Update to CKBI 2.7 from NSS 3.23 with legacy modifications

This commit is contained in:
Kai Engert 2016-03-16 18:25:23 +01:00
parent 199d06cb4e
commit 53674928a5
4 changed files with 339 additions and 1883 deletions

View File

@ -36,10 +36,10 @@ Name: ca-certificates
# to have increasing version numbers. However, the new scheme will work,
# because all future versions will start with 2013 or larger.)
Version: 2015.2.6
Version: 2016.2.7
# for Rawhide, please always use release >= 2
# for Fedora release branches, please use release < 2 (1.0, 1.1, ...)
Release: 3%{?dist}
Release: 2%{?dist}
License: Public Domain
Group: System Environment/Base
@ -376,6 +376,9 @@ fi
%changelog
* Wed Mar 16 2016 Kai Engert <kaie@redhat.com> - 2016.2.7-2
- Update to CKBI 2.7 from NSS 3.23 with legacy modifications
* Wed Feb 03 2016 Fedora Release Engineering <releng@fedoraproject.org> - 2015.2.6-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild

File diff suppressed because it is too large Load Diff

View File

@ -1,5 +1,5 @@
--- certdata-2.6.txt 2015-10-29 18:42:57.474411069 +0100
+++ certdata.txt 2015-11-23 17:00:44.364039599 +0100
--- certdata.txt-27-org 2016-03-14 18:53:17.807241580 +0100
+++ certdata.txt-27-fedora 2016-03-16 16:55:49.177234051 +0100
@@ -23,100 +23,515 @@
# CKA_SUBJECT DER+base64 (varies)
# CKA_ID byte array (varies)
@ -680,26 +680,26 @@
CKA_TRUST_STEP_UP_APPROVED CK_BBOOL CK_FALSE
#
# Certificate "Verisign Class 1 Public Primary Certification Authority - G2"
# Certificate "Verisign Class 2 Public Primary Certification Authority - G2"
#
# Issuer: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 1 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Serial Number:4c:c7:ea:aa:98:3e:71:d3:93:10:f8:3d:3a:89:91:92
# Subject: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 1 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Issuer: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 2 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Serial Number:00:b9:2f:60:cc:88:9f:a1:7a:46:09:b8:5b:70:6c:8a:af
# Subject: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 2 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Not Valid Before: Mon May 18 00:00:00 1998
# Not Valid After : Tue Aug 01 23:59:59 2028
# Fingerprint (MD5): DB:23:3D:F9:69:FA:4B:B9:95:80:44:73:5E:7D:41:83
# Fingerprint (SHA1): 27:3E:E1:24:57:FD:C4:F9:0C:55:E8:2B:56:16:7F:62:F5:32:E5:47
# Fingerprint (MD5): 2D:BB:E5:25:D3:D1:65:82:3A:B7:0E:FA:E6:EB:E2:E1
# Fingerprint (SHA1): B3:EA:C4:47:76:C9:C8:1C:EA:F2:9D:95:B6:CC:A0:08:1B:67:EC:9D
CKA_CLASS CK_OBJECT_CLASS CKO_CERTIFICATE
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "Verisign Class 1 Public Primary Certification Authority - G2"
CKA_LABEL UTF8 "Verisign Class 2 Public Primary Certification Authority - G2"
CKA_CERTIFICATE_TYPE CK_CERTIFICATE_TYPE CKC_X_509
CKA_SUBJECT MULTILINE_OCTAL
\060\201\301\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\027\060\025\006\003\125\004\012\023\016\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\061\074\060\072\006\003\125
\004\013\023\063\103\154\141\163\163\040\061\040\120\165\142\154
\004\013\023\063\103\154\141\163\163\040\062\040\120\165\142\154
\151\143\040\120\162\151\155\141\162\171\040\103\145\162\164\151
\146\151\143\141\164\151\157\156\040\101\165\164\150\157\162\151
\164\171\040\055\040\107\062\061\072\060\070\006\003\125\004\013
