D-TRUST_V-PKI_CA_1_2020.crt: CN=D-TRUST V-PKI CA 1 2020,OU=D-Trust GmbH,O=PKI-1-Verwaltung,C=DE (Intermediate Certificate, Expiring 2026-08-31) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_V-PKI_CA_1_2020.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_V-PKI_CA_1_2020.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 41076068 (0x272c564)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=DE, O=PKI-1-Verwaltung, CN=PCA-1-Verwaltung-20
        Validity
            Not Before: Sep  1 00:00:00 2020 GMT
            Not After : Aug 31 23:59:59 2026 GMT
        Subject: C=DE, O=PKI-1-Verwaltung, OU=D-Trust GmbH, CN=D-TRUST V-PKI CA 1 2020
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:c8:5c:c9:df:f8:2e:12:de:d4:cf:a4:8d:82:13:
                    0d:b1:1d:50:1f:53:9e:84:ca:b1:6c:e6:3a:8e:d3:
                    f0:9f:37:c6:2a:af:b8:31:8e:1c:8e:a3:13:53:5f:
                    54:79:aa:0b:47:a1:a7:65:e0:14:2f:f0:89:c8:3f:
                    d6:3f:9f:87:07:a6:0e:fe:24:0e:21:31:aa:c6:80:
                    c5:29:b2:9f:ae:a8:a7:c9:07:d5:a6:e3:2a:7c:0a:
                    dd:2b:ce:fb:00:23:d7:54:fd:9b:bc:fe:d1:28:03:
                    ad:51:d9:70:79:41:98:35:6b:3b:6b:26:78:bf:ad:
                    b5:d8:34:04:6a:f9:67:11:18:ce:4b:50:5e:70:a7:
                    11:87:62:4f:74:03:77:da:bd:d4:ba:e6:aa:98:30:
                    be:47:d2:77:7c:b8:32:e7:83:c1:93:2b:d7:a5:09:
                    56:be:5c:41:3c:9c:bc:65:21:cd:ca:b0:59:15:77:
                    95:00:e1:90:08:ed:41:93:ad:49:20:11:0a:b5:65:
                    3a:a0:d1:a4:06:34:ac:9c:b4:b4:bd:c2:37:a2:a6:
                    51:2b:fb:b5:32:3c:ab:74:22:e9:53:42:25:fe:c1:
                    fa:b5:ab:f7:a0:ff:3d:bf:89:29:09:1b:4d:1f:d9:
                    e6:44:1c:20:5d:b5:7c:d0:78:83:23:3c:5b:53:23:
                    39:3b:2e:53:b0:68:bf:7c:41:94:22:c7:cf:fd:d4:
                    8d:95:21:42:db:95:62:80:c2:43:65:94:d0:98:e8:
                    8d:12:88:cc:41:b7:5a:4c:f1:eb:52:6c:bc:f8:3a:
                    ed:47:4d:a1:c3:cf:1a:d6:e4:4c:51:88:d3:74:65:
                    9c:5f:e9:2c:bd:fc:51:39:6c:85:60:b6:18:f4:ae:
                    84:2a:33:1b:66:af:c3:e2:ce:c7:57:89:55:05:8e:
                    03:1c:88:da:0b:21:08:26:e8:9e:61:96:8d:99:0d:
                    15:12:4e:34:d6:89:6d:38:d6:28:3b:4a:71:cb:0e:
                    70:25:ff:25:c2:47:8d:c6:fe:d0:ea:9d:9a:90:04:
                    d2:99:3a:aa:ba:14:0e:fe:ac:97:7e:7e:ac:7d:5f:
                    9d:9f:85:84:9f:9e:18:18:e6:17:cb:63:8f:3e:4a:
                    34:7e:05:22:f2:0f:ef:4f:9c:bd:94:a3:45:09:cd:
                    71:ce:bb:a4:3b:e6:7d:8f:63:35:dd:ef:b2:41:2b:
                    22:77:31:c2:f6:db:4c:ad:17:7b:1e:c0:7d:04:bc:
                    05:8b:26:f9:d7:c3:3c:0e:ab:0b:d3:ee:5e:7a:8f:
                    89:cf:01:12:16:c4:89:4d:2a:59:b2:31:7e:2d:17:
                    05:97:64:16:6b:51:c2:59:44:6d:75:83:83:5f:81:
                    01:41:81
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:3
            X509v3 Certificate Policies: 
                Policy: 0.4.0.127.0.7.3.6.1.1.4.4
                  CPS: https://www.bsi.bund.de
                Policy: 1.3.6.1.4.1.4788.2.201.2
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_CSM_PKI_CPS.pdf

            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Key Identifier: 
                D2:C3:ED:4D:91:0A:A8:BA:3D:0A:DE:E8:92:E9:FD:73:67:29:3F:D2
            X509v3 Authority Key Identifier: 
                keyid:F3:8F:1F:36:F8:04:DD:35:F9:DE:2A:84:0D:63:82:07:E9:A4:71:42
                DirName:/C=DE/O=PKI-1-Verwaltung/CN=PCA-1-Verwaltung-20
                serial:DA:05:8B:5E

