403 Forbidden


Disable Functions:
Path : /usr/share/pki/ca-trust-source/
File Upload :
Command :
Current File : //usr/share/pki/ca-trust-source/ca-bundle.trust.p11-kit

# This is a bundle of X.509 certificates of public Certificate
# Authorities.  It was generated from the Mozilla root CA list.
# These certificates and trust/distrust attributes use the file format accepted
# by the p11-kit-trust module.
#
# Source: nss/lib/ckfw/builtins/certdata.txt
# Source: nss/lib/ckfw/builtins/nssckbi.h
#
# Generated from:
# NSS_BUILTINS_LIBRARY_VERSION "2.64"
#
[p11-kit-object-v1]
label: "A-Trust-Qual-02"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlpGr146wWbgBvbQerZn9
ofzqDJZrjy5JSNjp5CSC4di6zOveB1xIxhmCAUdCCeF8uZ+uj/buXmuoqFaIOFaz
5v7JnU80OFE8nL7zrJwcyD1cmoSu95QsFLJkN2COFLA7Ks2JtSKv9+R/7iwrM/mO
PK1MolcP+4LFjh8B31OMwRWk3e6akhLSKOliFyVgMe/PMZTzffPkPCGrkPxtz2On
xhIAcUnXHMig7WOafeOPKN1g+djmFqsm0dAvvecNCd9u1OzlOFP0ZAu6WsyAtThZ
7IBZZYQxal9VkUwk5SSag4R6voDx7l8gB6p3F2wL4lWqlngIAp6X8CuuWPWAUD/+
OwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-Qual-02"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1330660 (0x144de4)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=AT, O=A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU=A-Trust-Qual-02, CN=A-Trust-Qual-02
#        Validity
#            Not Before: Jul  1 11:23:33 2014 GMT
#            Not After : Jul  1 09:23:33 2024 GMT
#        Subject: C=AT, O=A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU=A-Trust-Qual-02, CN=A-Trust-Qual-02
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:96:91:ab:d7:8e:b0:59:b8:01:bd:b4:1e:ad:99:
#                    fd:a1:fc:ea:0c:96:6b:8f:2e:49:48:d8:e9:e4:24:
#                    82:e1:d8:ba:cc:eb:de:07:5c:48:c6:19:82:01:47:
#                    42:09:e1:7c:b9:9f:ae:8f:f6:ee:5e:6b:a8:a8:56:
#                    88:38:56:b3:e6:fe:c9:9d:4f:34:38:51:3c:9c:be:
#                    f3:ac:9c:1c:c8:3d:5c:9a:84:ae:f7:94:2c:14:b2:
#                    64:37:60:8e:14:b0:3b:2a:cd:89:b5:22:af:f7:e4:
#                    7f:ee:2c:2b:33:f9:8e:3c:ad:4c:a2:57:0f:fb:82:
#                    c5:8e:1f:01:df:53:8c:c1:15:a4:dd:ee:9a:92:12:
#                    d2:28:e9:62:17:25:60:31:ef:cf:31:94:f3:7d:f3:
#                    e4:3c:21:ab:90:fc:6d:cf:63:a7:c6:12:00:71:49:
#                    d7:1c:c8:a0:ed:63:9a:7d:e3:8f:28:dd:60:f9:d8:
#                    e6:16:ab:26:d1:d0:2f:bd:e7:0d:09:df:6e:d4:ec:
#                    e5:38:53:f4:64:0b:ba:5a:cc:80:b5:38:59:ec:80:
#                    59:65:84:31:6a:5f:55:91:4c:24:e5:24:9a:83:84:
#                    7a:be:80:f1:ee:5f:20:07:aa:77:17:6c:0b:e2:55:
#                    aa:96:78:08:02:9e:97:f0:2b:ae:58:f5:80:50:3f:
#                    fe:3b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                42:3D:2B:24:A6:C1:45:CE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         61:31:f3:88:35:09:b8:5e:9c:c5:e8:39:a4:3a:66:ff:02:b4:
#         97:1d:fe:4b:39:ba:85:98:83:28:a0:da:f6:4e:4c:b3:ad:44:
#         ca:fc:d1:3e:99:da:e6:d7:94:5f:76:db:3b:91:95:6a:fc:80:
#         9f:41:21:5e:68:fb:d6:68:05:6a:e2:99:47:ff:6e:8e:8e:f3:
#         13:56:fe:c3:7e:07:cf:05:4c:43:5a:a9:42:b8:39:c3:9c:f0:
#         15:43:ec:a8:fe:8e:62:04:0e:6e:52:53:1b:a7:9c:e7:6c:3b:
#         65:c7:01:7f:e6:05:aa:72:7f:e1:2b:14:94:08:fd:6e:88:e3:
#         c8:94:a7:de:56:fb:11:98:17:09:01:da:22:c5:33:3f:21:cd:
#         74:a5:ab:c9:30:63:88:db:4a:27:02:bb:d0:64:05:04:6d:74:
#         0b:03:c7:2c:f2:76:b1:7c:5e:81:a3:7e:94:f6:79:3a:c2:7e:
#         ea:f1:53:d7:85:58:9e:90:1c:9d:d7:b1:7a:f4:0f:9a:87:42:
#         2a:c3:84:8f:7f:d0:6a:35:12:1e:d5:8c:71:8c:38:42:9a:35:
#         ad:dd:aa:32:13:76:45:06:e1:a3:5b:ea:f6:8a:96:ff:bc:65:
#         35:fb:6a:32:cb:61:5d:d9:d3:26:88:c4:3b:80:68:56:5f:d5:
#         fa:81:62:dd

[p11-kit-object-v1]
label: "A-Trust-nQual-03"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArT1hbgPzkDvAQQuEgM3s
KqOda7tuwkKE91EU4aCoLVGjUfLeI/A0RP+U68wFI5VAuQd4pSX2Cr1FhujZvcAE
joVEYe9/p8n6wSXMhSxjPwVgc0kF4GB4lRBL3PkRWc5xf0Cbiqok3wtC4ttWvErS
pQybt0M+3YPTJhACz+ojxElO5dPptIirDK5iktRlh9lq1/SFn+QzIiWl5cgzusPH
QdxfxmrMAA5tMqi2hzYAYnebHh80y5A8eIh0Bet59ZNxZcqdx2sYLT1cTufV+D8x
fY+H7AoiLyPp/rt9yeD07Ot8xLDDLWK1mnHWsWro7Nnt1XLsvlcBzgVVn97RYIgQ
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "A-Trust-nQual-03"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1357049 (0x14b4f9)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=AT, O=A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU=A-Trust-nQual-03, CN=A-Trust-nQual-03
#        Validity
#            Not Before: Jul 23 10:38:29 2014 GMT
#            Not After : Jul 23 08:38:29 2025 GMT
#        Subject: C=AT, O=A-Trust Ges. f. Sicherheitssysteme im elektr. Datenverkehr GmbH, OU=A-Trust-nQual-03, CN=A-Trust-nQual-03
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:3d:61:6e:03:f3:90:3b:c0:41:0b:84:80:cd:
#                    ec:2a:a3:9d:6b:bb:6e:c2:42:84:f7:51:14:e1:a0:
#                    a8:2d:51:a3:51:f2:de:23:f0:34:44:ff:94:eb:cc:
#                    05:23:95:40:b9:07:78:a5:25:f6:0a:bd:45:86:e8:
#                    d9:bd:c0:04:8e:85:44:61:ef:7f:a7:c9:fa:c1:25:
#                    cc:85:2c:63:3f:05:60:73:49:05:e0:60:78:95:10:
#                    4b:dc:f9:11:59:ce:71:7f:40:9b:8a:aa:24:df:0b:
#                    42:e2:db:56:bc:4a:d2:a5:0c:9b:b7:43:3e:dd:83:
#                    d3:26:10:02:cf:ea:23:c4:49:4e:e5:d3:e9:b4:88:
#                    ab:0c:ae:62:92:d4:65:87:d9:6a:d7:f4:85:9f:e4:
#                    33:22:25:a5:e5:c8:33:ba:c3:c7:41:dc:5f:c6:6a:
#                    cc:00:0e:6d:32:a8:b6:87:36:00:62:77:9b:1e:1f:
#                    34:cb:90:3c:78:88:74:05:eb:79:f5:93:71:65:ca:
#                    9d:c7:6b:18:2d:3d:5c:4e:e7:d5:f8:3f:31:7d:8f:
#                    87:ec:0a:22:2f:23:e9:fe:bb:7d:c9:e0:f4:ec:eb:
#                    7c:c4:b0:c3:2d:62:b5:9a:71:d6:b1:6a:e8:ec:d9:
#                    ed:d5:72:ec:be:57:01:ce:05:55:9f:de:d1:60:88:
#                    10:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                44:6A:95:67:55:79:11:4F
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         12:8c:a4:3d:e0:00:ff:a8:8a:9b:a6:27:7f:1b:12:1c:57:be:
#         0e:d8:9a:9f:6c:80:1f:c2:f6:4e:a3:1d:70:77:92:07:fe:cb:
#         d7:1e:f7:ba:e0:de:62:4b:b5:85:b2:90:01:79:df:5e:7b:5f:
#         f1:1f:95:82:34:01:4f:0c:34:68:36:f9:d7:ae:27:7a:d6:1c:
#         15:b2:b4:83:cb:95:59:50:aa:3a:5f:30:7f:72:5b:01:4c:47:
#         4b:d6:eb:70:52:a4:b3:e0:89:28:fa:fa:a9:0e:87:fa:c6:f5:
#         a3:dd:76:ed:cf:48:41:26:58:3f:74:bf:80:c0:1a:1b:0d:1c:
#         49:39:6c:9e:8b:04:d0:fe:54:af:9b:c7:b1:aa:66:15:5d:d5:
#         f9:53:a3:60:db:36:18:b4:ae:e1:74:02:62:f4:88:a6:c7:c3:
#         26:9f:15:b0:9f:c1:31:84:bd:1a:a1:af:43:ff:6a:19:ad:1f:
#         c0:46:c4:31:a7:5b:e6:67:09:b7:0f:c4:2a:0e:20:26:d8:4c:
#         83:13:9f:3b:97:95:b8:24:37:3c:01:16:39:ee:65:ac:ea:d3:
#         76:f4:c8:96:1a:61:52:e9:ec:e6:1a:08:76:5c:8b:b8:da:9e:
#         c0:ad:ec:14:9e:8d:e3:ab:14:ec:b8:c9:2e:a4:8a:60:40:7c:
#         ba:ca:08:8b

[p11-kit-object-v1]
label: "ACA ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACA ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            47:43:91:24:3f:ce:c3:0d:57:48:28:6b:ee:80:5d:ab
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES/serialNumber=Q2863006I, O=CONSEJO GENERAL DE LA ABOGACIA, CN=ACA ROOT
#        Validity
#            Not Before: May 27 10:58:51 2016 GMT
#            Not After : May 27 10:58:51 2041 GMT
#        Subject: C=ES/serialNumber=Q2863006I, O=CONSEJO GENERAL DE LA ABOGACIA, CN=ACA ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b9:2b:5e:f5:3e:ba:89:1e:9d:f5:d1:13:cf:bb:
#                    a3:5e:ba:e9:df:39:72:64:98:52:87:69:a5:b6:de:
#                    e1:bf:94:45:be:c5:f8:a4:53:67:15:50:dc:52:4f:
#                    2a:76:2c:2e:8d:20:6a:8c:e6:5d:b9:d9:68:be:91:
#                    1b:ba:69:03:18:ad:18:4e:36:a2:ac:46:ab:20:f8:
#                    03:6a:aa:ad:79:d5:df:1d:c1:ee:45:6f:21:74:f9:
#                    4d:b1:b1:3d:90:3b:3c:32:80:ed:ff:15:cf:51:ca:
#                    d7:a4:87:2e:aa:e5:0e:b6:d1:7a:5a:c7:b9:f8:51:
#                    bb:d9:94:dd:3e:c6:86:4e:0a:fe:3b:89:f2:f8:6e:
#                    24:ce:91:03:58:05:12:4a:dd:50:ab:41:7a:ce:ed:
#                    a9:1f:11:53:1e:a5:13:db:61:f0:f5:aa:80:de:74:
#                    79:1d:a4:e3:29:d6:fb:e0:fc:97:da:a2:b8:ab:22:
#                    3e:65:b0:21:c4:e5:c5:10:44:87:b2:e3:e0:2a:82:
#                    2e:7d:e6:f4:b8:a4:13:25:f3:77:60:5f:63:53:ae:
#                    2e:b1:9d:8a:6b:76:7b:3a:71:bd:92:81:36:b0:9c:
#                    82:f1:f7:c5:89:28:5d:ff:bc:42:06:b3:08:6a:4f:
#                    61:cd:a4:2d:90:d3:39:b8:77:ff:c8:c7:a3:79:bb:
#                    03:b9:91:03:01:34:12:d8:30:8b:b6:8c:02:ca:e4:
#                    48:ec:38:2a:32:4c:6d:ca:76:28:5a:86:0a:ba:d4:
#                    20:8e:af:a0:5f:20:2d:62:9c:88:f9:f1:15:6d:5b:
#                    bd:b1:03:50:c0:3f:36:d7:ae:3f:51:d1:ca:e3:58:
#                    66:44:e6:a3:9b:77:2e:31:fa:d9:7f:22:c4:05:4c:
#                    eb:74:1b:5c:63:7a:a6:02:93:7e:43:0e:76:14:0f:
#                    4d:6f:32:95:88:80:92:52:97:14:f5:3c:fc:94:07:
#                    d3:6c:29:05:95:46:0f:e4:71:e1:7f:f8:6d:14:12:
#                    82:92:b5:f3:53:3e:99:11:97:47:76:4a:09:72:ee:
#                    d4:c3:96:09:ac:da:ff:f1:4b:4b:b6:d7:25:cf:1e:
#                    4c:97:26:0b:34:bb:b6:94:f1:2c:64:71:5f:89:f2:
#                    15:3b:37:a7:02:e4:0d:4f:48:89:33:a3:8c:68:78:
#                    31:51:67:0a:19:db:b4:e2:74:2f:3d:7a:f3:77:00:
#                    9f:71:12:63:ff:73:2a:64:69:54:ec:ac:3a:ae:da:
#                    f2:58:63:34:7e:f8:3c:5e:c0:42:3a:a5:db:b3:a8:
#                    d4:5a:c1:4e:58:b8:69:b6:ac:82:62:db:d1:fb:1a:
#                    43:21:22:fc:1d:f5:9c:4f:4e:3b:e5:8d:ff:76:5a:
#                    23:5e:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1A:55:E4:15:31:E2:31:9B:11:D4:88:71:7A:00:3D:70:28:05:BF:CD
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.acabogacia.org/doc
#
#    Signature Algorithm: sha256WithRSAEncryption
#         7b:30:ca:55:86:d3:af:ee:1a:d7:b8:95:98:ec:f9:3b:dd:90:
#         13:a3:9c:92:45:a0:92:89:69:a1:71:91:bc:71:85:87:a0:2d:
#         30:09:e4:c2:53:3d:f4:a9:b7:68:2d:4d:99:cd:a4:cf:9e:3b:
#         90:9d:9a:0a:29:0d:2a:42:c1:3d:5b:6b:40:82:c5:8b:13:b1:
#         41:67:8f:be:a4:77:e0:c0:76:e4:f3:b6:29:56:2c:ef:71:4f:
#         c2:64:f1:da:b4:0b:ca:d0:39:5f:53:b2:83:01:fb:b2:7d:d9:
#         83:74:7a:35:d0:c1:5d:8f:9b:f7:5e:e7:52:df:ee:aa:37:93:
#         ab:d9:3d:7d:1e:f1:bd:1c:db:e8:75:dd:b8:5b:4c:e3:16:a3:
#         f6:75:88:0e:8f:3c:c3:0b:6c:db:60:59:e4:05:ab:28:46:f7:
#         66:69:25:77:de:ca:4a:33:d8:58:5e:7b:8f:9a:cf:52:8e:3d:
#         6d:fd:d1:b2:bd:3e:79:57:86:1e:44:1c:07:4d:f4:c2:10:aa:
#         78:cb:f3:51:17:0d:76:3d:8d:6e:68:49:e9:ef:07:49:d1:b8:
#         16:c9:79:9d:cc:ae:0b:05:47:7a:fd:98:ac:31:a1:90:5a:87:
#         62:f9:f8:ab:62:5a:e0:21:76:d0:68:42:e8:1c:be:72:81:f0:
#         c6:67:7d:7e:74:3c:d5:55:6f:8f:a5:68:96:11:f1:ca:d3:30:
#         17:bd:46:b6:31:af:70:e9:a4:84:37:57:ba:09:3c:2e:d9:0b:
#         13:56:07:3e:95:c4:b5:70:2f:93:c2:ae:af:81:5d:46:14:30:
#         fb:ae:c5:f3:9a:f7:41:7a:b1:de:4b:16:d9:45:75:47:02:7c:
#         14:1e:d5:b1:3b:a0:2c:41:b5:9b:4b:7b:a3:83:f0:b9:cc:ce:
#         1e:94:b7:5e:2e:23:06:95:91:1c:38:47:1c:ed:c4:78:0e:a4:
#         0f:fc:1b:7c:d6:f2:6b:d0:8a:5b:ea:96:f3:31:d4:5e:6a:c4:
#         94:b8:30:9f:95:e1:07:89:b8:88:d2:27:85:a4:61:74:e5:a8:
#         44:31:7a:20:75:e8:f8:d8:eb:b3:4f:aa:ff:53:3f:96:ed:ea:
#         bb:fc:51:40:a6:2b:ec:24:a1:fb:f9:44:8d:23:e7:a6:97:00:
#         0f:cb:a4:6a:bf:50:a0:ca:71:a2:6c:ae:6f:df:d9:83:82:66:
#         dc:53:5d:af:fa:54:f7:83:ff:ab:3f:89:95:a7:b4:6d:f3:0f:
#         0a:0d:48:33:2f:81:29:c7:4b:05:c4:c6:57:74:84:c3:98:36:
#         ff:ef:85:32:ab:62:9c:13:d1:22:87:b1:be:98:db:74:9a:8f:
#         ea:c2:d6:93:79:45:20:c3

[p11-kit-object-v1]
label: "ACCVRAIZ1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACCVRAIZ1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIH0zCCBbugAwIBAgIIXsO3pkN/pOAwDQYJKoZIhvcNAQEFBQAwQjESMBAGA1UE
AwwJQUNDVlJBSVoxMRAwDgYDVQQLDAdQS0lBQ0NWMQ0wCwYDVQQKDARBQ0NWMQsw
CQYDVQQGEwJFUzAeFw0xMTA1MDUwOTM3MzdaFw0zMDEyMzEwOTM3MzdaMEIxEjAQ
BgNVBAMMCUFDQ1ZSQUlaMTEQMA4GA1UECwwHUEtJQUNDVjENMAsGA1UECgwEQUND
VjELMAkGA1UEBhMCRVMwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCb
qau/YUqXry+XZpp0X9DZlv3P4uRm7x8fRzPCRKPfmt4ftVTdFXxpNRFvu8gMjmoY
HtiP2Ra8EEg2XPBjs5BaXCQ316PWywlxufEBcoSwfdtNgM3802/J+Nq2DoLSRYWo
G2ioPej0RGy9ocLLA76MPhMAhN9KSMDjIgro6TenGEyxCQ0jVn8ETdkXhBilyNpA
lHPrzg5XPAOBOp0KoVdDaaxXbXmQeOW1tDvYvEyNKKGno6e6Ak4l0Squ7a4DIrhr
IA8wKFSVf+DuzgpmndFALW4ir50awQUZ0m/A8p/4e7MCQvtQqR0tkw8jq8bBD5L/
0KIV9VMJcRz/RROE5iZe+OCIHAr8Fraocwa48GOEAqDGWuzndN9wrqODJerWx5eH
k6fGioozl2A3ED6XPm4pFdahD9GILBKfb6qkxkLrQaLjlUPTAYVtjrs78yM2x/47
4KElB0iryYl0/wiPgL/AlmXz7uxLaL2diMMxs0Dx6M/2OLuc5NF/1OVYm3z61PMO
m3WR5LpSLhl+0fXNWhn8ugb2+1KoS5kE3fj5tItQo05iifCHJPqDQsGH+tUtKSpa
cXpkatcnYGMN285J9Y0fkIkyF/hzQ7jSWpOGYdbhdQrqeWZ2iE9x6wQl1gpaepPl
uUsXQA+xtrn13k/c4LOsOxFwYIRKQ26ZIMApcQrAZQIDAQABo4ICyzCCAscwfQYI
KwYBBQUHAQEEcTBvMEwGCCsGAQUFBzAChkBodHRwOi8vd3d3LmFjY3YuZXMvZmls
ZWFkbWluL0FyY2hpdm9zL2NlcnRpZmljYWRvcy9yYWl6YWNjdjEuY3J0MB8GCCsG
AQUFBzABhhNodHRwOi8vb2NzcC5hY2N2LmVzMB0GA1UdDgQWBBTSh7Tj3zcnk1X2
VuqB5TbMjB4/vTAPBgNVHRMBAf8EBTADAQH/MB8GA1UdIwQYMBaAFNKHtOPfNyeT
VfZW6oHlNsyMHj+9MIIBcwYDVR0gBIIBajCCAWYwggFiBgRVHSAAMIIBWDCCASIG
CCsGAQUFBwICMIIBFB6CARAAQQB1AHQAbwByAGkAZABhAGQAIABkAGUAIABDAGUA
cgB0AGkAZgBpAGMAYQBjAGkA8wBuACAAUgBhAO0AegAgAGQAZQAgAGwAYQAgAEEA
QwBDAFYAIAAoAEEAZwBlAG4AYwBpAGEAIABkAGUAIABUAGUAYwBuAG8AbABvAGcA
7QBhACAAeQAgAEMAZQByAHQAaQBmAGkAYwBhAGMAaQDzAG4AIABFAGwAZQBjAHQA
cgDzAG4AaQBjAGEALAAgAEMASQBGACAAUQA0ADYAMAAxADEANQA2AEUAKQAuACAA
QwBQAFMAIABlAG4AIABoAHQAdABwADoALwAvAHcAdwB3AC4AYQBjAGMAdgAuAGUA
czAwBggrBgEFBQcCARYkaHR0cDovL3d3dy5hY2N2LmVzL2xlZ2lzbGFjaW9uX2Mu
aHRtMFUGA1UdHwROMEwwSqBIoEaGRGh0dHA6Ly93d3cuYWNjdi5lcy9maWxlYWRt
aW4vQXJjaGl2b3MvY2VydGlmaWNhZG9zL3JhaXphY2N2MV9kZXIuY3JsMA4GA1Ud
DwEB/wQEAwIBBjAXBgNVHREEEDAOgQxhY2N2QGFjY3YuZXMwDQYJKoZIhvcNAQEF
BQADggIBAJcxAp/n/UNnSEQU5CmH7UwoZtCPNdpNYbdKl02125DgBS4OxnnQ8pdp
D70ER9m+27Up2pvZrqmZ1dM8MJP1jaGo/AaNRPTKFpV8M9xii6g3+CfYCS0b78gU
JyCpZET/LtZ1qmxNYEAZSUNUY9rizLpm5U9EelvZaoErQNV/+QEnWCzI7UiRfD+m
AM/EKXMRNt6GGT6d7hmKG9Ww7Y49nCrADdg9ZuM8Db3VlFzi4qc1GwQA9j9ajepD
vV+JHanBsMyZ4k0ACtrJJ1vnE5Bc5PUzolVt3OAJTS+xJlsndQAJxGJ3KQhfnlms
tn6tn1QwIgPBHnFk/vk4CpYY3QIUrCPLBhwepH2NDd4nQeit2hW3sCPdK6jT2iWH
7ehVRE2I9DZ+hJp4rPcOVkkO1jMl1oRQQmwgEh0q1b688nCBpHBgvgW1m54ERL5h
I6zppSSMEYCUWqKiuUnSwdzRp+0xESyeGabu4VXhwOrPDYTkF7eifKXeVSUG7szA
h1xA2syVP1XgNce4hL60Xc16gwFy7ofmXx2utYXGJt/mwZrpHgJHnyqobalbz+xF
d3+YJ5oyXSrjhO7FmGYvliAd3djDJ9ew+f7Zfc3Qn48LFFhRny+Lwzgt3uiP1o2H
pPVWQxaZLPSkVrQ0uGE3ycJYgBugl6H8WY3pEfbRD0tVNEYqi4Y7
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5e:c3:b7:a6:43:7f:a4:e0
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN=ACCVRAIZ1, OU=PKIACCV, O=ACCV, C=ES
#        Validity
#            Not Before: May  5 09:37:37 2011 GMT
#            Not After : Dec 31 09:37:37 2030 GMT
#        Subject: CN=ACCVRAIZ1, OU=PKIACCV, O=ACCV, C=ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9b:a9:ab:bf:61:4a:97:af:2f:97:66:9a:74:5f:
#                    d0:d9:96:fd:cf:e2:e4:66:ef:1f:1f:47:33:c2:44:
#                    a3:df:9a:de:1f:b5:54:dd:15:7c:69:35:11:6f:bb:
#                    c8:0c:8e:6a:18:1e:d8:8f:d9:16:bc:10:48:36:5c:
#                    f0:63:b3:90:5a:5c:24:37:d7:a3:d6:cb:09:71:b9:
#                    f1:01:72:84:b0:7d:db:4d:80:cd:fc:d3:6f:c9:f8:
#                    da:b6:0e:82:d2:45:85:a8:1b:68:a8:3d:e8:f4:44:
#                    6c:bd:a1:c2:cb:03:be:8c:3e:13:00:84:df:4a:48:
#                    c0:e3:22:0a:e8:e9:37:a7:18:4c:b1:09:0d:23:56:
#                    7f:04:4d:d9:17:84:18:a5:c8:da:40:94:73:eb:ce:
#                    0e:57:3c:03:81:3a:9d:0a:a1:57:43:69:ac:57:6d:
#                    79:90:78:e5:b5:b4:3b:d8:bc:4c:8d:28:a1:a7:a3:
#                    a7:ba:02:4e:25:d1:2a:ae:ed:ae:03:22:b8:6b:20:
#                    0f:30:28:54:95:7f:e0:ee:ce:0a:66:9d:d1:40:2d:
#                    6e:22:af:9d:1a:c1:05:19:d2:6f:c0:f2:9f:f8:7b:
#                    b3:02:42:fb:50:a9:1d:2d:93:0f:23:ab:c6:c1:0f:
#                    92:ff:d0:a2:15:f5:53:09:71:1c:ff:45:13:84:e6:
#                    26:5e:f8:e0:88:1c:0a:fc:16:b6:a8:73:06:b8:f0:
#                    63:84:02:a0:c6:5a:ec:e7:74:df:70:ae:a3:83:25:
#                    ea:d6:c7:97:87:93:a7:c6:8a:8a:33:97:60:37:10:
#                    3e:97:3e:6e:29:15:d6:a1:0f:d1:88:2c:12:9f:6f:
#                    aa:a4:c6:42:eb:41:a2:e3:95:43:d3:01:85:6d:8e:
#                    bb:3b:f3:23:36:c7:fe:3b:e0:a1:25:07:48:ab:c9:
#                    89:74:ff:08:8f:80:bf:c0:96:65:f3:ee:ec:4b:68:
#                    bd:9d:88:c3:31:b3:40:f1:e8:cf:f6:38:bb:9c:e4:
#                    d1:7f:d4:e5:58:9b:7c:fa:d4:f3:0e:9b:75:91:e4:
#                    ba:52:2e:19:7e:d1:f5:cd:5a:19:fc:ba:06:f6:fb:
#                    52:a8:4b:99:04:dd:f8:f9:b4:8b:50:a3:4e:62:89:
#                    f0:87:24:fa:83:42:c1:87:fa:d5:2d:29:2a:5a:71:
#                    7a:64:6a:d7:27:60:63:0d:db:ce:49:f5:8d:1f:90:
#                    89:32:17:f8:73:43:b8:d2:5a:93:86:61:d6:e1:75:
#                    0a:ea:79:66:76:88:4f:71:eb:04:25:d6:0a:5a:7a:
#                    93:e5:b9:4b:17:40:0f:b1:b6:b9:f5:de:4f:dc:e0:
#                    b3:ac:3b:11:70:60:84:4a:43:6e:99:20:c0:29:71:
#                    0a:c0:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Authority Information Access: 
#                CA Issuers - URI:http://www.accv.es/fileadmin/Archivos/certificados/raizaccv1.crt
#                OCSP - URI:http://ocsp.accv.es
#
#            X509v3 Subject Key Identifier: 
#                D2:87:B4:E3:DF:37:27:93:55:F6:56:EA:81:E5:36:CC:8C:1E:3F:BD
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:D2:87:B4:E3:DF:37:27:93:55:F6:56:EA:81:E5:36:CC:8C:1E:3F:BD
#
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  User Notice:
#                    Explicit Text: 
#                  CPS: http://www.accv.es/legislacion_c.htm
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.accv.es/fileadmin/Archivos/certificados/raizaccv1_der.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:accv@accv.es
#    Signature Algorithm: sha1WithRSAEncryption
#         97:31:02:9f:e7:fd:43:67:48:44:14:e4:29:87:ed:4c:28:66:
#         d0:8f:35:da:4d:61:b7:4a:97:4d:b5:db:90:e0:05:2e:0e:c6:
#         79:d0:f2:97:69:0f:bd:04:47:d9:be:db:b5:29:da:9b:d9:ae:
#         a9:99:d5:d3:3c:30:93:f5:8d:a1:a8:fc:06:8d:44:f4:ca:16:
#         95:7c:33:dc:62:8b:a8:37:f8:27:d8:09:2d:1b:ef:c8:14:27:
#         20:a9:64:44:ff:2e:d6:75:aa:6c:4d:60:40:19:49:43:54:63:
#         da:e2:cc:ba:66:e5:4f:44:7a:5b:d9:6a:81:2b:40:d5:7f:f9:
#         01:27:58:2c:c8:ed:48:91:7c:3f:a6:00:cf:c4:29:73:11:36:
#         de:86:19:3e:9d:ee:19:8a:1b:d5:b0:ed:8e:3d:9c:2a:c0:0d:
#         d8:3d:66:e3:3c:0d:bd:d5:94:5c:e2:e2:a7:35:1b:04:00:f6:
#         3f:5a:8d:ea:43:bd:5f:89:1d:a9:c1:b0:cc:99:e2:4d:00:0a:
#         da:c9:27:5b:e7:13:90:5c:e4:f5:33:a2:55:6d:dc:e0:09:4d:
#         2f:b1:26:5b:27:75:00:09:c4:62:77:29:08:5f:9e:59:ac:b6:
#         7e:ad:9f:54:30:22:03:c1:1e:71:64:fe:f9:38:0a:96:18:dd:
#         02:14:ac:23:cb:06:1c:1e:a4:7d:8d:0d:de:27:41:e8:ad:da:
#         15:b7:b0:23:dd:2b:a8:d3:da:25:87:ed:e8:55:44:4d:88:f4:
#         36:7e:84:9a:78:ac:f7:0e:56:49:0e:d6:33:25:d6:84:50:42:
#         6c:20:12:1d:2a:d5:be:bc:f2:70:81:a4:70:60:be:05:b5:9b:
#         9e:04:44:be:61:23:ac:e9:a5:24:8c:11:80:94:5a:a2:a2:b9:
#         49:d2:c1:dc:d1:a7:ed:31:11:2c:9e:19:a6:ee:e1:55:e1:c0:
#         ea:cf:0d:84:e4:17:b7:a2:7c:a5:de:55:25:06:ee:cc:c0:87:
#         5c:40:da:cc:95:3f:55:e0:35:c7:b8:84:be:b4:5d:cd:7a:83:
#         01:72:ee:87:e6:5f:1d:ae:b5:85:c6:26:df:e6:c1:9a:e9:1e:
#         02:47:9f:2a:a8:6d:a9:5b:cf:ec:45:77:7f:98:27:9a:32:5d:
#         2a:e3:84:ee:c5:98:66:2f:96:20:1d:dd:d8:c3:27:d7:b0:f9:
#         fe:d9:7d:cd:d0:9f:8f:0b:14:58:51:9f:2f:8b:c3:38:2d:de:
#         e8:8f:d6:8d:87:a4:f5:56:43:16:99:2c:f4:a4:56:b4:34:b8:
#         61:37:c9:c2:58:80:1b:a0:97:a1:fc:59:8d:e9:11:f6:d1:0f:
#         4b:55:34:46:2a:8b:86:3b

[p11-kit-object-v1]
label: "ACEDICOM Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ACEDICOM Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            61:8d:c7:86:3b:01:82:05
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN=ACEDICOM Root, OU=PKI, O=EDICOM, C=ES
#        Validity
#            Not Before: Apr 18 16:24:22 2008 GMT
#            Not After : Apr 13 16:24:22 2028 GMT
#        Subject: CN=ACEDICOM Root, OU=PKI, O=EDICOM, C=ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ff:92:95:e1:68:06:76:b4:2c:c8:58:48:ca:fd:
#                    80:54:29:55:63:24:ff:90:65:9b:10:75:7b:c3:6a:
#                    db:62:02:01:f2:18:86:b5:7c:5a:38:b1:e4:58:b9:
#                    fb:d3:d8:2d:9f:bd:32:37:bf:2c:15:6d:be:b5:f4:
#                    21:d2:13:91:d9:07:ad:01:05:d6:f3:bd:77:ce:5f:
#                    42:81:0a:f9:6a:e3:83:00:a8:2b:2e:55:13:63:81:
#                    ca:47:1c:7b:5c:16:57:7a:1b:83:60:04:3a:3e:65:
#                    c3:cd:01:de:de:a4:d6:0c:ba:8e:de:d9:04:ee:17:
#                    56:22:9b:8f:63:fd:4d:16:0b:b7:7b:77:8c:f9:25:
#                    b5:d1:6d:99:12:2e:4f:1a:b8:e6:ea:04:92:ae:3d:
#                    11:b9:51:42:3d:87:b0:31:85:af:79:5a:9c:fe:e7:
#                    4e:5e:92:4f:43:fc:ab:3a:ad:a5:12:26:66:b9:e2:
#                    0c:d7:98:ce:d4:58:a5:95:40:0a:b7:44:9d:13:74:
#                    2b:c2:a5:eb:22:15:98:10:d8:8b:c5:04:9f:1d:8f:
#                    60:e5:06:1b:9b:cf:b9:79:a0:3d:a2:23:3f:42:3f:
#                    6b:fa:1c:03:7b:30:8d:ce:6c:c0:bf:e6:1b:5f:bf:
#                    67:b8:84:19:d5:15:ef:7b:cb:90:36:31:62:c9:bc:
#                    02:ab:46:5f:9b:fe:1a:68:94:34:3d:90:8e:ad:f6:
#                    e4:1d:09:7f:4a:88:38:3f:be:67:fd:34:96:f5:1d:
#                    bc:30:74:cb:38:ee:d5:6c:ab:d4:fc:f4:00:b7:00:
#                    5b:85:32:16:76:33:e9:d8:a3:99:9d:05:00:aa:16:
#                    e6:f3:81:7d:6f:7d:aa:86:6d:ad:15:74:d3:c4:a2:
#                    71:aa:f4:14:7d:e7:32:b8:1f:bc:d5:f1:4e:bd:6f:
#                    17:02:39:d7:0e:95:42:3a:c7:00:3e:e9:26:63:11:
#                    ea:0b:d1:4a:ff:18:9d:b2:d7:7b:2f:3a:d9:96:fb:
#                    e8:1e:92:ae:13:55:c8:d9:27:f6:dc:48:1b:b0:24:
#                    c1:85:e3:77:9d:9a:a4:f3:0c:11:1d:0d:c8:b4:14:
#                    ee:b5:82:57:09:bf:20:58:7f:2f:22:23:d8:70:cb:
#                    79:6c:c9:4b:f2:a9:2a:c8:fc:87:2b:d7:1a:50:f8:
#                    27:e8:2f:43:e3:3a:bd:d8:57:71:fd:ce:a6:52:5b:
#                    f9:dd:4d:ed:e5:f6:6f:89:ed:bb:93:9c:76:21:75:
#                    f0:92:4c:29:f7:2f:9c:01:2e:fe:50:46:9e:64:0c:
#                    14:b3:07:5b:c5:c2:73:6c:f1:07:5c:45:24:14:35:
#                    ae:83:f1:6a:4d:89:7a:fa:b3:d8:2d:66:f0:36:87:
#                    f5:2b:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A6:B3:E1:2B:2B:49:B6:D7:73:A1:AA:94:F5:01:E7:73:65:4C:AC:50
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A6:B3:E1:2B:2B:49:B6:D7:73:A1:AA:94:F5:01:E7:73:65:4C:AC:50
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://acedicom.edicomgroup.com/doc
#
#    Signature Algorithm: sha1WithRSAEncryption
#         ce:2c:0b:52:51:62:26:7d:0c:27:83:8f:c5:f6:da:a0:68:7b:
#         4f:92:5e:ea:a4:73:32:11:53:44:b2:44:cb:9d:ec:0f:79:42:
#         b3:10:a6:c7:0d:9d:cb:b6:fa:3f:3a:7c:ea:bf:88:53:1b:3c:
#         f7:82:fa:05:35:33:e1:35:a8:57:c0:e7:fd:8d:4f:3f:93:32:
#         4f:78:66:03:77:07:58:e9:95:c8:7e:3e:d0:79:00:8c:f2:1b:
#         51:33:9b:bc:94:e9:3a:7b:6e:52:2d:32:9e:23:a4:45:fb:b6:
#         2e:13:b0:8b:18:b1:dd:ce:d5:1d:a7:42:7f:55:be:fb:5b:bb:
#         47:d4:fc:24:cd:04:ae:96:05:15:d6:ac:ce:30:f3:ca:0b:c5:
#         ba:e2:22:e0:a6:ad:22:e4:02:ee:74:11:7f:4c:ff:78:1d:35:
#         da:e6:02:34:eb:18:12:61:77:06:09:16:63:ea:18:ad:a2:87:
#         1f:f2:c7:80:09:09:75:4e:10:a8:8f:3d:86:b8:75:11:c0:24:
#         62:8a:96:7b:4a:45:e9:ec:59:c5:be:6b:83:e6:e1:e8:ac:b5:
#         30:1e:fe:05:07:80:f9:e1:23:0d:50:8f:05:98:ff:2c:5f:e8:
#         3b:b6:ad:cf:81:b5:21:87:ca:08:2a:23:27:30:20:2b:cf:ed:
#         94:5b:ac:b2:7a:d2:c7:28:a1:8a:0b:9b:4d:4a:2c:6d:85:3f:
#         09:72:3c:67:e2:d9:dc:07:ba:eb:65:7b:5a:01:63:d6:90:5b:
#         4f:17:66:3d:7f:0b:19:a3:93:63:10:52:2a:9f:14:16:58:e2:
#         dc:a5:f4:a1:16:8b:0e:91:8b:81:ca:9b:59:fa:d8:6b:91:07:
#         65:55:5f:52:1f:af:3a:fb:90:dd:69:a5:5b:9c:6d:0e:2c:b6:
#         fa:ce:ac:a5:7c:32:4a:67:40:dc:30:34:23:dd:d7:04:23:66:
#         f0:fc:55:80:a7:fb:66:19:82:35:67:62:70:39:5e:6f:c7:ea:
#         90:40:44:08:1e:b8:b2:d6:db:ee:59:a7:0d:18:79:34:bc:54:
#         18:5e:53:ca:34:51:ed:45:0a:e6:8e:c7:82:36:3e:a7:38:63:
#         a9:30:2c:17:10:60:92:9f:55:87:12:59:10:c2:0f:67:69:11:
#         cc:4e:1e:7e:4a:9a:ad:af:40:a8:75:ac:56:90:74:b8:a0:9c:
#         a5:79:6f:dc:e9:1a:c8:69:05:e9:ba:fa:03:b3:7c:e4:e0:4e:
#         c2:ce:9d:e8:b6:46:0d:6e:7e:57:3a:67:94:c2:cb:1f:9c:77:
#         4a:67:4e:69:86:43:93:38:fb:b6:db:4f:83:91:d4:60:7e:4b:
#         3e:2b:38:07:55:98:5e:a4

[p11-kit-object-v1]
label: "AC RAIZ DNIE"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC RAIZ DNIE"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d2:85:70:fd:ae:a7:d6:5f:11:84:15:c6:31:b5:cb
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, O=DIRECCION GENERAL DE LA POLICIA, OU=DNIE, CN=AC RAIZ DNIE
#        Validity
#            Not Before: Feb 16 10:37:25 2006 GMT
#            Not After : Feb  8 22:59:59 2036 GMT
#        Subject: C=ES, O=DIRECCION GENERAL DE LA POLICIA, OU=DNIE, CN=AC RAIZ DNIE
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:80:00:ad:0c:c3:a3:20:07:a3:63:ff:f7:34:a0:
#                    cd:ee:6a:54:08:17:5d:b1:01:15:a7:e6:b9:5f:8a:
#                    71:ff:0c:c2:1d:ea:37:f3:de:93:7f:d6:05:4d:84:
#                    b2:d5:d7:1c:0c:f4:c4:91:70:40:0e:5a:c8:98:a4:
#                    80:e8:0d:33:c0:07:f3:b7:f5:ac:a1:38:7a:c0:66:
#                    54:24:fc:52:cc:30:2a:f2:c3:c4:a1:2c:76:bf:c1:
#                    c0:bf:82:f1:9b:f0:68:7a:13:40:c8:97:bc:1c:25:
#                    07:08:0a:b7:96:ef:cc:29:54:e0:e6:65:2d:ea:b2:
#                    2e:b1:09:69:12:4e:30:d5:d8:f8:bc:00:80:2f:4d:
#                    93:0f:cd:2e:57:1b:33:bb:9f:30:4e:c4:a5:cb:79:
#                    a7:fb:e2:34:18:b6:20:9e:1b:9f:5d:a7:c9:3a:ad:
#                    45:64:b3:18:ce:11:12:9c:6d:1e:55:45:28:84:9c:
#                    57:67:4d:f9:cb:e2:8b:8f:58:09:d4:39:ff:c8:36:
#                    d2:38:e2:0c:65:7f:15:0e:7d:c1:07:dd:a9:22:df:
#                    91:00:c4:6c:71:34:74:dc:39:ea:ea:4f:44:69:7f:
#                    58:db:58:0a:52:71:2b:ec:a9:1d:50:74:33:f9:29:
#                    6a:fa:fe:99:f4:e7:cc:45:45:6d:ca:5a:25:a2:12:
#                    e3:ce:d7:38:05:39:f0:1a:09:f5:76:59:ce:62:6f:
#                    7a:34:0d:2c:d1:bc:04:12:ec:3d:53:c8:fa:d0:02:
#                    cb:ce:3d:21:b5:c5:e0:39:33:65:cf:39:53:c9:9b:
#                    46:f9:9d:33:f3:59:80:08:41:be:6f:4b:a0:fa:4a:
#                    ce:a4:76:1c:85:e2:af:af:14:9d:65:ac:f7:7f:97:
#                    e4:33:49:a6:af:be:ce:2b:37:f1:2e:c1:73:05:9c:
#                    9c:60:4c:9d:30:0d:97:54:9e:81:62:bb:e7:e0:2f:
#                    f7:14:07:14:a9:77:91:e9:dc:91:95:8e:d3:88:90:
#                    33:47:6f:71:c3:14:69:fa:a6:2d:01:1e:1b:ea:d3:
#                    2e:e2:7f:0b:dc:cf:e7:22:f0:f1:41:a3:01:92:e5:
#                    80:d3:be:a9:62:a8:55:88:0b:34:34:ec:dc:21:15:
#                    aa:ef:d6:22:5e:89:f5:51:92:13:2a:6f:80:16:d9:
#                    b1:0d:d9:2e:f8:10:b8:c2:fe:52:45:33:9c:1d:38:
#                    7c:dc:15:69:34:73:bf:a0:2c:bb:11:7b:94:cd:f8:
#                    37:2d:6f:3d:ef:83:5a:c6:1e:9b:74:49:8f:d9:c2:
#                    8d:be:16:76:50:c8:5a:d1:25:16:f6:f6:cc:8c:9c:
#                    5a:30:9e:65:be:d0:9a:48:93:d7:fa:68:0d:75:31:
#                    87:f9:f7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                8E:45:F4:9F:73:C5:FF:2F:1B:05:DB:01:47:60:1B:03:8A:81:B7:BA
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.dnie.es/dpc
#
#    Signature Algorithm: sha1WithRSAEncryption
#         75:e5:73:c9:51:51:2f:8b:19:a0:87:e9:ff:ae:36:36:a6:fc:
#         41:1f:e3:1e:d7:71:60:19:c6:6f:9a:02:30:bd:62:71:ad:73:
#         fe:91:2d:4e:e4:26:40:44:a9:ae:78:26:23:31:69:dc:9a:73:
#         96:1e:49:51:0b:e0:ef:c1:b8:43:ef:71:9c:ee:41:b7:c5:50:
#         1f:32:84:9e:22:86:f1:f7:1f:8f:d9:ad:2b:4e:da:97:28:97:
#         bb:96:9a:1a:f8:b1:d9:7a:04:f3:54:99:12:19:96:15:80:67:
#         39:ff:02:5f:7a:fc:55:42:50:5a:e6:b9:a2:ff:b8:a8:62:1e:
#         14:cd:d9:3f:be:a3:65:48:c5:3b:d7:37:ce:0d:fa:28:90:da:
#         bf:f9:e3:51:47:25:7d:4a:d3:67:4d:87:aa:62:bc:5e:ec:7a:
#         80:44:7c:f7:9f:0a:bd:65:57:94:ca:f2:11:66:d6:52:7f:e4:
#         3a:70:75:04:cd:3b:97:d4:36:72:f7:51:56:bf:34:f5:d2:41:
#         e1:b4:da:a8:43:fe:6b:12:49:12:b4:5d:cf:22:42:96:8c:08:
#         23:26:8c:b2:10:4e:5d:aa:53:ee:01:2f:75:e5:b9:a2:11:33:
#         c4:d7:6a:fd:f8:0e:ca:6e:82:d9:e7:bb:59:23:4e:b5:f9:11:
#         1d:2f:6b:23:f5:7b:11:20:ea:41:12:90:32:46:db:31:3b:a9:
#         c1:5b:73:68:3a:46:1b:8c:fe:97:b7:56:b9:61:99:cc:4e:f0:
#         83:fa:37:f1:de:1c:9d:1c:71:8b:03:93:c3:c4:73:82:2e:a8:
#         98:1d:64:a2:9a:8c:f7:54:08:4d:cf:ea:81:cb:f5:5b:09:99:
#         63:af:75:8c:96:f8:79:35:d5:dc:eb:41:81:79:38:84:5e:6f:
#         f1:6f:62:76:db:91:ce:5a:85:60:39:1d:5b:e2:2a:2f:43:25:
#         db:c2:7a:24:d3:15:b0:a2:f1:8c:a0:7d:6b:48:09:13:ff:a2:
#         4c:66:8a:ec:70:52:09:53:8c:30:cc:b8:d5:ba:24:dc:30:99:
#         3e:a1:5e:b7:df:81:ac:ec:37:be:4e:9b:27:58:de:7e:a1:9b:
#         54:7f:06:b6:2f:e4:32:50:fd:e7:10:bb:a8:cd:da:18:1b:d4:
#         63:66:3d:ea:51:71:39:f4:9c:3e:df:5a:f4:da:c7:4c:26:ed:
#         8b:b5:21:ba:34:79:02:73:61:10:da:98:31:a8:60:cb:7e:07:
#         a7:d0:b7:05:43:89:5b:cd:85:26:d9:b0:51:af:f7:8c:52:aa:
#         12:a7:58:df:92:9b:67:f2:9d:f2:e6:f4:69:31:f4:16:e7:de:
#         77:5b:1e:dd:9a:05:01:ad

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5d:93:8d:30:67:36:c8:06:1d:1a:c7:54:84:69:07
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES, O=FNMT-RCM, OU=AC RAIZ FNMT-RCM
#        Validity
#            Not Before: Oct 29 15:59:56 2008 GMT
#            Not After : Jan  1 00:00:00 2030 GMT
#        Subject: C=ES, O=FNMT-RCM, OU=AC RAIZ FNMT-RCM
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:71:80:7a:4c:86:6e:7f:c8:13:6d:c0:c6:7d:
#                    1c:00:97:8f:2c:0c:23:bb:10:9a:40:a9:1a:b7:87:
#                    88:f8:9b:56:6a:fb:e6:7b:8e:8b:92:8e:a7:25:5d:
#                    59:11:db:36:2e:b7:51:17:1f:a9:08:1f:04:17:24:
#                    58:aa:37:4a:18:df:e5:39:d4:57:fd:d7:c1:2c:91:
#                    01:91:e2:22:d4:03:c0:58:fc:77:47:ec:8f:3e:74:
#                    43:ba:ac:34:8d:4d:38:76:67:8e:b0:c8:6f:30:33:
#                    58:71:5c:b4:f5:6b:6e:d4:01:50:b8:13:7e:6c:4a:
#                    a3:49:d1:20:19:ee:bc:c0:29:18:65:a7:de:fe:ef:
#                    dd:0a:90:21:e7:1a:67:92:42:10:98:5f:4f:30:bc:
#                    3e:1c:45:b4:10:d7:68:40:14:c0:40:fa:e7:77:17:
#                    7a:e6:0b:8f:65:5b:3c:d9:9a:52:db:b5:bd:9e:46:
#                    cf:3d:eb:91:05:02:c0:96:b2:76:4c:4d:10:96:3b:
#                    92:fa:9c:7f:0f:99:df:be:23:35:45:1e:02:5c:fe:
#                    b5:a8:9b:99:25:da:5e:f3:22:c3:39:f5:e4:2a:2e:
#                    d3:c6:1f:c4:6c:aa:c5:1c:6a:01:05:4a:2f:d2:c5:
#                    c1:a8:34:26:5d:66:a5:d2:02:21:f9:18:b7:06:f5:
#                    4e:99:6f:a8:ab:4c:51:e8:cf:50:18:c5:77:c8:39:
#                    09:2c:49:92:32:99:a8:bb:17:17:79:b0:5a:c5:e6:
#                    a3:c4:59:65:47:35:83:5e:a9:e8:35:0b:99:bb:e4:
#                    cd:20:c6:9b:4a:06:39:b5:68:fc:22:ba:ee:55:8c:
#                    2b:4e:ea:f3:b1:e3:fc:b6:99:9a:d5:42:fa:71:4d:
#                    08:cf:87:1e:6a:71:7d:f9:d3:b4:e9:a5:71:81:7b:
#                    c2:4e:47:96:a5:f6:76:85:a3:28:8f:e9:80:6e:81:
#                    53:a5:6d:5f:b8:48:f9:c2:f9:36:a6:2e:49:ff:b8:
#                    96:c2:8c:07:b3:9b:88:58:fc:eb:1b:1c:de:2d:70:
#                    e2:97:92:30:a1:89:e3:bc:55:a8:27:d6:4b:ed:90:
#                    ad:8b:fa:63:25:59:2d:a8:35:dd:ca:97:33:bc:e5:
#                    cd:c7:9d:d1:ec:ef:5e:0e:4a:90:06:26:63:ad:b9:
#                    d9:35:2d:07:ba:76:65:2c:ac:57:8f:7d:f4:07:94:
#                    d7:81:02:96:5d:a3:07:49:d5:7a:d0:57:f9:1b:e7:
#                    53:46:75:aa:b0:79:42:cb:68:71:08:e9:60:bd:39:
#                    69:ce:f4:af:c3:56:40:c7:ad:52:a2:09:e4:6f:86:
#                    47:8a:1f:eb:28:27:5d:83:20:af:04:c9:6c:56:9a:
#                    8b:46:f5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F7:7D:C5:FD:C4:E8:9A:1B:77:64:A7:F5:1D:A0:CC:BF:87:60:9A:6D
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.cert.fnmt.es/dpcs/
#
#    Signature Algorithm: sha256WithRSAEncryption
#         07:90:4a:df:f3:23:4e:f0:c3:9c:51:65:9b:9c:22:a2:8a:0c:
#         85:f3:73:29:6b:4d:fe:01:e2:a9:0c:63:01:bf:04:67:a5:9d:
#         98:5f:fd:01:13:fa:ec:9a:62:e9:86:fe:b6:62:d2:6e:4c:94:
#         fb:c0:75:45:7c:65:0c:f8:b2:37:cf:ac:0f:cf:8d:6f:f9:19:
#         f7:8f:ec:1e:f2:70:9e:f0:ca:b8:ef:b7:ff:76:37:76:5b:f6:
#         6e:88:f3:af:62:32:22:93:0d:3a:6a:8e:14:66:0c:2d:53:74:
#         57:65:1e:d5:b2:dd:23:81:3b:a5:66:23:27:67:09:8f:e1:77:
#         aa:43:cd:65:51:08:ed:51:58:fe:e6:39:f9:cb:47:84:a4:15:
#         f1:76:bb:a4:ee:a4:3b:c4:5f:ef:b2:33:96:11:18:b7:c9:65:
#         be:18:e1:a3:a4:dc:fa:18:f9:d3:bc:13:9b:39:7a:34:ba:d3:
#         41:fb:fa:32:8a:2a:b7:2b:86:0b:69:83:38:be:cd:8a:2e:0b:
#         70:ad:8d:26:92:ee:1e:f5:01:2b:0a:d9:d6:97:9b:6e:e0:a8:
#         19:1c:3a:21:8b:0c:1e:40:ad:03:e7:dd:66:7e:f5:b9:20:0d:
#         03:e8:96:f9:82:45:d4:39:e0:a0:00:5d:d7:98:e6:7d:9e:67:
#         73:c3:9a:2a:f7:ab:8b:a1:3a:14:ef:34:bc:52:0e:89:98:9a:
#         04:40:84:1d:7e:45:69:93:57:ce:eb:ce:f8:50:7c:4f:1c:6e:
#         04:43:9b:f9:d6:3b:23:18:e9:ea:8e:d1:4d:46:8d:f1:3b:e4:
#         6a:ca:ba:fb:23:b7:9b:fa:99:01:29:5a:58:5a:2d:e3:f9:d4:
#         6d:0e:26:ad:c1:6e:34:bc:32:f8:0c:05:fa:65:a3:db:3b:37:
#         83:22:e9:d6:dc:72:33:fd:5d:f2:20:bd:76:3c:23:da:28:f7:
#         f9:1b:eb:59:64:d5:dc:5f:72:7e:20:fc:cd:89:b5:90:67:4d:
#         62:7a:3f:4e:ad:1d:c3:39:fe:7a:f4:28:16:df:41:f6:48:80:
#         05:d7:0f:51:79:ac:10:ab:d4:ec:03:66:e6:6a:b0:ba:31:92:
#         42:40:6a:be:3a:d3:72:e1:6a:37:55:bc:ac:1d:95:b7:69:61:
#         f2:43:91:74:e6:a0:d3:0a:24:46:a1:08:af:d6:da:45:19:96:
#         d4:53:1d:5b:84:79:f0:c0:f7:47:ef:8b:8f:c5:06:ae:9d:4c:
#         62:9d:ff:46:04:f8:d3:c9:b6:10:25:40:75:fe:16:aa:c9:4a:
#         60:86:2f:ba:ef:30:77:e4:54:e2:b8:84:99:58:80:aa:13:8b:
#         51:3a:4f:48:f6:8b:b6:b3

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM SERVIDORES SEGUROS"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE9rpXU8jKq982SlIh5JfSg2ee8GVR0F6H
x0exWfJXR5sAApNEF2nbQsexsjoYDrRdjLNmXaE0+TYsSdvzRvyzRGlEE2b918X9
rzZNzgNNB3HPr2oF0qJDWgpSbwEDTo6L
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC RAIZ FNMT-RCM SERVIDORES SEGUROS"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            62:f6:32:6c:e5:c4:e3:68:5c:1b:62:dd:9c:2e:9d:95
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=ES, O=FNMT-RCM, OU=Ceres/2.5.4.97=VATES-Q2826004J, CN=AC RAIZ FNMT-RCM SERVIDORES SEGUROS
#        Validity
#            Not Before: Dec 20 09:37:33 2018 GMT
#            Not After : Dec 20 09:37:33 2043 GMT
#        Subject: C=ES, O=FNMT-RCM, OU=Ceres/2.5.4.97=VATES-Q2826004J, CN=AC RAIZ FNMT-RCM SERVIDORES SEGUROS
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:f6:ba:57:53:c8:ca:ab:df:36:4a:52:21:e4:97:
#                    d2:83:67:9e:f0:65:51:d0:5e:87:c7:47:b1:59:f2:
#                    57:47:9b:00:02:93:44:17:69:db:42:c7:b1:b2:3a:
#                    18:0e:b4:5d:8c:b3:66:5d:a1:34:f9:36:2c:49:db:
#                    f3:46:fc:b3:44:69:44:13:66:fd:d7:c5:fd:af:36:
#                    4d:ce:03:4d:07:71:cf:af:6a:05:d2:a2:43:5a:0a:
#                    52:6f:01:03:4e:8e:8b
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                01:B9:2F:EF:BF:11:86:60:F2:4F:D0:41:6E:AB:73:1F:E7:D2:6E:49
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:ae:4a:e3:2b:40:c3:74:11:f2:95:ad:16:23:
#         de:4e:0c:1a:e6:5d:a5:24:5e:6b:44:7b:fc:38:e2:4f:cb:9c:
#         45:17:11:4c:14:27:26:55:39:75:4a:03:cc:13:90:9f:92:02:
#         31:00:fa:4a:6c:60:88:73:f3:ee:b8:98:62:a9:ce:2b:c2:d9:
#         8a:a6:70:31:1d:af:b0:94:4c:eb:4f:c6:e3:d1:f3:62:a7:3c:
#         ff:93:2e:07:5c:49:01:67:69:12:02:72:bf:e7

[p11-kit-object-v1]
label: "AC Raíz Certicámara S.A."
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AC Raíz Certicámara S.A."
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            07:7e:52:93:7b:e0:15:e3:57:f0:69:8c:cb:ec:0c
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CO, O=Sociedad Cameral de Certificaci\xC3\xB3n Digital - Certic\xC3\xA1mara S.A., CN=AC Ra\xC3\xADz Certic\xC3\xA1mara S.A.
#        Validity
#            Not Before: Nov 27 20:46:29 2006 GMT
#            Not After : Apr  2 21:42:02 2030 GMT
#        Subject: C=CO, O=Sociedad Cameral de Certificaci\xC3\xB3n Digital - Certic\xC3\xA1mara S.A., CN=AC Ra\xC3\xADz Certic\xC3\xA1mara S.A.
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ab:6b:89:a3:53:cc:48:23:08:fb:c3:cf:51:96:
#                    08:2e:b8:08:7a:6d:3c:90:17:86:a9:e9:ed:2e:13:
#                    34:47:b2:d0:70:dc:c9:3c:d0:8d:ca:ee:4b:17:ab:
#                    d0:85:b0:a7:23:04:cb:a8:a2:fc:e5:75:db:40:ca:
#                    62:89:8f:50:9e:01:3d:26:5b:18:84:1c:cb:7c:37:
#                    b7:7d:ec:d3:7f:73:19:b0:6a:b2:d8:88:8a:2d:45:
#                    74:a8:f7:b3:b8:c0:d4:da:cd:22:89:74:4d:5a:15:
#                    39:73:18:74:4f:b5:eb:99:a7:c1:1e:88:b4:c2:93:
#                    90:63:97:f3:a7:a7:12:b2:09:22:07:33:d9:91:cd:
#                    0e:9c:1f:0e:20:c7:ee:bb:33:8d:8f:c2:d2:58:a7:
#                    5f:fd:65:37:e2:88:c2:d8:8f:86:75:5e:f9:2d:a7:
#                    87:33:f2:78:37:2f:8b:bc:1d:86:37:39:b1:94:f2:
#                    d8:bc:4a:9c:83:18:5a:06:fc:f3:d4:d4:ba:8c:15:
#                    09:25:f0:f9:b6:8d:04:7e:17:12:33:6b:57:48:4c:
#                    4f:db:26:1e:eb:cc:90:e7:8b:f9:68:7c:70:0f:a3:
#                    2a:d0:3a:38:df:37:97:e2:5b:de:80:61:d3:80:d8:
#                    91:83:42:5a:4c:04:89:68:11:3c:ac:5f:68:80:41:
#                    cc:60:42:ce:0d:5a:2a:0c:0f:9b:30:c0:a6:f0:86:
#                    db:ab:49:d7:97:6d:48:8b:f9:03:c0:52:67:9b:12:
#                    f7:c2:f2:2e:98:65:42:d9:d6:9a:e3:d0:19:31:0c:
#                    ad:87:d5:57:02:7a:30:e8:86:26:fb:8f:23:8a:54:
#                    87:e4:bf:3c:ee:eb:c3:75:48:5f:1e:39:6f:81:62:
#                    6c:c5:2d:c4:17:54:19:b7:37:8d:9c:37:91:c8:f6:
#                    0b:d5:ea:63:6f:83:ac:38:c2:f3:3f:de:9a:fb:e1:
#                    23:61:f0:c8:26:cb:36:c8:a1:f3:30:8f:a4:a3:a2:
#                    a1:dd:53:b3:de:f0:9a:32:1f:83:91:79:30:c1:a9:
#                    1f:53:9b:53:a2:15:53:3f:dd:9d:b3:10:3b:48:7d:
#                    89:0f:fc:ed:03:f5:fb:25:64:75:0e:17:19:0d:8f:
#                    00:16:67:79:7a:40:fc:2d:59:07:d9:90:fa:9a:ad:
#                    3d:dc:80:8a:e6:5c:35:a2:67:4c:11:6b:b1:f8:80:
#                    64:00:2d:6f:22:61:c5:ac:4b:26:e5:5a:10:82:9b:
#                    a4:83:7b:34:f7:9e:89:91:20:97:8e:b7:42:c7:66:
#                    c3:d0:e9:a4:d6:f5:20:8d:c4:c3:95:ac:44:0a:9d:
#                    5b:73:3c:26:3d:2f:4a:be:a7:c9:a7:10:1e:fb:9f:
#                    50:69:f3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                D1:09:D0:E9:D7:CE:79:74:54:F9:3A:30:B3:F4:6D:2C:03:03:1B:68
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.certicamara.com/dpc/
#                  User Notice:
#                    Explicit Text: Limitaciones de garant�as de este certificado se pueden encontrar en la DPC.
#
#    Signature Algorithm: sha1WithRSAEncryption
#         5c:94:b5:b8:45:91:4d:8e:61:1f:03:28:0f:53:7c:e6:a4:59:
#         a9:b3:8a:7a:c5:b0:ff:08:7c:2c:a3:71:1c:21:13:67:a1:95:
#         12:40:35:83:83:8f:74:db:33:5c:f0:49:76:0a:81:52:dd:49:
#         d4:9a:32:33:ef:9b:a7:cb:75:e5:7a:cb:97:12:90:5c:ba:7b:
#         c5:9b:df:bb:39:23:c8:ff:98:ce:0a:4d:22:01:48:07:7e:8a:
#         c0:d5:20:42:94:44:ef:bf:77:a2:89:67:48:1b:40:03:05:a1:
#         89:ec:cf:62:e3:3d:25:76:66:bf:26:b7:bb:22:be:6f:ff:39:
#         57:74:ba:7a:c9:01:95:c1:95:51:e8:ab:2c:f8:b1:86:20:e9:
#         3f:cb:35:5b:d2:17:e9:2a:fe:83:13:17:40:ee:88:62:65:5b:
#         d5:3b:60:e9:7b:3c:b8:c9:d5:7f:36:02:25:aa:68:c2:31:15:
#         b7:30:65:eb:7f:1d:48:79:b1:cf:39:e2:42:80:16:d3:f5:93:
#         23:fc:4c:97:c9:5a:37:6c:7c:22:d8:4a:cd:d2:8e:36:83:39:
#         91:90:10:c8:f1:c9:35:7e:3f:b8:d3:81:c6:20:64:1a:b6:50:
#         c2:21:a4:78:dc:d0:2f:3b:64:93:74:f0:96:90:f1:ef:fb:09:
#         5a:34:40:96:f0:36:12:c1:a3:74:8c:93:7e:41:de:77:8b:ec:
#         86:d9:d2:0f:3f:2d:d1:cc:40:a2:89:66:48:1e:20:b3:9c:23:
#         59:73:a9:44:73:bc:24:79:90:56:37:b3:c6:29:7e:a3:0f:f1:
#         29:39:ef:7e:5c:28:32:70:35:ac:da:b8:c8:75:66:fc:9b:4c:
#         39:47:8e:1b:6f:9b:4d:02:54:22:33:ef:61:ba:9e:29:84:ef:
#         4e:4b:33:47:76:97:6a:cb:7e:5f:fd:15:a6:9e:42:43:5b:66:
#         5a:8a:88:0d:f7:16:b9:3f:51:65:2b:66:6a:8b:d1:38:52:a2:
#         d6:46:11:fa:fc:9a:1c:74:9e:8f:97:0b:02:4f:64:c6:f5:68:
#         d3:4b:2d:ff:a4:37:1e:8b:3f:bf:44:be:61:46:a1:84:3d:08:
#         27:4c:81:20:77:89:08:ea:67:40:5e:6c:08:51:5f:34:5a:8c:
#         96:68:cd:d7:f7:89:c2:1c:d3:32:00:af:52:cb:d3:60:5b:2a:
#         3a:47:7e:6b:30:33:a1:62:29:7f:4a:b9:e1:2d:e7:14:23:0e:
#         0e:18:47:e1:79:fc:15:55:d0:b1:fc:25:71:63:75:33:1c:23:
#         2b:af:5c:d9:ed:47:77:60:0e:3b:0f:1e:d2:c0:dc:64:05:89:
#         fc:78:d6:5c:2c:26:43:a9

[p11-kit-object-v1]
label: "ANCERT Certificados CGN"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkHU/PwysytR8xEinGLs6
u6G71XvfixnkgkT7Zey2EmE+aSIZYjUkttUQBqlFaiQq9SeMeDzIufMFbMUCA9JO
gGTshqt4lCICALVom9TlVV/gyIAw5wu/a9cEjk55mHBMHCa5s6jq8BGiuYpTAiZ1
Eonh+4hOWXoA0YLYFq7ltryVJWBAdyUbnu+N5P3wTzMxJb/uegpU8JA4ZxJ7pWDa
DAGJmnaHLvUbQ3vl5yZK+xViq0Ube9UKpU1sTaufKEiE4YN1uBhwVVPb0N8pkK85
xheVwZTFXtllX13/bhaVmCGfXk3wzTE5IQMXDZEfoVWZQexVybs9mVybxX/RHF7q
UwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados CGN"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            44:74:ec:c8:6c:72:1e:58:dd:b8:2c:7e:f4:fc:95
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, O=Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN=ANCERT Certificados CGN
#        Validity
#            Not Before: Feb 11 17:27:12 2004 GMT
#            Not After : Feb 11 17:27:12 2024 GMT
#        Subject: C=ES, O=Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN=ANCERT Certificados CGN
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:90:75:3f:3f:0c:ac:ca:d4:7c:c4:48:a7:18:bb:
#                    3a:bb:a1:bb:d5:7b:df:8b:19:e4:82:44:fb:65:ec:
#                    b6:12:61:3e:69:22:19:62:35:24:b6:d5:10:06:a9:
#                    45:6a:24:2a:f5:27:8c:78:3c:c8:b9:f3:05:6c:c5:
#                    02:03:d2:4e:80:64:ec:86:ab:78:94:22:02:00:b5:
#                    68:9b:d4:e5:55:5f:e0:c8:80:30:e7:0b:bf:6b:d7:
#                    04:8e:4e:79:98:70:4c:1c:26:b9:b3:a8:ea:f0:11:
#                    a2:b9:8a:53:02:26:75:12:89:e1:fb:88:4e:59:7a:
#                    00:d1:82:d8:16:ae:e5:b6:bc:95:25:60:40:77:25:
#                    1b:9e:ef:8d:e4:fd:f0:4f:33:31:25:bf:ee:7a:0a:
#                    54:f0:90:38:67:12:7b:a5:60:da:0c:01:89:9a:76:
#                    87:2e:f5:1b:43:7b:e5:e7:26:4a:fb:15:62:ab:45:
#                    1b:7b:d5:0a:a5:4d:6c:4d:ab:9f:28:48:84:e1:83:
#                    75:b8:18:70:55:53:db:d0:df:29:90:af:39:c6:17:
#                    95:c1:94:c5:5e:d9:65:5f:5d:ff:6e:16:95:98:21:
#                    9f:5e:4d:f0:cd:31:39:21:03:17:0d:91:1f:a1:55:
#                    99:41:ec:55:c9:bb:3d:99:5c:9b:c5:7f:d1:1c:5e:
#                    ea:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.4
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: Agencia Notarial de Certificacion. La declaracion de practicas de certifiacion que rige el funcionamiento de la presente autoridad se encuentra disponible en http://www.ancert.com/cps
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:ancert@ancert.com
#            X509v3 Authority Key Identifier: 
#                keyid:EC:57:9F:C8:76:22:6F:CC:3A:AE:5B:F0:2D:A1:62:58:D1:8D:02:CC
#
#            X509v3 Subject Key Identifier: 
#                EC:57:9F:C8:76:22:6F:CC:3A:AE:5B:F0:2D:A1:62:58:D1:8D:02:CC
#    Signature Algorithm: sha1WithRSAEncryption
#         8b:3d:df:dc:36:2c:7f:27:9c:fc:b5:58:53:71:0a:12:5d:10:
#         64:51:71:b5:4a:56:f4:5e:44:67:1e:ef:1d:b2:f1:a4:51:3c:
#         67:6c:2c:65:96:7a:a1:12:a3:af:0b:08:37:0e:99:d6:6e:28:
#         87:0b:62:ab:4e:78:4e:72:81:9b:df:11:4f:89:60:c8:51:a6:
#         1b:06:09:71:73:7c:37:b7:1c:38:37:9a:f9:87:e1:ef:a1:ee:
#         7f:d7:c0:ea:39:14:fa:7c:6f:0b:f9:86:ca:e6:c5:77:69:a0:
#         9f:8d:29:a3:77:6e:c5:cc:da:f6:dd:06:7a:d3:69:66:3e:60:
#         3b:e3:32:df:ae:f0:1b:9e:2a:9d:cc:84:df:1a:10:47:ed:a5:
#         56:96:42:37:b5:2d:72:0d:41:12:93:ba:32:88:44:c8:ae:09:
#         c4:bd:80:ed:fd:60:0f:72:b2:b6:64:f6:63:20:32:70:77:87:
#         2e:33:2e:9f:35:c8:5f:a8:92:56:b7:ff:24:3a:2c:5d:f2:26:
#         05:68:19:f2:51:67:cf:df:52:09:e9:82:04:7a:6b:82:a7:7f:
#         e5:d2:a9:74:6b:18:26:c8:ba:d4:d5:1e:a5:4b:3b:26:c1:9d:
#         22:e1:fb:12:bd:d5:62:46:d5:d7:5d:d2:dd:c3:fc:61:0d:30:
#         05:4f:05:8b

[p11-kit-object-v1]
label: "ANCERT Certificados CGN V2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados CGN V2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0f:38:8c:70:fe:a6:95:5d:e9:5d:9c:87:af:79:04:99
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES, O=Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN=ANCERT Certificados CGN V2
#        Validity
#            Not Before: May 25 16:31:22 2010 GMT
#            Not After : May 25 16:31:23 2030 GMT
#        Subject: C=ES, O=Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN=ANCERT Certificados CGN V2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9d:52:70:e9:27:18:83:ca:ea:c4:99:d8:a6:e1:
#                    2e:14:af:6e:1e:0e:64:ca:81:37:55:27:1c:17:77:
#                    58:67:1f:8c:c9:f9:c2:8a:62:65:28:74:9b:e2:d1:
#                    be:55:07:76:76:ee:7c:6d:4e:63:5b:1e:4a:25:75:
#                    e0:07:a1:d0:d2:82:a7:ce:0f:33:eb:ba:14:c0:65:
#                    b2:4a:2e:e5:65:bc:22:d2:af:1a:0e:ca:cb:f3:64:
#                    65:2b:2c:99:a3:97:8b:8b:75:30:fe:66:fa:c1:4f:
#                    4b:37:50:8c:3f:f3:de:99:7a:4e:87:9c:20:46:72:
#                    97:fe:56:1b:66:4e:a0:82:53:a3:5c:d8:28:46:0c:
#                    05:17:6f:38:d6:5c:9f:0e:25:22:c1:86:e3:5c:1a:
#                    54:db:ae:9d:65:7d:00:92:df:a8:21:21:c5:5b:10:
#                    26:74:e1:b1:73:57:64:7c:7d:17:03:0c:ea:f7:14:
#                    97:0f:f9:c5:ee:5d:75:b0:c5:c6:0a:0b:b4:3e:49:
#                    e3:19:c6:9b:44:93:fc:5a:15:64:0a:b2:83:ff:80:
#                    5e:88:09:d0:ca:20:a3:5b:fb:db:cd:e1:1a:77:23:
#                    18:70:1a:8b:ed:44:3f:d6:1a:a8:36:38:e1:9d:2f:
#                    a7:77:c4:7a:b3:c0:72:b2:72:cd:1e:3f:10:5e:1a:
#                    88:74:8d:f0:12:c5:f7:af:49:dc:95:af:2b:4d:b4:
#                    90:ca:f9:ee:ef:0c:e3:bf:16:37:23:53:e3:29:fa:
#                    f4:74:69:68:3d:57:6d:14:60:8a:64:69:28:64:4d:
#                    fa:36:47:fd:b8:12:ce:c3:86:aa:5c:dc:66:39:07:
#                    4f:3b:e3:e3:c5:68:ae:ce:e0:39:5c:20:83:3f:12:
#                    0a:38:b3:00:c1:5c:13:97:22:5e:3a:4b:35:99:f8:
#                    c4:1e:de:f9:88:11:8e:84:c9:8b:32:f2:d2:d7:bf:
#                    22:07:3f:60:78:2e:75:1c:a2:ba:23:12:d3:f0:4f:
#                    50:39:ec:c9:77:27:c7:5a:2a:8e:d3:b9:b5:74:04:
#                    99:15:2f:2e:86:5f:8f:06:c1:ca:ea:e2:a8:1f:4d:
#                    7d:33:84:91:a4:92:c3:d0:a6:48:5d:66:1a:77:84:
#                    20:50:9c:ea:04:0b:0c:23:96:cf:b1:9c:fc:b9:ba:
#                    1f:97:a8:d3:ab:03:65:2f:7d:ae:54:c7:79:e2:1c:
#                    36:dd:6d:d2:06:98:01:fd:ce:fc:3f:4b:c3:d2:ae:
#                    ff:89:d8:39:31:03:d8:b1:64:77:03:c6:f8:a3:8d:
#                    fc:2a:79:e7:10:bd:b9:6d:91:1c:3e:9d:cb:bc:55:
#                    7f:22:fe:61:84:f8:d8:d4:a7:21:7a:39:5e:72:32:
#                    eb:4c:75
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.4
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: 
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                05:6E:E1:A1:9A:EE:07:AF:CE:F5:B4:D3:65:3D:04:50:E2:D0:9B:44
#            X509v3 Authority Key Identifier: 
#                keyid:05:6E:E1:A1:9A:EE:07:AF:CE:F5:B4:D3:65:3D:04:50:E2:D0:9B:44
#
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:54:40:19:24:ca:4c:13:f6:13:f9:5c:62:95:30:d5:b8:e0:
#         93:80:6c:d4:15:46:d4:27:3e:92:52:aa:dc:81:63:86:40:db:
#         d5:25:af:9f:93:6c:0a:f5:4d:a1:fe:54:96:5d:87:af:11:93:
#         0f:8b:f2:e3:f0:1f:4a:9f:fc:a9:d1:c9:50:77:5f:98:08:08:
#         2d:7a:8b:81:10:cc:3b:02:54:58:e5:c6:a7:f4:f7:ca:e8:f6:
#         37:06:7e:e7:11:d7:6c:85:63:f7:a8:a3:0e:e2:25:62:04:a4:
#         f2:62:53:9c:47:b4:a7:64:bb:81:e5:d6:5e:56:11:be:45:11:
#         61:c2:66:e9:f4:0d:74:a8:ab:f9:5b:bf:82:b2:91:a6:50:fb:
#         87:7e:6f:bb:c8:eb:05:a2:b9:10:d7:1b:42:07:55:cf:89:e6:
#         bf:fb:b9:f0:6a:39:57:53:70:8c:bd:4b:a3:69:bf:1f:8b:a6:
#         5c:4d:65:8a:b9:00:09:e8:68:bf:09:27:07:4d:5e:da:52:09:
#         8c:e5:71:93:8a:cc:85:8e:d2:37:5e:53:dc:82:6d:0b:56:4a:
#         84:79:0a:f4:10:25:44:f5:6f:5d:1a:66:b5:cd:d5:10:4b:87:
#         5a:4e:d4:7f:e4:71:ac:ee:68:9f:bc:fa:2e:58:c1:c4:9e:7f:
#         a4:59:85:e0:52:0e:f2:c7:47:75:15:2d:2c:76:8c:0f:45:05:
#         35:60:f8:7b:3b:77:32:7f:28:80:09:da:31:bc:71:7d:e1:ac:
#         91:cd:60:0a:79:20:ec:6e:3b:b7:84:e0:72:f3:a9:4a:d0:2f:
#         e4:5b:e3:d2:1a:d4:4a:bc:f5:76:f9:7f:2a:19:48:eb:dd:0e:
#         cf:99:56:45:b8:7d:d6:09:8e:0e:ce:b3:84:68:49:84:54:35:
#         4b:e4:99:1b:af:f3:a8:14:f3:54:98:0a:80:7e:4f:bc:f2:66:
#         2d:26:ff:30:8d:a7:f6:bd:db:9a:8f:e5:e1:df:bb:b7:32:0e:
#         f9:92:6f:69:e3:e4:76:d3:00:36:f1:2d:5e:c7:13:5f:d5:d9:
#         6a:2d:e8:d1:1b:6b:76:cb:18:6e:0e:05:10:f5:5a:f2:49:1b:
#         59:b4:85:ea:ca:19:74:cc:bb:52:e2:37:8c:c2:6a:02:25:c2:
#         d2:71:a4:92:db:8e:c9:d6:a9:6e:d0:85:28:6d:5c:6d:08:78:
#         02:b0:79:0c:57:6f:0b:5a:01:e3:84:84:02:f6:cf:f2:ab:63:
#         eb:02:6a:b9:cb:4a:18:d5:39:22:3c:56:4a:aa:95:88:e6:30:
#         00:1f:8d:21:21:c9:57:ee:b9:b7:44:29:88:4f:b6:2b:a7:14:
#         ee:8e:ee:6f:be:16:d0:13

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8JEP0GctKbJjTR81efZl
a7nz87VYkydkT6fVW4IFcpt/Ha4I0ozQ0clgsJkZNdYZxgA5aX0i73Qig7R+6hCL
PjMc4d1kNinzUkpuQcO+UQwfY7i/jak/MTE7u/E2RDwnZRR5deYQpDxYG8tTYhL1
h1pGonmjYOMWqN6EpvrlzMQQMvZC2kdNGD3meg8rDmP/Z31D1XQWkDS0D84mcyHB
Stpk5E/jI7XZ9qu3Sn+W4ctH/QZD0ZQ0aQr+PehmqiYM1WM5BnCTrXyz5EfBO0eO
aZcMkaBMB4/JgEyucJNoj6HDIsLxdZsofZKSVTqoWRnsEjEc750X3LlACVv0LRMm
cwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            f4:cf:89:ea:dd:a4:c6:3e:91:ad:48:0e:2d:22:36:84
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, O=Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN=ANCERT Certificados Notariales
#        Validity
#            Not Before: Feb 11 15:58:30 2004 GMT
#            Not After : Feb 11 15:58:26 2024 GMT
#        Subject: C=ES, O=Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN=ANCERT Certificados Notariales
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:f0:91:0f:d0:67:2d:29:b2:63:4d:1f:35:79:f6:
#                    65:6b:b9:f3:f3:b5:58:93:27:64:4f:a7:d5:5b:82:
#                    05:72:9b:7f:1d:ae:08:d2:8c:d0:d1:c9:60:b0:99:
#                    19:35:d6:19:c6:00:39:69:7d:22:ef:74:22:83:b4:
#                    7e:ea:10:8b:3e:33:1c:e1:dd:64:36:29:f3:52:4a:
#                    6e:41:c3:be:51:0c:1f:63:b8:bf:8d:a9:3f:31:31:
#                    3b:bb:f1:36:44:3c:27:65:14:79:75:e6:10:a4:3c:
#                    58:1b:cb:53:62:12:f5:87:5a:46:a2:79:a3:60:e3:
#                    16:a8:de:84:a6:fa:e5:cc:c4:10:32:f6:42:da:47:
#                    4d:18:3d:e6:7a:0f:2b:0e:63:ff:67:7d:43:d5:74:
#                    16:90:34:b4:0f:ce:26:73:21:c1:4a:da:64:e4:4f:
#                    e3:23:b5:d9:f6:ab:b7:4a:7f:96:e1:cb:47:fd:06:
#                    43:d1:94:34:69:0a:fe:3d:e8:66:aa:26:0c:d5:63:
#                    39:06:70:93:ad:7c:b3:e4:47:c1:3b:47:8e:69:97:
#                    0c:91:a0:4c:07:8f:c9:80:4c:ae:70:93:68:8f:a1:
#                    c3:22:c2:f1:75:9b:28:7d:92:92:55:3a:a8:59:19:
#                    ec:12:31:1c:ef:9d:17:dc:b9:40:09:5b:f4:2d:13:
#                    26:73
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:ancert@ancert.com
#            X509v3 Authority Key Identifier: 
#                keyid:84:F7:FA:72:5E:88:64:66:1D:28:8C:B0:77:BD:0C:6A:9F:4C:4D:62
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.1
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: Agencia Notarial de Certificacion. La declaracion de practicas de certifiacion que rige el funcionamiento de la presente autoridad se encuentra disponible en http://www.ancert.com/cps
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                84:F7:FA:72:5E:88:64:66:1D:28:8C:B0:77:BD:0C:6A:9F:4C:4D:62
#    Signature Algorithm: sha1WithRSAEncryption
#         2f:f8:e5:d8:33:a5:c2:94:6e:5e:c0:f1:ee:a1:4c:0a:ad:86:
#         0f:c0:33:dd:9e:d2:d9:9b:ee:c5:2b:85:29:76:ac:a5:12:53:
#         93:1d:aa:07:ec:e9:39:64:0b:68:f0:75:24:e9:d1:86:8c:9c:
#         53:6a:eb:15:a1:09:b7:19:07:b9:9d:8f:02:b2:1b:49:70:c2:
#         63:74:dd:0b:aa:fe:07:c6:37:56:c6:83:fe:c0:4f:1c:cc:38:
#         aa:fd:ee:55:98:89:5c:c2:53:ad:20:87:ba:16:64:52:61:ec:
#         c1:9f:bb:d4:62:d1:2a:c8:5d:f0:2b:f8:da:12:ce:23:cb:b1:
#         cc:c1:d2:0a:bd:fc:c0:80:4e:55:49:fa:89:d8:64:a3:4a:ca:
#         ee:8b:d7:e5:ed:92:fb:60:e2:e2:2a:cf:2d:28:3e:a6:ff:80:
#         9c:65:cc:12:9e:a5:1c:74:59:90:a5:87:7f:67:15:80:10:c0:
#         a1:d1:a8:30:ec:a1:02:91:8a:5a:d3:23:17:93:5a:47:21:79:
#         ea:33:7a:0f:7f:38:35:9a:ca:56:b8:bf:64:ba:a7:b0:b5:51:
#         1d:16:9e:8e:89:7d:38:3a:cb:84:4d:07:98:d8:e5:e1:8c:05:
#         6a:a5:37:0c:d6:79:29:3e:f1:42:c4:b6:f7:ea:19:a0:61:e0:
#         02:4e:bf:12

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales V2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Certificados Notariales V2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIHEjCCBPqgAwIBAgIQCb1WBSoTFvRoT3QOqX0cSDANBgkqhkiG9w0BAQsFADB8
MQswCQYDVQQGEwJFUzFBMD8GA1UEChM4QWdlbmNpYSBOb3RhcmlhbCBkZSBDZXJ0
aWZpY2FjaW9uIFMuTC5VLiAtIENJRiBCODMzOTU5ODgxKjAoBgNVBAMTIUFOQ0VS
VCBDZXJ0aWZpY2Fkb3MgTm90YXJpYWxlcyBWMjAeFw0xMDA1MjUxNjU2MTRaFw0z
MDA1MjUxNjU2MTRaMHwxCzAJBgNVBAYTAkVTMUEwPwYDVQQKEzhBZ2VuY2lhIE5v
dGFyaWFsIGRlIENlcnRpZmljYWNpb24gUy5MLlUuIC0gQ0lGIEI4MzM5NTk4ODEq
MCgGA1UEAxMhQU5DRVJUIENlcnRpZmljYWRvcyBOb3RhcmlhbGVzIFYyMIICIjAN
BgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAsua5xh1qKi1Jxfz81GRA0OAULveg
wv+S80GmtD/avhkUkZR20xXMXn94UHrb2sVFqsscI3lzkKi7ZwFzjs5A+Rqpqofk
k5IPXGhcXvAGYCtY3DxtPMd6MGsFqpKGcyrS8hqIxNvlWmaOdclCP5uIKEAe9alc
HvrIQaEwqwuc7haiwS2lhfrtoAzof5ZKe72PmqIYdtKv3bc9EKtSEIiuHeu4MnSW
9LeqJ/elBw3jlFdqVCB3zR28eS3knLTeUYj+VtY9i6HP+lIejAVzd9YFz2MAUYdh
41C+mZfh/B4ReWtOas+chQoclirAIDYUxQkXYjv0rerV1/3QOSp409Ciz8hzMAlH
xU4Z/bgw1A+AmIiGwUxBeiPFQ/1eErg+D7G3gWIMfm/je5rCwkcRIR/PntEwzoPB
EE1Ad9e1wksyQEL6m7Csz+sh2BnrZMVr3VUtgIdEfEw8qw3YEr80goyxqsS4a+gO
RnfSiwYdQvusvcnnM7Mib37VLgPFXwUWhnzt457RFncaRtjJ0IzkXFwhBZHxZOSs
xTeutb1nE64p5bNCxHAJo11M6zcg4/D1czM7wvyOUYU2KsuB2w6JI9ni4Wi6LER3
PhxAuvBnjhiH8D3X6T9HWzVCzacEzkhyKQUatNGi5w15ipZtZ1ItOyPm+YKc1rN5
XhTeZUgz/B1C6C0CAwEAAaOCAY4wggGKMA8GA1UdEwEB/wQFMAMBAf8wggElBgNV
HSAEggEcMIIBGDCCARQGCSsGAQQBgZNoATCCAQUwJQYIKwYBBQUHAgEWGWh0dHA6
Ly93d3cuYW5jZXJ0LmNvbS9jcHMwgdsGCCsGAQUFBwICMIHOMA0WBkFOQ0VSVDAD
AgEBHoG8AEEAZwBlAG4AYwBpAGEAIABOAG8AdABhAHIAaQBhAGwAIABkAGUAIABD
AGUAcgB0AGkAZgBpAGMAYQBjAGkAbwBuAC4AIABQAGEAcwBlAG8AIABkAGUAbACg
AEcAZQBuAGUAcgBhAGwAIABNAGEAcgB0AGkAbgBlAHoAIABDAGEAbQBwAG8AcwAg
ADQANgAgADYAYQAgAHAAbABhAG4AdABhACAAMgA4ADAAMQAwACAATQBhAGQAcgBp
AGQwDgYDVR0PAQH/BAQDAgGGMB0GA1UdDgQWBBT2Ejqre1jBjUNvdoHS8rjT7xfq
CzAfBgNVHSMEGDAWgBT2Ejqre1jBjUNvdoHS8rjT7xfqCzANBgkqhkiG9w0BAQsF
AAOCAgEAVDXTomXJ2TbFU9G0jXI0ibqnCJ/pNRC5uAwG+WSqlZYoqMijgNxWwL9y
TVa/f10E1a0oW02988MPFbBx2laNQFVXpn1ioq0TaVGqlFC6vQAwUPXdpE4JepQx
a9tzA73z2hoPjC+yyTe8VNULIzf15Fs3ZolPtMcFpGXcWTCmEyt+Fe3sEBeJUsmd
36JM7fYPHqZJsA1RszGxUZnLtNEjeNJLqLQdFqag0D4HfmU/Jc5kThsuS02ChRpl
2+7iA/BZJAWPme95gt/uKjdow2pQAVlfn2jcLFFgK13gUjw7cLgA0zeoPlsedgha
1Lt2MK75yPKOpI8KdX0amOG/0DaULzzBUtNp6hpgN4yA201txppdjaBhUbs9DeYS
oJ9vWVZ0MmcK/DcGwTrkK46EH9ohDEmIQ9Ol9YINdobDLMyQu7O4q8bLrsAXUZ7T
gPck2hzszhKDzk42MDl1+HR2kIKePkBMDBS5Gh5IarAx6oh/gEFAU3s4S4eQYHpL
zmdGaHV3jgBdILDkkzdtA99YOeiaxaTr7GEzCIUka08G6a2QpTZibOPdfQkfM7+3
u/fJdQX3W6v6h1mvGmcQfoTcjHDWROkQwdibLtHGQGrq5loPEH1s+1WHuk21cQOe
F4942lU9V14iCmqY8I0Izd2WQlobzbpvJ7h0J6g/5aDWc8deLyE=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            09:bd:56:05:2a:13:16:f4:68:4f:74:0e:a9:7d:1c:48
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES, O=Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN=ANCERT Certificados Notariales V2
#        Validity
#            Not Before: May 25 16:56:14 2010 GMT
#            Not After : May 25 16:56:14 2030 GMT
#        Subject: C=ES, O=Agencia Notarial de Certificacion S.L.U. - CIF B83395988, CN=ANCERT Certificados Notariales V2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b2:e6:b9:c6:1d:6a:2a:2d:49:c5:fc:fc:d4:64:
#                    40:d0:e0:14:2e:f7:a0:c2:ff:92:f3:41:a6:b4:3f:
#                    da:be:19:14:91:94:76:d3:15:cc:5e:7f:78:50:7a:
#                    db:da:c5:45:aa:cb:1c:23:79:73:90:a8:bb:67:01:
#                    73:8e:ce:40:f9:1a:a9:aa:87:e4:93:92:0f:5c:68:
#                    5c:5e:f0:06:60:2b:58:dc:3c:6d:3c:c7:7a:30:6b:
#                    05:aa:92:86:73:2a:d2:f2:1a:88:c4:db:e5:5a:66:
#                    8e:75:c9:42:3f:9b:88:28:40:1e:f5:a9:5c:1e:fa:
#                    c8:41:a1:30:ab:0b:9c:ee:16:a2:c1:2d:a5:85:fa:
#                    ed:a0:0c:e8:7f:96:4a:7b:bd:8f:9a:a2:18:76:d2:
#                    af:dd:b7:3d:10:ab:52:10:88:ae:1d:eb:b8:32:74:
#                    96:f4:b7:aa:27:f7:a5:07:0d:e3:94:57:6a:54:20:
#                    77:cd:1d:bc:79:2d:e4:9c:b4:de:51:88:fe:56:d6:
#                    3d:8b:a1:cf:fa:52:1e:8c:05:73:77:d6:05:cf:63:
#                    00:51:87:61:e3:50:be:99:97:e1:fc:1e:11:79:6b:
#                    4e:6a:cf:9c:85:0a:1c:96:2a:c0:20:36:14:c5:09:
#                    17:62:3b:f4:ad:ea:d5:d7:fd:d0:39:2a:78:d3:d0:
#                    a2:cf:c8:73:30:09:47:c5:4e:19:fd:b8:30:d4:0f:
#                    80:98:88:86:c1:4c:41:7a:23:c5:43:fd:5e:12:b8:
#                    3e:0f:b1:b7:81:62:0c:7e:6f:e3:7b:9a:c2:c2:47:
#                    11:21:1f:cf:9e:d1:30:ce:83:c1:10:4d:40:77:d7:
#                    b5:c2:4b:32:40:42:fa:9b:b0:ac:cf:eb:21:d8:19:
#                    eb:64:c5:6b:dd:55:2d:80:87:44:7c:4c:3c:ab:0d:
#                    d8:12:bf:34:82:8c:b1:aa:c4:b8:6b:e8:0e:46:77:
#                    d2:8b:06:1d:42:fb:ac:bd:c9:e7:33:b3:22:6f:7e:
#                    d5:2e:03:c5:5f:05:16:86:7c:ed:e3:9e:d1:16:77:
#                    1a:46:d8:c9:d0:8c:e4:5c:5c:21:05:91:f1:64:e4:
#                    ac:c5:37:ae:b5:bd:67:13:ae:29:e5:b3:42:c4:70:
#                    09:a3:5d:4c:eb:37:20:e3:f0:f5:73:33:3b:c2:fc:
#                    8e:51:85:36:2a:cb:81:db:0e:89:23:d9:e2:e1:68:
#                    ba:2c:44:77:3e:1c:40:ba:f0:67:8e:18:87:f0:3d:
#                    d7:e9:3f:47:5b:35:42:cd:a7:04:ce:48:72:29:05:
#                    1a:b4:d1:a2:e7:0d:79:8a:96:6d:67:52:2d:3b:23:
#                    e6:f9:82:9c:d6:b3:79:5e:14:de:65:48:33:fc:1d:
#                    42:e8:2d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.1
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: 
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F6:12:3A:AB:7B:58:C1:8D:43:6F:76:81:D2:F2:B8:D3:EF:17:EA:0B
#            X509v3 Authority Key Identifier: 
#                keyid:F6:12:3A:AB:7B:58:C1:8D:43:6F:76:81:D2:F2:B8:D3:EF:17:EA:0B
#
#    Signature Algorithm: sha256WithRSAEncryption
#         54:35:d3:a2:65:c9:d9:36:c5:53:d1:b4:8d:72:34:89:ba:a7:
#         08:9f:e9:35:10:b9:b8:0c:06:f9:64:aa:95:96:28:a8:c8:a3:
#         80:dc:56:c0:bf:72:4d:56:bf:7f:5d:04:d5:ad:28:5b:4d:bd:
#         f3:c3:0f:15:b0:71:da:56:8d:40:55:57:a6:7d:62:a2:ad:13:
#         69:51:aa:94:50:ba:bd:00:30:50:f5:dd:a4:4e:09:7a:94:31:
#         6b:db:73:03:bd:f3:da:1a:0f:8c:2f:b2:c9:37:bc:54:d5:0b:
#         23:37:f5:e4:5b:37:66:89:4f:b4:c7:05:a4:65:dc:59:30:a6:
#         13:2b:7e:15:ed:ec:10:17:89:52:c9:9d:df:a2:4c:ed:f6:0f:
#         1e:a6:49:b0:0d:51:b3:31:b1:51:99:cb:b4:d1:23:78:d2:4b:
#         a8:b4:1d:16:a6:a0:d0:3e:07:7e:65:3f:25:ce:64:4e:1b:2e:
#         4b:4d:82:85:1a:65:db:ee:e2:03:f0:59:24:05:8f:99:ef:79:
#         82:df:ee:2a:37:68:c3:6a:50:01:59:5f:9f:68:dc:2c:51:60:
#         2b:5d:e0:52:3c:3b:70:b8:00:d3:37:a8:3e:5b:1e:76:08:5a:
#         d4:bb:76:30:ae:f9:c8:f2:8e:a4:8f:0a:75:7d:1a:98:e1:bf:
#         d0:36:94:2f:3c:c1:52:d3:69:ea:1a:60:37:8c:80:db:4d:6d:
#         c6:9a:5d:8d:a0:61:51:bb:3d:0d:e6:12:a0:9f:6f:59:56:74:
#         32:67:0a:fc:37:06:c1:3a:e4:2b:8e:84:1f:da:21:0c:49:88:
#         43:d3:a5:f5:82:0d:76:86:c3:2c:cc:90:bb:b3:b8:ab:c6:cb:
#         ae:c0:17:51:9e:d3:80:f7:24:da:1c:ec:ce:12:83:ce:4e:36:
#         30:39:75:f8:74:76:90:82:9e:3e:40:4c:0c:14:b9:1a:1e:48:
#         6a:b0:31:ea:88:7f:80:41:40:53:7b:38:4b:87:90:60:7a:4b:
#         ce:67:46:68:75:77:8e:00:5d:20:b0:e4:93:37:6d:03:df:58:
#         39:e8:9a:c5:a4:eb:ec:61:33:08:85:24:6b:4f:06:e9:ad:90:
#         a5:36:62:6c:e3:dd:7d:09:1f:33:bf:b7:bb:f7:c9:75:05:f7:
#         5b:ab:fa:87:59:af:1a:67:10:7e:84:dc:8c:70:d6:44:e9:10:
#         c1:d8:9b:2e:d1:c6:40:6a:ea:e6:5a:0f:10:7d:6c:fb:55:87:
#         ba:4d:b5:71:03:9e:17:8f:78:da:55:3d:57:5e:22:0a:6a:98:
#         f0:8d:08:cd:dd:96:42:5a:1b:cd:ba:6f:27:b8:74:27:a8:3f:
#         e5:a0:d6:73:c7:5e:2f:21

[p11-kit-object-v1]
label: "ANCERT Corporaciones de Derecho Publico"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoiGVh9yK69Z6kKhoNf0X
/HQ6VBCSNZNCdS7YPsuplKG+ajc/Urqke9qEmRZ5TgBo1B8T6UY7PEqdgzrYIe/C
8kBF4Q9gRQTt/IoYLvk95KQRMiCOOrfulkAVGpnpIZ1yrM0fia6q2aFAsKhnvvx6
DkexXrz4MGqON58FQuwsw6Ybi6vEUD365HP1IbC4VV+H4KJHOC9AX09sq5QkVuNM
j36Q6SeCKJuYuprWtZtXb2sVHPm7cCl9PPcTqNFx8bD+iEVxqaV0ZcvD+fUDDxDD
hjAAbsHAJqKI/iHHMj27xnsbt5uKs/qxfHHZAadCkKovmJCEqt7Grew8UUoFHQFR
mwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANCERT Corporaciones de Derecho Publico"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3f:b2:e5:f2:d1:7c:8b:18:64:56:62:a9:39:81:7f:a7
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, O=Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN=ANCERT Corporaciones de Derecho Publico
#        Validity
#            Not Before: Feb 11 17:22:45 2004 GMT
#            Not After : Feb 11 17:22:45 2024 GMT
#        Subject: C=ES, O=Agencia Notarial de Certificacion S.L. Unipersonal - CIF B83395988, CN=ANCERT Corporaciones de Derecho Publico
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a2:21:95:87:dc:8a:eb:d6:7a:90:a8:68:35:fd:
#                    17:fc:74:3a:54:10:92:35:93:42:75:2e:d8:3e:cb:
#                    a9:94:a1:be:6a:37:3f:52:ba:a4:7b:da:84:99:16:
#                    79:4e:00:68:d4:1f:13:e9:46:3b:3c:4a:9d:83:3a:
#                    d8:21:ef:c2:f2:40:45:e1:0f:60:45:04:ed:fc:8a:
#                    18:2e:f9:3d:e4:a4:11:32:20:8e:3a:b7:ee:96:40:
#                    15:1a:99:e9:21:9d:72:ac:cd:1f:89:ae:aa:d9:a1:
#                    40:b0:a8:67:be:fc:7a:0e:47:b1:5e:bc:f8:30:6a:
#                    8e:37:9f:05:42:ec:2c:c3:a6:1b:8b:ab:c4:50:3d:
#                    fa:e4:73:f5:21:b0:b8:55:5f:87:e0:a2:47:38:2f:
#                    40:5f:4f:6c:ab:94:24:56:e3:4c:8f:7e:90:e9:27:
#                    82:28:9b:98:ba:9a:d6:b5:9b:57:6f:6b:15:1c:f9:
#                    bb:70:29:7d:3c:f7:13:a8:d1:71:f1:b0:fe:88:45:
#                    71:a9:a5:74:65:cb:c3:f9:f5:03:0f:10:c3:86:30:
#                    00:6e:c1:c0:26:a2:88:fe:21:c7:32:3d:bb:c6:7b:
#                    1b:b7:9b:8a:b3:fa:b1:7c:71:d9:01:a7:42:90:aa:
#                    2f:98:90:84:aa:de:c6:ad:ec:3c:51:4a:05:1d:01:
#                    51:9b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.18920.3
#                  CPS: http://www.ancert.com/cps
#                  User Notice:
#                    Organization: ANCERT
#                    Number: 1
#                    Explicit Text: Agencia Notarial de Certificacion. La declaracion de practicas de certifiacion que rige el funcionamiento de la presente autoridad se encuentra disponible en http://www.ancert.com/cps
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                email:ancert@ancert.com
#            X509v3 Authority Key Identifier: 
#                keyid:8C:4C:1E:37:0C:B1:9F:D2:AC:44:0B:3A:BE:02:CF:F4:8D:2D:66:95
#
#            X509v3 Subject Key Identifier: 
#                8C:4C:1E:37:0C:B1:9F:D2:AC:44:0B:3A:BE:02:CF:F4:8D:2D:66:95
#    Signature Algorithm: sha1WithRSAEncryption
#         47:74:c0:94:91:e2:a5:fb:98:52:44:93:6c:c4:c0:1d:e0:79:
#         db:69:64:2d:61:ae:a4:77:91:35:b5:b7:ca:97:aa:c0:b1:86:
#         f5:1b:68:6b:aa:58:b2:7c:3f:e7:03:27:f8:41:71:bc:a6:d2:
#         20:a9:80:95:a2:47:ad:6d:46:74:ad:84:9b:d8:6f:a9:f5:b9:
#         2f:6d:9b:c0:dd:99:87:ed:59:b2:75:81:a5:89:85:2a:cc:d0:
#         85:81:4d:f3:af:77:de:8c:c1:28:9a:42:ac:05:87:0c:34:9c:
#         71:87:fd:ec:01:14:1f:be:c3:2e:f0:df:fa:24:a6:5d:1f:3c:
#         f1:a2:0b:51:88:01:ae:12:87:a4:b5:5d:71:b2:df:ef:0d:7c:
#         20:e3:7f:13:0b:4d:a6:c0:77:cc:3f:d6:0f:71:c7:71:4c:2e:
#         1e:fa:19:06:65:c9:ad:56:6c:77:8d:46:3f:bd:30:83:1e:e0:
#         2e:55:b8:78:23:74:3c:58:0a:63:3a:4d:81:7b:6f:35:70:ae:
#         b6:25:d9:f6:24:fe:23:c6:da:1a:88:af:a8:14:93:73:e0:c0:
#         5b:b0:31:69:1a:f6:29:5f:56:b7:1a:0a:c2:f9:0b:ea:02:c1:
#         33:11:62:6a:7c:43:e8:ea:1a:ab:90:00:85:e0:45:0f:7d:8e:
#         ba:50:d5:c6

[p11-kit-object-v1]
label: "ANF Secure Server Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ANF Secure Server Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF7zCCA9egAwIBAgIIDdPjvGz5a7EwDQYJKoZIhvcNAQELBQAwgYQxEjAQBgNV
BAUTCUc2MzI4NzUxMDELMAkGA1UEBhMCRVMxJzAlBgNVBAoTHkFORiBBdXRvcmlk
YWQgZGUgQ2VydGlmaWNhY2lvbjEUMBIGA1UECxMLQU5GIENBIFJhaXoxIjAgBgNV
BAMTGUFORiBTZWN1cmUgU2VydmVyIFJvb3QgQ0EwHhcNMTkwOTA0MTAwMDM4WhcN
MzkwODMwMTAwMDM4WjCBhDESMBAGA1UEBRMJRzYzMjg3NTEwMQswCQYDVQQGEwJF
UzEnMCUGA1UEChMeQU5GIEF1dG9yaWRhZCBkZSBDZXJ0aWZpY2FjaW9uMRQwEgYD
VQQLEwtBTkYgQ0EgUmFpejEiMCAGA1UEAxMZQU5GIFNlY3VyZSBTZXJ2ZXIgUm9v
dCBDQTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBANvrayvmZFSVgpCj
cqQZAZ2cC4Ffc0m6p6zzBE57lgvsEeBbphzOG9INgxwruJ4dfkUyYA8H6XdYfp9q
yGFOtibBTI3/TO80sh9l2Ll49a2pcbnvT1gdpd50IJeh7WhM3pIXS7yr/2WanvtH
2Vdy8wmhrnZEE26cLUQ5vPnHO6RYPUG9tMJJo8gN0pcvB2VSAKduyK9o7PQUlrZX
H1bDOZ8rbeTzPvY1ZNoMHKGESy9LS+IsJJ1tk0DrtSOOMspvRdOoiXsezx76W0OL
zc2oD2rKDF65nkeP8Nm2CgtYZRczuSPkdxl9y0oukntPLxB3sY0vaJxizOBQ+OyR
p1RMVwnVdmPF6GUe7m1qzwmd+nxPrWAI/VaZDxUse6mAq4xhj0oHdkLePfTdsiQz
W7i1o0TJrH93PB0j7IKppuLIBkwC/qxcmZkLLxCKpvR/1Yd0DVlJRfbwcVw5Kda/
SiOL9V8BY9KHcyi1Swr1+KuCLH5zJTIdC2MKF4EA/7Z2Xue0sUDKIbvVgFHlSFJn
LNJhiQcND85Cd8BEc5xEUKDbEAotlRyBr+Qc5RQe8TZBAQIvfXOn3kLMTOmJDVb3
n5HUA8ZsyY/b2BzgQJhdZpmYgG4t/wHFzstGH6wCxkPmrqKEPMVOHj1tyRRM4y5B
u8o5vzY8KhmqQYdOpc5LMnndkEl/AgMBAAGjYzBhMB8GA1UdIwQYMBaAFJxf0Gxj
o1+TypOYCK2Mh6UsXME3MB0GA1UdDgQWBBScX9BsY6Nfk8qTmAitjIelLFzBNzAO
BgNVHQ8BAf8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOC
AgEATh65isagmD9uw2nAalxJUqzLK114OMHVVISfk/CHGT0sZonrDUL8zPB1hT+L
9IBdeeUXZ701guLyPI59WzbLWoAAKfLOKyzxj6ptBZNscsdW699QIyjlRRA96Gej
rw5VD5AJYu9LWaL2U/HANeQvwSS9eS9OICI7/RogsKQOLHDtdD+4E5UGUcjohybK
pFtqFiGS3XNgnhAY3jyB6ugYw3yJ8otQPr0R4hUDqDZ9MwFsSBXXiJCZBMXM5gf0
vPSQ7RPi6ovDj6MzD8EpTBNO2hVWcXNyglD2mjN8orGoGjR0ZVzO0eurU+AagNjq
OknkJjCb5RyKqKkVMoaZkgoQI1YS4PbOTOK7vtuNknMBZi9iPrJyJ0U27U1W45eZ
/zo1PqVUSlJZS2Db7v54EX9K3BR5YLZrZAPbFYPhor72I5dQ8AkzNqdxliXzuUJ9
2zg/LFis6ELhDtjTO0wugumDLmsx2d1Hhk9tl5EuT+IocTUW0fJz/iUrB0ckYyfI
+PbZa/wSMVYIwFNCr5zQM378BvAxRAMU8Vjq8moNqRGyg77FGr8H6lnco4g175x2
MjxNBiLOFeXdntiP2t7SxDnlF4HPOEfrf4htWRvfn0IUrn7PqLBmZdo3r5+qPeoo
tt7VMVgWglvquxl1AnMaykgaIZOQCo6ThKd9OyMYkomgjaw=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0d:d3:e3:bc:6c:f9:6b:b1
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: serialNumber=G63287510, C=ES, O=ANF Autoridad de Certificacion, OU=ANF CA Raiz, CN=ANF Secure Server Root CA
#        Validity
#            Not Before: Sep  4 10:00:38 2019 GMT
#            Not After : Aug 30 10:00:38 2039 GMT
#        Subject: serialNumber=G63287510, C=ES, O=ANF Autoridad de Certificacion, OU=ANF CA Raiz, CN=ANF Secure Server Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:db:eb:6b:2b:e6:64:54:95:82:90:a3:72:a4:19:
#                    01:9d:9c:0b:81:5f:73:49:ba:a7:ac:f3:04:4e:7b:
#                    96:0b:ec:11:e0:5b:a6:1c:ce:1b:d2:0d:83:1c:2b:
#                    b8:9e:1d:7e:45:32:60:0f:07:e9:77:58:7e:9f:6a:
#                    c8:61:4e:b6:26:c1:4c:8d:ff:4c:ef:34:b2:1f:65:
#                    d8:b9:78:f5:ad:a9:71:b9:ef:4f:58:1d:a5:de:74:
#                    20:97:a1:ed:68:4c:de:92:17:4b:bc:ab:ff:65:9a:
#                    9e:fb:47:d9:57:72:f3:09:a1:ae:76:44:13:6e:9c:
#                    2d:44:39:bc:f9:c7:3b:a4:58:3d:41:bd:b4:c2:49:
#                    a3:c8:0d:d2:97:2f:07:65:52:00:a7:6e:c8:af:68:
#                    ec:f4:14:96:b6:57:1f:56:c3:39:9f:2b:6d:e4:f3:
#                    3e:f6:35:64:da:0c:1c:a1:84:4b:2f:4b:4b:e2:2c:
#                    24:9d:6d:93:40:eb:b5:23:8e:32:ca:6f:45:d3:a8:
#                    89:7b:1e:cf:1e:fa:5b:43:8b:cd:cd:a8:0f:6a:ca:
#                    0c:5e:b9:9e:47:8f:f0:d9:b6:0a:0b:58:65:17:33:
#                    b9:23:e4:77:19:7d:cb:4a:2e:92:7b:4f:2f:10:77:
#                    b1:8d:2f:68:9c:62:cc:e0:50:f8:ec:91:a7:54:4c:
#                    57:09:d5:76:63:c5:e8:65:1e:ee:6d:6a:cf:09:9d:
#                    fa:7c:4f:ad:60:08:fd:56:99:0f:15:2c:7b:a9:80:
#                    ab:8c:61:8f:4a:07:76:42:de:3d:f4:dd:b2:24:33:
#                    5b:b8:b5:a3:44:c9:ac:7f:77:3c:1d:23:ec:82:a9:
#                    a6:e2:c8:06:4c:02:fe:ac:5c:99:99:0b:2f:10:8a:
#                    a6:f4:7f:d5:87:74:0d:59:49:45:f6:f0:71:5c:39:
#                    29:d6:bf:4a:23:8b:f5:5f:01:63:d2:87:73:28:b5:
#                    4b:0a:f5:f8:ab:82:2c:7e:73:25:32:1d:0b:63:0a:
#                    17:81:00:ff:b6:76:5e:e7:b4:b1:40:ca:21:bb:d5:
#                    80:51:e5:48:52:67:2c:d2:61:89:07:0d:0f:ce:42:
#                    77:c0:44:73:9c:44:50:a0:db:10:0a:2d:95:1c:81:
#                    af:e4:1c:e5:14:1e:f1:36:41:01:02:2f:7d:73:a7:
#                    de:42:cc:4c:e9:89:0d:56:f7:9f:91:d4:03:c6:6c:
#                    c9:8f:db:d8:1c:e0:40:98:5d:66:99:98:80:6e:2d:
#                    ff:01:c5:ce:cb:46:1f:ac:02:c6:43:e6:ae:a2:84:
#                    3c:c5:4e:1e:3d:6d:c9:14:4c:e3:2e:41:bb:ca:39:
#                    bf:36:3c:2a:19:aa:41:87:4e:a5:ce:4b:32:79:dd:
#                    90:49:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:9C:5F:D0:6C:63:A3:5F:93:CA:93:98:08:AD:8C:87:A5:2C:5C:C1:37
#
#            X509v3 Subject Key Identifier: 
#                9C:5F:D0:6C:63:A3:5F:93:CA:93:98:08:AD:8C:87:A5:2C:5C:C1:37
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         4e:1e:b9:8a:c6:a0:98:3f:6e:c3:69:c0:6a:5c:49:52:ac:cb:
#         2b:5d:78:38:c1:d5:54:84:9f:93:f0:87:19:3d:2c:66:89:eb:
#         0d:42:fc:cc:f0:75:85:3f:8b:f4:80:5d:79:e5:17:67:bd:35:
#         82:e2:f2:3c:8e:7d:5b:36:cb:5a:80:00:29:f2:ce:2b:2c:f1:
#         8f:aa:6d:05:93:6c:72:c7:56:eb:df:50:23:28:e5:45:10:3d:
#         e8:67:a3:af:0e:55:0f:90:09:62:ef:4b:59:a2:f6:53:f1:c0:
#         35:e4:2f:c1:24:bd:79:2f:4e:20:22:3b:fd:1a:20:b0:a4:0e:
#         2c:70:ed:74:3f:b8:13:95:06:51:c8:e8:87:26:ca:a4:5b:6a:
#         16:21:92:dd:73:60:9e:10:18:de:3c:81:ea:e8:18:c3:7c:89:
#         f2:8b:50:3e:bd:11:e2:15:03:a8:36:7d:33:01:6c:48:15:d7:
#         88:90:99:04:c5:cc:e6:07:f4:bc:f4:90:ed:13:e2:ea:8b:c3:
#         8f:a3:33:0f:c1:29:4c:13:4e:da:15:56:71:73:72:82:50:f6:
#         9a:33:7c:a2:b1:a8:1a:34:74:65:5c:ce:d1:eb:ab:53:e0:1a:
#         80:d8:ea:3a:49:e4:26:30:9b:e5:1c:8a:a8:a9:15:32:86:99:
#         92:0a:10:23:56:12:e0:f6:ce:4c:e2:bb:be:db:8d:92:73:01:
#         66:2f:62:3e:b2:72:27:45:36:ed:4d:56:e3:97:99:ff:3a:35:
#         3e:a5:54:4a:52:59:4b:60:db:ee:fe:78:11:7f:4a:dc:14:79:
#         60:b6:6b:64:03:db:15:83:e1:a2:be:f6:23:97:50:f0:09:33:
#         36:a7:71:96:25:f3:b9:42:7d:db:38:3f:2c:58:ac:e8:42:e1:
#         0e:d8:d3:3b:4c:2e:82:e9:83:2e:6b:31:d9:dd:47:86:4f:6d:
#         97:91:2e:4f:e2:28:71:35:16:d1:f2:73:fe:25:2b:07:47:24:
#         63:27:c8:f8:f6:d9:6b:fc:12:31:56:08:c0:53:42:af:9c:d0:
#         33:7e:fc:06:f0:31:44:03:14:f1:58:ea:f2:6a:0d:a9:11:b2:
#         83:be:c5:1a:bf:07:ea:59:dc:a3:88:35:ef:9c:76:32:3c:4d:
#         06:22:ce:15:e5:dd:9e:d8:8f:da:de:d2:c4:39:e5:17:81:cf:
#         38:47:eb:7f:88:6d:59:1b:df:9f:42:14:ae:7e:cf:a8:b0:66:
#         65:da:37:af:9f:aa:3d:ea:28:b6:de:d5:31:58:16:82:5b:ea:
#         bb:19:75:02:73:1a:ca:48:1a:21:93:90:0a:8e:93:84:a7:7d:
#         3b:23:18:92:89:a0:8d:ac

[p11-kit-object-v1]
label: "ATHEX Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzRo9MLWzOLK/eruuodbX
hfAiOqSJacThYgTJcNM8MxLi5jjld6QkRGQNt65MWt3hGAY+7ZtaBfXh3hLtNirc
R9mRUZntsb9qc6EKCCSoio0cC1nTv3AjVUSgjDDFzm1PsOy+84wx3wpa3NNXXAWg
M5U7l49UC7j1a33Hxay1eY4GOPGoKVU9mjbQJ180ahJ4FyjZmEns2VpS2iY6+u5M
piaOqD5VH7If4bWb+To19u2RHP0LECT9H/nT4wAlsQslwLd9mjwHOoAL1qj+kUXo
wdLFIm/T5XEftiw2tFig7c1KaORqV/ShdezXAJnV9plc607Ju9cao0VZAA+MO9t0
NQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ATHEX Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDNzCCAh+gAwIBAgICJxwwDQYJKoZIhvcNAQEFBQAwRDELMAkGA1UEBhMCR1Ix
HTAbBgNVBAoTFEF0aGVucyBFeGNoYW5nZSBTLkEuMRYwFAYDVQQDEw1BVEhFWCBS
b290IENBMB4XDTEwMTAxODE1NTYwM1oXDTMwMTAxNzIxMDAwMFowRDELMAkGA1UE
BhMCR1IxHTAbBgNVBAoTFEF0aGVucyBFeGNoYW5nZSBTLkEuMRYwFAYDVQQDEw1B
VEhFWCBSb290IENBMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzRo9
MLWzOLK/eruuodbXhfAiOqSJacThYgTJcNM8MxLi5jjld6QkRGQNt65MWt3hGAY+
7ZtaBfXh3hLtNircR9mRUZntsb9qc6EKCCSoio0cC1nTv3AjVUSgjDDFzm1PsOy+
84wx3wpa3NNXXAWgM5U7l49UC7j1a33Hxay1eY4GOPGoKVU9mjbQJ180ahJ4FyjZ
mEns2VpS2iY6+u5MpiaOqD5VH7If4bWb+To19u2RHP0LECT9H/nT4wAlsQslwLd9
mjwHOoAL1qj+kUXowdLFIm/T5XEftiw2tFig7c1KaORqV/ShdezXAJnV9plc607J
u9cao0VZAA+MO9t0NQIDAQABozMwMTAPBgNVHRMBAf8EBTADAQH/MBEGA1UdDgQK
BAhD4oDou9K3wTALBgNVHQ8EBAMCAQYwDQYJKoZIhvcNAQEFBQADggEBAD8BY3UH
Mitfdf92jtOpuG/MUD2EV08og+h8o26ivPfCuq46q07QD5IouN1bLNvl1h86k+GR
DteqXwFhLD5hT96VFU3MPeoy4qP++Bap8rwp/CmefXKlXaFrAtVfSPSgO8sYRvA9
F1WD0ClhkbuaQUnRE75BlPI+wySrn8drQpBCeX5aUfs8XgshH8vZSBMVsWp/A8TR
ulHScImqCEqHHPZ6mLHUUQVVxpAXb8PgBMB69C8YolZCcy62spvROb4JwgJKJBf5
96y9cQe/leKX5aGECI2y4kSh3IkwO6gMBXpddgBPHm9xfys52kVCOTHSqTJA1Dhj
E5Y3mkld2cf9uEw=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10012 (0x271c)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=GR, O=Athens Exchange S.A., CN=ATHEX Root CA
#        Validity
#            Not Before: Oct 18 15:56:03 2010 GMT
#            Not After : Oct 17 21:00:00 2030 GMT
#        Subject: C=GR, O=Athens Exchange S.A., CN=ATHEX Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:cd:1a:3d:30:b5:b3:38:b2:bf:7a:bb:ae:a1:d6:
#                    d7:85:f0:22:3a:a4:89:69:c4:e1:62:04:c9:70:d3:
#                    3c:33:12:e2:e6:38:e5:77:a4:24:44:64:0d:b7:ae:
#                    4c:5a:dd:e1:18:06:3e:ed:9b:5a:05:f5:e1:de:12:
#                    ed:36:2a:dc:47:d9:91:51:99:ed:b1:bf:6a:73:a1:
#                    0a:08:24:a8:8a:8d:1c:0b:59:d3:bf:70:23:55:44:
#                    a0:8c:30:c5:ce:6d:4f:b0:ec:be:f3:8c:31:df:0a:
#                    5a:dc:d3:57:5c:05:a0:33:95:3b:97:8f:54:0b:b8:
#                    f5:6b:7d:c7:c5:ac:b5:79:8e:06:38:f1:a8:29:55:
#                    3d:9a:36:d0:27:5f:34:6a:12:78:17:28:d9:98:49:
#                    ec:d9:5a:52:da:26:3a:fa:ee:4c:a6:26:8e:a8:3e:
#                    55:1f:b2:1f:e1:b5:9b:f9:3a:35:f6:ed:91:1c:fd:
#                    0b:10:24:fd:1f:f9:d3:e3:00:25:b1:0b:25:c0:b7:
#                    7d:9a:3c:07:3a:80:0b:d6:a8:fe:91:45:e8:c1:d2:
#                    c5:22:6f:d3:e5:71:1f:b6:2c:36:b4:58:a0:ed:cd:
#                    4a:68:e4:6a:57:f4:a1:75:ec:d7:00:99:d5:f6:99:
#                    5c:eb:4e:c9:bb:d7:1a:a3:45:59:00:0f:8c:3b:db:
#                    74:35
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                43:E2:80:E8:BB:D2:B7:C1
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         3f:01:63:75:07:32:2b:5f:75:ff:76:8e:d3:a9:b8:6f:cc:50:
#         3d:84:57:4f:28:83:e8:7c:a3:6e:a2:bc:f7:c2:ba:ae:3a:ab:
#         4e:d0:0f:92:28:b8:dd:5b:2c:db:e5:d6:1f:3a:93:e1:91:0e:
#         d7:aa:5f:01:61:2c:3e:61:4f:de:95:15:4d:cc:3d:ea:32:e2:
#         a3:fe:f8:16:a9:f2:bc:29:fc:29:9e:7d:72:a5:5d:a1:6b:02:
#         d5:5f:48:f4:a0:3b:cb:18:46:f0:3d:17:55:83:d0:29:61:91:
#         bb:9a:41:49:d1:13:be:41:94:f2:3e:c3:24:ab:9f:c7:6b:42:
#         90:42:79:7e:5a:51:fb:3c:5e:0b:21:1f:cb:d9:48:13:15:b1:
#         6a:7f:03:c4:d1:ba:51:d2:70:89:aa:08:4a:87:1c:f6:7a:98:
#         b1:d4:51:05:55:c6:90:17:6f:c3:e0:04:c0:7a:f4:2f:18:a2:
#         56:42:73:2e:b6:b2:9b:d1:39:be:09:c2:02:4a:24:17:f9:f7:
#         ac:bd:71:07:bf:95:e2:97:e5:a1:84:08:8d:b2:e2:44:a1:dc:
#         89:30:3b:a8:0c:05:7a:5d:76:00:4f:1e:6f:71:7f:2b:39:da:
#         45:42:39:31:d2:a9:32:40:d4:38:63:13:96:37:9a:49:5d:d9:
#         c7:fd:b8:4c

[p11-kit-object-v1]
label: "Actalis Authentication Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Actalis Authentication Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            57:0a:11:97:42:c4:e3:cc
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=IT, L=Milan, O=Actalis S.p.A./03358520967, CN=Actalis Authentication Root CA
#        Validity
#            Not Before: Sep 22 11:22:02 2011 GMT
#            Not After : Sep 22 11:22:02 2030 GMT
#        Subject: C=IT, L=Milan, O=Actalis S.p.A./03358520967, CN=Actalis Authentication Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a7:c6:c4:a5:29:a4:2c:ef:e5:18:c5:b0:50:a3:
#                    6f:51:3b:9f:0a:5a:c9:c2:48:38:0a:c2:1c:a0:18:
#                    7f:91:b5:87:b9:40:3f:dd:1d:68:1f:08:83:d5:2d:
#                    1e:88:a0:f8:8f:56:8f:6d:99:02:92:90:16:d5:5f:
#                    08:6c:89:d7:e1:ac:bc:20:c2:b1:e0:83:51:8a:69:
#                    4d:00:96:5a:6f:2f:c0:44:7e:a3:0e:e4:91:cd:58:
#                    ee:dc:fb:c7:1e:45:47:dd:27:b9:08:01:9f:a6:21:
#                    1d:f5:41:2d:2f:4c:fd:28:ad:e0:8a:ad:22:b4:56:
#                    65:8e:86:54:8f:93:43:29:de:39:46:78:a3:30:23:
#                    ba:cd:f0:7d:13:57:c0:5d:d2:83:6b:48:4c:c4:ab:
#                    9f:80:5a:5b:3a:bd:c9:a7:22:3f:80:27:33:5b:0e:
#                    b7:8a:0c:5d:07:37:08:cb:6c:d2:7a:47:22:44:35:
#                    c5:cc:cc:2e:8e:dd:2a:ed:b7:7d:66:0d:5f:61:51:
#                    22:55:1b:e3:46:e3:e3:3d:d0:35:62:9a:db:af:14:
#                    c8:5b:a1:cc:89:1b:e1:30:26:fc:a0:9b:1f:81:a7:
#                    47:1f:04:eb:a3:39:92:06:9f:99:d3:bf:d3:ea:4f:
#                    50:9c:19:fe:96:87:1e:3c:65:f6:a3:18:24:83:86:
#                    10:e7:54:3e:a8:3a:76:24:4f:81:21:c5:e3:0f:02:
#                    f8:93:94:47:20:bb:fe:d4:0e:d3:68:b9:dd:c4:7a:
#                    84:82:e3:53:54:79:dd:db:9c:d2:f2:07:9b:2e:b6:
#                    bc:3e:ed:85:6d:ef:25:11:f2:97:1a:42:61:f7:4a:
#                    97:e8:8b:b1:10:07:fa:65:81:b2:a2:39:cf:f7:3c:
#                    ff:18:fb:c6:f1:5a:8b:59:e2:02:ac:7b:92:d0:4e:
#                    14:4f:59:45:f6:0c:5e:28:5f:b0:e8:3f:45:cf:cf:
#                    af:9b:6f:fb:84:d3:77:5a:95:6f:ac:94:84:9e:ee:
#                    bc:c0:4a:8f:4a:93:f8:44:21:e2:31:45:61:50:4e:
#                    10:d8:e3:35:7c:4c:19:b4:de:05:bf:a3:06:9f:c8:
#                    b5:cd:e4:1f:d7:17:06:0d:7a:95:74:55:0d:68:1a:
#                    fc:10:1b:62:64:9d:6d:e0:95:a0:c3:94:07:57:0d:
#                    14:e6:bd:05:fb:b8:9f:e6:df:8b:e2:c6:e7:7e:96:
#                    f6:53:c5:80:34:50:28:58:f0:12:50:71:17:30:ba:
#                    e6:78:63:bc:f4:b2:ad:9b:2b:b2:fe:e1:39:8c:5e:
#                    ba:0b:20:94:de:7b:83:b8:ff:e3:56:8d:b7:11:e9:
#                    3b:8c:f2:b1:c1:5d:9d:a4:0b:4c:2b:d9:b2:18:f5:
#                    b5:9f:4b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                52:D8:88:3A:C8:9F:78:66:ED:89:F3:7B:38:70:94:C9:02:02:36:D0
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:52:D8:88:3A:C8:9F:78:66:ED:89:F3:7B:38:70:94:C9:02:02:36:D0
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         0b:7b:72:87:c0:60:a6:49:4c:88:58:e6:1d:88:f7:14:64:48:
#         a6:d8:58:0a:0e:4f:13:35:df:35:1d:d4:ed:06:31:c8:81:3e:
#         6a:d5:dd:3b:1a:32:ee:90:3d:11:d2:2e:f4:8e:c3:63:2e:23:
#         66:b0:67:be:6f:b6:c0:13:39:60:aa:a2:34:25:93:75:52:de:
#         a7:9d:ad:0e:87:89:52:71:6a:16:3c:19:1d:83:f8:9a:29:65:
#         be:f4:3f:9a:d9:f0:f3:5a:87:21:71:80:4d:cb:e0:38:9b:3f:
#         bb:fa:e0:30:4d:cf:86:d3:65:10:19:18:d1:97:02:b1:2b:72:
#         42:68:ac:a0:bd:4e:5a:da:18:bf:6b:98:81:d0:fd:9a:be:5e:
#         15:48:cd:11:15:b9:c0:29:5c:b4:e8:88:f7:3e:36:ae:b7:62:
#         fd:1e:62:de:70:78:10:1c:48:5b:da:bc:a4:38:ba:67:ed:55:
#         3e:5e:57:df:d4:03:40:4c:81:a4:d2:4f:63:a7:09:42:09:14:
#         fc:00:a9:c2:80:73:4f:2e:c0:40:d9:11:7b:48:ea:7a:02:c0:
#         d3:eb:28:01:26:58:74:c1:c0:73:22:6d:93:95:fd:39:7d:bb:
#         2a:e3:f6:82:e3:2c:97:5f:4e:1f:91:94:fa:fe:2c:a3:d8:76:
#         1a:b8:4d:b2:38:4f:9b:fa:1d:48:60:79:26:e2:f3:fd:a9:d0:
#         9a:e8:70:8f:49:7a:d6:e5:bd:0a:0e:db:2d:f3:8d:bf:eb:e3:
#         a4:7d:cb:c7:95:71:e8:da:a3:7c:c5:c2:f8:74:92:04:1b:86:
#         ac:a4:22:53:40:b6:ac:fe:4c:76:cf:fb:94:32:c0:35:9f:76:
#         3f:6e:e5:90:6e:a0:a6:26:a2:b8:2c:be:d1:2b:85:fd:a7:68:
#         c8:ba:01:2b:b1:6c:74:1d:b8:73:95:e7:ee:b7:c7:25:f0:00:
#         4c:00:b2:7e:b6:0b:8b:1c:f3:c0:50:9e:25:b9:e0:08:de:36:
#         66:ff:37:a5:d1:bb:54:64:2c:c9:27:b5:4b:92:7e:65:ff:d3:
#         2d:e1:b9:4e:bc:7f:a4:41:21:90:41:77:a6:39:1f:ea:9e:e3:
#         9f:d0:66:6f:05:ec:aa:76:7e:bf:6b:16:a0:eb:b5:c7:fc:92:
#         54:2f:2b:11:27:25:37:78:4c:51:6a:b0:f3:cc:58:5d:14:f1:
#         6a:48:15:ff:c2:07:b6:b1:8d:0f:8e:5c:50:46:b3:3d:bf:01:
#         98:4f:b2:59:54:47:3e:34:7b:78:6d:56:93:2e:73:ea:66:28:
#         78:cd:1d:14:bf:a0:8f:2f:2e:b8:2e:8e:f2:14:8a:cc:e9:b5:
#         7c:fb:6c:9d:0c:a5:e1:96

[p11-kit-object-v1]
label: "AffirmTrust Commercial"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9htPZwcroRX1BiLLHwGy
43NFBkRJLLtJJRTWzsO3qyxPxkEylFf6EqdbDuKPHx6GGaeqtS25Xw2Kwq+FNXky
LbscYjfysVtKPcrNcV/pQr6U6Mje+SJIZMblq8Yrba0F8PrVC8+a5fBQpIs7R6Uj
W3p6+DM/uO+Zl+MgwdYoic+U+7lF7eNAFxHUdPALMeIrJmqbTFeurCA+ukV6BfO9
m2kVrn1OIGPENXY6BwLJN/3HR+7o8XYdcxXyl6S1yHp52UKqK39c/s4mT6NmgTWv
RLpUHhwwMmWd5jyTXlBOeuM61G7MGvv50jeuJCqrVwMiKA1JdX+3KNp1v47j3A55
MQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Commercial"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDTDCCAjSgAwIBAgIId3cGJyapsXwwDQYJKoZIhvcNAQELBQAwRDELMAkGA1UE
BhMCVVMxFDASBgNVBAoMC0FmZmlybVRydXN0MR8wHQYDVQQDDBZBZmZpcm1UcnVz
dCBDb21tZXJjaWFsMB4XDTEwMDEyOTE0MDYwNloXDTMwMTIzMTE0MDYwNlowRDEL
MAkGA1UEBhMCVVMxFDASBgNVBAoMC0FmZmlybVRydXN0MR8wHQYDVQQDDBZBZmZp
cm1UcnVzdCBDb21tZXJjaWFsMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
AQEA9htPZwcroRX1BiLLHwGy43NFBkRJLLtJJRTWzsO3qyxPxkEylFf6EqdbDuKP
Hx6GGaeqtS25Xw2Kwq+FNXkyLbscYjfysVtKPcrNcV/pQr6U6Mje+SJIZMblq8Yr
ba0F8PrVC8+a5fBQpIs7R6UjW3p6+DM/uO+Zl+MgwdYoic+U+7lF7eNAFxHUdPAL
MeIrJmqbTFeurCA+ukV6BfO9m2kVrn1OIGPENXY6BwLJN/3HR+7o8XYdcxXyl6S1
yHp52UKqK39c/s4mT6NmgTWvRLpUHhwwMmWd5jyTXlBOeuM61G7MGvv50jeuJCqr
VwMiKA1JdX+3KNp1v47j3A55MQIDAQABo0IwQDAdBgNVHQ4EFgQUnZPGU4teyq8/
nx4P5ZmVvCT2lI8wDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwDQYJ
KoZIhvcNAQELBQADggEBAFis9AQOzcAN/wr91LoWXym9e2iZWEnStB03TX8nfUYG
XUPGhi4+c7ImfU+TqbbEKpqrIZcUsd6M06uJFdhrJNTxFq7YpFzUf1GO7RgBsZNj
vbz4YYCanrHOQnDiqX0GJX0nof5v7LMeJNrjS1UaADs1tDvZ110w/YETifLCBivt
Z8SOyUOyXGsViQK8YvxO8rUzqrJv0wqiUOP2O+guRMLbZjipM1ZI8W0bM40NjD9g
N53Tym1+NH4Nn3J2ixufcv1SNUFFApYvHLKac0khsUlHRUe072o0EclNmsxZt9YC
nlpOZbWUrhvfKbAW8b8Angc6F2S1BLUjIZkKlTuXfO8=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            77:77:06:27:26:a9:b1:7c
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=AffirmTrust, CN=AffirmTrust Commercial
#        Validity
#            Not Before: Jan 29 14:06:06 2010 GMT
#            Not After : Dec 31 14:06:06 2030 GMT
#        Subject: C=US, O=AffirmTrust, CN=AffirmTrust Commercial
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:f6:1b:4f:67:07:2b:a1:15:f5:06:22:cb:1f:01:
#                    b2:e3:73:45:06:44:49:2c:bb:49:25:14:d6:ce:c3:
#                    b7:ab:2c:4f:c6:41:32:94:57:fa:12:a7:5b:0e:e2:
#                    8f:1f:1e:86:19:a7:aa:b5:2d:b9:5f:0d:8a:c2:af:
#                    85:35:79:32:2d:bb:1c:62:37:f2:b1:5b:4a:3d:ca:
#                    cd:71:5f:e9:42:be:94:e8:c8:de:f9:22:48:64:c6:
#                    e5:ab:c6:2b:6d:ad:05:f0:fa:d5:0b:cf:9a:e5:f0:
#                    50:a4:8b:3b:47:a5:23:5b:7a:7a:f8:33:3f:b8:ef:
#                    99:97:e3:20:c1:d6:28:89:cf:94:fb:b9:45:ed:e3:
#                    40:17:11:d4:74:f0:0b:31:e2:2b:26:6a:9b:4c:57:
#                    ae:ac:20:3e:ba:45:7a:05:f3:bd:9b:69:15:ae:7d:
#                    4e:20:63:c4:35:76:3a:07:02:c9:37:fd:c7:47:ee:
#                    e8:f1:76:1d:73:15:f2:97:a4:b5:c8:7a:79:d9:42:
#                    aa:2b:7f:5c:fe:ce:26:4f:a3:66:81:35:af:44:ba:
#                    54:1e:1c:30:32:65:9d:e6:3c:93:5e:50:4e:7a:e3:
#                    3a:d4:6e:cc:1a:fb:f9:d2:37:ae:24:2a:ab:57:03:
#                    22:28:0d:49:75:7f:b7:28:da:75:bf:8e:e3:dc:0e:
#                    79:31
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9D:93:C6:53:8B:5E:CA:AF:3F:9F:1E:0F:E5:99:95:BC:24:F6:94:8F
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         58:ac:f4:04:0e:cd:c0:0d:ff:0a:fd:d4:ba:16:5f:29:bd:7b:
#         68:99:58:49:d2:b4:1d:37:4d:7f:27:7d:46:06:5d:43:c6:86:
#         2e:3e:73:b2:26:7d:4f:93:a9:b6:c4:2a:9a:ab:21:97:14:b1:
#         de:8c:d3:ab:89:15:d8:6b:24:d4:f1:16:ae:d8:a4:5c:d4:7f:
#         51:8e:ed:18:01:b1:93:63:bd:bc:f8:61:80:9a:9e:b1:ce:42:
#         70:e2:a9:7d:06:25:7d:27:a1:fe:6f:ec:b3:1e:24:da:e3:4b:
#         55:1a:00:3b:35:b4:3b:d9:d7:5d:30:fd:81:13:89:f2:c2:06:
#         2b:ed:67:c4:8e:c9:43:b2:5c:6b:15:89:02:bc:62:fc:4e:f2:
#         b5:33:aa:b2:6f:d3:0a:a2:50:e3:f6:3b:e8:2e:44:c2:db:66:
#         38:a9:33:56:48:f1:6d:1b:33:8d:0d:8c:3f:60:37:9d:d3:ca:
#         6d:7e:34:7e:0d:9f:72:76:8b:1b:9f:72:fd:52:35:41:45:02:
#         96:2f:1c:b2:9a:73:49:21:b1:49:47:45:47:b4:ef:6a:34:11:
#         c9:4d:9a:cc:59:b7:d6:02:9e:5a:4e:65:b5:94:ae:1b:df:29:
#         b0:16:f1:bf:00:9e:07:3a:17:64:b5:04:b5:23:21:99:0a:95:
#         3b:97:7c:ef

[p11-kit-object-v1]
label: "AffirmTrust Networking"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtITMMxcua5Rsa2FSoOuj
z3mUTOWUgJnLVWREZY9nZOIG41w3SfYvm4SEHi3yYJ0wTsyEheIszx6e/jarM3c1
RNg1lho9Nuh6DtjVR6FqaYvZ/Ls6rnla1fTWcbuakCNrmreIdIcMHl+5ni36q1Mr
3Lt2PpNMCAiMHqIjHNRqrSK6mQEubWXLviRmVSRLQESxG9fhwoXA3hA/Pe24/PHx
I1Pcv2WXb9n5QHGNfb2V1M6+oF4nI979ptAmDgAp6zxG8D1gvz9Q0twmQVGeFDdC
BKNwV6gbh+0t+nvujArjqWaJGctB+d1ENmHP4ndGyH329JKBNv3bNPFyfvMMFr20
FQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Networking"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7c:4f:04:39:1c:d4:99:2d
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=AffirmTrust, CN=AffirmTrust Networking
#        Validity
#            Not Before: Jan 29 14:08:24 2010 GMT
#            Not After : Dec 31 14:08:24 2030 GMT
#        Subject: C=US, O=AffirmTrust, CN=AffirmTrust Networking
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b4:84:cc:33:17:2e:6b:94:6c:6b:61:52:a0:eb:
#                    a3:cf:79:94:4c:e5:94:80:99:cb:55:64:44:65:8f:
#                    67:64:e2:06:e3:5c:37:49:f6:2f:9b:84:84:1e:2d:
#                    f2:60:9d:30:4e:cc:84:85:e2:2c:cf:1e:9e:fe:36:
#                    ab:33:77:35:44:d8:35:96:1a:3d:36:e8:7a:0e:d8:
#                    d5:47:a1:6a:69:8b:d9:fc:bb:3a:ae:79:5a:d5:f4:
#                    d6:71:bb:9a:90:23:6b:9a:b7:88:74:87:0c:1e:5f:
#                    b9:9e:2d:fa:ab:53:2b:dc:bb:76:3e:93:4c:08:08:
#                    8c:1e:a2:23:1c:d4:6a:ad:22:ba:99:01:2e:6d:65:
#                    cb:be:24:66:55:24:4b:40:44:b1:1b:d7:e1:c2:85:
#                    c0:de:10:3f:3d:ed:b8:fc:f1:f1:23:53:dc:bf:65:
#                    97:6f:d9:f9:40:71:8d:7d:bd:95:d4:ce:be:a0:5e:
#                    27:23:de:fd:a6:d0:26:0e:00:29:eb:3c:46:f0:3d:
#                    60:bf:3f:50:d2:dc:26:41:51:9e:14:37:42:04:a3:
#                    70:57:a8:1b:87:ed:2d:fa:7b:ee:8c:0a:e3:a9:66:
#                    89:19:cb:41:f9:dd:44:36:61:cf:e2:77:46:c8:7d:
#                    f6:f4:92:81:36:fd:db:34:f1:72:7e:f3:0c:16:bd:
#                    b4:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                07:1F:D2:E7:9C:DA:C2:6E:A2:40:B4:B0:7A:50:10:50:74:C4:C8:BD
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         89:57:b2:16:7a:a8:c2:fd:d6:d9:9b:9b:34:c2:9c:b4:32:14:
#         4d:a7:a4:df:ec:be:a7:be:f8:43:db:91:37:ce:b4:32:2e:50:
#         55:1a:35:4e:76:43:71:20:ef:93:77:4e:15:70:2e:87:c3:c1:
#         1d:6d:dc:cb:b5:27:d4:2c:56:d1:52:53:3a:44:d2:73:c8:c4:
#         1b:05:65:5a:62:92:9c:ee:41:8d:31:db:e7:34:ea:59:21:d5:
#         01:7a:d7:64:b8:64:39:cd:c9:ed:af:ed:4b:03:48:a7:a0:99:
#         01:80:dc:65:a3:36:ae:65:59:48:4f:82:4b:c8:65:f1:57:1d:
#         e5:59:2e:0a:3f:6c:d8:d1:f5:e5:09:b4:6c:54:00:0a:e0:15:
#         4d:87:75:6d:b7:58:96:5a:dd:6d:d2:00:a0:f4:9b:48:be:c3:
#         37:a4:ba:36:e0:7c:87:85:97:1a:15:a2:de:2e:a2:5b:bd:af:
#         18:f9:90:50:cd:70:59:f8:27:67:47:cb:c7:a0:07:3a:7d:d1:
#         2c:5d:6c:19:3a:66:b5:7d:fd:91:6f:82:b1:be:08:93:db:14:
#         47:f1:a2:37:c7:45:9e:3c:c7:77:af:64:a8:93:df:f6:69:83:
#         82:60:f2:49:42:34:ed:5a:00:54:85:1c:16:36:92:0c:5c:fa:
#         a6:ad:bf:db

[p11-kit-object-v1]
label: "AffirmTrust Premium"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxBLfqV/+Qd3d9Z+K4/as
4Tx4mrzY8H96oDMq3I0gW64tb+eT2TZwamjPjlGjhVtnBKAQJG9dKILBl1fYSCkT
tuG+kU3fhQxTGJoeJKJPj/CihQvL9Cl/0qRY7iZNyaqoe5rZ+jjeRFcV5fiMyNlI
4g0WJx0eyIOFJbe6qlVBzAMiSy2RjYvmia9mx+n/K+k8rNrSs8PhaJyJ+HoAVt70
VZVs+7pk3WKL3wt3MutizCaam7uqYoNMtAZ6MMgpv+0GTZe5HMQxK9VfvFMSF5yZ
Vylmd2EhMQcuJUmdGPLu8ytxjLW6OQdJd/zvLpKQBY0tL3d770O/Nbua2Plzpyzy
0FfuKE4mX4+QaAkvuPjcBukumj5Rp9EixAqnOEhss/n/fauGV+O61oV4d7pD6kh/
9ti+I20ev9E2bFhc8e6kGVQa9QPSdubhjL08s9NIS+LI+H+SqHZGnEJlPqQewQcD
WkYtuJfzt9WyVSHvutxMAJf7FJUnM7/oQ0dG0giZFmA7mn7S5u046uwBHjxIVkkJ
x0w3AJ6IDsBz4W9m6XJHMD4Q5QsDyZpCAGzFlH5hxIrff4IaC1nEWTJ3s7xgaVY5
/bQGeyzWZDbZvUjthB9+pSKPKrhC9IK31FOQeE4tGv2Bb0TXOwF0lkLgAOIua+rF
7nKsu7/+6qqo+Nz2snmKtmcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Premium"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6d:8c:14:46:b1:a6:0a:ee
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=AffirmTrust, CN=AffirmTrust Premium
#        Validity
#            Not Before: Jan 29 14:10:36 2010 GMT
#            Not After : Dec 31 14:10:36 2040 GMT
#        Subject: C=US, O=AffirmTrust, CN=AffirmTrust Premium
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:12:df:a9:5f:fe:41:dd:dd:f5:9f:8a:e3:f6:
#                    ac:e1:3c:78:9a:bc:d8:f0:7f:7a:a0:33:2a:dc:8d:
#                    20:5b:ae:2d:6f:e7:93:d9:36:70:6a:68:cf:8e:51:
#                    a3:85:5b:67:04:a0:10:24:6f:5d:28:82:c1:97:57:
#                    d8:48:29:13:b6:e1:be:91:4d:df:85:0c:53:18:9a:
#                    1e:24:a2:4f:8f:f0:a2:85:0b:cb:f4:29:7f:d2:a4:
#                    58:ee:26:4d:c9:aa:a8:7b:9a:d9:fa:38:de:44:57:
#                    15:e5:f8:8c:c8:d9:48:e2:0d:16:27:1d:1e:c8:83:
#                    85:25:b7:ba:aa:55:41:cc:03:22:4b:2d:91:8d:8b:
#                    e6:89:af:66:c7:e9:ff:2b:e9:3c:ac:da:d2:b3:c3:
#                    e1:68:9c:89:f8:7a:00:56:de:f4:55:95:6c:fb:ba:
#                    64:dd:62:8b:df:0b:77:32:eb:62:cc:26:9a:9b:bb:
#                    aa:62:83:4c:b4:06:7a:30:c8:29:bf:ed:06:4d:97:
#                    b9:1c:c4:31:2b:d5:5f:bc:53:12:17:9c:99:57:29:
#                    66:77:61:21:31:07:2e:25:49:9d:18:f2:ee:f3:2b:
#                    71:8c:b5:ba:39:07:49:77:fc:ef:2e:92:90:05:8d:
#                    2d:2f:77:7b:ef:43:bf:35:bb:9a:d8:f9:73:a7:2c:
#                    f2:d0:57:ee:28:4e:26:5f:8f:90:68:09:2f:b8:f8:
#                    dc:06:e9:2e:9a:3e:51:a7:d1:22:c4:0a:a7:38:48:
#                    6c:b3:f9:ff:7d:ab:86:57:e3:ba:d6:85:78:77:ba:
#                    43:ea:48:7f:f6:d8:be:23:6d:1e:bf:d1:36:6c:58:
#                    5c:f1:ee:a4:19:54:1a:f5:03:d2:76:e6:e1:8c:bd:
#                    3c:b3:d3:48:4b:e2:c8:f8:7f:92:a8:76:46:9c:42:
#                    65:3e:a4:1e:c1:07:03:5a:46:2d:b8:97:f3:b7:d5:
#                    b2:55:21:ef:ba:dc:4c:00:97:fb:14:95:27:33:bf:
#                    e8:43:47:46:d2:08:99:16:60:3b:9a:7e:d2:e6:ed:
#                    38:ea:ec:01:1e:3c:48:56:49:09:c7:4c:37:00:9e:
#                    88:0e:c0:73:e1:6f:66:e9:72:47:30:3e:10:e5:0b:
#                    03:c9:9a:42:00:6c:c5:94:7e:61:c4:8a:df:7f:82:
#                    1a:0b:59:c4:59:32:77:b3:bc:60:69:56:39:fd:b4:
#                    06:7b:2c:d6:64:36:d9:bd:48:ed:84:1f:7e:a5:22:
#                    8f:2a:b8:42:f4:82:b7:d4:53:90:78:4e:2d:1a:fd:
#                    81:6f:44:d7:3b:01:74:96:42:e0:00:e2:2e:6b:ea:
#                    c5:ee:72:ac:bb:bf:fe:ea:aa:a8:f8:dc:f6:b2:79:
#                    8a:b6:67
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9D:C0:67:A6:0C:22:D9:26:F5:45:AB:A6:65:52:11:27:D8:45:AC:63
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha384WithRSAEncryption
#         b3:57:4d:10:62:4e:3a:e4:ac:ea:b8:1c:af:32:23:c8:b3:49:
#         5a:51:9c:76:28:8d:79:aa:57:46:17:d5:f5:52:f6:b7:44:e8:
#         08:44:bf:18:84:d2:0b:80:cd:c5:12:fd:00:55:05:61:87:41:
#         dc:b5:24:9e:3c:c4:d8:c8:fb:70:9e:2f:78:96:83:20:36:de:
#         7c:0f:69:13:88:a5:75:36:98:08:a6:c6:df:ac:ce:e3:58:d6:
#         b7:3e:de:ba:f3:eb:34:40:d8:a2:81:f5:78:3f:2f:d5:a5:fc:
#         d9:a2:d4:5e:04:0e:17:ad:fe:41:f0:e5:b2:72:fa:44:82:33:
#         42:e8:2d:58:f7:56:8c:62:3f:ba:42:b0:9c:0c:5c:7e:2e:65:
#         26:5c:53:4f:00:b2:78:7e:a1:0d:99:2d:8d:b8:1d:8e:a2:c4:
#         b0:fd:60:d0:30:a4:8e:c8:04:62:a9:c4:ed:35:de:7a:97:ed:
#         0e:38:5e:92:2f:93:70:a5:a9:9c:6f:a7:7d:13:1d:7e:c6:08:
#         48:b1:5e:67:eb:51:08:25:e9:e6:25:6b:52:29:91:9c:d2:39:
#         73:08:57:de:99:06:b4:5b:9d:10:06:e1:c2:00:a8:b8:1c:4a:
#         02:0a:14:d0:c1:41:ca:fb:8c:35:21:7d:82:38:f2:a9:54:91:
#         19:35:93:94:6d:6a:3a:c5:b2:d0:bb:89:86:93:e8:9b:c9:0f:
#         3a:a7:7a:b8:a1:f0:78:46:fa:fc:37:2f:e5:8a:84:f3:df:fe:
#         04:d9:a1:68:a0:2f:24:e2:09:95:06:d5:95:ca:e1:24:96:eb:
#         7c:f6:93:05:bb:ed:73:e9:2d:d1:75:39:d7:e7:24:db:d8:4e:
#         5f:43:8f:9e:d0:14:39:bf:55:70:48:99:57:31:b4:9c:ee:4a:
#         98:03:96:30:1f:60:06:ee:1b:23:fe:81:60:23:1a:47:62:85:
#         a5:cc:19:34:80:6f:b3:ac:1a:e3:9f:f0:7b:48:ad:d5:01:d9:
#         67:b6:a9:72:93:ea:2d:66:b5:b2:b8:e4:3d:3c:b2:ef:4c:8c:
#         ea:eb:07:bf:ab:35:9a:55:86:bc:18:a6:b5:a8:5e:b4:83:6c:
#         6b:69:40:d3:9f:dc:f1:c3:69:6b:b9:e1:6d:09:f4:f1:aa:50:
#         76:0a:7a:7d:7a:17:a1:55:96:42:99:31:09:dd:60:11:8d:05:
#         30:7e:e6:8e:46:d1:9d:14:da:c7:17:e4:05:96:8c:c4:24:b5:
#         1b:cf:14:07:b2:40:f8:a3:9e:41:86:bc:04:d0:6b:96:c8:2a:
#         80:34:fd:bf:ef:06:a3:dd:58:c5:85:3d:3e:8f:fe:9e:29:e0:
#         b6:b8:09:68:19:1c:18:43

[p11-kit-object-v1]
label: "AffirmTrust Premium ECC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEDTBeGxWdA9CheTW3OjySesoVHM1i85wm
XAc95VT6o9bMEur0FF/ojhmrLy5I5qwYQ3is0DfDvbLNLOZH4hrmY7g9Li94xE/b
9A+kaExVcmuVHU4YQpV4zDc8keKbZSsp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "AffirmTrust Premium ECC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            74:97:25:8a:c7:3f:7a:54
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=AffirmTrust, CN=AffirmTrust Premium ECC
#        Validity
#            Not Before: Jan 29 14:20:24 2010 GMT
#            Not After : Dec 31 14:20:24 2040 GMT
#        Subject: C=US, O=AffirmTrust, CN=AffirmTrust Premium ECC
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:0d:30:5e:1b:15:9d:03:d0:a1:79:35:b7:3a:3c:
#                    92:7a:ca:15:1c:cd:62:f3:9c:26:5c:07:3d:e5:54:
#                    fa:a3:d6:cc:12:ea:f4:14:5f:e8:8e:19:ab:2f:2e:
#                    48:e6:ac:18:43:78:ac:d0:37:c3:bd:b2:cd:2c:e6:
#                    47:e2:1a:e6:63:b8:3d:2e:2f:78:c4:4f:db:f4:0f:
#                    a4:68:4c:55:72:6b:95:1d:4e:18:42:95:78:cc:37:
#                    3c:91:e2:9b:65:2b:29
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9A:AF:29:7A:C0:11:35:35:26:51:30:00:C3:6A:FE:40:D5:AE:D6:3C
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:17:09:f3:87:88:50:5a:af:c8:c0:42:bf:47:5f:
#         f5:6c:6a:86:e0:c4:27:74:e4:38:53:d7:05:7f:1b:34:e3:c6:
#         2f:b3:ca:09:3c:37:9d:d7:e7:b8:46:f1:fd:a1:e2:71:02:30:
#         42:59:87:43:d4:51:df:ba:d3:09:32:5a:ce:88:7e:57:3d:9c:
#         5f:42:6b:f5:07:2d:b5:f0:82:93:f9:59:6f:ae:64:fa:58:e5:
#         8b:1e:e3:63:be:b5:81:cd:6f:02:8c:79

[p11-kit-object-v1]
label: "Amazon Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsniAccp41eNxr0eAUHR9
btjXiHb0mWj3WCFg+XSEAS+sAi2G06BDek6ypNA2ugG+jdtIyAcXNkz07ogjxz7r
N/W1GfhJaLDe17l2OB1hnqT+gjal5UpW5EXh+f20Fvp02pybNTkv+rAgUAZsetCA
sqb5r+xHGY9QOAfcooc5WPi61an5SGcwlu6UeF5viaNRwDCGZqFFZrpU66PDkflI
3P/R6DAtfS10cDXXiCT3nsRZbrtzhxfyMkYouEP6tx2qyrTynyQOLUv3cVxeaf/q
lQLLOIquUDhv2/stYhvFxx5U4XfgZ8gPnIcj1j9AIH8ggMSATD47JCaOBK5smsiq
DQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:cf:99:bf:8c:0a:39:e2:f0:78:8a:43:e6:96:36:5b:ca
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Amazon, CN=Amazon Root CA 1
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : Jan 17 00:00:00 2038 GMT
#        Subject: C=US, O=Amazon, CN=Amazon Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b2:78:80:71:ca:78:d5:e3:71:af:47:80:50:74:
#                    7d:6e:d8:d7:88:76:f4:99:68:f7:58:21:60:f9:74:
#                    84:01:2f:ac:02:2d:86:d3:a0:43:7a:4e:b2:a4:d0:
#                    36:ba:01:be:8d:db:48:c8:07:17:36:4c:f4:ee:88:
#                    23:c7:3e:eb:37:f5:b5:19:f8:49:68:b0:de:d7:b9:
#                    76:38:1d:61:9e:a4:fe:82:36:a5:e5:4a:56:e4:45:
#                    e1:f9:fd:b4:16:fa:74:da:9c:9b:35:39:2f:fa:b0:
#                    20:50:06:6c:7a:d0:80:b2:a6:f9:af:ec:47:19:8f:
#                    50:38:07:dc:a2:87:39:58:f8:ba:d5:a9:f9:48:67:
#                    30:96:ee:94:78:5e:6f:89:a3:51:c0:30:86:66:a1:
#                    45:66:ba:54:eb:a3:c3:91:f9:48:dc:ff:d1:e8:30:
#                    2d:7d:2d:74:70:35:d7:88:24:f7:9e:c4:59:6e:bb:
#                    73:87:17:f2:32:46:28:b8:43:fa:b7:1d:aa:ca:b4:
#                    f2:9f:24:0e:2d:4b:f7:71:5c:5e:69:ff:ea:95:02:
#                    cb:38:8a:ae:50:38:6f:db:fb:2d:62:1b:c5:c7:1e:
#                    54:e1:77:e0:67:c8:0f:9c:87:23:d6:3f:40:20:7f:
#                    20:80:c4:80:4c:3e:3b:24:26:8e:04:ae:6c:9a:c8:
#                    aa:0d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                84:18:CC:85:34:EC:BC:0C:94:94:2E:08:59:9C:C7:B2:10:4E:0A:08
#    Signature Algorithm: sha256WithRSAEncryption
#         98:f2:37:5a:41:90:a1:1a:c5:76:51:28:20:36:23:0e:ae:e6:
#         28:bb:aa:f8:94:ae:48:a4:30:7f:1b:fc:24:8d:4b:b4:c8:a1:
#         97:f6:b6:f1:7a:70:c8:53:93:cc:08:28:e3:98:25:cf:23:a4:
#         f9:de:21:d3:7c:85:09:ad:4e:9a:75:3a:c2:0b:6a:89:78:76:
#         44:47:18:65:6c:8d:41:8e:3b:7f:9a:cb:f4:b5:a7:50:d7:05:
#         2c:37:e8:03:4b:ad:e9:61:a0:02:6e:f5:f2:f0:c5:b2:ed:5b:
#         b7:dc:fa:94:5c:77:9e:13:a5:7f:52:ad:95:f2:f8:93:3b:de:
#         8b:5c:5b:ca:5a:52:5b:60:af:14:f7:4b:ef:a3:fb:9f:40:95:
#         6d:31:54:fc:42:d3:c7:46:1f:23:ad:d9:0f:48:70:9a:d9:75:
#         78:71:d1:72:43:34:75:6e:57:59:c2:02:5c:26:60:29:cf:23:
#         19:16:8e:88:43:a5:d4:e4:cb:08:fb:23:11:43:e8:43:29:72:
#         62:a1:a9:5d:5e:08:d4:90:ae:b8:d8:ce:14:c2:d0:55:f2:86:
#         f6:c4:93:43:77:66:61:c0:b9:e8:41:d7:97:78:60:03:6e:4a:
#         72:ae:a5:d1:7d:ba:10:9e:86:6c:1b:8a:b9:59:33:f8:eb:c4:
#         90:be:f1:b9

[p11-kit-object-v1]
label: "Amazon Root CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArZafLZxKTEqBeVGZ7IrL
a2BRE7xNbQb8sAiN3RkQascmDDXYwG8ghOmUsZuFA8Nb20royPiQdtlbT+NM6AY2
TcyarD0MkCuS1AYZYKw3RHmFgYKtWjfgDcydpkxSdupDnbcE0VD2VeDV0qZJhek3
6cp+rlyVTUiaP64gWm2Ildk0uFIaQ5Cwv2wFubZ4t+rQ5Do8ElNi/0rye741BakS
NOPzZHRiLD0ASVoo/jJEu4fdZScCcTvaSvcf2s33IVWQTw/sroLhn2vZRdO78F+H
7TwsOYbaP97sclXreaOt2918sLoczvzeTzV2zw/4eB9qNlFGJ2Fb6Z7P8KJVfXwl
im8vtMXPhC4r/Q1REGz7Xxu8G37FrjuYATGS/wtX9JqyuVfpq+8NdtHw7vTOhqfg
bum0aaHfafYzxmkulxOepYewVxCBN8lTs7t/9pLRnNAY9JJu2oNPpmOZTKX7Xu8h
ZHogX2xkhRXLN+liDAsqFtwBLjLaPkv1njr2F0CU756RCIb6vmOoWjPsy3RDlfls
aVI2xylv/FUDXB/7n71H6+dJR5ULTokiCUng9WEe8b8uinJugFn/Vzr5dTKjTl/s
7Shi2U1z8syBF2Dtzevc26fKxX4CvfJUCFT9tC0JLBdUSpjRVOFRZwjS7W5+bz/S
LYFZKWbLkDmVER50J/7d668CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:d2:96:35:86:9f:0a:0f:e5:86:78:f8:5b:26:bb:8a:37
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=Amazon, CN=Amazon Root CA 2
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : May 26 00:00:00 2040 GMT
#        Subject: C=US, O=Amazon, CN=Amazon Root CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ad:96:9f:2d:9c:4a:4c:4a:81:79:51:99:ec:8a:
#                    cb:6b:60:51:13:bc:4d:6d:06:fc:b0:08:8d:dd:19:
#                    10:6a:c7:26:0c:35:d8:c0:6f:20:84:e9:94:b1:9b:
#                    85:03:c3:5b:db:4a:e8:c8:f8:90:76:d9:5b:4f:e3:
#                    4c:e8:06:36:4d:cc:9a:ac:3d:0c:90:2b:92:d4:06:
#                    19:60:ac:37:44:79:85:81:82:ad:5a:37:e0:0d:cc:
#                    9d:a6:4c:52:76:ea:43:9d:b7:04:d1:50:f6:55:e0:
#                    d5:d2:a6:49:85:e9:37:e9:ca:7e:ae:5c:95:4d:48:
#                    9a:3f:ae:20:5a:6d:88:95:d9:34:b8:52:1a:43:90:
#                    b0:bf:6c:05:b9:b6:78:b7:ea:d0:e4:3a:3c:12:53:
#                    62:ff:4a:f2:7b:be:35:05:a9:12:34:e3:f3:64:74:
#                    62:2c:3d:00:49:5a:28:fe:32:44:bb:87:dd:65:27:
#                    02:71:3b:da:4a:f7:1f:da:cd:f7:21:55:90:4f:0f:
#                    ec:ae:82:e1:9f:6b:d9:45:d3:bb:f0:5f:87:ed:3c:
#                    2c:39:86:da:3f:de:ec:72:55:eb:79:a3:ad:db:dd:
#                    7c:b0:ba:1c:ce:fc:de:4f:35:76:cf:0f:f8:78:1f:
#                    6a:36:51:46:27:61:5b:e9:9e:cf:f0:a2:55:7d:7c:
#                    25:8a:6f:2f:b4:c5:cf:84:2e:2b:fd:0d:51:10:6c:
#                    fb:5f:1b:bc:1b:7e:c5:ae:3b:98:01:31:92:ff:0b:
#                    57:f4:9a:b2:b9:57:e9:ab:ef:0d:76:d1:f0:ee:f4:
#                    ce:86:a7:e0:6e:e9:b4:69:a1:df:69:f6:33:c6:69:
#                    2e:97:13:9e:a5:87:b0:57:10:81:37:c9:53:b3:bb:
#                    7f:f6:92:d1:9c:d0:18:f4:92:6e:da:83:4f:a6:63:
#                    99:4c:a5:fb:5e:ef:21:64:7a:20:5f:6c:64:85:15:
#                    cb:37:e9:62:0c:0b:2a:16:dc:01:2e:32:da:3e:4b:
#                    f5:9e:3a:f6:17:40:94:ef:9e:91:08:86:fa:be:63:
#                    a8:5a:33:ec:cb:74:43:95:f9:6c:69:52:36:c7:29:
#                    6f:fc:55:03:5c:1f:fb:9f:bd:47:eb:e7:49:47:95:
#                    0b:4e:89:22:09:49:e0:f5:61:1e:f1:bf:2e:8a:72:
#                    6e:80:59:ff:57:3a:f9:75:32:a3:4e:5f:ec:ed:28:
#                    62:d9:4d:73:f2:cc:81:17:60:ed:cd:eb:dc:db:a7:
#                    ca:c5:7e:02:bd:f2:54:08:54:fd:b4:2d:09:2c:17:
#                    54:4a:98:d1:54:e1:51:67:08:d2:ed:6e:7e:6f:3f:
#                    d2:2d:81:59:29:66:cb:90:39:95:11:1e:74:27:fe:
#                    dd:eb:af
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B0:0C:F0:4C:30:F4:05:58:02:48:FD:33:E5:52:AF:4B:84:E3:66:52
#    Signature Algorithm: sha384WithRSAEncryption
#         aa:a8:80:8f:0e:78:a3:e0:a2:d4:cd:e6:f5:98:7a:3b:ea:00:
#         03:b0:97:0e:93:bc:5a:a8:f6:2c:8c:72:87:a9:b1:fc:7f:73:
#         fd:63:71:78:a5:87:59:cf:30:e1:0d:10:b2:13:5a:6d:82:f5:
#         6a:e6:80:9f:a0:05:0b:68:e4:47:6b:c7:6a:df:b6:fd:77:32:
#         72:e5:18:fa:09:f4:a0:93:2c:5d:d2:8c:75:85:76:65:90:0c:
#         03:79:b7:31:23:63:ad:78:83:09:86:68:84:ca:ff:f9:cf:26:
#         9a:92:79:e7:cd:4b:c5:e7:61:a7:17:cb:f3:a9:12:93:93:6b:
#         a7:e8:2f:53:92:c4:60:58:b0:cc:02:51:18:5b:85:8d:62:59:
#         63:b6:ad:b4:de:9a:fb:26:f7:00:27:c0:5d:55:37:74:99:c9:
#         50:7f:e3:59:2e:44:e3:2c:25:ee:ec:4c:32:77:b4:9f:1a:e9:
#         4b:5d:20:c5:da:fd:1c:87:16:c6:43:e8:d4:bb:26:9a:45:70:
#         5e:a9:0b:37:53:e2:46:7b:27:fd:e0:46:f2:89:b7:cc:42:b6:
#         cb:28:26:6e:d9:a5:c9:3a:c8:41:13:60:f7:50:8c:15:ae:b2:
#         6d:1a:15:1a:57:78:e6:92:2a:d9:65:90:82:3f:6c:02:af:ae:
#         12:3a:27:96:36:04:d7:1d:a2:80:63:a9:9b:f1:e5:ba:b4:7c:
#         14:b0:4e:c9:b1:1f:74:5f:38:f6:51:ea:9b:fa:2c:a2:11:d4:
#         a9:2d:27:1a:45:b1:af:b2:4e:71:0d:c0:58:46:d6:69:06:cb:
#         53:cb:b3:fe:6b:41:cd:41:7e:7d:4c:0f:7c:72:79:7a:59:cd:
#         5e:4a:0e:ac:9b:a9:98:73:79:7c:b4:f4:cc:b9:b8:07:0c:b2:
#         74:5c:b8:c7:6f:88:a1:90:a7:f4:aa:f9:bf:67:3a:f4:1a:15:
#         62:1e:b7:9f:be:3d:b1:29:af:67:a1:12:f2:58:10:19:53:03:
#         30:1b:b8:1a:89:f6:9c:bd:97:03:8e:a3:09:f3:1d:8b:21:f1:
#         b4:df:e4:1c:d1:9f:65:02:06:ea:5c:d6:13:b3:84:ef:a2:a5:
#         5c:8c:77:29:a7:68:c0:6b:ae:40:d2:a8:b4:ea:cd:f0:8d:4b:
#         38:9c:19:9a:1b:28:54:b8:89:90:ef:ca:75:81:3e:1e:f2:64:
#         24:c7:18:af:4e:ff:47:9e:07:f6:35:65:a4:d3:0a:56:ff:f5:
#         17:64:6c:ef:a8:22:25:49:93:b6:df:00:17:da:58:7e:5d:ee:
#         c5:1b:b0:d1:d1:5f:21:10:c7:f9:f3:ba:02:0a:27:07:c5:f1:
#         d6:c7:d3:e0:fb:09:60:6c

[p11-kit-object-v1]
label: "Amazon Root CA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEKZenxkF/wA2b6AEbVsbyUqW6LbIS
6NIu1/rJxdiqbR9zgTs7mGs5fDOlxU6GjoAXaGJFV31EWB2zN+VnCOtm3g==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIBtjCCAVugAwIBAgITBmyf1XSXNmY/Owua2eiedgPySjAKBggqhkjOPQQDAjA5
MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRkwFwYDVQQDExBBbWF6b24g
Um9vdCBDQSAzMB4XDTE1MDUyNjAwMDAwMFoXDTQwMDUyNjAwMDAwMFowOTELMAkG
A1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEZMBcGA1UEAxMQQW1hem9uIFJvb3Qg
Q0EgMzBZMBMGByqGSM49AgEGCCqGSM49AwEHA0IABCmXp8ZBf8ANm+gBG1bG8lKl
ui2yEujSLtf6ycXYqm0fc4E7O5hrOXwzpcVOho6AF2hiRVd9RFgdszflZwjrZt6j
QjBAMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgGGMB0GA1UdDgQWBBSr
ttvXBp43rDCGB5Fwx5zEGbF4wDAKBggqhkjOPQQDAgNJADBGAiEA4IWSoxe3jfkr
BqWTrBqYaGFy+uGh0PsceGCmQ5nFuMQCIQCcAu/xlJyzlvnrxir4tiz+OpAUFteM
YyRIHN8wfdVoOw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:d5:74:97:36:66:3f:3b:0b:9a:d9:e8:9e:76:03:f2:4a
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C=US, O=Amazon, CN=Amazon Root CA 3
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : May 26 00:00:00 2040 GMT
#        Subject: C=US, O=Amazon, CN=Amazon Root CA 3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub: 
#                    04:29:97:a7:c6:41:7f:c0:0d:9b:e8:01:1b:56:c6:
#                    f2:52:a5:ba:2d:b2:12:e8:d2:2e:d7:fa:c9:c5:d8:
#                    aa:6d:1f:73:81:3b:3b:98:6b:39:7c:33:a5:c5:4e:
#                    86:8e:80:17:68:62:45:57:7d:44:58:1d:b3:37:e5:
#                    67:08:eb:66:de
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                AB:B6:DB:D7:06:9E:37:AC:30:86:07:91:70:C7:9C:C4:19:B1:78:C0
#    Signature Algorithm: ecdsa-with-SHA256
#         30:46:02:21:00:e0:85:92:a3:17:b7:8d:f9:2b:06:a5:93:ac:
#         1a:98:68:61:72:fa:e1:a1:d0:fb:1c:78:60:a6:43:99:c5:b8:
#         c4:02:21:00:9c:02:ef:f1:94:9c:b3:96:f9:eb:c6:2a:f8:b6:
#         2c:fe:3a:90:14:16:d7:8c:63:24:48:1c:df:30:7d:d5:68:3b

[p11-kit-object-v1]
label: "Amazon Root CA 4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE0quKN0+jUw3+wYp7S6h7RktjsGL2LRvb
CHEh0gDoY72aJ/vwOW5d6j2lyYGqo1sgmEVdFtv96BBt45zg471fhGLzcGQzoMsk
L3C6iKEqoHX4ga5iBsSB2zluKbAe+i5c
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Amazon Root CA 4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:6c:9f:d7:c1:bb:10:4c:29:43:e5:71:7b:7b:2c:c8:1a:c1:0e
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Amazon, CN=Amazon Root CA 4
#        Validity
#            Not Before: May 26 00:00:00 2015 GMT
#            Not After : May 26 00:00:00 2040 GMT
#        Subject: C=US, O=Amazon, CN=Amazon Root CA 4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:d2:ab:8a:37:4f:a3:53:0d:fe:c1:8a:7b:4b:a8:
#                    7b:46:4b:63:b0:62:f6:2d:1b:db:08:71:21:d2:00:
#                    e8:63:bd:9a:27:fb:f0:39:6e:5d:ea:3d:a5:c9:81:
#                    aa:a3:5b:20:98:45:5d:16:db:fd:e8:10:6d:e3:9c:
#                    e0:e3:bd:5f:84:62:f3:70:64:33:a0:cb:24:2f:70:
#                    ba:88:a1:2a:a0:75:f8:81:ae:62:06:c4:81:db:39:
#                    6e:29:b0:1e:fa:2e:5c
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                D3:EC:C7:3A:65:6E:CC:E1:DA:76:9A:56:FB:9C:F3:86:6D:57:E5:81
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:3a:8b:21:f1:bd:7e:11:ad:d0:ef:58:96:2f:d6:
#         eb:9d:7e:90:8d:2b:cf:66:55:c3:2c:e3:28:a9:70:0a:47:0e:
#         f0:37:59:12:ff:2d:99:94:28:4e:2a:4f:35:4d:33:5a:02:31:
#         00:ea:75:00:4e:3b:c4:3a:94:12:91:c9:58:46:9d:21:13:72:
#         a7:88:9c:8a:e4:4c:4a:db:96:d4:ac:8b:6b:6b:49:12:53:33:
#         ad:d7:e4:be:24:fc:b5:0a:76:d4:a5:bc:10

[p11-kit-object-v1]
label: "America Online Root Certification Authority 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqC/opGkGA0fD6SqY/xmi
cJrGULJ+pd9oTRt8D7aXaH0tpouX6WSGyaPvoIa/YGWcS1SIwkjFSjm/FONZVeUZ
tHTItAU5XBal4pUF4BKuWYuiM2hYHKbUFbfYn9fccat+mr+bjjMPIv0fLucHNu9i
OcXdy7olFCPeDMY9PM6CCOZmPtpROxY6owV/oNyH1Zz8cqmgfXjktzFVHmW71GGw
IWDtEDJyxZIlHviQShh4R99+MDc+UBvbHNNrmoZTB7DvrAZ4+ISZ/iGNTIC2DIL2
ZnB5GtNPo8/xz0awSw8+3YhiuIypCSg7eseX4R7l9J/AwK4koMih2Q/WeyaCaTI9
pwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "America Online Root Certification Authority 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=America Online Inc., CN=America Online Root Certification Authority 1
#        Validity
#            Not Before: May 28 06:00:00 2002 GMT
#            Not After : Nov 19 20:43:00 2037 GMT
#        Subject: C=US, O=America Online Inc., CN=America Online Root Certification Authority 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a8:2f:e8:a4:69:06:03:47:c3:e9:2a:98:ff:19:
#                    a2:70:9a:c6:50:b2:7e:a5:df:68:4d:1b:7c:0f:b6:
#                    97:68:7d:2d:a6:8b:97:e9:64:86:c9:a3:ef:a0:86:
#                    bf:60:65:9c:4b:54:88:c2:48:c5:4a:39:bf:14:e3:
#                    59:55:e5:19:b4:74:c8:b4:05:39:5c:16:a5:e2:95:
#                    05:e0:12:ae:59:8b:a2:33:68:58:1c:a6:d4:15:b7:
#                    d8:9f:d7:dc:71:ab:7e:9a:bf:9b:8e:33:0f:22:fd:
#                    1f:2e:e7:07:36:ef:62:39:c5:dd:cb:ba:25:14:23:
#                    de:0c:c6:3d:3c:ce:82:08:e6:66:3e:da:51:3b:16:
#                    3a:a3:05:7f:a0:dc:87:d5:9c:fc:72:a9:a0:7d:78:
#                    e4:b7:31:55:1e:65:bb:d4:61:b0:21:60:ed:10:32:
#                    72:c5:92:25:1e:f8:90:4a:18:78:47:df:7e:30:37:
#                    3e:50:1b:db:1c:d3:6b:9a:86:53:07:b0:ef:ac:06:
#                    78:f8:84:99:fe:21:8d:4c:80:b6:0c:82:f6:66:70:
#                    79:1a:d3:4f:a3:cf:f1:cf:46:b0:4b:0f:3e:dd:88:
#                    62:b8:8c:a9:09:28:3b:7a:c7:97:e1:1e:e5:f4:9f:
#                    c0:c0:ae:24:a0:c8:a1:d9:0f:d6:7b:26:82:69:32:
#                    3d:a7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                00:AD:D9:A3:F6:79:F6:6E:74:A9:7F:33:3D:81:17:D7:4C:CF:33:DE
#            X509v3 Authority Key Identifier: 
#                keyid:00:AD:D9:A3:F6:79:F6:6E:74:A9:7F:33:3D:81:17:D7:4C:CF:33:DE
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         7c:8a:d1:1f:18:37:82:e0:b8:b0:a3:ed:56:95:c8:62:61:9c:
#         05:a2:cd:c2:62:26:61:cd:10:16:d7:cc:b4:65:34:d0:11:8a:
#         ad:a8:a9:05:66:ef:74:f3:6d:5f:9d:99:af:f6:8b:fb:eb:52:
#         b2:05:98:a2:6f:2a:c5:54:bd:25:bd:5f:ae:c8:86:ea:46:2c:
#         c1:b3:bd:c1:e9:49:70:18:16:97:08:13:8c:20:e0:1b:2e:3a:
#         47:cb:1e:e4:00:30:95:5b:f4:45:a3:c0:1a:b0:01:4e:ab:bd:
#         c0:23:6e:63:3f:80:4a:c5:07:ed:dc:e2:6f:c7:c1:62:f1:e3:
#         72:d6:04:c8:74:67:0b:fa:88:ab:a1:01:c8:6f:f0:14:af:d2:
#         99:cd:51:93:7e:ed:2e:38:c7:bd:ce:46:50:3d:72:e3:79:25:
#         9d:9b:88:2b:10:20:dd:a5:b8:32:9f:8d:e0:29:df:21:74:86:
#         82:db:2f:82:30:c6:c7:35:86:b3:f9:96:5f:46:db:0c:45:fd:
#         f3:50:c3:6f:c6:c3:48:ad:46:a6:e1:27:47:0a:1d:0e:9b:b6:
#         c2:77:7f:63:f2:e0:7d:1a:be:fc:e0:df:d7:c7:a7:6c:b0:f9:
#         ae:ba:3c:fd:74:b4:11:e8:58:0d:80:bc:d3:a8:80:3a:99:ed:
#         75:cc:46:7b

[p11-kit-object-v1]
label: "ApplicationCA2 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApqqtJWXWABHW6Hp2qvTm
tEvzzMNStI2spk+1knFvRrXVrYsSIhclzkXoFHqFmuQjEKj6sWdQ5W1H4GqJE+Ou
rjXx9ELFBfdNl348KPywJpEejB44GpbcWESXYuMyyNEVQU11mHi+q2ipXu1HvqS6
jqECl96TdJltZ7QFJe6UyO2qpLoybEIR677LFwaQ4ZOFyGQozh9Hx8BdYO52Ntwz
O1Hre89y2A94qBmCCJA+GpiNjrTPFTambt234k1AIFPZdirQeKyJ8E+LMm1E6i66
sKnrid23b3kPq4FuuOaLKQtZr7ZJDVEsqf2dKGNmuHCVc5rY+jszvEJCGzKssTL7
PQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ApplicationCA2 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:32:35:33:37:32:38:32:38:32:38
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=JP, O=Japanese Government, OU=GPKI, CN=ApplicationCA2 Root
#        Validity
#            Not Before: Mar 12 15:00:00 2013 GMT
#            Not After : Mar 12 15:00:00 2033 GMT
#        Subject: C=JP, O=Japanese Government, OU=GPKI, CN=ApplicationCA2 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a6:aa:ad:25:65:d6:00:11:d6:e8:7a:76:aa:f4:
#                    e6:b4:4b:f3:cc:c3:52:b4:8d:ac:a6:4f:b5:92:71:
#                    6f:46:b5:d5:ad:8b:12:22:17:25:ce:45:e8:14:7a:
#                    85:9a:e4:23:10:a8:fa:b1:67:50:e5:6d:47:e0:6a:
#                    89:13:e3:ae:ae:35:f1:f4:42:c5:05:f7:4d:97:7e:
#                    3c:28:fc:b0:26:91:1e:8c:1e:38:1a:96:dc:58:44:
#                    97:62:e3:32:c8:d1:15:41:4d:75:98:78:be:ab:68:
#                    a9:5e:ed:47:be:a4:ba:8e:a1:02:97:de:93:74:99:
#                    6d:67:b4:05:25:ee:94:c8:ed:aa:a4:ba:32:6c:42:
#                    11:eb:be:cb:17:06:90:e1:93:85:c8:64:28:ce:1f:
#                    47:c7:c0:5d:60:ee:76:36:dc:33:3b:51:eb:7b:cf:
#                    72:d8:0f:78:a8:19:82:08:90:3e:1a:98:8d:8e:b4:
#                    cf:15:36:a6:6e:dd:b7:e2:4d:40:20:53:d9:76:2a:
#                    d0:78:ac:89:f0:4f:8b:32:6d:44:ea:2e:ba:b0:a9:
#                    eb:89:dd:b7:6f:79:0f:ab:81:6e:b8:e6:8b:29:0b:
#                    59:af:b6:49:0d:51:2c:a9:fd:9d:28:63:66:b8:70:
#                    95:73:9a:d8:fa:3b:33:bc:42:42:1b:32:ac:b1:32:
#                    fb:3d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                56:A7:AC:AA:02:1D:B2:AC:3D:90:0E:A0:6F:2E:41:C6:76:E7:7B:DA
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DirName:/C=JP/O=\xE6\x97\xA5\xE6\x9C\xAC\xE5\x9B\xBD\xE6\x94\xBF\xE5\xBA\x9C/OU=\xE6\x94\xBF\xE5\xBA\x9C\xE8\xAA\x8D\xE8\xA8\xBC\xE5\x9F\xBA\xE7\x9B\xA4/CN=\xE3\x82\xA2\xE3\x83\x97\xE3\x83\xAA\xE3\x82\xB1\xE3\x83\xBC\xE3\x82\xB7\xE3\x83\xA7\xE3\x83\xB3CA2 Root
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:9a:09:75:ac:07:d1:72:74:2e:77:57:30:c2:04:9c:d4:80:
#         a6:83:e7:a5:a0:1b:9f:fe:ab:f3:80:bd:d5:4a:a3:a1:8f:b6:
#         4c:60:11:e7:ca:e1:60:81:d7:48:c1:20:59:a5:61:32:8b:9d:
#         9e:97:d3:66:83:da:65:2e:58:3e:db:e5:2f:a5:cd:8c:73:a6:
#         51:be:58:28:a0:79:5c:69:2f:43:df:63:b2:89:47:ca:bb:de:
#         b9:34:11:63:a0:0e:25:17:e5:87:f4:1d:b0:b0:a5:cf:41:a8:
#         74:c6:e8:53:d5:42:f4:82:2d:53:09:11:68:26:71:94:75:13:
#         4d:aa:76:88:3c:74:b1:d6:e3:4c:4f:62:c3:49:4c:4e:6d:f1:
#         70:7e:c3:7f:a6:05:cc:78:9b:e9:81:db:a8:c8:c7:5c:9e:fc:
#         92:92:2d:a6:97:f2:38:b5:6e:73:95:0c:c0:3f:ce:a6:94:30:
#         b5:fa:05:b7:de:9e:20:aa:fc:13:64:c9:8a:ba:64:ef:e2:63:
#         e4:d8:98:ae:6b:b5:3e:a6:55:b8:33:3e:2c:72:fb:2c:11:00:
#         fb:5b:16:2f:84:d2:13:9e:fa:05:c5:c1:cb:72:4e:22:dd:84:
#         ca:4b:bc:d2:2d:86:1a:04:76:59:1f:49:42:62:3b:13:1f:16:
#         e8:ba:d7:fd

[p11-kit-object-v1]
label: "Application CA G3 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzUU+99GWIlyRLz4KAAPM
tvdsVPwoN9QEGOytmMmv06W559m/TuajmTyZbqEgHkYb4nVVvNLs9oga7DRFS4Od
07Lm3QeJwQjZ+DuLkmRyXZo7zK03icfcYHkI4HCs9yvtnwNJH44+g6hu4pJcVNF5
3+wYOn24bY/WoyVNrR9Apl/Uqk6xcBhZmfILVGk+eShEiPdxl81/BdzK3HZKkExr
YOj6JjHYtfjn/G2LJGq270LXI1TFGmOKO8f8qm08j8ts2iCw8rxlHAFMIpUNHCMf
rNX5znVb6jC9TAEkH3XUYUnDG5lljghcOTjNKcM4Rc1kebebTUfqWDL6pvaS8MG3
XwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Application CA G3 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 49 (0x31)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=JP, O=LGPKI, CN=Application CA G3 Root
#        Validity
#            Not Before: Jun  3 15:00:00 2014 GMT
#            Not After : Jun  3 14:59:59 2034 GMT
#        Subject: C=JP, O=LGPKI, CN=Application CA G3 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:cd:45:3e:f7:d1:96:22:5c:91:2f:3e:0a:00:03:
#                    cc:b6:f7:6c:54:fc:28:37:d4:04:18:ec:ad:98:c9:
#                    af:d3:a5:b9:e7:d9:bf:4e:e6:a3:99:3c:99:6e:a1:
#                    20:1e:46:1b:e2:75:55:bc:d2:ec:f6:88:1a:ec:34:
#                    45:4b:83:9d:d3:b2:e6:dd:07:89:c1:08:d9:f8:3b:
#                    8b:92:64:72:5d:9a:3b:cc:ad:37:89:c7:dc:60:79:
#                    08:e0:70:ac:f7:2b:ed:9f:03:49:1f:8e:3e:83:a8:
#                    6e:e2:92:5c:54:d1:79:df:ec:18:3a:7d:b8:6d:8f:
#                    d6:a3:25:4d:ad:1f:40:a6:5f:d4:aa:4e:b1:70:18:
#                    59:99:f2:0b:54:69:3e:79:28:44:88:f7:71:97:cd:
#                    7f:05:dc:ca:dc:76:4a:90:4c:6b:60:e8:fa:26:31:
#                    d8:b5:f8:e7:fc:6d:8b:24:6a:b6:ef:42:d7:23:54:
#                    c5:1a:63:8a:3b:c7:fc:aa:6d:3c:8f:cb:6c:da:20:
#                    b0:f2:bc:65:1c:01:4c:22:95:0d:1c:23:1f:ac:d5:
#                    f9:ce:75:5b:ea:30:bd:4c:01:24:1f:75:d4:61:49:
#                    c3:1b:99:65:8e:08:5c:39:38:cd:29:c3:38:45:cd:
#                    64:79:b7:9b:4d:47:ea:58:32:fa:a6:f6:92:f0:c1:
#                    b7:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A9:35:2A:48:BE:2C:37:ED:86:DB:7C:55:87:00:26:BE:18:2D:5C:2E
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A9:35:2A:48:BE:2C:37:ED:86:DB:7C:55:87:00:26:BE:18:2D:5C:2E
#
#    Signature Algorithm: sha256WithRSAEncryption
#         b6:82:bd:c5:46:d0:71:8b:a5:91:3d:7e:2d:5a:f9:9c:84:7d:
#         07:27:95:1d:e7:4d:c8:7c:ec:e6:93:e8:56:1a:7a:30:48:3b:
#         0c:fa:4e:f5:09:b2:af:88:ad:94:ec:fd:b2:ad:2f:e6:05:74:
#         21:1b:84:8b:38:2a:c3:ed:ef:46:68:b5:dd:52:fa:70:c2:75:
#         4f:ff:a3:41:2e:3c:17:94:4c:09:22:b4:8e:c1:7f:c4:a6:ac:
#         ed:83:68:cf:65:5e:ec:7a:bd:c5:66:ee:d0:a3:7f:f2:57:b1:
#         08:c2:79:70:eb:72:7f:41:59:09:79:75:f1:bc:b1:21:fe:83:
#         b3:44:3d:89:a3:be:b1:7a:d8:9d:c3:1f:e6:c4:54:e1:8d:e5:
#         d8:50:dc:e4:56:37:7b:be:28:00:f3:2c:77:da:23:7f:60:98:
#         3d:05:16:f2:78:69:ad:99:c3:3a:74:6c:3e:9a:b2:94:ed:8f:
#         aa:f6:53:6b:e7:c8:b7:e8:3c:8c:fb:c7:7c:4f:19:5d:a4:66:
#         15:e9:7f:87:a0:d0:d5:ad:20:a4:46:09:45:ac:e5:c8:65:87:
#         bb:06:df:fc:d7:68:56:43:73:a2:00:99:32:92:c2:0e:a0:1c:
#         0e:91:bd:95:58:bc:93:9f:84:c2:a5:66:e7:65:cd:29:e2:62:
#         f2:05:92:60

[p11-kit-object-v1]
label: "Application CA G4 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr6vH5YymWJ4v1gXJkXcw
vt4a1A5jYtHMLbHRhjiNHYVmU5+qQWXgWNLlKb6UqJWTPF9qxZufNOhtwcbTp+VD
oBIwwDk0YAyL9Gj1SN/pjhyuSKe7qj14t+JJu8EjBFobkAHFfatKAaHCk2rShbO2
53bra2846yBSMJUI9fks7sjAdbkB7cE3VjBcnX9kwspAILmVhbylB30Mvi6h3cYm
6SopbJ8omClR6HYTG+8uCzdaM57AJWeqDy2o1JImOAGn0GIYLiI4OHgLulKZoXwm
ArHixeLezooCRISio+mLiGMxyS84AOnEAk0eIycSSNwRsfDS4g4wGa8DoQezNZQi
pQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Application CA G4 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDZDCCAkygAwIBAgILMaXzypDqI6zSnr0wDQYJKoZIhvcNAQELBQAwPjELMAkG
A1UEBhMCSlAxDjAMBgNVBAoTBUxHUEtJMR8wHQYDVQQDExZBcHBsaWNhdGlvbiBD
QSBHNCBSb290MB4XDTE3MDIxNTE1MDAwMFoXDTM3MDIxNTE0NTk1OVowPjELMAkG
A1UEBhMCSlAxDjAMBgNVBAoTBUxHUEtJMR8wHQYDVQQDExZBcHBsaWNhdGlvbiBD
QSBHNCBSb290MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr6vH5Yym
WJ4v1gXJkXcwvt4a1A5jYtHMLbHRhjiNHYVmU5+qQWXgWNLlKb6UqJWTPF9qxZuf
NOhtwcbTp+VDoBIwwDk0YAyL9Gj1SN/pjhyuSKe7qj14t+JJu8EjBFobkAHFfatK
AaHCk2rShbO253bra2846yBSMJUI9fks7sjAdbkB7cE3VjBcnX9kwspAILmVhbyl
B30Mvi6h3cYm6SopbJ8omClR6HYTG+8uCzdaM57AJWeqDy2o1JImOAGn0GIYLiI4
OHgLulKZoXwmArHixeLezooCRISio+mLiGMxyS84AOnEAk0eIycSSNwRsfDS4g4w
Ga8DoQezNZQipQIDAQABo2MwYTAdBgNVHQ4EFgQUbtwKNR8gwuih030FTk9MYOWk
xGcwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHwYDVR0jBBgwFoAU
btwKNR8gwuih030FTk9MYOWkxGcwDQYJKoZIhvcNAQELBQADggEBAFUz1UC3Gn5P
3HSDDkS6P71SlciTliPyAbkU68oSdM1hiDSvTV70WYqrHtjjWcEe+DC1QMa7uK/R
7T9sqnOYguSYNK6SQQ5ZNhq6UBwW9Bc6LBvil2+yr9Ha3hRS34A8x089h566lb14
vFU8ifYuJtUV5dBAEsWzcT9sZh+j/Eu1TuJu3IAHw/koFHv3XhZqQ6eukQEfT2Wp
SLPObhoGIaTTMYiIpUkRgmvruZ1g/p/+xff4f6s37q/nWEa6CeRdOadLBNgDAslg
Kl5VaRELYHiBevRx9Y9Gro8EqJccgIkjY9v+66YXDlm2LrmG619ebN2B56swgSOQ
J7H3K5A5C7g=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:a5:f3:ca:90:ea:23:ac:d2:9e:bd
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=JP, O=LGPKI, CN=Application CA G4 Root
#        Validity
#            Not Before: Feb 15 15:00:00 2017 GMT
#            Not After : Feb 15 14:59:59 2037 GMT
#        Subject: C=JP, O=LGPKI, CN=Application CA G4 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:af:ab:c7:e5:8c:a6:58:9e:2f:d6:05:c9:91:77:
#                    30:be:de:1a:d4:0e:63:62:d1:cc:2d:b1:d1:86:38:
#                    8d:1d:85:66:53:9f:aa:41:65:e0:58:d2:e5:29:be:
#                    94:a8:95:93:3c:5f:6a:c5:9b:9f:34:e8:6d:c1:c6:
#                    d3:a7:e5:43:a0:12:30:c0:39:34:60:0c:8b:f4:68:
#                    f5:48:df:e9:8e:1c:ae:48:a7:bb:aa:3d:78:b7:e2:
#                    49:bb:c1:23:04:5a:1b:90:01:c5:7d:ab:4a:01:a1:
#                    c2:93:6a:d2:85:b3:b6:e7:76:eb:6b:6f:38:eb:20:
#                    52:30:95:08:f5:f9:2c:ee:c8:c0:75:b9:01:ed:c1:
#                    37:56:30:5c:9d:7f:64:c2:ca:40:20:b9:95:85:bc:
#                    a5:07:7d:0c:be:2e:a1:dd:c6:26:e9:2a:29:6c:9f:
#                    28:98:29:51:e8:76:13:1b:ef:2e:0b:37:5a:33:9e:
#                    c0:25:67:aa:0f:2d:a8:d4:92:26:38:01:a7:d0:62:
#                    18:2e:22:38:38:78:0b:ba:52:99:a1:7c:26:02:b1:
#                    e2:c5:e2:de:ce:8a:02:44:84:a2:a3:e9:8b:88:63:
#                    31:c9:2f:38:00:e9:c4:02:4d:1e:23:27:12:48:dc:
#                    11:b1:f0:d2:e2:0e:30:19:af:03:a1:07:b3:35:94:
#                    22:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                6E:DC:0A:35:1F:20:C2:E8:A1:D3:7D:05:4E:4F:4C:60:E5:A4:C4:67
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:6E:DC:0A:35:1F:20:C2:E8:A1:D3:7D:05:4E:4F:4C:60:E5:A4:C4:67
#
#    Signature Algorithm: sha256WithRSAEncryption
#         55:33:d5:40:b7:1a:7e:4f:dc:74:83:0e:44:ba:3f:bd:52:95:
#         c8:93:96:23:f2:01:b9:14:eb:ca:12:74:cd:61:88:34:af:4d:
#         5e:f4:59:8a:ab:1e:d8:e3:59:c1:1e:f8:30:b5:40:c6:bb:b8:
#         af:d1:ed:3f:6c:aa:73:98:82:e4:98:34:ae:92:41:0e:59:36:
#         1a:ba:50:1c:16:f4:17:3a:2c:1b:e2:97:6f:b2:af:d1:da:de:
#         14:52:df:80:3c:c7:4f:3d:87:9e:ba:95:bd:78:bc:55:3c:89:
#         f6:2e:26:d5:15:e5:d0:40:12:c5:b3:71:3f:6c:66:1f:a3:fc:
#         4b:b5:4e:e2:6e:dc:80:07:c3:f9:28:14:7b:f7:5e:16:6a:43:
#         a7:ae:91:01:1f:4f:65:a9:48:b3:ce:6e:1a:06:21:a4:d3:31:
#         88:88:a5:49:11:82:6b:eb:b9:9d:60:fe:9f:fe:c5:f7:f8:7f:
#         ab:37:ee:af:e7:58:46:ba:09:e4:5d:39:a7:4b:04:d8:03:02:
#         c9:60:2a:5e:55:69:11:0b:60:78:81:7a:f4:71:f5:8f:46:ae:
#         8f:04:a8:97:1c:80:89:23:63:db:fe:eb:a6:17:0e:59:b6:2e:
#         b9:86:eb:5f:5e:6c:dd:81:e7:ab:30:81:23:90:27:b1:f7:2b:
#         90:39:0b:b8

[p11-kit-object-v1]
label: "Atos TrustedRoot 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlYU7l28qOy47z6bzKTW+
zxisPqrZ+E2gPhpHubya3/L+zD5H6HqWwiSONfSpDPyC/W3BcmInvepr6+eKzFQ+
kFDPgNSV++i1gtQUxbapVSVX27FQ9rBgZFl6ac8Dt28Nvso+b3Ry6qowKnNivkmR
YcgR/g4DKvdqINwCFQ1eFWr844LBtcWdZAlso1mYByfHG5YrYXRxbEPx9zWJEOCe
7FWhNyKihwQFLEd9tBy5YilmKMq34ZP1pJQDmblwhbXmSOqNUPzZ3sxvBw7dC3Kd
gDAWB5U/KA79xXVPU9Z0mrQkLo4Ckc92xZseVXSceCGx8C3xC5/C1ZYYH/BUInqM
BwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Atos TrustedRoot 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5c:33:cb:62:2c:5f:b3:32
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: CN=Atos TrustedRoot 2011, O=Atos, C=DE
#        Validity
#            Not Before: Jul  7 14:58:30 2011 GMT
#            Not After : Dec 31 23:59:59 2030 GMT
#        Subject: CN=Atos TrustedRoot 2011, O=Atos, C=DE
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:95:85:3b:97:6f:2a:3b:2e:3b:cf:a6:f3:29:35:
#                    be:cf:18:ac:3e:aa:d9:f8:4d:a0:3e:1a:47:b9:bc:
#                    9a:df:f2:fe:cc:3e:47:e8:7a:96:c2:24:8e:35:f4:
#                    a9:0c:fc:82:fd:6d:c1:72:62:27:bd:ea:6b:eb:e7:
#                    8a:cc:54:3e:90:50:cf:80:d4:95:fb:e8:b5:82:d4:
#                    14:c5:b6:a9:55:25:57:db:b1:50:f6:b0:60:64:59:
#                    7a:69:cf:03:b7:6f:0d:be:ca:3e:6f:74:72:ea:aa:
#                    30:2a:73:62:be:49:91:61:c8:11:fe:0e:03:2a:f7:
#                    6a:20:dc:02:15:0d:5e:15:6a:fc:e3:82:c1:b5:c5:
#                    9d:64:09:6c:a3:59:98:07:27:c7:1b:96:2b:61:74:
#                    71:6c:43:f1:f7:35:89:10:e0:9e:ec:55:a1:37:22:
#                    a2:87:04:05:2c:47:7d:b4:1c:b9:62:29:66:28:ca:
#                    b7:e1:93:f5:a4:94:03:99:b9:70:85:b5:e6:48:ea:
#                    8d:50:fc:d9:de:cc:6f:07:0e:dd:0b:72:9d:80:30:
#                    16:07:95:3f:28:0e:fd:c5:75:4f:53:d6:74:9a:b4:
#                    24:2e:8e:02:91:cf:76:c5:9b:1e:55:74:9c:78:21:
#                    b1:f0:2d:f1:0b:9f:c2:d5:96:18:1f:f0:54:22:7a:
#                    8c:07
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A7:A5:06:B1:2C:A6:09:60:EE:D1:97:E9:70:AE:BC:3B:19:6C:DB:21
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A7:A5:06:B1:2C:A6:09:60:EE:D1:97:E9:70:AE:BC:3B:19:6C:DB:21
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.6189.3.4.1.1
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         26:77:34:db:94:48:86:2a:41:9d:2c:3e:06:90:60:c4:8c:ac:
#         0b:54:b8:1f:b9:7b:d3:07:39:e4:fa:3e:7b:b2:3d:4e:ed:9f:
#         23:bd:97:f3:6b:5c:ef:ee:fd:40:a6:df:a1:93:a1:0a:86:ac:
#         ef:20:d0:79:01:bd:78:f7:19:d8:24:31:34:04:01:a6:ba:15:
#         9a:c3:27:dc:d8:4f:0f:cc:18:63:ff:99:0f:0e:91:6b:75:16:
#         e1:21:fc:d8:26:c7:47:b7:a6:cf:58:72:71:7e:ba:e1:4d:95:
#         47:3b:c9:af:6d:a1:b4:c1:ec:89:f6:b4:0f:38:b5:e2:64:dc:
#         25:cf:a6:db:eb:9a:5c:99:a1:c5:08:de:fd:e6:da:d5:d6:5a:
#         45:0c:c4:b7:c2:b5:14:ef:b4:11:ff:0e:15:b5:f5:f5:db:c6:
#         bd:eb:5a:a7:f0:56:22:a9:3c:65:54:c6:15:a8:bd:86:9e:cd:
#         83:96:68:7a:71:81:89:e1:0b:e1:ea:11:1b:68:08:cc:69:9e:
#         ec:9e:41:9e:44:32:26:7a:e2:87:0a:71:3d:eb:e4:5a:a4:d2:
#         db:c5:cd:c6:de:60:7f:b9:f3:4f:44:92:ef:2a:b7:18:3e:a7:
#         19:d9:0b:7d:b1:37:41:42:b0:ba:60:1d:f2:fe:09:11:b0:f0:
#         87:7b:a7:9d

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA ECC G2 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEyFyAyk7CKB9XvzjmYSP80KlblhYWwwxe
FaWQCf84KLR6HgrWUyrBu5BAdDfpgeiNL2gBNXxSLtj0WLMRHFvZhxiTkS3sndps
nm2ESPzCiQXrmBMCAWxTHg5JY1hHsa/C
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA ECC G2 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICMTCCAbagAwIBAgIMC3MoERh0MBzvbwiEMAoGCCqGSM49BAMDMEsxCzAJBgNV
BAYTAkRFMQ0wCwYDVQQKDARBdG9zMS0wKwYDVQQDDCRBdG9zIFRydXN0ZWRSb290
IFJvb3QgQ0EgRUNDIEcyIDIwMjAwHhcNMjAxMjE1MDgzOTEwWhcNNDAxMjEwMDgz
OTA5WjBLMQswCQYDVQQGEwJERTENMAsGA1UECgwEQXRvczEtMCsGA1UEAwwkQXRv
cyBUcnVzdGVkUm9vdCBSb290IENBIEVDQyBHMiAyMDIwMHYwEAYHKoZIzj0CAQYF
K4EEACIDYgAEyFyAyk7CKB9XvzjmYSP80KlblhYWwwxeFaWQCf84KLR6HgrWUyrB
u5BAdDfpgeiNL2gBNXxSLtj0WLMRHFvZhxiTkS3sndpsnm2ESPzCiQXrmBMCAWxT
Hg5JY1hHsa/Co2MwYTAPBgNVHRMBAf8EBTADAQH/MB8GA1UdIwQYMBaAFFsfxHFs
shufvlwfjP2ztvuzDgmHMB0GA1UdDgQWBBRbH8RxbLIbn75cH4z9s7b7sw4JhzAO
BgNVHQ8BAf8EBAMCAYYwCgYIKoZIzj0EAwMDaQAwZgIxAOzgmf3d5FTByx/oPijX
FVlKgspTMOzrNqW5yM6TR1bIYabhbZJTlY/241VT8N165wIxALCH1RuzYPyRjYDK
ohtRSzhUy6oee9flRJUWLzxEeC4luuqQ5OxS7lfsA4TzXtsWDQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0b:73:28:11:18:74:30:1c:ef:6f:08:84
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=DE, O=Atos, CN=Atos TrustedRoot Root CA ECC G2 2020
#        Validity
#            Not Before: Dec 15 08:39:10 2020 GMT
#            Not After : Dec 10 08:39:09 2040 GMT
#        Subject: C=DE, O=Atos, CN=Atos TrustedRoot Root CA ECC G2 2020
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:c8:5c:80:ca:4e:c2:28:1f:57:bf:38:e6:61:23:
#                    fc:d0:a9:5b:96:16:16:c3:0c:5e:15:a5:90:09:ff:
#                    38:28:b4:7a:1e:0a:d6:53:2a:c1:bb:90:40:74:37:
#                    e9:81:e8:8d:2f:68:01:35:7c:52:2e:d8:f4:58:b3:
#                    11:1c:5b:d9:87:18:93:91:2d:ec:9d:da:6c:9e:6d:
#                    84:48:fc:c2:89:05:eb:98:13:02:01:6c:53:1e:0e:
#                    49:63:58:47:b1:af:c2
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:5B:1F:C4:71:6C:B2:1B:9F:BE:5C:1F:8C:FD:B3:B6:FB:B3:0E:09:87
#
#            X509v3 Subject Key Identifier: 
#                5B:1F:C4:71:6C:B2:1B:9F:BE:5C:1F:8C:FD:B3:B6:FB:B3:0E:09:87
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:ec:e0:99:fd:dd:e4:54:c1:cb:1f:e8:3e:28:
#         d7:15:59:4a:82:ca:53:30:ec:eb:36:a5:b9:c8:ce:93:47:56:
#         c8:61:a6:e1:6d:92:53:95:8f:f6:e3:55:53:f0:dd:7a:e7:02:
#         31:00:b0:87:d5:1b:b3:60:fc:91:8d:80:ca:a2:1b:51:4b:38:
#         54:cb:aa:1e:7b:d7:e5:44:95:16:2f:3c:44:78:2e:25:ba:ea:
#         90:e4:ec:52:ee:57:ec:03:84:f3:5e:db:16:0d

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA ECC TLS 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEloZYKDcKZ9Cg3iQZGeHkBQcfl+3oZIK5
9sRxUM6KDP/XtXa7oWyTbIOiaG6l2b4siJVBzV3dscqDY4PMwL502eCdpO5KTlbg
mClBk1IQ1SQ4AjJn8ZQSb+/Xxd4u/RmA
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA ECC TLS 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3d:98:3b:a6:66:3d:90:63:f7:7e:26:57:38:04:ef:00
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: CN=Atos TrustedRoot Root CA ECC TLS 2021, O=Atos, C=DE
#        Validity
#            Not Before: Apr 22 09:26:23 2021 GMT
#            Not After : Apr 17 09:26:22 2041 GMT
#        Subject: CN=Atos TrustedRoot Root CA ECC TLS 2021, O=Atos, C=DE
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:96:86:58:28:37:0a:67:d0:a0:de:24:19:19:e1:
#                    e4:05:07:1f:97:ed:e8:64:82:b9:f6:c4:71:50:ce:
#                    8a:0c:ff:d7:b5:76:bb:a1:6c:93:6c:83:a2:68:6e:
#                    a5:d9:be:2c:88:95:41:cd:5d:dd:b1:ca:83:63:83:
#                    cc:c0:be:74:d9:e0:9d:a4:ee:4a:4e:56:e0:98:29:
#                    41:93:52:10:d5:24:38:02:32:67:f1:94:12:6f:ef:
#                    d7:c5:de:2e:fd:19:80
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                76:28:25:D6:7D:E0:66:9A:7A:09:B2:6A:3B:8E:33:D7:36:D3:4F:A2
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:5b:99:29:f3:9c:31:b6:89:6b:6c:d6:bd:77:e1:
#         7c:e7:51:7e:b8:3a:cd:a3:36:5f:7c:f7:3c:77:3e:e4:50:ad:
#         a8:e7:d2:59:0c:26:8e:30:3b:6e:08:2a:c2:a7:5a:c8:02:31:
#         00:99:e3:0c:e7:a3:c3:af:d3:49:2e:46:82:23:66:5d:c9:00:
#         14:12:fd:38:f4:e1:98:6b:77:29:7a:db:24:cf:65:40:bf:d2:
#         dc:8c:11:e8:f4:7d:7f:20:84:a9:42:e4:28

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA RSA G2 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA RSA G2 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            47:ba:29:46:55:3e:16:92:97:b0:ab:40
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=DE, O=Atos, CN=Atos TrustedRoot Root CA RSA G2 2020
#        Validity
#            Not Before: Dec 15 08:41:23 2020 GMT
#            Not After : Dec 10 08:41:22 2040 GMT
#        Subject: C=DE, O=Atos, CN=Atos TrustedRoot Root CA RSA G2 2020
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:96:31:85:4a:aa:0f:32:fe:79:e1:43:87:9c:fb:
#                    23:b7:8e:7f:0d:54:bd:c7:62:93:77:e4:1c:35:04:
#                    76:a3:03:8b:22:ee:c4:84:dd:a5:93:6e:6e:b2:8e:
#                    09:03:eb:51:16:31:17:aa:69:15:18:0e:67:74:23:
#                    5e:ea:9a:7d:b5:39:3e:3d:82:a9:6b:e1:fe:a9:1c:
#                    b0:ad:5a:4d:4c:78:83:41:8b:cf:f2:1d:62:9a:98:
#                    04:9c:63:e9:ab:65:fe:48:1d:24:65:07:47:3e:b9:
#                    91:2e:e9:9d:9b:7f:1a:35:a9:34:b0:b7:e5:70:33:
#                    ef:4a:72:51:b6:07:bf:60:3f:2a:9f:9d:54:df:f3:
#                    d7:94:49:51:03:5a:40:a9:68:dd:11:59:5c:f8:76:
#                    a6:bc:50:52:10:ed:ac:ec:95:e0:d4:83:6b:49:da:
#                    0a:4f:99:83:de:32:83:48:83:67:95:b2:7e:e7:81:
#                    85:3d:cd:82:f7:ca:02:ed:6d:88:5d:08:8d:b8:35:
#                    bf:2a:69:30:99:bb:4b:d1:41:db:45:a0:93:99:51:
#                    81:90:36:08:aa:8a:b6:e8:8f:b3:cb:ee:e5:46:0d:
#                    72:75:f5:49:6c:e1:a2:7f:2f:bc:ed:84:a6:37:ee:
#                    de:c2:4f:39:4e:f6:9e:f0:c9:d1:9b:30:9d:49:6d:
#                    e1:da:ff:12:10:8c:d6:e5:99:7b:05:b6:7d:b0:09:
#                    c7:a4:f8:b2:1c:39:95:39:33:f4:35:ce:25:62:7b:
#                    b0:5f:20:f3:cb:6d:f8:6c:52:14:64:44:8f:d3:c8:
#                    a9:76:07:e5:af:71:99:2d:2d:04:25:48:76:af:c3:
#                    e7:cc:43:f2:07:bc:4a:24:24:37:dd:fa:6e:94:09:
#                    6f:4c:5e:01:b4:fe:54:ec:23:96:a5:5e:dd:86:ff:
#                    e9:46:2a:f1:e8:dc:ec:a5:3d:af:6f:aa:0e:0f:b4:
#                    75:fa:3e:08:b9:26:45:4f:66:86:4c:bc:19:b8:e1:
#                    d5:35:ee:82:84:c8:d3:ab:12:e7:cd:73:33:62:77:
#                    f4:17:cb:bd:34:76:2a:05:ce:95:e5:78:79:4b:9e:
#                    b0:8d:f9:3c:58:38:91:ea:5e:87:38:c0:b7:42:fd:
#                    aa:4c:87:23:ad:04:20:b1:7e:76:42:da:bb:b6:16:
#                    ba:57:c8:8e:13:fa:75:d5:08:4c:af:38:91:aa:ef:
#                    8f:fa:9f:49:2e:54:7c:0a:56:b1:7a:fa:c4:4e:2f:
#                    d4:a3:fa:16:8a:d0:95:e5:97:a6:ff:c3:fc:7c:0e:
#                    47:58:f3:7f:07:7b:12:dc:57:3f:2d:e3:a1:4d:5b:
#                    52:4c:33:87:99:a8:09:7b:6c:7e:0e:f2:cf:56:42:
#                    9e:eb:05
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:20:25:F3:07:FD:A7:6F:F1:96:EE:91:10:69:CC:9A:EF:7D:C8:68:78
#
#            X509v3 Subject Key Identifier: 
#                20:25:F3:07:FD:A7:6F:F1:96:EE:91:10:69:CC:9A:EF:7D:C8:68:78
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha384WithRSAEncryption
#         24:2b:4e:98:f2:1d:17:ed:d9:76:26:b6:30:33:e8:69:45:a1:
#         51:4b:52:d8:7a:3a:30:b6:e4:12:ea:bf:9f:4c:e0:04:a4:f6:
#         35:c6:fe:a1:30:f7:53:85:92:ad:54:05:57:5f:92:e5:2a:de:
#         36:27:9e:7b:13:47:c9:6a:75:af:fc:f3:37:e7:0c:f5:3d:01:
#         73:b5:69:51:f8:bd:59:d1:ba:0b:f8:ba:ba:64:27:43:b3:7c:
#         83:95:8a:e7:9e:13:96:d7:6f:4a:96:41:49:8b:0e:20:ad:16:
#         c6:f7:a6:87:5b:88:12:89:8b:89:ca:12:d2:56:af:22:01:21:
#         46:e9:ab:98:3f:a7:88:de:e4:cb:2a:9a:75:19:fa:39:5e:09:
#         05:d7:03:32:1a:b8:17:51:08:c7:00:40:7d:f4:be:f8:0c:59:
#         f4:69:76:6e:d3:a4:58:5b:5e:26:73:e4:42:55:06:5e:78:40:
#         0f:d3:38:9f:ef:26:51:70:74:91:f1:77:62:01:e8:d9:cb:eb:
#         a1:df:39:32:1d:bb:6b:fd:71:fe:eb:cf:a5:e6:14:fd:00:80:
#         13:c6:9a:00:48:b0:99:05:e9:ae:80:48:fb:09:3f:51:14:b5:
#         b9:e7:60:4d:4d:ca:2f:81:21:ee:52:0c:65:7a:dc:f5:89:49:
#         4c:30:92:34:58:80:32:59:b1:0d:ff:24:61:0f:e7:0a:42:d0:
#         7b:bc:f8:8e:27:47:3f:70:9d:27:d9:b6:06:3d:a5:bb:cb:5e:
#         8f:ae:0e:53:c7:9c:6a:6f:3b:4c:0f:a3:40:70:a8:9a:07:ce:
#         d4:6e:5b:07:a2:d2:e2:54:b6:bd:6f:33:72:63:ad:51:98:e1:
#         8f:76:f1:6a:07:38:25:fe:f6:62:ce:5f:db:63:c2:6e:99:ef:
#         06:dc:b9:de:19:1a:e8:54:3d:7d:d2:76:75:d9:5e:3e:32:48:
#         a7:8c:f2:9e:72:0c:f8:b8:58:b8:17:23:a5:14:87:75:58:7a:
#         00:81:07:22:39:6a:4c:94:a0:b5:a2:db:a7:2c:c1:b0:f1:a3:
#         9b:c0:4c:f7:6d:70:ea:31:9f:f1:ae:7d:3e:73:28:d9:a1:df:
#         fa:93:f0:9b:b0:f0:e2:cd:25:20:75:ef:e2:7d:32:05:c9:9b:
#         76:ee:cb:bd:31:1e:f9:94:98:4b:24:58:56:48:c0:de:06:4c:
#         bd:a6:34:5d:ed:16:61:63:73:fb:19:e2:fa:5b:d8:97:75:d4:
#         6d:9e:60:39:5e:94:8b:02:2c:eb:99:ce:60:2a:6e:1b:8c:a7:
#         4b:bc:fd:36:e6:98:1f:65:f2:7f:f1:e3:8f:4c:80:46:36:58:
#         b6:a1:65:cb:ce:1c:44:75

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA RSA TLS 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Atos TrustedRoot Root CA RSA TLS 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFZDCCA0ygAwIBAgIQU9XP5hmTC/srBRLYwiqipDANBgkqhkiG9w0BAQwFADBM
MS4wLAYDVQQDDCVBdG9zIFRydXN0ZWRSb290IFJvb3QgQ0EgUlNBIFRMUyAyMDIx
MQ0wCwYDVQQKDARBdG9zMQswCQYDVQQGEwJERTAeFw0yMTA0MjIwOTIxMTBaFw00
MTA0MTcwOTIxMDlaMEwxLjAsBgNVBAMMJUF0b3MgVHJ1c3RlZFJvb3QgUm9vdCBD
QSBSU0EgVExTIDIwMjExDTALBgNVBAoMBEF0b3MxCzAJBgNVBAYTAkRFMIICIjAN
BgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAtoAOxHm9BYx9sKOdTSJNy/BBl01Z
4NH+VoyX8te9j2y3I49f1cTYQcvyAh5x5en2XssIKl4w8i1mx4QbZFc4nXUtVsYv
Ye+W/CBGvevUez8/fEc4BKkbqlLfEzfTFRVOvV98r61jx3ncCHvVoOX3W3WsgFWZ
kmGbzSoXfduP9LVq6hdKZChmFSlsAvFr1bqjM9xaZ6cF4r9lthawEO3NUDPJcFDs
GY6wx/J0W2tExn2WuZgIWWbeKQGb9Cpt0xU6kGpn8bRrZtkh68rZYnxGEFzedUln
nkL5/nWpo63/dgpnQOPF943HhZpZnmKaau1Fh5hnstVKPNe0OwANwI8f4UDErmwh
3El+fsqyjW22v5MvoVw+j8rtgI5Y4dtXz4U2OLJxpAmMkokIiEjxQGMYsluMWuPD
0xeqqxmjLBvk1cbiZnrXghmmOxYsL3GHX0WelXOTwkKBIROW1527k2gV+p2kHYzy
geBYBr3JtuP2iV2J+axEoctr+hbxx1A9JNr3w+SH1VbxT5Aw+kUJWdo0zuATHAR8
ANSbhqRAvNncTFd+rrcztl524WWLZt+NyteYr842mIycg5kDcPOvdO3GDjbnvezB
c6eUWsuSZIKmAMFwoW4sKeFYV+xafJlrJaSQOoD0IJ2azsct+bJLKZWD6TWNp0lI
pw9MGZHQ9b8Q4HECAwEAAaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQU
dEmZ0f+0emhFdcN+tNzMzjkz2ggwDgYDVR0PAQH/BAQDAgGGMA0GCSqGSIb3DQEB
DAUAA4ICAQAjQ1MkYlxt/T7Cz1UAbMVWiLkO3TriJQ2VSpfKgInuKs1l+NsW4AmS
4BjHeJi78+xCUvuppILXTdiK/ORO/auQxDh1MoSf/7OwKwIzNsAQkG8dnK/haZPs
o0UvFJ/1TCplQ3IM98P4lYsU84UgYt1UU90s3BiVaU+DR3BAM1h3Egyi61IxHkzJ
qM7F78PRreBrAwA0JrRUITWXAdxfG/F851X6LWh3e9NpzNMOa7pNdkTWwhWaJuyw
xfW70Xp0wmzNxbVe9kzmWy2B27O3Opee7c9GslA9hGCZcbUztVdF5kJHdWoOsAgM
rr3e97sPWD2PAzHoPYJQyi9eDF20l74gNAf0xBLh7tew2VktafcxBPTy+av5EzH4
AXcOPUIjJsyacmdRIXrMPIWo6iFqO9taPKU0nprALN+AnCng33eU0aKAQv9qTFsR
0PXNor6uzFFcw9VUewyu1rkGd4Di7wcaaMxZUa1+XGdrudviB0JbuAEFWDlN5LuY
o7Ey7Nmj1m+UI/87tyll5gfp77YZ6ufCOB0yiJA8EytuzO+rdwY0d4RPcuSBhPm5
dDTedk+SKlOxJTnbPP/lPqYO5Wue/9vsL3SD3460s6neFE3/MaNFcyT6lSnMEpcE
oji2jbDwN/zIIX8/syQbPYtuzE2wFg2WHYMfRsCbvUOZ58SWLs5fyQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            53:d5:cf:e6:19:93:0b:fb:2b:05:12:d8:c2:2a:a2:a4
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: CN=Atos TrustedRoot Root CA RSA TLS 2021, O=Atos, C=DE
#        Validity
#            Not Before: Apr 22 09:21:10 2021 GMT
#            Not After : Apr 17 09:21:09 2041 GMT
#        Subject: CN=Atos TrustedRoot Root CA RSA TLS 2021, O=Atos, C=DE
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:80:0e:c4:79:bd:05:8c:7d:b0:a3:9d:4d:22:
#                    4d:cb:f0:41:97:4d:59:e0:d1:fe:56:8c:97:f2:d7:
#                    bd:8f:6c:b7:23:8f:5f:d5:c4:d8:41:cb:f2:02:1e:
#                    71:e5:e9:f6:5e:cb:08:2a:5e:30:f2:2d:66:c7:84:
#                    1b:64:57:38:9d:75:2d:56:c6:2f:61:ef:96:fc:20:
#                    46:bd:eb:d4:7b:3f:3f:7c:47:38:04:a9:1b:aa:52:
#                    df:13:37:d3:15:15:4e:bd:5f:7c:af:ad:63:c7:79:
#                    dc:08:7b:d5:a0:e5:f7:5b:75:ac:80:55:99:92:61:
#                    9b:cd:2a:17:7d:db:8f:f4:b5:6a:ea:17:4a:64:28:
#                    66:15:29:6c:02:f1:6b:d5:ba:a3:33:dc:5a:67:a7:
#                    05:e2:bf:65:b6:16:b0:10:ed:cd:50:33:c9:70:50:
#                    ec:19:8e:b0:c7:f2:74:5b:6b:44:c6:7d:96:b9:98:
#                    08:59:66:de:29:01:9b:f4:2a:6d:d3:15:3a:90:6a:
#                    67:f1:b4:6b:66:d9:21:eb:ca:d9:62:7c:46:10:5c:
#                    de:75:49:67:9e:42:f9:fe:75:a9:a3:ad:ff:76:0a:
#                    67:40:e3:c5:f7:8d:c7:85:9a:59:9e:62:9a:6a:ed:
#                    45:87:98:67:b2:d5:4a:3c:d7:b4:3b:00:0d:c0:8f:
#                    1f:e1:40:c4:ae:6c:21:dc:49:7e:7e:ca:b2:8d:6d:
#                    b6:bf:93:2f:a1:5c:3e:8f:ca:ed:80:8e:58:e1:db:
#                    57:cf:85:36:38:b2:71:a4:09:8c:92:89:08:88:48:
#                    f1:40:63:18:b2:5b:8c:5a:e3:c3:d3:17:aa:ab:19:
#                    a3:2c:1b:e4:d5:c6:e2:66:7a:d7:82:19:a6:3b:16:
#                    2c:2f:71:87:5f:45:9e:95:73:93:c2:42:81:21:13:
#                    96:d7:9d:bb:93:68:15:fa:9d:a4:1d:8c:f2:81:e0:
#                    58:06:bd:c9:b6:e3:f6:89:5d:89:f9:ac:44:a1:cb:
#                    6b:fa:16:f1:c7:50:3d:24:da:f7:c3:e4:87:d5:56:
#                    f1:4f:90:30:fa:45:09:59:da:34:ce:e0:13:1c:04:
#                    7c:00:d4:9b:86:a4:40:bc:d9:dc:4c:57:7e:ae:b7:
#                    33:b6:5e:76:e1:65:8b:66:df:8d:ca:d7:98:af:ce:
#                    36:98:8c:9c:83:99:03:70:f3:af:74:ed:c6:0e:36:
#                    e7:bd:ec:c1:73:a7:94:5a:cb:92:64:82:a6:00:c1:
#                    70:a1:6e:2c:29:e1:58:57:ec:5a:7c:99:6b:25:a4:
#                    90:3a:80:f4:20:9d:9a:ce:c7:2d:f9:b2:4b:29:95:
#                    83:e9:35:8d:a7:49:48:a7:0f:4c:19:91:d0:f5:bf:
#                    10:e0:71
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                74:49:99:D1:FF:B4:7A:68:45:75:C3:7E:B4:DC:CC:CE:39:33:DA:08
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha384WithRSAEncryption
#         23:43:53:24:62:5c:6d:fd:3e:c2:cf:55:00:6c:c5:56:88:b9:
#         0e:dd:3a:e2:25:0d:95:4a:97:ca:80:89:ee:2a:cd:65:f8:db:
#         16:e0:09:92:e0:18:c7:78:98:bb:f3:ec:42:52:fb:a9:a4:82:
#         d7:4d:d8:8a:fc:e4:4e:fd:ab:90:c4:38:75:32:84:9f:ff:b3:
#         b0:2b:02:33:36:c0:10:90:6f:1d:9c:af:e1:69:93:ec:a3:45:
#         2f:14:9f:f5:4c:2a:65:43:72:0c:f7:c3:f8:95:8b:14:f3:85:
#         20:62:dd:54:53:dd:2c:dc:18:95:69:4f:83:47:70:40:33:58:
#         77:12:0c:a2:eb:52:31:1e:4c:c9:a8:ce:c5:ef:c3:d1:ad:e0:
#         6b:03:00:34:26:b4:54:21:35:97:01:dc:5f:1b:f1:7c:e7:55:
#         fa:2d:68:77:7b:d3:69:cc:d3:0e:6b:ba:4d:76:44:d6:c2:15:
#         9a:26:ec:b0:c5:f5:bb:d1:7a:74:c2:6c:cd:c5:b5:5e:f6:4c:
#         e6:5b:2d:81:db:b3:b7:3a:97:9e:ed:cf:46:b2:50:3d:84:60:
#         99:71:b5:33:b5:57:45:e6:42:47:75:6a:0e:b0:08:0c:ae:bd:
#         de:f7:bb:0f:58:3d:8f:03:31:e8:3d:82:50:ca:2f:5e:0c:5d:
#         b4:97:be:20:34:07:f4:c4:12:e1:ee:d7:b0:d9:59:2d:69:f7:
#         31:04:f4:f2:f9:ab:f9:13:31:f8:01:77:0e:3d:42:23:26:cc:
#         9a:72:67:51:21:7a:cc:3c:85:a8:ea:21:6a:3b:db:5a:3c:a5:
#         34:9e:9a:c0:2c:df:80:9c:29:e0:df:77:94:d1:a2:80:42:ff:
#         6a:4c:5b:11:d0:f5:cd:a2:be:ae:cc:51:5c:c3:d5:54:7b:0c:
#         ae:d6:b9:06:77:80:e2:ef:07:1a:68:cc:59:51:ad:7e:5c:67:
#         6b:b9:db:e2:07:42:5b:b8:01:05:58:39:4d:e4:bb:98:a3:b1:
#         32:ec:d9:a3:d6:6f:94:23:ff:3b:b7:29:65:e6:07:e9:ef:b6:
#         19:ea:e7:c2:38:1d:32:88:90:3c:13:2b:6e:cc:ef:ab:77:06:
#         34:77:84:4f:72:e4:81:84:f9:b9:74:34:de:76:4f:92:2a:53:
#         b1:25:39:db:3c:ff:e5:3e:a6:0e:e5:6b:9e:ff:db:ec:2f:74:
#         83:df:8e:b4:b3:a9:de:14:4d:ff:31:a3:45:73:24:fa:95:29:
#         cc:12:97:04:a2:38:b6:8d:b0:f0:37:fc:c8:21:7f:3f:b3:24:
#         1b:3d:8b:6e:cc:4d:b0:16:0d:96:1d:83:1f:46:c0:9b:bd:43:
#         99:e7:c4:96:2e:ce:5f:c9

[p11-kit-object-v1]
label: "Australian Defence Public Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA005UBBvQ9JuduCOH4CDH
npixcXoGkC7irUj+kwVs7Ia/KECFs0x570dTmBAeVO59eLgYEwxEUv3QgaqTCCM5
vl8Pa90ll/MBQt/UgQDEUL56iS0Zr3NKP8w6wL+iqMUV9z58QXSCay53ZuJqpZGI
bgYxp68L5lrgrn1ary9H0PL7hHOcRqEehERRxF8u2pACX4HfEQ7S+7s6F3Oj8o1j
qk//cnplYoNaKjzyzSwjjc/rIR+/1ANX9TcWDF7lVxHCqPr/bDnyPVLmtXnAW+Ky
6mMgDA6lKl4S4eavX4t8oK05NTWYX/GvONAm0029Ynd1Pa9rFIZ7WvYhj9bq4qcO
rQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Australian Defence Public Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            29:eb:92:33:46:4f:32:41:ff:83:19:00:a9:ad:c4:d9:f8:e3:e2:7f
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=AU, O=GOV, OU=DoD, OU=PKI, OU=CAs, CN=Australian Defence Public Root CA
#        Validity
#            Not Before: Nov 28 22:25:28 2016 GMT
#            Not After : Nov 28 22:13:48 2036 GMT
#        Subject: C=AU, O=GOV, OU=DoD, OU=PKI, OU=CAs, CN=Australian Defence Public Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d3:4e:54:04:1b:d0:f4:9b:9d:b8:23:87:e0:20:
#                    c7:9e:98:b1:71:7a:06:90:2e:e2:ad:48:fe:93:05:
#                    6c:ec:86:bf:28:40:85:b3:4c:79:ef:47:53:98:10:
#                    1e:54:ee:7d:78:b8:18:13:0c:44:52:fd:d0:81:aa:
#                    93:08:23:39:be:5f:0f:6b:dd:25:97:f3:01:42:df:
#                    d4:81:00:c4:50:be:7a:89:2d:19:af:73:4a:3f:cc:
#                    3a:c0:bf:a2:a8:c5:15:f7:3e:7c:41:74:82:6b:2e:
#                    77:66:e2:6a:a5:91:88:6e:06:31:a7:af:0b:e6:5a:
#                    e0:ae:7d:5a:af:2f:47:d0:f2:fb:84:73:9c:46:a1:
#                    1e:84:44:51:c4:5f:2e:da:90:02:5f:81:df:11:0e:
#                    d2:fb:bb:3a:17:73:a3:f2:8d:63:aa:4f:ff:72:7a:
#                    65:62:83:5a:2a:3c:f2:cd:2c:23:8d:cf:eb:21:1f:
#                    bf:d4:03:57:f5:37:16:0c:5e:e5:57:11:c2:a8:fa:
#                    ff:6c:39:f2:3d:52:e6:b5:79:c0:5b:e2:b2:ea:63:
#                    20:0c:0e:a5:2a:5e:12:e1:e6:af:5f:8b:7c:a0:ad:
#                    39:35:35:98:5f:f1:af:38:d0:26:d3:4d:bd:62:77:
#                    75:3d:af:6b:14:86:7b:5a:f6:21:8f:d6:ea:e2:a7:
#                    0e:ad
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                Policy: 1.2.36.1.334.1.1.1.7
#                  CPS: http://crl.defence.gov.au/pki
#
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:AC:99:E1:02:2F:E8:5C:4B:41:B7:34:B8:1E:E9:9B:83:36:0D:94:B4
#
#            X509v3 Subject Key Identifier: 
#                AC:99:E1:02:2F:E8:5C:4B:41:B7:34:B8:1E:E9:9B:83:36:0D:94:B4
#    Signature Algorithm: sha256WithRSAEncryption
#         78:bc:81:4a:d8:3a:57:bb:bd:26:bf:ea:2a:28:f0:88:8a:f2:
#         50:4c:90:67:da:4b:f5:b8:14:08:ba:db:7f:72:a8:9a:59:bc:
#         f1:1c:89:a8:f4:3a:03:10:54:13:7a:5d:c6:da:ba:3e:0f:88:
#         d5:6a:d3:1b:97:2d:62:61:3a:6f:f9:00:af:72:06:73:ec:10:
#         c0:61:1e:cc:5c:4f:19:32:46:38:c1:dd:3f:d2:37:1a:a5:8e:
#         86:a0:f0:09:cc:35:d6:19:02:7c:cd:39:fc:f7:f9:1f:e7:94:
#         79:4e:3d:b7:f8:97:4e:3b:44:6a:cd:94:b0:b9:f7:7e:e2:e3:
#         f9:99:7f:c5:d3:a6:50:b4:49:fb:16:7e:4e:41:2c:cf:3e:c7:
#         79:40:ba:81:18:26:08:f9:c5:9d:e3:d8:f1:6f:1c:68:3f:6a:
#         5b:77:17:52:a3:06:de:19:c2:4b:6e:a2:95:fc:d5:08:bf:2c:
#         b5:69:35:51:e3:e3:df:4f:1a:29:6d:83:78:3d:38:24:ca:02:
#         3f:54:10:e1:b3:64:e1:d5:9a:de:f3:37:f6:33:10:b5:76:b3:
#         ab:d7:c9:1f:53:3a:ad:55:41:1c:48:c9:36:9e:87:ff:75:dc:
#         69:d0:af:d9:7a:57:c6:ca:b1:43:fc:39:81:fc:dc:7a:a3:9a:
#         a5:98:50:54

[p11-kit-object-v1]
label: "Autoridad Certificadora Raiz de la Secretaria de Economia"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwWSg9OdScLLqkxP0NTof
6jocxRuLWOGW1gJBXo6FQP9BZkBT/Ji10TIyl2dAgJ3uID8OVPtCB/t3GpnYhvQc
Kogl8+lEo07+B76xyO88jYfgHspJEDso7yRRofyIF0rnHMhUZ2PoajHmQ2z2QBGG
xFbuvckdpkY8HkbCgo0uqejudgpD4HJNjPTFBvosAQAzYM44cDRrFxrremRhp5Ok
ZWrXI8d2epRRC+yeqM87olAyHEK9Y+GHy7mFSA7A1Vi29s5L8gfP4wTVH8LWo26j
u7a3bsTxoh8WvLYtsO/0Wpspjbzh/AdbHgkzgnjMQG1xs2MTL9NMNqw5T8bBsLb1
hQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad Certificadora Raiz de la Secretaria de Economia"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: L=Alvaro Obregon, ST=Distrito Federal, C=MX/postalCode=01030/street=Insurgentes Sur 1940, CN=Autoridad Certificadora Raiz de la Secretaria de Economia, OU=Direccion General de Normatividad Mercantil, O=Secretaria de Economia/emailAddress=acrse@economia.gob.mx
#        Validity
#            Not Before: May  8 00:00:00 2005 GMT
#            Not After : May  8 00:00:00 2025 GMT
#        Subject: L=Alvaro Obregon, ST=Distrito Federal, C=MX/postalCode=01030/street=Insurgentes Sur 1940, CN=Autoridad Certificadora Raiz de la Secretaria de Economia, OU=Direccion General de Normatividad Mercantil, O=Secretaria de Economia/emailAddress=acrse@economia.gob.mx
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c1:64:a0:f4:e7:52:70:b2:ea:93:13:f4:35:3a:
#                    1f:ea:3a:1c:c5:1b:8b:58:e1:96:d6:02:41:5e:8e:
#                    85:40:ff:41:66:40:53:fc:98:b5:d1:32:32:97:67:
#                    40:80:9d:ee:20:3f:0e:54:fb:42:07:fb:77:1a:99:
#                    d8:86:f4:1c:2a:88:25:f3:e9:44:a3:4e:fe:07:be:
#                    b1:c8:ef:3c:8d:87:e0:1e:ca:49:10:3b:28:ef:24:
#                    51:a1:fc:88:17:4a:e7:1c:c8:54:67:63:e8:6a:31:
#                    e6:43:6c:f6:40:11:86:c4:56:ee:bd:c9:1d:a6:46:
#                    3c:1e:46:c2:82:8d:2e:a9:e8:ee:76:0a:43:e0:72:
#                    4d:8c:f4:c5:06:fa:2c:01:00:33:60:ce:38:70:34:
#                    6b:17:1a:eb:7a:64:61:a7:93:a4:65:6a:d7:23:c7:
#                    76:7a:94:51:0b:ec:9e:a8:cf:3b:a2:50:32:1c:42:
#                    bd:63:e1:87:cb:b9:85:48:0e:c0:d5:58:b6:f6:ce:
#                    4b:f2:07:cf:e3:04:d5:1f:c2:d6:a3:6e:a3:bb:b6:
#                    b7:6e:c4:f1:a2:1f:16:bc:b6:2d:b0:ef:f4:5a:9b:
#                    29:8d:bc:e1:fc:07:5b:1e:09:33:82:78:cc:40:6d:
#                    71:b3:63:13:2f:d3:4c:36:ac:39:4f:c6:c1:b0:b6:
#                    f5:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://ac.economia.gob.mx/last.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.484.101.10.316.1
#                  CPS: http://ac.economia.gob.mx/cps.html
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         4c:2a:78:53:04:96:73:60:ab:35:ac:c0:c4:e3:e7:c8:70:a5:
#         29:2f:87:18:e5:a8:82:de:07:d5:08:f4:cf:9e:3d:9e:fc:4a:
#         2c:16:7c:9f:a2:9d:65:10:cc:c1:1b:9b:6a:67:da:b2:b3:1d:
#         ff:cd:64:7a:38:63:ad:48:fd:f3:72:e1:fa:9f:bb:57:dd:bf:
#         cc:c2:54:d8:95:3c:66:d7:6b:06:ba:af:a9:e0:6d:08:ef:a4:
#         b6:90:3d:0c:6e:20:17:a7:96:a7:7c:68:4a:9c:98:c4:07:6f:
#         c1:02:62:91:38:9b:9d:e3:8a:79:53:9d:9f:24:76:25:f6:ad:
#         28:56:06:aa:ef:07:ac:ba:f6:6c:e4:25:31:7d:88:80:3a:78:
#         46:f8:79:e1:38:e0:13:e7:61:29:47:f3:cb:14:00:d3:da:e2:
#         dd:ed:73:df:4b:f2:63:e4:26:d8:75:d0:4d:43:14:90:16:94:
#         47:01:ff:a1:59:4b:e4:76:9b:59:03:de:d6:17:f6:7b:d7:5c:
#         f8:e9:e3:6f:c8:4e:e0:47:26:b1:e2:9c:7c:4a:31:e5:64:11:
#         e0:b0:5f:da:91:36:48:1f:fa:09:8a:65:68:f5:0e:c2:9f:ef:
#         b8:6a:cf:77:fe:12:ed:36:da:11:36:ad:19:6a:c2:d4:8e:52:
#         d7:68:ef:31

[p11-kit-object-v1]
label: "Autoridad Certificadora Raíz Nacional de Uruguay"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad Certificadora Raíz Nacional de Uruguay"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:ee:00:9b:66:d8:6a:1d:67:fe:da:8a:25:6f:21:5a:75:1b
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: CN=Autoridad Certificadora Ra\xC3\xADz Nacional de Uruguay, O=AGESIC, C=UY
#        Validity
#            Not Before: Nov  3 15:02:49 2011 GMT
#            Not After : Oct 29 15:02:49 2031 GMT
#        Subject: CN=Autoridad Certificadora Ra\xC3\xADz Nacional de Uruguay, O=AGESIC, C=UY
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:97:c4:1f:2a:44:a1:81:4b:48:91:75:dd:eb:da:
#                    8f:ca:1b:8b:f2:b4:3c:2c:c6:e5:f4:c1:1e:d1:b8:
#                    30:13:6f:5c:9f:e5:51:96:7f:1a:a4:16:fe:d2:d4:
#                    1d:25:f6:d0:e6:37:60:5f:00:a3:19:a9:ec:27:bf:
#                    50:2d:05:a0:5c:5e:93:eb:e3:68:fd:9b:3d:b9:14:
#                    36:2d:e7:25:15:10:90:1a:92:c9:11:b1:29:97:93:
#                    56:55:62:ad:47:ac:7f:d5:0c:77:96:d2:93:68:6a:
#                    31:dd:54:ef:93:f2:0a:4f:a0:5f:02:5a:ef:b6:44:
#                    3e:e7:99:b2:8e:45:de:a0:f7:c0:e8:48:b0:47:ec:
#                    de:42:14:db:35:7b:a0:69:fc:1e:c0:01:29:16:da:
#                    33:a1:21:a1:32:32:10:76:7d:a8:c7:c0:2e:73:83:
#                    64:fc:5a:f7:9b:36:8c:69:ed:20:55:23:79:cd:f3:
#                    f3:6c:6b:60:5c:78:8d:fc:3d:85:2c:bc:a9:f7:70:
#                    e8:a5:ca:4d:d8:7c:98:ef:86:76:18:84:d5:40:29:
#                    10:27:32:e7:ef:03:44:0b:4f:c9:2a:f1:b6:b4:2b:
#                    a0:d5:03:94:84:21:d3:74:f3:29:6d:78:f0:05:6a:
#                    ae:01:0f:61:1f:c6:a5:f0:c7:82:15:d9:3b:fb:dd:
#                    8b:74:69:ee:e4:c7:c7:f4:11:dc:14:51:c1:84:1a:
#                    25:56:13:6b:5b:ce:5f:2c:fd:8b:1b:2d:0f:c8:c0:
#                    55:aa:18:4f:98:9c:cf:a2:77:08:b4:35:95:d8:b9:
#                    8b:9c:49:0e:b4:10:0b:fc:fc:47:4d:d4:9a:57:f9:
#                    9f:7a:bd:e9:57:bb:b4:0f:5f:15:90:d8:68:6c:d5:
#                    85:25:83:2d:86:0c:47:62:97:b3:79:4d:b9:65:08:
#                    77:52:6f:4a:e3:6e:80:c0:ac:a3:d5:bc:ea:49:e2:
#                    65:e2:4c:59:6a:82:de:2b:f5:aa:3e:fe:65:e8:51:
#                    70:4d:37:84:06:04:3f:92:83:d4:56:28:e3:25:d5:
#                    54:ca:85:ee:56:c0:2e:ce:f9:70:10:12:5f:5d:9e:
#                    c6:bc:4b:10:1d:56:6d:ca:72:c1:53:09:2a:13:3d:
#                    d8:b5:f9:1c:3b:45:c6:87:14:d0:38:7e:9e:21:5f:
#                    fc:76:1d:ff:0b:29:42:db:a1:c4:79:39:e1:4d:d5:
#                    86:50:e3:f2:e0:b3:d7:59:9b:de:3f:1e:1a:03:f3:
#                    d4:69:86:4b:47:1c:32:7f:3c:07:09:13:10:a7:9b:
#                    07:30:77:33:bc:69:11:d1:34:3d:7c:10:2a:b8:1e:
#                    8e:bd:47:de:f9:b2:79:55:66:21:02:07:fb:39:2c:
#                    0a:17:a1
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.agesic.gub.uy/acrn/acrn.crl
#
#                Full Name:
#                  URI:http://www.uce.gub.uy/acrn/acrn.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.858.10000157.66565.0
#                  CPS: http://www.uce.gub.uy/informacion-tecnica/politicas/cp_acrn.pdf
#                Policy: 2.16.858.10000157.66565.1
#                  CPS: http://www.agesic.gub.uy/acrn/cps_acrn.pdf
#
#            X509v3 Subject Key Identifier: 
#                92:9E:91:B8:55:28:3D:77:42:2C:33:A5:98:5F:D0:C9:AC:8D:B5:A3
#    Signature Algorithm: sha256WithRSAEncryption
#         5d:e7:ab:59:ea:49:dc:bf:46:43:fd:94:bb:98:70:94:14:fa:
#         ce:03:5d:f1:7d:31:13:92:4e:85:24:30:14:6b:6c:d3:e7:ce:
#         e6:79:d5:db:4e:55:4e:17:2b:d7:93:45:df:13:0c:27:67:1d:
#         c7:42:90:54:30:c6:f1:a8:69:28:b4:4e:a6:6d:a5:35:a6:50:
#         96:68:49:a3:ee:2f:0b:ab:fc:03:02:50:68:f1:95:29:3e:71:
#         2c:dc:da:e5:2d:d9:76:2e:ee:56:33:7e:17:a1:27:02:e1:a1:
#         27:28:21:8a:bf:01:e7:62:c7:bb:b2:25:04:da:1b:a6:23:8c:
#         7c:93:ba:c9:8b:eb:0a:f9:37:b7:94:39:fd:4d:8f:7e:a2:dc:
#         81:6f:1b:ad:14:0f:5b:20:03:78:41:73:67:9e:d2:97:17:90:
#         2a:8a:54:4b:a7:79:7f:24:12:91:9f:3b:2c:c7:37:a4:0c:5c:
#         72:6a:13:9e:32:09:27:eb:43:32:75:5f:d7:47:c3:2a:45:53:
#         15:56:76:4f:bb:09:e8:84:60:11:ef:73:d5:e7:50:6e:69:28:
#         fd:eb:c6:cb:ca:4e:13:63:0d:0e:37:2c:31:1f:db:a7:58:a0:
#         b2:fd:0d:17:87:b3:92:ae:1b:28:80:1f:b6:92:7e:86:11:e1:
#         f6:4c:98:7f:66:8b:1f:13:49:03:42:fc:fb:98:9c:ee:86:96:
#         a9:2e:05:7e:70:1c:c1:77:c8:e9:5d:82:b8:0e:ce:5b:64:05:
#         63:ee:3f:06:2d:36:0c:e9:1f:72:5b:1e:ac:dd:26:f5:1c:38:
#         6e:fd:8c:3d:4d:86:eb:27:cb:ca:03:8d:40:f3:2a:d1:8a:d8:
#         34:0e:c2:ad:b5:88:ed:87:9a:8a:85:a2:87:ef:e9:b9:38:e7:
#         68:96:a3:01:cf:82:3d:1c:4b:28:9d:27:f5:f9:99:96:7b:48:
#         fd:ac:d0:f0:32:f7:38:04:dd:4d:99:ae:0e:92:82:c3:fa:3c:
#         1b:13:c7:68:b7:5d:e0:93:46:b8:b8:b8:a4:0c:c4:1b:c6:ba:
#         46:96:dd:9e:55:0f:47:9d:f6:81:a5:ac:65:59:d8:dd:ae:06:
#         6c:e0:43:82:c6:67:d8:70:02:35:f5:36:04:e3:4a:39:a9:75:
#         02:1e:e6:3f:46:cf:9c:2c:1e:84:88:17:aa:26:a9:a6:43:80:
#         e0:c0:5b:a3:64:83:9b:9a:ed:6b:01:65:b6:c1:3d:18:ec:93:
#         19:66:94:a8:d3:11:50:99:7a:88:7d:af:3e:7f:94:90:3b:0a:
#         c3:6a:b7:8d:5f:d2:a7:51:d1:32:1f:b9:f2:32:7d:77:93:6d:
#         43:ec:41:69:ab:cf:c9:61

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            53:ec:3b:ee:fb:b2:48:5f
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, CN=Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Validity
#            Not Before: May 20 08:38:15 2009 GMT
#            Not After : Dec 31 08:38:15 2030 GMT
#        Subject: C=ES, CN=Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:96:6b:8e:ea:f8:fb:f1:a2:35:e0:7f:4c:da:
#                    e0:c3:52:d7:7d:b6:10:c8:02:5e:b3:43:2a:c4:4f:
#                    6a:b2:ca:1c:5d:28:9a:78:11:1a:69:59:57:af:b5:
#                    20:42:e4:8b:0f:e6:df:5b:a6:03:92:2f:f5:11:e4:
#                    62:d7:32:71:38:d9:04:0c:71:ab:3d:51:7e:0f:07:
#                    df:63:05:5c:e9:bf:94:6f:c1:29:82:c0:b4:da:51:
#                    b0:c1:3c:bb:ad:37:4a:5c:ca:f1:4b:36:0e:24:ab:
#                    bf:c3:84:77:fd:a8:50:f4:b1:e7:c6:2f:d2:2d:59:
#                    8d:7a:0a:4e:96:69:52:02:aa:36:98:ec:fc:fa:14:
#                    83:0c:37:1f:c9:92:37:7f:d7:81:2d:e5:c4:b9:e0:
#                    3e:34:fe:67:f4:3e:66:d1:d3:f4:40:cf:5e:62:34:
#                    0f:70:06:3e:20:18:5a:ce:f7:72:1b:25:6c:93:74:
#                    14:93:a3:73:b1:0e:aa:87:10:23:59:5f:20:05:19:
#                    47:ed:68:8e:92:12:ca:5d:fc:d6:2b:b2:92:3c:20:
#                    cf:e1:5f:af:20:be:a0:76:7f:76:e5:ec:1a:86:61:
#                    33:3e:e7:7b:b4:3f:a0:0f:8e:a2:b9:6a:6f:b9:87:
#                    26:6f:41:6c:88:a6:50:fd:6a:63:0b:f5:93:16:1b:
#                    19:8f:b2:ed:9b:9b:c9:90:f5:01:0c:df:19:3d:0f:
#                    3e:38:23:c9:2f:8f:0c:d1:02:fe:1b:55:d6:4e:d0:
#                    8d:3c:af:4f:a4:f3:fe:af:2a:d3:05:9d:79:08:a1:
#                    cb:57:31:b4:9c:c8:90:b2:67:f4:18:16:93:3a:fc:
#                    47:d8:d1:78:96:31:1f:ba:2b:0c:5f:5d:99:ad:63:
#                    89:5a:24:20:76:d8:df:fd:ab:4e:a6:22:aa:9d:5e:
#                    e6:27:8a:7d:68:29:a3:e7:8a:b8:da:11:bb:17:2d:
#                    99:9d:13:24:46:f7:c5:e2:d8:9f:8e:7f:c7:8f:74:
#                    6d:5a:b2:e8:72:f5:ac:ee:24:10:ad:2f:14:da:ff:
#                    2d:9a:46:71:47:be:42:df:bb:01:db:f4:7f:d3:28:
#                    8f:31:59:5b:d3:c9:02:a6:b4:52:ca:6e:97:fb:43:
#                    c5:08:26:6f:8a:f4:bb:fd:9f:28:aa:0d:d5:45:f3:
#                    13:3a:1d:d8:c0:78:8f:41:67:3c:1e:94:64:ae:7b:
#                    0b:c5:e8:d9:01:88:39:1a:97:86:64:41:d5:3b:87:
#                    0c:6e:fa:0f:c6:bd:48:14:bf:39:4d:d4:9e:41:b6:
#                    8f:96:1d:63:96:93:d9:95:06:78:31:68:9e:37:06:
#                    3b:80:89:45:61:39:23:c7:1b:44:a3:15:e5:1c:f8:
#                    92:30:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                65:CD:EB:AB:35:1E:00:3E:7E:D5:74:C0:1C:B4:73:47:0E:1A:64:2F
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.firmaprofesional.com/cps
#                  User Notice:
#                    Explicit Text: 
#
#    Signature Algorithm: sha1WithRSAEncryption
#         17:7d:a0:f9:b4:dd:c5:c5:eb:ad:4b:24:b5:a1:02:ab:dd:a5:
#         88:4a:b2:0f:55:4b:2b:57:8c:3b:e5:31:dd:fe:c4:32:f1:e7:
#         5b:64:96:36:32:18:ec:a5:32:77:d7:e3:44:b6:c0:11:2a:80:
#         b9:3d:6a:6e:7c:9b:d3:ad:fc:c3:d6:a3:e6:64:29:7c:d1:e1:
#         38:1e:82:2b:ff:27:65:af:fb:16:15:c4:2e:71:84:e5:b5:ff:
#         fa:a4:47:bd:64:32:bb:f6:25:84:a2:27:42:f5:20:b0:c2:13:
#         10:11:cd:10:15:ba:42:90:2a:d2:44:e1:96:26:eb:31:48:12:
#         fd:2a:da:c9:06:cf:74:1e:a9:4b:d5:87:28:f9:79:34:92:3e:
#         2e:44:e8:f6:8f:4f:8f:35:3f:25:b3:39:dc:63:2a:90:6b:20:
#         5f:c4:52:12:4e:97:2c:2a:ac:9d:97:de:48:f2:a3:66:db:c2:
#         d2:83:95:a6:66:a7:9e:25:0f:e9:0b:33:91:65:0a:5a:c3:d9:
#         54:12:dd:af:c3:4e:0e:1f:26:5e:0d:dc:b3:8d:ec:d5:81:70:
#         de:d2:4f:24:05:f3:6c:4e:f5:4c:49:66:8d:d1:ff:d2:0b:25:
#         41:48:fe:51:84:c6:42:af:80:04:cf:d0:7e:64:49:e4:f2:df:
#         a2:ec:b1:4c:c0:2a:1d:e7:b4:b1:65:a2:c4:bc:f1:98:f4:aa:
#         70:07:63:b4:b8:da:3b:4c:fa:40:22:30:5b:11:a6:f0:05:0e:
#         c6:02:03:48:ab:86:9b:85:dd:db:dd:ea:a2:76:80:73:7d:f5:
#         9c:04:c4:45:8d:e7:b9:1c:8b:9e:ea:d7:75:d1:72:b1:de:75:
#         44:e7:42:7d:e2:57:6b:7d:dc:99:bc:3d:83:28:ea:80:93:8d:
#         c5:4c:65:c1:70:81:b8:38:fc:43:31:b2:f6:03:34:47:b2:ac:
#         fb:22:06:cb:1e:dd:17:47:1c:5f:66:b9:d3:1a:a2:da:11:b1:
#         a4:bc:23:c9:e4:be:87:ff:b9:94:b6:f8:5d:20:4a:d4:5f:e7:
#         bd:68:7b:65:f2:15:1e:d2:3a:a9:2d:e9:d8:6b:24:ac:97:58:
#         44:47:ad:59:18:f1:21:65:70:de:ce:34:60:a8:40:f1:f3:3c:
#         a4:c3:28:23:8c:fe:27:33:43:40:a0:17:3c:eb:ea:3b:b0:72:
#         a6:a3:b9:4a:4b:5e:16:48:f4:b2:bc:c8:8c:92:c5:9d:9f:ac:
#         72:36:bc:34:80:34:6b:a9:8b:92:c0:b8:17:ed:ec:76:53:f5:
#         24:01:8c:b3:22:e8:4b:7c:55:c6:9d:fa:a3:14:bb:65:85:6e:
#         6e:4f:12:7e:0a:3c:9d:95

