
Keystore type: JKS
Keystore provider: SUN

Your keystore contains 6 entries

Alias name: root
Creation date: 10-Apr-2022
Entry type: trustedCertEntry

Owner: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 1
Valid from: Wed Dec 31 19:00:00 EST 2003 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  49:79:04:B0:EB:87:19:AC:47:B0:BC:11:51:9B:74:D0
	 SHA1: D1:EB:23:A4:6D:17:D6:8F:D9:25:64:C2:F1:F1:60:17:64:D8:E3:49
	 SHA256: D7:A7:A0:FB:5D:7E:27:31:D7:71:E9:48:4E:BC:DE:F7:1D:5F:0C:3E:0A:29:48:78:2B:C8:3E:E0:EA:69:9E:F4
	 Signature algorithm name: SHA1withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#2: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
, DistributionPoint:
     [URIName: http://crl.comodo.net/AAACertificateServices.crl]
]]

#3: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  Key_CertSign
  Crl_Sign
]

#4: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]



*******************************************
*******************************************


Alias name: fleet032.farmmutualre.com
Creation date: 10-Apr-2022
Entry type: PrivateKeyEntry
Certificate chain length: 4
Certificate[1]:
Owner: CN=fleet032.farmmutualre.com
Issuer: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: c93e54ce732eb02ad6b036161984bf9c
Valid from: Wed Apr 06 20:00:00 EDT 2022 until: Sun May 07 19:59:59 EDT 2023
Certificate fingerprints:
	 MD5:  7D:A5:12:F8:1F:F6:54:A5:BA:5F:A8:E4:33:80:F0:9B
	 SHA1: 6F:33:A0:D6:E8:EE:A0:12:8A:3D:DF:AE:E4:C1:19:87:13:CF:FC:B9
	 SHA256: 1B:4B:29:3E:87:FC:C5:F5:E0:68:54:8D:17:97:07:17:B5:45:2C:87:0A:65:6E:03:D4:14:7C:DC:B1:26:8D:E6
	 Signature algorithm name: SHA256withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.4.1.11129.2.4.2 Criticality=false
0000: 04 82 01 6A 01 68 00 76   00 AD F7 BE FA 7C FF 10  ...j.h.v........
0010: C8 8B 9D 3D 9C 1E 3E 18   6A B4 67 29 5D CF B1 0C  ...=..>.j.g)]...
0020: 24 CA 85 86 34 EB DC 82   8A 00 00 01 80 05 69 B3  $...4.........i.
0030: 6B 00 00 04 03 00 47 30   45 02 21 00 E0 13 8D 64  k.....G0E.!....d
0040: A4 D4 4B 98 5B 07 97 64   95 AF 9A 79 B2 0B 22 D5  ..K.[..d...y..".
0050: 18 F9 73 CB 39 68 DD 2D   4D C6 F7 9A 02 20 58 5D  ..s.9h.-M.... X]
0060: 2B ED 8A D5 90 0C CF 73   40 66 03 7C 3F D5 28 4E  +......s@f..?.(N
0070: A0 5B 21 67 72 B9 7F FF   92 D9 7F 02 1F 63 00 76  .[!gr........c.v
0080: 00 7A 32 8C 54 D8 B7 2D   B6 20 EA 38 E0 52 1E E9  .z2.T..-. .8.R..
0090: 84 16 70 32 13 85 4D 3B   D2 2B C1 3A 57 A3 52 EB  ..p2..M;.+.:W.R.
00A0: 52 00 00 01 80 05 69 B3   30 00 00 04 03 00 47 30  R.....i.0.....G0
00B0: 45 02 21 00 9E 81 3F 2E   52 DA 44 8E 35 69 72 91  E.!...?.R.D.5ir.
00C0: 85 46 F0 DD 26 3E 65 09   87 D6 1B 51 A4 23 5E DA  .F..&>e....Q.#^.
00D0: 76 E9 DF 0E 02 20 5C 12   7C D3 8F 17 A0 F7 DC 72  v.... \........r
00E0: DF 60 BB 6F 4A A5 15 A7   71 83 20 CD 68 00 6A ED  .`.oJ...q. .h.j.
00F0: A3 71 7B 61 2D 60 00 76   00 E8 3E D0 DA 3E F5 06  .q.a-`.v..>..>..
0100: 35 32 E7 57 28 BC 89 6B   C9 03 D3 CB D1 11 6B EC  52.W(..k......k.
0110: EB 69 E1 77 7D 6D 06 BD   6E 00 00 01 80 05 69 B3  .i.w.m..n.....i.
0120: 04 00 00 04 03 00 47 30   45 02 20 4E 33 42 00 2B  ......G0E. N3B.+
0130: FF BA 5E 60 A5 BC EF C6   0B 51 8C ED 92 8C DB 39  ..^`.....Q.....9
0140: DF 0E AC 28 69 88 FE 20   72 72 D3 02 21 00 DC 61  ...(i.. rr..!..a
0150: 51 A6 BA A4 0C 2E 38 C7   8C 84 12 EC 53 07 01 42  Q.....8.....S..B
0160: A0 88 DB B6 5D 12 77 F5   4A 8E CE 55 AB 8E        ....].w.J..U..


