<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" "http://www.w3.org/TR/REC-html40/loose.dtd">
<html lang="en">
<head>
<meta content="text/html; charset=US-ASCII" http-equiv="Content-Type">
<title>
GitLab
</title>


<style>img {
max-width: 100%; height: auto;
}
</style>
</head>
<body>
<div class="content">

<p style="color: #777777;">
<a href="https://gitlab.com/samuelharmer">Samuel Harmer</a>
<a href="https://gitlab.com/gnutls/gnutls/-/issues/1144#note_513549011">commented</a>:
</p>
<div style="">
<p dir="auto">Seeing this issue (via <a href="https://github.com/marlam/msmtp-mirror/issues/43" rel="nofollow noreferrer noopener" target="_blank">msmtp</a>).</p>
<pre class="code highlight js-syntax-highlight plaintext" lang="plaintext" v-pre="true"><code><span id="LC1" class="line" lang="plaintext">FreeBSD clang version 10.0.1 (git@github.com:llvm/llvm-project.git llvmorg-10.0.1-0-gef32c611aa2)</span>
<span id="LC2" class="line" lang="plaintext">Target: x86_64-unknown-freebsd12.2</span>
<span id="LC3" class="line" lang="plaintext">Thread model: posix</span>
<span id="LC4" class="line" lang="plaintext">InstalledDir: /usr/bin</span></code></pre>
<ul dir="auto">
<li>
<a href="https://www.freshports.org/security/gnutls/" rel="nofollow noreferrer noopener" target="_blank">GnuTLS 3.6.15</a> (using package/<a href="https://svnweb.freebsd.org/changeset/ports/547781" rel="nofollow noreferrer noopener" target="_blank">r547781</a>)</li>
<li>
<a href="https://www.freshports.org/security/libtasn1/" rel="nofollow noreferrer noopener" target="_blank">libtasn1 4.16.0_1</a> (using package/<a href="https://svnweb.freebsd.org/changeset/ports/561219" rel="nofollow noreferrer noopener" target="_blank">r561219</a>)</li>
</ul>
<p dir="auto"><code>certtool -i --infile=smtp-relay.gmail.com.txt</code> with <a href="https://gitlab.com/gnutls/gnutls/uploads/234458182f2a41e43bce1c6a6716a150/smtp-relay.gmail.com.txt" data-link="true" class="gfm">smtp-relay.gmail.com.txt</a></p>
<pre class="code highlight js-syntax-highlight plaintext" lang="plaintext" v-pre="true"><code><span id="LC1" class="line" lang="plaintext">X.509 Certificate Information:</span>
<span id="LC2" class="line" lang="plaintext">        Version: 3</span>
<span id="LC3" class="line" lang="plaintext">        Serial Number (hex): 0f40f2bf1a5ccc580300000000cb4080</span>
<span id="LC4" class="line" lang="plaintext">        Issuer: CN=GTS CA 1O1,O=Google Trust Services,C=US</span>
<span id="LC5" class="line" lang="plaintext">        Validity:</span>
<span id="LC6" class="line" lang="plaintext">                Not Before: Tue Jan 26 09:05:20 UTC 2021</span>
<span id="LC7" class="line" lang="plaintext">                Not After: Tue Apr 20 09:05:19 UTC 2021</span>
<span id="LC8" class="line" lang="plaintext">        Subject: CN=smtp-relay.gmail.com,O=Google LLC,L=Mountain View,ST=California,C=US</span>
<span id="LC9" class="line" lang="plaintext">        Subject Public Key Algorithm: EC/ECDSA</span>
<span id="LC10" class="line" lang="plaintext">        Algorithm Security Level: High (256 bits)</span>
<span id="LC11" class="line" lang="plaintext">                Curve:  SECP256R1</span>
<span id="LC12" class="line" lang="plaintext">                X:</span>
<span id="LC13" class="line" lang="plaintext">                        20:b0:68:e8:19:95:b3:01:03:d5:42:a2:a8:38:86:e5</span>
<span id="LC14" class="line" lang="plaintext">                        65:3d:9f:2b:e5:1c:c3:fe:3b:93:69:9d:af:27:50:8b</span>
<span id="LC15" class="line" lang="plaintext">                Y:</span>
<span id="LC16" class="line" lang="plaintext">                        25:f3:66:ce:f1:26:99:ec:83:45:b6:ee:4e:3e:42:77</span>