@ -715,7 +715,7 @@
\060\201\301\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\027\060\025\006\003\125\004\012\023\016\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\061\074\060\072\006\003\125
\004\013\023\063\103\154\141\163\163\040\061\040\120\165\142\154
\004\013\023\063\103\154\141\163\163\040\062\040\120\165\142\154
\151\143\040\120\162\151\155\141\162\171\040\103\145\162\164\151
\146\151\143\141\164\151\157\156\040\101\165\164\150\157\162\151
\164\171\040\055\040\107\062\061\072\060\070\006\003\125\004\013
@ -724,7 +724,7 @@
\141\165\164\150\157\162\151\172\145\144\040\165\163\145\040\157
\156\154\171\061\037\060\035\006\003\125\004\013\023\026\126\145
\162\151\123\151\147\156\040\124\162\165\163\164\040\116\145\164
@@ -578,100 +999,103 @@
@@ -431,100 +852,103 @@
\005\005\000\003\201\201\000\162\056\371\177\321\361\161\373\304
\236\366\305\136\121\212\100\230\270\150\370\233\034\203\330\342
\235\275\377\355\241\346\146\352\057\011\364\312\327\352\245\053
@ -783,110 +783,6 @@
CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_STEP_UP_APPROVED CK_BBOOL CK_FALSE
#
# Certificate "Verisign Class 3 Public Primary Certification Authority - G2"
#
# Issuer: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 3 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Serial Number:7d:d9:fe:07:cf:a8:1e:b7:10:79:67:fb:a7:89:34:c6
# Subject: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 3 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Not Valid Before: Mon May 18 00:00:00 1998
# Not Valid After : Tue Aug 01 23:59:59 2028
# Fingerprint (MD5): A2:33:9B:4C:74:78:73:D4:6C:E7:C1:F3:8D:CB:5C:E9
# Fingerprint (SHA1): 85:37:1C:A6:E5:50:14:3D:CE:28:03:47:1B:DE:3A:09:E8:F8:77:0F
CKA_CLASS CK_OBJECT_CLASS CKO_CERTIFICATE
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "Verisign Class 3 Public Primary Certification Authority - G2"
CKA_CERTIFICATE_TYPE CK_CERTIFICATE_TYPE CKC_X_509
CKA_SUBJECT MULTILINE_OCTAL
\060\201\301\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\027\060\025\006\003\125\004\012\023\016\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\061\074\060\072\006\003\125
\004\013\023\063\103\154\141\163\163\040\063\040\120\165\142\154
\151\143\040\120\162\151\155\141\162\171\040\103\145\162\164\151
\146\151\143\141\164\151\157\156\040\101\165\164\150\157\162\151
\164\171\040\055\040\107\062\061\072\060\070\006\003\125\004\013
\023\061\050\143\051\040\061\071\071\070\040\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\040\055\040\106\157\162\040
\141\165\164\150\157\162\151\172\145\144\040\165\163\145\040\157
\156\154\171\061\037\060\035\006\003\125\004\013\023\026\126\145
\162\151\123\151\147\156\040\124\162\165\163\164\040\116\145\164
\167\157\162\153
END
CKA_ID UTF8 "0"
CKA_ISSUER MULTILINE_OCTAL
\060\201\301\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\027\060\025\006\003\125\004\012\023\016\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\061\074\060\072\006\003\125
\004\013\023\063\103\154\141\163\163\040\063\040\120\165\142\154
\151\143\040\120\162\151\155\141\162\171\040\103\145\162\164\151
\146\151\143\141\164\151\157\156\040\101\165\164\150\157\162\151
\164\171\040\055\040\107\062\061\072\060\070\006\003\125\004\013
\023\061\050\143\051\040\061\071\071\070\040\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\040\055\040\106\157\162\040