#2: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.sectigo.com
]
]

#3: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]

#4: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:false
  PathLen: undefined
]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [1.3.6.1.4.1.6449.1.2.2.7]
[PolicyQualifierInfo: [
  qualifierID: 1.3.6.1.5.5.7.2.1
  qualifier: 0000: 16 17 68 74 74 70 73 3A   2F 2F 73 65 63 74 69 67  ..https://sectig
0010: 6F 2E 63 6F 6D 2F 43 50   53                       o.com/CPS

]]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_Encipherment
]

#8: ObjectId: 2.5.29.17 Criticality=false
SubjectAlternativeName [
  DNSName: fleet032.farmmutualre.com
  DNSName: www.fleet032.farmmutualre.com
]

#9: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 74 F6 5E 8B B3 90 7B 5E   28 5D 9C 3A A7 84 0D 73  t.^....^(].:...s
0010: B9 C6 D2 3A                                        ...:
]
]

Certificate[2]:
Owner: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Serial number: 7d5b5126b476ba11db74160bbc530da7
Valid from: Thu Nov 01 20:00:00 EDT 2018 until: Tue Dec 31 18:59:59 EST 2030
Certificate fingerprints:
	 MD5:  AD:AB:5C:4D:F0:31:FB:92:99:F7:1A:DA:7E:18:F6:13
	 SHA1: 33:E4:E8:08:07:20:4C:2B:61:82:A3:A1:4B:59:1A:CD:25:B5:F0:DB
	 SHA256: 7F:A4:FF:68:EC:04:A9:9D:75:28:D5:08:5F:94:90:7F:4D:1D:D1:C5:38:1B:AC:DC:83:2E:D5:C9:60:21:46:76
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.usertrust.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#8: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]

Certificate[3]:
Owner: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 3972443af922b751d7d36c10dd313595
Valid from: Mon Mar 11 20:00:00 EDT 2019 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  28:5E:C9:09:C4:AB:0D:2D:57:F5:08:6B:22:57:99:AA
	 SHA1: D8:9E:3B:D4:3D:5D:90:9B:47:A1:89:77:AA:9D:5C:E3:6C:EE:18:4C
	 SHA256: 68:B9:C7:61:21:9A:5B:1F:01:31:78:44:74:66:5D:B6:1B:BD:B1:09:E0:0F:05:CA:9F:74:24:4E:E5:F5:F5:2B
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.comodoca.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
]

#6: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#7: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

Certificate[4]:
Owner: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 1
Valid from: Wed Dec 31 19:00:00 EST 2003 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  49:79:04:B0:EB:87:19:AC:47:B0:BC:11:51:9B:74:D0
	 SHA1: D1:EB:23:A4:6D:17:D6:8F:D9:25:64:C2:F1:F1:60:17:64:D8:E3:49
	 SHA256: D7:A7:A0:FB:5D:7E:27:31:D7:71:E9:48:4E:BC:DE:F7:1D:5F:0C:3E:0A:29:48:78:2B:C8:3E:E0:EA:69:9E:F4
	 Signature algorithm name: SHA1withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#2: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
, DistributionPoint:
     [URIName: http://crl.comodo.net/AAACertificateServices.crl]
]]

#3: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  Key_CertSign
  Crl_Sign
]

#4: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]



