DigiCertHighAssuranceCA-3b.crt: CN=DigiCert High Assurance CA-3b,O=DigiCert Inc,C=US (Intermediate Certificate, Expiring 2031-11-09) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://cacerts.digicert.com/DigiCertHighAssuranceCA-3b.crt" --output cert.crt

Download certificate through wget:

wget -q "http://cacerts.digicert.com/DigiCertHighAssuranceCA-3b.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            07:47:96:4e:85:78:04:02:7b:e3:67:c3:2f:bf:79:89
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
        Validity
            Not Before: May 28 12:13:00 2020 GMT
            Not After : Nov  9 04:59:59 2031 GMT
        Subject: C=US, O=DigiCert Inc, CN=DigiCert High Assurance CA-3b
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:de:1a:95:50:ab:95:d3:5e:14:86:39:e0:25:7e:
                    e1:0a:21:b8:3d:02:29:78:68:dd:82:33:bf:a5:ca:
                    bf:9f:72:64:c5:8c:23:61:fa:76:96:ce:04:74:c3:
                    af:8c:3c:bb:3b:fd:71:0c:8f:5a:b9:4f:50:7c:dd:
                    30:25:a2:4e:fd:d8:cd:e3:bc:77:56:ab:da:c9:6d:
                    5e:c3:c6:df:0a:97:d1:43:28:97:ea:34:17:8b:c2:
                    c2:0c:08:af:05:87:02:1a:f0:01:97:b1:a9:15:b1:
                    0f:ee:3a:5d:c7:cd:fe:ca:cc:05:e0:b8:ea:1b:56:
                    be:55:be:5a:3f:10:46:82:09:1f:db:09:db:cf:29:
                    c8:b0:a2:ed:9b:2d:2e:b7:be:42:22:21:cd:77:dc:
                    58:0e:01:6a:b7:f0:d1:59:cf:f2:85:f5:88:03:24:
                    0f:ef:b6:8c:46:d0:df:51:3d:a6:3e:82:60:05:de:
                    27:b2:47:ac:cf:40:c1:6e:58:78:0c:82:68:54:e1:
                    07:54:b1:39:5c:6d:9c:c6:a1:7e:7e:5d:ec:74:1e:
                    f9:43:44:16:fa:58:e3:63:e9:73:6a:29:af:97:a8:
                    61:88:f9:e8:34:81:13:b2:d2:15:24:ab:a8:66:99:
                    4c:45:2c:df:58:eb:5a:d6:7c:85:0c:3f:31:2c:22:
                    e9:eb
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                31:16:91:A2:75:4C:C1:6A:35:55:D9:4B:21:62:77:1F:A9:E6:7B:E6
            X509v3 Authority Key Identifier: 
                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com
                CA Issuers - URI:http://cacerts.digicert.com/DigiCertHighAssuranceEVRootCA.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl

                Full Name:
                  URI:http://crl4.digicert.com/DigiCertHighAssuranceEVRootCA.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114412.0.2.4
                  CPS: https://www.digicert.com/CPS
                  User Notice:
                    Explicit Text: Any use of this Certificate constitutes acceptance of the Relying Party Agreement located at https://www.digicert.com/rpa-ua
                Policy: X509v3 Any Policy

    Signature Algorithm: sha256WithRSAEncryption
         5f:bf:71:1a:e9:43:e8:56:93:17:97:d7:bd:aa:0e:0e:cb:5b:
         fd:9a:24:6b:d4:9e:d5:64:cf:e6:69:86:9f:be:08:c4:b0:1c:
         ea:f1:b6:d4:c5:58:16:66:53:6d:61:5c:d1:34:55:e9:d9:5d:
         0a:66:f4:52:c9:78:75:3b:3d:11:30:91:ec:9e:51:64:c0:9b:
         b8:4f:75:6b:dc:ee:0f:8a:ce:20:c1:00:34:61:d6:4f:7f:da:
         af:a5:bc:83:20:76:88:d1:46:39:fc:94:9a:f5:09:a4:4c:85:
         16:01:fa:20:72:7c:b2:48:1e:4e:58:30:b2:1e:fc:ab:a1:a5:
         27:72:39:6d:7d:5a:9d:6e:7f:9a:60:9c:dd:25:6c:7d:72:23:
         ae:70:7a:4f:e1:0a:09:1f:bb:52:bf:63:8e:03:9d:96:2a:5d:
         6c:ec:66:b2:9f:ee:7c:a4:f4:09:52:db:a0:19:b6:ac:0b:55:
         49:4f:a0:19:e4:01:08:7e:60:a0:f3:60:59:71:e5:e2:e5:1a:
         7d:eb:be:f9:eb:85:07:28:21:51:2b:00:ee:2c:4b:7f:75:22:
         a8:83:7c:58:89:8a:27:2d:82:cd:d8:7c:3b:89:f0:3f:34:c0:
         02:7d:23:9d:17:b1:e7:27:4b:b4:d1:ef:d3:f0:c8:d0:aa:04:
         4f:6d:70:d7

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06