< draft-dkg-lamps-samples-00.txt   draft-dkg-lamps-samples-01.txt >
lamps D.K. Gillmor lamps D.K. Gillmor
Internet-Draft ACLU Internet-Draft ACLU
Intended status: Informational 18 November 2019 Intended status: Informational 21 November 2019
Expires: 21 May 2020 Expires: 24 May 2020
S/MIME Example Keys and Certificates S/MIME Example Keys and Certificates
draft-dkg-lamps-samples-00 draft-dkg-lamps-samples-01
Abstract Abstract
The S/MIME development community benefits from sharing samples of The S/MIME development community benefits from sharing samples of
signed or encrypted data. This document facilitates such signed or encrypted data. This document facilitates such
collaboration by defining a small set of X.509v3 certificates and collaboration by defining a small set of X.509v3 certificates and
keys for use when generating such samples. keys for use when generating such samples.
Status of This Memo Status of This Memo
skipping to change at page 1, line 33 skipping to change at page 1, line 33
Internet-Drafts are working documents of the Internet Engineering Internet-Drafts are working documents of the Internet Engineering
Task Force (IETF). Note that other groups may also distribute Task Force (IETF). Note that other groups may also distribute
working documents as Internet-Drafts. The list of current Internet- working documents as Internet-Drafts. The list of current Internet-
Drafts is at https://datatracker.ietf.org/drafts/current/. Drafts is at https://datatracker.ietf.org/drafts/current/.
Internet-Drafts are draft documents valid for a maximum of six months Internet-Drafts are draft documents valid for a maximum of six months
and may be updated, replaced, or obsoleted by other documents at any and may be updated, replaced, or obsoleted by other documents at any
time. It is inappropriate to use Internet-Drafts as reference time. It is inappropriate to use Internet-Drafts as reference
material or to cite them other than as "work in progress." material or to cite them other than as "work in progress."
This Internet-Draft will expire on 21 May 2020. This Internet-Draft will expire on 24 May 2020.
Copyright Notice Copyright Notice
Copyright (c) 2019 IETF Trust and the persons identified as the Copyright (c) 2019 IETF Trust and the persons identified as the
document authors. All rights reserved. document authors. All rights reserved.
This document is subject to BCP 78 and the IETF Trust's Legal This document is subject to BCP 78 and the IETF Trust's Legal
Provisions Relating to IETF Documents (https://trustee.ietf.org/ Provisions Relating to IETF Documents (https://trustee.ietf.org/
license-info) in effect on the date of publication of this document. license-info) in effect on the date of publication of this document.
Please review these documents carefully, as they describe your rights Please review these documents carefully, as they describe your rights
skipping to change at page 2, line 13 skipping to change at page 2, line 13
provided without warranty as described in the Simplified BSD License. provided without warranty as described in the Simplified BSD License.
Table of Contents Table of Contents
1. Introduction . . . . . . . . . . . . . . . . . . . . . . . . 2 1. Introduction . . . . . . . . . . . . . . . . . . . . . . . . 2
1.1. Requirements Language . . . . . . . . . . . . . . . . . . 3 1.1. Requirements Language . . . . . . . . . . . . . . . . . . 3
1.2. Terminology . . . . . . . . . . . . . . . . . . . . . . . 3 1.2. Terminology . . . . . . . . . . . . . . . . . . . . . . . 3
2. Background . . . . . . . . . . . . . . . . . . . . . . . . . 3 2. Background . . . . . . . . . . . . . . . . . . . . . . . . . 3
2.1. Certificate Usage . . . . . . . . . . . . . . . . . . . . 3 2.1. Certificate Usage . . . . . . . . . . . . . . . . . . . . 3
2.2. Certificate Expiration . . . . . . . . . . . . . . . . . 3 2.2. Certificate Expiration . . . . . . . . . . . . . . . . . 3
2.3. Certificate Revocation . . . . . . . . . . . . . . . . . 3 2.3. Certificate Revocation . . . . . . . . . . . . . . . . . 4
2.4. Using the CA in Test Suites . . . . . . . . . . . . . . . 4 2.4. Using the CA in Test Suites . . . . . . . . . . . . . . . 4
2.5. Certificate Chains . . . . . . . . . . . . . . . . . . . 4 2.5. Certificate Chains . . . . . . . . . . . . . . . . . . . 4
2.6. Passwords . . . . . . . . . . . . . . . . . . . . . . . . 4 2.6. Passwords . . . . . . . . . . . . . . . . . . . . . . . . 4
3. Example Certificate Authority . . . . . . . . . . . . . . . . 5 3. Example Certificate Authority . . . . . . . . . . . . . . . . 5
3.1. Certificate Authority Certificate . . . . . . . . . . . . 5 3.1. Certificate Authority Certificate . . . . . . . . . . . . 5
3.2. Certificate Authority Secret Key . . . . . . . . . . . . 5 3.2. Certificate Authority Secret Key . . . . . . . . . . . . 5
4. Alice's Sample . . . . . . . . . . . . . . . . . . . . . . . 6 4. Alice's Sample . . . . . . . . . . . . . . . . . . . . . . . 6
4.1. Alice's End-Entity Certificate . . . . . . . . . . . . . 6 4.1. Alice's End-Entity Certificate . . . . . . . . . . . . . 6
4.2. Alice's Private Key Material . . . . . . . . . . . . . . 7 4.2. Alice's Private Key Material . . . . . . . . . . . . . . 7
4.3. PKCS12 Object for Alice . . . . . . . . . . . . . . . . . 8 4.3. PKCS12 Object for Alice . . . . . . . . . . . . . . . . . 8
5. Bob's Sample . . . . . . . . . . . . . . . . . . . . . . . . 10 5. Bob's Sample . . . . . . . . . . . . . . . . . . . . . . . . 10
5.1. Bob's End-Entity Certificate . . . . . . . . . . . . . . 10 5.1. Bob's End-Entity Certificate . . . . . . . . . . . . . . 10
5.2. Bob's Private Key Material . . . . . . . . . . . . . . . 11 5.2. Bob's Private Key Material . . . . . . . . . . . . . . . 10
5.3. PKCS12 Object for Bob . . . . . . . . . . . . . . . . . . 12 5.3. PKCS12 Object for Bob . . . . . . . . . . . . . . . . . . 11
6. Security Considerations . . . . . . . . . . . . . . . . . . . 14 6. Security Considerations . . . . . . . . . . . . . . . . . . . 13
7. IANA Considerations . . . . . . . . . . . . . . . . . . . . . 14 7. IANA Considerations . . . . . . . . . . . . . . . . . . . . . 13
8. Document Considerations . . . . . . . . . . . . . . . . . . . 14 8. Document Considerations . . . . . . . . . . . . . . . . . . . 13
8.1. Document History . . . . . . . . . . . . . . . . . . . . 14 8.1. Document History . . . . . . . . . . . . . . . . . . . . 13
8.1.1. Substantive Changes from -00 to -01 . . . . . . . . . 13
9. Acknowledgements . . . . . . . . . . . . . . . . . . . . . . 14 9. Acknowledgements . . . . . . . . . . . . . . . . . . . . . . 14
10. References . . . . . . . . . . . . . . . . . . . . . . . . . 15 10. References . . . . . . . . . . . . . . . . . . . . . . . . . 14
10.1. Normative References . . . . . . . . . . . . . . . . . . 15 10.1. Normative References . . . . . . . . . . . . . . . . . . 14
10.2. Informative References . . . . . . . . . . . . . . . . . 15 10.2. Informative References . . . . . . . . . . . . . . . . . 14
Author's Address . . . . . . . . . . . . . . . . . . . . . . . . 15 Author's Address . . . . . . . . . . . . . . . . . . . . . . . . 15
1. Introduction 1. Introduction
The S/MIME ([RFC8551]) development community, in particular the The S/MIME ([RFC8551]) development community, in particular the
e-mail development community, benefits from sharing samples of signed e-mail development community, benefits from sharing samples of signed
and/or encrypted data. Often the exact key material used does not and/or encrypted data. Often the exact key material used does not
matter because the properties being tested pertain to implementation matter because the properties being tested pertain to implementation
correctness, completeness or interoperability of the overall system. correctness, completeness or interoperability of the overall system.
However, without access to the relevant secret key material, a sample However, without access to the relevant secret key material, a sample
skipping to change at page 4, line 48 skipping to change at page 5, line 6
In particular, testing the use of a "transvalid" certificate (an end- In particular, testing the use of a "transvalid" certificate (an end-
entity certificate that is supplied without its intermediate entity certificate that is supplied without its intermediate
certificate) is not possible with the configuration here. certificate) is not possible with the configuration here.
2.6. Passwords 2.6. Passwords
Each secret key presented in this draft is unprotected (it has no Each secret key presented in this draft is unprotected (it has no
password). password).
As such, the secret keys are not suitable for verifying interoperable As such, the secret keys are not suitable for verifying interoperable
password protection schemes, or for MUA password protection schemes, or for MUAs that require passwords on
their PKCS#12 [RFC7292] cryptographic objects.
