0% found this document useful (0 votes)
54 views13 pages

SD 4872407

Uploaded by

Nahuel Timpano
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
54 views13 pages

SD 4872407

Uploaded by

Nahuel Timpano
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 13

ad373971@AWSNVRH4APP11:~> ls -l /var/opt/novell/ssff.

jks
-rw------- 1 root root 3840 Jul 14 2021 /var/opt/novell/ssff.jks
ad373971@AWSNVRH4APP11:~> cp -p /var/opt/novell/ssff.jks .
cp: cannot open '/var/opt/novell/ssff.jks' for reading: Permission denied
ad373971@AWSNVRH4APP11:~> sudo cp -p /var/opt/novell/ssff.jks /home/ad373971/
ad373971@AWSNVRH4APP11:~> ls -l /home/ad373971/
total 2004
-rwxrwxrwx 1 root root 2048000 Jun 22 2023 SSFF-IDM.20230602.tgz
drwxr-xr-x 2 ad373971 wheel 6 Jun 27 2017 bin
-rw------- 1 root root 3840 Jul 14 2021 ssff.jks
ad373971@AWSNVRH4APP11:~> ll
total 2012
-rw------- 1 ad373971 wheel 3064 May 23 12:10 DigiCertCA_G2_Chain_Apr2024.cer
-rwxrwxrwx 1 root root 2048000 Jun 22 2023 SSFF-IDM.20230602.tgz
drwxr-xr-x 2 ad373971 wheel 6 Jun 27 2017 bin
-rw------- 1 ad373971 wheel 2462 May 23 12:10 sapsf.com2025.cer
-rw------- 1 root root 3840 Jul 14 2021 ssff.jks
ad373971@AWSNVRH4APP11:~> sudo chown root:root *.cer
ad373971@AWSNVRH4APP11:~> ll
total 2012
-rw------- 1 root root 3064 May 23 12:10 DigiCertCA_G2_Chain_Apr2024.cer
-rwxrwxrwx 1 root root 2048000 Jun 22 2023 SSFF-IDM.20230602.tgz
drwxr-xr-x 2 ad373971 wheel 6 Jun 27 2017 bin
-rw------- 1 root root 2462 May 23 12:10 sapsf.com2025.cer
-rw------- 1 root root 3840 Jul 14 2021 ssff.jks
ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -v -list -keystore
/var/opt/novell/ssff.jks
Enter keystore password:
Keystore type: jks
Keystore provider: SUN

Your keystore contains 3 entries

Alias name: digicertsca


Creation date: Apr 7, 2021
Entry type: trustedCertEntry

Owner: CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US


Issuer: CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
Serial number: 83be056904246b1a1756ac95991c74a
Valid from: Thu Nov 09 21:00:00 ART 2006 until: Sun Nov 09 21:00:00 ART 2031
Certificate fingerprints:
SHA1: A8:98:5D:3A:65:E5:E5:C4:B2:D7:D6:6D:40:C6:DD:2F:B1:9C:54:36
SHA256:
43:48:A0:E9:44:4C:78:CB:26:5E:05:8D:5E:89:44:B4:D8:4F:96:62:BD:26:DB:25:7F:89:34:A4
:43:C7:01:61
Signature algorithm name: SHA1withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 03 DE 50 35 56 D1 4C BB 66 F0 A3 E2 1B 1B C3 97 ..P5V.L.f.......
0010: B2 3D D1 55 .=.U
]
]
#2: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

#3: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_CertSign
Crl_Sign
]

#4: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 03 DE 50 35 56 D1 4C BB 66 F0 A3 E2 1B 1B C3 97 ..P5V.L.f.......
0010: B2 3D D1 55 .=.U
]
]

*******************************************
*******************************************

Alias name: digicertsintermediateca


Creation date: Apr 7, 2021
Entry type: trustedCertEntry

Owner: CN=DigiCert SHA2 Secure Server CA, O=DigiCert Inc, C=US


Issuer: CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
Serial number: 1fda3eb6eca75c888438b724bcfbc91
Valid from: Fri Mar 08 09:00:00 ART 2013 until: Wed Mar 08 09:00:00 ART 2023
Certificate fingerprints:
SHA1: 1F:B8:6B:11:68:EC:74:31:54:06:2E:8C:9C:C5:B1:71:A4:B7:CC:B4
SHA256:
15:4C:43:3C:49:19:29:C5:EF:68:6E:83:8E:32:36:64:A0:0E:6A:0D:82:2C:CC:95:8F:B4:DA:B0
:3E:49:A0:8F
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false


