Статус: Активный участник
Группы: Участники
Зарегистрирован: 16.10.2013(UTC) Сообщений: 56
Сказал(а) «Спасибо»: 3 раз Поблагодарили: 2 раз в 1 постах
|
Автор: afev В этом посте можно узнать, какой target сертификат в builderParams? и что в this.signatureProvider? Есть ли для target сертификата необходимые сертификаты в intermCertsAndCrls и корневой в builderParams (trust anchors)? Вот что в buildParams лежит:
Код:
[
[
Trust Anchors: [[
Trusted CA cert: [
[
Version: V3
Subject: CN="Тестовый УЦ ООО \"КРИПТО-ПРО\"", O="ООО \"КРИПТО-ПРО\"", C=RU, EMAILADDRESS=info@cryptopro.ru, L=Москва, ST=77 г. Москва, STREET="ул. Сущёвский вал, д. 18", OID.1.2.643.3.131.1.1=#120C303037373137313037393931, OID.1.2.643.100.1=#120D31303337373030303835343434
Signature Algorithm: 1.2.643.2.2.3, OID = 1.2.643.2.2.3
Key: ru.CryptoPro.JCP.Key.GostPublicKey
Validity: [From: Thu Sep 04 12:13:56 GMT+03:00 2014,
To: Mon Mar 02 07:21:22 GMT+03:00 2020]
Issuer: CN="Тестовый УЦ ООО \"КРИПТО-ПРО\"", O="ООО \"КРИПТО-ПРО\"", C=RU, EMAILADDRESS=info@cryptopro.ru, L=Москва, ST=77 г. Москва, STREET="ул. Сущёвский вал, д. 18", OID.1.2.643.3.131.1.1=#120C303037373137313037393931, OID.1.2.643.100.1=#120D31303337373030303835343434
SerialNumber: [ 4487da57 4993609e 4876f682 7344ff17]
Certificate Extensions: 8
[1]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 2B B2 10 34 66 82 02 AC F0 E1 AA 40 86 78 01 71 +..4f......@.x.q
0010: 45 9D 33 E3 E.3.
]
]
[2]: ObjectId: 1.2.643.100.112 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 82 01 28 30 82 01 24 0C 2B 22 D0 9A D1 80 D0 ...(0..$.+".....
0010: B8 D0 BF D1 82 D0 BE D0 9F D1 80 D0 BE 20 43 53 ............. CS
0020: 50 22 20 28 D0 B2 D0 B5 D1 80 D1 81 D0 B8 D1 8F P" (............
0030: 20 33 2E 36 29 0C 53 22 D0 A3 D0 B4 D0 BE D1 81 3.6).S"........
0040: D1 82 D0 BE D0 B2 D0 B5 D1 80 D1 8F D1 8E D1 89 ................
0050: D0 B8 D0 B9 20 D1 86 D0 B5 D0 BD D1 82 D1 80 20 .... ..........
0060: 22 D0 9A D1 80 D0 B8 D0 BF D1 82 D0 BE D0 9F D1 "...............
0070: 80 D0 BE 20 D0 A3 D0 A6 22 20 D0 B2 D0 B5 D1 80 ... ...." ......
0080: D1 81 D0 B8 D0 B8 20 31 2E 35 0C 4F D0 A1 D0 B5 ...... 1.5.O....
0090: D1 80 D1 82 D0 B8 D1 84 D0 B8 D0 BA D0 B0 D1 82 ................
00A0: 20 D1 81 D0 BE D0 BE D1 82 D0 B2 D0 B5 D1 82 D1 ...............
00B0: 81 D1 82 D0 B2 D0 B8 D1 8F 20 E2 84 96 20 D0 A1 ......... ... ..
00C0: D0 A4 2F 31 32 34 2D 32 32 33 38 20 D0 BE D1 82 ../124-2238 ....
00D0: 20 30 34 2E 31 30 2E 32 30 31 33 0C 4F D0 A1 D0 04.10.2013.O...
00E0: B5 D1 80 D1 82 D0 B8 D1 84 D0 B8 D0 BA D0 B0 D1 ................
00F0: 82 20 D1 81 D0 BE D0 BE D1 82 D0 B2 D0 B5 D1 82 . ..............
0100: D1 81 D1 82 D0 B2 D0 B8 D1 8F 20 E2 84 96 20 D0 .......... ... .
