gsextendvalsha2g3r3.crt: CN=GlobalSign Extended Validation CA - SHA256 - G3,O=GlobalSign nv-sa,C=BE (Intermediate Certificate, Expiring 2026-09-21) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://secure.globalsign.com/cacert/gsextendvalsha2g3r3.crt" --output cert.crt

Download certificate through wget:

wget -q "http://secure.globalsign.com/cacert/gsextendvalsha2g3r3.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            48:a4:02:dd:27:92:0d:a2:08:34:9d:d1:99:7b
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: OU=GlobalSign Root CA - R3, O=GlobalSign, CN=GlobalSign
        Validity
            Not Before: Sep 21 00:00:00 2016 GMT
            Not After : Sep 21 00:00:00 2026 GMT
        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Extended Validation CA - SHA256 - G3
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:ab:6b:03:67:54:d5:dc:11:fb:c5:a2:13:c1:8c:
                    19:27:dc:10:74:e2:61:83:3d:fa:8e:db:8f:a5:0f:
                    e4:a9:be:46:3f:02:be:44:a4:09:1c:26:33:9f:47:
                    48:81:15:88:56:37:cd:07:ce:95:d8:cb:6b:48:03:
                    b9:9b:5e:92:ae:d8:9a:66:61:d5:35:c5:ca:10:a5:
                    02:b4:ba:31:3f:c1:ef:af:10:3c:a3:ca:39:ad:7f:
                    be:8b:2e:a6:ce:7e:ea:b7:c5:96:d2:a9:4a:80:63:
                    e3:0e:bc:0e:bb:9e:7a:5d:6b:0b:e4:1e:02:41:15:
                    53:e7:c6:e8:b8:e5:71:f8:07:04:f0:6e:d0:ee:73:
                    1f:8c:a3:b1:0a:e2:64:b4:4e:2f:8f:d4:dc:c0:47:
                    11:4d:09:41:4c:f1:6c:5c:df:6c:31:5c:a7:df:e9:
                    65:38:4d:ba:94:c7:f5:09:9b:8f:39:b6:d9:05:aa:
                    ed:0e:c7:8c:13:51:46:e7:d2:eb:b3:2b:bc:95:dd:
                    8f:7c:e8:4b:46:ce:12:81:ad:a3:07:df:a3:1e:91:
                    26:25:13:8e:f7:1a:a1:de:b5:18:bd:a9:b3:46:e6:
                    93:3e:f9:26:be:5a:34:7d:13:57:b4:63:0b:35:e8:
                    21:aa:b2:65:4a:c0:0a:a0:e2:e7:38:dd:e0:53:15:
                    48:55
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                DD:B3:E7:6D:A8:2E:E8:C5:4E:6E:CF:74:E6:75:3C:94:15:CE:E8:1D
            X509v3 Authority Key Identifier: 
                keyid:8F:F0:4B:7F:A8:2E:45:24:AE:4D:50:FA:63:9A:8B:DE:E2:DD:1B:BC

            Authority Information Access: 
                OCSP - URI:http://ocsp2.globalsign.com/rootr3

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.globalsign.com/root-r3.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.globalsign.com/repository/

    Signature Algorithm: sha256WithRSAEncryption
         55:68:9c:e5:d0:9f:e2:d3:35:15:df:c8:8c:5c:84:3e:43:fc:
         a1:b7:e2:59:67:90:d6:d6:8b:46:2f:93:98:57:42:d9:e9:91:
         3a:c6:1f:96:ba:f5:89:27:88:6b:0d:b8:5f:a3:a9:21:50:46:
         85:b5:15:27:ba:ba:b3:ba:db:d5:c9:68:16:f2:6b:27:a0:fd:
         20:b4:c6:4e:d7:57:30:3d:43:14:b9:45:7c:88:6c:88:3a:e2:
         01:d1:f9:68:e8:6f:97:6d:5e:f8:49:9b:91:e6:fe:51:02:0a:
         a0:19:7b:9c:61:43:d9:5a:fb:fd:01:fc:cc:31:08:51:42:4a:
         ff:30:ef:d6:47:65:d2:76:20:6b:5c:7a:03:2f:6c:64:e0:39:
         a3:03:82:ba:88:f2:3e:d7:ea:8c:87:2a:e4:50:cf:f6:64:47:
         40:f2:57:6a:c2:5f:27:40:39:0a:4b:bb:ea:ea:c5:19:e4:b3:
         d5:75:fa:71:25:96:6e:e4:90:63:e3:2e:c5:34:54:d5:5b:53:
         8c:94:25:2f:c2:de:47:f1:a1:60:04:c2:c5:8a:4f:71:a8:ae:
         89:14:7a:58:c5:89:9f:e2:dd:ac:2c:bc:4d:d0:b9:42:b6:12:
         44:69:bb:e9:d7:46:65:3a:d7:ee:f2:12:f9:80:25:dc:c6:7c:
         06:c7:34:9b