*******************************************
*******************************************


Alias name: fleet032update.farmmutualre.com
Creation date: 10-Apr-2022
Entry type: PrivateKeyEntry
Certificate chain length: 4
Certificate[1]:
Owner: CN=fleet032update.farmmutualre.com
Issuer: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: fdb4aed7d13536d2dc6f8c01354abb3d
Valid from: Wed Apr 06 20:00:00 EDT 2022 until: Sun May 07 19:59:59 EDT 2023
Certificate fingerprints:
	 MD5:  78:4A:28:F0:5E:A4:26:89:54:76:18:B2:76:DD:9C:15
	 SHA1: E1:88:0B:92:35:45:AD:EF:77:12:6F:AA:D8:B3:AB:9E:98:EC:DF:22
	 SHA256: 24:25:24:08:14:E1:82:9D:CC:67:AD:AA:D7:20:5B:FB:72:FE:1E:A3:43:95:CA:9E:12:2A:12:B6:B7:15:6E:CA
	 Signature algorithm name: SHA256withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.4.1.11129.2.4.2 Criticality=false
0000: 04 82 01 68 01 66 00 75   00 AD F7 BE FA 7C FF 10  ...h.f.u........
0010: C8 8B 9D 3D 9C 1E 3E 18   6A B4 67 29 5D CF B1 0C  ...=..>.j.g)]...
0020: 24 CA 85 86 34 EB DC 82   8A 00 00 01 80 05 6E 90  $...4.........n.
0030: 9F 00 00 04 03 00 46 30   44 02 20 67 81 AD E3 7A  ......F0D. g...z
0040: 7F 8A 69 6B 13 E4 4A 8C   C3 E0 AA F4 BE EE F8 D4  ..ik..J.........
0050: FB 4D 88 25 83 99 9C 97   99 8B 34 02 20 66 93 DF  .M.%......4. f..
0060: E6 6C CE AB 4E 17 99 9F   96 20 E4 17 0D 1A 36 DA  .l..N.... ....6.
0070: B4 AD 60 8A 38 E0 FE 4A   77 A6 51 53 15 00 75 00  ..`.8..Jw.QS..u.
0080: 7A 32 8C 54 D8 B7 2D B6   20 EA 38 E0 52 1E E9 84  z2.T..-. .8.R...
0090: 16 70 32 13 85 4D 3B D2   2B C1 3A 57 A3 52 EB 52  .p2..M;.+.:W.R.R
00A0: 00 00 01 80 05 6E 90 62   00 00 04 03 00 46 30 44  .....n.b.....F0D
00B0: 02 20 0F 2E 85 7E B4 4C   FA 8E EA FE F2 BC A1 57  . .....L.......W
00C0: 0B C2 64 BF 0D 8A 76 86   BE B9 73 30 4A 5E A7 FC  ..d...v...s0J^..
00D0: 67 1C 02 20 7D EE 08 C7   C5 01 2A DD B7 6B 34 A7  g.. ......*..k4.
00E0: 7B 77 6F 1F D2 9D 9A 6D   3F A0 30 2F 14 C1 78 3A  .wo....m?.0/..x:
00F0: DC C1 5E 09 00 76 00 E8   3E D0 DA 3E F5 06 35 32  ..^..v..>..>..52
0100: E7 57 28 BC 89 6B C9 03   D3 CB D1 11 6B EC EB 69  .W(..k......k..i
0110: E1 77 7D 6D 06 BD 6E 00   00 01 80 05 6E 90 32 00  .w.m..n.....n.2.
0120: 00 04 03 00 47 30 45 02   20 05 0F D5 8B 6F 87 1E  ....G0E. ....o..
0130: 86 AA 04 3E 99 2C F3 FA   88 BD 89 88 57 57 84 98  ...>.,......WW..
0140: 95 58 FE EB 60 66 7C B2   0B 02 21 00 F7 A8 BA 6E  .X..`f....!....n
0150: 22 D0 30 F9 B1 F9 82 E5   A3 0C A1 AB F1 82 0D 21  ".0............!
0160: D9 93 BE CE 72 47 AC 2C   A0 E7 20 F7              ....rG.,.. .


#2: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.sectigo.com
]
]

#3: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]

#4: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:false
  PathLen: undefined
]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [1.3.6.1.4.1.6449.1.2.2.7]
[PolicyQualifierInfo: [
  qualifierID: 1.3.6.1.5.5.7.2.1
  qualifier: 0000: 16 17 68 74 74 70 73 3A   2F 2F 73 65 63 74 69 67  ..https://sectig
0010: 6F 2E 63 6F 6D 2F 43 50   53                       o.com/CPS

]]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_Encipherment
]

#8: ObjectId: 2.5.29.17 Criticality=false
SubjectAlternativeName [
  DNSName: fleet032update.farmmutualre.com
  DNSName: www.fleet032update.farmmutualre.com
]