3. Example Certificate Authority 3. Example Certificate Authority
The example Certificate Authority has the following information: The example Certificate Authority has the following information:
* Name: "Sample LAMPS Certificate Authority" * Name: "Sample LAMPS Certificate Authority"
3.1. Certificate Authority Certificate 3.1. Certificate Authority Certificate
-----BEGIN CERTIFICATE----- -----BEGIN CERTIFICATE-----
MIIDizCCAkOgAwIBAgIUHpcl/2XJM79WIQ37OWPRVDomvz8wPQYJKoZIhvcNAQEK MIIDLTCCAhWgAwIBAgIULXcNXGI2bZp38sV7cF6VcQfnKDwwDQYJKoZIhvcNAQEN
MDCgDTALBglghkgBZQMEAgGhGjAYBgkqhkiG9w0BAQgwCwYJYIZIAWUDBAIBogMC BQAwLTErMCkGA1UEAxMiU2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0
ASAwLTErMCkGA1UEAxMiU2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0 eTAgFw0xOTExMjAwNjU0MThaGA8yMDUyMDkyNzA2NTQxOFowLTErMCkGA1UEAxMi
eTAgFw0xOTExMTgxODU0NDNaGA8yMDUyMDkyNTE4NTQ0M1owLTErMCkGA1UEAxMi U2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0eTCCASIwDQYJKoZIhvcN
U2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0eTCCASAwCwYJKoZIhvcN AQEBBQADggEPADCCAQoCggEBAMUfZ8+NYSh6h36zQcXBo5B6ficAcBJ1f3aLxyN8
AQEKA4IBDwAwggEKAoIBAQCxl2hhvIJP+TubAJqFkGkv7lhqSFuPU/zkJcPxALcY QXB83XuP8aDRWQ9uJvJpQkWVH4zx96/E/zI0t0lDMYtZNqra16h+gxbHJgoq2pRw
psc1xsn4KLzEbqc+mW0MrxnSdvPzBUaOHiQIynI6Gaaf+Gbd4r/GHBkrOul8aby5 RCOiyYu/p2vzvvZ1dtFTMc/mIigjA/73kokui62j1EFy//fNVIihkVS3rAweq+fI
KQ+4eQwDRd0AkQ6FH3VvXDXVk5oqflZG2IUjtGtnkrVINOBV137zb5/rqrsyOKdq 8qJHSMhdc2aYa9wOP0eGe/HTiDYgT4L4f2HTGMGGwQgj1vub0gpR4YHmNqr0GyEA
z4FFpOwB6jEourmC1WaAjf9OMWO1/8TdpWdabt98QHLGcVl/jBbI+juwoLDdiHbG 63mHUQUZpnmN1FEl+nVFA5Ntu4uF++qf/tkTji89/eXYBdKX2yUdTeTIKoCI65IL
GeovOxY3VXDXlsImeXCa+sEKmW4LG1uU1v1bbLopoAEvL2qkriSpzhnkD7itYzC4 EXxezjTc8aFjf/8E0aWGVZR/DtCsjWOh/s/mV7n/YPyb4+ECAwEAAaNDMEEwDwYD
49lXXuQtOCaRaUYAPjk2HgQb4U1XbiNxDzgRf4KqoAw9AgMBAAGjQzBBMA8GA1Ud VR0TAQH/BAUwAwEB/zAPBgNVHQ8BAf8EBQMDBwYAMB0GA1UdDgQWBBS3Uk1zwIg9
EwEB/wQFMAMBAf8wDwYDVR0PAQH/BAUDAwcGADAdBgNVHQ4EFgQUye9Q6FjJCQsn ssN6WgzzlPf3gKJ32zANBgkqhkiG9w0BAQ0FAAOCAQEALsU91Bmhc6EgCNr7inY2
4uurcnOQIboj0OEwPQYJKoZIhvcNAQEKMDCgDTALBglghkgBZQMEAgGhGjAYBgkq 2gYPnosJ+kZ1eC0hvHIK9e0Tx74RmhTOe8M2C9YXQKehHpRaX+DLcjup6scoH/bT
hkiG9w0BAQgwCwYJYIZIAWUDBAIBogMCASADggEBAAZviKON77fohdZ2PSvXmY7m u0THbmzeOy29TTiFcyV9BK+SEKQWW4s98Fwdk9fPWcflHtYvqxjooAV3vHbt6Xmp
/WPU1mXU7bPhN13kDWr1wKe+b/ITL+/zlwmGgW6/G03a4gFQ4rFjHoAhp1UdhCF0 KrKDz/jdg7t0ptI4zSqAf3wNppiJoswlOHBUnH2W1MIYkWQ4jYj5socblVlklHOr
/VYc7tbffo/Qsr0EZV2bH7eXmvjTDkLcbPsQgym55TMswHAoNCiiTV16aDmgU11u ykKUiEZAbjU+C1+0FhT4HgLjBB9R4H1H0JRKsggWiZBBJ6UpN0dTN4iD0mDVa0jy
TltRD8vGBzmi8FVfbLWETWGS+2632QLwMOKkbmDgQ7Eq0EGAHVa0+dX97SJ5rVVo sJqqWnIViy/xaSDcNaWJmU3o2KmkMkdpinoJ5uLkAHQqXjFaujdU1PkufeA7v3uG
mq7D1hDYMLWw5KgRDriq05WqZJNTo0FY9r3FCrM6Vh3BUpWhppJzmt3EPSEE42s0 Rw==
rsczjQgPhYBz/9Tg7S7rKiuPqu5yE6ajcW+nsbbcKg3UVhfuiBJhNIKNjMaoTJ4=
-----END CERTIFICATE----- -----END CERTIFICATE-----
3.2. Certificate Authority Secret Key 3.2. Certificate Authority Secret Key
-----BEGIN PRIVATE KEY----- -----BEGIN RSA PRIVATE KEY-----
MIIEvAIBADALBgkqhkiG9w0BAQoEggSoMIIEpAIBAAKCAQEAsZdoYbyCT/k7mwCa MIIEpQIBAAKCAQEAxR9nz41hKHqHfrNBxcGjkHp+JwBwEnV/dovHI3xBcHzde4/x
hZBpL+5Yakhbj1P85CXD8QC3GKbHNcbJ+Ci8xG6nPpltDK8Z0nbz8wVGjh4kCMpy oNFZD24m8mlCRZUfjPH3r8T/MjS3SUMxi1k2qtrXqH6DFscmCiralHBEI6LJi7+n
Ohmmn/hm3eK/xhwZKzrpfGm8uSkPuHkMA0XdAJEOhR91b1w11ZOaKn5WRtiFI7Rr a/O+9nV20VMxz+YiKCMD/veSiS6LraPUQXL/981UiKGRVLesDB6r58jyokdIyF1z
Z5K1SDTgVdd+82+f66q7Mjinas+BRaTsAeoxKLq5gtVmgI3/TjFjtf/E3aVnWm7f Zphr3A4/R4Z78dOINiBPgvh/YdMYwYbBCCPW+5vSClHhgeY2qvQbIQDreYdRBRmm
fEByxnFZf4wWyPo7sKCw3Yh2xhnqLzsWN1Vw15bCJnlwmvrBCpluCxtblNb9W2y6 eY3UUSX6dUUDk227i4X76p/+2ROOLz395dgF0pfbJR1N5MgqgIjrkgsRfF7ONNzx
KaABLy9qpK4kqc4Z5A+4rWMwuOPZV17kLTgmkWlGAD45Nh4EG+FNV24jcQ84EX+C oWN//wTRpYZVlH8O0KyNY6H+z+ZXuf9g/Jvj4QIDAQABAoIBAQC6LWFU7IkZPDEA
qqAMPQIDAQABAoIBAHs9DbOdZHTpCOMEpTaAw23+oZ6HvfoVl44fYv0QuP7DZcS8 /7ldV/huGuNPXuB67rLGelpJL7B219gwPdHPPCrLohPy3GuVYLT94AM55evJtXRv
wZWTd4N9IlQ/ljxSGsJByAJiK9cdtXXgPypweH/UmlXqL5jkENc+F589pTh89SrX I6GFpWs2j58kKukQ+GL7M2Ji1G3m4ndNIGS2Vu7DxEnGhrcDTq5wDjJV++pQ2r9d
3W08AySMhR3+ebkgrT8cIcTRTT/2q1XesxX56hFEmFUZqUB3uuuI3ET6qbtlQYOx 7uAoOL99glcW/NJQm3FJuSZPssFHdjfzFrirRUwLPq9RoYsvst/EECxoq5WOZbeM
dwsX3ZHH9rxzYnL7OiAfn26u8LHpGwjzPDfvFVX6rV4GAdCKSG+uySEFDm4kGRcL OsyGJ0ARsJpvBhIMFq/6eo/dFfTR4qba3BP0RksbETRNUk7ld2iQJ9huZkThNz1l
Hyn0mwc5tPL/MEsatWv0tiqBx1KLM4qdiZZYsoftAocqo/W7NPiPd/AAyCzafl9n lxMpvpYRCHkmM8CIVzvb0IsCBmio/5YpShP3PVB39Zw5XDs/A9Yn5b46hjEX45mn
g5+bSk4WAxn8y/QXMVvCcUhRTg2dRCZvbzyzCyUCgYEAxTXVfdEMiy9Vzq0DIjuj HTqaAz/JAoGBAN7ayderxL4C0jm8aif3wWMazXetuU8dU0jeYAmYCNl+R6dxtBSI
pJJsaqO6PlWfvcJWKNXBAS36bsH8Y2RtYu7rNzw8u6YctfjyW4/6WYVJ3viGVEAC KAv770caDfDD7wxmjBDqEIBqIHYUPo3ouXiGt6r3WWNEzvRp3VbOS9TfR0MQys1K
jCzsywTvJqELkjWngGnMCi+AXlWcjgGsZq5yRC3HaJyD7Z7Glk6/kgQpBqfnSt9Q WAgroB7mSJUG14I/JTpuFqwqN+VBXNTND2zb7ULj9UYOedIgxBqNCkbbAoGBAOJw
OFb/go3rK36dA9gTPbHllk8CgYEA5oha1VmTNnR63J03On1XkqCPdfccFTiR/6kp 3r2tQNGBaT2VKlp5Jflvy09OOFaypdqMujSkbLi/gfU2WulYw8hti9yjsJdeAhv7
fKMiuMd41C/Wrtjcb1ODz8+K23qrOOlUSMMnKfcw+O0GOaFGgKaQ5BOwKvQVmL5F jk8LBIfiXyByXk/qc+IcEov79Uq5x44lV/KiP4FcZ3kGVMYmr2ldTa+JJ0gtIkDh
Ix8bpRUcOCyoaROu92T8ayya9AZFhne7oaZj2tsB/t7vOpKn6oU5nukhwQ3EcGCO ZKVzw6SaXnqxbygCtNY+DRxCTBGcCpZQCkZhjIbzAoGBAJPjd1zjRU2fC6l66quZ
0PafHbMCgYEAqcB5EF/NiFEqb0iFlgX4CkTvhauBOP7DDbgmKeg0xispkgTwly1u U8GT0NRh+f6RhGpwACV9uimzDpQE9a9GZ+UEDFcP6D5lmCaPitXSrp65Ts9tQdHk
6uX1GgqDzJJjzE+Jbj80o7ITsBYEqqieiMJy4R5SLNIa/7OnhuWKeIoC2TCgHaxb pehg5lPTj4M772btNhBcGKCsh1rvMtYnRuItKTY4NeSHxM5PX0I2Ol+IKM2/oX4q
Fde7C+zL5MQ022j8T41hYPKrzcrhUJWAm75nGZ3HfBz0Usa/aS+kDAkCgYEAgvXH ktj33aytIGCcTKVwTxMbk71PAoGACVtImOXTy9RhGN5VBbAD1a684+YDhfGT0NgH
FBhUxsSY3yb4ruNxkjxgAxWkAHIojmIczU8ndGzsuS2L+bv8TcnVwYIXUeN3zVbP ya0RoQCoyg0Y7JNyY5HDOba50UddJvLaCoIWCddcvuZ65yp0517plUcv94p9qG36
qJ4ka3Sff2m29ZomoQL+oHKGy3/pnOHKCM+tNrStWUQVT8v8w1G9C21FgYbmjCMM mFgD78B1thaA4j8u+FeWoi40pVLYG340vnFuIBsQ1FkIksqp1kByIjzLD982wMdF
liId68AqfA1NPar+dP3F4/5wTGlzxJs1xoOzlH0CgYBWYkSXnbohU41XYyRfEz6T 5Wqad+kCgYEAjqXkzyFiD71D6g205kwwPzoIV8unmNMsvNn3UFF50/MS/f/ubTTy
dUhTyQNTR2kH4hEPsSvi/7jCaMe5ApLyqO6hwDMewVT3p8uUYx5hfUqoZtaWlQo7 FoHYUt5E/YiHbPRyr8zTzSGWUGhV286jRPq4iCwhd2ZQDRw1DuqNooQAqQeY93nS
jUzJsSgzmMiJ5raecCzSsae6f/BwsxRpgu5+Ca/5F5X840kGMjxbMN/2gBPdeBWq YDg6U+BjPWQx0lN4LucF+BKwXWQ8ZNdwxjs8SSf6XQMVco4LiUZBOyo=
hZndvqWgc41kEMuIVKdV2A== -----END RSA PRIVATE KEY-----
-----END PRIVATE KEY-----
4. Alice's Sample 4. Alice's Sample
Alice has the following information: Alice has the following information:
* Name: "Alice Lovelace" * Name: "Alice Lovelace"
