| OLD | NEW | 
|---|
|  | (Empty) | 
| 1 Has an invalid signature |  | 
| 2 $ openssl asn1parse -i < [OCSP RESPONSE] |  | 
| 3     0:d=0  hl=3 l= 170 cons: SEQUENCE |  | 
| 4     3:d=1  hl=2 l=   1 prim:  ENUMERATED        :00 |  | 
| 5     6:d=1  hl=3 l= 164 cons:  cont [ 0 ] |  | 
| 6     9:d=2  hl=3 l= 161 cons:   SEQUENCE |  | 
| 7    12:d=3  hl=2 l=   9 prim:    OBJECT            :Basic OCSP Response |  | 
| 8    23:d=3  hl=3 l= 147 prim:    OCTET STRING |  | 
| 9     0:d=0  hl=3 l= 144 cons:      SEQUENCE |  | 
| 10     3:d=1  hl=2 l= 120 cons:       SEQUENCE |  | 
| 11     5:d=2  hl=2 l=  20 cons:        cont [ 1 ] |  | 
| 12     7:d=3  hl=2 l=  18 cons:         SEQUENCE |  | 
| 13     9:d=4  hl=2 l=  16 cons:          SET |  | 
| 14    11:d=5  hl=2 l=  14 cons:           SEQUENCE |  | 
| 15    13:d=6  hl=2 l=   3 prim:            OBJECT            :commonName |  | 
| 16    18:d=6  hl=2 l=   7 prim:            PRINTABLESTRING   :Test CA |  | 
| 17    27:d=2  hl=2 l=  15 prim:        GENERALIZEDTIME   :20160304164002Z |  | 
| 18    44:d=2  hl=2 l=  79 cons:        SEQUENCE |  | 
| 19    46:d=3  hl=2 l=  77 cons:         SEQUENCE |  | 
| 20    48:d=4  hl=2 l=  56 cons:          SEQUENCE |  | 
| 21    50:d=5  hl=2 l=   7 cons:           SEQUENCE |  | 
| 22    52:d=6  hl=2 l=   5 prim:            OBJECT            :sha1 |  | 
| 23    59:d=5  hl=2 l=  20 prim:           OCTET STRING      [HEX DUMP]:02FF75DA24DE
     8ADD150FAB689DCCE6E6636D0901 |  | 
| 24    81:d=5  hl=2 l=  20 prim:           OCTET STRING      [HEX DUMP]:7735ACB4DFE7
     B9DC8259381B7EEDF0882B973534 |  | 
| 25   103:d=5  hl=2 l=   1 prim:           INTEGER           :03 |  | 
| 26   106:d=4  hl=2 l=   0 prim:          cont [ 0 ] |  | 
| 27   108:d=4  hl=2 l=  15 prim:          GENERALIZEDTIME   :20160304164002Z |  | 
| 28   125:d=1  hl=2 l=  13 cons:       SEQUENCE |  | 
| 29   127:d=2  hl=2 l=   9 prim:        OBJECT            :sha1WithRSAEncryption |  | 
| 30   138:d=2  hl=2 l=   0 prim:        NULL |  | 
| 31   140:d=1  hl=2 l=   5 prim:       BIT STRING |  | 
| 32 -----BEGIN OCSP RESPONSE----- |  | 
| 33 MIGqCgEAoIGkMIGhBgkrBgEFBQcwAQEEgZMwgZAweKEUMBIxEDAOBgNVBAMTB1Rlc3QgQ0EYDzI |  | 
| 34 wMTYwMzA0MTY0MDAyWjBPME0wODAHBgUrDgMCGgQUAv912iTeit0VD6tonczm5mNtCQEEFHc1rL |  | 
| 35 Tf57ncglk4G37t8IgrlzU0AgEDgAAYDzIwMTYwMzA0MTY0MDAyWjANBgkqhkiG9w0BAQUFAAMFA |  | 
| 36 N6tvu8= |  | 
| 37 -----END OCSP RESPONSE----- |  | 
| 38 |  | 
| 39 $ openssl asn1parse -i < [CA CERTIFICATE] |  | 
| 40     0:d=0  hl=4 l= 408 cons: SEQUENCE |  | 