#9: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 15 F5 86 AF 92 1F 49 A8   95 BC 7A 1C 63 69 03 10  ......I...z.ci..
0010: 8C AC B7 DF                                        ....
]
]

Certificate[2]:
Owner: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Serial number: 7d5b5126b476ba11db74160bbc530da7
Valid from: Thu Nov 01 20:00:00 EDT 2018 until: Tue Dec 31 18:59:59 EST 2030
Certificate fingerprints:
	 MD5:  AD:AB:5C:4D:F0:31:FB:92:99:F7:1A:DA:7E:18:F6:13
	 SHA1: 33:E4:E8:08:07:20:4C:2B:61:82:A3:A1:4B:59:1A:CD:25:B5:F0:DB
	 SHA256: 7F:A4:FF:68:EC:04:A9:9D:75:28:D5:08:5F:94:90:7F:4D:1D:D1:C5:38:1B:AC:DC:83:2E:D5:C9:60:21:46:76
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.usertrust.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#8: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]

Certificate[3]:
Owner: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 3972443af922b751d7d36c10dd313595
Valid from: Mon Mar 11 20:00:00 EDT 2019 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  28:5E:C9:09:C4:AB:0D:2D:57:F5:08:6B:22:57:99:AA
	 SHA1: D8:9E:3B:D4:3D:5D:90:9B:47:A1:89:77:AA:9D:5C:E3:6C:EE:18:4C
	 SHA256: 68:B9:C7:61:21:9A:5B:1F:01:31:78:44:74:66:5D:B6:1B:BD:B1:09:E0:0F:05:CA:9F:74:24:4E:E5:F5:F5:2B
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.comodoca.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
]

#6: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#7: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

Certificate[4]:
Owner: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 1
Valid from: Wed Dec 31 19:00:00 EST 2003 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  49:79:04:B0:EB:87:19:AC:47:B0:BC:11:51:9B:74:D0
	 SHA1: D1:EB:23:A4:6D:17:D6:8F:D9:25:64:C2:F1:F1:60:17:64:D8:E3:49
	 SHA256: D7:A7:A0:FB:5D:7E:27:31:D7:71:E9:48:4E:BC:DE:F7:1D:5F:0C:3E:0A:29:48:78:2B:C8:3E:E0:EA:69:9E:F4
	 Signature algorithm name: SHA1withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#2: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
, DistributionPoint:
     [URIName: http://crl.comodo.net/AAACertificateServices.crl]
]]

#3: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  Key_CertSign
  Crl_Sign
]

#4: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]