* E-mail Address: "alice@smime.example" * E-mail Address: "alice@smime.example"
4.1. Alice's End-Entity Certificate 4.1. Alice's End-Entity Certificate
-----BEGIN CERTIFICATE----- -----BEGIN CERTIFICATE-----
MIIDzDCCAoSgAwIBAgIUaM19lySPCQyh61J7nYsAARDm+TswPQYJKoZIhvcNAQEK MIIDbjCCAlagAwIBAgIUZ4K0WXNSS8H0cUcZavD9EYqqTAswDQYJKoZIhvcNAQEN
MDCgDTALBglghkgBZQMEAgGhGjAYBgkqhkiG9w0BAQgwCwYJYIZIAWUDBAIBogMC BQAwLTErMCkGA1UEAxMiU2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0
ASAwLTErMCkGA1UEAxMiU2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0 eTAgFw0xOTExMjAwNjU0MThaGA8yMDUyMDkyNzA2NTQxOFowGTEXMBUGA1UEAxMO
eTAgFw0xOTExMTgxODU0NDNaGA8yMDUyMDkyNTE4NTQ0M1owGTEXMBUGA1UEAxMO QWxpY2UgTG92ZWxhY2UwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDD
QWxpY2UgTG92ZWxhY2UwggEgMAsGCSqGSIb3DQEBCgOCAQ8AMIIBCgKCAQEA04zK 7q35ZdG2JAzzJGNZDZ9sV7AKh0hlRfoFjTZN5m4RegQAYSyag43ouWi1xRN0avf0
35E5NSXLMjy1RwBKrerfEBISXze1KfRRhFXVoGudB4d+2a82IiNrZ9xGjiM8eihw UTYrwjK04qRdV7GzCACoEKq/xiNUOsjfJXzbCublN3fZMOXDshKKBqThlK75SjA9
MnssK89PrrMZTxPqOpvS20MSfECtOV+v7EXxVqDHLdWd+OhTMbzxl0eL0Lf7NKFf Czxg7ejGoiY/iidk0e91neK30SCCaBTJlfR2ZDrPk73IPMeksxoTatfF9hw9dDA+
e7B1PfghwDSy/ti+vwfUEOZZqMem870ygrEbOrEBIg7OVe0snFXhlvqoVXzi5Gxz /Hi1yptN/aG0Q/s9icFrxr6y2zQXsjuQPmjMZgj10aD9cazWVgRYCgflhmA0V1uQ
MgNi6fUMiegeuJPMOWWfmwVC2xsvvMHr4X3EVUZ7UcMsTA7imtZv+5Ubxgh+0abK l1wobYU8DAVxVn+GgabqyjGQMoythIK0Gn5+ofwxXXUM/zbU+g6+1ISdoXxRRFtq
tCLL5Tir9yvdlQplpHFZLiiJq7EiB7hYNY0SFB6kMuoYkp7TCBc1Yi7CfohVh+rk 2GzbIqkAHZZQm+BbnFrhAgMBAAGjgZcwgZQwDAYDVR0TAQH/BAIwADAeBgNVHREE
ip8jgjI3MK7bdQE2zQIDAQABo4GXMIGUMAwGA1UdEwEB/wQCMAAwHgYDVR0RBBcw FzAVgRNhbGljZUBzbWltZS5leGFtcGxlMBMGA1UdJQQMMAoGCCsGAQUFBwMEMA8G
FYETYWxpY2VAc21pbWUuZXhhbXBsZTATBgNVHSUEDDAKBggrBgEFBQcDBDAPBgNV A1UdDwEB/wQFAwMHoAAwHQYDVR0OBBYEFKwuVFqk/VUYry7oZkQ40SXR1wB5MB8G
HQ8BAf8EBQMDB5AAMB0GA1UdDgQWBBT/Quy1JKgeDOfjF2KMSbJlvPEjLTAfBgNV A1UdIwQYMBaAFLdSTXPAiD2yw3paDPOU9/eAonfbMA0GCSqGSIb3DQEBDQUAA4IB
HSMEGDAWgBTJ71DoWMkJCyfi66tyc5AhuiPQ4TA9BgkqhkiG9w0BAQowMKANMAsG AQB76o4Yz7yrVSFcpXqLrcGtdI4q93aKCXECCCzNQLp4yesh6brqaZHNJtwYcJ5T
CWCGSAFlAwQCAaEaMBgGCSqGSIb3DQEBCDALBglghkgBZQMEAgGiAwIBIAOCAQEA qbUym9hJ70iJE4jGNN+yAZR1ltte0HFKYIBKM4EJumG++2hqbUaLz4tl06BHaQPC
bcGCz+qLDHbmZGkVD+TDqqw+HTEeKDcp4nBRd+AJIxNBRMnhaaaVR1E7lriQZJxE v/9NiNY7q9R9c/B6s1YzHhwqkWht2a+AtgJ4BkpG+g+MmZMQV/Ao7RwLFKJ9OlMW
mpLW/EUWoXi8xUxMzQlo2o/8srypMQCdmBa9ADaUXchSzaW5G9eSWxCIRsZI+/r1 LBmEXFcpIJN0HpPasT0nEl/MmotSu+8RnClAi3yFfyTKb+8rD7VxuyXetqDZ6dU/
PzBcgXrNyIb/rVV/hCt22/oidcJfCfXNNlgik8Ec5amGadOY8OlgXU69W7o1brHZ 9/iqD/SZS7OQIjywtd343mACz3B1RlFxMHSA6dQAf2btGumqR0KiAp3KkYRAePoa
dIV7FhtfIsQVvtJ0VZwr77CU64X6FkSQUpgJ2iu60tGmR5ZPfl/77SzZx87/BTOL JqYkB7Zad06ngFl0G0FHON+7
55LFgp4oaLv07hkjUTxLa2aakqgSHDJwdy4THdHQokJJqX69rSzLup4i/bzAyn1S
2O/BpKwh+84PtgHvSN7Cjg==
-----END CERTIFICATE----- -----END CERTIFICATE-----
4.2. Alice's Private Key Material 4.2. Alice's Private Key Material
-----BEGIN PRIVATE KEY----- -----BEGIN RSA PRIVATE KEY-----
MIIEvAIBADALBgkqhkiG9w0BAQoEggSoMIIEpAIBAAKCAQEA04zK35E5NSXLMjy1 MIIEogIBAAKCAQEAw+6t+WXRtiQM8yRjWQ2fbFewCodIZUX6BY02TeZuEXoEAGEs
RwBKrerfEBISXze1KfRRhFXVoGudB4d+2a82IiNrZ9xGjiM8eihwMnssK89PrrMZ moON6LlotcUTdGr39FE2K8IytOKkXVexswgAqBCqv8YjVDrI3yV82wrm5Td32TDl
TxPqOpvS20MSfECtOV+v7EXxVqDHLdWd+OhTMbzxl0eL0Lf7NKFfe7B1PfghwDSy w7ISigak4ZSu+UowPQs8YO3oxqImP4onZNHvdZ3it9EggmgUyZX0dmQ6z5O9yDzH
/ti+vwfUEOZZqMem870ygrEbOrEBIg7OVe0snFXhlvqoVXzi5GxzMgNi6fUMiege pLMaE2rXxfYcPXQwPvx4tcqbTf2htEP7PYnBa8a+sts0F7I7kD5ozGYI9dGg/XGs
uJPMOWWfmwVC2xsvvMHr4X3EVUZ7UcMsTA7imtZv+5Ubxgh+0abKtCLL5Tir9yvd 1lYEWAoH5YZgNFdbkJdcKG2FPAwFcVZ/hoGm6soxkDKMrYSCtBp+fqH8MV11DP82
lQplpHFZLiiJq7EiB7hYNY0SFB6kMuoYkp7TCBc1Yi7CfohVh+rkip8jgjI3MK7b 1PoOvtSEnaF8UURbaths2yKpAB2WUJvgW5xa4QIDAQABAoIBAA7vrwuIG4iLDwGq
dQE2zQIDAQABAoIBAQDFqqRVSaielHXMtxTbBtbAstlCduBbv/2y+erBMEKv5l2P EHjFdRXJSX5D+dzejMTHkxA1NMbYSl3NCp1s0fCf0b+pmmYRkX1qg3qqfzsS2/zR
j3djh2eZdmcBYL08SohTzD0prhWTyd22avqW/RC7OqZG4eD/4J77IQGMT741J310 ppZDUel9+8ZK0H6nTJDWRsJb/mYS6GwCMkHM3WTwRLl9oCkY4ryEksHA4THjQo8t
wkkdLlet/dHvfJaTq5U5lB9Xv4WNJbDDm3o0zelNLc9lCxdzsTm6PWpY24uJxe7J dPtWla6drp7crmHClXMYn143HdSdCIB9StRPkSgyHjyFLOThReOog2Nsm7eShmov
iwOyz8tLXgjLX/yQJOZOkXMbTC6jj0ZZHHdpslgPH0hIEMlLZ1HULG3Nxk9Fh1Yx 7WkMuESFku5OHFPLUw5FyLEzHJar8ZI7qYbT7X6IamXOf9aTMPDA1rqAcix+4KQa
OM0Pk3/6FzmeZ6sBE2srH7cwaeJ3v3cOGeo37ww0eVw2ETdPlo0P0fBqC1RnkFU+ zF3cNY1xgq/yIvtsv6oyknTStw1i3i46PWzMWf845Eayunrg8e6F3hWt7zndjXWQ
upt9OXaBDhT7T8hXWHuIHt1w213pgxY4RDYhnxKBAoGBAN06U8LQwMJZhZyzArQg Jg/gAAECgYEA3SLlO2tGdb5gWHwzzZAnTzBMo1Z3toEN25LetuSmY7mxkjMTRDAi
1xKVwn4GjdCY/2dVgFePmMkrHq8KgyXpe6drVrElq4b9RF7Nstt4tqiJr2+vMsy6 5VOdpSXrVFaT5r8qwU9yFEm+OuB6k52CVbTE1Fp96JlbzYjZnKaLn5OG8+HSLdtn
9ihIgSIfyaPCa0/WtVP9youzF+H9nHotNKs+Q8yMpTl4yk5DaHXk08J89e4Zma97 1vj1XyCGRDJKJ8GaZpZp+WvBfp6449WpSgupXMdIOM8jfekgTEh6rgECgYEA4tKM
C4YBYOolK4DKU+mfvyW8DUIlAoGBAPTNDRzAzpP8ggZ6NtRh/f8MS2dHY2c1IDZI Da3tFEEyVy9ZSxZV9ep9dhE7kmVQnr2pvt2YfJTiKnSo2kkj/qKoMi2PhS8ZO0JQ
6Wf8LKccbUT7F02BGNSBpydLFGvy/s0zP+XEvmsBllr+IrEQzBZLkF6u/7svHkze J90bDngqI5sIo/OGi+hwYRmcKCrvfnfJUEq3v+3BFQYPDfwktgiBu5TGDNimFA2t
n6w2+XeRcPDQAQJ/YaOPHZ9kXMp244H4EZqvtljSron7hfV4Gso0ktFPoDjc9DoW l+23SwwCPfjPh5frk8GTq0IslRhXY3djNPhhbOECgYAojSegN9HZ8alVUKFnRtIO
Zxikrj2JAoGAWDtdEMPlPR4rNdYHbAP1A0qLaWv/v4RlyLbHGyUAUKtL75AHwmUe kXrcURTu4MebxlkVDOT+UKUhfEBCNtmPWEAGcueutZm1rMS4Yks3MTazMUsJGs81
liUvTDOz94CndhAgF3xLjWhseeSsJA8lAef46L041IFD/3GonDkKQTFKgy187RV+ zEpz7ow8RTMyg6/0LA5amwEaZATY5+0o3MqSQTKd+uLiW3xm55pTZNE82PpqvVmn
fhW1QK2PcB6GwTQNQ4fiFR11kGLRcrVmYSnHl1r/wLvxP6oguFIKD6kCgYEAo6EE /G94VgsGb+XARynnEzt8AQKBgDER356t+9Yf7KYT5jtqT5pt6kp6m+ql5HUTDv/t
KLn/2w8nYmkCiUfO3VI8fJZNLUlndKGb0jPPLQxlRXyIgPfPvwvCzRL0XYuZIVQm rKl3BB6vMkBXBmR2B/EjDiN/9vNs+y5ElS/iKyucxJfDfV4TIQzAn5nJABraC0FF
W9D8bs4q0DuauLw/jo+HuqJCsb23BS6xkA1XBsMiuPRwGFlIzGj3JfmRxItfWxqT iM8KvnSv5N3fqImA+Z/9JYNt8y/vbZiqoranmGyTwUHSSfKjNDEelcqDg5RPJbU1
uc/FlO2OWRDU49UaIxqtIFeXAys93C3pT6GUDfECgYBn3KLqvGmCHvTpWzGOH6lv 7s3BAoGAdqDEx0K1sW/e0pOtb97fBNIRgUemSUctUiaV1imwIku1wuxVvD8z92xh
ABpux3YQFKxI0KtNg8U5lJMtVSTd1dHHwosQNiO6jrr+06N1EKB1w12DUWhTNb9r g0DszHZfhSIvZwrhxF0VqPEgh1mDWVfuSHG1g74gDyPy5p3OnEnrk4bloBhXit2Z
GEiPX1h7KPZocVNYm8xdaynNu2UFNyjvdnPewv5uXz/PW1BEvfT1vWA9nZEpZzZE pUSPj7ME4rNqAEXlfdVUPq4T1Yq95lDMafQlCmUZU0DnuAy19dc=
WkfjBtiQpGhkOuVgrj1x3Q== -----END RSA PRIVATE KEY-----
-----END PRIVATE KEY-----
4.3. PKCS12 Object for Alice 4.3. PKCS12 Object for Alice
This PKCS12 ([RFC7292]) object contains the same information as This PKCS12 ([RFC7292]) object contains the same information as
presented in Section 4.1, Section 4.2 , and Section 3.1. presented in Section 4.1, Section 4.2 , and Section 3.1.
-----BEGIN PKCS12----- -----BEGIN PKCS12-----
MIIOVQIBAzCCDh0GCSqGSIb3DQEHAaCCDg4Egg4KMIIOBjCCBI8GCSqGSIb3DQEH MIINxQIBAzCCDV0GCSqGSIb3DQEHAaCCDU4Egg1KMIINRjCCBC8GCSqGSIb3DQEH
BqCCBIAwggR8AgEAMIIEdQYJKoZIhvcNAQcBMBwGCiqGSIb3DQEMAQMwDgQIpDrb BqCCBCAwggQcAgEAMIIEFQYJKoZIhvcNAQcBMBwGCiqGSIb3DQEMAQMwDgQI/9dn
dCxhKlICAhQAgIIESB1zFYAxN8dSKVt4GIHWL4QgzrstGxhClCrdgWt8FY6GYjXw i+BuhWsCAhSEgIID6A5pqJodSl0Y9+WLYXssoT9lDAQHO6NzQ/XBjRhx2qHtVtW7
/WQCgyleTcCfws05fv3rkWMpItBcuzkK8be6xAjssRZXR0bhBBvjKbCw+62tLtkq OhG239eSt9vzMCnc35YGCfnoKgQg22qRrrBbWDr/zmNYi5fZKvxETNvscpPQKnKn
uiRA7oxwaZO+2ZYebhSkc7AyQkkzLE8aY277ckIlNda774RH6qxxmbw78drgoEMx BHGQov3r+HiivO0I4eXJVSRhG30szy+zneATyc+pKgZWk+1q2X/Q32pGa9T6SPgZ
ssp93wSwiG40tBpX1tCP0EIK7RyFfpTYhJeIFPujLIJ46Lib8k5TobdWXBXF1Leh l+HH4bDf+Y9Vs3LkYw7vIM5NLefgCgiNGeiNTKHzRd9VZmAWyBO5KB4nsYdDi6JF
yswtxLt4tItjcS0fQeSc9zsXrUDLVglUauj4HckHl6WO7qp2A4sV7u6Qq+F+m5cf LGB3Udw8ETaAGYMQer50FsZwReSNgSJVnLk21zEJgKvXSsKa9A3xT5h+Zgbd5Dsx
7nhOs8qiZlMsDnwV7dw90yePmFn8qmIlm6d7/ySuCHFZoK8HN6ye19UUwRF7nmsZ bdaQKnvtmXZh1SQJxDregQ+QNT7GJnDbPNXABswzaHnaGOKQFl48M76An29nq8m9
FCtb5VdnC6KzsPYSmDDfFUTkUIw59L8SLQg63S8CWAcveGjKrpC8D1HghPFM7YgK E3ZYlrU41c7ud0Ik4tPShUjUHIejXIadrJTa4Xnl3jH940kmojwh/PhjxrHY/1GT
cY7xag8f3KIUVVlfhW5LBEJuEw9f9r1tf3amLNJ0xEK8Z5dgQ13yoVTcqOoBDfD2 KVE/1sFLfRyEmf9vOhDVLVj+Hq+4PWO8KIzaPCYtaAcMOXAT4XC4l9gL9qomzu+/
1+ubJsbj0y41jPLOQZoRqmnAnoIIapqiBsljqLhKjT6W6Jd5Vw/wi8CESxbYFO6d FOHwaNMNqd2XG0J6cIIIW6xbPjKuGr3vYSEEYPYenycpv8P/6uNyj2rBWmNWgMkd
fkx8tEilQgp/OgIWA44tTxotuezWxyUPrqvT2hOn9kle9H9iPN5hz4QEFtzOQbhF ntR/cg3NZSodo65vgW0kbiQrUMZxL0HZlBMeQjghG5ziLAKI7mZdPiA6Nt3HgpIE
5L2S65E092RYD+kbqdnNRpptVjbcZLj/z8ZjYnktGZgFILha7skVih/GhFNrqDgm EWgvdhitYa21Lb8wv53SavOQWWaxwsnyoQzqDA0R1+ChtulEBopR0bD57ypuFT00
KE0x9v0e1MTbiGuthYh5YOGQK3z+zI68qRopalpTm49kf49Hn0oA1/Qyr8k5ucO7 sz8tuJy566UQ8+dF+65JqqjFAbJ+gSVTZKJPpwV23wzDkmxrQCH/+UoYq8N9dZ5A
0RnN4979Dr+hARd4W9eibQoxhcITqnZ/AFkJKn3t1BiEAPBvTuu0FpY+jQOs9cQz fvvfHwiJYLojI5nEJt8ssud5M3oYJ7hR00YjNK1Ucf3lPKP3tviOpNj/pBy04zp3
wjSsClw8e8NUbLyxW5o7VyrjIK66IUMFKoXtq+G20qm2xob7XrEO5HH/+Q/7uoyy 0UZGRgE5dzaX7lwIIwuPbdNbdUkrAP3wpmtjbT/lu2hYzORQP5X6fGH2qpMo+mxF
Hs1ld1GdZhq2RptndYWNpkcdHlREXCBTbDrK3UAyjHTm2qPm73JuMeprVzjJyg0a JeV9570v91Pp1J5jY5atY+bImPW3P8e23oNXYQgLqpPLSxLDISRBjGVt/j0staCR
Iw63evt085gUlrygZhYT00xvBp3TM911+2CEseNRh6I4tn5R64x9R60z0OH4+WpL t0GSCEYtHyOnBkwR+CBKHreIppGw3fsEGxpfK3/xLPFdAoDjceG8zLz4EkbWiX9Q
Nqimcj0pEB1DPkdvntLB3yWFuSc4rAOYtmvlxJlUuZSQZKU4dIVY2Jwygz6B/Ioi LR+xkWYypEVH8SRd1A4urA21mnaUBgOU/+sFSMzGehPtlRkZ51hrvkrvreETHkP5
7GH7R0KPfYqs+qewPtQ7DvukR77SGFaTnrUKbmIx7yfzWC6a6NgsLEB/+Zk4MNXc NQFyBHvZUlVZGxy/VN7Hsil0t1G3iGhxW8v3giVFeocVhVRdICuNMOZBOXR/X9LC
+1S1JKHf7nkT1m+0gkJXkk7LimO+n4S8cymbJtXcDo2ShfsUqg4Nh/5h/vdobv3z PYDT/AbGE9Vr0gciO4fT5kDO3QqyJwe/VLYym5V1fEaEp4u+pTY1AXAnLMbpQCl4
VsXSvgB7UC5PfupnSyAX51OINBu1rWLlJj6gaH4FfqzSkeH2otD3zZ+zeQ71zd4/ +uobNB7QaFG1BP5UlrxlK3oeJwzVzmJTNZKjEdmT8rM+8pdZcfCP78zYdHw/t9LG
h37fRKuoC41d8RKcl/DTU3cv+8ACKm088agL8PChRBIwT2Y8pS1zg5JO+Pxf+Xwn W1MXVmD6bxkZEaN744w39vaUZScmch2yJdUHFDhiqcuZE7y2V1HP9U7dIImawzoY
4fKzI+T8PIOiG/XAgBfgGmA1vmpEK4frfn2JamBtcNgkf5LF6UbR/KuOb2t0Joju xBHbhucwggOvBgkqhkiG9w0BBwagggOgMIIDnAIBADCCA5UGCSqGSIb3DQEHATAc
lFMHEwHL8CXvSJJpLqZhlg14pDK7kEpTpVmqW95coyq4JCIC0OdBhPHFiOAIP7VN BgoqhkiG9w0BDAEDMA4ECEWK7aRxpzOiAgIUSYCCA2g8qec1HwJsCAm8eGqgMudQ
/cyPjrkwggQPBgkqhkiG9w0BBwagggQAMIID/AIBADCCA/UGCSqGSIb3DQEHATAc bHT072jC9aQL+LGMyM9pSoyz40KGlYfyG8oWhFngdE1Hjwp6ydHrK1hG4u2RSXty
BgoqhkiG9w0BDAEDMA4ECJ87XKiG3ZH+AgIU8YCCA8iVK1z4QGnBk99uWB7qh+Rs q1ABeZhEsiUeZbIpf32i1ljiMXzEdFlzxLoaAp8pwT/RX05SWYiTOKhHfrkWqs7j
aTPEpuJfDU+yfQPq+2u3gHMU8iUfR8jyDuAdp8rUE5InxVd/rlGPUKqg3/E+DBt0 QYdNCPCECgUEYpEE9mM6bhJMG2Gw0DebVPIJcCPrtES1sQr9J1aRwK/CgDe9sYUV
uwL4wQHvT3PfPZT304xpGxirktZgoJc+fA969OQoOvc6cJqe5m6fxvCGwBLFRluI ft3GS7LDmjgssPWOVan2fDXMDt1vA2tNarl8c5iFVBmxKsSY0n9Rt58LVSOCUHVD
xThRfvyouoSLZoSoqaKUU7nszFNXTva773hvkdyf6P7297HCL8co0WvLikvS31dL 3p+Nspa2i2JVij8NbgJwIMhGlvsdrjqCFo0SRqFqpB0CplUcq6RQuWBLudYX4+Ek
+snz/AenqtOmVj3AVpekYGA7o5ce6xJT6HK0HiSPaL1Y7C2w9auh0ZPfNT0eeb1Q 5wEW/7seIxq4R8w0fewnDth6HGexUhOqwNvAsbK5ZY3ok+b2BJlKwXs5rRmLai9e
v96Wk6x9p5DTXcgrxGtz52laGS2OU36zVMyMFrHDBSBjrHbVx+SADIVStVghYOLk eoun3VSsyGBR697S9zvUODmpKz6wKRoip9O74dtPWtA05xrsOjx4GzvFUagMWmM8
dOiY8vCtB1MKWUg4eJf4MlCcOrj0kD5PAMjOZ75/2iZBlJocE7xCUYJv/IfiK8ku RI2Z6Mz0qDj/2+ReGw9Z+ePHxY7mTNQncrbrMAN1qlO+VP2OtYE1d/8HJsDcemZg
tEtDhnfNKKFbcbdZP1WatHZ9Z5xQibUBtsKTttf7O/NtStuJwywqLF2mygAhNFdS 9vnCPvf36r4r+45iVno6moC+rz87NYLTXlTsOCpv2RSuLrUyCm3qBNpM/geavYeZ
v9LQsrbTB9vam22J+wiUlnY/XhPCPgsu97N7djKhdXH3JfQjNj7qM1YZbw5sP5Ib SCaggVkSm81vymUQseogR6DPKqBOejFTggxBA/b9mzfCLp2NRfe3gjngvkqY6aqP
+XXJPe6i7oJwAtLD1Y/Yb8OKZAF6xeaQqrDk5Ebfl5/WqAgUYKC4Fbuu19HVnXRZ QzCoumYg9pEM7tVSZGryQbVMm85e3w2R1FxOT1JmNE2YtF7W3Lo4DN33gywoFRJN
Z6DlwGUFydvOGXxAIQAXJKzYIaCJsR4LnbD910YBRvsJ8X/O3Ms9t9rxX+Ub1aJp JPAMnn42gIC8N1BCC9EcGzF2cgn8XxK7LWCLxmL/1193eIqouokcichJjuMpYYQB
9gLO2fgj2zMQJ5LLEVbe43bpdd+1/Buo2vMT012T3qC9GcTKfu7AXPTn24zuXkq0 l056TvlVL2NuyawAXnc+L0ttWp/sN9xSI72Ti+FOSW1g/cDQ0iKvG3O0DqQd4rOU
Oj3MP4i954FqWKcnBSffSsQ2L1LhpqGWGZagX2Y+na4VU1MZMw2hKtJNF+g1nvGH 1NM3FsZFCGOU3RELnct+4gNGnZXFLj36sIe3bDguJZAXpPeE72mHiV115XWR/+KM
I00nqgo3m+4iP3vQWJgZ9dNU3qnYhTRKUbbZGQdwBxLYiT2chKa4AEdrQucH4pmW nzN+kM4vyGShPOVWSuxFODfWhu8B1H2HcSlBhmqG4f553bM+z7sqp8fGvjFI8T3O
CaK9dlXBRbbGCTFlWE6ziC78u2+PE/nkwX6Jb7/9jJ4dQ6GxEfZjVWngdjrJfVCF Ys+qrNalhFiHOZNRT2Vp1gSY0L2RG3TbnQSFcYSKrd1lIXR9jHMoaZnumdLCPBj5
rhp9efCtYOoiNb4DfXcaVZagVRYh2fjKOFiileelNegRd/yAlSl30cZuSt59inpH NwkqEAUmCTlDpvySGWMCFmrnWzoAWhSvcx0x8wqxMRNuO3vJrzOIiW5cjovM6FEE
nwg/jPzmrbhSZ1kv6XV4f9nZ5uoZEghFl2ZkWJyv9wYwGouHQzV4Oqo5qRXO/EIP dD2ohb27WIR2ST/aSAje+EMG0q7V5c5hPlq3Gp3f9/IaMwQh9ETipDCCBVwGCSqG
