spiffe/spire-examples

example certs are expired

Closed this issue · 0 comments

note the Not After : May 12 19:33:47 2023 GMT below

$ echo '''-----BEGIN CERTIFICATE-----
> MIIBzDCCAVOgAwIBAgIJAJM4DhRH0vmuMAoGCCqGSM49BAMEMB4xCzAJBgNVBAYT
> AlVTMQ8wDQYDVQQKDAZTUElGRkUwHhcNMTgwNTEzMTkzMzQ3WhcNMjMwNTEyMTkz
> MzQ3WjAeMQswCQYDVQQGEwJVUzEPMA0GA1UECgwGU1BJRkZFMHYwEAYHKoZIzj0C
> AQYFK4EEACIDYgAEWjB+nSGSxIYiznb84xu5WGDZj80nL7W1c3zf48Why0ma7Y7m
> CBKzfQkrgDguI4j0Z+0/tDH/r8gtOtLLrIpuMwWHoe4vbVBFte1vj6Xt6WeE8lXw
> cCvLs/mcmvPqVK9jo10wWzAdBgNVHQ4EFgQUh6XzV6LwNazA+GTEVOdu07o5yOgw
> DwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwGQYDVR0RBBIwEIYOc3Bp
> ZmZlOi8vbG9jYWwwCgYIKoZIzj0EAwQDZwAwZAIwE4Me13qMC9i6Fkx0h26y09QZ
> IbuRqA9puLg9AeeAAyo5tBzRl1YL0KNEp02VKSYJAjBdeJvqjJ9wW55OGj1JQwDF
> D7kWeEB6oMlwPbI/5hEY3azJi16I0uN1JSYTSWGSqWc=
> -----END CERTIFICATE-----''' | openssl x509 -noout -text
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            93:38:0e:14:47:d2:f9:ae
    Signature Algorithm: ecdsa-with-SHA512
        Issuer: C=US, O=SPIFFE
        Validity
            Not Before: May 13 19:33:47 2018 GMT
            Not After : May 12 19:33:47 2023 GMT
        Subject: C=US, O=SPIFFE
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (384 bit)
                pub:
                    04:5a:30:7e:9d:21:92:c4:86:22:ce:76:fc:e3:1b:
                    b9:58:60:d9:8f:cd:27:2f:b5:b5:73:7c:df:e3:c5:
                    a1:cb:49:9a:ed:8e:e6:08:12:b3:7d:09:2b:80:38:
                    2e:23:88:f4:67:ed:3f:b4:31:ff:af:c8:2d:3a:d2:
                    cb:ac:8a:6e:33:05:87:a1:ee:2f:6d:50:45:b5:ed:
                    6f:8f:a5:ed:e9:67:84:f2:55:f0:70:2b:cb:b3:f9:
                    9c:9a:f3:ea:54:af:63
                ASN1 OID: secp384r1
                NIST CURVE: P-384
        X509v3 extensions:
            X509v3 Subject Key Identifier:
                87:A5:F3:57:A2:F0:35:AC:C0:F8:64:C4:54:E7:6E:D3:BA:39:C8:E8
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name:
                URI:spiffe://local
    Signature Algorithm: ecdsa-with-SHA512
         30:64:02:30:13:83:1e:d7:7a:8c:0b:d8:ba:16:4c:74:87:6e:
         b2:d3:d4:19:21:bb:91:a8:0f:69:b8:b8:3d:01:e7:80:03:2a:
         39:b4:1c:d1:97:56:0b:d0:a3:44:a7:4d:95:29:26:09:02:30:
         5d:78:9b:ea:8c:9f:70:5b:9e:4e:1a:3d:49:43:00:c5:0f:b9:
         16:78:40:7a:a0:c9:70:3d:b2:3f:e6:11:18:dd:ac:c9:8b:5e:
         88:d2:e3:75:25:26:13:49:61:92:a9:67