<span id="LC17" class="line" lang="plaintext">                        3a:81:e5:23:47:ea:8e:e4:1a:12:fd:b4:ac:b2:60:4d</span>
<span id="LC18" class="line" lang="plaintext">        Extensions:</span>
<span id="LC19" class="line" lang="plaintext">                Key Usage (critical):</span>
<span id="LC20" class="line" lang="plaintext">                        Digital signature.</span>
<span id="LC21" class="line" lang="plaintext">                Key Purpose (not critical):</span>
<span id="LC22" class="line" lang="plaintext">                        TLS WWW Server.</span>
<span id="LC23" class="line" lang="plaintext">                Basic Constraints (critical):</span>
<span id="LC24" class="line" lang="plaintext">                        Certificate Authority (CA): FALSE</span>
<span id="LC25" class="line" lang="plaintext">                Subject Key Identifier (not critical):</span>
<span id="LC26" class="line" lang="plaintext">                        360be30736691791a438eef83b0812d489d53510</span>
<span id="LC27" class="line" lang="plaintext">                Authority Key Identifier (not critical):</span>
<span id="LC28" class="line" lang="plaintext">                        98d1f86e10ebcf9bec609f18901ba0eb7d09fd2b</span>
<span id="LC29" class="line" lang="plaintext">                Authority Information Access (not critical):</span>
<span id="LC30" class="line" lang="plaintext">                        Access Method: 1.3.6.1.5.5.7.48.1 (id-ad-ocsp)</span>
<span id="LC31" class="line" lang="plaintext">                        Access Location URI: http://ocsp.pki.goog/gts1o1core</span>
<span id="LC32" class="line" lang="plaintext">                        Access Method: 1.3.6.1.5.5.7.48.2 (id-ad-caIssuers)</span>
<span id="LC33" class="line" lang="plaintext">                        Access Location URI: http://pki.goog/gsr2/GTS1O1.crt</span>
<span id="LC34" class="line" lang="plaintext">                Subject Alternative Name (not critical):</span>
<span id="LC35" class="line" lang="plaintext">                        DNSname: smtp-relay.gmail.com</span>
<span id="LC36" class="line" lang="plaintext">                Certificate Policies (not critical):</span>
<span id="LC37" class="line" lang="plaintext">                        2.23.140.1.2.2 (CA/B Organization Validated)</span>
<span id="LC38" class="line" lang="plaintext">                        1.3.6.1.4.1.11129.2.5.3</span>
<span id="LC39" class="line" lang="plaintext">                CRL Distribution points (not critical):</span>
<span id="LC40" class="line" lang="plaintext">                        URI: http://crl.pki.goog/GTS1O1core.crl</span>
<span id="LC41" class="line" lang="plaintext">                Unknown extension 1.3.6.1.4.1.11129.2.4.2 (not critical):</span>
<span id="LC42" class="line" lang="plaintext">                        ASCII: ......v.D.e......@....(.......1.?.3........w>'.O.....G0E.!..E..O.s.3.....i.7.UR..........7.. i.Wv@.3/.....2k.K.}n.x..Y...D-Zb.v..\./.w0".T..0.V..M..3.../ ..N.d....w>'.......G0E. T....-.Y..H....b+8..=..t..x......!....,... .......|s.gF...:........</span>
<span id="LC43" class="line" lang="plaintext">                        Hexdump: 0481f200f00076004494652eb0eeceafc44007d8a8fe28c0dae682bed8cb31b53fd33396b5b681a8000001773e27a14f0000040300473045022100ef4503b24fbb73e23309c2b983b9698337945552d6c11bb9d4c38711028137fe022069e2577640af332fc984acd81a326bac4bef7d6e8c78c1165900f5d9442d5a62007600f65c942fd1773022145418083094568ee34d131933bfdf0c2f200bcc4ef164e3000001773e27a11e0000040300473045022054d6a28ef22d0a59f3da48adf2a21a622b38d1143d991974d70a78f79c1095ac022100828fac2c08ada820c8f70a998c84fb7c73946746b883d13a00b886e1bb041d83</span>
<span id="LC44" class="line" lang="plaintext">        Signature Algorithm: RSA-SHA256</span>