E1N03KnuCwB5efJdiRRuTUHlaMF6MaSxOhkTLedwzHk0eNWGC+0dCf6RZ20nd/OD
jcL7bQtcWXohWXxuO+v9Iidvesg8NCm9+8hu7IRhx7nmD39uB0uFiPZXvUzQ1j+b
4Zo5oc6NiMxRKuguuBODVN107RhSeG1fRWGwJ+xx7GimT6tKQ1AsRP/9U/lJ+rk4
CAIrcaLCFdAcNnnvEUBU7He6Ull4Qr6Pmx7auGcpM2b/YDxQN+3oZTCCBVwGCSqG
SIb3DQEHAaCCBU0EggVJMIIFRTCCBUEGCyqGSIb3DQEMCgECoIIE7jCCBOowHAYK SIb3DQEHAaCCBU0EggVJMIIFRTCCBUEGCyqGSIb3DQEMCgECoIIE7jCCBOowHAYK
KoZIhvcNAQwBAzAOBAjd2iv64ENk/AICFC4EggTIDGMDlVUkL/IQJrAhyHFDX426 KoZIhvcNAQwBAzAOBAjRhW3i7sf6OAICFDEEggTIAHeeSYh8F9rPFPYnChBUV2Vy
h7uzqUfzkDIJ3nGMZawga2QgCy+viuyYIvMkz9i8ikKOLjyg3IP+ZuLk0Velh5id b48I3jYwIBDYCE35dvpP/5tlTTTbHSmYrRwfzAx5VY1ATaXl+xPhm/3LX9w+TdoK
Fj6ivGExReWvjhkeHs+YODRN6I+83p3Al4bi/bIgM/I6qmcpzIAPhZNJgQwByDC/ VggYCVWi1J3gYyff50ZbHsbUZ5L0nQvW+RP62DxWWKdjSZXSgJGDRqqvT+xS14ae
1c9gCRwERX3ge8g5Rc9V6KKyy6rlJpdpvi5xX7kw+FUBMIf9xP18wed76UXtYm/H Zt1u0z2095modzg7BCsPP9nzUxovs5wTKd5gCcPzuR+8xxkqJXQmJQXqQ7Vz/XSD
8ggTe9g0qPPfKyRytkgYhP8qZLgXU3jmbc1OvgsO3cX+zJPc3nR1ZTIk/hn1s49j JXlBQE3UwBTege3eAS2SBsYGTkCgLw7aFfAlWE7KKZTL0iTiD6k5eSYSG3hO2BwU
mzZnvzTHmk719SRViO3arG/WBT72Y1TTdYI8gP0c9uYIJ+fp8JNLZdgOaqHMDw/l LXyc4uztag1A30+vcy7oTeop7NkNvDUcaxK5NO+/+rjf8/h9aLAa+CLSITHuUWhH
Om+MCMLivRgry8TrpwO6N5KaktNO5cpVeBxiHMuHuXGDeHoG86om3Mp3WCMqsDo7 PeDCbPzpUWnMVIQ8eRO5qC055/fmSrJNXyOXy6Bmf4Dgq9wE36BSNafSdaA64Dr8
b+tIxIaz2aylubjJC6zxp5ADOgrbywewrVN64EgnxsnBYA01zM74TTRJMtRns+LX 5S/amMG31SgvT6+gB2TfTYwzUH3+lVZWsqRgSHcDKreAeKZSciZeViVQpGxjy4aT
+uaXNzPVHkLGPTcfhc/+nMIB5XnFwxanSaiGnguZyjdLnPyXI5aT9Zkcfx86X0QZ RkvWJtyxqZD5PF5q2P3YPYmDbf1jy3Zsj9tOyViqbuws0AzilwIgM8MWkwkGtXdo
PJXJ3lnLJf8f1vrNMEXUmBNPDQOhXZlsqZR8Nuznn+8Q5Tiecuoz+HfAy549BNNP 8UKmp4vMJMnJ1RD0tzeayumConDM/ACnsada9jBLIN8oN5tUYZfYbifTLm9OmIzK
GKFw8WDUOSLDXOrRO+jvEt6J2GX7WTwO5YeBgb1f/XWwLBb6qFGhndQyQC5Upa8i ci4/zaUHxoG7X9v9b+6nrF5PxTtMLikU6yr38rXKZqr9KEwdIlZENuajkZQ+kpHP
yT0h3YlAQm8GgNbj0PXGxg/0czUc+fi6xFJsrsGWS++IwEYEdu7xFEM1+kgw7OvY AoUrnK7qjxGXC6gssHamLQB/PFjmiU/OVwDzWi9sbJTPdeQ0Jzzkdr5HjBkSeY17
KDXE298BAu1zW0ZVcS0U9S/D2QrZzt6Bpij7vIL0gSThQ6rvjbO4PHuJuLSdV6gK nxjNz4PWAOLznqG8SmSSPGgQYQg8OB/kNcSey7hX/vNCmlYIdJEZSMkDZ5hL/PvZ
+xzahqAKzO6qN+TBrGzIHindNLYcsOXm2NRZoheTAPvhJzY1qlELlW71dcXDSNFK SwWq6U09JN2bAgH4Sum03CNAYPrysMrJLm3OvsFq9zme0znSnBTe4jLzEJwaR56O
So81ZxSpBAYK5O676QpP3JU6/ruWaW6KgToOlZCHJG6YPV6LEG56AFrSQdgyklJc e0ythLIRaSQL+gxHy/Oi97z2IubuDOVy+aSZsTtVKr5ByZU3oJHJ5qsWTIHFBZmn
Bpb8V51cB97pWp3N3C/gVqkr71F+hrM+T5ygRTxakMdMBLTvG7B3febGT5SuXrPM FvZNKM+3XuEa4Y3fZt2fdyYtV+FkEoWfkx2/lPVcSrQ/oOH0iXQxB1qsiuGYwydp
RuPPsQV+DbgCIZKDDoEinRbnER0VZE4iox2ZHOxBrbO9uTDkKlhVNWvSJNDA1eJW mUPo9qIqihPNKmbQzcym8EX3i71/HElirUHSukyF/qO0PsnQZCRj/veLm7Y4cDAW
oItNQcqiKQkREdbkSGWA8tYUzgn5MbyJ6yQ5raeYh40zvqvSaYFWxV3WMnEEstcY EDH7lVB+DG45aAXZHZI5OkkTwytptbEvx2bJQFCbB9wyb0c+7B9SO/dCY95pAIAt
Z9GgdjQkxf+RonMy2g8vqtsHm5ryRgoRKLauaEHC059mGhhc5JgziJghuucUMZN4 MHsWTroG3fRwZ/i5638VRu/wiK4GNE9zxYyIPNuOHPGDtfH4/V0vBWturB+iOp/1
zsezVQGpzwbqrX+x6UXbRBzRwBr5YGXah0Lescuui691tyKlPybDl1cZ0duofox2 awZLqSbeW+ySo4g9au5eyqsdVVlBFYPW8hVxmyiZbSd67gHNNrk7HaM/vBMUjKz4
MxKpQ4gzJidwm8iYeyE3fNbr93JOS1NneXhQ7gnBYxFyD4ALNVDtM61WIkWpf2FL WmzF6e5PLGT2PR1PlHbMUx9saNGGGtWHTyAYR8sWynazVa5gFFCxEy3gWwcatFgB
bBCZcbiIi4MaWSGhAgChS6AVS+vMvPKoQ2zGVP0bR2moduxGBSHWUp4PrcE47m/K OJQ2gZfVN/SSoOixwUs4O981r80W+ZHeOH8WXWpdSzS4+CIWOMwrsfFBprUeguRQ
Eq0esce2dr3suzKrJVDKZgBeO4KRTR+UIVV0NH0gr3rYH2IKMgIIY7KIwR7z2+rw hIj+uUSsuuj7FMOQt3K+enuWORhPu8b6f89qh5dkJl5S4+tKLZ6Qo43mAmbhUakx
YymRekxfQW7zIxHAPYoC33pHHRWEXzbI3vTbpIp0/AkQ3iK1FUx1iVsG5dCvuvNJ w1JR+DNmOFtLjCBgi9G6aCBnV+gJ1wWYFkVs+0cjLw56TevSf7j2I3Q4o5+w4FBE
ivgZM68SRNREshdV9tazQ6ea1eNkXIt1VCleK+alKAI6fsaBG1+qr4yPxBu7wNUi TrcSKUlRE0cVIqSv4RloWaBzWul5LnId2jYZWk+4F97SMt1oX5ZwTyU90zGL7f6M
GoXz5vs5w7FWcv3sNJT2TlSOjWSdRiC8LvAagaxA1e+p5ChA5eNRlqpM9LYvpMH3 FAaEFHRu+JjxWZfUWMntIdjGeUsYVw8BRRx8dcKBryhfmXwT7iP+EKsOUf6FszNN
3NQonqX3MUAwGQYJKoZIhvcNAQkUMQweCgBhAGwAaQBjAGUwIwYJKoZIhvcNAQkV uha4gBKcMUAwGQYJKoZIhvcNAQkUMQweCgBhAGwAaQBjAGUwIwYJKoZIhvcNAQkV
MRYEFP9C7LUkqB4M5+MXYoxJsmW88SMtMC8wHzAHBgUrDgMCGgQUx4ffmsHbTzUu MRYEFKwuVFqk/VUYry7oZkQ40SXR1wB5MF8wTzALBglghkgBZQMEAgMEQN2V6eSI
5I38Gmcq7ODXLQ0ECIDP5r/x8XxSAgIoAA== 57sRTBc+I8Ah5tbc+6Rs5i9MI5n8I4wFjBU5QCJM/cEGnmEXlJv20wBqoCekW9N9
j8JjCFJI20FoI0IECEHWKi/gHZBmAgIoAA==
-----END PKCS12----- -----END PKCS12-----
5. Bob's Sample 5. Bob's Sample
Bob has the following information: Bob has the following information:
* Name: "Bob Babbage" * Name: "Bob Babbage"
* E-mail Address: "bob@smime.example" * E-mail Address: "bob@smime.example"
skipping to change at page 11, line 4 skipping to change at page 10, line 27
5. Bob's Sample 5. Bob's Sample
Bob has the following information: Bob has the following information:
* Name: "Bob Babbage" * Name: "Bob Babbage"
* E-mail Address: "bob@smime.example" * E-mail Address: "bob@smime.example"
5.1. Bob's End-Entity Certificate 5.1. Bob's End-Entity Certificate
-----BEGIN CERTIFICATE----- -----BEGIN CERTIFICATE-----
MIIDxzCCAn+gAwIBAgIUCS2CS7BZT/YaT2CSLDN0yBRF/PYwPQYJKoZIhvcNAQEK MIIDaTCCAlGgAwIBAgIUIlPuMG0CCx8CzfXJwT4633mmG8IwDQYJKoZIhvcNAQEN
MDCgDTALBglghkgBZQMEAgGhGjAYBgkqhkiG9w0BAQgwCwYJYIZIAWUDBAIBogMC BQAwLTErMCkGA1UEAxMiU2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0
ASAwLTErMCkGA1UEAxMiU2FtcGxlIExBTVBTIENlcnRpZmljYXRlIEF1dGhvcml0 eTAgFw0xOTExMjAwNjU0MThaGA8yMDUyMDkyNzA2NTQxOFowFjEUMBIGA1UEAxML
eTAgFw0xOTExMTgxODU0NDNaGA8yMDUyMDkyNTE4NTQ0M1owFjEUMBIGA1UEAxML Qm9iIEJhYmJhZ2UwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDCZjlu
Qm9iIEJhYmJhZ2UwggEgMAsGCSqGSIb3DQEBCgOCAQ8AMIIBCgKCAQEA4SwN1/lH Li00rpoCsq2s8SHqb91QPP5bdfzfaJg/G61lHUhfavEX9zZluyMwPPE50wqwV2RJ
