blob: d2cc7bb9ef9023a4812090b49f488e828c0c28a6 [file] [log] [blame]
Philipp Maier08902cf2024-03-04 10:32:55 +01001/* PKIX1 Templates in TTCN-3
2 *
3 * Author: Philipp Maier <pmaier@sysmocom.de> / sysmocom - s.f.m.c. GmbH
4 *
5 * Released under the terms of GNU General Public License, Version 2 or
6 * (at your option) any later version.
7 *
8 * SPDX-License-Identifier: GPL-2.0-or-later
9 */
10
11module PKIX1Explicit88_Templates {
12
13import from PKIX1Explicit88_Types all;
14import from PKIX1Explicit88 all;
15import from PKIX1Implicit88 all;
16
17/* Test certificate:
18SGP.26_v1.2_files/Valid test cases/CertificateIssuer/CERT_CI_ECDSA_NIST.der
19Certificate:
20 Data:
21 Version: 3 (0x2)
22 Serial Number:
23 b8:74:f3:ab:fa:6c:44:d3
24 Signature Algorithm: ecdsa-with-SHA256
25 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
26 Validity
27 Not Before: Feb 1 15:39:42 2017 GMT
28 Not After : Feb 1 15:39:42 2052 GMT
29 Subject: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
30 Subject Public Key Info:
31 Public Key Algorithm: id-ecPublicKey
32 Public-Key: (256 bit)
33 pub:
34 04:94:06:57:a6:73:dc:28:8f:89:d5:2e:a8:a4:77:
35 04:99:27:91:f9:c3:4b:00:36:e6:33:e2:d0:cb:a9:
36 45:4d:65:db:32:eb:17:98:17:99:d2:f2:43:88:ee:
37 2b:95:c1:09:45:46:c9:79:01:ce:ae:ba:96:50:91:
38 9a:2e:20:d2:29
39 ASN1 OID: prime256v1
40 NIST CURVE: P-256
41 X509v3 extensions:
42 X509v3 Subject Key Identifier:
43 F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
44 X509v3 Basic Constraints: critical
45 CA:TRUE
46 X509v3 Certificate Policies: critical
47 Policy: 2.23.146.1.2.1.0
48
49 X509v3 Key Usage: critical
50 Certificate Sign, CRL Sign
51 X509v3 Subject Alternative Name:
52 Registered ID:2.999.1
53 X509v3 CRL Distribution Points:
54
55 Full Name:
56 URI:http://ci.test.gsma.com/CRL-A.crl
57
58 Full Name:
59 URI:http://ci.test.gsma.com/CRL-B.crl
60
61 Signature Algorithm: ecdsa-with-SHA256
62 30:46:02:21:00:91:f2:51:c9:71:53:b9:cf:85:37:9a:74:8b:
63 57:2a:49:68:52:45:56:c4:7f:33:eb:69:7b:55:91:2c:c0:f2:
64 d2:02:21:00:dc:e4:9e:73:f3:49:ec:d0:59:10:ef:9d:f6:b6:
65 9a:86:7a:bf:38:9d:c8:6b:84:11:b4:df:e1:96:91:50:f5:f9
66*/
67const octetstring cert_ci_nist :=
68'30820256308201fba003020102020900b874f3abfa6c44d3300a06082a86
6948ce3d04030230493115301306035504030c0c47534d4120546573742043
70493111300f060355040b0c0854455354434552543110300e060355040a0c
710752535054455354310b30090603550406130249543020170d3137303230
72313135333934325a180f32303532303230313135333934325a3049311530
731306035504030c0c47534d4120546573742043493111300f060355040b0c
740854455354434552543110300e060355040a0c0752535054455354310b30
75090603550406130249543059301306072a8648ce3d020106082a8648ce3d
7603010703420004940657a673dc288f89d52ea8a47704992791f9c34b0036
77e633e2d0cba9454d65db32eb17981799d2f24388ee2b95c1094546c97901
78ceaeba9650919a2e20d229a381c93081c6301d0603551d0e04160414f541
7972bdf98a95d65cbeb88a38a1c11d800a85c3300f0603551d130101ff0405
8030030101ff30170603551d200101ff040d300b3009060767811201020100
81300e0603551d0f0101ff040403020106300e0603551d1104073005880388
823701305b0603551d1f045430523027a025a0238621687474703a2f2f6369
832e746573742e67736d612e636f6d2f43524c2d412e63726c3027a025a023
848621687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d
85422e63726c300a06082a8648ce3d040302034900304602210091f251c971
8653b9cf85379a748b572a4968524556c47f33eb697b55912cc0f2d2022100
87dce49e73f349ecd05910ef9df6b69a867abf389dc86b8411b4dfe1969150
88f5f9'O
89function f_ts_cert_ci_nist() return Certificate {
90 var Certificate cert_decoded;
91 cert_decoded := dec_Certificate(cert_ci_nist);
92 return cert_decoded;
93}
94template (value) Certificate ts_cert_ci_nist := f_ts_cert_ci_nist();
95
96/* Test certificate:
97SGP.26_v1.2_files/Valid test cases/CertificateIssuer/CERT_CI_ECDSA_BRP.der
98Certificate:
99 Data:
100 Version: 3 (0x2)
101 Serial Number:
102 b8:74:f3:ab:fa:6c:44:d3
103 Signature Algorithm: ecdsa-with-SHA256
104 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
105 Validity
106 Not Before: Apr 19 10:34:38 2017 GMT
107 Not After : Apr 18 10:34:38 2052 GMT
108 Subject: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
109 Subject Public Key Info:
110 Public Key Algorithm: id-ecPublicKey
111 Public-Key: (256 bit)
112 pub:
113 04:27:87:b4:d5:6e:d8:24:a9:e6:be:04:e1:88:7f:
114 6b:98:ba:fe:b8:c7:63:f5:28:37:f7:01:13:e9:36:
115 4e:dd:be:13:9b:c0:c7:de:7e:16:8f:1e:5c:d0:c1:
116 85:34:fc:50:64:e6:4f:68:6d:c5:33:27:ca:7f:1d:
117 ce:a8:5a:29:94
118 ASN1 OID: brainpoolP256r1
119 X509v3 extensions:
120 X509v3 Subject Key Identifier:
121 C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
122 X509v3 Basic Constraints: critical
123 CA:TRUE
124 X509v3 Certificate Policies: critical
125 Policy: 2.23.146.1.2.1.0
126
127 X509v3 Key Usage: critical
128 Certificate Sign, CRL Sign
129 X509v3 Subject Alternative Name:
130 Registered ID:2.999.1
131 X509v3 CRL Distribution Points:
132
133 Full Name:
134 URI:http://ci.test.gsma.com/CRL-A.crl
135
136 Full Name:
137 URI:http://ci.test.gsma.com/CRL-B.crl
138
139 Signature Algorithm: ecdsa-with-SHA256
140 30:44:02:20:06:c6:c3:9f:5a:b9:71:5d:72:c5:65:dc:f5:ff:
141 3b:fe:f3:fb:70:ef:0a:e3:3a:07:36:66:91:35:86:d0:ef:92:
142 02:20:16:b2:44:eb:46:9f:2a:2f:58:6b:c1:c3:20:b4:b6:43:
143 1b:8f:74:d9:41:f7:f1:83:2b:43:25:52:b1:61:df:a2
144*/
145const octetstring cert_ci_brp :=
146'30820255308201fca003020102020900b874f3abfa6c44d3300a06082a86
14748ce3d04030230493115301306035504030c0c47534d4120546573742043
148493111300f060355040b0c0854455354434552543110300e060355040a0c
1490752535054455354310b30090603550406130249543020170d3137303431
150393130333433385a180f32303532303431383130333433385a3049311530
1511306035504030c0c47534d4120546573742043493111300f060355040b0c
1520854455354434552543110300e060355040a0c0752535054455354310b30
15309060355040613024954305a301406072a8648ce3d020106092b24030302
15408010107034200042787b4d56ed824a9e6be04e1887f6b98bafeb8c763f5
1552837f70113e9364eddbe139bc0c7de7e168f1e5cd0c18534fc5064e64f68
1566dc53327ca7f1dcea85a2994a381c93081c6301d0603551d0e04160414c0
157bc70ba36929d43b467ff57570530e57ab8fcd8300f0603551d130101ff04
1580530030101ff30170603551d200101ff040d300b30090607678112010201
15900300e0603551d0f0101ff040403020106300e0603551d11040730058803
160883701305b0603551d1f045430523027a025a0238621687474703a2f2f63
161692e746573742e67736d612e636f6d2f43524c2d412e63726c3027a025a0
162238621687474703a2f2f63692e746573742e67736d612e636f6d2f43524c
1632d422e63726c300a06082a8648ce3d0403020347003044022006c6c39f5a
164b9715d72c565dcf5ff3bfef3fb70ef0ae33a073666913586d0ef92022016
165b244eb469f2a2f586bc1c320b4b6431b8f74d941f7f1832b432552b161df
166a2'O
167function f_ts_cert_ci_brp() return Certificate {
168 var Certificate cert_decoded;
169 cert_decoded := dec_Certificate(cert_ci_brp);
170 return cert_decoded;
171}
172template (value) Certificate ts_cert_ci_brp := f_ts_cert_ci_brp();
173
174
175/* Test certificate:
176SGP.26_v1.2_files/Valid test cases/eUICC/CERT_EUICC_ECDSA_NIST.der
177Certificate:
178 Data:
179 Version: 3 (0x2)
180 Serial Number:
181 02:00:00:00:00:00:00:00:01
182 Signature Algorithm: ecdsa-with-SHA256
183 Issuer: C = DE, O = RSP Test EUM, CN = EUM Test
184 Validity
185 Not Before: Jan 9 14:39:03 2017 GMT
186 Not After : Nov 2 14:39:03 7492 GMT
187 Subject: C = DE, O = RSP Test EUM, serialNumber = 89049032123451234512345678901235, CN = Test eUICC
188 Subject Public Key Info:
189 Public Key Algorithm: id-ecPublicKey
190 Public-Key: (256 bit)
191 pub:
192 04:6d:b3:f5:3a:dc:87:dc:2f:f1:0c:7b:fc:d8:7a:
193 d1:3a:e9:70:09:af:a0:65:a6:75:7e:e5:71:b3:f2:
194 eb:b1:8f:46:c1:d6:8f:3e:de:b0:e7:4b:2e:5d:54:
195 20:51:e7:d2:7f:50:95:20:28:60:5a:fd:ef:79:fe:
196 9f:ff:d0:39:59
197 ASN1 OID: prime256v1
198 NIST CURVE: P-256
199 X509v3 extensions:
200 X509v3 Authority Key Identifier:
201 keyid:DD:3D:A2:4D:35:0C:1C:C5:D0:AF:09:65:F4:0E:C3:4C:5E:E4:09:F1
202
203 X509v3 Subject Key Identifier:
204 A5:24:76:AF:5D:50:AA:37:64:37:CC:B1:DA:21:72:EF:45:F4:84:F0
205 X509v3 Key Usage: critical
206 Digital Signature
207 X509v3 Certificate Policies: critical
208 Policy: 2.23.146.1.2.1.1
209
210 Signature Algorithm: ecdsa-with-SHA256
211 30:44:02:20:5e:da:e9:e3:b9:27:8a:36:12:65:dc:bd:13:a3:
212 bf:48:d7:ae:c4:3d:29:05:12:5b:fa:ca:2f:4c:f3:a7:e6:54:
213 02:20:08:9f:95:6b:b9:89:59:65:77:ec:98:6d:f7:af:66:f2:
214 a4:46:25:f3:85:77:4c:56:65:07:f6:f2:cd:72:e0:2c
215*/
216const octetstring cert_euicc_nist :=
217'308201fe308201a5a0030201020209020000000000000001300a06082a86
21848ce3d0403023037310b300906035504061302444531153013060355040a
2190c0c52535020546573742045554d3111300f06035504030c0845554d2054
2206573743020170d3137303130393134333930335a180f3734393231313032
2213134333930335a3064310b30090603550406130244453115301306035504
2220a0c0c52535020546573742045554d312930270603550405132038393034
223393033323132333435313233343531323334353637383930313233353113
224301106035504030c0a546573742065554943433059301306072a8648ce3d
225020106082a8648ce3d030107034200046db3f53adc87dc2ff10c7bfcd87a
226d13ae97009afa065a6757ee571b3f2ebb18f46c1d68f3edeb0e74b2e5d54
2272051e7d27f50952028605afdef79fe9fffd03959a36b3069301f0603551d
22823041830168014dd3da24d350c1cc5d0af0965f40ec34c5ee409f1301d06
22903551d0e04160414a52476af5d50aa376437ccb1da2172ef45f484f0300e
2300603551d0f0101ff04040302078030170603551d200101ff040d300b3009
