Tech-invite3GPPspaceIETFspace
96959493929190898887868584838281807978777675747372717069686766656463626160595857565554535251504948474645444342414039383736353433323130292827262524232221201918171615141312111009080706050403020100
in Index   Prev   Next

RFC 4134

Examples of S/MIME Messages

Pages: 136
Informational
Errata
Part 4 of 5 – Pages 75 to 101
First   Prev   Next

Top   ToC   RFC4134 - Page 75   prevText

4.6. Multiple Signers

Similar to 4.1, but the message is also signed by Diane. Two signerInfos (one for Alice, one for Diane) with no attribute certificates, each signed using DSS, Alice's and Diane's certificate (not Carl's root cert), no CRL. The message is ExContent, and is included in the eContent. There are no signed or unsigned attributes. 0 30 1463: SEQUENCE { 4 06 9: OBJECT IDENTIFIER signedData (1 2 840 113549 1 7 2) : (PKCS #7) 15 A0 1448: [0] { 19 30 1444: SEQUENCE { 23 02 1: INTEGER 1 26 31 9: SET { 28 30 7: SEQUENCE { 30 06 5: OBJECT IDENTIFIER sha1 (1 3 14 3 2 26) : (OIW) : } : } 37 30 43: SEQUENCE { 39 06 9: OBJECT IDENTIFIER data (1 2 840 113549 1 7 1) : (PKCS #7) 50 A0 30: [0] { 52 04 28: OCTET STRING 'This is some sample content.' : } : } 82 A0 1180: [0] { 86 30 440: SEQUENCE { 90 30 375: SEQUENCE { 94 A0 3: [0] { 96 02 1: INTEGER 2 : } 99 02 2: INTEGER 210 103 30 9: SEQUENCE { 105 06 7: OBJECT IDENTIFIER : dsaWithSha1 (1 2 840 10040 4 3) : (ANSI X9.57 algorithm) : } 114 30 18: SEQUENCE { 116 31 16: SET {
Top   ToC   RFC4134 - Page 76
    118 30   14:                 SEQUENCE {
    120 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
    125 13    7:                   PrintableString 'CarlDSS'
               :                   }
               :                 }
               :               }
    134 30   30:             SEQUENCE {
    136 17   13:               UTCTime '990817020810Z'
    151 17   13:               UTCTime '391231235959Z'
               :               }
    166 30   19:             SEQUENCE {
    168 31   17:               SET {
    170 30   15:                 SEQUENCE {
    172 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
    177 13    8:                   PrintableString 'DianeDSS'
               :                   }
               :                 }
               :               }
    187 30  147:             SEQUENCE {
    190 30    9:               SEQUENCE {
    192 06    7:                 OBJECT IDENTIFIER
               :                   dsa (1 2 840 10040 4 1)
               :                   (ANSI X9.57 algorithm)
               :                 }
    201 03  133:               BIT STRING 0 unused bits, encapsulates {
    205 02  129:                   INTEGER
               :                   00 A0 00 17 78 2C EE 7E 81 53 2E 2E
               :                   61 08 0F A1 9B 51 52 1A DA 59 A8 73
               :                   2F 12 25 B6 08 CB CA EF 2A 44 76 8A
               :                   52 09 EA BD 05 22 D5 0F F6 FD 46 D7
               :                   AF 99 38 09 0E 13 CB 4F 2C DD 1C 34
               :                   F7 1C BF 25 FF 23 D3 3B 59 E7 82 97
               :                   37 BE 31 24 D8 18 C8 F3 49 39 5B B7
               :                   E2 E5 27 7E FC 8C 45 72 5B 7E 3E 8F
               :                   68 4D DD 46 7A 22 BE 8E FF CC DA 39
               :                   29 A3 39 E5 9F 43 E9 55 C9 D7 5B A6
               :                   81 67 CC C0 AA CD 2E C5 23
               :                   }
               :               }
    337 A3  129:             [3] {
    340 30  127:               SEQUENCE {
    342 30   12:                 SEQUENCE {
    344 06    3:                   OBJECT IDENTIFIER
               :                     basicConstraints (2 5 29 19)
Top   ToC   RFC4134 - Page 77
               :                     (X.509 id-ce (2 5 29))
    349 01    1:                   BOOLEAN TRUE
    352 04    2:                   OCTET STRING, encapsulates {
    354 30    0:                       SEQUENCE {}
               :                       }
               :                   }
    356 30   14:                 SEQUENCE {
    358 06    3:                   OBJECT IDENTIFIER
               :                     keyUsage (2 5 29 15)
               :                     (X.509 id-ce (2 5 29))
    363 01    1:                   BOOLEAN TRUE
    366 04    4:                   OCTET STRING, encapsulates {
    368 03    2:                       BIT STRING 6 unused bits
               :                         '11'B
               :                       }
               :                   }
    372 30   31:                 SEQUENCE {
    374 06    3:                   OBJECT IDENTIFIER
               :                     authorityKeyIdentifier (2 5 29 35)
               :                     (X.509 id-ce (2 5 29))
    379 04   24:                   OCTET STRING, encapsulates {
    381 30   22:                       SEQUENCE {
    383 80   20:                         [0]
               :                   70 44 3E 82 2E 6F 87 DE 4A D3 75 E3
               :                   3D 20 BC 43 2B 93 F1 1F
               :                         }
               :                       }
               :                   }
    405 30   29:                 SEQUENCE {
    407 06    3:                   OBJECT IDENTIFIER
               :                     subjectKeyIdentifier (2 5 29 14)
               :                     (X.509 id-ce (2 5 29))
    412 04   22:                   OCTET STRING, encapsulates {
    414 04   20:                       OCTET STRING
               :                   64 30 99 7D 5C DC 45 0B 99 3A 52 2F
               :                   16 BF 58 50 DD CE 2B 18
               :                       }
               :                   }
    436 30   31:                 SEQUENCE {
    438 06    3:                   OBJECT IDENTIFIER
               :                     subjectAltName (2 5 29 17)
               :                     (X.509 id-ce (2 5 29))
    443 04   24:                   OCTET STRING, encapsulates {
    445 30   22:                       SEQUENCE {
    447 81   20:                         [1] 'DianeDSS@example.com'