\141\165\164\150\157\162\151\172\145\144\040\165\163\145\040\157
\156\154\171\061\037\060\035\006\003\125\004\013\023\026\126\145
\162\151\123\151\147\156\040\124\162\165\163\164\040\116\145\164
@@ -725,100 +1149,103 @@
\005\000\003\201\201\000\121\115\315\276\134\313\230\031\234\025
\262\001\071\170\056\115\017\147\160\160\231\306\020\132\224\244
\123\115\124\155\053\257\015\135\100\213\144\323\327\356\336\126
\141\222\137\246\304\035\020\141\066\323\054\047\074\350\051\011
\271\021\144\164\314\265\163\237\034\110\251\274\141\001\356\342
\027\246\014\343\100\010\073\016\347\353\104\163\052\232\361\151
\222\357\161\024\303\071\254\161\247\221\011\157\344\161\006\263
\272\131\127\046\171\000\366\370\015\242\063\060\050\324\252\130
\240\235\235\151\221\375
END
# Trust for Certificate "Verisign Class 3 Public Primary Certification Authority - G2"
# Issuer: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 3 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Serial Number:7d:d9:fe:07:cf:a8:1e:b7:10:79:67:fb:a7:89:34:c6
# Subject: OU=VeriSign Trust Network,OU="(c) 1998 VeriSign, Inc. - For authorized use only",OU=Class 3 Public Primary Certification Authority - G2,O="VeriSign, Inc.",C=US
# Not Valid Before: Mon May 18 00:00:00 1998
# Not Valid After : Tue Aug 01 23:59:59 2028
# Fingerprint (MD5): A2:33:9B:4C:74:78:73:D4:6C:E7:C1:F3:8D:CB:5C:E9
# Fingerprint (SHA1): 85:37:1C:A6:E5:50:14:3D:CE:28:03:47:1B:DE:3A:09:E8:F8:77:0F
CKA_CLASS CK_OBJECT_CLASS CKO_NSS_TRUST
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "Verisign Class 3 Public Primary Certification Authority - G2"
CKA_CERT_SHA1_HASH MULTILINE_OCTAL
\205\067\034\246\345\120\024\075\316\050\003\107\033\336\072\011
\350\370\167\017
END
CKA_CERT_MD5_HASH MULTILINE_OCTAL
\242\063\233\114\164\170\163\324\154\347\301\363\215\313\134\351
END
CKA_ISSUER MULTILINE_OCTAL
\060\201\301\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\027\060\025\006\003\125\004\012\023\016\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\061\074\060\072\006\003\125
\004\013\023\063\103\154\141\163\163\040\063\040\120\165\142\154
\151\143\040\120\162\151\155\141\162\171\040\103\145\162\164\151
\146\151\143\141\164\151\157\156\040\101\165\164\150\157\162\151
\164\171\040\055\040\107\062\061\072\060\070\006\003\125\004\013
\023\061\050\143\051\040\061\071\071\070\040\126\145\162\151\123
\151\147\156\054\040\111\156\143\056\040\055\040\106\157\162\040
\141\165\164\150\157\162\151\172\145\144\040\165\163\145\040\157
\156\154\171\061\037\060\035\006\003\125\004\013\023\026\126\145
\162\151\123\151\147\156\040\124\162\165\163\164\040\116\145\164
\167\157\162\153
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\020\175\331\376\007\317\250\036\267\020\171\147\373\247\211
\064\306
END
+LEGACY_CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_STEP_UP_APPROVED CK_BBOOL CK_FALSE
#
# Certificate "GlobalSign Root CA"
#
@ -932,7 +828,7 @@
\055\163\141\061\020\060\016\006\003\125\004\013\023\007\122\157
\157\164\040\103\101\061\033\060\031\006\003\125\004\003\023\022
\107\154\157\142\141\154\123\151\147\156\040\122\157\157\164\040
@@ -994,100 +1421,520 @@
@@ -700,100 +1124,520 @@
\333\335\161\064\032\301\124\332\106\077\340\323\052\253\155\124
\042\365\072\142\315\040\157\272\051\211\327\335\221\356\323\134
\242\076\241\133\101\365\337\345\144\103\055\351\325\071\253\322
