This is sort-of a follow-up to my previous question What fields in a suspicious certificate should I look at?
Chrome just presented the warning icon against the certificate presented by https://login.facebook.com (I always type the URL in) because it could not verify the CRL. For want of anything better to do, I downloaded the certificate chain and was surprised to see an expired entry against intermediary certificate in the chain.
The intermediary certificate was issued to www.verisign.com/CPS Incorp. by Ref. LIABILITY LTD.(c)97 Verisign
Validity Fields on this d/l certificate are as follows
From: 17/04/1997
To: 08/01/2004
When viewed in the browser though, this certificate shows an end-date of 25/10/2016
Hopefully it's not cause for concern, but I can't help wondering ...
Why would the downloaded certificate show a different end-date as compared to the same certificate online?
p.s. I tried downloading the certificate chain again to a different location, and still see an expiry date of 2004.