               :                         }
               :                       }
               :                   }
Top   ToC   RFC4134 - Page 78
               :                 }
               :               }
               :             }
    469 30    9:           SEQUENCE {
    471 06    7:             OBJECT IDENTIFIER
               :               dsaWithSha1 (1 2 840 10040 4 3)
               :               (ANSI X9.57 algorithm)
               :             }
    480 03   48:           BIT STRING 0 unused bits, encapsulates {
    483 30   45:               SEQUENCE {
    485 02   21:                 INTEGER
               :                   00 A1 1A F8 17 0E 3E 5D A8 8C F4 B6
               :                   55 33 1E 4B E3 2C AC B9 5F
    508 02   20:                 INTEGER
               :                   28 4B 10 45 58 D2 1C 9D 55 35 14 18
               :                   91 B2 3F 39 DF B5 6E D3
               :                 }
               :               }
               :           }
    530 30  732:         SEQUENCE {
    534 30  667:           SEQUENCE {
    538 A0    3:             [0] {
    540 02    1:               INTEGER 2
               :               }
    543 02    2:             INTEGER 200
    547 30    9:             SEQUENCE {
    549 06    7:               OBJECT IDENTIFIER
               :                 dsaWithSha1 (1 2 840 10040 4 3)
               :                 (ANSI X9.57 algorithm)
               :               }
    558 30   18:             SEQUENCE {
    560 31   16:               SET {
    562 30   14:                 SEQUENCE {
    564 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
    569 13    7:                   PrintableString 'CarlDSS'
               :                   }
               :                 }
               :               }
    578 30   30:             SEQUENCE {
    580 17   13:               UTCTime '990817011049Z'
    595 17   13:               UTCTime '391231235959Z'
               :               }
    610 30   19:             SEQUENCE {
    612 31   17:               SET {
    614 30   15:                 SEQUENCE {
    616 06    3:                   OBJECT IDENTIFIER
Top   ToC   RFC4134 - Page 79
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
    621 13    8:                   PrintableString 'AliceDSS'
               :                   }
               :                 }
               :               }
    631 30  438:             SEQUENCE {
    635 30  299:               SEQUENCE {
    639 06    7:                 OBJECT IDENTIFIER
               :                   dsa (1 2 840 10040 4 1)
               :                   (ANSI X9.57 algorithm)
    648 30  286:                 SEQUENCE {
    652 02  129:                   INTEGER
               :                   00 81 8D CD ED 83 EA 0A 9E 39 3E C2
               :                   48 28 A3 E4 47 93 DD 0E D7 A8 0E EC
               :                   53 C5 AB 84 08 4F FF 94 E1 73 48 7E
               :                   0C D6 F3 44 48 D1 FE 9F AF A4 A1 89
               :                   2F E1 D9 30 C8 36 DE 3F 9B BF B7 4C
               :                   DC 5F 69 8A E4 75 D0 37 0C 91 08 95
               :                   9B DE A7 5E F9 FC F4 9F 2F DD 43 A8
               :                   8B 54 F1 3F B0 07 08 47 4D 5D 88 C3
               :                   C3 B5 B3 E3 55 08 75 D5 39 76 10 C4
               :                   78 BD FF 9D B0 84 97 37 F2 E4 51 1B
               :                   B5 E4 09 96 5C F3 7E 5B DB
    784 02   21:                   INTEGER
               :                   00 E2 47 A6 1A 45 66 B8 13 C6 DA 8F
               :                   B8 37 21 2B 62 8B F7 93 CD
    807 02  128:                   INTEGER
               :                   26 38 D0 14 89 32 AA 39 FB 3E 6D D9
               :                   4B 59 6A 4C 76 23 39 04 02 35 5C F2
               :                   CB 1A 30 C3 1E 50 5D DD 9B 59 E2 CD
               :                   AA 05 3D 58 C0 7B A2 36 B8 6E 07 AF
               :                   7D 8A 42 25 A7 F4 75 CF 4A 08 5E 4B
               :                   3E 90 F8 6D EA 9C C9 21 8A 3B 76 14
               :                   E9 CE 2E 5D A3 07 CD 23 85 B8 2F 30
               :                   01 7C 6D 49 89 11 89 36 44 BD F8 C8
               :                   95 4A 53 56 B5 E2 F9 73 EC 1A 61 36
               :                   1F 11 7F C2 BD ED D1 50 FF 98 74 C2
               :                   D1 81 4A 60 39 BA 36 39
               :                   }
               :                 }
    938 03  132:               BIT STRING 0 unused bits, encapsulates {
    942 02  128:                   INTEGER
               :                   5C E3 B9 5A 75 14 96 0B A9 7A DD E3
               :                   3F A9 EC AC 5E DC BD B7 13 11 34 A6
               :                   16 89 28 11 23 D9 34 86 67 75 75 13
               :                   12 3D 43 5B 6F E5 51 BF FA 89 F2 A2
               :                   1B 3E 24 7D 3D 07 8D 5B 63 C8 BB 45
Top   ToC   RFC4134 - Page 80
               :                   A5 A0 4A E3 85 D6 CE 06 80 3F E8 23
               :                   7E 1A F2 24 AB 53 1A B8 27 0D 1E EF
               :                   08 BF 66 14 80 5C 62 AC 65 FA 15 8B
               :                   F1 BB 34 D4 D2 96 37 F6 61 47 B2 C4
               :                   32 84 F0 7E 41 40 FD 46 A7 63 4E 33
               :                   F2 A5 E2 F4 F2 83 E5 B8
               :                   }
               :               }
   1073 A3  129:             [3] {
   1076 30  127:               SEQUENCE {
   1078 30   12:                 SEQUENCE {
   1080 06    3:                   OBJECT IDENTIFIER
               :                     basicConstraints (2 5 29 19)
               :                     (X.509 id-ce (2 5 29))
   1085 01    1:                   BOOLEAN TRUE
   1088 04    2:                   OCTET STRING, encapsulates {
   1090 30    0:                       SEQUENCE {}
               :                       }
               :                   }
   1092 30   14:                 SEQUENCE {
   1094 06    3:                   OBJECT IDENTIFIER