@ -1453,7 +1349,7 @@
\002\021\000\213\133\165\126\204\124\205\013\000\317\257\070\110
\316\261\244
END
@@ -1598,100 +2445,274 @@
@@ -1304,100 +2148,274 @@
\040\103\145\162\164\151\146\151\143\141\164\151\157\156\040\101
\165\164\150\157\162\151\164\171\040\055\040\107\063
END
@ -1728,7 +1624,7 @@
CKA_VALUE MULTILINE_OCTAL
\060\202\004\052\060\202\003\022\240\003\002\001\002\002\004\070
\143\336\370\060\015\006\011\052\206\110\206\367\015\001\001\005
@@ -2000,100 +3021,103 @@
@@ -1706,100 +2724,103 @@
\305\310\303\141\002\003\001\000\001\243\146\060\144\060\021\006
\011\140\206\110\001\206\370\102\001\001\004\004\003\002\000\007
\060\017\006\003\125\035\023\001\001\377\004\005\060\003\001\001
@ -1832,7 +1728,7 @@
\006\003\125\004\003\023\035\105\161\165\151\146\141\170\040\123
\145\143\165\162\145\040\145\102\165\163\151\156\145\163\163\040
\103\101\055\061\060\036\027\015\071\071\060\066\062\061\060\064
@@ -2116,100 +3140,103 @@
@@ -1822,100 +2843,103 @@
\022\173\376\217\246\003\002\003\001\000\001\243\146\060\144\060
\021\006\011\140\206\110\001\206\370\102\001\001\004\004\003\002
\000\007\060\017\006\003\125\035\023\001\001\377\004\005\060\003
@ -1936,315 +1832,3 @@
\060\022\006\003\125\004\012\023\013\101\144\144\124\162\165\163
\164\040\101\102\061\035\060\033\006\003\125\004\013\023\024\101
\144\144\124\162\165\163\164\040\124\124\120\040\116\145\164\167
@@ -6682,100 +7709,103 @@
\164\164\160\163\072\057\057\167\167\167\056\156\145\164\154\157
\143\153\056\156\145\164\057\144\157\143\163\040\157\162\040\142
\171\040\145\055\155\141\151\154\040\141\164\040\143\160\163\100
\156\145\164\154\157\143\153\056\156\145\164\056\060\015\006\011
\052\206\110\206\367\015\001\001\004\005\000\003\201\201\000\004
\333\256\214\027\257\370\016\220\061\116\315\076\011\300\155\072
\260\370\063\114\107\114\343\165\210\020\227\254\260\070\025\221
\306\051\226\314\041\300\155\074\245\164\317\330\202\245\071\303
\145\343\102\160\273\042\220\343\175\333\065\166\341\240\265\332
\237\160\156\223\032\060\071\035\060\333\056\343\174\262\221\262
\321\067\051\372\271\326\027\134\107\117\343\035\070\353\237\325
\173\225\250\050\236\025\112\321\321\320\053\000\227\240\342\222
\066\053\143\254\130\001\153\063\051\120\206\203\361\001\110
END
# Trust for Certificate "NetLock Business (Class B) Root"
# Issuer: CN=NetLock Uzleti (Class B) Tanusitvanykiado,OU=Tanusitvanykiadok,O=NetLock Halozatbiztonsagi Kft.,L=Budapest,C=HU
# Serial Number: 105 (0x69)
# Subject: CN=NetLock Uzleti (Class B) Tanusitvanykiado,OU=Tanusitvanykiadok,O=NetLock Halozatbiztonsagi Kft.,L=Budapest,C=HU
# Not Valid Before: Thu Feb 25 14:10:22 1999
# Not Valid After : Wed Feb 20 14:10:22 2019
# Fingerprint (MD5): 39:16:AA:B9:6A:41:E1:14:69:DF:9E:6C:3B:72:DC:B6
# Fingerprint (SHA1): 87:9F:4B:EE:05:DF:98:58:3B:E3:60:D6:33:E7:0D:3F:FE:98:71:AF
CKA_CLASS CK_OBJECT_CLASS CKO_NSS_TRUST
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "NetLock Business (Class B) Root"
CKA_CERT_SHA1_HASH MULTILINE_OCTAL
\207\237\113\356\005\337\230\130\073\343\140\326\063\347\015\077
\376\230\161\257
END
CKA_CERT_MD5_HASH MULTILINE_OCTAL
\071\026\252\271\152\101\341\024\151\337\236\154\073\162\334\266
END
CKA_ISSUER MULTILINE_OCTAL
\060\201\231\061\013\060\011\006\003\125\004\006\023\002\110\125
\061\021\060\017\006\003\125\004\007\023\010\102\165\144\141\160
\145\163\164\061\047\060\045\006\003\125\004\012\023\036\116\145