231060767811201020101300a06082a8648ce3d040302034700304402205eda
232e9e3b9278a361265dcbd13a3bf48d7aec43d2905125bfaca2f4cf3a7e654
2330220089f956bb989596577ec986df7af66f2a44625f385774c566507f6f2
234cd72e02c'O;
235function f_ts_cert_euicc_nist() return Certificate {
236 var Certificate cert_decoded;
237 cert_decoded := dec_Certificate(cert_euicc_nist);
238 return cert_decoded;
239}
240template (value) Certificate ts_cert_euicc_nist := f_ts_cert_euicc_nist();
241
242/* Test certificate:
243SGP.26_v1.2_files/Valid test cases/eUICC/CERT_EUICC_ECDSA_BRP.der
244Certificate:
245 Data:
246 Version: 3 (0x2)
247 Serial Number:
248 02:00:00:00:00:00:00:00:01
249 Signature Algorithm: ecdsa-with-SHA256
250 Issuer: C = DE, O = RSP Test EUM, CN = EUM Test
251 Validity
252 Not Before: Apr 20 12:07:50 2017 GMT
253 Not After : Feb 11 12:07:50 7493 GMT
254 Subject: C = DE, O = RSP Test EUM, serialNumber = 89049032123451234512345678901235, CN = Test eUICC
255 Subject Public Key Info:
256 Public Key Algorithm: id-ecPublicKey
257 Public-Key: (256 bit)
258 pub:
259 04:3e:59:0c:38:a9:c2:56:31:5e:cf:f3:29:14:16:
260 dd:33:54:09:a6:66:fd:41:b3:b5:1e:5e:51:14:f3:
261 43:ab:f0:a2:67:74:c6:c2:6c:48:75:3a:fe:28:36:
262 43:22:7b:b6:60:8c:d2:61:cc:97:2d:37:4a:47:91:
263 24:eb:f2:77:22
264 ASN1 OID: brainpoolP256r1
265 X509v3 extensions:
266 X509v3 Authority Key Identifier:
267 keyid:6F:A1:E5:21:73:63:A8:22:BD:ED:98:8A:1A:0D:0F:F5:D7:62:0D:B7
268
269 X509v3 Subject Key Identifier:
270 C8:A6:4F:34:3B:85:B7:B0:57:8D:C5:7F:8F:13:58:6D:C8:04:ED:84
271 X509v3 Key Usage: critical
272 Digital Signature
273 X509v3 Certificate Policies: critical
274 Policy: 2.23.146.1.2.1.1
275
276 Signature Algorithm: ecdsa-with-SHA256
277 30:45:02:20:00:b4:f8:6f:2e:a1:4c:cc:04:66:51:99:88:4c:
278 ad:75:ca:dd:c3:36:79:77:2f:ff:d4:db:cf:1b:d2:a8:e4:1b:
279 02:21:00:8b:4d:40:a2:d9:bd:3a:53:c6:80:bd:c8:a3:08:c3:
280 fb:dd:fe:e7:c6:6a:18:b4:dc:dd:03:77:0f:ff:aa:49:82
281*/
282const octetstring cert_euicc_brp :=
283'30820200308201a6a0030201020209020000000000000001300a06082a86
28448ce3d0403023037310b300906035504061302444531153013060355040a
2850c0c52535020546573742045554d3111300f06035504030c0845554d2054
2866573743020170d3137303432303132303735305a180f3734393330323131
2873132303735305a3064310b30090603550406130244453115301306035504
2880a0c0c52535020546573742045554d312930270603550405132038393034
289393033323132333435313233343531323334353637383930313233353113
290301106035504030c0a54657374206555494343305a301406072a8648ce3d
291020106092b2403030208010107034200043e590c38a9c256315ecff32914
29216dd335409a666fd41b3b51e5e5114f343abf0a26774c6c26c48753afe28
2933643227bb6608cd261cc972d374a479124ebf27722a36b3069301f060355
2941d230418301680146fa1e5217363a822bded988a1a0d0ff5d7620db7301d
2950603551d0e04160414c8a64f343b85b7b0578dc57f8f13586dc804ed8430
2960e0603551d0f0101ff04040302078030170603551d200101ff040d300b30
29709060767811201020101300a06082a8648ce3d0403020348003045022000
298b4f86f2ea14ccc04665199884cad75caddc33679772fffd4dbcf1bd2a8e4
2991b0221008b4d40a2d9bd3a53c680bdc8a308c3fbddfee7c66a18b4dcdd03
300770fffaa4982'O;
301function f_ts_cert_euicc_brp() return Certificate {
302 var Certificate cert_decoded;
303 cert_decoded := dec_Certificate(cert_euicc_brp);
304 return cert_decoded;
305}
306template (value) Certificate ts_cert_euicc_brp := f_ts_cert_euicc_brp();
307
308/* Test certificate:
309SGP.26_v1.2_files/Valid test cases/EUM/CERT_EUM_ECDSA_NIST.der
310Certificate:
311 Data:
312 Version: 3 (0x2)
313 Serial Number: 305419896 (0x12345678)
314 Signature Algorithm: ecdsa-with-SHA256
315 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
316 Validity
317 Not Before: Jan 19 18:10:30 2017 GMT
318 Not After : Jan 19 18:10:30 2051 GMT
319 Subject: C = DE, O = RSP Test EUM, CN = EUM Test
320 Subject Public Key Info:
321 Public Key Algorithm: id-ecPublicKey
322 Public-Key: (256 bit)
323 pub:
324 04:13:30:d5:92:56:ac:0c:b5:0b:d9:28:d0:f4:c6:
325 80:07:c4:85:fe:3f:42:98:8a:d3:ee:38:75:ae:33:
326 f4:98:3a:b2:3b:4d:d4:c3:13:40:d6:76:dd:8e:11:
327 f9:c5:cb:a1:b1:1e:b6:94:ee:d0:99:4d:b5:29:28:
328 5e:63:2c:89:06
329 ASN1 OID: prime256v1
330 NIST CURVE: P-256
331 X509v3 extensions:
332 X509v3 Authority Key Identifier:
333 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
334
335 X509v3 Subject Key Identifier:
336 DD:3D:A2:4D:35:0C:1C:C5:D0:AF:09:65:F4:0E:C3:4C:5E:E4:09:F1
337 X509v3 Key Usage: critical
338 Certificate Sign
339 X509v3 Certificate Policies: critical
340 Policy: 2.23.146.1.2.1.2
341
342 X509v3 Subject Alternative Name:
343 Registered ID:2.999.5
344 X509v3 Basic Constraints: critical
345 CA:TRUE, pathlen:0
346 X509v3 CRL Distribution Points:
347
348 Full Name:
349 URI:http://ci.test.gsma.com/CRL-B.crl
350
351 X509v3 Name Constraints: critical
352 Permitted:
353 DirName:O = RSP Test EUM, serialNumber = 89049032
354
355 Signature Algorithm: ecdsa-with-SHA256
356 30:46:02:21:00:8c:4d:4b:26:40:4e:a5:dd:ea:65:eb:b4:3c:
357 18:db:ab:12:cb:90:97:de:b7:7f:0b:a1:57:e3:8c:7b:18:b4:
358 ee:02:21:00:d1:8d:9c:f3:a1:34:87:ee:65:ca:6b:48:f8:c1:
359 ad:c0:2e:7a:7d:89:f1:74:b5:ae:2b:5e:1d:82:0a:9b:23:23
360*/
361const octetstring cert_eum_nist :=
362'3082027c30820221a003020102020412345678300a06082a8648ce3d0403
3630230493115301306035504030c0c47534d4120546573742043493111300f
364060355040b0c0854455354434552543110300e060355040a0c0752535054
365455354310b30090603550406130249543020170d31373031313931383130
36633305a180f32303531303131393138313033305a3037310b300906035504
367061302444531153013060355040a0c0c52535020546573742045554d3111
368300f06035504030c0845554d20546573743059301306072a8648ce3d0201
36906082a8648ce3d030107034200041330d59256ac0cb50bd928d0f4c68007
370c485fe3f42988ad3ee3875ae33f4983ab23b4dd4c31340d676dd8e11f9c5
371cba1b11eb694eed0994db529285e632c8906a382010530820101301f0603
372551d23041830168014f54172bdf98a95d65cbeb88a38a1c11d800a85c330
3731d0603551d0e04160414dd3da24d350c1cc5d0af0965f40ec34c5ee409f1
374300e0603551d0f0101ff04040302020430170603551d200101ff040d300b
3753009060767811201020102300e0603551d11040730058803883705301206
37603551d130101ff040830060101ff02010030320603551d1f042b30293027
377a025a0238621687474703a2f2f63692e746573742e67736d612e636f6d2f
37843524c2d422e63726c303e0603551d1e0101ff04343032a030302ea42c30
3792a31153013060355040a0c0c52535020546573742045554d3111300f0603
38055040513083839303439303332300a06082a8648ce3d0403020349003046
3810221008c4d4b26404ea5ddea65ebb43c18dbab12cb9097deb77f0ba157e3
3828c7b18b4ee022100d18d9cf3a13487ee65ca6b48f8c1adc02e7a7d89f174
383b5ae2b5e1d820a9b2323'O
384function f_ts_cert_eum_nist() return Certificate {
385 var Certificate cert_decoded;
386 cert_decoded := dec_Certificate(cert_eum_nist);
387 return cert_decoded;
388}
389template (value) Certificate ts_cert_eum_nist := f_ts_cert_eum_nist();
390
391/* Test certificate:
392SGP.26_v1.2_files/Valid test cases/EUM/CERT_EUM_ECDSA_BRP.der
393Certificate:
394 Data:
395 Version: 3 (0x2)
396 Serial Number: 305419896 (0x12345678)
397 Signature Algorithm: ecdsa-with-SHA256
398 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
399 Validity
400 Not Before: Apr 20 10:23:31 2017 GMT
401 Not After : Apr 20 10:23:31 2051 GMT
402 Subject: C = DE, O = RSP Test EUM, CN = EUM Test
403 Subject Public Key Info:
404 Public Key Algorithm: id-ecPublicKey
405 Public-Key: (256 bit)
406 pub:
407 04:a2:e5:2a:32:df:e8:99:65:71:c5:3a:f5:32:8e:
408 f6:82:09:3f:c1:d0:5f:52:65:2f:6b:71:1c:24:38:
409 21:f7:f1:6b:0c:ec:8d:21:9b:23:d3:f9:90:f4:34:
410 d0:b9:0d:42:71:6c:02:e0:93:05:26:44:63:f6:11:
411 e6:50:c3:7f:f7
412 ASN1 OID: brainpoolP256r1
413 X509v3 extensions:
414 X509v3 Authority Key Identifier:
415 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
416
417 X509v3 Subject Key Identifier:
418 6F:A1:E5:21:73:63:A8:22:BD:ED:98:8A:1A:0D:0F:F5:D7:62:0D:B7
419 X509v3 Key Usage: critical
420 Certificate Sign
421 X509v3 Certificate Policies: critical
422 Policy: 2.23.146.1.2.1.2
423
424 X509v3 Subject Alternative Name:
425 Registered ID:2.999.5
426 X509v3 Basic Constraints: critical
427 CA:TRUE, pathlen:0
428 X509v3 CRL Distribution Points:
429
430 Full Name:
431 URI:http://ci.test.gsma.com/CRL-B.crl
432
433 X509v3 Name Constraints: critical
434 Permitted:
435 DirName:O = RSP Test EUM, serialNumber = 89049032
436
437 Signature Algorithm: ecdsa-with-SHA256
438 30:44:02:20:2b:46:5c:c1:ac:87:8d:46:a8:7d:4a:70:72:ca:
439 2c:f9:1c:27:10:87:02:19:ae:80:29:c6:96:bc:39:f0:5c:dc:
440 02:20:40:cc:35:b4:9c:3b:30:ee:39:b0:5d:da:8f:6d:0d:a6:
441 43:ab:8e:bd:6a:05:23:91:cf:46:c9:ee:4c:95:3b:19
442*/
443const octetstring cert_eum_brp :=
444'3082027b30820222a003020102020412345678300a06082a8648ce3d0403
4450230493115301306035504030c0c47534d4120546573742043493111300f
446060355040b0c0854455354434552543110300e060355040a0c0752535054
447455354310b30090603550406130249543020170d31373034323031303233
44833315a180f32303531303432303130323333315a3037310b300906035504
449061302444531153013060355040a0c0c52535020546573742045554d3111
450300f06035504030c0845554d2054657374305a301406072a8648ce3d0201
45106092b240303020801010703420004a2e52a32dfe8996571c53af5328ef6
45282093fc1d05f52652f6b711c243821f7f16b0cec8d219b23d3f990f434d0
453b90d42716c02e09305264463f611e650c37ff7a382010530820101301f06
45403551d23041830168014c0bc70ba36929d43b467ff57570530e57ab8fcd8