               :                     keyUsage (2 5 29 15)
               :                     (X.509 id-ce (2 5 29))
   1099 01    1:                   BOOLEAN TRUE
   1102 04    4:                   OCTET STRING, encapsulates {
   1104 03    2:                       BIT STRING 6 unused bits
               :                         '11'B
               :                       }
               :                   }
   1108 30   31:                 SEQUENCE {
   1110 06    3:                   OBJECT IDENTIFIER
               :                     authorityKeyIdentifier (2 5 29 35)
               :                     (X.509 id-ce (2 5 29))
   1115 04   24:                   OCTET STRING, encapsulates {
   1117 30   22:                       SEQUENCE {
   1119 80   20:                         [0]
               :                   70 44 3E 82 2E 6F 87 DE 4A D3 75 E3
               :                   3D 20 BC 43 2B 93 F1 1F
               :                         }
               :                       }
               :                   }
   1141 30   29:                 SEQUENCE {
   1143 06    3:                   OBJECT IDENTIFIER
               :                     subjectKeyIdentifier (2 5 29 14)
               :                     (X.509 id-ce (2 5 29))
   1148 04   22:                   OCTET STRING, encapsulates {
   1150 04   20:                       OCTET STRING
               :                   BE 6C A1 B3 E3 C1 F7 ED 43 70 A4 CE
Top   ToC   RFC4134 - Page 81
               :                   13 01 E2 FD E3 97 FE CD
               :                       }
               :                   }
   1172 30   31:                 SEQUENCE {
   1174 06    3:                   OBJECT IDENTIFIER
               :                     subjectAltName (2 5 29 17)
               :                     (X.509 id-ce (2 5 29))
   1179 04   24:                   OCTET STRING, encapsulates {
   1181 30   22:                       SEQUENCE {
   1183 81   20:                         [1] 'AliceDSS@example.com'
               :                         }
               :                       }
               :                   }
               :                 }
               :               }
               :             }
   1205 30    9:           SEQUENCE {
   1207 06    7:             OBJECT IDENTIFIER
               :               dsaWithSha1 (1 2 840 10040 4 3)
               :               (ANSI X9.57 algorithm)
               :             }
   1216 03   48:           BIT STRING 0 unused bits, encapsulates {
   1219 30   45:               SEQUENCE {
   1221 02   20:                 INTEGER
               :                   55 0C A4 19 1F 42 2B 89 71 22 33 8D
               :                   83 6A B5 3D 67 6B BF 45
   1243 02   21:                 INTEGER
               :                   00 9F 61 53 52 54 0B 5C B2 DD DA E7
               :                   76 1D E2 10 52 5B 43 5E BD
               :                 }
               :               }
               :           }
               :         }
   1266 31  198:       SET {
   1269 30   97:         SEQUENCE {
   1271 02    1:           INTEGER 1
   1274 30   24:           SEQUENCE {
   1276 30   18:             SEQUENCE {
   1278 31   16:               SET {
   1280 30   14:                 SEQUENCE {
   1282 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
   1287 13    7:                   PrintableString 'CarlDSS'
               :                   }
               :                 }
               :               }
   1296 02    2:             INTEGER 200
Top   ToC   RFC4134 - Page 82
               :             }
   1300 30    7:           SEQUENCE {
   1302 06    5:             OBJECT IDENTIFIER sha1 (1 3 14 3 2 26)
               :               (OIW)
               :             }
   1309 30    9:           SEQUENCE {
   1311 06    7:             OBJECT IDENTIFIER
               :               dsaWithSha1 (1 2 840 10040 4 3)
               :               (ANSI X9.57 algorithm)
               :             }
   1320 04   46:           OCTET STRING, encapsulates {
   1322 30   44:               SEQUENCE {
   1324 02   20:                 INTEGER
               :                   48 24 DE 8B 85 F2 16 AF EC 82 61 A9
               :                   54 D0 2D 04 A1 CC 5A 4F
   1346 02   20:                 INTEGER
               :                   17 ED D5 77 02 EE 75 13 D8 10 BD 3D
               :                   97 17 20 88 BB FD 7B 81
               :                 }
               :               }
               :           }
   1368 30   97:         SEQUENCE {
   1370 02    1:           INTEGER 1
   1373 30   24:           SEQUENCE {
   1375 30   18:             SEQUENCE {
   1377 31   16:               SET {
   1379 30   14:                 SEQUENCE {
   1381 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
   1386 13    7:                   PrintableString 'CarlDSS'
               :                   }
               :                 }
               :               }
   1395 02    2:             INTEGER 210
               :             }
   1399 30    7:           SEQUENCE {
   1401 06    5:             OBJECT IDENTIFIER sha1 (1 3 14 3 2 26)
               :               (OIW)
               :             }
   1408 30    9:           SEQUENCE {
   1410 06    7:             OBJECT IDENTIFIER
               :               dsaWithSha1 (1 2 840 10040 4 3)
               :               (ANSI X9.57 algorithm)
               :             }
   1419 04   46:           OCTET STRING, encapsulates {
   1421 30   44:               SEQUENCE {
   1423 02   20:                 INTEGER
Top   ToC   RFC4134 - Page 83
               :                   15 FF 81 4D 8C AD 80 4E 9B 35 58 04
               :                   37 6E 63 6E E9 5B 83 FA
   1445 02   20:                 INTEGER
               :                   06 7E 58 4E 2B 31 84 41 ED 49 79 38
               :                   3E 77 D2 A6 8C 75 08 21
               :                 }
               :               }
               :           }
               :         }
               :       }
               :     }
               :   }