AuthorityInfoAccess [
[
accessMethod: ocsp
accessLocation: URIName: http://ocsp.digicert.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 03 DE 50 35 56 D1 4C BB 66 F0 A3 E2 1B 1B C3 97 ..P5V.L.f.......
0010: B2 3D D1 55 .=.U
]
]

#3: ObjectId: 2.5.29.19 Criticality=true


BasicConstraints:[
CA:true
PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false


CRLDistributionPoints [
[DistributionPoint:
[URIName: http://crl3.digicert.com/DigiCertGlobalRootCA.crl]
, DistributionPoint:
[URIName: http://crl4.digicert.com/DigiCertGlobalRootCA.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false


CertificatePolicies [
[CertificatePolicyId: [2.5.29.32.0]
[PolicyQualifierInfo: [
qualifierID: 1.3.6.1.5.5.7.2.1
qualifier: 0000: 16 1C 68 74 74 70 73 3A 2F 2F 77 77 77 2E 64 69
..https://www.di
0010: 67 69 63 65 72 74 2E 63 6F 6D 2F 43 50 53 gicert.com/CPS

]] ]
]

#6: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_CertSign
Crl_Sign
]

#7: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 0F 80 61 1C 82 31 61 D5 2F 28 E7 8D 46 38 B4 2C ..a..1a./(..F8.,
0010: E1 C6 D9 E2 ....
]
]

*******************************************
*******************************************

Alias name: ssff


Creation date: Apr 7, 2021
Entry type: trustedCertEntry

Owner: CN=*.sapsf.com, O=SAP, L=Walldorf, ST=Baden-Württemberg, C=DE


Issuer: CN=DigiCert SHA2 Secure Server CA, O=DigiCert Inc, C=US
Serial number: 5e98e6cea9a79dcb8a1d05303536322
Valid from: Tue Sep 08 21:00:00 ART 2020 until: Tue Sep 14 09:00:00 ART 2021
Certificate fingerprints:
SHA1: CA:68:2A:D2:7D:59:BE:1F:B1:39:78:A1:43:30:11:C1:E3:4B:45:29
SHA256:
ED:01:4B:6A:3B:56:EF:34:7C:6D:DF:19:64:1A:42:3E:21:E2:3F:9C:DC:46:0F:71:90:79:F5:47
:E0:AF:14:0C
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 1.3.6.1.4.1.11129.2.4.2 Criticality=false


0000: 04 81 F3 00 F1 00 77 00 F6 5C 94 2F D1 77 30 22 ......w..\./.w0"
0010: 14 54 18 08 30 94 56 8E E3 4D 13 19 33 BF DF 0C .T..0.V..M..3...
0020: 2F 20 0B CC 4E F1 64 E3 00 00 01 74 73 8F E6 8F / ..N.d....ts...
0030: 00 00 04 03 00 48 30 46 02 21 00 CF 63 D4 B6 3E .....H0F.!..c..>
0040: 8D 08 45 CB BF 9F 71 1A 59 40 8E 4E B6 9F 72 54 [email protected]
0050: 63 F2 A8 77 51 64 B0 5A CC 27 22 02 21 00 E6 A9 c..wQd.Z.'".!...
0060: A9 E7 24 85 47 5B 44 64 BD A8 8E 76 F5 C8 81 68 ..$.G[Dd...v...h
0070: 08 0D 72 A2 9B 34 5A 49 1E 99 9C A3 63 B1 00 76 ..r..4ZI....c..v
0080: 00 5C DC 43 92 FE E6 AB 45 44 B1 5E 9A D4 56 E6 .\.C....ED.^..V.
0090: 10 37 FB D5 FA 47 DC A1 73 94 B2 5E E6 F6 C7 0E .7...G..s..^....
00A0: CA 00 00 01 74 73 8F E6 89 00 00 04 03 00 47 30 ....ts........G0
00B0: 45 02 21 00 D2 7C D8 EF 5D D8 CC 50 33 69 D9 43 E.!.....]..P3i.C
00C0: 7F 9A 5C 95 F7 1C 7C BC 8E D8 EC C4 71 20 20 81 ..\.........q .
00D0: EB BE 32 C5 02 20 39 FE CA 04 BA 26 C3 9E 57 4C ..2.. 9....&..WL
00E0: AF 9E 5F D3 74 7E A1 DF CD D9 89 21 6E FA C1 94 .._.t......!n...
00F0: 2C 32 02 4F 60 99 ,2.O`.

