not Before: Aug 23 19:36:43 2017 GMT
#            Not After : Aug 23 19:36:43 2042 GMT
#        Subject: C = US, ST = Illinois, L = Chicago, O = "Trustwave Holdings, Inc.", CN = Trustwave Global ECC P384 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:6b:da:0d:75:35:08:31:47:05:ae:45:99:55:f1:
#                    11:13:2e:4a:f8:10:31:23:a3:7e:83:d3:7f:28:08:
#                    3a:26:1a:3a:cf:97:82:1f:80:b7:27:09:8f:d1:8e:
#                    30:c4:0a:9b:0e:ac:58:04:ab:f7:36:7d:94:23:a4:
#                    9b:0a:8a:8b:ab:eb:fd:39:25:66:f1:5e:fe:8c:ae:
#                    8d:41:79:9d:09:60:ce:28:a9:d3:8a:6d:f3:d6:45:
#                    d4:f2:98:84:38:65:a0
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                55:A9:84:89:D2:C1:32:BD:18:CB:6C:A6:07:4E:C8:E7:9D:BE:82:90
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:37:01:92:97:45:12:7e:a0:f3:3e:ad:19:3a:72:
#         dd:f4:50:93:03:12:be:44:d2:4f:41:a4:8c:9c:9d:1f:a3:f6:
#         c2:92:e7:48:14:fe:4e:9b:a5:91:57:ae:c6:37:72:bb:02:30:
#         67:25:0a:b1:0c:5e:ee:a9:63:92:6f:e5:90:0b:fe:66:22:ca:
#         47:fd:8a:31:f7:83:fe:7a:bf:10:be:18:2b:1e:8f:f6:29:1e:
#         94:59:ef:8e:21:37:cb:51:98:a5:6e:4b

[p11-kit-object-v1]
label: "TunTrust Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TunTrust Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            13:02:d5:e2:40:4c:92:46:86:16:67:5d:b4:bb:bb:b2:6b:3e:fc:13
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TN, O = Agence Nationale de Certification Electronique, CN = TunTrust Root CA
#        Validity
#            Not Before: Apr 26 08:57:56 2019 GMT
#            Not After : Apr 26 08:57:56 2044 GMT
#        Subject: C = TN, O = Agence Nationale de Certification Electronique, CN = TunTrust Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c3:cd:d3:fc:bd:04:53:dd:0c:20:3a:d5:88:2e:
#                    05:4b:41:f5:83:82:7e:f7:59:9f:9e:9e:63:e8:73:
#                    da:f6:06:a9:4f:1f:b4:f9:0b:1f:39:8c:9a:20:d0:
#                    7e:06:d4:ec:34:d9:86:bc:75:5b:87:88:f0:d2:d9:
#                    d4:a3:0a:b2:6c:1b:eb:49:2c:3e:ac:5d:d8:94:03:
#                    a0:ec:34:e5:30:c4:35:7d:fb:26:4d:1b:6e:30:54:
#                    d8:f5:80:45:9c:39:ad:9c:c9:25:04:4d:9a:90:3e:
#                    4e:40:6e:8a:6b:cd:29:67:c6:cc:2d:e0:74:e8:05:
#                    57:0a:48:50:fa:7a:43:da:7e:ec:5b:9a:0e:62:76:
#                    fe:ea:9d:1d:85:72:ec:11:bb:35:e8:1f:27:bf:c1:
#                    a1:c7:bb:48:16:dd:56:d7:cc:4e:a0:e1:b9:ac:db:
#                    d5:83:19:1a:85:d1:94:97:d7:ca:a3:65:0b:f3:38:
#                    f9:02:ae:dd:f6:67:cf:c9:3f:f5:8a:2c:47:1a:99:
#                    6f:05:0d:fd:d0:1d:82:31:fc:29:cc:00:58:97:91:
#                    4c:80:00:1c:33:85:96:2f:cb:41:c2:8b:10:84:c3:
#                    09:24:89:1f:b5:0f:d9:d9:77:47:18:92:94:60:5c:
#                    c7:99:03:3c:fe:f7:95:a7:7d:50:a1:80:c2:a9:83:
#                    ad:58:96:55:21:db:86:59:d4:af:c6:bc:dd:81:6e:
#                    07:db:60:62:fe:ec:10:6e:da:68:01:f4:83:1b:a9:
#                    3e:a2:5b:23:d7:64:c6:df:dc:a2:7d:d8:4b:ba:82:
#                    d2:51:f8:66:bf:06:46:e4:79:2a:26:36:79:8f:1f:
#                    4e:99:1d:b2:8f:0c:0e:1c:ff:c9:5d:c0:fd:90:10:
#                    a6:b1:37:f3:cd:3a:24:6e:b4:85:90:bf:80:b9:0c:
#                    8c:d5:9b:d6:c8:f1:56:3f:1a:80:89:7a:a9:e2:1b:
#                    32:51:2c:3e:f2:df:7b:f6:5d:7a:29:19:8e:e5:c8:
#                    bd:36:71:8b:5d:4c:c2:1d:3f:ad:58:a2:cf:3d:70:
#                    4d:a6:50:98:25:dc:23:f9:b8:58:41:08:71:bf:4f:
#                    b8:84:a0:8f:00:54:15:fc:91:6d:58:a7:96:3b:eb:
#                    4b:96:27:cd:6b:a2:a1:86:ac:0d:7c:54:e6:66:4c:
#                    66:5f:90:be:21:9a:02:46:2d:e4:83:c2:80:b9:cf:
#                    4b:3e:e8:7f:3c:01:ec:8f:5e:cd:7f:d2:28:42:01:
#                    95:8a:e2:97:3d:10:21:7d:f6:9d:1c:c5:34:a1:ec:
#                    2c:0e:0a:52:2c:12:55:70:24:3d:cb:c2:14:35:43:
#                    5d:27:4e:be:c0:bd:aa:7c:96:e7:fc:9e:61:ad:44:
#                    d3:00:97
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                06:9A:9B:1F:53:7D:F1:F5:A4:C8:D3:86:3E:A1:73:59:B4:F7:44:21
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:06:9A:9B:1F:53:7D:F1:F5:A4:C8:D3:86:3E:A1:73:59:B4:F7:44:21
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         aa:05:6e:b6:dd:15:c9:bf:b3:c6:20:f6:06:47:b0:86:93:25:
#         d3:8d:b9:c8:00:3f:97:f5:52:27:88:71:c9:74:fd:eb:ca:64:
#         db:5b:ef:1e:5d:ba:bf:d1:eb:ee:5c:69:ba:16:c8:f3:b9:8f:
#         d3:36:2e:40:49:07:0d:59:de:8b:10:b0:49:05:e2:ff:91:3f:
#         4b:b7:dd:02:8e:f8:81:28:5c:cc:dc:6d:af:5f:14:9c:7d:58:
#         78:0d:f6:80:09:b9:e9:0e:97:29:19:b8:b7:eb:f8:16:cb:55:
#         12:e4:c6:7d:bb:c4:ec:f8:b5:1c:4e:3e:67:bf:c5:5f:1b:6d:
#         6d:47:28:aa:04:58:61:d6:76:bf:22:7f:d0:07:6a:a7:64:53:
#         f0:97:8d:9d:80:3f:bb:c1:07:db:65:af:e6:9b:32:9a:c3:54:
#         93:c4:1c:08:c3:44:fb:7b:63:11:43:d1:6a:1a:61:6a:79:6d:
#         90:4f:29:8e:47:05:c1:12:69:69:d6:c6:36:31:e1:fc:fa:80:
#         ba:5c:4f:c4:eb:b7:32:ac:f8:75:61:17:d7:10:19:b9:f1:d2:
#         09:ef:7a:42:9d:5b:5a:0b:d4:c6:95:4e:2a:ce:ff:07:d7:4f:
#         7e:18:06:88:f1:19:b5:d9:98:bb:ae:71:c4:1c:e7:74:59:58:
#         ef:0c:89:cf:8b:1f:75:93:1a:04:14:92:48:50:a9:eb:57:29:
#         00:16:e3:36:1c:c8:f8:bf:f0:33:d5:41:0f:c4:cc:3c:dd:e9:
#         33:43:01:91:10:2b:1e:d1:b9:5d:cd:32:19:8b:8f:8c:20:77:
#         d7:22:c4:42:dc:84:16:9b:25:6d:e8:b4:55:71:7f:b0:7c:b3:
#         d3:71:49:b9:cf:52:a4:04:3f:dc:3d:a0:bb:af:33:9e:0a:30:
#         60:8e:db:9d:5d:94:a8:bd:60:e7:62:80:76:81:83:0c:8c:cc:
#         30:46:49:e2:0c:d2:a8:af:eb:61:71:ef:e7:22:62:a9:f7:5c:
#         64:6c:9f:16:8c:67:36:27:45:f5:09:7b:bf:f6:10:0a:f1:b0:
#         8d:54:43:8c:04:ba:a3:3f:ef:e2:35:c7:f9:74:e0:6f:34:41:
#         d0:bf:73:65:57:20:f9:9b:67:7a:66:68:24:4e:80:65:bd:10:
#         99:06:59:f2:65:af:b8:c6:47:bb:fd:90:78:8b:41:73:2e:af:
#         55:1f:dc:3b:92:72:6e:84:d3:d0:61:4c:0d:cc:76:57:e2:2d:
#         85:22:15:36:0d:eb:01:9d:eb:d8:eb:c4:84:99:fb:c0:0c:cc:
#         32:e8:e3:77:da:83:44:8b:9e:55:28:c0:8b:58:d3:90:3e:4e:
#         1b:00:f1:15:ad:83:2b:9a

[p11-kit-object-v1]
label: "Tunisian Root Certificate Authority - TunRootCA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Tunisian Root Certificate Authority - TunRootCA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFvDCCA6SgAwIBAgIQIWYVBQUnBQW8irAdrwq+xDANBgkqhkiG9w0BAQsFADB4
MQswCQYDVQQGEwJUTjE5MDcGA1UEAxMwVHVuaXNpYW4gUm9vdCBDZXJ0aWZpY2F0
ZSBBdXRob3JpdHkgLSBUdW5Sb290Q0EyMS4wLAYDVQQKEyVOYXRpb25hbCBEaWdp
dGFsIENlcnRpZmljYXRpb24gQWdlbmN5MB4XDTE1MDUwNTA4NTcwMVoXDTI3MDUw
NTA4NTcwMVoweDELMAkGA1UEBhMCVE4xOTA3BgNVBAMTMFR1bmlzaWFuIFJvb3Qg
Q2VydGlmaWNhdGUgQXV0aG9yaXR5IC0gVHVuUm9vdENBMjEuMCwGA1UEChMlTmF0
aW9uYWwgRGlnaXRhbCBDZXJ0aWZpY2F0aW9uIEFnZW5jeTCCAiIwDQYJKoZIhvcN
AQEBBQADggIPADCCAgoCggIBALAH52L70A1Vzme3V41uDKknVB7rqSSrZ4+PnGEP
2ygyLzv4LGWSLa66M5LAK57yH15tI12zWB+NocBtdYUKsBNOW1ZGizm9C4K7OkOb
CLpG7vkX683I1+N1E96uUUgKziCVRp8C7FWMdKpa/PzqCTM1bqNHBsfdfoRoDscS
ypTD7eZsAm3eAok1swTLRfh8R6TTH9/lXCPi8yJ7uUui/Rc1XUjpv/WzJWOL53jr
/HUnvYhcpoU/Qd+VfN16Ro/+Htqxq9jTjs0GjMnYUkIRUqKDj1yDe+Qnto8foF49
0nV9eVOTBpfjA8eWLNoBPHnFO1DosNOhpOLTg31E+BDPoBoq8mWAvXfBmGV2rhIh
Yso6vr61mcNbxNG/m8AKylgeFabXIV6xTQrlcHiaaOZ0ZjIUKh4Rvoj3BvZVo8Mf
bheQVdGKQIlWQ9VP5qLJiGQABVE/V7Q8tr5qkXFA8aJc8dftnLZX9lnUKhHl1OW/
ux7RyNdfRAWbu4k6radDd34VYHyIXZvspVzSRq0Mi1RF1JRRVUVSqlzYEaz4ViJs
2dIU6bdOQoVURvgBxj0mBnfosjUb8J1CyX/+gCcBUMt/xaxU+mttloxBpKHS57WR
SG93HIvCK3T+PFzEXZTOq/EglmvBDFpf+eU1uWyjEGfvkapIDu9It3ZYYtm+nkKz
pL01AgMBAAGjQjBAMB0GA1UdDgQWBBTMc8Wjaikxl6eNoNhUwQp1tiM/pjAPBgNV
HRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjANBgkqhkiG9w0BAQsFAAOCAgEA
LvKHSO2Znp8BDDzJCnhTfBg13rblbPQAgOGbi9n6+6r7ZbfSyfXXp8t+ybGicVht
WTfW4DMQyrXZcttOJTeqpt0dGL31yYqceojuHwLELZJUfVfiXBkYIwJ6XEmVtpjn
wmBBZUC77Fq3cZxQ8nN2+18N7zXPtGmNhehMkBcDC8mzLiA3YxFipk/jNOD7eVXn
xsKuQv6wNGxJIw5yB3tmBVVI+xIPoMD6TtH7Pcz+/RZLVlDNESynm/exCs+m6+/d
jriuQgh8pIyU6obHQ+P3PIrfR9IwQMgtU/VvEUnMIYyWQ08QoEehVo0fHFvYVlvr
NHbhNTpx1MwhL541KPJa3p7k7kdqEOg4vUq0fQR/Ba5ICrQDvy6zChufy63dTdCH
IbdHdoKDLcdXvpoVoxswGGyjOnFvZEcoktsRYSCad2Ut+axWE2xLo1//m6To7+dY
6HueO39qp745ChOUyUhOZmTYU0zsQWv9/DYu1w7fYQt7tUCs3UJJbZ6Av2CV8OnA
P3u7GOk4tVZOp36KYu+YHvh4QKm72OnltLT542ec7FPPuEK0L5OBNaBs9rogimg9
923/f9NM93qUaAN3Qzs1UapTEj5HExQ5rNZlj6hG/zwh9NK/0EikfqdRm5cS9Zk0
FyNWhBNjyzTKH8q6qAcp80MkCkl//Q7UkPCrQyFinI8=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            21:66:15:05:05:27:05:05:bc:8a:b0:1d:af:0a:be:c4
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TN, CN = Tunisian Root Certificate Authority - TunRootCA2, O = National Digital Certification Agency
#        Validity
#            Not Before: May  5 08:57:01 2015 GMT
#            Not After : May  5 08:57:01 2027 GMT
#        Subject: C = TN, CN = Tunisian Root Certificate Authority - TunRootCA2, O = National Digital Certification Agency
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:07:e7:62:fb:d0:0d:55:ce:67:b7:57:8d:6e:
#                    0c:a9:27:54:1e:eb:a9:24:ab:67:8f:8f:9c:61:0f:
#                    db:28:32:2f:3b:f8:2c:65:92:2d:ae:ba:33:92:c0:
#                    2b:9e:f2:1f:5e:6d:23:5d:b3:58:1f:8d:a1:c0:6d:
#                    75:85:0a:b0:13:4e:5b:56:46:8b:39:bd:0b:82:bb:
#                    3a:43:9b:08:ba:46:ee:f9:17:eb:cd:c8:d7:e3:75:
#                    13:de:ae:51:48:0a:ce:20:95:46:9f:02:ec:55:8c:
#                    74:aa:5a:fc:fc:ea:09:33:35:6e:a3:47:06:c7:dd:
#                    7e:84:68:0e:c7:12:ca:94:c3:ed:e6:6c:02:6d:de:
#                    02:89:35:b3:04:cb:45:f8:7c:47:a4:d3:1f:df:e5:
#                    5c:23:e2:f3:22:7b:b9:4b:a2:fd:17:35:5d:48:e9:
#                    bf:f5:b3:25:63:8b:e7:78:eb:fc:75:27:bd:88:5c:
#                    a6:85:3f:41:df:95:7c:dd:7a:46:8f:fe:1e:da:b1:
#                    ab:d8:d3:8e:cd:06:8c:c9:d8:52:42:11:52:a2:83:
#                    8f:5c:83:7b:e4:27:b6:8f:1f:a0:5e:3d:d2:75:7d:
#                    79:53:93:06:97:e3:03:c7:96:2c:da:01:3c:79:c5:
#                    3b:50:e8:b0:d3:a1:a4:e2:d3:83:7d:44:f8:10:cf:
#                    a0:1a:2a:f2:65:80:bd:77:c1:98:65:76:ae:12:21:
#                    62:ca:3a:be:be:b5:99:c3:5b:c4:d1:bf:9b:c0:0a:
#                    ca:58:1e:15:a6:d7:21:5e:b1:4d:0a:e5:70:78:9a:
#                    68:e6:74:66:32:14:2a:1e:11:be:88:f7:06:f6:55:
#                    a3:c3:1f:6e:17:90:55:d1:8a:40:89:56:43:d5:4f:
#                    e6:a2:c9:88:64:00:05:51:3f:57:b4:3c:b6:be:6a:
#                    91:71:40:f1:a2:5c:f1:d7:ed:9c:b6:57:f6:59:d4:
#                    2a:11:e5:d4:e5:bf:bb:1e:d1:c8:d7:5f:44:05:9b:
#                    bb:89:3a:ad:a7:43:77:7e:15:60:7c:88:5d:9b:ec:
#                    a5:5c:d2:46:ad:0c:8b:54:45:d4:94:51:55:45:52:
#                    aa:5c:d8:11:ac:f8:56:22:6c:d9:d2:14:e9:b7:4e:
#                    42:85:54:46:f8:01:c6:3d:26:06:77:e8:b2:35:1b:
#                    f0:9d:42:c9:7f:fe:80:27:01:50:cb:7f:c5:ac:54:
#                    fa:6b:6d:96:8c:41:a4:a1:d2:e7:b5:91:48:6f:77:
#                    1c:8b:c2:2b:74:fe:3c:5c:c4:5d:94:ce:ab:f1:20:
#                    96:6b:c1:0c:5a:5f:f9:e5:35:b9:6c:a3:10:67:ef:
#                    91:aa:48:0e:ef:48:b7:76:58:62:d9:be:9e:42:b3:
#                    a4:bd:35
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                CC:73:C5:A3:6A:29:31:97:A7:8D:A0:D8:54:C1:0A:75:B6:23:3F:A6
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         2e:f2:87:48:ed:99:9e:9f:01:0c:3c:c9:0a:78:53:7c:18:35:
#         de:b6:e5:6c:f4:00:80:e1:9b:8b:d9:fa:fb:aa:fb:65:b7:d2:
#         c9:f5:d7:a7:cb:7e:c9:b1:a2:71:58:6d:59:37:d6:e0:33:10:
#         ca:b5:d9:72:db:4e:25:37:aa:a6:dd:1d:18:bd:f5:c9:8a:9c:
#         7a:88:ee:1f:02:c4:2d:92:54:7d:57:e2:5c:19:18:23:02:7a:
#         5c:49:95:b6:98:e7:c2:60:41:65:40:bb:ec:5a:b7:71:9c:50:
#         f2:73:76:fb:5f:0d:ef:35:cf:b4:69:8d:85:e8:4c:90:17:03:
#         0b:c9:b3:2e:20:37:63:11:62:a6:4f:e3:34:e0:fb:79:55:e7:
#         c6:c2:ae:42:fe:b0:34:6c:49:23:0e:72:07:7b:66:05:55:48:
#         fb:12:0f:a0:c0:fa:4e:d1:fb:3d:cc:fe:fd:16:4b:56:50:cd:
#         11:2c:a7:9b:f7:b1:0a:cf:a6:eb:ef:dd:8e:b8:ae:42:08:7c:
#         a4:8c:94:ea:86:c7:43:e3:f7:3c:8a:df:47:d2:30:40:c8:2d:
#         53:f5:6f:11:49:cc:21:8c:96:43:4f:10:a0:47:a1:56:8d:1f:
#         1c:5b:d8:56:5b:eb:34:76:e1:35:3a:71:d4:cc:21:2f:9e:35:
#         28:f2:5a:de:9e:e4:ee:47:6a:10:e8:38:bd:4a:b4:7d:04:7f:
#         05:ae:48:0a:b4:03:bf:2e:b3:0a:1b:9f:cb:ad:dd:4d:d0:87:
#         21:b7:47:76:82:83:2d:c7:57:be:9a:15:a3:1b:30:18:6c:a3:
#         3a:71:6f:64:47:28:92:db:11:61:20:9a:77:65:2d:f9:ac:56:
#         13:6c:4b:a3:5f:ff:9b:a4:e8:ef:e7:58:e8:7b:9e:3b:7f:6a:
#         a7:be:39:0a:13:94:c9:48:4e:66:64:d8:53:4c:ec:41:6b:fd:
#         fc:36:2e:d7:0e:df:61:0b:7b:b5:40:ac:dd:42:49:6d:9e:80:
#         bf:60:95:f0:e9:c0:3f:7b:bb:18:e9:38:b5:56:4e:a7:7e:8a:
#         62:ef:98:1e:f8:78:40:a9:bb:d8:e9:e5:b4:b4:f9:e3:67:9c:
#         ec:53:cf:b8:42:b4:2f:93:81:35:a0:6c:f6:ba:20:8a:68:3d:
#         f7:6d:ff:7f:d3:4c:f7:7a:94:68:03:77:43:3b:35:51:aa:53:
#         12:3e:47:13:14:39:ac:d6:65:8f:a8:46:ff:3c:21:f4:d2:bf:
#         d0:48:a4:7e:a7:51:9b:97:12:f5:99:34:17:23:56:84:13:63:
#         cb:34:ca:1f:ca:ba:a8:07:29:f3:43:24:0a:49:7f:fd:0e:d4:
#         90:f0:ab:43:21:62:9c:8f

[p11-kit-object-v1]
label: "TÜBİTAK UEKAE Kök Sertifika Hizmet Sağlayıcısı - Sürüm 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAim1L/xCIOsP2fpTo6iBk
cK4hgb46ezzb8R1Sf1n68yJMlaCQvEhOEav7t7WNeoMojCZG2E6VQIdhn8WebYGH
V2yKO7Rm6sxA/OOqbLLLAdsyv9Lrhc+hDVXDWzhXcLh1xnnRFDDtG1hba+818qEh
TsXOfJlfbLm4IpNQp81McGq+agV/E5wrHur+R84EpW+sky58K5+eeROR6Oqeyjh1
jmKwlZMq5d/pXpduIF9fhHpEORlAHLpVK/swsoHvhOPc7Jg4OQOFCKlUAwUp8MmP
i+oLhmUZEdPpCSPeaJMDyTYcIW7OjGbxmTDY17PDHfiBLqi9ggtm/oLL4eAagsNA
gQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TÜBİTAK UEKAE Kök Sertifika Hizmet Sağlayıcısı - Sürüm 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 17 (0x11)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = TR, L = Gebze - Kocaeli, O = T\C3\BCrkiye Bilimsel ve Teknolojik Ara\C5\9Ft\C4\B1rma Kurumu - T\C3\9CB\C4\B0TAK, OU = Ulusal Elektronik ve Kriptoloji Ara\C5\9Ft\C4\B1rma Enstit\C3\BCs\C3\BC - UEKAE, OU = Kamu Sertifikasyon Merkezi, CN = T\C3\9CB\C4\B0TAK UEKAE K\C3\B6k Sertifika Hizmet Sa\C4\9Flay\C4\B1c\C4\B1s\C4\B1 - S\C3\BCr\C3\BCm 3
#        Validity
#            Not Before: Aug 24 11:37:07 2007 GMT
#            Not After : Aug 21 11:37:07 2017 GMT
#        Subject: C = TR, L = Gebze - Kocaeli, O = T\C3\BCrkiye Bilimsel ve Teknolojik Ara\C5\9Ft\C4\B1rma Kurumu - T\C3\9CB\C4\B0TAK, OU = Ulusal Elektronik ve Kriptoloji Ara\C5\9Ft\C4\B1rma Enstit\C3\BCs\C3\BC - UEKAE, OU = Kamu Sertifikasyon Merkezi, CN = T\C3\9CB\C4\B0TAK UEKAE K\C3\B6k Sertifika Hizmet Sa\C4\9Flay\C4\B1c\C4\B1s\C4\B1 - S\C3\BCr\C3\BCm 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:8a:6d:4b:ff:10:88:3a:c3:f6:7e:94:e8:ea:20:
#                    64:70:ae:21:81:be:3a:7b:3c:db:f1:1d:52:7f:59:
#                    fa:f3:22:4c:95:a0:90:bc:48:4e:11:ab:fb:b7:b5:
#                    8d:7a:83:28:8c:26:46:d8:4e:95:40:87:61:9f:c5:
#                    9e:6d:81:87:57:6c:8a:3b:b4:66:ea:cc:40:fc:e3:
#                    aa:6c:b2:cb:01:db:32:bf:d2:eb:85:cf:a1:0d:55:
#                    c3:5b:38:57:70:b8:75:c6:79:d1:14:30:ed:1b:58:
#                    5b:6b:ef:35:f2:a1:21:4e:c5:ce:7c:99:5f:6c:b9:
#                    b8:22:93:50:a7:cd:4c:70:6a:be:6a:05:7f:13:9c:
#                    2b:1e:ea:fe:47:ce:04:a5:6f:ac:93:2e:7c:2b:9f:
#                    9e:79:13:91:e8:ea:9e:ca:38:75:8e:62:b0:95:93:
#                    2a:e5:df:e9:5e:97:6e:20:5f:5f:84:7a:44:39:19:
#                    40:1c:ba:55:2b:fb:30:b2:81:ef:84:e3:dc:ec:98:
#                    38:39:03:85:08:a9:54:03:05:29:f0:c9:8f:8b:ea:
#                    0b:86:65:19:11:d3:e9:09:23:de:68:93:03:c9:36:
#                    1c:21:6e:ce:8c:66:f1:99:30:d8:d7:b3:c3:1d:f8:
#                    81:2e:a8:bd:82:0b:66:fe:82:cb:e1:e0:1a:82:c3:
#                    40:81
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BD:88:87:C9:8F:F6:A4:0A:0B:AA:EB:C5:FE:91:23:9D:AB:4A:8A:32
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         1d:7c:fa:49:8f:34:e9:b7:26:92:16:9a:05:74:e7:4b:d0:6d:
#         39:6c:c3:26:f6:ce:b8:31:bc:c4:df:bc:2a:f8:37:91:18:dc:
#         04:c8:64:99:2b:18:6d:80:03:59:c9:ae:f8:58:d0:3e:ed:c3:
#         23:9f:69:3c:86:38:1c:9e:ef:da:27:78:d1:84:37:71:8a:3c:
#         4b:39:cf:7e:45:06:d6:2d:d8:8a:4d:78:12:d6:ad:c2:d3:cb:
#         d2:d0:41:f3:26:36:4a:9b:95:6c:0c:ee:e5:d1:43:27:66:c1:
#         88:f7:7a:b3:20:6c:ea:b0:69:2b:c7:20:e8:0c:03:c4:41:05:
#         99:e2:3f:e4:6b:f8:a0:86:81:c7:84:c6:1f:d5:4b:81:12:b2:
#         16:21:2c:13:a1:80:b2:5e:0c:4a:13:9e:20:d8:62:40:ab:90:
#         ea:64:4a:2f:ac:0d:01:12:79:45:a8:2f:87:19:68:c8:e2:85:
#         c7:30:b2:75:f9:38:3f:b2:c0:93:b4:6b:e2:03:44:ce:67:a0:
#         df:89:d6:ad:8c:76:a3:13:c3:94:61:2b:6b:d9:6c:c1:07:0a:
#         22:07:85:6c:85:24:46:a9:be:3f:8b:78:84:82:7e:24:0c:9d:
#         fd:81:37:e3:25:a8:ed:36:4e:95:2c:c9:9c:90:da:ec:a9:42:
#         3c:ad:b6:02

[p11-kit-object-v1]
label: "TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqTZ+w5FDTMMZmAjIx1h7
TxaMpc5JAR9zDqx1E6b6niwg3tiQDgrRadIn+6p3nydSJeLLXdjYg1AXfYq1gj8E
jrTV8EmnZLceLl8gnFB1T6/htUEU9JiSiMfl5WRHYUd5/cBR8cGZ59zOavuvtQEw
3EYc74rsle/c/68QHOud2LCqaoUYDRfJPr/xm9AJiUL9oEK0nYlRVSnPG3C8hFSt
wRMfmPQudmCLXT+arcoMv6dWW493uNWeeUmSP+DxlyR6bJsXD23vU5iRK+QPvll5
B3i7l5X0n2nUWIcKqePMtlgZnyYhscRZjbJBdcCtac6cAAjyNv8+8KEPGqwU/aZg
DwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN = T\C3\9CRKTRUST Elektronik Sertifika Hizmet Sa\C4\9Flay\C4\B1c\C4\B1s\C4\B1, C = TR, L = Ankara, O = T\C3\9CRKTRUST Bilgi \C4\B0leti\C5\9Fim ve Bili\C5\9Fim G\C3\BCvenli\C4\9Fi Hizmetleri A.\C5\9E. (c) Kas\C4\B1m 2005
#        Validity
#            Not Before: Nov  7 10:07:57 2005 GMT
#            Not After : Sep 16 10:07:57 2015 GMT
#        Subject: CN = T\C3\9CRKTRUST Elektronik Sertifika Hizmet Sa\C4\9Flay\C4\B1c\C4\B1s\C4\B1, C = TR, L = Ankara, O = T\C3\9CRKTRUST Bilgi \C4\B0leti\C5\9Fim ve Bili\C5\9Fim G\C3\BCvenli\C4\9Fi Hizmetleri A.\C5\9E. (c) Kas\C4\B1m 2005
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a9:36:7e:c3:91:43:4c:c3:19:98:08:c8:c7:58:
#                    7b:4f:16:8c:a5:ce:49:01:1f:73:0e:ac:75:13:a6:
#                    fa:9e:2c:20:de:d8:90:0e:0a:d1:69:d2:27:fb:aa:
#                    77:9f:27:52:25:e2:cb:5d:d8:d8:83:50:17:7d:8a:
#                    b5:82:3f:04:8e:b4:d5:f0:49:a7:64:b7:1e:2e:5f:
#                    20:9c:50:75:4f:af:e1:b5:41:14:f4:98:92:88:c7:
#                    e5:e5:64:47:61:47:79:fd:c0:51:f1:c1:99:e7:dc:
#                    ce:6a:fb:af:b5:01:30:dc:46:1c:ef:8a:ec:95:ef:
#                    dc:ff:af:10:1c:eb:9d:d8:b0:aa:6a:85:18:0d:17:
#                    c9:3e:bf:f1:9b:d0:09:89:42:fd:a0:42:b4:9d:89:
#                    51:55:29:cf:1b:70:bc:84:54:ad:c1:13:1f:98:f4:
#                    2e:76:60:8b:5d:3f:9a:ad:ca:0c:bf:a7:56:5b:8f:
#                    77:b8:d5:9e:79:49:92:3f:e0:f1:97:24:7a:6c:9b:
#                    17:0f:6d:ef:53:98:91:2b:e4:0f:be:59:79:07:78:
#                    bb:97:95:f4:9f:69:d4:58:87:0a:a9:e3:cc:b6:58:
#                    19:9f:26:21:b1:c4:59:8d:b2:41:75:c0:ad:69:ce:
#                    9c:00:08:f2:36:ff:3e:f0:a1:0f:1a:ac:14:fd:a6:
#                    60:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D9:37:B3:4E:05:FD:D9:CF:9F:12:16:AE:B6:89:2F:EB:25:3A:88:1C
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         72:60:96:b7:c9:dc:d8:29:5e:23:85:5f:b2:b3:2d:76:fb:88:
#         d7:17:fe:7b:6d:45:b8:f6:85:6c:9f:22:fc:2a:10:22:ec:aa:
#         b9:30:f6:ab:58:d6:39:10:31:99:29:00:bd:89:66:41:fb:74:
#         de:91:c1:18:0b:9f:b5:61:cb:9d:3a:be:f5:a8:94:a3:22:55:
#         6e:17:49:ff:d2:29:f1:38:26:5d:ef:a5:aa:3a:f9:71:7b:e6:
#         da:58:1d:d3:74:c2:01:fa:3e:69:58:5f:ad:cb:68:be:14:2e:
#         9b:6c:c0:b6:dc:a0:26:fa:77:1a:e2:24:da:1a:37:e0:67:ad:
#         d1:73:83:0d:a5:1a:1d:6e:12:92:7e:84:62:00:17:bd:bc:25:
#         18:57:f2:d7:a9:6f:59:88:bc:34:b7:2e:85:78:9d:96:dc:14:
#         c3:2c:8a:52:9b:96:8c:52:66:3d:86:16:8b:47:b8:51:09:8c:
#         ea:7d:cd:88:72:b3:60:33:b1:f0:0a:44:ef:0f:f5:09:37:88:
#         24:0e:2c:6b:20:3a:a2:fa:11:f2:40:35:9c:44:68:63:3b:ac:
#         33:6f:63:bc:2c:bb:f2:d2:cb:76:7d:7d:88:d8:1d:c8:05:1d:
#         6e:bc:94:a9:66:8c:77:71:c7:fa:91:fa:2f:51:9e:e9:39:52:
#         b6:e7:04:42