4.7. Signing Using SKI

Same as 4.1, but the signature uses the SKI instead of the issuer/serial number in the cert. A SignedData with no attribute certificates, signed by Alice using DSS, just her certificate (not Carl's root cert), identified by the SKI, no CRL. The message is ExContent, and is included in the eContent. There are no signed or unsigned attributes. 0 30 915: SEQUENCE { 4 06 9: OBJECT IDENTIFIER signedData (1 2 840 113549 1 7 2) : (PKCS #7) 15 A0 900: [0] { 19 30 896: SEQUENCE { 23 02 1: INTEGER 3 26 31 9: SET { 28 30 7: SEQUENCE { 30 06 5: OBJECT IDENTIFIER sha1 (1 3 14 3 2 26) : (OIW) : } : } 37 30 43: SEQUENCE { 39 06 9: OBJECT IDENTIFIER data (1 2 840 113549 1 7 1) : (PKCS #7) 50 A0 30: [0] { 52 04 28: OCTET STRING 'This is some sample content.' : } : } 82 A0 736: [0] { 86 30 732: SEQUENCE { 90 30 667: SEQUENCE { 94 A0 3: [0] { 96 02 1: INTEGER 2 : } 99 02 2: INTEGER 200
Top   ToC   RFC4134 - Page 84
    103 30    9:             SEQUENCE {
    105 06    7:               OBJECT IDENTIFIER
               :                 dsaWithSha1 (1 2 840 10040 4 3)
               :                 (ANSI X9.57 algorithm)
               :               }
    114 30   18:             SEQUENCE {
    116 31   16:               SET {
    118 30   14:                 SEQUENCE {
    120 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
    125 13    7:                   PrintableString 'CarlDSS'
               :                   }
               :                 }
               :               }
    134 30   30:             SEQUENCE {
    136 17   13:               UTCTime '990817011049Z'
    151 17   13:               UTCTime '391231235959Z'
               :               }
    166 30   19:             SEQUENCE {
    168 31   17:               SET {
    170 30   15:                 SEQUENCE {
    172 06    3:                   OBJECT IDENTIFIER
               :                     commonName (2 5 4 3)
               :                     (X.520 id-at (2 5 4))
    177 13    8:                   PrintableString 'AliceDSS'
               :                   }
               :                 }
               :               }
    187 30  438:             SEQUENCE {
    191 30  299:               SEQUENCE {
    195 06    7:                 OBJECT IDENTIFIER
               :                   dsa (1 2 840 10040 4 1)
               :                   (ANSI X9.57 algorithm)
    204 30  286:                 SEQUENCE {
    208 02  129:                   INTEGER
               :                   00 81 8D CD ED 83 EA 0A 9E 39 3E C2
               :                   48 28 A3 E4 47 93 DD 0E D7 A8 0E EC
               :                   53 C5 AB 84 08 4F FF 94 E1 73 48 7E
               :                   0C D6 F3 44 48 D1 FE 9F AF A4 A1 89
               :                   2F E1 D9 30 C8 36 DE 3F 9B BF B7 4C
               :                   DC 5F 69 8A E4 75 D0 37 0C 91 08 95
               :                   9B DE A7 5E F9 FC F4 9F 2F DD 43 A8
               :                   8B 54 F1 3F B0 07 08 47 4D 5D 88 C3
               :                   C3 B5 B3 E3 55 08 75 D5 39 76 10 C4
               :                   78 BD FF 9D B0 84 97 37 F2 E4 51 1B
               :                   B5 E4 09 96 5C F3 7E 5B DB
    340 02   21:                   INTEGER
Top   ToC   RFC4134 - Page 85
               :                   00 E2 47 A6 1A 45 66 B8 13 C6 DA 8F
               :                   B8 37 21 2B 62 8B F7 93 CD
    363 02  128:                   INTEGER
               :                   26 38 D0 14 89 32 AA 39 FB 3E 6D D9
               :                   4B 59 6A 4C 76 23 39 04 02 35 5C F2
               :                   CB 1A 30 C3 1E 50 5D DD 9B 59 E2 CD
               :                   AA 05 3D 58 C0 7B A2 36 B8 6E 07 AF
               :                   7D 8A 42 25 A7 F4 75 CF 4A 08 5E 4B
               :                   3E 90 F8 6D EA 9C C9 21 8A 3B 76 14
               :                   E9 CE 2E 5D A3 07 CD 23 85 B8 2F 30
               :                   01 7C 6D 49 89 11 89 36 44 BD F8 C8
               :                   95 4A 53 56 B5 E2 F9 73 EC 1A 61 36
               :                   1F 11 7F C2 BD ED D1 50 FF 98 74 C2
               :                   D1 81 4A 60 39 BA 36 39
               :                   }
               :                 }
    494 03  132:               BIT STRING 0 unused bits, encapsulates {
    498 02  128:                   INTEGER
               :                   5C E3 B9 5A 75 14 96 0B A9 7A DD E3
               :                   3F A9 EC AC 5E DC BD B7 13 11 34 A6
               :                   16 89 28 11 23 D9 34 86 67 75 75 13
               :                   12 3D 43 5B 6F E5 51 BF FA 89 F2 A2
               :                   1B 3E 24 7D 3D 07 8D 5B 63 C8 BB 45
               :                   A5 A0 4A E3 85 D6 CE 06 80 3F E8 23
               :                   7E 1A F2 24 AB 53 1A B8 27 0D 1E EF
               :                   08 BF 66 14 80 5C 62 AC 65 FA 15 8B
               :                   F1 BB 34 D4 D2 96 37 F6 61 47 B2 C4
               :                   32 84 F0 7E 41 40 FD 46 A7 63 4E 33
               :                   F2 A5 E2 F4 F2 83 E5 B8
               :                   }
               :               }
    629 A3  129:             [3] {
    632 30  127:               SEQUENCE {
    634 30   12:                 SEQUENCE {
    636 06    3:                   OBJECT IDENTIFIER
               :                     basicConstraints (2 5 29 19)
               :                     (X.509 id-ce (2 5 29))
    641 01    1:                   BOOLEAN TRUE
    644 04    2:                   OCTET STRING, encapsulates {
    646 30    0:                       SEQUENCE {}
               :                       }
               :                   }
    648 30   14:                 SEQUENCE {
    650 06    3:                   OBJECT IDENTIFIER
               :                     keyUsage (2 5 29 15)
               :                     (X.509 id-ce (2 5 29))
    655 01    1:                   BOOLEAN TRUE
    658 04    4:                   OCTET STRING, encapsulates {
Top   ToC   RFC4134 - Page 86
    660 03    2:                       BIT STRING 6 unused bits
               :                         '11'B
               :                       }
               :                   }
    664 30   31:                 SEQUENCE {
    666 06    3:                   OBJECT IDENTIFIER
               :                     authorityKeyIdentifier (2 5 29 35)
               :                     (X.509 id-ce (2 5 29))
    671 04   24:                   OCTET STRING, encapsulates {
    673 30   22:                       SEQUENCE {
    675 80   20:                         [0]
               :                   70 44 3E 82 2E 6F 87 DE 4A D3 75 E3
               :                   3D 20 BC 43 2B 93 F1 1F
               :                         }
               :                       }
               :                   }
    697 30   29:                 SEQUENCE {
    699 06    3:                   OBJECT IDENTIFIER
               :                     subjectKeyIdentifier (2 5 29 14)
               :                     (X.509 id-ce (2 5 29))
    704 04   22:                   OCTET STRING, encapsulates {
    706 04   20:                       OCTET STRING
               :                   BE 6C A1 B3 E3 C1 F7 ED 43 70 A4 CE
               :                   13 01 E2 FD E3 97 FE CD
               :                       }
               :                   }
    728 30   31:                 SEQUENCE {
    730 06    3:                   OBJECT IDENTIFIER
               :                     subjectAltName (2 5 29 17)
               :                     (X.509 id-ce (2 5 29))
    735 04   24:                   OCTET STRING, encapsulates {
    737 30   22:                       SEQUENCE {
    739 81   20:                         [1] 'AliceDSS@example.com'
               :                         }
               :                       }
               :                   }
               :                 }
               :               }
               :             }
    761 30    9:           SEQUENCE {
    763 06    7:             OBJECT IDENTIFIER
               :               dsaWithSha1 (1 2 840 10040 4 3)
               :               (ANSI X9.57 algorithm)
               :             }
    772 03   48:           BIT STRING 0 unused bits, encapsulates {
    775 30   45:               SEQUENCE {
    777 02   20:                 INTEGER
               :                   55 0C A4 19 1F 42 2B 89 71 22 33 8D
Top   ToC   RFC4134 - Page 87
               :                   83 6A B5 3D 67 6B BF 45
    799 02   21:                 INTEGER
               :                   00 9F 61 53 52 54 0B 5C B2 DD DA E7
               :                   76 1D E2 10 52 5B 43 5E BD
               :                 }
               :               }
               :           }
               :         }
    822 31   95:       SET {
    824 30   93:         SEQUENCE {
    826 02    1:           INTEGER 3
    829 80   20:           [0]
               :             BE 6C A1 B3 E3 C1 F7 ED 43 70 A4 CE
               :             13 01 E2 FD E3 97 FE CD
    851 30    7:           SEQUENCE {
    853 06    5:             OBJECT IDENTIFIER sha1 (1 3 14 3 2 26)
               :               (OIW)
               :             }
    860 30    9:           SEQUENCE {
    862 06    7:             OBJECT IDENTIFIER dsa (1 2 840 10040 4 1)
               :               (ANSI X9.57 algorithm)
               :             }
    871 04   46:           OCTET STRING, encapsulates {
    873 30   44:               SEQUENCE {
    875 02   20:                 INTEGER
               :                   6D 8E 5A CD 28 A0 1F D9 86 AD 7A E9
               :                   DF AC D7 BE EC BE 3F F8
    897 02   20:                 INTEGER
               :                   7C 8A 06 1E FC A4 41 35 7E F7 24 14
               :                   FD 3D C0 56 B7 05 27 D5
               :                 }
               :               }
               :           }
               :         }
               :       }
               :     }
               :   }