#2: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false


AuthorityInfoAccess [
[
accessMethod: ocsp
accessLocation: URIName: http://ocsp.digicert.com
,
accessMethod: caIssuers
accessLocation: URIName:
http://cacerts.digicert.com/DigiCertSHA2SecureServerCA.crt
]
]

#3: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 0F 80 61 1C 82 31 61 D5 2F 28 E7 8D 46 38 B4 2C ..a..1a./(..F8.,
0010: E1 C6 D9 E2 ....
]
]

#4: ObjectId: 2.5.29.19 Criticality=true


BasicConstraints:[
CA:false
PathLen: undefined
]

#5: ObjectId: 2.5.29.31 Criticality=false


CRLDistributionPoints [
[DistributionPoint:
[URIName: http://crl3.digicert.com/ssca-sha2-g6.crl]
, DistributionPoint:
[URIName: http://crl4.digicert.com/ssca-sha2-g6.crl]
]]

#6: ObjectId: 2.5.29.32 Criticality=false


CertificatePolicies [
[CertificatePolicyId: [2.16.840.1.114412.1.1]
[PolicyQualifierInfo: [
qualifierID: 1.3.6.1.5.5.7.2.1
qualifier: 0000: 16 1C 68 74 74 70 73 3A 2F 2F 77 77 77 2E 64 69
..https://www.di
0010: 67 69 63 65 72 74 2E 63 6F 6D 2F 43 50 53 gicert.com/CPS

]] ]
[CertificatePolicyId: [2.23.140.1.2.2]
[] ]
]

#7: ObjectId: 2.5.29.37 Criticality=false


ExtendedKeyUsages [
serverAuth
clientAuth
]

#8: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_Encipherment
]

#9: ObjectId: 2.5.29.17 Criticality=false


SubjectAlternativeName [
DNSName: *.sapsf.com
DNSName: sapsf.com
]

#10: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 37 7A 48 11 38 8D 02 DB 39 B5 A6 14 AB 60 F2 A7 7zH.8...9....`..
0010: E2 39 BB E2 .9..
]
]

*******************************************
*******************************************

ad373971@AWSNVRH4APP11:~>

ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -delete -alias


digicertsca -keystore /var/opt/novell/ssff.jks
Enter keystore password:
ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -delete -alias
digicertsintermediateca -keystore /var/opt/novell/ssff.jks
Enter keystore password:
ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -delete -alias
ssff -keystore /var/opt/novell/ssff.jks
Enter keystore password:
ad373971@AWSNVRH4APP11:~>

ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -v -list -keystore


/var/opt/novell/ssff.jks Enter keystore password:
Keystore type: jks
Keystore provider: SUN

Your keystore contains 0 entries

ad373971@AWSNVRH4APP11:~>

ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -keystore


/var/opt/novell/ssff.jks -import -alias digicertsca -file
/home/ad373971/DigiCertCA_G2_Chain_Apr2024.cer
Enter keystore password:
Owner: CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
Issuer: CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
Serial number: cf5bd062b5602f47ab8502c23ccf066
Valid from: Mon Mar 29 21:00:00 ART 2021 until: Sat Mar 29 20:59:59 ART 2031
Certificate fingerprints:
SHA1: 1B:51:1A:BE:AD:59:C6:CE:20:70:77:C0:BF:0E:00:43:B1:38:26:12
SHA256:
C8:02:5F:9F:C6:5F:DF:C9:5B:3C:A8:CC:78:67:B9:A5:87:B5:27:79:73:95:79:17:46:3F:C8:13
:D0:B6:25:A9
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false