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion Firmaprofesional CIF A62634068 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1b:70:e9:d2:ff:ae:6c:71
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES, CN=Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Validity
#            Not Before: Sep 23 15:22:07 2014 GMT
#            Not After : May  5 15:22:07 2036 GMT
#        Subject: C=ES, CN=Autoridad de Certificacion Firmaprofesional CIF A62634068
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:96:6b:8e:ea:f8:fb:f1:a2:35:e0:7f:4c:da:
#                    e0:c3:52:d7:7d:b6:10:c8:02:5e:b3:43:2a:c4:4f:
#                    6a:b2:ca:1c:5d:28:9a:78:11:1a:69:59:57:af:b5:
#                    20:42:e4:8b:0f:e6:df:5b:a6:03:92:2f:f5:11:e4:
#                    62:d7:32:71:38:d9:04:0c:71:ab:3d:51:7e:0f:07:
#                    df:63:05:5c:e9:bf:94:6f:c1:29:82:c0:b4:da:51:
#                    b0:c1:3c:bb:ad:37:4a:5c:ca:f1:4b:36:0e:24:ab:
#                    bf:c3:84:77:fd:a8:50:f4:b1:e7:c6:2f:d2:2d:59:
#                    8d:7a:0a:4e:96:69:52:02:aa:36:98:ec:fc:fa:14:
#                    83:0c:37:1f:c9:92:37:7f:d7:81:2d:e5:c4:b9:e0:
#                    3e:34:fe:67:f4:3e:66:d1:d3:f4:40:cf:5e:62:34:
#                    0f:70:06:3e:20:18:5a:ce:f7:72:1b:25:6c:93:74:
#                    14:93:a3:73:b1:0e:aa:87:10:23:59:5f:20:05:19:
#                    47:ed:68:8e:92:12:ca:5d:fc:d6:2b:b2:92:3c:20:
#                    cf:e1:5f:af:20:be:a0:76:7f:76:e5:ec:1a:86:61:
#                    33:3e:e7:7b:b4:3f:a0:0f:8e:a2:b9:6a:6f:b9:87:
#                    26:6f:41:6c:88:a6:50:fd:6a:63:0b:f5:93:16:1b:
#                    19:8f:b2:ed:9b:9b:c9:90:f5:01:0c:df:19:3d:0f:
#                    3e:38:23:c9:2f:8f:0c:d1:02:fe:1b:55:d6:4e:d0:
#                    8d:3c:af:4f:a4:f3:fe:af:2a:d3:05:9d:79:08:a1:
#                    cb:57:31:b4:9c:c8:90:b2:67:f4:18:16:93:3a:fc:
#                    47:d8:d1:78:96:31:1f:ba:2b:0c:5f:5d:99:ad:63:
#                    89:5a:24:20:76:d8:df:fd:ab:4e:a6:22:aa:9d:5e:
#                    e6:27:8a:7d:68:29:a3:e7:8a:b8:da:11:bb:17:2d:
#                    99:9d:13:24:46:f7:c5:e2:d8:9f:8e:7f:c7:8f:74:
#                    6d:5a:b2:e8:72:f5:ac:ee:24:10:ad:2f:14:da:ff:
#                    2d:9a:46:71:47:be:42:df:bb:01:db:f4:7f:d3:28:
#                    8f:31:59:5b:d3:c9:02:a6:b4:52:ca:6e:97:fb:43:
#                    c5:08:26:6f:8a:f4:bb:fd:9f:28:aa:0d:d5:45:f3:
#                    13:3a:1d:d8:c0:78:8f:41:67:3c:1e:94:64:ae:7b:
#                    0b:c5:e8:d9:01:88:39:1a:97:86:64:41:d5:3b:87:
#                    0c:6e:fa:0f:c6:bd:48:14:bf:39:4d:d4:9e:41:b6:
#                    8f:96:1d:63:96:93:d9:95:06:78:31:68:9e:37:06:
#                    3b:80:89:45:61:39:23:c7:1b:44:a3:15:e5:1c:f8:
#                    92:30:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                65:CD:EB:AB:35:1E:00:3E:7E:D5:74:C0:1C:B4:73:47:0E:1A:64:2F
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.firmaprofesional.com/cps
#                  User Notice:
#                    Explicit Text: 
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         74:87:28:02:2b:77:1f:66:89:64:ed:8f:74:2e:46:1c:bb:a8:
#         f8:f8:0b:1d:83:b6:3a:a7:e8:45:8a:07:b7:e0:3e:20:cb:e1:
#         08:db:13:08:f8:28:a1:35:b2:80:b3:0b:51:c0:d3:56:9a:8d:
#         33:45:49:af:49:f0:e0:3d:07:7a:45:13:5a:ff:c8:97:d8:d3:
#         18:2c:7d:96:f8:dd:a2:65:43:70:93:90:15:ba:90:df:e8:19:
#         b0:db:2c:8a:60:0f:b7:6f:94:07:1e:1d:a6:c9:85:f6:bd:34:
#         f8:40:78:62:10:70:3a:be:7d:4b:39:81:a9:10:d4:96:41:bb:
#         f8:5f:1c:0b:1d:08:f2:b1:b0:89:7a:f2:f7:a0:e0:c4:8f:8b:
#         78:b5:3b:58:a5:23:8e:4f:55:fe:36:3b:e0:0c:b7:ca:2a:30:
#         41:20:b4:80:cd:ae:fc:76:66:73:a8:ae:6e:e1:7c:da:03:e8:
#         94:20:e6:22:a3:d0:1f:90:5d:20:53:14:26:57:da:54:97:df:
#         16:44:10:01:1e:88:66:8f:72:38:93:dd:20:b7:34:be:d7:f1:
#         ee:63:8e:47:79:28:06:fc:f3:59:45:25:60:22:33:1b:a3:5f:
#         a8:ba:2a:da:1a:3d:cd:40:ea:8c:ee:05:15:95:d5:a5:2c:20:
#         2f:a7:98:28:ee:45:fc:f1:b8:88:00:2c:8f:42:da:51:d5:9c:
#         e5:13:68:71:45:43:8b:9e:0b:21:3c:4b:5c:05:dc:1a:9f:98:
#         8e:da:bd:22:9e:72:cd:ad:0a:cb:cc:a3:67:9b:28:74:c4:9b:
#         d7:1a:3c:04:58:a6:82:9d:ad:c7:7b:6f:ff:80:96:e9:f8:8d:
#         6a:bd:18:90:1d:ff:49:1a:90:52:37:93:2f:3c:02:5d:82:76:
#         0b:51:e7:16:c7:57:f8:38:f9:a7:cd:9b:22:54:ef:63:b0:15:
#         6d:53:65:03:4a:5e:4a:a0:b2:a7:8e:49:00:59:38:d5:c7:f4:
#         80:64:f5:6e:95:50:b8:11:7e:15:70:38:4a:b0:7f:d0:c4:32:
#         70:c0:19:ff:c9:38:2d:14:2c:66:f4:42:44:e6:55:76:1b:80:
#         15:57:ff:c0:a7:a7:aa:39:aa:d8:d3:70:d0:2e:ba:eb:94:6a:
#         fa:5f:34:86:e7:62:b5:fd:8a:f0:30:85:94:c9:af:24:02:2f:
#         6f:d6:dd:67:fe:e3:b0:55:4f:04:98:4f:a4:41:56:e2:93:d0:
#         6a:e8:d6:f3:fb:65:e0:ce:75:c4:31:59:0c:ee:82:c8:0c:60:
#         33:4a:19:ba:84:67:27:0f:bc:42:5d:bd:24:54:0d:ec:1d:70:
#         06:5f:a4:bc:fa:20:7c:55

[p11-kit-object-v1]
label: "Autoridad de Certificacion Raiz del Estado Venezolano"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion Raiz del Estado Venezolano"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10 (0xa)
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: CN=Autoridad de Certificacion Raiz del Estado Venezolano, C=VE, L=Caracas, ST=Distrito Capital, O=Sistema Nacional de Certificacion Electronica, OU=Superintendencia de Servicios de Certificacion Electronica/emailAddress=acraiz@suscerte.gob.ve
#        Validity
#            Not Before: Dec 28 16:41:36 2010 GMT
#            Not After : Dec 23 23:59:59 2030 GMT
#        Subject: CN=Autoridad de Certificacion Raiz del Estado Venezolano, C=VE, L=Caracas, ST=Distrito Capital, O=Sistema Nacional de Certificacion Electronica, OU=Superintendencia de Servicios de Certificacion Electronica/emailAddress=acraiz@suscerte.gob.ve
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c1:3b:ef:13:52:f1:99:56:e3:b4:6c:05:e1:1a:
#                    69:16:61:26:86:78:af:0e:fc:e5:40:05:0a:e3:d9:
#                    38:05:4c:a8:d4:b5:c0:c6:2a:cf:2f:79:ab:a1:a4:
#                    50:ef:35:11:1f:ee:82:24:17:fc:a3:1c:ab:fe:07:
#                    06:7f:37:7f:07:58:5b:13:d9:7f:00:5f:2b:b0:4f:
#                    da:9f:c9:b0:58:33:61:e1:4f:d0:15:ce:2e:6b:e8:
#                    24:8c:e5:25:be:85:5b:ed:4c:3f:01:81:8e:e6:99:
#                    18:52:26:59:9b:12:98:65:1c:95:be:75:99:16:0c:
#                    64:44:e1:f7:f2:79:08:b4:e1:47:57:b1:4a:dc:47:
#                    42:9b:70:4b:3a:da:cc:d1:69:91:06:3f:ce:68:fb:
#                    f9:86:4d:03:dc:83:a2:ba:15:16:fe:ac:c9:b6:0e:
#                    67:b3:b1:34:3a:3b:ce:44:8b:a3:8e:48:ee:03:30:
#                    b7:1a:96:67:c5:64:25:99:02:f3:ea:74:75:7e:a6:
#                    92:15:13:d1:00:15:eb:86:5c:f4:7b:19:88:7f:e8:
#                    2e:11:24:5e:38:6b:81:9d:bc:70:5e:f7:31:72:2a:
#                    2f:1d:5f:c8:ce:24:3c:7d:72:38:98:bf:47:bd:a7:
#                    33:02:fb:0f:e4:9d:ea:66:60:23:4d:f9:4f:1b:87:
#                    5d:cd:bf:b8:ec:17:7c:aa:eb:4e:36:89:0f:3f:09:
#                    a7:a0:dd:7a:cb:0e:93:12:20:90:a5:d1:8c:ff:85:
#                    2b:7c:de:de:7e:0d:50:84:46:84:64:6d:ca:f1:23:
#                    2b:de:7f:da:0d:36:b7:a3:de:62:26:15:1a:ea:fa:
#                    ae:e4:b8:f6:7d:11:01:a4:92:d3:f2:c9:6f:a5:f3:
#                    68:00:1e:d2:69:8e:d9:eb:e7:12:ac:48:2b:0c:b6:
#                    99:94:4d:3d:f0:15:5b:59:77:c0:29:d6:89:4c:2b:
#                    c8:15:3a:3a:c6:c5:70:51:6b:42:6f:b4:d3:03:a2:
#                    71:7b:ce:4c:70:4c:6a:20:95:01:56:53:6f:d4:52:
#                    2f:28:be:2c:9d:65:97:32:59:3b:7a:6a:dc:84:62:
#                    88:18:f7:f0:da:28:a3:ed:99:35:b3:04:72:24:a0:
#                    9a:28:3b:61:76:94:72:6b:9d:49:54:2f:2d:22:fe:
#                    63:0f:92:a9:ac:32:7b:3c:19:b8:04:9b:a7:b7:7f:
#                    d2:bb:ad:43:9f:5d:f3:5c:e5:6c:cb:77:27:bc:81:
#                    e7:ae:eb:4f:62:2a:23:27:50:f2:a0:56:93:e7:e6:
#                    5f:38:21:5f:ef:c5:89:d6:2c:87:f6:8a:fb:36:7b:
#                    5b:2e:bc:90:a1:ee:cc:4c:35:56:a9:1a:b7:90:c6:
#                    b3:e5:73
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:2
#            X509v3 Issuer Alternative Name: 
#                DNS:suscerte.gob.ve, othername:<unsupported>
#            X509v3 Subject Key Identifier: 
#                AD:BB:22:1D:C6:E0:D2:01:A8:FD:76:50:52:93:ED:98:C1:4D:AE:D3
#            X509v3 Authority Key Identifier: 
#                keyid:AD:BB:22:1D:C6:E0:D2:01:A8:FD:76:50:52:93:ED:98:C1:4D:AE:D3
#                DirName:/CN=Autoridad de Certificacion Raiz del Estado Venezolano/C=VE/L=Caracas/ST=Distrito Capital/O=Sistema Nacional de Certificacion Electronica/OU=Superintendencia de Servicios de Certificacion Electronica/emailAddress=acraiz@suscerte.gob.ve
#                serial:0A
#
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DNS:suscerte.gob.ve, othername:<unsupported>
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://www.suscerte.gob.ve/lcr
#
#                Full Name:
#                  URI:ldap://acraiz.suscerte.gob.ve
#
#            Authority Information Access: 
#                OCSP - URI:http://ocsp.suscerte.gob.ve
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.862.1.2
#                  CPS: http://www.suscerte.gob.ve/dpc
#
#    Signature Algorithm: sha384WithRSAEncryption
#         1c:59:10:e5:5e:a4:51:c1:47:bb:65:b2:0b:55:e2:2f:a9:a3:
#         27:bc:e1:3c:8a:c7:6c:03:56:a3:a9:29:a2:9b:8a:95:d8:1f:
#         f7:b6:12:60:16:be:7a:f4:fd:03:81:4f:fd:81:81:aa:4f:81:
#         70:1e:2e:ef:c0:92:12:7b:bb:0f:85:88:c4:f9:1d:41:b5:ba:
#         24:2a:c3:28:26:13:ca:f9:00:fb:d7:c3:5c:f9:68:e9:1b:c1:
#         18:22:c9:a2:6c:64:c3:f8:39:c3:4e:21:dd:d6:c2:de:e5:b6:
#         2c:c9:5c:38:f0:de:5e:6a:e4:27:f4:b8:33:c4:cb:61:92:33:
#         53:a8:cc:fc:9d:cd:53:fb:28:0b:ef:ed:7f:b0:8f:74:22:b6:
#         35:57:80:a8:ae:05:ae:29:0a:3b:b2:a4:fd:3d:e3:d4:c1:90:
#         f6:3f:ce:bc:e4:44:fe:d1:c1:7e:28:2f:fd:00:24:32:20:88:
#         c4:6f:18:7b:91:0e:48:90:bc:96:62:60:81:6d:14:00:1a:51:
#         ba:b5:5d:69:8d:61:47:1c:2c:ac:4e:45:20:a9:48:45:a3:87:
#         49:a3:78:90:dd:36:42:7f:d8:76:6f:fd:6d:83:01:c6:f9:7f:
#         98:20:7f:96:2e:22:60:ab:a2:27:c0:b0:35:24:d0:c9:bf:33:
#         99:22:53:0e:6e:1f:62:4c:26:fc:24:33:ca:c1:03:cc:a9:17:
#         61:63:33:24:cc:68:40:ef:af:a2:e2:85:c3:88:30:d3:45:1b:
#         ee:56:ea:56:0a:0f:0a:47:9b:30:59:d8:49:d1:30:90:0c:27:
#         2a:26:08:28:5c:32:1f:27:d7:ad:0b:49:e5:17:51:63:cf:e6:
#         0d:3b:60:51:1a:bd:43:09:50:e6:91:b5:63:e6:64:97:aa:0b:
#         97:13:01:06:86:5c:a5:1f:95:be:50:8e:0b:b2:d2:64:7f:db:
#         ab:4c:e6:43:c6:e4:85:8d:6a:fe:8d:fe:bb:94:55:1e:91:53:
#         27:08:d3:ba:67:3d:3a:a1:c9:c1:c5:14:ba:f9:43:5c:c5:8e:
#         21:8c:82:a2:fd:2a:32:25:d5:16:8c:15:56:c0:98:fc:2e:b2:
#         8e:19:a4:16:71:c3:4b:dd:71:fe:71:ec:22:1d:f0:c1:8c:98:
#         81:87:b4:bf:02:b8:c4:30:31:47:c2:c0:b0:af:7b:33:63:0a:
#         dd:ac:45:9b:c1:cc:80:87:f4:d9:98:5e:9c:86:fe:9a:04:ff:
#         66:4a:fc:7b:61:54:be:57:63:05:07:c6:a7:01:75:59:e4:6e:
#         39:3b:00:f4:aa:9d:f3:9f:88:bf:cf:d1:25:2b:df:7f:73:ed:
#         16:86:a9:90:65:0f:70:29

[p11-kit-object-v1]
label: "Autoridad de Certificacion de la Abogacia"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtLJX7oXwI+gN+7KAhPEQ
Z6uy+UnfXN5b5I8pGVPJ1egcUGthAoyH8I88wUWSC6yZocYahdY9rX4mph24PbKz
PorFCjLTS5HvSXV+Vvf+oAhiRivO6vJRn2DeMsjtGqfPdVzrPcC9mkilhpTOWFAU
6mrhmvSMZZXhYBUllRL2uniLssDt5myXJFod5HRDyjjENZRYjvWKsGg8KCxElgm/
CVtyCudnPJC5VDh0VLttLWpDyLzvCawfI+hSVl41F18ru17NZVKlFHw7sqrp3Se1
NyM7Bg0se4262m9mF4anttceB10ebBmXyOUjc3jRrvkeuqGuSSLtZXEff/dadESN
QwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Autoridad de Certificacion de la Abogacia"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEvDCCA6SgAwIBAgIQAJCLMk/BkBrOtMM4Cc3P5DANBgkqhkiG9w0BAQUFADB5
MQswCQYDVQQGEwJFUzE2MDQGA1UEChMtQ29uc2VqbyBHZW5lcmFsIGRlIGxhIEFi
b2dhY2lhIE5JRjpRLTI4NjMwMDZJMTIwMAYDVQQDEylBdXRvcmlkYWQgZGUgQ2Vy
dGlmaWNhY2lvbiBkZSBsYSBBYm9nYWNpYTAeFw0wNTA2MTMyMjAwMDBaFw0zMDA2
MTMyMjAwMDBaMHkxCzAJBgNVBAYTAkVTMTYwNAYDVQQKEy1Db25zZWpvIEdlbmVy
YWwgZGUgbGEgQWJvZ2FjaWEgTklGOlEtMjg2MzAwNkkxMjAwBgNVBAMTKUF1dG9y
aWRhZCBkZSBDZXJ0aWZpY2FjaW9uIGRlIGxhIEFib2dhY2lhMIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtLJX7oXwI+gN+7KAhPEQZ6uy+UnfXN5b5I8p
GVPJ1egcUGthAoyH8I88wUWSC6yZocYahdY9rX4mph24PbKzPorFCjLTS5HvSXV+
Vvf+oAhiRivO6vJRn2DeMsjtGqfPdVzrPcC9mkilhpTOWFAU6mrhmvSMZZXhYBUl
lRL2uniLssDt5myXJFod5HRDyjjENZRYjvWKsGg8KCxElgm/CVtyCudnPJC5VDh0
VLttLWpDyLzvCawfI+hSVl41F18ru17NZVKlFHw7sqrp3Se1NyM7Bg0se4262m9m
F4anttceB10ebBmXyOUjc3jRrvkeuqGuSSLtZXEff/dadESNQwIDAQABo4IBPjCC
ATowNwYDVR0RBDAwLoERYWNAYWNhYm9nYWNpYS5vcmeGGWh0dHA6Ly93d3cuYWNh
Ym9nYWNpYS5vcmcwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwEQYJ
YIZIAYb4QgEBBAQDAgAHMB0GA1UdDgQWBBT8iEyObQShIJDT+Byas2cEX3mAxjCB
qwYDVR0gBIGjMIGgMIGdBgsrBgEEAYGBFQoBATCBjTApBggrBgEFBQcCARYdaHR0
cDovL3d3dy5hY2Fib2dhY2lhLm9yZy9kb2MwYAYIKwYBBQUHAgIwVBpSQ29uc3Vs
dGUgbGEgZGVjbGFyYWNpb24gZGUgcHJhY3RpY2FzIGRlIGNlcnRpZmljYWNpb24g
ZW4gaHR0cDovL3d3dy5hY2Fib2dhY2lhLm9yZzANBgkqhkiG9w0BAQUFAAOCAQEA
mKf6ObVzESZ/vIk/tGslMzEKhjhryR4VlxTg0kwthfQ8dJuNKBH7zA4muYCDFtH5
Rpi2RgeOZoVtcMC6TIDzpPDVN1Qrr2aEcnP5SC8JzuGFAcqP4IfeoJfQlLQNtU0O
ZyzIYMQylMBBgQeNur+p6AxAmkJ4BV2B62Ic5E8UCj0LPh/p9M197kW7vN5d85iX
JnvGEyn4K38a1Or6sm4gntoX6qGSvTfpDru7kdUl9mBdhSFQW/9UXfVLO7TDKRFY
AvYl5OGCgruijeeRJF5AkZ5HB4wzV9RiMVF2dYVDbwmrEaUlKbnY/1+l9z/rZTsd
74blFiLVHsoyaX1+BdcwJw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            90:8b:32:4f:c1:90:1a:ce:b4:c3:38:09:cd:cf:e4
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, O=Consejo General de la Abogacia NIF:Q-2863006I, CN=Autoridad de Certificacion de la Abogacia
#        Validity
#            Not Before: Jun 13 22:00:00 2005 GMT
#            Not After : Jun 13 22:00:00 2030 GMT
#        Subject: C=ES, O=Consejo General de la Abogacia NIF:Q-2863006I, CN=Autoridad de Certificacion de la Abogacia
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b4:b2:57:ee:85:f0:23:e8:0d:fb:b2:80:84:f1:
#                    10:67:ab:b2:f9:49:df:5c:de:5b:e4:8f:29:19:53:
#                    c9:d5:e8:1c:50:6b:61:02:8c:87:f0:8f:3c:c1:45:
#                    92:0b:ac:99:a1:c6:1a:85:d6:3d:ad:7e:26:a6:1d:
#                    b8:3d:b2:b3:3e:8a:c5:0a:32:d3:4b:91:ef:49:75:
#                    7e:56:f7:fe:a0:08:62:46:2b:ce:ea:f2:51:9f:60:
#                    de:32:c8:ed:1a:a7:cf:75:5c:eb:3d:c0:bd:9a:48:
#                    a5:86:94:ce:58:50:14:ea:6a:e1:9a:f4:8c:65:95:
#                    e1:60:15:25:95:12:f6:ba:78:8b:b2:c0:ed:e6:6c:
#                    97:24:5a:1d:e4:74:43:ca:38:c4:35:94:58:8e:f5:
#                    8a:b0:68:3c:28:2c:44:96:09:bf:09:5b:72:0a:e7:
#                    67:3c:90:b9:54:38:74:54:bb:6d:2d:6a:43:c8:bc:
#                    ef:09:ac:1f:23:e8:52:56:5e:35:17:5f:2b:bb:5e:
#                    cd:65:52:a5:14:7c:3b:b2:aa:e9:dd:27:b5:37:23:
#                    3b:06:0d:2c:7b:8d:ba:da:6f:66:17:86:a7:b6:d7:
#                    1e:07:5d:1e:6c:19:97:c8:e5:23:73:78:d1:ae:f9:
#                    1e:ba:a1:ae:49:22:ed:65:71:1f:7f:f7:5a:74:44:
#                    8d:43
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:ac@acabogacia.org, URI:http://www.acabogacia.org
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Key Identifier: 
#                FC:88:4C:8E:6D:04:A1:20:90:D3:F8:1C:9A:B3:67:04:5F:79:80:C6
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.16533.10.1.1
#                  CPS: http://www.acabogacia.org/doc
#                  User Notice:
#                    Explicit Text: Consulte la declaracion de practicas de certificacion en http://www.acabogacia.org
#
#    Signature Algorithm: sha1WithRSAEncryption
#         98:a7:fa:39:b5:73:11:26:7f:bc:89:3f:b4:6b:25:33:31:0a:
#         86:38:6b:c9:1e:15:97:14:e0:d2:4c:2d:85:f4:3c:74:9b:8d:
#         28:11:fb:cc:0e:26:b9:80:83:16:d1:f9:46:98:b6:46:07:8e:
#         66:85:6d:70:c0:ba:4c:80:f3:a4:f0:d5:37:54:2b:af:66:84:
#         72:73:f9:48:2f:09:ce:e1:85:01:ca:8f:e0:87:de:a0:97:d0:
#         94:b4:0d:b5:4d:0e:67:2c:c8:60:c4:32:94:c0:41:81:07:8d:
#         ba:bf:a9:e8:0c:40:9a:42:78:05:5d:81:eb:62:1c:e4:4f:14:
#         0a:3d:0b:3e:1f:e9:f4:cd:7d:ee:45:bb:bc:de:5d:f3:98:97:
#         26:7b:c6:13:29:f8:2b:7f:1a:d4:ea:fa:b2:6e:20:9e:da:17:
#         ea:a1:92:bd:37:e9:0e:bb:bb:91:d5:25:f6:60:5d:85:21:50:
#         5b:ff:54:5d:f5:4b:3b:b4:c3:29:11:58:02:f6:25:e4:e1:82:
#         82:bb:a2:8d:e7:91:24:5e:40:91:9e:47:07:8c:33:57:d4:62:
#         31:51:76:75:85:43:6f:09:ab:11:a5:25:29:b9:d8:ff:5f:a5:
#         f7:3f:eb:65:3b:1d:ef:86:e5:16:22:d5:1e:ca:32:69:7d:7e:
#         05:d7:30:27

[p11-kit-object-v1]
label: "BJCA Global Root CA1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "BJCA Global Root CA1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            55:6f:65:e3:b4:d9:90:6a:1b:09:d1:6c:3e:c0:6c:20
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=BEIJING CERTIFICATE AUTHORITY, CN=BJCA Global Root CA1
#        Validity
#            Not Before: Dec 19 03:16:17 2019 GMT
#            Not After : Dec 12 03:16:17 2044 GMT
#        Subject: C=CN, O=BEIJING CERTIFICATE AUTHORITY, CN=BJCA Global Root CA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:f1:66:08:bd:d9:c5:15:61:cb:84:04:41:a5:69:
#                    37:77:1d:c1:b0:7b:fa:c3:77:48:90:13:72:64:d1:
#                    b8:7c:90:35:9d:18:79:88:e3:97:01:3c:47:81:f2:
#                    0e:a2:98:0d:9e:3f:37:e0:19:b2:90:f2:46:1c:92:
#                    b1:3a:61:ce:fa:b7:46:9e:03:86:d7:33:6e:ed:f7:
#                    45:8c:76:37:de:6e:96:91:f7:d7:7e:2b:87:17:d5:
#                    8b:35:ee:84:91:72:57:dc:60:c3:c3:b9:e7:c7:67:
#                    24:23:4f:63:0a:63:f6:66:7d:4b:55:a7:3f:78:64:
#                    49:69:12:97:e0:4c:0d:d3:09:a0:32:30:3a:fa:9f:
#                    c0:f2:9c:c5:12:2a:2e:1c:b5:04:33:da:a4:38:11:
#                    6a:de:c6:18:f6:47:3a:22:41:87:22:fc:c4:89:28:
#                    54:d8:8c:a5:30:0a:f8:17:16:ca:ac:37:fd:79:a7:
#                    91:17:78:38:99:ad:58:ed:b2:de:cc:89:7d:03:9c:
#                    b3:89:65:e7:e3:3b:b1:22:86:8f:06:6d:78:07:fd:
#                    91:12:7f:b0:6b:1c:89:0d:f9:b8:cb:74:5b:07:c2:
#                    c8:f4:35:d1:64:63:7a:e9:6e:9a:28:d6:30:bd:e6:
#                    1b:dd:15:af:84:ea:9c:c7:ca:f5:0e:ea:f2:5d:29:
#                    87:8f:69:73:39:be:2e:24:6f:45:21:ac:c5:d4:69:
#                    25:06:83:ad:7a:48:85:13:2c:0d:06:b8:6c:79:56:
#                    fc:a3:67:32:81:f5:57:a5:ca:57:42:69:e9:5c:24:
#                    61:ef:e2:30:18:4e:44:98:55:6f:7a:c2:93:d8:19:
#                    b6:de:7c:47:8a:11:4e:49:47:db:28:94:02:0b:94:
#                    4a:2c:f9:12:d0:4f:e8:31:7e:6c:7a:bf:a6:3f:9b:
#                    39:3d:02:16:a3:18:b3:67:ac:5b:3f:2c:83:2b:67:
#                    39:81:5c:b9:7e:94:d5:64:dd:9e:8f:6e:ae:e8:7c:
#                    5b:b4:d7:6a:47:48:d7:7e:b3:d4:2d:8e:56:76:4e:
#                    cf:69:f1:6e:44:6c:d4:24:ea:8d:24:a1:18:bf:bd:
#                    57:fe:a9:99:35:b5:db:10:77:b8:3d:48:ba:d6:c1:
#                    e7:f1:23:3e:d7:df:85:9d:27:3c:d4:40:bd:0a:0c:
#                    bd:f5:e7:8d:25:d6:81:74:87:46:d4:29:75:a2:42:
#                    6c:f7:73:89:e7:7d:bf:7a:4a:1f:d3:22:c9:15:55:
#                    cf:df:6f:7c:55:d0:a4:8b:07:11:37:5f:83:a6:26:
#                    57:a6:01:5b:7e:fe:58:68:07:a9:e9:7a:d9:b9:e8:
#                    ff:50:1f:ab:c2:b4:c0:ce:e8:ea:fd:0f:bd:8d:4d:
#                    b8:bc:71
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                C5:EF:ED:CC:D8:8D:21:C6:48:E4:E3:D7:14:2E:A7:16:93:E5:98:01
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         52:82:ac:21:34:1f:23:f2:a2:d8:f9:b8:af:37:36:20:89:d1:
#         37:03:d6:69:9f:b8:61:10:ba:a2:31:98:59:47:e8:d1:0d:25:
#         1e:15:41:0c:e0:2a:55:d5:57:52:cb:f8:e4:c7:69:a3:1d:4d:
#         71:02:5e:5f:21:45:60:48:5c:09:8e:49:10:c1:04:dc:a9:62:
#         6b:02:f0:43:c8:4e:9d:38:49:74:c9:32:70:54:6d:c1:47:fc:
#         8e:b4:36:9e:d4:9c:bd:dd:20:d6:53:c9:18:a9:b5:56:b9:76:
#         8b:95:67:66:ee:bd:98:fe:ae:ef:be:6e:fb:60:f6:fd:59:c6:
#         2a:1b:3f:23:4a:94:24:30:27:c8:89:bc:eb:44:24:9a:cb:3d:
#         be:4f:d5:7a:ce:8e:17:cb:62:c1:d9:de:1e:0e:7a:ff:43:86:
#         34:52:bc:61:3f:3c:5f:bb:d9:76:b4:53:bc:97:b3:fe:8a:4c:
#         12:2e:2b:f3:d7:ce:e1:a2:ff:dd:7b:70:fb:3b:a1:4d:a4:63:
#         02:fd:38:97:95:3f:05:70:a0:6b:df:62:81:43:8b:b4:59:0d:
#         4a:8c:54:9c:c5:bb:81:9f:cd:7d:a5:ef:0b:25:1e:3a:20:db:
#         1c:fc:1f:98:67:02:0a:d4:73:44:13:db:51:84:1a:55:03:56:
#         e0:00:7e:74:06:ff:38:c4:72:1d:d3:a8:3f:68:31:5d:d3:09:
#         c7:2e:8c:5b:63:e0:e8:dc:1e:d2:ec:61:1e:f2:de:e5:ef:f6:
#         99:76:60:2d:1e:94:72:71:c6:0b:2a:32:c7:92:4e:d5:46:d7:
#         1d:f9:a9:19:0a:c8:fa:95:ce:6d:23:98:aa:0b:38:ad:9a:56:
#         0d:6f:8d:f1:31:00:88:c1:17:9c:cd:19:36:35:fe:55:53:a0:
#         e0:3c:33:5f:96:5e:e2:32:e9:df:33:bb:06:4a:a9:d8:84:73:
#         ce:77:d2:c6:ac:71:e1:5c:a3:1d:0c:bb:0a:df:5f:e2:a3:71:
#         d8:da:37:5a:a0:78:2b:f4:d4:7d:eb:76:ed:f2:61:70:a5:65:
#         9a:d3:89:34:18:ab:fb:72:3e:d7:b4:3d:79:5c:d8:1f:a1:33:
#         7b:d9:82:50:0c:93:17:aa:6c:dc:c2:82:bb:02:57:36:af:98:
#         27:2a:39:50:e1:b0:89:f5:25:97:7e:47:68:10:b4:ec:73:ca:
#         b3:97:d1:24:dc:f6:62:a0:28:d3:b5:a3:b8:64:b7:88:62:42:
#         cf:9d:53:cd:99:be:64:68:8f:4f:1e:12:48:f7:d2:29:c3:98:
#         28:ca:f2:32:0b:93:8c:29:4f:3c:60:32:cd:05:96:61:ec:f2:
#         af:fe:b3:70:2c:2e:a6:f2

[p11-kit-object-v1]
label: "BJCA Global Root CA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEncuAkY1TZ7W5ULED+OVJH0EiCbBRUljW
KzSPxRJGFMWLLyyE/yxuqNXxCeMDIRTEQz18wSzES2pKzemH4H32Ir76SlG4MIr9
4d4YEgr2R7fnF78nitRBTJY8YJbB/RUc
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "BJCA Global Root CA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2c:17:08:7d:64:2a:c0:fe:85:18:59:06:cf:b4:4a:eb
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=CN, O=BEIJING CERTIFICATE AUTHORITY, CN=BJCA Global Root CA2
#        Validity
#            Not Before: Dec 19 03:18:21 2019 GMT
#            Not After : Dec 12 03:18:21 2044 GMT
#        Subject: C=CN, O=BEIJING CERTIFICATE AUTHORITY, CN=BJCA Global Root CA2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:9d:cb:80:91:8d:53:67:b5:b9:50:b1:03:f8:e5:
#                    49:1f:41:22:09:b0:51:52:58:d6:2b:34:8f:c5:12:
#                    46:14:c5:8b:2f:2c:84:ff:2c:6e:a8:d5:f1:09:e3:
#                    03:21:14:c4:43:3d:7c:c1:2c:c4:4b:6a:4a:cd:e9:
#                    87:e0:7d:f6:22:be:fa:4a:51:b8:30:8a:fd:e1:de:
#                    18:12:0a:f6:47:b7:e7:17:bf:27:8a:d4:41:4c:96:
#                    3c:60:96:c1:fd:15:1c
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D2:4A:B1:51:7F:06:F0:D1:82:1F:4E:6E:5F:AB:83:FC:48:D4:B0:91
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:1a:bc:5b:d7:fe:a9:d2:54:0e:4a:5d:d2:6d:b1:
#         40:dc:f4:43:d5:d2:4a:99:19:12:56:80:f7:83:34:e1:35:4e:
#         48:6d:04:0f:57:31:30:30:2d:b1:aa:9d:03:38:db:06:02:31:
#         00:cb:cc:87:53:cb:7a:df:20:51:73:90:c0:a8:5b:61:d0:c5:
#         50:39:fd:85:fe:c1:e3:78:f8:a6:d6:4b:bd:9b:87:8f:0f:e5:
#         d6:53:96:ab:3c:c8:40:da:61:f7:53:a3:f7

[p11-kit-object-v1]
label: "BYTE Root Certification Authority 001"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "BYTE Root Certification Authority 001"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            71:8c:2f:39:7c:40:74:40
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=GR, O=BYTE Computer S.A., CN=BYTE Root Certification Authority 001
#        Validity
#            Not Before: Sep 10 22:01:54 2014 GMT
#            Not After : Sep 10 22:01:54 2039 GMT
#        Subject: C=GR, O=BYTE Computer S.A., CN=BYTE Root Certification Authority 001
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ed:12:2e:17:73:9e:6f:f4:f3:99:e8:9e:08:57:
#                    09:34:24:11:40:1f:8c:21:7e:1b:af:38:c3:d1:c7:
#                    e6:14:e5:fa:1b:ba:5e:66:f5:25:69:f7:ed:cd:6e:
#                    82:70:af:ba:42:f0:b1:19:5c:2b:fc:45:84:18:2c:
#                    7a:17:4f:61:85:46:19:7c:ce:c1:8d:9f:54:9e:77:
#                    25:66:0f:e0:f6:f8:92:ca:29:ce:27:57:15:2a:6c:
#                    82:38:6d:27:e6:be:4d:73:0e:73:af:e3:71:3d:bc:
#                    09:42:0f:d5:0d:a1:ed:7d:6b:ae:f7:c1:f0:6c:cd:
#                    c2:97:a1:58:fd:35:15:96:17:4c:9f:bf:f5:f1:39:
#                    4b:70:b7:e7:4a:6c:1c:3f:c1:70:5b:cf:d6:8b:eb:
#                    ef:6f:30:e8:5f:c8:46:77:21:62:16:5e:c6:54:45:
#                    39:f5:74:ba:67:24:68:a5:71:5b:3e:c1:fb:09:93:
#                    eb:22:99:f8:d2:f5:7b:02:6c:8f:58:e2:ab:ef:dd:
#                    74:21:e4:24:69:94:40:d6:c1:04:18:0e:d8:42:f0:
#                    fd:d7:8a:05:c0:5f:1b:8a:eb:2e:c0:0d:07:06:73:
#                    01:85:8e:1f:c1:c0:8a:a1:58:a6:51:b9:58:91:42:
#                    0f:6e:e1:bc:0a:e8:bb:28:83:15:75:e5:0d:fe:49:
#                    30:29:29:42:c2:c2:36:ff:a4:3c:7d:2e:f7:da:f2:
#                    a2:2f:16:bc:61:a8:99:58:18:a4:49:c6:6a:07:12:
#                    eb:1b:7c:b4:ce:e7:fb:21:80:2b:70:a6:c8:ce:ad:
#                    55:1e:1f:1d:84:d0:fd:54:6a:4c:56:63:c8:dd:7e:
#                    a0:f9:39:db:ef:7c:5a:f7:8c:35:a5:6e:2a:56:fa:
#                    fe:e3:5f:93:54:72:0e:68:e3:49:2b:93:4d:35:22:
#                    97:14:95:66:4f:a7:77:3a:2e:25:4c:f6:09:8b:12:
#                    1b:71:c5:72:a7:9b:b9:bc:eb:1c:a0:a5:c9:54:83:
#                    61:dc:57:55:ad:b5:e6:da:78:2b:76:a7:fe:f8:db:
#                    fe:8c:33:a4:8a:a3:46:5c:ad:b2:0a:12:0e:8a:e4:
#                    50:9e:f0:b8:cb:99:53:4c:64:21:6b:8a:38:2a:e0:
#                    88:86:00:d4:17:ac:66:b2:e7:be:2d:3b:29:e5:f8:
#                    a7:94:db:8c:58:f8:d2:4b:30:9f:f2:c4:62:65:50:
#                    47:72:80:cf:a4:70:40:b6:bd:44:fe:d9:bf:28:2b:
#                    2e:37:c7:b3:51:0e:82:29:b5:b1:6f:ad:7e:2c:93:
#                    c0:a9:7f:91:fa:c7:1f:35:f0:bb:97:c9:4f:61:28:
#                    90:84:41:e8:7d:21:40:c5:c9:86:3c:ed:9a:ad:85:
#                    9c:a2:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                B4:4D:66:B7:D3:B3:C8:99:7C:01:32:D0:91:3A:F7:D6:A8:12:31:DE
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:B4:4D:66:B7:D3:B3:C8:99:7C:01:32:D0:91:3A:F7:D6:A8:12:31:DE
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         1c:1a:eb:06:ae:55:bd:3b:3f:36:2c:61:9e:ea:c7:53:fc:70:
#         aa:32:6f:e4:42:aa:eb:bd:85:ec:1b:8a:5a:f2:95:96:29:a1:
#         04:06:92:ce:24:57:ff:40:23:78:4e:c9:f8:30:4d:42:55:44:
#         4e:37:a2:7d:6b:8e:68:fe:0e:fe:7f:df:b0:9f:63:51:f3:e1:
#         c5:a5:94:9f:8a:23:28:48:f3:41:8b:d2:fe:78:ed:d9:d0:08:
#         0f:6d:7d:d5:9d:95:ac:d5:fe:12:66:1a:e4:be:75:54:f3:d1:
#         4d:9c:4e:13:d4:9e:70:34:6d:a8:ba:0a:33:88:8d:ad:05:37:
#         fe:4b:79:7f:7d:03:41:79:13:0d:9f:3d:f7:38:9c:35:5a:44:
#         4f:3e:3c:a2:e5:81:c5:7f:5f:76:4f:1b:3b:6e:6f:9a:6d:b7:
#         ed:0f:cb:32:1f:88:b4:45:0c:9c:11:d2:f8:04:5a:13:37:59:
#         98:81:ce:4c:f4:e5:94:28:04:c4:b5:53:c9:54:8d:70:3f:68:
#         01:db:cc:13:0a:e4:25:a3:6c:99:ed:10:b3:7a:20:a9:49:bc:
#         05:f4:f8:1b:68:d6:ba:20:1d:82:67:66:e0:b0:9f:5c:ca:35:
#         d2:45:ae:d5:88:19:db:7a:06:9b:8c:a0:37:87:51:23:be:45:
#         da:5c:b3:7f:6b:cf:c6:a8:1c:33:8a:7b:1d:91:fa:9e:bc:ec:
#         7d:3b:45:15:4f:1b:a7:3b:35:b4:79:f3:5b:82:50:e0:9c:a7:
#         ed:16:75:db:63:80:62:a1:da:18:02:6a:80:de:82:aa:44:4d:
#         44:38:28:aa:6e:fa:18:63:39:60:f7:43:29:49:5a:ba:24:c0:
#         bf:b3:0a:97:1d:67:49:5a:22:b2:67:04:9c:58:a9:f8:0c:34:
#         5c:40:96:b4:87:b5:45:61:19:e5:8e:ef:06:de:91:15:c0:b8:
#         8a:ca:94:c9:0a:75:7d:71:3b:58:81:33:c8:f7:07:41:55:98:
#         29:43:b5:cb:9a:43:e9:72:fa:cf:f0:8b:31:bc:e7:ef:b9:6a:
#         e3:41:9d:21:3e:0d:15:a8:85:bd:1b:4e:87:8e:47:b2:10:fe:
#         37:18:6a:84:e5:89:1c:14:63:e8:b9:83:a9:b5:bb:e8:63:9a:
#         7a:19:8c:cb:74:f7:f8:17:08:f1:8b:19:d8:b4:ec:1e:6e:49:
#         73:3f:5c:20:dd:35:2a:96:77:e9:46:6f:16:3b:cb:a9:ef:9b:
#         0a:21:11:c8:c3:a4:c9:23:45:6d:3f:62:95:9d:d3:28:c7:9d:
#         0f:b3:fe:37:8d:1d:48:b2:50:e6:25:b9:4e:33:61:36:d6:16:
#         1c:ca:32:37:20:76:1c:2c

[p11-kit-object-v1]
label: "Baltimore CyberTrust Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAowS7IquYPVfoJnKatXnU
KeLh6JWAsbDjW44rKZpk36Fd7bAJBW3bKC7OYqJi/rSI2hLrOOshncBBKwFSe4h3
0xyPx7q5iLVqCedz6BFAp9HMymKNLeWPC6ZQ0qhQwyjq9aslh4qalhypZ7g/DNX3
+VITL8Ib1XBw8I/AEsoGy5rh2cozenfW+Oy58WhEQkgT0sDCpK5eYP62pgX8tN0H
WQLUWRiYY/WlY+CQDH1dsgZ684Xq69QDrl6EPl//Fe1pvPk5NnJ1z3dSTfPJkCy5
PeXJI1M/HySYIVwHmSm9xjrs526GOmuXdGMzvWgYMfB4jXa//J6OXSqGp02Q3Cca
OQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Baltimore CyberTrust Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 33554617 (0x20000b9)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=IE, O=Baltimore, OU=CyberTrust, CN=Baltimore CyberTrust Root
#        Validity
#            Not Before: May 12 18:46:00 2000 GMT
#            Not After : May 12 23:59:00 2025 GMT
#        Subject: C=IE, O=Baltimore, OU=CyberTrust, CN=Baltimore CyberTrust Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a3:04:bb:22:ab:98:3d:57:e8:26:72:9a:b5:79:
#                    d4:29:e2:e1:e8:95:80:b1:b0:e3:5b:8e:2b:29:9a:
#                    64:df:a1:5d:ed:b0:09:05:6d:db:28:2e:ce:62:a2:
#                    62:fe:b4:88:da:12:eb:38:eb:21:9d:c0:41:2b:01:
#                    52:7b:88:77:d3:1c:8f:c7:ba:b9:88:b5:6a:09:e7:
#                    73:e8:11:40:a7:d1:cc:ca:62:8d:2d:e5:8f:0b:a6:
#                    50:d2:a8:50:c3:28:ea:f5:ab:25:87:8a:9a:96:1c:
#                    a9:67:b8:3f:0c:d5:f7:f9:52:13:2f:c2:1b:d5:70:
#                    70:f0:8f:c0:12:ca:06:cb:9a:e1:d9:ca:33:7a:77:
#                    d6:f8:ec:b9:f1:68:44:42:48:13:d2:c0:c2:a4:ae:
#                    5e:60:fe:b6:a6:05:fc:b4:dd:07:59:02:d4:59:18:
#                    98:63:f5:a5:63:e0:90:0c:7d:5d:b2:06:7a:f3:85:
#                    ea:eb:d4:03:ae:5e:84:3e:5f:ff:15:ed:69:bc:f9:
#                    39:36:72:75:cf:77:52:4d:f3:c9:90:2c:b9:3d:e5:
#                    c9:23:53:3f:1f:24:98:21:5c:07:99:29:bd:c6:3a:
#                    ec:e7:6e:86:3a:6b:97:74:63:33:bd:68:18:31:f0:
#                    78:8d:76:bf:fc:9e:8e:5d:2a:86:a7:4d:90:dc:27:
#                    1a:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                E5:9D:59:30:82:47:58:CC:AC:FA:08:54:36:86:7B:3A:B5:04:4D:F0
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:3
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         85:0c:5d:8e:e4:6f:51:68:42:05:a0:dd:bb:4f:27:25:84:03:
#         bd:f7:64:fd:2d:d7:30:e3:a4:10:17:eb:da:29:29:b6:79:3f:
#         76:f6:19:13:23:b8:10:0a:f9:58:a4:d4:61:70:bd:04:61:6a:
#         12:8a:17:d5:0a:bd:c5:bc:30:7c:d6:e9:0c:25:8d:86:40:4f:
#         ec:cc:a3:7e:38:c6:37:11:4f:ed:dd:68:31:8e:4c:d2:b3:01:
#         74:ee:be:75:5e:07:48:1a:7f:70:ff:16:5c:84:c0:79:85:b8:
#         05:fd:7f:be:65:11:a3:0f:c0:02:b4:f8:52:37:39:04:d5:a9:
#         31:7a:18:bf:a0:2a:f4:12:99:f7:a3:45:82:e3:3c:5e:f5:9d:
#         9e:b5:c8:9e:7c:2e:c8:a4:9e:4e:08:14:4b:6d:fd:70:6d:6b:
#         1a:63:bd:64:e6:1f:b7:ce:f0:f2:9f:2e:bb:1b:b7:f2:50:88:
#         73:92:c2:e2:e3:16:8d:9a:32:02:ab:8e:18:dd:e9:10:11:ee:
#         7e:35:ab:90:af:3e:30:94:7a:d0:33:3d:a7:65:0f:f5:fc:8e:
#         9e:62:cf:47:44:2c:01:5d:bb:1d:b5:32:d2:47:d2:38:2e:d0:
#         fe:81:dc:32:6a:1e:b5:ee:3c:d5:fc:e7:81:1d:19:c3:24:42:
#         ea:63:39:a9

[p11-kit-object-v1]
label: "Buypass Class 2 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Buypass Class 2 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=NO, O=Buypass AS-983163327, CN=Buypass Class 2 Root CA
#        Validity
#            Not Before: Oct 26 08:38:03 2010 GMT
#            Not After : Oct 26 08:38:03 2040 GMT
#        Subject: C=NO, O=Buypass AS-983163327, CN=Buypass Class 2 Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d7:c7:5e:f7:c1:07:d4:77:fb:43:21:f4:f4:f5:
#                    69:e4:ee:32:01:db:a3:86:1f:e4:59:0d:ba:e7:75:
#                    83:52:eb:ea:1c:61:15:48:bb:1d:07:ca:8c:ae:b0:
#                    dc:96:9d:ea:c3:60:92:86:82:28:73:9c:56:06:ff:
#                    4b:64:f0:0c:2a:37:49:b5:e5:cf:0c:7c:ee:f1:4a:
#                    bb:73:30:65:f3:d5:2f:83:b6:7e:e3:e7:f5:9e:ab:
#                    60:f9:d3:f1:9d:92:74:8a:e4:1c:96:ac:5b:80:e9:
#                    b5:f4:31:87:a3:51:fc:c7:7e:a1:6f:8e:53:77:d4:
#                    97:c1:55:33:92:3e:18:2f:75:d4:ad:86:49:cb:95:
#                    af:54:06:6c:d8:06:13:8d:5b:ff:e1:26:19:59:c0:
#                    24:ba:81:71:79:90:44:50:68:24:94:5f:b8:b3:11:
#                    f1:29:41:61:a3:41:cb:23:36:d5:c1:f1:32:50:10:
#                    4e:7f:f4:86:93:ec:84:d3:8e:bc:4b:bf:5c:01:4e:
#                    07:3d:dc:14:8a:94:0a:a4:ea:73:fb:0b:51:e8:13:
#                    07:18:fa:0e:f1:2b:d1:54:15:7d:3c:e1:f7:b4:19:
#                    42:67:62:5e:77:e0:a2:55:ec:b6:d9:69:17:d5:3a:
#                    af:44:ed:4a:c5:9e:e4:7a:27:7c:e5:75:d7:aa:cb:
#                    25:e7:df:6b:0a:db:0f:4d:93:4e:a8:a0:cd:7b:2e:
#                    f2:59:01:6a:b7:0d:b8:07:81:7e:8b:38:1b:38:e6:
#                    0a:57:99:3d:ee:21:e8:a3:f5:0c:16:dd:8b:ec:34:
#                    8e:9c:2a:1c:00:15:17:8d:68:83:d2:70:9f:18:08:
#                    cd:11:68:d5:c9:6b:52:cd:c4:46:8f:dc:b5:f3:d8:
#                    57:73:1e:e9:94:39:04:bf:d3:de:38:de:b4:53:ec:
#                    69:1c:a2:7e:c4:8f:e4:1b:70:ad:f2:a2:f9:fb:f7:
#                    16:64:66:69:9f:49:51:a2:e2:15:18:67:06:4a:7f:
#                    d5:6c:b5:4d:b3:33:e0:61:eb:5d:be:e9:98:0f:32:
#                    d7:1d:4b:3c:2e:5a:01:52:91:09:f2:df:ea:8d:d8:
#                    06:40:63:aa:11:e4:fe:c3:37:9e:14:52:3f:f4:e2:
#                    cc:f2:61:93:d1:fd:67:6b:d7:52:ae:bf:68:ab:40:
#                    43:a0:57:35:53:78:f0:53:f8:61:42:07:64:c6:d7:
#                    6f:9b:4c:38:0d:63:ac:62:af:36:8b:a2:73:0a:0d:
#                    f5:21:bd:74:aa:4d:ea:72:03:49:db:c7:5f:1d:62:
#                    63:c7:fd:dd:91:ec:33:ee:f5:6d:b4:6e:30:68:de:
#                    c8:d6:26:b0:75:5e:7b:b4:07:20:98:a1:76:32:b8:
#                    4d:6c:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C9:80:77:E0:62:92:82:F5:46:9C:F3:BA:F7:4C:C3:DE:B8:A3:AD:39
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         53:5f:21:f5:ba:b0:3a:52:39:2c:92:b0:6c:00:c9:ef:ce:20:
#         ef:06:f2:96:9e:e9:a4:74:7f:7a:16:fc:b7:f5:b6:fb:15:1b:
#         3f:ab:a6:c0:72:5d:10:b1:71:ee:bc:4f:e3:ad:ac:03:6d:2e:
#         71:2e:af:c4:e3:ad:a3:bd:0c:11:a7:b4:ff:4a:b2:7b:10:10:
#         1f:a7:57:41:b2:c0:ae:f4:2c:59:d6:47:10:88:f3:21:51:29:
#         30:ca:60:86:af:46:ab:1d:ed:3a:5b:b0:94:de:44:e3:41:08:
#         a2:c1:ec:1d:d6:fd:4f:b6:d6:47:d0:14:0b:ca:e6:ca:b5:7b:
#         77:7e:41:1f:5e:83:c7:b6:8c:39:96:b0:3f:96:81:41:6f:60:
#         90:e2:e8:f9:fb:22:71:d9:7d:b3:3d:46:bf:b4:84:af:90:1c:
#         0f:8f:12:6a:af:ef:ee:1e:7a:ae:02:4a:8a:17:2b:76:fe:ac:
#         54:89:24:2c:4f:3f:b6:b2:a7:4e:8c:a8:91:97:fb:29:c6:7b:
#         5c:2d:b9:cb:66:b6:b7:a8:5b:12:51:85:b5:09:7e:62:78:70:
#         fe:a9:6a:60:b6:1d:0e:79:0c:fd:ca:ea:24:80:72:c3:97:3f:
#         f2:77:ab:43:22:0a:c7:eb:b6:0c:84:82:2c:80:6b:41:8a:08:
#         c0:eb:a5:6b:df:99:12:cb:8a:d5:5e:80:0c:91:e0:26:08:36:
#         48:c5:fa:38:11:35:ff:25:83:2d:f2:7a:bf:da:fd:8e:fe:a5:
#         cb:45:2c:1f:c4:88:53:ae:77:0e:d9:9a:76:c5:8e:2c:1d:a3:
#         ba:d5:ec:32:ae:c0:aa:ac:f7:d1:7a:4d:eb:d4:07:e2:48:f7:
#         22:8e:b0:a4:9f:6a:ce:8e:b2:b2:60:f4:a3:22:d0:23:eb:94:
#         5a:7a:69:dd:0f:bf:40:57:ac:6b:59:50:d9:a3:99:e1:6e:fe:
#         8d:01:79:27:23:15:de:92:9d:7b:09:4d:5a:e7:4b:48:30:5a:
#         18:e6:0a:6d:e6:8f:e0:d2:bb:e6:df:7c:6e:21:82:c1:68:39:
#         4d:b4:98:58:66:62:cc:4a:90:5e:c3:fa:27:04:b1:79:15:74:
#         99:cc:be:ad:20:de:26:60:1c:eb:56:51:a6:a3:ea:e4:a3:3f:
#         a7:ff:61:dc:f1:5a:4d:6c:32:23:43:ee:ac:a8:ee:ee:4a:12:
#         09:3c:5d:71:c2:be:79:fa:c2:87:68:1d:0b:fd:5c:69:cc:06:
#         d0:9a:7d:54:99:2a:c9:39:1a:19:af:4b:2a:43:f3:63:5d:5a:
#         58:e2:2f:e3:1d:e4:a9:d6:d0:0a:d0:9e:bf:d7:81:09:f1:c9:
#         c7:26:0d:ac:98:16:56:a0

[p11-kit-object-v1]
label: "Buypass Class 3 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Buypass Class 3 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=NO, O=Buypass AS-983163327, CN=Buypass Class 3 Root CA
#        Validity
#            Not Before: Oct 26 08:28:58 2010 GMT
#            Not After : Oct 26 08:28:58 2040 GMT
#        Subject: C=NO, O=Buypass AS-983163327, CN=Buypass Class 3 Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a5:da:0a:95:16:50:e3:95:f2:5e:9d:76:31:06:
#                    32:7a:9b:f1:10:76:b8:00:9a:b5:52:36:cd:24:47:
#                    b0:9f:18:64:bc:9a:f6:fa:d5:79:d8:90:62:4c:22:
#                    2f:de:38:3d:d6:e0:a8:e9:1c:2c:db:78:11:e9:8e:
#                    68:51:15:72:c7:f3:33:87:e4:a0:5d:0b:5c:e0:57:
#                    07:2a:30:f5:cd:c4:37:77:28:4d:18:91:e6:bf:d5:
#                    52:fd:71:2d:70:3e:e7:c6:c4:8a:e3:f0:28:0b:f4:
#                    76:98:a1:8b:87:55:b2:3a:13:fc:b7:3e:27:37:8e:
#                    22:e3:a8:4f:2a:ef:60:bb:3d:b7:39:c3:0e:01:47:
#                    99:5d:12:4f:db:43:fa:57:a1:ed:f9:9d:be:11:47:
#                    26:5b:13:98:ab:5d:16:8a:b0:37:1c:57:9d:45:ff:
#                    88:96:36:bf:bb:ca:07:7b:6f:87:63:d7:d0:32:6a:
#                    d6:5d:6c:0c:f1:b3:6e:39:e2:6b:31:2e:39:00:27:
#                    14:de:38:c0:ec:19:66:86:12:e8:9d:72:16:13:64:
#                    52:c7:a9:37:1c:fd:82:30:ed:84:18:1d:f4:ae:5c:
#                    ff:70:13:00:eb:b1:f5:33:7a:4b:d6:55:f8:05:8d:
#                    4b:69:b0:f5:b3:28:36:5c:14:c4:51:73:4d:6b:0b:
#                    f1:34:07:db:17:39:d7:dc:28:7b:6b:f5:9f:f3:2e:
#                    c1:4f:17:2a:10:f3:cc:ca:e8:eb:fd:6b:ab:2e:9a:
#                    9f:2d:82:6e:04:d4:52:01:93:2d:3d:86:fc:7e:fc:
#                    df:ef:42:1d:a6:6b:ef:b9:20:c6:f7:bd:a0:a7:95:
#                    fd:a7:e6:89:24:d8:cc:8c:34:6c:e2:23:2f:d9:12:
#                    1a:21:b9:55:91:6f:0b:91:79:19:0c:ad:40:88:0b:
#                    70:e2:7a:d2:0e:d8:68:48:bb:82:13:39:10:58:e9:
#                    d8:2a:07:c6:12:db:58:db:d2:3b:55:10:47:05:15:
#                    67:62:7e:18:63:a6:46:3f:09:0e:54:32:5e:bf:0d:
#                    62:7a:27:ef:80:e8:db:d9:4b:06:5a:37:5a:25:d0:
#                    08:12:77:d4:6f:09:50:97:3d:c8:1d:c3:df:8c:45:
#                    30:56:c6:d3:64:ab:66:f3:c0:5e:96:9c:c3:c4:ef:
#                    c3:7c:6b:8b:3a:79:7f:b3:49:cf:3d:e2:89:9f:a0:
#                    30:4b:85:b9:9c:94:24:79:8f:7d:6b:a9:45:68:0f:
#                    2b:d0:f1:da:1c:cb:69:b8:ca:49:62:6d:c8:d0:63:
#                    62:dd:60:0f:58:aa:8f:a1:bc:05:a5:66:a2:cf:1b:
#                    76:b2:84:64:b1:4c:39:52:c0:30:ba:f0:8c:4b:02:
#                    b0:b6:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                47:B8:CD:FF:E5:6F:EE:F8:B2:EC:2F:4E:0E:F9:25:B0:8E:3C:6B:C3
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         00:20:23:41:35:04:90:c2:40:62:60:ef:e2:35:4c:d7:3f:ac:
#         e2:34:90:b8:a1:6f:76:fa:16:16:a4:48:37:2c:e9:90:c2:f2:
#         3c:f8:0a:9f:d8:81:e5:bb:5b:da:25:2c:a4:a7:55:71:24:32:
#         f6:c8:0b:f2:bc:6a:f8:93:ac:b2:07:c2:5f:9f:db:cc:c8:8a:
#         aa:be:6a:6f:e1:49:10:cc:31:d7:80:bb:bb:c8:d8:a2:0e:64:
#         57:ea:a2:f5:c2:a9:31:15:d2:20:6a:ec:fc:22:01:28:cf:86:
#         b8:80:1e:a9:cc:11:a5:3c:f2:16:b3:47:9d:fc:d2:80:21:c4:
#         cb:d0:47:70:41:a1:ca:83:19:08:2c:6d:f2:5d:77:9c:8a:14:
#         13:d4:36:1c:92:f0:e5:06:37:dc:a6:e6:90:9b:38:8f:5c:6b:
#         1b:46:86:43:42:5f:3e:01:07:53:54:5d:65:7d:f7:8a:73:a1:
#         9a:54:5a:1f:29:43:14:27:c2:85:0f:b5:88:7b:1a:3b:94:b7:
#         1d:60:a7:b5:9c:e7:29:69:57:5a:9b:93:7a:43:30:1b:03:d7:
#         62:c8:40:a6:aa:fc:64:e4:4a:d7:91:53:01:a8:20:88:6e:9c:
#         5f:44:b9:cb:60:81:34:ec:6f:d3:7d:da:48:5f:eb:b4:90:bc:
#         2d:a9:1c:0b:ac:1c:d5:a2:68:20:80:04:d6:fc:b1:8f:2f:bb:
#         4a:31:0d:4a:86:1c:eb:e2:36:29:26:f5:da:d8:c4:f2:75:61:
#         cf:7e:ae:76:63:4a:7a:40:65:93:87:f8:1e:80:8c:86:e5:86:
#         d6:8f:0e:fc:53:2c:60:e8:16:61:1a:a2:3e:43:7b:cd:39:60:
#         54:6a:f5:f2:89:26:01:68:83:48:a2:33:e8:c9:04:91:b2:11:
#         34:11:3e:ea:d0:43:19:1f:03:93:90:0c:ff:51:3d:57:f4:41:
#         6e:e1:cb:a0:be:eb:c9:63:cd:6d:cc:e4:f8:36:aa:68:9d:ed:
#         bd:5d:97:70:44:0d:b6:0e:35:dc:e1:0c:5d:bb:a0:51:94:cb:
#         7e:16:eb:11:2f:a3:92:45:c8:4c:71:d9:bc:c9:99:52:57:46:
#         2f:50:cf:bd:35:69:f4:3d:15:ce:06:a5:2c:0f:3e:f6:81:ba:
#         94:bb:c3:bb:bf:65:78:d2:86:79:ff:49:3b:1a:83:0c:f0:de:
#         78:ec:c8:f2:4d:4c:1a:de:82:29:f8:c1:5a:da:ed:ee:e6:27:
#         5e:e8:45:d0:9d:1c:51:a8:68:ab:44:e3:d0:8b:6a:e3:f8:3b:
#         bb:dc:4d:d7:64:f2:51:be:e6:aa:ab:5a:e9:31:ee:06:bc:73:
#         bf:13:62:0a:9f:c7:b9:97

[p11-kit-object-v1]
label: "CAEDICOM Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CAEDICOM Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            fb:71:26:58:ad:99:e5
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: CN=CAEDICOM Root, O=EDICOM, C=ES
#        Validity
#            Not Before: May 21 11:06:35 2014 GMT
#            Not After : May 21 10:20:00 2034 GMT
#        Subject: CN=CAEDICOM Root, O=EDICOM, C=ES
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:db:80:ca:e8:49:74:c7:d3:38:2e:f1:c5:23:62:
#                    fc:36:8c:2f:1e:7e:39:0b:e9:06:f4:55:9b:a5:98:
#                    29:94:ed:86:47:32:83:f3:c5:92:7a:05:d7:29:02:
#                    3e:16:c3:28:7f:35:64:29:7a:79:bb:a1:e2:1e:61:
#                    14:8d:e7:00:d0:dc:a2:54:65:8a:df:69:b9:71:47:
#                    7f:38:38:16:46:a7:69:31:11:35:4c:e1:2a:7f:ff:
#                    6d:4f:95:3d:e3:5d:48:4d:19:53:08:5a:6b:21:d5:
#                    12:30:69:97:90:af:2d:c1:f5:7f:41:5f:49:36:8f:
#                    4d:b8:1e:1a:95:5f:da:0f:6f:5c:15:35:c4:11:bc:
#                    5f:85:9b:bd:ad:3b:55:5e:bb:df:ce:bb:af:5c:99:
#                    60:dd:1f:69:1a:49:48:21:f9:09:0a:cf:72:a7:f0:
#                    f2:de:e5:78:19:be:12:dd:cd:87:79:41:ce:2f:45:
#                    d7:0b:91:10:11:04:1e:12:9d:f2:38:03:5f:16:69:
#                    ae:a0:0a:da:c0:f9:eb:a0:0d:18:0f:79:5e:91:9d:
#                    e4:1f:14:9c:34:13:19:02:44:ba:51:c3:ee:79:b2:
#                    60:14:a3:af:bc:48:2d:28:38:68:01:43:64:ca:0e:
#                    86:83:62:d0:8a:19:a6:27:f1:2b:7b:4b:29:21:5b:
#                    9a:cc:68:42:10:c8:4b:4f:0f:23:b2:88:7c:c4:5c:
#                    6e:17:70:c5:77:af:95:c0:25:a4:22:0a:d3:7c:f9:
#                    d8:72:c8:d0:2d:bd:a7:e8:d2:2d:8b:4c:a1:6e:0a:
#                    fc:b4:40:33:bb:9a:6b:fc:a4:ea:c9:fe:e0:34:88:
#                    43:cc:c6:bc:3f:75:d2:a5:a9:af:fa:97:b9:3e:b7:
#                    ce:54:a0:4d:c0:5d:2e:c1:28:d8:63:54:72:b8:ac:
#                    5a:f5:3a:fb:20:61:06:3a:f4:a0:2b:38:ab:cc:83:
#                    0c:49:d4:6e:3e:6d:0f:3e:73:2f:36:e6:f3:4f:b3:
#                    c0:00:d1:45:49:5b:8c:f6:a3:98:1d:84:7f:99:0a:
#                    c3:ea:0a:3c:c3:d3:24:78:48:67:f5:1b:3b:0e:1d:
#                    0e:43:b1:04:75:c1:a0:39:76:8b:f6:d9:02:a5:1d:
#                    e1:9e:5b:07:bb:36:57:4a:21:4d:f9:89:69:b4:6c:
#                    0f:d7:af:a0:15:24:99:e7:f8:d7:53:94:ec:12:bf:
#                    a4:a5:d7:ed:ee:8e:35:77:77:dc:a6:7f:20:54:92:
#                    d6:63:d6:72:9e:4d:2a:b6:8f:73:f3:19:a1:c4:b0:
#                    1f:e6:34:a3:0b:00:3e:97:49:27:61:aa:aa:04:41:
#                    33:38:b5:50:51:cc:36:15:db:1f:ff:bd:ca:48:83:
#                    48:a7:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                14:CD:2A:59:78:63:AB:61:19:E8:B8:3D:A1:E0:5A:C0:75:E7:F9:CB
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:14:CD:2A:59:78:63:AB:61:19:E8:B8:3D:A1:E0:5A:C0:75:E7:F9:CB
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         3d:09:19:00:b6:91:02:6c:ec:0e:f7:e1:e2:62:b0:bf:33:0d:
#         fd:55:12:f4:08:9a:f7:2b:2d:ae:f7:9c:47:d8:1f:06:01:13:
#         b5:8e:e7:b2:82:0b:3d:84:59:43:d4:07:d8:2b:5c:10:7a:24:
#         2c:ca:8d:e8:d5:a3:39:9c:31:cc:eb:e0:3a:e1:d5:bf:cf:c7:
#         87:7b:60:ff:47:39:d7:a3:44:d6:08:26:5b:cf:5a:54:ec:88:
#         d3:8e:0f:79:3c:c8:a3:4f:a6:c2:8e:27:f0:de:12:ae:5e:19:
#         ad:e7:22:56:8a:58:32:e0:f9:06:d0:a9:2a:b4:35:9b:0c:86:
#         26:51:00:94:47:50:fc:a5:c4:25:61:f9:58:f0:45:70:2e:49:
#         76:7f:11:d6:6f:b5:f9:29:05:e1:0d:c3:4e:58:1f:af:1d:ec:
#         37:d0:4a:f9:06:06:81:d3:db:a0:96:b8:0e:91:30:79:e6:50:
#         df:88:b8:0b:a9:5c:d4:07:f4:c9:a8:cc:7d:8f:93:63:09:64:
#         00:05:2a:68:66:43:bb:a2:bb:fe:95:ae:f9:c4:a5:0a:88:62:
#         48:78:25:7c:2a:3f:11:64:a6:d3:22:20:47:9d:32:d6:f2:e3:
#         c8:a4:61:74:e7:82:c2:44:ba:a0:d1:5d:5f:bc:f1:44:0e:83:
#         4f:1c:50:85:c4:e9:e7:6c:fc:e6:b8:55:e1:a2:1a:80:b7:90:
#         44:a7:84:22:97:47:22:de:ab:38:37:cf:b5:f2:1c:3e:42:70:
#         bb:75:b6:65:28:6b:cb:7f:82:35:aa:f6:f3:20:78:28:73:07:
#         96:30:70:a5:2a:71:5c:a1:79:a4:16:b9:46:3d:5e:b4:00:49:
#         85:89:d3:0e:df:81:ae:58:8d:58:d6:e1:c5:44:78:2e:1c:20:
#         bb:a2:47:97:bf:76:14:3b:a9:28:8f:9f:0b:75:d2:a1:3c:ed:
#         2b:c7:8e:90:a1:7a:a2:99:30:62:fc:85:1d:35:73:3b:f3:b5:
#         59:22:1b:cd:08:b1:0c:9d:75:6a:db:85:3b:0e:87:9f:32:4f:
#         92:00:01:01:4c:49:68:82:80:41:6c:f9:fd:71:bd:8b:f4:78:
#         0a:60:a3:9e:b1:52:1d:c0:8a:e3:9e:c5:bf:2b:19:6a:98:a7:
#         b1:de:15:50:9f:aa:94:25:8f:a9:80:82:a7:72:ba:49:64:09:
#         27:61:2b:6e:bc:23:28:33:5d:9e:6e:f0:b9:bd:20:32:8c:dd:
#         a0:0b:99:bb:b4:84:04:24:75:29:96:f7:a7:a5:17:b8:51:05:
#         eb:74:ad:51:79:96:fc:bb:fb:df:09:2d:08:92:44:ce:c0:d2:
#         b3:18:c7:14:22:bf:21:f1

[p11-kit-object-v1]
label: "CA Disig Root R1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAqsN499yYo6daXncYst0E
ZA9j/ZuWCYDV6Kql4pwmlDromXOMnd/X34PzeE9A4X/Sp9LlyhOT5+3Gd182tZSv
6DiO25vlfLvMjet1c+EkzeanLRku2NaKaxTrCGIK2NyzAE3DI3xfQwgjMhLc7Qyt
wH0PpXpC2Vpw2b+n1wEc9purjrdKhnigHlYxru+CCoBB9xvJrqsyJtQsa+19a+Ti
XiIKRcuEMU2s/tvRR7r5YJc5sWXH3vuZ5AoisS1N5UgmaaviqvP7/JIpMumzPk0f
J6HNjrkX+yU+yW7zd9oNEvZdx7s2ENVU1vPg4kdI5t4U2mFSrya09XFPydfSBt9j
yv8h6FkG4AjVhBVT90PlfMWgiZhrc8ZozmXevX8F97Hu9lehYJXFzOqTOr6ZrpsC
o63JFrXO3V6ZeH4aOX6ywAWkwIKlo0eejOpctrxn2+YqTdIE3KOuRfe8i5wcp9bV
A9wIyy4WylxAM+hnwy7npkTqEUUcNWUtHkVhJBuCLqWdM11l+EH5LsuUPx+jDDEk
RO3HXq1QusZBm6zwF2XA+F1vW6AKNDzu1+qIn5j5r04k+peyZHbaq/Tt48Ng79X5
Asgtn4OvZ2kGpzFV1c9Lb/8EBcdYrF8WG+XSo+sx2x8zFU3Q8qVT9cvhPU5oLdgS
3ary5k2bSeXFKKG6sFrGoLUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA Disig Root R1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c3:03:9a:ee:50:90:6e:28
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=SK, L=Bratislava, O=Disig a.s., CN=CA Disig Root R1
#        Validity
#            Not Before: Jul 19 09:06:56 2012 GMT
#            Not After : Jul 19 09:06:56 2042 GMT
#        Subject: C=SK, L=Bratislava, O=Disig a.s., CN=CA Disig Root R1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:c3:78:f7:dc:98:a3:a7:5a:5e:77:18:b2:dd:
#                    04:64:0f:63:fd:9b:96:09:80:d5:e8:aa:a5:e2:9c:
#                    26:94:3a:e8:99:73:8c:9d:df:d7:df:83:f3:78:4f:
#                    40:e1:7f:d2:a7:d2:e5:ca:13:93:e7:ed:c6:77:5f:
#                    36:b5:94:af:e8:38:8e:db:9b:e5:7c:bb:cc:8d:eb:
#                    75:73:e1:24:cd:e6:a7:2d:19:2e:d8:d6:8a:6b:14:
#                    eb:08:62:0a:d8:dc:b3:00:4d:c3:23:7c:5f:43:08:
#                    23:32:12:dc:ed:0c:ad:c0:7d:0f:a5:7a:42:d9:5a:
#                    70:d9:bf:a7:d7:01:1c:f6:9b:ab:8e:b7:4a:86:78:
#                    a0:1e:56:31:ae:ef:82:0a:80:41:f7:1b:c9:ae:ab:
#                    32:26:d4:2c:6b:ed:7d:6b:e4:e2:5e:22:0a:45:cb:
#                    84:31:4d:ac:fe:db:d1:47:ba:f9:60:97:39:b1:65:
#                    c7:de:fb:99:e4:0a:22:b1:2d:4d:e5:48:26:69:ab:
#                    e2:aa:f3:fb:fc:92:29:32:e9:b3:3e:4d:1f:27:a1:
#                    cd:8e:b9:17:fb:25:3e:c9:6e:f3:77:da:0d:12:f6:
#                    5d:c7:bb:36:10:d5:54:d6:f3:e0:e2:47:48:e6:de:
#                    14:da:61:52:af:26:b4:f5:71:4f:c9:d7:d2:06:df:
#                    63:ca:ff:21:e8:59:06:e0:08:d5:84:15:53:f7:43:
#                    e5:7c:c5:a0:89:98:6b:73:c6:68:ce:65:de:bd:7f:
#                    05:f7:b1:ee:f6:57:a1:60:95:c5:cc:ea:93:3a:be:
#                    99:ae:9b:02:a3:ad:c9:16:b5:ce:dd:5e:99:78:7e:
#                    1a:39:7e:b2:c0:05:a4:c0:82:a5:a3:47:9e:8c:ea:
#                    5c:b6:bc:67:db:e6:2a:4d:d2:04:dc:a3:ae:45:f7:
#                    bc:8b:9c:1c:a7:d6:d5:03:dc:08:cb:2e:16:ca:5c:
#                    40:33:e8:67:c3:2e:e7:a6:44:ea:11:45:1c:35:65:
#                    2d:1e:45:61:24:1b:82:2e:a5:9d:33:5d:65:f8:41:
#                    f9:2e:cb:94:3f:1f:a3:0c:31:24:44:ed:c7:5e:ad:
#                    50:ba:c6:41:9b:ac:f0:17:65:c0:f8:5d:6f:5b:a0:
#                    0a:34:3c:ee:d7:ea:88:9f:98:f9:af:4e:24:fa:97:
#                    b2:64:76:da:ab:f4:ed:e3:c3:60:ef:d5:f9:02:c8:
#                    2d:9f:83:af:67:69:06:a7:31:55:d5:cf:4b:6f:ff:
#                    04:05:c7:58:ac:5f:16:1b:e5:d2:a3:eb:31:db:1f:
#                    33:15:4d:d0:f2:a5:53:f5:cb:e1:3d:4e:68:2d:d8:
#                    12:dd:aa:f2:e6:4d:9b:49:e5:c5:28:a1:ba:b0:5a:
#                    c6:a0:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                89:0A:B4:38:93:1A:E6:AB:EE:9B:91:18:F9:F5:3C:3E:35:D0:D3:82
#    Signature Algorithm: sha1WithRSAEncryption
#         32:8b:f6:9d:4a:c9:be:14:e5:8c:ac:38:ca:3a:09:d4:1b:ce:
#         86:b3:dd:eb:d4:ba:28:be:12:ae:45:2c:04:74:ac:13:51:c5:
#         58:18:66:4d:82:da:d5:dc:93:c0:27:e1:be:7c:9f:52:9e:12:
#         56:f6:d5:9c:a9:f4:75:9c:fa:37:12:8f:1c:93:ec:57:fe:07:
#         0f:ab:d5:12:f7:0f:ae:61:5e:56:80:49:f5:fc:30:f5:9b:4f:
#         1f:41:2f:1c:84:d3:89:c7:e2:da:02:76:ed:09:cf:6c:c1:b8:
#         1c:83:1c:16:fa:94:cd:7d:a0:c8:18:d2:c8:9d:6e:f5:bd:69:
#         d4:6d:3d:35:e8:1e:a2:4f:60:d7:07:29:fc:b2:a3:a4:9d:6e:
#         15:92:56:19:4c:0a:b0:e9:7c:d2:19:4d:42:46:ec:bd:fd:f6:
#         57:5b:dd:98:7e:a4:4d:cc:72:03:83:58:5d:ef:93:3a:41:7a:
#         63:aa:7c:3a:a8:f5:ac:a4:d1:dd:a2:2d:b6:2a:fc:9f:01:8e:
#         e2:10:b1:c4:ca:e4:67:db:55:25:19:3f:fd:e8:36:7e:b3:e1:
#         e1:81:af:11:16:8b:50:97:60:19:82:00:c0:6b:4d:73:b8:d1:
#         13:07:3e:ea:b6:31:4f:f0:42:9a:6d:e2:11:74:e5:94:ac:8d:
#         84:95:3c:21:af:c5:da:47:c8:df:39:62:62:cb:5b:50:0b:d7:
#         81:40:05:9c:9b:ed:ba:b6:8b:1e:04:6f:96:20:39:ed:a4:7d:
#         29:db:48:ce:82:dc:d4:02:8d:1d:04:31:5a:c7:4b:f0:6c:61:
#         52:d7:b4:51:c2:81:6c:cd:e1:fb:a7:a1:d2:92:76:cf:b1:0f:
#         37:58:a4:f2:52:71:67:3f:0c:88:78:80:89:c1:c8:b5:1f:92:
#         63:be:a7:7a:8a:56:2c:1a:a8:a6:9c:b5:5d:b3:63:d0:13:20:
#         a1:eb:91:6c:d0:8d:7d:af:df:0b:e4:17:b9:86:9e:38:b1:94:
#         0c:58:8c:e0:55:aa:3b:63:6d:9a:89:60:b8:64:2a:92:c6:37:
#         f4:7e:43:43:b7:73:e8:01:e7:7f:97:0f:d7:f2:7b:19:fd:1a:
#         d7:8f:c9:fa:85:6b:7a:9d:9e:89:b6:a6:28:99:93:88:40:f7:
#         3e:cd:51:a3:ca:ea:ef:79:47:21:b5:fe:32:e2:c7:c3:51:6f:
#         be:80:74:f0:a4:c3:3a:f2:4f:e9:5f:df:19:0a:f2:3b:13:43:
#         ac:31:a4:b3:e7:eb:fc:18:d6:01:a9:f3:2a:8f:36:0e:eb:b4:
#         b1:bc:b7:4c:c9:6b:bf:a1:f3:d9:f4:ed:e2:f0:e3:ed:64:9e:
#         3d:2f:96:52:4f:80:53:8b

[p11-kit-object-v1]
label: "CA Disig Root R2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA Disig Root R2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFaTCCA1GgAwIBAgIJAJK4iNuwisFjMA0GCSqGSIb3DQEBCwUAMFIxCzAJBgNV
BAYTAlNLMRMwEQYDVQQHEwpCcmF0aXNsYXZhMRMwEQYDVQQKEwpEaXNpZyBhLnMu
MRkwFwYDVQQDExBDQSBEaXNpZyBSb290IFIyMB4XDTEyMDcxOTA5MTUzMFoXDTQy
MDcxOTA5MTUzMFowUjELMAkGA1UEBhMCU0sxEzARBgNVBAcTCkJyYXRpc2xhdmEx
EzARBgNVBAoTCkRpc2lnIGEucy4xGTAXBgNVBAMTEENBIERpc2lnIFJvb3QgUjIw
ggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCio8QACdaFXS1tFPbCw3Oe
NcJxVX6B+6tGUODBfEl45qt5WDza/3wcn9iXAng+a0EE6UG9vgMsRfYvZNSrXaNH
PWSb6WiaxswbP7q+sos0Ai6YVRn8jG+qX9pMzk0DIaPY0jSTVpbLTAwAFjxfGs3I
x2ymrdMxp7zo5eFm1tL7A7RBZckQrg4FY8aAamkw/dLukO8NJ9+flXP04SXabBbe
QTg06ov80egEFGEtQX6sx3dOy1FU+16SGBsEWmjGycT6txOgmLcRK7fWV8x8nhfR
yyX+hk4kLlYMeE2eARKmK6cBZW58Yh2EhN/qwGu1pSqVg8NTEQxzHQuyRpDRQjrO
QG6Vrf/GlK1ul4SOfW+eioANSW1z4nuSHsPzwfPrLgVv2RvPN3YEyLRa5Beny912
H9AZdugsBbPWnDTYltxhh5EF5EQIM8HauQhl1K6yNg3ruji6DOWbnuuNZt2Zz9aJ
QfYEkoopKW1rOhzndX0CcQ7zwOe9yxndnWCywmZgtrEE7snmhrmaZkCo5xHtgUUD
i/ZnWejBBhG93c+AAk9lQHhcR1DIm+YfgXvkRKhbhZri3lrVx/k6RGZL5DJUfORs
nLMOPReisjQS1n6yqEm70XooQL6iFh/f5DcfEXP7kAplQ6INfPgGAVUzfbANuPT1
rqVCV3w2EYx7XsQDnYx5nQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1Ud
DwEB/wQEAwIBBjAdBgNVHQ4EFgQUtZn4r7CU9eMg1gqtzk5WpC5uQu0wDQYJKoZI
hvcNAQELBQADggIBACYGXnDnZTPIgm7ZnBc6G3pmsgH2eDtpXi/q/075KMOYKmFM
tCQSin1tERT3nLXK5ryeJ45MGcipvXrA1zYObYVybqjGom32+nNjf7xueQgcnYqf
GopTpti72TVVsRHFqQOzVju5hJMiXn7B9hJSi+osZ7z+Nkz1uM/Rs0mSO9MpDpkb
lvdhuDvEK7Z4bLQjb/D907JedR+Zlais9trhxTF7+9FGs9K8Z7RiVLoJ92Owk6Ka
+elSLotgEqv89WBW7xBci8QaQtyDW2QOy7W81k/BfDxujRNt+3vrMNDcTa/F1bal
TFtxyegxvug4BkihGuLq0t4SOVga/4AOgnXmt8kHbA7v/zjxmHHEt38OFdAlab0i
nSvtBfZGR6ztwPDUO+Ls7pZbkBNOHlY667DvlruWIxG68kOGdGSVyCh13x01utI3
gzhTODY7z2zp+WsO0PsE6E9312UBeIYMej4hYvF/Y3EMyZ9E26gnonW+boE+18Dr
G5gPcFw0sorMwIUY6256s/daoQe/qUKS82Ail+QUoQebTnbAjn39pCXHR+3/H3Os
zMOl6W8KjptlwlCFtaOgUxLMVYdh84GuEEZhvUQhuMI9dM9+JDX6HAcOmz0iyu8x
L4ysEr3vQCj8KWefshNPZiTEUxnpHikV7+ZtsH8tZ/3zbBt1RqPlShfppNcL
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            92:b8:88:db:b0:8a:c1:63
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=SK, L=Bratislava, O=Disig a.s., CN=CA Disig Root R2
#        Validity
#            Not Before: Jul 19 09:15:30 2012 GMT
#            Not After : Jul 19 09:15:30 2042 GMT
#        Subject: C=SK, L=Bratislava, O=Disig a.s., CN=CA Disig Root R2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a2:a3:c4:00:09:d6:85:5d:2d:6d:14:f6:c2:c3:
#                    73:9e:35:c2:71:55:7e:81:fb:ab:46:50:e0:c1:7c:
#                    49:78:e6:ab:79:58:3c:da:ff:7c:1c:9f:d8:97:02:
#                    78:3e:6b:41:04:e9:41:bd:be:03:2c:45:f6:2f:64:
#                    d4:ab:5d:a3:47:3d:64:9b:e9:68:9a:c6:cc:1b:3f:
#                    ba:be:b2:8b:34:02:2e:98:55:19:fc:8c:6f:aa:5f:
#                    da:4c:ce:4d:03:21:a3:d8:d2:34:93:56:96:cb:4c:
#                    0c:00:16:3c:5f:1a:cd:c8:c7:6c:a6:ad:d3:31:a7:
#                    bc:e8:e5:e1:66:d6:d2:fb:03:b4:41:65:c9:10:ae:
#                    0e:05:63:c6:80:6a:69:30:fd:d2:ee:90:ef:0d:27:
#                    df:9f:95:73:f4:e1:25:da:6c:16:de:41:38:34:ea:
#                    8b:fc:d1:e8:04:14:61:2d:41:7e:ac:c7:77:4e:cb:
#                    51:54:fb:5e:92:18:1b:04:5a:68:c6:c9:c4:fa:b7:
#                    13:a0:98:b7:11:2b:b7:d6:57:cc:7c:9e:17:d1:cb:
#                    25:fe:86:4e:24:2e:56:0c:78:4d:9e:01:12:a6:2b:
#                    a7:01:65:6e:7c:62:1d:84:84:df:ea:c0:6b:b5:a5:
#                    2a:95:83:c3:53:11:0c:73:1d:0b:b2:46:90:d1:42:
#                    3a:ce:40:6e:95:ad:ff:c6:94:ad:6e:97:84:8e:7d:
#                    6f:9e:8a:80:0d:49:6d:73:e2:7b:92:1e:c3:f3:c1:
#                    f3:eb:2e:05:6f:d9:1b:cf:37:76:04:c8:b4:5a:e4:
#                    17:a7:cb:dd:76:1f:d0:19:76:e8:2c:05:b3:d6:9c:
#                    34:d8:96:dc:61:87:91:05:e4:44:08:33:c1:da:b9:
#                    08:65:d4:ae:b2:36:0d:eb:ba:38:ba:0c:e5:9b:9e:
#                    eb:8d:66:dd:99:cf:d6:89:41:f6:04:92:8a:29:29:
#                    6d:6b:3a:1c:e7:75:7d:02:71:0e:f3:c0:e7:bd:cb:
#                    19:dd:9d:60:b2:c2:66:60:b6:b1:04:ee:c9:e6:86:
#                    b9:9a:66:40:a8:e7:11:ed:81:45:03:8b:f6:67:59:
#                    e8:c1:06:11:bd:dd:cf:80:02:4f:65:40:78:5c:47:
#                    50:c8:9b:e6:1f:81:7b:e4:44:a8:5b:85:9a:e2:de:
#                    5a:d5:c7:f9:3a:44:66:4b:e4:32:54:7c:e4:6c:9c:
#                    b3:0e:3d:17:a2:b2:34:12:d6:7e:b2:a8:49:bb:d1:
#                    7a:28:40:be:a2:16:1f:df:e4:37:1f:11:73:fb:90:
#                    0a:65:43:a2:0d:7c:f8:06:01:55:33:7d:b0:0d:b8:
#                    f4:f5:ae:a5:42:57:7c:36:11:8c:7b:5e:c4:03:9d:
#                    8c:79:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B5:99:F8:AF:B0:94:F5:E3:20:D6:0A:AD:CE:4E:56:A4:2E:6E:42:ED
#    Signature Algorithm: sha256WithRSAEncryption
#         26:06:5e:70:e7:65:33:c8:82:6e:d9:9c:17:3a:1b:7a:66:b2:
#         01:f6:78:3b:69:5e:2f:ea:ff:4e:f9:28:c3:98:2a:61:4c:b4:
#         24:12:8a:7d:6d:11:14:f7:9c:b5:ca:e6:bc:9e:27:8e:4c:19:
#         c8:a9:bd:7a:c0:d7:36:0e:6d:85:72:6e:a8:c6:a2:6d:f6:fa:
#         73:63:7f:bc:6e:79:08:1c:9d:8a:9f:1a:8a:53:a6:d8:bb:d9:
#         35:55:b1:11:c5:a9:03:b3:56:3b:b9:84:93:22:5e:7e:c1:f6:
#         12:52:8b:ea:2c:67:bc:fe:36:4c:f5:b8:cf:d1:b3:49:92:3b:
#         d3:29:0e:99:1b:96:f7:61:b8:3b:c4:2b:b6:78:6c:b4:23:6f:
#         f0:fd:d3:b2:5e:75:1f:99:95:a8:ac:f6:da:e1:c5:31:7b:fb:
#         d1:46:b3:d2:bc:67:b4:62:54:ba:09:f7:63:b0:93:a2:9a:f9:
#         e9:52:2e:8b:60:12:ab:fc:f5:60:56:ef:10:5c:8b:c4:1a:42:
#         dc:83:5b:64:0e:cb:b5:bc:d6:4f:c1:7c:3c:6e:8d:13:6d:fb:
#         7b:eb:30:d0:dc:4d:af:c5:d5:b6:a5:4c:5b:71:c9:e8:31:be:
#         e8:38:06:48:a1:1a:e2:ea:d2:de:12:39:58:1a:ff:80:0e:82:
#         75:e6:b7:c9:07:6c:0e:ef:ff:38:f1:98:71:c4:b7:7f:0e:15:
#         d0:25:69:bd:22:9d:2b:ed:05:f6:46:47:ac:ed:c0:f0:d4:3b:
#         e2:ec:ee:96:5b:90:13:4e:1e:56:3a:eb:b0:ef:96:bb:96:23:
#         11:ba:f2:43:86:74:64:95:c8:28:75:df:1d:35:ba:d2:37:83:
#         38:53:38:36:3b:cf:6c:e9:f9:6b:0e:d0:fb:04:e8:4f:77:d7:
#         65:01:78:86:0c:7a:3e:21:62:f1:7f:63:71:0c:c9:9f:44:db:
#         a8:27:a2:75:be:6e:81:3e:d7:c0:eb:1b:98:0f:70:5c:34:b2:
#         8a:cc:c0:85:18:eb:6e:7a:b3:f7:5a:a1:07:bf:a9:42:92:f3:
#         60:22:97:e4:14:a1:07:9b:4e:76:c0:8e:7d:fd:a4:25:c7:47:
#         ed:ff:1f:73:ac:cc:c3:a5:e9:6f:0a:8e:9b:65:c2:50:85:b5:
#         a3:a0:53:12:cc:55:87:61:f3:81:ae:10:46:61:bd:44:21:b8:
#         c2:3d:74:cf:7e:24:35:fa:1c:07:0e:9b:3d:22:ca:ef:31:2f:
#         8c:ac:12:bd:ef:40:28:fc:29:67:9f:b2:13:4f:66:24:c4:53:
#         19:e9:1e:29:15:ef:e6:6d:b0:7f:2d:67:fd:f3:6c:1b:75:46:
#         a3:e5:4a:17:e9:a4:d7:0b

[p11-kit-object-v1]
label: "CA WoSign ECC Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE4f2OuEMkq5Z7hcK6C62N4DrjJLnSsb6I
Osq/Srj57ywvr1FQPEd1bPiUt5v8KB7FVMxjnRZLU8HnIKvNrCXSf4/CwVqCXjCL
elTOA7WRf6qU0NGKSMyCBSah1VES1ns2
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA WoSign ECC Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            68:4a:58:70:80:6b:f0:8f:02:fa:f6:de:e8:b0:90:90
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=CN, O=WoSign CA Limited, CN=CA WoSign ECC Root
#        Validity
#            Not Before: Nov  8 00:58:58 2014 GMT
#            Not After : Nov  8 00:58:58 2044 GMT
#        Subject: C=CN, O=WoSign CA Limited, CN=CA WoSign ECC Root
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:e1:fd:8e:b8:43:24:ab:96:7b:85:c2:ba:0b:ad:
#                    8d:e0:3a:e3:24:b9:d2:b1:be:88:3a:ca:bf:4a:b8:
#                    f9:ef:2c:2f:af:51:50:3c:47:75:6c:f8:94:b7:9b:
#                    fc:28:1e:c5:54:cc:63:9d:16:4b:53:c1:e7:20:ab:
#                    cd:ac:25:d2:7f:8f:c2:c1:5a:82:5e:30:8b:7a:54:
#                    ce:03:b5:91:7f:aa:94:d0:d1:8a:48:cc:82:05:26:
#                    a1:d5:51:12:d6:7b:36
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AA:FD:D5:5A:A3:F6:87:8B:32:85:FD:D1:32:5B:80:45:93:F3:03:B8
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:e4:a4:84:b0:81:d5:3d:b0:74:ac:94:a4:e8:
#         0e:3d:00:74:4c:a1:97:6b:f9:0d:51:3c:a1:d9:3b:f4:0d:ab:
#         a9:9f:be:4e:72:ca:85:d4:d9:ec:b5:32:45:18:6f:ab:ad:02:
#         30:7d:c7:f7:69:63:2f:a1:e1:98:ef:13:10:d1:79:3f:d1:fe:
#         ea:3b:7f:de:56:f4:90:b1:15:11:d8:b2:22:15:d0:2f:c3:26:
#         2e:6b:f1:91:b2:90:65:f4:9a:e6:90:ee:4a

[p11-kit-object-v1]
label: "CA 沃通根证书"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CA 沃通根证书"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            50:70:6b:cd:d8:13:fc:1b:4e:3b:33:72:d2:11:48:8d
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=WoSign CA Limited, CN=CA \xE6\xB2\x83\xE9\x80\x9A\xE6\xA0\xB9\xE8\xAF\x81\xE4\xB9\xA6
#        Validity
#            Not Before: Aug  8 01:00:01 2009 GMT
#            Not After : Aug  8 01:00:01 2039 GMT
#        Subject: C=CN, O=WoSign CA Limited, CN=CA \xE6\xB2\x83\xE9\x80\x9A\xE6\xA0\xB9\xE8\xAF\x81\xE4\xB9\xA6
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d0:49:21:1e:25:fc:87:c1:2a:c2:ac:db:76:86:
#                    06:4e:e7:d0:74:34:dc:ed:65:35:fc:50:d6:88:3f:
#                    a4:f0:7f:eb:0f:5f:79:2f:89:b1:fd:bc:63:58:37:
#                    93:9b:38:f8:b7:5b:a9:fa:d8:71:c7:b4:bc:80:97:
#                    8d:6c:4b:f1:50:d5:2a:29:aa:a8:19:7a:96:e6:95:
#                    8e:74:ed:97:0a:57:75:f4:05:db:6d:0b:39:b9:01:
#                    7f:aa:f6:d6:da:6c:e6:05:e0:a4:4d:52:fc:db:d0:
#                    74:b7:11:8c:7b:8d:4f:ff:87:83:ae:ff:05:03:13:
#                    57:50:37:fe:8c:96:52:10:4c:5f:bf:94:71:69:d9:
#                    96:3e:0c:43:4f:be:30:c0:9f:39:74:4f:06:45:5d:
#                    a3:d6:56:39:68:07:cc:87:4f:50:77:93:71:d9:44:
#                    08:b1:8a:34:e9:89:ac:db:9b:4e:e1:d9:e4:52:45:
#                    8c:2e:14:1f:91:6b:19:1d:68:29:2c:56:c4:e2:1e:
#                    13:57:64:f0:61:e3:b9:11:df:b0:e1:57:a0:1b:ad:
#                    d7:5f:d1:af:db:2b:2d:3f:d0:68:8e:0f:ea:9f:0f:
#                    8b:35:58:1b:13:1c:f4:de:35:a1:0a:5d:d6:ea:df:
#                    12:6f:c0:fb:69:07:46:72:dc:81:f6:04:23:17:e0:
#                    4d:75:e1:72:6f:b0:28:eb:9b:e1:e1:83:a1:9f:4a:
#                    5d:af:cc:9b:fa:02:20:b6:18:62:77:91:3b:a3:d5:
#                    65:ad:dc:7c:90:77:1c:44:41:a4:4a:8b:eb:95:72:
#                    e9:f6:09:64:dc:a8:2d:9f:74:78:e8:c1:a2:09:63:
#                    9c:ef:a0:db:4f:9d:95:ab:20:4f:b7:b0:f7:87:5c:
#                    a6:a0:e4:37:38:c7:5c:e3:35:0f:2c:ad:a3:80:a2:
#                    ec:2e:5d:c0:cf:ed:8b:05:c2:e6:73:6e:f6:89:d5:
#                    f5:d2:46:8e:ea:6d:63:1b:1e:8a:c9:7d:a6:f8:9c:
#                    eb:e5:d5:63:85:4d:73:66:69:11:fe:c8:0e:f4:c1:
#                    c7:66:49:53:7e:e4:19:6b:f1:e9:7a:59:a3:6d:7e:
#                    c5:17:e6:27:c6:ef:1b:db:6f:fc:0d:4d:06:01:b4:
#                    0e:5c:30:46:55:60:af:38:65:3a:ca:47:ba:ac:2c:
#                    cc:46:1f:b2:46:96:3f:f3:ed:26:05:ee:77:a1:6a:
#                    6b:7e:2d:6d:58:5c:4a:d4:8e:67:b8:f1:da:d5:46:
#                    8a:27:f9:11:f2:c9:42:fe:4e:de:df:1f:5c:c4:a4:
#                    86:87:16:33:a1:a7:17:18:a5:0d:e4:05:e5:2b:c2:
#                    2b:0b:a2:95:90:b9:fd:60:3c:4e:89:3e:e7:9c:ee:
#                    1f:bb:01
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E0:4D:BF:DC:9B:41:5D:13:E8:64:F0:A7:E9:15:A4:E1:81:C1:BA:31
#    Signature Algorithm: sha256WithRSAEncryption
#         6a:8a:70:38:59:b6:da:8b:18:c8:be:2a:d3:b6:19:d5:66:29:
#         7a:5d:cd:5b:2f:73:1c:26:4e:a3:7d:6f:ab:b7:29:4d:a6:e9:
#         a5:11:83:a7:39:73:af:10:44:92:e6:25:5d:4f:61:fa:c8:06:
#         be:4e:4b:ef:fe:f3:31:fe:c6:7c:70:0a:41:58:da:e8:99:4b:
#         96:c9:78:bc:98:7c:02:29:ed:09:80:e6:0a:3a:82:02:2a:e2:
#         c9:2f:c8:56:19:26:ee:78:1c:23:fd:f7:93:65:4e:e7:f3:98:
#         98:af:cd:dd:d9:9e:40:88:31:28:3a:ab:2e:0b:b0:ac:0c:24:
#         fa:7a:26:98:f3:12:61:10:f4:5d:17:f7:7e:e2:78:97:54:e2:
#         8c:e8:29:ba:8c:10:32:bd:dd:33:6b:38:86:7e:39:3d:0e:03:
#         72:a7:5d:79:8f:45:8a:59:ae:5b:21:6e:31:46:d5:59:8d:cf:
#         15:5f:dd:31:25:cf:db:60:d6:81:44:72:29:02:57:f6:96:d4:
#         d6:ff:ea:29:db:39:c5:b8:2c:8a:1a:8d:ce:cb:e7:42:31:86:
#         05:68:0e:9e:14:dd:00:90:ba:69:45:08:db:6e:90:81:86:a7:
#         2a:05:3f:e6:84:39:f8:b7:f9:57:5f:4c:a4:79:5a:10:0c:5e:
#         d5:6b:ff:35:5f:05:51:1e:6c:a3:75:a9:cf:50:83:d3:7c:f4:
#         66:f7:82:8d:3d:0c:7d:e8:df:7b:a8:0e:1b:2c:9c:ae:40:70:
#         87:da:ed:a7:16:82:5a:be:35:6c:20:4e:22:61:d9:bc:51:7a:
#         cd:7a:61:dc:4b:11:f9:fe:67:34:cf:2e:04:66:61:5c:57:97:
#         23:8c:f3:86:1b:48:df:2a:af:a7:c1:ff:d8:8e:3e:03:bb:d8:
#         2a:b0:fa:14:25:b2:51:6b:86:43:85:2e:07:23:16:80:8d:4c:
#         fb:b4:63:3b:cc:c3:74:ed:1b:a3:1e:fe:35:0f:5f:7c:1d:16:
#         86:f5:0e:c3:95:f1:2f:af:5d:25:3b:51:e6:d7:76:41:38:d1:
#         4b:03:39:28:a5:1e:91:72:d4:7d:ab:97:33:c4:d3:3e:e0:69:
#         b6:28:79:a0:09:8d:1c:d1:ff:41:72:48:06:fc:9a:2e:e7:20:
#         f9:9b:a2:de:89:ed:ae:3c:09:af:ca:57:b3:92:89:70:40:e4:
#         2f:4f:c2:70:83:40:d7:24:2c:6b:e7:09:1f:d3:d5:c7:c1:08:
#         f4:db:0e:3b:1c:07:0b:43:11:84:21:86:e9:80:d4:75:d8:ab:
#         f1:02:62:c1:b1:7e:55:61:cf:13:d7:26:b0:d7:9c:cb:29:8b:
#         38:4a:0b:0e:90:8d:ba:a1

[p11-kit-object-v1]
label: "CCA India 2015 SPL"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAl9c2iT03QQ6RP2sgX/w6
fjtaXS/DDIdTPBiiyGFzDQgOVh7SbmClV2Xc/s9Qhg9aTqtiiwTKVu/h0Z6udK2q
+j9BWNFVcHA+RckbgHP8CIjki3KoCrUpV7CtCpFBGpxfUH2sFxolWyHwlSvn3zes
NPMHsPEdwRPvey46xalhkLJ4X1RQPLNaVWO2yxCjb/sN9Lbv5gjeohC/dpd/6tmW
0dTDcwJxtKmwrKwfFyClR0bWRAI4mb7LFHj+5l/Ef91v6apHFJAR2B2AwBXUjKCZ
4xkOCg/MGgic1FMHAOAfSb+CgkzPm9hu09QRABJsD31gZ0qMUNvyL+C5eYeDw1zC
OQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CCA India 2015 SPL"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDKzCCAhOgAwIBAgICJ7UwDQYJKoZIhvcNAQELBQAwPjELMAkGA1UEBhMCSU4x
EjAQBgNVBAoTCUluZGlhIFBLSTEbMBkGA1UEAxMSQ0NBIEluZGlhIDIwMTUgU1BM
MB4XDTE1MDEyOTExMzY0M1oXDTI1MDEyOTExMzY0M1owPjELMAkGA1UEBhMCSU4x
EjAQBgNVBAoTCUluZGlhIFBLSTEbMBkGA1UEAxMSQ0NBIEluZGlhIDIwMTUgU1BM
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAl9c2iT03QQ6RP2sgX/w6
fjtaXS/DDIdTPBiiyGFzDQgOVh7SbmClV2Xc/s9Qhg9aTqtiiwTKVu/h0Z6udK2q
+j9BWNFVcHA+RckbgHP8CIjki3KoCrUpV7CtCpFBGpxfUH2sFxolWyHwlSvn3zes
NPMHsPEdwRPvey46xalhkLJ4X1RQPLNaVWO2yxCjb/sN9Lbv5gjeohC/dpd/6tmW
0dTDcwJxtKmwrKwfFyClR0bWRAI4mb7LFHj+5l/Ef91v6apHFJAR2B2AwBXUjKCZ
4xkOCg/MGgic1FMHAOAfSb+CgkzPm9hu09QRABJsD31gZ0qMUNvyL+C5eYeDw1zC
OQIDAQABozMwMTAPBgNVHRMBAf8EBTADAQH/MBEGA1UdDgQKBAhMEXCqj90fBzAL
BgNVHQ8EBAMCAQYwDQYJKoZIhvcNAQELBQADggEBAC28jBXKNO1MKCK74VMlSzqX
qe0moqSrTfsKEm7nNeZnDhiBYjalzMLfGuVoAYFOs5nURxUSnXbpoaYTHbD/fbtX
4+9Zm8g7UGnGYzqsoMHlkOhkKVxIQWk3rDu73eNVxteSDZWDsChXwqOplqfK3kwe
mv8+pS4nXttmZyeF76uKXHN8iM1HZvCdg8yEj+Ip9B9Bb7f1IQ31lFZR4/z/E1i3
nwPuKZ/SAbBinpS9GYZaQ/pqiYGw6lwYh8qAlfvtAb8RGt+VFK4u4q/NkZC6syfD
bxDY2Q60pXRsgbdfGcz+J06zRZhYGJxXxJJyEs+ngjnV4RCXCoYwRYVjqGtNmvw=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10165 (0x27b5)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=IN, O=India PKI, CN=CCA India 2015 SPL
#        Validity
#            Not Before: Jan 29 11:36:43 2015 GMT
#            Not After : Jan 29 11:36:43 2025 GMT
#        Subject: C=IN, O=India PKI, CN=CCA India 2015 SPL
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:97:d7:36:89:3d:37:41:0e:91:3f:6b:20:5f:fc:
#                    3a:7e:3b:5a:5d:2f:c3:0c:87:53:3c:18:a2:c8:61:
#                    73:0d:08:0e:56:1e:d2:6e:60:a5:57:65:dc:fe:cf:
#                    50:86:0f:5a:4e:ab:62:8b:04:ca:56:ef:e1:d1:9e:
#                    ae:74:ad:aa:fa:3f:41:58:d1:55:70:70:3e:45:c9:
#                    1b:80:73:fc:08:88:e4:8b:72:a8:0a:b5:29:57:b0:
#                    ad:0a:91:41:1a:9c:5f:50:7d:ac:17:1a:25:5b:21:
#                    f0:95:2b:e7:df:37:ac:34:f3:07:b0:f1:1d:c1:13:
#                    ef:7b:2e:3a:c5:a9:61:90:b2:78:5f:54:50:3c:b3:
#                    5a:55:63:b6:cb:10:a3:6f:fb:0d:f4:b6:ef:e6:08:
#                    de:a2:10:bf:76:97:7f:ea:d9:96:d1:d4:c3:73:02:
#                    71:b4:a9:b0:ac:ac:1f:17:20:a5:47:46:d6:44:02:
#                    38:99:be:cb:14:78:fe:e6:5f:c4:7f:dd:6f:e9:aa:
#                    47:14:90:11:d8:1d:80:c0:15:d4:8c:a0:99:e3:19:
#                    0e:0a:0f:cc:1a:08:9c:d4:53:07:00:e0:1f:49:bf:
#                    82:82:4c:cf:9b:d8:6e:d3:d4:11:00:12:6c:0f:7d:
#                    60:67:4a:8c:50:db:f2:2f:e0:b9:79:87:83:c3:5c:
#                    c2:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4C:11:70:AA:8F:DD:1F:07
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         2d:bc:8c:15:ca:34:ed:4c:28:22:bb:e1:53:25:4b:3a:97:a9:
#         ed:26:a2:a4:ab:4d:fb:0a:12:6e:e7:35:e6:67:0e:18:81:62:
#         36:a5:cc:c2:df:1a:e5:68:01:81:4e:b3:99:d4:47:15:12:9d:
#         76:e9:a1:a6:13:1d:b0:ff:7d:bb:57:e3:ef:59:9b:c8:3b:50:
#         69:c6:63:3a:ac:a0:c1:e5:90:e8:64:29:5c:48:41:69:37:ac:
#         3b:bb:dd:e3:55:c6:d7:92:0d:95:83:b0:28:57:c2:a3:a9:96:
#         a7:ca:de:4c:1e:9a:ff:3e:a5:2e:27:5e:db:66:67:27:85:ef:
#         ab:8a:5c:73:7c:88:cd:47:66:f0:9d:83:cc:84:8f:e2:29:f4:
#         1f:41:6f:b7:f5:21:0d:f5:94:56:51:e3:fc:ff:13:58:b7:9f:
#         03:ee:29:9f:d2:01:b0:62:9e:94:bd:19:86:5a:43:fa:6a:89:
#         81:b0:ea:5c:18:87:ca:80:95:fb:ed:01:bf:11:1a:df:95:14:
#         ae:2e:e2:af:cd:91:90:ba:b3:27:c3:6f:10:d8:d9:0e:b4:a5:
#         74:6c:81:b7:5f:19:cc:fe:27:4e:b3:45:98:58:18:9c:57:c4:
#         92:72:12:cf:a7:82:39:d5:e1:10:97:0a:86:30:45:85:63:a8:
#         6b:4d:9a:fc

[p11-kit-object-v1]
label: "CFCA EV ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CFCA EV ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFjTCCA3WgAwIBAgIEGErM1jANBgkqhkiG9w0BAQsFADBWMQswCQYDVQQGEwJD
TjEwMC4GA1UECgwnQ2hpbmEgRmluYW5jaWFsIENlcnRpZmljYXRpb24gQXV0aG9y
aXR5MRUwEwYDVQQDDAxDRkNBIEVWIFJPT1QwHhcNMTIwODA4MDMwNzAxWhcNMjkx
MjMxMDMwNzAxWjBWMQswCQYDVQQGEwJDTjEwMC4GA1UECgwnQ2hpbmEgRmluYW5j
aWFsIENlcnRpZmljYXRpb24gQXV0aG9yaXR5MRUwEwYDVQQDDAxDRkNBIEVWIFJP
T1QwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDXXWvNED8fBVnVBU03
sQ7smCuOFR36k0sXgiFxEFLXUWRwFsJVaU2OFW2fvwwbwuCjZ9YMrM8irq93VCpL
TIpTUnrD7i7es3ElweldPe6hL6P3KjzJIx1qqx2hp/Hz7KDVRM8Vz3IvHWOX6Jn5
/ZOkVIBMUtRSqy5J35DNuF++P96hyk0g1CXohClTt7GIH//62pCfCqktQT+x8Rgp
7hZZLDRJGqgG16iI0gNyejLi6mhNbiyWZXvKWfry4t3uMCz7zEasxGPrb382KzRz
EpR/38wmnvFyXVBlWY9ps4deMm/DGIq1lY+wejfeWkU7xzbh72fROdOXW3NiGUgt
hxwG+3SYIElz8AXSG7Ggo7cbcNOIabla1jj0Ytwli3i/+Oh+uFzJlU9fpy25IGvP
a931DfSCt/SyZi4QKPaXWnuWFo8BGS1sbn85WAZkgwGDg8NNkt0yxoekN+kWzqot
aK8KgWU6cMGbrU1tVMoqLUuFG7OA5nBFDWteNfB/O7ic5ARwiRIlk9oKmSJgamNg
TnYGmE69g60dWIolhdLHZR4tjsbftsbhf4oEIRUpdPA+nJCdDC7xij5aqgwJHsfV
PKPtl8MeNPo4+QgO48BdK4PRVmrJtqhUUy54Mmc9gn900PvhtgVguXDbjgv5E1hv
cWAQUhC5wUEJ73IfZzF4/5YFjQIDAQABo2MwYTAfBgNVHSMEGDAWgBTj/i39KNAL
tbq2osS/BqoFjJP7LzAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAd
BgNVHQ4EFgQU4/4t/SjQC7W6tqLEvwaqBYyT+y8wDQYJKoZIhvcNAQELBQADggIB
ACXGumvrh8vegjmWPfBEp2uEcwPenStPuiB/vHiyz5ewG5zz13ku9Ui20vsXiObT
ej/tUxPQ4i9qecsAIyjmHjdXNYmEwnZPNDatZ8POQQaIxffu2Bq41gt/UP+TqhdL
jOztUmCypAbqTuv0axn96/Ua4CUqmtzHQTb3yHQFhDmVOdYLO6Qn+gjYXB74BGBS
ESgoA//vU2YApUo0FmZ8/Qmkrp5nGm9BC2sGE5uPhnEFtC+NiWYzKXZUmhH4J/qy
P5Hgzg0b8zAarb8iXRvTvyUFTeGSGn+ZnzxEk8rUQElsgIfXBDrDMlI1Dlb4pd19
xIsNER9Tyx6yF7Zod1rg1MvIB671Oi6ON7fQAUtDKXeMOZePglr4UeWJoBjnaH9d
Ci77o0cOPaYjesYBx4/IXr9tgFa+iiS6M+qf4TIRnvHST4D2G0CvOJ4RUHlzEhLN
5mydLIhyPDCBBpEi6lmt2hkuIsKNuYyH4Ga8cyNfIWRjgEj1oDwYPZTISEEdQLpe
/v5WOaHIz16eGWRGENoXkbcFgKyLmZJ956LYBws2J+dIeWCKw9cTXPhyQN9Ky8+Z
AAoACxGV2lZFA4gKn2fQ1XmxqI1AbQ3CekD6819kR5LLU7m7Wc5P/dAVUwHY3+vZ
5nbv0CO7O6l5s9UCKc2Jo5YPSjXnTkLAdc0Hz+Ys63su
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 407555286 (0x184accd6)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=China Financial Certification Authority, CN=CFCA EV ROOT
#        Validity
#            Not Before: Aug  8 03:07:01 2012 GMT
#            Not After : Dec 31 03:07:01 2029 GMT
#        Subject: C=CN, O=China Financial Certification Authority, CN=CFCA EV ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d7:5d:6b:cd:10:3f:1f:05:59:d5:05:4d:37:b1:
#                    0e:ec:98:2b:8e:15:1d:fa:93:4b:17:82:21:71:10:
#                    52:d7:51:64:70:16:c2:55:69:4d:8e:15:6d:9f:bf:
#                    0c:1b:c2:e0:a3:67:d6:0c:ac:cf:22:ae:af:77:54:
#                    2a:4b:4c:8a:53:52:7a:c3:ee:2e:de:b3:71:25:c1:
#                    e9:5d:3d:ee:a1:2f:a3:f7:2a:3c:c9:23:1d:6a:ab:
#                    1d:a1:a7:f1:f3:ec:a0:d5:44:cf:15:cf:72:2f:1d:
#                    63:97:e8:99:f9:fd:93:a4:54:80:4c:52:d4:52:ab:
#                    2e:49:df:90:cd:b8:5f:be:3f:de:a1:ca:4d:20:d4:
#                    25:e8:84:29:53:b7:b1:88:1f:ff:fa:da:90:9f:0a:
#                    a9:2d:41:3f:b1:f1:18:29:ee:16:59:2c:34:49:1a:
#                    a8:06:d7:a8:88:d2:03:72:7a:32:e2:ea:68:4d:6e:
#                    2c:96:65:7b:ca:59:fa:f2:e2:dd:ee:30:2c:fb:cc:
#                    46:ac:c4:63:eb:6f:7f:36:2b:34:73:12:94:7f:df:
#                    cc:26:9e:f1:72:5d:50:65:59:8f:69:b3:87:5e:32:
#                    6f:c3:18:8a:b5:95:8f:b0:7a:37:de:5a:45:3b:c7:
#                    36:e1:ef:67:d1:39:d3:97:5b:73:62:19:48:2d:87:
#                    1c:06:fb:74:98:20:49:73:f0:05:d2:1b:b1:a0:a3:
#                    b7:1b:70:d3:88:69:b9:5a:d6:38:f4:62:dc:25:8b:
#                    78:bf:f8:e8:7e:b8:5c:c9:95:4f:5f:a7:2d:b9:20:
#                    6b:cf:6b:dd:f5:0d:f4:82:b7:f4:b2:66:2e:10:28:
#                    f6:97:5a:7b:96:16:8f:01:19:2d:6c:6e:7f:39:58:
#                    06:64:83:01:83:83:c3:4d:92:dd:32:c6:87:a4:37:
#                    e9:16:ce:aa:2d:68:af:0a:81:65:3a:70:c1:9b:ad:
#                    4d:6d:54:ca:2a:2d:4b:85:1b:b3:80:e6:70:45:0d:
#                    6b:5e:35:f0:7f:3b:b8:9c:e4:04:70:89:12:25:93:
#                    da:0a:99:22:60:6a:63:60:4e:76:06:98:4e:bd:83:
#                    ad:1d:58:8a:25:85:d2:c7:65:1e:2d:8e:c6:df:b6:
#                    c6:e1:7f:8a:04:21:15:29:74:f0:3e:9c:90:9d:0c:
#                    2e:f1:8a:3e:5a:aa:0c:09:1e:c7:d5:3c:a3:ed:97:
#                    c3:1e:34:fa:38:f9:08:0e:e3:c0:5d:2b:83:d1:56:
#                    6a:c9:b6:a8:54:53:2e:78:32:67:3d:82:7f:74:d0:
#                    fb:e1:b6:05:60:b9:70:db:8e:0b:f9:13:58:6f:71:
#                    60:10:52:10:b9:c1:41:09:ef:72:1f:67:31:78:ff:
#                    96:05:8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:E3:FE:2D:FD:28:D0:0B:B5:BA:B6:A2:C4:BF:06:AA:05:8C:93:FB:2F
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E3:FE:2D:FD:28:D0:0B:B5:BA:B6:A2:C4:BF:06:AA:05:8C:93:FB:2F
#    Signature Algorithm: sha256WithRSAEncryption
#         25:c6:ba:6b:eb:87:cb:de:82:39:96:3d:f0:44:a7:6b:84:73:
#         03:de:9d:2b:4f:ba:20:7f:bc:78:b2:cf:97:b0:1b:9c:f3:d7:
#         79:2e:f5:48:b6:d2:fb:17:88:e6:d3:7a:3f:ed:53:13:d0:e2:
#         2f:6a:79:cb:00:23:28:e6:1e:37:57:35:89:84:c2:76:4f:34:
#         36:ad:67:c3:ce:41:06:88:c5:f7:ee:d8:1a:b8:d6:0b:7f:50:
#         ff:93:aa:17:4b:8c:ec:ed:52:60:b2:a4:06:ea:4e:eb:f4:6b:
#         19:fd:eb:f5:1a:e0:25:2a:9a:dc:c7:41:36:f7:c8:74:05:84:
#         39:95:39:d6:0b:3b:a4:27:fa:08:d8:5c:1e:f8:04:60:52:11:
#         28:28:03:ff:ef:53:66:00:a5:4a:34:16:66:7c:fd:09:a4:ae:
#         9e:67:1a:6f:41:0b:6b:06:13:9b:8f:86:71:05:b4:2f:8d:89:
#         66:33:29:76:54:9a:11:f8:27:fa:b2:3f:91:e0:ce:0d:1b:f3:
#         30:1a:ad:bf:22:5d:1b:d3:bf:25:05:4d:e1:92:1a:7f:99:9f:
#         3c:44:93:ca:d4:40:49:6c:80:87:d7:04:3a:c3:32:52:35:0e:
#         56:f8:a5:dd:7d:c4:8b:0d:11:1f:53:cb:1e:b2:17:b6:68:77:
#         5a:e0:d4:cb:c8:07:ae:f5:3a:2e:8e:37:b7:d0:01:4b:43:29:
#         77:8c:39:97:8f:82:5a:f8:51:e5:89:a0:18:e7:68:7f:5d:0a:
#         2e:fb:a3:47:0e:3d:a6:23:7a:c6:01:c7:8f:c8:5e:bf:6d:80:
#         56:be:8a:24:ba:33:ea:9f:e1:32:11:9e:f1:d2:4f:80:f6:1b:
#         40:af:38:9e:11:50:79:73:12:12:cd:e6:6c:9d:2c:88:72:3c:
#         30:81:06:91:22:ea:59:ad:da:19:2e:22:c2:8d:b9:8c:87:e0:
#         66:bc:73:23:5f:21:64:63:80:48:f5:a0:3c:18:3d:94:c8:48:
#         41:1d:40:ba:5e:fe:fe:56:39:a1:c8:cf:5e:9e:19:64:46:10:
#         da:17:91:b7:05:80:ac:8b:99:92:7d:e7:a2:d8:07:0b:36:27:
#         e7:48:79:60:8a:c3:d7:13:5c:f8:72:40:df:4a:cb:cf:99:00:
#         0a:00:0b:11:95:da:56:45:03:88:0a:9f:67:d0:d5:79:b1:a8:
#         8d:40:6d:0d:c2:7a:40:fa:f3:5f:64:47:92:cb:53:b9:bb:59:
#         ce:4f:fd:d0:15:53:01:d8:df:eb:d9:e6:76:ef:d0:23:bb:3b:
#         a9:79:b3:d5:02:29:cd:89:a3:96:0f:4a:35:e7:4e:42:c0:75:
#         cd:07:cf:e6:2c:eb:7b:2e

[p11-kit-object-v1]
label: "CFCA GT CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv3PGWiuMePZYt/zSF5Cl
K3TsgSyTzVLMbuQqyyShMeStMG7jmCIx1yGbn9UPNy9auziit3kmZ9YNxRcqnLlU
BOENdYZu2MzFgGcbyIwtACaGPHp5Prapwk4gsDeXxoV2EoIK51S7i/49ruPsa1hD
9qU361iivZDE5fvKa8owbLd7ifYx0oz/T8KWJUOpcTUlCxjhrMijJLZxk4zxXfyc
EAV7/8Bb4LGXrR/Y/kX1wB+dW0c5HAb622aF2yQj6nvSOSD46yqyGlHzlFooAk6n
XEduz/zZ6OZhWhYnxxUNmNno0wM1kCnfsi+NEHcjyLh60xFhavP/gZKl7EJLaE6A
1wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CFCA GT CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 429472831 (0x19993c3f)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CN, O=CFCA GT CA
#        Validity
#            Not Before: Jun 13 08:15:09 2011 GMT
#            Not After : Jun  9 08:15:09 2026 GMT
#        Subject: C=CN, O=CFCA GT CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:73:c6:5a:2b:8c:78:f6:58:b7:fc:d2:17:90:
#                    a5:2b:74:ec:81:2c:93:cd:52:cc:6e:e4:2a:cb:24:
#                    a1:31:e4:ad:30:6e:e3:98:22:31:d7:21:9b:9f:d5:
#                    0f:37:2f:5a:bb:38:a2:b7:79:26:67:d6:0d:c5:17:
#                    2a:9c:b9:54:04:e1:0d:75:86:6e:d8:cc:c5:80:67:
#                    1b:c8:8c:2d:00:26:86:3c:7a:79:3e:b6:a9:c2:4e:
#                    20:b0:37:97:c6:85:76:12:82:0a:e7:54:bb:8b:fe:
#                    3d:ae:e3:ec:6b:58:43:f6:a5:37:eb:58:a2:bd:90:
#                    c4:e5:fb:ca:6b:ca:30:6c:b7:7b:89:f6:31:d2:8c:
#                    ff:4f:c2:96:25:43:a9:71:35:25:0b:18:e1:ac:c8:
#                    a3:24:b6:71:93:8c:f1:5d:fc:9c:10:05:7b:ff:c0:
#                    5b:e0:b1:97:ad:1f:d8:fe:45:f5:c0:1f:9d:5b:47:
#                    39:1c:06:fa:db:66:85:db:24:23:ea:7b:d2:39:20:
#                    f8:eb:2a:b2:1a:51:f3:94:5a:28:02:4e:a7:5c:47:
#                    6e:cf:fc:d9:e8:e6:61:5a:16:27:c7:15:0d:98:d9:
#                    e8:d3:03:35:90:29:df:b2:2f:8d:10:77:23:c8:b8:
#                    7a:d3:11:61:6a:f3:ff:81:92:a5:ec:42:4b:68:4e:
#                    80:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:8C:76:50:CE:25:D3:79:2B:3C:F4:6D:9D:9A:E1:9E:05:4F:E8:3D:25
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                8C:76:50:CE:25:D3:79:2B:3C:F4:6D:9D:9A:E1:9E:05:4F:E8:3D:25
#    Signature Algorithm: sha1WithRSAEncryption
#         be:bb:96:58:d4:dd:89:89:0f:2c:cd:fa:63:45:76:0d:39:80:
#         9a:8d:fa:a8:45:61:3d:21:55:e8:ce:68:c7:19:e9:c2:b1:07:
#         c2:8b:3b:2f:cf:61:85:90:a7:52:17:32:3a:af:0a:05:15:c8:
#         c6:ce:dd:8e:94:26:06:f8:d0:60:ee:b3:6e:d4:0d:ba:5a:dd:
#         ab:a0:7c:50:72:a6:d5:90:93:56:d7:59:39:db:e8:7f:b3:95:
#         78:53:81:52:52:5f:f4:92:81:02:c1:fb:22:b9:d1:03:57:a7:
#         7e:cb:fb:c0:46:bc:13:74:4c:28:2b:76:92:69:1f:c1:50:91:
#         11:c5:4c:de:0b:94:8c:17:83:8c:af:37:87:b4:ea:6b:6f:a2:
#         5a:35:41:61:85:2f:9c:17:c0:fb:b9:0e:a2:61:06:47:76:bc:
#         90:09:98:74:0d:d2:08:2f:bd:e4:0d:72:f1:a6:5f:c3:7c:c0:
#         7d:ea:bc:d3:ab:20:91:cb:5c:05:8c:9d:a8:35:fa:36:56:bb:
#         09:f3:84:5d:d6:f1:e2:2c:9e:d9:7e:f1:82:a0:e1:b7:2f:7e:
#         ed:f9:7b:a0:00:b8:b2:de:1d:79:e1:81:f3:52:59:9a:14:5d:
#         e7:c2:11:f3:9a:c3:3a:78:23:be:4e:66:de:a4:39:69:f2:98:
#         3a:2c:0a:00

[p11-kit-object-v1]
label: "CHAMBERS OF COMMERCE ROOT - 2016"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CHAMBERS OF COMMERCE ROOT - 2016"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            34:9a:2d:a1:82:06:b2:b3
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES, ST=MADRID, L=MADRID, OU=see current address at www.camerfirma.com/address, OU=CHAMBERS OF COMMERCE ROOT - 2016/serialNumber=A82743287/2.5.4.97=VATES-A82743287, O=AC CAMERFIRMA S.A., CN=CHAMBERS OF COMMERCE ROOT - 2016
#        Validity
#            Not Before: Apr 14 07:35:48 2016 GMT
#            Not After : Apr  8 07:35:48 2040 GMT
#        Subject: C=ES, ST=MADRID, L=MADRID, OU=see current address at www.camerfirma.com/address, OU=CHAMBERS OF COMMERCE ROOT - 2016/serialNumber=A82743287/2.5.4.97=VATES-A82743287, O=AC CAMERFIRMA S.A., CN=CHAMBERS OF COMMERCE ROOT - 2016
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ea:c6:a4:a1:d4:ad:99:96:c9:9f:f5:bc:50:00:
#                    f4:2c:cf:f2:78:e8:f2:2c:02:27:d6:83:8c:04:ab:
#                    d3:0e:7b:57:20:c9:d4:af:65:f4:87:dd:30:08:d7:
#                    ce:41:a3:76:0a:db:8a:46:e4:a6:fd:ed:08:ce:70:
#                    3f:fa:10:60:79:4c:6b:81:54:80:55:e4:e7:7a:21:
#                    b6:75:9a:dc:5e:f6:0e:99:fc:f8:c2:df:41:8e:2f:
#                    ab:c7:5b:6d:1c:50:59:c0:ed:e8:ac:82:42:fe:b9:
#                    af:2f:0c:41:51:9c:bd:00:6e:64:51:b2:3b:e5:36:
#                    ab:95:91:12:fb:31:c7:73:ac:1c:d8:65:76:3b:ce:
#                    1b:4c:4e:b0:1f:20:06:fb:50:b4:fb:9b:a1:79:8e:
#                    16:95:e3:9f:eb:18:4b:84:ab:39:93:cd:37:83:d0:
#                    e9:7c:0b:27:8f:ed:42:08:e9:86:46:32:ac:9a:26:
#                    69:70:61:2d:18:bd:3f:50:f0:9e:f6:68:50:4e:69:
#                    95:70:c1:ed:93:a9:97:4e:29:a2:ba:dd:c2:9f:6e:
#                    49:08:2b:a3:fa:23:f1:29:5e:b0:7d:31:59:9b:ed:
#                    8c:cd:a6:6e:f8:f8:f7:d8:18:e8:da:56:e9:48:f2:
#                    40:74:7e:9e:cd:20:af:14:24:59:ee:77:35:85:bf:
#                    4a:99:4a:a9:75:dd:b3:26:e3:06:ce:7d:6f:4b:64:
#                    a3:76:34:19:3e:14:6f:85:54:38:e2:8b:2d:40:b5:
#                    64:66:1f:57:33:1c:70:cd:c3:b4:28:5a:14:23:5c:
#                    fc:b8:bd:b3:fe:3b:12:5f:f6:b9:8c:1d:c8:94:0a:
#                    56:db:72:7e:ef:27:07:0d:00:b4:bf:7d:99:3f:4d:
#                    45:b3:9b:f7:1d:19:d0:4f:04:fa:c7:73:94:88:7d:
#                    8b:14:2a:99:e0:e9:99:92:09:c6:d6:01:6b:b7:f0:
#                    db:43:57:62:1b:c7:44:52:e2:97:63:ba:cf:ea:ce:
#                    60:e6:0a:e5:18:68:2d:33:80:75:a0:30:07:68:f6:
#                    d5:f7:13:2c:3a:b0:9e:e8:58:55:6e:8c:56:44:4d:
#                    43:17:41:02:cc:77:dc:5f:45:05:59:cf:cd:60:d3:
#                    bf:d2:f6:e2:f4:d5:dc:87:71:33:07:1a:f5:6f:b4:
#                    7f:3d:97:fb:5f:64:f4:4e:0e:00:44:09:e9:eb:ec:
#                    3e:71:19:04:17:39:48:60:b8:4b:ff:5e:c8:65:99:
#                    2b:a6:32:f2:5b:86:a8:9d:e8:23:74:10:78:ef:cb:
#                    27:9d:31:ba:60:8b:4e:06:50:e2:50:1d:07:60:c2:
#                    41:8c:15:b4:5b:37:1c:0a:e5:09:19:72:04:8a:3c:
#                    e3:01:db
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                9E:2E:65:4F:3E:57:F5:AB:7D:96:C6:8B:DF:B3:35:6D:4A:E8:9E:8B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         05:69:2a:85:97:26:50:ba:42:39:1c:93:2c:d2:4f:5b:d1:5d:
#         44:26:da:6f:69:2b:b5:7b:9e:d0:f4:4a:2e:48:c7:ec:7f:9f:
#         ca:59:7a:b9:44:f7:3e:bd:f7:50:6b:51:9f:74:ff:90:1a:40:
#         d0:93:79:92:0f:8a:23:5e:8b:af:81:0b:d0:8b:ad:66:e0:2a:
#         dc:9a:29:bd:35:d8:6c:40:14:49:42:3d:89:2f:ba:9b:2b:38:
#         bc:1a:a3:0b:b7:88:d7:ad:c6:14:0c:ee:7c:49:ac:ae:ec:f2:
#         3d:18:4f:8c:6d:14:5d:0e:aa:b7:df:77:ab:3b:8f:62:4e:8b:
#         0c:65:c6:19:8e:cd:c0:0c:a1:77:aa:b4:dd:7a:a7:13:05:e6:
#         39:18:c7:95:64:7e:03:b6:8b:90:c1:e5:5f:00:23:98:e6:73:
#         da:11:d2:10:ff:1e:53:22:27:c7:d3:01:c9:2f:c5:3b:32:6e:
#         f0:c3:38:ca:12:67:bc:ba:23:29:bb:c4:95:49:5a:06:dd:d4:
#         5a:90:d4:13:6d:e7:d5:c2:7c:e2:58:04:c0:ec:c4:bd:a2:3c:
#         7e:c6:23:81:75:7c:ab:70:5f:34:84:95:f7:b3:d5:47:96:4f:
#         71:ca:78:32:08:20:b4:42:a4:42:6b:d5:25:9c:b2:27:eb:c1:
#         0e:47:44:09:e1:2b:0f:d0:23:36:6e:1c:b9:ba:4e:ac:cc:f0:
#         0c:94:ce:41:0f:6b:dd:0f:d5:c8:e0:17:8b:de:3a:5d:52:be:
#         e9:75:25:1d:ba:05:07:da:56:19:3c:8d:d1:d7:f1:51:36:d9:
#         92:ef:a2:78:51:05:58:bd:52:cc:0a:5e:6f:af:da:d0:e5:0c:
#         db:6c:c1:23:ef:39:31:77:17:07:00:8c:f6:ba:0f:70:f9:bc:
#         be:e1:e4:7d:e1:cc:44:7a:a4:21:ec:47:3f:a8:d6:15:a5:ec:
#         01:a9:c8:70:e8:98:67:1d:bd:59:54:7e:a1:57:15:35:07:c5:
#         72:c9:3e:b7:29:86:8d:9f:da:32:79:32:dc:db:a8:e5:09:ff:
#         ef:56:2a:fe:93:b1:8e:2a:13:ed:ad:a2:2b:6b:2f:04:de:cd:
#         2f:92:92:d6:3e:60:b5:78:01:95:07:08:a9:6c:e3:1c:da:fb:
#         e5:9b:23:56:20:5b:e9:d0:5c:c6:4a:24:3b:bc:e3:b6:22:16:
#         2a:84:92:ff:a8:fe:97:bf:a3:9d:db:61:5e:ee:19:2a:2c:d7:
#         eb:0d:76:56:38:75:7e:49:00:93:57:c9:fc:23:5a:fc:f4:f1:
#         df:2a:9d:b0:8c:69:f4:10:a3:55:9d:70:3c:22:ff:07:d6:2b:
#         b6:99:c0:97:d0:f4:2a:a0

[p11-kit-object-v1]
label: "CISRCA1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CISRCA1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0b:82:dc:94:33:76
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CA, O=Carillon Information Security Inc., OU=Certification Authorities, CN=CISRCA1
#        Validity
#            Not Before: Oct 16 18:28:33 2012 GMT
#            Not After : Oct 16 18:28:33 2032 GMT
#        Subject: C=CA, O=Carillon Information Security Inc., OU=Certification Authorities, CN=CISRCA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:76:f1:62:6a:5f:cd:29:cd:04:36:7f:6e:61:
#                    7e:73:f4:9d:66:df:22:5a:9a:83:44:81:66:fd:4e:
#                    11:b0:3e:ac:e8:88:b2:53:39:ff:e3:ba:be:d4:ff:
#                    d3:85:d8:bd:5b:af:68:4f:33:ac:b8:14:7d:12:5b:
#                    7a:95:6b:c7:36:fe:2b:8f:f4:88:60:89:3a:aa:59:
#                    38:4c:c1:5d:55:81:a5:df:d8:1f:31:7a:d3:a3:4e:
#                    f0:51:cb:c3:31:87:ae:0b:de:ca:5e:1b:a1:74:38:
#                    f0:92:77:71:3c:cb:13:7e:a0:c1:0a:98:bd:d8:b8:
#                    f8:54:34:98:4e:67:16:9a:57:4b:26:86:5f:1b:66:
#                    72:aa:c1:f2:68:82:9d:58:41:7c:71:22:e2:cf:01:
#                    31:fe:e2:e0:56:a9:68:e0:ad:33:af:35:39:2e:9c:
#                    6e:06:4c:f3:23:76:2f:69:26:e8:05:39:69:b7:f5:
#                    48:1a:f7:df:d9:39:37:32:55:11:27:04:81:1f:9d:
#                    3c:8b:8c:83:52:77:c1:ae:2c:cd:2b:2a:4a:e5:2d:
#                    f1:19:69:ba:87:5e:8b:9d:e0:71:c8:74:d2:cd:ee:
#                    6e:38:37:6a:5d:19:00:d2:76:dd:a2:eb:6e:3b:aa:
#                    1d:f5:36:06:4f:5f:5e:6c:c2:10:f3:dd:6f:b5:da:
#                    79:5a:fe:d5:46:44:34:48:af:86:00:34:7c:24:84:
#                    dd:45:90:f9:16:82:ac:a8:91:d4:e9:46:33:6f:7e:
#                    ba:47:1f:e1:ef:af:e5:50:d6:c6:f9:a7:ed:6c:97:
#                    aa:2b:29:4e:5d:c5:f8:1e:f6:74:c9:ab:24:f8:0d:
#                    53:c7:68:15:be:fc:5c:ab:3d:72:0b:d2:70:04:b7:
#                    16:e3:69:a9:f1:67:ba:c6:00:4c:7b:80:34:35:2e:
#                    5e:ed:1f:a0:25:f7:a5:82:6a:10:7f:bf:8f:59:6f:
#                    c3:46:a6:ca:42:4e:42:23:85:06:39:35:8c:b5:f1:
#                    d7:c1:23:42:45:fd:2f:25:71:f8:f3:07:d3:07:68:
#                    be:db:98:6c:2a:f6:a5:47:f7:b0:65:60:ad:ae:7c:
#                    e6:11:1d:27:54:08:65:b0:d8:82:c0:61:6b:e9:7e:
#                    8f:22:d6:71:1d:6b:41:20:65:d8:57:9a:1f:7c:0e:
#                    5a:54:e0:94:b0:6d:75:ef:28:32:35:3c:55:c3:6d:
#                    67:f8:24:bd:fb:40:f3:5a:9d:36:d9:35:4c:bb:e2:
#                    6b:d9:b1:36:0f:e4:6f:20:1a:c5:6f:7a:c3:91:39:
#                    af:af:cc:f3:f6:bd:20:86:ba:d3:24:21:3c:1f:37:
#                    29:e6:9f:fc:1a:bf:98:df:3c:ba:20:21:12:a9:c2:
#                    3a:2a:93
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                EA:95:15:DA:5C:39:00:E2:9A:DB:C4:BA:2D:67:FA:A1:F7:75:34:ED
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         35:d0:d8:b8:9e:f2:09:f8:f0:9f:b2:6e:48:b2:d7:ea:a1:9b:
#         28:89:39:cd:fe:16:6a:1d:e9:9c:82:5f:51:47:3a:f5:9e:d1:
#         bc:ae:1f:9f:e2:5c:4a:c8:ec:ed:46:42:f1:7c:43:07:15:df:
#         6e:97:f6:ed:86:fc:9f:c5:08:5e:82:0e:a3:2e:a8:0a:2e:bc:
#         8e:1b:31:12:28:f6:79:28:c1:22:b6:d1:95:69:40:e8:59:09:
#         27:a2:91:64:76:ea:d0:13:8d:70:fc:65:c3:6f:11:9f:2a:48:
#         ca:a7:62:f5:83:14:e5:1a:16:c7:91:8b:b4:09:c5:ce:7b:e3:
#         e4:1d:6d:97:a2:e9:cb:26:1e:6b:b4:dc:3e:83:76:2f:5e:4d:
#         a8:68:89:54:fd:4e:d2:46:a8:40:f6:d8:ca:78:cf:36:1a:3d:
#         59:65:8c:9b:f5:2b:1f:4c:82:df:78:78:4d:26:4a:47:69:ad:
#         6f:33:1f:03:1e:22:4e:d9:06:59:9e:46:fc:50:35:5f:c6:85:
#         1b:e4:1b:f8:00:c9:e0:d3:3a:ab:26:43:cd:47:fa:5a:f8:85:
#         0b:c7:32:da:b5:0d:2d:30:29:3a:79:b3:14:e9:a5:0f:70:25:
#         d1:8d:09:50:94:ed:4d:92:9e:30:37:40:db:5a:78:49:8f:0f:
#         39:2f:bd:2e:d7:ab:08:94:c9:29:8a:f7:dd:8c:bd:82:7c:30:
#         5b:62:e8:35:46:56:38:5d:91:f6:0e:6f:8c:ee:95:9f:fd:74:
#         9d:ed:ed:10:ab:ce:8b:8f:b7:ad:7f:4d:69:49:f0:c7:11:55:
#         9b:9a:82:f7:a2:fa:33:f2:44:11:fa:15:4b:46:a9:9b:6b:97:
#         42:d6:b4:b7:09:11:14:79:53:a6:e7:7f:2d:27:3a:0a:34:24:
#         44:ce:55:8c:7a:80:75:73:02:4b:e2:fa:46:94:7d:33:14:0d:
#         42:56:b9:a0:e6:2f:85:48:91:9f:44:ba:a1:28:a9:b1:1f:89:
#         7a:26:0a:53:5c:85:b9:7c:84:98:8c:28:60:a5:b6:7a:8d:3d:
#         a0:00:3d:dc:7f:aa:48:e9:a8:2e:ac:5f:de:87:2d:5c:a4:6b:
#         16:ea:bd:e8:95:b5:ce:78:09:f8:71:36:e5:90:68:d2:07:96:
#         ba:bc:00:8b:0e:98:6d:4d:70:53:c0:c3:cc:1b:13:9c:48:9a:
#         99:3d:12:c0:27:8e:61:92:4c:68:52:6f:8d:03:1c:89:f5:d3:
#         86:c0:ff:71:49:4f:20:6b:fd:d1:6f:91:24:f5:f1:47:23:4d:
#         59:df:d0:bd:49:42:fd:40:38:3e:e2:f1:05:5c:25:e8:10:e4:
#         5a:02:03:e3:bb:7c:25:2a

[p11-kit-object-v1]
label: "CNNIC ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0zX3P3N3rehbcxfC0W/t
Vbxu6uikebJsw6Pv4Z+xO0iF9ZpcISIQLMWCztrjmm434Ycs3LkMWrqIVd/9qtsf
MeoB8d85AcET/UhSIcRV39rYs1R2unSxt33XwOj2WcVNyL2tHxTa31hEJTIZKsd+
fo6uOLAwe0dyCTHwMNvDG3Ypu2l2Tlf5G2Sik1a3b5lu2woEnBHjgB/LY5QQCqnh
ZIIx+Ywn7aaZAPZwkxj4oTSGo916whh59nplNc+Q670zk59Tq3M75ps0IC8d76kd
YxqggNsDL/kmGobSjbupvlI6h2dIDb+0oNgmviNfczd/JuaSBKN/zyCnt/M6ysuZ
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CNNIC ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1228079105 (0x49330001)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CN, O=CNNIC, CN=CNNIC ROOT
#        Validity
#            Not Before: Apr 16 07:09:14 2007 GMT
#            Not After : Apr 16 07:09:14 2027 GMT
#        Subject: C=CN, O=CNNIC, CN=CNNIC ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d3:35:f7:3f:73:77:ad:e8:5b:73:17:c2:d1:6f:
#                    ed:55:bc:6e:ea:e8:a4:79:b2:6c:c3:a3:ef:e1:9f:
#                    b1:3b:48:85:f5:9a:5c:21:22:10:2c:c5:82:ce:da:
#                    e3:9a:6e:37:e1:87:2c:dc:b9:0c:5a:ba:88:55:df:
#                    fd:aa:db:1f:31:ea:01:f1:df:39:01:c1:13:fd:48:
#                    52:21:c4:55:df:da:d8:b3:54:76:ba:74:b1:b7:7d:
#                    d7:c0:e8:f6:59:c5:4d:c8:bd:ad:1f:14:da:df:58:
#                    44:25:32:19:2a:c7:7e:7e:8e:ae:38:b0:30:7b:47:
#                    72:09:31:f0:30:db:c3:1b:76:29:bb:69:76:4e:57:
#                    f9:1b:64:a2:93:56:b7:6f:99:6e:db:0a:04:9c:11:
#                    e3:80:1f:cb:63:94:10:0a:a9:e1:64:82:31:f9:8c:
#                    27:ed:a6:99:00:f6:70:93:18:f8:a1:34:86:a3:dd:
#                    7a:c2:18:79:f6:7a:65:35:cf:90:eb:bd:33:93:9f:
#                    53:ab:73:3b:e6:9b:34:20:2f:1d:ef:a9:1d:63:1a:
#                    a0:80:db:03:2f:f9:26:1a:86:d2:8d:bb:a9:be:52:
#                    3a:87:67:48:0d:bf:b4:a0:d8:26:be:23:5f:73:37:
#                    7f:26:e6:92:04:a3:7f:cf:20:a7:b7:f3:3a:ca:cb:
#                    99:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Authority Key Identifier: 
#                keyid:65:F2:31:AD:2A:F7:F7:DD:52:96:0A:C7:02:C1:0E:EF:A6:D5:3B:11
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Key Encipherment, Data Encipherment, Key Agreement, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                65:F2:31:AD:2A:F7:F7:DD:52:96:0A:C7:02:C1:0E:EF:A6:D5:3B:11
#    Signature Algorithm: sha1WithRSAEncryption
#         4b:35:ee:cc:e4:ae:bf:c3:6e:ad:9f:95:3b:4b:3f:5b:1e:df:
#         57:29:a2:59:ca:38:e2:b9:1a:ff:9e:e6:6e:32:dd:1e:ae:ea:
#         35:b7:f5:93:91:4e:da:42:e1:c3:17:60:50:f2:d1:5c:26:b9:
#         82:b7:ea:6d:e4:9c:84:e7:03:79:17:af:98:3d:94:db:c7:ba:
#         00:e7:b8:bf:01:57:c1:77:45:32:0c:3b:f1:b4:1c:08:b0:fd:
#         51:a0:a1:dd:9a:1d:13:36:9a:6d:b7:c7:3c:b9:e1:c5:d9:17:
#         fa:83:d5:3d:15:a0:3c:bb:1e:0b:e2:c8:90:3f:a8:86:0c:fc:
#         f9:8b:5e:85:cb:4f:5b:4b:62:11:47:c5:45:7c:05:2f:41:b1:
#         9e:10:69:1b:99:96:e0:55:79:fb:4e:86:99:b8:94:da:86:38:
#         6a:93:a3:e7:cb:6e:e5:df:ea:21:55:89:9c:7d:7d:7f:98:f5:
#         00:89:ee:e3:84:c0:5c:96:b5:c5:46:ea:46:e0:85:55:b6:1b:
#         c9:12:d6:c1:cd:cd:80:f3:02:01:3c:c8:69:cb:45:48:63:d8:
#         94:d0:ec:85:0e:3b:4e:11:65:f4:82:8c:a6:3d:ae:2e:22:94:
#         09:c8:5c:ea:3c:81:5d:16:2a:03:97:16:55:09:db:8a:41:82:
#         9e:66:9b:11

[p11-kit-object-v1]
label: "COMODO Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0ECLi3LjkRv3UcEbVASY
06m/weaKXTuH+7uIzg3jLz8GlvCiKVCZrts7oVewdFFxze1CkU1B/qnI2GqGd0S7
WWaXUF601CxwRM/aN5VCaTwwxHGzUvAhTaHYujl8HJ6jJJ3ygxaYqhZ8Q5sVW7eu
NJH+1GImGEaaP+vB+fGQV+useg2L23IwambV4EajcNxo2f8ESIl33rXp+2dtQem8
Ob0y2WIC8bGoPW43nOIv4tOiJovGuFVDiOEjPqXSJDlqR6sA1KGzqSX+DT+nHbrT
UcELpNqsOO9VUCQFZUaTNE8tja3G1CEZ0o7KBWFxB3NH5YoZEr0ETc5OnKVIrLsm
9wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "COMODO Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4e:81:2d:8a:82:65:e0:0b:02:ee:3e:35:02:46:e5:3d
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO Certification Authority
#        Validity
#            Not Before: Dec  1 00:00:00 2006 GMT
#            Not After : Dec 31 23:59:59 2029 GMT
#        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d0:40:8b:8b:72:e3:91:1b:f7:51:c1:1b:54:04:
#                    98:d3:a9:bf:c1:e6:8a:5d:3b:87:fb:bb:88:ce:0d:
#                    e3:2f:3f:06:96:f0:a2:29:50:99:ae:db:3b:a1:57:
#                    b0:74:51:71:cd:ed:42:91:4d:41:fe:a9:c8:d8:6a:
#                    86:77:44:bb:59:66:97:50:5e:b4:d4:2c:70:44:cf:
#                    da:37:95:42:69:3c:30:c4:71:b3:52:f0:21:4d:a1:
#                    d8:ba:39:7c:1c:9e:a3:24:9d:f2:83:16:98:aa:16:
#                    7c:43:9b:15:5b:b7:ae:34:91:fe:d4:62:26:18:46:
#                    9a:3f:eb:c1:f9:f1:90:57:eb:ac:7a:0d:8b:db:72:
#                    30:6a:66:d5:e0:46:a3:70:dc:68:d9:ff:04:48:89:
#                    77:de:b5:e9:fb:67:6d:41:e9:bc:39:bd:32:d9:62:
#                    02:f1:b1:a8:3d:6e:37:9c:e2:2f:e2:d3:a2:26:8b:
#                    c6:b8:55:43:88:e1:23:3e:a5:d2:24:39:6a:47:ab:
#                    00:d4:a1:b3:a9:25:fe:0d:3f:a7:1d:ba:d3:51:c1:
#                    0b:a4:da:ac:38:ef:55:50:24:05:65:46:93:34:4f:
#                    2d:8d:ad:c6:d4:21:19:d2:8e:ca:05:61:71:07:73:
#                    47:e5:8a:19:12:bd:04:4d:ce:4e:9c:a5:48:ac:bb:
#                    26:f7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                0B:58:E5:8B:C6:4C:15:37:A4:40:A9:30:A9:21:BE:47:36:5A:56:FF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.comodoca.com/COMODOCertificationAuthority.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:98:9e:9b:f6:1b:e9:d7:39:b7:78:ae:1d:72:18:49:d3:87:
#         e4:43:82:eb:3f:c9:aa:f5:a8:b5:ef:55:7c:21:52:65:f9:d5:
#         0d:e1:6c:f4:3e:8c:93:73:91:2e:02:c4:4e:07:71:6f:c0:8f:
#         38:61:08:a8:1e:81:0a:c0:2f:20:2f:41:8b:91:dc:48:45:bc:
#         f1:c6:de:ba:76:6b:33:c8:00:2d:31:46:4c:ed:e7:9d:cf:88:
#         94:ff:33:c0:56:e8:24:86:26:b8:d8:38:38:df:2a:6b:dd:12:
#         cc:c7:3f:47:17:4c:a2:c2:06:96:09:d6:db:fe:3f:3c:46:41:
#         df:58:e2:56:0f:3c:3b:c1:1c:93:35:d9:38:52:ac:ee:c8:ec:
#         2e:30:4e:94:35:b4:24:1f:4b:78:69:da:f2:02:38:cc:95:52:
#         93:f0:70:25:59:9c:20:67:c4:ee:f9:8b:57:61:f4:92:76:7d:
#         3f:84:8d:55:b7:e8:e5:ac:d5:f1:f5:19:56:a6:5a:fb:90:1c:
#         af:93:eb:e5:1c:d4:67:97:5d:04:0e:be:0b:83:a6:17:83:b9:
#         30:12:a0:c5:33:15:05:b9:0d:fb:c7:05:76:e3:d8:4a:8d:fc:
#         34:17:a3:c6:21:28:be:30:45:31:1e:c7:78:be:58:61:38:ac:
#         3b:e2:01:65

[p11-kit-object-v1]
label: "COMODO ECC Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEA0d7L3XJghWF+3XkkRbUq2KZ9T5SCwbO
QQB/l+EKJDwdAQTuPdKNCZcM4HXk+vt3iir1A2BLNosWIxatCXH0SvQoULT+iBxu
P2wvLwlZW6VbCzOZ4sM9iflqLO+y0wbp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "COMODO ECC Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1f:47:af:aa:62:00:70:50:54:4c:01:9e:9b:63:99:2a
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO ECC Certification Authority
#        Validity
#            Not Before: Mar  6 00:00:00 2008 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO ECC Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:03:47:7b:2f:75:c9:82:15:85:fb:75:e4:91:16:
#                    d4:ab:62:99:f5:3e:52:0b:06:ce:41:00:7f:97:e1:
#                    0a:24:3c:1d:01:04:ee:3d:d2:8d:09:97:0c:e0:75:
#                    e4:fa:fb:77:8a:2a:f5:03:60:4b:36:8b:16:23:16:
#                    ad:09:71:f4:4a:f4:28:50:b4:fe:88:1c:6e:3f:6c:
#                    2f:2f:09:59:5b:a5:5b:0b:33:99:e2:c3:3d:89:f9:
#                    6a:2c:ef:b2:d3:06:e9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                75:71:A7:19:48:19:BC:9D:9D:EA:41:47:DF:94:C4:48:77:99:D3:79
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:ef:03:5b:7a:ac:b7:78:0a:72:b7:88:df:ff:
#         b5:46:14:09:0a:fa:a0:e6:7d:08:c6:1a:87:bd:18:a8:73:bd:
#         26:ca:60:0c:9d:ce:99:9f:cf:5c:0f:30:e1:be:14:31:ea:02:
#         30:14:f4:93:3c:49:a7:33:7a:90:46:47:b3:63:7d:13:9b:4e:
#         b7:6f:18:37:80:53:fe:dd:20:e0:35:9a:36:d1:c7:01:b9:e6:
#         dc:dd:f3:ff:1d:2c:3a:16:57:d9:92:39:d6

[p11-kit-object-v1]
label: "COMODO RSA Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "COMODO RSA Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:aa:f9:ca:db:63:6f:e0:1f:f7:4e:d8:5b:03:86:9d
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
#        Validity
#            Not Before: Jan 19 00:00:00 2010 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:91:e8:54:92:d2:0a:56:b1:ac:0d:24:dd:c5:cf:
#                    44:67:74:99:2b:37:a3:7d:23:70:00:71:bc:53:df:
#                    c4:fa:2a:12:8f:4b:7f:10:56:bd:9f:70:72:b7:61:
#                    7f:c9:4b:0f:17:a7:3d:e3:b0:04:61:ee:ff:11:97:
#                    c7:f4:86:3e:0a:fa:3e:5c:f9:93:e6:34:7a:d9:14:
#                    6b:e7:9c:b3:85:a0:82:7a:76:af:71:90:d7:ec:fd:
#                    0d:fa:9c:6c:fa:df:b0:82:f4:14:7e:f9:be:c4:a6:
#                    2f:4f:7f:99:7f:b5:fc:67:43:72:bd:0c:00:d6:89:
#                    eb:6b:2c:d3:ed:8f:98:1c:14:ab:7e:e5:e3:6e:fc:
#                    d8:a8:e4:92:24:da:43:6b:62:b8:55:fd:ea:c1:bc:
#                    6c:b6:8b:f3:0e:8d:9a:e4:9b:6c:69:99:f8:78:48:
#                    30:45:d5:ad:e1:0d:3c:45:60:fc:32:96:51:27:bc:
#                    67:c3:ca:2e:b6:6b:ea:46:c7:c7:20:a0:b1:1f:65:
#                    de:48:08:ba:a4:4e:a9:f2:83:46:37:84:eb:e8:cc:
#                    81:48:43:67:4e:72:2a:9b:5c:bd:4c:1b:28:8a:5c:
#                    22:7b:b4:ab:98:d9:ee:e0:51:83:c3:09:46:4e:6d:
#                    3e:99:fa:95:17:da:7c:33:57:41:3c:8d:51:ed:0b:
#                    b6:5c:af:2c:63:1a:df:57:c8:3f:bc:e9:5d:c4:9b:
#                    af:45:99:e2:a3:5a:24:b4:ba:a9:56:3d:cf:6f:aa:
#                    ff:49:58:be:f0:a8:ff:f4:b8:ad:e9:37:fb:ba:b8:
#                    f4:0b:3a:f9:e8:43:42:1e:89:d8:84:cb:13:f1:d9:
#                    bb:e1:89:60:b8:8c:28:56:ac:14:1d:9c:0a:e7:71:
#                    eb:cf:0e:dd:3d:a9:96:a1:48:bd:3c:f7:af:b5:0d:
#                    22:4c:c0:11:81:ec:56:3b:f6:d3:a2:e2:5b:b7:b2:
#                    04:22:52:95:80:93:69:e8:8e:4c:65:f1:91:03:2d:
#                    70:74:02:ea:8b:67:15:29:69:52:02:bb:d7:df:50:
#                    6a:55:46:bf:a0:a3:28:61:7f:70:d0:c3:a2:aa:2c:
#                    21:aa:47:ce:28:9c:06:45:76:bf:82:18:27:b4:d5:
#                    ae:b4:cb:50:e6:6b:f4:4c:86:71:30:e9:a6:df:16:
#                    86:e0:d8:ff:40:dd:fb:d0:42:88:7f:a3:33:3a:2e:
#                    5c:1e:41:11:81:63:ce:18:71:6b:2b:ec:a6:8a:b7:
#                    31:5c:3a:6a:47:e0:c3:79:59:d6:20:1a:af:f2:6a:
#                    98:aa:72:bc:57:4a:d2:4b:9d:bb:10:fc:b0:4c:41:
#                    e5:ed:1d:3d:5e:28:9d:9c:cc:bf:b3:51:da:a7:47:
#                    e5:84:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BB:AF:7E:02:3D:FA:A6:F1:3C:84:8E:AD:EE:38:98:EC:D9:32:32:D4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         0a:f1:d5:46:84:b7:ae:51:bb:6c:b2:4d:41:14:00:93:4c:9c:
#         cb:e5:c0:54:cf:a0:25:8e:02:f9:fd:b0:a2:0d:f5:20:98:3c:
#         13:2d:ac:56:a2:b0:d6:7e:11:92:e9:2e:ba:9e:2e:9a:72:b1:
#         bd:19:44:6c:61:35:a2:9a:b4:16:12:69:5a:8c:e1:d7:3e:a4:
#         1a:e8:2f:03:f4:ae:61:1d:10:1b:2a:a4:8b:7a:c5:fe:05:a6:
#         e1:c0:d6:c8:fe:9e:ae:8f:2b:ba:3d:99:f8:d8:73:09:58:46:
#         6e:a6:9c:f4:d7:27:d3:95:da:37:83:72:1c:d3:73:e0:a2:47:
#         99:03:38:5d:d5:49:79:00:29:1c:c7:ec:9b:20:1c:07:24:69:
#         57:78:b2:39:fc:3a:84:a0:b5:9c:7c:8d:bf:2e:93:62:27:b7:
#         39:da:17:18:ae:bd:3c:09:68:ff:84:9b:3c:d5:d6:0b:03:e3:
#         57:9e:14:f7:d1:eb:4f:c8:bd:87:23:b7:b6:49:43:79:85:5c:
#         ba:eb:92:0b:a1:c6:e8:68:a8:4c:16:b1:1a:99:0a:e8:53:2c:
#         92:bb:a1:09:18:75:0c:65:a8:7b:cb:23:b7:1a:c2:28:85:c3:
#         1b:ff:d0:2b:62:ef:a4:7b:09:91:98:67:8c:14:01:cd:68:06:
#         6a:63:21:75:03:80:88:8a:6e:81:c6:85:f2:a9:a4:2d:e7:f4:
#         a5:24:10:47:83:ca:cd:f4:8d:79:58:b1:06:9b:e7:1a:2a:d9:
#         9d:01:d7:94:7d:ed:03:4a:ca:f0:db:e8:a9:01:3e:f5:56:99:
#         c9:1e:8e:49:3d:bb:e5:09:b9:e0:4f:49:92:3d:16:82:40:cc:
#         cc:59:c6:e6:3a:ed:12:2e:69:3c:6c:95:b1:fd:aa:1d:7b:7f:
#         86:be:1e:0e:32:46:fb:fb:13:8f:75:7f:4c:8b:4b:46:63:fe:
#         00:34:40:70:c1:c3:b9:a1:dd:a6:70:e2:04:b3:41:bc:e9:80:
#         91:ea:64:9c:7a:e1:22:03:a9:9c:6e:6f:0e:65:4f:6c:87:87:
#         5e:f3:6e:a0:f9:75:a5:9b:40:e8:53:b2:27:9d:4a:b9:c0:77:
#         21:8d:ff:87:f2:de:bc:8c:ef:17:df:b7:49:0b:d1:f2:6e:30:
#         0b:1a:0e:4e:76:ed:11:fc:f5:e9:56:b2:7d:bf:c7:6d:0a:93:
#         8c:a5:d0:c0:b6:1d:be:3a:4e:94:a2:d7:6e:6c:0b:c2:8a:7c:
#         fa:20:f3:c4:e4:e5:cd:0d:a8:cb:91:92:b1:7c:85:ec:b5:14:
#         69:66:0e:82:e7:cd:ce:c8:2d:a6:51:7f:21:c1:35:53:85:06:
#         4a:5d:9f:ad:bb:1b:5f:74

[p11-kit-object-v1]
label: "Camerfirma Chambers of Commerce Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAtzZV5aVdGDDg2olUkfzI
x1L4L1DZ77F1c2VHfRtbunXF/KGIJPov7coISjlUxFF6tdpg6jg8gbLL8bvZkSM/
SAFwdakFKq0fcfPJVD0dBmpAPrMMhe5cG3nCYsS4No41XQEMIwRHNaqbYE6gZj3L
JgqcQKH0XZi/caulAGgq7YN6D6IUtdQis4CwPAxaUWktWBiP7Zme8a7ileb2R6jW
DA+wWFjbw2Y3npuRVDM30pQcakjJyfKl2qUMI/cjDpwyVV5xnIQFUZot/eZOKjRa
3spAN2cMVCFVd9oKDMyXroDclDZK9D7ONhMeU+SsTjoF7Nuucpw4i9A5O4kKPnf+
dQIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Camerfirma Chambers of Commerce Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=EU, O=AC Camerfirma SA CIF A82743287, OU=http://www.chambersign.org, CN=Chambers of Commerce Root
#        Validity
#            Not Before: Sep 30 16:13:43 2003 GMT
#            Not After : Sep 30 16:13:44 2037 GMT
#        Subject: C=EU, O=AC Camerfirma SA CIF A82743287, OU=http://www.chambersign.org, CN=Chambers of Commerce Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:36:55:e5:a5:5d:18:30:e0:da:89:54:91:fc:
#                    c8:c7:52:f8:2f:50:d9:ef:b1:75:73:65:47:7d:1b:
#                    5b:ba:75:c5:fc:a1:88:24:fa:2f:ed:ca:08:4a:39:
#                    54:c4:51:7a:b5:da:60:ea:38:3c:81:b2:cb:f1:bb:
#                    d9:91:23:3f:48:01:70:75:a9:05:2a:ad:1f:71:f3:
#                    c9:54:3d:1d:06:6a:40:3e:b3:0c:85:ee:5c:1b:79:
#                    c2:62:c4:b8:36:8e:35:5d:01:0c:23:04:47:35:aa:
#                    9b:60:4e:a0:66:3d:cb:26:0a:9c:40:a1:f4:5d:98:
#                    bf:71:ab:a5:00:68:2a:ed:83:7a:0f:a2:14:b5:d4:
#                    22:b3:80:b0:3c:0c:5a:51:69:2d:58:18:8f:ed:99:
#                    9e:f1:ae:e2:95:e6:f6:47:a8:d6:0c:0f:b0:58:58:
#                    db:c3:66:37:9e:9b:91:54:33:37:d2:94:1c:6a:48:
#                    c9:c9:f2:a5:da:a5:0c:23:f7:23:0e:9c:32:55:5e:
#                    71:9c:84:05:51:9a:2d:fd:e6:4e:2a:34:5a:de:ca:
#                    40:37:67:0c:54:21:55:77:da:0a:0c:cc:97:ae:80:
#                    dc:94:36:4a:f4:3e:ce:36:13:1e:53:e4:ac:4e:3a:
#                    05:ec:db:ae:72:9c:38:8b:d0:39:3b:89:0a:3e:77:
#                    fe:75
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.chambersign.org/chambersroot.crl
#
#            X509v3 Subject Key Identifier: 
#                E3:94:F5:B1:4D:E9:DB:A1:29:5B:57:8B:4D:76:06:76:E1:D1:A2:8A
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Alternative Name: 
#                email:chambersroot@chambersign.org
#            X509v3 Issuer Alternative Name: 
#                email:chambersroot@chambersign.org
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.17326.10.3.1
#                  CPS: http://cps.chambersign.org/cps/chambersroot.html
#
#    Signature Algorithm: sha1WithRSAEncryption
#         0c:41:97:c2:1a:86:c0:22:7c:9f:fb:90:f3:1a:d1:03:b1:ef:
#         13:f9:21:5f:04:9c:da:c9:a5:8d:27:6c:96:87:91:be:41:90:
#         01:72:93:e7:1e:7d:5f:f6:89:c6:5d:a7:40:09:3d:ac:49:45:
#         45:dc:2e:8d:30:68:b2:09:ba:fb:c3:2f:cc:ba:0b:df:3f:77:
#         7b:46:7d:3a:12:24:8e:96:8f:3c:05:0a:6f:d2:94:28:1d:6d:
#         0c:c0:2e:88:22:d5:d8:cf:1d:13:c7:f0:48:d7:d7:05:a7:cf:
#         c7:47:9e:3b:3c:34:c8:80:4f:d4:14:bb:fc:0d:50:f7:fa:b3:
#         ec:42:5f:a9:dd:6d:c8:f4:75:cf:7b:c1:72:26:b1:01:1c:5c:
#         2c:fd:7a:4e:b4:01:c5:05:57:b9:e7:3c:aa:05:d9:88:e9:07:
#         46:41:ce:ef:41:81:ae:58:df:83:a2:ae:ca:d7:77:1f:e7:00:
#         3c:9d:6f:8e:e4:32:09:1d:4d:78:34:78:34:3c:94:9b:26:ed:
#         4f:71:c6:19:7a:bd:20:22:48:5a:fe:4b:7d:03:b7:e7:58:be:
#         c6:32:4e:74:1e:68:dd:a8:68:5b:b3:3e:ee:62:7d:d9:80:e8:
#         0a:75:7a:b7:ee:b4:65:9a:21:90:e0:aa:d0:98:bc:38:b5:73:
#         3c:8b:f8:dc

[p11-kit-object-v1]
label: "Certainly Root E1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE3m/4fxzf7flHh4axpMCK+IKXgOqPyEpe
Kn2IaKcBYhSRJHpcnqMXfYqGITQYUBsQ3tA3SybHGWCA6TS9YBk2QNYphwk8kXr2
vBMj3VlOBF7PyAIcGFPBMdjaIOlEjeR2
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certainly Root E1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:25:33:b1:47:03:33:27:5c:f9:8d:9a:b9:bf:cc:f8
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Certainly, CN=Certainly Root E1
#        Validity
#            Not Before: Apr  1 00:00:00 2021 GMT
#            Not After : Apr  1 00:00:00 2046 GMT
#        Subject: C=US, O=Certainly, CN=Certainly Root E1
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:de:6f:f8:7f:1c:df:ed:f9:47:87:86:b1:a4:c0:
#                    8a:f8:82:97:80:ea:8f:c8:4a:5e:2a:7d:88:68:a7:
#                    01:62:14:91:24:7a:5c:9e:a3:17:7d:8a:86:21:34:
#                    18:50:1b:10:de:d0:37:4b:26:c7:19:60:80:e9:34:
#                    bd:60:19:36:40:d6:29:87:09:3c:91:7a:f6:bc:13:
#                    23:dd:59:4e:04:5e:cf:c8:02:1c:18:53:c1:31:d8:
#                    da:20:e9:44:8d:e4:76
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                F3:28:18:CB:64:75:EE:29:2A:EB:ED:AE:23:58:38:85:EB:C8:22:07
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:b1:8e:5a:20:c3:b2:19:62:4d:de:b0:4f:df:
#         6e:d2:70:8a:f1:9f:7e:6a:8c:e6:ba:de:83:69:ca:69:b3:a9:
#         05:b5:96:92:17:87:c2:d2:ea:d0:7b:ce:d8:41:5b:7c:ae:02:
#         30:46:de:ea:cb:5d:9a:ec:32:c2:65:16:b0:4c:30:5c:30:f3:
#         da:4e:73:86:06:d8:ce:89:04:48:37:37:f8:dd:33:51:9d:70:
#         af:7b:55:d8:01:2e:7d:05:64:0e:86:b8:91

[p11-kit-object-v1]
label: "Certainly Root R1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certainly Root R1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            8e:0f:f9:4b:90:71:68:65:33:54:f4:d4:44:39:b7:e0
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Certainly, CN=Certainly Root R1
#        Validity
#            Not Before: Apr  1 00:00:00 2021 GMT
#            Not After : Apr  1 00:00:00 2046 GMT
#        Subject: C=US, O=Certainly, CN=Certainly Root R1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d0:36:d4:1f:ea:dd:ab:e4:d1:b6:e6:fb:22:c0:
#                    dd:13:0d:6a:7b:22:13:1c:97:3c:68:63:66:32:9c:
#                    03:b5:8d:a4:81:83:da:78:30:11:cf:dc:b2:2b:be:
#                    92:bf:8e:e4:c4:13:be:a4:68:4c:da:02:68:16:74:
#                    be:b2:dd:04:e4:6b:2a:dd:37:1f:60:2c:db:f5:f7:
#                    a1:7c:95:b7:0c:70:86:2e:f1:3a:ef:52:f7:cc:d3:
#                    9b:f9:8b:be:0e:df:31:b7:9d:68:5c:92:a6:f5:e5:
#                    f3:0a:34:b5:ff:7b:a2:e4:87:a1:c6:af:17:00:ef:
#                    03:91:ed:a9:1c:4e:71:3d:d2:8b:6c:89:f4:78:86:
#                    e6:6a:49:a0:ce:b5:d2:b0:ab:9b:f6:f4:d4:2e:e3:
#                    72:f9:36:c6:eb:15:b7:25:8c:3a:fc:25:0d:b3:22:
#                    73:21:74:c8:4a:96:61:92:f5:2f:0b:18:a5:f4:ad:
#                    e2:ee:41:bd:01:79:fa:96:8c:8d:17:02:30:b4:f9:
#                    af:78:1a:8c:b4:36:10:10:07:05:70:d0:f4:31:90:
#                    8a:51:c5:86:26:79:b2:11:88:5e:c5:f0:0a:54:cd:
#                    49:a6:bf:02:9c:d2:44:a7:ed:e3:78:ef:46:5e:6d:
#                    71:d1:79:70:1c:46:5f:51:e9:c9:37:dc:5f:7e:69:
#                    7b:41:df:34:45:e0:3b:84:f4:a1:8a:0a:36:9e:37:
#                    cc:62:52:e1:89:0d:28:f9:7a:23:b1:0d:3d:3d:9a:
#                    fd:9d:81:ef:2c:90:c0:7b:44:4e:bb:49:e0:0e:4a:
#                    56:92:bc:cb:b5:dd:79:17:89:91:de:61:89:74:92:
#                    a8:e3:32:85:be:4e:85:a4:4b:59:cb:2b:c5:78:8e:
#                    71:54:d0:02:37:99:8c:e5:49:ea:e0:54:72:a4:11:
#                    06:2f:0b:8c:c1:5b:be:b5:a1:b0:53:6e:9c:b8:60:
#                    91:1f:59:6b:f9:2d:f4:94:0a:97:b5:ec:c5:76:03:
#                    54:1b:65:52:ba:4c:92:56:51:35:a0:40:d8:29:db:
#                    ae:52:76:3b:2d:30:40:9b:8a:d0:42:56:b4:b7:88:
#                    01:a4:87:3b:53:96:cd:a3:16:8f:f3:66:aa:17:b1:
#                    c7:60:e0:c1:43:05:0c:ee:9b:5b:60:6f:06:5c:87:
#                    5b:27:f9:40:11:9e:9c:33:c1:b7:e5:35:57:05:7f:
#                    27:ce:17:20:8c:1c:fc:f1:fb:da:31:29:49:ed:f5:
#                    0b:84:a7:4f:c1:f6:4e:c2:28:9c:fa:ee:e0:af:07:
#                    fb:33:11:7a:21:4f:0b:21:10:b6:40:3a:ab:22:3a:
#                    04:9c:8b:9b:84:86:72:9a:d2:a7:a5:c4:b4:75:91:
#                    a9:2b:23
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E0:AA:3F:25:8D:9F:44:5C:C1:3A:E8:2E:AE:77:4C:84:3E:67:0C:F4
#    Signature Algorithm: sha256WithRSAEncryption
#         b9:57:af:b8:12:da:57:83:8f:68:0b:33:1d:03:53:55:f4:95:
#         70:e4:2b:3d:b0:39:eb:fa:89:62:fd:f7:d6:18:04:2f:21:34:
#         dd:f1:68:f0:d5:96:5a:de:c2:80:a3:c1:8d:c6:6a:f7:59:77:
#         ae:15:64:cf:5b:79:05:77:66:ea:8c:d3:6b:0d:dd:f1:59:2c:
#         c1:33:a5:30:80:15:45:07:45:1a:31:22:b6:92:00:ab:99:4d:
#         3a:8f:77:af:a9:22:ca:2f:63:ca:15:d6:c7:c6:f0:3d:6c:fc:
#         1c:0d:98:10:61:9e:11:a2:22:d7:0a:f2:91:7a:6b:39:0e:2f:
#         30:c3:36:49:9f:e0:e9:0f:02:44:50:37:94:55:7d:ea:9f:f6:
#         3b:ba:94:a5:4c:e9:bc:3e:51:b4:e8:ca:92:36:54:6d:5c:25:
#         28:da:dd:ad:14:fd:d3:ee:e2:22:05:eb:d0:f2:b7:68:12:d7:
#         5a:8a:41:1a:c6:92:a5:5a:3b:63:45:4f:bf:e1:3a:77:22:2f:
#         5c:bf:46:f9:5a:03:85:13:42:5f:ca:de:53:d7:62:b5:a6:35:
#         04:c2:47:ff:99:fd:84:df:5c:ce:e9:5e:80:28:41:f2:7d:e7:
#         1e:90:d8:4f:76:3e:82:3c:0d:fc:a5:03:fa:7b:1a:d9:45:1e:
#         60:da:c4:8e:f9:fc:2b:c9:7b:95:c5:2a:ff:aa:89:df:82:31:
#         0f:72:ff:0c:27:d7:0a:1e:56:00:50:1e:0c:90:c1:96:b5:d8:
#         14:85:bb:a7:0d:16:c1:f8:07:24:1b:ba:85:a1:1a:05:09:80:
#         ba:95:63:c9:3a:ec:25:9f:7f:9d:ba:a4:47:15:9b:44:70:f1:
#         6a:4b:d6:38:5e:43:f3:18:7e:50:6e:e9:5a:28:e6:65:e6:77:
#         1b:3a:fd:1d:be:03:26:a3:db:d4:e1:bb:7e:96:27:2b:1d:ee:
#         a4:fb:da:25:54:13:03:de:39:c6:c3:1f:4d:90:ec:8f:1b:4a:
#         d2:1c:ed:85:95:38:50:79:46:d6:c1:90:50:31:a9:5c:9a:6e:
#         1d:f5:33:56:8b:a7:99:d2:f2:c8:2c:33:93:92:30:c7:4e:8c:
#         65:33:10:64:17:fd:24:17:96:d1:8d:c2:3a:6a:2b:eb:13:8b:
#         44:f2:21:f3:4a:1a:b7:77:5f:d7:ed:88:a4:72:e5:39:1f:95:
#         9d:be:67:c1:70:11:3d:bb:f4:f8:49:b7:e3:26:97:3a:9f:d2:
#         5f:7c:fb:c0:99:7c:39:29:e0:7b:1d:bf:0d:a7:8f:d2:29:34:
#         6e:24:15:cb:de:90:5e:bf:1a:c4:66:ea:c2:e6:ba:39:5f:8a:
#         99:a9:41:59:07:b0:2c:af

[p11-kit-object-v1]
label: "Certification Authority of WoSign"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certification Authority of WoSign"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5e:68:d6:11:71:94:63:50:56:00:68:f3:3e:c9:c5:91
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CN, O=WoSign CA Limited, CN=Certification Authority of WoSign
#        Validity
#            Not Before: Aug  8 01:00:01 2009 GMT
#            Not After : Aug  8 01:00:01 2039 GMT
#        Subject: C=CN, O=WoSign CA Limited, CN=Certification Authority of WoSign
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:bd:ca:8d:ac:b8:91:15:56:97:7b:6b:5c:7a:c2:
#                    de:6b:d9:a1:b0:c3:10:23:fa:a7:a1:b2:cc:31:fa:
#                    3e:d9:a6:29:6f:16:3d:e0:6b:f8:b8:40:5f:db:39:
#                    a8:00:7a:8b:a0:4d:54:7d:c2:22:78:fc:8e:09:b8:
#                    a8:85:d7:cc:95:97:4b:74:d8:9e:7e:f0:00:e4:0e:
#                    89:ae:49:28:44:1a:10:99:32:0f:25:88:53:a4:0d:
#                    b3:0f:12:08:16:0b:03:71:27:1c:7f:e1:db:d2:fd:
#                    67:68:c4:05:5d:0a:0e:5d:70:d7:d8:97:a0:bc:53:
#                    41:9a:91:8d:f4:9e:36:66:7a:7e:56:c1:90:5f:e6:
#                    b1:68:20:36:a4:8c:24:2c:2c:47:0b:59:76:66:30:
#                    b5:be:de:ed:8f:f8:9d:d3:bb:01:30:e6:f2:f3:0e:
#                    e0:2c:92:80:f3:85:f9:28:8a:b4:54:2e:9a:ed:f7:
#                    76:fc:15:68:16:eb:4a:6c:eb:2e:12:8f:d4:cf:fe:
#                    0c:c7:5c:1d:0b:7e:05:32:be:5e:b0:09:2a:42:d5:
#                    c9:4e:90:b3:59:0d:bb:7a:7e:cd:d5:08:5a:b4:7f:
#                    d8:1c:69:11:f9:27:0f:7b:06:af:54:83:18:7b:e1:
#                    dd:54:7a:51:68:6e:77:fc:c6:bf:52:4a:66:46:a1:
#                    b2:67:1a:bb:a3:4f:77:a0:be:5d:ff:fc:56:0b:43:
#                    72:77:90:ca:9e:f9:f2:39:f5:0d:a9:f4:ea:d7:e7:
#                    b3:10:2f:30:42:37:21:cc:30:70:c9:86:98:0f:cc:
#                    58:4d:83:bb:7d:e5:1a:a5:37:8d:b6:ac:32:97:00:
#                    3a:63:71:24:1e:9e:37:c4:ff:74:d4:37:c0:e2:fe:
#                    88:46:60:11:dd:08:3f:50:36:ab:b8:7a:a4:95:62:
#                    6a:6e:b0:ca:6a:21:5a:69:f3:f3:fb:1d:70:39:95:
#                    f3:a7:6e:a6:81:89:a1:88:c5:3b:71:ca:a3:52:ee:
#                    83:bb:fd:a0:77:f4:e4:6f:e7:42:db:6d:4a:99:8a:
#                    34:48:bc:17:dc:e4:80:08:22:b6:f2:31:c0:3f:04:
#                    3e:eb:9f:20:79:d6:b8:06:64:64:02:31:d7:a9:cd:
#                    52:fb:84:45:69:09:00:2a:dc:55:8b:c4:06:46:4b:
#                    c0:4a:1d:09:5b:39:28:fd:a9:ab:ce:00:f9:2e:48:
#                    4b:26:e6:30:4c:a5:58:ca:b4:44:82:4f:e7:91:1e:
#                    33:c3:b0:93:ff:11:fc:81:d2:ca:1f:71:29:dd:76:
#                    4f:92:25:af:1d:81:b7:0f:2f:8c:c3:06:cc:2f:27:
#                    a3:4a:e4:0e:99:ba:7c:1e:45:1f:7f:aa:19:45:96:
#                    fd:fc:3d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E1:66:CF:0E:D1:F1:B3:4B:B7:06:20:14:FE:87:12:D5:F6:FE:FB:3E
#    Signature Algorithm: sha1WithRSAEncryption
#         a8:cb:72:40:b2:76:c1:7e:7b:fc:ad:64:e3:32:7b:cc:3c:b6:
#         5d:46:d3:f5:2c:e2:70:5d:c8:2e:d8:06:7d:98:d1:0b:21:a0:
#         89:59:24:01:9d:f9:af:09:7d:0a:23:82:34:d5:fc:7c:72:99:
#         b9:a3:d7:54:f4:ea:52:70:0e:c5:f5:d6:3b:e1:3a:09:32:e6:
#         21:39:93:bd:b3:15:ea:4f:6a:f4:f5:8b:3f:2f:7c:8d:58:2e:
#         c5:e1:39:a0:3e:c7:3d:4a:73:9e:40:7a:c0:2b:61:a9:67:c9:
#         f3:24:b9:b3:6d:55:2c:5a:1d:9e:25:72:ce:0b:ad:aa:c7:55:
#         62:0b:be:fb:63:b3:61:44:23:a3:cb:e1:1a:0e:f7:9a:06:4d:
#         de:d4:23:4e:21:96:5b:39:5b:57:1d:2f:5d:08:5e:09:79:ff:
#         7c:97:b5:4d:83:ae:0d:d6:e6:a3:79:e0:33:d0:99:96:02:30:
#         a7:3e:ff:d2:a3:43:3f:05:5a:06:ea:44:02:da:7c:f8:48:d0:
#         33:a9:f9:07:c7:95:e1:f5:3e:f5:5d:71:ba:f2:95:a9:74:88:
#         61:59:e3:bf:ca:5a:13:ba:72:b4:8c:5d:36:87:e9:a6:c5:3c:
#         13:bf:de:d0:44:26:ee:b7:ec:2e:70:fa:d7:9d:b7:ac:e5:c5:
#         40:5a:e6:d7:6c:7b:2c:c3:56:9b:47:cd:0b:ce:fa:1b:b4:21:
#         d7:b7:66:b8:f4:25:30:8b:5c:0d:b9:ea:67:b2:f4:6d:ae:d5:
#         a1:9e:4f:d8:9f:e9:27:02:b0:1d:06:d6:8f:e3:fb:48:12:9f:
#         7f:11:a1:10:3e:4c:51:3a:96:b0:d1:13:f1:c7:d8:26:ae:3a:
#         ca:91:c4:69:9d:df:01:29:64:51:6f:68:da:14:ec:08:41:97:
#         90:8d:d0:b2:80:f2:cf:c2:3d:bf:91:68:c5:80:67:1e:c4:60:
#         13:55:d5:61:99:57:7c:ba:95:0f:61:49:3a:ca:75:bc:c9:0a:
#         93:3f:67:0e:12:f2:28:e2:31:1b:c0:57:16:df:08:7c:19:c1:
#         7e:0f:1f:85:1e:0a:36:7c:5b:7e:27:bc:7a:bf:e0:db:f4:da:
#         52:bd:de:0c:54:70:31:91:43:95:c8:bc:f0:3e:dd:09:7e:30:
#         64:50:ed:7f:01:a4:33:67:4d:68:4f:be:15:ef:b0:f6:02:11:
#         a2:1b:13:25:3a:dc:c2:59:f1:e3:5c:46:bb:67:2c:02:46:ea:
#         1e:48:a6:e6:5b:d9:b5:bc:51:a2:92:96:db:aa:c6:37:22:a6:
#         fe:cc:20:74:a3:2d:a9:2e:6b:cb:c0:82:11:21:b5:93:79:ee:
#         44:86:be:d7:1e:e4:1e:fb

[p11-kit-object-v1]
label: "Certification Authority of WoSign G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvsXEoCKASU+/2YcRxlPh
uw+9YH+v9oIOH9ywjj2X4FA8jzrvZjtFB5sg+OPXJYY1kBaiXW8wGQiHC38Gsp1i
j96vkqVg1CuAmlI/9ZqD6TRay9nVYlzmDuDfBpgOgHzKtB0TiGsOqCR3A9DuW/PK
aZE1OVbFbeP3PU9ekzgkyhjpJMuSA93MHD0JcOQg5PGurLtzaaNjOg9FD6FKmsLR
Y6zLEPg95k4ot+vElbGs/V6r+kHLXZ1L3PR8du9nfwB6jdKgGlxNIuG12t12s9R2
3164i5jIFFTMaxeSt+BKv0mUYQs4kI9dJGwlezt52eJ+na2fmKEG/HgUYFf47oB3
sQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certification Authority of WoSign G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6b:25:da:8a:88:9d:7c:bc:0f:05:b3:b1:7a:61:45:44
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=WoSign CA Limited, CN=Certification Authority of WoSign G2
#        Validity
#            Not Before: Nov  8 00:58:58 2014 GMT
#            Not After : Nov  8 00:58:58 2044 GMT
#        Subject: C=CN, O=WoSign CA Limited, CN=Certification Authority of WoSign G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:be:c5:c4:a0:22:80:49:4f:bf:d9:87:11:c6:53:
#                    e1:bb:0f:bd:60:7f:af:f6:82:0e:1f:dc:b0:8e:3d:
#                    97:e0:50:3c:8f:3a:ef:66:3b:45:07:9b:20:f8:e3:
#                    d7:25:86:35:90:16:a2:5d:6f:30:19:08:87:0b:7f:
#                    06:b2:9d:62:8f:de:af:92:a5:60:d4:2b:80:9a:52:
#                    3f:f5:9a:83:e9:34:5a:cb:d9:d5:62:5c:e6:0e:e0:
#                    df:06:98:0e:80:7c:ca:b4:1d:13:88:6b:0e:a8:24:
#                    77:03:d0:ee:5b:f3:ca:69:91:35:39:56:c5:6d:e3:
#                    f7:3d:4f:5e:93:38:24:ca:18:e9:24:cb:92:03:dd:
#                    cc:1c:3d:09:70:e4:20:e4:f1:ae:ac:bb:73:69:a3:
#                    63:3a:0f:45:0f:a1:4a:9a:c2:d1:63:ac:cb:10:f8:
#                    3d:e6:4e:28:b7:eb:c4:95:b1:ac:fd:5e:ab:fa:41:
#                    cb:5d:9d:4b:dc:f4:7c:76:ef:67:7f:00:7a:8d:d2:
#                    a0:1a:5c:4d:22:e1:b5:da:dd:76:b3:d4:76:df:5e:
#                    b8:8b:98:c8:14:54:cc:6b:17:92:b7:e0:4a:bf:49:
#                    94:61:0b:38:90:8f:5d:24:6c:25:7b:3b:79:d9:e2:
#                    7e:9d:ad:9f:98:a1:06:fc:78:14:60:57:f8:ee:80:
#                    77:b1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                FA:60:A9:EB:65:C5:DD:16:14:08:4E:0C:0F:8D:9B:E0:F7:64:AF:67
#    Signature Algorithm: sha256WithRSAEncryption
#         57:c3:7a:36:82:9c:8d:98:e2:ab:40:aa:47:8f:c7:a7:5b:ed:
#         7c:e7:3d:66:5a:3b:31:bb:df:f3:16:33:91:fc:7c:7b:a5:c2:
#         a6:66:e3:aa:b0:b7:27:98:3f:49:d7:60:67:67:3f:36:4f:4a:
#         cb:f1:14:fa:5a:87:28:1c:ed:8f:41:32:c6:95:f9:7d:da:bd:
#         7b:5b:c2:b0:21:e3:8f:46:dc:21:38:43:74:4c:fb:30:f8:17:
#         72:c1:32:fc:c8:91:17:c4:cc:58:37:4e:0b:cc:5a:f7:21:35:
#         28:83:6c:60:2d:44:eb:52:8c:50:3d:b5:6c:12:d7:fa:09:bb:
#         6c:b2:4a:b1:c5:89:e4:fc:d3:52:d8:61:17:fe:7a:94:84:8f:
#         79:b6:33:59:ba:0f:c4:0b:e2:70:a0:4b:78:2e:fa:c8:9f:fd:
#         af:91:65:0a:78:38:15:e5:97:17:14:dd:f9:e0:2c:34:f8:38:
#         d0:84:22:00:c0:14:51:18:2b:02:dc:30:5a:f0:e8:01:7c:35:
#         3a:23:af:08:e4:af:aa:8e:28:42:49:2e:f0:f5:99:34:be:ed:
#         0f:4b:18:e1:d2:24:3c:bb:5d:47:b7:21:f2:8d:d1:0a:99:8e:
#         e3:6e:3e:ad:70:e0:8f:b9:ca:cc:6e:81:31:f6:7b:9c:7a:79:
#         e4:67:71:18

[p11-kit-object-v1]
label: "Certigna"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyGjxydbWszR1JoIe7LS+
6lzhJu0RR2HhonwWeEAh5GCeWshj4cSxlpL/GG1pI+ErYvfd4jYvkQe5SM8O7Hm2
LOc0S3AIJaM8hxsZ8oEHDziQGdMR/oa08tFeHh6WzYBszjsxk7byoNCplRJ9pZrM
a8iEVoozqeciFVMW8MwX7Fdf6aIKmAne41+cb9xI44ULFVqmup+sSOMJsvf0Mt5e
NL4ceF1CW84OIo9NkNd9MhizCyxqv44/FBGJIA53FLU9lAiH9yUe1bJgAOxvKigl
bio+GGMXJT8+RCAW9ibIJa4FSrTnYyzzjBZTflz7ERoIwUZinyK48cKNadz6OlgG
3wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certigna"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            fe:dc:e3:01:0f:c9:48:ff
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=FR, O=Dhimyotis, CN=Certigna
#        Validity
#            Not Before: Jun 29 15:13:05 2007 GMT
#            Not After : Jun 29 15:13:05 2027 GMT
#        Subject: C=FR, O=Dhimyotis, CN=Certigna
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c8:68:f1:c9:d6:d6:b3:34:75:26:82:1e:ec:b4:
#                    be:ea:5c:e1:26:ed:11:47:61:e1:a2:7c:16:78:40:
#                    21:e4:60:9e:5a:c8:63:e1:c4:b1:96:92:ff:18:6d:
#                    69:23:e1:2b:62:f7:dd:e2:36:2f:91:07:b9:48:cf:
#                    0e:ec:79:b6:2c:e7:34:4b:70:08:25:a3:3c:87:1b:
#                    19:f2:81:07:0f:38:90:19:d3:11:fe:86:b4:f2:d1:
#                    5e:1e:1e:96:cd:80:6c:ce:3b:31:93:b6:f2:a0:d0:
#                    a9:95:12:7d:a5:9a:cc:6b:c8:84:56:8a:33:a9:e7:
#                    22:15:53:16:f0:cc:17:ec:57:5f:e9:a2:0a:98:09:
#                    de:e3:5f:9c:6f:dc:48:e3:85:0b:15:5a:a6:ba:9f:
#                    ac:48:e3:09:b2:f7:f4:32:de:5e:34:be:1c:78:5d:
#                    42:5b:ce:0e:22:8f:4d:90:d7:7d:32:18:b3:0b:2c:
#                    6a:bf:8e:3f:14:11:89:20:0e:77:14:b5:3d:94:08:
#                    87:f7:25:1e:d5:b2:60:00:ec:6f:2a:28:25:6e:2a:
#                    3e:18:63:17:25:3f:3e:44:20:16:f6:26:c8:25:ae:
#                    05:4a:b4:e7:63:2c:f3:8c:16:53:7e:5c:fb:11:1a:
#                    08:c1:46:62:9f:22:b8:f1:c2:8d:69:dc:fa:3a:58:
#                    06:df
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                1A:ED:FE:41:39:90:B4:24:59:BE:01:F2:52:D5:45:F6:5A:39:DC:11
#            X509v3 Authority Key Identifier: 
#                keyid:1A:ED:FE:41:39:90:B4:24:59:BE:01:F2:52:D5:45:F6:5A:39:DC:11
#                DirName:/C=FR/O=Dhimyotis/CN=Certigna
#                serial:FE:DC:E3:01:0F:C9:48:FF
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         85:03:1e:92:71:f6:42:af:e1:a3:61:9e:eb:f3:c0:0f:f2:a5:
#         d4:da:95:e6:d6:be:68:36:3d:7e:6e:1f:4c:8a:ef:d1:0f:21:
#         6d:5e:a5:52:63:ce:12:f8:ef:2a:da:6f:eb:37:fe:13:02:c7:
#         cb:3b:3e:22:6b:da:61:2e:7f:d4:72:3d:dd:30:e1:1e:4c:40:
#         19:8c:0f:d7:9c:d1:83:30:7b:98:59:dc:7d:c6:b9:0c:29:4c:
#         a1:33:a2:eb:67:3a:65:84:d3:96:e2:ed:76:45:70:8f:b5:2b:
#         de:f9:23:d6:49:6e:3c:14:b5:c6:9f:35:1e:50:d0:c1:8f:6a:
#         70:44:02:62:cb:ae:1d:68:41:a7:aa:57:e8:53:aa:07:d2:06:
#         f6:d5:14:06:0b:91:03:75:2c:6c:72:b5:61:95:9a:0d:8b:b9:
#         0d:e7:f5:df:54:cd:de:e6:d8:d6:09:08:97:63:e5:c1:2e:b0:
#         b7:44:26:c0:26:c0:af:55:30:9e:3b:d5:36:2a:19:04:f4:5c:
#         1e:ff:cf:2c:b7:ff:d0:fd:87:40:11:d5:11:23:bb:48:c0:21:
#         a9:a4:28:2d:fd:15:f8:b0:4e:2b:f4:30:5b:21:fc:11:91:34:
#         be:41:ef:7b:9d:97:75:ff:97:95:c0:96:58:2f:ea:bb:46:d7:
#         bb:e4:d9:2e

[p11-kit-object-v1]
label: "Certigna Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certigna Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            ca:e9:1b:89:f1:55:03:0d:a3:e6:41:6d:c4:e3:a6:e1
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=FR, O=Dhimyotis, OU=0002 48146308100036, CN=Certigna Root CA
#        Validity
#            Not Before: Oct  1 08:32:27 2013 GMT
#            Not After : Oct  1 08:32:27 2033 GMT
#        Subject: C=FR, O=Dhimyotis, OU=0002 48146308100036, CN=Certigna Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:cd:18:39:65:1a:59:b1:ea:64:16:0e:8c:94:24:
#                    95:7c:83:d3:c5:39:26:dc:0c:ef:16:57:8d:d7:d8:
#                    ac:a3:42:7f:82:ca:ed:cd:5b:db:0e:b7:2d:ed:45:
#                    08:17:b2:d9:b3:cb:d6:17:52:72:28:db:8e:4e:9e:
#                    8a:b6:0b:f9:9e:84:9a:4d:76:de:22:29:5c:d2:b3:
#                    d2:06:3e:30:39:a9:74:a3:92:56:1c:a1:6f:4c:0a:
#                    20:6d:9f:23:7a:b4:c6:da:2c:e4:1d:2c:dc:b3:28:
#                    d0:13:f2:4c:4e:02:49:a1:54:40:9e:e6:e5:05:a0:
#                    2d:84:c8:ff:98:6c:d0:eb:8a:1a:84:08:1e:b7:68:
#                    23:ee:23:d5:70:ce:6d:51:69:10:ee:a1:7a:c2:d1:
#                    22:31:c2:82:85:d2:f2:55:76:50:7c:25:7a:c9:84:
#                    5c:0b:ac:dd:42:4e:2b:e7:82:a2:24:89:cb:90:b2:
#                    d0:ee:23:ba:66:4c:bb:62:a4:f9:53:5a:64:7b:7c:
#                    98:fa:a3:48:9e:0f:95:ae:a7:18:f4:6a:ec:2e:03:
#                    45:af:f0:74:f8:2a:cd:7a:5d:d1:be:44:26:32:29:
#                    f1:f1:f5:6c:cc:7e:02:21:0b:9f:6f:a4:3f:be:9d:
#                    53:e2:cf:7d:a9:2c:7c:58:1a:97:e1:3d:37:37:18:
#                    66:28:d2:40:c5:51:8a:8c:c3:2d:ce:53:88:24:58:
#                    64:30:16:c5:aa:e0:d6:0a:a6:40:df:78:f6:f5:04:
#                    7c:69:13:84:bc:d1:d1:a7:06:cf:01:f7:68:c0:a8:
#                    57:bb:3a:61:ad:04:8c:93:e3:ad:fc:f0:db:44:6d:
#                    59:dc:49:59:ae:ac:9a:99:36:30:41:7b:76:33:22:
#                    87:a3:c2:92:86:6e:f9:70:ee:ae:87:87:95:1b:c4:
#                    7a:bd:31:f3:d4:d2:e5:99:ff:be:48:ec:75:f5:78:
#                    16:1d:a6:70:c1:7f:3c:1b:a1:92:fb:cf:c8:3c:d6:
#                    c5:93:0a:8f:f5:55:3a:76:95:ce:59:98:8a:09:95:
#                    77:32:9a:83:ba:2c:04:3a:97:bd:d4:2f:be:d7:6c:
#                    9b:a2:ca:7d:6d:26:c9:55:d5:cf:c3:79:52:08:09:
#                    99:07:24:2d:64:25:6b:a6:21:69:9b:6a:dd:74:4d:
#                    6b:97:7a:41:bd:ab:17:f9:90:17:48:8f:36:f9:2d:
#                    d5:c5:db:ee:aa:85:45:41:fa:cd:3a:45:b1:68:e6:
#                    36:4c:9b:90:57:ec:23:b9:87:08:c2:c4:09:f1:97:
#                    86:2a:28:4d:e2:74:c0:da:c4:8c:db:df:e2:a1:17:
#                    59:ce:24:59:74:31:da:7f:fd:30:6d:d9:dc:e1:6a:
#                    e1:fc:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                18:87:56:E0:6E:77:EE:24:35:3C:4E:73:9A:1F:D6:E1:E2:79:7E:2B
#            X509v3 Authority Key Identifier: 
#                keyid:18:87:56:E0:6E:77:EE:24:35:3C:4E:73:9A:1F:D6:E1:E2:79:7E:2B
#
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: https://wwww.certigna.fr/autorites/
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.certigna.fr/certignarootca.crl
#
#                Full Name:
#                  URI:http://crl.dhimyotis.com/certignarootca.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         94:b8:9e:4f:f0:e3:95:08:22:e7:cd:68:41:f7:1c:55:d5:7c:
#         00:e2:2d:3a:89:5d:68:38:2f:51:22:0b:4a:8d:cb:e9:bb:5d:
#         3e:bb:5c:3d:b1:28:fe:e4:53:55:13:cf:a1:90:1b:02:1d:5f:
#         66:46:09:33:28:e1:0d:24:97:70:d3:10:1f:ea:64:57:96:bb:
#         5d:da:e7:c4:8c:4f:4c:64:46:1d:5c:87:e3:59:de:42:d1:9b:
#         a8:7e:a6:89:dd:8f:1c:c9:30:82:ed:3b:9c:cd:c0:e9:19:e0:
#         6a:d8:02:75:37:ab:f7:34:28:28:91:f2:04:0a:4f:35:e3:60:
#         26:01:fa:d0:11:8c:f9:11:6a:ee:af:3d:c3:50:d3:8f:5f:33:
#         79:3c:86:a8:73:45:90:8c:20:b6:72:73:17:23:be:07:65:e5:
#         78:92:0d:ba:01:c0:eb:8c:1c:66:bf:ac:86:77:01:94:0d:9c:
#         e6:e9:39:8d:1f:a6:51:8c:99:0c:39:77:e1:b4:9b:fa:1c:67:
#         57:6f:6a:6a:8e:a9:2b:4c:57:79:7a:57:22:cf:cd:5f:63:46:
#         8d:5c:59:3a:86:f8:32:47:62:a3:67:0d:18:91:dc:fb:a6:6b:
#         f5:48:61:73:23:59:8e:02:a7:bc:44:ea:f4:49:9d:f1:54:58:
#         f9:60:af:da:18:a4:2f:28:45:dc:7a:a0:88:86:5d:f3:3b:e7:
#         ff:29:35:80:fc:64:43:94:e6:e3:1c:6f:be:ad:0e:2a:63:99:
#         2b:c9:7e:85:f6:71:e8:06:03:95:fe:de:8f:48:1c:5a:d4:92:
#         e8:2b:ee:e7:31:db:ba:04:6a:87:98:e7:c5:5f:ef:7d:a7:22:
#         f7:01:d8:4d:f9:89:d0:0e:9a:05:59:a4:9e:98:d9:6f:2b:ca:
#         70:be:64:c2:55:a3:f4:e9:af:c3:92:29:dc:88:16:24:99:3c:
#         8d:26:98:b6:5b:b7:cc:ce:b7:37:07:fd:26:d9:98:85:24:ff:
#         59:23:03:9a:ed:9d:9d:a8:e4:5e:38:ce:d7:52:0d:6f:d2:3f:
#         6d:b1:05:6b:49:ce:8a:91:46:73:f4:f6:2f:f0:a8:73:77:0e:
#         65:ac:a1:8d:66:52:69:7e:4b:68:0c:c7:1e:37:27:83:a5:8c:
#         c7:02:e4:14:cd:49:01:b0:73:b3:fd:c6:90:3a:6f:d2:6c:ed:
#         3b:ee:ec:91:be:a2:43:5d:8b:00:4a:66:25:44:70:de:40:0f:
#         f8:7c:15:f7:a2:ce:3c:d7:5e:13:8c:81:17:18:17:d1:bd:f1:
#         77:10:3a:d4:65:39:c1:27:ac:57:2c:25:54:ff:a2:da:4f:8a:
#         61:39:5e:ae:3d:4a:8c:bd

[p11-kit-object-v1]
label: "Certinomis - Autorité Racine"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certinomis - Autorité Racine"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=FR, O=Certinomis, OU=0002 433998903, CN=Certinomis - Autorit\xC3\xA9 Racine
#        Validity
#            Not Before: Sep 17 08:28:59 2008 GMT
#            Not After : Sep 17 08:28:59 2028 GMT
#        Subject: C=FR, O=Certinomis, OU=0002 433998903, CN=Certinomis - Autorit\xC3\xA9 Racine
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9d:85:9f:86:d3:e3:af:c7:b2:6b:6e:33:e0:9e:
#                    b7:42:34:55:9d:f9:81:be:63:d8:23:76:0e:97:54:
#                    cd:99:4c:1a:f1:39:c7:88:d8:17:50:0c:9e:61:da:
#                    c0:4e:55:de:e7:5a:b8:7a:4e:77:87:0d:e5:b8:eb:
#                    fa:9e:5e:7b:1e:c4:cf:28:74:c7:93:f5:14:c6:22:
#                    28:04:f9:91:c3:ab:27:73:6a:0e:2e:4d:f3:2e:28:
#                    1f:70:df:55:2f:4e:ed:c7:71:6f:09:72:2e:ed:d5:
#                    32:97:d0:f1:58:77:d1:60:bc:4e:5e:db:9a:84:f6:
#                    47:61:45:2b:f6:50:a6:7f:6a:71:27:48:84:35:9e:
#                    ac:fe:69:a9:9e:7a:5e:35:25:fa:b4:a7:49:35:77:
#                    96:a7:36:5b:e1:cd:df:23:70:d8:5d:4c:a5:08:83:
#                    f1:a6:24:38:13:a8:ec:2f:a8:a1:67:c7:a6:2d:86:
#                    47:ee:8a:fc:ec:9b:0e:74:f4:2b:49:02:7b:90:75:
#                    8c:fc:99:39:01:39:d6:4a:89:e5:9e:76:ab:3e:96:
#                    28:38:26:8b:dd:8d:8c:c0:f6:01:1e:6f:a5:31:12:
#                    38:7d:95:c2:71:ee:ed:74:ae:e4:36:a2:43:75:d5:
#                    f1:00:9b:e2:e4:d7:cc:42:03:4b:78:7a:e5:7d:bb:
#                    b8:ae:2e:20:93:d3:e4:61:df:71:e1:76:67:97:3f:
#                    b6:df:6a:73:5a:64:22:e5:42:db:cf:81:03:93:d8:
#                    f4:e3:10:e0:72:f6:00:70:ac:f0:c1:7a:0f:05:7f:
#                    cf:34:69:45:b5:93:e4:19:db:52:16:23:05:89:0e:
#                    8d:48:e4:25:6f:b3:78:bf:62:f5:07:fa:95:24:c2:
#                    96:b2:e8:a3:23:c2:5d:03:fc:c3:d3:e5:7c:c9:75:
#                    23:d7:f4:f5:bc:de:e4:df:cd:80:bf:91:88:7d:a7:
#                    13:b4:39:ba:2c:ba:bd:d1:6b:cc:f3:a5:28:ed:44:
#                    9e:7d:52:a3:6f:96:2e:19:7e:1c:f3:5b:c7:16:8e:
#                    bb:60:7d:77:66:47:54:82:00:11:60:6c:32:c1:a8:
#                    38:1b:eb:6e:98:13:d6:ee:38:f5:f0:9f:0e:ef:fe:
#                    31:81:c1:d2:24:95:2f:53:7a:69:a2:f0:0f:86:45:
#                    8e:58:82:2b:4c:22:d4:5e:a0:e7:7d:26:27:48:df:
#                    25:46:8d:4a:28:7c:86:9e:f9:9b:1a:59:b9:65:bf:
#                    05:dd:b6:42:5d:3d:e6:00:48:82:5e:20:f7:11:82:
#                    de:ca:d8:9f:e6:37:47:26:1e:eb:78:f7:61:c3:41:
#                    64:58:02:41:f9:da:e0:d1:f8:f9:e8:fd:52:38:b6:
#                    f5:89:df
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                0D:8C:B6:61:DA:44:B8:D1:14:7D:C3:BE:7D:5E:48:F0:CE:CA:6A:B0
#            X509v3 Certificate Policies: 
#                Policy: 1.2.250.1.86.2.2.0.1.1
#
#    Signature Algorithm: sha1WithRSAEncryption
#         24:3e:60:06:7e:1d:ef:3a:3e:db:ea:af:1c:9a:2c:01:0b:f4:
#         c5:b5:d9:49:31:f4:5d:41:8d:89:0c:4e:ff:6c:a2:fd:ff:e2:
#         06:c8:39:9f:f1:5a:a9:dd:22:58:15:a8:8a:d3:b1:e6:32:09:
#         82:03:6c:d7:3f:08:c7:f8:b9:ba:00:6d:b9:d6:fc:52:32:5d:
#         a4:7f:a4:31:94:bb:b6:4c:38:7f:28:30:35:ff:9f:23:53:b7:
#         b6:ee:14:70:00:40:2b:da:47:ab:34:7e:5e:a7:56:30:61:2b:
#         8b:43:ac:fd:b6:88:28:f5:6b:b6:3e:60:4a:ba:42:90:34:67:
#         8d:ea:eb:5f:45:54:3b:17:ac:8b:e4:c6:65:0f:ee:d0:8c:5d:
#         66:39:ce:32:a7:d8:10:97:c0:7e:34:9c:9f:94:f3:f6:86:1f:
#         cf:1b:73:ad:94:79:87:68:70:c3:33:a5:70:e7:d8:d5:38:94:
#         6f:63:79:eb:bf:0a:0e:08:e7:c5:2f:0f:42:a0:2b:14:40:ff:
#         21:e0:05:c5:27:e1:84:11:13:ba:d6:86:1d:41:0b:13:23:89:
#         d3:c9:0b:e8:8a:ba:7a:a3:a3:73:37:35:80:7d:12:b8:33:77:
#         40:38:c0:fa:5e:30:d2:f2:b6:a3:b1:d6:a2:95:97:81:9b:52:
#         ed:69:4c:ff:80:e4:53:db:54:5b:03:6d:54:5f:b1:b8:ef:24:
#         bd:6f:9f:11:c3:c7:64:c2:0f:28:62:85:66:5e:1a:7b:b2:b7:
#         ef:ae:35:c9:19:33:a8:b8:27:db:33:55:bf:68:e1:75:48:44:
#         56:fb:cd:d3:48:bb:47:89:3a:ac:69:f5:80:c6:e4:44:50:2f:
#         54:c4:aa:43:c5:31:31:58:bd:96:c5:ea:75:6c:9a:75:b1:4d:
#         f8:f7:97:ff:96:16:f2:97:4d:e8:f6:f3:11:f9:3a:7d:8a:38:
#         6e:04:cb:e1:d3:45:15:aa:a5:d1:1d:9d:5d:63:e8:24:e6:36:
#         14:e2:87:ad:1b:59:f5:44:9b:fb:d7:77:7c:1f:01:70:62:a1:
#         20:1a:a2:c5:1a:28:f4:21:03:ee:2e:d9:c1:80:ea:b9:d9:82:
#         d6:5b:76:c2:cb:3b:b5:d2:00:f0:a3:0e:e1:ad:6e:40:f7:db:
#         a0:b4:d0:46:ae:15:d7:44:c2:4d:35:f9:d2:0b:f2:17:f6:ac:
#         66:d5:24:b2:4f:d1:1c:99:c0:6e:f5:7d:eb:74:04:b8:f9:4d:
#         77:09:d7:b4:cf:07:30:09:f1:b8:00:56:d9:17:16:16:0a:2b:
#         86:df:8f:01:19:1a:e5:bb:82:63:ff:be:0b:76:16:5e:37:37:
#         e6:d8:74:97:a2:99:45:79

[p11-kit-object-v1]
label: "Certipost E-Trust TOP Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApdRLQNb78TUYO6KwQ+TJ
VaHAB7sIvjoZtSPDHp2zCEr0Q0vpwRlgkN+E11jGOt0KLJUsvZd//qJ12gbjq5ts
0bjPRIbBUmC33D47sPLpxFE8SrmDuU5hagObHFKAOlC0ILLb07LGVH/LYJvIJJ6v
CcdlDSj22poiwjNu8vMl1KT5lvVvqjxr3EEw5eZvykgfMHgdeX2n0b+uxV5D+cYv
g3abNEqkKFgrqIiFRGor8lZCdpmQM6ru+SHP8j35d4TL3SmExNSKKqQ5XD75HCVo
TfXnm12xGjReygJz+QjEDG1e3RIq5XvFNnhSnTLBxSilIKjlmA25b8+5gJ7lvrmb
/QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certipost E-Trust TOP Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:05:52:64:c1:95
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=BE, O=Certipost s.a./n.v., CN=Certipost E-Trust TOP Root CA
#        Validity
#            Not Before: Jul 26 10:00:00 2005 GMT
#            Not After : Jul 26 10:00:00 2025 GMT
#        Subject: C=BE, O=Certipost s.a./n.v., CN=Certipost E-Trust TOP Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a5:d4:4b:40:d6:fb:f1:35:18:3b:a2:b0:43:e4:
#                    c9:55:a1:c0:07:bb:08:be:3a:19:b5:23:c3:1e:9d:
#                    b3:08:4a:f4:43:4b:e9:c1:19:60:90:df:84:d7:58:
#                    c6:3a:dd:0a:2c:95:2c:bd:97:7f:fe:a2:75:da:06:
#                    e3:ab:9b:6c:d1:b8:cf:44:86:c1:52:60:b7:dc:3e:
#                    3b:b0:f2:e9:c4:51:3c:4a:b9:83:b9:4e:61:6a:03:
#                    9b:1c:52:80:3a:50:b4:20:b2:db:d3:b2:c6:54:7f:
#                    cb:60:9b:c8:24:9e:af:09:c7:65:0d:28:f6:da:9a:
#                    22:c2:33:6e:f2:f3:25:d4:a4:f9:96:f5:6f:aa:3c:
#                    6b:dc:41:30:e5:e6:6f:ca:48:1f:30:78:1d:79:7d:
#                    a7:d1:bf:ae:c5:5e:43:f9:c6:2f:83:76:9b:34:4a:
#                    a4:28:58:2b:a8:88:85:44:6a:2b:f2:56:42:76:99:
#                    90:33:aa:ee:f9:21:cf:f2:3d:f9:77:84:cb:dd:29:
#                    84:c4:d4:8a:2a:a4:39:5c:3e:f9:1c:25:68:4d:f5:
#                    e7:9b:5d:b1:1a:34:5e:ca:02:73:f9:08:c4:0c:6d:
#                    5e:dd:12:2a:e5:7b:c5:36:78:52:9d:32:c1:c5:28:
#                    a5:20:a8:e5:98:0d:b9:6f:cf:b9:80:9e:e5:be:b9:
#                    9b:fd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4B:DE:BE:05:31:2E:F3:35:C8:D8:CA:A7:56:C5:94:0D:B4:5A:65:C5
#            X509v3 Certificate Policies: 
#                Policy: 0.3.2062.7.1.0.1.2.0
#                  CPS: http://www.e-trust.be/CPS/QNcerts 
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#    Signature Algorithm: sha1WithRSAEncryption
#         89:63:cc:a2:ce:f8:54:6a:7c:59:34:78:ab:01:b4:96:2d:2a:
#         21:6e:40:2d:5f:d0:96:22:99:83:05:1c:e5:24:cd:e2:f5:35:
#         04:bf:00:96:07:ec:b2:a4:3a:6a:2b:23:3e:c9:0f:ca:13:1d:
#         b8:24:96:09:26:d8:3c:2a:81:ce:e1:81:c8:c9:73:3e:f5:bb:
#         0f:08:1e:90:e0:b0:92:b9:d2:3a:97:50:e0:06:8e:e4:82:30:
#         3c:60:20:b7:a4:ee:ab:89:06:e1:fc:25:bb:91:d4:f9:b7:5f:
#         68:63:a8:a0:68:86:6b:a7:ec:92:cb:22:fa:50:5b:13:58:27:
#         ae:2b:43:0b:b6:17:c6:30:72:04:33:44:26:4a:44:07:1f:73:
#         a0:83:41:29:e0:92:06:bc:d5:01:ea:fe:bc:af:71:eb:20:1f:
#         0a:5d:0d:a0:29:5e:ce:e4:41:51:55:96:c3:1f:b4:31:a5:a3:
#         f3:53:ea:ff:c2:9c:86:72:cf:36:4c:56:5a:06:32:7e:5e:ab:
#         4a:a1:ce:a7:eb:9f:a4:8c:2a:b9:24:8b:b8:b5:f3:06:4d:a6:
#         ca:7d:99:fb:f6:55:ea:ae:48:79:ee:26:59:d3:1f:0c:53:15:
#         f7:62:51:f9:84:0d:96:6c:5e:b1:08:e6:59:08:2b:26:29:0a:
#         c1:83:40:73

[p11-kit-object-v1]
label: "Certplus Root CA G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA2lCHttq4qT6dZPpWM5pW
PRblA5WyNByabWIF1NiP54lkn7rbZItk5nkqYc2vj1qJkWW5WPy0A1+RPy0QFeB+
z7z8f0NnqK1eNiPYmLNN80OeOXwq/OyI1YjucL2FFi3qS4k8o3FC/hz90xwtELiG
VOpDuNvGh9qoroAlz3omHaqRsEhvrrXentjX+gD9xo/QUbtifaSxjLL/IBG6NWMF
hkdgQzOQ9keiA0+WTZ1PwerqnKL+NC7et8obdqS3rZ/pqNR4P3j+8jgJNh3SFgLI
7Cpor/WOlO8tE3oeQkodFTGuDARX/GFz8zFWhjGAoMQRbjB245TwXwTErIdyiZjF
ncxXCJr0DPx9egU6+keAObbPhBN3byfq/5ZnFwht6Q3WI1AwsBV0Ez7lL/8OzcQL
Sl3w2AAzSWbroRh8WS49KLlhccu1pbq46tzicG8IatyHZzTv3zBy3fPJPyP/NeG+
ISkgMIHkGaUg6SXKczF0Kb7iQtXzsiZmx2j9GbPnIJOZ6F3gXofnRuglnAopJNTN
WIZSQCSyew+YEiAk9pBsR8gNuxggLtn9/IvyKeqHdJXgQlB4hARBYbD0ISOPLcso
IfJqbPQapsUUtDdlT5X9gMj4cuUla8RgsXttjkqKc85Z+3B6cwYT2dN0NyRBChFv
l9zn5H6hvRXyuocPPWiKFgcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certplus Root CA G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFazCCA1OgAwIBAgISESBVg+QtPlRWhS2DN7cs3EYRMA0GCSqGSIb3DQEBDQUA
MD4xCzAJBgNVBAYTAkZSMREwDwYDVQQKDAhDZXJ0cGx1czEcMBoGA1UEAwwTQ2Vy
dHBsdXMgUm9vdCBDQSBHMTAeFw0xNDA1MjYwMDAwMDBaFw0zODAxMTUwMDAwMDBa
MD4xCzAJBgNVBAYTAkZSMREwDwYDVQQKDAhDZXJ0cGx1czEcMBoGA1UEAwwTQ2Vy
dHBsdXMgUm9vdCBDQSBHMTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB
ANpQh7bauKk+nWT6VjOaVj0W5QOVsjQcmm1iBdTYj+eJZJ+622SLZOZ5KmHNr49a
iZFluVj8tANfkT8tEBXgfs+8/H9DZ6itXjYj2JizTfNDnjl8KvzsiNWI7nC9hRYt
6kuJPKNxQv4c/dMcLRC4hlTqQ7jbxofaqK6AJc96Jh2qkbBIb6613p7Y1/oA/caP
0FG7Yn2ksYyy/yARujVjBYZHYEMzkPZHogNPlk2dT8Hq6pyi/jQu3rfKG3akt62f
6ajUeD94/vI4CTYd0hYCyOwqaK/1jpTvLRN6HkJKHRUxrgwEV/xhc/MxVoYxgKDE
EW4wduOU8F8ExKyHcomYxZ3MVwia9Az8fXoFOvpHgDm2z4QTd28n6v+WZxcIbekN
1iNQMLAVdBM+5S//Ds3EC0pd8NgAM0lm66EYfFkuPSi5YXHLtaW6uOrc4nBvCGrc
h2c0798wct3zyT8j/zXhviEpIDCB5BmlIOklynMxdCm+4kLV87ImZsdo/Rmz5yCT
mehd4F6H50boJZwKKSTUzViGUkAksnsPmBIgJPaQbEfIDbsYIC7Z/fyL8inqh3SV
4EJQeIQEQWGw9CEjjy3LKCHyamz0GqbFFLQ3ZU+V/YDI+HLlJWvEYLF7bY5KinPO
WftwenMGE9nTdDckQQoRb5fc5+R+ob0V8rqHDz1oihYHAgMBAAGjYzBhMA4GA1Ud
DwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBSowcCbkahDFXxd
Bie0KlHYlwuBsTAfBgNVHSMEGDAWgBSowcCbkahDFXxdBie0KlHYlwuBsTANBgkq
hkiG9w0BAQ0FAAOCAgEAnFZvAX7RvUz1isbwJh/k4DgYzDLDKTudQSk0YcbX8ACh
66Ryj5QXvBMsdbRX7gp8CXrc1cqh0DQT+Hern+X+2B50ioUHj3/MeXrKls3N/U/7
/SMNkPX0XtPGYX2eEeAC7gkE2Qfdpoq3DIMku4NQkv5gdRE+2J2winq14J2by5BS
S7CTKtQ+FjPlnsZlFT5kOwQ/2wyPX1wdaR+v8+khjPPvl/aatxm2hHSco1S1cE5j
2FddUyGbQJJD+tZ3VTNPZNX70Cxqjm0lpu+F6ALEUz65noe8zDUa3qHpimOHZR4R
Kttjd5cUvpoUmRGywO6wT/gUITJDT5+rosuoD6o7BlXGEilXCNQ314cnrUlZp5Gr
RHpejXDbl85IULFzk/bwg2D5zfHhMf1bfHEhYxQUqq/F3pN+aLHsIqKqkHWetUNy
6mSjhEv9DKgma3GX7lZjZuhCVPnHHd/Qj1vfyDBviP4NxDMcU6ij/UgQ8uQKTuEV
V/xuZDDCVRHc6qnNSlSsKWNEz0pAoNZoWRsz+e86i9sgktxChL8Bq4fA1SCC28a5
g4VCXA9DO2pJNdWY9BW/+mGBDAkgGNLQFwzLSABQ6XaCjGTXOqAHVcweMcDvOrRl
++O/QmueD6i9a5jc2NvLi6Td11n0bt3+qsOR0C5CB8AMTVPNJLFMWx5R9N/pkvo=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:55:83:e4:2d:3e:54:56:85:2d:83:37:b7:2c:dc:46:11
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=FR, O=Certplus, CN=Certplus Root CA G1
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C=FR, O=Certplus, CN=Certplus Root CA G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:da:50:87:b6:da:b8:a9:3e:9d:64:fa:56:33:9a:
#                    56:3d:16:e5:03:95:b2:34:1c:9a:6d:62:05:d4:d8:
#                    8f:e7:89:64:9f:ba:db:64:8b:64:e6:79:2a:61:cd:
#                    af:8f:5a:89:91:65:b9:58:fc:b4:03:5f:91:3f:2d:
#                    10:15:e0:7e:cf:bc:fc:7f:43:67:a8:ad:5e:36:23:
#                    d8:98:b3:4d:f3:43:9e:39:7c:2a:fc:ec:88:d5:88:
#                    ee:70:bd:85:16:2d:ea:4b:89:3c:a3:71:42:fe:1c:
#                    fd:d3:1c:2d:10:b8:86:54:ea:43:b8:db:c6:87:da:
#                    a8:ae:80:25:cf:7a:26:1d:aa:91:b0:48:6f:ae:b5:
#                    de:9e:d8:d7:fa:00:fd:c6:8f:d0:51:bb:62:7d:a4:
#                    b1:8c:b2:ff:20:11:ba:35:63:05:86:47:60:43:33:
#                    90:f6:47:a2:03:4f:96:4d:9d:4f:c1:ea:ea:9c:a2:
#                    fe:34:2e:de:b7:ca:1b:76:a4:b7:ad:9f:e9:a8:d4:
#                    78:3f:78:fe:f2:38:09:36:1d:d2:16:02:c8:ec:2a:
#                    68:af:f5:8e:94:ef:2d:13:7a:1e:42:4a:1d:15:31:
#                    ae:0c:04:57:fc:61:73:f3:31:56:86:31:80:a0:c4:
#                    11:6e:30:76:e3:94:f0:5f:04:c4:ac:87:72:89:98:
#                    c5:9d:cc:57:08:9a:f4:0c:fc:7d:7a:05:3a:fa:47:
#                    80:39:b6:cf:84:13:77:6f:27:ea:ff:96:67:17:08:
#                    6d:e9:0d:d6:23:50:30:b0:15:74:13:3e:e5:2f:ff:
#                    0e:cd:c4:0b:4a:5d:f0:d8:00:33:49:66:eb:a1:18:
#                    7c:59:2e:3d:28:b9:61:71:cb:b5:a5:ba:b8:ea:dc:
#                    e2:70:6f:08:6a:dc:87:67:34:ef:df:30:72:dd:f3:
#                    c9:3f:23:ff:35:e1:be:21:29:20:30:81:e4:19:a5:
#                    20:e9:25:ca:73:31:74:29:be:e2:42:d5:f3:b2:26:
#                    66:c7:68:fd:19:b3:e7:20:93:99:e8:5d:e0:5e:87:
#                    e7:46:e8:25:9c:0a:29:24:d4:cd:58:86:52:40:24:
#                    b2:7b:0f:98:12:20:24:f6:90:6c:47:c8:0d:bb:18:
#                    20:2e:d9:fd:fc:8b:f2:29:ea:87:74:95:e0:42:50:
#                    78:84:04:41:61:b0:f4:21:23:8f:2d:cb:28:21:f2:
#                    6a:6c:f4:1a:a6:c5:14:b4:37:65:4f:95:fd:80:c8:
#                    f8:72:e5:25:6b:c4:60:b1:7b:6d:8e:4a:8a:73:ce:
#                    59:fb:70:7a:73:06:13:d9:d3:74:37:24:41:0a:11:
#                    6f:97:dc:e7:e4:7e:a1:bd:15:f2:ba:87:0f:3d:68:
#                    8a:16:07
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A8:C1:C0:9B:91:A8:43:15:7C:5D:06:27:B4:2A:51:D8:97:0B:81:B1
#            X509v3 Authority Key Identifier: 
#                keyid:A8:C1:C0:9B:91:A8:43:15:7C:5D:06:27:B4:2A:51:D8:97:0B:81:B1
#
#    Signature Algorithm: sha512WithRSAEncryption
#         9c:56:6f:01:7e:d1:bd:4c:f5:8a:c6:f0:26:1f:e4:e0:38:18:
#         cc:32:c3:29:3b:9d:41:29:34:61:c6:d7:f0:00:a1:eb:a4:72:
#         8f:94:17:bc:13:2c:75:b4:57:ee:0a:7c:09:7a:dc:d5:ca:a1:
#         d0:34:13:f8:77:ab:9f:e5:fe:d8:1e:74:8a:85:07:8f:7f:cc:
#         79:7a:ca:96:cd:cd:fd:4f:fb:fd:23:0d:90:f5:f4:5e:d3:c6:
#         61:7d:9e:11:e0:02:ee:09:04:d9:07:dd:a6:8a:b7:0c:83:24:
#         bb:83:50:92:fe:60:75:11:3e:d8:9d:b0:8a:7a:b5:e0:9d:9b:
#         cb:90:52:4b:b0:93:2a:d4:3e:16:33:e5:9e:c6:65:15:3e:64:
#         3b:04:3f:db:0c:8f:5f:5c:1d:69:1f:af:f3:e9:21:8c:f3:ef:
#         97:f6:9a:b7:19:b6:84:74:9c:a3:54:b5:70:4e:63:d8:57:5d:
#         53:21:9b:40:92:43:fa:d6:77:55:33:4f:64:d5:fb:d0:2c:6a:
#         8e:6d:25:a6:ef:85:e8:02:c4:53:3e:b9:9e:87:bc:cc:35:1a:
#         de:a1:e9:8a:63:87:65:1e:11:2a:db:63:77:97:14:be:9a:14:
#         99:11:b2:c0:ee:b0:4f:f8:14:21:32:43:4f:9f:ab:a2:cb:a8:
#         0f:aa:3b:06:55:c6:12:29:57:08:d4:37:d7:87:27:ad:49:59:
#         a7:91:ab:44:7a:5e:8d:70:db:97:ce:48:50:b1:73:93:f6:f0:
#         83:60:f9:cd:f1:e1:31:fd:5b:7c:71:21:63:14:14:aa:af:c5:
#         de:93:7e:68:b1:ec:22:a2:aa:90:75:9e:b5:43:72:ea:64:a3:
#         84:4b:fd:0c:a8:26:6b:71:97:ee:56:63:66:e8:42:54:f9:c7:
#         1d:df:d0:8f:5b:df:c8:30:6f:88:fe:0d:c4:33:1c:53:a8:a3:
#         fd:48:10:f2:e4:0a:4e:e1:15:57:fc:6e:64:30:c2:55:11:dc:
#         ea:a9:cd:4a:54:ac:29:63:44:cf:4a:40:a0:d6:68:59:1b:33:
#         f9:ef:3a:8b:db:20:92:dc:42:84:bf:01:ab:87:c0:d5:20:82:
#         db:c6:b9:83:85:42:5c:0f:43:3b:6a:49:35:d5:98:f4:15:bf:
#         fa:61:81:0c:09:20:18:d2:d0:17:0c:cb:48:00:50:e9:76:82:
#         8c:64:d7:3a:a0:07:55:cc:1e:31:c0:ef:3a:b4:65:fb:e3:bf:
#         42:6b:9e:0f:a8:bd:6b:98:dc:d8:db:cb:8b:a4:dd:d7:59:f4:
#         6e:dd:fe:aa:c3:91:d0:2e:42:07:c0:0c:4d:53:cd:24:b1:4c:
#         5b:1e:51:f4:df:e9:92:fa

[p11-kit-object-v1]
label: "Certplus Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEzQ9bVoLf8EUa1q33efAdyayW1p5OnB+0
QhHKhr9t+4WjxeUZXNfupj9pZ9h44qbJxNsteS7ni40CbzEiTQbjYHJFnQ5Cd57O
z+V/hZsY5PzMLnLTFpNOypljXKEFKmwG
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certplus Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:d9:91:ce:ae:a3:e8:c5:e7:ff:e9:02:af:cf:73:bc:55
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=FR, O=Certplus, CN=Certplus Root CA G2
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C=FR, O=Certplus, CN=Certplus Root CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:cd:0f:5b:56:82:df:f0:45:1a:d6:ad:f7:79:f0:
#                    1d:c9:ac:96:d6:9e:4e:9c:1f:b4:42:11:ca:86:bf:
#                    6d:fb:85:a3:c5:e5:19:5c:d7:ee:a6:3f:69:67:d8:
#                    78:e2:a6:c9:c4:db:2d:79:2e:e7:8b:8d:02:6f:31:
#                    22:4d:06:e3:60:72:45:9d:0e:42:77:9e:ce:cf:e5:
#                    7f:85:9b:18:e4:fc:cc:2e:72:d3:16:93:4e:ca:99:
#                    63:5c:a1:05:2a:6c:06
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DA:83:63:02:79:8E:DA:4C:C6:3C:23:14:D8:8F:C3:20:AB:28:60:59
#            X509v3 Authority Key Identifier: 
#                keyid:DA:83:63:02:79:8E:DA:4C:C6:3C:23:14:D8:8F:C3:20:AB:28:60:59
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:70:fe:b0:0b:d9:f7:83:97:ec:f3:55:1d:d4:dc:
#         b3:06:0e:fe:33:98:9d:8b:39:90:6b:94:21:ed:b6:d7:5d:d6:
#         4c:d7:21:a7:e7:bf:21:0f:2b:cd:f7:2a:dc:85:07:9d:02:31:
#         00:86:14:16:e5:dc:b0:65:c2:c0:8e:14:9f:bf:24:16:68:e5:
#         bc:f9:79:69:dc:ad:45:2b:f7:b6:31:73:cc:06:a5:53:93:91:
#         1a:93:ae:70:6a:67:ba:d7:9e:e5:61:1a:5f

[p11-kit-object-v1]
label: "Certum EC-384 CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAExCiOqxhbar5uZDdj5M3sqzr3zKG4DoJJ
14Ypn6GU8uNgeJiBeAZN8uyaDldgg5+05hcvGrNdAluJIzzCEQUqp4gTGPNQhNe9
NCwniVX/zkzn36YfKMTwVMO5fLdTrevC
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum EC-384 CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            78:8f:27:5c:81:12:52:20:a5:04:d0:2d:dd:ba:73:f4
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=PL, O=Asseco Data Systems S.A., OU=Certum Certification Authority, CN=Certum EC-384 CA
#        Validity
#            Not Before: Mar 26 07:24:54 2018 GMT
#            Not After : Mar 26 07:24:54 2043 GMT
#        Subject: C=PL, O=Asseco Data Systems S.A., OU=Certum Certification Authority, CN=Certum EC-384 CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:c4:28:8e:ab:18:5b:6a:be:6e:64:37:63:e4:cd:
#                    ec:ab:3a:f7:cc:a1:b8:0e:82:49:d7:86:29:9f:a1:
#                    94:f2:e3:60:78:98:81:78:06:4d:f2:ec:9a:0e:57:
#                    60:83:9f:b4:e6:17:2f:1a:b3:5d:02:5b:89:23:3c:
#                    c2:11:05:2a:a7:88:13:18:f3:50:84:d7:bd:34:2c:
#                    27:89:55:ff:ce:4c:e7:df:a6:1f:28:c4:f0:54:c3:
#                    b9:7c:b7:53:ad:eb:c2
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8D:06:66:74:24:76:3A:F3:89:F7:BC:D6:BD:47:7D:2F:BC:10:5F:4B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:03:55:2d:a6:e6:18:c4:7c:ef:c9:50:6e:c1:27:
#         0f:9c:87:af:6e:d5:1b:08:18:bd:92:29:c1:ef:94:91:78:d2:
#         3a:1c:55:89:62:e5:1b:09:1e:ba:64:6b:f1:76:b4:d4:02:31:
#         00:b4:42:84:99:ff:ab:e7:9e:fb:91:97:27:5d:dc:b0:5b:30:
#         71:ce:5e:38:1a:6a:d9:25:e7:ea:f7:61:92:56:f8:ea:da:36:
#         c2:87:65:96:2e:72:25:2f:7f:df:c3:13:c9

[p11-kit-object-v1]
label: "Certum Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzrHBLtNPfM0lzhg+T8SM
b4Bqc8hbUfib0ty7AFyxoPx1A+6B8IjuI1Lp5hUzjawtCcV2+Ss5gInkl0uQpah4
+HNDe6RhsNhYzOFsZn6c8wleVWOE1ajv87EuMGizxDzYrG6NmVqQTjTcNpqPgYhQ
t22WQgnz15WDDUFLsGpr+PwPfmKfZ8TtJl8QJg8IT/CkVyjOj7jtRfZu7iVdqm45
vuSTL9lHoHLr+qZbr8pTP+IOxpZWEW736WapJth/lVPtCoWIuk8ppUKMXrb8hSAA
qmgLoRqFAZzERmOCiLYise7+qkZZfs81LNW22l33SDMUVLbr2W/OzYjWqxvaljsd
WQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDDDCCAfSgAwIBAgIDAQAgMA0GCSqGSIb3DQEBBQUAMD4xCzAJBgNVBAYTAlBM
MRswGQYDVQQKExJVbml6ZXRvIFNwLiB6IG8uby4xEjAQBgNVBAMTCUNlcnR1bSBD
QTAeFw0wMjA2MTExMDQ2MzlaFw0yNzA2MTExMDQ2MzlaMD4xCzAJBgNVBAYTAlBM
MRswGQYDVQQKExJVbml6ZXRvIFNwLiB6IG8uby4xEjAQBgNVBAMTCUNlcnR1bSBD
QTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAM6xwS7TT3zNJc4YPk/E
jG+AanPIW1H4m9LcuwBcsaD8dQPugfCI7iNS6eYVM42sLQnFdvkrOYCJ5JdLkKWo
ePhzQ3ukYbDYWMzhbGZ+nPMJXlVjhNWo7/OxLjBos8Q82KxujZlakE403Daaj4GI
ULdtlkIJ89eVgw1BS7Bqa/j8D35in2fE7SZfECYPCE/wpFcozo+47UX2bu4lXapu
Ob7kky/ZR6By6/qmW6/KUz/iDsaWVhFu9+lmqSbYf5VT7QqFiLpPKaVCjF62/IUg
AKpoC6EahQGcxEZjgoi2IrHu/qpGWX7PNSzVttpd90gzFFS269lvzs2I1qsb2pY7
HVkCAwEAAaMTMBEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEA
uI3O7+cUus/usESSbLQ5PqKEbq24IXfS1HeCh+YgQYHu4vgRt2PRFze+GXYkHAQa
TOs9qmdvLdTN/mUxcMUbpgIKumB7bVjCmkn+YzILa+M6wKyrO7Do0wlRjBCDxjTg
xSvgGrZgFCdsMneMvLJymM/NzD+5yCRCFNZX/OYmQ6kd5YCQzgNUKD73P9P4Te1q
CjqTE5s7FCMTY5w/0YcneeVMUeMBrYVdGjux1XMQpNPyvG5k9VpWkKjHDkx0Dy5x
O/fIR/RpbxXyEV6DHpx8Uq79AtoSqFlnGNu8cN2bsWntgM6JQEhqDjXKKWYVIZQs
6GAqm4VKQPNriiTsBhYscw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 65568 (0x10020)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=PL, O=Unizeto Sp. z o.o., CN=Certum CA
#        Validity
#            Not Before: Jun 11 10:46:39 2002 GMT
#            Not After : Jun 11 10:46:39 2027 GMT
#        Subject: C=PL, O=Unizeto Sp. z o.o., CN=Certum CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ce:b1:c1:2e:d3:4f:7c:cd:25:ce:18:3e:4f:c4:
#                    8c:6f:80:6a:73:c8:5b:51:f8:9b:d2:dc:bb:00:5c:
#                    b1:a0:fc:75:03:ee:81:f0:88:ee:23:52:e9:e6:15:
#                    33:8d:ac:2d:09:c5:76:f9:2b:39:80:89:e4:97:4b:
#                    90:a5:a8:78:f8:73:43:7b:a4:61:b0:d8:58:cc:e1:
#                    6c:66:7e:9c:f3:09:5e:55:63:84:d5:a8:ef:f3:b1:
#                    2e:30:68:b3:c4:3c:d8:ac:6e:8d:99:5a:90:4e:34:
#                    dc:36:9a:8f:81:88:50:b7:6d:96:42:09:f3:d7:95:
#                    83:0d:41:4b:b0:6a:6b:f8:fc:0f:7e:62:9f:67:c4:
#                    ed:26:5f:10:26:0f:08:4f:f0:a4:57:28:ce:8f:b8:
#                    ed:45:f6:6e:ee:25:5d:aa:6e:39:be:e4:93:2f:d9:
#                    47:a0:72:eb:fa:a6:5b:af:ca:53:3f:e2:0e:c6:96:
#                    56:11:6e:f7:e9:66:a9:26:d8:7f:95:53:ed:0a:85:
#                    88:ba:4f:29:a5:42:8c:5e:b6:fc:85:20:00:aa:68:
#                    0b:a1:1a:85:01:9c:c4:46:63:82:88:b6:22:b1:ee:
#                    fe:aa:46:59:7e:cf:35:2c:d5:b6:da:5d:f7:48:33:
#                    14:54:b6:eb:d9:6f:ce:cd:88:d6:ab:1b:da:96:3b:
#                    1d:59
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         b8:8d:ce:ef:e7:14:ba:cf:ee:b0:44:92:6c:b4:39:3e:a2:84:
#         6e:ad:b8:21:77:d2:d4:77:82:87:e6:20:41:81:ee:e2:f8:11:
#         b7:63:d1:17:37:be:19:76:24:1c:04:1a:4c:eb:3d:aa:67:6f:
#         2d:d4:cd:fe:65:31:70:c5:1b:a6:02:0a:ba:60:7b:6d:58:c2:
#         9a:49:fe:63:32:0b:6b:e3:3a:c0:ac:ab:3b:b0:e8:d3:09:51:
#         8c:10:83:c6:34:e0:c5:2b:e0:1a:b6:60:14:27:6c:32:77:8c:
#         bc:b2:72:98:cf:cd:cc:3f:b9:c8:24:42:14:d6:57:fc:e6:26:
#         43:a9:1d:e5:80:90:ce:03:54:28:3e:f7:3f:d3:f8:4d:ed:6a:
#         0a:3a:93:13:9b:3b:14:23:13:63:9c:3f:d1:87:27:79:e5:4c:
#         51:e3:01:ad:85:5d:1a:3b:b1:d5:73:10:a4:d3:f2:bc:6e:64:
#         f5:5a:56:90:a8:c7:0e:4c:74:0f:2e:71:3b:f7:c8:47:f4:69:
#         6f:15:f2:11:5e:83:1e:9c:7c:52:ae:fd:02:da:12:a8:59:67:
#         18:db:bc:70:dd:9b:b1:69:ed:80:ce:89:40:48:6a:0e:35:ca:
#         29:66:15:21:94:2c:e8:60:2a:9b:85:4a:40:f3:6b:8a:24:ec:
#         06:16:2c:73

[p11-kit-object-v1]
label: "Certum Trusted Network CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4/t9o3K6wvDJFIf1awFO
4W5AB7ptJ11/91sts1rHUV+rpDKmYYe2bg+G0jACl/jXaVehGDldamR5xgFZrDwx
Sjh80gTSSyjoIF87B6LMTXPb865Px1bVWqeWifrzq2jUI4ZZJ88JJ7ysbnKDHDBy
3+Ci6dLhdHUZvSqeexVUBBvXQzmtVSjF4hq79MDkrjhJM8x2hZ85RdKknvISjFH4
fOQtf/WsX+sWn7Et0brMkUJ3TCXJkDhv2/DM+44el1k+1WBO5gUo7Ul5E0u6SNsv
+XLTOcr+H9g0cvW0QM8xAcPs3hEtF10fuFDRXhmnad4HMyjKUJX5p1TLVIZQRan5
SQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Trusted Network CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 279744 (0x444c0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=PL, O=Unizeto Technologies S.A., OU=Certum Certification Authority, CN=Certum Trusted Network CA
#        Validity
#            Not Before: Oct 22 12:07:37 2008 GMT
#            Not After : Dec 31 12:07:37 2029 GMT
#        Subject: C=PL, O=Unizeto Technologies S.A., OU=Certum Certification Authority, CN=Certum Trusted Network CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:e3:fb:7d:a3:72:ba:c2:f0:c9:14:87:f5:6b:01:
#                    4e:e1:6e:40:07:ba:6d:27:5d:7f:f7:5b:2d:b3:5a:
#                    c7:51:5f:ab:a4:32:a6:61:87:b6:6e:0f:86:d2:30:
#                    02:97:f8:d7:69:57:a1:18:39:5d:6a:64:79:c6:01:
#                    59:ac:3c:31:4a:38:7c:d2:04:d2:4b:28:e8:20:5f:
#                    3b:07:a2:cc:4d:73:db:f3:ae:4f:c7:56:d5:5a:a7:
#                    96:89:fa:f3:ab:68:d4:23:86:59:27:cf:09:27:bc:
#                    ac:6e:72:83:1c:30:72:df:e0:a2:e9:d2:e1:74:75:
#                    19:bd:2a:9e:7b:15:54:04:1b:d7:43:39:ad:55:28:
#                    c5:e2:1a:bb:f4:c0:e4:ae:38:49:33:cc:76:85:9f:
#                    39:45:d2:a4:9e:f2:12:8c:51:f8:7c:e4:2d:7f:f5:
#                    ac:5f:eb:16:9f:b1:2d:d1:ba:cc:91:42:77:4c:25:
#                    c9:90:38:6f:db:f0:cc:fb:8e:1e:97:59:3e:d5:60:
#                    4e:e6:05:28:ed:49:79:13:4b:ba:48:db:2f:f9:72:
#                    d3:39:ca:fe:1f:d8:34:72:f5:b4:40:cf:31:01:c3:
#                    ec:de:11:2d:17:5d:1f:b8:50:d1:5e:19:a7:69:de:
#                    07:33:28:ca:50:95:f9:a7:54:cb:54:86:50:45:a9:
#                    f9:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                08:76:CD:CB:07:FF:24:F6:C5:CD:ED:BB:90:BC:E2:84:37:46:75:F7
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         a6:a8:ad:22:ce:01:3d:a6:a3:ff:62:d0:48:9d:8b:5e:72:b0:
#         78:44:e3:dc:1c:af:09:fd:23:48:fa:bd:2a:c4:b9:55:04:b5:
#         10:a3:8d:27:de:0b:82:63:d0:ee:de:0c:37:79:41:5b:22:b2:
#         b0:9a:41:5c:a6:70:e0:d4:d0:77:cb:23:d3:00:e0:6c:56:2f:
#         e1:69:0d:0d:d9:aa:bf:21:81:50:d9:06:a5:a8:ff:95:37:d0:
#         aa:fe:e2:b3:f5:99:2d:45:84:8a:e5:42:09:d7:74:02:2f:f7:
#         89:d8:99:e9:bc:27:d4:47:8d:ba:0d:46:1c:77:cf:14:a4:1c:
#         b9:a4:31:c4:9c:28:74:03:34:ff:33:19:26:a5:e9:0d:74:b7:
#         3e:97:c6:76:e8:27:96:a3:66:dd:e1:ae:f2:41:5b:ca:98:56:
#         83:73:70:e4:86:1a:d2:31:41:ba:2f:be:2d:13:5a:76:6f:4e:
#         e8:4e:81:0e:3f:5b:03:22:a0:12:be:66:58:11:4a:cb:03:c4:
#         b4:2a:2a:2d:96:17:e0:39:54:bc:48:d3:76:27:9d:9a:2d:06:
#         a6:c9:ec:39:d2:ab:db:9f:9a:0b:27:02:35:29:b1:40:95:e7:
#         f9:e8:9c:55:88:19:46:d6:b7:34:f5:7e:ce:39:9a:d9:38:f1:
#         51:f7:4f:2c

[p11-kit-object-v1]
label: "Certum Trusted Network CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Trusted Network CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            21:d6:d0:4a:4f:25:0f:c9:32:37:fc:aa:5e:12:8d:e9
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=PL, O=Unizeto Technologies S.A., OU=Certum Certification Authority, CN=Certum Trusted Network CA 2
#        Validity
#            Not Before: Oct  6 08:39:56 2011 GMT
#            Not After : Oct  6 08:39:56 2046 GMT
#        Subject: C=PL, O=Unizeto Technologies S.A., OU=Certum Certification Authority, CN=Certum Trusted Network CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:bd:f9:78:f8:e6:d5:80:0c:64:9d:86:1b:96:64:
#                    67:3f:22:3a:1e:75:01:7d:ef:fb:5c:67:8c:c9:cc:
#                    5c:6b:a9:91:e6:b9:42:e5:20:4b:9b:da:9b:7b:b9:
#                    99:5d:d9:9b:80:4b:d7:84:40:2b:27:d3:e8:ba:30:
#                    bb:3e:09:1a:a7:49:95:ef:2b:40:24:c2:97:c7:a7:
#                    ee:9b:25:ef:a8:0a:00:97:85:5a:aa:9d:dc:29:c9:
#                    e2:35:07:eb:70:4d:4a:d6:c1:b3:56:b8:a1:41:38:
#                    9b:d1:fb:31:7f:8f:e0:5f:e1:b1:3f:0f:8e:16:49:
#                    60:d7:06:8d:18:f9:aa:26:10:ab:2a:d3:d0:d1:67:
#                    8d:1b:46:be:47:30:d5:2e:72:d1:c5:63:da:e7:63:
#                    79:44:7e:4b:63:24:89:86:2e:34:3f:29:4c:52:8b:
#                    2a:a7:c0:e2:91:28:89:b9:c0:5b:f9:1d:d9:e7:27:
#                    ad:ff:9a:02:97:c1:c6:50:92:9b:02:2c:bd:a9:b9:
#                    34:59:0a:bf:84:4a:ff:df:fe:b3:9f:eb:d9:9e:e0:
#                    98:23:ec:a6:6b:77:16:2a:db:cc:ad:3b:1c:a4:87:
#                    dc:46:73:5e:19:62:68:45:57:e4:90:82:42:bb:42:
#                    d6:f0:61:e0:c1:a3:3d:66:a3:5d:f4:18:ee:88:c9:
#                    8d:17:45:29:99:32:75:02:31:ee:29:26:c8:6b:02:
#                    e6:b5:62:45:7f:37:15:5a:23:68:89:d4:3e:de:4e:
#                    27:b0:f0:40:0c:bc:4d:17:cb:4d:a2:b3:1e:d0:06:
#                    5a:dd:f6:93:cf:57:75:99:f5:fa:86:1a:67:78:b3:
#                    bf:96:fe:34:dc:bd:e7:52:56:e5:b3:e5:75:7b:d7:
#                    41:91:05:dc:5d:69:e3:95:0d:43:b9:fc:83:96:39:
#                    95:7b:6c:80:5a:4f:13:72:c6:d7:7d:29:7a:44:ba:
#                    52:a4:2a:d5:41:46:09:20:fe:22:a0:b6:5b:30:8d:
#                    bc:89:0c:d5:d7:70:f8:87:52:fd:da:ef:ac:51:2e:
#                    07:b3:4e:fe:d0:09:da:70:ef:98:fa:56:e6:6d:db:
#                    b5:57:4b:dc:e5:2c:25:15:c8:9e:2e:78:4e:f8:da:
#                    9c:9e:86:2c:ca:57:f3:1a:e5:c8:92:8b:1a:82:96:
#                    7a:c3:bc:50:12:69:d8:0e:5a:46:8b:3a:eb:26:fa:
#                    23:c9:b6:b0:81:be:42:00:a4:f8:d6:fe:30:2e:c7:
#                    d2:46:f6:e5:8e:75:fd:f2:cc:b9:d0:87:5b:cc:06:
#                    10:60:bb:83:35:b7:5e:67:de:47:ec:99:48:f1:a4:
#                    a1:15:fe:ad:8c:62:8e:39:55:4f:39:16:b9:b1:63:
#                    9d:ff:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B6:A1:54:39:02:C3:A0:3F:8E:8A:BC:FA:D4:F8:1C:A6:D1:3A:0E:FD
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         71:a5:0e:ce:e4:e9:bf:3f:38:d5:89:5a:c4:02:61:fb:4c:c5:
#         14:17:2d:8b:4f:53:6b:10:17:fc:65:84:c7:10:49:90:de:db:
#         c7:26:93:88:26:6f:70:d6:02:5e:39:a0:f7:8f:ab:96:b5:a5:
#         13:5c:81:14:6d:0e:81:82:11:1b:8a:4e:c6:4f:a5:dd:62:1e:
#         44:df:09:59:f4:5b:77:0b:37:e9:8b:20:c6:f8:0a:4e:2e:58:
#         1c:eb:33:d0:cf:86:60:c9:da:fb:80:2f:9e:4c:60:84:78:3d:
#         21:64:d6:fb:41:1f:18:0f:e7:c9:75:71:bd:bd:5c:de:34:87:
#         3e:41:b0:0e:f6:b9:d6:3f:09:13:96:14:2f:de:9a:1d:5a:b9:
#         56:ce:35:3a:b0:5f:70:4d:5e:e3:29:f1:23:28:72:59:b6:ab:
#         c2:8c:66:26:1c:77:2c:26:76:35:8b:28:a7:69:a0:f9:3b:f5:
#         23:dd:85:10:74:c9:90:03:56:91:e7:af:ba:47:d4:12:97:11:
#         22:e3:a2:49:94:6c:e7:b7:94:4b:ba:2d:a4:da:33:8b:4c:a6:
#         44:ff:5a:3c:c6:1d:64:d8:b5:31:e4:a6:3c:7a:a8:57:0b:db:
#         ed:61:1a:cb:f1:ce:73:77:63:a4:87:6f:4c:51:38:d6:e4:5f:
#         c7:9f:b6:81:2a:e4:85:48:79:58:5e:3b:f8:db:02:82:67:c1:
#         39:db:c3:74:4b:3d:36:1e:f9:29:93:88:68:5b:a8:44:19:21:
#         f0:a7:e8:81:0d:2c:e8:93:36:b4:37:b2:ca:b0:1b:26:7a:9a:
#         25:1f:9a:9a:80:9e:4b:2a:3f:fb:a3:9a:fe:73:32:71:c2:9e:
#         c6:72:e1:8a:68:27:f1:e4:0f:b4:c4:4c:a5:61:93:f8:97:10:
#         07:2a:30:25:a9:b9:c8:71:b8:ef:68:cc:2d:7e:f5:e0:7e:0f:
#         82:a8:6f:b6:ba:6c:83:43:77:cd:8a:92:17:a1:9e:5b:78:16:
#         3d:45:e2:33:72:dd:e1:66:ca:99:d3:c9:c5:26:fd:0d:68:04:
#         46:ae:b6:d9:9b:8c:be:19:be:b1:c6:f2:19:e3:5c:02:ca:2c:
#         d8:6f:4a:07:d9:c9:35:da:40:75:f2:c4:a7:19:6f:9e:42:10:
#         98:75:e6:95:8b:60:bc:ed:c5:12:d7:8a:ce:d5:98:5c:56:96:
#         03:c5:ee:77:06:35:ff:cf:e4:ee:3f:13:61:ee:db:da:2d:85:
#         f0:cd:ae:9d:b2:18:09:45:c3:92:a1:72:17:fc:47:b6:a0:0b:
#         2c:f1:c4:de:43:68:08:6a:5f:3b:f0:76:63:fb:cc:06:2c:a6:
#         c6:e2:0e:b5:b9:be:24:8f

[p11-kit-object-v1]
label: "Certum Trusted Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Certum Trusted Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFwDCCA6igAwIBAgIQHr9ZULjJgDdMBvfrVU+17TANBgkqhkiG9w0BAQ0FADB6
MQswCQYDVQQGEwJQTDEhMB8GA1UEChMYQXNzZWNvIERhdGEgU3lzdGVtcyBTLkEu
MScwJQYDVQQLEx5DZXJ0dW0gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkxHzAdBgNV
BAMTFkNlcnR1bSBUcnVzdGVkIFJvb3QgQ0EwHhcNMTgwMzE2MTIxMDEzWhcNNDMw
MzE2MTIxMDEzWjB6MQswCQYDVQQGEwJQTDEhMB8GA1UEChMYQXNzZWNvIERhdGEg
U3lzdGVtcyBTLkEuMScwJQYDVQQLEx5DZXJ0dW0gQ2VydGlmaWNhdGlvbiBBdXRo
b3JpdHkxHzAdBgNVBAMTFkNlcnR1bSBUcnVzdGVkIFJvb3QgQ0EwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQDRLY67tzbqbTeRn06TpwXkKQMlzhyC93yZ
n0EGze2jusDbCSzBfN8pfktlL5On1AFrAygYo9idBcEq2EXxkd7fO9CAAozPOA/q
p1x4EaTByIVcJdPTsuclzxFUl6s1wB52HO8AU5853BSlLCIls3Jy/I2z5T4IHhQq
NwuIPMqw9MjCoa68wb4pZ1Xi/K1ZXP69VyywkI3C7Te2fJmItdUDmj0VDT06qKhF
8JVOJVkdzZhpu9PMMsmN74H+rX2Ju7pgE8pllWeg8xn2A1bUatMn4qGtg/BKEiJ3
HAVz4hlxQsDsdUaakFjgao4rpUYwBI4Zshfjvqm6f1bxJAPXsiEodg42MEx51UGa
mqi4NboMOvJEGyCI98Ul1z3G4z5D3Yf+xOr1Uz5MZf87Sst4WmsXXw3Hw09Omiqi
7VdNIuJGmj8PkTQkfVXjjJU30xrwCSss0smNtA0Aq2cpKNgB9RkEth2+dv5yXMSF
ytKAQd8FqKPVhJBPC/PgP5sZ0jeJP/J7UhyM9uH3PAeXjA6iWYEMspA90+NZRu0P
qafegGtaqge2Gcu8V/OXIXoMsSt0Puvap2ctTMSYnjYJdmZm/Bo/6khUHL4wvYBQ
v3y1zgD2DGHZ5yQD4OMBgQ692IU0iL2yNqh7XAjlRICMb/gv1SHKHRzQ+8S1h9E6
Tsd2tTVItQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBSM+xx1
vALTn04uSNn5YFSqxLNP+jAOBgNVHQ8BAf8EBAMCAQYwDQYJKoZIhvcNAQENBQAD
ggIBAEii1QALLtA/vBzVtVRJHlpr9OTy4EA34MwUe7nJ+jW1dReTagVphZzNTxl4
WxmB82M+w85bj/UvXgF2Ez8sALnNllI5SW0ETsXpD4YN4fqzX4IS8TrOZgYkNCvo
zMrnadyHncI013nR03e4qllY/p0m+jiGPp2Kh2RX5Rc64vmNueMzeMGQ2Ljdt4NR
5MTMI9UGfOZR0800McD2RrsLrfw9EAUqO0qRJe6M1ISHgCq8CYyqOhNf6DR5UMEQ
GfnTKB7U0VEwKbOukGfWHwpjscWpxkIxYxeU72nLL/qMFH3EQxiJ2fAyQOaA4kZf
5ePBAFmo+eggvIksDkc0C+pXwlM2/KfUrzHN/gLldfq5Jwn58/U7yn2fqSLLiMmq
0Uc9NneoWWRrJ8/vJ8HjJLWG965+Mk2weWjROeiQWMODvA8s1pfrzgzhIMfatz7D
P78v3DSk+yshzWePS/Tj6tQ/50+6uaWTRRxmHyH6ZF5v4HaUMst19W7l9o/HuKTM
qJZ9ZPskWkoDbGs4xugDQ5r3V7mzKWmTOPQD8rv7gmsHINFSH5pkAnuYZttcTVoP
0ISVoDwUQwbKytu4QTbaakRnh6+v40URFWkIsr4WOZckbxJF0WddCajJFdr60qZf
E2Efv4WstK2tBZQIgx51F9NxO5NQI1mg7TyRVJ12AMXDuDjb
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1e:bf:59:50:b8:c9:80:37:4c:06:f7:eb:55:4f:b5:ed
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=PL, O=Asseco Data Systems S.A., OU=Certum Certification Authority, CN=Certum Trusted Root CA
#        Validity
#            Not Before: Mar 16 12:10:13 2018 GMT
#            Not After : Mar 16 12:10:13 2043 GMT
#        Subject: C=PL, O=Asseco Data Systems S.A., OU=Certum Certification Authority, CN=Certum Trusted Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d1:2d:8e:bb:b7:36:ea:6d:37:91:9f:4e:93:a7:
#                    05:e4:29:03:25:ce:1c:82:f7:7c:99:9f:41:06:cd:
#                    ed:a3:ba:c0:db:09:2c:c1:7c:df:29:7e:4b:65:2f:
#                    93:a7:d4:01:6b:03:28:18:a3:d8:9d:05:c1:2a:d8:
#                    45:f1:91:de:df:3b:d0:80:02:8c:cf:38:0f:ea:a7:
#                    5c:78:11:a4:c1:c8:85:5c:25:d3:d3:b2:e7:25:cf:
#                    11:54:97:ab:35:c0:1e:76:1c:ef:00:53:9f:39:dc:
#                    14:a5:2c:22:25:b3:72:72:fc:8d:b3:e5:3e:08:1e:
#                    14:2a:37:0b:88:3c:ca:b0:f4:c8:c2:a1:ae:bc:c1:
#                    be:29:67:55:e2:fc:ad:59:5c:fe:bd:57:2c:b0:90:
#                    8d:c2:ed:37:b6:7c:99:88:b5:d5:03:9a:3d:15:0d:
#                    3d:3a:a8:a8:45:f0:95:4e:25:59:1d:cd:98:69:bb:
#                    d3:cc:32:c9:8d:ef:81:fe:ad:7d:89:bb:ba:60:13:
#                    ca:65:95:67:a0:f3:19:f6:03:56:d4:6a:d3:27:e2:
#                    a1:ad:83:f0:4a:12:22:77:1c:05:73:e2:19:71:42:
#                    c0:ec:75:46:9a:90:58:e0:6a:8e:2b:a5:46:30:04:
#                    8e:19:b2:17:e3:be:a9:ba:7f:56:f1:24:03:d7:b2:
#                    21:28:76:0e:36:30:4c:79:d5:41:9a:9a:a8:b8:35:
#                    ba:0c:3a:f2:44:1b:20:88:f7:c5:25:d7:3d:c6:e3:
#                    3e:43:dd:87:fe:c4:ea:f5:53:3e:4c:65:ff:3b:4a:
#                    cb:78:5a:6b:17:5f:0d:c7:c3:4f:4e:9a:2a:a2:ed:
#                    57:4d:22:e2:46:9a:3f:0f:91:34:24:7d:55:e3:8c:
#                    95:37:d3:1a:f0:09:2b:2c:d2:c9:8d:b4:0d:00:ab:
#                    67:29:28:d8:01:f5:19:04:b6:1d:be:76:fe:72:5c:
#                    c4:85:ca:d2:80:41:df:05:a8:a3:d5:84:90:4f:0b:
#                    f3:e0:3f:9b:19:d2:37:89:3f:f2:7b:52:1c:8c:f6:
#                    e1:f7:3c:07:97:8c:0e:a2:59:81:0c:b2:90:3d:d3:
#                    e3:59:46:ed:0f:a9:a7:de:80:6b:5a:aa:07:b6:19:
#                    cb:bc:57:f3:97:21:7a:0c:b1:2b:74:3e:eb:da:a7:
#                    67:2d:4c:c4:98:9e:36:09:76:66:66:fc:1a:3f:ea:
#                    48:54:1c:be:30:bd:80:50:bf:7c:b5:ce:00:f6:0c:
#                    61:d9:e7:24:03:e0:e3:01:81:0e:bd:d8:85:34:88:
#                    bd:b2:36:a8:7b:5c:08:e5:44:80:8c:6f:f8:2f:d5:
#                    21:ca:1d:1c:d0:fb:c4:b5:87:d1:3a:4e:c7:76:b5:
#                    35:48:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8C:FB:1C:75:BC:02:D3:9F:4E:2E:48:D9:F9:60:54:AA:C4:B3:4F:FA
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         48:a2:d5:00:0b:2e:d0:3f:bc:1c:d5:b5:54:49:1e:5a:6b:f4:
#         e4:f2:e0:40:37:e0:cc:14:7b:b9:c9:fa:35:b5:75:17:93:6a:
#         05:69:85:9c:cd:4f:19:78:5b:19:81:f3:63:3e:c3:ce:5b:8f:
#         f5:2f:5e:01:76:13:3f:2c:00:b9:cd:96:52:39:49:6d:04:4e:
#         c5:e9:0f:86:0d:e1:fa:b3:5f:82:12:f1:3a:ce:66:06:24:34:
#         2b:e8:cc:ca:e7:69:dc:87:9d:c2:34:d7:79:d1:d3:77:b8:aa:
#         59:58:fe:9d:26:fa:38:86:3e:9d:8a:87:64:57:e5:17:3a:e2:
#         f9:8d:b9:e3:33:78:c1:90:d8:b8:dd:b7:83:51:e4:c4:cc:23:
#         d5:06:7c:e6:51:d3:cd:34:31:c0:f6:46:bb:0b:ad:fc:3d:10:
#         05:2a:3b:4a:91:25:ee:8c:d4:84:87:80:2a:bc:09:8c:aa:3a:
#         13:5f:e8:34:79:50:c1:10:19:f9:d3:28:1e:d4:d1:51:30:29:
#         b3:ae:90:67:d6:1f:0a:63:b1:c5:a9:c6:42:31:63:17:94:ef:
#         69:cb:2f:fa:8c:14:7d:c4:43:18:89:d9:f0:32:40:e6:80:e2:
#         46:5f:e5:e3:c1:00:59:a8:f9:e8:20:bc:89:2c:0e:47:34:0b:
#         ea:57:c2:53:36:fc:a7:d4:af:31:cd:fe:02:e5:75:fa:b9:27:
#         09:f9:f3:f5:3b:ca:7d:9f:a9:22:cb:88:c9:aa:d1:47:3d:36:
#         77:a8:59:64:6b:27:cf:ef:27:c1:e3:24:b5:86:f7:ae:7e:32:
#         4d:b0:79:68:d1:39:e8:90:58:c3:83:bc:0f:2c:d6:97:eb:ce:
#         0c:e1:20:c7:da:b7:3e:c3:3f:bf:2f:dc:34:a4:fb:2b:21:cd:
#         67:8f:4b:f4:e3:ea:d4:3f:e7:4f:ba:b9:a5:93:45:1c:66:1f:
#         21:fa:64:5e:6f:e0:76:94:32:cb:75:f5:6e:e5:f6:8f:c7:b8:
#         a4:cc:a8:96:7d:64:fb:24:5a:4a:03:6c:6b:38:c6:e8:03:43:
#         9a:f7:57:b9:b3:29:69:93:38:f4:03:f2:bb:fb:82:6b:07:20:
#         d1:52:1f:9a:64:02:7b:98:66:db:5c:4d:5a:0f:d0:84:95:a0:
#         3c:14:43:06:ca:ca:db:b8:41:36:da:6a:44:67:87:af:af:e3:
#         45:11:15:69:08:b2:be:16:39:97:24:6f:12:45:d1:67:5d:09:
#         a8:c9:15:da:fa:d2:a6:5f:13:61:1f:bf:85:ac:b4:ad:ad:05:
#         94:08:83:1e:75:17:d3:71:3b:93:50:23:59:a0:ed:3c:91:54:
#         9d:76:00:c5:c3:b8:38:db

