trustroottlssha2g3.crt: CN=Trusted Root TLS CA SHA256 G3,O=GlobalSign nv-sa,C=BE (Intermediate Certificate, Expiring 2027-04-25) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://secure.globalsign.com/cacert/trustroottlssha2g3.crt" --output cert.crt

Download certificate through wget:

wget -q "http://secure.globalsign.com/cacert/trustroottlssha2g3.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            77:bd:0d:75:3f:2e:19:60:1b:d5:4e:0a:02:44:46:76
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: OU=GlobalSign Root CA - R3, O=GlobalSign, CN=GlobalSign
        Validity
            Not Before: Jul  5 00:00:00 2020 GMT
            Not After : Apr 25 11:00:00 2027 GMT
        Subject: C=BE, O=GlobalSign nv-sa, CN=Trusted Root TLS CA SHA256 G3
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:a5:d1:7b:a6:67:a1:1f:b8:c5:ca:09:2f:f4:b9:
                    bf:1d:43:a8:c3:1e:e0:b0:85:07:ec:cc:30:e0:a2:
                    e6:cb:5f:61:47:ca:e9:b0:60:8a:56:0a:8a:59:38:
                    d8:5f:39:cf:9a:35:78:b2:94:7e:3e:32:70:67:e7:
                    69:45:4b:75:2b:23:c1:a3:f5:1c:c9:68:6e:bd:b1:
                    04:c8:87:f7:ea:b5:2a:0c:96:ba:2d:6f:f0:a4:6f:
                    f8:88:5d:3d:ac:51:a2:38:0b:2c:ce:23:94:f2:e5:
                    1e:fa:af:a2:b7:26:18:74:25:c7:4c:22:d9:53:3c:
                    1a:ba:9f:f9:c7:64:85:85:c7:19:30:51:bc:12:e1:
                    02:87:c0:86:0a:16:4d:5c:eb:c1:36:7a:32:d0:0f:
                    68:20:13:27:e8:1c:49:54:07:c3:d2:cb:5c:ce:f1:
                    55:0b:a4:99:4c:0c:32:9a:75:9a:2c:5f:29:b9:88:
                    bf:e0:c4:4d:a3:24:f4:ef:a4:b7:94:78:9c:f2:ed:
                    ec:cf:25:51:2d:42:69:ec:dd:8a:f6:ca:be:f9:cb:
                    e1:69:dc:ee:75:f3:44:2f:cd:34:bb:6e:5a:cf:ba:
                    8b:5e:78:62:3e:1a:f4:90:75:f6:81:81:ac:89:cc:
                    9b:ae:f7:19:a9:db:07:5a:fc:22:e6:68:44:e2:9d:
                    19:a9
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Subject Key Identifier: 
                DE:4F:D7:DD:27:AE:D5:7F:58:81:E1:2C:47:AC:23:B7:C6:7B:57:EF
            X509v3 Authority Key Identifier: 
                keyid:8F:F0:4B:7F:A8:2E:45:24:AE:4D:50:FA:63:9A:8B:DE:E2:DD:1B:BC

            Authority Information Access: 
                OCSP - URI:http://ocsp.globalsign.com/rootr3
                CA Issuers - URI:http://secure.globalsign.com/cacert/root-r3.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.globalsign.com/root-r3.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.globalsign.com/repository/

    Signature Algorithm: sha256WithRSAEncryption
         16:f0:e5:41:8e:d6:1a:2d:9f:90:bf:22:6d:6b:ef:81:e2:4f:
         01:0e:49:5b:57:a5:c2:88:96:9a:a6:36:1b:66:81:ec:b0:03:
         1d:e2:8f:86:0e:bd:b8:47:43:0e:9a:6f:37:b1:62:dd:a3:88:
         0e:b8:d9:44:c2:14:95:c9:ec:eb:e3:61:09:d9:00:4b:64:42:
         52:67:01:e7:32:97:cf:75:d7:36:9a:56:79:80:c3:7a:3c:40:
         99:af:3e:16:fa:dd:b1:99:28:0e:61:08:b5:b8:81:c8:88:30:
         28:4a:6e:3f:7a:9a:5e:f3:f4:8b:0a:52:53:62:4f:e6:80:5e:
         45:7e:79:8d:0d:e3:a1:0c:4f:9e:f3:7e:ac:f3:74:72:69:5c:
         cb:c5:36:e5:dd:97:c3:48:2c:36:59:68:25:49:ba:d7:85:e5:
         a0:c9:d0:de:10:e9:96:b6:a7:90:8e:5a:d3:99:55:ff:53:01:
         6e:b5:63:dc:e1:6f:af:f3:16:7d:29:3d:ef:72:91:b8:3d:97:
         77:64:7d:06:9d:c9:1e:36:30:5c:16:20:22:75:79:b8:03:29:
         a9:f7:2f:57:1c:50:2c:4d:f1:cf:1f:75:0c:99:1e:d6:21:57:
         3e:89:ba:13:ff:5e:2d:94:af:67:da:80:12:2e:22:63:3d:a0:
         02:1a:7a:54

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06