\164\114\157\143\153\040\110\141\154\157\172\141\164\142\151\172
\164\157\156\163\141\147\151\040\113\146\164\056\061\032\060\030
\006\003\125\004\013\023\021\124\141\156\165\163\151\164\166\141
\156\171\153\151\141\144\157\153\061\062\060\060\006\003\125\004
\003\023\051\116\145\164\114\157\143\153\040\125\172\154\145\164
\151\040\050\103\154\141\163\163\040\102\051\040\124\141\156\165
\163\151\164\166\141\156\171\153\151\141\144\157
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\001\151
END
+LEGACY_CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_STEP_UP_APPROVED CK_BBOOL CK_FALSE
#
# Certificate "NetLock Express (Class C) Root"
#
# Issuer: CN=NetLock Expressz (Class C) Tanusitvanykiado,OU=Tanusitvanykiadok,O=NetLock Halozatbiztonsagi Kft.,L=Budapest,C=HU
# Serial Number: 104 (0x68)
# Subject: CN=NetLock Expressz (Class C) Tanusitvanykiado,OU=Tanusitvanykiadok,O=NetLock Halozatbiztonsagi Kft.,L=Budapest,C=HU
# Not Valid Before: Thu Feb 25 14:08:11 1999
# Not Valid After : Wed Feb 20 14:08:11 2019
# Fingerprint (MD5): 4F:EB:F1:F0:70:C2:80:63:5D:58:9F:DA:12:3C:A9:C4
# Fingerprint (SHA1): E3:92:51:2F:0A:CF:F5:05:DF:F6:DE:06:7F:75:37:E1:65:EA:57:4B
CKA_CLASS CK_OBJECT_CLASS CKO_CERTIFICATE
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "NetLock Express (Class C) Root"
CKA_CERTIFICATE_TYPE CK_CERTIFICATE_TYPE CKC_X_509
CKA_SUBJECT MULTILINE_OCTAL
\060\201\233\061\013\060\011\006\003\125\004\006\023\002\110\125
\061\021\060\017\006\003\125\004\007\023\010\102\165\144\141\160
\145\163\164\061\047\060\045\006\003\125\004\012\023\036\116\145
\164\114\157\143\153\040\110\141\154\157\172\141\164\142\151\172
\164\157\156\163\141\147\151\040\113\146\164\056\061\032\060\030
\006\003\125\004\013\023\021\124\141\156\165\163\151\164\166\141
\156\171\153\151\141\144\157\153\061\064\060\062\006\003\125\004
\003\023\053\116\145\164\114\157\143\153\040\105\170\160\162\145
\163\163\172\040\050\103\154\141\163\163\040\103\051\040\124\141
\156\165\163\151\164\166\141\156\171\153\151\141\144\157
END
CKA_ID UTF8 "0"
CKA_ISSUER MULTILINE_OCTAL
\060\201\233\061\013\060\011\006\003\125\004\006\023\002\110\125
\061\021\060\017\006\003\125\004\007\023\010\102\165\144\141\160
\145\163\164\061\047\060\045\006\003\125\004\012\023\036\116\145
\164\114\157\143\153\040\110\141\154\157\172\141\164\142\151\172
\164\157\156\163\141\147\151\040\113\146\164\056\061\032\060\030
\006\003\125\004\013\023\021\124\141\156\165\163\151\164\166\141
\156\171\153\151\141\144\157\153\061\064\060\062\006\003\125\004
\003\023\053\116\145\164\114\157\143\153\040\105\170\160\162\145
\163\163\172\040\050\103\154\141\163\163\040\103\051\040\124\141
\156\165\163\151\164\166\141\156\171\153\151\141\144\157
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\001\150
END
CKA_VALUE MULTILINE_OCTAL
@@ -6855,100 +7885,103 @@
\145\164\154\157\143\153\056\156\145\164\057\144\157\143\163\040
\157\162\040\142\171\040\145\055\155\141\151\154\040\141\164\040
\143\160\163\100\156\145\164\154\157\143\153\056\156\145\164\056
\060\015\006\011\052\206\110\206\367\015\001\001\004\005\000\003
\201\201\000\020\255\177\327\014\062\200\012\330\206\361\171\230
\265\255\324\315\263\066\304\226\110\301\134\315\232\331\005\056
\237\276\120\353\364\046\024\020\055\324\146\027\370\236\301\047
\375\361\355\344\173\113\240\154\265\253\232\127\160\246\355\240