[p11-kit-object-v1]
label: "UCA Extended Validation Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Extended Validation Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFWjCCA0KgAwIBAgIQT9Irj/VkyDOeTzRYZiNwYDANBgkqhkiG9w0BAQsFADBH
MQswCQYDVQQGEwJDTjERMA8GA1UECgwIVW5pVHJ1c3QxJTAjBgNVBAMMHFVDQSBF
eHRlbmRlZCBWYWxpZGF0aW9uIFJvb3QwHhcNMTUwMzEzMDAwMDAwWhcNMzgxMjMx
MDAwMDAwWjBHMQswCQYDVQQGEwJDTjERMA8GA1UECgwIVW5pVHJ1c3QxJTAjBgNV
BAMMHFVDQSBFeHRlbmRlZCBWYWxpZGF0aW9uIFJvb3QwggIiMA0GCSqGSIb3DQEB
AQUAA4ICDwAwggIKAoICAQCpCQcoEwKwmeBkqh5DFnpzsZGgdT6o+uM4AHrsiWog
D4vFsJszA1qGxliG1cGFu0/GnEBNyr7uaZa4rYEwmnySBesFK5pI0Lh2PpbIILvS
sPGP2KxFRv+qZ2C0d35qHzwaUnoEPQc8hQ2E0B92CvdqFN9y4zR8V05WAT558aop
O2z6+I9tTcg1367r3CTueUWnhbYFiN6IXSV8l2RnCdm/WhUFhvMJHuxYMjMR83dk
sHYf5BA1FxvyDrFspCqjc/wJHx4yGVMR59mzLC52LqGj3n5qiAno8geK+LLNEOfi
c0CTuwjRP+H8C5SzJe98ptfRr5//lpr1kXuYC3fUfugH0mK1lTnj8/FtDw5lhIpj
VMWAtuCeS31HJqcBCF3RiJ7XwzJE+oJKCmhUfzhTA8ykADNkUVkLo4KRel7sFsLz
KuZi2irbWWIQJUoqgQtHB0MGcIfS+pMRKXpITeuUx3BNr2fVUbGAIAEBtHoIppB/
TuDvB0GHr2qlXov7z1CymlSvw4m6WC31MJixNnI5fkkE/SmnTHnkBVfblLkWU41G
sx2VYVdWf6/wFlthWG82UBEL2KwrlRYaDh8IzTY0ZRBiZtWAXxQgXy0MoHgKaNYs
1+lvK9JKBZP8nm9rZ/+I8U6laUpSNwXqxhaN0sSZ0YIrO7o1dfdRUVjzyAfd5LQD
fwIDAQABo0IwQDAdBgNVHQ4EFgQU2XQ65DA9DfcS3H5aBZ8eNJr34RQwDwYDVR0T
AQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAYYwDQYJKoZIhvcNAQELBQADggIBADaN
l8xCFWQpN5smLNb7rhVpLGsaGvdftvkHTFnq88nIua7Mui563MD1sC3AO6+fcAUR
ap8lTwEpcOPlDOHqWnzcSbvBHiqB9RZLcpHIojG5qtr8nR/zXUACE/xOHAbKsxSQ
VBcZEhrxH9cMaVr2cXj0lH2RC47skFSOvG+hTKv8dGT9cZr4QQehzZHkPJrgmzI5
c6sq1WnIeJEmMX3ixzDx/BR4dxIOE/TdFpS/S2d7cFOFyrC78zhNLJA5wA3CXWvp
4uXViI3WLL+rG761KIcSF3Ru/H38j9CHJrAb+7lsq+KePRXBOy5nAliRn+/4Qh8s
t2j1da3Ptfb/EX3C8CSlrdP6oDyp+l3cpaDvRKS+1ujl5BOWF3sGPjLtx7dCvHaj
2GU4Kzg1USEODm8uNBNA4StnDG1KQTAYI1oyVZnJF+A83vbsea0rWBmirSwiGpWO
vpaQXUJXxPkUAzUrHC1RVwinOt4/5Mi0A3PCwSaAuwtCH60NryZy2sy+s6ODWA2C
xR9GUeOcGMyNm43sSet1UNWMKFnKdDTajAshqx7qG+XH/RU+wBeq+yNuJkbL+vmx
cmtpzyKEC2IPrNkZAJSidjzULZrtBJ4tBmIQN1IchXIbJ+XMxjHsN+xjWZsLHXbM
fjKaiJUINlK73nZfdklJrX+9ZSCyycErdhh2n1ax
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4f:d2:2b:8f:f5:64:c8:33:9e:4f:34:58:66:23:70:60
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = UniTrust, CN = UCA Extended Validation Root
#        Validity
#            Not Before: Mar 13 00:00:00 2015 GMT
#            Not After : Dec 31 00:00:00 2038 GMT
#        Subject: C = CN, O = UniTrust, CN = UCA Extended Validation Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a9:09:07:28:13:02:b0:99:e0:64:aa:1e:43:16:
#                    7a:73:b1:91:a0:75:3e:a8:fa:e3:38:00:7a:ec:89:
#                    6a:20:0f:8b:c5:b0:9b:33:03:5a:86:c6:58:86:d5:
#                    c1:85:bb:4f:c6:9c:40:4d:ca:be:ee:69:96:b8:ad:
#                    81:30:9a:7c:92:05:eb:05:2b:9a:48:d0:b8:76:3e:
#                    96:c8:20:bb:d2:b0:f1:8f:d8:ac:45:46:ff:aa:67:
#                    60:b4:77:7e:6a:1f:3c:1a:52:7a:04:3d:07:3c:85:
#                    0d:84:d0:1f:76:0a:f7:6a:14:df:72:e3:34:7c:57:
#                    4e:56:01:3e:79:f1:aa:29:3b:6c:fa:f8:8f:6d:4d:
#                    c8:35:df:ae:eb:dc:24:ee:79:45:a7:85:b6:05:88:
#                    de:88:5d:25:7c:97:64:67:09:d9:bf:5a:15:05:86:
#                    f3:09:1e:ec:58:32:33:11:f3:77:64:b0:76:1f:e4:
#                    10:35:17:1b:f2:0e:b1:6c:a4:2a:a3:73:fc:09:1f:
#                    1e:32:19:53:11:e7:d9:b3:2c:2e:76:2e:a1:a3:de:
#                    7e:6a:88:09:e8:f2:07:8a:f8:b2:cd:10:e7:e2:73:
#                    40:93:bb:08:d1:3f:e1:fc:0b:94:b3:25:ef:7c:a6:
#                    d7:d1:af:9f:ff:96:9a:f5:91:7b:98:0b:77:d4:7e:
#                    e8:07:d2:62:b5:95:39:e3:f3:f1:6d:0f:0e:65:84:
#                    8a:63:54:c5:80:b6:e0:9e:4b:7d:47:26:a7:01:08:
#                    5d:d1:88:9e:d7:c3:32:44:fa:82:4a:0a:68:54:7f:
#                    38:53:03:cc:a4:00:33:64:51:59:0b:a3:82:91:7a:
#                    5e:ec:16:c2:f3:2a:e6:62:da:2a:db:59:62:10:25:
#                    4a:2a:81:0b:47:07:43:06:70:87:d2:fa:93:11:29:
#                    7a:48:4d:eb:94:c7:70:4d:af:67:d5:51:b1:80:20:
#                    01:01:b4:7a:08:a6:90:7f:4e:e0:ef:07:41:87:af:
#                    6a:a5:5e:8b:fb:cf:50:b2:9a:54:af:c3:89:ba:58:
#                    2d:f5:30:98:b1:36:72:39:7e:49:04:fd:29:a7:4c:
#                    79:e4:05:57:db:94:b9:16:53:8d:46:b3:1d:95:61:
#                    57:56:7f:af:f0:16:5b:61:58:6f:36:50:11:0b:d8:
#                    ac:2b:95:16:1a:0e:1f:08:cd:36:34:65:10:62:66:
#                    d5:80:5f:14:20:5f:2d:0c:a0:78:0a:68:d6:2c:d7:
#                    e9:6f:2b:d2:4a:05:93:fc:9e:6f:6b:67:ff:88:f1:
#                    4e:a5:69:4a:52:37:05:ea:c6:16:8d:d2:c4:99:d1:
#                    82:2b:3b:ba:35:75:f7:51:51:58:f3:c8:07:dd:e4:
#                    b4:03:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D9:74:3A:E4:30:3D:0D:F7:12:DC:7E:5A:05:9F:1E:34:9A:F7:E1:14
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         36:8d:97:cc:42:15:64:29:37:9b:26:2c:d6:fb:ae:15:69:2c:
#         6b:1a:1a:f7:5f:b6:f9:07:4c:59:ea:f3:c9:c8:b9:ae:cc:ba:
#         2e:7a:dc:c0:f5:b0:2d:c0:3b:af:9f:70:05:11:6a:9f:25:4f:
#         01:29:70:e3:e5:0c:e1:ea:5a:7c:dc:49:bb:c1:1e:2a:81:f5:
#         16:4b:72:91:c8:a2:31:b9:aa:da:fc:9d:1f:f3:5d:40:02:13:
#         fc:4e:1c:06:ca:b3:14:90:54:17:19:12:1a:f1:1f:d7:0c:69:
#         5a:f6:71:78:f4:94:7d:91:0b:8e:ec:90:54:8e:bc:6f:a1:4c:
#         ab:fc:74:64:fd:71:9a:f8:41:07:a1:cd:91:e4:3c:9a:e0:9b:
#         32:39:73:ab:2a:d5:69:c8:78:91:26:31:7d:e2:c7:30:f1:fc:
#         14:78:77:12:0e:13:f4:dd:16:94:bf:4b:67:7b:70:53:85:ca:
#         b0:bb:f3:38:4d:2c:90:39:c0:0d:c2:5d:6b:e9:e2:e5:d5:88:
#         8d:d6:2c:bf:ab:1b:be:b5:28:87:12:17:74:6e:fc:7d:fc:8f:
#         d0:87:26:b0:1b:fb:b9:6c:ab:e2:9e:3d:15:c1:3b:2e:67:02:
#         58:91:9f:ef:f8:42:1f:2c:b7:68:f5:75:ad:cf:b5:f6:ff:11:
#         7d:c2:f0:24:a5:ad:d3:fa:a0:3c:a9:fa:5d:dc:a5:a0:ef:44:
#         a4:be:d6:e8:e5:e4:13:96:17:7b:06:3e:32:ed:c7:b7:42:bc:
#         76:a3:d8:65:38:2b:38:35:51:21:0e:0e:6f:2e:34:13:40:e1:
#         2b:67:0c:6d:4a:41:30:18:23:5a:32:55:99:c9:17:e0:3c:de:
#         f6:ec:79:ad:2b:58:19:a2:ad:2c:22:1a:95:8e:be:96:90:5d:
#         42:57:c4:f9:14:03:35:2b:1c:2d:51:57:08:a7:3a:de:3f:e4:
#         c8:b4:03:73:c2:c1:26:80:bb:0b:42:1f:ad:0d:af:26:72:da:
#         cc:be:b3:a3:83:58:0d:82:c5:1f:46:51:e3:9c:18:cc:8d:9b:
#         8d:ec:49:eb:75:50:d5:8c:28:59:ca:74:34:da:8c:0b:21:ab:
#         1e:ea:1b:e5:c7:fd:15:3e:c0:17:aa:fb:23:6e:26:46:cb:fa:
#         f9:b1:72:6b:69:cf:22:84:0b:62:0f:ac:d9:19:00:94:a2:76:
#         3c:d4:2d:9a:ed:04:9e:2d:06:62:10:37:52:1c:85:72:1b:27:
#         e5:cc:c6:31:ec:37:ec:63:59:9b:0b:1d:76:cc:7e:32:9a:88:
#         95:08:36:52:bb:de:76:5f:76:49:49:ad:7f:bd:65:20:b2:c9:
#         c1:2b:76:18:76:9f:56:b1

[p11-kit-object-v1]
label: "UCA Global G2 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Global G2 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFRjCCAy6gAwIBAgIQXd+x2lqj7V2+WmUgZQOQ7zANBgkqhkiG9w0BAQsFADA9
MQswCQYDVQQGEwJDTjERMA8GA1UECgwIVW5pVHJ1c3QxGzAZBgNVBAMMElVDQSBH
bG9iYWwgRzIgUm9vdDAeFw0xNjAzMTEwMDAwMDBaFw00MDEyMzEwMDAwMDBaMD0x
CzAJBgNVBAYTAkNOMREwDwYDVQQKDAhVbmlUcnVzdDEbMBkGA1UEAwwSVUNBIEds
b2JhbCBHMiBSb290MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxeYr
b3zvJgUno4Ek2m/LAfmZmqkywiKHYUGRO8vDaBsGxUypK8FnFyIdK+35KYmToni9
kmugow2ifsqTs6bRjDXVdfkX9s9FxeV67HeToI8jrg4aA3++1NDtLnurRiNb/yzm
VHqUwCoV8MmNsHo7JOHXaOIxPAYzRrZUEaalLyJUKlgNAQLx+hVRZ2zA+te2G3/R
VogvGjqNO7uCEeBHANBSh6v7hn4PJGtAnTRnvI3HLYZveT6OqTwXS3+wmeOwcWDc
C/Vkw85DvG1xudLeJ1uK6NjGruFZfc8oLTW4lVYa8bJYS7cSN8h8s+1LgOGN+jIj
tm+3SJUIsUROhYw6AlQgL9+/V087OpAh18EmNVQg7Mc/R+zvWr9LesGtOxdQXGLY
D0tK3Cv6brxzks3sx1DoQZbXqX5t2Okdj4q1uViSukqSKwxW/YDrCPBeKW4bHAyv
j5OJrdu9o54hyokZ7N+1wxrrFv54NkzWbtA+FxyQF2smuvt6L78RHBgOLXMDj6Dl
NaBa4kx1HXHhOThTeEDMg5PXCp6dW4+K5OXgSORIskfNTip1KnvyIvbJvgmRlld6
iIis7nCs+dwp4wwcOxJORNanTrAmyPPZGpeRaOrvjUYG0lZFWJo8DA+DuAUlwznP
O6Q0ibd5Ei9Hxeepl2n8pndntd978XplFeRhVmUCAwEAAaNCMEAwDgYDVR0PAQH/
BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFIHEjMz15DD/pQwIX4wV
ZyF0Ad/fMA0GCSqGSIb3DQEBCwUAA4ICAQATZSL1jiutROTL/7lo5sOASD0Ee/oj
L3rtNtqyzm325p7lX1iPyzcyochltq44PTUbPrw7tgTQvPlJ9Zv3hcU2tsu8+Mg5
1eRfB70VVJd0ysrtT7q6ZHafgbiERUlMjW+i67HM0cOU2kTC5uLqGOiiHycFutfl
1qnN3e92mI0ADs0b+gO3joBYDic/UvuUospeZcnWhNq5NXHzJsBPd+aBJ9J3O5oU
b3n09tDh05S60FdRvScFDcH9yBIw7m+NESsIndTUv4BFFJqIRNow6rSn4+7vW4LV
PtateJLbXDzz2K36uGt/xDYotgIVilQsnLAXc47QN6MUPJiVAAwpBVueSUmxX8fj
y88nZY41F7dXyDDZQVu5FLbowg+UMaeUmMxq67XhJ/UQqAHojhJi6IjMtX9Gl8Cb
EGY4GjZGXyJoPd/JxhMnq1MGrKI8hgZlb7F+sSlEmqO6SWkoaY/X5V+tBIZkbxqg
DMUIYs6Ao9Dz7GjevjPHF1t/gMRMTLGmhIrDO7gJzRSBuhjjVFc2/tsvfEehOjPI
+Vg7RE+xygKJBJYoaMVLuCaJu9YzL1DV/pqJuhgyklTGW+Cd+V7lDSKb9triyCGy
YiGqhkCyLmTTX8jjfhFnRR8F/uOi77Oos/N9j/gMHyIfLXC0uAE0djAA5SN4p1bX
UB+K+wb1whnw0A==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5d:df:b1:da:5a:a3:ed:5d:be:5a:65:20:65:03:90:ef
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = UniTrust, CN = UCA Global G2 Root
#        Validity
#            Not Before: Mar 11 00:00:00 2016 GMT
#            Not After : Dec 31 00:00:00 2040 GMT
#        Subject: C = CN, O = UniTrust, CN = UCA Global G2 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c5:e6:2b:6f:7c:ef:26:05:27:a3:81:24:da:6f:
#                    cb:01:f9:99:9a:a9:32:c2:22:87:61:41:91:3b:cb:
#                    c3:68:1b:06:c5:4c:a9:2b:c1:67:17:22:1d:2b:ed:
#                    f9:29:89:93:a2:78:bd:92:6b:a0:a3:0d:a2:7e:ca:
#                    93:b3:a6:d1:8c:35:d5:75:f9:17:f6:cf:45:c5:e5:
#                    7a:ec:77:93:a0:8f:23:ae:0e:1a:03:7f:be:d4:d0:
#                    ed:2e:7b:ab:46:23:5b:ff:2c:e6:54:7a:94:c0:2a:
#                    15:f0:c9:8d:b0:7a:3b:24:e1:d7:68:e2:31:3c:06:
#                    33:46:b6:54:11:a6:a5:2f:22:54:2a:58:0d:01:02:
#                    f1:fa:15:51:67:6c:c0:fa:d7:b6:1b:7f:d1:56:88:
#                    2f:1a:3a:8d:3b:bb:82:11:e0:47:00:d0:52:87:ab:
#                    fb:86:7e:0f:24:6b:40:9d:34:67:bc:8d:c7:2d:86:
#                    6f:79:3e:8e:a9:3c:17:4b:7f:b0:99:e3:b0:71:60:
#                    dc:0b:f5:64:c3:ce:43:bc:6d:71:b9:d2:de:27:5b:
#                    8a:e8:d8:c6:ae:e1:59:7d:cf:28:2d:35:b8:95:56:
#                    1a:f1:b2:58:4b:b7:12:37:c8:7c:b3:ed:4b:80:e1:
#                    8d:fa:32:23:b6:6f:b7:48:95:08:b1:44:4e:85:8c:
#                    3a:02:54:20:2f:df:bf:57:4f:3b:3a:90:21:d7:c1:
#                    26:35:54:20:ec:c7:3f:47:ec:ef:5a:bf:4b:7a:c1:
#                    ad:3b:17:50:5c:62:d8:0f:4b:4a:dc:2b:fa:6e:bc:
#                    73:92:cd:ec:c7:50:e8:41:96:d7:a9:7e:6d:d8:e9:
#                    1d:8f:8a:b5:b9:58:92:ba:4a:92:2b:0c:56:fd:80:
#                    eb:08:f0:5e:29:6e:1b:1c:0c:af:8f:93:89:ad:db:
#                    bd:a3:9e:21:ca:89:19:ec:df:b5:c3:1a:eb:16:fe:
#                    78:36:4c:d6:6e:d0:3e:17:1c:90:17:6b:26:ba:fb:
#                    7a:2f:bf:11:1c:18:0e:2d:73:03:8f:a0:e5:35:a0:
#                    5a:e2:4c:75:1d:71:e1:39:38:53:78:40:cc:83:93:
#                    d7:0a:9e:9d:5b:8f:8a:e4:e5:e0:48:e4:48:b2:47:
#                    cd:4e:2a:75:2a:7b:f2:22:f6:c9:be:09:91:96:57:
#                    7a:88:88:ac:ee:70:ac:f9:dc:29:e3:0c:1c:3b:12:
#                    4e:44:d6:a7:4e:b0:26:c8:f3:d9:1a:97:91:68:ea:
#                    ef:8d:46:06:d2:56:45:58:9a:3c:0c:0f:83:b8:05:
#                    25:c3:39:cf:3b:a4:34:89:b7:79:12:2f:47:c5:e7:
#                    a9:97:69:fc:a6:77:67:b5:df:7b:f1:7a:65:15:e4:
#                    61:56:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                81:C4:8C:CC:F5:E4:30:FF:A5:0C:08:5F:8C:15:67:21:74:01:DF:DF
#    Signature Algorithm: sha256WithRSAEncryption
#         13:65:22:f5:8e:2b:ad:44:e4:cb:ff:b9:68:e6:c3:80:48:3d:
#         04:7b:fa:23:2f:7a:ed:36:da:b2:ce:6d:f6:e6:9e:e5:5f:58:
#         8f:cb:37:32:a1:c8:65:b6:ae:38:3d:35:1b:3e:bc:3b:b6:04:
#         d0:bc:f9:49:f5:9b:f7:85:c5:36:b6:cb:bc:f8:c8:39:d5:e4:
#         5f:07:bd:15:54:97:74:ca:ca:ed:4f:ba:ba:64:76:9f:81:b8:
#         84:45:49:4c:8d:6f:a2:eb:b1:cc:d1:c3:94:da:44:c2:e6:e2:
#         ea:18:e8:a2:1f:27:05:ba:d7:e5:d6:a9:cd:dd:ef:76:98:8d:
#         00:0e:cd:1b:fa:03:b7:8e:80:58:0e:27:3f:52:fb:94:a2:ca:
#         5e:65:c9:d6:84:da:b9:35:71:f3:26:c0:4f:77:e6:81:27:d2:
#         77:3b:9a:14:6f:79:f4:f6:d0:e1:d3:94:ba:d0:57:51:bd:27:
#         05:0d:c1:fd:c8:12:30:ee:6f:8d:11:2b:08:9d:d4:d4:bf:80:
#         45:14:9a:88:44:da:30:ea:b4:a7:e3:ee:ef:5b:82:d5:3e:d6:
#         ad:78:92:db:5c:3c:f3:d8:ad:fa:b8:6b:7f:c4:36:28:b6:02:
#         15:8a:54:2c:9c:b0:17:73:8e:d0:37:a3:14:3c:98:95:00:0c:
#         29:05:5b:9e:49:49:b1:5f:c7:e3:cb:cf:27:65:8e:35:17:b7:
#         57:c8:30:d9:41:5b:b9:14:b6:e8:c2:0f:94:31:a7:94:98:cc:
#         6a:eb:b5:e1:27:f5:10:a8:01:e8:8e:12:62:e8:88:cc:b5:7f:
#         46:97:c0:9b:10:66:38:1a:36:46:5f:22:68:3d:df:c9:c6:13:
#         27:ab:53:06:ac:a2:3c:86:06:65:6f:b1:7e:b1:29:44:9a:a3:
#         ba:49:69:28:69:8f:d7:e5:5f:ad:04:86:64:6f:1a:a0:0c:c5:
#         08:62:ce:80:a3:d0:f3:ec:68:de:be:33:c7:17:5b:7f:80:c4:
#         4c:4c:b1:a6:84:8a:c3:3b:b8:09:cd:14:81:ba:18:e3:54:57:
#         36:fe:db:2f:7c:47:a1:3a:33:c8:f9:58:3b:44:4f:b1:ca:02:
#         89:04:96:28:68:c5:4b:b8:26:89:bb:d6:33:2f:50:d5:fe:9a:
#         89:ba:18:32:92:54:c6:5b:e0:9d:f9:5e:e5:0d:22:9b:f6:da:
#         e2:c8:21:b2:62:21:aa:86:40:b2:2e:64:d3:5f:c8:e3:7e:11:
#         67:45:1f:05:fe:e3:a2:ef:b3:a8:b3:f3:7d:8f:f8:0c:1f:22:
#         1f:2d:70:b4:b8:01:34:76:30:00:e5:23:78:a7:56:d7:50:1f:
#         8a:fb:06:f5:c2:19:f0:d0

[p11-kit-object-v1]
label: "UCA Global Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA2rPlBlA/9nP3xDK/RqUl
YjOHsGj+p9+IA2N9Apb964fJ7uIIu527u+RBj8cwiQ9tJMAEbBSUgU2gDXRm8/CF
r/hkGd656YGT0CiFmUdCSiw8OCdKzP/5bBnXtfPvm65bNAbXj6ITBpyKhELVs6OQ
aG2BkO5NhOxMcE4t3iQ5zhkAQ5N4+QiGHUPR9HK8BcBn+sBR0smFBySuOR56zUHS
Nqth6iur8CBVmTxtLRwuLnWW2HKX4AzKaXPudSsVCeCObbvaE/9GqOgADKwHLx25
urnRoPeZnnRcGQVmMc8+KlL+b5/zub35wYH1N9ouTIElXfbZlJrTNYsgKDdfUet9
Ysepk9H50DTLqScmLCiQkjtVY7cXDlRzq6987DqrcDOsIfsiJrOGrCOp139tywgg
8q9A9f9ER3HdJ90TKKHqdjn5EKCgTUCkJ7JZFStsLSS3JGN490MYeg9NEePorIdC
jedYcaSrbqLAl3y74xNLytu7awj5abQEctXDRrl36v+6++nwOgw19o8PrgaEFt2U
VdTvyie3AzzFHCYq9TyopZWbhvGKiWf4xwxmse1Bv4KmAGg6IjTuHuvlb4l0T2qq
aqhXZ1LUIGHBzlPL/SR/XybfoQhplqCe/klD4tPq2sTxiDEhbhzhzfN1DiBEFsx9
c3Q1RSw7gdQg7LYJjD5IskkCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Global Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8 (0x8)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CN, O = UniTrust, CN = UCA Global Root
#        Validity
#            Not Before: Jan  1 00:00:00 2008 GMT
#            Not After : Dec 31 00:00:00 2037 GMT
#        Subject: C = CN, O = UniTrust, CN = UCA Global Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:da:b3:e5:06:50:3f:f6:73:f7:c4:32:bf:46:a5:
#                    25:62:33:87:b0:68:fe:a7:df:88:03:63:7d:02:96:
#                    fd:eb:87:c9:ee:e2:08:bb:9d:bb:bb:e4:41:8f:c7:
#                    30:89:0f:6d:24:c0:04:6c:14:94:81:4d:a0:0d:74:
#                    66:f3:f0:85:af:f8:64:19:de:b9:e9:81:93:d0:28:
#                    85:99:47:42:4a:2c:3c:38:27:4a:cc:ff:f9:6c:19:
#                    d7:b5:f3:ef:9b:ae:5b:34:06:d7:8f:a2:13:06:9c:
#                    8a:84:42:d5:b3:a3:90:68:6d:81:90:ee:4d:84:ec:
#                    4c:70:4e:2d:de:24:39:ce:19:00:43:93:78:f9:08:
#                    86:1d:43:d1:f4:72:bc:05:c0:67:fa:c0:51:d2:c9:
#                    85:07:24:ae:39:1e:7a:cd:41:d2:36:ab:61:ea:2b:
#                    ab:f0:20:55:99:3c:6d:2d:1c:2e:2e:75:96:d8:72:
#                    97:e0:0c:ca:69:73:ee:75:2b:15:09:e0:8e:6d:bb:
#                    da:13:ff:46:a8:e8:00:0c:ac:07:2f:1d:b9:ba:b9:
#                    d1:a0:f7:99:9e:74:5c:19:05:66:31:cf:3e:2a:52:
#                    fe:6f:9f:f3:b9:bd:f9:c1:81:f5:37:da:2e:4c:81:
#                    25:5d:f6:d9:94:9a:d3:35:8b:20:28:37:5f:51:eb:
#                    7d:62:c7:a9:93:d1:f9:d0:34:cb:a9:27:26:2c:28:
#                    90:92:3b:55:63:b7:17:0e:54:73:ab:af:7c:ec:3a:
#                    ab:70:33:ac:21:fb:22:26:b3:86:ac:23:a9:d7:7f:
#                    6d:cb:08:20:f2:af:40:f5:ff:44:47:71:dd:27:dd:
#                    13:28:a1:ea:76:39:f9:10:a0:a0:4d:40:a4:27:b2:
#                    59:15:2b:6c:2d:24:b7:24:63:78:f7:43:18:7a:0f:
#                    4d:11:e3:e8:ac:87:42:8d:e7:58:71:a4:ab:6e:a2:
#                    c0:97:7c:bb:e3:13:4b:ca:db:bb:6b:08:f9:69:b4:
#                    04:72:d5:c3:46:b9:77:ea:ff:ba:fb:e9:f0:3a:0c:
#                    35:f6:8f:0f:ae:06:84:16:dd:94:55:d4:ef:ca:27:
#                    b7:03:3c:c5:1c:26:2a:f5:3c:a8:a5:95:9b:86:f1:
#                    8a:89:67:f8:c7:0c:66:b1:ed:41:bf:82:a6:00:68:
#                    3a:22:34:ee:1e:eb:e5:6f:89:74:4f:6a:aa:6a:a8:
#                    57:67:52:d4:20:61:c1:ce:53:cb:fd:24:7f:5f:26:
#                    df:a1:08:69:96:a0:9e:fe:49:43:e2:d3:ea:da:c4:
#                    f1:88:31:21:6e:1c:e1:cd:f3:75:0e:20:44:16:cc:
#                    7d:73:74:35:45:2c:3b:81:d4:20:ec:b6:09:8c:3e:
#                    48:b2:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, IPSec End System, IPSec Tunnel, IPSec User, Time Stamping, OCSP Signing
#            X509v3 Subject Key Identifier: 
#                D9:C3:D3:F8:80:92:67:CC:5D:D2:3A:A2:D7:71:A2:B4:C4:38:80:2D
#    Signature Algorithm: sha1WithRSAEncryption
#         d0:88:79:ca:08:aa:f7:0b:34:a0:4e:09:c2:e9:7e:35:48:89:
#         70:84:23:2f:51:c3:2b:2f:5e:db:53:6b:5b:75:08:2a:54:ba:
#         32:0e:d5:c6:71:85:b1:97:49:80:f6:84:d0:f0:ba:b7:71:94:
#         c8:79:6b:a6:c5:44:e8:42:a2:ad:25:2d:57:2f:e6:d6:31:29:
#         fa:19:89:54:29:7e:b7:7e:47:36:69:2d:6e:32:bc:d4:75:da:
#         42:73:b8:4e:e5:83:40:73:b2:5d:df:d4:44:73:a6:62:0b:db:
#         aa:6e:05:8c:c8:7f:46:4f:39:85:90:9d:bc:1b:54:29:ac:a5:
#         d7:fe:e5:58:56:57:6d:2c:99:a1:49:21:d5:61:c6:8c:61:e1:
#         75:24:c1:01:dd:2d:1b:36:c3:2f:12:cc:0b:d6:78:8b:75:80:
#         e9:41:b9:88:b1:ca:3c:a9:16:c6:4e:15:e3:72:36:f6:d4:a0:
#         41:85:af:8a:65:70:4d:b5:44:10:50:ec:ed:df:6d:e6:d9:c6:
#         c0:12:f1:4b:3a:2f:73:e9:3c:a9:ee:1b:aa:2f:35:a5:9b:9f:
#         4d:c5:34:84:5f:26:14:69:b3:23:b1:89:72:14:f8:e9:4d:51:
#         22:03:ff:4a:86:c4:1c:e8:7b:79:0a:db:47:25:81:7e:fc:34:
#         84:ac:59:b8:58:43:e4:3d:43:09:54:74:c2:d0:fd:d9:ef:6e:
#         59:f7:72:60:99:76:6f:f5:27:a7:bb:83:a4:4a:81:ec:29:81:
#         f4:77:4b:e1:42:12:55:d4:86:2a:12:b6:f0:55:9b:01:2e:dd:
#         f6:a8:e3:19:c3:ce:47:2f:c0:78:61:18:5a:c7:65:fc:9d:46:
#         5b:57:dc:7c:0e:bb:96:83:10:7c:55:18:09:04:ae:d1:f7:8b:
#         2a:3e:a0:e6:50:d6:30:36:d7:e7:8b:38:53:ec:49:44:e0:cf:
#         a4:df:f1:53:7b:8b:5a:b6:f6:11:90:4b:d6:75:f3:fe:02:f3:
#         29:af:f0:23:72:7d:14:ed:a9:5d:df:7a:81:9e:9b:92:22:fc:
#         1e:f8:01:45:41:97:c7:6b:01:61:be:33:68:f2:a0:65:84:66:
#         bc:e0:2a:a4:68:d3:71:ec:c7:08:de:a3:c3:c9:36:4a:34:f1:
#         17:e2:80:af:20:21:93:94:1e:e6:15:d3:54:62:f1:b5:38:2f:
#         e3:cc:b9:67:04:a9:ba:e5:ee:f9:10:6e:cb:2e:7e:13:af:92:
#         14:fe:f3:27:73:7b:38:fc:73:6d:b9:b9:88:f6:6e:8c:0b:f5:
#         fc:ff:09:0e:b3:2d:5e:7b:75:e3:92:24:e2:e6:e1:58:3e:4b:
#         28:03:75:6b:18:9b:47:0c