4.8. S/MIME multipart/signed Message

A full S/MIME message, including MIME, that includes the body part from 4.3 and the body containing the content of the message. MIME-Version: 1.0 To: User2@examples.com From: aliceDss@examples.com Subject: Example 4.8 Message-Id: <020906002550300.249@examples.com>
Top   ToC   RFC4134 - Page 88
Date: Fri, 06 Sep 2002 00:25:21 -0300
Content-Type: multipart/signed;
    micalg=SHA1;
    boundary="----=_NextBoundry____Fri,_06_Sep_2002_00:25:21";
    protocol="application/pkcs7-signature"

This is a multi-part message in MIME format.

------=_NextBoundry____Fri,_06_Sep_2002_00:25:21

This is some sample content.
------=_NextBoundry____Fri,_06_Sep_2002_00:25:21
Content-Type: application/pkcs7-signature; name=smime.p7s
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename=smime.p7s
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------=_NextBoundry____Fri,_06_Sep_2002_00:25:21--

4.9. S/MIME application/pkcs7-mime Signed Message

A full S/MIME message, including the MIME parts. MIME-Version: 1.0 To: User2@examples.com From: aliceDss@examples.com Subject: Example 4.9 Message-Id: <021031164540300.304@examples.com> Date: Thu, 31 Oct 2002 16:45:14 -0300 Content-Type: application/pkcs7-mime; smime-type=signed-data; name=smime.p7m
Top   ToC   RFC4134 - Page 89
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename=smime.p7m
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4.10. SignedData with Attributes