1IyS1ceZTQtBWpP9mdnO0Ww/UJaOvkfqC25ef7QhjLyOXzUbl5IGXtcqP77YGBOW X5dg0kStyH9s9Ja5D59pPnX8oJJ7XEqNKwxqSfJt7lRmM8BrDvSP55iP7Ofx+O+2
3/9aFTBSZdURKIwQPmFLZf1nAIlDH39Mw6VWqADAsnM3gH5NOZA7+pflS/Eq2hMx MzVA4tA6WUaUy2j9984CMmXH/CHjBK/+w21vSTmzFVGmeTqxxHONbd2zOqQ6Yqr/
GoKXmg4WDXBYGnQrwdtfKvguf09ycDp1fBWyLG0IDzrsChcebKEqCg2+YAINDh5q LBaHjAWl+tj9Q+2nIjEQFKlWs6vZll3Xwid6+dAxrtpEO5rIpKZcbn40qT1pyDpr
VgsWewcf/FVOnv02x3ZEaKiGElmWXWLjcQpCbawCGCdLfBh1UWNLj05R6AbFbnh3 ylNk8h3P90nwrOISpdlAJ2p71ZDdLfLd8c6qZGBPjmHwTUnjmH0oy33uBukT73RU
Ec7qKbo6DkttH/Vzs/nZ42l6NtmnjqSEH9CwbBK/wbnp+RtlaPSuEVvxR5leRHot W6raD8MwM4AhQ4ETAgMBAAGjgZUwgZIwDAYDVR0TAQH/BAIwADAcBgNVHREEFTAT
uTo+QL8DlGJ5XwIDAQABo4GVMIGSMAwGA1UdEwEB/wQCMAAwHAYDVR0RBBUwE4ER gRFib2JAc21pbWUuZXhhbXBsZTATBgNVHSUEDDAKBggrBgEFBQcDBDAPBgNVHQ8B
Ym9iQHNtaW1lLmV4YW1wbGUwEwYDVR0lBAwwCgYIKwYBBQUHAwQwDwYDVR0PAQH/ Af8EBQMDB6AAMB0GA1UdDgQWBBQBrAKQ6Dj0kN4Z7pXzMnThZgAopzAfBgNVHSME
BAUDAweQADAdBgNVHQ4EFgQUa7CAjF9FUMyO4G0V+kn1rZKNppswHwYDVR0jBBgw GDAWgBS3Uk1zwIg9ssN6WgzzlPf3gKJ32zANBgkqhkiG9w0BAQ0FAAOCAQEAa/tJ
FoAUye9Q6FjJCQsn4uurcnOQIboj0OEwPQYJKoZIhvcNAQEKMDCgDTALBglghkgB ZPgdlmc7Zbn5bccc1TXNn8qBhECGHma4iSTWczDUmsNjezmDNniM3hs8QOqUZvx4
ZQMEAgGhGjAYBgkqhkiG9w0BAQgwCwYJYIZIAWUDBAIBogMCASADggEBAK0s11zY ey6diTlEngrKZ8bnwsX03k9Bn8UDPT5Y5sbxwEHpwKew41LRiLPOZFSh3DzCKYS7
t1Ac52MnHMO+HPen4EXpxmgy+gi3ROEQqtQCngOCSmROb6ijnP65a221yCTqymqp HDSXJsJEGop1AwzKxtRss06C35g4ELK0Q2MwLw1u95f0+rC4q+vYndS9NzFyS3Bj
S/SEqVkXv5lU/1qbBFvRlqkEypl8U28WVKUb3gGt90/12XSFlk45u0wrmVZcSn5m MIt37gN+Yy8h/r2wvtPVJ40mYNGmtQhdNuYnr56LOuFMmGiMIYXE8owo6L/kzCcy
lwoNv3Ahni/cHZjQqgD29AhgSCue3NjJ/287oPoNMFcYwhMUf13MIcJ6ow7RiPOd YxxCy71lbnBOWLGcJz4HmRMdWJMRDV+mgLmTNnN8mPltgQU9gE3KNrYcST9v2kk+
qTfRCBknPfQqGrz0T15ZMayiW+ZgAm5NL+U/YV/uznT5mirE+VfGbz8WtQAzZcma N+cfxLhC0caHFL5G8g==
YIeHaCmff3wq8kRJZpWFSb6w2H6lclAYYLG734tqmsj1i2tmDVxGd6+lJNTd3p2g
+pjAwTPUXBXGP4U=
-----END CERTIFICATE----- -----END CERTIFICATE-----
5.2. Bob's Private Key Material 5.2. Bob's Private Key Material
-----BEGIN PRIVATE KEY----- -----BEGIN RSA PRIVATE KEY-----
MIIEvAIBADALBgkqhkiG9w0BAQoEggSoMIIEpAIBAAKCAQEA4SwN1/lH1IyS1ceZ MIIEpAIBAAKCAQEAwmY5bi4tNK6aArKtrPEh6m/dUDz+W3X832iYPxutZR1IX2rx
TQtBWpP9mdnO0Ww/UJaOvkfqC25ef7QhjLyOXzUbl5IGXtcqP77YGBOW3/9aFTBS F/c2ZbsjMDzxOdMKsFdkSV+XYNJErch/bPSWuQ+faT51/KCSe1xKjSsMaknybe5U
ZdURKIwQPmFLZf1nAIlDH39Mw6VWqADAsnM3gH5NOZA7+pflS/Eq2hMxGoKXmg4W ZjPAaw70j+eYj+zn8fjvtjM1QOLQOllGlMto/ffOAjJlx/wh4wSv/sNtb0k5sxVR
DXBYGnQrwdtfKvguf09ycDp1fBWyLG0IDzrsChcebKEqCg2+YAINDh5qVgsWewcf pnk6scRzjW3dszqkOmKq/ywWh4wFpfrY/UPtpyIxEBSpVrOr2ZZd18InevnQMa7a
/FVOnv02x3ZEaKiGElmWXWLjcQpCbawCGCdLfBh1UWNLj05R6AbFbnh3Ec7qKbo6 RDuayKSmXG5+NKk9acg6a8pTZPIdz/dJ8KziEqXZQCdqe9WQ3S3y3fHOqmRgT45h
DkttH/Vzs/nZ42l6NtmnjqSEH9CwbBK/wbnp+RtlaPSuEVvxR5leRHotuTo+QL8D 8E1J45h9KMt97gbpE+90VFuq2g/DMDOAIUOBEwIDAQABAoIBAAvQiKcAmXC9N9D4
lGJ5XwIDAQABAoIBABKeXOqtzxWxJfcNUQzA0H+X2xFcpDBG3hlgyZ7MPXsCfkfa KQP8t7H20H2C53aJii/NvIsBVJ1zlSVva22ocZ7nK7FP0t1PzTOAbDDlZV7WCKSD
8ic79B3FO2nWBjbTXcf1lNKw0/njmGRGIZoP+yI6KqGt09k0Ec9GiklRclx/EGJF LfNiPhLLN0X/LM6It75VkpZXym5fRiOWO3zmokgfZY+lZKlCnaogFfl9zTu/TSZu
5akbw8wZJXOMDJmU873KzDtJ+PZzM+vmHEayMmbFklSuOflImjemrxS+kLZYwS2d rJJ4dk4RFG0fwP3RfgG9FDEokWsU7fNS52VCndOWdGIt0EmsZIfX9H8rnnSrSTro
TXW3b2d7vxGPKNfYEmg7SSg2xsZsORX2S+ORyTQDQEF4utCU1tNrmRJkuy2UIUWZ Dsk9cQjyjMcCH7X340KDUaVJlRtx+1YlbPTyuKF2nbNjSWfsYhuIOGT4xGm6Trda
LUZstkgjMI3ztJ46wpL4NyO2kTEhMawoSmIxDgHztXWzoB8nFyuSzJwYg26OvsTZ z6bWjuxH7nNrGKrtO14aE8Xv56sC+J5ulwaIjf/V+eDZVfpVgiXyq6oa6JioPv7u
CVOhyTGhiALm0ma+7Vas9MFyRnFKkQd2ajruxgECgYEA+Z3Hi1oZDDF+qavmxPeg rx7cIQECgYEA9ovqOi/OYdDNQTJXB4LNMtS1WLxgrpzE/SNPEV5XknQ5yf6rrKZ3
gyqC9OMyH6pGbHqZhfxVLm2ZPdhCbTYV8e7YNnBK7dX1o04BAA/OS/Q5MbF50sAJ +lr/r6w2Opr4PY+3/igMoBZcN7YgIM9Drkg6bDLzrS354A9dZLDBNAgCnDR0yY87
8Peqeef6FzJ319S+DGfTlJ6EIZhp4K8ysgrQgSGaI4RUtAaFIHm1EsoIG1X+2HJJ U3f2ljjpCA2zZrahYhhKsfyMxt2w3cUso299OYgjNwLaLI7LrXvPa4ECgYEAydpv
cT0k5VteU/1kyXLuPeBbJwECgYEA5u49aUpfSEDBV0KJPrZDXR0ib6J+XKkTWAeL fw+zdEc0xbGGILb4xiiFpJY2s604auZ3/s/y9W3v8LSKrytHHopQOg3GALvQi+Ay
ImRC+5csf6HSdocCSOsgaZxqOf8TWmaOSpEQcxb9m4ioNHRniQ84Dk3dhdJIh9n4 LWRBIaJTzEueE6lIYInZI2+WvK2zP2GB21/JX5MI3x7AcRp//1muyhnW3GfyPGpg
g+PQUa3QxpXFdXVxrSp6bQJdNqdhd9tt3izNe2v7cw8YKhvqSz50HwnwoU0NhDQG 6zRE45dZPm9nklywl4+yl47ubdOvNyxifBmDxpMCgYAQHb1F6HIZOsjwBhZiS06W
Q4mPAF8CgYAf1XVrWjQzj+RdcyTdHc+EqtlErezoiOiuUPxfUAz0/Nk8P+ZI00r9 kAj6r/Wx9FV8Jp64h+45iJdueNNICem119T26s7wrcikXYytdHi+zjdg/OrEuke2
Lb65QpzrtAu9pecOwPVITn80zTOCIyehaZR+M417g94w0lribiNXoterCSsHkpBe UMpg4EPFgkffOaHlPxiiChQBmfw4YMCECEd6MmYpPJwJjs6l1uirEdMx/LPfC1CL
kG6C6Wwk921uAB7eQ2dKXCWohtEXfYvMO0YHUh23jGtcHaIwlfpKAQKBgQCbowse rnIFHL0Qj4MrfnoZ8QnyAQKBgQC6WT2ryPv8MiynAi/4jdL3ZbuTadYQZK98CU7o
kDJBVus3LS+kZWBnPAB+bmxtdMIFvSfHaP0/5PXnmx9mJL2keVsh8nohVkkrzxyt YGRFbnwf9R0/gC3FJR3RqpuMW9e4+n54Z2C1w12ncnv6XMLj1P8wdrlrcNTVg5hV
IrGMb31Cuspqd91joS8tbMsUqtGZRY1ZDkvTEKs5e61V6W5Qv+U83LAH6q0lA207 xYVsBZsgGQzCnhtiyxHRpK82hYQdgHv/SB79GeGbAVBVz9p74X6X6q11mQLeZcx6
pMRkHzWbqRunHaM9TP0kAiX8ABtQ82MZV3daTwKBgQC2TVr+qLQPaCnvxGrticVY EzgTnwKBgQDjWmtDk85A0GQuJBR7QOB+CXb39j0a78Qwywpx+XYibmg+N3aD1yJB
OK4mtuveWJP04gO3mQZwbhDRzhWFpoFBHDev0yPxWUMM5/yYjm5xyHKa9gr3xmum 8VVtHWYbq3wM51EdjxYVagyKd3IKIjnPbBIWIjFWqEgDXmBROwwR8DBpfvff3jh4
2qMHvRCXbvo0IpaxA8QZiukfUCapwojs+598VnQ74D+81gSkQzh8sM/NeHG2+WXd JjK+LtvnHhhw09KtfCvZGplZYfSfC1tLuodBMNjxUX9u04bqTyqx/g==
mLVzkdz3FTLWyKnAQcA0PA== -----END RSA PRIVATE KEY-----
-----END PRIVATE KEY-----
5.3. PKCS12 Object for Bob 5.3. PKCS12 Object for Bob
This PKCS12 ([RFC7292]) object contains the same information as This PKCS12 ([RFC7292]) object contains the same information as
presented in Section 5.1, Section 5.2 , and Section 3.1. presented in Section 5.1, Section 5.2 , and Section 3.1.