\244\355\056\365\375\374\275\376\115\067\010\014\274\343\226\203
\042\365\111\033\177\113\053\264\124\301\200\174\231\116\035\320
\214\356\320\254\345\222\372\165\126\376\144\240\023\217\270\270
\026\235\141\005\147\200\310\320\330\245\007\002\064\230\004\215
\063\004\324
END
# Trust for Certificate "NetLock Express (Class C) Root"
# Issuer: CN=NetLock Expressz (Class C) Tanusitvanykiado,OU=Tanusitvanykiadok,O=NetLock Halozatbiztonsagi Kft.,L=Budapest,C=HU
# Serial Number: 104 (0x68)
# Subject: CN=NetLock Expressz (Class C) Tanusitvanykiado,OU=Tanusitvanykiadok,O=NetLock Halozatbiztonsagi Kft.,L=Budapest,C=HU
# Not Valid Before: Thu Feb 25 14:08:11 1999
# Not Valid After : Wed Feb 20 14:08:11 2019
# Fingerprint (MD5): 4F:EB:F1:F0:70:C2:80:63:5D:58:9F:DA:12:3C:A9:C4
# Fingerprint (SHA1): E3:92:51:2F:0A:CF:F5:05:DF:F6:DE:06:7F:75:37:E1:65:EA:57:4B
CKA_CLASS CK_OBJECT_CLASS CKO_NSS_TRUST
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "NetLock Express (Class C) Root"
CKA_CERT_SHA1_HASH MULTILINE_OCTAL
\343\222\121\057\012\317\365\005\337\366\336\006\177\165\067\341
\145\352\127\113
END
CKA_CERT_MD5_HASH MULTILINE_OCTAL
\117\353\361\360\160\302\200\143\135\130\237\332\022\074\251\304
END
CKA_ISSUER MULTILINE_OCTAL
\060\201\233\061\013\060\011\006\003\125\004\006\023\002\110\125
\061\021\060\017\006\003\125\004\007\023\010\102\165\144\141\160
\145\163\164\061\047\060\045\006\003\125\004\012\023\036\116\145
\164\114\157\143\153\040\110\141\154\157\172\141\164\142\151\172
\164\157\156\163\141\147\151\040\113\146\164\056\061\032\060\030
\006\003\125\004\013\023\021\124\141\156\165\163\151\164\166\141
\156\171\153\151\141\144\157\153\061\064\060\062\006\003\125\004
\003\023\053\116\145\164\114\157\143\153\040\105\170\160\162\145
\163\163\172\040\050\103\154\141\163\163\040\103\051\040\124\141
\156\165\163\151\164\166\141\156\171\153\151\141\144\157
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\001\150
END
+LEGACY_CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_STEP_UP_APPROVED CK_BBOOL CK_FALSE
#
# Certificate "XRamp Global CA Root"
#
# Issuer: CN=XRamp Global Certification Authority,O=XRamp Security Services Inc,OU=www.xrampsecurity.com,C=US
# Serial Number:50:94:6c:ec:18:ea:d5:9c:4d:d5:97:ef:75:8f:a0:ad
# Subject: CN=XRamp Global Certification Authority,O=XRamp Security Services Inc,OU=www.xrampsecurity.com,C=US
# Not Valid Before: Mon Nov 01 17:14:04 2004
# Not Valid After : Mon Jan 01 05:37:19 2035
# Fingerprint (MD5): A1:0B:44:B3:CA:10:D8:00:6E:9D:0F:D8:0F:92:0A:D1
# Fingerprint (SHA1): B8:01:86:D1:EB:9C:86:A5:41:04:CF:30:54:F3:4C:52:B7:E5:58:C6
CKA_CLASS CK_OBJECT_CLASS CKO_CERTIFICATE
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "XRamp Global CA Root"
CKA_CERTIFICATE_TYPE CK_CERTIFICATE_TYPE CKC_X_509
CKA_SUBJECT MULTILINE_OCTAL
\060\201\202\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\036\060\034\006\003\125\004\013\023\025\167\167\167\056\170
\162\141\155\160\163\145\143\165\162\151\164\171\056\143\157\155
\061\044\060\042\006\003\125\004\012\023\033\130\122\141\155\160
\040\123\145\143\165\162\151\164\171\040\123\145\162\166\151\143
\145\163\040\111\156\143\061\055\060\053\006\003\125\004\003\023
\044\130\122\141\155\160\040\107\154\157\142\141\154\040\103\145
\162\164\151\146\151\143\141\164\151\157\156\040\101\165\164\150
\157\162\151\164\171
END
CKA_ID UTF8 "0"