*******************************************
*******************************************


Alias name: localhost.farmmutualre.com
Creation date: 10-Apr-2022
Entry type: PrivateKeyEntry
Certificate chain length: 4
Certificate[1]:
Owner: CN=localhost.farmmutualre.com
Issuer: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 3dcb504d70f304a4fd159fdb32561519
Valid from: Wed Apr 06 20:00:00 EDT 2022 until: Sun May 07 19:59:59 EDT 2023
Certificate fingerprints:
	 MD5:  9C:F4:23:45:4B:20:A0:49:8D:13:DD:10:CB:40:5B:0A
	 SHA1: 80:95:29:97:04:AE:79:D1:55:B7:D2:12:27:93:70:0D:86:D0:A6:4D
	 SHA256: 0B:77:0A:99:72:5D:7D:F2:D2:BF:FD:E1:A7:31:32:D2:D7:E3:A5:E9:CB:86:7A:7B:40:73:53:E8:CE:C8:02:30
	 Signature algorithm name: SHA256withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.4.1.11129.2.4.2 Criticality=false
0000: 04 82 01 6B 01 69 00 77   00 AD F7 BE FA 7C FF 10  ...k.i.w........
0010: C8 8B 9D 3D 9C 1E 3E 18   6A B4 67 29 5D CF B1 0C  ...=..>.j.g)]...
0020: 24 CA 85 86 34 EB DC 82   8A 00 00 01 80 05 6F 0F  $...4.........o.
0030: 96 00 00 04 03 00 48 30   46 02 21 00 8B 42 D0 42  ......H0F.!..B.B
0040: AA 22 89 F8 A6 1A E4 6E   AE 04 0A 95 E2 22 46 C9  .".....n....."F.
0050: 4B F6 30 95 B6 42 41 0D   B6 62 92 9D 02 21 00 E1  K.0..BA..b...!..
0060: AD 65 8E CB 83 82 79 29   6B AF BF E6 89 64 59 90  .e....y)k....dY.
0070: 62 8B F4 AF 44 B1 31 D6   EF 54 04 A0 81 19 1C 00  b...D.1..T......
0080: 76 00 7A 32 8C 54 D8 B7   2D B6 20 EA 38 E0 52 1E  v.z2.T..-. .8.R.
0090: E9 84 16 70 32 13 85 4D   3B D2 2B C1 3A 57 A3 52  ...p2..M;.+.:W.R
00A0: EB 52 00 00 01 80 05 6F   0F 5D 00 00 04 03 00 47  .R.....o.].....G
00B0: 30 45 02 21 00 F2 03 CE   30 65 97 9F C1 67 16 89  0E.!....0e...g..
00C0: FD F3 B9 25 5D 79 55 A6   E9 CC FA 57 F4 BB D6 B0  ...%]yU....W....
00D0: 77 E6 E1 3C 2C 02 20 09   3C 53 C7 8B 8F 6E 4D D8  w..<,. .<S...nM.
00E0: F6 C9 42 0D FC D4 50 2C   9A 5A 0F 10 7D 5A 8D 1D  ..B...P,.Z...Z..
00F0: 7E 68 55 1B 15 BC D7 00   76 00 E8 3E D0 DA 3E F5  .hU.....v..>..>.
0100: 06 35 32 E7 57 28 BC 89   6B C9 03 D3 CB D1 11 6B  .52.W(..k......k
0110: EC EB 69 E1 77 7D 6D 06   BD 6E 00 00 01 80 05 6F  ..i.w.m..n.....o
0120: 0F 2C 00 00 04 03 00 47   30 45 02 21 00 9F D3 B9  .,.....G0E.!....
0130: F7 4E 17 05 23 94 6C AA   2D AA 0B 45 F7 30 04 75  .N..#.l.-..E.0.u
0140: 0C 9D FF 85 A5 FF 6F 20   A6 94 87 5A A7 02 20 7C  ......o ...Z.. .
0150: 8D 6A 7D D1 73 07 62 87   18 82 47 B4 B7 91 91 F1  .j..s.b...G.....
0160: FD EF A8 E2 5A 64 BD D0   18 DC 0F 23 9D CD 2A     ....Zd.....#..*


#2: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.sectigo.com
]
]

#3: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]

#4: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:false
  PathLen: undefined
]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [1.3.6.1.4.1.6449.1.2.2.7]
[PolicyQualifierInfo: [
  qualifierID: 1.3.6.1.5.5.7.2.1
  qualifier: 0000: 16 17 68 74 74 70 73 3A   2F 2F 73 65 63 74 69 67  ..https://sectig
0010: 6F 2E 63 6F 6D 2F 43 50   53                       o.com/CPS

]]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_Encipherment
]

#8: ObjectId: 2.5.29.17 Criticality=false
SubjectAlternativeName [
  DNSName: localhost.farmmutualre.com
  DNSName: www.localhost.farmmutualre.com
]

#9: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 4B B8 73 85 9B CC 81 8F   91 0E C0 D7 47 27 1E 24  K.s.........G'.$
0010: 65 74 B8 55                                        et.U
]
]

Certificate[2]:
Owner: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Serial number: 7d5b5126b476ba11db74160bbc530da7
Valid from: Thu Nov 01 20:00:00 EDT 2018 until: Tue Dec 31 18:59:59 EST 2030
Certificate fingerprints:
	 MD5:  AD:AB:5C:4D:F0:31:FB:92:99:F7:1A:DA:7E:18:F6:13
	 SHA1: 33:E4:E8:08:07:20:4C:2B:61:82:A3:A1:4B:59:1A:CD:25:B5:F0:DB
	 SHA256: 7F:A4:FF:68:EC:04:A9:9D:75:28:D5:08:5F:94:90:7F:4D:1D:D1:C5:38:1B:AC:DC:83:2E:D5:C9:60:21:46:76
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.usertrust.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#8: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]

Certificate[3]:
Owner: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 3972443af922b751d7d36c10dd313595
Valid from: Mon Mar 11 20:00:00 EDT 2019 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  28:5E:C9:09:C4:AB:0D:2D:57:F5:08:6B:22:57:99:AA
	 SHA1: D8:9E:3B:D4:3D:5D:90:9B:47:A1:89:77:AA:9D:5C:E3:6C:EE:18:4C
	 SHA256: 68:B9:C7:61:21:9A:5B:1F:01:31:78:44:74:66:5D:B6:1B:BD:B1:09:E0:0F:05:CA:9F:74:24:4E:E5:F5:F5:2B
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.comodoca.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
]

