webmail.mte.aa.com

- American Airlines, Inc. -

Issued by Entrust Certification Authority - L1K

About this certificate

This digital certificate with serial number 65:0c:08:7b:ef:cc:cc:48:4d:e0:d4:68:b3:a7:de:24 was issued on by Entrust, Inc..

With 11 subject alternative names this certificate can be used to secure multiple fqdn's. This certificate is currently not expired, we haven't checked the revocation status of this certificate but you can do this simply on revocationcheck.com. If we have found any compliance issues with this certificate they will be shown below. I hope this certificate review is providing you the detailed information in a simple form you where looking for.


We have idenified some issues with this certificate:
  • Subscriber certificates use of Subject Key Identifier is NOT RECOMMENDED (BRs v2: 7.1.2.7.6)
  • Subscriber Certificate: commonName is NOT RECOMMENDED. (BRs: 7.1.2.7.1)

American Airlines, Inc.

Organization: American Airlines, Inc.
State / Province: Texas
Locality: Fort Worth
Country: US

Entrust, Inc.

Organization: Entrust, Inc.
Organization unit: See www.entrust.net/legal-terms
Organization unit: (c) 2012 Entrust, Inc. - for authorized use only
Country: US

This certificate will expire on

Certificate Details

Serial Number (hex): 65:0c:08:7b:ef:cc:cc:48:4d:e0:d4:68:b3:a7:de:24
Serial Number (int): 134314507215134242473746447801615113764
Serial Number lenght: 127 bits, 16 octets

SubjectKeyId: bf:89:0f:9a:7a:f2:2b:4c:f4:3c:8e:a2:b5:58:3b:17:3b:84:26:17
AuthorityKeyId: 82:a2:70:74:dd:bc:53:3f:cf:7b:d4:f7:cd:7f:a7:60:c6:0a:4c:bf

Fingerprint (sha1): cb:53:fa:8a:27:e5:2f:25:c2:f7:17:8a:c1:5e:b9:09:28:24:1d:76
Fingerprint (sha256): dd:5d:77:94:06:7f:82:90:44:74:4c:5d:8f:17:ed:de:f0:81:14:95:3d:1a:33:76:a3:d0:74:81:9c:34:3a:24

Issuing Certificate URL: http://aia.entrust.net/l1k-chain256.cer

Revocation information

OCSP Server: http://ocsp.entrust.net
CRL Distribution Point: http://crl.entrust.net/level1k.crl

Check the revocation status for certificate webmail.mte.aa.com

11

DNS Names

0

Email Addresses

0

IP Addresses

Advanced Certificate Properties

Tehnical certificate details for webmail.mte.aa.com

Public Key Algorithm

RSA

Key Size

2048

Signature Algorithm

SHA256 with RSA

Key Usage

Digital Signature
Key Encipherment

Extended Key Usages

Server Authentication
Client Authentication

Extensions

10 extensions
No unhandled critical extensions

CA Certificate

This is not a CA certificate

Subject Alternative Names

webmail.mte.aa.com
*.pod51249.outlook.com
autodiscover.aa.com
autodiscover.amrcorp.mail.onmicrosoft.com
autodiscover.amrcorp.onmicrosoft.com
namp166-provisioning.internal.outlook.com
pod51249.outlook.com
pod51249ip.outlook.com
pod51249-pri.outlook.com
pod51249psh.outlook.com
webmail.aa.com