[p11-kit-object-v1]
label: "UCA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs10HyoYmfWvi+zgJDsyC
wmoaAKIVX9bp1AG3VgMBWY/1OGkkdsJeK8X2K7+v+0H9D1r8q9eDcE0wmNGesna7
kta76RAoaSg2ROjxLNdYfCTWfwI68IFrYWA/9DPebeXqKFJP/KkdY3wLuuquxGhG
5N6PwaeytlhabR0s2Yw6t4jLhdT36ANe/bJNUOjWH/+uAj+LT5YhPJvXJckdP/uY
sVnk8Kk7r7PNhSziYEbMb46g6/A0xfFCGGCuEu1GdRzl2KmWWr7eWtZ4Z5Zbk3dQ
8m4b3pZRSqbWS0N1IWaNd+wChHZcRBC2HWFs5KMgfbeNug+RdceN37wCYKgpqL09
QwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 9 (0x9)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = CN, O = UniTrust, CN = UCA Root
#        Validity
#            Not Before: Jan  1 00:00:00 2004 GMT
#            Not After : Dec 31 00:00:00 2029 GMT
#        Subject: C = CN, O = UniTrust, CN = UCA Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:5d:07:ca:86:26:7d:6b:e2:fb:38:09:0e:cc:
#                    82:c2:6a:1a:00:a2:15:5f:d6:e9:d4:01:b7:56:03:
#                    01:59:8f:f5:38:69:24:76:c2:5e:2b:c5:f6:2b:bf:
#                    af:fb:41:fd:0f:5a:fc:ab:d7:83:70:4d:30:98:d1:
#                    9e:b2:76:bb:92:d6:bb:e9:10:28:69:28:36:44:e8:
#                    f1:2c:d7:58:7c:24:d6:7f:02:3a:f0:81:6b:61:60:
#                    3f:f4:33:de:6d:e5:ea:28:52:4f:fc:a9:1d:63:7c:
#                    0b:ba:ea:ae:c4:68:46:e4:de:8f:c1:a7:b2:b6:58:
#                    5a:6d:1d:2c:d9:8c:3a:b7:88:cb:85:d4:f7:e8:03:
#                    5e:fd:b2:4d:50:e8:d6:1f:ff:ae:02:3f:8b:4f:96:
#                    21:3c:9b:d7:25:c9:1d:3f:fb:98:b1:59:e4:f0:a9:
#                    3b:af:b3:cd:85:2c:e2:60:46:cc:6f:8e:a0:eb:f0:
#                    34:c5:f1:42:18:60:ae:12:ed:46:75:1c:e5:d8:a9:
#                    96:5a:be:de:5a:d6:78:67:96:5b:93:77:50:f2:6e:
#                    1b:de:96:51:4a:a6:d6:4b:43:75:21:66:8d:77:ec:
#                    02:84:76:5c:44:10:b6:1d:61:6c:e4:a3:20:7d:b7:
#                    8d:ba:0f:91:75:c7:8d:df:bc:02:60:a8:29:a8:bd:
#                    3d:43
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, IPSec End System, IPSec Tunnel, IPSec User, Time Stamping, OCSP Signing
#            X509v3 Subject Key Identifier: 
#                DB:1F:35:F3:6B:4C:FF:42:31:64:9B:CD:BB:5A:1E:1D:48:10:B7:EE
#    Signature Algorithm: sha1WithRSAEncryption
#         38:6c:b7:88:f1:ad:fa:58:37:74:d1:e8:70:de:9c:27:59:cb:
#         e4:15:d7:a0:c3:60:d7:88:80:04:c5:30:4c:3d:d4:1a:eb:06:
#         5e:59:47:e6:bc:66:cb:e0:08:fc:e8:35:ec:62:7d:ca:c0:da:
#         c1:78:af:e5:46:6f:fb:89:82:23:8f:f6:d7:53:66:55:a0:de:
#         25:12:3b:71:36:16:55:12:76:fb:3d:f8:54:5b:31:ba:00:06:
#         f8:7d:55:e5:a7:76:83:aa:5c:4a:97:a6:2a:28:df:bd:c6:6c:
#         0b:23:95:8e:33:7f:1e:5e:40:1f:13:54:2c:9c:e5:b5:0e:dd:
#         17:28:ae:6b:01:d3:52:29:f5:22:1f:90:39:f4:dc:62:68:f0:
#         3c:86:47:ec:b8:05:45:bb:b7:0c:96:94:c6:67:cb:23:71:d0:
#         8e:74:22:d6:41:eb:03:a8:b6:ea:be:c4:01:12:b5:b3:5d:40:
#         76:06:20:d4:64:b8:29:46:06:8a:ce:1f:93:9a:10:ee:fb:aa:
#         5a:b4:dc:2f:d5:2b:cb:f6:d7:05:84:98:05:91:0b:84:f7:3d:
#         fa:d6:f9:7a:fa:2c:15:ea:36:82:43:b7:b7:b8:e3:f3:71:01:
#         ed:43:43:a2:05:45:c3:28:05:07:35:e3:01:a5:38:1e:80:d4:
#         d7:c3:d9:de

[p11-kit-object-v1]
label: "USERTrust ECC Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEGqxUWqn5aCPnetUkb1PGWthLq8bVttHm
c3Gu3ZzWDGH926CJA7gFFOxXzu5dP+Ihs8731Ip54KODfi2X0GHE8ZncJZFjq38w
o7Rw4sehM5zzvy5cU7Ffs30yf4o043l5
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "USERTrust ECC Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5c:8b:99:c5:5a:94:c5:d2:71:56:de:cd:89:80:cc:26
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust ECC Certification Authority
#        Validity
#            Not Before: Feb  1 00:00:00 2010 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust ECC Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:1a:ac:54:5a:a9:f9:68:23:e7:7a:d5:24:6f:53:
#                    c6:5a:d8:4b:ab:c6:d5:b6:d1:e6:73:71:ae:dd:9c:
#                    d6:0c:61:fd:db:a0:89:03:b8:05:14:ec:57:ce:ee:
#                    5d:3f:e2:21:b3:ce:f7:d4:8a:79:e0:a3:83:7e:2d:
#                    97:d0:61:c4:f1:99:dc:25:91:63:ab:7f:30:a3:b4:
#                    70:e2:c7:a1:33:9c:f3:bf:2e:5c:53:b1:5f:b3:7d:
#                    32:7f:8a:34:e3:79:79
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                3A:E1:09:86:D4:CF:19:C2:96:76:74:49:76:DC:E0:35:C6:63:63:9A
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:36:67:a1:16:08:dc:e4:97:00:41:1d:4e:be:e1:
#         63:01:cf:3b:aa:42:11:64:a0:9d:94:39:02:11:79:5c:7b:1d:
#         fa:64:b9:ee:16:42:b3:bf:8a:c2:09:c4:ec:e4:b1:4d:02:31:
#         00:e9:2a:61:47:8c:52:4a:4b:4e:18:70:f6:d6:44:d6:6e:f5:
#         83:ba:6d:58:bd:24:d9:56:48:ea:ef:c4:a2:46:81:88:6a:3a:
#         46:d1:a9:9b:4d:c9:61:da:d1:5d:57:6a:18

[p11-kit-object-v1]
label: "USERTrust RSA Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "USERTrust RSA Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:fd:6d:30:fc:a3:ca:51:a8:1b:bc:64:0e:35:03:2d
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority
#        Validity
#            Not Before: Feb  1 00:00:00 2010 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:80:12:65:17:36:0e:c3:db:08:b3:d0:ac:57:0d:
#                    76:ed:cd:27:d3:4c:ad:50:83:61:e2:aa:20:4d:09:
#                    2d:64:09:dc:ce:89:9f:cc:3d:a9:ec:f6:cf:c1:dc:
#                    f1:d3:b1:d6:7b:37:28:11:2b:47:da:39:c6:bc:3a:
#                    19:b4:5f:a6:bd:7d:9d:a3:63:42:b6:76:f2:a9:3b:
#                    2b:91:f8:e2:6f:d0:ec:16:20:90:09:3e:e2:e8:74:
#                    c9:18:b4:91:d4:62:64:db:7f:a3:06:f1:88:18:6a:
#                    90:22:3c:bc:fe:13:f0:87:14:7b:f6:e4:1f:8e:d4:
#                    e4:51:c6:11:67:46:08:51:cb:86:14:54:3f:bc:33:
#                    fe:7e:6c:9c:ff:16:9d:18:bd:51:8e:35:a6:a7:66:
#                    c8:72:67:db:21:66:b1:d4:9b:78:03:c0:50:3a:e8:
#                    cc:f0:dc:bc:9e:4c:fe:af:05:96:35:1f:57:5a:b7:
#                    ff:ce:f9:3d:b7:2c:b6:f6:54:dd:c8:e7:12:3a:4d:
#                    ae:4c:8a:b7:5c:9a:b4:b7:20:3d:ca:7f:22:34:ae:
#                    7e:3b:68:66:01:44:e7:01:4e:46:53:9b:33:60:f7:
#                    94:be:53:37:90:73:43:f3:32:c3:53:ef:db:aa:fe:
#                    74:4e:69:c7:6b:8c:60:93:de:c4:c7:0c:df:e1:32:
#                    ae:cc:93:3b:51:78:95:67:8b:ee:3d:56:fe:0c:d0:
#                    69:0f:1b:0f:f3:25:26:6b:33:6d:f7:6e:47:fa:73:
#                    43:e5:7e:0e:a5:66:b1:29:7c:32:84:63:55:89:c4:
#                    0d:c1:93:54:30:19:13:ac:d3:7d:37:a7:eb:5d:3a:
#                    6c:35:5c:db:41:d7:12:da:a9:49:0b:df:d8:80:8a:
#                    09:93:62:8e:b5:66:cf:25:88:cd:84:b8:b1:3f:a4:
#                    39:0f:d9:02:9e:eb:12:4c:95:7c:f3:6b:05:a9:5e:
#                    16:83:cc:b8:67:e2:e8:13:9d:cc:5b:82:d3:4c:b3:
#                    ed:5b:ff:de:e5:73:ac:23:3b:2d:00:bf:35:55:74:
#                    09:49:d8:49:58:1a:7f:92:36:e6:51:92:0e:f3:26:
#                    7d:1c:4d:17:bc:c9:ec:43:26:d0:bf:41:5f:40:a9:
#                    44:44:f4:99:e7:57:87:9e:50:1f:57:54:a8:3e:fd:
#                    74:63:2f:b1:50:65:09:e6:58:42:2e:43:1a:4c:b4:
#                    f0:25:47:59:fa:04:1e:93:d4:26:46:4a:50:81:b2:
#                    de:be:78:b7:fc:67:15:e1:c9:57:84:1e:0f:63:d6:
#                    e9:62:ba:d6:5f:55:2e:ea:5c:c6:28:08:04:25:39:
#                    b8:0e:2b:a9:f2:4c:97:1c:07:3f:0d:52:f5:ed:ef:
#                    2f:82:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         5c:d4:7c:0d:cf:f7:01:7d:41:99:65:0c:73:c5:52:9f:cb:f8:
#         cf:99:06:7f:1b:da:43:15:9f:9e:02:55:57:96:14:f1:52:3c:
#         27:87:94:28:ed:1f:3a:01:37:a2:76:fc:53:50:c0:84:9b:c6:
#         6b:4e:ba:8c:21:4f:a2:8e:55:62:91:f3:69:15:d8:bc:88:e3:
#         c4:aa:0b:fd:ef:a8:e9:4b:55:2a:06:20:6d:55:78:29:19:ee:
#         5f:30:5c:4b:24:11:55:ff:24:9a:6e:5e:2a:2b:ee:0b:4d:9f:
#         7f:f7:01:38:94:14:95:43:07:09:fb:60:a9:ee:1c:ab:12:8c:
#         a0:9a:5e:a7:98:6a:59:6d:8b:3f:08:fb:c8:d1:45:af:18:15:
#         64:90:12:0f:73:28:2e:c5:e2:24:4e:fc:58:ec:f0:f4:45:fe:
#         22:b3:eb:2f:8e:d2:d9:45:61:05:c1:97:6f:a8:76:72:8f:8b:
#         8c:36:af:bf:0d:05:ce:71:8d:e6:a6:6f:1f:6c:a6:71:62:c5:
#         d8:d0:83:72:0c:f1:67:11:89:0c:9c:13:4c:72:34:df:bc:d5:
#         71:df:aa:71:dd:e1:b9:6c:8c:3c:12:5d:65:da:bd:57:12:b6:
#         43:6b:ff:e5:de:4d:66:11:51:cf:99:ae:ec:17:b6:e8:71:91:
#         8c:de:49:fe:dd:35:71:a2:15:27:94:1c:cf:61:e3:26:bb:6f:
#         a3:67:25:21:5d:e6:dd:1d:0b:2e:68:1b:3b:82:af:ec:83:67:
#         85:d4:98:51:74:b1:b9:99:80:89:ff:7f:78:19:5c:79:4a:60:
#         2e:92:40:ae:4c:37:2a:2c:c9:c7:62:c8:0e:5d:f7:36:5b:ca:
#         e0:25:25:01:b4:dd:1a:07:9c:77:00:3f:d0:dc:d5:ec:3d:d4:
#         fa:bb:3f:cc:85:d6:6f:7f:a9:2d:df:b9:02:f7:f5:97:9a:b5:
#         35:da:c3:67:b0:87:4a:a9:28:9e:23:8e:ff:5c:27:6b:e1:b0:
#         4f:f3:07:ee:00:2e:d4:59:87:cb:52:41:95:ea:f4:47:d7:ee:
#         64:41:55:7c:8d:59:02:95:dd:62:9d:c2:b9:ee:5a:28:74:84:
#         a5:9b:b7:90:c7:0c:07:df:f5:89:36:74:32:d6:28:c1:b0:b0:
#         0b:e0:9c:4c:c3:1c:d6:fc:e3:69:b5:47:46:81:2f:a2:82:ab:
#         d3:63:44:70:c4:8d:ff:2d:33:ba:ad:8f:7b:b5:70:88:ae:3e:
#         19:cf:40:28:d8:fc:c8:90:bb:5d:99:22:f5:52:e6:58:c5:1f:
#         88:31:43:ee:88:1d:d7:c6:8e:3c:43:6a:1d:a7:18:de:7d:3d:
#         16:f1:62:f9:ca:90:a8:fd

[p11-kit-object-v1]
label: "UTN-USERFirst-Object"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzqqBP6OjYXiqMQBVlRGe
Jw8fHN86m4JoMMBKYR3xLw76vnn3pSPvVVGWhM3b47luPjHYCiBnx/TZv5TrRwQ+
As4qol2HBAn2MJ0Yipeyqhz8QdKhNsv7PZG659lwNfrk55DDm6Ob0zz1Epl3sbcJ
4GjmHLjzlGOIamr+C3bJvvQi5Ge5qxped8GFB90NbL/uBsd3akGepw/X++6UF7f8
hb6kq8QcMd3XttHk8O/fFo+yUpPXodSJoQcuv+EBEkIeGuHYlTTbZHko/7ouEcLl
6FuSSPtHC8Js2q0yg0HzpeVBcP1lkG36+lHE+b2WKxkELNNtp9zwf2+DZeJqq4eG
dQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UTN-USERFirst-Object"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            44:be:0c:8b:50:00:24:b4:11:d3:36:2d:e0:b3:5f:1b
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, ST = UT, L = Salt Lake City, O = The USERTRUST Network, OU = http://www.usertrust.com, CN = UTN-USERFirst-Object
#        Validity
#            Not Before: Jul  9 18:31:20 1999 GMT
#            Not After : Jul  9 18:40:36 2019 GMT
#        Subject: C = US, ST = UT, L = Salt Lake City, O = The USERTRUST Network, OU = http://www.usertrust.com, CN = UTN-USERFirst-Object
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:ce:aa:81:3f:a3:a3:61:78:aa:31:00:55:95:11:
#                    9e:27:0f:1f:1c:df:3a:9b:82:68:30:c0:4a:61:1d:
#                    f1:2f:0e:fa:be:79:f7:a5:23:ef:55:51:96:84:cd:
#                    db:e3:b9:6e:3e:31:d8:0a:20:67:c7:f4:d9:bf:94:
#                    eb:47:04:3e:02:ce:2a:a2:5d:87:04:09:f6:30:9d:
#                    18:8a:97:b2:aa:1c:fc:41:d2:a1:36:cb:fb:3d:91:
#                    ba:e7:d9:70:35:fa:e4:e7:90:c3:9b:a3:9b:d3:3c:
#                    f5:12:99:77:b1:b7:09:e0:68:e6:1c:b8:f3:94:63:
#                    88:6a:6a:fe:0b:76:c9:be:f4:22:e4:67:b9:ab:1a:
#                    5e:77:c1:85:07:dd:0d:6c:bf:ee:06:c7:77:6a:41:
#                    9e:a7:0f:d7:fb:ee:94:17:b7:fc:85:be:a4:ab:c4:
#                    1c:31:dd:d7:b6:d1:e4:f0:ef:df:16:8f:b2:52:93:
#                    d7:a1:d4:89:a1:07:2e:bf:e1:01:12:42:1e:1a:e1:
#                    d8:95:34:db:64:79:28:ff:ba:2e:11:c2:e5:e8:5b:
#                    92:48:fb:47:0b:c2:6c:da:ad:32:83:41:f3:a5:e5:
#                    41:70:fd:65:90:6d:fa:fa:51:c4:f9:bd:96:2b:19:
#                    04:2c:d3:6d:a7:dc:f0:7f:6f:83:65:e2:6a:ab:87:
#                    86:75
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DA:ED:64:74:14:9C:14:3C:AB:DD:99:A9:BD:5B:28:4D:8B:3C:C9:D8
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.usertrust.com/UTN-USERFirst-Object.crl
#
#            X509v3 Extended Key Usage: 
#                Code Signing, Time Stamping, Microsoft Encrypted File System
#    Signature Algorithm: sha1WithRSAEncryption
#         08:1f:52:b1:37:44:78:db:fd:ce:b9:da:95:96:98:aa:55:64:
#         80:b5:5a:40:dd:21:a5:c5:c1:f3:5f:2c:4c:c8:47:5a:69:ea:
#         e8:f0:35:35:f4:d0:25:f3:c8:a6:a4:87:4a:bd:1b:b1:73:08:
#         bd:d4:c3:ca:b6:35:bb:59:86:77:31:cd:a7:80:14:ae:13:ef:
#         fc:b1:48:f9:6b:25:25:2d:51:b6:2c:6d:45:c1:98:c8:8a:56:
#         5d:3e:ee:43:4e:3e:6b:27:8e:d0:3a:4b:85:0b:5f:d3:ed:6a:
#         a7:75:cb:d1:5a:87:2f:39:75:13:5a:72:b0:02:81:9f:be:f0:
#         0f:84:54:20:62:6c:69:d4:e1:4d:c6:0d:99:43:01:0d:12:96:
#         8c:78:9d:bf:50:a2:b1:44:aa:6a:cf:17:7a:cf:6f:0f:d4:f8:
#         24:55:5f:f0:34:16:49:66:3e:50:46:c9:63:71:38:31:62:b8:
#         62:b9:f3:53:ad:6c:b5:2b:a2:12:aa:19:4f:09:da:5e:e7:93:
#         c6:8e:14:08:fe:f0:30:80:18:a0:86:85:4d:c8:7d:d7:8b:03:
#         fe:6e:d5:f7:9d:16:ac:92:2c:a0:23:e5:9c:91:52:1f:94:df:
#         17:94:73:c3:b3:c1:c1:71:05:20:00:78:bd:13:52:1d:a8:3e:
#         cd:00:1f:c8

[p11-kit-object-v1]
label: "VAS Latvijas Pasts SSI(RCA)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VAS Latvijas Pasts SSI(RCA)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIHqTCCBZGgAwIBAgIQYwaGp8U3ZaVDkKhqWMzUMjANBgkqhkiG9w0BAQUFADCB
jzELMAkGA1UEBhMCTFYxNTAzBgNVBAoTLFZBUyBMYXR2aWphcyBQYXN0cyAtIFZp
ZW4ucmVnLk5yLjQwMDAzMDUyNzkwMSMwIQYDVQQLExpTZXJ0aWZpa2FjaWphcyBw
YWthbHBvanVtaTEkMCIGA1UEAxMbVkFTIExhdHZpamFzIFBhc3RzIFNTSShSQ0Ep
MB4XDTA2MDkxMzA5MjIxMFoXDTI0MDkxMzA5Mjc1N1owgY8xCzAJBgNVBAYTAkxW
MTUwMwYDVQQKEyxWQVMgTGF0dmlqYXMgUGFzdHMgLSBWaWVuLnJlZy5Oci40MDAw
MzA1Mjc5MDEjMCEGA1UECxMaU2VydGlmaWthY2lqYXMgcGFrYWxwb2p1bWkxJDAi
BgNVBAMTG1ZBUyBMYXR2aWphcyBQYXN0cyBTU0koUkNBKTCCAiIwDQYJKoZIhvcN
AQEBBQADggIPADCCAgoCggIBAJu4+f1hVS9PpKUUtS6OuSSPrPuxVD9A/0/F5YZo
e1OT+zWCNahQLpRSoNuDPnXaFXCsCc/ugkmtNkm5tHGLtAChQgbKCApjl7YI/O60
3Jh4GYLJ+H9kPqrJ/rGN67Bk9bzzxD46kOpOjj8bGbxqg8ORPGxV+wpSwOjhXXeF
M8VJ3+xqv79sN/6OSaIVGM6LjmseOKMwb4iBfnJWRBrEejkP9sSPltSy6wBOXN67
5zu35iQFk2tN5pFEv+6YG8eFGxFBeyI2p74+6Ho33BjekJ2PzbLXmj/iF39bDOHv
P2Y9biTksM7DDIhslNo4JXxSOeNzFLMARWOaDEJAXgTG93JkzsluM7Pk020klTeT
fvIAXRmLH/NDc6ifRdIGqey0Qrv67gzHTz9RH9Gv0KwYf4eBIv6p3QeWbXz4TtlN
OlBp1UF+xdp02I5z5X6D4cMZgbe9v0COvi6aogyqTgIuuyrhCF0xA8msJ7Cv3NXI
FH1AnVWJIfmQzNTJYEFzq+jN2DpVOQqCmf6b9fU8HJHLwPpGVK4h/CqsXHveepdx
/WxrzUiapNuBfBg3L5B9YZS9F8lctlQWd8oJSqrpvE+UdQFaVryS0o+515feVnQB
9xZxSbH1GEaZQe5i4bMsZXVpKXJDA/ibH/o49J7sQBCOrJfVsDO+nxjcLfdBeFRK
YkTnAgMBAAGjggH9MIIB+TAOBgNVHQ8BAf8EBAMCAQYwGAYIKwYBBQUHAQMEDDAK
MAgGBgQAjkYBATAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBTMw/Vm/3OsOFqW
GyGJuIFMH8teJTAQBgkrBgEEAYI3FQEEAwIBADCCAYkGA1UdIASCAYAwggF8MIIB
eAYLKwYBBAGBxFkBAQIwggFnMIIBOAYIKwYBBQUHAgIwggEqHoIBJgBTAGkAcwAg
AGkAcgAgAHMAZQByAHQAaQBmAGkAawBhAHQAcwAsACAAawBvACAAaQB6AGQAZQB2
AGkAcwAgAFYAQQBTACAATABhAHQAdgBpAGoAYQBzACAAUABhAHMAdABzACwAIABu
AG8AZAByAG8AcwBpAG4AbwB0ACAAYQB0AGIAaQBsAHMAdABpAGIAdQAgAEUAbABl
AGsAdAByAG8AbgBpAHMAawBvACAAZABvAGsAdQBtAGUAbgB0AHUAIABsAGkAawB1
AG0AYQBtACAAdQBuACAARQBpAHIAbwBwAGEAcwAgAFAAYQByAGwAYQBtAGUAbgB0
AGEAIABkAGkAcgBlAGsAdABpAHYAYQBpACAAMQA5ADkAOQAvADkAMwAvAEUASzAp
BggrBgEFBQcCARYdaHR0cDovL3d3dy5lLW1lLmx2L3JlcG9zaXRvcnkwDQYJKoZI
hvcNAQEFBQADggIBAB8oSjWQIWNoCi94r6MegiaXoz8nGdJLo0J6BhNlW8EEy+t9
fO+U8vGJ9bffUgIhadLqljTloM+XuJxVDhCFoxReLAX4tTp28/l6uN62DCdp8suU
kQsdudWOb5kvzfIZVjk6SFbwAf+Cdbay/dHU9fJjV0xNoX7MELoEae/0FPyzlx9F
7m9KKH/Rxie8x6Opa3vtghNvq94P+3HrXBEaqSzQMJ/8NjdW75XpurcTtq6fAmGt
nuxrBG82nw+Z98LJyEwouSjUIdeeVNXAzvSO5FWUe48kxjj8q3qkVnc9qEXvZJKk
0Ep+u3OL9A1Sc7g6SF5DgNOpcHdi/8coHHMeQ+YnJFtJueY2pI79xS0veqV5EnrX
IbIlbcgPosNhS+VI4le6n/KKId3bZPDaGd/OwJuAOcJ3d2MVU3KE+qSPBzeGIX1Q
+j1qN9uRDjez/c4Lynth0Jx0nH04aG3pex3W8Sq07ztgUncF5gLCX4xbvPB9t3PH
kWuyKrNjozTVq60lcUf/Gj56to2VdsPups0DCWzuRWeYz5lIdsHOinSaaFIBNCLI
7eIUC4S9bhCMsXKbvugI11fVf+q0AT1O5OLoZ+eMfunnQhHvlUbIkda+JxeAGTSY
58bfHvwhX56GPbx+8Jy9cp70R4JbcWfz+txUTKhc2FnH0AcOEzMnvPRp8Gsh
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            63:06:86:a7:c5:37:65:a5:43:90:a8:6a:58:cc:d4:32
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = LV, O = VAS Latvijas Pasts - Vien.reg.Nr.40003052790, OU = Sertifikacijas pakalpojumi, CN = VAS Latvijas Pasts SSI(RCA)
#        Validity
#            Not Before: Sep 13 09:22:10 2006 GMT
#            Not After : Sep 13 09:27:57 2024 GMT
#        Subject: C = LV, O = VAS Latvijas Pasts - Vien.reg.Nr.40003052790, OU = Sertifikacijas pakalpojumi, CN = VAS Latvijas Pasts SSI(RCA)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:9b:b8:f9:fd:61:55:2f:4f:a4:a5:14:b5:2e:8e:
#                    b9:24:8f:ac:fb:b1:54:3f:40:ff:4f:c5:e5:86:68:
#                    7b:53:93:fb:35:82:35:a8:50:2e:94:52:a0:db:83:
#                    3e:75:da:15:70:ac:09:cf:ee:82:49:ad:36:49:b9:
#                    b4:71:8b:b4:00:a1:42:06:ca:08:0a:63:97:b6:08:
#                    fc:ee:b4:dc:98:78:19:82:c9:f8:7f:64:3e:aa:c9:
#                    fe:b1:8d:eb:b0:64:f5:bc:f3:c4:3e:3a:90:ea:4e:
#                    8e:3f:1b:19:bc:6a:83:c3:91:3c:6c:55:fb:0a:52:
#                    c0:e8:e1:5d:77:85:33:c5:49:df:ec:6a:bf:bf:6c:
#                    37:fe:8e:49:a2:15:18:ce:8b:8e:6b:1e:38:a3:30:
#                    6f:88:81:7e:72:56:44:1a:c4:7a:39:0f:f6:c4:8f:
#                    96:d4:b2:eb:00:4e:5c:de:bb:e7:3b:b7:e6:24:05:
#                    93:6b:4d:e6:91:44:bf:ee:98:1b:c7:85:1b:11:41:
#                    7b:22:36:a7:be:3e:e8:7a:37:dc:18:de:90:9d:8f:
#                    cd:b2:d7:9a:3f:e2:17:7f:5b:0c:e1:ef:3f:66:3d:
#                    6e:24:e4:b0:ce:c3:0c:88:6c:94:da:38:25:7c:52:
#                    39:e3:73:14:b3:00:45:63:9a:0c:42:40:5e:04:c6:
#                    f7:72:64:ce:c9:6e:33:b3:e4:d3:6d:24:95:37:93:
#                    7e:f2:00:5d:19:8b:1f:f3:43:73:a8:9f:45:d2:06:
#                    a9:ec:b4:42:bb:fa:ee:0c:c7:4f:3f:51:1f:d1:af:
#                    d0:ac:18:7f:87:81:22:fe:a9:dd:07:96:6d:7c:f8:
#                    4e:d9:4d:3a:50:69:d5:41:7e:c5:da:74:d8:8e:73:
#                    e5:7e:83:e1:c3:19:81:b7:bd:bf:40:8e:be:2e:9a:
#                    a2:0c:aa:4e:02:2e:bb:2a:e1:08:5d:31:03:c9:ac:
#                    27:b0:af:dc:d5:c8:14:7d:40:9d:55:89:21:f9:90:
#                    cc:d4:c9:60:41:73:ab:e8:cd:d8:3a:55:39:0a:82:
#                    99:fe:9b:f5:f5:3c:1c:91:cb:c0:fa:46:54:ae:21:
#                    fc:2a:ac:5c:7b:de:7a:97:71:fd:6c:6b:cd:48:9a:
#                    a4:db:81:7c:18:37:2f:90:7d:61:94:bd:17:c9:5c:
#                    b6:54:16:77:ca:09:4a:aa:e9:bc:4f:94:75:01:5a:
#                    56:bc:92:d2:8f:b9:d7:97:de:56:74:01:f7:16:71:
#                    49:b1:f5:18:46:99:41:ee:62:e1:b3:2c:65:75:69:
#                    29:72:43:03:f8:9b:1f:fa:38:f4:9e:ec:40:10:8e:
#                    ac:97:d5:b0:33:be:9f:18:dc:2d:f7:41:78:54:4a:
#                    62:44:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            qcStatements: 
#                0
#0......F..
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                CC:C3:F5:66:FF:73:AC:38:5A:96:1B:21:89:B8:81:4C:1F:CB:5E:25
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.25177.1.1.2
#                  User Notice:
#                    Explicit Text: 
#                  CPS: http://www.e-me.lv/repository
#
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:28:4a:35:90:21:63:68:0a:2f:78:af:a3:1e:82:26:97:a3:
#         3f:27:19:d2:4b:a3:42:7a:06:13:65:5b:c1:04:cb:eb:7d:7c:
#         ef:94:f2:f1:89:f5:b7:df:52:02:21:69:d2:ea:96:34:e5:a0:
#         cf:97:b8:9c:55:0e:10:85:a3:14:5e:2c:05:f8:b5:3a:76:f3:
#         f9:7a:b8:de:b6:0c:27:69:f2:cb:94:91:0b:1d:b9:d5:8e:6f:
#         99:2f:cd:f2:19:56:39:3a:48:56:f0:01:ff:82:75:b6:b2:fd:
#         d1:d4:f5:f2:63:57:4c:4d:a1:7e:cc:10:ba:04:69:ef:f4:14:
#         fc:b3:97:1f:45:ee:6f:4a:28:7f:d1:c6:27:bc:c7:a3:a9:6b:
#         7b:ed:82:13:6f:ab:de:0f:fb:71:eb:5c:11:1a:a9:2c:d0:30:
#         9f:fc:36:37:56:ef:95:e9:ba:b7:13:b6:ae:9f:02:61:ad:9e:
#         ec:6b:04:6f:36:9f:0f:99:f7:c2:c9:c8:4c:28:b9:28:d4:21:
#         d7:9e:54:d5:c0:ce:f4:8e:e4:55:94:7b:8f:24:c6:38:fc:ab:
#         7a:a4:56:77:3d:a8:45:ef:64:92:a4:d0:4a:7e:bb:73:8b:f4:
#         0d:52:73:b8:3a:48:5e:43:80:d3:a9:70:77:62:ff:c7:28:1c:
#         73:1e:43:e6:27:24:5b:49:b9:e6:36:a4:8e:fd:c5:2d:2f:7a:
#         a5:79:12:7a:d7:21:b2:25:6d:c8:0f:a2:c3:61:4b:e5:48:e2:
#         57:ba:9f:f2:8a:21:dd:db:64:f0:da:19:df:ce:c0:9b:80:39:
#         c2:77:77:63:15:53:72:84:fa:a4:8f:07:37:86:21:7d:50:fa:
#         3d:6a:37:db:91:0e:37:b3:fd:ce:0b:ca:7b:61:d0:9c:74:9c:
#         7d:38:68:6d:e9:7b:1d:d6:f1:2a:b4:ef:3b:60:52:77:05:e6:
#         02:c2:5f:8c:5b:bc:f0:7d:b7:73:c7:91:6b:b2:2a:b3:63:a3:
#         34:d5:ab:ad:25:71:47:ff:1a:3e:7a:b6:8d:95:76:c3:ee:a6:
#         cd:03:09:6c:ee:45:67:98:cf:99:48:76:c1:ce:8a:74:9a:68:
#         52:01:34:22:c8:ed:e2:14:0b:84:bd:6e:10:8c:b1:72:9b:be:
#         e8:08:d7:57:d5:7f:ea:b4:01:3d:4e:e4:e2:e8:67:e7:8c:7e:
#         e9:e7:42:11:ef:95:46:c8:91:d6:be:27:17:80:19:34:98:e7:
#         c6:df:1e:fc:21:5f:9e:86:3d:bc:7e:f0:9c:bd:72:9e:f4:47:
#         82:5b:71:67:f3:fa:dc:54:4c:a8:5c:d8:59:c7:d0:07:0e:13:
#         33:27:bc:f4:69:f0:6b:21