[p11-kit-object-v1]
label: "Chambers of Commerce Root - 2008"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Chambers of Commerce Root - 2008"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIHTzCCBTegAwIBAgIJAKPaQn6ksa7aMA0GCSqGSIb3DQEBBQUAMIGuMQswCQYD
VQQGEwJFVTFDMEEGA1UEBxM6TWFkcmlkIChzZWUgY3VycmVudCBhZGRyZXNzIGF0
IHd3dy5jYW1lcmZpcm1hLmNvbS9hZGRyZXNzKTESMBAGA1UEBRMJQTgyNzQzMjg3
MRswGQYDVQQKExJBQyBDYW1lcmZpcm1hIFMuQS4xKTAnBgNVBAMTIENoYW1iZXJz
IG9mIENvbW1lcmNlIFJvb3QgLSAyMDA4MB4XDTA4MDgwMTEyMjk1MFoXDTM4MDcz
MTEyMjk1MFowga4xCzAJBgNVBAYTAkVVMUMwQQYDVQQHEzpNYWRyaWQgKHNlZSBj
dXJyZW50IGFkZHJlc3MgYXQgd3d3LmNhbWVyZmlybWEuY29tL2FkZHJlc3MpMRIw
EAYDVQQFEwlBODI3NDMyODcxGzAZBgNVBAoTEkFDIENhbWVyZmlybWEgUy5BLjEp
MCcGA1UEAxMgQ2hhbWJlcnMgb2YgQ29tbWVyY2UgUm9vdCAtIDIwMDgwggIiMA0G
CSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCvAMtwNyuAWko6bHiUfaN/Gh/2NdW9
28sNRHI+JrKQUrpjOyhYb6WzbZSm891kDFX29ufyIiKAXuFixrYp4YFs8r/lfTJq
VKAyGVn+H4vXPWCGhSRv4xGzdz4gljUha7MI2XAuZPeEklPWDrCQiorjh40G072Q
DuKZoRuGDtqaCrsLYVAGUvGef3bsyw/QHg3PmTA9HMRFEFis1tPo1+XqxQEHd9ZR
5gN/ikilTWh1uem8nk4ZcfUyS5xtYBkL+8ydddy/Js2Pk3g5eXNeJQ7KXOt3EgfL
ZEFHcpOrUMPrCXZkNNI5t3YRCQ12RcSprj1qr7V9ZS+UWBDsXHyvfuK2GNnQm05a
Sd+pZgvMPMZ4fKecHePOjlO+Bd5gD2vlGts/4+EhySnB8esHnFIbAURRPHsl18Tl
UlRdJQfKFiC4reRB7noI/plvg6aRArBsNlVq5331lubKgdaX8ZSD6e2wsWsSaR6s
+12pxZjptFtYer49okQ6Y1nUCyXeG0+95QGezdIp1Z8XGQpvvwyQ0wlf2eOKNcx5
Wk0ZN5K3xMGtr/R5JJqyAQuxr1yW84Ay+1w9mPGgP0revq+ULtlVmhduYJ1jbLhj
ya6BXBg14JC7vjxPNyK5fuvPnnchpj04gftI2jE9K+OJ9dC1vX7gUMQSibMjmhAx
hduub+84Mxh2EQIDAQABo4IBbDCCAWgwEgYDVR0TAQH/BAgwBgEB/wIBDDAdBgNV
HQ4EFgQU+SSsD7K1+HnA+mCIG8TZTQKeFxkwgeMGA1UdIwSB2zCB2IAU+SSsD7K1
+HnA+mCIG8TZTQKeFxmhgbSkgbEwga4xCzAJBgNVBAYTAkVVMUMwQQYDVQQHEzpN
YWRyaWQgKHNlZSBjdXJyZW50IGFkZHJlc3MgYXQgd3d3LmNhbWVyZmlybWEuY29t
L2FkZHJlc3MpMRIwEAYDVQQFEwlBODI3NDMyODcxGzAZBgNVBAoTEkFDIENhbWVy
ZmlybWEgUy5BLjEpMCcGA1UEAxMgQ2hhbWJlcnMgb2YgQ29tbWVyY2UgUm9vdCAt
IDIwMDiCCQCj2kJ+pLGu2jAOBgNVHQ8BAf8EBAMCAQYwPQYDVR0gBDYwNDAyBgRV
HSAAMCowKAYIKwYBBQUHAgEWHGh0dHA6Ly9wb2xpY3kuY2FtZXJmaXJtYS5jb20w
DQYJKoZIhvcNAQEFBQADggIBAJASryI1wqM58C7e6bXpeHxIvj99RZJe6dqxGfwW
PJ+0W2aeaufDuV2I6A+tzyMP3iU6XsxPpcG1Lawk0lgH3qLPaYRgM+gQDROpI9CF
5Y57pp49chNyM/WqfcZjHwj0/gF/JM8rLFQJ3uIrbZLGOU8W6jx+ekbURWpGqOt1
glanq6B8aBMz9p0w8G8nOSQjKpD9kCk18pPfNKXG9/jvjA9iSnyu0/VU+I22mlaH
FoI6M6taIgj3grrqLuBHmrS1RaMFO9ncLkVAO+rcf+g769HsJtg1pDDFOqxXnrN2
pSB7+R5KBWIBpih1YJeSDW4+TTdDDZIVnBgizVGZoCkaPF+KMjNbMMeJL0eYD6MD
xvbxrN8y8NmBGuScvfaAFPDRLLmF9dijscilIeUcE5fuDr3fKanvNFNb0+RqE4QG
tjICxFKuItLcsiFCGtpA8CnJ7AoMXOLQusxI0zcKzBIKinmwPQN/aUv0NCB9szTq
jktk9T79syNnFQ0EuPAtwQlRPLJsFfClI9eDdOTlLsn+mCdCxqvGnrDQWzilm1De
fhiYtUU79nm06PcaewaD+9CL2rvHvRirCG88gGtAPxkZumWK5r7VXNM21+9AUiRg
OGcEMeyP84LG3rlV8zsxkVrctQgVrXYlCg17LofiDKYGvCYQbTed7N14jHyAxfDZ
d0jQ
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            a3:da:42:7e:a4:b1:ae:da
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=EU, L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287, O=AC Camerfirma S.A., CN=Chambers of Commerce Root - 2008
#        Validity
#            Not Before: Aug  1 12:29:50 2008 GMT
#            Not After : Jul 31 12:29:50 2038 GMT
#        Subject: C=EU, L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287, O=AC Camerfirma S.A., CN=Chambers of Commerce Root - 2008
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:af:00:cb:70:37:2b:80:5a:4a:3a:6c:78:94:7d:
#                    a3:7f:1a:1f:f6:35:d5:bd:db:cb:0d:44:72:3e:26:
#                    b2:90:52:ba:63:3b:28:58:6f:a5:b3:6d:94:a6:f3:
#                    dd:64:0c:55:f6:f6:e7:f2:22:22:80:5e:e1:62:c6:
#                    b6:29:e1:81:6c:f2:bf:e5:7d:32:6a:54:a0:32:19:
#                    59:fe:1f:8b:d7:3d:60:86:85:24:6f:e3:11:b3:77:
#                    3e:20:96:35:21:6b:b3:08:d9:70:2e:64:f7:84:92:
#                    53:d6:0e:b0:90:8a:8a:e3:87:8d:06:d3:bd:90:0e:
#                    e2:99:a1:1b:86:0e:da:9a:0a:bb:0b:61:50:06:52:
#                    f1:9e:7f:76:ec:cb:0f:d0:1e:0d:cf:99:30:3d:1c:
#                    c4:45:10:58:ac:d6:d3:e8:d7:e5:ea:c5:01:07:77:
#                    d6:51:e6:03:7f:8a:48:a5:4d:68:75:b9:e9:bc:9e:
#                    4e:19:71:f5:32:4b:9c:6d:60:19:0b:fb:cc:9d:75:
#                    dc:bf:26:cd:8f:93:78:39:79:73:5e:25:0e:ca:5c:
#                    eb:77:12:07:cb:64:41:47:72:93:ab:50:c3:eb:09:
#                    76:64:34:d2:39:b7:76:11:09:0d:76:45:c4:a9:ae:
#                    3d:6a:af:b5:7d:65:2f:94:58:10:ec:5c:7c:af:7e:
#                    e2:b6:18:d9:d0:9b:4e:5a:49:df:a9:66:0b:cc:3c:
#                    c6:78:7c:a7:9c:1d:e3:ce:8e:53:be:05:de:60:0f:
#                    6b:e5:1a:db:3f:e3:e1:21:c9:29:c1:f1:eb:07:9c:
#                    52:1b:01:44:51:3c:7b:25:d7:c4:e5:52:54:5d:25:
#                    07:ca:16:20:b8:ad:e4:41:ee:7a:08:fe:99:6f:83:
#                    a6:91:02:b0:6c:36:55:6a:e7:7d:f5:96:e6:ca:81:
#                    d6:97:f1:94:83:e9:ed:b0:b1:6b:12:69:1e:ac:fb:
#                    5d:a9:c5:98:e9:b4:5b:58:7a:be:3d:a2:44:3a:63:
#                    59:d4:0b:25:de:1b:4f:bd:e5:01:9e:cd:d2:29:d5:
#                    9f:17:19:0a:6f:bf:0c:90:d3:09:5f:d9:e3:8a:35:
#                    cc:79:5a:4d:19:37:92:b7:c4:c1:ad:af:f4:79:24:
#                    9a:b2:01:0b:b1:af:5c:96:f3:80:32:fb:5c:3d:98:
#                    f1:a0:3f:4a:de:be:af:94:2e:d9:55:9a:17:6e:60:
#                    9d:63:6c:b8:63:c9:ae:81:5c:18:35:e0:90:bb:be:
#                    3c:4f:37:22:b9:7e:eb:cf:9e:77:21:a6:3d:38:81:
#                    fb:48:da:31:3d:2b:e3:89:f5:d0:b5:bd:7e:e0:50:
#                    c4:12:89:b3:23:9a:10:31:85:db:ae:6f:ef:38:33:
#                    18:76:11
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 Subject Key Identifier: 
#                F9:24:AC:0F:B2:B5:F8:79:C0:FA:60:88:1B:C4:D9:4D:02:9E:17:19
#            X509v3 Authority Key Identifier: 
#                keyid:F9:24:AC:0F:B2:B5:F8:79:C0:FA:60:88:1B:C4:D9:4D:02:9E:17:19
#                DirName:/C=EU/L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287/O=AC Camerfirma S.A./CN=Chambers of Commerce Root - 2008
#                serial:A3:DA:42:7E:A4:B1:AE:DA
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://policy.camerfirma.com
#
#    Signature Algorithm: sha1WithRSAEncryption
#         90:12:af:22:35:c2:a3:39:f0:2e:de:e9:b5:e9:78:7c:48:be:
#         3f:7d:45:92:5e:e9:da:b1:19:fc:16:3c:9f:b4:5b:66:9e:6a:
#         e7:c3:b9:5d:88:e8:0f:ad:cf:23:0f:de:25:3a:5e:cc:4f:a5:
#         c1:b5:2d:ac:24:d2:58:07:de:a2:cf:69:84:60:33:e8:10:0d:
#         13:a9:23:d0:85:e5:8e:7b:a6:9e:3d:72:13:72:33:f5:aa:7d:
#         c6:63:1f:08:f4:fe:01:7f:24:cf:2b:2c:54:09:de:e2:2b:6d:
#         92:c6:39:4f:16:ea:3c:7e:7a:46:d4:45:6a:46:a8:eb:75:82:
#         56:a7:ab:a0:7c:68:13:33:f6:9d:30:f0:6f:27:39:24:23:2a:
#         90:fd:90:29:35:f2:93:df:34:a5:c6:f7:f8:ef:8c:0f:62:4a:
#         7c:ae:d3:f5:54:f8:8d:b6:9a:56:87:16:82:3a:33:ab:5a:22:
#         08:f7:82:ba:ea:2e:e0:47:9a:b4:b5:45:a3:05:3b:d9:dc:2e:
#         45:40:3b:ea:dc:7f:e8:3b:eb:d1:ec:26:d8:35:a4:30:c5:3a:
#         ac:57:9e:b3:76:a5:20:7b:f9:1e:4a:05:62:01:a6:28:75:60:
#         97:92:0d:6e:3e:4d:37:43:0d:92:15:9c:18:22:cd:51:99:a0:
#         29:1a:3c:5f:8a:32:33:5b:30:c7:89:2f:47:98:0f:a3:03:c6:
#         f6:f1:ac:df:32:f0:d9:81:1a:e4:9c:bd:f6:80:14:f0:d1:2c:
#         b9:85:f5:d8:a3:b1:c8:a5:21:e5:1c:13:97:ee:0e:bd:df:29:
#         a9:ef:34:53:5b:d3:e4:6a:13:84:06:b6:32:02:c4:52:ae:22:
#         d2:dc:b2:21:42:1a:da:40:f0:29:c9:ec:0a:0c:5c:e2:d0:ba:
#         cc:48:d3:37:0a:cc:12:0a:8a:79:b0:3d:03:7f:69:4b:f4:34:
#         20:7d:b3:34:ea:8e:4b:64:f5:3e:fd:b3:23:67:15:0d:04:b8:
#         f0:2d:c1:09:51:3c:b2:6c:15:f0:a5:23:d7:83:74:e4:e5:2e:
#         c9:fe:98:27:42:c6:ab:c6:9e:b0:d0:5b:38:a5:9b:50:de:7e:
#         18:98:b5:45:3b:f6:79:b4:e8:f7:1a:7b:06:83:fb:d0:8b:da:
#         bb:c7:bd:18:ab:08:6f:3c:80:6b:40:3f:19:19:ba:65:8a:e6:
#         be:d5:5c:d3:36:d7:ef:40:52:24:60:38:67:04:31:ec:8f:f3:
#         82:c6:de:b9:55:f3:3b:31:91:5a:dc:b5:08:15:ad:76:25:0a:
#         0d:7b:2e:87:e2:0c:a6:06:bc:26:10:6d:37:9d:ec:dd:78:8c:
#         7c:80:c5:f0:d9:77:48:d0

[p11-kit-object-v1]
label: "China Internet Network Information Center EV Certificates Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAm35z7r07eKpkQ0H1UN+U
8i6yjUqORlTSIRLIOTJCBumD1Z9S7eVnAztUwYyZmczpwA//DdmEEbK40ctb3B75
aDFk4Zv6dOtouSCV98YPjUesWgbdYavi7NifFy2cyjw1l1VxzUOFsUcW9SxTgHbP
0wBkvUCZ3czY28Sf1hNfQYOL+Q2HklY0bBoQCxfVWhyXWIQ8hBouXJE0bhlffxdp
xWXvayHG1VA6v2G5BY3vbzQ6sm8UY78WO5upKv23KzhmBsUs4qpnHkWnjQRmQvaP
K++IIGmPMowUc9orhpFjIpryp9vOiYurXccUwVswah+xt54ugQEC7c+WXmPbqOY4
twIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "China Internet Network Information Center EV Certificates Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1218379777 (0x489f0001)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CN, O=China Internet Network Information Center, CN=China Internet Network Information Center EV Certificates Root
#        Validity
#            Not Before: Aug 31 07:11:25 2010 GMT
#            Not After : Aug 31 07:11:25 2030 GMT
#        Subject: C=CN, O=China Internet Network Information Center, CN=China Internet Network Information Center EV Certificates Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:9b:7e:73:ee:bd:3b:78:aa:64:43:41:f5:50:df:
#                    94:f2:2e:b2:8d:4a:8e:46:54:d2:21:12:c8:39:32:
#                    42:06:e9:83:d5:9f:52:ed:e5:67:03:3b:54:c1:8c:
#                    99:99:cc:e9:c0:0f:ff:0d:d9:84:11:b2:b8:d1:cb:
#                    5b:dc:1e:f9:68:31:64:e1:9b:fa:74:eb:68:b9:20:
#                    95:f7:c6:0f:8d:47:ac:5a:06:dd:61:ab:e2:ec:d8:
#                    9f:17:2d:9c:ca:3c:35:97:55:71:cd:43:85:b1:47:
#                    16:f5:2c:53:80:76:cf:d3:00:64:bd:40:99:dd:cc:
#                    d8:db:c4:9f:d6:13:5f:41:83:8b:f9:0d:87:92:56:
#                    34:6c:1a:10:0b:17:d5:5a:1c:97:58:84:3c:84:1a:
#                    2e:5c:91:34:6e:19:5f:7f:17:69:c5:65:ef:6b:21:
#                    c6:d5:50:3a:bf:61:b9:05:8d:ef:6f:34:3a:b2:6f:
#                    14:63:bf:16:3b:9b:a9:2a:fd:b7:2b:38:66:06:c5:
#                    2c:e2:aa:67:1e:45:a7:8d:04:66:42:f6:8f:2b:ef:
#                    88:20:69:8f:32:8c:14:73:da:2b:86:91:63:22:9a:
#                    f2:a7:db:ce:89:8b:ab:5d:c7:14:c1:5b:30:6a:1f:
#                    b1:b7:9e:2e:81:01:02:ed:cf:96:5e:63:db:a8:e6:
#                    38:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:7C:72:4B:39:C7:C0:DB:62:A5:4F:9B:AA:18:34:92:A2:CA:83:82:59
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7C:72:4B:39:C7:C0:DB:62:A5:4F:9B:AA:18:34:92:A2:CA:83:82:59
#    Signature Algorithm: sha1WithRSAEncryption
#         2a:c3:c7:43:37:8f:dd:ad:a4:b2:0c:ee:dc:14:6d:8f:28:a4:
#         98:49:cb:0c:80:ea:f3:ed:23:66:75:7d:c5:d3:21:67:79:d1:
#         73:c5:b5:03:b7:58:ac:0c:54:2f:c6:56:13:0f:31:da:06:e7:
#         65:3b:1d:6f:36:db:c8:1d:f9:fd:80:06:ca:a3:3d:66:16:a8:
#         9d:4c:16:7d:c0:95:46:b5:51:e4:e2:1f:d7:ea:06:4d:63:8d:
#         96:8c:ef:e7:33:57:42:3a:eb:8c:c1:79:c8:4d:76:7d:de:f6:
#         b1:b7:81:e0:a0:f9:a1:78:46:17:1a:56:98:f0:4e:3d:ab:1c:
#         ed:ec:39:dc:07:48:f7:63:fe:06:ae:c2:a4:5c:6a:5b:32:88:
#         c5:c7:33:85:ac:66:42:47:c2:58:24:99:e1:e5:3e:e5:75:2c:
#         8e:43:d6:5d:3c:78:1e:a8:95:82:29:50:d1:d1:16:ba:ef:c1:
#         be:7a:d9:b4:d8:cc:1e:4c:46:e1:77:b1:31:ab:bd:2a:c8:ce:
#         8f:6e:a1:5d:7f:03:75:34:e4:ad:89:45:54:5e:be:ae:28:a5:
#         bb:3f:78:79:eb:73:b3:0a:0d:fd:be:c9:f7:56:ac:f6:b7:ed:
#         2f:9b:21:29:c7:38:b6:95:c4:04:f2:c3:2d:fd:14:2a:90:99:
#         b9:07:cc:9f

[p11-kit-object-v1]
label: "Cisco Root CA 2048"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAsJq5q6evCnen4nG2tGZi
lHiIR8ZiVYRAMr/Aqy6lHHHWvG57qKq6btIViEhFnaL8g9DMuYzgJmhwSnjfIRee
9GEFyRXIzxbaNWGJlEOohKgxmHibuU5vLFMSbM0drSskuzHEK/+DRG+2PSR3Ceq/
Kqgfalb2IA8RVJeBdaclzllqgmXvt+rn4o11i27y3U+mXmKczxAKZNBObc4rzFv1
YKUnR41p9H/OG3DecBsg1m7NpgGoPBLSqT+ga167jiCLepHjtWjuoOfEAXSoUwsr
SpoPZRIOgk2OY/3v65sa21OmE2Cvwn3Xx2wXJdRz+0dkUIGAlEzhv65LHN+S7S4F
3wIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Cisco Root CA 2048"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDQzCCAiugAwIBAgIQX/h7KCtU3I1CoxW1aMmt/zANBgkqhkiG9w0BAQUFADA1
MRYwFAYDVQQKEw1DaXNjbyBTeXN0ZW1zMRswGQYDVQQDExJDaXNjbyBSb290IENB
IDIwNDgwHhcNMDQwNTE0MjAxNzEyWhcNMjkwNTE0MjAyNTQyWjA1MRYwFAYDVQQK
Ew1DaXNjbyBTeXN0ZW1zMRswGQYDVQQDExJDaXNjbyBSb290IENBIDIwNDgwggEg
MA0GCSqGSIb3DQEBAQUAA4IBDQAwggEIAoIBAQCwmrmrp68Kd6ficba0ZmKUeIhH
xmJVhEAyv8CrLqUccda8bnuoqrpu0hWISEWdovyD0My5jOAmaHBKeN8hF570YQXJ
FcjPFto1YYmUQ6iEqDGYeJu5Tm8sUxJszR2tKyS7McQr/4NEb7Y9JHcJ6r8qqB9q
VvYgDxFUl4F1pyXOWWqCZe+36ufijXWLbvLdT6ZeYpzPEApk0E5tzivMW/VgpSdH
jWn0f84bcN5wGyDWbs2mAag8EtKpP6BrXruOIIt6keO1aO6g58QBdKhTCytKmg9l
Eg6CTY5j/e/rmxrbU6YTYK/CfdfHbBcl1HP7R2RQgYCUTOG/rksc35LtLgXfAgED
o1EwTzALBgNVHQ8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUJ/PI
FR5umgIJFq0roIlgX9p7L6owEAYJKwYBBAGCNxUBBAMCAQAwDQYJKoZIhvcNAQEF
BQADggEBAJ2dhISjQal8dwy3U8pORFBi71R803UXHOjgxkhLtv5MOhmBVrBW7hmW
Yqpao2TB9k5UM8Z3/sUcuuVdJcr18JOagxEu5sv4dEX+5wW4q+ffy0vhN4TauYuX
cB7w4ovXsNgOnbFp1iqRe6lJT37mjpXYgyc81WhJDtSd9i7rp77rMKSsH0T8lasz
Bvt9YAretIpjsJyp8qS5UwGH0GikJ3+r/+n6yUA4iGe0OcaEb1fJU9u6ju7AQ7L4
CYNu/2bPPu8Xs1gYJQk0XuPL1hS27PKSb3TkL4Eq1ZKR4OCXPDJoBYVL0fdX4lId
kxpUnwVwwEpxYB5DC2Ae/qPOgRnhCzU=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5f:f8:7b:28:2b:54:dc:8d:42:a3:15:b5:68:c9:ad:ff
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O=Cisco Systems, CN=Cisco Root CA 2048
#        Validity
#            Not Before: May 14 20:17:12 2004 GMT
#            Not After : May 14 20:25:42 2029 GMT
#        Subject: O=Cisco Systems, CN=Cisco Root CA 2048
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b0:9a:b9:ab:a7:af:0a:77:a7:e2:71:b6:b4:66:
#                    62:94:78:88:47:c6:62:55:84:40:32:bf:c0:ab:2e:
#                    a5:1c:71:d6:bc:6e:7b:a8:aa:ba:6e:d2:15:88:48:
#                    45:9d:a2:fc:83:d0:cc:b9:8c:e0:26:68:70:4a:78:
#                    df:21:17:9e:f4:61:05:c9:15:c8:cf:16:da:35:61:
#                    89:94:43:a8:84:a8:31:98:78:9b:b9:4e:6f:2c:53:
#                    12:6c:cd:1d:ad:2b:24:bb:31:c4:2b:ff:83:44:6f:
#                    b6:3d:24:77:09:ea:bf:2a:a8:1f:6a:56:f6:20:0f:
#                    11:54:97:81:75:a7:25:ce:59:6a:82:65:ef:b7:ea:
#                    e7:e2:8d:75:8b:6e:f2:dd:4f:a6:5e:62:9c:cf:10:
#                    0a:64:d0:4e:6d:ce:2b:cc:5b:f5:60:a5:27:47:8d:
#                    69:f4:7f:ce:1b:70:de:70:1b:20:d6:6e:cd:a6:01:
#                    a8:3c:12:d2:a9:3f:a0:6b:5e:bb:8e:20:8b:7a:91:
#                    e3:b5:68:ee:a0:e7:c4:01:74:a8:53:0b:2b:4a:9a:
#                    0f:65:12:0e:82:4d:8e:63:fd:ef:eb:9b:1a:db:53:
#                    a6:13:60:af:c2:7d:d7:c7:6c:17:25:d4:73:fb:47:
#                    64:50:81:80:94:4c:e1:bf:ae:4b:1c:df:92:ed:2e:
#                    05:df
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                27:F3:C8:15:1E:6E:9A:02:09:16:AD:2B:A0:89:60:5F:DA:7B:2F:AA
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         9d:9d:84:84:a3:41:a9:7c:77:0c:b7:53:ca:4e:44:50:62:ef:
#         54:7c:d3:75:17:1c:e8:e0:c6:48:4b:b6:fe:4c:3a:19:81:56:
#         b0:56:ee:19:96:62:aa:5a:a3:64:c1:f6:4e:54:33:c6:77:fe:
#         c5:1c:ba:e5:5d:25:ca:f5:f0:93:9a:83:11:2e:e6:cb:f8:74:
#         45:fe:e7:05:b8:ab:e7:df:cb:4b:e1:37:84:da:b9:8b:97:70:
#         1e:f0:e2:8b:d7:b0:d8:0e:9d:b1:69:d6:2a:91:7b:a9:49:4f:
#         7e:e6:8e:95:d8:83:27:3c:d5:68:49:0e:d4:9d:f6:2e:eb:a7:
#         be:eb:30:a4:ac:1f:44:fc:95:ab:33:06:fb:7d:60:0a:de:b4:
#         8a:63:b0:9c:a9:f2:a4:b9:53:01:87:d0:68:a4:27:7f:ab:ff:
#         e9:fa:c9:40:38:88:67:b4:39:c6:84:6f:57:c9:53:db:ba:8e:
#         ee:c0:43:b2:f8:09:83:6e:ff:66:cf:3e:ef:17:b3:58:18:25:
#         09:34:5e:e3:cb:d6:14:b6:ec:f2:92:6f:74:e4:2f:81:2a:d5:
#         92:91:e0:e0:97:3c:32:68:05:85:4b:d1:f7:57:e2:52:1d:93:
#         1a:54:9f:05:70:c0:4a:71:60:1e:43:0b:60:1e:fe:a3:ce:81:
#         19:e1:0b:35

[p11-kit-object-v1]
label: "ComSign Advanced Security CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ComSign Advanced Security CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7a:5d:e9:33:d0:04:9e:b3:4a:1a:17:74:cb:16:9b:6d
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN=ComSign Advanced Security CA
#        Validity
#            Not Before: Mar 24 21:52:04 2004 GMT
#            Not After : Mar 24 21:55:55 2029 GMT
#        Subject: CN=ComSign Advanced Security CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9d:9c:5c:3b:01:84:57:5a:f4:2b:fe:6d:14:b2:
#                    6c:b7:ed:90:d7:fb:57:43:a0:cf:60:1b:59:2f:4d:
#                    51:60:3d:1c:49:a2:6a:41:63:ab:b8:ed:66:be:40:
#                    46:8d:aa:92:5b:3d:2e:2b:c1:61:98:54:6c:bc:4c:
#                    ab:69:fa:8d:45:45:81:2a:1a:6d:f8:b3:f8:0f:63:
#                    cb:8e:7c:ed:54:29:a3:14:18:fc:e1:c9:b1:d8:54:
#                    ba:9c:ca:2a:1b:d0:ac:c2:89:18:16:4a:fe:4a:04:
#                    d2:d2:9b:b5:87:86:c1:c9:7b:1f:36:16:45:b9:f0:
#                    ba:86:c2:77:8a:33:31:42:a2:ce:0c:72:3d:12:e5:
#                    91:38:f4:27:67:61:4c:cc:e2:f5:4d:2c:12:f0:cd:
#                    b3:84:c1:09:75:9f:00:4f:f8:77:d3:f3:32:6f:81:
#                    8f:17:7e:3b:9b:6b:f3:1e:e7:fa:93:4f:0c:2e:97:
#                    dd:70:58:13:7d:f3:91:83:8d:a2:3d:31:da:63:e3:
#                    39:76:76:33:e6:d4:66:0d:94:8e:15:94:9c:38:7b:
#                    dc:71:1f:da:b5:e0:d7:97:5a:82:74:de:3b:06:da:
#                    ef:c5:2b:f1:68:dd:27:53:f8:b9:ec:8c:0f:53:22:
#                    e4:39:82:e4:f9:ae:61:fc:18:28:7e:c7:69:e9:68:
#                    f4:7e:e0:d1:bc:e0:6d:c8:d6:d1:ab:44:31:61:b4:
#                    ec:78:35:2c:46:de:e8:f3:b6:3c:98:b3:a9:1c:07:
#                    4a:98:cd:47:26:82:f0:d4:91:ef:10:93:e7:68:e6:
#                    52:6a:97:7e:b9:20:97:17:fa:19:32:94:23:9e:c7:
#                    73:b2:48:e8:98:b5:f7:75:56:a0:4b:9d:77:a8:1a:
#                    29:74:38:58:e0:c8:cd:b1:33:1b:2f:fe:98:93:78:
#                    05:01:74:ab:ae:42:c5:1b:1d:2f:7c:41:7c:a5:d3:
#                    60:aa:50:c1:f3:c8:88:41:58:f6:b5:92:18:fd:ae:
#                    66:8e:9c:e7:3b:9a:d1:b7:db:da:c7:4c:cb:22:1b:
#                    4a:3f:60:df:39:f6:da:ea:ae:cc:87:95:b8:52:9b:
#                    5a:9d:51:45:0c:76:ef:29:41:a5:0a:b9:f8:5e:c4:
#                    bd:2c:4c:34:48:47:d5:8b:c8:cc:cf:d1:3b:58:e5:
#                    7a:c6:fd:21:ec:77:29:af:f3:5a:54:0e:a9:a4:64:
#                    7c:f7:5c:d1:a1:13:e5:3b:d4:5b:4b:00:94:c9:cb:
#                    0d:dd:04:4f:db:68:b2:b7:67:23:f6:61:a5:ac:0f:
#                    39:3e:9a:c3:2f:a9:64:c3:12:85:9a:a4:a2:52:d4:
#                    79:fc:ba:23:ab:09:1a:ed:3d:99:9d:d9:e7:28:f8:
#                    0f:50:4f
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E9:FA:27:E5:ED:4B:21:70:64:D6:71:AA:7C:E5:82:1C:30:D2:0D:7A
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://fedir.comsign.co.il/crl/ComSignAdvancedSecurityCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.2.3.4.5.6.7.8.9.10
#                  CPS: http://www.comsign.co.il/cps
#
#            Authority Information Access: 
#                CA Issuers - URI:http://fedir.comsign.co.il/cacert/ComSignAdvancedSecurityCA.crt
#
#    Signature Algorithm: sha1WithRSAEncryption
#         9c:8d:5d:9a:06:11:a1:6e:16:18:4f:cb:b2:02:3b:92:8f:1d:
#         26:a5:cb:eb:48:ee:55:1d:aa:10:e0:69:4e:c1:fe:32:00:de:
#         0f:ce:0d:b4:63:bc:e0:62:1a:e0:f7:f5:a9:e5:c9:54:14:8b:
#         40:f8:ad:f3:6d:02:ec:8e:7b:dc:a5:79:92:01:b5:ff:a1:59:
#         63:39:11:b5:be:52:ae:74:da:d9:21:a3:12:d8:c7:95:f8:db:
#         6f:56:55:bf:95:12:bd:32:23:c7:c9:6c:65:01:ef:fb:74:8e:
#         bb:24:86:4f:7d:dd:f0:5a:8f:3b:84:8c:79:75:29:f4:86:b6:
#         d3:c1:0c:59:15:c2:03:57:ab:3d:48:d7:2c:45:94:40:dc:e0:
#         a9:4b:5f:cc:10:d7:96:bf:a9:9c:03:2a:64:f2:bc:7e:f8:a5:
#         a7:99:91:27:05:fe:49:a7:d8:ad:0a:86:36:3c:0e:3d:a6:e1:
#         7c:6a:81:11:7b:45:bb:68:8d:35:31:fd:26:53:41:3e:3c:6e:
#         6b:1e:d8:ab:2d:89:81:99:c6:1f:97:f3:5a:f5:1f:61:bd:fe:
#         15:59:93:0a:de:fa:51:fa:46:df:46:f4:fc:62:6c:58:a3:0c:
#         de:c9:19:1e:c0:1c:5b:38:3b:41:8f:05:31:0e:ae:ed:2c:5d:
#         b7:0f:dc:39:c4:5f:22:b3:a5:b2:58:30:24:bf:f9:09:ad:f0:
#         96:1b:37:6f:40:66:fe:b7:2a:89:d5:c6:e3:7e:03:58:b0:7d:
#         38:e6:8a:ab:3f:f5:81:f3:0a:41:77:02:73:ed:a7:54:dd:07:
#         31:5c:b6:b5:76:92:74:77:b9:6f:a6:09:ba:0e:dd:0c:e7:76:
#         c4:4b:be:cb:3b:d5:45:c0:89:e3:2b:77:7a:62:98:c3:5b:fc:
#         7d:57:5e:8e:ee:dd:1b:50:21:6d:91:bf:19:5c:8f:97:79:2a:
#         c1:8b:61:6f:aa:5e:52:f5:e9:4f:34:98:30:bd:1c:07:c3:b7:
#         c4:7c:81:d9:a3:43:32:66:c6:2d:bc:39:5b:a9:5d:89:eb:04:
#         2b:44:95:47:f9:52:f4:4f:05:ee:a3:2a:63:11:0d:1e:ba:c4:
#         f8:4a:5b:50:40:51:77:2e:f4:e4:df:f1:03:14:e6:79:69:da:
#         58:44:82:58:14:83:91:34:03:d7:7a:6d:6a:d1:32:22:29:91:
#         1b:1a:e4:0b:bd:32:15:27:20:bf:1a:6f:52:82:d3:f9:2f:49:
#         0f:90:6c:01:80:49:ae:18:ee:32:2c:ce:11:c7:fe:a0:04:98:
#         68:94:f0:fc:8b:c5:2c:6f:87:fd:d9:c2:c4:1c:e9:2d:cc:0e:
#         ac:9f:f5:f1:fc:92:38:8d

[p11-kit-object-v1]
label: "ComSign CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8ORUaSvTx49qROR+WCf4
C9DklBKK8Rs4OC8fMZwG1Cyn3gsqrhqg455qv588x26i+YtkbDqthVVRVKU4Vbir
gwTyP2Q298CNQ0NqZtH3FyrV7zb6MBBC11PN+fozc0yz6YQgitZBJzXkOPqUm7h6
5HkfM/sb2CEJKHxNGGleZIp6GZPKfuzzcuc3B1hZKKxC+cX/zT/npfo4sdAMx9lS
GlPWgcxCejVb7Us6eva1jsz/D3zkYDaHL63woSV9/9JLEYhwVKZBqGdTUkJe5DSe
5L6j7KpiXd3DTKaCQeQzC6zJMw9kglcq/QytNuEMrkvF7zuZ2SOzW120V+x0cAwq
TwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ComSign CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            14:13:96:83:14:55:8c:ea:7b:63:e5:fc:34:87:77:44
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN=ComSign CA, O=ComSign, C=IL
#        Validity
#            Not Before: Mar 24 11:32:18 2004 GMT
#            Not After : Mar 19 15:02:18 2029 GMT
#        Subject: CN=ComSign CA, O=ComSign, C=IL
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:f0:e4:54:69:2b:d3:c7:8f:6a:44:e4:7e:58:27:
#                    f8:0b:d0:e4:94:12:8a:f1:1b:38:38:2f:1f:31:9c:
#                    06:d4:2c:a7:de:0b:2a:ae:1a:a0:e3:9e:6a:bf:9f:
#                    3c:c7:6e:a2:f9:8b:64:6c:3a:ad:85:55:51:54:a5:
#                    38:55:b8:ab:83:04:f2:3f:64:36:f7:c0:8d:43:43:
#                    6a:66:d1:f7:17:2a:d5:ef:36:fa:30:10:42:d7:53:
#                    cd:f9:fa:33:73:4c:b3:e9:84:20:8a:d6:41:27:35:
#                    e4:38:fa:94:9b:b8:7a:e4:79:1f:33:fb:1b:d8:21:
#                    09:28:7c:4d:18:69:5e:64:8a:7a:19:93:ca:7e:ec:
#                    f3:72:e7:37:07:58:59:28:ac:42:f9:c5:ff:cd:3f:
#                    e7:a5:fa:38:b1:d0:0c:c7:d9:52:1a:53:d6:81:cc:
#                    42:7a:35:5b:ed:4b:3a:7a:f6:b5:8e:cc:ff:0f:7c:
#                    e4:60:36:87:2f:ad:f0:a1:25:7d:ff:d2:4b:11:88:
#                    70:54:a6:41:a8:67:53:52:42:5e:e4:34:9e:e4:be:
#                    a3:ec:aa:62:5d:dd:c3:4c:a6:82:41:e4:33:0b:ac:
#                    c9:33:0f:64:82:57:2a:fd:0c:ad:36:e1:0c:ae:4b:
#                    c5:ef:3b:99:d9:23:b3:5b:5d:b4:57:ec:74:70:0c:
#                    2a:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://fedir.comsign.co.il/crl/ComSignCA.crl
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:4B:01:9B:3E:56:1A:65:36:76:CB:7B:97:AA:92:05:EE:32:E7:28:31
#
#            X509v3 Subject Key Identifier: 
#                4B:01:9B:3E:56:1A:65:36:76:CB:7B:97:AA:92:05:EE:32:E7:28:31
#    Signature Algorithm: sha1WithRSAEncryption
#         d0:d9:a5:7e:fe:29:60:45:9d:7e:83:cf:6e:bc:47:6e:f5:1a:
#         9e:54:76:42:71:b4:3c:58:3f:2d:40:25:42:f6:81:9c:f1:89:
#         10:c8:0e:aa:78:4f:38:09:57:b0:3c:c0:08:fc:35:8e:f1:48:
#         51:8d:0c:71:74:ba:84:c4:d7:72:9b:84:7c:38:4e:64:06:27:
#         2a:e1:a7:b5:ec:08:99:b4:0a:0d:d4:85:73:c8:12:e1:35:ed:
#         f1:05:31:1d:73:99:0c:eb:96:ca:dd:d3:e6:85:aa:f0:8a:fb:
#         75:c1:f2:09:3c:65:65:64:f3:4c:d8:ad:cb:88:69:f3:e4:83:
#         b7:0c:bd:17:5a:96:17:ca:5b:ff:ad:bb:1c:e9:2d:84:80:d8:
#         21:be:85:52:d9:d4:74:b9:69:85:ba:4d:ed:28:32:eb:f9:61:
#         4a:e4:c4:36:1e:19:dc:6f:84:11:1f:95:f5:83:28:18:a8:33:
#         92:43:27:dd:5d:13:04:45:4f:87:d5:46:cd:3d:a8:ba:f0:f3:
#         b8:56:24:45:eb:37:c7:e1:76:4f:72:39:18:df:7e:74:72:c7:
#         73:2d:39:ea:60:e6:ad:11:a2:56:87:7b:c3:68:9a:fe:f8:8c:
#         70:a8:df:65:32:f4:a4:40:8c:a1:c2:44:03:0e:94:00:67:a0:
#         71:00:82:48

[p11-kit-object-v1]
label: "ComSign Secured CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxrVoXx2UFcOkCFUt46BX
eu/pdCq7uXxXSRoRXk8phwxI1mrnj9R+VyS5BonkHDzqrOPaIYBzIQrveZhsHwj/
oVB98pgbyVRvPqUo7CEED0W7Bz2hwPoqmB1OBpP79Yg7q1/LFr/m855Kh+0Z6sKf
Q+TxgaV/EE8+0UpirVMby4P/B2Wlki1mqVu4WvQdtCGRShd7njL+ViQ5slSEQ/WE
wti8QZDMndZo2umCUKk7aM+1XQKUYBaxQ9lDXd1dh27qu7PJa/YDlAlw3hYReivo
do9JEJh3uWNcizOXdfYLjLKrW950ICU/4/MR+YdohjVxwx2MLevlGqwPc9WCWUCA
0wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ComSign Secured CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c7:28:47:09:b3:b8:6c:45:8c:1d:fa:24:f5:36:4e:e9
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: CN=ComSign Secured CA, O=ComSign, C=IL
#        Validity
#            Not Before: Mar 24 11:37:20 2004 GMT
#            Not After : Mar 16 15:04:56 2029 GMT
#        Subject: CN=ComSign Secured CA, O=ComSign, C=IL
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c6:b5:68:5f:1d:94:15:c3:a4:08:55:2d:e3:a0:
#                    57:7a:ef:e9:74:2a:bb:b9:7c:57:49:1a:11:5e:4f:
#                    29:87:0c:48:d6:6a:e7:8f:d4:7e:57:24:b9:06:89:
#                    e4:1c:3c:ea:ac:e3:da:21:80:73:21:0a:ef:79:98:
#                    6c:1f:08:ff:a1:50:7d:f2:98:1b:c9:54:6f:3e:a5:
#                    28:ec:21:04:0f:45:bb:07:3d:a1:c0:fa:2a:98:1d:
#                    4e:06:93:fb:f5:88:3b:ab:5f:cb:16:bf:e6:f3:9e:
#                    4a:87:ed:19:ea:c2:9f:43:e4:f1:81:a5:7f:10:4f:
#                    3e:d1:4a:62:ad:53:1b:cb:83:ff:07:65:a5:92:2d:
#                    66:a9:5b:b8:5a:f4:1d:b4:21:91:4a:17:7b:9e:32:
#                    fe:56:24:39:b2:54:84:43:f5:84:c2:d8:bc:41:90:
#                    cc:9d:d6:68:da:e9:82:50:a9:3b:68:cf:b5:5d:02:
#                    94:60:16:b1:43:d9:43:5d:dd:5d:87:6e:ea:bb:b3:
#                    c9:6b:f6:03:94:09:70:de:16:11:7a:2b:e8:76:8f:
#                    49:10:98:77:b9:63:5c:8b:33:97:75:f6:0b:8c:b2:
#                    ab:5b:de:74:20:25:3f:e3:f3:11:f9:87:68:86:35:
#                    71:c3:1d:8c:2d:eb:e5:1a:ac:0f:73:d5:82:59:40:
#                    80:d3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://fedir.comsign.co.il/crl/ComSignSecuredCA.crl
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:C1:4B:ED:70:B6:F7:3E:7C:00:3B:00:8F:C7:3E:0E:45:9F:1E:5D:EC
#
#            X509v3 Subject Key Identifier: 
#                C1:4B:ED:70:B6:F7:3E:7C:00:3B:00:8F:C7:3E:0E:45:9F:1E:5D:EC
#    Signature Algorithm: sha1WithRSAEncryption
#         16:cf:ee:92:13:50:ab:7b:14:9e:33:b6:42:20:6a:d4:15:bd:
#         09:ab:fc:72:e8:ef:47:7a:90:ac:51:c1:64:4e:e9:88:bd:43:
#         45:81:e3:66:23:3f:12:86:4d:19:e4:05:b0:e6:37:c2:8d:da:
#         06:28:c9:0f:89:a4:53:a9:75:3f:b0:96:fb:ab:4c:33:55:f9:
#         78:26:46:6f:1b:36:98:fb:42:76:c1:82:b9:8e:de:fb:45:f9:
#         63:1b:62:3b:39:06:ca:77:7a:a8:3c:09:cf:6c:36:3d:0f:0a:
#         45:4b:69:16:1a:45:7d:33:03:65:f9:52:71:90:26:95:ac:4c:
#         0c:f5:8b:93:3f:cc:75:74:85:98:ba:ff:62:7a:4d:1f:89:fe:
#         ae:bd:94:00:99:bf:11:a5:dc:e0:79:c5:16:0b:7d:02:61:1d:
#         ea:85:f9:02:15:4f:e7:5a:89:4e:14:6f:e3:37:4b:85:f5:c1:
#         3c:61:e0:fd:05:41:b2:92:7f:c3:1d:a0:d0:ae:52:64:60:6b:
#         18:c6:26:9c:d8:f5:64:e4:36:1a:62:9f:8a:0f:3e:ff:6d:4e:
#         19:56:4e:20:91:6c:9f:34:33:3a:34:57:50:3a:6f:81:5e:06:
#         c6:f5:3e:7c:4e:8e:2b:ce:65:06:2e:5d:d2:2a:53:74:5e:d3:
#         6e:27:9e:8f

[p11-kit-object-v1]
label: "CommScope Public Trust ECC Root-01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAESzbprldeqHDX0I90YnfDXnqq5bai8Xj9
An5X3ZF5nGy5UohUvC8EvrjN9hDRKey10KDD8IlwGbtRZcVDnMObY50ggz4GC6ZC
RIURp0o6LenWaC9ITlMrBz9NvbmsdzlX
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CommScope Public Trust ECC Root-01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            43:70:82:77:cf:4d:5d:34:f1:ca:ae:32:2f:37:f7:f4:7f:75:a0:9e
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=CommScope, CN=CommScope Public Trust ECC Root-01
#        Validity
#            Not Before: Apr 28 17:35:43 2021 GMT
#            Not After : Apr 28 17:35:42 2046 GMT
#        Subject: C=US, O=CommScope, CN=CommScope Public Trust ECC Root-01
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:4b:36:e9:ae:57:5e:a8:70:d7:d0:8f:74:62:77:
#                    c3:5e:7a:aa:e5:b6:a2:f1:78:fd:02:7e:57:dd:91:
#                    79:9c:6c:b9:52:88:54:bc:2f:04:be:b8:cd:f6:10:
#                    d1:29:ec:b5:d0:a0:c3:f0:89:70:19:bb:51:65:c5:
#                    43:9c:c3:9b:63:9d:20:83:3e:06:0b:a6:42:44:85:
#                    11:a7:4a:3a:2d:e9:d6:68:2f:48:4e:53:2b:07:3f:
#                    4d:bd:b9:ac:77:39:57
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                8E:07:62:C0:50:DD:C6:19:06:00:46:74:04:F7:F3:AE:7D:75:4D:30
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:9c:33:df:41:e3:23:a8:42:36:26:97:35:5c:
#         7b:eb:db:4b:f8:aa:8b:73:55:15:5c:ac:78:29:0f:ba:21:d8:
#         c4:a0:d8:d1:03:dd:6d:d1:39:3d:c4:93:60:d2:e3:72:b2:02:
#         30:7c:c5:7e:88:d3:50:f5:1e:25:e8:fa:4e:75:e6:58:96:a4:
#         35:5f:1b:65:ea:61:9a:70:23:b5:0d:a3:9b:92:52:6f:69:a0:
#         8c:8d:4a:d0:ee:8b:0e:cb:47:8e:d0:8d:11

[p11-kit-object-v1]
label: "CommScope Public Trust ECC Root-02"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEeDCB6GMe5etxUQ/3BwfKOZl8TtUPzDAw
C49mkz7PvcWGvfmxt7Q+tAfI85Yx8+2kT/ijTo0pFVi41W9/7mwitbCvSEUKvahJ
lL+EQ7DbhEoDIxlnam/BbrwGOTfRiCL3
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CommScope Public Trust ECC Root-02"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            28:fd:99:60:41:47:a6:01:3a:ca:14:7b:1f:ef:f9:68:08:83:5d:7d
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=CommScope, CN=CommScope Public Trust ECC Root-02
#        Validity
#            Not Before: Apr 28 17:44:54 2021 GMT
#            Not After : Apr 28 17:44:53 2046 GMT
#        Subject: C=US, O=CommScope, CN=CommScope Public Trust ECC Root-02
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:78:30:81:e8:63:1e:e5:eb:71:51:0f:f7:07:07:
#                    ca:39:99:7c:4e:d5:0f:cc:30:30:0b:8f:66:93:3e:
#                    cf:bd:c5:86:bd:f9:b1:b7:b4:3e:b4:07:c8:f3:96:
#                    31:f3:ed:a4:4f:f8:a3:4e:8d:29:15:58:b8:d5:6f:
#                    7f:ee:6c:22:b5:b0:af:48:45:0a:bd:a8:49:94:bf:
#                    84:43:b0:db:84:4a:03:23:19:67:6a:6f:c1:6e:bc:
#                    06:39:37:d1:88:22:f7
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E6:18:75:FF:EF:60:DE:84:A4:F5:46:C7:DE:4A:55:E3:32:36:79:F5
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:26:73:49:7a:b6:ab:e6:49:f4:7d:52:3f:d4:41:
#         04:ae:80:43:83:65:75:b9:85:80:38:3b:d6:6f:e4:93:86:ab:
#         8f:e7:89:c8:7f:9b:7e:6b:0a:12:55:61:aa:11:e0:79:02:30:
#         77:e8:31:71:ac:3c:71:03:d6:84:26:1e:14:b8:f3:3b:3b:de:
#         ed:59:fc:6b:4c:30:7f:59:ce:45:e9:73:60:15:9a:4c:f0:e6:
#         5e:25:22:15:6d:c2:87:59:d0:b2:8e:6a

[p11-kit-object-v1]
label: "CommScope Public Trust RSA Root-01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CommScope Public Trust RSA Root-01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3e:03:49:81:75:16:74:31:8e:4c:ab:d5:c5:90:29:96:c5:39:10:dd
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=CommScope, CN=CommScope Public Trust RSA Root-01
#        Validity
#            Not Before: Apr 28 16:45:54 2021 GMT
#            Not After : Apr 28 16:45:53 2046 GMT
#        Subject: C=US, O=CommScope, CN=CommScope Public Trust RSA Root-01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:48:65:a3:0d:1d:42:e3:91:6d:9d:84:a4:61:
#                    96:12:c2:ed:c3:da:23:34:19:76:f6:ea:fd:55:5a:
#                    f6:55:01:53:0f:f2:cc:8c:97:4f:b9:50:cb:b3:01:
#                    44:56:96:fd:9b:28:ec:7b:74:0b:e7:42:6b:55:ce:
#                    c9:61:b2:e8:ad:40:3c:ba:b9:41:0a:05:4f:1b:26:
#                    85:8f:43:b5:40:b5:85:d1:d4:71:dc:83:41:f3:f6:
#                    45:c7:80:a2:84:50:97:46:ce:a0:0c:c4:60:56:04:
#                    1d:07:5b:46:a5:0e:b2:4b:a4:0e:a5:7c:ee:f8:d4:
#                    62:03:b9:93:6a:8a:14:b8:70:f8:2e:82:46:38:23:
#                    0e:74:c7:6b:41:b7:d0:29:a3:9d:80:b0:7e:77:93:
#                    63:42:fb:34:83:3b:73:a3:5a:21:36:eb:47:fa:18:
#                    17:d9:ba:66:c2:93:a4:8f:fc:5d:a4:ad:fc:50:6a:
#                    95:ac:bc:24:33:d1:bd:88:7f:86:f5:f5:b2:73:2a:
#                    8f:7c:af:08:f2:1a:98:3f:a9:81:65:3f:c1:8c:89:
#                    c5:96:30:9a:0a:cf:f4:d4:c8:34:ed:9d:2f:bc:8d:
#                    38:86:53:ee:97:9f:a9:b2:63:94:17:8d:0f:dc:66:
#                    2a:7c:52:51:75:cb:99:8e:e8:3d:5c:bf:9e:3b:28:
#                    8d:83:02:0f:a9:9f:72:e2:2c:2b:b3:dc:66:97:00:
#                    40:d0:a4:54:8e:9b:5d:7b:45:36:26:d6:72:43:eb:
#                    cf:c0:ea:0d:dc:ce:12:e6:7d:38:9f:05:27:a8:97:
#                    3e:e9:51:c6:6c:05:28:c1:02:0f:e9:18:6d:ec:bd:
#                    9c:06:d4:a7:49:f4:54:05:6b:6c:30:f1:eb:03:d5:
#                    ea:3d:6a:76:c2:cb:1a:28:49:4d:7f:64:e0:fa:2b:
#                    da:73:83:81:ff:91:03:bd:94:bb:e4:b8:8e:9c:32:
#                    63:cd:9f:bb:68:81:b1:84:5b:af:36:bf:77:ee:1d:
#                    7f:f7:49:9b:52:ec:d2:77:5a:7d:91:9d:4d:c2:39:
#                    2d:e4:ba:82:f8:6f:f2:4e:1e:0f:4e:e6:3f:59:a5:
#                    23:dc:3d:87:a8:28:58:28:d1:f1:1b:36:db:4f:c4:
#                    ff:e1:8c:5b:72:8c:c7:26:03:27:a3:39:0a:01:aa:
#                    c0:b2:31:60:83:22:a1:4f:12:09:01:11:af:34:d4:
#                    cf:d7:ae:62:d3:05:07:b4:31:75:e0:0d:6d:57:4f:
#                    69:87:f9:57:a9:ba:15:f6:c8:52:6d:a1:cb:9c:1f:
#                    e5:fc:78:a8:35:9a:9f:41:14:ce:a5:b4:ce:94:08:
#                    1c:09:ad:56:e5:da:b6:49:9a:4a:ea:63:18:53:9c:
#                    2c:2e:c3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                37:5D:A6:9A:74:32:C2:C2:F9:C7:A6:15:10:59:B8:E4:FD:E5:B8:6D
#    Signature Algorithm: sha256WithRSAEncryption
#         af:a7:cf:de:ff:e0:bd:42:8d:4d:e5:22:96:df:68:ea:7d:4d:
#         2a:7d:d0:ad:3d:16:5c:43:e7:7d:c0:86:e8:7a:35:63:f1:cc:
#         81:c8:c6:0b:e8:2e:52:35:a4:a6:49:90:63:51:ac:34:ac:05:
#         3b:57:00:e9:d3:62:d3:d9:29:d5:54:be:1c:10:91:9c:b2:6d:
#         fe:59:fd:79:f7:ea:56:d0:9e:68:54:42:8f:26:52:e2:4c:df:
#         2f:97:a6:2f:d2:07:98:a8:f3:60:5d:4b:9a:58:57:88:ef:82:
#         e5:fa:af:6c:81:4b:92:8f:40:9a:93:46:59:cb:5f:78:16:b1:
#         67:3e:42:0b:df:28:d9:b0:ad:98:20:be:43:7c:d1:5e:1a:09:
#         17:24:8d:7b:5d:95:e9:ab:c1:60:ab:5b:18:64:80:fb:ad:e0:
#         06:7d:1d:ca:59:b8:f3:78:29:67:c6:56:1d:af:b6:b5:74:2a:
#         76:a1:3f:fb:75:30:9f:94:5e:3b:a5:60:f3:cb:5c:0c:e2:0e:
#         c9:60:f8:c9:1f:16:8a:26:dd:e7:27:7f:eb:25:a6:8a:bd:b8:
#         2d:36:10:9a:b1:58:4d:9a:68:4f:60:54:e5:f6:46:13:8e:88:
#         ac:bc:21:42:12:ad:c6:4a:89:7d:9b:c1:d8:2d:e9:96:03:f4:
#         a2:74:0c:bc:00:1d:bf:d6:37:25:67:b4:72:8b:af:85:bd:ea:
#         2a:03:8f:cc:fb:3c:44:24:82:e2:01:a5:0b:59:b6:34:8d:32:
#         0b:12:0d:eb:27:c2:fd:41:d7:40:3c:72:46:29:c0:8c:ea:ba:
#         0f:f1:06:93:2e:f7:9c:a8:f4:60:3e:a3:f1:38:5e:8e:13:c1:
#         b3:3a:97:87:3f:92:ca:78:a9:1c:af:d0:b0:1b:26:1e:be:70:
#         ec:7a:f5:33:98:ea:5c:ff:2b:0b:04:4e:43:dd:63:7e:0e:a7:
#         4e:78:03:95:3e:d4:2d:30:95:11:10:28:2e:bf:a0:02:3e:ff:
#         5e:59:d3:05:0e:95:5f:53:45:ef:6b:87:d5:48:cd:16:a6:96:
#         83:e1:df:b3:06:f3:c1:14:db:a7:ec:1c:8b:5d:90:90:0d:72:
#         51:e7:61:f9:14:ca:af:83:8f:bf:af:b1:0a:59:5d:dc:5c:d7:
#         e4:96:ad:5b:60:1d:da:ae:97:b2:39:d9:06:f5:76:00:13:f8:
#         68:4c:21:b0:35:c4:dc:55:b2:c9:c1:41:5a:1c:89:c0:8c:6f:
#         74:a0:6b:33:4d:b5:01:28:fd:ad:ad:89:17:3b:a6:9a:84:bc:
#         eb:8c:ea:c4:71:24:a8:ba:29:f9:08:b2:27:56:35:32:5f:ea:
#         39:fb:31:9a:d5:19:cc:f0

[p11-kit-object-v1]
label: "CommScope Public Trust RSA Root-02"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA4foO+2gAEshN1awixDUB
O8VU5Vl2Y6V/68HEapi9Mo0XgOtdutFiPSUjGTUU6X+JpxtiPNZQ5zSVAzKxtJMi
Pafise3me04uh5sNM3UK3qo1537lNpiiriWelbMylqQrWB7vP/5iNEhR0bSNQq1g
2klqlXDd0gDizFdjAnuW3UmXW5JOldP5yykfGEr4ASrSYwluJOmJ0uXHIkzcc4ZH
AKoNiI6uhX1K6bszTw5ScJ2V43xtllstPV+hg0ZdtuMluHynGYAc6mVD3JF5Nix0
fPJnBsmJydu/2mi/I+3ca60og3kv7DilDTcBZyea6TPZM183ocXwqz36eLDnLJ/2
Pp9g4O9I6ZBFHgVReBosEixcKKwNoiOeNI8F5qIzzhF3E9QOpB5CH4bNcP7ZLhU9
Hbu48lNX28zGdCmcGLM2dTguD1Sh+JIfiZZPu9Tunek7NkK1Cjsq1GR5NhDh+ZED
K3sgVM0NGRrIQTI00bCZ4ZAeAUA2tbf6qeV3daQigV2wi+QnEg9UiMbbhXTmt8DX
pin6297zk5cnBFUvCm83xT0TrwoAqSyLHIEo1++GMamu8m64ymosVEfYKogur8EH
EHisEaIvQvA3xfK4Vt0OYi3OLVZ+VfKnRPYrMvQjqEfo1CoBeM9qwzeonmXSLOX6
ujPBBkT25s+lDadmCDSKLPMCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "CommScope Public Trust RSA Root-02"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:16:bf:3b:7e:39:95:71:8d:d1:aa:00:a5:86:0d:2b:8f:7a:05:4e
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=CommScope, CN=CommScope Public Trust RSA Root-02
#        Validity
#            Not Before: Apr 28 17:16:43 2021 GMT
#            Not After : Apr 28 17:16:42 2046 GMT
#        Subject: C=US, O=CommScope, CN=CommScope Public Trust RSA Root-02
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:e1:fa:0e:fb:68:00:12:c8:4d:d5:ac:22:c4:35:
#                    01:3b:c5:54:e5:59:76:63:a5:7f:eb:c1:c4:6a:98:
#                    bd:32:8d:17:80:eb:5d:ba:d1:62:3d:25:23:19:35:
#                    14:e9:7f:89:a7:1b:62:3c:d6:50:e7:34:95:03:32:
#                    b1:b4:93:22:3d:a7:e2:b1:ed:e6:7b:4e:2e:87:9b:
#                    0d:33:75:0a:de:aa:35:e7:7e:e5:36:98:a2:ae:25:
#                    9e:95:b3:32:96:a4:2b:58:1e:ef:3f:fe:62:34:48:
#                    51:d1:b4:8d:42:ad:60:da:49:6a:95:70:dd:d2:00:
#                    e2:cc:57:63:02:7b:96:dd:49:97:5b:92:4e:95:d3:
#                    f9:cb:29:1f:18:4a:f8:01:2a:d2:63:09:6e:24:e9:
#                    89:d2:e5:c7:22:4c:dc:73:86:47:00:aa:0d:88:8e:
#                    ae:85:7d:4a:e9:bb:33:4f:0e:52:70:9d:95:e3:7c:
#                    6d:96:5b:2d:3d:5f:a1:83:46:5d:b6:e3:25:b8:7c:
#                    a7:19:80:1c:ea:65:43:dc:91:79:36:2c:74:7c:f2:
#                    67:06:c9:89:c9:db:bf:da:68:bf:23:ed:dc:6b:ad:
#                    28:83:79:2f:ec:38:a5:0d:37:01:67:27:9a:e9:33:
#                    d9:33:5f:37:a1:c5:f0:ab:3d:fa:78:b0:e7:2c:9f:
#                    f6:3e:9f:60:e0:ef:48:e9:90:45:1e:05:51:78:1a:
#                    2c:12:2c:5c:28:ac:0d:a2:23:9e:34:8f:05:e6:a2:
#                    33:ce:11:77:13:d4:0e:a4:1e:42:1f:86:cd:70:fe:
#                    d9:2e:15:3d:1d:bb:b8:f2:53:57:db:cc:c6:74:29:
#                    9c:18:b3:36:75:38:2e:0f:54:a1:f8:92:1f:89:96:
#                    4f:bb:d4:ee:9d:e9:3b:36:42:b5:0a:3b:2a:d4:64:
#                    79:36:10:e1:f9:91:03:2b:7b:20:54:cd:0d:19:1a:
#                    c8:41:32:34:d1:b0:99:e1:90:1e:01:40:36:b5:b7:
#                    fa:a9:e5:77:75:a4:22:81:5d:b0:8b:e4:27:12:0f:
#                    54:88:c6:db:85:74:e6:b7:c0:d7:a6:29:fa:db:de:
#                    f3:93:97:27:04:55:2f:0a:6f:37:c5:3d:13:af:0a:
#                    00:a9:2c:8b:1c:81:28:d7:ef:86:31:a9:ae:f2:6e:
#                    b8:ca:6a:2c:54:47:d8:2a:88:2e:af:c1:07:10:78:
#                    ac:11:a2:2f:42:f0:37:c5:f2:b8:56:dd:0e:62:2d:
#                    ce:2d:56:7e:55:f2:a7:44:f6:2b:32:f4:23:a8:47:
#                    e8:d4:2a:01:78:cf:6a:c3:37:a8:9e:65:d2:2c:e5:
#                    fa:ba:33:c1:06:44:f6:e6:cf:a5:0d:a7:66:08:34:
#                    8a:2c:f3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                47:D0:E7:B1:22:FF:9D:2C:F5:D9:57:60:B3:B1:B1:70:95:EF:61:7A
#    Signature Algorithm: sha256WithRSAEncryption
#         86:69:b1:4d:2f:e9:9f:4f:22:93:68:8e:e4:21:99:a3:ce:45:
#         53:1b:73:44:53:00:81:61:cd:31:e3:08:ba:81:28:28:7a:92:
#         b9:b6:a8:c8:43:9e:c7:13:26:4d:c2:d8:e5:55:9c:92:5d:50:
#         d8:c2:2b:db:fe:e6:a8:97:cf:52:3a:24:c3:65:64:5c:47:31:
#         a3:65:35:13:c3:93:b9:f7:f9:51:97:bb:a4:f0:62:87:c5:d6:
#         06:d3:97:83:20:a9:7e:bb:b6:21:c2:a5:0d:84:00:e1:f2:27:
#         10:83:ba:dd:03:81:d5:dd:68:c3:66:10:c8:d1:76:b4:b3:6f:
#         29:9e:00:f9:c2:29:f5:b1:93:19:52:69:1a:2c:4c:a0:8b:e0:
#         15:9a:31:2f:d3:88:95:59:6e:e5:c4:b3:50:c8:14:08:4a:9b:
#         8b:13:83:b1:a4:72:b2:3b:76:33:41:dc:dc:aa:a6:07:6f:1d:
#         24:12:9f:c8:76:bd:2f:d9:8e:f4:2c:ee:b7:d2:38:10:24:36:
#         51:2f:e3:5c:5d:81:21:a7:da:bb:4e:ff:e6:07:a8:fe:b9:0d:
#         27:6c:bb:70:5a:55:7a:13:e9:f1:2a:49:69:c7:5f:87:57:4c:
#         43:79:6d:3a:65:e9:30:5c:41:ee:eb:77:a5:73:12:88:e8:bf:
#         7d:ae:e5:c4:a8:1f:0d:8e:1c:6d:50:02:4f:26:18:43:de:8f:
#         55:85:b1:0b:37:05:60:c9:55:39:12:04:a1:2a:cf:71:16:9f:
#         36:51:49:bf:70:3b:9e:67:9c:fb:7b:79:c9:39:1c:78:ac:77:
#         91:54:9a:b8:75:0a:81:52:97:e3:66:61:6b:ed:3e:38:1e:96:
#         61:55:e1:91:54:8c:ed:8c:24:1f:81:c9:10:9a:73:99:2b:16:
#         4e:72:00:3f:54:1b:f8:8d:ba:8b:e7:14:d6:b6:45:4f:60:ec:
#         96:ae:c3:2f:02:4e:5d:9d:96:49:72:00:b2:ab:75:5c:0f:68:
#         5b:1d:65:c2:5f:33:0f:1e:0f:f0:3b:86:f5:b0:4e:bb:9c:f7:
#         ea:25:05:dc:ad:a2:9b:4b:17:01:be:42:df:35:21:1d:ad:ab:
#         ae:f4:bf:ae:1f:1b:d3:e2:3b:fc:b3:72:73:1c:9b:28:90:89:
#         13:3d:1d:c1:00:47:09:96:9a:38:1b:dd:b1:cf:0d:c2:b4:44:
#         f3:96:95:ce:32:3a:8f:34:9c:e0:17:c7:5e:ce:ae:0d:db:87:
#         38:e5:3f:5b:fd:9b:19:e1:31:41:7a:70:aa:23:6b:01:e1:45:
#         4c:cd:94:ce:3b:9e:2d:e7:88:02:22:f4:6e:e8:c8:ec:d6:3c:
#         f3:b9:b2:d7:77:7a:ac:7b

[p11-kit-object-v1]
label: "Common Policy"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAl429MyfkrVv7eL0vR0du
x3jpk5yk3skc/S8bOTisRxfAfncpADsDH2gPzU2l7ne4LGJrMfb6cgl9MCkGfOd8
oz2EGIodriySqB/oXk+Njus/GvicCmedsGdN8C7QMN7DlLCgzy4KNH9UCdM2vaRJ
V1Jz6Z3+5Eh5RhtbjTLkpUhk8yINkp0IFb9gPIP3RyIlIq0pcbd37xfJoraUXsgw
kKQUSFxWVwtBTAXUKkw/rhKbWRF1cAciaS0s0zHMkn7MzaR+lEeqnAkI9kuvUuhq
QJHFVb1AschtV4aVF+Yfc75HLj6LTBe5uSUcpVIXNghZwEK+Ciu0VlE8G1XJjJB3
6wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Common Policy"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            29:36:47:aa:e3:8a:ac:86:4a:23:56:f2:ca:b7:61:af
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=us, O=U.S. Government, OU=FBCA, CN=Common Policy
#        Validity
#            Not Before: Oct 15 15:58:00 2007 GMT
#            Not After : Oct 15 16:08:00 2027 GMT
#        Subject: C=us, O=U.S. Government, OU=FBCA, CN=Common Policy
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:97:8d:bd:33:27:e4:ad:5b:fb:78:bd:2f:47:47:
#                    6e:c7:78:e9:93:9c:a4:de:c9:1c:fd:2f:1b:39:38:
#                    ac:47:17:c0:7e:77:29:00:3b:03:1f:68:0f:cd:4d:
#                    a5:ee:77:b8:2c:62:6b:31:f6:fa:72:09:7d:30:29:
#                    06:7c:e7:7c:a3:3d:84:18:8a:1d:ae:2c:92:a8:1f:
#                    e8:5e:4f:8d:8e:eb:3f:1a:f8:9c:0a:67:9d:b0:67:
#                    4d:f0:2e:d0:30:de:c3:94:b0:a0:cf:2e:0a:34:7f:
#                    54:09:d3:36:bd:a4:49:57:52:73:e9:9d:fe:e4:48:
#                    79:46:1b:5b:8d:32:e4:a5:48:64:f3:22:0d:92:9d:
#                    08:15:bf:60:3c:83:f7:47:22:25:22:ad:29:71:b7:
#                    77:ef:17:c9:a2:b6:94:5e:c8:30:90:a4:14:48:5c:
#                    56:57:0b:41:4c:05:d4:2a:4c:3f:ae:12:9b:59:11:
#                    75:70:07:22:69:2d:2c:d3:31:cc:92:7e:cc:cd:a4:
#                    7e:94:47:aa:9c:09:08:f6:4b:af:52:e8:6a:40:91:
#                    c5:55:bd:40:b1:c8:6d:57:86:95:17:e6:1f:73:be:
#                    47:2e:3e:8b:4c:17:b9:b9:25:1c:a5:52:17:36:08:
#                    59:c0:42:be:0a:2b:b4:56:51:3c:1b:55:c9:8c:90:
#                    77:eb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                2F:58:97:D8:A9:05:98:A5:56:1F:FB:D9:AB:75:EF:02:3C:36:34:C7
#            1.3.6.1.4.1.311.21.1: 
#                .....
#            1.3.6.1.4.1.311.21.2: 
#                ..v.`...V).u..pc..G...
#    Signature Algorithm: sha1WithRSAEncryption
#         60:ae:f3:48:16:40:72:a6:08:88:c9:bc:47:2c:24:4b:5d:a0:
#         91:73:ed:65:78:90:f0:67:90:7a:a5:bf:0a:ad:b6:2a:f9:99:
#         67:df:83:c5:77:1f:34:09:38:f9:7e:9e:41:e0:48:60:fe:e2:
#         aa:5d:87:88:ea:88:fd:5c:45:b2:c9:6a:da:7d:a4:ad:b1:4f:
#         bf:1c:0d:9f:1e:9a:c0:d5:14:73:38:2b:8a:78:40:6e:30:f7:
#         62:e1:cd:99:fc:51:69:67:6c:11:dd:b8:10:a3:68:de:26:a5:
#         56:fd:36:6c:37:98:6c:fb:ee:7c:3c:6c:6b:70:3f:f7:48:37:
#         09:8f:0b:42:81:ad:46:46:b8:0b:83:06:f4:1b:38:a0:7f:4f:
#         cd:0b:ef:83:89:87:97:1c:8a:30:67:dc:fd:54:a1:03:7e:01:
#         cb:85:4c:b1:0b:29:c3:be:ec:7c:e1:3f:0f:09:52:3c:2f:a7:
#         9a:48:fe:37:e9:11:06:58:e1:36:41:8a:c4:b6:bf:8e:dd:ce:
#         4a:b3:bc:1a:c0:cd:fa:1a:99:d2:71:9b:fa:cf:bc:f2:c4:54:
#         a3:88:35:76:cc:1b:2c:46:6f:0c:b4:d1:c3:61:76:92:74:11:
#         ea:4b:80:8d:1c:89:11:8b:ec:5b:ff:17:c9:48:fc:e7:e0:06:
#         11:e2:84:5e

[p11-kit-object-v1]
label: "Comodo AAA Services root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvkCd9G7h6naHHE1FRI6+
RsiDBp3BKv4YH47kAvrzq11QihYxC5oG0MVwIs1JLVRjzLZuaEYLU+rLTCTAvHJO
6vEVrvRUmhIKw3qyM2Di2olV8yJY897cz++DhqKMlE+faPKYkEaEJ8d2v+PMNSyL
XgdkZYLASLCokflhn3YgUKiRx2a163hiA1bwihoT6jGjHqCZ/Tj29icyWG8H9Wu4
+xQrr7eqzNZjX3OM2gWZqDioyxd4NlGs6Z70eDqNzw/ZQuKYDKsvnw4B3u+fmUnx
Ld+sdE0bmLVHxeUp0fmQGMdinL6DxyZ7Poolx8DdneY1aBAgnY/Y3tLDhJwNXugv
yQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Comodo AAA Services root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEMjCCAxqgAwIBAgIBATANBgkqhkiG9w0BAQUFADB7MQswCQYDVQQGEwJHQjEb
MBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHDAdTYWxmb3JkMRow
GAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEhMB8GA1UEAwwYQUFBIENlcnRpZmlj
YXRlIFNlcnZpY2VzMB4XDTA0MDEwMTAwMDAwMFoXDTI4MTIzMTIzNTk1OVowezEL
MAkGA1UEBhMCR0IxGzAZBgNVBAgMEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UE
BwwHU2FsZm9yZDEaMBgGA1UECgwRQ29tb2RvIENBIExpbWl0ZWQxITAfBgNVBAMM
GEFBQSBDZXJ0aWZpY2F0ZSBTZXJ2aWNlczCCASIwDQYJKoZIhvcNAQEBBQADggEP
ADCCAQoCggEBAL5AnfRu4ep2hxxNRUSOvkbIgwadwSr+GB+O5AL686tdUIoWMQua
BtDFcCLNSS1UY8y2bmhGC1Pqy0wkwLxyTurxFa70VJoSCsN6sjNg4tqJVfMiWPPe
3M/vg4aijJRPn2jymJBGhCfHdr/jzDUsi14HZGWCwEiwqJH5YZ92IFCokcdmtet4
YgNW8IoaE+oxox6gmf049vYnMlhvB/VruPsUK6+3qszWY19zjNoFmag4qMsXeDZR
rOme9Hg6jc8P2ULimAyrL58OAd7vn5lJ8S3frHRNG5i1R8XlKdH5kBjHYpy+g8cm
ez6KJcfA3Z3mNWgQIJ2P2N7Sw4ScDV7oL8kCAwEAAaOBwDCBvTAdBgNVHQ4EFgQU
oBEKIz6W8Qfs4q8p74Klf9AwpLQwDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQF
MAMBAf8wewYDVR0fBHQwcjA4oDagNIYyaHR0cDovL2NybC5jb21vZG9jYS5jb20v
QUFBQ2VydGlmaWNhdGVTZXJ2aWNlcy5jcmwwNqA0oDKGMGh0dHA6Ly9jcmwuY29t
b2RvLm5ldC9BQUFDZXJ0aWZpY2F0ZVNlcnZpY2VzLmNybDANBgkqhkiG9w0BAQUF
AAOCAQEACFb8AvCb6P+k+tZ7xkSAzk/ExfYAWMymtrwUSWgEdujm7l3sAg9g1o1Q
GE8mTgHj5rCl7r+8dFRBv/38ErjHT1r0iWAFf2C3BUrz9vHCv8S5dIa2LX1rzNLz
Rt0vxuBqw8M0Ayx9lt1awg6nCpnBBYurDC/zXDrPbDdVCYfeU0BsWO/8tqtlbgT2
G9w84FoVxp7Z8VlIMCFlA2zs6SFz7JsDoeA3raAVGI/6ugLOpyypEBMs1OUIJqsi
l2D4kF501KKaU73yqWjgom7C12yxow+ev+to51byrvLjKzg6CYG1a4XXvi3tPxq3
smPi9WIsgtRqAEFQ8TmDn5XpNpaYbg==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services
#        Validity
#            Not Before: Jan  1 00:00:00 2004 GMT
#            Not After : Dec 31 23:59:59 2028 GMT
#        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:be:40:9d:f4:6e:e1:ea:76:87:1c:4d:45:44:8e:
#                    be:46:c8:83:06:9d:c1:2a:fe:18:1f:8e:e4:02:fa:
#                    f3:ab:5d:50:8a:16:31:0b:9a:06:d0:c5:70:22:cd:
#                    49:2d:54:63:cc:b6:6e:68:46:0b:53:ea:cb:4c:24:
#                    c0:bc:72:4e:ea:f1:15:ae:f4:54:9a:12:0a:c3:7a:
#                    b2:33:60:e2:da:89:55:f3:22:58:f3:de:dc:cf:ef:
#                    83:86:a2:8c:94:4f:9f:68:f2:98:90:46:84:27:c7:
#                    76:bf:e3:cc:35:2c:8b:5e:07:64:65:82:c0:48:b0:
#                    a8:91:f9:61:9f:76:20:50:a8:91:c7:66:b5:eb:78:
#                    62:03:56:f0:8a:1a:13:ea:31:a3:1e:a0:99:fd:38:
#                    f6:f6:27:32:58:6f:07:f5:6b:b8:fb:14:2b:af:b7:
#                    aa:cc:d6:63:5f:73:8c:da:05:99:a8:38:a8:cb:17:
#                    78:36:51:ac:e9:9e:f4:78:3a:8d:cf:0f:d9:42:e2:
#                    98:0c:ab:2f:9f:0e:01:de:ef:9f:99:49:f1:2d:df:
#                    ac:74:4d:1b:98:b5:47:c5:e5:29:d1:f9:90:18:c7:
#                    62:9c:be:83:c7:26:7b:3e:8a:25:c7:c0:dd:9d:e6:
#                    35:68:10:20:9d:8f:d8:de:d2:c3:84:9c:0d:5e:e8:
#                    2f:c9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A0:11:0A:23:3E:96:F1:07:EC:E2:AF:29:EF:82:A5:7F:D0:30:A4:B4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.comodoca.com/AAACertificateServices.crl
#
#                Full Name:
#                  URI:http://crl.comodo.net/AAACertificateServices.crl
#
#    Signature Algorithm: sha1WithRSAEncryption
#         08:56:fc:02:f0:9b:e8:ff:a4:fa:d6:7b:c6:44:80:ce:4f:c4:
#         c5:f6:00:58:cc:a6:b6:bc:14:49:68:04:76:e8:e6:ee:5d:ec:
#         02:0f:60:d6:8d:50:18:4f:26:4e:01:e3:e6:b0:a5:ee:bf:bc:
#         74:54:41:bf:fd:fc:12:b8:c7:4f:5a:f4:89:60:05:7f:60:b7:
#         05:4a:f3:f6:f1:c2:bf:c4:b9:74:86:b6:2d:7d:6b:cc:d2:f3:
#         46:dd:2f:c6:e0:6a:c3:c3:34:03:2c:7d:96:dd:5a:c2:0e:a7:
#         0a:99:c1:05:8b:ab:0c:2f:f3:5c:3a:cf:6c:37:55:09:87:de:
#         53:40:6c:58:ef:fc:b6:ab:65:6e:04:f6:1b:dc:3c:e0:5a:15:
#         c6:9e:d9:f1:59:48:30:21:65:03:6c:ec:e9:21:73:ec:9b:03:
#         a1:e0:37:ad:a0:15:18:8f:fa:ba:02:ce:a7:2c:a9:10:13:2c:
#         d4:e5:08:26:ab:22:97:60:f8:90:5e:74:d4:a2:9a:53:bd:f2:
#         a9:68:e0:a2:6e:c2:d7:6c:b1:a3:0f:9e:bf:eb:68:e7:56:f2:
#         ae:f2:e3:2b:38:3a:09:81:b5:6b:85:d7:be:2d:ed:3f:1a:b7:
#         b2:63:e2:f5:62:2c:82:d4:6a:00:41:50:f1:39:83:9f:95:e9:
#         36:96:98:6e

[p11-kit-object-v1]
label: "Configuration"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqPK9iL7Ar0S+m0qiYxzW
VqsdKbIcqhUeRdGsnaBh1TX55FqDNmND3jhXFfzwlGL0B4BXg1eosxW8+00jeF/a
9seBFr6r3+fcg1NzK7bdY4iNRfMN3X2/6IiwZsFDXTfSbaGcmkbDsz/QwqCKlC6D
pjzDYL0szB6LY4J2QSjkFWtcDGE5VThByshm6Me4l1IQJnC3B7cJHqYTXq6ZWiZv
ZD3sxNOluVx2ZK1jfYiD4kvMDd7UxtMIQvVbF/Vx4ZEtA5+eHNyLcqToR2QQh2Qw
c9jytPFXJpNXy7bHDYiLHc8FMF0E1nY36CAyV78PnDPGCIz2tMKpBrBbMKEeLRK6
PwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Configuration"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1224507125 (0x48fc7ef5)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: DC=rs, DC=posta, DC=ca, CN=Configuration, CN=Services, CN=Public Key Services, CN=AIA, CN=Posta CA Root
#        Validity
#            Not Before: Oct 20 12:22:08 2008 GMT
#            Not After : Oct 20 12:52:08 2028 GMT
#        Subject: DC=rs, DC=posta, DC=ca, CN=Configuration, CN=Services, CN=Public Key Services, CN=AIA, CN=Posta CA Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a8:f2:bd:88:be:c0:af:44:be:9b:4a:a2:63:1c:
#                    d6:56:ab:1d:29:b2:1c:aa:15:1e:45:d1:ac:9d:a0:
#                    61:d5:35:f9:e4:5a:83:36:63:43:de:38:57:15:fc:
#                    f0:94:62:f4:07:80:57:83:57:a8:b3:15:bc:fb:4d:
#                    23:78:5f:da:f6:c7:81:16:be:ab:df:e7:dc:83:53:
#                    73:2b:b6:dd:63:88:8d:45:f3:0d:dd:7d:bf:e8:88:
#                    b0:66:c1:43:5d:37:d2:6d:a1:9c:9a:46:c3:b3:3f:
#                    d0:c2:a0:8a:94:2e:83:a6:3c:c3:60:bd:2c:cc:1e:
#                    8b:63:82:76:41:28:e4:15:6b:5c:0c:61:39:55:38:
#                    41:ca:c8:66:e8:c7:b8:97:52:10:26:70:b7:07:b7:
#                    09:1e:a6:13:5e:ae:99:5a:26:6f:64:3d:ec:c4:d3:
#                    a5:b9:5c:76:64:ad:63:7d:88:83:e2:4b:cc:0d:de:
#                    d4:c6:d3:08:42:f5:5b:17:f5:71:e1:91:2d:03:9f:
#                    9e:1c:dc:8b:72:a4:e8:47:64:10:87:64:30:73:d8:
#                    f2:b4:f1:57:26:93:57:cb:b6:c7:0d:88:8b:1d:cf:
#                    05:30:5d:04:d6:76:37:e8:20:32:57:bf:0f:9c:33:
#                    c6:08:8c:f6:b4:c2:a9:06:b0:5b:30:a1:1e:2d:12:
#                    ba:3f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.15672.10.10.1.1
#                  CPS: http://www.ca.posta.rs/dokumentacija
#                  User Notice:
#                    Explicit Text: Ovo je elektronski sertifikat ROOT CA servera Sertifikacionog tela Poste: "Posta CA Root".
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  DirName: DC = rs, DC = posta, DC = ca, CN = Configuration, CN = Services, CN = Public Key Services, CN = AIA, CN = Posta CA Root, CN = CRL1
#
#                Full Name:
#                  URI:ldap://ldap.ca.posta.rs/cn=Posta%20CA%20Root,cn=AIA,cn=Public%20Key%20Services,cn=Services,cn=Configuration,dc=ca,dc=posta,dc=rs?certificateRevocationList%3Bbinary
#                  URI:http://sertifikati.ca.posta.rs/crl/PostaCARoot.crl
#
#            X509v3 Private Key Usage Period: 
#                Not Before: Oct 20 12:22:08 2008 GMT, Not After: Oct 20 12:52:08 2028 GMT
#            X509v3 Authority Key Identifier: 
#                keyid:F2:CB:8D:E2:35:EF:10:43:C4:DA:7B:CA:FA:EB:89:03:A1:22:AF:B8
#
#            X509v3 Subject Key Identifier: 
#                F2:CB:8D:E2:35:EF:10:43:C4:DA:7B:CA:FA:EB:89:03:A1:22:AF:B8
#            1.2.840.113533.7.65.0: 
#                0...V7.1:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         70:46:a1:c8:e4:17:05:66:0f:9d:e2:43:31:48:1d:92:90:19:
#         c4:85:01:85:16:6e:f8:92:ce:7b:ae:52:16:c4:97:8d:0a:28:
#         7d:d5:cb:6c:e3:d5:e5:0e:32:4f:c8:68:2d:34:08:3d:73:a8:
#         93:42:29:33:46:0c:44:67:f1:d0:9a:9c:69:01:e5:91:f1:0d:
#         c9:69:3c:33:4b:4e:19:93:63:33:05:29:21:a1:d8:ff:3e:54:
#         ab:9e:f6:a1:7a:02:d7:dc:ff:a5:3e:54:78:f9:d3:c1:ca:12:
#         95:f9:89:9e:14:e2:f2:a1:44:b2:cb:e9:2d:75:35:cc:96:55:
#         bb:38:0b:88:26:da:d6:ac:ef:d3:52:a2:0b:4b:3a:53:da:4b:
#         22:53:cc:ca:2a:24:9a:62:aa:c4:32:9a:7e:dc:cc:c1:b2:6c:
#         cd:8f:d9:b4:c0:cf:f5:02:c0:8c:2b:84:5b:1b:40:bc:10:d0:
#         50:e1:61:d6:66:56:9a:04:91:a5:e3:d5:bd:a0:2e:22:81:b1:
#         d9:38:da:e4:a8:87:5f:3c:46:04:96:de:c9:9a:3b:bf:ad:78:
#         6c:1d:49:49:b4:69:b9:70:0f:05:92:56:b6:fd:af:ae:f8:20:
#         2d:47:23:cf:b6:1c:cd:c4:9b:80:4e:f9:bf:31:c0:54:be:bb:
#         31:7f:f3:3e

[p11-kit-object-v1]
label: "Correo Uruguayo - Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAsT3SpyVwl4N4DtcyyWYO
eCPkKhvsw+9ThYO7ys9+6lOZbSdVyNE4IUBuSU3DPfYJKwYZQ6mYyQFO9KqAMAdV
8/W3fZm3c4XVHGVWbA0ymwgONGEqQAmEN8Nm7Q1MnAx4QDrs7avMpITydTGVQKiq
u5O1d5hs8sjgIVoj5EKnk8ioHTjOpBpAQL88k5CbX9aUwSJbRtfFABXVj8b33guv
bosFj1uAlQ6jvZPMkPJ940h+ss0HPRvtFJB08900H3zkA1nxLc3go6A7IS5crqwI
BlAVMTXuX/kfDTSlgG5ick/jIbo4QF1f22gqXDTGCDv2fC6ojcS3pq3Zm78ZQQ5I
OQlmbg00AcW7BxEjpNr+YJYoR9yPZ5sTr315DnjNwIwvuyEs/HQWHt7AMp36eDqG
uj7JeAoA0eTgyRLiW9zru4CaMjWr8DDDDkiEL40ICvYsjE0ygEVVCNvNDai/CHq4
52hdmpSJlbz8mo64fzrYbNX0GKxp4qTBC7Mfo4Kf84o8hUA4CfrCBT7hnIn6wwVs
CI9dUfR/u8TzbAG9PU/EGYs52crM6XmIBFWrbbjaFkVlORUFGPsLLHMB7ZRS5X0M
ATsJoE3xPQiBZjQ2F0TwZ/Nb8gW2IZhY2fShN9lv5u9WxPu/VmICrDAwtgLW0hb8
TuqHQ5poXYijkUYoK785FRUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Correo Uruguayo - Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            ca:22:79:08:23:2a:f0:f5:82:b8:85:d3:63:dd:f1
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=UY, O=ADMINISTRACION NACIONAL DE CORREOS, OU=SERVICIOS ELECTRONICOS, CN=Correo Uruguayo - Root CA
#        Validity
#            Not Before: Jul 14 16:52:15 2008 GMT
#            Not After : Dec 31 02:59:59 2030 GMT
#        Subject: C=UY, O=ADMINISTRACION NACIONAL DE CORREOS, OU=SERVICIOS ELECTRONICOS, CN=Correo Uruguayo - Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b1:3d:d2:a7:25:70:97:83:78:0e:d7:32:c9:66:
#                    0e:78:23:e4:2a:1b:ec:c3:ef:53:85:83:bb:ca:cf:
#                    7e:ea:53:99:6d:27:55:c8:d1:38:21:40:6e:49:4d:
#                    c3:3d:f6:09:2b:06:19:43:a9:98:c9:01:4e:f4:aa:
#                    80:30:07:55:f3:f5:b7:7d:99:b7:73:85:d5:1c:65:
#                    56:6c:0d:32:9b:08:0e:34:61:2a:40:09:84:37:c3:
#                    66:ed:0d:4c:9c:0c:78:40:3a:ec:ed:ab:cc:a4:84:
#                    f2:75:31:95:40:a8:aa:bb:93:b5:77:98:6c:f2:c8:
#                    e0:21:5a:23:e4:42:a7:93:c8:a8:1d:38:ce:a4:1a:
#                    40:40:bf:3c:93:90:9b:5f:d6:94:c1:22:5b:46:d7:
#                    c5:00:15:d5:8f:c6:f7:de:0b:af:6e:8b:05:8f:5b:
#                    80:95:0e:a3:bd:93:cc:90:f2:7d:e3:48:7e:b2:cd:
#                    07:3d:1b:ed:14:90:74:f3:dd:34:1f:7c:e4:03:59:
#                    f1:2d:cd:e0:a3:a0:3b:21:2e:5c:ae:ac:08:06:50:
#                    15:31:35:ee:5f:f9:1f:0d:34:a5:80:6e:62:72:4f:
#                    e3:21:ba:38:40:5d:5f:db:68:2a:5c:34:c6:08:3b:
#                    f6:7c:2e:a8:8d:c4:b7:a6:ad:d9:9b:bf:19:41:0e:
#                    48:39:09:66:6e:0d:34:01:c5:bb:07:11:23:a4:da:
#                    fe:60:96:28:47:dc:8f:67:9b:13:af:7d:79:0e:78:
#                    cd:c0:8c:2f:bb:21:2c:fc:74:16:1e:de:c0:32:9d:
#                    fa:78:3a:86:ba:3e:c9:78:0a:00:d1:e4:e0:c9:12:
#                    e2:5b:dc:eb:bb:80:9a:32:35:ab:f0:30:c3:0e:48:
#                    84:2f:8d:08:0a:f6:2c:8c:4d:32:80:45:55:08:db:
#                    cd:0d:a8:bf:08:7a:b8:e7:68:5d:9a:94:89:95:bc:
#                    fc:9a:8e:b8:7f:3a:d8:6c:d5:f4:18:ac:69:e2:a4:
#                    c1:0b:b3:1f:a3:82:9f:f3:8a:3c:85:40:38:09:fa:
#                    c2:05:3e:e1:9c:89:fa:c3:05:6c:08:8f:5d:51:f4:
#                    7f:bb:c4:f3:6c:01:bd:3d:4f:c4:19:8b:39:d9:ca:
#                    cc:e9:79:88:04:55:ab:6d:b8:da:16:45:65:39:15:
#                    05:18:fb:0b:2c:73:01:ed:94:52:e5:7d:0c:01:3b:
#                    09:a0:4d:f1:3d:08:81:66:34:36:17:44:f0:67:f3:
#                    5b:f2:05:b6:21:98:58:d9:f4:a1:37:d9:6f:e6:ef:
#                    56:c4:fb:bf:56:62:02:ac:30:30:b6:02:d6:d2:16:
#                    fc:4e:ea:87:43:9a:68:5d:88:a3:91:46:28:2b:bf:
#                    39:15:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7D:BB:69:EB:88:61:E1:40:CF:47:23:64:00:86:A2:66:6B:DC:84:95
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.correo.com.uy/correocert/cps.pdf
#
#    Signature Algorithm: sha1WithRSAEncryption
#         56:df:13:89:be:62:b7:0e:81:21:73:a4:d4:37:ca:ed:b7:2f:
#         95:74:d7:89:f8:4b:47:81:ee:67:ed:b8:29:df:21:a0:fc:54:
#         67:67:c8:57:2c:5b:a1:0a:75:78:21:21:ca:a0:a8:df:6b:9c:
#         d9:36:02:8d:b8:01:c1:6f:8e:7b:6c:c9:a4:b2:c5:46:a9:ca:
#         4c:02:81:fa:a3:7b:9d:3d:48:e6:ca:40:66:d2:44:9d:76:e0:
#         55:b9:a6:9c:a7:d1:43:d8:f5:a0:b4:9d:f8:f7:e5:a6:a6:42:
#         f3:02:32:59:46:72:2b:14:ec:5e:65:d5:51:81:78:ce:aa:2f:
#         8d:96:89:79:6a:fb:0f:c8:5b:cf:b4:ae:90:b6:5f:e3:7c:62:
#         6c:b7:a6:ff:90:81:b5:98:91:73:12:30:af:c7:e8:81:02:68:
#         73:29:bb:58:75:3d:b7:d6:43:d5:ae:4d:f2:42:b9:f0:df:da:
#         31:00:13:da:e1:b3:b6:06:8b:5b:fd:c9:98:b8:a2:13:d1:ba:
#         8f:c1:8a:1a:9e:0f:ff:82:be:04:82:e5:2b:93:3e:1e:b5:a2:
#         0c:1b:c6:1a:b0:73:89:76:83:bc:8e:3b:bb:17:6d:14:c3:8b:
#         be:7d:15:26:b5:a9:9c:17:7a:50:7a:2d:eb:e9:99:94:ae:98:
#         10:bd:ee:2a:5d:5d:d6:8e:34:5b:ac:1e:87:60:6b:98:c7:87:
#         8f:d3:9c:b2:68:05:49:07:f9:a9:31:66:9c:fe:bf:a7:59:e8:
#         2c:f0:36:d4:f2:a8:19:82:c0:9e:a7:39:f9:b1:98:34:a3:1f:
#         fa:cd:c9:19:2d:78:de:b7:fd:62:f0:93:a3:fe:00:5b:d6:0a:
#         e4:f3:7e:7c:97:28:e1:05:ec:05:34:45:13:ff:29:13:61:8a:
#         27:4f:db:b8:d2:92:21:27:b5:88:77:67:a8:7e:cf:24:3c:87:
#         08:04:33:73:8f:0b:b6:86:f8:cf:ef:b2:a6:24:1e:0b:91:91:
#         00:50:16:32:12:d8:09:25:da:63:4e:dd:db:2d:d7:e7:04:6b:
#         e3:63:1f:a9:fe:a9:01:63:c4:ca:4c:14:68:83:bc:05:ac:59:
#         16:fb:6e:a1:07:6f:bb:4b:be:6d:98:48:76:25:7b:4a:11:96:
#         54:08:ac:a9:f3:37:ab:83:c3:d1:cd:81:98:c0:e5:40:35:b8:
#         9f:91:e7:6f:e6:4b:20:16:8a:53:7b:ac:3a:d1:98:35:54:d0:
#         d4:bf:ae:7e:9a:4b:1e:e9:75:a3:25:b0:3b:e7:65:bf:4f:95:
#         f4:1d:bd:c4:ba:c9:4d:81:51:c2:3f:5a:d9:12:f4:21:1b:d6:
#         95:ea:3d:90:fe:a9:93:e2

[p11-kit-object-v1]
label: "D-TRUST BR Root CA 1 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAExsvHKNH7hPWa70IUIOFDa251rfwrA4TU
dpMl11k7QWVrHuY0Krt09hLO6G3nq+Q8Tj9ECIvNFnHLv5KZ9KTXPFBUUpCFg3iU
Z2ejHAkZPXU0hd7tYH3HDLRBUrlu5e5C
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST BR Root CA 1 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7c:c9:8f:2b:84:d7:df:ea:0f:c9:65:9a:d3:4b:4d:96
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST BR Root CA 1 2020
#        Validity
#            Not Before: Feb 11 09:45:00 2020 GMT
#            Not After : Feb 11 09:44:59 2035 GMT
#        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST BR Root CA 1 2020
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:c6:cb:c7:28:d1:fb:84:f5:9a:ef:42:14:20:e1:
#                    43:6b:6e:75:ad:fc:2b:03:84:d4:76:93:25:d7:59:
#                    3b:41:65:6b:1e:e6:34:2a:bb:74:f6:12:ce:e8:6d:
#                    e7:ab:e4:3c:4e:3f:44:08:8b:cd:16:71:cb:bf:92:
#                    99:f4:a4:d7:3c:50:54:52:90:85:83:78:94:67:67:
#                    a3:1c:09:19:3d:75:34:85:de:ed:60:7d:c7:0c:b4:
#                    41:52:b9:6e:e5:ee:42
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                73:91:10:AB:FF:55:B3:5A:7C:09:25:D5:B2:BA:08:A0:6B:AB:1F:6D
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.d-trust.net/crl/d-trust_br_root_ca_1_2020.crl
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20BR%20Root%20CA%201%202020,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:94:90:2d:13:fa:e1:63:f8:61:63:e8:ad:85:
#         78:54:91:9c:b8:93:38:3e:1a:41:da:40:16:53:42:08:ca:2f:
#         8e:f1:3e:81:56:c0:aa:d8:ed:18:c4:b0:ae:f4:3e:fa:26:02:
#         31:00:f3:28:e2:c6:db:2b:99:fb:b7:51:b8:24:a3:a4:94:7a:
#         1a:3f:e6:36:e2:03:57:33:8a:30:cb:82:c7:d6:14:11:d5:75:
#         63:5b:14:95:9c:1f:01:cf:d8:d5:72:a7:0f:3b

[p11-kit-object-v1]
label: "D-TRUST EV Root CA 1 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE8QvdhkMgGd+XhegiSpvPnZi/tAUmycvj
ptKPxZ54ezGJqYmtJzxlEIL838OdTvAzI8TSMvUcsN8zF13F8LGK+e+5txTKKUrC
D6l/dWVJKjBn9GT31hp32sPCl2FCe0mt
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST EV Root CA 1 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIC2zCCAmCgAwIBAgIQXwJB13qHfEwDo6yWjfv/0DAKBggqhkjOPQQDAzBIMQsw
CQYDVQQGEwJERTEVMBMGA1UEChMMRC1UcnVzdCBHbWJIMSIwIAYDVQQDExlELVRS
VVNUIEVWIFJvb3QgQ0EgMSAyMDIwMB4XDTIwMDIxMTEwMDAwMFoXDTM1MDIxMTA5
NTk1OVowSDELMAkGA1UEBhMCREUxFTATBgNVBAoTDEQtVHJ1c3QgR21iSDEiMCAG
A1UEAxMZRC1UUlVTVCBFViBSb290IENBIDEgMjAyMDB2MBAGByqGSM49AgEGBSuB
BAAiA2IABPEL3YZDIBnfl4XoIkqbz52Yv7QFJsnL46bSj8WeeHsxiamJrSc8ZRCC
/N/DnU7wMyPE0jL1HLDfMxddxfCxivnvubcUyilKwg+pf3VlSSowZ/Rk99Yad9rD
wpdhQntJraOCAQ0wggEJMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFH8QARY3
OqQo5FD4pPfsazK2/umLMA4GA1UdDwEB/wQEAwIBBjCBxgYDVR0fBIG+MIG7MD6g
PKA6hjhodHRwOi8vY3JsLmQtdHJ1c3QubmV0L2NybC9kLXRydXN0X2V2X3Jvb3Rf
Y2FfMV8yMDIwLmNybDB5oHegdYZzbGRhcDovL2RpcmVjdG9yeS5kLXRydXN0Lm5l
dC9DTj1ELVRSVVNUJTIwRVYlMjBSb290JTIwQ0ElMjAxJTIwMjAyMCxPPUQtVHJ1
c3QlMjBHbWJILEM9REU/Y2VydGlmaWNhdGVyZXZvY2F0aW9ubGlzdDAKBggqhkjO
PQQDAwNpADBmAjEAyjzGKnXCXnViOTYAYFqLwZOZzNnbQTs7h5kXO9XMT8oi96CA
y/m0sRtW9XLS/BnRAjEAkfcwkz8QRitxpNA7RJvAKQIFskF3UfN5Wp6OFKBOQtJb
gfM0agPnIjhQW+0ZT0MW
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5f:02:41:d7:7a:87:7c:4c:03:a3:ac:96:8d:fb:ff:d0
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST EV Root CA 1 2020
#        Validity
#            Not Before: Feb 11 10:00:00 2020 GMT
#            Not After : Feb 11 09:59:59 2035 GMT
#        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST EV Root CA 1 2020
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:f1:0b:dd:86:43:20:19:df:97:85:e8:22:4a:9b:
#                    cf:9d:98:bf:b4:05:26:c9:cb:e3:a6:d2:8f:c5:9e:
#                    78:7b:31:89:a9:89:ad:27:3c:65:10:82:fc:df:c3:
#                    9d:4e:f0:33:23:c4:d2:32:f5:1c:b0:df:33:17:5d:
#                    c5:f0:b1:8a:f9:ef:b9:b7:14:ca:29:4a:c2:0f:a9:
#                    7f:75:65:49:2a:30:67:f4:64:f7:d6:1a:77:da:c3:
#                    c2:97:61:42:7b:49:ad
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                7F:10:01:16:37:3A:A4:28:E4:50:F8:A4:F7:EC:6B:32:B6:FE:E9:8B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.d-trust.net/crl/d-trust_ev_root_ca_1_2020.crl
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20EV%20Root%20CA%201%202020,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:ca:3c:c6:2a:75:c2:5e:75:62:39:36:00:60:
#         5a:8b:c1:93:99:cc:d9:db:41:3b:3b:87:99:17:3b:d5:cc:4f:
#         ca:22:f7:a0:80:cb:f9:b4:b1:1b:56:f5:72:d2:fc:19:d1:02:
#         31:00:91:f7:30:93:3f:10:46:2b:71:a4:d0:3b:44:9b:c0:29:
#         02:05:b2:41:77:51:f3:79:5a:9e:8e:14:a0:4e:42:d2:5b:81:
#         f3:34:6a:03:e7:22:38:50:5b:ed:19:4f:43:16

[p11-kit-object-v1]
label: "D-TRUST Root CA 3 2013"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxHtCkoIf7O1UmI4SwMoJ
35NuOpNcG+QQd55OaYhs9uFp8vabomGxvQcgdJhl8YwmCM2oNcqANtFjbehEeoLD
bF7eu+g20sRoNoyfMr2EIuDcwu4QRjltr5M5rofmw7wJySxrZ1vZm3Z1TAvgu8XX
vD558l++0ZBX+a72Zl8xv9Ntj6e6SvMjZbu376Ml1wrqWLbviPr6ebJSWNXwrIyh
UXQplapRO5AyA58ccnSQ3j3tYdLl4/1kR+W5t0qp9x+uloYErC/jpIF3t1oW/9gP
P/a3eMykr/pbPBJbqFKJcu+I89VEgYaVI5973bzZNO98lDyqwEHC451QGsDkGSL8
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root CA 3 2013"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1039788 (0xfddac)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 3 2013
#        Validity
#            Not Before: Sep 20 08:25:51 2013 GMT
#            Not After : Sep 20 08:25:51 2028 GMT
#        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 3 2013
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c4:7b:42:92:82:1f:ec:ed:54:98:8e:12:c0:ca:
#                    09:df:93:6e:3a:93:5c:1b:e4:10:77:9e:4e:69:88:
#                    6c:f6:e1:69:f2:f6:9b:a2:61:b1:bd:07:20:74:98:
#                    65:f1:8c:26:08:cd:a8:35:ca:80:36:d1:63:6d:e8:
#                    44:7a:82:c3:6c:5e:de:bb:e8:36:d2:c4:68:36:8c:
#                    9f:32:bd:84:22:e0:dc:c2:ee:10:46:39:6d:af:93:
#                    39:ae:87:e6:c3:bc:09:c9:2c:6b:67:5b:d9:9b:76:
#                    75:4c:0b:e0:bb:c5:d7:bc:3e:79:f2:5f:be:d1:90:
#                    57:f9:ae:f6:66:5f:31:bf:d3:6d:8f:a7:ba:4a:f3:
#                    23:65:bb:b7:ef:a3:25:d7:0a:ea:58:b6:ef:88:fa:
#                    fa:79:b2:52:58:d5:f0:ac:8c:a1:51:74:29:95:aa:
#                    51:3b:90:32:03:9f:1c:72:74:90:de:3d:ed:61:d2:
#                    e5:e3:fd:64:47:e5:b9:b7:4a:a9:f7:1f:ae:96:86:
#                    04:ac:2f:e3:a4:81:77:b7:5a:16:ff:d8:0f:3f:f6:
#                    b7:78:cc:a4:af:fa:5b:3c:12:5b:a8:52:89:72:ef:
#                    88:f3:d5:44:81:86:95:23:9f:7b:dd:bc:d9:34:ef:
#                    7c:94:3c:aa:c0:41:c2:e3:9d:50:1a:c0:e4:19:22:
#                    fc:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                3F:90:C8:7D:C7:15:6F:F3:24:8F:A9:C3:2F:4B:A2:0F:21:B2:2F:E7
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%203%202013,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#                Full Name:
#                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_3_2013.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         0e:59:0e:58:e4:74:48:23:44:cf:34:21:b5:9c:14:1a:ad:9a:
#         4b:b7:b3:88:6d:5c:a9:17:70:f0:2a:9f:8d:7b:f9:7b:85:fa:
#         c7:39:e8:10:08:b0:35:2b:5f:cf:02:d2:d3:9c:c8:0b:1e:ee:
#         05:54:ae:37:93:04:09:7d:6c:8f:c2:74:bc:f8:1c:94:be:31:
#         01:40:2d:f3:24:20:b7:84:55:2c:5c:c8:f5:74:4a:10:19:8b:
#         a3:c7:ed:35:d6:09:48:d3:0e:c0:ba:39:a8:b0:46:02:b0:db:
#         c6:88:59:c2:be:fc:7b:b1:2b:cf:7e:62:87:55:96:cc:01:6f:
#         9b:67:21:95:35:8b:f8:10:fc:71:1b:b7:4b:37:69:a6:3b:d6:
#         ec:8b:ee:c1:b0:f3:25:c9:8f:92:7d:a1:ea:c3:ca:44:bf:26:
#         a5:74:92:9c:e3:74:eb:9d:74:d9:cb:4d:87:d8:fc:b4:69:6c:
#         8b:a0:43:07:60:78:97:e9:d9:93:7c:c2:46:bc:9b:37:52:a3:
#         ed:8a:3c:13:a9:7b:53:4b:49:9a:11:05:2c:0b:6e:56:ac:1f:
#         2e:82:6c:e0:69:67:b5:0e:6d:2d:d9:e4:c0:15:f1:3f:fa:18:
#         72:e1:15:6d:27:5b:2d:30:28:2b:9f:48:9a:64:2b:99:ef:f2:
#         75:49:5f:5c

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA07JKz3pH73WbI/o6L9ZQ
RYk1OsZr2/7bAGio4AMRHTdQCJ9NSmiUNbNT0ZRjpyBWr95ReOwqPfNISFA+Ct9G
VYsnbcMQTQ2RUkPYh+BdTja1IcpfOUAEX1t+zKPGK6lAHtk2hNZI85IeNEYgJMGk
UY5KGu9QP2ldGX9Fw8cBj1HJI+hyrrS8Vgl/Esscsa8pkArJVcwP07Qa7Uc1Wkrt
nHMEIdCqvQwTtQDKJmzEawyUWpWU2lCa8f+lK2YxpMk4oN8dH7gJLvOn6GdSq5Uf
4EY+2KTDylrFMYDoSJqflGn+Gd3Yc3yBypbeju2zMgVlhDTm5v1XELVfdr8vsBAN
xQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 623603 (0x983f3)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root Class 3 CA 2 2009
#        Validity
#            Not Before: Nov  5 08:35:58 2009 GMT
#            Not After : Nov  5 08:35:58 2029 GMT
#        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST Root Class 3 CA 2 2009
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d3:b2:4a:cf:7a:47:ef:75:9b:23:fa:3a:2f:d6:
#                    50:45:89:35:3a:c6:6b:db:fe:db:00:68:a8:e0:03:
#                    11:1d:37:50:08:9f:4d:4a:68:94:35:b3:53:d1:94:
#                    63:a7:20:56:af:de:51:78:ec:2a:3d:f3:48:48:50:
#                    3e:0a:df:46:55:8b:27:6d:c3:10:4d:0d:91:52:43:
#                    d8:87:e0:5d:4e:36:b5:21:ca:5f:39:40:04:5f:5b:
#                    7e:cc:a3:c6:2b:a9:40:1e:d9:36:84:d6:48:f3:92:
#                    1e:34:46:20:24:c1:a4:51:8e:4a:1a:ef:50:3f:69:
#                    5d:19:7f:45:c3:c7:01:8f:51:c9:23:e8:72:ae:b4:
#                    bc:56:09:7f:12:cb:1c:b1:af:29:90:0a:c9:55:cc:
#                    0f:d3:b4:1a:ed:47:35:5a:4a:ed:9c:73:04:21:d0:
#                    aa:bd:0c:13:b5:00:ca:26:6c:c4:6b:0c:94:5a:95:
#                    94:da:50:9a:f1:ff:a5:2b:66:31:a4:c9:38:a0:df:
#                    1d:1f:b8:09:2e:f3:a7:e8:67:52:ab:95:1f:e0:46:
#                    3e:d8:a4:c3:ca:5a:c5:31:80:e8:48:9a:9f:94:69:
#                    fe:19:dd:d8:73:7c:81:ca:96:de:8e:ed:b3:32:05:
#                    65:84:34:e6:e6:fd:57:10:b5:5f:76:bf:2f:b0:10:
#                    0d:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                FD:DA:14:C4:9F:30:DE:21:BD:1E:42:39:FC:AB:63:23:49:E0:F1:84
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202%202009,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#                Full Name:
#                  URI:http://www.d-trust.net/crl/d-trust_root_class_3_ca_2_2009.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:97:db:30:c8:df:a4:9c:7d:21:7a:80:70:ce:14:12:69:88:
#         14:95:60:44:01:ac:b2:e9:30:4f:9b:50:c2:66:d8:7e:8d:30:
#         b5:70:31:e9:e2:69:c7:f3:70:db:20:15:86:d0:0d:f0:be:ac:
#         01:75:84:ce:7e:9f:4d:bf:b7:60:3b:9c:f3:ca:1d:e2:5e:68:
#         d8:a3:9d:97:e5:40:60:d2:36:21:fe:d0:b4:b8:17:da:74:a3:
#         7f:d4:df:b0:98:02:ac:6f:6b:6b:2c:25:24:72:a1:65:ee:25:
#         5a:e5:e6:32:e7:f2:df:ab:49:fa:f3:90:69:23:db:04:d9:e7:
#         5c:58:fc:65:d4:97:be:cc:fc:2e:0a:cc:25:2a:35:04:f8:60:
#         91:15:75:3d:41:ff:23:1f:19:c8:6c:eb:82:53:04:a6:e4:4c:
#         22:4d:8d:8c:ba:ce:5b:73:ec:64:54:50:6d:d1:9c:55:fb:69:
#         c3:36:c3:8c:bc:3c:85:a6:6b:0a:26:0d:e0:93:98:60:ae:7e:
#         c6:24:97:8a:61:5f:91:8e:66:92:09:87:36:cd:8b:9b:2d:3e:
#         f6:51:d4:50:d4:59:28:bd:83:f2:cc:28:7b:53:86:6d:d8:26:
#         88:70:d7:ea:91:cd:3e:b9:ca:c0:90:6e:5a:c6:5e:74:65:d7:
#         5c:fe:a3:e2

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 EV 2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmfGENHC6L7cwoI69fATP
vmK8mf2Cl9J6CmeWOAn2EE6VInOZjdoVLecF/BlzIreOmAC8PD2soWz71nklS63w
zGTaiD4puA8J0zTdM/Vi0eHNGenuGE9MWK7iHtYMWxVa2Dq4xBhkHuMzsrWJd04M
v9mUaxOXbxKj/pmpBMwV7GBoNu0Ie7f1v5PtZjGDjMZxNIdOF+qvi5GNHFZBriI3
XjfyHdnRLQ0vaVGnvmamijoqvccaseEU8L46HbnPW7Fq/rSxRiCi+x47cO+TmH2M
c5byxe+FcK0pJvweBD4coNgPy1KDYnzui1OVkKlXouphBdj5TcQn+m6t7fnXUfdr
pQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "D-TRUST Root Class 3 CA 2 EV 2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 623604 (0x983f4)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root Class 3 CA 2 EV 2009
#        Validity
#            Not Before: Nov  5 08:50:46 2009 GMT
#            Not After : Nov  5 08:50:46 2029 GMT
#        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST Root Class 3 CA 2 EV 2009
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:99:f1:84:34:70:ba:2f:b7:30:a0:8e:bd:7c:04:
#                    cf:be:62:bc:99:fd:82:97:d2:7a:0a:67:96:38:09:
#                    f6:10:4e:95:22:73:99:8d:da:15:2d:e7:05:fc:19:
#                    73:22:b7:8e:98:00:bc:3c:3d:ac:a1:6c:fb:d6:79:
#                    25:4b:ad:f0:cc:64:da:88:3e:29:b8:0f:09:d3:34:
#                    dd:33:f5:62:d1:e1:cd:19:e9:ee:18:4f:4c:58:ae:
#                    e2:1e:d6:0c:5b:15:5a:d8:3a:b8:c4:18:64:1e:e3:
#                    33:b2:b5:89:77:4e:0c:bf:d9:94:6b:13:97:6f:12:
#                    a3:fe:99:a9:04:cc:15:ec:60:68:36:ed:08:7b:b7:
#                    f5:bf:93:ed:66:31:83:8c:c6:71:34:87:4e:17:ea:
#                    af:8b:91:8d:1c:56:41:ae:22:37:5e:37:f2:1d:d9:
#                    d1:2d:0d:2f:69:51:a7:be:66:a6:8a:3a:2a:bd:c7:
#                    1a:b1:e1:14:f0:be:3a:1d:b9:cf:5b:b1:6a:fe:b4:
#                    b1:46:20:a2:fb:1e:3b:70:ef:93:98:7d:8c:73:96:
#                    f2:c5:ef:85:70:ad:29:26:fc:1e:04:3e:1c:a0:d8:
#                    0f:cb:52:83:62:7c:ee:8b:53:95:90:a9:57:a2:ea:
#                    61:05:d8:f9:4d:c4:27:fa:6e:ad:ed:f9:d7:51:f7:
#                    6b:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                D3:94:8A:4C:62:13:2A:19:2E:CC:AF:72:8A:7D:36:D7:9A:1C:DC:67
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202%20EV%202009,O=D-Trust%20GmbH,C=DE?certificaterevocationlist
#
#                Full Name:
#                  URI:http://www.d-trust.net/crl/d-trust_root_class_3_ca_2_ev_2009.crl
#
#    Signature Algorithm: sha256WithRSAEncryption
#         34:ed:7b:5a:3c:a4:94:88:ef:1a:11:75:07:2f:b3:fe:3c:fa:
#         1e:51:26:eb:87:f6:29:de:e0:f1:d4:c6:24:09:e9:c1:cf:55:
#         1b:b4:30:d9:ce:1a:fe:06:51:a6:15:a4:2d:ef:b2:4b:bf:20:
#         28:25:49:d1:a6:36:77:34:e8:64:df:52:b1:11:c7:73:7a:cd:
#         39:9e:c2:ad:8c:71:21:f2:5a:6b:af:df:3c:4e:55:af:b2:84:
#         65:14:89:b9:77:cb:2a:31:be:cf:a3:6d:cf:6f:48:94:32:46:
#         6f:e7:71:8c:a0:a6:84:19:37:07:f2:03:45:09:2b:86:75:7c:
#         df:5f:69:57:00:db:6e:d8:a6:72:22:4b:50:d4:75:98:56:df:
#         b7:18:ff:43:43:50:ae:7a:44:7b:f0:79:51:d7:43:3d:a7:d3:
#         81:d3:f0:c9:4f:b9:da:c6:97:86:d0:82:c3:e4:42:6d:fe:b0:
#         e2:64:4e:0e:26:e7:40:34:26:b5:08:89:d7:08:63:63:38:27:
#         75:1e:33:ea:6e:a8:dd:9f:99:4f:74:4d:81:89:80:4b:dd:9a:
#         97:29:5c:2f:be:81:41:b9:8c:ff:ea:7d:60:06:9e:cd:d7:3d:
#         d3:2e:a3:15:bc:a8:e6:26:e5:6f:c3:dc:b8:03:21:ea:9f:16:
#         f1:2c:54:b5

[p11-kit-object-v1]
label: "DIGITALSIGN GLOBAL ROOT ECDSA CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEbgujqzNNHOpK6PwEjRSgffAILF+Dq5PR
0nu610l9j+wSUF/Uucvl8PkzYx/JV+xA2BELl+hSFswpjvQGhh443D1XxO6qvchU
BCZaJxNRRz0fHxqOqJWkM9DMR8xtuPxI
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DIGITALSIGN GLOBAL ROOT ECDSA CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            36:2d:8f:72:88:a2:28:27:e4:00:ff:24:c6:2d:e4:eb:fa:9d:b6:e1
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=PT, O=DigitalSign Certificadora Digital, CN=DIGITALSIGN GLOBAL ROOT ECDSA CA
#        Validity
#            Not Before: Jan 21 11:07:50 2021 GMT
#            Not After : Jan 15 11:07:50 2046 GMT
#        Subject: C=PT, O=DigitalSign Certificadora Digital, CN=DIGITALSIGN GLOBAL ROOT ECDSA CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:6e:0b:a3:ab:33:4d:1c:ea:4a:e8:fc:04:8d:14:
#                    a0:7d:f0:08:2c:5f:83:ab:93:d1:d2:7b:ba:d7:49:
#                    7d:8f:ec:12:50:5f:d4:b9:cb:e5:f0:f9:33:63:1f:
#                    c9:57:ec:40:d8:11:0b:97:e8:52:16:cc:29:8e:f4:
#                    06:86:1e:38:dc:3d:57:c4:ee:aa:bd:c8:54:04:26:
#                    5a:27:13:51:47:3d:1f:1f:1a:8e:a8:95:a4:33:d0:
#                    cc:47:cc:6d:b8:fc:48
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:CE:AF:4A:8B:1A:75:E2:F1:38:E7:02:F0:16:AD:5E:EA:64:D5:7B:B4
#
#            X509v3 Subject Key Identifier: 
#                CE:AF:4A:8B:1A:75:E2:F1:38:E7:02:F0:16:AD:5E:EA:64:D5:7B:B4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:0a:88:c4:71:9c:44:03:4d:8d:b4:c7:bc:a8:ae:
#         d9:30:27:35:6a:6b:16:63:d7:fc:e7:59:e1:a7:89:1b:4c:31:
#         9a:23:55:44:e6:f3:43:21:d5:47:27:6f:6d:57:01:aa:02:31:
#         00:fb:b2:ea:e2:97:7f:51:b5:9f:48:eb:bc:6f:35:89:a8:64:
#         70:ab:57:76:cd:c0:c6:14:60:ca:7f:e2:82:00:73:f7:cc:35:
#         ea:8e:24:9b:e5:08:59:c7:04:8c:73:78:fe

[p11-kit-object-v1]
label: "DIGITALSIGN GLOBAL ROOT RSA CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DIGITALSIGN GLOBAL ROOT RSA CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5d:59:c8:ca:ab:09:57:f5:e6:b5:da:29:94:04:6a:ff:c5:d4:95:87
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=PT, O=DigitalSign Certificadora Digital, CN=DIGITALSIGN GLOBAL ROOT RSA CA
#        Validity
#            Not Before: Jan 21 10:50:34 2021 GMT
#            Not After : Jan 15 10:50:34 2046 GMT
#        Subject: C=PT, O=DigitalSign Certificadora Digital, CN=DIGITALSIGN GLOBAL ROOT RSA CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:87:b6:38:d3:1c:f0:de:12:f8:83:c7:c4:8a:
#                    e2:89:b8:b4:22:7a:78:f8:0c:66:51:68:76:37:0a:
#                    d5:4f:c2:5a:08:b8:16:5c:f7:72:01:09:37:84:81:
#                    2a:54:6b:d7:92:d0:6c:fa:a8:a7:43:12:34:eb:0e:
#                    db:37:0f:29:fe:8a:31:51:42:e8:4b:9c:90:a8:c8:
#                    2c:11:d3:fd:a0:29:7e:ce:de:94:f6:82:e0:58:b4:
#                    4e:45:25:f1:22:f2:3d:d3:0f:7b:54:1a:dc:32:b6:
#                    d6:51:4e:7e:41:b4:57:b8:2c:c6:b9:0e:2e:ca:57:
#                    f1:d5:c8:d3:58:e7:a5:e9:42:11:ae:d3:20:25:94:
#                    69:d7:8f:ca:a2:0d:c3:d3:9f:07:68:3f:15:d2:67:
#                    2e:53:fd:76:82:9b:0b:73:a9:29:0d:9e:11:93:14:
#                    08:98:ec:9e:54:12:4a:56:a2:06:15:ec:6b:6c:2e:
#                    92:60:2e:86:0d:ae:82:1f:51:4d:e3:b2:07:d7:10:
#                    19:57:22:f6:a9:69:44:84:f3:d9:3d:a0:06:bf:cc:
#                    88:7e:7f:f5:ce:5b:a5:c2:2a:6a:74:42:ea:6f:a6:
#                    ff:f9:68:b1:d0:5f:bd:91:d2:55:6f:33:57:4c:1e:
#                    9d:e4:e2:8b:c1:85:65:a0:e0:6a:9c:00:00:88:92:
#                    dd:58:08:16:f2:70:31:a8:1c:e1:de:bd:4e:71:e9:
#                    d6:be:7e:b5:a1:5a:c3:4d:f7:bf:9b:bd:94:a4:fd:
#                    f5:aa:53:93:46:c9:26:01:04:70:c4:a0:71:ba:ce:
#                    25:66:fb:91:7e:55:70:ee:49:0a:4d:62:7f:c2:50:
#                    9a:72:f2:18:67:9d:e9:45:a8:34:84:e8:f8:81:f6:
#                    d1:5a:22:1e:07:4f:3b:b3:7f:dd:11:a5:73:dc:be:
#                    a9:19:3a:69:a9:6d:1b:32:e2:89:aa:a5:27:0b:5a:
#                    7e:74:e2:0f:64:39:5d:7e:5c:b9:c1:17:fc:c7:8d:
#                    5e:c9:ec:24:ed:d2:f2:3f:7a:84:45:37:02:be:3e:
#                    6b:59:c4:e6:5b:16:6d:c0:aa:9e:aa:b5:59:2e:2c:
#                    70:55:9c:cc:99:96:98:24:54:d1:8e:da:ca:b4:11:
#                    b4:b7:70:43:1f:6f:90:0b:20:a0:a8:76:13:65:db:
#                    db:23:5a:75:4b:a1:0b:31:77:0a:ee:7d:68:61:1a:
#                    13:8c:ea:51:7e:5c:56:a3:57:4c:5d:a1:eb:13:65:
#                    bf:54:14:cc:f3:ee:dc:d7:ec:3c:97:f2:78:56:b8:
#                    df:72:5c:70:fc:ce:06:dd:9f:d2:07:31:ef:e7:52:
#                    91:9e:cd:ba:d7:c0:18:44:07:31:65:49:32:69:13:
#                    4a:eb:8f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:B5:36:BC:3C:8C:1A:AB:2C:F6:59:19:2D:83:14:DA:93:25:15:D6:86
#
#            X509v3 Subject Key Identifier: 
#                B5:36:BC:3C:8C:1A:AB:2C:F6:59:19:2D:83:14:DA:93:25:15:D6:86
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         14:fb:31:25:38:31:f8:ca:08:b2:23:76:38:ad:f8:d3:59:f5:
#         cc:b4:57:25:e1:44:be:7e:fc:16:ec:ae:fa:26:9f:4f:67:16:
#         4a:56:f0:fd:ed:c7:19:01:34:8e:90:5a:2d:d6:80:5c:ec:71:
#         d2:81:25:82:1e:00:71:df:9a:d1:d5:1d:22:bb:d1:a5:f3:62:
#         0f:b4:eb:dc:24:73:fe:a6:56:cd:9a:14:c5:04:35:16:31:a2:
#         07:eb:a5:00:e2:b6:f8:5f:72:fd:3f:61:49:8e:de:7e:4d:38:
#         d7:7a:1e:74:37:6c:51:dc:be:00:04:b8:38:14:f3:20:c1:ed:
#         9b:a7:23:fd:0d:42:84:1d:7f:f2:73:c3:d0:78:63:f1:9f:ec:
#         d7:5b:e9:f1:be:6c:a0:4b:03:9e:8d:69:e1:14:da:88:10:81:
#         23:53:ff:da:54:2b:0b:c6:b9:96:95:04:18:46:f3:7b:a8:97:
#         d8:5b:68:a4:e4:38:1c:0e:45:e5:98:d3:09:ae:9a:5e:ec:b3:
#         79:0d:39:72:f2:f4:94:9d:0e:9e:60:22:e6:a8:f6:4c:85:cd:
#         07:82:3a:68:39:cd:3d:5f:e3:38:f4:b6:af:3b:6b:4a:9f:60:
#         51:45:a2:40:02:e5:aa:0c:e3:3e:d1:78:d4:a2:74:9c:26:ba:
#         05:9a:28:70:4a:3e:a6:0b:d0:1d:49:f0:ba:f8:ae:41:10:7e:
#         a4:07:12:bd:a8:cf:29:3d:57:bb:c7:f1:43:47:00:3e:ae:70:
#         18:5a:20:7b:09:cb:3a:3a:70:80:e5:4c:60:98:c1:15:c1:1d:
#         4a:f7:c8:f0:9b:e1:72:ad:e7:5d:68:58:0b:04:b1:8c:bc:9f:
#         b7:fb:6e:8b:5b:04:55:fb:eb:23:55:d7:78:50:da:25:cb:be:
#         27:36:bb:24:1a:79:1c:51:d1:fe:13:bb:ff:78:2c:dc:a4:be:
#         2f:f6:c5:4b:53:cf:a7:4c:99:5e:70:ac:59:88:04:ae:64:04:
#         bf:7b:a6:7a:4d:d3:e8:77:bd:a1:7e:50:15:f3:ef:49:30:85:
#         4d:21:57:aa:db:2c:75:97:ad:81:01:87:a2:b1:70:9d:1e:06:
#         5a:03:60:b1:3f:a6:6d:82:2c:d4:14:b1:81:a5:e8:3d:88:1d:
#         b4:72:2c:58:37:8a:8e:38:94:b8:73:dd:a9:e0:b8:f6:77:a2:
#         b3:7c:58:de:ae:69:3a:b5:8b:a5:1a:bb:f2:d8:74:06:9c:fd:
#         62:73:20:21:76:b1:7e:70:9e:19:d4:eb:17:62:19:38:99:cd:
#         36:2b:47:fe:31:cb:df:b9:e4:ac:08:d3:d8:a6:eb:d4:9e:7e:
#         4b:64:a4:55:5d:2b:17:c9

[p11-kit-object-v1]
label: "DigiCert Assured ID Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArQ4VzuRDgFyxh/O3YPlx
EqWu3CaUiKr0zvUgOShYYAz4gNqpFZUyYTy1sSiEiorcnwoMgxd6j5Csiud5U1wx
hCr2D5gyNnbM3t08qKLvavsh8lJh358g1x/isdn+GGTSEltf+VgYNbxHzaE2+Wt/
1LA4PsEbw4wz2dgvGP4oD7Ong9bDbkTAYTWWFv5ZnIt2bdfxoksNK/8LctqeYNCO
kDXGeFWHIKHP5W0KyEl8MZgzbCLph9AyWqK6E4IR7TkXnZk6cqHm+qTZ1Rcxda6F
fSKuPwFGhvYoecix2uRXF8R+HA6wtJKmVrO9spftqqfwt8WoP5UW0P+hlusIXxh3
TwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Assured ID Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0c:e7:e0:e5:17:d8:46:fe:8f:e5:60:fc:1b:f0:30:39
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Assured ID Root CA
#        Validity
#            Not Before: Nov 10 00:00:00 2006 GMT
#            Not After : Nov 10 00:00:00 2031 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Assured ID Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:0e:15:ce:e4:43:80:5c:b1:87:f3:b7:60:f9:
#                    71:12:a5:ae:dc:26:94:88:aa:f4:ce:f5:20:39:28:
#                    58:60:0c:f8:80:da:a9:15:95:32:61:3c:b5:b1:28:
#                    84:8a:8a:dc:9f:0a:0c:83:17:7a:8f:90:ac:8a:e7:
#                    79:53:5c:31:84:2a:f6:0f:98:32:36:76:cc:de:dd:
#                    3c:a8:a2:ef:6a:fb:21:f2:52:61:df:9f:20:d7:1f:
#                    e2:b1:d9:fe:18:64:d2:12:5b:5f:f9:58:18:35:bc:
#                    47:cd:a1:36:f9:6b:7f:d4:b0:38:3e:c1:1b:c3:8c:
#                    33:d9:d8:2f:18:fe:28:0f:b3:a7:83:d6:c3:6e:44:
#                    c0:61:35:96:16:fe:59:9c:8b:76:6d:d7:f1:a2:4b:
#                    0d:2b:ff:0b:72:da:9e:60:d0:8e:90:35:c6:78:55:
#                    87:20:a1:cf:e5:6d:0a:c8:49:7c:31:98:33:6c:22:
#                    e9:87:d0:32:5a:a2:ba:13:82:11:ed:39:17:9d:99:
#                    3a:72:a1:e6:fa:a4:d9:d5:17:31:75:ae:85:7d:22:
#                    ae:3f:01:46:86:f6:28:79:c8:b1:da:e4:57:17:c4:
#                    7e:1c:0e:b0:b4:92:a6:56:b3:bd:b2:97:ed:aa:a7:
#                    f0:b7:c5:a8:3f:95:16:d0:ff:a1:96:eb:08:5f:18:
#                    77:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                45:EB:A2:AF:F4:92:CB:82:31:2D:51:8B:A7:A7:21:9D:F3:6D:C8:0F
#            X509v3 Authority Key Identifier: 
#                keyid:45:EB:A2:AF:F4:92:CB:82:31:2D:51:8B:A7:A7:21:9D:F3:6D:C8:0F
#
#    Signature Algorithm: sha1WithRSAEncryption
#         a2:0e:bc:df:e2:ed:f0:e3:72:73:7a:64:94:bf:f7:72:66:d8:
#         32:e4:42:75:62:ae:87:eb:f2:d5:d9:de:56:b3:9f:cc:ce:14:
#         28:b9:0d:97:60:5c:12:4c:58:e4:d3:3d:83:49:45:58:97:35:
#         69:1a:a8:47:ea:56:c6:79:ab:12:d8:67:81:84:df:7f:09:3c:
#         94:e6:b8:26:2c:20:bd:3d:b3:28:89:f7:5f:ff:22:e2:97:84:
#         1f:e9:65:ef:87:e0:df:c1:67:49:b3:5d:eb:b2:09:2a:eb:26:
#         ed:78:be:7d:3f:2b:f3:b7:26:35:6d:5f:89:01:b6:49:5b:9f:
#         01:05:9b:ab:3d:25:c1:cc:b6:7f:c2:f1:6f:86:c6:fa:64:68:
#         eb:81:2d:94:eb:42:b7:fa:8c:1e:dd:62:f1:be:50:67:b7:6c:
#         bd:f3:f1:1f:6b:0c:36:07:16:7f:37:7c:a9:5b:6d:7a:f1:12:
#         46:60:83:d7:27:04:be:4b:ce:97:be:c3:67:2a:68:11:df:80:
#         e7:0c:33:66:bf:13:0d:14:6e:f3:7f:1f:63:10:1e:fa:8d:1b:
#         25:6d:6c:8f:a5:b7:61:01:b1:d2:a3:26:a1:10:71:9d:ad:e2:
#         c3:f9:c3:99:51:b7:2b:07:08:ce:2e:e6:50:b2:a7:fa:0a:45:
#         2f:a2:f0:f2

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2ecoL1I/NnJJiJM08/hq
HjFUgJ+tVEG1R9+WqNSvgC25Cs91/YmlfST64yIMK7yVFwszvxlNQQaQAL0MTRD+
B7XnHG4iVTFll73TF9IeYvPb6mxQjD+EDJbPt8sD4MptoRRMG4nd7QCwUnyvkWyx
OBPR6RIIwACwHCsR2ndwNpuuznmH3IJw5gl0cFVpr6Non7/dtnmz8p1wKVX0q/+V
YfPJQG8d0b6Tu9OIKrudv3JaVnE7P9Tz0Qr+KO+j7tmZrwPTj2C38pKhsb2JiR8w
zcOmLmIzrhYCd0Ra54EKPKdELnm4PwS8XKCH4RuvUY7N7Cz6+P5t8Dp8qovkZ5Ux
jQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDljCCAn6gAwIBAgIQC5McOtY5Z+pnI7/Dr5r0SzANBgkqhkiG9w0BAQsFADBl
MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
d3cuZGlnaWNlcnQuY29tMSQwIgYDVQQDExtEaWdpQ2VydCBBc3N1cmVkIElEIFJv
b3QgRzIwHhcNMTMwODAxMTIwMDAwWhcNMzgwMTE1MTIwMDAwWjBlMQswCQYDVQQG
EwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3d3cuZGlnaWNl
cnQuY29tMSQwIgYDVQQDExtEaWdpQ2VydCBBc3N1cmVkIElEIFJvb3QgRzIwggEi
MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDZ5ygvUj82ckmIkzTz+GoeMVSA
n61UQbVH35ao1K+ALbkKz3X9iaV9JPrjIgwrvJUXCzO/GU1BBpAAvQxNEP4Htecc
biJVMWWXvdMX0h5i89vqbFCMP4QMls+3ywPgym2hFEwbid3tALBSfK+RbLE4E9Hp
EgjAALAcKxHad3A2m67OeYfcgnDmCXRwVWmvo2ifv922ebPynXApVfSr/5Vh88lA
bx3RvpO704gqu52/clpWcTs/1PPRCv4o76Pu2ZmvA9OPYLfykqGxvYmJHzDNw6Yu
YjOuFgJ3RFrngQo8p0Quebg/BLxcoIfhG69Rjs3sLPr4/m3wOnyqi+RnlTGNAgMB
AAGjQjBAMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgGGMB0GA1UdDgQW
BBTOw0q5mVXyuNtgv6l+vVa1lzan1jANBgkqhkiG9w0BAQsFAAOCAQEAyqVVjOPI
QW5pJ6d1Ee88hjZv0p3GeDgdaZaikmkuOGybfQTUiaWxMTeKySHMq2zNixya1r9I
0jJmwYrA8y8678Dj1JGG0VDjA9tzd29KOVPt3ibHtX2vK0LRdWLjSisCx1BL4Gni
lmwORGYQRI+tBev4eaymG+g3NJ1TyWGqolKvSnAWhsI6yLETcDbYz+70CjTVW0z9
B5yiutkBclzzTcHdDrEcDcRjvq30FPuJ7KJBDkzMyFdA0G4Dqs0MjomZmWzwPDCv
ON9vvKO+KSAnq3T/EyJ43pdSVR6DtVQgA+6uwE9W3jfMw3+qBCe703e4YtsXfJwo
IhNzbM8m9Yop5w==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0b:93:1c:3a:d6:39:67:ea:67:23:bf:c3:af:9a:f4:4b
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Assured ID Root G2
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Assured ID Root G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d9:e7:28:2f:52:3f:36:72:49:88:93:34:f3:f8:
#                    6a:1e:31:54:80:9f:ad:54:41:b5:47:df:96:a8:d4:
#                    af:80:2d:b9:0a:cf:75:fd:89:a5:7d:24:fa:e3:22:
#                    0c:2b:bc:95:17:0b:33:bf:19:4d:41:06:90:00:bd:
#                    0c:4d:10:fe:07:b5:e7:1c:6e:22:55:31:65:97:bd:
#                    d3:17:d2:1e:62:f3:db:ea:6c:50:8c:3f:84:0c:96:
#                    cf:b7:cb:03:e0:ca:6d:a1:14:4c:1b:89:dd:ed:00:
#                    b0:52:7c:af:91:6c:b1:38:13:d1:e9:12:08:c0:00:
#                    b0:1c:2b:11:da:77:70:36:9b:ae:ce:79:87:dc:82:
#                    70:e6:09:74:70:55:69:af:a3:68:9f:bf:dd:b6:79:
#                    b3:f2:9d:70:29:55:f4:ab:ff:95:61:f3:c9:40:6f:
#                    1d:d1:be:93:bb:d3:88:2a:bb:9d:bf:72:5a:56:71:
#                    3b:3f:d4:f3:d1:0a:fe:28:ef:a3:ee:d9:99:af:03:
#                    d3:8f:60:b7:f2:92:a1:b1:bd:89:89:1f:30:cd:c3:
#                    a6:2e:62:33:ae:16:02:77:44:5a:e7:81:0a:3c:a7:
#                    44:2e:79:b8:3f:04:bc:5c:a0:87:e1:1b:af:51:8e:
#                    cd:ec:2c:fa:f8:fe:6d:f0:3a:7c:aa:8b:e4:67:95:
#                    31:8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CE:C3:4A:B9:99:55:F2:B8:DB:60:BF:A9:7E:BD:56:B5:97:36:A7:D6
#    Signature Algorithm: sha256WithRSAEncryption
#         ca:a5:55:8c:e3:c8:41:6e:69:27:a7:75:11:ef:3c:86:36:6f:
#         d2:9d:c6:78:38:1d:69:96:a2:92:69:2e:38:6c:9b:7d:04:d4:
#         89:a5:b1:31:37:8a:c9:21:cc:ab:6c:cd:8b:1c:9a:d6:bf:48:
#         d2:32:66:c1:8a:c0:f3:2f:3a:ef:c0:e3:d4:91:86:d1:50:e3:
#         03:db:73:77:6f:4a:39:53:ed:de:26:c7:b5:7d:af:2b:42:d1:
#         75:62:e3:4a:2b:02:c7:50:4b:e0:69:e2:96:6c:0e:44:66:10:
#         44:8f:ad:05:eb:f8:79:ac:a6:1b:e8:37:34:9d:53:c9:61:aa:
#         a2:52:af:4a:70:16:86:c2:3a:c8:b1:13:70:36:d8:cf:ee:f4:
#         0a:34:d5:5b:4c:fd:07:9c:a2:ba:d9:01:72:5c:f3:4d:c1:dd:
#         0e:b1:1c:0d:c4:63:be:ad:f4:14:fb:89:ec:a2:41:0e:4c:cc:
#         c8:57:40:d0:6e:03:aa:cd:0c:8e:89:99:99:6c:f0:3c:30:af:
#         38:df:6f:bc:a3:be:29:20:27:ab:74:ff:13:22:78:de:97:52:
#         55:1e:83:b5:54:20:03:ee:ae:c0:4f:56:de:37:cc:c3:7f:aa:
#         04:27:bb:d3:77:b8:62:db:17:7c:9c:28:22:13:73:6c:cf:26:
#         f5:8a:29:e7

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEGee8rERl7c24P1j7jbFXqUQtBRXy7wv/
EHSftWJSX2Z+H+XcG0V5C8zGUwqdjV0C2alZ3gJa9pUqDo04SopJxrzGAzgHX1Xa
fglu4n9e0EUgD1l2ENagJPAt3jbybCk5
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Assured ID Root G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICRjCCAc2gAwIBAgIQC6Fa+h3foLVJRK/NJKBs7DAKBggqhkjOPQQDAzBlMQsw
CQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3d3cu
ZGlnaWNlcnQuY29tMSQwIgYDVQQDExtEaWdpQ2VydCBBc3N1cmVkIElEIFJvb3Qg
RzMwHhcNMTMwODAxMTIwMDAwWhcNMzgwMTE1MTIwMDAwWjBlMQswCQYDVQQGEwJV
UzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3d3cuZGlnaWNlcnQu
Y29tMSQwIgYDVQQDExtEaWdpQ2VydCBBc3N1cmVkIElEIFJvb3QgRzMwdjAQBgcq
hkjOPQIBBgUrgQQAIgNiAAQZ57ysRGXtzbg/WPuNsVepRC0FFfLvC/8QdJ+1YlJf
Zn4f5dwbRXkLzMZTCp2NXQLZqVneAlr2lSoOjThKiknGvMYDOAdfVdp+CW7if17Q
RSAPWXYQ1qAk8C3eNvJsKTmjQjBAMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/
BAQDAgGGMB0GA1UdDgQWBBTL0L2p4ZgFUaFNN6KDec6NHSrkhDAKBggqhkjOPQQD
AwNnADBkAjAlpIFFAmsSS3V0T8gj43DydXLefInwz5FyYZ5eEJJZVrmDxxDnOOlY
JjZ91eQ0hjkCMHw2U/Aw5WJjOpnitqM7mzT6HtoQknFekROn3aRukswy1vUhZscv
6pZjamVFkpUBtA==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0b:a1:5a:fa:1d:df:a0:b5:49:44:af:cd:24:a0:6c:ec
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Assured ID Root G3
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Assured ID Root G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:19:e7:bc:ac:44:65:ed:cd:b8:3f:58:fb:8d:b1:
#                    57:a9:44:2d:05:15:f2:ef:0b:ff:10:74:9f:b5:62:
#                    52:5f:66:7e:1f:e5:dc:1b:45:79:0b:cc:c6:53:0a:
#                    9d:8d:5d:02:d9:a9:59:de:02:5a:f6:95:2a:0e:8d:
#                    38:4a:8a:49:c6:bc:c6:03:38:07:5f:55:da:7e:09:
#                    6e:e2:7f:5e:d0:45:20:0f:59:76:10:d6:a0:24:f0:
#                    2d:de:36:f2:6c:29:39
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CB:D0:BD:A9:E1:98:05:51:A1:4D:37:A2:83:79:CE:8D:1D:2A:E4:84
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:25:a4:81:45:02:6b:12:4b:75:74:4f:c8:23:e3:
#         70:f2:75:72:de:7c:89:f0:cf:91:72:61:9e:5e:10:92:59:56:
#         b9:83:c7:10:e7:38:e9:58:26:36:7d:d5:e4:34:86:39:02:30:
#         7c:36:53:f0:30:e5:62:63:3a:99:e2:b6:a3:3b:9b:34:fa:1e:
#         da:10:92:71:5e:91:13:a7:dd:a4:6e:92:cc:32:d6:f5:21:66:
#         c7:2f:ea:96:63:6a:65:45:92:95:01:b4

[p11-kit-object-v1]
label: "DigiCert CS ECC P384 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEfxSthbaX/QIhNU1g6DiTk5s9BRBtr9P+
7/q7+3OZ8+wyEo3HaLiL3omiiFR3jbshfjOVVpYJ6NWMoQS4m24ZAGLoQiimWDeE
GVUmezM3Z/Kacq2hrq4AQjwcfrh6niGc
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert CS ECC P384 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            03:69:8f:e7:12:d5:19:f3:ce:d0:fd:b7:b1:64:30:11
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert CS ECC P384 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert CS ECC P384 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:7f:14:ad:85:b6:97:fd:02:21:35:4d:60:e8:38:
#                    93:93:9b:3d:05:10:6d:af:d3:fe:ef:fa:bb:fb:73:
#                    99:f3:ec:32:12:8d:c7:68:b8:8b:de:89:a2:88:54:
#                    77:8d:bb:21:7e:33:95:56:96:09:e8:d5:8c:a1:04:
#                    b8:9b:6e:19:00:62:e8:42:28:a6:58:37:84:19:55:
#                    26:7b:33:37:67:f2:9a:72:ad:a1:ae:ae:00:42:3c:
#                    1c:7e:b8:7a:9e:21:9c
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                F0:8C:98:71:39:38:65:C2:3A:1B:A6:17:66:1D:C8:ED:65:DE:92:36
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:23:6f:e1:00:19:26:50:e4:46:20:65:8b:37:a7:
#         cf:eb:06:e1:cc:32:c9:2a:a1:ec:32:0d:73:a2:1e:02:1c:35:
#         61:2a:4e:69:ab:39:77:ed:97:88:c0:7d:6b:ea:89:dd:02:30:
#         43:f1:d1:58:a3:75:3e:86:9b:b6:55:11:8b:17:f7:3d:fe:0a:
#         69:c5:7f:4e:c6:75:1b:5a:94:cb:ea:11:11:c6:08:22:88:de:
#         d0:7a:a2:a5:79:e8:e3:21:a7:cd:13:b3

[p11-kit-object-v1]
label: "DigiCert CS RSA4096 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert CS RSA4096 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            06:ce:e1:31:be:6d:55:c8:07:f7:c0:c7:fb:44:e6:20
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert CS RSA4096 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert CS RSA4096 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:33:73:80:d8:62:03:70:14:2c:11:1c:39:5e:
#                    7c:ae:7c:83:86:1d:fe:26:2f:4c:24:ad:8b:ea:83:
#                    5f:a9:bc:3d:5b:fc:0b:98:4c:02:47:30:ec:e2:fe:
#                    ec:e8:34:5b:66:5e:bf:3b:d7:2c:a6:25:ff:8c:59:
#                    b3:df:ea:da:7c:29:d9:46:50:72:08:1d:6e:d1:1b:
#                    0a:dd:1f:cd:99:89:fa:0f:0f:73:c4:e1:9c:1d:75:
#                    32:cd:6f:97:da:2a:6a:95:b2:6c:c9:09:d0:ea:0b:
#                    7b:7d:17:06:49:99:ef:d6:de:e0:c8:53:d4:ae:c6:
#                    77:f1:86:bb:23:1c:b8:c0:df:59:f7:8e:7d:d1:ef:
#                    82:e6:26:8b:5a:38:b5:ff:75:d5:b2:d9:4f:09:f3:
#                    37:88:50:da:11:a4:8a:14:14:d1:53:04:00:7d:f3:
#                    6a:44:18:fe:50:70:32:07:1c:a8:9a:0e:3a:1d:c5:
#                    0a:1f:6e:0b:26:69:b7:3c:a2:57:70:2c:86:fa:4c:
#                    6e:95:a9:58:43:b9:ac:12:d6:ff:3f:ed:d7:43:17:
#                    6b:4c:ce:9e:c4:90:ab:ff:fa:10:50:9a:a3:90:57:
#                    d6:e7:8c:10:ae:9f:16:1a:cf:35:1d:7f:d7:76:ed:
#                    8a:9c:35:a7:28:b8:a7:5d:21:fc:30:37:dd:de:08:
#                    19:4f:15:c6:e7:a6:da:90:47:8e:f7:94:53:4c:8e:
#                    53:02:be:fd:99:e5:ea:86:d0:af:03:02:d3:9b:aa:
#                    93:f1:ab:28:8e:20:01:ff:4c:fb:cc:b7:29:40:f5:
#                    87:a4:12:13:05:1f:43:6e:d7:51:50:9f:38:b4:20:
#                    ed:17:09:12:8f:cc:b9:19:af:9f:cd:be:69:11:d3:
#                    af:55:10:6d:17:86:79:96:52:c6:b2:00:9d:e5:af:
#                    38:b0:35:f4:88:6b:8f:0e:04:3d:7c:ee:af:cd:d3:
#                    6a:10:4a:c6:cd:86:ca:22:3d:a1:4a:5c:fb:0e:ff:
#                    88:df:5c:62:a7:c0:b9:1e:d9:ac:6c:7e:38:37:fe:
#                    77:93:25:c2:85:8a:4f:b5:37:06:5a:06:81:14:f1:
#                    ce:94:9d:99:91:ea:32:5a:ce:67:3d:6e:04:66:ad:
#                    0c:4f:2d:a3:2e:f7:9e:f5:78:9d:f7:0a:fd:7e:8f:
#                    e3:42:8a:55:96:bc:f1:9f:37:2d:fc:9e:5f:95:fe:
#                    8c:18:1b:fc:8e:fd:4b:90:af:d7:03:68:12:63:ac:
#                    e2:93:a7:a2:cb:04:e5:4f:64:ce:03:fa:c6:14:9f:
#                    d9:8b:e8:cc:d4:62:8c:6b:e4:00:2c:19:9f:1a:06:
#                    c6:31:81:54:fb:53:24:9a:af:55:99:ba:9d:75:ae:
#                    b8:c2:dd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                68:01:93:B1:D2:4A:40:42:69:94:46:2C:1C:5A:88:A9:25:B4:47:4F
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         92:fc:ee:b8:02:79:17:02:51:7d:21:c5:49:67:a7:a4:f1:a8:
#         24:38:eb:0c:68:ea:5a:42:6b:9c:f4:73:c1:69:4a:2d:b3:37:
#         05:50:42:98:92:9e:06:79:2c:2e:06:99:f6:ef:df:2b:a0:cd:
#         b3:92:01:83:b5:a0:cb:27:b5:3c:23:1a:98:49:a2:ec:2d:99:
#         a5:59:43:ac:d2:b1:93:d6:57:d7:1c:bc:93:d6:c6:40:e1:b3:
#         6f:19:55:b7:13:d7:e5:43:33:a4:b5:ab:cb:da:c1:31:64:0d:
#         74:d6:2c:ed:c3:8d:6e:eb:bb:af:19:47:61:61:2d:c0:f4:05:
#         b9:6f:78:dc:3a:f7:42:40:65:53:91:bd:99:0d:93:92:54:a6:
#         a9:37:59:2b:9b:cb:99:c6:bc:3d:f7:04:84:f0:94:33:1d:0f:
#         82:5a:39:cb:2e:45:c3:28:19:a3:b2:9b:98:c8:fc:31:6b:60:
#         8f:f6:e9:86:28:bc:e0:3c:7d:74:5d:16:89:5b:69:24:c7:10:
#         8b:c4:4b:bb:36:4f:d4:59:3f:c3:b0:a4:91:99:f8:2e:d1:4a:
#         01:9d:f5:88:12:ef:bf:5a:11:6a:59:4f:59:6b:5a:67:f3:8f:
#         b4:13:0f:c0:d8:2f:3d:28:72:aa:19:7f:11:7d:6a:5b:9f:95:
#         e7:5f:b7:94:4f:f1:3e:a1:5a:ff:2d:cc:9d:df:27:77:8f:32:
#         73:1c:67:0a:76:f3:fa:5c:b1:bf:bc:1d:bd:0c:28:9b:b2:c7:
#         17:67:0b:33:0f:c3:bd:36:dc:fb:ba:42:0b:ab:ed:84:c3:62:
#         d6:84:16:a9:b1:07:6b:a9:6e:ee:c6:cf:e6:b0:44:29:c2:f0:
#         b3:61:80:2a:8b:6f:d2:14:5c:25:87:54:64:f3:a4:4c:c1:a1:
#         f8:a7:6b:ea:fe:ea:3a:fc:79:db:0e:8f:dc:c6:f3:c9:d4:6c:
#         de:e9:83:a1:8e:1d:22:ec:c9:3a:b2:00:7b:dc:3b:a7:42:1a:
#         7f:dc:8b:a9:11:3d:8e:a7:c0:20:6f:5d:09:5d:43:44:e6:8f:
#         66:cc:a9:5b:07:f1:ef:9b:7a:0e:b3:54:e1:94:fd:0e:2c:c6:
#         93:d7:55:fd:71:98:35:b8:09:4a:ff:c6:29:28:2c:f6:52:2d:
#         db:14:18:92:27:e2:16:7e:8c:ca:d4:61:be:82:87:91:eb:98:
#         37:3f:bf:5f:5d:77:3f:34:ac:1b:38:43:ab:68:72:99:32:1e:
#         3a:1a:19:a5:a3:38:4c:23:d7:a3:e7:cc:d5:2a:92:17:90:0b:
#         5a:4b:bd:16:bd:fb:86:6a:e2:89:99:ec:e4:a0:55:18:c9:a3:
#         08:1f:13:e0:32:08:72:d0

[p11-kit-object-v1]
label: "DigiCert ECC P384 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE/Fkfzplsf5sOtiljb8aF8wrT1puuVxVM
Du1d4wl+bSqjhqq6eKCncb1E+gjASgbWb90sSjh05dC9/3r/5TlOvb0XHh9DrdW8
J9hLv3aMMDKk+/lT5diqOFNdqKA3oGcK
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert ECC P384 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0d:f3:d9:37:65:a3:79:c5:95:66:ea:92:e2:24:4f:34
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert ECC P384 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert ECC P384 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:fc:59:1f:ce:99:6c:7f:9b:0e:b6:29:63:6f:c6:
#                    85:f3:0a:d3:d6:9b:ae:57:15:4c:0e:ed:5d:e3:09:
#                    7e:6d:2a:a3:86:aa:ba:78:a0:a7:71:bd:44:fa:08:
#                    c0:4a:06:d6:6f:dd:2c:4a:38:74:e5:d0:bd:ff:7a:
#                    ff:e5:39:4e:bd:bd:17:1e:1f:43:ad:d5:bc:27:d8:
#                    4b:bf:76:8c:30:32:a4:fb:f9:53:e5:d8:aa:38:53:
#                    5d:a8:a0:37:a0:67:0a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                92:96:F7:E6:BA:D5:11:BA:F9:22:2E:7B:7E:5A:D9:F0:25:E5:05:1B
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:fd:c0:4d:f1:a4:a7:db:a7:0c:26:11:f4:49:
#         bd:07:38:63:2b:44:62:06:79:08:c7:c3:d4:cf:9b:3e:ab:3a:
#         27:aa:90:c7:fd:59:a2:b8:32:52:db:ca:8e:17:0b:0a:90:02:
#         30:5d:1a:ec:51:89:d4:64:dc:f9:e5:1e:38:bd:5b:2e:e3:e5:
#         44:e4:3b:18:7a:d7:f0:95:40:8f:f2:eb:cf:f4:f9:d0:65:a2:
#         41:f2:b0:e6:7c:c1:36:2c:8f:5e:39:dd:37

[p11-kit-object-v1]
label: "DigiCert Global Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4jvhEXLeqKTTo1eqUKKP
C3eQyaKl7hLOllsBCSDMAZOnTjC3U/dDxGkAV53ijSLdhwZAAIEJzs4bg7/fzTtx
RuLWZscFs3YnFo97nh6Vfe63SKMI2tavegw5BmV/Sl0fvBf4q77uKNd0f3p4mVmF
aG5cIzJLv07A6Fpt43C/dxC//AH2hdmoRBBYMql1GNXRor5H4idq9Joz+EkIYIvU
X7Q6hL+hqkpMfT7PT19sdl6gSzeRntwi5m3OFBqOasv+zbMUZBfHWymeMr/y7vrT
C0LUq7dBMtoM1O/4gdW7jVg/tRvoSSiicNoxBN33shbyTApOB6jtSj1etX+jkMOv
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Global Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:3b:e0:56:90:42:46:b1:a1:75:6a:c9:59:91:c7:4a
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root CA
#        Validity
#            Not Before: Nov 10 00:00:00 2006 GMT
#            Not After : Nov 10 00:00:00 2031 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:e2:3b:e1:11:72:de:a8:a4:d3:a3:57:aa:50:a2:
#                    8f:0b:77:90:c9:a2:a5:ee:12:ce:96:5b:01:09:20:
#                    cc:01:93:a7:4e:30:b7:53:f7:43:c4:69:00:57:9d:
#                    e2:8d:22:dd:87:06:40:00:81:09:ce:ce:1b:83:bf:
#                    df:cd:3b:71:46:e2:d6:66:c7:05:b3:76:27:16:8f:
#                    7b:9e:1e:95:7d:ee:b7:48:a3:08:da:d6:af:7a:0c:
#                    39:06:65:7f:4a:5d:1f:bc:17:f8:ab:be:ee:28:d7:
#                    74:7f:7a:78:99:59:85:68:6e:5c:23:32:4b:bf:4e:
#                    c0:e8:5a:6d:e3:70:bf:77:10:bf:fc:01:f6:85:d9:
#                    a8:44:10:58:32:a9:75:18:d5:d1:a2:be:47:e2:27:
#                    6a:f4:9a:33:f8:49:08:60:8b:d4:5f:b4:3a:84:bf:
#                    a1:aa:4a:4c:7d:3e:cf:4f:5f:6c:76:5e:a0:4b:37:
#                    91:9e:dc:22:e6:6d:ce:14:1a:8e:6a:cb:fe:cd:b3:
#                    14:64:17:c7:5b:29:9e:32:bf:f2:ee:fa:d3:0b:42:
#                    d4:ab:b7:41:32:da:0c:d4:ef:f8:81:d5:bb:8d:58:
#                    3f:b5:1b:e8:49:28:a2:70:da:31:04:dd:f7:b2:16:
#                    f2:4c:0a:4e:07:a8:ed:4a:3d:5e:b5:7f:a3:90:c3:
#                    af:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                03:DE:50:35:56:D1:4C:BB:66:F0:A3:E2:1B:1B:C3:97:B2:3D:D1:55
#            X509v3 Authority Key Identifier: 
#                keyid:03:DE:50:35:56:D1:4C:BB:66:F0:A3:E2:1B:1B:C3:97:B2:3D:D1:55
#
#    Signature Algorithm: sha1WithRSAEncryption
#         cb:9c:37:aa:48:13:12:0a:fa:dd:44:9c:4f:52:b0:f4:df:ae:
#         04:f5:79:79:08:a3:24:18:fc:4b:2b:84:c0:2d:b9:d5:c7:fe:
#         f4:c1:1f:58:cb:b8:6d:9c:7a:74:e7:98:29:ab:11:b5:e3:70:
#         a0:a1:cd:4c:88:99:93:8c:91:70:e2:ab:0f:1c:be:93:a9:ff:
#         63:d5:e4:07:60:d3:a3:bf:9d:5b:09:f1:d5:8e:e3:53:f4:8e:
#         63:fa:3f:a7:db:b4:66:df:62:66:d6:d1:6e:41:8d:f2:2d:b5:
#         ea:77:4a:9f:9d:58:e2:2b:59:c0:40:23:ed:2d:28:82:45:3e:
#         79:54:92:26:98:e0:80:48:a8:37:ef:f0:d6:79:60:16:de:ac:
#         e8:0e:cd:6e:ac:44:17:38:2f:49:da:e1:45:3e:2a:b9:36:53:
#         cf:3a:50:06:f7:2e:e8:c4:57:49:6c:61:21:18:d5:04:ad:78:
#         3c:2c:3a:80:6b:a7:eb:af:15:14:e9:d8:89:c1:b9:38:6c:e2:
#         91:6c:8a:ff:64:b9:77:25:57:30:c0:1b:24:a3:e1:dc:e9:df:
#         47:7c:b5:b4:24:08:05:30:ec:2d:bd:0b:bf:45:bf:50:b9:a9:
#         f3:eb:98:01:12:ad:c8:88:c6:98:34:5f:8d:0a:3c:c6:e9:d5:
#         95:95:6d:de

[p11-kit-object-v1]
label: "DigiCert Global Root G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuzfNNNx7a8myaJCtSnX/
RrohCgiN9RlUyfuI2/Ou8jqJkTx65qsGGmvPrC3oXgkkRLpimn7Wo6h+4FR1IAWs
ULecYxpsMNzaHxmx1x7e/dfgy5SDN67sH0NO3Xss0r0upS/kqbitOtSZpLYl6Ztr
AGCSYP9PIUkY92eQq2EGnI/yuum06ZIya7XzV+hdG82MHauVBJVJ8zUtluNJbd13
4/tJS7SsVQepj5WztCO7TG1F8PapspUwtP1MVYwnSlcUfIKdzXOS0xZKBgyMUNGP
Hgm+F6HmIcr9g+UQvIOlCsRnKPZzFBQ9RnbDhxSJITRNrw9FDKZJobq7nMWxM4Mp
hQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Global Root G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            03:3a:f1:e6:a7:11:a9:a0:bb:28:64:b1:1d:09:fa:e5
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G2
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bb:37:cd:34:dc:7b:6b:c9:b2:68:90:ad:4a:75:
#                    ff:46:ba:21:0a:08:8d:f5:19:54:c9:fb:88:db:f3:
#                    ae:f2:3a:89:91:3c:7a:e6:ab:06:1a:6b:cf:ac:2d:
#                    e8:5e:09:24:44:ba:62:9a:7e:d6:a3:a8:7e:e0:54:
#                    75:20:05:ac:50:b7:9c:63:1a:6c:30:dc:da:1f:19:
#                    b1:d7:1e:de:fd:d7:e0:cb:94:83:37:ae:ec:1f:43:
#                    4e:dd:7b:2c:d2:bd:2e:a5:2f:e4:a9:b8:ad:3a:d4:
#                    99:a4:b6:25:e9:9b:6b:00:60:92:60:ff:4f:21:49:
#                    18:f7:67:90:ab:61:06:9c:8f:f2:ba:e9:b4:e9:92:
#                    32:6b:b5:f3:57:e8:5d:1b:cd:8c:1d:ab:95:04:95:
#                    49:f3:35:2d:96:e3:49:6d:dd:77:e3:fb:49:4b:b4:
#                    ac:55:07:a9:8f:95:b3:b4:23:bb:4c:6d:45:f0:f6:
#                    a9:b2:95:30:b4:fd:4c:55:8c:27:4a:57:14:7c:82:
#                    9d:cd:73:92:d3:16:4a:06:0c:8c:50:d1:8f:1e:09:
#                    be:17:a1:e6:21:ca:fd:83:e5:10:bc:83:a5:0a:c4:
#                    67:28:f6:73:14:14:3d:46:76:c3:87:14:89:21:34:
#                    4d:af:0f:45:0c:a6:49:a1:ba:bb:9c:c5:b1:33:83:
#                    29:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4E:22:54:20:18:95:E6:E3:6E:E6:0F:FA:FA:B9:12:ED:06:17:8F:39
#    Signature Algorithm: sha256WithRSAEncryption
#         60:67:28:94:6f:0e:48:63:eb:31:dd:ea:67:18:d5:89:7d:3c:
#         c5:8b:4a:7f:e9:be:db:2b:17:df:b0:5f:73:77:2a:32:13:39:
#         81:67:42:84:23:f2:45:67:35:ec:88:bf:f8:8f:b0:61:0c:34:
#         a4:ae:20:4c:84:c6:db:f8:35:e1:76:d9:df:a6:42:bb:c7:44:
#         08:86:7f:36:74:24:5a:da:6c:0d:14:59:35:bd:f2:49:dd:b6:
#         1f:c9:b3:0d:47:2a:3d:99:2f:bb:5c:bb:b5:d4:20:e1:99:5f:
#         53:46:15:db:68:9b:f0:f3:30:d5:3e:31:e2:8d:84:9e:e3:8a:
#         da:da:96:3e:35:13:a5:5f:f0:f9:70:50:70:47:41:11:57:19:
#         4e:c0:8f:ae:06:c4:95:13:17:2f:1b:25:9f:75:f2:b1:8e:99:
#         a1:6f:13:b1:41:71:fe:88:2a:c8:4f:10:20:55:d7:f3:14:45:
#         e5:e0:44:f4:ea:87:95:32:93:0e:fe:53:46:fa:2c:9d:ff:8b:
#         22:b9:4b:d9:09:45:a4:de:a4:b8:9a:58:dd:1b:7d:52:9f:8e:
#         59:43:88:81:a4:9e:26:d5:6f:ad:dd:0d:c6:37:7d:ed:03:92:
#         1b:e5:77:5f:76:ee:3c:8d:c4:5d:56:5b:a2:d9:66:6e:b3:35:
#         37:e5:32:b6

[p11-kit-object-v1]
label: "DigiCert Global Root G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE3afZu4q4C/sLfyHS8L6+c/MzXRq8NOre
xpu80JX28MzQC7phW1FGfp4tn+6OYwwX7Adw9c+ELkCDnOg/QW07rdOkFFk2eJ0D
Q+4QE2xy3q6Ip6FrtUPOZ9wj/wMco+I+
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Global Root G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:55:56:bc:f2:5e:a4:35:35:c3:a4:0f:d5:ab:45:72
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G3
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:dd:a7:d9:bb:8a:b8:0b:fb:0b:7f:21:d2:f0:be:
#                    be:73:f3:33:5d:1a:bc:34:ea:de:c6:9b:bc:d0:95:
#                    f6:f0:cc:d0:0b:ba:61:5b:51:46:7e:9e:2d:9f:ee:
#                    8e:63:0c:17:ec:07:70:f5:cf:84:2e:40:83:9c:e8:
#                    3f:41:6d:3b:ad:d3:a4:14:59:36:78:9d:03:43:ee:
#                    10:13:6c:72:de:ae:88:a7:a1:6b:b5:43:ce:67:dc:
#                    23:ff:03:1c:a3:e2:3e
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B3:DB:48:A4:F9:A1:C5:D8:AE:36:41:CC:11:63:69:62:29:BC:4B:C6
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:ad:bc:f2:6c:3f:12:4a:d1:2d:39:c3:0a:09:
#         97:73:f4:88:36:8c:88:27:bb:e6:88:8d:50:85:a7:63:f9:9e:
#         32:de:66:93:0f:f1:cc:b1:09:8f:dd:6c:ab:fa:6b:7f:a0:02:
#         30:39:66:5b:c2:64:8d:b8:9e:50:dc:a8:d5:49:a2:ed:c7:dc:
#         d1:49:7f:17:01:b8:c8:86:8f:4e:8c:88:2b:a8:9a:a9:8a:c5:
#         d1:00:bd:f8:54:e2:9a:e5:5b:7c:b3:27:17

[p11-kit-object-v1]
label: "DigiCert High Assurance EV Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxszlc+b71LvlLS0ypt/l
gT/JzSVJtnEqw9WUNGeiChywX2mmQLHEt7KP0JikqUFZOtPclNY823Q4pErMTSWC
90qlUxI47vNJbXGRfmO2q6Zfw6SE+E9iUb74xezbOJLjBuUIkQzEKEFV+8taiRV+
ceg1v01yCT2+OjhQW3cxG42zxyRFmqesbQAUWgS3uhPrUQqYQUEiTmVhh4FBUKZ5
XIneGUpX1S7mXRxTLH6YzRoGFqRoc9A0BBNcoXHTWnxV215k4TeHMFYE5RG0KYAS
8Xk5iKICEXwnZreIt3jyygqoOKsKZMK/Zl2VhMGhJR6HXRpQCyASzEG7bgtROLhL
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert High Assurance EV Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:ac:5c:26:6a:0b:40:9b:8f:0b:79:f2:ae:46:25:77
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
#        Validity
#            Not Before: Nov 10 00:00:00 2006 GMT
#            Not After : Nov 10 00:00:00 2031 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c6:cc:e5:73:e6:fb:d4:bb:e5:2d:2d:32:a6:df:
#                    e5:81:3f:c9:cd:25:49:b6:71:2a:c3:d5:94:34:67:
#                    a2:0a:1c:b0:5f:69:a6:40:b1:c4:b7:b2:8f:d0:98:
#                    a4:a9:41:59:3a:d3:dc:94:d6:3c:db:74:38:a4:4a:
#                    cc:4d:25:82:f7:4a:a5:53:12:38:ee:f3:49:6d:71:
#                    91:7e:63:b6:ab:a6:5f:c3:a4:84:f8:4f:62:51:be:
#                    f8:c5:ec:db:38:92:e3:06:e5:08:91:0c:c4:28:41:
#                    55:fb:cb:5a:89:15:7e:71:e8:35:bf:4d:72:09:3d:
#                    be:3a:38:50:5b:77:31:1b:8d:b3:c7:24:45:9a:a7:
#                    ac:6d:00:14:5a:04:b7:ba:13:eb:51:0a:98:41:41:
#                    22:4e:65:61:87:81:41:50:a6:79:5c:89:de:19:4a:
#                    57:d5:2e:e6:5d:1c:53:2c:7e:98:cd:1a:06:16:a4:
#                    68:73:d0:34:04:13:5c:a1:71:d3:5a:7c:55:db:5e:
#                    64:e1:37:87:30:56:04:e5:11:b4:29:80:12:f1:79:
#                    39:88:a2:02:11:7c:27:66:b7:88:b7:78:f2:ca:0a:
#                    a8:38:ab:0a:64:c2:bf:66:5d:95:84:c1:a1:25:1e:
#                    87:5d:1a:50:0b:20:12:cc:41:bb:6e:0b:51:38:b8:
#                    4b:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3
#            X509v3 Authority Key Identifier: 
#                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3
#
#    Signature Algorithm: sha1WithRSAEncryption
#         1c:1a:06:97:dc:d7:9c:9f:3c:88:66:06:08:57:21:db:21:47:
#         f8:2a:67:aa:bf:18:32:76:40:10:57:c1:8a:f3:7a:d9:11:65:
#         8e:35:fa:9e:fc:45:b5:9e:d9:4c:31:4b:b8:91:e8:43:2c:8e:
#         b3:78:ce:db:e3:53:79:71:d6:e5:21:94:01:da:55:87:9a:24:
#         64:f6:8a:66:cc:de:9c:37:cd:a8:34:b1:69:9b:23:c8:9e:78:
#         22:2b:70:43:e3:55:47:31:61:19:ef:58:c5:85:2f:4e:30:f6:
#         a0:31:16:23:c8:e7:e2:65:16:33:cb:bf:1a:1b:a0:3d:f8:ca:
#         5e:8b:31:8b:60:08:89:2d:0c:06:5c:52:b7:c4:f9:0a:98:d1:
#         15:5f:9f:12:be:7c:36:63:38:bd:44:a4:7f:e4:26:2b:0a:c4:
#         97:69:0d:e9:8c:e2:c0:10:57:b8:c8:76:12:91:55:f2:48:69:
#         d8:bc:2a:02:5b:0f:44:d4:20:31:db:f4:ba:70:26:5d:90:60:
#         9e:bc:4b:17:09:2f:b4:cb:1e:43:68:c9:07:27:c1:d2:5c:f7:
#         ea:21:b9:68:12:9c:3c:9c:bf:9e:fc:80:5c:9b:63:cd:ec:47:
#         aa:25:27:67:a0:37:f3:00:82:7d:54:d7:a9:f8:e9:2e:13:a3:
#         77:e8:1f:4a

[p11-kit-object-v1]
label: "DigiCert RSA4096 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert RSA4096 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:bf:a2:6f:9a:3f:33:65:a2:ac:f0:a6:38:c4:01:70
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert RSA4096 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert RSA4096 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:be:0d:b2:06:7d:26:f9:47:ea:e4:1b:e7:42:
#                    69:b8:99:c2:b9:ee:24:b1:46:90:cb:59:24:52:54:
#                    35:a6:24:c2:5f:91:19:c8:b6:42:d6:f3:47:65:95:
#                    64:e7:85:65:67:a9:ae:7c:00:4f:e0:78:03:50:ad:
#                    f3:7f:8e:b8:11:e7:81:62:b1:8b:df:f2:49:26:09:
#                    de:0f:16:bc:da:28:9b:a1:c8:97:2f:93:90:da:20:
#                    2a:e3:84:d4:ff:a9:9e:b0:2d:bf:b4:00:de:9b:1f:
#                    c8:a0:63:53:68:85:6f:4d:85:c6:aa:63:f9:8d:b2:
#                    35:76:62:74:03:dc:93:98:68:05:9e:cd:90:65:dd:
#                    d2:7a:31:ab:24:2d:6d:40:2e:90:3f:63:6c:2c:eb:
#                    fa:1e:80:54:8d:79:02:90:14:b3:b5:4f:4e:f5:88:
#                    04:43:80:c3:48:b3:26:2f:ac:51:95:32:55:25:2f:
#                    41:96:b0:56:a1:08:3b:dc:98:1f:72:85:2c:77:ca:
#                    98:cc:38:fb:8e:72:c9:6d:ec:05:ec:ed:4d:b7:3c:
#                    5b:14:50:85:dd:97:fb:59:f7:90:12:f4:13:bf:83:
#                    4d:80:b2:15:65:11:97:60:e5:d6:5c:e6:04:b5:50:
#                    e6:71:33:b6:20:93:a9:68:00:38:ce:49:db:b4:5c:
#                    3b:72:d7:45:5c:54:bf:cd:3c:01:23:1e:7c:d6:f8:
#                    69:2c:a5:00:0a:6c:32:48:b4:de:70:2d:3a:13:17:
#                    c1:7f:64:cb:f3:30:ed:a1:3d:96:67:f1:94:b5:60:
#                    6c:5b:69:68:f5:82:33:09:a2:b6:d9:f3:85:b2:6e:
#                    a0:94:f0:c2:c4:7d:a1:2c:ca:73:f5:ae:e0:52:9c:
#                    a2:66:e6:03:ce:ea:df:ed:18:d4:b9:63:8b:f7:e8:
#                    ff:fb:b3:5b:8f:43:c5:af:b7:74:94:50:35:65:ae:
#                    d6:2f:f1:85:8f:53:a1:70:f4:8d:32:5d:bc:96:c3:
#                    1e:c2:04:04:9c:04:0f:b3:5d:7e:89:20:ca:5e:27:
#                    0d:89:4a:12:23:b4:f6:c4:dd:d8:1f:f8:68:b3:36:
#                    f8:1e:bc:c6:f7:84:b6:e8:8a:4e:88:30:38:c0:26:
#                    d8:70:0a:09:3a:34:0e:6b:82:12:96:1c:2f:e6:9e:
#                    ad:d8:71:35:81:b1:8c:06:6e:f4:6e:66:ff:4b:4a:
#                    ae:bd:f0:fe:d7:5c:5f:53:bb:32:3c:cd:62:d1:14:
#                    a0:29:1f:10:de:a9:72:4f:b1:ad:64:e5:83:2a:8f:
#                    8b:ea:84:95:ee:98:25:98:9a:b3:71:3c:c1:a7:50:
#                    f2:ac:42:62:31:c2:a1:90:c6:ee:e2:b7:8a:a8:b5:
#                    b6:1b:3b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                62:6D:B7:91:4F:C4:EA:A3:62:60:8F:A0:D0:BE:B5:8F:06:7C:68:00
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         61:e8:fb:27:6d:d6:e2:b8:b3:09:af:aa:f0:b1:82:4c:fe:3d:
#         17:89:4d:2d:15:9d:fb:ee:d0:bb:84:ec:84:75:db:43:13:de:
#         8c:9f:c7:29:ef:87:74:cb:13:70:81:56:00:74:fc:ae:f4:d9:
#         3a:de:22:08:51:a5:a0:5c:82:66:b6:7b:4c:a9:da:8f:ab:ac:
#         1c:41:96:66:d6:9d:de:56:e6:bf:4e:b1:b2:5e:5f:c0:c3:6e:
#         d4:c2:84:90:f5:7d:b1:ba:16:d1:29:8a:c8:9d:e9:cf:d0:c7:
#         19:3b:3f:cf:ee:f7:e1:33:ae:42:c8:98:c0:08:9e:f3:5a:f3:
#         df:d4:2b:3b:8e:a8:28:56:19:c7:4e:77:3c:25:54:dc:b8:48:
#         48:d1:f9:27:6a:3e:ec:13:af:b2:05:89:fd:55:5f:f3:7d:8e:
#         0d:9c:09:5d:2c:8a:7e:85:ce:f8:e1:bf:11:3d:32:8c:5a:d7:
#         7e:3d:f4:33:58:cf:a2:05:98:a3:b3:fb:ce:89:bf:fd:c2:16:
#         dd:6e:dc:88:49:0d:0b:a0:03:ff:e7:45:e9:04:c1:e9:fd:aa:
#         9d:75:f8:b8:1f:87:83:d9:eb:39:d3:5a:a7:cb:98:ac:13:89:
#         00:fc:6f:95:4e:e1:7d:11:46:6d:f6:38:46:a3:13:a0:2c:01:
#         f5:62:cf:bf:1c:50:91:27:74:5d:b7:ec:47:7c:d0:d1:75:cb:
#         7b:ee:d1:4d:23:0a:c3:60:a5:77:2d:80:da:67:0f:8e:6b:76:
#         07:f0:a6:0f:ea:84:ae:1e:79:bf:08:8a:da:09:f3:f4:ee:b5:
#         36:f3:d4:7a:43:ba:94:35:e1:fa:c1:3b:1b:96:99:a4:57:63:
#         eb:b5:a8:82:f7:ad:f8:77:d7:76:86:f3:76:53:56:5b:fc:26:
#         42:84:ce:9f:83:91:91:af:f4:be:70:15:80:a5:d8:e8:69:b1:
#         d8:91:54:b8:19:b2:62:f9:a2:fa:55:ed:04:bf:b9:44:86:e4:
#         cf:f1:9b:00:bf:11:0f:be:b5:74:24:51:ff:77:34:63:ec:48:
#         23:0e:e8:11:eb:77:6d:da:ca:82:91:be:a4:84:93:4c:da:a1:
#         fe:cc:06:84:e8:21:e8:54:ba:e6:d3:1d:63:3d:c2:5a:fc:e6:
#         c9:83:9e:72:64:a9:86:59:00:8c:c2:f7:13:83:b6:d0:a4:31:
#         c6:ac:91:8e:7b:a4:22:56:13:c6:75:c7:23:bc:8b:5b:fc:46:
#         3d:fe:5d:52:29:af:af:e8:c9:c3:76:4b:e8:ab:47:02:f2:9a:
#         0d:d3:2c:88:80:07:86:c0:63:0f:02:4c:8e:04:53:76:b9:58:
#         42:6f:7c:29:70:5d:bf:27

[p11-kit-object-v1]
label: "DigiCert SMIME ECC P384 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEFp1V5bbU+/tnaxrUoarSd5U+iOUHn7Zw
ZiAopIjscDWvszL/NxNKnrwBA96EwbjG5mVHifITVb/NpR4IYH+tf+hhkinPCUde
CxzAH6S/8lu8mO+ZTMxwa7a60Cgdv74E
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert SMIME ECC P384 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:3f:6e:a0:06:01:72:7d:ed:3f:c3:a3:b6:a3:d6:ef
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert SMIME ECC P384 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert SMIME ECC P384 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:16:9d:55:e5:b6:d4:fb:fb:67:6b:1a:d4:a1:aa:
#                    d2:77:95:3e:88:e5:07:9f:b6:70:66:20:28:a4:88:
#                    ec:70:35:af:b3:32:ff:37:13:4a:9e:bc:01:03:de:
#                    84:c1:b8:c6:e6:65:47:89:f2:13:55:bf:cd:a5:1e:
#                    08:60:7f:ad:7f:e8:61:92:29:cf:09:47:5e:0b:1c:
#                    c0:1f:a4:bf:f2:5b:bc:98:ef:99:4c:cc:70:6b:b6:
#                    ba:d0:28:1d:bf:be:04
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                73:7A:6B:96:DB:42:07:8B:52:66:C2:64:32:17:FE:E0:67:90:2E:AD
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:37:44:f5:32:80:e3:71:eb:f4:6d:cf:7c:cc:91:
#         9a:c3:6e:71:d8:d2:23:5d:92:4d:82:42:6d:5c:61:95:f6:91:
#         f5:a7:08:f6:6a:97:e9:9c:94:2d:98:70:fd:33:b6:09:02:30:
#         07:3c:2f:b9:58:82:5e:0f:a3:62:a8:93:67:f0:20:c3:69:bf:
#         03:2c:3b:50:a7:3b:af:41:38:c9:52:48:91:d6:0e:fb:bc:60:
#         30:7c:64:3f:12:1e:45:7f:51:3e:f4:a6

[p11-kit-object-v1]
label: "DigiCert SMIME RSA4096 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert SMIME RSA4096 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:f6:ba:04:23:83:46:cb:7d:5c:e6:b9:5b:ba:1c:55
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert SMIME RSA4096 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert SMIME RSA4096 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:e0:6a:5b:d9:f8:f9:7d:ec:b5:7b:ef:5f:dd:5c:
#                    34:d8:da:5d:d1:cb:65:75:ab:21:7c:5b:00:d4:82:
#                    6f:45:85:41:8a:a9:12:02:72:32:f0:14:f5:03:75:
#                    bb:63:97:49:0f:40:99:0b:1a:1e:56:a7:d2:d0:e1:
#                    ab:dd:e5:04:1b:e3:1f:14:12:02:88:f5:a0:80:09:
#                    f6:27:9a:50:f0:ba:e3:a2:e0:ac:6a:14:91:b5:6b:
#                    38:10:7a:a2:31:e1:91:1b:b7:b9:f0:2b:5b:c8:77:
#                    09:76:b7:51:c4:36:0a:99:53:54:44:25:b7:09:35:
#                    86:17:05:56:93:3d:41:b7:02:d7:62:1f:8a:92:11:
#                    87:ea:11:6d:ea:08:11:dc:b1:78:48:49:92:f6:b4:
#                    51:80:78:23:d8:fe:e1:56:1a:3a:90:13:56:34:89:
#                    d5:e2:95:8b:5f:de:b2:cc:fb:3f:38:b7:85:f7:ea:
#                    9e:bf:2e:a1:2e:2f:4d:7d:6a:11:2e:36:a0:ff:11:
#                    08:04:95:55:e0:1b:3b:67:93:a9:94:55:ea:32:ed:
#                    06:3a:7f:c2:7f:e3:ad:13:27:d1:34:41:b3:30:c3:
#                    bf:b4:88:f8:03:82:a4:df:3e:ab:78:77:a0:59:93:
#                    71:e7:dd:eb:00:04:7b:cc:48:39:28:e0:1e:a3:15:
#                    69:c8:36:b2:a1:0b:97:df:55:d6:ef:91:9c:a4:f6:
#                    16:f7:51:0a:ee:03:23:91:dc:04:ff:e0:dd:38:f6:
#                    22:03:00:c2:07:71:1a:12:c9:d7:46:2a:94:1b:cd:
#                    d6:bb:1b:ee:bf:be:4d:50:58:b0:0b:cd:30:76:29:
#                    f5:cf:e5:b6:6a:2f:76:b0:b0:69:6a:d0:6d:65:18:
#                    35:7e:93:bc:72:17:c1:55:42:cd:2f:c2:25:bb:f4:
#                    fd:1d:a1:64:22:54:5d:e2:9e:72:41:84:6e:71:96:
#                    ea:45:07:b6:5e:7a:4a:86:9d:73:64:77:38:03:d2:
#                    0f:53:a5:55:20:c4:4d:ff:68:6f:55:a9:ea:dd:71:
#                    e4:4f:d9:85:a3:7c:4e:29:02:9e:0b:09:f2:1a:53:
#                    cc:00:a6:dd:d1:34:f6:0d:c1:30:b1:9c:02:64:ac:
#                    35:ed:a5:b0:29:b1:d2:95:33:0f:d2:20:33:bd:ec:
#                    23:4b:f2:19:f9:da:98:64:e4:2c:31:1f:2e:e1:8d:
#                    1c:04:95:28:4d:8c:58:cd:4b:e5:73:82:86:8c:ec:
#                    a8:d6:79:5c:fb:64:bb:dc:0c:4c:28:f6:17:af:e2:
#                    68:d6:16:86:98:db:fc:01:dc:31:ba:f8:9c:0e:f9:
#                    28:46:4a:e1:fd:96:06:45:79:11:68:17:65:5c:8b:
#                    26:87:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D1:A3:D4:57:1D:4F:55:DB:75:4C:5C:42:9E:63:16:CE:B4:C6:3B:1F
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         07:a7:0a:de:53:bb:9a:eb:70:bf:b2:36:90:cd:e4:a7:b8:f1:
#         0c:e4:5d:5a:1d:78:65:fc:c9:b8:1e:23:11:57:7c:69:35:6d:
#         01:ff:53:50:bf:07:0e:ba:c7:01:3f:58:2a:94:75:03:ab:1c:
#         0b:23:dc:1b:8a:1e:37:3d:1d:58:8f:73:d9:b3:2a:6f:df:10:
#         a0:5b:0c:a7:ca:b0:7f:b9:24:a2:01:35:32:e5:5e:46:41:eb:
#         d8:7f:73:e7:42:e9:a4:51:26:77:81:0a:a8:eb:0f:0a:50:9d:
#         7e:8a:20:67:fc:0b:8e:3a:11:d3:c5:8c:60:18:d9:4b:b1:fc:
#         d4:f1:b4:49:4e:ae:87:e1:d1:fb:76:a1:5f:f3:06:cf:97:96:
#         0c:e9:9e:75:81:5c:53:0d:22:fc:36:e6:49:6e:74:db:00:85:
#         8d:7c:22:a0:8e:fb:10:4c:d4:62:13:5b:ef:4b:72:26:8b:fc:
#         4e:8a:8f:fe:97:10:53:c5:78:8b:42:64:1b:5f:e0:89:fd:bb:
#         09:7f:50:e0:54:85:26:11:6a:1d:65:f9:49:29:dc:7c:36:df:
#         fb:3d:f7:d2:ac:ee:32:8d:6e:a6:7d:39:9c:45:c4:ca:0d:f5:
#         3b:b4:79:53:a5:2f:56:c7:51:c5:8a:4c:64:5d:90:43:23:8e:
#         6b:4c:17:78:cc:e8:bf:f5:3b:e4:a8:48:cf:ad:9b:0c:df:32:
#         4a:d3:d9:12:8e:23:78:0d:2d:af:9f:af:9e:3c:09:c2:97:00:
#         ed:3a:69:1c:71:3f:39:df:d3:8f:c4:66:f5:ef:36:94:0f:f3:
#         dd:92:b6:96:5f:90:a6:dd:73:aa:a6:20:94:94:25:6a:09:0c:
#         72:e4:13:23:60:4c:a3:ca:17:2e:7b:67:00:db:d0:cd:ea:7a:
#         1f:39:26:57:89:30:77:cb:4e:e5:95:45:4f:5f:fb:36:5c:3d:
#         f9:20:b5:3a:10:25:4f:93:32:5a:ee:c1:96:e8:e9:56:04:b0:
#         49:61:4d:ec:78:a8:9d:18:c1:ff:d8:ea:2f:56:ef:95:2b:7b:
#         04:5e:67:e3:55:40:ed:39:04:f9:0b:79:f5:6a:8c:5c:0f:89:
#         9a:90:c7:cd:8b:de:db:26:35:a1:6e:cd:b3:42:f2:a2:0f:3b:
#         0c:8e:93:ff:14:cf:fc:f7:93:f7:e4:41:08:6e:19:52:11:0f:
#         53:19:73:78:0c:cf:d8:85:81:f8:ad:55:c8:b0:9e:46:63:af:
#         9c:52:ee:5c:bf:f0:c0:5b:37:1e:09:20:d2:3e:23:c6:a1:15:
#         4a:0e:36:7e:30:c5:79:6a:bc:22:88:d9:0c:52:40:1f:dd:4e:
#         0f:67:26:16:d2:ad:17:1c

[p11-kit-object-v1]
label: "DigiCert TLS ECC P384 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEwUShzxGXUJreI4I1B83Qyxid0vF/dzVP
O92UclLtwjv47Pp7a1gg7Jmuyfxos3W52wnsyBP1TsYKHWYwTLsfRwo8YRBCKXyl
CA7gIunTNWjOm2OfhLWZTVigjvVU55XJ
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert TLS ECC P384 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            09:e0:93:65:ac:f7:d9:c8:b9:3e:1c:0b:04:2a:2e:f3
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert TLS ECC P384 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert TLS ECC P384 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:c1:44:a1:cf:11:97:50:9a:de:23:82:35:07:cd:
#                    d0:cb:18:9d:d2:f1:7f:77:35:4f:3b:dd:94:72:52:
#                    ed:c2:3b:f8:ec:fa:7b:6b:58:20:ec:99:ae:c9:fc:
#                    68:b3:75:b9:db:09:ec:c8:13:f5:4e:c6:0a:1d:66:
#                    30:4c:bb:1f:47:0a:3c:61:10:42:29:7c:a5:08:0e:
#                    e0:22:e9:d3:35:68:ce:9b:63:9f:84:b5:99:4d:58:
#                    a0:8e:f5:54:e7:95:c9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                C1:51:45:50:59:AB:3E:E7:2C:5A:FA:20:22:12:07:80:88:7C:11:6A
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:89:6a:8d:47:e7:ec:fc:6e:55:03:d9:67:6c:
#         26:4e:83:c6:fd:c9:fb:2b:13:bc:b7:7a:8c:b4:65:d2:69:69:
#         63:13:63:3b:26:50:2e:01:a1:79:06:91:9d:48:bf:c2:be:02:
#         30:47:c3:15:7b:b1:a0:91:99:49:93:a8:3c:7c:e8:46:06:8b:
#         2c:f2:31:00:94:9d:62:c8:89:bd:19:84:14:e9:a5:fb:01:b8:
#         0d:76:43:8c:2e:53:cb:7c:df:0c:17:96:50

[p11-kit-object-v1]
label: "DigiCert TLS RSA4096 Root G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert TLS RSA4096 Root G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:f9:b4:78:a8:fa:7e:da:6a:33:37:89:de:7c:cf:8a
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=DigiCert, Inc., CN=DigiCert TLS RSA4096 Root G5
#        Validity
#            Not Before: Jan 15 00:00:00 2021 GMT
#            Not After : Jan 14 23:59:59 2046 GMT
#        Subject: C=US, O=DigiCert, Inc., CN=DigiCert TLS RSA4096 Root G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:d0:f4:c9:79:11:9d:fd:fc:66:81:e7:cc:d5:
#                    e4:bc:ec:81:3e:6a:35:8e:2e:b7:e7:de:af:f9:07:
#                    4d:cf:30:9d:ea:09:0b:99:bd:6c:57:da:18:4a:b8:
#                    78:ac:3a:39:a8:a6:48:ac:2e:72:e5:bd:eb:f1:1a:
#                    cd:e7:a4:03:a9:3f:11:b4:d8:2f:89:16:fb:94:01:
#                    3d:bb:2f:f8:13:05:a1:78:1c:8e:28:e0:45:e0:83:
#                    f4:59:1b:95:b3:ae:7e:03:45:e5:be:c2:42:fe:ee:
#                    f2:3c:b6:85:13:98:32:9d:16:a8:29:c2:0b:1c:38:
#                    dc:9f:31:77:5c:bf:27:a3:fc:27:ac:b7:2b:bd:74:
#                    9b:17:2d:f2:81:da:5d:b0:e1:23:17:3e:88:4a:12:
#                    23:d0:ea:cf:9d:de:03:17:b1:42:4a:a0:16:4c:a4:
#                    6d:93:e9:3f:3a:ee:3a:7c:9d:58:9d:f4:4e:8f:fc:
#                    3b:23:c8:6d:b8:e2:05:da:cc:eb:ec:c3:31:f4:d7:
#                    a7:29:54:80:cf:44:5b:4c:6f:30:9e:f3:cc:dd:1f:
#                    94:43:9d:4d:7f:70:70:0d:d4:3a:d1:37:f0:6c:9d:
#                    9b:c0:14:93:58:ef:cd:41:38:75:bc:13:03:95:7c:
#                    7f:e3:5c:e9:d5:0d:d5:e2:7c:10:62:aa:6b:f0:3d:
#                    76:f3:3f:a3:e8:b0:c1:fd:ef:aa:57:4d:ac:86:a7:
#                    18:b4:29:c1:2c:0e:bf:64:be:29:8c:d8:02:2d:cd:
#                    5c:2f:f2:7f:ef:15:f4:0c:15:ac:0a:b0:f1:d3:0d:
#                    4f:6a:4d:77:97:01:a0:f1:66:b7:b7:ce:ef:ce:ec:
#                    ec:a5:75:ca:ac:e3:e1:63:f7:b8:a1:04:c8:bc:7b:
#                    3f:5d:2d:16:22:56:ed:48:49:fe:a7:2f:79:30:25:
#                    9b:ba:6b:2d:3f:9d:3b:c4:17:e7:1d:2e:fb:f2:cf:
#                    a6:fc:e3:14:2c:96:98:21:8c:b4:91:e9:19:60:83:
#                    f2:30:2b:06:73:50:d5:98:3b:06:e9:c7:8a:0c:60:
#                    8c:28:f8:52:9b:6e:e1:f6:4d:bb:06:24:9b:d7:2b:
#                    26:3f:fd:2a:2f:71:f5:d6:24:be:7f:31:9e:0f:6d:
#                    e8:8f:4f:4d:a3:3f:ff:35:ea:df:49:5e:41:8f:86:
#                    f9:f1:77:79:4b:1b:b4:a3:5e:2f:fb:46:02:d0:66:
#                    13:5e:5e:85:4f:ce:d8:70:88:7b:ce:01:b5:96:97:
#                    d7:cd:7d:fd:82:f8:c2:24:c1:ca:01:39:4f:8d:a2:
#                    c1:14:40:1f:9c:66:d5:0c:09:46:d6:f2:d0:d1:48:
#                    76:56:3a:43:cb:b6:0a:11:39:ba:8c:13:6c:06:b5:
#                    9e:cf:eb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                51:33:1C:ED:36:40:AF:17:D3:25:CD:69:68:F2:AF:4E:23:3E:B3:41
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         60:a6:af:5b:5f:57:da:89:db:4b:50:a9:c4:23:35:21:ff:d0:
#         61:30:84:91:b7:3f:10:cf:25:8e:c9:bf:46:34:d9:c1:21:26:
#         1c:70:19:72:1e:a3:c9:87:fe:a9:43:64:96:3a:c8:53:04:0a:
#         b6:41:bb:c4:47:00:d9:9f:18:18:3b:b2:0e:f3:34:ea:24:f7:
#         dd:af:20:60:ae:92:28:5f:36:e7:5d:e4:de:c7:3c:db:50:39:
#         ad:bb:3d:28:4d:96:7c:76:c6:5b:f4:c1:db:14:a5:ab:19:62:
#         07:18:40:5f:97:91:dc:9c:c7:ab:b5:51:0d:e6:69:53:55:cc:
#         39:7d:da:c5:11:55:72:c5:3b:8b:89:f8:34:2d:a4:17:e5:17:
#         e6:99:7d:30:88:21:37:cd:30:17:3d:b8:f2:bc:a8:75:a0:43:
#         dc:3e:89:4b:90:ae:6d:03:e0:1c:a3:a0:96:09:bb:7d:a3:b7:
#         2a:10:44:4b:46:07:34:63:ed:31:b9:04:ee:a3:9b:9a:ae:e6:
#         31:78:f4:ea:24:61:3b:ab:58:64:ff:bb:87:27:62:25:81:df:
#         dc:a1:2f:f6:ed:a7:ff:7a:8f:51:2e:30:f8:a4:01:d2:85:39:
#         5f:01:99:96:6f:5a:5b:70:19:46:fe:86:60:3e:ad:80:10:09:
#         dd:39:25:2f:58:7f:bb:d2:74:f0:f7:46:1f:46:39:4a:d8:53:
#         d0:f3:2e:3b:71:a5:d4:6f:fc:f3:67:e4:07:8f:dd:26:19:e1:
#         8d:5b:fa:a3:93:11:9b:e9:c8:3a:c3:55:68:9a:92:e1:52:76:
#         38:e8:e1:ba:bd:fb:4f:d5:ef:b3:e7:48:83:31:f0:82:21:e3:
#         b6:be:a7:ab:6f:ef:9f:df:4c:cf:01:b8:62:6a:23:3d:e7:09:
#         4d:80:1b:7b:30:a4:c3:dd:07:7f:34:be:a4:26:b2:f6:41:e8:
#         09:1d:e3:20:98:aa:37:4f:ff:f7:f1:e2:29:70:31:47:3f:74:
#         d0:14:16:fa:21:8a:02:d5:8a:09:94:77:2e:f2:59:28:8b:7c:
#         50:92:0a:66:78:38:83:75:c4:b5:5a:a8:11:c6:e5:c1:9d:66:
#         55:cf:53:c4:af:d7:75:85:a9:42:13:56:ec:21:77:81:93:5a:
#         0c:ea:96:d9:49:ca:a1:08:f2:97:3b:6d:9b:04:18:24:44:8e:
#         7c:01:f2:dc:25:d8:5e:86:9a:b1:39:db:f5:91:32:6a:d1:a6:
#         70:8a:a2:f7:de:a4:45:85:26:a8:1e:8c:5d:29:5b:c8:4b:d8:
#         9a:6a:03:5e:70:f2:85:4f:6c:4b:68:2f:ca:54:f6:8c:da:32:
#         fe:c3:6b:83:3f:38:c6:7e

[p11-kit-object-v1]
label: "DigiCert Trusted Root G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "DigiCert Trusted Root G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:9b:1b:57:9e:8e:21:32:e2:39:07:bd:a7:77:75:5c
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Trusted Root G4
#        Validity
#            Not Before: Aug  1 12:00:00 2013 GMT
#            Not After : Jan 15 12:00:00 2038 GMT
#        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Trusted Root G4
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:bf:e6:90:73:68:de:bb:e4:5d:4a:3c:30:22:30:
#                    69:33:ec:c2:a7:25:2e:c9:21:3d:f2:8a:d8:59:c2:
#                    e1:29:a7:3d:58:ab:76:9a:cd:ae:7b:1b:84:0d:c4:
#                    30:1f:f3:1b:a4:38:16:eb:56:c6:97:6d:1d:ab:b2:
#                    79:f2:ca:11:d2:e4:5f:d6:05:3c:52:0f:52:1f:c6:
#                    9e:15:a5:7e:be:9f:a9:57:16:59:55:72:af:68:93:
#                    70:c2:b2:ba:75:99:6a:73:32:94:d1:10:44:10:2e:
#                    df:82:f3:07:84:e6:74:3b:6d:71:e2:2d:0c:1b:ee:
#                    20:d5:c9:20:1d:63:29:2d:ce:ec:5e:4e:c8:93:f8:
#                    21:61:9b:34:eb:05:c6:5e:ec:5b:1a:bc:eb:c9:cf:
#                    cd:ac:34:40:5f:b1:7a:66:ee:77:c8:48:a8:66:57:
#                    57:9f:54:58:8e:0c:2b:b7:4f:a7:30:d9:56:ee:ca:
#                    7b:5d:e3:ad:c9:4f:5e:e5:35:e7:31:cb:da:93:5e:
#                    dc:8e:8f:80:da:b6:91:98:40:90:79:c3:78:c7:b6:
#                    b1:c4:b5:6a:18:38:03:10:8d:d8:d4:37:a4:2e:05:
#                    7d:88:f5:82:3e:10:91:70:ab:55:82:41:32:d7:db:
#                    04:73:2a:6e:91:01:7c:21:4c:d4:bc:ae:1b:03:75:
#                    5d:78:66:d9:3a:31:44:9a:33:40:bf:08:d7:5a:49:
#                    a4:c2:e6:a9:a0:67:dd:a4:27:bc:a1:4f:39:b5:11:
#                    58:17:f7:24:5c:46:8f:64:f7:c1:69:88:76:98:76:
#                    3d:59:5d:42:76:87:89:97:69:7a:48:f0:e0:a2:12:
#                    1b:66:9a:74:ca:de:4b:1e:e7:0e:63:ae:e6:d4:ef:
#                    92:92:3a:9e:3d:dc:00:e4:45:25:89:b6:9a:44:19:
#                    2b:7e:c0:94:b4:d2:61:6d:eb:33:d9:c5:df:4b:04:
#                    00:cc:7d:1c:95:c3:8f:f7:21:b2:b2:11:b7:bb:7f:
#                    f2:d5:8c:70:2c:41:60:aa:b1:63:18:44:95:1a:76:
#                    62:7e:f6:80:b0:fb:e8:64:a6:33:d1:89:07:e1:bd:
#                    b7:e6:43:a4:18:b8:a6:77:01:e1:0f:94:0c:21:1d:
#                    b2:54:29:25:89:6c:e5:0e:52:51:47:74:be:26:ac:
#                    b6:41:75:de:7a:ac:5f:8d:3f:c9:bc:d3:41:11:12:
#                    5b:e5:10:50:eb:31:c5:ca:72:16:22:09:df:7c:4c:
#                    75:3f:63:ec:21:5f:c4:20:51:6b:6f:b1:ab:86:8b:
#                    4f:c2:d6:45:5f:9d:20:fc:a1:1e:c5:c0:8f:a2:b1:
#                    7e:0a:26:99:f5:e4:69:2f:98:1d:2d:f5:d9:a9:b2:
#                    1d:e5:1b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                EC:D7:E3:82:D2:71:5D:64:4C:DF:2E:67:3F:E7:BA:98:AE:1C:0F:4F
#    Signature Algorithm: sha384WithRSAEncryption
#         bb:61:d9:7d:a9:6c:be:17:c4:91:1b:c3:a1:a2:00:8d:e3:64:
#         68:0f:56:cf:77:ae:70:f9:fd:9a:4a:99:b9:c9:78:5c:0c:0c:
#         5f:e4:e6:14:29:56:0b:36:49:5d:44:63:e0:ad:9c:96:18:66:
#         1b:23:0d:3d:79:e9:6d:6b:d6:54:f8:d2:3c:c1:43:40:ae:1d:
#         50:f5:52:fc:90:3b:bb:98:99:69:6b:c7:c1:a7:a8:68:a4:27:
#         dc:9d:f9:27:ae:30:85:b9:f6:67:4d:3a:3e:8f:59:39:22:53:
#         44:eb:c8:5d:03:ca:ed:50:7a:7d:62:21:0a:80:c8:73:66:d1:
#         a0:05:60:5f:e8:a5:b4:a7:af:a8:f7:6d:35:9c:7c:5a:8a:d6:
#         a2:38:99:f3:78:8b:f4:4d:d2:20:0b:de:04:ee:8c:9b:47:81:
#         72:0d:c0:14:32:ef:30:59:2e:ae:e0:71:f2:56:e4:6a:97:6f:
#         92:50:6d:96:8d:68:7a:9a:b2:36:14:7a:06:f2:24:b9:09:11:
#         50:d7:08:b1:b8:89:7a:84:23:61:42:29:e5:a3:cd:a2:20:41:
#         d7:d1:9c:64:d9:ea:26:a1:8b:14:d7:4c:19:b2:50:41:71:3d:
#         3f:4d:70:23:86:0c:4a:dc:81:d2:cc:32:94:84:0d:08:09:97:
#         1c:4f:c0:ee:6b:20:74:30:d2:e0:39:34:10:85:21:15:01:08:
#         e8:55:32:de:71:49:d9:28:17:50:4d:e6:be:4d:d1:75:ac:d0:
#         ca:fb:41:b8:43:a5:aa:d3:c3:05:44:4f:2c:36:9b:e2:fa:e2:
#         45:b8:23:53:6c:06:6f:67:55:7f:46:b5:4c:3f:6e:28:5a:79:
#         26:d2:a4:a8:62:97:d2:1e:e2:ed:4a:8b:bc:1b:fd:47:4a:0d:
#         df:67:66:7e:b2:5b:41:d0:3b:e4:f4:3b:f4:04:63:e9:ef:c2:
#         54:00:51:a0:8a:2a:c9:ce:78:cc:d5:ea:87:04:18:b3:ce:af:
#         49:88:af:f3:92:99:b6:b3:e6:61:0f:d2:85:00:e7:50:1a:e4:
#         1b:95:9d:19:a1:b9:9c:b1:9b:b1:00:1e:ef:d0:0f:4f:42:6c:
#         c9:0a:bc:ee:43:fa:3a:71:a5:c8:4d:26:a5:35:fd:89:5d:bc:
#         85:62:1d:32:d2:a0:2b:54:ed:9a:57:c1:db:fa:10:cf:19:b7:
#         8b:4a:1b:8f:01:b6:27:95:53:e8:b6:89:6d:5b:bc:68:d4:23:
#         e8:8b:51:a2:56:f9:f0:a6:80:a0:d6:1e:b3:bc:0f:0f:53:75:
#         29:aa:ea:13:77:e4:de:8c:81:21:ad:07:10:47:11:ad:87:3d:
#         07:d1:75:bc:cf:f3:66:7e

[p11-kit-object-v1]
label: "Digidentity L3 Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAuBGjRd4BR1YNYriOulhm
XPoyxmuAbrh/+FPfft9iqMFXT5pFJchKRS1TOCSzIKxP6q3/mhCvf+IOyrQOJCWR
znaOEKkvmVOnkEsEi216uUEb0wF5jJ9Ba7mQ14ESGgeW0Amv6eRqIVOAuIaeYmhD
rbNqFfr2bQMyajWxUBNIx3q1IROcBJzak/lqK8GnGP32wH5Z9vvnDhG13CPqHO9n
BVfOF+nxe7HRMiSMz2Xn1Lw2GXB8oich1oDSLRVPSrXgVZCVUZMhgPOcRB//HVVV
5OIQEZQWU9D+r/Pvl7pG4ndby9aiWRGIpudVQcOSZR0jFGIUfyVyIPakhylvB/z+
4NAY0pf5FI42xugMGJfxdhz0JNrjSvm3TBIZZ/Pw4VP7XeTAdGNfJZEK2T70M6zk
C3VfzuaYvFQNnaIxxRVUXSIcizpUpg3R1yM6rD6qShdkdi0N+1Tl64I8OUFDneGu
eWDPZu7HcYN7DGsJ256iTU5Gk2i3+mfh2r/fkYDao6KJrV5szEt3dWRvjSTjiIgL
4z/pv6flVmINg3+9amHIkIl4WwyvEirik61k59lFLvawyKtF7nA4b7s1Phb+q57D
Zi/zvglg1W+AvU3br43+DGAzaw/onWvEMHefLFA40Jhp7Dfong/kYur6/xFEVNnv
zZN1kUzhiWWmlLlT+flJY8UCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Digidentity L3 Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=NL, O=Digidentity B.V., CN=Digidentity L3 Root CA - G2
#        Validity
#            Not Before: Apr 29 10:44:19 2011 GMT
#            Not After : Nov 10 10:44:19 2031 GMT
#        Subject: C=NL, O=Digidentity B.V., CN=Digidentity L3 Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b8:11:a3:45:de:01:47:56:0d:62:b8:8e:ba:58:
#                    66:5c:fa:32:c6:6b:80:6e:b8:7f:f8:53:df:7e:df:
#                    62:a8:c1:57:4f:9a:45:25:c8:4a:45:2d:53:38:24:
#                    b3:20:ac:4f:ea:ad:ff:9a:10:af:7f:e2:0e:ca:b4:
#                    0e:24:25:91:ce:76:8e:10:a9:2f:99:53:a7:90:4b:
#                    04:8b:6d:7a:b9:41:1b:d3:01:79:8c:9f:41:6b:b9:
#                    90:d7:81:12:1a:07:96:d0:09:af:e9:e4:6a:21:53:
#                    80:b8:86:9e:62:68:43:ad:b3:6a:15:fa:f6:6d:03:
#                    32:6a:35:b1:50:13:48:c7:7a:b5:21:13:9c:04:9c:
#                    da:93:f9:6a:2b:c1:a7:18:fd:f6:c0:7e:59:f6:fb:
#                    e7:0e:11:b5:dc:23:ea:1c:ef:67:05:57:ce:17:e9:
#                    f1:7b:b1:d1:32:24:8c:cf:65:e7:d4:bc:36:19:70:
#                    7c:a2:27:21:d6:80:d2:2d:15:4f:4a:b5:e0:55:90:
#                    95:51:93:21:80:f3:9c:44:1f:ff:1d:55:55:e4:e2:
#                    10:11:94:16:53:d0:fe:af:f3:ef:97:ba:46:e2:77:
#                    5b:cb:d6:a2:59:11:88:a6:e7:55:41:c3:92:65:1d:
#                    23:14:62:14:7f:25:72:20:f6:a4:87:29:6f:07:fc:
#                    fe:e0:d0:18:d2:97:f9:14:8e:36:c6:e8:0c:18:97:
#                    f1:76:1c:f4:24:da:e3:4a:f9:b7:4c:12:19:67:f3:
#                    f0:e1:53:fb:5d:e4:c0:74:63:5f:25:91:0a:d9:3e:
#                    f4:33:ac:e4:0b:75:5f:ce:e6:98:bc:54:0d:9d:a2:
#                    31:c5:15:54:5d:22:1c:8b:3a:54:a6:0d:d1:d7:23:
#                    3a:ac:3e:aa:4a:17:64:76:2d:0d:fb:54:e5:eb:82:
#                    3c:39:41:43:9d:e1:ae:79:60:cf:66:ee:c7:71:83:
#                    7b:0c:6b:09:db:9e:a2:4d:4e:46:93:68:b7:fa:67:
#                    e1:da:bf:df:91:80:da:a3:a2:89:ad:5e:6c:cc:4b:
#                    77:75:64:6f:8d:24:e3:88:88:0b:e3:3f:e9:bf:a7:
#                    e5:56:62:0d:83:7f:bd:6a:61:c8:90:89:78:5b:0c:
#                    af:12:2a:e2:93:ad:64:e7:d9:45:2e:f6:b0:c8:ab:
#                    45:ee:70:38:6f:bb:35:3e:16:fe:ab:9e:c3:66:2f:
#                    f3:be:09:60:d5:6f:80:bd:4d:db:af:8d:fe:0c:60:
#                    33:6b:0f:e8:9d:6b:c4:30:77:9f:2c:50:38:d0:98:
#                    69:ec:37:e8:9e:0f:e4:62:ea:fa:ff:11:44:54:d9:
#                    ef:cd:93:75:91:4c:e1:89:65:a6:94:b9:53:f9:f9:
#                    49:63:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                2B:23:20:60:BD:2D:8A:88:47:AC:AD:2B:BE:02:39:BA:98:D4:EC:98
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://pki.digidentity.eu/validatie
#
#    Signature Algorithm: sha256WithRSAEncryption
#         a9:fd:ef:ba:8f:1b:7e:32:12:67:1d:41:0d:2d:a6:8b:cf:f2:
#         f4:ad:56:78:7e:0a:98:d8:9b:a8:d1:b4:4b:2c:26:ac:e4:d2:
#         7f:67:37:bd:09:8d:e5:b9:73:11:3a:6e:09:c7:57:64:07:21:
#         34:f8:0e:5d:2a:d8:91:7c:f1:54:51:bc:9c:f0:0c:6a:42:f4:
#         3c:01:4e:93:45:41:3d:ac:f3:98:4b:1e:71:1e:33:59:32:ff:
#         7c:30:f0:5c:e4:e1:be:2d:2e:b5:ea:dd:62:21:0e:3d:b4:0d:
#         95:fc:c9:b8:d9:ba:a0:f7:62:a7:ed:c3:03:ae:08:2c:41:d5:
#         ef:43:71:38:b7:14:72:ae:3f:f4:14:74:47:d8:de:8c:51:79:
#         ce:ef:b1:54:ac:70:47:96:7e:2d:2e:dd:9b:ee:a1:01:2e:19:
#         ef:be:58:60:71:2d:ad:97:5b:5a:60:30:cb:32:82:62:4e:56:
#         e5:67:6a:b4:d2:31:54:72:3f:02:d0:bc:30:39:8f:b7:43:09:
#         2a:1f:26:3b:0c:c7:7c:1d:9b:80:60:84:0e:e9:2e:d2:f9:15:
#         bb:5b:e0:8a:a4:00:e9:e3:29:fb:28:5b:bd:36:45:60:21:43:
#         31:ff:70:a1:5f:5c:83:5b:97:7c:0d:b7:53:59:ec:98:b5:4e:
#         e2:29:b1:d4:7c:46:e3:e8:e3:43:ea:3a:96:35:1f:53:f1:04:
#         16:25:e3:2c:f3:68:a1:a6:91:df:15:fb:bd:9f:e6:4e:9e:c2:
#         54:6b:7e:22:57:e3:a4:9c:5c:22:25:1f:81:af:99:c8:df:11:
#         15:48:43:f8:b3:33:a9:23:7f:0e:33:8f:bc:46:1d:43:b4:3b:
#         60:f5:97:85:19:a2:16:b0:55:dc:1a:70:29:65:da:d9:7e:09:
#         17:34:eb:89:ba:e9:61:92:d8:de:34:63:3c:4a:55:6a:bf:da:
#         86:ed:ce:33:de:bb:53:6f:cf:1c:da:94:4f:76:54:ac:65:55:
#         10:53:9a:c8:b8:6b:dc:06:e6:ba:e5:51:d5:41:7f:1f:c4:c0:
#         41:a1:60:91:34:f3:13:82:d1:a1:77:d3:f7:4c:e4:19:ff:d7:
#         44:9a:b0:b5:bc:dc:ca:5e:8f:dc:ce:f1:a0:69:36:e0:44:92:
#         2e:99:fa:bc:af:b3:c7:78:3a:55:66:c7:6b:a5:e4:69:26:e9:
#         34:1d:1f:2a:97:0a:e9:77:a9:77:5b:73:48:32:81:bf:ff:d1:
#         ec:83:c5:70:83:69:9e:98:1b:c3:57:df:91:95:1c:80:fc:8d:
#         e8:96:83:05:d3:9f:7a:88:7b:fa:e8:57:f1:c1:84:28:bd:cd:
#         d6:1c:cc:a5:e2:49:0a:73

[p11-kit-object-v1]
label: "E-ME SSI (RCA)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "E-ME SSI (RCA)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2e:ef:db:fb:d8:89:3d:8f:49:1c:93:72:fe:45:df:ed
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=LV, OU=Sertifikacijas pakalpojumu dala, CN=E-ME SSI (RCA)
#        Validity
#            Not Before: May 19 08:45:56 2009 GMT
#            Not After : May 19 08:48:15 2027 GMT
#        Subject: C=LV, OU=Sertifikacijas pakalpojumu dala, CN=E-ME SSI (RCA)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:04:6b:00:c3:b0:e0:2e:3b:e8:53:05:05:08:
#                    be:c8:84:27:55:d6:1d:8a:12:e2:17:22:5a:6c:ff:
#                    b3:dd:b6:99:c3:ca:c1:ea:f9:d8:25:b5:df:3a:9d:
#                    9d:3f:52:c5:e9:f2:ac:bf:89:74:8a:54:ae:4e:cf:
#                    6e:f2:5e:ae:da:bd:12:07:99:95:cf:64:ab:fe:99:
#                    91:64:59:8c:c9:be:44:6a:31:9b:98:ea:ba:ea:d1:
#                    21:0e:28:0b:39:9b:e3:d6:8a:a6:f7:02:ba:3f:3d:
#                    d9:59:f4:79:99:de:d3:24:9b:8b:70:1b:2a:84:d6:
#                    e5:09:0f:26:26:24:58:8f:25:5e:f3:c5:9d:74:89:
#                    a5:36:c5:e5:52:b2:eb:e8:86:93:47:6e:a7:29:87:
#                    a4:7e:dc:b4:a3:cb:32:56:f7:45:80:da:5c:c7:2f:
#                    a0:a7:d7:ef:f5:fc:b5:a8:cd:84:95:62:f8:a9:2b:
#                    23:3b:6d:d3:b7:92:c8:ea:c1:bc:14:4d:e8:6b:9c:
#                    16:7a:d3:ec:07:fb:07:25:10:4f:14:87:7b:92:36:
#                    ce:56:82:65:4b:13:26:06:d8:a3:a3:a6:df:c2:7a:
#                    fb:7b:35:05:a2:13:3d:3e:76:bc:1c:57:83:03:51:
#                    c7:34:de:5a:f5:3c:bd:36:25:9c:16:0f:4d:ce:e8:
#                    0d:1a:cb:5d:43:a2:14:6f:ba:7c:60:d4:02:85:76:
#                    c5:6b:2a:b8:45:b1:5c:77:47:11:ad:a0:25:a9:66:
#                    91:8c:51:17:6d:61:55:0a:19:3f:9b:02:ff:c4:f5:
#                    d6:d2:b3:e9:25:53:e1:04:3d:8f:22:d0:a2:65:e5:
#                    ae:a7:b4:e0:1d:91:6a:c2:86:92:f7:3a:5d:13:a7:
#                    7a:4c:42:df:5a:b3:4a:88:44:2c:ef:47:ba:a9:af:
#                    d6:cf:62:73:8a:06:22:16:2c:c2:ec:1f:06:a8:d3:
#                    47:50:59:32:12:e5:b9:9d:62:35:9e:ca:5e:0a:b4:
#                    9d:23:88:c2:d3:4f:2c:2c:c9:93:e8:7e:b8:09:ec:
#                    a6:d9:dd:63:e1:c9:a8:6a:68:dc:84:51:ac:5a:12:
#                    e7:3b:a6:b5:07:0a:b1:aa:4e:b3:b4:a2:57:df:37:
#                    6c:16:4e:ab:99:32:7a:f0:9c:23:25:8b:ca:9a:a8:
#                    8c:e0:38:21:b4:ce:f7:6c:61:c8:e2:0c:12:59:06:
#                    81:26:36:5a:0f:35:73:d4:16:45:fd:de:95:de:d6:
#                    4b:5c:9f:73:d9:be:19:bd:e7:bf:e4:55:6a:c8:6b:
#                    44:f7:c7:b8:33:88:79:19:0d:06:64:e8:af:0b:a1:
#                    75:0c:52:65:ba:0a:23:95:71:f7:63:fc:7e:e5:8c:
#                    8f:cc:d1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            qcStatements: 
#                0
#0......F..
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                3B:26:03:BA:CF:E3:59:46:42:50:AD:14:9C:BF:03:3B:EF:D6:3E:31
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.32061.1.1.1
#                  CPS: http://www.eme.lv/repository
#
#    Signature Algorithm: sha1WithRSAEncryption
#         85:e6:a6:94:e4:d9:46:5f:9d:bf:93:bb:f9:6b:76:64:28:ae:
#         bf:3c:45:2a:8a:93:79:6c:d3:4b:88:86:20:6b:22:26:38:3d:
#         1c:13:aa:eb:61:97:6c:2e:3e:57:9c:6c:43:a2:de:6d:40:c4:
#         31:f2:6d:ba:46:16:b3:2d:c6:bb:a6:dc:e5:2f:b1:d8:c1:d5:
#         91:1e:11:7f:fb:5f:a1:dc:1d:61:f8:6d:9b:61:f0:e2:3f:2b:
#         71:d5:0d:cb:de:df:65:3f:a0:6f:95:9b:7a:cb:db:35:37:29:
#         5d:5e:9d:b9:54:b1:ac:60:12:e5:63:d9:cd:af:52:1b:05:96:
#         13:7c:da:24:75:01:ad:d4:9e:a5:cb:c1:12:45:4f:57:af:23:
#         bf:29:bc:ea:8e:ad:78:f8:87:23:e8:48:cb:40:a8:be:5d:33:
#         d6:ec:c6:06:43:c2:67:2a:e8:e3:85:2e:60:9e:44:2f:2b:4f:
#         31:b1:07:9d:95:21:d5:2a:92:af:80:91:d3:c7:29:bd:cd:f1:
#         15:0c:9f:01:ee:f8:2d:3b:a4:07:70:49:79:24:ed:bc:a1:d3:
#         96:51:82:9f:c2:c8:bc:de:23:9a:c7:50:2b:9a:b6:78:52:aa:
#         ce:95:f6:60:3b:a2:99:f9:26:66:f4:47:2c:41:25:bc:41:fa:
#         d6:8b:7f:bd:5f:82:7c:d3:45:85:b4:4c:d8:ec:b3:17:ef:44:
#         3a:f5:28:65:ef:f5:9e:71:cc:21:de:e8:d6:51:1c:10:fb:40:
#         fc:49:e5:5c:84:17:af:aa:19:5e:a2:ed:4e:1e:a2:fb:ca:47:
#         1c:1c:64:3e:14:91:a2:39:19:34:88:7f:91:cb:3b:9d:19:70:
#         ea:28:fb:fc:50:0f:cc:bd:3d:5e:02:03:6b:79:35:44:41:76:
#         ee:b6:2d:74:84:e1:82:71:d3:25:b0:d3:c3:99:44:ab:3f:e2:
#         0c:a5:ee:bd:a6:fc:a4:11:00:ee:9c:bd:37:d1:d6:62:c4:30:
#         14:2d:10:0a:97:8a:88:f5:25:3c:96:be:46:40:1a:8a:c0:85:
#         76:c4:a0:49:e0:49:a5:e7:19:b5:09:f3:cc:4d:ed:16:5e:9a:
#         d4:d3:c8:69:d0:d8:8a:37:85:6b:4e:e4:aa:07:92:5c:d4:71:
#         71:81:48:d3:78:f5:56:60:fe:cc:02:d4:00:93:1f:4c:92:40:
#         97:be:72:53:79:2e:26:52:be:a6:a3:74:b1:94:d9:14:63:3a:
#         6e:5b:d1:3c:92:27:52:90:32:5a:92:d2:0f:4e:5b:0b:06:3a:
#         62:e5:d6:27:0c:01:f6:25:02:b8:8b:10:29:42:a9:f7:69:ca:
#         dc:eb:0a:92:4b:28:31:86

[p11-kit-object-v1]
label: "E-Tugra Global Root CA ECC v3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEjpgpv8cQHifbqwPMKCzYXkgZECnMy1mB
zIy4kheJgyqS9sOkHUxi1Z/WoEbcHLx2weNH0FsT2uels2ZI5yGaSk+GCn1s6k0y
gAqyegmbaUuYgeIu7AJwlh/99UbOytyC
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "E-Tugra Global Root CA ECC v3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            26:46:19:77:31:e1:4f:6f:28:36:de:39:51:86:e6:d4:97:88:22:c1
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=TR, L=Ankara, O=E-Tugra EBG A.S., OU=E-Tugra Trust Center, CN=E-Tugra Global Root CA ECC v3
#        Validity
#            Not Before: Mar 18 09:46:58 2020 GMT
#            Not After : Mar 12 09:46:58 2045 GMT
#        Subject: C=TR, L=Ankara, O=E-Tugra EBG A.S., OU=E-Tugra Trust Center, CN=E-Tugra Global Root CA ECC v3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:8e:98:29:bf:c7:10:1e:27:db:ab:03:cc:28:2c:
#                    d8:5e:48:19:10:29:cc:cb:59:81:cc:8c:b8:92:17:
#                    89:83:2a:92:f6:c3:a4:1d:4c:62:d5:9f:d6:a0:46:
#                    dc:1c:bc:76:c1:e3:47:d0:5b:13:da:e7:a5:b3:66:
#                    48:e7:21:9a:4a:4f:86:0a:7d:6c:ea:4d:32:80:0a:
#                    b2:7a:09:9b:69:4b:98:81:e2:2e:ec:02:70:96:1f:
#                    fd:f5:46:ce:ca:dc:82
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:FF:82:31:72:3E:F9:C4:66:6C:AD:38:9E:D1:B0:51:88:A5:90:CC:F5
#
#            X509v3 Subject Key Identifier: 
#                FF:82:31:72:3E:F9:C4:66:6C:AD:38:9E:D1:B0:51:88:A5:90:CC:F5
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:e6:05:58:69:61:e5:2d:ca:0d:cb:f1:19:08:
#         bd:d6:fd:51:92:1a:7e:63:54:04:90:91:9a:35:91:39:99:fa:
#         07:a9:66:93:ba:c8:68:d4:8a:3f:fa:ed:6e:16:02:27:b7:02:
#         31:00:dd:5a:17:2b:76:1d:65:42:96:a6:ac:5d:8a:79:56:d8:
#         8a:1b:df:9a:de:5f:c7:50:8f:b1:5b:71:0c:26:df:6a:40:00:
#         ec:33:91:21:71:be:68:e4:23:a4:d9:ad:a1:37

[p11-kit-object-v1]
label: "E-Tugra Global Root CA RSA v3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "E-Tugra Global Root CA RSA v3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0d:4d:c5:cd:16:22:95:96:08:7e:b8:0b:7f:15:06:34:fb:79:10:34
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TR, L=Ankara, O=E-Tugra EBG A.S., OU=E-Tugra Trust Center, CN=E-Tugra Global Root CA RSA v3
#        Validity
#            Not Before: Mar 18 09:07:17 2020 GMT
#            Not After : Mar 12 09:07:17 2045 GMT
#        Subject: C=TR, L=Ankara, O=E-Tugra EBG A.S., OU=E-Tugra Trust Center, CN=E-Tugra Global Root CA RSA v3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a2:66:f0:89:b7:72:7b:ee:09:c9:63:d2:d3:43:
#                    dd:5e:c3:a6:84:38:4a:f1:8d:81:bb:14:bd:47:e8:
#                    40:17:f3:3d:c3:78:45:72:a6:2e:90:de:9a:3a:d4:
#                    20:71:ca:bc:9f:1d:4b:97:0a:c7:31:ba:3e:d7:fe:
#                    25:a9:2a:8e:36:f4:d1:2f:c7:b7:a9:5d:33:dc:30:
#                    70:f8:40:6c:4b:b2:a6:31:61:d1:34:3c:3d:31:7a:
#                    c7:af:c4:a7:a7:84:e1:97:a4:e8:4b:f6:17:7c:ee:
#                    3c:07:ed:e2:8a:57:dc:b6:fb:f8:43:25:50:ea:27:
#                    81:a8:86:bc:8f:52:4a:96:3a:60:1a:96:bb:fd:73:
#                    f4:85:fd:83:fd:7f:84:6d:34:6c:7f:6a:b7:4b:01:
#                    03:bf:ad:69:b7:d7:32:d9:f5:57:6a:e9:86:82:3e:
#                    a5:66:31:b3:16:3d:c2:f3:26:60:32:d3:52:1e:b0:
#                    6c:a4:37:3e:f4:f5:af:eb:e1:df:80:06:cf:2a:41:
#                    e7:66:09:e1:4b:97:e7:77:bd:21:6d:29:b6:67:c3:
#                    2d:7e:ed:d6:79:65:d1:cf:3a:b6:d1:b1:5e:56:61:
#                    50:7a:5a:ce:4e:50:31:80:03:98:47:e7:e4:18:7c:
#                    44:5a:c6:a4:b3:3b:c6:c6:c3:3a:f0:6c:c3:8b:c8:
#                    a4:91:05:f3:f5:d9:b6:aa:06:a1:b7:ab:e4:b1:ea:
#                    21:14:5c:83:a4:fc:ff:b6:50:d3:8c:12:26:99:76:
#                    70:e9:c0:0f:a6:74:fc:bb:d0:1b:78:ce:72:92:e2:
#                    28:9c:bc:e6:e9:09:d8:3a:d3:89:e6:be:2e:77:df:
#                    01:0a:6f:96:f6:e5:8d:3c:4d:52:76:1a:56:e1:73:
#                    7e:17:ac:3d:ad:6c:a3:52:12:18:70:e6:80:4e:33:
#                    f2:7e:26:32:ac:05:8d:38:a4:e6:76:3c:9f:10:69:
#                    0e:6d:9d:d2:c1:79:20:6b:5b:cf:33:8d:d1:94:76:
#                    35:e7:5d:55:c7:b7:ac:28:ab:46:cc:e7:3b:21:b5:
#                    0a:0a:e4:4a:59:dc:81:35:4b:44:95:12:0a:67:a5:
#                    a1:ff:5b:00:07:d2:c0:cc:f9:3f:fc:9f:33:f2:00:
#                    f8:8c:6c:87:9d:06:2d:f1:ef:e3:e6:06:fa:c5:66:
#                    13:5b:fc:50:07:9e:71:86:b2:da:6f:74:30:cf:93:
#                    53:e8:dc:22:d6:de:20:1f:61:8d:a3:2e:a3:78:32:
#                    90:6c:dc:ac:32:b5:05:e4:f5:3c:33:0d:d6:e0:87:
#                    77:17:4c:9d:b0:d8:09:a8:0d:57:f7:44:85:f0:c8:
#                    04:be:5c:5d:5a:e3:17:8e:54:63:69:7f:49:74:64:
#                    05:8c:a3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:B2:B4:AE:E6:2D:F7:26:D5:AA:75:2D:76:4B:C0:1B:53:21:D0:48:EF
#
#            X509v3 Subject Key Identifier: 
#                B2:B4:AE:E6:2D:F7:26:D5:AA:75:2D:76:4B:C0:1B:53:21:D0:48:EF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         89:a8:72:7f:8c:eb:ce:2e:18:c4:10:80:2d:10:0c:ff:fb:14:
#         cd:04:e0:14:3c:4e:9a:fb:9f:29:bf:22:9e:57:b9:82:73:12:
#         63:26:b5:cc:90:e9:d2:2a:29:ee:9c:2d:cc:2c:99:be:45:27:
#         e4:b1:71:ed:e4:38:95:31:41:f2:7d:7a:63:78:df:ca:36:16:
#         2f:82:88:9f:bc:11:47:4f:76:4d:c8:2d:8e:eb:df:2d:7c:4e:
#         3b:da:ae:f6:e3:da:5d:14:a6:ae:e8:85:44:9d:06:6e:8e:fb:
#         ef:7a:4a:6a:2d:2b:28:18:fe:bf:90:2c:75:16:9f:0f:ea:96:
#         7d:05:ee:9b:13:a5:44:6c:f8:03:d0:dd:23:e1:fd:03:12:12:
#         08:f4:18:34:b3:e0:37:0b:77:11:01:48:bf:61:b4:b5:f8:19:
#         d9:cb:4d:ea:a3:8c:ef:fd:f0:06:b5:6d:92:f4:4a:61:50:84:
#         ed:ec:49:d3:e4:be:68:e6:2e:e3:31:0b:54:0b:1a:92:d6:82:
#         d8:b6:a2:65:3c:66:04:f9:55:da:6c:fb:db:b5:14:66:4d:94:
#         83:3b:cd:1e:a6:2b:b2:fe:77:40:86:ab:e7:df:0a:c9:fd:f6:
#         dd:87:56:18:d8:b0:2c:55:60:96:fa:08:7e:52:90:f5:4b:a6:
#         2e:87:7c:cb:20:db:06:3e:a0:5d:03:77:7d:a2:3c:13:1b:29:
#         a2:13:55:a0:3d:14:22:af:6f:b8:d0:9a:1b:72:dd:05:01:8d:
#         86:60:bf:a4:67:ee:b5:a5:0d:d1:7f:e6:1a:2b:62:66:c3:07:
#         ba:e7:a0:48:1c:38:c3:e9:45:fb:a7:7f:fc:ed:02:68:1a:ca:
#         77:12:77:a6:00:55:28:14:ec:d6:c7:12:a2:1b:65:42:e9:91:
#         e8:cb:3e:87:89:54:5d:d9:af:9d:97:9c:69:e7:0a:ff:0f:5a:
#         78:8b:63:2a:4c:7d:47:94:3f:de:4b:e9:53:d0:30:f1:c5:f6:
#         9e:49:df:3b:a0:91:a3:a3:fe:cd:58:cc:ea:df:af:6f:28:3b:
#         a0:69:9b:8f:ec:ac:ae:2b:54:9d:9b:04:b1:47:20:af:96:12:
#         3e:63:94:1d:04:e7:2e:bb:86:c7:0c:9a:88:bf:76:47:ef:f7:
#         b0:0b:97:66:d2:44:cf:60:52:07:e1:d5:2c:4a:3a:27:61:77:
#         ca:d7:8f:e7:87:0e:30:ff:0c:bb:04:e2:61:c3:a2:c8:97:61:
#         8e:b4:30:6a:3c:6d:c2:07:5f:4a:73:2f:3f:f9:16:8a:01:66:
#         ef:ba:91:ca:52:57:7b:ae:d4:e6:0f:dd:0b:7a:7f:8b:9e:26:
#         20:cf:3b:ef:81:71:83:59

[p11-kit-object-v1]
label: "EC-ACC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsyLHT+KXQpWIR4NA9h0X
84NzJB5R85iKw5K4/0CQBXCHYMkAqbWUZRkiFRfCQ2xmRJoNBD45b6VLeqpjt4pE
ndljkYRm4CgPukLjbo73FCeTae6RDqNfDrHrZqJyTxIThmV6PttPB/SnCWDaOkKZ
x7J/sxaVHMf5NLWUhdWZXqBIoH7nF2W4onW4HvPlQn2v7fOKSGRdghST2MDk/7NQ
cvJ29rNdQlB50JQ+awwAvthrDk4q7D7SzIKiGGUzE3eeml0aE9jD2z3Il3rucO2n
5nzbcc8tlGLfbdb1OL4/pYUKGbio2Al1QnDE6u/LDsg0qBIimAy4E5S2S+zw0JDn
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "EC-ACC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#             (Negative)11:d4:c2:14:2b:de:21:eb:57:9d:53:fb:0c:22:3b:ff
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ES, O=Agencia Catalana de Certificacio (NIF Q-0801176-I), OU=Serveis Publics de Certificacio, OU=Vegeu https://www.catcert.net/verarrel (c)03, OU=Jerarquia Entitats de Certificacio Catalanes, CN=EC-ACC
#        Validity
#            Not Before: Jan  7 23:00:00 2003 GMT
#            Not After : Jan  7 22:59:59 2031 GMT
#        Subject: C=ES, O=Agencia Catalana de Certificacio (NIF Q-0801176-I), OU=Serveis Publics de Certificacio, OU=Vegeu https://www.catcert.net/verarrel (c)03, OU=Jerarquia Entitats de Certificacio Catalanes, CN=EC-ACC
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:22:c7:4f:e2:97:42:95:88:47:83:40:f6:1d:
#                    17:f3:83:73:24:1e:51:f3:98:8a:c3:92:b8:ff:40:
#                    90:05:70:87:60:c9:00:a9:b5:94:65:19:22:15:17:
#                    c2:43:6c:66:44:9a:0d:04:3e:39:6f:a5:4b:7a:aa:
#                    63:b7:8a:44:9d:d9:63:91:84:66:e0:28:0f:ba:42:
#                    e3:6e:8e:f7:14:27:93:69:ee:91:0e:a3:5f:0e:b1:
#                    eb:66:a2:72:4f:12:13:86:65:7a:3e:db:4f:07:f4:
#                    a7:09:60:da:3a:42:99:c7:b2:7f:b3:16:95:1c:c7:
#                    f9:34:b5:94:85:d5:99:5e:a0:48:a0:7e:e7:17:65:
#                    b8:a2:75:b8:1e:f3:e5:42:7d:af:ed:f3:8a:48:64:
#                    5d:82:14:93:d8:c0:e4:ff:b3:50:72:f2:76:f6:b3:
#                    5d:42:50:79:d0:94:3e:6b:0c:00:be:d8:6b:0e:4e:
#                    2a:ec:3e:d2:cc:82:a2:18:65:33:13:77:9e:9a:5d:
#                    1a:13:d8:c3:db:3d:c8:97:7a:ee:70:ed:a7:e6:7c:
#                    db:71:cf:2d:94:62:df:6d:d6:f5:38:be:3f:a5:85:
#                    0a:19:b8:a8:d8:09:75:42:70:c4:ea:ef:cb:0e:c8:
#                    34:a8:12:22:98:0c:b8:13:94:b6:4b:ec:f0:d0:90:
#                    e7:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:ec_acc@catcert.net
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A0:C3:8B:44:AA:37:A5:45:BF:97:80:5A:D1:F1:78:A2:9B:E9:5D:8D
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.15096.1.3.1.10
#                  CPS: https://www.catcert.net/verarrel
#                  User Notice:
#                    Explicit Text: Vegeu https://www.catcert.net/verarrel 
#
#    Signature Algorithm: sha1WithRSAEncryption
#         a0:48:5b:82:01:f6:4d:48:b8:39:55:35:9c:80:7a:53:99:d5:
#         5a:ff:b1:71:3b:cc:39:09:94:5e:d6:da:ef:be:01:5b:5d:d3:
#         1e:d8:fd:7d:4f:cd:a0:41:e0:34:93:bf:cb:e2:86:9c:37:92:
#         90:56:1c:dc:eb:29:05:e5:c4:9e:c7:35:df:8a:0c:cd:c5:21:
#         43:e9:aa:88:e5:35:c0:19:42:63:5a:02:5e:a4:48:18:3a:85:
#         6f:dc:9d:bc:3f:9d:9c:c1:87:b8:7a:61:08:e9:77:0b:7f:70:
#         ab:7a:dd:d9:97:2c:64:1e:85:bf:bc:74:96:a1:c3:7a:12:ec:
#         0c:1a:6e:83:0c:3c:e8:72:46:9f:fb:48:d5:5e:97:e6:b1:a1:
#         f8:e4:ef:46:25:94:9c:89:db:69:38:be:ec:5c:0e:56:c7:65:
#         51:e5:50:88:88:bf:42:d5:2b:3d:e5:f9:ba:9e:2e:b3:ca:f4:
#         73:92:02:0b:be:4c:66:eb:20:fe:b9:cb:b5:99:7f:e6:b6:13:
#         fa:ca:4b:4d:d9:ee:53:46:06:3b:c6:4e:ad:93:5a:81:7e:6c:
#         2a:4b:6a:05:45:8c:f2:21:a4:31:90:87:6c:65:9c:9d:a5:60:
#         95:3a:52:7f:f5:d1:ab:08:6e:f3:ee:5b:f9:88:3d:7e:b8:6f:
#         6e:03:e4:42

[p11-kit-object-v1]
label: "ECRaizEstado"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ECRaizEstado"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            42:ea:5b:0a:51:11:26:7c:d8:27:74:b7:df:7f:71
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=PT, O=SCEE, CN=ECRaizEstado
#        Validity
#            Not Before: Jun 23 13:41:27 2006 GMT
#            Not After : Jun 23 13:41:27 2030 GMT
#        Subject: C=PT, O=SCEE, CN=ECRaizEstado
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:db:ef:a2:43:6e:c8:a9:fd:6e:d7:df:ac:a2:92:
#                    84:a1:c8:59:a0:0c:9a:53:fe:ef:ae:cc:19:0d:72:
#                    8a:a4:c2:33:23:ef:e7:06:72:ea:6d:4b:3a:41:52:
#                    0f:c9:48:0e:2d:e7:ba:64:ee:a2:3a:4c:63:5c:66:
#                    29:8b:df:a9:88:c5:bd:e8:f1:f7:8e:4b:fc:01:3c:
#                    44:12:39:2a:70:a2:c0:db:c5:a2:df:5f:c7:4b:c6:
#                    a8:dc:3d:61:7c:4a:58:c1:44:32:93:de:70:99:a1:
#                    23:26:56:3f:a3:e1:ea:5f:30:46:d8:78:f5:30:a3:
#                    96:09:89:b0:3d:f1:86:93:05:b6:12:6a:18:8d:f0:
#                    a5:64:3b:2b:87:64:5e:3d:17:8e:0b:6e:e6:98:cc:
#                    97:38:38:20:8c:70:5a:69:2b:bd:65:8d:cd:37:59:
#                    5c:6c:d1:72:74:59:06:4e:c8:b7:01:d7:77:bf:f0:
#                    48:86:a8:b3:1a:5d:41:d4:37:17:11:10:5f:4a:6e:
#                    8d:75:c5:03:40:7d:21:ae:00:f0:db:fc:9f:6c:3a:
#                    66:a4:df:f7:ca:df:80:66:5a:d9:d8:7f:14:a2:26:
#                    19:f4:ae:0b:21:e0:ca:3e:05:dd:16:d8:7e:59:da:
#                    a1:b0:69:c3:9d:34:13:fa:65:49:39:87:ee:76:2f:
#                    8d:bd:3c:27:19:03:4e:ad:0e:0b:2b:2c:c6:2e:71:
#                    13:35:29:57:e9:70:dc:1b:51:ea:cd:97:f1:95:8d:
#                    b2:86:fa:26:06:2f:80:1a:95:f1:98:3b:ee:f6:e5:
#                    86:a5:ce:1b:01:e5:f4:e9:33:ca:0f:55:44:5f:68:
#                    8a:2c:c7:5b:66:28:dd:96:4b:83:9d:5e:1d:7e:18:
#                    d5:fe:b2:60:fb:9a:51:68:c3:96:8c:1f:68:4b:50:
#                    52:0b:36:e6:31:27:e4:d7:29:0c:1b:da:1b:2f:e1:
#                    04:53:b8:d4:79:49:b0:3b:81:5e:08:88:22:77:e2:
#                    29:c0:ae:72:aa:ab:b4:72:52:bd:6c:bb:f5:ba:78:
#                    d9:9c:b8:20:6f:30:8d:4a:9d:32:f9:f4:01:e6:62:
#                    79:98:42:40:05:7a:6f:1c:2a:3f:b5:fb:df:cd:18:
#                    40:8e:e5:10:c4:39:5b:56:f1:3c:57:05:ab:d2:39:
#                    4d:3f:f8:8b:23:c7:6b:b9:40:b1:e2:fe:ff:b3:1c:
#                    0a:69:1f:9b:8c:0f:b4:1f:e0:0a:de:48:fd:8d:5f:
#                    8f:99:f5:01:76:05:36:5d:8e:dc:33:8e:51:6e:11:
#                    e2:41:fd:cc:b7:8d:2a:5f:3e:92:e5:f2:b1:e0:a4:
#                    23:e2:a2:b7:c6:8d:18:9b:29:4a:d1:46:7f:f4:64:
#                    20:18:dd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                71:7F:35:DE:F5:77:71:6D:1D:12:9C:E1:90:A4:BA:F0:A9:83:8F:80
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://www.ecee.gov.pt/dpc
#
#    Signature Algorithm: sha1WithRSAEncryption
#         8c:ad:9c:72:a5:b5:67:76:67:38:87:e9:3a:8c:fe:9d:59:35:
#         be:90:f1:03:00:a0:58:d8:98:d1:bf:fc:fc:f3:50:dc:b4:65:
#         d5:da:ba:f0:8c:2e:7c:0d:e6:09:91:5f:4d:a3:f6:5d:78:9c:
#         58:5d:6a:70:94:a3:af:db:2f:00:c9:03:40:6b:df:51:03:16:
#         19:8c:2b:bc:99:36:f6:c0:ad:92:18:13:8c:a7:ed:1d:d2:df:
#         03:90:05:ec:b0:93:98:9b:f7:4d:5a:13:f8:e7:9b:f7:36:76:
#         de:7c:26:f8:11:38:4f:49:4e:b3:73:1f:5f:27:5b:e1:9e:32:
#         1e:f6:c0:98:1b:d9:20:2c:5c:96:8d:86:c9:0b:45:d7:92:ad:
#         8a:bd:ea:57:a2:a3:56:b6:20:3c:ec:b2:c7:39:7e:b0:80:fe:
#         bd:51:2b:2a:b4:c3:72:69:c3:f9:47:2e:6e:ff:9c:87:ed:dc:
#         75:cb:10:88:e0:b4:ce:2e:0e:53:1d:0b:e8:6e:1e:42:4c:d0:
#         be:39:78:75:c9:14:de:27:91:73:aa:ec:6a:80:f0:f0:17:96:
#         62:4f:be:04:cb:e2:a7:e5:5d:0f:93:45:cb:59:48:26:13:de:
#         dd:b1:f5:0a:da:16:b1:a8:1d:8f:7e:58:1b:b7:d5:09:de:88:
#         6b:ce:84:3e:a8:be:52:62:ca:d2:a1:a1:c7:cb:3c:16:e0:76:
#         56:30:3f:e6:0f:6b:06:77:fe:64:9d:5a:6a:73:7c:ee:de:21:
#         e9:9a:49:97:37:b6:84:7f:a2:91:3e:45:fb:d7:5a:06:c5:87:
#         35:dc:ba:48:4c:86:01:08:47:36:b6:38:50:95:11:99:73:d1:
#         37:49:0a:fa:42:4f:2f:10:54:d3:41:90:fa:c8:dc:bb:11:dc:
#         0d:cc:7d:7c:9b:dc:0e:91:71:86:4d:b8:f2:15:9a:2b:38:17:
#         11:a1:f2:9e:a8:6c:9c:e3:ce:ae:e2:e6:4b:8b:f2:8a:06:3b:
#         07:77:02:11:ee:83:ea:9d:66:86:ca:f0:62:a9:d5:57:83:a4:
#         15:f1:45:14:fe:1a:75:7f:a5:0f:dc:52:74:59:75:0a:f8:fb:
#         55:41:a9:5c:8d:31:44:dd:cd:94:4e:33:d1:1b:41:aa:db:d7:
#         a1:3c:f0:c5:48:6d:45:41:35:b5:79:83:e6:f9:4d:f1:56:38:
#         d7:bf:40:22:fb:20:80:e3:1c:c2:59:46:07:63:02:61:00:3b:
#         9b:50:bb:43:c3:b0:e9:0a:9a:b8:76:f4:47:61:55:64:70:4f:
#         37:d9:9c:11:a3:13:b2:e1:dd:40:42:bb:98:d7:a0:06:8b:e6:
#         68:57:4b:0e:38:68:7f:ba

[p11-kit-object-v1]
label: "EE Certification Centre Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyCDA7ODFS6sHeJXzRO77
Cwz/dI5hu7Fi6iPYq6FlMnrrjhdPltgKe5GiY2zHjEwueb+pBfxpXJWNYvm5cO3D
UX3Qk+Zs6zBL4bx9v1Kbzm57ZfI4scCiMu9ismjgYVPBNpX/7JS6Nq6cHKcyD+V8
tMZvdP17GOisV+0GIEsyMFhb/c2o5qH8cLyOknPbl6d8Ia49wfVIh2wnvZ8ldIFV
sPd19j2kZGvWT+fOQK0P3TLTvIoSU5jJifsQHU1+zX4fVg0hcIX2IIMf9rofBI/q
d4g1xP/qTqGLTT9jG0TDRNQldsq3jdceSmZkzVzFnIPhwgiImuxOo/E+HCzZbB2h
SwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "EE Certification Centre Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:80:f9:a0:73:ed:3f:00:4c:ca:89:d8:e3:71:e6:4a
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=EE, O=AS Sertifitseerimiskeskus, CN=EE Certification Centre Root CA/emailAddress=pki@sk.ee
#        Validity
#            Not Before: Oct 30 10:10:30 2010 GMT
#            Not After : Dec 17 23:59:59 2030 GMT
#        Subject: C=EE, O=AS Sertifitseerimiskeskus, CN=EE Certification Centre Root CA/emailAddress=pki@sk.ee
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c8:20:c0:ec:e0:c5:4b:ab:07:78:95:f3:44:ee:
#                    fb:0b:0c:ff:74:8e:61:bb:b1:62:ea:23:d8:ab:a1:
#                    65:32:7a:eb:8e:17:4f:96:d8:0a:7b:91:a2:63:6c:
#                    c7:8c:4c:2e:79:bf:a9:05:fc:69:5c:95:8d:62:f9:
#                    b9:70:ed:c3:51:7d:d0:93:e6:6c:eb:30:4b:e1:bc:
#                    7d:bf:52:9b:ce:6e:7b:65:f2:38:b1:c0:a2:32:ef:
#                    62:b2:68:e0:61:53:c1:36:95:ff:ec:94:ba:36:ae:
#                    9c:1c:a7:32:0f:e5:7c:b4:c6:6f:74:fd:7b:18:e8:
#                    ac:57:ed:06:20:4b:32:30:58:5b:fd:cd:a8:e6:a1:
#                    fc:70:bc:8e:92:73:db:97:a7:7c:21:ae:3d:c1:f5:
#                    48:87:6c:27:bd:9f:25:74:81:55:b0:f7:75:f6:3d:
#                    a4:64:6b:d6:4f:e7:ce:40:ad:0f:dd:32:d3:bc:8a:
#                    12:53:98:c9:89:fb:10:1d:4d:7e:cd:7e:1f:56:0d:
#                    21:70:85:f6:20:83:1f:f6:ba:1f:04:8f:ea:77:88:
#                    35:c4:ff:ea:4e:a1:8b:4d:3f:63:1b:44:c3:44:d4:
#                    25:76:ca:b7:8d:d7:1e:4a:66:64:cd:5c:c5:9c:83:
#                    e1:c2:08:88:9a:ec:4e:a3:f1:3e:1c:2c:d9:6c:1d:
#                    a1:4b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                12:F2:5A:3E:EA:56:1C:BF:CD:06:AC:F1:F1:25:C9:A9:4B:D4:14:99
#            X509v3 Extended Key Usage: 
#                TLS Web Client Authentication, TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
#    Signature Algorithm: sha1WithRSAEncryption
#         7b:f6:e4:c0:0d:aa:19:47:b7:4d:57:a3:fe:ad:bb:b1:6a:d5:
#         0f:9e:db:e4:63:c5:8e:a1:50:56:93:96:b8:38:c0:24:22:66:
#         bc:53:14:61:95:bf:d0:c7:2a:96:39:3f:7d:28:b3:10:40:21:
#         6a:c4:af:b0:52:77:18:e1:96:d8:56:5d:e3:dd:36:5e:1d:a7:
#         50:54:a0:c5:2a:e4:aa:8c:94:8a:4f:9d:35:ff:76:a4:06:13:
#         91:a2:a2:7d:00:44:3f:55:d3:82:3c:1a:d5:5b:bc:56:4c:22:
#         2e:46:43:8a:24:40:2d:f3:12:b8:3b:70:1a:a4:96:b9:1a:af:
#         87:41:1a:6a:18:0d:06:4f:c7:3e:6e:b9:29:4d:0d:49:89:11:
#         87:32:5b:e6:4b:04:c8:e4:5c:e6:74:73:94:5d:16:98:13:95:
#         fe:fb:db:b1:44:e5:3a:70:ac:37:6b:e6:b3:33:72:28:c9:b3:
#         57:a0:f6:02:16:88:06:0b:b6:a6:4b:20:28:d4:de:3d:8b:ad:
#         37:05:53:74:fe:6e:cc:bc:43:17:71:5e:f9:c5:cc:1a:a9:61:
#         ee:f7:76:0c:f3:72:f4:72:ad:cf:72:02:36:07:47:cf:ef:19:
#         50:89:60:cc:e9:24:95:0f:c2:cb:1d:f2:6f:76:90:c7:cc:75:
#         c1:96:c5:9d

[p11-kit-object-v1]
label: "Entrust.net Premium 2048 Secure Server CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArU1LqRKGsuqjIAcVFmQq
K0vRvwtKTY7tgHalZ7d4QMBzQshowNtTK91euHaYNZOLGp18EzoOH1u3Hs/lJBQe
sYGpjX24zGtLA/ECDNyrpUAkAH90lKGdCCmziAv1h3edVc3kw37XamSrhRSGlVuX
MlBvPci6Zgzj/L24ScF2iUkZ/cCovYmjZy/Gn7xxGWC4LeksyZB2ZnuU4q941mVT
XTzWnLLPKQP5L6RQstRIzgUyVYr9smRMDuSYB3Xbf9+5CFVghTAp+XtIpGmG4zU/
HoZdenoVve8AjhUiVBcAkCaTvA5JaJG/+EfTnZVCwQ5N328mz8MYIWJmQ3DW1cAH
4QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust.net Premium 2048 Secure Server CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 946069240 (0x3863def8)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O=Entrust.net, OU=www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), OU=(c) 1999 Entrust.net Limited, CN=Entrust.net Certification Authority (2048)
#        Validity
#            Not Before: Dec 24 17:50:51 1999 GMT
#            Not After : Jul 24 14:15:12 2029 GMT
#        Subject: O=Entrust.net, OU=www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), OU=(c) 1999 Entrust.net Limited, CN=Entrust.net Certification Authority (2048)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ad:4d:4b:a9:12:86:b2:ea:a3:20:07:15:16:64:
#                    2a:2b:4b:d1:bf:0b:4a:4d:8e:ed:80:76:a5:67:b7:
#                    78:40:c0:73:42:c8:68:c0:db:53:2b:dd:5e:b8:76:
#                    98:35:93:8b:1a:9d:7c:13:3a:0e:1f:5b:b7:1e:cf:
#                    e5:24:14:1e:b1:81:a9:8d:7d:b8:cc:6b:4b:03:f1:
#                    02:0c:dc:ab:a5:40:24:00:7f:74:94:a1:9d:08:29:
#                    b3:88:0b:f5:87:77:9d:55:cd:e4:c3:7e:d7:6a:64:
#                    ab:85:14:86:95:5b:97:32:50:6f:3d:c8:ba:66:0c:
#                    e3:fc:bd:b8:49:c1:76:89:49:19:fd:c0:a8:bd:89:
#                    a3:67:2f:c6:9f:bc:71:19:60:b8:2d:e9:2c:c9:90:
#                    76:66:7b:94:e2:af:78:d6:65:53:5d:3c:d6:9c:b2:
#                    cf:29:03:f9:2f:a4:50:b2:d4:48:ce:05:32:55:8a:
#                    fd:b2:64:4c:0e:e4:98:07:75:db:7f:df:b9:08:55:
#                    60:85:30:29:f9:7b:48:a4:69:86:e3:35:3f:1e:86:
#                    5d:7a:7a:15:bd:ef:00:8e:15:22:54:17:00:90:26:
#                    93:bc:0e:49:68:91:bf:f8:47:d3:9d:95:42:c1:0e:
#                    4d:df:6f:26:cf:c3:18:21:62:66:43:70:d6:d5:c0:
#                    07:e1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                55:E4:81:D1:11:80:BE:D8:89:B9:08:A3:31:F9:A1:24:09:16:B9:70
#    Signature Algorithm: sha1WithRSAEncryption
#         3b:9b:8f:56:9b:30:e7:53:99:7c:7a:79:a7:4d:97:d7:19:95:
#         90:fb:06:1f:ca:33:7c:46:63:8f:96:66:24:fa:40:1b:21:27:
#         ca:e6:72:73:f2:4f:fe:31:99:fd:c8:0c:4c:68:53:c6:80:82:
#         13:98:fa:b6:ad:da:5d:3d:f1:ce:6e:f6:15:11:94:82:0c:ee:
#         3f:95:af:11:ab:0f:d7:2f:de:1f:03:8f:57:2c:1e:c9:bb:9a:
#         1a:44:95:eb:18:4f:a6:1f:cd:7d:57:10:2f:9b:04:09:5a:84:
#         b5:6e:d8:1d:3a:e1:d6:9e:d1:6c:79:5e:79:1c:14:c5:e3:d0:
#         4c:93:3b:65:3c:ed:df:3d:be:a6:e5:95:1a:c3:b5:19:c3:bd:
#         5e:5b:bb:ff:23:ef:68:19:cb:12:93:27:5c:03:2d:6f:30:d0:
#         1e:b6:1a:ac:de:5a:f7:d1:aa:a8:27:a6:fe:79:81:c4:79:99:
#         33:57:ba:12:b0:a9:e0:42:6c:93:ca:56:de:fe:6d:84:0b:08:
#         8b:7e:8d:ea:d7:98:21:c6:f3:e7:3c:79:2f:5e:9c:d1:4c:15:
#         8d:e1:ec:22:37:cc:9a:43:0b:97:dc:80:90:8d:b3:67:9b:6f:
#         48:08:15:56:cf:bf:f1:2b:7c:5e:9a:76:e9:59:90:c5:7c:83:
#         35:11:65:51

[p11-kit-object-v1]
label: "Entrust Code Signing Root Certification Authority - CSBR1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Code Signing Root Certification Authority - CSBR1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7f:f1:a8:f9:f4:3a:e8:87:6e:2d:c6:ff:5e:43:3d:b2:ee:30:a6:43
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=US, O=Entrust, Inc., CN=Entrust Code Signing Root Certification Authority - CSBR1
#        Validity
#            Not Before: May  7 13:26:36 2021 GMT
#            Not After : Dec 30 13:26:36 2040 GMT
#        Subject: C=US, O=Entrust, Inc., CN=Entrust Code Signing Root Certification Authority - CSBR1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a7:81:8f:f7:14:45:b6:62:43:f2:d8:ae:d3:25:
#                    5e:48:4f:51:bf:c5:7d:9f:50:1c:35:d1:d6:7e:61:
#                    2a:94:19:6d:27:46:a4:a6:1a:5d:f7:54:51:6a:80:
#                    22:c6:a8:66:75:4d:54:83:c9:5e:68:1b:ab:f6:5b:
#                    64:b0:ad:ad:20:bd:54:ef:46:6b:6d:02:e7:45:ae:
#                    75:f6:8e:8a:b9:32:2e:8b:b8:77:1c:52:4d:79:88:
#                    5f:a5:3a:18:c9:50:2c:97:27:2d:bf:da:00:7d:63:
#                    7f:ef:32:ec:46:87:63:db:9a:9f:c3:5a:21:36:7b:
#                    f9:9b:d5:ca:a0:6e:72:2c:fc:e1:f1:9e:70:4d:08:
#                    56:15:6f:90:ab:fb:48:ba:b9:d7:c1:82:78:85:65:
#                    2e:7f:b5:c9:c0:e2:14:b7:37:11:41:06:e2:8a:e0:
#                    a8:f6:e5:7e:b6:78:05:01:c3:60:ed:4f:07:41:2e:
#                    0a:13:49:e3:90:9b:7f:dd:bd:fa:ac:bf:64:51:d1:
#                    5c:9b:b4:f5:5c:e7:5c:ff:3b:9b:a5:a0:1a:d7:7d:
#                    09:b2:c2:b7:ff:6e:1c:bc:c8:7d:e6:e9:2b:fc:72:
#                    b3:14:e9:4a:55:12:84:9c:44:25:75:1d:f6:2a:f0:
#                    4f:a5:20:3d:68:25:eb:61:97:7c:0f:e5:b6:3d:f3:
#                    ae:c3:c1:11:bc:1b:8e:cc:e0:47:30:5e:42:00:86:
#                    71:e3:58:ac:06:ca:65:1f:7b:94:a6:4b:57:67:0c:
#                    7e:5e:ad:78:67:5b:55:e3:5e:eb:c7:d8:ec:4c:6e:
#                    86:cb:f3:dc:f8:9f:87:aa:72:58:12:0f:7d:a6:f8:
#                    f8:42:39:3b:3c:2c:e4:32:4d:49:8c:e0:e1:00:c2:
#                    38:a0:9c:fa:84:3e:41:dc:6e:56:ae:c6:1a:5b:f4:
#                    67:68:05:01:cd:1b:bf:ae:87:bc:9d:53:f6:2e:e8:
#                    b6:6b:e4:99:de:c5:4f:87:58:a8:d2:65:1e:c8:1f:
#                    d5:72:6e:ee:59:1c:57:3b:09:72:9d:d7:ca:b7:90:
#                    c6:cd:7b:45:92:91:42:03:4c:7d:3f:ca:f2:aa:b8:
#                    c2:0e:86:f3:10:9f:46:2e:a4:66:86:68:5a:68:18:
#                    70:29:38:11:80:60:6b:8a:43:a3:73:6c:e3:b3:6b:
#                    37:ff:e6:9d:67:01:92:86:df:2f:48:d1:fb:50:60:
#                    d5:5c:fe:21:d3:01:42:63:fe:ef:70:b4:17:c0:8f:
#                    a8:ee:d3:c1:4b:5f:12:ea:fd:fd:2e:0e:87:44:60:
#                    e3:a9:f4:c2:18:a3:e3:fd:ce:0c:84:22:0d:f3:a7:
#                    78:da:93:f3:db:38:cf:b9:2f:33:c6:ff:07:3c:5e:
#                    be:45:d3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                82:BA:D6:3D:97:CE:9F:CF:71:E8:92:37:AF:FD:B3:B5:69:35:57:CF
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         12:ef:38:a1:88:e1:a1:a3:d6:65:dc:47:9c:f3:bc:dc:cf:ac:
#         4b:8c:3c:1a:be:2b:f4:f7:d0:67:17:68:86:4d:70:a8:f2:cd:
#         d0:31:02:57:7d:a9:0c:8a:3b:57:39:9e:f0:6e:f7:24:22:05:
#         67:d1:c1:96:c1:be:d1:f0:f8:56:67:0b:de:ba:d7:88:9b:8d:
#         d7:6b:08:76:f5:58:91:d9:b5:c3:40:53:1a:a4:f1:85:cd:3f:
#         00:4e:3f:4e:93:3b:78:b9:d2:07:52:64:0c:86:69:6d:e8:54:
#         65:56:17:e8:00:53:84:8a:f3:db:fb:b3:ce:0b:55:62:8f:cd:
#         4c:49:06:38:7f:52:c3:f3:1c:d7:3d:f7:33:ca:32:ad:c1:a9:
#         af:6f:eb:11:cb:ee:ac:51:bf:b0:26:9a:7a:4e:23:b4:4a:f6:
#         69:b4:42:69:d6:a0:8d:b6:8c:47:4a:3b:20:37:b7:41:07:ef:
#         2f:20:d8:66:1c:69:97:a8:6c:30:7c:77:43:5e:6b:be:26:98:
#         83:0f:3a:d6:c7:70:2a:16:46:2d:25:54:86:63:65:57:42:f7:
#         23:41:e9:50:6a:07:43:ce:4e:b5:e9:1f:68:d8:d8:d6:09:4a:
#         a8:e8:b2:fc:90:67:92:e4:90:26:f3:47:fa:d6:20:fb:89:80:
#         e2:44:73:39:f7:8a:86:33:0b:f8:aa:a9:e7:4d:ec:dc:6f:d5:
#         cf:31:4d:ab:8e:1f:90:40:d6:7c:5c:82:0f:ae:17:52:71:e9:
#         ac:e7:4d:38:ed:2a:d8:76:79:87:ad:17:a3:4c:ab:b7:42:57:
#         bf:06:ac:e5:d0:4d:30:e9:55:4f:e3:45:ca:f3:e0:6a:21:34:
#         8d:c7:9f:1c:a3:63:48:92:d2:96:07:be:a5:47:3e:c2:2a:99:
#         38:a7:8e:da:21:7c:51:6d:dc:cb:3d:07:e9:a9:bd:49:d4:5d:
#         35:5f:5b:8c:04:51:ea:9a:58:90:ba:1b:af:68:78:b1:16:0f:
#         94:29:3b:8f:9b:2a:8f:c9:20:f0:71:42:4c:5c:4d:ab:31:8c:
#         ab:e9:7f:26:68:69:a0:a5:16:0d:81:c4:d1:05:0c:c3:87:66:
#         e5:07:63:aa:1b:4e:ff:b2:07:41:4f:a5:22:46:50:ac:66:00:
#         87:52:6c:3c:b2:3b:9c:97:a1:46:b4:5b:de:cf:c2:6a:59:55:
#         07:8c:a3:a4:d1:77:35:67:46:04:2f:d9:38:b9:46:af:ba:8e:
#         1b:72:26:02:2f:76:54:ef:83:c2:2f:2c:77:70:cc:77:10:92:
#         aa:03:ad:ca:cc:e0:4f:e9:83:46:e5:b3:3c:19:6f:7a:79:87:
#         b6:38:9a:bd:42:ce:a4:62

[p11-kit-object-v1]
label: "Entrust Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtpW2Q0L6xm0qb0jflEw5
VwXuw3kRQWg27ez+mgGPoTgo/PcQRmYuTR4asRpOxtHAlYiwyf8xizMD27eDez4g
hF7tslYop/jguUBxN8XLRw6XKmjAIpViFdtH2fXQK/+CS8mtPt5M25CAUD8JioQA
7DAKPRjN+/0qWZojlRcsRZ4fbkN5bQxcmP5Ip8UjR1xe/W7nHrT2aEXRhoNbooqN
seMpgP4lcYitvryPrFKWS6pRjeQTMRnoTk2f26yzatW8OVRxynp6f5DdfR2A2YG7
WSbCEf7mk+L3gORl+zQ3DimAcE2vOIYunn9Xr54XruscyyghX7Yc2OeiBCL509rY
ywIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1164660820 (0x456b5054)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=Entrust, Inc., OU=www.entrust.net/CPS is incorporated by reference, OU=(c) 2006 Entrust, Inc., CN=Entrust Root Certification Authority
#        Validity
#            Not Before: Nov 27 20:23:42 2006 GMT
#            Not After : Nov 27 20:53:42 2026 GMT
#        Subject: C=US, O=Entrust, Inc., OU=www.entrust.net/CPS is incorporated by reference, OU=(c) 2006 Entrust, Inc., CN=Entrust Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b6:95:b6:43:42:fa:c6:6d:2a:6f:48:df:94:4c:
#                    39:57:05:ee:c3:79:11:41:68:36:ed:ec:fe:9a:01:
#                    8f:a1:38:28:fc:f7:10:46:66:2e:4d:1e:1a:b1:1a:
#                    4e:c6:d1:c0:95:88:b0:c9:ff:31:8b:33:03:db:b7:
#                    83:7b:3e:20:84:5e:ed:b2:56:28:a7:f8:e0:b9:40:
#                    71:37:c5:cb:47:0e:97:2a:68:c0:22:95:62:15:db:
#                    47:d9:f5:d0:2b:ff:82:4b:c9:ad:3e:de:4c:db:90:
#                    80:50:3f:09:8a:84:00:ec:30:0a:3d:18:cd:fb:fd:
#                    2a:59:9a:23:95:17:2c:45:9e:1f:6e:43:79:6d:0c:
#                    5c:98:fe:48:a7:c5:23:47:5c:5e:fd:6e:e7:1e:b4:
#                    f6:68:45:d1:86:83:5b:a2:8a:8d:b1:e3:29:80:fe:
#                    25:71:88:ad:be:bc:8f:ac:52:96:4b:aa:51:8d:e4:
#                    13:31:19:e8:4e:4d:9f:db:ac:b3:6a:d5:bc:39:54:
#                    71:ca:7a:7a:7f:90:dd:7d:1d:80:d9:81:bb:59:26:
#                    c2:11:fe:e6:93:e2:f7:80:e4:65:fb:34:37:0e:29:
#                    80:70:4d:af:38:86:2e:9e:7f:57:af:9e:17:ae:eb:
#                    1c:cb:28:21:5f:b6:1c:d8:e7:a2:04:22:f9:d3:da:
#                    d8:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Private Key Usage Period: 
#                Not Before: Nov 27 20:23:42 2006 GMT, Not After: Nov 27 20:53:42 2026 GMT
#            X509v3 Authority Key Identifier: 
#                keyid:68:90:E4:67:A4:A6:53:80:C7:86:66:A4:F1:F7:4B:43:FB:84:BD:6D
#
#            X509v3 Subject Key Identifier: 
#                68:90:E4:67:A4:A6:53:80:C7:86:66:A4:F1:F7:4B:43:FB:84:BD:6D
#            1.2.840.113533.7.65.0: 
#                0...V7.1:4.0....
#    Signature Algorithm: sha1WithRSAEncryption
#         93:d4:30:b0:d7:03:20:2a:d0:f9:63:e8:91:0c:05:20:a9:5f:
#         19:ca:7b:72:4e:d4:b1:db:d0:96:fb:54:5a:19:2c:0c:08:f7:
#         b2:bc:85:a8:9d:7f:6d:3b:52:b3:2a:db:e7:d4:84:8c:63:f6:
#         0f:cb:26:01:91:50:6c:f4:5f:14:e2:93:74:c0:13:9e:30:3a:
#         50:e3:b4:60:c5:1c:f0:22:44:8d:71:47:ac:c8:1a:c9:e9:9b:
#         9a:00:60:13:ff:70:7e:5f:11:4d:49:1b:b3:15:52:7b:c9:54:
#         da:bf:9d:95:af:6b:9a:d8:9e:e9:f1:e4:43:8d:e2:11:44:3a:
#         bf:af:bd:83:42:73:52:8b:aa:bb:a7:29:cf:f5:64:1c:0a:4d:
#         d1:bc:aa:ac:9f:2a:d0:ff:7f:7f:da:7d:ea:b1:ed:30:25:c1:
#         84:da:34:d2:5b:78:83:56:ec:9c:36:c3:26:e2:11:f6:67:49:
#         1d:92:ab:8c:fb:eb:ff:7a:ee:85:4a:a7:50:80:f0:a7:5c:4a:
#         94:2e:5f:05:99:3c:52:41:e0:cd:b4:63:cf:01:43:ba:9c:83:
#         dc:8f:60:3b:f3:5a:b4:b4:7b:ae:da:0b:90:38:75:ef:81:1d:
#         66:d2:f7:57:70:36:b3:bf:fc:28:af:71:25:85:5b:13:fe:1e:
#         7f:5a:b4:3c

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - EC1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEhBPJ0LptQXvibNDrVV9mAhok9FuJaUfj
uMJ98fICxZ+g9lvViwYZhk9TEG0HJCehoPjVRxlhTH3KkyfqdAzvb5YJ/mPscF02
rWd3rsmdfFVEOqJjUR/142LUqUcHPswg
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - EC1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            a6:8b:79:29:00:00:00:00:50:d0:91:f9
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - EC1
#        Validity
#            Not Before: Dec 18 15:25:36 2012 GMT
#            Not After : Dec 18 15:55:36 2037 GMT
#        Subject: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - EC1
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:84:13:c9:d0:ba:6d:41:7b:e2:6c:d0:eb:55:5f:
#                    66:02:1a:24:f4:5b:89:69:47:e3:b8:c2:7d:f1:f2:
#                    02:c5:9f:a0:f6:5b:d5:8b:06:19:86:4f:53:10:6d:
#                    07:24:27:a1:a0:f8:d5:47:19:61:4c:7d:ca:93:27:
#                    ea:74:0c:ef:6f:96:09:fe:63:ec:70:5d:36:ad:67:
#                    77:ae:c9:9d:7c:55:44:3a:a2:63:51:1f:f5:e3:62:
#                    d4:a9:47:07:3e:cc:20
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B7:63:E7:1A:DD:8D:E9:08:A6:55:83:A4:E0:6A:50:41:65:11:42:49
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:61:79:d8:e5:42:47:df:1c:ae:53:99:17:b6:6f:
#         1c:7d:e1:bf:11:94:d1:03:88:75:e4:8d:89:a4:8a:77:46:de:
#         6d:61:ef:02:f5:fb:b5:df:cc:fe:4e:ff:fe:a9:e6:a7:02:30:
#         5b:99:d7:85:37:06:b5:7b:08:fd:eb:27:8b:4a:94:f9:e1:fa:
#         a7:8e:26:08:e8:7c:92:68:6d:73:d8:6f:26:ac:21:02:b8:99:
#         b7:26:41:5b:25:60:ae:d0:48:1a:ee:06

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuoS2ctueDGvimekwAad2
6jK4lUEaydphTlhyz/72gnm/c2EGCqUn2LNf00VOHHLWTjLycooP94MZ0GqAgABF
HrDH55q/ElcnHKNoLwqHvWprDl5l8xx31dSFjXAhtLMy54ui1YY5ArG40kfO5MlJ
xDun3vtUfVe+8OhuwnmyOgtV4lCYFjITXC94VsHClLPyWuQnmp8k18bs0JslguPM
wsRFxYyXegZrKhGfqQpuSDtv29QRGUL3jwe/9VNfnD70FyzmaaxOMkxid+q36OW7
NLwZi66cUee3frVTsTMi5W3PcDwa+uKbZ7aD9I2lr2JMTeBYrGQ0EgP4to2UYySk
cQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1246989352 (0x4a538c28)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2009 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - G2
#        Validity
#            Not Before: Jul  7 17:25:54 2009 GMT
#            Not After : Dec  7 17:55:54 2030 GMT
#        Subject: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2009 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ba:84:b6:72:db:9e:0c:6b:e2:99:e9:30:01:a7:
#                    76:ea:32:b8:95:41:1a:c9:da:61:4e:58:72:cf:fe:
#                    f6:82:79:bf:73:61:06:0a:a5:27:d8:b3:5f:d3:45:
#                    4e:1c:72:d6:4e:32:f2:72:8a:0f:f7:83:19:d0:6a:
#                    80:80:00:45:1e:b0:c7:e7:9a:bf:12:57:27:1c:a3:
#                    68:2f:0a:87:bd:6a:6b:0e:5e:65:f3:1c:77:d5:d4:
#                    85:8d:70:21:b4:b3:32:e7:8b:a2:d5:86:39:02:b1:
#                    b8:d2:47:ce:e4:c9:49:c4:3b:a7:de:fb:54:7d:57:
#                    be:f0:e8:6e:c2:79:b2:3a:0b:55:e2:50:98:16:32:
#                    13:5c:2f:78:56:c1:c2:94:b3:f2:5a:e4:27:9a:9f:
#                    24:d7:c6:ec:d0:9b:25:82:e3:cc:c2:c4:45:c5:8c:
#                    97:7a:06:6b:2a:11:9f:a9:0a:6e:48:3b:6f:db:d4:
#                    11:19:42:f7:8f:07:bf:f5:53:5f:9c:3e:f4:17:2c:
#                    e6:69:ac:4e:32:4c:62:77:ea:b7:e8:e5:bb:34:bc:
#                    19:8b:ae:9c:51:e7:b7:7e:b5:53:b1:33:22:e5:6d:
#                    cf:70:3c:1a:fa:e2:9b:67:b6:83:f4:8d:a5:af:62:
#                    4c:4d:e0:58:ac:64:34:12:03:f8:b6:8d:94:63:24:
#                    a4:71
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:72:26:7A:D0:1E:EF:7D:E7:3B:69:51:D4:6C:8D:9F:90:12:66:AB
#    Signature Algorithm: sha256WithRSAEncryption
#         79:9f:1d:96:c6:b6:79:3f:22:8d:87:d3:87:03:04:60:6a:6b:
#         9a:2e:59:89:73:11:ac:43:d1:f5:13:ff:8d:39:2b:c0:f2:bd:
#         4f:70:8c:a9:2f:ea:17:c4:0b:54:9e:d4:1b:96:98:33:3c:a8:
#         ad:62:a2:00:76:ab:59:69:6e:06:1d:7e:c4:b9:44:8d:98:af:
#         12:d4:61:db:0a:19:46:47:f3:eb:f7:63:c1:40:05:40:a5:d2:
#         b7:f4:b5:9a:36:bf:a9:88:76:88:04:55:04:2b:9c:87:7f:1a:
#         37:3c:7e:2d:a5:1a:d8:d4:89:5e:ca:bd:ac:3d:6c:d8:6d:af:
#         d5:f3:76:0f:cd:3b:88:38:22:9d:6c:93:9a:c4:3d:bf:82:1b:
#         65:3f:a6:0f:5d:aa:fc:e5:b2:15:ca:b5:ad:c6:bc:3d:d0:84:
#         e8:ea:06:72:b0:4d:39:32:78:bf:3e:11:9c:0b:a4:9d:9a:21:
#         f3:f0:9b:0b:30:78:db:c1:dc:87:43:fe:bc:63:9a:ca:c5:c2:
#         1c:c9:c7:8d:ff:3b:12:58:08:e6:b6:3d:ec:7a:2c:4e:fb:83:
#         96:ce:0c:3c:69:87:54:73:a4:73:c2:93:ff:51:10:ac:15:54:
#         01:d8:fc:05:b1:89:a1:7f:74:83:9a:49:d7:dc:4e:7b:8a:48:
#         6f:8b:45:f6

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Entrust Root Certification Authority - G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d9:b5:43:7f:af:a9:39:0f:00:00:00:00:55:65:ad:58
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2015 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - G4
#        Validity
#            Not Before: May 27 11:11:16 2015 GMT
#            Not After : Dec 27 11:41:16 2037 GMT
#        Subject: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2015 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - G4
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b1:ec:2c:42:ee:e2:d1:30:ff:a5:92:47:e2:2d:
#                    c3:ba:64:97:6d:ca:f7:0d:b5:59:c1:b3:cb:a8:68:
#                    19:d8:af:84:6d:30:70:5d:7e:f3:2e:d2:53:99:e1:
#                    fe:1f:5e:d9:48:af:5d:13:8d:db:ff:63:33:4d:d3:
#                    00:02:bc:c4:f8:d1:06:08:94:79:58:8a:15:de:29:
#                    b3:fd:fd:c4:4f:e8:aa:e2:a0:3b:79:cd:bf:6b:43:
#                    32:dd:d9:74:10:b9:f7:f4:68:d4:bb:d0:87:d5:aa:
#                    4b:8a:2a:6f:2a:04:b5:b2:a6:c7:a0:7a:e6:48:ab:
#                    d2:d1:59:cc:d6:7e:23:e6:97:6c:f0:42:e5:dc:51:
#                    4b:15:41:ed:49:4a:c9:de:10:97:d6:76:c1:ef:a5:
#                    b5:36:14:97:35:d8:78:22:35:52:ef:43:bd:db:27:
#                    db:61:56:82:34:dc:cb:88:60:0c:0b:5a:e5:2c:01:
#                    c6:54:af:d7:aa:c1:10:7b:d2:05:5a:b8:40:9e:86:
#                    a7:c3:90:86:02:56:52:09:7a:9c:d2:27:82:53:4a:
#                    65:52:6a:f5:3c:e7:a8:f2:9c:af:8b:bd:d3:0e:d4:
#                    d4:5e:6e:87:9e:6a:3d:45:1d:d1:5d:1b:f4:e9:0a:
#                    ac:60:99:fb:89:b4:ff:98:2c:cf:7c:1d:e9:02:aa:
#                    04:9a:1e:b8:dc:88:6e:25:b3:6c:66:f7:3c:90:f3:
#                    57:c1:b3:2f:f5:6d:f2:fb:ca:a1:f8:29:9d:46:8b:
#                    b3:6a:f6:e6:67:07:be:2c:67:0a:2a:1f:5a:b2:3e:
#                    57:c4:d3:21:21:63:65:52:91:1b:b1:99:8e:79:7e:
#                    e6:eb:8d:00:d9:5a:aa:ea:73:e8:a4:82:02:47:96:
#                    fe:5b:8e:54:61:a3:eb:2f:4b:30:b0:8b:23:75:72:
#                    7c:21:3c:c8:f6:f1:74:d4:1c:7b:a3:05:55:ee:bb:
#                    4d:3b:32:be:9a:77:66:9e:ac:69:90:22:07:1f:61:
#                    3a:96:be:e5:9a:4f:cc:05:3c:28:59:d3:c1:0c:54:
#                    a8:59:61:bd:c8:72:4c:e8:dc:9f:87:7f:bd:9c:48:
#                    36:5e:95:a3:0e:b9:38:24:55:fc:75:66:eb:02:e3:
#                    08:34:29:4a:c6:e3:2b:2f:33:a0:da:a3:86:a5:12:
#                    97:fd:80:2b:da:14:42:e3:92:bd:3e:f2:5d:5e:67:
#                    74:2e:1c:88:47:29:34:5f:e2:32:a8:9c:25:37:8c:
#                    ba:98:00:97:8b:49:96:1e:fd:25:8a:ac:dc:da:d8:
#                    5d:74:6e:66:b0:ff:44:df:a1:18:c6:be:48:2f:37:
#                    94:78:f8:95:4a:3f:7f:13:5e:5d:59:fd:74:86:43:
#                    63:73:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9F:38:C4:56:23:C3:39:E8:A0:71:6C:E8:54:4C:E4:E8:3A:B1:BF:67
#    Signature Algorithm: sha256WithRSAEncryption
#         12:e5:42:a6:7b:8b:0f:0c:e4:46:a5:b6:60:40:87:8c:25:7e:
#         ad:b8:68:2e:5b:c6:40:76:3c:03:f8:c9:59:f4:f3:ab:62:ce:
#         10:8d:b4:5a:64:8c:68:c0:b0:72:43:34:d2:1b:0b:f6:2c:53:
#         d2:ca:90:4b:86:66:fc:aa:83:22:f4:8b:1a:6f:26:48:ac:76:
#         77:08:bf:c5:98:5c:f4:26:89:9e:7b:c3:b9:64:32:01:7f:d3:
#         c3:dd:58:6d:ec:b1:ab:84:55:74:77:84:04:27:52:6b:86:4c:
#         ce:dd:b9:65:ff:d6:c6:5e:9f:9a:10:99:4b:75:6a:fe:6a:e9:
#         97:20:e4:e4:76:7a:c6:d0:24:aa:90:cd:20:90:ba:47:64:fb:
#         7f:07:b3:53:78:b5:0a:62:f2:73:43:ce:41:2b:81:6a:2e:85:
#         16:94:53:d4:6b:5f:72:22:ab:51:2d:42:d5:00:9c:99:bf:de:
#         bb:94:3b:57:fd:9a:f5:86:cb:56:3b:5b:88:01:e5:7c:28:4b:
#         03:f9:49:83:7c:b2:7f:7c:e3:ed:8e:a1:7f:60:53:8e:55:9d:
#         50:34:12:0f:b7:97:7b:6c:87:4a:44:e7:f5:6d:ec:80:37:f0:
#         58:19:6e:4a:68:76:f0:1f:92:e4:ea:b5:92:d3:61:51:10:0b:
#         ad:a7:d9:5f:c7:5f:dc:1f:a3:5c:8c:a1:7e:9b:b7:9e:d3:56:
#         6f:66:5e:07:96:20:ed:0b:74:fb:66:4e:8b:11:15:e9:81:49:
#         7e:6f:b0:d4:50:7f:22:d7:5f:65:02:0d:a6:f4:85:1e:d8:ae:
#         06:4b:4a:a7:d2:31:66:c2:f8:ce:e5:08:a6:a4:02:96:44:68:
#         57:c4:d5:33:cf:19:2f:14:c4:94:1c:7b:a4:d9:f0:9f:0e:b1:
#         80:e2:d1:9e:11:64:a9:88:11:3a:76:82:e5:62:c2:80:d8:a4:
#         83:ed:93:ef:7c:2f:90:b0:32:4c:96:15:68:48:52:d4:99:08:
#         c0:24:e8:1c:e3:b3:a5:21:0e:92:c0:90:1f:cf:20:5f:ca:3b:
#         38:c7:b7:6d:3a:f3:e6:44:b8:0e:31:6b:88:8e:70:eb:9c:17:
#         52:a8:41:94:2e:87:b6:e7:a6:12:c5:75:df:5b:c0:0a:6e:7b:
#         a4:e4:5e:86:f9:36:94:df:77:c3:e9:0d:c0:39:f1:79:bb:46:
#         8e:ab:43:59:27:b7:20:bb:23:e9:56:40:21:ec:31:3d:65:aa:
#         43:f2:3d:df:70:44:e1:ba:4d:26:10:3b:98:9f:f3:c8:8e:1b:
#         38:56:21:6a:51:93:d3:91:ca:46:da:89:b7:3d:53:83:2c:08:
#         1f:8b:8f:53:dd:ff:ac:1f

[p11-kit-object-v1]
label: "Explicitly Distrust DigiNotar Root CA"
class: x-certificate-extension
object-id: 1.3.6.1.4.1.3319.6.10.1
value: "0.%06%0a%2b%06%01%04%01%99w%06%0a%01%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----
[p11-kit-object-v1]
label: "Explicitly Distrust DigiNotar Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%18%06%03U%1d%25%01%01%ff%04%0e0%0c%06%0a%2b%06%01%04%01%99w%06%0a%10"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArLBYwQC92CEICyua/m5W
MAWfG3eQEEFcww2HEXeOgfHKfOmMau04dDW72t/5u8AJN7SWc4F9MxqYOfeTb5V/
PbmxdYe6UUjoi3A+lQTF2LbDFtmIsLGHHXDahrQPFIt6zxDRdDaiEnt3hkp55nvf
AhFopU6GrjRYmyQTeFYiJR4Bi0tRcfuCzFmWaYhaaFPFuQ0CN8tLvGZKkH4qCwUH
7RZfVZB12EbJG4PiCL7xI8yZHdYqD4MgFVgngi764iLCSbG5AYFqnW2dQHdodk4h
Km2EQIVOdpl8gvPztwJZ1CYBG47frVMG0a4Y3eKyOsvXiDiOrFspuRnTmPkYA89I
goZmCxtpD8nrOIh6JhoFTJLXJNSW8qxSLaNH1VL2P/7OhAZwpqo+ovK2VjQYV6Lk
gW3nyvBq08eRawKDQXwV72uaZF7j0Dzlset7XYb7y+Z3Sc2jZdz3uZy45Atfk8/M
MBoyHM4cY5Wl+erhdIue6SupMHugGB8OGAvlW6nT0WweB2ePkUupirzSZqqTAYiy
kfoxXNWmwVIICc0KY6LTIqboodk5Bpf1bo0CkIwUez+AzRucusRYciOvtlafxnpC
MykHP4LJ5h8FDc1MKDaL08g+HMaI717uiWTpHevaiX4ypmnR3cyIn9HQyWYh3AZn
xZR6mm1iTH3M4GSAsp5HjqMCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Explicitly Distrust DigiNotar Root CA"
x-distrusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0f:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=NL, O=DigiNotar, CN=DigiNotar Root CA/emailAddress=info@diginotar.nl
#        Validity
#            Not Before: Jul 27 17:19:37 2007 GMT
#            Not After : Mar 31 18:19:22 2025 GMT
#        Subject: C=NL, O=DigiNotar, CN=DigiNotar Root CA/emailAddress=info@diginotar.nl
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ac:b0:58:c1:00:bd:d8:21:08:0b:2b:9a:fe:6e:
#                    56:30:05:9f:1b:77:90:10:41:5c:c3:0d:87:11:77:
#                    8e:81:f1:ca:7c:e9:8c:6a:ed:38:74:35:bb:da:df:
#                    f9:bb:c0:09:37:b4:96:73:81:7d:33:1a:98:39:f7:
#                    93:6f:95:7f:3d:b9:b1:75:87:ba:51:48:e8:8b:70:
#                    3e:95:04:c5:d8:b6:c3:16:d9:88:b0:b1:87:1d:70:
#                    da:86:b4:0f:14:8b:7a:cf:10:d1:74:36:a2:12:7b:
#                    77:86:4a:79:e6:7b:df:02:11:68:a5:4e:86:ae:34:
#                    58:9b:24:13:78:56:22:25:1e:01:8b:4b:51:71:fb:
#                    82:cc:59:96:69:88:5a:68:53:c5:b9:0d:02:37:cb:
#                    4b:bc:66:4a:90:7e:2a:0b:05:07:ed:16:5f:55:90:
#                    75:d8:46:c9:1b:83:e2:08:be:f1:23:cc:99:1d:d6:
#                    2a:0f:83:20:15:58:27:82:2e:fa:e2:22:c2:49:b1:
#                    b9:01:81:6a:9d:6d:9d:40:77:68:76:4e:21:2a:6d:
#                    84:40:85:4e:76:99:7c:82:f3:f3:b7:02:59:d4:26:
#                    01:1b:8e:df:ad:53:06:d1:ae:18:dd:e2:b2:3a:cb:
#                    d7:88:38:8e:ac:5b:29:b9:19:d3:98:f9:18:03:cf:
#                    48:82:86:66:0b:1b:69:0f:c9:eb:38:88:7a:26:1a:
#                    05:4c:92:d7:24:d4:96:f2:ac:52:2d:a3:47:d5:52:
#                    f6:3f:fe:ce:84:06:70:a6:aa:3e:a2:f2:b6:56:34:
#                    18:57:a2:e4:81:6d:e7:ca:f0:6a:d3:c7:91:6b:02:
#                    83:41:7c:15:ef:6b:9a:64:5e:e3:d0:3c:e5:b1:eb:
#                    7b:5d:86:fb:cb:e6:77:49:cd:a3:65:dc:f7:b9:9c:
#                    b8:e4:0b:5f:93:cf:cc:30:1a:32:1c:ce:1c:63:95:
#                    a5:f9:ea:e1:74:8b:9e:e9:2b:a9:30:7b:a0:18:1f:
#                    0e:18:0b:e5:5b:a9:d3:d1:6c:1e:07:67:8f:91:4b:
#                    a9:8a:bc:d2:66:aa:93:01:88:b2:91:fa:31:5c:d5:
#                    a6:c1:52:08:09:cd:0a:63:a2:d3:22:a6:e8:a1:d9:
#                    39:06:97:f5:6e:8d:02:90:8c:14:7b:3f:80:cd:1b:
#                    9c:ba:c4:58:72:23:af:b6:56:9f:c6:7a:42:33:29:
#                    07:3f:82:c9:e6:1f:05:0d:cd:4c:28:36:8b:d3:c8:
#                    3e:1c:c6:88:ef:5e:ee:89:64:e9:1d:eb:da:89:7e:
#                    32:a6:69:d1:dd:cc:88:9f:d1:d0:c9:66:21:dc:06:
#                    67:c5:94:7a:9a:6d:62:4c:7d:cc:e0:64:80:b2:9e:
#                    47:8e:a3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                88:68:BF:E0:8E:35:C4:3B:38:6B:62:F7:28:3B:84:81:C8:0C:D7:4D
#    Signature Algorithm: sha1WithRSAEncryption
#         3b:02:8d:cb:3c:30:e8:6e:a0:ad:f2:73:b3:5f:9e:25:13:04:
#         05:d3:f6:e3:8b:bb:0b:79:ce:53:de:e4:96:c5:d1:af:73:bc:
#         d5:c3:d0:40:55:7c:40:7f:cd:1b:5f:09:d5:f2:7c:9f:68:1d:
#         bb:5d:ce:7a:39:c2:8c:d6:98:7b:c5:83:55:a8:d5:7d:40:ca:
#         e0:1e:f7:89:5e:63:5d:a1:13:c2:5d:8a:b6:8a:7c:00:f3:23:
#         c3:ed:85:5f:71:76:f0:68:63:aa:45:21:39:48:61:78:36:dc:
#         f1:43:93:d4:25:c7:f2:80:65:e1:53:02:75:51:fc:7a:3a:ef:
#         37:ab:84:28:57:0c:d8:d4:d4:99:56:6c:e3:a2:fe:59:84:b4:
#         31:e8:33:f8:64:94:94:51:97:ab:39:c5:4b:ed:da:dd:80:0b:
#         6f:7c:29:0d:c4:8e:8a:72:0d:e7:53:14:b2:60:41:3d:84:91:
#         31:68:3d:27:44:db:e5:de:f4:fa:63:45:c8:4c:3e:98:f5:3f:
#         41:ba:4e:cb:37:0d:ba:66:98:f1:dd:cb:9f:5c:f7:54:36:82:
#         6b:2c:bc:13:61:97:42:f8:78:bb:cc:c8:a2:9f:ca:f0:68:bd:
#         6b:1d:b2:df:8d:6f:07:9d:da:8e:67:c7:47:1e:ca:b9:bf:2a:
#         42:91:b7:63:53:66:f1:42:a3:e1:f4:5a:4d:58:6b:b5:e4:a4:
#         33:ad:5c:70:1d:dc:e0:f2:eb:73:14:91:9a:03:c1:ea:00:65:
#         bc:07:fc:cf:12:11:22:2c:ae:a0:bd:3a:e0:a2:2a:d8:59:e9:
#         29:d3:18:35:a4:ac:11:5f:19:b5:b5:1b:ff:22:4a:5c:c6:7a:
#         e4:17:ef:20:a9:a7:f4:3f:ad:8a:a7:9a:04:25:9d:0e:ca:37:
#         e6:50:fd:8c:42:29:04:9a:ec:b9:cf:4b:72:bd:e2:08:36:af:
#         23:2f:62:e5:ca:01:d3:70:db:7c:82:23:2c:16:31:0c:c6:36:
#         07:90:7a:b1:1f:67:58:c4:3b:58:59:89:b0:8c:8c:50:b3:d8:
#         86:cb:68:a3:c4:0a:e7:69:4b:20:ce:c1:1e:56:4b:95:a9:23:
#         68:d8:30:d8:c3:eb:b0:55:51:cd:e5:fd:2b:b8:f5:bb:11:9f:
#         53:54:f6:34:19:8c:79:09:36:ca:61:17:25:17:0b:82:98:73:
#         0c:77:74:c3:d5:0d:c7:a8:12:4c:c7:a7:54:71:47:2e:2c:1a:
#         7d:c9:e3:2b:3b:48:de:27:84:a7:63:36:b3:7d:8f:a0:64:39:
#         24:0d:3d:7b:87:af:66:5c:74:1b:4b:73:b2:e5:8c:f0:86:99:
#         b8:e5:c5:df:84:c1:b7:eb

[p11-kit-object-v1]
label: "GDCA TrustAUTH R5 ROOT"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GDCA TrustAUTH R5 ROOT"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFiDCCA3CgAwIBAgIIfQmX/vBH6nowDQYJKoZIhvcNAQELBQAwYjELMAkGA1UE
BhMCQ04xMjAwBgNVBAoMKUdVQU5HIERPTkcgQ0VSVElGSUNBVEUgQVVUSE9SSVRZ
IENPLixMVEQuMR8wHQYDVQQDDBZHRENBIFRydXN0QVVUSCBSNSBST09UMB4XDTE0
MTEyNjA1MTMxNVoXDTQwMTIzMTE1NTk1OVowYjELMAkGA1UEBhMCQ04xMjAwBgNV
BAoMKUdVQU5HIERPTkcgQ0VSVElGSUNBVEUgQVVUSE9SSVRZIENPLixMVEQuMR8w
HQYDVQQDDBZHRENBIFRydXN0QVVUSCBSNSBST09UMIICIjANBgkqhkiG9w0BAQEF
AAOCAg8AMIICCgKCAgEA2aMW8Mh0dHeb7zMNOwZ+Vfy1YI92hhJCfVZmPoiC7XJj
Dp6L3TQsAlFRwxn9WVSEyfFrs0yw6ehGXTjGoqcuEVe6ghWinI9tsJlKCvLriXBj
TnnEt1u9ol2x8kECK62pOqPseQrsXzrj/e+APK00mxqriCZ7VqKChh/rNYmDf1+u
KU49tm7srsHwJ5uu4/Ts765/94Y9cnrrpftZTqfrlYwiOXnhLQiPzLyRuEH3FMEj
qcOtmkVEs7LXLM3GKeJQEK5cy4KOFxg2fZfmiJqwTTQJ9Cy5WmYqsBebnh52nUpm
MUHfP/vFBu8btn4aRjb3ZGM74zkYI+dndRTVdVeSN72+ahsmUPI2JgaQxXABZG12
ZuGR224HwGGALrIuL4xwp9E7PLOR5G62xDtw8mySlwnNR30YwPO7ng/Wi64HtloP
zgsMR6flPri9fcebNaBhlzpBdRfMK5Z3KpIhHtmVdiBnaM8Nvd/WHwlqmuLMc3Gk
L30SgLdTMEZeS1SZD2fJpcjyIMGC7J0R38IC+xo70e0gmu9lZJIQDSri3nDxGGeC
jGHeuLzRL5z7D9Ar7Rt2ueQ5Vfj4oR24qoAATILnsn8JuLwwoC8N9VKejveSswoA
HQBUlwbgsQfZxw9cZX08bVlX5O2ljelAU58VS6Bx9hoh49pwBiFYFIeFd3mqgnkC
AwEAAaNCMEAwHQYDVR0OBBYEFOLJQJ9NzuiaoXzPDj9lxSmIahlRMA8GA1UdEwEB
/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgGGMA0GCSqGSIb3DQEBCwUAA4ICAQDRSVfg
p8xoWLoBDysZzY2wYUWsEe1jUGn4H3++Fo/9nesLqjJHdtJnJO29fDMylyrHBYZm
DRd9FBUb1Ov9H5r2XpdptxolpAqzkT9fNqyL7FeoPueBihhXOYV0GkLH6VsTX4/5
COmSdI31R9KrO9b7eGZONn356ZLpBN79SWP8bfsUcZNnL0dKt7n/HipzcEYwv1ry
L3ml4Y0M2fmyYzeMN2WFcGpcWwlyua1jPLHd+PwyvzeG5LuOmCd+uh8W4XAR8gPf
JWIyJyYYMoSf/wA6E7qaTfRPuBRwIrHKK5DOKcFw9C+df/KQHtZa37dG/OaG+svg
IHZ6uqbL9XzeYqWxi+7egmaKTjowHz+Ay60nugxe19CxVsp3cbK1daFQqUBDF8Io
2c9Si1vIY9RCPqAzekYu9wogRlR+ak8x8YF+QnQ4ZXMn7sZ8uI7XpTrXmKGcjBBV
09tL7ECQ8s1uV9JiDnxXk7Gnbc2dg7sq5+W2O3FYrf3RRbxake5TFW/TRQl1brqQ
XR4EzzffHqhmsYzmIGrv/EhOdJhCrylvLmrH+33RZjEizIYAfmaDDEL0vTSSwxrq
T8p+ck0LcIymSLumoRT2+1hEmRSuqguTaaApJUqlyyvdimYHFngVV3Eb7PVHhPOe
MTd61X8kreS8/f3MboPoDKi3QWwH3b08hpcv0g==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7d:09:97:fe:f0:47:ea:7a
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=GUANG DONG CERTIFICATE AUTHORITY CO.,LTD., CN=GDCA TrustAUTH R5 ROOT
#        Validity
#            Not Before: Nov 26 05:13:15 2014 GMT
#            Not After : Dec 31 15:59:59 2040 GMT
#        Subject: C=CN, O=GUANG DONG CERTIFICATE AUTHORITY CO.,LTD., CN=GDCA TrustAUTH R5 ROOT
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d9:a3:16:f0:c8:74:74:77:9b:ef:33:0d:3b:06:
#                    7e:55:fc:b5:60:8f:76:86:12:42:7d:56:66:3e:88:
#                    82:ed:72:63:0e:9e:8b:dd:34:2c:02:51:51:c3:19:
#                    fd:59:54:84:c9:f1:6b:b3:4c:b0:e9:e8:46:5d:38:
#                    c6:a2:a7:2e:11:57:ba:82:15:a2:9c:8f:6d:b0:99:
#                    4a:0a:f2:eb:89:70:63:4e:79:c4:b7:5b:bd:a2:5d:
#                    b1:f2:41:02:2b:ad:a9:3a:a3:ec:79:0a:ec:5f:3a:
#                    e3:fd:ef:80:3c:ad:34:9b:1a:ab:88:26:7b:56:a2:
#                    82:86:1f:eb:35:89:83:7f:5f:ae:29:4e:3d:b6:6e:
#                    ec:ae:c1:f0:27:9b:ae:e3:f4:ec:ef:ae:7f:f7:86:
#                    3d:72:7a:eb:a5:fb:59:4e:a7:eb:95:8c:22:39:79:
#                    e1:2d:08:8f:cc:bc:91:b8:41:f7:14:c1:23:a9:c3:
#                    ad:9a:45:44:b3:b2:d7:2c:cd:c6:29:e2:50:10:ae:
#                    5c:cb:82:8e:17:18:36:7d:97:e6:88:9a:b0:4d:34:
#                    09:f4:2c:b9:5a:66:2a:b0:17:9b:9e:1e:76:9d:4a:
#                    66:31:41:df:3f:fb:c5:06:ef:1b:b6:7e:1a:46:36:
#                    f7:64:63:3b:e3:39:18:23:e7:67:75:14:d5:75:57:
#                    92:37:bd:be:6a:1b:26:50:f2:36:26:06:90:c5:70:
#                    01:64:6d:76:66:e1:91:db:6e:07:c0:61:80:2e:b2:
#                    2e:2f:8c:70:a7:d1:3b:3c:b3:91:e4:6e:b6:c4:3b:
#                    70:f2:6c:92:97:09:cd:47:7d:18:c0:f3:bb:9e:0f:
#                    d6:8b:ae:07:b6:5a:0f:ce:0b:0c:47:a7:e5:3e:b8:
#                    bd:7d:c7:9b:35:a0:61:97:3a:41:75:17:cc:2b:96:
#                    77:2a:92:21:1e:d9:95:76:20:67:68:cf:0d:bd:df:
#                    d6:1f:09:6a:9a:e2:cc:73:71:a4:2f:7d:12:80:b7:
#                    53:30:46:5e:4b:54:99:0f:67:c9:a5:c8:f2:20:c1:
#                    82:ec:9d:11:df:c2:02:fb:1a:3b:d1:ed:20:9a:ef:
#                    65:64:92:10:0d:2a:e2:de:70:f1:18:67:82:8c:61:
#                    de:b8:bc:d1:2f:9c:fb:0f:d0:2b:ed:1b:76:b9:e4:
#                    39:55:f8:f8:a1:1d:b8:aa:80:00:4c:82:e7:b2:7f:
#                    09:b8:bc:30:a0:2f:0d:f5:52:9e:8e:f7:92:b3:0a:
#                    00:1d:00:54:97:06:e0:b1:07:d9:c7:0f:5c:65:7d:
#                    3c:6d:59:57:e4:ed:a5:8d:e9:40:53:9f:15:4b:a0:
#                    71:f6:1a:21:e3:da:70:06:21:58:14:87:85:77:79:
#                    aa:82:79
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                E2:C9:40:9F:4D:CE:E8:9A:A1:7C:CF:0E:3F:65:C5:29:88:6A:19:51
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         d1:49:57:e0:a7:cc:68:58:ba:01:0f:2b:19:cd:8d:b0:61:45:
#         ac:11:ed:63:50:69:f8:1f:7f:be:16:8f:fd:9d:eb:0b:aa:32:
#         47:76:d2:67:24:ed:bd:7c:33:32:97:2a:c7:05:86:66:0d:17:
#         7d:14:15:1b:d4:eb:fd:1f:9a:f6:5e:97:69:b7:1a:25:a4:0a:
#         b3:91:3f:5f:36:ac:8b:ec:57:a8:3e:e7:81:8a:18:57:39:85:
#         74:1a:42:c7:e9:5b:13:5f:8f:f9:08:e9:92:74:8d:f5:47:d2:
#         ab:3b:d6:fb:78:66:4e:36:7d:f9:e9:92:e9:04:de:fd:49:63:
#         fc:6d:fb:14:71:93:67:2f:47:4a:b7:b9:ff:1e:2a:73:70:46:
#         30:bf:5a:f2:2f:79:a5:e1:8d:0c:d9:f9:b2:63:37:8c:37:65:
#         85:70:6a:5c:5b:09:72:b9:ad:63:3c:b1:dd:f8:fc:32:bf:37:
#         86:e4:bb:8e:98:27:7e:ba:1f:16:e1:70:11:f2:03:df:25:62:
#         32:27:26:18:32:84:9f:ff:00:3a:13:ba:9a:4d:f4:4f:b8:14:
#         70:22:b1:ca:2b:90:ce:29:c1:70:f4:2f:9d:7f:f2:90:1e:d6:
#         5a:df:b7:46:fc:e6:86:fa:cb:e0:20:76:7a:ba:a6:cb:f5:7c:
#         de:62:a5:b1:8b:ee:de:82:66:8a:4e:3a:30:1f:3f:80:cb:ad:
#         27:ba:0c:5e:d7:d0:b1:56:ca:77:71:b2:b5:75:a1:50:a9:40:
#         43:17:c2:28:d9:cf:52:8b:5b:c8:63:d4:42:3e:a0:33:7a:46:
#         2e:f7:0a:20:46:54:7e:6a:4f:31:f1:81:7e:42:74:38:65:73:
#         27:ee:c6:7c:b8:8e:d7:a5:3a:d7:98:a1:9c:8c:10:55:d3:db:
#         4b:ec:40:90:f2:cd:6e:57:d2:62:0e:7c:57:93:b1:a7:6d:cd:
#         9d:83:bb:2a:e7:e5:b6:3b:71:58:ad:fd:d1:45:bc:5a:91:ee:
#         53:15:6f:d3:45:09:75:6e:ba:90:5d:1e:04:cf:37:df:1e:a8:
#         66:b1:8c:e6:20:6a:ef:fc:48:4e:74:98:42:af:29:6f:2e:6a:
#         c7:fb:7d:d1:66:31:22:cc:86:00:7e:66:83:0c:42:f4:bd:34:
#         92:c3:1a:ea:4f:ca:7e:72:4d:0b:70:8c:a6:48:bb:a6:a1:14:
#         f6:fb:58:44:99:14:ae:aa:0b:93:69:a0:29:25:4a:a5:cb:2b:
#         dd:8a:66:07:16:78:15:57:71:1b:ec:f5:47:84:f3:9e:31:37:
#         7a:d5:7f:24:ad:e4:bc:fd:fd:cc:6e:83:e8:0c:a8:b7:41:6c:
#         07:dd:bd:3c:86:97:2f:d2

[p11-kit-object-v1]
label: "GLOBALTRUST"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GLOBALTRUST"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIH/jCCBeagAwIBAgIBADANBgkqhkiG9w0BAQUFADCB1DELMAkGA1UEBhMCQVQx
DzANBgNVBAcTBlZpZW5uYTEQMA4GA1UECBMHQXVzdHJpYTE6MDgGA1UEChMxQVJH
RSBEQVRFTiAtIEF1c3RyaWFuIFNvY2lldHkgZm9yIERhdGEgUHJvdGVjdGlvbjEq
MCgGA1UECxMhR0xPQkFMVFJVU1QgQ2VydGlmaWNhdGlvbiBTZXJ2aWNlMRQwEgYD
VQQDEwtHTE9CQUxUUlVTVDEkMCIGCSqGSIb3DQEJARYVaW5mb0BnbG9iYWx0cnVz
dC5pbmZvMB4XDTA2MDgwNzE0MTIzNVoXDTM2MDkxODE0MTIzNVowgdQxCzAJBgNV
BAYTAkFUMQ8wDQYDVQQHEwZWaWVubmExEDAOBgNVBAgTB0F1c3RyaWExOjA4BgNV
BAoTMUFSR0UgREFURU4gLSBBdXN0cmlhbiBTb2NpZXR5IGZvciBEYXRhIFByb3Rl
Y3Rpb24xKjAoBgNVBAsTIUdMT0JBTFRSVVNUIENlcnRpZmljYXRpb24gU2Vydmlj
ZTEUMBIGA1UEAxMLR0xPQkFMVFJVU1QxJDAiBgkqhkiG9w0BCQEWFWluZm9AZ2xv
YmFsdHJ1c3QuaW5mbzCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBANIS
R+xfmOgNhhVJxN3snvFszVG2+5VPi8SQPVMzsdMTxUjipb/19AOED5x4cfaSl/Fb
WXUYPycLUS9caMeh6wDz9pU9acN+wqzECjZyelum0PcBeyjHKscyYO5ZuNcLJ92z
RQUre2Snc1zokwKXaOz8hNue1NWBR8acwKyXyxnqh6UKo7h1JOdQJw2rFvlWXbGB
ARZ98+nhJPMIIbm6rF2ex0h5f2rK3zl3BG0bbjrNf85cSKwSPFnyas+ASOH2AGd4
IOD9tWR7F5ez5SfdRWubYZkGvvLnnqRtiztrDIHutG+hvhoSQUuerQ75RrRa0QMA
lBbAwPOs+3y8lsAp2PkzFomjDh2V2QPUIQzdVghJZciNqyEfVLuZvPFEW3sAGP0q
GVjSBcnZKTYl/nfua1lUTwgUopkJRVetB94i/IccoO+ged0KfcB/NegMZk3jtWoW
WXFb85CwUl6RAseoucIEb55PtAAt7AjsrkBu8CknIjm2zaCGELoLNex7Wg22ecP6
x63B++vtK4QN6t7565pZM2zBKxKMuD7FNiM4GtZ3k5DWd3VqWBkXoRWObnYOo3Ph
XJVJ28EPlBTF1WIbmas41Wdu0qkZ4Vo6h2pIP5GW48bFJ2tXdDGY9j5xce1+3rBN
LPPuj9t7aNcQRCmt7KtQWVKabGpyFE0WFFH3134fAgMBAAGjggHXMIIB0zAdBgNV
HQ4EFgQUwAHV4HgfL3Q64+vAIVKmBO4my6QwggEBBgNVHSMEgfkwgfaAFMAB1eB4
Hy90OuPrwCFSpgTuJsukoYHapIHXMIHUMQswCQYDVQQGEwJBVDEPMA0GA1UEBxMG
Vmllbm5hMRAwDgYDVQQIEwdBdXN0cmlhMTowOAYDVQQKEzFBUkdFIERBVEVOIC0g
QXVzdHJpYW4gU29jaWV0eSBmb3IgRGF0YSBQcm90ZWN0aW9uMSowKAYDVQQLEyFH
TE9CQUxUUlVTVCBDZXJ0aWZpY2F0aW9uIFNlcnZpY2UxFDASBgNVBAMTC0dMT0JB
TFRSVVNUMSQwIgYJKoZIhvcNAQkBFhVpbmZvQGdsb2JhbHRydXN0LmluZm+CAQAw
DwYDVR0TAQH/BAUwAwEB/zALBgNVHQ8EBAMCAcYwEQYDVR0gBAowCDAGBgRVHSAA
MD0GA1UdEQQ2MDSBFWluZm9AZ2xvYmFsdHJ1c3QuaW5mb4YbaHR0cDovL3d3dy5n
bG9iYWx0cnVzdC5pbmZvMD0GA1UdEgQ2MDSBFWluZm9AZ2xvYmFsdHJ1c3QuaW5m
b4YbaHR0cDovL3d3dy5nbG9iYWx0cnVzdC5pbmZvMA0GCSqGSIb3DQEBBQUAA4IC
AQAVO4iDXg7ePvA+XdwtoUr6KKXWB6UkSM6eeeh5mlwkjlhyFEGFx0XuPChpOEmu
Io27jAVtrmW7h7l+djsoY2rWbzMwiH5VBbq5FQOYHWLSzsAPbhyaNO7krx9i0ey0
ec/PaZKKWP3Bx3YLXM1SNEhr5Qt/yTIS35gKFtkzVhaP30M/170/xR7FrSGshyya
5BwfhQOsi8e3M2JJwfiqK05dhz52Uq5ZfjHhfLpSi1iQ14BGCzQ23u8RyVwiRsI8
p39iBG/fPkiO6gs+CKwYGlLW8fbUYi8DuZrWPFN/VSbGNSshdLCJkFTkAYhcnIUq
mmVeS1fygBzsZzSaRtwCdv5yN3IJsfAjj1izAn3ueA65PXMSLVWfF2Ovrtiuc7bH
UGqFwdt9+5RZcMbDB2xWxbAH/E59kx25J8CwldXnfAW89w8Ks/RuFVdJG7UUAKQw
K1r0Vli/djSiPf4BJvDduG3wpOe8IPZRCPbjN4lXNvb3L/7NuGS96tem0P94737h
HB5Ufg80GYEQc9LjeAYXttJR+zV4dtp3gzdBPi1GqH6G3lb0ypCetK2wHkUYPDSI
Aofo8DaR6/LntdIEuS64XY0dmi4LFhnNdqSr+9Hio6LchH176lDq9bIEO4lSOrLD
GU+5JrG8vCyy4YGms2G19EVgLyx1xcgtiEsmu3DuO38BLQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=AT, L=Vienna, ST=Austria, O=ARGE DATEN - Austrian Society for Data Protection, OU=GLOBALTRUST Certification Service, CN=GLOBALTRUST/emailAddress=info@globaltrust.info
#        Validity
#            Not Before: Aug  7 14:12:35 2006 GMT
#            Not After : Sep 18 14:12:35 2036 GMT
#        Subject: C=AT, L=Vienna, ST=Austria, O=ARGE DATEN - Austrian Society for Data Protection, OU=GLOBALTRUST Certification Service, CN=GLOBALTRUST/emailAddress=info@globaltrust.info
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d2:12:47:ec:5f:98:e8:0d:86:15:49:c4:dd:ec:
#                    9e:f1:6c:cd:51:b6:fb:95:4f:8b:c4:90:3d:53:33:
#                    b1:d3:13:c5:48:e2:a5:bf:f5:f4:03:84:0f:9c:78:
#                    71:f6:92:97:f1:5b:59:75:18:3f:27:0b:51:2f:5c:
#                    68:c7:a1:eb:00:f3:f6:95:3d:69:c3:7e:c2:ac:c4:
#                    0a:36:72:7a:5b:a6:d0:f7:01:7b:28:c7:2a:c7:32:
#                    60:ee:59:b8:d7:0b:27:dd:b3:45:05:2b:7b:64:a7:
#                    73:5c:e8:93:02:97:68:ec:fc:84:db:9e:d4:d5:81:
#                    47:c6:9c:c0:ac:97:cb:19:ea:87:a5:0a:a3:b8:75:
#                    24:e7:50:27:0d:ab:16:f9:56:5d:b1:81:01:16:7d:
#                    f3:e9:e1:24:f3:08:21:b9:ba:ac:5d:9e:c7:48:79:
#                    7f:6a:ca:df:39:77:04:6d:1b:6e:3a:cd:7f:ce:5c:
#                    48:ac:12:3c:59:f2:6a:cf:80:48:e1:f6:00:67:78:
#                    20:e0:fd:b5:64:7b:17:97:b3:e5:27:dd:45:6b:9b:
#                    61:99:06:be:f2:e7:9e:a4:6d:8b:3b:6b:0c:81:ee:
#                    b4:6f:a1:be:1a:12:41:4b:9e:ad:0e:f9:46:b4:5a:
#                    d1:03:00:94:16:c0:c0:f3:ac:fb:7c:bc:96:c0:29:
#                    d8:f9:33:16:89:a3:0e:1d:95:d9:03:d4:21:0c:dd:
#                    56:08:49:65:c8:8d:ab:21:1f:54:bb:99:bc:f1:44:
#                    5b:7b:00:18:fd:2a:19:58:d2:05:c9:d9:29:36:25:
#                    fe:77:ee:6b:59:54:4f:08:14:a2:99:09:45:57:ad:
#                    07:de:22:fc:87:1c:a0:ef:a0:79:dd:0a:7d:c0:7f:
#                    35:e8:0c:66:4d:e3:b5:6a:16:59:71:5b:f3:90:b0:
#                    52:5e:91:02:c7:a8:b9:c2:04:6f:9e:4f:b4:00:2d:
#                    ec:08:ec:ae:40:6e:f0:29:27:22:39:b6:cd:a0:86:
#                    10:ba:0b:35:ec:7b:5a:0d:b6:79:c3:fa:c7:ad:c1:
#                    fb:eb:ed:2b:84:0d:ea:de:f9:eb:9a:59:33:6c:c1:
#                    2b:12:8c:b8:3e:c5:36:23:38:1a:d6:77:93:90:d6:
#                    77:75:6a:58:19:17:a1:15:8e:6e:76:0e:a3:73:e1:
#                    5c:95:49:db:c1:0f:94:14:c5:d5:62:1b:99:ab:38:
#                    d5:67:6e:d2:a9:19:e1:5a:3a:87:6a:48:3f:91:96:
#                    e3:c6:c5:27:6b:57:74:31:98:f6:3e:71:71:ed:7e:
#                    de:b0:4d:2c:f3:ee:8f:db:7b:68:d7:10:44:29:ad:
#                    ec:ab:50:59:52:9a:6c:6a:72:14:4d:16:14:51:f7:
#                    d7:7e:1f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                C0:01:D5:E0:78:1F:2F:74:3A:E3:EB:C0:21:52:A6:04:EE:26:CB:A4
#            X509v3 Authority Key Identifier: 
#                keyid:C0:01:D5:E0:78:1F:2F:74:3A:E3:EB:C0:21:52:A6:04:EE:26:CB:A4
#                DirName:/C=AT/L=Vienna/ST=Austria/O=ARGE DATEN - Austrian Society for Data Protection/OU=GLOBALTRUST Certification Service/CN=GLOBALTRUST/emailAddress=info@globaltrust.info
#                serial:00
#
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#
#            X509v3 Subject Alternative Name: 
#                email:info@globaltrust.info, URI:http://www.globaltrust.info
#            X509v3 Issuer Alternative Name: 
#                email:info@globaltrust.info, URI:http://www.globaltrust.info
#    Signature Algorithm: sha1WithRSAEncryption
#         15:3b:88:83:5e:0e:de:3e:f0:3e:5d:dc:2d:a1:4a:fa:28:a5:
#         d6:07:a5:24:48:ce:9e:79:e8:79:9a:5c:24:8e:58:72:14:41:
#         85:c7:45:ee:3c:28:69:38:49:ae:22:8d:bb:8c:05:6d:ae:65:
#         bb:87:b9:7e:76:3b:28:63:6a:d6:6f:33:30:88:7e:55:05:ba:
#         b9:15:03:98:1d:62:d2:ce:c0:0f:6e:1c:9a:34:ee:e4:af:1f:
#         62:d1:ec:b4:79:cf:cf:69:92:8a:58:fd:c1:c7:76:0b:5c:cd:
#         52:34:48:6b:e5:0b:7f:c9:32:12:df:98:0a:16:d9:33:56:16:
#         8f:df:43:3f:d7:bd:3f:c5:1e:c5:ad:21:ac:87:2c:9a:e4:1c:
#         1f:85:03:ac:8b:c7:b7:33:62:49:c1:f8:aa:2b:4e:5d:87:3e:
#         76:52:ae:59:7e:31:e1:7c:ba:52:8b:58:90:d7:80:46:0b:34:
#         36:de:ef:11:c9:5c:22:46:c2:3c:a7:7f:62:04:6f:df:3e:48:
#         8e:ea:0b:3e:08:ac:18:1a:52:d6:f1:f6:d4:62:2f:03:b9:9a:
#         d6:3c:53:7f:55:26:c6:35:2b:21:74:b0:89:90:54:e4:01:88:
#         5c:9c:85:2a:9a:65:5e:4b:57:f2:80:1c:ec:67:34:9a:46:dc:
#         02:76:fe:72:37:72:09:b1:f0:23:8f:58:b3:02:7d:ee:78:0e:
#         b9:3d:73:12:2d:55:9f:17:63:af:ae:d8:ae:73:b6:c7:50:6a:
#         85:c1:db:7d:fb:94:59:70:c6:c3:07:6c:56:c5:b0:07:fc:4e:
#         7d:93:1d:b9:27:c0:b0:95:d5:e7:7c:05:bc:f7:0f:0a:b3:f4:
#         6e:15:57:49:1b:b5:14:00:a4:30:2b:5a:f4:56:58:bf:76:34:
#         a2:3d:fe:01:26:f0:dd:b8:6d:f0:a4:e7:bc:20:f6:51:08:f6:
#         e3:37:89:57:36:f6:f7:2f:fe:cd:b8:64:bd:ea:d7:a6:d0:ff:
#         78:ef:7e:e1:1c:1e:54:7e:0f:34:19:81:10:73:d2:e3:78:06:
#         17:b6:d2:51:fb:35:78:76:da:77:83:37:41:3e:2d:46:a8:7e:
#         86:de:56:f4:ca:90:9e:b4:ad:b0:1e:45:18:3c:34:88:02:87:
#         e8:f0:36:91:eb:f2:e7:b5:d2:04:b9:2e:b8:5d:8d:1d:9a:2e:
#         0b:16:19:cd:76:a4:ab:fb:d1:e2:a3:a2:dc:84:7d:7b:ea:50:
#         ea:f5:b2:04:3b:89:52:3a:b2:c3:19:4f:b9:26:b1:bc:bc:2c:
#         b2:e1:81:a6:b3:61:b5:f4:45:60:2f:2c:75:c5:c8:2d:88:4b:
#         26:bb:70:ee:3b:7f:01:2d

[p11-kit-object-v1]
label: "GLOBALTRUST 2015"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GLOBALTRUST 2015"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGDDCCA/SgAwIBAgIBADANBgkqhkiG9w0BAQsFADCBlzELMAkGA1UEBhMCQVQx
DTALBgNVBAgTBFdpZW4xDTALBgNVBAcTBFdpZW4xIzAhBgNVBAoTGmUtY29tbWVy
Y2UgbW9uaXRvcmluZyBHbWJIMSowKAYDVQQLEyFHTE9CQUxUUlVTVCBDZXJ0aWZp
Y2F0aW9uIFNlcnZpY2UxGTAXBgNVBAMTEEdMT0JBTFRSVVNUIDIwMTUwHhcNMTUw
NjExMDAwMDAwWhcNNDAwNjEwMDAwMDAwWjCBlzELMAkGA1UEBhMCQVQxDTALBgNV
BAgTBFdpZW4xDTALBgNVBAcTBFdpZW4xIzAhBgNVBAoTGmUtY29tbWVyY2UgbW9u
aXRvcmluZyBHbWJIMSowKAYDVQQLEyFHTE9CQUxUUlVTVCBDZXJ0aWZpY2F0aW9u
IFNlcnZpY2UxGTAXBgNVBAMTEEdMT0JBTFRSVVNUIDIwMTUwggIgMA0GCSqGSIb3
DQEBAQUAA4ICDQAwggIIAoICAQDUppeo8vSQEUOttIJGQfEvkW9jos0NINy9DDiK
ZUoKKzqodKl3oYuO8i+B94QYza3rYraSfeBB5U5UODeC78vg7c+7ysyjS/db/rh8
pwhty0PETCIUZuOdA7l3IatEayFHI8gg+irLkXYddWz4m+kPJulDL5ogBWgYx46Z
hS1BB6ZkjljhjZWApE1f9QLYgXnb1effoiL9FKdnFuzZWEzKqd3qGo6pCGRPUSG2
cqJO/1BxvTtl5L1/UxGu3xA5e132R3AX90ORA3phJV8s/PiJETzsOVQWScQhmnHg
eYt2HXY9B1m4B7GM3MfNTuH7rUNNP0DvIWIvMUROacdvIsurVEvowvoRaKzIbg7e
bMUnlglRAk0Btle/MijVCUOW98SItflU/ho6arcstSRk+0p4csP82U/ITiO5KdgN
oUhBkwJtvxKFm8bFYC3wkfyZ/SCUnnFjq9VJq5DshzmFf42FzAvo20s7DvzCdn1G
5zkmnt9V3x6E+UE2JmwCWSuO+7zpHyckYgRnhOE/2J0YTpagJe7KKANPAlHP9zU3
aaS01tbVHhlDJxYfR1HuSglMEVq2Wz1h6DsQvtZG5vQc/bhFvXz6dVrs4VIjDY4f
hpdTkVybmyjWjuVuJ60gjKfBQamXN4ss6m4YBZf2zgNS8b15NJtAxyOSdPNv7aPp
WfBVSwIBA6NjMGEwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHQYD
VR0OBBYEFMuw3T2MPN9iLCtmPJ486RVtcbTXMB8GA1UdIwQYMBaAFMuw3T2MPN9i
LCtmPJ486RVtcbTXMA0GCSqGSIb3DQEBCwUAA4ICAQCifVUEZu4WFLyCgYclGTli
9P47H+HAcwBxynWp4nPxxQ1Bo12OwS3ZZVvZieLwjsWgfb3LzEZTH1/tILYCKtYT
8p19UUpAVXGtnux26kUgjqr6ekOacGd+E96Y6MuN3R+sNNKhte3+uOcWz/jRODCN
NInSzn2B0h7/URhTNpPcCcsIFrgI11owkIoK+S+1z8TNVHIqxr0B51gLbgZAtAnO
tI6zmumJkZSselTh++OELIOgT/7r6MH067Ym0zjELa2sRYA0bSE9XYU64nv+VLfd
6IVUy6TxqylQeNcktaMvnq8RZq4YuP1dKM9A11XgLOtSMWhDZgWXkrvF8SEs/RJk
MZlDb4udS2D+FF5SsyOo4Zh67hTJoeLMP3YhYv1rDdm0SpXmblt6JMPTxtYfous3
a06j32Lr6w5KCL/rGIj7RxqtwlHD1Xz3HyuzyEpQDmlYIGIBSlvKY5YmIq726ZxA
rGcDnZ1pFcLA+F2nJLEnPL8F4quiysmwLX6jwTEgRiFlkt3K3t+TG7xtL1+pFqRX
hyxymlqCZ9FE4j0JCoGMHhD9xjRo7P93YXZ/Jvfb/BJGEqrA0fh5haICzIuqpK1s
FMC9/GiuRH0i+QpFXewE5vrjpMXm+bIZw9mMqJN7OoppO1ITPB0zAk6WQJ+5lf2T
FzPByQv2/b1pEPWtKfvj2g==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=AT, ST=Wien, L=Wien, O=e-commerce monitoring GmbH, OU=GLOBALTRUST Certification Service, CN=GLOBALTRUST 2015
#        Validity
#            Not Before: Jun 11 00:00:00 2015 GMT
#            Not After : Jun 10 00:00:00 2040 GMT
#        Subject: C=AT, ST=Wien, L=Wien, O=e-commerce monitoring GmbH, OU=GLOBALTRUST Certification Service, CN=GLOBALTRUST 2015
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d4:a6:97:a8:f2:f4:90:11:43:ad:b4:82:46:41:
#                    f1:2f:91:6f:63:a2:cd:0d:20:dc:bd:0c:38:8a:65:
#                    4a:0a:2b:3a:a8:74:a9:77:a1:8b:8e:f2:2f:81:f7:
#                    84:18:cd:ad:eb:62:b6:92:7d:e0:41:e5:4e:54:38:
#                    37:82:ef:cb:e0:ed:cf:bb:ca:cc:a3:4b:f7:5b:fe:
#                    b8:7c:a7:08:6d:cb:43:c4:4c:22:14:66:e3:9d:03:
#                    b9:77:21:ab:44:6b:21:47:23:c8:20:fa:2a:cb:91:
#                    76:1d:75:6c:f8:9b:e9:0f:26:e9:43:2f:9a:20:05:
#                    68:18:c7:8e:99:85:2d:41:07:a6:64:8e:58:e1:8d:
#                    95:80:a4:4d:5f:f5:02:d8:81:79:db:d5:e7:df:a2:
#                    22:fd:14:a7:67:16:ec:d9:58:4c:ca:a9:dd:ea:1a:
#                    8e:a9:08:64:4f:51:21:b6:72:a2:4e:ff:50:71:bd:
#                    3b:65:e4:bd:7f:53:11:ae:df:10:39:7b:5d:f6:47:
#                    70:17:f7:43:91:03:7a:61:25:5f:2c:fc:f8:89:11:
#                    3c:ec:39:54:16:49:c4:21:9a:71:e0:79:8b:76:1d:
#                    76:3d:07:59:b8:07:b1:8c:dc:c7:cd:4e:e1:fb:ad:
#                    43:4d:3f:40:ef:21:62:2f:31:44:4e:69:c7:6f:22:
#                    cb:ab:54:4b:e8:c2:fa:11:68:ac:c8:6e:0e:de:6c:
#                    c5:27:96:09:51:02:4d:01:b6:57:bf:32:28:d5:09:
#                    43:96:f7:c4:88:b5:f9:54:fe:1a:3a:6a:b7:2c:b5:
#                    24:64:fb:4a:78:72:c3:fc:d9:4f:c8:4e:23:b9:29:
#                    d8:0d:a1:48:41:93:02:6d:bf:12:85:9b:c6:c5:60:
#                    2d:f0:91:fc:99:fd:20:94:9e:71:63:ab:d5:49:ab:
#                    90:ec:87:39:85:7f:8d:85:cc:0b:e8:db:4b:3b:0e:
#                    fc:c2:76:7d:46:e7:39:26:9e:df:55:df:1e:84:f9:
#                    41:36:26:6c:02:59:2b:8e:fb:bc:e9:1f:27:24:62:
#                    04:67:84:e1:3f:d8:9d:18:4e:96:a0:25:ee:ca:28:
#                    03:4f:02:51:cf:f7:35:37:69:a4:b4:d6:d6:d5:1e:
#                    19:43:27:16:1f:47:51:ee:4a:09:4c:11:5a:b6:5b:
#                    3d:61:e8:3b:10:be:d6:46:e6:f4:1c:fd:b8:45:bd:
#                    7c:fa:75:5a:ec:e1:52:23:0d:8e:1f:86:97:53:91:
#                    5c:9b:9b:28:d6:8e:e5:6e:27:ad:20:8c:a7:c1:41:
#                    a9:97:37:8b:2c:ea:6e:18:05:97:f6:ce:03:52:f1:
#                    bd:79:34:9b:40:c7:23:92:74:f3:6f:ed:a3:e9:59:
#                    f0:55:4b
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CB:B0:DD:3D:8C:3C:DF:62:2C:2B:66:3C:9E:3C:E9:15:6D:71:B4:D7
#            X509v3 Authority Key Identifier: 
#                keyid:CB:B0:DD:3D:8C:3C:DF:62:2C:2B:66:3C:9E:3C:E9:15:6D:71:B4:D7
#
#    Signature Algorithm: sha256WithRSAEncryption
#         a2:7d:55:04:66:ee:16:14:bc:82:81:87:25:19:39:62:f4:fe:
#         3b:1f:e1:c0:73:00:71:ca:75:a9:e2:73:f1:c5:0d:41:a3:5d:
#         8e:c1:2d:d9:65:5b:d9:89:e2:f0:8e:c5:a0:7d:bd:cb:cc:46:
#         53:1f:5f:ed:20:b6:02:2a:d6:13:f2:9d:7d:51:4a:40:55:71:
#         ad:9e:ec:76:ea:45:20:8e:aa:fa:7a:43:9a:70:67:7e:13:de:
#         98:e8:cb:8d:dd:1f:ac:34:d2:a1:b5:ed:fe:b8:e7:16:cf:f8:
#         d1:38:30:8d:34:89:d2:ce:7d:81:d2:1e:ff:51:18:53:36:93:
#         dc:09:cb:08:16:b8:08:d7:5a:30:90:8a:0a:f9:2f:b5:cf:c4:
#         cd:54:72:2a:c6:bd:01:e7:58:0b:6e:06:40:b4:09:ce:b4:8e:
#         b3:9a:e9:89:91:94:ac:7a:54:e1:fb:e3:84:2c:83:a0:4f:fe:
#         eb:e8:c1:f4:eb:b6:26:d3:38:c4:2d:ad:ac:45:80:34:6d:21:
#         3d:5d:85:3a:e2:7b:fe:54:b7:dd:e8:85:54:cb:a4:f1:ab:29:
#         50:78:d7:24:b5:a3:2f:9e:af:11:66:ae:18:b8:fd:5d:28:cf:
#         40:d7:55:e0:2c:eb:52:31:68:43:66:05:97:92:bb:c5:f1:21:
#         2c:fd:12:64:31:99:43:6f:8b:9d:4b:60:fe:14:5e:52:b3:23:
#         a8:e1:98:7a:ee:14:c9:a1:e2:cc:3f:76:21:62:fd:6b:0d:d9:
#         b4:4a:95:e6:6e:5b:7a:24:c3:d3:c6:d6:1f:a2:eb:37:6b:4e:
#         a3:df:62:eb:eb:0e:4a:08:bf:eb:18:88:fb:47:1a:ad:c2:51:
#         c3:d5:7c:f7:1f:2b:b3:c8:4a:50:0e:69:58:20:62:01:4a:5b:
#         ca:63:96:26:22:ae:f6:e9:9c:40:ac:67:03:9d:9d:69:15:c2:
#         c0:f8:5d:a7:24:b1:27:3c:bf:05:e2:ab:a2:ca:c9:b0:2d:7e:
#         a3:c1:31:20:46:21:65:92:dd:ca:de:df:93:1b:bc:6d:2f:5f:
#         a9:16:a4:57:87:2c:72:9a:5a:82:67:d1:44:e2:3d:09:0a:81:
#         8c:1e:10:fd:c6:34:68:ec:ff:77:61:76:7f:26:f7:db:fc:12:
#         46:12:aa:c0:d1:f8:79:85:a2:02:cc:8b:aa:a4:ad:6c:14:c0:
#         bd:fc:68:ae:44:7d:22:f9:0a:45:5d:ec:04:e6:fa:e3:a4:c5:
#         e6:f9:b2:19:c3:d9:8c:a8:93:7b:3a:8a:69:3b:52:13:3c:1d:
#         33:02:4e:96:40:9f:b9:95:fd:93:17:33:c1:c9:0b:f6:fd:bd:
#         69:10:f5:ad:29:fb:e3:da

[p11-kit-object-v1]
label: "GLOBALTRUST 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GLOBALTRUST 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5a:4b:bd:5a:fb:4f:8a:5b:fa:65:e5
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=AT, O=e-commerce monitoring GmbH, CN=GLOBALTRUST 2020
#        Validity
#            Not Before: Feb 10 00:00:00 2020 GMT
#            Not After : Jun 10 00:00:00 2040 GMT
#        Subject: C=AT, O=e-commerce monitoring GmbH, CN=GLOBALTRUST 2020
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ae:2e:56:ad:1b:1c:ef:f6:95:8f:a0:77:1b:2b:
#                    d3:63:8f:84:4d:45:a2:0f:9f:5b:45:ab:59:7b:51:
#                    34:f9:ec:8b:8a:78:c5:dd:6b:af:bd:c4:df:93:45:
#                    1e:bf:91:38:0b:ae:0e:16:e7:41:73:f8:db:bb:d1:
#                    b8:51:e0:cb:83:3b:73:38:6e:77:8a:0f:59:63:26:
#                    cd:a7:2a:ce:54:fb:b8:e2:c0:7c:47:ce:60:7c:3f:
#                    b2:73:f2:c0:19:b6:8a:92:87:35:0d:90:28:a2:e4:
#                    15:04:63:3e:ba:af:ee:7c:5e:cc:a6:8b:50:b2:38:
#                    f7:41:63:ca:ce:ff:69:8f:68:0e:95:36:e5:cc:b9:
#                    8c:09:ca:4b:dd:31:90:96:c8:cc:1f:fd:56:96:34:
#                    db:8e:1c:ea:2c:be:85:2e:63:dd:aa:a9:95:d3:fd:
#                    29:95:13:f0:c8:98:93:d9:2d:16:47:90:11:83:a2:
#                    3a:22:a2:28:57:a2:eb:fe:c0:8c:28:a0:a6:7d:e7:
#                    2a:42:3b:82:80:63:a5:63:1f:19:cc:7c:b2:66:a8:
#                    c2:d3:6d:37:6f:e2:7e:06:51:d9:45:84:1f:12:ce:
#                    24:52:64:85:0b:48:80:4e:87:b1:22:22:30:aa:eb:
#                    ae:be:e0:02:e0:40:e8:b0:42:80:03:51:aa:b4:7e:
#                    aa:44:d7:43:61:f3:a2:6b:16:89:49:a4:a3:a4:2b:
#                    8a:02:c4:78:f4:68:8a:c1:e4:7a:36:b1:6f:1b:96:
#                    1b:77:49:8d:d4:c9:06:72:8f:cf:53:e3:dc:17:85:
#                    20:4a:dc:98:27:d3:91:26:2b:47:1e:69:07:af:de:
#                    a2:e4:e4:d4:6b:0b:b3:5e:7c:d4:24:80:47:29:69:
#                    3b:6e:e8:ac:fd:40:eb:d8:ed:71:71:2b:f2:e8:58:
#                    1d:eb:41:97:22:c5:1f:d4:39:d0:27:8f:87:e3:18:
#                    f4:e0:a9:46:0d:f5:74:3a:82:2e:d0:6e:2c:91:a3:
#                    31:5c:3b:46:ea:7b:04:10:56:5e:80:1d:f5:a5:65:
#                    e8:82:fc:e2:07:8c:62:45:f5:20:de:46:70:86:a1:
#                    bc:93:d3:1e:74:a6:6c:b0:2c:f7:03:0c:88:0c:cb:
#                    d4:72:53:86:bc:60:46:f3:98:6a:c2:f1:bf:43:f9:
#                    70:20:77:ca:37:41:79:55:52:63:8d:5b:12:9f:c5:
#                    68:c4:88:9d:ac:f2:30:ab:b7:a3:31:97:67:ad:8f:
#                    17:0f:6c:c7:73:ed:24:94:6b:c8:83:9a:d0:9a:37:
#                    49:04:ab:b1:16:c8:6c:49:49:2d:ab:a1:d0:8c:92:
#                    f2:41:4a:79:21:25:db:63:d7:b6:9c:a7:7e:42:69:
#                    fb:3a:63
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                DC:2E:1F:D1:61:37:79:E4:AB:D5:D5:B3:12:71:68:3D:6A:68:9C:22
#            X509v3 Authority Key Identifier: 
#                keyid:DC:2E:1F:D1:61:37:79:E4:AB:D5:D5:B3:12:71:68:3D:6A:68:9C:22
#
#    Signature Algorithm: sha256WithRSAEncryption
#         91:f0:42:02:68:40:ee:c3:68:c0:54:2f:df:ec:62:c3:c3:9e:
#         8a:a0:31:28:aa:83:8e:a4:56:96:12:10:86:56:ba:97:72:d2:
#         54:30:7c:ad:19:d5:1d:68:6f:fb:14:42:d8:8d:0e:f3:b5:d1:
#         a5:e3:02:42:5e:dc:e8:46:58:07:35:02:30:e0:bc:74:4a:c1:
#         43:2a:ff:db:1a:d0:b0:af:6c:c3:fd:cb:b3:f5:7f:6d:03:2e:
#         59:56:9d:2d:2d:35:8c:b2:d6:43:17:2c:92:0a:cb:5d:e8:8c:
#         0f:4b:70:43:d0:82:ff:a8:cc:bf:a4:94:c0:be:87:bd:8a:e3:
#         93:7b:c6:8f:9b:16:9d:27:65:bc:7a:c5:42:82:6c:5c:07:d0:
#         a9:c1:88:60:44:e9:98:85:16:5f:f8:8f:ca:01:10:ce:25:c3:
#         f9:60:1b:a0:c5:97:c3:d3:2c:88:31:a2:bd:30:ec:d0:d0:c0:
#         12:f1:c1:39:e3:e5:f5:f8:d6:4a:dd:34:cd:fb:6f:c1:4f:e3:
#         00:8b:56:e2:92:f7:28:b2:42:77:72:23:67:c7:3f:11:15:b2:
#         c4:03:05:be:bb:11:7b:0a:bf:a8:6e:e7:ff:58:43:cf:9b:67:
#         a0:80:07:b6:1d:ca:ad:6d:ea:41:11:7e:2d:74:93:fb:c2:bc:
#         be:51:44:c5:ef:68:25:27:80:e3:c8:a0:d4:12:ec:d9:a5:37:
#         1d:37:7c:b4:91:ca:da:d4:b1:96:81:ef:68:5c:76:10:49:af:
#         7e:a5:37:80:b1:1c:52:bd:33:81:4c:8f:f9:dd:65:d9:14:cd:
#         8a:25:58:f4:e2:c5:83:a5:09:90:d4:6c:14:63:b5:40:df:eb:
#         c0:fc:c4:58:7e:0d:14:16:87:54:27:6e:56:e4:70:84:b8:6c:
#         32:12:7e:82:31:43:be:d7:dd:7c:a1:ad:ae:d6:ab:20:12:ef:
#         0a:c3:10:8c:49:96:35:dc:0b:75:5e:b1:4f:d5:4f:34:0e:11:
#         20:07:75:43:45:e9:a3:11:da:ac:a3:99:c2:b6:79:27:e2:b9:
#         ef:c8:e2:f6:35:29:7a:74:fa:c5:7f:82:05:62:a6:0a:ea:68:
#         b2:79:47:06:6e:f2:57:a8:15:33:c6:f7:78:4a:3d:42:7b:6b:
#         7e:fe:f7:46:ea:d1:eb:8e:ef:88:68:5b:e8:c1:d9:71:7e:fd:
#         64:ef:ff:67:47:88:58:25:2f:3e:86:07:bd:fb:a8:e5:82:a8:
#         ac:a5:d3:69:43:cd:31:88:49:84:53:92:c0:b1:39:1b:39:83:
#         01:30:c4:f2:a9:fa:d0:03:bd:72:37:60:56:1f:36:7c:bd:39:
#         91:f5:6d:0d:bf:7b:d7:92

[p11-kit-object-v1]
label: "GTS Root R1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:93:6f:31:b0:13:49:88:6b:a2:17
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R1
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C=US, O=Google Trust Services LLC, CN=GTS Root R1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:11:02:8b:1e:e3:a1:77:9b:3b:dc:bf:94:3e:
#                    b7:95:a7:40:3c:a1:fd:82:f9:7d:32:06:82:71:f6:
#                    f6:8c:7f:fb:e8:db:bc:6a:2e:97:97:a3:8c:4b:f9:
#                    2b:f6:b1:f9:ce:84:1d:b1:f9:c5:97:de:ef:b9:f2:
#                    a3:e9:bc:12:89:5e:a7:aa:52:ab:f8:23:27:cb:a4:
#                    b1:9c:63:db:d7:99:7e:f0:0a:5e:eb:68:a6:f4:c6:
#                    5a:47:0d:4d:10:33:e3:4e:b1:13:a3:c8:18:6c:4b:
#                    ec:fc:09:90:df:9d:64:29:25:23:07:a1:b4:d2:3d:
#                    2e:60:e0:cf:d2:09:87:bb:cd:48:f0:4d:c2:c2:7a:
#                    88:8a:bb:ba:cf:59:19:d6:af:8f:b0:07:b0:9e:31:
#                    f1:82:c1:c0:df:2e:a6:6d:6c:19:0e:b5:d8:7e:26:
#                    1a:45:03:3d:b0:79:a4:94:28:ad:0f:7f:26:e5:a8:
#                    08:fe:96:e8:3c:68:94:53:ee:83:3a:88:2b:15:96:
#                    09:b2:e0:7a:8c:2e:75:d6:9c:eb:a7:56:64:8f:96:
#                    4f:68:ae:3d:97:c2:84:8f:c0:bc:40:c0:0b:5c:bd:
#                    f6:87:b3:35:6c:ac:18:50:7f:84:e0:4c:cd:92:d3:
#                    20:e9:33:bc:52:99:af:32:b5:29:b3:25:2a:b4:48:
#                    f9:72:e1:ca:64:f7:e6:82:10:8d:e8:9d:c2:8a:88:
#                    fa:38:66:8a:fc:63:f9:01:f9:78:fd:7b:5c:77:fa:
#                    76:87:fa:ec:df:b1:0e:79:95:57:b4:bd:26:ef:d6:
#                    01:d1:eb:16:0a:bb:8e:0b:b5:c5:c5:8a:55:ab:d3:
#                    ac:ea:91:4b:29:cc:19:a4:32:25:4e:2a:f1:65:44:
#                    d0:02:ce:aa:ce:49:b4:ea:9f:7c:83:b0:40:7b:e7:
#                    43:ab:a7:6c:a3:8f:7d:89:81:fa:4c:a5:ff:d5:8e:
#                    c3:ce:4b:e0:b5:d8:b3:8e:45:cf:76:c0:ed:40:2b:
#                    fd:53:0f:b0:a7:d5:3b:0d:b1:8a:a2:03:de:31:ad:
#                    cc:77:ea:6f:7b:3e:d6:df:91:22:12:e6:be:fa:d8:
#                    32:fc:10:63:14:51:72:de:5d:d6:16:93:bd:29:68:
#                    33:ef:3a:66:ec:07:8a:26:df:13:d7:57:65:78:27:
#                    de:5e:49:14:00:a2:00:7f:9a:a8:21:b6:a9:b1:95:
#                    b0:a5:b9:0d:16:11:da:c7:6c:48:3c:40:e0:7e:0d:
#                    5a:cd:56:3c:d1:97:05:b9:cb:4b:ed:39:4b:9c:c4:
#                    3f:d2:55:13:6e:24:b0:d6:71:fa:f4:c1:ba:cc:ed:
#                    1b:f5:fe:81:41:d8:00:98:3d:3a:c8:ae:7a:98:37:
#                    18:05:95
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E4:AF:2B:26:71:1A:2B:48:27:85:2F:52:66:2C:EF:F0:89:13:71:3E
#    Signature Algorithm: sha384WithRSAEncryption
#         9f:aa:42:26:db:0b:9b:be:ff:1e:96:92:2e:3e:a2:65:4a:6a:
#         98:ba:22:cb:7d:c1:3a:d8:82:0a:06:c6:f6:a5:de:c0:4e:87:
#         66:79:a1:f9:a6:58:9c:aa:f9:b5:e6:60:e7:e0:e8:b1:1e:42:
#         41:33:0b:37:3d:ce:89:70:15:ca:b5:24:a8:cf:6b:b5:d2:40:
#         21:98:cf:22:34:cf:3b:c5:22:84:e0:c5:0e:8a:7c:5d:88:e4:
#         35:24:ce:9b:3e:1a:54:1e:6e:db:b2:87:a7:fc:f3:fa:81:55:
#         14:62:0a:59:a9:22:05:31:3e:82:d6:ee:db:57:34:bc:33:95:
#         d3:17:1b:e8:27:a2:8b:7b:4e:26:1a:7a:5a:64:b6:d1:ac:37:
#         f1:fd:a0:f3:38:ec:72:f0:11:75:9d:cb:34:52:8d:e6:76:6b:
#         17:c6:df:86:ab:27:8e:49:2b:75:66:81:10:21:a6:ea:3e:f4:
#         ae:25:ff:7c:15:de:ce:8c:25:3f:ca:62:70:0a:f7:2f:09:66:
#         07:c8:3f:1c:fc:f0:db:45:30:df:62:88:c1:b5:0f:9d:c3:9f:
#         4a:de:59:59:47:c5:87:22:36:e6:82:a7:ed:0a:b9:e2:07:a0:
#         8d:7b:7a:4a:3c:71:d2:e2:03:a1:1f:32:07:dd:1b:e4:42:ce:
#         0c:00:45:61:80:b5:0b:20:59:29:78:bd:f9:55:cb:63:c5:3c:
#         4c:f4:b6:ff:db:6a:5f:31:6b:99:9e:2c:c1:6b:50:a4:d7:e6:
#         18:14:bd:85:3f:67:ab:46:9f:a0:ff:42:a7:3a:7f:5c:cb:5d:
#         b0:70:1d:2b:34:f5:d4:76:09:0c:eb:78:4c:59:05:f3:33:42:
#         c3:61:15:10:1b:77:4d:ce:22:8c:d4:85:f2:45:7d:b7:53:ea:
#         ef:40:5a:94:0a:5c:20:5f:4e:40:5d:62:22:76:df:ff:ce:61:
#         bd:8c:23:78:d2:37:02:e0:8e:de:d1:11:37:89:f6:bf:ed:49:
#         07:62:ae:92:ec:40:1a:af:14:09:d9:d0:4e:b2:a2:f7:be:ee:
#         ee:d8:ff:dc:1a:2d:de:b8:36:71:e2:fc:79:b7:94:25:d1:48:
#         73:5b:a1:35:e7:b3:99:67:75:c1:19:3a:2b:47:4e:d3:42:8e:
#         fd:31:c8:16:66:da:d2:0c:3c:db:b3:8e:c9:a1:0d:80:0f:7b:
#         16:77:14:bf:ff:db:09:94:b2:93:bc:20:58:15:e9:db:71:43:
#         f3:de:10:c3:00:dc:a8:2a:95:b6:c2:d6:3f:90:6b:76:db:6c:
#         fe:8c:bc:f2:70:35:0c:dc:99:19:35:dc:d7:c8:46:63:d5:36:
#         71:ae:57:fb:b7:82:6d:dc

[p11-kit-object-v1]
label: "GTS Root R2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:ae:c5:8d:04:25:1a:ab:11:25:aa
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R2
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C=US, O=Google Trust Services LLC, CN=GTS Root R2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ce:de:fd:a6:fb:ec:ec:14:34:3c:07:06:5a:6c:
#                    59:f7:19:35:dd:f7:c1:9d:55:aa:d3:cd:3b:a4:93:
#                    72:ef:0a:fa:6d:9d:f6:f0:85:80:5b:a1:48:52:9f:
#                    39:c5:b7:ee:28:ac:ef:cb:76:68:14:b9:df:ad:01:
#                    6c:99:1f:c4:22:1d:9f:fe:72:77:e0:2c:5b:af:e4:
#                    04:bf:4f:72:a0:1a:34:98:e8:39:68:ec:95:25:7b:
#                    76:a1:e6:69:b9:85:19:bd:89:8c:fe:ad:ed:36:ea:
#                    73:bc:ff:83:e2:cb:7d:c1:d2:ce:4a:b3:8d:05:9e:
#                    8b:49:93:df:c1:5b:d0:6e:5e:f0:2e:30:2e:82:fc:
#                    fa:bc:b4:17:0a:48:e5:88:9b:c5:9b:6b:de:b0:ca:
#                    b4:03:f0:da:f4:90:b8:65:64:f7:5c:4c:ad:e8:7e:
#                    66:5e:99:d7:b8:c2:3e:c8:d0:13:9d:ad:ee:e4:45:
#                    7b:89:55:f7:8a:1f:62:52:84:12:b3:c2:40:97:e3:
#                    8a:1f:47:91:a6:74:5a:d2:f8:b1:63:28:10:b8:b3:
#                    09:b8:56:77:40:a2:26:98:79:c6:fe:df:25:ee:3e:
#                    e5:a0:7f:d4:61:0f:51:4b:3c:3f:8c:da:e1:70:74:
#                    d8:c2:68:a1:f9:c1:0c:e9:a1:e2:7f:bb:55:3c:76:
#                    06:ee:6a:4e:cc:92:88:30:4d:9a:bd:4f:0b:48:9a:
#                    84:b5:98:a3:d5:fb:73:c1:57:61:dd:28:56:75:13:
#                    ae:87:8e:e7:0c:51:09:10:75:88:4c:bc:8d:f9:7b:
#                    3c:d4:22:48:1f:2a:dc:eb:6b:bb:44:b1:cb:33:71:
#                    32:46:af:ad:4a:f1:8c:e8:74:3a:ac:e7:1a:22:73:
#                    80:d2:30:f7:25:42:c7:22:3b:3b:12:ad:96:2e:c6:
#                    c3:76:07:aa:20:b7:35:49:57:e9:92:49:e8:76:16:
#                    72:31:67:2b:96:7e:8a:a3:c7:94:56:22:bf:6a:4b:
#                    7e:01:21:b2:23:32:df:e4:9a:44:6d:59:5b:5d:f5:
#                    00:a0:1c:9b:c6:78:97:8d:90:ff:9b:c8:aa:b4:af:
#                    11:51:39:5e:d9:fb:67:ad:d5:5b:11:9d:32:9a:1b:
#                    bd:d5:ba:5b:a5:c9:cb:25:69:53:55:27:5c:e0:ca:
#                    36:cb:88:61:fb:1e:b7:d0:cb:ee:16:fb:d3:a6:4c:
#                    de:92:a5:d4:e2:df:f5:06:54:de:2e:9d:4b:b4:93:
#                    30:aa:81:ce:dd:1a:dc:51:73:0d:4f:70:e9:e5:b6:
#                    16:21:19:79:b2:e6:89:0b:75:64:ca:d5:ab:bc:09:
#                    c1:18:a1:ff:d4:54:a1:85:3c:fd:14:24:03:b2:87:
#                    d3:a4:b7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                BB:FF:CA:8E:23:9F:4F:99:CA:DB:E2:68:A6:A5:15:27:17:1E:D9:0E
#    Signature Algorithm: sha384WithRSAEncryption
#         1f:ca:ce:dd:c7:be:a1:9f:d9:27:4c:0b:dc:17:98:11:6a:88:
#         de:3d:e6:71:56:72:b2:9e:1a:4e:9c:d5:2b:98:24:5d:9b:6b:
#         7b:b0:33:82:09:bd:df:25:46:ea:98:9e:b6:1b:fe:83:3c:d2:
#         62:61:c1:04:ed:ce:e0:c5:c9:c8:13:13:55:e7:a8:63:ad:8c:
#         7b:01:fe:77:30:e1:ce:68:9b:05:f8:12:ee:79:31:a0:41:45:
#         35:28:0a:71:a4:24:4f:8c:dc:3c:82:07:5f:66:dc:7d:10:fe:
#         0c:61:b3:05:95:ee:e1:ae:81:0f:a8:f8:c7:8f:4d:a8:23:02:
#         26:6b:1d:83:52:55:ce:b5:2f:00:ca:80:40:e0:e1:74:ac:60:
#         f5:87:80:9d:ae:36:64:91:5d:b0:68:18:ea:8a:61:c9:77:a8:
#         97:c4:c9:c7:a5:fc:55:4b:f3:f0:7f:b9:65:3d:27:68:d0:cc:
#         6b:fa:53:9d:e1:91:1a:c9:5d:1a:96:6d:32:87:ed:03:20:c8:
#         02:ce:5a:be:d9:ea:fd:b2:4d:c4:2f:1b:df:5f:7a:f5:f8:8b:
#         c6:ee:31:3a:25:51:55:67:8d:64:32:7b:e9:9e:c3:82:ba:2a:
#         2d:e9:1e:b4:e0:48:06:a2:fc:67:af:1f:22:02:73:fb:20:0a:
#         af:9d:54:4b:a1:cd:ff:60:47:b0:3f:5d:ef:1b:56:bd:97:21:
#         96:2d:0a:d1:5e:9d:38:02:47:6c:b9:f4:f6:23:25:b8:a0:6a:
#         9a:2b:77:08:fa:c4:b1:28:90:26:58:08:3c:e2:7e:aa:d7:3d:
#         6f:ba:31:88:0a:05:eb:27:b5:a1:49:ee:a0:45:54:7b:e6:27:
#         65:99:20:21:a8:a3:bc:fb:18:96:bb:52:6f:0c:ed:83:51:4c:
#         e9:59:e2:20:60:c5:c2:65:92:82:8c:f3:10:1f:0e:8a:97:be:
#         77:82:6d:3f:8f:1d:5d:bc:49:27:bd:cc:4f:0f:e1:ce:76:86:
#         04:23:c5:c0:8c:12:5b:fd:db:84:a0:24:f1:48:ff:64:7c:d0:
#         be:5c:16:d1:ef:99:ad:c0:1f:fb:cb:ae:bc:38:22:06:26:64:
#         da:da:97:0e:3f:28:15:44:a8:4f:00:ca:f0:9a:cc:cf:74:6a:
#         b4:3e:3c:eb:95:ec:b5:d3:5a:d8:81:99:e9:43:18:37:eb:b3:
#         bb:d1:58:62:41:f3:66:d2:8f:aa:78:95:54:20:c3:5a:2e:74:
#         2b:d5:d1:be:18:69:c0:ac:d5:a4:cf:39:ba:51:84:03:65:e9:
#         62:c0:62:fe:d8:4d:55:96:e2:d0:11:fa:48:34:11:ec:9e:ed:
#         05:1d:e4:c8:d6:1d:86:cb

[p11-kit-object-v1]
label: "GTS Root R3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEH08zhzMpiqGE3svHIVhBiepWnStLhcYd
TCe8fyZRcm/in9ajysxFFEaLre9+hozssX4v/6lxnRiERQRBVW4r6iZ/u5AB40sZ
uuRUlkUJsdVskUSthBOOmowNgAwy9uAn
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICCTCCAY6gAwIBAgINAgPluILrIPglJ209ZjAKBggqhkjOPQQDAzBHMQswCQYD
VQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZpY2VzIExMQzEUMBIG
A1UEAxMLR1RTIFJvb3QgUjMwHhcNMTYwNjIyMDAwMDAwWhcNMzYwNjIyMDAwMDAw
WjBHMQswCQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZpY2Vz
IExMQzEUMBIGA1UEAxMLR1RTIFJvb3QgUjMwdjAQBgcqhkjOPQIBBgUrgQQAIgNi
AAQfTzOHMymKoYTey8chWEGJ6ladK0uFxh1MJ7x/JlFyb+Kf1qPKzEUURout736G
jOyxfi//qXGdGIRFBEFVbivqJn+7kAHjSxm65FSWRQmx1WyRRK2EE46ajA2ADDL2
4CejQjBAMA4GA1UdDwEB/wQEAwIBhjAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQW
BBTB8Sa6oC2uhYHP0/EqEr24Cmf9vDAKBggqhkjOPQQDAwNpADBmAjEA9uEglRR7
VKOQFhG/hMjqb2sXnh5GmCCbn9MN2azTL818+FsuVbu/3ZL3pAzcMeGiAjEA/Jdm
ZuVDFhOD3cffL74UOO0BzrEXGhF16b0DjyZ+hOXJYKaV11RZt+cRLInUue4X
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:b8:82:eb:20:f8:25:27:6d:3d:66
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R3
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C=US, O=Google Trust Services LLC, CN=GTS Root R3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:1f:4f:33:87:33:29:8a:a1:84:de:cb:c7:21:58:
#                    41:89:ea:56:9d:2b:4b:85:c6:1d:4c:27:bc:7f:26:
#                    51:72:6f:e2:9f:d6:a3:ca:cc:45:14:46:8b:ad:ef:
#                    7e:86:8c:ec:b1:7e:2f:ff:a9:71:9d:18:84:45:04:
#                    41:55:6e:2b:ea:26:7f:bb:90:01:e3:4b:19:ba:e4:
#                    54:96:45:09:b1:d5:6c:91:44:ad:84:13:8e:9a:8c:
#                    0d:80:0c:32:f6:e0:27
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C1:F1:26:BA:A0:2D:AE:85:81:CF:D3:F1:2A:12:BD:B8:0A:67:FD:BC
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:f6:e1:20:95:14:7b:54:a3:90:16:11:bf:84:
#         c8:ea:6f:6b:17:9e:1e:46:98:20:9b:9f:d3:0d:d9:ac:d3:2f:
#         cd:7c:f8:5b:2e:55:bb:bf:dd:92:f7:a4:0c:dc:31:e1:a2:02:
#         31:00:fc:97:66:66:e5:43:16:13:83:dd:c7:df:2f:be:14:38:
#         ed:01:ce:b1:17:1a:11:75:e9:bd:03:8f:26:7e:84:e5:c9:60:
#         a6:95:d7:54:59:b7:e7:11:2c:89:d4:b9:ee:17

[p11-kit-object-v1]
label: "GTS Root R4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE83Rzp2iLYK5DuDXFgTB7S0md+8Fhzube
Rr1r1WEYNa5A3XP3iZEwWus87oV8okB2O6nGuEfYKueSkWpz6bFyOZ8pn6KY019e
WIZlD6GEZQbR3IvJx3PIjGov5cSr0R2K
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GTS Root R4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:c0:68:ef:63:1a:9c:72:90:50:52
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R4
#        Validity
#            Not Before: Jun 22 00:00:00 2016 GMT
#            Not After : Jun 22 00:00:00 2036 GMT
#        Subject: C=US, O=Google Trust Services LLC, CN=GTS Root R4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:f3:74:73:a7:68:8b:60:ae:43:b8:35:c5:81:30:
#                    7b:4b:49:9d:fb:c1:61:ce:e6:de:46:bd:6b:d5:61:
#                    18:35:ae:40:dd:73:f7:89:91:30:5a:eb:3c:ee:85:
#                    7c:a2:40:76:3b:a9:c6:b8:47:d8:2a:e7:92:91:6a:
#                    73:e9:b1:72:39:9f:29:9f:a2:98:d3:5f:5e:58:86:
#                    65:0f:a1:84:65:06:d1:dc:8b:c9:c7:73:c8:8c:6a:
#                    2f:e5:c4:ab:d1:1d:8a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                80:4C:D6:EB:74:FF:49:36:A3:D5:D8:FC:B5:3E:C5:6A:F0:94:1D:8C
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:e8:40:ff:83:de:03:f4:9f:ae:1d:7a:a7:2e:
#         b9:af:4f:f6:83:1d:0e:2d:85:01:1d:d1:d9:6a:ec:0f:c2:af:
#         c7:5e:56:5e:5c:d5:1c:58:22:28:0b:f7:30:b6:2f:b1:7c:02:
#         31:00:f0:61:3c:a7:f4:a0:82:e3:21:d5:84:1d:73:86:9c:2d:
#         af:ca:34:9b:f1:9f:b9:23:36:e2:bc:60:03:9d:80:b3:9a:56:
#         c8:e1:e2:bb:14:79:ca:cd:21:d4:94:b5:49:43

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvrgVe//UfH1nrYNke8hC
Uy3f9oQIIGHWAVlqnEQRr+92/ZV+zmEwu3qDXwK9AWbK7hWNb6EwnL2hhZ6UOvNW
iAAxz9juapYC2e0DjPt1befquFUWBRaa9OBesYjAZIVcFU2Ix7e64HXprQU9nceJ
SOC7KMgD4TCTZF5SwFlwIjVXiIrxlQqD17wxcwE07e9GceBrAqg1cmuXm2bgyxx5
X9gaBGgeRwLmnWDiNpcB3841kt++Z8dtd1k7j53WkBWUvEI0EME5+bEnPn7WinXF
sq+W06Lem+SYvn3h6YGttm/81w7a4DSwDRp35+MImO9Y+pyEtzavwt+s0vQQBnBx
NQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            18:ac:b5:6a:fd:69:b6:15:3a:63:6c:af:da:fa:c4:a1
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=GeoTrust Inc., CN=GeoTrust Primary Certification Authority
#        Validity
#            Not Before: Nov 27 00:00:00 2006 GMT
#            Not After : Jul 16 23:59:59 2036 GMT
#        Subject: C=US, O=GeoTrust Inc., CN=GeoTrust Primary Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:be:b8:15:7b:ff:d4:7c:7d:67:ad:83:64:7b:c8:
#                    42:53:2d:df:f6:84:08:20:61:d6:01:59:6a:9c:44:
#                    11:af:ef:76:fd:95:7e:ce:61:30:bb:7a:83:5f:02:
#                    bd:01:66:ca:ee:15:8d:6f:a1:30:9c:bd:a1:85:9e:
#                    94:3a:f3:56:88:00:31:cf:d8:ee:6a:96:02:d9:ed:
#                    03:8c:fb:75:6d:e7:ea:b8:55:16:05:16:9a:f4:e0:
#                    5e:b1:88:c0:64:85:5c:15:4d:88:c7:b7:ba:e0:75:
#                    e9:ad:05:3d:9d:c7:89:48:e0:bb:28:c8:03:e1:30:
#                    93:64:5e:52:c0:59:70:22:35:57:88:8a:f1:95:0a:
#                    83:d7:bc:31:73:01:34:ed:ef:46:71:e0:6b:02:a8:
#                    35:72:6b:97:9b:66:e0:cb:1c:79:5f:d8:1a:04:68:
#                    1e:47:02:e6:9d:60:e2:36:97:01:df:ce:35:92:df:
#                    be:67:c7:6d:77:59:3b:8f:9d:d6:90:15:94:bc:42:
#                    34:10:c1:39:f9:b1:27:3e:7e:d6:8a:75:c5:b2:af:
#                    96:d3:a2:de:9b:e4:98:be:7d:e1:e9:81:ad:b6:6f:
#                    fc:d7:0e:da:e0:34:b0:0d:1a:77:e7:e3:08:98:ef:
#                    58:fa:9c:84:b7:36:af:c2:df:ac:d2:f4:10:06:70:
#                    71:35
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                2C:D5:50:41:97:15:8B:F0:8F:36:61:5B:4A:FB:6B:D9:99:C9:33:92
#    Signature Algorithm: sha1WithRSAEncryption
#         5a:70:7f:2c:dd:b7:34:4f:f5:86:51:a9:26:be:4b:b8:aa:f1:
#         71:0d:dc:61:c7:a0:ea:34:1e:7a:77:0f:04:35:e8:27:8f:6c:
#         90:bf:91:16:24:46:3e:4a:4e:ce:2b:16:d5:0b:52:1d:fc:1f:
#         67:a2:02:45:31:4f:ce:f3:fa:03:a7:79:9d:53:6a:d9:da:63:
#         3a:f8:80:d7:d3:99:e1:a5:e1:be:d4:55:71:98:35:3a:be:93:
#         ea:ae:ad:42:b2:90:6f:e0:fc:21:4d:35:63:33:89:49:d6:9b:
#         4e:ca:c7:e7:4e:09:00:f7:da:c7:ef:99:62:99:77:b6:95:22:
#         5e:8a:a0:ab:f4:b8:78:98:ca:38:19:99:c9:72:9e:78:cd:4b:
#         ac:af:19:a0:73:12:2d:fc:c2:41:ba:81:91:da:16:5a:31:b7:
#         f9:b4:71:80:12:48:99:72:73:5a:59:53:c1:63:52:33:ed:a7:
#         c9:d2:39:02:70:fa:e0:b1:42:66:29:aa:9b:51:ed:30:54:22:
#         14:5f:d9:ab:1d:c1:e4:94:f0:f8:f5:2b:f7:ea:ca:78:46:d6:
#         b8:91:fd:a6:0d:2b:1a:14:01:3e:80:f0:42:a0:95:07:5e:6d:
#         cd:cc:4b:a4:45:8d:ab:12:e8:b3:de:5a:e5:a0:7c:e8:0f:22:
#         1d:5a:e9:59

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEFbHo/QMVQ+Ws64c3EWLv0oM2Un1FVwtK
jXtUOzpuXxUCwFCmzyUvfcpIuMdQYxwqIQh8mjbYC/7RJsVYMTAoJfNdXaO4tqW0
ku1sLJ/r3UOJojxLSJEdUOwm39ZgLr0h
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3c:b2:f4:48:0a:00:e2:fe:eb:24:3b:5e:60:3e:c3:6b
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=GeoTrust Inc., OU=(c) 2007 GeoTrust Inc. - For authorized use only, CN=GeoTrust Primary Certification Authority - G2
#        Validity
#            Not Before: Nov  5 00:00:00 2007 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, O=GeoTrust Inc., OU=(c) 2007 GeoTrust Inc. - For authorized use only, CN=GeoTrust Primary Certification Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:15:b1:e8:fd:03:15:43:e5:ac:eb:87:37:11:62:
#                    ef:d2:83:36:52:7d:45:57:0b:4a:8d:7b:54:3b:3a:
#                    6e:5f:15:02:c0:50:a6:cf:25:2f:7d:ca:48:b8:c7:
#                    50:63:1c:2a:21:08:7c:9a:36:d8:0b:fe:d1:26:c5:
#                    58:31:30:28:25:f3:5d:5d:a3:b8:b6:a5:b4:92:ed:
#                    6c:2c:9f:eb:dd:43:89:a2:3c:4b:48:91:1d:50:ec:
#                    26:df:d6:60:2e:bd:21
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                15:5F:35:57:51:55:FB:25:B2:AD:03:69:FC:01:A3:FA:BE:11:55:D5
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:64:96:59:a6:e8:09:de:8b:ba:fa:5a:88:88:f0:
#         1f:91:d3:46:a8:f2:4a:4c:02:63:fb:6c:5f:38:db:2e:41:93:
#         a9:0e:e6:9d:dc:31:1c:b2:a0:a7:18:1c:79:e1:c7:36:02:30:
#         3a:56:af:9a:74:6c:f6:fb:83:e0:33:d3:08:5f:a1:9c:c2:5b:
#         9f:46:d6:b6:cb:91:06:63:a2:06:e7:33:ac:3e:a8:81:12:d0:
#         cb:ba:d0:92:0b:b6:9e:96:aa:04:0f:8a

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3OJeYlgdM1c5MjP668uH
jKfUSt0GiOpkjjGYpTiQHpjPLmMr8Ea8RLKJocAoDElwIZWfZMCmkxICZSaGxqWJ
8PrXhKBwr08alz8GRNXJ63IQfeQxKPscYeYoB0RzkiJppwOIbJ1jyFLamCfnCExw
PrTJEsHFZ4NdM/MDEexq0FPi0bo2YJSAu2FjbFsXft9AlB6rDcIhKHCI/9YmbGxg
BCVOVX5977+USN63Hd1wjQVfiKWb8sLu6tFAQW1iOB1WBsUDR1EgGfx7EAsOYq52
Vb9fd74+SQFTPZglA3YkWh2024nqeeW2szs/ukwoQX8GrGqOwdD2BR195kKG46XV
RwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Primary Certification Authority - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIID/jCCAuagAwIBAgIQFaxulBmyeUtB9iepwxgPHzANBgkqhkiG9w0BAQsFADCB
mDELMAkGA1UEBhMCVVMxFjAUBgNVBAoTDUdlb1RydXN0IEluYy4xOTA3BgNVBAsT
MChjKSAyMDA4IEdlb1RydXN0IEluYy4gLSBGb3IgYXV0aG9yaXplZCB1c2Ugb25s
eTE2MDQGA1UEAxMtR2VvVHJ1c3QgUHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhv
cml0eSAtIEczMB4XDTA4MDQwMjAwMDAwMFoXDTM3MTIwMTIzNTk1OVowgZgxCzAJ
BgNVBAYTAlVTMRYwFAYDVQQKEw1HZW9UcnVzdCBJbmMuMTkwNwYDVQQLEzAoYykg
MjAwOCBHZW9UcnVzdCBJbmMuIC0gRm9yIGF1dGhvcml6ZWQgdXNlIG9ubHkxNjA0
BgNVBAMTLUdlb1RydXN0IFByaW1hcnkgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkg
LSBHMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANziXmJYHTNXOTIz
+uvLh4yn1ErdBojqZI4xmKU4kB6Yzy5jK/BGvESyiaHAKAxJcCGVn2TAppMSAmUm
hsalifD614SgcK9PGpc/BkTVyetyEH3kMSj7HGHmKAdEc5IiaacDiGydY8hS2pgn
5whMcD60yRLBxWeDXTPzAxHsatBT4tG6NmCUgLthY2xbF37fQJQeqw3CIShwiP/W
JmxsYAQlTlV+fe+/lEjetx3dcI0FX4ilm/LC7urRQEFtYjgdVgbFA0dRIBn8exAL
DmKudlW/X3e+PkkBUz2YJQN2JFodtNuJ6nnltrM7P7pMKEF/BqxqjsHQ9gUdfeZC
huOl1UcCAwEAAaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYw
HQYDVR0OBBYEFMR5yo6hTgMdHNxr2zFblD4/MH8tMA0GCSqGSIb3DQEBCwUAA4IB
AQAtxRPPVoB7eni9n64smefv2t+UXglpp+duaIy9cr5HqQ6XErhK8WTTOd8lNNTB
zU6B8A8ExCSzNJbGpqow32hhc9f5joWJ7w5elShKKiePEI4ufIbEAp7aDHdlDkQN
kv39sxY2+hENHYwOB4lqKVb3cvTdFZx3NWZXqxNT2I7BQMXXExZacse3aQHEerGD
AWh9jUGhlBjBJVz88P6DAod8DQ3PLghcSkANPuyBYeYk28rgDi0Hsj5W3I31QYUH
SJsMC8tJP33st/3LjWeJGqvtux6jAAgIFyqCXDFdRootD4abdNlF+9RAsXqqaC2G
spki4cErx5z481+oghLrGREt
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:ac:6e:94:19:b2:79:4b:41:f6:27:a9:c3:18:0f:1f
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=GeoTrust Inc., OU=(c) 2008 GeoTrust Inc. - For authorized use only, CN=GeoTrust Primary Certification Authority - G3
#        Validity
#            Not Before: Apr  2 00:00:00 2008 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C=US, O=GeoTrust Inc., OU=(c) 2008 GeoTrust Inc. - For authorized use only, CN=GeoTrust Primary Certification Authority - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:dc:e2:5e:62:58:1d:33:57:39:32:33:fa:eb:cb:
#                    87:8c:a7:d4:4a:dd:06:88:ea:64:8e:31:98:a5:38:
#                    90:1e:98:cf:2e:63:2b:f0:46:bc:44:b2:89:a1:c0:
#                    28:0c:49:70:21:95:9f:64:c0:a6:93:12:02:65:26:
#                    86:c6:a5:89:f0:fa:d7:84:a0:70:af:4f:1a:97:3f:
#                    06:44:d5:c9:eb:72:10:7d:e4:31:28:fb:1c:61:e6:
#                    28:07:44:73:92:22:69:a7:03:88:6c:9d:63:c8:52:
#                    da:98:27:e7:08:4c:70:3e:b4:c9:12:c1:c5:67:83:
#                    5d:33:f3:03:11:ec:6a:d0:53:e2:d1:ba:36:60:94:
#                    80:bb:61:63:6c:5b:17:7e:df:40:94:1e:ab:0d:c2:
#                    21:28:70:88:ff:d6:26:6c:6c:60:04:25:4e:55:7e:
#                    7d:ef:bf:94:48:de:b7:1d:dd:70:8d:05:5f:88:a5:
#                    9b:f2:c2:ee:ea:d1:40:41:6d:62:38:1d:56:06:c5:
#                    03:47:51:20:19:fc:7b:10:0b:0e:62:ae:76:55:bf:
#                    5f:77:be:3e:49:01:53:3d:98:25:03:76:24:5a:1d:
#                    b4:db:89:ea:79:e5:b6:b3:3b:3f:ba:4c:28:41:7f:
#                    06:ac:6a:8e:c1:d0:f6:05:1d:7d:e6:42:86:e3:a5:
#                    d5:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                C4:79:CA:8E:A1:4E:03:1D:1C:DC:6B:DB:31:5B:94:3E:3F:30:7F:2D
#    Signature Algorithm: sha256WithRSAEncryption
#         2d:c5:13:cf:56:80:7b:7a:78:bd:9f:ae:2c:99:e7:ef:da:df:
#         94:5e:09:69:a7:e7:6e:68:8c:bd:72:be:47:a9:0e:97:12:b8:
#         4a:f1:64:d3:39:df:25:34:d4:c1:cd:4e:81:f0:0f:04:c4:24:
#         b3:34:96:c6:a6:aa:30:df:68:61:73:d7:f9:8e:85:89:ef:0e:
#         5e:95:28:4a:2a:27:8f:10:8e:2e:7c:86:c4:02:9e:da:0c:77:
#         65:0e:44:0d:92:fd:fd:b3:16:36:fa:11:0d:1d:8c:0e:07:89:
#         6a:29:56:f7:72:f4:dd:15:9c:77:35:66:57:ab:13:53:d8:8e:
#         c1:40:c5:d7:13:16:5a:72:c7:b7:69:01:c4:7a:b1:83:01:68:
#         7d:8d:41:a1:94:18:c1:25:5c:fc:f0:fe:83:02:87:7c:0d:0d:
#         cf:2e:08:5c:4a:40:0d:3e:ec:81:61:e6:24:db:ca:e0:0e:2d:
#         07:b2:3e:56:dc:8d:f5:41:85:07:48:9b:0c:0b:cb:49:3f:7d:
#         ec:b7:fd:cb:8d:67:89:1a:ab:ed:bb:1e:a3:00:08:08:17:2a:
#         82:5c:31:5d:46:8a:2d:0f:86:9b:74:d9:45:fb:d4:40:b1:7a:
#         aa:68:2d:86:b2:99:22:e1:c1:2b:c7:9c:f8:f3:5f:a8:82:12:
#         eb:19:11:2d

[p11-kit-object-v1]
label: "GeoTrust Universal CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Universal CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=GeoTrust Inc., CN=GeoTrust Universal CA
#        Validity
#            Not Before: Mar  4 05:00:00 2004 GMT
#            Not After : Mar  4 05:00:00 2029 GMT
#        Subject: C=US, O=GeoTrust Inc., CN=GeoTrust Universal CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a6:15:55:a0:a3:c6:e0:1f:8c:9d:21:50:d7:c1:
#                    be:2b:5b:b5:a4:9e:a1:d9:72:58:bd:00:1b:4c:bf:
#                    61:c9:14:1d:45:82:ab:c6:1d:80:d6:3d:eb:10:9c:
#                    3a:af:6d:24:f8:bc:71:01:9e:06:f5:7c:5f:1e:c1:
#                    0e:55:ca:83:9a:59:30:ae:19:cb:30:48:95:ed:22:
#                    37:8d:f4:4a:9a:72:66:3e:ad:95:c0:e0:16:00:e0:
#                    10:1f:2b:31:0e:d7:94:54:d3:42:33:a0:34:1d:1e:
#                    45:76:dd:4f:ca:18:37:ec:85:15:7a:19:08:fc:d5:
#                    c7:9c:f0:f2:a9:2e:10:a9:92:e6:3d:58:3d:a9:16:
#                    68:3c:2f:75:21:18:7f:28:77:a5:e1:61:17:b7:a6:
#                    e9:f8:1e:99:db:73:6e:f4:0a:a2:21:6c:ee:da:aa:
#                    85:92:66:af:f6:7a:6b:82:da:ba:22:08:35:0f:cf:
#                    42:f1:35:fa:6a:ee:7e:2b:25:cc:3a:11:e4:6d:af:
#                    73:b2:76:1d:ad:d0:b2:78:67:1a:a4:39:1c:51:0b:
#                    67:56:83:fd:38:5d:0d:ce:dd:f0:bb:2b:96:1f:de:
#                    7b:32:52:fd:1d:bb:b5:06:a1:b2:21:5e:a5:d6:95:
#                    68:7f:f0:99:9e:dc:45:08:3e:e7:d2:09:0d:35:94:
#                    dd:80:4e:53:97:d7:b5:09:44:20:64:16:17:03:02:
#                    4c:53:0d:68:de:d5:aa:72:4d:93:6d:82:0e:db:9c:
#                    bd:cf:b4:f3:5c:5d:54:7a:69:09:96:d6:db:11:c1:
#                    8d:75:a8:b4:cf:39:c8:ce:3c:bc:24:7c:e6:62:ca:
#                    e1:bd:7d:a7:bd:57:65:0b:e4:fe:25:ed:b6:69:10:
#                    dc:28:1a:46:bd:01:1d:d0:97:b5:e1:98:3b:c0:37:
#                    64:d6:3d:94:ee:0b:e1:f5:28:ae:0b:56:bf:71:8b:
#                    23:29:41:8e:86:c5:4b:52:7b:d8:71:ab:1f:8a:15:
#                    a6:3b:83:5a:d7:58:01:51:c6:4c:41:d9:7f:d8:41:
#                    67:72:a2:28:df:60:83:a9:9e:c8:7b:fc:53:73:72:
#                    59:f5:93:7a:17:76:0e:ce:f7:e5:5c:d9:0b:55:34:
#                    a2:aa:5b:b5:6a:54:e7:13:ca:57:ec:97:6d:f4:5e:
#                    06:2f:45:8b:58:d4:23:16:92:e4:16:6e:28:63:59:
#                    30:df:50:01:9c:63:89:1a:9f:db:17:94:82:70:37:
#                    c3:24:9e:9a:47:d6:5a:ca:4e:a8:69:89:72:1f:91:
#                    6c:db:7e:9e:1b:ad:c7:1f:73:dd:2c:4f:19:65:fd:
#                    7f:93:40:10:2e:d2:f0:ed:3c:9e:2e:28:3e:69:26:
#                    33:c5:7b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DA:BB:2E:AA:B0:0C:B8:88:26:51:74:5C:6D:03:D3:C0:D8:8F:7A:D6
#            X509v3 Authority Key Identifier: 
#                keyid:DA:BB:2E:AA:B0:0C:B8:88:26:51:74:5C:6D:03:D3:C0:D8:8F:7A:D6
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         31:78:e6:c7:b5:df:b8:94:40:c9:71:c4:a8:35:ec:46:1d:c2:
#         85:f3:28:58:86:b0:0b:fc:8e:b2:39:8f:44:55:ab:64:84:5c:
#         69:a9:d0:9a:38:3c:fa:e5:1f:35:e5:44:e3:80:79:94:68:a4:
#         bb:c4:9f:3d:e1:34:cd:30:46:8b:54:2b:95:a5:ef:f7:3f:99:
#         84:fd:35:e6:cf:31:c6:dc:6a:bf:a7:d7:23:08:e1:98:5e:c3:
#         5a:08:76:a9:a6:af:77:2f:b7:60:bd:44:46:6a:ef:97:ff:73:
#         95:c1:8e:e8:93:fb:fd:31:b7:ec:57:11:11:45:9b:30:f1:1a:
#         88:39:c1:4f:3c:a7:00:d5:c7:fc:ab:6d:80:22:70:a5:0c:e0:
#         5d:04:29:02:fb:cb:a0:91:d1:7c:d6:c3:7e:50:d5:9d:58:be:
#         41:38:eb:b9:75:3c:15:d9:9b:c9:4a:83:59:c0:da:53:fd:33:
#         bb:36:18:9b:85:0f:15:dd:ee:2d:ac:76:93:b9:d9:01:8d:48:
#         10:a8:fb:f5:38:86:f1:db:0a:c6:bd:84:a3:23:41:de:d6:77:
#         6f:85:d4:85:1c:50:e0:ae:51:8a:ba:8d:3e:76:e2:b9:ca:27:
#         f2:5f:9f:ef:6e:59:0d:06:d8:2b:17:a4:d2:7c:6b:bb:5f:14:
#         1a:48:8f:1a:4c:e7:b3:47:1c:8e:4c:45:2b:20:ee:48:df:e7:
#         dd:09:8e:18:a8:da:40:8d:92:26:11:53:61:73:5d:eb:bd:e7:
#         c4:4d:29:37:61:eb:ac:39:2d:67:2e:16:d6:f5:00:83:85:a1:
#         cc:7f:76:c4:7d:e4:b7:4b:66:ef:03:45:60:69:b6:0c:52:96:
#         92:84:5e:a6:a3:b5:a4:3e:2b:d9:cc:d8:1b:47:aa:f2:44:da:
#         4f:f9:03:e8:f0:14:cb:3f:f3:83:de:d0:c1:54:e3:b7:e8:0a:
#         37:4d:8b:20:59:03:30:19:a1:2c:c8:bd:11:1f:df:ae:c9:4a:
#         c5:f3:27:66:66:86:ac:68:91:ff:d9:e6:53:1c:0f:8b:5c:69:
#         65:0a:26:c8:1e:34:c3:5d:51:7b:d7:a9:9c:06:a1:36:dd:d5:
#         89:94:bc:d9:e4:2d:0c:5e:09:6c:08:97:7c:a3:3d:7c:93:ff:
#         3f:a1:14:a7:cf:b5:5d:eb:db:db:1c:c4:76:df:88:b9:bd:45:
#         05:95:1b:ae:fc:46:6a:4c:af:48:e3:ce:ae:0f:d2:7e:eb:e6:
#         6c:9c:4f:81:6a:7a:64:ac:bb:3e:d5:e7:cb:76:2e:c5:a7:48:
#         c1:5c:90:0f:cb:c8:3f:fa:e6:32:e1:8d:1b:6f:a4:e6:8e:d8:
#         f9:29:48:8a:ce:73:fe:2c

[p11-kit-object-v1]
label: "GeoTrust Universal CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GeoTrust Universal CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=GeoTrust Inc., CN=GeoTrust Universal CA 2
#        Validity
#            Not Before: Mar  4 05:00:00 2004 GMT
#            Not After : Mar  4 05:00:00 2029 GMT
#        Subject: C=US, O=GeoTrust Inc., CN=GeoTrust Universal CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:54:52:c1:c9:3e:f2:d9:dc:b1:53:1a:59:29:
#                    e7:b1:c3:45:28:e5:d7:d1:ed:c5:c5:4b:a1:aa:74:
#                    7b:57:af:4a:26:fc:d8:f5:5e:a7:6e:19:db:74:0c:
#                    4f:35:5b:32:0b:01:e3:db:eb:7a:77:35:ea:aa:5a:
#                    e0:d6:e8:a1:57:94:f0:90:a3:74:56:94:44:30:03:
#                    1e:5c:4e:2b:85:26:74:82:7a:0c:76:a0:6f:4d:ce:
#                    41:2d:a0:15:06:14:5f:b7:42:cd:7b:8f:58:61:34:
#                    dc:2a:08:f9:2e:c3:01:a6:22:44:1c:4c:07:82:e6:
#                    5b:ce:d0:4a:7c:04:d3:19:73:27:f0:aa:98:7f:2e:
#                    af:4e:eb:87:1e:24:77:6a:5d:b6:e8:5b:45:ba:dc:
#                    c3:a1:05:6f:56:8e:8f:10:26:a5:49:c3:2e:d7:41:
#                    87:22:e0:4f:86:ca:60:b5:ea:a1:63:c0:01:97:10:
#                    79:bd:00:3c:12:6d:2b:15:b1:ac:4b:b1:ee:18:b9:
#                    4e:96:dc:dc:76:ff:3b:be:cf:5f:03:c0:fc:3b:e8:
#                    be:46:1b:ff:da:40:c2:52:f7:fe:e3:3a:f7:6a:77:
#                    35:d0:da:8d:eb:5e:18:6a:31:c7:1e:ba:3c:1b:28:
#                    d6:6b:54:c6:aa:5b:d7:a2:2c:1b:19:cc:a2:02:f6:
#                    9b:59:bd:37:6b:86:b5:6d:82:ba:d8:ea:c9:56:bc:
#                    a9:36:58:fd:3e:19:f3:ed:0c:26:a9:93:38:f8:4f:
#                    c1:5d:22:06:d0:97:ea:e1:ad:c6:55:e0:81:2b:28:
#                    83:3a:fa:f4:7b:21:51:00:be:52:38:ce:cd:66:79:
#                    a8:f4:81:56:e2:d0:83:09:47:51:5b:50:6a:cf:db:
#                    48:1a:5d:3e:f7:cb:f6:65:f7:6c:f1:95:f8:02:3b:
#                    32:56:82:39:7a:5b:bd:2f:89:1b:bf:a1:b4:e8:ff:
#                    7f:8d:8c:df:03:f1:60:4e:58:11:4c:eb:a3:3f:10:
#                    2b:83:9a:01:73:d9:94:6d:84:00:27:66:ac:f0:70:
#                    40:09:42:92:ad:4f:93:0d:61:09:51:24:d8:92:d5:
#                    0b:94:61:b2:87:b2:ed:ff:9a:35:ff:85:54:ca:ed:
#                    44:43:ac:1b:3c:16:6b:48:4a:0a:1c:40:88:1f:92:
#                    c2:0b:00:05:ff:f2:c8:02:4a:a4:aa:a9:cc:99:96:
#                    9c:2f:58:e0:7d:e1:be:bb:07:dc:5f:04:72:5c:31:
#                    34:c3:ec:5f:2d:e0:3d:64:90:22:e6:d1:ec:b8:2e:
#                    dd:59:ae:d9:a1:37:bf:54:35:dc:73:32:4f:8c:04:
#                    1e:33:b2:c9:46:f1:d8:5c:c8:55:50:c9:68:bd:a8:
#                    ba:36:09
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                76:F3:55:E1:FA:A4:36:FB:F0:9F:5C:62:71:ED:3C:F4:47:38:10:2B
#            X509v3 Authority Key Identifier: 
#                keyid:76:F3:55:E1:FA:A4:36:FB:F0:9F:5C:62:71:ED:3C:F4:47:38:10:2B
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha1WithRSAEncryption
#         66:c1:c6:23:f3:d9:e0:2e:6e:5f:e8:cf:ae:b0:b0:25:4d:2b:
#         f8:3b:58:9b:40:24:37:5a:cb:ab:16:49:ff:b3:75:79:33:a1:
#         2f:6d:70:17:34:91:fe:67:7e:8f:ec:9b:e5:5e:82:a9:55:1f:
#         2f:dc:d4:51:07:12:fe:ac:16:3e:2c:35:c6:63:fc:dc:10:eb:
#         0d:a3:aa:d0:7c:cc:d1:d0:2f:51:2e:c4:14:5a:de:e8:19:e1:
#         3e:c6:cc:a4:29:e7:2e:84:aa:06:30:78:76:54:73:28:98:59:
#         38:e0:00:0d:62:d3:42:7d:21:9f:ae:3d:3a:8c:d5:fa:77:0d:
#         18:2b:16:0e:5f:36:e1:fc:2a:b5:30:24:cf:e0:63:0c:7b:58:
#         1a:fe:99:ba:42:12:b1:91:f4:7c:68:e2:c8:e8:af:2c:ea:c9:
#         7e:ae:bb:2a:3d:0d:15:dc:34:95:b6:18:74:a8:6a:0f:c7:b4:
#         f4:13:c4:e4:5b:ed:0a:d2:a4:97:4c:2a:ed:2f:6c:12:89:3d:
#         f1:27:70:aa:6a:03:52:21:9f:40:a8:67:50:f2:f3:5a:1f:df:
#         df:23:f6:dc:78:4e:e6:98:4f:55:3a:53:e3:ef:f2:f4:9f:c7:
#         7c:d8:58:af:29:22:97:b8:e0:bd:91:2e:b0:76:ec:57:11:cf:
#         ef:29:44:f3:e9:85:7a:60:63:e4:5d:33:89:17:d9:31:aa:da:
#         d6:f3:18:35:72:cf:87:2b:2f:63:23:84:5d:84:8c:3f:57:a0:
#         88:fc:99:91:28:26:69:99:d4:8f:97:44:be:8e:d5:48:b1:a4:
#         28:29:f1:15:b4:e1:e5:9e:dd:f8:8f:a6:6f:26:d7:09:3c:3a:
#         1c:11:0e:a6:6c:37:f7:ad:44:87:2c:28:c7:d8:74:82:b3:d0:
#         6f:4a:57:bb:35:29:27:a0:8b:e8:21:a7:87:64:36:5d:cc:d8:
#         16:ac:c7:b2:27:40:92:55:38:28:8d:51:6e:dd:14:67:53:6c:
#         71:5c:26:84:4d:75:5a:b6:7e:60:56:a9:4d:ad:fb:9b:1e:97:
#         f3:0d:d9:d2:97:54:77:da:3d:12:b7:e0:1e:ef:08:06:ac:f9:
#         85:87:e9:a2:dc:af:7e:18:12:83:fd:56:17:41:2e:d5:29:82:
#         7d:99:f4:31:f6:71:a9:cf:2c:01:27:a5:05:b9:aa:b2:48:4e:
#         2a:ef:9f:93:52:51:95:3c:52:73:8e:56:4c:17:40:c0:09:28:
#         e4:8b:6a:48:53:db:ec:cd:55:55:f1:c6:f8:e9:a2:2c:4c:a6:
#         d1:26:5f:7e:af:5a:4c:da:1f:a6:f2:1c:2c:7e:ae:02:16:d2:
#         56:d0:2f:57:53:47:e8:92

[p11-kit-object-v1]
label: "GlobalSign Code Signing Root E45"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEdhltA7X1hCOrMmouYd2EJS/v6HkniYPD
g3XztnhqCG2irSEqApAG7JpAnHqGkblYhcgomi4L9+J2qd+yvanD6SkZeQiyUNDC
xZ0KYQzjXTcGSlz+hL3AgIT6S1Uj4OI+
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Code Signing Root E45"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:53:fe:ae:18:26:43:6f:69:f5:1c:c2:77:16:f2:5e
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Code Signing Root E45
#        Validity
#            Not Before: Mar 18 00:00:00 2020 GMT
#            Not After : Mar 18 00:00:00 2045 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Code Signing Root E45
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:76:19:6d:03:b5:f5:84:23:ab:32:6a:2e:61:dd:
#                    84:25:2f:ef:e8:79:27:89:83:c3:83:75:f3:b6:78:
#                    6a:08:6d:a2:ad:21:2a:02:90:06:ec:9a:40:9c:7a:
#                    86:91:b9:58:85:c8:28:9a:2e:0b:f7:e2:76:a9:df:
#                    b2:bd:a9:c3:e9:29:19:79:08:b2:50:d0:c2:c5:9d:
#                    0a:61:0c:e3:5d:37:06:4a:5c:fe:84:bd:c0:80:84:
#                    fa:4b:55:23:e0:e2:3e
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A7:9F:DD:D3:54:CD:DB:F8:6C:BF:26:6C:0E:E4:D7:5B:6F:80:CC:42
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:6c:8c:56:b6:c5:37:ae:2d:90:2b:78:ed:b1:1e:
#         46:08:d2:c3:4a:28:ef:78:19:08:8e:24:34:46:4f:87:71:61:
#         5f:a9:11:4a:6f:32:ab:1c:d1:52:7b:aa:3a:ea:e5:9a:02:30:
#         55:2b:77:2f:ce:f8:3f:9b:68:4a:da:d7:a8:4b:45:0d:7e:b2:
#         6b:f6:6c:da:b1:15:e2:bc:48:19:77:8b:57:c1:5d:14:d7:41:
#         00:cc:26:52:d0:20:b8:19:4f:96:e7:9a

[p11-kit-object-v1]
label: "GlobalSign Code Signing Root R45"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Code Signing Root R45"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:53:fe:ac:75:46:48:93:f5:e5:d7:4a:48:3a:4e:f8
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Code Signing Root R45
#        Validity
#            Not Before: Mar 18 00:00:00 2020 GMT
#            Not After : Mar 18 00:00:00 2045 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Code Signing Root R45
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:2d:c5:30:dd:7a:e8:ab:90:3d:03:72:b0:3a:
#                    4b:99:16:61:b2:e5:ff:a5:67:1d:37:1c:e5:7e:ec:
#                    93:83:aa:84:f5:a3:43:9b:98:45:8a:b8:63:57:5d:
#                    9b:00:88:04:25:e9:f8:68:92:4b:82:d8:4b:c9:4a:
#                    03:f3:a8:7f:6a:8f:8a:61:27:bd:a1:44:d0:fd:f5:
#                    3f:22:c2:a3:4f:91:8d:b3:05:b2:28:82:91:5d:fb:
#                    59:88:05:0b:97:06:c2:98:f8:2c:a7:33:24:ee:50:
#                    3a:41:cc:f0:a0:b0:7b:1d:4d:d2:a8:58:38:96:e9:
#                    df:f9:1b:91:bb:8b:10:2c:d2:c7:43:1d:a2:09:74:
#                    a1:80:af:7b:e6:33:0a:0c:59:6b:8e:bc:f4:ab:5a:
#                    97:7b:7f:ae:55:fb:84:f0:80:fe:84:4c:d7:e2:ba:
#                    bd:c4:75:a1:6f:bd:61:10:74:44:b2:98:07:e2:74:
#                    ab:ff:68:dc:6c:26:3e:e9:1f:e5:e0:04:87:ad:30:
#                    d3:0c:8d:03:7c:55:b8:16:70:5c:24:78:20:25:eb:
#                    67:67:88:ab:ba:4e:34:98:6b:70:11:de:38:ca:d4:
#                    be:a1:c0:9c:e1:df:1e:02:01:d8:3b:e1:67:43:84:
#                    b6:cf:fc:74:b7:2f:84:a3:bf:ba:09:37:3d:67:6c:
#                    b1:45:5c:19:61:ab:41:83:f5:ac:1d:eb:77:0d:46:
#                    47:73:ce:bf:bd:95:95:ed:9d:2b:88:10:fe:fa:58:
#                    e8:a7:57:e1:b3:cf:a8:5a:e9:07:25:9b:12:c4:9e:
#                    80:72:3d:93:dc:8c:94:df:3b:44:e6:26:80:fc:d2:
#                    c3:03:f0:8c:0c:d2:45:d6:2e:e7:8f:98:9e:e6:04:
#                    ee:42:6e:67:7e:42:16:71:62:e7:04:f9:60:c6:64:
#                    a1:b6:9c:81:21:4e:2b:c6:6d:68:94:86:c6:99:74:
#                    73:67:31:7a:91:f2:d4:8c:79:6e:7c:a6:bb:7e:46:
#                    6f:4d:c5:85:12:2b:cf:9a:22:44:08:a8:85:37:ce:
#                    07:61:57:06:17:12:24:c0:c4:31:73:a1:98:35:57:
#                    47:7e:10:3a:45:d9:2d:a4:51:90:98:a9:a0:07:37:
#                    c4:65:1a:aa:1c:6b:16:77:f7:a7:97:ec:3f:19:30:
#                    99:6f:31:fb:ea:40:b2:e7:d2:c4:fa:c9:d0:f0:50:
#                    76:74:59:fa:8d:6d:17:32:be:f8:e9:7e:03:f4:e7:
#                    87:75:9a:d4:4a:91:2c:85:03:13:02:2b:42:80:f2:
#                    89:6a:36:cf:c8:4c:a0:ce:9e:f8:cb:8d:ad:16:a7:
#                    d3:de:d5:9b:18:a7:c6:92:3a:f1:82:63:f1:2e:0e:
#                    24:64:df
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                1F:00:BF:46:80:0A:FC:78:39:B7:A5:B4:43:D9:56:50:BB:CE:96:3B
#    Signature Algorithm: sha384WithRSAEncryption
#         5e:2b:ba:74:97:34:44:5f:76:48:28:40:84:93:ee:01:6e:e9:
#         a1:b3:d6:80:25:e6:7b:e4:bc:09:91:3d:0f:fc:76:ad:d7:d4:
#         30:20:bb:8f:60:d0:91:d6:1c:f2:9c:ef:78:1a:2b:94:32:02:
#         c1:24:96:52:52:02:d0:f3:d1:fc:f2:9b:39:6e:99:e1:1f:8e:
#         43:41:7d:9a:1e:5b:c9:5d:9a:84:fc:26:e6:87:f3:74:72:26:
#         ad:a4:1b:d9:3d:3b:6a:52:a0:3c:09:1e:2f:1e:7b:b3:33:b4:
#         45:c7:f7:ac:b1:af:93:60:ad:76:ae:b8:b2:15:78:eb:83:6a:
#         eb:ff:db:46:ab:24:e5:ee:02:fa:90:1f:59:c0:2f:5d:d6:b7:
#         5d:a4:5c:10:b7:72:53:f8:41:4e:cc:fa:78:1a:25:4a:ca:fe:
#         85:62:43:61:c3:b4:37:aa:81:d2:f4:d6:3a:0f:bd:8d:59:7e:
#         30:47:de:2b:6b:e7:21:50:33:5f:d4:67:9b:d4:b8:67:9f:3c:
#         27:99:03:ff:85:43:8e:73:12:ca:20:cd:e8:61:d5:b1:66:dc:
#         17:d6:39:6d:0f:db:cf:23:37:a1:82:89:4e:1c:6b:3f:d6:a0:
#         cd:aa:07:9d:3e:42:26:aa:d7:0c:ee:fa:47:bf:1a:52:7e:d1:
#         75:81:d3:c9:8a:62:17:6d:4f:88:a0:21:a0:26:3e:af:6d:d9:
#         62:30:1f:e9:98:28:ae:6e:8d:d5:8e:4c:72:66:93:80:8d:2a:
#         e3:55:c7:60:67:90:42:56:5c:22:51:0f:b3:dc:4e:39:ee:4d:
#         dd:d9:1d:78:10:54:3b:6e:d0:97:6f:03:b5:1e:b2:23:73:c6:
#         12:b2:9a:64:d0:fc:95:85:24:a8:ff:df:a1:b0:dc:91:40:ae:
#         df:09:33:ab:b9:dd:92:b7:f1:cc:91:74:3b:69:eb:67:97:1b:
#         90:bf:e7:c7:a0:6f:71:bb:57:bf:b7:8f:5a:ed:7a:40:6a:16:
#         cd:80:84:2d:2f:e1:02:d4:24:94:43:b3:15:fc:0c:2b:1b:fd:
#         71:6f:fc:cb:bc:75:17:3a:5e:83:d2:c9:b3:2f:1b:d5:9c:8d:
#         7f:54:fe:7e:7e:e4:56:a3:87:a7:9d:e1:59:52:94:41:8f:6d:
#         5b:be:86:95:9a:ff:1a:76:dd:40:d2:51:4a:70:b4:1f:33:63:
#         23:77:3f:ec:27:1e:59:e4:08:87:ed:34:82:4a:0f:3f:fe:a0:
#         1d:c1:f5:67:73:45:86:78:f4:aa:29:e9:27:87:c6:19:db:c6:
#         13:14:c3:39:49:87:4d:a0:97:e0:65:13:f5:9d:77:56:e9:da:
#         b3:58:c7:3a:f2:c0:cd:82

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEuMZ5049sJQ6fLjkZHAOkrprlOQcJ
FspjsbmG+IpXwVfOQvpzofdlQv8ewQCybnMO/8ch5RikqtlxP6jUuc6MHQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            02:03:e5:7e:f5:3f:93:fd:a5:09:21:b2:a6
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: OU=GlobalSign ECC Root CA - R4, O=GlobalSign, CN=GlobalSign
#        Validity
#            Not Before: Nov 13 00:00:00 2012 GMT
#            Not After : Jan 19 03:14:07 2038 GMT
#        Subject: OU=GlobalSign ECC Root CA - R4, O=GlobalSign, CN=GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub: 
#                    04:b8:c6:79:d3:8f:6c:25:0e:9f:2e:39:19:1c:03:
#                    a4:ae:9a:e5:39:07:09:16:ca:63:b1:b9:86:f8:8a:
#                    57:c1:57:ce:42:fa:73:a1:f7:65:42:ff:1e:c1:00:
#                    b2:6e:73:0e:ff:c7:21:e5:18:a4:aa:d9:71:3f:a8:
#                    d4:b9:ce:8c:1d
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                54:B0:7B:AD:45:B8:E2:40:7F:FB:0A:6E:FB:BE:33:C9:3C:A3:84:D5
#    Signature Algorithm: ecdsa-with-SHA256
#         30:44:02:20:22:4f:74:72:b9:60:af:f1:e6:9c:a0:16:05:50:
#         5f:c3:5e:3b:6e:61:74:ef:be:01:c4:be:18:48:59:61:82:32:
#         02:20:26:9d:54:63:40:de:37:60:50:cf:c8:d8:ed:9d:82:ae:
#         37:98:bc:a3:8f:4c:4c:a9:34:2b:6c:ef:fb:95:9b:26

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAER0UOlvt9Xb/pOdEh+J8LttV7HpI6SFkc
8GIxLcB6KP4ap1yztsyX50XUWPrRd21DosCHZTQKH3rd6zwzocWdTaRvQZU4f8ke
hOvRnkmSh5SHDDqFSmafnVmTTZdhBoZK
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign ECC Root CA - R5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            60:59:49:e0:26:2e:bb:55:f9:0a:77:8a:71:f9:4a:d8:6c
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: OU=GlobalSign ECC Root CA - R5, O=GlobalSign, CN=GlobalSign
#        Validity
#            Not Before: Nov 13 00:00:00 2012 GMT
#            Not After : Jan 19 03:14:07 2038 GMT
#        Subject: OU=GlobalSign ECC Root CA - R5, O=GlobalSign, CN=GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:47:45:0e:96:fb:7d:5d:bf:e9:39:d1:21:f8:9f:
#                    0b:b6:d5:7b:1e:92:3a:48:59:1c:f0:62:31:2d:c0:
#                    7a:28:fe:1a:a7:5c:b3:b6:cc:97:e7:45:d4:58:fa:
#                    d1:77:6d:43:a2:c0:87:65:34:0a:1f:7a:dd:eb:3c:
#                    33:a1:c5:9d:4d:a4:6f:41:95:38:7f:c9:1e:84:eb:
#                    d1:9e:49:92:87:94:87:0c:3a:85:4a:66:9f:9d:59:
#                    93:4d:97:61:06:86:4a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                3D:E6:29:48:9B:EA:07:CA:21:44:4A:26:DE:6E:DE:D2:83:D0:9F:59
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:e5:69:12:c9:6e:db:c6:31:ba:09:41:e1:97:
#         f8:fb:fd:9a:e2:7d:12:c9:ed:7c:64:d3:cb:05:25:8b:56:d9:
#         a0:e7:5e:5d:4e:0b:83:9c:5b:76:29:a0:09:26:21:6a:62:02:
#         30:71:d2:b5:8f:5c:ea:3b:e1:78:09:85:a8:75:92:3b:c8:5c:
#         fd:48:ef:0d:74:22:a8:08:e2:6e:c5:49:ce:c7:0c:bc:a7:61:
#         69:f1:f7:3b:e1:2a:cb:f9:2b:f3:66:90:37

[p11-kit-object-v1]
label: "GlobalSign Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2g7mmY3Oo+NPin778YuD
JWvqSB/xKrC5lREEvfBj0eJnZs8c3c8bSCvujYmOmq8pgGWr6cctEsurHExwB6E9
CjDNFY1P+N3UjFAVHO9Q7sQu9/zpUvKRfeBt1TUwjl5Dc/JB6dVq47KJOlY5OG8G
PIhpWypNxadUuGyJzJv5PMrl/Yn1EjySeJbW3HRuk0Rh0Y3HRrJ1DoboGYrVbWzV
eBaVounICjjr8iQTT3NUkxOFOhu8HjS1iwWMuXeLsdsfIJGrCVNukM57N3S5cEeR
IlFjFnmusa5BJgjIGSvRRqpI1mQq14M0/ywqwWwZQ0oHhefTfPYhaO/q8lKff5OQ
zwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:15:4b:5a:c3:94
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
#        Validity
#            Not Before: Sep  1 12:00:00 1998 GMT
#            Not After : Jan 28 12:00:00 2028 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:da:0e:e6:99:8d:ce:a3:e3:4f:8a:7e:fb:f1:8b:
#                    83:25:6b:ea:48:1f:f1:2a:b0:b9:95:11:04:bd:f0:
#                    63:d1:e2:67:66:cf:1c:dd:cf:1b:48:2b:ee:8d:89:
#                    8e:9a:af:29:80:65:ab:e9:c7:2d:12:cb:ab:1c:4c:
#                    70:07:a1:3d:0a:30:cd:15:8d:4f:f8:dd:d4:8c:50:
#                    15:1c:ef:50:ee:c4:2e:f7:fc:e9:52:f2:91:7d:e0:
#                    6d:d5:35:30:8e:5e:43:73:f2:41:e9:d5:6a:e3:b2:
#                    89:3a:56:39:38:6f:06:3c:88:69:5b:2a:4d:c5:a7:
#                    54:b8:6c:89:cc:9b:f9:3c:ca:e5:fd:89:f5:12:3c:
#                    92:78:96:d6:dc:74:6e:93:44:61:d1:8d:c7:46:b2:
#                    75:0e:86:e8:19:8a:d5:6d:6c:d5:78:16:95:a2:e9:
#                    c8:0a:38:eb:f2:24:13:4f:73:54:93:13:85:3a:1b:
#                    bc:1e:34:b5:8b:05:8c:b9:77:8b:b1:db:1f:20:91:
#                    ab:09:53:6e:90:ce:7b:37:74:b9:70:47:91:22:51:
#                    63:16:79:ae:b1:ae:41:26:08:c8:19:2b:d1:46:aa:
#                    48:d6:64:2a:d7:83:34:ff:2c:2a:c1:6c:19:43:4a:
#                    07:85:e7:d3:7c:f6:21:68:ef:ea:f2:52:9f:7f:93:
#                    90:cf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                60:7B:66:1A:45:0D:97:CA:89:50:2F:7D:04:CD:34:A8:FF:FC:FD:4B
#    Signature Algorithm: sha1WithRSAEncryption
#         d6:73:e7:7c:4f:76:d0:8d:bf:ec:ba:a2:be:34:c5:28:32:b5:
#         7c:fc:6c:9c:2c:2b:bd:09:9e:53:bf:6b:5e:aa:11:48:b6:e5:
#         08:a3:b3:ca:3d:61:4d:d3:46:09:b3:3e:c3:a0:e3:63:55:1b:
#         f2:ba:ef:ad:39:e1:43:b9:38:a3:e6:2f:8a:26:3b:ef:a0:50:
#         56:f9:c6:0a:fd:38:cd:c4:0b:70:51:94:97:98:04:df:c3:5f:
#         94:d5:15:c9:14:41:9c:c4:5d:75:64:15:0d:ff:55:30:ec:86:
#         8f:ff:0d:ef:2c:b9:63:46:f6:aa:fc:df:bc:69:fd:2e:12:48:
#         64:9a:e0:95:f0:a6:ef:29:8f:01:b1:15:b5:0c:1d:a5:fe:69:
#         2c:69:24:78:1e:b3:a7:1c:71:62:ee:ca:c8:97:ac:17:5d:8a:
#         c2:f8:47:86:6e:2a:c4:56:31:95:d0:67:89:85:2b:f9:6c:a6:
#         5d:46:9d:0c:aa:82:e4:99:51:dd:70:b7:db:56:3d:61:e4:6a:
#         e1:5c:d6:f6:fe:3d:de:41:cc:07:ae:63:52:bf:53:53:f4:2b:
#         e9:c7:fd:b6:f7:82:5f:85:d2:41:18:db:81:b3:04:1c:c5:1f:
#         a4:80:6f:15:20:c9:de:0c:88:0a:1d:d6:66:55:e2:fc:48:c9:
#         29:26:69:e0

[p11-kit-object-v1]
label: "GlobalSign Root CA - R3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzCV2kHkGeCIW9cCDtoTK
KJ79BXYRxa2IcvxGAkPHsoqdBF8kyy5L4WCCRuFSqwyBR3Bs3WTR6/Usow+CPQwr
rpfXthSGEHm7OxOAd4wI4UnSamIvH176lmjfiSeVOJ8G1z7JyyZZDXPesMjpJg6D
FcbvW4vSBGDKSaYo9mk79svIKJHlnYphVzesdBTcdOA67nIvLpz70Lu/9T0A4QYz
6IIrrlOmOhZzjN1BDiA6wLSnoemyT5AuMmDpV8u5BJJoaOU4JmB1sp93/5EU764g
SfytQBVI0QIxYRleuJfvrXe3ZJp6v1/BE++bYvsNbOBUaRapA9pu6YOTcXbGaYWC
FwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root CA - R3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            04:00:00:00:00:01:21:58:53:08:a2
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: OU=GlobalSign Root CA - R3, O=GlobalSign, CN=GlobalSign
#        Validity
#            Not Before: Mar 18 10:00:00 2009 GMT
#            Not After : Mar 18 10:00:00 2029 GMT
#        Subject: OU=GlobalSign Root CA - R3, O=GlobalSign, CN=GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:cc:25:76:90:79:06:78:22:16:f5:c0:83:b6:84:
#                    ca:28:9e:fd:05:76:11:c5:ad:88:72:fc:46:02:43:
#                    c7:b2:8a:9d:04:5f:24:cb:2e:4b:e1:60:82:46:e1:
#                    52:ab:0c:81:47:70:6c:dd:64:d1:eb:f5:2c:a3:0f:
#                    82:3d:0c:2b:ae:97:d7:b6:14:86:10:79:bb:3b:13:
#                    80:77:8c:08:e1:49:d2:6a:62:2f:1f:5e:fa:96:68:
#                    df:89:27:95:38:9f:06:d7:3e:c9:cb:26:59:0d:73:
#                    de:b0:c8:e9:26:0e:83:15:c6:ef:5b:8b:d2:04:60:
#                    ca:49:a6:28:f6:69:3b:f6:cb:c8:28:91:e5:9d:8a:
#                    61:57:37:ac:74:14:dc:74:e0:3a:ee:72:2f:2e:9c:
#                    fb:d0:bb:bf:f5:3d:00:e1:06:33:e8:82:2b:ae:53:
#                    a6:3a:16:73:8c:dd:41:0e:20:3a:c0:b4:a7:a1:e9:
#                    b2:4f:90:2e:32:60:e9:57:cb:b9:04:92:68:68:e5:
#                    38:26:60:75:b2:9f:77:ff:91:14:ef:ae:20:49:fc:
#                    ad:40:15:48:d1:02:31:61:19:5e:b8:97:ef:ad:77:
#                    b7:64:9a:7a:bf:5f:c1:13:ef:9b:62:fb:0d:6c:e0:
#                    54:69:16:a9:03:da:6e:e9:83:93:71:76:c6:69:85:
#                    82:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                8F:F0:4B:7F:A8:2E:45:24:AE:4D:50:FA:63:9A:8B:DE:E2:DD:1B:BC
#    Signature Algorithm: sha256WithRSAEncryption
#         4b:40:db:c0:50:aa:fe:c8:0c:ef:f7:96:54:45:49:bb:96:00:
#         09:41:ac:b3:13:86:86:28:07:33:ca:6b:e6:74:b9:ba:00:2d:
#         ae:a4:0a:d3:f5:f1:f1:0f:8a:bf:73:67:4a:83:c7:44:7b:78:
#         e0:af:6e:6c:6f:03:29:8e:33:39:45:c3:8e:e4:b9:57:6c:aa:
#         fc:12:96:ec:53:c6:2d:e4:24:6c:b9:94:63:fb:dc:53:68:67:
#         56:3e:83:b8:cf:35:21:c3:c9:68:fe:ce:da:c2:53:aa:cc:90:
#         8a:e9:f0:5d:46:8c:95:dd:7a:58:28:1a:2f:1d:de:cd:00:37:
#         41:8f:ed:44:6d:d7:53:28:97:7e:f3:67:04:1e:15:d7:8a:96:
#         b4:d3:de:4c:27:a4:4c:1b:73:73:76:f4:17:99:c2:1f:7a:0e:
#         e3:2d:08:ad:0a:1c:2c:ff:3c:ab:55:0e:0f:91:7e:36:eb:c3:
#         57:49:be:e1:2e:2d:7c:60:8b:c3:41:51:13:23:9d:ce:f7:32:
#         6b:94:01:a8:99:e7:2c:33:1f:3a:3b:25:d2:86:40:ce:3b:2c:
#         86:78:c9:61:2f:14:ba:ee:db:55:6f:df:84:ee:05:09:4d:bd:
#         28:d8:72:ce:d3:62:50:65:1e:eb:92:97:83:31:d9:b3:b5:ca:
#         47:58:3f:5f

[p11-kit-object-v1]
label: "GlobalSign Root CA - R6"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root CA - R6"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFgzCCA2ugAwIBAgIORea7A4Mzw4VlSOb/RVEwDQYJKoZIhvcNAQEMBQAwTDEg
MB4GA1UECxMXR2xvYmFsU2lnbiBSb290IENBIC0gUjYxEzARBgNVBAoTCkdsb2Jh
bFNpZ24xEzARBgNVBAMTCkdsb2JhbFNpZ24wHhcNMTQxMjEwMDAwMDAwWhcNMzQx
MjEwMDAwMDAwWjBMMSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSNjET
MBEGA1UEChMKR2xvYmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjCCAiIwDQYJ
KoZIhvcNAQEBBQADggIPADCCAgoCggIBAJUH6HPKZvnsFMp7PPcNCPG0RQssgrRI
xutbPK6DuEGSMxSkb3/pKszGsIhrxbaJ0cay/xTOURQh7ErdG1rG1ofuTToVBu1k
ZguSgMpE3nOUTvOniX9PeGMIyBJQbUJmL025eShNUhqKGoC3GYEOfsSKvGRMIRxD
aNc9PIrFsmbVkJq3MQbFvuJtMgamHvm566qjuL++gmNQ0PAYid/kD3n16qIfKtJw
LnvnvJO7bVPiSHyMEAc4/2ayd2F+4OqMPKq0pPbzlUoSB239jLKJz9CgYXfIWHSw
1CM69106yqLbnQneXUQtkPGBzVeS+n68UARjNN9rkxi+azayOeSsJDa38O+2HBNX
k7besvjihbdzorg1qkXy4J02oW9UivFyVm4uiMVRQkQVlO6jxTiWm05OWgtH8wY2
SXcwvHE35absIQh1/OZhFj931dmRl4QKbNQCTXTAFO39OfuD8l4UoQSwC+n+7o/h
bguyCLNhZglqsQY6ZZZZwPA1/cnaKI0aEYdwgQqomnUdnjqGBQCe24DWJfncBZ4n
WUx2OVvq+aWh2IMP0f/fMBH5hc8zSPXKbWQULHpYT9NLCEnFlWQaYw55PfWzjMpY
rZxCRXluDocZXFSxZba/jJvcE+kNb7gu3GduyYsRtYQUigAZcIN5kZeR1Bonvzce
MgfYFGM8KEyvAgMBAAGjYzBhMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTAD
AQH/MB0GA1UdDgQWBBSubAWjkxPioufi1xzWx/B/yGdToDAfBgNVHSMEGDAWgBSu
bAWjkxPioufi1xzWx/B/yGdToDANBgkqhkiG9w0BAQwFAAOCAgEAgyXt6NH9lVLN
nsAEoJFp5lzQhN7craJP6Ed41mWYqVuoPId8AorRbrcWc+ZfwFSY1XS+wc3iEZGt
Ixg93eFyRJa0lV7Ae46ZeBZDE1ZXs6KzO7V33EByrKPrmzU+sQghoefEQzd5Mr61
55wsTLxDKZmOMNOsIeDjHfrYBzN2VAAiKrlNIC5waNrlU/yDXNOd8v9EDERm8tLj
vUYAGm0CuiVdjaExUd1URhxN25mW7xocBFymFe944Hn+Xds+qkxV/ZoVqW/hpvvf
cDDpw+5CRu3CkwWJ+n1jez/QcYF8AOiYrg54NMMl+68KnyBr3TsTjxKM4kEaSHpz
oHdpx7Zcf4LIHv5YGygrqGytXm3ABdJ7t+uA/iU3/gKbaKxCXcPu9czc8FB10jZp
nOZ7BN9uBmm23goJSFmH63sUYHpkqmlD75HHTOwY3WzvUy2MmeFe8nI+z1TIvWfs
pA9MRf/TuTAjB0yPEL+GltmZWrSZVxykzLsViVO6LAUP5MSeGbEYNNVMnbrt9x+v
JJUEeKgDu+6B5dpffItKoZB0JaezPkvILFa9x8jvOOJckvB595yEunQtYQEgfn7R
8k8HWV+LLUNS60YMlOH1Zkd5d9VUWx+tJDfLRVpOoERIyNiwmcUVhAn21klJwGW4
5hpxbqCo8YLoRT5s1gLXCmeDBVrJpBA=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            45:e6:bb:03:83:33:c3:85:65:48:e6:ff:45:51
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: OU=GlobalSign Root CA - R6, O=GlobalSign, CN=GlobalSign
#        Validity
#            Not Before: Dec 10 00:00:00 2014 GMT
#            Not After : Dec 10 00:00:00 2034 GMT
#        Subject: OU=GlobalSign Root CA - R6, O=GlobalSign, CN=GlobalSign
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:95:07:e8:73:ca:66:f9:ec:14:ca:7b:3c:f7:0d:
#                    08:f1:b4:45:0b:2c:82:b4:48:c6:eb:5b:3c:ae:83:
#                    b8:41:92:33:14:a4:6f:7f:e9:2a:cc:c6:b0:88:6b:
#                    c5:b6:89:d1:c6:b2:ff:14:ce:51:14:21:ec:4a:dd:
#                    1b:5a:c6:d6:87:ee:4d:3a:15:06:ed:64:66:0b:92:
#                    80:ca:44:de:73:94:4e:f3:a7:89:7f:4f:78:63:08:
#                    c8:12:50:6d:42:66:2f:4d:b9:79:28:4d:52:1a:8a:
#                    1a:80:b7:19:81:0e:7e:c4:8a:bc:64:4c:21:1c:43:
#                    68:d7:3d:3c:8a:c5:b2:66:d5:90:9a:b7:31:06:c5:
#                    be:e2:6d:32:06:a6:1e:f9:b9:eb:aa:a3:b8:bf:be:
#                    82:63:50:d0:f0:18:89:df:e4:0f:79:f5:ea:a2:1f:
#                    2a:d2:70:2e:7b:e7:bc:93:bb:6d:53:e2:48:7c:8c:
#                    10:07:38:ff:66:b2:77:61:7e:e0:ea:8c:3c:aa:b4:
#                    a4:f6:f3:95:4a:12:07:6d:fd:8c:b2:89:cf:d0:a0:
#                    61:77:c8:58:74:b0:d4:23:3a:f7:5d:3a:ca:a2:db:
#                    9d:09:de:5d:44:2d:90:f1:81:cd:57:92:fa:7e:bc:
#                    50:04:63:34:df:6b:93:18:be:6b:36:b2:39:e4:ac:
#                    24:36:b7:f0:ef:b6:1c:13:57:93:b6:de:b2:f8:e2:
#                    85:b7:73:a2:b8:35:aa:45:f2:e0:9d:36:a1:6f:54:
#                    8a:f1:72:56:6e:2e:88:c5:51:42:44:15:94:ee:a3:
#                    c5:38:96:9b:4e:4e:5a:0b:47:f3:06:36:49:77:30:
#                    bc:71:37:e5:a6:ec:21:08:75:fc:e6:61:16:3f:77:
#                    d5:d9:91:97:84:0a:6c:d4:02:4d:74:c0:14:ed:fd:
#                    39:fb:83:f2:5e:14:a1:04:b0:0b:e9:fe:ee:8f:e1:
#                    6e:0b:b2:08:b3:61:66:09:6a:b1:06:3a:65:96:59:
#                    c0:f0:35:fd:c9:da:28:8d:1a:11:87:70:81:0a:a8:
#                    9a:75:1d:9e:3a:86:05:00:9e:db:80:d6:25:f9:dc:
#                    05:9e:27:59:4c:76:39:5b:ea:f9:a5:a1:d8:83:0f:
#                    d1:ff:df:30:11:f9:85:cf:33:48:f5:ca:6d:64:14:
#                    2c:7a:58:4f:d3:4b:08:49:c5:95:64:1a:63:0e:79:
#                    3d:f5:b3:8c:ca:58:ad:9c:42:45:79:6e:0e:87:19:
#                    5c:54:b1:65:b6:bf:8c:9b:dc:13:e9:0d:6f:b8:2e:
#                    dc:67:6e:c9:8b:11:b5:84:14:8a:00:19:70:83:79:
#                    91:97:91:d4:1a:27:bf:37:1e:32:07:d8:14:63:3c:
#                    28:4c:af
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AE:6C:05:A3:93:13:E2:A2:E7:E2:D7:1C:D6:C7:F0:7F:C8:67:53:A0
#            X509v3 Authority Key Identifier: 
#                keyid:AE:6C:05:A3:93:13:E2:A2:E7:E2:D7:1C:D6:C7:F0:7F:C8:67:53:A0
#
#    Signature Algorithm: sha384WithRSAEncryption
#         83:25:ed:e8:d1:fd:95:52:cd:9e:c0:04:a0:91:69:e6:5c:d0:
#         84:de:dc:ad:a2:4f:e8:47:78:d6:65:98:a9:5b:a8:3c:87:7c:
#         02:8a:d1:6e:b7:16:73:e6:5f:c0:54:98:d5:74:be:c1:cd:e2:
#         11:91:ad:23:18:3d:dd:e1:72:44:96:b4:95:5e:c0:7b:8e:99:
#         78:16:43:13:56:57:b3:a2:b3:3b:b5:77:dc:40:72:ac:a3:eb:
#         9b:35:3e:b1:08:21:a1:e7:c4:43:37:79:32:be:b5:e7:9c:2c:
#         4c:bc:43:29:99:8e:30:d3:ac:21:e0:e3:1d:fa:d8:07:33:76:
#         54:00:22:2a:b9:4d:20:2e:70:68:da:e5:53:fc:83:5c:d3:9d:
#         f2:ff:44:0c:44:66:f2:d2:e3:bd:46:00:1a:6d:02:ba:25:5d:
#         8d:a1:31:51:dd:54:46:1c:4d:db:99:96:ef:1a:1c:04:5c:a6:
#         15:ef:78:e0:79:fe:5d:db:3e:aa:4c:55:fd:9a:15:a9:6f:e1:
#         a6:fb:df:70:30:e9:c3:ee:42:46:ed:c2:93:05:89:fa:7d:63:
#         7b:3f:d0:71:81:7c:00:e8:98:ae:0e:78:34:c3:25:fb:af:0a:
#         9f:20:6b:dd:3b:13:8f:12:8c:e2:41:1a:48:7a:73:a0:77:69:
#         c7:b6:5c:7f:82:c8:1e:fe:58:1b:28:2b:a8:6c:ad:5e:6d:c0:
#         05:d2:7b:b7:eb:80:fe:25:37:fe:02:9b:68:ac:42:5d:c3:ee:
#         f5:cc:dc:f0:50:75:d2:36:69:9c:e6:7b:04:df:6e:06:69:b6:
#         de:0a:09:48:59:87:eb:7b:14:60:7a:64:aa:69:43:ef:91:c7:
#         4c:ec:18:dd:6c:ef:53:2d:8c:99:e1:5e:f2:72:3e:cf:54:c8:
#         bd:67:ec:a4:0f:4c:45:ff:d3:b9:30:23:07:4c:8f:10:bf:86:
#         96:d9:99:5a:b4:99:57:1c:a4:cc:bb:15:89:53:ba:2c:05:0f:
#         e4:c4:9e:19:b1:18:34:d5:4c:9d:ba:ed:f7:1f:af:24:95:04:
#         78:a8:03:bb:ee:81:e5:da:5f:7c:8b:4a:a1:90:74:25:a7:b3:
#         3e:4b:c8:2c:56:bd:c7:c8:ef:38:e2:5c:92:f0:79:f7:9c:84:
#         ba:74:2d:61:01:20:7e:7e:d1:f2:4f:07:59:5f:8b:2d:43:52:
#         eb:46:0c:94:e1:f5:66:47:79:77:d5:54:5b:1f:ad:24:37:cb:
#         45:5a:4e:a0:44:48:c8:d8:b0:99:c5:15:84:09:f6:d6:49:49:
#         c0:65:b8:e6:1a:71:6e:a0:a8:f1:82:e8:45:3e:6c:d6:02:d7:
#         0a:67:83:05:5a:c9:a4:10

[p11-kit-object-v1]
label: "GlobalSign Root E46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEnA6xz7fonlJ3dTT6pUanrTIZMrQHqSfK
lLsM0goQx9qJsJcMcBMJAY7Y6kfqvrKAK838KA3brLykhjftcAgAdeqTC3suUpwj
aCMGQ+ySL1OE2/tHFAfoX5RnXcl6gTwg
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root E46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICCzCCAZGgAwIBAgISEdK7ujNu1LzmJGjFDYQdmOhDMAoGCCqGSM49BAMDMEYx
CzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWduIG52LXNhMRwwGgYDVQQD
ExNHbG9iYWxTaWduIFJvb3QgRTQ2MB4XDTE5MDMyMDAwMDAwMFoXDTQ2MDMyMDAw
MDAwMFowRjELMAkGA1UEBhMCQkUxGTAXBgNVBAoTEEdsb2JhbFNpZ24gbnYtc2Ex
HDAaBgNVBAMTE0dsb2JhbFNpZ24gUm9vdCBFNDYwdjAQBgcqhkjOPQIBBgUrgQQA
IgNiAAScDrHPt+ieUnd1NPqlRqetMhkytAepJ8qUuwzSChDH2omwlwxwEwkBjtjq
R+q+soArzfwoDdusvKSGN+1wCAB16pMLey5SnCNoIwZD7JIvU4Tb+0cUB+hflGdd
yXqBPCCjQjBAMA4GA1UdDwEB/wQEAwIBhjAPBgNVHRMBAf8EBTADAQH/MB0GA1Ud
DgQWBBQxCpCPtsad0kRLgLWi5h+xEk8blTAKBggqhkjOPQQDAwNoADBlAjEA31SQ
7Zvvi5QCkxeCmb6zniz2C5GMn0oUsfZkvLtoURMMA/cVi4RguYv/Uo7njLwcAjA8
+RHUjE7AwWHCFUyqqx0LMV87HOIAl0Qx5v5zli/altP+CAezNIm8BZ/3Hobui3A=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:d2:bb:ba:33:6e:d4:bc:e6:24:68:c5:0d:84:1d:98:e8:43
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Root E46
#        Validity
#            Not Before: Mar 20 00:00:00 2019 GMT
#            Not After : Mar 20 00:00:00 2046 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Root E46
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:9c:0e:b1:cf:b7:e8:9e:52:77:75:34:fa:a5:46:
#                    a7:ad:32:19:32:b4:07:a9:27:ca:94:bb:0c:d2:0a:
#                    10:c7:da:89:b0:97:0c:70:13:09:01:8e:d8:ea:47:
#                    ea:be:b2:80:2b:cd:fc:28:0d:db:ac:bc:a4:86:37:
#                    ed:70:08:00:75:ea:93:0b:7b:2e:52:9c:23:68:23:
#                    06:43:ec:92:2f:53:84:db:fb:47:14:07:e8:5f:94:
#                    67:5d:c9:7a:81:3c:20
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                31:0A:90:8F:B6:C6:9D:D2:44:4B:80:B5:A2:E6:1F:B1:12:4F:1B:95
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:df:54:90:ed:9b:ef:8b:94:02:93:17:82:99:
#         be:b3:9e:2c:f6:0b:91:8c:9f:4a:14:b1:f6:64:bc:bb:68:51:
#         13:0c:03:f7:15:8b:84:60:b9:8b:ff:52:8e:e7:8c:bc:1c:02:
#         30:3c:f9:11:d4:8c:4e:c0:c1:61:c2:15:4c:aa:ab:1d:0b:31:
#         5f:3b:1c:e2:00:97:44:31:e6:fe:73:96:2f:da:96:d3:fe:08:
#         07:b3:34:89:bc:05:9f:f7:1e:86:ee:8b:70

[p11-kit-object-v1]
label: "GlobalSign Root R46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArKx0MuizZeW67UMmHaaJ
DUW6KYiypB1j3dPBLAlXiTmhVelnNHcMbuRVHVIl0hNrXuEdqbd9iTJfDZ6fLHpj
YEAfprC2eI+ZVJYIWK7kBrxiBQIWv6+oIwO2lA+8bmzCy9Wmuwzp9sEC+yHeZt0X
q3RC7/B0LyX06mtVW5Dbnd9ehwpA+60Za/v3ymCI3trBj9au1X/UPIPu1xZMg0Uz
ayfQhtAcLWvzq33xhan1KNKt7/OESxyH/BOjOnKiWhEr1idxJ+2BLW1mgZKHtBtY
esw/CvpGT014XPgrSOMEhMtd9rRqs2X8Qp5RJiMgyz0U+YHtZRYATxpkl2YIz4x7
4yvAnfkU8hvxVmoWvyyFhc14OJrrQmoCNBiDF06UVvi2grXzlt09875/IHc+exkj
ayzUcnNDV33g+NdpTxc2BPnAkGA3Rd7mDNh0ja6com10XUK+BvXZZG4CEKyJsEw7
B01AfiTFipiCeY6kp4IgjSP6J3HJ38ZBdKBN9pEW3EaMXyljMVlxDNhvwrYyffvm
XVOmfhX8u3V8Xez49hcc7MdrGcvze/ArB6XZbHlUdmydHKZuDul5DKgjaqPfGzAx
n7FUe/5qy2aq3GXQop5Kmgcha4GP28RZ+t4iwASc46pbNpPoPb16oZ0LdrELx539
z5ioBsL4KqOhg6C3JXKlAuMCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Root R46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:d2:bb:b9:d7:23:18:9e:40:5f:0a:9d:2d:d0:df:25:67:d1
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Root R46
#        Validity
#            Not Before: Mar 20 00:00:00 2019 GMT
#            Not After : Mar 20 00:00:00 2046 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Root R46
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ac:ac:74:32:e8:b3:65:e5:ba:ed:43:26:1d:a6:
#                    89:0d:45:ba:29:88:b2:a4:1d:63:dd:d3:c1:2c:09:
#                    57:89:39:a1:55:e9:67:34:77:0c:6e:e4:55:1d:52:
#                    25:d2:13:6b:5e:e1:1d:a9:b7:7d:89:32:5f:0d:9e:
#                    9f:2c:7a:63:60:40:1f:a6:b0:b6:78:8f:99:54:96:
#                    08:58:ae:e4:06:bc:62:05:02:16:bf:af:a8:23:03:
#                    b6:94:0f:bc:6e:6c:c2:cb:d5:a6:bb:0c:e9:f6:c1:
#                    02:fb:21:de:66:dd:17:ab:74:42:ef:f0:74:2f:25:
#                    f4:ea:6b:55:5b:90:db:9d:df:5e:87:0a:40:fb:ad:
#                    19:6b:fb:f7:ca:60:88:de:da:c1:8f:d6:ae:d5:7f:
#                    d4:3c:83:ee:d7:16:4c:83:45:33:6b:27:d0:86:d0:
#                    1c:2d:6b:f3:ab:7d:f1:85:a9:f5:28:d2:ad:ef:f3:
#                    84:4b:1c:87:fc:13:a3:3a:72:a2:5a:11:2b:d6:27:
#                    71:27:ed:81:2d:6d:66:81:92:87:b4:1b:58:7a:cc:
#                    3f:0a:fa:46:4f:4d:78:5c:f8:2b:48:e3:04:84:cb:
#                    5d:f6:b4:6a:b3:65:fc:42:9e:51:26:23:20:cb:3d:
#                    14:f9:81:ed:65:16:00:4f:1a:64:97:66:08:cf:8c:
#                    7b:e3:2b:c0:9d:f9:14:f2:1b:f1:56:6a:16:bf:2c:
#                    85:85:cd:78:38:9a:eb:42:6a:02:34:18:83:17:4e:
#                    94:56:f8:b6:82:b5:f3:96:dd:3d:f3:be:7f:20:77:
#                    3e:7b:19:23:6b:2c:d4:72:73:43:57:7d:e0:f8:d7:
#                    69:4f:17:36:04:f9:c0:90:60:37:45:de:e6:0c:d8:
#                    74:8d:ae:9c:a2:6d:74:5d:42:be:06:f5:d9:64:6e:
#                    02:10:ac:89:b0:4c:3b:07:4d:40:7e:24:c5:8a:98:
#                    82:79:8e:a4:a7:82:20:8d:23:fa:27:71:c9:df:c6:
#                    41:74:a0:4d:f6:91:16:dc:46:8c:5f:29:63:31:59:
#                    71:0c:d8:6f:c2:b6:32:7d:fb:e6:5d:53:a6:7e:15:
#                    fc:bb:75:7c:5d:ec:f8:f6:17:1c:ec:c7:6b:19:cb:
#                    f3:7b:f0:2b:07:a5:d9:6c:79:54:76:6c:9d:1c:a6:
#                    6e:0e:e9:79:0c:a8:23:6a:a3:df:1b:30:31:9f:b1:
#                    54:7b:fe:6a:cb:66:aa:dc:65:d0:a2:9e:4a:9a:07:
#                    21:6b:81:8f:db:c4:59:fa:de:22:c0:04:9c:e3:aa:
#                    5b:36:93:e8:3d:bd:7a:a1:9d:0b:76:b1:0b:c7:9d:
#                    fd:cf:98:a8:06:c2:f8:2a:a3:a1:83:a0:b7:25:72:
#                    a5:02:e3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                03:5C:AB:73:81:87:A8:CC:B0:A6:D5:94:E2:36:96:49:FF:05:99:2C
#    Signature Algorithm: sha384WithRSAEncryption
#         7c:78:ec:f6:02:2c:bb:5b:7e:92:2b:5d:39:dc:be:d8:1d:a2:
#         42:33:4d:f9:ef:a4:2a:3b:44:69:1e:ac:d9:45:a3:4e:3c:a7:
#         d8:24:51:b2:54:1c:93:4e:c4:ef:7b:93:85:60:26:ea:09:48:
#         e0:f5:bb:c7:e9:68:d2:bb:6a:31:71:cc:79:ae:11:a8:f0:99:
#         fd:e5:1f:bc:2f:a8:cc:57:eb:76:c4:21:a6:47:53:55:4d:68:
#         bf:05:a4:ee:d7:26:ab:62:da:43:37:4b:e2:c6:b5:e5:b2:83:
#         19:3a:c7:d3:db:4d:9e:08:7a:f3:ee:cf:3e:62:fb:ac:e8:60:
#         cc:d1:c7:a1:5c:83:45:c4:45:cc:f3:17:6b:14:c9:04:02:3e:
#         d2:24:a6:79:e9:1e:ce:a2:e7:c1:59:15:9f:1d:e2:4b:9a:3e:
#         9f:76:08:2d:6b:d8:ba:57:14:da:83:ea:fe:8c:55:e9:d0:4e:
#         a9:cc:77:31:b1:44:11:7a:5c:b1:3e:d3:14:45:15:18:62:24:
#         13:d2:cb:4d:ce:5c:83:c1:36:f2:10:b5:0e:88:6d:b8:e1:56:
#         9f:89:de:96:66:39:47:64:2c:6e:4d:ae:62:7b:bf:60:74:19:
#         b8:56:ac:92:ac:16:32:ed:ad:68:55:fe:98:ba:d3:34:de:f4:
#         c9:61:c3:0e:86:f6:4b:84:60:ee:0d:7b:b5:32:58:79:91:55:
#         2c:81:43:b3:74:1f:7a:aa:25:9e:1d:d7:a1:8b:b9:cd:42:2e:
#         04:a4:66:83:4d:89:35:b6:6c:a8:36:4a:79:21:78:22:d0:42:
#         bc:d1:40:31:90:a1:be:04:cf:ca:67:ed:f5:f0:80:d3:60:c9:
#         83:2a:22:05:d0:07:3b:52:bf:0c:9e:aa:2b:f9:bb:e6:1f:8f:
#         25:ba:85:8d:17:1e:02:fe:5d:50:04:57:cf:fe:2d:bc:ef:5c:
#         c0:1a:ab:b6:9f:24:c6:df:73:68:48:90:2c:14:f4:3f:52:1a:
#         e4:d2:cb:14:c3:61:69:cf:e2:f9:18:c5:ba:33:9f:14:a3:04:
#         5d:b9:71:f7:b5:94:d8:f6:33:c1:5a:c1:34:8b:7c:9b:dd:93:
#         3a:e7:13:a2:70:61:9f:af:8f:eb:d8:c5:75:f8:33:66:d4:74:
#         67:3a:37:77:9c:e7:dd:a4:0f:76:43:66:8a:43:f2:9f:fb:0c:
#         42:78:63:d1:e2:0f:6f:7b:d4:a1:3d:74:97:85:b7:48:39:41:
#         d6:20:fc:d0:3a:b3:fa:e8:6f:c4:8a:ba:71:37:be:8b:97:b1:
#         78:31:4f:b3:e7:b6:03:13:ce:54:9d:ae:25:59:cc:7f:35:5f:
#         08:f7:40:45:31:78:2a:7a

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root E45"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE+XmLgUc3iZY/RUlQfxomC5Myfi7AwKcI
msNuj5s+CyLsN1O3b4qwvCc3S22pRjvZH/+loUS7LXO/nkEHXFObUQg6WrtvOMcW
kXjCShNpHYLfWi8AiJaiLhx0+Z1+ZjeK
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root E45"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:53:fe:aa:27:1d:95:46:5d:d6:f1:9e:e5:b8:90:0a
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Secure Mail Root E45
#        Validity
#            Not Before: Mar 18 00:00:00 2020 GMT
#            Not After : Mar 18 00:00:00 2045 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Secure Mail Root E45
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:f9:79:8b:81:47:37:89:96:3f:45:49:50:7f:1a:
#                    26:0b:93:32:7e:2e:c0:c0:a7:08:9a:c3:6e:8f:9b:
#                    3e:0b:22:ec:37:53:b7:6f:8a:b0:bc:27:37:4b:6d:
#                    a9:46:3b:d9:1f:ff:a5:a1:44:bb:2d:73:bf:9e:41:
#                    07:5c:53:9b:51:08:3a:5a:bb:6f:38:c7:16:91:78:
#                    c2:4a:13:69:1d:82:df:5a:2f:00:88:96:a2:2e:1c:
#                    74:f9:9d:7e:66:37:8a
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                DF:13:5E:8B:5F:C2:40:02:FD:56:B7:94:4C:B6:1E:D5:A6:B1:14:96
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:13:b0:be:d7:71:20:3e:e4:ab:9c:ce:36:12:7d:
#         5f:4c:1f:2a:b5:69:45:33:5f:d3:2d:5a:b2:e4:88:c7:de:0a:
#         36:42:32:79:9d:a6:6b:ba:e1:f9:44:2a:7b:8a:c3:12:02:31:
#         00:a0:66:1c:4e:87:9d:87:c9:ed:99:4c:1b:0a:ee:2d:60:c3:
#         37:c7:1d:cd:b5:72:b0:d9:c6:ef:bc:f2:ff:3f:f0:52:dd:08:
#         e7:aa:64:79:c3:e4:69:57:91:2f:a4:cb:7c

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root R45"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "GlobalSign Secure Mail Root R45"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:53:fe:a8:4c:50:ab:9f:8d:32:b5:1d:03:8f:57:dc
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Secure Mail Root R45
#        Validity
#            Not Before: Mar 18 00:00:00 2020 GMT
#            Not After : Mar 18 00:00:00 2045 GMT
#        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Secure Mail Root R45
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:dc:79:cc:6d:06:f9:6d:bb:e0:56:04:6c:7f:e0:
#                    75:cc:2d:05:49:e8:4b:dc:54:ec:5b:77:95:72:bf:
#                    7f:62:9d:85:a9:8a:24:50:5f:53:e5:db:74:6f:a4:
#                    29:5b:13:2a:09:ad:9a:c5:2f:c2:f7:76:3b:a1:45:
#                    46:aa:43:e6:24:fe:2b:b0:6f:32:70:19:46:5a:79:
#                    26:2f:fc:3d:7d:5f:64:cb:57:cc:61:61:a8:d9:95:
#                    6e:e3:95:a0:6e:7f:47:12:18:d6:ef:03:c9:fb:8a:
#                    fa:9a:bd:82:15:a9:55:77:4b:11:4f:59:e0:6b:c3:
#                    71:f3:0c:d8:54:d5:81:68:3e:13:b9:15:2e:87:8a:
#                    3c:44:27:36:62:24:6e:f8:2c:05:72:30:61:bd:42:
#                    91:23:c4:9d:25:a7:d9:54:9a:14:a3:31:ad:80:79:
#                    0c:a7:63:6c:98:a3:ac:57:47:33:1f:65:96:e1:d0:
#                    d2:35:da:f9:71:f7:a1:a6:25:b5:41:5d:df:3e:60:
#                    d8:d1:f6:9f:a5:f2:b8:cc:13:aa:8f:f9:b2:6e:e1:
#                    83:2d:93:dd:3e:85:1a:dd:e8:b1:5c:26:01:cb:49:
#                    85:fc:fc:d2:d4:7f:85:62:86:74:f9:cb:ec:35:22:
#                    a2:0c:30:8f:3b:ab:79:eb:56:f2:fa:42:f3:ed:f9:
#                    1f:45:89:40:29:ad:ea:92:74:ea:52:fd:56:b4:2b:
#                    da:a2:ed:75:c2:6e:ab:ce:52:90:4b:f6:de:f0:49:
#                    8f:9a:48:d4:88:19:6d:45:e6:cc:8c:b9:dd:64:60:
#                    60:02:40:f8:b9:cf:bc:58:eb:3d:85:b9:c6:0a:d3:
#                    9c:07:66:8f:c7:18:39:23:46:e1:3c:1e:a3:2f:50:
#                    61:92:0b:3d:2b:6c:f1:a3:47:38:57:91:ab:0d:8f:
#                    c6:9d:4d:04:d2:26:52:5c:e5:a5:fd:2a:2d:16:2a:
#                    01:69:e7:a9:7d:e1:36:b7:b1:2a:c5:d9:b1:8d:bd:
#                    b9:8b:ce:cc:8b:a1:3e:0b:48:cd:50:95:34:c4:d8:
#                    08:59:d8:6b:26:f4:be:f5:d4:22:17:00:57:c9:ae:
#                    9b:04:30:33:9f:0b:fb:df:56:a2:c9:6e:54:76:da:
#                    b1:97:62:27:59:0f:11:8a:22:1b:64:96:3f:a8:f1:
#                    b7:24:4a:8d:3c:53:7c:6d:83:76:3d:b2:26:48:73:
#                    f5:44:16:01:2d:09:2a:8e:16:96:50:d0:73:06:5d:
#                    bb:22:48:82:4c:0a:46:5a:3f:80:ff:5c:f2:f2:9a:
#                    ac:2c:08:e0:d6:ea:f0:12:38:81:4f:a6:10:ed:46:
#                    ab:cc:16:9c:0b:cf:64:a6:99:02:85:44:67:46:ad:
#                    fd:4d:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A0:93:15:28:6E:EE:8F:08:B2:35:C6:9E:62:79:74:A7:B1:0E:2B:7B
#    Signature Algorithm: sha384WithRSAEncryption
#         45:0a:f8:d1:5c:ac:62:81:d0:04:d7:b6:ff:57:51:89:0b:0c:
#         cb:de:24:65:37:fb:ab:9e:ed:66:f4:ea:0c:19:69:89:b8:19:
#         b1:30:56:b4:d9:f6:f7:be:c6:ae:97:cb:45:f6:11:8c:3a:30:
#         64:4c:c1:9f:59:c0:46:42:08:06:47:64:17:78:e0:95:07:06:
#         d6:8c:a2:ac:a9:d9:3f:d3:7b:56:4f:fc:c4:87:28:df:b6:2b:
#         16:23:c0:9f:1f:5b:e3:d6:44:5e:22:4f:23:04:8c:35:16:b5:
#         79:07:86:5c:2f:97:e2:f6:08:64:a6:dc:db:a8:8a:e3:a4:7b:
#         77:0d:d1:29:93:28:20:b4:53:a3:4b:4e:5f:de:c1:f6:75:23:
#         fc:1f:3c:78:4f:70:31:78:2f:a2:35:54:71:04:ac:c8:c4:6d:
#         c3:f6:91:b1:fe:cd:ee:44:6e:81:f6:40:c5:3e:2a:01:bf:ab:
#         4c:b1:03:3f:0d:11:e4:0f:d2:24:e3:22:88:9b:9f:5f:47:3d:
#         51:49:e0:09:37:7e:17:21:31:76:b7:67:71:48:28:4b:25:d7:
#         10:e8:9f:61:59:16:c5:3e:32:4e:1f:0c:ce:a3:cc:0f:e4:c7:
#         11:07:22:2f:38:08:dd:5b:97:eb:42:6c:59:9a:9a:ee:7a:d0:
#         9d:df:c5:db:09:43:2e:0a:aa:19:3d:6b:e8:6a:30:7a:57:e6:
#         bf:b3:6a:39:a9:8f:e3:f1:4f:65:68:b6:bd:9f:28:8f:a1:16:
#         5a:09:50:3a:32:2e:1d:2f:44:11:42:a6:00:e6:31:98:ff:2d:
#         a1:0f:e6:a4:60:56:cf:79:d7:b2:4e:d7:b0:fa:6e:0c:57:23:
#         c7:ce:1f:a5:b1:4c:6d:19:49:9e:0e:7f:70:8f:71:3f:58:28:
#         9f:75:dd:61:e0:3a:b7:39:b6:ee:97:d4:35:51:fb:8b:49:60:
#         c8:3c:66:ae:97:ee:8d:26:59:57:bb:78:f0:7a:50:30:09:b0:
#         60:aa:9f:4e:dc:c9:3e:1e:3a:dc:62:93:33:b0:3a:54:74:6f:
#         2c:31:45:d1:6b:11:32:6a:68:76:f6:3d:f6:6a:13:5e:24:98:
#         e7:ea:1d:9a:cf:78:82:07:60:f7:4d:10:d3:81:9a:45:8d:9e:
#         af:9b:dc:80:c7:43:b2:95:68:a4:c3:0e:e8:0a:47:15:bf:54:
#         33:dc:01:e7:d5:a6:1e:73:d8:7a:b2:bf:2f:ad:e3:55:30:9e:
#         df:0e:41:bc:e0:11:f5:a1:0c:a8:22:e1:e3:00:a3:4e:70:7c:
#         92:e3:04:d1:7a:42:8a:75:90:59:e3:9b:d1:4c:a2:64:bd:73:
#         79:9b:6f:f2:b3:c1:f6:3c

[p11-kit-object-v1]
label: "Global Chambersign Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAonCi0J9CrlsXx9h9zxSD
/E/JobcTr4rXnj4ECpKLYFb6tDIviE2hYAj0twlOoEkvSdbT352XWp+UBHDsP1nZ
t8xmi5hSKAkC38UvhI16l3e/7ECdJXKrtT8ymPu3t/xyhOU1h/lV+qMfDm8uKN1p
oNlCEMb4tUTC0EN/27zkojxqVXgKd6nY6hkyty/+XD8b7rGY7MqtemlF45YPVfbm
7XXqZegyVpNGiaglimUG7mu/eQfQ8bev7SxNkrvAqF+nZ30E8hUIcKyS1n0E0jP7
TLYLC/saycSNA6l+XPJQqxKloc9IUKXv0sgaE/qwf7GCHHdqD1/cC5WP70N+5kUJ
JQIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Global Chambersign Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=EU, O=AC Camerfirma SA CIF A82743287, OU=http://www.chambersign.org, CN=Global Chambersign Root
#        Validity
#            Not Before: Sep 30 16:14:18 2003 GMT
#            Not After : Sep 30 16:14:18 2037 GMT
#        Subject: C=EU, O=AC Camerfirma SA CIF A82743287, OU=http://www.chambersign.org, CN=Global Chambersign Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a2:70:a2:d0:9f:42:ae:5b:17:c7:d8:7d:cf:14:
#                    83:fc:4f:c9:a1:b7:13:af:8a:d7:9e:3e:04:0a:92:
#                    8b:60:56:fa:b4:32:2f:88:4d:a1:60:08:f4:b7:09:
#                    4e:a0:49:2f:49:d6:d3:df:9d:97:5a:9f:94:04:70:
#                    ec:3f:59:d9:b7:cc:66:8b:98:52:28:09:02:df:c5:
#                    2f:84:8d:7a:97:77:bf:ec:40:9d:25:72:ab:b5:3f:
#                    32:98:fb:b7:b7:fc:72:84:e5:35:87:f9:55:fa:a3:
#                    1f:0e:6f:2e:28:dd:69:a0:d9:42:10:c6:f8:b5:44:
#                    c2:d0:43:7f:db:bc:e4:a2:3c:6a:55:78:0a:77:a9:
#                    d8:ea:19:32:b7:2f:fe:5c:3f:1b:ee:b1:98:ec:ca:
#                    ad:7a:69:45:e3:96:0f:55:f6:e6:ed:75:ea:65:e8:
#                    32:56:93:46:89:a8:25:8a:65:06:ee:6b:bf:79:07:
#                    d0:f1:b7:af:ed:2c:4d:92:bb:c0:a8:5f:a7:67:7d:
#                    04:f2:15:08:70:ac:92:d6:7d:04:d2:33:fb:4c:b6:
#                    0b:0b:fb:1a:c9:c4:8d:03:a9:7e:5c:f2:50:ab:12:
#                    a5:a1:cf:48:50:a5:ef:d2:c8:1a:13:fa:b0:7f:b1:
#                    82:1c:77:6a:0f:5f:dc:0b:95:8f:ef:43:7e:e6:45:
#                    09:25
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.chambersign.org/chambersignroot.crl
#
#            X509v3 Subject Key Identifier: 
#                43:9C:36:9F:B0:9E:30:4D:C6:CE:5F:AD:10:AB:E5:03:A5:FA:A9:14
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            X509v3 Subject Alternative Name: 
#                email:chambersignroot@chambersign.org
#            X509v3 Issuer Alternative Name: 
#                email:chambersignroot@chambersign.org
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.17326.10.1.1
#                  CPS: http://cps.chambersign.org/cps/chambersignroot.html
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3c:3b:70:91:f9:04:54:27:91:e1:ed:ed:fe:68:7f:61:5d:e5:
#         41:65:4f:32:f1:18:05:94:6a:1c:de:1f:70:db:3e:7b:32:02:
#         34:b5:0c:6c:a1:8a:7c:a5:f4:8f:ff:d4:d8:ad:17:d5:2d:04:
#         d1:3f:58:80:e2:81:59:88:be:c0:e3:46:93:24:fe:90:bd:26:
#         a2:30:2d:e8:97:26:57:35:89:74:96:18:f6:15:e2:af:24:19:
#         56:02:02:b2:ba:0f:14:ea:c6:8a:66:c1:86:45:55:8b:be:92:
#         be:9c:a4:04:c7:49:3c:9e:e8:29:7a:89:d7:fe:af:ff:68:f5:
#         a5:17:90:bd:ac:99:cc:a5:86:57:09:67:46:db:d6:16:c2:46:
#         f1:e4:a9:50:f5:8f:d1:92:15:d3:5f:3e:c6:00:49:3a:6e:58:
#         b2:d1:d1:27:0d:25:c8:32:f8:20:11:cd:7d:32:33:48:94:54:
#         4c:dd:dc:79:c4:30:9f:eb:8e:b8:55:b5:d7:88:5c:c5:6a:24:
#         3d:b2:d3:05:03:51:c6:07:ef:cc:14:72:74:3d:6e:72:ce:18:
#         28:8c:4a:a0:77:e5:09:2b:45:44:47:ac:b7:67:7f:01:8a:05:
#         5a:93:be:a1:c1:ff:f8:e7:0e:67:a4:47:49:76:5d:75:90:1a:
#         f5:26:8f:f0

[p11-kit-object-v1]
label: "Global Chambersign Root - 2008"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Global Chambersign Root - 2008"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c9:cd:d3:e9:d5:7d:23:ce
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=EU, L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287, O=AC Camerfirma S.A., CN=Global Chambersign Root - 2008
#        Validity
#            Not Before: Aug  1 12:31:40 2008 GMT
#            Not After : Jul 31 12:31:40 2038 GMT
#        Subject: C=EU, L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287, O=AC Camerfirma S.A., CN=Global Chambersign Root - 2008
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:df:56:d3:e4:3a:9b:76:45:b4:13:db:ff:c1:
#                    b6:19:8b:37:41:18:95:52:47:eb:17:9d:29:88:8e:
#                    35:6c:06:32:2e:47:62:f3:49:04:bf:7d:44:36:b1:
#                    71:cc:bd:5a:09:73:d5:d9:85:44:ff:91:57:25:df:
#                    5e:36:8e:70:d1:5c:71:43:1d:d9:da:ef:5c:d2:fb:
#                    1b:bd:3a:b5:cb:ad:a3:cc:44:a7:0d:ae:21:15:3f:
#                    b9:7a:5b:92:75:d8:a4:12:38:89:19:8a:b7:80:d2:
#                    e2:32:6f:56:9c:91:d6:88:10:0b:b3:74:64:92:74:
#                    60:f3:f6:cf:18:4f:60:b2:23:d0:c7:3b:ce:61:4b:
#                    99:8f:c2:0c:d0:40:b2:98:dc:0d:a8:4e:a3:b9:0a:
#                    ae:60:a0:ad:45:52:63:ba:66:bd:68:e0:f9:be:1a:
#                    a8:81:bb:1e:41:78:75:d3:c1:fe:00:55:b0:87:54:
#                    e8:27:90:35:1d:4c:33:ad:97:fc:97:2e:98:84:bf:
#                    2c:c9:a3:bf:d1:98:11:14:ed:63:f8:ca:98:88:58:
#                    17:99:ed:45:03:97:7e:3c:86:1e:88:8c:be:f2:91:
#                    84:8f:65:34:d8:00:4c:7d:b7:31:17:5a:29:7a:0a:
#                    18:24:30:a3:37:b5:7a:a9:01:7d:26:d6:f9:0e:8e:
#                    59:f1:fd:1b:33:b5:29:3b:17:3b:41:b6:21:dd:d4:
#                    c0:3d:a5:9f:9f:1f:43:50:c9:bb:bc:6c:7a:97:98:
#                    ee:cd:8c:1f:fb:9c:51:ae:8b:70:bd:27:9f:71:c0:
#                    6b:ac:7d:90:66:e8:d7:5d:3a:0d:b0:d5:c2:8d:d5:
#                    c8:9d:9d:c1:6d:d0:d0:bf:51:e4:e3:f8:c3:38:36:
#                    ae:d6:a7:75:e6:af:84:43:5d:93:92:0c:6a:07:de:
#                    3b:1d:98:22:d6:ac:c1:35:db:a3:a0:25:ff:72:b5:
#                    76:1d:de:6d:e9:2c:66:2c:52:84:d0:45:92:ce:1c:
#                    e5:e5:33:1d:dc:07:53:54:a3:aa:82:3b:9a:37:2f:
#                    dc:dd:a0:64:e9:e6:dd:bd:ae:fc:64:85:1d:3c:a7:
#                    c9:06:de:84:ff:6b:e8:6b:1a:3c:c5:a2:b3:42:fb:
#                    8b:09:3e:5f:08:52:c7:62:c4:d4:05:71:bf:c4:64:
#                    e4:f8:a1:83:e8:3e:12:9b:a8:1e:d4:36:4d:2f:71:
#                    f6:8d:28:f6:83:a9:13:d2:61:c1:91:bb:48:c0:34:
#                    8f:41:8c:4b:4c:db:69:12:ff:50:94:9c:20:83:59:
#                    73:ed:7c:a1:f2:f1:fd:dd:f7:49:d3:43:58:a0:56:
#                    63:ca:3d:3d:e5:35:56:59:e9:0e:ca:20:cc:2b:4b:
#                    93:29:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:12
#            X509v3 Subject Key Identifier: 
#                B9:09:CA:9C:1E:DB:D3:6C:3A:6B:AE:ED:54:F1:5B:93:06:35:2E:5E
#            X509v3 Authority Key Identifier: 
#                keyid:B9:09:CA:9C:1E:DB:D3:6C:3A:6B:AE:ED:54:F1:5B:93:06:35:2E:5E
#                DirName:/C=EU/L=Madrid (see current address at www.camerfirma.com/address)/serialNumber=A82743287/O=AC Camerfirma S.A./CN=Global Chambersign Root - 2008
#                serial:C9:CD:D3:E9:D5:7D:23:CE
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  CPS: http://policy.camerfirma.com
#
#    Signature Algorithm: sha1WithRSAEncryption
#         80:88:7f:70:de:92:28:d9:05:94:46:ff:90:57:a9:f1:2f:df:
#         1a:0d:6b:fa:7c:0e:1c:49:24:79:27:d8:46:aa:6f:29:59:52:
#         88:70:12:ea:dd:3d:f5:9b:53:54:6f:e1:60:a2:a8:09:b9:ec:
#         eb:59:7c:c6:35:f1:dc:18:e9:f1:67:e5:af:ba:45:e0:09:de:
#         ca:44:0f:c2:17:0e:77:91:45:7a:33:5f:5f:96:2c:68:8b:c1:
#         47:8f:98:9b:3d:c0:ec:cb:f5:d5:82:92:84:35:d1:be:36:38:
#         56:72:31:5b:47:2d:aa:17:a4:63:51:eb:0a:01:ad:7f:ec:75:
#         9e:cb:a1:1f:f1:7f:12:b1:b9:e4:64:7f:67:d6:23:2a:f4:b8:
#         39:5d:98:e8:21:a7:e1:bd:3d:42:1a:74:9a:70:af:68:6c:50:
#         5d:49:cf:ff:fb:0e:5d:e6:2c:47:d7:81:3a:59:00:b5:73:6b:
#         63:20:f6:31:45:08:39:0e:f4:70:7e:40:70:5a:3f:d0:6b:42:
#         a9:74:3d:28:2f:02:6d:75:72:95:09:8d:48:63:c6:c6:23:57:
#         92:93:5e:35:c1:8d:f9:0a:f7:2c:9d:62:1c:f6:ad:7c:dd:a6:
#         31:1e:b6:b1:c7:7e:85:26:fa:a4:6a:b5:da:63:30:d1:ef:93:
#         37:b2:66:2f:7d:05:f7:e7:b7:4b:98:94:35:c0:d9:3a:29:c1:
#         9d:b2:50:33:1d:4a:a9:5a:a6:c9:03:ef:ed:f4:e7:a8:6e:8a:
#         b4:57:84:eb:a4:3f:d0:ee:aa:aa:87:5b:63:e8:93:e2:6b:a8:
#         d4:b8:72:78:6b:1b:ed:39:e4:5d:cb:9b:aa:87:d5:4f:4e:00:
#         fe:d9:6a:9f:3c:31:0f:28:02:01:7d:98:e8:a7:b0:a2:64:9e:
#         79:f8:48:f2:15:a9:cc:e6:c8:44:eb:3f:78:99:f2:7b:71:3e:
#         3c:f1:98:a7:c5:18:12:3f:e6:bb:28:33:42:e9:45:0a:7c:6d:
#         f2:86:79:2f:c5:82:19:7d:09:89:7c:b2:54:76:88:ae:de:c1:
#         f3:cc:e1:6e:db:31:d6:93:ae:99:a0:ef:25:6a:73:98:89:5b:
#         3a:2e:13:88:1e:bf:c0:92:94:34:1b:e3:27:b7:8b:1e:6f:42:
#         ff:e7:e9:37:9b:50:1d:2d:a2:f9:02:ee:cb:58:58:3a:71:bc:
#         68:e3:aa:c1:af:1c:28:1f:a2:dc:23:65:3f:81:ea:ae:99:d3:
#         d8:30:cf:13:0d:4f:15:c9:84:bc:a7:48:2d:f8:30:23:77:d8:
#         46:4b:79:6d:f6:8c:ed:3a:7f:60:11:78:f4:e9:9b:ae:d5:54:
#         c0:74:80:d1:0b:42:9f:c1

[p11-kit-object-v1]
label: "Go Daddy Class 2 CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEA3p3X6lcYSaFb69dfSIbq
vt3/5O9nHPRlaLNXcaBed7vtm0npcIA9VhhjCG/a8szQP38CVCJUENiygdTAdT1L
f8d3wz54qxoDtSBrL2orscWIfsS7HrDB2EUnb6o3WPeHJtfYLfapF7cfcjZOphc/
ZZiS2ypuXaL+iOAL3n/ljRXh68s61eISohMt2I6vXxI9oAgFCLZcpWU4BEWZHqNg
YHTFQaVyYhtixR9vXxpCvgJRZaiuIxhq/HgDqU1/gMP6q1r8oUCkyhkW/rLI715z
De53vZr2eZi8sQdnohUN3aBYxkR7Cj5iKF+6QQdTWM8Rfjh0xfj/tWmQj4R06pcb
rwIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Go Daddy Class 2 CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=The Go Daddy Group, Inc., OU=Go Daddy Class 2 Certification Authority
#        Validity
#            Not Before: Jun 29 17:06:20 2004 GMT
#            Not After : Jun 29 17:06:20 2034 GMT
#        Subject: C=US, O=The Go Daddy Group, Inc., OU=Go Daddy Class 2 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:de:9d:d7:ea:57:18:49:a1:5b:eb:d7:5f:48:86:
#                    ea:be:dd:ff:e4:ef:67:1c:f4:65:68:b3:57:71:a0:
#                    5e:77:bb:ed:9b:49:e9:70:80:3d:56:18:63:08:6f:
#                    da:f2:cc:d0:3f:7f:02:54:22:54:10:d8:b2:81:d4:
#                    c0:75:3d:4b:7f:c7:77:c3:3e:78:ab:1a:03:b5:20:
#                    6b:2f:6a:2b:b1:c5:88:7e:c4:bb:1e:b0:c1:d8:45:
#                    27:6f:aa:37:58:f7:87:26:d7:d8:2d:f6:a9:17:b7:
#                    1f:72:36:4e:a6:17:3f:65:98:92:db:2a:6e:5d:a2:
#                    fe:88:e0:0b:de:7f:e5:8d:15:e1:eb:cb:3a:d5:e2:
#                    12:a2:13:2d:d8:8e:af:5f:12:3d:a0:08:05:08:b6:
#                    5c:a5:65:38:04:45:99:1e:a3:60:60:74:c5:41:a5:
#                    72:62:1b:62:c5:1f:6f:5f:1a:42:be:02:51:65:a8:
#                    ae:23:18:6a:fc:78:03:a9:4d:7f:80:c3:fa:ab:5a:
#                    fc:a1:40:a4:ca:19:16:fe:b2:c8:ef:5e:73:0d:ee:
#                    77:bd:9a:f6:79:98:bc:b1:07:67:a2:15:0d:dd:a0:
#                    58:c6:44:7b:0a:3e:62:28:5f:ba:41:07:53:58:cf:
#                    11:7e:38:74:c5:f8:ff:b5:69:90:8f:84:74:ea:97:
#                    1b:af
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D2:C4:B0:D2:91:D4:4C:11:71:B3:61:CB:3D:A1:FE:DD:A8:6A:D4:E3
#            X509v3 Authority Key Identifier: 
#                keyid:D2:C4:B0:D2:91:D4:4C:11:71:B3:61:CB:3D:A1:FE:DD:A8:6A:D4:E3
#                DirName:/C=US/O=The Go Daddy Group, Inc./OU=Go Daddy Class 2 Certification Authority
#                serial:00
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         32:4b:f3:b2:ca:3e:91:fc:12:c6:a1:07:8c:8e:77:a0:33:06:
#         14:5c:90:1e:18:f7:08:a6:3d:0a:19:f9:87:80:11:6e:69:e4:
#         96:17:30:ff:34:91:63:72:38:ee:cc:1c:01:a3:1d:94:28:a4:
#         31:f6:7a:c4:54:d7:f6:e5:31:58:03:a2:cc:ce:62:db:94:45:
#         73:b5:bf:45:c9:24:b5:d5:82:02:ad:23:79:69:8d:b8:b6:4d:
#         ce:cf:4c:ca:33:23:e8:1c:88:aa:9d:8b:41:6e:16:c9:20:e5:
#         89:9e:cd:3b:da:70:f7:7e:99:26:20:14:54:25:ab:6e:73:85:
#         e6:9b:21:9d:0a:6c:82:0e:a8:f8:c2:0c:fa:10:1e:6c:96:ef:
#         87:0d:c4:0f:61:8b:ad:ee:83:2b:95:f8:8e:92:84:72:39:eb:
#         20:ea:83:ed:83:cd:97:6e:08:bc:eb:4e:26:b6:73:2b:e4:d3:
#         f6:4c:fe:26:71:e2:61:11:74:4a:ff:57:1a:87:0f:75:48:2e:
#         cf:51:69:17:a0:02:12:61:95:d5:d1:40:b2:10:4c:ee:c4:ac:
#         10:43:a6:a5:9e:0a:d5:95:62:9a:0d:cf:88:82:c5:32:0c:e4:
#         2b:9f:45:e6:0d:9f:28:9c:b1:b9:2a:5a:57:ad:37:0f:af:1d:
#         7f:db:bd:9f

[p11-kit-object-v1]
label: "Go Daddy Root Certificate Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv3FiCPH6WTT3G8kYo/eA
SVjpIoMTpsUgQwE7hPHmhUmfJ+r2hBtOoLTbcJjHMgGxBT4HTu70+k8vWTAi56sZ
VmvigAf88xZ1gDlRe+X5NbZ0TqmNghPktj+pA4P6or6KFWp/3gvDthkUBcrqw6gE
lDtGfDIN8wBmIsiNaW02jBEYt9OyHGC0OPoCjM7T3UYH3go+6118yHz7sCtTpJJi
aVElBWEaRIGMLKlDliPfrDqBmg4pxRyp6V0etp6eMAo5zvGIgPtLXcwy7IViQyU0
AlYnAZG0O3AqP26x6JyIAX2f1PnbU21gnb8s51iruF9G/M7EGwM8CetJMVxpRrPg
RwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Go Daddy Root Certificate Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDxTCCAq2gAwIBAgIBADANBgkqhkiG9w0BAQsFADCBgzELMAkGA1UEBhMCVVMx
EDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxGjAYBgNVBAoT
EUdvRGFkZHkuY29tLCBJbmMuMTEwLwYDVQQDEyhHbyBEYWRkeSBSb290IENlcnRp
ZmljYXRlIEF1dGhvcml0eSAtIEcyMB4XDTA5MDkwMTAwMDAwMFoXDTM3MTIzMTIz
NTk1OVowgYMxCzAJBgNVBAYTAlVTMRAwDgYDVQQIEwdBcml6b25hMRMwEQYDVQQH
EwpTY290dHNkYWxlMRowGAYDVQQKExFHb0RhZGR5LmNvbSwgSW5jLjExMC8GA1UE
AxMoR28gRGFkZHkgUm9vdCBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkgLSBHMjCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAL9xYgjx+lk09xvJGKP3gElY6SKD
E6bFIEMBO4Tx5oVJnyfq9oQbTqC023CYxzIBsQU+B07u9PpPL1kwIuerGVZr4oAH
/PMWdYA5UXvl+TW2dE6pjYIT5LY/qQOD+qK+ihVqf94Lw7YZFAXK6sOoBJQ7Rnwy
DfMAZiLIjWltNowRGLfTshxgtDj6AozO091GB94KPutdfMh8+7ArU6SSYmlRJQVh
GkSBjCypQ5Yj36w6gZoOKcUcqeldHraenjAKOc7xiID7S13MMuyFYkMlNAJWJwGR
tDtwKj9useiciAF9n9T521NtYJ2/LOdYq7hfRvzOxBsDPAnrSTFcaUaz4EcCAwEA
AaNCMEAwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHQYDVR0OBBYE
FDqahQcQZyi27/a9BUFuIMGU2g/eMA0GCSqGSIb3DQEBCwUAA4IBAQCZ21151fmX
WWcDYfF+OwYxdS2hII5PZYe096acvNjpL9DbWu7PdIxztDhC2gV7+AJ1uP2lsdeu
9tfeE8tTEH6KRtGX+rcuKxGrkLAngPnon1rpN5+r5N9ss4UXnT3ZJE95kTXWXwTr
gIOrmgIttRD02JDHBHNA7XIloKmf7J6raBKZV8aPEjoJpL1E/QYVN8Gb5DKj7Tjo
2GTzLH4U/ALqn83/B2gX2yKQOC16jdFU8WnjXzPKej17CuPKf1855eJ1usV2GDPO
LPAvTK33sefOT6jEm0pUBsV/fdUID+Ic/n4XuKxe9tQWskMJDE32p2u0mYRlynqI
4uJEvlz36hz1
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., CN=Go Daddy Root Certificate Authority - G2
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Dec 31 23:59:59 2037 GMT
#        Subject: C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., CN=Go Daddy Root Certificate Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bf:71:62:08:f1:fa:59:34:f7:1b:c9:18:a3:f7:
#                    80:49:58:e9:22:83:13:a6:c5:20:43:01:3b:84:f1:
#                    e6:85:49:9f:27:ea:f6:84:1b:4e:a0:b4:db:70:98:
#                    c7:32:01:b1:05:3e:07:4e:ee:f4:fa:4f:2f:59:30:
#                    22:e7:ab:19:56:6b:e2:80:07:fc:f3:16:75:80:39:
#                    51:7b:e5:f9:35:b6:74:4e:a9:8d:82:13:e4:b6:3f:
#                    a9:03:83:fa:a2:be:8a:15:6a:7f:de:0b:c3:b6:19:
#                    14:05:ca:ea:c3:a8:04:94:3b:46:7c:32:0d:f3:00:
#                    66:22:c8:8d:69:6d:36:8c:11:18:b7:d3:b2:1c:60:
#                    b4:38:fa:02:8c:ce:d3:dd:46:07:de:0a:3e:eb:5d:
#                    7c:c8:7c:fb:b0:2b:53:a4:92:62:69:51:25:05:61:
#                    1a:44:81:8c:2c:a9:43:96:23:df:ac:3a:81:9a:0e:
#                    29:c5:1c:a9:e9:5d:1e:b6:9e:9e:30:0a:39:ce:f1:
#                    88:80:fb:4b:5d:cc:32:ec:85:62:43:25:34:02:56:
#                    27:01:91:b4:3b:70:2a:3f:6e:b1:e8:9c:88:01:7d:
#                    9f:d4:f9:db:53:6d:60:9d:bf:2c:e7:58:ab:b8:5f:
#                    46:fc:ce:c4:1b:03:3c:09:eb:49:31:5c:69:46:b3:
#                    e0:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                3A:9A:85:07:10:67:28:B6:EF:F6:BD:05:41:6E:20:C1:94:DA:0F:DE
#    Signature Algorithm: sha256WithRSAEncryption
#         99:db:5d:79:d5:f9:97:59:67:03:61:f1:7e:3b:06:31:75:2d:
#         a1:20:8e:4f:65:87:b4:f7:a6:9c:bc:d8:e9:2f:d0:db:5a:ee:
#         cf:74:8c:73:b4:38:42:da:05:7b:f8:02:75:b8:fd:a5:b1:d7:
#         ae:f6:d7:de:13:cb:53:10:7e:8a:46:d1:97:fa:b7:2e:2b:11:
#         ab:90:b0:27:80:f9:e8:9f:5a:e9:37:9f:ab:e4:df:6c:b3:85:
#         17:9d:3d:d9:24:4f:79:91:35:d6:5f:04:eb:80:83:ab:9a:02:
#         2d:b5:10:f4:d8:90:c7:04:73:40:ed:72:25:a0:a9:9f:ec:9e:
#         ab:68:12:99:57:c6:8f:12:3a:09:a4:bd:44:fd:06:15:37:c1:
#         9b:e4:32:a3:ed:38:e8:d8:64:f3:2c:7e:14:fc:02:ea:9f:cd:
#         ff:07:68:17:db:22:90:38:2d:7a:8d:d1:54:f1:69:e3:5f:33:
#         ca:7a:3d:7b:0a:e3:ca:7f:5f:39:e5:e2:75:ba:c5:76:18:33:
#         ce:2c:f0:2f:4c:ad:f7:b1:e7:ce:4f:a8:c4:9b:4a:54:06:c5:
#         7f:7d:d5:08:0f:e2:1c:fe:7e:17:b8:ac:5e:f6:d4:16:b2:43:
#         09:0c:4d:f6:a7:6b:b4:99:84:65:ca:7a:88:e2:e2:44:be:5c:
#         f7:ea:1c:f5

[p11-kit-object-v1]
label: "Government Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Government Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFSzCCAzOgAwIBAgIRALZLiAfiI+7IXBKtpg4GofIwDQYJKoZIhvcNAQELBQAw
PzELMAkGA1UEBhMCVFcxMDAuBgNVBAoMJ0dvdmVybm1lbnQgUm9vdCBDZXJ0aWZp
Y2F0aW9uIEF1dGhvcml0eTAeFw0xMjA5MjgwODU4NTFaFw0zNzEyMzExNTU5NTla
MD8xCzAJBgNVBAYTAlRXMTAwLgYDVQQKDCdHb3Zlcm5tZW50IFJvb3QgQ2VydGlm
aWNhdGlvbiBBdXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoIC
AQC2/5c8gb4BWCQnr44BK9ZykjAyG1+bfNTUf+ihYHMwVxAA+lCWJP5Q5ow6ldFX
eYTVZ1MMKoI+GFy4MCYa1l7GLbIEUQ7v3wxjR+vEEghRK5lxXtVpe+FdyXcdIOxW
juVhYC386RyA3/pqg7sFtR4jEpyCygrzFB0g5AaPQySZn7YKk1pzGxY5vgW28Yyl
ZJKPBeRcdvc5w88tvQ7Yy6gOMZvJRg9nU0MEj8iyyIOAX7ryD6uBNaIgIZfOD4k0
eA/PH07p+4woPN405+2f0mb1xcoxeNLOUNFggmOd4Ez3B66DNJ1JSUPUfr0t4urH
cWWACOQ2nnlwCjyHKenkkpTqBpIpJ3jmrdc96QoLXvTg1oadLXLLi2RW5vSueKWg
OTNYPNyoj420ai39iHPplVBzBN8RiD5C1gJ0+yzEb7xs1uCAb9GGpTJXA9ZN9E4K
mSJ2fkpAgvjJ5E7LUy3Hsbbi08J1J265DnGyNPy/HE7CPfg26QrMWJqhGIZO4uGq
s3NZbl6dtMIIr69c/aQCb/+4DbvVq9dunxpPkUDwH0ZVbaCSw4nNt7H/HLPLo5wK
4/7NqrwB7N1UypHdTxOHpPaY7/1J1lcqPKZc9mA3v9g+fk5oKiMyOr5u5CI9ByTP
isubXVGzMNJxbc5Gim18SjNE2hIvNkvy6fFRCW3bapcOFwIDAQABo0IwQDAPBgNV
HRMBAf8EBTADAQH/MB0GA1UdDgQWBBTVZx3gnHosnMvFmOcdByYqhux0zTAOBgNV
HQ8BAf8EBAMCAQYwDQYJKoZIhvcNAQELBQADggIBAJA75cJTQijq9TFOjj2Rnk0J
89ixUuZPrAwxIbvx6pnMg/y2KOTshAcOD06Xu29oRo8OURWV+Do7H1+CDgxxDryR
T64zLiNB9CZrTxOH+nj2LsIPkQWXqmrBap+8hJ4IKifd2ocXhuGzyl3tOKkpboTe
Rmv8JxlQpRJ6jH1i/NrnzLyfSa8GuCcn8on3Fj0Y5r3e9YwSkZ/jBI3+BxQaWqw5
ghvxOBnhY+OvbLamURfr+kvriyL2l/4QOl+UoEtTcT9a4RD4co+WgN2NApgAYT2N
vC2xR8zaXeEgp4wxXPHj2rkKhkfIoT0Hozymc26Uke1uJDr5yTDRB6iBfSZ9fYTf
hsmL5a4NHr6JSFEVg5iWL0rrczTXdM3Jb9DCuiv2mv6Z3WAUjhv5nDk8f0OJU+jl
wqu+Iq0nOJt3KLejY2OngeepaUXrjnhWzAWEx/uttjB8YwWfLYwkf0uLkvw4Hp+g
pVezbp3YZLhwmmBScMip0P/GnO0QYV7Ngw5u6E0CQUridgR51lQ/ipgyFKDdLZzn
uoJxo4ZVKZnSKdt1OvfbQ/+2W/u3fjWAjg1srnm3Ni2XUqGwB5wH5Ss2zQOXlL0t
DjQG/MAWifw3VOTWzz0TBPKR2ck2Lj7FWtClTILD/y58Jnb38/1FoqVuVa4uzM8s
iTTa9g3nkagQ6hed8vbs
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            b6:4b:88:07:e2:23:ee:c8:5c:12:ad:a6:0e:06:a1:f2
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TW, O=Government Root Certification Authority
#        Validity
#            Not Before: Sep 28 08:58:51 2012 GMT
#            Not After : Dec 31 15:59:59 2037 GMT
#        Subject: C=TW, O=Government Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:ff:97:3c:81:be:01:58:24:27:af:8e:01:2b:
#                    d6:72:92:30:32:1b:5f:9b:7c:d4:d4:7f:e8:a1:60:
#                    73:30:57:10:00:fa:50:96:24:fe:50:e6:8c:3a:95:
#                    d1:57:79:84:d5:67:53:0c:2a:82:3e:18:5c:b8:30:
#                    26:1a:d6:5e:c6:2d:b2:04:51:0e:ef:df:0c:63:47:
#                    eb:c4:12:08:51:2b:99:71:5e:d5:69:7b:e1:5d:c9:
#                    77:1d:20:ec:56:8e:e5:61:60:2d:fc:e9:1c:80:df:
#                    fa:6a:83:bb:05:b5:1e:23:12:9c:82:ca:0a:f3:14:
#                    1d:20:e4:06:8f:43:24:99:9f:b6:0a:93:5a:73:1b:
#                    16:39:be:05:b6:f1:8c:a5:64:92:8f:05:e4:5c:76:
#                    f7:39:c3:cf:2d:bd:0e:d8:cb:a8:0e:31:9b:c9:46:
#                    0f:67:53:43:04:8f:c8:b2:c8:83:80:5f:ba:f2:0f:
#                    ab:81:35:a2:20:21:97:ce:0f:89:34:78:0f:cf:1f:
#                    4e:e9:fb:8c:28:3c:de:34:e7:ed:9f:d2:66:f5:c5:
#                    ca:31:78:d2:ce:50:d1:60:82:63:9d:e0:4c:f7:07:
#                    ae:83:34:9d:49:49:43:d4:7e:bd:2d:e2:ea:c7:71:
#                    65:80:08:e4:36:9e:79:70:0a:3c:87:29:e9:e4:92:
#                    94:ea:06:92:29:27:78:e6:ad:d7:3d:e9:0a:0b:5e:
#                    f4:e0:d6:86:9d:2d:72:cb:8b:64:56:e6:f4:ae:78:
#                    a5:a0:39:33:58:3c:dc:a8:8f:8d:b4:6a:2d:fd:88:
#                    73:e9:95:50:73:04:df:11:88:3e:42:d6:02:74:fb:
#                    2c:c4:6f:bc:6c:d6:e0:80:6f:d1:86:a5:32:57:03:
#                    d6:4d:f4:4e:0a:99:22:76:7e:4a:40:82:f8:c9:e4:
#                    4e:cb:53:2d:c7:b1:b6:e2:d3:c2:75:27:6e:b9:0e:
#                    71:b2:34:fc:bf:1c:4e:c2:3d:f8:36:e9:0a:cc:58:
#                    9a:a1:18:86:4e:e2:e1:aa:b3:73:59:6e:5e:9d:b4:
#                    c2:08:af:af:5c:fd:a4:02:6f:ff:b8:0d:bb:d5:ab:
#                    d7:6e:9f:1a:4f:91:40:f0:1f:46:55:6d:a0:92:c3:
#                    89:cd:b7:b1:ff:1c:b3:cb:a3:9c:0a:e3:fe:cd:aa:
#                    bc:01:ec:dd:54:ca:91:dd:4f:13:87:a4:f6:98:ef:
#                    fd:49:d6:57:2a:3c:a6:5c:f6:60:37:bf:d8:3e:7e:
#                    4e:68:2a:23:32:3a:be:6e:e4:22:3d:07:24:cf:8a:
#                    cb:9b:5d:51:b3:30:d2:71:6d:ce:46:8a:6d:7c:4a:
#                    33:44:da:12:2f:36:4b:f2:e9:f1:51:09:6d:db:6a:
#                    97:0e:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                D5:67:1D:E0:9C:7A:2C:9C:CB:C5:98:E7:1D:07:26:2A:86:EC:74:CD
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         90:3b:e5:c2:53:42:28:ea:f5:31:4e:8e:3d:91:9e:4d:09:f3:
#         d8:b1:52:e6:4f:ac:0c:31:21:bb:f1:ea:99:cc:83:fc:b6:28:
#         e4:ec:84:07:0e:0f:4e:97:bb:6f:68:46:8f:0e:51:15:95:f8:
#         3a:3b:1f:5f:82:0e:0c:71:0e:bc:91:4f:ae:33:2e:23:41:f4:
#         26:6b:4f:13:87:fa:78:f6:2e:c2:0f:91:05:97:aa:6a:c1:6a:
#         9f:bc:84:9e:08:2a:27:dd:da:87:17:86:e1:b3:ca:5d:ed:38:
#         a9:29:6e:84:de:46:6b:fc:27:19:50:a5:12:7a:8c:7d:62:fc:
#         da:e7:cc:bc:9f:49:af:06:b8:27:27:f2:89:f7:16:3d:18:e6:
#         bd:de:f5:8c:12:91:9f:e3:04:8d:fe:07:14:1a:5a:ac:39:82:
#         1b:f1:38:19:e1:63:e3:af:6c:b6:a6:51:17:eb:fa:4b:eb:8b:
#         22:f6:97:fe:10:3a:5f:94:a0:4b:53:71:3f:5a:e1:10:f8:72:
#         8f:96:80:dd:8d:02:98:00:61:3d:8d:bc:2d:b1:47:cc:da:5d:
#         e1:20:a7:8c:31:5c:f1:e3:da:b9:0a:86:47:c8:a1:3d:07:a3:
#         3c:a6:73:6e:94:91:ed:6e:24:3a:f9:c9:30:d1:07:a8:81:7d:
#         26:7d:7d:84:df:86:c9:8b:e5:ae:0d:1e:be:89:48:51:15:83:
#         98:96:2f:4a:eb:73:34:d7:74:cd:c9:6f:d0:c2:ba:2b:f6:9a:
#         fe:99:dd:60:14:8e:1b:f9:9c:39:3c:7f:43:89:53:e8:e5:c2:
#         ab:be:22:ad:27:38:9b:77:28:b7:a3:63:63:a7:81:e7:a9:69:
#         45:eb:8e:78:56:cc:05:84:c7:fb:ad:b6:30:7c:63:05:9f:2d:
#         8c:24:7f:4b:8b:92:fc:38:1e:9f:a0:a5:57:b3:6e:9d:d8:64:
#         b8:70:9a:60:52:70:c8:a9:d0:ff:c6:9c:ed:10:61:5e:cd:83:
#         0e:6e:e8:4d:02:41:4a:e2:76:04:79:d6:54:3f:8a:98:32:14:
#         a0:dd:2d:9c:e7:ba:82:71:a3:86:55:29:99:d2:29:db:75:3a:
#         f7:db:43:ff:b6:5b:fb:b7:7e:35:80:8e:0d:6c:ae:79:b7:36:
#         2d:97:52:a1:b0:07:9c:07:e5:2b:36:cd:03:97:94:bd:2d:0e:
#         34:06:fc:c0:16:89:fc:37:54:e4:d6:cf:3d:13:04:f2:91:d9:
#         c9:36:2e:3e:c5:5a:d0:a5:4c:82:c3:ff:2e:7c:26:76:f7:f3:
#         fd:45:a2:a5:6e:55:ae:2e:cc:cf:2c:89:34:da:f6:0d:e7:91:
#         a8:10:ea:17:9d:f2:f6:ec

[p11-kit-object-v1]
label: "HARICA Client ECC Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEBxitlZaU0FwPgvcqQPoCyck9NqajBGrB
bZUBiGASVGxcoituEzqIlQwcJoY2SokZtxjeO+ioUB/K31u/SYAV2+Mw4R1axyqK
AQf+bSw07ygol7zB+VeGlYs1z55a0WiV
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Client ECC Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:68:d9:d8:e1:62:57:1e:d2:19:44:88:e6:10:7d:f0
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Client ECC Root CA 2021
#        Validity
#            Not Before: Feb 19 11:03:34 2021 GMT
#            Not After : Feb 13 11:03:33 2045 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Client ECC Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:07:18:ad:95:96:94:d0:5c:0f:82:f7:2a:40:fa:
#                    02:c9:c9:3d:36:a6:a3:04:6a:c1:6d:95:01:88:60:
#                    12:54:6c:5c:a2:2b:6e:13:3a:88:95:0c:1c:26:86:
#                    36:4a:89:19:b7:18:de:3b:e8:a8:50:1f:ca:df:5b:
#                    bf:49:80:15:db:e3:30:e1:1d:5a:c7:2a:8a:01:07:
#                    fe:6d:2c:34:ef:28:28:97:bc:c1:f9:57:86:95:8b:
#                    35:cf:9e:5a:d1:68:95
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                52:08:D2:BE:32:81:25:FD:F5:1A:97:EC:4E:5F:1A:BB:53:CD:90:AD
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:4c:31:45:46:4f:a8:e6:be:c3:77:b2:1a:18:4b:
#         2d:88:7b:58:e6:ab:94:6b:44:03:b0:17:ff:df:82:73:44:51:
#         2c:fd:93:1d:06:7b:14:d2:89:ec:40:0c:ef:21:01:2e:02:30:
#         2f:c9:2e:5a:6c:2c:1d:d9:95:e0:9e:b0:b9:5c:52:7c:f6:f8:
#         38:ca:2e:f1:d4:1d:f2:a2:49:a2:95:f8:c1:58:5e:4f:fe:73:
#         0a:ef:31:b0:ab:23:58:13:8c:8b:de:3b

[p11-kit-object-v1]
label: "HARICA Client RSA Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Client RSA Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            55:52:f8:1e:db:1b:24:2c:9e:bb:96:18:cd:02:28:3e
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Client RSA Root CA 2021
#        Validity
#            Not Before: Feb 19 10:58:46 2021 GMT
#            Not After : Feb 13 10:58:45 2045 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Client RSA Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:81:db:57:42:90:2c:74:35:f4:f8:b8:74:19:4d:
#                    ab:09:5a:77:45:81:73:62:b0:35:9f:f8:d0:b7:33:
#                    00:87:13:b6:96:ab:0e:54:12:30:07:bc:9b:b7:48:
#                    d7:d1:19:83:ae:8e:d8:a9:f1:a9:00:84:b0:8c:5e:
#                    9e:e8:0c:8f:54:69:bf:f6:d4:08:4f:26:70:fe:18:
#                    41:63:1a:b3:32:8b:40:f8:07:ab:57:31:f0:c6:16:
#                    76:67:9a:b4:dd:2f:f2:d1:6b:c5:d0:92:84:91:71:
#                    6e:0f:2e:63:e9:1f:53:a4:dd:52:13:cc:09:83:29:
#                    81:0c:c5:53:75:44:b1:0e:67:53:18:d0:c3:1f:88:
#                    4b:9f:94:24:b4:29:bc:bb:e8:4e:fd:6f:d2:15:1d:
#                    49:dc:8d:70:f2:11:1a:20:51:55:11:ba:88:6f:c4:
#                    f7:50:79:d6:aa:31:e2:84:3d:5e:32:c8:77:2a:50:
#                    71:e5:0b:2f:e9:b6:ea:ef:ab:0a:33:39:0e:fd:8f:
#                    a5:67:43:82:8e:98:69:09:09:1b:40:cd:38:67:47:
#                    ea:c9:ec:97:71:12:de:24:f5:72:3c:d1:f7:43:4c:
#                    26:f7:90:b2:89:e9:45:4b:55:3d:31:05:7a:41:e2:
#                    95:ba:43:c0:17:c5:b6:85:3d:19:8d:64:70:f3:5b:
#                    ac:cd:9f:d3:29:75:87:4b:95:67:6a:a6:f8:d1:dd:
#                    bc:90:86:89:43:29:a9:37:5b:f5:5d:b0:26:5a:53:
#                    42:76:90:2b:cf:9e:56:6c:2b:54:cf:5c:9a:65:df:
#                    5b:8b:48:60:38:7c:fb:c5:0b:cf:76:04:63:02:33:
#                    2a:7d:f5:83:67:e7:fa:c6:43:fd:2b:0f:d4:26:2f:
#                    77:a4:32:c1:24:ea:64:9d:bf:b3:38:71:31:44:f2:
#                    47:b8:a2:66:41:a1:fb:9b:7b:bc:c7:46:6a:75:bf:
#                    5a:a2:8c:e8:6a:44:c1:b8:96:b5:c0:32:08:2d:7b:
#                    74:35:73:b2:ca:c6:fe:af:11:72:18:f6:e7:c8:c2:
#                    cf:a5:2a:ea:7b:d6:59:e8:7c:a0:b2:6a:40:09:69:
#                    0e:a5:96:db:d1:00:b9:f1:88:6e:36:f0:88:b2:9d:
#                    f1:52:f2:c3:7c:bf:30:89:3c:0a:69:f9:22:a4:65:
#                    e1:9b:e0:74:c6:b1:85:97:96:2c:ae:94:8f:50:a6:
#                    39:12:1f:be:47:f2:81:78:d3:75:36:9e:7d:5a:20:
#                    97:e2:52:ae:99:9f:c6:7c:9b:66:f3:fe:d8:cf:ee:
#                    bd:97:06:1d:2d:85:dc:3e:36:53:96:7b:20:ba:e8:
#                    c8:e1:ad:96:62:3e:11:7c:b3:00:84:9e:a7:4c:71:
#                    ab:4a:37
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A0:D6:07:3D:5E:24:F7:7B:A0:44:2E:24:52:0D:19:AA:2B:04:91:A7
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         0d:47:f9:09:66:31:52:ec:79:ee:c2:a8:f2:68:3e:ed:96:45:
#         cb:3a:a6:98:63:3f:ea:2b:4d:4e:03:d0:1c:82:e1:cb:d3:e5:
#         d6:ab:5b:67:28:bc:9d:fe:0c:99:0a:80:55:a7:ce:1b:23:61:
#         0d:b0:57:f0:fe:e0:ca:be:e6:90:db:83:2c:be:83:8e:f4:79:
#         b6:fe:d0:0d:42:a7:58:1f:69:ea:81:f5:05:a5:fe:46:68:eb:
#         6c:78:c9:e0:ea:e7:e6:de:31:c5:d2:d5:2c:82:63:28:9d:5d:
#         a8:1a:7e:88:e6:e7:2b:f1:2c:d5:d0:05:9e:dc:2d:bd:37:66:
#         d4:04:a2:a7:ad:bf:3a:c2:a8:3b:ad:ff:8d:9d:33:e0:b9:9a:
#         84:a1:87:1f:76:f4:82:74:d7:0e:f9:30:48:3e:5b:88:3e:aa:
#         5c:6b:d6:2f:0c:e8:8e:73:c2:18:91:83:39:b6:66:5a:d0:1f:
#         60:27:5d:4d:e3:f6:3a:0d:66:50:9c:78:7b:ab:f3:13:10:ae:
#         0f:2f:ab:e8:64:b3:18:20:9d:46:35:64:25:73:ea:9b:10:5c:
#         58:35:89:b1:46:48:a7:f4:ac:d4:1d:9e:5b:cc:a9:a5:1a:13:
#         4f:24:50:aa:d9:1b:6d:b1:40:fb:9d:dd:58:74:c4:c2:6f:14:
#         72:ec:db:35:9f:b8:54:75:45:c3:a6:c8:1a:28:35:3a:ae:65:
#         f2:a9:98:ce:af:5b:c9:38:8c:31:3b:7f:cc:dc:96:fd:e2:5b:
#         d6:d0:59:f4:76:ba:0b:cb:4f:83:10:c7:40:d0:1d:60:e9:2a:
#         e5:48:58:77:0c:45:69:be:19:71:04:24:e2:e3:24:1f:4a:c8:
#         c1:3e:99:f5:96:98:38:48:25:a1:15:b0:1b:d7:e2:84:18:5b:
#         f6:71:35:9a:68:7b:40:cc:18:5c:0c:24:9d:d4:95:f5:99:aa:
#         46:ea:ae:ac:bf:f4:14:19:24:e8:8c:ec:e3:f5:bc:06:68:8a:
#         2a:0c:05:5f:0a:97:75:a7:dc:7e:c0:fd:d7:7a:18:df:30:d1:
#         38:4b:1f:b0:98:70:bf:cc:7c:73:f0:6e:c4:31:a5:a4:97:1d:
#         ac:bf:ce:6c:21:4a:be:27:23:67:f3:06:56:81:0a:91:8e:b6:
#         e1:03:05:33:2c:da:34:08:4d:4e:50:23:ad:1f:a5:c5:d4:7a:
#         fe:ea:09:ec:a7:28:60:8b:46:7c:b5:ea:9b:dd:4f:f9:e7:6b:
#         15:c6:88:cf:43:db:e5:27:dc:04:56:6e:6f:46:15:f1:56:2d:
#         e8:5c:0c:73:c3:23:81:38:20:cb:c9:0c:69:cf:2c:ab:3b:84:
#         60:33:19:52:fd:69:14:33

[p11-kit-object-v1]
label: "HARICA Code Signing ECC Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEQ5+8XEJqQ+GsS7gOX4AG4wV3i38Leddh
oJC/8lMoo1i6lMBmahxZ2oBYgQBMvMl5mBAMxx0L45PchTlo2b+nQ9IxzIKCJ7qI
0dItVjf3OtpuOdxxEGXuOAuHegO6MF9k
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Code Signing ECC Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICZjCCAe2gAwIBAgIQTIpjHaljjwWi+3YU/1uizTAKBggqhkjOPQQDAzB1MQsw
CQYDVQQGEwJHUjE3MDUGA1UECgwuSGVsbGVuaWMgQWNhZGVtaWMgYW5kIFJlc2Vh
cmNoIEluc3RpdHV0aW9ucyBDQTEtMCsGA1UEAwwkSEFSSUNBIENvZGUgU2lnbmlu
ZyBFQ0MgUm9vdCBDQSAyMDIxMB4XDTIxMDIxOTExMDQzNloXDTQ1MDIxMzExMDQz
NVowdTELMAkGA1UEBhMCR1IxNzA1BgNVBAoMLkhlbGxlbmljIEFjYWRlbWljIGFu
ZCBSZXNlYXJjaCBJbnN0aXR1dGlvbnMgQ0ExLTArBgNVBAMMJEhBUklDQSBDb2Rl
IFNpZ25pbmcgRUNDIFJvb3QgQ0EgMjAyMTB2MBAGByqGSM49AgEGBSuBBAAiA2IA
BEOfvFxCakPhrEu4Dl+ABuMFd4t/C3nXYaCQv/JTKKNYupTAZmocWdqAWIEATLzJ
eZgQDMcdC+OT3IU5aNm/p0PSMcyCgie6iNHSLVY39zrabjnccRBl7jgLh3oDujBf
ZKNCMEAwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUanHBc2qTQqaXcl67kF+C
kg8r1uswDgYDVR0PAQH/BAQDAgGGMAoGCCqGSM49BAMDA2cAMGQCMB6l1QtElRDk
Z3xOhV65RUkCc7CyHLOnItEAYUAPs4c3Fo0A7baLVSUGlJDc1+d1nwIwf3Rr8Urf
8PeEe/LFeTADSPIeICJXZFRXNIB3tz8jT7T1gJjCwVZboOfWoY/1DG8d
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:8a:63:1d:a9:63:8f:05:a2:fb:76:14:ff:5b:a2:cd
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Code Signing ECC Root CA 2021
#        Validity
#            Not Before: Feb 19 11:04:36 2021 GMT
#            Not After : Feb 13 11:04:35 2045 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Code Signing ECC Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:43:9f:bc:5c:42:6a:43:e1:ac:4b:b8:0e:5f:80:
#                    06:e3:05:77:8b:7f:0b:79:d7:61:a0:90:bf:f2:53:
#                    28:a3:58:ba:94:c0:66:6a:1c:59:da:80:58:81:00:
#                    4c:bc:c9:79:98:10:0c:c7:1d:0b:e3:93:dc:85:39:
#                    68:d9:bf:a7:43:d2:31:cc:82:82:27:ba:88:d1:d2:
#                    2d:56:37:f7:3a:da:6e:39:dc:71:10:65:ee:38:0b:
#                    87:7a:03:ba:30:5f:64
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:71:C1:73:6A:93:42:A6:97:72:5E:BB:90:5F:82:92:0F:2B:D6:EB
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:1e:a5:d5:0b:44:95:10:e4:67:7c:4e:85:5e:b9:
#         45:49:02:73:b0:b2:1c:b3:a7:22:d1:00:61:40:0f:b3:87:37:
#         16:8d:00:ed:b6:8b:55:25:06:94:90:dc:d7:e7:75:9f:02:30:
#         7f:74:6b:f1:4a:df:f0:f7:84:7b:f2:c5:79:30:03:48:f2:1e:
#         20:22:57:64:54:57:34:80:77:b7:3f:23:4f:b4:f5:80:98:c2:
#         c1:56:5b:a0:e7:d6:a1:8f:f5:0c:6f:1d

[p11-kit-object-v1]
label: "HARICA Code Signing RSA Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAimruqgojVQyLBkLjlVtU
eF/FjgYsfDwxvq8NqaHsSiBYBZ3iaLK7619/KjO58lWcb6qkHu0QvoMpETbmnj/6
bXtR4dV3pb3LaQ47IiCUDDFlQA0JrxA1epvqeQhEpItnqStNwefQ16f2tTqN2aOp
ebikZVy88z73n5n2uMNlaC2rgy7dhZkEqfXRXNVRQgG5n0G1SyKyAPTLZxDvacQQ
rfqUBnZQEleCrsUUrTx9u53xc+F88K5x3lv3Et33gPHcPvFguskZl291dIVM/TlD
w2RuNKwTwRxltlJC8UbrL/pdps8OSZ33dHx4DQY6LBL74ksm5G+LIYEzQjkT6EKr
W1XUG7s3thKR9/N9vNL/7LHD1aDMsivHj11+TFJCSPuP/VqQcxDVqXJUjUnbOFKq
RkgOL/oALMxzDDZLJM4TbKakpKPWfJvpOAvGJNtNrGchSVtBN2TmYGsf7SovYBkw
Htg8nBlDh9/ACvTkymCIetajueQlLnni/sHLPLf3z05YTPvDrat9qsqI+w44DR+e
XDnruAfEUCJN+IV/buyM+rZxTd59lmnE3T4e3iaQCixNFZWpoj7cPQ53fI1BKE+4
g1G+PrePkDpwMYla+pNT/GDJjXWQ7lovHYSfAKnmw4Yjoh7dEuOhRmAbZ79QFSKS
fEq0jI9unJXCLNw7OiC2vIsCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA Code Signing RSA Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFtjCCA56gAwIBAgIQFcKuKk2ZmmOM07oTGXYI9TANBgkqhkiG9w0BAQsFADB1
MQswCQYDVQQGEwJHUjE3MDUGA1UECgwuSGVsbGVuaWMgQWNhZGVtaWMgYW5kIFJl
c2VhcmNoIEluc3RpdHV0aW9ucyBDQTEtMCsGA1UEAwwkSEFSSUNBIENvZGUgU2ln
bmluZyBSU0EgUm9vdCBDQSAyMDIxMB4XDTIxMDIxOTEwNTk1NFoXDTQ1MDIxMzEw
NTk1M1owdTELMAkGA1UEBhMCR1IxNzA1BgNVBAoMLkhlbGxlbmljIEFjYWRlbWlj
IGFuZCBSZXNlYXJjaCBJbnN0aXR1dGlvbnMgQ0ExLTArBgNVBAMMJEhBUklDQSBD
b2RlIFNpZ25pbmcgUlNBIFJvb3QgQ0EgMjAyMTCCAiIwDQYJKoZIhvcNAQEBBQAD
ggIPADCCAgoCggIBAIpq7qoKI1UMiwZC45VbVHhfxY4GLHw8Mb6vDamh7EogWAWd
4miyu+tffyozufJVnG+qpB7tEL6DKRE25p4/+m17UeHVd6W9y2kOOyIglAwxZUAN
Ca8QNXqb6nkIRKSLZ6krTcHn0Nen9rU6jdmjqXm4pGVcvPM+95+Z9rjDZWgtq4Mu
3YWZBKn10VzVUUIBuZ9BtUsisgD0y2cQ72nEEK36lAZ2UBJXgq7FFK08fbud8XPh
fPCucd5b9xLd94Dx3D7xYLrJGZdvdXSFTP05Q8NkbjSsE8EcZbZSQvFG6y/6XabP
Dkmd93R8eA0GOiwS++JLJuRviyGBM0I5E+hCq1tV1Bu7N7YSkffzfbzS/+yxw9Wg
zLIrx49dfkxSQkj7j/1akHMQ1alyVI1J2zhSqkZIDi/6ACzMcww2SyTOE2ympKSj
1nyb6TgLxiTbTaxnIUlbQTdk5mBrH+0qL2AZMB7YPJwZQ4ffwAr05MpgiHrWo7nk
JS554v7Byzy3989OWEz7w62rfarKiPsOOA0fnlw567gHxFAiTfiFf27sjPq2cU3e
fZZpxN0+Ht4mkAosTRWVqaI+3D0Od3yNQShPuINRvj63j5A6cDGJWvqTU/xgyY11
kO5aLx2EnwCp5sOGI6Ie3RLjoUZgG2e/UBUiknxKtIyPbpyVwizcOzogtryLAgMB
AAGjQjBAMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFLRkFkjo/FpLMymJ65lA
uSC09mEaMA4GA1UdDwEB/wQEAwIBhjANBgkqhkiG9w0BAQsFAAOCAgEAK6xZi+Y5
RNz7rUqI4GT/q8Py0s5wLwPlb7LE9TbWU2uHqx2LmQfIMI5Hcv2huHXWF6EWvWRz
kTBXrX39BUCGk9FJlrIL1HxkE4vTIUk4u/vozD4x8a57TCrfggajjgWEnH9wzsC7
RRffXWUM5FBIB0SLpC9W2sZ69mCNpDjxnYcWMLLwX3pCVSBxz8zuALESR79CueSz
tR0ZhLmYbeBptBVBteJQSMcf6pq3eZHd1dVTGfyuGGxp261ZKJtkmKc8x1WO0TAA
z9QynmKxwyruNSLGu/B8u4O4AIn13BqX2TiaKVNhGaan9DtH/d1nlQ+OpGYsgpq3
LXHm3674+GjBuw/qUKBFl7calRJvyLO2BWjaah4ONYWErHQMirT0dZ8ir7BUu7ae
IvnZ69WKDcfc+JgxX576xpf0QRB104G2MV963YiFCK9wRwI3e+JK7F3y3SkSRMiK
qt3SVXgXda9xaQ13cEqwH39C28dx3FjWGL1QxblyBMdne3xTYMpJGBW8QHOuK6gr
rG8RRDnsgkh+Ecr71j+2wLm4BpN1vZMndxcNXKWe6sFbAC0MqDVgx+JvNRs9drXn
rd10I0+GskfvyC/QhXw5ljehKykCvT6Hz6j2HXUyzzjjc7HuEIG1KrGIBlEeWjpI
UfM2WWLfQmZZULdYvvV2QJoSFuYOqtdsoNU=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:c2:ae:2a:4d:99:9a:63:8c:d3:ba:13:19:76:08:f5
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Code Signing RSA Root CA 2021
#        Validity
#            Not Before: Feb 19 10:59:54 2021 GMT
#            Not After : Feb 13 10:59:53 2045 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA Code Signing RSA Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:8a:6a:ee:aa:0a:23:55:0c:8b:06:42:e3:95:5b:
#                    54:78:5f:c5:8e:06:2c:7c:3c:31:be:af:0d:a9:a1:
#                    ec:4a:20:58:05:9d:e2:68:b2:bb:eb:5f:7f:2a:33:
#                    b9:f2:55:9c:6f:aa:a4:1e:ed:10:be:83:29:11:36:
#                    e6:9e:3f:fa:6d:7b:51:e1:d5:77:a5:bd:cb:69:0e:
#                    3b:22:20:94:0c:31:65:40:0d:09:af:10:35:7a:9b:
#                    ea:79:08:44:a4:8b:67:a9:2b:4d:c1:e7:d0:d7:a7:
#                    f6:b5:3a:8d:d9:a3:a9:79:b8:a4:65:5c:bc:f3:3e:
#                    f7:9f:99:f6:b8:c3:65:68:2d:ab:83:2e:dd:85:99:
#                    04:a9:f5:d1:5c:d5:51:42:01:b9:9f:41:b5:4b:22:
#                    b2:00:f4:cb:67:10:ef:69:c4:10:ad:fa:94:06:76:
#                    50:12:57:82:ae:c5:14:ad:3c:7d:bb:9d:f1:73:e1:
#                    7c:f0:ae:71:de:5b:f7:12:dd:f7:80:f1:dc:3e:f1:
#                    60:ba:c9:19:97:6f:75:74:85:4c:fd:39:43:c3:64:
#                    6e:34:ac:13:c1:1c:65:b6:52:42:f1:46:eb:2f:fa:
#                    5d:a6:cf:0e:49:9d:f7:74:7c:78:0d:06:3a:2c:12:
#                    fb:e2:4b:26:e4:6f:8b:21:81:33:42:39:13:e8:42:
#                    ab:5b:55:d4:1b:bb:37:b6:12:91:f7:f3:7d:bc:d2:
#                    ff:ec:b1:c3:d5:a0:cc:b2:2b:c7:8f:5d:7e:4c:52:
#                    42:48:fb:8f:fd:5a:90:73:10:d5:a9:72:54:8d:49:
#                    db:38:52:aa:46:48:0e:2f:fa:00:2c:cc:73:0c:36:
#                    4b:24:ce:13:6c:a6:a4:a4:a3:d6:7c:9b:e9:38:0b:
#                    c6:24:db:4d:ac:67:21:49:5b:41:37:64:e6:60:6b:
#                    1f:ed:2a:2f:60:19:30:1e:d8:3c:9c:19:43:87:df:
#                    c0:0a:f4:e4:ca:60:88:7a:d6:a3:b9:e4:25:2e:79:
#                    e2:fe:c1:cb:3c:b7:f7:cf:4e:58:4c:fb:c3:ad:ab:
#                    7d:aa:ca:88:fb:0e:38:0d:1f:9e:5c:39:eb:b8:07:
#                    c4:50:22:4d:f8:85:7f:6e:ec:8c:fa:b6:71:4d:de:
#                    7d:96:69:c4:dd:3e:1e:de:26:90:0a:2c:4d:15:95:
#                    a9:a2:3e:dc:3d:0e:77:7c:8d:41:28:4f:b8:83:51:
#                    be:3e:b7:8f:90:3a:70:31:89:5a:fa:93:53:fc:60:
#                    c9:8d:75:90:ee:5a:2f:1d:84:9f:00:a9:e6:c3:86:
#                    23:a2:1e:dd:12:e3:a1:46:60:1b:67:bf:50:15:22:
#                    92:7c:4a:b4:8c:8f:6e:9c:95:c2:2c:dc:3b:3a:20:
#                    b6:bc:8b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B4:64:16:48:E8:FC:5A:4B:33:29:89:EB:99:40:B9:20:B4:F6:61:1A
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         2b:ac:59:8b:e6:39:44:dc:fb:ad:4a:88:e0:64:ff:ab:c3:f2:
#         d2:ce:70:2f:03:e5:6f:b2:c4:f5:36:d6:53:6b:87:ab:1d:8b:
#         99:07:c8:30:8e:47:72:fd:a1:b8:75:d6:17:a1:16:bd:64:73:
#         91:30:57:ad:7d:fd:05:40:86:93:d1:49:96:b2:0b:d4:7c:64:
#         13:8b:d3:21:49:38:bb:fb:e8:cc:3e:31:f1:ae:7b:4c:2a:df:
#         82:06:a3:8e:05:84:9c:7f:70:ce:c0:bb:45:17:df:5d:65:0c:
#         e4:50:48:07:44:8b:a4:2f:56:da:c6:7a:f6:60:8d:a4:38:f1:
#         9d:87:16:30:b2:f0:5f:7a:42:55:20:71:cf:cc:ee:00:b1:12:
#         47:bf:42:b9:e4:b3:b5:1d:19:84:b9:98:6d:e0:69:b4:15:41:
#         b5:e2:50:48:c7:1f:ea:9a:b7:79:91:dd:d5:d5:53:19:fc:ae:
#         18:6c:69:db:ad:59:28:9b:64:98:a7:3c:c7:55:8e:d1:30:00:
#         cf:d4:32:9e:62:b1:c3:2a:ee:35:22:c6:bb:f0:7c:bb:83:b8:
#         00:89:f5:dc:1a:97:d9:38:9a:29:53:61:19:a6:a7:f4:3b:47:
#         fd:dd:67:95:0f:8e:a4:66:2c:82:9a:b7:2d:71:e6:df:ae:f8:
#         f8:68:c1:bb:0f:ea:50:a0:45:97:b7:1a:95:12:6f:c8:b3:b6:
#         05:68:da:6a:1e:0e:35:85:84:ac:74:0c:8a:b4:f4:75:9f:22:
#         af:b0:54:bb:b6:9e:22:f9:d9:eb:d5:8a:0d:c7:dc:f8:98:31:
#         5f:9e:fa:c6:97:f4:41:10:75:d3:81:b6:31:5f:7a:dd:88:85:
#         08:af:70:47:02:37:7b:e2:4a:ec:5d:f2:dd:29:12:44:c8:8a:
#         aa:dd:d2:55:78:17:75:af:71:69:0d:77:70:4a:b0:1f:7f:42:
#         db:c7:71:dc:58:d6:18:bd:50:c5:b9:72:04:c7:67:7b:7c:53:
#         60:ca:49:18:15:bc:40:73:ae:2b:a8:2b:ac:6f:11:44:39:ec:
#         82:48:7e:11:ca:fb:d6:3f:b6:c0:b9:b8:06:93:75:bd:93:27:
#         77:17:0d:5c:a5:9e:ea:c1:5b:00:2d:0c:a8:35:60:c7:e2:6f:
#         35:1b:3d:76:b5:e7:ad:dd:74:23:4f:86:b2:47:ef:c8:2f:d0:
#         85:7c:39:96:37:a1:2b:29:02:bd:3e:87:cf:a8:f6:1d:75:32:
#         cf:38:e3:73:b1:ee:10:81:b5:2a:b1:88:06:51:1e:5a:3a:48:
#         51:f3:36:59:62:df:42:66:59:50:b7:58:be:f5:76:40:9a:12:
#         16:e6:0e:aa:d7:6c:a0:d5