AuthorityInfoAccess [
[
accessMethod: ocsp
accessLocation: URIName: http://ocsp.digicert.com
,
accessMethod: caIssuers
accessLocation: URIName: http://cacerts.digicert.com/DigiCertGlobalRootG2.crt
]
]

#2: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 4E 22 54 20 18 95 E6 E3 6E E6 0F FA FA B9 12 ED N"T ....n.......
0010: 06 17 8F 39 ...9
]
]

#3: ObjectId: 2.5.29.19 Criticality=true


BasicConstraints:[
CA:true
PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false


CRLDistributionPoints [
[DistributionPoint:
[URIName: http://crl3.digicert.com/DigiCertGlobalRootG2.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false


CertificatePolicies [
[CertificatePolicyId: [2.16.840.1.114412.2.1]
[] ]
[CertificatePolicyId: [2.23.140.1.1]
[] ]
[CertificatePolicyId: [2.23.140.1.2.1]
[] ]
[CertificatePolicyId: [2.23.140.1.2.2]
[] ]
[CertificatePolicyId: [2.23.140.1.2.3]
[] ]
]

#6: ObjectId: 2.5.29.37 Criticality=false


ExtendedKeyUsages [
serverAuth
clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_CertSign
Crl_Sign
]

#8: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 74 85 80 C0 66 C7 DF 37 DE CF BD 29 37 AA 03 1D t...f..7...)7...
0010: BE ED CD 17 ....
]
]

Trust this certificate? [no]: yes


Certificate was added to keystore
ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -keystore
/var/opt/novell/ssff.jks -import -alias ssff -file /home/ad373971/
.ansible/ .fonts/
DigiCertCA_G2_Chain_Apr2024.cer
.bash_history .inputrc SSFF-
IDM.20230602.tgz
.bashrc .local/ bin/
.config/ .profile sapsf.com2025.cer
.emacs .ssh/ ssff.jks
ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -keystore
/var/opt/novell/ssff.jks -import -alias ssff -file /home/ad373971/sapsf.com2025.cer
Enter keystore password:
Owner: CN=*.sapsf.com, O=SAP SE, L=Walldorf, ST=Baden-Württemberg, C=DE
Issuer: CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
Serial number: b98d26fcf9391894793245a0d9391c6
Valid from: Fri Apr 26 21:00:00 ART 2024 until: Wed May 28 20:59:59 ART 2025
Certificate fingerprints:
SHA1: 50:04:C7:9E:8D:83:CE:B7:4C:AF:42:BA:93:86:80:F9:DF:58:3B:7F
SHA256:
20:0A:88:26:E7:A4:1F:0E:2B:D1:D3:7C:FB:6D:8A:DB:B6:D3:14:48:21:38:9B:0F:66:8C:2A:A7
:5B:C5:88:1B
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 1.3.6.1.4.1.11129.2.4.2 Criticality=false


