S/MIME which certificate format

Marco Moock mm at dorfdsl.de
Sat Jan 4 20:00:19 CET 2025


Am 05.11.2024 um 21:58:28 Uhr schrieb Werner Koch:

> Thanks for the certificate; that is really helful.  Please give me a
> few days to check it.  The good thing is that the parser works:
> 
> $ ~/b/libksba/tests/cert-basic x.cer
> Certificate in `x.cer':
>   serial....: (#00CDB882CF52A4258A4CB6FA03C415DDBD#)
>   issuer....: `CN=Sectigo RSA Client Authentication and Secure Email
> CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GB'
> notBefore.: 2024-06-10 00:00:00 notAfter..: 2026-06-10 23:59:59
>   hash algo.: 1.2.840.113549.1.1.11 (sha256WithRSAEncryption)
> Extn: 2.5.29.35 (authorityKeyIdentifier) at 801 with length 24 
> Extn: 2.5.29.14 (subjectKeyIdentifier) at 834 with length 22 
> Extn: 2.5.29.15 (keyUsage) at 868 with length 4 (critical)
> Extn: 2.5.29.19 (basicConstraints) at 884 with length 2 (critical)
> Extn: 2.5.29.37 (extKeyUsage) at 895 with length 12 
> Extn: 2.5.29.32 (certificatePolicies) at 916 with length 73 
> Extn: 2.5.29.31 (cRLDistributionPoints) at 998 with length 83 
> Extn: 1.3.6.1.5.5.7.1.1 (authorityInfoAccess) at 1096 with length 126 
> Extn: 2.5.29.17 (subjectAltName) at 1234 with length 17 (critical)
> SubjectKeyIdentifier: (#298E85EFE489A73582CC9324FDED349CDC915F33#)
> AuthorityKeyIdentifier: 
>          keyIdentifier: (#09C0F2FC0BDA94DB5FFE2BDFA89942CFC9E0AD00#)
> KeyUsage: digitalSignature keyEncipherment
> [...]
> 
> Thus I only need to look at gpgsm code.

Anything new regarding that?

-- 
kind regards
Marco



More information about the Gnupg-users mailing list