0110: A1 D0 A4 2F 31 32 38 2D 32 33 35 31 20 D0 BE D1 .../128-2351 ...
0120: 82 20 31 35 2E 30 34 2E 32 30 31 34 . 15.04.2014
[3]: ObjectId: 1.2.643.100.111 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 2D 0C 2B 22 D0 9A D1 80 D0 B8 D0 BF D1 82 D0 .-.+"...........
0010: BE D0 9F D1 80 D0 BE 20 43 53 50 22 20 28 D0 B2 ....... CSP" (..
0020: D0 B5 D1 80 D1 81 D0 B8 D1 8F 20 33 2E 36 29 .......... 3.6)
[4]: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[CertificatePolicyId: [1.2.643.100.113.1]
[] ]
[CertificatePolicyId: [1.2.643.100.113.2]
[] ]
[CertificatePolicyId: [2.5.29.32.0]
[] ]
]
[5]: ObjectId: 1.3.6.1.4.1.311.21.2 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 16 04 14 55 20 FE FF BF A3 AD BA 55 6C 67 6F ....U ......Ulgo
0010: 28 52 DA 69 F6 E3 51 4D (R.i..QM
[6]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
DigitalSignature
Non_repudiation
Key_CertSign
Crl_Sign
]
[7]: ObjectId: 1.3.6.1.4.1.311.21.1 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 05 02 03 03 00 03 .......
[8]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]
]
Algorithm: [1.2.643.2.2.3]
Signature:
0000: 57 EF 22 12 B1 F5 44 B8 40 E9 9C B5 5D 1A 2F 63 W."...D.@...]./c
0010: 79 60 02 C9 BC 27 C8 28 4C AF 43 7B A9 E6 3A 8F y`...'.(L.C...:.
0020: 75 7C DE C8 54 2F DF 98 70 17 27 AC 4B AA 00 68 u...T/..p.'.K..h
0030: 6E 54 FB 38 B4 8C 5D D1 EC F6 77 B6 6E 64 47 BA nT.8..]...w.ndG.
]
, [
Trusted CA cert: [
[
Version: V3
Subject: CN="Тестовый УЦ ООО \"КРИПТО-ПРО\"", O="ООО \"КРИПТО-ПРО\"", C=RU, EMAILADDRESS=info@cryptopro.ru, L=Москва, ST=77 г. Москва, STREET="ул. Сущёвский вал, д. 18", OID.1.2.643.3.131.1.1=#120C303037373137313037393931, OID.1.2.643.100.1=#120D31303337373030303835343434
Signature Algorithm: 1.2.643.2.2.3, OID = 1.2.643.2.2.3
Key: ru.CryptoPro.JCP.Key.GostPublicKey
Validity: [From: Thu Sep 04 12:13:56 GMT+03:00 2014,
To: Mon Mar 02 07:21:22 GMT+03:00 2020]
Issuer: CN="Тестовый УЦ ООО \"КРИПТО-ПРО\"", O="ООО \"КРИПТО-ПРО\"", C=RU, EMAILADDRESS=info@cryptopro.ru, L=Москва, ST=77 г. Москва, STREET="ул. Сущёвский вал, д. 18", OID.1.2.643.3.131.1.1=#120C303037373137313037393931, OID.1.2.643.100.1=#120D31303337373030303835343434
SerialNumber: [ 4487da57 4993609e 4876f682 7344ff17]
Certificate Extensions: 8
[1]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 2B B2 10 34 66 82 02 AC F0 E1 AA 40 86 78 01 71 +..4f......@.x.q
0010: 45 9D 33 E3 E.3.
]
]
[2]: ObjectId: 1.2.643.100.112 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 82 01 28 30 82 01 24 0C 2B 22 D0 9A D1 80 D0 ...(0..$.+".....
0010: B8 D0 BF D1 82 D0 BE D0 9F D1 80 D0 BE 20 43 53 ............. CS
0020: 50 22 20 28 D0 B2 D0 B5 D1 80 D1 81 D0 B8 D1 8F P" (............
0030: 20 33 2E 36 29 0C 53 22 D0 A3 D0 B4 D0 BE D1 81 3.6).S"........
0040: D1 82 D0 BE D0 B2 D0 B5 D1 80 D1 8F D1 8E D1 89 ................