0000: 04 82 01 6A 01 68 00 77 00 4E 75 A3 27 5C 9A 10 ...j.h.w.Nu.'\..
0010: C3 38 5B 6C D4 DF 3F 52 EB 1D F0 E0 8E 1B 8D 69 .8[l..?R.......i
0020: C0 B1 FA 64 B1 62 9A 39 DF 00 00 01 8F 1D A8 36 ...d.b.9.......6
0030: 8B 00 00 04 03 00 48 30 46 02 21 00 E8 18 36 16 ......H0F.!...6.
0040: AA 7D BD 67 15 A1 0B 5E 6C 8B B0 E7 29 94 D4 13 ...g...^l...)...
0050: C6 FB 74 60 31 38 75 28 80 8C 3A 4C 02 21 00 9F ..t`18u(..:L.!..
0060: CB D7 75 3C 2D 52 DA E5 1D DF F5 90 34 E9 BC 6A ..u<-R......4..j
0070: B8 F6 20 D3 C3 E9 10 31 FC 2A 44 1B FF FA F3 00 .. ....1.*D.....
0080: 76 00 7D 59 1E 12 E1 78 2A 7B 1C 61 67 7C 5E FD v..Y...x*..ag.^.
0090: F8 D0 87 5C 14 A0 4E 95 9E B9 03 2F D9 0E 8C 2E ...\..N..../....
00A0: 79 B8 00 00 01 8F 1D A8 36 8C 00 00 04 03 00 47 y.......6......G
00B0: 30 45 02 20 42 4F 21 DA D8 67 BA AC 75 0C 37 ED 0E. BO!..g..u.7.
00C0: 20 AB C6 A8 F7 D5 35 77 0B 27 C9 01 59 5B A2 04 .....5w.'..Y[..
00D0: D0 04 93 2F 02 21 00 9B F1 4A CA 50 EE 01 6A 14 .../.!...J.P..j.
00E0: EB E0 4E 7F 09 B0 B4 1A 18 9F 0A 8E 6E 67 86 C0 ..N.........ng..
00F0: 20 B6 93 AD F0 7E 27 00 75 00 E6 D2 31 63 40 77 .....'.u...1c@w
0100: 8C C1 10 41 06 D7 71 B9 CE C1 D2 40 F6 96 84 86 ...A..q....@....
0110: FB BA 87 32 1D FD 1E 37 8E 50 00 00 01 8F 1D A8 ...2...7.P......
0120: 36 A7 00 00 04 03 00 46 30 44 02 20 5B FF 2B 4D 6......F0D. [.+M
0130: D8 6B 4E 38 D2 82 E0 50 69 90 71 15 6D F9 F1 D8 .kN8...Pi.q.m...
0140: A6 82 DF C3 CC 27 C0 FE CE 25 70 08 02 20 63 69 .....'...%p.. ci
0150: 6C AD B1 CB 74 C5 4E 19 85 41 74 A3 2E 5A CE BE l...t.N..At..Z..
0160: DE 6C B9 C8 55 6E 95 34 95 18 70 21 6F 5B .l..Un.4..p!o[

#2: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false


AuthorityInfoAccess [
[
accessMethod: ocsp
accessLocation: URIName: http://ocsp.digicert.com
,
accessMethod: caIssuers
accessLocation: URIName:
http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
]
]

#3: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 74 85 80 C0 66 C7 DF 37 DE CF BD 29 37 AA 03 1D t...f..7...)7...
0010: BE ED CD 17 ....
]
]
#4: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:false
PathLen: undefined
]

#5: ObjectId: 2.5.29.31 Criticality=false


CRLDistributionPoints [
[DistributionPoint:
[URIName: http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl]
, DistributionPoint:
[URIName: http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl]
]]

#6: ObjectId: 2.5.29.32 Criticality=false


CertificatePolicies [
[CertificatePolicyId: [2.23.140.1.2.2]
[PolicyQualifierInfo: [
qualifierID: 1.3.6.1.5.5.7.2.1
qualifier: 0000: 16 1B 68 74 74 70 3A 2F 2F 77 77 77 2E 64 69 67
..http://www.dig
0010: 69 63 65 72 74 2E 63 6F 6D 2F 43 50 53 icert.com/CPS

]] ]
]

#7: ObjectId: 2.5.29.37 Criticality=false


ExtendedKeyUsages [
serverAuth
clientAuth
]

#8: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_Encipherment
]

#9: ObjectId: 2.5.29.17 Criticality=false


SubjectAlternativeName [
DNSName: *.sapsf.com
]

#10: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 56 78 71 53 B0 E0 D7 8B 38 CD 00 63 F9 8B E2 7B VxqS....8..c....
0010: 2F 67 C9 58 /g.X
]
]

Trust this certificate? [no]: yes


Certificate was added to keystore
ad373971@AWSNVRH4APP11:~> sudo /opt/netiq/common/jre/bin/keytool -v -list -keystore
/var/opt/novell/ssff.jks Enter keystore password:
Keystore type: jks
Keystore provider: SUN
Your keystore contains 2 entries

Alias name: digicertsca


Creation date: May 23, 2024
Entry type: trustedCertEntry

Owner: CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
Issuer: CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
Serial number: cf5bd062b5602f47ab8502c23ccf066
Valid from: Mon Mar 29 21:00:00 ART 2021 until: Sat Mar 29 20:59:59 ART 2031
Certificate fingerprints:
SHA1: 1B:51:1A:BE:AD:59:C6:CE:20:70:77:C0:BF:0E:00:43:B1:38:26:12
SHA256:
C8:02:5F:9F:C6:5F:DF:C9:5B:3C:A8:CC:78:67:B9:A5:87:B5:27:79:73:95:79:17:46:3F:C8:13
:D0:B6:25:A9
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false


AuthorityInfoAccess [
[
accessMethod: ocsp
accessLocation: URIName: http://ocsp.digicert.com
,
accessMethod: caIssuers
accessLocation: URIName: http://cacerts.digicert.com/DigiCertGlobalRootG2.crt
]
]

#2: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 4E 22 54 20 18 95 E6 E3 6E E6 0F FA FA B9 12 ED N"T ....n.......
0010: 06 17 8F 39 ...9
]
]

#3: ObjectId: 2.5.29.19 Criticality=true


BasicConstraints:[
CA:true
PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false


CRLDistributionPoints [
[DistributionPoint:
[URIName: http://crl3.digicert.com/DigiCertGlobalRootG2.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false


CertificatePolicies [
[CertificatePolicyId: [2.16.840.1.114412.2.1]
[] ]
[CertificatePolicyId: [2.23.140.1.1]
[] ]
[CertificatePolicyId: [2.23.140.1.2.1]
[] ]
[CertificatePolicyId: [2.23.140.1.2.2]
[] ]
[CertificatePolicyId: [2.23.140.1.2.3]
[] ]
]

#6: ObjectId: 2.5.29.37 Criticality=false


ExtendedKeyUsages [
serverAuth
clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_CertSign
Crl_Sign
]

#8: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 74 85 80 C0 66 C7 DF 37 DE CF BD 29 37 AA 03 1D t...f..7...)7...
0010: BE ED CD 17 ....
]
]

*******************************************
*******************************************

Alias name: ssff


Creation date: May 23, 2024
Entry type: trustedCertEntry

Owner: CN=*.sapsf.com, O=SAP SE, L=Walldorf, ST=Baden-Württemberg, C=DE


Issuer: CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
Serial number: b98d26fcf9391894793245a0d9391c6
Valid from: Fri Apr 26 21:00:00 ART 2024 until: Wed May 28 20:59:59 ART 2025
Certificate fingerprints:
SHA1: 50:04:C7:9E:8D:83:CE:B7:4C:AF:42:BA:93:86:80:F9:DF:58:3B:7F
SHA256:
20:0A:88:26:E7:A4:1F:0E:2B:D1:D3:7C:FB:6D:8A:DB:B6:D3:14:48:21:38:9B:0F:66:8C:2A:A7
:5B:C5:88:1B
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 2048-bit RSA key
Version: 3

Extensions:

