┌──(PXEThief)─(root㉿sccm-kali)-[/home/kali/PXEThief]
└─$ openssl pkcs12 \
-in 123_affba0f7-65c6-4743-99b0-99af62d_SMSTSMediaPFX.pfx \
-passin pass:affba0f7-65c6-4743-99b0-99af62d \
-nokeys -clcerts | openssl x509 -text -certopt no_pubkey,no_sigdump -noout
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
34:00:00:00:03:cd:a2:70:1a:ec:40:dc:17:00:00:00:00:00:03
Signature Algorithm: sha256WithRSAEncryption
Issuer: DC=domain, DC=ludus, CN=ludus-CA
Validity
Not Before: Jun 4 19:21:29 2025 GMT
Not After : Jun 4 19:21:29 2026 GMT
Subject:
X509v3 extensions:
Microsoft certificate template:
0-.%+.....7.........z..$...#...cb..........d...
X509v3 Extended Key Usage:
TLS Web Client Authentication
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
Microsoft Application Policies Extension:
0.0
..+.......
X509v3 Subject Key Identifier:
16:40:8E:22:CF:A9:E8:21:FC:9B:2D:7C:73:90:F5:90:60:8A:89:73
X509v3 Authority Key Identifier:
7A:D3:15:84:7A:FD:48:F2:C0:33:D1:BE:5E:62:57:AD:2F:53:EA:C8
X509v3 CRL Distribution Points:
Full Name:
URI:ldap:///CN=ludus-CA,CN=DC01,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=ludus,DC=domain?certificateRevocationList?base?objectClass=cRLDistributionPoint
Authority Information Access:
CA Issuers - URI:ldap:///CN=ludus-CA,CN=AIA,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=ludus,DC=domain?cACertificate?base?objectClass=certificationAuthority
X509v3 Subject Alternative Name: critical
DNS:sccm-sitesrv.ludus.domain