-----BEGIN PKCS12----- -----BEGIN PKCS12-----
MIIOSQIBAzCCDhEGCSqGSIb3DQEHAaCCDgIEgg3+MIIN+jCCBIcGCSqGSIb3DQEH MIINuQIBAzCCDVEGCSqGSIb3DQEHAaCCDUIEgg0+MIINOjCCBCcGCSqGSIb3DQEH
BqCCBHgwggR0AgEAMIIEbQYJKoZIhvcNAQcBMBwGCiqGSIb3DQEMAQMwDgQICyQi BqCCBBgwggQUAgEAMIIEDQYJKoZIhvcNAQcBMBwGCiqGSIb3DQEMAQMwDgQIvszW
BIYtsOMCAhQagIIEQAvzXw/1WcnliaVunfrC1lE938KEKEQ8Z04VwolOliHO2gG0 w8h7VVcCAhT/gIID4El/66Kqq6rDw4JuvnOKupl5Tueo6piyJPJ0fYLaflZAqRIY
RypRv45m0A+se3fWDaEJ1nQeAGP9A3qHGYlQSwIDNkUGvk4CqHv0NXOxjdXemhHu FYno6VETexj6Jr8QoakjJLP/75t9hbZpDmd8DPQj6fWmwSlC1RCu0TTpy40/j3Nz
IYs4OxYePflGpdjiqx4dtI41bowOATL/f3/X3Oqu3m81y8W++HN53aIzoWDkT7HB TmIW9vZr6jgG9MkOLEWxNwLvwRpSh1WFXGhiMkcmwPmb870n2HZo7RWXjm8TPAvJ
PGFebll4q461WqRxs/on2I763xR4iqqj5RDgLfE1K+pBdpzCqWTnjCYLbakJVz2k mlPUyveC0B26iFPvurobAeSAXhIFVEmXGWcVhlKhpQ1GYhmUVnLBa03Q4qbqEISS
dvmADPEIEs8RDjl8P86VlyIN4sIVy6LoTFg2Mr662IEz71DoF+87wI9GTTQS7xbw p6Kdt/nvLwW44s4Oxq95EzFya4AtklUCfIJ2jR9Cb6+N5IcQj4/g+o8b9I2xv9lo
kuUfH7Rc1QkmFDZ5ppFZLx/sGG+j96w+5+4ZbP/rxyIye3O6yEufHw7KztqSyjEh k5t39X/ngGhGCl/PnXnEmwlDq2Lq5bu2wYwYX4GR1klAabm7+h8PI5gFTdG18vBT
CVMG2wB4IEZyb1pNhBpTk6hk+5vso944l2XKRRQdz3hupS57SR3fMA9kBxnV4K3o wo2QFpVnnMNiPf85XVk8PaOf1rxSqDiZttVlziVRVdvjgLAO4pvbVYOtgjIhPPmB
H5Ju7+Gj0rfOEV/0XJiH1j5o1iZPIZ8bGHFSzkoJyUj3aXYdx9ajZUOShBmuKQpF uXzwXJXB22VdNAiG4DWdapj5RlsokBqKzW8JauLlI4oFl3oyzGcaGolbWMoCWmGR
jemi1daVgyWTUXCj+4BKr7qayCVi/a870bdZzGnbedfbXWYnFLu23ympw/yuT/Ez ixz9pyb5+Icv/oEL5ljWwPY0pdFfQ+T9PH91nDMa3X1hnwrCskJex1hLqRMnWDKE
9gVfZMiwZQGPdkH+oHgaZ4L+wmDY79L2ezY2vsD75ig9P8BRwiNV1I/2G+18CeCE UK5AWUl6Diiiqy2nlQmiZKULlyDX1ICzaUPNjSi5VoxW/QGLdeb6TOykWaDJIame
cOBuIBDyCiB1BfxeQo6HxrytUWmDO1B0HwJcEtUD4lOf6ntmKv7UEE5wD9Kp6AAX hq1jrmq/o6yoH1GFtUn1VUEI9mjR2k6Pod89IW35FZQz7hFMX1iBv3nwcgIoQapO
jmV7Zb6lCI/fApJwhqoJ6P7zJhgURzb8/buYYfuDzJuEiwdpR+SLRVrrRZGkDRRL eiy/vhvr0bAFj1ZRZ/G5oULCcRq/iC9jE2qu3lYXVQ7MCo+4xPkYMUQk98rsF1cL
dCJEltu6VKiUgCE1jggOi/aX6cLCkejCl0uoQHCGxRRa8F03COq0aBlq2FjmwJ4S dRNQbAdVpQfS0nclZOTvwGsK7z76dWM865yGRE6YzrVICck+QeAzVN555kk8d8US
OWQYig0V44AShXpb+B3IuqfEaLcn8C6CM18l8XzZSixwmlrFsfmVZnEFN7DnBcIc SMS7S/y47EaiCPaiQLCzRoHp0NFELrsjgryFSSG6PJQl+EbcNQfdjJQB3j3PLRed
mf+nhBXeBezVaK6q1KMedsUTbMXtSY1WKZFseN2euzQutA682LQly6MO9sp2skSZ YI0ixGVGikdHF1R7geyFgUwwdzBBcEJkrNhuQPiF7PhcsNLvzUhddCTk8GKPg8T9
WchX6NaL3/43frdcMWShEWRGBlOHL2DRxj8WrfpEEO7U1SLoK6MAPrZRwj/+hTSU NJIgMxjBBYic6QFlGEhBb1Hyyud8vwrLB1Jan/aZ72g+FyfVvgzKzEYg+B0qCK0m
zz6nYrCxnGBedTnknnHswTvllxN+YviwiByLKykH6ZRml4I9lZYIlZUiwC6wGq2E 0gs2+g6HgcyfP+Pz5ZqUxNBtcujZ8sIOL3oy5OuGg72FqdcDgqdJBUC84txVMQPm
AQas3B75bLGhnj+zRQOvw+KwmTWuiFPUyYnpBJnwthxeS3PMAoUcoB7ybGg1FtSo 2pwBlEYBbZBGjWQ+vX7y8DCjHgkSsBG2XIKx1c9Nw3DPJplQtCirJJYRa2/6FOC+
C26PxhgNMCIa7XZ8e/wlM5QRDE7jemgjaGIh001shhxiUW7c9Z+rTIZsxV+DJa99 8i3nanDaIYZUcO74dyTQUVLlJymoO5UcPKK6ZqW3O/qiA23zCZIQ2G/S/c4qyefv
UGGwjRPurlAjQE0qLtuA+iIMx64IsM4kAnhX13mR2yxvEBw/loZjxfvRHdq4zgPr Z+Jl529zpqNBjZKWDaK7Hlcqf51sWMho5c4s4WwDqMrbKsaIN5lQt3xGc6q2umYC
ypHVKZWMdGxxDDHDamc9wjNm57fR6TeBnJLJujliV/H/Fy/sYKtV5Rf1pf1dfL/7 yGuc/A5MVrFSIdFyt+L8tAvVBMHGpYRz9XRvry8XtdugTtD5qpQVfT0aHjqKMIID
bmY/gU33jW79CTF7Dc9e56edrgP3c101Fhy7TqSFQdgRTdKwthi3mGanH3kPPwMD rwYJKoZIhvcNAQcGoIIDoDCCA5wCAQAwggOVBgkqhkiG9w0BBwEwHAYKKoZIhvcN
ZsO9mVpeh4Cr2DCURIzOW+a7XtkKINsnFgk6xbrs/ORPjsS9IYbf2FcauAlhMIIE AQwBAzAOBAiB/XCQbXHtjgICFFCAggNomvRtKzKEFruatccbzp3KakWSte4bq96y
DwYJKoZIhvcNAQcGoIIEADCCA/wCAQAwggP1BgkqhkiG9w0BBwEwHAYKKoZIhvcN zHb+56gj/XPySdMJlW9+AF2Wn0BfYdFpcR5H0PYHfyhnYWJ04XiPrB9EsDCKnpQP
AQwBAzAOBAgg+R/Oxgf1jwICFLiAggPISORX68GniJPLQGdtk1jleW+1U3SiginW BkAgWyOTRfsnafF6iyc1Iuz56nWSsBIirDWMGZkQZrvBZlDKVHn/TSU9juRDAgLP
SHaDNyhBHah1xaq5PXfRkISW2PW/mTn18Jiu2Ww0FJEG46VLBEn2XxcxoTqybhxK 9T0B3og4Y+CahyI3sVz7j86803TdCLZ5WR18jBF5zaU/A8Em8YK965We/a0xUdCI
oq/r8AW1SAYnycs2pMKZLs56nBA05w03YGuX3mpUrG2I1BWklwXVl2pjgBAb1EEC 8ZGgI+qPT+AZuICuqAtPnhMU89AY/bYwnDQ83Os9XTdCtHBtnH9/etrCey1qDNRF
i9FdBGOpifo7Azjnddi3o6QAmu1q2dJlwHWTyWkpLdzFWTQWSwrbN5QEQAIDefEB NNmDSWgmWSB9KdabdKePHzYZYppMzajs/jbesAWWT/jVbdtNXpKYZDyUq0iF1uYw
ABAYGHkYK7r7IVevIoUBIT+8onUd5z3AjA81+60hMaEE/4n9m4X+iZfZD8ieUhHs OIxOw/MJ3TVVCklqzpx6aLAIMlbCKwybf+mUjfDlMIYo63mU6p7Wzgje3HZfUHgX
jP/IcRc6S5Jzc2Dyl6k84zO5bD5od2GFAUVeOdSlxaN7R737wgHatlLG1yUqHW+Q Z4mgNnSCQi6vURVsA1K8IcCYDlR4e1Ei9qBAJpqsXyUAXqgirVcJ4yeUbleFLlmy
TLCDrOzxM9/By51BnXocFhkFWWqs4Lrj4quwV5lqpBoyyrfo4ssHzB/PkG7iHrci oocZcX41hkaZOwi7q7Z7ycCF8ng2dxP8msnR+iStHtanXoWlqkK055mLiZgeBbsz
Vh8RUvey6piheLn8KAqxR1dTXx+FdY7E2aPXwdaOVZ8ZqQLqC1lh4YIk7HIuEfqW 8fbUTmk5ZFgH/hIkSElc2dq+kFvq6zgbtyc37qz6o6qx9gEfYvpiBt8bZOlkM9av
1JW6EYmD/8SiqTXW15cMhNuZJw7ho7v/pw17i5lBz5l9tJYRwq4ODIxU7XwvydIB iWPlblbzr0PsD6mBYgVa7kld/TEBxX7DoyluxHBcRRYCsN7u19jZgIRemUQkdzno
qV+paYBXwqWdL98H5sYC2WCp73jj2ROD2IZUd+RL7JxlM6t/Ilf01GQWar4xl3Rc zCjJ/KavJLGb+JJNDoD/kParRsYWrdzJuQ2Oj2T4ec56hWIbb+8ngC2Cjiq9EJZk
Nzw4CeWPqrAOsjOOWxjgz4nAJkCI0zoRIzUc3BRDkwhg/Tb5YbjyPxTJvDwtyhy0 515+ELC1/4nIAbX1qjK+3Azw8OUd+OPnYrzrxD2ggktoOHcdhsPtYpmTM0WrdtJW
x9punubjChjMckIyJ7uxYcYkWXE7U1GCz6Cj7vJmOx/CSX1C0KXBZoyqHqDaie1d kfQdMueddSJTDj+ZMew3qyKNo1FJaIVRQE64dw+m4t4nK3hgAkvEuQ2HXO6/abo3
wcSDbiufy9FOkS7fjx5G+865rcbjCAnSZRhdnHjnKG3d8zTKKcP7aQu4DV2orzr1 WqBsMZ8nv+mn39iaXGEbYPbWyp3WA69oEpiQ+2Su78TaJ2x0eBmauoNaqJVhkEVJ
G1vaEtLjqi602dg0FkeEyLjvZOnLeMhj5pyyBHQp6OW+rlLSoY1jqeMhLbIubPqi NDhYbgOiVV1MPDi1/TaZ2yc1TKSm0CQB8MYWkB8Pl+eDTftxI7wUP7WHvPA1Wzie
OEAPBNOP3ntMo0T950W7xm/MEEqUlgcm8vnbhlPjEagCaQNHnZwnc+A1WS24DVk0 chMMtyQeA7fWL/6M0g97UmGDYm1y8atM8OT+8uHFDHS9ZXLYdVOX1dMPa8R51LIt
xaCeyNdUd9OuvIvM+b7mgR/tD3LFB/EwG11plgDD3lg39GZxo6ioClsu88amzC9E LKTCSM2kFbMkPy1q8h//nKYktLnNgD5Mg7Z+n0OYcQEZZ+Znkq3a8KqaVCh8fsMx
EZ5uN/kZUT9ISqvgCXp7IvrwXWuNqJcQg8kAJnkq3UP0nSYpWAq3XliaXNzzN16P 6CeYk1hDd4O2udJpdAiq5MuSaFsdHTklI4+S0e4LCCswggVYBgkqhkiG9w0BBwGg
uG8d5zZQDVWaQAQeYSdNd4A3S2CXSEQZpuR76Rb0mQ5d9UlweFwZXwOqfk/0l+Br
Y0WpJnlOVpHfuaC/Lq1o8UkYfktfruR+8HcOBW94YqjktoQ4JnzDKB6NuLiD7gPZ
cIa8em1hCb6G46Hed3DA3CP9FBkwvIFQotvXkanXwlCtFIty+BLaR3WkCo+XnTPJ
wcCnsNj1fUT3A5jxJcaNqZ50nqSpUDpywqBH2OnjxWswggVYBgkqhkiG9w0BBwGg
ggVJBIIFRTCCBUEwggU9BgsqhkiG9w0BDAoBAqCCBO4wggTqMBwGCiqGSIb3DQEM ggVJBIIFRTCCBUEwggU9BgsqhkiG9w0BDAoBAqCCBO4wggTqMBwGCiqGSIb3DQEM
AQMwDgQIa1JMn8WZhDUCAhQJBIIEyG6S+HEHperIXKg4B7Wd6qDHvbpphQjYAcxo AQMwDgQIyPYWEdcyAm0CAhRwBIIEyDKlQn0Ac8GkTFU6QLlMaVStle2bQDTtfF9M
aROYpZV+JI7OtMXZgcMIFQUvR3aV6XvAX6jDMSav4SDEwq9PEGErDgnQ326mmcl0 1/1FFNKqNsssNbPwOpvAUrowEugT0/I9DoZzFJnpQEMS2Y3IE/gdy4IGAYDSYUkx
