cmca3.cer: CN=Cisco Manufacturing CA III,O=Cisco (Intermediate Certificate, Expiring 2099-05-26) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://www.cisco.com/security/pki/certs/cmca3.cer" --output cert.crt

Download certificate through wget:

wget -q "http://www.cisco.com/security/pki/certs/cmca3.cer" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            04:30:2a:0b:36:4c:e2:da:93
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: O=Cisco, CN=Cisco Basic Assurance Root CA 2099
        Validity
            Not Before: Jul  5 19:28:06 2017 GMT
            Not After : May 26 19:19:28 2099 GMT
        Subject: O=Cisco, CN=Cisco Manufacturing CA III
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:f5:ef:72:02:fe:11:20:98:ac:ee:66:26:3e:02:
                    6d:57:a9:43:7f:a2:34:33:2a:b3:73:6d:41:21:24:
                    2f:aa:56:86:75:c9:9e:ee:49:a7:2b:e8:18:58:9e:
                    35:56:1b:57:0f:f8:63:09:6e:f6:6d:e7:42:e4:ed:
                    71:5d:0e:82:96:22:4d:62:45:d7:ba:07:b8:e6:41:
                    22:65:d9:54:25:f8:e6:a5:87:64:57:d9:91:a3:be:
                    86:13:1d:c9:65:87:d5:82:73:78:32:ba:ac:e3:a6:
                    c3:5d:76:0d:50:63:65:22:e1:83:20:9f:b0:1b:82:
                    cd:49:da:ed:50:bf:41:06:93:a7:b2:79:4f:1e:49:
                    5b:89:a5:d5:d9:8f:48:92:46:75:c9:b0:41:47:6b:
                    5a:ef:85:e4:0d:10:88:2f:21:73:fe:f6:97:9c:cc:
                    f0:f3:7b:3c:7f:39:aa:59:58:42:ff:d5:54:1e:02:
                    23:46:c5:e4:fe:10:9d:f1:7f:77:2c:04:97:6b:a9:
                    64:18:ec:74:a4:9a:65:c7:14:89:b9:39:d7:e9:b3:
                    d2:01:cc:85:98:a9:60:68:5a:89:32:2c:d1:f4:16:
                    e5:f0:8c:b5:89:42:2e:34:4e:8e:46:e5:3e:98:3f:
                    13:bf:ee:bd:e0:35:3e:6a:73:5d:71:56:ba:28:d5:
                    f2:d5
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                CA Issuers - URI:http://www.cisco.com/security/pki/certs/cbarc2099.cer
                OCSP - URI:http://pkicvs.cisco.com/pki/ocsp

            X509v3 Authority Key Identifier: 
                keyid:C4:66:BC:2F:6D:F7:AF:8F:9E:1C:BA:84:CA:8A:B0:D1:1C:81:B8:FE

            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.9.21.1.34.0
                  CPS: http://www.cisco.com/security/pki/policies/

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://www.cisco.com/security/pki/crl/cbarc2099.crl

            X509v3 Subject Key Identifier: 
                4F:E6:87:12:44:AF:6A:35:94:74:92:10:55:D3:1B:DF:FC:3F:18:97
    Signature Algorithm: sha256WithRSAEncryption
         4f:95:9e:b6:e2:df:86:b4:d5:72:70:f9:67:38:70:80:43:72:
         33:52:22:d0:22:83:71:42:fd:a2:ec:9a:4d:f9:75:d2:0a:23:
         a2:1f:19:95:84:fb:ae:65:6a:05:72:33:9a:0a:8f:03:fc:d0:
         e3:7e:7f:07:83:3d:9e:8b:2d:12:25:cb:35:a7:a5:2e:4f:c7:
         28:04:fa:f6:83:93:98:32:b0:ce:f9:98:32:46:3e:90:cf:2d:
         fe:ae:d3:ba:26:7f:82:cd:66:ad:c0:86:62:e7:3c:11:20:ac:
         b4:49:5d:37:34:84:ac:3d:f5:5d:15:05:34:b7:17:5a:48:ea:
         eb:0a:0c:e4:9e:76:ea:74:3c:4c:01:d4:80:c3:2f:58:46:3c:
         f8:15:f1:d6:80:dc:5e:3b:df:c5:e0:e2:4f:02:66:89:54:6f:
         f4:16:e2:fa:9e:13:05:13:da:a1:8d:cb:e8:0f:79:95:9a:0b:
         6f:f1:12:45:1b:14:38:f3:7d:53:7a:02:a6:e0:b9:fb:6a:16:
         6d:29:72:21:bd:94:2f:5a:22:4d:7f:7a:2f:18:49:cc:d0:33:
         30:84:5f:63:b2:f3:f0:8e:08:d0:f8:f2:32:1e:ff:a7:db:66:
         32:11:6b:6f:15:f8:0e:06:23:13:0c:fe:3b:d8:c7:ff:7f:4e:
         59:4c:4d:0f

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06