| 41     4:d=1  hl=4 l= 257 cons:  SEQUENCE |  | 
| 42     8:d=2  hl=2 l=   3 cons:   cont [ 0 ] |  | 
| 43    10:d=3  hl=2 l=   1 prim:    INTEGER           :02 |  | 
| 44    13:d=2  hl=2 l=   1 prim:   INTEGER           :00 |  | 
| 45    16:d=2  hl=2 l=  13 cons:   SEQUENCE |  | 
| 46    18:d=3  hl=2 l=   9 prim:    OBJECT            :sha1WithRSAEncryption |  | 
| 47    29:d=3  hl=2 l=   0 prim:    NULL |  | 
| 48    31:d=2  hl=2 l=  18 cons:   SEQUENCE |  | 
| 49    33:d=3  hl=2 l=  16 cons:    SET |  | 
| 50    35:d=4  hl=2 l=  14 cons:     SEQUENCE |  | 
| 51    37:d=5  hl=2 l=   3 prim:      OBJECT            :commonName |  | 
| 52    42:d=5  hl=2 l=   7 prim:      PRINTABLESTRING   :Test CA |  | 
| 53    51:d=2  hl=2 l=  30 cons:   SEQUENCE |  | 
| 54    53:d=3  hl=2 l=  13 prim:    UTCTIME           :160304214002Z |  | 
| 55    68:d=3  hl=2 l=  13 prim:    UTCTIME           :260302214002Z |  | 
| 56    83:d=2  hl=2 l=  18 cons:   SEQUENCE |  | 
| 57    85:d=3  hl=2 l=  16 cons:    SET |  | 
| 58    87:d=4  hl=2 l=  14 cons:     SEQUENCE |  | 
| 59    89:d=5  hl=2 l=   3 prim:      OBJECT            :commonName |  | 
| 60    94:d=5  hl=2 l=   7 prim:      PRINTABLESTRING   :Test CA |  | 
| 61   103:d=2  hl=3 l= 159 cons:   SEQUENCE |  | 
| 62   106:d=3  hl=2 l=  13 cons:    SEQUENCE |  | 
| 63   108:d=4  hl=2 l=   9 prim:     OBJECT            :rsaEncryption |  | 
| 64   119:d=4  hl=2 l=   0 prim:     NULL |  | 
| 65   121:d=3  hl=3 l= 141 prim:    BIT STRING |  | 
| 66   265:d=1  hl=2 l=  13 cons:  SEQUENCE |  | 
| 67   267:d=2  hl=2 l=   9 prim:   OBJECT            :sha1WithRSAEncryption |  | 
| 68   278:d=2  hl=2 l=   0 prim:   NULL |  | 
| 69   280:d=1  hl=3 l= 129 prim:  BIT STRING |  | 
| 70 -----BEGIN CA CERTIFICATE----- |  | 
| 71 MIIBmDCCAQGgAwIBAgIBADANBgkqhkiG9w0BAQUFADASMRAwDgYDVQQDEwdUZXN0IENBMB4XDTE |  | 
| 72 2MDMwNDIxNDAwMloXDTI2MDMwMjIxNDAwMlowEjEQMA4GA1UEAxMHVGVzdCBDQTCBnzANBgkqhk |  | 
| 73 iG9w0BAQEFAAOBjQAwgYkCgYEAxN8IR7ey6jTVUyS6kkCqt2x9/mxnRz77Py6Kwdm3P9jqIwqrC |  | 
| 74 RuqAXfC5QcyeyUaXKCc49bmL7cy64UowTrnIjyqiYOX0VO6t3ZdKcy2/8U2uwdL5oZPlBkpI6mU |  | 
| 75 7vl+3rKbKkNPNPLv8apwFF1zIHUm1tund152PlMAWQu6rmUCAwEAATANBgkqhkiG9w0BAQUFAAO |  | 
| 76 BgQCYaWdjhx0ARGhs1Dj1N6RXIf0U669nJcx0XkuC/yL5Ji16cjI1s76arVjGK7OPZ011x4/gNM |  | 
| 77 RLj31wyxKsfg3qQdlYkVl89CwtA+KxghQoRhD8cSWY1aOQcm4hM11HE5t5VyNbheSOBVwoOb8wO |  | 
| 78 cgZFERfCNWbcx2a3WYVJCGoUw== |  | 
| 79 -----END CA CERTIFICATE----- |  | 
| 80 |  | 
| 81 $ openssl asn1parse -i < [CERTIFICATE] |  | 
| 82     0:d=0  hl=4 l= 410 cons: SEQUENCE |  | 
| 83     4:d=1  hl=4 l= 259 cons:  SEQUENCE |  | 
| 84     8:d=2  hl=2 l=   3 cons:   cont [ 0 ] |  | 
| 85    10:d=3  hl=2 l=   1 prim:    INTEGER           :02 |  | 
| 86    13:d=2  hl=2 l=   1 prim:   INTEGER           :03 |  | 
| 87    16:d=2  hl=2 l=  13 cons:   SEQUENCE |  | 
| 88    18:d=3  hl=2 l=   9 prim:    OBJECT            :sha1WithRSAEncryption |  | 
| 89    29:d=3  hl=2 l=   0 prim:    NULL |  | 
| 90    31:d=2  hl=2 l=  18 cons:   SEQUENCE |  | 
| 91    33:d=3  hl=2 l=  16 cons:    SET |  | 
| 92    35:d=4  hl=2 l=  14 cons:     SEQUENCE |  | 
| 93    37:d=5  hl=2 l=   3 prim:      OBJECT            :commonName |  | 
| 94    42:d=5  hl=2 l=   7 prim:      PRINTABLESTRING   :Test CA |  | 
| 95    51:d=2  hl=2 l=  30 cons:   SEQUENCE |  | 
| 96    53:d=3  hl=2 l=  13 prim:    UTCTIME           :160304214002Z |  | 
| 97    68:d=3  hl=2 l=  13 prim:    UTCTIME           :260302214002Z |  | 
| 98    83:d=2  hl=2 l=  20 cons:   SEQUENCE |  | 
| 99    85:d=3  hl=2 l=  18 cons:    SET |  | 
| 100    87:d=4  hl=2 l=  16 cons:     SEQUENCE |  | 
| 101    89:d=5  hl=2 l=   3 prim:      OBJECT            :commonName |  | 
| 102    94:d=5  hl=2 l=   9 prim:      PRINTABLESTRING   :Test Cert |  | 
| 103   105:d=2  hl=3 l= 159 cons:   SEQUENCE |  | 
| 104   108:d=3  hl=2 l=  13 cons:    SEQUENCE |  | 
| 105   110:d=4  hl=2 l=   9 prim:     OBJECT            :rsaEncryption |  | 
| 106   121:d=4  hl=2 l=   0 prim:     NULL |  | 
| 107   123:d=3  hl=3 l= 141 prim:    BIT STRING |  | 
| 108   267:d=1  hl=2 l=  13 cons:  SEQUENCE |  | 
| 109   269:d=2  hl=2 l=   9 prim:   OBJECT            :sha1WithRSAEncryption |  | 
| 110   280:d=2  hl=2 l=   0 prim:   NULL |  | 
| 111   282:d=1  hl=3 l= 129 prim:  BIT STRING |  | 
| 112 -----BEGIN CERTIFICATE----- |  | 
| 113 MIIBmjCCAQOgAwIBAgIBAzANBgkqhkiG9w0BAQUFADASMRAwDgYDVQQDEwdUZXN0IENBMB4XDTE |  | 
| 114 2MDMwNDIxNDAwMloXDTI2MDMwMjIxNDAwMlowFDESMBAGA1UEAxMJVGVzdCBDZXJ0MIGfMA0GCS |  | 
| 115 qGSIb3DQEBAQUAA4GNADCBiQKBgQCynU7qbknY0uuN2uYvVj9/UeLaZ+GTuIICagyaSvwhDdEFI |  | 
| 116 ieSELYv5c3TlrIzAzuMlx78eOuhyxyL5SqDe1+YrD4tsHTMoWhSsmjRmKHpxfVScPwgBvnZ3i5d |  | 
| 117 jS/iLKlvoTnH8qPE2QC+B2GgoU8HFEaVg5jI1NACo5gh75ZAawIDAQABMA0GCSqGSIb3DQEBBQU |  | 
| 118 AA4GBAHSL52wcNMvGbcbSI3fZd9ckcx2Kgor0/FZOcjWFaI877E9ok7TGk1uwy5QsTcRZdEuCsl |  | 
| 119 3Ph9kpZYkiB6JIGrEzvmE5Nmv8VmYtEAX4F1JX6WPETlRR95fA4D4WmHNb2bxBy8bP9wLpced2V |  | 
| 120 42JEeS36VZs/yhLupvaLx9PcRwM |  | 
| 121 -----END CERTIFICATE----- |  | 
| OLD | NEW | 
|---|