[p11-kit-object-v1]
label: "HARICA TLS ECC Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEOAj+saCW0nqsr0k60MDgwzsoqvFybWUA
R4iE/Joma6pLumwECoheF/JVh/wwsDTiNFhXGoRT6TDZqfKWdMNRH1hJMcyYTmAR
h3XTcpSQT5sQJSqoeC2+kEFYkBVyp6G3
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA TLS ECC Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            67:74:9d:8d:77:d8:3b:6a:db:22:f4:ff:59:e2:bf:ce
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA TLS ECC Root CA 2021
#        Validity
#            Not Before: Feb 19 11:01:10 2021 GMT
#            Not After : Feb 13 11:01:09 2045 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA TLS ECC Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:38:08:fe:b1:a0:96:d2:7a:ac:af:49:3a:d0:c0:
#                    e0:c3:3b:28:aa:f1:72:6d:65:00:47:88:84:fc:9a:
#                    26:6b:aa:4b:ba:6c:04:0a:88:5e:17:f2:55:87:fc:
#                    30:b0:34:e2:34:58:57:1a:84:53:e9:30:d9:a9:f2:
#                    96:74:c3:51:1f:58:49:31:cc:98:4e:60:11:87:75:
#                    d3:72:94:90:4f:9b:10:25:2a:a8:78:2d:be:90:41:
#                    58:90:15:72:a7:a1:b7
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C9:1B:53:81:12:FE:04:D5:16:D1:AA:BC:9A:6F:B7:A0:95:19:6E:CA
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:11:de:ae:f8:dc:4e:88:b0:a9:f0:22:ad:c2:51:
#         40:ef:60:71:2d:ee:8f:02:c4:5d:03:70:49:a4:92:ea:c5:14:
#         88:70:a6:d3:0d:b0:aa:ca:2c:40:9c:fb:e9:82:6e:9a:02:30:
#         2b:47:9a:07:c6:d1:c2:81:7c:ca:0b:96:18:41:1b:a3:f4:30:
#         09:9e:b5:23:28:0d:9f:14:b6:3c:53:a2:4c:06:69:7d:fa:6c:
#         91:c6:2a:49:45:e6:ec:b7:13:e1:3a:6c

[p11-kit-object-v1]
label: "HARICA TLS RSA Root CA 2021"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAi8Lnr2WbBWeWyQ0kudAO
ZPzO4iQYLIR/d1HLBBE2uF7taXGnnuQlCZdnwUfCz5EWNmI9OAThUYL/rNK0ad0u
7BGjRe5raztMv4yNpB6dEbnpOPl6DgyY4iMd0U5j1Oe4QUT7a69r2h/TxZGIW6SJ
ktGB5ow5WKDWaUOprZhSWG7bCvtrz2j646ReOkVzmAfqXwJy3gyls5+uqR23HbP8
ilnnbnJlrfUwlCMH84IWSzWYnFO7L8rkWtnHjR38mJn7LKSCa/AqH44LX3FcXK5C
eymJgcsDo5nKiJ4LQAlBM9vmWHr9rplwwFoP1hOGcS92afyQ3dstbtHym/Uaa55v
FYx68EsooCI4gCRsNqQ78jCR83gTz8E/NavxHREjtUMingGStxgC5RHRgtsVAMxh
N8EqfJrh0LqzUEbugqydMfj7I+IDAEhwowkmeRVTYPM4XK046oEAYxS5M17dC9ug
RQcaMwn4TbSnAqZp9MJZBYhlhVauS8vg3jx9LRrI6fsfo2FK1ioTrXdMGhibkQ9Y
2AZUxZf4qj8giqaFpnf2pvwc4u5ulDMqg1CECuVPhvhQRXgAgetbaOMmjcx7XFH0
FCxAvhpgHXpyYR0fYy2Iqs6iRZAI/Gu+s1AqWv2oSBhG1pBAkpAKhF5oMfjr7Q3T
HcZ9mRhVVidlLo1FxSTszuMCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HARICA TLS RSA Root CA 2021"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFpDCCA4ygAwIBAgIQOcqTHO9D88aOk8f0ZIk4fjANBgkqhkiG9w0BAQsFADBs
MQswCQYDVQQGEwJHUjE3MDUGA1UECgwuSGVsbGVuaWMgQWNhZGVtaWMgYW5kIFJl
c2VhcmNoIEluc3RpdHV0aW9ucyBDQTEkMCIGA1UEAwwbSEFSSUNBIFRMUyBSU0Eg
Um9vdCBDQSAyMDIxMB4XDTIxMDIxOTEwNTUzOFoXDTQ1MDIxMzEwNTUzN1owbDEL
MAkGA1UEBhMCR1IxNzA1BgNVBAoMLkhlbGxlbmljIEFjYWRlbWljIGFuZCBSZXNl
YXJjaCBJbnN0aXR1dGlvbnMgQ0ExJDAiBgNVBAMMG0hBUklDQSBUTFMgUlNBIFJv
b3QgQ0EgMjAyMTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAIvC569l
mwVnlskNJLnQDmT8zuIkGCyEf3dRywQRNrhe7Wlxp57kJQmXZ8FHws+RFjZiPTgE
4VGC/6zStGndLuwRo0Xua2s7TL+MjaQenRG56Tj5eg4MmOIjHdFOY9TnuEFE+2uv
a9of08WRiFukiZLRgeaMOVig1mlDqa2YUlhu2wr7a89o+uOkXjpFc5gH6l8Cct4M
pbOfrqkdtx2z/IpZ525yZa31MJQjB/OCFks1mJxTuy/K5FrZx40d/JiZ+yykgmvw
Kh+OC19xXFyuQnspiYHLA6OZyoieC0AJQTPb5lh6/a6ZcMBaD9YThnEvdmn8kN3b
LW7R8pv1GmuebxWMevBLKKAiOIAkbDakO/IwkfN4E8/BPzWr8R0RI7VDIp4BkrcY
AuUR0YLbFQDMYTfBKnya4dC6s1BG7oKsnTH4+yPiAwBIcKMJJnkVU2DzOFytOOqB
AGMUuTNe3QvboEUHGjMJ+E20pwKmafTCWQWIZYVWrkvL4N48fS0ayOn7H6NhStYq
E613TBoYm5EPWNgGVMWX+Ko/IIqmhaZ39qb8HOLubpQzKoNQhArlT4b4UEV4AIHr
W2jjJo3Me1xR9BQsQL4aYB16cmEdH2MtiKrOokWQCPxrvrNQKlr9qEgYRtaQQJKQ
CoReaDH46+0N0x3GfZkYVVYnZS6NRcUk7M7jAgMBAAGjQjBAMA8GA1UdEwEB/wQF
MAMBAf8wHQYDVR0OBBYEFApII6ZgpJIKM+qTW8VX6iVNvRLuMA4GA1UdDwEB/wQE
AwIBhjANBgkqhkiG9w0BAQsFAAOCAgEAPpBIqm5iFSVmewzVjIuJndftTgfvnNAU
X15QvWiWkKQUEapobQk1OUAJ2vQJLDSle1mESSmXdMgHHkdt8s4cUCbjnj1AUz/3
f5Z2EMVGpdAgS1D0NTsY9FVqQRtHBmg8uwkIYtlfVUKqrFOFrJVWNlar5AWMxaja
H6NpvVMPxP/cyuN+8kyIhkdGGvMA9YCRotxDQpSbIPDRzbLrLFPCU3hKTwSUQZqP
JzLB5UkZv/HywouoCjkxKLR9YjYsTewfM7Z+d21+UPCfDtcRj88YxeMn/ibvBZ3P
zzfF0HvaO7AWhAw6k9a+F9sPPg4ZeAnHqQJyIkv3N3a6dcSFA1pj1bF1BcK5vZSt
jBWZp5N99sXzqnTPBIWUmAD04vnKJGW/4GKvyMX6ssmeVkjaef2WdhW+o45WxLM0
/L5H9MG0qPzVMIho7suuyWPEdr6sOBjhXlzPrjoiUevRi7PzKzMHVIf6tLITe7pT
BGIBnfHAT+7hOtSLIBD6Alfm78ELt5BGnBkpjNxvoEppaZS3JGWg/6w/zgH7IS79
aPib8qXPMThcFarmlwDB31qlpzmq6YR/PFGoOtmUW4y/Twhx5duoXNTSpv4Ao8YW
xw/ogM4cKGR0GQjTQuPOAF1/sdwTsOEFy9EgqoZ0njnnkf3/W9b3raYvAwtt41dU
63ZTGI0RmLo=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            39:ca:93:1c:ef:43:f3:c6:8e:93:c7:f4:64:89:38:7e
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA TLS RSA Root CA 2021
#        Validity
#            Not Before: Feb 19 10:55:38 2021 GMT
#            Not After : Feb 13 10:55:37 2045 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions CA, CN=HARICA TLS RSA Root CA 2021
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:8b:c2:e7:af:65:9b:05:67:96:c9:0d:24:b9:d0:
#                    0e:64:fc:ce:e2:24:18:2c:84:7f:77:51:cb:04:11:
#                    36:b8:5e:ed:69:71:a7:9e:e4:25:09:97:67:c1:47:
#                    c2:cf:91:16:36:62:3d:38:04:e1:51:82:ff:ac:d2:
#                    b4:69:dd:2e:ec:11:a3:45:ee:6b:6b:3b:4c:bf:8c:
#                    8d:a4:1e:9d:11:b9:e9:38:f9:7a:0e:0c:98:e2:23:
#                    1d:d1:4e:63:d4:e7:b8:41:44:fb:6b:af:6b:da:1f:
#                    d3:c5:91:88:5b:a4:89:92:d1:81:e6:8c:39:58:a0:
#                    d6:69:43:a9:ad:98:52:58:6e:db:0a:fb:6b:cf:68:
#                    fa:e3:a4:5e:3a:45:73:98:07:ea:5f:02:72:de:0c:
#                    a5:b3:9f:ae:a9:1d:b7:1d:b3:fc:8a:59:e7:6e:72:
#                    65:ad:f5:30:94:23:07:f3:82:16:4b:35:98:9c:53:
#                    bb:2f:ca:e4:5a:d9:c7:8d:1d:fc:98:99:fb:2c:a4:
#                    82:6b:f0:2a:1f:8e:0b:5f:71:5c:5c:ae:42:7b:29:
#                    89:81:cb:03:a3:99:ca:88:9e:0b:40:09:41:33:db:
#                    e6:58:7a:fd:ae:99:70:c0:5a:0f:d6:13:86:71:2f:
#                    76:69:fc:90:dd:db:2d:6e:d1:f2:9b:f5:1a:6b:9e:
#                    6f:15:8c:7a:f0:4b:28:a0:22:38:80:24:6c:36:a4:
#                    3b:f2:30:91:f3:78:13:cf:c1:3f:35:ab:f1:1d:11:
#                    23:b5:43:22:9e:01:92:b7:18:02:e5:11:d1:82:db:
#                    15:00:cc:61:37:c1:2a:7c:9a:e1:d0:ba:b3:50:46:
#                    ee:82:ac:9d:31:f8:fb:23:e2:03:00:48:70:a3:09:
#                    26:79:15:53:60:f3:38:5c:ad:38:ea:81:00:63:14:
#                    b9:33:5e:dd:0b:db:a0:45:07:1a:33:09:f8:4d:b4:
#                    a7:02:a6:69:f4:c2:59:05:88:65:85:56:ae:4b:cb:
#                    e0:de:3c:7d:2d:1a:c8:e9:fb:1f:a3:61:4a:d6:2a:
#                    13:ad:77:4c:1a:18:9b:91:0f:58:d8:06:54:c5:97:
#                    f8:aa:3f:20:8a:a6:85:a6:77:f6:a6:fc:1c:e2:ee:
#                    6e:94:33:2a:83:50:84:0a:e5:4f:86:f8:50:45:78:
#                    00:81:eb:5b:68:e3:26:8d:cc:7b:5c:51:f4:14:2c:
#                    40:be:1a:60:1d:7a:72:61:1d:1f:63:2d:88:aa:ce:
#                    a2:45:90:08:fc:6b:be:b3:50:2a:5a:fd:a8:48:18:
#                    46:d6:90:40:92:90:0a:84:5e:68:31:f8:eb:ed:0d:
#                    d3:1d:c6:7d:99:18:55:56:27:65:2e:8d:45:c5:24:
#                    ec:ce:e3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                0A:48:23:A6:60:A4:92:0A:33:EA:93:5B:C5:57:EA:25:4D:BD:12:EE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         3e:90:48:aa:6e:62:15:25:66:7b:0c:d5:8c:8b:89:9d:d7:ed:
#         4e:07:ef:9c:d0:14:5f:5e:50:bd:68:96:90:a4:14:11:aa:68:
#         6d:09:35:39:40:09:da:f4:09:2c:34:a5:7b:59:84:49:29:97:
#         74:c8:07:1e:47:6d:f2:ce:1c:50:26:e3:9e:3d:40:53:3f:f7:
#         7f:96:76:10:c5:46:a5:d0:20:4b:50:f4:35:3b:18:f4:55:6a:
#         41:1b:47:06:68:3c:bb:09:08:62:d9:5f:55:42:aa:ac:53:85:
#         ac:95:56:36:56:ab:e4:05:8c:c5:a8:da:1f:a3:69:bd:53:0f:
#         c4:ff:dc:ca:e3:7e:f2:4c:88:86:47:46:1a:f3:00:f5:80:91:
#         a2:dc:43:42:94:9b:20:f0:d1:cd:b2:eb:2c:53:c2:53:78:4a:
#         4f:04:94:41:9a:8f:27:32:c1:e5:49:19:bf:f1:f2:c2:8b:a8:
#         0a:39:31:28:b4:7d:62:36:2c:4d:ec:1f:33:b6:7e:77:6d:7e:
#         50:f0:9f:0e:d7:11:8f:cf:18:c5:e3:27:fe:26:ef:05:9d:cf:
#         cf:37:c5:d0:7b:da:3b:b0:16:84:0c:3a:93:d6:be:17:db:0f:
#         3e:0e:19:78:09:c7:a9:02:72:22:4b:f7:37:76:ba:75:c4:85:
#         03:5a:63:d5:b1:75:05:c2:b9:bd:94:ad:8c:15:99:a7:93:7d:
#         f6:c5:f3:aa:74:cf:04:85:94:98:00:f4:e2:f9:ca:24:65:bf:
#         e0:62:af:c8:c5:fa:b2:c9:9e:56:48:da:79:fd:96:76:15:be:
#         a3:8e:56:c4:b3:34:fc:be:47:f4:c1:b4:a8:fc:d5:30:88:68:
#         ee:cb:ae:c9:63:c4:76:be:ac:38:18:e1:5e:5c:cf:ae:3a:22:
#         51:eb:d1:8b:b3:f3:2b:33:07:54:87:fa:b4:b2:13:7b:ba:53:
#         04:62:01:9d:f1:c0:4f:ee:e1:3a:d4:8b:20:10:fa:02:57:e6:
#         ef:c1:0b:b7:90:46:9c:19:29:8c:dc:6f:a0:4a:69:69:94:b7:
#         24:65:a0:ff:ac:3f:ce:01:fb:21:2e:fd:68:f8:9b:f2:a5:cf:
#         31:38:5c:15:aa:e6:97:00:c1:df:5a:a5:a7:39:aa:e9:84:7f:
#         3c:51:a8:3a:d9:94:5b:8c:bf:4f:08:71:e5:db:a8:5c:d4:d2:
#         a6:fe:00:a3:c6:16:c7:0f:e8:80:ce:1c:28:64:74:19:08:d3:
#         42:e3:ce:00:5d:7f:b1:dc:13:b0:e1:05:cb:d1:20:aa:86:74:
#         9e:39:e7:91:fd:ff:5b:d6:f7:ad:a6:2f:03:0b:6d:e3:57:54:
#         eb:76:53:18:8d:11:98:ba

[p11-kit-object-v1]
label: "Halcom Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAibmFyv70dX1/7J1CN7q6
jbzsPRcD/dlFZdbNyU5fjEhclwhXFIstnDyQSZnPaa9JjdscAbBu6fTqkWddyrNp
T9jMwQ097qoDduDJcKKf/uub0LbJltPw+1vQ8AerTF5NpOJHXgVodKaOIkfuftNn
hFQ3kkcO86PsFRrzbXu/GTUhj4JLrFScCc1utsFXvdBJPW+fc46xbH69/ta7PQPo
5kwatO6vtINOMpBU9k4b4S/OpTQajqMg+dk+ImtvbuP62TNcCKD3FQA9nBCSSlXN
gLIGqv3Xj7dakickDzM8KLrxH2i1dylersLajTZw4noyGyOm3sVhDZqlEiC185ZZ
tQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Halcom Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 504275 (0x7b1d3)
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=SI, O=Halcom, CN=Halcom Root CA
#        Validity
#            Not Before: Feb  8 09:55:41 2012 GMT
#            Not After : Feb  8 09:55:41 2032 GMT
#        Subject: C=SI, O=Halcom, CN=Halcom Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:89:b9:85:ca:fe:f4:75:7d:7f:ec:9d:42:37:ba:
#                    ba:8d:bc:ec:3d:17:03:fd:d9:45:65:d6:cd:c9:4e:
#                    5f:8c:48:5c:97:08:57:14:8b:2d:9c:3c:90:49:99:
#                    cf:69:af:49:8d:db:1c:01:b0:6e:e9:f4:ea:91:67:
#                    5d:ca:b3:69:4f:d8:cc:c1:0d:3d:ee:aa:03:76:e0:
#                    c9:70:a2:9f:fe:eb:9b:d0:b6:c9:96:d3:f0:fb:5b:
#                    d0:f0:07:ab:4c:5e:4d:a4:e2:47:5e:05:68:74:a6:
#                    8e:22:47:ee:7e:d3:67:84:54:37:92:47:0e:f3:a3:
#                    ec:15:1a:f3:6d:7b:bf:19:35:21:8f:82:4b:ac:54:
#                    9c:09:cd:6e:b6:c1:57:bd:d0:49:3d:6f:9f:73:8e:
#                    b1:6c:7e:bd:fe:d6:bb:3d:03:e8:e6:4c:1a:b4:ee:
#                    af:b4:83:4e:32:90:54:f6:4e:1b:e1:2f:ce:a5:34:
#                    1a:8e:a3:20:f9:d9:3e:22:6b:6f:6e:e3:fa:d9:33:
#                    5c:08:a0:f7:15:00:3d:9c:10:92:4a:55:cd:80:b2:
#                    06:aa:fd:d7:8f:b7:5a:92:27:24:0f:33:3c:28:ba:
#                    f1:1f:68:b5:77:29:5e:ae:c2:da:8d:36:70:e2:7a:
#                    32:1b:23:a6:de:c5:61:0d:9a:a5:12:20:b5:f3:96:
#                    59:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                4E:94:D8:8A:63:C2:CF:79
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha512WithRSAEncryption
#         29:be:e7:b1:e4:fa:03:a2:0f:af:76:59:9d:f8:4e:53:4d:3c:
#         04:83:9f:a1:e2:8c:f6:94:d9:b4:ae:68:2a:56:6b:32:53:28:
#         83:07:72:4c:b0:4e:a8:1d:81:83:21:67:03:37:d1:8c:c6:c1:
#         4e:84:e9:34:3b:d3:f5:f5:27:b6:8d:23:05:52:b8:4c:32:f2:
#         2e:da:d1:2a:7d:3e:83:03:2a:d2:b1:e3:9a:e9:8a:83:42:f0:
#         2c:0a:a1:53:0f:c0:2b:e2:8f:1a:4e:95:b9:45:bc:4b:67:3a:
#         bd:32:f3:ad:a5:8f:8f:c3:2e:ea:f6:f4:7b:62:d0:6e:6e:c5:
#         61:31:13:66:e6:67:49:99:3b:2f:80:4f:7a:7c:73:8a:03:0d:
#         5f:f5:b3:32:28:0a:8a:c0:e1:f9:b8:a3:26:ee:dc:1b:57:cf:
#         76:1a:4f:53:be:f6:4a:8b:57:17:2b:2f:99:86:aa:de:8c:da:
#         b6:a8:6c:df:68:36:d6:61:8b:6e:c0:73:4e:b7:39:45:f4:7d:
#         ce:49:c4:f3:1d:f9:a9:77:6c:ef:ef:92:15:13:27:99:46:e8:
#         9f:a9:8a:1b:9f:29:2f:a2:1d:3e:d6:2b:c7:e4:55:10:3a:18:
#         f7:b3:7b:4f:2e:c7:00:22:ed:e4:31:d0:e7:b8:e4:54:4f:c1:
#         80:45:25:6e

[p11-kit-object-v1]
label: "Halcom Root Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6VKmxhrvY7utgfSQslqP
DdUWM7QcGPvLiSowu2WBxOH7AqmUB3bl1xXkemQQgOo80LOira4cH+q7gWGY1PmN
aZXERS4DCcqG+lxaERdAMD7wxmMJyfGNQaVWDQVkaUtYrCoplrtAMxY0S2ds1/G0
RqXqWahDaA+MOCqqPPZEA4b4ittFISspHhK3+qVlQd4GCFhwlT70TNnrDympkYqe
rcoS9eWV5jjZGqaLnE+mSBMQpXlEvWo7KfUWd0DLfptc376L6+egGW+fFT8nnimx
9Q38X0eiPN0uCwL79I3q7Ayx+bQFrPmPqT1uLB05n9BOn07Iap6AA2Hcz/htlMsP
zwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Halcom Root Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 843675 (0xcdf9b)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=SI, O=Halcom d.d./2.5.4.97=VATSI-43353126, CN=Halcom Root Certificate Authority
#        Validity
#            Not Before: Jun 10 07:07:50 2016 GMT
#            Not After : Jun 10 07:07:50 2036 GMT
#        Subject: C=SI, O=Halcom d.d./2.5.4.97=VATSI-43353126, CN=Halcom Root Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:e9:52:a6:c6:1a:ef:63:bb:ad:81:f4:90:b2:5a:
#                    8f:0d:d5:16:33:b4:1c:18:fb:cb:89:2a:30:bb:65:
#                    81:c4:e1:fb:02:a9:94:07:76:e5:d7:15:e4:7a:64:
#                    10:80:ea:3c:d0:b3:a2:ad:ae:1c:1f:ea:bb:81:61:
#                    98:d4:f9:8d:69:95:c4:45:2e:03:09:ca:86:fa:5c:
#                    5a:11:17:40:30:3e:f0:c6:63:09:c9:f1:8d:41:a5:
#                    56:0d:05:64:69:4b:58:ac:2a:29:96:bb:40:33:16:
#                    34:4b:67:6c:d7:f1:b4:46:a5:ea:59:a8:43:68:0f:
#                    8c:38:2a:aa:3c:f6:44:03:86:f8:8a:db:45:21:2b:
#                    29:1e:12:b7:fa:a5:65:41:de:06:08:58:70:95:3e:
#                    f4:4c:d9:eb:0f:29:a9:91:8a:9e:ad:ca:12:f5:e5:
#                    95:e6:38:d9:1a:a6:8b:9c:4f:a6:48:13:10:a5:79:
#                    44:bd:6a:3b:29:f5:16:77:40:cb:7e:9b:5c:df:be:
#                    8b:eb:e7:a0:19:6f:9f:15:3f:27:9e:29:b1:f5:0d:
#                    fc:5f:47:a2:3c:dd:2e:0b:02:fb:f4:8d:ea:ec:0c:
#                    b1:f9:b4:05:ac:f9:8f:a9:3d:6e:2c:1d:39:9f:d0:
#                    4e:9f:4e:c8:6a:9e:80:03:61:dc:cf:f8:6d:94:cb:
#                    0f:cf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                42:AE:A6:43:C7:98:28:B0
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         52:b9:79:d0:db:63:fe:19:81:fb:0c:f9:c1:e5:50:59:ca:9d:
#         b2:fb:5c:33:d0:38:a8:ab:b5:1a:4e:53:25:75:22:d3:49:bf:
#         ca:81:cf:d3:e1:7b:a3:91:46:75:ca:1a:eb:d9:f5:5d:bc:7b:
#         86:35:fd:81:97:9c:84:d7:26:98:22:fc:b1:35:d0:a9:95:b6:
#         7c:ff:e4:97:b4:40:7e:49:5d:68:c8:e2:d4:39:75:27:4f:03:
#         91:b2:31:57:bf:86:d7:6d:ca:71:00:22:37:d0:3b:58:24:50:
#         a0:9c:8c:9a:89:8e:f5:28:46:6c:e7:16:ed:b0:81:ab:f4:46:
#         26:af:a6:e8:1a:45:77:70:16:92:b2:7b:71:71:dc:f7:df:49:
#         67:c0:33:08:0e:2e:53:c1:77:ab:c7:4a:91:4c:12:ef:e7:0e:
#         09:e5:75:31:20:ae:6e:fc:5a:8a:80:9c:10:b0:db:a8:4a:cc:
#         f3:2b:dc:36:34:a6:f7:a9:0b:67:9d:90:cb:3d:26:9f:75:cd:
#         4c:c9:1d:06:0a:75:8b:52:c0:81:f0:d1:26:ac:cc:92:a6:14:
#         9c:5c:3c:16:42:fb:93:cc:02:a8:13:f3:da:ae:0a:c3:b8:15:
#         f4:b0:d0:d4:e0:16:20:4f:ac:50:98:78:26:94:1e:68:eb:94:
#         72:fe:f7:8b

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions ECC RootCA 2015"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEkqBB6EuChFzi+DERmYZkTgklL51BLwqu
NU90lbJRZGuNa+Y/cJXwBURHpnI4UHaVAlqOriie+S1Ome8sSG9MJSno0XFb3x3B
dTe01/p7ekKcagpWWnxpC6qACSRsfsFG
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions ECC RootCA 2015"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C=GR, L=Athens, O=Hellenic Academic and Research Institutions Cert. Authority, CN=Hellenic Academic and Research Institutions ECC RootCA 2015
#        Validity
#            Not Before: Jul  7 10:37:12 2015 GMT
#            Not After : Jun 30 10:37:12 2040 GMT
#        Subject: C=GR, L=Athens, O=Hellenic Academic and Research Institutions Cert. Authority, CN=Hellenic Academic and Research Institutions ECC RootCA 2015
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:92:a0:41:e8:4b:82:84:5c:e2:f8:31:11:99:86:
#                    64:4e:09:25:2f:9d:41:2f:0a:ae:35:4f:74:95:b2:
#                    51:64:6b:8d:6b:e6:3f:70:95:f0:05:44:47:a6:72:
#                    38:50:76:95:02:5a:8e:ae:28:9e:f9:2d:4e:99:ef:
#                    2c:48:6f:4c:25:29:e8:d1:71:5b:df:1d:c1:75:37:
#                    b4:d7:fa:7b:7a:42:9c:6a:0a:56:5a:7c:69:0b:aa:
#                    80:09:24:6c:7e:c1:46
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B4:22:0B:82:99:24:01:0E:9C:BB:E4:0E:FD:BF:FB:97:20:93:99:2A
#    Signature Algorithm: ecdsa-with-SHA256
#         30:64:02:30:67:ce:16:62:38:a2:ac:62:45:a7:a9:95:24:c0:
#         1a:27:9c:32:3b:c0:c0:d5:ba:a9:e7:f8:04:43:53:85:ee:52:
#         21:de:9d:f5:25:83:3e:9e:58:4b:2f:d7:67:13:0e:21:02:30:
#         05:e1:75:01:de:68:ed:2a:1f:4d:4c:09:08:0d:ec:4b:ad:64:
#         17:28:e7:75:ce:45:65:72:21:17:cb:22:41:0e:8c:13:98:38:
#         9a:54:6d:9b:ca:e2:7c:ea:02:58:22:91

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqVMA4y6m9o76YNgtlT74
LCpUTs25hGGUWE+PPYvkQ/N1iY1R5MM30oqITXketxLdQ3hKipLm10jVD6Q6KUQ1
uAf2aB1VzThR8IwkMYWvg8l96Xev7Rp7nRf5s504UA+mWnmRgK83rqbTMfu1Jgmd
PFrvUcUr35Zd6zIeAtpwSexuDMiaN4338TZgSyYsgp7QePMND2OkUTDh+SsnEgfY
6r0YYpiwWTd9vu7zIFFCWoPvk7ppFfFinZ+ZOYKht3Qui9TFC3sv8MgK2j15CpqT
HKUocnORQ5qn0U2FhLmpdI8UQMfc3qxBZGy0GZsCY20kZI9EsiXqzl10DGMyXI2H
5QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=GR, O=Hellenic Academic and Research Institutions Cert. Authority, CN=Hellenic Academic and Research Institutions RootCA 2011
#        Validity
#            Not Before: Dec  6 13:49:52 2011 GMT
#            Not After : Dec  1 13:49:52 2031 GMT
#        Subject: C=GR, O=Hellenic Academic and Research Institutions Cert. Authority, CN=Hellenic Academic and Research Institutions RootCA 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:a9:53:00:e3:2e:a6:f6:8e:fa:60:d8:2d:95:3e:
#                    f8:2c:2a:54:4e:cd:b9:84:61:94:58:4f:8f:3d:8b:
#                    e4:43:f3:75:89:8d:51:e4:c3:37:d2:8a:88:4d:79:
#                    1e:b7:12:dd:43:78:4a:8a:92:e6:d7:48:d5:0f:a4:
#                    3a:29:44:35:b8:07:f6:68:1d:55:cd:38:51:f0:8c:
#                    24:31:85:af:83:c9:7d:e9:77:af:ed:1a:7b:9d:17:
#                    f9:b3:9d:38:50:0f:a6:5a:79:91:80:af:37:ae:a6:
#                    d3:31:fb:b5:26:09:9d:3c:5a:ef:51:c5:2b:df:96:
#                    5d:eb:32:1e:02:da:70:49:ec:6e:0c:c8:9a:37:8d:
#                    f7:f1:36:60:4b:26:2c:82:9e:d0:78:f3:0d:0f:63:
#                    a4:51:30:e1:f9:2b:27:12:07:d8:ea:bd:18:62:98:
#                    b0:59:37:7d:be:ee:f3:20:51:42:5a:83:ef:93:ba:
#                    69:15:f1:62:9d:9f:99:39:82:a1:b7:74:2e:8b:d4:
#                    c5:0b:7b:2f:f0:c8:0a:da:3d:79:0a:9a:93:1c:a5:
#                    28:72:73:91:43:9a:a7:d1:4d:85:84:b9:a9:74:8f:
#                    14:40:c7:dc:de:ac:41:64:6c:b4:19:9b:02:63:6d:
#                    24:64:8f:44:b2:25:ea:ce:5d:74:0c:63:32:5c:8d:
#                    87:e5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A6:91:42:FD:13:61:4A:23:9E:08:A4:29:E5:D8:13:04:23:EE:41:25
#            X509v3 Name Constraints: 
#                Permitted:
#                  DNS:.gr
#                  DNS:.eu
#                  DNS:.edu
#                  DNS:.org
#                  email:.gr
#                  email:.eu
#                  email:.edu
#                  email:.org
#
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:ef:79:41:e1:7b:6e:3f:b2:8c:86:37:42:4a:4e:1c:37:1e:
#         8d:66:ba:24:81:c9:4f:12:0f:21:c0:03:97:86:25:6d:5d:d3:
#         22:29:a8:6c:a2:0d:a9:eb:3d:06:5b:99:3a:c7:cc:c3:9a:34:
#         7f:ab:0e:c8:4e:1c:e1:fa:e4:dc:cd:0d:be:bf:24:fe:6c:e7:
#         6b:c2:0d:c8:06:9e:4e:8d:61:28:a6:6a:fd:e5:f6:62:ea:18:
#         3c:4e:a0:53:9d:b2:3a:9c:eb:a5:9c:91:16:b6:4d:82:e0:0c:
#         05:48:a9:6c:f5:cc:f8:cb:9d:49:b4:f0:02:a5:fd:70:03:ed:
#         8a:21:a5:ae:13:86:49:c3:33:73:be:87:3b:74:8b:17:45:26:
#         4c:16:91:83:fe:67:7d:cd:4d:63:67:fa:f3:03:12:96:78:06:
#         8d:b1:67:ed:8e:3f:be:9f:4f:02:f5:b3:09:2f:f3:4c:87:df:
#         2a:cb:95:7c:01:cc:ac:36:7a:bf:a2:73:7a:f7:8f:c1:b5:9a:
#         a1:14:b2:8f:33:9f:0d:ef:22:dc:66:7b:84:bd:45:17:06:3d:
#         3c:ca:b9:77:34:8f:ca:ea:cf:3f:31:3e:e3:88:e3:80:49:25:
#         c8:97:b5:9d:9a:99:4d:b0:3c:f8:4a:00:9b:64:dd:9f:39:4b:
#         d1:27:d7:b8

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2015"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hellenic Academic and Research Institutions RootCA 2015"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=GR, L=Athens, O=Hellenic Academic and Research Institutions Cert. Authority, CN=Hellenic Academic and Research Institutions RootCA 2015
#        Validity
#            Not Before: Jul  7 10:11:21 2015 GMT
#            Not After : Jun 30 10:11:21 2040 GMT
#        Subject: C=GR, L=Athens, O=Hellenic Academic and Research Institutions Cert. Authority, CN=Hellenic Academic and Research Institutions RootCA 2015
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c2:f8:a9:3f:1b:89:fc:3c:3c:04:5d:3d:90:36:
#                    b0:91:3a:79:3c:66:5a:ef:6d:39:01:49:1a:b4:b7:
#                    cf:7f:4d:23:53:b7:90:00:e3:13:2a:28:a6:31:f1:
#                    91:00:e3:28:ec:ae:21:41:ce:1f:da:fd:7d:12:5b:
#                    01:83:0f:b9:b0:5f:99:e1:f2:12:83:80:4d:06:3e:
#                    df:ac:af:e7:a1:88:6b:31:af:f0:8b:d0:18:33:b8:
#                    db:45:6a:34:f4:02:80:24:28:0a:02:15:95:5e:76:
#                    2a:0d:99:3a:14:5b:f6:cb:cb:53:bc:13:4d:01:88:
#                    37:94:25:1b:42:bc:22:d8:8e:a3:96:5e:3a:d9:32:
#                    db:3e:e8:f0:10:65:ed:74:e1:2f:a7:7c:af:27:34:
#                    bb:29:7d:9b:b6:cf:09:c8:e5:d3:0a:fc:88:65:65:
#                    74:0a:dc:73:1c:5c:cd:40:b1:1c:d4:b6:84:8c:4c:
#                    50:cf:68:8e:a8:59:ae:c2:27:4e:82:a2:35:dd:14:
#                    f4:1f:ff:b2:77:d5:87:2f:aa:6e:7d:24:27:e7:c6:
#                    cb:26:e6:e5:fe:67:07:63:d8:45:0d:dd:3a:59:65:
#                    39:58:7a:92:99:72:3d:9c:84:5e:88:21:b8:d5:f4:
#                    2c:fc:d9:70:52:4f:78:b8:bd:3c:2b:8b:95:98:f5:
#                    b3:d1:68:cf:20:14:7e:4c:5c:5f:e7:8b:e5:f5:35:
#                    81:19:37:d7:11:08:b7:66:be:d3:4a:ce:83:57:00:
#                    3a:c3:81:f8:17:cb:92:36:5d:d1:a3:d8:75:1b:e1:
#                    8b:27:ea:7a:48:41:fd:45:19:06:ad:27:99:4e:c1:
#                    70:47:dd:b5:9f:81:53:12:e5:b1:8c:48:5d:31:43:
#                    17:e3:8c:c6:7a:63:96:4b:29:30:4e:84:4e:62:19:
#                    5e:3c:ce:97:90:a5:7f:01:eb:9d:e0:f8:8b:89:dd:
#                    25:98:3d:92:b6:7e:ef:d9:f1:51:51:7d:2d:26:c8:
#                    69:59:61:e0:ac:6a:b8:2a:36:11:04:7a:50:bd:32:
#                    84:be:2f:dc:72:d5:d7:1d:16:47:e4:47:66:20:3f:
#                    f4:96:c5:af:8e:01:7a:a5:0f:7a:64:f5:0d:18:87:
#                    d9:ae:88:d5:fa:84:c1:3a:c0:69:28:2d:f2:0d:68:
#                    51:aa:e3:a5:77:c6:a4:90:0e:a1:37:8b:31:23:47:
#                    c1:09:08:eb:6e:f7:78:9b:d7:82:fc:84:20:99:49:
#                    19:b6:12:46:b1:fb:45:55:16:a9:a3:65:ac:9c:07:
#                    0f:ea:6b:dc:1f:2e:06:72:ec:86:88:12:e4:2d:db:
#                    5f:05:2f:e4:f0:03:d3:26:33:e7:80:c2:cd:42:a1:
#                    17:34:0b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                71:15:67:C8:C8:C9:BD:75:5D:72:D0:38:18:6A:9D:F3:71:24:54:0B
#    Signature Algorithm: sha256WithRSAEncryption
#         75:bb:6d:54:4b:aa:10:58:46:34:f2:62:d7:16:36:5d:08:5e:
#         d5:6c:c8:87:bd:b4:2e:46:f2:31:f8:7c:ea:42:b5:93:16:55:
#         dc:a1:0c:12:a0:da:61:7e:0f:58:58:73:64:72:c7:e8:45:8e:
#         dc:a9:f2:26:3f:c6:79:8c:b1:53:08:33:81:b0:56:13:be:e6:
#         51:5c:d8:9b:0a:4f:4b:9c:56:53:02:e9:4f:f6:0d:60:ea:4d:
#         42:55:e8:7c:1b:21:21:d3:1b:3a:cc:77:f2:b8:90:f1:68:c7:
#         f9:5a:fe:fa:2d:f4:bf:c9:f5:45:1b:ce:38:10:2a:37:8a:79:
#         a3:b4:e3:09:6c:85:86:93:ff:89:96:27:78:81:8f:67:e3:46:
#         74:54:8e:d9:0d:69:e2:4a:f4:4d:74:03:ff:b2:77:ed:95:67:
#         97:e4:b1:c5:ab:bf:6a:23:e8:d4:94:e2:44:28:62:c4:4b:e2:
#         f0:d8:e2:29:6b:1a:70:7e:24:61:93:7b:4f:03:32:25:0d:45:
#         24:2b:96:b4:46:6a:bf:4a:0b:f7:9a:8f:c1:ac:1a:c5:67:f3:
#         6f:34:d2:fa:73:63:8c:ef:16:b0:a8:a4:46:2a:f8:eb:12:ec:
#         72:b4:ef:f8:2b:7e:8c:52:c0:8b:84:54:f9:2f:3e:e3:55:a8:
#         dc:66:b1:d9:e1:5f:d8:b3:8c:59:34:59:a4:ab:4f:6c:bb:1f:
#         18:db:75:ab:d8:cb:92:cd:94:38:61:0e:07:06:1f:4b:46:10:
#         f1:15:be:8d:85:5c:3b:4a:2b:81:79:0f:b4:69:9f:49:50:97:
#         4d:f7:0e:56:5d:c0:95:6a:c2:36:c3:1b:68:c9:f5:2a:dc:47:
#         9a:be:b2:ce:c5:25:e8:fa:03:b9:da:f9:16:6e:91:84:f5:1c:
#         28:c8:fc:26:cc:d7:1c:90:56:a7:5f:6f:3a:04:bc:cd:78:89:
#         0b:8e:0f:2f:a3:aa:4f:a2:1b:12:3d:16:08:40:0f:f1:46:4c:
#         d7:aa:7b:08:c1:0a:f5:6d:27:de:02:8f:ca:c3:b5:2b:ca:e9:
#         eb:c8:21:53:38:a5:cc:3b:d8:77:37:30:a2:4f:d9:6f:d1:f2:
#         40:ad:41:7a:17:c5:d6:4a:35:89:b7:41:d5:7c:86:7f:55:4d:
#         83:4a:a5:73:20:c0:3a:af:90:f1:9a:24:8e:d9:8e:71:ca:7b:
#         b8:86:da:b2:8f:99:3e:1d:13:0d:12:11:ee:d4:ab:f0:e9:15:
#         76:02:e4:e0:df:aa:20:1e:5b:61:85:64:40:a9:90:97:0d:ad:
#         53:d2:5a:1d:87:6a:00:97:65:62:b4:be:6f:6a:a7:f5:2c:42:
#         ed:32:ad:b6:21:9e:be:bc

[p11-kit-object-v1]
label: "HiPKI Root CA - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "HiPKI Root CA - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2d:dd:ac:ce:62:97:94:a1:43:e8:b0:cd:76:6a:5e:60
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TW, O=Chunghwa Telecom Co., Ltd., CN=HiPKI Root CA - G1
#        Validity
#            Not Before: Feb 22 09:46:04 2019 GMT
#            Not After : Dec 31 15:59:59 2037 GMT
#        Subject: C=TW, O=Chunghwa Telecom Co., Ltd., CN=HiPKI Root CA - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:f4:1e:7f:52:73:32:0c:73:e4:bd:13:74:a3:d4:
#                    30:a8:d0:ae:4b:d8:b6:df:75:47:66:f4:7c:e7:39:
#                    04:1e:6a:70:20:d2:5a:47:72:67:55:f4:a5:e8:9d:
#                    d5:1e:21:a1:f0:67:ba:cc:21:68:be:44:53:bf:8d:
#                    f9:e2:dc:2f:55:c8:37:3f:1f:a4:c0:9c:b3:e4:77:
#                    5c:a0:46:fe:77:fa:1a:a0:38:ea:ed:9a:72:de:2b:
#                    bd:94:57:3a:ba:ec:79:e7:5f:7d:42:64:39:7a:26:
#                    36:f7:24:f0:d5:2f:ba:95:98:11:66:ad:97:35:d6:
#                    75:01:80:e0:af:f4:84:61:8c:0d:1e:5f:7c:87:96:
#                    5e:41:af:eb:87:ea:f8:5d:f1:2e:88:05:3e:4c:22:
#                    bb:da:1f:2a:dd:52:46:64:39:f3:42:ce:d9:9e:0c:
#                    b3:b0:77:97:64:9c:c0:f4:a3:2e:1f:95:07:b0:17:
#                    df:30:db:00:18:96:4c:a1:81:4b:dd:04:6d:53:a3:
#                    3d:fc:07:ac:d4:c5:37:82:eb:e4:95:08:19:28:82:
#                    d2:42:3a:a3:d8:53:ec:79:89:60:48:60:c8:72:92:
#                    50:dc:03:8f:83:3f:b2:42:57:5a:db:6a:e9:11:97:
#                    dd:85:28:bc:30:4c:ab:e3:c2:b1:45:44:47:1f:e0:
#                    8a:16:07:96:d2:21:0f:53:c0:ed:a9:7e:d4:4e:ec:
#                    9b:09:ec:af:42:ac:30:d6:bf:d1:10:45:e0:a6:16:
#                    b2:a5:c5:d3:4f:73:94:33:71:02:a1:6a:a3:d6:33:
#                    97:4f:21:63:1e:5b:8f:d9:c1:5e:45:71:77:0f:81:
#                    5d:5f:21:9a:ad:83:cc:fa:5e:d6:8d:23:5f:1b:3d:
#                    41:af:20:75:66:5a:4a:f6:9f:fb:ab:18:f7:71:c0:
#                    b6:1d:31:ec:3b:20:eb:cb:e2:b8:f5:ae:92:b2:f7:
#                    e1:84:4b:f2:a2:f2:93:9a:22:9e:d3:14:6f:36:54:
#                    bd:1f:5e:59:15:b9:73:a8:c1:7c:6f:7b:62:e9:16:
#                    6c:47:5a:65:f3:0e:11:9b:46:d9:fd:6d:dc:d6:9c:
#                    c0:b4:7d:a5:b0:dd:3f:56:6f:a1:f9:f6:e4:12:48:
#                    fd:06:7f:12:57:b6:a9:23:4f:5b:03:c3:e0:71:2a:
#                    23:b7:f7:b0:b1:3b:bc:98:bd:d6:98:a8:0c:6b:f6:
#                    8e:12:67:a6:f2:b2:58:e4:02:09:13:3c:a9:bb:10:
#                    b4:d2:30:45:f1:ec:f7:00:11:df:65:f8:dc:2b:43:
#                    55:bf:16:97:c4:0f:d5:2c:61:84:aa:72:86:fe:e6:
#                    3a:7e:c2:3f:7d:ee:fc:2f:14:3e:e6:85:dd:50:6f:
#                    b7:49:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                F2:77:17:FA:5E:A8:FE:F6:3D:71:D5:68:BA:C9:46:0C:38:D8:AF:B0
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         50:51:f0:75:dc:70:04:e3:ff:aa:75:d4:71:a2:cb:9e:8f:a8:
#         a9:d3:af:75:c7:54:cf:3a:1c:04:99:22:ac:c4:11:e2:ef:33:
#         4a:a6:23:1d:0e:0d:47:d8:37:c7:6f:af:34:7f:4f:81:6b:35:
#         4f:e9:72:a5:31:e2:78:e7:f7:4e:94:18:5b:40:7d:cf:6b:21:
#         54:86:e6:95:7a:fb:c6:ca:ea:9c:48:4e:57:09:5d:2f:ac:f4:
#         a5:b4:97:33:58:d5:ac:79:a9:cc:5f:f9:85:fa:52:c5:8d:f8:
#         91:14:eb:3a:0d:17:d0:52:c2:7b:e3:c2:73:8e:46:78:06:38:
#         2c:e8:5c:da:66:c4:f4:a4:f0:56:19:33:29:5a:65:92:05:47:
#         46:4a:ab:84:c3:1e:27:a1:1f:11:92:99:27:75:93:0f:bc:36:
#         3b:97:57:8f:26:5b:0c:bb:9c:0f:d4:6e:30:07:d4:dc:5f:36:
#         68:66:39:83:96:27:26:8a:c8:c4:39:fe:9a:21:6f:d5:72:86:
#         e9:7f:62:e5:97:4e:d0:24:d0:40:b0:d0:75:08:8e:bd:68:ee:
#         08:d7:6e:7c:10:70:46:1b:7c:e0:88:b2:9e:72:86:99:01:e3:
#         bf:9f:49:19:b4:25:be:56:65:ae:17:63:e5:1e:df:e8:ff:47:
#         a5:bf:e1:26:05:84:e4:b0:c0:af:e7:08:99:a8:0c:5e:26:80:
#         45:d4:f8:68:2f:96:8f:ae:e2:4a:1c:9c:16:0c:13:6f:38:87:
#         f6:bb:c8:34:5f:92:03:51:79:70:a6:df:cb:f5:99:4d:79:cd:
#         4e:bc:57:9f:43:4e:6b:2e:2b:18:f8:6a:73:8c:ba:c5:35:ef:
#         39:6a:41:1e:cf:71:a8:a2:b2:86:07:5b:3a:c9:e1:ef:3f:65:
#         04:80:47:32:44:70:95:4e:31:67:6a:74:5b:10:45:75:ea:b0:
#         9f:d0:e6:35:fe:4e:9f:8b:cc:2b:92:45:5b:6e:25:60:85:46:
#         cd:d1:aa:b0:76:66:93:77:96:be:83:be:38:b6:24:4e:26:0b:
#         cc:ed:7a:56:1a:e0:e9:5a:c6:64:ad:4c:7a:00:48:44:2f:b9:
#         40:bb:13:3e:be:15:78:9d:85:81:4a:2a:57:de:d5:19:43:da:
#         db:ca:5b:47:86:83:0b:3f:b6:0d:76:78:73:79:22:5e:b1:80:
#         1f:cf:be:d1:3f:56:10:98:2b:95:87:a1:1f:9d:64:14:60:39:
#         2c:b3:00:55:2e:e4:f5:b3:0e:57:c4:91:41:00:9c:3f:e8:a5:
#         df:ea:f6:ff:c8:f0:ad:6d:52:a8:17:ab:9b:61:fc:12:51:35:
#         e4:25:fd:af:aa:6a:86:39

[p11-kit-object-v1]
label: "Hongkong Post Root CA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Hongkong Post Root CA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:16:5f:8a:4c:a5:ec:00:c9:93:40:df:c4:c6:ae:23:b8:1c:5a:a4
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=HK, ST=Hong Kong, L=Hong Kong, O=Hongkong Post, CN=Hongkong Post Root CA 3
#        Validity
#            Not Before: Jun  3 02:29:46 2017 GMT
#            Not After : Jun  3 02:29:46 2042 GMT
#        Subject: C=HK, ST=Hong Kong, L=Hong Kong, O=Hongkong Post, CN=Hongkong Post Root CA 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:88:d7:ea:ce:0f:20:4e:be:e6:d6:03:6d:ee:
#                    59:fc:c2:57:df:29:68:a1:83:0e:3e:68:c7:68:58:
#                    9c:1c:60:4b:89:43:0c:b9:d4:15:b2:ee:c1:4e:75:
#                    e9:b5:a7:ef:e5:e9:35:99:e4:cc:1c:e7:4b:5f:8d:
#                    33:30:20:33:53:d9:a6:bb:d5:3e:13:8e:e9:1f:87:
#                    49:ad:50:2d:50:ca:18:be:01:58:a2:13:70:96:bb:
#                    89:88:56:80:5c:f8:bd:2c:3c:e1:4c:57:88:bb:d3:
#                    b9:95:ef:cb:c7:f6:da:31:74:28:a6:e6:54:89:f5:
#                    41:31:ca:e5:26:1a:cd:82:e0:70:da:3b:29:bb:d5:
#                    03:f5:99:ba:55:f5:64:d1:60:0e:b3:89:49:b8:8a:
#                    2f:05:d2:84:45:28:7c:8f:68:50:12:78:fc:0b:b5:
#                    53:cb:c2:98:1c:84:a3:9e:b0:be:23:a4:da:dc:c8:
#                    2b:1e:da:6e:45:1e:89:98:da:f9:00:2e:06:e9:0c:
#                    3b:70:d5:50:25:88:99:cb:cd:73:60:f7:d5:ff:35:
#                    67:c5:a1:bc:5e:ab:cd:4a:b8:45:eb:c8:68:1e:0d:
#                    0d:14:46:12:e3:d2:64:62:8a:42:98:bc:b4:c6:08:
#                    08:f8:fd:a8:4c:64:9c:76:01:bd:2f:a9:6c:33:0f:
#                    d8:3f:28:b8:3c:69:01:42:86:7e:69:c1:c9:06:ca:
#                    e5:7a:46:65:e9:c2:d6:50:41:2e:3f:b7:e4:ed:6c:
#                    d7:bf:26:01:11:a2:16:29:4a:6b:34:06:90:ec:13:
#                    d2:b6:fb:6a:76:d2:3c:ed:f0:d6:2d:dd:e1:15:ec:
#                    a3:9b:2f:2c:c9:3e:2b:e4:69:3b:ff:72:25:b1:36:
#                    86:5b:c7:7f:6b:8b:55:1b:4a:c5:20:61:3d:ae:cb:
#                    50:e1:08:3a:be:b0:8f:63:41:53:30:08:59:3c:98:
#                    1d:77:ba:63:91:7a:ca:10:50:60:bf:f0:d7:bc:95:
#                    87:8f:97:c5:fe:97:6a:01:94:a3:7c:5b:85:1d:2a:
#                    39:3a:d0:54:a1:d1:39:71:9d:fd:21:f9:b5:7b:f0:
#                    e2:e0:02:8f:6e:96:24:25:2c:a0:1e:2c:a8:c4:89:
#                    a7:ef:ed:99:06:2f:b6:0a:4c:4f:db:a2:cc:37:1a:
#                    af:47:85:2d:8a:5f:c4:34:34:4c:00:fd:18:93:67:
#                    13:d1:37:e6:48:b4:8b:06:c5:57:7b:19:86:0a:79:
#                    cb:00:c9:52:af:42:ff:37:8f:e1:a3:1e:7a:3d:50:
#                    ab:63:06:e7:15:b5:3f:b6:45:37:94:37:b1:7e:f2:
#                    48:c3:7f:c5:75:fe:97:8d:45:8f:1a:a7:1a:72:28:
#                    1a:40:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:17:9D:CD:1E:8B:D6:39:2B:70:D3:5C:D4:A0:B8:1F:B0:00:FC:C5:61
#
#            X509v3 Subject Key Identifier: 
#                17:9D:CD:1E:8B:D6:39:2B:70:D3:5C:D4:A0:B8:1F:B0:00:FC:C5:61
#    Signature Algorithm: sha256WithRSAEncryption
#         56:d5:7b:6e:e6:22:01:d2:42:9b:18:d5:0e:d7:66:23:5c:e3:
#         fe:a0:c7:92:d2:e9:94:ad:4b:a2:c6:ec:12:7c:74:d5:48:d2:
#         59:14:99:c0:eb:b9:d1:eb:f4:48:30:5b:ad:a7:57:73:99:a9:
#         d3:e5:b7:d1:2e:59:24:58:dc:68:2e:2e:62:d8:6a:e4:70:0b:
#         2d:20:50:20:a4:32:95:d1:00:98:bb:d3:fd:f7:32:f2:49:ae:
#         c6:7a:e0:47:be:6e:ce:cb:a3:72:3a:2d:69:5d:cb:c8:e8:45:
#         39:d4:fa:42:c1:11:4c:77:5d:92:fb:6a:ff:58:44:e5:eb:81:
#         9e:af:a0:99:ad:be:a9:01:66:cb:38:1d:3c:df:43:1f:f4:4d:
#         6e:b4:ba:17:46:fc:7d:fd:87:81:79:6a:0d:33:0f:fa:2f:f8:
#         14:b9:80:b3:5d:4d:aa:97:e1:f9:e4:18:c5:f8:d5:38:8c:26:
#         3c:fd:f2:28:e2:ee:5a:49:88:2c:df:79:3d:8e:9e:90:3c:bd:
#         41:4a:3a:dd:5b:f6:9a:b4:ce:3f:25:30:7f:32:7d:a2:03:94:
#         d0:dc:7a:a1:52:de:6e:93:8d:18:26:fd:55:ac:bd:8f:9b:d2:
#         cf:af:e7:86:2c:cb:1f:09:6f:a3:6f:a9:84:d4:73:bf:4d:a1:
#         74:1b:4e:23:60:f2:cc:0e:aa:7f:a4:9c:4c:25:a8:b2:66:3b:
#         38:ff:d9:94:30:f6:72:84:be:68:55:10:0f:c6:73:2c:16:69:
#         93:07:fe:b1:45:ed:bb:a2:55:6a:b0:da:b5:4a:02:25:27:85:
#         d7:b7:b7:86:44:16:89:6c:80:2b:3e:97:a9:9c:d5:7e:55:4c:
#         c6:de:45:10:1c:ea:e9:3b:9f:03:53:ee:ee:7a:01:02:16:78:
#         d4:e8:c2:be:46:76:88:13:3f:22:bb:48:12:1d:52:00:b4:02:
#         7e:21:1a:1e:9c:25:f4:f3:3d:5e:1e:d2:1c:f9:b3:2d:b6:f7:
#         37:5c:c6:cb:21:4e:b0:f7:99:47:18:85:c1:2b:ba:55:ae:06:
#         ea:d0:07:b2:dc:ab:d0:82:96:75:ce:d2:50:fe:99:e7:cf:2f:
#         9f:e7:76:d1:61:2a:fb:21:bb:31:d0:aa:9f:47:a4:b2:22:ca:
#         16:3a:50:57:c4:5b:43:67:c5:65:62:03:49:01:eb:43:d9:d8:
#         f8:9e:ad:cf:b1:63:0e:45:f4:a0:5a:2c:9b:2d:c5:a6:c0:ad:
#         a8:47:f4:27:4c:38:0d:2e:1b:49:3b:52:f4:e8:88:83:2b:54:
#         28:d4:f2:35:52:b4:32:83:62:69:64:0c:91:9c:9f:97:ea:74:
#         16:fd:1f:11:06:9a:9b:f4

[p11-kit-object-v1]
label: "I.CA Root CA/RSA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAqj9VtYmvdhQGKmQmlDgP
X/bcBG8xRfUK/Tt/m3Jv+EB8/l39NJkFOJRJurHwvfiZXMBR+qoN++ZxFYVjESp3
BpGSBoiz/BThmUa0KYKuhIPutSaHbviLVUSdQNj/Klqq6H/SZeEUR8J8Mf11YQob
jIBKnrTiLhRHMe68BVGupn7PEbjFSL0FVMKE5Kdoa/i4+n4oybnP5CFPZcmIaKA4
2XWlETtMHG5LHtSGbMGtBUfTLJQNzIctGi3D1szehP7sa8DhIxOh05wYfuBy11xV
vEyzQDEbnEDNmuuADnGu12JuWhZPH/ZlRdGfeoVBGcJ6Os4hkuSUcEy7qEHGxLs1
zfU6nmOpjaBq0SBEqiq2SKVyw86e5FhIRwl/AkHzDRxtCXjw1xTRoFX8EdZaGgB5
5TvmCMtSnqQJq2vnbJwqLyJ9+7lQst5Q0y8McrnWs7ezCObre6z0tMX2wTIfpxkh
9dxeN6rHH1ObQz7mnp/aDddWog9TaS1Vv+uGeBG/ptdaTfMOk3Pq/w7Q54/xyLPw
2BhzbKVyiPFwTEdUtpta0bwmN40Y35trLtsLJbOKsuOtBlxtu30XAwcBijCXiXRt
SpR3Luvuz7Aetep29LUUOJXX1dkvP7KkJsxNo1yNCfNeDIUyzlZsAgjxS6Orv8hU
oAWFdOR1HXq8nDtgPWr9GZECAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "I.CA Root CA/RSA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 100000000 (0x5f5e100)
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=CZ, O=Prvn\xC3\xAD certifika\xC4\x8Dn\xC3\xAD autorita, a.s., CN=I.CA Root CA/RSA/serialNumber=NTRCZ-26439395
#        Validity
#            Not Before: May 27 12:20:00 2015 GMT
#            Not After : May 27 12:20:00 2040 GMT
#        Subject: C=CZ, O=Prvn\xC3\xAD certifika\xC4\x8Dn\xC3\xAD autorita, a.s., CN=I.CA Root CA/RSA/serialNumber=NTRCZ-26439395
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:3f:55:b5:89:af:76:14:06:2a:64:26:94:38:
#                    0f:5f:f6:dc:04:6f:31:45:f5:0a:fd:3b:7f:9b:72:
#                    6f:f8:40:7c:fe:5d:fd:34:99:05:38:94:49:ba:b1:
#                    f0:bd:f8:99:5c:c0:51:fa:aa:0d:fb:e6:71:15:85:
#                    63:11:2a:77:06:91:92:06:88:b3:fc:14:e1:99:46:
#                    b4:29:82:ae:84:83:ee:b5:26:87:6e:f8:8b:55:44:
#                    9d:40:d8:ff:2a:5a:aa:e8:7f:d2:65:e1:14:47:c2:
#                    7c:31:fd:75:61:0a:1b:8c:80:4a:9e:b4:e2:2e:14:
#                    47:31:ee:bc:05:51:ae:a6:7e:cf:11:b8:c5:48:bd:
#                    05:54:c2:84:e4:a7:68:6b:f8:b8:fa:7e:28:c9:b9:
#                    cf:e4:21:4f:65:c9:88:68:a0:38:d9:75:a5:11:3b:
#                    4c:1c:6e:4b:1e:d4:86:6c:c1:ad:05:47:d3:2c:94:
#                    0d:cc:87:2d:1a:2d:c3:d6:cc:de:84:fe:ec:6b:c0:
#                    e1:23:13:a1:d3:9c:18:7e:e0:72:d7:5c:55:bc:4c:
#                    b3:40:31:1b:9c:40:cd:9a:eb:80:0e:71:ae:d7:62:
#                    6e:5a:16:4f:1f:f6:65:45:d1:9f:7a:85:41:19:c2:
#                    7a:3a:ce:21:92:e4:94:70:4c:bb:a8:41:c6:c4:bb:
#                    35:cd:f5:3a:9e:63:a9:8d:a0:6a:d1:20:44:aa:2a:
#                    b6:48:a5:72:c3:ce:9e:e4:58:48:47:09:7f:02:41:
#                    f3:0d:1c:6d:09:78:f0:d7:14:d1:a0:55:fc:11:d6:
#                    5a:1a:00:79:e5:3b:e6:08:cb:52:9e:a4:09:ab:6b:
#                    e7:6c:9c:2a:2f:22:7d:fb:b9:50:b2:de:50:d3:2f:
#                    0c:72:b9:d6:b3:b7:b3:08:e6:eb:7b:ac:f4:b4:c5:
#                    f6:c1:32:1f:a7:19:21:f5:dc:5e:37:aa:c7:1f:53:
#                    9b:43:3e:e6:9e:9f:da:0d:d7:56:a2:0f:53:69:2d:
#                    55:bf:eb:86:78:11:bf:a6:d7:5a:4d:f3:0e:93:73:
#                    ea:ff:0e:d0:e7:8f:f1:c8:b3:f0:d8:18:73:6c:a5:
#                    72:88:f1:70:4c:47:54:b6:9b:5a:d1:bc:26:37:8d:
#                    18:df:9b:6b:2e:db:0b:25:b3:8a:b2:e3:ad:06:5c:
#                    6d:bb:7d:17:03:07:01:8a:30:97:89:74:6d:4a:94:
#                    77:2e:eb:ee:cf:b0:1e:b5:ea:76:f4:b5:14:38:95:
#                    d7:d5:d9:2f:3f:b2:a4:26:cc:4d:a3:5c:8d:09:f3:
#                    5e:0c:85:32:ce:56:6c:02:08:f1:4b:a3:ab:bf:c8:
#                    54:a0:05:85:74:e4:75:1d:7a:bc:9c:3b:60:3d:6a:
#                    fd:19:91
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                76:B9:03:48:FB:D5:18:A1:A1:37:A0:ED:CC:68:82:4C:52:34:36:0D
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                  User Notice:
#                    Explicit Text: Tento kvalifikovany systemovy certifikat byl vydan podle zakona 227/2000 Sb. v platnem zneni/This qualified system certificate was issued according to Act No. 227/2000 Coll.
#
#    Signature Algorithm: sha512WithRSAEncryption
#         19:54:02:25:83:db:22:96:8b:1d:95:9e:99:db:34:ce:93:d0:
#         1f:2e:7b:5c:60:24:6a:0c:d7:85:44:78:1f:1c:49:f2:14:f8:
#         83:54:19:a6:9d:32:66:b8:23:a6:3b:86:2a:9f:36:fc:17:fc:
#         50:0f:60:c6:37:fd:24:a8:f7:79:a7:8e:bf:d8:07:15:54:5e:
#         52:0c:be:f8:a6:d8:c8:41:44:f1:f6:13:dc:83:19:5b:af:dd:
#         64:f7:33:16:87:0f:15:5a:f1:64:bc:d4:e7:55:3f:32:38:89:
#         9a:f3:cc:48:c5:6c:31:71:92:9a:26:17:c2:7c:47:02:6d:35:
#         27:9f:f3:1a:e1:aa:1d:0d:74:11:a9:93:7c:41:a8:6f:bb:8e:
#         9c:c5:01:e4:73:f6:ba:50:2e:e6:10:d4:bc:6f:13:9a:38:b9:
#         69:46:a5:06:d6:f2:4c:6c:37:ab:3c:f8:db:1a:c6:55:f0:c8:
#         f8:1d:21:6e:2f:00:6a:b1:e2:6d:5a:04:2d:7d:dd:09:4f:f6:
#         ef:14:2f:c0:12:ea:09:19:2b:1a:ca:a0:71:9b:b1:3a:32:bc:
#         ff:43:18:f3:7d:2f:f5:2e:88:e9:51:b6:f1:49:90:4c:ff:26:
#         c7:c3:59:dd:74:5f:c1:50:5d:38:5c:9d:68:55:69:6a:b4:40:
#         77:c9:5f:32:29:48:54:93:c1:b3:21:23:76:a1:55:30:69:23:
#         3f:31:49:c4:a1:cd:3b:76:59:95:5a:82:b4:ad:71:b5:be:a6:
#         91:cc:80:15:4a:2f:ce:94:ae:18:55:49:75:20:44:b8:f3:01:
#         9b:c1:78:2c:8e:10:4c:a7:64:ad:ad:3a:eb:4c:1d:56:2e:7f:
#         94:d4:1e:d0:0a:d5:c9:54:81:0e:1e:fe:f7:94:f9:61:3a:3f:
#         35:ee:d3:60:c9:fb:48:b2:6e:c2:d9:be:7a:6e:98:05:70:00:
#         a3:d1:17:c7:c6:34:af:6c:f5:4d:8f:5d:52:0c:dd:80:9b:7a:
#         6d:e7:98:e3:39:85:5c:3f:8b:cc:44:a2:40:36:32:93:12:56:
#         90:02:9e:3e:59:68:02:1f:56:88:1e:af:c1:fe:0f:7b:55:8d:
#         97:d9:bb:a6:93:47:ba:7c:f8:47:b6:39:d7:8c:f2:40:6c:87:
#         9c:0c:fe:2d:dd:dc:71:fc:0e:91:08:a4:43:3d:8a:57:dd:dd:
#         07:eb:a7:97:51:d0:ba:84:99:ad:8b:79:fe:c9:04:90:83:13:
#         2b:e9:97:0d:65:89:f2:11:2d:37:8e:4b:b8:bb:d2:7a:39:2a:
#         c5:dc:d0:5d:0d:dd:04:27:98:9f:58:fd:8e:86:bb:05:7f:f0:
#         ed:37:92:90:dd:9c:bd:fc

[p11-kit-object-v1]
label: "IGC/A AC racine Etat francais"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IGC/A AC racine Etat francais"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:21:85:0c:b3:9c:6a:32:fa:be:67:1b:81:3f:a4:86:15:8f
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=FR, O=ANSSI, OU=0002 130007669, CN=IGC/A AC racine Etat francais
#        Validity
#            Not Before: Jul  8 09:00:00 2011 GMT
#            Not After : Apr 15 09:00:00 2028 GMT
#        Subject: C=FR, O=ANSSI, OU=0002 130007669, CN=IGC/A AC racine Etat francais
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:aa:7c:28:9f:11:30:98:cd:6f:6e:2c:85:12:26:
#                    3b:08:06:ca:41:fd:52:4f:43:bd:c0:26:27:71:76:
#                    1a:59:96:d8:09:eb:07:aa:26:4e:4f:3e:4b:a1:e3:
#                    97:87:85:66:81:71:c9:b9:15:76:6f:77:50:18:93:
#                    10:2d:37:88:4d:17:b7:f3:45:bd:22:2e:b7:27:98:
#                    5b:c7:05:fd:bd:33:ed:a2:f5:53:1d:28:23:65:bf:
#                    40:35:6e:ce:6a:0b:c3:a9:f5:25:0c:ab:22:f0:b8:
#                    c0:c4:7d:37:0c:a3:62:7c:ee:b4:db:3d:21:39:a7:
#                    9c:89:e3:9b:a2:10:f8:8a:b6:4a:2f:2e:98:69:2b:
#                    6a:a0:86:da:f1:08:e5:be:4c:67:16:2d:25:61:f3:
#                    d5:0d:0b:17:44:47:09:d4:46:05:9d:0f:c0:88:4d:
#                    61:e4:24:c4:c7:68:09:af:ac:d2:af:b9:95:26:6f:
#                    80:04:fc:76:ac:aa:c7:23:b6:e4:06:91:55:44:ec:
#                    64:db:99:81:1c:d2:56:74:fd:d6:32:28:bb:cb:c9:
#                    37:0d:fb:69:6c:6f:ba:a3:6b:06:8c:6a:40:2e:17:
#                    3a:39:ea:d0:0c:df:5a:1c:ba:6f:a4:32:b0:b8:cc:
#                    3e:77:1b:d3:8b:1f:86:fa:ff:3e:3e:6f:5c:88:46:
#                    e7:e3:0f:fa:ab:1d:f3:7d:4b:f8:54:6e:4e:cc:dc:
#                    32:5a:63:78:a2:32:af:33:78:ea:43:e1:4c:7a:4d:
#                    d7:94:06:2d:e6:4f:a5:42:92:af:28:8a:4f:c3:15:
#                    ec:a9:6b:a9:df:e0:dd:13:02:bc:cc:7d:ff:2d:e6:
#                    07:a9:be:75:96:ea:42:5e:5b:1a:de:a2:33:b3:63:
#                    bd:ab:05:f9:8b:e6:bd:4d:d1:6d:56:9a:eb:89:3c:
#                    9f:c0:78:e4:be:25:70:06:c5:11:73:a0:c8:ca:14:
#                    cb:3a:d4:f2:9c:2a:3c:da:5f:17:33:d9:76:14:37:
#                    aa:49:87:65:d9:f4:d9:2e:19:5f:f9:a0:cd:a8:b9:
#                    41:32:6d:71:a6:a4:cb:f7:63:22:d0:29:e4:ba:81:
#                    1a:6a:29:1d:9a:a5:a4:5c:46:54:24:45:d4:c8:ed:
#                    7a:79:85:ec:84:77:6e:67:4d:64:0f:43:de:7a:83:
#                    a4:a7:d8:db:b5:53:4c:fe:62:c8:13:c3:62:36:a5:
#                    28:31:32:9b:b4:96:87:e2:99:c6:1f:56:bf:46:a3:
#                    a9:64:31:e5:d5:b1:4b:a8:66:cc:5b:a1:ff:16:fc:
#                    0a:38:2a:68:8f:77:25:26:ad:91:74:85:68:c8:7f:
#                    1a:e5:5a:14:b8:7d:0e:b7:23:31:c0:64:b7:05:2f:
#                    41:58:55
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Certificate Policies: 
#                Policy: 1.2.250.1.223.1.1.2
#
#            X509v3 Subject Key Identifier: 
#                9F:AA:D3:29:96:DF:00:E5:43:E0:F1:63:AC:DE:12:8E:C2:27:78:FA
#            X509v3 Authority Key Identifier: 
#                keyid:9F:AA:D3:29:96:DF:00:E5:43:E0:F1:63:AC:DE:12:8E:C2:27:78:FA
#
#    Signature Algorithm: sha256WithRSAEncryption
#         75:b5:75:d1:8e:36:66:9c:48:f7:85:0d:4e:05:bb:4d:9a:9c:
#         b4:0e:28:a2:04:bc:50:30:bb:f4:94:4c:98:90:85:ab:e0:52:
#         64:4f:d2:d2:2e:62:93:90:b0:85:0d:88:54:fb:c6:54:6c:9e:
#         eb:95:79:80:5e:a2:97:16:1f:f2:67:74:41:9c:55:f4:b7:6a:
#         9b:4a:16:86:bd:05:1f:66:80:70:7e:c9:d1:f5:2d:21:71:50:
#         39:a5:ad:88:a6:26:1c:8b:d7:25:1c:3a:d6:e3:f4:c2:0c:9f:
#         57:c1:64:c8:57:51:23:16:23:8d:0f:23:6a:56:4b:ff:fa:c6:
#         9f:35:93:c6:22:c0:65:f1:af:de:a9:6c:18:be:57:65:59:cd:
#         f4:23:55:64:21:d8:ed:95:61:69:33:72:6a:51:f6:9f:e5:95:
#         6d:8e:de:6b:73:27:13:94:5e:7e:97:48:c0:32:16:be:3d:37:
#         ed:d6:dc:8e:bc:5c:2d:fc:62:a8:cf:f6:90:f7:b1:8b:09:eb:
#         3a:24:63:0d:c8:96:45:d4:2f:77:48:42:f5:2d:62:e7:27:0b:
#         e0:11:86:19:dd:a7:10:f7:63:06:91:30:69:5a:75:f4:ac:f9:
#         a1:8d:97:c6:a0:ef:3a:1f:93:25:48:56:3a:1a:88:21:19:93:
#         c3:95:20:49:08:55:49:4d:a2:53:9c:99:9c:73:69:2e:a7:f5:
#         ca:b7:0e:25:ef:37:23:5f:90:d8:43:7e:ee:84:17:6a:27:5e:
#         7f:d2:2d:3f:ac:3e:af:30:a7:8d:91:c4:f4:8f:09:1d:f3:f7:
#         91:0e:e3:18:ba:dc:44:c9:7d:05:53:03:b7:6e:a0:f3:79:d7:
#         d1:1a:4f:d0:b8:6c:88:76:c1:80:98:55:85:53:61:cf:44:57:
#         4c:de:4e:0d:16:51:f1:3d:89:81:ae:7d:0b:ad:8a:b5:ee:56:
#         c4:c6:cc:11:0b:18:d4:fc:fd:79:fb:fe:04:11:9c:23:ef:76:
#         72:c7:8d:be:b9:1e:78:76:f2:9a:1c:ad:63:42:c7:d8:ed:6d:
#         61:90:c2:21:2a:0f:08:14:2d:20:43:25:7c:18:b5:b7:a0:a4:
#         7d:b9:a5:0c:19:fe:c9:ab:3d:e7:5b:de:af:fa:57:19:27:85:
#         e7:23:0e:f4:cd:0d:19:30:3e:8a:e4:c6:11:1e:f0:b4:7d:69:
#         63:9b:0e:96:86:90:e0:fb:03:6f:5b:59:3e:1d:21:f5:57:67:
#         56:26:f2:87:19:07:84:ba:2c:90:3a:c3:28:a4:05:5a:20:cd:
#         a9:5b:95:75:39:7f:22:50:0a:4e:7f:17:f7:b3:ac:d3:07:a6:
#         be:2d:52:0a:30:4c:78:10

[p11-kit-object-v1]
label: "ISRG Root X1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ISRG Root X1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            82:10:cf:b0:d2:40:e3:59:44:63:e0:bb:63:82:8b:00
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Internet Security Research Group, CN=ISRG Root X1
#        Validity
#            Not Before: Jun  4 11:04:38 2015 GMT
#            Not After : Jun  4 11:04:38 2035 GMT
#        Subject: C=US, O=Internet Security Research Group, CN=ISRG Root X1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ad:e8:24:73:f4:14:37:f3:9b:9e:2b:57:28:1c:
#                    87:be:dc:b7:df:38:90:8c:6e:3c:e6:57:a0:78:f7:
#                    75:c2:a2:fe:f5:6a:6e:f6:00:4f:28:db:de:68:86:
#                    6c:44:93:b6:b1:63:fd:14:12:6b:bf:1f:d2:ea:31:
#                    9b:21:7e:d1:33:3c:ba:48:f5:dd:79:df:b3:b8:ff:
#                    12:f1:21:9a:4b:c1:8a:86:71:69:4a:66:66:6c:8f:
#                    7e:3c:70:bf:ad:29:22:06:f3:e4:c0:e6:80:ae:e2:
#                    4b:8f:b7:99:7e:94:03:9f:d3:47:97:7c:99:48:23:
#                    53:e8:38:ae:4f:0a:6f:83:2e:d1:49:57:8c:80:74:
#                    b6:da:2f:d0:38:8d:7b:03:70:21:1b:75:f2:30:3c:
#                    fa:8f:ae:dd:da:63:ab:eb:16:4f:c2:8e:11:4b:7e:
#                    cf:0b:e8:ff:b5:77:2e:f4:b2:7b:4a:e0:4c:12:25:
#                    0c:70:8d:03:29:a0:e1:53:24:ec:13:d9:ee:19:bf:
#                    10:b3:4a:8c:3f:89:a3:61:51:de:ac:87:07:94:f4:
#                    63:71:ec:2e:e2:6f:5b:98:81:e1:89:5c:34:79:6c:
#                    76:ef:3b:90:62:79:e6:db:a4:9a:2f:26:c5:d0:10:
#                    e1:0e:de:d9:10:8e:16:fb:b7:f7:a8:f7:c7:e5:02:
#                    07:98:8f:36:08:95:e7:e2:37:96:0d:36:75:9e:fb:
#                    0e:72:b1:1d:9b:bc:03:f9:49:05:d8:81:dd:05:b4:
#                    2a:d6:41:e9:ac:01:76:95:0a:0f:d8:df:d5:bd:12:
#                    1f:35:2f:28:17:6c:d2:98:c1:a8:09:64:77:6e:47:
#                    37:ba:ce:ac:59:5e:68:9d:7f:72:d6:89:c5:06:41:
#                    29:3e:59:3e:dd:26:f5:24:c9:11:a7:5a:a3:4c:40:
#                    1f:46:a1:99:b5:a7:3a:51:6e:86:3b:9e:7d:72:a7:
#                    12:05:78:59:ed:3e:51:78:15:0b:03:8f:8d:d0:2f:
#                    05:b2:3e:7b:4a:1c:4b:73:05:12:fc:c6:ea:e0:50:
#                    13:7c:43:93:74:b3:ca:74:e7:8e:1f:01:08:d0:30:
#                    d4:5b:71:36:b4:07:ba:c1:30:30:5c:48:b7:82:3b:
#                    98:a6:7d:60:8a:a2:a3:29:82:cc:ba:bd:83:04:1b:
#                    a2:83:03:41:a1:d6:05:f1:1b:c2:b6:f0:a8:7c:86:
#                    3b:46:a8:48:2a:88:dc:76:9a:76:bf:1f:6a:a5:3d:
#                    19:8f:eb:38:f3:64:de:c8:2b:0d:0a:28:ff:f7:db:
#                    e2:15:42:d4:22:d0:27:5d:e1:79:fe:18:e7:70:88:
#                    ad:4e:e6:d9:8b:3a:c6:dd:27:51:6e:ff:bc:64:f5:
#                    33:43:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                79:B4:59:E6:7B:B6:E5:E4:01:73:80:08:88:C8:1A:58:F6:E9:9B:6E
#    Signature Algorithm: sha256WithRSAEncryption
#         55:1f:58:a9:bc:b2:a8:50:d0:0c:b1:d8:1a:69:20:27:29:08:
#         ac:61:75:5c:8a:6e:f8:82:e5:69:2f:d5:f6:56:4b:b9:b8:73:
#         10:59:d3:21:97:7e:e7:4c:71:fb:b2:d2:60:ad:39:a8:0b:ea:
#         17:21:56:85:f1:50:0e:59:eb:ce:e0:59:e9:ba:c9:15:ef:86:
#         9d:8f:84:80:f6:e4:e9:91:90:dc:17:9b:62:1b:45:f0:66:95:
#         d2:7c:6f:c2:ea:3b:ef:1f:cf:cb:d6:ae:27:f1:a9:b0:c8:ae:
#         fd:7d:7e:9a:fa:22:04:eb:ff:d9:7f:ea:91:2b:22:b1:17:0e:
#         8f:f2:8a:34:5b:58:d8:fc:01:c9:54:b9:b8:26:cc:8a:88:33:
#         89:4c:2d:84:3c:82:df:ee:96:57:05:ba:2c:bb:f7:c4:b7:c7:
#         4e:3b:82:be:31:c8:22:73:73:92:d1:c2:80:a4:39:39:10:33:
#         23:82:4c:3c:9f:86:b2:55:98:1d:be:29:86:8c:22:9b:9e:e2:
#         6b:3b:57:3a:82:70:4d:dc:09:c7:89:cb:0a:07:4d:6c:e8:5d:
#         8e:c9:ef:ce:ab:c7:bb:b5:2b:4e:45:d6:4a:d0:26:cc:e5:72:
#         ca:08:6a:a5:95:e3:15:a1:f7:a4:ed:c9:2c:5f:a5:fb:ff:ac:
#         28:02:2e:be:d7:7b:bb:e3:71:7b:90:16:d3:07:5e:46:53:7c:
#         37:07:42:8c:d3:c4:96:9c:d5:99:b5:2a:e0:95:1a:80:48:ae:
#         4c:39:07:ce:cc:47:a4:52:95:2b:ba:b8:fb:ad:d2:33:53:7d:
#         e5:1d:4d:6d:d5:a1:b1:c7:42:6f:e6:40:27:35:5c:a3:28:b7:
#         07:8d:e7:8d:33:90:e7:23:9f:fb:50:9c:79:6c:46:d5:b4:15:
#         b3:96:6e:7e:9b:0c:96:3a:b8:52:2d:3f:d6:5b:e1:fb:08:c2:
#         84:fe:24:a8:a3:89:da:ac:6a:e1:18:2a:b1:a8:43:61:5b:d3:
#         1f:dc:3b:8d:76:f2:2d:e8:8d:75:df:17:33:6c:3d:53:fb:7b:
#         cb:41:5f:ff:dc:a2:d0:61:38:e1:96:b8:ac:5d:8b:37:d7:75:
#         d5:33:c0:99:11:ae:9d:41:c1:72:75:84:be:02:41:42:5f:67:
#         24:48:94:d1:9b:27:be:07:3f:b9:b8:4f:81:74:51:e1:7a:b7:
#         ed:9d:23:e2:be:e0:d5:28:04:13:3c:31:03:9e:dd:7a:6c:8f:
#         c6:07:18:c6:7f:de:47:8e:3f:28:9e:04:06:cf:a5:54:34:77:
#         bd:ec:89:9b:e9:17:43:df:5b:db:5f:fe:8e:1e:57:a2:cd:40:
#         9d:7e:62:22:da:de:18:27

[p11-kit-object-v1]
label: "ISRG Root X2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEzZvVn4CDCuwJSvMWSj5cz3es3mcFDR0H
ttwW+1qLFNvicWDEukWVEYmO6gbf9yoWHKS5xcUy4APgHoIYOIvXRdgKam7mAHf7
AlF9ItgKbppbd9/w+kHsOdx1ymgHDB/q
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ISRG Root X2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            41:d2:9d:d1:72:ea:ee:a7:80:c1:2c:6c:e9:2f:87:52
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Internet Security Research Group, CN=ISRG Root X2
#        Validity
#            Not Before: Sep  4 00:00:00 2020 GMT
#            Not After : Sep 17 16:00:00 2040 GMT
#        Subject: C=US, O=Internet Security Research Group, CN=ISRG Root X2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:cd:9b:d5:9f:80:83:0a:ec:09:4a:f3:16:4a:3e:
#                    5c:cf:77:ac:de:67:05:0d:1d:07:b6:dc:16:fb:5a:
#                    8b:14:db:e2:71:60:c4:ba:45:95:11:89:8e:ea:06:
#                    df:f7:2a:16:1c:a4:b9:c5:c5:32:e0:03:e0:1e:82:
#                    18:38:8b:d7:45:d8:0a:6a:6e:e6:00:77:fb:02:51:
#                    7d:22:d8:0a:6e:9a:5b:77:df:f0:fa:41:ec:39:dc:
#                    75:ca:68:07:0c:1f:ea
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                7C:42:96:AE:DE:4B:48:3B:FA:92:F8:9E:8C:CF:6D:8B:A9:72:37:95
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:7b:79:4e:46:50:84:c2:44:87:46:1b:45:70:ff:
#         58:99:de:f4:fd:a4:d2:55:a6:20:2d:74:d6:34:bc:41:a3:50:
#         5f:01:27:56:b4:be:27:75:06:af:12:2e:75:98:8d:fc:02:31:
#         00:8b:f5:77:6c:d4:c8:65:aa:e0:0b:2c:ee:14:9d:27:37:a4:
#         f9:53:a5:51:e4:29:83:d7:f8:90:31:5b:42:9f:0a:f5:fe:ae:
#         00:68:e7:8c:49:0f:b6:6f:5b:5b:15:f2:e7

[p11-kit-object-v1]
label: "IdenTrust Commercial Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IdenTrust Commercial Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFYDCCA0igAwIBAgIQCgFCgAAAAUUjyES1AAAAAjANBgkqhkiG9w0BAQsFADBK
MQswCQYDVQQGEwJVUzESMBAGA1UEChMJSWRlblRydXN0MScwJQYDVQQDEx5JZGVu
VHJ1c3QgQ29tbWVyY2lhbCBSb290IENBIDEwHhcNMTQwMTE2MTgxMjIzWhcNMzQw
MTE2MTgxMjIzWjBKMQswCQYDVQQGEwJVUzESMBAGA1UEChMJSWRlblRydXN0MScw
JQYDVQQDEx5JZGVuVHJ1c3QgQ29tbWVyY2lhbCBSb290IENBIDEwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQCnUBneP5k91DNG8W9RYYKyqU+PZ4ldhNlT
3Qwo2dfw/66VQ3KZ+bVdfIrBQuExUHTRgQ18zZshq0PirK1ehm7zCYofWjK9ouuU
+ehcCuz/mNKvcbO0U59Oh++SvL3sTzIwiEsXXlfEU8L2ApeN2WIrvyQfYo3fw7gp
S0l4PJNgiCL8mdo2yMKi1CxUAGc1bnO/AljwpN3lsKImesrgNqUZFvX9t++uP0D1
bVoE/c40yiTcdCMbXTMTEl3EASX2MN0CXZ/g1Ue9tOsbobtJSdifWwLziuQkkORi
T0/Br4sOdBeo0XKIanoBScy0RnnGF7HamB4HWfp1IYVl3ZBWzvurpWCdxJ35UrCL
vYf5jysjCiN2O/cz4ckA82n5S6LgTrx+kzmEB/dEcH7+B1rlsazRGMzyNeVJSQjK
Vsk9+w8YfYs7wRPCTY/JTw436R+hDmrfYi7LNQZReSzIJTj0+kuniVyc0uMNOYZK
dHzVWYfCP04MXFL0PfdSgvHqo6z9STQaKPNBiDoT7uje/5kdX7rL6B7yuVBgwDHT
c+XvvqDtMwt0viAgxGds8AgDelWAf0ZOlqf0Hj7h9tgJ4TNkK2PXMl6f+cB7D3hv
l7yTmvmcEpB4eoCHFddydJxVdHixuuFucAS6T6C6aMN7/zHwcz09lCqxC0EOoP5N
iGVreTO01wIDAQABo0IwQDAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB
/zAdBgNVHQ4EFgQU7UQZwNPwBovupHu+QucmVMiONnYwDQYJKoZIhvcNAQELBQAD
ggIBAA2ukDL2pkt8RHYZYR4nKM1eVO8lvOMIkPkp165oCOGUAFjvLi5+U1KMtlwH
6oi6mYtQlNeCgN9hCQCTrQ0U5s7B8jeUeLBfnLOic7iPBZM4zY0+sLj7wM+x8uwt
LRvM7Kqas6pgghstO8OEPVeKlh6cdbjTMM1gCIOQ045U8U1mwF10A0Cj7oV+wh93
nAbowacYXVKV7cndJZ5t+qntozo00Fl72u1Q8zW/7esUTTHHYPTa8Yec4kjixsU3
+wYQ+nVZZjFHKdp2mhzpgq7vmrlR94gjmmmVYjzlVYA211QC//G5Xc7UI2/YRYRK
W2XviQzdFKcgyxilJbQN+QHwotL0AMh0jqEqSI5l2xPE4iUXfeu+h1sXIFRRk0pT
AwvsXcoz7WL9RccvW9xYoIA55vrX/hMUpu09lEpCdNTDd1lzzY9GvlU47/rokTLq
l1gEIt44w8y8bckzOmoKaT+gyOpyj4xjhiO9bTyWnpXgSUyqorkqG5w2gXjtw+hG
4iZZRHUe2XWJUc0QhJ1hYMtd+ZciTY6Y5uN/9lu7rs3KSoFrXgvzUeF0K+l+J6fZ
mUlO+KWA2yUPHGNiiskzZ2s8EIPGrd6ozRaOjfAHN3Gf8qv8QfXBi+wAN10J5U6A
7/qxXDgGpRtK4dw4LTzcqx+QGtVKnO7RcGzM7vRX+Bi6hG6H
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:01:42:80:00:00:01:45:23:c8:44:b5:00:00:00:02
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=IdenTrust, CN=IdenTrust Commercial Root CA 1
#        Validity
#            Not Before: Jan 16 18:12:23 2014 GMT
#            Not After : Jan 16 18:12:23 2034 GMT
#        Subject: C=US, O=IdenTrust, CN=IdenTrust Commercial Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a7:50:19:de:3f:99:3d:d4:33:46:f1:6f:51:61:
#                    82:b2:a9:4f:8f:67:89:5d:84:d9:53:dd:0c:28:d9:
#                    d7:f0:ff:ae:95:43:72:99:f9:b5:5d:7c:8a:c1:42:
#                    e1:31:50:74:d1:81:0d:7c:cd:9b:21:ab:43:e2:ac:
#                    ad:5e:86:6e:f3:09:8a:1f:5a:32:bd:a2:eb:94:f9:
#                    e8:5c:0a:ec:ff:98:d2:af:71:b3:b4:53:9f:4e:87:
#                    ef:92:bc:bd:ec:4f:32:30:88:4b:17:5e:57:c4:53:
#                    c2:f6:02:97:8d:d9:62:2b:bf:24:1f:62:8d:df:c3:
#                    b8:29:4b:49:78:3c:93:60:88:22:fc:99:da:36:c8:
#                    c2:a2:d4:2c:54:00:67:35:6e:73:bf:02:58:f0:a4:
#                    dd:e5:b0:a2:26:7a:ca:e0:36:a5:19:16:f5:fd:b7:
#                    ef:ae:3f:40:f5:6d:5a:04:fd:ce:34:ca:24:dc:74:
#                    23:1b:5d:33:13:12:5d:c4:01:25:f6:30:dd:02:5d:
#                    9f:e0:d5:47:bd:b4:eb:1b:a1:bb:49:49:d8:9f:5b:
#                    02:f3:8a:e4:24:90:e4:62:4f:4f:c1:af:8b:0e:74:
#                    17:a8:d1:72:88:6a:7a:01:49:cc:b4:46:79:c6:17:
#                    b1:da:98:1e:07:59:fa:75:21:85:65:dd:90:56:ce:
#                    fb:ab:a5:60:9d:c4:9d:f9:52:b0:8b:bd:87:f9:8f:
#                    2b:23:0a:23:76:3b:f7:33:e1:c9:00:f3:69:f9:4b:
#                    a2:e0:4e:bc:7e:93:39:84:07:f7:44:70:7e:fe:07:
#                    5a:e5:b1:ac:d1:18:cc:f2:35:e5:49:49:08:ca:56:
#                    c9:3d:fb:0f:18:7d:8b:3b:c1:13:c2:4d:8f:c9:4f:
#                    0e:37:e9:1f:a1:0e:6a:df:62:2e:cb:35:06:51:79:
#                    2c:c8:25:38:f4:fa:4b:a7:89:5c:9c:d2:e3:0d:39:
#                    86:4a:74:7c:d5:59:87:c2:3f:4e:0c:5c:52:f4:3d:
#                    f7:52:82:f1:ea:a3:ac:fd:49:34:1a:28:f3:41:88:
#                    3a:13:ee:e8:de:ff:99:1d:5f:ba:cb:e8:1e:f2:b9:
#                    50:60:c0:31:d3:73:e5:ef:be:a0:ed:33:0b:74:be:
#                    20:20:c4:67:6c:f0:08:03:7a:55:80:7f:46:4e:96:
#                    a7:f4:1e:3e:e1:f6:d8:09:e1:33:64:2b:63:d7:32:
#                    5e:9f:f9:c0:7b:0f:78:6f:97:bc:93:9a:f9:9c:12:
#                    90:78:7a:80:87:15:d7:72:74:9c:55:74:78:b1:ba:
#                    e1:6e:70:04:ba:4f:a0:ba:68:c3:7b:ff:31:f0:73:
#                    3d:3d:94:2a:b1:0b:41:0e:a0:fe:4d:88:65:6b:79:
#                    33:b4:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                ED:44:19:C0:D3:F0:06:8B:EE:A4:7B:BE:42:E7:26:54:C8:8E:36:76
#    Signature Algorithm: sha256WithRSAEncryption
#         0d:ae:90:32:f6:a6:4b:7c:44:76:19:61:1e:27:28:cd:5e:54:
#         ef:25:bc:e3:08:90:f9:29:d7:ae:68:08:e1:94:00:58:ef:2e:
#         2e:7e:53:52:8c:b6:5c:07:ea:88:ba:99:8b:50:94:d7:82:80:
#         df:61:09:00:93:ad:0d:14:e6:ce:c1:f2:37:94:78:b0:5f:9c:
#         b3:a2:73:b8:8f:05:93:38:cd:8d:3e:b0:b8:fb:c0:cf:b1:f2:
#         ec:2d:2d:1b:cc:ec:aa:9a:b3:aa:60:82:1b:2d:3b:c3:84:3d:
#         57:8a:96:1e:9c:75:b8:d3:30:cd:60:08:83:90:d3:8e:54:f1:
#         4d:66:c0:5d:74:03:40:a3:ee:85:7e:c2:1f:77:9c:06:e8:c1:
#         a7:18:5d:52:95:ed:c9:dd:25:9e:6d:fa:a9:ed:a3:3a:34:d0:
#         59:7b:da:ed:50:f3:35:bf:ed:eb:14:4d:31:c7:60:f4:da:f1:
#         87:9c:e2:48:e2:c6:c5:37:fb:06:10:fa:75:59:66:31:47:29:
#         da:76:9a:1c:e9:82:ae:ef:9a:b9:51:f7:88:23:9a:69:95:62:
#         3c:e5:55:80:36:d7:54:02:ff:f1:b9:5d:ce:d4:23:6f:d8:45:
#         84:4a:5b:65:ef:89:0c:dd:14:a7:20:cb:18:a5:25:b4:0d:f9:
#         01:f0:a2:d2:f4:00:c8:74:8e:a1:2a:48:8e:65:db:13:c4:e2:
#         25:17:7d:eb:be:87:5b:17:20:54:51:93:4a:53:03:0b:ec:5d:
#         ca:33:ed:62:fd:45:c7:2f:5b:dc:58:a0:80:39:e6:fa:d7:fe:
#         13:14:a6:ed:3d:94:4a:42:74:d4:c3:77:59:73:cd:8f:46:be:
#         55:38:ef:fa:e8:91:32:ea:97:58:04:22:de:38:c3:cc:bc:6d:
#         c9:33:3a:6a:0a:69:3f:a0:c8:ea:72:8f:8c:63:86:23:bd:6d:
#         3c:96:9e:95:e0:49:4c:aa:a2:b9:2a:1b:9c:36:81:78:ed:c3:
#         e8:46:e2:26:59:44:75:1e:d9:75:89:51:cd:10:84:9d:61:60:
#         cb:5d:f9:97:22:4d:8e:98:e6:e3:7f:f6:5b:bb:ae:cd:ca:4a:
#         81:6b:5e:0b:f3:51:e1:74:2b:e9:7e:27:a7:d9:99:49:4e:f8:
#         a5:80:db:25:0f:1c:63:62:8a:c9:33:67:6b:3c:10:83:c6:ad:
#         de:a8:cd:16:8e:8d:f0:07:37:71:9f:f2:ab:fc:41:f5:c1:8b:
#         ec:00:37:5d:09:e5:4e:80:ef:fa:b1:5c:38:06:a5:1b:4a:e1:
#         dc:38:2d:3c:dc:ab:1f:90:1a:d5:4a:9c:ee:d1:70:6c:cc:ee:
#         f4:57:f8:18:ba:84:6e:87

[p11-kit-object-v1]
label: "IdenTrust Public Sector Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "IdenTrust Public Sector Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:01:42:80:00:00:01:45:23:cf:46:7c:00:00:00:02
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=IdenTrust, CN=IdenTrust Public Sector Root CA 1
#        Validity
#            Not Before: Jan 16 17:53:32 2014 GMT
#            Not After : Jan 16 17:53:32 2034 GMT
#        Subject: C=US, O=IdenTrust, CN=IdenTrust Public Sector Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:22:94:fc:a4:48:af:e8:47:6b:0a:fb:27:76:
#                    e4:f2:3f:8a:3b:7a:4a:2c:31:2a:8c:8d:b0:a9:c3:
#                    31:6b:a8:77:76:84:26:b6:ac:81:42:0d:08:eb:55:
#                    58:bb:7a:f8:bc:65:7d:f2:a0:6d:8b:a8:47:e9:62:
#                    76:1e:11:ee:08:14:d1:b2:44:16:f4:ea:d0:fa:1e:
#                    2f:5e:db:cb:73:41:ae:bc:00:b0:4a:2b:40:b2:ac:
#                    e1:3b:4b:c2:2d:9d:e4:a1:9b:ec:1a:3a:1e:f0:08:
#                    b3:d0:e4:24:35:07:9f:9c:b4:c9:52:6d:db:07:ca:
#                    8f:b5:5b:f0:83:f3:4f:c7:2d:a5:c8:ad:cb:95:20:
#                    a4:31:28:57:58:5a:e4:8d:1b:9a:ab:9e:0d:0c:f2:
#                    0a:33:39:22:39:0a:97:2e:f3:53:77:b9:44:45:fd:
#                    84:cb:36:20:81:59:2d:9a:6f:6d:48:48:61:ca:4c:
#                    df:53:d1:af:52:bc:44:9f:ab:2f:6b:83:72:ef:75:
#                    80:da:06:33:1b:5d:c8:da:63:c6:4d:cd:ac:66:31:
#                    cd:d1:de:3e:87:10:36:e1:b9:a4:7a:ef:60:50:b2:
#                    cb:ca:a6:56:e0:37:af:ab:34:13:39:25:e8:39:66:
#                    e4:98:7a:aa:12:98:9c:59:66:86:3e:ad:f1:b0:ca:
#                    3e:06:0f:7b:f0:11:4b:37:a0:44:6d:7b:cb:a8:8c:
#                    71:f4:d5:b5:91:36:cc:f0:15:c6:2b:de:51:17:b1:
#                    97:4c:50:3d:b1:95:59:7c:05:7d:2d:21:d5:00:bf:
#                    01:67:a2:5e:7b:a6:5c:f2:f7:22:f1:90:0d:93:db:
#                    aa:44:51:66:cc:7d:76:03:eb:6a:a8:2a:38:19:97:
#                    76:0d:6b:8a:61:f9:bc:f6:ee:76:fd:70:2b:dd:29:
#                    3c:f8:0a:1e:5b:42:1c:8b:56:2f:55:1b:1c:a1:2e:
#                    b5:c7:16:e6:f8:aa:3c:92:8e:69:b6:01:c1:b5:86:
#                    9d:89:0f:0b:38:94:54:e8:ea:dc:9e:3d:25:bc:53:
#                    26:ed:d5:ab:39:aa:c5:40:4c:54:ab:b2:b4:d9:d9:
#                    f8:d7:72:db:1c:bc:6d:bd:65:5f:ef:88:35:2a:66:
#                    2f:ee:f6:b3:65:f0:33:8d:7c:98:41:69:46:0f:43:
#                    1c:69:fa:9b:b5:d0:61:6a:cd:ca:4b:d9:4c:90:46:
#                    ab:15:59:a1:47:54:29:2e:83:28:5f:1c:c2:a2:ab:
#                    72:17:00:06:8e:45:ec:8b:e2:33:3d:7f:da:19:44:
#                    e4:62:72:c3:df:22:c6:f2:56:d4:dd:5f:95:72:ed:
#                    6d:5f:f7:48:03:5b:fd:c5:2a:a0:f6:73:23:84:10:
#                    1b:01:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E3:71:E0:9E:D8:A7:42:D9:DB:71:91:6B:94:93:EB:C3:A3:D1:14:A3
#    Signature Algorithm: sha256WithRSAEncryption
#         47:fa:dd:0a:b0:11:91:38:ad:4d:5d:f7:e5:0e:97:54:19:82:
#         48:87:54:8c:aa:64:99:d8:5a:fe:88:01:c5:58:a5:99:b1:23:
#         54:23:b7:6a:1d:20:57:e5:01:62:41:17:d3:09:db:75:cb:6e:
#         54:90:75:fe:1a:9f:81:0a:c2:dd:d7:f7:09:d0:5b:72:15:e4:
#         1e:09:6a:3d:33:f3:21:9a:e6:15:7e:ad:51:d5:0d:10:ed:7d:
#         42:c0:8f:ee:c0:9a:08:d5:41:d6:5c:0e:21:69:6e:80:61:0e:
#         15:c0:b8:cf:c5:49:12:52:cc:be:3a:cc:d4:2e:38:05:de:35:
#         fd:1f:6f:b8:80:68:98:3d:4d:a0:ca:40:65:d2:73:7c:f5:8b:
#         d9:0a:95:3f:d8:3f:23:6d:1a:d1:2a:24:19:d9:85:b3:17:ef:
#         78:6e:a9:58:d1:23:d3:c7:13:ed:72:25:7f:5d:b1:73:70:d0:
#         7f:06:97:09:84:29:80:61:1d:fa:5e:ff:73:ac:a0:e3:89:b8:
#         1c:71:15:c6:de:31:7f:12:dc:e1:6d:9b:af:e7:e8:9f:75:78:
#         4c:ab:46:3b:9a:ce:bf:05:18:5d:4d:15:3c:16:9a:19:50:04:
#         9a:b2:9a:6f:65:8b:52:5f:3c:58:04:28:25:c0:66:61:31:7e:
#         b9:e0:75:b9:1a:a8:81:d6:72:17:b3:c5:03:31:35:11:78:78:
#         a2:e0:e9:30:8c:7f:80:df:58:df:3c:ba:27:96:e2:80:34:6d:
#         e3:98:d3:64:27:ac:48:7e:28:77:5c:c6:25:61:25:f8:85:0c:
#         65:fa:c4:32:2f:a5:98:05:e4:f8:0b:67:16:16:c6:82:b8:32:
#         19:f9:f9:b9:79:dc:1f:cd:eb:af:ab:0e:dd:1b:db:45:e4:7a:
#         e7:02:e2:95:5d:fc:69:f0:53:69:61:95:75:79:0b:5e:55:e6:
#         38:1c:94:a9:59:33:9e:c8:71:74:79:7f:51:89:b6:c8:6a:b8:
#         30:c8:6a:38:c3:6e:9e:e1:37:16:ea:05:62:4c:5b:12:47:ed:
#         a7:b4:b3:58:56:c7:49:f3:7f:12:68:09:31:71:f0:6d:f8:4e:
#         47:fb:d6:85:ee:c5:58:40:19:a4:1d:a7:f9:4b:43:37:dc:68:
#         5a:4f:cf:eb:c2:64:74:de:b4:15:d9:f4:54:54:1a:2f:1c:d7:
#         97:71:54:90:8e:d9:20:9d:53:2b:7f:ab:8f:e2:ea:30:bc:50:
#         37:ef:f1:47:b5:7d:7c:2c:04:ec:68:9d:b4:49:44:10:f4:72:
#         4b:1c:64:e7:fc:e6:6b:90:dd:69:7d:69:fd:00:56:a5:b7:ac:
#         b6:ad:b7:ca:3e:01:ef:9c

[p11-kit-object-v1]
label: "Izenpe.com"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Izenpe.com"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            b0:b7:5a:16:48:5f:bf:e1:cb:f5:8b:d7:19:e6:7d
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ES, O=IZENPE S.A., CN=Izenpe.com
#        Validity
#            Not Before: Dec 13 13:08:28 2007 GMT
#            Not After : Dec 13 08:27:25 2037 GMT
#        Subject: C=ES, O=IZENPE S.A., CN=Izenpe.com
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c9:d3:7a:ca:0f:1e:ac:a7:86:e8:16:65:6a:b1:
#                    c2:1b:45:32:71:95:d9:fe:10:5b:cc:af:e7:a5:79:
#                    01:8f:89:c3:ca:f2:55:71:f7:77:be:77:94:f3:72:
#                    a4:2c:44:d8:9e:92:9b:14:3a:a1:e7:24:90:0a:0a:
#                    56:8e:c5:d8:26:94:e1:d9:48:e1:2d:3e:da:0a:72:
#                    dd:a3:99:15:da:81:a2:87:f4:7b:6e:26:77:89:58:
#                    ad:d6:eb:0c:b2:41:7a:73:6e:6d:db:7a:78:41:e9:
#                    08:88:12:7e:87:2e:66:11:63:6c:54:fb:3c:9d:72:
#                    c0:bc:2e:ff:c2:b7:dd:0d:76:e3:3a:d7:f7:b4:68:
#                    be:a2:f5:e3:81:6e:c1:46:6f:5d:8d:e0:4d:c6:54:
#                    55:89:1a:33:31:0a:b1:57:b9:a3:8a:98:c3:ec:3b:
#                    34:c5:95:41:69:7e:75:c2:3c:20:c5:61:ba:51:47:
#                    a0:20:90:93:a1:90:4b:f3:4e:7c:85:45:54:9a:d1:
#                    05:26:41:b0:b5:4d:1d:33:be:c4:03:c8:25:7c:c1:
#                    70:db:3b:f4:09:2d:54:27:48:ac:2f:e1:c4:ac:3e:
#                    c8:cb:92:4c:53:39:37:23:ec:d3:01:f9:e0:09:44:
#                    4d:4d:64:c0:e1:0d:5a:87:22:bc:ad:1b:a3:fe:26:
#                    b5:15:f3:a7:fc:84:19:e9:ec:a1:88:b4:44:69:84:
#                    83:f3:89:d1:74:06:a9:cc:0b:d6:c2:de:27:85:50:
#                    26:ca:17:b8:c9:7a:87:56:2c:1a:01:1e:6c:be:13:
#                    ad:10:ac:b5:24:f5:38:91:a1:d6:4b:da:f1:bb:d2:
#                    de:47:b5:f1:bc:81:f6:59:6b:cf:19:53:e9:8d:15:
#                    cb:4a:cb:a9:6f:44:e5:1b:41:cf:e1:86:a7:ca:d0:
#                    6a:9f:bc:4c:8d:06:33:5a:a2:85:e5:90:35:a0:62:
#                    5c:16:4e:f0:e3:a2:fa:03:1a:b4:2c:71:b3:58:2c:
#                    de:7b:0b:db:1a:0f:eb:de:21:1f:06:77:06:03:b0:
#                    c9:ef:99:fc:c0:b9:4f:0b:86:28:fe:d2:b9:ea:e3:
#                    da:a5:c3:47:69:12:e0:db:f0:f6:19:8b:ed:7b:70:
#                    d7:02:d6:ed:87:18:28:2c:04:24:4c:77:e4:48:8a:
#                    1a:c6:3b:9a:d4:0f:ca:fa:75:d2:01:40:5a:8d:79:
#                    bf:8b:cf:4b:cf:aa:16:c1:95:e4:ad:4c:8a:3e:17:
#                    91:d4:b1:62:e5:82:e5:80:04:a4:03:7e:8d:bf:da:
#                    7f:a2:0f:97:4f:0c:d3:0d:fb:d7:d1:e5:72:7e:1c:
#                    c8:77:ff:5b:9a:0f:b7:ae:05:46:e5:f1:a8:16:ec:
#                    47:a4:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Alternative Name: 
#                email:info@izenpe.com, DirName:/O=IZENPE S.A. - CIF A01337260-RMerc.Vitoria-Gasteiz T1055 F62 S8/street=Avda del Mediterraneo Etorbidea 14 - 01010 Vitoria-Gasteiz
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1D:1C:65:0E:A8:F2:25:7B:B4:91:CF:E4:B1:B1:E6:BD:55:74:6C:05
#    Signature Algorithm: sha256WithRSAEncryption
#         78:a6:0c:16:4a:9f:4c:88:3a:c0:cb:0e:a5:16:7d:9f:b9:48:
#         5f:18:8f:0d:62:36:f6:cd:19:6b:ac:ab:d5:f6:91:7d:ae:71:
#         f3:3f:b3:0e:78:85:9b:95:a4:27:21:47:42:4a:7c:48:3a:f5:
#         45:7c:b3:0c:8e:51:78:ac:95:13:de:c6:fd:7d:b8:1a:90:4c:
#         ab:92:03:c7:ed:42:01:ce:0f:d8:b1:fa:a2:92:e1:60:6d:ae:
#         7a:6b:09:aa:c6:29:ee:68:49:67:30:80:24:7a:31:16:39:5b:
#         7e:f1:1c:2e:dd:6c:09:ad:f2:31:c1:82:4e:b9:bb:f9:be:bf:
#         2a:85:3f:c0:40:a3:3a:59:fc:59:4b:3c:28:24:db:b4:15:75:
#         ae:0d:88:ba:2e:73:c0:bd:58:87:e5:42:f2:eb:5e:ee:1e:30:
#         22:99:cb:37:d1:c4:21:6c:81:ec:be:6d:26:e6:1c:e4:42:20:
#         9e:47:b0:ac:83:59:70:2c:35:d6:af:36:34:b4:cd:3b:f8:32:
#         a8:ef:e3:78:89:fb:8d:45:2c:da:9c:b8:7e:40:1c:61:e7:3e:
#         a2:92:2c:4b:f2:cd:fa:98:b6:29:ff:f3:f2:7b:a9:1f:2e:a0:
#         93:57:2b:de:85:03:f9:69:37:cb:9e:78:6a:05:b4:c5:31:78:
#         89:ec:7a:a7:85:e1:b9:7b:3c:de:be:1e:79:84:ce:9f:70:0e:
#         59:c2:35:2e:90:2a:31:d9:e4:45:7a:41:a4:2e:13:9b:34:0e:
#         66:7b:49:ab:64:97:d0:46:c3:79:9d:72:50:63:a6:98:5b:06:
#         bd:48:6d:d8:39:83:70:e8:35:f0:05:d1:aa:bc:e3:db:c8:02:
#         ea:7c:fd:82:da:c2:5b:52:35:ae:98:3a:ad:ba:35:93:23:a7:
#         1f:48:dd:35:46:98:b2:10:68:e4:a5:31:c2:0a:58:2e:19:81:
#         10:c9:50:75:fc:ea:5a:16:ce:11:d7:ee:ef:50:88:2d:61:ff:
#         3f:42:73:05:94:43:d5:8e:3c:4e:01:3a:19:a5:1f:46:4e:77:
#         d0:5d:e5:81:22:21:87:fe:94:7d:84:d8:93:ad:d6:68:43:48:
#         b2:db:eb:73:24:e7:91:7f:54:a4:b6:80:3e:9d:a3:3c:4c:72:
#         c2:57:c4:a0:d4:cc:38:27:ce:d5:06:9e:a2:48:d9:e9:9f:ce:
#         82:70:36:93:9a:3b:df:96:21:e3:59:b7:0c:da:91:37:f0:fd:
#         59:5a:b3:99:c8:69:6c:43:26:01:35:63:60:55:89:03:3a:75:
#         d8:ba:4a:d9:54:ff:ee:de:80:d8:2d:d1:38:d5:5e:2d:0b:98:
#         7d:3e:6c:db:fc:26:88:c7

[p11-kit-object-v1]
label: "KISA RootCA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAvATk+hM58DSWIGtsaLv6
23f/J/es7C/n/fB/bW+MKs0lCVsk9KFo/CjsySXirO3eyDOE9bClCTqnsUdIxcxP
jHmc+QZXfd3uOPbPFLKc6tPAXXdi8EcNuRpAU1xkcK8IWsD3z3X5bI1kKB4g/rcb
GdNaZoNy4rCbvdMlFQ0yb2Q3lIVGyHK+d9VuHygvx2nt54OJM1jT3qC/QOhDUO7c
TWu8peqmyGGO9cNkrwYV3CmLP3WMvHFE2/yttRcdbYmDz8Yzvb9Fov4Kn6MRXw+5
H5wawkbMnChmn3AmPC7fqoD+jMUECSVPzZNHPDfqAmeS/vwiJFys0izgXAEzisEZ
2wIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "KISA RootCA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDczCCAlugAwIBAgIBBDANBgkqhkiG9w0BAQUFADBkMQswCQYDVQQGEwJLUjEN
MAsGA1UECgwES0lTQTEuMCwGA1UECwwlS29yZWEgQ2VydGlmaWNhdGlvbiBBdXRo
b3JpdHkgQ2VudHJhbDEWMBQGA1UEAwwNS0lTQSBSb290Q0EgMTAeFw0wNTA4MjQw
ODA1NDZaFw0yNTA4MjQwODA1NDZaMGQxCzAJBgNVBAYTAktSMQ0wCwYDVQQKDARL
SVNBMS4wLAYDVQQLDCVLb3JlYSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSBDZW50
cmFsMRYwFAYDVQQDDA1LSVNBIFJvb3RDQSAxMIIBIDANBgkqhkiG9w0BAQEFAAOC
AQ0AMIIBCAKCAQEAvATk+hM58DSWIGtsaLv623f/J/es7C/n/fB/bW+MKs0lCVsk
9KFo/CjsySXirO3eyDOE9bClCTqnsUdIxcxPjHmc+QZXfd3uOPbPFLKc6tPAXXdi
8EcNuRpAU1xkcK8IWsD3z3X5bI1kKB4g/rcbGdNaZoNy4rCbvdMlFQ0yb2Q3lIVG
yHK+d9VuHygvx2nt54OJM1jT3qC/QOhDUO7cTWu8peqmyGGO9cNkrwYV3CmLP3WM
vHFE2/yttRcdbYmDz8Yzvb9Fov4Kn6MRXw+5H5wawkbMnChmn3AmPC7fqoD+jMUE
CSVPzZNHPDfqAmeS/vwiJFys0izgXAEzisEZ2wIBA6MyMDAwHQYDVR0OBBYEFL+2
J9gDWnZlTGEBQVYx5Yt7OtnMMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQEF
BQADggEBABOvUQveimpb5poKyLGQSk6hAp3MiNKrZr097LuxQpVqslxa/6FjZJap
aBV/JV6K+KRzwYCKhQoOUugy50X4TmWAkZl0Q+VFnUkq8JSV3enhMNITbslOsXfl
BM+tWh6UCVrXPAgcrnrpFDLBRa3SJkhyrKhB2vAhhzle3/xk/2F0KpzZm4tfwjeT
2KM3LzuTa7IbB6d/CVDv0zq+IWuKkDsnSlFOa56ch534eJAx7REnxqhZvvwYC/uO
fi5C4e3nCSG9uRPFVmf0JqZCQ5BEVLRxm3bkGhKsGigA35vB1fjbXKP4krG9tNT5
UNkAAk/bg9ART6RCVmE6fhMy04Qfybo=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 4 (0x4)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=KR, O=KISA, OU=Korea Certification Authority Central, CN=KISA RootCA 1
#        Validity
#            Not Before: Aug 24 08:05:46 2005 GMT
#            Not After : Aug 24 08:05:46 2025 GMT
#        Subject: C=KR, O=KISA, OU=Korea Certification Authority Central, CN=KISA RootCA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bc:04:e4:fa:13:39:f0:34:96:20:6b:6c:68:bb:
#                    fa:db:77:ff:27:f7:ac:ec:2f:e7:fd:f0:7f:6d:6f:
#                    8c:2a:cd:25:09:5b:24:f4:a1:68:fc:28:ec:c9:25:
#                    e2:ac:ed:de:c8:33:84:f5:b0:a5:09:3a:a7:b1:47:
#                    48:c5:cc:4f:8c:79:9c:f9:06:57:7d:dd:ee:38:f6:
#                    cf:14:b2:9c:ea:d3:c0:5d:77:62:f0:47:0d:b9:1a:
#                    40:53:5c:64:70:af:08:5a:c0:f7:cf:75:f9:6c:8d:
#                    64:28:1e:20:fe:b7:1b:19:d3:5a:66:83:72:e2:b0:
#                    9b:bd:d3:25:15:0d:32:6f:64:37:94:85:46:c8:72:
#                    be:77:d5:6e:1f:28:2f:c7:69:ed:e7:83:89:33:58:
#                    d3:de:a0:bf:40:e8:43:50:ee:dc:4d:6b:bc:a5:ea:
#                    a6:c8:61:8e:f5:c3:64:af:06:15:dc:29:8b:3f:75:
#                    8c:bc:71:44:db:fc:ad:b5:17:1d:6d:89:83:cf:c6:
#                    33:bd:bf:45:a2:fe:0a:9f:a3:11:5f:0f:b9:1f:9c:
#                    1a:c2:46:cc:9c:28:66:9f:70:26:3c:2e:df:aa:80:
#                    fe:8c:c5:04:09:25:4f:cd:93:47:3c:37:ea:02:67:
#                    92:fe:fc:22:24:5c:ac:d2:2c:e0:5c:01:33:8a:c1:
#                    19:db
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BF:B6:27:D8:03:5A:76:65:4C:61:01:41:56:31:E5:8B:7B:3A:D9:CC
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         13:af:51:0b:de:8a:6a:5b:e6:9a:0a:c8:b1:90:4a:4e:a1:02:
#         9d:cc:88:d2:ab:66:bd:3d:ec:bb:b1:42:95:6a:b2:5c:5a:ff:
#         a1:63:64:96:a9:68:15:7f:25:5e:8a:f8:a4:73:c1:80:8a:85:
#         0a:0e:52:e8:32:e7:45:f8:4e:65:80:91:99:74:43:e5:45:9d:
#         49:2a:f0:94:95:dd:e9:e1:30:d2:13:6e:c9:4e:b1:77:e5:04:
#         cf:ad:5a:1e:94:09:5a:d7:3c:08:1c:ae:7a:e9:14:32:c1:45:
#         ad:d2:26:48:72:ac:a8:41:da:f0:21:87:39:5e:df:fc:64:ff:
#         61:74:2a:9c:d9:9b:8b:5f:c2:37:93:d8:a3:37:2f:3b:93:6b:
#         b2:1b:07:a7:7f:09:50:ef:d3:3a:be:21:6b:8a:90:3b:27:4a:
#         51:4e:6b:9e:9c:87:9d:f8:78:90:31:ed:11:27:c6:a8:59:be:
#         fc:18:0b:fb:8e:7e:2e:42:e1:ed:e7:09:21:bd:b9:13:c5:56:
#         67:f4:26:a6:42:43:90:44:54:b4:71:9b:76:e4:1a:12:ac:1a:
#         28:00:df:9b:c1:d5:f8:db:5c:a3:f8:92:b1:bd:b4:d4:f9:50:
#         d9:00:02:4f:db:83:d0:11:4f:a4:42:56:61:3a:7e:13:32:d3:
#         84:1f:c9:ba

[p11-kit-object-v1]
label: "LAWtrust Root CA2 (4096)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "LAWtrust Root CA2 (4096)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1427795633 (0x551a6eb1)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ZA, O=LAWtrust, CN=LAWtrust Root CA2 (4096)
#        Validity
#            Not Before: Feb 14 09:19:38 2023 GMT
#            Not After : Feb 14 09:49:38 2053 GMT
#        Subject: C=ZA, O=LAWtrust, CN=LAWtrust Root CA2 (4096)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:cc:17:cb:2b:43:ba:6c:f9:c9:93:8a:65:0d:12:
#                    4c:ec:27:14:b7:13:79:e0:d4:d5:2d:18:56:f1:f9:
#                    ea:2a:10:16:4e:6c:44:c7:6a:65:46:f3:9a:89:35:
#                    d1:87:f8:33:89:2f:88:09:1a:92:10:91:90:c1:6b:
#                    9f:0e:6e:7f:26:8a:13:5d:18:ac:68:01:0d:10:78:
#                    65:70:d8:8e:8f:84:5a:97:30:18:d0:11:0e:4a:8d:
#                    52:10:a5:81:2b:51:28:f5:63:c4:b6:ec:40:b3:01:
#                    e5:ad:77:bd:e5:38:ef:bc:8d:b3:dd:19:a0:7b:0d:
#                    8d:b4:db:6a:fb:25:33:5a:fa:91:af:c4:71:45:30:
#                    f8:88:29:7b:cb:bf:d5:ba:27:04:8e:dd:b2:00:f7:
#                    ca:5c:99:35:14:ea:fd:75:06:15:08:bb:ca:57:68:
#                    fb:3f:fb:b4:34:73:63:d1:d5:e3:c8:38:5a:69:7d:
#                    6a:7a:44:0c:0d:8a:4e:ed:92:1d:10:8f:3b:22:2c:
#                    b6:df:ed:c5:c6:f0:89:79:54:65:5e:5f:1b:bd:8f:
#                    7d:df:b9:b7:ed:eb:e4:c5:07:d1:67:3c:95:3b:91:
#                    fe:42:7a:52:40:80:04:d2:39:57:4b:f4:92:7d:ff:
#                    9b:ef:e5:9d:c9:09:b2:91:12:38:a6:29:08:3b:ae:
#                    eb:ca:cc:ed:4d:e7:4e:21:01:07:fc:6f:32:ce:69:
#                    8c:84:52:c6:77:ea:27:30:0a:de:a5:af:30:2b:68:
#                    1f:ac:d4:ec:21:ad:22:49:76:ce:0f:c2:f2:07:2a:
#                    f9:6a:12:83:9a:3b:04:ae:19:7a:fe:a1:86:24:fa:
#                    41:5e:25:7c:40:ac:27:b6:e3:29:36:6f:35:e2:57:
#                    d0:19:58:df:ff:64:f6:c3:01:49:76:db:2b:be:bc:
#                    b9:4f:14:0a:d5:1b:58:21:f6:1c:2e:00:7c:f8:94:
#                    b5:cb:37:1a:14:e4:32:b9:16:d4:60:ec:05:aa:5f:
#                    32:fa:6a:23:12:ac:d4:10:bb:d2:a2:82:b4:4b:0e:
#                    8b:70:27:aa:d6:07:c1:67:88:fa:84:c3:08:c9:8a:
#                    84:c8:d2:37:72:81:0f:8d:16:4a:e4:d7:35:51:a5:
#                    38:0f:8c:84:4b:95:36:c0:f5:d7:9d:e0:5d:8f:ab:
#                    91:ee:00:08:b9:9d:52:1f:ec:f8:99:bb:79:56:b1:
#                    49:da:d2:e5:d8:61:8b:5b:af:f0:ab:37:c5:7b:1a:
#                    8e:86:be:7e:c5:7b:15:1e:61:68:e8:0b:87:8b:73:
#                    49:a1:17:73:7e:29:78:8e:ca:e0:41:2f:75:73:74:
#                    a2:97:3a:7f:f7:2e:74:09:b8:4c:60:8b:46:36:19:
#                    10:2d:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Private Key Usage Period: 
#                Not Before: Feb 14 09:19:38 2023 GMT, Not After: Feb 14 09:49:38 2053 GMT
#            X509v3 Authority Key Identifier: 
#                keyid:D7:D6:56:62:5C:3F:17:81:E6:73:44:29:F5:51:05:EF:0B:60:37:AC
#
#            X509v3 Subject Key Identifier: 
#                D7:D6:56:62:5C:3F:17:81:E6:73:44:29:F5:51:05:EF:0B:60:37:AC
#    Signature Algorithm: sha256WithRSAEncryption
#         49:9c:29:fe:3d:ec:9e:45:7f:ab:3e:3c:fe:23:6f:37:3e:77:
#         a7:53:ff:78:9f:fc:49:44:80:57:66:9c:6e:da:79:ff:cd:45:
#         ad:4c:93:bf:b5:59:c6:e9:10:b7:e5:f8:8c:fb:87:c5:1e:8b:
#         d8:b3:3f:02:96:0a:bb:8a:8e:ef:d7:b4:c0:83:20:38:97:59:
#         45:64:fc:f6:77:13:f2:09:d7:a1:c8:38:74:08:ea:f9:48:4c:
#         fa:1f:04:9c:b4:ff:ec:6e:56:36:72:93:6c:95:3e:2c:5f:de:
#         0f:0b:ab:c9:cc:15:3e:16:8f:66:fc:b2:10:b8:a1:d1:b4:de:
#         c0:63:19:cc:ef:53:aa:75:36:22:8b:25:1f:bf:9b:c8:d7:c1:
#         5f:ec:a6:37:09:aa:7b:62:bc:f6:22:2d:f1:d6:58:dd:8c:bb:
#         52:f4:0b:a7:76:a9:7a:7b:1a:8d:dc:ad:9a:81:62:2e:86:05:
#         90:72:47:2f:a1:c9:67:84:b0:0d:6c:b0:b8:9b:16:b7:d0:99:
#         14:2f:9c:12:9b:23:a8:8d:a6:43:1e:e9:e5:2d:e5:78:a7:1f:
#         64:94:64:b6:77:b2:a8:5c:fb:09:ab:29:eb:1e:6d:75:d1:f6:
#         d0:c5:a5:c3:1d:9f:1e:f3:1a:2d:b2:c8:1f:e5:28:0a:6e:f3:
#         5f:fd:da:e6:23:a1:76:90:5c:4b:98:01:82:2c:ee:47:2d:02:
#         1a:5f:7f:34:c5:69:b5:72:ad:3e:f3:cf:9e:6d:f8:29:e8:11:
#         27:2b:e0:59:0b:1b:61:eb:4a:ca:69:a5:a4:d5:cd:51:1b:94:
#         8e:79:cd:df:f6:ae:74:5d:b1:2c:1b:86:53:fe:d1:30:06:41:
#         34:07:62:82:4c:f4:7e:c7:87:74:0e:b0:21:1e:09:20:80:c1:
#         b3:15:3d:46:6d:d3:f1:06:92:3f:ef:a0:95:8a:1c:6e:77:31:
#         b6:eb:78:29:0c:7b:ee:82:a5:4f:7e:a4:29:5e:9e:aa:2d:f8:
#         8e:c0:f3:fc:0d:06:85:9b:4e:dc:f7:e2:09:7c:d0:14:51:1e:
#         7a:b3:23:af:fa:d1:61:2a:65:b5:01:d9:b8:e3:07:ca:24:76:
#         d2:f0:4a:be:ef:86:04:80:42:15:70:11:68:7e:d7:c7:bb:fe:
#         e7:4e:9b:9c:95:a5:1c:4a:a4:c9:d0:09:8c:aa:ce:48:d2:1e:
#         92:97:d7:11:e9:ed:66:cc:37:dc:f5:d7:1b:74:9b:a6:ea:42:
#         ac:5d:32:e0:58:f4:81:47:ff:d2:12:e2:7e:1c:dc:49:76:96:
#         c3:1d:9f:4b:ca:5c:2a:37:5b:3d:8a:d1:38:9b:21:da:e3:bf:
#         45:43:d3:e0:58:77:1f:28

[p11-kit-object-v1]
label: "LuxTrust Global Root 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "LuxTrust Global Root 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0a:7e:a6:df:4b:44:9e:da:6a:24:85:9e:e6:b8:15:d3:16:7f:bb:b1
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=LU, O=LuxTrust S.A., CN=LuxTrust Global Root 2
#        Validity
#            Not Before: Mar  5 13:21:57 2015 GMT
#            Not After : Mar  5 13:21:57 2035 GMT
#        Subject: C=LU, O=LuxTrust S.A., CN=LuxTrust Global Root 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d7:85:97:bf:11:98:e9:f0:62:83:4c:3c:87:f9:
#                    53:6a:37:0b:f2:0f:3c:87:ce:6f:dc:26:29:bd:c5:
#                    89:ba:c9:83:3d:f7:ee:ca:5b:c6:6d:49:73:b4:c9:
#                    46:a3:1b:34:13:3f:c1:89:45:57:f4:d9:b1:fb:36:
#                    65:4b:fb:08:e2:48:71:11:c8:6e:3b:9e:9d:df:89:
#                    65:37:a6:85:f6:3b:44:18:b6:c6:37:30:62:44:92:
#                    97:69:7d:42:30:24:e4:0d:0c:89:6b:63:de:c5:e1:
#                    df:4e:a9:14:6c:53:e0:61:ce:f6:17:2f:1d:3c:bd:
#                    e6:22:4c:1d:93:f5:10:c4:a1:76:ec:6a:de:c5:6c:
#                    df:96:b4:56:40:42:c0:62:92:30:a1:2d:15:94:a0:
#                    d2:20:06:09:6e:6a:6d:e5:eb:b7:be:d4:f0:f1:15:
#                    7c:8b:e6:4e:ba:13:cc:4b:27:5e:99:3c:17:5d:8f:
#                    81:7f:33:3d:4f:d3:3f:1b:ec:5c:3f:f0:3c:4c:75:
#                    6e:f2:a6:d5:9d:da:2d:07:63:02:c6:72:e9:94:bc:
#                    4c:49:95:4f:88:52:c8:db:e8:69:82:f8:cc:34:5b:
#                    22:f0:86:a7:89:bd:48:0a:6d:66:81:6d:c8:c8:64:
#                    fb:01:e1:f4:e1:de:d9:9e:dd:db:5b:d4:2a:99:26:
#                    15:1b:1e:4c:92:29:82:9e:d5:92:81:92:41:70:19:
#                    f7:a4:e5:93:4b:bc:77:67:31:dd:1c:fd:31:70:0d:
#                    17:99:0c:f9:0c:39:19:2a:17:b5:30:71:55:d5:0f:
#                    ae:58:e1:3d:2f:34:9b:cf:9f:f6:78:85:c2:93:7a:
#                    72:3e:66:8f:9c:16:11:60:8f:9e:89:6f:67:be:e0:
#                    47:5a:3b:0c:9a:67:8b:cf:46:c6:ae:38:a3:f2:a7:
#                    bc:e6:d6:85:6b:33:24:70:22:4b:cb:08:9b:bb:c8:
#                    f8:02:29:1d:be:20:0c:46:bf:6b:87:9b:b3:2a:66:
#                    42:35:46:6c:aa:ba:ad:f9:98:7b:e9:50:55:14:31:
#                    bf:b1:da:2d:ed:80:ad:68:24:fb:69:ab:d8:71:13:
#                    30:e6:67:b3:87:40:fd:89:7e:f2:43:d1:11:df:2f:
#                    65:2f:64:ce:5f:14:b9:b1:bf:31:bd:87:78:5a:59:
#                    65:88:aa:fc:59:32:48:86:d6:4c:b9:29:4b:95:d3:
#                    76:f3:77:25:6d:42:1c:38:83:4d:fd:a3:5f:9b:7f:
#                    2d:ac:79:1b:0e:42:31:97:63:a4:fb:8a:69:d5:22:
#                    0d:34:90:30:2e:a8:b4:e0:6d:b6:94:ac:bc:8b:4e:
#                    d7:70:fc:c5:38:8e:64:25:e1:4d:39:90:ce:c9:87:
#                    84:58:71
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.171.1.1.1.10
#                  CPS: https://repository.luxtrust.lu
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:FF:18:28:76:F9:48:05:2C:A1:AE:F1:2B:1B:2B:B2:53:F8:4B:7C:B3
#
#            X509v3 Subject Key Identifier: 
#                FF:18:28:76:F9:48:05:2C:A1:AE:F1:2B:1B:2B:B2:53:F8:4B:7C:B3
#    Signature Algorithm: sha256WithRSAEncryption
#         6a:19:14:ed:6e:79:c1:2c:87:d4:0d:70:7e:d7:f6:78:c9:0b:
#         04:4e:c4:b1:ce:93:70:fe:b0:54:c0:32:cd:99:30:64:17:bf:
#         0f:e5:e2:33:fd:07:36:40:72:0e:1a:b6:6a:59:d6:00:e5:68:
#         20:dd:2e:72:0d:1f:6a:64:31:20:84:7d:49:a6:5a:37:eb:45:
#         c9:85:f5:d4:c7:17:99:07:e6:9b:55:e4:0c:e8:a9:b4:ce:8c:
#         5b:b5:11:5c:cf:8a:0e:0d:d6:ac:77:81:fe:32:9c:24:9e:72:
#         ce:54:f3:d0:6f:a2:56:d6:ec:c3:37:2c:65:58:be:57:00:1a:
#         f2:35:fa:eb:7b:31:5d:c2:c1:12:3d:96:81:88:96:89:c1:59:
#         5c:7a:e6:7f:70:34:e7:83:e2:b1:e1:e1:b8:58:ef:d4:95:e4:
#         60:9c:f0:96:97:72:8c:eb:84:02:2e:65:8f:a4:b7:d2:7f:67:
#         dd:c8:d3:9e:5c:aa:a9:a4:a0:25:14:06:9b:ec:4f:7e:2d:0b:
#         7f:1d:75:f1:33:d8:ed:ce:b8:75:6d:3e:5b:b9:98:1d:31:0d:
#         56:d8:43:0f:30:91:b2:04:6b:dd:56:be:95:80:55:67:be:d8:
#         cd:83:d9:18:ee:2e:0f:86:2d:92:9e:70:13:ec:de:51:c9:43:
#         78:02:a5:4d:c8:f9:5f:c4:91:58:46:16:77:5a:74:aa:40:bc:
#         07:9f:30:b9:b1:f7:12:17:dd:e3:ff:24:40:1d:7a:6a:d1:4f:
#         18:0a:aa:90:1d:eb:40:1e:df:a1:1e:44:92:10:9a:f2:8d:e1:
#         d1:4b:46:9e:e8:45:42:97:ea:45:99:f3:ec:66:d5:02:fa:f2:
#         a6:4a:24:aa:de:ce:b9:ca:f9:3f:93:6f:f9:a3:ba:ea:a5:3e:
#         99:ad:fd:ff:7b:99:f5:65:ee:f0:59:28:67:d7:90:95:a4:13:
#         84:a9:84:c1:e8:ce:ce:75:93:63:1a:bc:3c:ea:d5:64:1f:2d:
#         2a:12:39:c6:c3:5a:32:ed:47:91:16:0e:bc:38:c1:50:de:8f:
#         ca:2a:90:34:1c:ee:41:94:9c:5e:19:2e:f8:45:49:99:74:91:
#         b0:04:6f:e3:04:5a:b1:ab:2a:ab:fe:c7:d0:96:b6:da:e1:4a:
#         64:06:6e:60:4d:bd:42:4e:ff:78:da:24:ca:1b:b4:d7:96:39:
#         6c:ae:f1:0e:aa:a7:7d:48:8b:20:4c:cf:64:d6:b8:97:46:b0:
#         4e:d1:2a:56:3a:a0:93:bd:af:80:24:e0:0a:7e:e7:ca:d5:ca:
#         e8:85:55:dc:36:2a:e1:94:68:93:c7:66:72:44:0f:80:21:32:
#         6c:25:c7:23:80:83:0a:eb

[p11-kit-object-v1]
label: "MULTICERT Root Certification Authority 01"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "MULTICERT Root Certification Authority 01"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF8TCCA9mgAwIBAgIIVE2lvEA1VlowDQYJKoZIhvcNAQELBQAwgYUxCzAJBgNV
BAYTAlBUMUIwQAYDVQQKDDlNVUxUSUNFUlQgLSBTZXJ2acOnb3MgZGUgQ2VydGlm
aWNhw6fDo28gRWxlY3Ryw7NuaWNhIFMuQS4xMjAwBgNVBAMMKU1VTFRJQ0VSVCBS
b290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IDAxMB4XDTE0MDQwNDA4NTk0N1oX
DTM5MDQwNDA4NTk0N1owgYUxCzAJBgNVBAYTAlBUMUIwQAYDVQQKDDlNVUxUSUNF
UlQgLSBTZXJ2acOnb3MgZGUgQ2VydGlmaWNhw6fDo28gRWxlY3Ryw7NuaWNhIFMu
QS4xMjAwBgNVBAMMKU1VTFRJQ0VSVCBSb290IENlcnRpZmljYXRpb24gQXV0aG9y
aXR5IDAxMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAztw/9BluuxVp
hvTkzec6cDvHmos7gwCBW/sgFlq+v1gAXynmV29+iiwVB1waY4xCXxbd2omERVcX
lqCcoXUiQRo6/cUXkRP2vmIKvG4lLVvAjBBm9+LW+9xIMaMaqOVNSMmiHHP+j2ZA
Y3dZBzw9FJ/U94WR0MNC9Rths3eAgCptEgKWi1HZwW8nCxoHNAD/0llMKejXGWPY
kbQ//I4OJfKhEgdlyjXeq/4WowiMr39+EvRZFgUf6K10eTL3eAK2tMyr2x44YQQZ
ekFA2loRZHUC/WTR1pRCDyLnZc2vkA4MWzEBmVHvRYx9pTjannxL5Kbos6SC1gM0
Lk+3Uat3OAn1Bv7cZhsPP/p974xVvuANhpWh3L3EwwjRRR7yvb5w8eYmxrsIsSil
wqXtiNahwPsj8Sc5zOGEBxm8fvbMOP9uELtG6SOJJIH/AOJRANxSUH0TUH0WPUCN
07/5imXYYhIpd8K6wkk0T4p5aclLFfM03s+vhuLlyKlWYUwGVFrFbBnq88hEzSQa
dtFxAFlr2XWbzv0Q/rGDoqW3koZ2m0r3HdyMhaZYrYqmaGkXyW0bps8nSyks3XFC
GokQ5dWbEl9Ji4S82Ahc+884Qq++0W57kapmQMUFfivQZrbH31L+9EVtI5IhnhIB
kHOD4qUJDdfA+IWVHmPRPzXalNE32fUCAwEAAaNjMGEwHQYDVR0OBBYEFNU5HJxb
bwSqopVM7yDdKXSkxUVxMA8GA1UdEwEB/wQFMAMBAf8wHwYDVR0jBBgwFoAU1Tkc
nFtvBKqilUzvIN0pdKTFRXEwDgYDVR0PAQH/BAQDAgEGMA0GCSqGSIb3DQEBCwUA
A4ICAQA/51/zIhbeg54g5ILn5Z53yfsrsHQN3xt0Ig9zEKGwF+xMDNQocGpmckRp
EJN2Nc8v+I88qxl8cZKVcRs3FcIbKHrvbng43/uPmwEg3K/21o0JZtrERqn8lapE
IxLfR8CwFey1sZ5sD5GqpjrlwQ1gbFBAcFxcyM6zzOvtqogZVqWkyAx65XZAZzO0
PZbcd8sjePlTW8+N3rGnjlp6ojJjo4jXJWFaXUk6cubPqpSGbG73guCOZ5MoxagN
Te84rXlKZo2EAQgEefNSxkHnmmIGs/USHuzZAEPT65Z3dOF5+RSUhG26VIIFjN8B
8jCIgax6L4tDLHY0zjXnh45OCwqlGlexU1q/a9i+AH7G+e5mMQix35QzhJx3T3tk
L++OD1koIsvwXD4r/TXWlf8D7GVSfr7yGfh71VIsUneakWZBcI3VSecLSH+Krt5F
Pd3+5tLkksN7zjCgSW43rajTLLY9niHbBlfi8K4G+9nFETehe9sdEXxodiA+9byl
2Wa1Ia1FJsZdHgKjQcTUfYEZyxeXBg/m7HQARsR13T3wQzSvprz89oL7z8X6sw8l
pT9mENaegqXbOhN53o2p16aNhtIv2WkN4nV4fklfIquGcChRs3q2oHn61OWDp7B3
ytsBgu/ivk0v08BN0ONpbnwmm+um+0XvsQSKL6ohBvbm1LxBIw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:4d:a5:bc:40:35:56:5a
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=PT, O=MULTICERT - Servi\xC3\xA7os de Certifica\xC3\xA7\xC3\xA3o Electr\xC3\xB3nica S.A., CN=MULTICERT Root Certification Authority 01
#        Validity
#            Not Before: Apr  4 08:59:47 2014 GMT
#            Not After : Apr  4 08:59:47 2039 GMT
#        Subject: C=PT, O=MULTICERT - Servi\xC3\xA7os de Certifica\xC3\xA7\xC3\xA3o Electr\xC3\xB3nica S.A., CN=MULTICERT Root Certification Authority 01
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ce:dc:3f:f4:19:6e:bb:15:69:86:f4:e4:cd:e7:
#                    3a:70:3b:c7:9a:8b:3b:83:00:81:5b:fb:20:16:5a:
#                    be:bf:58:00:5f:29:e6:57:6f:7e:8a:2c:15:07:5c:
#                    1a:63:8c:42:5f:16:dd:da:89:84:45:57:17:96:a0:
#                    9c:a1:75:22:41:1a:3a:fd:c5:17:91:13:f6:be:62:
#                    0a:bc:6e:25:2d:5b:c0:8c:10:66:f7:e2:d6:fb:dc:
#                    48:31:a3:1a:a8:e5:4d:48:c9:a2:1c:73:fe:8f:66:
#                    40:63:77:59:07:3c:3d:14:9f:d4:f7:85:91:d0:c3:
#                    42:f5:1b:61:b3:77:80:80:2a:6d:12:02:96:8b:51:
#                    d9:c1:6f:27:0b:1a:07:34:00:ff:d2:59:4c:29:e8:
#                    d7:19:63:d8:91:b4:3f:fc:8e:0e:25:f2:a1:12:07:
#                    65:ca:35:de:ab:fe:16:a3:08:8c:af:7f:7e:12:f4:
#                    59:16:05:1f:e8:ad:74:79:32:f7:78:02:b6:b4:cc:
#                    ab:db:1e:38:61:04:19:7a:41:40:da:5a:11:64:75:
#                    02:fd:64:d1:d6:94:42:0f:22:e7:65:cd:af:90:0e:
#                    0c:5b:31:01:99:51:ef:45:8c:7d:a5:38:da:9e:7c:
#                    4b:e4:a6:e8:b3:a4:82:d6:03:34:2e:4f:b7:51:ab:
#                    77:38:09:f5:06:fe:dc:66:1b:0f:3f:fa:7d:ef:8c:
#                    55:be:e0:0d:86:95:a1:dc:bd:c4:c3:08:d1:45:1e:
#                    f2:bd:be:70:f1:e6:26:c6:bb:08:b1:28:a5:c2:a5:
#                    ed:88:d6:a1:c0:fb:23:f1:27:39:cc:e1:84:07:19:
#                    bc:7e:f6:cc:38:ff:6e:10:bb:46:e9:23:89:24:81:
#                    ff:00:e2:51:00:dc:52:50:7d:13:50:7d:16:3d:40:
#                    8d:d3:bf:f9:8a:65:d8:62:12:29:77:c2:ba:c2:49:
#                    34:4f:8a:79:69:c9:4b:15:f3:34:de:cf:af:86:e2:
#                    e5:c8:a9:56:61:4c:06:54:5a:c5:6c:19:ea:f3:c8:
#                    44:cd:24:1a:76:d1:71:00:59:6b:d9:75:9b:ce:fd:
#                    10:fe:b1:83:a2:a5:b7:92:86:76:9b:4a:f7:1d:dc:
#                    8c:85:a6:58:ad:8a:a6:68:69:17:c9:6d:1b:a6:cf:
#                    27:4b:29:2c:dd:71:42:1a:89:10:e5:d5:9b:12:5f:
#                    49:8b:84:bc:d8:08:5c:fb:cf:38:42:af:be:d1:6e:
#                    7b:91:aa:66:40:c5:05:7e:2b:d0:66:b6:c7:df:52:
#                    fe:f4:45:6d:23:92:21:9e:12:01:90:73:83:e2:a5:
#                    09:0d:d7:c0:f8:85:95:1e:63:d1:3f:35:da:94:d1:
#                    37:d9:f5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D5:39:1C:9C:5B:6F:04:AA:A2:95:4C:EF:20:DD:29:74:A4:C5:45:71
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:D5:39:1C:9C:5B:6F:04:AA:A2:95:4C:EF:20:DD:29:74:A4:C5:45:71
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         3f:e7:5f:f3:22:16:de:83:9e:20:e4:82:e7:e5:9e:77:c9:fb:
#         2b:b0:74:0d:df:1b:74:22:0f:73:10:a1:b0:17:ec:4c:0c:d4:
#         28:70:6a:66:72:44:69:10:93:76:35:cf:2f:f8:8f:3c:ab:19:
#         7c:71:92:95:71:1b:37:15:c2:1b:28:7a:ef:6e:78:38:df:fb:
#         8f:9b:01:20:dc:af:f6:d6:8d:09:66:da:c4:46:a9:fc:95:aa:
#         44:23:12:df:47:c0:b0:15:ec:b5:b1:9e:6c:0f:91:aa:a6:3a:
#         e5:c1:0d:60:6c:50:40:70:5c:5c:c8:ce:b3:cc:eb:ed:aa:88:
#         19:56:a5:a4:c8:0c:7a:e5:76:40:67:33:b4:3d:96:dc:77:cb:
#         23:78:f9:53:5b:cf:8d:de:b1:a7:8e:5a:7a:a2:32:63:a3:88:
#         d7:25:61:5a:5d:49:3a:72:e6:cf:aa:94:86:6c:6e:f7:82:e0:
#         8e:67:93:28:c5:a8:0d:4d:ef:38:ad:79:4a:66:8d:84:01:08:
#         04:79:f3:52:c6:41:e7:9a:62:06:b3:f5:12:1e:ec:d9:00:43:
#         d3:eb:96:77:74:e1:79:f9:14:94:84:6d:ba:54:82:05:8c:df:
#         01:f2:30:88:81:ac:7a:2f:8b:43:2c:76:34:ce:35:e7:87:8e:
#         4e:0b:0a:a5:1a:57:b1:53:5a:bf:6b:d8:be:00:7e:c6:f9:ee:
#         66:31:08:b1:df:94:33:84:9c:77:4f:7b:64:2f:ef:8e:0f:59:
#         28:22:cb:f0:5c:3e:2b:fd:35:d6:95:ff:03:ec:65:52:7e:be:
#         f2:19:f8:7b:d5:52:2c:52:77:9a:91:66:41:70:8d:d5:49:e7:
#         0b:48:7f:8a:ae:de:45:3d:dd:fe:e6:d2:e4:92:c3:7b:ce:30:
#         a0:49:6e:37:ad:a8:d3:2c:b6:3d:9e:21:db:06:57:e2:f0:ae:
#         06:fb:d9:c5:11:37:a1:7b:db:1d:11:7c:68:76:20:3e:f5:bc:
#         a5:d9:66:b5:21:ad:45:26:c6:5d:1e:02:a3:41:c4:d4:7d:81:
#         19:cb:17:97:06:0f:e6:ec:74:00:46:c4:75:dd:3d:f0:43:34:
#         af:a6:bc:fc:f6:82:fb:cf:c5:fa:b3:0f:25:a5:3f:66:10:d6:
#         9e:82:a5:db:3a:13:79:de:8d:a9:d7:a6:8d:86:d2:2f:d9:69:
#         0d:e2:75:78:7e:49:5f:22:ab:86:70:28:51:b3:7a:b6:a0:79:
#         fa:d4:e5:83:a7:b0:77:ca:db:01:82:ef:e2:be:4d:2f:d3:c0:
#         4d:d0:e3:69:6e:7c:26:9b:eb:a6:fb:45:ef:b1:04:8a:2f:aa:
#         21:06:f6:e6:d4:bc:41:23

[p11-kit-object-v1]
label: "Microsec e-Szigno Root CA 2009"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6fiP82Ot2obYp+BC+8+R
3qYm+JmlY3Ctm67KM0B9bZZuoQ5E7uETnZRCUpq9dYV0LKgOHZO2GLeMLKjP+1xx
udrs/uh+j+QvHbKodYfYt6HlO8+ZSkbQgxl9wKESHJVtSvTYx6VNMy6FOUB1fhR8
gBKYUMdBZ7iggGFUpmxOH+CdDgfpyboz5/7AVSgsAoCnGfWe3FVTA5d7B0j/mfs3
iiTEWcxQEGOOqqkasIQahvlfu7FQbqTRCszVcX4fpxt89VNuIl/LK+bUfF2u1sLG
TOUFAdntV/zBI3n8+sgkg5XztWpRAdB31ukSofkag/uCG7mwl/R2BjNDSaD/C7X6
tQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsec e-Szigno Root CA 2009"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            c2:7e:43:04:4e:47:3f:19
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=HU, L=Budapest, O=Microsec Ltd., CN=Microsec e-Szigno Root CA 2009/emailAddress=info@e-szigno.hu
#        Validity
#            Not Before: Jun 16 11:30:18 2009 GMT
#            Not After : Dec 30 11:30:18 2029 GMT
#        Subject: C=HU, L=Budapest, O=Microsec Ltd., CN=Microsec e-Szigno Root CA 2009/emailAddress=info@e-szigno.hu
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:e9:f8:8f:f3:63:ad:da:86:d8:a7:e0:42:fb:cf:
#                    91:de:a6:26:f8:99:a5:63:70:ad:9b:ae:ca:33:40:
#                    7d:6d:96:6e:a1:0e:44:ee:e1:13:9d:94:42:52:9a:
#                    bd:75:85:74:2c:a8:0e:1d:93:b6:18:b7:8c:2c:a8:
#                    cf:fb:5c:71:b9:da:ec:fe:e8:7e:8f:e4:2f:1d:b2:
#                    a8:75:87:d8:b7:a1:e5:3b:cf:99:4a:46:d0:83:19:
#                    7d:c0:a1:12:1c:95:6d:4a:f4:d8:c7:a5:4d:33:2e:
#                    85:39:40:75:7e:14:7c:80:12:98:50:c7:41:67:b8:
#                    a0:80:61:54:a6:6c:4e:1f:e0:9d:0e:07:e9:c9:ba:
#                    33:e7:fe:c0:55:28:2c:02:80:a7:19:f5:9e:dc:55:
#                    53:03:97:7b:07:48:ff:99:fb:37:8a:24:c4:59:cc:
#                    50:10:63:8e:aa:a9:1a:b0:84:1a:86:f9:5f:bb:b1:
#                    50:6e:a4:d1:0a:cc:d5:71:7e:1f:a7:1b:7c:f5:53:
#                    6e:22:5f:cb:2b:e6:d4:7c:5d:ae:d6:c2:c6:4c:e5:
#                    05:01:d9:ed:57:fc:c1:23:79:fc:fa:c8:24:83:95:
#                    f3:b5:6a:51:01:d0:77:d6:e9:12:a1:f9:1a:83:fb:
#                    82:1b:b9:b0:97:f4:76:06:33:43:49:a0:ff:0b:b5:
#                    fa:b5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CB:0F:C6:DF:42:43:CC:3D:CB:B5:48:23:A1:1A:7A:A6:2A:BB:34:68
#            X509v3 Authority Key Identifier: 
#                keyid:CB:0F:C6:DF:42:43:CC:3D:CB:B5:48:23:A1:1A:7A:A6:2A:BB:34:68
#
#            X509v3 Subject Alternative Name: 
#                email:info@e-szigno.hu
#    Signature Algorithm: sha256WithRSAEncryption
#         c9:d1:0e:5e:2e:d5:cc:b3:7c:3e:cb:fc:3d:ff:0d:28:95:93:
#         04:c8:bf:da:cd:79:b8:43:90:f0:a4:be:ef:f2:ef:21:98:bc:
#         d4:d4:5d:06:f6:ee:42:ec:30:6c:a0:aa:a9:ca:f1:af:8a:fa:
#         3f:0b:73:6a:3e:ea:2e:40:7e:1f:ae:54:61:79:eb:2e:08:37:
#         d7:23:f3:8c:9f:be:1d:b1:e1:a4:75:db:a0:e2:54:14:b1:ba:
#         1c:29:a4:18:f6:12:ba:a2:14:14:e3:31:35:c8:40:ff:b7:e0:
#         05:76:57:c1:1c:59:f2:f8:bf:e4:ed:25:62:5c:84:f0:7e:7e:
#         1f:b3:be:f9:b7:21:11:cc:03:01:56:70:a7:10:92:1e:1b:34:
#         81:1e:ad:9c:1a:c3:04:3c:ed:02:61:d6:1e:06:f3:5f:3a:87:
#         f2:2b:f1:45:87:e5:3d:ac:d1:c7:57:84:bd:6b:ae:dc:d8:f9:
#         b6:1b:62:70:0b:3d:36:c9:42:f2:32:d7:7a:61:e6:d2:db:3d:
#         cf:c8:a9:c9:9b:dc:db:58:44:d7:6f:38:af:7f:78:d3:a3:ad:
#         1a:75:ba:1c:c1:36:7c:8f:1e:6d:1c:c3:75:46:ae:35:05:a6:
#         f6:5c:3d:21:ee:56:f0:c9:82:22:2d:7a:54:ab:70:c3:7d:22:
#         65:82:70:96

[p11-kit-object-v1]
label: "Microsoft ECC Product Root Certificate Authority 2018"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAExxEWKnYdVo6+uWJl1MPOtPDDMOyPbddu
ObzISauruONDeNWBBl3vx32fztazkHXeDLCQ3iO6yNE+Z+AZqRuGMR5fNC3uF/0V
+34nijKh6smPyX4Yyy87LEh6fab0AQes
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft ECC Product Root Certificate Authority 2018"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            14:98:26:66:dc:7c:cd:8f:40:53:67:7b:b9:99:ec:85
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft ECC Product Root Certificate Authority 2018
#        Validity
#            Not Before: Feb 27 20:42:08 2018 GMT
#            Not After : Feb 27 20:50:46 2043 GMT
#        Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft ECC Product Root Certificate Authority 2018
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:c7:11:16:2a:76:1d:56:8e:be:b9:62:65:d4:c3:
#                    ce:b4:f0:c3:30:ec:8f:6d:d7:6e:39:bc:c8:49:ab:
#                    ab:b8:e3:43:78:d5:81:06:5d:ef:c7:7d:9f:ce:d6:
#                    b3:90:75:de:0c:b0:90:de:23:ba:c8:d1:3e:67:e0:
#                    19:a9:1b:86:31:1e:5f:34:2d:ee:17:fd:15:fb:7e:
#                    27:8a:32:a1:ea:c9:8f:c9:7e:18:cb:2f:3b:2c:48:
#                    7a:7d:a6:f4:01:07:ac
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                43:EF:70:87:B8:9D:BF:EC:88:19:DC:C6:C4:6B:75:0D:75:34:33:08
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                Policy: 1.3.6.1.4.1.311.76.509.1.1
#                  CPS: http://www.microsoft.com/pkiops/Docs/Repository.htm
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:a1:c0:49:44:5d:32:55:27:cc:3e:90:6e:25:
#         22:9d:24:5b:9b:51:35:c7:91:49:49:2a:a3:f9:6f:4f:1c:cd:
#         dd:9c:e1:b5:57:c9:9e:c2:22:45:9b:06:15:70:1c:45:bf:02:
#         31:00:c5:d3:28:eb:72:c7:3e:b0:ac:27:09:7f:62:3d:60:79:
#         e5:92:f1:45:2a:b9:a5:02:e4:60:bb:fe:7a:2b:9c:60:a7:b5:
#         99:14:f2:b0:be:f0:bb:05:96:56:56:8f:c1:68

[p11-kit-object-v1]
label: "Microsoft ECC Root Certificate Authority 2017"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE1Lw9AkJ1QRMjzYAEhgJRL2qogWILZcz2
yp0eb0pmUaID2Z2R+rYWsYxu3nzN23mmL867znEv5aWrKOxjBGaZ+PrykxAF4YEo
QuPGaPTmG4RgSomv7XkPO87x9kT1AXjA
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft ECC Root Certificate Authority 2017"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            66:f2:3d:af:87:de:8b:b1:4a:ea:0c:57:31:01:c2:ec
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Microsoft Corporation, CN=Microsoft ECC Root Certificate Authority 2017
#        Validity
#            Not Before: Dec 18 23:06:45 2019 GMT
#            Not After : Jul 18 23:16:04 2042 GMT
#        Subject: C=US, O=Microsoft Corporation, CN=Microsoft ECC Root Certificate Authority 2017
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:d4:bc:3d:02:42:75:41:13:23:cd:80:04:86:02:
#                    51:2f:6a:a8:81:62:0b:65:cc:f6:ca:9d:1e:6f:4a:
#                    66:51:a2:03:d9:9d:91:fa:b6:16:b1:8c:6e:de:7c:
#                    cd:db:79:a6:2f:ce:bb:ce:71:2f:e5:a5:ab:28:ec:
#                    63:04:66:99:f8:fa:f2:93:10:05:e1:81:28:42:e3:
#                    c6:68:f4:e6:1b:84:60:4a:89:af:ed:79:0f:3b:ce:
#                    f1:f6:44:f5:01:78:c0
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C8:CB:99:72:70:52:0C:F8:E6:BE:B2:04:57:29:2A:CF:42:10:ED:35
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:58:f2:4d:ea:0c:f9:5f:5e:ee:60:29:cb:3a:f2:
#         db:d6:32:84:19:3f:7c:d5:2f:c2:b1:cc:93:ae:50:bb:09:32:
#         c6:c6:ed:7e:c9:36:94:12:e4:68:85:06:a2:1b:d0:2f:02:31:
#         00:99:e9:16:b4:0e:fa:56:48:d4:a4:30:16:91:78:db:54:8c:
#         65:01:8a:e7:50:66:c2:31:b7:39:ba:b8:1a:22:07:4e:fc:6b:
#         54:16:20:ff:2b:b5:e7:4c:0c:4d:a6:4f:73

[p11-kit-object-v1]
label: "Microsoft ECC TS Root Certificate Authority 2018"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE3s27cCDxJSC0lOjXtDsPbofdq6zPTUAv
gTNrWQkY1ocNJiOctI2VnXafpbkGQuatNrLEs656PAjVy506XkUhbAvjIPWbwt1E
M+NCueryKEKSqv4MB8qKE5k7YgDt2vM1
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft ECC TS Root Certificate Authority 2018"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDFzCCAp6gAwIBAgIQFTh14WR+0bBHtO+vQRKCRTAKBggqhkjOPQQDAzCBjzEL
MAkGA1UEBhMCVVMxEzARBgNVBAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1JlZG1v
bmQxHjAcBgNVBAoTFU1pY3Jvc29mdCBDb3Jwb3JhdGlvbjE5MDcGA1UEAxMwTWlj
cm9zb2Z0IEVDQyBUUyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0eSAyMDE4MB4X
DTE4MDIyNzIwNTEzNFoXDTQzMDIyNzIxMDAxMlowgY8xCzAJBgNVBAYTAlVTMRMw
EQYDVQQIEwpXYXNoaW5ndG9uMRAwDgYDVQQHEwdSZWRtb25kMR4wHAYDVQQKExVN
aWNyb3NvZnQgQ29ycG9yYXRpb24xOTA3BgNVBAMTME1pY3Jvc29mdCBFQ0MgVFMg
Um9vdCBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkgMjAxODB2MBAGByqGSM49AgEGBSuB
BAAiA2IABN7Nu3Ag8SUgtJTo17Q7D26H3ausz01AL4Eza1kJGNaHDSYjnLSNlZ12
n6W5BkLmrTayxLOuejwI1cudOl5FIWwL4yD1m8LdRDPjQrnq8ihCkqr+DAfKihOZ
O2IA7drzNaOBvDCBuTAOBgNVHQ8BAf8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAd
BgNVHQ4EFgQU6EfIQpqwna5vCyg7mBWP47HogLIwEAYJKwYBBAGCNxUBBAMCAQAw
ZQYDVR0gBF4wXDAGBgRVHSAAMFIGDCsGAQQBgjdMg30BATBCMEAGCCsGAQUFBwIB
FjRodHRwOi8vd3d3Lm1pY3Jvc29mdC5jb20vcGtpb3BzL0RvY3MvUmVwb3NpdG9y
eS5odG0AMAoGCCqGSM49BAMDA2cAMGQCMBSGUMAmGuvqoRR3OlvfYzmlM8dQQNVr
NWsPtN99VrnhpZ14GYKhQ24a11ijVQNC2wIwGJS0HjqNZPoMJxuHE0rStzoAlMby
5WO/r+P63JPV50aaa4FpPgLfUQ2PKHFBiZEv
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:38:75:e1:64:7e:d1:b0:47:b4:ef:af:41:12:82:45
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft ECC TS Root Certificate Authority 2018
#        Validity
#            Not Before: Feb 27 20:51:34 2018 GMT
#            Not After : Feb 27 21:00:12 2043 GMT
#        Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft ECC TS Root Certificate Authority 2018
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:de:cd:bb:70:20:f1:25:20:b4:94:e8:d7:b4:3b:
#                    0f:6e:87:dd:ab:ac:cf:4d:40:2f:81:33:6b:59:09:
#                    18:d6:87:0d:26:23:9c:b4:8d:95:9d:76:9f:a5:b9:
#                    06:42:e6:ad:36:b2:c4:b3:ae:7a:3c:08:d5:cb:9d:
#                    3a:5e:45:21:6c:0b:e3:20:f5:9b:c2:dd:44:33:e3:
#                    42:b9:ea:f2:28:42:92:aa:fe:0c:07:ca:8a:13:99:
#                    3b:62:00:ed:da:f3:35
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                E8:47:C8:42:9A:B0:9D:AE:6F:0B:28:3B:98:15:8F:E3:B1:E8:80:B2
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#                Policy: 1.3.6.1.4.1.311.76.509.1.1
#                  CPS: http://www.microsoft.com/pkiops/Docs/Repository.htm
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:14:86:50:c0:26:1a:eb:ea:a1:14:77:3a:5b:df:
#         63:39:a5:33:c7:50:40:d5:6b:35:6b:0f:b4:df:7d:56:b9:e1:
#         a5:9d:78:19:82:a1:43:6e:1a:d7:58:a3:55:03:42:db:02:30:
#         18:94:b4:1e:3a:8d:64:fa:0c:27:1b:87:13:4a:d2:b7:3a:00:
#         94:c6:f2:e5:63:bf:af:e3:fa:dc:93:d5:e7:46:9a:6b:81:69:
#         3e:02:df:51:0d:8f:28:71:41:89:91:2f

[p11-kit-object-v1]
label: "Microsoft Identity Verification Root Certificate Authority 2020"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Identity Verification Root Certificate Authority 2020"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:98:d2:d1:d4:5b:19:95:48:13:79:c8:11:c0:87:99
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=Microsoft Corporation, CN=Microsoft Identity Verification Root Certificate Authority 2020
#        Validity
#            Not Before: Apr 16 18:36:16 2020 GMT
#            Not After : Apr 16 18:44:40 2045 GMT
#        Subject: C=US, O=Microsoft Corporation, CN=Microsoft Identity Verification Root Certificate Authority 2020
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:91:2a:07:83:06:67:fd:9e:9d:e0:c7:c0:b7:
#                    a4:e6:42:04:7f:0f:a6:db:5f:fb:d5:5a:d7:45:a0:
#                    fb:77:0b:f0:80:f3:a6:6d:5a:4d:79:53:d8:a0:86:
#                    84:57:45:20:c7:a2:54:fb:c7:a2:bf:8a:c7:6e:35:
#                    f3:a2:15:c4:2f:4e:e3:4a:85:96:49:0d:ff:be:99:
#                    d8:14:f6:bc:27:07:ee:42:9b:2b:f5:0b:92:06:e4:
#                    fd:69:13:65:a8:91:72:f2:98:84:eb:83:3d:0e:e4:
#                    d7:71:12:48:21:cb:0d:ed:f6:47:49:b7:9b:f9:c9:
#                    c7:17:b6:84:4f:ff:b8:ac:9a:d7:73:67:49:85:e3:
#                    86:bd:37:40:d0:25:86:d4:de:b5:c2:6d:62:6a:d5:
#                    a9:78:bc:2d:6f:49:f9:e5:6c:14:14:fd:14:c7:d3:
#                    65:16:37:de:cb:6e:bc:5e:29:8d:fd:62:9b:15:2c:
#                    d6:05:e6:b9:89:32:33:a3:62:c7:d7:d6:52:67:08:
#                    c4:2e:f4:56:2b:9e:0b:87:cc:ec:a7:b4:a6:aa:eb:
#                    05:cd:19:57:a5:3a:0b:04:27:1c:91:67:9e:2d:62:
#                    2d:2f:1e:be:da:c0:20:cb:04:19:ca:33:fb:89:be:
#                    98:e2:72:a0:72:35:be:79:e1:9c:83:6f:e4:6d:17:
#                    6f:90:f3:3d:00:86:75:38:8e:d0:e0:49:9a:bb:db:
#                    d3:f8:30:ca:d5:57:88:68:4d:72:d3:bf:6d:7f:71:
#                    d8:fd:bd:0d:ae:92:64:48:b7:5b:6f:79:26:b5:cd:
#                    9b:95:21:84:d1:ef:0f:32:3d:7b:57:8c:f3:45:07:
#                    4c:7c:e0:5e:18:0e:35:76:8b:6d:9e:cb:36:74:ab:
#                    05:f8:e0:73:5d:32:56:94:67:97:25:0a:c6:35:3d:
#                    94:97:e7:c1:44:8b:80:fd:c1:f8:f4:74:19:e5:30:
#                    f6:06:fb:21:57:3e:06:1c:8b:6b:15:86:27:49:7b:
#                    82:93:ca:59:e8:75:47:e8:3f:38:f4:c7:53:79:a0:
#                    b6:b4:e2:5c:51:ef:bd:5f:38:c1:13:e6:78:0c:95:
#                    5a:2e:c5:40:59:28:cc:0f:24:c0:ec:ba:09:77:23:
#                    99:38:a6:b6:1c:da:c7:ba:20:b6:d7:37:d8:7f:37:
#                    af:08:e3:3b:71:db:6e:73:1b:7d:99:72:b0:e4:86:
#                    33:59:74:b5:16:00:7b:50:6d:c6:86:13:da:fd:c4:
#                    39:82:3d:24:00:9a:60:da:ba:94:c0:05:51:2c:34:
#                    ac:50:99:13:87:bb:b3:05:80:b2:4d:30:02:5c:b8:
#                    26:83:5d:b4:63:73:ef:ae:23:95:4f:60:28:be:37:
#                    d5:5b:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C8:7E:D2:6A:85:2A:1B:CA:19:98:04:07:27:CF:50:10:4F:68:A8:A2
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha384WithRSAEncryption
#         af:6a:dd:e6:19:e7:2d:94:43:19:4e:cb:e9:50:95:64:a5:03:
#         91:02:8b:e2:36:80:3b:15:a2:52:c2:16:19:b6:6a:5a:5d:74:
#         43:30:f4:9b:ff:60:74:09:b1:21:1e:90:16:6d:c5:24:8f:5c:
#         66:88:63:f4:4f:cc:7d:f2:12:4c:40:10:8b:01:9f:da:a9:c8:
#         ae:f2:95:1b:cf:9d:05:eb:49:3e:74:a0:68:5b:e5:56:2c:65:
#         1c:82:7e:53:da:56:d9:46:17:79:92:45:c4:10:36:08:52:29:
#         17:cb:2f:a6:f2:7e:d4:69:24:8a:1e:8f:b0:73:0d:cc:1c:4a:
#         ab:b2:aa:ed:a7:91:63:01:64:22:a8:32:b8:7e:32:28:b3:67:
#         73:2d:91:b4:dc:31:01:0b:f7:47:0a:a6:f1:d7:4a:ed:56:60:
#         c4:2c:08:a3:7b:40:b0:bc:74:27:52:87:d6:be:88:dd:37:8a:
#         89:6e:67:88:1d:f5:c9:5d:a0:fe:b6:ab:3a:80:d7:1a:97:3c:
#         17:36:22:41:1e:ac:4d:d5:83:e6:3c:38:bd:4f:30:e9:54:a9:
#         d3:b6:04:c3:32:76:61:bb:b0:18:c5:2b:18:b3:c0:80:d5:b7:
#         95:b0:5e:51:4d:22:fc:ec:58:aa:e8:d8:94:b4:a5:2e:ed:92:
#         de:e7:18:7c:21:57:dd:55:63:f7:bf:6d:cd:1f:d2:a6:77:28:
#         70:c7:e2:5b:3a:5b:08:d2:5b:4e:c8:00:96:b3:e1:83:36:af:
#         86:0a:65:5c:74:f6:ea:ec:7a:6a:74:a0:f0:4b:ee:ef:94:a3:
#         ac:50:f2:87:ed:d7:3a:30:83:c9:fb:7d:57:be:e5:e3:f8:41:
#         ca:e5:64:ae:b3:a3:ec:58:ec:85:9a:cc:ef:b9:ea:f3:56:18:
#         b9:5c:73:9a:af:c5:77:17:83:59:db:37:1a:18:72:54:a5:41:
#         d2:b6:23:75:a3:43:9a:e5:77:7c:96:79:b7:41:8d:bf:ec:dc:
#         80:a0:9f:d1:77:75:58:5f:35:13:e0:25:1a:67:0b:7d:ce:25:
#         fa:07:0a:e4:61:21:d8:d4:1c:e5:07:c6:36:99:f4:96:d0:c6:
#         15:fe:4e:cd:d7:ae:8b:9d:db:16:fd:04:c6:92:bd:d4:88:e6:
#         a9:a3:aa:bb:f7:64:38:3b:5f:cc:0c:d0:35:be:74:19:03:a6:
#         c5:aa:4c:a2:61:36:82:3e:1d:f3:2b:bc:97:5d:db:4b:78:3b:
#         2d:f5:3b:ef:60:23:e8:f5:ec:0b:23:36:95:af:98:66:bf:53:
#         d3:7b:b8:69:4a:2a:96:66:69:c4:94:c6:f4:5f:6e:ac:98:78:
#         88:80:06:5c:a2:b2:ed:a2

[p11-kit-object-v1]
label: "Microsoft RSA Root Certificate Authority 2017"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft RSA Root Certificate Authority 2017"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1e:d3:97:09:5f:d8:b4:b3:47:70:1e:aa:be:7f:45:b3
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=Microsoft Corporation, CN=Microsoft RSA Root Certificate Authority 2017
#        Validity
#            Not Before: Dec 18 22:51:22 2019 GMT
#            Not After : Jul 18 23:00:23 2042 GMT
#        Subject: C=US, O=Microsoft Corporation, CN=Microsoft RSA Root Certificate Authority 2017
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:5b:be:94:33:8c:29:95:91:16:0a:95:bd:47:
#                    62:c1:89:f3:99:36:df:46:90:c9:a5:ed:78:6a:6f:
#                    47:91:68:f8:27:67:50:33:1d:a1:a6:fb:e0:e5:43:
#                    a3:84:02:57:01:5d:9c:48:40:82:53:10:bc:bf:c7:
#                    3b:68:90:b6:82:2d:e5:f4:65:d0:cc:6d:19:cc:95:
#                    f9:7b:ac:4a:94:ad:0e:de:4b:43:1d:87:07:92:13:
#                    90:80:83:64:35:39:04:fc:e5:e9:6c:b3:b6:1f:50:
#                    94:38:65:50:5c:17:46:b9:b6:85:b5:1c:b5:17:e8:
#                    d6:45:9d:d8:b2:26:b0:ca:c4:70:4a:ae:60:a4:dd:
#                    b3:d9:ec:fc:3b:d5:57:72:bc:3f:c8:c9:b2:de:4b:
#                    6b:f8:23:6c:03:c0:05:bd:95:c7:cd:73:3b:66:80:
#                    64:e3:1a:ac:2e:f9:47:05:f2:06:b6:9b:73:f5:78:
#                    33:5b:c7:a1:fb:27:2a:a1:b4:9a:91:8c:91:d3:3a:
#                    82:3e:76:40:b4:cd:52:61:51:70:28:3f:c5:c5:5a:
#                    f2:c9:8c:49:bb:14:5b:4d:c8:ff:67:4d:4c:12:96:
#                    ad:f5:fe:78:a8:97:87:d7:fd:5e:20:80:dc:a1:4b:
#                    22:fb:d4:89:ad:ba:ce:47:97:47:55:7b:8f:45:c8:
#                    67:28:84:95:1c:68:30:ef:ef:49:e0:35:7b:64:e7:
#                    98:b0:94:da:4d:85:3b:3e:55:c4:28:af:57:f3:9e:
#                    13:db:46:27:9f:1e:a2:5e:44:83:a4:a5:ca:d5:13:
#                    b3:4b:3f:c4:e3:c2:e6:86:61:a4:52:30:b9:7a:20:
#                    4f:6f:0f:38:53:cb:33:0c:13:2b:8f:d6:9a:bd:2a:
#                    c8:2d:b1:1c:7d:4b:51:ca:47:d1:48:27:72:5d:87:
#                    eb:d5:45:e6:48:65:9d:af:52:90:ba:5b:a2:18:65:
#                    57:12:9f:68:b9:d4:15:6b:94:c4:69:22:98:f4:33:
#                    e0:ed:f9:51:8e:41:50:c9:34:4f:76:90:ac:fc:38:
#                    c1:d8:e1:7b:b9:e3:e3:94:e1:46:69:cb:0e:0a:50:
#                    6b:13:ba:ac:0f:37:5a:b7:12:b5:90:81:1e:56:ae:
#                    57:22:86:d9:c9:d2:d1:d7:51:e3:ab:3b:c6:55:fd:
#                    1e:0e:d3:74:0a:d1:da:aa:ea:69:b8:97:28:8f:48:
#                    c4:07:f8:52:43:3a:f4:ca:55:35:2c:b0:a6:6a:c0:
#                    9c:f9:f2:81:e1:12:6a:c0:45:d9:67:b3:ce:ff:23:
#                    a2:89:0a:54:d4:14:b9:2a:a8:d7:ec:f9:ab:cd:25:
#                    58:32:79:8f:90:5b:98:39:c4:08:06:c1:ac:7f:0e:
#                    3d:00:a5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                09:CB:59:7F:86:B2:70:8F:1A:C3:39:E3:C0:D9:E9:BF:BB:4D:B2:23
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha384WithRSAEncryption
#         ac:af:3e:5d:c2:11:96:89:8e:a3:e7:92:d6:97:15:b8:13:a2:
#         a6:42:2e:02:cd:16:05:59:27:ca:20:e8:ba:b8:e8:1a:ec:4d:
#         a8:97:56:ae:65:43:b1:8f:00:9b:52:cd:55:cd:53:39:6d:62:
#         4c:8b:0d:5b:7c:2e:44:bf:83:10:8f:f3:53:82:80:c3:4f:3a:
#         c7:6e:11:3f:e6:e3:16:91:84:fb:6d:84:7f:34:74:ad:89:a7:
#         ce:b9:d7:d7:9f:84:64:92:be:95:a1:ad:09:53:33:dd:ee:0a:
#         ea:4a:51:8e:6f:55:ab:ba:b5:94:46:ae:8c:7f:d8:a2:50:25:
#         65:60:80:46:db:33:04:ae:6c:b5:98:74:54:25:dc:93:e4:f8:
#         e3:55:15:3d:b8:6d:c3:0a:a4:12:c1:69:85:6e:df:64:f1:53:
#         99:e1:4a:75:20:9d:95:0f:e4:d6:dc:03:f1:59:18:e8:47:89:
#         b2:57:5a:94:b6:a9:d8:17:2b:17:49:e5:76:cb:c1:56:99:3a:
#         37:b1:ff:69:2c:91:91:93:e1:df:4c:a3:37:76:4d:a1:9f:f8:
#         6d:1e:1d:d3:fa:ec:fb:f4:45:1d:13:6d:cf:f7:59:e5:22:27:
#         72:2b:86:f3:57:bb:30:ed:24:4d:dc:7d:56:bb:a3:b3:f8:34:
#         79:89:c1:e0:f2:02:61:f7:a6:fc:0f:bb:1c:17:0b:ae:41:d9:
#         7c:bd:27:a3:fd:2e:3a:d1:93:94:b1:73:1d:24:8b:af:5b:20:
#         89:ad:b7:67:66:79:f5:3a:c6:a6:96:33:fe:53:92:c8:46:b1:
#         11:91:c6:99:7f:8f:c9:d6:66:31:20:41:10:87:2d:0c:d6:c1:
#         af:34:98:ca:64:83:fb:13:57:d1:c1:f0:3c:7a:8c:a5:c1:fd:
#         95:21:a0:71:c1:93:67:71:12:ea:8f:88:0a:69:19:64:99:23:
#         56:fb:ac:2a:2e:70:be:66:c4:0c:84:ef:e5:8b:f3:93:01:f8:
#         6a:90:93:67:4b:b2:68:a3:b5:62:8f:e9:3f:8c:7a:3b:5e:0f:
#         e7:8c:b8:c6:7c:ef:37:fd:74:e2:c8:4f:33:72:e1:94:39:6d:
#         bd:12:af:be:0c:4e:70:7c:1b:6f:8d:b3:32:93:73:44:16:6d:
#         e8:f4:f7:e0:95:80:8f:96:5d:38:a4:f4:ab:de:0a:30:87:93:
#         d8:4d:00:71:62:45:27:4b:3a:42:84:5b:7f:65:b7:67:34:52:
#         2d:9c:16:6b:aa:a8:d8:7b:a3:42:4c:71:c7:0c:ca:3e:83:e4:
#         a6:ef:b7:01:30:5e:51:a3:79:f5:70:69:a6:41:44:0f:86:b0:
#         2c:91:c6:3d:ea:ae:0f:84

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2010"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2010"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            28:cc:3a:25:bf:ba:44:ac:44:9a:9b:58:6b:43:39:aa
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Root Certificate Authority 2010
#        Validity
#            Not Before: Jun 23 21:57:24 2010 GMT
#            Not After : Jun 23 22:04:01 2035 GMT
#        Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Root Certificate Authority 2010
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b9:08:9e:28:e4:e4:ec:06:4e:50:68:b3:41:c5:
#                    7b:eb:ae:b6:8e:af:81:ba:22:44:1f:65:34:69:4c:
#                    be:70:40:17:f2:16:7b:e2:79:fd:86:ed:0d:39:f4:
#                    1b:a8:ad:92:90:1e:cb:3d:76:8f:5a:d9:b5:91:10:
#                    2e:3c:05:8d:8a:6d:24:54:e7:1f:ed:56:ad:83:b4:
#                    50:9c:15:a5:17:74:88:59:20:fc:08:c5:84:76:d3:
#                    68:d4:6f:28:78:ce:5c:b8:f3:50:90:44:ff:e3:63:
#                    5f:be:a1:9a:2c:96:15:04:d6:07:fe:1e:84:21:e0:
#                    42:31:11:c4:28:36:94:cf:50:a4:62:9e:c9:d6:ab:
#                    71:00:b2:5b:0c:e6:96:d4:0a:24:96:f5:ff:c6:d5:
#                    b7:1b:d7:cb:b7:21:62:af:12:dc:a1:5d:37:e3:1a:
#                    fb:1a:46:98:c0:9b:c0:e7:63:1f:2a:08:93:02:7e:
#                    1e:6a:8e:f2:9f:18:89:e4:22:85:a2:b1:84:57:40:
#                    ff:f5:0e:d8:6f:9c:ed:e2:45:31:01:cd:17:e9:7f:
#                    b0:81:45:e3:aa:21:40:26:a1:72:aa:a7:4f:3c:01:
#                    05:7e:ee:83:58:b1:5e:06:63:99:62:91:78:82:b7:
#                    0d:93:0c:24:6a:b4:1b:db:27:ec:5f:95:04:3f:93:
#                    4a:30:f5:97:18:b3:a7:f9:19:a7:93:33:1d:01:c8:
#                    db:22:52:5c:d7:25:c9:46:f9:a2:fb:87:59:43:be:
#                    9b:62:b1:8d:2d:86:44:1a:46:ac:78:61:7e:30:09:
#                    fa:ae:89:c4:41:2a:22:66:03:91:39:45:9c:c7:8b:
#                    0c:a8:ca:0d:2f:fb:52:ea:0c:f7:63:33:23:9d:fe:
#                    b0:1f:ad:67:d6:a7:50:03:c6:04:70:63:b5:2c:b1:
#                    86:5a:43:b7:fb:ae:f9:6e:29:6e:21:21:41:26:06:
#                    8c:c9:c3:ee:b0:c2:85:93:a1:b9:85:d9:e6:32:6c:
#                    4b:4c:3f:d6:5d:a3:e5:b5:9d:77:c3:9c:c0:55:b7:
#                    74:00:e3:b8:38:ab:83:97:50:e1:9a:42:24:1d:c6:
#                    c0:a3:30:d1:1a:5a:c8:52:34:f7:73:f1:c7:18:1f:
#                    33:ad:7a:ec:cb:41:60:f3:23:94:20:c2:48:45:ac:
#                    5c:51:c6:2e:80:c2:e2:77:15:bd:85:87:ed:36:9d:
#                    96:91:ee:00:b5:a3:70:ec:9f:e3:8d:80:68:83:76:
#                    ba:af:5d:70:52:22:16:e2:66:fb:ba:b3:c5:c2:f7:
#                    3e:2f:77:a6:ca:de:c1:a6:c6:48:4c:c3:37:51:23:
#                    d3:27:d7:b8:4e:70:96:f0:a1:44:76:af:78:cf:9a:
#                    e1:66:13
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                D5:F6:56:CB:8F:E8:A2:5C:62:68:D1:3D:94:90:5B:D7:CE:9A:18:C4
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         ac:a5:96:8c:bf:bb:ae:a6:f6:d7:71:87:43:31:56:88:fd:1c:
#         32:71:5b:35:b7:d4:f0:91:f2:af:37:e2:14:f1:f3:02:26:05:
#         3e:16:14:7f:14:ba:b8:4f:fb:89:b2:b2:e7:d4:09:cc:6d:b9:
#         5b:3b:64:65:70:66:b7:f2:b1:5a:df:1a:02:f3:f5:51:b8:67:
#         6d:79:f3:bf:56:7b:e4:84:b9:2b:1e:9b:40:9c:26:34:f9:47:
#         18:98:69:d8:1c:d7:b6:d1:bf:8f:61:c2:67:c4:b5:ef:60:43:
#         8e:10:1b:36:49:e4:20:ca:ad:a7:c1:b1:27:65:09:f8:cd:f5:
#         5b:2a:d0:84:33:f3:ef:1f:f2:f5:9c:0b:58:93:37:a0:75:a0:
#         de:72:de:6c:75:2a:66:22:f5:8c:06:30:56:9f:40:b9:30:aa:
#         40:77:15:82:d7:8b:ec:c0:d3:b2:bd:83:c5:77:0c:1e:ae:af:
#         19:53:a0:4d:79:71:9f:0f:af:30:ce:67:f9:d6:2c:cc:22:41:
#         7a:07:f2:97:42:18:ce:59:79:10:55:de:6f:10:e4:b8:da:83:
#         66:40:16:09:68:23:5b:97:2e:26:9a:02:bb:57:8c:c5:b8:ba:
#         69:62:32:80:89:9e:a1:fd:c0:92:7c:7b:2b:33:19:84:2a:63:
#         c5:00:68:62:fa:9f:47:8d:99:7a:45:3a:a7:e9:ed:ee:69:42:
#         b5:f3:81:9b:47:56:10:7b:fc:70:36:84:18:73:ea:ef:f9:97:
#         4d:9e:33:23:dd:26:0b:ba:2a:b7:3f:44:dc:83:27:ff:bd:61:
#         59:2b:11:b7:ca:4f:db:c5:8b:0c:1c:31:ae:32:f8:f8:b9:42:
#         f7:7f:dc:61:9a:76:b1:5a:04:e1:11:3d:66:45:b7:18:71:be:
#         c9:24:85:d6:f3:d4:ba:41:34:5d:12:2d:25:b9:8d:a6:13:48:
#         6d:4b:b0:07:7d:99:93:09:61:81:74:57:26:8a:ab:69:e3:e4:
#         d9:c7:88:cc:24:d8:ec:52:24:5c:1e:bc:91:14:e2:96:de:eb:
#         0a:da:9e:dd:5f:b3:5b:db:d4:82:ec:c6:20:50:87:25:40:3a:
#         fb:c7:ee:cd:fe:33:e5:6e:c3:84:09:55:03:25:39:c0:e9:35:
#         5d:65:31:a8:f6:bf:a0:09:cd:29:c7:b3:36:32:2e:dc:95:f3:
#         83:c1:5a:cf:8b:8d:f6:ea:b3:21:f8:a4:ed:1e:31:0e:b6:4c:
#         11:ab:60:0b:a4:12:23:22:17:a3:36:64:82:91:04:12:e0:ab:
#         6f:1e:cb:50:05:61:b4:40:ff:59:86:71:d1:d5:33:69:7c:a9:
#         73:8a:38:d7:64:0c:f1:69

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Microsoft Root Certificate Authority 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF7TCCA9WgAwIBAgIQP4vItfyfspZDtWnWbELhRDANBgkqhkiG9w0BAQsFADCB
iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1Jl
ZG1vbmQxHjAcBgNVBAoTFU1pY3Jvc29mdCBDb3Jwb3JhdGlvbjEyMDAGA1UEAxMp
TWljcm9zb2Z0IFJvb3QgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IDIwMTEwHhcNMTEw
MzIyMjIwNTI4WhcNMzYwMzIyMjIxMzA0WjCBiDELMAkGA1UEBhMCVVMxEzARBgNV
BAgTCldhc2hpbmd0b24xEDAOBgNVBAcTB1JlZG1vbmQxHjAcBgNVBAoTFU1pY3Jv
c29mdCBDb3Jwb3JhdGlvbjEyMDAGA1UEAxMpTWljcm9zb2Z0IFJvb3QgQ2VydGlm
aWNhdGUgQXV0aG9yaXR5IDIwMTEwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIK
AoICAQCygEGqNThNE3IyaCJNuLLx/9VSvGzH9dJKjDbu0cJcfoyKrq8TKG/Ac+M6
ztAlqFo6be+ouFmrEyNozQwph9FvgFyPRH9dkAFSWKxRxV8qh9zc2AodwQO5e7BW
6KPeZGHCnvjzfLnsDbVU/ky2ZU+I8JxImQxCCwl8MVkXeQZ4KI2JOkwDJb5xalwL
54RgpJki49KvhKSn+9GY7Qyp3pSJ4Q6g3MDOmT3qCFK7VnnkH4S6Hri0xElcTzFL
h93dBWcmmYDgcRGjuKVB4qRTufcyKYMME782XgSzS0NHL2vikR7TmE/dQgfI6B0S
/Jmpaz6SfsjWaTr8ZL22CZ3K/QwLopt3YEsDlKQwaRLWQi3BQUzK3Kr9j1uDRprZ
/LHR47PJf0h6zSTwQY9cdNCssBAgBkm3xy0hyFfj0IbzA2j70M5xwYmZSmQBbP3s
MJHPQTySx+W6hh1hhMdfgzlirrSSL0fzC/hV66AfWdC7dJse0Hbm8ukG1xDo+mTe
acY1logC8Ea4PyeZb8txiSk190gWAjWP1Xl8TQLPX+uKg09FcYj5qQ1OcunCnAfP
SRtOBA5jUYxe2ADBVSy2xuDCZU7JNDn1nLPEfuhhbhNfFcRf2X7tHc7uROzLLoax
7Dj2cO2rXBPB2Q8Nx4CyVe0096yb5MPa50c8prWPMd/FS6/r8QIDAQABo1EwTzAL
BgNVHQ8EBAMCAYYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUci06AjGQQ7kU
BU7h6qfHMdEjiTQwEAYJKwYBBAGCNxUBBAMCAQAwDQYJKoZIhvcNAQELBQADggIB
AH9yzw+3xRXbm8BJyiZb/p4T5tPw0tuXX/JLP02zrhmu7deXoKzvqTqjwkGw5biR
nhOBJAPmCf0/V0A5ISRW0RAvS0CpNoZLtFNXmvvxfomPEf4YbFGq6O0JlbXlccmh
6Yd1phV/yX43VF50k8XDZ8wNT2uoFwxtCJJ+i92Bqi1wIcM9BhS7vyRep4TXPw8h
Ir1LAAbblxzYXtTFC1yHblCk6MM4pPvLLMWSZpuFXst6bJN8gClYW1e1QGm6CHmm
ZGIVnYeWRbVmIyADixxzoNOieTPgUFmG2y/lAiXqcyqfABTINseSO+lOAOzYVgm5
M0kS0lQLAausR7aRKX1MtHWAUgHoyoL2n8ysnI8X6i8msKtyrAv+nlEex0NVZ09R
s1fWtuzuUrc66U7h14GIvE+OdbtLqPA1qibUZ2dJsnBMO5PcHd94kIZysjik0dyS
TclY6ysSXNQ7roxrsIPlAT/4CTL2kzU0Iq/dNw13CYArzUgA8YyZGUcFAenRv9FO
0OYoQzeZpApKCNmacXPSqs0xE2N2oTdvkjgefRI8ZjLny23h/FKJ3crWZgWalmG+
oijHHKOnNlA8OqTfSm7mhzvO6/DggTedEzxSjr25HTTGHdUKaj2YKXCMiSrRq4IQ
SB/c9O+lxbtVGjhjhE63bK2VVOxlIhBJF7jAHscPrFRH
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3f:8b:c8:b5:fc:9f:b2:96:43:b5:69:d6:6c:42:e1:44
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Root Certificate Authority 2011
#        Validity
#            Not Before: Mar 22 22:05:28 2011 GMT
#            Not After : Mar 22 22:13:04 2036 GMT
#        Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Root Certificate Authority 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b2:80:41:aa:35:38:4d:13:72:32:68:22:4d:b8:
#                    b2:f1:ff:d5:52:bc:6c:c7:f5:d2:4a:8c:36:ee:d1:
#                    c2:5c:7e:8c:8a:ae:af:13:28:6f:c0:73:e3:3a:ce:
#                    d0:25:a8:5a:3a:6d:ef:a8:b8:59:ab:13:23:68:cd:
#                    0c:29:87:d1:6f:80:5c:8f:44:7f:5d:90:01:52:58:
#                    ac:51:c5:5f:2a:87:dc:dc:d8:0a:1d:c1:03:b9:7b:
#                    b0:56:e8:a3:de:64:61:c2:9e:f8:f3:7c:b9:ec:0d:
#                    b5:54:fe:4c:b6:65:4f:88:f0:9c:48:99:0c:42:0b:
#                    09:7c:31:59:17:79:06:78:28:8d:89:3a:4c:03:25:
#                    be:71:6a:5c:0b:e7:84:60:a4:99:22:e3:d2:af:84:
#                    a4:a7:fb:d1:98:ed:0c:a9:de:94:89:e1:0e:a0:dc:
#                    c0:ce:99:3d:ea:08:52:bb:56:79:e4:1f:84:ba:1e:
#                    b8:b4:c4:49:5c:4f:31:4b:87:dd:dd:05:67:26:99:
#                    80:e0:71:11:a3:b8:a5:41:e2:a4:53:b9:f7:32:29:
#                    83:0c:13:bf:36:5e:04:b3:4b:43:47:2f:6b:e2:91:
#                    1e:d3:98:4f:dd:42:07:c8:e8:1d:12:fc:99:a9:6b:
#                    3e:92:7e:c8:d6:69:3a:fc:64:bd:b6:09:9d:ca:fd:
#                    0c:0b:a2:9b:77:60:4b:03:94:a4:30:69:12:d6:42:
#                    2d:c1:41:4c:ca:dc:aa:fd:8f:5b:83:46:9a:d9:fc:
#                    b1:d1:e3:b3:c9:7f:48:7a:cd:24:f0:41:8f:5c:74:
#                    d0:ac:b0:10:20:06:49:b7:c7:2d:21:c8:57:e3:d0:
#                    86:f3:03:68:fb:d0:ce:71:c1:89:99:4a:64:01:6c:
#                    fd:ec:30:91:cf:41:3c:92:c7:e5:ba:86:1d:61:84:
#                    c7:5f:83:39:62:ae:b4:92:2f:47:f3:0b:f8:55:eb:
#                    a0:1f:59:d0:bb:74:9b:1e:d0:76:e6:f2:e9:06:d7:
#                    10:e8:fa:64:de:69:c6:35:96:88:02:f0:46:b8:3f:
#                    27:99:6f:cb:71:89:29:35:f7:48:16:02:35:8f:d5:
#                    79:7c:4d:02:cf:5f:eb:8a:83:4f:45:71:88:f9:a9:
#                    0d:4e:72:e9:c2:9c:07:cf:49:1b:4e:04:0e:63:51:
#                    8c:5e:d8:00:c1:55:2c:b6:c6:e0:c2:65:4e:c9:34:
#                    39:f5:9c:b3:c4:7e:e8:61:6e:13:5f:15:c4:5f:d9:
#                    7e:ed:1d:ce:ee:44:ec:cb:2e:86:b1:ec:38:f6:70:
#                    ed:ab:5c:13:c1:d9:0f:0d:c7:80:b2:55:ed:34:f7:
#                    ac:9b:e4:c3:da:e7:47:3c:a6:b5:8f:31:df:c5:4b:
#                    af:eb:f1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                72:2D:3A:02:31:90:43:B9:14:05:4E:E1:EA:A7:C7:31:D1:23:89:34
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         7f:72:cf:0f:b7:c5:15:db:9b:c0:49:ca:26:5b:fe:9e:13:e6:
#         d3:f0:d2:db:97:5f:f2:4b:3f:4d:b3:ae:19:ae:ed:d7:97:a0:
#         ac:ef:a9:3a:a3:c2:41:b0:e5:b8:91:9e:13:81:24:03:e6:09:
#         fd:3f:57:40:39:21:24:56:d1:10:2f:4b:40:a9:36:86:4b:b4:
#         53:57:9a:fb:f1:7e:89:8f:11:fe:18:6c:51:aa:e8:ed:09:95:
#         b5:e5:71:c9:a1:e9:87:75:a6:15:7f:c9:7e:37:54:5e:74:93:
#         c5:c3:67:cc:0d:4f:6b:a8:17:0c:6d:08:92:7e:8b:dd:81:aa:
#         2d:70:21:c3:3d:06:14:bb:bf:24:5e:a7:84:d7:3f:0f:21:22:
#         bd:4b:00:06:db:97:1c:d8:5e:d4:c5:0b:5c:87:6e:50:a4:e8:
#         c3:38:a4:fb:cb:2c:c5:92:66:9b:85:5e:cb:7a:6c:93:7c:80:
#         29:58:5b:57:b5:40:69:ba:08:79:a6:64:62:15:9d:87:96:45:
#         b5:66:23:20:03:8b:1c:73:a0:d3:a2:79:33:e0:50:59:86:db:
#         2f:e5:02:25:ea:73:2a:9f:00:14:c8:36:c7:92:3b:e9:4e:00:
#         ec:d8:56:09:b9:33:49:12:d2:54:0b:01:ab:ac:47:b6:91:29:
#         7d:4c:b4:75:80:52:01:e8:ca:82:f6:9f:cc:ac:9c:8f:17:ea:
#         2f:26:b0:ab:72:ac:0b:fe:9e:51:1e:c7:43:55:67:4f:51:b3:
#         57:d6:b6:ec:ee:52:b7:3a:e9:4e:e1:d7:81:88:bc:4f:8e:75:
#         bb:4b:a8:f0:35:aa:26:d4:67:67:49:b2:70:4c:3b:93:dc:1d:
#         df:78:90:86:72:b2:38:a4:d1:dc:92:4d:c9:58:eb:2b:12:5c:
#         d4:3b:ae:8c:6b:b0:83:e5:01:3f:f8:09:32:f6:93:35:34:22:
#         af:dd:37:0d:77:09:80:2b:cd:48:00:f1:8c:99:19:47:05:01:
#         e9:d1:bf:d1:4e:d0:e6:28:43:37:99:a4:0a:4a:08:d9:9a:71:
#         73:d2:aa:cd:31:13:63:76:a1:37:6f:92:38:1e:7d:12:3c:66:
#         32:e7:cb:6d:e1:fc:52:89:dd:ca:d6:66:05:9a:96:61:be:a2:
#         28:c7:1c:a3:a7:36:50:3c:3a:a4:df:4a:6e:e6:87:3b:ce:eb:
#         f0:e0:81:37:9d:13:3c:52:8e:bd:b9:1d:34:c6:1d:d5:0a:6a:
#         3d:98:29:70:8c:89:2a:d1:ab:82:10:48:1f:dc:f4:ef:a5:c5:
#         bb:55:1a:38:63:84:4e:b7:6c:ad:95:54:ec:65:22:10:49:17:
#         b8:c0:1e:c7:0f:ac:54:47

[p11-kit-object-v1]
label: "NAVER Global Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NAVER Global Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFojCCA4qgAwIBAgIUAZQwHqIL3fXFMyqxQ0Rx+NZQTQ0wDQYJKoZIhvcNAQEM
BQAwaTELMAkGA1UEBhMCS1IxJjAkBgNVBAoMHU5BVkVSIEJVU0lORVNTIFBMQVRG
T1JNIENvcnAuMTIwMAYDVQQDDClOQVZFUiBHbG9iYWwgUm9vdCBDZXJ0aWZpY2F0
aW9uIEF1dGhvcml0eTAeFw0xNzA4MTgwODU4NDJaFw0zNzA4MTgyMzU5NTlaMGkx
CzAJBgNVBAYTAktSMSYwJAYDVQQKDB1OQVZFUiBCVVNJTkVTUyBQTEFURk9STSBD
b3JwLjEyMDAGA1UEAwwpTkFWRVIgR2xvYmFsIFJvb3QgQ2VydGlmaWNhdGlvbiBB
dXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQC21PGTXLVA
iQqrDZBbUGOukJR0F0Vy1ntlWilLp1agS7gvQnXp2XskWjFlqxcX0TM62RHcQDaH
38dq6SZeWYp34+hInDEW+j6RscrJo+KfziFTowI2MMtSAuXaMl3Dxeb57hHHi8lE
HoSTGEq0n+USZGnQJoViAbbJAh2+g1G7XNr4rRVqmfeSVPc0W+m/6imBEtRTkZaz
kVrd/pBzKPswRrXKCAfHcXLJZtM0l/aM9BhK4dA9WkW2aacp+yPOiNgSnABIqKYP
szuSjXEOdMWLyEz59JuOuDxp7W87UC9Y7cSw0BwbagzivESq2M0UXZR4Yb8Obtoq
vC8MC3GmsxY/nOb5zJ9TNeIDoKAYv7vxvvTWjIcNQvcGufFt7QSUqP620wbGQGHf
nZ3zVHbOUzoBppJB7ASjjw2i1QnK1sua8e9DXcCrpUHPXFNwcMmIpi3Ua2FzUCaG
YQ5fG8Ir4ozVu53BA0K6lNpfqbDKzE0K70dpAy8i+/Eozr9dUGWokG2zdLAIx6yo
0es+nPxdGoMuK8u180SdOqcXYZaicdNwlhVNt0xz7hlcxVs+Qf6sdWA7G2POAN3a
CJBitOUt7kinaxeZVL6HSuOpXgRM6xBtVNbv8ejyYhbLgGvtPe31HzClrkvJE+2K
AQHJuFFYwGY6sWZLxNUxAmLpdIQM201GLQIDAQABo0IwQDAdBgNVHQ4EFgQU0p+I
36HNLL3s9TsBAZMzJ7LrYEswDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMB
Af8wDQYJKoZIhvcNAQEMBQADggIBADLKgLOdPVQG3dLSLvCkASELZ0jKbY7gyKoN
qo0hV4/GPnrK21HUUrPUloSlWGB/5QuOH/XcChWB5Tu2tyIvCZwTFrFsDDUIbatj
cu3cvuzHV+YwIHHW1xDBE1UBjCpD5EHxzzp6U5LOogMFDTjfArsQLtk70pt6wKGm
+LUx5vR1yblTmXVHIloUFcd4G7ad6Qz4G3bxhYTeodoS76TiEJd6eN4MUZeoIUCL
hr0N8F5OSza7OyAfikJW4Qsav3vQIkMsRIz75Sq0bBwcupTgE34h5prCy8VCZLQe
lHsIJchxzIdFV4XTnyliIoNRlwAYl3dqmJLJfGBs32x9SuRwTMKeuB330DTHD8z7
p/8Dvq1wkNoL3chtl1+afwkyQf3NosxabUzyqkn+Zvjp2DXrDige7kgvOtB5CTh8
piKCk5XQA76+AqAF3SAi428diDRgxuYKuQl1C/AH6GmWNcf7I4GOODm4RStDeKLR
LBT/DShycpWbXgnbiUSYqqFJu3FS8r/2/yehNq+4tneI3TqkbZs0kNwUXTC/t+sX
5Ie3cdCh13cV1ELX8vMxmV2b3RZtP+oGI/hGoiLtk/bdmuYqh7GYVPEi92tF4+KO
dh2ajcQGjTa3FPOdVGm3jjzVpG2Tgbet9r1ke8LJaDmgkpzNNIaRkPpkUZ3+/uul
9XXeifdy
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:94:30:1e:a2:0b:dd:f5:c5:33:2a:b1:43:44:71:f8:d6:50:4d:0d
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=KR, O=NAVER BUSINESS PLATFORM Corp., CN=NAVER Global Root Certification Authority
#        Validity
#            Not Before: Aug 18 08:58:42 2017 GMT
#            Not After : Aug 18 23:59:59 2037 GMT
#        Subject: C=KR, O=NAVER BUSINESS PLATFORM Corp., CN=NAVER Global Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:d4:f1:93:5c:b5:40:89:0a:ab:0d:90:5b:50:
#                    63:ae:90:94:74:17:45:72:d6:7b:65:5a:29:4b:a7:
#                    56:a0:4b:b8:2f:42:75:e9:d9:7b:24:5a:31:65:ab:
#                    17:17:d1:33:3a:d9:11:dc:40:36:87:df:c7:6a:e9:
#                    26:5e:59:8a:77:e3:e8:48:9c:31:16:fa:3e:91:b1:
#                    ca:c9:a3:e2:9f:ce:21:53:a3:02:36:30:cb:52:02:
#                    e5:da:32:5d:c3:c5:e6:f9:ee:11:c7:8b:c9:44:1e:
#                    84:93:18:4a:b4:9f:e5:12:64:69:d0:26:85:62:01:
#                    b6:c9:02:1d:be:83:51:bb:5c:da:f8:ad:15:6a:99:
#                    f7:92:54:f7:34:5b:e9:bf:ea:29:81:12:d4:53:91:
#                    96:b3:91:5a:dd:fe:90:73:28:fb:30:46:b5:ca:08:
#                    07:c7:71:72:c9:66:d3:34:97:f6:8c:f4:18:4a:e1:
#                    d0:3d:5a:45:b6:69:a7:29:fb:23:ce:88:d8:12:9c:
#                    00:48:a8:a6:0f:b3:3b:92:8d:71:0e:74:c5:8b:c8:
#                    4c:f9:f4:9b:8e:b8:3c:69:ed:6f:3b:50:2f:58:ed:
#                    c4:b0:d0:1c:1b:6a:0c:e2:bc:44:aa:d8:cd:14:5d:
#                    94:78:61:bf:0e:6e:da:2a:bc:2f:0c:0b:71:a6:b3:
#                    16:3f:9c:e6:f9:cc:9f:53:35:e2:03:a0:a0:18:bf:
#                    bb:f1:be:f4:d6:8c:87:0d:42:f7:06:b9:f1:6d:ed:
#                    04:94:a8:fe:b6:d3:06:c6:40:61:df:9d:9d:f3:54:
#                    76:ce:53:3a:01:a6:92:41:ec:04:a3:8f:0d:a2:d5:
#                    09:ca:d6:cb:9a:f1:ef:43:5d:c0:ab:a5:41:cf:5c:
#                    53:70:70:c9:88:a6:2d:d4:6b:61:73:50:26:86:61:
#                    0e:5f:1b:c2:2b:e2:8c:d5:bb:9d:c1:03:42:ba:94:
#                    da:5f:a9:b0:ca:cc:4d:0a:ef:47:69:03:2f:22:fb:
#                    f1:28:ce:bf:5d:50:65:a8:90:6d:b3:74:b0:08:c7:
#                    ac:a8:d1:eb:3e:9c:fc:5d:1a:83:2e:2b:cb:b5:f3:
#                    44:9d:3a:a7:17:61:96:a2:71:d3:70:96:15:4d:b7:
#                    4c:73:ee:19:5c:c5:5b:3e:41:fe:ac:75:60:3b:1b:
#                    63:ce:00:dd:da:08:90:62:b4:e5:2d:ee:48:a7:6b:
#                    17:99:54:be:87:4a:e3:a9:5e:04:4c:eb:10:6d:54:
#                    d6:ef:f1:e8:f2:62:16:cb:80:6b:ed:3d:ed:f5:1f:
#                    30:a5:ae:4b:c9:13:ed:8a:01:01:c9:b8:51:58:c0:
#                    66:3a:b1:66:4b:c4:d5:31:02:62:e9:74:84:0c:db:
#                    4d:46:2d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D2:9F:88:DF:A1:CD:2C:BD:EC:F5:3B:01:01:93:33:27:B2:EB:60:4B
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         32:ca:80:b3:9d:3d:54:06:dd:d2:d2:2e:f0:a4:01:21:0b:67:
#         48:ca:6d:8e:e0:c8:aa:0d:aa:8d:21:57:8f:c6:3e:7a:ca:db:
#         51:d4:52:b3:d4:96:84:a5:58:60:7f:e5:0b:8e:1f:f5:dc:0a:
#         15:81:e5:3b:b6:b7:22:2f:09:9c:13:16:b1:6c:0c:35:08:6d:
#         ab:63:72:ed:dc:be:ec:c7:57:e6:30:20:71:d6:d7:10:c1:13:
#         55:01:8c:2a:43:e4:41:f1:cf:3a:7a:53:92:ce:a2:03:05:0d:
#         38:df:02:bb:10:2e:d9:3b:d2:9b:7a:c0:a1:a6:f8:b5:31:e6:
#         f4:75:c9:b9:53:99:75:47:22:5a:14:15:c7:78:1b:b6:9d:e9:
#         0c:f8:1b:76:f1:85:84:de:a1:da:12:ef:a4:e2:10:97:7a:78:
#         de:0c:51:97:a8:21:40:8b:86:bd:0d:f0:5e:4e:4b:36:bb:3b:
#         20:1f:8a:42:56:e1:0b:1a:bf:7b:d0:22:43:2c:44:8c:fb:e5:
#         2a:b4:6c:1c:1c:ba:94:e0:13:7e:21:e6:9a:c2:cb:c5:42:64:
#         b4:1e:94:7b:08:25:c8:71:cc:87:45:57:85:d3:9f:29:62:22:
#         83:51:97:00:18:97:77:6a:98:92:c9:7c:60:6c:df:6c:7d:4a:
#         e4:70:4c:c2:9e:b8:1d:f7:d0:34:c7:0f:cc:fb:a7:ff:03:be:
#         ad:70:90:da:0b:dd:c8:6d:97:5f:9a:7f:09:32:41:fd:cd:a2:
#         cc:5a:6d:4c:f2:aa:49:fe:66:f8:e9:d8:35:eb:0e:28:1e:ee:
#         48:2f:3a:d0:79:09:38:7c:a6:22:82:93:95:d0:03:be:be:02:
#         a0:05:dd:20:22:e3:6f:1d:88:34:60:c6:e6:0a:b9:09:75:0b:
#         f0:07:e8:69:96:35:c7:fb:23:81:8e:38:39:b8:45:2b:43:78:
#         a2:d1:2c:14:ff:0d:28:72:72:95:9b:5e:09:db:89:44:98:aa:
#         a1:49:bb:71:52:f2:bf:f6:ff:27:a1:36:af:b8:b6:77:88:dd:
#         3a:a4:6d:9b:34:90:dc:14:5d:30:bf:b7:eb:17:e4:87:b7:71:
#         d0:a1:d7:77:15:d4:42:d7:f2:f3:31:99:5d:9b:dd:16:6d:3f:
#         ea:06:23:f8:46:a2:22:ed:93:f6:dd:9a:e6:2a:87:b1:98:54:
#         f1:22:f7:6b:45:e3:e2:8e:76:1d:9a:8d:c4:06:8d:36:b7:14:
#         f3:9d:54:69:b7:8e:3c:d5:a4:6d:93:81:b7:ad:f6:bd:64:7b:
#         c2:c9:68:39:a0:92:9c:cd:34:86:91:90:fa:64:51:9d:fe:fe:
#         eb:a5:f5:75:de:89:f7:72

[p11-kit-object-v1]
label: "NetLock Arany (Class Gold) Főtanúsítvány"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxCRec75LbRTDofTjl5Bu
0jBFHjzuZ9lk4BqKf8owyoPjIMHj9DrTlF8afFttvzBPhCf2nx9JvMaZCpDyD/V/
Q4Q3Y1GLeqVw/HpYzY6b7cNGbIRwXdrzAZAj/E4wqX7hJ2Pn7WQ8oLjJM2P+FpD/
sLj916jAwJRDC7bVWaaeVtAkH3B5r9s5VA1lddkVQZQBr17s9o3x/61k/iCa11zr
/qYfCGSji3ZVrR47KGAuhyXoqq8fxmRGILdwfzzeSNuWU7c5d+Qa4scWhHaXWy+7
GRWF+GmF9ZmnqfI0p6m2pgP8b4Y9VHx2BJtr+UBdADTHLpl1neWIA6pN+APSQnbA
GwIDAKiL
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NetLock Arany (Class Gold) Főtanúsítvány"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            49:41:2c:e4:00:10
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=HU, L=Budapest, O=NetLock Kft., OU=Tan\xC3\xBAs\xC3\xADtv\xC3\xA1nykiad\xC3\xB3k (Certification Services), CN=NetLock Arany (Class Gold) F\xC5\x91tan\xC3\xBAs\xC3\xADtv\xC3\xA1ny
#        Validity
#            Not Before: Dec 11 15:08:21 2008 GMT
#            Not After : Dec  6 15:08:21 2028 GMT
#        Subject: C=HU, L=Budapest, O=NetLock Kft., OU=Tan\xC3\xBAs\xC3\xADtv\xC3\xA1nykiad\xC3\xB3k (Certification Services), CN=NetLock Arany (Class Gold) F\xC5\x91tan\xC3\xBAs\xC3\xADtv\xC3\xA1ny
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c4:24:5e:73:be:4b:6d:14:c3:a1:f4:e3:97:90:
#                    6e:d2:30:45:1e:3c:ee:67:d9:64:e0:1a:8a:7f:ca:
#                    30:ca:83:e3:20:c1:e3:f4:3a:d3:94:5f:1a:7c:5b:
#                    6d:bf:30:4f:84:27:f6:9f:1f:49:bc:c6:99:0a:90:
#                    f2:0f:f5:7f:43:84:37:63:51:8b:7a:a5:70:fc:7a:
#                    58:cd:8e:9b:ed:c3:46:6c:84:70:5d:da:f3:01:90:
#                    23:fc:4e:30:a9:7e:e1:27:63:e7:ed:64:3c:a0:b8:
#                    c9:33:63:fe:16:90:ff:b0:b8:fd:d7:a8:c0:c0:94:
#                    43:0b:b6:d5:59:a6:9e:56:d0:24:1f:70:79:af:db:
#                    39:54:0d:65:75:d9:15:41:94:01:af:5e:ec:f6:8d:
#                    f1:ff:ad:64:fe:20:9a:d7:5c:eb:fe:a6:1f:08:64:
#                    a3:8b:76:55:ad:1e:3b:28:60:2e:87:25:e8:aa:af:
#                    1f:c6:64:46:20:b7:70:7f:3c:de:48:db:96:53:b7:
#                    39:77:e4:1a:e2:c7:16:84:76:97:5b:2f:bb:19:15:
#                    85:f8:69:85:f5:99:a7:a9:f2:34:a7:a9:b6:a6:03:
#                    fc:6f:86:3d:54:7c:76:04:9b:6b:f9:40:5d:00:34:
#                    c7:2e:99:75:9d:e5:88:03:aa:4d:f8:03:d2:42:76:
#                    c0:1b
#                Exponent: 43147 (0xa88b)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CC:FA:67:93:F0:B6:B8:D0:A5:C0:1E:F3:53:FD:8C:53:DF:83:D7:96
#    Signature Algorithm: sha256WithRSAEncryption
#         ab:7f:ee:1c:16:a9:9c:3c:51:00:a0:c0:11:08:05:a7:99:e6:
#         6f:01:88:54:61:6e:f1:b9:18:ad:4a:ad:fe:81:40:23:94:2f:
#         fb:75:7c:2f:28:4b:62:24:81:82:0b:f5:61:f1:1c:6e:b8:61:
#         38:eb:81:fa:62:a1:3b:5a:62:d3:94:65:c4:e1:e6:6d:82:f8:
#         2f:25:70:b2:21:26:c1:72:51:1f:8c:2c:c3:84:90:c3:5a:8f:
#         ba:cf:f4:a7:65:a5:eb:98:d1:fb:05:b2:46:75:15:23:6a:6f:
#         85:63:30:80:f0:d5:9e:1f:29:1c:c2:6c:b0:50:59:5d:90:5b:
#         3b:a8:0d:30:cf:bf:7d:7f:ce:f1:9d:83:bd:c9:46:6e:20:a6:
#         f9:61:51:ba:21:2f:7b:be:a5:15:63:a1:d4:95:87:f1:9e:b9:
#         f3:89:f3:3d:85:b8:b8:db:be:b5:b9:29:f9:da:37:05:00:49:
#         94:03:84:44:e7:bf:43:31:cf:75:8b:25:d1:f4:a6:64:f5:92:
#         f6:ab:05:eb:3d:e9:a5:0b:36:62:da:cc:06:5f:36:8b:b6:5e:
#         31:b8:2a:fb:5e:f6:71:df:44:26:9e:c4:e6:0d:91:b4:2e:75:
#         95:80:51:6a:4b:30:a6:b0:62:a1:93:f1:9b:d8:ce:c4:63:75:
#         3f:59:47:b1

[p11-kit-object-v1]
label: "NetLock Platina (Class Platinum) Főtanúsítvány"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "NetLock Platina (Class Platinum) Főtanúsítvány"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            49:41:2d:ec:00:10
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=HU, L=Budapest, O=NetLock Kft., OU=Tan\xC3\xBAs\xC3\xADtv\xC3\xA1nykiad\xC3\xB3k (Certification Services), CN=NetLock Platina (Class Platinum) F\xC5\x91tan\xC3\xBAs\xC3\xADtv\xC3\xA1ny
#        Validity
#            Not Before: Dec 11 15:12:44 2008 GMT
#            Not After : Dec  6 15:12:44 2028 GMT
#        Subject: C=HU, L=Budapest, O=NetLock Kft., OU=Tan\xC3\xBAs\xC3\xADtv\xC3\xA1nykiad\xC3\xB3k (Certification Services), CN=NetLock Platina (Class Platinum) F\xC5\x91tan\xC3\xBAs\xC3\xADtv\xC3\xA1ny
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:cd:f2:ee:c4:1a:7a:eb:74:29:4c:b6:bd:e4:d6:
#                    0a:17:6c:65:e2:66:3d:c4:d1:bc:0c:b6:5a:d6:2b:
#                    70:5f:2d:cc:21:d1:59:10:e4:b1:13:bd:f6:cc:22:
#                    95:d6:6c:46:4e:91:32:b3:eb:f5:ac:cb:04:01:4f:
#                    76:dd:53:3e:78:9f:f9:5e:bc:b5:82:13:46:ca:10:
#                    e3:1d:2d:69:2b:94:32:10:73:21:ab:a9:38:c5:e3:
#                    6e:13:64:d5:63:a9:ed:09:66:ec:8a:6f:89:8d:11:
#                    86:d0:f5:bf:32:96:0b:75:70:f5:28:58:42:5e:ac:
#                    69:b4:f5:fc:91:39:2e:a2:91:40:d1:3c:54:41:87:
#                    23:64:50:48:79:68:4b:68:93:4b:72:eb:80:69:b3:
#                    4a:1c:90:be:b2:41:a3:a5:cd:17:c0:d1:1a:69:7f:
#                    02:18:4a:b5:62:87:26:57:2d:6c:a8:2c:21:39:f5:
#                    97:5e:9b:9a:a6:f8:e7:4c:79:c4:7b:3b:56:dc:7a:
#                    f8:b4:58:ce:76:0a:ae:22:55:eb:8f:c7:84:64:7b:
#                    bd:6b:ca:95:4f:d8:be:31:13:bf:8d:a1:0a:2b:d5:
#                    79:b7:f5:76:ad:da:51:5c:81:47:62:a8:aa:ff:cf:
#                    53:e0:34:71:cf:0d:25:53:a9:9e:63:47:af:85:91:
#                    f8:cf:19:11:e5:4e:f9:cf:ed:e3:35:05:01:22:03:
#                    cf:9a:7c:ea:1d:51:5a:cb:fd:73:3d:39:0b:31:eb:
#                    c4:3b:ca:85:2a:11:14:00:a0:1b:81:a2:09:88:48:
#                    f3:7c:a2:64:a1:ec:67:b4:58:87:f0:14:ea:a9:be:
#                    a5:22:41:4d:ec:bd:a4:0e:e8:3d:87:f7:2f:aa:ce:
#                    35:86:4f:30:57:92:8d:36:ae:78:d6:fd:18:fc:d7:
#                    25:1e:cf:7a:fc:19:fd:a0:3f:72:17:36:08:41:3f:
#                    97:36:95:0c:89:95:71:45:fa:84:d6:d4:20:60:b3:
#                    45:0a:f2:b7:95:3d:0b:e5:a4:c3:b8:12:f2:91:6c:
#                    e9:6d:60:83:f6:45:11:05:ba:e6:47:83:d9:91:e2:
#                    6e:e1:bb:46:6b:48:1b:bc:c6:fb:cf:7e:de:2c:bb:
#                    90:84:ee:b6:27:39:e7:8d:a2:31:0f:df:81:b7:2c:
#                    6c:00:e2:b1:d8:2a:17:5c:1b:1e:47:89:4b:17:51:
#                    14:40:40:4f:c4:39:18:32:c2:80:60:36:e5:7a:47:
#                    67:f6:a8:05:54:c1:5d:96:a0:1f:b6:88:52:0c:02:
#                    be:8d:55:7e:14:4b:c3:a2:01:ee:9c:8a:41:5d:f9:
#                    5f:96:91:09:8e:b4:e4:b5:c5:04:df:d6:36:ad:59:
#                    b4:b2:d7
#                Exponent: 62353 (0xf391)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E6:A1:13:83:FE:97:4B:F2:D8:FF:31:A1:A7:74:33:89:CE:5E:7F:A4
#    Signature Algorithm: sha256WithRSAEncryption
#         69:84:42:c0:e3:5e:13:61:97:20:49:f1:f4:16:85:a5:9f:a4:
#         11:08:25:c4:63:86:8f:f0:4b:af:b3:29:f5:07:57:1a:62:c7:
#         1b:45:6e:af:5d:16:b7:c1:d0:64:83:3b:97:f5:43:b6:45:90:
#         f1:66:2a:83:24:2a:ff:88:e9:7a:0b:f9:c2:5b:7a:af:63:f7:
#         09:78:86:48:59:34:5e:9b:6a:10:4e:f1:6e:95:89:36:4a:68:
#         d0:6f:9b:e0:7e:4f:b7:35:0f:e3:79:b1:05:af:27:7c:aa:89:
#         0a:43:de:fa:0c:ef:d9:57:2f:28:71:cd:69:6b:52:42:c9:8a:
#         30:45:59:a1:cc:fa:59:4a:8f:f7:d6:dd:44:a5:b3:2e:5b:11:
#         18:e2:b2:b5:e7:11:53:38:fe:82:4c:d3:73:be:65:92:1a:3a:
#         a8:d2:d2:aa:bc:d4:be:6d:36:52:ff:6b:d4:d2:b5:1b:37:f3:
#         17:42:f1:2e:a7:d5:90:6c:74:9d:74:f5:fa:5f:22:1b:d3:dc:
#         75:a8:b5:ff:f2:1a:d1:bc:2b:00:5c:3c:c5:b8:86:08:54:49:
#         a2:9c:23:fb:ef:a6:8d:70:f4:42:52:4d:1b:20:00:81:f8:a0:
#         b8:f4:74:23:9c:be:f4:b9:0e:ec:1e:6a:d8:65:4a:15:75:f1:
#         77:5b:6e:d8:b1:e6:0f:b4:96:b8:1d:fa:86:c8:92:6e:8b:e9:
#         7d:df:a2:0e:d5:f1:f1:7c:ae:4a:e3:66:bf:5d:fc:5b:ef:48:
#         b2:9e:69:c7:7d:90:a0:55:b6:94:70:81:b9:0a:bd:89:75:53:
#         ec:84:a9:03:a5:df:51:99:08:d0:74:0c:02:d6:73:72:06:7b:
#         8b:bb:5d:aa:4e:fc:67:67:d8:8e:10:03:19:2d:37:3a:d4:77:
#         a9:3a:1c:9d:c0:79:7b:6c:29:77:32:4d:4a:8b:30:88:c2:e7:
#         36:ce:68:a3:9a:98:86:f9:89:15:9e:bf:aa:51:7d:f1:50:46:
#         54:0f:02:2e:5c:9f:e3:de:57:33:15:fe:18:92:61:a8:d2:29:
#         05:5d:65:44:1e:9b:e3:ef:fb:dc:05:df:15:ab:a6:d8:0b:a4:
#         73:b2:4c:3a:e0:9e:d4:b3:6a:e5:3a:0e:0a:f0:4e:cf:78:81:
#         1f:be:a9:98:6f:b1:47:51:7d:42:33:36:b3:a6:a9:02:52:05:
#         74:7e:2a:6c:d4:aa:92:56:b0:3e:3b:23:58:b1:8d:35:a7:13:
#         8f:67:1e:71:15:a6:b3:b5:03:86:b8:20:66:c0:48:6f:b9:ac:
#         d4:4a:03:55:b2:37:df:04:dd:22:0c:53:86:2a:4a:2a:a1:c1:
#         38:3e:3c:e5:3c:df:75:97

[p11-kit-object-v1]
label: "Network Solutions Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5Lx+kjBtxtiOKwu8Rs7g
J5be3vn6EtM8M3OzBC+8cYzln7YiYD5fXc4J/4IMG5pRUBomid3VYV0Z3BIPLQqi
Q10X0DSSIOpzzzgsBiYJenL3+lAy+MKT02miI85Bsczk1R820Yo6+Ixj4hRZae0N
039r6LgD5U9q5ZhjaUgFvi7/M7bpl1lp+GcZrpNhlkQV03KwP7xqfexIf43Dq6px
K1NpQVM0tbC5xQYKxLBF9UFdbolFez07Jox0wuXS0X2yEdT7WDIimoDJ3P0M6X9e
A5fOOwAUhydwOKmObrMndphR4AXjIasa1YUiPCm1mhbFgKj0u2swjy9GAqKxDCLg
0wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Network Solutions Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1c:a0:2d:c1:52:3b:6a:6d:8b:5c:1f:95:4a:ed:ac:30
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=Network Solutions L.L.C., CN=Network Solutions Certificate Authority
#        Validity
#            Not Before: Jan  1 00:00:00 2011 GMT
#            Not After : Dec 31 23:59:59 2030 GMT
#        Subject: C=US, O=Network Solutions L.L.C., CN=Network Solutions Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:e4:bc:7e:92:30:6d:c6:d8:8e:2b:0b:bc:46:ce:
#                    e0:27:96:de:de:f9:fa:12:d3:3c:33:73:b3:04:2f:
#                    bc:71:8c:e5:9f:b6:22:60:3e:5f:5d:ce:09:ff:82:
#                    0c:1b:9a:51:50:1a:26:89:dd:d5:61:5d:19:dc:12:
#                    0f:2d:0a:a2:43:5d:17:d0:34:92:20:ea:73:cf:38:
#                    2c:06:26:09:7a:72:f7:fa:50:32:f8:c2:93:d3:69:
#                    a2:23:ce:41:b1:cc:e4:d5:1f:36:d1:8a:3a:f8:8c:
#                    63:e2:14:59:69:ed:0d:d3:7f:6b:e8:b8:03:e5:4f:
#                    6a:e5:98:63:69:48:05:be:2e:ff:33:b6:e9:97:59:
#                    69:f8:67:19:ae:93:61:96:44:15:d3:72:b0:3f:bc:
#                    6a:7d:ec:48:7f:8d:c3:ab:aa:71:2b:53:69:41:53:
#                    34:b5:b0:b9:c5:06:0a:c4:b0:45:f5:41:5d:6e:89:
#                    45:7b:3d:3b:26:8c:74:c2:e5:d2:d1:7d:b2:11:d4:
#                    fb:58:32:22:9a:80:c9:dc:fd:0c:e9:7f:5e:03:97:
#                    ce:3b:00:14:87:27:70:38:a9:8e:6e:b3:27:76:98:
#                    51:e0:05:e3:21:ab:1a:d5:85:22:3c:29:b5:9a:16:
#                    c5:80:a8:f4:bb:6b:30:8f:2f:46:02:a2:b1:0c:22:
#                    e0:d3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                21:30:C9:FB:00:D7:4E:98:DA:87:AA:2A:D0:A7:2E:B1:40:31:A7:4C
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         c2:89:84:a0:e8:8c:66:fd:ff:13:05:1b:c3:3a:8e:98:49:8a:
#         f8:aa:00:5c:26:fd:72:6a:a3:7e:12:1b:94:ae:54:f8:21:8f:
#         a7:93:4f:f7:16:ef:b9:b9:b3:32:c0:25:21:31:66:37:2c:09:
#         b0:fe:32:b0:37:ec:3c:b8:ce:8f:08:aa:08:90:07:5c:75:d5:
#         e1:4e:2c:cb:02:24:e9:a2:5e:e9:f5:78:35:22:06:1c:f2:1f:
#         88:b1:e1:5c:cc:96:54:fa:6f:49:cc:8d:f1:56:03:ed:cf:2c:
#         9f:27:de:e5:ca:83:44:be:46:40:f9:57:2e:d2:7f:31:2d:ce:
#         83:dc:fe:70:6b:84:d0:a3:9f:ff:97:d0:a8:d7:02:ec:b1:2c:
#         f0:ef:73:38:3d:99:ac:c4:4f:01:bf:d5:6a:ea:c6:2e:32:29:
#         17:0a:cb:e6:69:9e:d1:4a:b5:f6:df:8e:19:f8:95:e9:45:a9:
#         0e:cd:6d:41:59:20:9e:73:c6:6c:71:1c:9c:d4:4d:30:a8:73:
#         09:a0:15:f3:a0:45:26:c3:5b:fd:bb:b9:d8:2d:d7:1f:f5:05:
#         30:19:f6:ae:0f:8e:62:8f:df:c8:4f:86:d9:1d:61:16:b3:c9:
#         f0:bb:fb:c7:f5:af:01:22:47:ec:d8:da:cf:1c:f3:53:66:ba:
#         53:09:01:f9

[p11-kit-object-v1]
label: "Network Solutions ECC Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEFOEDC2VvrVnWHu7Jv7RMxcZcLzDHn1Lb
aGHAaRDiknoaw7+SqIk5ivvnoLtxpKDD33fWlDcTX35TXVC640wIx2XiQbDmWfKc
+MCyd8EKkSZ38mm2u9BBPCqIGpSRFsY+
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Network Solutions ECC Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            79:38:4b:b4:19:1a:8d:74:22:cc:ff:85:32:f2:e4:ba
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, ST=FL, L=Jacksonville, O=Network Solutions L.L.C., CN=Network Solutions ECC Certificate Authority
#        Validity
#            Not Before: Nov 18 00:00:00 2015 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, ST=FL, L=Jacksonville, O=Network Solutions L.L.C., CN=Network Solutions ECC Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:14:e1:03:0b:65:6f:ad:59:d6:1e:ee:c9:bf:b4:
#                    4c:c5:c6:5c:2f:30:c7:9f:52:db:68:61:c0:69:10:
#                    e2:92:7a:1a:c3:bf:92:a8:89:39:8a:fb:e7:a0:bb:
#                    71:a4:a0:c3:df:77:d6:94:37:13:5f:7e:53:5d:50:
#                    ba:e3:4c:08:c7:65:e2:41:b0:e6:59:f2:9c:f8:c0:
#                    b2:77:c1:0a:91:26:77:f2:69:b6:bb:d0:41:3c:2a:
#                    88:1a:94:91:16:c6:3e
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                9B:7B:EB:C8:FF:83:F2:52:98:47:30:0A:56:F8:38:BE:E3:EB:00:CE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:a9:64:58:f7:9c:b9:13:66:22:49:7f:b2:d1:
#         02:e9:13:fc:1c:fb:a4:34:92:e4:ca:07:0d:b7:b1:52:78:28:
#         34:cb:f2:21:56:91:86:86:c8:8a:0b:af:32:84:54:65:89:02:
#         31:00:ec:79:0d:9d:89:f0:0c:18:ea:7b:57:52:ad:0b:e6:d4:
#         79:5b:cb:9b:e2:06:45:75:18:bd:d0:fc:a7:dd:c7:e1:c7:22:
#         b6:e3:41:24:5d:23:e6:a8:9f:00:6a:50:32:25

[p11-kit-object-v1]
label: "Network Solutions RSA Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Network Solutions RSA Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:03:4b:ac:67:18:4c:7f:af:44:08:4d:82:96:c7:b2
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, ST=FL, L=Jacksonville, O=Network Solutions L.L.C., CN=Network Solutions RSA Certificate Authority
#        Validity
#            Not Before: Nov 18 00:00:00 2015 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, ST=FL, L=Jacksonville, O=Network Solutions L.L.C., CN=Network Solutions RSA Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:84:df:a8:a6:a3:8c:0b:78:1e:c8:4d:19:95:dd:
#                    29:90:92:20:35:90:2a:94:8d:82:33:2d:70:12:58:
#                    a5:08:8a:9e:c1:08:f3:93:d6:68:c0:2f:14:be:79:
#                    a4:fc:7d:cc:d5:bc:3e:8f:ed:9c:4a:02:61:59:3d:
#                    aa:c3:6f:74:00:d2:f8:1a:34:d4:54:9e:6a:74:47:
#                    9a:2f:e0:d2:f7:0f:f7:c3:dd:3f:a5:bf:c1:fa:7d:
#                    42:69:60:00:80:ec:3c:e6:bb:81:37:a4:1e:06:14:
#                    3d:57:8f:90:a4:35:4a:34:73:87:b6:1a:c3:5d:90:
#                    ef:06:4d:70:76:36:3c:82:89:ed:cf:64:19:83:25:
#                    43:4e:1c:e2:f1:6a:52:86:fe:51:e4:7e:38:df:15:
#                    8d:4c:6c:60:41:4a:4f:b0:40:55:46:39:75:c9:81:
#                    39:00:73:8a:62:ea:0f:65:b7:8f:4f:97:40:ce:cf:
#                    ee:c1:6a:28:a0:71:a9:99:27:d1:3d:c9:35:73:7a:
#                    80:99:f8:7d:86:b9:9d:79:3a:ed:d3:2a:fa:7e:a6:
#                    b8:ff:57:2a:73:b2:a6:bf:da:89:ba:06:1b:da:65:
#                    a0:e6:be:60:94:88:f6:df:66:e1:27:6a:1b:fe:d0:
#                    5e:a9:8d:20:8b:0a:c4:1f:7e:88:41:2f:b2:c1:d0:
#                    f3:b6:68:ed:c8:3b:f1:ef:aa:07:de:7e:d7:22:e0:
#                    81:f6:a5:ea:7b:16:f4:42:54:9d:96:7e:f6:62:16:
#                    53:cd:fd:0a:ab:b2:42:a1:4e:2a:88:42:75:83:bd:
#                    8c:e5:4d:7a:e7:1d:e3:4c:b8:de:e3:ab:60:38:2d:
#                    67:29:fe:e4:5f:ae:c2:a8:e8:bf:ae:6c:f9:eb:b3:
#                    52:f1:7f:e9:ec:c2:2f:d9:9d:ca:17:9e:42:fa:3b:
#                    58:c1:3e:88:62:4f:5f:93:c1:97:6d:66:8f:1c:22:
#                    f3:9a:c1:f4:ed:b9:6b:1a:7e:36:84:c8:31:b8:f0:
#                    5e:2b:7e:95:e4:79:cf:75:4c:c2:d8:04:bf:38:8e:
#                    28:b3:dd:5b:b6:d8:4f:23:6e:92:e8:37:95:ae:83:
#                    ae:d6:fc:39:2a:46:06:1f:f1:84:75:21:d6:b8:4e:
#                    a6:2a:97:58:65:f5:9a:18:01:d7:f5:c3:7f:29:c9:
#                    10:ee:73:4a:43:76:7b:d1:a6:30:51:ff:d6:2b:1d:
#                    1e:62:84:be:f9:be:69:97:99:c7:0d:e7:7c:24:50:
#                    75:17:fd:a4:20:e7:35:68:03:60:94:a7:d9:0d:c6:
#                    1a:2c:e5:e2:4e:d5:cc:0e:c0:7a:30:56:ef:60:92:
#                    be:d9:2e:f5:c7:f0:e8:45:cf:da:86:ae:ef:d8:77:
#                    a9:12:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                0F:F1:4A:4A:75:74:05:11:0C:1D:D8:5B:99:EB:BF:FE:AA:7D:5E:D7
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         3d:cb:d2:46:78:f5:f6:3a:17:e8:c3:7b:64:d1:c5:bb:90:78:
#         8d:f5:4f:b9:c4:2d:97:fb:0b:e6:c5:b8:f1:b6:ea:e8:58:4b:
#         34:ad:77:79:2c:35:1f:72:7d:02:3e:ee:b5:d0:16:8a:06:37:
#         96:b5:ef:43:d0:09:10:2c:97:66:c7:81:1f:1e:e6:27:c5:82:
#         91:58:5e:f3:c8:5b:41:68:80:83:91:b9:9c:81:f8:27:fa:45:
#         df:ee:79:f2:5c:6d:70:02:54:ee:c0:53:d8:43:eb:05:7a:cc:
#         f4:51:dd:a9:d4:22:7d:6a:3b:f2:fe:88:d4:52:49:3a:85:92:
#         64:53:f8:6a:53:60:88:8f:f2:5b:d4:ae:2b:52:e0:ea:ff:54:
#         7e:a1:e4:ef:86:1b:a7:83:0b:06:66:5e:30:80:8c:55:a0:47:
#         33:ff:6b:1e:44:48:4b:61:aa:1e:3e:e8:4c:64:c7:d8:6d:7d:
#         0e:ae:3c:3c:42:3d:ca:24:1a:70:f1:61:14:9c:3a:18:d5:f0:
#         06:29:91:22:b2:3a:3a:a1:16:54:63:1a:f9:33:95:44:9f:24:
#         a3:21:64:04:08:e2:9b:d5:de:08:52:1c:62:1c:53:16:47:35:
#         42:26:c7:a7:0c:fd:f3:5b:13:77:02:8c:5c:e2:16:f0:18:1f:
#         d9:7d:f5:df:02:24:88:7a:f3:5e:ff:17:0e:b3:62:67:a1:ab:
#         b1:17:8e:3d:3a:46:b0:f5:46:8c:ab:84:d8:f5:0e:a1:20:eb:
#         c2:f0:99:74:3d:8e:b3:03:d8:24:c5:6c:eb:6b:0c:53:bf:60:
#         69:dd:8c:28:c5:6f:cf:bb:d2:81:77:2b:c6:7c:b1:c4:4a:6c:
#         15:10:37:29:5d:ae:f8:b1:11:05:c4:14:8d:ec:13:a3:44:fd:
#         4d:8b:68:b8:c1:ff:9d:d5:37:2e:48:f8:28:7c:dc:f9:73:53:
#         d9:b6:01:75:42:7a:bf:0b:df:51:50:b8:53:b2:e1:ee:74:90:
#         cb:bc:aa:d0:71:83:a2:ab:4e:c9:10:b6:3d:1c:ef:40:d7:4f:
#         43:90:33:b9:01:96:54:5d:2a:d5:06:5b:92:86:b8:06:10:81:
#         06:c8:91:db:29:20:b2:53:bd:f3:4b:5b:4c:db:69:1f:89:6e:
#         54:3f:d7:89:5d:e7:b5:cd:0c:be:3f:7d:78:38:01:d2:b6:67:
#         a6:cf:58:48:94:1a:45:fd:90:73:49:ca:b5:43:a0:21:62:8d:
#         49:04:26:aa:f8:1f:2e:3f:f2:2e:a1:f2:ab:f4:06:1e:b0:2d:
#         c4:c1:70:42:3d:fd:c3:51:49:88:00:0e:ca:82:0d:9b:79:02:
#         e2:c0:2e:93:df:e4:f2:f1

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GA CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy0+zAJs9Nt350UlqaxBJ
H+zYK7LG+DKBKUOVTJoZIyEVRd7jyBxRVVuuk+g3/ytr6dTqvirdqFEr12bDYVxg
Asj1znJ7O7jyTmUIms2kahnBAbtzptf2w93NvKSLtZlhuAGio9RN1AU9ka34tAhx
ZK9w8RxrfvbDd50kc3vkDIzh2TbhmYsFmQvtRTEJysIA2/dyoJaqlYfQjse2YXMN
dmaM3Bu0Y6Kff5MTMPGhJ9vZ/yxViJGg4E8HsChWjBgbl0SOid3gF27nKu+POQox
hILYQBRJLnpB5Kf+42TMwVlxSywhp1t94B3RLoGbw9ho972WG6xwsRYUC9tguSYB
BQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GA CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            41:3d:72:c7:f4:6b:1f:81:43:7d:f1:d2:28:54:df:9a
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CH, O=WISeKey, OU=Copyright (c) 2005, OU=OISTE Foundation Endorsed, CN=OISTE WISeKey Global Root GA CA
#        Validity
#            Not Before: Dec 11 16:03:44 2005 GMT
#            Not After : Dec 11 16:09:51 2037 GMT
#        Subject: C=CH, O=WISeKey, OU=Copyright (c) 2005, OU=OISTE Foundation Endorsed, CN=OISTE WISeKey Global Root GA CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:cb:4f:b3:00:9b:3d:36:dd:f9:d1:49:6a:6b:10:
#                    49:1f:ec:d8:2b:b2:c6:f8:32:81:29:43:95:4c:9a:
#                    19:23:21:15:45:de:e3:c8:1c:51:55:5b:ae:93:e8:
#                    37:ff:2b:6b:e9:d4:ea:be:2a:dd:a8:51:2b:d7:66:
#                    c3:61:5c:60:02:c8:f5:ce:72:7b:3b:b8:f2:4e:65:
#                    08:9a:cd:a4:6a:19:c1:01:bb:73:a6:d7:f6:c3:dd:
#                    cd:bc:a4:8b:b5:99:61:b8:01:a2:a3:d4:4d:d4:05:
#                    3d:91:ad:f8:b4:08:71:64:af:70:f1:1c:6b:7e:f6:
#                    c3:77:9d:24:73:7b:e4:0c:8c:e1:d9:36:e1:99:8b:
#                    05:99:0b:ed:45:31:09:ca:c2:00:db:f7:72:a0:96:
#                    aa:95:87:d0:8e:c7:b6:61:73:0d:76:66:8c:dc:1b:
#                    b4:63:a2:9f:7f:93:13:30:f1:a1:27:db:d9:ff:2c:
#                    55:88:91:a0:e0:4f:07:b0:28:56:8c:18:1b:97:44:
#                    8e:89:dd:e0:17:6e:e7:2a:ef:8f:39:0a:31:84:82:
#                    d8:40:14:49:2e:7a:41:e4:a7:fe:e3:64:cc:c1:59:
#                    71:4b:2c:21:a7:5b:7d:e0:1d:d1:2e:81:9b:c3:d8:
#                    68:f7:bd:96:1b:ac:70:b1:16:14:0b:db:60:b9:26:
#                    01:05
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                B3:03:7E:AE:36:BC:B0:79:D1:DC:94:26:B6:11:BE:21:B2:69:86:94
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         4b:a1:ff:0b:87:6e:b3:f9:c1:43:b1:48:f3:28:c0:1d:2e:c9:
#         09:41:fa:94:00:1c:a4:a4:ab:49:4f:8f:3d:1e:ef:4d:6f:bd:
#         bc:a4:f6:f2:26:30:c9:10:ca:1d:88:fb:74:19:1f:85:45:bd:
#         b0:6c:51:f9:36:7e:db:f5:4c:32:3a:41:4f:5b:47:cf:e8:0b:
#         2d:b6:c4:19:9d:74:c5:47:c6:3b:6a:0f:ac:14:db:3c:f4:73:
#         9c:a9:05:df:00:dc:74:78:fa:f8:35:60:59:02:13:18:7c:bc:
#         fb:4d:b0:20:6d:43:bb:60:30:7a:67:33:5c:c5:99:d1:f8:2d:
#         39:52:73:fb:8c:aa:97:25:5c:72:d9:08:1e:ab:4e:3c:e3:81:
#         31:9f:03:a6:fb:c0:fe:29:88:55:da:84:d5:50:03:b6:e2:84:
#         a3:a6:36:aa:11:3a:01:e1:18:4b:d6:44:68:b3:3d:f9:53:74:
#         84:b3:46:91:46:96:00:b7:80:2c:b6:e1:e3:10:e2:db:a2:e7:
#         28:8f:01:96:62:16:3e:00:e3:1c:a5:36:81:18:a2:4c:52:76:
#         c0:11:a3:6e:e6:1d:ba:e3:5a:be:36:53:c5:3e:75:8f:86:69:
#         29:58:53:b5:9c:bb:6f:9f:5c:c5:18:ec:dd:2f:e1:98:c9:fc:
#         be:df:0a:0d

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GB CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2Be3HEokKtaXscriHvt9
OO+Y9bI5mE4nuBFde9IllIiCFSZqGzG7qFshISvYD06fWvGxWuR51jIjK+FTzJlF
XHtPrby/h0oLS5daqPZI7H17Dc0hBt+eFf1Biki3IPShehtX1F1Q/7pn2COZH8g/
497/b1t3sWtuuMlk9+HKQUYOKXHQuSP8yYFfTvdv37+ErXNku7dCjmn21HYdfp2n
uFeKUWdy19SouJVUQHMD9ur06/4oQnc/nSMbsrY9gBQHTC5P99UKFg29ZkM3fiND
ecNAhvVMKdqOmq0NpQSHiB6F4+lT1ZvIiwNjeOvgGUpuuy9rM2RYk61pv48b74JI
xwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GB CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:b1:20:52:74:f0:85:87:46:b3:f8:23:1a:f6:c2:c0
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=WISeKey, OU=OISTE Foundation Endorsed, CN=OISTE WISeKey Global Root GB CA
#        Validity
#            Not Before: Dec  1 15:00:32 2014 GMT
#            Not After : Dec  1 15:10:31 2039 GMT
#        Subject: C=CH, O=WISeKey, OU=OISTE Foundation Endorsed, CN=OISTE WISeKey Global Root GB CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d8:17:b7:1c:4a:24:2a:d6:97:b1:ca:e2:1e:fb:
#                    7d:38:ef:98:f5:b2:39:98:4e:27:b8:11:5d:7b:d2:
#                    25:94:88:82:15:26:6a:1b:31:bb:a8:5b:21:21:2b:
#                    d8:0f:4e:9f:5a:f1:b1:5a:e4:79:d6:32:23:2b:e1:
#                    53:cc:99:45:5c:7b:4f:ad:bc:bf:87:4a:0b:4b:97:
#                    5a:a8:f6:48:ec:7d:7b:0d:cd:21:06:df:9e:15:fd:
#                    41:8a:48:b7:20:f4:a1:7a:1b:57:d4:5d:50:ff:ba:
#                    67:d8:23:99:1f:c8:3f:e3:de:ff:6f:5b:77:b1:6b:
#                    6e:b8:c9:64:f7:e1:ca:41:46:0e:29:71:d0:b9:23:
#                    fc:c9:81:5f:4e:f7:6f:df:bf:84:ad:73:64:bb:b7:
#                    42:8e:69:f6:d4:76:1d:7e:9d:a7:b8:57:8a:51:67:
#                    72:d7:d4:a8:b8:95:54:40:73:03:f6:ea:f4:eb:fe:
#                    28:42:77:3f:9d:23:1b:b2:b6:3d:80:14:07:4c:2e:
#                    4f:f7:d5:0a:16:0d:bd:66:43:37:7e:23:43:79:c3:
#                    40:86:f5:4c:29:da:8e:9a:ad:0d:a5:04:87:88:1e:
#                    85:e3:e9:53:d5:9b:c8:8b:03:63:78:eb:e0:19:4a:
#                    6e:bb:2f:6b:33:64:58:93:ad:69:bf:8f:1b:ef:82:
#                    48:c7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                35:0F:C8:36:63:5E:E2:A3:EC:F9:3B:66:15:CE:51:52:E3:91:9A:3D
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         40:4c:fb:87:b2:99:81:90:7e:9d:c5:b0:b0:26:cd:88:7b:2b:
#         32:8d:6e:b8:21:71:58:97:7d:ae:37:14:af:3e:e7:f7:9a:e2:
#         7d:f6:71:98:99:04:aa:43:74:78:a3:e3:49:61:3e:73:8c:4d:
#         94:e0:f9:71:c4:b6:16:0e:53:78:1f:d6:a2:87:2f:02:39:81:
#         29:3c:af:15:98:21:30:fe:28:90:00:8c:d1:e1:cb:fa:5e:c8:
#         fd:f8:10:46:3b:a2:78:42:91:17:74:55:0a:de:50:67:4d:66:
#         d1:a7:ff:fd:d9:c0:b5:a8:a3:8a:ce:66:f5:0f:43:cd:a7:2b:
#         57:7b:63:46:6a:aa:2e:52:d8:f4:ed:e1:6d:ad:29:90:78:48:
#         ba:e1:23:aa:a3:89:ec:b5:ab:96:c0:b4:4b:a2:1d:97:9e:7a:
#         f2:6e:40:71:df:68:f1:65:4d:ce:7c:05:df:53:65:a9:a5:f0:
#         b1:97:04:70:15:46:03:98:d4:d2:bf:54:b4:a0:58:7d:52:6f:
#         da:56:26:62:d4:d8:db:89:31:6f:1c:f0:22:c2:d3:62:1c:35:
#         cd:4c:69:15:54:1a:90:98:de:eb:1e:5f:ca:77:c7:cb:8e:3d:
#         43:69:9c:9a:58:d0:24:3b:df:1b:40:96:7e:35:ad:81:c7:4e:
#         71:ba:88:13

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GC CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAETOlQwMYPchi82PG6s4nieUqjFqdrVCTb
Uf/q9Akkwwsin8tqJ4KBDdLArzHkdIJuyiXZjHWd8dvQmqJLIX4Wp2OQ0jnUsYd4
XxiWD1AbNTcPasbc2RNNpI6QN+a9WzGR
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OISTE WISeKey Global Root GC CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICaTCCAe+gAwIBAgIQISpWDK7aDKtARb8roi066jAKBggqhkjOPQQDAzBtMQsw
CQYDVQQGEwJDSDEQMA4GA1UEChMHV0lTZUtleTEiMCAGA1UECxMZT0lTVEUgRm91
bmRhdGlvbiBFbmRvcnNlZDEoMCYGA1UEAxMfT0lTVEUgV0lTZUtleSBHbG9iYWwg
Um9vdCBHQyBDQTAeFw0xNzA1MDkwOTQ4MzRaFw00MjA1MDkwOTU4MzNaMG0xCzAJ
BgNVBAYTAkNIMRAwDgYDVQQKEwdXSVNlS2V5MSIwIAYDVQQLExlPSVNURSBGb3Vu
ZGF0aW9uIEVuZG9yc2VkMSgwJgYDVQQDEx9PSVNURSBXSVNlS2V5IEdsb2JhbCBS
b290IEdDIENBMHYwEAYHKoZIzj0CAQYFK4EEACIDYgAETOlQwMYPchi82PG6s4ni
eUqjFqdrVCTbUf/q9Akkwwsin8tqJ4KBDdLArzHkdIJuyiXZjHWd8dvQmqJLIX4W
p2OQ0jnUsYd4XxiWD1AbNTcPasbc2RNNpI6QN+a9WzGRo1QwUjAOBgNVHQ8BAf8E
BAMCAQYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUSIcUrOPDnpBgOtfKie7T
rYy0UGYwEAYJKwYBBAGCNxUBBAMCAQAwCgYIKoZIzj0EAwMDaAAwZQIwJsdpW9zV
57LnyAyMjMPdeYwbY9XJUpROTYJKcx6ygISpJcBMWm1JKWB4E+J+SOtkAjEA2zQg
Mgj/mkkCtojeFK9dbJlxjRo/i9fgojaGHAeCOnZT/cKi7e97sIBPWA9LUzm9
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            21:2a:56:0c:ae:da:0c:ab:40:45:bf:2b:a2:2d:3a:ea
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=CH, O=WISeKey, OU=OISTE Foundation Endorsed, CN=OISTE WISeKey Global Root GC CA
#        Validity
#            Not Before: May  9 09:48:34 2017 GMT
#            Not After : May  9 09:58:33 2042 GMT
#        Subject: C=CH, O=WISeKey, OU=OISTE Foundation Endorsed, CN=OISTE WISeKey Global Root GC CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:4c:e9:50:c0:c6:0f:72:18:bc:d8:f1:ba:b3:89:
#                    e2:79:4a:a3:16:a7:6b:54:24:db:51:ff:ea:f4:09:
#                    24:c3:0b:22:9f:cb:6a:27:82:81:0d:d2:c0:af:31:
#                    e4:74:82:6e:ca:25:d9:8c:75:9d:f1:db:d0:9a:a2:
#                    4b:21:7e:16:a7:63:90:d2:39:d4:b1:87:78:5f:18:
#                    96:0f:50:1b:35:37:0f:6a:c6:dc:d9:13:4d:a4:8e:
#                    90:37:e6:bd:5b:31:91
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                48:87:14:AC:E3:C3:9E:90:60:3A:D7:CA:89:EE:D3:AD:8C:B4:50:66
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:26:c7:69:5b:dc:d5:e7:b2:e7:c8:0c:8c:8c:c3:
#         dd:79:8c:1b:63:d5:c9:52:94:4e:4d:82:4a:73:1e:b2:80:84:
#         a9:25:c0:4c:5a:6d:49:29:60:78:13:e2:7e:48:eb:64:02:31:
#         00:db:34:20:32:08:ff:9a:49:02:b6:88:de:14:af:5d:6c:99:
#         71:8d:1a:3f:8b:d7:e0:a2:36:86:1c:07:82:3a:76:53:fd:c2:
#         a2:ed:ef:7b:b0:80:4f:58:0f:4b:53:39:bd

[p11-kit-object-v1]
label: "OpenTrust Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OpenTrust Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:a1:69:1b:bf:bd:b9:bd:52:96:8f:23:e8:48:bf:26:11
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=FR, O=OpenTrust, CN=OpenTrust Root CA G2
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C=FR, O=OpenTrust, CN=OpenTrust Root CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:cc:b6:57:a5:33:94:10:81:32:53:df:61:7e:0f:
#                    76:39:cf:5c:c2:53:75:1d:49:7a:96:38:dd:a2:73:
#                    6a:f1:6f:de:5e:a2:5a:b9:71:21:be:36:d9:a1:fc:
#                    bc:ee:6c:a8:7c:34:1a:71:1a:e8:1a:d8:5f:0e:44:
#                    06:ed:a7:e0:f3:d2:61:0b:e0:32:a2:96:d1:38:f0:
#                    c2:da:01:17:fc:e4:ac:4f:e8:ee:89:1e:74:ab:4f:
#                    bf:1e:09:b6:36:6a:56:f3:e1:ee:96:89:66:24:06:
#                    e4:cd:42:3a:4a:dd:e0:9a:b0:c4:82:45:b3:fe:c9:
#                    ab:5c:7c:3e:c9:eb:17:2f:0c:7d:6e:ae:a5:8f:c8:
#                    ac:25:0a:6f:fa:d5:45:98:d2:35:09:f6:03:43:94:
#                    fe:d9:bf:20:95:79:80:98:8a:d9:89:35:bb:51:1b:
#                    a4:37:7d:fc:99:3b:ab:ff:bf:ac:0d:8f:43:b1:99:
#                    7b:16:10:7e:1d:6f:47:c4:15:8f:04:96:08:06:42:
#                    04:f8:84:d6:1d:bc:91:a6:42:be:49:d5:6a:88:3f:
#                    bc:2d:51:d1:9e:8d:e0:52:cc:57:dd:35:35:58:db:
#                    b4:8f:24:88:e4:8b:df:dc:6b:54:d2:81:2b:b2:ce:
#                    92:4b:1c:1f:46:fa:1d:d8:92:cb:76:67:b5:09:99:
#                    09:e5:ac:17:14:55:70:c6:3c:a0:56:0a:03:b3:dc:
#                    62:19:df:c8:b5:30:7f:f5:3c:26:75:11:bd:d7:1b:
#                    b3:87:9e:07:af:65:71:e5:a0:cf:1a:a7:09:10:1d:
#                    93:89:66:5b:e8:3c:62:32:b5:b5:3a:6e:e9:85:01:
#                    8b:9e:43:8c:67:73:28:59:5b:eb:e3:dc:2c:cc:a5:
#                    26:72:62:12:b4:e6:9c:83:44:f6:51:a4:e2:c0:7a:
#                    24:57:ca:0e:a5:3f:3a:b5:3b:8b:e5:76:ee:70:e6:
#                    92:de:16:5c:28:5b:97:19:27:92:fe:7a:92:54:ce:
#                    93:39:0a:16:87:bc:63:b3:f5:b1:93:5c:e0:6e:b7:
#                    d0:ea:f9:62:32:88:44:fb:bf:27:28:b6:30:95:5d:
#                    12:28:b9:95:be:8f:53:18:e5:a2:18:16:e2:56:a4:
#                    b2:2c:10:f5:1d:37:a6:f8:b7:f6:d0:59:5c:89:f7:
#                    c2:d5:b5:94:74:d1:d5:fe:1b:b6:f0:e6:d6:1e:7b:
#                    d2:3c:cb:a8:e3:f5:18:f3:21:1f:6e:ef:4d:68:06:
#                    7b:2d:5d:6e:43:89:a6:c0:f9:a0:bf:82:1e:cf:53:
#                    7f:b4:eb:2c:db:5d:f6:6a:7d:40:24:05:72:89:38:
#                    01:93:cb:71:c2:39:5d:06:11:f6:6f:78:f8:37:0d:
#                    39:84:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:39:FA:42:22:F7:E6:89:00:4D:5E:7D:33:83:CB:B8:6E:77:86:AF
#            X509v3 Authority Key Identifier: 
#                keyid:6A:39:FA:42:22:F7:E6:89:00:4D:5E:7D:33:83:CB:B8:6E:77:86:AF
#
#    Signature Algorithm: sha512WithRSAEncryption
#         98:cb:ab:40:3c:e5:33:02:97:7f:2d:87:a6:8f:d4:5e:4a:af:
#         b8:1e:e7:bb:71:fb:80:64:25:a9:b3:1a:3e:68:5d:27:26:a7:
#         ba:2a:e1:f0:57:83:0a:64:4f:1e:22:74:1b:e9:90:5f:f0:ac:
#         cf:ff:4f:68:7a:38:a4:10:6c:0d:b1:c7:a4:77:80:18:b6:a2:
#         28:44:76:a7:34:9d:71:84:2f:ca:59:d2:47:88:99:41:22:c9:
#         30:98:61:6e:3d:a8:a8:05:6d:d1:1f:c0:51:44:56:7f:27:35:
#         02:dd:5e:98:0a:42:eb:30:bf:8d:a1:9b:51:aa:3b:ea:93:46:
#         64:c5:00:79:de:21:6b:f6:57:a0:86:d7:06:72:ec:70:46:4b:
#         8b:73:dd:a0:21:75:3e:dc:1d:c0:8f:d3:4f:73:1c:85:d9:fe:
#         7f:62:c8:95:6f:b6:d3:7b:8c:ba:53:c2:6f:9b:44:4c:79:d0:
#         1d:70:b3:d7:9f:02:f4:b2:07:b0:c7:e5:f8:ad:23:0e:a6:56:
#         c9:29:12:77:48:d9:2f:46:fd:3b:f0:fc:74:70:92:a5:8e:38:
#         08:1f:64:30:b6:b7:4b:fb:36:ac:10:8e:a0:52:33:63:9d:03:
#         35:56:c5:69:bd:c6:23:5a:27:94:f6:a4:12:f8:2d:33:3c:a1:
#         56:a5:5f:d6:19:e9:ed:7c:08:bd:77:cd:27:64:cc:94:da:4e:
#         46:50:87:e0:f9:c1:53:80:1e:bb:ad:fb:47:52:8b:1b:fd:a2:
#         f9:de:0e:22:b7:3d:33:59:6c:d4:de:f5:95:06:32:0d:51:19:
#         41:5c:3e:4f:06:f7:b9:2b:80:27:f6:a3:aa:7a:7c:06:e1:43:
#         c3:13:39:62:1a:36:bd:e0:28:2e:94:02:e4:29:2e:60:55:ae:
#         40:3d:b0:74:92:5e:f0:20:64:96:3f:5f:45:5d:88:b5:8a:da:
#         02:a0:5b:45:54:de:38:3d:09:c0:a8:4a:65:46:16:fc:aa:bf:
#         54:4e:4d:5b:be:38:43:b7:28:ca:8b:33:aa:1a:25:ba:25:5c:
#         29:2f:5b:4a:6e:8c:ea:2d:9c:2a:f6:05:76:e0:77:97:80:88:
#         dd:67:13:6f:1d:68:24:8b:4f:b7:74:81:e5:f4:60:9f:7a:55:
#         d7:3e:37:da:16:6b:3e:77:ac:ae:18:70:95:08:79:29:03:8a:
#         fe:c1:3b:b3:3f:1a:0f:a4:3b:5e:1f:58:a1:95:c9:ab:2f:73:
#         4a:d0:2d:6e:9a:59:0f:55:18:78:2d:3c:51:a6:97:8b:e6:bb:
#         b2:70:aa:4c:11:de:ff:7c:2b:37:d4:7a:d1:77:34:8f:e7:f9:
#         42:f7:3c:81:0c:4b:52:0a

[p11-kit-object-v1]
label: "OpenTrust Root CA G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAESu5Yrk3KZt4GOqMR/OAY8G4cui0wDInZ
1u6bc4OpIxWML1mKWt0U6p1ZK0O3BuwytrruQbWtXaGFzOodFGajZ35G4pTz57ZW
oRVZoU83l7kiHr0R6/SyH17DFJrl2ZeZ
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "OpenTrust Root CA G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:20:e6:f8:4c:fc:24:b0:be:05:40:ac:da:83:1b:34:60:3f
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=FR, O=OpenTrust, CN=OpenTrust Root CA G3
#        Validity
#            Not Before: May 26 00:00:00 2014 GMT
#            Not After : Jan 15 00:00:00 2038 GMT
#        Subject: C=FR, O=OpenTrust, CN=OpenTrust Root CA G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:4a:ee:58:ae:4d:ca:66:de:06:3a:a3:11:fc:e0:
#                    18:f0:6e:1c:ba:2d:30:0c:89:d9:d6:ee:9b:73:83:
#                    a9:23:15:8c:2f:59:8a:5a:dd:14:ea:9d:59:2b:43:
#                    b7:06:ec:32:b6:ba:ee:41:b5:ad:5d:a1:85:cc:ea:
#                    1d:14:66:a3:67:7e:46:e2:94:f3:e7:b6:56:a1:15:
#                    59:a1:4f:37:97:b9:22:1e:bd:11:eb:f4:b2:1f:5e:
#                    c3:14:9a:e5:d9:97:99
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                47:77:C3:14:8B:62:39:0C:C9:6F:E1:50:4D:D0:10:58:DC:95:88:6D
#            X509v3 Authority Key Identifier: 
#                keyid:47:77:C3:14:8B:62:39:0C:C9:6F:E1:50:4D:D0:10:58:DC:95:88:6D
#
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:8f:a8:dc:9d:ba:0c:04:17:fa:15:e9:3d:2f:
#         29:01:97:bf:81:16:33:40:93:6c:fc:f9:ed:80:70:6f:aa:8f:
#         db:84:c2:8b:f5:35:ca:06:dc:64:6f:68:16:e1:8f:91:b9:02:
#         31:00:d8:4b:a5:cb:c2:d0:08:6c:e9:18:fb:5a:dd:4d:5f:24:
#         0b:b0:00:21:25:ef:8f:a7:04:26:71:e2:7c:69:e5:5d:9a:f8:
#         41:1f:3b:39:93:93:9d:55:ea:cd:8d:f1:fb:c1

[p11-kit-object-v1]
label: "PersonalID Trustworthy RootCA 2011"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "PersonalID Trustworthy RootCA 2011"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIGMjCCBBqgAwIBAgIQWMv5ZJZxdJVA9K0IrGTk4zANBgkqhkiG9w0BAQsFADBz
MQswCQYDVQQGEwJJTDEYMBYGA1UECgwPUGVyc29uYWxJRCBMdGQuMR0wGwYDVQQL
DBRDZXJ0aWZpY2F0ZSBTZXJ2aWNlczErMCkGA1UEAwwiUGVyc29uYWxJRCBUcnVz
dHdvcnRoeSBSb290Q0EgMjAxMTAeFw0xMTA5MDEwODM1MjFaFw00MTA5MDEwODQ1
MTZaMHMxCzAJBgNVBAYTAklMMRgwFgYDVQQKDA9QZXJzb25hbElEIEx0ZC4xHTAb
BgNVBAsMFENlcnRpZmljYXRlIFNlcnZpY2VzMSswKQYDVQQDDCJQZXJzb25hbElE
IFRydXN0d29ydGh5IFJvb3RDQSAyMDExMIICIjANBgkqhkiG9w0BAQEFAAOCAg8A
MIICCgKCAgEAsJWMYP4FDmoz7feL4/LV8nzTVkJU9yvyiKX157dshwErab4FSUTY
2yF6KteKMaEhEJ7T4m5jgoVUhE0oJhviE/dR+y/rEtU9OYxkn6QTh8PYyfopI44J
j0lGxNTJV1hpnxfPc3Sl7soYucfBMM1POjUIU/jsGvtvMO32nwnw8NDEjjt5Ti6F
IlzUfXDR/5K6H9RVU2e6KFgt9xOM/KULnDimRhwO6Kp4K/UKMNM7YIbIf6WbomMB
L9DTEiWFfpbNMbHkm47qLJOkYqg31faP3yGa0z4d4VARcFSbBBedTathzo8qLO95
5ndFWdZo1bZLmquRSw5hF7lYwp5moY+JwUMgQrB/gJxKKrd6IEHGTcSSb3p+XVu5
o8lOyuVQZbwAAHlH8EUEsCL7DpiqYR1PYGNyj7WwBJR/EKwZPydiadYcV905Tzjq
AJr9KJ1AJsBAncSgSchBtWc9oEuUKRKpWCdZBH+P0Yx+DLMIFzSsj7lcvelwoX7C
pWVh6bYQUI/c5HRh8V9ye39cLy18q9ZDMRAcWXfKSEoYomQLAFlnx9TKw5saCFIV
vtfFxrcv5mKcpsfY3vAV+645VS1vUHUu/aAHtF96fgSL9pmide3JO9U9z2dSPT7v
H3CaGDynIAZJDLFlrDO71H9HaYj2ioHundS0xy8D6K4ayVYFZ2moyIECAwEAAaOB
wTCBvjALBgNVHQ8EBAMCAYYwEgYDVR0TAQH/BAgwBgEB/wIBAjAdBgNVHQ4EFgQU
x38LyC9Xjiny9gGL6yelVo79pB4wEAYJKwYBBAGCNxUBBAMCAQAwagYDVR0gBGMw
YTBfBggrBgEEAeEYATBTMFEGCCsGAQUFBwIBFkVodHRwOi8vd3d3LmljYS5jby5p
bC9yZXBvc2l0b3J5L2Nwcy9QZXJzb25hbElEX1ByYWN0aWNlX1N0YXRlbWVudC5w
ZGYwDQYJKoZIhvcNAQELBQADggIBAEJliyT6khU0Ghz6yM5Nei9739ADQRzUpOH7
6MytCd0dpAjZqCB9l58MSfGlwubVd0aXfqSQonnpvRpeNIJmCVL8UNGP0Kscov//
Pe7+I/i/I7PNvuH3z+TYEuOUyE7M13uwN5t36u1cgcjMj8454+RlXd6C2I8jaeFR
r1+3T5BppJllU7rm/a94Z5RKyMN/jAJPSuaHmPY4t0j4bSh/98ZsJVT9Ltbq2gbi
sf0HaPCvgIy0wul0FaQav7nKQ1sS54VHXlID8JHg6VBx1CECLHuGkXA2xpy2dPkq
Vfch+2+gBl3XMBLyUfHJODaPyGZhQdnHS4JoUqP1iQwVvE4qlawxaacb4tTXSPSR
9QN8eRY+LA1p4Yo3Hp98GFVBL1/npHKbVfPjAbACpYQSakCmq+ShrOsD2bxfJFYn
rSDgZjVFPUcJ8AWxb3F+QLDQFV4rrFKBqPuD9SxXRIY05BRq4899mnfYbEhcy5rh
pvu/EaIG5R9xvTS1z73EQhbFKfjUwEyKst7FlIKGm8zgqQZEMSQkTfrt4UIlZqLB
14AX73qVZUM+ZtMF8QHkQlZEAHhrnTYg+2X/QFzoaDUf4SagggN2A8twRhEkrt8v
YP3xJwADvUsn27yclzdRK+V4tME2kBCM/z0A1LpIn0jKhzGa7cSaU9LdcxQ/CYKh
XWVOTSbi
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            58:cb:f9:64:96:71:74:95:40:f4:ad:08:ac:64:e4:e3
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=IL, O=PersonalID Ltd., OU=Certificate Services, CN=PersonalID Trustworthy RootCA 2011
#        Validity
#            Not Before: Sep  1 08:35:21 2011 GMT
#            Not After : Sep  1 08:45:16 2041 GMT
#        Subject: C=IL, O=PersonalID Ltd., OU=Certificate Services, CN=PersonalID Trustworthy RootCA 2011
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:95:8c:60:fe:05:0e:6a:33:ed:f7:8b:e3:f2:
#                    d5:f2:7c:d3:56:42:54:f7:2b:f2:88:a5:f5:e7:b7:
#                    6c:87:01:2b:69:be:05:49:44:d8:db:21:7a:2a:d7:
#                    8a:31:a1:21:10:9e:d3:e2:6e:63:82:85:54:84:4d:
#                    28:26:1b:e2:13:f7:51:fb:2f:eb:12:d5:3d:39:8c:
#                    64:9f:a4:13:87:c3:d8:c9:fa:29:23:8e:09:8f:49:
#                    46:c4:d4:c9:57:58:69:9f:17:cf:73:74:a5:ee:ca:
#                    18:b9:c7:c1:30:cd:4f:3a:35:08:53:f8:ec:1a:fb:
#                    6f:30:ed:f6:9f:09:f0:f0:d0:c4:8e:3b:79:4e:2e:
#                    85:22:5c:d4:7d:70:d1:ff:92:ba:1f:d4:55:53:67:
#                    ba:28:58:2d:f7:13:8c:fc:a5:0b:9c:38:a6:46:1c:
#                    0e:e8:aa:78:2b:f5:0a:30:d3:3b:60:86:c8:7f:a5:
#                    9b:a2:63:01:2f:d0:d3:12:25:85:7e:96:cd:31:b1:
#                    e4:9b:8e:ea:2c:93:a4:62:a8:37:d5:f6:8f:df:21:
#                    9a:d3:3e:1d:e1:50:11:70:54:9b:04:17:9d:4d:ab:
#                    61:ce:8f:2a:2c:ef:79:e6:77:45:59:d6:68:d5:b6:
#                    4b:9a:ab:91:4b:0e:61:17:b9:58:c2:9e:66:a1:8f:
#                    89:c1:43:20:42:b0:7f:80:9c:4a:2a:b7:7a:20:41:
#                    c6:4d:c4:92:6f:7a:7e:5d:5b:b9:a3:c9:4e:ca:e5:
#                    50:65:bc:00:00:79:47:f0:45:04:b0:22:fb:0e:98:
#                    aa:61:1d:4f:60:63:72:8f:b5:b0:04:94:7f:10:ac:
#                    19:3f:27:62:69:d6:1c:57:dd:39:4f:38:ea:00:9a:
#                    fd:28:9d:40:26:c0:40:9d:c4:a0:49:c8:41:b5:67:
#                    3d:a0:4b:94:29:12:a9:58:27:59:04:7f:8f:d1:8c:
#                    7e:0c:b3:08:17:34:ac:8f:b9:5c:bd:e9:70:a1:7e:
#                    c2:a5:65:61:e9:b6:10:50:8f:dc:e4:74:61:f1:5f:
#                    72:7b:7f:5c:2f:2d:7c:ab:d6:43:31:10:1c:59:77:
#                    ca:48:4a:18:a2:64:0b:00:59:67:c7:d4:ca:c3:9b:
#                    1a:08:52:15:be:d7:c5:c6:b7:2f:e6:62:9c:a6:c7:
#                    d8:de:f0:15:fb:ae:39:55:2d:6f:50:75:2e:fd:a0:
#                    07:b4:5f:7a:7e:04:8b:f6:99:a2:75:ed:c9:3b:d5:
#                    3d:cf:67:52:3d:3e:ef:1f:70:9a:18:3c:a7:20:06:
#                    49:0c:b1:65:ac:33:bb:d4:7f:47:69:88:f6:8a:81:
#                    ee:9d:d4:b4:c7:2f:03:e8:ae:1a:c9:56:05:67:69:
#                    a8:c8:81
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:2
#            X509v3 Subject Key Identifier: 
#                C7:7F:0B:C8:2F:57:8E:29:F2:F6:01:8B:EB:27:A5:56:8E:FD:A4:1E
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.12440.1
#                  CPS: http://www.ica.co.il/repository/cps/PersonalID_Practice_Statement.pdf
#
#    Signature Algorithm: sha256WithRSAEncryption
#         42:65:8b:24:fa:92:15:34:1a:1c:fa:c8:ce:4d:7a:2f:7b:df:
#         d0:03:41:1c:d4:a4:e1:fb:e8:cc:ad:09:dd:1d:a4:08:d9:a8:
#         20:7d:97:9f:0c:49:f1:a5:c2:e6:d5:77:46:97:7e:a4:90:a2:
#         79:e9:bd:1a:5e:34:82:66:09:52:fc:50:d1:8f:d0:ab:1c:a2:
#         ff:ff:3d:ee:fe:23:f8:bf:23:b3:cd:be:e1:f7:cf:e4:d8:12:
#         e3:94:c8:4e:cc:d7:7b:b0:37:9b:77:ea:ed:5c:81:c8:cc:8f:
#         ce:39:e3:e4:65:5d:de:82:d8:8f:23:69:e1:51:af:5f:b7:4f:
#         90:69:a4:99:65:53:ba:e6:fd:af:78:67:94:4a:c8:c3:7f:8c:
#         02:4f:4a:e6:87:98:f6:38:b7:48:f8:6d:28:7f:f7:c6:6c:25:
#         54:fd:2e:d6:ea:da:06:e2:b1:fd:07:68:f0:af:80:8c:b4:c2:
#         e9:74:15:a4:1a:bf:b9:ca:43:5b:12:e7:85:47:5e:52:03:f0:
#         91:e0:e9:50:71:d4:21:02:2c:7b:86:91:70:36:c6:9c:b6:74:
#         f9:2a:55:f7:21:fb:6f:a0:06:5d:d7:30:12:f2:51:f1:c9:38:
#         36:8f:c8:66:61:41:d9:c7:4b:82:68:52:a3:f5:89:0c:15:bc:
#         4e:2a:95:ac:31:69:a7:1b:e2:d4:d7:48:f4:91:f5:03:7c:79:
#         16:3e:2c:0d:69:e1:8a:37:1e:9f:7c:18:55:41:2f:5f:e7:a4:
#         72:9b:55:f3:e3:01:b0:02:a5:84:12:6a:40:a6:ab:e4:a1:ac:
#         eb:03:d9:bc:5f:24:56:27:ad:20:e0:66:35:45:3d:47:09:f0:
#         05:b1:6f:71:7e:40:b0:d0:15:5e:2b:ac:52:81:a8:fb:83:f5:
#         2c:57:44:86:34:e4:14:6a:e3:cf:7d:9a:77:d8:6c:48:5c:cb:
#         9a:e1:a6:fb:bf:11:a2:06:e5:1f:71:bd:34:b5:cf:bd:c4:42:
#         16:c5:29:f8:d4:c0:4c:8a:b2:de:c5:94:82:86:9b:cc:e0:a9:
#         06:44:31:24:24:4d:fa:ed:e1:42:25:66:a2:c1:d7:80:17:ef:
#         7a:95:65:43:3e:66:d3:05:f1:01:e4:42:56:44:00:78:6b:9d:
#         36:20:fb:65:ff:40:5c:e8:68:35:1f:e1:26:a0:82:03:76:03:
#         cb:70:46:11:24:ae:df:2f:60:fd:f1:27:00:03:bd:4b:27:db:
#         bc:9c:97:37:51:2b:e5:78:b4:c1:36:90:10:8c:ff:3d:00:d4:
#         ba:48:9f:48:ca:87:31:9a:ed:c4:9a:53:d2:dd:73:14:3f:09:
#         82:a1:5d:65:4e:4d:26:e2

[p11-kit-object-v1]
label: "QuoVadis Root CA 1 G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 1 G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFYDCCA0igAwIBAgIUeFhfLq0sGUvjNwc1NBMotZbUZZMwDQYJKoZIhvcNAQEL
BQAwSDELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxHjAc
BgNVBAMTFVF1b1ZhZGlzIFJvb3QgQ0EgMSBHMzAeFw0xMjAxMTIxNzI3NDRaFw00
MjAxMTIxNzI3NDRaMEgxCzAJBgNVBAYTAkJNMRkwFwYDVQQKExBRdW9WYWRpcyBM
aW1pdGVkMR4wHAYDVQQDExVRdW9WYWRpcyBSb290IENBIDEgRzMwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQCgvlAQjunybEC0BJyFuTHK3C3kEakEPBtV
wedYMB0ktMPvhd6MLOHBPd+C5k+tR4ds7FtJwUrVu4/sh6x/gpqG7D0DmVIB0jWe
rNrwU8lmPNSsAgHaJNM7qAJGr6Qc4/hzWHa39g6QDbXwz8z6+cZM5cOGMAqNF341
68Xfuw6cwI2H44g4hWf6Pser4BOcBRiYz5P1sZK0/CPTz9XEJ0ngnjybCKOLXSoh
4Pw5qlPafX7PGglTvF0FBM+hSo+LdoINofjSxxR3W5A2B4GbPgb6Ul5jxaYA/qXp
UhtStZI5cgMJYr2wYBZupt0lwgNm3fME0UDiTouG9G/lg6AnhF4EwfWQvTA9xO+o
abw4m6SkltFi2mnAAZauy8RRNOoMqv8hjlmPSlzkYZqn0ukqeI1RPToV7qJZjqlc
3sX5kCLliEVx3ZGZbHqfPT2YfF72vhZooF6uCyP8Wg+qInYtyaEQHeTTRCOQiJ/G
KubX9ZqzWB4vMIkIG1SitZgj7Ah3HJVdYdHLiZxfokqRmu8hqkkWCKi9YSgxyXSt
hfbZxbGL0eUQMk1fiyA6PEkfM4VZDdvLCXVDaXP7a3F98N/ETH3Goy7IlXnLc6KO
Tk0k+17kBL5yG6YnLUlamXrXXAkgt3+UuU/xDRxeiEIbEbfnkduebPRq34wGmAOt
zCjvpUfzUwIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIB
BjAdBgNVHQ4EFgQUo5fW816iEOGrRZ88F2Q87gFwnMwwDQYJKoZIhvcNAQELBQAD
ggIBABj6W3X8PnrHX3fHyt/PX8MSxEBd1DKquGrX1RUVRpgjpeaQWxiZTOOtQqOC
MTaIzen7xASWSIsBx40Bz1szBpZGZnQdT+3Btrm0DWHMY37XLneMlhwqI2hrhVd2
cDMT/uFPpiN3GPoajOi9ZcnPP/TJF9zrx7zABC4tRi9pZsMbj/7sPtPKlL92CiUN
qXsCHKnQO18LwIE6PWThv6ctTr1NxNgpxiIY0MWscgKCP6o6ojoilzHdCGPDdRS5
YCgtW2jgFqlmgiNR9etT2DGbe+m3nUvriBbP+V04ikkwj+3x6xn0dxoxGE1nVGwv
b2X52z3sIexe9PSLymBlVNFxZPT5pqOBMzYzcfCkeF9OrYMh3jRJjehZrJ3ydlo2
8hP0r+AJx2EqbPfgna67hkooby7utHnNkDPDs3b69fBsnQGQ+p6Q9pxyz0fawx/k
NSBT8lTR32GDpgLiJTjehTItXnOQUl1CxM49S+H5GYQd1aJQzEH7QRTDvdbJWqNj
ZgKAvQU6O0ec7AAmTPWIUb+oI38YB7AL7YsmoWTTYUrrXJ/es69nA7Mf3W1daWhp
q1467HxpvMc7hU6eFbm0FU/DlXpY18ls6Wy58yljXrQs8C097Vpl4KlbQMJImYFt
nh8GKjwStIsPm6Ik8KaN1nrgS7ZklmOVhMJKzRwuJIczYOXD
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            78:58:5f:2e:ad:2c:19:4b:e3:37:07:35:34:13:28:b5:96:d4:65:93
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 1 G3
#        Validity
#            Not Before: Jan 12 17:27:44 2012 GMT
#            Not After : Jan 12 17:27:44 2042 GMT
#        Subject: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 1 G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a0:be:50:10:8e:e9:f2:6c:40:b4:04:9c:85:b9:
#                    31:ca:dc:2d:e4:11:a9:04:3c:1b:55:c1:e7:58:30:
#                    1d:24:b4:c3:ef:85:de:8c:2c:e1:c1:3d:df:82:e6:
#                    4f:ad:47:87:6c:ec:5b:49:c1:4a:d5:bb:8f:ec:87:
#                    ac:7f:82:9a:86:ec:3d:03:99:52:01:d2:35:9e:ac:
#                    da:f0:53:c9:66:3c:d4:ac:02:01:da:24:d3:3b:a8:
#                    02:46:af:a4:1c:e3:f8:73:58:76:b7:f6:0e:90:0d:
#                    b5:f0:cf:cc:fa:f9:c6:4c:e5:c3:86:30:0a:8d:17:
#                    7e:35:eb:c5:df:bb:0e:9c:c0:8d:87:e3:88:38:85:
#                    67:fa:3e:c7:ab:e0:13:9c:05:18:98:cf:93:f5:b1:
#                    92:b4:fc:23:d3:cf:d5:c4:27:49:e0:9e:3c:9b:08:
#                    a3:8b:5d:2a:21:e0:fc:39:aa:53:da:7d:7e:cf:1a:
#                    09:53:bc:5d:05:04:cf:a1:4a:8f:8b:76:82:0d:a1:
#                    f8:d2:c7:14:77:5b:90:36:07:81:9b:3e:06:fa:52:
#                    5e:63:c5:a6:00:fe:a5:e9:52:1b:52:b5:92:39:72:
#                    03:09:62:bd:b0:60:16:6e:a6:dd:25:c2:03:66:dd:
#                    f3:04:d1:40:e2:4e:8b:86:f4:6f:e5:83:a0:27:84:
#                    5e:04:c1:f5:90:bd:30:3d:c4:ef:a8:69:bc:38:9b:
#                    a4:a4:96:d1:62:da:69:c0:01:96:ae:cb:c4:51:34:
#                    ea:0c:aa:ff:21:8e:59:8f:4a:5c:e4:61:9a:a7:d2:
#                    e9:2a:78:8d:51:3d:3a:15:ee:a2:59:8e:a9:5c:de:
#                    c5:f9:90:22:e5:88:45:71:dd:91:99:6c:7a:9f:3d:
#                    3d:98:7c:5e:f6:be:16:68:a0:5e:ae:0b:23:fc:5a:
#                    0f:aa:22:76:2d:c9:a1:10:1d:e4:d3:44:23:90:88:
#                    9f:c6:2a:e6:d7:f5:9a:b3:58:1e:2f:30:89:08:1b:
#                    54:a2:b5:98:23:ec:08:77:1c:95:5d:61:d1:cb:89:
#                    9c:5f:a2:4a:91:9a:ef:21:aa:49:16:08:a8:bd:61:
#                    28:31:c9:74:ad:85:f6:d9:c5:b1:8b:d1:e5:10:32:
#                    4d:5f:8b:20:3a:3c:49:1f:33:85:59:0d:db:cb:09:
#                    75:43:69:73:fb:6b:71:7d:f0:df:c4:4c:7d:c6:a3:
#                    2e:c8:95:79:cb:73:a2:8e:4e:4d:24:fb:5e:e4:04:
#                    be:72:1b:a6:27:2d:49:5a:99:7a:d7:5c:09:20:b7:
#                    7f:94:b9:4f:f1:0d:1c:5e:88:42:1b:11:b7:e7:91:
#                    db:9e:6c:f4:6a:df:8c:06:98:03:ad:cc:28:ef:a5:
#                    47:f3:53
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A3:97:D6:F3:5E:A2:10:E1:AB:45:9F:3C:17:64:3C:EE:01:70:9C:CC
#    Signature Algorithm: sha256WithRSAEncryption
#         18:fa:5b:75:fc:3e:7a:c7:5f:77:c7:ca:df:cf:5f:c3:12:c4:
#         40:5d:d4:32:aa:b8:6a:d7:d5:15:15:46:98:23:a5:e6:90:5b:
#         18:99:4c:e3:ad:42:a3:82:31:36:88:cd:e9:fb:c4:04:96:48:
#         8b:01:c7:8d:01:cf:5b:33:06:96:46:66:74:1d:4f:ed:c1:b6:
#         b9:b4:0d:61:cc:63:7e:d7:2e:77:8c:96:1c:2a:23:68:6b:85:
#         57:76:70:33:13:fe:e1:4f:a6:23:77:18:fa:1a:8c:e8:bd:65:
#         c9:cf:3f:f4:c9:17:dc:eb:c7:bc:c0:04:2e:2d:46:2f:69:66:
#         c3:1b:8f:fe:ec:3e:d3:ca:94:bf:76:0a:25:0d:a9:7b:02:1c:
#         a9:d0:3b:5f:0b:c0:81:3a:3d:64:e1:bf:a7:2d:4e:bd:4d:c4:
#         d8:29:c6:22:18:d0:c5:ac:72:02:82:3f:aa:3a:a2:3a:22:97:
#         31:dd:08:63:c3:75:14:b9:60:28:2d:5b:68:e0:16:a9:66:82:
#         23:51:f5:eb:53:d8:31:9b:7b:e9:b7:9d:4b:eb:88:16:cf:f9:
#         5d:38:8a:49:30:8f:ed:f1:eb:19:f4:77:1a:31:18:4d:67:54:
#         6c:2f:6f:65:f9:db:3d:ec:21:ec:5e:f4:f4:8b:ca:60:65:54:
#         d1:71:64:f4:f9:a6:a3:81:33:36:33:71:f0:a4:78:5f:4e:ad:
#         83:21:de:34:49:8d:e8:59:ac:9d:f2:76:5a:36:f2:13:f4:af:
#         e0:09:c7:61:2a:6c:f7:e0:9d:ae:bb:86:4a:28:6f:2e:ee:b4:
#         79:cd:90:33:c3:b3:76:fa:f5:f0:6c:9d:01:90:fa:9e:90:f6:
#         9c:72:cf:47:da:c3:1f:e4:35:20:53:f2:54:d1:df:61:83:a6:
#         02:e2:25:38:de:85:32:2d:5e:73:90:52:5d:42:c4:ce:3d:4b:
#         e1:f9:19:84:1d:d5:a2:50:cc:41:fb:41:14:c3:bd:d6:c9:5a:
#         a3:63:66:02:80:bd:05:3a:3b:47:9c:ec:00:26:4c:f5:88:51:
#         bf:a8:23:7f:18:07:b0:0b:ed:8b:26:a1:64:d3:61:4a:eb:5c:
#         9f:de:b3:af:67:03:b3:1f:dd:6d:5d:69:68:69:ab:5e:3a:ec:
#         7c:69:bc:c7:3b:85:4e:9e:15:b9:b4:15:4f:c3:95:7a:58:d7:
#         c9:6c:e9:6c:b9:f3:29:63:5e:b4:2c:f0:2d:3d:ed:5a:65:e0:
#         a9:5b:40:c2:48:99:81:6d:9e:1f:06:2a:3c:12:b4:8b:0f:9b:
#         a2:24:f0:a6:8d:d6:7a:e0:4b:b6:64:96:63:95:84:c2:4a:cd:
#         1c:2e:24:87:33:60:e5:c3

[p11-kit-object-v1]
label: "QuoVadis Root CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAmhjKS5QNAC2vAymK8A+B
yK5MGYUdCJ+rKUSF8y+BrTIekEa/o4YmGh7+fhwYOlycYBcqOnSDMzB9YVQRy+2r
4ObSon71a28YtwoLLf3pPu8KxrMQ6dzCRhf4Xf2k2v+eSVqc5jPmJJb3P7pbKxx6
NcLWZ/6rZlCLbShgK+/XYMPHk7yNNpHzf/jbERPEnHd2wa63AmqBeqlFg+IF5rlW
wZQ3j0hxYyLsF2UHlYpL34/GWgrlsONfXmsRqwz5hetE6fgEc/Lp/lyYjPVzr2u0
fs3UXAIrTDnhspWVLUKH19WzkEO3bBPx3t32xPiJP9F19ZLDkdWKiNCQ7Nxt3onC
ZXGWiw0D/Zy/Wxasktvq/nl8reuv9xbL280lK+Uf+5qf4lHMOlMMSOYOvcm0dgZS
5hEThXJjAwTgBDYrIBkC6HSnH7bJVmbwdSXcZ8EOYWCIsz7RqPyj2h2w0bEjVN9E
dm3tQdjBsiK2UxzfNR3coXcqMeQt9eXl28jg/+WA1wtjoP8zoQ+6LBUV6pez0qK1
vvKMlh4ajx1spGE3uYZzM9eXlp4jfYKkTIHiodG6Z1+VB6MnEe4WEHu8RUpMsgTS
q+/V/QxRzlBqCDH5kdoMj2RcA8M6iyA/bo1nPTrW/n1biMle+8xh3Iszd9NEMjUJ
YgSSFhDYnidH+zsh4/jrHVsCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1289 (0x509)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 2
#        Validity
#            Not Before: Nov 24 18:27:00 2006 GMT
#            Not After : Nov 24 18:23:33 2031 GMT
#        Subject: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9a:18:ca:4b:94:0d:00:2d:af:03:29:8a:f0:0f:
#                    81:c8:ae:4c:19:85:1d:08:9f:ab:29:44:85:f3:2f:
#                    81:ad:32:1e:90:46:bf:a3:86:26:1a:1e:fe:7e:1c:
#                    18:3a:5c:9c:60:17:2a:3a:74:83:33:30:7d:61:54:
#                    11:cb:ed:ab:e0:e6:d2:a2:7e:f5:6b:6f:18:b7:0a:
#                    0b:2d:fd:e9:3e:ef:0a:c6:b3:10:e9:dc:c2:46:17:
#                    f8:5d:fd:a4:da:ff:9e:49:5a:9c:e6:33:e6:24:96:
#                    f7:3f:ba:5b:2b:1c:7a:35:c2:d6:67:fe:ab:66:50:
#                    8b:6d:28:60:2b:ef:d7:60:c3:c7:93:bc:8d:36:91:
#                    f3:7f:f8:db:11:13:c4:9c:77:76:c1:ae:b7:02:6a:
#                    81:7a:a9:45:83:e2:05:e6:b9:56:c1:94:37:8f:48:
#                    71:63:22:ec:17:65:07:95:8a:4b:df:8f:c6:5a:0a:
#                    e5:b0:e3:5f:5e:6b:11:ab:0c:f9:85:eb:44:e9:f8:
#                    04:73:f2:e9:fe:5c:98:8c:f5:73:af:6b:b4:7e:cd:
#                    d4:5c:02:2b:4c:39:e1:b2:95:95:2d:42:87:d7:d5:
#                    b3:90:43:b7:6c:13:f1:de:dd:f6:c4:f8:89:3f:d1:
#                    75:f5:92:c3:91:d5:8a:88:d0:90:ec:dc:6d:de:89:
#                    c2:65:71:96:8b:0d:03:fd:9c:bf:5b:16:ac:92:db:
#                    ea:fe:79:7c:ad:eb:af:f7:16:cb:db:cd:25:2b:e5:
#                    1f:fb:9a:9f:e2:51:cc:3a:53:0c:48:e6:0e:bd:c9:
#                    b4:76:06:52:e6:11:13:85:72:63:03:04:e0:04:36:
#                    2b:20:19:02:e8:74:a7:1f:b6:c9:56:66:f0:75:25:
#                    dc:67:c1:0e:61:60:88:b3:3e:d1:a8:fc:a3:da:1d:
#                    b0:d1:b1:23:54:df:44:76:6d:ed:41:d8:c1:b2:22:
#                    b6:53:1c:df:35:1d:dc:a1:77:2a:31:e4:2d:f5:e5:
#                    e5:db:c8:e0:ff:e5:80:d7:0b:63:a0:ff:33:a1:0f:
#                    ba:2c:15:15:ea:97:b3:d2:a2:b5:be:f2:8c:96:1e:
#                    1a:8f:1d:6c:a4:61:37:b9:86:73:33:d7:97:96:9e:
#                    23:7d:82:a4:4c:81:e2:a1:d1:ba:67:5f:95:07:a3:
#                    27:11:ee:16:10:7b:bc:45:4a:4c:b2:04:d2:ab:ef:
#                    d5:fd:0c:51:ce:50:6a:08:31:f9:91:da:0c:8f:64:
#                    5c:03:c3:3a:8b:20:3f:6e:8d:67:3d:3a:d6:fe:7d:
#                    5b:88:c9:5e:fb:cc:61:dc:8b:33:77:d3:44:32:35:
#                    09:62:04:92:16:10:d8:9e:27:47:fb:3b:21:e3:f8:
#                    eb:1d:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                1A:84:62:BC:48:4C:33:25:04:D4:EE:D0:F6:03:C4:19:46:D1:94:6B
#            X509v3 Authority Key Identifier: 
#                keyid:1A:84:62:BC:48:4C:33:25:04:D4:EE:D0:F6:03:C4:19:46:D1:94:6B
#                DirName:/C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 2
#                serial:05:09
#
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:0a:16:4d:9f:06:5b:a8:ae:71:5d:2f:05:2f:67:e6:13:45:
#         83:c4:36:f6:f3:c0:26:0c:0d:b5:47:64:5d:f8:b4:72:c9:46:
#         a5:03:18:27:55:89:78:7d:76:ea:96:34:80:17:20:dc:e7:83:
#         f8:8d:fc:07:b8:da:5f:4d:2e:67:b2:84:fd:d9:44:fc:77:50:
#         81:e6:7c:b4:c9:0d:0b:72:53:f8:76:07:07:41:47:96:0c:fb:
#         e0:82:26:93:55:8c:fe:22:1f:60:65:7c:5f:e7:26:b3:f7:32:
#         90:98:50:d4:37:71:55:f6:92:21:78:f7:95:79:fa:f8:2d:26:
#         87:66:56:30:77:a6:37:78:33:52:10:58:ae:3f:61:8e:f2:6a:
#         b1:ef:18:7e:4a:59:63:ca:8d:a2:56:d5:a7:2f:bc:56:1f:cf:
#         39:c1:e2:fb:0a:a8:15:2c:7d:4d:7a:63:c6:6c:97:44:3c:d2:
#         6f:c3:4a:17:0a:f8:90:d2:57:a2:19:51:a5:2d:97:41:da:07:
#         4f:a9:50:da:90:8d:94:46:e1:3e:f0:94:fd:10:00:38:f5:3b:
#         e8:40:e1:b4:6e:56:1a:20:cc:6f:58:8d:ed:2e:45:8f:d6:e9:
#         93:3f:e7:b1:2c:df:3a:d6:22:8c:dc:84:bb:22:6f:d0:f8:e4:
#         c6:39:e9:04:88:3c:c3:ba:eb:55:7a:6d:80:99:24:f5:6c:01:
#         fb:f8:97:b0:94:5b:eb:fd:d2:6f:f1:77:68:0d:35:64:23:ac:
#         b8:55:a1:03:d1:4d:42:19:dc:f8:75:59:56:a3:f9:a8:49:79:
#         f8:af:0e:b9:11:a0:7c:b7:6a:ed:34:d0:b6:26:62:38:1a:87:
#         0c:f8:e8:fd:2e:d3:90:7f:07:91:2a:1d:d6:7e:5c:85:83:99:
#         b0:38:08:3f:e9:5e:f9:35:07:e4:c9:62:6e:57:7f:a7:50:95:
#         f7:ba:c8:9b:e6:8e:a2:01:c5:d6:66:bf:79:61:f3:3c:1c:e1:
#         b9:82:5c:5d:a0:c3:e9:d8:48:bd:19:a2:11:14:19:6e:b2:86:
#         1b:68:3e:48:37:1a:88:b7:5d:96:5e:9c:c7:ef:27:62:08:e2:
#         91:19:5c:d2:f1:21:dd:ba:17:42:82:97:71:81:53:31:a9:9f:
#         f6:7d:62:bf:72:e1:a3:93:1d:cc:8a:26:5a:09:38:d0:ce:d7:
#         0d:80:16:b4:78:a5:3a:87:4c:8d:8a:a5:d5:46:97:f2:2c:10:
#         b9:bc:54:22:c0:01:50:69:43:9e:f4:b2:ef:6d:f8:ec:da:f1:
#         e3:b1:ef:df:91:8f:54:2a:0b:25:c1:26:19:c4:52:10:05:65:
#         d5:82:10:ea:c2:31:cd:2e

[p11-kit-object-v1]
label: "QuoVadis Root CA 2 G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 2 G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            44:57:34:24:5b:81:89:9b:35:f2:ce:b8:2b:3b:5b:a7:26:f0:75:28
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 2 G3
#        Validity
#            Not Before: Jan 12 18:59:32 2012 GMT
#            Not After : Jan 12 18:59:32 2042 GMT
#        Subject: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 2 G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a1:ae:25:b2:01:18:dc:57:88:3f:46:eb:f9:af:
#                    e2:eb:23:71:e2:9a:d1:61:66:21:5f:aa:af:27:51:
#                    e5:6e:1b:16:d4:2d:7d:50:b0:53:77:bd:78:3a:60:
#                    e2:64:02:9b:7c:86:9b:d6:1a:8e:ad:ff:1f:15:7f:
#                    d5:95:1e:12:cb:e6:14:84:04:c1:df:36:b3:16:9f:
#                    8a:e3:c9:db:98:34:ce:d8:33:17:28:46:fc:a7:c9:
#                    f0:d2:b4:d5:4d:09:72:49:f9:f2:87:e3:a9:da:7d:
#                    a1:7d:6b:b2:3a:25:a9:6d:52:44:ac:f8:be:6e:fb:
#                    dc:a6:73:91:90:61:a6:03:14:20:f2:e7:87:a3:88:
#                    ad:ad:a0:8c:ff:a6:0b:25:52:25:e7:16:01:d5:cb:
#                    b8:35:81:0c:a3:3b:f0:e1:e1:fc:5a:5d:ce:80:71:
#                    6d:f8:49:ab:3e:3b:ba:b8:d7:80:01:fb:a5:eb:5b:
#                    b3:c5:5e:60:2a:31:a0:af:37:e8:20:3a:9f:a8:32:
#                    2c:0c:cc:09:1d:d3:9e:8e:5d:bc:4c:98:ee:c5:1a:
#                    68:7b:ec:53:a6:e9:14:35:a3:df:cd:80:9f:0c:48:
#                    fb:1c:f4:f1:bf:4a:b8:fa:d5:8c:71:4a:c7:1f:ad:
#                    fe:41:9a:b3:83:5d:f2:84:56:ef:a5:57:43:ce:29:
#                    ad:8c:ab:55:bf:c4:fb:5b:01:dd:23:21:a1:58:00:
#                    8e:c3:d0:6a:13:ed:13:e3:12:2b:80:dc:67:e6:95:
#                    b2:cd:1e:22:6e:2a:f8:41:d4:f2:ca:14:07:8d:8a:
#                    55:12:c6:69:f5:b8:86:68:2f:53:5e:b0:d2:aa:21:
#                    c1:98:e6:30:e3:67:55:c7:9b:6e:ac:19:a8:55:a6:
#                    45:06:d0:23:3a:db:eb:65:5d:2a:11:11:f0:3b:4f:
#                    ca:6d:f4:34:c4:71:e4:ff:00:5a:f6:5c:ae:23:60:
#                    85:73:f1:e4:10:b1:25:ae:d5:92:bb:13:c1:0c:e0:
#                    39:da:b4:39:57:b5:ab:35:aa:72:21:3b:83:35:e7:
#                    31:df:7a:21:6e:b8:32:08:7d:1d:32:91:15:4a:62:
#                    72:cf:e3:77:a1:bc:d5:11:1b:76:01:67:08:e0:41:
#                    0b:c3:eb:15:6e:f8:a4:19:d9:a2:ab:af:e2:27:52:
#                    56:2b:02:8a:2c:14:24:f9:bf:42:02:bf:26:c8:c6:
#                    8f:e0:6e:38:7d:53:2d:e5:ed:98:b3:95:63:68:7f:
#                    f9:35:f4:df:88:c5:60:35:92:c0:7c:69:1c:61:95:
#                    16:d0:eb:de:0b:af:3e:04:10:45:65:58:50:38:af:
#                    48:f2:59:b6:16:f2:3c:0d:90:02:c6:70:2e:01:ad:
#                    3c:15:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                ED:E7:6F:76:5A:BF:60:EC:49:5B:C6:A5:77:BB:72:16:71:9B:C4:3D
#    Signature Algorithm: sha256WithRSAEncryption
#         91:df:80:3f:43:09:7e:71:c2:f7:eb:b3:88:8f:e1:51:b2:bc:
#         3d:75:f9:28:5d:c8:bc:99:9b:7b:5d:aa:e5:ca:e1:0a:f7:e8:
#         b2:d3:9f:dd:67:31:7e:ba:01:aa:c7:6a:41:3b:90:d4:08:5c:
#         b2:60:6a:90:f0:c8:ce:03:62:f9:8b:ed:fb:6e:2a:dc:06:4d:
#         3c:29:0f:89:16:8a:58:4c:48:0f:e8:84:61:ea:3c:72:a6:77:
#         e4:42:ae:88:a3:43:58:79:7e:ae:ca:a5:53:0d:a9:3d:70:bd:
#         20:19:61:a4:6c:38:fc:43:32:e1:c1:47:ff:f8:ec:f1:11:22:
#         32:96:9c:c2:f6:5b:69:96:7b:20:0c:43:41:9a:5b:f6:59:19:
#         88:de:55:88:37:51:0b:78:5c:0a:1e:a3:42:fd:c7:9d:88:0f:
#         c0:f2:78:02:24:54:93:af:89:87:88:c9:4a:80:1d:ea:d0:6e:
#         3e:61:2e:36:bb:35:0e:27:96:fd:66:34:3b:61:72:73:f1:16:
#         5c:47:06:54:49:00:7a:58:12:b0:0a:ef:85:fd:b1:b8:33:75:
#         6a:93:1c:12:e6:60:5e:6f:1d:7f:c9:1f:23:cb:84:61:9f:1e:
#         82:44:f9:5f:ad:62:55:24:9a:52:98:ed:51:e7:a1:7e:97:3a:
#         e6:2f:1f:11:da:53:80:2c:85:9e:ab:35:10:db:22:5f:6a:c5:
#         5e:97:53:f2:32:02:09:30:a3:58:f0:0d:01:d5:72:c6:b1:7c:
#         69:7b:c3:f5:36:45:cc:61:6e:5e:4c:94:c5:5e:ae:e8:0e:5e:
#         8b:bf:f7:cd:e0:ed:a1:0e:1b:33:ee:54:18:fe:0f:be:ef:7e:
#         84:6b:43:e3:70:98:db:5d:75:b2:0d:59:07:85:15:23:39:d6:
#         f1:df:a9:26:0f:d6:48:c7:b3:a6:22:f5:33:37:5a:95:47:9f:
#         7b:ba:18:15:6f:ff:d6:14:64:83:49:d2:0a:67:21:db:0f:35:
#         63:60:28:22:e3:b1:95:83:cd:85:a6:dd:2f:0f:e7:67:52:6e:
#         bb:2f:85:7c:f5:4a:73:e7:c5:3e:c0:bd:21:12:05:3f:fc:b7:
#         03:49:02:5b:c8:25:e6:e2:54:38:f5:79:87:8c:1d:53:b2:4e:
#         85:7b:06:38:c7:2c:f8:f8:b0:72:8d:25:e5:77:52:f4:03:1c:
#         48:a6:50:5f:88:20:30:6e:f2:82:43:ab:3d:97:84:e7:53:fb:
#         21:c1:4f:0f:22:9a:86:b8:59:2a:f6:47:3d:19:88:2d:e8:85:
#         e1:9e:ec:85:08:6a:b1:6c:34:c9:1d:ec:48:2b:3b:78:ed:66:
#         c4:8e:79:69:83:de:7f:8c

[p11-kit-object-v1]
label: "QuoVadis Root CA 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1478 (0x5c6)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 3
#        Validity
#            Not Before: Nov 24 19:11:23 2006 GMT
#            Not After : Nov 24 19:06:44 2031 GMT
#        Subject: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:cc:57:42:16:54:9c:e6:98:d3:d3:4d:ee:fe:ed:
#                    c7:9f:43:39:4a:65:b3:e8:16:88:34:db:0d:59:91:
#                    74:cf:92:b8:04:40:ad:02:4b:31:ab:bc:8d:91:68:
#                    d8:20:0e:1a:01:e2:1a:7b:4e:17:5d:e2:8a:b7:3f:
#                    99:1a:cd:eb:61:ab:c2:65:a6:1f:b7:b7:bd:b7:8f:
#                    fc:fd:70:8f:0b:a0:67:be:01:a2:59:cf:71:e6:0f:
#                    29:76:ff:b1:56:79:45:2b:1f:9e:7a:54:e8:a3:29:
#                    35:68:a4:01:4f:0f:a4:2e:37:ef:1b:bf:e3:8f:10:
#                    a8:72:ab:58:57:e7:54:86:c8:c9:f3:5b:da:2c:da:
#                    5d:8e:6e:3c:a3:3e:da:fb:82:e5:dd:f2:5c:b2:05:
#                    33:6f:8a:36:ce:d0:13:4e:ff:bf:4a:0c:34:4c:a6:
#                    c3:21:bd:50:04:55:eb:b1:bb:9d:fb:45:1e:64:15:
#                    de:55:01:8c:02:76:b5:cb:a1:3f:42:69:bc:2f:bd:
#                    68:43:16:56:89:2a:37:61:91:fd:a6:ae:4e:c0:cb:
#                    14:65:94:37:4b:92:06:ef:04:d0:c8:9c:88:db:0b:
#                    7b:81:af:b1:3d:2a:c4:65:3a:78:b6:ee:dc:80:b1:
#                    d2:d3:99:9c:3a:ee:6b:5a:6b:b3:8d:b7:d5:ce:9c:
#                    c2:be:a5:4b:2f:16:b1:9e:68:3b:06:6f:ae:7d:9f:
#                    f8:de:ec:cc:29:a7:98:a3:25:43:2f:ef:f1:5f:26:
#                    e1:88:4d:f8:5e:6e:d7:d9:14:6e:19:33:69:a7:3b:
#                    84:89:93:c4:53:55:13:a1:51:78:40:f8:b8:c9:a2:
#                    ee:7b:ba:52:42:83:9e:14:ed:05:52:5a:59:56:a7:
#                    97:fc:9d:3f:0a:29:d8:dc:4f:91:0e:13:bc:de:95:
#                    a4:df:8b:99:be:ac:9b:33:88:ef:b5:81:af:1b:c6:
#                    22:53:c8:f6:c7:ee:97:14:b0:c5:7c:78:52:c8:f0:
#                    ce:6e:77:60:84:a6:e9:2a:76:20:ed:58:01:17:30:
#                    93:e9:1a:8b:e0:73:63:d9:6a:92:94:49:4e:b4:ad:
#                    4a:85:c4:a3:22:30:fc:09:ed:68:22:73:a6:88:0c:
#                    55:21:58:c5:e1:3a:9f:2a:dd:ca:e1:90:e0:d9:73:
#                    ab:6c:80:b8:e8:0b:64:93:a0:9c:8c:19:ff:b3:d2:
#                    0c:ec:91:26:87:8a:b3:a2:e1:70:8f:2c:0a:e5:cd:
#                    6d:68:51:eb:da:3f:05:7f:8b:32:e6:13:5c:6b:fe:
#                    5f:40:e2:22:c8:b4:b4:64:4f:d6:ba:7d:48:3e:a8:
#                    69:0c:d7:bb:86:71:c9:73:b8:3f:3b:9d:25:4b:da:
#                    ff:40:eb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.8024.0.3
#                  User Notice:
#                    Explicit Text: Any use of this Certificate constitutes acceptance of the QuoVadis Root CA 3 Certificate Policy / Certification Practice Statement.
#                  CPS: http://www.quovadisglobal.com/cps
#
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F2:C0:13:E0:82:43:3E:FB:EE:2F:67:32:96:35:5C:DB:B8:CB:02:D0
#            X509v3 Authority Key Identifier: 
#                keyid:F2:C0:13:E0:82:43:3E:FB:EE:2F:67:32:96:35:5C:DB:B8:CB:02:D0
#                DirName:/C=BM/O=QuoVadis Limited/CN=QuoVadis Root CA 3
#                serial:05:C6
#
#    Signature Algorithm: sha1WithRSAEncryption
#         4f:ad:a0:2c:4c:fa:c0:f2:6f:f7:66:55:ab:23:34:ee:e7:29:
#         da:c3:5b:b6:b0:83:d9:d0:d0:e2:21:fb:f3:60:a7:3b:5d:60:
#         53:27:a2:9b:f6:08:22:2a:e7:bf:a0:72:e5:9c:24:6a:31:b1:
#         90:7a:27:db:84:11:89:27:a6:77:5a:38:d7:bf:ac:86:fc:ee:
#         5d:83:bc:06:c6:d1:77:6b:0f:6d:24:2f:4b:7a:6c:a7:07:96:
#         ca:e3:84:9f:ad:88:8b:1d:ab:16:8d:5b:66:17:d9:16:f4:8b:
#         80:d2:dd:f8:b2:76:c3:fc:38:13:aa:0c:de:42:69:2b:6e:f3:
#         3c:eb:80:27:db:f5:a6:44:0d:9f:5a:55:59:0b:d5:0d:52:48:
#         c5:ae:9f:f2:2f:80:c5:ea:32:50:35:12:97:2e:c1:e1:ff:f1:
#         23:88:51:38:9f:f2:66:56:76:e7:0f:51:97:a5:52:0c:4d:49:
#         51:95:36:3d:bf:a2:4b:0c:10:1d:86:99:4c:aa:f3:72:11:93:
#         e4:ea:f6:9b:da:a8:5d:a7:4d:b7:9e:02:ae:73:00:c8:da:23:
#         03:e8:f9:ea:19:74:62:00:94:cb:22:20:be:94:a7:59:b5:82:
#         6a:be:99:79:7a:a9:f2:4a:24:52:f7:74:fd:ba:4e:e6:a8:1d:
#         02:6e:b1:0d:80:44:c1:ae:d3:23:37:5f:bb:85:7c:2b:92:2e:
#         e8:7e:a5:8b:dd:99:e1:bf:27:6f:2d:5d:aa:7b:87:fe:0a:dd:
#         4b:fc:8e:f5:26:e4:6e:70:42:6e:33:ec:31:9e:7b:93:c1:e4:
#         c9:69:1a:3d:c0:6b:4e:22:6d:ee:ab:58:4d:c6:d0:41:c1:2b:
#         ea:4f:12:87:5e:eb:45:d8:6c:f5:98:02:d3:a0:d8:55:8a:06:
#         99:19:a2:a0:77:d1:30:9e:ac:cc:75:ee:83:f5:b0:62:39:cf:
#         6c:57:e2:4c:d2:91:0b:0e:75:28:1b:9a:bf:fd:1a:43:f1:ca:
#         77:fb:3b:8f:61:b8:69:28:16:42:04:5e:70:2a:1c:21:d8:8f:
#         e1:bd:23:5b:2d:74:40:92:d9:63:19:0d:73:dd:69:bc:62:47:
#         bc:e0:74:2b:b2:eb:7d:be:41:1b:b5:c0:46:c5:a1:22:cb:5f:
#         4e:c1:28:92:de:18:ba:d5:2a:28:bb:11:8b:17:93:98:99:60:
#         94:5c:23:cf:5a:27:97:5e:0b:05:06:93:37:1e:3b:69:36:eb:
#         a9:9e:61:1d:8f:32:da:8e:0c:d6:74:3e:7b:09:24:da:01:77:
#         47:c4:3b:cd:34:8c:99:f5:ca:e1:25:61:33:b2:59:1b:e2:6e:
#         d7:37:57:b6:0d:a9:12:da

[p11-kit-object-v1]
label: "QuoVadis Root CA 3 G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAs8sOEGeO6hSXpzIqClY2
f2hMx7NvOiMUkf8Zf6XKrO6zdp166Ysbq2sx2/oLU0yvxaUaeTyKTP+s3yXeTtmC
MgtE3srbjKyjbhaDO6ZkSzKJ+xYWOH7rQ+LTdErCYgpzCt1Js1fSsAqFnXE83qPL
wDLzATkgQxs10VOzse7Fk2mCPha1KEah3uqJCe1DuAVGiob1WUe+G28BIRC5/anS
KMoQOQnKEzbPnK2tQHR5KwI/NP/6IGl90+5h9bqz5zDQNyOGcmFFKUhZaG93pi6B
vgdNb6/OxEUTkRRwBo8fn/iHabEO78OJGevqHGH8emyK3NYDC54muhLd1FQ5qyaj
M+p1gdotzQ9P5APR7xWXG2uQxQKQk2YCIbFH3ouaSoC5VY+1oi/A1jNn2n7Ep7QE
ROtH++ZYufcM8HsrscBwKcNAYi07SGncIzxI63sJealt2qgwmM+AcgOIpltGrnJ5
fAgDIWWut+EcpbEqojHeZgT3wHTocd7/PVnMliYSi4WVVxqra3ULRD0RKDx7Ybfi
j2dP5ew8TGCAaVc4HgFbjVXox9/AzHcjNEl1fPaYEest3u1BLhQFAn/g/iDrNecR
rCLOVz3eyTBtEAOFzfH/jBa1wbI+iGxgf5BPlff2La0BOQcE+nWAfb9JUO3vycR8
HOuAftu20N0T/snTnNeyl6kCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "QuoVadis Root CA 3 G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFYDCCA0igAwIBAgIULvWbAiin23r/1aOp7r0DoM8Sah0wDQYJKoZIhvcNAQEL
BQAwSDELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxHjAc
BgNVBAMTFVF1b1ZhZGlzIFJvb3QgQ0EgMyBHMzAeFw0xMjAxMTIyMDI2MzJaFw00
MjAxMTIyMDI2MzJaMEgxCzAJBgNVBAYTAkJNMRkwFwYDVQQKExBRdW9WYWRpcyBM
aW1pdGVkMR4wHAYDVQQDExVRdW9WYWRpcyBSb290IENBIDMgRzMwggIiMA0GCSqG
SIb3DQEBAQUAA4ICDwAwggIKAoICAQCzyw4QZ47qFJenMioKVjZ/aEzHs286IxSR
/xl/pcqs7rN2nXrpixurazHb+gtTTK/FpRp5PIpM/6zfJd5O2YIyC0TeytuMrKNu
FoM7pmRLMon7FhY4futD4tN0SsJiCnMK3UmzV9KwCoWdcTzeo8vAMvMBOSBDGzXR
U7Ox7sWTaYI+FrUoRqHe6okJ7UO4BUaKhvVZR74bbwEhELn9qdIoyhA5CcoTNs+c
ra1AdHkrAj80//ogaX3T7mH1urPnMNA3I4ZyYUUpSFlob3emLoG+B01vr87ERROR
FHAGjx+f+IdpsQ7vw4kZ6+ocYfx6bIrc1gMLnia6Et3UVDmrJqMz6nWB2i3ND0/k
A9HvFZcba5DFApCTZgIhsUfei5pKgLlVj7WiL8DWM2fafsSntARE60f75li59wzw
eyuxwHApw0BiLTtIadwjPEjrewl5qW3aqDCYz4ByA4imW0aucnl8CAMhZa634Ryl
sSqiMd5mBPfAdOhx3v89WcyWJhKLhZVXGqtrdQtEPREoPHtht+KPZ0/l7DxMYIBp
VzgeAVuNVejH38DMdyM0SXV89pgR6y3e7UEuFAUCf+D+IOs15xGsIs5XPd7JMG0Q
A4XN8f+MFrXBsj6IbGB/kE+V9/YtrQE5BwT6dYB9v0lQ7e/JxHwc64B+27bQ3RP+
ydOc17KXqQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIB
BjAdBgNVHQ4EFgQUxhfQvKjqAkPyGwaZXSuQILnXnOQwDQYJKoZIhvcNAQELBQAD
ggIBADRh2Va1EodVTd2jNTFGu6QHcrxfYWLopfsLN7E8trP6KZ1/AvWkyaiTt3px
KGmPc+FSkNrVvjrlt3ZqVoAh313m6Tqe5T72omnHKgqwGEfcIHB9UqM+WXzBusnI
FUBhynLWcKzSt/Ac5IYp8M7vaGPQtSCKFWGafoaYtMnCdvvMujAWzKNhxnQT5Wvv
oxXqA/4Ti2Tk08HS6IT7SdEQTXlm66r99I0xHnAUrdzeZxNMgRVhvLfZkXdxGYFg
u/BYpbWcC/ePIlUnwEsBbTuZDdQdm2NnL9DuDcpmvJRPpq3t/O5jrFc/ZSXPsoaP
0Aj/uHYUbt7lJ+yreLVTubY/6CD50qi+YUbKh4yE8/nxoGibIh6BJpsQBJFxwAYf
3KDTuVan45gtf4Od34wrnDKOMpTwATwiKp9Dwi7DmDkHOHv8XgBCH/MyJnmDhPbl
8MFREsALHgQjDFSlTC9JxUrRtm5gDWv8a4uFJGS3iQ6rJUdbPM9+Sb3H6QrG2vd+
DhcI00iX0HGS8A85PjRqHH3Y8iKuu2n0M7SmSFXRDw4m6Oy2Cy2nhTXN/VnIn9HN
PlopNLk9hM6xZdRZkZFWdSHBd575euFgndOtBBj0fOtek49TSiIp+EgrPk2GrFt/
ywaZWWDYWGWVjUTR939+J399roD1B0y2PpxxVJkES/1Y+Zj0
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2e:f5:9b:02:28:a7:db:7a:ff:d5:a3:a9:ee:bd:03:a0:cf:12:6a:1d
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 3 G3
#        Validity
#            Not Before: Jan 12 20:26:32 2012 GMT
#            Not After : Jan 12 20:26:32 2042 GMT
#        Subject: C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 3 G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b3:cb:0e:10:67:8e:ea:14:97:a7:32:2a:0a:56:
#                    36:7f:68:4c:c7:b3:6f:3a:23:14:91:ff:19:7f:a5:
#                    ca:ac:ee:b3:76:9d:7a:e9:8b:1b:ab:6b:31:db:fa:
#                    0b:53:4c:af:c5:a5:1a:79:3c:8a:4c:ff:ac:df:25:
#                    de:4e:d9:82:32:0b:44:de:ca:db:8c:ac:a3:6e:16:
#                    83:3b:a6:64:4b:32:89:fb:16:16:38:7e:eb:43:e2:
#                    d3:74:4a:c2:62:0a:73:0a:dd:49:b3:57:d2:b0:0a:
#                    85:9d:71:3c:de:a3:cb:c0:32:f3:01:39:20:43:1b:
#                    35:d1:53:b3:b1:ee:c5:93:69:82:3e:16:b5:28:46:
#                    a1:de:ea:89:09:ed:43:b8:05:46:8a:86:f5:59:47:
#                    be:1b:6f:01:21:10:b9:fd:a9:d2:28:ca:10:39:09:
#                    ca:13:36:cf:9c:ad:ad:40:74:79:2b:02:3f:34:ff:
#                    fa:20:69:7d:d3:ee:61:f5:ba:b3:e7:30:d0:37:23:
#                    86:72:61:45:29:48:59:68:6f:77:a6:2e:81:be:07:
#                    4d:6f:af:ce:c4:45:13:91:14:70:06:8f:1f:9f:f8:
#                    87:69:b1:0e:ef:c3:89:19:eb:ea:1c:61:fc:7a:6c:
#                    8a:dc:d6:03:0b:9e:26:ba:12:dd:d4:54:39:ab:26:
#                    a3:33:ea:75:81:da:2d:cd:0f:4f:e4:03:d1:ef:15:
#                    97:1b:6b:90:c5:02:90:93:66:02:21:b1:47:de:8b:
#                    9a:4a:80:b9:55:8f:b5:a2:2f:c0:d6:33:67:da:7e:
#                    c4:a7:b4:04:44:eb:47:fb:e6:58:b9:f7:0c:f0:7b:
#                    2b:b1:c0:70:29:c3:40:62:2d:3b:48:69:dc:23:3c:
#                    48:eb:7b:09:79:a9:6d:da:a8:30:98:cf:80:72:03:
#                    88:a6:5b:46:ae:72:79:7c:08:03:21:65:ae:b7:e1:
#                    1c:a5:b1:2a:a2:31:de:66:04:f7:c0:74:e8:71:de:
#                    ff:3d:59:cc:96:26:12:8b:85:95:57:1a:ab:6b:75:
#                    0b:44:3d:11:28:3c:7b:61:b7:e2:8f:67:4f:e5:ec:
#                    3c:4c:60:80:69:57:38:1e:01:5b:8d:55:e8:c7:df:
#                    c0:cc:77:23:34:49:75:7c:f6:98:11:eb:2d:de:ed:
#                    41:2e:14:05:02:7f:e0:fe:20:eb:35:e7:11:ac:22:
#                    ce:57:3d:de:c9:30:6d:10:03:85:cd:f1:ff:8c:16:
#                    b5:c1:b2:3e:88:6c:60:7f:90:4f:95:f7:f6:2d:ad:
#                    01:39:07:04:fa:75:80:7d:bf:49:50:ed:ef:c9:c4:
#                    7c:1c:eb:80:7e:db:b6:d0:dd:13:fe:c9:d3:9c:d7:
#                    b2:97:a9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                C6:17:D0:BC:A8:EA:02:43:F2:1B:06:99:5D:2B:90:20:B9:D7:9C:E4
#    Signature Algorithm: sha256WithRSAEncryption
#         34:61:d9:56:b5:12:87:55:4d:dd:a3:35:31:46:bb:a4:07:72:
#         bc:5f:61:62:e8:a5:fb:0b:37:b1:3c:b6:b3:fa:29:9d:7f:02:
#         f5:a4:c9:a8:93:b7:7a:71:28:69:8f:73:e1:52:90:da:d5:be:
#         3a:e5:b7:76:6a:56:80:21:df:5d:e6:e9:3a:9e:e5:3e:f6:a2:
#         69:c7:2a:0a:b0:18:47:dc:20:70:7d:52:a3:3e:59:7c:c1:ba:
#         c9:c8:15:40:61:ca:72:d6:70:ac:d2:b7:f0:1c:e4:86:29:f0:
#         ce:ef:68:63:d0:b5:20:8a:15:61:9a:7e:86:98:b4:c9:c2:76:
#         fb:cc:ba:30:16:cc:a3:61:c6:74:13:e5:6b:ef:a3:15:ea:03:
#         fe:13:8b:64:e4:d3:c1:d2:e8:84:fb:49:d1:10:4d:79:66:eb:
#         aa:fd:f4:8d:31:1e:70:14:ad:dc:de:67:13:4c:81:15:61:bc:
#         b7:d9:91:77:71:19:81:60:bb:f0:58:a5:b5:9c:0b:f7:8f:22:
#         55:27:c0:4b:01:6d:3b:99:0d:d4:1d:9b:63:67:2f:d0:ee:0d:
#         ca:66:bc:94:4f:a6:ad:ed:fc:ee:63:ac:57:3f:65:25:cf:b2:
#         86:8f:d0:08:ff:b8:76:14:6e:de:e5:27:ec:ab:78:b5:53:b9:
#         b6:3f:e8:20:f9:d2:a8:be:61:46:ca:87:8c:84:f3:f9:f1:a0:
#         68:9b:22:1e:81:26:9b:10:04:91:71:c0:06:1f:dc:a0:d3:b9:
#         56:a7:e3:98:2d:7f:83:9d:df:8c:2b:9c:32:8e:32:94:f0:01:
#         3c:22:2a:9f:43:c2:2e:c3:98:39:07:38:7b:fc:5e:00:42:1f:
#         f3:32:26:79:83:84:f6:e5:f0:c1:51:12:c0:0b:1e:04:23:0c:
#         54:a5:4c:2f:49:c5:4a:d1:b6:6e:60:0d:6b:fc:6b:8b:85:24:
#         64:b7:89:0e:ab:25:47:5b:3c:cf:7e:49:bd:c7:e9:0a:c6:da:
#         f7:7e:0e:17:08:d3:48:97:d0:71:92:f0:0f:39:3e:34:6a:1c:
#         7d:d8:f2:22:ae:bb:69:f4:33:b4:a6:48:55:d1:0f:0e:26:e8:
#         ec:b6:0b:2d:a7:85:35:cd:fd:59:c8:9f:d1:cd:3e:5a:29:34:
#         b9:3d:84:ce:b1:65:d4:59:91:91:56:75:21:c1:77:9e:f9:7a:
#         e1:60:9d:d3:ad:04:18:f4:7c:eb:5e:93:8f:53:4a:22:29:f8:
#         48:2b:3e:4d:86:ac:5b:7f:cb:06:99:59:60:d8:58:65:95:8d:
#         44:d1:f7:7f:7e:27:7f:7d:ae:80:f5:07:4c:b6:3e:9c:71:54:
#         99:04:4b:fd:58:f9:98:f4

[p11-kit-object-v1]
label: "S-TRUST Authentication and Encryption Root CA 2005:PN"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2bVKwdMz6tNGs9HiTNL1
toPQb9UY6ZOvJ44TzbUlNlA0EmQpoVXhOmCTnijJ4/Ob4QSwI7+Vio5bG0F/WsPo
TUzVJBY+h0jUJ67m91MduwwA7z5hca2/OnpYH5Q9XIHV1W/fuJvS9eXLg3KSwlOy
ggLrra1fFi2SU3bxibYs9cEv4KdKb6AwajLrmnQDaHgTncovmwsdvs91DSaXm8f1
XgqfeN+zvOyauu9VjxuapgdjKRdZYgkqeQd3peDRF2npW932kKvimAoA0SVtnteF
hy+S8dF2g08LOlk3KC8zpxdQ1iALCvQm+Z845y2kuJuJja2tyWp9iRe79n+Ag3rm
7QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "S-TRUST Authentication and Encryption Root CA 2005:PN"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            37:19:18:e6:53:54:7c:1a:b5:b8:cb:59:5a:db:35:b7
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=DE, ST=Baden-Wuerttemberg (BW), L=Stuttgart, O=Deutscher Sparkassen Verlag GmbH, CN=S-TRUST Authentication and Encryption Root CA 2005:PN
#        Validity
#            Not Before: Jun 22 00:00:00 2005 GMT
#            Not After : Jun 21 23:59:59 2030 GMT
#        Subject: C=DE, ST=Baden-Wuerttemberg (BW), L=Stuttgart, O=Deutscher Sparkassen Verlag GmbH, CN=S-TRUST Authentication and Encryption Root CA 2005:PN
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d9:b5:4a:c1:d3:33:ea:d3:46:b3:d1:e2:4c:d2:
#                    f5:b6:83:d0:6f:d5:18:e9:93:af:27:8e:13:cd:b5:
#                    25:36:50:34:12:64:29:a1:55:e1:3a:60:93:9e:28:
#                    c9:e3:f3:9b:e1:04:b0:23:bf:95:8a:8e:5b:1b:41:
#                    7f:5a:c3:e8:4d:4c:d5:24:16:3e:87:48:d4:27:ae:
#                    e6:f7:53:1d:bb:0c:00:ef:3e:61:71:ad:bf:3a:7a:
#                    58:1f:94:3d:5c:81:d5:d5:6f:df:b8:9b:d2:f5:e5:
#                    cb:83:72:92:c2:53:b2:82:02:eb:ad:ad:5f:16:2d:
#                    92:53:76:f1:89:b6:2c:f5:c1:2f:e0:a7:4a:6f:a0:
#                    30:6a:32:eb:9a:74:03:68:78:13:9d:ca:2f:9b:0b:
#                    1d:be:cf:75:0d:26:97:9b:c7:f5:5e:0a:9f:78:df:
#                    b3:bc:ec:9a:ba:ef:55:8f:1b:9a:a6:07:63:29:17:
#                    59:62:09:2a:79:07:77:a5:e0:d1:17:69:e9:5b:dd:
#                    f6:90:ab:e2:98:0a:00:d1:25:6d:9e:d7:85:87:2f:
#                    92:f1:d1:76:83:4f:0b:3a:59:37:28:2f:33:a7:17:
#                    50:d6:20:0b:0a:f4:26:f9:9f:38:e7:2d:a4:b8:9b:
#                    89:8d:ad:ad:c9:6a:7d:89:17:bb:f6:7f:80:83:7a:
#                    e6:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:0
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DirName:/CN=STRonline1-2048-5
#            X509v3 Subject Key Identifier: 
#                0F:CA:1E:5C:79:E0:A2:F3:29:B6:D2:85:B3:0B:4A:B5:65:EC:6B:52
#            X509v3 Authority Key Identifier: 
#                keyid:0F:CA:1E:5C:79:E0:A2:F3:29:B6:D2:85:B3:0B:4A:B5:65:EC:6B:52
#
#    Signature Algorithm: sha1WithRSAEncryption
#         af:01:f0:ed:19:3c:28:e8:4d:5c:bb:a5:63:1c:88:33:03:a7:
#         00:87:a4:1f:20:ab:d6:1c:e3:06:1f:97:7e:54:bd:b7:d1:b2:
#         c9:d5:da:80:ec:17:d7:8a:f5:7b:c2:00:f6:e9:11:6f:84:a0:
#         5a:25:31:e2:89:f9:a4:00:3f:31:68:2e:d5:3d:e8:6e:e6:d5:
#         1d:3c:3f:b2:bd:9f:77:eb:9d:d3:8c:ba:c0:d7:b6:4d:ec:53:
#         9c:0f:04:6e:ea:35:67:57:e3:0a:65:7b:90:3a:e1:4f:3e:c3:
#         00:92:7a:bb:05:89:73:8c:cb:a6:4d:c0:fb:f6:02:d6:b0:07:
#         a3:03:c2:27:40:9f:0c:e4:85:82:2d:af:9a:42:1d:d0:c7:8d:
#         f8:40:ee:9d:06:57:1c:d9:a2:d8:80:14:fe:e1:63:2d:32:87:
#         d5:94:52:96:3a:46:c6:71:96:3d:f7:98:0e:b2:91:aa:8f:da:
#         f4:4e:24:00:39:55:e8:ad:17:b9:d3:34:2b:4a:a9:40:cc:17:
#         2a:55:65:41:74:42:7e:f5:c0:af:c8:93:ad:f2:18:5b:3d:89:
#         0c:db:47:39:24:f8:e0:4c:f2:1f:b0:3d:0a:ca:05:4e:89:21:
#         1a:e3:2a:99:ac:fc:7f:a1:f1:0f:1b:1f:3d:9e:04:83:dd:96:
#         d9:1d:3a:94

[p11-kit-object-v1]
label: "SAPO Class 2 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt3xpfGD1bCb0qhwXf13U
EUvn89rnc6f6pEJJaD/apUBcBmhfTsy9voE4JC3MJqBEbQPLI+C73oVTS5RfX3uq
yBqX/tcjk+2war3Y/AA+s5IE4Eu+TzuYp53tzWPwgedsmNRsYFUA5bk85jSVXeD9
cYfp/4Hu5XdvGP/zyXylld2C3BTZouG+zSdzu0VbP3SxYnhmECIs9WjzF4gWO5ob
HfsUrg268pBVotUw1iuVMsc5bntl0nc4zm5WpdkjqziyO1GFwB0btxEvBWlH2ALK
kqjhM96FCJvtkNXYIZlxv7b1c+9nCJhk0vIqekshFuEfWGHekUcfIZ8f/owjhoMY
JwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SAPO Class 2 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEWDCCA0CgAwIBAgIBATANBgkqhkiG9w0BAQUFADCBzjELMAkGA1UEBhMCWkEx
FTATBgNVBAgTDFdlc3Rlcm4gQ2FwZTEWMBQGA1UEBxMNU29tZXJzZXQgV2VzdDEq
MCgGA1UEChMhU291dGggQWZyaWNhbiBQb3N0IE9mZmljZSBMaW1pdGVkMRowGAYD
VQQLExFTQVBPIFRydXN0IENlbnRyZTEdMBsGA1UEAxMUU0FQTyBDbGFzcyAyIFJv
b3QgQ0ExKTAnBgkqhkiG9w0BCQEWGnBraWFkbWluQHRydXN0Y2VudHJlLmNvLnph
MB4XDTEwMDkxNTAwMDAwMFoXDTMwMDkxNDAwMDAwMFowgc4xCzAJBgNVBAYTAlpB
MRUwEwYDVQQIEwxXZXN0ZXJuIENhcGUxFjAUBgNVBAcTDVNvbWVyc2V0IFdlc3Qx
KjAoBgNVBAoTIVNvdXRoIEFmcmljYW4gUG9zdCBPZmZpY2UgTGltaXRlZDEaMBgG
A1UECxMRU0FQTyBUcnVzdCBDZW50cmUxHTAbBgNVBAMTFFNBUE8gQ2xhc3MgMiBS
b290IENBMSkwJwYJKoZIhvcNAQkBFhpwa2lhZG1pbkB0cnVzdGNlbnRyZS5jby56
YTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALd8aXxg9Wwm9KocF39d
1BFL5/Pa53On+qRCSWg/2qVAXAZoX07Mvb6BOCQtzCagRG0DyyPgu96FU0uUX197
qsgal/7XI5PtsGq92PwAPrOSBOBLvk87mKed7c1j8IHnbJjUbGBVAOW5POY0lV3g
/XGH6f+B7uV3bxj/88l8pZXdgtwU2aLhvs0nc7tFWz90sWJ4ZhAiLPVo8xeIFjua
Gx37FK4NuvKQVaLVMNYrlTLHOW57ZdJ3OM5uVqXZI6s4sjtRhcAdG7cRLwVpR9gC
ypKo4TPehQib7ZDV2CGZcb+29XPvZwiYZNLyKnpLIRbhH1hh3pFHHyGfH/6MI4aD
GCcCAwEAAaM/MD0wDgYDVR0PAQH/BAQDAgEGMAwGA1UdEwQFMAMBAf8wHQYDVR0O
BBYEFKudI5P9HzNKMi2qJFryLWSpAZpBMA0GCSqGSIb3DQEBBQUAA4IBAQBWUlG5
DwLh9i6csTFapvjOvO4ChBUJ8ShSX+fhLL3beQp6v+tintWGRynudDDsTHW1HuOq
M++t4WpMvzcBvlWDTKlS2DeYUG9o3UdBtywwyG5MByzG00m5tVzSy8zUNsYHDRhP
P2MAxOy2iPsBZGOt0fd3fGRUKxI9NBWF8KC6eSlfmJtC6q7BqJ8TiYpt6bg4yWHt
YOz3KlgFm6FgeIMX4X5f6P144GtWKoZ2rlvCXutF5DC4Me1ksV0uwD2ADccnE9N2
4ob73NuACoHh/Qj5C8QxtGNb54wz5Qa2Umqz1+lr4zJ4MmaUTt2Nd23TJChbVGF3
Amd1lEtXS+ZsxTlv
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ZA, ST=Western Cape, L=Somerset West, O=South African Post Office Limited, OU=SAPO Trust Centre, CN=SAPO Class 2 Root CA/emailAddress=pkiadmin@trustcentre.co.za
#        Validity
#            Not Before: Sep 15 00:00:00 2010 GMT
#            Not After : Sep 14 00:00:00 2030 GMT
#        Subject: C=ZA, ST=Western Cape, L=Somerset West, O=South African Post Office Limited, OU=SAPO Trust Centre, CN=SAPO Class 2 Root CA/emailAddress=pkiadmin@trustcentre.co.za
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:7c:69:7c:60:f5:6c:26:f4:aa:1c:17:7f:5d:
#                    d4:11:4b:e7:f3:da:e7:73:a7:fa:a4:42:49:68:3f:
#                    da:a5:40:5c:06:68:5f:4e:cc:bd:be:81:38:24:2d:
#                    cc:26:a0:44:6d:03:cb:23:e0:bb:de:85:53:4b:94:
#                    5f:5f:7b:aa:c8:1a:97:fe:d7:23:93:ed:b0:6a:bd:
#                    d8:fc:00:3e:b3:92:04:e0:4b:be:4f:3b:98:a7:9d:
#                    ed:cd:63:f0:81:e7:6c:98:d4:6c:60:55:00:e5:b9:
#                    3c:e6:34:95:5d:e0:fd:71:87:e9:ff:81:ee:e5:77:
#                    6f:18:ff:f3:c9:7c:a5:95:dd:82:dc:14:d9:a2:e1:
#                    be:cd:27:73:bb:45:5b:3f:74:b1:62:78:66:10:22:
#                    2c:f5:68:f3:17:88:16:3b:9a:1b:1d:fb:14:ae:0d:
#                    ba:f2:90:55:a2:d5:30:d6:2b:95:32:c7:39:6e:7b:
#                    65:d2:77:38:ce:6e:56:a5:d9:23:ab:38:b2:3b:51:
#                    85:c0:1d:1b:b7:11:2f:05:69:47:d8:02:ca:92:a8:
#                    e1:33:de:85:08:9b:ed:90:d5:d8:21:99:71:bf:b6:
#                    f5:73:ef:67:08:98:64:d2:f2:2a:7a:4b:21:16:e1:
#                    1f:58:61:de:91:47:1f:21:9f:1f:fe:8c:23:86:83:
#                    18:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AB:9D:23:93:FD:1F:33:4A:32:2D:AA:24:5A:F2:2D:64:A9:01:9A:41
#    Signature Algorithm: sha1WithRSAEncryption
#         56:52:51:b9:0f:02:e1:f6:2e:9c:b1:31:5a:a6:f8:ce:bc:ee:
#         02:84:15:09:f1:28:52:5f:e7:e1:2c:bd:db:79:0a:7a:bf:eb:
#         62:9e:d5:86:47:29:ee:74:30:ec:4c:75:b5:1e:e3:aa:33:ef:
#         ad:e1:6a:4c:bf:37:01:be:55:83:4c:a9:52:d8:37:98:50:6f:
#         68:dd:47:41:b7:2c:30:c8:6e:4c:07:2c:c6:d3:49:b9:b5:5c:
#         d2:cb:cc:d4:36:c6:07:0d:18:4f:3f:63:00:c4:ec:b6:88:fb:
#         01:64:63:ad:d1:f7:77:7c:64:54:2b:12:3d:34:15:85:f0:a0:
#         ba:79:29:5f:98:9b:42:ea:ae:c1:a8:9f:13:89:8a:6d:e9:b8:
#         38:c9:61:ed:60:ec:f7:2a:58:05:9b:a1:60:78:83:17:e1:7e:
#         5f:e8:fd:78:e0:6b:56:2a:86:76:ae:5b:c2:5e:eb:45:e4:30:
#         b8:31:ed:64:b1:5d:2e:c0:3d:80:0d:c7:27:13:d3:76:e2:86:
#         fb:dc:db:80:0a:81:e1:fd:08:f9:0b:c4:31:b4:63:5b:e7:8c:
#         33:e5:06:b6:52:6a:b3:d7:e9:6b:e3:32:78:32:66:94:4e:dd:
#         8d:77:6d:d3:24:28:5b:54:61:77:02:67:75:94:4b:57:4b:e6:
#         6c:c5:39:6f

[p11-kit-object-v1]
label: "SAPO Class 3 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SAPO Class 3 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 2 (0x2)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ZA, ST=Western Cape, L=Somerset West, O=South African Post Office Limited, OU=SAPO Trust Centre, CN=SAPO Class 3 Root CA/emailAddress=pkiadmin@trustcentre.co.za
#        Validity
#            Not Before: Sep 15 00:00:00 2010 GMT
#            Not After : Sep 14 00:00:00 2030 GMT
#        Subject: C=ZA, ST=Western Cape, L=Somerset West, O=South African Post Office Limited, OU=SAPO Trust Centre, CN=SAPO Class 3 Root CA/emailAddress=pkiadmin@trustcentre.co.za
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:78:1a:07:bc:f6:fb:b4:b7:89:bc:d0:19:56:
#                    38:2a:59:9d:07:ea:1a:f9:f8:f8:68:67:5e:8f:ef:
#                    ca:f7:f5:6a:89:e6:a3:95:7f:a9:db:29:24:1c:35:
#                    d0:38:96:6c:3e:56:24:ff:5e:62:51:90:2e:87:e8:
#                    9c:c7:da:bc:33:f1:9e:a1:6f:0b:8e:0a:24:f4:f8:
#                    4d:90:a6:b2:cd:5e:11:d3:c2:97:4c:f5:5f:40:1d:
#                    26:24:4d:8d:09:10:0b:ff:bb:20:1b:93:26:19:0c:
#                    43:3f:e9:8e:bc:31:37:10:6e:91:ca:48:82:56:46:
#                    c7:bc:b9:3a:9e:46:81:66:cf:d9:e8:5c:10:cf:39:
#                    9e:65:c3:9e:c5:5a:f4:4b:cc:44:99:66:86:f4:72:
#                    1b:a3:53:49:ea:ae:47:cd:32:0d:70:e6:a0:a0:76:
#                    07:9d:ff:58:ef:e4:3c:91:c0:b5:e4:dc:b8:01:0c:
#                    d3:fe:b3:42:a0:3b:61:02:d4:37:5b:d7:4c:45:95:
#                    d2:75:5d:f5:6e:30:5f:57:51:8b:b2:ff:7e:c8:8b:
#                    9c:aa:a3:41:37:0c:10:91:a8:a6:85:5c:b9:c7:8f:
#                    05:51:b2:d0:78:d2:e2:4b:49:e9:d4:1a:a7:3b:ac:
#                    aa:33:e6:9a:2a:03:40:98:6f:74:52:13:31:94:d1:
#                    12:c1:b4:cb:30:f9:ff:44:b8:92:5b:52:d6:30:d9:
#                    33:d1:75:e3:19:a5:16:15:b7:54:57:f1:56:50:ce:
#                    4e:be:03:3b:2f:ec:b6:30:ee:14:60:5e:5f:7a:35:
#                    f4:4e:64:07:11:ea:a5:07:66:1b:6e:93:e2:b0:4f:
#                    5e:d6:e0:44:e0:b3:dc:ae:ef:b8:fd:a8:b3:ec:ec:
#                    e5:39:88:44:b4:a1:bb:14:60:64:8f:d6:92:93:cb:
#                    f3:cc:50:dd:e9:07:c8:67:67:f9:f0:87:84:91:b2:
#                    00:62:e9:bf:4a:15:74:c5:bf:04:4c:05:46:5d:0a:
#                    cb:e5:ea:61:00:e1:6f:41:b1:34:8e:a6:00:a2:7c:
#                    a6:a5:a6:fa:6c:4c:43:e5:a8:26:9a:34:98:1e:87:
#                    98:e7:4c:78:d1:8f:9f:05:55:5d:8a:4b:c9:cf:a0:
#                    0b:7d:06:90:9c:18:92:b2:c4:b2:d7:e3:45:d9:6b:
#                    73:c3:97:39:bf:29:1e:06:09:55:40:ba:bc:da:48:
#                    75:43:ed:fe:44:7e:3d:2c:e6:62:91:03:fd:3d:89:
#                    ef:7e:f4:5d:24:8f:a5:0b:2b:b3:3e:7a:29:28:bc:
#                    bb:3f:bf:eb:77:85:04:26:8b:94:b2:90:f5:eb:8d:
#                    4f:a2:44:22:50:a8:9c:2a:44:48:00:78:19:ab:9d:
#                    08:96:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                61:B3:79:52:9D:4A:95:92:51:8E:82:24:70:D3:8E:40:C8:C5:66:D0
#    Signature Algorithm: sha1WithRSAEncryption
#         7f:c6:b3:24:84:50:37:f9:c4:b0:c5:30:3c:16:e9:50:0d:7a:
#         ba:b4:3b:d2:23:e5:e9:89:78:6a:e5:e3:1b:05:1e:91:1c:ce:
#         06:97:8d:66:16:07:44:ef:81:b9:08:7e:a3:c7:39:34:b8:bf:
#         9a:6d:8d:b0:c1:20:42:2e:0d:f7:0b:06:03:4f:6e:cb:bc:b7:
#         b0:2f:19:71:8d:8e:af:0a:4d:58:31:8b:44:99:2a:28:66:85:
#         c7:80:26:66:b0:47:c2:39:b2:fa:4f:3e:55:bd:dc:89:27:4b:
#         73:33:04:fe:7b:47:90:c9:05:c0:2d:33:f8:b7:08:82:29:41:
#         43:fd:26:53:e6:fa:1f:37:56:8d:4f:17:ba:d8:fd:3a:84:70:
#         d8:3e:f0:33:ae:c4:05:48:54:a1:b9:d5:21:3f:ea:3e:c7:a9:
#         31:47:f7:9b:ae:4a:62:98:d1:67:20:65:de:79:e1:b1:32:1e:
#         6b:df:fb:80:6b:47:5c:39:c7:0e:08:aa:c7:a3:ee:29:e9:34:
#         e2:9b:f9:75:b8:26:eb:88:9d:b4:39:11:2e:70:fd:51:04:32:
#         bb:0f:79:84:50:21:45:7c:2f:e4:d9:ff:25:38:06:23:ab:4e:
#         b1:0e:dc:3b:31:0a:ad:da:4b:00:69:6b:2e:e2:c3:0c:c9:05:
#         01:45:66:e1:a5:89:61:1c:64:99:8d:0b:98:90:b3:7e:66:3b:
#         0b:d8:ab:e8:75:0e:d9:7f:9a:6e:7d:c9:83:27:c9:bc:e8:34:
#         38:c2:5a:87:32:72:07:0c:fe:d5:94:d1:f0:c0:78:f2:80:a8:
#         46:f5:6b:9a:ec:e2:d9:16:8e:8a:fa:84:f6:d1:52:c9:9c:b2:
#         21:56:60:43:a6:10:f7:7f:49:bf:be:07:d3:50:64:6d:02:ba:
#         2a:55:2c:cf:d9:c2:6e:af:7c:0b:48:d0:f1:e1:a7:c2:ad:74:
#         8f:86:e4:ed:aa:fa:5c:83:7d:42:e8:7d:07:1d:07:55:cc:2b:
#         69:32:b9:77:82:68:c6:77:f2:22:69:a6:c9:0a:5d:87:99:e5:
#         71:9e:7d:2f:13:1e:d2:f4:fd:09:79:27:58:2b:0a:87:81:2a:
#         fb:6a:23:2d:4b:24:85:74:16:47:18:0f:09:c5:fe:a9:48:24:
#         e3:ac:d0:69:3d:5f:53:98:32:bd:ec:e0:51:c1:53:4a:b1:f6:
#         3b:f0:34:48:f5:9a:de:dc:d1:e0:e3:bd:25:b3:44:e8:3a:73:
#         c9:79:d0:ac:d1:ed:e2:00:0a:5f:a1:1d:66:59:4a:73:68:d4:
#         05:72:33:38:a7:6b:af:91:db:0d:c7:8c:40:e8:9e:90:88:c9:
#         fb:fe:24:d7:81:ac:f3:de

[p11-kit-object-v1]
label: "SAPO Class 4 Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SAPO Class 4 Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3 (0x3)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ZA, ST=Western Cape, L=Somerset West, O=South African Post Office Limited, OU=SAPO Trust Centre, CN=SAPO Class 4 Root CA/emailAddress=pkiadmin@trustcentre.co.za
#        Validity
#            Not Before: Sep 15 00:00:00 2010 GMT
#            Not After : Sep 14 00:00:00 2030 GMT
#        Subject: C=ZA, ST=Western Cape, L=Somerset West, O=South African Post Office Limited, OU=SAPO Trust Centre, CN=SAPO Class 4 Root CA/emailAddress=pkiadmin@trustcentre.co.za
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:db:dc:ed:48:9a:a0:a3:9f:e0:11:8e:d9:c8:92:
#                    75:3a:55:c1:51:22:ca:0b:7a:a4:35:0d:c5:e6:57:
#                    2d:83:f0:2a:6f:22:38:37:31:6d:7c:85:24:a2:06:
#                    2f:43:82:3d:45:30:40:25:1c:ee:58:47:41:e6:f0:
#                    9e:00:1e:f8:f4:2f:11:bb:92:b2:98:45:2d:d3:1f:
#                    80:c9:76:14:13:c3:cc:40:e6:ad:eb:39:60:fc:cf:
#                    c8:df:2a:fd:8c:12:51:ef:cf:0c:64:c6:57:e8:23:
#                    51:5d:e7:66:52:ea:66:bd:93:7f:9d:7a:28:f1:19:
#                    70:6e:84:9f:30:47:b7:b0:39:6b:13:2c:eb:4b:4d:
#                    2e:af:3f:bf:fd:02:13:4a:39:e7:3e:33:c5:10:91:
#                    51:be:0f:47:9d:4d:52:fc:2c:f3:e3:13:a2:00:82:
#                    e1:14:0c:cd:d2:9e:b3:f2:e0:81:da:be:99:92:53:
#                    e3:7d:99:77:43:e1:e1:48:29:81:9e:d6:05:57:3a:
#                    71:dc:3e:98:ad:58:70:6f:46:bb:7e:32:03:e2:83:
#                    9b:59:57:f7:f8:b3:cd:54:16:ec:b6:ad:a1:1c:1a:
#                    92:d1:d4:29:9e:8f:cd:b3:e8:7d:50:f1:c2:82:ac:
#                    ba:bd:b4:75:56:a0:f5:45:5d:18:7d:2c:8c:f1:7b:
#                    41:cc:86:b1:9a:84:4b:0a:2a:5d:9b:96:e1:cd:fa:
#                    ab:16:27:41:e7:95:35:a6:cb:8a:a7:96:f3:a5:cc:
#                    51:f9:2d:7d:1e:43:fb:dc:6d:b5:b9:38:bd:05:fb:
#                    58:fa:2e:d3:ec:5e:64:2d:af:58:01:4a:7c:22:46:
#                    d3:41:cb:3d:e4:96:5e:49:43:38:bb:89:eb:f4:9c:
#                    69:39:12:03:5c:84:bb:e5:8c:1e:ea:e0:66:bb:c0:
#                    bf:8c:fe:9e:0a:4d:3d:68:3f:40:76:d6:32:a9:ea:
#                    45:b8:6a:07:52:8e:cd:51:f1:5d:28:63:0c:d3:59:
#                    38:fc:c9:fd:82:c9:45:20:bc:e6:e8:cc:a2:0c:cb:
#                    7b:64:39:49:46:45:f5:73:1c:6a:97:20:eb:21:42:
#                    f7:b4:20:52:b7:4a:fd:75:bc:cb:0f:0c:67:11:57:
#                    1f:f7:30:f1:ab:90:cc:5d:3c:96:05:62:d3:ca:55:
#                    01:4b:46:c5:80:87:1c:72:d0:73:54:21:ea:d7:a3:
#                    9c:d3:ae:7f:d4:53:d9:28:fc:57:de:e5:3f:52:4a:
#                    bb:c8:26:24:47:53:1c:73:ba:cf:c6:b4:30:cd:5e:
#                    71:c7:56:bc:49:38:25:e6:c5:10:09:78:d9:d4:1d:
#                    5c:cd:6e:ed:db:91:5c:a1:53:14:56:aa:8d:27:a9:
#                    a6:8e:1b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                16:84:2D:FB:1B:E7:B4:1E:68:98:D3:42:20:1A:6E:7E:4F:91:57:02
#    Signature Algorithm: sha1WithRSAEncryption
#         7b:e3:0d:63:3a:64:20:6d:cc:fc:2c:b8:e9:d6:ab:db:d7:ab:
#         26:29:47:a2:0c:56:ed:75:cc:95:99:52:36:cb:20:fb:11:34:
#         17:42:4e:75:05:b0:d8:e4:b8:b0:84:2f:98:19:b9:fb:d0:39:
#         6c:72:06:18:c9:5c:8a:7a:74:08:37:48:69:fd:22:a1:5d:c5:
#         d7:78:13:f0:28:42:41:c3:c9:c3:39:09:07:d4:a1:f8:37:22:
#         69:e4:df:32:55:6f:c2:7c:b9:93:f1:b2:37:75:cc:ae:d2:33:
#         96:8c:36:f7:01:ed:e3:64:e9:0b:68:5b:10:aa:01:36:99:7c:
#         cf:9a:94:5d:fd:1a:59:61:a2:65:15:7d:9e:17:64:d4:9f:53:
#         98:01:fd:71:57:d0:5d:40:11:16:3f:3f:44:d2:af:c9:fc:08:
#         32:7d:76:f8:d5:43:e8:dc:36:68:07:c3:4e:c3:96:97:57:c6:
#         7d:36:5e:db:70:ad:fe:ae:d4:88:9d:b5:a4:60:d6:a3:62:be:
#         7c:f9:34:1e:fc:bb:f4:4a:72:c5:83:1e:46:68:c3:0e:97:83:
#         18:3d:d3:0e:0a:11:35:7c:69:95:c5:ab:2a:f5:c8:39:10:4d:
#         0c:89:30:29:89:49:1b:44:97:91:f4:ea:65:21:1b:3f:0a:43:
#         72:82:1c:6d:11:5d:e0:22:45:5f:61:4c:a2:a6:fa:df:a3:46:
#         ba:e1:81:60:6c:32:b4:fc:e4:dc:36:05:e4:33:f7:eb:8f:77:
#         49:aa:8d:0a:ef:48:8a:e6:41:97:7e:3b:ab:43:87:f2:08:60:
#         0b:6f:d7:59:66:fd:2b:bb:2f:ce:33:4f:72:e0:b6:d7:b3:53:
#         57:89:f0:3b:bc:6e:e2:10:bf:73:3e:62:8f:a5:08:e9:53:67:
#         c1:4e:c1:2e:42:43:a7:b2:a4:f9:16:8b:42:ee:dc:34:7f:48:
#         b3:90:db:24:e2:c8:e4:53:35:53:9c:ea:37:85:cf:bf:98:06:
#         35:47:26:d7:ae:6d:dd:84:a9:63:58:26:41:f5:75:32:2e:61:
#         9e:4f:93:52:52:f6:5a:23:eb:c1:a0:73:26:25:22:42:91:91:
#         91:80:4f:ff:88:ce:5e:73:e7:96:c2:ed:09:12:f7:76:96:a9:
#         79:62:90:49:81:83:9f:0c:32:32:e2:5b:ca:dd:48:34:ac:87:
#         8e:71:95:ae:4c:e4:7c:78:1d:a7:51:c3:bd:11:fa:02:d1:95:
#         89:73:08:46:22:89:69:00:cf:4f:80:c1:4d:5b:94:c4:ca:99:
#         51:98:2f:0d:bd:7d:54:64:d4:0a:da:27:59:a7:37:bb:56:0c:
#         d0:06:a2:72:b9:12:b9:5b

[p11-kit-object-v1]
label: "SECOM Trust Systems CO.,LTD."
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvH/sV5sk4P6cukJ5qYiK
+oDg9QcpQ+qOCjQ2jRz6p7U5eP+Xdfcv5KprBIREyqbiaI79VVBiD6RxDs4HOC1C
hVCtPJZvi9WiDs/eSYk91mQuOOUebLVXip7vSA7NemkWh0S1kOQGna6hBJdYee8g
SoJrjCK/7B8P6YRx7fEO5LgYE8xWNl3Rmh5RazluYHaINAvzs9Gwncph4mQdwUYH
uGPdHjNls44JVVI9tb3/B+utYVUYLKlpmEqqQMUzFGV0APmR3q8DSMVAVNwPhJBo
IMWSltwu5QJFqsBfVPht6knPXWxLr++awlZcxjVWQmowX8Kr9uI9P7PJEY8xTNef
SQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SECOM Trust Systems CO.,LTD."
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=JP, O=SECOM Trust Systems CO.,LTD., OU=Security Communication EV RootCA1
#        Validity
#            Not Before: Jun  6 02:12:32 2007 GMT
#            Not After : Jun  6 02:12:32 2037 GMT
#        Subject: C=JP, O=SECOM Trust Systems CO.,LTD., OU=Security Communication EV RootCA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bc:7f:ec:57:9b:24:e0:fe:9c:ba:42:79:a9:88:
#                    8a:fa:80:e0:f5:07:29:43:ea:8e:0a:34:36:8d:1c:
#                    fa:a7:b5:39:78:ff:97:75:f7:2f:e4:aa:6b:04:84:
#                    44:ca:a6:e2:68:8e:fd:55:50:62:0f:a4:71:0e:ce:
#                    07:38:2d:42:85:50:ad:3c:96:6f:8b:d5:a2:0e:cf:
#                    de:49:89:3d:d6:64:2e:38:e5:1e:6c:b5:57:8a:9e:
#                    ef:48:0e:cd:7a:69:16:87:44:b5:90:e4:06:9d:ae:
#                    a1:04:97:58:79:ef:20:4a:82:6b:8c:22:bf:ec:1f:
#                    0f:e9:84:71:ed:f1:0e:e4:b8:18:13:cc:56:36:5d:
#                    d1:9a:1e:51:6b:39:6e:60:76:88:34:0b:f3:b3:d1:
#                    b0:9d:ca:61:e2:64:1d:c1:46:07:b8:63:dd:1e:33:
#                    65:b3:8e:09:55:52:3d:b5:bd:ff:07:eb:ad:61:55:
#                    18:2c:a9:69:98:4a:aa:40:c5:33:14:65:74:00:f9:
#                    91:de:af:03:48:c5:40:54:dc:0f:84:90:68:20:c5:
#                    92:96:dc:2e:e5:02:45:aa:c0:5f:54:f8:6d:ea:49:
#                    cf:5d:6c:4b:af:ef:9a:c2:56:5c:c6:35:56:42:6a:
#                    30:5f:c2:ab:f6:e2:3d:3f:b3:c9:11:8f:31:4c:d7:
#                    9f:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                35:4A:F5:4D:AF:3F:D7:82:38:AC:AB:71:65:17:75:8C:9D:55:93:E6
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         a8:87:e9:ec:f8:40:67:5d:c3:c1:66:c7:40:4b:97:fc:87:13:
#         90:5a:c4:ef:a0:ca:5f:8b:b7:a7:b7:f1:d6:b5:64:b7:8a:b3:
#         b8:1b:cc:da:fb:ac:66:88:41:ce:e8:fc:e4:db:1e:88:a6:ed:
#         27:50:1b:02:30:24:46:79:fe:04:87:70:97:40:73:d1:c0:c1:
#         57:19:9a:69:a5:27:99:ab:9d:62:84:f6:51:c1:2c:c9:23:15:
#         d8:28:b7:ab:25:13:b5:46:e1:86:02:ff:26:8c:c4:88:92:1d:
#         56:fe:19:67:f2:55:e4:80:a3:6b:9c:ab:77:e1:51:71:0d:20:
#         db:10:9a:db:bd:76:79:07:77:99:28:ad:9a:5e:da:b1:4f:44:
#         2c:35:8e:a5:96:c7:fd:83:f0:58:c6:79:d6:98:7c:a8:8d:fe:
#         86:3e:07:16:92:e1:7b:e7:1d:ec:33:76:7e:42:2e:4a:85:f9:
#         91:89:68:84:03:81:a5:9b:9a:be:e3:37:c5:54:ab:56:3b:18:
#         2d:41:a4:0c:f8:42:db:99:a0:e0:72:6f:bb:5d:e1:16:4f:53:
#         0a:64:f9:4e:f4:bf:4e:54:bd:78:6c:88:ea:bf:9c:13:24:c2:
#         70:69:a2:7f:0f:c8:3c:ad:08:c9:b0:98:40:a3:2a:e7:88:83:
#         ed:77:8f:74

[p11-kit-object-v1]
label: "SI-TRUST Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SI-TRUST Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            90:ae:77:76:00:00:00:00:57:1d:d0:6f
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=SI, O=Republika Slovenija/2.5.4.97=VATSI-17659957, CN=SI-TRUST Root
#        Validity
#            Not Before: Apr 25 07:38:17 2016 GMT
#            Not After : Dec 25 08:08:17 2037 GMT
#        Subject: C=SI, O=Republika Slovenija/2.5.4.97=VATSI-17659957, CN=SI-TRUST Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (3072 bit)
#                Modulus:
#                    00:d3:cb:9c:2d:c2:e0:30:43:65:31:24:ff:4b:b0:
#                    38:d9:a9:53:d7:35:d1:db:b7:4b:93:b4:72:8d:f1:
#                    cb:95:d2:53:2b:74:9b:32:9a:a4:2f:3e:02:06:dd:
#                    af:70:15:a1:aa:cf:11:87:8a:66:7b:cb:cc:1d:70:
#                    44:5c:8f:ac:ca:e6:c3:5b:27:b4:8d:a3:8e:10:bf:
#                    6e:54:74:08:70:8a:23:e8:ca:c7:74:c4:66:91:20:
#                    dd:4b:e8:a5:84:75:a5:98:95:82:8b:1b:e1:20:24:
#                    07:46:ab:0c:65:36:40:67:8b:75:ee:a9:d9:91:29:
#                    1b:ed:6f:2d:45:c2:d6:e2:60:01:b1:f3:4e:39:2b:
#                    3b:6f:3f:85:be:08:f6:53:2b:7b:a2:c9:45:a1:44:
#                    81:80:66:9a:60:3a:1b:c4:be:0c:cc:30:10:7f:11:
#                    36:38:4a:e6:9b:a1:96:53:9c:94:cc:11:c6:04:4c:
#                    a2:55:4b:ff:80:e1:af:8c:1c:35:fc:b9:93:37:df:
#                    f9:5d:3d:dc:eb:0d:27:6c:44:c9:59:66:2b:56:6f:
#                    ff:04:1b:f7:f5:69:c3:5d:c3:18:fe:bd:a7:d9:64:
#                    2f:a2:9f:60:d9:72:6c:3d:3c:75:f2:25:27:98:2e:
#                    3a:b8:c9:dd:4d:75:bd:ab:b0:22:61:58:01:37:28:
#                    a6:20:9d:2e:60:5c:fb:90:bc:46:43:b8:fe:6d:d8:
#                    c0:66:22:24:6b:34:78:22:e5:b9:e2:58:e9:48:38:
#                    ee:4c:bd:01:7b:6e:3e:40:ea:d1:c2:0a:42:93:67:
#                    c3:26:2f:3f:07:5b:cf:af:e3:1d:e8:3a:e2:65:e1:
#                    84:91:3f:f5:66:00:fd:aa:33:46:42:ec:16:3e:d2:
#                    13:65:2f:0e:09:53:f6:e4:2a:75:14:9c:19:33:16:
#                    9a:45:e1:db:57:cf:cf:38:d4:a7:f7:ed:58:43:e4:
#                    0e:98:5c:c4:e0:31:3f:94:a4:6f:4b:4a:a2:d5:4a:
#                    8d:26:a9:1d:64:25:08:35:0d:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:4C:A3:C3:68:5E:08:02:63
#
#            X509v3 Subject Key Identifier: 
#                4C:A3:C3:68:5E:08:02:63
#    Signature Algorithm: sha256WithRSAEncryption
#         26:23:85:bb:5d:41:19:6e:92:83:8a:ee:01:8b:04:35:19:7f:
#         ab:8f:dc:d6:33:c1:f9:79:96:5e:23:f5:f0:ce:dd:ea:db:61:
#         3b:5a:af:dd:58:e9:42:89:40:ef:f9:d9:67:11:7f:4d:f1:ed:
#         e9:11:7b:b1:41:0f:ed:a4:d2:16:b6:ef:c1:fd:8b:f6:11:2b:
#         2c:ef:fc:07:06:46:0c:cf:02:0b:ed:3b:de:8f:09:b9:33:ab:
#         26:80:54:44:42:65:d7:e7:af:cd:50:0e:ca:c8:88:a1:12:9c:
#         2a:95:3b:3e:54:3c:48:73:f6:7c:78:d4:9b:ff:93:f7:45:e4:
#         29:84:63:fc:fa:7e:1a:e7:5c:e0:72:57:b0:2f:78:1d:30:c6:
#         13:fd:88:5f:b1:65:88:da:5e:97:13:81:7b:fe:1e:cf:7b:bf:
#         57:30:c1:70:92:43:a6:99:f0:55:9f:98:c5:23:42:bd:74:1c:
#         31:8e:12:a5:d9:45:6a:2a:5a:c8:58:cd:bd:d6:dd:3e:35:0b:
#         19:7f:03:1c:ce:07:0f:87:45:93:15:a1:6b:bd:34:1c:e0:de:
#         f5:d4:b8:e5:91:1c:4b:05:b5:27:26:bc:cf:d1:09:98:16:c6:
#         e1:f1:55:4b:3a:7b:6d:de:c6:67:b6:c1:37:2d:9f:a8:8e:59:
#         c7:b7:a6:c5:ef:df:16:e2:ed:de:b2:b7:f3:a2:36:a4:28:32:
#         3a:0a:94:cb:3f:5e:fe:6e:59:ed:ba:36:b2:93:d6:c6:c3:19:
#         fe:f5:99:78:eb:47:47:e5:ad:42:7a:ec:bc:7b:c9:2e:41:4e:
#         4d:0f:04:0e:8a:4b:33:87:dc:f1:76:7c:5a:18:8c:9c:0a:12:
#         d7:a2:b3:c2:85:87:ae:6d:31:50:62:32:21:a0:68:16:5f:94:
#         35:74:55:29:d2:71:81:08:4a:e1:d7:5d:aa:54:01:b3:1b:7c:
#         59:ae:be:ac:0c:ca:b8:40:64:67:5b:9d:ea:06:06:11:d6:d0:
#         30:73:1e:e3:bc:2b

[p11-kit-object-v1]
label: "SITHS Root CA v1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SITHS Root CA v1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            90:66:61:a8:62:3d:65:44:77:04:3f:71:9a:c3:97:0c
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=SE, O=Inera AB, CN=SITHS Root CA v1
#        Validity
#            Not Before: Mar 29 07:54:49 2012 GMT
#            Not After : Mar 29 07:54:49 2032 GMT
#        Subject: C=SE, O=Inera AB, CN=SITHS Root CA v1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:ed:e6:9e:a8:ac:a8:ff:d8:35:b9:fc:fb:f0:
#                    95:4f:3f:3d:47:23:d1:92:c9:c9:f8:f0:e2:1f:86:
#                    ad:88:3f:e0:00:cf:4f:11:95:61:3d:a5:d6:20:19:
#                    d1:88:d2:c2:56:09:45:20:a1:2a:ea:22:c3:ea:ba:
#                    cc:42:69:9e:b8:85:9f:70:c0:6c:a7:be:6f:a3:5c:
#                    dd:43:88:07:cd:ca:29:df:69:7a:1f:2d:9f:56:6a:
#                    1b:62:20:21:61:c6:50:4b:65:75:49:46:bf:5c:d7:
#                    29:1e:c2:1e:85:42:e1:0e:38:4d:c3:36:71:42:44:
#                    51:3a:d1:58:cc:c9:b4:aa:6c:40:c7:83:f1:c7:09:
#                    9f:4a:f3:6b:f3:07:16:35:f4:82:8e:5e:8b:84:dc:
#                    71:79:b9:fb:6e:57:45:b7:c5:70:3a:ff:42:02:d1:
#                    34:bf:85:70:6d:4f:8f:e7:1f:19:21:f7:d5:34:bc:
#                    ee:59:e6:2e:22:f3:71:82:62:19:9f:05:64:7c:3b:
#                    22:71:18:a5:2d:c1:78:58:99:d1:af:de:94:40:06:
#                    19:76:13:50:87:23:cb:47:57:ae:6c:c5:13:ea:9a:
#                    85:52:c3:ca:57:26:1f:de:16:6d:ad:71:7e:f2:d8:
#                    61:fd:e6:36:4e:71:1a:9d:d3:20:35:ad:12:21:58:
#                    75:36:8b:89:16:a4:37:28:cf:a0:83:3a:40:a3:ca:
#                    11:ef:b4:e5:90:1b:e3:65:92:67:98:6f:0e:29:e5:
#                    67:18:d7:88:fa:8d:b6:c7:7a:a5:a0:7f:91:1e:ab:
#                    b6:f9:74:98:76:52:60:2f:5a:37:99:a8:db:d1:3e:
#                    d6:84:6a:6f:52:d3:b4:da:1a:c7:b8:b2:d1:94:11:
#                    1f:c5:88:89:e9:5b:a9:a3:94:e6:a2:7d:4d:a7:32:
#                    89:a1:de:26:6b:cd:d5:a3:f2:32:1b:da:35:13:89:
#                    11:49:4d:bf:46:31:bb:e9:2d:13:f8:0e:00:a5:fe:
#                    03:f5:56:46:3c:8f:13:2b:e0:e5:c7:1e:03:df:8a:
#                    ea:46:85:45:86:d9:ed:5e:0b:b8:64:93:f4:d0:58:
#                    2e:29:8d:45:57:4d:89:75:90:65:cc:6a:3b:c1:9c:
#                    80:b9:b4:80:35:03:8e:df:6e:2a:93:be:a6:be:0a:
#                    01:44:6f:40:73:aa:2a:82:1c:84:76:7f:69:dd:b1:
#                    bb:92:58:e8:40:51:72:5c:f7:3e:39:44:fa:a5:99:
#                    a0:7f:8d:8b:b0:41:58:77:ad:22:c5:a0:c0:ba:fd:
#                    31:99:35:6a:d9:c9:20:1a:5e:f3:bd:bc:08:7f:dd:
#                    49:2d:2f:9d:91:10:0d:5b:a8:3f:cf:b4:57:73:3b:
#                    5b:e0:67
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.2.752.74.8.1.2.1.1
#                  CPS: http://cps.siths.se/sithsrootcav1.html
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                32:F9:9D:4F:69:E9:98:8D:A0:D6:8C:7D:F9:1D:CE:A3:3C:BA:76:15
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:3f:e3:78:58:c8:0a:ca:34:22:09:d8:b2:05:8b:d1:65:9c:
#         e1:d7:d7:7d:0a:c0:1c:98:a5:24:52:38:33:da:64:22:23:80:
#         ae:fe:3d:80:be:4f:8f:dd:83:f6:0d:4c:33:5a:d5:a3:3b:50:
#         8a:52:5a:26:14:73:51:94:e4:52:97:63:db:b7:06:a8:ef:8f:
#         ad:e2:ed:de:a3:bf:20:d1:46:db:2d:78:e8:2c:27:44:9c:3c:
#         ec:b7:17:fc:89:97:f3:a3:a2:5e:c2:59:53:e0:cf:e4:b5:01:
#         3b:63:53:28:d3:af:66:4b:34:39:af:61:0e:3e:9b:ee:b3:89:
#         d6:93:a0:3b:01:c4:b3:23:54:10:3c:4d:d7:aa:b0:da:d9:6c:
#         ca:30:44:2d:dd:b2:28:62:8a:41:60:f2:40:13:6c:b0:7c:3e:
#         41:e0:8b:a6:34:f1:e7:ae:51:87:03:8e:99:7f:d9:68:a2:f6:
#         9c:0d:79:82:b2:9f:df:24:c8:66:60:e8:b6:48:44:27:c8:6b:
#         56:b7:44:85:ce:02:b7:d3:8a:71:5c:57:51:57:21:8c:ea:c2:
#         51:0f:50:3f:80:ab:04:4d:c9:52:dd:e4:a5:f2:2e:1f:6d:75:
#         ba:87:1d:90:0b:ee:18:84:80:73:bb:8b:95:84:8a:61:0d:4e:
#         5d:62:9f:e3:66:0c:fb:36:0e:27:d3:48:f8:06:88:06:a5:5f:
#         ee:7e:5c:dd:ad:0a:1d:3d:1c:aa:40:79:98:79:b8:50:8c:36:
#         8d:0b:0a:36:0b:d5:3e:e7:5d:81:dd:6c:dc:6d:b1:6f:0d:74:
#         9e:2c:2f:c2:05:f2:44:11:b2:33:fa:81:c5:4a:6d:3e:45:d6:
#         2c:e2:6b:5f:2e:e4:43:95:51:1b:99:31:05:df:25:1b:73:d1:
#         7b:9c:c4:73:49:fb:62:60:d9:69:63:dd:d1:3e:65:6d:47:fa:
#         64:4c:03:58:50:d9:a6:be:e5:2a:68:eb:3f:8b:10:f1:e6:bb:
#         22:06:28:9a:a0:a4:98:69:6f:36:b4:d4:0d:0e:0c:7d:c0:29:
#         31:bb:2c:03:27:e1:67:a7:bd:d1:8b:2e:b6:87:c4:0a:e0:09:
#         0b:82:a1:e6:4f:58:9d:fb:d8:f8:61:e1:ca:97:c4:b8:b7:50:
#         39:cc:31:4e:fd:2d:1c:1a:f6:47:e3:6c:ec:1b:05:e8:7f:17:
#         35:10:84:da:33:e7:34:e6:b5:a4:eb:c4:22:07:4a:f6:9b:58:
#         d8:0f:9c:40:fb:b1:8b:5f:a2:fd:99:ea:a2:7b:59:62:d1:5e:
#         ae:d1:4a:72:18:2b:4b:36:39:72:07:9a:5a:f0:63:3a:cf:1b:
#         f9:cf:dd:48:73:59:70:e4

[p11-kit-object-v1]
label: "SSC GDL CA Root A"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC GDL CA Root A"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            50:96:6e:72:bd:10:d6:8c:4f:6b:c7:62:3f:9c:70:38
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=LT, O=Skaitmeninio sertifikavimo centras, OU=CA ROOT Services, CN=SSC GDL CA Root A
#        Validity
#            Not Before: Jun  4 13:00:47 2013 GMT
#            Not After : Jun  4 13:00:47 2033 GMT
#        Subject: C=LT, O=Skaitmeninio sertifikavimo centras, OU=CA ROOT Services, CN=SSC GDL CA Root A
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9f:5c:4a:fc:1c:6b:b7:19:97:d9:01:37:3e:0a:
#                    e9:18:86:d3:05:ea:a2:da:df:09:82:57:ee:6d:2b:
#                    8d:9a:16:3d:55:3e:89:d7:c9:be:e1:01:a3:80:35:
#                    a3:46:ec:e1:11:ed:a8:3c:95:e5:3a:52:81:ca:4e:
#                    98:08:2a:0f:84:dc:bb:e9:a4:f9:79:b6:49:c2:15:
#                    9e:a0:95:e8:0f:48:f7:50:d7:f9:a6:43:d4:07:0b:
#                    30:41:c9:36:12:62:b7:6c:78:0b:06:3f:2e:b3:9e:
#                    ea:30:fd:41:63:4f:84:2c:37:ce:07:a6:39:64:7b:
#                    71:15:5b:2b:01:f2:d7:7d:98:0d:18:3e:db:85:9a:
#                    e0:01:50:21:24:b8:1b:a3:63:43:d3:81:5b:4d:0c:
#                    81:4e:38:6b:ce:60:c5:ea:07:e2:27:e2:eb:f6:c3:
#                    54:9a:c8:c9:b3:d1:2b:32:37:02:bc:6d:7b:9e:90:
#                    77:23:8d:93:13:26:3b:87:57:a3:65:4f:26:58:14:
#                    6a:63:25:9a:e5:61:fa:1c:57:fd:0d:2c:69:0f:c6:
#                    0a:f0:26:39:17:02:a3:d6:73:81:42:c3:42:31:83:
#                    8b:e0:fa:4b:4e:58:61:31:28:92:3c:c6:c9:10:08:
#                    c9:0c:5b:44:ac:63:c2:d7:62:19:f2:71:ee:20:b7:
#                    49:83:19:9e:47:da:56:c5:1c:ac:a4:39:68:17:5f:
#                    11:1a:6c:aa:a5:92:8f:bd:1b:cb:c5:e0:02:80:55:
#                    d3:70:53:e5:8b:2a:fe:42:ea:bd:3b:5c:e3:52:00:
#                    7d:78:3f:26:cc:11:ae:34:d1:32:0c:f8:7b:a0:d1:
#                    7d:3d:e3:8a:bc:be:1e:1e:92:3f:38:b2:5f:32:5e:
#                    35:c4:7e:c2:92:0d:9d:b6:cb:59:d5:eb:12:6a:dd:
#                    72:21:51:11:b0:73:e5:32:e9:d6:cc:0e:dd:b3:39:
#                    5a:22:ef:e4:f5:e9:06:69:86:2a:7c:73:af:18:22:
#                    73:2c:36:25:dc:55:a9:52:31:b3:8a:8e:15:7d:b2:
#                    4e:10:7b:50:8a:00:4c:ba:87:e2:45:53:77:7e:4d:
#                    65:02:6b:8c:93:b6:6b:75:ed:ef:96:b7:48:8e:a8:
#                    e0:ba:b9:82:b2:52:6d:21:ff:92:ba:d1:3e:b0:5c:
#                    b1:ab:19:0e:19:73:46:2b:d3:52:48:65:34:da:04:
#                    35:d2:78:3e:cf:63:35:a4:53:e6:4b:e3:50:83:bd:
#                    f3:9b:87:b2:21:da:48:a1:7a:4b:ec:b2:e2:f1:d4:
#                    25:05:94:53:16:4c:2b:66:24:10:c8:e0:d7:9c:12:
#                    a4:94:c2:01:23:93:a1:00:a6:e0:6e:bb:39:e2:f5:
#                    7a:68:a9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A0:11:7E:1F:E4:94:64:51:3B:12:39:7A:6C:DD:49:93:F9:FD:C0:5C
#    Signature Algorithm: sha256WithRSAEncryption
#         0c:f1:4b:8c:e1:4f:16:16:d2:ea:62:92:b6:ad:d4:52:8e:0b:
#         19:64:4b:39:f0:98:39:73:4a:52:ea:4e:cd:8e:64:47:b0:30:
#         8f:3c:0f:2d:da:22:65:f3:19:58:32:3c:7f:83:8f:0a:0c:e5:
#         54:e6:a9:be:b8:ae:97:56:e6:b7:0d:19:7c:bd:97:2c:6a:2a:
#         a5:56:73:82:de:4e:98:8b:3d:1c:c4:d0:2b:2b:bb:c5:0c:f8:
#         4e:fe:2d:ae:bf:a9:67:7f:57:b3:6f:ed:ff:8b:d3:56:0c:ef:
#         30:8c:c1:5e:a6:e9:59:8a:3c:2e:dc:47:cf:cc:94:5e:83:ac:
#         14:76:fa:7e:bc:0c:a3:0e:5c:1b:88:ec:2b:1b:35:68:88:b1:
#         f5:7b:c5:f3:b3:c5:1a:bc:fb:ef:b5:5e:df:f0:39:1e:75:68:
#         ed:44:c2:4b:22:70:3e:5c:6b:94:c9:10:ac:f0:fd:c8:2f:7e:
#         23:e2:81:a7:1b:ce:0c:ba:45:32:27:50:45:39:ac:e0:fe:00:
#         b4:2a:75:07:0c:67:1b:bb:71:c0:82:e3:97:56:97:d0:e4:77:
#         59:b9:ff:7c:67:5c:84:65:bb:08:36:a8:4b:4e:91:c2:69:fe:
#         1d:ec:9a:13:1f:75:33:2c:29:c6:e9:b0:68:90:23:ff:23:5f:
#         7f:c6:3b:a7:28:10:b8:1f:a2:88:cd:64:16:25:4f:e3:80:b7:
#         c0:4a:80:57:f0:90:db:3a:b2:02:32:20:d5:6b:c8:d8:14:40:
#         c9:d9:38:19:54:38:eb:e8:65:3b:6f:5c:d5:45:7a:af:db:d9:
#         d8:95:9e:b6:a7:95:cd:1c:09:1d:02:1e:01:e9:04:95:5d:85:
#         97:38:15:bd:a8:c7:99:de:d3:44:42:5d:86:83:41:24:7c:51:
#         89:aa:43:09:27:34:e8:f1:0a:b5:96:4b:b4:f3:a0:fe:f2:00:
#         8d:6a:3b:74:b9:43:b9:66:b9:cf:ea:eb:37:ce:ff:9b:e9:23:
#         f8:6c:d3:23:fd:e8:e9:e0:6e:f8:fb:0d:52:40:8a:ac:80:6b:
#         20:10:5d:d0:a8:fd:aa:3d:39:11:2b:2f:ff:52:91:3a:a0:dc:
#         8a:c7:76:36:11:59:85:bb:30:8a:a4:48:30:9c:61:43:ab:d4:
#         af:76:ed:c0:bf:17:94:78:35:db:48:37:08:d4:8e:6a:00:e9:
#         22:dd:ca:f0:d3:12:38:3c:98:9f:60:4c:6d:3f:42:fd:ef:8c:
#         9a:b7:1e:71:7a:1a:49:d4:60:c9:eb:8f:f4:e9:c6:bf:70:54:
#         88:d2:c7:57:3b:56:cd:d7:6e:dc:ed:0d:74:7e:e5:75:41:91:
#         57:93:34:7d:a9:f5:bd:87

[p11-kit-object-v1]
label: "SSC GDL CA Root B"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC GDL CA Root B"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3e:8c:4f:bc:e4:29:83:82:4d:84:55:8e:d5:35:80:cf
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=LT, O=Skaitmeninio sertifikavimo centras, OU=CA ROOT Services, CN=SSC GDL CA Root B
#        Validity
#            Not Before: Jun  4 14:20:15 2013 GMT
#            Not After : Jun  4 14:21:55 2033 GMT
#        Subject: C=LT, O=Skaitmeninio sertifikavimo centras, OU=CA ROOT Services, CN=SSC GDL CA Root B
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:8f:95:e9:d2:eb:c1:73:25:c7:38:67:f0:83:8e:
#                    53:bc:b6:cb:ce:ba:73:db:4f:27:f6:22:90:3f:42:
#                    bf:21:d6:de:62:82:b4:6f:04:05:49:09:3b:77:01:
#                    d7:4b:5f:52:d2:d9:19:c7:6d:7c:0c:a9:3a:09:62:
#                    e4:2a:18:69:8c:a0:dd:eb:ac:13:b6:0e:39:11:80:
#                    69:4e:63:5f:dc:3c:0d:fa:d9:8c:62:be:64:85:32:
#                    32:59:97:50:93:89:df:fb:ff:d4:d8:65:71:c7:46:
#                    55:a2:1b:99:61:1f:dc:50:00:c8:17:79:e8:50:b0:
#                    0c:5e:e6:fe:76:a6:01:4e:09:c8:70:6c:fa:90:b3:
#                    5e:dc:3d:07:cd:49:a3:4e:56:5e:12:4f:64:41:7f:
#                    7e:0c:15:c3:a0:de:b3:a3:29:06:49:44:a1:5f:6f:
#                    3f:81:a0:44:4d:f0:7b:0a:38:28:ed:12:ee:63:97:
#                    c3:7b:5d:8c:4f:71:dd:95:3a:da:2e:a8:01:46:0a:
#                    f3:6c:e8:b5:f1:1f:08:00:f1:40:92:1b:26:00:31:
#                    75:39:46:49:26:b9:a4:d4:71:77:11:a4:4f:33:cc:
#                    09:db:d9:d1:21:4b:92:44:ac:ce:78:62:82:17:fb:
#                    fa:12:b4:7d:d5:f2:86:ed:f4:7e:96:14:e6:8d:03:
#                    52:af:cd:17:a2:d5:1c:a5:fe:81:a6:9a:ed:7d:e4:
#                    d9:0e:32:66:10:8f:db:d9:33:31:81:7e:29:57:ef:
#                    cc:b2:a1:60:ee:8a:5b:b9:65:db:7f:1b:9a:2c:8f:
#                    27:31:89:8a:28:b5:af:b1:56:d4:03:22:ee:25:4f:
#                    d8:9a:bd:d2:6c:57:bc:83:a6:48:1f:2c:55:07:09:
#                    34:2b:b9:79:2c:02:a5:a0:5f:7c:76:9f:24:32:3c:
#                    2d:92:df:eb:48:57:87:a1:f6:fe:23:fa:34:ab:89:
#                    f5:68:1b:8e:1f:aa:6e:0e:a5:d2:21:d2:ef:b9:d1:
#                    b1:49:57:35:5a:84:d3:1e:e2:02:6d:52:10:7f:e2:
#                    8c:4d:21:db:32:32:1c:7d:cc:96:22:03:2d:6a:a7:
#                    06:42:6d:6e:90:87:fa:1c:5c:b0:4f:d0:03:41:13:
#                    fa:0b:53:e6:c1:10:02:48:0b:77:63:f4:a5:9c:51:
#                    7b:98:66:d7:c5:76:32:e5:6f:5d:14:61:7d:0c:bb:
#                    6d:95:40:da:a9:26:c7:f7:a9:cb:d2:fe:27:c1:2b:
#                    f6:b1:68:86:fe:e3:62:52:99:50:8e:2b:de:41:21:
#                    07:1b:87:f5:40:1d:70:ad:cf:fd:c2:43:a8:35:56:
#                    11:42:c5:cb:5e:66:a1:c8:a8:68:f7:fe:4c:57:61:
#                    36:52:81
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                72:03:46:87:61:F6:1D:B3:D4:95:63:B9:50:77:6E:0D:AB:98:FE:2F
#    Signature Algorithm: sha256WithRSAEncryption
#         08:db:8a:32:81:74:33:71:16:ec:21:85:53:48:0a:6f:1f:72:
#         e3:e3:04:f8:2e:b7:3f:f3:24:95:4f:9c:ed:13:e1:88:82:02:
#         f6:66:f7:b7:b1:2d:80:27:ad:ae:b8:6d:fe:23:07:11:08:ab:
#         74:61:8c:28:12:f9:f6:10:34:f0:cf:b6:7c:a3:75:2d:12:d4:
#         94:df:74:ee:b1:98:ab:b1:ee:22:62:4b:59:1f:7f:fe:1a:65:
#         ad:4d:e2:a4:11:3f:13:21:b4:d8:35:8b:76:40:a6:5f:bd:33:
#         11:df:98:e3:21:5e:1d:a3:bb:78:36:02:3b:d8:fd:64:84:da:
#         37:cd:59:ed:fc:0c:d0:74:a4:6b:71:3c:36:12:44:9e:7e:6e:
#         4f:0a:21:1c:65:1f:4b:12:6c:bf:8e:72:d6:dd:3e:00:70:98:
#         01:45:2b:ec:95:90:e3:d3:69:38:e7:2b:9d:7e:65:59:5b:e1:
#         db:85:ca:63:fe:ab:bf:e4:d0:fd:e4:52:ba:1a:e6:fe:c6:90:
#         ba:7b:ce:f1:a4:62:c5:47:be:24:c7:a0:7a:e5:21:e1:c6:08:
#         e0:0c:89:83:8f:80:69:fd:ee:a0:df:7a:4c:3a:d3:48:2a:16:
#         bf:ae:a6:95:b5:dd:68:1f:fb:0e:b5:05:8c:d1:b2:44:7c:60:
#         30:56:76:17:b5:35:4f:a8:d5:0a:eb:c2:b5:6e:02:ee:9c:5f:
#         0e:a3:b1:01:a8:e5:53:6f:7e:83:41:1f:15:d8:ff:e1:c2:b6:
#         1a:f1:46:9c:64:a0:1a:e0:4a:ca:b8:a6:b4:89:24:ee:7b:95:
#         99:62:d4:e2:40:bb:ce:a3:9a:7d:1d:72:f3:1b:81:41:77:00:
#         5e:ec:3c:a2:30:05:3c:cd:7c:48:36:13:c8:32:b0:6b:6f:9f:
#         38:28:38:69:5c:7b:e6:e2:ad:83:bb:6d:13:d1:2e:b7:d1:76:
#         6f:5d:30:5e:b9:50:45:48:d6:48:80:93:51:c9:16:a9:10:5d:
#         67:c6:cb:7e:67:7d:05:4f:f4:20:ef:24:25:5e:ed:67:43:c6:
#         fb:6e:79:fb:b2:f2:c8:c9:ce:41:7c:05:e0:ad:8b:cd:0a:45:
#         2e:e2:62:9f:97:91:f4:f9:63:ec:f2:c2:60:8a:dc:1b:ff:21:
#         a8:ff:23:87:8c:73:8d:b0:3a:cc:1f:8f:31:72:0a:fd:96:a1:
#         df:1a:53:d3:36:b6:b0:77:46:de:03:f6:c2:80:2e:6f:97:23:
#         e1:11:cc:51:98:3f:ee:40:ff:f4:3d:9b:88:7f:8c:bb:e1:59:
#         86:bd:09:34:27:5c:9e:0a:93:32:3b:55:2a:a9:5e:0b:0d:0f:
#         a9:a6:51:04:e2:9b:2a:11

[p11-kit-object-v1]
label: "SSC Root CA A"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAuupPvoTAGSSKIalMmX33
DNWlUZKoZeOJowtm50L4edIPgyN7t6bBJNY11tjlAcpwsRbWR26+EGx+6VBudvfl
5IMPeNWgc/WN0ZkflEQjlsbuclr52l08ka9s6Jfohl33nov6xKxmT+RyPzvdnk41
0hMffbtES/RTrNYU10A5usA//IUg08QA0OfYR5kEeYeGQLKsXsl1IMMJFK8Ejqai
rSpXiGWhzCi+NskfJQ/DayKEOXdOOgPAats+uraJnuTXLpq3QwE/+dqsqazkdzOH
7Qs53cfBrQ1ZgzDRNgRYtGRO5v8I6EKxgKv4mP/zKYYWESROCaHPMH+8XrAKaqFx
a/WaEmslbXcCokZe+Wkv+zsYlV+OXJeUYF4dcahBtF3PWnpn49RKNR834HYWAzv0
UZyYFClJiAxC0C1tqadAJjp5ADA7wLtEmK0kztGW3Il4gfZaW0K8dOGH02XIR+Y2
sszBb8DH3IAlUjwxkN3JyFCoert24O8TlM4Efmq2Tnf5g9Bv+DrQCkPKuhC2/zwd
lGCUhG31pcl9TAp+L49v/d0te0rp7zTbu37/DG83+vnDzMkv0eksPSqsbCY70Ale
xIAni91h8OeVUUPEDeYx0HjWwcbCZgHR48zH0x4VBTbblJrsUsORxy+x9AP3B6zT
S5GrVjzQrv1fbS3TABHPk70CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC Root CA A"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            66:07:a3:d2:9d:29:56:18:0e:e1:5e:59:98:b1:84:55
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=LT, O=Skaitmeninio sertifikavimo centras, OU=Certification Authority, CN=SSC Root CA A
#        Validity
#            Not Before: Dec 27 12:18:52 2006 GMT
#            Not After : Dec 28 12:05:04 2026 GMT
#        Subject: C=LT, O=Skaitmeninio sertifikavimo centras, OU=Certification Authority, CN=SSC Root CA A
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:ea:4f:be:84:c0:19:24:8a:21:a9:4c:99:7d:
#                    f7:0c:d5:a5:51:92:a8:65:e3:89:a3:0b:66:e7:42:
#                    f8:79:d2:0f:83:23:7b:b7:a6:c1:24:d6:35:d6:d8:
#                    e5:01:ca:70:b1:16:d6:47:6e:be:10:6c:7e:e9:50:
#                    6e:76:f7:e5:e4:83:0f:78:d5:a0:73:f5:8d:d1:99:
#                    1f:94:44:23:96:c6:ee:72:5a:f9:da:5d:3c:91:af:
#                    6c:e8:97:e8:86:5d:f7:9e:8b:fa:c4:ac:66:4f:e4:
#                    72:3f:3b:dd:9e:4e:35:d2:13:1f:7d:bb:44:4b:f4:
#                    53:ac:d6:14:d7:40:39:ba:c0:3f:fc:85:20:d3:c4:
#                    00:d0:e7:d8:47:99:04:79:87:86:40:b2:ac:5e:c9:
#                    75:20:c3:09:14:af:04:8e:a6:a2:ad:2a:57:88:65:
#                    a1:cc:28:be:36:c9:1f:25:0f:c3:6b:22:84:39:77:
#                    4e:3a:03:c0:6a:db:3e:ba:b6:89:9e:e4:d7:2e:9a:
#                    b7:43:01:3f:f9:da:ac:a9:ac:e4:77:33:87:ed:0b:
#                    39:dd:c7:c1:ad:0d:59:83:30:d1:36:04:58:b4:64:
#                    4e:e6:ff:08:e8:42:b1:80:ab:f8:98:ff:f3:29:86:
#                    16:11:24:4e:09:a1:cf:30:7f:bc:5e:b0:0a:6a:a1:
#                    71:6b:f5:9a:12:6b:25:6d:77:02:a2:46:5e:f9:69:
#                    2f:fb:3b:18:95:5f:8e:5c:97:94:60:5e:1d:71:a8:
#                    41:b4:5d:cf:5a:7a:67:e3:d4:4a:35:1f:37:e0:76:
#                    16:03:3b:f4:51:9c:98:14:29:49:88:0c:42:d0:2d:
#                    6d:a9:a7:40:26:3a:79:00:30:3b:c0:bb:44:98:ad:
#                    24:ce:d1:96:dc:89:78:81:f6:5a:5b:42:bc:74:e1:
#                    87:d3:65:c8:47:e6:36:b2:cc:c1:6f:c0:c7:dc:80:
#                    25:52:3c:31:90:dd:c9:c8:50:a8:7a:bb:76:e0:ef:
#                    13:94:ce:04:7e:6a:b6:4e:77:f9:83:d0:6f:f8:3a:
#                    d0:0a:43:ca:ba:10:b6:ff:3c:1d:94:60:94:84:6d:
#                    f5:a5:c9:7d:4c:0a:7e:2f:8f:6f:fd:dd:2d:7b:4a:
#                    e9:ef:34:db:bb:7e:ff:0c:6f:37:fa:f9:c3:cc:c9:
#                    2f:d1:e9:2c:3d:2a:ac:6c:26:3b:d0:09:5e:c4:80:
#                    27:8b:dd:61:f0:e7:95:51:43:c4:0d:e6:31:d0:78:
#                    d6:c1:c6:c2:66:01:d1:e3:cc:c7:d3:1e:15:05:36:
#                    db:94:9a:ec:52:c3:91:c7:2f:b1:f4:03:f7:07:ac:
#                    d3:4b:91:ab:56:3c:d0:ae:fd:5f:6d:2d:d3:00:11:
#                    cf:93:bd
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22501.1.2.0
#                  CPS: http://www.ssc.lt/cps
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.ssc.lt/root-a/cacrl.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                CC:BF:DE:A7:90:77:62:6A:1D:78:69:2E:0A:38:9B:77:51:53:03:F0
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:af:c8:a8:c7:33:4f:f0:6e:9a:43:e1:f2:b0:57:52:e1:9c:
#         9e:06:5f:42:d6:f1:fd:ca:8b:51:3f:e1:c7:65:69:4f:74:19:
#         50:8a:cf:18:93:49:8d:a0:1c:b0:3b:3d:8e:48:93:d9:e8:05:
#         7e:c4:09:b1:0f:52:8a:6b:97:6f:d7:8e:3c:80:00:d0:41:73:
#         ad:3d:c3:44:07:71:6a:8f:62:7e:05:d8:53:60:72:b1:01:e9:
#         00:62:aa:0d:d8:d8:49:c2:b4:7d:0d:5b:b3:97:29:36:99:b9:
#         a7:d1:4b:98:6b:44:bc:b2:12:8e:76:64:75:4c:0d:cd:c2:2e:
#         b3:58:fc:7a:4f:55:b3:59:7f:5d:e0:2f:30:33:cf:88:1b:69:
#         e9:4d:8a:90:9e:90:b9:31:3a:f3:a2:05:bc:fe:f9:dd:50:8d:
#         0e:94:19:9d:7e:8d:aa:15:7e:0f:52:93:25:e4:81:0e:96:2d:
#         1c:03:1c:30:83:11:96:42:a9:98:a4:9d:5f:c9:a9:5c:3b:49:
#         68:c2:84:6d:99:da:f6:fe:a2:f2:dc:37:5e:8d:7a:e5:a5:57:
#         ca:23:4b:93:5d:92:2a:55:84:b3:96:b3:1e:98:94:49:7c:6c:
#         3c:dc:9e:1d:b6:ab:c3:ac:09:c5:9d:de:37:d7:54:c4:9c:ad:
#         3f:b0:d6:69:01:e5:10:86:7d:b9:81:83:6e:9c:66:4e:95:05:
#         92:90:31:87:26:b2:da:91:74:bd:84:e4:71:68:e4:76:00:e0:
#         76:73:34:47:86:95:65:ba:5b:90:a2:6d:05:29:78:60:eb:86:
#         f9:12:4d:e8:08:56:a4:cc:8c:a2:56:4a:ce:80:f4:14:61:22:
#         e5:ab:1d:3a:41:3b:84:d7:82:78:05:2f:ac:1d:23:68:ab:72:
#         79:85:cd:46:e6:7a:a7:82:5a:28:d0:15:3d:1d:db:8c:98:50:
#         ce:fb:af:58:3b:d3:a9:ae:80:3b:16:00:76:27:d5:70:e9:09:
#         8d:36:94:09:7f:e3:ef:60:10:51:ca:c6:55:70:66:ab:51:6f:
#         f3:51:4f:12:56:ae:fb:d7:d9:0d:e0:fa:ab:10:de:6a:81:ac:
#         85:77:2d:ac:7a:63:7b:46:e1:37:da:57:6e:ad:65:fc:21:04:
#         99:85:01:cf:23:3a:32:c5:ed:5a:9b:d5:a1:82:04:77:11:45:
#         8e:a4:44:7d:c2:cb:cb:a7:0f:e8:12:ba:f2:6e:ba:8f:33:30:
#         1b:dd:29:f8:f0:42:a3:6e:42:a5:6e:fa:56:a5:a9:50:83:d1:
#         05:66:16:8b:2d:fb:e6:92:d1:e6:6c:0b:d5:5a:29:6d:2b:cf:
#         79:d7:d9:da:4f:f0:68:b6

[p11-kit-object-v1]
label: "SSC Root CA B"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC Root CA B"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            be:92:83:18:f3:55:8a:78:a3:67:59:1c:69:24:09:3f
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=LT, O=Skaitmeninio sertifikavimo centras, OU=Certification Authority, CN=SSC Root CA B
#        Validity
#            Not Before: Dec 27 12:22:50 2006 GMT
#            Not After : Dec 25 12:08:26 2026 GMT
#        Subject: C=LT, O=Skaitmeninio sertifikavimo centras, OU=Certification Authority, CN=SSC Root CA B
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c1:f3:55:f5:47:51:4e:55:17:65:8d:b0:b2:41:
#                    28:a1:4a:d1:9f:4b:f6:73:ff:3e:d2:c9:4d:59:3f:
#                    e4:b7:c7:9f:06:5d:d8:3c:a3:88:84:e0:73:5d:fd:
#                    05:ea:c7:8e:d7:a4:04:6a:eb:9f:bd:43:fd:14:92:
#                    46:b8:c5:ba:aa:ed:60:ec:ec:ca:90:8d:0a:72:a9:
#                    41:9b:d4:9d:bc:b0:6c:a2:11:1f:64:cb:e7:1d:d4:
#                    45:67:0e:09:6b:e5:78:ec:f1:3f:04:54:f3:9a:99:
#                    c7:59:d1:d2:79:a7:a4:1a:b0:7c:49:fc:1c:87:54:
#                    5e:78:06:d5:dd:1d:cc:85:a0:42:78:d5:d0:b0:8a:
#                    ea:e8:f1:a1:9e:56:ef:d3:c1:7d:87:ac:e7:da:68:
#                    4f:19:d6:6f:e0:93:ad:49:5c:73:14:c1:46:6a:9d:
#                    f7:58:40:d9:57:58:4e:6c:37:f4:72:23:04:f8:db:
#                    4a:b0:de:f1:41:96:12:40:a1:15:8b:67:b8:5e:78:
#                    56:cb:7f:e4:be:c0:49:68:91:b8:47:08:93:81:c1:
#                    b5:1b:31:06:d3:80:7b:d1:45:a1:cf:0c:3d:61:f3:
#                    92:f8:f1:b0:15:0e:f8:2e:30:5b:00:a3:49:f7:6d:
#                    fe:ee:dc:bf:88:cf:f0:7d:57:3e:af:c0:d1:8a:eb:
#                    7c:d2:6d:31:55:fa:84:8d:73:6a:da:70:80:c4:f4:
#                    c2:cf:90:8e:30:9a:e1:c6:35:72:01:08:e6:3f:e6:
#                    66:00:a3:f2:f8:92:1d:bc:52:ec:8f:f6:dc:f7:0a:
#                    ef:bc:10:87:f9:84:18:8c:5e:1f:03:b8:ff:35:2f:
#                    01:6a:e5:f0:5b:62:7c:e3:b3:7f:33:aa:94:d7:4e:
#                    51:81:b5:e8:57:78:8f:22:96:a9:0c:89:54:3e:b6:
#                    ee:d9:73:5f:64:f4:44:e1:f1:6a:18:ff:52:96:c4:
#                    1c:bf:89:97:a4:c3:a7:ca:7e:18:6e:16:dc:13:8c:
#                    bb:d5:b5:25:09:86:af:f6:2f:45:94:2a:30:c1:14:
#                    94:35:f6:5d:ca:25:95:9c:b1:58:89:b8:b5:60:85:
#                    c9:c6:be:14:19:a3:3e:f9:56:85:ab:ca:6c:d6:99:
#                    79:a2:4a:14:6f:c3:3a:d8:e7:66:51:0a:e9:1c:fe:
#                    cc:69:e6:34:6c:f4:81:db:7d:a2:11:f8:4c:c4:87:
#                    05:16:3d:eb:97:74:3f:6e:ec:9c:b9:b6:27:8c:24:
#                    df:2d:b3:af:dd:13:61:76:8f:ff:f2:4c:e0:08:19:
#                    30:32:24:32:5c:36:80:17:ee:86:c9:df:2f:51:e2:
#                    56:ae:83:92:f0:b3:bd:d8:87:3a:2c:9e:c4:dc:69:
#                    99:f9:cb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22501.1.2.0
#                  CPS: http://www.ssc.lt/cps
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.ssc.lt/root-b/cacrl.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9C:03:F0:A8:D2:98:72:68:AE:F2:ED:E0:4F:E2:85:0E:B2:25:4E:CF
#    Signature Algorithm: sha1WithRSAEncryption
#         ac:5c:bc:2f:fc:ae:01:24:a6:10:3e:ac:a8:e1:a7:27:99:8d:
#         ca:88:c1:1d:3d:91:f6:a2:7e:a5:f1:98:41:ff:aa:61:f8:09:
#         be:cd:1a:25:61:74:b4:c3:af:42:5a:09:0f:91:01:be:48:95:
#         f4:ca:77:5e:0b:83:ce:84:9d:cf:40:fd:80:2c:bd:e3:66:35:
#         0a:b8:b1:fa:60:da:e5:d8:54:b5:4b:97:ba:a2:1a:c3:20:69:
#         8d:b4:46:73:5c:aa:bf:bd:7b:ff:1a:30:34:58:40:f9:2b:60:
#         0b:79:44:f9:f7:a2:96:0b:6b:52:7b:f0:2b:4b:3b:d2:8b:a0:
#         6b:93:3d:c9:57:63:8a:6b:cc:50:13:8f:77:a8:51:be:1a:4c:
#         2d:4c:5d:0c:90:5b:8e:f3:ef:50:20:6d:81:e6:51:49:ab:c4:
#         e7:d7:5d:08:2b:51:fc:3d:46:12:e7:d1:a5:76:c5:53:24:05:
#         c9:aa:d3:8e:58:c5:f3:8a:74:92:32:ed:f0:2f:dd:ab:ad:e9:
#         d2:35:8f:74:23:e3:99:00:e2:8b:30:e4:c3:42:ae:f0:bb:e9:
#         e2:08:1b:4a:70:2d:7d:f8:d2:9a:27:91:42:70:75:7a:08:7e:
#         be:2f:1c:7f:37:3d:a8:8b:dc:46:72:f5:e8:6f:36:68:fa:6e:
#         8d:20:9d:d4:f5:07:71:bf:bd:27:42:b9:73:28:d6:ec:49:b4:
#         05:85:4f:68:48:f6:ab:94:df:0e:a3:46:14:60:c2:31:20:3b:
#         eb:2e:5b:de:d5:a1:2c:6d:e5:52:fa:81:5f:97:88:c9:63:bd:
#         01:ec:e3:cd:6b:0a:35:c2:c9:38:e3:0e:f3:58:1b:7d:da:90:
#         6d:b7:f5:c8:58:56:9d:ae:01:df:91:9d:ad:55:82:03:0c:11:
#         74:04:91:86:c7:7c:93:8c:f3:27:fb:c5:24:57:6e:8b:d9:1b:
#         98:9d:88:31:f0:af:77:b8:0d:b4:cc:cf:f6:0a:6f:12:9b:ec:
#         09:2b:53:89:ec:44:e0:a1:69:8b:a8:74:86:74:18:52:e0:d2:
#         bf:a0:a1:65:21:b9:08:83:7a:f3:a4:f5:f8:5e:37:25:47:99:
#         a6:5d:d7:22:5a:db:93:67:17:db:10:e3:8c:d1:12:91:47:8a:
#         95:a5:47:a1:03:f8:4b:2e:21:c5:90:62:b0:7f:27:a3:db:15:
#         7f:38:7f:6c:7f:4e:05:c5:03:b4:2d:df:45:5f:75:2c:1d:f1:
#         5f:a6:b5:f6:17:39:41:e9:f8:65:c2:1e:58:11:ca:7c:8e:e2:
#         b5:ba:92:0f:67:b7:8f:eb:99:d4:31:fb:72:7b:5a:98:5f:92:
#         94:c7:04:ea:30:f6:bb:1a

[p11-kit-object-v1]
label: "SSC Root CA C"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSC Root CA C"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            34:b9:12:9f:ac:c7:92:55:42:5c:de:57:ff:e3:c0:05
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=LT, O=Skaitmeninio sertifikavimo centras, OU=Certification Authority, CN=SSC Root CA C
#        Validity
#            Not Before: Dec 27 12:26:30 2006 GMT
#            Not After : Dec 22 12:11:30 2026 GMT
#        Subject: C=LT, O=Skaitmeninio sertifikavimo centras, OU=Certification Authority, CN=SSC Root CA C
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a1:45:22:fa:8c:cc:a9:6f:04:b3:f4:68:32:16:
#                    69:11:4f:79:df:43:bd:51:60:70:1a:98:dd:78:78:
#                    96:98:62:f7:70:4b:81:a8:e0:1d:04:89:f4:8f:eb:
#                    6e:e9:f0:ff:81:d8:2e:7d:af:17:20:f1:22:ef:f0:
#                    3f:45:47:40:b4:cb:b2:b8:20:3f:3e:4a:68:50:ff:
#                    9a:06:d7:97:c5:b7:8a:16:2e:71:d2:47:73:5d:18:
#                    65:2f:ef:39:33:e8:b6:55:af:26:ad:02:80:e9:63:
#                    d7:21:70:07:3e:cc:be:5f:89:c0:f8:ce:1d:25:6e:
#                    c3:fc:7f:56:39:61:d1:8e:c2:26:7a:e7:78:02:0a:
#                    59:dd:55:23:b0:f8:35:a7:e2:ab:f3:ab:2f:d7:b5:
#                    8b:0a:2a:72:54:2b:6d:79:bc:f2:d9:e9:43:f9:cf:
#                    f1:8e:66:12:f7:97:59:2a:d9:d7:94:dc:f8:94:b3:
#                    45:a3:af:16:2d:b3:80:ca:3d:ce:e8:a6:c7:0a:94:
#                    74:fc:37:9a:e9:3f:0c:37:16:20:43:c9:47:70:bb:
#                    8c:85:fc:98:89:29:cb:87:19:7e:19:53:10:89:80:
#                    75:ae:13:f1:bf:a4:5d:30:05:29:7c:a8:f7:b6:5e:
#                    07:30:15:88:ae:4d:15:a0:ca:cd:d7:ff:ab:a3:06:
#                    57:0f:a7:e3:89:69:1c:d6:1a:d1:d4:27:df:96:c6:
#                    38:5c:af:77:fe:15:ab:44:41:7d:d3:98:bb:a8:20:
#                    18:af:8b:6d:d4:5a:c2:d8:96:8d:48:f5:07:31:7e:
#                    61:f4:61:9b:52:81:40:8e:4a:27:04:b2:07:d3:02:
#                    10:94:f3:fb:dd:b1:7b:70:b8:b4:c8:81:f5:00:07:
#                    a6:8d:88:05:4d:c4:8f:96:ce:d4:b6:c0:c1:66:8c:
#                    2a:ac:68:4a:c9:46:dc:0d:e6:2e:a8:79:28:7d:77:
#                    43:70:16:7e:1c:1a:3a:a6:79:4f:13:40:89:b1:32:
#                    bb:09:46:11:0d:74:bc:27:e5:d8:ed:2d:fa:50:29:
#                    dc:25:ca:97:10:e7:a9:a2:61:2e:3a:89:a6:44:61:
#                    be:4f:5e:92:09:ed:dc:2e:a6:ef:53:bb:61:25:d8:
#                    27:a5:14:46:29:85:26:00:d8:f9:f9:05:d5:7b:16:
#                    31:42:43:05:17:91:9c:4a:60:40:24:6d:b5:6d:7a:
#                    79:fb:9c:9a:63:c3:98:69:e5:77:62:23:2a:51:89:
#                    0f:6c:b2:fd:c3:ca:d8:f4:1a:43:94:d0:7d:0b:e1:
#                    58:3e:1a:c8:74:84:9b:f7:ac:82:ae:51:45:92:d2:
#                    06:59:e1:b3:c1:de:a5:1f:93:22:79:d8:cd:c4:79:
#                    60:23:95
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.22501.1.2.0
#                  CPS: http://www.ssc.lt/cps
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.ssc.lt/root-c/cacrl.crl
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                88:07:73:F6:F1:BC:52:1A:5A:1D:3D:91:62:ED:5D:AC:9D:0B:E5:B7
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:90:71:50:98:d5:d9:34:d2:96:84:18:c2:ac:46:02:20:1c:
#         cb:39:b1:b7:af:05:a4:d7:58:f3:91:51:7d:8e:81:27:9c:e8:
#         92:b1:e7:1c:9f:3a:8b:10:52:73:4c:c2:c7:42:1d:d0:eb:de:
#         2a:ca:22:51:7d:8c:74:7a:1a:fc:bc:a4:f3:73:c8:66:23:c4:
#         2e:43:10:47:e0:8a:69:57:ee:2f:f2:00:52:b0:30:92:aa:d6:
#         d4:15:c5:57:cb:60:7a:f4:0e:8d:fe:1e:09:63:74:8f:e0:fe:
#         be:50:d9:01:39:56:ba:50:4c:f6:e3:45:9a:bb:52:76:de:7e:
#         9d:fb:8d:c2:54:31:3e:c7:b1:3c:3e:df:e3:4f:fd:dd:9b:24:
#         69:7c:ed:e8:71:b6:42:06:c7:1f:c5:5f:fb:20:75:db:c1:fd:
#         e9:6c:a2:2a:90:d4:86:fd:cd:0d:ff:e0:05:8a:58:61:3d:9f:
#         c4:99:2f:ed:db:7c:c4:0d:98:98:55:9c:74:a2:17:5e:db:aa:
#         11:e4:37:0c:24:ff:20:67:d1:25:db:9a:89:a0:65:88:31:91:
#         04:71:5f:20:94:58:33:36:1d:32:de:6f:d7:67:08:a9:a0:3b:
#         fd:db:a4:50:25:96:1e:a9:5f:89:17:a5:97:99:51:95:69:db:
#         c4:f1:8f:f4:6f:30:2b:59:f3:ac:75:87:33:7d:06:dd:e1:c1:
#         6b:d6:c4:c9:5e:70:44:7a:6a:c7:9c:77:3b:16:fe:fe:75:be:
#         9f:2c:d1:c0:03:ee:11:79:75:ec:a9:5b:1c:7a:85:b5:28:50:
#         20:a9:1a:1d:e6:7b:8c:33:18:ff:c1:ed:c8:76:65:1f:1d:f0:
#         4c:3b:a7:db:ea:cd:56:d8:94:57:3f:e0:48:a9:7f:8c:33:4b:
#         bd:f4:0c:65:14:80:82:f4:35:77:d8:04:10:70:ce:0f:6c:c1:
#         59:cb:99:ad:81:ee:de:3d:48:d0:7a:88:2f:40:93:d7:9c:ba:
#         79:84:18:80:75:df:d0:5a:df:51:77:3e:58:89:69:75:47:31:
#         e4:6a:16:70:54:04:ec:bd:5c:79:53:63:d2:e2:5e:bd:4d:25:
#         da:11:b6:0f:aa:e9:2c:ae:f5:d1:a9:8d:02:56:cb:fc:b0:24:
#         ea:8c:ba:70:ff:32:d0:b7:c6:04:2a:63:d5:ca:46:91:d5:99:
#         72:09:07:5e:28:03:ab:12:1c:25:b3:6c:3a:59:65:b4:74:6d:
#         2d:2d:19:72:6f:fd:e7:98:11:87:1e:73:23:bf:35:f1:9b:b6:
#         c3:d9:cc:3b:50:7c:72:e8:cf:5e:c0:98:cc:2e:03:fd:1f:2f:
#         ca:74:5c:b1:1c:d1:ec:69

[p11-kit-object-v1]
label: "SSL.com Client ECC Root CA 2022"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAELVN+n4s+sza6UOLM69y6JorTjAY/Zw/v
9Rfl1K6aRipBAQdp52dx8cIDNsbwK1KOzxSSaKQ+cFESaY14ooLKKRTA5JQiskSS
YG/IBKRn1aLQ89DX6o48D7rSQEeQNO59
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com Client ECC Root CA 2022"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICQDCCAcagAwIBAgIQdvhIHq7wPHAf4D8lVAGD1TAKBggqhkjOPQQDAzBRMQsw
CQYDVQQGEwJVUzEYMBYGA1UECgwPU1NMIENvcnBvcmF0aW9uMSgwJgYDVQQDDB9T
U0wuY29tIENsaWVudCBFQ0MgUm9vdCBDQSAyMDIyMB4XDTIyMDgyNTE2MzAzMloX
DTQ2MDgxOTE2MzAzMVowUTELMAkGA1UEBhMCVVMxGDAWBgNVBAoMD1NTTCBDb3Jw
b3JhdGlvbjEoMCYGA1UEAwwfU1NMLmNvbSBDbGllbnQgRUNDIFJvb3QgQ0EgMjAy
MjB2MBAGByqGSM49AgEGBSuBBAAiA2IABC1Tfp+LPrM2ulDizOvcuiaK04wGP2cP
7/UX5dSumkYqQQEHaedncfHCAzbG8CtSjs8UkmikPnBREmmNeKKCyikUwOSUIrJE
kmBvyASkZ9Wi0PPQ1+qOPA+60kBHkDTufaNjMGEwDwYDVR0TAQH/BAUwAwEB/zAf
BgNVHSMEGDAWgBS3/i1ixYFTzVIaL11goMNd+7IcHDAdBgNVHQ4EFgQUt/4tYsWB
U81SGi9dYKDDXfuyHBwwDgYDVR0PAQH/BAQDAgGGMAoGCCqGSM49BAMDA2gAMGUC
ME0HES0R+7kmwyHdcuEX/MHPFOpJznGHjtZT3BHNXVSKr9kt9IxR6rxmR+J/lYNg
ZQIxAIwhTE+75bBQ35BiSebMkdv4P11xkQiOT5LJf6Zc6hN+7W3E6MMqb1wR4aXz
alqaTQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:f8:48:1e:ae:f0:3c:70:1f:e0:3f:25:54:01:83:d5
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=SSL Corporation, CN=SSL.com Client ECC Root CA 2022
#        Validity
#            Not Before: Aug 25 16:30:32 2022 GMT
#            Not After : Aug 19 16:30:31 2046 GMT
#        Subject: C=US, O=SSL Corporation, CN=SSL.com Client ECC Root CA 2022
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:2d:53:7e:9f:8b:3e:b3:36:ba:50:e2:cc:eb:dc:
#                    ba:26:8a:d3:8c:06:3f:67:0f:ef:f5:17:e5:d4:ae:
#                    9a:46:2a:41:01:07:69:e7:67:71:f1:c2:03:36:c6:
#                    f0:2b:52:8e:cf:14:92:68:a4:3e:70:51:12:69:8d:
#                    78:a2:82:ca:29:14:c0:e4:94:22:b2:44:92:60:6f:
#                    c8:04:a4:67:d5:a2:d0:f3:d0:d7:ea:8e:3c:0f:ba:
#                    d2:40:47:90:34:ee:7d
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:B7:FE:2D:62:C5:81:53:CD:52:1A:2F:5D:60:A0:C3:5D:FB:B2:1C:1C
#
#            X509v3 Subject Key Identifier: 
#                B7:FE:2D:62:C5:81:53:CD:52:1A:2F:5D:60:A0:C3:5D:FB:B2:1C:1C
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:4d:07:11:2d:11:fb:b9:26:c3:21:dd:72:e1:17:
#         fc:c1:cf:14:ea:49:ce:71:87:8e:d6:53:dc:11:cd:5d:54:8a:
#         af:d9:2d:f4:8c:51:ea:bc:66:47:e2:7f:95:83:60:65:02:31:
#         00:8c:21:4c:4f:bb:e5:b0:50:df:90:62:49:e6:cc:91:db:f8:
#         3f:5d:71:91:08:8e:4f:92:c9:7f:a6:5c:ea:13:7e:ed:6d:c4:
#         e8:c3:2a:6f:5c:11:e1:a5:f3:6a:5a:9a:4d

[p11-kit-object-v1]
label: "SSL.com Client RSA Root CA 2022"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAuFjbRjD7yT/jyPABMzTi
2kioGOkgbprXAeHVKY8wtCNq5MtisL7inyC9PlSgOWjHhjdmdAYG73Qr2tyfhKlS
L5DS7n58+6UirW9wRmeWPSnUo7tWexQEWcEhY0Qesh8SXJCHZQ2I9h6IIuJjVLvz
NvjWf9za/yk1qcZuDmlbP9i+gocVcF2wx1wSD2OmOM3Pc7nDDokmNxs/YhwyadGb
2f9VkDHesWPdz8V0d/zviCFTvwAxGiYsADClX2zj5PYAisqYh5x0A3qLZux+/aOP
NSVceKWzpPs9bamK8GyIgov9StBv5NejtI40STi+zkXl0hzKXsI3FIvNZlYzN53l
a+xDkmSgQtp1b8AV7PlpvTS5inv6FvtV/lIg6AQEVlZl9TdEmMiKRum3rLjovmKO
VDZb9ztwv13uLbpf3kIZhvB/i+sIy9i+6g5CQqA2c1cX7TLq0I3oBxubmejEmmIE
Dkj3PBK691jBmozpx7AjNlY0Hcts2roHhB390ayf5sKJ78O5bBizaYdXX7UMOFun
ISQqO6c0kZ60VOooT9PBo4vk5ivV8p2/m2EAIt3WS0QfP11W/t6ceMyZW6rkvbrb
Q0utTCZMo000imx0NhPbYvybsgWB/64/DM32G6L0OefK9Uxc+1R3NYBawBKhEwEz
Zz2dgaGp9YUkWIh45/TjaFUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com Client RSA Root CA 2022"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFjzCCA3egAwIBAgIQdq/uiJMVRbZQU5uAnKTfmjANBgkqhkiG9w0BAQsFADBR
MQswCQYDVQQGEwJVUzEYMBYGA1UECgwPU1NMIENvcnBvcmF0aW9uMSgwJgYDVQQD
DB9TU0wuY29tIENsaWVudCBSU0EgUm9vdCBDQSAyMDIyMB4XDTIyMDgyNTE2MzEw
N1oXDTQ2MDgxOTE2MzEwNlowUTELMAkGA1UEBhMCVVMxGDAWBgNVBAoMD1NTTCBD
b3Jwb3JhdGlvbjEoMCYGA1UEAwwfU1NMLmNvbSBDbGllbnQgUlNBIFJvb3QgQ0Eg
MjAyMjCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBALhY20Yw+8k/48jw
ATM04tpIqBjpIG6a1wHh1SmPMLQjauTLYrC+4p8gvT5UoDlox4Y3ZnQGBu90K9rc
n4SpUi+Q0u5+fPulIq1vcEZnlj0p1KO7VnsUBFnBIWNEHrIfElyQh2UNiPYeiCLi
Y1S78zb41n/c2v8pNanGbg5pWz/YvoKHFXBdsMdcEg9jpjjNz3O5ww6JJjcbP2Ic
MmnRm9n/VZAx3rFj3c/FdHf874ghU78AMRomLAAwpV9s4+T2AIrKmIecdAN6i2bs
fv2jjzUlXHils6T7PW2pivBsiIKL/UrQb+TXo7SONEk4vs5F5dIcyl7CNxSLzWZW
Mzed5WvsQ5JkoELadW/AFez5ab00uYp7+hb7Vf5SIOgEBFZWZfU3RJjIikbpt6y4
6L5ijlQ2W/c7cL9d7i26X95CGYbwf4vrCMvYvuoOQkKgNnNXF+0y6tCN6Acbm5no
xJpiBA5I9zwSuvdYwZqM6cewIzZWNB3LbNq6B4Qd/dGsn+bCie/DuWwYs2mHV1+1
DDhbpyEkKjunNJGetFTqKE/TwaOL5OYr1fKdv5thACLd1ktEHz9dVv7enHjMmVuq
5L2620NLrUwmTKNNNIpsdDYT22L8m7IFgf+uPwzN9hui9DnnyvVMXPtUdzWAWsAS
oRMBM2c9nYGhqfWFJFiIeOf042hVAgMBAAGjYzBhMA8GA1UdEwEB/wQFMAMBAf8w
HwYDVR0jBBgwFoAU8DhClDSpPAB/Uu45pfdLDbxqfSMwHQYDVR0OBBYEFPA4QpQ0
qTwAf1LuOaX3Sw28an0jMA4GA1UdDwEB/wQEAwIBhjANBgkqhkiG9w0BAQsFAAOC
AgEAmU/b8OrWEfoq/cirbeQOc2LSQp8V/nxwUj9kh4IxP0VALuEinwZmKfyW0y2N
tjjH2fMnwVkpoIz2cyQPKCLXTmHdE93bnzJSk/tPzOo4PJhqA6sWryHRQq59RSvq
xM+KWZ+CcHY6+GImyRCXWEAkpC25LymAJ+GJa3LKSQhxN1MF8YDO00IC0vzC0ZQG
7gfi9oPif5/nu1bDW7/dlZMJHiTBzybNraSuwrRp56q17TeU6d3RY4VrmnpKVnbc
GYUo1OTGpNi4lkF30LRZ8UYFh4cCH2m5ghjQQ9km2hpnqNZ1durybQ5C/4gmom6E
/n5iG/DGPe3AHGrHkda4ADdJm7mEBaHNbjHWROpTi7pTmB2hkIrphfgb8pNYw8jc
miZPPiDPT0PzEIx/EGF6NsqqC33Mn0dEWa6llcaZU+MHaz1JELAY/10OhUMUS+dr
00q1smBh3GlJAiNd6JJxw5yfRWd5HtwyhrqqVTxkbzK1EEAV3nJAeOBucLtu6wno
OdmsupJ13UPKugGVrRqBKzrw48UvDBhNEMauwO3+BVJ/GQXLqa81CAw4IuT+VuVT
Pr/k1rPZCMM91TMygSTFqeFlEbgyMzBxGEkdGkXGmhSKWDkobvPLUblJJmR4A8eR
EYOpuZA0tm+qBZ6FKFeZvn8nBkliTaH8CeErRglMFJtWj0U=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            76:af:ee:88:93:15:45:b6:50:53:9b:80:9c:a4:df:9a
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=SSL Corporation, CN=SSL.com Client RSA Root CA 2022
#        Validity
#            Not Before: Aug 25 16:31:07 2022 GMT
#            Not After : Aug 19 16:31:06 2046 GMT
#        Subject: C=US, O=SSL Corporation, CN=SSL.com Client RSA Root CA 2022
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b8:58:db:46:30:fb:c9:3f:e3:c8:f0:01:33:34:
#                    e2:da:48:a8:18:e9:20:6e:9a:d7:01:e1:d5:29:8f:
#                    30:b4:23:6a:e4:cb:62:b0:be:e2:9f:20:bd:3e:54:
#                    a0:39:68:c7:86:37:66:74:06:06:ef:74:2b:da:dc:
#                    9f:84:a9:52:2f:90:d2:ee:7e:7c:fb:a5:22:ad:6f:
#                    70:46:67:96:3d:29:d4:a3:bb:56:7b:14:04:59:c1:
#                    21:63:44:1e:b2:1f:12:5c:90:87:65:0d:88:f6:1e:
#                    88:22:e2:63:54:bb:f3:36:f8:d6:7f:dc:da:ff:29:
#                    35:a9:c6:6e:0e:69:5b:3f:d8:be:82:87:15:70:5d:
#                    b0:c7:5c:12:0f:63:a6:38:cd:cf:73:b9:c3:0e:89:
#                    26:37:1b:3f:62:1c:32:69:d1:9b:d9:ff:55:90:31:
#                    de:b1:63:dd:cf:c5:74:77:fc:ef:88:21:53:bf:00:
#                    31:1a:26:2c:00:30:a5:5f:6c:e3:e4:f6:00:8a:ca:
#                    98:87:9c:74:03:7a:8b:66:ec:7e:fd:a3:8f:35:25:
#                    5c:78:a5:b3:a4:fb:3d:6d:a9:8a:f0:6c:88:82:8b:
#                    fd:4a:d0:6f:e4:d7:a3:b4:8e:34:49:38:be:ce:45:
#                    e5:d2:1c:ca:5e:c2:37:14:8b:cd:66:56:33:37:9d:
#                    e5:6b:ec:43:92:64:a0:42:da:75:6f:c0:15:ec:f9:
#                    69:bd:34:b9:8a:7b:fa:16:fb:55:fe:52:20:e8:04:
#                    04:56:56:65:f5:37:44:98:c8:8a:46:e9:b7:ac:b8:
#                    e8:be:62:8e:54:36:5b:f7:3b:70:bf:5d:ee:2d:ba:
#                    5f:de:42:19:86:f0:7f:8b:eb:08:cb:d8:be:ea:0e:
#                    42:42:a0:36:73:57:17:ed:32:ea:d0:8d:e8:07:1b:
#                    9b:99:e8:c4:9a:62:04:0e:48:f7:3c:12:ba:f7:58:
#                    c1:9a:8c:e9:c7:b0:23:36:56:34:1d:cb:6c:da:ba:
#                    07:84:1d:fd:d1:ac:9f:e6:c2:89:ef:c3:b9:6c:18:
#                    b3:69:87:57:5f:b5:0c:38:5b:a7:21:24:2a:3b:a7:
#                    34:91:9e:b4:54:ea:28:4f:d3:c1:a3:8b:e4:e6:2b:
#                    d5:f2:9d:bf:9b:61:00:22:dd:d6:4b:44:1f:3f:5d:
#                    56:fe:de:9c:78:cc:99:5b:aa:e4:bd:ba:db:43:4b:
#                    ad:4c:26:4c:a3:4d:34:8a:6c:74:36:13:db:62:fc:
#                    9b:b2:05:81:ff:ae:3f:0c:cd:f6:1b:a2:f4:39:e7:
#                    ca:f5:4c:5c:fb:54:77:35:80:5a:c0:12:a1:13:01:
#                    33:67:3d:9d:81:a1:a9:f5:85:24:58:88:78:e7:f4:
#                    e3:68:55
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:F0:38:42:94:34:A9:3C:00:7F:52:EE:39:A5:F7:4B:0D:BC:6A:7D:23
#
#            X509v3 Subject Key Identifier: 
#                F0:38:42:94:34:A9:3C:00:7F:52:EE:39:A5:F7:4B:0D:BC:6A:7D:23
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         99:4f:db:f0:ea:d6:11:fa:2a:fd:c8:ab:6d:e4:0e:73:62:d2:
#         42:9f:15:fe:7c:70:52:3f:64:87:82:31:3f:45:40:2e:e1:22:
#         9f:06:66:29:fc:96:d3:2d:8d:b6:38:c7:d9:f3:27:c1:59:29:
#         a0:8c:f6:73:24:0f:28:22:d7:4e:61:dd:13:dd:db:9f:32:52:
#         93:fb:4f:cc:ea:38:3c:98:6a:03:ab:16:af:21:d1:42:ae:7d:
#         45:2b:ea:c4:cf:8a:59:9f:82:70:76:3a:f8:62:26:c9:10:97:
#         58:40:24:a4:2d:b9:2f:29:80:27:e1:89:6b:72:ca:49:08:71:
#         37:53:05:f1:80:ce:d3:42:02:d2:fc:c2:d1:94:06:ee:07:e2:
#         f6:83:e2:7f:9f:e7:bb:56:c3:5b:bf:dd:95:93:09:1e:24:c1:
#         cf:26:cd:ad:a4:ae:c2:b4:69:e7:aa:b5:ed:37:94:e9:dd:d1:
#         63:85:6b:9a:7a:4a:56:76:dc:19:85:28:d4:e4:c6:a4:d8:b8:
#         96:41:77:d0:b4:59:f1:46:05:87:87:02:1f:69:b9:82:18:d0:
#         43:d9:26:da:1a:67:a8:d6:75:76:ea:f2:6d:0e:42:ff:88:26:
#         a2:6e:84:fe:7e:62:1b:f0:c6:3d:ed:c0:1c:6a:c7:91:d6:b8:
#         00:37:49:9b:b9:84:05:a1:cd:6e:31:d6:44:ea:53:8b:ba:53:
#         98:1d:a1:90:8a:e9:85:f8:1b:f2:93:58:c3:c8:dc:9a:26:4f:
#         3e:20:cf:4f:43:f3:10:8c:7f:10:61:7a:36:ca:aa:0b:7d:cc:
#         9f:47:44:59:ae:a5:95:c6:99:53:e3:07:6b:3d:49:10:b0:18:
#         ff:5d:0e:85:43:14:4b:e7:6b:d3:4a:b5:b2:60:61:dc:69:49:
#         02:23:5d:e8:92:71:c3:9c:9f:45:67:79:1e:dc:32:86:ba:aa:
#         55:3c:64:6f:32:b5:10:40:15:de:72:40:78:e0:6e:70:bb:6e:
#         eb:09:e8:39:d9:ac:ba:92:75:dd:43:ca:ba:01:95:ad:1a:81:
#         2b:3a:f0:e3:c5:2f:0c:18:4d:10:c6:ae:c0:ed:fe:05:52:7f:
#         19:05:cb:a9:af:35:08:0c:38:22:e4:fe:56:e5:53:3e:bf:e4:
#         d6:b3:d9:08:c3:3d:d5:33:32:81:24:c5:a9:e1:65:11:b8:32:
#         33:30:71:18:49:1d:1a:45:c6:9a:14:8a:58:39:28:6e:f3:cb:
#         51:b9:49:26:64:78:03:c7:91:11:83:a9:b9:90:34:b6:6f:aa:
#         05:9e:85:28:57:99:be:7f:27:06:49:62:4d:a1:fc:09:e1:2b:
#         46:09:4c:14:9b:56:8f:45

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority ECC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEqhJHkJgb++/DQAeDIE7xMIKiBtHykoZh
8vYhaMoAxMfqQwBUhtz9H98AuEFiXNxwFjLeH5nUzMUHyAgfYRYHUT19XAdT4zU4
jN/Nn9kuDUq2GS5acFoG7b7wobDK0Akp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority ECC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2c:29:9c:5b:16:ed:05:95
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com EV Root Certification Authority ECC
#        Validity
#            Not Before: Feb 12 18:15:23 2016 GMT
#            Not After : Feb 12 18:15:23 2041 GMT
#        Subject: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com EV Root Certification Authority ECC
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:aa:12:47:90:98:1b:fb:ef:c3:40:07:83:20:4e:
#                    f1:30:82:a2:06:d1:f2:92:86:61:f2:f6:21:68:ca:
#                    00:c4:c7:ea:43:00:54:86:dc:fd:1f:df:00:b8:41:
#                    62:5c:dc:70:16:32:de:1f:99:d4:cc:c5:07:c8:08:
#                    1f:61:16:07:51:3d:7d:5c:07:53:e3:35:38:8c:df:
#                    cd:9f:d9:2e:0d:4a:b6:19:2e:5a:70:5a:06:ed:be:
#                    f0:a1:b0:ca:d0:09:29
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                5B:CA:5E:E5:DE:D2:81:AA:CD:A8:2D:64:51:B6:D9:72:9B:97:E6:4F
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:5B:CA:5E:E5:DE:D2:81:AA:CD:A8:2D:64:51:B6:D9:72:9B:97:E6:4F
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA256
#         30:65:02:31:00:8a:e6:40:89:37:eb:e9:d5:13:d9:ca:d4:6b:
#         24:f3:b0:3d:87:46:58:1a:ec:b1:df:6f:fb:56:ba:70:6b:c7:
#         38:cc:e8:b1:8c:4f:0f:f7:f1:67:76:0e:83:d0:1e:51:8f:02:
#         30:3d:f6:23:28:26:4c:c6:60:87:93:26:9b:b2:35:1e:ba:d6:
#         f7:3c:d1:1c:ce:fa:25:3c:a6:1a:81:15:5b:f3:12:0f:6c:ee:
#         65:8a:c9:87:a8:f9:07:e0:62:9a:8c:5c:4a

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIF4zCCA8ugAwIBAgIIHWwR62/aOZ0wDQYJKoZIhvcNAQELBQAwfzELMAkGA1UE
BhMCVVMxDjAMBgNVBAgMBVRleGFzMRAwDgYDVQQHDAdIb3VzdG9uMRgwFgYDVQQK
DA9TU0wgQ29ycG9yYXRpb24xNDAyBgNVBAMMK1NTTC5jb20gRVYgUm9vdCBDZXJ0
aWZpY2F0aW9uIEF1dGhvcml0eSBSU0EwHhcNMTYwMjEyMTc1MDQ4WhcNNDEwMjEy
MTc1MDQ4WjB/MQswCQYDVQQGEwJVUzEOMAwGA1UECAwFVGV4YXMxEDAOBgNVBAcM
B0hvdXN0b24xGDAWBgNVBAoMD1NTTCBDb3Jwb3JhdGlvbjE0MDIGA1UEAwwrU1NM
LmNvbSBFViBSb290IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IFJTQTCCAiIwDQYJ
KoZIhvcNAQEBBQADggIPADCCAgoCggIBAMY3fBNvzw/ZUM/m16poL1xR1L/NTKbV
NzFAEDRBev3LlI1if7iQzc5pljrE/9nXY+bQhCWAEb/R7TDohAbhoJe4VZAdrfOk
mhtOnBH39dnWj2AqPjf4deyAo1Wg9CdBwqo55FLfEPn1ZTk/jJ3MeyfPBhR3Tj1S
54SBMWwSMqyEWhdqxMFcgDHC2kd7dg9C6OciFNONxFuPi2VYKSyPDo5J1NTYClrT
JtMJjthDspRP0sAc3XRiEWm8VCLoOh7QVVZFj3BwjS/vwl29XlTdLnvpGIuKSdlP
jRDzpVfha6sYS46uLvHyuvVdQfc52KPCXd6fWrEvRJM+P/EiOZRAbSfGzA14DAu9
KlYmrSlXuHHkf+sTssh99Wtd8/IAMDP6W8sSanpBb28JTLdpDQ95IyMaZo1ZNmOW
gHsYImseIhgt5KV1ChBZ+6N+JhBTxsgZLh4nGPswBT2RBHqucMbMD6A00yQWGAEF
Z2nlRdFWqJu/r/qsVQgMAn5Ld6w3wdjtmTSgQbM1OusxNMk738Q9KUU1VLh/ls8I
D+mxnlXKZ4SgJ2Cr+lAxOdV7yraa7ZGMeB757uDiWUHUH0KAefX0g1AIrfNHQV9Q
o5+J87QnKlS5GllrCZxRwChrW7go0m81ftWTA250JWXqFgWRAfEHY0+rhMVy2c1o
m00sfgQ48OpHAgMBAAGjYzBhMB0GA1UdDgQWBBTZWir/pc6doZF9/4ddq2o1EtnJ
TDAPBgNVHRMBAf8EBTADAQH/MB8GA1UdIwQYMBaAFNlaKv+lzp2hkX3/h12rajUS
2clMMA4GA1UdDwEB/wQEAwIBhjANBgkqhkiG9w0BAQsFAAOCAgEAvIzPI/q9M1eW
H9CC8BKuNETq8bwh1/WJxjQeeKbiUd/deIDV6m3Gqm8JAoyn5svIiVqUekqzVu/d
3VMyY/Bp791AuZCiLgN3lrUpAFLu+w6nlGjFPAMt6Wuqne6n2GeS4hFaON+YZqOg
jssMQjZMxVZbn3XwQNHoOyoIm1LDHF+QNFf7xvkdcfwlfM96fR5pxrv0FP4dHeeX
ooab8t9XkgZSZJMpWQovoRfcu+6tO7MAZTjZqJyBrc01nIvp4vSEjw7PjXFtAIA5
b7MENaA4YanyL/Q1jdjf3qRpMPqgJnxaInnwaP7LzbzvlYwn5YT5/YRCxrr9ucnG
WnEwdjYCH9B8qRMO4SDZUgysHoh3oCmGOohmU6/DpcnbVLGk6O5Mbj+5ezCjQugC
pr2EbSp8/fTtRbcw+mxcI1ZaPGEqx5vmxfJEtwe/dp1C5Fzw7rk+EPPPUtLNzlIY
f2D2LpVMNQBMRtYQ7DTLWHtqDeRjVcxY2U9jZzHCUqF5DyrPyU7MEsuNGlqqRjET
Ow3pV2haC4QENi+fEbw8eq1av0bjtyCJHdwHfNx66+l2yQANcLeflxpi7xjmZL4I
p6SZu3+MaJqYyYZi9qGYNjmj85ZXpAJj+VU+sIyfv6l6SzzZua4PivS6HCWrVVmh
VsIzuTrEQM+LGvcDDr0bYGN9JdSpvuU=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1d:6c:11:eb:6f:da:39:9d
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com EV Root Certification Authority RSA
#        Validity
#            Not Before: Feb 12 17:50:48 2016 GMT
#            Not After : Feb 12 17:50:48 2041 GMT
#        Subject: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com EV Root Certification Authority RSA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c6:37:7c:13:6f:cf:0f:d9:50:cf:e6:d7:aa:68:
#                    2f:5c:51:d4:bf:cd:4c:a6:d5:37:31:40:10:34:41:
#                    7a:fd:cb:94:8d:62:7f:b8:90:cd:ce:69:96:3a:c4:
#                    ff:d9:d7:63:e6:d0:84:25:80:11:bf:d1:ed:30:e8:
#                    84:06:e1:a0:97:b8:55:90:1d:ad:f3:a4:9a:1b:4e:
#                    9c:11:f7:f5:d9:d6:8f:60:2a:3e:37:f8:75:ec:80:
#                    a3:55:a0:f4:27:41:c2:aa:39:e4:52:df:10:f9:f5:
#                    65:39:3f:8c:9d:cc:7b:27:cf:06:14:77:4e:3d:52:
#                    e7:84:81:31:6c:12:32:ac:84:5a:17:6a:c4:c1:5c:
#                    80:31:c2:da:47:7b:76:0f:42:e8:e7:22:14:d3:8d:
#                    c4:5b:8f:8b:65:58:29:2c:8f:0e:8e:49:d4:d4:d8:
#                    0a:5a:d3:26:d3:09:8e:d8:43:b2:94:4f:d2:c0:1c:
#                    dd:74:62:11:69:bc:54:22:e8:3a:1e:d0:55:56:45:
#                    8f:70:70:8d:2f:ef:c2:5d:bd:5e:54:dd:2e:7b:e9:
#                    18:8b:8a:49:d9:4f:8d:10:f3:a5:57:e1:6b:ab:18:
#                    4b:8e:ae:2e:f1:f2:ba:f5:5d:41:f7:39:d8:a3:c2:
#                    5d:de:9f:5a:b1:2f:44:93:3e:3f:f1:22:39:94:40:
#                    6d:27:c6:cc:0d:78:0c:0b:bd:2a:56:26:ad:29:57:
#                    b8:71:e4:7f:eb:13:b2:c8:7d:f5:6b:5d:f3:f2:00:
#                    30:33:fa:5b:cb:12:6a:7a:41:6f:6f:09:4c:b7:69:
#                    0d:0f:79:23:23:1a:66:8d:59:36:63:96:80:7b:18:
#                    22:6b:1e:22:18:2d:e4:a5:75:0a:10:59:fb:a3:7e:
#                    26:10:53:c6:c8:19:2e:1e:27:18:fb:30:05:3d:91:
#                    04:7a:ae:70:c6:cc:0f:a0:34:d3:24:16:18:01:05:
#                    67:69:e5:45:d1:56:a8:9b:bf:af:fa:ac:55:08:0c:
#                    02:7e:4b:77:ac:37:c1:d8:ed:99:34:a0:41:b3:35:
#                    3a:eb:31:34:c9:3b:df:c4:3d:29:45:35:54:b8:7f:
#                    96:cf:08:0f:e9:b1:9e:55:ca:67:84:a0:27:60:ab:
#                    fa:50:31:39:d5:7b:ca:b6:9a:ed:91:8c:78:1e:f9:
#                    ee:e0:e2:59:41:d4:1f:42:80:79:f5:f4:83:50:08:
#                    ad:f3:47:41:5f:50:a3:9f:89:f3:b4:27:2a:54:b9:
#                    1a:59:6b:09:9c:51:c0:28:6b:5b:b8:28:d2:6f:35:
#                    7e:d5:93:03:6e:74:25:65:ea:16:05:91:01:f1:07:
#                    63:4f:ab:84:c5:72:d9:cd:68:9b:4d:2c:7e:04:38:
#                    f0:ea:47
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D9:5A:2A:FF:A5:CE:9D:A1:91:7D:FF:87:5D:AB:6A:35:12:D9:C9:4C
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:D9:5A:2A:FF:A5:CE:9D:A1:91:7D:FF:87:5D:AB:6A:35:12:D9:C9:4C
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         bc:8c:cf:23:fa:bd:33:57:96:1f:d0:82:f0:12:ae:34:44:ea:
#         f1:bc:21:d7:f5:89:c6:34:1e:78:a6:e2:51:df:dd:78:80:d5:
#         ea:6d:c6:aa:6f:09:02:8c:a7:e6:cb:c8:89:5a:94:7a:4a:b3:
#         56:ef:dd:dd:53:32:63:f0:69:ef:dd:40:b9:90:a2:2e:03:77:
#         96:b5:29:00:52:ee:fb:0e:a7:94:68:c5:3c:03:2d:e9:6b:aa:
#         9d:ee:a7:d8:67:92:e2:11:5a:38:df:98:66:a3:a0:8e:cb:0c:
#         42:36:4c:c5:56:5b:9f:75:f0:40:d1:e8:3b:2a:08:9b:52:c3:
#         1c:5f:90:34:57:fb:c6:f9:1d:71:fc:25:7c:cf:7a:7d:1e:69:
#         c6:bb:f4:14:fe:1d:1d:e7:97:a2:86:9b:f2:df:57:92:06:52:
#         64:93:29:59:0a:2f:a1:17:dc:bb:ee:ad:3b:b3:00:65:38:d9:
#         a8:9c:81:ad:cd:35:9c:8b:e9:e2:f4:84:8f:0e:cf:8d:71:6d:
#         00:80:39:6f:b3:04:35:a0:38:61:a9:f2:2f:f4:35:8d:d8:df:
#         de:a4:69:30:fa:a0:26:7c:5a:22:79:f0:68:fe:cb:cd:bc:ef:
#         95:8c:27:e5:84:f9:fd:84:42:c6:ba:fd:b9:c9:c6:5a:71:30:
#         76:36:02:1f:d0:7c:a9:13:0e:e1:20:d9:52:0c:ac:1e:88:77:
#         a0:29:86:3a:88:66:53:af:c3:a5:c9:db:54:b1:a4:e8:ee:4c:
#         6e:3f:b9:7b:30:a3:42:e8:02:a6:bd:84:6d:2a:7c:fd:f4:ed:
#         45:b7:30:fa:6c:5c:23:56:5a:3c:61:2a:c7:9b:e6:c5:f2:44:
#         b7:07:bf:76:9d:42:e4:5c:f0:ee:b9:3e:10:f3:cf:52:d2:cd:
#         ce:52:18:7f:60:f6:2e:95:4c:35:00:4c:46:d6:10:ec:34:cb:
#         58:7b:6a:0d:e4:63:55:cc:58:d9:4f:63:67:31:c2:52:a1:79:
#         0f:2a:cf:c9:4e:cc:12:cb:8d:1a:5a:aa:46:31:13:3b:0d:e9:
#         57:68:5a:0b:84:04:36:2f:9f:11:bc:3c:7a:ad:5a:bf:46:e3:
#         b7:20:89:1d:dc:07:7c:dc:7a:eb:e9:76:c9:00:0d:70:b7:9f:
#         97:1a:62:ef:18:e6:64:be:08:a7:a4:99:bb:7f:8c:68:9a:98:
#         c9:86:62:f6:a1:98:36:39:a3:f3:96:57:a4:02:63:f9:55:3e:
#         b0:8c:9f:bf:a9:7a:4b:3c:d9:b9:ae:0f:8a:f4:ba:1c:25:ab:
#         55:59:a1:56:c2:33:b9:3a:c4:40:cf:8b:1a:f7:03:0e:bd:1b:
#         60:63:7d:25:d4:a9:be:e5

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA R2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAjzZlQOHWTcDXtOlG2mvq
M0fNTPl9fb69LT3w23jhhqXZuglXaO1XPqDQCEGD5yhBJB/jchXQARr7XnAjssuf
OePPxU7Gkm0mxnu7s9onnQqG6YE3Bf7wcXHswxzpY6IXFJ3vG2fThVUCAtZJycxa
4bH3bzKfydQ7iEGonL3Lq9ttewkfokxykNorCPzPPFTOZw+oz12WGQvE43LrrdF9
HSfvkusQv1vrO6/PgN3B0pYEW3p+pKk8OHakYo6gOV7qd89dAFmPZiw+B6KjBSYR
aZfqhbcPlgtLyEDhULouisv3D5oi53+aNxPN8k0TayHRwMwi8qFG9kRpnMphNQcA
b9ZhCBHqurj26bNg5U257J8UZslXWNvNh2n4ioYSA0e/ZhN2rHd9NCSFg83XqpyQ
Gp8hLH94t2S42Oim9HizVcuE0jLEeK6jj2HdzghTreyI/BXkmg3mnxp3zkyPuBQV
PWKchjgGAGYS5Fl2WlPAApiiECtoRHuOec4zSnaqW4EWG7WK2NAAe15itAnWhmMO
pgWVSbooi4iTsjQc2KRVbrcc0N6ZVTsj9CLg+SlmJuwgUHfbSguPvuUCYHBBXtSu
UDkiFCbLsjtzdFVHB3mBOagwE0TlBIqulhMlQg+5U8Sb/M3kHN48+qvWBkofZ6aY
MBzdLNvcGJVXZsb/XItW9XcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com EV Root Certification Authority RSA R2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            56:b6:29:cd:34:bc:78:f6
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com EV Root Certification Authority RSA R2
#        Validity
#            Not Before: May 31 18:14:37 2017 GMT
#            Not After : May 30 18:14:37 2042 GMT
#        Subject: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com EV Root Certification Authority RSA R2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:8f:36:65:40:e1:d6:4d:c0:d7:b4:e9:46:da:6b:
#                    ea:33:47:cd:4c:f9:7d:7d:be:bd:2d:3d:f0:db:78:
#                    e1:86:a5:d9:ba:09:57:68:ed:57:3e:a0:d0:08:41:
#                    83:e7:28:41:24:1f:e3:72:15:d0:01:1a:fb:5e:70:
#                    23:b2:cb:9f:39:e3:cf:c5:4e:c6:92:6d:26:c6:7b:
#                    bb:b3:da:27:9d:0a:86:e9:81:37:05:fe:f0:71:71:
#                    ec:c3:1c:e9:63:a2:17:14:9d:ef:1b:67:d3:85:55:
#                    02:02:d6:49:c9:cc:5a:e1:b1:f7:6f:32:9f:c9:d4:
#                    3b:88:41:a8:9c:bd:cb:ab:db:6d:7b:09:1f:a2:4c:
#                    72:90:da:2b:08:fc:cf:3c:54:ce:67:0f:a8:cf:5d:
#                    96:19:0b:c4:e3:72:eb:ad:d1:7d:1d:27:ef:92:eb:
#                    10:bf:5b:eb:3b:af:cf:80:dd:c1:d2:96:04:5b:7a:
#                    7e:a4:a9:3c:38:76:a4:62:8e:a0:39:5e:ea:77:cf:
#                    5d:00:59:8f:66:2c:3e:07:a2:a3:05:26:11:69:97:
#                    ea:85:b7:0f:96:0b:4b:c8:40:e1:50:ba:2e:8a:cb:
#                    f7:0f:9a:22:e7:7f:9a:37:13:cd:f2:4d:13:6b:21:
#                    d1:c0:cc:22:f2:a1:46:f6:44:69:9c:ca:61:35:07:
#                    00:6f:d6:61:08:11:ea:ba:b8:f6:e9:b3:60:e5:4d:
#                    b9:ec:9f:14:66:c9:57:58:db:cd:87:69:f8:8a:86:
#                    12:03:47:bf:66:13:76:ac:77:7d:34:24:85:83:cd:
#                    d7:aa:9c:90:1a:9f:21:2c:7f:78:b7:64:b8:d8:e8:
#                    a6:f4:78:b3:55:cb:84:d2:32:c4:78:ae:a3:8f:61:
#                    dd:ce:08:53:ad:ec:88:fc:15:e4:9a:0d:e6:9f:1a:
#                    77:ce:4c:8f:b8:14:15:3d:62:9c:86:38:06:00:66:
#                    12:e4:59:76:5a:53:c0:02:98:a2:10:2b:68:44:7b:
#                    8e:79:ce:33:4a:76:aa:5b:81:16:1b:b5:8a:d8:d0:
#                    00:7b:5e:62:b4:09:d6:86:63:0e:a6:05:95:49:ba:
#                    28:8b:88:93:b2:34:1c:d8:a4:55:6e:b7:1c:d0:de:
#                    99:55:3b:23:f4:22:e0:f9:29:66:26:ec:20:50:77:
#                    db:4a:0b:8f:be:e5:02:60:70:41:5e:d4:ae:50:39:
#                    22:14:26:cb:b2:3b:73:74:55:47:07:79:81:39:a8:
#                    30:13:44:e5:04:8a:ae:96:13:25:42:0f:b9:53:c4:
#                    9b:fc:cd:e4:1c:de:3c:fa:ab:d6:06:4a:1f:67:a6:
#                    98:30:1c:dd:2c:db:dc:18:95:57:66:c6:ff:5c:8b:
#                    56:f5:77
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:F9:60:BB:D4:E3:D5:34:F6:B8:F5:06:80:25:A7:73:DB:46:69:A8:9E
#
#            X509v3 Subject Key Identifier: 
#                F9:60:BB:D4:E3:D5:34:F6:B8:F5:06:80:25:A7:73:DB:46:69:A8:9E
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         56:b3:8e:cb:0a:9d:49:8e:bf:a4:c4:91:bb:66:17:05:51:98:
#         75:fb:e5:50:2c:7a:9e:f1:14:fa:ab:d3:8a:3e:ff:91:29:8f:
#         63:8b:d8:b4:a9:54:01:0d:be:93:86:2f:f9:4a:6d:c7:5e:f5:
#         57:f9:ca:55:1c:12:be:47:0f:36:c5:df:6a:b7:db:75:c2:47:
#         25:7f:b9:f1:63:f8:68:2d:55:04:d1:f2:8d:b0:a4:cf:bc:3c:
#         5e:1f:78:e7:a5:a0:20:70:b0:04:c5:b7:f7:72:a7:de:22:0d:
#         bd:33:25:46:8c:64:92:26:e3:3e:2e:63:96:da:9b:8c:3d:f8:
#         18:09:d7:03:cc:7d:86:82:e0:ca:04:07:51:50:d7:ff:92:d5:
#         0c:ef:da:86:9f:99:d7:eb:b7:af:68:e2:39:26:94:ba:68:b7:
#         bf:83:d3:ea:7a:67:3d:62:67:ae:25:e5:72:e8:e2:e4:ec:ae:
#         12:f6:4b:2b:3c:9f:e9:b0:40:f3:38:54:b3:fd:b7:68:c8:da:
#         c6:8f:51:3c:b2:fb:91:dc:1c:e7:9b:9d:e1:b7:0d:72:8f:e2:
#         a4:c4:a9:78:f9:eb:14:ac:c6:43:05:c2:65:39:28:18:02:c3:
#         82:b2:9d:05:be:65:ed:96:5f:65:74:3c:fb:09:35:2e:7b:9c:
#         13:fd:1b:0f:5d:c7:6d:81:3a:56:0f:cc:3b:e1:af:02:2f:22:
#         ac:46:ca:46:3c:a0:1c:4c:d6:44:b4:5e:2e:5c:15:66:09:e1:
#         26:29:fe:c6:52:61:ba:b1:73:ff:c3:0c:9c:e5:6c:6a:94:3f:
#         14:ca:40:16:95:84:f3:59:a9:ac:5f:4c:61:93:6d:d1:3b:cc:
#         a2:95:0c:22:a6:67:67:44:2e:b9:d9:d2:8a:41:b3:66:0b:5a:
#         fb:7d:23:a5:f2:1a:b0:ff:de:9b:83:94:2e:d1:3f:df:92:b7:
#         91:af:05:3b:65:c7:a0:6c:b1:cd:62:12:c3:90:1b:e3:25:ce:
#         34:bc:6f:77:76:b1:10:c3:f7:05:1a:c0:d6:af:74:62:48:17:
#         77:92:69:90:61:1c:de:95:80:74:54:8f:18:1c:c3:f3:03:d0:
#         bf:a4:43:75:86:53:18:7a:0a:2e:09:1c:36:9f:91:fd:82:8a:
#         22:4b:d1:0e:50:25:dd:cb:03:0c:17:c9:83:00:08:4e:35:4d:
#         8a:8b:ed:f0:02:94:66:2c:44:7f:cb:95:27:96:17:ad:09:30:
#         ac:b6:71:17:6e:8b:17:f6:1c:09:d4:2d:3b:98:a5:71:d3:54:
#         13:d9:60:f3:f5:4b:66:4f:fa:f1:ee:20:12:8d:b4:ac:57:b1:
#         45:63:a1:ac:76:a9:c2:fb

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority ECC"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAERW6pUMSmIzaeXyiNF8uWImQ/3HqOHcwI
s6JxJLqOSbkEG0eWWKstlcjtngg1yCfriYxTWOtiiv7wWw9rMVJjQTuJzezsto0Z
0zQH3LvGBn/CRZXsy3+oI+AJ6YH680fT
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority ECC"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            75:e6:df:cb:c1:68:5b:a8
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com Root Certification Authority ECC
#        Validity
#            Not Before: Feb 12 18:14:03 2016 GMT
#            Not After : Feb 12 18:14:03 2041 GMT
#        Subject: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com Root Certification Authority ECC
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:45:6e:a9:50:c4:a6:23:36:9e:5f:28:8d:17:cb:
#                    96:22:64:3f:dc:7a:8e:1d:cc:08:b3:a2:71:24:ba:
#                    8e:49:b9:04:1b:47:96:58:ab:2d:95:c8:ed:9e:08:
#                    35:c8:27:eb:89:8c:53:58:eb:62:8a:fe:f0:5b:0f:
#                    6b:31:52:63:41:3b:89:cd:ec:ec:b6:8d:19:d3:34:
#                    07:dc:bb:c6:06:7f:c2:45:95:ec:cb:7f:a8:23:e0:
#                    09:e9:81:fa:f3:47:d3
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                82:D1:85:73:30:E7:35:04:D3:8E:02:92:FB:E5:A4:D1:C4:21:E8:CD
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:82:D1:85:73:30:E7:35:04:D3:8E:02:92:FB:E5:A4:D1:C4:21:E8:CD
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA256
#         30:64:02:30:6f:e7:eb:59:11:a4:60:cf:61:b0:96:7b:ed:05:
#         f9:2f:13:91:dc:ed:e5:fc:50:6b:11:46:46:b3:1c:21:00:62:
#         bb:be:c3:e7:e8:cd:07:99:f9:0d:0b:5d:72:3e:c4:aa:02:30:
#         1f:bc:ba:0b:e2:30:24:fb:7c:6d:80:55:0a:99:3e:80:0d:33:
#         e5:66:a3:b3:a3:bb:a5:d5:8b:8f:09:2c:a6:5d:7e:e2:f0:07:
#         08:68:6d:d2:7c:69:6e:5f:df:e5:6a:65

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority RSA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com Root Certification Authority RSA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7b:2c:9b:d3:16:80:32:99
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com Root Certification Authority RSA
#        Validity
#            Not Before: Feb 12 17:39:39 2016 GMT
#            Not After : Feb 12 17:39:39 2041 GMT
#        Subject: C=US, ST=Texas, L=Houston, O=SSL Corporation, CN=SSL.com Root Certification Authority RSA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:f9:0f:dd:a3:2b:7d:cb:d0:2a:fe:ec:67:85:a6:
#                    e7:2e:1b:ba:77:e1:e3:f5:af:a4:ec:fa:4a:5d:91:
#                    c4:57:47:6b:18:77:6b:76:f2:fd:93:e4:3d:0f:c2:
#                    16:9e:0b:66:c3:56:94:9e:17:83:85:ce:56:ef:f2:
#                    16:fd:00:62:f5:22:09:54:e8:65:17:4e:41:b9:e0:
#                    4f:46:97:aa:1b:c8:b8:6e:62:5e:69:b1:5f:db:2a:
#                    02:7e:fc:6c:ca:f3:41:d8:ed:d0:e8:fc:3f:61:48:
#                    ed:b0:03:14:1d:10:0e:4b:19:e0:bb:4e:ec:86:65:
#                    ff:36:f3:5e:67:02:0b:9d:86:55:61:fd:7a:38:ed:
#                    fe:e2:19:00:b7:6f:a1:50:62:75:74:3c:a0:fa:c8:
#                    25:92:b4:6e:7a:22:c7:f8:1e:a1:e3:b2:dd:91:31:
#                    ab:2b:1d:04:ff:a5:4a:04:37:e9:85:a4:33:2b:fd:
#                    e2:d6:55:34:7c:19:a4:4a:68:c7:b2:a8:d3:b7:ca:
#                    a1:93:88:eb:c1:97:bc:8c:f9:1d:d9:22:84:24:74:
#                    c7:04:3d:6a:a9:29:93:cc:eb:b8:5b:e1:fe:5f:25:
#                    aa:34:58:c8:c1:23:54:9d:1b:98:11:c3:38:9c:7e:
#                    3d:86:6c:a5:0f:40:86:7c:02:f4:5c:02:4f:28:cb:
#                    ae:71:9f:0f:3a:c8:33:fe:11:25:35:ea:fc:ba:c5:
#                    60:3d:d9:7c:18:d5:b2:a9:d3:75:78:03:72:22:ca:
#                    3a:c3:1f:ef:2c:e5:2e:a9:fa:9e:2c:b6:51:46:fd:
#                    af:03:d6:ea:60:68:ea:85:16:36:6b:85:e9:1e:c0:
#                    b3:dd:c4:24:dc:80:2a:81:41:6d:94:3e:c8:e0:c9:
#                    81:41:00:9e:5e:bf:7f:c5:08:98:a2:18:2c:42:40:
#                    b3:f9:6f:38:27:4b:4e:80:f4:3d:81:47:e0:88:7c:
#                    ea:1c:ce:b5:75:5c:51:2e:1c:2b:7f:1a:72:28:e7:
#                    00:b5:d1:74:c6:d7:e4:9f:ad:07:93:b6:53:35:35:
#                    fc:37:e4:c3:f6:5d:16:be:21:73:de:92:0a:f8:a0:
#                    63:6a:bc:96:92:6a:3e:f8:bc:65:55:9b:de:f5:0d:
#                    89:26:04:fc:25:1a:a6:25:69:cb:c2:6d:ca:7c:e2:
#                    59:5f:97:ac:eb:ef:2e:c8:bc:d7:1b:59:3c:2b:cc:
#                    f2:19:c8:93:6b:27:63:19:cf:fc:e9:26:f8:ca:71:
#                    9b:7f:93:fe:34:67:84:4e:99:eb:fc:b3:78:09:33:
#                    70:ba:66:a6:76:ed:1b:73:eb:1a:a5:0d:c4:22:13:
#                    20:94:56:0a:4e:2c:6c:4e:b1:fd:cf:9c:09:ba:a2:
#                    33:ed:87
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                DD:04:09:07:A2:F5:7A:7D:52:53:12:92:95:EE:38:80:25:0D:A6:59
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:DD:04:09:07:A2:F5:7A:7D:52:53:12:92:95:EE:38:80:25:0D:A6:59
#
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         20:18:11:94:29:fb:26:9d:1c:1e:1e:70:61:f1:95:72:93:71:
#         24:ad:68:93:58:8e:32:af:1b:b3:70:03:fc:25:2b:74:85:90:
#         3d:78:6a:f4:b9:8b:a5:97:3b:b5:18:91:bb:1e:a7:f9:40:5b:
#         91:f9:55:99:af:1e:11:d0:5c:1d:a7:66:e3:b1:94:07:0c:32:
#         39:a6:ea:1b:b0:79:d8:1d:9c:70:44:e3:8a:dd:c4:f9:95:1f:
#         8a:38:43:3f:01:85:a5:47:a7:3d:46:b2:bc:e5:22:68:f7:7b:
#         9c:d8:2c:3e:0a:21:c8:2d:33:ac:bf:c5:81:99:31:74:c1:75:
#         71:c5:be:b1:f0:23:45:f4:9d:6b:fc:19:63:9d:a3:bc:04:c6:
#         18:0b:25:bb:53:89:0f:b3:80:50:de:45:ee:44:7f:ab:94:78:
#         64:98:d3:f6:28:dd:87:d8:70:65:74:fb:0e:b9:13:eb:a7:0f:
#         61:a9:32:96:cc:de:bb:ed:63:4c:18:bb:a9:40:f7:a0:54:6e:
#         20:88:71:75:18:ea:7a:b4:34:72:e0:23:27:77:5c:b6:90:ea:
#         86:25:40:ab:ef:33:0f:cb:9f:82:be:a2:20:fb:f6:b5:2d:1a:
#         e6:c2:85:b1:74:0f:fb:c8:65:02:a4:52:01:47:dd:49:22:c1:
#         bf:d8:eb:6b:ac:7e:de:ec:63:33:15:b7:23:08:8f:c6:0f:8d:
#         41:5a:dd:8e:c5:b9:8f:e5:45:3f:78:db:ba:d2:1b:40:b1:fe:
#         71:4d:3f:e0:81:a2:ba:5e:b4:ec:15:e0:93:dd:08:1f:7e:e1:
#         55:99:0b:21:de:93:9e:0a:fb:e6:a3:49:bd:36:30:fe:e7:77:
#         b2:a0:75:97:b5:2d:81:88:17:65:20:f7:da:90:00:9f:c9:52:
#         cc:32:ca:35:7c:f5:3d:0f:d8:2b:d7:f5:26:6c:c9:06:34:96:
#         16:ea:70:59:1a:32:79:79:0b:b6:88:7f:0f:52:48:3d:bf:6c:
#         d8:a2:44:2e:d1:4e:b7:72:58:d3:89:13:95:fe:44:ab:f8:d7:
#         8b:1b:6e:9c:bc:2c:a0:5b:d5:6a:00:af:5f:37:e1:d5:fa:10:
#         0b:98:9c:86:e7:26:8f:ce:f0:ec:6e:8a:57:0b:80:e3:4e:b2:
#         c0:a0:63:61:90:ba:55:68:37:74:6a:b6:92:db:9f:a1:86:22:
#         b6:65:27:0e:ec:b6:9f:42:60:e4:67:c2:b5:da:41:0b:c4:d3:
#         8b:61:1b:bc:fa:1f:91:2b:d7:44:07:5e:ba:29:ac:d9:c5:e9:
#         ef:53:48:5a:eb:80:f1:28:58:21:cd:b0:06:55:fb:27:3f:53:
#         90:70:a9:04:1e:57:27:b9

[p11-kit-object-v1]
label: "SSL.com TLS ECC Root CA 2022"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAERSk1c/rCuCPOFH2osU2gWzbuKixTw2AJ
NbIkZiZpwLOV1l2SQBkOxqUTcPTvElEoXefMvfk8hcHPlJDJK86SQlhZZ/2UJxBk
jE8EsU1J5HtPm/XnCPgDiPenw5JLGVSB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com TLS ECC Root CA 2022"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            14:03:f5:ab:fb:37:8b:17:40:5b:e2:43:b2:a5:d1:c4
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=SSL Corporation, CN=SSL.com TLS ECC Root CA 2022
#        Validity
#            Not Before: Aug 25 16:33:48 2022 GMT
#            Not After : Aug 19 16:33:47 2046 GMT
#        Subject: C=US, O=SSL Corporation, CN=SSL.com TLS ECC Root CA 2022
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:45:29:35:73:fa:c2:b8:23:ce:14:7d:a8:b1:4d:
#                    a0:5b:36:ee:2a:2c:53:c3:60:09:35:b2:24:66:26:
#                    69:c0:b3:95:d6:5d:92:40:19:0e:c6:a5:13:70:f4:
#                    ef:12:51:28:5d:e7:cc:bd:f9:3c:85:c1:cf:94:90:
#                    c9:2b:ce:92:42:58:59:67:fd:94:27:10:64:8c:4f:
#                    04:b1:4d:49:e4:7b:4f:9b:f5:e7:08:f8:03:88:f7:
#                    a7:c3:92:4b:19:54:81
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:89:8F:2F:A3:E8:2B:A0:14:54:7B:F3:56:B8:26:5F:67:38:0B:9C:D0
#
#            X509v3 Subject Key Identifier: 
#                89:8F:2F:A3:E8:2B:A0:14:54:7B:F3:56:B8:26:5F:67:38:0B:9C:D0
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:55:e3:22:56:e9:d7:92:24:58:4f:1e:94:32:0f:
#         0c:02:36:c2:fd:ac:74:32:4e:e1:fb:1c:80:88:a3:cc:fb:d7:
#         eb:2b:ff:37:7d:f0:ed:d7:9e:75:6a:35:76:52:45:e0:02:31:
#         00:c7:8d:6f:42:20:8f:be:b6:4d:59:ed:77:4d:29:c4:20:20:
#         45:64:86:3a:50:c6:c4:ad:2d:93:f5:18:7d:72:ed:a9:cf:c4:
#         ac:57:36:28:08:65:df:3c:79:66:7e:a0:ea

[p11-kit-object-v1]
label: "SSL.com TLS RSA Root CA 2022"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SSL.com TLS RSA Root CA 2022"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6f:be:da:ad:73:bd:08:40:e2:8b:4d:be:d4:f7:5b:91
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=SSL Corporation, CN=SSL.com TLS RSA Root CA 2022
#        Validity
#            Not Before: Aug 25 16:34:22 2022 GMT
#            Not After : Aug 19 16:34:21 2046 GMT
#        Subject: C=US, O=SSL Corporation, CN=SSL.com TLS RSA Root CA 2022
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d0:a4:09:72:4f:40:88:12:61:3e:35:23:9e:ee:
#                    f6:74:cf:2f:7b:58:3d:ce:3c:0d:10:28:90:2f:97:
#                    f7:8c:48:d8:a0:d8:25:b1:4c:b0:11:4c:17:73:50:
#                    d0:22:4a:63:bb:81:d3:29:6e:d5:b5:09:3e:26:18:
#                    7f:b2:12:7f:93:98:b7:af:f0:36:bf:f2:ee:18:9e:
#                    9c:3b:52:c5:47:19:5d:74:f3:64:66:d5:5d:c7:68:
#                    b4:bf:1b:1c:06:a3:bc:8f:40:23:b6:1e:c6:84:bd:
#                    51:c4:1b:39:c1:95:d2:29:ec:4b:ae:7b:2d:bf:39:
#                    fd:b4:62:de:96:7b:41:c6:9c:a0:e0:06:72:fb:f0:
#                    07:97:09:39:81:74:af:f7:34:59:11:57:0a:c2:5b:
#                    c1:24:f4:31:73:30:82:c6:9d:ba:02:f7:3e:7c:44:
#                    5f:83:0d:f3:f1:dd:20:69:16:09:50:e2:d4:55:b6:
#                    e0:80:72:76:6e:4c:47:b7:75:55:59:b4:53:74:d9:
#                    94:c6:41:ad:58:8a:31:66:0f:1e:a2:1b:29:40:4e:
#                    2f:df:7b:e6:16:2c:2d:fc:bf:ec:f3:b4:fa:be:18:
#                    f6:9b:49:d4:ee:05:6e:d9:34:f3:9c:f1:ec:01:8b:
#                    d1:20:c6:0f:a0:b5:bc:17:4e:48:7b:51:c2:fc:e9:
#                    5c:69:37:47:66:b3:68:f8:15:28:f0:b9:d3:a4:15:
#                    cc:5a:4f:ba:52:70:a3:12:45:dd:c6:ba:4e:fb:c2:
#                    d0:f7:a8:52:27:6d:6e:79:b5:8c:fc:7b:8c:c1:16:
#                    4c:ee:80:7f:be:f0:76:be:41:53:12:33:ae:5a:38:
#                    42:ab:d7:0f:3e:41:8d:76:07:32:d5:ab:89:f6:4e:
#                    67:d9:b1:42:75:23:6e:f3:cd:42:b2:fc:55:f5:53:
#                    87:17:3b:c0:33:58:f1:52:d2:f9:80:a4:f0:e8:f0:
#                    3b:8b:38:cc:a4:c6:90:7f:0f:9c:fd:8b:d1:a3:cf:
#                    da:83:a7:69:c9:50:36:d5:5c:05:d2:0a:41:74:db:
#                    63:11:37:c1:a5:a0:96:4b:1e:8c:16:12:77:ae:94:
#                    34:7b:1e:7f:c2:66:00:e4:aa:83:ea:8a:90:ad:ce:
#                    36:44:4d:d1:51:e9:bc:1f:f3:6a:05:fd:c0:74:1f:
#                    25:19:40:51:6e:ea:82:51:40:df:9b:b9:08:2a:06:
#                    02:d5:23:1c:13:d6:e9:db:db:c6:b0:7a:cb:7b:27:
#                    9b:fb:e0:d5:46:24:ed:10:4b:63:4b:a5:05:8f:ba:
#                    b8:1d:2b:a6:fa:91:e2:92:52:bd:ec:eb:67:97:6d:
#                    9a:2d:9f:81:32:05:67:32:fb:48:08:3f:d9:25:b8:
#                    04:25:2f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:FB:2E:37:EE:E3:84:7A:27:2E:CD:19:35:B1:33:7C:FF:D4:44:42:B9
#
#            X509v3 Subject Key Identifier: 
#                FB:2E:37:EE:E3:84:7A:27:2E:CD:19:35:B1:33:7C:FF:D4:44:42:B9
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         8d:89:6d:84:45:18:f1:4f:b3:a0:ef:68:a4:c0:1d:ac:30:bc:
#         67:66:b0:9a:cd:b6:ab:22:19:66:d3:3b:41:b5:10:9d:10:ba:
#         72:6e:29:24:20:1c:01:99:62:d3:96:e0:e2:fb:0c:42:d7:e1:
#         5a:c4:96:4d:54:cd:8f:ca:43:53:fd:2a:b8:ea:f8:65:ca:01:
#         c2:ad:60:68:06:9f:39:1a:51:d9:e0:8d:26:f9:0b:4e:a5:53:
#         25:7a:23:a4:1c:ce:08:1b:df:47:88:b2:ad:3e:e0:27:87:8b:
#         49:8c:1f:a9:47:58:7b:96:f2:88:1d:18:ae:b3:d1:a6:0a:94:
#         fa:db:d3:e5:38:0a:6b:79:12:33:fb:4a:59:37:16:40:0e:bb:
#         de:f5:89:0c:f1:6c:d3:f7:51:6b:5e:35:f5:db:c0:26:ea:12:
#         73:4e:a9:91:90:a6:17:c3:6c:2f:38:d4:a3:72:94:43:2c:62:
#         e1:4e:5c:32:3d:bd:4c:7d:19:47:a2:c3:49:e7:96:3f:8f:9a:
#         d3:3b:e4:11:d8:8b:03:dc:f6:b6:60:55:18:a6:81:51:f3:e1:
#         a8:15:6a:eb:e0:0b:f0:14:31:d6:b9:8c:45:3a:a8:10:d8:f0:
#         b9:27:eb:f7:cb:7a:ef:05:72:96:b5:c4:8f:96:73:c4:e8:56:
#         73:9c:bc:69:51:63:bc:ef:67:1c:43:1a:5f:77:19:1f:18:f8:
#         1c:25:29:f9:49:99:29:b6:92:3d:a2:83:37:b1:20:91:a8:9b:
#         30:e9:6a:6c:b4:23:93:65:04:ab:11:f3:0e:1d:53:24:49:53:
#         1d:a1:3f:9d:48:92:11:e2:7d:0d:4f:f5:d7:bd:a2:58:3e:78:
#         9d:1e:1f:2b:fe:21:bb:1a:13:b6:b1:28:64:fd:b0:02:00:c7:
#         6c:80:a2:bd:16:50:20:0f:72:81:5f:cc:94:ff:bb:99:e6:ba:
#         90:cb:ea:f9:c6:0c:c2:ae:c5:19:ce:33:a1:6b:5c:bb:7e:7c:
#         34:57:17:ad:f0:3f:ae:cd:ea:af:99:ec:2c:54:7e:8c:ce:2e:
#         12:56:48:ef:17:3b:3f:4a:5e:60:d2:dc:74:36:bc:a5:43:63:
#         cb:0f:5b:a3:02:56:09:9e:24:2c:e1:86:81:8c:fe:ab:17:2c:
#         fa:c8:e2:32:1a:3a:ff:85:08:c9:83:9f:f2:4a:48:10:54:77:
#         37:ed:a2:bc:40:be:e4:10:74:f7:e4:5b:bb:b9:f3:89:f9:8f:
#         41:d8:c7:e4:50:90:35:80:3e:1c:b8:4d:90:d3:d4:f7:c3:b0:
#         a1:7e:84:ca:77:92:31:2c:b8:90:b1:82:7a:74:4e:9b:13:26:
#         b4:d5:50:66:54:78:ae:60

[p11-kit-object-v1]
label: "SZAFIR ROOT CA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt7w+UKhLzUC1zmHnlsq0
odoMIrD6tXt2AHeMC899qIbMJlHkID2FDNZY4+f0Khid2tGuJu7rU9z0kNYTSgyQ
PMP02tKODZI63LGx/zjew7otX4C5Ar1KnRsPtMPCwWcD3dwbnD2zsN4AHqg0R7ua
6/4LFL02hNoNIL/6W8upFiCtOWDuL3W255ec+T79fk1vTS/viA1q+t3xPW4gpaAS
tE1wuc7XcjuJk6eAhBwnSXJJtf87lZ7BzMgB7OgOigqW57Omh+XW+QUrDZdAcDy6
rHVanNVNnQIK0kubZktGBxdlrZ9siADcIong4WTUZ7wxeWE8u8pBzVxqAMg8OI5Y
rwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SZAFIR ROOT CA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3e:8a:5d:07:ec:55:d2:32:d5:b7:e3:b6:5f:01:eb:2d:dc:e4:d6:e4
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=PL, O=Krajowa Izba Rozliczeniowa S.A., CN=SZAFIR ROOT CA2
#        Validity
#            Not Before: Oct 19 07:43:30 2015 GMT
#            Not After : Oct 19 07:43:30 2035 GMT
#        Subject: C=PL, O=Krajowa Izba Rozliczeniowa S.A., CN=SZAFIR ROOT CA2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:bc:3e:50:a8:4b:cd:40:b5:ce:61:e7:96:ca:
#                    b4:a1:da:0c:22:b0:fa:b5:7b:76:00:77:8c:0b:cf:
#                    7d:a8:86:cc:26:51:e4:20:3d:85:0c:d6:58:e3:e7:
#                    f4:2a:18:9d:da:d1:ae:26:ee:eb:53:dc:f4:90:d6:
#                    13:4a:0c:90:3c:c3:f4:da:d2:8e:0d:92:3a:dc:b1:
#                    b1:ff:38:de:c3:ba:2d:5f:80:b9:02:bd:4a:9d:1b:
#                    0f:b4:c3:c2:c1:67:03:dd:dc:1b:9c:3d:b3:b0:de:
#                    00:1e:a8:34:47:bb:9a:eb:fe:0b:14:bd:36:84:da:
#                    0d:20:bf:fa:5b:cb:a9:16:20:ad:39:60:ee:2f:75:
#                    b6:e7:97:9c:f9:3e:fd:7e:4d:6f:4d:2f:ef:88:0d:
#                    6a:fa:dd:f1:3d:6e:20:a5:a0:12:b4:4d:70:b9:ce:
#                    d7:72:3b:89:93:a7:80:84:1c:27:49:72:49:b5:ff:
#                    3b:95:9e:c1:cc:c8:01:ec:e8:0e:8a:0a:96:e7:b3:
#                    a6:87:e5:d6:f9:05:2b:0d:97:40:70:3c:ba:ac:75:
#                    5a:9c:d5:4d:9d:02:0a:d2:4b:9b:66:4b:46:07:17:
#                    65:ad:9f:6c:88:00:dc:22:89:e0:e1:64:d4:67:bc:
#                    31:79:61:3c:bb:ca:41:cd:5c:6a:00:c8:3c:38:8e:
#                    58:af
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                2E:16:A9:4A:18:B5:CB:CC:F5:6F:50:F3:23:5F:F8:5D:E7:AC:F0:C8
#    Signature Algorithm: sha256WithRSAEncryption
#         b5:73:f8:03:dc:59:5b:1d:76:e9:a3:2a:7b:90:28:b2:4d:c0:
#         33:4f:aa:9a:b1:d4:b8:e4:27:ff:a9:96:99:ce:46:e0:6d:7c:
#         4c:a2:38:a4:06:70:f0:f4:41:11:ec:3f:47:8d:3f:72:87:f9:
#         3b:fd:a4:6f:2b:53:00:e0:ff:39:b9:6a:07:0e:eb:1d:1c:f6:
#         a2:72:90:cb:82:3d:11:82:8b:d2:bb:9f:2a:af:21:e6:63:86:
#         9d:79:19:ef:f7:bb:0c:35:90:c3:8a:ed:4f:0f:f5:cc:12:d9:
#         a4:3e:bb:a0:fc:20:95:5f:4f:26:2f:11:23:83:4e:75:07:0f:
#         bf:9b:d1:b4:1d:e9:10:04:fe:ca:60:8f:a2:4c:b8:ad:cf:e1:
#         90:0f:cd:ae:0a:c7:5d:7b:b7:50:d2:d4:61:fa:d5:15:db:d7:
#         9f:87:51:54:eb:a5:e3:eb:c9:85:a0:25:20:37:fb:8e:ce:0c:
#         34:84:e1:3c:81:b2:77:4e:43:a5:88:5f:86:67:a1:3d:e6:b4:
#         5c:61:b6:3e:db:fe:b7:28:c5:a2:07:ae:b5:ca:ca:8d:2a:12:
#         ef:97:ed:c2:30:a4:c9:2a:7a:fb:f3:4d:23:1b:99:33:34:a0:
#         2e:f5:a9:0b:3f:d4:5d:e1:cf:84:9f:e2:19:c2:5f:8a:d6:20:
#         1e:e3:73:b7

[p11-kit-object-v1]
label: "Sectigo Public Email Protection Root E46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEuKdSlPU+BbAb9h+x03655AVmVIDObKVo
feRTUtuC+sSG30N498itFrw/eDLLa9NJ1kTls36fe6bGLPLittOJsJo8S86JS8bG
yzpJYA9GvG1OepzJm4V7CrawR8KI49TR
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Sectigo Public Email Protection Root E46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6e:f5:d3:a7:41:8e:a0:59:40:a7:30:6b:d2:40:65:56
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=GB, O=Sectigo Limited, CN=Sectigo Public Email Protection Root E46
#        Validity
#            Not Before: Mar 22 00:00:00 2021 GMT
#            Not After : Mar 21 23:59:59 2046 GMT
#        Subject: C=GB, O=Sectigo Limited, CN=Sectigo Public Email Protection Root E46
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:b8:a7:52:94:f5:3e:05:b0:1b:f6:1f:b1:d3:7e:
#                    b9:e4:05:66:54:80:ce:6c:a5:68:7d:e4:53:52:db:
#                    82:fa:c4:86:df:43:78:f7:c8:ad:16:bc:3f:78:32:
#                    cb:6b:d3:49:d6:44:e5:b3:7e:9f:7b:a6:c6:2c:f2:
#                    e2:b6:d3:89:b0:9a:3c:4b:ce:89:4b:c6:c6:cb:3a:
#                    49:60:0f:46:bc:6d:4e:7a:9c:c9:9b:85:7b:0a:b6:
#                    b0:47:c2:88:e3:d4:d1
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                2D:4E:8C:A7:C2:23:B2:57:A9:06:6B:3E:6B:2B:89:F3:C3:5E:47:CE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:92:9d:1a:59:63:45:58:8e:1b:16:e4:7d:7a:
#         6c:36:48:30:1f:2b:72:e7:90:33:34:fd:24:a2:c6:06:8c:6f:
#         3b:32:57:5a:f8:fe:c6:49:12:53:9a:d9:10:b2:99:51:72:02:
#         30:05:25:2a:33:21:fc:93:e6:22:a2:cc:70:55:28:35:56:a2:
#         07:c4:21:84:23:1a:4c:4c:99:50:99:92:14:cb:4a:dc:56:fb:
#         f5:d3:8f:6a:2c:f5:71:3a:f8:8b:3b:03:9e

[p11-kit-object-v1]
label: "Sectigo Public Email Protection Root R46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAkeUb+qptNyt1xy5fFKXb
LJe2LEaPadnsli3zHVq+0x0j5mgJ/0oRcxquZ592mtLn7LjZXyv5JlZRr3adqfwX
7zIK0CM8uixPR4PsnQVoQl4G4NXoK2hIl7L686RxNX00mxeLf00N29xPBUyUYr81
+i/Ipxxm2XFf5eZaVcqr9Lh3GUVQRU5Kq9ueZsEZtzdCyFalQBL5M+g4RTrGhKMC
ji8ksMNBhQdJnM/c0fImb+0zHDNnKkU32YVlIhqxtRBSCWsDxh9wPZHEfZA97Wb4
kP8l4O2SoosxKa2cEmZ4Y51X7PsL3o7ci8s6qXf0uuXsOIyL5hNmp2lYw4IaGs3x
n9hTkk5JfalF5/FDIVq3PkDNY4nP2b/HUAvhvOeIlq2e1BfaXc/gkf2mENS5A4Gb
aaz7hKiBNesb62hsfGA+w9/JtK50HUit3W4RhuEqajYWrsjOvNtY/ECTQNiOU5fC
rCI45Ygxsy6h7+zgQg3q/5NWSgakm0wCaGSPVlDBgQX9y9vF1xXya7V2w6P5Ms7K
tUqpG30Z3H/Han6V7La4jf2VSpyjK22L8XDlRysAXOS5ntT42Vgp0MvgKGJsrpxi
4sy8NpNB9e/+RmKVsFdKdCxHUimd3aKhT0LCks4tUFJejAqh99idxfj9NodOV/1o
oV+Zgxzwtd3oktNlQFXKloUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Sectigo Public Email Protection Root R46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1d:44:9e:b9:0d:83:91:74:ae:dd:f2:eb:88:b7:a6:a3
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=GB, O=Sectigo Limited, CN=Sectigo Public Email Protection Root R46
#        Validity
#            Not Before: Mar 22 00:00:00 2021 GMT
#            Not After : Mar 21 23:59:59 2046 GMT
#        Subject: C=GB, O=Sectigo Limited, CN=Sectigo Public Email Protection Root R46
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:91:e5:1b:fa:aa:6d:37:2b:75:c7:2e:5f:14:a5:
#                    db:2c:97:b6:2c:46:8f:69:d9:ec:96:2d:f3:1d:5a:
#                    be:d3:1d:23:e6:68:09:ff:4a:11:73:1a:ae:67:9f:
#                    76:9a:d2:e7:ec:b8:d9:5f:2b:f9:26:56:51:af:76:
#                    9d:a9:fc:17:ef:32:0a:d0:23:3c:ba:2c:4f:47:83:
#                    ec:9d:05:68:42:5e:06:e0:d5:e8:2b:68:48:97:b2:
#                    fa:f3:a4:71:35:7d:34:9b:17:8b:7f:4d:0d:db:dc:
#                    4f:05:4c:94:62:bf:35:fa:2f:c8:a7:1c:66:d9:71:
#                    5f:e5:e6:5a:55:ca:ab:f4:b8:77:19:45:50:45:4e:
#                    4a:ab:db:9e:66:c1:19:b7:37:42:c8:56:a5:40:12:
#                    f9:33:e8:38:45:3a:c6:84:a3:02:8e:2f:24:b0:c3:
#                    41:85:07:49:9c:cf:dc:d1:f2:26:6f:ed:33:1c:33:
#                    67:2a:45:37:d9:85:65:22:1a:b1:b5:10:52:09:6b:
#                    03:c6:1f:70:3d:91:c4:7d:90:3d:ed:66:f8:90:ff:
#                    25:e0:ed:92:a2:8b:31:29:ad:9c:12:66:78:63:9d:
#                    57:ec:fb:0b:de:8e:dc:8b:cb:3a:a9:77:f4:ba:e5:
#                    ec:38:8c:8b:e6:13:66:a7:69:58:c3:82:1a:1a:cd:
#                    f1:9f:d8:53:92:4e:49:7d:a9:45:e7:f1:43:21:5a:
#                    b7:3e:40:cd:63:89:cf:d9:bf:c7:50:0b:e1:bc:e7:
#                    88:96:ad:9e:d4:17:da:5d:cf:e0:91:fd:a6:10:d4:
#                    b9:03:81:9b:69:ac:fb:84:a8:81:35:eb:1b:eb:68:
#                    6c:7c:60:3e:c3:df:c9:b4:ae:74:1d:48:ad:dd:6e:
#                    11:86:e1:2a:6a:36:16:ae:c8:ce:bc:db:58:fc:40:
#                    93:40:d8:8e:53:97:c2:ac:22:38:e5:88:31:b3:2e:
#                    a1:ef:ec:e0:42:0d:ea:ff:93:56:4a:06:a4:9b:4c:
#                    02:68:64:8f:56:50:c1:81:05:fd:cb:db:c5:d7:15:
#                    f2:6b:b5:76:c3:a3:f9:32:ce:ca:b5:4a:a9:1b:7d:
#                    19:dc:7f:c7:6a:7e:95:ec:b6:b8:8d:fd:95:4a:9c:
#                    a3:2b:6d:8b:f1:70:e5:47:2b:00:5c:e4:b9:9e:d4:
#                    f8:d9:58:29:d0:cb:e0:28:62:6c:ae:9c:62:e2:cc:
#                    bc:36:93:41:f5:ef:fe:46:62:95:b0:57:4a:74:2c:
#                    47:52:29:9d:dd:a2:a1:4f:42:c2:92:ce:2d:50:52:
#                    5e:8c:0a:a1:f7:d8:9d:c5:f8:fd:36:87:4e:57:fd:
#                    68:a1:5f:99:83:1c:f0:b5:dd:e8:92:d3:65:40:55:
#                    ca:96:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A7:D7:95:77:EB:4A:C3:27:CD:93:BE:37:4C:26:84:21:14:7D:5D:98
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         34:d2:f1:15:f3:93:01:d4:72:8b:f0:ab:08:1f:13:3c:73:b4:
#         b0:ab:e8:78:d9:6c:ba:9a:af:26:ec:10:80:e5:0d:53:31:dd:
#         e3:fa:8c:51:22:24:33:37:b8:18:7e:3a:fa:58:e8:34:e5:8c:
#         e0:a1:1f:09:41:d2:37:3f:cc:cb:09:35:42:88:e9:fc:11:d7:
#         cf:42:aa:a4:70:b6:71:c1:53:bd:c5:74:af:c4:22:24:63:cf:
#         62:82:7d:c9:cb:51:c1:88:90:6d:5b:5c:be:fb:99:a8:ba:b6:
#         86:b0:e9:66:0b:e5:1b:6b:af:ea:2b:86:a7:df:a8:23:4c:96:
#         3f:4f:57:42:18:15:83:43:f1:86:26:b7:2a:03:ce:0b:9d:e8:
#         a5:68:1e:8c:6f:bd:85:e3:1b:51:8f:e7:17:2f:2b:d0:d6:78:
#         c2:2d:dd:72:88:d4:65:9e:fa:99:d4:7e:e7:97:0a:92:01:9a:
#         a5:a9:84:3a:0c:2a:74:3d:33:18:c8:87:f7:e8:a4:f5:86:42:
#         39:fd:6b:75:29:fc:00:06:ac:a2:a5:1a:54:8e:e9:50:49:17:
#         66:af:4b:04:2d:9b:94:80:a5:54:ab:8c:57:17:44:9f:0f:d6:
#         68:64:72:b4:4b:1e:01:c7:d9:9b:94:d9:83:99:af:12:05:11:
#         a3:98:22:d2:f2:57:ca:24:f9:ba:38:15:12:48:ba:63:3b:fc:
#         8b:95:78:d6:72:07:56:cc:cd:fc:9d:1c:d0:c5:64:3b:63:34:
#         cf:04:99:8a:b7:30:79:7a:b6:f2:c6:d5:d9:54:7a:87:0b:7e:
#         4e:f7:84:ec:14:f3:88:16:12:f1:d5:ae:0a:1a:09:ee:86:ad:
#         e5:ab:fd:ae:c3:29:79:74:c3:01:5f:11:9b:df:75:99:c6:4a:
#         f7:9b:8f:6c:49:ec:21:2f:b4:02:59:b3:2d:d0:72:90:ba:0b:
#         14:74:78:4b:cf:c1:5f:55:72:8e:54:2b:13:ce:fa:58:0c:d3:
#         bb:2c:d9:a9:91:61:f8:f8:f1:b6:7b:de:bc:a9:cc:92:04:cc:
#         4b:6b:5f:73:80:b6:21:ed:50:4f:d7:76:87:6e:ce:df:d2:b7:
#         bd:62:a1:7d:58:62:68:45:52:b6:3f:de:12:db:ed:04:69:9e:
#         76:88:aa:01:6d:da:86:c7:60:1b:c3:52:ac:37:ec:50:71:80:
#         72:2a:21:45:0a:53:47:3c:19:eb:8d:d2:59:04:de:25:b0:eb:
#         1f:35:6f:60:7d:d7:b5:c6:bb:0b:27:8d:e0:4d:54:e5:cf:1d:
#         26:01:6e:3b:35:c8:20:12:89:83:f0:d2:ed:58:3b:34:9d:bb:
#         31:f5:32:fd:31:f3:56:1a

[p11-kit-object-v1]
label: "Sectigo Public Server Authentication Root E46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEdvqZqW4g7fnXd+MHO6jbPV846KtVplZP
1kjq7H8tqsOyxXnsmWF/EHnHAlr5BDf1NDUrd85/II9SowCJ7NWnom1b40uSk6CA
9QGU3PBoBx7N7v4lUrUgQxwb/usZzkOj
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Sectigo Public Server Authentication Root E46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            42:f2:cc:da:1b:69:37:44:5f:15:fe:75:28:10:b8:f4
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication Root E46
#        Validity
#            Not Before: Mar 22 00:00:00 2021 GMT
#            Not After : Mar 21 23:59:59 2046 GMT
#        Subject: C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication Root E46
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:76:fa:99:a9:6e:20:ed:f9:d7:77:e3:07:3b:a8:
#                    db:3d:5f:38:e8:ab:55:a6:56:4f:d6:48:ea:ec:7f:
#                    2d:aa:c3:b2:c5:79:ec:99:61:7f:10:79:c7:02:5a:
#                    f9:04:37:f5:34:35:2b:77:ce:7f:20:8f:52:a3:00:
#                    89:ec:d5:a7:a2:6d:5b:e3:4b:92:93:a0:80:f5:01:
#                    94:dc:f0:68:07:1e:cd:ee:fe:25:52:b5:20:43:1c:
#                    1b:fe:eb:19:ce:43:a3
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D1:22:DA:4C:59:F1:4B:5F:26:38:AA:9D:D6:EE:EB:0D:C3:FB:A9:61
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:27:ee:a4:5a:a8:21:bb:e9:47:97:94:89:a5:74:
#         20:6d:79:4f:c8:bd:93:5e:58:18:fb:2d:1a:00:6a:c9:b8:3d:
#         d0:a4:4f:44:47:94:01:56:a2:f8:33:25:0c:42:df:aa:02:30:
#         1d:ea:e1:2e:88:2e:e1:f9:a7:1d:02:32:4e:f2:9f:6c:55:74:
#         e3:ae:ae:fb:a5:1a:ee:ed:d2:fc:c2:03:11:eb:45:5c:60:10:
#         3d:5c:7f:99:03:5b:6d:54:48:01:8a:73

[p11-kit-object-v1]
label: "Sectigo Public Server Authentication Root R46"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAk77VNlJ12AEjoBxHQknu
Y7a3If3EldVIKyZ8FFMQ2nn9K7ctpNQs+uoy3UnCub0PSD17WphUr55dMXRPB/xQ
Id2kz2hPGxJjbSWZTCqZ80gwYfqBfB6nCErcPiscHxhMcao1jK34bug7StnllALW
iYQTqm3ITzPMUJY3kjPcX4jnn1TZSPCYQ9Zm/Z8XOEPFAVEL1+MjDxRdWxTnS77d
9MjaAzfR1jmhIVEwg7Bt1zBOlluR8HAkq79FgWRDDb0hOi886Z4NyyC1QifM2m+b
7mQwkDnNk2WBITG1I1AzNyLjOO34MTDMRf5i+dFdMnlCh99qzFYZQE3Oqrv5tXZJ
lPEn+JGlg+UGs2MOgNzgElWApjtmtDmHLcjw0NEU6eQNTQ72XVdyxTscR1ad4tX7
gWGMzE2AkDRbt9cUddzYBEifwMEoiLTpHMqnsfFWt3tJTFnlIBWohAIp+jiUaZpJ
Bo/NH3kUFxIMg3reH7GX7vmXeCikyESS6X0mBaZYcpt5E9gRX67FOGI0aLKGMI74
kGGeMmz1BzbNokxu7Io27fLmmRVEcMN8vJw5wLTha/eDJSNX2RKA5UnwdQ/vjesc
m1QotCE8/HwK/+97a3X/ix2gGQWr+vgrgULoOLq7+6r9PeDzyt9Ol5cp7fMYVuml
lqy9w5CYsuD5otSmR0N8bc8CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Sectigo Public Server Authentication Root R46"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            75:8d:fd:8b:ae:7c:07:00:fa:a9:25:a7:e1:c7:ad:14
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication Root R46
#        Validity
#            Not Before: Mar 22 00:00:00 2021 GMT
#            Not After : Mar 21 23:59:59 2046 GMT
#        Subject: C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication Root R46
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:93:be:d5:36:52:75:d8:01:23:a0:1c:47:42:49:
#                    ee:63:b6:b7:21:fd:c4:95:d5:48:2b:26:7c:14:53:
#                    10:da:79:fd:2b:b7:2d:a4:d4:2c:fa:ea:32:dd:49:
#                    c2:b9:bd:0f:48:3d:7b:5a:98:54:af:9e:5d:31:74:
#                    4f:07:fc:50:21:dd:a4:cf:68:4f:1b:12:63:6d:25:
#                    99:4c:2a:99:f3:48:30:61:fa:81:7c:1e:a7:08:4a:
#                    dc:3e:2b:1c:1f:18:4c:71:aa:35:8c:ad:f8:6e:e8:
#                    3b:4a:d9:e5:94:02:d6:89:84:13:aa:6d:c8:4f:33:
#                    cc:50:96:37:92:33:dc:5f:88:e7:9f:54:d9:48:f0:
#                    98:43:d6:66:fd:9f:17:38:43:c5:01:51:0b:d7:e3:
#                    23:0f:14:5d:5b:14:e7:4b:be:dd:f4:c8:da:03:37:
#                    d1:d6:39:a1:21:51:30:83:b0:6d:d7:30:4e:96:5b:
#                    91:f0:70:24:ab:bf:45:81:64:43:0d:bd:21:3a:2f:
#                    3c:e9:9e:0d:cb:20:b5:42:27:cc:da:6f:9b:ee:64:
#                    30:90:39:cd:93:65:81:21:31:b5:23:50:33:37:22:
#                    e3:38:ed:f8:31:30:cc:45:fe:62:f9:d1:5d:32:79:
#                    42:87:df:6a:cc:56:19:40:4d:ce:aa:bb:f9:b5:76:
#                    49:94:f1:27:f8:91:a5:83:e5:06:b3:63:0e:80:dc:
#                    e0:12:55:80:a6:3b:66:b4:39:87:2d:c8:f0:d0:d1:
#                    14:e9:e4:0d:4d:0e:f6:5d:57:72:c5:3b:1c:47:56:
#                    9d:e2:d5:fb:81:61:8c:cc:4d:80:90:34:5b:b7:d7:
#                    14:75:dc:d8:04:48:9f:c0:c1:28:88:b4:e9:1c:ca:
#                    a7:b1:f1:56:b7:7b:49:4c:59:e5:20:15:a8:84:02:
#                    29:fa:38:94:69:9a:49:06:8f:cd:1f:79:14:17:12:
#                    0c:83:7a:de:1f:b1:97:ee:f9:97:78:28:a4:c8:44:
#                    92:e9:7d:26:05:a6:58:72:9b:79:13:d8:11:5f:ae:
#                    c5:38:62:34:68:b2:86:30:8e:f8:90:61:9e:32:6c:
#                    f5:07:36:cd:a2:4c:6e:ec:8a:36:ed:f2:e6:99:15:
#                    44:70:c3:7c:bc:9c:39:c0:b4:e1:6b:f7:83:25:23:
#                    57:d9:12:80:e5:49:f0:75:0f:ef:8d:eb:1c:9b:54:
#                    28:b4:21:3c:fc:7c:0a:ff:ef:7b:6b:75:ff:8b:1d:
#                    a0:19:05:ab:fa:f8:2b:81:42:e8:38:ba:bb:fb:aa:
#                    fd:3d:e0:f3:ca:df:4e:97:97:29:ed:f3:18:56:e9:
#                    a5:96:ac:bd:c3:90:98:b2:e0:f9:a2:d4:a6:47:43:
#                    7c:6d:cf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                56:73:58:64:95:F9:92:1A:B0:12:2A:04:62:79:A1:40:15:88:21:49
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         2f:5c:99:3c:fc:06:5e:8c:94:2e:70:ea:d2:32:31:8d:b4:f0:
#         51:d5:bc:0a:f3:64:9f:07:5e:d5:c1:73:68:64:7a:a2:b9:0e:
#         e8:f9:5d:85:2d:a8:37:45:aa:28:f4:96:05:50:60:a9:49:7e:
#         9f:e2:99:36:29:13:44:47:6a:9d:55:20:3c:d8:9b:f1:03:32:
#         ba:da:40:a1:73:ea:83:a1:b7:44:a6:0e:99:01:9b:e4:bc:7f:
#         be:13:94:7e:ca:a6:1e:76:80:36:3d:84:06:8b:33:26:65:6d:
#         ca:7e:9e:fe:1f:8c:58:38:7b:1a:83:b1:0f:bc:17:11:bb:e6:
#         06:cc:63:fa:81:f2:81:4c:da:0b:10:6b:a1:fa:d5:28:a5:cf:
#         06:40:16:ff:7b:7d:18:5e:39:12:a4:53:9e:7e:32:42:10:a6:
#         21:91:a9:1c:4e:17:7c:84:bc:9f:8c:d1:e8:df:e6:51:b9:36:
#         47:3f:90:b9:c7:bc:02:dc:5b:1c:4f:0e:48:c1:25:83:9c:0a:
#         3f:9e:b1:03:33:12:1a:27:ac:f7:22:6c:24:d1:01:41:f8:58:
#         03:fe:25:68:22:1f:9a:5a:3c:7c:6c:9e:75:48:f3:81:f1:66:
#         67:6e:4c:82:c0:ee:ba:57:0e:18:ef:2e:9a:f7:12:d8:a0:6b:
#         e9:05:a5:a1:e9:68:f8:bc:4c:3f:12:1e:45:e8:52:c0:a3:bf:
#         12:27:79:b9:cc:31:3c:c3:f6:3a:22:16:03:a0:c9:8f:66:a4:
#         5b:a2:4d:d6:81:25:06:e9:76:a4:00:0a:3e:cb:cd:35:9b:e0:
#         e1:38:cb:60:53:86:28:42:41:1c:44:57:e8:a8:ad:ab:45:e3:
#         25:10:bc:db:3e:65:41:fb:1b:a6:97:0f:eb:b9:74:79:f9:1e:
#         bc:1d:57:0d:47:af:c3:2f:9f:87:46:a7:eb:26:5a:0f:56:63:
#         b5:62:60:6e:00:fb:e3:27:11:22:e7:fe:99:8f:34:f5:b9:e8:
#         c3:91:72:bd:d8:c3:1e:b9:2e:f2:91:44:51:d0:57:cd:0c:34:
#         d5:48:21:bf:db:13:f1:66:25:43:52:d2:70:22:36:cd:9f:c4:
#         1c:75:20:ad:63:72:63:06:0f:0e:27:ce:d2:6a:0d:bc:b5:39:
#         1a:e9:d1:76:7a:d1:5c:e4:e7:49:49:2d:55:37:68:f0:1a:3a:
#         98:3e:54:17:87:54:e9:a6:27:50:89:7b:20:2f:3f:ff:bf:a1:
#         8b:4a:47:98:ff:2b:7b:49:3e:c3:29:46:60:18:42:ab:33:29:
#         ba:c0:29:b9:13:89:d3:88:8a:39:41:3b:c9:fd:a6:ed:1f:f4:
#         60:63:df:d2:2d:55:01:8b

[p11-kit-object-v1]
label: "SecureSign RootCA11"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA/XeqpRyQBTvLTJszi1oU
RaTnkBbR31fSIRCkF/3frNYfp+TbfPfs37gD2pRY/V1yfIw/XwFndBWW4wI8h9uu
ywGOwvNmxoVF9ALGOrVisq/6nL+k5tSAMJjzDbaTj6nU2DbysPyKyiyhFTOVMdrA
G/LuYpmGYz+/3ZMqg6h2uRMft85OQoWPIucuGvKVCbIFtUROd6EgvanyTgp9UK31
BQ1FT0Zx/Sg+U/sE2C3XZR1KG/rPO7AxmjVuyIsG0wCR8pQIZUyxNAYAeoni8McD
Wc/V1uinMrPmmECGxc0nEovMe863ETxiYAcjPitAbpSACW22s293bzUIUPsCh8U+
iQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SecureSign RootCA11"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=JP, O=Japan Certification Services, Inc., CN=SecureSign RootCA11
#        Validity
#            Not Before: Apr  8 04:56:47 2009 GMT
#            Not After : Apr  8 04:56:47 2029 GMT
#        Subject: C=JP, O=Japan Certification Services, Inc., CN=SecureSign RootCA11
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:fd:77:aa:a5:1c:90:05:3b:cb:4c:9b:33:8b:5a:
#                    14:45:a4:e7:90:16:d1:df:57:d2:21:10:a4:17:fd:
#                    df:ac:d6:1f:a7:e4:db:7c:f7:ec:df:b8:03:da:94:
#                    58:fd:5d:72:7c:8c:3f:5f:01:67:74:15:96:e3:02:
#                    3c:87:db:ae:cb:01:8e:c2:f3:66:c6:85:45:f4:02:
#                    c6:3a:b5:62:b2:af:fa:9c:bf:a4:e6:d4:80:30:98:
#                    f3:0d:b6:93:8f:a9:d4:d8:36:f2:b0:fc:8a:ca:2c:
#                    a1:15:33:95:31:da:c0:1b:f2:ee:62:99:86:63:3f:
#                    bf:dd:93:2a:83:a8:76:b9:13:1f:b7:ce:4e:42:85:
#                    8f:22:e7:2e:1a:f2:95:09:b2:05:b5:44:4e:77:a1:
#                    20:bd:a9:f2:4e:0a:7d:50:ad:f5:05:0d:45:4f:46:
#                    71:fd:28:3e:53:fb:04:d8:2d:d7:65:1d:4a:1b:fa:
#                    cf:3b:b0:31:9a:35:6e:c8:8b:06:d3:00:91:f2:94:
#                    08:65:4c:b1:34:06:00:7a:89:e2:f0:c7:03:59:cf:
#                    d5:d6:e8:a7:32:b3:e6:98:40:86:c5:cd:27:12:8b:
#                    cc:7b:ce:b7:11:3c:62:60:07:23:3e:2b:40:6e:94:
#                    80:09:6d:b6:b3:6f:77:6f:35:08:50:fb:02:87:c5:
#                    3e:89
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                5B:F8:4D:4F:B2:A5:86:D4:3A:D2:F1:63:9A:A0:BE:09:F6:57:B7:DE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         a0:a1:38:16:66:2e:a7:56:1f:21:9c:06:fa:1d:ed:b9:22:c5:
#         38:26:d8:4e:4f:ec:a3:7f:79:de:46:21:a1:87:77:8f:07:08:
#         9a:b2:a4:c5:af:0f:32:98:0b:7c:66:29:b6:9b:7d:25:52:49:
#         43:ab:4c:2e:2b:6e:7a:70:af:16:0e:e3:02:6c:fb:42:e6:18:
#         9d:45:d8:55:c8:e8:3b:dd:e7:e1:f4:2e:0b:1c:34:5c:6c:58:
#         4a:fb:8c:88:50:5f:95:1c:bf:ed:ab:22:b5:65:b3:85:ba:9e:
#         0f:b8:ad:e5:7a:1b:8a:50:3a:1d:bd:0d:bc:7b:54:50:0b:b9:
#         42:af:55:a0:18:81:ad:65:99:ef:be:e4:9c:bf:c4:85:ab:41:
#         b2:54:6f:dc:25:cd:ed:78:e2:8e:0c:8d:09:49:dd:63:7b:5a:
#         69:96:02:21:a8:bd:52:59:e9:7d:35:cb:c8:52:ca:7f:81:fe:
#         d9:6b:d3:f7:11:ed:25:df:f8:e7:f9:a4:fa:72:97:84:53:0d:
#         a5:d0:32:18:51:76:59:14:6c:0f:eb:ec:5f:80:8c:75:43:83:
#         c3:85:98:ff:4c:9e:2d:0d:e4:77:83:93:4e:b5:96:07:8b:28:
#         13:9b:8c:19:8d:41:27:49:40:ee:de:e6:23:44:39:dc:a1:22:
#         d6:ba:03:f2

[p11-kit-object-v1]
label: "SecureTrust CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq6SB5ZXN9fYUjsJPytTi
eJVYnEHhDZlAJBc5kTNm6b7hg69iXInR/CRbYbPgERFBHB1u8Li7+N6ngbqmSMaf
Hb2+jqlBPriU7Ska1I7SAx0D720NZxxX1watysj1/g6vZiVIBJYLXaO6FsMIT9FG
+BRc8sheAZlt/YjMhqjBbzFCbFI+aMvzGTTfu4cYVoAmxNDcwG/f3qDCkRagZBFL
RLwe9uf6Y95mrHakcaPsNpRoeneksecOL4F64rVyhu+ia4vwD9vTWT+6crxEJJzj
c7P3r1cvQiadqXS6AFLyS81TfEcLNoUOZqkIlxY0V8Fm94Dj7XBUx5PgLigVWYe6
uwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SecureTrust CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0c:f0:8e:5c:08:16:a5:ad:42:7f:f0:eb:27:18:59:d0
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=SecureTrust Corporation, CN=SecureTrust CA
#        Validity
#            Not Before: Nov  7 19:31:18 2006 GMT
#            Not After : Dec 31 19:40:55 2029 GMT
#        Subject: C=US, O=SecureTrust Corporation, CN=SecureTrust CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ab:a4:81:e5:95:cd:f5:f6:14:8e:c2:4f:ca:d4:
#                    e2:78:95:58:9c:41:e1:0d:99:40:24:17:39:91:33:
#                    66:e9:be:e1:83:af:62:5c:89:d1:fc:24:5b:61:b3:
#                    e0:11:11:41:1c:1d:6e:f0:b8:bb:f8:de:a7:81:ba:
#                    a6:48:c6:9f:1d:bd:be:8e:a9:41:3e:b8:94:ed:29:
#                    1a:d4:8e:d2:03:1d:03:ef:6d:0d:67:1c:57:d7:06:
#                    ad:ca:c8:f5:fe:0e:af:66:25:48:04:96:0b:5d:a3:
#                    ba:16:c3:08:4f:d1:46:f8:14:5c:f2:c8:5e:01:99:
#                    6d:fd:88:cc:86:a8:c1:6f:31:42:6c:52:3e:68:cb:
#                    f3:19:34:df:bb:87:18:56:80:26:c4:d0:dc:c0:6f:
#                    df:de:a0:c2:91:16:a0:64:11:4b:44:bc:1e:f6:e7:
#                    fa:63:de:66:ac:76:a4:71:a3:ec:36:94:68:7a:77:
#                    a4:b1:e7:0e:2f:81:7a:e2:b5:72:86:ef:a2:6b:8b:
#                    f0:0f:db:d3:59:3f:ba:72:bc:44:24:9c:e3:73:b3:
#                    f7:af:57:2f:42:26:9d:a9:74:ba:00:52:f2:4b:cd:
#                    53:7c:47:0b:36:85:0e:66:a9:08:97:16:34:57:c1:
#                    66:f7:80:e3:ed:70:54:c7:93:e0:2e:28:15:59:87:
#                    ba:bb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            1.3.6.1.4.1.311.20.2: 
#                ...C.A
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                42:32:B6:16:FA:04:FD:FE:5D:4B:7A:C3:FD:F7:4C:40:1D:5A:43:AF
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.securetrust.com/STCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         30:ed:4f:4a:e1:58:3a:52:72:5b:b5:a6:a3:65:18:a6:bb:51:
#         3b:77:e9:9d:ea:d3:9f:5c:e0:45:65:7b:0d:ca:5b:e2:70:50:
#         b2:94:05:14:ae:49:c7:8d:41:07:12:73:94:7e:0c:23:21:fd:
#         bc:10:7f:60:10:5a:72:f5:98:0e:ac:ec:b9:7f:dd:7a:6f:5d:
#         d3:1c:f4:ff:88:05:69:42:a9:05:71:c8:b7:ac:26:e8:2e:b4:
#         8c:6a:ff:71:dc:b8:b1:df:99:bc:7c:21:54:2b:e4:58:a2:bb:
#         57:29:ae:9e:a9:a3:19:26:0f:99:2e:08:b0:ef:fd:69:cf:99:
#         1a:09:8d:e3:a7:9f:2b:c9:36:34:7b:24:b3:78:4c:95:17:a4:
#         06:26:1e:b6:64:52:36:5f:60:67:d9:9c:c5:05:74:0b:e7:67:
#         23:d2:08:fc:88:e9:ae:8b:7f:e1:30:f4:37:7e:fd:c6:32:da:
#         2d:9e:44:30:30:6c:ee:07:de:d2:34:fc:d2:ff:40:f6:4b:f4:
#         66:46:06:54:a6:f2:32:0a:63:26:30:6b:9b:d1:dc:8b:47:ba:
#         e1:b9:d5:62:d0:a2:a0:f4:67:05:78:29:63:1a:6f:04:d6:f8:
#         c6:4c:a3:9a:b1:37:b4:8d:e5:28:4b:1d:9e:2c:c2:b8:68:bc:
#         ed:02:ee:31

[p11-kit-object-v1]
label: "Secure Global CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArzUu2KxsVWkGceUTaCSz
T9jMIUf48WA4iYkD6b3qXkZTCdxc9Vro90UqAusxYdcpM0zOx3wKN34PujKY4R2X
r4/H3Mk4lvPbGvxR7WjG0G6kfCTRrkLIllBjLuD+df6Yp19JLpXjOTNkjh6kX5DS
Zzyy2f5BuVWnCY5yBR6L3USFgkLQScAdYPDRFyyV6/alwZKjxcKnCGANYAQQlnme
FjTmqbb6JUU5yB5l+ZP1qvFS3JmYPaWGGgw1M/pLpQQGFRwxgO+qGGvCe9fazvkz
INX1vWozLYEE+7Bc1Jyj4lwd46lCdV571HfvOVS6yQoYGxKZSS+IS/1QYtFz5496
QwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Secure Global CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            07:56:22:a4:e8:d4:8a:89:4d:f4:13:c8:f0:f8:ea:a5
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=SecureTrust Corporation, CN=Secure Global CA
#        Validity
#            Not Before: Nov  7 19:42:28 2006 GMT
#            Not After : Dec 31 19:52:06 2029 GMT
#        Subject: C=US, O=SecureTrust Corporation, CN=Secure Global CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:af:35:2e:d8:ac:6c:55:69:06:71:e5:13:68:24:
#                    b3:4f:d8:cc:21:47:f8:f1:60:38:89:89:03:e9:bd:
#                    ea:5e:46:53:09:dc:5c:f5:5a:e8:f7:45:2a:02:eb:
#                    31:61:d7:29:33:4c:ce:c7:7c:0a:37:7e:0f:ba:32:
#                    98:e1:1d:97:af:8f:c7:dc:c9:38:96:f3:db:1a:fc:
#                    51:ed:68:c6:d0:6e:a4:7c:24:d1:ae:42:c8:96:50:
#                    63:2e:e0:fe:75:fe:98:a7:5f:49:2e:95:e3:39:33:
#                    64:8e:1e:a4:5f:90:d2:67:3c:b2:d9:fe:41:b9:55:
#                    a7:09:8e:72:05:1e:8b:dd:44:85:82:42:d0:49:c0:
#                    1d:60:f0:d1:17:2c:95:eb:f6:a5:c1:92:a3:c5:c2:
#                    a7:08:60:0d:60:04:10:96:79:9e:16:34:e6:a9:b6:
#                    fa:25:45:39:c8:1e:65:f9:93:f5:aa:f1:52:dc:99:
#                    98:3d:a5:86:1a:0c:35:33:fa:4b:a5:04:06:15:1c:
#                    31:80:ef:aa:18:6b:c2:7b:d7:da:ce:f9:33:20:d5:
#                    f5:bd:6a:33:2d:81:04:fb:b0:5c:d4:9c:a3:e2:5c:
#                    1d:e3:a9:42:75:5e:7b:d4:77:ef:39:54:ba:c9:0a:
#                    18:1b:12:99:49:2f:88:4b:fd:50:62:d1:73:e7:8f:
#                    7a:43
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            1.3.6.1.4.1.311.20.2: 
#                ...C.A
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                AF:44:04:C2:41:7E:48:83:DB:4E:39:02:EC:EC:84:7A:E6:CE:C9:A4
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.securetrust.com/SGCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         63:1a:08:40:7d:a4:5e:53:0d:77:d8:7a:ae:1f:0d:0b:51:16:
#         03:ef:18:7c:c8:e3:af:6a:58:93:14:60:91:b2:84:dc:88:4e:
#         be:39:8a:3a:f3:e6:82:89:5d:01:37:b3:ab:24:a4:15:0e:92:
#         35:5a:4a:44:5e:4e:57:fa:75:ce:1f:48:ce:66:f4:3c:40:26:
#         92:98:6c:1b:ee:24:46:0c:17:b3:52:a5:db:a5:91:91:cf:37:
#         d3:6f:e7:27:08:3a:4e:19:1f:3a:a7:58:5c:17:cf:79:3f:8b:
#         e4:a7:d3:26:23:9d:26:0f:58:69:fc:47:7e:b2:d0:8d:8b:93:
#         bf:29:4f:43:69:74:76:67:4b:cf:07:8c:e6:02:f7:b5:e1:b4:
#         43:b5:4b:2d:14:9f:f9:dc:26:0d:bf:a6:47:74:06:d8:88:d1:
#         3a:29:30:84:ce:d2:39:80:62:1b:a8:c7:57:49:bc:6a:55:51:
#         67:15:4a:be:35:07:e4:d5:75:98:37:79:30:14:db:29:9d:6c:
#         c5:69:cc:47:55:a2:30:f7:cc:5c:7f:c2:c3:98:1c:6b:4e:16:
#         80:eb:7a:78:65:45:a2:00:1a:af:0c:0d:55:64:34:48:b8:92:
#         b9:f1:b4:50:29:f2:4f:23:1f:da:6c:ac:1f:44:e1:dd:23:78:
#         51:5b:c7:16

[p11-kit-object-v1]
label: "Security Communication ECC RootCA1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEpKVvYAMDw70x9NMXnCuEdazl/T1Xbtdj
v+YEiZKOgZzj6UduypASyBPgp533ZXQfbBCy6OTp722FMplEsV79zHYQ2Fu9osb5
1kLkV3bckMI1qUuIPBJHbVz/SU8aSlCx
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication ECC RootCA1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d6:5d:9b:b3:78:81:2e:eb
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=JP, O=SECOM Trust Systems CO.,LTD., CN=Security Communication ECC RootCA1
#        Validity
#            Not Before: Jun 16 05:15:28 2016 GMT
#            Not After : Jan 18 05:15:28 2038 GMT
#        Subject: C=JP, O=SECOM Trust Systems CO.,LTD., CN=Security Communication ECC RootCA1
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:a4:a5:6f:60:03:03:c3:bd:31:f4:d3:17:9c:2b:
#                    84:75:ac:e5:fd:3d:57:6e:d7:63:bf:e6:04:89:92:
#                    8e:81:9c:e3:e9:47:6e:ca:90:12:c8:13:e0:a7:9d:
#                    f7:65:74:1f:6c:10:b2:e8:e4:e9:ef:6d:85:32:99:
#                    44:b1:5e:fd:cc:76:10:d8:5b:bd:a2:c6:f9:d6:42:
#                    e4:57:76:dc:90:c2:35:a9:4b:88:3c:12:47:6d:5c:
#                    ff:49:4f:1a:4a:50:b1
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                86:1C:E7:FE:2D:A5:4A:8B:08:FE:28:11:FA:BE:A3:66:F8:60:59:2F
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:15:5d:42:3d:fc:b6:ee:f7:3b:b1:36:e8:9e:f6:
#         c4:46:28:49:33:d0:58:43:2a:63:29:cc:4d:b1:b4:7a:a2:b9:
#         0d:38:a5:5d:48:2a:fd:cb:b2:73:5d:a3:88:08:c7:0c:02:31:
#         00:c0:ab:2d:0e:6d:ed:18:a2:db:53:e9:25:db:55:08:e0:50:
#         cc:df:44:61:16:82:ab:49:b0:b2:81:ec:73:87:78:b4:4c:b2:
#         62:1b:12:fa:16:4d:25:4b:63:bd:1e:37:d9

[p11-kit-object-v1]
label: "Security Communication RootCA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0BU5UrFSs7rFWYLEXVKu
OkNlgEvH8pa82zaX1qZkjKhe8OMKHPfflz1LrvZd7CG1QavNuX52n775PjY0oDvB
9jERRXSTPVeAxfmJmcrlq2rUtdpBkBDB1tZCicK/9DgSlUxUBfc25EWDexRl1twM
TdHefgyrO8QVvjpWplpvdmlSqXq5yOtqml1S0C0KazUWCRCE0GrKOgYAN0fkfldP
P4vrZ7iIqsW+U1WykcR9ubCFGQZ4LtthGvqF9UqRoecW1Y6iOd+UuHAfKD+L/EBe
Y4M8gyoamWvP3llqO/xvFtcf/UoQ606CFjqsJwxT8a3VJLBrA1DBLTwW3UQ0Jxp1
+wIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication RootCA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDdzCCAl+gAwIBAgIBADANBgkqhkiG9w0BAQsFADBdMQswCQYDVQQGEwJKUDEl
MCMGA1UEChMcU0VDT00gVHJ1c3QgU3lzdGVtcyBDTy4sTFRELjEnMCUGA1UECxMe
U2VjdXJpdHkgQ29tbXVuaWNhdGlvbiBSb290Q0EyMB4XDTA5MDUyOTA1MDAzOVoX
DTI5MDUyOTA1MDAzOVowXTELMAkGA1UEBhMCSlAxJTAjBgNVBAoTHFNFQ09NIFRy
dXN0IFN5c3RlbXMgQ08uLExURC4xJzAlBgNVBAsTHlNlY3VyaXR5IENvbW11bmlj
YXRpb24gUm9vdENBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANAV
OVKxUrO6xVmCxF1SrjpDZYBLx/KWvNs2l9amZIyoXvDjChz335c9S672XewhtUGr
zbl+dp+++T42NKA7wfYxEUV0kz1XgMX5iZnK5atq1LXaQZAQwdbWQonCv/Q4EpVM
VAX3NuRFg3sUZdbcDE3R3n4MqzvEFb46VqZab3ZpUql6ucjrappdUtAtCms1FgkQ
hNBqyjoGADdH5H5XTz+L62e4iKrFvlNVspHEfbmwhRkGeC7bYRr6hfVKkaHnFtWO
ojnflLhwHyg/i/xAXmODPIMqGplrz95Zajv8bxbXH/1KEOtOghY6rCcMU/Gt1SSw
awNQwS08Ft1ENCcadfsCAwEAAaNCMEAwHQYDVR0OBBYEFAqFqXdlBZh8QIH4D5cs
OPEK7DzPMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3
DQEBCwUAA4IBAQBMOqNErLlFsceTfsgLCkLfZOoc7llsCLqJX2rKSpWeeo8HxdpF
coJxDjrSzG+ntKEju/Ykn8sX/oymzsLS28yN/HH8AynBbF0zX2S2ZTuJbxh2ePXc
okgfGT+Ok+vx+hfuzU7jBBJV1uXk3fs+BXziHV7Gp7yXT2g69ekuCkO2r1dcYmh8
t/2jioSgrGK+KwmHNPBqAbubKVY8/gA3zyNs8U6qtnRGEmyR7jTV7JqR50S+kDFy
1UkC9gLl9B/rfNmWVan/7Ir5mUf/NVoCqgTLiluHcSmRvaS0eg29mvVXIwAHIRc/
SjnRBUkLp7Y3gaVdjKozXoEofKd9J+sAro03
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=JP, O=SECOM Trust Systems CO.,LTD., OU=Security Communication RootCA2
#        Validity
#            Not Before: May 29 05:00:39 2009 GMT
#            Not After : May 29 05:00:39 2029 GMT
#        Subject: C=JP, O=SECOM Trust Systems CO.,LTD., OU=Security Communication RootCA2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d0:15:39:52:b1:52:b3:ba:c5:59:82:c4:5d:52:
#                    ae:3a:43:65:80:4b:c7:f2:96:bc:db:36:97:d6:a6:
#                    64:8c:a8:5e:f0:e3:0a:1c:f7:df:97:3d:4b:ae:f6:
#                    5d:ec:21:b5:41:ab:cd:b9:7e:76:9f:be:f9:3e:36:
#                    34:a0:3b:c1:f6:31:11:45:74:93:3d:57:80:c5:f9:
#                    89:99:ca:e5:ab:6a:d4:b5:da:41:90:10:c1:d6:d6:
#                    42:89:c2:bf:f4:38:12:95:4c:54:05:f7:36:e4:45:
#                    83:7b:14:65:d6:dc:0c:4d:d1:de:7e:0c:ab:3b:c4:
#                    15:be:3a:56:a6:5a:6f:76:69:52:a9:7a:b9:c8:eb:
#                    6a:9a:5d:52:d0:2d:0a:6b:35:16:09:10:84:d0:6a:
#                    ca:3a:06:00:37:47:e4:7e:57:4f:3f:8b:eb:67:b8:
#                    88:aa:c5:be:53:55:b2:91:c4:7d:b9:b0:85:19:06:
#                    78:2e:db:61:1a:fa:85:f5:4a:91:a1:e7:16:d5:8e:
#                    a2:39:df:94:b8:70:1f:28:3f:8b:fc:40:5e:63:83:
#                    3c:83:2a:1a:99:6b:cf:de:59:6a:3b:fc:6f:16:d7:
#                    1f:fd:4a:10:eb:4e:82:16:3a:ac:27:0c:53:f1:ad:
#                    d5:24:b0:6b:03:50:c1:2d:3c:16:dd:44:34:27:1a:
#                    75:fb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                0A:85:A9:77:65:05:98:7C:40:81:F8:0F:97:2C:38:F1:0A:EC:3C:CF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         4c:3a:a3:44:ac:b9:45:b1:c7:93:7e:c8:0b:0a:42:df:64:ea:
#         1c:ee:59:6c:08:ba:89:5f:6a:ca:4a:95:9e:7a:8f:07:c5:da:
#         45:72:82:71:0e:3a:d2:cc:6f:a7:b4:a1:23:bb:f6:24:9f:cb:
#         17:fe:8c:a6:ce:c2:d2:db:cc:8d:fc:71:fc:03:29:c1:6c:5d:
#         33:5f:64:b6:65:3b:89:6f:18:76:78:f5:dc:a2:48:1f:19:3f:
#         8e:93:eb:f1:fa:17:ee:cd:4e:e3:04:12:55:d6:e5:e4:dd:fb:
#         3e:05:7c:e2:1d:5e:c6:a7:bc:97:4f:68:3a:f5:e9:2e:0a:43:
#         b6:af:57:5c:62:68:7c:b7:fd:a3:8a:84:a0:ac:62:be:2b:09:
#         87:34:f0:6a:01:bb:9b:29:56:3c:fe:00:37:cf:23:6c:f1:4e:
#         aa:b6:74:46:12:6c:91:ee:34:d5:ec:9a:91:e7:44:be:90:31:
#         72:d5:49:02:f6:02:e5:f4:1f:eb:7c:d9:96:55:a9:ff:ec:8a:
#         f9:99:47:ff:35:5a:02:aa:04:cb:8a:5b:87:71:29:91:bd:a4:
#         b4:7a:0d:bd:9a:f5:57:23:00:07:21:17:3f:4a:39:d1:05:49:
#         0b:a7:b6:37:81:a5:5d:8c:aa:33:5e:81:28:7c:a7:7d:27:eb:
#         00:ae:8d:37

[p11-kit-object-v1]
label: "Security Communication RootCA3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication RootCA3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            e1:7c:37:40:fd:1b:fe:67
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=JP, O=SECOM Trust Systems CO.,LTD., CN=Security Communication RootCA3
#        Validity
#            Not Before: Jun 16 06:17:16 2016 GMT
#            Not After : Jan 18 06:17:16 2038 GMT
#        Subject: C=JP, O=SECOM Trust Systems CO.,LTD., CN=Security Communication RootCA3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:e3:c9:72:49:f7:30:de:09:7c:a9:40:81:58:d3:
#                    b4:3a:dd:ba:61:0f:93:50:6e:69:3c:35:c2:ee:5b:
#                    73:90:1b:67:4c:21:ec:5f:35:bb:39:3e:2b:0a:60:
#                    ef:bb:6d:2b:86:fb:71:a2:c8:ac:e4:56:94:f9:c9:
#                    af:b1:72:d4:20:ac:74:d2:b8:15:ad:51:fe:85:74:
#                    a1:b9:10:fe:05:80:f9:52:93:b3:40:3d:75:10:ac:
#                    c0:96:b7:a7:7e:76:bc:e3:1b:52:19:ce:11:1f:0b:
#                    04:34:f5:d8:f5:69:3c:77:f3:64:f4:0d:aa:85:de:
#                    e0:09:50:04:17:96:84:b7:c8:8a:bc:4d:72:fc:1c:
#                    bb:cf:f3:06:4d:f9:9f:64:f7:7e:a6:66:86:35:71:
#                    c8:11:80:4c:c1:71:40:58:1e:be:a0:73:f6:fc:3e:
#                    50:e1:e0:2f:26:3d:7e:5c:23:b5:79:70:de:fa:e0:
#                    d1:a5:d6:0c:41:71:7b:f7:ea:8c:1c:88:c7:ec:8b:
#                    f5:d1:2f:55:96:46:7c:5a:3b:58:3b:fb:ba:d8:2d:
#                    b5:25:da:7a:4e:cf:44:ae:21:a6:9e:98:ca:20:6e:
#                    7c:bb:88:85:5b:fb:c0:10:62:bb:f2:f9:27:47:ef:
#                    d1:89:39:43:c4:df:de:e1:41:bf:54:73:20:97:2d:
#                    6c:da:f3:d4:07:a3:e6:b9:d8:6f:ae:fc:8c:19:2e:
#                    d3:67:67:2b:95:db:58:5c:b5:6a:02:f3:b8:83:5e:
#                    b4:6b:be:41:7e:57:09:75:44:50:55:cd:5a:11:61:
#                    21:0a:61:c2:a9:88:fd:13:bc:2d:89:2f:cd:61:e0:
#                    95:be:ca:b5:7b:e1:7b:34:67:0b:1f:b6:0c:c7:7c:
#                    1e:19:53:ca:a7:b1:4a:15:20:56:14:70:3d:2b:82:
#                    2c:0f:9d:15:1d:47:80:47:ff:78:99:0e:31:af:6f:
#                    3e:8f:ed:86:69:1e:7b:18:88:14:b2:c2:fc:82:33:
#                    2e:9c:4b:2d:fb:70:3b:71:aa:2b:7b:26:27:f3:1a:
#                    c2:dc:fb:17:b8:a1:ea:cb:a0:b4:ae:d3:94:7e:7a:
#                    d0:ab:c3:ec:38:2d:11:2e:88:bf:d4:3f:ad:12:3b:
#                    42:ac:8f:02:6e:7d:cc:d1:5f:61:be:a1:bc:3a:6a:
#                    48:ea:26:55:22:16:5d:5f:0d:ff:27:33:9f:18:03:
#                    74:8a:5b:52:20:47:6b:45:4d:22:77:8c:55:27:f0:
#                    af:1e:8c:c9:83:22:54:b7:9a:d0:4f:d9:ce:fc:d9:
#                    2e:1c:96:28:b1:02:d3:03:bd:25:52:1c:34:66:4f:
#                    23:ab:f4:77:82:96:1d:d1:57:30:08:11:05:fd:57:
#                    d1:d9:c7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                64:14:7C:FC:58:72:16:A6:0A:29:34:15:6F:2A:CB:BC:FC:AF:A8:AB
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         dc:02:23:08:e2:ef:21:3a:c7:0d:b7:26:d2:62:93:a7:a5:23:
#         72:07:20:82:60:df:18:d7:54:ad:69:25:92:9e:d9:14:cf:99:
#         b9:52:81:cf:ae:6c:8a:3b:5a:39:c8:6c:01:43:c2:22:6d:02:
#         f0:62:cd:4e:63:43:c0:14:da:f4:63:f0:ea:f4:71:ee:4e:87:
#         e3:71:a9:f4:c9:57:e5:2e:5f:1c:79:bb:23:aa:87:44:57:e9:
#         bd:35:4d:41:bb:4b:28:a3:98:b2:1b:d9:0b:17:07:e5:f7:ea:
#         9d:f5:76:d7:bf:c4:b6:81:58:ff:c8:ff:64:69:62:79:ad:6e:
#         0e:1f:7f:ee:1d:69:e5:b7:72:71:b3:fe:a5:01:35:94:54:2b:
#         c0:52:6d:8f:55:c4:c9:d2:b8:cb:ca:34:08:51:85:a0:f5:bc:
#         b4:17:58:ea:0a:5c:7a:bd:63:c6:3a:2f:ff:96:49:19:84:ea:
#         67:d8:04:b1:61:f4:00:5b:4a:b7:9c:71:37:19:85:79:bf:81:
#         b0:c7:13:0e:76:71:3e:3a:80:06:ae:06:16:a7:8d:b5:c2:c4:
#         cb:ff:40:a5:5c:8d:a5:c9:3a:ed:72:81:ca:5c:98:3c:d2:34:
#         03:77:08:fd:f0:29:59:5d:21:08:c7:60:bf:a4:71:7b:b8:d9:
#         1e:82:be:09:af:65:6f:28:ab:bf:4b:b5:ee:3e:08:47:27:a0:
#         0f:6f:0f:8b:3f:ac:95:18:f3:b9:0e:dc:67:55:6e:62:9e:46:
#         0e:d1:04:78:ca:72:ae:76:d9:a5:f8:b2:df:88:09:61:8b:ef:
#         24:4e:d1:59:3f:5a:d4:3d:c9:93:3c:2b:64:f5:81:0d:16:96:
#         f7:92:c3:fe:31:6f:e8:2a:32:74:0e:f4:4c:98:4a:18:0e:30:
#         54:d5:c5:eb:bc:c5:15:9e:e8:99:21:eb:27:2b:09:0a:db:f1:
#         e6:70:18:56:bb:0c:e4:be:f9:e8:10:a4:13:92:b8:1c:e0:db:
#         67:1d:53:03:a4:22:a7:dc:5d:92:10:3c:ea:ff:fc:1b:10:1a:
#         c3:d8:d0:9c:9d:65:cb:d0:2b:27:31:03:1e:36:e1:3d:76:75:
#         0c:ff:45:26:b9:dd:51:bc:23:c7:5f:d8:d8:87:10:40:12:0d:
#         3d:38:37:e7:44:3c:18:c0:53:09:64:8f:ff:d5:9a:a6:7c:70:
#         2e:73:55:21:e8:df:ff:83:b9:1d:3e:32:1e:d6:a6:7d:2c:f1:
#         66:e9:5c:1d:a7:a3:ce:5e:25:32:2b:e3:95:ac:2a:07:ce:b4:
#         28:78:86:3c:2d:a6:9d:4d:d2:74:30:dd:64:51:15:db:83:83:
#         51:d7:af:fd:33:9d:4d:66

[p11-kit-object-v1]
label: "Security Communication Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs7P+f9Ntse8WfFelDG12
ii9Lv2T7TO6K8PMpfPX/7irg6em6W2QimppvLDomaVEFmSbc1RxqccaafR6d3Xxs
xoxnZ0o++HGwGSepCQymlb9LjAz6VZg72OgioUtxOHmsl5Jps4l+6iFoBpgUlofS
YTa8bSdWnlfuwMBW/TLPpNmOwiPXjajz2CWsl+RwOPS2OrSdO5cmQ6OhvElZckwj
MIcBWPZOvhxoVmavzUFdyLNNKlVGqx/aHuJAPdvNfbmSgJw33QyWZJ3cIvdki99h
3hWUUhWgfVLJS6ghycax7cvDlWDRD/CrcPjfy01+7Nb6q9m9f1Typel5+tnWdiQo
cwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Security Communication Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=JP, O=SECOM Trust.net, OU=Security Communication RootCA1
#        Validity
#            Not Before: Sep 30 04:20:49 2003 GMT
#            Not After : Sep 30 04:20:49 2023 GMT
#        Subject: C=JP, O=SECOM Trust.net, OU=Security Communication RootCA1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:b3:fe:7f:d3:6d:b1:ef:16:7c:57:a5:0c:6d:
#                    76:8a:2f:4b:bf:64:fb:4c:ee:8a:f0:f3:29:7c:f5:
#                    ff:ee:2a:e0:e9:e9:ba:5b:64:22:9a:9a:6f:2c:3a:
#                    26:69:51:05:99:26:dc:d5:1c:6a:71:c6:9a:7d:1e:
#                    9d:dd:7c:6c:c6:8c:67:67:4a:3e:f8:71:b0:19:27:
#                    a9:09:0c:a6:95:bf:4b:8c:0c:fa:55:98:3b:d8:e8:
#                    22:a1:4b:71:38:79:ac:97:92:69:b3:89:7e:ea:21:
#                    68:06:98:14:96:87:d2:61:36:bc:6d:27:56:9e:57:
#                    ee:c0:c0:56:fd:32:cf:a4:d9:8e:c2:23:d7:8d:a8:
#                    f3:d8:25:ac:97:e4:70:38:f4:b6:3a:b4:9d:3b:97:
#                    26:43:a3:a1:bc:49:59:72:4c:23:30:87:01:58:f6:
#                    4e:be:1c:68:56:66:af:cd:41:5d:c8:b3:4d:2a:55:
#                    46:ab:1f:da:1e:e2:40:3d:db:cd:7d:b9:92:80:9c:
#                    37:dd:0c:96:64:9d:dc:22:f7:64:8b:df:61:de:15:
#                    94:52:15:a0:7d:52:c9:4b:a8:21:c9:c6:b1:ed:cb:
#                    c3:95:60:d1:0f:f0:ab:70:f8:df:cb:4d:7e:ec:d6:
#                    fa:ab:d9:bd:7f:54:f2:a5:e9:79:fa:d9:d6:76:24:
#                    28:73
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                A0:73:49:99:68:DC:85:5B:65:E3:9B:28:2F:57:9F:BD:33:BC:07:48
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         68:40:a9:a8:bb:e4:4f:5d:79:b3:05:b5:17:b3:60:13:eb:c6:
#         92:5d:e0:d1:d3:6a:fe:fb:be:9b:6d:bf:c7:05:6d:59:20:c4:
#         1c:f0:b7:da:84:58:02:63:fa:48:16:ef:4f:a5:0b:f7:4a:98:
#         f2:3f:9e:1b:ad:47:6b:63:ce:08:47:eb:52:3f:78:9c:af:4d:
#         ae:f8:d5:4f:cf:9a:98:2a:10:41:39:52:c4:dd:d9:9b:0e:ef:
#         93:01:ae:b2:2e:ca:68:42:24:42:6c:b0:b3:3a:3e:cd:e9:da:
#         48:c4:15:cb:e9:f9:07:0f:92:50:49:8a:dd:31:97:5f:c9:e9:
#         37:aa:3b:59:65:97:94:32:c9:b3:9f:3e:3a:62:58:c5:49:ad:
#         62:0e:71:a5:32:aa:2f:c6:89:76:43:40:13:13:67:3d:a2:54:
#         25:10:cb:f1:3a:f2:d9:fa:db:49:56:bb:a6:fe:a7:41:35:c3:
#         e0:88:61:c9:88:c7:df:36:10:22:98:59:ea:b0:4a:fb:56:16:
#         73:6e:ac:4d:f7:22:a1:4f:ad:1d:7a:2d:45:27:e5:30:c1:5e:
#         f2:da:13:cb:25:42:51:95:47:03:8c:6c:21:cc:74:42:ed:53:
#         ff:33:8b:8f:0f:57:01:16:2f:cf:a6:ee:c9:70:22:14:bd:fd:
#         be:6c:0b:03

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%04"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Staat der Nederlanden Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFdDCCA1ygAwIBAgIEAJiiOTANBgkqhkiG9w0BAQsFADBaMQswCQYDVQQGEwJO
TDEeMBwGA1UECgwVU3RhYXQgZGVyIE5lZGVybGFuZGVuMSswKQYDVQQDDCJTdGFh
dCBkZXIgTmVkZXJsYW5kZW4gUm9vdCBDQSAtIEczMB4XDTEzMTExNDExMjg0MloX
DTI4MTExMzIzMDAwMFowWjELMAkGA1UEBhMCTkwxHjAcBgNVBAoMFVN0YWF0IGRl
ciBOZWRlcmxhbmRlbjErMCkGA1UEAwwiU3RhYXQgZGVyIE5lZGVybGFuZGVuIFJv
b3QgQ0EgLSBHMzCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAL4yolQP
cPssXFnrbMSkUeiFKrPMSjTysF/zDsccPVMeiAho2G89rcKezIJnByeHaHE6n3WW
IkYFsO2tx1ueKt6c/DrGlaf1F2cY5y9JCAxcz+bMNO14+1Cx3Gsy8KL+tjzk7FqX
xz8ecAgwoNzFs21v0IJyEavSgWhZghe3eJJg+szeP4TrjTgzkApyI/o1zCZxMdFy
KJLZWyNtZrVtB0LrpjPOktvA9mxjeM3KTj215VKb8b475lRgsGYeCasH/lSJEULR
9yS6YHgamPfJEf0WwTUaVHXvQ9Plrk7O53vDxk5hUUurmkVLoR9BvUhTFXFkC4az
5S6+zqQbwSmEorXLCCN2QyIkHxcE1G6cxvx/K2Ya7Irl1s9N9WMJtxU51nus6+N8
6U78dULI7ViVDAZCopz35HCz33JvWjdAidiFpNfxC95DGdRKWCyMijmev4SH8RY7
Ngzp07TKbBlBUgmhHbBqv4LvcFEhMtwFdozL92TkA1CvjJFnq8Xy7ljY3r735zHP
bMk7ccHViLVlvMDoFxcHErVc0qsgk7TmgoNwNsXNo42ti+yjwUOH5kPiNL6VizXt
BznaqB16nzaeErAMZRKQFWDZJkBE41ZgpRDUajz9QdwOWke275dhdU/Z/seyHdTt
XUmzqWrLZoQT1Vyg3N9udwbRcXXIV2+vD3dbAgMBAAGjQjBAMA8GA1UdEwEB/wQF
MAMBAf8wDgYDVR0PAQH/BAQDAgEGMB0GA1UdDgQWBBRUrfrHkleuyjWcLhL75Lpd
INyUVzANBgkqhkiG9w0BAQsFAAOCAgEAMJmdBTLIXg47mAE6iqTnB/d6+Oea31BD
U5cqPco8R5gu4RV78ZLzYdqQJRZlwJ9UXQ4DO1t3ApyEtg2YXzTdO2PCwyiBwpwp
LiniyMMB8jPqKqrMCQj3ZWfGzd/TtiunvczRDnBfuCPRy5FOCvTIeuXZYzbB1N/8
Ipf3YF3qKS9Ysr1YvY2WTxB1v0h7PVGHoTx0IsL8B3+A3MSs/mrBcDCw6Y5p4ixp
gZQJut3+TcCDjJRYwEYgr5wfAvg1VUkvRtTA8KCWAg8zxXHzniN9lLf9OtMJgwYh
/WA9rjLA0u6NpvDntIJ8CsxwyXmA+P5M9zWEGYox+wrZ13+b8KKaa8MFSu1BYBQw
0aoRQm7TIwIEC8Zl3d1Sd9qBa7Ko+gE4uZbqKmxnl4mUnrzhVNXkanjvSr0rmj1A
fsbAddJu+2gw7OyLnflJNZoaLNmzlTnVHpL3prllL+U9bTpITAjc5CgSKL59NVzq
4BZ+Extq1z7XnvwtdbLBFNUjA9tbbws+eC8N3jONFrdI54OagQ97wUNNVQQXOEpR
1VmiiXTTn74eS9fGbbeIJG9gkaSChVtWQbzQRKtqE77RLFi3EjNYsjdj3BP1lB0/
QFH1T/U67cjF68IeHRaVesd+QnGTbksVtzDfqu1XhUisHWrdOWnk4Xl4vs4Fv6EM
94B7IWcnMFk=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 10003001 (0x98a239)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=NL, O=Staat der Nederlanden, CN=Staat der Nederlanden Root CA - G3
#        Validity
#            Not Before: Nov 14 11:28:42 2013 GMT
#            Not After : Nov 13 23:00:00 2028 GMT
#        Subject: C=NL, O=Staat der Nederlanden, CN=Staat der Nederlanden Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:be:32:a2:54:0f:70:fb:2c:5c:59:eb:6c:c4:a4:
#                    51:e8:85:2a:b3:cc:4a:34:f2:b0:5f:f3:0e:c7:1c:
#                    3d:53:1e:88:08:68:d8:6f:3d:ad:c2:9e:cc:82:67:
#                    07:27:87:68:71:3a:9f:75:96:22:46:05:b0:ed:ad:
#                    c7:5b:9e:2a:de:9c:fc:3a:c6:95:a7:f5:17:67:18:
#                    e7:2f:49:08:0c:5c:cf:e6:cc:34:ed:78:fb:50:b1:
#                    dc:6b:32:f0:a2:fe:b6:3c:e4:ec:5a:97:c7:3f:1e:
#                    70:08:30:a0:dc:c5:b3:6d:6f:d0:82:72:11:ab:d2:
#                    81:68:59:82:17:b7:78:92:60:fa:cc:de:3f:84:eb:
#                    8d:38:33:90:0a:72:23:fa:35:cc:26:71:31:d1:72:
#                    28:92:d9:5b:23:6d:66:b5:6d:07:42:eb:a6:33:ce:
#                    92:db:c0:f6:6c:63:78:cd:ca:4e:3d:b5:e5:52:9b:
#                    f1:be:3b:e6:54:60:b0:66:1e:09:ab:07:fe:54:89:
#                    11:42:d1:f7:24:ba:60:78:1a:98:f7:c9:11:fd:16:
#                    c1:35:1a:54:75:ef:43:d3:e5:ae:4e:ce:e7:7b:c3:
#                    c6:4e:61:51:4b:ab:9a:45:4b:a1:1f:41:bd:48:53:
#                    15:71:64:0b:86:b3:e5:2e:be:ce:a4:1b:c1:29:84:
#                    a2:b5:cb:08:23:76:43:22:24:1f:17:04:d4:6e:9c:
#                    c6:fc:7f:2b:66:1a:ec:8a:e5:d6:cf:4d:f5:63:09:
#                    b7:15:39:d6:7b:ac:eb:e3:7c:e9:4e:fc:75:42:c8:
#                    ed:58:95:0c:06:42:a2:9c:f7:e4:70:b3:df:72:6f:
#                    5a:37:40:89:d8:85:a4:d7:f1:0b:de:43:19:d4:4a:
#                    58:2c:8c:8a:39:9e:bf:84:87:f1:16:3b:36:0c:e9:
#                    d3:b4:ca:6c:19:41:52:09:a1:1d:b0:6a:bf:82:ef:
#                    70:51:21:32:dc:05:76:8c:cb:f7:64:e4:03:50:af:
#                    8c:91:67:ab:c5:f2:ee:58:d8:de:be:f7:e7:31:cf:
#                    6c:c9:3b:71:c1:d5:88:b5:65:bc:c0:e8:17:17:07:
#                    12:b5:5c:d2:ab:20:93:b4:e6:82:83:70:36:c5:cd:
#                    a3:8d:ad:8b:ec:a3:c1:43:87:e6:43:e2:34:be:95:
#                    8b:35:ed:07:39:da:a8:1d:7a:9f:36:9e:12:b0:0c:
#                    65:12:90:15:60:d9:26:40:44:e3:56:60:a5:10:d4:
#                    6a:3c:fd:41:dc:0e:5a:47:b6:ef:97:61:75:4f:d9:
#                    fe:c7:b2:1d:d4:ed:5d:49:b3:a9:6a:cb:66:84:13:
#                    d5:5c:a0:dc:df:6e:77:06:d1:71:75:c8:57:6f:af:
#                    0f:77:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                54:AD:FA:C7:92:57:AE:CA:35:9C:2E:12:FB:E4:BA:5D:20:DC:94:57
#    Signature Algorithm: sha256WithRSAEncryption
#         30:99:9d:05:32:c8:5e:0e:3b:98:01:3a:8a:a4:e7:07:f7:7a:
#         f8:e7:9a:df:50:43:53:97:2a:3d:ca:3c:47:98:2e:e1:15:7b:
#         f1:92:f3:61:da:90:25:16:65:c0:9f:54:5d:0e:03:3b:5b:77:
#         02:9c:84:b6:0d:98:5f:34:dd:3b:63:c2:c3:28:81:c2:9c:29:
#         2e:29:e2:c8:c3:01:f2:33:ea:2a:aa:cc:09:08:f7:65:67:c6:
#         cd:df:d3:b6:2b:a7:bd:cc:d1:0e:70:5f:b8:23:d1:cb:91:4e:
#         0a:f4:c8:7a:e5:d9:63:36:c1:d4:df:fc:22:97:f7:60:5d:ea:
#         29:2f:58:b2:bd:58:bd:8d:96:4f:10:75:bf:48:7b:3d:51:87:
#         a1:3c:74:22:c2:fc:07:7f:80:dc:c4:ac:fe:6a:c1:70:30:b0:
#         e9:8e:69:e2:2c:69:81:94:09:ba:dd:fe:4d:c0:83:8c:94:58:
#         c0:46:20:af:9c:1f:02:f8:35:55:49:2f:46:d4:c0:f0:a0:96:
#         02:0f:33:c5:71:f3:9e:23:7d:94:b7:fd:3a:d3:09:83:06:21:
#         fd:60:3d:ae:32:c0:d2:ee:8d:a6:f0:e7:b4:82:7c:0a:cc:70:
#         c9:79:80:f8:fe:4c:f7:35:84:19:8a:31:fb:0a:d9:d7:7f:9b:
#         f0:a2:9a:6b:c3:05:4a:ed:41:60:14:30:d1:aa:11:42:6e:d3:
#         23:02:04:0b:c6:65:dd:dd:52:77:da:81:6b:b2:a8:fa:01:38:
#         b9:96:ea:2a:6c:67:97:89:94:9e:bc:e1:54:d5:e4:6a:78:ef:
#         4a:bd:2b:9a:3d:40:7e:c6:c0:75:d2:6e:fb:68:30:ec:ec:8b:
#         9d:f9:49:35:9a:1a:2c:d9:b3:95:39:d5:1e:92:f7:a6:b9:65:
#         2f:e5:3d:6d:3a:48:4c:08:dc:e4:28:12:28:be:7d:35:5c:ea:
#         e0:16:7e:13:1b:6a:d7:3e:d7:9e:fc:2d:75:b2:c1:14:d5:23:
#         03:db:5b:6f:0b:3e:78:2f:0d:de:33:8d:16:b7:48:e7:83:9a:
#         81:0f:7b:c1:43:4d:55:04:17:38:4a:51:d5:59:a2:89:74:d3:
#         9f:be:1e:4b:d7:c6:6d:b7:88:24:6f:60:91:a4:82:85:5b:56:
#         41:bc:d0:44:ab:6a:13:be:d1:2c:58:b7:12:33:58:b2:37:63:
#         dc:13:f5:94:1d:3f:40:51:f5:4f:f5:3a:ed:c8:c5:eb:c2:1e:
#         1d:16:95:7a:c7:7e:42:71:93:6e:4b:15:b7:30:df:aa:ed:57:
#         85:48:ac:1d:6a:dd:39:69:e4:e1:79:78:be:ce:05:bf:a1:0c:
#         f7:80:7b:21:67:27:30:59

[p11-kit-object-v1]
label: "Starfield Class 2 CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIDANBgkqhkiG9w0BAQEFAAOCAQ0AMIIBCAKCAQEAtzLI/ulxpgSFrQwRZN/O
Te/IAxiHP6Gr+zymn/DDodrU2G4rU5D7JKQ+hPCe6F/s5SdE9SimP3ve4CrwyK9T
L57KBQGTHo9mHDmnTfpatnMEJWbrd3/nWcZKmSUUVOsmx/N/GdUwcI+vsEYq/63r
Ke3Xn6oEh6PU+YmlNF/bQ5GCNtlmPLG4uYL9nDo+EMg77wZlZnqbGRg9/3FRPDAu
X749d3OyXQZswyNWmiuFJpIcpwKz5D8Nrwh5grg2Peqc0zWzvGnK9cyd6P1kjReA
M25eSl2ZyR6HtJ0awNVuEzUjXt+bXz3v1vd2wuo+u3gNHEJnawTY+Nbab4vyRKAB
qwIBAw==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Class 2 CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIEDzCCAvegAwIBAgIBADANBgkqhkiG9w0BAQUFADBoMQswCQYDVQQGEwJVUzEl
MCMGA1UEChMcU3RhcmZpZWxkIFRlY2hub2xvZ2llcywgSW5jLjEyMDAGA1UECxMp
U3RhcmZpZWxkIENsYXNzIDIgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMDQw
NjI5MTczOTE2WhcNMzQwNjI5MTczOTE2WjBoMQswCQYDVQQGEwJVUzElMCMGA1UE
ChMcU3RhcmZpZWxkIFRlY2hub2xvZ2llcywgSW5jLjEyMDAGA1UECxMpU3RhcmZp
ZWxkIENsYXNzIDIgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwggEgMA0GCSqGSIb3
DQEBAQUAA4IBDQAwggEIAoIBAQC3Msj+6XGmBIWtDBFk385N78gDGIc/oav7PKaf
8MOh2tTYbitTkPskpD6E8J7oX+zlJ0T1KKY/e97gKvDIr1MvnsoFAZMej2YcOadN
+lq2cwQlZut3f+dZxkqZJRRU6ybH838Z1TBwj6+wRir/resp7defqgSHo9T5iaU0
X9tDkYI22WY8sbi5gv2cOj4QyDvvBmVmepsZGD3/cVE8MC5fvj13c7JdBmzDI1aa
K4UmkhynArPkPw2vCHmCuDY96pzTNbO8acr1zJ3o/WSNF4Azbl5KXZnJHoe0nRrA
1W4TNSNe35tfPe/W93bC6j67eA0cQmdrBNj41tpvi/JEoAGrAgEDo4HFMIHCMB0G
A1UdDgQWBBS/X7fRzt0fhvRbVazc1xDCDqmI5zCBkgYDVR0jBIGKMIGHgBS/X7fR
zt0fhvRbVazc1xDCDqmI56FspGowaDELMAkGA1UEBhMCVVMxJTAjBgNVBAoTHFN0
YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4xMjAwBgNVBAsTKVN0YXJmaWVsZCBD
bGFzcyAyIENlcnRpZmljYXRpb24gQXV0aG9yaXR5ggEAMAwGA1UdEwQFMAMBAf8w
DQYJKoZIhvcNAQEFBQADggEBAAWdP4id0ckaVaGsafPzWdqbAYcaT1epoXkJKtv3
L7IezMdeatiDh6GX70k1PncGQVhiv45YuApnP+yz3SFmH8lU+nLMPUxA2IGvd56D
eruix/U0F47ZEUD0/CwqTRV/p2JdLiXTAAsgGh1o+Re49L2L7ShZ3U0WixeDyLJl
xy16paq8U4Zt3VekyvggQQto8PT7dL5WXXp59fkdheMtlb71cZBDzI0fmgAKhynp
VSJYACPq4xJDKVtHCN2MQWplBqjlIapBtJUhlbl90TSrE9atvNziPTnNvT51cKEY
WQPJIrSPnNVeKtelttQKbfi3QBFGmh95DmK/D5fs4C8fF5Q=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=Starfield Technologies, Inc., OU=Starfield Class 2 Certification Authority
#        Validity
#            Not Before: Jun 29 17:39:16 2004 GMT
#            Not After : Jun 29 17:39:16 2034 GMT
#        Subject: C=US, O=Starfield Technologies, Inc., OU=Starfield Class 2 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:32:c8:fe:e9:71:a6:04:85:ad:0c:11:64:df:
#                    ce:4d:ef:c8:03:18:87:3f:a1:ab:fb:3c:a6:9f:f0:
#                    c3:a1:da:d4:d8:6e:2b:53:90:fb:24:a4:3e:84:f0:
#                    9e:e8:5f:ec:e5:27:44:f5:28:a6:3f:7b:de:e0:2a:
#                    f0:c8:af:53:2f:9e:ca:05:01:93:1e:8f:66:1c:39:
#                    a7:4d:fa:5a:b6:73:04:25:66:eb:77:7f:e7:59:c6:
#                    4a:99:25:14:54:eb:26:c7:f3:7f:19:d5:30:70:8f:
#                    af:b0:46:2a:ff:ad:eb:29:ed:d7:9f:aa:04:87:a3:
#                    d4:f9:89:a5:34:5f:db:43:91:82:36:d9:66:3c:b1:
#                    b8:b9:82:fd:9c:3a:3e:10:c8:3b:ef:06:65:66:7a:
#                    9b:19:18:3d:ff:71:51:3c:30:2e:5f:be:3d:77:73:
#                    b2:5d:06:6c:c3:23:56:9a:2b:85:26:92:1c:a7:02:
#                    b3:e4:3f:0d:af:08:79:82:b8:36:3d:ea:9c:d3:35:
#                    b3:bc:69:ca:f5:cc:9d:e8:fd:64:8d:17:80:33:6e:
#                    5e:4a:5d:99:c9:1e:87:b4:9d:1a:c0:d5:6e:13:35:
#                    23:5e:df:9b:5f:3d:ef:d6:f7:76:c2:ea:3e:bb:78:
#                    0d:1c:42:67:6b:04:d8:f8:d6:da:6f:8b:f2:44:a0:
#                    01:ab
#                Exponent: 3 (0x3)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                BF:5F:B7:D1:CE:DD:1F:86:F4:5B:55:AC:DC:D7:10:C2:0E:A9:88:E7
#            X509v3 Authority Key Identifier: 
#                keyid:BF:5F:B7:D1:CE:DD:1F:86:F4:5B:55:AC:DC:D7:10:C2:0E:A9:88:E7
#                DirName:/C=US/O=Starfield Technologies, Inc./OU=Starfield Class 2 Certification Authority
#                serial:00
#
#            X509v3 Basic Constraints: 
#                CA:TRUE
#    Signature Algorithm: sha1WithRSAEncryption
#         05:9d:3f:88:9d:d1:c9:1a:55:a1:ac:69:f3:f3:59:da:9b:01:
#         87:1a:4f:57:a9:a1:79:09:2a:db:f7:2f:b2:1e:cc:c7:5e:6a:
#         d8:83:87:a1:97:ef:49:35:3e:77:06:41:58:62:bf:8e:58:b8:
#         0a:67:3f:ec:b3:dd:21:66:1f:c9:54:fa:72:cc:3d:4c:40:d8:
#         81:af:77:9e:83:7a:bb:a2:c7:f5:34:17:8e:d9:11:40:f4:fc:
#         2c:2a:4d:15:7f:a7:62:5d:2e:25:d3:00:0b:20:1a:1d:68:f9:
#         17:b8:f4:bd:8b:ed:28:59:dd:4d:16:8b:17:83:c8:b2:65:c7:
#         2d:7a:a5:aa:bc:53:86:6d:dd:57:a4:ca:f8:20:41:0b:68:f0:
#         f4:fb:74:be:56:5d:7a:79:f5:f9:1d:85:e3:2d:95:be:f5:71:
#         90:43:cc:8d:1f:9a:00:0a:87:29:e9:55:22:58:00:23:ea:e3:
#         12:43:29:5b:47:08:dd:8c:41:6a:65:06:a8:e5:21:aa:41:b4:
#         95:21:95:b9:7d:d1:34:ab:13:d6:ad:bc:dc:e2:3d:39:cd:bd:
#         3e:75:70:a1:18:59:03:c9:22:b4:8f:9c:d5:5e:2a:d7:a5:b6:
#         d4:0a:6d:f8:b7:40:11:46:9a:1f:79:0e:62:bf:0f:97:ec:e0:
#         2f:1f:17:94

[p11-kit-object-v1]
label: "Starfield Root Certificate Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAve3BA/z2j/wCsW9bn0jZ
nXniorcDYVYYw0e218o9NS6JQ/ehaZveihr9EyCctEl3MilW/bnsjN0i+nLcJ2GX
7vZahOxuGbmJLNyEW9V0+2tfxYmlEFKJRlX0uHUc5n/kVK5L+FVyVwIZ+BdxWese
KAd0xZ1Ivmy09KSw82Q3eZLA7EZef+FtU0xir80fC2O7Op37/HkAmGF0zyaCQGPz
snJqGQ2ZytQOdcw3+4uJwVnxYn9fs19lMPint012Wh52XjTA6JZWmYqz8H+kzb3c
MjF8kc/gXxH4a6pJXNGZlNGi42NbCXa1VmLhS3QdltQm1AgEWdCYDg7m3vzD7B+Q
8QIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Root Certificate Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Root Certificate Authority - G2
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Dec 31 23:59:59 2037 GMT
#        Subject: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Root Certificate Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bd:ed:c1:03:fc:f6:8f:fc:02:b1:6f:5b:9f:48:
#                    d9:9d:79:e2:a2:b7:03:61:56:18:c3:47:b6:d7:ca:
#                    3d:35:2e:89:43:f7:a1:69:9b:de:8a:1a:fd:13:20:
#                    9c:b4:49:77:32:29:56:fd:b9:ec:8c:dd:22:fa:72:
#                    dc:27:61:97:ee:f6:5a:84:ec:6e:19:b9:89:2c:dc:
#                    84:5b:d5:74:fb:6b:5f:c5:89:a5:10:52:89:46:55:
#                    f4:b8:75:1c:e6:7f:e4:54:ae:4b:f8:55:72:57:02:
#                    19:f8:17:71:59:eb:1e:28:07:74:c5:9d:48:be:6c:
#                    b4:f4:a4:b0:f3:64:37:79:92:c0:ec:46:5e:7f:e1:
#                    6d:53:4c:62:af:cd:1f:0b:63:bb:3a:9d:fb:fc:79:
#                    00:98:61:74:cf:26:82:40:63:f3:b2:72:6a:19:0d:
#                    99:ca:d4:0e:75:cc:37:fb:8b:89:c1:59:f1:62:7f:
#                    5f:b3:5f:65:30:f8:a7:b7:4d:76:5a:1e:76:5e:34:
#                    c0:e8:96:56:99:8a:b3:f0:7f:a4:cd:bd:dc:32:31:
#                    7c:91:cf:e0:5f:11:f8:6b:aa:49:5c:d1:99:94:d1:
#                    a2:e3:63:5b:09:76:b5:56:62:e1:4b:74:1d:96:d4:
#                    26:d4:08:04:59:d0:98:0e:0e:e6:de:fc:c3:ec:1f:
#                    90:f1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7C:0C:32:1F:A7:D9:30:7F:C4:7D:68:A3:62:A8:A1:CE:AB:07:5B:27
#    Signature Algorithm: sha256WithRSAEncryption
#         11:59:fa:25:4f:03:6f:94:99:3b:9a:1f:82:85:39:d4:76:05:
#         94:5e:e1:28:93:6d:62:5d:09:c2:a0:a8:d4:b0:75:38:f1:34:
#         6a:9d:e4:9f:8a:86:26:51:e6:2c:d1:c6:2d:6e:95:20:4a:92:
#         01:ec:b8:8a:67:7b:31:e2:67:2e:8c:95:03:26:2e:43:9d:4a:
#         31:f6:0e:b5:0c:bb:b7:e2:37:7f:22:ba:00:a3:0e:7b:52:fb:
#         6b:bb:3b:c4:d3:79:51:4e:cd:90:f4:67:07:19:c8:3c:46:7a:
#         0d:01:7d:c5:58:e7:6d:e6:85:30:17:9a:24:c4:10:e0:04:f7:
#         e0:f2:7f:d4:aa:0a:ff:42:1d:37:ed:94:e5:64:59:12:20:77:
#         38:d3:32:3e:38:81:75:96:73:fa:68:8f:b1:cb:ce:1f:c5:ec:
#         fa:9c:7e:cf:7e:b1:f1:07:2d:b6:fc:bf:ca:a4:bf:d0:97:05:
#         4a:bc:ea:18:28:02:90:bd:54:78:09:21:71:d3:d1:7d:1d:d9:
#         16:b0:a9:61:3d:d0:0a:00:22:fc:c7:7b:cb:09:64:45:0b:3b:
#         40:81:f7:7d:7c:32:f5:98:ca:58:8e:7d:2a:ee:90:59:73:64:
#         f9:36:74:5e:25:a1:f5:66:05:2e:7f:39:15:a9:2a:fb:50:8b:
#         8e:85:69:f4

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8sxWKk3mFjdal+ptNTjR
EJvbuNypBAmVMy4JxQB7GnhCj8j0BY7+0miDHk6ZzRfbRz5Q84nS59yY+wX4qtZj
9FRNwXEDsB8bdrMaNDBz8SgyYIP9tJzXttIiN3wZqjveExBpblwG02+j8mZadkJI
r4DRVFk91LnU2+25qzmZ9O5iq+F4cnvYOI1AtszcEgBwQ4Vp2Bjjyldyn7TfP/wi
qEJS9XdbmfBWLSZwFjYSwieeV6Z80CPxedyjk1goOD2frTZD7jf7+PlDrchW8pQS
XkLrc7gTDcum1Ya5qihqVAOhPw8p6wkA6D9eon8XPaEr+L7QdR2khOOrF2UGUgCv
sQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., OU=http://certificates.starfieldtech.com/repository/, CN=Starfield Services Root Certificate Authority
#        Validity
#            Not Before: Jun  2 00:00:00 2008 GMT
#            Not After : Dec 31 23:59:59 2029 GMT
#        Subject: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., OU=http://certificates.starfieldtech.com/repository/, CN=Starfield Services Root Certificate Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:f2:cc:56:2a:4d:e6:16:37:5a:97:ea:6d:35:38:
#                    d1:10:9b:db:b8:dc:a9:04:09:95:33:2e:09:c5:00:
#                    7b:1a:78:42:8f:c8:f4:05:8e:fe:d2:68:83:1e:4e:
#                    99:cd:17:db:47:3e:50:f3:89:d2:e7:dc:98:fb:05:
#                    f8:aa:d6:63:f4:54:4d:c1:71:03:b0:1f:1b:76:b3:
#                    1a:34:30:73:f1:28:32:60:83:fd:b4:9c:d7:b6:d2:
#                    22:37:7c:19:aa:3b:de:13:10:69:6e:5c:06:d3:6f:
#                    a3:f2:66:5a:76:42:48:af:80:d1:54:59:3d:d4:b9:
#                    d4:db:ed:b9:ab:39:99:f4:ee:62:ab:e1:78:72:7b:
#                    d8:38:8d:40:b6:cc:dc:12:00:70:43:85:69:d8:18:
#                    e3:ca:57:72:9f:b4:df:3f:fc:22:a8:42:52:f5:77:
#                    5b:99:f0:56:2d:26:70:16:36:12:c2:27:9e:57:a6:
#                    7c:d0:23:f1:79:dc:a3:93:58:28:38:3d:9f:ad:36:
#                    43:ee:37:fb:f8:f9:43:ad:c8:56:f2:94:12:5e:42:
#                    eb:73:b8:13:0d:cb:a6:d5:86:b9:aa:28:6a:54:03:
#                    a1:3f:0f:29:eb:09:00:e8:3f:5e:a2:7f:17:3d:a1:
#                    2b:f8:be:d0:75:1d:a4:84:e3:ab:17:65:06:52:00:
#                    af:b1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B4:C6:7F:1A:43:CC:9B:75:5D:2F:C4:4B:F2:8B:98:10:E9:F1:51:10
#            X509v3 Authority Key Identifier: 
#                keyid:B4:C6:7F:1A:43:CC:9B:75:5D:2F:C4:4B:F2:8B:98:10:E9:F1:51:10
#
#    Signature Algorithm: sha1WithRSAEncryption
#         ac:80:bb:c4:25:05:0b:58:a4:e4:7e:29:7e:af:bc:3b:ec:2d:
#         c0:44:2e:f9:91:e0:d2:3b:32:27:90:2d:f6:80:09:5c:c2:ab:
#         65:24:da:38:10:46:c4:49:d2:fd:9a:ab:28:48:77:88:c6:e9:
#         6f:d1:47:91:d5:35:4f:14:09:a8:5b:40:07:1d:7c:71:56:cb:
#         89:42:d4:bf:61:c0:22:f7:2e:df:ab:f3:72:43:8b:40:e8:94:
#         eb:b0:26:da:d1:13:d3:ab:d0:36:2d:2e:3a:95:b3:77:2e:15:
#         39:18:0c:69:ba:aa:80:ed:f1:53:4e:33:9b:68:04:e2:a0:30:
#         2e:d7:d1:5d:d4:a6:66:9d:84:e6:e7:bb:3c:89:bb:36:9d:fc:
#         17:a9:3d:55:2b:8a:fb:9b:c4:4c:84:ff:df:d2:be:69:1b:74:
#         b0:a8:f6:ea:b0:9c:b2:29:74:81:4c:68:3a:9a:7f:73:25:39:
#         f5:13:e0:66:91:69:d4:57:4b:b7:ee:ad:45:e0:2c:c3:88:d3:
#         be:94:49:89:1f:ff:70:d5:5b:6d:39:13:b0:1d:cb:98:e6:67:
#         63:0d:63:f6:fb:c3:d7:61:72:83:88:3f:70:7e:53:c9:9e:89:
#         54:d6:4f:7f:7d:71:b9:ae:f1:60:8b:77:60:ec:f8:bf:fa:6a:
#         a3:9c:01:22

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1Qw6xCr5TuL1vhmXX46I
U7EfP8vPnyATbSk6yA99PPdrdjhj2TZgqJteXACAsi9Zf/aH+SVDhudpG1KakOFx
49gtDU5v9shJ2bbzGlauK7Z0FOvP+ybjGrodli5qO1iUiUdW/yWgk3BTg9qEdBTD
Z54EaDrfjkBaHUpOz0ORO+dW1gBwy1Lue32uOue8MflF9sJgzxNZAiuAzDRH37ne
kGVtAs8skaam596FGEl8Zk6jOm2pte40LroNA7gz30frsWuNJdmbzoHRRUYylnCH
3gIOSUOFtmxzu2TqYUGsydRU34cvxyKyJsyfWVRon/y+Ki/EVRx1QGAXhQJVOYt/
BQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Starfield Services Root Certificate Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 0 (0x0)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Services Root Certificate Authority - G2
#        Validity
#            Not Before: Sep  1 00:00:00 2009 GMT
#            Not After : Dec 31 23:59:59 2037 GMT
#        Subject: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Services Root Certificate Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:d5:0c:3a:c4:2a:f9:4e:e2:f5:be:19:97:5f:8e:
#                    88:53:b1:1f:3f:cb:cf:9f:20:13:6d:29:3a:c8:0f:
#                    7d:3c:f7:6b:76:38:63:d9:36:60:a8:9b:5e:5c:00:
#                    80:b2:2f:59:7f:f6:87:f9:25:43:86:e7:69:1b:52:
#                    9a:90:e1:71:e3:d8:2d:0d:4e:6f:f6:c8:49:d9:b6:
#                    f3:1a:56:ae:2b:b6:74:14:eb:cf:fb:26:e3:1a:ba:
#                    1d:96:2e:6a:3b:58:94:89:47:56:ff:25:a0:93:70:
#                    53:83:da:84:74:14:c3:67:9e:04:68:3a:df:8e:40:
#                    5a:1d:4a:4e:cf:43:91:3b:e7:56:d6:00:70:cb:52:
#                    ee:7b:7d:ae:3a:e7:bc:31:f9:45:f6:c2:60:cf:13:
#                    59:02:2b:80:cc:34:47:df:b9:de:90:65:6d:02:cf:
#                    2c:91:a6:a6:e7:de:85:18:49:7c:66:4e:a3:3a:6d:
#                    a9:b5:ee:34:2e:ba:0d:03:b8:33:df:47:eb:b1:6b:
#                    8d:25:d9:9b:ce:81:d1:45:46:32:96:70:87:de:02:
#                    0e:49:43:85:b6:6c:73:bb:64:ea:61:41:ac:c9:d4:
#                    54:df:87:2f:c7:22:b2:26:cc:9f:59:54:68:9f:fc:
#                    be:2a:2f:c4:55:1c:75:40:60:17:85:02:55:39:8b:
#                    7f:05
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9C:5F:00:DF:AA:01:D7:30:2B:38:88:A2:B8:6D:4A:9C:F2:11:91:83
#    Signature Algorithm: sha256WithRSAEncryption
#         4b:36:a6:84:77:69:dd:3b:19:9f:67:23:08:6f:0e:61:c9:fd:
#         84:dc:5f:d8:36:81:cd:d8:1b:41:2d:9f:60:dd:c7:1a:68:d9:
#         d1:6e:86:e1:88:23:cf:13:de:43:cf:e2:34:b3:04:9d:1f:29:
#         d5:bf:f8:5e:c8:d5:c1:bd:ee:92:6f:32:74:f2:91:82:2f:bd:
#         82:42:7a:ad:2a:b7:20:7d:4d:bc:7a:55:12:c2:15:ea:bd:f7:
#         6a:95:2e:6c:74:9f:cf:1c:b4:f2:c5:01:a3:85:d0:72:3e:ad:
#         73:ab:0b:9b:75:0c:6d:45:b7:8e:94:ac:96:37:b5:a0:d0:8f:
#         15:47:0e:e3:e8:83:dd:8f:fd:ef:41:01:77:cc:27:a9:62:85:
#         33:f2:37:08:ef:71:cf:77:06:de:c8:19:1d:88:40:cf:7d:46:
#         1d:ff:1e:c7:e1:ce:ff:23:db:c6:fa:8d:55:4e:a9:02:e7:47:
#         11:46:3e:f4:fd:bd:7b:29:26:bb:a9:61:62:37:28:b6:2d:2a:
#         f6:10:86:64:c9:70:a7:d2:ad:b7:29:70:79:ea:3c:da:63:25:
#         9f:fd:68:b7:30:ec:70:fb:75:8a:b7:6d:60:67:b2:1e:c8:b9:
#         e9:d8:a8:6f:02:8b:67:0d:4d:26:57:71:da:20:fc:c1:4a:50:
#         8d:b1:28:ba

[p11-kit-object-v1]
label: "StartCom Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "StartCom Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Certification Authority
#        Validity
#            Not Before: Sep 17 19:46:36 2006 GMT
#            Not After : Sep 17 19:46:36 2036 GMT
#        Subject: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c1:88:db:09:bc:6c:46:7c:78:9f:95:7b:b5:33:
#                    90:f2:72:62:d6:c1:36:20:22:24:5e:ce:e9:77:f2:
#                    43:0a:a2:06:64:a4:cc:8e:36:f8:38:e6:23:f0:6e:
#                    6d:b1:3c:dd:72:a3:85:1c:a1:d3:3d:b4:33:2b:d3:
#                    2f:af:fe:ea:b0:41:59:67:b6:c4:06:7d:0a:9e:74:
#                    85:d6:79:4c:80:37:7a:df:39:05:52:59:f7:f4:1b:
#                    46:43:a4:d2:85:85:d2:c3:71:f3:75:62:34:ba:2c:
#                    8a:7f:1e:8f:ee:ed:34:d0:11:c7:96:cd:52:3d:ba:
#                    33:d6:dd:4d:de:0b:3b:4a:4b:9f:c2:26:2f:fa:b5:
#                    16:1c:72:35:77:ca:3c:5d:e6:ca:e1:26:8b:1a:36:
#                    76:5c:01:db:74:14:25:fe:ed:b5:a0:88:0f:dd:78:
#                    ca:2d:1f:07:97:30:01:2d:72:79:fa:46:d6:13:2a:
#                    a8:b9:a6:ab:83:49:1d:e5:f2:ef:dd:e4:01:8e:18:
#                    0a:8f:63:53:16:85:62:a9:0e:19:3a:cc:b5:66:a6:
#                    c2:6b:74:07:e4:2b:e1:76:3e:b4:6d:d8:f6:44:e1:
#                    73:62:1f:3b:c4:be:a0:53:56:25:6c:51:09:f7:aa:
#                    ab:ca:bf:76:fd:6d:9b:f3:9d:db:bf:3d:66:bc:0c:
#                    56:aa:af:98:48:95:3a:4b:df:a7:58:50:d9:38:75:
#                    a9:5b:ea:43:0c:02:ff:99:eb:e8:6c:4d:70:5b:29:
#                    65:9c:dd:aa:5d:cc:af:01:31:ec:0c:eb:d2:8d:e8:
#                    ea:9c:7b:e6:6e:f7:27:66:0c:1a:48:d7:6e:42:e3:
#                    3f:de:21:3e:7b:e1:0d:70:fb:63:aa:a8:6c:1a:54:
#                    b4:5c:25:7a:c9:a2:c9:8b:16:a6:bb:2c:7e:17:5e:
#                    05:4d:58:6e:12:1d:01:ee:12:10:0d:c6:32:7f:18:
#                    ff:fc:f4:fa:cd:6e:91:e8:36:49:be:1a:48:69:8b:
#                    c2:96:4d:1a:12:b2:69:17:c1:0a:90:d6:fa:79:22:
#                    48:bf:ba:7b:69:f8:70:c7:fa:7a:37:d8:d8:0d:d2:
#                    76:4f:57:ff:90:b7:e3:91:d2:dd:ef:c2:60:b7:67:
#                    3a:dd:fe:aa:9c:f0:d4:8b:7f:72:22:ce:c6:9f:97:
#                    b6:f8:af:8a:a0:10:a8:d9:fb:18:c6:b6:b5:5c:52:
#                    3c:89:b6:19:2a:73:01:0a:0f:03:b3:12:60:f2:7a:
#                    2f:81:db:a3:6e:ff:26:30:97:f5:8b:dd:89:57:b6:
#                    ad:3d:b3:af:2b:c5:b7:76:02:f0:a5:d6:2b:9a:86:
#                    14:2a:72:f6:e3:33:8c:5d:09:4b:13:df:bb:8c:74:
#                    13:52:4b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Key Usage: 
#                Digital Signature, Key Encipherment, Key Agreement, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4E:0B:EF:1A:A4:40:5B:A5:17:69:87:30:CA:34:68:43:D0:41:AE:F2
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://cert.startcom.org/sfsca-crl.crl
#
#                Full Name:
#                  URI:http://crl.startcom.org/sfsca-crl.crl
#
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.23223.1.1.1
#                  CPS: http://cert.startcom.org/policy.pdf
#                  CPS: http://cert.startcom.org/intermediate.pdf
#                  User Notice:
#                    Organization: Start Commercial (StartCom) Ltd.
#                    Number: 1
#                    Explicit Text: Limited Liability, read the section *Legal Limitations* of the StartCom Certification Authority Policy available at http://cert.startcom.org/policy.pdf
#
#            Netscape Cert Type: 
#                SSL CA, S/MIME CA, Object Signing CA
#            Netscape Comment: 
#                StartCom Free SSL Certification Authority
#    Signature Algorithm: sha1WithRSAEncryption
#         16:6c:99:f4:66:0c:34:f5:d0:85:5e:7d:0a:ec:da:10:4e:38:
#         1c:5e:df:a6:25:05:4b:91:32:c1:e8:3b:f1:3d:dd:44:09:5b:
#         07:49:8a:29:cb:66:02:b7:b1:9a:f7:25:98:09:3c:8e:1b:e1:
#         dd:36:87:2b:4b:bb:68:d3:39:66:3d:a0:26:c7:f2:39:91:1d:
#         51:ab:82:7b:7e:d5:ce:5a:e4:e2:03:57:70:69:97:08:f9:5e:
#         58:a6:0a:df:8c:06:9a:45:16:16:38:0a:5e:57:f6:62:c7:7a:
#         02:05:e6:bc:1e:b5:f2:9e:f4:a9:29:83:f8:b2:14:e3:6e:28:
#         87:44:c3:90:1a:de:38:a9:3c:ac:43:4d:64:45:ce:dd:28:a9:
#         5c:f2:73:7b:04:f8:17:e8:ab:b1:f3:2e:5c:64:6e:73:31:3a:
#         12:b8:bc:b3:11:e4:7d:8f:81:51:9a:3b:8d:89:f4:4d:93:66:
#         7b:3c:03:ed:d3:9a:1d:9a:f3:65:50:f5:a0:d0:75:9f:2f:af:
#         f0:ea:82:43:98:f8:69:9c:89:79:c4:43:8e:46:72:e3:64:36:
#         12:af:f7:25:1e:38:89:90:77:7e:c3:6b:6a:b9:c3:cb:44:4b:
#         ac:78:90:8b:e7:c7:2c:1e:4b:11:44:c8:34:52:27:cd:0a:5d:
#         9f:85:c1:89:d5:1a:78:f2:95:10:53:32:dd:80:84:66:75:d9:
#         b5:68:28:fb:61:2e:be:84:a8:38:c0:99:12:86:a5:1e:67:64:
#         ad:06:2e:2f:a9:70:85:c7:96:0f:7c:89:65:f5:8e:43:54:0e:
#         ab:dd:a5:80:39:94:60:c0:34:c9:96:70:2c:a3:12:f5:1f:48:
#         7b:bd:1c:7e:6b:b7:9d:90:f4:22:3b:ae:f8:fc:2a:ca:fa:82:
#         52:a0:ef:af:4b:55:93:eb:c1:b5:f0:22:8b:ac:34:4e:26:22:
#         04:a1:87:2c:75:4a:b7:e5:7d:13:d7:b8:0c:64:c0:36:d2:c9:
#         2f:86:12:8c:23:09:c1:1b:82:3b:73:49:a3:6a:57:87:94:e5:
#         d6:78:c5:99:43:63:e3:4d:e0:77:2d:e1:65:99:72:69:04:1a:
#         47:09:e6:0f:01:56:24:fb:1f:bf:0e:79:a9:58:2e:b9:c4:09:
#         01:7e:95:ba:6d:00:06:3e:b2:ea:4a:10:39:d8:d0:2b:f5:bf:
#         ec:75:bf:97:02:c5:09:1b:08:dc:55:37:e2:81:fb:37:84:43:
#         62:20:ca:e7:56:4b:65:ea:fe:6c:c1:24:93:24:a1:34:eb:05:
#         ff:9a:22:ae:9b:7d:3f:f1:65:51:0a:a6:30:6a:b3:f4:88:1c:
#         80:0d:fc:72:8a:e8:83:5e

[p11-kit-object-v1]
label: "StartCom Certification Authority G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "StartCom Certification Authority G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 59 (0x3b)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=IL, O=StartCom Ltd., CN=StartCom Certification Authority G2
#        Validity
#            Not Before: Jan  1 01:00:01 2010 GMT
#            Not After : Dec 31 23:59:01 2039 GMT
#        Subject: C=IL, O=StartCom Ltd., CN=StartCom Certification Authority G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b6:89:36:5b:07:b7:20:36:bd:82:bb:e1:16:20:
#                    03:95:7a:af:0e:a3:55:c9:25:99:4a:c5:d0:56:41:
#                    87:90:4d:21:60:a4:14:87:3b:cd:fd:b2:3e:b4:67:
#                    03:6a:ed:e1:0f:4b:c0:91:85:70:45:e0:42:9e:de:
#                    29:23:d4:01:0d:a0:10:79:b8:db:03:bd:f3:a9:2f:
#                    d1:c6:e0:0f:cb:9e:8a:14:0a:b8:bd:f6:56:62:f1:
#                    c5:72:b6:32:25:d9:b2:f3:bd:65:c5:0d:2c:6e:d5:
#                    92:6f:18:8b:00:41:14:82:6f:40:20:26:7a:28:0f:
#                    f5:1e:7f:27:f7:94:b1:37:3d:b7:c7:91:f7:e2:01:
#                    ec:fd:94:89:e1:cc:6e:d3:36:d6:0a:19:79:ae:d7:
#                    34:82:65:ff:7c:42:bb:b6:dd:0b:a6:34:af:4b:60:
#                    fe:7f:43:49:06:8b:8c:43:b8:56:f2:d9:7f:21:43:
#                    17:ea:a7:48:95:01:75:75:ea:2b:a5:43:95:ea:15:
#                    84:9d:08:8d:26:6e:55:9b:ab:dc:d2:39:d2:31:1d:
#                    60:e2:ac:cc:56:45:24:f5:1c:54:ab:ee:86:dd:96:
#                    32:85:f8:4c:4f:e8:95:76:b6:05:dd:36:23:67:bc:
#                    ff:15:e2:ca:3b:e6:a6:ec:3b:ec:26:11:34:48:8d:
#                    f6:80:2b:1a:23:02:eb:8a:1c:3a:76:2a:7b:56:16:
#                    1c:72:2a:b3:aa:e3:60:a5:00:9f:04:9b:e2:6f:1e:
#                    14:58:5b:a5:6c:8b:58:3c:c3:ba:4e:3a:5c:f7:e1:
#                    96:2b:3e:ef:07:bc:a4:e5:5d:cc:4d:9f:0d:e1:dc:
#                    aa:bb:e1:6e:1a:ec:8f:e1:b6:4c:4d:79:72:5d:17:
#                    35:0b:1d:d7:c1:47:da:96:24:e0:d0:72:a8:5a:5f:
#                    66:2d:10:dc:2f:2a:13:ae:26:fe:0a:1c:19:cc:d0:
#                    3e:0b:9c:c8:09:2e:f9:5b:96:7a:47:9c:e9:7a:f3:
#                    05:50:74:95:73:9e:30:09:f3:97:82:5e:e6:8f:39:
#                    08:1e:59:e5:35:14:42:13:ff:00:9c:f7:be:aa:50:
#                    cf:e2:51:48:d7:b8:6f:af:f8:4e:7e:33:98:92:14:
#                    62:3a:75:63:cf:7b:fa:de:82:3b:a9:bb:39:e2:c4:
#                    bd:2c:00:0e:c8:17:ac:13:ef:4d:25:8e:d8:b3:90:
#                    2f:a9:da:29:7d:1d:af:74:3a:b2:27:c0:c1:1e:3e:
#                    75:a3:16:a9:af:7a:22:5d:9f:13:1a:cf:a7:a0:eb:
#                    e3:86:0a:d3:fd:e6:96:95:d7:23:c8:37:dd:c4:7c:
#                    aa:36:ac:98:1a:12:b1:e0:4e:e8:b1:3b:f5:d6:6f:
#                    f1:30:d7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4B:C5:B4:40:6B:AD:1C:B3:A5:1C:65:6E:46:36:89:87:05:0C:0E:B6
#    Signature Algorithm: sha256WithRSAEncryption
#         73:57:3f:2c:d5:95:32:7e:37:db:96:92:eb:19:5e:7e:53:e7:
#         41:ec:11:b6:47:ef:b5:de:ed:74:5c:c5:f1:8e:49:e0:fc:6e:
#         99:13:cd:9f:8a:da:cd:3a:0a:d8:3a:5a:09:3f:5f:34:d0:2f:
#         03:d2:66:1d:1a:bd:9c:90:37:c8:0c:8e:07:5a:94:45:46:2a:
#         e6:be:7a:da:a1:a9:a4:69:12:92:b0:7d:36:d4:44:87:d7:51:
#         f1:29:63:d6:75:cd:16:e4:27:89:1d:f8:c2:32:48:fd:db:99:
#         d0:8f:5f:54:74:cc:ac:67:34:11:62:d9:0c:0a:37:87:d1:a3:
#         17:48:8e:d2:17:1d:f6:d7:fd:db:65:eb:fd:a8:d4:f5:d6:4f:
#         a4:5b:75:e8:c5:d2:60:b2:db:09:7e:25:8b:7b:ba:52:92:9e:
#         3e:e8:c5:77:a1:3c:e0:4a:73:6b:61:cf:86:dc:43:ff:ff:21:
#         fe:23:5d:24:4a:f5:d3:6d:0f:62:04:05:57:82:da:6e:a4:33:
#         25:79:4b:2e:54:19:8b:cc:2c:3d:30:e9:d1:06:ff:e8:32:46:
#         be:b5:33:76:77:a8:01:5d:96:c1:c1:d5:be:ae:25:c0:c9:1e:
#         0a:09:20:88:a1:0e:c9:f3:6f:4d:82:54:00:20:a7:d2:8f:e4:
#         39:54:17:2e:8d:1e:b8:1b:bb:1b:bd:9a:4e:3b:10:34:dc:9c:
#         88:53:ef:a2:31:5b:58:4f:91:62:c8:c2:9a:9a:cd:15:5d:38:
#         a9:d6:be:f8:13:b5:9f:12:69:f2:50:62:ac:fb:17:37:f4:ee:
#         b8:75:67:60:10:fb:83:50:f9:44:b5:75:9c:40:17:b2:fe:fd:
#         79:5d:6e:58:58:5f:30:fc:00:ae:af:33:c1:0e:4e:6c:ba:a7:
#         a6:a1:7f:32:db:38:e0:b1:72:17:0a:2b:91:ec:6a:63:26:ed:
#         89:d4:78:cc:74:1e:05:f8:6b:fe:8c:6a:76:39:29:ae:65:23:
#         12:95:08:22:1c:97:ce:5b:06:ee:0c:e2:bb:bc:1f:44:93:f6:
#         d8:38:45:05:21:ed:e4:ad:ab:12:b6:03:a4:42:2e:2d:c4:09:
#         3a:03:67:69:84:9a:e1:59:90:8a:28:85:d5:5d:74:b1:d1:0e:
#         20:58:9b:13:a5:b0:63:a6:ed:7b:47:fd:45:55:30:a4:ee:9a:
#         d4:e6:e2:87:ef:98:c9:32:82:11:29:22:bc:00:0a:31:5e:2d:
#         0f:c0:8e:e9:6b:b2:8f:2e:06:d8:d1:91:c7:c6:12:f4:4c:fd:
#         30:17:c3:c1:da:38:5b:e3:a9:ea:e6:a1:ba:79:ef:73:d8:b6:
#         53:57:2d:f6:d0:e1:d7:48

[p11-kit-object-v1]
label: "Swedish Government Root Authority v2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swedish Government Root Authority v2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            54:12:15:9f:ab:8a:75:93:44:94:ca:77:40:56:2e:ef
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=SE, O=Swedish Social Insurance Agency, CN=Swedish Government Root Authority v2
#        Validity
#            Not Before: May  5 11:15:23 2015 GMT
#            Not After : May  5 11:24:19 2040 GMT
#        Subject: C=SE, O=Swedish Social Insurance Agency, CN=Swedish Government Root Authority v2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:ae:b5:43:bc:42:45:4b:35:63:3f:02:4b:c5:
#                    ff:db:36:d7:27:c5:c2:ae:45:66:a3:71:87:16:4d:
#                    89:4f:61:94:e0:56:46:b8:d0:44:13:e6:73:90:f0:
#                    61:78:41:8a:e0:1a:7e:37:ac:02:29:be:e8:ff:02:
#                    26:c6:1a:7c:0a:b1:8f:64:29:a2:da:07:8a:d5:24:
#                    85:68:19:92:32:df:9f:29:60:58:6d:2a:85:80:11:
#                    36:c9:b6:c2:d3:9e:84:0c:ba:51:11:cc:54:e9:ab:
#                    06:30:12:8f:20:77:05:c0:c6:8d:9a:9b:59:c8:b6:
#                    85:e8:70:07:02:b1:1e:ff:d7:69:cf:16:46:8b:61:
#                    2f:42:cd:52:a6:d8:0e:7a:2f:87:2d:c6:2f:3c:22:
#                    43:b1:93:7e:c3:16:76:d9:cc:d7:8b:ec:11:1b:d0:
#                    c9:71:14:c2:89:49:7e:f1:a4:10:aa:35:3c:a8:1b:
#                    bb:ff:ec:32:40:e5:bd:2a:f3:a6:01:13:c8:8c:97:
#                    19:90:ce:63:f9:b0:6b:7d:f7:f9:8a:ce:6e:e0:85:
#                    e7:db:94:d5:7a:20:25:a0:35:f0:a9:f7:af:5a:28:
#                    5a:0c:c8:f3:74:39:8b:31:3b:22:cc:49:25:c9:6f:
#                    b8:5c:7a:2e:2c:96:e3:2f:a3:3e:ca:79:77:69:91:
#                    5a:f8:f0:c5:53:37:4e:53:6d:49:27:56:62:ca:e5:
#                    f9:73:60:a9:17:3b:5b:a2:25:af:2d:7b:c9:b7:db:
#                    cf:19:11:3a:33:71:39:59:5a:03:e9:e7:2c:0c:ff:
#                    6d:9c:72:63:63:80:05:58:53:86:dc:28:75:16:c2:
#                    e5:f0:13:59:a1:81:ff:05:0c:99:a8:b6:3c:6c:2e:
#                    c5:0e:00:98:81:e9:83:77:66:43:3b:5a:8e:85:45:
#                    4c:b2:cf:b9:3d:e4:9c:36:93:40:7a:53:15:29:d4:
#                    11:90:ba:a1:60:8a:9d:ab:f4:4a:4a:6a:dd:87:aa:
#                    c1:ed:05:da:9e:5b:56:e1:88:4f:2a:6b:95:28:86:
#                    66:50:a1:ef:da:4a:b2:90:0a:36:37:49:85:97:42:
#                    78:07:67:e6:9b:20:a1:0c:6c:c9:cf:cf:fe:77:95:
#                    84:5a:7a:3b:17:b0:ef:4c:f7:2d:91:aa:cf:19:6f:
#                    c6:f9:12:28:e7:1e:0a:a6:96:cd:21:b0:03:62:50:
#                    83:06:20:e6:e8:de:df:43:16:16:b9:81:a0:f0:81:
#                    34:5b:cb:c1:89:f6:f3:e8:22:b8:ce:b8:52:3e:51:
#                    1e:b1:05:b8:b7:03:2b:0b:ac:74:75:53:24:e1:76:
#                    b8:4f:25:76:5d:ef:d1:9a:f3:6e:4a:b8:7c:4b:f8:
#                    8a:c0:19
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:1
#            X509v3 Subject Key Identifier: 
#                63:6B:42:60:53:57:11:BB:C8:24:89:25:02:66:44:74:A1:0D:25:6E
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: X509v3 Any Policy
#
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, E-mail Protection, 1.3.6.1.4.1.311.10.3.12, Code Signing, Time Stamping
#    Signature Algorithm: sha256WithRSAEncryption
#         23:2e:aa:85:97:4b:a4:5c:10:af:da:f8:3d:bd:93:58:2f:78:
#         fb:19:77:03:39:16:47:49:72:55:cc:87:e8:bd:a4:7f:d2:ab:
#         24:ac:e7:d4:50:ee:9d:d8:83:c6:99:20:fb:16:2f:88:c6:17:
#         37:ca:8b:1e:ab:d0:e2:6c:07:58:b8:64:91:a1:10:a1:69:37:
#         75:5e:fe:da:73:14:e6:8a:6b:be:c2:60:21:2f:c0:f9:a3:04:
#         48:36:5b:37:be:da:6c:fd:e9:96:8e:9e:f1:53:7c:8f:65:44:
#         a7:55:7d:0b:94:4e:54:f6:ff:32:bd:2f:7d:9c:a5:5e:42:c4:
#         4c:29:e3:10:64:2f:e6:cf:5a:3b:34:55:28:61:d1:27:12:bb:
#         6e:54:9b:81:58:ac:d5:5e:9d:57:03:a0:4d:d1:ff:37:74:a6:
#         8d:f3:f9:95:fd:2a:89:75:7a:79:37:fd:26:79:2f:27:73:7f:
#         a9:19:20:e5:d0:5f:98:e8:96:05:8f:98:79:e9:79:10:41:29:
#         01:43:f5:69:37:cc:50:10:68:b5:d8:44:4e:0e:f2:99:e3:27:
#         2c:6a:8e:5f:bb:7d:bb:6b:71:4b:06:8a:dd:2a:d8:0a:3f:5b:
#         c8:72:2e:58:61:0a:0f:81:68:1e:47:c7:e9:2d:ba:ef:8d:dc:
#         0e:a3:23:c3:b2:2d:b5:47:b1:8b:b4:3e:27:48:e7:dc:08:62:
#         0c:54:fe:43:d7:95:4a:bf:07:2f:4a:40:7e:06:a5:51:87:26:
#         89:05:dd:3c:ca:4f:fe:1c:27:e9:db:88:1e:c0:b2:fe:e3:ef:
#         1f:7e:b1:e8:59:95:a0:4f:ab:0a:89:00:e0:73:b2:e7:1c:c1:
#         17:50:80:87:4c:d2:43:19:59:95:d2:5b:14:5b:0a:5b:c0:7c:
#         89:71:7a:b5:0a:c0:8a:45:2f:ee:c4:c0:fe:54:2d:e7:95:24:
#         77:05:2e:ee:74:c6:a0:90:b1:73:dc:42:d6:a0:75:c9:58:59:
#         05:a2:de:11:bf:59:e9:0d:a7:26:c2:6e:c0:46:8a:c6:1e:d3:
#         f5:ea:0f:7d:3d:72:cd:19:95:4c:ba:e0:68:97:8d:58:c0:6a:
#         ef:79:f7:b2:68:6a:b8:72:36:c3:24:0c:e8:32:ed:bd:f1:9f:
#         c8:ef:de:75:d2:db:76:a9:94:27:38:f4:01:61:bf:66:38:8f:
#         6a:3d:dc:00:5b:b3:fc:44:df:03:4b:f9:f1:76:25:35:ff:52:
#         1f:08:1d:d0:a5:14:e9:8b:06:2b:78:83:2c:71:5c:4f:91:87:
#         63:d6:0c:0e:05:88:3c:94:a0:b1:5a:54:16:df:dd:51:c3:a8:
#         36:2e:2c:82:7c:b9:9a:b0

[p11-kit-object-v1]
label: "Swedish Government Root Authority v3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swedish Government Root Authority v3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFqjCCA5KgAwIBAgIQMmmiv0BrjbRHg2Q8iw3JQzANBgkqhkiG9w0BAQsFADBm
MQswCQYDVQQGEwJTRTEoMCYGA1UEChMfU3dlZGlzaCBTb2NpYWwgSW5zdXJhbmNl
IEFnZW5jeTEtMCsGA1UEAxMkU3dlZGlzaCBHb3Zlcm5tZW50IFJvb3QgQXV0aG9y
aXR5IHYzMB4XDTE1MDkyOTExMzIzMloXDTQwMDkyOTExNDIwOVowZjELMAkGA1UE
BhMCU0UxKDAmBgNVBAoTH1N3ZWRpc2ggU29jaWFsIEluc3VyYW5jZSBBZ2VuY3kx
LTArBgNVBAMTJFN3ZWRpc2ggR292ZXJubWVudCBSb290IEF1dGhvcml0eSB2MzCC
AiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBALoeomkbaE9cj7r0I8deZgV4
hTZYo6J/Z++iDBaSpEqL4KCSh1U3C8TRxNBAQ5cyUE/slUe3P69DBeWElwnvVlTn
QzNH/a3xOpuYpOHkUaO5rIwL7iUGCfLTujVnYYzCvSbL12PM14Mz2Uzi7/kbn6jL
DXYBLXLJIrtokd6QDzs9tEK9GX2fhFw8fkI3hrFgwkiHUk5cV/7Okq7KPla3s56V
mpT4L6HQoi7CVFpszMzWrUtH0C6HgjOoe1A5pyossVsnCp+t9RTr/I1TsnMrVCP0
jJeZl/s13My1+jMUJo11pySm6BQuLaaAKIOaP7jKO8f1GOD97I55+6pCbEpLFn7z
ggNuuucRBqWfhCvSYG3pRu5BWpa5FP0cP4YS8VQmJv1ngC/lqC0oLkO3ZMLv5Ld+
ltyEiyfZdj2YgVMU3EJFoVRn+doYZpAKtEeQPAHlK6Nm72/7MoPxM30yIWylRRU/
L/NVkUiTnyXPLTw5O1INGq/H36tvgNiQy55xcmpCaZPqkgA9SQTZo1y6RfsCEP+t
aXRSpThjmmaIBLIRuhOqOdWDX+1lW1PInVyyhaB4cDVNXCQQpPYxKpJVQdnzF2yZ
E1j63SjQbBO9W4eNk4OtWClWFbRYJ0qbEWygpmdFOs7Q2M7/kDPsWjFND1IS+632
YV/kL28NZjDloE/Pz/1fAgMBAAGjVDBSMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMB
Af8EBTADAQH/MB0GA1UdDgQWBBScvAHnq2Q19TGbjbX7F5mIAsub8jAQBgkrBgEE
AYI3FQEEAwIBADANBgkqhkiG9w0BAQsFAAOCAgEAh6tq5OdrJFI99iKDT1MERTKc
YVoWXJxEtaPRltBA/s9mFV5+QAAgFf2nqmTap2FmaMLdUnEloGq53cDNzoYI1Dw1
ES999G/S2gyXA2WXg7Q+OssJdI3rBcp66YCwt1EtIpPjmhnu7ZcIIYOtxwqRX8TK
216vuOeMujpJ0lUDNRkZUErihqe7eD2V/bEfRvJPZvL7v4VktgojGJIJnklFMbbW
FFee/IlFdH85zMBqaMjPR9DhHsfTLy35LCQ7/Gq6lBPezHLyoh3LH5/Vg3cmXn6b
oK9pn3jbpcFucVxIQk4r2Hi41Q+lP2zLj5DNR9iQGUmF1mz84quqQr/LE5e/aUR1
YzUt2qDH/WH3ykE9VJz0NsDkbiFIn11xYoHT8iXmWYxZQSZIp+PrZ2rT7DS3mPfM
yqM2BpXnyDBZ9//JodHkebzfEx8u2bN10QS3IwkhzB0hHCecDiv6wYcYyfr5SYOM
Ehb7xRLOOw9C+vAFZX6ox+tSSvmYXnGjrBLHKHEaWnXPh8ofNygcFJ2QUG/Gv0rM
xyXPMd1bkU52qBHVdmbZv4BzYrDsw/5EvM1ZEwsMLdihzKpiTVRFXqRSo4xXPBQx
k1TOpRZUXi1Cs+5lqbadP2zOYdlWy97qoFbebYYD+reBaozS2PPXtsCsKYRZIw6b
l2rmoM7VKlQY71CYeSA=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            32:69:a2:bf:40:6b:8d:b4:47:83:64:3c:8b:0d:c9:43
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=SE, O=Swedish Social Insurance Agency, CN=Swedish Government Root Authority v3
#        Validity
#            Not Before: Sep 29 11:32:32 2015 GMT
#            Not After : Sep 29 11:42:09 2040 GMT
#        Subject: C=SE, O=Swedish Social Insurance Agency, CN=Swedish Government Root Authority v3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ba:1e:a2:69:1b:68:4f:5c:8f:ba:f4:23:c7:5e:
#                    66:05:78:85:36:58:a3:a2:7f:67:ef:a2:0c:16:92:
#                    a4:4a:8b:e0:a0:92:87:55:37:0b:c4:d1:c4:d0:40:
#                    43:97:32:50:4f:ec:95:47:b7:3f:af:43:05:e5:84:
#                    97:09:ef:56:54:e7:43:33:47:fd:ad:f1:3a:9b:98:
#                    a4:e1:e4:51:a3:b9:ac:8c:0b:ee:25:06:09:f2:d3:
#                    ba:35:67:61:8c:c2:bd:26:cb:d7:63:cc:d7:83:33:
#                    d9:4c:e2:ef:f9:1b:9f:a8:cb:0d:76:01:2d:72:c9:
#                    22:bb:68:91:de:90:0f:3b:3d:b4:42:bd:19:7d:9f:
#                    84:5c:3c:7e:42:37:86:b1:60:c2:48:87:52:4e:5c:
#                    57:fe:ce:92:ae:ca:3e:56:b7:b3:9e:95:9a:94:f8:
#                    2f:a1:d0:a2:2e:c2:54:5a:6c:cc:cc:d6:ad:4b:47:
#                    d0:2e:87:82:33:a8:7b:50:39:a7:2a:2c:b1:5b:27:
#                    0a:9f:ad:f5:14:eb:fc:8d:53:b2:73:2b:54:23:f4:
#                    8c:97:99:97:fb:35:dc:cc:b5:fa:33:14:26:8d:75:
#                    a7:24:a6:e8:14:2e:2d:a6:80:28:83:9a:3f:b8:ca:
#                    3b:c7:f5:18:e0:fd:ec:8e:79:fb:aa:42:6c:4a:4b:
#                    16:7e:f3:82:03:6e:ba:e7:11:06:a5:9f:84:2b:d2:
#                    60:6d:e9:46:ee:41:5a:96:b9:14:fd:1c:3f:86:12:
#                    f1:54:26:26:fd:67:80:2f:e5:a8:2d:28:2e:43:b7:
#                    64:c2:ef:e4:b7:7e:96:dc:84:8b:27:d9:76:3d:98:
#                    81:53:14:dc:42:45:a1:54:67:f9:da:18:66:90:0a:
#                    b4:47:90:3c:01:e5:2b:a3:66:ef:6f:fb:32:83:f1:
#                    33:7d:32:21:6c:a5:45:15:3f:2f:f3:55:91:48:93:
#                    9f:25:cf:2d:3c:39:3b:52:0d:1a:af:c7:df:ab:6f:
#                    80:d8:90:cb:9e:71:72:6a:42:69:93:ea:92:00:3d:
#                    49:04:d9:a3:5c:ba:45:fb:02:10:ff:ad:69:74:52:
#                    a5:38:63:9a:66:88:04:b2:11:ba:13:aa:39:d5:83:
#                    5f:ed:65:5b:53:c8:9d:5c:b2:85:a0:78:70:35:4d:
#                    5c:24:10:a4:f6:31:2a:92:55:41:d9:f3:17:6c:99:
#                    13:58:fa:dd:28:d0:6c:13:bd:5b:87:8d:93:83:ad:
#                    58:29:56:15:b4:58:27:4a:9b:11:6c:a0:a6:67:45:
#                    3a:ce:d0:d8:ce:ff:90:33:ec:5a:31:4d:0f:52:12:
#                    fb:ad:f6:61:5f:e4:2f:6f:0d:66:30:e5:a0:4f:cf:
#                    cf:fd:5f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                9C:BC:01:E7:AB:64:35:F5:31:9B:8D:B5:FB:17:99:88:02:CB:9B:F2
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha256WithRSAEncryption
#         87:ab:6a:e4:e7:6b:24:52:3d:f6:22:83:4f:53:04:45:32:9c:
#         61:5a:16:5c:9c:44:b5:a3:d1:96:d0:40:fe:cf:66:15:5e:7e:
#         40:00:20:15:fd:a7:aa:64:da:a7:61:66:68:c2:dd:52:71:25:
#         a0:6a:b9:dd:c0:cd:ce:86:08:d4:3c:35:11:2f:7d:f4:6f:d2:
#         da:0c:97:03:65:97:83:b4:3e:3a:cb:09:74:8d:eb:05:ca:7a:
#         e9:80:b0:b7:51:2d:22:93:e3:9a:19:ee:ed:97:08:21:83:ad:
#         c7:0a:91:5f:c4:ca:db:5e:af:b8:e7:8c:ba:3a:49:d2:55:03:
#         35:19:19:50:4a:e2:86:a7:bb:78:3d:95:fd:b1:1f:46:f2:4f:
#         66:f2:fb:bf:85:64:b6:0a:23:18:92:09:9e:49:45:31:b6:d6:
#         14:57:9e:fc:89:45:74:7f:39:cc:c0:6a:68:c8:cf:47:d0:e1:
#         1e:c7:d3:2f:2d:f9:2c:24:3b:fc:6a:ba:94:13:de:cc:72:f2:
#         a2:1d:cb:1f:9f:d5:83:77:26:5e:7e:9b:a0:af:69:9f:78:db:
#         a5:c1:6e:71:5c:48:42:4e:2b:d8:78:b8:d5:0f:a5:3f:6c:cb:
#         8f:90:cd:47:d8:90:19:49:85:d6:6c:fc:e2:ab:aa:42:bf:cb:
#         13:97:bf:69:44:75:63:35:2d:da:a0:c7:fd:61:f7:ca:41:3d:
#         54:9c:f4:36:c0:e4:6e:21:48:9f:5d:71:62:81:d3:f2:25:e6:
#         59:8c:59:41:26:48:a7:e3:eb:67:6a:d3:ec:34:b7:98:f7:cc:
#         ca:a3:36:06:95:e7:c8:30:59:f7:ff:c9:a1:d1:e4:79:bc:df:
#         13:1f:2e:d9:b3:75:d1:04:b7:23:09:21:cc:1d:21:1c:27:9c:
#         0e:2b:fa:c1:87:18:c9:fa:f9:49:83:8c:12:16:fb:c5:12:ce:
#         3b:0f:42:fa:f0:05:65:7e:a8:c7:eb:52:4a:f9:98:5e:71:a3:
#         ac:12:c7:28:71:1a:5a:75:cf:87:ca:1f:37:28:1c:14:9d:90:
#         50:6f:c6:bf:4a:cc:c7:25:cf:31:dd:5b:91:4e:76:a8:11:d5:
#         76:66:d9:bf:80:73:62:b0:ec:c3:fe:44:bc:cd:59:13:0b:0c:
#         2d:d8:a1:cc:aa:62:4d:54:45:5e:a4:52:a3:8c:57:3c:14:31:
#         93:54:ce:a5:16:54:5e:2d:42:b3:ee:65:a9:b6:9d:3f:6c:ce:
#         61:d9:56:cb:de:ea:a0:56:de:6d:86:03:fa:b7:81:6a:8c:d2:
#         d8:f3:d7:b6:c0:ac:29:84:59:23:0e:9b:97:6a:e6:a0:ce:d5:
#         2a:54:18:ef:50:98:79:20

[p11-kit-object-v1]
label: "SwissSign Gold CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Gold CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFujCCA6KgAwIBAgIJALtAHEP1Xk+wMA0GCSqGSIb3DQEBBQUAMEUxCzAJBgNV
BAYTAkNIMRUwEwYDVQQKEwxTd2lzc1NpZ24gQUcxHzAdBgNVBAMTFlN3aXNzU2ln
biBHb2xkIENBIC0gRzIwHhcNMDYxMDI1MDgzMDM1WhcNMzYxMDI1MDgzMDM1WjBF
MQswCQYDVQQGEwJDSDEVMBMGA1UEChMMU3dpc3NTaWduIEFHMR8wHQYDVQQDExZT
d2lzc1NpZ24gR29sZCBDQSAtIEcyMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIIC
CgKCAgEAr+TufoskDhJuqVAtFkQ7kpJcyrhdhJJCEyq8ZVeCQD5XJM1QiyUqt2/8
76LQwB8CJEoTlo8jE+YoWACjR8cGp4QjK7u9lit/VcyLwVcfDmJlD909Vopz2q5+
bbqBHH5CjCA12UNNhPqE21Is8w4ndwtrvxEvcnifLtg+5hg3Wipy+dpikJKVyh+c
6bM8K8vzARO/Ws/BtQpgvd21mWRTuKCWs2/iJneRjOBiEAKfNA+k1ZIzUd6+jbqE
emA8atufK+ze3gE/bk3lUIbLtK/tREDFylqM2tIrfKjuvqblCqoOpd8FUrdVxyJd
MmqXl2MT28nbeTZ7hTpKxVKJ+STnnXepgv9VHKVxaSvRAiTysybUa9oEVeXBCsdt
MDeQKuSeFDNeFhdVxVu1yzSJkvGdJo+hB9TGsnhQ2wwMC3wLjEHXuendjIj3o02y
MszYF9rNt85mndT9Xv+9lz4pded+p2JYryU0pUHHPbwNUMoDAw8IWh+Vc3hiv69y
FGkOpeUDDniOJihC8AcLYiAQZzlG+qkDzAQ4embvIIO1jEpWjpEA/I5cgt6IoMPi
aG59je883WX0XaxR7ySArqpWl2/5rX3aYT+YdzylkbYcjCbaZaIJbcHiVOO5ykxM
gI93e2CaHt+28kgeDrpOVG2Y4OGiGqJ3UM/EY5LsRxmd6+ZrzsECAwEAAaOBrDCB
qTAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUWyV7
lqRlUX64OfPAeGZe6Drn8O4wHwYDVR0jBBgwFoAUWyV7lqRlUX64OfPAeGZe6Drn
8O4wRgYDVR0gBD8wPTA7BglghXQBWQECAQEwLjAsBggrBgEFBQcCARYgaHR0cDov
L3JlcG9zaXRvcnkuc3dpc3NzaWduLmNvbS8wDQYJKoZIhvcNAQEFBQADggIBACe6
45R88a7A3hfm5djV9VSwg/S7zV4Fe0+fdWavPOhWfvxyeDgD2StiGwC5+OlgzczO
UYrHUDFu4Up+GC9pWbY9ZIEr44OE5iKHjn3g7gKZYbge9LgriBIWhMIxkziWMaa5
O1M/wySTVltpkuzFwbs4AOPsF6m43Md8AYOfMke6UiI0HTJ6CVanfCU2qT1L2sCC
bwq7EsiHSycR+R4tx5M/nttfJmtS2S6K8RTGRI0Vqbe/vd6mGu6uLftIdxf+u+yv
GPUqUfA5hJeVbG4bwyvEdGB5JbAKJ9/fXtI5z0V9QkvfsywexcZdylU6oJxpmo/a
77KwPJ+HbBIrZXAVUjEaJM9vMSNQH4xPjyPDdEFjHFWoFN0+4FFQz/EbMFYOkrCC
hdiDyyJkvC24JdVUorgG6q2SpCSgwYa1ShNqR88uC1aVVMvOmttqtKay20EIhid3
92qgQmwLOM7XdVAyksLfKzAiSNDVQTglXaTpXZ/GlHXQRf0wl0OPkKsKx4ZzYEpp
Ld6leNcG2mqeSz53OiATIgHQv2ieY2BrNU0LbbqhPcCT4H8js1WtciVORvnSFu+w
ZMEBnunKoGqYDs/YYPIvSbjkQuE4NRb0yG5P94FW6LqjviOvrv1vA+ACOzB2+htt
Qc8Bsem4yWb02ybzOqR08kkkW8mw0FfB+j564ZfJ
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            bb:40:1c:43:f5:5e:4f:b0
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CH, O=SwissSign AG, CN=SwissSign Gold CA - G2
#        Validity
#            Not Before: Oct 25 08:30:35 2006 GMT
#            Not After : Oct 25 08:30:35 2036 GMT
#        Subject: C=CH, O=SwissSign AG, CN=SwissSign Gold CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:af:e4:ee:7e:8b:24:0e:12:6e:a9:50:2d:16:44:
#                    3b:92:92:5c:ca:b8:5d:84:92:42:13:2a:bc:65:57:
#                    82:40:3e:57:24:cd:50:8b:25:2a:b7:6f:fc:ef:a2:
#                    d0:c0:1f:02:24:4a:13:96:8f:23:13:e6:28:58:00:
#                    a3:47:c7:06:a7:84:23:2b:bb:bd:96:2b:7f:55:cc:
#                    8b:c1:57:1f:0e:62:65:0f:dd:3d:56:8a:73:da:ae:
#                    7e:6d:ba:81:1c:7e:42:8c:20:35:d9:43:4d:84:fa:
#                    84:db:52:2c:f3:0e:27:77:0b:6b:bf:11:2f:72:78:
#                    9f:2e:d8:3e:e6:18:37:5a:2a:72:f9:da:62:90:92:
#                    95:ca:1f:9c:e9:b3:3c:2b:cb:f3:01:13:bf:5a:cf:
#                    c1:b5:0a:60:bd:dd:b5:99:64:53:b8:a0:96:b3:6f:
#                    e2:26:77:91:8c:e0:62:10:02:9f:34:0f:a4:d5:92:
#                    33:51:de:be:8d:ba:84:7a:60:3c:6a:db:9f:2b:ec:
#                    de:de:01:3f:6e:4d:e5:50:86:cb:b4:af:ed:44:40:
#                    c5:ca:5a:8c:da:d2:2b:7c:a8:ee:be:a6:e5:0a:aa:
#                    0e:a5:df:05:52:b7:55:c7:22:5d:32:6a:97:97:63:
#                    13:db:c9:db:79:36:7b:85:3a:4a:c5:52:89:f9:24:
#                    e7:9d:77:a9:82:ff:55:1c:a5:71:69:2b:d1:02:24:
#                    f2:b3:26:d4:6b:da:04:55:e5:c1:0a:c7:6d:30:37:
#                    90:2a:e4:9e:14:33:5e:16:17:55:c5:5b:b5:cb:34:
#                    89:92:f1:9d:26:8f:a1:07:d4:c6:b2:78:50:db:0c:
#                    0c:0b:7c:0b:8c:41:d7:b9:e9:dd:8c:88:f7:a3:4d:
#                    b2:32:cc:d8:17:da:cd:b7:ce:66:9d:d4:fd:5e:ff:
#                    bd:97:3e:29:75:e7:7e:a7:62:58:af:25:34:a5:41:
#                    c7:3d:bc:0d:50:ca:03:03:0f:08:5a:1f:95:73:78:
#                    62:bf:af:72:14:69:0e:a5:e5:03:0e:78:8e:26:28:
#                    42:f0:07:0b:62:20:10:67:39:46:fa:a9:03:cc:04:
#                    38:7a:66:ef:20:83:b5:8c:4a:56:8e:91:00:fc:8e:
#                    5c:82:de:88:a0:c3:e2:68:6e:7d:8d:ef:3c:dd:65:
#                    f4:5d:ac:51:ef:24:80:ae:aa:56:97:6f:f9:ad:7d:
#                    da:61:3f:98:77:3c:a5:91:b6:1c:8c:26:da:65:a2:
#                    09:6d:c1:e2:54:e3:b9:ca:4c:4c:80:8f:77:7b:60:
#                    9a:1e:df:b6:f2:48:1e:0e:ba:4e:54:6d:98:e0:e1:
#                    a2:1a:a2:77:50:cf:c4:63:92:ec:47:19:9d:eb:e6:
#                    6b:ce:c1
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                5B:25:7B:96:A4:65:51:7E:B8:39:F3:C0:78:66:5E:E8:3A:E7:F0:EE
#            X509v3 Authority Key Identifier: 
#                keyid:5B:25:7B:96:A4:65:51:7E:B8:39:F3:C0:78:66:5E:E8:3A:E7:F0:EE
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.89.1.2.1.1
#                  CPS: http://repository.swisssign.com/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         27:ba:e3:94:7c:f1:ae:c0:de:17:e6:e5:d8:d5:f5:54:b0:83:
#         f4:bb:cd:5e:05:7b:4f:9f:75:66:af:3c:e8:56:7e:fc:72:78:
#         38:03:d9:2b:62:1b:00:b9:f8:e9:60:cd:cc:ce:51:8a:c7:50:
#         31:6e:e1:4a:7e:18:2f:69:59:b6:3d:64:81:2b:e3:83:84:e6:
#         22:87:8e:7d:e0:ee:02:99:61:b8:1e:f4:b8:2b:88:12:16:84:
#         c2:31:93:38:96:31:a6:b9:3b:53:3f:c3:24:93:56:5b:69:92:
#         ec:c5:c1:bb:38:00:e3:ec:17:a9:b8:dc:c7:7c:01:83:9f:32:
#         47:ba:52:22:34:1d:32:7a:09:56:a7:7c:25:36:a9:3d:4b:da:
#         c0:82:6f:0a:bb:12:c8:87:4b:27:11:f9:1e:2d:c7:93:3f:9e:
#         db:5f:26:6b:52:d9:2e:8a:f1:14:c6:44:8d:15:a9:b7:bf:bd:
#         de:a6:1a:ee:ae:2d:fb:48:77:17:fe:bb:ec:af:18:f5:2a:51:
#         f0:39:84:97:95:6c:6e:1b:c3:2b:c4:74:60:79:25:b0:0a:27:
#         df:df:5e:d2:39:cf:45:7d:42:4b:df:b3:2c:1e:c5:c6:5d:ca:
#         55:3a:a0:9c:69:9a:8f:da:ef:b2:b0:3c:9f:87:6c:12:2b:65:
#         70:15:52:31:1a:24:cf:6f:31:23:50:1f:8c:4f:8f:23:c3:74:
#         41:63:1c:55:a8:14:dd:3e:e0:51:50:cf:f1:1b:30:56:0e:92:
#         b0:82:85:d8:83:cb:22:64:bc:2d:b8:25:d5:54:a2:b8:06:ea:
#         ad:92:a4:24:a0:c1:86:b5:4a:13:6a:47:cf:2e:0b:56:95:54:
#         cb:ce:9a:db:6a:b4:a6:b2:db:41:08:86:27:77:f7:6a:a0:42:
#         6c:0b:38:ce:d7:75:50:32:92:c2:df:2b:30:22:48:d0:d5:41:
#         38:25:5d:a4:e9:5d:9f:c6:94:75:d0:45:fd:30:97:43:8f:90:
#         ab:0a:c7:86:73:60:4a:69:2d:de:a5:78:d7:06:da:6a:9e:4b:
#         3e:77:3a:20:13:22:01:d0:bf:68:9e:63:60:6b:35:4d:0b:6d:
#         ba:a1:3d:c0:93:e0:7f:23:b3:55:ad:72:25:4e:46:f9:d2:16:
#         ef:b0:64:c1:01:9e:e9:ca:a0:6a:98:0e:cf:d8:60:f2:2f:49:
#         b8:e4:42:e1:38:35:16:f4:c8:6e:4f:f7:81:56:e8:ba:a3:be:
#         23:af:ae:fd:6f:03:e0:02:3b:30:76:fa:1b:6d:41:cf:01:b1:
#         e9:b8:c9:66:f4:db:26:f3:3a:a4:74:f2:49:24:5b:c9:b0:d0:
#         57:c1:fa:3e:7a:e1:97:c9

[p11-kit-object-v1]
label: "SwissSign Gold Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Gold Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            de:c4:f2:44:f3:1d:a6:fc
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=SwissSign AG, CN=SwissSign Gold Root CA - G3
#        Validity
#            Not Before: Aug  4 13:31:47 2009 GMT
#            Not After : Aug  4 13:31:47 2037 GMT
#        Subject: C=CH, O=SwissSign AG, CN=SwissSign Gold Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c3:e8:9f:c8:65:5a:9d:67:1b:c1:45:97:b4:b4:
#                    87:43:5b:61:60:80:9e:f2:7f:5e:f9:67:44:dd:44:
#                    fa:ab:b5:ab:77:ff:2a:19:4c:ce:6f:c4:8f:41:9f:
#                    e0:e2:cd:72:e0:d1:d4:52:61:41:09:0a:bf:0a:70:
#                    fb:e0:83:69:61:29:ca:db:22:9a:5b:a5:e6:dd:17:
#                    95:b0:6f:84:8e:3a:3e:64:5a:41:fb:1b:58:fc:fd:
#                    2b:3e:b2:a4:e6:ac:c9:82:bc:ce:f6:95:f8:97:77:
#                    ed:26:f6:58:ae:9e:27:e2:0f:83:ec:c5:36:58:c8:
#                    7b:cf:d5:87:a1:a9:87:1a:13:67:61:01:6d:a6:69:
#                    9c:e2:90:f1:2b:68:65:f3:e8:b0:7c:fc:82:3d:de:
#                    ad:d8:0a:00:09:44:79:13:9c:f0:fe:6e:75:7b:c2:
#                    bc:b3:59:01:0b:7c:c5:d5:2d:f0:bf:ff:6d:57:d2:
#                    49:81:eb:b4:b3:50:ac:5b:f9:0b:15:15:8c:69:ff:
#                    a3:39:01:ed:fc:dc:dc:27:97:8e:7b:8b:d5:6a:a6:
#                    d6:e0:1d:5f:cd:01:91:e6:f5:22:98:ba:2e:09:18:
#                    38:6f:13:a8:81:d2:fb:21:37:e7:2d:b4:62:e7:81:
#                    90:b0:c6:79:59:b7:67:75:fe:be:8f:3b:fa:36:ec:
#                    af:ad:d2:4f:74:36:01:e5:57:ab:23:04:cc:4a:5e:
#                    97:cf:7e:c6:ef:8c:cc:95:23:69:8d:cb:38:c7:19:
#                    f6:d6:8a:00:14:1e:34:3d:6f:da:0c:0b:c3:ba:97:
#                    fc:11:4b:52:61:3e:bf:33:67:53:10:bf:78:1b:09:
#                    c2:47:ba:1e:af:58:f5:75:81:7f:bd:56:f1:eb:56:
#                    d7:d9:69:0c:07:e9:37:31:b0:12:1c:32:ef:56:d9:
#                    be:7a:2b:7c:bd:d3:3d:bc:6a:33:4d:3a:3c:50:10:
#                    87:27:c7:7a:0a:67:53:db:7f:80:9b:e8:9e:23:fa:
#                    f9:08:3a:8b:a1:8e:34:5a:48:33:5f:64:d3:97:86:
#                    07:19:7d:88:94:ce:2a:7c:c5:6a:df:af:bc:a9:9f:
#                    cd:3a:a6:ba:bb:54:f9:7f:8f:df:cf:0e:5a:c4:ad:
#                    9a:bc:b3:3a:77:73:83:4c:93:3c:90:68:b5:7c:50:
#                    95:11:c8:82:5e:94:71:d0:41:18:fb:c9:c6:65:ec:
#                    ce:89:b6:ce:22:b3:11:5b:3f:e0:9d:3e:1b:18:68:
#                    0d:aa:03:a1:67:59:bf:6b:9d:bc:f8:f2:65:2f:9a:
#                    41:3a:45:d8:5e:d0:36:6c:6f:3b:1e:63:b4:8e:98:
#                    4c:13:db:21:0e:9f:7b:ed:ea:a0:aa:71:c3:eb:a3:
#                    a0:d2:25
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                5C:97:06:46:34:AB:DF:30:C5:7C:C5:0D:55:71:66:30:B5:60:8F:9E
#            X509v3 Authority Key Identifier: 
#                keyid:5C:97:06:46:34:AB:DF:30:C5:7C:C5:0D:55:71:66:30:B5:60:8F:9E
#
#    Signature Algorithm: sha256WithRSAEncryption
#         77:4b:4d:de:ea:85:4a:ab:2c:27:d6:45:c7:f1:5f:20:c1:5b:
#         60:ed:07:cb:a2:33:dc:36:cf:c7:94:f1:06:c7:d5:da:cf:cd:
#         ad:84:3e:ff:12:48:7f:41:e8:a5:66:57:30:c4:1d:e4:a7:1a:
#         2f:2d:42:c1:ef:46:73:b2:d5:f5:5a:fd:0e:7a:6b:d2:c8:31:
#         a3:0d:48:96:57:65:63:55:18:c0:fc:e4:8a:cc:98:86:5b:ab:
#         0c:8a:27:37:fa:23:68:59:5c:26:d7:a1:c1:c2:b9:4e:2c:ff:
#         29:5e:e6:94:0b:be:cd:72:4f:95:e8:8f:f6:f7:b8:3e:5e:ce:
#         cf:9e:11:c9:ac:03:29:48:8a:a9:b6:a6:34:b9:ac:40:ff:c4:
#         b6:73:37:b1:c7:7f:a9:51:db:4b:2a:47:5f:40:24:07:88:06:
#         b7:24:b3:fb:7f:f7:b0:8b:33:fa:bf:23:75:a3:5c:fe:aa:65:
#         1a:c2:be:f1:7d:81:77:03:81:b1:8d:d7:95:0d:7a:3c:42:98:
#         b7:8f:a9:7d:50:e1:df:52:06:9a:a0:52:54:78:83:07:61:52:
#         09:37:5e:8a:9c:a7:c6:51:d1:5c:63:d1:84:dc:c2:db:d2:fa:
#         5b:18:36:7d:66:bc:d4:28:97:2f:75:96:1c:84:07:ac:8b:8e:
#         53:11:be:24:21:aa:67:f2:c1:ad:88:9c:d3:b0:78:67:78:f5:
#         d3:58:03:20:0a:5d:20:f1:b5:e7:65:cc:0e:20:e3:d5:df:e6:
#         2f:19:2b:85:68:c1:04:26:cf:8f:ed:05:53:a1:dd:07:0e:eb:
#         41:26:c7:b4:a9:2c:5b:e3:69:3d:66:c0:62:1b:c0:aa:86:c0:
#         37:c3:31:04:86:70:39:be:6b:5f:21:40:41:a0:7f:e5:d9:0f:
#         38:4b:70:5f:49:f8:85:b8:2b:2e:aa:1f:93:41:43:f8:fb:b2:
#         74:3c:1f:4b:57:5b:b7:d4:51:a1:92:4a:ce:be:10:a2:ee:d8:
#         14:22:7b:b9:41:bd:8d:e9:88:a9:d1:8f:03:1a:60:ff:3f:87:
#         89:a0:99:27:22:66:b0:3e:68:9e:72:88:51:38:9d:13:3e:45:
#         6d:05:e5:46:b5:73:ed:43:86:b1:14:0a:1e:bc:da:0d:bf:1e:
#         24:5c:66:8f:0e:be:a1:fd:c6:eb:69:bc:43:79:d7:03:76:f9:
#         dc:87:99:b8:98:c4:cd:7f:6d:10:f9:10:be:2c:42:fe:9c:29:
#         4d:83:6b:0a:bd:b5:8e:c4:48:8a:fd:21:07:a6:80:7d:1f:9b:
#         e9:ab:bd:82:61:44:0a:71:27:5f:6d:9b:90:9e:ae:ff:36:24:
#         b3:68:03:d6:95:8c:6b:73

[p11-kit-object-v1]
label: "SwissSign Platinum CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Platinum CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4e:b2:00:67:0c:03:5d:4f
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CH, O=SwissSign AG, CN=SwissSign Platinum CA - G2
#        Validity
#            Not Before: Oct 25 08:36:00 2006 GMT
#            Not After : Oct 25 08:36:00 2036 GMT
#        Subject: C=CH, O=SwissSign AG, CN=SwissSign Platinum CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:ca:df:a2:02:e2:da:f8:fc:07:16:b1:de:60:aa:
#                    de:96:5c:64:1f:c7:2f:7e:cf:67:fa:44:42:d6:76:
#                    63:95:ae:eb:af:72:20:8a:45:47:86:62:78:86:d6:
#                    20:39:26:f4:ae:a3:fd:23:e7:a5:9c:b5:22:21:19:
#                    b7:37:93:22:c0:50:9c:82:7b:d4:d5:04:44:5c:cb:
#                    b4:c2:9f:92:be:24:d8:7b:67:22:e2:69:5f:e5:05:
#                    78:d4:87:d9:71:70:33:25:53:b4:87:3b:29:90:28:
#                    36:9a:55:44:30:68:a4:83:97:7f:0d:1e:9c:76:ff:
#                    15:9d:60:97:00:8d:8a:85:03:ec:80:be:ea:2c:6e:
#                    10:51:92:cc:7e:d5:a3:33:d8:d6:49:de:58:2a:af:
#                    f6:16:eb:4b:7b:90:32:97:b9:ba:9d:58:f1:f8:57:
#                    49:04:1e:a2:5d:06:70:dd:71:db:f9:dd:8b:9a:1b:
#                    8c:cf:3d:a3:4d:ce:cb:7c:f6:bb:9c:a0:fa:09:ce:
#                    23:62:b2:e9:0d:1f:e2:72:28:8f:9f:ac:68:20:7d:
#                    6f:3b:a8:85:31:09:7f:0b:c7:e8:65:e9:e3:78:0e:
#                    09:67:30:8b:34:82:fb:5d:e0:cc:9d:81:6d:62:ee:
#                    08:1e:04:2c:4e:9b:ec:fe:a9:4f:5f:fd:69:78:ef:
#                    09:1f:a1:b4:bf:fa:f3:ef:90:1e:4c:05:8b:1e:ea:
#                    7a:91:7a:c3:d7:e5:fb:30:bc:6c:1b:10:58:98:f7:
#                    1a:5f:d0:29:32:03:13:46:4d:61:6a:85:4c:52:74:
#                    2f:06:1f:7b:11:e2:84:97:c6:99:f3:6d:7f:d7:67:
#                    83:7e:13:68:d8:71:28:5a:d8:ce:dd:e8:10:14:9a:
#                    fe:6d:23:87:6e:8e:5a:70:3c:d5:8d:09:00:a7:aa:
#                    bc:b0:31:37:6d:c8:84:14:1e:5b:bd:45:63:20:6b:
#                    4b:74:8c:bd:db:3a:0e:c1:cf:5a:16:8f:a5:98:f2:
#                    76:89:b2:13:12:3b:0b:77:77:ac:bb:e5:3c:29:4a:
#                    92:72:ca:61:1a:2b:5e:4c:e2:83:74:77:fa:35:48:
#                    7a:85:4d:8d:9a:53:c4:df:78:ca:97:91:48:2b:45:
#                    2b:01:f7:1c:1a:a2:ed:18:ba:0a:bd:83:fa:6f:bc:
#                    8d:57:93:3b:d4:d4:a6:ce:1e:f1:a0:b1:ce:ab:fd:
#                    2b:28:9a:4f:1b:d7:c3:72:db:a4:c4:bf:5d:4c:f5:
#                    dd:7b:96:69:ee:68:80:e6:e7:98:ba:36:b7:fe:6e:
#                    ed:2b:bd:20:f8:65:19:da:55:09:7e:25:dc:fe:61:
#                    62:72:f9:7e:18:02:ef:63:b4:d0:fb:af:e5:3b:63:
#                    8c:67:8f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                50:AF:CC:07:87:15:47:6F:38:C5:B4:65:D1:DE:95:AA:E9:DF:9C:CC
#            X509v3 Authority Key Identifier: 
#                keyid:50:AF:CC:07:87:15:47:6F:38:C5:B4:65:D1:DE:95:AA:E9:DF:9C:CC
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.89.1.1.1.1
#                  CPS: http://repository.swisssign.com/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         08:85:a6:f5:16:0c:fc:44:1a:c1:63:e0:f9:55:46:08:fc:70:
#         1c:42:28:96:8e:b7:c5:c1:41:75:4e:09:71:79:e5:6d:96:ca:
#         4b:a5:88:60:d0:30:74:b8:ca:08:dc:b4:30:9e:40:07:16:6b:
#         65:95:77:01:ae:a4:b7:35:0b:81:da:71:15:a9:74:17:38:7b:
#         58:ca:f9:2f:fb:c0:65:76:8d:5b:01:b9:7d:de:82:3d:64:b8:
#         be:14:74:a3:0a:54:d3:2c:95:18:17:35:f5:51:6b:3f:8f:a2:
#         96:61:39:78:6b:4b:e5:a6:a0:f8:53:df:51:10:93:62:e7:80:
#         2f:e2:d1:e0:bc:8e:36:46:77:33:ec:b8:fb:8e:9a:2c:89:4d:
#         31:11:0f:26:9e:04:bb:b7:04:8d:0b:f2:b9:fc:5a:9d:3b:16:
#         b7:2f:c8:98:ab:fe:8a:50:59:2e:a3:3b:fc:29:5d:8b:c1:4b:
#         c9:e2:8a:13:1d:b1:bf:bb:42:1d:52:dd:4e:d8:14:5e:10:c6:
#         31:07:ef:71:27:f7:1b:39:09:dc:82:ea:8b:b3:95:86:5e:fd:
#         f5:da:5d:31:a6:e0:31:b6:94:e6:44:49:74:c5:16:e5:f7:1f:
#         03:61:28:c5:c8:cb:12:a0:42:4b:f9:6b:88:08:8d:b4:32:18:
#         f3:75:9f:c4:7f:00:4f:05:95:9c:a3:17:02:c3:b3:53:9b:aa:
#         20:39:29:2b:66:fa:9d:af:5e:b3:92:d2:b5:a6:e1:1a:f9:2d:
#         41:69:81:14:b4:b4:b5:ed:89:3d:ce:fb:a9:9d:35:42:44:b1:
#         1c:14:73:81:cf:2a:01:35:9a:31:d5:2d:8f:6d:84:df:80:4d:
#         57:e3:3f:c5:84:75:da:89:c6:30:bb:eb:8f:cb:22:08:a0:ae:
#         aa:f1:03:6c:3a:4b:4d:09:a5:0e:72:c6:56:6b:21:42:4e:23:
#         25:14:68:ae:76:0a:7c:0c:07:70:64:f9:9a:2f:f6:05:39:26:
#         c6:0c:8f:19:7f:43:5e:6e:f4:5b:15:2f:db:61:5d:e6:67:2f:
#         3f:08:94:f9:60:b4:98:31:da:74:f1:84:93:71:4d:5f:fb:60:
#         58:d1:fb:c4:c1:6d:89:a2:bb:20:1f:9d:71:91:cb:32:9b:13:
#         3d:3e:7d:92:52:35:ac:92:94:a2:d3:18:c2:7c:c7:ea:af:76:
#         05:16:dd:67:27:c2:7e:1c:07:22:21:f3:40:0a:1b:34:07:44:
#         13:c2:84:6a:8e:df:19:5a:bf:7f:eb:1d:e2:1a:38:d1:5c:af:
#         47:92:6b:80:b5:30:a5:c9:8d:d8:ab:31:81:1f:df:c2:66:37:
#         d3:93:a9:85:86:79:65:d2

[p11-kit-object-v1]
label: "SwissSign Platinum Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAlKDvExufRCAbzcWqIrvZ
8lI+elpYd+aNoSvJ3KTz5LMTlABimxzyQ1BDgX6vMDZJrBiJDBhFuD7HVG3j2JpZ
a4oaJam2tQ23fSPwX32oB6n3PoYuyAFN3OY27R3lNwdpEkvjg9EEHCTwH3Bx5xnt
c0hulSsVtlbmAt9W6Zv66qbu4MLDuuDMxsh71286lZs6j75bLNKpoDg+1ojhsWIT
jtyrMGfNqGqmYyuCsMvHPU7tcvZ9qzJOZQLrD5l0+BwaKIwORQCTLBSfbccbnvaK
3Ht447SURx1NBW2EepBUsp6LdcKA34c5P5/7SFQHjaAp9flgX1py6LuboELgCAA0
oxU8E+PWGmsCspQho51BvCprTjM7ppQ4/D3HKzOzLisGdKybEG/FTkX3XaFWAywN
X3q9Ht4dd5Br2qUtikzp30H050vsfZVCn0ypCQ9DiD89k+cr9HpI2mjE3RKAMRpd
JFQmpiQhs0yt2hcINgJXxpyGcMl1yZ58Ydh45rnoFGn5HBAoEl1LdVC6PNBncFVV
Vkv7PRzY23lNl9+4ntsXLNU1B7hQqfeO91b/emdDTyDZymbWOGBL7pQx1g2iSJv/
NGmUxjX1lojvqmbMgabrTFP/MnSntp2YV7S6JqnxMzNifjqwAxFX/9xvESOtPsYK
0MxUty3Ckx3lwqaMx9jvU/cCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Platinum Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            22:3f:a9:17:20:de:81:94
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=SwissSign AG, CN=SwissSign Platinum Root CA - G3
#        Validity
#            Not Before: Aug  4 13:34:04 2009 GMT
#            Not After : Aug  4 13:34:04 2037 GMT
#        Subject: C=CH, O=SwissSign AG, CN=SwissSign Platinum Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:94:a0:ef:13:1b:9f:44:20:1b:cd:c5:aa:22:bb:
#                    d9:f2:52:3e:7a:5a:58:77:e6:8d:a1:2b:c9:dc:a4:
#                    f3:e4:b3:13:94:00:62:9b:1c:f2:43:50:43:81:7e:
#                    af:30:36:49:ac:18:89:0c:18:45:b8:3e:c7:54:6d:
#                    e3:d8:9a:59:6b:8a:1a:25:a9:b6:b5:0d:b7:7d:23:
#                    f0:5f:7d:a8:07:a9:f7:3e:86:2e:c8:01:4d:dc:e6:
#                    36:ed:1d:e5:37:07:69:12:4b:e3:83:d1:04:1c:24:
#                    f0:1f:70:71:e7:19:ed:73:48:6e:95:2b:15:b6:56:
#                    e6:02:df:56:e9:9b:fa:ea:a6:ee:e0:c2:c3:ba:e0:
#                    cc:c6:c8:7b:d7:6f:3a:95:9b:3a:8f:be:5b:2c:d2:
#                    a9:a0:38:3e:d6:88:e1:b1:62:13:8e:dc:ab:30:67:
#                    cd:a8:6a:a6:63:2b:82:b0:cb:c7:3d:4e:ed:72:f6:
#                    7d:ab:32:4e:65:02:eb:0f:99:74:f8:1c:1a:28:8c:
#                    0e:45:00:93:2c:14:9f:6d:c7:1b:9e:f6:8a:dc:7b:
#                    78:e3:b4:94:47:1d:4d:05:6d:84:7a:90:54:b2:9e:
#                    8b:75:c2:80:df:87:39:3f:9f:fb:48:54:07:8d:a0:
#                    29:f5:f9:60:5f:5a:72:e8:bb:9b:a0:42:e0:08:00:
#                    34:a3:15:3c:13:e3:d6:1a:6b:02:b2:94:21:a3:9d:
#                    41:bc:2a:6b:4e:33:3b:a6:94:38:fc:3d:c7:2b:33:
#                    b3:2e:2b:06:74:ac:9b:10:6f:c5:4e:45:f7:5d:a1:
#                    56:03:2c:0d:5f:7a:bd:1e:de:1d:77:90:6b:da:a5:
#                    2d:8a:4c:e9:df:41:f4:e7:4b:ec:7d:95:42:9f:4c:
#                    a9:09:0f:43:88:3f:3d:93:e7:2b:f4:7a:48:da:68:
#                    c4:dd:12:80:31:1a:5d:24:54:26:a6:24:21:b3:4c:
#                    ad:da:17:08:36:02:57:c6:9c:86:70:c9:75:c9:9e:
#                    7c:61:d8:78:e6:b9:e8:14:69:f9:1c:10:28:12:5d:
#                    4b:75:50:ba:3c:d0:67:70:55:55:56:4b:fb:3d:1c:
#                    d8:db:79:4d:97:df:b8:9e:db:17:2c:d5:35:07:b8:
#                    50:a9:f7:8e:f7:56:ff:7a:67:43:4f:20:d9:ca:66:
#                    d6:38:60:4b:ee:94:31:d6:0d:a2:48:9b:ff:34:69:
#                    94:c6:35:f5:96:88:ef:aa:66:cc:81:a6:eb:4c:53:
#                    ff:32:74:a7:b6:9d:98:57:b4:ba:26:a9:f1:33:33:
#                    62:7e:3a:b0:03:11:57:ff:dc:6f:11:23:ad:3e:c6:
#                    0a:d0:cc:54:b7:2d:c2:93:1d:e5:c2:a6:8c:c7:d8:
#                    ef:53:f7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                56:2A:3F:90:58:F4:17:5A:14:B2:D7:08:1B:85:5B:54:6A:54:1A:28
#            X509v3 Authority Key Identifier: 
#                keyid:56:2A:3F:90:58:F4:17:5A:14:B2:D7:08:1B:85:5B:54:6A:54:1A:28
#
#    Signature Algorithm: sha256WithRSAEncryption
#         6c:ed:8a:e7:43:a8:79:27:9b:b8:cf:87:3e:64:38:18:8c:11:
#         42:92:86:37:e0:58:c3:1b:ee:04:2e:f7:84:ec:83:10:68:0c:
#         7f:78:2d:9c:c2:97:8e:36:4e:16:d8:0e:ea:6b:48:ad:4f:9e:
#         5d:0d:cc:0d:a9:3e:18:85:7e:cc:68:99:39:35:d6:d8:9f:86:
#         c1:32:fb:4d:65:b3:22:14:4b:c8:85:66:da:17:ff:71:91:ac:
#         9c:56:57:de:71:2c:56:42:bf:f8:cd:0e:f0:a2:d3:ff:d2:22:
#         15:fb:d0:78:0a:7e:e1:b0:5a:ce:8e:37:db:a9:9e:e7:95:cf:
#         63:f2:2c:0d:d2:fa:6f:f3:c8:d5:fb:00:b7:f7:35:67:10:d3:
#         7b:52:ec:10:32:f8:bf:dd:5e:c9:a6:82:a4:f1:b0:bf:1d:2e:
#         dd:25:e4:bd:4d:f0:35:a9:91:01:47:f8:10:02:94:5b:eb:3e:
#         eb:0d:ba:d5:1d:63:2c:a5:2e:ab:e7:e3:1e:a3:ee:4b:aa:5f:
#         b1:66:01:b4:82:5a:f9:46:4b:c7:f1:f8:df:2c:be:fd:75:dd:
#         96:38:9a:37:3a:6e:a5:e6:32:15:6e:b3:90:c0:39:8a:74:a5:
#         95:a0:be:0d:2e:89:79:cd:29:56:8e:c3:5e:57:51:c4:05:6f:
#         04:55:8f:81:e9:4c:bd:59:46:cb:2a:bc:4d:c9:1d:f2:c6:4f:
#         05:e4:c8:04:0d:f7:6e:4f:da:c3:3a:9c:d2:c2:f5:e9:c6:24:
#         7a:14:3e:1c:42:30:a8:02:45:31:a9:fc:50:a9:dc:dc:86:38:
#         0f:5b:93:3f:7f:08:4e:6a:0d:27:3a:10:79:56:c3:15:b8:3e:
#         06:86:f6:d9:70:67:af:75:7a:8b:e2:58:cc:c6:75:4f:32:55:
#         c5:6c:14:09:28:3b:f2:95:e4:6a:de:2c:28:07:ad:a0:7d:07:
#         28:dd:d4:5a:a3:e9:a6:7c:13:8c:99:0b:52:78:db:d9:d1:df:
#         3e:5a:43:76:7f:46:60:53:c2:cd:e7:76:47:7c:55:cd:b4:39:
#         64:10:5b:95:4b:35:5d:44:83:24:d5:e0:2e:24:0c:c1:80:6e:
#         69:00:80:06:77:0a:66:82:10:0c:51:6f:37:89:57:db:f3:4c:
#         e5:b8:b9:ee:23:66:97:60:b7:52:dd:d9:96:fb:ba:8a:3b:a0:
#         4d:ce:5e:f0:44:4c:90:cc:21:4f:1b:3a:98:6b:8e:31:83:f9:
#         83:08:52:cb:19:c1:35:6b:ee:a1:15:5b:88:3f:6d:ac:f2:34:
#         92:53:a6:30:2a:13:d7:e6:86:a8:5d:d9:42:d2:c7:9d:a9:7a:
#         8b:cb:df:ee:a2:31:c2:e5

[p11-kit-object-v1]
label: "SwissSign Silver CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Silver CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4f:1b:d4:2f:54:bb:2f:4b
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CH, O=SwissSign AG, CN=SwissSign Silver CA - G2
#        Validity
#            Not Before: Oct 25 08:32:46 2006 GMT
#            Not After : Oct 25 08:32:46 2036 GMT
#        Subject: C=CH, O=SwissSign AG, CN=SwissSign Silver CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:f1:87:7f:d3:78:31:f7:38:c9:f8:c3:99:43:
#                    bc:c7:f7:bc:37:e7:4e:71:ba:4b:8f:a5:73:1d:5c:
#                    6e:98:ae:03:57:ae:38:37:43:2f:17:3d:1f:c8:ce:
#                    68:10:c1:78:ae:19:03:2b:10:fa:2c:79:83:f6:e8:
#                    b9:68:b9:55:f2:04:44:a7:39:f9:fc:04:8b:1e:f1:
#                    a2:4d:27:f9:61:7b:ba:b7:e5:a2:13:b6:eb:61:3e:
#                    d0:6c:d1:e6:fb:fa:5e:ed:1d:b4:9e:a0:35:5b:a1:
#                    92:cb:f0:49:92:fe:85:0a:05:3e:e6:d9:0b:e2:4f:
#                    bb:dc:95:37:fc:91:e9:32:35:22:d1:1f:3a:4e:27:
#                    85:9d:b0:15:94:32:da:61:0d:47:4d:60:42:ae:92:
#                    47:e8:83:5a:50:58:e9:8a:8b:b9:5d:a1:dc:dd:99:
#                    4a:1f:36:67:bb:48:e4:83:b6:37:eb:48:3a:af:0f:
#                    67:8f:17:07:e8:04:ca:ef:6a:31:87:d4:c0:b6:f9:
#                    94:71:7b:67:64:b8:b6:91:4a:42:7b:65:2e:30:6a:
#                    0c:f5:90:ee:95:e6:f2:cd:82:ec:d9:a1:4a:ec:f6:
#                    b2:4b:e5:45:85:e6:6d:78:93:04:2e:9c:82:6d:36:
#                    a9:c4:31:64:1f:86:83:0b:2a:f4:35:0a:78:c9:55:
#                    cf:41:b0:47:e9:30:9f:99:be:61:a8:06:84:b9:28:
#                    7a:5f:38:d9:1b:a9:38:b0:83:7f:73:c1:c3:3b:48:
#                    2a:82:0f:21:9b:b8:cc:a8:35:c3:84:1b:83:b3:3e:
#                    be:a4:95:69:01:3a:89:00:78:04:d9:c9:f4:99:19:
#                    ab:56:7e:5b:8b:86:39:15:91:a4:10:2c:09:32:80:
#                    60:b3:93:c0:2a:b6:18:0b:9d:7e:8d:49:f2:10:4a:
#                    7f:f9:d5:46:2f:19:92:a3:99:a7:26:ac:bb:8c:3c:
#                    e6:0e:bc:47:07:dc:73:51:f1:70:64:2f:08:f9:b4:
#                    47:1d:30:6c:44:ea:29:37:85:92:68:66:bc:83:38:
#                    fe:7b:39:2e:d3:50:f0:1f:fb:5e:60:b6:a9:a6:fa:
#                    27:41:f1:9b:18:72:f2:f5:84:74:4a:c9:67:c4:54:
#                    ae:48:64:df:8c:d1:6e:b0:1d:e1:07:8f:08:1e:99:
#                    9c:71:e9:4c:d8:a5:f7:47:12:1f:74:d1:51:9e:86:
#                    f3:c2:a2:23:40:0b:73:db:4b:a6:e7:73:06:8c:c1:
#                    a0:e9:c1:59:ac:46:fa:e6:2f:f8:cf:71:9c:46:6d:
#                    b9:c4:15:8d:38:79:03:45:48:ef:c4:5d:d7:08:ee:
#                    87:39:22:86:b2:0d:0f:58:43:f7:71:a9:48:2e:fd:
#                    ea:d6:1f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                17:A0:CD:C1:E4:41:B6:3A:5B:3B:CB:45:9D:BD:1C:C2:98:FA:86:58
#            X509v3 Authority Key Identifier: 
#                keyid:17:A0:CD:C1:E4:41:B6:3A:5B:3B:CB:45:9D:BD:1C:C2:98:FA:86:58
#
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.89.1.3.1.1
#                  CPS: http://repository.swisssign.com/
#
#    Signature Algorithm: sha1WithRSAEncryption
#         73:c6:81:e0:27:d2:2d:0f:e0:95:30:e2:9a:41:7f:50:2c:5f:
#         5f:62:61:a9:86:6a:69:18:0c:74:49:d6:5d:84:ea:41:52:18:
#         6f:58:ad:50:56:20:6a:c6:bd:28:69:58:91:dc:91:11:35:a9:
#         3a:1d:bc:1a:a5:60:9e:d8:1f:7f:45:91:69:d9:7e:bb:78:72:
#         c1:06:0f:2a:ce:8f:85:70:61:ac:a0:cd:0b:b8:39:29:56:84:
#         32:4e:86:bb:3d:c4:2a:d9:d7:1f:72:ee:fe:51:a1:22:41:b1:
#         71:02:63:1a:82:b0:62:ab:5e:57:12:1f:df:cb:dd:75:a0:c0:
#         5d:79:90:8c:1b:e0:50:e6:de:31:fe:98:7b:70:5f:a5:90:d8:
#         ad:f8:02:b6:6f:d3:60:dd:40:4b:22:c5:3d:ad:3a:7a:9f:1a:
#         1a:47:91:79:33:ba:82:dc:32:69:03:96:6e:1f:4b:f0:71:fe:
#         e3:67:72:a0:b1:bf:5c:8b:e4:fa:99:22:c7:84:b9:1b:8d:23:
#         97:3f:ed:25:e0:cf:65:bb:f5:61:04:ef:dd:1e:b2:5a:41:22:
#         5a:a1:9f:5d:2c:e8:5b:c9:6d:a9:0c:0c:78:aa:60:c6:56:8f:
#         01:5a:0c:68:bc:69:19:79:c4:1f:7e:97:05:bf:c5:e9:24:51:
#         5e:d4:d5:4b:53:ed:d9:23:5a:36:03:65:a3:c1:03:ad:41:30:
#         f3:46:1b:85:90:af:65:b5:d5:b1:e4:16:5b:78:75:1d:97:7a:
#         6d:59:a9:2a:8f:7b:de:c3:87:89:10:99:49:73:78:c8:3d:bd:
#         51:35:74:2a:d5:f1:7e:69:1b:2a:bb:3b:bd:25:b8:9a:5a:3d:
#         72:61:90:66:87:ee:0c:d6:4d:d4:11:74:0b:6a:fe:0b:03:fc:
#         a3:55:57:89:fe:4a:cb:ae:5b:17:05:c8:f2:8d:23:31:53:38:
#         d2:2d:6a:3f:82:b9:8d:08:6a:f7:5e:41:74:6e:c3:11:7e:07:
#         ac:29:60:91:3f:38:ca:57:10:0d:bd:30:2f:c7:a5:e6:41:a0:
#         da:ae:05:87:9a:a0:a4:65:6c:4c:09:0c:89:ba:b8:d3:b9:c0:
#         93:8a:30:fa:8d:e5:9a:6b:15:01:4e:67:aa:da:62:56:3e:84:
#         08:66:d2:c4:36:7d:a7:3e:10:fc:88:e0:d4:80:e5:00:bd:aa:
#         f3:4e:06:a3:7a:6a:f9:62:72:e3:09:4f:eb:9b:0e:01:23:f1:
#         9f:bb:7c:dc:dc:6c:11:97:25:b2:f2:b4:63:14:d2:06:2a:67:
#         8c:83:f5:ce:ea:07:d8:9a:6a:1e:ec:e4:0a:bb:2a:4c:eb:09:
#         60:39:ce:ca:62:d8:2e:6e

[p11-kit-object-v1]
label: "SwissSign Silver Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "SwissSign Silver Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            aa:88:b0:5a:0b:b1:76:9b
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=SwissSign AG, CN=SwissSign Silver Root CA - G3
#        Validity
#            Not Before: Aug  4 13:19:14 2009 GMT
#            Not After : Aug  4 13:19:14 2037 GMT
#        Subject: C=CH, O=SwissSign AG, CN=SwissSign Silver Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:be:87:9b:05:e6:71:7c:52:6f:6d:ec:37:a9:e9:
#                    b3:dc:cc:5f:7f:d3:50:ea:21:9b:04:f0:3d:bf:be:
#                    8e:c9:a5:14:16:32:10:cf:99:fc:ec:70:ad:48:36:
#                    67:24:0c:17:32:d6:29:e5:4a:39:b1:37:eb:a6:78:
#                    0c:6c:6f:19:ca:4e:f7:51:da:1a:e8:fa:21:38:6c:
#                    95:9c:2f:d6:8b:cc:3b:02:9b:bf:26:9b:11:45:b6:
#                    b8:34:5a:1d:a6:54:48:52:c8:9d:78:71:ce:48:4a:
#                    cc:a7:78:83:dc:68:ab:66:1e:77:07:d3:36:18:08:
#                    d7:d4:6d:60:f8:f0:79:d3:33:36:09:92:63:b7:04:
#                    9a:f5:a7:96:da:45:af:74:1a:fc:82:e3:a8:5b:0e:
#                    3a:3f:52:57:98:7e:bc:9c:8c:c1:c0:b2:5a:df:c4:
#                    7e:fe:0c:a6:54:76:83:7e:ba:dd:e7:2a:f4:4a:36:
#                    4f:87:65:2e:a5:ba:39:8d:59:61:29:f3:d3:8e:24:
#                    70:8c:53:9b:11:a5:47:07:b2:75:05:5c:0d:84:d9:
#                    44:d9:cd:c9:26:44:57:6e:02:7d:95:01:d4:ab:24:
#                    86:ee:3d:70:fb:57:fa:b0:29:14:d0:9d:f2:c5:97:
#                    cb:09:ca:f1:f2:3d:e7:d8:4b:96:e9:88:2f:9e:47:
#                    51:8a:54:65:98:48:d2:12:e4:54:77:0c:07:e6:be:
#                    5b:9c:f1:dd:03:7e:8d:84:fc:be:c9:62:d5:fc:c9:
#                    3a:e8:89:b5:5f:c2:05:52:61:f0:9c:3e:ec:2e:4d:
#                    8c:72:91:8e:c8:43:c1:a2:28:5e:f5:80:24:dc:e2:
#                    2f:87:3b:53:00:e5:cb:f0:b2:7c:8d:79:19:a0:88:
#                    cd:78:f8:c5:8a:5a:77:e5:06:ac:dd:4a:de:e6:70:
#                    6e:be:af:be:f5:b1:ab:0e:08:b0:db:a0:3f:94:c5:
#                    be:12:b9:bc:7b:27:79:b5:32:29:5d:ae:c5:20:23:
#                    92:03:7b:54:39:b0:89:22:54:6d:12:e3:c3:78:ea:
#                    3a:40:fd:a4:93:ac:e9:2d:88:3c:db:a6:47:66:4c:
#                    df:d8:17:ed:16:de:1a:d6:d7:41:66:bf:1d:80:f1:
#                    a4:e0:64:11:29:5e:0c:27:05:62:eb:e5:c4:04:62:
#                    d1:c4:9f:0c:6a:55:d6:58:38:9c:66:0f:9d:fb:ab:
#                    54:80:99:9c:ec:49:d6:82:9f:da:45:d6:3f:53:06:
#                    03:b7:fd:1f:ec:86:7d:74:e0:a4:b4:e8:32:b6:aa:
#                    07:23:f8:ef:24:41:9e:63:30:78:f4:54:dd:8e:f0:
#                    5a:38:8e:12:7f:78:c7:6f:02:56:21:33:ce:b8:b8:
#                    ad:69:55
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                A1:8C:45:93:0A:12:63:0B:A7:57:5F:32:4A:7D:E1:21:E7:B7:3E:66
#            X509v3 Authority Key Identifier: 
#                keyid:A1:8C:45:93:0A:12:63:0B:A7:57:5F:32:4A:7D:E1:21:E7:B7:3E:66
#
#    Signature Algorithm: sha256WithRSAEncryption
#         87:ae:61:6d:48:38:2a:c6:1c:dc:4a:2e:84:78:49:c0:23:2a:
#         45:b8:35:4d:d1:05:fa:b9:05:33:c4:64:bd:db:ad:54:16:2a:
#         b0:3e:0d:5a:28:da:a6:1a:80:73:0c:c4:41:6f:af:b8:34:b6:
#         77:d4:5b:8e:1d:0b:8b:46:90:44:b5:b3:ee:49:18:89:c1:4b:
#         34:b3:87:35:74:a2:9e:45:67:ed:45:71:66:b6:b9:a1:25:73:
#         d7:c2:ac:88:fb:d2:1d:a7:6b:da:c0:5a:e6:d8:59:64:34:97:
#         65:20:31:33:03:4f:ce:ad:09:9e:ae:e9:c2:3e:18:75:b4:33:
#         25:12:bb:05:ec:50:ba:71:40:e2:bd:de:88:46:05:21:84:8b:
#         a3:2b:1e:eb:30:30:89:bf:11:f5:5c:44:f8:91:8b:4b:59:45:
#         0b:30:0d:ca:0c:4f:6f:63:be:04:fe:c1:ed:e0:87:fe:c8:cd:
#         56:bf:e5:dc:8e:7a:d4:d6:29:4e:80:db:ab:9b:3f:8e:65:07:
#         22:f7:44:cd:96:1f:2d:c7:f5:09:b6:98:70:ff:38:dc:50:15:
#         11:84:3b:7f:a9:f0:d8:24:54:c8:17:8c:2b:13:49:d6:99:7f:
#         45:d1:0f:8e:bf:69:72:37:53:07:f4:e6:ae:fd:5b:3e:79:b9:
#         06:cd:b8:81:78:b4:4d:a0:d0:35:ba:e4:ae:ff:d3:49:bc:35:
#         ed:63:c6:b3:fc:e3:ab:61:5a:05:b6:0b:e4:ff:a9:2a:be:df:
#         54:4e:c2:4b:5c:68:da:a3:32:a2:c9:4d:57:18:53:34:59:3c:
#         66:99:d7:3c:02:78:a7:4c:71:d0:bf:db:f1:c4:3c:e7:01:e6:
#         04:f2:44:f6:48:26:30:33:c9:b1:01:19:eb:02:f1:cc:21:fa:
#         3a:02:30:17:9d:c8:5f:80:3f:dd:25:ac:02:9b:e3:17:de:bd:
#         ca:92:14:d2:52:81:53:e6:ea:fc:30:67:32:a9:62:f6:93:17:
#         15:07:31:5e:0f:1b:69:f5:f4:a9:b7:7c:2d:b3:ed:84:44:32:
#         47:28:07:3b:86:69:45:a9:c7:36:96:90:72:74:d8:12:a6:73:
#         23:d1:4e:b9:b6:7a:3a:c4:29:a1:50:06:11:b9:d9:f4:26:6e:
#         62:08:12:20:16:f0:01:57:17:d4:05:36:67:97:eb:51:f9:ff:
#         33:24:0c:05:0f:56:bf:ef:3d:1c:52:8e:8a:de:69:0f:5a:1f:
#         f0:d5:03:31:44:b3:92:c6:ea:75:a8:ae:bb:c7:60:03:88:98:
#         ff:c7:04:84:52:90:86:e1:b4:93:a9:50:2f:e8:eb:d2:36:ac:
#         30:60:a7:d0:03:13:b5:0a

[p11-kit-object-v1]
label: "Swiss Government Root CA I"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swiss Government Root CA I"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            fd:75:04:8d:7a:60:86:93:69:4c:aa:00:3c:65:d3:3d
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=The Federal Authorities of the Swiss Confederation, OU=Services, OU=Certification Authorities, CN=Swiss Government Root CA I
#        Validity
#            Not Before: Feb 15 09:00:00 2011 GMT
#            Not After : Feb 15 08:59:59 2035 GMT
#        Subject: C=CH, O=The Federal Authorities of the Swiss Confederation, OU=Services, OU=Certification Authorities, CN=Swiss Government Root CA I
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:0e:72:f4:01:2f:86:7b:0b:c2:63:b0:8d:68:
#                    ed:1f:3d:de:b9:83:9b:5c:a1:5d:ba:0f:36:27:11:
#                    04:ad:06:54:20:b7:1e:a0:e6:ce:be:f0:99:69:72:
#                    19:35:64:66:31:8d:2c:bd:8e:42:0a:9f:c6:ca:a9:
#                    90:2c:da:bc:85:30:03:d9:32:96:96:f0:be:a0:22:
#                    0d:24:6c:d4:c6:7f:5a:4c:51:24:2d:54:72:08:7c:
#                    33:e9:cc:28:c7:66:65:23:69:6b:95:b4:eb:be:e3:
#                    87:e7:63:d7:e4:fb:07:ad:12:92:eb:e7:e4:0a:43:
#                    b2:a9:df:c7:90:bc:26:5b:91:f9:a3:b7:87:9c:94:
#                    b9:10:8d:88:c5:58:5c:32:bc:16:ec:0e:57:4f:fe:
#                    a7:93:78:8f:e0:c5:39:bb:07:88:60:c1:54:65:eb:
#                    87:be:9f:31:97:71:3c:fa:8b:c8:83:6c:52:96:e0:
#                    ac:c0:ef:cb:69:08:95:5b:e0:e0:bb:af:27:a4:c2:
#                    17:f1:51:9f:84:76:61:d8:24:e2:fe:61:6d:64:35:
#                    49:ea:39:c4:21:62:bd:cc:e2:02:ff:48:6b:38:af:
#                    69:c7:b9:92:2d:82:11:8d:bd:0b:89:85:2a:ea:b7:
#                    b4:b2:cd:4b:eb:d1:fa:aa:f0:e0:4c:09:3c:4d:df:
#                    f6:31:1d:86:30:a8:41:88:57:70:2c:27:51:de:cf:
#                    8b:4e:3f:02:f2:50:a5:17:e0:67:1b:72:0c:41:31:
#                    1f:01:a2:96:3e:3c:db:02:b6:9d:94:e6:02:4e:f3:
#                    f0:19:82:b2:08:23:13:eb:91:cd:51:d3:aa:46:c2:
#                    73:98:98:3f:ba:c3:ee:9a:fc:fa:cd:af:72:0a:37:
#                    13:8f:f9:a0:50:b3:ea:fb:3f:2c:bc:fa:63:55:35:
#                    f4:d2:bc:b8:71:d2:91:eb:e9:ca:ca:5c:ec:51:66:
#                    a8:9e:59:05:22:2f:a3:1a:db:4f:e0:45:62:23:3c:
#                    5d:55:fb:30:95:2b:34:a2:cf:a7:b4:4b:c0:33:c9:
#                    34:51:9d:d3:b3:2b:df:c5:ea:2c:2c:c7:df:44:1f:
#                    b6:8d:b9:fe:f3:5c:cd:37:2f:b0:6c:9c:4a:08:bd:
#                    e8:f5:d6:fa:70:e5:69:32:37:5c:5f:0b:cb:3f:e4:
#                    88:02:cc:ca:b3:78:2f:7d:bf:48:b3:21:b0:1f:88:
#                    79:9b:5a:8a:71:d8:21:84:29:0f:4a:04:31:2a:bd:
#                    0d:21:44:ce:74:9d:26:d3:49:1d:f8:86:a8:e5:12:
#                    77:c5:c0:73:0c:50:83:6a:90:6b:a1:ca:f8:d0:95:
#                    d9:35:86:c7:11:a3:3b:14:c7:cb:86:58:56:0d:fb:
#                    83:f7:01
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.17.3.1.0
#                  CPS: http://www.pki.admin.ch/cps/CPS_2_16_756_1_17_3_1_0.pdf
#                  User Notice:
#                    Explicit Text: This is the Swiss Government Root CA I CPS.
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://admindir.admin.ch:389/cn=Swiss%20Government%20Root%20CA%20I,ou=Certification%20Authorities,ou=Services,o=Admin,c=CH
#
#            X509v3 Subject Key Identifier: 
#                B5:1B:83:BB:3B:4F:B2:D2:FB:E5:03:8E:D4:61:5D:D1:1A:8E:B0:A2
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:B5:1B:83:BB:3B:4F:B2:D2:FB:E5:03:8E:D4:61:5D:D1:1A:8E:B0:A2
#                DirName:/C=CH/O=The Federal Authorities of the Swiss Confederation/OU=Services/OU=Certification Authorities/CN=Swiss Government Root CA I
#                serial:FD:75:04:8D:7A:60:86:93:69:4C:AA:00:3C:65:D3:3D
#
#    Signature Algorithm: sha256WithRSAEncryption
#         25:da:df:78:b0:26:dc:9f:99:eb:33:9c:c9:45:ba:5c:63:52:
#         8d:6e:03:73:aa:74:48:c5:0d:0b:d2:17:0c:2c:0b:d2:c6:25:
#         83:d4:54:cd:07:81:54:2f:67:76:25:a7:e9:d7:7f:96:47:77:
#         a4:1d:9b:45:ff:f1:d8:f6:9e:47:0e:74:8c:13:c4:f2:be:d6:
#         07:28:18:3c:98:75:c1:db:eb:92:88:26:e6:06:64:8e:f9:d2:
#         fd:e2:99:35:81:d1:d8:75:17:b5:73:ea:dd:e8:18:22:95:16:
#         19:0a:59:2a:22:dc:86:5a:43:4f:25:68:36:a9:d8:93:00:8f:
#         5e:c5:c3:61:86:f0:d2:14:09:95:51:c4:7e:d8:52:ee:b0:8d:
#         8a:88:71:a5:d7:28:a7:f4:dc:06:58:25:5e:c4:55:18:08:95:
#         74:7c:b8:01:e7:4e:d8:d6:f6:7c:20:43:48:0d:a3:e0:de:54:
#         c4:a8:5f:00:49:43:d3:45:3b:82:65:6e:ee:8b:a3:01:22:56:
#         9a:f1:ce:29:e5:0c:c4:6b:ed:e7:4e:f8:b1:55:81:ad:71:ff:
#         84:fb:08:57:e6:47:ca:ad:87:f8:46:f8:fa:f0:35:84:ed:b4:
#         d8:88:97:22:77:a4:8f:16:c8:3c:67:d1:e1:6e:04:ac:7b:8f:
#         36:cd:de:a5:08:ac:2a:8d:f5:a7:1d:9f:c7:c3:91:21:42:a3:
#         86:81:b9:2a:d8:b1:e9:38:1d:54:08:98:39:0a:11:ca:32:0e:
#         33:cd:f4:4c:ea:a8:4a:06:e9:18:3e:41:c6:cf:a0:f6:e0:2b:
#         6b:20:8e:a7:20:02:eb:30:41:81:b0:e8:e4:ae:a4:18:89:2b:
#         df:14:f0:12:29:6d:78:fa:4d:44:fb:b2:34:e5:af:f3:8e:35:
#         f7:c3:ce:2c:0b:18:b4:d0:79:8f:13:bf:03:8b:66:b8:b5:61:
#         d4:ac:0e:fd:78:3d:09:ad:b5:d2:2c:4f:56:41:99:88:44:0c:
#         7e:67:e3:64:9f:fa:5a:2a:58:77:51:69:b1:cd:2c:9a:a7:34:
#         10:05:74:fa:6e:45:63:cb:8b:52:ad:47:91:a2:12:c8:a2:26:
#         04:c5:d0:22:1e:03:b3:b2:92:37:54:57:fd:89:83:75:03:6d:
#         2d:3b:b3:f1:a4:a2:10:7c:9c:93:8d:a3:50:84:39:8b:95:59:
#         41:f6:02:76:06:8a:bc:0e:90:e7:d9:3a:eb:ad:26:5e:57:53:
#         d1:6f:c8:75:e0:ab:91:7b:6b:a1:7f:f9:1b:50:a8:dc:fe:4d:
#         06:e1:15:8a:a4:10:eb:1e:06:cf:54:48:15:96:28:b6:23:1f:
#         1a:e3:7c:a5:8f:fa:37:57

[p11-kit-object-v1]
label: "Swiss Government Root CA II"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swiss Government Root CA II"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0e:9f:17:99:a5:b1:3d:9c:cb:ec:06:eb:a3:f0:0e:69
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=The Federal Authorities of the Swiss Confederation, OU=Services, OU=Certification Authorities, CN=Swiss Government Root CA II
#        Validity
#            Not Before: Feb 16 09:00:00 2011 GMT
#            Not After : Feb 16 08:59:59 2035 GMT
#        Subject: C=CH, O=The Federal Authorities of the Swiss Confederation, OU=Services, OU=Certification Authorities, CN=Swiss Government Root CA II
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a9:2c:12:ed:bf:c0:22:e9:86:e8:1c:37:82:83:
#                    9b:68:05:6f:16:e3:88:a8:01:0f:cb:71:9e:7f:47:
#                    90:4b:cc:25:77:c8:f0:d7:69:2e:91:68:57:21:b2:
#                    b2:07:21:33:ee:4c:a4:37:25:98:4c:b4:46:32:4e:
#                    d6:f9:6b:8b:51:8a:ef:2c:37:f2:98:d5:f5:d4:b4:
#                    b7:e7:00:ca:ef:c1:13:5e:94:ab:6e:bb:9c:bd:fa:
#                    6b:8f:ab:f8:1e:36:56:69:38:66:3a:d0:f4:33:0d:
#                    00:39:02:a8:c5:1c:0b:21:b7:5c:20:0c:61:d0:ad:
#                    ae:ce:8e:5e:d9:3a:e9:de:ff:47:7c:78:57:0e:1c:
#                    71:f4:60:1c:dd:db:9a:18:29:af:d9:80:a3:9f:85:
#                    84:63:33:91:ef:bd:74:ee:dd:03:7a:c8:fa:e0:84:
#                    e6:d9:bd:4e:7e:fa:6e:4f:76:d1:5d:3e:a8:e8:87:
#                    45:90:79:f3:ad:ae:f5:c2:5d:11:4d:29:f7:88:13:
#                    c9:d5:93:73:01:ab:dd:ed:fd:af:77:fb:69:4e:ef:
#                    8f:52:1c:cf:f5:2c:5a:6c:ec:fe:82:9b:db:7c:39:
#                    ab:75:23:7e:38:90:4f:94:8e:2d:62:58:9e:f7:e7:
#                    72:fc:94:5b:72:56:c5:9d:a3:ae:ab:b5:b6:c0:d7:
#                    76:50:00:3c:3f:47:88:92:5a:60:d4:bf:32:1b:a6:
#                    94:40:0d:76:79:e9:3c:ce:e4:b3:1d:c7:8c:f5:e8:
#                    86:31:b9:d8:2b:50:4a:80:12:89:d7:2c:50:80:e6:
#                    67:2f:b6:93:9c:ad:ac:05:52:22:53:20:99:0e:bd:
#                    97:c6:e1:da:73:a9:1d:89:f2:c4:59:e6:87:e6:56:
#                    2b:0e:95:02:1a:87:c6:79:fe:99:6a:e9:74:ec:f0:
#                    12:f9:14:28:20:95:96:3a:2f:5d:57:b5:6f:ff:93:
#                    bc:b6:28:6a:2c:a4:28:78:46:61:af:41:24:a4:f3:
#                    fa:04:8e:f1:8a:19:a2:91:73:e2:77:8f:b4:a7:f9:
#                    9c:ff:6e:51:ec:bd:1f:96:13:e8:63:91:5e:87:68:
#                    6f:eb:d8:7c:2e:10:4f:50:18:90:c7:b7:74:ef:33:
#                    c0:81:df:33:e3:1a:93:2b:55:04:2c:7c:d2:2b:b7:
#                    63:0c:fe:ad:7b:bd:b6:3a:97:b9:3d:03:23:74:73:
#                    03:a6:2c:59:00:6c:d5:d5:e8:ec:af:42:cc:d3:7f:
#                    70:8b:60:60:e7:b2:a0:b6:8a:52:4c:fe:0a:96:cb:
#                    cf:3a:b0:58:08:ee:1c:42:c9:86:77:42:6e:3f:b4:
#                    ac:90:00:58:42:1c:40:c4:6e:b8:45:c8:bc:33:36:
#                    df:bd:27
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Certificate Policies: 
#                Policy: 2.16.756.1.17.3.21.1
#                  CPS: http://www.pki.admin.ch/cps/CPS_2_16_756_1_17_3_21_1.pdf
#                  User Notice:
#                    Explicit Text: This is the Swiss Government Root CA II CPS.
#
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:ldap://admindir.admin.ch:389/cn=Swiss%20Government%20Root%20CA%20II,ou=Certification%20Authorities,ou=Services,o=Admin,c=CH
#
#            X509v3 Subject Key Identifier: 
#                E5:84:6F:89:69:3D:76:00:17:7F:C1:AB:BD:AE:5F:C1:7D:BA:E1:62
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:E5:84:6F:89:69:3D:76:00:17:7F:C1:AB:BD:AE:5F:C1:7D:BA:E1:62
#                DirName:/C=CH/O=The Federal Authorities of the Swiss Confederation/OU=Services/OU=Certification Authorities/CN=Swiss Government Root CA II
#                serial:0E:9F:17:99:A5:B1:3D:9C:CB:EC:06:EB:A3:F0:0E:69
#
#    Signature Algorithm: sha256WithRSAEncryption
#         83:37:57:75:c9:38:50:bf:41:06:96:70:c2:d9:c7:d7:b0:5a:
#         00:cd:a3:40:4f:d3:d2:f9:8a:87:91:b2:89:cb:5d:a4:bc:6f:
#         4f:3e:54:f6:ca:3c:b3:c4:4c:8b:c7:3e:f4:d9:c4:62:dd:c7:
#         55:9e:d1:f9:d2:44:e7:1e:4f:cf:e8:ee:2b:1c:a8:01:f0:33:
#         07:fb:e1:3b:14:d3:cf:50:91:5e:d8:ea:42:c6:79:58:85:aa:
#         fb:dc:db:70:ca:95:f9:f4:0e:62:02:70:69:44:2d:68:4f:d1:
#         70:ea:28:52:66:b7:71:de:25:e8:a1:a7:6f:b0:a1:26:c7:d7:
#         ca:20:64:dc:c0:73:3c:10:a2:14:1e:f4:ad:c1:3e:14:90:39:
#         36:63:88:6f:28:e0:60:a5:91:f7:62:e4:9a:cf:d2:b5:71:9e:
#         5d:3b:f6:99:2c:ed:91:3a:08:9c:b4:84:85:49:e3:e1:ba:a6:
#         b6:68:b3:b6:b6:4f:4b:5c:53:0a:57:6c:a1:07:92:f6:62:9e:
#         a8:fa:8a:d6:f3:6b:a7:0f:b2:2b:66:bd:af:42:47:08:4f:e8:
#         d7:7c:9f:86:0f:fa:5a:83:be:2d:6f:00:04:b5:76:87:16:af:
#         dd:4f:3a:96:b4:34:57:b7:e2:ff:41:ff:de:42:1c:66:c5:85:
#         eb:c2:72:1f:b8:1c:4e:ee:17:f2:62:ef:0a:04:ac:9b:ab:a1:
#         f2:ee:ee:a2:40:24:1c:47:de:42:8b:18:b4:a9:57:b3:4f:3c:
#         62:32:1c:ad:6c:44:ad:bc:d5:1c:63:38:3d:c9:33:a6:fb:bc:
#         28:37:44:46:e3:7a:62:fa:80:48:35:e2:9e:1b:88:19:4c:b3:
#         41:fd:ee:77:e0:59:80:1a:61:1e:35:a4:41:7a:b3:c1:8d:44:
#         e9:c5:21:59:e9:ac:d3:44:ca:76:85:36:14:46:0a:1e:16:34:
#         a6:c4:34:77:c3:82:38:48:21:02:fe:12:6c:da:d7:ea:b0:ec:
#         f6:cd:2c:cc:f3:9b:0a:63:80:d3:f5:0b:7d:04:2d:84:0d:c2:
#         d9:4c:2b:97:f1:d5:54:f7:8f:b3:0a:e2:bd:58:3c:99:f2:af:
#         39:1b:90:f9:3b:e7:b7:45:e7:5a:6a:7d:c1:9f:14:6f:30:57:
#         98:19:a0:07:43:eb:ee:d1:08:86:d7:49:9c:12:0a:00:3b:0f:
#         a7:41:b1:4a:ab:90:b3:d4:bd:09:e7:88:0f:9e:24:0e:2b:fb:
#         61:3d:55:99:d3:58:e4:b8:c7:7d:f4:15:4d:65:0e:18:79:41:
#         c9:bb:e9:9a:c1:59:18:44:34:62:d5:e8:38:7b:ca:85:18:98:
#         86:79:cd:7d:ba:47:db:95

[p11-kit-object-v1]
label: "Swiss Government Root CA III"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swiss Government Root CA III"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            fb:1f:0b:42:2b:a8:41:3e:57:d1:ee:2a:6e:5a:4f:bb
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CH, O=Swiss Government PKI, OU=www.pki.admin.ch, CN=Swiss Government Root CA III
#        Validity
#            Not Before: Apr 15 07:00:00 2016 GMT
#            Not After : Apr 15 06:59:59 2041 GMT
#        Subject: C=CH, O=Swiss Government PKI, OU=www.pki.admin.ch, CN=Swiss Government Root CA III
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:e1:43:86:8e:4f:18:94:ba:d3:c2:39:70:6d:5d:
#                    69:51:84:59:bc:bb:c8:7f:2f:fd:17:a3:78:9c:bd:
#                    d8:92:e3:d8:78:21:3e:bb:9a:5f:fb:b2:65:50:72:
#                    b6:a7:ec:a5:e7:c1:c5:00:04:e3:cc:b3:02:4a:f9:
#                    00:db:6f:6d:bb:93:17:44:f9:23:c2:56:3a:30:1f:
#                    81:79:fb:64:bf:f5:54:85:bf:3b:2b:6f:95:04:06:
#                    5d:68:0a:c3:8f:b8:2b:66:12:be:a2:d8:5a:94:05:
#                    7d:af:c1:13:06:a6:91:3a:3f:19:0b:85:83:c0:96:
#                    5d:f3:81:c8:13:8a:f5:10:4b:a0:75:3a:5b:a3:40:
#                    07:bd:a1:66:18:65:84:54:79:91:9a:d3:72:84:66:
#                    d5:0d:e6:3b:5a:ea:fa:db:a1:54:fd:00:23:59:e8:
#                    57:ea:9c:b7:f4:8f:41:0b:69:b1:47:b0:9a:2f:62:
#                    da:9a:19:ad:a0:95:30:cd:2e:ad:67:bb:6d:f9:36:
#                    43:b7:94:79:c9:90:09:00:69:5f:97:a6:d3:6f:25:
#                    e8:ef:62:87:77:d7:a6:d9:4e:1c:5f:61:66:d0:b1:
#                    70:d5:e0:62:20:36:d8:96:40:f8:5e:31:de:41:99:
#                    69:10:d6:a0:ee:3d:ad:13:2e:d2:94:4a:8d:80:1d:
#                    dc:8c:46:21:56:8b:49:5b:de:a1:d8:03:ca:ce:d8:
#                    65:b4:b0:05:3d:26:69:4a:6d:a5:8c:79:2f:a4:8f:
#                    12:78:10:e9:b2:09:08:43:c3:c6:04:bb:33:3e:47:
#                    35:a5:5c:20:20:0a:e2:36:f8:63:86:e4:0d:f4:3e:
#                    14:79:be:45:07:b4:8b:09:93:f5:f6:2a:26:a1:bd:
#                    44:c7:f3:50:0d:0d:61:9b:3b:11:df:a8:83:ea:22:
#                    2c:95:44:0d:39:41:63:4d:a8:2b:6d:68:a5:4b:9f:
#                    40:87:6a:3c:45:0a:be:72:a7:88:be:f0:39:2a:5b:
#                    ef:59:a4:20:ef:b4:dc:c3:da:41:db:41:a5:ba:22:
#                    5f:97:a3:c8:63:a1:24:2d:4e:25:a0:c3:17:28:c5:
#                    88:41:93:96:64:66:37:43:05:9b:15:7c:b6:be:9e:
#                    fb:1b:c8:66:18:ba:14:ef:b9:18:cf:84:69:9b:9f:
#                    bd:82:07:12:6d:1b:19:bf:30:7e:f1:92:0e:c0:4c:
#                    16:ff:d1:3e:6f:f8:ab:b2:61:9a:68:43:e2:0a:54:
#                    c7:01:a3:57:8e:f3:44:06:22:c3:70:a6:bb:a5:b3:
#                    cc:82:18:d8:40:8e:bd:ea:70:41:6f:94:57:0c:be:
#                    07:74:6e:8e:93:7a:19:8f:c6:68:fc:1b:a5:45:b3:
#                    b9:85:a9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                07:EB:8E:AA:71:CB:27:A5:BB:C7:31:60:BE:ED:1F:CF:A0:33:C4:E6
#            X509v3 Authority Key Identifier: 
#                keyid:07:EB:8E:AA:71:CB:27:A5:BB:C7:31:60:BE:ED:1F:CF:A0:33:C4:E6
#                DirName:/C=CH/O=Swiss Government PKI/OU=www.pki.admin.ch/CN=Swiss Government Root CA III
#                serial:FB:1F:0B:42:2B:A8:41:3E:57:D1:EE:2A:6E:5A:4F:BB
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         b3:4f:66:bc:de:e9:8c:65:fc:b7:53:10:2e:fc:fc:dd:89:1a:
#         11:40:70:94:31:89:95:76:c6:d6:2a:cc:3d:a7:a3:c1:b8:ce:
#         12:6b:34:50:c1:75:2a:2f:e7:61:26:ef:4b:3f:de:8d:23:9f:
#         0d:98:3e:1f:3b:d6:6a:ce:3c:f1:df:d1:4b:77:8c:a8:4f:f2:
#         50:e5:28:a9:c1:6a:ea:56:6f:47:b4:82:2b:a6:27:b2:25:f0:
#         dd:23:0a:3f:e9:3d:8c:25:ec:c3:b5:4f:37:fa:53:0a:e9:38:
#         98:6b:29:ec:53:35:d7:86:90:9a:fa:63:ba:76:54:e3:50:4f:
#         ca:d6:e7:c0:71:d0:d2:e7:ea:68:54:ad:93:e4:32:fc:7a:71:
#         40:87:05:28:b8:ea:b8:c2:3c:8d:00:5e:c1:4e:28:56:e5:c3:
#         6c:b5:f5:aa:8d:ef:67:16:07:d0:8e:c5:f2:5a:19:3b:bb:c1:
#         8b:b3:44:9f:0c:a5:c7:cb:de:d3:44:60:a7:bd:1b:69:da:0e:
#         9a:ff:97:45:86:6d:fa:b1:64:8a:1f:ec:df:51:58:52:4d:d6:
#         ea:ba:06:f6:53:71:5b:de:e9:55:f5:2c:13:72:06:4c:53:96:
#         fa:ca:5b:f4:3f:1c:a7:df:52:fd:cb:4e:7d:9f:10:40:94:a7:
#         a1:55:ba:73:3e:74:74:30:f8:a3:e0:9f:aa:5f:1f:5d:c0:df:
#         41:cf:01:81:21:db:a8:ae:b3:33:ad:46:13:77:9b:3b:30:b4:
#         a4:e0:17:82:c0:8a:b5:34:14:1c:05:8b:ae:e0:3d:da:c5:7c:
#         ab:26:08:4c:bd:4a:60:e9:70:ec:a8:58:88:75:67:f1:18:97:
#         76:0d:6c:0b:7d:19:2d:02:b5:82:99:77:cf:62:fa:9d:12:01:
#         2b:d9:f5:b4:57:b1:3a:eb:d5:29:f0:8c:d3:42:a7:35:48:8c:
#         62:83:3e:0a:3e:61:dd:b1:f3:07:a1:c7:73:b0:89:f0:b6:59:
#         7b:a3:23:d8:37:03:35:88:ab:45:77:63:4c:ff:70:eb:8e:6a:
#         07:d1:22:e0:32:91:cb:15:71:5a:2b:c5:84:3e:91:cd:dd:b4:
#         99:67:8d:b4:aa:8c:65:17:a6:ac:9c:5e:56:98:a7:f4:e2:40:
#         12:d5:41:97:b5:33:f1:ed:17:a1:a5:02:10:e1:64:b5:40:da:
#         1e:ad:d1:a6:ee:ac:1e:c7:11:db:17:71:7a:d9:9a:1e:c6:4e:
#         9b:f4:a8:b3:94:9f:09:8a:7f:4c:9b:fe:08:0b:2c:ab:50:d0:
#         37:b2:49:35:1a:b7:1e:29:21:76:e1:9b:f0:a1:aa:58:67:24:
#         03:e1:19:a4:d1:13:6a:f1

[p11-kit-object-v1]
label: "Swisscom Root CA 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA0LmwqAzZuz8h+BvVM5OA
FmUgdbI9m2BtRsiMMW8Xw/qabFbtPMWRV8PNq5ZJkCoZSx6jbVfd8StiKHVFXqrW
W/oLJdihFvkcxC7mlSpnzNApbjyFNDhhSbEAn9Y6cV9Nbc5fuankiX9qUvrKm/Lc
qfmdmUc/TilftKaNXXsLmREDA/7n29uj/x2lzZAeAR81sH8A25Bvxn570e56eqeq
DFdvpG3FEzuwpdntMhy0XmeLVNxzh+XTF3xmUHJd1BpYwdnP2IkCb6dJtDZd0KTe
Byy2dbcokdaXvij1mB7qWybJvbCXc9qukSbraMH5ORXWZ0sKbU/Lz7DkQnGMU3nn
7uHbHaBuHYwadzVcFh4rUx80i9Fs/PJnB3r1re3WmquhsUvhzDdf/X/NTa64H5xD
+SpYVUNFvJbNcA78yeNmuk6NO4HLFWR7uZToXTNShXEuT46iBhFRyePLoW4xCGQM
wtI89Tbo19AOeCMgkckkKmUpWyL3Ic6DXqTz3kvTaI9GdVyDCW4pa8RwjPWd1yAv
/0bSKzjCL3UcPX7ape8eYIVpQtPM+GP+HkM5haa2Y0EQs3MevNP6yn0WR+Kn1dCj
igoIlmJWbjTb2QK5MHXjBNLnj8KwEUAKrNVxAmKLMb7dxiNYMUJDLXT5xp6mig/p
/r+D5kNXJLrvRjSq1xIBOO0CAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swisscom Root CA 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5c:0b:85:5c:0b:e7:59:41:df:57:cc:3f:7f:9d:a8:36
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=ch, O=Swisscom, OU=Digital Certificate Services, CN=Swisscom Root CA 1
#        Validity
#            Not Before: Aug 18 12:06:20 2005 GMT
#            Not After : Aug 18 22:06:20 2025 GMT
#        Subject: C=ch, O=Swisscom, OU=Digital Certificate Services, CN=Swisscom Root CA 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d0:b9:b0:a8:0c:d9:bb:3f:21:f8:1b:d5:33:93:
#                    80:16:65:20:75:b2:3d:9b:60:6d:46:c8:8c:31:6f:
#                    17:c3:fa:9a:6c:56:ed:3c:c5:91:57:c3:cd:ab:96:
#                    49:90:2a:19:4b:1e:a3:6d:57:dd:f1:2b:62:28:75:
#                    45:5e:aa:d6:5b:fa:0b:25:d8:a1:16:f9:1c:c4:2e:
#                    e6:95:2a:67:cc:d0:29:6e:3c:85:34:38:61:49:b1:
#                    00:9f:d6:3a:71:5f:4d:6d:ce:5f:b9:a9:e4:89:7f:
#                    6a:52:fa:ca:9b:f2:dc:a9:f9:9d:99:47:3f:4e:29:
#                    5f:b4:a6:8d:5d:7b:0b:99:11:03:03:fe:e7:db:db:
#                    a3:ff:1d:a5:cd:90:1e:01:1f:35:b0:7f:00:db:90:
#                    6f:c6:7e:7b:d1:ee:7a:7a:a7:aa:0c:57:6f:a4:6d:
#                    c5:13:3b:b0:a5:d9:ed:32:1c:b4:5e:67:8b:54:dc:
#                    73:87:e5:d3:17:7c:66:50:72:5d:d4:1a:58:c1:d9:
#                    cf:d8:89:02:6f:a7:49:b4:36:5d:d0:a4:de:07:2c:
#                    b6:75:b7:28:91:d6:97:be:28:f5:98:1e:ea:5b:26:
#                    c9:bd:b0:97:73:da:ae:91:26:eb:68:c1:f9:39:15:
#                    d6:67:4b:0a:6d:4f:cb:cf:b0:e4:42:71:8c:53:79:
#                    e7:ee:e1:db:1d:a0:6e:1d:8c:1a:77:35:5c:16:1e:
#                    2b:53:1f:34:8b:d1:6c:fc:f2:67:07:7a:f5:ad:ed:
#                    d6:9a:ab:a1:b1:4b:e1:cc:37:5f:fd:7f:cd:4d:ae:
#                    b8:1f:9c:43:f9:2a:58:55:43:45:bc:96:cd:70:0e:
#                    fc:c9:e3:66:ba:4e:8d:3b:81:cb:15:64:7b:b9:94:
#                    e8:5d:33:52:85:71:2e:4f:8e:a2:06:11:51:c9:e3:
#                    cb:a1:6e:31:08:64:0c:c2:d2:3c:f5:36:e8:d7:d0:
#                    0e:78:23:20:91:c9:24:2a:65:29:5b:22:f7:21:ce:
#                    83:5e:a4:f3:de:4b:d3:68:8f:46:75:5c:83:09:6e:
#                    29:6b:c4:70:8c:f5:9d:d7:20:2f:ff:46:d2:2b:38:
#                    c2:2f:75:1c:3d:7e:da:a5:ef:1e:60:85:69:42:d3:
#                    cc:f8:63:fe:1e:43:39:85:a6:b6:63:41:10:b3:73:
#                    1e:bc:d3:fa:ca:7d:16:47:e2:a7:d5:d0:a3:8a:0a:
#                    08:96:62:56:6e:34:db:d9:02:b9:30:75:e3:04:d2:
#                    e7:8f:c2:b0:11:40:0a:ac:d5:71:02:62:8b:31:be:
#                    dd:c6:23:58:31:42:43:2d:74:f9:c6:9e:a6:8a:0f:
#                    e9:fe:bf:83:e6:43:57:24:ba:ef:46:34:aa:d7:12:
#                    01:38:ed
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Policy Mappings: 
#                2.16.756.1.83.0.1:2.16.756.1.83.0.1
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:7
#            X509v3 Authority Key Identifier: 
#                keyid:03:25:2F:DE:6F:82:01:3A:5C:2C:DC:2B:A1:69:B5:67:D4:8C:D3:FD
#
#            X509v3 Subject Key Identifier: 
#                03:25:2F:DE:6F:82:01:3A:5C:2C:DC:2B:A1:69:B5:67:D4:8C:D3:FD
#    Signature Algorithm: sha1WithRSAEncryption
#         35:10:cb:ec:a6:04:0d:0d:0f:cd:c0:db:ab:a8:f2:88:97:0c:
#         df:93:2f:4d:7c:40:56:31:7a:eb:a4:0f:60:cd:7a:f3:be:c3:
#         27:8e:03:3e:a4:dd:12:ef:7e:1e:74:06:3c:3f:31:f2:1c:7b:
#         91:31:21:b4:f0:d0:6c:97:d4:e9:97:b2:24:56:1e:56:c3:35:
#         bd:88:05:0f:5b:10:1a:64:e1:c7:82:30:f9:32:ad:9e:50:2c:
#         e7:78:05:d0:31:b1:5a:98:8a:75:4e:90:5c:6a:14:2a:e0:52:
#         47:82:60:e6:1e:da:81:b1:fb:14:0b:5a:f1:9f:d2:95:ba:3e:
#         d0:1b:d6:15:1d:a3:be:86:d5:db:0f:c0:49:64:bb:2e:50:19:
#         4b:d2:24:f8:dd:1e:07:56:d0:38:a0:95:70:20:76:8c:d7:dd:
#         1e:de:9f:71:c4:23:ef:83:13:5c:a3:24:15:4d:29:40:3c:6a:
#         c4:a9:d8:b7:a6:44:a5:0d:f4:e0:9d:77:1e:40:70:26:fc:da:
#         d9:36:e4:79:e4:b5:3f:bc:9b:65:be:bb:11:96:cf:db:c6:28:
#         39:3a:08:ce:47:5b:53:5a:c5:99:fe:5d:a9:dd:ef:4c:d4:c6:
#         a5:ad:02:e6:8c:07:12:1e:6f:03:d1:6f:a0:a3:f3:29:bd:12:
#         c7:50:a2:b0:7f:88:a9:99:77:9a:b1:c0:a5:39:2e:5c:7c:69:
#         e2:2c:b0:ea:37:6a:a4:e1:5a:e1:f5:50:e5:83:ef:a5:bb:2a:
#         88:e7:8c:db:fd:6d:5e:97:19:a8:7e:66:75:6b:71:ea:bf:b1:
#         c7:6f:a0:f4:8e:a4:ec:34:51:5b:8c:26:03:70:a1:77:d5:01:
#         12:57:00:35:db:23:de:0e:8a:28:99:fd:b1:10:6f:4b:ff:38:
#         2d:60:4e:2c:9c:eb:67:b5:ad:49:ee:4b:1f:ac:af:fb:0d:90:
#         5a:66:60:70:5d:aa:cd:78:d4:24:ee:c8:41:a0:93:01:92:9c:
#         6a:9e:fc:b9:24:c5:b3:15:82:7e:be:ae:95:2b:eb:b1:c0:da:
#         e3:01:60:0b:5e:69:ac:84:56:61:be:71:17:fe:1d:13:0f:fe:
#         c6:87:45:e9:fe:32:a0:1a:0d:13:a4:94:55:71:a5:16:8b:ba:
#         ca:89:b0:b2:c7:fc:8f:d8:54:b5:93:62:9d:ce:cf:59:fb:3d:
#         18:ce:2a:cb:35:15:82:5d:ff:54:22:5b:71:52:fb:b7:c9:fe:
#         60:9b:00:41:64:f0:aa:2a:ec:b6:42:43:ce:89:66:81:c8:8b:
#         9f:39:54:03:25:d3:16:35:8e:84:d0:5f:fa:30:1a:f5:9a:6c:
#         f4:0e:53:f9:3a:5b:d1:1c

[p11-kit-object-v1]
label: "Swisscom Root CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swisscom Root CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            1e:9e:28:e8:48:f2:e5:ef:c3:7c:4a:1e:5a:18:67:b6
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ch, O=Swisscom, OU=Digital Certificate Services, CN=Swisscom Root CA 2
#        Validity
#            Not Before: Jun 24 08:38:14 2011 GMT
#            Not After : Jun 25 07:38:14 2031 GMT
#        Subject: C=ch, O=Swisscom, OU=Digital Certificate Services, CN=Swisscom Root CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:95:42:4e:84:9d:51:e6:d3:09:e8:72:5a:23:69:
#                    db:78:70:8e:16:f1:2b:8f:0d:03:ce:93:cc:2e:00:
#                    08:7b:ab:33:8c:f4:e9:40:e6:17:4c:ab:9e:b8:47:
#                    14:32:77:32:dd:28:0c:de:18:4b:5f:76:9f:f8:39:
#                    3b:fc:4e:89:d8:7c:c5:67:ef:ab:d2:b9:34:5f:6b:
#                    3a:f3:64:36:ce:c2:b0:cf:13:68:ca:c8:cb:eb:b5:
#                    e2:3d:2e:21:df:ea:2c:d4:e0:f9:70:96:4c:ff:6a:
#                    58:98:b7:17:e4:1b:52:e5:7e:07:00:1d:5f:da:e6:
#                    3e:95:04:b7:69:88:39:a1:41:60:25:61:4b:95:39:
#                    68:62:1c:b1:0b:05:89:c0:36:82:14:21:3f:ae:db:
#                    a1:fd:bc:6f:1c:60:86:b6:53:94:49:b9:2b:46:c5:
#                    4f:00:2b:bf:a1:bb:cb:3f:e0:c7:57:1c:57:e8:d6:
#                    69:f8:c1:24:52:9d:88:55:dd:c2:87:2e:74:23:d0:
#                    14:fd:2a:47:5a:bb:a6:9d:fd:94:e4:d1:8a:a5:5f:
#                    86:63:76:85:cb:af:ff:49:28:fc:80:ed:4c:79:d2:
#                    bb:e4:c0:ef:01:ee:50:41:08:35:23:70:2b:a9:16:
#                    b4:8c:6e:85:e9:b6:11:cf:31:dd:53:26:1b:df:2d:
#                    5a:4a:02:40:fc:c4:c0:b6:e9:31:1a:08:28:e5:60:
#                    c3:1f:c4:90:8e:10:62:60:44:0d:ec:0a:be:55:18:
#                    71:2c:a5:f4:b2:bc:15:62:ff:1c:e3:be:1d:da:1e:
#                    57:b3:3c:7e:cd:82:1d:91:e3:4b:eb:2c:52:34:b0:
#                    8a:fd:12:4e:96:b0:eb:70:7f:9e:39:f7:66:42:b1:
#                    ab:ac:52:da:76:40:57:7b:2a:bd:e8:6e:03:b2:0b:
#                    80:85:88:9d:0c:c7:c2:77:b0:9a:9a:57:f4:b8:fa:
#                    13:5c:68:93:3a:67:a4:97:d0:1b:99:b7:86:32:4b:
#                    60:d8:ce:ef:d0:0c:7f:95:9f:6f:87:4f:87:8a:8e:
#                    5f:08:7c:aa:5b:fc:5a:be:a1:91:9f:55:7d:4e:b0:
#                    0b:69:cc:b0:94:a8:a7:87:f2:d3:4a:50:dc:5f:72:
#                    b0:16:75:1e:cb:b4:18:62:9a:b0:a7:39:aa:9b:9f:
#                    66:d8:8d:a6:6c:96:15:e3:e6:f2:f8:f1:83:62:6c:
#                    bb:55:e9:61:93:a3:3d:f5:b1:57:8b:4f:23:b0:9b:
#                    e5:94:6a:2f:df:8c:df:95:51:29:60:a1:0b:29:e4:
#                    5c:55:58:b7:a8:fc:99:ee:25:4d:4c:0e:b3:d3:4c:
#                    8f:84:e8:29:0f:fd:10:54:02:85:c8:f9:e5:c3:8b:
#                    cf:e7:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Policy Mappings: 
#                2.16.756.1.83.2.1:2.16.756.1.83.2.1
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:7
#            X509v3 Subject Key Identifier: 
#                4D:26:20:22:89:4B:D3:D5:A4:0A:A1:6F:DE:E2:12:81:C5:F1:3C:2E
#            X509v3 Authority Key Identifier: 
#                keyid:4D:26:20:22:89:4B:D3:D5:A4:0A:A1:6F:DE:E2:12:81:C5:F1:3C:2E
#
#    Signature Algorithm: sha256WithRSAEncryption
#         32:0a:b2:a4:1b:cb:7d:be:82:57:89:b9:6a:7f:f3:f4:c1:2e:
#         11:7d:b8:19:3e:79:b7:a8:a8:72:37:66:9b:1a:ed:ac:13:3b:
#         0e:bf:62:f0:9c:df:9e:7b:a1:53:48:0e:41:7a:ca:20:a7:17:
#         1b:b6:78:ec:40:91:f3:42:ad:10:c3:5c:ef:ff:60:59:7f:cd:
#         85:a3:8b:3d:48:1c:25:02:3c:67:7d:f5:32:e9:2f:30:e5:7d:
#         a5:7a:38:d0:f3:66:2a:66:1e:8d:33:83:8a:6f:7c:6e:a8:5a:
#         75:9a:b8:d7:da:58:48:44:47:a8:4c:fa:4c:49:0a:4a:c2:12:
#         37:a8:40:0c:c3:c8:e1:d0:57:0d:97:32:95:c7:3a:9f:97:d3:
#         57:f8:0b:de:e5:72:f3:a3:db:ff:b5:d8:59:b2:73:dd:4d:2a:
#         71:b2:ba:49:f5:cb:1c:d5:f5:79:c8:99:b3:fc:c1:4c:74:e3:
#         b4:bd:29:37:15:04:28:1e:de:45:46:70:ec:af:ba:78:0e:8a:
#         2a:ce:00:79:dc:c0:5f:19:67:2c:6b:4b:ef:68:68:0b:43:e3:
#         ac:c1:62:09:ef:a6:dd:65:61:a0:af:84:55:48:91:52:1c:c6:
#         25:91:2a:d0:c1:22:23:61:59:af:45:11:85:1d:01:24:34:8f:
#         cf:b3:ff:17:72:20:13:c2:80:aa:21:2c:71:39:0e:d0:8f:5c:
#         c1:d3:d1:8e:22:72:46:4c:1d:96:ae:4f:71:b1:e1:05:29:96:
#         59:f4:bb:9e:75:3d:cf:0d:37:0d:62:db:26:8c:63:a9:23:df:
#         67:06:3c:7c:3a:da:34:42:e1:66:b4:46:04:de:c6:96:98:0f:
#         4b:48:7a:24:32:75:91:9f:ac:f7:68:e9:2a:b9:55:65:ce:5d:
#         61:d3:27:70:d8:37:fe:9f:b9:af:a0:2e:56:b7:a3:65:51:ed:
#         3b:ab:14:bf:4c:51:03:e8:5f:8a:05:9b:ee:8a:6e:9c:ef:bf:
#         68:fa:c8:da:0b:e3:42:c9:d0:17:14:9c:b7:4a:e0:af:93:27:
#         21:55:26:b5:64:2f:8d:f1:ff:a6:40:05:85:05:5c:ca:07:19:
#         5c:0b:13:28:4c:58:7f:c2:a5:ef:45:da:60:d3:ae:65:61:9d:
#         53:83:74:c2:ae:f2:5c:c2:16:ed:92:3e:84:3e:73:60:88:bc:
#         76:f4:2c:cf:d0:7d:7d:d3:b8:5e:d1:91:12:10:e9:cd:dd:ca:
#         25:e3:d5:ed:99:2f:be:75:81:4b:24:f9:45:46:94:c9:29:21:
#         53:9c:26:45:aa:13:17:e4:e7:cd:78:e2:39:c1:2b:12:9e:a6:
#         9e:1b:c5:e6:0e:d9:31:d9

[p11-kit-object-v1]
label: "Swisscom Root EV CA 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxPcdL1fqV2z3cF1jsHFS
CWBEKDOjek4K+tjqbItRFhpVrlQmxMxFB0FPEHl/cdJ6Tj84TrMAxpXKW83BKoPX
Jx8xDiMWtyXLHLS5gDJeGp2T8eg8YCynXlcZWFFevCxWC7jY74uCtDy4wiSoE8eg
ITYbelcpKKcuv3ElkPNEg2lQpOThG2IZlAmj88O87/S97NsTnc+dSAlSZ8A3KREe
+9IRp4UYdHnkT4UU61I34rFF2MwNQ3+uE9JrKz+nwuKobXZbQ5++tJ2zJoY7H3/l
8uhmKBYl0EuXOKfkzwnRNsMLvto7RFiNvvGeCWs+8zLHK4fG7F6c9odlrTMpxC+J
2bnLyQOd+2yUUZcQG4YLGhs/9gJ+e9TFUWQonfXTrIOBiNN0tFmdwethM1pF0cs5
0AZqU2Adr/b7abxq3AHPvfmP2b1bwTpfjtoPS6mbnSooaxoKfDyrIgvldy1x9oI1
ga74e4Hm6v6s9BqbdFzojyT2XZ1GxCzSHishaoMnZ1VKpOPIMpdmkHLa49RkLl/j
oWr2YNTnNc3KxGiN13HI0yQzc7Fs+WrhKNtfxj3ovlXmNxvtJNkPGY9fYxhYUIFR
ZW/yn35qBOc0JHG6dktYHhm9FWBFqgwSQAGdEOLHOAdyCmXAtrslKdoWnos1i2Ht
5XFXg7U8cZ/jT79+HoGfQZcCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Swisscom Root EV CA 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            f2:fa:64:e2:74:63:d3:8d:fd:10:1d:04:1f:76:ca:58
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=ch, O=Swisscom, OU=Digital Certificate Services, CN=Swisscom Root EV CA 2
#        Validity
#            Not Before: Jun 24 09:45:08 2011 GMT
#            Not After : Jun 25 08:45:08 2031 GMT
#        Subject: C=ch, O=Swisscom, OU=Digital Certificate Services, CN=Swisscom Root EV CA 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c4:f7:1d:2f:57:ea:57:6c:f7:70:5d:63:b0:71:
#                    52:09:60:44:28:33:a3:7a:4e:0a:fa:d8:ea:6c:8b:
#                    51:16:1a:55:ae:54:26:c4:cc:45:07:41:4f:10:79:
#                    7f:71:d2:7a:4e:3f:38:4e:b3:00:c6:95:ca:5b:cd:
#                    c1:2a:83:d7:27:1f:31:0e:23:16:b7:25:cb:1c:b4:
#                    b9:80:32:5e:1a:9d:93:f1:e8:3c:60:2c:a7:5e:57:
#                    19:58:51:5e:bc:2c:56:0b:b8:d8:ef:8b:82:b4:3c:
#                    b8:c2:24:a8:13:c7:a0:21:36:1b:7a:57:29:28:a7:
#                    2e:bf:71:25:90:f3:44:83:69:50:a4:e4:e1:1b:62:
#                    19:94:09:a3:f3:c3:bc:ef:f4:bd:ec:db:13:9d:cf:
#                    9d:48:09:52:67:c0:37:29:11:1e:fb:d2:11:a7:85:
#                    18:74:79:e4:4f:85:14:eb:52:37:e2:b1:45:d8:cc:
#                    0d:43:7f:ae:13:d2:6b:2b:3f:a7:c2:e2:a8:6d:76:
#                    5b:43:9f:be:b4:9d:b3:26:86:3b:1f:7f:e5:f2:e8:
#                    66:28:16:25:d0:4b:97:38:a7:e4:cf:09:d1:36:c3:
#                    0b:be:da:3b:44:58:8d:be:f1:9e:09:6b:3e:f3:32:
#                    c7:2b:87:c6:ec:5e:9c:f6:87:65:ad:33:29:c4:2f:
#                    89:d9:b9:cb:c9:03:9d:fb:6c:94:51:97:10:1b:86:
#                    0b:1a:1b:3f:f6:02:7e:7b:d4:c5:51:64:28:9d:f5:
#                    d3:ac:83:81:88:d3:74:b4:59:9d:c1:eb:61:33:5a:
#                    45:d1:cb:39:d0:06:6a:53:60:1d:af:f6:fb:69:bc:
#                    6a:dc:01:cf:bd:f9:8f:d9:bd:5b:c1:3a:5f:8e:da:
#                    0f:4b:a9:9b:9d:2a:28:6b:1a:0a:7c:3c:ab:22:0b:
#                    e5:77:2d:71:f6:82:35:81:ae:f8:7b:81:e6:ea:fe:
#                    ac:f4:1a:9b:74:5c:e8:8f:24:f6:5d:9d:46:c4:2c:
#                    d2:1e:2b:21:6a:83:27:67:55:4a:a4:e3:c8:32:97:
#                    66:90:72:da:e3:d4:64:2e:5f:e3:a1:6a:f6:60:d4:
#                    e7:35:cd:ca:c4:68:8d:d7:71:c8:d3:24:33:73:b1:
#                    6c:f9:6a:e1:28:db:5f:c6:3d:e8:be:55:e6:37:1b:
#                    ed:24:d9:0f:19:8f:5f:63:18:58:50:81:51:65:6f:
#                    f2:9f:7e:6a:04:e7:34:24:71:ba:76:4b:58:1e:19:
#                    bd:15:60:45:aa:0c:12:40:01:9d:10:e2:c7:38:07:
#                    72:0a:65:c0:b6:bb:25:29:da:16:9e:8b:35:8b:61:
#                    ed:e5:71:57:83:b5:3c:71:9f:e3:4f:bf:7e:1e:81:
#                    9f:41:97
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Policy Mappings: 
#                2.16.756.1.83.2.2:2.16.756.1.83.2.2
#            X509v3 Basic Constraints: critical
#                CA:TRUE, pathlen:3
#            X509v3 Subject Key Identifier: 
#                45:D9:A5:81:6E:3D:88:4D:8D:71:D2:46:C1:6E:45:1E:F3:C4:80:9D
#            X509v3 Authority Key Identifier: 
#                keyid:45:D9:A5:81:6E:3D:88:4D:8D:71:D2:46:C1:6E:45:1E:F3:C4:80:9D
#
#    Signature Algorithm: sha256WithRSAEncryption
#         94:3a:73:06:9f:52:4b:30:5c:d4:fe:b1:5c:25:f9:d7:8e:6f:
#         f5:87:64:9f:ed:14:8e:b8:04:8e:28:4b:8f:aa:7b:8e:39:b4:
#         d9:58:f6:7b:a1:35:0a:a1:9d:8a:f7:63:e5:eb:bd:39:82:d4:
#         e3:7a:2d:6f:df:13:3c:ba:fe:7e:56:98:0b:f3:54:9f:cd:44:
#         4e:6e:3c:e1:3e:15:bf:06:26:9d:e4:f0:90:b6:d4:c2:9e:30:
#         2e:1f:ef:c7:7a:c4:50:c7:ea:7b:da:50:cb:7a:26:cb:00:b4:
#         5a:ab:b5:93:1f:80:89:84:04:95:8d:8d:7f:09:93:bf:d4:a8:
#         a8:e4:63:6d:d9:64:e4:b8:29:5a:08:bf:50:e1:84:0f:55:7b:
#         5f:08:22:1b:f5:bd:99:1e:14:f6:ce:f4:58:10:82:b3:0a:3d:
#         19:c1:bf:5b:ab:aa:99:d8:f2:31:bd:e5:38:66:dc:58:05:c7:
#         ed:63:1a:2e:0a:97:7c:87:93:2b:b2:8a:e3:f1:ec:18:e5:75:
#         b6:29:87:e7:dc:8b:1a:7e:b4:d8:c9:d3:8a:17:6c:7d:29:44:
#         be:8a:aa:f5:7e:3a:2e:68:31:93:b9:6a:da:9a:e0:db:e9:2e:
#         a5:84:cd:1c:0a:b8:4a:08:f9:9c:f1:61:26:98:93:b7:7b:66:
#         ec:91:5e:dd:51:3f:db:73:0f:ad:04:58:09:dd:04:02:95:0a:
#         3e:d3:76:df:a6:10:1e:80:3d:e8:cd:a4:64:d1:33:c7:92:c7:
#         e2:4e:44:e3:09:c9:4e:c2:5d:87:0e:12:9e:bf:0f:c9:05:10:
#         de:7a:a3:b1:3c:f2:3f:a5:aa:27:79:ad:31:7d:1f:fd:fc:19:
#         69:c5:dd:b9:3f:7c:cd:c6:b4:c2:30:1e:7e:6e:92:d7:7f:61:
#         76:5a:8f:eb:95:4d:bc:11:6e:21:7c:59:37:99:d0:06:bc:f9:
#         06:6d:32:16:a5:d9:69:a8:e1:dc:3c:80:1e:60:51:dc:d7:54:
#         21:1e:ca:62:77:4f:fa:d8:8f:b3:2b:3a:0d:78:72:c9:68:41:
#         5a:47:4a:c2:a3:eb:1a:d7:0a:ab:3c:32:55:c8:0a:11:9c:df:
#         74:d6:f0:40:15:1d:c8:b9:8f:b5:36:c5:af:f8:22:b8:ca:1d:
#         f3:d6:b6:19:0f:9f:61:65:6a:ea:74:c8:7c:8f:c3:4f:5d:65:
#         82:1f:d9:0d:89:da:75:72:fb:ef:f1:47:67:13:b3:c8:d1:19:
#         88:27:26:9a:99:79:7f:1e:e4:2c:3f:7b:ee:f1:de:4d:8b:96:
#         97:c3:d5:3f:7c:1b:23:ed:a4:b3:1d:16:72:43:4b:20:e1:59:
#         7e:c2:e8:ad:26:bf:a2:f7

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEV8/qszlNP6Eh4G4vOHLGh5fzhQtH5w9R
yNH0mZvKWWX/TPnqC7cl1dL27DEtMmIS13aGp/o4yWXU/nPihDn4TEliE9261Yig
Xz3IT7A/j6FQEeSTRq3DX8vxpGqVVujA
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICpzCCAi2gAwIBAgIQTHm1miicdjFk9YlE0JEC3jAKBggqhkjOPQQDAzCBlDEL
MAkGA1UEBhMCVVMxHTAbBgNVBAoTFFN5bWFudGVjIENvcnBvcmF0aW9uMR8wHQYD
VQQLExZTeW1hbnRlYyBUcnVzdCBOZXR3b3JrMUUwQwYDVQQDEzxTeW1hbnRlYyBD
bGFzcyAzIFB1YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0g
RzQwHhcNMTIxMDE4MDAwMDAwWhcNMzcxMjAxMjM1OTU5WjCBlDELMAkGA1UEBhMC
VVMxHTAbBgNVBAoTFFN5bWFudGVjIENvcnBvcmF0aW9uMR8wHQYDVQQLExZTeW1h
bnRlYyBUcnVzdCBOZXR3b3JrMUUwQwYDVQQDEzxTeW1hbnRlYyBDbGFzcyAzIFB1
YmxpYyBQcmltYXJ5IENlcnRpZmljYXRpb24gQXV0aG9yaXR5IC0gRzQwdjAQBgcq
hkjOPQIBBgUrgQQAIgNiAARXz+qzOU0/oSHgbi84csaHl/OFC0fnD1HI0fSZm8pZ
Zf9M+eoLtyXV0vbsMS0yYhLXdoan+jjJZdT+c+KEOfhMSWIT3brViKBfPchPsD+P
oVAR5JNGrcNfy/GkapVW6MCjQjBAMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8E
BTADAQH/MB0GA1UdDgQWBBQknbzScfcdwiW+IvGJpSwVOzQeXjAKBggqhkjOPQQD
AwNoADBlAjEAuWZoZdsF0Dh9DvPIdWG40CjEsUozUVj78jwQyK5HeHbKZiQXhj5Q
Vm6lLZmIuL0kAjAD6qfnqDzqnWLGX1TamPR3vU+PGJyRXEdrQE0QHbPhicoLIsga
xcX+i93B3294n5E=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4c:79:b5:9a:28:9c:76:31:64:f5:89:44:d0:91:02:de
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Public Primary Certification Authority - G4
#        Validity
#            Not Before: Oct 18 00:00:00 2012 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Public Primary Certification Authority - G4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:57:cf:ea:b3:39:4d:3f:a1:21:e0:6e:2f:38:72:
#                    c6:87:97:f3:85:0b:47:e7:0f:51:c8:d1:f4:99:9b:
#                    ca:59:65:ff:4c:f9:ea:0b:b7:25:d5:d2:f6:ec:31:
#                    2d:32:62:12:d7:76:86:a7:fa:38:c9:65:d4:fe:73:
#                    e2:84:39:f8:4c:49:62:13:dd:ba:d5:88:a0:5f:3d:
#                    c8:4f:b0:3f:8f:a1:50:11:e4:93:46:ad:c3:5f:cb:
#                    f1:a4:6a:95:56:e8:c0
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                24:9D:BC:D2:71:F7:1D:C2:25:BE:22:F1:89:A5:2C:15:3B:34:1E:5E
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:b9:66:68:65:db:05:d0:38:7d:0e:f3:c8:75:
#         61:b8:d0:28:c4:b1:4a:33:51:58:fb:f2:3c:10:c8:ae:47:78:
#         76:ca:66:24:17:86:3e:50:56:6e:a5:2d:99:88:b8:bd:24:02:
#         30:03:ea:a7:e7:a8:3c:ea:9d:62:c6:5f:54:da:98:f4:77:bd:
#         4f:8f:18:9c:91:5c:47:6b:40:4d:10:1d:b3:e1:89:ca:0b:22:
#         c8:1a:c5:c5:fe:8b:dd:c1:df:6f:78:9f:91

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G6"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Class 3 Public Primary Certification Authority - G6"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            65:63:71:85:d3:6f:45:c6:8f:7f:31:f9:09:87:92:82
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Public Primary Certification Authority - G6
#        Validity
#            Not Before: Oct 18 00:00:00 2012 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Public Primary Certification Authority - G6
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b7:0e:b2:fa:4d:bc:9a:72:15:fb:77:5b:db:fd:
#                    43:0f:cb:0b:f7:60:2e:b3:2b:7e:0c:bb:53:f2:cc:
#                    4e:65:f3:19:bb:ff:35:1d:f7:d3:a9:bb:40:2d:b5:
#                    dd:78:d4:a6:f9:37:ea:85:05:7b:6d:b7:e6:13:4b:
#                    06:7c:fb:76:63:8f:20:1d:2d:38:2b:04:85:f2:e8:
#                    b0:d1:5f:4d:4a:21:c9:6a:d8:94:ea:1e:02:50:a6:
#                    aa:90:07:a0:47:21:ea:66:f9:04:a0:e6:83:f0:c4:
#                    f5:5e:96:e2:27:4d:61:c3:b3:c1:8c:22:b6:66:a1:
#                    00:d1:56:29:fb:ed:c1:7f:24:ca:3d:fa:5a:94:b0:
#                    84:c3:c7:ba:43:1c:fd:64:0e:f1:28:fb:47:59:f2:
#                    26:e1:31:b9:44:f9:ab:dd:fb:be:be:2c:37:e3:ac:
#                    0b:18:d3:fc:01:a2:f1:a4:0a:35:82:47:4c:ab:bd:
#                    8a:5e:df:13:85:fc:20:cc:48:59:af:af:41:6f:cb:
#                    23:cd:ca:93:a7:dd:d5:5f:c8:64:3b:ff:01:03:a0:
#                    0a:4f:2d:6e:3d:84:be:af:c8:32:b2:53:29:90:15:
#                    f7:b0:05:9a:0a:3c:f6:b9:06:90:c9:a5:e1:5d:a0:
#                    3b:b0:fe:a8:b6:bf:f5:89:28:57:24:3a:21:86:71:
#                    e4:dc:8a:8b:41:55:ec:1e:30:24:59:d1:c0:59:b8:
#                    78:af:aa:5a:74:de:25:80:30:98:ed:30:44:6f:21:
#                    70:1c:db:12:53:0e:d6:a6:28:66:93:2c:1f:cc:4f:
#                    3c:1b:81:c5:b9:f6:78:6f:d0:32:3a:08:72:db:6b:
#                    0e:46:17:85:94:f3:bc:ef:bc:f7:a4:5e:8e:e9:e9:
#                    b5:64:e5:b7:4b:45:12:2c:4c:37:b7:60:43:0a:4d:
#                    71:06:00:94:26:35:74:1f:bb:7a:39:5c:4e:3b:e6:
#                    b8:03:e2:c7:93:8b:84:2c:25:49:45:dd:7f:23:94:
#                    60:1f:cb:e9:cd:f6:ab:97:f7:61:e7:fb:7f:62:81:
#                    c8:dc:0a:30:5c:18:7c:e6:ce:ef:c7:6e:1e:87:7c:
#                    b3:e9:ca:c8:7b:6a:f4:68:fc:83:a5:0c:56:b4:ba:
#                    b2:8d:4a:0a:c7:97:97:c5:88:30:15:3d:10:08:54:
#                    15:72:72:67:33:33:f4:7c:b7:ce:00:27:53:65:ce:
#                    24:f1:5a:64:e7:36:2f:f2:2e:02:c2:97:df:72:e8:
#                    02:1e:a0:f7:3d:b5:fb:68:60:03:fa:33:a9:e6:12:
#                    6d:06:e1:a9:a8:5d:4e:3c:fe:d9:e7:00:65:ac:b6:
#                    19:4d:7b:83:7f:34:47:ea:e1:18:6d:b1:8b:1c:79:
#                    ab:e7:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                39:71:08:00:3E:DE:C8:86:E7:90:FF:E4:FD:21:0F:CE:24:19:16:F6
#    Signature Algorithm: sha384WithRSAEncryption
#         50:6b:88:4d:60:48:ce:5a:e3:22:ce:67:7c:84:a7:cd:1c:fd:
#         e9:0c:03:8c:36:af:0a:87:0e:6a:ae:57:ae:01:d0:36:bb:f2:
#         fd:b9:73:c1:5f:b5:a8:ae:4c:a2:fa:49:cb:07:46:16:36:bd:
#         e3:c8:57:38:7e:38:e4:bf:25:33:60:c6:dc:37:9c:63:bb:5e:
#         98:1e:1a:b2:82:f0:ae:a6:77:11:80:44:47:a1:29:c5:f0:b3:
#         3a:ce:98:f0:b8:ec:d3:0e:80:06:77:23:30:4c:ff:79:64:63:
#         22:5b:77:93:43:4b:75:b3:db:3b:6e:3b:4a:dd:f1:c8:ae:b5:
#         37:8a:95:88:3a:10:68:70:38:b9:5b:70:7e:d5:43:c9:fc:5f:
#         4f:e5:e6:7b:36:ee:f0:20:ed:47:57:13:26:10:5e:14:06:0d:
#         7b:76:07:c2:c6:2d:16:f4:ae:a7:6c:0f:bc:88:0f:4f:2c:02:
#         b6:a3:d7:22:e6:99:47:35:d8:8d:a5:4f:81:12:3a:11:7d:b3:
#         cc:0b:75:f3:1e:70:a3:1b:03:ea:fa:9a:e8:e6:2e:36:39:cc:
#         99:ce:3a:3f:0c:b7:ae:f8:43:99:b0:93:6e:6f:aa:d9:0f:6a:
#         31:91:bb:9c:d3:b4:28:fb:83:4c:7a:73:82:50:67:d2:0e:ac:
#         ed:60:c5:b2:5d:35:98:cf:87:7e:1e:59:1d:24:bc:56:ba:da:
#         a4:5a:d8:cc:e6:bc:1e:10:8f:1b:8c:8e:f3:c1:db:b7:be:d4:
#         b0:5b:65:8f:16:68:f3:56:c5:2a:19:16:4d:0f:b8:65:87:6d:
#         24:83:b8:62:dc:e0:47:61:1a:88:7b:ce:4e:7f:fd:dc:c6:0d:
#         5a:9a:a4:f3:b5:4c:f6:dd:31:a6:e8:1d:11:21:33:30:04:61:
#         7d:1c:e0:3e:4f:8d:3f:b5:8b:12:00:5a:7d:a9:a1:00:d4:83:
#         eb:70:bb:18:f8:a4:d2:1c:81:2d:b7:08:11:c8:26:7b:b6:d4:
#         e5:0f:03:46:72:d4:25:40:1e:be:49:5d:6d:93:f1:5c:b2:3b:
#         75:54:69:3a:a0:ee:4c:22:ba:ac:9a:e2:08:ad:45:63:05:4a:
#         52:35:76:c4:34:f5:5e:07:32:ad:dc:7c:26:d1:5b:8f:ad:e4:
#         e6:aa:1b:75:9f:eb:5d:b4:e8:c0:a9:15:7c:4e:4a:07:72:df:
#         46:c9:d4:91:92:75:56:b0:e1:ee:37:36:65:28:c5:15:c8:2b:
#         76:cc:6d:6f:19:83:f4:fd:da:15:e2:41:e7:33:79:46:83:57:
#         f9:f1:a5:b6:6d:d3:bc:d7:53:e7:ee:71:6d:78:a9:97:a7:ee:
#         20:9c:19:15:72:15:3d:04

[p11-kit-object-v1]
label: "Symantec Enterprise Mobile Root for Microsoft"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtT2wcu6R6aVpnBFNevmz
+j3ylJsjt6YD7GIY/IUSIv7BcX1Uk7mRfWL2yqg4FWX4dz3lgiA61LXRbo0GSb3f
gg4khefveC0Y8uALaEY+JBDIV+4ObXGm07FWHNcp1bLqVAUKqDyhuCVSBwWg3+fc
7lw7QbWrXDMy0s7r6Zb4QPQKujMd+FYDCYL1ZwfEwDTBXfxFu+o8mtV0cW3VhtPC
/IW8VOuj1fJP1UWvV7zwIsCPokXIdTR33qFtN3Kzc40Ma1O6WeGoPoBX0l9Z7mh1
z4Gco8pFjDfbBXI0HDIC+NX5LA3aWJ7EF7SbyZDEiFk/cZGQRBi+Iot5ki5CsIuX
WwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Symantec Enterprise Mobile Root for Microsoft"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDvTCCAqWgAwIBAgIQD2tVL56/kHsPZimpvfTYzjANBgkqhkiG9w0BAQsFADBk
MQswCQYDVQQGEwJVUzEdMBsGA1UEChMUU3ltYW50ZWMgQ29ycG9yYXRpb24xNjA0
BgNVBAMTLVN5bWFudGVjIEVudGVycHJpc2UgTW9iaWxlIFJvb3QgZm9yIE1pY3Jv
c29mdDAeFw0xMjAzMTUwMDAwMDBaFw0zMjAzMTQyMzU5NTlaMGQxCzAJBgNVBAYT
AlVTMR0wGwYDVQQKExRTeW1hbnRlYyBDb3Jwb3JhdGlvbjE2MDQGA1UEAxMtU3lt
YW50ZWMgRW50ZXJwcmlzZSBNb2JpbGUgUm9vdCBmb3IgTWljcm9zb2Z0MIIBIjAN
BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtT2wcu6R6aVpnBFNevmz+j3ylJsj
t6YD7GIY/IUSIv7BcX1Uk7mRfWL2yqg4FWX4dz3lgiA61LXRbo0GSb3fgg4khefv
eC0Y8uALaEY+JBDIV+4ObXGm07FWHNcp1bLqVAUKqDyhuCVSBwWg3+fc7lw7QbWr
XDMy0s7r6Zb4QPQKujMd+FYDCYL1ZwfEwDTBXfxFu+o8mtV0cW3VhtPC/IW8VOuj
1fJP1UWvV7zwIsCPokXIdTR33qFtN3Kzc40Ma1O6WeGoPoBX0l9Z7mh1z4Gco8pF
jDfbBXI0HDIC+NX5LA3aWJ7EF7SbyZDEiFk/cZGQRBi+Iot5ki5CsIuXWwIDAQAB
o2swaTAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAnBgNVHREEIDAe
pBwwGjEYMBYGA1UEAxMPTVBLSS0yMDQ4LTEtMTExMB0GA1UdDgQWBBRN7N8mBtwk
EMC2mfTXOcdvGfgmKDANBgkqhkiG9w0BAQsFAAOCAQEAqVdZ0AFUFEavx3lUDGoq
W9g6HYHkiKMxtPHzNfFGc1xDyf68omoZwL0vX8s4o21u6BRe8nh+RXrhu/Qum0Xr
4B1QHDRbf5iKhg+H2uRkJnf8Cd8jQU8On/oO+kSF8CmXpJTi9EAtkRx29Khg3nGm
sAXiT2nZGQuJOuD6qyv68bMy7fx8cGVe0HsRe53oWxpKdqR7UTmsfakMdDjou1Xf
xM7ApyFauBufAcWnEP59+WoImQHR9jVQOOT2Q+QY2IBM7McE4mGMfUntz7Sl8fKQ
kgkINXOgIzLK6ZyeHL4LByx3XhdM2pyC4YAbpfPa94i/vzkn+CT+sUvIl+3kEhQl
iA==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0f:6b:55:2f:9e:bf:90:7b:0f:66:29:a9:bd:f4:d8:ce
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Symantec Corporation, CN=Symantec Enterprise Mobile Root for Microsoft
#        Validity
#            Not Before: Mar 15 00:00:00 2012 GMT
#            Not After : Mar 14 23:59:59 2032 GMT
#        Subject: C=US, O=Symantec Corporation, CN=Symantec Enterprise Mobile Root for Microsoft
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b5:3d:b0:72:ee:91:e9:a5:69:9c:11:4d:7a:f9:
#                    b3:fa:3d:f2:94:9b:23:b7:a6:03:ec:62:18:fc:85:
#                    12:22:fe:c1:71:7d:54:93:b9:91:7d:62:f6:ca:a8:
#                    38:15:65:f8:77:3d:e5:82:20:3a:d4:b5:d1:6e:8d:
#                    06:49:bd:df:82:0e:24:85:e7:ef:78:2d:18:f2:e0:
#                    0b:68:46:3e:24:10:c8:57:ee:0e:6d:71:a6:d3:b1:
#                    56:1c:d7:29:d5:b2:ea:54:05:0a:a8:3c:a1:b8:25:
#                    52:07:05:a0:df:e7:dc:ee:5c:3b:41:b5:ab:5c:33:
#                    32:d2:ce:eb:e9:96:f8:40:f4:0a:ba:33:1d:f8:56:
#                    03:09:82:f5:67:07:c4:c0:34:c1:5d:fc:45:bb:ea:
#                    3c:9a:d5:74:71:6d:d5:86:d3:c2:fc:85:bc:54:eb:
#                    a3:d5:f2:4f:d5:45:af:57:bc:f0:22:c0:8f:a2:45:
#                    c8:75:34:77:de:a1:6d:37:72:b3:73:8d:0c:6b:53:
#                    ba:59:e1:a8:3e:80:57:d2:5f:59:ee:68:75:cf:81:
#                    9c:a3:ca:45:8c:37:db:05:72:34:1c:32:02:f8:d5:
#                    f9:2c:0d:da:58:9e:c4:17:b4:9b:c9:90:c4:88:59:
#                    3f:71:91:90:44:18:be:22:8b:79:92:2e:42:b0:8b:
#                    97:5b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Alternative Name: 
#                DirName:/CN=MPKI-2048-1-111
#            X509v3 Subject Key Identifier: 
#                4D:EC:DF:26:06:DC:24:10:C0:B6:99:F4:D7:39:C7:6F:19:F8:26:28
#    Signature Algorithm: sha256WithRSAEncryption
#         a9:57:59:d0:01:54:14:46:af:c7:79:54:0c:6a:2a:5b:d8:3a:
#         1d:81:e4:88:a3:31:b4:f1:f3:35:f1:46:73:5c:43:c9:fe:bc:
#         a2:6a:19:c0:bd:2f:5f:cb:38:a3:6d:6e:e8:14:5e:f2:78:7e:
#         45:7a:e1:bb:f4:2e:9b:45:eb:e0:1d:50:1c:34:5b:7f:98:8a:
#         86:0f:87:da:e4:64:26:77:fc:09:df:23:41:4f:0e:9f:fa:0e:
#         fa:44:85:f0:29:97:a4:94:e2:f4:40:2d:91:1c:76:f4:a8:60:
#         de:71:a6:b0:05:e2:4f:69:d9:19:0b:89:3a:e0:fa:ab:2b:fa:
#         f1:b3:32:ed:fc:7c:70:65:5e:d0:7b:11:7b:9d:e8:5b:1a:4a:
#         76:a4:7b:51:39:ac:7d:a9:0c:74:38:e8:bb:55:df:c4:ce:c0:
#         a7:21:5a:b8:1b:9f:01:c5:a7:10:fe:7d:f9:6a:08:99:01:d1:
#         f6:35:50:38:e4:f6:43:e4:18:d8:80:4c:ec:c7:04:e2:61:8c:
#         7d:49:ed:cf:b4:a5:f1:f2:90:92:09:08:35:73:a0:23:32:ca:
#         e9:9c:9e:1c:be:0b:07:2c:77:5e:17:4c:da:9c:82:e1:80:1b:
#         a5:f3:da:f7:88:bf:bf:39:27:f8:24:fe:b1:4b:c8:97:ed:e4:
#         12:14:25:88

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAql/aG1/oc5Hl2lz0ouZH
5fNoVWAFHQKks5tZ8x6KrzSt/A3C2UgZ7mmPySD8IaoHGe2wXKxlx1/tAnx7fC0b
1rq5gMIYghaE+mawCMZUI4HkzblJP/ZPbjdIKDgPxb7naHD9OZdN0seYkVCqxESz
I305R+lSYtYSk163MZZCBft2px6j9cL86XrFbKlxT+rLeLxgr8fe9NnLvn4zpW6U
g/A0+iGr6o5yoD+k3jBb74ZNapVbQ0SoEBUc5QFXxZjx5gYokaogxbdTJlFDsgsR
lVjhwA922cCNfIHzcnCeb/4ajtlfNcaybzR8vkhP4lo519ideJ6fhj4DXhmLRKLV
xwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=DE, O=T-Systems Enterprise Services GmbH, OU=T-Systems Trust Center, CN=T-TeleSec GlobalRoot Class 2
#        Validity
#            Not Before: Oct  1 10:40:14 2008 GMT
#            Not After : Oct  1 23:59:59 2033 GMT
#        Subject: C=DE, O=T-Systems Enterprise Services GmbH, OU=T-Systems Trust Center, CN=T-TeleSec GlobalRoot Class 2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:aa:5f:da:1b:5f:e8:73:91:e5:da:5c:f4:a2:e6:
#                    47:e5:f3:68:55:60:05:1d:02:a4:b3:9b:59:f3:1e:
#                    8a:af:34:ad:fc:0d:c2:d9:48:19:ee:69:8f:c9:20:
#                    fc:21:aa:07:19:ed:b0:5c:ac:65:c7:5f:ed:02:7c:
#                    7b:7c:2d:1b:d6:ba:b9:80:c2:18:82:16:84:fa:66:
#                    b0:08:c6:54:23:81:e4:cd:b9:49:3f:f6:4f:6e:37:
#                    48:28:38:0f:c5:be:e7:68:70:fd:39:97:4d:d2:c7:
#                    98:91:50:aa:c4:44:b3:23:7d:39:47:e9:52:62:d6:
#                    12:93:5e:b7:31:96:42:05:fb:76:a7:1e:a3:f5:c2:
#                    fc:e9:7a:c5:6c:a9:71:4f:ea:cb:78:bc:60:af:c7:
#                    de:f4:d9:cb:be:7e:33:a5:6e:94:83:f0:34:fa:21:
#                    ab:ea:8e:72:a0:3f:a4:de:30:5b:ef:86:4d:6a:95:
#                    5b:43:44:a8:10:15:1c:e5:01:57:c5:98:f1:e6:06:
#                    28:91:aa:20:c5:b7:53:26:51:43:b2:0b:11:95:58:
#                    e1:c0:0f:76:d9:c0:8d:7c:81:f3:72:70:9e:6f:fe:
#                    1a:8e:d9:5f:35:c6:b2:6f:34:7c:be:48:4f:e2:5a:
#                    39:d7:d8:9d:78:9e:9f:86:3e:03:5e:19:8b:44:a2:
#                    d5:c7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                BF:59:20:36:00:79:A0:A0:22:6B:8C:D5:F2:61:D2:B8:2C:CB:82:4A
#    Signature Algorithm: sha256WithRSAEncryption
#         31:03:a2:61:0b:1f:74:e8:72:36:c6:6d:f9:4d:9e:fa:22:a8:
#         e1:81:56:cf:cd:bb:9f:ea:ab:91:19:38:af:aa:7c:15:4d:f3:
#         b6:a3:8d:a5:f4:8e:f6:44:a9:a7:e8:21:95:ad:3e:00:62:16:
#         88:f0:02:ba:fc:61:23:e6:33:9b:30:7a:6b:36:62:7b:ad:04:
#         23:84:58:65:e2:db:2b:8a:e7:25:53:37:62:53:5f:bc:da:01:
#         62:29:a2:a6:27:71:e6:3a:22:7e:c1:6f:1d:95:70:20:4a:07:
#         34:df:ea:ff:15:80:e5:ba:d7:7a:d8:5b:75:7c:05:7a:29:47:
#         7e:40:a8:31:13:77:cd:40:3b:b4:51:47:7a:2e:11:e3:47:11:
#         de:9d:66:d0:8b:d5:54:66:fa:83:55:ea:7c:c2:29:89:1b:e9:
#         6f:b3:ce:e2:05:84:c9:2f:3e:78:85:62:6e:c9:5f:c1:78:63:
#         74:58:c0:48:18:0c:99:39:eb:a4:cc:1a:b5:79:5a:8d:15:9c:
#         d8:14:0d:f6:7a:07:57:c7:22:83:05:2d:3c:9b:25:26:3d:18:
#         b3:a9:43:7c:c8:c8:ab:64:8f:0e:a3:bf:9c:1b:9d:30:db:da:
#         d0:19:2e:aa:3c:f1:fb:33:80:76:e4:cd:ad:19:4f:05:27:8e:
#         13:a1:6e:c2

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvXWT8GIibySu4Hp2rH29
2STVuLf8zfBC4Ot4iFZem5pUHU0MivbTz3D0UrXYkwTjRoZxQUor8CosVQPWSMPg
OTjt8lw8P0S8kz1hq07NDb7wICdYDkR/BBqHpdeWFDaQ0El7oXX7GmtzsfjOqQks
8lPVwxREuIal9osrOdqjM1TZ+nIa9yIVHIiRa39m5cNqgLAk89+GRYj9GX91hx8f
sRsKcyRbuWXgLFTIYNNmFz/hzFQzc5ECOqZ/e3Y5oh+WtjiutciTdB2eubTlYJ0v
VtHg615bTBJwDGxEIKsR2PQZ9tKcUjfn+rbCMTtK1BSZrcca9V1f+ge4fA0f1oMe
swIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "T-TeleSec GlobalRoot Class 3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=DE, O=T-Systems Enterprise Services GmbH, OU=T-Systems Trust Center, CN=T-TeleSec GlobalRoot Class 3
#        Validity
#            Not Before: Oct  1 10:29:56 2008 GMT
#            Not After : Oct  1 23:59:59 2033 GMT
#        Subject: C=DE, O=T-Systems Enterprise Services GmbH, OU=T-Systems Trust Center, CN=T-TeleSec GlobalRoot Class 3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:bd:75:93:f0:62:22:6f:24:ae:e0:7a:76:ac:7d:
#                    bd:d9:24:d5:b8:b7:fc:cd:f0:42:e0:eb:78:88:56:
#                    5e:9b:9a:54:1d:4d:0c:8a:f6:d3:cf:70:f4:52:b5:
#                    d8:93:04:e3:46:86:71:41:4a:2b:f0:2a:2c:55:03:
#                    d6:48:c3:e0:39:38:ed:f2:5c:3c:3f:44:bc:93:3d:
#                    61:ab:4e:cd:0d:be:f0:20:27:58:0e:44:7f:04:1a:
#                    87:a5:d7:96:14:36:90:d0:49:7b:a1:75:fb:1a:6b:
#                    73:b1:f8:ce:a9:09:2c:f2:53:d5:c3:14:44:b8:86:
#                    a5:f6:8b:2b:39:da:a3:33:54:d9:fa:72:1a:f7:22:
#                    15:1c:88:91:6b:7f:66:e5:c3:6a:80:b0:24:f3:df:
#                    86:45:88:fd:19:7f:75:87:1f:1f:b1:1b:0a:73:24:
#                    5b:b9:65:e0:2c:54:c8:60:d3:66:17:3f:e1:cc:54:
#                    33:73:91:02:3a:a6:7f:7b:76:39:a2:1f:96:b6:38:
#                    ae:b5:c8:93:74:1d:9e:b9:b4:e5:60:9d:2f:56:d1:
#                    e0:eb:5e:5b:4c:12:70:0c:6c:44:20:ab:11:d8:f4:
#                    19:f6:d2:9c:52:37:e7:fa:b6:c2:31:3b:4a:d4:14:
#                    99:ad:c7:1a:f5:5d:5f:fa:07:b8:7c:0d:1f:d6:83:
#                    1e:b3
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                B5:03:F7:76:3B:61:82:6A:12:AA:18:53:EB:03:21:94:BF:FE:CE:CA
#    Signature Algorithm: sha256WithRSAEncryption
#         56:3d:ef:94:d5:bd:da:73:b2:58:be:ae:90:ad:98:27:97:fe:
#         01:b1:b0:52:00:b8:4d:e4:1b:21:74:1b:7e:c0:ee:5e:69:2a:
#         25:af:5c:d6:1d:da:d2:79:c9:f3:97:29:e0:86:87:de:04:59:
#         0f:f1:59:d4:64:85:4b:99:af:25:04:1e:c9:46:a9:97:de:82:
#         b2:1b:70:9f:9c:f6:af:71:31:dd:7b:05:a5:2c:d3:b9:ca:47:
#         f6:ca:f2:f6:e7:ad:b9:48:3f:bc:16:b7:c1:6d:f4:ea:09:af:
#         ec:f3:b5:e7:05:9e:a6:1e:8a:53:51:d6:93:81:cc:74:93:f6:
#         b9:da:a6:25:05:74:79:5a:7e:40:3e:82:4b:26:11:30:6e:e1:
#         3f:41:c7:47:00:35:d5:f5:d3:f7:54:3e:81:3d:da:49:6a:9a:
#         b3:ef:10:3d:e6:eb:6f:d1:c8:22:47:cb:cc:cf:01:31:92:d9:
#         18:e3:22:be:09:1e:1a:3e:5a:b2:e4:6b:0c:54:7a:7d:43:4e:
#         b8:89:a5:7b:d7:a2:3d:96:86:cc:f2:26:34:2d:6a:92:9d:9a:
#         1a:d0:30:e2:5d:4e:04:b0:5f:8b:20:7e:77:c1:3d:95:82:d1:
#         46:9a:3b:3c:78:b8:6f:a1:d0:0d:64:a2:78:1e:29:4e:93:c3:
#         a4:54:14:5b

[p11-kit-object-v1]
label: "TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr3UwM6q7a9OZLBI3hNmN
e5eA027n/5tQlT6QlVZC1xl8JoSNkvoBHToP4mQ4t4y86Ij5iySrLqP1N+RAjhgl
eYN1Hzv/bKjFxlb4tO2KRKOrbEz8HdDc72i9z+SqzvBV96I01INrN3wcwv61A+xX
zry0tcXtAA9TNypN9E8Mg/uGz8v+jE69h/mniyFXnHrfA2eJLJ2XYacQuFWQfw4t
Jzh03+f92k4S400VIgLI4OD8D62K18lUUMw7D8oWgITQUVbDjlZ/iSIzL+aFCr2l
qBs23tPcLG07xxO9WSMs5uWk99gL7eqQQESolbuT1dCANLZGeA4fAJNG4e7p+exP
FwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TR, L=Gebze - Kocaeli, O=Turkiye Bilimsel ve Teknolojik Arastirma Kurumu - TUBITAK, OU=Kamu Sertifikasyon Merkezi - Kamu SM, CN=TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1
#        Validity
#            Not Before: Nov 25 08:25:55 2013 GMT
#            Not After : Oct 25 08:25:55 2043 GMT
#        Subject: C=TR, L=Gebze - Kocaeli, O=Turkiye Bilimsel ve Teknolojik Arastirma Kurumu - TUBITAK, OU=Kamu Sertifikasyon Merkezi - Kamu SM, CN=TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:af:75:30:33:aa:bb:6b:d3:99:2c:12:37:84:d9:
#                    8d:7b:97:80:d3:6e:e7:ff:9b:50:95:3e:90:95:56:
#                    42:d7:19:7c:26:84:8d:92:fa:01:1d:3a:0f:e2:64:
#                    38:b7:8c:bc:e8:88:f9:8b:24:ab:2e:a3:f5:37:e4:
#                    40:8e:18:25:79:83:75:1f:3b:ff:6c:a8:c5:c6:56:
#                    f8:b4:ed:8a:44:a3:ab:6c:4c:fc:1d:d0:dc:ef:68:
#                    bd:cf:e4:aa:ce:f0:55:f7:a2:34:d4:83:6b:37:7c:
#                    1c:c2:fe:b5:03:ec:57:ce:bc:b4:b5:c5:ed:00:0f:
#                    53:37:2a:4d:f4:4f:0c:83:fb:86:cf:cb:fe:8c:4e:
#                    bd:87:f9:a7:8b:21:57:9c:7a:df:03:67:89:2c:9d:
#                    97:61:a7:10:b8:55:90:7f:0e:2d:27:38:74:df:e7:
#                    fd:da:4e:12:e3:4d:15:22:02:c8:e0:e0:fc:0f:ad:
#                    8a:d7:c9:54:50:cc:3b:0f:ca:16:80:84:d0:51:56:
#                    c3:8e:56:7f:89:22:33:2f:e6:85:0a:bd:a5:a8:1b:
#                    36:de:d3:dc:2c:6d:3b:c7:13:bd:59:23:2c:e6:e5:
#                    a4:f7:d8:0b:ed:ea:90:40:44:a8:95:bb:93:d5:d0:
#                    80:34:b6:46:78:0e:1f:00:93:46:e1:ee:e9:f9:ec:
#                    4f:17
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                65:3F:C7:8A:86:C6:3C:DD:3C:54:5C:35:F8:3A:ED:52:0C:47:57:C8
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         2a:3f:e1:f1:32:8e:ae:e1:98:5c:4b:5e:cf:6b:1e:6a:09:d2:
#         22:a9:12:c7:5e:57:7d:73:56:64:80:84:7a:93:e4:09:b9:10:
#         cd:9f:2a:27:e1:00:77:be:48:c8:35:a8:81:9f:e4:b8:2c:c9:
#         7f:0e:b0:d2:4b:37:5d:ea:b9:d5:0b:5e:34:bd:f4:73:29:c3:
#         ed:26:15:9c:7e:08:53:8a:58:8d:d0:4b:28:df:c1:b3:df:20:
#         f3:f9:e3:e3:3a:df:cc:9c:94:d8:4e:4f:c3:6b:17:b7:f7:72:
#         e8:ad:66:33:b5:25:53:ab:e0:f8:4c:a9:9d:fd:f2:0d:ba:ae:
#         b9:d9:aa:c6:6b:f9:93:bb:ae:ab:b8:97:3c:03:1a:ba:43:c6:
#         96:b9:45:72:38:b3:a7:a1:96:3d:91:7b:7e:c0:21:53:4c:87:
#         ed:f2:0b:54:95:51:93:d5:22:a5:0d:8a:f1:93:0e:3e:54:0e:
#         b0:d8:c9:4e:dc:f2:31:32:56:ea:64:f9:ea:b5:9d:16:66:42:
#         72:f3:7f:d3:b1:31:43:fc:a4:8e:17:f1:6d:23:ab:94:66:f8:
#         ad:fb:0f:08:6e:26:2d:7f:17:07:09:b2:8c:fb:50:c0:9f:96:
#         8d:cf:b6:fd:00:9d:5a:14:9a:bf:02:44:f5:c1:c2:9f:22:5e:
#         a2:0f:a1:e3

[p11-kit-object-v1]
label: "TWCA Global Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TWCA Global Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 3262 (0xcbe)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TW, O=TAIWAN-CA, OU=Root CA, CN=TWCA Global Root CA
#        Validity
#            Not Before: Jun 27 06:28:33 2012 GMT
#            Not After : Dec 31 15:59:59 2030 GMT
#        Subject: C=TW, O=TAIWAN-CA, OU=Root CA, CN=TWCA Global Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:05:db:c8:eb:8c:c4:6e:8a:21:ef:8e:4d:9c:
#                    71:0a:1f:52:70:ed:6d:82:9c:97:c5:d7:4c:4e:45:
#                    49:cb:40:42:b5:12:34:6c:19:c2:74:a4:31:5f:85:
#                    02:97:ec:43:33:0a:53:d2:9c:8c:8e:b7:b8:79:db:
#                    2b:d5:6a:f2:8e:66:c4:ee:2b:01:07:92:d4:b3:d0:
#                    02:df:50:f6:55:af:66:0e:cb:e0:47:60:2f:2b:32:
#                    39:35:52:3a:28:83:f8:7b:16:c6:18:b8:62:d6:47:
#                    25:91:ce:f0:19:12:4d:ad:63:f5:d3:3f:75:5f:29:
#                    f0:a1:30:1c:2a:a0:98:a6:15:bd:ee:fd:19:36:f0:
#                    e2:91:43:8f:fa:ca:d6:10:27:49:4c:ef:dd:c1:f1:
#                    85:70:9b:ca:ea:a8:5a:43:fc:6d:86:6f:73:e9:37:
#                    45:a9:f0:36:c7:cc:88:75:1e:bb:6c:06:ff:9b:6b:
#                    3e:17:ec:61:aa:71:7c:c6:1d:a2:f7:49:e9:15:b5:
#                    3c:d6:a1:61:f5:11:f7:05:6f:1d:fd:11:be:d0:30:
#                    07:c2:29:b0:09:4e:26:dc:e3:a2:a8:91:6a:1f:c2:
#                    91:45:88:5c:e5:98:b8:71:a5:15:19:c9:7c:75:11:
#                    cc:70:74:4f:2d:9b:1d:91:44:fd:56:28:a0:fe:bb:
#                    86:6a:c8:fa:5c:0b:58:dc:c6:4b:76:c8:ab:22:d9:
#                    73:0f:a5:f4:5a:02:89:3f:4f:9e:22:82:ee:a2:74:
#                    53:2a:3d:53:27:69:1d:6c:8e:32:2c:64:00:26:63:
#                    61:36:4e:a3:46:b7:3f:7d:b3:2d:ac:6d:90:a2:95:
#                    a2:ce:cf:da:82:e7:07:34:19:96:e9:b8:21:aa:29:
#                    7e:a6:38:be:8e:29:4a:21:66:79:1f:b3:c3:b5:09:
#                    67:de:d6:d4:07:46:f3:2a:da:e6:22:37:60:cb:81:
#                    b6:0f:a0:0f:e9:c8:95:7f:bf:55:91:05:7a:cf:3d:
#                    15:c0:6f:de:09:94:01:83:d7:34:1b:cc:40:a5:f0:
#                    b8:9b:67:d5:98:91:3b:a7:84:78:95:26:a4:5a:08:
#                    f8:2b:74:b4:00:04:3c:df:b8:14:8e:e8:df:a9:8d:
#                    6c:67:92:33:1d:c0:b7:d2:ec:92:c8:be:09:bf:2c:
#                    29:05:6f:02:6b:9e:ef:bc:bf:2a:bc:5b:c0:50:8f:
#                    41:70:71:87:b2:4d:b7:04:a9:84:a3:32:af:ae:ee:
#                    6b:17:8b:b2:b1:fe:6c:e1:90:8c:88:a8:97:48:ce:
#                    c8:4d:cb:f3:06:cf:5f:6a:0a:42:b1:1e:1e:77:2f:
#                    8e:a0:e6:92:0e:06:fc:05:22:d2:26:e1:31:51:7d:
#                    32:dc:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         5f:34:81:76:ef:96:1d:d5:e5:b5:d9:02:63:84:16:c1:ae:a0:
#         70:51:a7:f7:4c:47:35:c8:0b:d7:28:3d:89:71:d9:aa:33:41:
#         ea:14:1b:6c:21:00:c0:6c:42:19:7e:9f:69:5b:20:42:df:a2:
#         d2:da:c4:7c:97:4b:8d:b0:e8:ac:c8:ee:a5:69:04:99:0a:92:
#         a6:ab:27:2e:1a:4d:81:bf:84:d4:70:1e:ad:47:fe:fd:4a:9d:
#         33:e0:f2:b9:c4:45:08:21:0a:da:69:69:73:72:0d:be:34:fe:
#         94:8b:ad:c3:1e:35:d7:a2:83:ef:e5:38:c7:a5:85:1f:ab:cf:
#         34:ec:3f:28:fe:0c:f1:57:86:4e:c9:55:f7:1c:d4:d8:a5:7d:
#         06:7a:6f:d5:df:10:df:81:4e:21:65:b1:b6:e1:17:79:95:45:
#         06:ce:5f:cc:dc:46:89:63:68:44:8d:93:f4:64:70:a0:3d:9d:
#         28:05:c3:39:70:b8:62:7b:20:fd:e4:db:e9:08:a1:b8:9e:3d:
#         09:c7:4f:fb:2c:f8:93:76:41:de:52:e0:e1:57:d2:9d:03:bc:
#         77:9e:fe:9e:29:5e:f7:c1:51:60:1f:de:da:0b:b2:2d:75:b7:
#         43:48:93:e7:f6:79:c6:84:5d:80:59:60:94:fc:78:98:8f:3c:
#         93:51:ed:40:90:07:df:64:63:24:cb:4e:71:05:a1:d7:94:1a:
#         88:32:f1:22:74:22:ae:a5:a6:d8:12:69:4c:60:a3:02:ee:2b:
#         ec:d4:63:92:0b:5e:be:2f:76:6b:a3:b6:26:bc:8f:03:d8:0a:
#         f2:4c:64:46:bd:39:62:e5:96:eb:34:63:11:28:cc:95:f1:ad:
#         ef:ef:dc:80:58:48:e9:4b:b8:ea:65:ac:e9:fc:80:b5:b5:c8:
#         45:f9:ac:c1:9f:d9:b9:ea:62:88:8e:c4:f1:4b:83:12:ad:e6:
#         8b:84:d6:9e:c2:eb:83:18:9f:6a:bb:1b:24:60:33:70:cc:ec:
#         f7:32:f3:5c:d9:79:7d:ef:9e:a4:fe:c9:23:c3:24:ee:15:92:
#         b1:3d:91:4f:26:86:bd:66:73:24:13:ea:a4:ae:63:c1:ad:7d:
#         84:03:3c:10:78:86:1b:79:e3:c4:f3:f2:04:95:20:ae:23:82:
#         c4:b3:3a:00:62:bf:e6:36:24:e1:57:ba:c7:1e:90:75:d5:5f:
#         3f:95:61:2b:c1:3b:cd:e5:b3:68:61:d0:46:26:a9:21:52:69:
#         2d:eb:2e:c7:eb:77:ce:a6:3a:b5:03:33:4f:76:d1:e7:5c:54:
#         01:5d:cb:78:f4:c9:0c:bf:cf:12:8e:17:2d:23:68:94:e7:ab:
#         fe:a9:b2:2b:06:d0:04:cd

[p11-kit-object-v1]
label: "TWCA Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsH5yuKQDlOan3gk4kUoR
QIenfFlkFHu1ERDd/r/VwLtW4oUl9DVyD/hT0EHhRAHCtBzDMUIWR4UzInayCm8P
5SVQT4WGvr+YLhBnHr4RBYYFkMRZ0Hx4ELCAXLfhxyt1y3yfrrXRnSM3Y6fcQqIt
kgQbUMF7uD4byVYEiy9Sm62pVunB/62pWIcwtoH3l0X8GVc7K2/kR/SZRf4d8fiX
o4gdNxxcj+B2JZpQ+KBU/0SQdiPSMsbDqwa//Pu/8619kmICWynTNaOTmkNkYF2y
+jL/OwSvTUBq+cfj7yP9a8vlD4s4De4K/P4PmJ8wMd1sUmX5i4G+IuEcWAO6kRuJ
BwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TWCA Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=TW, O=TAIWAN-CA, OU=Root CA, CN=TWCA Root Certification Authority
#        Validity
#            Not Before: Aug 28 07:24:33 2008 GMT
#            Not After : Dec 31 15:59:59 2030 GMT
#        Subject: C=TW, O=TAIWAN-CA, OU=Root CA, CN=TWCA Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b0:7e:72:b8:a4:03:94:e6:a7:de:09:38:91:4a:
#                    11:40:87:a7:7c:59:64:14:7b:b5:11:10:dd:fe:bf:
#                    d5:c0:bb:56:e2:85:25:f4:35:72:0f:f8:53:d0:41:
#                    e1:44:01:c2:b4:1c:c3:31:42:16:47:85:33:22:76:
#                    b2:0a:6f:0f:e5:25:50:4f:85:86:be:bf:98:2e:10:
#                    67:1e:be:11:05:86:05:90:c4:59:d0:7c:78:10:b0:
#                    80:5c:b7:e1:c7:2b:75:cb:7c:9f:ae:b5:d1:9d:23:
#                    37:63:a7:dc:42:a2:2d:92:04:1b:50:c1:7b:b8:3e:
#                    1b:c9:56:04:8b:2f:52:9b:ad:a9:56:e9:c1:ff:ad:
#                    a9:58:87:30:b6:81:f7:97:45:fc:19:57:3b:2b:6f:
#                    e4:47:f4:99:45:fe:1d:f1:f8:97:a3:88:1d:37:1c:
#                    5c:8f:e0:76:25:9a:50:f8:a0:54:ff:44:90:76:23:
#                    d2:32:c6:c3:ab:06:bf:fc:fb:bf:f3:ad:7d:92:62:
#                    02:5b:29:d3:35:a3:93:9a:43:64:60:5d:b2:fa:32:
#                    ff:3b:04:af:4d:40:6a:f9:c7:e3:ef:23:fd:6b:cb:
#                    e5:0f:8b:38:0d:ee:0a:fc:fe:0f:98:9f:30:31:dd:
#                    6c:52:65:f9:8b:81:be:22:e1:1c:58:03:ba:91:1b:
#                    89:07
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                6A:38:5B:26:8D:DE:8B:5A:F2:4F:7A:54:83:19:18:E3:08:35:A6:BA
#    Signature Algorithm: sha1WithRSAEncryption
#         3c:d5:77:3d:da:df:89:ba:87:0c:08:54:6a:20:50:92:be:b0:
#         41:3d:b9:26:64:83:0a:2f:e8:40:c0:97:28:27:82:30:4a:c9:
#         93:ff:6a:e7:a6:00:7f:89:42:9a:d6:11:e5:53:ce:2f:cc:f2:
#         da:05:c4:fe:e2:50:c4:3a:86:7d:cc:da:7e:10:09:3b:92:35:
#         2a:53:b2:fe:eb:2b:05:d9:6c:5d:e6:d0:ef:d3:6a:66:9e:15:
#         28:85:7a:e8:82:00:ac:1e:a7:09:69:56:42:d3:68:51:18:be:
#         54:9a:bf:44:41:ba:49:be:20:ba:69:5c:ee:b8:77:cd:ce:6c:
#         1f:ad:83:96:18:7d:0e:b5:14:39:84:f1:28:e9:2d:a3:9e:7b:
#         1e:7a:72:5a:83:b3:79:6f:ef:b4:fc:d0:0a:a5:58:4f:46:df:
#         fb:6d:79:59:f2:84:22:52:ae:0f:cc:fb:7c:3b:e7:6a:ca:47:
#         61:c3:7a:f8:d3:92:04:1f:b8:20:84:e1:36:54:16:c7:40:de:
#         3b:8a:73:dc:df:c6:09:4c:df:ec:da:ff:d4:53:42:a1:c9:f2:
#         62:1d:22:83:3c:97:c5:f9:19:62:27:ac:65:22:d7:d3:3c:c6:
#         e5:8e:b2:53:cc:49:ce:bc:30:fe:7b:0e:33:90:fb:ed:d2:14:
#         91:1f:07:af

[p11-kit-object-v1]
label: "TeliaSonera Root CA v1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TeliaSonera Root CA v1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFODCCAyCgAwIBAgIRAJW+FqD3LkbxezmCcvqLzZYwDQYJKoZIhvcNAQEFBQAw
NzEUMBIGA1UECgwLVGVsaWFTb25lcmExHzAdBgNVBAMMFlRlbGlhU29uZXJhIFJv
b3QgQ0EgdjEwHhcNMDcxMDE4MTIwMDUwWhcNMzIxMDE4MTIwMDUwWjA3MRQwEgYD
VQQKDAtUZWxpYVNvbmVyYTEfMB0GA1UEAwwWVGVsaWFTb25lcmEgUm9vdCBDQSB2
MTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAMK+6yfwIaPzaSZVfp3F
VRaRXP3vIb9TgHot0pGMYzHw7CTww6XScnwQbfQ3t+XmfHnqjLWCi65ItqwA3GV1
7CpNX8GH9SBlK4GoRz6JI5UwFpB/6FcHSOcZrr9FZ7E3GwYq/t75rH2D+1665I+X
Z75Ljo1kB1c4VWk0Nj0TSO9P4tNmHqTPGrdeNjPUtAa9GAH9d4RQAEX1jF3oI7x+
/jXh7VB7qTCNGdMJjmhnXb88lxhTuylixcpecsHHltTbLaC0H2kD7OriUPEMPPCs
81Mt8Bz17Ww5OXOAFshSsCPN4D7c3TxHoLs1iuKYaIu+5b9y7tL6pe0S7fyYGKkm
dtwoSxAgHNN/Fnct7W+A90m7UwW7XWjH1Mh1Fj+JWov3F0fUTPHSiXk+TT2YqGHe
Oh7S+F4D4MHJHIzTjU3TlTazN19jY5szFPAtJmtTfImMMsJu7D0hADnJoWjiUIMu
sDor8zagrC/kb2HCUQk5PotTubtn2txTuXZZNp1D5SDgPTJghSJRt8czu90VL6R4
pgd7gUY2BIbdeTXHlSw7sKMXNeVzH7RcWe/a6hBle3rQf5+ztCo3O3CLm1u5K7fs
slESl1MpWtTwEhDcTwK7EpIvYtQ/aUN8Ddb8WHUBiJ1YFkveupD/RwGJBmr2X7KQ
arMCpgKIv7NHfirZ1fpoeDVNAgMBAAGjPzA9MA8GA1UdEwEB/wQFMAMBAf8wCwYD
VR0PBAQDAgEGMB0GA1UdDgQWBBTwj1k4ALP1j5qWDNXr+nuqF+gTEjANBgkqhkiG
9w0BAQUFAAOCAgEAvuRcYk4k9AwI//DTDGjkk0kiP0Qnb7tt3oNmzqjMDfz1mgbl
dxSR651Be5kqhOX//CHBXfDkH1e3damhXwIm/9fH907eT/j3HEbAek9ALCI18Bmx
0GtnLLCo4MBANzX2hFxc469CeP6nyQ1Q6g2EdvZR74NTxnr/DlZJLo961gzmJ1Tj
TQpgcmLNkQfWpb/ImWvtxBnmq0wROMVvMeJuScg/doAmAyYp4Db29iBT4xdwNBed
Y2gea+zDTYa4EzAvXUYNR0PVG6pZDrlcjQZIrXSHX8f8MVRBE+LHIQ6e4B4N4cB7
Q4WQxYpYxmUKeFfyxiMPAdkgS94P+5KFdSpcc41teyWRyu5FrgZLAMzTsVlQ2jqI
OylDRl6XK1TOU2+NSueW+r9xDkKLfP0ooNBIytrEgUy7onOTJsjrDNYmiLbAJM+7
vVvrdX3pCI6GMyx5dwlppYn8s3CQh3aP0yK7Qs69cwsgJirQmz1wHiRszYd2qReW
t88NkvuOGKmYSdGe/mBEciG5Ge3C9THxOUiIkCR1VBatzvT4aRRkOfujuLpwQMcn
HL/EVlP6Y2XQ8xwOFvVrhlhNGNTkDY6lnVuR3HYkUD/GKvvZt5y11ubQ2egZixVx
SK236thZiNSQvxaz2emsWWFUyBy6ysHK4bkgTI86k4mloMy/0/Z1pHWWbVY=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            95:be:16:a0:f7:2e:46:f1:7b:39:82:72:fa:8b:cd:96
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: O=TeliaSonera, CN=TeliaSonera Root CA v1
#        Validity
#            Not Before: Oct 18 12:00:50 2007 GMT
#            Not After : Oct 18 12:00:50 2032 GMT
#        Subject: O=TeliaSonera, CN=TeliaSonera Root CA v1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c2:be:eb:27:f0:21:a3:f3:69:26:55:7e:9d:c5:
#                    55:16:91:5c:fd:ef:21:bf:53:80:7a:2d:d2:91:8c:
#                    63:31:f0:ec:24:f0:c3:a5:d2:72:7c:10:6d:f4:37:
#                    b7:e5:e6:7c:79:ea:8c:b5:82:8b:ae:48:b6:ac:00:
#                    dc:65:75:ec:2a:4d:5f:c1:87:f5:20:65:2b:81:a8:
#                    47:3e:89:23:95:30:16:90:7f:e8:57:07:48:e7:19:
#                    ae:bf:45:67:b1:37:1b:06:2a:fe:de:f9:ac:7d:83:
#                    fb:5e:ba:e4:8f:97:67:be:4b:8e:8d:64:07:57:38:
#                    55:69:34:36:3d:13:48:ef:4f:e2:d3:66:1e:a4:cf:
#                    1a:b7:5e:36:33:d4:b4:06:bd:18:01:fd:77:84:50:
#                    00:45:f5:8c:5d:e8:23:bc:7e:fe:35:e1:ed:50:7b:
#                    a9:30:8d:19:d3:09:8e:68:67:5d:bf:3c:97:18:53:
#                    bb:29:62:c5:ca:5e:72:c1:c7:96:d4:db:2d:a0:b4:
#                    1f:69:03:ec:ea:e2:50:f1:0c:3c:f0:ac:f3:53:2d:
#                    f0:1c:f5:ed:6c:39:39:73:80:16:c8:52:b0:23:cd:
#                    e0:3e:dc:dd:3c:47:a0:bb:35:8a:e2:98:68:8b:be:
#                    e5:bf:72:ee:d2:fa:a5:ed:12:ed:fc:98:18:a9:26:
#                    76:dc:28:4b:10:20:1c:d3:7f:16:77:2d:ed:6f:80:
#                    f7:49:bb:53:05:bb:5d:68:c7:d4:c8:75:16:3f:89:
#                    5a:8b:f7:17:47:d4:4c:f1:d2:89:79:3e:4d:3d:98:
#                    a8:61:de:3a:1e:d2:f8:5e:03:e0:c1:c9:1c:8c:d3:
#                    8d:4d:d3:95:36:b3:37:5f:63:63:9b:33:14:f0:2d:
#                    26:6b:53:7c:89:8c:32:c2:6e:ec:3d:21:00:39:c9:
#                    a1:68:e2:50:83:2e:b0:3a:2b:f3:36:a0:ac:2f:e4:
#                    6f:61:c2:51:09:39:3e:8b:53:b9:bb:67:da:dc:53:
#                    b9:76:59:36:9d:43:e5:20:e0:3d:32:60:85:22:51:
#                    b7:c7:33:bb:dd:15:2f:a4:78:a6:07:7b:81:46:36:
#                    04:86:dd:79:35:c7:95:2c:3b:b0:a3:17:35:e5:73:
#                    1f:b4:5c:59:ef:da:ea:10:65:7b:7a:d0:7f:9f:b3:
#                    b4:2a:37:3b:70:8b:9b:5b:b9:2b:b7:ec:b2:51:12:
#                    97:53:29:5a:d4:f0:12:10:dc:4f:02:bb:12:92:2f:
#                    62:d4:3f:69:43:7c:0d:d6:fc:58:75:01:88:9d:58:
#                    16:4b:de:ba:90:ff:47:01:89:06:6a:f6:5f:b2:90:
#                    6a:b3:02:a6:02:88:bf:b3:47:7e:2a:d9:d5:fa:68:
#                    78:35:4d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                F0:8F:59:38:00:B3:F5:8F:9A:96:0C:D5:EB:FA:7B:AA:17:E8:13:12
#    Signature Algorithm: sha1WithRSAEncryption
#         be:e4:5c:62:4e:24:f4:0c:08:ff:f0:d3:0c:68:e4:93:49:22:
#         3f:44:27:6f:bb:6d:de:83:66:ce:a8:cc:0d:fc:f5:9a:06:e5:
#         77:14:91:eb:9d:41:7b:99:2a:84:e5:ff:fc:21:c1:5d:f0:e4:
#         1f:57:b7:75:a9:a1:5f:02:26:ff:d7:c7:f7:4e:de:4f:f8:f7:
#         1c:46:c0:7a:4f:40:2c:22:35:f0:19:b1:d0:6b:67:2c:b0:a8:
#         e0:c0:40:37:35:f6:84:5c:5c:e3:af:42:78:fe:a7:c9:0d:50:
#         ea:0d:84:76:f6:51:ef:83:53:c6:7a:ff:0e:56:49:2e:8f:7a:
#         d6:0c:e6:27:54:e3:4d:0a:60:72:62:cd:91:07:d6:a5:bf:c8:
#         99:6b:ed:c4:19:e6:ab:4c:11:38:c5:6f:31:e2:6e:49:c8:3f:
#         76:80:26:03:26:29:e0:36:f6:f6:20:53:e3:17:70:34:17:9d:
#         63:68:1e:6b:ec:c3:4d:86:b8:13:30:2f:5d:46:0d:47:43:d5:
#         1b:aa:59:0e:b9:5c:8d:06:48:ad:74:87:5f:c7:fc:31:54:41:
#         13:e2:c7:21:0e:9e:e0:1e:0d:e1:c0:7b:43:85:90:c5:8a:58:
#         c6:65:0a:78:57:f2:c6:23:0f:01:d9:20:4b:de:0f:fb:92:85:
#         75:2a:5c:73:8d:6d:7b:25:91:ca:ee:45:ae:06:4b:00:cc:d3:
#         b1:59:50:da:3a:88:3b:29:43:46:5e:97:2b:54:ce:53:6f:8d:
#         4a:e7:96:fa:bf:71:0e:42:8b:7c:fd:28:a0:d0:48:ca:da:c4:
#         81:4c:bb:a2:73:93:26:c8:eb:0c:d6:26:88:b6:c0:24:cf:bb:
#         bd:5b:eb:75:7d:e9:08:8e:86:33:2c:79:77:09:69:a5:89:fc:
#         b3:70:90:87:76:8f:d3:22:bb:42:ce:bd:73:0b:20:26:2a:d0:
#         9b:3d:70:1e:24:6c:cd:87:76:a9:17:96:b7:cf:0d:92:fb:8e:
#         18:a9:98:49:d1:9e:fe:60:44:72:21:b9:19:ed:c2:f5:31:f1:
#         39:48:88:90:24:75:54:16:ad:ce:f4:f8:69:14:64:39:fb:a3:
#         b8:ba:70:40:c7:27:1c:bf:c4:56:53:fa:63:65:d0:f3:1c:0e:
#         16:f5:6b:86:58:4d:18:d4:e4:0d:8e:a5:9d:5b:91:dc:76:24:
#         50:3f:c6:2a:fb:d9:b7:9c:b5:d6:e6:d0:d9:e8:19:8b:15:71:
#         48:ad:b7:ea:d8:59:88:d4:90:bf:16:b3:d9:e9:ac:59:61:54:
#         c8:1c:ba:ca:c1:ca:e1:b9:20:4c:8f:3a:93:89:a5:a0:cc:bf:
#         d3:f6:75:a4:75:96:6d:56

[p11-kit-object-v1]
label: "Telia Root CA v2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAstA/B7zie9Brmfjid2nn
zp2kA7yCbaH+gWUfTCesjgC6FnvrMGoAwLN0aH6yr8fVYrN6P1DKjDZEJGPSNukM
hfZDdtVMoWByZ+IoM6XLMbg6IiM0uH29ViJAner0ewOtaPyygU+Y0HTqjeV9zWPD
o/beksJYGeCWu8XEqT2ldJb+r/mJqr2VF1TYeETxDHcVkuCYQqek1qogks3BoLOW
sjqEQo191ZXk1tvpYsRYs3nFjNM1M4OfdaFSJ2E48Vk9jlDgvXk852yW/l7ZAmW0
jlzQETTfXb9Sp4EAw3+ZRZkV1RfIClPsY/OZfcxpEobCF/ABnr+EvNFSyxuSZs6k
U+Whv8TbCdbmiVYryON83uP/ieU1bijobAsjUaklBetI+N2xyvpsCFHvtxhsRMom
4XPGiQaB5YqssOIpxrkks2tEEfSlQ8JMQ+VwNoy2M1d6lS6CoPRcELNhg/YCBYYu
fC1s3ANGbjWT1XqVL94g2Ft+lJAEarpZPQQFdZ03og4uPevBpFKD/tBr1GaO3Mbp
Ek4dKleqELx8XoJ9pqbJ8i259RcnrdEOiVQrlfrArR2YFHgzQoYKqXO1+3QNtxsw
GcRaDhwnt9oY0P+KyAW68aocoje35kikRiyU6qh2YkeLEFMHSFds4pJNtq4Fy9zB
Sl6PrD0ZTsLtYHUr28HKQtUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Telia Root CA v2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:67:5f:27:d6:fe:7a:e3:e4:ac:be:09:5b:05:9e
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=FI, O=Telia Finland Oyj, CN=Telia Root CA v2
#        Validity
#            Not Before: Nov 29 11:55:54 2018 GMT
#            Not After : Nov 29 11:55:54 2043 GMT
#        Subject: C=FI, O=Telia Finland Oyj, CN=Telia Root CA v2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b2:d0:3f:07:bc:e2:7b:d0:6b:99:f8:e2:77:69:
#                    e7:ce:9d:a4:03:bc:82:6d:a1:fe:81:65:1f:4c:27:
#                    ac:8e:00:ba:16:7b:eb:30:6a:00:c0:b3:74:68:7e:
#                    b2:af:c7:d5:62:b3:7a:3f:50:ca:8c:36:44:24:63:
#                    d2:36:e9:0c:85:f6:43:76:d5:4c:a1:60:72:67:e2:
#                    28:33:a5:cb:31:b8:3a:22:23:34:b8:7d:bd:56:22:
#                    40:9d:ea:f4:7b:03:ad:68:fc:b2:81:4f:98:d0:74:
#                    ea:8d:e5:7d:cd:63:c3:a3:f6:de:92:c2:58:19:e0:
#                    96:bb:c5:c4:a9:3d:a5:74:96:fe:af:f9:89:aa:bd:
#                    95:17:54:d8:78:44:f1:0c:77:15:92:e0:98:42:a7:
#                    a4:d6:aa:20:92:cd:c1:a0:b3:96:b2:3a:84:42:8d:
#                    7d:d5:95:e4:d6:db:e9:62:c4:58:b3:79:c5:8c:d3:
#                    35:33:83:9f:75:a1:52:27:61:38:f1:59:3d:8e:50:
#                    e0:bd:79:3c:e7:6c:96:fe:5e:d9:02:65:b4:8e:5c:
#                    d0:11:34:df:5d:bf:52:a7:81:00:c3:7f:99:45:99:
#                    15:d5:17:c8:0a:53:ec:63:f3:99:7d:cc:69:12:86:
#                    c2:17:f0:01:9e:bf:84:bc:d1:52:cb:1b:92:66:ce:
#                    a4:53:e5:a1:bf:c4:db:09:d6:e6:89:56:2b:c8:e3:
#                    7c:de:e3:ff:89:e5:35:6e:28:e8:6c:0b:23:51:a9:
#                    25:05:eb:48:f8:dd:b1:ca:fa:6c:08:51:ef:b7:18:
#                    6c:44:ca:26:e1:73:c6:89:06:81:e5:8a:ac:b0:e2:
#                    29:c6:b9:24:b3:6b:44:11:f4:a5:43:c2:4c:43:e5:
#                    70:36:8c:b6:33:57:7a:95:2e:82:a0:f4:5c:10:b3:
#                    61:83:f6:02:05:86:2e:7c:2d:6c:dc:03:46:6e:35:
#                    93:d5:7a:95:2f:de:20:d8:5b:7e:94:90:04:6a:ba:
#                    59:3d:04:05:75:9d:37:a2:0e:2e:3d:eb:c1:a4:52:
#                    83:fe:d0:6b:d4:66:8e:dc:c6:e9:12:4e:1d:2a:57:
#                    aa:10:bc:7c:5e:82:7d:a6:a6:c9:f2:2d:b9:f5:17:
#                    27:ad:d1:0e:89:54:2b:95:fa:c0:ad:1d:98:14:78:
#                    33:42:86:0a:a9:73:b5:fb:74:0d:b7:1b:30:19:c4:
#                    5a:0e:1c:27:b7:da:18:d0:ff:8a:c8:05:ba:f1:aa:
#                    1c:a2:37:b7:e6:48:a4:46:2c:94:ea:a8:76:62:47:
#                    8b:10:53:07:48:57:6c:e2:92:4d:b6:ae:05:cb:dc:
#                    c1:4a:5e:8f:ac:3d:19:4e:c2:ed:60:75:2b:db:c1:
#                    ca:42:d5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Authority Key Identifier: 
#                keyid:72:AC:E4:33:79:AA:45:87:F6:FD:AC:1D:9E:D6:C7:2F:86:D8:24:39
#
#            X509v3 Subject Key Identifier: 
#                72:AC:E4:33:79:AA:45:87:F6:FD:AC:1D:9E:D6:C7:2F:86:D8:24:39
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         a0:3b:59:a7:09:94:3e:36:84:d2:7e:2f:39:a5:96:97:fa:11:
#         ad:fc:67:f3:71:09:f2:b2:89:84:67:44:af:b9:ef:ed:96:ec:
#         9c:64:db:32:30:6f:67:9a:ac:7e:5f:b2:ab:01:36:7e:81:fa:
#         e4:84:5e:d2:ac:36:e0:6b:62:c5:7d:4b:0e:82:6d:d2:76:62:
#         d1:fe:97:f8:9f:30:7c:18:f9:b4:52:77:82:1d:76:db:d3:1d:
#         a9:f0:c1:9a:00:bd:6d:75:d8:7d:e7:fa:c7:38:a3:9c:70:e8:
#         46:79:03:af:2e:74:db:75:f8:6e:53:0c:03:c8:99:1a:89:35:
#         19:3c:d3:c9:54:7c:a8:f0:2c:e6:6e:07:79:6f:6a:e1:e6:ea:
#         91:82:69:0a:1d:c3:7e:59:a2:9e:6b:46:15:98:5b:d3:af:46:
#         1d:62:c8:ce:80:52:49:11:3f:c9:04:12:c3:13:7c:3f:3b:8a:
#         96:db:3c:a0:1e:0a:b4:8b:54:b2:24:67:0d:ef:82:cb:be:3c:
#         7d:d1:e2:7f:ae:16:d6:56:58:b9:da:20:b1:83:15:a1:ef:8a:
#         4d:32:6f:41:2f:13:52:82:94:d7:1a:c1:78:a2:51:dd:2b:70:
#         6d:b7:1a:f9:f7:b0:e0:67:97:56:db:7c:61:53:09:03:28:02:
#         40:c7:b3:d8:fd:9c:70:6a:c6:28:c3:85:e9:e2:ed:1a:93:a0:
#         de:4b:98:a2:84:3e:05:77:01:96:3d:fb:b4:20:0f:9c:72:02:
#         7a:12:2f:d5:a3:ba:51:78:af:2a:2b:44:65:4e:b5:fd:0a:e8:
#         c1:cd:79:87:61:2b:de:80:57:45:bf:67:f1:9b:91:5e:a5:a4:
#         ec:59:48:10:0d:38:c7:b0:fa:c3:44:6d:04:f5:78:50:1c:92:
#         96:5b:da:f5:b8:2e:ba:5b:cf:e5:f0:6a:9d:4b:2f:58:73:2d:
#         4f:2d:c4:1c:3e:f4:b3:3f:ab:15:0e:3b:19:41:8a:a4:c1:57:
#         12:66:71:4c:fa:53:e3:57:eb:62:95:09:9e:54:dd:d1:c2:3c:
#         57:3c:bd:38:ad:98:64:b7:b8:03:9a:53:56:60:5d:b3:d8:42:
#         1b:5c:4b:12:8a:1c:eb:eb:7d:c6:7a:69:c7:27:7f:a4:f8:8b:
#         f2:e4:94:66:87:4b:e9:94:07:09:12:79:8a:b2:eb:74:04:dc:
#         ce:f4:44:59:e0:16:ca:c5:2c:58:d7:3c:7b:cf:62:86:6a:50:
#         7d:35:36:66:a7:fb:37:e7:28:c7:d8:d0:ad:a5:69:94:8f:e8:
#         c1:df:24:f8:1b:07:31:87:81:d8:5d:f6:e8:28:d8:4a:52:80:
#         ac:13:ee:50:14:1e:98:c7

[p11-kit-object-v1]
label: "Thailand National Root Certification Authority - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Thailand National Root Certification Authority - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1364379020 (0x5152c58c)
#    Signature Algorithm: sha512WithRSAEncryption
#        Issuer: C=TH, O=Electronic Transactions Development Agency (Public Organization), OU=Thailand National Root Certification Authority, CN=Thailand National Root Certification Authority - G1
#        Validity
#            Not Before: Mar 27 09:40:22 2013 GMT
#            Not After : Mar 27 10:10:22 2036 GMT
#        Subject: C=TH, O=Electronic Transactions Development Agency (Public Organization), OU=Thailand National Root Certification Authority, CN=Thailand National Root Certification Authority - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:d6:ba:4a:e4:8c:f1:9a:2e:89:17:c2:40:f3:82:
#                    00:31:fe:13:02:7a:65:ca:08:d8:ab:22:b1:02:9a:
#                    71:34:4a:64:59:82:e5:42:46:eb:23:f6:8b:5a:22:
#                    b1:cf:36:e7:73:6d:14:6d:f7:49:94:5e:ef:e7:34:
#                    59:67:f6:a8:cf:56:59:23:84:55:e2:fb:1a:11:ca:
#                    a3:f9:8a:ab:67:1e:82:13:d0:8b:39:9a:bf:0f:c2:
#                    0f:3c:d6:61:d8:ea:9b:cf:15:0e:be:d4:f0:cc:3f:
#                    73:9c:04:f4:a2:71:73:7d:80:b0:9d:31:f1:06:f9:
#                    b0:13:e5:88:49:30:f6:16:7d:88:57:29:3a:2c:a2:
#                    8c:90:98:ce:11:16:ce:4d:51:0f:fc:c7:b2:cc:f2:
#                    66:18:21:80:05:88:ad:b9:d0:c5:0b:78:01:fe:4e:
#                    d2:08:8b:36:f1:56:cf:6e:ba:73:26:0b:d6:f7:a5:
#                    46:6a:69:4e:96:b6:a7:06:56:cc:e6:2e:31:9f:6e:
#                    8b:ed:9c:00:55:47:f4:7b:a6:7a:b6:df:01:1d:48:
#                    04:0b:ab:42:c2:70:4a:94:bd:fc:ac:51:f2:ab:3f:
#                    d6:eb:60:df:08:ff:f5:12:b2:89:2a:7a:b9:45:99:
#                    25:7d:7c:ef:cf:15:d0:48:2c:10:d6:d4:bc:08:27:
#                    b5:86:29:d4:e3:d3:c4:2a:90:12:f6:a2:2a:f9:8b:
#                    af:16:ff:02:f3:7a:6e:cf:a2:cb:6a:b4:e0:72:0b:
#                    fb:3e:85:7f:e2:87:e0:2f:43:23:f8:85:c9:99:ea:
#                    d6:40:de:a0:fb:e7:de:76:ff:8f:80:39:eb:67:12:
#                    13:a6:fb:e5:a3:fc:26:80:59:63:f2:d2:23:eb:1f:
#                    c6:48:73:51:9d:b7:b3:a0:5b:ab:6a:88:f9:bf:fb:
#                    71:51:dc:6e:b6:76:ef:b0:5b:f2:cb:88:30:ba:06:
#                    db:1b:41:d3:55:b4:ad:b4:ea:20:21:fc:d4:77:b6:
#                    3d:5b:a1:0c:2d:25:21:52:23:52:d7:34:53:6d:16:
#                    04:52:66:f8:d5:ea:f1:2c:58:f2:3b:b1:f1:7e:43:
#                    b5:dc:82:b8:5e:e3:87:e1:a3:a4:5f:e7:89:0e:bc:
#                    9c:e9:29:3a:25:a7:d8:4f:6a:87:d4:96:44:97:18:
#                    16:87:c2:71:52:85:ce:7a:8c:ad:1e:67:be:ba:2d:
#                    bf:a3:21:27:c5:e7:30:e9:06:99:1b:b0:0c:e3:be:
#                    52:65:93:4d:61:4b:f2:38:e6:8f:18:f1:02:52:98:
#                    2e:a6:0e:1d:05:cf:26:ec:01:23:07:36:f6:e0:13:
#                    37:a9:47:88:03:87:47:cb:dd:b2:01:1f:5f:64:1b:
#                    04:9b:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Authority Key Identifier: 
#                keyid:7F:23:76:B7:83:2A:71:F7:2C:D1:88:0F:DD:4C:5F:32:0A:68:BB:7F
#
#            X509v3 Subject Key Identifier: 
#                7F:23:76:B7:83:2A:71:F7:2C:D1:88:0F:DD:4C:5F:32:0A:68:BB:7F
#    Signature Algorithm: sha512WithRSAEncryption
#         0d:65:1c:5a:07:a9:9e:ac:4c:c9:5f:4f:dd:31:6c:d9:e2:53:
#         1d:3f:91:8d:5a:b3:8c:bd:34:9e:2e:4d:ca:58:d3:af:59:62:
#         49:36:73:b0:61:76:11:be:8b:36:c7:94:aa:f8:36:69:07:20:
#         df:5c:2f:0b:f6:8e:02:16:ef:52:06:38:dd:ed:34:60:aa:87:
#         5e:17:ce:38:6d:50:4d:e5:df:e5:51:be:1d:04:96:f4:dc:ea:
#         e5:d9:ea:8e:de:9f:74:cb:82:94:53:81:6c:fb:5e:2c:d5:a1:
#         75:96:4d:fb:30:5c:cd:61:a0:9e:a1:cc:82:b9:52:72:0b:87:
#         63:61:7b:61:34:74:b6:2e:dd:e2:e1:87:b5:49:14:61:15:47:
#         4a:4b:3e:77:b9:08:d2:36:4f:58:67:42:89:80:78:5a:12:23:
#         ed:45:3b:dd:bf:20:26:54:fc:5b:3f:60:01:18:41:e3:67:75:
#         13:b7:2a:15:70:cc:cb:79:d2:14:f8:f3:c2:e0:2a:10:f7:f9:
#         42:d8:dc:da:0a:d3:01:05:db:57:98:c9:b6:eb:0c:99:0a:ca:
#         8c:7d:ef:3b:16:28:c0:f7:5f:e1:47:51:d3:f8:06:45:07:f0:
#         0b:ba:c2:9c:98:ec:d2:7f:4d:7e:fd:06:fc:73:c2:c2:55:12:
#         62:d0:23:44:df:22:e4:f8:79:e7:a5:10:4e:3e:c9:8e:aa:83:
#         e9:36:ea:ab:79:c6:05:84:cd:96:68:7c:74:ac:3f:32:ff:ae:
#         c9:40:ec:8f:50:bf:50:a8:b7:4e:d5:ad:36:6a:d7:27:33:fa:
#         e7:d8:2d:d9:37:98:85:1b:a6:0c:ea:7b:10:13:70:1e:9e:88:
#         c5:dc:3e:8e:b9:0d:55:df:01:ce:d0:49:76:51:db:10:62:78:
#         41:ad:69:63:a5:95:09:b7:18:06:6f:fd:04:67:d4:10:0f:4e:
#         db:3b:5f:0c:63:7c:eb:64:bd:6e:4b:00:a8:81:fa:92:32:86:
#         30:8c:09:bf:7d:58:3f:65:0d:a9:37:d1:45:e3:66:69:c4:68:
#         f4:62:a9:a8:1e:37:d9:2e:99:49:a0:b0:06:8c:40:7f:85:b1:
#         f5:f1:4c:4b:38:a0:08:cc:2a:d9:96:c0:ec:c0:0d:3c:2e:45:
#         57:c3:ef:95:da:b6:cb:ee:5b:65:a8:2b:32:af:c9:27:f9:15:
#         53:37:75:58:1f:4b:ea:97:a2:22:5c:67:56:e2:a0:cc:35:c4:
#         ac:c3:31:40:b9:9c:03:7a:bd:c9:48:0e:ea:6a:15:da:9c:bc:
#         78:6f:c9:15:e7:64:03:d9:49:13:66:45:4b:2d:f4:84:99:b3:
#         ea:a7:12:95:e5:93:2e:fc

[p11-kit-object-v1]
label: "TrustAsia Global Root CA G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TrustAsia Global Root CA G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFpTCCA42gAwIBAgIUZPYOZXdhaqs7tOqFhLuxibhxkw8wDQYJKoZIhvcNAQEM
BQAwWjELMAkGA1UEBhMCQ04xJTAjBgNVBAoMHFRydXN0QXNpYSBUZWNobm9sb2dp
ZXMsIEluYy4xJDAiBgNVBAMMG1RydXN0QXNpYSBHbG9iYWwgUm9vdCBDQSBHMzAe
Fw0yMTA1MjAwMjEwMTlaFw00NjA1MTkwMjEwMTlaMFoxCzAJBgNVBAYTAkNOMSUw
IwYDVQQKDBxUcnVzdEFzaWEgVGVjaG5vbG9naWVzLCBJbmMuMSQwIgYDVQQDDBtU
cnVzdEFzaWEgR2xvYmFsIFJvb3QgQ0EgRzMwggIiMA0GCSqGSIb3DQEBAQUAA4IC
DwAwggIKAoICAQDAMYJhkuSUGwoqZdC+BqmHO1ES6nBBruL7dOoKjbmzTNyPtxNS
T1QY4SxzlZHFZjtqz6xjbYdT8PfxObegQ2OwxANdV6nnRM7EoYNl9lA+sX4WuDqK
AtCWHwDNBSHvBm3dIZwZQ0WhxeiAysKtQGIXBsaqvPPW5vxQfmZCHzyLpnl5hkA1
nyDvP+uLRx+PjsXUjrYsyUQE49RDdT/VP68czH5GX6zfZBCK70bwkPAPLfSIC7Ep
qq+FqklYqL9joDiR5rPmd2jE+SoZhLsO4fWvieylL1AgdB4SQXMeJNnKziyhWTXA
yB1GJ2Faj/lN03J5Zh6fFZAhLf3ti1ZwA0pJPn9pMRJpxx5cynoTi+jm9WAPzJMs
hH/x/Gr8m0ed262IPfN2dTPXS6TIi/n1Q1hPy8gDVI+lhXgEGvNz8teHHUGf59gX
zhqcD0r83ERoVGjiQTz+LISGNzzNPy+i2+f3VANfWdP3kXjHi3dqFuVJhZBFcnAv
kV34PmVACxmZySYgWmjBNb9Pp1Hx2BErW+Canig7CjoKH8GB5S7wprlppYiU5msT
f9FkPz2ccEblooV7WIQn3MSAPmeamseaMQ4w7OYXQJXZRe0Blqq/DPNL0WP3E1jA
uPP6Z92bfW1K/zJMtSU7/xxnD4UiWQWRkUF3gdCFTIcQcf+eQxuulXUtgQIDAQAB
o2MwYTAPBgNVHRMBAf8EBTADAQH/MB8GA1UdIwQYMBaAFEDk5PIj7zjKsK5Xf/Ih
MBY027ySMB0GA1UdDgQWBBRA5OTyI+84yrCuV3/yITAWNNu8kjAOBgNVHQ8BAf8E
BAMCAQYwDQYJKoZIhvcNAQEMBQADggIBACY7UeFNOPMyGLS0XuFlXsSUT9SnYaP4
wM8zAQLpw6o1D/GUE3d3NZ4tVlFEbuHGLige/9rsR82XRBf34EzC4Xx8MnpmyFq2
XFNFV1pF1AWZLy4jVe5jaN/TG3inEpQGAHUNcoTpLrxaatXeL1nHo+zSh2bbt1S1
JKv0Q3jbSwTEb93mPmY+KfJLaHEih6D4sTNjduMNhXJEIlU/HHzp/LgV6FL6qj6j
ITk1dImmasI5+njPtqzn59ZW/yOSLlALqbUHM/Q4X6RJpstlcHboCoWASzY9M/eV
VHUl2qzEc4Jl6VL1XP04lQJqaTDFHApXB64ipCz5xUG3uOyfT0gA+QEEVcys+TIx
xHWVBqB/0Y0n3bOppHKH/lmLmnp0Ft0WpWIp6zqW3IunaFnT63eROfjXy9mPX1on
AX1daBli2MjN9LdyR75bl87yraKZk62Uy5P2EgmVtqvXO9A/EcswFi55gORngS1d
7XB4tmBZrOFdRWOPyN9yaFvqHbgB8X7754qz41SgOAngPN5C8sLtLpvzHzW2Ntjj
gKGLzZlkD8Kqq7HK9W+eQ42EVJmzbsASZthwEPEGNTNDqJwuuhQxzhB/HIbjj9LV
+Hfsm6vxL2PZQl/gZ4FkkfGXL/xuJvYz+NO1+MRiqzFRJQJ6+N1rZdVtTTDIZbpo
FGWsJwt0ivKH
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            64:f6:0e:65:77:61:6a:ab:3b:b4:ea:85:84:bb:b1:89:b8:71:93:0f
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=CN, O=TrustAsia Technologies, Inc., CN=TrustAsia Global Root CA G3
#        Validity
#            Not Before: May 20 02:10:19 2021 GMT
#            Not After : May 19 02:10:19 2046 GMT
#        Subject: C=CN, O=TrustAsia Technologies, Inc., CN=TrustAsia Global Root CA G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:31:82:61:92:e4:94:1b:0a:2a:65:d0:be:06:
#                    a9:87:3b:51:12:ea:70:41:ae:e2:fb:74:ea:0a:8d:
#                    b9:b3:4c:dc:8f:b7:13:52:4f:54:18:e1:2c:73:95:
#                    91:c5:66:3b:6a:cf:ac:63:6d:87:53:f0:f7:f1:39:
#                    b7:a0:43:63:b0:c4:03:5d:57:a9:e7:44:ce:c4:a1:
#                    83:65:f6:50:3e:b1:7e:16:b8:3a:8a:02:d0:96:1f:
#                    00:cd:05:21:ef:06:6d:dd:21:9c:19:43:45:a1:c5:
#                    e8:80:ca:c2:ad:40:62:17:06:c6:aa:bc:f3:d6:e6:
#                    fc:50:7e:66:42:1f:3c:8b:a6:79:79:86:40:35:9f:
#                    20:ef:3f:eb:8b:47:1f:8f:8e:c5:d4:8e:b6:2c:c9:
#                    44:04:e3:d4:43:75:3f:d5:3f:af:1c:cc:7e:46:5f:
#                    ac:df:64:10:8a:ef:46:f0:90:f0:0f:2d:f4:88:0b:
#                    b1:29:aa:af:85:aa:49:58:a8:bf:63:a0:38:91:e6:
#                    b3:e6:77:68:c4:f9:2a:19:84:bb:0e:e1:f5:af:89:
#                    ec:a5:2f:50:20:74:1e:12:41:73:1e:24:d9:ca:ce:
#                    2c:a1:59:35:c0:c8:1d:46:27:61:5a:8f:f9:4d:d3:
#                    72:79:66:1e:9f:15:90:21:2d:fd:ed:8b:56:70:03:
#                    4a:49:3e:7f:69:31:12:69:c7:1e:5c:ca:7a:13:8b:
#                    e8:e6:f5:60:0f:cc:93:2c:84:7f:f1:fc:6a:fc:9b:
#                    47:9d:db:ad:88:3d:f3:76:75:33:d7:4b:a4:c8:8b:
#                    f9:f5:43:58:4f:cb:c8:03:54:8f:a5:85:78:04:1a:
#                    f3:73:f2:d7:87:1d:41:9f:e7:d8:17:ce:1a:9c:0f:
#                    4a:fc:dc:44:68:54:68:e2:41:3c:fe:2c:84:86:37:
#                    3c:cd:3f:2f:a2:db:e7:f7:54:03:5f:59:d3:f7:91:
#                    78:c7:8b:77:6a:16:e5:49:85:90:45:72:70:2f:91:
#                    5d:f8:3e:65:40:0b:19:99:c9:26:20:5a:68:c1:35:
#                    bf:4f:a7:51:f1:d8:11:2b:5b:e0:9a:9e:28:3b:0a:
#                    3a:0a:1f:c1:81:e5:2e:f0:a6:b9:69:a5:88:94:e6:
#                    6b:13:7f:d1:64:3f:3d:9c:70:46:e5:a2:85:7b:58:
#                    84:27:dc:c4:80:3e:67:9a:9a:c7:9a:31:0e:30:ec:
#                    e6:17:40:95:d9:45:ed:01:96:aa:bf:0c:f3:4b:d1:
#                    63:f7:13:58:c0:b8:f3:fa:67:dd:9b:7d:6d:4a:ff:
#                    32:4c:b5:25:3b:ff:1c:67:0f:85:22:59:05:91:91:
#                    41:77:81:d0:85:4c:87:10:71:ff:9e:43:1b:ae:95:
#                    75:2d:81
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:40:E4:E4:F2:23:EF:38:CA:B0:AE:57:7F:F2:21:30:16:34:DB:BC:92
#
#            X509v3 Subject Key Identifier: 
#                40:E4:E4:F2:23:EF:38:CA:B0:AE:57:7F:F2:21:30:16:34:DB:BC:92
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha384WithRSAEncryption
#         26:3b:51:e1:4d:38:f3:32:18:b4:b4:5e:e1:65:5e:c4:94:4f:
#         d4:a7:61:a3:f8:c0:cf:33:01:02:e9:c3:aa:35:0f:f1:94:13:
#         77:77:35:9e:2d:56:51:44:6e:e1:c6:2e:28:1e:ff:da:ec:47:
#         cd:97:44:17:f7:e0:4c:c2:e1:7c:7c:32:7a:66:c8:5a:b6:5c:
#         53:45:57:5a:45:d4:05:99:2f:2e:23:55:ee:63:68:df:d3:1b:
#         78:a7:12:94:06:00:75:0d:72:84:e9:2e:bc:5a:6a:d5:de:2f:
#         59:c7:a3:ec:d2:87:66:db:b7:54:b5:24:ab:f4:43:78:db:4b:
#         04:c4:6f:dd:e6:3e:66:3e:29:f2:4b:68:71:22:87:a0:f8:b1:
#         33:63:76:e3:0d:85:72:44:22:55:3f:1c:7c:e9:fc:b8:15:e8:
#         52:fa:aa:3e:a3:21:39:35:74:89:a6:6a:c2:39:fa:78:cf:b6:
#         ac:e7:e7:d6:56:ff:23:92:2e:50:0b:a9:b5:07:33:f4:38:5f:
#         a4:49:a6:cb:65:70:76:e8:0a:85:80:4b:36:3d:33:f7:95:54:
#         75:25:da:ac:c4:73:82:65:e9:52:f5:5c:fd:38:95:02:6a:69:
#         30:c5:1c:0a:57:07:ae:22:a4:2c:f9:c5:41:b7:b8:ec:9f:4f:
#         48:00:f9:01:04:55:cc:ac:f9:32:31:c4:75:95:06:a0:7f:d1:
#         8d:27:dd:b3:a9:a4:72:87:fe:59:8b:9a:7a:74:16:dd:16:a5:
#         62:29:eb:3a:96:dc:8b:a7:68:59:d3:eb:77:91:39:f8:d7:cb:
#         d9:8f:5f:5a:27:01:7d:5d:68:19:62:d8:c8:cd:f4:b7:72:47:
#         be:5b:97:ce:f2:ad:a2:99:93:ad:94:cb:93:f6:12:09:95:b6:
#         ab:d7:3b:d0:3f:11:cb:30:16:2e:79:80:e4:67:81:2d:5d:ed:
#         70:78:b6:60:59:ac:e1:5d:45:63:8f:c8:df:72:68:5b:ea:1d:
#         b8:01:f1:7e:fb:e7:8a:b3:e3:54:a0:38:09:e0:3c:de:42:f2:
#         c2:ed:2e:9b:f3:1f:35:b6:36:d8:e3:80:a1:8b:cd:99:64:0f:
#         c2:aa:ab:b1:ca:f5:6f:9e:43:8d:84:54:99:b3:6e:c0:12:66:
#         d8:70:10:f1:06:35:33:43:a8:9c:2e:ba:14:31:ce:10:7f:1c:
#         86:e3:8f:d2:d5:f8:77:ec:9b:ab:f1:2f:63:d9:42:5f:e0:67:
#         81:64:91:f1:97:2f:fc:6e:26:f6:33:f8:d3:b5:f8:c4:62:ab:
#         31:51:25:02:7a:f8:dd:6b:65:d5:6d:4d:30:c8:65:ba:68:14:
#         65:ac:27:0b:74:8a:f2:87

[p11-kit-object-v1]
label: "TrustAsia Global Root CA G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE8bPNOOQlQ+XeGQm7gXmiFV8VYwHewqvd
s6YbZ0uAg6+Zy6wX2yuWynxSVeIa4T1W8C8WCPoVvJu7R+Y/7qjhTIz10zb5OF2r
cJpHDeKBQQbrSfmwKd0z7FClf3kpuCCY
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TrustAsia Global Root CA G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4f:23:64:b8:8e:97:63:9e:c6:53:81:c1:76:4e:cb:2a:74:15:d6:d7
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=CN, O=TrustAsia Technologies, Inc., CN=TrustAsia Global Root CA G4
#        Validity
#            Not Before: May 20 02:10:22 2021 GMT
#            Not After : May 19 02:10:22 2046 GMT
#        Subject: C=CN, O=TrustAsia Technologies, Inc., CN=TrustAsia Global Root CA G4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:f1:b3:cd:38:e4:25:43:e5:de:19:09:bb:81:79:
#                    a2:15:5f:15:63:01:de:c2:ab:dd:b3:a6:1b:67:4b:
#                    80:83:af:99:cb:ac:17:db:2b:96:ca:7c:52:55:e2:
#                    1a:e1:3d:56:f0:2f:16:08:fa:15:bc:9b:bb:47:e6:
#                    3f:ee:a8:e1:4c:8c:f5:d3:36:f9:38:5d:ab:70:9a:
#                    47:0d:e2:81:41:06:eb:49:f9:b0:29:dd:33:ec:50:
#                    a5:7f:79:29:b8:20:98
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:A5:BB:4A:97:CE:B3:2B:7F:A4:31:DE:97:83:59:83:A6:6F:71:CB:DE
#
#            X509v3 Subject Key Identifier: 
#                A5:BB:4A:97:CE:B3:2B:7F:A4:31:DE:97:83:59:83:A6:6F:71:CB:DE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:5e:f2:eb:06:cc:49:31:9f:40:00:6d:b7:7e:36:
#         f0:4d:11:4f:f3:cb:89:3a:2c:78:91:50:a3:5b:c0:ca:75:26:
#         f2:bf:90:5d:0b:82:8c:60:28:9f:c6:70:9a:68:e4:f1:02:30:
#         5c:58:0e:56:76:cf:58:c3:d7:10:8c:ba:8e:ae:e3:bc:64:75:
#         47:c5:55:90:e3:fd:ba:55:eb:07:c4:53:ab:37:a9:ee:21:b2:
#         21:5b:60:8f:3d:32:f1:d5:23:94:d6:58

[p11-kit-object-v1]
label: "Trustwave Global Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Trustwave Global Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            05:f7:0e:86:da:49:f3:46:35:2e:ba:b2
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, ST=Illinois, L=Chicago, O=Trustwave Holdings, Inc., CN=Trustwave Global Certification Authority
#        Validity
#            Not Before: Aug 23 19:34:12 2017 GMT
#            Not After : Aug 23 19:34:12 2042 GMT
#        Subject: C=US, ST=Illinois, L=Chicago, O=Trustwave Holdings, Inc., CN=Trustwave Global Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b9:5d:51:28:4b:3c:37:92:d1:82:ce:bd:1d:bd:
#                    cd:dd:b8:ab:cf:0a:3e:e1:5d:e5:dc:aa:09:b9:57:
#                    02:3e:e6:63:61:df:f2:0f:82:63:ae:a3:f7:ac:73:
#                    d1:7c:e7:b3:0b:af:08:00:09:59:7f:cd:29:2a:88:
#                    93:87:17:18:80:ed:88:b2:b4:b6:10:1f:2d:d6:5f:
#                    55:a2:13:5d:d1:c6:eb:06:56:89:88:fe:ac:32:9d:
#                    fd:5c:c3:05:c7:6e:ee:86:89:ba:88:03:9d:72:21:
#                    86:90:ae:8f:03:a5:dc:9f:88:28:cb:a3:92:49:0f:
#                    ec:d0:0f:e2:6d:44:4f:80:6a:b2:d4:e7:a0:0a:53:
#                    01:ba:8e:97:91:76:6e:bc:fc:d5:6b:36:e6:40:88:
#                    d6:7b:2f:5f:05:e8:2c:6d:11:f3:e7:b2:be:92:44:
#                    4c:d2:97:a4:fe:d2:72:81:43:07:9c:e9:11:3e:f5:
#                    8b:1a:59:7d:1f:68:58:dd:04:00:2c:96:f3:43:b3:
#                    7e:98:19:74:d9:9c:73:d9:18:be:41:c7:34:79:d9:
#                    f4:62:c2:43:b9:b3:27:b0:22:cb:f9:3d:52:c7:30:
#                    47:b3:c9:3e:b8:6a:e2:e7:e8:81:70:5e:42:8b:4f:
#                    26:a5:fe:3a:c2:20:6e:bb:f8:16:8e:cd:0c:a9:b4:
#                    1b:6c:76:10:e1:58:79:46:3e:54:ce:80:a8:57:09:
#                    37:29:1b:99:13:8f:0c:c8:d6:2c:1c:fb:05:e8:08:
#                    95:3d:65:46:dc:ee:cd:69:e2:4d:8f:87:28:4e:34:
#                    0b:3e:cf:14:d9:bb:dd:b6:50:9a:ad:77:d4:19:d6:
#                    da:1a:88:c8:4e:1b:27:75:d8:b2:08:f1:ae:83:30:
#                    b9:11:0e:cd:87:f0:84:8d:15:72:7c:a1:ef:cc:f2:
#                    88:61:ba:f4:69:bb:0c:8c:0b:75:57:04:b8:4e:2a:
#                    14:2e:3d:0f:1c:1e:32:a6:62:36:ee:66:e2:22:b8:
#                    05:40:63:10:22:f3:33:1d:74:72:8a:2c:f5:39:29:
#                    a0:d3:e7:1b:80:84:2d:c5:3d:e3:4d:b1:fd:1a:6f:
#                    ba:65:07:3b:58:ec:42:45:26:fb:d8:da:25:72:c4:
#                    f6:00:b1:22:79:bd:e3:7c:59:62:4a:9c:05:6f:3d:
#                    ce:e6:d6:47:63:99:c6:24:6f:72:12:c8:ac:7f:90:
#                    b4:0b:91:70:e8:b7:e6:16:10:71:17:ce:de:06:4f:
#                    48:41:7d:35:4a:a3:89:f2:c9:4b:7b:41:11:6d:67:
#                    b7:08:98:4c:e5:11:19:ae:42:80:dc:fb:90:05:d4:
#                    f8:50:ca:be:e4:ad:c7:c2:94:d7:16:9d:e6:17:8f:
#                    af:36:fb
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                99:E0:19:67:0D:62:DB:76:B3:DA:3D:B8:5B:E8:FD:42:D2:31:0E:87
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         98:73:70:e2:b0:d3:ed:39:ec:4c:60:d9:a9:12:86:17:1e:96:
#         d0:e8:54:28:3b:64:2d:21:a6:f8:9d:56:13:6a:48:3d:4f:c7:
#         3e:29:db:6d:58:83:54:3d:87:7d:23:05:d4:e4:1c:dc:e8:38:
#         65:86:c5:75:a7:5a:db:35:05:bd:77:de:bb:29:37:40:05:07:
#         c3:94:52:9f:ca:64:dd:f1:1b:2b:dc:46:0a:10:02:31:fd:4a:
#         68:0d:07:64:90:e6:1e:f5:2a:a1:a8:bb:3c:5d:f9:a3:08:0b:
#         11:0c:f1:3f:2d:10:94:6f:fe:e2:34:87:83:d6:cf:e5:1b:35:
#         6d:d2:03:e1:b0:0d:a8:a0:aa:46:27:82:36:a7:15:b6:08:a6:
#         42:54:57:b6:99:5a:e2:0b:79:90:d7:57:12:51:35:19:88:41:
#         68:25:d4:37:17:84:15:fb:01:72:dc:95:de:52:26:20:98:26:
#         e2:76:f5:27:6f:fa:00:3b:4a:61:d9:0d:cb:51:93:2a:fd:16:
#         06:96:a7:23:9a:23:48:fe:51:bd:b6:c4:b0:b1:54:ce:de:6c:
#         41:ad:16:67:7e:db:fd:38:cd:b9:38:4e:b2:c1:60:cb:9d:17:
#         df:58:9e:7a:62:b2:26:8f:74:95:9b:e4:5b:1d:d2:0f:dd:98:
#         1c:9b:59:b9:23:d3:31:a0:a6:ff:38:dd:cf:20:4f:e9:58:56:
#         3a:67:c3:d1:f6:99:99:9d:ba:36:b6:80:2f:88:47:4f:86:bf:
#         44:3a:80:e4:37:1c:a6:ba:ea:97:98:11:d0:84:62:47:64:1e:
#         aa:ee:40:bf:34:b1:9c:8f:4e:e1:f2:92:4f:1f:8e:f3:9e:97:
#         de:f3:a6:79:6a:89:71:4f:4b:27:17:48:fe:ec:f4:50:0f:4f:
#         49:7d:cc:45:e3:bd:7a:40:c5:41:dc:61:56:27:06:69:e5:72:
#         41:81:d3:b6:01:89:a0:2f:3a:72:79:fe:3a:30:bf:41:ec:c7:
#         62:3e:91:4b:c7:d9:31:76:42:f9:f7:3c:63:ec:26:8c:73:0c:
#         7d:1a:1d:ea:a8:7c:87:a8:c2:27:7c:e1:33:41:0f:cf:cf:fc:
#         00:a0:22:80:9e:4a:a7:6f:00:b0:41:45:b7:22:ca:68:48:c5:
#         42:a2:ae:dd:1d:f2:e0:6e:4e:05:58:b1:c0:90:16:2a:a4:3d:
#         10:40:be:8f:62:63:83:a9:9c:82:7d:2d:02:e9:83:30:7c:cb:
#         27:c9:fd:1e:66:00:b0:2e:d3:21:2f:8e:33:16:6c:98:ed:10:
#         a8:07:d6:cc:93:cf:db:d1:69:1c:e4:ca:c9:e0:b6:9c:e9:ce:
#         71:71:de:6c:3f:16:a4:79

[p11-kit-object-v1]
label: "Trustwave Global ECC P256 Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEfvts5iPjczIIymDmU5y6dI0YsHiQ
UoDdOMBKHdGozJOklwY4yg0VYsaOASplnarfNJEugcHkM5IxxP0JOqY/rQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Trustwave Global ECC P256 Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            0d:6a:5f:08:3f:28:5c:3e:51:95:df:5d
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C=US, ST=Illinois, L=Chicago, O=Trustwave Holdings, Inc., CN=Trustwave Global ECC P256 Certification Authority
#        Validity
#            Not Before: Aug 23 19:35:10 2017 GMT
#            Not After : Aug 23 19:35:10 2042 GMT
#        Subject: C=US, ST=Illinois, L=Chicago, O=Trustwave Holdings, Inc., CN=Trustwave Global ECC P256 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub: 
#                    04:7e:fb:6c:e6:23:e3:73:32:08:ca:60:e6:53:9c:
#                    ba:74:8d:18:b0:78:90:52:80:dd:38:c0:4a:1d:d1:
#                    a8:cc:93:a4:97:06:38:ca:0d:15:62:c6:8e:01:2a:
#                    65:9d:aa:df:34:91:2e:81:c1:e4:33:92:31:c4:fd:
#                    09:3a:a6:3f:ad
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                A3:41:06:AC:90:6D:D1:4A:EB:75:A5:4A:10:99:B3:B1:A1:8B:4A:F7
#    Signature Algorithm: ecdsa-with-SHA256
#         30:44:02:20:07:e6:54:da:0e:a0:5a:b2:ae:11:9f:87:c5:b6:
#         ff:69:de:25:be:f8:a0:b7:08:f3:44:ce:2a:df:08:21:0c:37:
#         02:20:2d:26:03:a0:05:bd:6b:d1:f6:5c:f8:65:cc:86:6d:b3:
#         9c:34:48:63:84:09:c5:8d:77:1a:e2:cc:9c:e1:74:7b

[p11-kit-object-v1]
label: "Trustwave Global ECC P384 Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEa9oNdTUIMUcFrkWZVfEREy5K+BAxI6N+
g9N/KAg6Jho6z5eCH4C3JwmP0Y4wxAqbDqxYBKv3Nn2UI6SbCoqLq+v9OSVm8V7+
jK6NQXmdCWDOKKnTim3z1kXU8piEOGWg
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Trustwave Global ECC P384 Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICnTCCAiSgAwIBAgIMCL2Fl2yZJ6SAaEc7MAoGCCqGSM49BAMDMIGRMQswCQYD
VQQGEwJVUzERMA8GA1UECBMISWxsaW5vaXMxEDAOBgNVBAcTB0NoaWNhZ28xITAf
BgNVBAoTGFRydXN0d2F2ZSBIb2xkaW5ncywgSW5jLjE6MDgGA1UEAxMxVHJ1c3R3
YXZlIEdsb2JhbCBFQ0MgUDM4NCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0x
NzA4MjMxOTM2NDNaFw00MjA4MjMxOTM2NDNaMIGRMQswCQYDVQQGEwJVUzERMA8G
A1UECBMISWxsaW5vaXMxEDAOBgNVBAcTB0NoaWNhZ28xITAfBgNVBAoTGFRydXN0
d2F2ZSBIb2xkaW5ncywgSW5jLjE6MDgGA1UEAxMxVHJ1c3R3YXZlIEdsb2JhbCBF
Q0MgUDM4NCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTB2MBAGByqGSM49AgEGBSuB
BAAiA2IABGvaDXU1CDFHBa5FmVXxERMuSvgQMSOjfoPTfygIOiYaOs+Xgh+AtycJ
j9GOMMQKmw6sWASr9zZ9lCOkmwqKi6vr/TklZvFe/oyujUF5nQlgziip04pt89ZF
1PKYhDhloKNDMEEwDwYDVR0TAQH/BAUwAwEB/zAPBgNVHQ8BAf8EBQMDBwYAMB0G
A1UdDgQWBBRVqYSJ0sEyvRjLbKYHTsjnnb6CkDAKBggqhkjOPQQDAwNnADBkAjA3
AZKXRRJ+oPM+rRk6ct30UJMDEr5E0k9BpIycnR+j9sKS50gU/k6bpZFXrsY3crsC
MGclCrEMXu6pY5Jv5ZAL/mYiykf9ijH3g/56vxC+GCsej/YpHpRZ744hN8tRmKVu
Sw==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            08:bd:85:97:6c:99:27:a4:80:68:47:3b
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, ST=Illinois, L=Chicago, O=Trustwave Holdings, Inc., CN=Trustwave Global ECC P384 Certification Authority
#        Validity
#            Not Before: Aug 23 19:36:43 2017 GMT
#            Not After : Aug 23 19:36:43 2042 GMT
#        Subject: C=US, ST=Illinois, L=Chicago, O=Trustwave Holdings, Inc., CN=Trustwave Global ECC P384 Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:6b:da:0d:75:35:08:31:47:05:ae:45:99:55:f1:
#                    11:13:2e:4a:f8:10:31:23:a3:7e:83:d3:7f:28:08:
#                    3a:26:1a:3a:cf:97:82:1f:80:b7:27:09:8f:d1:8e:
#                    30:c4:0a:9b:0e:ac:58:04:ab:f7:36:7d:94:23:a4:
#                    9b:0a:8a:8b:ab:eb:fd:39:25:66:f1:5e:fe:8c:ae:
#                    8d:41:79:9d:09:60:ce:28:a9:d3:8a:6d:f3:d6:45:
#                    d4:f2:98:84:38:65:a0
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                55:A9:84:89:D2:C1:32:BD:18:CB:6C:A6:07:4E:C8:E7:9D:BE:82:90
#    Signature Algorithm: ecdsa-with-SHA384
#         30:64:02:30:37:01:92:97:45:12:7e:a0:f3:3e:ad:19:3a:72:
#         dd:f4:50:93:03:12:be:44:d2:4f:41:a4:8c:9c:9d:1f:a3:f6:
#         c2:92:e7:48:14:fe:4e:9b:a5:91:57:ae:c6:37:72:bb:02:30:
#         67:25:0a:b1:0c:5e:ee:a9:63:92:6f:e5:90:0b:fe:66:22:ca:
#         47:fd:8a:31:f7:83:fe:7a:bf:10:be:18:2b:1e:8f:f6:29:1e:
#         94:59:ef:8e:21:37:cb:51:98:a5:6e:4b

[p11-kit-object-v1]
label: "TunTrust Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "TunTrust Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFszCCA5ugAwIBAgIUEwLV4kBMkkaGFmddtLu7sms+/BMwDQYJKoZIhvcNAQEL
BQAwYTELMAkGA1UEBhMCVE4xNzA1BgNVBAoMLkFnZW5jZSBOYXRpb25hbGUgZGUg
Q2VydGlmaWNhdGlvbiBFbGVjdHJvbmlxdWUxGTAXBgNVBAMMEFR1blRydXN0IFJv
b3QgQ0EwHhcNMTkwNDI2MDg1NzU2WhcNNDQwNDI2MDg1NzU2WjBhMQswCQYDVQQG
EwJUTjE3MDUGA1UECgwuQWdlbmNlIE5hdGlvbmFsZSBkZSBDZXJ0aWZpY2F0aW9u
IEVsZWN0cm9uaXF1ZTEZMBcGA1UEAwwQVHVuVHJ1c3QgUm9vdCBDQTCCAiIwDQYJ
KoZIhvcNAQEBBQADggIPADCCAgoCggIBAMPN0/y9BFPdDCA61YguBUtB9YOCfvdZ
n56eY+hz2vYGqU8ftPkLHzmMmiDQfgbU7DTZhrx1W4eI8NLZ1KMKsmwb60ksPqxd
2JQDoOw05TDENX37Jk0bbjBU2PWARZw5rZzJJQRNmpA+TkBuimvNKWfGzC3gdOgF
VwpIUPp6Q9p+7FuaDmJ2/uqdHYVy7BG7NegfJ7/Boce7SBbdVtfMTqDhuazb1YMZ
GoXRlJfXyqNlC/M4+QKu3fZnz8k/9YosRxqZbwUN/dAdgjH8KcwAWJeRTIAAHDOF
li/LQcKLEITDCSSJH7UP2dl3RxiSlGBcx5kDPP73lad9UKGAwqmDrViWVSHbhlnU
r8a83YFuB9tgYv7sEG7aaAH0gxupPqJbI9dkxt/con3YS7qC0lH4Zr8GRuR5KiY2
eY8fTpkdso8MDhz/yV3A/ZAQprE38806JG60hZC/gLkMjNWb1sjxVj8agIl6qeIb
MlEsPvLfe/ZdeikZjuXIvTZxi11Mwh0/rViizz1wTaZQmCXcI/m4WEEIcb9PuISg
jwBUFfyRbVinljvrS5YnzWuioYasDXxU5mZMZl+QviGaAkYt5IPCgLnPSz7ofzwB
7I9ezX/SKEIBlYrilz0QIX32nRzFNKHsLA4KUiwSVXAkPcvCFDVDXSdOvsC9qnyW
5/yeYa1E0wCXAgMBAAGjYzBhMB0GA1UdDgQWBBQGmpsfU33x9aTI04Y+oXNZtPdE
ITAPBgNVHRMBAf8EBTADAQH/MB8GA1UdIwQYMBaAFAaamx9TffH1pMjThj6hc1m0
90QhMA4GA1UdDwEB/wQEAwIBBjANBgkqhkiG9w0BAQsFAAOCAgEAqgVutt0Vyb+z
xiD2BkewhpMl0425yAA/l/VSJ4hxyXT968pk21vvHl26v9Hr7lxpuhbI87mP0zYu
QEkHDVneixCwSQXi/5E/S7fdAo74gShczNxtr18UnH1YeA32gAm56Q6XKRm4t+v4
FstVEuTGfbvE7Pi1HE4+Z7/FXxttbUcoqgRYYdZ2vyJ/0Adqp2RT8JeNnYA/u8EH
22Wv5psymsNUk8QcCMNE+3tjEUPRahphanltkE8pjkcFwRJpadbGNjHh/PqAulxP
xOu3Mqz4dWEX1xAZufHSCe96Qp1bWgvUxpVOKs7/B9dPfhgGiPEZtdmYu65xxBzn
dFlY7wyJz4sfdZMaBBSSSFCp61cpABbjNhzI+L/wM9VBD8TMPN3pM0MBkRArHtG5
Xc0yGYuPjCB31yLEQtyEFpslbei0VXF/sHyz03FJuc9SpAQ/3D2gu68zngowYI7b
nV2UqL1g52KAdoGDDIzMMEZJ4gzSqK/rYXHv5yJiqfdcZGyfFoxnNidF9Ql7v/YQ
CvGwjVRDjAS6oz/v4jXH+XTgbzRB0L9zZVcg+ZtnemZoJE6AZb0QmQZZ8mWvuMZH
u/2QeItBcy6vVR/cO5JyboTT0GFMDcx2V+IthSIVNg3rAZ3r2OvEhJn7wAzMMujj
d9qDRIueVSjAi1jTkD5OGwDxFa2DK5o=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            13:02:d5:e2:40:4c:92:46:86:16:67:5d:b4:bb:bb:b2:6b:3e:fc:13
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TN, O=Agence Nationale de Certification Electronique, CN=TunTrust Root CA
#        Validity
#            Not Before: Apr 26 08:57:56 2019 GMT
#            Not After : Apr 26 08:57:56 2044 GMT
#        Subject: C=TN, O=Agence Nationale de Certification Electronique, CN=TunTrust Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c3:cd:d3:fc:bd:04:53:dd:0c:20:3a:d5:88:2e:
#                    05:4b:41:f5:83:82:7e:f7:59:9f:9e:9e:63:e8:73:
#                    da:f6:06:a9:4f:1f:b4:f9:0b:1f:39:8c:9a:20:d0:
#                    7e:06:d4:ec:34:d9:86:bc:75:5b:87:88:f0:d2:d9:
#                    d4:a3:0a:b2:6c:1b:eb:49:2c:3e:ac:5d:d8:94:03:
#                    a0:ec:34:e5:30:c4:35:7d:fb:26:4d:1b:6e:30:54:
#                    d8:f5:80:45:9c:39:ad:9c:c9:25:04:4d:9a:90:3e:
#                    4e:40:6e:8a:6b:cd:29:67:c6:cc:2d:e0:74:e8:05:
#                    57:0a:48:50:fa:7a:43:da:7e:ec:5b:9a:0e:62:76:
#                    fe:ea:9d:1d:85:72:ec:11:bb:35:e8:1f:27:bf:c1:
#                    a1:c7:bb:48:16:dd:56:d7:cc:4e:a0:e1:b9:ac:db:
#                    d5:83:19:1a:85:d1:94:97:d7:ca:a3:65:0b:f3:38:
#                    f9:02:ae:dd:f6:67:cf:c9:3f:f5:8a:2c:47:1a:99:
#                    6f:05:0d:fd:d0:1d:82:31:fc:29:cc:00:58:97:91:
#                    4c:80:00:1c:33:85:96:2f:cb:41:c2:8b:10:84:c3:
#                    09:24:89:1f:b5:0f:d9:d9:77:47:18:92:94:60:5c:
#                    c7:99:03:3c:fe:f7:95:a7:7d:50:a1:80:c2:a9:83:
#                    ad:58:96:55:21:db:86:59:d4:af:c6:bc:dd:81:6e:
#                    07:db:60:62:fe:ec:10:6e:da:68:01:f4:83:1b:a9:
#                    3e:a2:5b:23:d7:64:c6:df:dc:a2:7d:d8:4b:ba:82:
#                    d2:51:f8:66:bf:06:46:e4:79:2a:26:36:79:8f:1f:
#                    4e:99:1d:b2:8f:0c:0e:1c:ff:c9:5d:c0:fd:90:10:
#                    a6:b1:37:f3:cd:3a:24:6e:b4:85:90:bf:80:b9:0c:
#                    8c:d5:9b:d6:c8:f1:56:3f:1a:80:89:7a:a9:e2:1b:
#                    32:51:2c:3e:f2:df:7b:f6:5d:7a:29:19:8e:e5:c8:
#                    bd:36:71:8b:5d:4c:c2:1d:3f:ad:58:a2:cf:3d:70:
#                    4d:a6:50:98:25:dc:23:f9:b8:58:41:08:71:bf:4f:
#                    b8:84:a0:8f:00:54:15:fc:91:6d:58:a7:96:3b:eb:
#                    4b:96:27:cd:6b:a2:a1:86:ac:0d:7c:54:e6:66:4c:
#                    66:5f:90:be:21:9a:02:46:2d:e4:83:c2:80:b9:cf:
#                    4b:3e:e8:7f:3c:01:ec:8f:5e:cd:7f:d2:28:42:01:
#                    95:8a:e2:97:3d:10:21:7d:f6:9d:1c:c5:34:a1:ec:
#                    2c:0e:0a:52:2c:12:55:70:24:3d:cb:c2:14:35:43:
#                    5d:27:4e:be:c0:bd:aa:7c:96:e7:fc:9e:61:ad:44:
#                    d3:00:97
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                06:9A:9B:1F:53:7D:F1:F5:A4:C8:D3:86:3E:A1:73:59:B4:F7:44:21
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Authority Key Identifier: 
#                keyid:06:9A:9B:1F:53:7D:F1:F5:A4:C8:D3:86:3E:A1:73:59:B4:F7:44:21
#
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         aa:05:6e:b6:dd:15:c9:bf:b3:c6:20:f6:06:47:b0:86:93:25:
#         d3:8d:b9:c8:00:3f:97:f5:52:27:88:71:c9:74:fd:eb:ca:64:
#         db:5b:ef:1e:5d:ba:bf:d1:eb:ee:5c:69:ba:16:c8:f3:b9:8f:
#         d3:36:2e:40:49:07:0d:59:de:8b:10:b0:49:05:e2:ff:91:3f:
#         4b:b7:dd:02:8e:f8:81:28:5c:cc:dc:6d:af:5f:14:9c:7d:58:
#         78:0d:f6:80:09:b9:e9:0e:97:29:19:b8:b7:eb:f8:16:cb:55:
#         12:e4:c6:7d:bb:c4:ec:f8:b5:1c:4e:3e:67:bf:c5:5f:1b:6d:
#         6d:47:28:aa:04:58:61:d6:76:bf:22:7f:d0:07:6a:a7:64:53:
#         f0:97:8d:9d:80:3f:bb:c1:07:db:65:af:e6:9b:32:9a:c3:54:
#         93:c4:1c:08:c3:44:fb:7b:63:11:43:d1:6a:1a:61:6a:79:6d:
#         90:4f:29:8e:47:05:c1:12:69:69:d6:c6:36:31:e1:fc:fa:80:
#         ba:5c:4f:c4:eb:b7:32:ac:f8:75:61:17:d7:10:19:b9:f1:d2:
#         09:ef:7a:42:9d:5b:5a:0b:d4:c6:95:4e:2a:ce:ff:07:d7:4f:
#         7e:18:06:88:f1:19:b5:d9:98:bb:ae:71:c4:1c:e7:74:59:58:
#         ef:0c:89:cf:8b:1f:75:93:1a:04:14:92:48:50:a9:eb:57:29:
#         00:16:e3:36:1c:c8:f8:bf:f0:33:d5:41:0f:c4:cc:3c:dd:e9:
#         33:43:01:91:10:2b:1e:d1:b9:5d:cd:32:19:8b:8f:8c:20:77:
#         d7:22:c4:42:dc:84:16:9b:25:6d:e8:b4:55:71:7f:b0:7c:b3:
#         d3:71:49:b9:cf:52:a4:04:3f:dc:3d:a0:bb:af:33:9e:0a:30:
#         60:8e:db:9d:5d:94:a8:bd:60:e7:62:80:76:81:83:0c:8c:cc:
#         30:46:49:e2:0c:d2:a8:af:eb:61:71:ef:e7:22:62:a9:f7:5c:
#         64:6c:9f:16:8c:67:36:27:45:f5:09:7b:bf:f6:10:0a:f1:b0:
#         8d:54:43:8c:04:ba:a3:3f:ef:e2:35:c7:f9:74:e0:6f:34:41:
#         d0:bf:73:65:57:20:f9:9b:67:7a:66:68:24:4e:80:65:bd:10:
#         99:06:59:f2:65:af:b8:c6:47:bb:fd:90:78:8b:41:73:2e:af:
#         55:1f:dc:3b:92:72:6e:84:d3:d0:61:4c:0d:cc:76:57:e2:2d:
#         85:22:15:36:0d:eb:01:9d:eb:d8:eb:c4:84:99:fb:c0:0c:cc:
#         32:e8:e3:77:da:83:44:8b:9e:55:28:c0:8b:58:d3:90:3e:4e:
#         1b:00:f1:15:ad:83:2b:9a

[p11-kit-object-v1]
label: "Tunisian Root Certificate Authority - TunRootCA2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Tunisian Root Certificate Authority - TunRootCA2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            21:66:15:05:05:27:05:05:bc:8a:b0:1d:af:0a:be:c4
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TN, CN=Tunisian Root Certificate Authority - TunRootCA2, O=National Digital Certification Agency
#        Validity
#            Not Before: May  5 08:57:01 2015 GMT
#            Not After : May  5 08:57:01 2027 GMT
#        Subject: C=TN, CN=Tunisian Root Certificate Authority - TunRootCA2, O=National Digital Certification Agency
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:b0:07:e7:62:fb:d0:0d:55:ce:67:b7:57:8d:6e:
#                    0c:a9:27:54:1e:eb:a9:24:ab:67:8f:8f:9c:61:0f:
#                    db:28:32:2f:3b:f8:2c:65:92:2d:ae:ba:33:92:c0:
#                    2b:9e:f2:1f:5e:6d:23:5d:b3:58:1f:8d:a1:c0:6d:
#                    75:85:0a:b0:13:4e:5b:56:46:8b:39:bd:0b:82:bb:
#                    3a:43:9b:08:ba:46:ee:f9:17:eb:cd:c8:d7:e3:75:
#                    13:de:ae:51:48:0a:ce:20:95:46:9f:02:ec:55:8c:
#                    74:aa:5a:fc:fc:ea:09:33:35:6e:a3:47:06:c7:dd:
#                    7e:84:68:0e:c7:12:ca:94:c3:ed:e6:6c:02:6d:de:
#                    02:89:35:b3:04:cb:45:f8:7c:47:a4:d3:1f:df:e5:
#                    5c:23:e2:f3:22:7b:b9:4b:a2:fd:17:35:5d:48:e9:
#                    bf:f5:b3:25:63:8b:e7:78:eb:fc:75:27:bd:88:5c:
#                    a6:85:3f:41:df:95:7c:dd:7a:46:8f:fe:1e:da:b1:
#                    ab:d8:d3:8e:cd:06:8c:c9:d8:52:42:11:52:a2:83:
#                    8f:5c:83:7b:e4:27:b6:8f:1f:a0:5e:3d:d2:75:7d:
#                    79:53:93:06:97:e3:03:c7:96:2c:da:01:3c:79:c5:
#                    3b:50:e8:b0:d3:a1:a4:e2:d3:83:7d:44:f8:10:cf:
#                    a0:1a:2a:f2:65:80:bd:77:c1:98:65:76:ae:12:21:
#                    62:ca:3a:be:be:b5:99:c3:5b:c4:d1:bf:9b:c0:0a:
#                    ca:58:1e:15:a6:d7:21:5e:b1:4d:0a:e5:70:78:9a:
#                    68:e6:74:66:32:14:2a:1e:11:be:88:f7:06:f6:55:
#                    a3:c3:1f:6e:17:90:55:d1:8a:40:89:56:43:d5:4f:
#                    e6:a2:c9:88:64:00:05:51:3f:57:b4:3c:b6:be:6a:
#                    91:71:40:f1:a2:5c:f1:d7:ed:9c:b6:57:f6:59:d4:
#                    2a:11:e5:d4:e5:bf:bb:1e:d1:c8:d7:5f:44:05:9b:
#                    bb:89:3a:ad:a7:43:77:7e:15:60:7c:88:5d:9b:ec:
#                    a5:5c:d2:46:ad:0c:8b:54:45:d4:94:51:55:45:52:
#                    aa:5c:d8:11:ac:f8:56:22:6c:d9:d2:14:e9:b7:4e:
#                    42:85:54:46:f8:01:c6:3d:26:06:77:e8:b2:35:1b:
#                    f0:9d:42:c9:7f:fe:80:27:01:50:cb:7f:c5:ac:54:
#                    fa:6b:6d:96:8c:41:a4:a1:d2:e7:b5:91:48:6f:77:
#                    1c:8b:c2:2b:74:fe:3c:5c:c4:5d:94:ce:ab:f1:20:
#                    96:6b:c1:0c:5a:5f:f9:e5:35:b9:6c:a3:10:67:ef:
#                    91:aa:48:0e:ef:48:b7:76:58:62:d9:be:9e:42:b3:
#                    a4:bd:35
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                CC:73:C5:A3:6A:29:31:97:A7:8D:A0:D8:54:C1:0A:75:B6:23:3F:A6
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         2e:f2:87:48:ed:99:9e:9f:01:0c:3c:c9:0a:78:53:7c:18:35:
#         de:b6:e5:6c:f4:00:80:e1:9b:8b:d9:fa:fb:aa:fb:65:b7:d2:
#         c9:f5:d7:a7:cb:7e:c9:b1:a2:71:58:6d:59:37:d6:e0:33:10:
#         ca:b5:d9:72:db:4e:25:37:aa:a6:dd:1d:18:bd:f5:c9:8a:9c:
#         7a:88:ee:1f:02:c4:2d:92:54:7d:57:e2:5c:19:18:23:02:7a:
#         5c:49:95:b6:98:e7:c2:60:41:65:40:bb:ec:5a:b7:71:9c:50:
#         f2:73:76:fb:5f:0d:ef:35:cf:b4:69:8d:85:e8:4c:90:17:03:
#         0b:c9:b3:2e:20:37:63:11:62:a6:4f:e3:34:e0:fb:79:55:e7:
#         c6:c2:ae:42:fe:b0:34:6c:49:23:0e:72:07:7b:66:05:55:48:
#         fb:12:0f:a0:c0:fa:4e:d1:fb:3d:cc:fe:fd:16:4b:56:50:cd:
#         11:2c:a7:9b:f7:b1:0a:cf:a6:eb:ef:dd:8e:b8:ae:42:08:7c:
#         a4:8c:94:ea:86:c7:43:e3:f7:3c:8a:df:47:d2:30:40:c8:2d:
#         53:f5:6f:11:49:cc:21:8c:96:43:4f:10:a0:47:a1:56:8d:1f:
#         1c:5b:d8:56:5b:eb:34:76:e1:35:3a:71:d4:cc:21:2f:9e:35:
#         28:f2:5a:de:9e:e4:ee:47:6a:10:e8:38:bd:4a:b4:7d:04:7f:
#         05:ae:48:0a:b4:03:bf:2e:b3:0a:1b:9f:cb:ad:dd:4d:d0:87:
#         21:b7:47:76:82:83:2d:c7:57:be:9a:15:a3:1b:30:18:6c:a3:
#         3a:71:6f:64:47:28:92:db:11:61:20:9a:77:65:2d:f9:ac:56:
#         13:6c:4b:a3:5f:ff:9b:a4:e8:ef:e7:58:e8:7b:9e:3b:7f:6a:
#         a7:be:39:0a:13:94:c9:48:4e:66:64:d8:53:4c:ec:41:6b:fd:
#         fc:36:2e:d7:0e:df:61:0b:7b:b5:40:ac:dd:42:49:6d:9e:80:
#         bf:60:95:f0:e9:c0:3f:7b:bb:18:e9:38:b5:56:4e:a7:7e:8a:
#         62:ef:98:1e:f8:78:40:a9:bb:d8:e9:e5:b4:b4:f9:e3:67:9c:
#         ec:53:cf:b8:42:b4:2f:93:81:35:a0:6c:f6:ba:20:8a:68:3d:
#         f7:6d:ff:7f:d3:4c:f7:7a:94:68:03:77:43:3b:35:51:aa:53:
#         12:3e:47:13:14:39:ac:d6:65:8f:a8:46:ff:3c:21:f4:d2:bf:
#         d0:48:a4:7e:a7:51:9b:97:12:f5:99:34:17:23:56:84:13:63:
#         cb:34:ca:1f:ca:ba:a8:07:29:f3:43:24:0a:49:7f:fd:0e:d4:
#         90:f0:ab:43:21:62:9c:8f

[p11-kit-object-v1]
label: "UCA Extended Validation Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Extended Validation Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            4f:d2:2b:8f:f5:64:c8:33:9e:4f:34:58:66:23:70:60
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=UniTrust, CN=UCA Extended Validation Root
#        Validity
#            Not Before: Mar 13 00:00:00 2015 GMT
#            Not After : Dec 31 00:00:00 2038 GMT
#        Subject: C=CN, O=UniTrust, CN=UCA Extended Validation Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a9:09:07:28:13:02:b0:99:e0:64:aa:1e:43:16:
#                    7a:73:b1:91:a0:75:3e:a8:fa:e3:38:00:7a:ec:89:
#                    6a:20:0f:8b:c5:b0:9b:33:03:5a:86:c6:58:86:d5:
#                    c1:85:bb:4f:c6:9c:40:4d:ca:be:ee:69:96:b8:ad:
#                    81:30:9a:7c:92:05:eb:05:2b:9a:48:d0:b8:76:3e:
#                    96:c8:20:bb:d2:b0:f1:8f:d8:ac:45:46:ff:aa:67:
#                    60:b4:77:7e:6a:1f:3c:1a:52:7a:04:3d:07:3c:85:
#                    0d:84:d0:1f:76:0a:f7:6a:14:df:72:e3:34:7c:57:
#                    4e:56:01:3e:79:f1:aa:29:3b:6c:fa:f8:8f:6d:4d:
#                    c8:35:df:ae:eb:dc:24:ee:79:45:a7:85:b6:05:88:
#                    de:88:5d:25:7c:97:64:67:09:d9:bf:5a:15:05:86:
#                    f3:09:1e:ec:58:32:33:11:f3:77:64:b0:76:1f:e4:
#                    10:35:17:1b:f2:0e:b1:6c:a4:2a:a3:73:fc:09:1f:
#                    1e:32:19:53:11:e7:d9:b3:2c:2e:76:2e:a1:a3:de:
#                    7e:6a:88:09:e8:f2:07:8a:f8:b2:cd:10:e7:e2:73:
#                    40:93:bb:08:d1:3f:e1:fc:0b:94:b3:25:ef:7c:a6:
#                    d7:d1:af:9f:ff:96:9a:f5:91:7b:98:0b:77:d4:7e:
#                    e8:07:d2:62:b5:95:39:e3:f3:f1:6d:0f:0e:65:84:
#                    8a:63:54:c5:80:b6:e0:9e:4b:7d:47:26:a7:01:08:
#                    5d:d1:88:9e:d7:c3:32:44:fa:82:4a:0a:68:54:7f:
#                    38:53:03:cc:a4:00:33:64:51:59:0b:a3:82:91:7a:
#                    5e:ec:16:c2:f3:2a:e6:62:da:2a:db:59:62:10:25:
#                    4a:2a:81:0b:47:07:43:06:70:87:d2:fa:93:11:29:
#                    7a:48:4d:eb:94:c7:70:4d:af:67:d5:51:b1:80:20:
#                    01:01:b4:7a:08:a6:90:7f:4e:e0:ef:07:41:87:af:
#                    6a:a5:5e:8b:fb:cf:50:b2:9a:54:af:c3:89:ba:58:
#                    2d:f5:30:98:b1:36:72:39:7e:49:04:fd:29:a7:4c:
#                    79:e4:05:57:db:94:b9:16:53:8d:46:b3:1d:95:61:
#                    57:56:7f:af:f0:16:5b:61:58:6f:36:50:11:0b:d8:
#                    ac:2b:95:16:1a:0e:1f:08:cd:36:34:65:10:62:66:
#                    d5:80:5f:14:20:5f:2d:0c:a0:78:0a:68:d6:2c:d7:
#                    e9:6f:2b:d2:4a:05:93:fc:9e:6f:6b:67:ff:88:f1:
#                    4e:a5:69:4a:52:37:05:ea:c6:16:8d:d2:c4:99:d1:
#                    82:2b:3b:ba:35:75:f7:51:51:58:f3:c8:07:dd:e4:
#                    b4:03:7f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                D9:74:3A:E4:30:3D:0D:F7:12:DC:7E:5A:05:9F:1E:34:9A:F7:E1:14
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         36:8d:97:cc:42:15:64:29:37:9b:26:2c:d6:fb:ae:15:69:2c:
#         6b:1a:1a:f7:5f:b6:f9:07:4c:59:ea:f3:c9:c8:b9:ae:cc:ba:
#         2e:7a:dc:c0:f5:b0:2d:c0:3b:af:9f:70:05:11:6a:9f:25:4f:
#         01:29:70:e3:e5:0c:e1:ea:5a:7c:dc:49:bb:c1:1e:2a:81:f5:
#         16:4b:72:91:c8:a2:31:b9:aa:da:fc:9d:1f:f3:5d:40:02:13:
#         fc:4e:1c:06:ca:b3:14:90:54:17:19:12:1a:f1:1f:d7:0c:69:
#         5a:f6:71:78:f4:94:7d:91:0b:8e:ec:90:54:8e:bc:6f:a1:4c:
#         ab:fc:74:64:fd:71:9a:f8:41:07:a1:cd:91:e4:3c:9a:e0:9b:
#         32:39:73:ab:2a:d5:69:c8:78:91:26:31:7d:e2:c7:30:f1:fc:
#         14:78:77:12:0e:13:f4:dd:16:94:bf:4b:67:7b:70:53:85:ca:
#         b0:bb:f3:38:4d:2c:90:39:c0:0d:c2:5d:6b:e9:e2:e5:d5:88:
#         8d:d6:2c:bf:ab:1b:be:b5:28:87:12:17:74:6e:fc:7d:fc:8f:
#         d0:87:26:b0:1b:fb:b9:6c:ab:e2:9e:3d:15:c1:3b:2e:67:02:
#         58:91:9f:ef:f8:42:1f:2c:b7:68:f5:75:ad:cf:b5:f6:ff:11:
#         7d:c2:f0:24:a5:ad:d3:fa:a0:3c:a9:fa:5d:dc:a5:a0:ef:44:
#         a4:be:d6:e8:e5:e4:13:96:17:7b:06:3e:32:ed:c7:b7:42:bc:
#         76:a3:d8:65:38:2b:38:35:51:21:0e:0e:6f:2e:34:13:40:e1:
#         2b:67:0c:6d:4a:41:30:18:23:5a:32:55:99:c9:17:e0:3c:de:
#         f6:ec:79:ad:2b:58:19:a2:ad:2c:22:1a:95:8e:be:96:90:5d:
#         42:57:c4:f9:14:03:35:2b:1c:2d:51:57:08:a7:3a:de:3f:e4:
#         c8:b4:03:73:c2:c1:26:80:bb:0b:42:1f:ad:0d:af:26:72:da:
#         cc:be:b3:a3:83:58:0d:82:c5:1f:46:51:e3:9c:18:cc:8d:9b:
#         8d:ec:49:eb:75:50:d5:8c:28:59:ca:74:34:da:8c:0b:21:ab:
#         1e:ea:1b:e5:c7:fd:15:3e:c0:17:aa:fb:23:6e:26:46:cb:fa:
#         f9:b1:72:6b:69:cf:22:84:0b:62:0f:ac:d9:19:00:94:a2:76:
#         3c:d4:2d:9a:ed:04:9e:2d:06:62:10:37:52:1c:85:72:1b:27:
#         e5:cc:c6:31:ec:37:ec:63:59:9b:0b:1d:76:cc:7e:32:9a:88:
#         95:08:36:52:bb:de:76:5f:76:49:49:ad:7f:bd:65:20:b2:c9:
#         c1:2b:76:18:76:9f:56:b1

[p11-kit-object-v1]
label: "UCA Global G2 Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAxeYrb3zvJgUno4Ek2m/L
AfmZmqkywiKHYUGRO8vDaBsGxUypK8FnFyIdK+35KYmToni9kmugow2ifsqTs6bR
jDXVdfkX9s9FxeV67HeToI8jrg4aA3++1NDtLnurRiNb/yzmVHqUwCoV8MmNsHo7
JOHXaOIxPAYzRrZUEaalLyJUKlgNAQLx+hVRZ2zA+te2G3/RVogvGjqNO7uCEeBH
ANBSh6v7hn4PJGtAnTRnvI3HLYZveT6OqTwXS3+wmeOwcWDcC/Vkw85DvG1xudLe
J1uK6NjGruFZfc8oLTW4lVYa8bJYS7cSN8h8s+1LgOGN+jIjtm+3SJUIsUROhYw6
AlQgL9+/V087OpAh18EmNVQg7Mc/R+zvWr9LesGtOxdQXGLYD0tK3Cv6brxzks3s
x1DoQZbXqX5t2Okdj4q1uViSukqSKwxW/YDrCPBeKW4bHAyvj5OJrdu9o54hyokZ
7N+1wxrrFv54NkzWbtA+FxyQF2smuvt6L78RHBgOLXMDj6DlNaBa4kx1HXHhOThT
eEDMg5PXCp6dW4+K5OXgSORIskfNTip1KnvyIvbJvgmRlld6iIis7nCs+dwp4wwc
OxJORNanTrAmyPPZGpeRaOrvjUYG0lZFWJo8DA+DuAUlwznPO6Q0ibd5Ei9Hxeep
l2n8pndntd978XplFeRhVmUCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Global G2 Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5d:df:b1:da:5a:a3:ed:5d:be:5a:65:20:65:03:90:ef
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=UniTrust, CN=UCA Global G2 Root
#        Validity
#            Not Before: Mar 11 00:00:00 2016 GMT
#            Not After : Dec 31 00:00:00 2040 GMT
#        Subject: C=CN, O=UniTrust, CN=UCA Global G2 Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c5:e6:2b:6f:7c:ef:26:05:27:a3:81:24:da:6f:
#                    cb:01:f9:99:9a:a9:32:c2:22:87:61:41:91:3b:cb:
#                    c3:68:1b:06:c5:4c:a9:2b:c1:67:17:22:1d:2b:ed:
#                    f9:29:89:93:a2:78:bd:92:6b:a0:a3:0d:a2:7e:ca:
#                    93:b3:a6:d1:8c:35:d5:75:f9:17:f6:cf:45:c5:e5:
#                    7a:ec:77:93:a0:8f:23:ae:0e:1a:03:7f:be:d4:d0:
#                    ed:2e:7b:ab:46:23:5b:ff:2c:e6:54:7a:94:c0:2a:
#                    15:f0:c9:8d:b0:7a:3b:24:e1:d7:68:e2:31:3c:06:
#                    33:46:b6:54:11:a6:a5:2f:22:54:2a:58:0d:01:02:
#                    f1:fa:15:51:67:6c:c0:fa:d7:b6:1b:7f:d1:56:88:
#                    2f:1a:3a:8d:3b:bb:82:11:e0:47:00:d0:52:87:ab:
#                    fb:86:7e:0f:24:6b:40:9d:34:67:bc:8d:c7:2d:86:
#                    6f:79:3e:8e:a9:3c:17:4b:7f:b0:99:e3:b0:71:60:
#                    dc:0b:f5:64:c3:ce:43:bc:6d:71:b9:d2:de:27:5b:
#                    8a:e8:d8:c6:ae:e1:59:7d:cf:28:2d:35:b8:95:56:
#                    1a:f1:b2:58:4b:b7:12:37:c8:7c:b3:ed:4b:80:e1:
#                    8d:fa:32:23:b6:6f:b7:48:95:08:b1:44:4e:85:8c:
#                    3a:02:54:20:2f:df:bf:57:4f:3b:3a:90:21:d7:c1:
#                    26:35:54:20:ec:c7:3f:47:ec:ef:5a:bf:4b:7a:c1:
#                    ad:3b:17:50:5c:62:d8:0f:4b:4a:dc:2b:fa:6e:bc:
#                    73:92:cd:ec:c7:50:e8:41:96:d7:a9:7e:6d:d8:e9:
#                    1d:8f:8a:b5:b9:58:92:ba:4a:92:2b:0c:56:fd:80:
#                    eb:08:f0:5e:29:6e:1b:1c:0c:af:8f:93:89:ad:db:
#                    bd:a3:9e:21:ca:89:19:ec:df:b5:c3:1a:eb:16:fe:
#                    78:36:4c:d6:6e:d0:3e:17:1c:90:17:6b:26:ba:fb:
#                    7a:2f:bf:11:1c:18:0e:2d:73:03:8f:a0:e5:35:a0:
#                    5a:e2:4c:75:1d:71:e1:39:38:53:78:40:cc:83:93:
#                    d7:0a:9e:9d:5b:8f:8a:e4:e5:e0:48:e4:48:b2:47:
#                    cd:4e:2a:75:2a:7b:f2:22:f6:c9:be:09:91:96:57:
#                    7a:88:88:ac:ee:70:ac:f9:dc:29:e3:0c:1c:3b:12:
#                    4e:44:d6:a7:4e:b0:26:c8:f3:d9:1a:97:91:68:ea:
#                    ef:8d:46:06:d2:56:45:58:9a:3c:0c:0f:83:b8:05:
#                    25:c3:39:cf:3b:a4:34:89:b7:79:12:2f:47:c5:e7:
#                    a9:97:69:fc:a6:77:67:b5:df:7b:f1:7a:65:15:e4:
#                    61:56:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                81:C4:8C:CC:F5:E4:30:FF:A5:0C:08:5F:8C:15:67:21:74:01:DF:DF
#    Signature Algorithm: sha256WithRSAEncryption
#         13:65:22:f5:8e:2b:ad:44:e4:cb:ff:b9:68:e6:c3:80:48:3d:
#         04:7b:fa:23:2f:7a:ed:36:da:b2:ce:6d:f6:e6:9e:e5:5f:58:
#         8f:cb:37:32:a1:c8:65:b6:ae:38:3d:35:1b:3e:bc:3b:b6:04:
#         d0:bc:f9:49:f5:9b:f7:85:c5:36:b6:cb:bc:f8:c8:39:d5:e4:
#         5f:07:bd:15:54:97:74:ca:ca:ed:4f:ba:ba:64:76:9f:81:b8:
#         84:45:49:4c:8d:6f:a2:eb:b1:cc:d1:c3:94:da:44:c2:e6:e2:
#         ea:18:e8:a2:1f:27:05:ba:d7:e5:d6:a9:cd:dd:ef:76:98:8d:
#         00:0e:cd:1b:fa:03:b7:8e:80:58:0e:27:3f:52:fb:94:a2:ca:
#         5e:65:c9:d6:84:da:b9:35:71:f3:26:c0:4f:77:e6:81:27:d2:
#         77:3b:9a:14:6f:79:f4:f6:d0:e1:d3:94:ba:d0:57:51:bd:27:
#         05:0d:c1:fd:c8:12:30:ee:6f:8d:11:2b:08:9d:d4:d4:bf:80:
#         45:14:9a:88:44:da:30:ea:b4:a7:e3:ee:ef:5b:82:d5:3e:d6:
#         ad:78:92:db:5c:3c:f3:d8:ad:fa:b8:6b:7f:c4:36:28:b6:02:
#         15:8a:54:2c:9c:b0:17:73:8e:d0:37:a3:14:3c:98:95:00:0c:
#         29:05:5b:9e:49:49:b1:5f:c7:e3:cb:cf:27:65:8e:35:17:b7:
#         57:c8:30:d9:41:5b:b9:14:b6:e8:c2:0f:94:31:a7:94:98:cc:
#         6a:eb:b5:e1:27:f5:10:a8:01:e8:8e:12:62:e8:88:cc:b5:7f:
#         46:97:c0:9b:10:66:38:1a:36:46:5f:22:68:3d:df:c9:c6:13:
#         27:ab:53:06:ac:a2:3c:86:06:65:6f:b1:7e:b1:29:44:9a:a3:
#         ba:49:69:28:69:8f:d7:e5:5f:ad:04:86:64:6f:1a:a0:0c:c5:
#         08:62:ce:80:a3:d0:f3:ec:68:de:be:33:c7:17:5b:7f:80:c4:
#         4c:4c:b1:a6:84:8a:c3:3b:b8:09:cd:14:81:ba:18:e3:54:57:
#         36:fe:db:2f:7c:47:a1:3a:33:c8:f9:58:3b:44:4f:b1:ca:02:
#         89:04:96:28:68:c5:4b:b8:26:89:bb:d6:33:2f:50:d5:fe:9a:
#         89:ba:18:32:92:54:c6:5b:e0:9d:f9:5e:e5:0d:22:9b:f6:da:
#         e2:c8:21:b2:62:21:aa:86:40:b2:2e:64:d3:5f:c8:e3:7e:11:
#         67:45:1f:05:fe:e3:a2:ef:b3:a8:b3:f3:7d:8f:f8:0c:1f:22:
#         1f:2d:70:b4:b8:01:34:76:30:00:e5:23:78:a7:56:d7:50:1f:
#         8a:fb:06:f5:c2:19:f0:d0

[p11-kit-object-v1]
label: "UCA Global Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA2rPlBlA/9nP3xDK/RqUl
YjOHsGj+p9+IA2N9Apb964fJ7uIIu527u+RBj8cwiQ9tJMAEbBSUgU2gDXRm8/CF
r/hkGd656YGT0CiFmUdCSiw8OCdKzP/5bBnXtfPvm65bNAbXj6ITBpyKhELVs6OQ
aG2BkO5NhOxMcE4t3iQ5zhkAQ5N4+QiGHUPR9HK8BcBn+sBR0smFBySuOR56zUHS
Nqth6iur8CBVmTxtLRwuLnWW2HKX4AzKaXPudSsVCeCObbvaE/9GqOgADKwHLx25
urnRoPeZnnRcGQVmMc8+KlL+b5/zub35wYH1N9ouTIElXfbZlJrTNYsgKDdfUet9
Ysepk9H50DTLqScmLCiQkjtVY7cXDlRzq6987DqrcDOsIfsiJrOGrCOp139tywgg
8q9A9f9ER3HdJ90TKKHqdjn5EKCgTUCkJ7JZFStsLSS3JGN490MYeg9NEePorIdC
jedYcaSrbqLAl3y74xNLytu7awj5abQEctXDRrl36v+6++nwOgw19o8PrgaEFt2U
VdTvyie3AzzFHCYq9TyopZWbhvGKiWf4xwxmse1Bv4KmAGg6IjTuHuvlb4l0T2qq
aqhXZ1LUIGHBzlPL/SR/XybfoQhplqCe/klD4tPq2sTxiDEhbhzhzfN1DiBEFsx9
c3Q1RSw7gdQg7LYJjD5IskkCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Global Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 8 (0x8)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CN, O=UniTrust, CN=UCA Global Root
#        Validity
#            Not Before: Jan  1 00:00:00 2008 GMT
#            Not After : Dec 31 00:00:00 2037 GMT
#        Subject: C=CN, O=UniTrust, CN=UCA Global Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:da:b3:e5:06:50:3f:f6:73:f7:c4:32:bf:46:a5:
#                    25:62:33:87:b0:68:fe:a7:df:88:03:63:7d:02:96:
#                    fd:eb:87:c9:ee:e2:08:bb:9d:bb:bb:e4:41:8f:c7:
#                    30:89:0f:6d:24:c0:04:6c:14:94:81:4d:a0:0d:74:
#                    66:f3:f0:85:af:f8:64:19:de:b9:e9:81:93:d0:28:
#                    85:99:47:42:4a:2c:3c:38:27:4a:cc:ff:f9:6c:19:
#                    d7:b5:f3:ef:9b:ae:5b:34:06:d7:8f:a2:13:06:9c:
#                    8a:84:42:d5:b3:a3:90:68:6d:81:90:ee:4d:84:ec:
#                    4c:70:4e:2d:de:24:39:ce:19:00:43:93:78:f9:08:
#                    86:1d:43:d1:f4:72:bc:05:c0:67:fa:c0:51:d2:c9:
#                    85:07:24:ae:39:1e:7a:cd:41:d2:36:ab:61:ea:2b:
#                    ab:f0:20:55:99:3c:6d:2d:1c:2e:2e:75:96:d8:72:
#                    97:e0:0c:ca:69:73:ee:75:2b:15:09:e0:8e:6d:bb:
#                    da:13:ff:46:a8:e8:00:0c:ac:07:2f:1d:b9:ba:b9:
#                    d1:a0:f7:99:9e:74:5c:19:05:66:31:cf:3e:2a:52:
#                    fe:6f:9f:f3:b9:bd:f9:c1:81:f5:37:da:2e:4c:81:
#                    25:5d:f6:d9:94:9a:d3:35:8b:20:28:37:5f:51:eb:
#                    7d:62:c7:a9:93:d1:f9:d0:34:cb:a9:27:26:2c:28:
#                    90:92:3b:55:63:b7:17:0e:54:73:ab:af:7c:ec:3a:
#                    ab:70:33:ac:21:fb:22:26:b3:86:ac:23:a9:d7:7f:
#                    6d:cb:08:20:f2:af:40:f5:ff:44:47:71:dd:27:dd:
#                    13:28:a1:ea:76:39:f9:10:a0:a0:4d:40:a4:27:b2:
#                    59:15:2b:6c:2d:24:b7:24:63:78:f7:43:18:7a:0f:
#                    4d:11:e3:e8:ac:87:42:8d:e7:58:71:a4:ab:6e:a2:
#                    c0:97:7c:bb:e3:13:4b:ca:db:bb:6b:08:f9:69:b4:
#                    04:72:d5:c3:46:b9:77:ea:ff:ba:fb:e9:f0:3a:0c:
#                    35:f6:8f:0f:ae:06:84:16:dd:94:55:d4:ef:ca:27:
#                    b7:03:3c:c5:1c:26:2a:f5:3c:a8:a5:95:9b:86:f1:
#                    8a:89:67:f8:c7:0c:66:b1:ed:41:bf:82:a6:00:68:
#                    3a:22:34:ee:1e:eb:e5:6f:89:74:4f:6a:aa:6a:a8:
#                    57:67:52:d4:20:61:c1:ce:53:cb:fd:24:7f:5f:26:
#                    df:a1:08:69:96:a0:9e:fe:49:43:e2:d3:ea:da:c4:
#                    f1:88:31:21:6e:1c:e1:cd:f3:75:0e:20:44:16:cc:
#                    7d:73:74:35:45:2c:3b:81:d4:20:ec:b6:09:8c:3e:
#                    48:b2:49
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, IPSec End System, IPSec Tunnel, IPSec User, Time Stamping, OCSP Signing
#            X509v3 Subject Key Identifier: 
#                D9:C3:D3:F8:80:92:67:CC:5D:D2:3A:A2:D7:71:A2:B4:C4:38:80:2D
#    Signature Algorithm: sha1WithRSAEncryption
#         d0:88:79:ca:08:aa:f7:0b:34:a0:4e:09:c2:e9:7e:35:48:89:
#         70:84:23:2f:51:c3:2b:2f:5e:db:53:6b:5b:75:08:2a:54:ba:
#         32:0e:d5:c6:71:85:b1:97:49:80:f6:84:d0:f0:ba:b7:71:94:
#         c8:79:6b:a6:c5:44:e8:42:a2:ad:25:2d:57:2f:e6:d6:31:29:
#         fa:19:89:54:29:7e:b7:7e:47:36:69:2d:6e:32:bc:d4:75:da:
#         42:73:b8:4e:e5:83:40:73:b2:5d:df:d4:44:73:a6:62:0b:db:
#         aa:6e:05:8c:c8:7f:46:4f:39:85:90:9d:bc:1b:54:29:ac:a5:
#         d7:fe:e5:58:56:57:6d:2c:99:a1:49:21:d5:61:c6:8c:61:e1:
#         75:24:c1:01:dd:2d:1b:36:c3:2f:12:cc:0b:d6:78:8b:75:80:
#         e9:41:b9:88:b1:ca:3c:a9:16:c6:4e:15:e3:72:36:f6:d4:a0:
#         41:85:af:8a:65:70:4d:b5:44:10:50:ec:ed:df:6d:e6:d9:c6:
#         c0:12:f1:4b:3a:2f:73:e9:3c:a9:ee:1b:aa:2f:35:a5:9b:9f:
#         4d:c5:34:84:5f:26:14:69:b3:23:b1:89:72:14:f8:e9:4d:51:
#         22:03:ff:4a:86:c4:1c:e8:7b:79:0a:db:47:25:81:7e:fc:34:
#         84:ac:59:b8:58:43:e4:3d:43:09:54:74:c2:d0:fd:d9:ef:6e:
#         59:f7:72:60:99:76:6f:f5:27:a7:bb:83:a4:4a:81:ec:29:81:
#         f4:77:4b:e1:42:12:55:d4:86:2a:12:b6:f0:55:9b:01:2e:dd:
#         f6:a8:e3:19:c3:ce:47:2f:c0:78:61:18:5a:c7:65:fc:9d:46:
#         5b:57:dc:7c:0e:bb:96:83:10:7c:55:18:09:04:ae:d1:f7:8b:
#         2a:3e:a0:e6:50:d6:30:36:d7:e7:8b:38:53:ec:49:44:e0:cf:
#         a4:df:f1:53:7b:8b:5a:b6:f6:11:90:4b:d6:75:f3:fe:02:f3:
#         29:af:f0:23:72:7d:14:ed:a9:5d:df:7a:81:9e:9b:92:22:fc:
#         1e:f8:01:45:41:97:c7:6b:01:61:be:33:68:f2:a0:65:84:66:
#         bc:e0:2a:a4:68:d3:71:ec:c7:08:de:a3:c3:c9:36:4a:34:f1:
#         17:e2:80:af:20:21:93:94:1e:e6:15:d3:54:62:f1:b5:38:2f:
#         e3:cc:b9:67:04:a9:ba:e5:ee:f9:10:6e:cb:2e:7e:13:af:92:
#         14:fe:f3:27:73:7b:38:fc:73:6d:b9:b9:88:f6:6e:8c:0b:f5:
#         fc:ff:09:0e:b3:2d:5e:7b:75:e3:92:24:e2:e6:e1:58:3e:4b:
#         28:03:75:6b:18:9b:47:0c

[p11-kit-object-v1]
label: "UCA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs10HyoYmfWvi+zgJDsyC
wmoaAKIVX9bp1AG3VgMBWY/1OGkkdsJeK8X2K7+v+0H9D1r8q9eDcE0wmNGesna7
kta76RAoaSg2ROjxLNdYfCTWfwI68IFrYWA/9DPebeXqKFJP/KkdY3wLuuquxGhG
5N6PwaeytlhabR0s2Yw6t4jLhdT36ANe/bJNUOjWH/+uAj+LT5YhPJvXJckdP/uY
sVnk8Kk7r7PNhSziYEbMb46g6/A0xfFCGGCuEu1GdRzl2KmWWr7eWtZ4Z5Zbk3dQ
8m4b3pZRSqbWS0N1IWaNd+wChHZcRBC2HWFs5KMgfbeNug+RdceN37wCYKgpqL09
QwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "UCA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 9 (0x9)
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=CN, O=UniTrust, CN=UCA Root
#        Validity
#            Not Before: Jan  1 00:00:00 2004 GMT
#            Not After : Dec 31 00:00:00 2029 GMT
#        Subject: C=CN, O=UniTrust, CN=UCA Root
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b3:5d:07:ca:86:26:7d:6b:e2:fb:38:09:0e:cc:
#                    82:c2:6a:1a:00:a2:15:5f:d6:e9:d4:01:b7:56:03:
#                    01:59:8f:f5:38:69:24:76:c2:5e:2b:c5:f6:2b:bf:
#                    af:fb:41:fd:0f:5a:fc:ab:d7:83:70:4d:30:98:d1:
#                    9e:b2:76:bb:92:d6:bb:e9:10:28:69:28:36:44:e8:
#                    f1:2c:d7:58:7c:24:d6:7f:02:3a:f0:81:6b:61:60:
#                    3f:f4:33:de:6d:e5:ea:28:52:4f:fc:a9:1d:63:7c:
#                    0b:ba:ea:ae:c4:68:46:e4:de:8f:c1:a7:b2:b6:58:
#                    5a:6d:1d:2c:d9:8c:3a:b7:88:cb:85:d4:f7:e8:03:
#                    5e:fd:b2:4d:50:e8:d6:1f:ff:ae:02:3f:8b:4f:96:
#                    21:3c:9b:d7:25:c9:1d:3f:fb:98:b1:59:e4:f0:a9:
#                    3b:af:b3:cd:85:2c:e2:60:46:cc:6f:8e:a0:eb:f0:
#                    34:c5:f1:42:18:60:ae:12:ed:46:75:1c:e5:d8:a9:
#                    96:5a:be:de:5a:d6:78:67:96:5b:93:77:50:f2:6e:
#                    1b:de:96:51:4a:a6:d6:4b:43:75:21:66:8d:77:ec:
#                    02:84:76:5c:44:10:b6:1d:61:6c:e4:a3:20:7d:b7:
#                    8d:ba:0f:91:75:c7:8d:df:bc:02:60:a8:29:a8:bd:
#                    3d:43
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: 
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            X509v3 Extended Key Usage: 
#                TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, IPSec End System, IPSec Tunnel, IPSec User, Time Stamping, OCSP Signing
#            X509v3 Subject Key Identifier: 
#                DB:1F:35:F3:6B:4C:FF:42:31:64:9B:CD:BB:5A:1E:1D:48:10:B7:EE
#    Signature Algorithm: sha1WithRSAEncryption
#         38:6c:b7:88:f1:ad:fa:58:37:74:d1:e8:70:de:9c:27:59:cb:
#         e4:15:d7:a0:c3:60:d7:88:80:04:c5:30:4c:3d:d4:1a:eb:06:
#         5e:59:47:e6:bc:66:cb:e0:08:fc:e8:35:ec:62:7d:ca:c0:da:
#         c1:78:af:e5:46:6f:fb:89:82:23:8f:f6:d7:53:66:55:a0:de:
#         25:12:3b:71:36:16:55:12:76:fb:3d:f8:54:5b:31:ba:00:06:
#         f8:7d:55:e5:a7:76:83:aa:5c:4a:97:a6:2a:28:df:bd:c6:6c:
#         0b:23:95:8e:33:7f:1e:5e:40:1f:13:54:2c:9c:e5:b5:0e:dd:
#         17:28:ae:6b:01:d3:52:29:f5:22:1f:90:39:f4:dc:62:68:f0:
#         3c:86:47:ec:b8:05:45:bb:b7:0c:96:94:c6:67:cb:23:71:d0:
#         8e:74:22:d6:41:eb:03:a8:b6:ea:be:c4:01:12:b5:b3:5d:40:
#         76:06:20:d4:64:b8:29:46:06:8a:ce:1f:93:9a:10:ee:fb:aa:
#         5a:b4:dc:2f:d5:2b:cb:f6:d7:05:84:98:05:91:0b:84:f7:3d:
#         fa:d6:f9:7a:fa:2c:15:ea:36:82:43:b7:b7:b8:e3:f3:71:01:
#         ed:43:43:a2:05:45:c3:28:05:07:35:e3:01:a5:38:1e:80:d4:
#         d7:c3:d9:de

[p11-kit-object-v1]
label: "USERTrust ECC Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEGqxUWqn5aCPnetUkb1PGWthLq8bVttHm
c3Gu3ZzWDGH926CJA7gFFOxXzu5dP+Ihs8731Ip54KODfi2X0GHE8ZncJZFjq38w
o7Rw4sehM5zzvy5cU7Ffs30yf4o043l5
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "USERTrust ECC Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            5c:8b:99:c5:5a:94:c5:d2:71:56:de:cd:89:80:cc:26
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust ECC Certification Authority
#        Validity
#            Not Before: Feb  1 00:00:00 2010 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust ECC Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:1a:ac:54:5a:a9:f9:68:23:e7:7a:d5:24:6f:53:
#                    c6:5a:d8:4b:ab:c6:d5:b6:d1:e6:73:71:ae:dd:9c:
#                    d6:0c:61:fd:db:a0:89:03:b8:05:14:ec:57:ce:ee:
#                    5d:3f:e2:21:b3:ce:f7:d4:8a:79:e0:a3:83:7e:2d:
#                    97:d0:61:c4:f1:99:dc:25:91:63:ab:7f:30:a3:b4:
#                    70:e2:c7:a1:33:9c:f3:bf:2e:5c:53:b1:5f:b3:7d:
#                    32:7f:8a:34:e3:79:79
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                3A:E1:09:86:D4:CF:19:C2:96:76:74:49:76:DC:E0:35:C6:63:63:9A
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:36:67:a1:16:08:dc:e4:97:00:41:1d:4e:be:e1:
#         63:01:cf:3b:aa:42:11:64:a0:9d:94:39:02:11:79:5c:7b:1d:
#         fa:64:b9:ee:16:42:b3:bf:8a:c2:09:c4:ec:e4:b1:4d:02:31:
#         00:e9:2a:61:47:8c:52:4a:4b:4e:18:70:f6:d6:44:d6:6e:f5:
#         83:ba:6d:58:bd:24:d9:56:48:ea:ef:c4:a2:46:81:88:6a:3a:
#         46:d1:a9:9b:4d:c9:61:da:d1:5d:57:6a:18

[p11-kit-object-v1]
label: "USERTrust RSA Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "USERTrust RSA Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:fd:6d:30:fc:a3:ca:51:a8:1b:bc:64:0e:35:03:2d
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
#        Validity
#            Not Before: Feb  1 00:00:00 2010 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:80:12:65:17:36:0e:c3:db:08:b3:d0:ac:57:0d:
#                    76:ed:cd:27:d3:4c:ad:50:83:61:e2:aa:20:4d:09:
#                    2d:64:09:dc:ce:89:9f:cc:3d:a9:ec:f6:cf:c1:dc:
#                    f1:d3:b1:d6:7b:37:28:11:2b:47:da:39:c6:bc:3a:
#                    19:b4:5f:a6:bd:7d:9d:a3:63:42:b6:76:f2:a9:3b:
#                    2b:91:f8:e2:6f:d0:ec:16:20:90:09:3e:e2:e8:74:
#                    c9:18:b4:91:d4:62:64:db:7f:a3:06:f1:88:18:6a:
#                    90:22:3c:bc:fe:13:f0:87:14:7b:f6:e4:1f:8e:d4:
#                    e4:51:c6:11:67:46:08:51:cb:86:14:54:3f:bc:33:
#                    fe:7e:6c:9c:ff:16:9d:18:bd:51:8e:35:a6:a7:66:
#                    c8:72:67:db:21:66:b1:d4:9b:78:03:c0:50:3a:e8:
#                    cc:f0:dc:bc:9e:4c:fe:af:05:96:35:1f:57:5a:b7:
#                    ff:ce:f9:3d:b7:2c:b6:f6:54:dd:c8:e7:12:3a:4d:
#                    ae:4c:8a:b7:5c:9a:b4:b7:20:3d:ca:7f:22:34:ae:
#                    7e:3b:68:66:01:44:e7:01:4e:46:53:9b:33:60:f7:
#                    94:be:53:37:90:73:43:f3:32:c3:53:ef:db:aa:fe:
#                    74:4e:69:c7:6b:8c:60:93:de:c4:c7:0c:df:e1:32:
#                    ae:cc:93:3b:51:78:95:67:8b:ee:3d:56:fe:0c:d0:
#                    69:0f:1b:0f:f3:25:26:6b:33:6d:f7:6e:47:fa:73:
#                    43:e5:7e:0e:a5:66:b1:29:7c:32:84:63:55:89:c4:
#                    0d:c1:93:54:30:19:13:ac:d3:7d:37:a7:eb:5d:3a:
#                    6c:35:5c:db:41:d7:12:da:a9:49:0b:df:d8:80:8a:
#                    09:93:62:8e:b5:66:cf:25:88:cd:84:b8:b1:3f:a4:
#                    39:0f:d9:02:9e:eb:12:4c:95:7c:f3:6b:05:a9:5e:
#                    16:83:cc:b8:67:e2:e8:13:9d:cc:5b:82:d3:4c:b3:
#                    ed:5b:ff:de:e5:73:ac:23:3b:2d:00:bf:35:55:74:
#                    09:49:d8:49:58:1a:7f:92:36:e6:51:92:0e:f3:26:
#                    7d:1c:4d:17:bc:c9:ec:43:26:d0:bf:41:5f:40:a9:
#                    44:44:f4:99:e7:57:87:9e:50:1f:57:54:a8:3e:fd:
#                    74:63:2f:b1:50:65:09:e6:58:42:2e:43:1a:4c:b4:
#                    f0:25:47:59:fa:04:1e:93:d4:26:46:4a:50:81:b2:
#                    de:be:78:b7:fc:67:15:e1:c9:57:84:1e:0f:63:d6:
#                    e9:62:ba:d6:5f:55:2e:ea:5c:c6:28:08:04:25:39:
#                    b8:0e:2b:a9:f2:4c:97:1c:07:3f:0d:52:f5:ed:ef:
#                    2f:82:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         5c:d4:7c:0d:cf:f7:01:7d:41:99:65:0c:73:c5:52:9f:cb:f8:
#         cf:99:06:7f:1b:da:43:15:9f:9e:02:55:57:96:14:f1:52:3c:
#         27:87:94:28:ed:1f:3a:01:37:a2:76:fc:53:50:c0:84:9b:c6:
#         6b:4e:ba:8c:21:4f:a2:8e:55:62:91:f3:69:15:d8:bc:88:e3:
#         c4:aa:0b:fd:ef:a8:e9:4b:55:2a:06:20:6d:55:78:29:19:ee:
#         5f:30:5c:4b:24:11:55:ff:24:9a:6e:5e:2a:2b:ee:0b:4d:9f:
#         7f:f7:01:38:94:14:95:43:07:09:fb:60:a9:ee:1c:ab:12:8c:
#         a0:9a:5e:a7:98:6a:59:6d:8b:3f:08:fb:c8:d1:45:af:18:15:
#         64:90:12:0f:73:28:2e:c5:e2:24:4e:fc:58:ec:f0:f4:45:fe:
#         22:b3:eb:2f:8e:d2:d9:45:61:05:c1:97:6f:a8:76:72:8f:8b:
#         8c:36:af:bf:0d:05:ce:71:8d:e6:a6:6f:1f:6c:a6:71:62:c5:
#         d8:d0:83:72:0c:f1:67:11:89:0c:9c:13:4c:72:34:df:bc:d5:
#         71:df:aa:71:dd:e1:b9:6c:8c:3c:12:5d:65:da:bd:57:12:b6:
#         43:6b:ff:e5:de:4d:66:11:51:cf:99:ae:ec:17:b6:e8:71:91:
#         8c:de:49:fe:dd:35:71:a2:15:27:94:1c:cf:61:e3:26:bb:6f:
#         a3:67:25:21:5d:e6:dd:1d:0b:2e:68:1b:3b:82:af:ec:83:67:
#         85:d4:98:51:74:b1:b9:99:80:89:ff:7f:78:19:5c:79:4a:60:
#         2e:92:40:ae:4c:37:2a:2c:c9:c7:62:c8:0e:5d:f7:36:5b:ca:
#         e0:25:25:01:b4:dd:1a:07:9c:77:00:3f:d0:dc:d5:ec:3d:d4:
#         fa:bb:3f:cc:85:d6:6f:7f:a9:2d:df:b9:02:f7:f5:97:9a:b5:
#         35:da:c3:67:b0:87:4a:a9:28:9e:23:8e:ff:5c:27:6b:e1:b0:
#         4f:f3:07:ee:00:2e:d4:59:87:cb:52:41:95:ea:f4:47:d7:ee:
#         64:41:55:7c:8d:59:02:95:dd:62:9d:c2:b9:ee:5a:28:74:84:
#         a5:9b:b7:90:c7:0c:07:df:f5:89:36:74:32:d6:28:c1:b0:b0:
#         0b:e0:9c:4c:c3:1c:d6:fc:e3:69:b5:47:46:81:2f:a2:82:ab:
#         d3:63:44:70:c4:8d:ff:2d:33:ba:ad:8f:7b:b5:70:88:ae:3e:
#         19:cf:40:28:d8:fc:c8:90:bb:5d:99:22:f5:52:e6:58:c5:1f:
#         88:31:43:ee:88:1d:d7:c6:8e:3c:43:6a:1d:a7:18:de:7d:3d:
#         16:f1:62:f9:ca:90:a8:fd

[p11-kit-object-v1]
label: "VAS Latvijas Pasts SSI(RCA)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VAS Latvijas Pasts SSI(RCA)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            63:06:86:a7:c5:37:65:a5:43:90:a8:6a:58:cc:d4:32
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=LV, O=VAS Latvijas Pasts - Vien.reg.Nr.40003052790, OU=Sertifikacijas pakalpojumi, CN=VAS Latvijas Pasts SSI(RCA)
#        Validity
#            Not Before: Sep 13 09:22:10 2006 GMT
#            Not After : Sep 13 09:27:57 2024 GMT
#        Subject: C=LV, O=VAS Latvijas Pasts - Vien.reg.Nr.40003052790, OU=Sertifikacijas pakalpojumi, CN=VAS Latvijas Pasts SSI(RCA)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:9b:b8:f9:fd:61:55:2f:4f:a4:a5:14:b5:2e:8e:
#                    b9:24:8f:ac:fb:b1:54:3f:40:ff:4f:c5:e5:86:68:
#                    7b:53:93:fb:35:82:35:a8:50:2e:94:52:a0:db:83:
#                    3e:75:da:15:70:ac:09:cf:ee:82:49:ad:36:49:b9:
#                    b4:71:8b:b4:00:a1:42:06:ca:08:0a:63:97:b6:08:
#                    fc:ee:b4:dc:98:78:19:82:c9:f8:7f:64:3e:aa:c9:
#                    fe:b1:8d:eb:b0:64:f5:bc:f3:c4:3e:3a:90:ea:4e:
#                    8e:3f:1b:19:bc:6a:83:c3:91:3c:6c:55:fb:0a:52:
#                    c0:e8:e1:5d:77:85:33:c5:49:df:ec:6a:bf:bf:6c:
#                    37:fe:8e:49:a2:15:18:ce:8b:8e:6b:1e:38:a3:30:
#                    6f:88:81:7e:72:56:44:1a:c4:7a:39:0f:f6:c4:8f:
#                    96:d4:b2:eb:00:4e:5c:de:bb:e7:3b:b7:e6:24:05:
#                    93:6b:4d:e6:91:44:bf:ee:98:1b:c7:85:1b:11:41:
#                    7b:22:36:a7:be:3e:e8:7a:37:dc:18:de:90:9d:8f:
#                    cd:b2:d7:9a:3f:e2:17:7f:5b:0c:e1:ef:3f:66:3d:
#                    6e:24:e4:b0:ce:c3:0c:88:6c:94:da:38:25:7c:52:
#                    39:e3:73:14:b3:00:45:63:9a:0c:42:40:5e:04:c6:
#                    f7:72:64:ce:c9:6e:33:b3:e4:d3:6d:24:95:37:93:
#                    7e:f2:00:5d:19:8b:1f:f3:43:73:a8:9f:45:d2:06:
#                    a9:ec:b4:42:bb:fa:ee:0c:c7:4f:3f:51:1f:d1:af:
#                    d0:ac:18:7f:87:81:22:fe:a9:dd:07:96:6d:7c:f8:
#                    4e:d9:4d:3a:50:69:d5:41:7e:c5:da:74:d8:8e:73:
#                    e5:7e:83:e1:c3:19:81:b7:bd:bf:40:8e:be:2e:9a:
#                    a2:0c:aa:4e:02:2e:bb:2a:e1:08:5d:31:03:c9:ac:
#                    27:b0:af:dc:d5:c8:14:7d:40:9d:55:89:21:f9:90:
#                    cc:d4:c9:60:41:73:ab:e8:cd:d8:3a:55:39:0a:82:
#                    99:fe:9b:f5:f5:3c:1c:91:cb:c0:fa:46:54:ae:21:
#                    fc:2a:ac:5c:7b:de:7a:97:71:fd:6c:6b:cd:48:9a:
#                    a4:db:81:7c:18:37:2f:90:7d:61:94:bd:17:c9:5c:
#                    b6:54:16:77:ca:09:4a:aa:e9:bc:4f:94:75:01:5a:
#                    56:bc:92:d2:8f:b9:d7:97:de:56:74:01:f7:16:71:
#                    49:b1:f5:18:46:99:41:ee:62:e1:b3:2c:65:75:69:
#                    29:72:43:03:f8:9b:1f:fa:38:f4:9e:ec:40:10:8e:
#                    ac:97:d5:b0:33:be:9f:18:dc:2d:f7:41:78:54:4a:
#                    62:44:e7
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            qcStatements: 
#                0
#0......F..
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                CC:C3:F5:66:FF:73:AC:38:5A:96:1B:21:89:B8:81:4C:1F:CB:5E:25
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.25177.1.1.2
#                  User Notice:
#                    Explicit Text: 
#                  CPS: http://www.e-me.lv/repository
#
#    Signature Algorithm: sha1WithRSAEncryption
#         1f:28:4a:35:90:21:63:68:0a:2f:78:af:a3:1e:82:26:97:a3:
#         3f:27:19:d2:4b:a3:42:7a:06:13:65:5b:c1:04:cb:eb:7d:7c:
#         ef:94:f2:f1:89:f5:b7:df:52:02:21:69:d2:ea:96:34:e5:a0:
#         cf:97:b8:9c:55:0e:10:85:a3:14:5e:2c:05:f8:b5:3a:76:f3:
#         f9:7a:b8:de:b6:0c:27:69:f2:cb:94:91:0b:1d:b9:d5:8e:6f:
#         99:2f:cd:f2:19:56:39:3a:48:56:f0:01:ff:82:75:b6:b2:fd:
#         d1:d4:f5:f2:63:57:4c:4d:a1:7e:cc:10:ba:04:69:ef:f4:14:
#         fc:b3:97:1f:45:ee:6f:4a:28:7f:d1:c6:27:bc:c7:a3:a9:6b:
#         7b:ed:82:13:6f:ab:de:0f:fb:71:eb:5c:11:1a:a9:2c:d0:30:
#         9f:fc:36:37:56:ef:95:e9:ba:b7:13:b6:ae:9f:02:61:ad:9e:
#         ec:6b:04:6f:36:9f:0f:99:f7:c2:c9:c8:4c:28:b9:28:d4:21:
#         d7:9e:54:d5:c0:ce:f4:8e:e4:55:94:7b:8f:24:c6:38:fc:ab:
#         7a:a4:56:77:3d:a8:45:ef:64:92:a4:d0:4a:7e:bb:73:8b:f4:
#         0d:52:73:b8:3a:48:5e:43:80:d3:a9:70:77:62:ff:c7:28:1c:
#         73:1e:43:e6:27:24:5b:49:b9:e6:36:a4:8e:fd:c5:2d:2f:7a:
#         a5:79:12:7a:d7:21:b2:25:6d:c8:0f:a2:c3:61:4b:e5:48:e2:
#         57:ba:9f:f2:8a:21:dd:db:64:f0:da:19:df:ce:c0:9b:80:39:
#         c2:77:77:63:15:53:72:84:fa:a4:8f:07:37:86:21:7d:50:fa:
#         3d:6a:37:db:91:0e:37:b3:fd:ce:0b:ca:7b:61:d0:9c:74:9c:
#         7d:38:68:6d:e9:7b:1d:d6:f1:2a:b4:ef:3b:60:52:77:05:e6:
#         02:c2:5f:8c:5b:bc:f0:7d:b7:73:c7:91:6b:b2:2a:b3:63:a3:
#         34:d5:ab:ad:25:71:47:ff:1a:3e:7a:b6:8d:95:76:c3:ee:a6:
#         cd:03:09:6c:ee:45:67:98:cf:99:48:76:c1:ce:8a:74:9a:68:
#         52:01:34:22:c8:ed:e2:14:0b:84:bd:6e:10:8c:b1:72:9b:be:
#         e8:08:d7:57:d5:7f:ea:b4:01:3d:4e:e4:e2:e8:67:e7:8c:7e:
#         e9:e7:42:11:ef:95:46:c8:91:d6:be:27:17:80:19:34:98:e7:
#         c6:df:1e:fc:21:5f:9e:86:3d:bc:7e:f0:9c:bd:72:9e:f4:47:
#         82:5b:71:67:f3:fa:dc:54:4c:a8:5c:d8:59:c7:d0:07:0e:13:
#         33:27:bc:f4:69:f0:6b:21

[p11-kit-object-v1]
label: "VI Registru Centras RCSC (RootCA)"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VI Registru Centras RCSC (RootCA)"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            03:a3:a4:57:b5:f0:f3:86:4a:11:63:e8:98:ff:16:9c
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=LT, O=VI Registru Centras - I.k. 124110246, OU=Registru Centro Sertifikavimo Centras, CN=VI Registru Centras RCSC (RootCA)
#        Validity
#            Not Before: Jul 21 11:47:46 2008 GMT
#            Not After : Jul 21 11:47:46 2024 GMT
#        Subject: C=LT, O=VI Registru Centras - I.k. 124110246, OU=Registru Centro Sertifikavimo Centras, CN=VI Registru Centras RCSC (RootCA)
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c8:99:f2:22:c7:b3:87:15:2e:a7:cb:4d:46:ab:
#                    67:97:cf:0f:73:77:03:f7:64:7c:76:48:32:20:f4:
#                    a3:d8:59:9d:14:a9:1f:a0:1e:91:0e:0d:ad:f5:fe:
#                    67:92:91:13:20:21:4d:0a:55:6e:71:fa:ac:17:cb:
#                    00:fd:0e:50:02:33:db:a9:d8:bd:61:1a:fd:e0:10:
#                    57:b1:55:79:60:19:b4:54:79:9e:fb:80:30:e2:c8:
#                    42:c9:52:02:08:d8:ac:2f:c3:71:41:54:02:f5:81:
#                    8a:12:e3:69:02:a5:87:a1:70:7d:05:be:a5:62:bf:
#                    05:b0:08:96:47:6f:7f:93:8a:ad:e0:ac:d3:42:de:
#                    bd:e6:8f:14:e5:73:28:a0:03:9b:41:fa:e5:3e:f7:
#                    39:74:2e:64:f4:9f:4b:c0:f5:78:99:54:6b:e5:15:
#                    20:fc:e9:32:72:40:ab:65:75:bc:3c:46:34:d2:f8:
#                    10:61:c7:0c:78:c7:7c:c0:11:51:d1:05:36:fb:f8:
#                    9c:ff:2d:b8:e5:71:2d:49:f0:57:48:b3:93:8e:9c:
#                    fb:3a:c9:4b:6d:31:d7:52:d5:56:e9:84:2e:91:d4:
#                    02:1d:b2:80:05:81:c5:80:ca:29:c1:34:67:b9:af:
#                    04:30:43:f6:af:42:47:de:fc:01:2e:e8:42:9c:be:
#                    b2:0b:14:e4:34:dc:dd:ad:53:84:7a:d8:03:56:d1:
#                    c2:0c:d4:97:29:f8:4c:f2:b5:1c:df:9d:83:ae:5f:
#                    5a:25:4b:a2:b0:28:e5:bf:5a:0b:d0:9c:a8:9c:70:
#                    2a:6d:0e:2e:e1:27:bf:ad:0b:6f:11:d3:f8:46:2d:
#                    f4:97:44:4b:ca:b0:c8:e6:36:6f:22:ba:8e:e4:52:
#                    95:16:ec:44:6a:d4:50:1e:98:28:f9:68:a4:ba:de:
#                    9e:30:ed:a2:c9:52:a1:c9:35:8a:40:e1:8d:9b:9b:
#                    fd:f1:46:8b:a4:c7:4f:70:60:51:8d:f2:92:a9:ce:
#                    ba:8c:2f:49:52:12:67:d0:f5:ab:04:25:40:74:03:
#                    e2:d8:ad:a1:74:58:61:b7:b5:0e:f3:7f:25:2c:11:
#                    63:af:f1:12:c3:f4:a4:73:9a:64:ac:ee:a6:06:8f:
#                    f2:bc:9c:ac:28:a9:5c:15:d3:33:ad:d0:36:c8:21:
#                    70:6b:bc:2a:1f:d5:ab:b8:01:58:76:fc:3b:11:4d:
#                    fb:f2:1c:48:24:11:fd:4d:8f:19:29:ae:6b:e8:6d:
#                    5e:b2:a1:0d:78:ce:d2:63:83:74:b4:cd:29:4c:bf:
#                    9b:70:88:4f:12:0d:45:e7:be:0f:65:c4:d6:38:24:
#                    e4:4a:15:8b:d1:6a:ea:bb:36:a1:a1:90:a5:53:c8:
#                    a5:d6:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            qcStatements: 
#                0!0......F..0......F....
#0......F..
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                BC:73:3E:2F:9C:91:0C:BB:8F:CD:77:99:3E:CC:85:E4:CC:58:68:11
#            1.3.6.1.4.1.311.21.1: 
#                ...
#            X509v3 Certificate Policies: 
#                Policy: 1.3.6.1.4.1.30903.1.1.1
#                  CPS: http://www.rcsc.lt/repository
#
#    Signature Algorithm: sha1WithRSAEncryption
#         19:78:2c:51:13:5f:bc:99:4e:5c:a7:01:fc:de:b6:fe:a9:1d:
#         86:31:11:7b:7a:99:8a:b3:88:92:a5:60:d2:04:63:39:bc:af:
#         8e:d8:f1:2b:45:72:32:29:3c:2d:e2:d9:d8:3d:74:fa:47:35:
#         87:dc:10:00:36:41:3d:ed:aa:7e:b2:cc:c4:1a:e9:31:b4:f5:
#         91:d1:84:4a:e7:f5:dc:cf:46:67:02:99:af:b8:77:fa:7e:ed:
#         21:6f:96:23:14:71:3f:d0:58:be:aa:db:43:2c:37:a0:1d:06:
#         69:34:f0:4f:8f:75:ee:b3:d2:01:bb:ec:1c:e9:8f:a9:89:ef:
#         f8:d4:1b:41:02:99:be:f0:5f:ba:8e:2c:c2:21:70:de:51:81:
#         d8:f7:bc:b8:c3:33:83:c3:97:ca:09:73:c4:e9:77:c8:72:f4:
#         5c:ad:0f:0d:8a:ea:ed:d2:0a:01:ce:eb:57:9d:15:f0:29:15:
#         ef:59:9c:af:ac:92:82:70:0c:98:d8:22:9d:2f:98:35:a9:d1:
#         8a:89:bc:d5:9d:55:c2:2e:9e:07:25:46:f6:92:4d:50:fa:3d:
#         89:f2:df:93:bf:93:94:d0:d9:af:57:a3:f3:66:e6:8e:f1:e8:
#         a0:1b:18:06:93:5a:2c:89:0d:36:c4:fa:20:b3:dc:28:f5:6a:
#         ee:8f:31:9b:59:38:d8:4e:6a:a0:23:21:e4:86:ab:e5:fb:60:
#         a3:d1:cd:5a:2c:42:49:a6:0e:55:24:25:35:fd:d2:3a:af:6b:
#         58:a6:91:46:5f:69:cb:bd:7e:26:9b:de:08:bd:1e:ec:9e:a6:
#         f8:9c:75:a4:40:36:95:4b:22:4f:c6:b6:7d:72:51:bc:e3:c2:
#         68:cd:cd:e5:8b:be:c0:c2:4f:9b:6e:65:ce:16:b7:08:88:c7:
#         87:de:ff:32:8c:cb:eb:42:41:ac:fb:d7:cf:01:43:f8:6f:c0:
#         d6:0b:f0:f7:92:e9:cb:45:5d:64:b1:f7:ca:3c:bb:89:08:96:
#         c9:da:0e:e1:71:2a:0f:ec:a4:42:2d:e3:6a:0f:47:47:b0:53:
#         a6:d6:85:50:97:30:d7:8c:2e:5f:46:22:d0:ac:ce:3c:5e:9c:
#         1e:72:83:fd:0c:a7:f8:17:32:bb:61:de:e3:4f:2f:18:8e:82:
#         b5:87:1b:74:05:30:4a:bf:6a:1e:48:3c:54:28:b1:5d:9d:92:
#         5f:9b:10:e3:2e:22:8a:af:dd:36:64:7f:13:76:47:83:35:95:
#         1a:94:8f:f5:c4:53:6d:39:bd:d5:8b:f5:ca:cf:18:43:05:01:
#         93:a4:36:de:30:d2:14:f3:b0:64:b5:ca:ce:95:f7:ba:74:ec:
#         8a:73:3e:52:d3:5e:53:00

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy7qcUvx4Hxoebxs3c734
yWuUEjBP8DZH9dCRCvUXyKVhwRZATfuKYZDldiDBEQZ9qyxupvURQY76La0qYVmk
ZyZM0Oi8UltwIARY0XrJpGm8gxdkrQWLvNBYzo2M9evwQkkLnZcnZzJu4a6TFRxw
vCBNLxjekojobIVXERrpfuMmEVSiRZZVg8owiejc2KPtKoA/f3llVz4VIGYIL5WT
v6pHL6hGl/AS4v7CCitR5nbmt0a34g2mzKjDTFlVieboU1wc6p3wYhYLp8lfDPDe
wnbOr/dq8vpBpqIzFMnlemPTnmI31YVlng7mUyR0G14dElNbxyzng0k7Fa6KaLlX
lwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 1 (0x0)
#        Serial Number:
#            9b:7e:06:49:a3:3e:62:b9:d5:ee:90:48:71:29:ef:57
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 1999 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G3
#        Validity
#            Not Before: Oct  1 00:00:00 1999 GMT
#            Not After : Jul 16 23:59:59 2036 GMT
#        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 1999 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:cb:ba:9c:52:fc:78:1f:1a:1e:6f:1b:37:73:bd:
#                    f8:c9:6b:94:12:30:4f:f0:36:47:f5:d0:91:0a:f5:
#                    17:c8:a5:61:c1:16:40:4d:fb:8a:61:90:e5:76:20:
#                    c1:11:06:7d:ab:2c:6e:a6:f5:11:41:8e:fa:2d:ad:
#                    2a:61:59:a4:67:26:4c:d0:e8:bc:52:5b:70:20:04:
#                    58:d1:7a:c9:a4:69:bc:83:17:64:ad:05:8b:bc:d0:
#                    58:ce:8d:8c:f5:eb:f0:42:49:0b:9d:97:27:67:32:
#                    6e:e1:ae:93:15:1c:70:bc:20:4d:2f:18:de:92:88:
#                    e8:6c:85:57:11:1a:e9:7e:e3:26:11:54:a2:45:96:
#                    55:83:ca:30:89:e8:dc:d8:a3:ed:2a:80:3f:7f:79:
#                    65:57:3e:15:20:66:08:2f:95:93:bf:aa:47:2f:a8:
#                    46:97:f0:12:e2:fe:c2:0a:2b:51:e6:76:e6:b7:46:
#                    b7:e2:0d:a6:cc:a8:c3:4c:59:55:89:e6:e8:53:5c:
#                    1c:ea:9d:f0:62:16:0b:a7:c9:5f:0c:f0:de:c2:76:
#                    ce:af:f7:6a:f2:fa:41:a6:a2:33:14:c9:e5:7a:63:
#                    d3:9e:62:37:d5:85:65:9e:0e:e6:53:24:74:1b:5e:
#                    1d:12:53:5b:c7:2c:e7:83:49:3b:15:ae:8a:68:b9:
#                    57:97
#                Exponent: 65537 (0x10001)
#    Signature Algorithm: sha1WithRSAEncryption
#         11:14:96:c1:ab:92:08:f7:3f:2f:c9:b2:fe:e4:5a:9f:64:de:
#         db:21:4f:86:99:34:76:36:57:dd:d0:15:2f:c5:ad:7f:15:1f:
#         37:62:73:3e:d4:e7:5f:ce:17:03:db:35:fa:2b:db:ae:60:09:
#         5f:1e:5f:8f:6e:bb:0b:3d:ea:5a:13:1e:0c:60:6f:b5:c0:b5:
#         23:22:2e:07:0b:cb:a9:74:cb:47:bb:1d:c1:d7:a5:6b:cc:2f:
#         d2:42:fd:49:dd:a7:89:cf:53:ba:da:00:5a:28:bf:82:df:f8:
#         ba:13:1d:50:86:82:fd:8e:30:8f:29:46:b0:1e:3d:35:da:38:
#         62:16:18:4a:ad:e6:b6:51:6c:de:af:62:eb:01:d0:1e:24:fe:
#         7a:8f:12:1a:12:68:b8:fb:66:99:14:14:45:5c:ae:e7:ae:69:
#         17:81:2b:5a:37:c9:5e:2a:f4:c6:e2:a1:5c:54:9b:a6:54:00:
#         cf:f0:f1:c1:c7:98:30:1a:3b:36:16:db:a3:6e:ea:fd:ad:b2:
#         c2:da:ef:02:47:13:8a:c0:f1:b3:31:ad:4f:1c:e1:4f:9c:af:
#         0f:0c:9d:f7:78:0d:d8:f4:35:56:80:da:b7:6d:17:8f:9d:1e:
#         81:64:e1:fe:c5:45:ba:ad:6b:b9:0a:7a:4e:4f:4b:84:ee:4b:
#         f1:7d:dd:11

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G4"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEp1Z6fFLaZJsOLVzYXqySPf4B5hlKPRQD
S/pgJyDZg4lp+lTGmhheVSpk3gb2jUo7rRA8ZT2QiASJ4DBhs65dAad73nyyvspl
YQCGrtqPe9CJrU0dWZpBsbxHgNyeYsP5
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G4"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2f:80:fe:23:8c:0e:22:0f:48:67:12:28:91:87:ac:b3
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2007 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G4
#        Validity
#            Not Before: Nov  5 00:00:00 2007 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2007 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G4
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:a7:56:7a:7c:52:da:64:9b:0e:2d:5c:d8:5e:ac:
#                    92:3d:fe:01:e6:19:4a:3d:14:03:4b:fa:60:27:20:
#                    d9:83:89:69:fa:54:c6:9a:18:5e:55:2a:64:de:06:
#                    f6:8d:4a:3b:ad:10:3c:65:3d:90:88:04:89:e0:30:
#                    61:b3:ae:5d:01:a7:7b:de:7c:b2:be:ca:65:61:00:
#                    86:ae:da:8f:7b:d0:89:ad:4d:1d:59:9a:41:b1:bc:
#                    47:80:dc:9e:62:c3:f9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            1.3.6.1.5.5.7.1.12: 
#                0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
#            X509v3 Subject Key Identifier: 
#                B3:16:91:FD:EE:A6:6E:E4:B5:2E:49:8F:87:78:81:80:EC:E5:B1:B5
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:66:21:0c:18:26:60:5a:38:7b:56:42:e0:a7:fc:
#         36:84:51:91:20:2c:76:4d:43:3d:c4:1d:84:23:d0:ac:d6:7c:
#         35:06:ce:cd:69:bd:90:0d:db:6c:48:42:1d:0e:aa:42:02:31:
#         00:9c:3d:48:39:23:39:58:1a:15:12:59:6a:9e:ef:d5:59:b2:
#         1d:52:2c:99:71:cd:c7:29:df:1b:2a:61:7b:71:d1:de:f3:c0:
#         e5:0d:3a:4a:aa:2d:a7:d8:86:2a:dd:2e:10

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G5"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAryQICCl6NZ5gDKrnSztO
3Hy8PEUcuyvg/ikC+VcIo2SFFSf18a3IMYldIugqqqZCs4/4uVW3sbdLs/6PfgdX
7O9D22ZiFWHPYA2k2N744MNiCD1UE+tJyllUhSblK48bn+v1oZHCM0nYQ2NqUkvS
j+hwUU3RiWl7x3D2s9wSdNt7XUtW05a/FXehsPSiJfKvHJJnGOX0BgTvkLnkAOTd
OrUZ/wK69Dzu4IvrN4vs9Nes8vbwPa/ddZEzGR0cQMt0JBkhk9kU/qwqUseP1QRJ
5I1jR4g8aYPL/ke9K35PxZWuDp3U0UPAZ3PjFAh+5T+fc7gzCs9dPzSHloruU+gl
FQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VeriSign Class 3 Public Primary Certification Authority - G5"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            18:da:d1:9e:26:7d:e8:bb:4a:21:58:cd:cc:6b:3b:4a
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G5
#        Validity
#            Not Before: Nov  8 00:00:00 2006 GMT
#            Not After : Jul 16 23:59:59 2036 GMT
#        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G5
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:af:24:08:08:29:7a:35:9e:60:0c:aa:e7:4b:3b:
#                    4e:dc:7c:bc:3c:45:1c:bb:2b:e0:fe:29:02:f9:57:
#                    08:a3:64:85:15:27:f5:f1:ad:c8:31:89:5d:22:e8:
#                    2a:aa:a6:42:b3:8f:f8:b9:55:b7:b1:b7:4b:b3:fe:
#                    8f:7e:07:57:ec:ef:43:db:66:62:15:61:cf:60:0d:
#                    a4:d8:de:f8:e0:c3:62:08:3d:54:13:eb:49:ca:59:
#                    54:85:26:e5:2b:8f:1b:9f:eb:f5:a1:91:c2:33:49:
#                    d8:43:63:6a:52:4b:d2:8f:e8:70:51:4d:d1:89:69:
#                    7b:c7:70:f6:b3:dc:12:74:db:7b:5d:4b:56:d3:96:
#                    bf:15:77:a1:b0:f4:a2:25:f2:af:1c:92:67:18:e5:
#                    f4:06:04:ef:90:b9:e4:00:e4:dd:3a:b5:19:ff:02:
#                    ba:f4:3c:ee:e0:8b:eb:37:8b:ec:f4:d7:ac:f2:f6:
#                    f0:3d:af:dd:75:91:33:19:1d:1c:40:cb:74:24:19:
#                    21:93:d9:14:fe:ac:2a:52:c7:8f:d5:04:49:e4:8d:
#                    63:47:88:3c:69:83:cb:fe:47:bd:2b:7e:4f:c5:95:
#                    ae:0e:9d:d4:d1:43:c0:67:73:e3:14:08:7e:e5:3f:
#                    9f:73:b8:33:0a:cf:5d:3f:34:87:96:8a:ee:53:e8:
#                    25:15
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            1.3.6.1.5.5.7.1.12: 
#                0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
#            X509v3 Subject Key Identifier: 
#                7F:D3:65:A7:C2:DD:EC:BB:F0:30:09:F3:43:39:FA:02:AF:33:31:33
#    Signature Algorithm: sha1WithRSAEncryption
#         93:24:4a:30:5f:62:cf:d8:1a:98:2f:3d:ea:dc:99:2d:bd:77:
#         f6:a5:79:22:38:ec:c4:a7:a0:78:12:ad:62:0e:45:70:64:c5:
#         e7:97:66:2d:98:09:7e:5f:af:d6:cc:28:65:f2:01:aa:08:1a:
#         47:de:f9:f9:7c:92:5a:08:69:20:0d:d9:3e:6d:6e:3c:0d:6e:
#         d8:e6:06:91:40:18:b9:f8:c1:ed:df:db:41:aa:e0:96:20:c9:
#         cd:64:15:38:81:c9:94:ee:a2:84:29:0b:13:6f:8e:db:0c:dd:
#         25:02:db:a4:8b:19:44:d2:41:7a:05:69:4a:58:4f:60:ca:7e:
#         82:6a:0b:02:aa:25:17:39:b5:db:7f:e7:84:65:2a:95:8a:bd:
#         86:de:5e:81:16:83:2d:10:cc:de:fd:a8:82:2a:6d:28:1f:0d:
#         0b:c4:e5:e7:1a:26:19:e1:f4:11:6f:10:b5:95:fc:e7:42:05:
#         32:db:ce:9d:51:5e:28:b6:9e:85:d3:5b:ef:a5:7d:45:40:72:
#         8e:b7:0e:6b:0e:06:fb:33:35:48:71:b8:9d:27:8b:c4:65:5f:
#         0d:86:76:9c:44:7a:f6:95:5c:f6:5d:32:08:33:a4:54:b6:18:
#         3f:68:5c:f2:42:4a:85:38:54:83:5f:d1:e8:2c:f2:ac:11:d6:
#         a8:ed:63:6a

[p11-kit-object-v1]
label: "VeriSign Universal Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx2E3XrEBNNti1xWb/1ha
jCMj1mCOkdeQmIN65lgZOIzF9uVkhbSicfvtvbnazU0AtMgtc6XHaXGVHzk8skQH
nOgO+k1KxCHfKWGPMiJhgsWHH26MfF8WIFFE0XBPV+rjHOPMee5Y2A7Cs0WTwCzn
mhcrewA3ekEzeOEz4vMQGn+HLL729fdC4uW/h2KJXwBL38Xd5HVEMkE6HnFuacsL
dUYI0crSK5XQz/u5QGtkjFdN/BMReYTtXlT2NJ8IAfMQJQYXStrxHXpma5hgZqTZ
79IugvHw7wnqRMkVauIDbjPTrJ9VAMf2CGqUuV/c4DPxhGD5WycRtPwW8rtWaoAl
jQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "VeriSign Universal Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            40:1a:c4:64:21:b3:13:21:03:0e:bb:e4:12:1a:c5:1d
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2008 VeriSign, Inc. - For authorized use only, CN=VeriSign Universal Root Certification Authority
#        Validity
#            Not Before: Apr  2 00:00:00 2008 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2008 VeriSign, Inc. - For authorized use only, CN=VeriSign Universal Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:c7:61:37:5e:b1:01:34:db:62:d7:15:9b:ff:58:
#                    5a:8c:23:23:d6:60:8e:91:d7:90:98:83:7a:e6:58:
#                    19:38:8c:c5:f6:e5:64:85:b4:a2:71:fb:ed:bd:b9:
#                    da:cd:4d:00:b4:c8:2d:73:a5:c7:69:71:95:1f:39:
#                    3c:b2:44:07:9c:e8:0e:fa:4d:4a:c4:21:df:29:61:
#                    8f:32:22:61:82:c5:87:1f:6e:8c:7c:5f:16:20:51:
#                    44:d1:70:4f:57:ea:e3:1c:e3:cc:79:ee:58:d8:0e:
#                    c2:b3:45:93:c0:2c:e7:9a:17:2b:7b:00:37:7a:41:
#                    33:78:e1:33:e2:f3:10:1a:7f:87:2c:be:f6:f5:f7:
#                    42:e2:e5:bf:87:62:89:5f:00:4b:df:c5:dd:e4:75:
#                    44:32:41:3a:1e:71:6e:69:cb:0b:75:46:08:d1:ca:
#                    d2:2b:95:d0:cf:fb:b9:40:6b:64:8c:57:4d:fc:13:
#                    11:79:84:ed:5e:54:f6:34:9f:08:01:f3:10:25:06:
#                    17:4a:da:f1:1d:7a:66:6b:98:60:66:a4:d9:ef:d2:
#                    2e:82:f1:f0:ef:09:ea:44:c9:15:6a:e2:03:6e:33:
#                    d3:ac:9f:55:00:c7:f6:08:6a:94:b9:5f:dc:e0:33:
#                    f1:84:60:f9:5b:27:11:b4:fc:16:f2:bb:56:6a:80:
#                    25:8d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            1.3.6.1.5.5.7.1.12: 
#                0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
#            X509v3 Subject Key Identifier: 
#                B6:77:FA:69:48:47:9F:53:12:D5:C2:EA:07:32:76:07:D1:97:07:19
#    Signature Algorithm: sha256WithRSAEncryption
#         4a:f8:f8:b0:03:e6:2c:67:7b:e4:94:77:63:cc:6e:4c:f9:7d:
#         0e:0d:dc:c8:b9:35:b9:70:4f:63:fa:24:fa:6c:83:8c:47:9d:
#         3b:63:f3:9a:f9:76:32:95:91:b1:77:bc:ac:9a:be:b1:e4:31:
#         21:c6:81:95:56:5a:0e:b1:c2:d4:b1:a6:59:ac:f1:63:cb:b8:
#         4c:1d:59:90:4a:ef:90:16:28:1f:5a:ae:10:fb:81:50:38:0c:
#         6c:cc:f1:3d:c3:f5:63:e3:b3:e3:21:c9:24:39:e9:fd:15:66:
#         46:f4:1b:11:d0:4d:73:a3:7d:46:f9:3d:ed:a8:5f:62:d4:f1:
#         3f:f8:e0:74:57:2b:18:9d:81:b4:c4:28:da:94:97:a5:70:eb:
#         ac:1d:be:07:11:f0:d5:db:dd:e5:8c:f0:d5:32:b0:83:e6:57:
#         e2:8f:bf:be:a1:aa:bf:3d:1d:b5:d4:38:ea:d7:b0:5c:3a:4f:
#         6a:3f:8f:c0:66:6c:63:aa:e9:d9:a4:16:f4:81:d1:95:14:0e:
#         7d:cd:95:34:d9:d2:8f:70:73:81:7b:9c:7e:bd:98:61:d8:45:
#         87:98:90:c5:eb:86:30:c6:35:bf:f0:ff:c3:55:88:83:4b:ef:
#         05:92:06:71:f2:b8:98:93:b7:ec:cd:82:61:f1:38:e6:4f:97:
#         98:2a:5a:8d

[p11-kit-object-v1]
label: "Verizon Global Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAigAMcB2/6zSGw5lFNR5/
Q/erbyQtzRnCELuwyilbqSCrq3IsxOICOW2CuMUR6vj7s55i+DMesB/J4/Y32wTI
O2NPNuKFpCUdx2kfBL1oRROWBx+UUPU+xSdUnsBJV0SOB2PUpq7tIpnMTZZpBBNu
domfdBaU+R1UvaK50oMBIgxNRICq/jWJJyWnhonG1RqS44/FlaAUcproVsUCVRyX
+SAu0PU8Exla9uH5CwOCaaeMt9ZvnFY+negqCWBtS+b7i5kU9zRPZVmAjblXyKI1
IdiIcVZd7oJXLSaQGJ+anJyP79TFY6dUfUeRh30aEqgbGG+pb7EnuuQEdM43Hn9m
xQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "Verizon Global Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number: 1 (0x1)
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=Verizon Business, OU=OmniRoot, CN=Verizon Global Root CA
#        Validity
#            Not Before: Jul 30 14:27:04 2009 GMT
#            Not After : Jul 30 14:27:04 2034 GMT
#        Subject: C=US, O=Verizon Business, OU=OmniRoot, CN=Verizon Global Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:8a:00:0c:70:1d:bf:eb:34:86:c3:99:45:35:1e:
#                    7f:43:f7:ab:6f:24:2d:cd:19:c2:10:bb:b0:ca:29:
#                    5b:a9:20:ab:ab:72:2c:c4:e2:02:39:6d:82:b8:c5:
#                    11:ea:f8:fb:b3:9e:62:f8:33:1e:b0:1f:c9:e3:f6:
#                    37:db:04:c8:3b:63:4f:36:e2:85:a4:25:1d:c7:69:
#                    1f:04:bd:68:45:13:96:07:1f:94:50:f5:3e:c5:27:
#                    54:9e:c0:49:57:44:8e:07:63:d4:a6:ae:ed:22:99:
#                    cc:4d:96:69:04:13:6e:76:89:9f:74:16:94:f9:1d:
#                    54:bd:a2:b9:d2:83:01:22:0c:4d:44:80:aa:fe:35:
#                    89:27:25:a7:86:89:c6:d5:1a:92:e3:8f:c5:95:a0:
#                    14:72:9a:e8:56:c5:02:55:1c:97:f9:20:2e:d0:f5:
#                    3c:13:19:5a:f6:e1:f9:0b:03:82:69:a7:8c:b7:d6:
#                    6f:9c:56:3e:9d:e8:2a:09:60:6d:4b:e6:fb:8b:99:
#                    14:f7:34:4f:65:59:80:8d:b9:57:c8:a2:35:21:d8:
#                    88:71:56:5d:ee:82:57:2d:26:90:18:9f:9a:9c:9c:
#                    8f:ef:d4:c5:63:a7:54:7d:47:91:87:7d:1a:12:a8:
#                    1b:18:6f:a9:6f:b1:27:ba:e4:04:74:ce:37:1e:7f:
#                    66:c5
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                4C:38:11:B8:98:00:5B:5A:2B:70:3E:AA:78:E4:D5:67:67:67:A7:7E
#    Signature Algorithm: sha256WithRSAEncryption
#         01:5f:a0:b1:06:01:f4:79:d7:65:18:60:3e:cf:79:a0:ba:c2:
#         23:4f:23:df:87:96:5f:81:0e:38:15:2e:5c:c8:02:68:29:20:
#         fc:8b:ee:a5:8a:18:81:64:5c:98:35:7e:39:30:82:a4:82:8a:
#         50:b5:ba:c3:e8:5a:d6:a8:9e:e2:c3:17:db:db:c4:eb:b0:0a:
#         20:0d:e9:9e:e3:ff:60:54:47:f1:3b:9d:d4:28:3c:a2:ae:a3:
#         fb:aa:8b:82:22:2a:35:87:90:b8:1c:59:47:90:d5:9d:2e:fa:
#         49:e3:65:a8:36:eb:c7:e4:1c:68:dc:b3:31:6c:ab:4e:ce:24:
#         80:15:c8:10:59:10:11:72:4d:7a:9c:98:9c:c4:fc:61:e0:b3:
#         b2:9d:4e:a0:c6:c2:59:ab:18:d6:a2:55:45:ec:29:aa:25:37:
#         d6:4e:4a:3d:0b:40:c1:e4:93:e4:fc:cd:91:0b:f8:e6:ab:cc:
#         b3:76:c4:62:bf:19:ed:86:b6:79:c3:29:54:54:bc:99:7d:46:
#         57:cf:a6:cf:f4:54:2a:9a:03:65:47:01:a1:42:2a:cb:25:47:
#         6e:7c:5e:00:4b:91:d9:f9:1b:10:06:70:f9:42:15:a6:5f:aa:
#         d7:40:1e:fd:c9:48:9d:97:81:ea:5c:68:c2:a0:e7:89:a1:53:
#         4d:bf:c7:e3

[p11-kit-object-v1]
label: "XRamp Global CA Root"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmCQevRW0ut/HjKUntjgL
afO2TqgsLiEdXETfIV1+I3T+Xn60SremrR+u4AYW4ptb2Wd0a12AjymdhhvZnA2Y
bXYQKFjkZbB/Sph5n+DDMX6AK7WMwEA7EYbQy6KGNmCk1TCCbdlu0A8SBDOXX09h
WvDk+ZGr5x07vOjP9GstNHziSGEcjvNhRMxvoEqplLBN2uepNHpyOKhBzDyUEX3r
yKaMt4bLyjM72T03i/t6PoYs53PXClesZJsZ6/QPBAiKrAMXGWT0WiUijTQssvZo
HRJt04oeFNrEj6biI4XVeg29auDp7OwXu0IbZ6ol7UWDIfzByXzVYj768sUt0/3U
ZQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "XRamp Global CA Root"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            50:94:6c:ec:18:ea:d5:9c:4d:d5:97:ef:75:8f:a0:ad
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, OU=www.xrampsecurity.com, O=XRamp Security Services Inc, CN=XRamp Global Certification Authority
#        Validity
#            Not Before: Nov  1 17:14:04 2004 GMT
#            Not After : Jan  1 05:37:19 2035 GMT
#        Subject: C=US, OU=www.xrampsecurity.com, O=XRamp Security Services Inc, CN=XRamp Global Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:98:24:1e:bd:15:b4:ba:df:c7:8c:a5:27:b6:38:
#                    0b:69:f3:b6:4e:a8:2c:2e:21:1d:5c:44:df:21:5d:
#                    7e:23:74:fe:5e:7e:b4:4a:b7:a6:ad:1f:ae:e0:06:
#                    16:e2:9b:5b:d9:67:74:6b:5d:80:8f:29:9d:86:1b:
#                    d9:9c:0d:98:6d:76:10:28:58:e4:65:b0:7f:4a:98:
#                    79:9f:e0:c3:31:7e:80:2b:b5:8c:c0:40:3b:11:86:
#                    d0:cb:a2:86:36:60:a4:d5:30:82:6d:d9:6e:d0:0f:
#                    12:04:33:97:5f:4f:61:5a:f0:e4:f9:91:ab:e7:1d:
#                    3b:bc:e8:cf:f4:6b:2d:34:7c:e2:48:61:1c:8e:f3:
#                    61:44:cc:6f:a0:4a:a9:94:b0:4d:da:e7:a9:34:7a:
#                    72:38:a8:41:cc:3c:94:11:7d:eb:c8:a6:8c:b7:86:
#                    cb:ca:33:3b:d9:3d:37:8b:fb:7a:3e:86:2c:e7:73:
#                    d7:0a:57:ac:64:9b:19:eb:f4:0f:04:08:8a:ac:03:
#                    17:19:64:f4:5a:25:22:8d:34:2c:b2:f6:68:1d:12:
#                    6d:d3:8a:1e:14:da:c4:8f:a6:e2:23:85:d5:7a:0d:
#                    bd:6a:e0:e9:ec:ec:17:bb:42:1b:67:aa:25:ed:45:
#                    83:21:fc:c1:c9:7c:d5:62:3e:fa:f2:c5:2d:d3:fd:
#                    d4:65
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            1.3.6.1.4.1.311.20.2: 
#                ...C.A
#            X509v3 Key Usage: 
#                Digital Signature, Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                C6:4F:A2:3D:06:63:84:09:9C:CE:62:E4:04:AC:8D:5C:B5:E9:B6:1B
#            X509v3 CRL Distribution Points: 
#
#                Full Name:
#                  URI:http://crl.xrampsecurity.com/XGCA.crl
#
#            1.3.6.1.4.1.311.21.1: 
#                ...
#    Signature Algorithm: sha1WithRSAEncryption
#         91:15:39:03:01:1b:67:fb:4a:1c:f9:0a:60:5b:a1:da:4d:97:
#         62:f9:24:53:27:d7:82:64:4e:90:2e:c3:49:1b:2b:9a:dc:fc:
#         a8:78:67:35:f1:1d:f0:11:bd:b7:48:e3:10:f6:0d:df:3f:d2:
#         c9:b6:aa:55:a4:48:ba:02:db:de:59:2e:15:5b:3b:9d:16:7d:
#         47:d7:37:ea:5f:4d:76:12:36:bb:1f:d7:a1:81:04:46:20:a3:
#         2c:6d:a9:9e:01:7e:3f:29:ce:00:93:df:fd:c9:92:73:89:89:
#         64:9e:e7:2b:e4:1c:91:2c:d2:b9:ce:7d:ce:6f:31:99:d3:e6:
#         be:d2:1e:90:f0:09:14:79:5c:23:ab:4d:d2:da:21:1f:4d:99:
#         79:9d:e1:cf:27:9f:10:9b:1c:88:0d:b0:8a:64:41:31:b8:0e:
#         6c:90:24:a4:9b:5c:71:8f:ba:bb:7e:1c:1b:db:6a:80:0f:21:
#         bc:e9:db:a6:b7:40:f4:b2:8b:a9:b1:e4:ef:9a:1a:d0:3d:69:
#         99:ee:a8:28:a3:e1:3c:b3:f0:b2:11:9c:cf:7c:40:e6:dd:e7:
#         43:7d:a2:d8:3a:b5:a9:8d:f2:34:99:c4:d4:10:e1:06:fd:09:
#         84:10:3b:ee:c4:4c:f4:ec:27:7c:42:c2:74:7c:82:8a:09:c9:
#         b4:03:25:bc

[p11-kit-object-v1]
label: "certSIGN ROOT CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtzO5fsglSo6127QoG6pX
kOjRItNkutOT6NSshmFAamBXaFSETbxqVAIF/9+bmiquXQePSsMof+/7K/p58cet
8BBTJJCLZsmoiKuvWqMA6b66Ru5bc3ssF4KBXmIsoQJls73FKwB+xPwDM1cN7eL6
zl1F1jjNNbaywdCcgUqq5LIBXB2PX5nEsa3biCHrkAiCgPMwo0PmkIKuVShJ7VvX
qRA4Dv6PTFubRupB9bAIdMPQiDO2fNd039yE0UMOdTmhJUAo6njLDiwuOZ2Mi24W
HC8mghDi42WUCgTAXvddW/gQ4tC6ekv73jcAABpbKOPSnHM+MoeYoclRL9ferDOz
TwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "certSIGN ROOT CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            20:06:05:16:70:02
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=RO, O=certSIGN, OU=certSIGN ROOT CA
#        Validity
#            Not Before: Jul  4 17:20:04 2006 GMT
#            Not After : Jul  4 17:20:04 2031 GMT
#        Subject: C=RO, O=certSIGN, OU=certSIGN ROOT CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b7:33:b9:7e:c8:25:4a:8e:b5:db:b4:28:1b:aa:
#                    57:90:e8:d1:22:d3:64:ba:d3:93:e8:d4:ac:86:61:
#                    40:6a:60:57:68:54:84:4d:bc:6a:54:02:05:ff:df:
#                    9b:9a:2a:ae:5d:07:8f:4a:c3:28:7f:ef:fb:2b:fa:
#                    79:f1:c7:ad:f0:10:53:24:90:8b:66:c9:a8:88:ab:
#                    af:5a:a3:00:e9:be:ba:46:ee:5b:73:7b:2c:17:82:
#                    81:5e:62:2c:a1:02:65:b3:bd:c5:2b:00:7e:c4:fc:
#                    03:33:57:0d:ed:e2:fa:ce:5d:45:d6:38:cd:35:b6:
#                    b2:c1:d0:9c:81:4a:aa:e4:b2:01:5c:1d:8f:5f:99:
#                    c4:b1:ad:db:88:21:eb:90:08:82:80:f3:30:a3:43:
#                    e6:90:82:ae:55:28:49:ed:5b:d7:a9:10:38:0e:fe:
#                    8f:4c:5b:9b:46:ea:41:f5:b0:08:74:c3:d0:88:33:
#                    b6:7c:d7:74:df:dc:84:d1:43:0e:75:39:a1:25:40:
#                    28:ea:78:cb:0e:2c:2e:39:9d:8c:8b:6e:16:1c:2f:
#                    26:82:10:e2:e3:65:94:0a:04:c0:5e:f7:5d:5b:f8:
#                    10:e2:d0:ba:7a:4b:fb:de:37:00:00:1a:5b:28:e3:
#                    d2:9c:73:3e:32:87:98:a1:c9:51:2f:d7:de:ac:33:
#                    b3:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Digital Signature, Non Repudiation, Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                E0:8C:9B:DB:25:49:B3:F1:7C:86:D6:B2:42:87:0B:D0:6B:A0:D9:E4
#    Signature Algorithm: sha1WithRSAEncryption
#         3e:d2:1c:89:2e:35:fc:f8:75:dd:e6:7f:65:88:f4:72:4c:c9:
#         2c:d7:32:4e:f3:dd:19:79:47:bd:8e:3b:5b:93:0f:50:49:24:
#         13:6b:14:06:72:ef:09:d3:a1:a1:e3:40:84:c9:e7:18:32:74:
#         3c:48:6e:0f:9f:4b:d4:f7:1e:d3:93:86:64:54:97:63:72:50:
#         d5:55:cf:fa:20:93:02:a2:9b:c3:23:93:4e:16:55:76:a0:70:
#         79:6d:cd:21:1f:cf:2f:2d:bc:19:e3:88:31:f8:59:1a:81:09:
#         c8:97:a6:74:c7:60:c4:5b:cc:57:8e:b2:75:fd:1b:02:09:db:
#         59:6f:72:93:69:f7:31:41:d6:88:38:bf:87:b2:bd:16:79:f9:
#         aa:e4:be:88:25:dd:61:27:23:1c:b5:31:07:04:36:b4:1a:90:
#         bd:a0:74:71:50:89:6d:bc:14:e3:0f:86:ae:f1:ab:3e:c7:a0:
#         09:cc:a3:48:d1:e0:db:64:e7:92:b5:cf:af:72:43:70:8b:f9:
#         c3:84:3c:13:aa:7e:92:9b:57:53:93:fa:70:c2:91:0e:31:f9:
#         9b:67:5d:e9:96:38:5e:5f:b3:73:4e:88:15:67:de:9e:76:10:
#         62:20:be:55:69:95:43:00:39:4d:f6:ee:b0:5a:4e:49:44:54:
#         58:5f:42:83

[p11-kit-object-v1]
label: "certSIGN Root CA G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "certSIGN Root CA G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            11:00:34:b6:4e:c6:36:2d:36
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=RO, O=CERTSIGN SA, OU=certSIGN ROOT CA G2
#        Validity
#            Not Before: Feb  6 09:27:35 2017 GMT
#            Not After : Feb  6 09:27:35 2042 GMT
#        Subject: C=RO, O=CERTSIGN SA, OU=certSIGN ROOT CA G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c0:c5:75:19:91:7d:44:74:74:87:fe:0e:3b:96:
#                    dc:d8:01:16:cc:ee:63:91:e7:0b:6f:ce:3b:0a:69:
#                    1a:7c:c2:e3:af:82:8e:86:d7:5e:8f:57:eb:d3:21:
#                    59:fd:39:37:42:30:be:50:ea:b6:0f:a9:88:d8:2e:
#                    2d:69:21:e7:d1:37:18:4e:7d:91:d5:16:5f:6b:5b:
#                    00:c2:39:43:0d:36:85:52:b9:53:65:0f:1d:42:e5:
#                    8f:cf:05:d3:ee:dc:0c:1a:d9:b8:8b:78:22:67:e4:
#                    69:b0:68:c5:3c:e4:6c:5a:46:e7:cd:c7:fa:ef:c4:
#                    ec:4b:bd:6a:a4:ac:fd:cc:28:51:ef:92:b4:29:ab:
#                    ab:35:9a:4c:e4:c4:08:c6:26:cc:f8:69:9f:e4:9c:
#                    f0:29:d3:5c:f9:c6:16:25:9e:23:c3:20:c1:3d:0f:
#                    3f:38:40:b0:fe:82:44:38:aa:5a:1a:8a:6b:63:58:
#                    38:b4:15:d3:b6:11:69:7b:1e:54:ee:8c:1a:22:ac:
#                    72:97:3f:23:59:9b:c9:22:84:c1:07:4f:cc:7f:e2:
#                    57:ca:12:70:bb:a6:65:f3:69:75:63:bd:95:fb:1b:
#                    97:cd:e4:a8:af:f6:d1:4e:a8:d9:8a:71:24:cd:36:
#                    3d:bc:96:c4:f1:6c:a9:ae:e5:cf:0d:6e:28:0d:b0:
#                    0e:b5:ca:51:7b:78:14:c3:20:2f:7f:fb:14:55:e1:
#                    11:99:fd:d5:0a:a1:9e:02:e3:62:5f:eb:35:4b:2c:
#                    b8:72:e8:3e:3d:4f:ac:2c:bb:2e:86:e2:a3:76:8f:
#                    e5:93:2a:cf:a5:ab:c8:5c:8d:4b:06:ff:12:46:ac:
#                    78:cb:14:07:35:e0:a9:df:8b:e9:af:15:4f:16:89:
#                    5b:bd:f6:8d:c6:59:ae:88:85:0e:c1:89:eb:1f:67:
#                    c5:45:8e:ff:6d:37:36:2b:78:66:83:91:51:2b:3d:
#                    ff:51:77:76:62:a1:ec:67:3e:3e:81:83:e0:56:a9:
#                    50:1f:1f:7a:99:ab:63:bf:84:17:77:f1:0d:3b:df:
#                    f7:9c:61:b3:35:98:8a:3a:b2:ec:3c:1a:37:3f:7e:
#                    8f:92:cf:d9:12:14:64:da:10:02:15:41:ff:4f:c4:
#                    eb:1c:a3:c9:fa:99:f7:46:e9:e1:18:d9:b1:b8:32:
#                    2d:cb:14:0c:50:d8:83:65:83:ee:b9:5c:cf:cb:05:
#                    5a:4c:fa:19:97:6b:d6:5d:13:d3:c2:5c:54:bc:32:
#                    73:a0:78:f5:f1:6d:1e:cb:9f:a5:a6:9f:22:dc:d1:
#                    51:9e:82:79:64:60:29:13:3e:a3:fd:4f:72:6a:ab:
#                    e2:d4:e5:b8:24:55:2c:44:4b:8a:88:44:9c:ca:84:
#                    d3:2a:3b
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                82:21:2D:66:C6:D7:A0:E0:15:EB:CE:4C:09:77:C4:60:9E:54:6E:03
#    Signature Algorithm: sha256WithRSAEncryption
#         60:de:1a:b8:e7:f2:60:82:d5:03:33:81:cb:06:8a:f1:22:49:
#         e9:e8:ea:91:7f:c6:33:5e:68:19:03:86:3b:43:01:cf:07:70:
#         e4:08:1e:65:85:91:e6:11:22:b7:f5:02:23:8e:ae:b9:1e:7d:
#         1f:7e:6c:e6:bd:25:d5:95:1a:f2:05:a6:af:85:02:6f:ae:f8:
#         d6:31:ff:25:c9:4a:c8:c7:8a:a9:d9:9f:4b:49:9b:11:57:99:
#         92:43:11:de:b6:33:a4:cc:d7:8d:64:7d:d4:cd:3c:28:2c:b4:
#         9a:96:ea:4d:f5:c4:44:c4:25:aa:20:80:d8:29:55:f7:e0:41:
#         fc:06:26:ff:b9:36:f5:43:14:03:66:78:e1:11:b1:da:20:5f:
#         46:00:78:00:21:a5:1e:00:28:61:78:6f:a8:01:01:8f:9d:34:
#         9a:ff:f4:38:90:fb:b8:d1:b3:72:06:c9:71:e6:81:c5:79:ed:
#         0b:a6:79:f2:13:0b:9c:f7:5d:0e:7b:24:93:b4:48:db:86:5f:
#         de:50:86:78:e7:40:e6:31:a8:90:76:70:61:af:9c:37:2c:11:
#         b5:82:b7:aa:ae:24:34:5b:72:0c:69:0d:cd:59:9f:f6:71:af:
#         9c:0b:d1:0a:38:f9:06:22:83:53:25:0c:fc:51:c4:e6:be:e2:
#         39:95:0b:24:ad:af:d1:95:e4:96:d7:74:64:6b:71:4e:02:3c:
#         aa:85:f3:20:a3:43:39:76:5b:6c:50:fe:9a:9c:14:1e:65:14:
#         8a:15:bd:a3:82:45:5a:49:56:6a:d2:9c:b1:63:32:e5:61:e0:
#         53:22:0e:a7:0a:49:ea:cb:7e:1f:a8:e2:62:80:f6:10:45:52:
#         98:06:18:de:a5:cd:2f:7f:aa:d4:e9:3e:08:72:ec:23:03:02:
#         3c:a6:aa:d8:bc:67:74:3d:14:17:fb:54:4b:17:e3:d3:79:3d:
#         6d:6b:49:c9:28:0e:2e:74:50:bf:0c:d9:46:3a:10:86:c9:a7:
#         3f:e9:a0:ec:7f:eb:a5:77:58:69:71:e6:83:0a:37:f2:86:49:
#         6a:be:79:08:90:f6:02:16:64:3e:e5:da:4c:7e:0c:34:c9:f9:
#         5f:b6:b3:28:51:a7:a7:2b:aa:49:fa:8d:65:29:4e:e3:6b:13:
#         a7:94:a3:2d:51:6d:78:0c:44:cb:df:de:08:6f:ce:a3:64:ab:
#         d3:95:84:d4:b9:52:54:72:7b:96:25:cc:bc:69:e3:48:6e:0d:
#         d0:c7:9d:27:9a:aa:f8:13:92:dd:1e:df:63:9f:35:a9:16:36:
#         ec:8c:b8:83:f4:3d:89:8f:cd:b4:17:5e:d7:b3:17:41:10:5d:
#         27:73:60:85:57:49:22:07

[p11-kit-object-v1]
label: "e-Szigno Root CA 2017"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEltw9itiwe2/GJ75EkLGzVhV7jkMk
fRqEWe5jaLLGXofQFUgeqJCtvVOi2t46kKZgX2gytYZB34dbLHvF/nx62g==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "e-Szigno Root CA 2017"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            01:54:48:ef:21:fd:97:59:0d:f5:04:0a
#    Signature Algorithm: ecdsa-with-SHA256
#        Issuer: C=HU, L=Budapest, O=Microsec Ltd./2.5.4.97=VATHU-23584497, CN=e-Szigno Root CA 2017
#        Validity
#            Not Before: Aug 22 12:07:06 2017 GMT
#            Not After : Aug 22 12:07:06 2042 GMT
#        Subject: C=HU, L=Budapest, O=Microsec Ltd./2.5.4.97=VATHU-23584497, CN=e-Szigno Root CA 2017
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (256 bit)
#                pub: 
#                    04:96:dc:3d:8a:d8:b0:7b:6f:c6:27:be:44:90:b1:
#                    b3:56:15:7b:8e:43:24:7d:1a:84:59:ee:63:68:b2:
#                    c6:5e:87:d0:15:48:1e:a8:90:ad:bd:53:a2:da:de:
#                    3a:90:a6:60:5f:68:32:b5:86:41:df:87:5b:2c:7b:
#                    c5:fe:7c:7a:da
#                ASN1 OID: prime256v1
#                NIST CURVE: P-256
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                87:11:15:08:D1:AA:C1:78:0C:B1:AF:CE:C6:C9:90:EF:BF:30:04:C0
#            X509v3 Authority Key Identifier: 
#                keyid:87:11:15:08:D1:AA:C1:78:0C:B1:AF:CE:C6:C9:90:EF:BF:30:04:C0
#
#    Signature Algorithm: ecdsa-with-SHA256
#         30:46:02:21:00:b5:57:dd:d7:8a:55:0b:36:e1:86:44:fa:d4:
#         d9:68:8d:b8:dc:23:8a:8a:0d:d4:2f:7d:ea:73:ec:bf:4d:6c:
#         a8:02:21:00:cb:a5:b4:12:fa:e7:b5:e8:cf:7e:93:fc:f3:35:
#         8f:6f:4e:5a:7c:b4:bc:4e:b2:fc:72:aa:5b:59:f9:e7:dc:31

[p11-kit-object-v1]
label: "ePKI Root Certification Authority"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ePKI Root Certification Authority"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            15:c8:bd:65:47:5c:af:b8:97:00:5e:e4:06:d2:bc:9d
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=TW, O=Chunghwa Telecom Co., Ltd., OU=ePKI Root Certification Authority
#        Validity
#            Not Before: Dec 20 02:31:27 2004 GMT
#            Not After : Dec 20 02:31:27 2034 GMT
#        Subject: C=TW, O=Chunghwa Telecom Co., Ltd., OU=ePKI Root Certification Authority
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:e1:25:0f:ee:8d:db:88:33:75:67:cd:ad:1f:7d:
#                    3a:4e:6d:9d:d3:2f:14:f3:63:74:cb:01:21:6a:37:
#                    ea:84:50:07:4b:26:5b:09:43:6c:21:9e:6a:c8:d5:
#                    03:f5:60:69:8f:cc:f0:22:e4:1f:e7:f7:6a:22:31:
#                    b7:2c:15:f2:e0:fe:00:6a:43:ff:87:65:c6:b5:1a:
#                    c1:a7:4c:6d:22:70:21:8a:31:f2:97:74:89:09:12:
#                    26:1c:9e:ca:d9:12:a2:95:3c:da:e9:67:bf:08:a0:
#                    64:e3:d6:42:b7:45:ef:97:f4:f6:f5:d7:b5:4a:15:
#                    02:58:7d:98:58:4b:60:bc:cd:d7:0d:9a:13:33:53:
#                    d1:61:f9:7a:d5:d7:78:b3:9a:33:f7:00:86:ce:1d:
#                    4d:94:38:af:a8:ec:78:51:70:8a:5c:10:83:51:21:
#                    f7:11:3d:34:86:5e:e5:48:cd:97:81:82:35:4c:19:
#                    ec:65:f6:6b:c5:05:a1:ee:47:13:d6:b3:21:27:94:
#                    10:0a:d9:24:3b:ba:be:44:13:46:30:3f:97:3c:d8:
#                    d7:d7:6a:ee:3b:38:e3:2b:d4:97:0e:b9:1b:e7:07:
#                    49:7f:37:2a:f9:77:78:cf:54:ed:5b:46:9d:a3:80:
#                    0e:91:43:c1:d6:5b:5f:14:ba:9f:a6:8d:24:47:40:
#                    59:bf:72:38:b2:36:6c:37:ff:99:d1:5d:0e:59:0a:
#                    ab:69:f7:c0:b2:04:45:7a:54:00:ae:be:53:f6:b5:
#                    e7:e1:f8:3c:a3:31:d2:a9:fe:21:52:64:c5:a6:67:
#                    f0:75:07:06:94:14:81:55:c6:27:e4:01:8f:17:c1:
#                    6a:71:d7:be:4b:fb:94:58:7d:7e:11:33:b1:42:f7:
#                    62:6c:18:d6:cf:09:68:3e:7f:6c:f6:1e:8f:62:ad:
#                    a5:63:db:09:a7:1f:22:42:41:1e:6f:99:8a:3e:d7:
#                    f9:3f:40:7a:79:b0:a5:01:92:d2:9d:3d:08:15:a5:
#                    10:01:2d:b3:32:76:a8:95:0d:b3:7a:9a:fb:07:10:
#                    78:11:6f:e1:8f:c7:ba:0f:25:1a:74:2a:e5:1c:98:
#                    41:99:df:21:87:e8:95:06:6a:0a:b3:6a:47:76:65:
#                    f6:3a:cf:8f:62:17:19:7b:0a:28:cd:1a:d2:83:1e:
#                    21:c7:2c:bf:be:ff:61:68:b7:67:1b:bb:78:4d:8d:
#                    ce:67:e5:e4:c1:8e:b7:23:66:e2:9d:90:75:34:98:
#                    a9:36:2b:8a:9a:94:b9:9d:ec:cc:8a:b1:f8:25:89:
#                    5c:5a:b6:2f:8c:1f:6d:79:24:a7:52:68:c3:84:35:
#                    e2:66:8d:63:0e:25:4d:d5:19:b2:e6:79:37:a7:22:
#                    9d:54:31
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                1E:0C:F7:B6:67:F2:E1:92:26:09:45:C0:55:39:2E:77:3F:42:4A:A2
#            X509v3 Basic Constraints: 
#                CA:TRUE
#            setCext-hashedRoot: 
#                0/0-...0...+......0...g*.....E...
#V|.[x....S.....
#    Signature Algorithm: sha1WithRSAEncryption
#         09:b3:83:53:59:01:3e:95:49:b9:f1:81:ba:f9:76:20:23:b5:
#         27:60:74:d4:6a:99:34:5e:6c:00:53:d9:9f:f2:a6:b1:24:07:
#         44:6a:2a:c6:a5:8e:78:12:e8:47:d9:58:1b:13:2a:5e:79:9b:
#         9f:0a:2a:67:a6:25:3f:06:69:56:73:c3:8a:66:48:fb:29:81:
#         57:74:06:ca:9c:ea:28:e8:38:67:26:2b:f1:d5:b5:3f:65:93:
#         f8:36:5d:8e:8d:8d:40:20:87:19:ea:ef:27:c0:3d:b4:39:0f:
#         25:7b:68:50:74:55:9c:0c:59:7d:5a:3d:41:94:25:52:08:e0:
#         47:2c:15:31:19:d5:bf:07:55:c6:bb:12:b5:97:f4:5f:83:85:
#         ba:71:c1:d9:6c:81:11:76:0a:0a:b0:bf:82:97:f7:ea:3d:fa:
#         fa:ec:2d:a9:28:94:3b:56:dd:d2:51:2e:ae:c0:bd:08:15:8c:
#         77:52:34:96:d6:9b:ac:d3:1d:8e:61:0f:35:7b:9b:ae:39:69:
#         0b:62:60:40:20:36:8f:af:fb:36:ee:2d:08:4a:1d:b8:bf:9b:
#         5c:f8:ea:a5:1b:a0:73:a6:d8:f8:6e:e0:33:04:5f:68:aa:27:
#         87:ed:d9:c1:90:9c:ed:bd:e3:6a:35:af:63:df:ab:18:d9:ba:
#         e6:e9:4a:ea:50:8a:0f:61:93:1e:e2:2d:19:e2:30:94:35:92:
#         5d:0e:b6:07:af:19:80:8f:47:90:51:4b:2e:4d:dd:85:e2:d2:
#         0a:52:0a:17:9a:fc:1a:b0:50:02:e5:01:a3:63:37:21:4c:44:
#         c4:9b:51:99:11:0e:73:9c:06:8f:54:2e:a7:28:5e:44:39:87:
#         56:2d:37:bd:85:44:94:e1:0c:4b:2c:9c:c3:92:85:34:61:cb:
#         0f:b8:9b:4a:43:52:fe:34:3a:7d:b8:e9:29:dc:76:a9:c8:30:
#         f8:14:71:80:c6:1e:36:48:74:22:41:5c:87:82:e8:18:71:8b:
#         41:89:44:e7:7e:58:5b:a8:b8:8d:13:e9:a7:6c:c3:47:ed:b3:
#         1a:9d:62:ae:8d:82:ea:94:9e:dd:59:10:c3:ad:dd:e2:4d:e3:
#         31:d5:c7:ec:e8:f2:b0:fe:92:1e:16:0a:1a:fc:d9:f3:f8:27:
#         b6:c9:be:1d:b4:6c:64:90:7f:f4:e4:c4:5b:d7:37:ae:42:0e:
#         dd:a4:1a:6f:7c:88:54:c5:16:6e:e1:7a:68:2e:f8:3a:bf:0d:
#         a4:3c:89:3b:78:a7:4e:63:83:04:21:08:67:8d:f2:82:49:d0:
#         5b:fd:b1:cd:0f:83:84:d4:3e:20:85:f7:4a:3d:2b:9c:fd:2a:
#         0a:09:4d:ea:81:f8:11:9c

[p11-kit-object-v1]
label: "ePKI Root Certification Authority - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "ePKI Root Certification Authority - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            d6:96:2e:c1:0a:15:93:12:af:8f:63:bc:d4:44:c9:5b
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=TW, O=Chunghwa Telecom Co., Ltd., CN=ePKI Root Certification Authority - G2
#        Validity
#            Not Before: Nov 17 08:23:42 2015 GMT
#            Not After : Dec 31 15:59:59 2037 GMT
#        Subject: C=TW, O=Chunghwa Telecom Co., Ltd., CN=ePKI Root Certification Authority - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:a4:59:1f:a0:2f:df:be:e0:fb:e9:dc:b5:89:fe:
#                    5a:97:03:c9:3a:77:a7:8e:5c:af:f2:e3:18:39:f5:
#                    aa:dd:0f:46:d2:68:0f:57:9c:a7:63:60:d3:58:ce:
#                    35:c2:a7:f6:88:c2:4f:7f:1b:28:e9:d0:a7:00:c4:
#                    17:4d:6d:e2:0f:c5:0e:26:23:20:ab:f7:3a:28:a2:
#                    4c:0a:0b:cc:8e:ce:e6:00:9a:5a:40:0d:d4:50:1a:
#                    9b:d1:0d:9c:94:f9:db:ee:5c:d0:f1:8a:07:cd:9a:
#                    2b:40:2c:49:a4:5d:62:5f:a7:6b:df:ee:56:08:50:
#                    f3:42:18:6c:31:b0:5e:e5:9c:73:92:bc:0e:d2:0c:
#                    7d:c5:38:57:bc:bb:58:db:26:19:02:ed:e3:43:84:
#                    8a:4e:56:6b:db:ad:a1:31:d9:cc:22:67:96:78:ff:
#                    77:9d:cc:64:c5:32:20:6a:ef:4e:30:d5:24:25:fd:
#                    88:79:af:71:1a:fe:d5:4b:1b:15:88:bc:18:70:aa:
#                    bd:ad:38:0a:66:30:46:e5:89:85:d5:76:24:a9:a9:
#                    b3:e6:59:60:0f:b4:a9:53:c2:3a:9d:45:1a:d6:ae:
#                    e3:77:5e:c4:62:36:33:2f:30:c4:bf:95:f1:2d:38:
#                    a5:75:e8:d1:6a:93:2e:45:87:4b:4a:a2:df:bf:58:
#                    27:9a:ca:62:19:aa:5e:d4:b1:80:49:96:dd:2b:ec:
#                    5f:8f:9b:e0:9d:97:88:f5:84:03:a3:af:b3:a5:73:
#                    2d:41:ba:e5:07:b7:6f:6b:71:f7:f7:c9:5a:af:69:
#                    99:b3:2f:c8:4f:42:eb:6c:6b:71:67:78:df:0a:ac:
#                    4f:d7:4a:85:00:46:1a:d5:cd:b8:9f:ea:95:9d:0f:
#                    7c:d1:c6:05:85:e6:08:de:88:17:81:f6:d5:b5:6e:
#                    ea:a1:1c:d7:61:aa:e3:59:42:89:9c:59:7e:b1:7c:
#                    64:34:dd:61:23:2a:39:b5:10:ab:fc:86:a9:53:1a:
#                    c5:eb:6a:e2:80:4e:59:91:c0:38:89:fe:b3:5d:d6:
#                    fb:91:e9:d7:b0:7d:d9:78:08:cc:f5:2b:cc:2b:e1:
#                    a1:d6:94:73:c1:fe:51:f4:8c:7d:0a:b5:9a:8a:b9:
#                    f5:da:e0:c9:b3:d8:8f:aa:82:83:8d:69:53:2d:fd:
#                    00:04:18:4a:a0:da:54:e1:79:8c:89:eb:7f:f5:82:
#                    e7:a0:b9:77:4d:ae:f9:ba:02:3b:88:76:eb:7c:5d:
#                    b3:5a:13:db:7c:29:16:6b:99:d1:1d:e4:48:21:a2:
#                    0d:5e:01:88:e8:be:f1:98:4d:3e:c7:16:57:1c:5f:
#                    e1:08:6f:1c:4c:58:43:56:f7:80:65:8c:71:0e:a2:
#                    04:67:4f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Subject Key Identifier: 
#                72:5B:BA:AA:72:38:EE:25:90:24:B5:94:22:FA:09:88:CA:8B:0A:FB
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         06:a3:f1:b6:73:55:c6:67:66:21:e5:9d:5b:d6:94:2e:4a:22:
#         60:f2:54:01:90:a1:fd:b5:bf:c0:95:bf:18:5f:2c:f6:6b:35:
#         0e:fc:31:c8:ed:44:0e:92:97:dc:af:dd:56:cf:b5:1f:ba:72:
#         9c:30:c8:9b:b1:91:c0:76:77:d4:0f:1a:95:1a:e9:4d:14:88:
#         a1:cf:6b:02:a6:6a:eb:64:45:4d:64:8d:de:fc:eb:6c:f2:53:
#         09:a1:85:51:15:d0:4f:9e:62:fa:11:b9:ce:c8:24:0e:72:64:
#         88:75:34:23:30:2a:3f:bc:3c:39:cc:cc:dd:0b:36:bb:bd:06:
#         82:8f:12:01:c5:71:05:d1:24:a1:99:6c:ca:e4:f7:aa:ed:8a:
#         d7:a7:0a:ad:af:f0:e0:80:bb:a1:b2:3f:5a:87:64:70:86:33:
#         7b:0d:1e:d7:00:86:83:43:97:75:f5:3b:c1:48:fd:b6:0e:43:
#         a8:02:6e:b8:3e:7f:8f:4e:e2:5d:b4:7d:9e:30:34:2f:a8:f1:
#         eb:27:87:68:0d:5a:0a:4d:01:db:c9:14:58:95:f2:9a:4d:16:
#         aa:73:db:f4:25:88:17:38:b7:af:59:09:09:b4:1f:2d:0f:ab:
#         f5:b8:27:55:ee:45:30:33:b8:ed:1b:8e:bc:88:6c:af:f8:5a:
#         2a:6b:e0:ac:b1:05:24:a1:09:fc:a3:0f:f3:b0:2d:7b:96:ba:
#         b6:94:07:15:45:8e:29:dc:58:0e:a9:05:d8:3b:3a:a0:7b:cd:
#         8a:c7:66:82:97:cf:d6:33:e0:67:fc:a6:db:40:2f:05:e5:c5:
#         8b:7a:2a:7a:f0:b0:36:9b:0c:18:f6:37:e9:41:a1:fd:b1:28:
#         f9:6f:6b:bd:eb:1f:4c:63:71:7b:50:dd:29:f2:ff:ee:f7:c7:
#         45:5f:e8:36:0a:e8:6c:5b:22:c3:e8:c0:e7:26:dc:e3:a8:95:
#         80:e5:b9:3a:13:db:00:4b:1a:fd:ae:33:47:7e:78:94:e3:b1:
#         5d:2b:b5:56:b5:42:8b:9f:81:c5:fc:93:4c:10:b5:ba:0a:bc:
#         7e:37:e3:fa:54:6d:f5:04:c5:70:b3:a9:04:d2:51:d7:85:cd:
#         7d:6f:43:8f:59:68:e5:31:56:11:71:f9:64:29:09:13:fe:d0:
#         1f:bc:8b:00:38:b2:d0:ca:34:56:76:10:39:56:73:66:c3:d1:
#         49:d9:be:57:4f:3f:16:7d:6a:78:b7:a8:82:b8:5b:ce:ae:85:
#         8a:0a:42:0c:03:d1:17:c4:18:f7:d8:57:88:c6:82:b8:07:b9:
#         3e:fd:a4:e9:2e:dc:6f:ba:90:92:ee:65:b0:50:34:d3:07:da:
#         01:97:0f:bc:e7:73:82:7b

[p11-kit-object-v1]
label: "emSign ECC Root CA - C3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAE/aVhrnsmEB3ptyIwrgb0gbOxQnGVObzT
UuOvr/nylzWSNkYOh5WNuTla6bvf0P7IB0E8u1Vvg6Nq+2KwgYkCcH1IxUrj6SJU
Ik2Tu0IMr3ecI6Z912ERzmXH+H/+9fKp
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign ECC Root CA - C3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIICKzCCAbGgAwIBAgIKe3G2gla4EnycqDAKBggqhkjOPQQDAzBaMQswCQYDVQQG
EwJVUzETMBEGA1UECxMKZW1TaWduIFBLSTEUMBIGA1UEChMLZU11ZGhyYSBJbmMx
IDAeBgNVBAMTF2VtU2lnbiBFQ0MgUm9vdCBDQSAtIEMzMB4XDTE4MDIxODE4MzAw
MFoXDTQzMDIxODE4MzAwMFowWjELMAkGA1UEBhMCVVMxEzARBgNVBAsTCmVtU2ln
biBQS0kxFDASBgNVBAoTC2VNdWRocmEgSW5jMSAwHgYDVQQDExdlbVNpZ24gRUND
IFJvb3QgQ0EgLSBDMzB2MBAGByqGSM49AgEGBSuBBAAiA2IABP2lYa57JhAd6bci
MK4G9IGzsUJxlTm801Ljr6/58pc1kjZGDoeVjbk5Wum739D+yAdBPLtVb4Ojavti
sIGJAnB9SMVK4+kiVCJNk7tCDK93nCOmfddhEc5lx/h//vXyqaNCMEAwHQYDVR0O
BBYEFPtaSNCAIEDyqOkAB2kZd6fmw/TPMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMB
Af8EBTADAQH/MAoGCCqGSM49BAMDA2gAMGUCMQC02C8Cif22TGK6Q04ThHK1rt0c
3ta13FaPWEBaLd4gTCKDypOofu4SQMfWh0/434UCMBwUZOR8loMRnLDRWmFLpg9J
0wD8ofzkpf9/rdcw0Md3f76BB1UwUCAU9Vc4CqgxUQ==
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            7b:71:b6:82:56:b8:12:7c:9c:a8
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, OU=emSign PKI, O=eMudhra Inc, CN=emSign ECC Root CA - C3
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C=US, OU=emSign PKI, O=eMudhra Inc, CN=emSign ECC Root CA - C3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:fd:a5:61:ae:7b:26:10:1d:e9:b7:22:30:ae:06:
#                    f4:81:b3:b1:42:71:95:39:bc:d3:52:e3:af:af:f9:
#                    f2:97:35:92:36:46:0e:87:95:8d:b9:39:5a:e9:bb:
#                    df:d0:fe:c8:07:41:3c:bb:55:6f:83:a3:6a:fb:62:
#                    b0:81:89:02:70:7d:48:c5:4a:e3:e9:22:54:22:4d:
#                    93:bb:42:0c:af:77:9c:23:a6:7d:d7:61:11:ce:65:
#                    c7:f8:7f:fe:f5:f2:a9
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FB:5A:48:D0:80:20:40:F2:A8:E9:00:07:69:19:77:A7:E6:C3:F4:CF
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:31:00:b4:d8:2f:02:89:fd:b6:4c:62:ba:43:4e:13:
#         84:72:b5:ae:dd:1c:de:d6:b5:dc:56:8f:58:40:5a:2d:de:20:
#         4c:22:83:ca:93:a8:7e:ee:12:40:c7:d6:87:4f:f8:df:85:02:
#         30:1c:14:64:e4:7c:96:83:11:9c:b0:d1:5a:61:4b:a6:0f:49:
#         d3:00:fc:a1:fc:e4:a5:ff:7f:ad:d7:30:d0:c7:77:7f:be:81:
#         07:55:30:50:20:14:f5:57:38:0a:a8:31:51

[p11-kit-object-v1]
label: "emSign ECC Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%2a%06%03U%1d%25%01%01%ff%04 0%1e%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEI6UMuC0S9SjzsbLd4gISgJ45X0lNn8kl
NFl07LsGHOfAcq/ori/hQVSHFKhKsuh8guZbarXcs3XOiwbQhiO/RtWODz8E9Ncc
kn72pWPC9V+OLk+hGBkCKzIKgmR9FpPR
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign ECC Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            3c:f6:07:a9:68:70:0e:da:8b:84
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=IN, OU=emSign PKI, O=eMudhra Technologies Limited, CN=emSign ECC Root CA - G3
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C=IN, OU=emSign PKI, O=eMudhra Technologies Limited, CN=emSign ECC Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:23:a5:0c:b8:2d:12:f5:28:f3:b1:b2:dd:e2:02:
#                    12:80:9e:39:5f:49:4d:9f:c9:25:34:59:74:ec:bb:
#                    06:1c:e7:c0:72:af:e8:ae:2f:e1:41:54:87:14:a8:
#                    4a:b2:e8:7c:82:e6:5b:6a:b5:dc:b3:75:ce:8b:06:
#                    d0:86:23:bf:46:d5:8e:0f:3f:04:f4:d7:1c:92:7e:
#                    f6:a5:63:c2:f5:5f:8e:2e:4f:a1:18:19:02:2b:32:
#                    0a:82:64:7d:16:93:d1
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                7C:5D:02:84:13:D4:CC:8A:9B:81:CE:17:1C:2E:29:1E:9C:48:63:42
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:be:f3:61:cf:02:10:1d:64:95:07:b8:18:6e:
#         88:85:05:2f:83:08:17:90:ca:1f:8a:4c:e8:0d:1b:7a:b1:ad:
#         d5:81:09:47:ef:3b:ac:08:04:7c:5c:99:b1:ed:47:07:d2:02:
#         31:00:9d:ba:55:fc:a9:4a:e8:ed:ed:e6:76:01:42:7b:c8:f8:
#         60:d9:8d:51:8b:55:3b:fb:8c:7b:eb:65:09:c3:f8:96:cd:47:
#         a8:82:f2:16:55:77:24:7e:12:10:95:04:2c:a3

[p11-kit-object-v1]
label: "emSign Root CA - C1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz+upufGZBczYKCFK83M0
UYRWEPWgTywS4/oTmifQz/l5GnRfHXk5/Fv4cI7gklL35CX5VIPZHdPIWoU/Xse2
B+4+wM6ar6xWQio5JXDWv7V7Nq2s9nPczdcdioOl+yuQFTdrHCZH3DspVpNqs8Fq
Op099cGXOFgFixwR4+S0uF2FHYP+eF8LRWgYSKVGczQ7/g/IdrvHGPMF0Ybzhe3n
udkyrVWIzqa2kbBPrH4VI5b2P/AgNBbeCsbEBEV5f6f9vtKppa+cxSMq9zwhbL2v
j07FOrLzNBL834AaSaTUqZX3noleoomslMuoaJuvimUnzYnu3Yy1aylwQ6BpC+S5
DwIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - C1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            ae:cf:00:ba:c4:cf:32:f8:43:b2
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, OU=emSign PKI, O=eMudhra Inc, CN=emSign Root CA - C1
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C=US, OU=emSign PKI, O=eMudhra Inc, CN=emSign Root CA - C1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:cf:eb:a9:b9:f1:99:05:cc:d8:28:21:4a:f3:73:
#                    34:51:84:56:10:f5:a0:4f:2c:12:e3:fa:13:9a:27:
#                    d0:cf:f9:79:1a:74:5f:1d:79:39:fc:5b:f8:70:8e:
#                    e0:92:52:f7:e4:25:f9:54:83:d9:1d:d3:c8:5a:85:
#                    3f:5e:c7:b6:07:ee:3e:c0:ce:9a:af:ac:56:42:2a:
#                    39:25:70:d6:bf:b5:7b:36:ad:ac:f6:73:dc:cd:d7:
#                    1d:8a:83:a5:fb:2b:90:15:37:6b:1c:26:47:dc:3b:
#                    29:56:93:6a:b3:c1:6a:3a:9d:3d:f5:c1:97:38:58:
#                    05:8b:1c:11:e3:e4:b4:b8:5d:85:1d:83:fe:78:5f:
#                    0b:45:68:18:48:a5:46:73:34:3b:fe:0f:c8:76:bb:
#                    c7:18:f3:05:d1:86:f3:85:ed:e7:b9:d9:32:ad:55:
#                    88:ce:a6:b6:91:b0:4f:ac:7e:15:23:96:f6:3f:f0:
#                    20:34:16:de:0a:c6:c4:04:45:79:7f:a7:fd:be:d2:
#                    a9:a5:af:9c:c5:23:2a:f7:3c:21:6c:bd:af:8f:4e:
#                    c5:3a:b2:f3:34:12:fc:df:80:1a:49:a4:d4:a9:95:
#                    f7:9e:89:5e:a2:89:ac:94:cb:a8:68:9b:af:8a:65:
#                    27:cd:89:ee:dd:8c:b5:6b:29:70:43:a0:69:0b:e4:
#                    b9:0f
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FE:A1:E0:70:1E:2A:03:39:52:5A:42:BE:5C:91:85:7A:18:AA:4D:B5
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         c2:4a:56:fa:15:21:7b:28:a2:e9:e5:1d:fb:f8:2d:c4:39:96:
#         41:4c:3b:27:2c:c4:6c:18:15:80:c6:ac:af:47:59:2f:26:0b:
#         e3:36:b0:ef:3b:fe:43:97:49:32:99:12:15:5b:df:11:29:ff:
#         ab:53:f8:bb:c1:78:0f:ac:9c:53:af:57:bd:68:8c:3d:69:33:
#         f0:a3:a0:23:63:3b:64:67:22:44:ad:d5:71:cb:56:2a:78:92:
#         a3:4f:12:31:36:36:e2:de:fe:00:c4:a3:60:0f:27:ad:a0:b0:
#         8a:b5:36:7a:52:a1:bd:27:f4:20:27:62:e8:4d:94:24:13:e4:
#         0a:04:e9:3c:ab:2e:c8:43:09:4a:c6:61:04:e5:49:34:7e:d3:
#         c4:c8:f5:0f:c0:aa:e9:ba:54:5e:f3:63:2b:4f:4f:50:d4:fe:
#         b9:7b:99:8c:3d:c0:2e:bc:02:2b:d3:c4:40:e4:8a:07:31:1e:
#         9b:ce:26:99:13:fb:11:ea:9a:22:0c:11:19:c7:5e:1b:81:50:
#         30:c8:96:12:6e:e7:cb:41:7f:91:3b:a2:47:b7:54:80:1b:dc:
#         00:cc:9a:90:ea:c3:c3:50:06:62:0c:30:c0:15:48:a7:a8:59:
#         7c:e1:ae:22:a2:e2:0a:7a:0f:fa:62:ab:52:4c:e1:f1:df:ca:
#         be:83:0d:42

[p11-kit-object-v1]
label: "emSign Root CA - C2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - C2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            2f:0a:b7:6b:0d:cb:4a:af:27:58
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=US, OU=emSign PKI, O=eMudhra Inc, CN=emSign Root CA - C2
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C=US, OU=emSign PKI, O=eMudhra Inc, CN=emSign Root CA - C2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:8c:7d:7d:65:03:e4:db:9a:1f:58:22:79:91:80:
#                    e5:bd:ec:85:71:e0:b5:09:7f:60:d1:65:fb:3c:df:
#                    b2:6b:9a:5f:a9:cb:ae:1a:56:76:20:58:ee:2d:e8:
#                    2e:fc:7e:08:df:4b:b8:d7:f9:ce:13:8a:72:33:12:
#                    ab:96:70:8f:b3:8b:47:dd:e1:27:3c:34:37:fb:24:
#                    e3:69:db:b5:56:5f:4a:b0:51:8a:b3:2c:34:42:b7:
#                    eb:3b:ce:92:dc:7f:1d:64:cb:4c:d5:20:98:fa:2f:
#                    4e:ae:3f:22:b7:90:8a:fd:f9:80:2c:ad:58:fe:df:
#                    db:ad:9b:a7:b6:30:14:2c:44:db:2d:48:8d:df:09:
#                    06:00:1a:fa:10:4d:0f:1f:50:b6:ae:4e:a3:56:69:
#                    80:24:35:81:5e:e8:75:07:1d:03:e9:da:ed:54:6b:
#                    4d:28:74:c5:e2:0f:9a:11:17:12:dc:0e:71:80:70:
#                    4d:48:ff:d1:3d:98:b0:9d:92:08:17:8a:36:14:9a:
#                    27:28:ef:e5:f0:65:e1:68:3e:1b:da:e9:e2:09:e6:
#                    9d:37:2e:dd:c3:bb:95:b7:11:c1:d1:d1:c2:66:99:
#                    8d:69:c9:e0:37:e8:96:97:29:64:4d:33:d2:11:8d:
#                    83:15:34:27:29:e2:38:41:da:d2:18:89:9f:8b:56:
#                    4f:1b:c1:0f:7f:d5:cd:b7:b7:19:af:de:ef:7b:b5:
#                    a6:65:57:6d:8d:17:8b:6d:4b:5a:aa:dc:9f:8c:3a:
#                    9d:28:19:42:c1:ce:92:9f:47:1d:2a:19:5a:9b:3e:
#                    e9:10:34:60:23:38:b2:0d:f0:a0:cd:40:dc:db:47:
#                    58:80:97:67:7c:1f:e3:12:a2:27:01:a3:80:22:77:
#                    c4:e3:2d:67:0d:bf:8f:28:09:62:f9:dd:9a:c5:04:
#                    c4:c3:8d:a2:00:e9:fa:c6:d6:de:08:a5:b9:c7:69:
#                    d0:3b:a8:22:49:7b:6a:a9:24:de:a7:d9:e4:0a:01:
#                    49:fa:52:24:03:1c:fb:12:a8:d0:65:71:48:50:e1:
#                    8f:f4:63:49:94:e6:b8:21:9b:63:81:f6:b5:d0:4b:
#                    51:5b:d4:94:42:7c:93:0d:9c:92:26:e4:05:01:db:
#                    ed:91:5b:3a:b9:4e:0c:fb:49:b4:a1:a3:c3:6c:66:
#                    4d:14:6d:09:c5:c5:c8:aa:43:db:a8:55:30:2c:2b:
#                    5e:12:93:da:06:f1:0d:f3:7e:c3:34:f1:c7:4f:a1:
#                    16:f4:5a:52:19:92:54:7a:98:a0:fb:2f:c9:c7:ff:
#                    37:c6:bb:c3:c8:26:ff:78:18:60:7d:45:9f:54:e0:
#                    0e:bd:af:77:8f:9b:2f:0c:be:bc:df:37:11:ca:b4:
#                    7e:ac:bf
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                B3:F7:8A:A4:D6:0F:88:00:59:E8:51:17:4F:D5:7E:EC:86:22:81:9D
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         34:25:a6:25:8c:d1:cb:f6:9d:9d:07:e6:35:6c:06:ad:31:da:
#         ae:b6:43:42:f0:a8:04:ec:08:5b:f2:b9:be:e0:c4:d0:b2:b5:
#         1b:a8:03:cb:2d:98:f3:84:bb:f9:60:f0:88:31:8f:81:48:8e:
#         8c:a1:22:b5:94:57:1c:a2:2d:4e:cd:a3:83:fe:5a:31:14:3b:
#         05:13:c4:8a:64:10:eb:6f:19:44:3d:7e:23:a5:70:61:ed:21:
#         90:cd:06:56:6a:ed:6a:64:b5:70:31:79:5e:79:44:f3:ec:a2:
#         bd:ba:a7:61:4d:00:c4:45:7d:94:21:d2:c2:d7:84:a8:24:f2:
#         2b:a5:49:28:20:ab:1f:1e:ce:03:f2:7b:ad:c5:6a:26:04:8b:
#         87:3f:77:34:63:dc:73:82:9e:c6:62:c1:96:54:d3:67:5f:e5:
#         8a:4d:16:3c:52:c1:9b:c4:e3:57:23:1a:9b:2b:a5:63:1f:40:
#         52:36:b3:9d:d1:6d:e5:e9:e3:b9:52:03:16:04:e0:dc:e3:04:
#         53:1e:f8:4c:05:b8:4b:de:04:22:41:10:01:f9:ae:f6:2e:de:
#         98:b6:a2:bb:09:e3:6e:13:a9:61:10:57:5b:42:b0:29:10:cf:
#         e6:2a:fc:e9:1a:97:bc:87:02:42:83:78:e5:dc:3f:ba:0d:e0:
#         0f:93:75:77:36:a5:da:b1:b9:50:a7:04:ed:11:99:6c:f6:26:
#         91:92:49:e2:63:89:39:3f:38:fc:11:b0:f3:56:b7:01:bf:29:
#         72:f4:e2:8d:ad:6b:78:e2:3e:92:6e:20:25:6d:58:30:1c:f5:
#         1d:da:b8:11:20:26:5e:6b:4a:14:66:05:db:33:1b:42:e6:ce:
#         c1:ee:64:f0:85:49:80:b5:e5:10:43:08:e0:6c:6b:c6:c3:44:
#         9f:29:04:55:36:5a:2f:c2:55:70:80:08:4b:9a:be:0a:2f:78:
#         0e:05:6b:96:ed:df:ca:34:3d:6c:6c:04:ff:8c:a6:87:02:75:
#         5b:43:32:ac:d0:87:1c:bd:22:88:4a:b9:75:80:1a:b7:ac:a0:
#         8b:ca:0e:0d:f1:16:4e:ab:04:ea:e3:7d:5c:09:7a:5c:22:ff:
#         10:22:b2:88:c7:3c:95:50:bf:d5:b5:cd:52:28:1e:9f:84:42:
#         0f:f8:31:00:b6:d4:d6:c8:5f:64:68:8a:80:7e:57:78:4a:e3:
#         7f:5b:ff:0e:dd:79:4f:31:d8:cf:1c:97:53:86:d2:73:df:6e:
#         70:11:97:91:8f:33:bb:c9:82:2e:3b:d2:3b:68:e1:27:8c:83:
#         a1:cc:01:6d:c4:81:be:7a:b5:07:0d:2f:02:3d:53:c9:99:9c:
#         db:d1:81:43:2b:90:08:0b

[p11-kit-object-v1]
label: "emSign Root CA - G1"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0 %06%03U%1d%25%01%01%ff%04%160%14%06%08%2b%06%01%05%05%07%03%04%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAk0u76WaK7p1b1TST0Bse
w+eeuGQzf2N4aLTNLnF115sgxk0pvLZoYIr3IZpWNVrzdr3YzZr/k1ZLpVkGoZM0
Kd0WNHVO8oG0x5ZOrRkVUkr+PHB1cM2vK6sVmjM8qrOLqs1D/fXqcP/tzxE7lM5O
MhbTI0Aqd7OvPAEsbO2ZLIvZTmmYsvePQbAyeGHWDV/D+qJAkh1cF+ZwPjXnorfC
YuKrpDhMtTk1b+oDafo6VGiFbdbyL0NVHpENDtjVaqSW0RM8LHhQ6DqS0hdW5TUa
QBw+jSztOd9C4INBdN+jzcKGYEho42kLVACL5HZpIQ15TjQIXhTCzLG3rdd8cIrH
hQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - G1"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIDlDCCAnygAwIBAgIKMfXkYgxsWO3W2DANBgkqhkiG9w0BAQsFADBnMQswCQYD
VQQGEwJJTjETMBEGA1UECxMKZW1TaWduIFBLSTElMCMGA1UEChMcZU11ZGhyYSBU
ZWNobm9sb2dpZXMgTGltaXRlZDEcMBoGA1UEAxMTZW1TaWduIFJvb3QgQ0EgLSBH
MTAeFw0xODAyMTgxODMwMDBaFw00MzAyMTgxODMwMDBaMGcxCzAJBgNVBAYTAklO
MRMwEQYDVQQLEwplbVNpZ24gUEtJMSUwIwYDVQQKExxlTXVkaHJhIFRlY2hub2xv
Z2llcyBMaW1pdGVkMRwwGgYDVQQDExNlbVNpZ24gUm9vdCBDQSAtIEcxMIIBIjAN
BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAk0u76WaK7p1b1TST0Bsew+eeuGQz
f2N4aLTNLnF115sgxk0pvLZoYIr3IZpWNVrzdr3YzZr/k1ZLpVkGoZM0Kd0WNHVO
8oG0x5ZOrRkVUkr+PHB1cM2vK6sVmjM8qrOLqs1D/fXqcP/tzxE7lM5OMhbTI0Aq
d7OvPAEsbO2ZLIvZTmmYsvePQbAyeGHWDV/D+qJAkh1cF+ZwPjXnorfCYuKrpDhM
tTk1b+oDafo6VGiFbdbyL0NVHpENDtjVaqSW0RM8LHhQ6DqS0hdW5TUaQBw+jSzt
Od9C4INBdN+jzcKGYEho42kLVACL5HZpIQ15TjQIXhTCzLG3rdd8cIrHhQIDAQAB
o0IwQDAdBgNVHQ4EFgQU++8Nhp6w492pufEhF38+/PB3KxowDgYDVR0PAQH/BAQD
AgEGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAFn/8oz1h31x
PaOfG1vR2vjTnGs2vZupYeveFix0PZ7mddrXuqe8QhfnPZHr5X3dPpzxz5KsbEjM
wiI/aTvFthUvozXGaCocV685743QNcMYDHsAVhzNixl03r4PEuDQqqE/AjSxcM6d
GNYIAwlG7mDgfrbESQRRfXBgvKqy/3lyeqYdPV8q+Mri/Tm3R7nrft8EI6/6nAYH
6ftjk4BAtcZsCjEozgyfz7MjNYBBjWzEN3uBL4ChQEKF6dk4jeihU80Bv2noWgby
RQuQ+q7hv53yrlc8pa6yVvSLZUDp/TGBLPQ5Cdjua6e0ph0VpZj3AYHYhX3zUVxx
iN66zB+Afko=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            31:f5:e4:62:0c:6c:58:ed:d6:d8
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=IN, OU=emSign PKI, O=eMudhra Technologies Limited, CN=emSign Root CA - G1
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C=IN, OU=emSign PKI, O=eMudhra Technologies Limited, CN=emSign Root CA - G1
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:93:4b:bb:e9:66:8a:ee:9d:5b:d5:34:93:d0:1b:
#                    1e:c3:e7:9e:b8:64:33:7f:63:78:68:b4:cd:2e:71:
#                    75:d7:9b:20:c6:4d:29:bc:b6:68:60:8a:f7:21:9a:
#                    56:35:5a:f3:76:bd:d8:cd:9a:ff:93:56:4b:a5:59:
#                    06:a1:93:34:29:dd:16:34:75:4e:f2:81:b4:c7:96:
#                    4e:ad:19:15:52:4a:fe:3c:70:75:70:cd:af:2b:ab:
#                    15:9a:33:3c:aa:b3:8b:aa:cd:43:fd:f5:ea:70:ff:
#                    ed:cf:11:3b:94:ce:4e:32:16:d3:23:40:2a:77:b3:
#                    af:3c:01:2c:6c:ed:99:2c:8b:d9:4e:69:98:b2:f7:
#                    8f:41:b0:32:78:61:d6:0d:5f:c3:fa:a2:40:92:1d:
#                    5c:17:e6:70:3e:35:e7:a2:b7:c2:62:e2:ab:a4:38:
#                    4c:b5:39:35:6f:ea:03:69:fa:3a:54:68:85:6d:d6:
#                    f2:2f:43:55:1e:91:0d:0e:d8:d5:6a:a4:96:d1:13:
#                    3c:2c:78:50:e8:3a:92:d2:17:56:e5:35:1a:40:1c:
#                    3e:8d:2c:ed:39:df:42:e0:83:41:74:df:a3:cd:c2:
#                    86:60:48:68:e3:69:0b:54:00:8b:e4:76:69:21:0d:
#                    79:4e:34:08:5e:14:c2:cc:b1:b7:ad:d7:7c:70:8a:
#                    c7:85
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                FB:EF:0D:86:9E:B0:E3:DD:A9:B9:F1:21:17:7F:3E:FC:F0:77:2B:1A
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha256WithRSAEncryption
#         59:ff:f2:8c:f5:87:7d:71:3d:a3:9f:1b:5b:d1:da:f8:d3:9c:
#         6b:36:bd:9b:a9:61:eb:de:16:2c:74:3d:9e:e6:75:da:d7:ba:
#         a7:bc:42:17:e7:3d:91:eb:e5:7d:dd:3e:9c:f1:cf:92:ac:6c:
#         48:cc:c2:22:3f:69:3b:c5:b6:15:2f:a3:35:c6:68:2a:1c:57:
#         af:39:ef:8d:d0:35:c3:18:0c:7b:00:56:1c:cd:8b:19:74:de:
#         be:0f:12:e0:d0:aa:a1:3f:02:34:b1:70:ce:9d:18:d6:08:03:
#         09:46:ee:60:e0:7e:b6:c4:49:04:51:7d:70:60:bc:aa:b2:ff:
#         79:72:7a:a6:1d:3d:5f:2a:f8:ca:e2:fd:39:b7:47:b9:eb:7e:
#         df:04:23:af:fa:9c:06:07:e9:fb:63:93:80:40:b5:c6:6c:0a:
#         31:28:ce:0c:9f:cf:b3:23:35:80:41:8d:6c:c4:37:7b:81:2f:
#         80:a1:40:42:85:e9:d9:38:8d:e8:a1:53:cd:01:bf:69:e8:5a:
#         06:f2:45:0b:90:fa:ae:e1:bf:9d:f2:ae:57:3c:a5:ae:b2:56:
#         f4:8b:65:40:e9:fd:31:81:2c:f4:39:09:d8:ee:6b:a7:b4:a6:
#         1d:15:a5:98:f7:01:81:d8:85:7d:f3:51:5c:71:88:de:ba:cc:
#         1f:80:7e:4a

[p11-kit-object-v1]
label: "emSign Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAw3AYhZbaQd8cr6xdM3DE
XTsr4hXJJO7IUzavW/TTbBR9x1P7Ozk4zlBsxgUWd51dAjqAIUuyMqtxp6Pjxm3f
s7IRveJo+zsKw/iQDJPDMof1pl7qBdgesmrjT9lUw1xBUjY9winjQH9IA3aBRn5l
pS0g69WMTHbr95s1pdEiy2GWQ4b9xoH5BHAPDW2XvffxmW/QzahMFTLgHd7t0Y/m
mBcfvUyOoc8Kg2j7G/1/Q1MFP6FQNryHzBS1wZCr0IN4lOmNZwPZs/YAx1UbqhWk
wBR5TOhwLKCW+0V1QyOCDEFvDiqFq7Udc8bw632HAvtkyLy2RPOu9QjHFvwb0sX/
uQp4ITu0ZlpXMNOde6J+XeaxHgSsexDg/uVW7YAiMgCGsBeh50OJ1vukxx/tMAF2
thRPUmgb8CIr4n2M7oZON4AMPgswNIFmEcy4Er88n+DSQYG378LUv78dRHNCEmQy
VGczpG9egK18qilKWezm2tmZOL3vVaNufzxBc/rWUakEJQ/AKOzuuk5i9JQm0j6V
xsX7fuqQio5diRVPdy6kNKnD4fz2QW2PkYpj5efLgvFj7ci8MhGLJ3qTLUM+PvXc
MjTKq94SmwivcDQ93C7JQjsJLWODQ2cYVPpfHKvTEH5UO3zcUlhby/XqTaltpDiR
XEDdpd1f11ljJVHVLn0ozvkCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "emSign Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----
MIIFlTCCA32gAwIBAgILAIZNvw/jXtd9jtgwDQYJKoZIhvcNAQEMBQAwZzELMAkG
A1UEBhMCSU4xEzARBgNVBAsTCmVtU2lnbiBQS0kxJTAjBgNVBAoTHGVNdWRocmEg
VGVjaG5vbG9naWVzIExpbWl0ZWQxHDAaBgNVBAMTE2VtU2lnbiBSb290IENBIC0g
RzIwHhcNMTgwMjE4MTgzMDAwWhcNNDMwMjE4MTgzMDAwWjBnMQswCQYDVQQGEwJJ
TjETMBEGA1UECxMKZW1TaWduIFBLSTElMCMGA1UEChMcZU11ZGhyYSBUZWNobm9s
b2dpZXMgTGltaXRlZDEcMBoGA1UEAxMTZW1TaWduIFJvb3QgQ0EgLSBHMjCCAiIw
DQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAMNwGIWW2kHfHK+sXTNwxF07K+IV
ySTuyFM2r1v002wUfcdT+zs5OM5QbMYFFnedXQI6gCFLsjKrcaej48Zt37OyEb3i
aPs7CsP4kAyTwzKH9aZe6gXYHrJq40/ZVMNcQVI2PcIp40B/SAN2gUZ+ZaUtIOvV
jEx26/ebNaXRIsthlkOG/caB+QRwDw1tl7338Zlv0M2oTBUy4B3e7dGP5pgXH71M
jqHPCoNo+xv9f0NTBT+hUDa8h8wUtcGQq9CDeJTpjWcD2bP2AMdVG6oVpMAUeUzo
cCyglvtFdUMjggxBbw4qhau1HXPG8Ot9hwL7ZMi8tkTzrvUIxxb8G9LF/7kKeCE7
tGZaVzDTnXuifl3msR4ErHsQ4P7lVu2AIjIAhrAXoedDidb7pMcf7TABdrYUT1Jo
G/AiK+J9jO6GTjeADD4LMDSBZhHMuBK/PJ/g0kGBt+/C1L+/HURzQhJkMlRnM6Rv
XoCtfKopSlns5trZmTi971Wjbn88QXP61lGpBCUPwCjs7rpOYvSUJtI+lcbF+37q
kIqOXYkVT3cupDSpw+H89kFtj5GKY+Xny4LxY+3IvDIRiyd6ky1DPj713DI0yqve
EpsIr3A0PdwuyUI7CS1jg0NnGFT6Xxyr0xB+VDt83FJYW8v16k2pbaQ4kVxA3aXd
X9dZYyVR1S59KM75AgMBAAGjQjBAMB0GA1UdDgQWBBTt7E1FYRgo57MjKBEcTaUn
DV7s9DAOBgNVHQ8BAf8EBAMCAQYwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0B
AQwFAAOCAgEACFC/ilQg8KTCVBxFJW/sazomkS0kNYbEIZg4B3obqwsJ7SX98z8Z
gfzBpz0nYClwwJjWbFN1R2zY8pCEot6/dgmA8Vbq0GxhwPM5YN/SZquNyRIxO3cU
dlAcwf+vSezdVCf9wOzvSAF3q0a5ljvbdbNJNpfScQVp7UUd5sBsZk8jXO1KQ/go
/Vf/GDPnrIFmxpAIGE3sgnO8lAv9FzUaAeuv7HWe47xN9J7+bQzF93yHuIXACPTL
pQHhg2zMv5C7BAbuDHfbj1Cu294Z832yhSfBcziWGskOvl3es2EcHytbS9c9P+0z
Mpka7zGC1FHrvLb/FoduH86TeZt0QjZ6pcplNzoaxDnDvzTJ6CC2Eny+qH/APFCu
VUv5/wjwF+HPm8Pup2ARj9cEp92+0qcerfHacNq5hMeGZdbA/dzdUR/5z5zXdxAk
nl8mcfGb0eMNSTXQmmB/i4AecNnr72uYjzlaXUGYN7Nrb6XouG0pnh0/BBtWWp0U
ShIPpWEAqs7RJBj6+1ZUYXZ4ObrCw962DxhN2p19Hxw9LtuUUcLqqTPrFXYvwO4t
ouj7KJnAkaTUfXGdEaFVtFig1EA30WzJY2X1vAQ7hVnniCjgaXAGqjsU6sklNM9n
xDx5rFCCCEtj9Kh8UHjGK2QqgP5kwgttjOApQMaCoezMfK4KD7WpOXU=
-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            86:4d:bf:0f:e3:5e:d7:7d:8e:d8
#    Signature Algorithm: sha384WithRSAEncryption
#        Issuer: C=IN, OU=emSign PKI, O=eMudhra Technologies Limited, CN=emSign Root CA - G2
#        Validity
#            Not Before: Feb 18 18:30:00 2018 GMT
#            Not After : Feb 18 18:30:00 2043 GMT
#        Subject: C=IN, OU=emSign PKI, O=eMudhra Technologies Limited, CN=emSign Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:c3:70:18:85:96:da:41:df:1c:af:ac:5d:33:70:
#                    c4:5d:3b:2b:e2:15:c9:24:ee:c8:53:36:af:5b:f4:
#                    d3:6c:14:7d:c7:53:fb:3b:39:38:ce:50:6c:c6:05:
#                    16:77:9d:5d:02:3a:80:21:4b:b2:32:ab:71:a7:a3:
#                    e3:c6:6d:df:b3:b2:11:bd:e2:68:fb:3b:0a:c3:f8:
#                    90:0c:93:c3:32:87:f5:a6:5e:ea:05:d8:1e:b2:6a:
#                    e3:4f:d9:54:c3:5c:41:52:36:3d:c2:29:e3:40:7f:
#                    48:03:76:81:46:7e:65:a5:2d:20:eb:d5:8c:4c:76:
#                    eb:f7:9b:35:a5:d1:22:cb:61:96:43:86:fd:c6:81:
#                    f9:04:70:0f:0d:6d:97:bd:f7:f1:99:6f:d0:cd:a8:
#                    4c:15:32:e0:1d:de:ed:d1:8f:e6:98:17:1f:bd:4c:
#                    8e:a1:cf:0a:83:68:fb:1b:fd:7f:43:53:05:3f:a1:
#                    50:36:bc:87:cc:14:b5:c1:90:ab:d0:83:78:94:e9:
#                    8d:67:03:d9:b3:f6:00:c7:55:1b:aa:15:a4:c0:14:
#                    79:4c:e8:70:2c:a0:96:fb:45:75:43:23:82:0c:41:
#                    6f:0e:2a:85:ab:b5:1d:73:c6:f0:eb:7d:87:02:fb:
#                    64:c8:bc:b6:44:f3:ae:f5:08:c7:16:fc:1b:d2:c5:
#                    ff:b9:0a:78:21:3b:b4:66:5a:57:30:d3:9d:7b:a2:
#                    7e:5d:e6:b1:1e:04:ac:7b:10:e0:fe:e5:56:ed:80:
#                    22:32:00:86:b0:17:a1:e7:43:89:d6:fb:a4:c7:1f:
#                    ed:30:01:76:b6:14:4f:52:68:1b:f0:22:2b:e2:7d:
#                    8c:ee:86:4e:37:80:0c:3e:0b:30:34:81:66:11:cc:
#                    b8:12:bf:3c:9f:e0:d2:41:81:b7:ef:c2:d4:bf:bf:
#                    1d:44:73:42:12:64:32:54:67:33:a4:6f:5e:80:ad:
#                    7c:aa:29:4a:59:ec:e6:da:d9:99:38:bd:ef:55:a3:
#                    6e:7f:3c:41:73:fa:d6:51:a9:04:25:0f:c0:28:ec:
#                    ee:ba:4e:62:f4:94:26:d2:3e:95:c6:c5:fb:7e:ea:
#                    90:8a:8e:5d:89:15:4f:77:2e:a4:34:a9:c3:e1:fc:
#                    f6:41:6d:8f:91:8a:63:e5:e7:cb:82:f1:63:ed:c8:
#                    bc:32:11:8b:27:7a:93:2d:43:3e:3e:f5:dc:32:34:
#                    ca:ab:de:12:9b:08:af:70:34:3d:dc:2e:c9:42:3b:
#                    09:2d:63:83:43:67:18:54:fa:5f:1c:ab:d3:10:7e:
#                    54:3b:7c:dc:52:58:5b:cb:f5:ea:4d:a9:6d:a4:38:
#                    91:5c:40:dd:a5:dd:5f:d7:59:63:25:51:d5:2e:7d:
#                    28:ce:f9
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                ED:EC:4D:45:61:18:28:E7:B3:23:28:11:1C:4D:A5:27:0D:5E:EC:F4
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#    Signature Algorithm: sha384WithRSAEncryption
#         08:50:bf:8a:54:20:f0:a4:c2:54:1c:45:25:6f:ec:6b:3a:26:
#         91:2d:24:35:86:c4:21:98:38:07:7a:1b:ab:0b:09:ed:25:fd:
#         f3:3f:19:81:fc:c1:a7:3d:27:60:29:70:c0:98:d6:6c:53:75:
#         47:6c:d8:f2:90:84:a2:de:bf:76:09:80:f1:56:ea:d0:6c:61:
#         c0:f3:39:60:df:d2:66:ab:8d:c9:12:31:3b:77:14:76:50:1c:
#         c1:ff:af:49:ec:dd:54:27:fd:c0:ec:ef:48:01:77:ab:46:b9:
#         96:3b:db:75:b3:49:36:97:d2:71:05:69:ed:45:1d:e6:c0:6c:
#         66:4f:23:5c:ed:4a:43:f8:28:fd:57:ff:18:33:e7:ac:81:66:
#         c6:90:08:18:4d:ec:82:73:bc:94:0b:fd:17:35:1a:01:eb:af:
#         ec:75:9e:e3:bc:4d:f4:9e:fe:6d:0c:c5:f7:7c:87:b8:85:c0:
#         08:f4:cb:a5:01:e1:83:6c:cc:bf:90:bb:04:06:ee:0c:77:db:
#         8f:50:ae:db:de:19:f3:7d:b2:85:27:c1:73:38:96:1a:c9:0e:
#         be:5d:de:b3:61:1c:1f:2b:5b:4b:d7:3d:3f:ed:33:32:99:1a:
#         ef:31:82:d4:51:eb:bc:b6:ff:16:87:6e:1f:ce:93:79:9b:74:
#         42:36:7a:a5:ca:65:37:3a:1a:c4:39:c3:bf:34:c9:e8:20:b6:
#         12:7c:be:a8:7f:c0:3c:50:ae:55:4b:f9:ff:08:f0:17:e1:cf:
#         9b:c3:ee:a7:60:11:8f:d7:04:a7:dd:be:d2:a7:1e:ad:f1:da:
#         70:da:b9:84:c7:86:65:d6:c0:fd:dc:dd:51:1f:f9:cf:9c:d7:
#         77:10:24:9e:5f:26:71:f1:9b:d1:e3:0d:49:35:d0:9a:60:7f:
#         8b:80:1e:70:d9:eb:ef:6b:98:8f:39:5a:5d:41:98:37:b3:6b:
#         6f:a5:e8:b8:6d:29:9e:1d:3f:04:1b:56:5a:9d:14:4a:12:0f:
#         a5:61:00:aa:ce:d1:24:18:fa:fb:56:54:61:76:78:39:ba:c2:
#         c3:de:b6:0f:18:4d:da:9d:7d:1f:1c:3d:2e:db:94:51:c2:ea:
#         a9:33:eb:15:76:2f:c0:ee:2d:a2:e8:fb:28:99:c0:91:a4:d4:
#         7d:71:9d:11:a1:55:b4:58:a0:d4:40:37:d1:6c:c9:63:65:f5:
#         bc:04:3b:85:59:e7:88:28:e0:69:70:06:aa:3b:14:ea:c9:25:
#         34:cf:67:c4:3c:79:ac:50:82:08:4b:63:f4:a8:7c:50:78:c6:
#         2b:64:2a:80:fe:64:c2:0b:6d:8c:e0:29:40:c6:82:a1:ec:cc:
#         7c:ae:0a:0f:b5:a9:39:75

[p11-kit-object-v1]
label: "thawte Primary Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArKDw+4BZ1JzHpM+doVlz
CRBFDA0sbmjxbFtIaElZN/wLMxnCd3/MEC2VNBzm600JpxzSuMmXNgK3idQkXwbA
zESUlI0CYm/rWt0RjSiaXISQEHoNvXRmL2o4oOLVVETrHQefB7pv7un9Tgsp9T6E
oAHxnKv4HH6JpOih2HFlDaNRe+680iJgDblbnd+6/FFbC6+Ysuku6QToYofeK8jX
TsFMZB7dz4dYukpPymgHHRydSsbVL5HMfHFyHMXAZ+sy/cmSXJTahcCbv1N9Kwn0
jJ2RH5dqUsveCTakd9h7h1BE1T5uKWn7OUkmHgmlgHtALevoJ4XJ/mH9fuZ8lx3V
nQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "thawte Primary Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            34:4e:d5:57:20:d5:ed:ec:49:f4:2f:ce:37:db:2b:6d
#    Signature Algorithm: sha1WithRSAEncryption
#        Issuer: C=US, O=thawte, Inc., OU=Certification Services Division, OU=(c) 2006 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA
#        Validity
#            Not Before: Nov 17 00:00:00 2006 GMT
#            Not After : Jul 16 23:59:59 2036 GMT
#        Subject: C=US, O=thawte, Inc., OU=Certification Services Division, OU=(c) 2006 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:ac:a0:f0:fb:80:59:d4:9c:c7:a4:cf:9d:a1:59:
#                    73:09:10:45:0c:0d:2c:6e:68:f1:6c:5b:48:68:49:
#                    59:37:fc:0b:33:19:c2:77:7f:cc:10:2d:95:34:1c:
#                    e6:eb:4d:09:a7:1c:d2:b8:c9:97:36:02:b7:89:d4:
#                    24:5f:06:c0:cc:44:94:94:8d:02:62:6f:eb:5a:dd:
#                    11:8d:28:9a:5c:84:90:10:7a:0d:bd:74:66:2f:6a:
#                    38:a0:e2:d5:54:44:eb:1d:07:9f:07:ba:6f:ee:e9:
#                    fd:4e:0b:29:f5:3e:84:a0:01:f1:9c:ab:f8:1c:7e:
#                    89:a4:e8:a1:d8:71:65:0d:a3:51:7b:ee:bc:d2:22:
#                    60:0d:b9:5b:9d:df:ba:fc:51:5b:0b:af:98:b2:e9:
#                    2e:e9:04:e8:62:87:de:2b:c8:d7:4e:c1:4c:64:1e:
#                    dd:cf:87:58:ba:4a:4f:ca:68:07:1d:1c:9d:4a:c6:
#                    d5:2f:91:cc:7c:71:72:1c:c5:c0:67:eb:32:fd:c9:
#                    92:5c:94:da:85:c0:9b:bf:53:7d:2b:09:f4:8c:9d:
#                    91:1f:97:6a:52:cb:de:09:36:a4:77:d8:7b:87:50:
#                    44:d5:3e:6e:29:69:fb:39:49:26:1e:09:a5:80:7b:
#                    40:2d:eb:e8:27:85:c9:fe:61:fd:7e:e6:7c:97:1d:
#                    d5:9d
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                7B:5B:45:CF:AF:CE:CB:7A:FD:31:92:1A:6A:B6:F3:46:EB:57:48:50
#    Signature Algorithm: sha1WithRSAEncryption
#         79:11:c0:4b:b3:91:b6:fc:f0:e9:67:d4:0d:6e:45:be:55:e8:
#         93:d2:ce:03:3f:ed:da:25:b0:1d:57:cb:1e:3a:76:a0:4c:ec:
#         50:76:e8:64:72:0c:a4:a9:f1:b8:8b:d6:d6:87:84:bb:32:e5:
#         41:11:c0:77:d9:b3:60:9d:eb:1b:d5:d1:6e:44:44:a9:a6:01:
#         ec:55:62:1d:77:b8:5c:8e:48:49:7c:9c:3b:57:11:ac:ad:73:
#         37:8e:2f:78:5c:90:68:47:d9:60:60:e6:fc:07:3d:22:20:17:
#         c4:f7:16:e9:c4:d8:72:f9:c8:73:7c:df:16:2f:15:a9:3e:fd:
#         6a:27:b6:a1:eb:5a:ba:98:1f:d5:e3:4d:64:0a:9d:13:c8:61:
#         ba:f5:39:1c:87:ba:b8:bd:7b:22:7f:f6:fe:ac:40:79:e5:ac:
#         10:6f:3d:8f:1b:79:76:8b:c4:37:b3:21:18:84:e5:36:00:eb:
#         63:20:99:b9:e9:fe:33:04:bb:41:c8:c1:02:f9:44:63:20:9e:
#         81:ce:42:d3:d6:3f:2c:76:d3:63:9c:59:dd:8f:a6:e1:0e:a0:
#         2e:41:f7:2e:95:47:cf:bc:fd:33:f3:f6:0b:61:7e:7e:91:2b:
#         81:47:c2:27:30:ee:a7:10:5d:37:8f:5c:39:2b:e4:04:f0:7b:
#         8d:56:8c:68

[p11-kit-object-v1]
label: "thawte Primary Root CA - G2"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEotWcgnuVnfFSeIf+iha/BebfowJPDQfG
AFG6DAJSLSKkQjnE/o/qycG+1E3/n3qe4rF8mq2nhglzh9HnmuN6papu+7qzcMBn
iKI11KOasf2twu8x+qi58/sIxpHR+ymV
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "thawte Primary Root CA - G2"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            35:fc:26:5c:d9:84:4f:c9:3d:26:3d:57:9b:ae:d7:56
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=US, O=thawte, Inc., OU=(c) 2007 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA - G2
#        Validity
#            Not Before: Nov  5 00:00:00 2007 GMT
#            Not After : Jan 18 23:59:59 2038 GMT
#        Subject: C=US, O=thawte, Inc., OU=(c) 2007 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA - G2
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:a2:d5:9c:82:7b:95:9d:f1:52:78:87:fe:8a:16:
#                    bf:05:e6:df:a3:02:4f:0d:07:c6:00:51:ba:0c:02:
#                    52:2d:22:a4:42:39:c4:fe:8f:ea:c9:c1:be:d4:4d:
#                    ff:9f:7a:9e:e2:b1:7c:9a:ad:a7:86:09:73:87:d1:
#                    e7:9a:e3:7a:a5:aa:6e:fb:ba:b3:70:c0:67:88:a2:
#                    35:d4:a3:9a:b1:fd:ad:c2:ef:31:fa:a8:b9:f3:fb:
#                    08:c6:91:d1:fb:29:95
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                9A:D8:00:30:00:E7:6B:7F:85:18:EE:8B:B6:CE:8A:0C:F8:11:E1:BB
#    Signature Algorithm: ecdsa-with-SHA384
#         30:66:02:31:00:dd:f8:e0:57:47:5b:a7:e6:0a:c3:bd:f5:80:
#         8a:97:35:0d:1b:89:3c:54:86:77:28:ca:a1:f4:79:de:b5:e6:
#         38:b0:f0:65:70:8c:7f:02:54:c2:bf:ff:d8:a1:3e:d9:cf:02:
#         31:00:c4:8d:94:fc:dc:53:d2:dc:9d:78:16:1f:15:33:23:53:
#         52:e3:5a:31:5d:9d:ca:ae:bd:13:29:44:0d:27:5b:a8:e7:68:
#         9c:12:f7:58:3f:2e:72:02:57:a3:8f:a1:14:2e

[p11-kit-object-v1]
label: "thawte Primary Root CA - G3"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%03"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsr8nLPvb2FvdeHsbnndm
gcs+vHyu86YnmjSjaDFxODNi5PNxZnmxqWWjpYvVj2AtP0LMqmsywCPLLEHd5N/8
YZzic7IilRFDGF/Eth9XbAoFWCLINkw6fKXRz4aviKdEAhN0cXMKQlkC+BsUa0Lf
b1+6a4KinVvnSr0eAXLbS3ToO39/fR8EtCab4LRarEc9VbjXsCZSKAExQGbY2SS9
9irY7CFJXJv2eul/VTV+lmuNk5Mny5K76qxAwJ/C+IDPXfRa3M50hqY+bAtTyr2S
zhkGcuYMXDhpxwTWvGzOW/b3aJzcJRVIiKHpqfiYnODz1TEoYRFsZ5aNOZnLwkUk
OQIDAQAB
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "thawte Primary Root CA - G3"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            60:01:97:b7:46:a7:ea:b4:b4:9a:d6:4b:2f:f7:90:fb
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=US, O=thawte, Inc., OU=Certification Services Division, OU=(c) 2008 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA - G3
#        Validity
#            Not Before: Apr  2 00:00:00 2008 GMT
#            Not After : Dec  1 23:59:59 2037 GMT
#        Subject: C=US, O=thawte, Inc., OU=Certification Services Division, OU=(c) 2008 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA - G3
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (2048 bit)
#                Modulus:
#                    00:b2:bf:27:2c:fb:db:d8:5b:dd:78:7b:1b:9e:77:
#                    66:81:cb:3e:bc:7c:ae:f3:a6:27:9a:34:a3:68:31:
#                    71:38:33:62:e4:f3:71:66:79:b1:a9:65:a3:a5:8b:
#                    d5:8f:60:2d:3f:42:cc:aa:6b:32:c0:23:cb:2c:41:
#                    dd:e4:df:fc:61:9c:e2:73:b2:22:95:11:43:18:5f:
#                    c4:b6:1f:57:6c:0a:05:58:22:c8:36:4c:3a:7c:a5:
#                    d1:cf:86:af:88:a7:44:02:13:74:71:73:0a:42:59:
#                    02:f8:1b:14:6b:42:df:6f:5f:ba:6b:82:a2:9d:5b:
#                    e7:4a:bd:1e:01:72:db:4b:74:e8:3b:7f:7f:7d:1f:
#                    04:b4:26:9b:e0:b4:5a:ac:47:3d:55:b8:d7:b0:26:
#                    52:28:01:31:40:66:d8:d9:24:bd:f6:2a:d8:ec:21:
#                    49:5c:9b:f6:7a:e9:7f:55:35:7e:96:6b:8d:93:93:
#                    27:cb:92:bb:ea:ac:40:c0:9f:c2:f8:80:cf:5d:f4:
#                    5a:dc:ce:74:86:a6:3e:6c:0b:53:ca:bd:92:ce:19:
#                    06:72:e6:0c:5c:38:69:c7:04:d6:bc:6c:ce:5b:f6:
#                    f7:68:9c:dc:25:15:48:88:a1:e9:a9:f8:98:9c:e0:
#                    f3:d5:31:28:61:11:6c:67:96:8d:39:99:cb:c2:45:
#                    24:39
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#            X509v3 Subject Key Identifier: 
#                AD:6C:AA:94:60:9C:ED:E4:FF:FA:3E:0A:74:2B:63:03:F7:B6:59:BF
#    Signature Algorithm: sha256WithRSAEncryption
#         1a:40:d8:95:65:ac:09:92:89:c6:39:f4:10:e5:a9:0e:66:53:
#         5d:78:de:fa:24:91:bb:e7:44:51:df:c6:16:34:0a:ef:6a:44:
#         51:ea:2b:07:8a:03:7a:c3:eb:3f:0a:2c:52:16:a0:2b:43:b9:
#         25:90:3f:70:a9:33:25:6d:45:1a:28:3b:27:cf:aa:c3:29:42:
#         1b:df:3b:4c:c0:33:34:5b:41:88:bf:6b:2b:65:af:28:ef:b2:
#         f5:c3:aa:66:ce:7b:56:ee:b7:c8:cb:67:c1:c9:9c:1a:18:b8:
#         c4:c3:49:03:f1:60:0e:50:cd:46:c5:f3:77:79:f7:b6:15:e0:
#         38:db:c7:2f:28:a0:0c:3f:77:26:74:d9:25:12:da:31:da:1a:
#         1e:dc:29:41:91:22:3c:69:a7:bb:02:f2:b6:5c:27:03:89:f4:
#         06:ea:9b:e4:72:82:e3:a1:09:c1:e9:00:19:d3:3e:d4:70:6b:
#         ba:71:a6:aa:58:ae:f4:bb:e9:6c:b6:ef:87:cc:9b:bb:ff:39:
#         e6:56:61:d3:0a:a7:c4:5c:4c:60:7b:05:77:26:7a:bf:d8:07:
#         52:2c:62:f7:70:63:d9:39:bc:6f:1c:c2:79:dc:76:29:af:ce:
#         c5:2c:64:04:5e:88:36:6e:31:d4:40:1a:62:34:36:3f:35:01:
#         ae:ac:63:a0

[p11-kit-object-v1]
label: "vTrus ECC Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MHYwEAYHKoZIzj0CAQYFK4EEACIDYgAEZVBKrox5lkqqHAjDo6LN/llWQXf9JpRC
ux3NCNtzslt188+cToL0v/hhJoVs1oVbcnDS/dtitN9Ti72xRFhiQgnH+n9bEOf+
QP3A2MMrMudwpremIFUde4BdS49nTPEQ
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "vTrus ECC Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            6e:6a:bc:59:aa:53:be:98:39:67:a2:d2:6b:a4:3b:e6:6d:1c:d6:da
#    Signature Algorithm: ecdsa-with-SHA384
#        Issuer: C=CN, O=iTrusChina Co.,Ltd., CN=vTrus ECC Root CA
#        Validity
#            Not Before: Jul 31 07:26:44 2018 GMT
#            Not After : Jul 31 07:26:44 2043 GMT
#        Subject: C=CN, O=iTrusChina Co.,Ltd., CN=vTrus ECC Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: id-ecPublicKey
#                Public-Key: (384 bit)
#                pub: 
#                    04:65:50:4a:ae:8c:79:96:4a:aa:1c:08:c3:a3:a2:
#                    cd:fe:59:56:41:77:fd:26:94:42:bb:1d:cd:08:db:
#                    73:b2:5b:75:f3:cf:9c:4e:82:f4:bf:f8:61:26:85:
#                    6c:d6:85:5b:72:70:d2:fd:db:62:b4:df:53:8b:bd:
#                    b1:44:58:62:42:09:c7:fa:7f:5b:10:e7:fe:40:fd:
#                    c0:d8:c3:2b:32:e7:70:a6:b7:a6:20:55:1d:7b:80:
#                    5d:4b:8f:67:4c:f1:10
#                ASN1 OID: secp384r1
#                NIST CURVE: P-384
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                98:39:CD:BE:D8:B2:8C:F7:B2:AB:E1:AD:24:AF:7B:7C:A1:DB:1F:CF
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: ecdsa-with-SHA384
#         30:65:02:30:57:9d:dd:56:f1:c7:e3:e9:b8:49:50:6b:9b:69:
#         c3:6f:ec:c3:7d:25:e4:57:95:13:40:9b:52:d3:3b:f3:40:19:
#         bc:26:c7:2d:06:9e:b5:7b:36:9f:f5:25:d4:63:6b:00:02:31:
#         00:e9:d3:c6:9e:56:9a:2a:cc:a1:da:3f:c8:66:2b:d3:58:9c:
#         20:85:fa:ab:91:8a:70:70:11:38:60:64:0b:62:09:91:58:00:
#         f9:4d:fb:34:68:da:09:ad:21:06:18:94:ce

[p11-kit-object-v1]
label: "vTrus Root CA"
class: x-certificate-extension
object-id: 2.5.29.37
value: "0%16%06%03U%1d%25%01%01%ff%04%0c0%0a%06%08%2b%06%01%05%05%07%03%01"
modifiable: false
-----BEGIN PUBLIC KEY-----
MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAvVV8YdO4HQRiBaCubLdw
tEHqSwNeED+QWhyLO7Bmi2xIphwiutVAku4zsiNZyY68WNqLntAZ8i9ZxoxjWrqf
owuws5pcuhG4EukMu89ubICHKRQDLI0kmshkg7VqrBMsM/Gf3CxhPBo/cFWbrQBS
f88Euf42+pzAFq5i/pZMQ35VFL4as9Jtwq92ZpVrKrCUd4VeBA9iHWN192vny1ua
cOw+ZwXw/gcIgM8o2wXGFCcvhn3wJ97/5n4zSOcLHljRJytTDldKZdf7ooBg/Ey8
NVMBapdygq/xHXDonPXvXsJsx0d+WpSFJk07uutM6LAJwmXCnZ0Jm061lwWs9Qag
9zYFfvSQsmvEtPlk6ukaCsgNqO0nydTns7mrgiKQJz0q6HyQ77xP/eIKJKfeZSSk
XerAdjDTd1D4DQSblDYBc8oGWKbTO9z6BEYTVYrJREe4UTkaLug04nnLWUoKf7ym
7x8DZ2pZKyVik9lTGWY8J2Iphk2ka+7/1E661bTijkhaABkJ8QXZzpGx9+vpOU/2
bwRDmlX1PgUUvb+zWbTYjjOEo5BSqrMClWD5DExo+e7VFw34cVe1JeQp7mVdr9Hu
PBcLWkPFpYbqJJ7iBQfcNEISkdY5dK5MQYLb8qZI0bOb8zOq86bAxU719J12Y+YC
xiJLwZU/UGQsVOW28Dwpz1cCAwEAAQ==
-----END PUBLIC KEY-----

[p11-kit-object-v1]
label: "vTrus Root CA"
trusted: true
nss-mozilla-ca-policy: true
modifiable: false
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
#Certificate:
#    Data:
#        Version: 3 (0x2)
#        Serial Number:
#            43:e3:71:13:d8:b3:59:14:5d:b7:ce:8c:fd:35:fd:6f:bc:05:8d:45
#    Signature Algorithm: sha256WithRSAEncryption
#        Issuer: C=CN, O=iTrusChina Co.,Ltd., CN=vTrus Root CA
#        Validity
#            Not Before: Jul 31 07:24:05 2018 GMT
#            Not After : Jul 31 07:24:05 2043 GMT
#        Subject: C=CN, O=iTrusChina Co.,Ltd., CN=vTrus Root CA
#        Subject Public Key Info:
#            Public Key Algorithm: rsaEncryption
#                Public-Key: (4096 bit)
#                Modulus:
#                    00:bd:55:7c:61:d3:b8:1d:04:62:05:a0:ae:6c:b7:
#                    70:b4:41:ea:4b:03:5e:10:3f:90:5a:1c:8b:3b:b0:
#                    66:8b:6c:48:a6:1c:22:ba:d5:40:92:ee:33:b2:23:
#                    59:c9:8e:bc:58:da:8b:9e:d0:19:f2:2f:59:c6:8c:
#                    63:5a:ba:9f:a3:0b:b0:b3:9a:5c:ba:11:b8:12:e9:
#                    0c:bb:cf:6e:6c:80:87:29:14:03:2c:8d:24:9a:c8:
#                    64:83:b5:6a:ac:13:2c:33:f1:9f:dc:2c:61:3c:1a:
#                    3f:70:55:9b:ad:00:52:7f:cf:04:b9:fe:36:fa:9c:
#                    c0:16:ae:62:fe:96:4c:43:7e:55:14:be:1a:b3:d2:
#                    6d:c2:af:76:66:95:6b:2a:b0:94:77:85:5e:04:0f:
#                    62:1d:63:75:f7:6b:e7:cb:5b:9a:70:ec:3e:67:05:
#                    f0:fe:07:08:80:cf:28:db:05:c6:14:27:2f:86:7d:
#                    f0:27:de:ff:e6:7e:33:48:e7:0b:1e:58:d1:27:2b:
#                    53:0e:57:4a:65:d7:fb:a2:80:60:fc:4c:bc:35:53:
#                    01:6a:97:72:82:af:f1:1d:70:e8:9c:f5:ef:5e:c2:
#                    6c:c7:47:7e:5a:94:85:26:4d:3b:ba:eb:4c:e8:b0:
#                    09:c2:65:c2:9d:9d:09:9b:4e:b5:97:05:ac:f5:06:
#                    a0:f7:36:05:7e:f4:90:b2:6b:c4:b4:f9:64:ea:e9:
#                    1a:0a:c8:0d:a8:ed:27:c9:d4:e7:b3:b9:ab:82:22:
#                    90:27:3d:2a:e8:7c:90:ef:bc:4f:fd:e2:0a:24:a7:
#                    de:65:24:a4:5d:ea:c0:76:30:d3:77:50:f8:0d:04:
#                    9b:94:36:01:73:ca:06:58:a6:d3:3b:dc:fa:04:46:
#                    13:55:8a:c9:44:47:b8:51:39:1a:2e:e8:34:e2:79:
#                    cb:59:4a:0a:7f:bc:a6:ef:1f:03:67:6a:59:2b:25:
#                    62:93:d9:53:19:66:3c:27:62:29:86:4d:a4:6b:ee:
#                    ff:d4:4e:ba:d5:b4:e2:8e:48:5a:00:19:09:f1:05:
#                    d9:ce:91:b1:f7:eb:e9:39:4f:f6:6f:04:43:9a:55:
#                    f5:3e:05:14:bd:bf:b3:59:b4:d8:8e:33:84:a3:90:
#                    52:aa:b3:02:95:60:f9:0c:4c:68:f9:ee:d5:17:0d:
#                    f8:71:57:b5:25:e4:29:ee:65:5d:af:d1:ee:3c:17:
#                    0b:5a:43:c5:a5:86:ea:24:9e:e2:05:07:dc:34:42:
#                    12:91:d6:39:74:ae:4c:41:82:db:f2:a6:48:d1:b3:
#                    9b:f3:33:aa:f3:a6:c0:c5:4e:f5:f4:9d:76:63:e6:
#                    02:c6:22:4b:c1:95:3f:50:64:2c:54:e5:b6:f0:3c:
#                    29:cf:57
#                Exponent: 65537 (0x10001)
#        X509v3 extensions:
#            X509v3 Subject Key Identifier: 
#                54:62:70:63:F1:75:84:43:58:8E:D1:16:20:B1:C6:AC:1A:BC:F6:89
#            X509v3 Basic Constraints: critical
#                CA:TRUE
#            X509v3 Key Usage: critical
#                Certificate Sign, CRL Sign
#    Signature Algorithm: sha256WithRSAEncryption
#         29:ba:92:49:a7:ad:f0:f1:70:c3:e4:97:f0:9f:a9:25:d5:6b:
#         9e:34:fe:e6:1a:64:f6:3a:6b:52:b2:10:78:1a:9f:4c:da:8a:
#         da:ec:1c:37:52:e0:42:4b:fb:6c:76:ca:24:0b:39:12:15:9d:
#         9f:11:2d:fc:79:64:dc:e0:e0:f5:dd:e0:57:c9:a5:b2:76:70:
#         50:a4:fe:b7:0a:70:d5:a0:34:f1:75:d7:4d:49:ba:11:d1:b3:
#         d8:ec:82:ff:eb:0e:c4:bf:64:2d:7d:63:6e:17:78:ec:5d:7c:
#         88:c8:eb:8e:57:76:d9:59:04:fa:bc:52:1f:45:ac:f0:7a:80:
#         ec:ec:6f:76:ae:91:db:10:8e:04:dc:92:df:a0:f6:e6:ae:49:
#         d3:c1:6c:12:1b:cc:29:aa:f9:08:a5:e2:37:14:ca:b1:b8:66:
#         ef:1a:82:e4:f0:f8:f1:a7:16:69:b7:db:a9:61:3c:9f:f5:31:
#         cb:e4:00:46:c2:2f:74:b1:b1:d7:81:ee:a8:26:95:bc:88:af:
#         4c:35:07:2a:02:ca:78:14:6d:47:2b:40:56:e9:cb:2a:60:a1:
#         67:03:a0:ce:8c:bc:b0:72:67:c4:31:ce:db:34:e5:25:03:60:
#         25:7b:71:98:e4:c0:1b:2b:5f:74:42:d2:4b:c5:59:08:07:87:
#         be:c5:c3:7f:e7:96:d9:e1:dc:28:97:d6:8f:05:e3:f5:9b:4e:
#         ca:1d:50:47:05:53:b0:ca:39:e7:85:a0:89:c1:05:3b:01:37:
#         d3:3f:49:e2:77:eb:23:c8:88:66:3b:3d:39:76:21:46:f1:ec:
#         5f:23:b8:eb:a2:66:75:74:c1:40:f7:d8:68:9a:93:e2:2d:a9:
#         2e:bd:1c:a3:1e:c8:74:c6:a4:2d:7a:20:ab:3b:b8:b0:46:fd:
#         6f:dd:5f:52:55:75:62:f0:97:a0:7c:d7:38:fd:25:df:cd:a0:
#         9b:10:cf:8b:b8:38:5e:5e:c5:b4:a6:02:36:a1:1e:5f:1c:cf:
#         e2:96:9d:29:aa:fd:98:ae:52:e1:f3:41:52:fb:a9:2e:72:96:
#         9f:27:e3:aa:73:7d:f8:1a:23:66:7b:3b:ab:65:b0:32:01:4b:
#         15:3e:3d:a2:4f:0c:2b:35:a2:c6:d9:67:12:35:30:cd:76:2e:
#         16:b3:99:9e:4d:4f:4e:2d:3b:34:43:e1:9a:0e:0d:a4:66:97:
#         ba:d2:1c:4a:4c:2c:2a:8b:8b:81:4f:71:1a:a9:dd:5c:7b:7b:
#         08:c5:00:0d:37:40:e3:7c:7b:54:5f:2f:85:5f:76:f6:f7:a7:
#         b0:1c:57:56:c1:72:e8:ad:a2:af:8d:33:49:ba:1f:8a:dc:e6:
#         74:7c:60:86:6f:87:97:7b

# Nothing in here at the present time

404 Not Found
[ LogOut ]