0050: D0 B8 D0 B9 20 D1 86 D0 B5 D0 BD D1 82 D1 80 20 .... ..........
0060: 22 D0 9A D1 80 D0 B8 D0 BF D1 82 D0 BE D0 9F D1 "...............
0070: 80 D0 BE 20 D0 A3 D0 A6 22 20 D0 B2 D0 B5 D1 80 ... ...." ......
0080: D1 81 D0 B8 D0 B8 20 31 2E 35 0C 4F D0 A1 D0 B5 ...... 1.5.O....
0090: D1 80 D1 82 D0 B8 D1 84 D0 B8 D0 BA D0 B0 D1 82 ................
00A0: 20 D1 81 D0 BE D0 BE D1 82 D0 B2 D0 B5 D1 82 D1 ...............
00B0: 81 D1 82 D0 B2 D0 B8 D1 8F 20 E2 84 96 20 D0 A1 ......... ... ..
00C0: D0 A4 2F 31 32 34 2D 32 32 33 38 20 D0 BE D1 82 ../124-2238 ....
00D0: 20 30 34 2E 31 30 2E 32 30 31 33 0C 4F D0 A1 D0 04.10.2013.O...
00E0: B5 D1 80 D1 82 D0 B8 D1 84 D0 B8 D0 BA D0 B0 D1 ................
00F0: 82 20 D1 81 D0 BE D0 BE D1 82 D0 B2 D0 B5 D1 82 . ..............
0100: D1 81 D1 82 D0 B2 D0 B8 D1 8F 20 E2 84 96 20 D0 .......... ... .
0110: A1 D0 A4 2F 31 32 38 2D 32 33 35 31 20 D0 BE D1 .../128-2351 ...
0120: 82 20 31 35 2E 30 34 2E 32 30 31 34 . 15.04.2014
[3]: ObjectId: 1.2.643.100.111 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 2D 0C 2B 22 D0 9A D1 80 D0 B8 D0 BF D1 82 D0 .-.+"...........
0010: BE D0 9F D1 80 D0 BE 20 43 53 50 22 20 28 D0 B2 ....... CSP" (..
0020: D0 B5 D1 80 D1 81 D0 B8 D1 8F 20 33 2E 36 29 .......... 3.6)
[4]: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[CertificatePolicyId: [1.2.643.100.113.1]
[] ]
[CertificatePolicyId: [1.2.643.100.113.2]
[] ]
[CertificatePolicyId: [2.5.29.32.0]
[] ]
]
[5]: ObjectId: 1.3.6.1.4.1.311.21.2 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 16 04 14 55 20 FE FF BF A3 AD BA 55 6C 67 6F ....U ......Ulgo
0010: 28 52 DA 69 F6 E3 51 4D (R.i..QM
[6]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
DigitalSignature
Non_repudiation
Key_CertSign
Crl_Sign
]
[7]: ObjectId: 1.3.6.1.4.1.311.21.1 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 05 02 03 03 00 03 .......
[8]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]
]
Algorithm: [1.2.643.2.2.3]
Signature:
0000: 57 EF 22 12 B1 F5 44 B8 40 E9 9C B5 5D 1A 2F 63 W."...D.@...]./c
0010: 79 60 02 C9 BC 27 C8 28 4C AF 43 7B A9 E6 3A 8F y`...'.(L.C...:.
0020: 75 7C DE C8 54 2F DF 98 70 17 27 AC 4B AA 00 68 u...T/..p.'.K..h
0030: 6E 54 FB 38 B4 8C 5D D1 EC F6 77 B6 6E 64 47 BA nT.8..]...w.ndG.
]
, [
Trusted CA cert: [
[
Version: V3
Subject: CN=CRYPTO-PRO Test Center 2, O=CRYPTO-PRO LLC, L=Moscow, C=RU, EMAILADDRESS=support@cryptopro.ru
Signature Algorithm: 1.2.643.2.2.3, OID = 1.2.643.2.2.3
Key: ru.CryptoPro.JCP.Key.GostPublicKey
Validity: [From: Tue Aug 05 16:44:24 GMT+03:00 2014,
To: Mon Aug 05 16:54:03 GMT+03:00 2019]
Issuer: CN=CRYPTO-PRO Test Center 2, O=CRYPTO-PRO LLC, L=Moscow, C=RU, EMAILADDRESS=support@cryptopro.ru
SerialNumber: [ 2b6e3351 fd6eb2ad 48200203 cb5ba141]
Certificate Extensions: 4
[1]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 15 31 7C B0 8D 1A DE 66 D7 15 9C 49 52 97 17 24 .1.....f...IR..$
0010: B9 01 7A 83 ..z.