A SignedData message with the following list of signedAttributes: -unknown OID -contentHints -smimeCapablilties -securityLabel -ContentReference -smimeEncryptKeyPreference -mlExpansionHistory -EquivalentLabel 0 30 2047: SEQUENCE { 4 06 9: OBJECT IDENTIFIER signedData (1 2 840 113549 1 7 2) : (PKCS #7) 15 A0 2032: [0] { 19 30 2028: SEQUENCE { 23 02 1: INTEGER 1 26 31 9: SET { 28 30 7: SEQUENCE { 30 06 5: OBJECT IDENTIFIER sha1 (1 3 14 3 2 26) : (OIW) : } : } 37 30 43: SEQUENCE {
Top   ToC   RFC4134 - Page 90
  39 06    9:         OBJECT IDENTIFIER data (1 2 840 113549 1 7 1)
            :           (PKCS #7)
  50 A0   30:         [0] {
  52 04   28:           OCTET STRING 'This is some sample content.'
            :           }
            :         }
  82 A0  736:       [0] {
  86 30  732:         SEQUENCE {
  90 30  667:           SEQUENCE {
  94 A0    3:             [0] {
  96 02    1:               INTEGER 2
            :               }
  99 02    2:             INTEGER 200
 103 30    9:             SEQUENCE {
 105 06    7:               OBJECT IDENTIFIER
            :                 dsaWithSha1 (1 2 840 10040 4 3)
            :                 (ANSI X9.57 algorithm)
            :               }
 114 30   18:             SEQUENCE {
 116 31   16:               SET {
 118 30   14:                 SEQUENCE {
 120 06    3:                   OBJECT IDENTIFIER
            :                     commonName (2 5 4 3)
            :                     (X.520 id-at (2 5 4))
 125 13    7:                   PrintableString 'CarlDSS'
            :                   }
            :                 }
            :               }
 134 30   30:             SEQUENCE {
 136 17   13:               UTCTime '990817011049Z'
 151 17   13:               UTCTime '391231235959Z'
            :               }
 166 30   19:             SEQUENCE {
 168 31   17:               SET {
 170 30   15:                 SEQUENCE {
 172 06    3:                   OBJECT IDENTIFIER
            :                     commonName (2 5 4 3)
            :                     (X.520 id-at (2 5 4))
 177 13    8:                   PrintableString 'AliceDSS'
            :                   }
            :                 }
            :               }
 187 30  438:             SEQUENCE {
 191 30  299:               SEQUENCE {
 195 06    7:                 OBJECT IDENTIFIER
            :                   dsa (1 2 840 10040 4 1)
            :                   (ANSI X9.57 algorithm)
 204 30  286:                 SEQUENCE {
Top   ToC   RFC4134 - Page 91
 208 02  129:                   INTEGER
            :                   00 81 8D CD ED 83 EA 0A 9E 39 3E C2
            :                   48 28 A3 E4 47 93 DD 0E D7 A8 0E EC
            :                   53 C5 AB 84 08 4F FF 94 E1 73 48 7E
            :                   0C D6 F3 44 48 D1 FE 9F AF A4 A1 89
            :                   2F E1 D9 30 C8 36 DE 3F 9B BF B7 4C
            :                   DC 5F 69 8A E4 75 D0 37 0C 91 08 95
            :                   9B DE A7 5E F9 FC F4 9F 2F DD 43 A8
            :                   8B 54 F1 3F B0 07 08 47 4D 5D 88 C3
            :                   C3 B5 B3 E3 55 08 75 D5 39 76 10 C4
            :                   78 BD FF 9D B0 84 97 37 F2 E4 51 1B
            :                   B5 E4 09 96 5C F3 7E 5B DB
 340 02   21:                   INTEGER
            :                   00 E2 47 A6 1A 45 66 B8 13 C6 DA 8F
            :                   B8 37 21 2B 62 8B F7 93 CD
 363 02  128:                   INTEGER
            :                   26 38 D0 14 89 32 AA 39 FB 3E 6D D9
            :                   4B 59 6A 4C 76 23 39 04 02 35 5C F2
            :                   CB 1A 30 C3 1E 50 5D DD 9B 59 E2 CD
            :                   AA 05 3D 58 C0 7B A2 36 B8 6E 07 AF
            :                   7D 8A 42 25 A7 F4 75 CF 4A 08 5E 4B
            :                   3E 90 F8 6D EA 9C C9 21 8A 3B 76 14
            :                   E9 CE 2E 5D A3 07 CD 23 85 B8 2F 30
            :                   01 7C 6D 49 89 11 89 36 44 BD F8 C8
            :                   95 4A 53 56 B5 E2 F9 73 EC 1A 61 36
            :                   1F 11 7F C2 BD ED D1 50 FF 98 74 C2
            :                   D1 81 4A 60 39 BA 36 39
            :                   }
            :                 }
 494 03  132:               BIT STRING 0 unused bits, encapsulates {
 498 02  128:                   INTEGER
            :                   5C E3 B9 5A 75 14 96 0B A9 7A DD E3
            :                   3F A9 EC AC 5E DC BD B7 13 11 34 A6
            :                   16 89 28 11 23 D9 34 86 67 75 75 13
            :                   12 3D 43 5B 6F E5 51 BF FA 89 F2 A2
            :                   1B 3E 24 7D 3D 07 8D 5B 63 C8 BB 45
            :                   A5 A0 4A E3 85 D6 CE 06 80 3F E8 23
            :                   7E 1A F2 24 AB 53 1A B8 27 0D 1E EF
            :                   08 BF 66 14 80 5C 62 AC 65 FA 15 8B
            :                   F1 BB 34 D4 D2 96 37 F6 61 47 B2 C4
            :                   32 84 F0 7E 41 40 FD 46 A7 63 4E 33
            :                   F2 A5 E2 F4 F2 83 E5 B8
            :                   }
            :               }
 629 A3  129:             [3] {
 632 30  127:               SEQUENCE {
 634 30   12:                 SEQUENCE {
 636 06    3:                   OBJECT IDENTIFIER
Top   ToC   RFC4134 - Page 92
            :                     basicConstraints (2 5 29 19)
            :                     (X.509 id-ce (2 5 29))
 641 01    1:                   BOOLEAN TRUE
 644 04    2:                   OCTET STRING, encapsulates {
 646 30    0:                       SEQUENCE {}
            :                       }
            :                   }
 648 30   14:                 SEQUENCE {
 650 06    3:                   OBJECT IDENTIFIER
            :                     keyUsage (2 5 29 15)
            :                     (X.509 id-ce (2 5 29))
 655 01    1:                   BOOLEAN TRUE
 658 04    4:                   OCTET STRING, encapsulates {
 660 03    2:                       BIT STRING 6 unused bits
            :                         '11'B
            :                       }
            :                   }
 664 30   31:                 SEQUENCE {
 666 06    3:                   OBJECT IDENTIFIER
            :                     authorityKeyIdentifier (2 5 29 35)
            :                     (X.509 id-ce (2 5 29))
 671 04   24:                   OCTET STRING, encapsulates {
 673 30   22:                       SEQUENCE {
 675 80   20:                         [0]
            :                   70 44 3E 82 2E 6F 87 DE 4A D3 75 E3
            :                   3D 20 BC 43 2B 93 F1 1F
            :                         }
            :                       }
            :                   }
 697 30   29:                 SEQUENCE {
 699 06    3:                   OBJECT IDENTIFIER
            :                     subjectKeyIdentifier (2 5 29 14)
            :                     (X.509 id-ce (2 5 29))
 704 04   22:                   OCTET STRING, encapsulates {
 706 04   20:                       OCTET STRING
            :                   BE 6C A1 B3 E3 C1 F7 ED 43 70 A4 CE
            :                   13 01 E2 FD E3 97 FE CD
            :                       }
            :                   }
 728 30   31:                 SEQUENCE {
 730 06    3:                   OBJECT IDENTIFIER
            :                     subjectAltName (2 5 29 17)
            :                     (X.509 id-ce (2 5 29))
 735 04   24:                   OCTET STRING, encapsulates {
 737 30   22:                       SEQUENCE {
 739 81   20:                         [1] 'AliceDSS@example.com'
            :                         }
            :                       }
Top   ToC   RFC4134 - Page 93
            :                   }
            :                 }
            :               }
            :             }
 761 30    9:           SEQUENCE {
 763 06    7:             OBJECT IDENTIFIER
            :               dsaWithSha1 (1 2 840 10040 4 3)
            :               (ANSI X9.57 algorithm)
            :             }
 772 03   48:           BIT STRING 0 unused bits, encapsulates {
 775 30   45:               SEQUENCE {
 777 02   20:                 INTEGER
            :                   55 0C A4 19 1F 42 2B 89 71 22 33 8D
            :                   83 6A B5 3D 67 6B BF 45
 799 02   21:                 INTEGER
            :                   00 9F 61 53 52 54 0B 5C B2 DD DA E7
            :                   76 1D E2 10 52 5B 43 5E BD
            :                 }
            :               }
            :           }
            :         }
 822 31 1225:       SET {
 826 30 1221:         SEQUENCE {
 830 02    1:           INTEGER 1
 833 30   24:           SEQUENCE {
 835 30   18:             SEQUENCE {
 837 31   16:               SET {
 839 30   14:                 SEQUENCE {
 841 06    3:                   OBJECT IDENTIFIER
            :                     commonName (2 5 4 3)
