gts1d4.der: CN=GTS CA 1D4,O=Google Trust Services LLC,C=US (Intermediate Certificate, Expiring 2027-09-30) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://pki.goog/repo/certs/gts1d4.der" --output cert.crt

Download certificate through wget:

wget -q "https://pki.goog/repo/certs/gts1d4.der" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            02:00:8e:b2:02:33:36:65:8b:64:cd:db:9b
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R1
        Validity
            Not Before: Aug 13 00:00:42 2020 GMT
            Not After : Sep 30 00:00:42 2027 GMT
        Subject: C=US, O=Google Trust Services LLC, CN=GTS CA 1D4
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:ab:c0:aa:a3:c2:13:6e:e5:d3:0f:73:0b:c7:53:
                    3c:81:3c:f5:b0:3e:c5:39:83:68:6e:f2:ed:57:d0:
                    e1:cf:a6:39:68:65:51:e6:d4:42:92:b4:ca:fd:ab:
                    eb:bf:11:24:4c:4a:d0:75:83:8d:ea:be:9c:b2:07:
                    37:51:26:e6:3e:ab:01:16:62:c6:6c:91:4a:38:48:
                    47:42:8e:40:f1:81:31:49:5d:b1:ac:ed:20:82:7b:
                    3b:48:3f:f3:6a:a3:fe:f1:83:97:ff:f7:b7:8b:53:
                    ab:18:91:84:b4:27:4c:b5:c9:75:e0:7e:d8:38:64:
                    75:4e:88:22:0c:7a:c0:de:c4:e4:d7:14:1f:74:5c:
                    b1:e8:dc:aa:3f:29:e5:28:f5:f6:f0:66:ea:2d:45:
                    86:a2:c6:ca:68:4c:16:ba:16:55:41:8e:df:1b:48:
                    1f:dd:5d:b2:0c:b8:78:52:9c:7c:a5:4b:58:ad:e8:
                    db:5f:74:43:42:e6:fd:28:8a:98:b6:d1:27:90:2e:
                    e3:2d:5e:b8:52:66:d8:93:3d:78:1f:38:16:4a:9a:
                    de:2b:eb:5d:65:1e:56:dc:9e:d0:24:1d:2a:fb:18:
                    d8:59:1a:ce:fc:6d:c6:fb:ac:2c:9c:cb:59:81:e4:
                    e7:9c:dc:44:06:9c:0c:0d:92:78:4b:41:6d:07:c3:
                    d6:ab
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                25:E2:18:0E:B2:57:91:94:2A:E5:D4:5D:86:90:83:DE:53:B3:B8:92
            X509v3 Authority Key Identifier: 
                keyid:E4:AF:2B:26:71:1A:2B:48:27:85:2F:52:66:2C:EF:F0:89:13:71:3E

            Authority Information Access: 
                OCSP - URI:http://ocsp.pki.goog/gtsr1
                CA Issuers - URI:http://pki.goog/repo/certs/gtsr1.der

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.pki.goog/gtsr1/gtsr1.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.1
                Policy: 1.3.6.1.4.1.11129.2.5.3
                  CPS: https://pki.goog/repository/

    Signature Algorithm: sha256WithRSAEncryption
         21:54:e8:cb:6e:23:c1:75:2b:d2:b0:0f:73:dd:b8:be:e4:95:
         6c:a4:2e:63:0d:e7:2d:f9:4b:7c:b8:79:01:85:84:79:59:7f:
         0e:ed:7c:40:05:94:31:d7:09:ea:8f:ea:15:96:e1:5e:40:47:
         d0:f3:5c:c3:de:ed:85:a7:f6:05:ea:03:61:8f:42:93:f6:fe:
         50:69:6e:87:1d:3a:cd:de:04:05:fe:c7:f4:ff:38:9e:7a:f0:
         a5:1f:b8:18:10:d9:2b:e5:e1:dc:8d:2d:a8:9c:b6:ae:03:aa:
         34:37:e5:af:92:0c:43:c6:53:58:0d:f2:96:d6:a4:cd:20:4a:
         67:a5:e9:17:43:e9:ab:20:91:be:9f:cd:08:6b:f6:29:7d:93:
         b8:f0:89:be:c7:29:d7:f9:b6:a5:54:ed:c8:18:d8:3d:14:3e:
         42:e0:90:18:02:4a:8e:d3:7b:47:90:c5:ad:f4:ea:31:6b:d8:
         81:59:69:08:90:64:c2:5b:bb:fb:b2:98:dd:c4:c8:7f:31:3b:
         72:60:0b:b2:43:0a:34:bb:83:cf:e4:73:09:cb:18:4e:c5:5a:
         53:b5:69:df:12:fa:d0:e6:21:a8:59:2e:00:e3:b1:0d:9e:a9:
         1c:e8:fd:f8:e2:66:62:03:e6:39:3e:17:df:ee:cb:e7:57:d7:
         27:24:47:f4:a7:cb:44:fe:a7:4f:7d:43:e6:79:ac:18:03:a0:
         67:6e:bf:f1:3f:61:b0:15:b5:ba:8f:63:bb:97:d9:2d:95:d5:
         55:2e:47:d0:7c:88:04:c1:0a:c8:63:08:3e:11:56:ae:5b:7f:
         84:54:b6:f0:dd:73:68:a2:34:64:11:83:de:06:20:0c:b6:e2:
         0d:3f:5f:19:7b:2d:a6:4f:85:99:ce:28:95:59:56:3f:35:de:
         f3:5b:dd:a0:49:c5:6e:be:4c:db:bd:87:76:02:56:a3:e5:a1:
         4f:d0:58:33:42:62:fb:07:55:9a:74:5f:7d:78:25:a0:4a:25:
         b9:33:5c:5b:37:38:d5:d1:69:80:9b:bc:7c:5d:cb:1b:48:25:
         da:26:d2:62:20:a2:f5:ae:a1:bd:4d:13:a6:98:c9:c8:85:97:
         86:42:53:70:c2:65:3e:b5:b1:d5:5c:ad:11:41:ab:5f:69:74:
         24:3c:11:8d:6f:fa:e7:aa:f4:29:50:74:db:11:d1:2a:f9:b6:
         64:a2:34:dd:38:25:2c:8a:66:54:22:b7:90:12:a4:28:da:41:
         36:41:6d:f2:b8:5a:7d:c0:8a:39:bf:49:c7:ff:6d:a4:d1:65:
         41:39:7b:07:7f:6b:26:52:56:91:1d:7b:42:76:6a:56:9b:45:
         78:f1:4e:46:86:66:17:33

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06