GEANTEVRSACA4.crt: CN=GEANT EV RSA CA 4,O=GEANT Vereniging,C=NL (Intermediate Certificate, Expiring 2033-05-01) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://GEANT.crt.sectigo.com/GEANTEVRSACA4.crt" --output cert.crt

Download certificate through wget:

wget -q "http://GEANT.crt.sectigo.com/GEANTEVRSACA4.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            04:7b:8b:6d:09:b1:65:67:42:a8:a7:c1:86:9c:9f:aa
    Signature Algorithm: sha384WithRSAEncryption
        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
        Validity
            Not Before: Feb 18 00:00:00 2020 GMT
            Not After : May  1 23:59:59 2033 GMT
        Subject: C=NL, O=GEANT Vereniging, CN=GEANT EV RSA CA 4
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:9f:42:3e:56:c1:72:06:72:84:fb:ce:f2:13:76:
                    99:d1:f0:fe:da:bb:1c:32:02:60:45:8d:3b:4e:92:
                    c8:8b:8e:55:cf:eb:6c:2e:9b:5d:36:77:3e:f4:53:
                    57:2f:75:69:eb:2b:77:b7:d9:2c:95:1c:8b:d5:54:
                    94:48:79:42:25:ab:d7:11:8f:7f:20:77:fe:2d:fd:
                    ed:9e:b6:7f:ad:a4:75:2d:2f:dc:0a:e4:02:17:b3:
                    db:69:22:31:27:c3:85:25:72:92:ec:56:92:c4:8b:
                    27:35:49:cd:97:b7:06:c2:a2:be:cc:32:b3:81:e2:
                    a5:6e:70:d3:c5:f8:64:07:5a:2f:d5:9e:cb:39:cc:
                    b5:73:5e:57:ee:27:b0:39:11:fc:75:95:27:96:bc:
                    c9:0d:0d:d1:f1:c6:eb:fa:db:26:2c:8f:e1:44:89:
                    8d:48:5e:35:75:5b:25:b1:4e:5b:1e:25:c6:b3:0d:
                    47:22:c3:b2:cc:2b:7d:13:a7:db:26:74:e3:6e:3d:
                    7e:ab:c0:45:52:4d:48:82:dd:0c:db:c0:d6:8f:e0:
                    2d:54:9b:6c:80:11:b7:6f:7b:84:6e:fe:a5:11:96:
                    81:ee:77:92:e4:05:a2:53:9b:6f:8c:0c:9c:fe:c8:
                    76:5f:e2:0e:e5:bc:aa:5b:70:aa:df:e7:d2:60:f2:
                    1d:36:b1:18:a9:4f:a1:80:dd:c8:e9:80:1e:51:53:
                    96:e7:5c:59:27:e2:4a:53:db:ef:cf:db:91:d0:15:
                    e8:34:97:22:b0:f1:d1:66:f3:ae:2c:9f:c6:b7:ec:
                    6a:d6:be:23:82:4c:e0:96:b6:ba:d2:c6:db:cb:bc:
                    2c:bd:6b:1c:60:73:d6:ed:ac:0e:7d:ea:b3:0a:af:
                    0d:ad:a6:9e:36:28:f3:d1:5c:78:da:56:a7:cb:7f:
                    a5:a3:d9:20:b2:9c:55:b1:fa:29:ec:18:12:22:92:
                    96:f1:c4:e7:6b:b7:8a:86:10:38:15:75:23:82:37:
                    d7:f7:6f:a0:a0:c9:3b:3b:3c:3e:4a:95:48:9e:8b:
                    4e:42:83:bb:1b:5f:f6:62:f4:31:34:f3:bf:36:7f:
                    84:86:b1:9b:72:9f:81:bf:ac:c2:2a:c7:26:7c:49:
                    fc:90:65:5d:7b:73:ec:cd:92:db:5d:cb:dd:e2:42:
                    ff:88:94:d2:46:6a:50:8c:e7:a3:26:92:fe:67:81:
                    1b:56:25:7c:e4:d2:cb:70:df:4b:55:59:d4:52:1a:
                    54:55:c7:14:9c:7d:cc:04:17:51:9c:7d:58:ee:ca:
                    8b:13:4a:71:23:bb:ad:50:8b:d3:79:5a:f8:6a:8a:
                    d2:17:27:fc:0b:ce:4a:69:25:ce:fb:c5:b4:17:fb:
                    9b:62:9f
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB

            X509v3 Subject Key Identifier: 
                B6:20:0E:AE:A3:CB:E9:55:03:06:13:66:D4:AC:BE:27:90:54:60:F3
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://sectigo.com/CPS

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl

            Authority Information Access: 
                CA Issuers - URI:http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
                OCSP - URI:http://ocsp.usertrust.com

    Signature Algorithm: sha384WithRSAEncryption
         26:52:0f:07:85:47:44:ce:06:c9:42:b9:37:1b:b2:4b:b8:5c:
         8a:24:75:90:ef:81:51:1c:c1:42:a2:b2:9d:fa:1f:53:5e:8c:
         52:04:e0:28:3d:95:39:88:82:af:fe:63:d7:ca:14:fe:b2:1e:
         f9:36:f9:57:af:f3:7e:77:9d:93:c7:61:c8:63:72:18:5b:1f:
         36:23:4b:9a:6b:4f:ed:3c:a2:26:2f:a0:72:26:ea:ae:99:cb:
         db:d9:ce:0c:a8:27:d3:18:08:bc:90:82:db:42:dd:d6:1c:af:
         e2:74:48:86:d8:03:cc:96:ad:58:36:84:77:68:18:7b:b5:cd:
         6b:96:8c:66:43:98:e8:12:6a:e3:c1:2a:0d:03:ad:00:57:6c:
         3d:cc:49:a2:e0:a4:d8:55:9c:ec:4e:34:60:2b:cb:e1:f1:61:
         90:e2:e9:f7:65:08:51:60:85:53:76:22:35:27:ad:e4:a2:12:
         1c:a4:54:de:7c:9c:b3:f6:2a:77:0b:54:63:af:99:22:9e:4e:
         1b:1a:57:31:a5:16:f5:5a:31:2c:dc:e5:a1:cc:22:52:a3:bf:
         d9:64:82:19:bb:4a:51:b0:32:a5:b6:4a:4d:9a:85:10:e7:fe:
         1a:20:01:06:f5:af:5a:cc:b4:ca:c5:39:2d:70:a3:84:24:23:
         b3:75:52:21:34:2f:db:ea:3a:c2:14:3e:ef:47:db:ff:75:32:
         3c:cd:7f:4e:97:57:0a:da:79:ac:93:fb:83:e4:26:5c:bc:c6:
         7a:46:1f:c3:ec:04:bb:07:c7:56:38:36:cd:de:74:0f:ce:e7:
         20:74:83:8d:e0:a1:ef:24:97:b5:1b:64:b1:0d:ef:b9:31:03:
         b8:09:bc:08:58:8e:54:f8:e9:f1:29:33:f7:be:52:6f:d8:2c:
         6f:3f:ff:b8:0e:b7:f7:86:4a:7b:62:f5:52:66:79:9c:f4:a9:
         4e:78:3b:dd:0b:73:a6:f6:33:52:c3:79:e3:ac:47:5e:7e:83:
         6a:d5:e7:9e:57:cf:61:09:62:8a:76:7d:39:92:9c:a2:b4:e8:
         b2:ee:94:c9:26:e0:e0:56:ce:b8:60:66:92:75:06:46:d0:4e:
         26:d5:b3:12:a3:5d:dc:43:16:20:27:a1:18:de:76:a0:50:9c:
         a2:2f:37:4c:36:e8:5b:2a:58:f6:a1:7c:63:18:b8:14:5d:82:
         49:81:29:e7:8e:a2:bb:95:d4:db:24:35:ca:fe:a5:57:d2:04:
         12:3a:bd:5b:ef:64:fb:ee:c4:6d:0d:c2:ec:9a:48:7b:85:88:
         ba:6b:e4:30:28:04:60:98:c2:d9:8c:38:ab:45:2e:a8:bd:6b:
         47:eb:4c:86:da:b9:31:07

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06