[p11-kit-object-v1]
label: "VI Registru Centras RCSC (RootCA)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VI Registru Centras RCSC (RootCA)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            03:a3:a4:57:b5:f0:f3:86:4a:11:63:e8:98:ff:16:9c
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = LT, O = VI Registru Centras - I.k. 124110246, OU = Registru Centro Sertifikavimo Centras, CN = VI Registru Centras RCSC (RootCA)
#        Validity
#            Not Before: Jul 21 11:47:46 2008 GMT
#            Not After : Jul 21 11:47:46 2024 GMT
#        Subject: C = LT, O = VI Registru Centras - I.k. 124110246, OU = Registru Centro Sertifikavimo Centras, CN = VI Registru Centras RCSC (RootCA)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:99:f2:22:c7:b3:87:15:2e:a7:cb:4d:46:ab:
#                    67:97:cf:0f:73:77:03:f7:64:7c:76:48:32:20:f4:
#                    a3:d8:59:9d:14:a9:1f:a0:1e:91:0e:0d:ad:f5:fe:
#                    67:92:91:13:20:21:4d:0a:55:6e:71:fa:ac:17:cb:
#                    00:fd:0e:50:02:33:db:a9:d8:bd:61:1a:fd:e0:10:
#                    57:b1:55:79:60:19:b4:54:79:9e:fb:80:30:e2:c8:
#                    42:c9:52:02:08:d8:ac:2f:c3:71:41:54:02:f5:81:
#                    8a:12:e3:69:02:a5:87:a1:70:7d:05:be:a5:62:bf:
#                    05:b0:08:96:47:6f:7f:93:8a:ad:e0:ac:d3:42:de:
#                    bd:e6:8f:14:e5:73:28:a0:03:9b:41:fa:e5:3e:f7:
#                    39:74:2e:64:f4:9f:4b:c0:f5:78:99:54:6b:e5:15:
#                    20:fc:e9:32:72:40:ab:65:75:bc:3c:46:34:d2:f8:
#                    10:61:c7:0c:78:c7:7c:c0:11:51:d1:05:36:fb:f8:
#                    9c:ff:2d:b8:e5:71:2d:49:f0:57:48:b3:93:8e:9c:
#                    fb:3a:c9:4b:6d:31:d7:52:d5:56:e9:84:2e:91:d4:
#                    02:1d:b2:80:05:81:c5:80:ca:29:c1:34:67:b9:af:
#                    04:30:43:f6:af:42:47:de:fc:01:2e:e8:42:9c:be:
#                    b2:0b:14:e4:34:dc:dd:ad:53:84:7a:d8:03:56:d1:
#                    c2:0c:d4:97:29:f8:4c:f2:b5:1c:df:9d:83:ae:5f:
#                    5a:25:4b:a2:b0:28:e5:bf:5a:0b:d0:9c:a8:9c:70:
#                    2a:6d:0e:2e:e1:27:bf:ad:0b:6f:11:d3:f8:46:2d:
#                    f4:97:44:4b:ca:b0:c8:e6:36:6f:22:ba:8e:e4:52:
#                    95:16:ec:44:6a:d4:50:1e:98:28:f9:68:a4:ba:de:
#                    9e:30:ed:a2:c9:52:a1:c9:35:8a:40:e1:8d:9b:9b:
#                    fd:f1:46:8b:a4:c7:4f:70:60:51:8d:f2:92:a9:ce:
#                    ba:8c:2f:49:52:12:67:d0:f5:ab:04:25:40:74:03:
#                    e2:d8:ad:a1:74:58:61:b7:b5:0e:f3:7f:25:2c:11:
#                    63:af:f1:12:c3:f4:a4:73:9a:64:ac:ee:a6:06:8f:
#                    f2:bc:9c:ac:28:a9:5c:15:d3:33:ad:d0:36:c8:21:
#                    70:6b:bc:2a:1f:d5:ab:b8:01:58:76:fc:3b:11:4d:
#                    fb:f2:1c:48:24:11:fd:4d:8f:19:29:ae:6b:e8:6d:
#                    5e:b2:a1:0d:78:ce:d2:63:83:74:b4:cd:29:4c:bf:
#                    9b:70:88:4f:12:0d:45:e7:be:0f:65:c4:d6:38:24:
#                    e4:4a:15:8b:d1:6a:ea:bb:36:a1:a1:90:a5:53:c8:
#                    a5:d6:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            qcStatements: 
#                0!0......F..0......F....
#0......F..
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                BC:73:3E:2F:9C:91:0C:BB:8F:CD:77:99:3E:CC:85:E4:CC:58:68:11
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.30903.1.1.1
#                  CPS: http://www.rcsc.lt/repository
#
#    Signature Algorithm: sha1WithRSAEncryption
#         19:78:2c:51:13:5f:bc:99:4e:5c:a7:01:fc:de:b6:fe:a9:1d:
#         86:31:11:7b:7a:99:8a:b3:88:92:a5:60:d2:04:63:39:bc:af:
#         8e:d8:f1:2b:45:72:32:29:3c:2d:e2:d9:d8:3d:74:fa:47:35:
#         87:dc:10:00:36:41:3d:ed:aa:7e:b2:cc:c4:1a:e9:31:b4:f5:
#         91:d1:84:4a:e7:f5:dc:cf:46:67:02:99:af:b8:77:fa:7e:ed:
#         21:6f:96:23:14:71:3f:d0:58:be:aa:db:43:2c:37:a0:1d:06:
#         69:34:f0:4f:8f:75:ee:b3:d2:01:bb:ec:1c:e9:8f:a9:89:ef:
#         f8:d4:1b:41:02:99:be:f0:5f:ba:8e:2c:c2:21:70:de:51:81:
#         d8:f7:bc:b8:c3:33:83:c3:97:ca:09:73:c4:e9:77:c8:72:f4:
#         5c:ad:0f:0d:8a:ea:ed:d2:0a:01:ce:eb:57:9d:15:f0:29:15:
#         ef:59:9c:af:ac:92:82:70:0c:98:d8:22:9d:2f:98:35:a9:d1:
#         8a:89:bc:d5:9d:55:c2:2e:9e:07:25:46:f6:92:4d:50:fa:3d:
#         89:f2:df:93:bf:93:94:d0:d9:af:57:a3:f3:66:e6:8e:f1:e8:
#         a0:1b:18:06:93:5a:2c:89:0d:36:c4:fa:20:b3:dc:28:f5:6a:
#         ee:8f:31:9b:59:38:d8:4e:6a:a0:23:21:e4:86:ab:e5:fb:60:
#         a3:d1:cd:5a:2c:42:49:a6:0e:55:24:25:35:fd:d2:3a:af:6b:
#         58:a6:91:46:5f:69:cb:bd:7e:26:9b:de:08:bd:1e:ec:9e:a6:
#         f8:9c:75:a4:40:36:95:4b:22:4f:c6:b6:7d:72:51:bc:e3:c2:
#         68:cd:cd:e5:8b:be:c0:c2:4f:9b:6e:65:ce:16:b7:08:88:c7:
#         87:de:ff:32:8c:cb:eb:42:41:ac:fb:d7:cf:01:43:f8:6f:c0:
#         d6:0b:f0:f7:92:e9:cb:45:5d:64:b1:f7:ca:3c:bb:89:08:96:
#         c9:da:0e:e1:71:2a:0f:ec:a4:42:2d:e3:6a:0f:47:47:b0:53:
#         a6:d6:85:50:97:30:d7:8c:2e:5f:46:22:d0:ac:ce:3c:5e:9c:
#         1e:72:83:fd:0c:a7:f8:17:32:bb:61:de:e3:4f:2f:18:8e:82:
#         b5:87:1b:74:05:30:4a:bf:6a:1e:48:3c:54:28:b1:5d:9d:92:
#         5f:9b:10:e3:2e:22:8a:af:dd:36:64:7f:13:76:47:83:35:95:
#         1a:94:8f:f5:c4:53:6d:39:bd:d5:8b:f5:ca:cf:18:43:05:01:
#         93:a4:36:de:30:d2:14:f3:b0:64:b5:ca:ce:95:f7:ba:74:ec:
#         8a:73:3e:52:d3:5e:53:00

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEp1Z6fFLaZJsOLVzYXqySPf4B5hlKPRQD
S/pgJyDZg4lp+lTGmhheVSpk3gb2jUo7rRA8ZT2QiASJ4DBhs65dAad73nyyvspl
YQCGrtqPe9CJrU0dWZpBsbxHgNyeYsP5
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2f:80:fe:23:8c:0e:22:0f:48:67:12:28:91:87:ac:b3
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 2007 VeriSign, Inc. - For authorized use only", CN = VeriSign Class 3 Public Primary Certification Authority - G4
#        Validity
#            Not Before: Nov  5 00:00:00 2007 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 2007 VeriSign, Inc. - For authorized use only", CN = VeriSign Class 3 Public Primary Certification Authority - G4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:a7:56:7a:7c:52:da:64:9b:0e:2d:5c:d8:5e:ac:
#                    92:3d:fe:01:e6:19:4a:3d:14:03:4b:fa:60:27:20:
#                    d9:83:89:69:fa:54:c6:9a:18:5e:55:2a:64:de:06:
#                    f6:8d:4a:3b:ad:10:3c:65:3d:90:88:04:89:e0:30:
#                    61:b3:ae:5d:01:a7:7b:de:7c:b2:be:ca:65:61:00:
#                    86:ae:da:8f:7b:d0:89:ad:4d:1d:59:9a:41:b1:bc:
#                    47:80:dc:9e:62:c3:f9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            1.3.6.1.5.5.7.1.12: 
#                0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
#            X509v3 Subject Key Identifier: 
#                B3:16:91:FD:EE:A6:6E:E4:B5:2E:49:8F:87:78:81:80:EC:E5:B1:B5
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:66:21:0c:18:26:60:5a:38:7b:56:42:e0:a7:fc:
#         36:84:51:91:20:2c:76:4d:43:3d:c4:1d:84:23:d0:ac:d6:7c:
#         35:06:ce:cd:69:bd:90:0d:db:6c:48:42:1d:0e:aa:42:02:31:
#         00:9c:3d:48:39:23:39:58:1a:15:12:59:6a:9e:ef:d5:59:b2:
#         1d:52:2c:99:71:cd:c7:29:df:1b:2a:61:7b:71:d1:de:f3:c0:
#         e5:0d:3a:4a:aa:2d:a7:d8:86:2a:dd:2e:10

[p11-kit-object-v1]
label: "VeriSign Universal Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx2E3XrEBNNti1xWb/1ha
jCMj1mCOkdeQmIN65lgZOIzF9uVkhbSicfvtvbnazU0AtMgtc6XHaXGVHzk8skQH
nOgO+k1KxCHfKWGPMiJhgsWHH26MfF8WIFFE0XBPV+rjHOPMee5Y2A7Cs0WTwCzn
mhcrewA3ekEzeOEz4vMQGn+HLL729fdC4uW/h2KJXwBL38Xd5HVEMkE6HnFuacsL
dUYI0crSK5XQz/u5QGtkjFdN/BMReYTtXlT2NJ8IAfMQJQYXStrxHXpma5hgZqTZ
79IugvHw7wnqRMkVauIDbjPTrJ9VAMf2CGqUuV/c4DPxhGD5WycRtPwW8rtWaoAl
jQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VeriSign Universal Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            40:1a:c4:64:21:b3:13:21:03:0e:bb:e4:12:1a:c5:1d
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 2008 VeriSign, Inc. - For authorized use only", CN = VeriSign Universal Root Certification Authority
#        Validity
#            Not Before: Apr  2 00:00:00 2008 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 2008 VeriSign, Inc. - For authorized use only", CN = VeriSign Universal Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c7:61:37:5e:b1:01:34:db:62:d7:15:9b:ff:58:
#                    5a:8c:23:23:d6:60:8e:91:d7:90:98:83:7a:e6:58:
#                    19:38:8c:c5:f6:e5:64:85:b4:a2:71:fb:ed:bd:b9:
#                    da:cd:4d:00:b4:c8:2d:73:a5:c7:69:71:95:1f:39:
#                    3c:b2:44:07:9c:e8:0e:fa:4d:4a:c4:21:df:29:61:
#                    8f:32:22:61:82:c5:87:1f:6e:8c:7c:5f:16:20:51:
#                    44:d1:70:4f:57:ea:e3:1c:e3:cc:79:ee:58:d8:0e:
#                    c2:b3:45:93:c0:2c:e7:9a:17:2b:7b:00:37:7a:41:
#                    33:78:e1:33:e2:f3:10:1a:7f:87:2c:be:f6:f5:f7:
#                    42:e2:e5:bf:87:62:89:5f:00:4b:df:c5:dd:e4:75:
#                    44:32:41:3a:1e:71:6e:69:cb:0b:75:46:08:d1:ca:
#                    d2:2b:95:d0:cf:fb:b9:40:6b:64:8c:57:4d:fc:13:
#                    11:79:84:ed:5e:54:f6:34:9f:08:01:f3:10:25:06:
#                    17:4a:da:f1:1d:7a:66:6b:98:60:66:a4:d9:ef:d2:
#                    2e:82:f1:f0:ef:09:ea:44:c9:15:6a:e2:03:6e:33:
#                    d3:ac:9f:55:00:c7:f6:08:6a:94:b9:5f:dc:e0:33:
#                    f1:84:60:f9:5b:27:11:b4:fc:16:f2:bb:56:6a:80:
#                    25:8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            1.3.6.1.5.5.7.1.12: 
#                0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
#            X509v3 Subject Key Identifier: 
#                B6:77:FA:69:48:47:9F:53:12:D5:C2:EA:07:32:76:07:D1:97:07:19
#    Signature Algorithm: sha256WithRSAEncryption
#         4a:f8:f8:b0:03:e6:2c:67:7b:e4:94:77:63:cc:6e:4c:f9:7d:
#         0e:0d:dc:c8:b9:35:b9:70:4f:63:fa:24:fa:6c:83:8c:47:9d:
#         3b:63:f3:9a:f9:76:32:95:91:b1:77:bc:ac:9a:be:b1:e4:31:
#         21:c6:81:95:56:5a:0e:b1:c2:d4:b1:a6:59:ac:f1:63:cb:b8:
#         4c:1d:59:90:4a:ef:90:16:28:1f:5a:ae:10:fb:81:50:38:0c:
#         6c:cc:f1:3d:c3:f5:63:e3:b3:e3:21:c9:24:39:e9:fd:15:66:
#         46:f4:1b:11:d0:4d:73:a3:7d:46:f9:3d:ed:a8:5f:62:d4:f1:
#         3f:f8:e0:74:57:2b:18:9d:81:b4:c4:28:da:94:97:a5:70:eb:
#         ac:1d:be:07:11:f0:d5:db:dd:e5:8c:f0:d5:32:b0:83:e6:57:
#         e2:8f:bf:be:a1:aa:bf:3d:1d:b5:d4:38:ea:d7:b0:5c:3a:4f:
#         6a:3f:8f:c0:66:6c:63:aa:e9:d9:a4:16:f4:81:d1:95:14:0e:
#         7d:cd:95:34:d9:d2:8f:70:73:81:7b:9c:7e:bd:98:61:d8:45:
#         87:98:90:c5:eb:86:30:c6:35:bf:f0:ff:c3:55:88:83:4b:ef:
#         05:92:06:71:f2:b8:98:93:b7:ec:cd:82:61:f1:38:e6:4f:97:
#         98:2a:5a:8d

[p11-kit-object-v1]
label: "Verisign Class 1 Public Primary Certification Authority - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3YTUubT5p9jzBHic3j3c
bBMW2XrdJFFmwMcmWQ2sBgjClNEzH/CDNR9uG8jeqm4VTlQn78RtGuwL4w7wRKVX
x0BYHqNHH3HsYPZtlMgYOe3+QhhW3+RMSRB4TgF2NWMSNt1mvAEENqNVaNWiNgms
qyEmVAatP8oU4KzKrQYdleL4nfHgYP/Cf3UrTMza/oeZIeq6/j5U19JZeNs8bs+g
EwAauCeh5L5nlsqgxbOc3cl1nuswml+jzdmueBk/I+lc2ym9rVXIG1SMY/bopurH
NxJcoykeAtnbHzu01w9WR4EVBEqvgyfRxViIwd32qqejGNpoqm0RUeG/ZWuflnbR
PQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Verisign Class 1 Public Primary Certification Authority - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 1 (0x0)
#        Serial Number:
#            8b:5b:75:56:84:54:85:0b:00:cf:af:38:48:ce:b1:a4
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 1999 VeriSign, Inc. - For authorized use only", CN = VeriSign Class 1 Public Primary Certification Authority - G3
#        Validity
#            Not Before: Oct  1 00:00:00 1999 GMT
#            Not After : Jul 16 23:59:59 2036 GMT
#        Subject: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 1999 VeriSign, Inc. - For authorized use only", CN = VeriSign Class 1 Public Primary Certification Authority - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:dd:84:d4:b9:b4:f9:a7:d8:f3:04:78:9c:de:3d:
#                    dc:6c:13:16:d9:7a:dd:24:51:66:c0:c7:26:59:0d:
#                    ac:06:08:c2:94:d1:33:1f:f0:83:35:1f:6e:1b:c8:
#                    de:aa:6e:15:4e:54:27:ef:c4:6d:1a:ec:0b:e3:0e:
#                    f0:44:a5:57:c7:40:58:1e:a3:47:1f:71:ec:60:f6:
#                    6d:94:c8:18:39:ed:fe:42:18:56:df:e4:4c:49:10:
#                    78:4e:01:76:35:63:12:36:dd:66:bc:01:04:36:a3:
#                    55:68:d5:a2:36:09:ac:ab:21:26:54:06:ad:3f:ca:
#                    14:e0:ac:ca:ad:06:1d:95:e2:f8:9d:f1:e0:60:ff:
#                    c2:7f:75:2b:4c:cc:da:fe:87:99:21:ea:ba:fe:3e:
#                    54:d7:d2:59:78:db:3c:6e:cf:a0:13:00:1a:b8:27:
#                    a1:e4:be:67:96:ca:a0:c5:b3:9c:dd:c9:75:9e:eb:
#                    30:9a:5f:a3:cd:d9:ae:78:19:3f:23:e9:5c:db:29:
#                    bd:ad:55:c8:1b:54:8c:63:f6:e8:a6:ea:c7:37:12:
#                    5c:a3:29:1e:02:d9:db:1f:3b:b4:d7:0f:56:47:81:
#                    15:04:4a:af:83:27:d1:c5:58:88:c1:dd:f6:aa:a7:
#                    a3:18:da:68:aa:6d:11:51:e1:bf:65:6b:9f:96:76:
#                    d1:3d
#                Exponent: 65537 (0x10001)
#    Signature Algorithm: sha1WithRSAEncryption
#         ab:66:8d:d7:b3:ba:c7:9a:b6:e6:55:d0:05:f1:9f:31:8d:5a:
#         aa:d9:aa:46:26:0f:71:ed:a5:ad:53:56:62:01:47:2a:44:e9:
#         fe:3f:74:0b:13:9b:b9:f4:4d:1b:b2:d1:5f:b2:b6:d2:88:5c:
#         b3:9f:cd:cb:d4:a7:d9:60:95:84:3a:f8:c1:37:1d:61:ca:e7:
#         b0:c5:e5:91:da:54:a6:ac:31:81:ae:97:de:cd:08:ac:b8:c0:
#         97:80:7f:6e:72:a4:e7:69:13:95:65:1f:c4:93:3c:fd:79:8f:
#         04:d4:3e:4f:ea:f7:9e:ce:cd:67:7c:4f:65:02:ff:91:85:54:
#         73:c7:ff:36:f7:86:2d:ec:d0:5e:4f:ff:11:9f:72:06:d6:b8:
#         1a:f1:4c:0d:26:65:e2:44:80:1e:c7:9f:e3:dd:e8:0a:da:ec:
#         a5:20:80:69:68:a1:4f:7e:e1:6b:cf:07:41:fa:83:8e:bc:38:
#         dd:b0:2e:11:b1:6b:b2:42:cc:9a:bc:f9:48:22:79:4a:19:0f:
#         b2:1c:3e:20:74:d9:6a:c3:be:f2:28:78:13:56:79:4f:6d:50:
#         ea:1b:b0:b5:57:b1:37:66:58:23:f3:dc:0f:df:0a:87:c4:ef:
#         86:05:d5:38:14:60:99:a3:4b:de:06:96:71:2c:f2:db:b6:1f:
#         a4:ef:3f:ee

[p11-kit-object-v1]
label: "Verisign Class 2 Public Primary Certification Authority - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArwoNwtUs22e5LeWUJ92l
vuCwTY+zYVY81nzD9M0+hsuiiOLh2KRpxbXiv8GmR1BeRjmL1Za6tW8UvxDOJxOe
BUebMXoT2B/Z0wI3i60sR/COgQanDTAM6/c8DyAd3HJG7qUCyFvDyVZpTMUYwZF7
C9UTAJu878NIPkZgIIUq1ZC2zYugzDLdt/1AVbJQHFauzI13TccgTacxdu9okoqQ
HgiBVrKtaaNS0MscxCM9H5n+TOgWY47GCI72MfbS+uV23bUckqNJzc0BzWjNqWm6
o+sdDZykIKbBoMXRRkwXbdKsZj+WjOCE1Db/IlnF+RFgqF8EffIa9iVCYQ/ESrg+
iQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Verisign Class 2 Public Primary Certification Authority - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 1 (0x0)
#        Serial Number:
#            61:70:cb:49:8c:5f:98:45:29:e7:b0:a6:d9:50:5b:7a
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 1999 VeriSign, Inc. - For authorized use only", CN = VeriSign Class 2 Public Primary Certification Authority - G3
#        Validity
#            Not Before: Oct  1 00:00:00 1999 GMT
#            Not After : Jul 16 23:59:59 2036 GMT
#        Subject: C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = "(c) 1999 VeriSign, Inc. - For authorized use only", CN = VeriSign Class 2 Public Primary Certification Authority - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:af:0a:0d:c2:d5:2c:db:67:b9:2d:e5:94:27:dd:
#                    a5:be:e0:b0:4d:8f:b3:61:56:3c:d6:7c:c3:f4:cd:
#                    3e:86:cb:a2:88:e2:e1:d8:a4:69:c5:b5:e2:bf:c1:
#                    a6:47:50:5e:46:39:8b:d5:96:ba:b5:6f:14:bf:10:
#                    ce:27:13:9e:05:47:9b:31:7a:13:d8:1f:d9:d3:02:
#                    37:8b:ad:2c:47:f0:8e:81:06:a7:0d:30:0c:eb:f7:
#                    3c:0f:20:1d:dc:72:46:ee:a5:02:c8:5b:c3:c9:56:
#                    69:4c:c5:18:c1:91:7b:0b:d5:13:00:9b:bc:ef:c3:
#                    48:3e:46:60:20:85:2a:d5:90:b6:cd:8b:a0:cc:32:
#                    dd:b7:fd:40:55:b2:50:1c:56:ae:cc:8d:77:4d:c7:
#                    20:4d:a7:31:76:ef:68:92:8a:90:1e:08:81:56:b2:
#                    ad:69:a3:52:d0:cb:1c:c4:23:3d:1f:99:fe:4c:e8:
#                    16:63:8e:c6:08:8e:f6:31:f6:d2:fa:e5:76:dd:b5:
#                    1c:92:a3:49:cd:cd:01:cd:68:cd:a9:69:ba:a3:eb:
#                    1d:0d:9c:a4:20:a6:c1:a0:c5:d1:46:4c:17:6d:d2:
#                    ac:66:3f:96:8c:e0:84:d4:36:ff:22:59:c5:f9:11:
#                    60:a8:5f:04:7d:f2:1a:f6:25:42:61:0f:c4:4a:b8:
#                    3e:89
#                Exponent: 65537 (0x10001)
#    Signature Algorithm: sha1WithRSAEncryption
#         34:26:15:3c:c0:8d:4d:43:49:1d:bd:e9:21:92:d7:66:9c:b7:
#         de:c5:b8:d0:e4:5d:5f:76:22:c0:26:f9:84:3a:3a:f9:8c:b5:
#         fb:ec:60:f1:e8:ce:04:b0:c8:dd:a7:03:8f:30:f3:98:df:a4:
#         e6:a4:31:df:d3:1c:0b:46:dc:72:20:3f:ae:ee:05:3c:a4:33:
#         3f:0b:39:ac:70:78:73:4b:99:2b:df:30:c2:54:b0:a8:3b:55:
#         a1:fe:16:28:cd:42:bd:74:6e:80:db:27:44:a7:ce:44:5d:d4:
#         1b:90:98:0d:1e:42:94:b1:00:2c:04:d0:74:a3:02:05:22:63:
#         63:cd:83:b5:fb:c1:6d:62:6b:69:75:fd:5d:70:41:b9:f5:bf:
#         7c:df:be:c1:32:73:22:21:8b:58:81:7b:15:91:7a:ba:e3:64:
#         48:b0:7f:fb:36:25:da:95:d0:f1:24:14:17:dd:18:80:6b:46:
#         23:39:54:f5:8e:62:09:04:1d:94:90:a6:9b:e6:25:e2:42:45:
#         aa:b8:90:ad:be:08:8f:a9:0b:42:18:94:cf:72:39:e1:b1:43:
#         e0:28:cf:b7:e7:5a:6c:13:6b:49:b3:ff:e3:18:7c:89:8b:33:
#         5d:ac:33:d7:a7:f9:da:3a:55:c9:58:10:f9:aa:ef:5a:b6:cf:
#         4b:4b:df:2a

[p11-kit-object-v1]
label: "Verizon Global Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAigAMcB2/6zSGw5lFNR5/
Q/erbyQtzRnCELuwyilbqSCrq3IsxOICOW2CuMUR6vj7s55i+DMesB/J4/Y32wTI
O2NPNuKFpCUdx2kfBL1oRROWBx+UUPU+xSdUnsBJV0SOB2PUpq7tIpnMTZZpBBNu
domfdBaU+R1UvaK50oMBIgxNRICq/jWJJyWnhonG1RqS44/FlaAUcproVsUCVRyX
+SAu0PU8Exla9uH5CwOCaaeMt9ZvnFY+negqCWBtS+b7i5kU9zRPZVmAjblXyKI1
IdiIcVZd7oJXLSaQGJ+anJyP79TFY6dUfUeRh30aEqgbGG+pb7EnuuQEdM43Hn9m
xQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Verizon Global Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = Verizon Business, OU = OmniRoot, CN = Verizon Global Root CA
#        Validity
#            Not Before: Jul 30 14:27:04 2009 GMT
#            Not After : Jul 30 14:27:04 2034 GMT
#        Subject: C = US, O = Verizon Business, OU = OmniRoot, CN = Verizon Global Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:8a:00:0c:70:1d:bf:eb:34:86:c3:99:45:35:1e:
#                    7f:43:f7:ab:6f:24:2d:cd:19:c2:10:bb:b0:ca:29:
#                    5b:a9:20:ab:ab:72:2c:c4:e2:02:39:6d:82:b8:c5:
#                    11:ea:f8:fb:b3:9e:62:f8:33:1e:b0:1f:c9:e3:f6:
#                    37:db:04:c8:3b:63:4f:36:e2:85:a4:25:1d:c7:69:
#                    1f:04:bd:68:45:13:96:07:1f:94:50:f5:3e:c5:27:
#                    54:9e:c0:49:57:44:8e:07:63:d4:a6:ae:ed:22:99:
#                    cc:4d:96:69:04:13:6e:76:89:9f:74:16:94:f9:1d:
#                    54:bd:a2:b9:d2:83:01:22:0c:4d:44:80:aa:fe:35:
#                    89:27:25:a7:86:89:c6:d5:1a:92:e3:8f:c5:95:a0:
#                    14:72:9a:e8:56:c5:02:55:1c:97:f9:20:2e:d0:f5:
#                    3c:13:19:5a:f6:e1:f9:0b:03:82:69:a7:8c:b7:d6:
#                    6f:9c:56:3e:9d:e8:2a:09:60:6d:4b:e6:fb:8b:99:
#                    14:f7:34:4f:65:59:80:8d:b9:57:c8:a2:35:21:d8:
#                    88:71:56:5d:ee:82:57:2d:26:90:18:9f:9a:9c:9c:
#                    8f:ef:d4:c5:63:a7:54:7d:47:91:87:7d:1a:12:a8:
#                    1b:18:6f:a9:6f:b1:27:ba:e4:04:74:ce:37:1e:7f:
#                    66:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4C:38:11:B8:98:00:5B:5A:2B:70:3E:AA:78:E4:D5:67:67:67:A7:7E
#    Signature Algorithm: sha256WithRSAEncryption
#         01:5f:a0:b1:06:01:f4:79:d7:65:18:60:3e:cf:79:a0:ba:c2:
#         23:4f:23:df:87:96:5f:81:0e:38:15:2e:5c:c8:02:68:29:20:
#         fc:8b:ee:a5:8a:18:81:64:5c:98:35:7e:39:30:82:a4:82:8a:
#         50:b5:ba:c3:e8:5a:d6:a8:9e:e2:c3:17:db:db:c4:eb:b0:0a:
#         20:0d:e9:9e:e3:ff:60:54:47:f1:3b:9d:d4:28:3c:a2:ae:a3:
#         fb:aa:8b:82:22:2a:35:87:90:b8:1c:59:47:90:d5:9d:2e:fa:
#         49:e3:65:a8:36:eb:c7:e4:1c:68:dc:b3:31:6c:ab:4e:ce:24:
#         80:15:c8:10:59:10:11:72:4d:7a:9c:98:9c:c4:fc:61:e0:b3:
#         b2:9d:4e:a0:c6:c2:59:ab:18:d6:a2:55:45:ec:29:aa:25:37:
#         d6:4e:4a:3d:0b:40:c1:e4:93:e4:fc:cd:91:0b:f8:e6:ab:cc:
#         b3:76:c4:62:bf:19:ed:86:b6:79:c3:29:54:54:bc:99:7d:46:
#         57:cf:a6:cf:f4:54:2a:9a:03:65:47:01:a1:42:2a:cb:25:47:
#         6e:7c:5e:00:4b:91:d9:f9:1b:10:06:70:f9:42:15:a6:5f:aa:
#         d7:40:1e:fd:c9:48:9d:97:81:ea:5c:68:c2:a0:e7:89:a1:53:
#         4d:bf:c7:e3

[p11-kit-object-v1]
label: "XRamp Global CA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmCQevRW0ut/HjKUntjgL
afO2TqgsLiEdXETfIV1+I3T+Xn60SremrR+u4AYW4ptb2Wd0a12AjymdhhvZnA2Y
bXYQKFjkZbB/Sph5n+DDMX6AK7WMwEA7EYbQy6KGNmCk1TCCbdlu0A8SBDOXX09h
WvDk+ZGr5x07vOjP9GstNHziSGEcjvNhRMxvoEqplLBN2uepNHpyOKhBzDyUEX3r
yKaMt4bLyjM72T03i/t6PoYs53PXClesZJsZ6/QPBAiKrAMXGWT0WiUijTQssvZo
HRJt04oeFNrEj6biI4XVeg29auDp7OwXu0IbZ6ol7UWDIfzByXzVYj768sUt0/3U
ZQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "XRamp Global CA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            50:94:6c:ec:18:ea:d5:9c:4d:d5:97:ef:75:8f:a0:ad
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = US, OU = www.xrampsecurity.com, O = XRamp Security Services Inc, CN = XRamp Global Certification Authority
#        Validity
#            Not Before: Nov  1 17:14:04 2004 GMT
#            Not After : Jan  1 05:37:19 2035 GMT
#        Subject: C = US, OU = www.xrampsecurity.com, O = XRamp Security Services Inc, CN = XRamp Global Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:98:24:1e:bd:15:b4:ba:df:c7:8c:a5:27:b6:38:
#                    0b:69:f3:b6:4e:a8:2c:2e:21:1d:5c:44:df:21:5d:
#                    7e:23:74:fe:5e:7e:b4:4a:b7:a6:ad:1f:ae:e0:06:
#                    16:e2:9b:5b:d9:67:74:6b:5d:80:8f:29:9d:86:1b:
#                    d9:9c:0d:98:6d:76:10:28:58:e4:65:b0:7f:4a:98:
#                    79:9f:e0:c3:31:7e:80:2b:b5:8c:c0:40:3b:11:86:
#                    d0:cb:a2:86:36:60:a4:d5:30:82:6d:d9:6e:d0:0f:
#                    12:04:33:97:5f:4f:61:5a:f0:e4:f9:91:ab:e7:1d:
#                    3b:bc:e8:cf:f4:6b:2d:34:7c:e2:48:61:1c:8e:f3:
#                    61:44:cc:6f:a0:4a:a9:94:b0:4d:da:e7:a9:34:7a:
#                    72:38:a8:41:cc:3c:94:11:7d:eb:c8:a6:8c:b7:86:
#                    cb:ca:33:3b:d9:3d:37:8b:fb:7a:3e:86:2c:e7:73:
#                    d7:0a:57:ac:64:9b:19:eb:f4:0f:04:08:8a:ac:03:
#                    17:19:64:f4:5a:25:22:8d:34:2c:b2:f6:68:1d:12:
#                    6d:d3:8a:1e:14:da:c4:8f:a6:e2:23:85:d5:7a:0d:
#                    bd:6a:e0:e9:ec:ec:17:bb:42:1b:67:aa:25:ed:45:
#                    83:21:fc:c1:c9:7c:d5:62:3e:fa:f2:c5:2d:d3:fd:
#                    d4:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            1.3.6.1.4.1.311.20.2: 
#                ...C.A
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C6:4F:A2:3D:06:63:84:09:9C:CE:62:E4:04:AC:8D:5C:B5:E9:B6:1B
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.xrampsecurity.com/XGCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         91:15:39:03:01:1b:67:fb:4a:1c:f9:0a:60:5b:a1:da:4d:97:
#         62:f9:24:53:27:d7:82:64:4e:90:2e:c3:49:1b:2b:9a:dc:fc:
#         a8:78:67:35:f1:1d:f0:11:bd:b7:48:e3:10:f6:0d:df:3f:d2:
#         c9:b6:aa:55:a4:48:ba:02:db:de:59:2e:15:5b:3b:9d:16:7d:
#         47:d7:37:ea:5f:4d:76:12:36:bb:1f:d7:a1:81:04:46:20:a3:
#         2c:6d:a9:9e:01:7e:3f:29:ce:00:93:df:fd:c9:92:73:89:89:
#         64:9e:e7:2b:e4:1c:91:2c:d2:b9:ce:7d:ce:6f:31:99:d3:e6:
#         be:d2:1e:90:f0:09:14:79:5c:23:ab:4d:d2:da:21:1f:4d:99:
#         79:9d:e1:cf:27:9f:10:9b:1c:88:0d:b0:8a:64:41:31:b8:0e:
#         6c:90:24:a4:9b:5c:71:8f:ba:bb:7e:1c:1b:db:6a:80:0f:21:
#         bc:e9:db:a6:b7:40:f4:b2:8b:a9:b1:e4:ef:9a:1a:d0:3d:69:
#         99:ee:a8:28:a3:e1:3c:b3:f0:b2:11:9c:cf:7c:40:e6:dd:e7:
#         43:7d:a2:d8:3a:b5:a9:8d:f2:34:99:c4:d4:10:e1:06:fd:09:
#         84:10:3b:ee:c4:4c:f4:ec:27:7c:42:c2:74:7c:82:8a:09:c9:
#         b4:03:25:bc

[p11-kit-object-v1]
label: "certSIGN ROOT CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtzO5fsglSo6127QoG6pX
kOjRItNkutOT6NSshmFAamBXaFSETbxqVAIF/9+bmiquXQePSsMof+/7K/p58cet
8BBTJJCLZsmoiKuvWqMA6b66Ru5bc3ssF4KBXmIsoQJls73FKwB+xPwDM1cN7eL6
zl1F1jjNNbaywdCcgUqq5LIBXB2PX5nEsa3biCHrkAiCgPMwo0PmkIKuVShJ7VvX
qRA4Dv6PTFubRupB9bAIdMPQiDO2fNd039yE0UMOdTmhJUAo6njLDiwuOZ2Mi24W
HC8mghDi42WUCgTAXvddW/gQ4tC6ekv73jcAABpbKOPSnHM+MoeYoclRL9ferDOz
TwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "certSIGN ROOT CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 35210227249154 (0x200605167002)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = RO, O = certSIGN, OU = certSIGN ROOT CA
#        Validity
#            Not Before: Jul  4 17:20:04 2006 GMT
#            Not After : Jul  4 17:20:04 2031 GMT
#        Subject: C = RO, O = certSIGN, OU = certSIGN ROOT CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:33:b9:7e:c8:25:4a:8e:b5:db:b4:28:1b:aa:
#                    57:90:e8:d1:22:d3:64:ba:d3:93:e8:d4:ac:86:61:
#                    40:6a:60:57:68:54:84:4d:bc:6a:54:02:05:ff:df:
#                    9b:9a:2a:ae:5d:07:8f:4a:c3:28:7f:ef:fb:2b:fa:
#                    79:f1:c7:ad:f0:10:53:24:90:8b:66:c9:a8:88:ab:
#                    af:5a:a3:00:e9:be:ba:46:ee:5b:73:7b:2c:17:82:
#                    81:5e:62:2c:a1:02:65:b3:bd:c5:2b:00:7e:c4:fc:
#                    03:33:57:0d:ed:e2:fa:ce:5d:45:d6:38:cd:35:b6:
#                    b2:c1:d0:9c:81:4a:aa:e4:b2:01:5c:1d:8f:5f:99:
#                    c4:b1:ad:db:88:21:eb:90:08:82:80:f3:30:a3:43:
#                    e6:90:82:ae:55:28:49:ed:5b:d7:a9:10:38:0e:fe:
#                    8f:4c:5b:9b:46:ea:41:f5:b0:08:74:c3:d0:88:33:
#                    b6:7c:d7:74:df:dc:84:d1:43:0e:75:39:a1:25:40:
#                    28:ea:78:cb:0e:2c:2e:39:9d:8c:8b:6e:16:1c:2f:
#                    26:82:10:e2:e3:65:94:0a:04:c0:5e:f7:5d:5b:f8:
#                    10:e2:d0:ba:7a:4b:fb:de:37:00:00:1a:5b:28:e3:
#                    d2:9c:73:3e:32:87:98:a1:c9:51:2f:d7:de:ac:33:
#                    b3:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E0:8C:9B:DB:25:49:B3:F1:7C:86:D6:B2:42:87:0B:D0:6B:A0:D9:E4
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:d2:1c:89:2e:35:fc:f8:75:dd:e6:7f:65:88:f4:72:4c:c9:
#         2c:d7:32:4e:f3:dd:19:79:47:bd:8e:3b:5b:93:0f:50:49:24:
#         13:6b:14:06:72:ef:09:d3:a1:a1:e3:40:84:c9:e7:18:32:74:
#         3c:48:6e:0f:9f:4b:d4:f7:1e:d3:93:86:64:54:97:63:72:50:
#         d5:55:cf:fa:20:93:02:a2:9b:c3:23:93:4e:16:55:76:a0:70:
#         79:6d:cd:21:1f:cf:2f:2d:bc:19:e3:88:31:f8:59:1a:81:09:
#         c8:97:a6:74:c7:60:c4:5b:cc:57:8e:b2:75:fd:1b:02:09:db:
#         59:6f:72:93:69:f7:31:41:d6:88:38:bf:87:b2:bd:16:79:f9:
#         aa:e4:be:88:25:dd:61:27:23:1c:b5:31:07:04:36:b4:1a:90:
#         bd:a0:74:71:50:89:6d:bc:14:e3:0f:86:ae:f1:ab:3e:c7:a0:
#         09:cc:a3:48:d1:e0:db:64:e7:92:b5:cf:af:72:43:70:8b:f9:
#         c3:84:3c:13:aa:7e:92:9b:57:53:93:fa:70:c2:91:0e:31:f9:
#         9b:67:5d:e9:96:38:5e:5f:b3:73:4e:88:15:67:de:9e:76:10:
#         62:20:be:55:69:95:43:00:39:4d:f6:ee:b0:5a:4e:49:44:54:
#         58:5f:42:83

[p11-kit-object-v1]
label: "certSIGN Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "certSIGN Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:00:34:b6:4e:c6:36:2d:36
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = RO, O = CERTSIGN SA, OU = certSIGN ROOT CA G2
#        Validity
#            Not Before: Feb  6 09:27:35 2017 GMT
#            Not After : Feb  6 09:27:35 2042 GMT
#        Subject: C = RO, O = CERTSIGN SA, OU = certSIGN ROOT CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:c5:75:19:91:7d:44:74:74:87:fe:0e:3b:96:
#                    dc:d8:01:16:cc:ee:63:91:e7:0b:6f:ce:3b:0a:69:
#                    1a:7c:c2:e3:af:82:8e:86:d7:5e:8f:57:eb:d3:21:
#                    59:fd:39:37:42:30:be:50:ea:b6:0f:a9:88:d8:2e:
#                    2d:69:21:e7:d1:37:18:4e:7d:91:d5:16:5f:6b:5b:
#                    00:c2:39:43:0d:36:85:52:b9:53:65:0f:1d:42:e5:
#                    8f:cf:05:d3:ee:dc:0c:1a:d9:b8:8b:78:22:67:e4:
#                    69:b0:68:c5:3c:e4:6c:5a:46:e7:cd:c7:fa:ef:c4:
#                    ec:4b:bd:6a:a4:ac:fd:cc:28:51:ef:92:b4:29:ab:
#                    ab:35:9a:4c:e4:c4:08:c6:26:cc:f8:69:9f:e4:9c:
#                    f0:29:d3:5c:f9:c6:16:25:9e:23:c3:20:c1:3d:0f:
#                    3f:38:40:b0:fe:82:44:38:aa:5a:1a:8a:6b:63:58:
#                    38:b4:15:d3:b6:11:69:7b:1e:54:ee:8c:1a:22:ac:
#                    72:97:3f:23:59:9b:c9:22:84:c1:07:4f:cc:7f:e2:
#                    57:ca:12:70:bb:a6:65:f3:69:75:63:bd:95:fb:1b:
#                    97:cd:e4:a8:af:f6:d1:4e:a8:d9:8a:71:24:cd:36:
#                    3d:bc:96:c4:f1:6c:a9:ae:e5:cf:0d:6e:28:0d:b0:
#                    0e:b5:ca:51:7b:78:14:c3:20:2f:7f:fb:14:55:e1:
#                    11:99:fd:d5:0a:a1:9e:02:e3:62:5f:eb:35:4b:2c:
#                    b8:72:e8:3e:3d:4f:ac:2c:bb:2e:86:e2:a3:76:8f:
#                    e5:93:2a:cf:a5:ab:c8:5c:8d:4b:06:ff:12:46:ac:
#                    78:cb:14:07:35:e0:a9:df:8b:e9:af:15:4f:16:89:
#                    5b:bd:f6:8d:c6:59:ae:88:85:0e:c1:89:eb:1f:67:
#                    c5:45:8e:ff:6d:37:36:2b:78:66:83:91:51:2b:3d:
#                    ff:51:77:76:62:a1:ec:67:3e:3e:81:83:e0:56:a9:
#                    50:1f:1f:7a:99:ab:63:bf:84:17:77:f1:0d:3b:df:
#                    f7:9c:61:b3:35:98:8a:3a:b2:ec:3c:1a:37:3f:7e:
#                    8f:92:cf:d9:12:14:64:da:10:02:15:41:ff:4f:c4:
#                    eb:1c:a3:c9:fa:99:f7:46:e9:e1:18:d9:b1:b8:32:
#                    2d:cb:14:0c:50:d8:83:65:83:ee:b9:5c:cf:cb:05:
#                    5a:4c:fa:19:97:6b:d6:5d:13:d3:c2:5c:54:bc:32:
#                    73:a0:78:f5:f1:6d:1e:cb:9f:a5:a6:9f:22:dc:d1:
#                    51:9e:82:79:64:60:29:13:3e:a3:fd:4f:72:6a:ab:
#                    e2:d4:e5:b8:24:55:2c:44:4b:8a:88:44:9c:ca:84:
#                    d3:2a:3b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                82:21:2D:66:C6:D7:A0:E0:15:EB:CE:4C:09:77:C4:60:9E:54:6E:03
#    Signature Algorithm: sha256WithRSAEncryption
#         60:de:1a:b8:e7:f2:60:82:d5:03:33:81:cb:06:8a:f1:22:49:
#         e9:e8:ea:91:7f:c6:33:5e:68:19:03:86:3b:43:01:cf:07:70:
#         e4:08:1e:65:85:91:e6:11:22:b7:f5:02:23:8e:ae:b9:1e:7d:
#         1f:7e:6c:e6:bd:25:d5:95:1a:f2:05:a6:af:85:02:6f:ae:f8:
#         d6:31:ff:25:c9:4a:c8:c7:8a:a9:d9:9f:4b:49:9b:11:57:99:
#         92:43:11:de:b6:33:a4:cc:d7:8d:64:7d:d4:cd:3c:28:2c:b4:
#         9a:96:ea:4d:f5:c4:44:c4:25:aa:20:80:d8:29:55:f7:e0:41:
#         fc:06:26:ff:b9:36:f5:43:14:03:66:78:e1:11:b1:da:20:5f:
#         46:00:78:00:21:a5:1e:00:28:61:78:6f:a8:01:01:8f:9d:34:
#         9a:ff:f4:38:90:fb:b8:d1:b3:72:06:c9:71:e6:81:c5:79:ed:
#         0b:a6:79:f2:13:0b:9c:f7:5d:0e:7b:24:93:b4:48:db:86:5f:
#         de:50:86:78:e7:40:e6:31:a8:90:76:70:61:af:9c:37:2c:11:
#         b5:82:b7:aa:ae:24:34:5b:72:0c:69:0d:cd:59:9f:f6:71:af:
#         9c:0b:d1:0a:38:f9:06:22:83:53:25:0c:fc:51:c4:e6:be:e2:
#         39:95:0b:24:ad:af:d1:95:e4:96:d7:74:64:6b:71:4e:02:3c:
#         aa:85:f3:20:a3:43:39:76:5b:6c:50:fe:9a:9c:14:1e:65:14:
#         8a:15:bd:a3:82:45:5a:49:56:6a:d2:9c:b1:63:32:e5:61:e0:
#         53:22:0e:a7:0a:49:ea:cb:7e:1f:a8:e2:62:80:f6:10:45:52:
#         98:06:18:de:a5:cd:2f:7f:aa:d4:e9:3e:08:72:ec:23:03:02:
#         3c:a6:aa:d8:bc:67:74:3d:14:17:fb:54:4b:17:e3:d3:79:3d:
#         6d:6b:49:c9:28:0e:2e:74:50:bf:0c:d9:46:3a:10:86:c9:a7:
#         3f:e9:a0:ec:7f:eb:a5:77:58:69:71:e6:83:0a:37:f2:86:49:
#         6a:be:79:08:90:f6:02:16:64:3e:e5:da:4c:7e:0c:34:c9:f9:
#         5f:b6:b3:28:51:a7:a7:2b:aa:49:fa:8d:65:29:4e:e3:6b:13:
#         a7:94:a3:2d:51:6d:78:0c:44:cb:df:de:08:6f:ce:a3:64:ab:
#         d3:95:84:d4:b9:52:54:72:7b:96:25:cc:bc:69:e3:48:6e:0d:
#         d0:c7:9d:27:9a:aa:f8:13:92:dd:1e:df:63:9f:35:a9:16:36:
#         ec:8c:b8:83:f4:3d:89:8f:cd:b4:17:5e:d7:b3:17:41:10:5d:
#         27:73:60:85:57:49:22:07

[p11-kit-object-v1]
label: "e-Guven Kok Elektronik Sertifika Hizmet Saglayicisi"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwxIgnrBeAGWNTka7gFzp
LAaX1fNyyXC550tlgMFLvn4811QxlN7VErpTFgLqWGPvW9jz7SoaqnFIo9wQLV9f
61xLnJYIQiUoEcyKWmIBUNXrCVMv+MOP/rP8/Z2i4199vu0L4GDraewz7diN+xJJ
gwDJi5eMO3MqMrMS97lN8vRNbcfm1iY3CPLZ/Wtco+VIXFi8Qr4DWoG6HDUMANP1
I35xMAgmONwlEUct87ojEKW/vAL3Q17H/rA3UJl7D5PO5kMsw34N8hxDZmDLYTFH
h6NPrr1WbEy8vPgFymT06TShLLVz4cI+6MjJNCUIXPPtpseUn62IQyXX4Tlg/qw5
WQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "e-Guven Kok Elektronik Sertifika Hizmet Saglayicisi"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDtjCCAp6gAwIBAgIQRJmNPMADJ72cdpW56tustTANBgkqhkiG9w0BAQUFADB1
MQswCQYDVQQGEwJUUjEoMCYGA1UEChMfRWxla3Ryb25payBCaWxnaSBHdXZlbmxp
Z2kgQS5TLjE8MDoGA1UEAxMzZS1HdXZlbiBLb2sgRWxla3Ryb25payBTZXJ0aWZp
a2EgSGl6bWV0IFNhZ2xheWljaXNpMB4XDTA3MDEwNDExMzI0OFoXDTE3MDEwNDEx
MzI0OFowdTELMAkGA1UEBhMCVFIxKDAmBgNVBAoTH0VsZWt0cm9uaWsgQmlsZ2kg
R3V2ZW5saWdpIEEuUy4xPDA6BgNVBAMTM2UtR3V2ZW4gS29rIEVsZWt0cm9uaWsg
U2VydGlmaWthIEhpem1ldCBTYWdsYXlpY2lzaTCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBAMMSIJ6wXgBljU5Gu4Bc6SwGl9XzcslwuedLZYDBS75+PNdU
MZTe1RK6UxYC6lhj71vY8+0qGqpxSKPcEC1fX+tcS5yWCEIlKBHMilpiAVDV6wlT
L/jDj/6z/P2douNffb7tC+Bg62nsM+3YjfsSSYMAyYuXjDtzKjKzEve5TfL0TW3H
5tYmNwjy2f1rXKPlSFxYvEK+A1qBuhw1DADT9SN+cTAIJjjcJRFHLfO6IxClv7wC
90Nex/6wN1CZew+TzuZDLMN+DfIcQ2Zgy2ExR4ejT669VmxMvLz4Bcpk9Ok0oSy1
c+HCPujIyTQlCFzz7abHlJ+tiEMl1+E5YP6sOVkCAwEAAaNCMEAwDgYDVR0PAQH/
BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFJ/uRLOU1fqRTy7ZVZoE
VtstxNulMA0GCSqGSIb3DQEBBQUAA4IBAQB/X7lTW2M9dTLn+sR0GstG30ZpHFLP
qk/CaOv/gKlR6D1id4k9CnU58W5dF4dvaAXBlGzZXd/aslnLpRCKysw5zZ/rTt5S
/wzw9JKp8mxTq5vSR6AfdPebmvEvFZ96ZDAYBzwqD2fK/A+JYZ1lpTzlvBNbCNvj
/+27BrtqBrF6T2XGgv0enIu1De5Iu7i9qgi0+6N8y5/NkHZchpZ4Vwpm+Vganf2X
KWDeEaaQHBkc7gGWIjQ0LpH5t8Qn0Xvmv/uARFoW5evg1Ao4vOSR49XrXMGs3xtq
fJ7lddK2l4fbzIcrQzqECK+rPNv3PGYxhrCdU3nt+CPeQuMtgvEP5fqX
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            44:99:8d:3c:c0:03:27:bd:9c:76:95:b9:ea:db:ac:b5
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = TR, O = Elektronik Bilgi Guvenligi A.S., CN = e-Guven Kok Elektronik Sertifika Hizmet Saglayicisi
#        Validity
#            Not Before: Jan  4 11:32:48 2007 GMT
#            Not After : Jan  4 11:32:48 2017 GMT
#        Subject: C = TR, O = Elektronik Bilgi Guvenligi A.S., CN = e-Guven Kok Elektronik Sertifika Hizmet Saglayicisi
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:c3:12:20:9e:b0:5e:00:65:8d:4e:46:bb:80:5c:
#                    e9:2c:06:97:d5:f3:72:c9:70:b9:e7:4b:65:80:c1:
#                    4b:be:7e:3c:d7:54:31:94:de:d5:12:ba:53:16:02:
#                    ea:58:63:ef:5b:d8:f3:ed:2a:1a:aa:71:48:a3:dc:
#                    10:2d:5f:5f:eb:5c:4b:9c:96:08:42:25:28:11:cc:
#                    8a:5a:62:01:50:d5:eb:09:53:2f:f8:c3:8f:fe:b3:
#                    fc:fd:9d:a2:e3:5f:7d:be:ed:0b:e0:60:eb:69:ec:
#                    33:ed:d8:8d:fb:12:49:83:00:c9:8b:97:8c:3b:73:
#                    2a:32:b3:12:f7:b9:4d:f2:f4:4d:6d:c7:e6:d6:26:
#                    37:08:f2:d9:fd:6b:5c:a3:e5:48:5c:58:bc:42:be:
#                    03:5a:81:ba:1c:35:0c:00:d3:f5:23:7e:71:30:08:
#                    26:38:dc:25:11:47:2d:f3:ba:23:10:a5:bf:bc:02:
#                    f7:43:5e:c7:fe:b0:37:50:99:7b:0f:93:ce:e6:43:
#                    2c:c3:7e:0d:f2:1c:43:66:60:cb:61:31:47:87:a3:
#                    4f:ae:bd:56:6c:4c:bc:bc:f8:05:ca:64:f4:e9:34:
#                    a1:2c:b5:73:e1:c2:3e:e8:c8:c9:34:25:08:5c:f3:
#                    ed:a6:c7:94:9f:ad:88:43:25:d7:e1:39:60:fe:ac:
#                    39:59
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                9F:EE:44:B3:94:D5:FA:91:4F:2E:D9:55:9A:04:56:DB:2D:C4:DB:A5
#    Signature Algorithm: sha1WithRSAEncryption
#         7f:5f:b9:53:5b:63:3d:75:32:e7:fa:c4:74:1a:cb:46:df:46:
#         69:1c:52:cf:aa:4f:c2:68:eb:ff:80:a9:51:e8:3d:62:77:89:
#         3d:0a:75:39:f1:6e:5d:17:87:6f:68:05:c1:94:6c:d9:5d:df:
#         da:b2:59:cb:a5:10:8a:ca:cc:39:cd:9f:eb:4e:de:52:ff:0c:
#         f0:f4:92:a9:f2:6c:53:ab:9b:d2:47:a0:1f:74:f7:9b:9a:f1:
#         2f:15:9f:7a:64:30:18:07:3c:2a:0f:67:ca:fc:0f:89:61:9d:
#         65:a5:3c:e5:bc:13:5b:08:db:e3:ff:ed:bb:06:bb:6a:06:b1:
#         7a:4f:65:c6:82:fd:1e:9c:8b:b5:0d:ee:48:bb:b8:bd:aa:08:
#         b4:fb:a3:7c:cb:9f:cd:90:76:5c:86:96:78:57:0a:66:f9:58:
#         1a:9d:fd:97:29:60:de:11:a6:90:1c:19:1c:ee:01:96:22:34:
#         34:2e:91:f9:b7:c4:27:d1:7b:e6:bf:fb:80:44:5a:16:e5:eb:
#         e0:d4:0a:38:bc:e4:91:e3:d5:eb:5c:c1:ac:df:1b:6a:7c:9e:
#         e5:75:d2:b6:97:87:db:cc:87:2b:43:3a:84:08:af:ab:3c:db:
#         f7:3c:66:31:86:b0:9d:53:79:ed:f8:23:de:42:e3:2d:82:f1:
#         0f:e5:fa:97

[p11-kit-object-v1]
label: "e-Szigno Root CA 2017"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEltw9itiwe2/GJ75EkLGzVhV7jkMk
fRqEWe5jaLLGXofQFUgeqJCtvVOi2t46kKZgX2gytYZB34dbLHvF/nx62g==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "e-Szigno Root CA 2017"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:54:48:ef:21:fd:97:59:0d:f5:04:0a
#        Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C = HU, L = Budapest, O = Microsec Ltd., organizationIdentifier = VATHU-23584497, CN = e-Szigno Root CA 2017
#        Validity
#            Not Before: Aug 22 12:07:06 2017 GMT
#            Not After : Aug 22 12:07:06 2042 GMT
#        Subject: C = HU, L = Budapest, O = Microsec Ltd., organizationIdentifier = VATHU-23584497, CN = e-Szigno Root CA 2017
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub:
#                    04:96:dc:3d:8a:d8:b0:7b:6f:c6:27:be:44:90:b1:
#                    b3:56:15:7b:8e:43:24:7d:1a:84:59:ee:63:68:b2:
#                    c6:5e:87:d0:15:48:1e:a8:90:ad:bd:53:a2:da:de:
#                    3a:90:a6:60:5f:68:32:b5:86:41:df:87:5b:2c:7b:
#                    c5:fe:7c:7a:da
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                87:11:15:08:D1:AA:C1:78:0C:B1:AF:CE:C6:C9:90:EF:BF:30:04:C0
#            X509v3 Authority Key Identifier: 
#                keyid:87:11:15:08:D1:AA:C1:78:0C:B1:AF:CE:C6:C9:90:EF:BF:30:04:C0
#
#    Signature Algorithm: ecdsa-with-SHA256
#         30:46:02:21:00:b5:57:dd:d7:8a:55:0b:36:e1:86:44:fa:d4:
#         d9:68:8d:b8:dc:23:8a:8a:0d:d4:2f:7d:ea:73:ec:bf:4d:6c:
#         a8:02:21:00:cb:a5:b4:12:fa:e7:b5:e8:cf:7e:93:fc:f3:35:
#         8f:6f:4e:5a:7c:b4:bc:4e:b2:fc:72:aa:5b:59:f9:e7:dc:31

