ca_disig.der: CN=CA Disig,O=Disig a.s.,L=Bratislava,C=SK (Root Certificate, Expiring 2016-03-22) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is root certificate used for the issuance of other certificates.
- Certificate Download URL: https://dsrv.disig.sk/ca/cert/ca_disig.der (in DER format )
- Serial Number : 1
- SHA-1 Fingerprint : 2ac8d58b57cebf2f49aff2fc768f511462907a41
- SHA-1 Fingerprint : 2a:c8:d5:8b:57:ce:bf:2f:49:af:f2:fc:76:8f:51:14:62:90:7a:41
- SHA-256 Fingerprint : 92bf5119abeccad0b1332dc4e1d05fba75b5679044ee0ca26e931f744f2f33cf
- SHA-256 Fingerprint : 92:bf:51:19:ab:ec:ca:d0:b1:33:2d:c4:e1:d0:5f:ba:75:b5:67:90:44:ee:0c:a2:6e:93:1f:74:4f:2f:33:cf
- Signature Hash Algorithm : sha1
- Subject
: CN=CA Disig,O=Disig a.s.,L=Bratislava,C=SK
- Country Name: SK (Slovakia)
- Locality: Bratislava
- Organization: Disig a.s.
- Common Name: CA Disig
- Not Valid Before: 2006-03-22 01:39:34
- Not Valid After: 2016-03-22 01:39:34
- Issuer (Parent Certificate):
- Issuer Name: CN=CA Disig,O=Disig a.s.,L=Bratislava,C=SK
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Root Certificate
- Certificate Policy (CP) URL: Unknown
- Certificate Practice Statement (CPS) URL: http://www.disig.eu/index.php?id=docs&L=1
- Auditor: QSCert
- Standard Audit URL: https://eidas.disig.sk/pdf/Audit2016_report.pdf
- Standard Audit Period Start Date: 2016.10.26
- Standard Audit Period End Date: 2016.10.26
- Standard Audit Statement Date: 2016.10.26
- Standard Audit Type: ETSI TS 102 042
- Full CRL Issued By This CA: Unknown
Download certificate through curl
:
curl -sSL "https://dsrv.disig.sk/ca/cert/ca_disig.der" --output cert.crt
Download certificate through wget
:
wget -q "https://dsrv.disig.sk/ca/cert/ca_disig.der" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 1 (0x1)
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=SK, L=Bratislava, O=Disig a.s., CN=CA Disig
Validity
Not Before: Mar 22 01:39:34 2006 GMT
Not After : Mar 22 01:39:34 2016 GMT
Subject: C=SK, L=Bratislava, O=Disig a.s., CN=CA Disig
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:92:f6:31:c1:7d:88:fd:99:01:a9:d8:7b:f2:71:
75:f1:31:c6:f3:75:66:fa:51:28:46:84:97:78:34:
bc:6c:fc:bc:45:59:88:26:18:4a:c4:37:1f:a1:4a:
44:bd:e3:71:04:f5:44:17:e2:3f:fc:48:58:6f:5c:
9e:7a:09:ba:51:37:22:23:66:43:21:b0:3c:64:a2:
f8:6a:15:0e:3f:eb:51:e1:54:a9:dd:06:99:d7:9a:
3c:54:8b:39:03:3f:0f:c5:ce:c6:eb:83:72:02:a8:
1f:71:f3:2d:f8:75:08:db:62:4c:e8:fa:ce:f9:e7:
6a:1f:b6:6b:35:82:ba:e2:8f:16:92:7d:05:0c:6c:
46:03:5d:c0:ed:69:bf:3a:c1:8a:a0:e8:8e:d9:b9:
45:28:87:08:ec:b4:ca:15:be:82:dd:b5:44:8b:2d:
ad:86:0c:68:62:6d:85:56:f2:ac:14:63:3a:c6:d1:
99:ac:34:78:56:4b:cf:b6:ad:3f:8c:8a:d7:04:e5:
e3:78:4c:f5:86:aa:f5:8f:fa:3d:6c:71:a3:2d:ca:
67:eb:68:7b:6e:33:a9:0c:82:28:a8:4c:6a:21:40:
15:20:0c:26:5b:83:c2:a9:16:15:c0:24:82:5d:2b:
16:ad:ca:63:f6:74:00:b0:df:43:c4:10:60:56:67:
63:45
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Subject Key Identifier:
8D:B2:49:68:9D:72:08:25:B9:C0:27:F5:50:93:56:48:46:71:F9:8F
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Subject Alternative Name:
email:caoperator@disig.sk, URI:http://www.disig.sk/ca
X509v3 CRL Distribution Points:
Full Name:
URI:http://www.disig.sk/ca/crl/ca_disig.crl
Full Name:
URI:http://ca.disig.sk/ca/crl/ca_disig.crl
X509v3 Certificate Policies:
Policy: 1.3.158.35975946.0.0.0.1.1.1
Signature Algorithm: sha1WithRSAEncryption
5d:34:74:61:4c:af:3b:d8:ff:9f:6d:58:36:1c:3d:0b:81:0d:
12:2b:46:10:80:fd:e7:3c:27:d0:7a:c8:a9:b6:7e:74:30:33:
a3:3a:8a:7b:74:c0:79:79:42:93:6d:ff:b1:29:14:82:ab:21:
8c:2f:17:f9:3f:26:2f:f5:59:c6:ef:80:06:b7:9a:49:29:ec:
ce:7e:71:3c:6a:10:41:c0:f6:d3:9a:b2:7c:5a:91:9c:c0:ac:
5b:c8:4d:5e:f7:e1:53:ff:43:77:fc:9e:4b:67:6c:d7:f3:83:
d1:a0:e0:7f:25:df:b8:98:0b:9a:32:38:6c:30:a0:f3:ff:08:
15:33:f7:50:4a:7b:3e:a3:3e:20:a9:dc:2f:56:80:0a:ed:41:
50:b0:c9:f4:ec:b2:e3:26:44:00:0e:6f:9e:06:bc:22:96:53:
70:65:c4:50:0a:46:6b:a4:2f:27:81:12:27:13:5f:10:a1:76:
ce:8a:7b:37:ea:c3:39:61:03:95:98:3a:e7:6c:88:25:08:fc:
79:68:0d:87:7d:62:f8:b4:5f:fb:c5:d8:4c:bd:58:bc:3f:43:
5b:d4:1e:01:4d:3c:63:be:23:ef:8c:cd:5a:50:b8:68:54:f9:
0a:99:33:11:00:e1:9e:c2:46:77:82:f5:59:06:8c:21:4c:87:
09:cd:e5:a8
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List