D-TRUST_CA_3-1_2016.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 3-1 2016,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2031-10-26) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_3-1_2016.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_3-1_2016.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 1041526 (0xfe476)
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 3 2016/2.5.4.97=NTRDE-HRB74346
        Validity
            Not Before: Oct 26 08:36:38 2016 GMT
            Not After : Oct 26 08:36:50 2031 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 3-1 2016/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsassaPss
                RSA-PSS Public-Key: (4096 bit)
                Modulus:
                    00:d1:07:fa:6e:e5:a8:b0:20:57:0c:0f:50:06:22:
                    63:1c:b6:12:01:88:0a:39:ab:68:5d:a2:4c:b9:c9:
                    4a:a1:ad:6f:36:e7:90:10:ab:a9:cf:90:b0:d6:ee:
                    68:8b:24:08:96:07:e5:24:0c:94:1c:63:4f:bf:82:
                    24:a4:ad:35:41:f5:05:68:d6:0a:26:cc:19:fa:76:
                    f7:0c:ad:1a:6a:56:f0:82:1c:d9:38:19:98:26:7d:
                    6a:50:d5:43:fc:6f:19:27:81:1c:16:b7:07:42:9e:
                    fc:0a:eb:b8:52:92:26:35:28:de:03:c0:de:83:75:
                    fd:8b:43:43:c9:dd:03:47:f8:d4:8d:4f:54:7f:0c:
                    a9:7f:e3:5b:92:55:07:ed:86:1f:cd:d8:14:a2:72:
                    a0:68:f9:15:af:df:6d:8c:ae:e5:9e:65:04:d2:74:
                    16:6b:f1:47:40:b1:66:c7:8d:2d:c5:06:e9:16:cb:
                    7f:5b:ab:0b:c3:70:f1:93:d5:67:89:93:9e:64:ee:
                    7f:9d:8e:a1:c4:fd:f0:3e:bf:c7:d7:69:c2:5a:e1:
                    df:6d:00:65:d0:7d:c8:9a:a4:05:c6:f4:9d:1c:65:
                    9a:08:ec:28:ba:c1:fe:b3:2c:2b:94:56:94:bf:74:
                    6d:a2:1a:bd:65:5a:c0:68:5c:37:30:03:97:23:d5:
                    69:64:14:61:d2:05:f1:fe:d0:2d:1a:76:b3:41:60:
                    5b:4a:14:c6:aa:05:c0:57:c1:9b:fd:b1:e9:21:98:
                    87:03:a8:a2:a7:ce:d2:87:e7:07:31:45:58:6d:da:
                    68:c1:ce:ec:be:2a:c7:e4:0b:ec:63:ee:73:fe:46:
                    dc:99:93:52:ef:de:a1:bc:53:df:d2:cb:c9:a7:e0:
                    94:5b:cf:87:f1:ab:6c:0a:9e:56:29:2e:db:cc:21:
                    3f:6d:68:e1:94:85:17:8c:39:57:f0:2c:da:73:63:
                    7d:6e:b5:1a:27:f7:a5:ca:12:fe:89:2a:b4:cf:f2:
                    eb:c7:f8:87:e1:29:64:99:9c:b9:6d:dc:46:77:db:
                    dd:61:a4:d3:1e:29:de:4d:55:72:76:da:ff:83:0c:
                    2b:5e:91:3d:da:f2:a7:b4:b6:10:d8:10:cb:2d:4e:
                    89:28:2c:c2:44:f2:67:b5:d2:c2:76:bf:25:0d:8f:
                    61:0c:c1:7e:10:c6:b0:f4:42:18:98:da:9d:46:5f:
                    d4:12:57:73:a0:94:12:7f:5a:08:1b:13:42:6f:e2:
                    b6:b4:52:a5:f6:22:fe:f5:fe:8d:e6:4f:66:6e:56:
                    c5:f6:3d:2e:2a:4c:8b:50:76:49:9d:18:56:a1:a3:
                    84:c9:14:7f:53:2c:be:eb:67:2f:09:f7:27:0a:98:
                    e8:7e:c3
                Exponent: 65537 (0x10001)
                No PSS parameter restrictions
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:DC:C0:12:BD:88:3D:63:13:8C:34:AB:DB:CE:8B:32:C4:11:4E:5D:E7