[p11-kit-object-v1]
label: "ePKI EV SSL Certification Authority - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmoRYJ16eHvln9x6cKoM4
Omjus19z5Y36tXecpQCvfJMpQu7A/98N2R1IL9DKDzRzFdN2u6HiaETPhq7qUD3z
WKVT5B608KMRXR/kQ+uWvop/W5cW4IpDkvz4tDFOBsfDVSAFS4SvqQqIvPDG5D4K
2Cl34BsxeS1rQcIaf+QtCsMAC0keKlXtmHdelfOc1NhUIR3JEozfe2wrgzZsvvw/
EI4WKbdFYSBP5M7R2nExKhMB+p+Y6tTop3WFJuvOiePkegG/MB75ph/LbSp5PiHs
WifhQV/x6fR5TG3lBBoWWPbwZ1DuHWnWn7FH9Jfr6NiTK4+PAO7AkHQZ74ByDO/z
+wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ePKI EV SSL Certification Authority - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            f7:4e:18:0c:99:e2:7b:8d:9f:79:4f:b1:b7:c0:bf:48
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TW, O = "Chunghwa Telecom Co., Ltd.", CN = ePKI Root Certification Authority - G2
#        Validity
#            Not Before: Feb  4 03:06:31 2016 GMT
#            Not After : Feb  4 03:06:31 2030 GMT
#        Subject: C = TW, O = "Chunghwa Telecom Co., Ltd.", CN = ePKI EV SSL Certification Authority - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:9a:84:58:27:5e:9e:1e:f9:67:f7:1e:9c:2a:83:
#                    38:3a:68:ee:b3:5f:73:e5:8d:fa:b5:77:9c:a5:00:
#                    af:7c:93:29:42:ee:c0:ff:df:0d:d9:1d:48:2f:d0:
#                    ca:0f:34:73:15:d3:76:bb:a1:e2:68:44:cf:86:ae:
#                    ea:50:3d:f3:58:a5:53:e4:1e:b4:f0:a3:11:5d:1f:
#                    e4:43:eb:96:be:8a:7f:5b:97:16:e0:8a:43:92:fc:
#                    f8:b4:31:4e:06:c7:c3:55:20:05:4b:84:af:a9:0a:
#                    88:bc:f0:c6:e4:3e:0a:d8:29:77:e0:1b:31:79:2d:
#                    6b:41:c2:1a:7f:e4:2d:0a:c3:00:0b:49:1e:2a:55:
#                    ed:98:77:5e:95:f3:9c:d4:d8:54:21:1d:c9:12:8c:
#                    df:7b:6c:2b:83:36:6c:be:fc:3f:10:8e:16:29:b7:
#                    45:61:20:4f:e4:ce:d1:da:71:31:2a:13:01:fa:9f:
#                    98:ea:d4:e8:a7:75:85:26:eb:ce:89:e3:e4:7a:01:
#                    bf:30:1e:f9:a6:1f:cb:6d:2a:79:3e:21:ec:5a:27:
#                    e1:41:5f:f1:e9:f4:79:4c:6d:e5:04:1a:16:58:f6:
#                    f0:67:50:ee:1d:69:d6:9f:b1:47:f4:97:eb:e8:d8:
#                    93:2b:8f:8f:00:ee:c0:90:74:19:ef:80:72:0c:ef:
#                    f3:fb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:72:5B:BA:AA:72:38:EE:25:90:24:B5:94:22:FA:09:88:CA:8B:0A:FB
#
#            X509v3 Subject Key Identifier: 
#                59:38:AA:5B:50:81:EC:D2:28:0A:37:E3:0A:A4:06:84:A9:92:99:39
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://eca.hinet.net/repository/CRL2/CA.crl
#
#            Authority Information Access: 
#                CA Issuers - URI:http://eca.hinet.net/repository/Certs/IssuedToThisCA.p7b
#                OCSP - URI:http://ocsp.eca.hinet.net/OCSP/ocspG2sha2
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:0
#            X509v3 Certificate Policies: 
#                Policy: 2.23.140.1.1
#                  CPS: https://eca.hinet.net/repository
#
#    Signature Algorithm: sha256WithRSAEncryption
#         14:7e:41:a1:95:70:e3:c3:16:60:d1:6b:3c:06:fb:15:a9:53:
#         ce:d5:3a:f9:02:16:08:22:6b:d5:d8:aa:de:4d:8a:1b:53:61:
#         dd:be:87:5c:1d:a7:7f:bf:35:54:a8:66:25:df:6f:29:0f:d6:
#         9e:3e:c7:74:33:99:90:7d:88:cc:61:e6:69:38:30:5e:8e:68:
#         13:0b:ce:53:4b:88:d8:d4:db:8e:b4:b1:13:9b:cf:a3:27:00:
#         3a:dc:d2:42:79:26:76:33:37:6f:66:b9:1b:10:3a:cc:b8:0b:
#         ed:93:d1:a0:bc:e6:36:d3:af:31:74:97:7c:78:60:3d:8a:aa:
#         b4:53:8d:73:4d:f9:18:0e:c3:e4:17:aa:50:e9:18:0b:30:eb:
#         16:e3:70:bb:4f:da:75:b1:3b:44:5a:b5:40:b1:d2:95:c4:80:
#         01:b4:14:af:7b:45:3d:8d:37:26:80:cb:33:2e:fa:8a:04:3e:
#         18:2a:7d:34:d5:2e:a2:79:3a:63:ab:cd:9b:20:c5:55:83:80:
#         5e:d1:b0:bb:b3:ba:93:7b:3b:8d:51:5b:2c:7b:8b:ff:a6:ab:
#         dc:1c:19:64:5e:a5:11:96:74:99:1c:0e:9c:0e:0d:7b:e8:d8:
#         f3:93:9d:5a:c8:a4:ee:cd:14:08:e5:e3:42:eb:9d:8a:54:db:
#         33:ec:e4:ea:5b:70:56:06:b3:7b:58:2b:d8:e5:0d:b1:da:e4:
#         d3:a4:57:60:e9:4b:a3:9e:3f:e2:6d:e6:83:30:20:c6:dd:99:
#         be:b5:d7:2f:33:aa:03:4f:f5:8b:60:c1:32:c4:00:74:a8:b5:
#         c8:35:d7:42:d0:04:7c:e8:36:1f:03:0e:c3:f4:2f:d6:3c:cf:
#         2d:ef:8c:c2:34:55:60:57:67:e6:1b:74:75:a9:22:45:cb:ce:
#         6c:65:79:87:41:91:36:c5:ec:24:86:f7:d2:50:61:d7:ad:9c:
#         e1:ab:30:e6:f9:33:0a:07:41:28:f8:b8:13:78:e1:bf:17:1d:
#         5e:19:b5:4a:97:ab:e3:e6:92:0c:80:91:ec:ab:7a:ca:94:6e:
#         04:9e:63:0c:21:46:90:5a:93:9c:91:33:f8:44:5c:ad:78:cc:
#         9a:43:d6:e7:8a:df:e9:ba:77:cc:37:1d:c8:3d:c2:46:e5:19:
#         53:b0:9c:e1:e5:bd:d2:27:d1:6a:1c:bb:ae:50:b5:eb:58:d6:
#         b1:71:ea:d8:99:d5:2e:49:3f:53:ba:b9:84:48:b4:d1:0e:83:
#         e3:f7:45:d3:c1:aa:c4:81:5e:10:8d:5c:be:ad:d2:de:82:b8:
#         18:72:bb:64:1a:cd:7b:1b:25:db:a2:82:8a:d4:cd:62:6f:5c:
#         31:3c:57:76:f9:0f:25:77

[p11-kit-object-v1]
label: "ePKI Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ePKI Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFsDCCA5igAwIBAgIQFci9ZUdcr7iXAF7kBtK8nTANBgkqhkiG9w0BAQUFADBe
MQswCQYDVQQGEwJUVzEjMCEGA1UECgwaQ2h1bmdod2EgVGVsZWNvbSBDby4sIEx0
ZC4xKjAoBgNVBAsMIWVQS0kgUm9vdCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAe
Fw0wNDEyMjAwMjMxMjdaFw0zNDEyMjAwMjMxMjdaMF4xCzAJBgNVBAYTAlRXMSMw
IQYDVQQKDBpDaHVuZ2h3YSBUZWxlY29tIENvLiwgTHRkLjEqMCgGA1UECwwhZVBL
SSBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5MIICIjANBgkqhkiG9w0BAQEF
AAOCAg8AMIICCgKCAgEA4SUP7o3biDN1Z82tH306Tm2d0y8U82N0ywEhajfqhFAH
SyZbCUNsIZ5qyNUD9WBpj8zwIuQf5/dqIjG3LBXy4P4AakP/h2XGtRrBp0xtInAh
ijHyl3SJCRImHJ7K2RKilTza6We/CKBk49ZCt0Xvl/T29de1ShUCWH2YWEtgvM3X
DZoTM1PRYfl61dd4s5oz9wCGzh1NlDivqOx4UXCKXBCDUSH3ET00hl7lSM2XgYI1
TBnsZfZrxQWh7kcT1rMhJ5QQCtkkO7q+RBNGMD+XPNjX12ruOzjjK9SXDrkb5wdJ
fzcq+Xd4z1TtW0ado4AOkUPB1ltfFLqfpo0kR0BZv3I4sjZsN/+Z0V0OWQqraffA
sgRFelQArr5T9rXn4fg8ozHSqf4hUmTFpmfwdQcGlBSBVcYn5AGPF8Fqcde+S/uU
WH1+ETOxQvdibBjWzwloPn9s9h6PYq2lY9sJpx8iQkEeb5mKPtf5P0B6ebClAZLS
nT0IFaUQAS2zMnaolQ2zepr7BxB4EW/hj8e6DyUadCrlHJhBmd8hh+iVBmoKs2pH
dmX2Os+PYhcZewoozRrSgx4hxyy/vv9haLdnG7t4TY3OZ+XkwY63I2binZB1NJip
NiuKmpS5nezMirH4JYlcWrYvjB9teSSnUmjDhDXiZo1jDiVN1Rmy5nk3pyKdVDEC
AwEAAaNqMGgwHQYDVR0OBBYEFB4M97Zn8uGSJglFwFU5Lnc/QkqiMAwGA1UdEwQF
MAMBAf8wOQYEZyoHAAQxMC8wLQIBADAJBgUrDgMCGgUAMAcGBWcqAwAABBRFsMLH
ClZ87lt4DJX5GFPBphzYEDANBgkqhkiG9w0BAQUFAAOCAgEACbODU1kBPpVJufGB
uvl2ICO1J2B01GqZNF5sAFPZn/KmsSQHRGoqxqWOeBLoR9lYGxMqXnmbnwoqZ6Yl
PwZpVnPDimZI+ymBV3QGypzqKOg4ZyYr8dW1P2WT+DZdjo2NQCCHGervJ8A9tDkP
JXtoUHRVnAxZfVo9QZQlUgjgRywVMRnVvwdVxrsStZf0X4OFunHB2WyBEXYKCrC/
gpf36j36+uwtqSiUO1bd0lEursC9CBWMd1I0ltabrNMdjmEPNXubrjlpC2JgQCA2
j6/7Nu4tCEoduL+bXPjqpRugc6bY+G7gMwRfaKonh+3ZwZCc7b3jajWvY9+rGNm6
5ulK6lCKD2GTHuItGeIwlDWSXQ62B68ZgI9HkFFLLk3dheLSClIKF5r8GrBQAuUB
o2M3IUxExJtRmREOc5wGj1QupyheRDmHVi03vYVElOEMSyycw5KFNGHLD7ibSkNS
/jQ6fbjpKdx2qcgw+BRxgMYeNkh0IkFch4LoGHGLQYlE535YW6i4jRPpp2zDR+2z
Gp1iro2C6pSe3VkQw63d4k3jMdXH7OjysP6SHhYKGvzZ8/gntsm+HbRsZJB/9OTE
W9c3rkIO3aQab3yIVMUWbuF6aC74Or8NpDyJO3inTmODBCEIZ43ygknQW/2xzQ+D
hNQ+IIX3Sj0rnP0qCglN6oH4EZw=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:c8:bd:65:47:5c:af:b8:97:00:5e:e4:06:d2:bc:9d
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = TW, O = "Chunghwa Telecom Co., Ltd.", OU = ePKI Root Certification Authority
#        Validity
#            Not Before: Dec 20 02:31:27 2004 GMT
#            Not After : Dec 20 02:31:27 2034 GMT
#        Subject: C = TW, O = "Chunghwa Telecom Co., Ltd.", OU = ePKI Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:e1:25:0f:ee:8d:db:88:33:75:67:cd:ad:1f:7d:
#                    3a:4e:6d:9d:d3:2f:14:f3:63:74:cb:01:21:6a:37:
#                    ea:84:50:07:4b:26:5b:09:43:6c:21:9e:6a:c8:d5:
#                    03:f5:60:69:8f:cc:f0:22:e4:1f:e7:f7:6a:22:31:
#                    b7:2c:15:f2:e0:fe:00:6a:43:ff:87:65:c6:b5:1a:
#                    c1:a7:4c:6d:22:70:21:8a:31:f2:97:74:89:09:12:
#                    26:1c:9e:ca:d9:12:a2:95:3c:da:e9:67:bf:08:a0:
#                    64:e3:d6:42:b7:45:ef:97:f4:f6:f5:d7:b5:4a:15:
#                    02:58:7d:98:58:4b:60:bc:cd:d7:0d:9a:13:33:53:
#                    d1:61:f9:7a:d5:d7:78:b3:9a:33:f7:00:86:ce:1d:
#                    4d:94:38:af:a8:ec:78:51:70:8a:5c:10:83:51:21:
#                    f7:11:3d:34:86:5e:e5:48:cd:97:81:82:35:4c:19:
#                    ec:65:f6:6b:c5:05:a1:ee:47:13:d6:b3:21:27:94:
#                    10:0a:d9:24:3b:ba:be:44:13:46:30:3f:97:3c:d8:
#                    d7:d7:6a:ee:3b:38:e3:2b:d4:97:0e:b9:1b:e7:07:
#                    49:7f:37:2a:f9:77:78:cf:54:ed:5b:46:9d:a3:80:
#                    0e:91:43:c1:d6:5b:5f:14:ba:9f:a6:8d:24:47:40:
#                    59:bf:72:38:b2:36:6c:37:ff:99:d1:5d:0e:59:0a:
#                    ab:69:f7:c0:b2:04:45:7a:54:00:ae:be:53:f6:b5:
#                    e7:e1:f8:3c:a3:31:d2:a9:fe:21:52:64:c5:a6:67:
#                    f0:75:07:06:94:14:81:55:c6:27:e4:01:8f:17:c1:
#                    6a:71:d7:be:4b:fb:94:58:7d:7e:11:33:b1:42:f7:
#                    62:6c:18:d6:cf:09:68:3e:7f:6c:f6:1e:8f:62:ad:
#                    a5:63:db:09:a7:1f:22:42:41:1e:6f:99:8a:3e:d7:
#                    f9:3f:40:7a:79:b0:a5:01:92:d2:9d:3d:08:15:a5:
#                    10:01:2d:b3:32:76:a8:95:0d:b3:7a:9a:fb:07:10:
#                    78:11:6f:e1:8f:c7:ba:0f:25:1a:74:2a:e5:1c:98:
#                    41:99:df:21:87:e8:95:06:6a:0a:b3:6a:47:76:65:
#                    f6:3a:cf:8f:62:17:19:7b:0a:28:cd:1a:d2:83:1e:
#                    21:c7:2c:bf:be:ff:61:68:b7:67:1b:bb:78:4d:8d:
#                    ce:67:e5:e4:c1:8e:b7:23:66:e2:9d:90:75:34:98:
#                    a9:36:2b:8a:9a:94:b9:9d:ec:cc:8a:b1:f8:25:89:
#                    5c:5a:b6:2f:8c:1f:6d:79:24:a7:52:68:c3:84:35:
#                    e2:66:8d:63:0e:25:4d:d5:19:b2:e6:79:37:a7:22:
#                    9d:54:31
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                1E:0C:F7:B6:67:F2:E1:92:26:09:45:C0:55:39:2E:77:3F:42:4A:A2
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            setCext-hashedRoot: 
#                0/0-...0...+......0...g*.....E...
#V|.[x....S.....
#    Signature Algorithm: sha1WithRSAEncryption
#         09:b3:83:53:59:01:3e:95:49:b9:f1:81:ba:f9:76:20:23:b5:
#         27:60:74:d4:6a:99:34:5e:6c:00:53:d9:9f:f2:a6:b1:24:07:
#         44:6a:2a:c6:a5:8e:78:12:e8:47:d9:58:1b:13:2a:5e:79:9b:
#         9f:0a:2a:67:a6:25:3f:06:69:56:73:c3:8a:66:48:fb:29:81:
#         57:74:06:ca:9c:ea:28:e8:38:67:26:2b:f1:d5:b5:3f:65:93:
#         f8:36:5d:8e:8d:8d:40:20:87:19:ea:ef:27:c0:3d:b4:39:0f:
#         25:7b:68:50:74:55:9c:0c:59:7d:5a:3d:41:94:25:52:08:e0:
#         47:2c:15:31:19:d5:bf:07:55:c6:bb:12:b5:97:f4:5f:83:85:
#         ba:71:c1:d9:6c:81:11:76:0a:0a:b0:bf:82:97:f7:ea:3d:fa:
#         fa:ec:2d:a9:28:94:3b:56:dd:d2:51:2e:ae:c0:bd:08:15:8c:
#         77:52:34:96:d6:9b:ac:d3:1d:8e:61:0f:35:7b:9b:ae:39:69:
#         0b:62:60:40:20:36:8f:af:fb:36:ee:2d:08:4a:1d:b8:bf:9b:
#         5c:f8:ea:a5:1b:a0:73:a6:d8:f8:6e:e0:33:04:5f:68:aa:27:
#         87:ed:d9:c1:90:9c:ed:bd:e3:6a:35:af:63:df:ab:18:d9:ba:
#         e6:e9:4a:ea:50:8a:0f:61:93:1e:e2:2d:19:e2:30:94:35:92:
#         5d:0e:b6:07:af:19:80:8f:47:90:51:4b:2e:4d:dd:85:e2:d2:
#         0a:52:0a:17:9a:fc:1a:b0:50:02:e5:01:a3:63:37:21:4c:44:
#         c4:9b:51:99:11:0e:73:9c:06:8f:54:2e:a7:28:5e:44:39:87:
#         56:2d:37:bd:85:44:94:e1:0c:4b:2c:9c:c3:92:85:34:61:cb:
#         0f:b8:9b:4a:43:52:fe:34:3a:7d:b8:e9:29:dc:76:a9:c8:30:
#         f8:14:71:80:c6:1e:36:48:74:22:41:5c:87:82:e8:18:71:8b:
#         41:89:44:e7:7e:58:5b:a8:b8:8d:13:e9:a7:6c:c3:47:ed:b3:
#         1a:9d:62:ae:8d:82:ea:94:9e:dd:59:10:c3:ad:dd:e2:4d:e3:
#         31:d5:c7:ec:e8:f2:b0:fe:92:1e:16:0a:1a:fc:d9:f3:f8:27:
#         b6:c9:be:1d:b4:6c:64:90:7f:f4:e4:c4:5b:d7:37:ae:42:0e:
#         dd:a4:1a:6f:7c:88:54:c5:16:6e:e1:7a:68:2e:f8:3a:bf:0d:
#         a4:3c:89:3b:78:a7:4e:63:83:04:21:08:67:8d:f2:82:49:d0:
#         5b:fd:b1:cd:0f:83:84:d4:3e:20:85:f7:4a:3d:2b:9c:fd:2a:
#         0a:09:4d:ea:81:f8:11:9c

[p11-kit-object-v1]
label: "ePKI Root Certification Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ePKI Root Certification Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d6:96:2e:c1:0a:15:93:12:af:8f:63:bc:d4:44:c9:5b
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = TW, O = "Chunghwa Telecom Co., Ltd.", CN = ePKI Root Certification Authority - G2
#        Validity
#            Not Before: Nov 17 08:23:42 2015 GMT
#            Not After : Dec 31 15:59:59 2037 GMT
#        Subject: C = TW, O = "Chunghwa Telecom Co., Ltd.", CN = ePKI Root Certification Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:a4:59:1f:a0:2f:df:be:e0:fb:e9:dc:b5:89:fe:
#                    5a:97:03:c9:3a:77:a7:8e:5c:af:f2:e3:18:39:f5:
#                    aa:dd:0f:46:d2:68:0f:57:9c:a7:63:60:d3:58:ce:
#                    35:c2:a7:f6:88:c2:4f:7f:1b:28:e9:d0:a7:00:c4:
#                    17:4d:6d:e2:0f:c5:0e:26:23:20:ab:f7:3a:28:a2:
#                    4c:0a:0b:cc:8e:ce:e6:00:9a:5a:40:0d:d4:50:1a:
#                    9b:d1:0d:9c:94:f9:db:ee:5c:d0:f1:8a:07:cd:9a:
#                    2b:40:2c:49:a4:5d:62:5f:a7:6b:df:ee:56:08:50:
#                    f3:42:18:6c:31:b0:5e:e5:9c:73:92:bc:0e:d2:0c:
#                    7d:c5:38:57:bc:bb:58:db:26:19:02:ed:e3:43:84:
#                    8a:4e:56:6b:db:ad:a1:31:d9:cc:22:67:96:78:ff:
#                    77:9d:cc:64:c5:32:20:6a:ef:4e:30:d5:24:25:fd:
#                    88:79:af:71:1a:fe:d5:4b:1b:15:88:bc:18:70:aa:
#                    bd:ad:38:0a:66:30:46:e5:89:85:d5:76:24:a9:a9:
#                    b3:e6:59:60:0f:b4:a9:53:c2:3a:9d:45:1a:d6:ae:
#                    e3:77:5e:c4:62:36:33:2f:30:c4:bf:95:f1:2d:38:
#                    a5:75:e8:d1:6a:93:2e:45:87:4b:4a:a2:df:bf:58:
#                    27:9a:ca:62:19:aa:5e:d4:b1:80:49:96:dd:2b:ec:
#                    5f:8f:9b:e0:9d:97:88:f5:84:03:a3:af:b3:a5:73:
#                    2d:41:ba:e5:07:b7:6f:6b:71:f7:f7:c9:5a:af:69:
#                    99:b3:2f:c8:4f:42:eb:6c:6b:71:67:78:df:0a:ac:
#                    4f:d7:4a:85:00:46:1a:d5:cd:b8:9f:ea:95:9d:0f:
#                    7c:d1:c6:05:85:e6:08:de:88:17:81:f6:d5:b5:6e:
#                    ea:a1:1c:d7:61:aa:e3:59:42:89:9c:59:7e:b1:7c:
#                    64:34:dd:61:23:2a:39:b5:10:ab:fc:86:a9:53:1a:
#                    c5:eb:6a:e2:80:4e:59:91:c0:38:89:fe:b3:5d:d6:
#                    fb:91:e9:d7:b0:7d:d9:78:08:cc:f5:2b:cc:2b:e1:
#                    a1:d6:94:73:c1:fe:51:f4:8c:7d:0a:b5:9a:8a:b9:
#                    f5:da:e0:c9:b3:d8:8f:aa:82:83:8d:69:53:2d:fd:
#                    00:04:18:4a:a0:da:54:e1:79:8c:89:eb:7f:f5:82:
#                    e7:a0:b9:77:4d:ae:f9:ba:02:3b:88:76:eb:7c:5d:
#                    b3:5a:13:db:7c:29:16:6b:99:d1:1d:e4:48:21:a2:
#                    0d:5e:01:88:e8:be:f1:98:4d:3e:c7:16:57:1c:5f:
#                    e1:08:6f:1c:4c:58:43:56:f7:80:65:8c:71:0e:a2:
#                    04:67:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                72:5B:BA:AA:72:38:EE:25:90:24:B5:94:22:FA:09:88:CA:8B:0A:FB
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         06:a3:f1:b6:73:55:c6:67:66:21:e5:9d:5b:d6:94:2e:4a:22:
#         60:f2:54:01:90:a1:fd:b5:bf:c0:95:bf:18:5f:2c:f6:6b:35:
#         0e:fc:31:c8:ed:44:0e:92:97:dc:af:dd:56:cf:b5:1f:ba:72:
#         9c:30:c8:9b:b1:91:c0:76:77:d4:0f:1a:95:1a:e9:4d:14:88:
#         a1:cf:6b:02:a6:6a:eb:64:45:4d:64:8d:de:fc:eb:6c:f2:53:
#         09:a1:85:51:15:d0:4f:9e:62:fa:11:b9:ce:c8:24:0e:72:64:
#         88:75:34:23:30:2a:3f:bc:3c:39:cc:cc:dd:0b:36:bb:bd:06:
#         82:8f:12:01:c5:71:05:d1:24:a1:99:6c:ca:e4:f7:aa:ed:8a:
#         d7:a7:0a:ad:af:f0:e0:80:bb:a1:b2:3f:5a:87:64:70:86:33:
#         7b:0d:1e:d7:00:86:83:43:97:75:f5:3b:c1:48:fd:b6:0e:43:
#         a8:02:6e:b8:3e:7f:8f:4e:e2:5d:b4:7d:9e:30:34:2f:a8:f1:
#         eb:27:87:68:0d:5a:0a:4d:01:db:c9:14:58:95:f2:9a:4d:16:
#         aa:73:db:f4:25:88:17:38:b7:af:59:09:09:b4:1f:2d:0f:ab:
#         f5:b8:27:55:ee:45:30:33:b8:ed:1b:8e:bc:88:6c:af:f8:5a:
#         2a:6b:e0:ac:b1:05:24:a1:09:fc:a3:0f:f3:b0:2d:7b:96:ba:
#         b6:94:07:15:45:8e:29:dc:58:0e:a9:05:d8:3b:3a:a0:7b:cd:
#         8a:c7:66:82:97:cf:d6:33:e0:67:fc:a6:db:40:2f:05:e5:c5:
#         8b:7a:2a:7a:f0:b0:36:9b:0c:18:f6:37:e9:41:a1:fd:b1:28:
#         f9:6f:6b:bd:eb:1f:4c:63:71:7b:50:dd:29:f2:ff:ee:f7:c7:
#         45:5f:e8:36:0a:e8:6c:5b:22:c3:e8:c0:e7:26:dc:e3:a8:95:
#         80:e5:b9:3a:13:db:00:4b:1a:fd:ae:33:47:7e:78:94:e3:b1:
#         5d:2b:b5:56:b5:42:8b:9f:81:c5:fc:93:4c:10:b5:ba:0a:bc:
#         7e:37:e3:fa:54:6d:f5:04:c5:70:b3:a9:04:d2:51:d7:85:cd:
#         7d:6f:43:8f:59:68:e5:31:56:11:71:f9:64:29:09:13:fe:d0:
#         1f:bc:8b:00:38:b2:d0:ca:34:56:76:10:39:56:73:66:c3:d1:
#         49:d9:be:57:4f:3f:16:7d:6a:78:b7:a8:82:b8:5b:ce:ae:85:
#         8a:0a:42:0c:03:d1:17:c4:18:f7:d8:57:88:c6:82:b8:07:b9:
#         3e:fd:a4:e9:2e:dc:6f:ba:90:92:ee:65:b0:50:34:d3:07:da:
#         01:97:0f:bc:e7:73:82:7b

[p11-kit-object-v1]
label: "emSign ECC Root CA - C3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE/aVhrnsmEB3ptyIwrgb0gbOxQnGVObzT
UuOvr/nylzWSNkYOh5WNuTla6bvf0P7IB0E8u1Vvg6Nq+2KwgYkCcH1IxUrj6SJU
Ik2Tu0IMr3ecI6Z912ERzmXH+H/+9fKp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign ECC Root CA - C3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7b:71:b6:82:56:b8:12:7c:9c:a8
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, OU = emSign PKI, O = eMudhra Inc, CN = emSign ECC Root CA - C3
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C = US, OU = emSign PKI, O = eMudhra Inc, CN = emSign ECC Root CA - C3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:fd:a5:61:ae:7b:26:10:1d:e9:b7:22:30:ae:06:
#                    f4:81:b3:b1:42:71:95:39:bc:d3:52:e3:af:af:f9:
#                    f2:97:35:92:36:46:0e:87:95:8d:b9:39:5a:e9:bb:
#                    df:d0:fe:c8:07:41:3c:bb:55:6f:83:a3:6a:fb:62:
#                    b0:81:89:02:70:7d:48:c5:4a:e3:e9:22:54:22:4d:
#                    93:bb:42:0c:af:77:9c:23:a6:7d:d7:61:11:ce:65:
#                    c7:f8:7f:fe:f5:f2:a9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FB:5A:48:D0:80:20:40:F2:A8:E9:00:07:69:19:77:A7:E6:C3:F4:CF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:b4:d8:2f:02:89:fd:b6:4c:62:ba:43:4e:13:
#         84:72:b5:ae:dd:1c:de:d6:b5:dc:56:8f:58:40:5a:2d:de:20:
#         4c:22:83:ca:93:a8:7e:ee:12:40:c7:d6:87:4f:f8:df:85:02:
#         30:1c:14:64:e4:7c:96:83:11:9c:b0:d1:5a:61:4b:a6:0f:49:
#         d3:00:fc:a1:fc:e4:a5:ff:7f:ad:d7:30:d0:c7:77:7f:be:81:
#         07:55:30:50:20:14:f5:57:38:0a:a8:31:51

[p11-kit-object-v1]
label: "emSign ECC Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEI6UMuC0S9SjzsbLd4gISgJ45X0lNn8kl
NFl07LsGHOfAcq/ori/hQVSHFKhKsuh8guZbarXcs3XOiwbQhiO/RtWODz8E9Ncc
kn72pWPC9V+OLk+hGBkCKzIKgmR9FpPR
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign ECC Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3c:f6:07:a9:68:70:0e:da:8b:84
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = IN, OU = emSign PKI, O = eMudhra Technologies Limited, CN = emSign ECC Root CA - G3
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C = IN, OU = emSign PKI, O = eMudhra Technologies Limited, CN = emSign ECC Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:23:a5:0c:b8:2d:12:f5:28:f3:b1:b2:dd:e2:02:
#                    12:80:9e:39:5f:49:4d:9f:c9:25:34:59:74:ec:bb:
#                    06:1c:e7:c0:72:af:e8:ae:2f:e1:41:54:87:14:a8:
#                    4a:b2:e8:7c:82:e6:5b:6a:b5:dc:b3:75:ce:8b:06:
#                    d0:86:23:bf:46:d5:8e:0f:3f:04:f4:d7:1c:92:7e:
#                    f6:a5:63:c2:f5:5f:8e:2e:4f:a1:18:19:02:2b:32:
#                    0a:82:64:7d:16:93:d1
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                7C:5D:02:84:13:D4:CC:8A:9B:81:CE:17:1C:2E:29:1E:9C:48:63:42
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:be:f3:61:cf:02:10:1d:64:95:07:b8:18:6e:
#         88:85:05:2f:83:08:17:90:ca:1f:8a:4c:e8:0d:1b:7a:b1:ad:
#         d5:81:09:47:ef:3b:ac:08:04:7c:5c:99:b1:ed:47:07:d2:02:
#         31:00:9d:ba:55:fc:a9:4a:e8:ed:ed:e6:76:01:42:7b:c8:f8:
#         60:d9:8d:51:8b:55:3b:fb:8c:7b:eb:65:09:c3:f8:96:cd:47:
#         a8:82:f2:16:55:77:24:7e:12:10:95:04:2c:a3

[p11-kit-object-v1]
label: "emSign Root CA - C1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz+upufGZBczYKCFK83M0
UYRWEPWgTywS4/oTmifQz/l5GnRfHXk5/Fv4cI7gklL35CX5VIPZHdPIWoU/Xse2
B+4+wM6ar6xWQio5JXDWv7V7Nq2s9nPczdcdioOl+yuQFTdrHCZH3DspVpNqs8Fq
Op099cGXOFgFixwR4+S0uF2FHYP+eF8LRWgYSKVGczQ7/g/IdrvHGPMF0Ybzhe3n
udkyrVWIzqa2kbBPrH4VI5b2P/AgNBbeCsbEBEV5f6f9vtKppa+cxSMq9zwhbL2v
j07FOrLzNBL834AaSaTUqZX3noleoomslMuoaJuvimUnzYnu3Yy1aylwQ6BpC+S5
DwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - C1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            ae:cf:00:ba:c4:cf:32:f8:43:b2
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, OU = emSign PKI, O = eMudhra Inc, CN = emSign Root CA - C1
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C = US, OU = emSign PKI, O = eMudhra Inc, CN = emSign Root CA - C1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:cf:eb:a9:b9:f1:99:05:cc:d8:28:21:4a:f3:73:
#                    34:51:84:56:10:f5:a0:4f:2c:12:e3:fa:13:9a:27:
#                    d0:cf:f9:79:1a:74:5f:1d:79:39:fc:5b:f8:70:8e:
#                    e0:92:52:f7:e4:25:f9:54:83:d9:1d:d3:c8:5a:85:
#                    3f:5e:c7:b6:07:ee:3e:c0:ce:9a:af:ac:56:42:2a:
#                    39:25:70:d6:bf:b5:7b:36:ad:ac:f6:73:dc:cd:d7:
#                    1d:8a:83:a5:fb:2b:90:15:37:6b:1c:26:47:dc:3b:
#                    29:56:93:6a:b3:c1:6a:3a:9d:3d:f5:c1:97:38:58:
#                    05:8b:1c:11:e3:e4:b4:b8:5d:85:1d:83:fe:78:5f:
#                    0b:45:68:18:48:a5:46:73:34:3b:fe:0f:c8:76:bb:
#                    c7:18:f3:05:d1:86:f3:85:ed:e7:b9:d9:32:ad:55:
#                    88:ce:a6:b6:91:b0:4f:ac:7e:15:23:96:f6:3f:f0:
#                    20:34:16:de:0a:c6:c4:04:45:79:7f:a7:fd:be:d2:
#                    a9:a5:af:9c:c5:23:2a:f7:3c:21:6c:bd:af:8f:4e:
#                    c5:3a:b2:f3:34:12:fc:df:80:1a:49:a4:d4:a9:95:
#                    f7:9e:89:5e:a2:89:ac:94:cb:a8:68:9b:af:8a:65:
#                    27:cd:89:ee:dd:8c:b5:6b:29:70:43:a0:69:0b:e4:
#                    b9:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FE:A1:E0:70:1E:2A:03:39:52:5A:42:BE:5C:91:85:7A:18:AA:4D:B5
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         c2:4a:56:fa:15:21:7b:28:a2:e9:e5:1d:fb:f8:2d:c4:39:96:
#         41:4c:3b:27:2c:c4:6c:18:15:80:c6:ac:af:47:59:2f:26:0b:
#         e3:36:b0:ef:3b:fe:43:97:49:32:99:12:15:5b:df:11:29:ff:
#         ab:53:f8:bb:c1:78:0f:ac:9c:53:af:57:bd:68:8c:3d:69:33:
#         f0:a3:a0:23:63:3b:64:67:22:44:ad:d5:71:cb:56:2a:78:92:
#         a3:4f:12:31:36:36:e2:de:fe:00:c4:a3:60:0f:27:ad:a0:b0:
#         8a:b5:36:7a:52:a1:bd:27:f4:20:27:62:e8:4d:94:24:13:e4:
#         0a:04:e9:3c:ab:2e:c8:43:09:4a:c6:61:04:e5:49:34:7e:d3:
#         c4:c8:f5:0f:c0:aa:e9:ba:54:5e:f3:63:2b:4f:4f:50:d4:fe:
#         b9:7b:99:8c:3d:c0:2e:bc:02:2b:d3:c4:40:e4:8a:07:31:1e:
#         9b:ce:26:99:13:fb:11:ea:9a:22:0c:11:19:c7:5e:1b:81:50:
#         30:c8:96:12:6e:e7:cb:41:7f:91:3b:a2:47:b7:54:80:1b:dc:
#         00:cc:9a:90:ea:c3:c3:50:06:62:0c:30:c0:15:48:a7:a8:59:
#         7c:e1:ae:22:a2:e2:0a:7a:0f:fa:62:ab:52:4c:e1:f1:df:ca:
#         be:83:0d:42