455301d0603551d0e041604146fa1e5217363a822bded988a1a0d0ff5d7620d
456b7300e0603551d0f0101ff04040302020430170603551d200101ff040d30
4570b3009060767811201020102300e0603551d110407300588038837053012
4580603551d130101ff040830060101ff02010030320603551d1f042b302930
45927a025a0238621687474703a2f2f63692e746573742e67736d612e636f6d
4602f43524c2d422e63726c303e0603551d1e0101ff04343032a030302ea42c
461302a31153013060355040a0c0c52535020546573742045554d3111300f06
4620355040513083839303439303332300a06082a8648ce3d04030203470030
4634402202b465cc1ac878d46a87d4a7072ca2cf91c2710870219ae8029c696
464bc39f05cdc022040cc35b49c3b30ee39b05dda8f6d0da643ab8ebd6a0523
46591cf46c9ee4c953b19'O;
466function f_ts_cert_eum_brp() return Certificate {
467 var Certificate cert_decoded;
468 cert_decoded := dec_Certificate(cert_eum_brp);
469 return cert_decoded;
470}
471template (value) Certificate ts_cert_eum_brp := f_ts_cert_eum_brp();
472
473/* Test certificate:
474SGP.26_v1.2_files/Valid test cases/SM-DP+/DPauth/CERT_S_SM_DPauth_ECDSA_NIST.der
475Certificate:
476 Data:
477 Version: 3 (0x2)
478 Serial Number: 100 (0x64)
479 Signature Algorithm: ecdsa-with-SHA256
480 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
481 Validity
482 Not Before: Feb 1 13:38:56 2017 GMT
483 Not After : Feb 1 13:38:56 2020 GMT
484 Subject: O = ACME, CN = "TEST SM-DP+"
485 Subject Public Key Info:
486 Public Key Algorithm: id-ecPublicKey
487 Public-Key: (256 bit)
488 pub:
489 04:4d:fe:d4:f4:69:47:91:bf:16:95:ce:a0:30:7a:
490 35:b4:18:01:96:95:38:7b:b7:5b:7d:24:47:b6:b5:
491 20:9f:04:45:ae:4e:5e:52:1c:d1:38:88:d7:5f:e0:
492 7c:85:80:22:2a:e2:0d:ba:ac:1d:77:cd:76:30:49:
493 93:42:1b:d7:39
494 ASN1 OID: prime256v1
495 NIST CURVE: P-256
496 X509v3 extensions:
497 X509v3 Authority Key Identifier:
498 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
499
500 X509v3 Subject Key Identifier:
501 BD:5A:82:CC:1A:96:60:21:18:BA:75:60:A1:FF:83:A7:8B:21:0B:E5
502 X509v3 Subject Alternative Name:
503 Registered ID:2.999.10
504 X509v3 Key Usage: critical
505 Digital Signature
506 X509v3 Certificate Policies: critical
507 Policy: 2.23.146.1.2.1.4
508
509 X509v3 CRL Distribution Points:
510
511 Full Name:
512 URI:http://ci.test.gsma.com/CRL-A.crl
513
514 Full Name:
515 URI:http://ci.test.gsma.com/CRL-B.crl
516
517 Signature Algorithm: ecdsa-with-SHA256
518 30:45:02:21:00:f1:cf:ef:41:e2:b8:a0:22:62:17:10:b9:6a:
519 65:4f:ff:e4:85:d0:8c:20:e6:64:e8:5b:f2:d7:27:00:2a:07:
520 38:02:20:69:25:bd:f7:bb:87:d0:c8:be:2b:78:a0:c5:9a:61:
521 01:78:29:30:c2:fe:98:ad:2d:70:38:65:6a:02:14:a3:97
522*/
523const octetstring cert_s_sm_dpauth_nist :=
524'30820237308201dda003020102020164300a06082a8648ce3d0403023049
5253115301306035504030c0c47534d4120546573742043493111300f060355
526040b0c0854455354434552543110300e060355040a0c0752535054455354
527310b3009060355040613024954301e170d3137303230313133333835365a
528170d3230303230313133333835365a3025310d300b060355040a0c044143
5294d453114301206035504030c0b5445535420534d2d44502b305930130607
5302a8648ce3d020106082a8648ce3d030107034200044dfed4f4694791bf16
53195cea0307a35b418019695387bb75b7d2447b6b5209f0445ae4e5e521cd1
5323888d75fe07c8580222ae20dbaac1d77cd76304993421bd739a381d93081
533d6301f0603551d23041830168014f54172bdf98a95d65cbeb88a38a1c11d
534800a85c3301d0603551d0e04160414bd5a82cc1a96602118ba7560a1ff83
535a78b210be5300e0603551d1104073005880388370a300e0603551d0f0101
536ff04040302078030170603551d200101ff040d300b300906076781120102
5370104305b0603551d1f045430523027a025a0238621687474703a2f2f6369
5382e746573742e67736d612e636f6d2f43524c2d412e63726c3027a025a023
5398621687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d
540422e63726c300a06082a8648ce3d0403020348003045022100f1cfef41e2
541b8a022621710b96a654fffe485d08c20e664e85bf2d727002a0738022069
54225bdf7bb87d0c8be2b78a0c59a6101782930c2fe98ad2d7038656a0214a3
54397'O;
544function f_ts_cert_s_sm_dpauth_nist() return Certificate {
545 var Certificate cert_decoded;
546 cert_decoded := dec_Certificate(cert_s_sm_dpauth_nist);
547 return cert_decoded;
548}
549template (value) Certificate ts_cert_s_sm_dpauth_nist := f_ts_cert_s_sm_dpauth_nist();
550
551/* Test certificate:
552SGP.26_v1.2_files/Valid test cases/SM-DP+/DPauth/CERT_S_SM_DPauth_ECDSA_BRP.der
553Certificate:
554 Data:
555 Version: 3 (0x2)
556 Serial Number: 100 (0x64)
557 Signature Algorithm: ecdsa-with-SHA256
558 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
559 Validity
560 Not Before: Apr 26 15:20:12 2017 GMT
561 Not After : Apr 25 15:20:12 2020 GMT
562 Subject: O = ACME, CN = "TEST SM-DP+"
563 Subject Public Key Info:
564 Public Key Algorithm: id-ecPublicKey
565 Public-Key: (256 bit)
566 pub:
567 04:25:5d:7d:af:00:ef:84:1d:76:fa:7a:63:d6:3e:
568 b3:fe:6c:9f:70:49:2d:38:19:23:f8:f8:bd:7b:24:
569 f3:c5:ad:16:8e:be:3b:09:dd:80:f2:9e:7f:fd:24:
570 a4:d1:be:74:7f:83:23:e4:72:92:83:96:dd:e9:e0:
571 15:1c:ea:ba:18
572 ASN1 OID: brainpoolP256r1
573 X509v3 extensions:
574 X509v3 Authority Key Identifier:
575 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
576
577 X509v3 Subject Key Identifier:
578 79:A4:BD:4D:78:FF:47:34:BC:60:45:CF:91:96:24:4A:1F:B8:4B:EB
579 X509v3 Subject Alternative Name:
580 Registered ID:2.999.10
581 X509v3 Key Usage: critical
582 Digital Signature
583 X509v3 Certificate Policies: critical
584 Policy: 2.23.146.1.2.1.4
585
586 X509v3 CRL Distribution Points:
587
588 Full Name:
589 URI:http://ci.test.gsma.com/CRL-A.crl
590
591 Full Name:
592 URI:http://ci.test.gsma.com/CRL-B.crl
593
594 Signature Algorithm: ecdsa-with-SHA256
595 30:45:02:20:30:45:fe:e3:ed:cc:6c:84:36:3d:d7:b8:6e:98:
596 4b:dd:1c:94:78:cd:0f:2c:da:8e:4c:b9:63:13:f7:85:b2:db:
597 02:21:00:81:29:01:29:4a:5f:c6:82:cf:fa:57:0f:8a:42:d5:
598 59:b0:7c:ef:83:05:f7:d2:36:41:64:df:4d:f8:8c:a7:fa
599*/
600const octetstring cert_s_sm_dpauth_brp :=
601'30820238308201dea003020102020164300a06082a8648ce3d0403023049
6023115301306035504030c0c47534d4120546573742043493111300f060355
603040b0c0854455354434552543110300e060355040a0c0752535054455354
604310b3009060355040613024954301e170d3137303432363135323031325a
605170d3230303432353135323031325a3025310d300b060355040a0c044143
6064d453114301206035504030c0b5445535420534d2d44502b305a30140607
6072a8648ce3d020106092b240303020801010703420004255d7daf00ef841d
60876fa7a63d63eb3fe6c9f70492d381923f8f8bd7b24f3c5ad168ebe3b09dd
60980f29e7ffd24a4d1be747f8323e472928396dde9e0151ceaba18a381d930
61081d6301f0603551d23041830168014c0bc70ba36929d43b467ff57570530
611e57ab8fcd8301d0603551d0e0416041479a4bd4d78ff4734bc6045cf9196
612244a1fb84beb300e0603551d1104073005880388370a300e0603551d0f01
61301ff04040302078030170603551d200101ff040d300b3009060767811201
614020104305b0603551d1f045430523027a025a0238621687474703a2f2f63
615692e746573742e67736d612e636f6d2f43524c2d412e63726c3027a025a0
616238621687474703a2f2f63692e746573742e67736d612e636f6d2f43524c
6172d422e63726c300a06082a8648ce3d040302034800304502203045fee3ed
618cc6c84363dd7b86e984bdd1c9478cd0f2cda8e4cb96313f785b2db022100
619812901294a5fc682cffa570f8a42d559b07cef8305f7d2364164df4df88c
620a7fa'O;
621function f_ts_cert_s_sm_dpauth_brp() return Certificate {
622 var Certificate cert_decoded;
623 cert_decoded := dec_Certificate(cert_s_sm_dpauth_brp);
624 return cert_decoded;
625}
626template (value) Certificate ts_cert_s_sm_dpauth_brp := f_ts_cert_s_sm_dpauth_brp();
627
628/* Test certificate:
629SGP.26_v1.2_files/Valid test cases/SM-DP+/DPauth/CERT_S_SM_DP2auth_ECDSA_NIST.der
630Certificate:
631 Data:
632 Version: 3 (0x2)
633 Serial Number: 200 (0xc8)
634 Signature Algorithm: ecdsa-with-SHA256
635 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
636 Validity
637 Not Before: Aug 21 14:19:48 2017 GMT
638 Not After : Aug 20 14:19:48 2020 GMT
639 Subject: O = ACME, CN = "TEST SM-DP+2"
640 Subject Public Key Info:
641 Public Key Algorithm: id-ecPublicKey
642 Public-Key: (256 bit)
643 pub:
644 04:2b:2e:9b:45:d3:51:c0:9a:f4:0e:91:43:83:a1:
645 90:38:47:f2:60:7d:e6:0e:f7:ab:25:c4:0e:03:f8:
646 db:b6:50:8e:14:57:50:8c:2b:e0:01:73:47:ec:fa:
647 1b:f9:f7:75:e7:d0:7e:80:5e:52:e1:98:8b:7b:58:
648 5a:71:11:ae:33
649 ASN1 OID: prime256v1
650 NIST CURVE: P-256
651 X509v3 extensions:
652 X509v3 Authority Key Identifier:
653 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
654
655 X509v3 Subject Key Identifier:
656 95:9E:F7:E6:50:C1:BE:21:6A:39:19:74:27:6D:26:B8:A9:35:61:71
657 X509v3 Subject Alternative Name:
658 Registered ID:2.999.12
659 X509v3 Key Usage: critical
660 Digital Signature
661 X509v3 Certificate Policies: critical
662 Policy: 2.23.146.1.2.1.4
663
664 X509v3 CRL Distribution Points:
665
666 Full Name:
667 URI:http://ci.test.gsma.com/CRL-A.crl
668
669 Full Name:
670 URI:http://ci.test.gsma.com/CRL-B.crl
671
672 Signature Algorithm: ecdsa-with-SHA256
673 30:46:02:21:00:c0:a5:cd:d1:0f:25:29:a9:f1:86:6d:93:21:
674 65:91:ce:7a:8a:29:54:6d:1f:aa:2f:99:c2:4e:a6:52:23:35:
675 98:02:21:00:85:92:01:17:04:fe:ab:d5:a6:af:fc:40:10:96:
676 39:99:08:3f:5b:3e:94:60:05:a3:f1:b0:cb:81:a6:6b:b9:3c
677*/
678const octetstring cert_s_sm_dp2auth_nist :=
679'3082023a308201dfa003020102020200c8300a06082a8648ce3d04030230
680493115301306035504030c0c47534d4120546573742043493111300f0603
68155040b0c0854455354434552543110300e060355040a0c07525350544553
68254310b3009060355040613024954301e170d313730383231313431393438
6835a170d3230303832303134313934385a3026310d300b060355040a0c0441