            Authority Information Access: 
                OCSP - URI:http://root-ca-3-2016.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_3_2016.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.2
                Policy: 1.3.6.1.4.1.4788.2.150.1
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_Root_PKI_CPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%203%202016,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_3_2016.crl

            X509v3 Subject Key Identifier: 
                FB:ED:DF:AD:4B:F0:25:B5:D2:7A:DD:9F:9A:1D:2F:6D:09:50:21:C7
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)

         6d:37:d1:ad:69:5b:76:5e:e6:0d:a5:73:6c:4d:70:3c:9b:45:
         43:5c:08:27:ba:b7:3c:c1:60:b6:76:7b:88:8c:e4:c9:b0:4e:
         36:d4:29:f9:8b:ac:9c:2c:1c:b3:8d:e7:30:b3:70:da:99:42:
         ff:6f:b9:b4:c4:27:e0:61:78:fe:27:f0:a4:b6:86:f8:52:62:
         cc:5e:ab:24:02:9f:e3:42:c2:8b:a7:86:fb:07:c3:d1:fc:74:
         5f:b2:5a:c4:8d:f2:5b:4c:17:7d:df:60:d4:5d:23:96:58:9c:
         ed:a8:08:67:2a:45:be:f5:32:72:b6:96:45:4e:5f:24:98:60:
         c2:e2:d0:fe:be:d0:da:2d:0a:f9:4b:b0:cd:2d:b8:7e:74:6a:
         1b:83:66:4f:f5:03:e7:55:70:04:f0:2d:60:78:2d:5b:c7:de:
         53:fa:14:00:c2:8c:c2:7b:46:ad:a5:80:6c:c9:eb:40:40:13:
         f5:6e:02:2d:85:99:2d:57:14:e2:4e:5c:7c:54:b0:4f:5a:bb:
         03:ad:96:0d:24:52:12:39:da:88:6b:43:a2:a8:26:c9:41:d1:
         97:bf:bf:68:a1:32:3b:b6:c1:8f:bc:e5:5c:f9:70:a0:2d:f2:
         b6:51:65:cb:c9:83:c2:0d:ec:01:4e:c2:80:ef:96:9d:bf:7a:
         31:7b:09:7b:88:01:fe:81:ad:a7:0a:fe:15:6c:54:c5:55:69:
         e7:9f:e0:5c:2d:5c:1a:ed:22:56:4f:42:83:23:df:af:59:54:
         19:cf:a7:46:f9:cf:08:98:79:50:63:91:0c:99:8c:15:d3:37:
         01:10:2d:94:1c:f1:f3:4d:e3:d1:91:54:95:7f:14:68:e7:77:
         95:d1:ea:e9:b3:f8:60:63:29:73:dc:ba:93:ca:55:7d:aa:a1:
         4e:6d:be:23:ab:f7:4c:58:1d:84:c0:a3:79:85:27:ef:47:ad:
         e5:56:d9:44:65:fc:64:89:ff:03:76:22:c9:3d:44:99:43:c1:
         5a:93:a6:8f:0d:a1:13:ef:ba:d3:1f:47:25:24:c3:fc:b6:f7:
         b8:86:75:1b:33:98:f7:cc:8c:d4:15:f6:ee:8d:86:ff:bb:0b:
         35:dc:44:72:ac:44:af:cb:34:dd:45:f2:3b:4c:90:5a:3b:60:
         25:0b:60:8e:54:2b:db:2d:68:4f:c5:f8:82:9e:d3:87:81:76:
         8e:03:ed:b2:08:81:bf:b3:43:b4:61:81:3b:d0:75:6b:4d:bb:
         87:29:d4:ea:71:fb:22:43:1d:8f:fb:93:cc:97:b5:7e:40:e5:
         77:16:b9:a4:0b:9f:8b:dc:c7:b9:52:b3:d6:2c:c1:8e:3d:f7:
         c9:0c:96:23:ed:59:fa:40

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06