[p11-kit-object-v1]
label: "emSign Root CA - C2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - C2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2f:0a:b7:6b:0d:cb:4a:af:27:58
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = US, OU = emSign PKI, O = eMudhra Inc, CN = emSign Root CA - C2
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C = US, OU = emSign PKI, O = eMudhra Inc, CN = emSign Root CA - C2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:8c:7d:7d:65:03:e4:db:9a:1f:58:22:79:91:80:
#                    e5:bd:ec:85:71:e0:b5:09:7f:60:d1:65:fb:3c:df:
#                    b2:6b:9a:5f:a9:cb:ae:1a:56:76:20:58:ee:2d:e8:
#                    2e:fc:7e:08:df:4b:b8:d7:f9:ce:13:8a:72:33:12:
#                    ab:96:70:8f:b3:8b:47:dd:e1:27:3c:34:37:fb:24:
#                    e3:69:db:b5:56:5f:4a:b0:51:8a:b3:2c:34:42:b7:
#                    eb:3b:ce:92:dc:7f:1d:64:cb:4c:d5:20:98:fa:2f:
#                    4e:ae:3f:22:b7:90:8a:fd:f9:80:2c:ad:58:fe:df:
#                    db:ad:9b:a7:b6:30:14:2c:44:db:2d:48:8d:df:09:
#                    06:00:1a:fa:10:4d:0f:1f:50:b6:ae:4e:a3:56:69:
#                    80:24:35:81:5e:e8:75:07:1d:03:e9:da:ed:54:6b:
#                    4d:28:74:c5:e2:0f:9a:11:17:12:dc:0e:71:80:70:
#                    4d:48:ff:d1:3d:98:b0:9d:92:08:17:8a:36:14:9a:
#                    27:28:ef:e5:f0:65:e1:68:3e:1b:da:e9:e2:09:e6:
#                    9d:37:2e:dd:c3:bb:95:b7:11:c1:d1:d1:c2:66:99:
#                    8d:69:c9:e0:37:e8:96:97:29:64:4d:33:d2:11:8d:
#                    83:15:34:27:29:e2:38:41:da:d2:18:89:9f:8b:56:
#                    4f:1b:c1:0f:7f:d5:cd:b7:b7:19:af:de:ef:7b:b5:
#                    a6:65:57:6d:8d:17:8b:6d:4b:5a:aa:dc:9f:8c:3a:
#                    9d:28:19:42:c1:ce:92:9f:47:1d:2a:19:5a:9b:3e:
#                    e9:10:34:60:23:38:b2:0d:f0:a0:cd:40:dc:db:47:
#                    58:80:97:67:7c:1f:e3:12:a2:27:01:a3:80:22:77:
#                    c4:e3:2d:67:0d:bf:8f:28:09:62:f9:dd:9a:c5:04:
#                    c4:c3:8d:a2:00:e9:fa:c6:d6:de:08:a5:b9:c7:69:
#                    d0:3b:a8:22:49:7b:6a:a9:24:de:a7:d9:e4:0a:01:
#                    49:fa:52:24:03:1c:fb:12:a8:d0:65:71:48:50:e1:
#                    8f:f4:63:49:94:e6:b8:21:9b:63:81:f6:b5:d0:4b:
#                    51:5b:d4:94:42:7c:93:0d:9c:92:26:e4:05:01:db:
#                    ed:91:5b:3a:b9:4e:0c:fb:49:b4:a1:a3:c3:6c:66:
#                    4d:14:6d:09:c5:c5:c8:aa:43:db:a8:55:30:2c:2b:
#                    5e:12:93:da:06:f1:0d:f3:7e:c3:34:f1:c7:4f:a1:
#                    16:f4:5a:52:19:92:54:7a:98:a0:fb:2f:c9:c7:ff:
#                    37:c6:bb:c3:c8:26:ff:78:18:60:7d:45:9f:54:e0:
#                    0e:bd:af:77:8f:9b:2f:0c:be:bc:df:37:11:ca:b4:
#                    7e:ac:bf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                B3:F7:8A:A4:D6:0F:88:00:59:E8:51:17:4F:D5:7E:EC:86:22:81:9D
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         34:25:a6:25:8c:d1:cb:f6:9d:9d:07:e6:35:6c:06:ad:31:da:
#         ae:b6:43:42:f0:a8:04:ec:08:5b:f2:b9:be:e0:c4:d0:b2:b5:
#         1b:a8:03:cb:2d:98:f3:84:bb:f9:60:f0:88:31:8f:81:48:8e:
#         8c:a1:22:b5:94:57:1c:a2:2d:4e:cd:a3:83:fe:5a:31:14:3b:
#         05:13:c4:8a:64:10:eb:6f:19:44:3d:7e:23:a5:70:61:ed:21:
#         90:cd:06:56:6a:ed:6a:64:b5:70:31:79:5e:79:44:f3:ec:a2:
#         bd:ba:a7:61:4d:00:c4:45:7d:94:21:d2:c2:d7:84:a8:24:f2:
#         2b:a5:49:28:20:ab:1f:1e:ce:03:f2:7b:ad:c5:6a:26:04:8b:
#         87:3f:77:34:63:dc:73:82:9e:c6:62:c1:96:54:d3:67:5f:e5:
#         8a:4d:16:3c:52:c1:9b:c4:e3:57:23:1a:9b:2b:a5:63:1f:40:
#         52:36:b3:9d:d1:6d:e5:e9:e3:b9:52:03:16:04:e0:dc:e3:04:
#         53:1e:f8:4c:05:b8:4b:de:04:22:41:10:01:f9:ae:f6:2e:de:
#         98:b6:a2:bb:09:e3:6e:13:a9:61:10:57:5b:42:b0:29:10:cf:
#         e6:2a:fc:e9:1a:97:bc:87:02:42:83:78:e5:dc:3f:ba:0d:e0:
#         0f:93:75:77:36:a5:da:b1:b9:50:a7:04:ed:11:99:6c:f6:26:
#         91:92:49:e2:63:89:39:3f:38:fc:11:b0:f3:56:b7:01:bf:29:
#         72:f4:e2:8d:ad:6b:78:e2:3e:92:6e:20:25:6d:58:30:1c:f5:
#         1d:da:b8:11:20:26:5e:6b:4a:14:66:05:db:33:1b:42:e6:ce:
#         c1:ee:64:f0:85:49:80:b5:e5:10:43:08:e0:6c:6b:c6:c3:44:
#         9f:29:04:55:36:5a:2f:c2:55:70:80:08:4b:9a:be:0a:2f:78:
#         0e:05:6b:96:ed:df:ca:34:3d:6c:6c:04:ff:8c:a6:87:02:75:
#         5b:43:32:ac:d0:87:1c:bd:22:88:4a:b9:75:80:1a:b7:ac:a0:
#         8b:ca:0e:0d:f1:16:4e:ab:04:ea:e3:7d:5c:09:7a:5c:22:ff:
#         10:22:b2:88:c7:3c:95:50:bf:d5:b5:cd:52:28:1e:9f:84:42:
#         0f:f8:31:00:b6:d4:d6:c8:5f:64:68:8a:80:7e:57:78:4a:e3:
#         7f:5b:ff:0e:dd:79:4f:31:d8:cf:1c:97:53:86:d2:73:df:6e:
#         70:11:97:91:8f:33:bb:c9:82:2e:3b:d2:3b:68:e1:27:8c:83:
#         a1:cc:01:6d:c4:81:be:7a:b5:07:0d:2f:02:3d:53:c9:99:9c:
#         db:d1:81:43:2b:90:08:0b

[p11-kit-object-v1]
label: "emSign Root CA - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAk0u76WaK7p1b1TST0Bse
w+eeuGQzf2N4aLTNLnF115sgxk0pvLZoYIr3IZpWNVrzdr3YzZr/k1ZLpVkGoZM0
Kd0WNHVO8oG0x5ZOrRkVUkr+PHB1cM2vK6sVmjM8qrOLqs1D/fXqcP/tzxE7lM5O
MhbTI0Aqd7OvPAEsbO2ZLIvZTmmYsvePQbAyeGHWDV/D+qJAkh1cF+ZwPjXnorfC
YuKrpDhMtTk1b+oDafo6VGiFbdbyL0NVHpENDtjVaqSW0RM8LHhQ6DqS0hdW5TUa
QBw+jSztOd9C4INBdN+jzcKGYEho42kLVACL5HZpIQ15TjQIXhTCzLG3rdd8cIrH
hQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:f5:e4:62:0c:6c:58:ed:d6:d8
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = IN, OU = emSign PKI, O = eMudhra Technologies Limited, CN = emSign Root CA - G1
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C = IN, OU = emSign PKI, O = eMudhra Technologies Limited, CN = emSign Root CA - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:93:4b:bb:e9:66:8a:ee:9d:5b:d5:34:93:d0:1b:
#                    1e:c3:e7:9e:b8:64:33:7f:63:78:68:b4:cd:2e:71:
#                    75:d7:9b:20:c6:4d:29:bc:b6:68:60:8a:f7:21:9a:
#                    56:35:5a:f3:76:bd:d8:cd:9a:ff:93:56:4b:a5:59:
#                    06:a1:93:34:29:dd:16:34:75:4e:f2:81:b4:c7:96:
#                    4e:ad:19:15:52:4a:fe:3c:70:75:70:cd:af:2b:ab:
#                    15:9a:33:3c:aa:b3:8b:aa:cd:43:fd:f5:ea:70:ff:
#                    ed:cf:11:3b:94:ce:4e:32:16:d3:23:40:2a:77:b3:
#                    af:3c:01:2c:6c:ed:99:2c:8b:d9:4e:69:98:b2:f7:
#                    8f:41:b0:32:78:61:d6:0d:5f:c3:fa:a2:40:92:1d:
#                    5c:17:e6:70:3e:35:e7:a2:b7:c2:62:e2:ab:a4:38:
#                    4c:b5:39:35:6f:ea:03:69:fa:3a:54:68:85:6d:d6:
#                    f2:2f:43:55:1e:91:0d:0e:d8:d5:6a:a4:96:d1:13:
#                    3c:2c:78:50:e8:3a:92:d2:17:56:e5:35:1a:40:1c:
#                    3e:8d:2c:ed:39:df:42:e0:83:41:74:df:a3:cd:c2:
#                    86:60:48:68:e3:69:0b:54:00:8b:e4:76:69:21:0d:
#                    79:4e:34:08:5e:14:c2:cc:b1:b7:ad:d7:7c:70:8a:
#                    c7:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FB:EF:0D:86:9E:B0:E3:DD:A9:B9:F1:21:17:7F:3E:FC:F0:77:2B:1A
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         59:ff:f2:8c:f5:87:7d:71:3d:a3:9f:1b:5b:d1:da:f8:d3:9c:
#         6b:36:bd:9b:a9:61:eb:de:16:2c:74:3d:9e:e6:75:da:d7:ba:
#         a7:bc:42:17:e7:3d:91:eb:e5:7d:dd:3e:9c:f1:cf:92:ac:6c:
#         48:cc:c2:22:3f:69:3b:c5:b6:15:2f:a3:35:c6:68:2a:1c:57:
#         af:39:ef:8d:d0:35:c3:18:0c:7b:00:56:1c:cd:8b:19:74:de:
#         be:0f:12:e0:d0:aa:a1:3f:02:34:b1:70:ce:9d:18:d6:08:03:
#         09:46:ee:60:e0:7e:b6:c4:49:04:51:7d:70:60:bc:aa:b2:ff:
#         79:72:7a:a6:1d:3d:5f:2a:f8:ca:e2:fd:39:b7:47:b9:eb:7e:
#         df:04:23:af:fa:9c:06:07:e9:fb:63:93:80:40:b5:c6:6c:0a:
#         31:28:ce:0c:9f:cf:b3:23:35:80:41:8d:6c:c4:37:7b:81:2f:
#         80:a1:40:42:85:e9:d9:38:8d:e8:a1:53:cd:01:bf:69:e8:5a:
#         06:f2:45:0b:90:fa:ae:e1:bf:9d:f2:ae:57:3c:a5:ae:b2:56:
#         f4:8b:65:40:e9:fd:31:81:2c:f4:39:09:d8:ee:6b:a7:b4:a6:
#         1d:15:a5:98:f7:01:81:d8:85:7d:f3:51:5c:71:88:de:ba:cc:
#         1f:80:7e:4a

[p11-kit-object-v1]
label: "emSign Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            86:4d:bf:0f:e3:5e:d7:7d:8e:d8
#        Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C = IN, OU = emSign PKI, O = eMudhra Technologies Limited, CN = emSign Root CA - G2
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C = IN, OU = emSign PKI, O = eMudhra Technologies Limited, CN = emSign Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:c3:70:18:85:96:da:41:df:1c:af:ac:5d:33:70:
#                    c4:5d:3b:2b:e2:15:c9:24:ee:c8:53:36:af:5b:f4:
#                    d3:6c:14:7d:c7:53:fb:3b:39:38:ce:50:6c:c6:05:
#                    16:77:9d:5d:02:3a:80:21:4b:b2:32:ab:71:a7:a3:
#                    e3:c6:6d:df:b3:b2:11:bd:e2:68:fb:3b:0a:c3:f8:
#                    90:0c:93:c3:32:87:f5:a6:5e:ea:05:d8:1e:b2:6a:
#                    e3:4f:d9:54:c3:5c:41:52:36:3d:c2:29:e3:40:7f:
#                    48:03:76:81:46:7e:65:a5:2d:20:eb:d5:8c:4c:76:
#                    eb:f7:9b:35:a5:d1:22:cb:61:96:43:86:fd:c6:81:
#                    f9:04:70:0f:0d:6d:97:bd:f7:f1:99:6f:d0:cd:a8:
#                    4c:15:32:e0:1d:de:ed:d1:8f:e6:98:17:1f:bd:4c:
#                    8e:a1:cf:0a:83:68:fb:1b:fd:7f:43:53:05:3f:a1:
#                    50:36:bc:87:cc:14:b5:c1:90:ab:d0:83:78:94:e9:
#                    8d:67:03:d9:b3:f6:00:c7:55:1b:aa:15:a4:c0:14:
#                    79:4c:e8:70:2c:a0:96:fb:45:75:43:23:82:0c:41:
#                    6f:0e:2a:85:ab:b5:1d:73:c6:f0:eb:7d:87:02:fb:
#                    64:c8:bc:b6:44:f3:ae:f5:08:c7:16:fc:1b:d2:c5:
#                    ff:b9:0a:78:21:3b:b4:66:5a:57:30:d3:9d:7b:a2:
#                    7e:5d:e6:b1:1e:04:ac:7b:10:e0:fe:e5:56:ed:80:
#                    22:32:00:86:b0:17:a1:e7:43:89:d6:fb:a4:c7:1f:
#                    ed:30:01:76:b6:14:4f:52:68:1b:f0:22:2b:e2:7d:
#                    8c:ee:86:4e:37:80:0c:3e:0b:30:34:81:66:11:cc:
#                    b8:12:bf:3c:9f:e0:d2:41:81:b7:ef:c2:d4:bf:bf:
#                    1d:44:73:42:12:64:32:54:67:33:a4:6f:5e:80:ad:
#                    7c:aa:29:4a:59:ec:e6:da:d9:99:38:bd:ef:55:a3:
#                    6e:7f:3c:41:73:fa:d6:51:a9:04:25:0f:c0:28:ec:
#                    ee:ba:4e:62:f4:94:26:d2:3e:95:c6:c5:fb:7e:ea:
#                    90:8a:8e:5d:89:15:4f:77:2e:a4:34:a9:c3:e1:fc:
#                    f6:41:6d:8f:91:8a:63:e5:e7:cb:82:f1:63:ed:c8:
#                    bc:32:11:8b:27:7a:93:2d:43:3e:3e:f5:dc:32:34:
#                    ca:ab:de:12:9b:08:af:70:34:3d:dc:2e:c9:42:3b:
#                    09:2d:63:83:43:67:18:54:fa:5f:1c:ab:d3:10:7e:
#                    54:3b:7c:dc:52:58:5b:cb:f5:ea:4d:a9:6d:a4:38:
#                    91:5c:40:dd:a5:dd:5f:d7:59:63:25:51:d5:2e:7d:
#                    28:ce:f9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                ED:EC:4D:45:61:18:28:E7:B3:23:28:11:1C:4D:A5:27:0D:5E:EC:F4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         08:50:bf:8a:54:20:f0:a4:c2:54:1c:45:25:6f:ec:6b:3a:26:
#         91:2d:24:35:86:c4:21:98:38:07:7a:1b:ab:0b:09:ed:25:fd:
#         f3:3f:19:81:fc:c1:a7:3d:27:60:29:70:c0:98:d6:6c:53:75:
#         47:6c:d8:f2:90:84:a2:de:bf:76:09:80:f1:56:ea:d0:6c:61:
#         c0:f3:39:60:df:d2:66:ab:8d:c9:12:31:3b:77:14:76:50:1c:
#         c1:ff:af:49:ec:dd:54:27:fd:c0:ec:ef:48:01:77:ab:46:b9:
#         96:3b:db:75:b3:49:36:97:d2:71:05:69:ed:45:1d:e6:c0:6c:
#         66:4f:23:5c:ed:4a:43:f8:28:fd:57:ff:18:33:e7:ac:81:66:
#         c6:90:08:18:4d:ec:82:73:bc:94:0b:fd:17:35:1a:01:eb:af:
#         ec:75:9e:e3:bc:4d:f4:9e:fe:6d:0c:c5:f7:7c:87:b8:85:c0:
#         08:f4:cb:a5:01:e1:83:6c:cc:bf:90:bb:04:06:ee:0c:77:db:
#         8f:50:ae:db:de:19:f3:7d:b2:85:27:c1:73:38:96:1a:c9:0e:
#         be:5d:de:b3:61:1c:1f:2b:5b:4b:d7:3d:3f:ed:33:32:99:1a:
#         ef:31:82:d4:51:eb:bc:b6:ff:16:87:6e:1f:ce:93:79:9b:74:
#         42:36:7a:a5:ca:65:37:3a:1a:c4:39:c3:bf:34:c9:e8:20:b6:
#         12:7c:be:a8:7f:c0:3c:50:ae:55:4b:f9:ff:08:f0:17:e1:cf:
#         9b:c3:ee:a7:60:11:8f:d7:04:a7:dd:be:d2:a7:1e:ad:f1:da:
#         70:da:b9:84:c7:86:65:d6:c0:fd:dc:dd:51:1f:f9:cf:9c:d7:
#         77:10:24:9e:5f:26:71:f1:9b:d1:e3:0d:49:35:d0:9a:60:7f:
#         8b:80:1e:70:d9:eb:ef:6b:98:8f:39:5a:5d:41:98:37:b3:6b:
#         6f:a5:e8:b8:6d:29:9e:1d:3f:04:1b:56:5a:9d:14:4a:12:0f:
#         a5:61:00:aa:ce:d1:24:18:fa:fb:56:54:61:76:78:39:ba:c2:
#         c3:de:b6:0f:18:4d:da:9d:7d:1f:1c:3d:2e:db:94:51:c2:ea:
#         a9:33:eb:15:76:2f:c0:ee:2d:a2:e8:fb:28:99:c0:91:a4:d4:
#         7d:71:9d:11:a1:55:b4:58:a0:d4:40:37:d1:6c:c9:63:65:f5:
#         bc:04:3b:85:59:e7:88:28:e0:69:70:06:aa:3b:14:ea:c9:25:
#         34:cf:67:c4:3c:79:ac:50:82:08:4b:63:f4:a8:7c:50:78:c6:
#         2b:64:2a:80:fe:64:c2:0b:6d:8c:e0:29:40:c6:82:a1:ec:cc:
#         7c:ae:0a:0f:b5:a9:39:75

[p11-kit-object-v1]
label: "ipsCA Global CA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAp+/MgDCwkSRPsGj4w8ot
FThVWILiOGOw96OSb4O4sF6wjKxUsXfQUOCXs5CtirMfOStFVveq4t98suxvUy+a
y9DmZsvJE+hy4rTNMVeHErWT6PpyzupH8oy0sGPXBAC3ZDY5l+iV8Yj5cQ0DJ4xh
zwiDlk+DxU7oXPgGcPECqhweqciqfuddzY08FG9n0BupI0iLISg6ikzmETH5IS6y
Z2bGKW6Uk89AlvywPb+ytJO/VnG2pUGHsFi1WSMoSbiY+VAeLRUoC0ysSdGEqZua
53JUtzjQ28n+qXPVbRDNjnXr/pf9gDz8tNhI9JlGC4gUpLYu20xg9CHBbICVFNWv
1QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ipsCA Global CA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, ST = Madrid, L = Madrid, O = IPS Certification Authority s.l. ipsCA, OU = ipsCA, CN = ipsCA Global CA Root, emailAddress = global01@ipsca.com
#        Validity
#            Not Before: Sep  7 14:38:44 2009 GMT
#            Not After : Dec 25 14:38:44 2029 GMT
#        Subject: C = ES, ST = Madrid, L = Madrid, O = IPS Certification Authority s.l. ipsCA, OU = ipsCA, CN = ipsCA Global CA Root, emailAddress = global01@ipsca.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:a7:ef:cc:80:30:b0:91:24:4f:b0:68:f8:c3:ca:
#                    2d:15:38:55:58:82:e2:38:63:b0:f7:a3:92:6f:83:
#                    b8:b0:5e:b0:8c:ac:54:b1:77:d0:50:e0:97:b3:90:
#                    ad:8a:b3:1f:39:2b:45:56:f7:aa:e2:df:7c:b2:ec:
#                    6f:53:2f:9a:cb:d0:e6:66:cb:c9:13:e8:72:e2:b4:
#                    cd:31:57:87:12:b5:93:e8:fa:72:ce:ea:47:f2:8c:
#                    b4:b0:63:d7:04:00:b7:64:36:39:97:e8:95:f1:88:
#                    f9:71:0d:03:27:8c:61:cf:08:83:96:4f:83:c5:4e:
#                    e8:5c:f8:06:70:f1:02:aa:1c:1e:a9:c8:aa:7e:e7:
#                    5d:cd:8d:3c:14:6f:67:d0:1b:a9:23:48:8b:21:28:
#                    3a:8a:4c:e6:11:31:f9:21:2e:b2:67:66:c6:29:6e:
#                    94:93:cf:40:96:fc:b0:3d:bf:b2:b4:93:bf:56:71:
#                    b6:a5:41:87:b0:58:b5:59:23:28:49:b8:98:f9:50:
#                    1e:2d:15:28:0b:4c:ac:49:d1:84:a9:9b:9a:e7:72:
#                    54:b7:38:d0:db:c9:fe:a9:73:d5:6d:10:cd:8e:75:
#                    eb:fe:97:fd:80:3c:fc:b4:d8:48:f4:99:46:0b:88:
#                    14:a4:b6:2e:db:4c:60:f4:21:c1:6c:80:95:14:d5:
#                    af:d5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                15:A6:96:80:B1:15:4B:31:C3:C2:9C:F6:E7:13:0B:4B:F3:18:CD:86
#            X509v3 Authority Key Identifier: 
#                keyid:15:A6:96:80:B1:15:4B:31:C3:C2:9C:F6:E7:13:0B:4B:F3:18:CD:86
#                DirName:/C=ES/ST=Madrid/L=Madrid/O=IPS Certification Authority s.l. ipsCA/OU=ipsCA/CN=ipsCA Global CA Root/emailAddress=global01@ipsca.com
#                serial:00
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, Time Stamping, Microsoft Encrypted File System
#            X509v3 Subject Alternative Name: 
#                email:global01@ipsca.com
#            X509v3 Issuer Alternative Name: 
#                email:global01@ipsca.com
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crlglobal01.ipsca.com/crl/crlglobal01.crl
#
#            Authority Information Access: 
#                OCSP - URI:http://crlglobal01.ipsca.com
#
#    Signature Algorithm: sha1WithRSAEncryption
#         18:f4:ae:fe:80:0f:8e:c1:77:6f:a2:5a:47:48:9f:23:55:a1:
#         53:6b:f9:5d:a7:30:a5:24:be:43:2f:f8:c1:d1:57:f9:3e:2c:
#         80:25:cc:46:a9:36:f3:49:5b:1d:f6:7c:d7:63:b3:4d:3e:78:
#         f6:a7:b4:02:77:f8:79:0d:3e:6a:cb:18:60:b8:fd:00:af:0c:
#         dd:54:e3:54:8f:22:3d:f3:10:6f:11:0d:b5:1e:7a:8d:27:cc:
#         08:b8:5b:c3:b8:1a:5f:2b:a7:60:3f:00:1c:f7:0f:5c:42:66:
#         64:9e:87:12:80:70:89:e0:fa:57:28:0e:4e:1f:10:2f:d9:05:
#         80:b6:80:2f:1c:69:f0:f6:b6:65:34:05:6f:ca:d9:3e:f8:d4:
#         5d:37:32:c7:b8:2b:cc:ff:73:93:00:71:e0:01:c8:aa:43:bd:
#         a9:f1:ce:fa:80:f9:f1:43:12:91:a6:65:e5:60:07:4d:47:ba:
#         2b:2f:04:f6:4a:85:29:88:65:10:c9:b2:53:62:9c:6c:9b:60:
#         5c:1a:1b:d3:ae:c5:1d:72:99:06:ff:05:cc:86:26:73:b4:d4:
#         54:05:dd:1e:6b:00:3b:b7:89:e8:e3:91:02:20:12:eb:ef:e9:
#         fe:0a:29:23:81:23:a3:00:da:70:cc:92:5f:37:23:d0:1c:7b:
#         35:5c:03:7a

[p11-kit-object-v1]
label: "ipsCA Main CA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlTAlsn0iTNo/FsJn32XM
60WSR2WerHbPbGrJzgPNo8M4cuNtpWulUofmYqX7AX3vZ0TLtkHvC2B9Sv0i7aHj
9J2yQmDONg0pWXnuYgd6uRNNxGM1l7am9QaM7RllP4wmNH/u6CmWi6t8doAUxCdR
nGO/KpSGGI+QnoX9Gtl0cNB/7B2kLHpRxYEUq1WzYpWDD4NIaIa37z8Gi46laMKj
WaaZUEsNvFxyFeCyRYseWckqT1vWor/Bf72opqJ9fCkE4Ru6QsFsztm7ulQwPSeH
wZy4D7LbX0SAmmpDTRbT3MRwqI6YaBziMsOxRyCLC2qKn/9VwY+9dnkueJswCHAu
bwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ipsCA Main CA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = ES, ST = Madrid, L = Madrid, O = IPS Certification Authority s.l. ipsCA, OU = ipsCA, CN = ipsCA Main CA Root, emailAddress = main01@ipsca.com
#        Validity
#            Not Before: Sep  7 14:54:36 2009 GMT
#            Not After : Dec 25 14:54:36 2029 GMT
#        Subject: C = ES, ST = Madrid, L = Madrid, O = IPS Certification Authority s.l. ipsCA, OU = ipsCA, CN = ipsCA Main CA Root, emailAddress = main01@ipsca.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:95:30:25:b2:7d:22:4c:da:3f:16:c2:67:df:65:
#                    cc:eb:45:92:47:65:9e:ac:76:cf:6c:6a:c9:ce:03:
#                    cd:a3:c3:38:72:e3:6d:a5:6b:a5:52:87:e6:62:a5:
#                    fb:01:7d:ef:67:44:cb:b6:41:ef:0b:60:7d:4a:fd:
#                    22:ed:a1:e3:f4:9d:b2:42:60:ce:36:0d:29:59:79:
#                    ee:62:07:7a:b9:13:4d:c4:63:35:97:b6:a6:f5:06:
#                    8c:ed:19:65:3f:8c:26:34:7f:ee:e8:29:96:8b:ab:
#                    7c:76:80:14:c4:27:51:9c:63:bf:2a:94:86:18:8f:
#                    90:9e:85:fd:1a:d9:74:70:d0:7f:ec:1d:a4:2c:7a:
#                    51:c5:81:14:ab:55:b3:62:95:83:0f:83:48:68:86:
#                    b7:ef:3f:06:8b:8e:a5:68:c2:a3:59:a6:99:50:4b:
#                    0d:bc:5c:72:15:e0:b2:45:8b:1e:59:c9:2a:4f:5b:
#                    d6:a2:bf:c1:7f:bd:a8:a6:a2:7d:7c:29:04:e1:1b:
#                    ba:42:c1:6c:ce:d9:bb:ba:54:30:3d:27:87:c1:9c:
#                    b8:0f:b2:db:5f:44:80:9a:6a:43:4d:16:d3:dc:c4:
#                    70:a8:8e:98:68:1c:e2:32:c3:b1:47:20:8b:0b:6a:
#                    8a:9f:ff:55:c1:8f:bd:76:79:2e:78:9b:30:08:70:
#                    2e:6f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                61:ED:39:8D:6B:3C:E1:36:C6:CF:DB:41:FC:1B:43:51:57:CB:4D:6B
#            X509v3 Authority Key Identifier: 
#                keyid:61:ED:39:8D:6B:3C:E1:36:C6:CF:DB:41:FC:1B:43:51:57:CB:4D:6B
#                DirName:/C=ES/ST=Madrid/L=Madrid/O=IPS Certification Authority s.l. ipsCA/OU=ipsCA/CN=ipsCA Main CA Root/emailAddress=main01@ipsca.com
#                serial:00
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, Time Stamping, Microsoft Encrypted File System
#            X509v3 Subject Alternative Name: 
#                email:main01@ipsca.com
#            X509v3 Issuer Alternative Name: 
#                email:main01@ipsca.com
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crlmain01.ipsca.com/crl/main01.crl
#
#            Authority Information Access: 
#                OCSP - URI:http://crlmain01.ipsca.com
#
#    Signature Algorithm: sha1WithRSAEncryption
#         46:9c:0f:62:b6:da:3d:1c:69:3e:be:22:c1:e9:7e:20:ef:c9:
#         ee:fa:c6:10:9e:65:5d:4f:b8:44:b3:d4:21:69:56:4f:72:7e:
#         62:de:9b:49:87:9d:e3:c8:60:ad:6f:b0:06:37:1d:40:e1:7d:
#         3a:d0:13:d6:97:e2:87:76:f7:1f:4d:d3:83:2d:0a:b9:88:59:
#         d2:21:cf:e6:c0:76:8f:b5:49:6b:f9:3c:cd:5e:2b:a9:e9:a4:
#         29:13:cf:0a:fa:9d:93:2d:db:38:e1:72:2a:0d:3b:2f:70:97:
#         bd:d9:b3:04:b1:a2:6e:fa:6f:84:cf:60:71:3b:9a:e3:85:d8:
#         7f:b8:0d:32:1b:a0:fa:05:64:16:68:24:3b:9b:f8:cc:2a:00:
#         11:7f:c0:2a:dc:3d:e9:29:94:71:02:a3:18:6e:2c:0c:30:05:
#         ce:98:96:4d:1a:f6:51:63:a1:46:f4:2f:8f:51:1f:3d:ae:87:
#         52:fd:c0:3b:93:c8:8c:72:d1:71:c8:99:ea:7d:a4:0c:8c:9f:
#         31:87:7a:f7:db:95:f0:bf:6f:45:cf:ac:85:df:d1:46:5e:65:
#         42:93:4a:10:17:74:18:05:02:5a:4c:92:37:e1:e2:2d:43:0a:
#         ba:9a:aa:44:4c:87:cd:c4:94:dc:6f:1b:6a:c7:12:92:64:b7:
#         00:f8:25:4d

