Add ca2016
authorHeiko Schlittermann <hs@schlittermann.de>
Mon, 09 Nov 2015 12:38:35 +0100
changeset 3 8415791a8363
parent 2 5f79f3885ccc
child 4 b06a43f85dfb
Add ca2016
.hgignore
Makefile
ca-crt.pem
ca.crt
ca2-crt.pem
ca2.1-crt.pem
ca2016-crt.pem
debian/changelog
debian/postinst
debian/postrm
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/.hgignore	Mon Nov 09 12:38:35 2015 +0100
@@ -0,0 +1,3 @@
+syntax:glob
+debian/
+*-stamp
--- a/Makefile	Fri Dec 29 13:33:09 2006 +0000
+++ b/Makefile	Mon Nov 09 12:38:35 2015 +0100
@@ -1,7 +1,7 @@
 
 prefix = /usr/local
 share = $(prefix)/share
-cert = $(share)/ca-certificates/schlittermann-ca.crt
+certbase = $(share)/ca-certificates/schlittermann
 
 .PHONY:	all install clean uninstall
 
@@ -9,9 +9,13 @@
 clean:
 
 install:	all
-		install -d -m 0755 $(DESTDIR)`dirname $(cert)`
+		install -d -m 0755 $(DESTDIR)`dirname $(certbase)`
+		set -e ;\
 		umask 0644 ;\
-		openssl x509 -in ca.crt > $(DESTDIR)$(cert)
+		openssl x509 -in ca-crt.pem >$(DESTDIR)$(certbase)-ca.crt ;\
+		for p in *-crt.pem; do \
+		    openssl x509 -in $$p > $(DESTDIR)$(certbase)-$$p; \
+		done
 