Other certificates including the domain name aa.com

(limited to 100 certificates)
psastage.aa.com
bc-stage.aa.com
boss-cdc.stage.aa.com
dtr.phx.aa.com
fos.aa.com
mdmds.test.aa.com
aspectwfm.cdc.aa.com
nrsqa.test.qcorpaa.aa.com
mfa.aa.com
admin.aa.com
aemes.envoy.aa.com
loyaltypartnercitibenefit.stage.aa.com
pilotpbs-sb.aa.com
pilot-tts.aa.com
techopsk2.uat.corpaa.aa.com
smetrics.aa.com
americanwaymagazine.com
stage.aa.com
cass.qcorpaa.aa.com
apps.usairways.com
wb.etm.aa.com
yada-beta.stage.aa.com
mclastage.aa.com
cka.aa.com
*.apps.cpepaas.aa.com
owrcm.aa.com
airportal-pdc.aa.com
handpunch.aa.com
fapbsbvr-ws.aa.com
get.azpw.aa.com
itas.aa.com
admin.awarenessnetworks.com
tmscsurvey-test.aa.com
aacloud.qa.esoa.qcorpaa.aa.com
aaapac-expcluster-e01-hon1.aa.com
cass-stage.aa.com
checkfree-stage.aa.com
americaneagle.aa.com
spe-nonprod.aa.com
bw-a.pdc.aa.com
racf.stage.aa.com
lmo.me.aa.com
ifs.aa.com
salt-np.aa.com
scdfwappp1000001.corpaa.aa.com
aacs.stage.esoa.aa.com
aapilots.com
qa-cdn.flyaa.aa.com
aana-expcluster-e01-bv1.aa.com
newemployeetravel.test.aa.com
res-keystar.stage.aa.com
aasales.dev.esoa.qcorpaa.aa.com
ssofedpdc.aa.com
aepp.jetnet.aa.com
airport360.aa.com
esdfwovp0000001.DFWD1.aa.com
app.aa.com
wb.etm.aa.com
smlogin.qtcorpaa.aa.com
eworkforce.aa.com
Aircraft-cdc.mx.techops.aa.com
premium.stage.aa.com
mercury-cert.aa.com
yada-beta.stage.aa.com
etqstage.aa.com
webref.stage.aa.com
ox-d.aa.com
isolve.aa.com
ltuappp04.corpaa.aa.com
www.aa.com
yada.aa.com
mopsmanager.qcorpaa.aa.com
concourse.ci.qcorpaa.aa.com
hub.aa.com
psa.qcorpaa.aa.com
sharedcontent1-stg.aa.com
rovrplus-gateway-east.aa.com
bc.aa.com
faroms-trng.aa.com
soa.apim.dev.sales.aa.com
sharedcontent1-stg-mg-cdc.aa.com
yada-beta.stage.aa.com
handpunch.aa.com
manuals-stage.aa.com
portal45.stage.jetnet.aa.com
*.apps.cpepaas.aa.com
ssc.stagereg.aa.com
fsa.aa.com
npportal-tmp.aa.com
americanwaymagazine.com
security.aa.com
atd.jetnet.aa.com
*.sr.prd.pdc.aa.com
admin.aa.com
tms-opt-stage.aa.com
premium-mobile.stage.aa.com
stage.aa.com
epsrmmapp401.corpaa.aa.com
smetrics.aa.com
techopshub.me.aa.com

Certificate

The complete raw certificate details for webmail.mte.aa.com in PEM and ASN.1 format.

Certificate (PEM)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Public Key (PEM)

-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApXyGubuhUUrU2/p/Lp3z
1QrpgaxmmqGl7nEuvooOFpPpxnpj0CboA8rSvT+Rig6liF1BN0EZG6y+wbVov4Qm
PXUE/ReEFvz9rMGqjVMVy2+JIdXqxO/Dxvo3s/dje447K9TyotWdcObI5b7GAqi1
OYfWeZDrnxe6CCe6NFvZdYluCFP2WZ8sZZKK93oqDg9GTEj2ekEwhigkDT8xT5C1
29h4MAr8g0rR6epqtmLa+DK3IUy/dVKuYOL0o4R1SaGPcIteXW+fMbkl3MNcCxMT
H6JE/7BYZ/AVO0i2WT8vvb2yVmx2eje5YMKNakt8CuK6xauE8B7i2pjXdzPqB1WZ
HQIDAQAB
-----END PUBLIC KEY-----

