List of X.509 End Entity Certificates

  subject:  "C=CH, O=strongSwan Project, OU=Research, CN=carol@strongswan.org"
  issuer:   "C=CH, O=strongSwan Project, CN=strongSwan Root CA"
  validity:  not before Mar 01 17:47:59 2025, ok
             not after  Mar 01 17:47:59 2033, ok (expires in 2912 days)
  serial:    01
  altNames:  carol@strongswan.org
  flags:     
  CRL URIs:  http://crl.strongswan.org/strongswan.crl
  authkeyId: ed:41:8d:a8:59:66:08:ab:03:46:32:f4:a6:e1:4f:96:97:fd:89:0c
  subjkeyId: 7b:88:0e:e4:39:64:c3:5c:fe:46:4d:ba:bc:5e:ea:d9:6c:5d:cf:fc
  pubkey:    RSA 3072 bits
  keyid:     b3:a8:2a:64:1a:64:dd:03:e8:72:6f:a9:b1:eb:f3:6f:80:91:75:ae
  subjkey:   7b:88:0e:e4:39:64:c3:5c:fe:46:4d:ba:bc:5e:ea:d9:6c:5d:cf:fc

  subject:  "C=CH, O=strongSwan Project, CN=moon.strongswan.org"
  issuer:   "C=CH, O=strongSwan Project, CN=strongSwan Root CA"
  validity:  not before Mar 01 17:47:59 2025, ok
             not after  Mar 01 17:47:59 2033, ok (expires in 2912 days)
  serial:    03
  altNames:  moon.strongswan.org
  flags:     
  CRL URIs:  http://crl.strongswan.org/strongswan.crl
  authkeyId: ed:41:8d:a8:59:66:08:ab:03:46:32:f4:a6:e1:4f:96:97:fd:89:0c
  subjkeyId: ba:75:8b:2a:b4:22:83:6b:7f:0e:10:3b:54:42:c6:1b:11:1d:f1:d4
  pubkey:    RSA 3072 bits, has private key
  keyid:     18:d4:38:98:49:8f:bf:a5:06:b6:9a:94:f3:27:6f:73:ef:46:86:da
  subjkey:   ba:75:8b:2a:b4:22:83:6b:7f:0e:10:3b:54:42:c6:1b:11:1d:f1:d4

  subject:  "C=CH, O=strongSwan Project, OU=Accounting, CN=dave@strongswan.org"
  issuer:   "C=CH, O=strongSwan Project, CN=strongSwan Root CA"
  validity:  not before Mar 01 17:47:59 2025, ok
             not after  Mar 01 17:47:59 2033, ok (expires in 2912 days)
  serial:    02
  altNames:  dave@strongswan.org
  flags:     
  CRL URIs:  http://crl.strongswan.org/strongswan.crl
  authkeyId: ed:41:8d:a8:59:66:08:ab:03:46:32:f4:a6:e1:4f:96:97:fd:89:0c
  subjkeyId: 18:94:5e:55:f4:5c:b1:c8:27:49:5b:eb:de:64:aa:81:a3:7a:19:b4
  pubkey:    RSA 3072 bits
  keyid:     87:79:2a:77:4d:13:03:32:60:5a:40:f7:24:2f:bf:7b:aa:f2:2d:d4
  subjkey:   18:94:5e:55:f4:5c:b1:c8:27:49:5b:eb:de:64:aa:81:a3:7a:19:b4

List of X.509 CA Certificates

  subject:  "C=CH, O=strongSwan Project, CN=strongSwan Root CA"
  issuer:   "C=CH, O=strongSwan Project, CN=strongSwan Root CA"
  validity:  not before Mar 01 17:47:59 2025, ok
             not after  Mar 02 17:47:59 2035, ok (expires in 3643 days)
  serial:    47:4b:80:61:9f:1e:8d:e3
  flags:     CA CRLSign self-signed 
  pathlen:   1
  subjkeyId: ed:41:8d:a8:59:66:08:ab:03:46:32:f4:a6:e1:4f:96:97:fd:89:0c
  pubkey:    RSA 3072 bits
  keyid:     7b:5e:20:3d:23:36:d1:e9:0a:6c:79:8e:d6:9c:df:28:87:98:1d:43
  subjkey:   ed:41:8d:a8:59:66:08:ab:03:46:32:f4:a6:e1:4f:96:97:fd:89:0c

List of X.509 CRLs

  issuer:   "C=CH, O=strongSwan Project, CN=strongSwan Root CA"
  update:    this on Mar 10 18:47:43 2025, ok
             next on Mar 25 18:47:43 2025, ok (expires in 14 days)
  serial:    03
  authKeyId: ed:41:8d:a8:59:66:08:ab:03:46:32:f4:a6:e1:4f:96:97:fd:89:0c
  2 revoked certificates:
    0a: Mar 03 17:48:16 2025, ca compromise
    88: Mar 03 17:48:14 2025, key compromise