684434d453115301306035504030c0c5445535420534d2d44502b3230593013
68506072a8648ce3d020106082a8648ce3d030107034200042b2e9b45d351c0
6869af40e914383a1903847f2607de60ef7ab25c40e03f8dbb6508e1457508c
6872be0017347ecfa1bf9f775e7d07e805e52e1988b7b585a7111ae33a381d9
6883081d6301f0603551d23041830168014f54172bdf98a95d65cbeb88a38a1
689c11d800a85c3301d0603551d0e04160414959ef7e650c1be216a39197427
6906d26b8a9356171300e0603551d1104073005880388370c300e0603551d0f
6910101ff04040302078030170603551d200101ff040d300b30090607678112
69201020104305b0603551d1f045430523027a025a0238621687474703a2f2f
69363692e746573742e67736d612e636f6d2f43524c2d412e63726c3027a025
694a0238621687474703a2f2f63692e746573742e67736d612e636f6d2f4352
6954c2d422e63726c300a06082a8648ce3d0403020349003046022100c0a5cd
696d10f2529a9f1866d93216591ce7a8a29546d1faa2f99c24ea65223359802
69721008592011704feabd5a6affc4010963999083f5b3e946005a3f1b0cb81
698a66bb93c'O;
699function f_ts_cert_s_sm_dp2auth_nist() return Certificate {
700 var Certificate cert_decoded;
701 cert_decoded := dec_Certificate(cert_s_sm_dp2auth_nist);
702 return cert_decoded;
703}
704template (value) Certificate ts_cert_s_sm_dp2auth_nist := f_ts_cert_s_sm_dp2auth_nist();
705
706/* Test certificate:
707SGP.26_v1.2_files/Valid test cases/SM-DP+/DPauth/CERT_S_SM_DP2auth_ECDSA_BRP.der
708Certificate:
709 Data:
710 Version: 3 (0x2)
711 Serial Number: 200 (0xc8)
712 Signature Algorithm: ecdsa-with-SHA256
713 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
714 Validity
715 Not Before: Aug 21 14:27:16 2017 GMT
716 Not After : Aug 20 14:27:16 2020 GMT
717 Subject: O = ACME, CN = "TEST SM-DP+2"
718 Subject Public Key Info:
719 Public Key Algorithm: id-ecPublicKey
720 Public-Key: (256 bit)
721 pub:
722 04:2e:ee:07:c9:6d:00:5b:e5:19:5f:79:ad:1d:ad:
723 cd:1d:37:8c:a3:09:5e:44:f7:2e:ea:41:0f:08:c7:
724 56:12:2c:90:63:c9:65:b7:fc:85:29:c0:ca:4e:9b:
725 4f:65:96:9c:28:3c:65:63:64:57:87:71:18:f6:d1:
726 17:2d:6a:23:65
727 ASN1 OID: brainpoolP256r1
728 X509v3 extensions:
729 X509v3 Authority Key Identifier:
730 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
731
732 X509v3 Subject Key Identifier:
733 D7:0E:FD:05:7B:AC:1F:7C:55:EA:5D:8C:26:BE:16:02:92:84:5B:AF
734 X509v3 Subject Alternative Name:
735 Registered ID:2.999.12
736 X509v3 Key Usage: critical
737 Digital Signature
738 X509v3 Certificate Policies: critical
739 Policy: 2.23.146.1.2.1.4
740
741 X509v3 CRL Distribution Points:
742
743 Full Name:
744 URI:http://ci.test.gsma.com/CRL-A.crl
745
746 Full Name:
747 URI:http://ci.test.gsma.com/CRL-B.crl
748
749 Signature Algorithm: ecdsa-with-SHA256
750 30:44:02:20:4b:32:a5:c9:ee:05:f2:9f:d4:4a:08:6f:f0:4a:
751 10:9a:88:d6:e5:84:80:39:a5:16:ee:c7:8c:a4:ac:f0:c5:b3:
752 02:20:52:9e:46:fa:10:9d:13:05:40:ba:d6:2a:46:fc:85:c3:
753 95:b2:c4:cb:9e:8c:f1:50:79:d4:9a:9d:a5:37:df:e0
754*/
755const octetstring cert_s_sm_dp2auth_brp :=
756'30820239308201e0a003020102020200c8300a06082a8648ce3d04030230
757493115301306035504030c0c47534d4120546573742043493111300f0603
75855040b0c0854455354434552543110300e060355040a0c07525350544553
75954310b3009060355040613024954301e170d313730383231313432373136
7605a170d3230303832303134323731365a3026310d300b060355040a0c0441
761434d453115301306035504030c0c5445535420534d2d44502b32305a3014
76206072a8648ce3d020106092b2403030208010107034200042eee07c96d00
7635be5195f79ad1dadcd1d378ca3095e44f72eea410f08c756122c9063c965
764b7fc8529c0ca4e9b4f65969c283c65636457877118f6d1172d6a2365a381
765d93081d6301f0603551d23041830168014c0bc70ba36929d43b467ff5757
7660530e57ab8fcd8301d0603551d0e04160414d70efd057bac1f7c55ea5d8c
76726be160292845baf300e0603551d1104073005880388370c300e0603551d
7680f0101ff04040302078030170603551d200101ff040d300b300906076781
7691201020104305b0603551d1f045430523027a025a0238621687474703a2f
7702f63692e746573742e67736d612e636f6d2f43524c2d412e63726c3027a0
77125a0238621687474703a2f2f63692e746573742e67736d612e636f6d2f43
772524c2d422e63726c300a06082a8648ce3d040302034700304402204b32a5
773c9ee05f29fd44a086ff04a109a88d6e5848039a516eec78ca4acf0c5b302
77420529e46fa109d130540bad62a46fc85c395b2c4cb9e8cf15079d49a9da5
77537dfe0'O;
776function f_ts_cert_s_sm_dp2auth_brp() return Certificate {
777 var Certificate cert_decoded;
778 cert_decoded := dec_Certificate(cert_s_sm_dp2auth_brp);
779 return cert_decoded;
780}
781template (value) Certificate ts_cert_s_sm_dp2auth_brp := f_ts_cert_s_sm_dp2auth_brp();
782
783/* Test certificate:
784SGP.26_v1.2_files/Valid test cases/SM-DP+/DPpb/CERT_S_SM_DPpb_ECDSA_NIST.der
785Certificate:
786 Data:
787 Version: 3 (0x2)
788 Serial Number: 101 (0x65)
789 Signature Algorithm: ecdsa-with-SHA256
790 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
791 Validity
792 Not Before: Feb 1 13:38:57 2017 GMT
793 Not After : Feb 1 13:38:57 2020 GMT
794 Subject: O = ACME, CN = "TEST SM-DP+"
795 Subject Public Key Info:
796 Public Key Algorithm: id-ecPublicKey
797 Public-Key: (256 bit)
798 pub:
799 04:10:4c:2a:e3:d0:2d:ef:9c:97:92:61:a7:c6:71:
800 00:76:b9:70:72:1d:09:55:a2:64:4a:e0:5f:ae:4b:
801 c2:31:4e:5d:c0:9f:6b:f0:11:80:26:16:53:42:e2:
802 12:31:87:75:e3:65:f3:b5:73:25:37:30:66:b9:90:
803 6e:0b:d1:38:8d
804 ASN1 OID: prime256v1
805 NIST CURVE: P-256
806 X509v3 extensions:
807 X509v3 Authority Key Identifier:
808 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
809
810 X509v3 Subject Key Identifier:
811 E6:EA:F7:1E:E0:FB:94:30:EC:CD:1E:BB:42:1F:88:14:37:C1:32:63
812 X509v3 Subject Alternative Name:
813 Registered ID:2.999.10
814 X509v3 Key Usage: critical
815 Digital Signature
816 X509v3 Certificate Policies: critical
817 Policy: 2.23.146.1.2.1.5
818
819 X509v3 CRL Distribution Points:
820
821 Full Name:
822 URI:http://ci.test.gsma.com/CRL-A.crl
823
824 Full Name:
825 URI:http://ci.test.gsma.com/CRL-B.crl
826
827 Signature Algorithm: ecdsa-with-SHA256
828 30:43:02:1f:1d:c0:8e:8b:98:1f:4c:77:0c:e9:06:01:c5:2b:
829 2a:28:e2:21:65:4b:d0:ba:a3:78:34:80:92:27:52:bf:f4:02:
830 20:64:23:83:9e:85:e8:93:6f:7a:18:b2:b4:b8:5f:99:8c:4f:
831 38:a8:db:9b:88:8c:23:e2:99:7c:9e:a5:af:6e:94
832*/
833const octetstring cert_s_sm_dppb_nist :=
834'30820235308201dda003020102020165300a06082a8648ce3d0403023049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'O;
853function f_ts_cert_s_sm_dppb_nist() return Certificate {
854 var Certificate cert_decoded;
855 cert_decoded := dec_Certificate(cert_s_sm_dppb_nist);
856 return cert_decoded;
857}
858template (value) Certificate ts_cert_s_sm_dppb_nist := f_ts_cert_s_sm_dppb_nist();
859
860/* Test certificate:
861SGP.26_v1.2_files/Valid test cases/SM-DP+/DPpb/CERT_S_SM_DPpb_ECDSA_BRP.der
862Certificate:
863 Data:
864 Version: 3 (0x2)
865 Serial Number: 101 (0x65)
866 Signature Algorithm: ecdsa-with-SHA256
867 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
868 Validity
869 Not Before: Apr 26 15:20:13 2017 GMT
870 Not After : Apr 25 15:20:13 2020 GMT
871 Subject: O = ACME, CN = "TEST SM-DP+"
872 Subject Public Key Info:
873 Public Key Algorithm: id-ecPublicKey
874 Public-Key: (256 bit)
875 pub:
876 04:89:32:53:ec:c9:4c:51:df:4f:ee:6e:0d:b0:95:
877 1c:fc:65:62:74:81:b5:41:8e:55:70:69:f4:87:fa:
878 a1:54:66:a5:cb:8e:10:cc:2b:38:09:9c:f2:a9:29:
879 f7:f8:2d:ac:06:51:26:b7:1d:06:40:96:1d:b7:f9:
880 1a:49:e9:56:12
881 ASN1 OID: brainpoolP256r1
882 X509v3 extensions:
883 X509v3 Authority Key Identifier:
884 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
885
886 X509v3 Subject Key Identifier:
887 A8:C6:8D:F4:49:EB:71:EC:72:3E:AC:13:2E:40:E4:B6:F5:46:44:FE
888 X509v3 Subject Alternative Name:
889 Registered ID:2.999.10
890 X509v3 Key Usage: critical
891 Digital Signature
892 X509v3 Certificate Policies: critical
893 Policy: 2.23.146.1.2.1.5
894
895 X509v3 CRL Distribution Points:
896
897 Full Name:
898 URI:http://ci.test.gsma.com/CRL-A.crl
899
900 Full Name:
901 URI:http://ci.test.gsma.com/CRL-B.crl
902
903 Signature Algorithm: ecdsa-with-SHA256
904 30:44:02:20:5f:33:63:c1:01:b4:db:d0:2a:61:3c:8a:ca:32:
905 df:4f:2f:51:4c:21:73:e8:93:6e:9b:ff:af:02:a1:f5:e2:56:
906 02:20:01:c0:99:36:19:43:29:65:fe:5a:87:a0:38:ae:91:bf:
907 02:45:07:06:a3:2c:4b:13:07:af:4b:e8:ec:41:68:1d
908*/
909const octetstring cert_s_sm_dppb_brp :=
910'30820237308201dea003020102020165300a06082a8648ce3d0403023049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'O;
930function f_ts_cert_s_sm_dppb_brp() return Certificate {
931 var Certificate cert_decoded;
932 cert_decoded := dec_Certificate(cert_s_sm_dppb_brp);
933 return cert_decoded;
934}
935template (value) Certificate ts_cert_s_sm_dppb_brp := f_ts_cert_s_sm_dppb_brp();
936
937/* Test certificate:
938SGP.26_v1.2_files/Valid test cases/SM-DP+/DPpb/CERT_S_SM_DP2pb_ECDSA_NIST.der
939Certificate:
940 Data:
941 Version: 3 (0x2)
942 Serial Number: 201 (0xc9)
943 Signature Algorithm: ecdsa-with-SHA256
944 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
945 Validity
946 Not Before: Aug 21 14:23:52 2017 GMT
947 Not After : Aug 20 14:23:52 2020 GMT
948 Subject: O = ACME, CN = "TEST SM-DP+2"
949 Subject Public Key Info:
950 Public Key Algorithm: id-ecPublicKey
951 Public-Key: (256 bit)
952 pub:
953 04:3e:2d:75:a1:06:22:12:16:c2:ae:e8:fa:d5:84:
954 f7:79:63:3c:f9:44:68:1b:5e:c7:5a:96:65:3f:5f:
955 40:1c:47:6a:e3:9d:54:6c:03:2d:32:d0:07:0a:7b:
956 86:e5:dc:eb:aa:dd:f3:1c:a5:c2:76:6c:19:6b:d7:
957 9b:c2:1a:01:80
