Hello, i have a problem with a digital pkcs7 signed mail. i want verify the message test.ed.text. i have the Digitrust certs in the CA-Directory and a valid aliases
lrwxrwxrwx 1 replayer replayer 25 Oct 5 12:08 0be059c6.0 -> ../Certs/Digitrust-A1.pem lrwxrwxrwx 1 replayer replayer 25 Oct 5 12:08 12d55845.0 -> ../Certs/Digitrust-X3.pem OpenSSL> version OpenSSL 0.9.6c [engine] 21 dec 2001 OpenSSL> smime -verify -in test.ed.txt -CApath /home/replayer/dmca/Trusted-CAs/Certs Verification Failure 6965:error:21075075:PKCS7 routines:PKCS7_verify:certificate verify error:pk7_smime.c:213:Verify error:self signed certificate in certificate chain error in smime I have analysed the pkcs7 structure, and it contains a root certificate. subject=/O=Digital Signature Trust Co./CN=DST Root CA X3 issuer= /C=us/ST=Utah/L=Salt Lake City/O=Digital Signature Trust Co./OU=DSTCA X1/CN=DST RootCA [EMAIL PROTECTED] subject=/C=us/ST=Utah/L=Salt Lake City/O=Digital Signature Trust Co./OU=DSTCA X1/CN=DST RootCA [EMAIL PROTECTED] issuer= /C=us/ST=Utah/L=Salt Lake City/O=Digital Signature Trust Co./OU=DSTCA X1/CN=DST RootCA [EMAIL PROTECTED] subject=/C=US/O=TrustID personal certificate/CN=Troy D [EMAIL PROTECTED]/0.9.2342.19200300.100.1.1=D01E4742000000EC71A211DD00000511 issuer= /C=US/O=Digital Signature Trust Co./OU=TrustID/CN=TrustID CA A1 subject=/C=US/O=Digital Signature Trust Co./OU=TrustID/CN=TrustID CA A1 issuer= /O=Digital Signature Trust Co./CN=DST Root CA X3 How can i avoid the this verification error? I don't want the Root Certificate, because i dont want accept test certificates. I asume, they want give the reciever of the message an easy way to get the root cartificate. Is this allowed? In detail: Certificate: Data: Version: 3 (0x2) Serial Number: d0:1e:47:38:00:00:02:7c:00:00:00:0f:00:00:00:02 Signature Algorithm: sha1WithRSAEncryption Issuer: C=us, ST=Utah, L=Salt Lake City, O=Digital Signature Trust Co., OU=DSTCA X1, CN=DST RootCA [EMAIL PROTECTED] Validity Not Before: Sep 30 22:08:07 2000 GMT Not After : Jan 21 23:08:07 2008 GMT Subject: O=Digital Signature Trust Co., CN=DST Root CA X3 Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public Key: (2048 bit) Modulus (2048 bit): 00:df:af:e9:97:50:08:83:57:b4:cc:62:65:f6:90: 82:ec:c7:d3:2c:6b:30:ca:5b:ec:d9:c3:7d:c7:40: c1:18:14:8b:e0:e8:33:76:49:2a:e3:3f:21:49:93: ac:4e:0e:af:3e:48:cb:65:ee:fc:d3:21:0f:65:d2: 2a:d9:32:8f:8c:e5:f7:77:b0:12:7b:b5:95:c0:89: a3:a9:ba:ed:73:2e:7a:0c:06:32:83:a2:7e:8a:14: 30:cd:11:a0:e1:2a:38:b9:79:0a:31:fd:50:bd:80: 65:df:b7:51:63:83:c8:e2:88:61:ea:4b:61:81:ec: 52:6b:b9:a2:e2:4b:1a:28:9f:48:a3:9e:0c:da:09: 8e:3e:17:2e:1e:dd:20:df:5b:c6:2a:8a:ab:2e:bd: 70:ad:c5:0b:1a:25:90:74:72:c5:7b:6a:ab:34:d6: 30:89:ff:e5:68:13:7b:54:0b:c8:d6:ae:ec:5a:9c: 92:1e:3d:64:b3:8c:c6:df:bf:c9:41:70:ec:16:72: d5:26:ec:38:55:39:43:d0:fc:fd:18:5c:40:f1:97: eb:d5:9a:9b:8d:1d:ba:da:25:b9:c6:d8:df:c1:15: 02:3a:ab:da:6e:f1:3e:2e:f5:5c:08:9c:3c:d6:83: 69:e4:10:9b:19:2a:b6:29:57:e3:e5:3d:9b:9f:f0: 02:5d Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:TRUE X509v3 Subject Key Identifier: C4:A7:B1:A4:7B:2C:71:FA:DB:E1:4B:90:75:FF:C4:15:60:85:89:10 Signature Algorithm: sha1WithRSAEncryption 71:22:48:df:0b:26:87:a8:5b:81:ba:6f:e4:d3:1c:39:18:55: d8:42:2c:dd:7e:ba:ad:2f:ec:bf:ee:ad:fd:30:12:b4:8f:98: 1d:98:ff:a9:5d:12:19:57:4d:a3:1b:97:c2:b8:09:4d:e6:ec: 7b:c2:4d:ea:dc:3f:ab:a6:ea:00:1c:4a:32:42:ad:55:5a:26: e8:48:de:ea:d5:31:28:74:df:84:b6:fd:37:42:6b:d7:55:53: b9:8c:4b:3d:d2:59:f3:98:9d:c8:35:9b:fc:76:e1:e4:3d:8e: cc:c3:75:3c:af:0a:ee:78:2a:2b:9f:13:cc:59:f3:61:a4:bc: 1b:f3:0e:c4:ee:bf:47:7f:00:99:09:a8:4a:c4:9e:7e:90:48: e2:d0:e1:37:0b:05:44:38:0d:c9:9b:2f:d1:f8:bf:f2:3e:27: 95:5b:85:29:b7:aa:d4:a5:4c:6a:18:58:da:37:28:92:7b:62: d9:3b:69:68:54:85:3f:df:3a:1c:94:c9:a8:20:6c:ca:e4:35: c0:53:c1:f3:85:1f:e3:f8:bb:af:54:bd:5f:46:7c:ab:05:83: 97:82:d8:0c:32:0d:5f:a6:82:af:d2:85:75:d2:93:58:57:3f: d1:a0:41:ce:8e:a1:5c:22:78:d4:31:f1:7f:97:3b:d8:a0:78: ec:13:13:21 Certificate: Data: Version: 1 (0x0) Serial Number: d0:1e:40:8b:00:00:02:7c:00:00:00:02:00:00:00:01 Signature Algorithm: sha1WithRSAEncryption Issuer: C=us, ST=Utah, L=Salt Lake City, O=Digital Signature Trust Co., OU=DSTCA X1, CN=DST RootCA [EMAIL PROTECTED] Validity Not Before: Dec 1 18:18:55 1998 GMT Not After : Nov 28 18:18:55 2008 GMT Subject: C=us, ST=Utah, L=Salt Lake City, O=Digital Signature Trust Co., OU=DSTCA X1, CN=DST RootCA [EMAIL PROTECTED] Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public Key: (2048 bit) Modulus (2048 bit): 00:d2:c6:26:b6:e7:a5:3d:c1:c4:68:d5:50:6f:53: c5:6f:49:13:09:b8:af:2c:48:8d:14:6a:a3:17:5f: 5a:f9:d3:2e:75:2f:d8:28:62:d1:93:2f:fc:4d:d4: ab:87:e5:08:c7:99:e7:92:3f:75:bd:eb:25:b4:15: c1:9b:19:3d:d2:44:8d:d7:74:20:6d:37:02:8f:69: 93:5b:8a:c4:19:9d:f4:b2:0e:fc:16:6c:b9:b1:05: 92:83:d1:85:2c:60:94:3e:45:55:a0:d9:ab:08:21: e6:60:e8:3b:74:f2:99:50:51:68:d0:03:2d:b1:80: be:a3:d8:52:b0:44:cd:43:4a:70:8e:58:85:95:e1: 4e:2c:d6:2d:41:6f:d6:84:e7:c8:98:44:ca:47:db: 2c:24:a5:69:26:cf:6b:b8:27:62:c3:f4:c9:7a:92: 23:ed:13:67:82:ae:45:2e:45:e5:7e:72:3f:85:9d: 94:62:10:e6:3c:91:a1:ad:77:00:e0:15:ec:f3:84: 80:72:7a:8e:6e:60:97:c7:24:59:10:34:83:5b:e1: a5:a4:69:b6:57:35:1c:78:59:c6:d3:2f:3a:73:67: ee:94:ca:04:13:05:62:06:70:23:b3:f4:7c:ee:45: d9:64:0b:5b:49:aa:a4:43:ce:26:c4:44:12:6c:b8: dd:79 Exponent: 65537 (0x10001) Signature Algorithm: sha1WithRSAEncryption a2:37:b2:3f:69:fb:d7:86:79:54:49:31:95:33:2b:f3:d1:09: 14:49:62:60:86:a5:b0:11:e2:50:c2:1d:06:57:3e:2d:e8:33: 64:be:9b:aa:ad:5f:1b:4d:d4:99:95:a2:8b:9a:c9:62:72:b5: 69:ea:d9:58:ab:35:ed:15:a2:43:d6:b6:bc:07:79:65:64:73: 7d:d7:79:ca:7b:d5:5a:51:c6:e1:53:04:96:8d:38:cf:a3:17: ac:39:71:6b:01:c3:8b:53:3c:63:e9:ee:79:c0:e4:be:92:32: 64:7a:b3:1f:97:94:62:bd:ea:b2:20:15:95:fb:97:f2:78:2f: 63:36:40:38:e3:46:0f:1d:dd:ac:95:ca:e7:4b:90:7b:b1:4b: a9:d4:c5:eb:9a:da:aa:d5:a3:94:14:46:8d:2d:1f:f3:3a:d6: 93:3a:f6:3e:79:fc:e8:e6:b0:75:ed:ee:3d:c9:70:c7:5d:aa: 81:4b:46:25:1c:c7:6c:15:e3:95:4e:0f:aa:32:37:94:0a:17: 24:92:13:84:58:d2:63:6f:2b:f7:e6:5b:62:0b:13:17:b0:0d: 52:4c:fe:fe:6f:5c:e2:91:6e:1d:fd:a4:62:d7:68:fa:8e:7a: 4f:d2:08:da:93:dc:f0:92:11:7a:d0:dc:72:93:0c:73:93:62: 85:68:d0:f4 Certificate: Data: Version: 3 (0x2) Serial Number: 61:ad:f0:eb:02:16:88:dc:26:7d:ce:ae:7e:1a:9a:bc Signature Algorithm: sha1WithRSAEncryption Issuer: C=US, O=Digital Signature Trust Co., OU=TrustID, CN=TrustID CA A1 Validity Not Before: Mar 7 16:32:09 2002 GMT Not After : Mar 7 16:32:09 2003 GMT Subject: C=US, O=TrustID personal certificate, CN=Troy D [EMAIL PROTECTED]/0.9.2342.19200300.100.1.1=D01E4742000000EC71A211DD00000511 Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public Key: (1024 bit) Modulus (1024 bit): 00:c8:ab:0f:88:eb:d3:6a:34:d4:27:89:ca:25:d6: 3d:be:6e:a3:35:bf:b9:b8:b7:88:36:e9:db:d8:2b: f5:69:3c:01:e5:54:c5:3b:c7:17:4a:93:5b:ad:1d: 62:9c:06:22:35:dc:63:f0:7e:2f:e0:16:c3:a9:b5: 1a:30:8e:1c:5a:f3:e6:9b:ed:48:6f:c4:3f:b1:a2: 52:63:df:d3:75:68:62:47:eb:89:f6:dc:f1:d8:fe: 29:01:17:a9:d3:85:12:4e:e0:91:9b:a9:42:51:aa: e5:6a:eb:b0:d2:00:83:00:b1:44:f8:58:96:82:36: 3b:16:ba:de:b1:11:4a:b7:9b Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Key Usage: critical Digital Signature, Non Repudiation, Key Encipherment, Data Encipherment X509v3 Authority Key Identifier: keyid:2A:A5:F0:7E:F4:F0:EF:34:D5:9D:A7:28:98:0F:23:D3:9F:BB:73:04 X509v3 Certificate Policies: Policy: 2.16.840.1.113839.0.6.1 CPS: http://www.digsigtrust.com/certificates/policy/tsindex.html User Notice: Explicit Text: This TrustID Certificate may only be relied upon by Authorized Relying Parties in accordance with the TrustID Certificate Policy found at http://www.digsigtrust.com/certificates/policy/tsindex.html X509v3 CRL Distribution Points: URI:ldap://ldap.digsigtrust.com/cn=TrustID CA A1,ou=TrustID,o=Digital Signature Trust Co.,c=US?certificateRevocationList;binary Netscape Comment: This TrustID Certificate may only be relied upon by Authorized Relying Parties in accordance with the TrustID Certificate Policy found at http://www.digsigtrust.com/certificates/policy/tsindex.html X509v3 Subject Alternative Name: email:[EMAIL PROTECTED] X509v3 Subject Key Identifier: C9:2D:F3:7F:29:42:9A:0A:1D:34:C5:89:A0:5B:5A:9E:D1:5F:3F:B2 Authority Information Access: OCSP - URI:http://ocsp.digsigtrust.com CA Issuers - URI:ldap://ldap.digsigtrust.com/cn=TrustID CA A1,ou=TrustID,o=Digital Signature Trust Co.,c=us?cAcertificate;binary X509v3 Extended Key Usage: TLS Web Client Authentication, E-mail Protection Signature Algorithm: sha1WithRSAEncryption 47:a3:6e:de:b4:f7:17:08:49:e6:f0:47:86:a8:65:b3:d2:c4: 10:0c:98:66:b9:50:5d:c8:9e:2b:28:6a:7c:cc:12:87:63:f3: e9:cd:44:d5:a8:f9:9b:2f:16:98:57:b0:bd:3d:c1:7d:49:6c: 5e:02:ca:5c:72:42:7d:5d:81:cc:0b:62:72:df:9c:60:85:8d: 30:60:85:b1:5a:a5:d6:1d:42:21:5e:fe:00:24:28:9c:4e:24: 27:46:9c:49:33:b2:72:5e:68:eb:3b:4d:34:a8:13:33:95:76: e2:4b:88:43:d5:21:7b:60:70:7c:38:b4:bb:b5:01:b0:20:df: 66:c7:5d:a5:59:6f:89:8c:ce:74:42:fd:ff:d4:3c:73:06:14: fb:bc:b6:51:90:4e:bc:65:43:fd:e6:0c:cf:d2:26:35:2c:64: 15:69:06:c0:5a:a5:da:f8:34:b8:29:7e:4d:d1:a5:24:35:f2: 3c:9c:58:85:b2:80:9b:bd:01:9c:26:7e:d0:89:d1:48:e1:c2: 22:c2:f2:73:f6:a8:cc:29:35:ad:68:73:15:a9:4f:8e:7e:73: c7:84:42:13:d0:16:87:f4:0a:97:93:0d:71:e8:59:f6:ae:63: 1e:19:e9:db:c7:c1:9f:f4:93:36:09:9f:f7:12:45:6d:32:dc: 69:fe:64:da Certificate: Data: Version: 3 (0x2) Serial Number: d0:1e:47:38:00:00:02:7c:00:00:00:02:00:00:00:08 Signature Algorithm: sha1WithRSAEncryption Issuer: O=Digital Signature Trust Co., CN=DST Root CA X3 Validity Not Before: Oct 1 00:00:04 2000 GMT Not After : Oct 1 00:00:04 2005 GMT Subject: C=US, O=Digital Signature Trust Co., OU=TrustID, CN=TrustID CA A1 Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public Key: (2048 bit) Modulus (2048 bit): 00:b8:27:3d:c0:f5:37:2d:3f:82:61:20:3e:40:2a: e6:89:5c:71:a7:ae:b8:53:56:78:a5:9b:c0:95:37: 89:33:8d:dc:3e:b0:8c:a4:3c:fe:25:b4:48:96:f1: 86:7b:d8:16:5a:91:f0:39:6f:b2:88:94:d0:bb:bd: 8c:83:bf:b0:61:9f:5e:1f:27:f3:a8:52:b2:87:bc: c9:ac:c6:69:0e:8c:97:bd:d3:82:7b:66:ef:f2:cb: 4e:6f:98:ee:ca:13:ce:f6:db:1f:ae:e5:6a:39:88: c5:48:6c:51:9b:fa:18:c0:ca:8c:71:73:69:04:7a: ba:3e:45:9a:46:f6:86:1b:aa:6c:df:c9:50:de:4d: 84:4f:c1:e2:21:20:3a:43:b8:e5:15:ff:b5:26:b4: 9d:6b:f0:82:82:30:2d:3b:d4:22:02:de:4b:31:c0: f9:9b:fa:60:51:5b:51:21:6b:34:ac:40:29:27:db: e0:85:44:04:12:9e:68:0d:3a:1e:78:ef:9b:3d:00: e6:e8:8a:77:28:5c:e9:55:53:e2:e9:7f:ff:1a:76: 1e:f1:0b:bc:ac:7f:4d:b5:db:29:59:5e:ca:22:e7: 59:00:d0:0e:68:09:57:69:1b:d2:f6:a3:14:82:5e: 89:70:55:fc:c8:f6:36:22:75:51:36:d7:74:11:b1: 8c:95 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:TRUE X509v3 Key Usage: critical Digital Signature, Non Repudiation, Certificate Sign, CRL Sign X509v3 Extended Key Usage: TLS Web Client Authentication, E-mail Protection X509v3 Authority Key Identifier: keyid:C4:A7:B1:A4:7B:2C:71:FA:DB:E1:4B:90:75:FF:C4:15:60:85:89:10 X509v3 Certificate Policies: Policy: 2.16.840.1.113839.0.6.1 CPS: http://www.digsigtrust.com/certificates/policy/tsindex.html User Notice: Explicit Text: This TrustID Certificate may only be relied upon by Authorized Relying Parties in accordance with the TrustID Certificate Policy found at http://www.digsigtrust.com/certificates/policy/tsindex.html Policy: 2.16.840.1.113839.0.6.2 CPS: http://www.digsigtrust.com/certificates/policy/tsindex.html User Notice: Explicit Text: This TrustID Certificate may only be relied upon by Authorized Relying Parties in accordance with the TrustID Certificate Policy found at http://www.digsigtrust.com/certificates/policy/tsindex.html X509v3 CRL Distribution Points: URI:ldap://ldap.digsigtrust.com/cn=DST Root CA X3,o=Digital Signature Trust Co.?certificateRevocationList;binary Authority Information Access: CA Issuers - URI:ldap://ldap.digsigtrust.com/cn=DST Root CA X3,o=Digital Signature Trust Co.?cACertificate;binary X509v3 Subject Key Identifier: 2A:A5:F0:7E:F4:F0:EF:34:D5:9D:A7:28:98:0F:23:D3:9F:BB:73:04 Signature Algorithm: sha1WithRSAEncryption a3:fa:43:92:a0:35:73:3d:1f:f1:11:e7:2e:53:9d:c3:2f:98: b6:ad:8d:26:8d:57:b8:a0:f7:cd:cc:5c:a7:e2:c5:b4:8a:5f: be:ca:51:4a:12:2f:7f:77:ef:c4:55:a4:d4:95:7a:25:af:a6: 53:4b:50:37:2e:be:e1:8c:19:18:03:05:74:a6:a2:47:48:8d: 88:61:32:76:8b:5d:d7:2f:a9:9d:89:dd:27:82:cf:a3:2e:bb: 6c:fc:55:ef:48:1a:73:47:02:94:5e:27:cd:be:88:a5:da:c5: cc:68:92:79:37:39:b7:d1:b4:18:f0:21:ec:04:2e:92:db:8c: 38:8f:74:2b:16:b8:07:27:6e:67:1b:9b:c7:b5:74:7a:ce:7c: 8c:20:de:7f:7b:cc:b6:5b:5f:cb:d1:03:5f:b1:60:27:44:95: b2:ef:90:e7:f6:c0:87:43:cd:8c:76:cd:19:26:4c:7a:3f:1d: 0c:d7:8d:93:7f:c4:5e:d7:9e:9f:1c:c0:61:0d:2a:d9:6d:d1: 38:2b:d1:d7:4b:ec:ca:21:26:dc:f3:a3:70:f0:7b:eb:8e:b8: 95:7f:61:50:f9:ee:fe:e4:62:f5:5e:67:43:7b:04:a5:82:1d: 0c:c6:95:87:f9:27:91:96:b1:2b:29:a1:fb:83:69:98:bf:62: 6a:f9:37:4d
>From - Thu Mar 7 21:40:01 2002 Return-Path: <[EMAIL PROTECTED]> Received: from ultra5.master ([195.52.22.40]) by ultra.hchs.de (Netscape Mail Server v2.02) with ESMTP id AAA18489 for <[EMAIL PROTECTED]>; Thu, 7 Mar 2002 17:37:44 +0200 Received: from mailhub1.midco.net (mailhub1.midco.net [24.220.0.32]) by ultra5.master. (8.11.6+Sun/8.11.6) with ESMTP id g27Gbg519223 for <[EMAIL PROTECTED]>; Thu, 7 Mar 2002 17:37:42 +0100 (MET) Received: (qmail-ldap/ctrl 22170 invoked from network); 7 Mar 2002 16:37:41 -0000 Received: from host-30-160-220-24.midco.net (HELO cd0434318021) ([24.220.160.30]) (envelope-sender <[EMAIL PROTECTED]>) by mailhub1.midco.net (qmail-ldap-1.03) with SMTP for <[EMAIL PROTECTED]>; 7 Mar 2002 16:37:41 -0000 Message-ID: <000d01c1c5f6$14c89180$[EMAIL PROTECTED]> From: "T Grothe" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Subject: Test Date: Thu, 7 Mar 2002 10:35:06 -0600 MIME-Version: 1.0 Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg=SHA1; boundary="----=_NextPart_000_0007_01C1C5C3.C6F93540" X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 5.50.4522.1200 X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4522.1200 X-Mozilla-Status: 8001 X-Mozilla-Status2: 00000000 X-UIDL: [EMAIL PROTECTED] This is a multi-part message in MIME format. ------=_NextPart_000_0007_01C1C5C3.C6F93540 Content-Type: multipart/alternative; boundary="----=_NextPart_001_0008_01C1C5C3.C6F93540" ------=_NextPart_001_0008_01C1C5C3.C6F93540 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Carlos, Let me know if you get my digital ID. Thanks, Troy ------=_NextPart_001_0008_01C1C5C3.C6F93540 Content-Type: text/html; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <HTML><HEAD> <META http-equiv=3DContent-Type content=3D"text/html; = charset=3Diso-8859-1"> <META content=3D"MSHTML 5.50.4522.1800" name=3DGENERATOR> <STYLE></STYLE> </HEAD> <BODY bgColor=3D#ffffff> <DIV><FONT face=3DArial size=3D2>Carlos,</FONT></DIV> <DIV><FONT face=3DArial size=3D2></FONT> </DIV> <DIV><FONT face=3DArial size=3D2>Let me know if you get my digital = ID.</FONT></DIV> <DIV><FONT face=3DArial size=3D2></FONT> </DIV> <DIV><FONT face=3DArial size=3D2>Thanks,</FONT></DIV> <DIV><FONT face=3DArial size=3D2></FONT> </DIV> <DIV><FONT face=3DArial size=3D2>Troy</FONT></DIV></BODY></HTML> ------=_NextPart_001_0008_01C1C5C3.C6F93540-- ------=_NextPart_000_0007_01C1C5C3.C6F93540 Content-Type: application/x-pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIVvDCCA6Yw ggKOoAMCAQICEQDQHkc4AAACfAAAAA8AAAACMA0GCSqGSIb3DQEBBQUAMIGpMQswCQYDVQQGEwJ1 czENMAsGA1UECBMEVXRhaDEXMBUGA1UEBxMOU2FsdCBMYWtlIENpdHkxJDAiBgNVBAoTG0RpZ2l0 YWwgU2lnbmF0dXJlIFRydXN0IENvLjERMA8GA1UECxMIRFNUQ0EgWDExFjAUBgNVBAMTDURTVCBS b290Q0EgWDExITAfBgkqhkiG9w0BCQEWEmNhQGRpZ3NpZ3RydXN0LmNvbTAeFw0wMDA5MzAyMjA4 MDdaFw0wODAxMjEyMzA4MDdaMD8xJDAiBgNVBAoTG0RpZ2l0YWwgU2lnbmF0dXJlIFRydXN0IENv LjEXMBUGA1UEAxMORFNUIFJvb3QgQ0EgWDMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB AQDfr+mXUAiDV7TMYmX2kILsx9MsazDKW+zZw33HQMEYFIvg6DN2SSrjPyFJk6xODq8+SMtl7vzT IQ9l0irZMo+M5fd3sBJ7tZXAiaOpuu1zLnoMBjKDon6KFDDNEaDhKji5eQox/VC9gGXft1Fjg8ji iGHqS2GB7FJruaLiSxoon0ijngzaCY4+Fy4e3SDfW8YqiqsuvXCtxQsaJZB0csV7aqs01jCJ/+Vo E3tUC8jWruxanJIePWSzjMbfv8lBcOwWctUm7DhVOUPQ/P0YXEDxl+vVmpuNHbraJbnG2N/BFQI6 q9pu8T4u9VwInDzWg2nkEJsZKrYpV+PlPZuf8AJdAgMBAAGjMjAwMA8GA1UdEwEB/wQFMAMBAf8w HQYDVR0OBBYEFMSnsaR7LHH62+FLkHX/xBVghYkQMA0GCSqGSIb3DQEBBQUAA4IBAQBxIkjfCyaH qFuBum/k0xw5GFXYQizdfrqtL+y/7q39MBK0j5gdmP+pXRIZV02jG5fCuAlN5ux7wk3q3D+rpuoA HEoyQq1VWiboSN7q1TEodN+Etv03QmvXVVO5jEs90lnzmJ3INZv8duHkPY7Mw3U8rwrueCornxPM WfNhpLwb8w7E7r9HfwCZCahKxJ5+kEji0OE3CwVEOA3Jmy/R+L/yPieVW4Upt6rUpUxqGFjaNyiS e2LZO2loVIU/3zoclMmoIGzK5DXAU8HzhR/j+LuvVL1fRnyrBYOXgtgMMg1fpoKv0oV10pNYVz/R oEHOjqFcInjUMfF/lzvYoHjsExMhMIID2DCCAsACEQDQHkCLAAACfAAAAAIAAAABMA0GCSqGSIb3 DQEBBQUAMIGpMQswCQYDVQQGEwJ1czENMAsGA1UECBMEVXRhaDEXMBUGA1UEBxMOU2FsdCBMYWtl IENpdHkxJDAiBgNVBAoTG0RpZ2l0YWwgU2lnbmF0dXJlIFRydXN0IENvLjERMA8GA1UECxMIRFNU Q0EgWDExFjAUBgNVBAMTDURTVCBSb290Q0EgWDExITAfBgkqhkiG9w0BCQEWEmNhQGRpZ3NpZ3Ry dXN0LmNvbTAeFw05ODEyMDExODE4NTVaFw0wODExMjgxODE4NTVaMIGpMQswCQYDVQQGEwJ1czEN MAsGA1UECBMEVXRhaDEXMBUGA1UEBxMOU2FsdCBMYWtlIENpdHkxJDAiBgNVBAoTG0RpZ2l0YWwg U2lnbmF0dXJlIFRydXN0IENvLjERMA8GA1UECxMIRFNUQ0EgWDExFjAUBgNVBAMTDURTVCBSb290 Q0EgWDExITAfBgkqhkiG9w0BCQEWEmNhQGRpZ3NpZ3RydXN0LmNvbTCCASIwDQYJKoZIhvcNAQEB BQADggEPADCCAQoCggEBANLGJrbnpT3BxGjVUG9TxW9JEwm4ryxIjRRqoxdfWvnTLnUv2Chi0ZMv /E3Uq4flCMeZ55I/db3rJbQVwZsZPdJEjdd0IG03Ao9pk1uKxBmd9LIO/BZsubEFkoPRhSxglD5F VaDZqwgh5mDoO3TymVBRaNADLbGAvqPYUrBEzUNKcI5YhZXhTizWLUFv1oTnyJhEykfbLCSlaSbP a7gnYsP0yXqSI+0TZ4KuRS5F5X5yP4WdlGIQ5jyRoa13AOAV7POEgHJ6jm5gl8ckWRA0g1vhpaRp tlc1HHhZxtMvOnNn7pTKBBMFYgZwI7P0fO5F2WQLW0mqpEPOJsREEmy43XkCAwEAATANBgkqhkiG 9w0BAQUFAAOCAQEAojeyP2n714Z5VEkxlTMr89EJFEliYIalsBHiUMIdBlc+LegzZL6bqq1fG03U mZWii5rJYnK1aerZWKs17RWiQ9a2vAd5ZWRzfdd5ynvVWlHG4VMElo04z6MXrDlxawHDi1M8Y+nu ecDkvpIyZHqzH5eUYr3qsiAVlfuX8ngvYzZAOONGDx3drJXK50uQe7FLqdTF65raqtWjlBRGjS0f 8zrWkzr2Pnn86Oawde3uPclwx12qgUtGJRzHbBXjlU4PqjI3lAoXJJIThFjSY28r9+ZbYgsTF7AN Ukz+/m9c4pFuHf2kYtdo+o56T9II2pPc8JIRetDccpMMc5NihWjQ9DCCBwkwggXxoAMCAQICEGGt 8OsCFojcJn3Orn4amrwwDQYJKoZIhvcNAQEFBQAwXTELMAkGA1UEBhMCVVMxJDAiBgNVBAoTG0Rp Z2l0YWwgU2lnbmF0dXJlIFRydXN0IENvLjEQMA4GA1UECxMHVHJ1c3RJRDEWMBQGA1UEAxMNVHJ1 c3RJRCBDQSBBMTAeFw0wMjAzMDcxNjMyMDlaFw0wMzAzMDcxNjMyMDlaMIGkMQswCQYDVQQGEwJV UzElMCMGA1UEChMcVHJ1c3RJRCBwZXJzb25hbCBjZXJ0aWZpY2F0ZTEWMBQGA1UEAxMNVHJveSBE IEdyb3RoZTEkMCIGCSqGSIb3DQEJARYVdGdyb3RoZUBiaXMubWlkY28ubmV0MTAwLgYKCZImiZPy LGQBARMgRDAxRTQ3NDIwMDAwMDBFQzcxQTIxMUREMDAwMDA1MTEwgZ8wDQYJKoZIhvcNAQEBBQAD gY0AMIGJAoGBAMirD4jr02o01CeJyiXWPb5uozW/ubi3iDbp29gr9Wk8AeVUxTvHF0qTW60dYpwG IjXcY/B+L+AWw6m1GjCOHFrz5pvtSG/EP7GiUmPf03VoYkfrifbc8dj+KQEXqdOFEk7gkZupQlGq 5WrrsNIAgwCxRPhYloI2Oxa63rERSrebAgMBAAGjggP/MIID+zAOBgNVHQ8BAf8EBAMCBPAwHwYD VR0jBBgwFoAUKqXwfvTw7zTVnacomA8j05+7cwQwggFCBgNVHSAEggE5MIIBNTCCATEGCmCGSAGG +S8ABgEwggEhMEcGCCsGAQUFBwIBFjtodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZp Y2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDCB1QYIKwYBBQUHAgIwgcgagcVUaGlzIFRydXN0SUQg Q2VydGlmaWNhdGUgbWF5IG9ubHkgYmUgcmVsaWVkIHVwb24gYnkgQXV0aG9yaXplZCBSZWx5aW5n IFBhcnRpZXMgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBUcnVzdElEIENlcnRpZmljYXRlIFBvbGlj eSBmb3VuZCBhdCBodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9saWN5 L3RzaW5kZXguaHRtbDCBjwYDVR0fBIGHMIGEMIGBoH+gfYZ7bGRhcDovL2xkYXAuZGlnc2lndHJ1 c3QuY29tL2NuPVRydXN0SUQgQ0EgQTEsb3U9VHJ1c3RJRCxvPURpZ2l0YWwgU2lnbmF0dXJlIFRy dXN0IENvLixjPVVTP2NlcnRpZmljYXRlUmV2b2NhdGlvbkxpc3Q7YmluYXJ5MIHWBglghkgBhvhC AQ0EgcgWgcVUaGlzIFRydXN0SUQgQ2VydGlmaWNhdGUgbWF5IG9ubHkgYmUgcmVsaWVkIHVwb24g YnkgQXV0aG9yaXplZCBSZWx5aW5nIFBhcnRpZXMgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBUcnVz dElEIENlcnRpZmljYXRlIFBvbGljeSBmb3VuZCBhdCBodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNv bS9jZXJ0aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDAgBgNVHREEGTAXgRV0Z3JvdGhlQGJp cy5taWRjby5uZXQwHQYDVR0OBBYEFMkt838pQpoKHTTFiaBbWp7RXz+yMIG2BggrBgEFBQcBAQSB qTCBpjAnBggrBgEFBQcwAYYbaHR0cDovL29jc3AuZGlnc2lndHJ1c3QuY29tMHsGCCsGAQUFBzAC hm9sZGFwOi8vbGRhcC5kaWdzaWd0cnVzdC5jb20vY249VHJ1c3RJRCBDQSBBMSxvdT1UcnVzdElE LG89RGlnaXRhbCBTaWduYXR1cmUgVHJ1c3QgQ28uLGM9dXM/Y0FjZXJ0aWZpY2F0ZTtiaW5hcnkw HQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMEMA0GCSqGSIb3DQEBBQUAA4IBAQBHo27etPcX CEnm8EeGqGWz0sQQDJhmuVBdyJ4rKGp8zBKHY/PpzUTVqPmbLxaYV7C9PcF9SWxeAspcckJ9XYHM C2Jy35xghY0wYIWxWqXWHUIhXv4AJCicTiQnRpxJM7JyXmjrO000qBMzlXbiS4hD1SF7YHB8OLS7 tQGwIN9mx12lWW+JjM50Qv3/1DxzBhT7vLZRkE68ZUP95gzP0iY1LGQVaQbAWqXa+DS4KX5N0aUk NfI8nFiFsoCbvQGcJn7QidFI4cIiwvJz9qjMKTWtaHMVqU+OfnPHhEIT0BaH9AqXkw1x6Fn2rmMe Genbx8Gf9JM2CZ/3EkVtMtxp/mTaMIIHJTCCBg2gAwIBAgIRANAeRzgAAAJ8AAAAAgAAAAgwDQYJ KoZIhvcNAQEFBQAwPzEkMCIGA1UEChMbRGlnaXRhbCBTaWduYXR1cmUgVHJ1c3QgQ28uMRcwFQYD VQQDEw5EU1QgUm9vdCBDQSBYMzAeFw0wMDEwMDEwMDAwMDRaFw0wNTEwMDEwMDAwMDRaMF0xCzAJ BgNVBAYTAlVTMSQwIgYDVQQKExtEaWdpdGFsIFNpZ25hdHVyZSBUcnVzdCBDby4xEDAOBgNVBAsT B1RydXN0SUQxFjAUBgNVBAMTDVRydXN0SUQgQ0EgQTEwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQC4Jz3A9TctP4JhID5AKuaJXHGnrrhTVnilm8CVN4kzjdw+sIykPP4ltEiW8YZ72BZa kfA5b7KIlNC7vYyDv7Bhn14fJ/OoUrKHvMmsxmkOjJe904J7Zu/yy05vmO7KE8722x+u5Wo5iMVI bFGb+hjAyoxxc2kEero+RZpG9oYbqmzfyVDeTYRPweIhIDpDuOUV/7UmtJ1r8IKCMC071CIC3ksx wPmb+mBRW1EhazSsQCkn2+CFRAQSnmgNOh5475s9AOboincoXOlVU+Lpf/8adh7xC7ysf0212ylZ Xsoi51kA0A5oCVdpG9L2oxSCXolwVfzI9jYidVE213QRsYyVAgMBAAGjggP8MIID+DAPBgNVHRMB Af8EBTADAQH/MA4GA1UdDwEB/wQEAwIBxjAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwQw HwYDVR0jBBgwFoAUxKexpHsscfrb4UuQdf/EFWCFiRAwggJ3BgNVHSAEggJuMIICajCCATEGCmCG SAGG+S8ABgEwggEhMEcGCCsGAQUFBwIBFjtodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0 aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDCB1QYIKwYBBQUHAgIwgcgagcVUaGlzIFRydXN0 SUQgQ2VydGlmaWNhdGUgbWF5IG9ubHkgYmUgcmVsaWVkIHVwb24gYnkgQXV0aG9yaXplZCBSZWx5 aW5nIFBhcnRpZXMgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBUcnVzdElEIENlcnRpZmljYXRlIFBv bGljeSBmb3VuZCBhdCBodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9s aWN5L3RzaW5kZXguaHRtbDCCATEGCmCGSAGG+S8ABgIwggEhMEcGCCsGAQUFBwIBFjtodHRwOi8v d3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDCB1QYI KwYBBQUHAgIwgcgagcVUaGlzIFRydXN0SUQgQ2VydGlmaWNhdGUgbWF5IG9ubHkgYmUgcmVsaWVk IHVwb24gYnkgQXV0aG9yaXplZCBSZWx5aW5nIFBhcnRpZXMgaW4gYWNjb3JkYW5jZSB3aXRoIHRo ZSBUcnVzdElEIENlcnRpZmljYXRlIFBvbGljeSBmb3VuZCBhdCBodHRwOi8vd3d3LmRpZ3NpZ3Ry dXN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDB9BgNVHR8EdjB0MHKgcKBu hmxsZGFwOi8vbGRhcC5kaWdzaWd0cnVzdC5jb20vY249RFNUIFJvb3QgQ0EgWDMsbz1EaWdpdGFs IFNpZ25hdHVyZSBUcnVzdCBDby4/Y2VydGlmaWNhdGVSZXZvY2F0aW9uTGlzdDtiaW5hcnkwfAYI KwYBBQUHAQEEcDBuMGwGCCsGAQUFBzAChmBsZGFwOi8vbGRhcC5kaWdzaWd0cnVzdC5jb20vY249 RFNUIFJvb3QgQ0EgWDMsbz1EaWdpdGFsIFNpZ25hdHVyZSBUcnVzdCBDby4/Y0FDZXJ0aWZpY2F0 ZTtiaW5hcnkwHQYDVR0OBBYEFCql8H708O801Z2nKJgPI9Ofu3MEMA0GCSqGSIb3DQEBBQUAA4IB AQCj+kOSoDVzPR/xEecuU53DL5i2rY0mjVe4oPfNzFyn4sW0il++ylFKEi9/d+/EVaTUlXolr6ZT S1A3Lr7hjBkYAwV0pqJHSI2IYTJ2i13XL6mdid0ngs+jLrts/FXvSBpzRwKUXifNvoil2sXMaJJ5 Nzm30bQY8CHsBC6S24w4j3QrFrgHJ25nG5vHtXR6znyMIN5/e8y2W1/L0QNfsWAnRJWy75Dn9sCH Q82Mds0ZJkx6Px0M142Tf8Re156fHMBhDSrZbdE4K9HXS+zKISbc86Nw8HvrjriVf2FQ+e7+5GL1 XmdDewSlgh0MxpWH+SeRlrErKaH7g2mYv2Jq+TdNMYIB1DCCAdACAQEwcTBdMQswCQYDVQQGEwJV UzEkMCIGA1UEChMbRGlnaXRhbCBTaWduYXR1cmUgVHJ1c3QgQ28uMRAwDgYDVQQLEwdUcnVzdElE MRYwFAYDVQQDEw1UcnVzdElEIENBIEExAhBhrfDrAhaI3CZ9zq5+Gpq8MAkGBSsOAwIaBQCggbow GAYJKoZIhvcNAQkDMQsGCSqGSIb3DQEHATAcBgkqhkiG9w0BCQUxDxcNMDIwMzA3MTYzNTA3WjAj BgkqhkiG9w0BCQQxFgQUolk8uWSHEuMWLu/A0v+aJcRxm00wWwYJKoZIhvcNAQkPMU4wTDAKBggq hkiG9w0DBzAOBggqhkiG9w0DAgICAIAwDQYIKoZIhvcNAwICAUAwBwYFKw4DAgcwDQYIKoZIhvcN AwICASgwBwYFKw4DAh0wDQYJKoZIhvcNAQEBBQAEgYBVHGxttx//TtGe9eA5roAEGZ8M9J9UE8Uh /cBQZxMvnUk5Qj2NdJjOvwYPNqzRO0eKtpEZw8c4ojxfl5dyn9nsm/H0yA0hDi5syltZxu9l3OZS l5K5syOL3CDt3hE2AcaK+rXW/TplRp0ALVOV8jyUFrzvWf0c/SY0sXXZAZKmzgAAAAAAAA== ------=_NextPart_000_0007_01C1C5C3.C6F93540--