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIEYTCCA0mgAwIBAgIOSKQC3SeSDaIINJ3RmXswDQYJKoZIhvcNAQELBQAwTDEg
MB4GA1UECxMXR2xvYmFsU2lnbiBSb290IENBIC0gUjMxEzARBgNVBAoTCkdsb2Jh
bFNpZ24xEzARBgNVBAMTCkdsb2JhbFNpZ24wHhcNMTYwOTIxMDAwMDAwWhcNMjYw
OTIxMDAwMDAwWjBiMQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBu
di1zYTE4MDYGA1UEAxMvR2xvYmFsU2lnbiBFeHRlbmRlZCBWYWxpZGF0aW9uIENB
IC0gU0hBMjU2IC0gRzMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCr
awNnVNXcEfvFohPBjBkn3BB04mGDPfqO24+lD+SpvkY/Ar5EpAkcJjOfR0iBFYhW
N80HzpXYy2tIA7mbXpKu2JpmYdU1xcoQpQK0ujE/we+vEDyjyjmtf76LLqbOfuq3
xZbSqUqAY+MOvA67nnpdawvkHgJBFVPnxui45XH4BwTwbtDucx+Mo7EK4mS0Ti+P
1NzARxFNCUFM8Wxc32wxXKff6WU4TbqUx/UJm485ttkFqu0Ox4wTUUbn0uuzK7yV
3Y986EtGzhKBraMH36MekSYlE473GqHetRi9qbNG5pM++Sa+WjR9E1e0Yws16CGq
smVKwAqg4uc43eBTFUhVAgMBAAGjggEpMIIBJTAOBgNVHQ8BAf8EBAMCAQYwEgYD
VR0TAQH/BAgwBgEB/wIBADAdBgNVHQ4EFgQU3bPnbagu6MVObs905nU8lBXO6B0w
HwYDVR0jBBgwFoAUj/BLf6guRSSuTVD6Y5qL3uLdG7wwPgYIKwYBBQUHAQEEMjAw
MC4GCCsGAQUFBzABhiJodHRwOi8vb2NzcDIuZ2xvYmFsc2lnbi5jb20vcm9vdHIz
MDYGA1UdHwQvMC0wK6ApoCeGJWh0dHA6Ly9jcmwuZ2xvYmFsc2lnbi5jb20vcm9v
dC1yMy5jcmwwRwYDVR0gBEAwPjA8BgRVHSAAMDQwMgYIKwYBBQUHAgEWJmh0dHBz
Oi8vd3d3Lmdsb2JhbHNpZ24uY29tL3JlcG9zaXRvcnkvMA0GCSqGSIb3DQEBCwUA
A4IBAQBVaJzl0J/i0zUV38iMXIQ+Q/yht+JZZ5DW1otGL5OYV0LZ6ZE6xh+WuvWJ
J4hrDbhfo6khUEaFtRUnurqzutvVyWgW8msnoP0gtMZO11cwPUMUuUV8iGyIOuIB
0flo6G+XbV74SZuR5v5RAgqgGXucYUPZWvv9AfzMMQhRQkr/MO/WR2XSdiBrXHoD
L2xk4DmjA4K6iPI+1+qMhyrkUM/2ZEdA8ldqwl8nQDkKS7vq6sUZ5LPVdfpxJZZu
5JBj4y7FNFTVW1OMlCUvwt5H8aFgBMLFik9xqK6JFHpYxYmf4t2sLLxN0LlCthJE
abvp10ZlOtfu8hL5gCXcxnwGxzSb
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06