958 ASN1 OID: prime256v1
959 NIST CURVE: P-256
960 X509v3 extensions:
961 X509v3 Authority Key Identifier:
962 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
963
964 X509v3 Subject Key Identifier:
965 20:A3:A8:30:E9:2E:E7:A4:68:C5:EB:27:BA:8D:F1:84:59:AD:FD:D7
966 X509v3 Subject Alternative Name:
967 Registered ID:2.999.12
968 X509v3 Key Usage: critical
969 Digital Signature
970 X509v3 Certificate Policies: critical
971 Policy: 2.23.146.1.2.1.5
972
973 X509v3 CRL Distribution Points:
974
975 Full Name:
976 URI:http://ci.test.gsma.com/CRL-A.crl
977
978 Full Name:
979 URI:http://ci.test.gsma.com/CRL-B.crl
980
981 Signature Algorithm: ecdsa-with-SHA256
982 30:45:02:20:17:81:a1:df:74:e8:c6:60:88:67:17:b7:6c:fd:
983 ce:a0:2d:f7:b2:85:5a:5b:6c:5e:a9:cc:8d:ec:97:4c:e1:9b:
984 02:21:00:ca:a8:9b:fb:af:26:13:02:1b:8f:7c:2c:63:59:44:
985 b3:5b:14:38:c0:09:e6:81:dc:e6:7a:58:b3:97:b8:f4:c1
986*/
987const octetstring cert_s_sm_dp2pb_nist :=
988'30820239308201dfa003020102020200c9300a06082a8648ce3d04030230
989493115301306035504030c0c47534d4120546573742043493111300f0603
99055040b0c0854455354434552543110300e060355040a0c07525350544553
99154310b3009060355040613024954301e170d313730383231313432333532
9925a170d3230303832303134323335325a3026310d300b060355040a0c0441
993434d453115301306035504030c0c5445535420534d2d44502b3230593013
99406072a8648ce3d020106082a8648ce3d030107034200043e2d75a1062212
99516c2aee8fad584f779633cf944681b5ec75a96653f5f401c476ae39d546c
996032d32d0070a7b86e5dcebaaddf31ca5c2766c196bd79bc21a0180a381d9
9973081d6301f0603551d23041830168014f54172bdf98a95d65cbeb88a38a1
998c11d800a85c3301d0603551d0e0416041420a3a830e92ee7a468c5eb27ba
9998df18459adfdd7300e0603551d1104073005880388370c300e0603551d0f
10000101ff04040302078030170603551d200101ff040d300b30090607678112
100101020105305b0603551d1f045430523027a025a0238621687474703a2f2f
100263692e746573742e67736d612e636f6d2f43524c2d412e63726c3027a025
1003a0238621687474703a2f2f63692e746573742e67736d612e636f6d2f4352
10044c2d422e63726c300a06082a8648ce3d040302034800304502201781a1df
100574e8c660886717b76cfdcea02df7b2855a5b6c5ea9cc8dec974ce19b0221
100600caa89bfbaf2613021b8f7c2c635944b35b1438c009e681dce67a58b397
1007b8f4c1'O
1008function f_ts_cert_s_sm_dp2pb_nist() return Certificate {
1009 var Certificate cert_decoded;
1010 cert_decoded := dec_Certificate(cert_s_sm_dp2pb_nist);
1011 return cert_decoded;
1012}
1013template (value) Certificate ts_cert_s_sm_dp2pb_nist := f_ts_cert_s_sm_dp2pb_nist();
1014
1015/* Test certificate:
1016SGP.26_v1.2_files/Valid test cases/SM-DP+/DPpb/CERT_S_SM_DP2pb_ECDSA_BRP.der
1017Certificate:
1018 Data:
1019 Version: 3 (0x2)
1020 Serial Number: 201 (0xc9)
1021 Signature Algorithm: ecdsa-with-SHA256
1022 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1023 Validity
1024 Not Before: Aug 21 14:31:07 2017 GMT
1025 Not After : Aug 20 14:31:07 2020 GMT
1026 Subject: O = ACME, CN = "TEST SM-DP+2"
1027 Subject Public Key Info:
1028 Public Key Algorithm: id-ecPublicKey
1029 Public-Key: (256 bit)
1030 pub:
1031 04:73:61:85:5e:59:02:64:b2:52:c7:1a:60:62:a0:
1032 21:e2:7b:46:f7:60:b8:13:82:06:a7:f7:44:20:ef:
1033 8b:c5:5a:8b:98:8d:16:58:f9:d7:0d:3a:2d:84:80:
1034 aa:df:64:e6:2c:4d:71:27:de:5a:0a:2b:91:7a:94:
1035 3f:44:74:aa:dd
1036 ASN1 OID: brainpoolP256r1
1037 X509v3 extensions:
1038 X509v3 Authority Key Identifier:
1039 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
1040
1041 X509v3 Subject Key Identifier:
1042 31:03:8A:55:B6:BE:CF:6C:EA:59:DE:2F:DA:14:F4:32:7F:B8:B6:A9
1043 X509v3 Subject Alternative Name:
1044 Registered ID:2.999.12
1045 X509v3 Key Usage: critical
1046 Digital Signature
1047 X509v3 Certificate Policies: critical
1048 Policy: 2.23.146.1.2.1.5
1049
1050 X509v3 CRL Distribution Points:
1051
1052 Full Name:
1053 URI:http://ci.test.gsma.com/CRL-A.crl
1054
1055 Full Name:
1056 URI:http://ci.test.gsma.com/CRL-B.crl
1057
1058 Signature Algorithm: ecdsa-with-SHA256
1059 30:44:02:20:0b:2f:51:21:0c:e1:39:f1:80:69:54:a2:74:7b:
1060 18:bd:7b:39:0b:25:0c:4a:12:ae:8d:d2:1e:43:42:0e:3c:73:
1061 02:20:7b:e1:51:0d:c0:52:93:9e:c1:77:4e:3a:cd:d8:78:8d:
1062 e9:47:49:fd:81:9a:28:6c:8d:c6:81:3a:45:64:9b:b4
1063*/
1064const octetstring cert_s_sm_dp2pb_brp :=
1065'30820239308201e0a003020102020200c9300a06082a8648ce3d04030230
1066493115301306035504030c0c47534d4120546573742043493111300f0603
106755040b0c0854455354434552543110300e060355040a0c07525350544553
106854310b3009060355040613024954301e170d313730383231313433313037
10695a170d3230303832303134333130375a3026310d300b060355040a0c0441
1070434d453115301306035504030c0c5445535420534d2d44502b32305a3014
107106072a8648ce3d020106092b2403030208010107034200047361855e5902
107264b252c71a6062a021e27b46f760b8138206a7f74420ef8bc55a8b988d16
107358f9d70d3a2d8480aadf64e62c4d7127de5a0a2b917a943f4474aadda381
1074d93081d6301f0603551d23041830168014c0bc70ba36929d43b467ff5757
10750530e57ab8fcd8301d0603551d0e0416041431038a55b6becf6cea59de2f
1076da14f4327fb8b6a9300e0603551d1104073005880388370c300e0603551d
10770f0101ff04040302078030170603551d200101ff040d300b300906076781
10781201020105305b0603551d1f045430523027a025a0238621687474703a2f
10792f63692e746573742e67736d612e636f6d2f43524c2d412e63726c3027a0
108025a0238621687474703a2f2f63692e746573742e67736d612e636f6d2f43
1081524c2d422e63726c300a06082a8648ce3d040302034700304402200b2f51
1082210ce139f1806954a2747b18bd7b390b250c4a12ae8dd21e43420e3c7302
1083207be1510dc052939ec1774e3acdd8788de94749fd819a286c8dc6813a45
1084649bb4'O;
1085function f_ts_cert_s_sm_dp2pb_brp() return Certificate {
1086 var Certificate cert_decoded;
1087 cert_decoded := dec_Certificate(cert_s_sm_dp2pb_brp);
1088 return cert_decoded;
1089}
1090template (value) Certificate ts_cert_s_sm_dp2pb_brp := f_ts_cert_s_sm_dp2pb_brp();
1091
1092/* Test certificate:
1093SGP.26_v1.2_files/Valid test cases/SM-DP+/DPtls/CERT_S_SM_DP2_TLS.der
1094Certificate:
1095 Data:
1096 Version: 3 (0x2)
1097 Serial Number: 153 (0x99)
1098 Signature Algorithm: ecdsa-with-SHA256
1099 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1100 Validity
1101 Not Before: Sep 1 11:26:44 2017 GMT
1102 Not After : Aug 31 11:26:44 2020 GMT
1103 Subject: O = ACME, CN = testsmdpplus2.gsma.com
1104 Subject Public Key Info:
1105 Public Key Algorithm: id-ecPublicKey
1106 Public-Key: (256 bit)
1107 pub:
1108 04:1a:d9:00:0c:75:4e:37:61:3e:75:0f:b7:bf:73:
1109 42:fe:d5:0b:c0:72:52:ed:84:65:6b:45:d6:f7:08:
1110 78:95:08:a9:ff:e0:96:17:23:af:11:ef:c8:dd:a6:
1111 9a:69:f2:b5:18:8b:b3:12:13:82:0a:b2:dd:1e:f5:
1112 80:2e:8f:d4:b6
1113 ASN1 OID: prime256v1
1114 NIST CURVE: P-256
1115 X509v3 extensions:
1116 X509v3 Key Usage: critical
1117 Digital Signature
1118 X509v3 Extended Key Usage: critical
1119 TLS Web Server Authentication, TLS Web Client Authentication
1120 X509v3 Certificate Policies:
1121 Policy: 2.23.146.1.2.1.3
1122
1123 X509v3 Subject Key Identifier:
1124 9F:5F:6B:0C:E7:00:32:25:2D:CE:10:D3:49:A6:55:18:1B:85:3E:CE
1125 X509v3 Authority Key Identifier:
1126 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1127
1128 X509v3 Subject Alternative Name:
1129 DNS:testsmdpplus2.gsma.com, Registered ID:2.999.12
1130 X509v3 CRL Distribution Points:
1131
1132 Full Name:
1133 URI:http://ci.test.gsma.com/CRL-A.crl
1134
1135 Full Name:
1136 URI:http://ci.test.gsma.com/CRL-B.crl
1137
1138 Signature Algorithm: ecdsa-with-SHA256
1139 30:45:02:21:00:94:1a:fc:27:73:40:ce:05:d5:d4:1b:49:90:
1140 d9:c5:d7:02:6c:7e:a7:3b:7a:07:0f:30:ad:69:b1:78:a3:e9:
1141 65:02:20:28:59:fb:74:a0:6f:d1:36:c3:9f:94:14:16:23:e3:
1142 b5:88:ae:ef:d8:42:6d:2c:0b:df:51:3d:fe:58:7a:ac:31
1143*/
1144const octetstring cert_s_sm_dp2_tls :=
1145'3082027c30820222a00302010202020099300a06082a8648ce3d04030230
1146493115301306035504030c0c47534d4120546573742043493111300f0603
114755040b0c0854455354434552543110300e060355040a0c07525350544553
114854310b3009060355040613024954301e170d313730393031313132363434
11495a170d3230303833313131323634345a3030310d300b060355040a0c0441
1150434d45311f301d06035504030c1674657374736d6470706c7573322e6773
11516d612e636f6d3059301306072a8648ce3d020106082a8648ce3d03010703
11524200041ad9000c754e37613e750fb7bf7342fed50bc07252ed84656b45d6
1153f708789508a9ffe0961723af11efc8dda69a69f2b5188bb31213820ab2dd
11541ef5802e8fd4b6a38201113082010d300e0603551d0f0101ff0404030207
11558030200603551d250101ff0416301406082b0601050507030106082b0601
1156050507030230140603551d20040d300b3009060767811201020103301d06
115703551d0e041604149f5f6b0ce70032252dce10d349a655181b853ece301f
11580603551d23041830168014f54172bdf98a95d65cbeb88a38a1c11d800a85
1159c330260603551d11041f301d821674657374736d6470706c7573322e6773
11606d612e636f6d880388370c305b0603551d1f045430523027a025a0238621
1161687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d412e
116263726c3027a025a0238621687474703a2f2f63692e746573742e67736d61
11632e636f6d2f43524c2d422e63726c300a06082a8648ce3d04030203480030
116445022100941afc277340ce05d5d41b4990d9c5d7026c7ea73b7a070f30ad
116569b178a3e96502202859fb74a06fd136c39f94141623e3b588aeefd8426d
11662c0bdf513dfe587aac31'O;
1167function f_ts_cert_s_sm_dp2_tls() return Certificate {
1168 var Certificate cert_decoded;
1169 cert_decoded := dec_Certificate(cert_s_sm_dp2_tls);
1170 return cert_decoded;
1171}
1172template (value) Certificate ts_cert_s_sm_dp2_tls := f_ts_cert_s_sm_dp2_tls();
1173
1174/* Test certificate:
1175SGP.26_v1.2_files/Valid test cases/SM-DP+/DPtls/CERT_S_SM_DP4_TLS.der
1176Certificate:
1177 Data:
1178 Version: 3 (0x2)
1179 Serial Number: 2452 (0x994)
1180 Signature Algorithm: ecdsa-with-SHA256
1181 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1182 Validity
1183 Not Before: Dec 5 13:32:17 2017 GMT
1184 Not After : Dec 4 13:32:17 2020 GMT
1185 Subject: O = ACME, CN = testsmdpplus4.gsma.com
1186 Subject Public Key Info:
1187 Public Key Algorithm: id-ecPublicKey
1188 Public-Key: (256 bit)
1189 pub:
1190 04:3a:db:e8:4d:23:a8:1a:f6:3b:a2:d8:99:83:6c:
1191 bb:68:a7:62:56:b3:0d:70:26:30:3d:c3:6b:c1:5d:
1192 f6:11:36:c4:fb:e7:02:01:b4:c5:a6:6e:3d:ac:6b:
1193 2b:3b:95:7a:99:bb:4e:74:10:03:e8:bf:74:2f:08:
1194 13:02:aa:7d:a6
1195 ASN1 OID: prime256v1
1196 NIST CURVE: P-256
1197 X509v3 extensions:
1198 X509v3 Key Usage: critical
1199 Digital Signature
1200 X509v3 Extended Key Usage: critical
1201 TLS Web Server Authentication, TLS Web Client Authentication
1202 X509v3 Certificate Policies:
1203 Policy: 2.23.146.1.2.1.3
1204
1205 X509v3 Subject Key Identifier:
1206 13:0F:3D:7B:B3:B0:65:AD:3C:58:78:76:BC:BB:6B:84:FD:49:7A:AB
1207 X509v3 Authority Key Identifier:
1208 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1209
1210 X509v3 Subject Alternative Name:
1211 DNS:testsmdpplus4.gsma.com, Registered ID:2.999.14
1212 X509v3 CRL Distribution Points:
1213
1214 Full Name:
1215 URI:http://ci.test.gsma.com/CRL-A.crl
1216
1217 Full Name:
1218 URI:http://ci.test.gsma.com/CRL-B.crl
1219
1220 Signature Algorithm: ecdsa-with-SHA256
1221 30:44:02:20:6e:eb:6d:9e:59:01:39:c4:9a:2c:9b:d5:05:6e:
1222 c9:a6:f6:03:73:29:62:da:e3:6e:d1:de:6d:fe:c1:31:95:8f:
1223 02:20:39:5c:3b:44:d5:de:84:73:ce:be:82:3d:33:5f:b4:fe:
1224 5b:2c:7f:47:3d:e6:5e:70:4a:ae:66:2a:6c:af:ec:5c
1225*/
1226const octetstring cert_s_sm_dp4_tls :=
1227'3082027b30820222a00302010202020994300a06082a8648ce3d04030230
1228493115301306035504030c0c47534d4120546573742043493111300f0603
122955040b0c0854455354434552543110300e060355040a0c07525350544553
123054310b3009060355040613024954301e170d313731323035313333323137
12315a170d3230313230343133333231375a3030310d300b060355040a0c0441
1232434d45311f301d06035504030c1674657374736d6470706c7573342e6773
12336d612e636f6d3059301306072a8648ce3d020106082a8648ce3d03010703
12344200043adbe84d23a81af63ba2d899836cbb68a76256b30d7026303dc36b
1235c15df61136c4fbe70201b4c5a66e3dac6b2b3b957a99bb4e741003e8bf74
12362f081302aa7da6a38201113082010d300e0603551d0f0101ff0404030207
12378030200603551d250101ff0416301406082b0601050507030106082b0601
1238050507030230140603551d20040d300b3009060767811201020103301d06
123903551d0e04160414130f3d7bb3b065ad3c587876bcbb6b84fd497aab301f
12400603551d23041830168014f54172bdf98a95d65cbeb88a38a1c11d800a85
1241c330260603551d11041f301d821674657374736d6470706c7573342e6773
12426d612e636f6d880388370e305b0603551d1f045430523027a025a0238621
1243687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d412e
124463726c3027a025a0238621687474703a2f2f63692e746573742e67736d61
12452e636f6d2f43524c2d422e63726c300a06082a8648ce3d04030203470030
12464402206eeb6d9e590139c49a2c9bd5056ec9a6f603732962dae36ed1de6d
1247fec131958f0220395c3b44d5de8473cebe823d335fb4fe5b2c7f473de65e
1248704aae662a6cafec5c'O;
1249function f_ts_cert_s_sm_dp4_tls() return Certificate {
1250 var Certificate cert_decoded;
1251 cert_decoded := dec_Certificate(cert_s_sm_dp4_tls);
1252 return cert_decoded;
1253}
1254template (value) Certificate ts_cert_s_sm_dp4_tls := f_ts_cert_s_sm_dp4_tls();
1255
1256/* Test certificate:
1257SGP.26_v1.2_files/Valid test cases/SM-DP+/DPtls/CERT_S_SM_DP8_TLS.der
1258Certificate:
1259 Data:
1260 Version: 3 (0x2)
1261 Serial Number: 2456 (0x998)
1262 Signature Algorithm: ecdsa-with-SHA256
1263 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1264 Validity
1265 Not Before: Dec 5 13:37:06 2017 GMT
1266 Not After : Dec 4 13:37:06 2020 GMT
1267 Subject: O = ACME, CN = testsmdpplus8.gsma.com
1268 Subject Public Key Info:
1269 Public Key Algorithm: id-ecPublicKey
1270 Public-Key: (256 bit)
1271 pub:
1272 04:ce:41:31:18:fa:64:99:6e:d8:b2:9b:fc:ac:85:
1273 33:83:e6:5d:3f:22:a1:99:e7:96:6b:f4:06:9a:69:
1274 58:39:2b:e5:39:d0:00:ea:51:a5:48:8b:10:87:d6:
1275 eb:47:c0:01:84:6d:1e:68:7e:c4:90:e8:1a:80:96:
1276 49:42:0c:52:6b
1277 ASN1 OID: prime256v1
1278 NIST CURVE: P-256
1279 X509v3 extensions:
1280 X509v3 Key Usage: critical
1281 Digital Signature
1282 X509v3 Extended Key Usage: critical
1283 TLS Web Server Authentication, TLS Web Client Authentication
1284 X509v3 Certificate Policies:
1285 Policy: 2.23.146.1.2.1.3
1286
1287 X509v3 Subject Key Identifier:
1288 B8:7E:0A:73:F2:44:D5:99:4C:28:61:E6:EA:6E:30:70:D6:34:2A:53
1289 X509v3 Authority Key Identifier:
1290 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1291
1292 X509v3 Subject Alternative Name:
1293 DNS:testsmdpplus8.gsma.com, Registered ID:2.999.18
1294 X509v3 CRL Distribution Points:
1295
1296 Full Name:
1297 URI:http://ci.test.gsma.com/CRL-A.crl
1298
1299 Full Name:
1300 URI:http://ci.test.gsma.com/CRL-B.crl
1301
1302 Signature Algorithm: ecdsa-with-SHA256
1303 30:45:02:21:00:c1:74:e5:e3:ad:32:a9:6c:26:14:29:de:cd:
1304 c3:09:e5:fe:8a:c1:9d:be:e2:54:73:94:e1:43:be:84:f0:33:
1305 4a:02:20:55:c4:13:42:f8:b4:f1:d2:2f:0f:31:20:3f:fe:27:
1306 75:69:6a:0c:72:89:86:7e:66:35:2a:03:ae:e2:b8:71:3c
1307*/
1308const octetstring cert_s_sm_dp8_tls :=
1309'3082027c30820222a00302010202020998300a06082a8648ce3d04030230
1310493115301306035504030c0c47534d4120546573742043493111300f0603
131155040b0c0854455354434552543110300e060355040a0c07525350544553
131254310b3009060355040613024954301e170d313731323035313333373036
13135a170d3230313230343133333730365a3030310d300b060355040a0c0441
1314434d45311f301d06035504030c1674657374736d6470706c7573382e6773
13156d612e636f6d3059301306072a8648ce3d020106082a8648ce3d03010703
1316420004ce413118fa64996ed8b29bfcac853383e65d3f22a199e7966bf406
13179a6958392be539d000ea51a5488b1087d6eb47c001846d1e687ec490e81a
1318809649420c526ba38201113082010d300e0603551d0f0101ff0404030207
13198030200603551d250101ff0416301406082b0601050507030106082b0601
1320050507030230140603551d20040d300b3009060767811201020103301d06
132103551d0e04160414b87e0a73f244d5994c2861e6ea6e3070d6342a53301f
13220603551d23041830168014f54172bdf98a95d65cbeb88a38a1c11d800a85
1323c330260603551d11041f301d821674657374736d6470706c7573382e6773
13246d612e636f6d8803883712305b0603551d1f045430523027a025a0238621
1325687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d412e
132663726c3027a025a0238621687474703a2f2f63692e746573742e67736d61
13272e636f6d2f43524c2d422e63726c300a06082a8648ce3d04030203480030
132845022100c174e5e3ad32a96c261429decdc309e5fe8ac19dbee2547394e1
132943be84f0334a022055c41342f8b4f1d22f0f31203ffe2775696a0c728986
13307e66352a03aee2b8713c'O;
1331function f_ts_cert_s_sm_dp8_tls() return Certificate {
1332 var Certificate cert_decoded;
1333 cert_decoded := dec_Certificate(cert_s_sm_dp8_tls);
1334 return cert_decoded;
1335}
1336template (value) Certificate ts_cert_s_sm_dp8_tls := f_ts_cert_s_sm_dp8_tls();
1337
1338/* Test certificate:
1339SGP.26_v1.2_files/Valid test cases/SM-DP+/DPtls/CERT_S_SM_DP_TLS_NIST.der
1340Certificate:
1341 Data:
1342 Version: 3 (0x2)
1343 Serial Number: 9 (0x9)
1344 Signature Algorithm: ecdsa-with-SHA256
1345 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1346 Validity
1347 Not Before: Jun 29 12:21:14 2017 GMT
1348 Not After : Jun 28 12:21:14 2020 GMT
1349 Subject: O = ACME, CN = testsmdpplus1.gsma.com
1350 Subject Public Key Info:
1351 Public Key Algorithm: id-ecPublicKey
1352 Public-Key: (256 bit)
1353 pub:
1354 04:28:24:30:75:ce:8e:fd:1f:ae:67:68:39:40:7d:
1355 b2:6e:4c:cb:43:70:94:62:1c:9b:39:61:33:f1:b2:
1356 4b:b5:01:b8:fe:4e:b2:4d:3e:0d:39:2f:25:3f:6f:
1357 1b:94:62:70:b3:ca:29:2e:34:db:6f:7a:87:b3:a5:
1358 f6:ac:94:5f:08
1359 ASN1 OID: prime256v1
1360 NIST CURVE: P-256
1361 X509v3 extensions:
1362 X509v3 Key Usage: critical
1363 Digital Signature
1364 X509v3 Extended Key Usage: critical
1365 TLS Web Server Authentication, TLS Web Client Authentication
1366 X509v3 Certificate Policies:
1367 Policy: 2.23.146.1.2.1.3
1368
1369 X509v3 Subject Key Identifier:
1370 27:FE:F1:F2:29:18:7E:C7:83:ED:F6:E0:29:64:A4:51:8D:57:D4:A9
1371 X509v3 Authority Key Identifier:
1372 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1373
1374 X509v3 Subject Alternative Name:
1375 DNS:testsmdpplus1.gsma.com, Registered ID:2.999.10
1376 X509v3 CRL Distribution Points:
1377
1378 Full Name:
1379 URI:http://ci.test.gsma.com/CRL-A.crl
1380
1381 Full Name:
1382 URI:http://ci.test.gsma.com/CRL-B.crl
1383
1384 Signature Algorithm: ecdsa-with-SHA256
1385 30:45:02:20:2a:68:cf:75:5a:8b:0b:87:c9:41:25:6b:4d:af:
1386 4b:f2:09:6d:01:c8:3f:27:2b:cc:ce:63:df:d5:cc:5a:39:e3:
1387 02:21:00:b0:f5:02:4b:9e:aa:15:26:28:ab:19:77:21:a1:d1:
1388 a5:9e:05:c0:2e:20:83:79:15:8c:d4:74:4d:37:48:67:8a
1389*/
1390const octetstring cert_s_sm_dp_tls_nist :=
1391'3082027b30820221a003020102020109300a06082a8648ce3d0403023049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'O;
1413function f_ts_cert_s_sm_dp_tls_nist() return Certificate {
1414 var Certificate cert_decoded;
1415 cert_decoded := dec_Certificate(cert_s_sm_dp_tls_nist);
1416 return cert_decoded;
1417}
1418template (value) Certificate ts_cert_s_sm_dp_tls_nist := f_ts_cert_s_sm_dp_tls_nist();