CKA_ISSUER MULTILINE_OCTAL
\060\201\202\061\013\060\011\006\003\125\004\006\023\002\125\123
\061\036\060\034\006\003\125\004\013\023\025\167\167\167\056\170
\162\141\155\160\163\145\143\165\162\151\164\171\056\143\157\155
\061\044\060\042\006\003\125\004\012\023\033\130\122\141\155\160
\040\123\145\143\165\162\151\164\171\040\123\145\162\166\151\143
\145\163\040\111\156\143\061\055\060\053\006\003\125\004\003\023
\044\130\122\141\155\160\040\107\154\157\142\141\154\040\103\145
\162\164\151\146\151\143\141\164\151\157\156\040\101\165\164\150
\157\162\151\164\171
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\020\120\224\154\354\030\352\325\234\115\325\227\357\165\217
\240\255
END
CKA_VALUE MULTILINE_OCTAL
\060\202\004\060\060\202\003\030\240\003\002\001\002\002\020\120
@@ -15659,100 +16692,103 @@
\005\252\354\003\037\170\177\236\223\271\232\000\252\043\175\326
\254\205\242\143\105\307\162\047\314\364\114\306\165\161\322\071
\357\117\102\360\165\337\012\220\306\216\040\157\230\017\370\254
\043\137\160\051\066\244\311\206\347\261\232\040\313\123\245\205
\347\075\276\175\232\376\044\105\063\334\166\025\355\017\242\161
\144\114\145\056\201\150\105\247\002\003\001\000\001\060\015\006
\011\052\206\110\206\367\015\001\001\005\005\000\003\201\201\000
\020\162\122\251\005\024\031\062\010\101\360\305\153\012\314\176
\017\041\031\315\344\147\334\137\251\033\346\312\350\163\235\042
\330\230\156\163\003\141\221\305\174\260\105\100\156\104\235\215
\260\261\226\164\141\055\015\251\105\322\244\222\052\326\232\165
\227\156\077\123\375\105\231\140\035\250\053\114\371\136\247\011
\330\165\060\327\322\145\140\075\147\326\110\125\165\151\077\221
\365\110\013\107\151\042\151\202\226\276\311\310\070\206\112\172
\054\163\031\110\151\116\153\174\145\277\017\374\160\316\210\220
END
# Trust for Certificate "Verisign Class 3 Public Primary Certification Authority"
# Issuer: OU=Class 3 Public Primary Certification Authority,O="VeriSign, Inc.",C=US
# Serial Number:3c:91:31:cb:1f:f6:d0:1b:0e:9a:b8:d0:44:bf:12:be
# Subject: OU=Class 3 Public Primary Certification Authority,O="VeriSign, Inc.",C=US
# Not Valid Before: Mon Jan 29 00:00:00 1996
# Not Valid After : Wed Aug 02 23:59:59 2028
# Fingerprint (MD5): EF:5A:F1:33:EF:F1:CD:BB:51:02:EE:12:14:4B:96:C4
# Fingerprint (SHA1): A1:DB:63:93:91:6F:17:E4:18:55:09:40:04:15:C7:02:40:B0:AE:6B
CKA_CLASS CK_OBJECT_CLASS CKO_NSS_TRUST
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "Verisign Class 3 Public Primary Certification Authority"
CKA_CERT_SHA1_HASH MULTILINE_OCTAL
\241\333\143\223\221\157\027\344\030\125\011\100\004\025\307\002
\100\260\256\153
END
CKA_CERT_MD5_HASH MULTILINE_OCTAL
\357\132\361\063\357\361\315\273\121\002\356\022\024\113\226\304
END
CKA_ISSUER MULTILINE_OCTAL
\060\137\061\013\060\011\006\003\125\004\006\023\002\125\123\061
\027\060\025\006\003\125\004\012\023\016\126\145\162\151\123\151
\147\156\054\040\111\156\143\056\061\067\060\065\006\003\125\004
\013\023\056\103\154\141\163\163\040\063\040\120\165\142\154\151
\143\040\120\162\151\155\141\162\171\040\103\145\162\164\151\146
\151\143\141\164\151\157\156\040\101\165\164\150\157\162\151\164
\171
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\020\074\221\061\313\037\366\320\033\016\232\270\320\104\277
\022\276
END
+LEGACY_CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