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://x500.bund.de/CN=PCA-1-Verwaltung-20,O=PKI-1-Verwaltung,C=DE?certificateRevocationList

                Full Name:
                  URI:http://x500.bund.de/cgi-bin/show_attr?cn=PCA-1-Verwaltung-20&attr=crl

    Signature Algorithm: sha256WithRSAEncryption
         04:3d:bc:aa:33:06:70:9f:db:81:0b:b4:03:7e:ee:dd:3e:51:
         05:95:32:19:33:e2:6f:4e:c7:43:c9:59:29:2d:f4:f3:62:37:
         49:5b:fd:6a:eb:d2:f1:d4:5b:ff:7f:b7:02:7e:b3:76:f8:74:
         0e:aa:f2:fd:61:46:1a:9c:95:57:19:de:d7:c0:65:9d:2d:58:
         fb:c1:73:12:24:19:bf:26:77:3e:dc:d2:72:f6:54:7f:eb:73:
         53:06:e0:36:6a:f2:00:e6:b7:82:88:9e:78:63:06:c7:8d:bf:
         10:6a:f9:cb:a6:26:0c:98:e7:79:17:f0:40:af:af:1f:14:21:
         c7:cd:3a:d6:68:89:94:24:ce:6e:2d:6d:be:d7:65:a6:e9:75:
         89:99:88:f4:ce:dc:9a:f9:62:84:19:f2:b8:84:96:06:77:16:
         50:35:2f:0f:02:29:81:d6:9b:19:3c:4c:73:2c:ec:1c:9f:0d:
         ed:b0:f8:92:01:e1:58:d9:8e:ed:58:41:c1:84:9e:75:f6:0a:
         d4:4f:02:c9:2a:b2:3d:57:47:d4:27:f9:58:21:9e:31:13:3c:
         05:c9:17:a5:1c:69:22:f7:f4:5b:b7:ca:f4:1e:9f:07:5c:5a:
         ab:7b:5f:63:c6:37:b5:af:6e:d1:06:9d:0d:98:2d:6c:9e:0b:
         f9:81:47:c8:d6:19:59:82:ee:e1:99:46:7c:56:f9:78:ae:92:
         f2:b5:bc:e2:ab:6a:10:51:ce:2d:d4:91:76:16:c2:c8:68:6b:
         95:69:5d:e4:f6:83:e0:65:e2:2c:fd:e4:ea:06:a8:e6:4c:a5:
         01:a6:15:cc:2c:85:bd:9b:f7:2f:92:af:7e:7d:39:80:c4:bd:
         55:f9:76:71:88:ab:48:ba:9e:39:59:87:89:a9:e4:4f:08:29:
         cb:80:ab:2e:1d:2e:bd:c2:8b:fb:55:4f:03:f1:96:3e:55:6c:
         c1:93:e0:40:f1:6c:90:99:d9:6c:1f:3e:30:fa:1c:24:0b:fd:
         70:ca:b6:6c:e1:f1:9d:ab:b7:56:b1:d4:00:2d:a2:4f:45:a6:
         37:29:51:d0:9e:ed:5f:5a:6d:f4:b9:19:75:23:48:7e:83:59:
         a0:62:fc:6d:c2:84:0a:53:5a:32:f6:bc:48:84:e7:7b:d4:0c:
         60:3e:4b:2e:85:5d:38:f7:40:7b:41:38:34:b8:a3:f9:d1:ba:
         e0:f1:41:cd:26:24:6c:41:88:36:81:e4:4f:2b:b4:eb:b5:74:
         89:1d:eb:bd:d3:82:87:24:2f:c4:66:e7:36:6d:17:62:e7:dd:
         0a:9b:72:46:53:95:af:ab:6e:e8:44:a4:f5:9c:00:7f:78:3d:
         10:81:ef:ac:a6:fc:1b:2d