#1: ObjectId: 1.3.6.1.4.1.11129.2.4.2 Criticality=false


0000: 04 82 01 6A 01 68 00 77 00 4E 75 A3 27 5C 9A 10 ...j.h.w.Nu.'\..
0010: C3 38 5B 6C D4 DF 3F 52 EB 1D F0 E0 8E 1B 8D 69 .8[l..?R.......i
0020: C0 B1 FA 64 B1 62 9A 39 DF 00 00 01 8F 1D A8 36 ...d.b.9.......6
0030: 8B 00 00 04 03 00 48 30 46 02 21 00 E8 18 36 16 ......H0F.!...6.
0040: AA 7D BD 67 15 A1 0B 5E 6C 8B B0 E7 29 94 D4 13 ...g...^l...)...
0050: C6 FB 74 60 31 38 75 28 80 8C 3A 4C 02 21 00 9F ..t`18u(..:L.!..
0060: CB D7 75 3C 2D 52 DA E5 1D DF F5 90 34 E9 BC 6A ..u<-R......4..j
0070: B8 F6 20 D3 C3 E9 10 31 FC 2A 44 1B FF FA F3 00 .. ....1.*D.....
0080: 76 00 7D 59 1E 12 E1 78 2A 7B 1C 61 67 7C 5E FD v..Y...x*..ag.^.
0090: F8 D0 87 5C 14 A0 4E 95 9E B9 03 2F D9 0E 8C 2E ...\..N..../....
00A0: 79 B8 00 00 01 8F 1D A8 36 8C 00 00 04 03 00 47 y.......6......G
00B0: 30 45 02 20 42 4F 21 DA D8 67 BA AC 75 0C 37 ED 0E. BO!..g..u.7.
00C0: 20 AB C6 A8 F7 D5 35 77 0B 27 C9 01 59 5B A2 04 .....5w.'..Y[..
00D0: D0 04 93 2F 02 21 00 9B F1 4A CA 50 EE 01 6A 14 .../.!...J.P..j.
00E0: EB E0 4E 7F 09 B0 B4 1A 18 9F 0A 8E 6E 67 86 C0 ..N.........ng..
00F0: 20 B6 93 AD F0 7E 27 00 75 00 E6 D2 31 63 40 77 .....'.u...1c@w
0100: 8C C1 10 41 06 D7 71 B9 CE C1 D2 40 F6 96 84 86 ...A..q....@....
0110: FB BA 87 32 1D FD 1E 37 8E 50 00 00 01 8F 1D A8 ...2...7.P......
0120: 36 A7 00 00 04 03 00 46 30 44 02 20 5B FF 2B 4D 6......F0D. [.+M
0130: D8 6B 4E 38 D2 82 E0 50 69 90 71 15 6D F9 F1 D8 .kN8...Pi.q.m...
0140: A6 82 DF C3 CC 27 C0 FE CE 25 70 08 02 20 63 69 .....'...%p.. ci
0150: 6C AD B1 CB 74 C5 4E 19 85 41 74 A3 2E 5A CE BE l...t.N..At..Z..
0160: DE 6C B9 C8 55 6E 95 34 95 18 70 21 6F 5B .l..Un.4..p!o[

#2: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false


AuthorityInfoAccess [
[
accessMethod: ocsp
accessLocation: URIName: http://ocsp.digicert.com
,
accessMethod: caIssuers
accessLocation: URIName:
http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
]
]

#3: ObjectId: 2.5.29.35 Criticality=false


AuthorityKeyIdentifier [
KeyIdentifier [
0000: 74 85 80 C0 66 C7 DF 37 DE CF BD 29 37 AA 03 1D t...f..7...)7...
0010: BE ED CD 17 ....
]
]

#4: ObjectId: 2.5.29.19 Criticality=true


BasicConstraints:[
CA:false
PathLen: undefined
]

#5: ObjectId: 2.5.29.31 Criticality=false


CRLDistributionPoints [
[DistributionPoint:
[URIName: http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl]
, DistributionPoint:
[URIName: http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl]
]]

#6: ObjectId: 2.5.29.32 Criticality=false


CertificatePolicies [
[CertificatePolicyId: [2.23.140.1.2.2]
[PolicyQualifierInfo: [
qualifierID: 1.3.6.1.5.5.7.2.1
qualifier: 0000: 16 1B 68 74 74 70 3A 2F 2F 77 77 77 2E 64 69 67
..http://www.dig
0010: 69 63 65 72 74 2E 63 6F 6D 2F 43 50 53 icert.com/CPS

]] ]
]

#7: ObjectId: 2.5.29.37 Criticality=false


ExtendedKeyUsages [
serverAuth
clientAuth
]

#8: ObjectId: 2.5.29.15 Criticality=true


KeyUsage [
DigitalSignature
Key_Encipherment
]

#9: ObjectId: 2.5.29.17 Criticality=false


SubjectAlternativeName [
DNSName: *.sapsf.com
]

#10: ObjectId: 2.5.29.14 Criticality=false


SubjectKeyIdentifier [
KeyIdentifier [
0000: 56 78 71 53 B0 E0 D7 8B 38 CD 00 63 F9 8B E2 7B VxqS....8..c....
0010: 2F 67 C9 58 /g.X
]
]

*******************************************
*******************************************

ad373971@AWSNVRH4APP11:~>

You might also like