ASN.1 decoded

 [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . [c:2|t:0|true] OtherName 
 . . . . . . . . . . . . [c:0|t:2|false] INTEGER 2
 . . . . . . . . [c:0|t:2|false] INTEGER 134314507215134242473746447801615113764
 . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.2.840.113549.1.1.11 (sha256WithRSAEncryption)
 . . . . . . . . . . . . [c:0|t:5|false] NULL 
 . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.6 (countryName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'US'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.10 (organizationName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'Entrust, Inc.'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.11 (organizationalUnitName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'See www.entrust.net/legal-terms'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.11 (organizationalUnitName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString '(c) 2012 Entrust, Inc. - for authorized use only'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.3 (commonName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'Entrust Certification Authority - L1K'
 . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . [c:0|t:23|false] UTCTime 2024-02-01 08:56:06 +0000 UTC
 . . . . . . . . . . . . [c:0|t:23|false] UTCTime 2025-02-01 08:56:05 +0000 UTC
 . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.6 (countryName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'US'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.8 (stateOrProvinceName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'Texas'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.7 (localityName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'Fort Worth'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.10 (organizationName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'American Airlines, Inc.'
 . . . . . . . . . . . . [c:0|t:17|true] SET, SET OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.4.3 (commonName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:19|false] PrintableString 'webmail.mte.aa.com'
 . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.2.840.113549.1.1.1 (rsaEncryption)
 . . . . . . . . . . . . . . . . [c:0|t:5|false] NULL 
 . . . . . . . . . . . . [c:0|t:3|false] BIT STRING (2160 bits)
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:2|false] INTEGER 20890726512545874329417285401248728993816443502481781864040400386373859770818778811925643033395207701721115612122519503521253106754755615428379578233043893203742404200809338556865775409767694906853652805492153748100982857883744934158926795155577929743050221552766466435773554000759100532347724520354499271995910955760980637814814501848738834958918275304180549321877170124619830531942093409803849766024504102699619007935354086407766192324587657401475626464579338601960311517107569085367981158411051429499340862085217773581254238615864060860096785179661717160164591354190499671793324228948442271804299105512242539763997
 . . . . . . . . . . . . . . . . . . . . [c:0|t:2|false] INTEGER 65537

 . . . . . . . . [c:2|t:3|true] ORAddress 
 . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.19 (basicConstraints)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:1|false] BOOLEAN true
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (2 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.14 (subjectKeyIdentifier)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (22 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (20 bytes)
							bf890f9a7af22b4cf43c8ea2b5583b173b842617
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.35 (authorityKeyIdentifier)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (24 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:0|false] OtherName 82a27074ddbc533fcf7bd4f7cd7fa760c60a4cbf
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.3.6.1.5.5.7.1.1 (authorityInfoAccess)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (92 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.3.6.1.5.5.7.48.1 (ocsp)
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:6|false] IA5String 'http://ocsp.entrust.net'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.3.6.1.5.5.7.48.2 (caIssuers)
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:6|false] IA5String 'http://aia.entrust.net/l1k-chain256.cer'
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.31 (cRLDistributionPoints)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (44 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:0|true] OtherName 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:0|true] OtherName 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:6|false] IA5String 'http://crl.entrust.net/level1k.crl'
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.17 (subjectAltName)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (306 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'webmail.mte.aa.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String '*.pod51249.outlook.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'autodiscover.aa.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'autodiscover.amrcorp.mail.onmicrosoft.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'autodiscover.amrcorp.onmicrosoft.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'namp166-provisioning.internal.outlook.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'pod51249.outlook.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'pod51249ip.outlook.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'pod51249-pri.outlook.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'pod51249psh.outlook.com'
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:2|t:2|false] IA5String 'webmail.aa.com'
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.15 (keyUsage)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:1|false] BOOLEAN true
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (4 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:3|false] BIT STRING (3 bits)
							05a0
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.37 (extKeyUsage)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (22 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.3.6.1.5.5.7.3.1 (serverAuth)
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.3.6.1.5.5.7.3.2 (clientAuth)
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.5.29.32 (certificatePolicies)
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (12 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 2.23.140.1.2.2 (Organization Validation Certificates Policy)
 . . . . . . . . . . . . . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . . . . . . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.3.6.1.4.1.11129.2.4.2
 . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (366 bytes)
 . . . . . . . . . . . . . . . . . . . . . . . . [c:0|t:4|false] OCTET STRING (362 bytes)
							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
 . . . . [c:0|t:16|true] SEQUENCE, SEQUENCE OF 
 . . . . . . . . [c:0|t:6|false] OBJECT IDENTIFIER 1.2.840.113549.1.1.11 (sha256WithRSAEncryption)
 . . . . . . . . [c:0|t:5|false] NULL 
 . . . . [c:0|t:3|false] BIT STRING (2048 bits)
		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