+69++sFFgYw7QRDeTzKbm46XEght5syUT/4/qHGse3nUw6dSn1gvKV1U1QME/diq ygTqX7iRgnI/YgibzQeq6yhp/y01jEDzsEaqEm7tRRidJdgk/J51v45LAB/PmAtC
Hz2SO7bDuPYYhQZe5JboOrW2o+OZptc/QYh0a+4qJSi8/+eCFnknSZV4fiKHpU0+ 7VURjhPq7NakNgJ5vB2n4FEJJke38+dlb+Xq008+rjzPPQ0XgMLRYELeHAaeWhvd
a1BpwnbHeQHLN18VsQhIIujHqLAssPYKyTExXk5fqsiKs235Xn6DdCpMznHtjbSv 3c1EYqyi/J/i+Lc3COOc0s3ArPIXKAazzKAIShOkF7rIZyLUJMdQOaEd3JvJlgs9
abeMVRhKKHxwvFpCz/3NdHKZPzPXu253/24IxiEkbGCI3HtwLIup2gQ2T1M5wMSF nvAj5io8XyvpWOEdxjpsWIAybltB2gZmb4JjF1jNSrBogSyt2a2QhGBy+mUeRL5n
Gv1qn5nPK4PO+ryfFUKwIYbRcZRTXRXYVqYtGT7bO3fsp3hGXbI2W3L8C9JCqZuf Utml6D2pMqKdwI9aGrYRBn9waaNw3OD0Yh3J46++2w6Mn058YbCQvFBsNbSNvlVP
U4kH8lbzfHbasN4n4w/Odzw808iPK5pRji497gJUATGrCrWPkL8sTz5L3JTe+cql 1QiaLULuso+rrT97d3GvPK/HQIS5Zp4FsPbD9xcoIR9TRxueqwpDA54IpSdRYjpZ
kd30725f52e8oxBr1ztXP2dfCUHDiIcjNPgGHedR6T5p9f2St4MDXhqgDeVXJoTd kBznw7fJ/3BJbImuY1SBTgQnxkzM3i2ZW65YBsh2M3M1Gt9/eg2J7SVZ30E0kehR
TmrIgo42SQZ/qo9LmUCmiNMjc54r0pLJAKJq4p2rBHXywEg/yVac7m3ZLvW8Tt6P WvNPBsxvjAe2dSMlTsEcBxava4gmB+OXx6bQObFTWCzSislLr9qw8WAVhX/bQi5M
spe/mzwPGS/41ar5XB5SC06kDYfuH4mS1uq7671RjJR3f7W4L14ZbP6wpvHVkQxI Wc2l6ubbJTQ0WsMq5oKmnxbJNUKirDYMUKDfkQc7k+Tf81oeYTAr9ZFQzRAsfnD1
PsL2DfRMQ36SRiU/H/b4ndxweryKwh2OvXaNfay04xEJ5UNwJDBk6UePTiTfsKxa uRtdi1K3oyapSntaIzjC9v+9fekLSaegTfTfTdnvWNOA1AKw95stN/SMp1j9xXv6
OxFmOYHdO0IcdwvawwFbTcK5E/XVgtrjw/XUFMOqZgsouRTI0W1Q59vI2ftiz5fE /tPXP6e2cF/cHb1OOobhm+BckOQ9Y9RSbmpYuJLMPJz/kMiwi3aeR8h0U9Q0qSHv
bnMN7mqhkRDJhzVuiEiqa64bIsMQb2WAqFlRfijpQ8YqW1JeY5LlwHuheU+MtWdm 6Hep5q9mjWRyjEg8bHMF+450zYgurHp4vW5hiZ4WW4MYxkO8v7XE05qJ1OWJMHl9
XtKsi1IAlV3fGEuguUKvr//zvWi/N6lpHcjB1v9Z3377Ff4qxtPorFibh3mRwW79 IE2uJxgP2YAYF0xn3xviqEChGT7LxgM4K2F5JMDqwUyISMqPkSFcrz83WlyZnft+
mDGkJUOQD4tB634Mvy4VHQoPMo6FEi46T3+CcM+ZtCvE4T3o1sk696OFuhsBEUWS q7NuISpgsfliHJwnVbODjn4quMeUmvSWeCx6k4gvP+tK6REsSRWcrGzp7LG1a7Pj
mzRDuCo5Ju41XZmLET/PFLU/aldh1M+oDRDqSFAez5DhB4ryAeUIpbCHXNAOpONM U7C2BvVn/n1CAD+v9qrlCAj7XKAVNQ1h0S2yS7dCf2lcQjPRh7XS79OjEcdHlJzP
l7vOli9Gh3w8500j+y+oddCXy5iESfVfk82Rw0CSAwgta2JonuD/rZXXFJyifdl7 9+xcVsex4EpCyvCyBNjz00phOsoXy1kdiPJ+xghNHQEwE7ghFAfBmqeId3kpGs3j
H2HKbbdCBXP3SfNRzMiSjAtzNDphNR3YzRwVBZqjbk0/5uNJGkAC7XFjwTk6jGkq dl3Jxk23B6qfLxxMwpJ8caXvc5I7XeHDWW9wG5c0hD8rFIpHbKipXlsLkVtbOrcj
yZPPoLmpPeR21j0LjBlSKyREedAtMRPCp7sw/OwROnvAaJ1aP3Cc0Z8RDLsUOl0W MhD3cuSNvryF6ZwBuKkdvGhTpU5Ltpi4sr7Q0ArVXzC8J/OVxTPoOlO+R89IhB39
NJGPhpDno/zS/gLbsJiZZEnQTYc6zwa8iTcg3yabUjgnjFPimG4eYIgZlBHbpyFh 2+I5KOSQHsawLOWeK9fDO+elIh+5MXkH2UdwGwazjOdAnJVQUZFN756CrDIQI6ia
lL0jBG3D0bt4lhqb2p36FjminiAJrd3tE+/tyxn0rV9CAhnNVYL9bXGhFPMOmjhn G+PZb4xtFfMV+gl09uRExVm0o31CfzrTz8TQ9KOhv6loRJMUftSFFxhQdbGnDtrE
cpQkHkAy0g867AIDcw794wf8NfDagsp5lZx8pOf+UU0K62J+cE0KUUPAfs83rXiP Osn2wgwmpf0u3le1HZ7lxL+7w2XaK3z98lRma2eMazlu/YqoXbNZAGlzaMaBnhpp
HTkAIjbSa0hzxMo3fpeY44v10JloigV8FTbjsj2k438o1bOU2fYFvkT2cD4f29iJ z1S1qPRPp06WWXE60YlrqxdQMU6zVWqxSIWbWNR4o6ksL+VSZFF8EaB/IsteaeIJ
O4g5bwiWs/Z0SCCaTjtH9BpQFzr0a4wc3stc7URnuEy096NjYbyevffIoH3r55Yl dyVPEUQRJZg7Ym7DMunSRYI2z7M/q42RVDz0OZyhu6vSKXHm67G+hL7NOkI1+id9
zBxQqkOHZ+nZExy/VLQz6Zrxi/YXZu8Nn+X8bfa28NlJbRDJRcup1tFDzGs3+zE8 qEx7hxPXKtm7xA5tlPYXEzoEJ8AweV6FqGPsDp1FQbOUXuSZ88ksp0rEXO5ZfzE8
MBUGCSqGSIb3DQEJFDEIHgYAYgBvAGIwIwYJKoZIhvcNAQkVMRYEFGuwgIxfRVDM MBUGCSqGSIb3DQEJFDEIHgYAYgBvAGIwIwYJKoZIhvcNAQkVMRYEFAGsApDoOPSQ
juBtFfpJ9a2SjaabMC8wHzAHBgUrDgMCGgQUCBYj6taNz2Kbq1GVvRhDiwAr3goE 3hnulfMydOFmACinMF8wTzALBglghkgBZQMEAgMEQNtkJG/r+MMQQ6SBx2QWOarf
CC4G/pq+Uab4AgIoAA== yXDT4tFGtCrec547Oj5mN13aL2fKBuz8pzNCec6NM6SDbXb50IR2B7k8VWi/O8UE
CMK3E7w6ejgaAgIoAA==
-----END PKCS12----- -----END PKCS12-----
6. Security Considerations 6. Security Considerations
The keys presented in this document should be considered compromised The keys presented in this document should be considered compromised
and insecure, because the secret key material is published and and insecure, because the secret key material is published and
therefore not secret. therefore not secret.
Applications which maintain blacklists of invalid key material SHOULD Applications which maintain blacklists of invalid key material SHOULD
include these keys in their lists. include these keys in their lists.
skipping to change at page 14, line 47 skipping to change at page 13, line 43
[ RFC Editor: please remove this section before publication ] [ RFC Editor: please remove this section before publication ]
This document is currently edited as markdown. Minor editorial This document is currently edited as markdown. Minor editorial
changes can be suggested via merge requests at changes can be suggested via merge requests at
https://gitlab.com/dkg/lamps-samples or by e-mail to the author. https://gitlab.com/dkg/lamps-samples or by e-mail to the author.
Please direct all significant commentary to the public IETF LAMPS Please direct all significant commentary to the public IETF LAMPS
mailing list: "spasm@ietf.org" mailing list: "spasm@ietf.org"
8.1. Document History 8.1. Document History
8.1.1. Substantive Changes from -00 to -01
* changed all three keys to use RSA instead of RSA-PSS
* set keyEncipherment keyUsage flag instead of dataEncipherment in
EE certs
9. Acknowledgements 9. Acknowledgements
This draft was inspired by similar work in the OpenPGP space by This draft was inspired by similar work in the OpenPGP space by
Bjarni Runar and juga at [I-D.bre-openpgp-samples]. Bjarni Runar and juga at [I-D.bre-openpgp-samples].
Eric Rescorla helped spot issues with certificate formats.
10. References 10. References
10.1. Normative References 10.1. Normative References
[RFC2119] Bradner, S., "Key words for use in RFCs to Indicate [RFC2119] Bradner, S., "Key words for use in RFCs to Indicate
Requirement Levels", BCP 14, RFC 2119, Requirement Levels", BCP 14, RFC 2119,
DOI 10.17487/RFC2119, March 1997, DOI 10.17487/RFC2119, March 1997,
<https://www.rfc-editor.org/info/rfc2119>. <https://www.rfc-editor.org/info/rfc2119>.
[RFC5280] Cooper, D., Santesson, S., Farrell, S., Boeyen, S., [RFC5280] Cooper, D., Santesson, S., Farrell, S., Boeyen, S.,
 End of changes. 20 change blocks. 
312 lines changed or deleted 310 lines changed or added

This html diff was produced by rfcdiff 1.48. The latest version is available from http://tools.ietf.org/tools/rfcdiff/