 uninstall:
 		-rm -f $(DESTDIR)$(cert)
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/ca-crt.pem	Mon Nov 09 12:38:35 2015 +0100
@@ -0,0 +1,68 @@
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number:
+            a9:08:b2:d7:76:b4:ce:92
+        Signature Algorithm: md5WithRSAEncryption
+        Issuer: C=DE, ST=Saxony, L=Dresden, O=schlittermann -- internet & unix support, OU=CA, CN=Heiko Schlittermann/emailAddress=hs@schlittermann.de
+        Validity
+            Not Before: Jan 19 18:36:30 2005 GMT
+            Not After : Jan  2 18:36:30 2016 GMT
+        Subject: C=DE, ST=Saxony, L=Dresden, O=schlittermann -- internet & unix support, OU=CA, CN=Heiko Schlittermann/emailAddress=hs@schlittermann.de
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:e2:1e:85:56:0b:2e:44:19:25:94:1a:06:04:3a:
+                    46:4e:ac:d6:01:72:e4:10:db:8e:db:7e:b5:70:da:
+                    b7:09:bd:7a:1e:62:2b:d7:3e:32:fe:4f:83:bf:68:
+                    e1:aa:eb:77:4e:50:f4:64:42:82:09:2d:cc:59:61:
+                    7c:65:b6:99:93:5b:85:7e:7a:83:bd:01:10:8d:51:
+                    bd:ee:90:5e:b4:38:a8:ad:2d:25:1f:f2:7a:32:2d:
+                    1a:d5:a2:74:7e:07:a4:06:7f:0a:91:db:31:29:81:
+                    3a:41:7d:92:18:f7:6a:2f:f2:8d:0a:9b:ad:e0:de:
+                    3c:d5:fa:c3:d4:9f:61:d6:2d
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Subject Key Identifier: 
+                49:14:1B:C0:73:8A:19:4B:BA:E7:2C:49:A6:C8:AD:A8:0C:87:58:55
+            X509v3 Authority Key Identifier: 
+                keyid:49:14:1B:C0:73:8A:19:4B:BA:E7:2C:49:A6:C8:AD:A8:0C:87:58:55
+                DirName:/C=DE/ST=Saxony/L=Dresden/O=schlittermann -- internet & unix support/OU=CA/CN=Heiko Schlittermann/emailAddress=hs@schlittermann.de
+                serial:A9:08:B2:D7:76:B4:CE:92
+
+            X509v3 Basic Constraints: 
+                CA:TRUE
+    Signature Algorithm: md5WithRSAEncryption
+        a3:15:62:62:b3:e8:ae:84:3b:6e:af:ec:61:03:66:49:09:3a:
+        17:25:ed:86:55:3d:57:ff:d9:3e:6a:a3:a9:63:6d:55:ce:ea:
+        20:1f:bd:dd:93:a8:ed:94:30:66:8b:7a:c2:16:38:b0:10:f6:
+        b6:49:1a:05:ad:23:2b:3e:4c:10:dc:fa:0e:9a:de:5b:9c:77:
+        dd:85:9c:20:d0:fc:a4:52:07:df:ce:80:96:01:4b:3c:db:85:
+        11:62:f7:3a:22:fb:b0:cc:9c:b0:65:70:51:e3:9a:70:3a:6c:
+        10:48:b2:30:f1:39:88:b0:3f:e7:28:8f:f0:22:48:87:18:b2:
+        62:ec
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
--- a/ca.crt	Fri Dec 29 13:33:09 2006 +0000
+++ /dev/null	Thu Jan 01 00:00:00 1970 +0000
@@ -1,68 +0,0 @@
-Certificate:
-    Data:
-        Version: 3 (0x2)
-        Serial Number:
-            a9:08:b2:d7:76:b4:ce:92
-        Signature Algorithm: md5WithRSAEncryption
-        Issuer: C=DE, ST=Saxony, L=Dresden, O=schlittermann -- internet & unix support, OU=CA, CN=Heiko Schlittermann/emailAddress=hs@schlittermann.de
-        Validity
-            Not Before: Jan 19 18:36:30 2005 GMT
-            Not After : Jan  2 18:36:30 2016 GMT
-        Subject: C=DE, ST=Saxony, L=Dresden, O=schlittermann -- internet & unix support, OU=CA, CN=Heiko Schlittermann/emailAddress=hs@schlittermann.de
-        Subject Public Key Info:
-            Public Key Algorithm: rsaEncryption
-            RSA Public Key: (1024 bit)
-                Modulus (1024 bit):
-                    00:e2:1e:85:56:0b:2e:44:19:25:94:1a:06:04:3a:
-                    46:4e:ac:d6:01:72:e4:10:db:8e:db:7e:b5:70:da:
-                    b7:09:bd:7a:1e:62:2b:d7:3e:32:fe:4f:83:bf:68:
-                    e1:aa:eb:77:4e:50:f4:64:42:82:09:2d:cc:59:61:
-                    7c:65:b6:99:93:5b:85:7e:7a:83:bd:01:10:8d:51:
-                    bd:ee:90:5e:b4:38:a8:ad:2d:25:1f:f2:7a:32:2d:
-                    1a:d5:a2:74:7e:07:a4:06:7f:0a:91:db:31:29:81:
-                    3a:41:7d:92:18:f7:6a:2f:f2:8d:0a:9b:ad:e0:de:
-                    3c:d5:fa:c3:d4:9f:61:d6:2d
-                Exponent: 65537 (0x10001)
-        X509v3 extensions:
-            X509v3 Subject Key Identifier: 
-                49:14:1B:C0:73:8A:19:4B:BA:E7:2C:49:A6:C8:AD:A8:0C:87:58:55
-            X509v3 Authority Key Identifier: 
-                keyid:49:14:1B:C0:73:8A:19:4B:BA:E7:2C:49:A6:C8:AD:A8:0C:87:58:55
-                DirName:/C=DE/ST=Saxony/L=Dresden/O=schlittermann -- internet & unix support/OU=CA/CN=Heiko Schlittermann/emailAddress=hs@schlittermann.de
-                serial:A9:08:B2:D7:76:B4:CE:92
-
-            X509v3 Basic Constraints: 
-                CA:TRUE
-    Signature Algorithm: md5WithRSAEncryption
-        a3:15:62:62:b3:e8:ae:84:3b:6e:af:ec:61:03:66:49:09:3a:
-        17:25:ed:86:55:3d:57:ff:d9:3e:6a:a3:a9:63:6d:55:ce:ea:
-        20:1f:bd:dd:93:a8:ed:94:30:66:8b:7a:c2:16:38:b0:10:f6:
-        b6:49:1a:05:ad:23:2b:3e:4c:10:dc:fa:0e:9a:de:5b:9c:77:
-        dd:85:9c:20:d0:fc:a4:52:07:df:ce:80:96:01:4b:3c:db:85:
-        11:62:f7:3a:22:fb:b0:cc:9c:b0:65:70:51:e3:9a:70:3a:6c:
-        10:48:b2:30:f1:39:88:b0:3f:e7:28:8f:f0:22:48:87:18:b2:
-        62:ec
------BEGIN CERTIFICATE-----
-MIIEATCCA2qgAwIBAgIJAKkIstd2tM6SMA0GCSqGSIb3DQEBBAUAMIGyMQswCQYD
-VQQGEwJERTEPMA0GA1UECBMGU2F4b255MRAwDgYDVQQHEwdEcmVzZGVuMTEwLwYD
-VQQKFChzY2hsaXR0ZXJtYW5uIC0tIGludGVybmV0ICYgdW5peCBzdXBwb3J0MQsw
-CQYDVQQLEwJDQTEcMBoGA1UEAxMTSGVpa28gU2NobGl0dGVybWFubjEiMCAGCSqG
-SIb3DQEJARYTaHNAc2NobGl0dGVybWFubi5kZTAeFw0wNTAxMTkxODM2MzBaFw0x
-NjAxMDIxODM2MzBaMIGyMQswCQYDVQQGEwJERTEPMA0GA1UECBMGU2F4b255MRAw
-DgYDVQQHEwdEcmVzZGVuMTEwLwYDVQQKFChzY2hsaXR0ZXJtYW5uIC0tIGludGVy
-bmV0ICYgdW5peCBzdXBwb3J0MQswCQYDVQQLEwJDQTEcMBoGA1UEAxMTSGVpa28g
-U2NobGl0dGVybWFubjEiMCAGCSqGSIb3DQEJARYTaHNAc2NobGl0dGVybWFubi5k
-ZTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEA4h6FVgsuRBkllBoGBDpGTqzW
-AXLkENuO2361cNq3Cb16HmIr1z4y/k+Dv2jhqut3TlD0ZEKCCS3MWWF8ZbaZk1uF
-fnqDvQEQjVG97pBetDiorS0lH/J6Mi0a1aJ0fgekBn8KkdsxKYE6QX2SGPdqL/KN
-Cput4N481frD1J9h1i0CAwEAAaOCARswggEXMB0GA1UdDgQWBBRJFBvAc4oZS7rn
-LEmmyK2oDIdYVTCB5wYDVR0jBIHfMIHcgBRJFBvAc4oZS7rnLEmmyK2oDIdYVaGB
-uKSBtTCBsjELMAkGA1UEBhMCREUxDzANBgNVBAgTBlNheG9ueTEQMA4GA1UEBxMH
-RHJlc2RlbjExMC8GA1UEChQoc2NobGl0dGVybWFubiAtLSBpbnRlcm5ldCAmIHVu
-aXggc3VwcG9ydDELMAkGA1UECxMCQ0ExHDAaBgNVBAMTE0hlaWtvIFNjaGxpdHRl
-cm1hbm4xIjAgBgkqhkiG9w0BCQEWE2hzQHNjaGxpdHRlcm1hbm4uZGWCCQCpCLLX
-drTOkjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBAUAA4GBAKMVYmKz6K6EO26v
-7GEDZkkJOhcl7YZVPVf/2T5qo6ljbVXO6iAfvd2TqO2UMGaLesIWOLAQ9rZJGgWt
-Iys+TBDc+g6a3lucd92FnCDQ/KRSB9/OgJYBSzzbhRFi9zoi+7DMnLBlcFHjmnA6
-bBBIsjDxOYiwP+coj/AiSIcYsmLs
------END CERTIFICATE-----
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/ca2-crt.pem	Mon Nov 09 12:38:35 2015 +0100
@@ -0,0 +1,38 @@
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/ca2.1-crt.pem	Mon Nov 09 12:38:35 2015 +0100
@@ -0,0 +1,93 @@
+Certificate:
+    Data:
+        Version: 3 (0x2)
+        Serial Number: 447 (0x1bf)
+        Signature Algorithm: sha1WithRSAEncryption
+        Issuer: C=DE, ST=Saxony, L=Dresden, O=schlittermann - internet & unix support, OU=Certificate Authority 2, CN=CA2
+        Validity
+            Not Before: Oct 15 10:28:07 2010 GMT
+            Not After : Oct 15 10:28:07 2011 GMT
+        Subject: C=DE, ST=Saxony, O=schlittermann - internet & unix support, OU=Certificate Authority 2.1, CN=CA2.1
+        Subject Public Key Info:
+            Public Key Algorithm: rsaEncryption
+            RSA Public Key: (1024 bit)
