Update 1: I read TN3125. I decoded the DER-encoded version of the embedded.provisionprofile. The SHA-256 hashes of the two Developer Certificates match the SHA-256 fingerprints in the developer certificates installed on my iPad.
Update 2: The Info.plist files that are embedded for both the App and the DEXT are a mess. After using plutil to clean them up, the are now readable again. The source Info.plist files look fine. When I run plutil on them, they look the same as before I ran it.
Topic:
Code Signing
SubTopic:
Certificates, Identifiers & Profiles
Tags: