[ removed DOE Grids CA certs 12d0dac8.* 1c3f2ca8.* 2013-01-28 dsimmel ]
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
[ Replacement DOE Grids CRL URL, May 2009 (mccreary) ]
Retrieved from
DOEGrids.tar
DOEGrids.tar.asc
on 01May09. Web server presented certificate w/ subject:
CN = pki1.doegrids.org
OU = hosts
Serial Num = 42:25
from authority:
CN = DOEGrids CA 1
O = DOEGrids CA 1
OU = Certificate Authorities
Valid from 07May07 until 07May2012
Fingerprints:
SHA1 4B:A2:9C:B8:86:8A:87:DD:4A:25:D8:6B:D4:6B:15:11:AB:1D:45:8C
MD5 95:53:C1:1C:45:A9:61:36:96:5B:74:60:F1:01:6A:08
Verified untrusted GPG signature:
dubfwe:~/repo/security/new mccreary$ gpg --verify DOEGrids.tar{.asc,}
gpg: Signature made Fri Mar 27 13:05:00 2009 MDT using RSA key ID 9995D24A
gpg: Good signature from "Dhiva "
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 209B 63C2 1FC5 35BE 94F7 2C71 5BE6 31C1 9995 D24A
Updated 1c3f2ca8.crl_url:
dubfwe:~/repo/security/certificates mccreary$ diff 1c3f2ca8.crl_url ../new/doegrids/1c3f2ca8.crl_url
1c1
< http://pki1.doegrids.org/CRL/1c3f2ca8.r0
- ---
> http://crl.doegrids.org/1c3f2ca8/1c3f2ca8.r0
Verified that other files have no significant differences from current tarball:
1c3f2ca8.0
dubfwe:~/repo/security/certificates mccreary$ openssl x509 -subject -fingerprint -sha1 -noout -in 1c3f2ca8.0
subject= /DC=org/DC=DOEGrids/OU=Certificate Authorities/CN=DOEGrids CA 1
SHA1 Fingerprint=2D:7C:01:FE:A8:40:6A:D0:2E:80:F5:08:E4:D2:EB:A3:A8:84:F8:90
MD5 Fingerprint=F3:76:00:EC:D0:8E:DB:20:BC:2B:E0:06:60:24:C4:9F
1c3f2ca8.signing_policy
dubfwe:~/repo/security/certificates mccreary$ diff 1c3f2ca8.signing_policy ../new/doegrids/1c3f2ca8.signing_policy
1c1
< # $Id: 1c3f2ca8.signing_policy,v 1.3 2006/08/23 23:07:04 dhiva Exp $
- ---
> # $Id: 1c3f2ca8.signing_policy,v 1.1 2009/03/27 18:31:33 dhiva Exp $
40a41,43
> # Revision 1.1 2009/03/27 18:31:33 dhiva
> # *** empty log message ***
> #
59c62
< # $Id: 1c3f2ca8.signing_policy,v 1.3 2006/08/23 23:07:04 dhiva Exp $ Included
- ---
> # $Id: 1c3f2ca8.signing_policy,v 1.1 2009/03/27 18:31:33 dhiva Exp $ Included
d1b603c3.0
dubfwe:~/repo/security/certificates mccreary$ openssl x509 -subject -fingerprint -sha1 -noout -in d1b603c3.0
subject= /DC=net/DC=ES/O=ESnet/OU=Certificate Authorities/CN=ESnet Root CA 1
SHA1 Fingerprint=F2:63:97:A8:B2:D5:1F:94:CC:0F:06:5A:FE:76:5D:F3:CF:28:81:A0
MD5 Fingerprint=32:AC:21:5D:DE:43:73:E9:3A:EE:90:BC:17:C4:8F:36
d1b603c3.crl_url
d1b603c3.signing_policy
dubfwe:~/repo/security/certificates mccreary$ diff d1b603c3.signing_policy ../new/doegrids/d1b603c3.signing_policy
1c1
< # $Id: d1b603c3.signing_policy,v 1.5 2006/04/20 20:23:16 helm Exp $
- ---
> # $Id: d1b603c3.signing_policy,v 1.1 2009/03/27 18:31:33 dhiva Exp $
34a35,37
> # Revision 1.1 2009/03/27 18:31:33 dhiva
> # *** empty log message ***
> #
52c55
< # $Id: d1b603c3.signing_policy,v 1.5 2006/04/20 20:23:16 helm Exp $ included for all these files
- ---
> # $Id: d1b603c3.signing_policy,v 1.1 2009/03/27 18:31:33 dhiva Exp $ included for all these files
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (Darwin)
iD8DBQFJ+2V9YjEf42hR7yYRApzdAJ9a4xq8oLzGZG+9U3Q0OCrdLm8NiwCfRFvu
BWX1ikzv2jgdMZc+i8MFJgg=
=eVq6
-----END PGP SIGNATURE-----