<span id="LC45" class="line" lang="plaintext">        Signature:</span>
<span id="LC46" class="line" lang="plaintext">                51:bd:cf:2b:d3:08:ee:5a:68:6b:00:76:b3:31:dc:cc</span>
<span id="LC47" class="line" lang="plaintext">                36:ed:c3:d3:6c:16:42:7a:15:9e:95:e3:f3:e1:a3:67</span>
<span id="LC48" class="line" lang="plaintext">                4b:ae:f7:d5:bf:6f:ff:eb:10:98:0c:ee:3b:f8:61:1a</span>
<span id="LC49" class="line" lang="plaintext">                d8:80:c6:00:f3:40:eb:54:15:61:7f:c3:de:7e:1b:a7</span>
<span id="LC50" class="line" lang="plaintext">                66:93:c4:69:1e:e5:b1:bd:40:54:51:5a:32:cd:a6:29</span>
<span id="LC51" class="line" lang="plaintext">                08:b8:bd:15:4f:ac:0d:2d:51:b4:79:e0:77:85:e4:2d</span>
<span id="LC52" class="line" lang="plaintext">                0e:75:12:cc:70:da:b9:6e:51:e7:52:6d:53:75:1f:8e</span>
<span id="LC53" class="line" lang="plaintext">                b4:38:3e:73:2d:29:1f:1c:3a:3a:0b:e3:cd:3f:79:5a</span>
<span id="LC54" class="line" lang="plaintext">                c4:07:b4:7a:80:fe:b5:bc:0b:72:0f:d0:38:11:ad:aa</span>
<span id="LC55" class="line" lang="plaintext">                21:81:3e:96:dc:c0:5d:e1:f1:9a:7d:76:21:b5:dc:7c</span>
<span id="LC56" class="line" lang="plaintext">                80:66:b5:89:90:e6:c1:c7:8f:3c:13:08:f1:56:99:4a</span>
<span id="LC57" class="line" lang="plaintext">                77:4e:d0:d8:f1:7f:c3:93:87:b8:e4:85:27:71:c8:9c</span>
<span id="LC58" class="line" lang="plaintext">                1f:e5:64:16:2d:dd:cc:58:5b:c6:32:24:82:59:92:66</span>
<span id="LC59" class="line" lang="plaintext">                19:6b:3e:17:d4:8c:d9:6c:20:e7:e7:39:07:bc:1f:dc</span>
<span id="LC60" class="line" lang="plaintext">                8f:0d:3f:e1:53:9f:5e:7d:c0:da:8e:06:be:37:2a:54</span>
<span id="LC61" class="line" lang="plaintext">                b6:47:06:90:a3:72:b2:f2:b2:42:4a:95:6e:e1:1d:b4</span>
<span id="LC62" class="line" lang="plaintext">Other Information:</span>
<span id="LC63" class="line" lang="plaintext">        Fingerprint:</span>
<span id="LC64" class="line" lang="plaintext">error: get_fingerprint: ASN1 parser: Value is not valid.</span>
<span id="LC65" class="line" lang="plaintext">        Public Key ID:</span>
<span id="LC66" class="line" lang="plaintext">                sha1:1c2919c88f95eee4b06fbc8274ab22306e1039c4</span>
<span id="LC67" class="line" lang="plaintext">                sha256:f7616f387c0ac33eb8b323cacd4638ef9aa8d2e1705fd1de53f4d88685a431e0</span>
<span id="LC68" class="line" lang="plaintext">        Public Key PIN:</span>
<span id="LC69" class="line" lang="plaintext">                pin-sha256:92FvOHwKwz64syPKzUY475qo0uFwX9HeU/TYhoWkMeA=</span></code></pre>
<p dir="auto"><a href="https://gitlab.com/gnutls/gnutls/uploads/b8db1b62abb8163b3aa58e8a029496f8/objdump_-p_certtool.txt" data-link="true" class="gfm">objdump_-p_certtool.txt</a></p>
</div>


</div>
<div class="footer" style="margin-top: 10px;">
<p style="font-size: small; color: #666;">

<br>
Reply to this email directly or <a href="https://gitlab.com/gnutls/gnutls/-/issues/1144#note_513549011">view it on GitLab</a>.
<br>
You're receiving this email because of your account on gitlab.com.
If you'd like to receive fewer emails, you can
<a href="https://gitlab.com/-/sent_notifications/5df56cad6c30f75a2ab9c8faa44c6f3a/unsubscribe">unsubscribe</a>
from this thread or
adjust your notification settings.
<script type="application/ld+json">{"@context":"http://schema.org","@type":"EmailMessage","action":{"@type":"ViewAction","name":"View Issue","url":"https://gitlab.com/gnutls/gnutls/-/issues/1144#note_513549011"}}</script>


</p>
</div>
</body>
</html>