            :                     (X.520 id-at (2 5 4))
 846 13    7:                   PrintableString 'CarlDSS'
            :                   }
            :                 }
            :               }
 855 02    2:             INTEGER 200
            :             }
 859 30    7:           SEQUENCE {
 861 06    5:             OBJECT IDENTIFIER sha1 (1 3 14 3 2 26)
            :               (OIW)
            :             }
 868 A0 1119:           [0] {
 872 30   24:             SEQUENCE {
 874 06    9:               OBJECT IDENTIFIER
            :                 contentType (1 2 840 113549 1 9 3)
            :                 (PKCS #9 (1 2 840 113549 1 9))
 885 31   11:               SET {
 887 06    9:                 OBJECT IDENTIFIER
Top   ToC   RFC4134 - Page 94
            :                   data (1 2 840 113549 1 7 1)
            :                   (PKCS #7)
            :                 }
            :               }
 898 30   35:             SEQUENCE {
 900 06    9:               OBJECT IDENTIFIER
            :                 messageDigest (1 2 840 113549 1 9 4)
            :                 (PKCS #9 (1 2 840 113549 1 9))
 911 31   22:               SET {
 913 04   20:                 OCTET STRING
            :                   40 6A EC 08 52 79 BA 6E 16 02 2D 9E
            :                   06 29 C0 22 96 87 DD 48
            :                 }
            :               }
 935 30   56:             SEQUENCE {
 937 06    3:               OBJECT IDENTIFIER '1 2 5555'
 942 31   49:               SET {
 944 04   47:                 OCTET STRING
            :                   'This is a test General ASN Attribut'
            :                   'e, number 1.'
            :                 }
            :               }
 993 30   62:             SEQUENCE {
 995 06   11:               OBJECT IDENTIFIER
            :                 id-aa-contentHint
            :                     (1 2 840 113549 1 9 16 2 4)
            :                 (S/MIME Authenticated Attributes
            :                     (1 2 840 113549 1 9 16 2))
1008 31   47:               SET {
1010 30   45:                 SEQUENCE {
1012 0C   32:                   UTF8String
            :                   'Content Hints Description Buffer'
1046 06    9:                   OBJECT IDENTIFIER
            :                     data (1 2 840 113549 1 7 1)
            :                     (PKCS #7)
            :                   }
            :                 }
            :               }
1057 30   74:             SEQUENCE {
1059 06    9:               OBJECT IDENTIFIER
            :                 sMIMECapabilities
            :                     (1 2 840 113549 1 9 15)
            :                 (PKCS #9
            :                     (1 2 840 113549 1 9))
1070 31   61:               SET {
1072 30   59:                 SEQUENCE {
1074 30    7:                   SEQUENCE {
1076 06    5:                     OBJECT IDENTIFIER '1 2 3 4 5 6'
Top   ToC   RFC4134 - Page 95
            :                     }
1083 30   48:                   SEQUENCE {
1085 06    6:                     OBJECT IDENTIFIER '1 2 3 4 5 6 77'
1093 04   38:                     OCTET STRING
            :                   'Smime Capabilities parameters buffe'
            :                   'r 2'
            :                     }
            :                   }
            :                 }
            :               }
1133 30  109:             SEQUENCE {
1135 06   11:               OBJECT IDENTIFIER
            :                 id-aa-securityLabel
            :                     (1 2 840 113549 1 9 16 2 2)
            :                 (S/MIME Authenticated Attributes
            :                     (1 2 840 113549 1 9 16 2))
1148 31   94:               SET {
1150 31   92:                 SET {
1152 02    1:                   INTEGER 1
1155 06    7:                   OBJECT IDENTIFIER '1 2 3 4 5 6 7 8'
1164 13   27:                   PrintableString
            :                   'THIS IS A PRIVACY MARK TEST'
1193 31   49:                   SET {
1195 30   47:                     SEQUENCE {
1197 80    8:                       [0]
            :                   2A 03 04 05 06 07 86 78
1207 A1   35:                       [1] {
1209 13   33:                         PrintableString
            :                         'THIS IS A TEST SECURITY-'
            :                         'CATEGORY.'
            :                         }
            :                       }
            :                     }
            :                   }
            :                 }
            :               }
1244 30  111:             SEQUENCE {
1246 06   11:               OBJECT IDENTIFIER
            :                 id-aa-contentReference
            :                     (1 2 840 113549 1 9 16 2 10)
            :                 (S/MIME Authenticated Attributes
            :                     (1 2 840 113549 1 9 16 2))
1259 31   96:               SET {
1261 30   94:                 SEQUENCE {
1263 06    5:                   OBJECT IDENTIFIER '1 2 3 4 5 6'
1270 04   43:                   OCTET STRING
            :                   'Content Reference Content Identifie'
            :                   'r Buffer'
Top   ToC   RFC4134 - Page 96
1315 04   40:                   OCTET STRING
            :                   'Content Reference Signature Value B'
            :                   'uffer'
            :                   }
            :                 }
            :               }
1357 30  115:             SEQUENCE {
1359 06   11:               OBJECT IDENTIFIER
            :                 id-aa-encrypKeyPref
            :                     (1 2 840 113549 1 9 16 2 11)
            :                 (S/MIME Authenticated Attributes
            :                     (1 2 840 113549 1 9 16 2))
1372 31  100:               SET {
1374 A0   98:                 [0] {
1376 30   90:                   SEQUENCE {
1378 31   11:                     SET {
1380 30    9:                       SEQUENCE {
1382 06    3:                         OBJECT IDENTIFIER
            :                           countryName (2 5 4 6)
            :                           (X.520 id-at (2 5 4))
1387 13    2:                         PrintableString 'US'
            :                         }
            :                       }
1391 31   22:                     SET {
1393 30   20:                       SEQUENCE {
1395 06    3:                         OBJECT IDENTIFIER
            :                           organizationName (2 5 4 10)
            :                           (X.520 id-at (2 5 4))
1400 13   13:                         PrintableString 'US Government'
            :                         }
            :                       }
1415 31   17:                     SET {
1417 30   15:                       SEQUENCE {
1419 06    3:                         OBJECT IDENTIFIER
            :                           organizationalUnitName
            :                               (2 5 4 11)
            :                           (X.520 id-at (2 5 4))
1424 13    8:                         PrintableString 'VDA Site'
            :                         }
            :                       }
1434 31   12:                     SET {
1436 30   10:                       SEQUENCE {
1438 06    3:                         OBJECT IDENTIFIER
            :                           organizationalUnitName
            :                               (2 5 4 11)
            :                           (X.520 id-at (2 5 4))
1443 13    3:                         PrintableString 'VDA'
            :                         }
Top   ToC   RFC4134 - Page 97
            :                       }
1448 31   18:                     SET {
1450 30   16:                       SEQUENCE {
1452 06    3:                         OBJECT IDENTIFIER
            :                           commonName (2 5 4 3)
            :                           (X.520 id-at (2 5 4))
1457 13    9:                         PrintableString 'Daisy RSA'
            :                         }
            :                       }
            :                     }
1468 02    4:                   INTEGER 173360179
            :                   }
            :                 }
            :               }
1474 30  252:             SEQUENCE {
1477 06   11:               OBJECT IDENTIFIER
            :                 id-aa-mlExpandHistory
            :                     (1 2 840 113549 1 9 16 2 3)
            :                 (S/MIME Authenticated Attributes
            :                     (1 2 840 113549 1 9 16 2))
1490 31  236:               SET {
1493 30  233:                 SEQUENCE {
1496 30  230:                   SEQUENCE {
1499 04    7:                     OCTET STRING '5738299'
1508 18   15:                     GeneralizedTime '19990311104433Z'
1525 A1  201:                     [1] {
1528 30  198:                       SEQUENCE {
1531 A4   97:                         [4] {
1533 30   95:                           SEQUENCE {