+                Modulus (1024 bit):
+                    00:c1:1b:27:b0:9f:09:f8:57:df:cc:04:c6:2a:50:
+                    3a:37:3a:35:54:bf:9d:4f:05:25:bd:b3:c8:82:78:
+                    66:f8:a7:47:2c:44:58:c2:8b:ca:90:42:94:81:15:
+                    1d:6a:fb:b2:b6:7c:b9:5c:99:c7:bf:48:db:34:06:
+                    3c:0c:af:b4:d2:a0:93:50:5e:67:54:72:3e:c9:c7:
+                    c8:a4:54:b3:8d:46:95:4a:fe:fa:1f:da:d8:19:f1:
+                    23:1d:da:aa:99:90:3f:7c:c5:bd:1d:15:04:0d:ab:
+                    8a:ea:23:7d:d6:55:e4:5b:de:18:01:46:a2:a5:2b:
+                    86:bb:b2:6f:e3:29:ad:25:55
+                Exponent: 65537 (0x10001)
+        X509v3 extensions:
+            X509v3 Subject Key Identifier: 
+                2B:F5:35:29:D1:32:8B:66:E3:8D:8C:3F:21:7D:7F:47:22:D0:65:27
+            X509v3 Authority Key Identifier: 
+                keyid:93:32:78:F5:98:C3:46:B1:FF:45:1B:C8:E9:DC:48:52:47:32:4A:7F
+                DirName:/C=DE/ST=Saxony/L=Dresden/O=schlittermann - internet & unix support/OU=Certificate Authority 2/CN=CA2
+                serial:B5:50:D2:9F:07:57:B1:F3
+
+            X509v3 Basic Constraints: 
+                CA:TRUE
+    Signature Algorithm: sha1WithRSAEncryption
+        1f:6a:01:82:c5:38:96:94:95:df:99:64:42:df:82:4b:76:a9:
+        54:52:c8:f7:34:ad:38:4d:c4:f3:35:59:71:6e:79:fa:ac:39:
+        86:14:af:eb:d8:68:08:ad:57:91:63:48:b4:fd:43:a6:ea:5f:
+        98:d4:38:f0:3e:d6:d8:b6:24:bc:01:58:b1:33:be:74:72:38:
+        80:1c:ff:cb:7e:86:b7:49:b6:cc:6f:1e:23:a9:40:0d:51:7c:
+        ea:de:b3:d3:2d:df:67:15:86:df:59:2f:13:a4:c5:9a:f7:47:
+        b5:4a:f7:7b:09:b3:ee:9e:b0:2f:de:05:e4:6a:2d:67:92:65:
+        5e:2f:b5:fc:d8:e0:27:3a:27:bd:3f:2a:55:4a:86:e2:8f:85:
+        7b:31:51:d4:b6:a4:9e:2d:9f:75:96:26:15:c1:8c:a3:72:2e:
+        20:c3:48:1e:65:fd:8b:6b:a6:c2:aa:97:f8:cb:2c:18:28:6c:
+        2c:2e:b6:a6:00:1d:f9:93:c6:cf:d1:b9:5d:43:c2:7b:6d:b8:
+        17:5a:9c:ec:18:0e:96:a7:09:22:09:2c:2a:7e:91:9b:17:d6:
+        47:d7:13:da:f8:69:81:fb:98:b1:79:b7:bc:14:a9:f2:37:5a:
+        0f:98:ef:1b:15:aa:40:d8:df:1b:b9:84:93:b3:78:78:c5:7a:
+        55:d2:5c:58:19:4b:54:cc:4c:98:9e:2c:1a:63:eb:19:8c:58:
+        53:1f:5a:e8:e7:e8:09:aa:d5:e8:41:db:c9:0e:68:6c:1f:0e:
+        38:f6:1a:cd:c2:62:01:78:7f:51:ad:88:1b:5a:bd:e0:24:ea:
+        3a:cc:e3:0d:35:a9:fa:20:ff:57:42:c1:de:78:1d:af:5f:14:
+        d7:69:ca:80:b4:a1:ba:60:29:bd:4e:62:3d:0d:98:1d:b9:2d:
+        e2:14:ec:38:49:33:96:e2:14:00:5c:9a:61:87:82:0c:72:d3:
+        60:98:fc:35:32:45:b3:f1:b9:84:38:21:d0:47:4e:26:ef:3b:
+        1d:e0:20:51:2e:5a:c4:20:bf:ff:7e:33:49:d4:17:27:36:05:
+        40:b6:16:9b:49:60:4a:1c:3d:1f:5c:e5:04:51:91:d5:38:a3:
+        d4:04:99:7c:62:58:6e:2e:e3:d1:75:0d:3a:2a:55:d6:76:3c:
+        1d:25:d6:29:40:64:07:60:53:eb:ca:ba:31:8f:5c:40:be:3f:
+        a9:f4:10:3e:85:a4:56:1a:0b:e3:35:d9:51:b0:b9:a6:70:65:
+        ce:81:63:98:c0:a9:e3:a4:d2:07:55:20:d7:62:a9:d1:43:15:
+        5c:df:19:25:8b:25:90:c9:11:b4:f6:80:d2:97:b6:27:d1:bd:
+        b7:40:a9:7b:66:ad:49:a0
+-----BEGIN CERTIFICATE-----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=
+-----END CERTIFICATE-----
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/ca2016-crt.pem	Mon Nov 09 12:38:35 2015 +0100
@@ -0,0 +1,35 @@
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
--- a/debian/changelog	Fri Dec 29 13:33:09 2006 +0000
+++ b/debian/changelog	Mon Nov 09 12:38:35 2015 +0100
@@ -1,3 +1,9 @@
+ca-certificates-schlittermann (0.4-1) stable; urgency=low
+
+  * added CA2 and CA2.1 
+
+ -- Heiko Schlittermann <hs@schlittermann.de>  Fri, 15 Oct 2010 17:13:15 +0200
+
 ca-certificates-schlittermann (0.3-1) stable; urgency=low
 