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIHQTCCBSmgAwIBAgIEAnLFZDANBgkqhkiG9w0BAQsFADBGMQswCQYDVQQGEwJE
RTEZMBcGA1UEChMQUEtJLTEtVmVyd2FsdHVuZzEcMBoGA1UEAxMTUENBLTEtVmVy
d2FsdHVuZy0yMDAeFw0yMDA5MDEwMDAwMDBaFw0yNjA4MzEyMzU5NTlaMGExCzAJ
BgNVBAYTAkRFMRkwFwYDVQQKExBQS0ktMS1WZXJ3YWx0dW5nMRUwEwYDVQQLEwxE
LVRydXN0IEdtYkgxIDAeBgNVBAMTF0QtVFJVU1QgVi1QS0kgQ0EgMSAyMDIwMIIC
IjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAyFzJ3/guEt7Uz6SNghMNsR1Q
H1OehMqxbOY6jtPwnzfGKq+4MY4cjqMTU19UeaoLR6GnZeAUL/CJyD/WP5+HB6YO
/iQOITGqxoDFKbKfrqinyQfVpuMqfArdK877ACPXVP2bvP7RKAOtUdlweUGYNWs7
ayZ4v6212DQEavlnERjOS1BecKcRh2JPdAN32r3UuuaqmDC+R9J3fLgy54PBkyvX
pQlWvlxBPJy8ZSHNyrBZFXeVAOGQCO1Bk61JIBEKtWU6oNGkBjSsnLS0vcI3oqZR
K/u1MjyrdCLpU0Il/sH6tav3oP89v4kpCRtNH9nmRBwgXbV80HiDIzxbUyM5Oy5T
sGi/fEGUIsfP/dSNlSFC25VigMJDZZTQmOiNEojMQbdaTPHrUmy8+DrtR02hw88a
1uRMUYjTdGWcX+ksvfxROWyFYLYY9K6EKjMbZq/D4s7HV4lVBY4DHIjaCyEIJuie
YZaNmQ0VEk401oltONYoO0pxyw5wJf8lwkeNxv7Q6p2akATSmTqquhQO/qyXfn6s
fV+dn4WEn54YGOYXy2OPPko0fgUi8g/vT5y9lKNFCc1xzrukO+Z9j2M13e+yQSsi
dzHC9ttMrRd7HsB9BLwFiyb518M8DqsL0+5eeo+JzwESFsSJTSpZsjF+LRcFl2QW
a1HCWURtdYODX4EBQYECAwEAAaOCAhowggIWMBIGA1UdEwEB/wQIMAYBAf8CAQMw
gZ0GA1UdIASBlTCBkjA0BgsEAH8ABwMGAQEEBDAlMCMGCCsGAQUFBwIBFhdodHRw
czovL3d3dy5ic2kuYnVuZC5kZTBaBgsrBgEEAaU0AoFJAjBLMEkGCCsGAQUFBwIB
Fj1odHRwOi8vd3d3LmQtdHJ1c3QubmV0L2ludGVybmV0L2ZpbGVzL0QtVFJVU1Rf
Q1NNX1BLSV9DUFMucGRmMA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQU0sPtTZEK
qLo9Ct7okun9c2cpP9IwcgYDVR0jBGswaYAU848fNvgE3TX53iqEDWOCB+mkcUKh
SqRIMEYxCzAJBgNVBAYTAkRFMRkwFwYDVQQKExBQS0ktMS1WZXJ3YWx0dW5nMRww
GgYDVQQDExNQQ0EtMS1WZXJ3YWx0dW5nLTIwggUA2gWLXjCBvAYDVR0fBIG0MIGx
MGKgYKBehlxsZGFwOi8veDUwMC5idW5kLmRlL0NOPVBDQS0xLVZlcndhbHR1bmct
MjAsTz1QS0ktMS1WZXJ3YWx0dW5nLEM9REU/Y2VydGlmaWNhdGVSZXZvY2F0aW9u
TGlzdDBLoEmgR4ZFaHR0cDovL3g1MDAuYnVuZC5kZS9jZ2ktYmluL3Nob3dfYXR0
cj9jbj1QQ0EtMS1WZXJ3YWx0dW5nLTIwJmF0dHI9Y3JsMA0GCSqGSIb3DQEBCwUA
A4ICAQAEPbyqMwZwn9uBC7QDfu7dPlEFlTIZM+JvTsdDyVkpLfTzYjdJW/1q69Lx
1Fv/f7cCfrN2+HQOqvL9YUYanJVXGd7XwGWdLVj7wXMSJBm/Jnc+3NJy9lR/63NT
BuA2avIA5reCiJ54YwbHjb8QavnLpiYMmOd5F/BAr68fFCHHzTrWaImUJM5uLW2+
12Wm6XWJmYj0ztya+WKEGfK4hJYGdxZQNS8PAimB1psZPExzLOwcnw3tsPiSAeFY
2Y7tWEHBhJ519grUTwLJKrI9V0fUJ/lYIZ4xEzwFyRelHGki9/Rbt8r0Hp8HXFqr
e19jxje1r27RBp0NmC1sngv5gUfI1hlZgu7hmUZ8Vvl4rpLytbziq2oQUc4t1JF2
FsLIaGuVaV3k9oPgZeIs/eTqBqjmTKUBphXMLIW9m/cvkq9+fTmAxL1V+XZxiKtI
up45WYeJqeRPCCnLgKsuHS69wov7VU8D8ZY+VWzBk+BA8WyQmdlsHz4w+hwkC/1w
yrZs4fGdq7dWsdQALaJPRaY3KVHQnu1fWm30uRl1I0h+g1mgYvxtwoQKU1oy9rxI
hOd71AxgPksuhV0490B7QTg0uKP50brg8UHNJiRsQYg2geRPK7TrtXSJHeu904KH
JC/EZuc2bRdi590Km3JGU5Wvq27oRKT1nAB/eD0Qge+spvwbLQ==
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06