1419
1420/* Test certificate:
1421SGP.26_v1.2_files/Valid test cases/SM-DP+/DPtls/CERT_S_SM_DP_TLS_BRP.der
1422Certificate:
1423 Data:
1424 Version: 3 (0x2)
1425 Serial Number: 9 (0x9)
1426 Signature Algorithm: ecdsa-with-SHA256
1427 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1428 Validity
1429 Not Before: Jul 6 13:49:28 2017 GMT
1430 Not After : Jul 5 13:49:28 2020 GMT
1431 Subject: O = ACME, CN = smdp-plus.test.gsma.com
1432 Subject Public Key Info:
1433 Public Key Algorithm: id-ecPublicKey
1434 Public-Key: (256 bit)
1435 pub:
1436 04:4c:22:cc:d8:2c:8d:02:21:f9:d8:54:3b:72:e1:
1437 07:bc:c9:fd:90:54:d6:6c:75:c0:eb:74:a7:bd:e7:
1438 30:e7:61:8e:f6:5b:27:0b:5e:82:e4:3a:79:6f:8d:
1439 ee:0b:af:8a:fb:eb:8a:53:62:53:7a:02:fd:65:c7:
1440 9e:41:19:6b:b5
1441 ASN1 OID: brainpoolP256r1
1442 X509v3 extensions:
1443 X509v3 Key Usage: critical
1444 Digital Signature
1445 X509v3 Extended Key Usage: critical
1446 TLS Web Server Authentication, TLS Web Client Authentication
1447 X509v3 Certificate Policies:
1448 Policy: 2.23.146.1.2.1.3
1449
1450 X509v3 Subject Key Identifier:
1451 3D:33:09:83:F3:9F:CC:5B:D2:E4:AD:68:A6:19:A7:47:48:AE:8B:9D
1452 X509v3 Authority Key Identifier:
1453 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
1454
1455 X509v3 Subject Alternative Name:
1456 DNS:smdp-plus.test.gsma.com, Registered ID:2.999.10
1457 X509v3 CRL Distribution Points:
1458
1459 Full Name:
1460 URI:http://ci.test.gsma.com/CRL-A.crl
1461
1462 Full Name:
1463 URI:http://ci.test.gsma.com/CRL-B.crl
1464
1465 Signature Algorithm: ecdsa-with-SHA256
1466 30:44:02:20:4a:9c:78:38:89:c0:ef:f1:9d:68:c3:9f:67:d5:
1467 b5:81:d3:c9:df:3e:1d:52:67:40:3a:e1:f1:ea:6f:1e:4c:d5:
1468 02:20:5a:9f:b1:a7:3b:5e:6f:1b:ac:a3:16:55:90:ec:56:c5:
1469 0a:91:25:ed:76:39:d6:c8:49:1c:a3:c8:3e:55:59:11
1470*/
1471const octetstring cert_s_sm_dp_tls_brp :=
1472'3082027d30820224a003020102020109300a06082a8648ce3d0403023049
14733115301306035504030c0c47534d4120546573742043493111300f060355
1474040b0c0854455354434552543110300e060355040a0c0752535054455354
1475310b3009060355040613024954301e170d3137303730363133343932385a
1476170d3230303730353133343932385a3031310d300b060355040a0c044143
14774d453120301e06035504030c17736d64702d706c75732e746573742e6773
14786d612e636f6d305a301406072a8648ce3d020106092b2403030208010107
1479034200044c22ccd82c8d0221f9d8543b72e107bcc9fd9054d66c75c0eb74
1480a7bde730e7618ef65b270b5e82e43a796f8dee0baf8afbeb8a5362537a02
1481fd65c79e41196bb5a38201123082010e300e0603551d0f0101ff04040302
1482078030200603551d250101ff0416301406082b0601050507030106082b06
148301050507030230140603551d20040d300b3009060767811201020103301d
14840603551d0e041604143d330983f39fcc5bd2e4ad68a619a74748ae8b9d30
14851f0603551d23041830168014c0bc70ba36929d43b467ff57570530e57ab8
1486fcd830270603551d110420301e8217736d64702d706c75732e746573742e
148767736d612e636f6d880388370a305b0603551d1f045430523027a025a023
14888621687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d
1489412e63726c3027a025a0238621687474703a2f2f63692e746573742e6773
14906d612e636f6d2f43524c2d422e63726c300a06082a8648ce3d0403020347
149100304402204a9c783889c0eff19d68c39f67d5b581d3c9df3e1d5267403a
1492e1f1ea6f1e4cd502205a9fb1a73b5e6f1baca3165590ec56c50a9125ed76
149339d6c8491ca3c83e555911'O;
1494function f_ts_cert_s_sm_dp_tls_brp() return Certificate {
1495 var Certificate cert_decoded;
1496 cert_decoded := dec_Certificate(cert_s_sm_dp_tls_brp);
1497 return cert_decoded;
1498}
1499template (value) Certificate ts_cert_s_sm_dp_tls_brp := f_ts_cert_s_sm_dp_tls_brp();
1500
1501/* Test certificate:
1502SGP.26_v1.2_files/Valid test cases/SM-DS/DSauth/CERT_S_SM_DSauth_ECDSA_NIST.der
1503Certificate:
1504 Data:
1505 Version: 3 (0x2)
1506 Serial Number: 7495 (0x1d47)
1507 Signature Algorithm: ecdsa-with-SHA256
1508 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1509 Validity
1510 Not Before: Jan 30 11:08:22 2017 GMT
1511 Not After : Jan 30 11:08:22 2020 GMT
1512 Subject: O = ACME, CN = TEST SM-DS
1513 Subject Public Key Info:
1514 Public Key Algorithm: id-ecPublicKey
1515 Public-Key: (256 bit)
1516 pub:
1517 04:37:fb:94:e3:a2:be:fe:76:3e:1a:77:4a:48:54:
1518 88:0f:10:6d:80:f9:36:84:5b:ad:2f:dd:97:1b:c0:
1519 68:d8:ab:61:a5:48:1a:ee:97:7d:5a:81:68:bb:9f:
1520 79:00:4b:1d:00:72:c1:ba:76:73:b0:cb:64:81:6e:
1521 10:19:b2:4f:d0
1522 ASN1 OID: prime256v1
1523 NIST CURVE: P-256
1524 X509v3 extensions:
1525 X509v3 Authority Key Identifier:
1526 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1527
1528 X509v3 Key Usage: critical
1529 Digital Signature
1530 X509v3 Subject Key Identifier:
1531 C1:F4:06:4B:3B:25:8A:FB:61:38:8B:3F:F2:EE:6A:61:E2:C4:4D:72
1532 X509v3 Subject Alternative Name:
1533 Registered ID:2.999.15
1534 X509v3 Certificate Policies: critical
1535 Policy: 2.23.146.1.2.1.7
1536
1537 X509v3 CRL Distribution Points:
1538
1539 Full Name:
1540 URI:http://ci.test.gsma.com/CRL-A.crl
1541
1542 Full Name:
1543 URI:http://ci.test.gsma.com/CRL-B.crl
1544
1545 Signature Algorithm: ecdsa-with-SHA256
1546 30:45:02:21:00:d3:41:14:3c:60:cd:36:14:93:12:ed:a8:4d:
1547 40:08:7a:ee:cc:e9:7d:de:06:44:dc:e8:b7:6a:16:8f:e8:e2:
1548 61:02:20:09:d6:1d:c9:40:e3:13:08:33:32:78:77:44:0d:6f:
1549 ac:eb:9f:6b:92:72:88:6b:f5:fa:a1:47:98:76:99:59:f2
1550*/
1551const octetstring cert_s_sm_dsauth_nist :=
1552'30820237308201dda00302010202021d47300a06082a8648ce3d04030230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'O;
1572function f_ts_cert_s_sm_dsauth_nist() return Certificate {
1573 var Certificate cert_decoded;
1574 cert_decoded := dec_Certificate(cert_s_sm_dsauth_nist);
1575 return cert_decoded;
1576}
1577template (value) Certificate ts_cert_s_sm_dsauth_nist := f_ts_cert_s_sm_dsauth_nist();
1578
1579/* Test certificate:
1580SGP.26_v1.2_files/Valid test cases/SM-DS/DSauth/CERT_S_SM_DSauth_ECDSA_BRP.der
1581Certificate:
1582 Data:
1583 Version: 3 (0x2)
1584 Serial Number: 7495 (0x1d47)
1585 Signature Algorithm: ecdsa-with-SHA256
1586 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1587 Validity
1588 Not Before: May 5 17:03:51 2017 GMT
1589 Not After : May 4 17:03:51 2020 GMT
1590 Subject: O = ACME, CN = TEST SM-DS
1591 Subject Public Key Info:
1592 Public Key Algorithm: id-ecPublicKey
1593 Public-Key: (256 bit)
1594 pub:
1595 04:81:d1:d0:23:f3:9f:18:43:34:18:c2:8c:d2:3d:
1596 42:15:7a:43:9f:ed:d2:9e:59:ab:11:86:e1:30:89:
1597 81:96:c1:56:3a:13:f4:8b:36:d6:d4:b1:3b:4d:08:
1598 5a:57:60:ae:61:3d:06:1f:fe:6f:c7:a4:0c:65:02:
1599 e3:ff:73:3c:31
1600 ASN1 OID: brainpoolP256r1
1601 X509v3 extensions:
1602 X509v3 Authority Key Identifier:
1603 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
1604
1605 X509v3 Key Usage: critical
1606 Digital Signature
1607 X509v3 Subject Key Identifier:
1608 F0:5F:0B:54:AE:E8:AE:01:08:F0:1D:EF:54:8E:D9:85:97:14:DD:48
1609 X509v3 Subject Alternative Name:
1610 Registered ID:2.999.15
1611 X509v3 Certificate Policies: critical
1612 Policy: 2.23.146.1.2.1.7
1613
1614 X509v3 CRL Distribution Points:
1615
1616 Full Name:
1617 URI:http://ci.test.gsma.com/CRL-A.crl
1618
1619 Full Name:
1620 URI:http://ci.test.gsma.com/CRL-B.crl
1621
1622 Signature Algorithm: ecdsa-with-SHA256
1623 30:45:02:20:25:a0:29:5d:1a:46:6e:2d:07:48:83:c5:f9:43:
1624 e2:fb:0a:72:ee:96:b5:75:95:d9:7d:91:b5:cb:b1:ea:6e:63:
1625 02:21:00:8d:4c:5b:4a:e7:48:86:82:28:72:15:0c:13:90:b9:
1626 64:39:f0:30:71:d2:4a:a4:11:45:5d:bb:16:2e:05:54:77
1627*/
1628const octetstring cert_s_sm_dsauth_brp :=
1629'30820238308201dea00302010202021d47300a06082a8648ce3d04030230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'O;
1649function f_ts_cert_s_sm_dsauth_brp() return Certificate {
1650 var Certificate cert_decoded;
1651 cert_decoded := dec_Certificate(cert_s_sm_dsauth_brp);
1652 return cert_decoded;
1653}
1654template (value) Certificate ts_cert_s_sm_dsauth_brp := f_ts_cert_s_sm_dsauth_brp();
1655
1656/* Test certificate:
1657SGP.26_v1.2_files/Valid test cases/SM-DS/DStls/CERT_SM_DS_TLS_NIST.der
1658Certificate:
1659 Data:
1660 Version: 3 (0x2)
1661 Serial Number: 77899973700 (0x1223334444)
1662 Signature Algorithm: ecdsa-with-SHA256
1663 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1664 Validity
1665 Not Before: Jul 28 13:34:55 2017 GMT
1666 Not After : Jul 27 13:34:55 2020 GMT
1667 Subject: O = RSPTEST, CN = testrootsmds.gsma.com
1668 Subject Public Key Info:
1669 Public Key Algorithm: id-ecPublicKey
1670 Public-Key: (256 bit)
1671 pub:
1672 04:92:0c:d5:ff:68:04:d8:7d:99:1d:ad:f6:38:c9:
1673 b7:83:c5:85:00:a5:7b:a4:93:5b:9e:e2:ef:02:52:
1674 b6:a6:dd:9a:50:1c:21:fd:35:42:6b:3b:51:c4:e4:
1675 61:e5:6c:3f:77:2e:69:5f:b8:61:7f:9a:74:82:30:
1676 4b:bb:2f:e2:84
1677 ASN1 OID: prime256v1
1678 NIST CURVE: P-256
1679 X509v3 extensions:
1680 X509v3 Key Usage: critical
1681 Digital Signature
1682 X509v3 Extended Key Usage: critical
1683 TLS Web Server Authentication, TLS Web Client Authentication
1684 X509v3 Certificate Policies:
1685 Policy: 2.23.146.1.2.1.6
1686
1687 X509v3 Subject Key Identifier:
1688 A0:36:C1:62:75:35:1E:C7:B0:15:53:A1:3F:83:E2:8D:44:00:BD:0A
1689 X509v3 Authority Key Identifier:
1690 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1691
1692 X509v3 Subject Alternative Name:
1693 DNS:testrootsmds.gsma.com, Registered ID:2.999.15
1694 X509v3 CRL Distribution Points:
1695
1696 Full Name:
1697 URI:http://ci.test.gsma.com/CRL-A.crl
1698
1699 Full Name:
1700 URI:http://ci.test.gsma.com/CRL-B.crl
1701
1702 Signature Algorithm: ecdsa-with-SHA256
1703 30:45:02:20:20:15:19:8e:b1:3b:3c:b2:cd:90:f2:02:c0:1c:
1704 55:88:0c:4b:94:64:5a:88:f2:87:2b:44:f4:fa:42:15:bb:64:
1705 02:21:00:8f:0d:7e:67:1f:bf:34:a4:0e:51:d2:11:2f:ca:21:
1706 47:0c:ba:c9:84:06:30:39:5b:66:66:60:61:d3:86:3e:33
1707*/
1708const octetstring cert_sm_ds_tls_nist :=
1709'3082028030820226a00302010202051223334444300a06082a8648ce3d04
1710030230493115301306035504030c0c47534d412054657374204349311130
17110f060355040b0c0854455354434552543110300e060355040a0c07525350
171254455354310b3009060355040613024954301e170d313730373238313333
17133435355a170d3230303732373133333435355a30323110300e060355040a
17140c0752535054455354311e301c06035504030c1574657374726f6f74736d
171564732e67736d612e636f6d3059301306072a8648ce3d020106082a8648ce
17163d03010703420004920cd5ff6804d87d991dadf638c9b783c58500a57ba4
1717935b9ee2ef0252b6a6dd9a501c21fd35426b3b51c4e461e56c3f772e695f
1718b8617f9a7482304bbb2fe284a38201103082010c300e0603551d0f0101ff
171904040302078030200603551d250101ff0416301406082b06010505070301
172006082b0601050507030230140603551d20040d300b300906076781120102
17210106301d0603551d0e04160414a036c16275351ec7b01553a13f83e28d44
172200bd0a301f0603551d23041830168014f54172bdf98a95d65cbeb88a38a1
1723c11d800a85c330250603551d11041e301c821574657374726f6f74736d64
1724732e67736d612e636f6d880388370f305b0603551d1f045430523027a025
1725a0238621687474703a2f2f63692e746573742e67736d612e636f6d2f4352
17264c2d412e63726c3027a025a0238621687474703a2f2f63692e746573742e
172767736d612e636f6d2f43524c2d422e63726c300a06082a8648ce3d040302
1728034800304502202015198eb13b3cb2cd90f202c01c55880c4b94645a88f2
1729872b44f4fa4215bb640221008f0d7e671fbf34a40e51d2112fca21470cba
1730c9840630395b66666061d3863e33'O;
1731function f_ts_cert_sm_ds_tls_nist() return Certificate {
1732 var Certificate cert_decoded;
1733 cert_decoded := dec_Certificate(cert_sm_ds_tls_nist);
1734 return cert_decoded;
1735}
1736template (value) Certificate ts_cert_sm_ds_tls_nist := f_ts_cert_sm_ds_tls_nist();
1737
1738/* Test certificate:
1739SGP.26_v1.2_files/Valid test cases/SM-DS/DStls/CERT_S_SM_DS2_TLS_NIST.der
1740Certificate:
1741 Data:
1742 Version: 3 (0x2)
1743 Serial Number: 81684042822800725 (0x122333444455555)
1744 Signature Algorithm: ecdsa-with-SHA256
1745 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1746 Validity
1747 Not Before: Jul 31 09:36:23 2017 GMT
1748 Not After : Jul 30 09:36:23 2020 GMT
1749 Subject: O = RSPTEST, CN = testsmds1.gsma.com
1750 Subject Public Key Info:
1751 Public Key Algorithm: id-ecPublicKey
1752 Public-Key: (256 bit)
1753 pub:
1754 04:19:d0:a3:31:cf:30:2c:7a:07:61:52:90:92:56:
1755 75:ad:14:62:cc:58:ba:57:b2:a8:fa:67:69:fd:65:
1756 f5:c3:ad:34:d4:92:89:77:cf:57:39:30:ca:01:d8:
1757 61:15:a6:8d:45:a6:86:0c:7b:9d:b2:3d:82:18:58:
1758 11:41:8c:2a:09
1759 ASN1 OID: prime256v1
1760 NIST CURVE: P-256
1761 X509v3 extensions:
1762 X509v3 Key Usage: critical
1763 Digital Signature
1764 X509v3 Extended Key Usage: critical
1765 TLS Web Server Authentication, TLS Web Client Authentication
1766 X509v3 Certificate Policies:
1767 Policy: 2.23.146.1.2.1.6
1768
1769 X509v3 Subject Key Identifier:
1770 53:82:04:27:91:71:ED:3D:0A:79:C0:AD:61:A5:35:31:2C:86:48:6C
1771 X509v3 Authority Key Identifier:
1772 keyid:F5:41:72:BD:F9:8A:95:D6:5C:BE:B8:8A:38:A1:C1:1D:80:0A:85:C3
1773
1774 X509v3 Subject Alternative Name:
1775 DNS:testsmds1.gsma.com, Registered ID:2.999.15.2
1776 X509v3 CRL Distribution Points:
1777
1778 Full Name:
1779 URI:http://ci.test.gsma.com/CRL-A.crl
1780
1781 Full Name:
1782 URI:http://ci.test.gsma.com/CRL-B.crl
1783
1784 Signature Algorithm: ecdsa-with-SHA256
1785 30:45:02:20:5c:b0:bd:6d:48:5b:13:21:c3:bf:28:37:22:a6:
1786 43:09:a5:d2:0e:8f:67:1b:d0:05:f3:f9:1e:17:6f:8b:a4:80:
1787 02:21:00:c7:73:03:63:64:ab:76:34:f2:61:24:99:d8:24:8c:
1788 af:df:81:d1:6d:3c:2c:5b:d6:0c:4b:ee:60:68:31:c4:f1
1789*/
1790const octetstring cert_s_sm_ds2_tls_nist :=
1791'3082027e30820224a00302010202080122333444455555300a06082a8648
1792ce3d04030230493115301306035504030c0c47534d412054657374204349
17933111300f060355040b0c0854455354434552543110300e060355040a0c07
179452535054455354310b3009060355040613024954301e170d313730373331
17953039333632335a170d3230303733303039333632335a302f3110300e0603
179655040a0c0752535054455354311b301906035504030c1274657374736d64
179773312e67736d612e636f6d3059301306072a8648ce3d020106082a8648ce
17983d0301070342000419d0a331cf302c7a07615290925675ad1462cc58ba57
1799b2a8fa6769fd65f5c3ad34d4928977cf573930ca01d86115a68d45a6860c
18007b9db23d82185811418c2a09a382010e3082010a300e0603551d0f0101ff
180104040302078030200603551d250101ff0416301406082b06010505070301
180206082b0601050507030230140603551d20040d300b300906076781120102
18030106301d0603551d0e04160414538204279171ed3d0a79c0ad61a535312c
180486486c301f0603551d23041830168014f54172bdf98a95d65cbeb88a38a1
1805c11d800a85c330230603551d11041c301a821274657374736d6473312e67
1806736d612e636f6d880488370f02305b0603551d1f045430523027a025a023
18078621687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d
1808412e63726c3027a025a0238621687474703a2f2f63692e746573742e6773
18096d612e636f6d2f43524c2d422e63726c300a06082a8648ce3d0403020348
181000304502205cb0bd6d485b1321c3bf283722a64309a5d20e8f671bd005f3
1811f91e176f8ba480022100c773036364ab7634f2612499d8248cafdf81d16d
18123c2c5bd60c4bee606831c4f1'O;
1813function f_ts_cert_s_sm_ds2_tls_nist() return Certificate {
1814 var Certificate cert_decoded;
1815 cert_decoded := dec_Certificate(cert_s_sm_ds2_tls_nist);
1816 return cert_decoded;
1817}
1818template (value) Certificate ts_cert_s_sm_ds2_tls_nist := f_ts_cert_s_sm_ds2_tls_nist();
1819
1820/* Test certificate:
1821SGP.26_v1.2_files/Valid test cases/SM-DS/DStls/CERT_S_SM_DS_TLS_BRP.der
1822Certificate:
1823 Data:
1824 Version: 3 (0x2)
1825 Serial Number: 1246399579205 (0x12233344445)
1826 Signature Algorithm: ecdsa-with-SHA256
1827 Issuer: CN = GSMA Test CI, OU = TESTCERT, O = RSPTEST, C = IT
1828 Validity
1829 Not Before: Jul 7 06:18:01 2017 GMT
1830 Not After : Jul 6 06:18:01 2020 GMT
1831 Subject: O = TESTCERT, CN = smds.test.gsma.com
1832 Subject Public Key Info:
1833 Public Key Algorithm: id-ecPublicKey
1834 Public-Key: (256 bit)
1835 pub:
1836 04:39:ef:3f:92:a3:bc:a8:ef:7d:66:26:7f:1e:1a:
1837 d8:b9:43:fd:2d:b2:27:cb:e1:a1:0b:f4:92:72:61:
1838 81:c4:81:5b:2a:31:60:7c:7d:e5:b3:1c:a0:22:1d:
1839 ff:ed:ad:58:70:63:3d:30:ed:55:aa:bb:51:7a:e4:
1840 39:9c:4a:64:81
1841 ASN1 OID: brainpoolP256r1
1842 X509v3 extensions:
1843 X509v3 Key Usage: critical
1844 Digital Signature
1845 X509v3 Extended Key Usage: critical
1846 TLS Web Server Authentication, TLS Web Client Authentication
1847 X509v3 Certificate Policies:
1848 Policy: 2.23.146.1.2.1.6
1849
1850 X509v3 Subject Key Identifier:
1851 73:99:CA:C7:B1:5F:AB:2F:F9:33:CF:2D:22:15:E4:84:4A:DE:F8:05
1852 X509v3 Authority Key Identifier:
1853 keyid:C0:BC:70:BA:36:92:9D:43:B4:67:FF:57:57:05:30:E5:7A:B8:FC:D8
1854
1855 X509v3 Subject Alternative Name:
1856 DNS:smds.test.gsma.com, Registered ID:2.999.15
1857 X509v3 CRL Distribution Points:
1858
1859 Full Name:
1860 URI:http://ci.test.gsma.com/CRL-A.crl
1861
1862 Full Name:
1863 URI:http://ci.test.gsma.com/CRL-B.crl
1864
1865 Signature Algorithm: ecdsa-with-SHA256
1866 30:44:02:20:18:56:2e:17:de:40:a4:93:18:dc:8e:a5:26:dc:
1867 e5:71:9d:85:42:c8:5b:cc:2c:6c:86:a4:6a:58:db:b5:ce:1a:
1868 02:20:4a:91:75:54:26:98:e5:85:6e:27:57:41:0c:46:f2:fb:
1869 22:7e:04:2c:79:6a:99:77:69:5b:20:2e:89:49:c3:4d
1870*/
1871const octetstring cert_s_sm_ds_tls_brp :=
1872'3082027c30820223a0030201020206012233344445300a06082a8648ce3d
187304030230493115301306035504030c0c47534d4120546573742043493111
1874300f060355040b0c0854455354434552543110300e060355040a0c075253
18755054455354310b3009060355040613024954301e170d3137303730373036
1876313830315a170d3230303730363036313830315a30303111300f06035504
18770a0c085445535443455254311b301906035504030c12736d64732e746573
1878742e67736d612e636f6d305a301406072a8648ce3d020106092b24030302
1879080101070342000439ef3f92a3bca8ef7d66267f1e1ad8b943fd2db227cb
1880e1a10bf492726181c4815b2a31607c7de5b31ca0221dffedad5870633d30
1881ed55aabb517ae4399c4a6481a382010d30820109300e0603551d0f0101ff
188204040302078030200603551d250101ff0416301406082b06010505070301
188306082b0601050507030230140603551d20040d300b300906076781120102
18840106301d0603551d0e041604147399cac7b15fab2ff933cf2d2215e4844a
1885def805301f0603551d23041830168014c0bc70ba36929d43b467ff575705
188630e57ab8fcd830220603551d11041b30198212736d64732e746573742e67
1887736d612e636f6d880388370f305b0603551d1f045430523027a025a02386
188821687474703a2f2f63692e746573742e67736d612e636f6d2f43524c2d41
18892e63726c3027a025a0238621687474703a2f2f63692e746573742e67736d
1890612e636f6d2f43524c2d422e63726c300a06082a8648ce3d040302034700
18913044022018562e17de40a49318dc8ea526dce5719d8542c85bcc2c6c86a4
18926a58dbb5ce1a02204a9175542698e5856e2757410c46f2fb227e042c796a
18939977695b202e8949c34d'O;
1894function f_ts_cert_s_sm_ds_tls_brp() return Certificate {
1895 var Certificate cert_decoded;
1896 cert_decoded := dec_Certificate(cert_s_sm_ds_tls_brp);
1897 return cert_decoded;
1898}
1899template (value) Certificate ts_cert_s_sm_ds_tls_brp := f_ts_cert_s_sm_ds_tls_brp();
1900
1901}