gsdomainvalsha2g3.crt: CN=GlobalSign Domain Validation CA - SHA256 - G3,O=GlobalSign nv-sa,C=BE (Intermediate Certificate, Expiring 2025-09-04) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://secure.globalsign.com/cacert/gsdomainvalsha2g3.crt" --output cert.crt

Download certificate through wget:

wget -q "http://secure.globalsign.com/cacert/gsdomainvalsha2g3.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            47:07:b1:00:f4:18:22:43:4e:c0:5b:8c:7b:7f
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
        Validity
            Not Before: Sep  4 00:00:00 2015 GMT
            Not After : Sep  4 00:00:00 2025 GMT
        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Domain Validation CA - SHA256 - G3
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:e2:50:8c:fc:8f:71:50:9c:24:cc:40:32:5d:1f:
                    79:d0:94:0d:7c:d0:51:26:0c:f7:94:d9:d6:cd:e2:
                    48:c8:6d:d4:db:73:e7:e8:cb:51:80:95:e8:2f:73:
                    8e:91:ff:cb:65:87:9c:80:20:8a:46:a1:6d:fa:f0:
                    17:9a:52:ff:69:63:de:66:85:73:ce:07:35:69:d8:
                    86:ea:37:8d:77:f5:f3:ad:0e:53:35:52:a3:e8:ac:
                    b0:e2:d1:22:da:0e:b7:45:dd:b9:9d:c3:43:54:f1:
                    c1:18:a5:13:82:5e:ee:44:af:77:cd:ec:70:ed:d9:
                    fe:50:06:91:75:64:73:be:5a:08:cd:02:e4:59:97:
                    b1:fe:fb:9e:f6:bd:be:4d:2a:dc:61:78:2f:82:f0:
                    36:51:e0:c4:6d:22:6b:cf:8d:0a:e1:09:66:a6:92:
                    63:95:d0:5d:40:de:7b:96:ff:08:26:d1:62:0a:88:
                    27:99:f6:2a:1b:97:5f:a4:6e:7e:78:cb:d8:c8:8a:
                    84:99:30:d8:38:dd:08:fb:cf:91:1b:31:51:23:ca:
                    15:c1:2c:fd:c8:8c:a9:e2:f9:25:87:ee:82:cf:2b:
                    b5:e5:a8:ec:52:1a:69:1c:0f:3d:e1:fa:68:46:c9:
                    2b:05:bd:0e:02:a6:1d:29:40:81:ca:bd:0b:43:05:
                    b9:f3
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                3D:80:82:79:C5:48:82:A3:C3:12:EE:DF:99:0F:57:35:48:9E:D0:CB
            X509v3 Authority Key Identifier: 
                keyid:60:7B:66:1A:45:0D:97:CA:89:50:2F:7D:04:CD:34:A8:FF:FC:FD:4B

            Authority Information Access: 
                OCSP - URI:http://ocsp.globalsign.com/rootr1

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.globalsign.com/root.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.globalsign.com/repository/

    Signature Algorithm: sha256WithRSAEncryption
         1a:af:da:7d:cf:35:6a:74:51:91:20:c6:c4:bb:41:58:2e:9b:
         0c:2f:76:7b:f0:ef:35:74:99:69:62:fd:9b:87:a5:f5:fa:af:
         fa:d8:c8:94:1e:c3:54:79:ff:c1:c9:ff:a8:ec:fd:4a:1b:fd:
         d9:bc:8e:99:22:bd:c1:dd:aa:29:ee:e5:2a:6f:d8:0f:1b:ad:
         7a:b5:b4:1c:7b:7f:c8:d6:e9:18:3c:72:90:e1:bd:29:f6:13:
         97:3f:dd:77:91:08:ba:60:7f:a8:32:d7:ef:20:f8:c4:72:c4:
         90:d9:d1:5b:88:a4:65:24:26:ff:7a:63:c6:9e:00:07:fb:d7:
         4d:9f:a8:80:0c:77:28:f8:46:c9:e5:57:c9:5f:db:40:cc:45:
         37:ef:b9:95:a4:b8:53:cf:76:8f:04:c9:e7:0d:28:00:a7:f2:
         3b:6f:96:17:a3:46:d8:33:c7:f3:75:b1:b4:68:a2:f8:22:57:
         e9:8a:cf:00:cd:48:9a:99:ca:3e:7f:83:6d:c1:99:46:61:a8:
         a6:d8:73:de:9f:c8:72:8c:fd:79:71:0d:92:92:fd:64:d0:f1:
         73:73:b9:f9:47:48:2e:49:c0:32:48:79:de:a2:0e:47:bd:1b:
         14:63:eb:57:6d:44:b3:9a:99:cb:2f:31:e6:f7:44:08:79:98:
         83:53:d0:26

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06