+LEGACY_CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_EMAIL_PROTECTION CK_TRUST CKT_NSS_TRUSTED_DELEGATOR
CKA_TRUST_CODE_SIGNING CK_TRUST CKT_NSS_MUST_VERIFY_TRUST
CKA_TRUST_STEP_UP_APPROVED CK_BBOOL CK_FALSE
#
# Certificate "Microsec e-Szigno Root CA 2009"
#
# Issuer: E=info@e-szigno.hu,CN=Microsec e-Szigno Root CA 2009,O=Microsec Ltd.,L=Budapest,C=HU
# Serial Number:00:c2:7e:43:04:4e:47:3f:19
# Subject: E=info@e-szigno.hu,CN=Microsec e-Szigno Root CA 2009,O=Microsec Ltd.,L=Budapest,C=HU
# Not Valid Before: Tue Jun 16 11:30:18 2009
# Not Valid After : Sun Dec 30 11:30:18 2029
# Fingerprint (MD5): F8:49:F4:03:BC:44:2D:83:BE:48:69:7D:29:64:FC:B1
# Fingerprint (SHA1): 89:DF:74:FE:5C:F4:0F:4A:80:F9:E3:37:7D:54:DA:91:E1:01:31:8E
CKA_CLASS CK_OBJECT_CLASS CKO_CERTIFICATE
CKA_TOKEN CK_BBOOL CK_TRUE
CKA_PRIVATE CK_BBOOL CK_FALSE
CKA_MODIFIABLE CK_BBOOL CK_FALSE
CKA_LABEL UTF8 "Microsec e-Szigno Root CA 2009"
CKA_CERTIFICATE_TYPE CK_CERTIFICATE_TYPE CKC_X_509
CKA_SUBJECT MULTILINE_OCTAL
\060\201\202\061\013\060\011\006\003\125\004\006\023\002\110\125
\061\021\060\017\006\003\125\004\007\014\010\102\165\144\141\160
\145\163\164\061\026\060\024\006\003\125\004\012\014\015\115\151
\143\162\157\163\145\143\040\114\164\144\056\061\047\060\045\006
\003\125\004\003\014\036\115\151\143\162\157\163\145\143\040\145
\055\123\172\151\147\156\157\040\122\157\157\164\040\103\101\040
\062\060\060\071\061\037\060\035\006\011\052\206\110\206\367\015
\001\011\001\026\020\151\156\146\157\100\145\055\163\172\151\147
\156\157\056\150\165
END
CKA_ID UTF8 "0"
CKA_ISSUER MULTILINE_OCTAL
\060\201\202\061\013\060\011\006\003\125\004\006\023\002\110\125
\061\021\060\017\006\003\125\004\007\014\010\102\165\144\141\160
\145\163\164\061\026\060\024\006\003\125\004\012\014\015\115\151
\143\162\157\163\145\143\040\114\164\144\056\061\047\060\045\006
\003\125\004\003\014\036\115\151\143\162\157\163\145\143\040\145
\055\123\172\151\147\156\157\040\122\157\157\164\040\103\101\040
\062\060\060\071\061\037\060\035\006\011\052\206\110\206\367\015
\001\011\001\026\020\151\156\146\157\100\145\055\163\172\151\147
\156\157\056\150\165
END
CKA_SERIAL_NUMBER MULTILINE_OCTAL
\002\011\000\302\176\103\004\116\107\077\031
END
CKA_VALUE MULTILINE_OCTAL
\060\202\004\012\060\202\002\362\240\003\002\001\002\002\011\000
\302\176\103\004\116\107\077\031\060\015\006\011\052\206\110\206

View File

@ -18,7 +18,7 @@
#define NSS_BUILTINS_CRYPTOKI_VERSION_MAJOR 2
#define NSS_BUILTINS_CRYPTOKI_VERSION_MINOR 20
/* These version numbers detail the changes
/* These version numbers detail the changes
* to the list of trusted certificates.
*
* The NSS_BUILTINS_LIBRARY_VERSION_MINOR macro needs to be bumped
@ -45,14 +45,14 @@
* of the comment in the CK_VERSION type definition.
*/
#define NSS_BUILTINS_LIBRARY_VERSION_MAJOR 2
#define NSS_BUILTINS_LIBRARY_VERSION_MINOR 6
#define NSS_BUILTINS_LIBRARY_VERSION "2.6"
#define NSS_BUILTINS_LIBRARY_VERSION_MINOR 7
#define NSS_BUILTINS_LIBRARY_VERSION "2.7"
/* These version numbers detail the semantic changes to the ckfw engine. */
#define NSS_BUILTINS_HARDWARE_VERSION_MAJOR 1
#define NSS_BUILTINS_HARDWARE_VERSION_MINOR 0
/* These version numbers detail the semantic changes to ckbi itself
/* These version numbers detail the semantic changes to ckbi itself
* (new PKCS #11 objects), etc. */
#define NSS_BUILTINS_FIRMWARE_VERSION_MAJOR 1
#define NSS_BUILTINS_FIRMWARE_VERSION_MINOR 0