   * all archs
--- a/debian/postinst	Fri Dec 29 13:33:09 2006 +0000
+++ b/debian/postinst	Mon Nov 09 12:38:35 2015 +0100
@@ -19,7 +19,7 @@
 
 CONF=/etc/ca-certificates.conf
 DIR=/usr/share/ca-certificates
-CRT=schlittermann-ca.crt
+CRTS=$DIR/schlittermann-ca*
 
 hash() { openssl x509 -noout -in "$1" -hash; }
 
@@ -28,16 +28,20 @@
 	# zuerst mal gucken, ob's nicht zufällig schon in /etc/ssl/certs
 	# mit rumliegt von früher
 
-	HASH=`hash $DIR/$CRT`
-	echo "$DIR/$CRT: $HASH"
+	for CRT in $CRTS; do
+	    CRT=$(basename $CRT)
+	    HASH=`hash $DIR/$CRT`
+	    echo "$DIR/$CRT: $HASH"
 
-	for p in /etc/ssl/certs/*.crt; do
-	    test -e "$p" || { rm -f "$p"; continue; }
-	    test "$HASH" = `hash "$p"` || continue
-	    test -L "$p" || { rm -v "$p"; continue; }
-	    test `readlink "$p"` = "$DIR/$CRT" || { rm "$p"; continue; }
+	    for p in /etc/ssl/certs/*.crt; do
+		test -e "$p" || { rm -f "$p"; continue; }
+		test "$HASH" = `hash "$p"` || continue
+		test -L "$p" || { rm -v "$p"; continue; }
+		test `readlink "$p"` = "$DIR/$CRT" || { rm "$p"; continue; }
+	    done
+	    grep -q "$CRT" "$CONF" || echo "$CRT" >> "$CONF"
 	done
-	grep -q "$CRT" "$CONF" || echo "$CRT" >> "$CONF"
+
 	update-ca-certificates
     ;;
 
--- a/debian/postrm	Fri Dec 29 13:33:09 2006 +0000
+++ b/debian/postrm	Mon Nov 09 12:38:35 2015 +0100
@@ -19,7 +19,7 @@
 # the debian-policy package
 
 CONF=/etc/ca-certificates.conf
-CRT=schlittermann-ca.crt
+CRT="schlittermann-ca*.crt"
 
 case "$1" in
     purge)