[p11-kit-object-v1]
label: "state-institutions"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsOVlssCsZJbyiBuz7Z7k
AsZPK4jOLopRgHWvEFvyyzhmm6IObTRHlqWSEa/2NUeidyIMzhaIYqrTSW4YvC5E
2L7GnsIaGaxBjvwwBwLyxmrUWyMA70E02KRzY98ikjOEAaWN84Nc+rjUejXf7Pht
D+BM7a2cOn2G1qUIlL59ehEf/oU/VFqIY4ecpbGnTs23RHOvz4pJax/jzddJTVor
F+ZcdrO7crlvJ9KbiRWI3xBfdiEBascVMQrRnFj4KBYFbdlO2aHXByDLSyaJTZKy
p7qW6ONYjyKcAZZaxPcxTQtJteF4YeJUGAa7nlQ0fgw+6+61gB/dFoQdaDhmZ3P4
kQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "state-institutions"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEGTCCAwGgAwIBAgIEOzz5yTANBgkqhkiG9w0BAQUFADA9MQswCQYDVQQGEwJz
aTEbMBkGA1UEChMSc3RhdGUtaW5zdGl0dXRpb25zMREwDwYDVQQLEwhzaWdlbi1j
YTAeFw0wMTA2MjkyMTI3NDZaFw0yMTA2MjkyMTU3NDZaMD0xCzAJBgNVBAYTAnNp
MRswGQYDVQQKExJzdGF0ZS1pbnN0aXR1dGlvbnMxETAPBgNVBAsTCHNpZ2VuLWNh
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsOVlssCsZJbyiBuz7Z7k
AsZPK4jOLopRgHWvEFvyyzhmm6IObTRHlqWSEa/2NUeidyIMzhaIYqrTSW4YvC5E
2L7GnsIaGaxBjvwwBwLyxmrUWyMA70E02KRzY98ikjOEAaWN84Nc+rjUejXf7Pht
D+BM7a2cOn2G1qUIlL59ehEf/oU/VFqIY4ecpbGnTs23RHOvz4pJax/jzddJTVor
F+ZcdrO7crlvJ9KbiRWI3xBfdiEBascVMQrRnFj4KBYFbdlO2aHXByDLSyaJTZKy
p7qW6ONYjyKcAZZaxPcxTQtJteF4YeJUGAa7nlQ0fgw+6+61gB/dFoQdaDhmZ3P4
kQIDAQABo4IBHzCCARswEQYJYIZIAYb4QgEBBAQDAgAHMF8GA1UdHwRYMFYwVKBS
oFCkTjBMMQswCQYDVQQGEwJzaTEbMBkGA1UEChMSc3RhdGUtaW5zdGl0dXRpb25z
MREwDwYDVQQLEwhzaWdlbi1jYTENMAsGA1UEAxMEQ1JMMTArBgNVHRAEJDAigA8y
MDAxMDYyOTIxMjc0NlqBDzIwMjEwNjI5MjE1NzQ2WjALBgNVHQ8EBAMCAQYwHwYD
VR0jBBgwFoAUcXuKBh8xBVWrYBJ3RyAeA4gY7IkwHQYDVR0OBBYEFHF7igYfMQVV
q2ASd0cgHgOIGOyJMAwGA1UdEwQFMAMBAf8wHQYJKoZIhvZ9B0EABBAwDhsIVjUu
MDo0LjADAgSQMA0GCSqGSIb3DQEBBQUAA4IBAQAAumM08xgY7q5+jZLHNfXCE9TW
AKohMhbW0Fv6KbCN+hd3kvmltvb5hz8GDyDuYj0096kvx6k70CeITKzdyanlWliF
1xI1Pdywglty9Ltzt/v+OCGYBICyiGIPHqw6Fqnmswr2FRBFA6OX4s2sENz5AB6/
c2xD7HciFgYvloOJe7C4U0RBCNyAHwXbGQl2h741nU4hS7STwWg6nV82/qGuMCxL
3ngkOljWFkPvnZk4iyqY/jDRwurWryXVpXYLue9AOS72698yXh19h7VEzAI50iaV
cthvhUOojw6jRs7Xzui5Vqn4iRcSH0NJBnoy5z++b3m+1jPXTDwo/BLxdnYY
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 993851849 (0x3b3cf9c9)
#        Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C = si, O = state-institutions, OU = sigen-ca
#        Validity
#            Not Before: Jun 29 21:27:46 2001 GMT
#            Not After : Jun 29 21:57:46 2021 GMT
#        Subject: C = si, O = state-institutions, OU = sigen-ca
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b0:e5:65:b2:c0:ac:64:96:f2:88:1b:b3:ed:9e:
#                    e4:02:c6:4f:2b:88:ce:2e:8a:51:80:75:af:10:5b:
#                    f2:cb:38:66:9b:a2:0e:6d:34:47:96:a5:92:11:af:
#                    f6:35:47:a2:77:22:0c:ce:16:88:62:aa:d3:49:6e:
#                    18:bc:2e:44:d8:be:c6:9e:c2:1a:19:ac:41:8e:fc:
#                    30:07:02:f2:c6:6a:d4:5b:23:00:ef:41:34:d8:a4:
#                    73:63:df:22:92:33:84:01:a5:8d:f3:83:5c:fa:b8:
#                    d4:7a:35:df:ec:f8:6d:0f:e0:4c:ed:ad:9c:3a:7d:
#                    86:d6:a5:08:94:be:7d:7a:11:1f:fe:85:3f:54:5a:
#                    88:63:87:9c:a5:b1:a7:4e:cd:b7:44:73:af:cf:8a:
#                    49:6b:1f:e3:cd:d7:49:4d:5a:2b:17:e6:5c:76:b3:
#                    bb:72:b9:6f:27:d2:9b:89:15:88:df:10:5f:76:21:
#                    01:6a:c7:15:31:0a:d1:9c:58:f8:28:16:05:6d:d9:
#                    4e:d9:a1:d7:07:20:cb:4b:26:89:4d:92:b2:a7:ba:
#                    96:e8:e3:58:8f:22:9c:01:96:5a:c4:f7:31:4d:0b:
#                    49:b5:e1:78:61:e2:54:18:06:bb:9e:54:34:7e:0c:
#                    3e:eb:ee:b5:80:1f:dd:16:84:1d:68:38:66:67:73:
#                    f8:91
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName:C = si, O = state-institutions, OU = sigen-ca, CN = CRL1
#
#            X509v3 Private Key Usage Period: 
#                Not Before: Jun 29 21:27:46 2001 GMT, Not After: Jun 29 21:57:46 2021 GMT
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:71:7B:8A:06:1F:31:05:55:AB:60:12:77:47:20:1E:03:88:18:EC:89
#
#            X509v3 Subject Key Identifier: 
#                71:7B:8A:06:1F:31:05:55:AB:60:12:77:47:20:1E:03:88:18:EC:89
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            1.2.840.113533.7.65.0: 
#                0...V5.0:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         00:ba:63:34:f3:18:18:ee:ae:7e:8d:92:c7:35:f5:c2:13:d4:
#         d6:00:aa:21:32:16:d6:d0:5b:fa:29:b0:8d:fa:17:77:92:f9:
#         a5:b6:f6:f9:87:3f:06:0f:20:ee:62:3d:34:f7:a9:2f:c7:a9:
#         3b:d0:27:88:4c:ac:dd:c9:a9:e5:5a:58:85:d7:12:35:3d:dc:
#         b0:82:5b:72:f4:bb:73:b7:fb:fe:38:21:98:04:80:b2:88:62:
#         0f:1e:ac:3a:16:a9:e6:b3:0a:f6:15:10:45:03:a3:97:e2:cd:
#         ac:10:dc:f9:00:1e:bf:73:6c:43:ec:77:22:16:06:2f:96:83:
#         89:7b:b0:b8:53:44:41:08:dc:80:1f:05:db:19:09:76:87:be:
#         35:9d:4e:21:4b:b4:93:c1:68:3a:9d:5f:36:fe:a1:ae:30:2c:
#         4b:de:78:24:3a:58:d6:16:43:ef:9d:99:38:8b:2a:98:fe:30:
#         d1:c2:ea:d6:af:25:d5:a5:76:0b:b9:ef:40:39:2e:f6:eb:df:
#         32:5e:1d:7d:87:b5:44:cc:02:39:d2:26:95:72:d8:6f:85:43:
#         a8:8f:0e:a3:46:ce:d7:ce:e8:b9:56:a9:f8:89:17:12:1f:43:
#         49:06:7a:32:e7:3f:be:6f:79:be:d6:33:d7:4c:3c:28:fc:12:
#         f1:76:76:18

[p11-kit-object-v1]
label: "thawte Primary Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEotWcgnuVnfFSeIf+iha/BebfowJPDQfG
AFG6DAJSLSKkQjnE/o/qycG+1E3/n3qe4rF8mq2nhglzh9HnmuN6papu+7qzcMBn
iKI11KOasf2twu8x+qi58/sIxpHR+ymV
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "thawte Primary Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICiDCCAg2gAwIBAgIQNfwmXNmET8k9Jj1Xm67XVjAKBggqhkjOPQQDAzCBhDEL
MAkGA1UEBhMCVVMxFTATBgNVBAoTDHRoYXd0ZSwgSW5jLjE4MDYGA1UECxMvKGMp
IDIwMDcgdGhhd3RlLCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxJDAi
BgNVBAMTG3RoYXd0ZSBQcmltYXJ5IFJvb3QgQ0EgLSBHMjAeFw0wNzExMDUwMDAw
MDBaFw0zODAxMTgyMzU5NTlaMIGEMQswCQYDVQQGEwJVUzEVMBMGA1UEChMMdGhh
d3RlLCBJbmMuMTgwNgYDVQQLEy8oYykgMjAwNyB0aGF3dGUsIEluYy4gLSBGb3Ig
YXV0aG9yaXplZCB1c2Ugb25seTEkMCIGA1UEAxMbdGhhd3RlIFByaW1hcnkgUm9v
dCBDQSAtIEcyMHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEotWcgnuVnfFSeIf+iha/
BebfowJPDQfGAFG6DAJSLSKkQjnE/o/qycG+1E3/n3qe4rF8mq2nhglzh9HnmuN6
papu+7qzcMBniKI11KOasf2twu8x+qi58/sIxpHR+ymVo0IwQDAPBgNVHRMBAf8E
BTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQUmtgAMADna3+FGO6Lts6K
DPgR4bswCgYIKoZIzj0EAwMDaQAwZgIxAN344FdHW6fmCsO99YCKlzUNG4k8VIZ3
KMqh9HneteY4sPBlcIx/AlTCv//YoT7ZzwIxAMSNlPzcU9LcnXgWHxUzI1NS41ox
XZ3Krr0TKUQNJ1uo52icEvdYPy5yAlejj6EULg==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            35:fc:26:5c:d9:84:4f:c9:3d:26:3d:57:9b:ae:d7:56
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = US, O = "thawte, Inc.", OU = "(c) 2007 thawte, Inc. - For authorized use only", CN = thawte Primary Root CA - G2
#        Validity
#            Not Before: Nov  5 00:00:00 2007 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C = US, O = "thawte, Inc.", OU = "(c) 2007 thawte, Inc. - For authorized use only", CN = thawte Primary Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:a2:d5:9c:82:7b:95:9d:f1:52:78:87:fe:8a:16:
#                    bf:05:e6:df:a3:02:4f:0d:07:c6:00:51:ba:0c:02:
#                    52:2d:22:a4:42:39:c4:fe:8f:ea:c9:c1:be:d4:4d:
#                    ff:9f:7a:9e:e2:b1:7c:9a:ad:a7:86:09:73:87:d1:
#                    e7:9a:e3:7a:a5:aa:6e:fb:ba:b3:70:c0:67:88:a2:
#                    35:d4:a3:9a:b1:fd:ad:c2:ef:31:fa:a8:b9:f3:fb:
#                    08:c6:91:d1:fb:29:95
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9A:D8:00:30:00:E7:6B:7F:85:18:EE:8B:B6:CE:8A:0C:F8:11:E1:BB
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:dd:f8:e0:57:47:5b:a7:e6:0a:c3:bd:f5:80:
#         8a:97:35:0d:1b:89:3c:54:86:77:28:ca:a1:f4:79:de:b5:e6:
#         38:b0:f0:65:70:8c:7f:02:54:c2:bf:ff:d8:a1:3e:d9:cf:02:
#         31:00:c4:8d:94:fc:dc:53:d2:dc:9d:78:16:1f:15:33:23:53:
#         52:e3:5a:31:5d:9d:ca:ae:bd:13:29:44:0d:27:5b:a8:e7:68:
#         9c:12:f7:58:3f:2e:72:02:57:a3:8f:a1:14:2e

[p11-kit-object-v1]
label: "thawte Primary Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsr8nLPvb2FvdeHsbnndm
gcs+vHyu86YnmjSjaDFxODNi5PNxZnmxqWWjpYvVj2AtP0LMqmsywCPLLEHd5N/8
YZzic7IilRFDGF/Eth9XbAoFWCLINkw6fKXRz4aviKdEAhN0cXMKQlkC+BsUa0Lf
b1+6a4KinVvnSr0eAXLbS3ToO39/fR8EtCab4LRarEc9VbjXsCZSKAExQGbY2SS9
9irY7CFJXJv2eul/VTV+lmuNk5Mny5K76qxAwJ/C+IDPXfRa3M50hqY+bAtTyr2S
zhkGcuYMXDhpxwTWvGzOW/b3aJzcJRVIiKHpqfiYnODz1TEoYRFsZ5aNOZnLwkUk
OQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "thawte Primary Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEKjCCAxKgAwIBAgIQYAGXt0an6rS0mtZLL/eQ+zANBgkqhkiG9w0BAQsFADCB
rjELMAkGA1UEBhMCVVMxFTATBgNVBAoTDHRoYXd0ZSwgSW5jLjEoMCYGA1UECxMf
Q2VydGlmaWNhdGlvbiBTZXJ2aWNlcyBEaXZpc2lvbjE4MDYGA1UECxMvKGMpIDIw
MDggdGhhd3RlLCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxJDAiBgNV
BAMTG3RoYXd0ZSBQcmltYXJ5IFJvb3QgQ0EgLSBHMzAeFw0wODA0MDIwMDAwMDBa
Fw0zNzEyMDEyMzU5NTlaMIGuMQswCQYDVQQGEwJVUzEVMBMGA1UEChMMdGhhd3Rl
LCBJbmMuMSgwJgYDVQQLEx9DZXJ0aWZpY2F0aW9uIFNlcnZpY2VzIERpdmlzaW9u
MTgwNgYDVQQLEy8oYykgMjAwOCB0aGF3dGUsIEluYy4gLSBGb3IgYXV0aG9yaXpl
ZCB1c2Ugb25seTEkMCIGA1UEAxMbdGhhd3RlIFByaW1hcnkgUm9vdCBDQSAtIEcz
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsr8nLPvb2FvdeHsbnndm
gcs+vHyu86YnmjSjaDFxODNi5PNxZnmxqWWjpYvVj2AtP0LMqmsywCPLLEHd5N/8
YZzic7IilRFDGF/Eth9XbAoFWCLINkw6fKXRz4aviKdEAhN0cXMKQlkC+BsUa0Lf
b1+6a4KinVvnSr0eAXLbS3ToO39/fR8EtCab4LRarEc9VbjXsCZSKAExQGbY2SS9
9irY7CFJXJv2eul/VTV+lmuNk5Mny5K76qxAwJ/C+IDPXfRa3M50hqY+bAtTyr2S
zhkGcuYMXDhpxwTWvGzOW/b3aJzcJRVIiKHpqfiYnODz1TEoYRFsZ5aNOZnLwkUk
OQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNV
HQ4EFgQUrWyqlGCc7eT/+j4KdCtjA/e2Wb8wDQYJKoZIhvcNAQELBQADggEBABpA
2JVlrAmSicY59BDlqQ5mU1143vokkbvnRFHfxhY0Cu9qRFHqKweKA3rD6z8KLFIW
oCtDuSWQP3CpMyVtRRooOyfPqsMpQhvfO0zAMzRbQYi/aytlryjvsvXDqmbOe1bu
t8jLZ8HJnBoYuMTDSQPxYA5QzUbF83d597YV4Djbxy8ooAw/dyZ02SUS2jHaGh7c
KUGRIjxpp7sC8rZcJwOJ9Abqm+RyguOhCcHpABnTPtRwa7pxpqpYrvS76Wy274fM
m7v/OeZWYdMKp8RcTGB7BXcmer/YB1IsYvdwY9k5vG8cwnncdimvzsUsZAReiDZu
MdRAGmI0Nj81Aa6sY6A=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            60:01:97:b7:46:a7:ea:b4:b4:9a:d6:4b:2f:f7:90:fb
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = US, O = "thawte, Inc.", OU = Certification Services Division, OU = "(c) 2008 thawte, Inc. - For authorized use only", CN = thawte Primary Root CA - G3
#        Validity
#            Not Before: Apr  2 00:00:00 2008 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C = US, O = "thawte, Inc.", OU = Certification Services Division, OU = "(c) 2008 thawte, Inc. - For authorized use only", CN = thawte Primary Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (2048 bit)
#                Modulus:
#                    00:b2:bf:27:2c:fb:db:d8:5b:dd:78:7b:1b:9e:77:
#                    66:81:cb:3e:bc:7c:ae:f3:a6:27:9a:34:a3:68:31:
#                    71:38:33:62:e4:f3:71:66:79:b1:a9:65:a3:a5:8b:
#                    d5:8f:60:2d:3f:42:cc:aa:6b:32:c0:23:cb:2c:41:
#                    dd:e4:df:fc:61:9c:e2:73:b2:22:95:11:43:18:5f:
#                    c4:b6:1f:57:6c:0a:05:58:22:c8:36:4c:3a:7c:a5:
#                    d1:cf:86:af:88:a7:44:02:13:74:71:73:0a:42:59:
#                    02:f8:1b:14:6b:42:df:6f:5f:ba:6b:82:a2:9d:5b:
#                    e7:4a:bd:1e:01:72:db:4b:74:e8:3b:7f:7f:7d:1f:
#                    04:b4:26:9b:e0:b4:5a:ac:47:3d:55:b8:d7:b0:26:
#                    52:28:01:31:40:66:d8:d9:24:bd:f6:2a:d8:ec:21:
#                    49:5c:9b:f6:7a:e9:7f:55:35:7e:96:6b:8d:93:93:
#                    27:cb:92:bb:ea:ac:40:c0:9f:c2:f8:80:cf:5d:f4:
#                    5a:dc:ce:74:86:a6:3e:6c:0b:53:ca:bd:92:ce:19:
#                    06:72:e6:0c:5c:38:69:c7:04:d6:bc:6c:ce:5b:f6:
#                    f7:68:9c:dc:25:15:48:88:a1:e9:a9:f8:98:9c:e0:
#                    f3:d5:31:28:61:11:6c:67:96:8d:39:99:cb:c2:45:
#                    24:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                AD:6C:AA:94:60:9C:ED:E4:FF:FA:3E:0A:74:2B:63:03:F7:B6:59:BF
#    Signature Algorithm: sha256WithRSAEncryption
#         1a:40:d8:95:65:ac:09:92:89:c6:39:f4:10:e5:a9:0e:66:53:
#         5d:78:de:fa:24:91:bb:e7:44:51:df:c6:16:34:0a:ef:6a:44:
#         51:ea:2b:07:8a:03:7a:c3:eb:3f:0a:2c:52:16:a0:2b:43:b9:
#         25:90:3f:70:a9:33:25:6d:45:1a:28:3b:27:cf:aa:c3:29:42:
#         1b:df:3b:4c:c0:33:34:5b:41:88:bf:6b:2b:65:af:28:ef:b2:
#         f5:c3:aa:66:ce:7b:56:ee:b7:c8:cb:67:c1:c9:9c:1a:18:b8:
#         c4:c3:49:03:f1:60:0e:50:cd:46:c5:f3:77:79:f7:b6:15:e0:
#         38:db:c7:2f:28:a0:0c:3f:77:26:74:d9:25:12:da:31:da:1a:
#         1e:dc:29:41:91:22:3c:69:a7:bb:02:f2:b6:5c:27:03:89:f4:
#         06:ea:9b:e4:72:82:e3:a1:09:c1:e9:00:19:d3:3e:d4:70:6b:
#         ba:71:a6:aa:58:ae:f4:bb:e9:6c:b6:ef:87:cc:9b:bb:ff:39:
#         e6:56:61:d3:0a:a7:c4:5c:4c:60:7b:05:77:26:7a:bf:d8:07:
#         52:2c:62:f7:70:63:d9:39:bc:6f:1c:c2:79:dc:76:29:af:ce:
#         c5:2c:64:04:5e:88:36:6e:31:d4:40:1a:62:34:36:3f:35:01:
#         ae:ac:63:a0

[p11-kit-object-v1]
label: "vTrus ECC Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEZVBKrox5lkqqHAjDo6LN/llWQXf9JpRC
ux3NCNtzslt188+cToL0v/hhJoVs1oVbcnDS/dtitN9Ti72xRFhiQgnH+n9bEOf+
QP3A2MMrMudwpremIFUde4BdS49nTPEQ
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "vTrus ECC Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6e:6a:bc:59:aa:53:be:98:39:67:a2:d2:6b:a4:3b:e6:6d:1c:d6:da
#        Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C = CN, O = "iTrusChina Co.,Ltd.", CN = vTrus ECC Root CA
#        Validity
#            Not Before: Jul 31 07:26:44 2018 GMT
#            Not After : Jul 31 07:26:44 2043 GMT
#        Subject: C = CN, O = "iTrusChina Co.,Ltd.", CN = vTrus ECC Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub:
#                    04:65:50:4a:ae:8c:79:96:4a:aa:1c:08:c3:a3:a2:
#                    cd:fe:59:56:41:77:fd:26:94:42:bb:1d:cd:08:db:
#                    73:b2:5b:75:f3:cf:9c:4e:82:f4:bf:f8:61:26:85:
#                    6c:d6:85:5b:72:70:d2:fd:db:62:b4:df:53:8b:bd:
#                    b1:44:58:62:42:09:c7:fa:7f:5b:10:e7:fe:40:fd:
#                    c0:d8:c3:2b:32:e7:70:a6:b7:a6:20:55:1d:7b:80:
#                    5d:4b:8f:67:4c:f1:10
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                98:39:CD:BE:D8:B2:8C:F7:B2:AB:E1:AD:24:AF:7B:7C:A1:DB:1F:CF
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:57:9d:dd:56:f1:c7:e3:e9:b8:49:50:6b:9b:69:
#         c3:6f:ec:c3:7d:25:e4:57:95:13:40:9b:52:d3:3b:f3:40:19:
#         bc:26:c7:2d:06:9e:b5:7b:36:9f:f5:25:d4:63:6b:00:02:31:
#         00:e9:d3:c6:9e:56:9a:2a:cc:a1:da:3f:c8:66:2b:d3:58:9c:
#         20:85:fa:ab:91:8a:70:70:11:38:60:64:0b:62:09:91:58:00:
#         f9:4d:fb:34:68:da:09:ad:21:06:18:94:ce

[p11-kit-object-v1]
label: "vTrus Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "vTrus Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            43:e3:71:13:d8:b3:59:14:5d:b7:ce:8c:fd:35:fd:6f:bc:05:8d:45
#        Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C = CN, O = "iTrusChina Co.,Ltd.", CN = vTrus Root CA
#        Validity
#            Not Before: Jul 31 07:24:05 2018 GMT
#            Not After : Jul 31 07:24:05 2043 GMT
#        Subject: C = CN, O = "iTrusChina Co.,Ltd.", CN = vTrus Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                RSA Public-Key: (4096 bit)
#                Modulus:
#                    00:bd:55:7c:61:d3:b8:1d:04:62:05:a0:ae:6c:b7:
#                    70:b4:41:ea:4b:03:5e:10:3f:90:5a:1c:8b:3b:b0:
#                    66:8b:6c:48:a6:1c:22:ba:d5:40:92:ee:33:b2:23:
#                    59:c9:8e:bc:58:da:8b:9e:d0:19:f2:2f:59:c6:8c:
#                    63:5a:ba:9f:a3:0b:b0:b3:9a:5c:ba:11:b8:12:e9:
#                    0c:bb:cf:6e:6c:80:87:29:14:03:2c:8d:24:9a:c8:
#                    64:83:b5:6a:ac:13:2c:33:f1:9f:dc:2c:61:3c:1a:
#                    3f:70:55:9b:ad:00:52:7f:cf:04:b9:fe:36:fa:9c:
#                    c0:16:ae:62:fe:96:4c:43:7e:55:14:be:1a:b3:d2:
#                    6d:c2:af:76:66:95:6b:2a:b0:94:77:85:5e:04:0f:
#                    62:1d:63:75:f7:6b:e7:cb:5b:9a:70:ec:3e:67:05:
#                    f0:fe:07:08:80:cf:28:db:05:c6:14:27:2f:86:7d:
#                    f0:27:de:ff:e6:7e:33:48:e7:0b:1e:58:d1:27:2b:
#                    53:0e:57:4a:65:d7:fb:a2:80:60:fc:4c:bc:35:53:
#                    01:6a:97:72:82:af:f1:1d:70:e8:9c:f5:ef:5e:c2:
#                    6c:c7:47:7e:5a:94:85:26:4d:3b:ba:eb:4c:e8:b0:
#                    09:c2:65:c2:9d:9d:09:9b:4e:b5:97:05:ac:f5:06:
#                    a0:f7:36:05:7e:f4:90:b2:6b:c4:b4:f9:64:ea:e9:
#                    1a:0a:c8:0d:a8:ed:27:c9:d4:e7:b3:b9:ab:82:22:
#                    90:27:3d:2a:e8:7c:90:ef:bc:4f:fd:e2:0a:24:a7:
#                    de:65:24:a4:5d:ea:c0:76:30:d3:77:50:f8:0d:04:
#                    9b:94:36:01:73:ca:06:58:a6:d3:3b:dc:fa:04:46:
#                    13:55:8a:c9:44:47:b8:51:39:1a:2e:e8:34:e2:79:
#                    cb:59:4a:0a:7f:bc:a6:ef:1f:03:67:6a:59:2b:25:
#                    62:93:d9:53:19:66:3c:27:62:29:86:4d:a4:6b:ee:
#                    ff:d4:4e:ba:d5:b4:e2:8e:48:5a:00:19:09:f1:05:
#                    d9:ce:91:b1:f7:eb:e9:39:4f:f6:6f:04:43:9a:55:
#                    f5:3e:05:14:bd:bf:b3:59:b4:d8:8e:33:84:a3:90:
#                    52:aa:b3:02:95:60:f9:0c:4c:68:f9:ee:d5:17:0d:
#                    f8:71:57:b5:25:e4:29:ee:65:5d:af:d1:ee:3c:17:
#                    0b:5a:43:c5:a5:86:ea:24:9e:e2:05:07:dc:34:42:
#                    12:91:d6:39:74:ae:4c:41:82:db:f2:a6:48:d1:b3:
#                    9b:f3:33:aa:f3:a6:c0:c5:4e:f5:f4:9d:76:63:e6:
#                    02:c6:22:4b:c1:95:3f:50:64:2c:54:e5:b6:f0:3c:
#                    29:cf:57
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                54:62:70:63:F1:75:84:43:58:8E:D1:16:20:B1:C6:AC:1A:BC:F6:89
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         29:ba:92:49:a7:ad:f0:f1:70:c3:e4:97:f0:9f:a9:25:d5:6b:
#         9e:34:fe:e6:1a:64:f6:3a:6b:52:b2:10:78:1a:9f:4c:da:8a:
#         da:ec:1c:37:52:e0:42:4b:fb:6c:76:ca:24:0b:39:12:15:9d:
#         9f:11:2d:fc:79:64:dc:e0:e0:f5:dd:e0:57:c9:a5:b2:76:70:
#         50:a4:fe:b7:0a:70:d5:a0:34:f1:75:d7:4d:49:ba:11:d1:b3:
#         d8:ec:82:ff:eb:0e:c4:bf:64:2d:7d:63:6e:17:78:ec:5d:7c:
#         88:c8:eb:8e:57:76:d9:59:04:fa:bc:52:1f:45:ac:f0:7a:80:
#         ec:ec:6f:76:ae:91:db:10:8e:04:dc:92:df:a0:f6:e6:ae:49:
#         d3:c1:6c:12:1b:cc:29:aa:f9:08:a5:e2:37:14:ca:b1:b8:66:
#         ef:1a:82:e4:f0:f8:f1:a7:16:69:b7:db:a9:61:3c:9f:f5:31:
#         cb:e4:00:46:c2:2f:74:b1:b1:d7:81:ee:a8:26:95:bc:88:af:
#         4c:35:07:2a:02:ca:78:14:6d:47:2b:40:56:e9:cb:2a:60:a1:
#         67:03:a0:ce:8c:bc:b0:72:67:c4:31:ce:db:34:e5:25:03:60:
#         25:7b:71:98:e4:c0:1b:2b:5f:74:42:d2:4b:c5:59:08:07:87:
#         be:c5:c3:7f:e7:96:d9:e1:dc:28:97:d6:8f:05:e3:f5:9b:4e:
#         ca:1d:50:47:05:53:b0:ca:39:e7:85:a0:89:c1:05:3b:01:37:
#         d3:3f:49:e2:77:eb:23:c8:88:66:3b:3d:39:76:21:46:f1:ec:
#         5f:23:b8:eb:a2:66:75:74:c1:40:f7:d8:68:9a:93:e2:2d:a9:
#         2e:bd:1c:a3:1e:c8:74:c6:a4:2d:7a:20:ab:3b:b8:b0:46:fd:
#         6f:dd:5f:52:55:75:62:f0:97:a0:7c:d7:38:fd:25:df:cd:a0:
#         9b:10:cf:8b:b8:38:5e:5e:c5:b4:a6:02:36:a1:1e:5f:1c:cf:
#         e2:96:9d:29:aa:fd:98:ae:52:e1:f3:41:52:fb:a9:2e:72:96:
#         9f:27:e3:aa:73:7d:f8:1a:23:66:7b:3b:ab:65:b0:32:01:4b:
#         15:3e:3d:a2:4f:0c:2b:35:a2:c6:d9:67:12:35:30:cd:76:2e:
#         16:b3:99:9e:4d:4f:4e:2d:3b:34:43:e1:9a:0e:0d:a4:66:97:
#         ba:d2:1c:4a:4c:2c:2a:8b:8b:81:4f:71:1a:a9:dd:5c:7b:7b:
#         08:c5:00:0d:37:40:e3:7c:7b:54:5f:2f:85:5f:76:f6:f7:a7:
#         b0:1c:57:56:c1:72:e8:ad:a2:af:8d:33:49:ba:1f:8a:dc:e6:
#         74:7c:60:86:6f:87:97:7b