-----BEGIN CERTIFICATE----- MIIHJTCCBg2gAwIBAgIRANAeRzgAAAJ8AAAAAgAAAAgwDQYJKoZIhvcNAQEFBQAw PzEkMCIGA1UEChMbRGlnaXRhbCBTaWduYXR1cmUgVHJ1c3QgQ28uMRcwFQYDVQQD Ew5EU1QgUm9vdCBDQSBYMzAeFw0wMDEwMDEwMDAwMDRaFw0wNTEwMDEwMDAwMDRa MF0xCzAJBgNVBAYTAlVTMSQwIgYDVQQKExtEaWdpdGFsIFNpZ25hdHVyZSBUcnVz dCBDby4xEDAOBgNVBAsTB1RydXN0SUQxFjAUBgNVBAMTDVRydXN0SUQgQ0EgQTEw ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC4Jz3A9TctP4JhID5AKuaJ XHGnrrhTVnilm8CVN4kzjdw+sIykPP4ltEiW8YZ72BZakfA5b7KIlNC7vYyDv7Bh n14fJ/OoUrKHvMmsxmkOjJe904J7Zu/yy05vmO7KE8722x+u5Wo5iMVIbFGb+hjA yoxxc2kEero+RZpG9oYbqmzfyVDeTYRPweIhIDpDuOUV/7UmtJ1r8IKCMC071CIC 3ksxwPmb+mBRW1EhazSsQCkn2+CFRAQSnmgNOh5475s9AOboincoXOlVU+Lpf/8a dh7xC7ysf0212ylZXsoi51kA0A5oCVdpG9L2oxSCXolwVfzI9jYidVE213QRsYyV AgMBAAGjggP8MIID+DAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBxjAd BgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwQwHwYDVR0jBBgwFoAUxKexpHss cfrb4UuQdf/EFWCFiRAwggJ3BgNVHSAEggJuMIICajCCATEGCmCGSAGG+S8ABgEw ggEhMEcGCCsGAQUFBwIBFjtodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0 aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDCB1QYIKwYBBQUHAgIwgcgagcVU aGlzIFRydXN0SUQgQ2VydGlmaWNhdGUgbWF5IG9ubHkgYmUgcmVsaWVkIHVwb24g YnkgQXV0aG9yaXplZCBSZWx5aW5nIFBhcnRpZXMgaW4gYWNjb3JkYW5jZSB3aXRo IHRoZSBUcnVzdElEIENlcnRpZmljYXRlIFBvbGljeSBmb3VuZCBhdCBodHRwOi8v d3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXgu aHRtbDCCATEGCmCGSAGG+S8ABgIwggEhMEcGCCsGAQUFBwIBFjtodHRwOi8vd3d3 LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZpY2F0ZXMvcG9saWN5L3RzaW5kZXguaHRt bDCB1QYIKwYBBQUHAgIwgcgagcVUaGlzIFRydXN0SUQgQ2VydGlmaWNhdGUgbWF5 IG9ubHkgYmUgcmVsaWVkIHVwb24gYnkgQXV0aG9yaXplZCBSZWx5aW5nIFBhcnRp ZXMgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBUcnVzdElEIENlcnRpZmljYXRlIFBv bGljeSBmb3VuZCBhdCBodHRwOi8vd3d3LmRpZ3NpZ3RydXN0LmNvbS9jZXJ0aWZp Y2F0ZXMvcG9saWN5L3RzaW5kZXguaHRtbDB9BgNVHR8EdjB0MHKgcKBuhmxsZGFw Oi8vbGRhcC5kaWdzaWd0cnVzdC5jb20vY249RFNUIFJvb3QgQ0EgWDMsbz1EaWdp dGFsIFNpZ25hdHVyZSBUcnVzdCBDby4/Y2VydGlmaWNhdGVSZXZvY2F0aW9uTGlz dDtiaW5hcnkwfAYIKwYBBQUHAQEEcDBuMGwGCCsGAQUFBzAChmBsZGFwOi8vbGRh cC5kaWdzaWd0cnVzdC5jb20vY249RFNUIFJvb3QgQ0EgWDMsbz1EaWdpdGFsIFNp Z25hdHVyZSBUcnVzdCBDby4/Y0FDZXJ0aWZpY2F0ZTtiaW5hcnkwHQYDVR0OBBYE FCql8H708O801Z2nKJgPI9Ofu3MEMA0GCSqGSIb3DQEBBQUAA4IBAQCj+kOSoDVz PR/xEecuU53DL5i2rY0mjVe4oPfNzFyn4sW0il++ylFKEi9/d+/EVaTUlXolr6ZT S1A3Lr7hjBkYAwV0pqJHSI2IYTJ2i13XL6mdid0ngs+jLrts/FXvSBpzRwKUXifN voil2sXMaJJ5Nzm30bQY8CHsBC6S24w4j3QrFrgHJ25nG5vHtXR6znyMIN5/e8y2 W1/L0QNfsWAnRJWy75Dn9sCHQ82Mds0ZJkx6Px0M142Tf8Re156fHMBhDSrZbdE4 K9HXS+zKISbc86Nw8HvrjriVf2FQ+e7+5GL1XmdDewSlgh0MxpWH+SeRlrErKaH7 g2mYv2Jq+TdN -----END CERTIFICATE-----
-----BEGIN CERTIFICATE----- MIIDOzCCAiOgAwIBAgIRANAeRzgAAAJ8AAAAAgAAAAIwDQYJKoZIhvcNAQEFBQAw PzEkMCIGA1UEChMbRGlnaXRhbCBTaWduYXR1cmUgVHJ1c3QgQ28uMRcwFQYDVQQD Ew5EU1QgUm9vdCBDQSBYMzAeFw0wMDA5MzAyMDMzMDdaFw0yMDA5MzAyMDMzMDda MD8xJDAiBgNVBAoTG0RpZ2l0YWwgU2lnbmF0dXJlIFRydXN0IENvLjEXMBUGA1UE AxMORFNUIFJvb3QgQ0EgWDMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB AQDfr+mXUAiDV7TMYmX2kILsx9MsazDKW+zZw33HQMEYFIvg6DN2SSrjPyFJk6xO Dq8+SMtl7vzTIQ9l0irZMo+M5fd3sBJ7tZXAiaOpuu1zLnoMBjKDon6KFDDNEaDh Kji5eQox/VC9gGXft1Fjg8jiiGHqS2GB7FJruaLiSxoon0ijngzaCY4+Fy4e3SDf W8YqiqsuvXCtxQsaJZB0csV7aqs01jCJ/+VoE3tUC8jWruxanJIePWSzjMbfv8lB cOwWctUm7DhVOUPQ/P0YXEDxl+vVmpuNHbraJbnG2N/BFQI6q9pu8T4u9VwInDzW g2nkEJsZKrYpV+PlPZuf8AJdAgMBAAGjMjAwMA8GA1UdEwEB/wQFMAMBAf8wHQYD VR0OBBYEFMSnsaR7LHH62+FLkHX/xBVghYkQMA0GCSqGSIb3DQEBBQUAA4IBAQCD cNrUzpgoupy5vBbm6quV5jjplC4RVrj/dSs6KHNwceLFsdR2frwdly5QlJ/taNyU S4unRkpWngt9cM7KIi655M/HmxszuNbBRw5LxrW15MRXOchr5cbmn6G2K+Z0+qb/ wRbobS7HZaMoQdF2Yw3AzfCmkUUXWTUtJ5rzicIqbF9zqIqEzJPXJTIJl7NTAaPx aAu+A23jn/9hEW0UjI6GKOUi+Oy5Xmc79M6w9N/XQB6FKO8vtKVWQ8o8HT01sPOu 6PzjtPM9qeWztAo7YfOq94bW1QT9apQ0DTGFi5ymeVIMJEVa7CFp33FiAxRmeHJQ bsYXj4H1pCo5DJ/4MLl8 -----END CERTIFICATE-----