1535 31   11:                             SET {
1537 30    9:                               SEQUENCE {
1539 06    3:                                 OBJECT IDENTIFIER
            :                                   countryName (2 5 4 6)
            :                                   (X.520 id-at (2 5 4))
1544 13    2:                                 PrintableString 'US'
            :                                 }
            :                               }
1548 31   22:                             SET {
1550 30   20:                               SEQUENCE {
1552 06    3:                                 OBJECT IDENTIFIER
            :                                   organizationName
            :                                       (2 5 4 10)
            :                                   (X.520 id-at (2 5 4))
1557 13   13:                                 PrintableString
            :                                 'US Government'
            :                                 }
            :                               }
1572 31   17:                             SET {
Top   ToC   RFC4134 - Page 98
1574 30   15:                               SEQUENCE {
1576 06    3:                                 OBJECT IDENTIFIER
            :                                   organizationalUnitName
            :                                       (2 5 4 11)
            :                                   (X.520 id-at (2 5 4))
1581 13    8:                                 PrintableString
            :                                 'VDA Site'
            :                                 }
            :                               }
1591 31   12:                             SET {
1593 30   10:                               SEQUENCE {
1595 06    3:                                 OBJECT IDENTIFIER
            :                                   organizationalUnitName
            :                                       (2 5 4 11)
            :                                   (X.520 id-at (2 5 4))
1600 13    3:                                 PrintableString 'VDA'
            :                                 }
            :                               }
1605 31   23:                             SET {
1607 30   21:                               SEQUENCE {
1609 06    3:                                 OBJECT IDENTIFIER
            :                                   commonName (2 5 4 3)
            :                                   (X.520 id-at (2 5 4))
1614 13   14:                                 PrintableString
            :                                 'Bugs Bunny DSA'
            :                                 }
            :                               }
            :                             }
            :                           }
1630 A4   97:                         [4] {
1632 30   95:                           SEQUENCE {
1634 31   11:                             SET {
1636 30    9:                               SEQUENCE {
1638 06    3:                                 OBJECT IDENTIFIER
            :                                   countryName (2 5 4 6)
            :                                   (X.520 id-at (2 5 4))
1643 13    2:                                 PrintableString 'US'
            :                                 }
            :                               }
1647 31   22:                             SET {
1649 30   20:                               SEQUENCE {
1651 06    3:                                 OBJECT IDENTIFIER
            :                                   organizationName
            :                                       (2 5 4 10)
            :                                   (X.520 id-at (2 5 4))
1656 13   13:                                 PrintableString
            :                                 'US Government'
            :                                 }
Top   ToC   RFC4134 - Page 99
            :                               }
1671 31   17:                             SET {
1673 30   15:                               SEQUENCE {
1675 06    3:                                 OBJECT IDENTIFIER
            :                                   organizationalUnitName
            :                                       (2 5 4 11)
            :                                   (X.520 id-at (2 5 4))
1680 13    8:                                 PrintableString
            :                                 'VDA Site'
            :                                 }
            :                               }
1690 31   12:                             SET {
1692 30   10:                               SEQUENCE {
1694 06    3:                                 OBJECT IDENTIFIER
            :                                   organizationalUnitName
            :                                       (2 5 4 11)
            :                                   (X.520 id-at (2 5 4))
1699 13    3:                                 PrintableString 'VDA'
            :                                 }
            :                               }
1704 31   23:                             SET {
1706 30   21:                               SEQUENCE {
1708 06    3:                                 OBJECT IDENTIFIER
            :                                   commonName (2 5 4 3)
            :                                   (X.520 id-at (2 5 4))
1713 13   14:                                 PrintableString
            :                                 'Elmer Fudd DSA'
            :                                 }
            :                               }
            :                             }
            :                           }
            :                         }
            :                       }
            :                     }
            :                   }
            :                 }
            :               }
1729 30  258:             SEQUENCE {
1733 06   11:               OBJECT IDENTIFIER
            :                 id-aa-equivalentLabels
            :                     (1 2 840 113549 1 9 16 2 9)
            :                 (S/MIME Authenticated Attributes
            :                     (1 2 840 113549 1 9 16 2))
1746 31  242:               SET {
1749 30  239:                 SEQUENCE {
1752 31  114:                   SET {
1754 02    1:                     INTEGER 1
1757 06    7:                     OBJECT IDENTIFIER '1 2 3 4 5 6 7 9'
Top   ToC   RFC4134 - Page 100
1766 13   38:                     PrintableString
            :                   'EQUIVALENT THIS IS A PRIVACY MARK T'
            :                   'EST'
1806 31   60:                     SET {
1808 30   58:                       SEQUENCE {
1810 80    8:                         [0]
            :                   2A 03 04 05 06 07 86 78
1820 A1   46:                         [1] {
1822 13   44:                           PrintableString
            :                   'EQUIVALENT THIS IS A TEST SECURITY-'
            :                   'CATEGORY.'
            :                           }
            :                         }
            :                       }
            :                     }
1868 31  121:                   SET {
1870 02    1:                     INTEGER 1
1873 06    7:                     OBJECT IDENTIFIER
            :                     '1 2 3 4 5 6 7 10'
1882 13   45:                     PrintableString
            :                   'EQUIVALENT THIS IS A SECOND PRIVACY'
            :                   ' MARK TEST'
1929 31   60:                     SET {
1931 30   58:                       SEQUENCE {
1933 80    8:                         [0]
            :                   2A 03 04 05 06 07 86 78
1943 A1   46:                         [1] {
1945 13   44:                           PrintableString
            :                   'EQUIVALENT THIS IS A TEST SECURITY-'
            :                   'CATEGORY.'
            :                           }
            :                         }
            :                       }
            :                     }
            :                   }
            :                 }
            :               }
            :             }
1991 30    9:           SEQUENCE {
1993 06    7:             OBJECT IDENTIFIER
            :               dsaWithSha1 (1 2 840 10040 4 3)
            :               (ANSI X9.57 algorithm)
            :             }
2002 04   47:           OCTET STRING, encapsulates {
2004 30   45:               SEQUENCE {
2006 02   21:                 INTEGER
            :                   00 BC 33 37 65 C4 F7 70 5C 17 49 13
            :                   AA 4C 85 CA BB 52 91 48 59
Top   ToC   RFC4134 - Page 101
2029 02   20:                 INTEGER
            :                   63 96 A2 14 8B CF 57 DE B0 48 5F 6C
            :                   64 DD 84 04 49 5F 1C CA
            :                 }
            :               }
            :           }
            :         }
            :       }
            :     }
            :   }



(page 101 continued on part 5)

Next Section