]
]
[2]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
DigitalSignature
Key_CertSign
Crl_Sign
]
[3]: ObjectId: 1.3.6.1.4.1.311.21.1 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 03 02 01 00 .....
[4]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]
]
Algorithm: [1.2.643.2.2.3]
Signature:
0000: D8 CA 1C 4B E9 61 20 65 47 2C D5 C8 EA 38 88 DE ...K.a eG,...8..
0010: CD EC 71 C8 45 BF BF 9C E5 DE FF 55 5A 77 24 99 ..q.E......UZw$.
0020: ED E0 B9 22 D1 AB E7 F7 4F E6 D0 6F 7B 8F 5A 2A ..."....O..o..Z*
0030: E3 4E E9 64 0D 90 50 32 C1 F1 E3 B4 49 12 57 D5 .N.d..P2....I.W.
]
, [
Trusted CA cert: [
[
Version: V3
Subject: CN=CRYPTO-PRO Test Center 2, O=CRYPTO-PRO LLC, L=Moscow, C=RU, EMAILADDRESS=support@cryptopro.ru
Signature Algorithm: 1.2.643.2.2.3, OID = 1.2.643.2.2.3
Key: ru.CryptoPro.JCP.Key.GostPublicKey
Validity: [From: Tue Aug 05 16:44:24 GMT+03:00 2014,
To: Mon Aug 05 16:54:03 GMT+03:00 2019]
Issuer: CN=CRYPTO-PRO Test Center 2, O=CRYPTO-PRO LLC, L=Moscow, C=RU, EMAILADDRESS=support@cryptopro.ru
SerialNumber: [ 2b6e3351 fd6eb2ad 48200203 cb5ba141]
Certificate Extensions: 4
[1]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 15 31 7C B0 8D 1A DE 66 D7 15 9C 49 52 97 17 24 .1.....f...IR..$
0010: B9 01 7A 83 ..z.
]
]
[2]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
DigitalSignature
Key_CertSign
Crl_Sign
]
[3]: ObjectId: 1.3.6.1.4.1.311.21.1 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 03 02 01 00 .....
[4]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]
]
Algorithm: [1.2.643.2.2.3]
Signature:
0000: D8 CA 1C 4B E9 61 20 65 47 2C D5 C8 EA 38 88 DE ...K.a eG,...8..
0010: CD EC 71 C8 45 BF BF 9C E5 DE FF 55 5A 77 24 99 ..q.E......UZw$.
0020: ED E0 B9 22 D1 AB E7 F7 4F E6 D0 6F 7B 8F 5A 2A ..."....O..o..Z*
0030: E3 4E E9 64 0D 90 50 32 C1 F1 E3 B4 49 12 57 D5 .N.d..P2....I.W.
]
]
Initial Policy OIDs: any
Validity Date: Tue Jun 23 11:54:01 GMT+03:00 2015
Signature Provider: null
Default Revocation Enabled: false
Explicit Policy Required: false
Policy Mapping Inhibited: false
Any Policy Inhibited: false
Policy Qualifiers Rejected: true
Target Cert Constraints: X509CertSelector: [
Serial Number: 565359619038648257913286
Issuer: CN=\"5AB\>2K9\00 \#&\00 \00 \00\" \"\00- \00\",O=\00 \00\" \"\00- \00\",C=RU,1.2.840.113549.1.9.1=#1611696e666f4063727970746f70726f2e7275,L=\>A:20,ST=\007\007\00 3\00.\00 \>A:20,STREET=C\;\00.\00 !CIQ2A:89\00 20\;\00\,\00 4\00.\00 \001\008,1.2.643.3.131.1.1=#120c303037373137313037393931,1.2.643.100.1=#120d31303337373030303835343434
matchAllSubjectAltNames flag: true
]
Certification Path Checkers: [[]]
CertStores: [[java.security.cert.CertStore@353f59b1, java.security.cert.CertStore@350c697f]]
] Maximum Path Length: 6
]
|