#6: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#7: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

Certificate[4]:
Owner: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 1
Valid from: Wed Dec 31 19:00:00 EST 2003 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  49:79:04:B0:EB:87:19:AC:47:B0:BC:11:51:9B:74:D0
	 SHA1: D1:EB:23:A4:6D:17:D6:8F:D9:25:64:C2:F1:F1:60:17:64:D8:E3:49
	 SHA256: D7:A7:A0:FB:5D:7E:27:31:D7:71:E9:48:4E:BC:DE:F7:1D:5F:0C:3E:0A:29:48:78:2B:C8:3E:E0:EA:69:9E:F4
	 Signature algorithm name: SHA1withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#2: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
, DistributionPoint:
     [URIName: http://crl.comodo.net/AAACertificateServices.crl]
]]

#3: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  Key_CertSign
  Crl_Sign
]

#4: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]



*******************************************
*******************************************


Alias name: intermediate2
Creation date: 10-Apr-2022
Entry type: trustedCertEntry

Owner: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB
Serial number: 3972443af922b751d7d36c10dd313595
Valid from: Mon Mar 11 20:00:00 EDT 2019 until: Sun Dec 31 18:59:59 EST 2028
Certificate fingerprints:
	 MD5:  28:5E:C9:09:C4:AB:0D:2D:57:F5:08:6B:22:57:99:AA
	 SHA1: D8:9E:3B:D4:3D:5D:90:9B:47:A1:89:77:AA:9D:5C:E3:6C:EE:18:4C
	 SHA256: 68:B9:C7:61:21:9A:5B:1F:01:31:78:44:74:66:5D:B6:1B:BD:B1:09:E0:0F:05:CA:9F:74:24:4E:E5:F5:F5:2B
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.comodoca.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: A0 11 0A 23 3E 96 F1 07   EC E2 AF 29 EF 82 A5 7F  ...#>......)....
0010: D0 30 A4 B4                                        .0..
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.comodoca.com/AAACertificateServices.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
]

#6: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#7: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]



*******************************************
*******************************************


Alias name: intermediate1
Creation date: 10-Apr-2022
Entry type: trustedCertEntry

Owner: CN=Sectigo RSA Domain Validation Secure Server CA, O=Sectigo Limited, L=Salford, ST=Greater Manchester, C=GB
Issuer: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US
Serial number: 7d5b5126b476ba11db74160bbc530da7
Valid from: Thu Nov 01 20:00:00 EDT 2018 until: Tue Dec 31 18:59:59 EST 2030
Certificate fingerprints:
	 MD5:  AD:AB:5C:4D:F0:31:FB:92:99:F7:1A:DA:7E:18:F6:13
	 SHA1: 33:E4:E8:08:07:20:4C:2B:61:82:A3:A1:4B:59:1A:CD:25:B5:F0:DB
	 SHA256: 7F:A4:FF:68:EC:04:A9:9D:75:28:D5:08:5F:94:90:7F:4D:1D:D1:C5:38:1B:AC:DC:83:2E:D5:C9:60:21:46:76
	 Signature algorithm name: SHA384withRSA
	 Version: 3

Extensions: 

#1: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
AuthorityInfoAccess [
  [
   accessMethod: caIssuers
   accessLocation: URIName: http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
, 
   accessMethod: ocsp
   accessLocation: URIName: http://ocsp.usertrust.com
]
]

#2: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 53 79 BF 5A AA 2B 4A CF   54 80 E1 D8 9B C0 9D F2  Sy.Z.+J.T.......
0010: B2 03 66 CB                                        ..f.
]
]

#3: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
  CA:true
  PathLen:0
]

#4: ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
  [DistributionPoint:
     [URIName: http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl]
]]

#5: ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
  [CertificatePolicyId: [2.5.29.32.0]
[]  ]
  [CertificatePolicyId: [2.23.140.1.2.1]
[]  ]
]

#6: ObjectId: 2.5.29.37 Criticality=false
ExtendedKeyUsages [
  serverAuth
  clientAuth
]

#7: ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
  DigitalSignature
  Key_CertSign
  Crl_Sign
]

#8: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8D 8C 5E C4 54 AD 8A E1   77 E9 9B F9 9B 05 E1 B8  ..^.T...w.......
0010: 01 8D 61 E1                                        ..a.
]
]



*******************************************
*******************************************


