Microsoft RSA TLS CA 01.crt: CN=Microsoft RSA TLS CA 01,O=Microsoft Corporation,C=US (Intermediate Certificate, Expiring 2024-10-08) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is intermediate certificate used for the issuance of other certificates.
- Certificate Download URL: http://www.microsoft.com/pki/mscorp/Microsoft%20RSA%20TLS%20CA%2001.crt (in DER format )
- Serial Number : 20045315772003125868899357870856421858
- SHA-1 Fingerprint : 703d7a8f0ebf55aaa59f98eaf4a206004eb2516a
- SHA-1 Fingerprint : 70:3d:7a:8f:0e:bf:55:aa:a5:9f:98:ea:f4:a2:06:00:4e:b2:51:6a
- SHA-256 Fingerprint : 04eeea8e50b4775b3c24797262917ee50002ec4c75b56cdf3ee1c18cfca5ba52
- SHA-256 Fingerprint : 04:ee:ea:8e:50:b4:77:5b:3c:24:79:72:62:91:7e:e5:00:02:ec:4c:75:b5:6c:df:3e:e1:c1:8c:fc:a5:ba:52
- Signature Hash Algorithm : sha256
- Subject
: CN=Microsoft RSA TLS CA 01,O=Microsoft Corporation,C=US
- Country Name: US (United States of America)
- Organization: Microsoft Corporation
- Common Name: Microsoft RSA TLS CA 01
- Not Valid Before: 2020-07-21 23:00:00
- Not Valid After: 2024-10-08 07:00:00
- Issuer (Parent Certificate):
- Issuer Name: CN=Baltimore CyberTrust Root,OU=CyberTrust,O=Baltimore,C=IE
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Not Revoked
- Certificate Policy (CP) URL: https://www.microsoft.com/pki/mscorp/cps/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS%20Ver%202.12%20February%202023.pdf
- Certificate Practice Statement (CPS) URL: https://www.microsoft.com/pki/mscorp/cps/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS%20Ver%202.12%20February%202023.pdf
- Auditor: BDO International Limited
- Standard Audit URL: https://bugzilla.mozilla.org/attachment.cgi?id=9294461
- Standard Audit Period Start Date: 2021.07.01
- Standard Audit Period End Date: 2022.06.30
- Standard Audit Statement Date: 2022.08.29
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: http://crl.microsoft.com/pki/mscorp/crl/Microsoft%20RSA%20TLS%20CA%2001.crl
- Check its issuer’s audit information: CN=Baltimore CyberTrust Root,OU=CyberTrust,O=Baltimore,C=IE .
Download certificate through curl
:
curl -sSL "http://www.microsoft.com/pki/mscorp/Microsoft%20RSA%20TLS%20CA%2001.crt" --output cert.crt
Download certificate through wget
:
wget -q "http://www.microsoft.com/pki/mscorp/Microsoft%20RSA%20TLS%20CA%2001.crt" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
0f:14:96:5f:20:20:69:99:4f:d5:c7:ac:78:89:41:e2
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=IE, O=Baltimore, OU=CyberTrust, CN=Baltimore CyberTrust Root
Validity
Not Before: Jul 21 23:00:00 2020 GMT
Not After : Oct 8 07:00:00 2024 GMT
Subject: C=US, O=Microsoft Corporation, CN=Microsoft RSA TLS CA 01
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (4096 bit)
Modulus:
00:aa:62:77:cf:9a:63:b2:06:84:f3:90:36:f4:99:
f3:14:51:ab:ea:95:0a:3b:46:06:fd:11:41:1f:fe:
5b:06:58:c9:38:6e:08:fc:4f:44:48:cd:3a:a4:f7:
bd:1e:a2:e2:95:b8:be:51:20:c5:bf:b2:70:63:5d:
78:0c:43:c0:29:cd:64:49:09:96:da:af:ce:fd:05:
5f:2b:2a:91:e8:01:6e:2e:18:9b:2c:9c:d0:01:7f:
69:f5:ee:3f:53:88:5c:ba:05:6c:be:22:15:67:14:
82:f2:2c:d2:be:5b:63:37:cc:af:60:85:e8:96:6b:
6b:80:08:a8:6e:be:00:9c:6b:95:70:fc:e4:18:12:
b1:1d:1b:b2:c1:13:31:67:33:34:e6:25:c9:62:5b:
58:82:75:76:f2:fe:f2:3f:3b:16:df:aa:42:83:e3:
32:6d:9b:8e:43:26:f0:bd:0e:1f:a1:a7:3a:af:2c:
c8:8a:e6:ea:3f:f9:a5:d2:25:8f:92:aa:1a:08:12:
9c:fe:ac:4a:c7:c3:eb:80:94:ab:87:16:d1:23:49:
e7:a4:bb:c7:91:df:e6:79:34:3f:41:4a:a7:3a:26:
d2:ea:6f:46:e3:38:73:e6:e5:d4:91:ae:0b:78:9e:
78:a5:ef:96:e3:73:d8:f7:95:65:e9:05:bf:4f:5c:
ff:52:a7:f9:cf:08:af:a7:4d:09:99:c0:71:a3:52:
7a:a5:3b:d7:9b:01:54:03:e3:b6:62:b0:5a:27:9c:
30:26:8e:b6:4d:56:a1:17:17:7a:7b:95:a1:07:ac:
53:31:b6:d6:2e:0f:cd:41:74:ec:f1:01:b2:fd:45:
bf:fc:31:e1:46:42:31:36:43:1e:b9:aa:05:5f:84:
7f:91:b1:8b:ae:0f:d7:54:c3:fd:f0:64:08:6a:d3:
9c:8e:ea:79:34:ec:03:3d:73:e0:1b:36:d4:68:11:
c7:59:70:b0:87:7c:c0:dc:6e:45:ca:36:ce:43:26:
77:02:a9:70:0d:e8:b8:57:54:44:42:c3:fb:ac:1b:
63:26:08:c2:d2:23:1f:7f:93:0b:7c:6f:08:54:9a:
2b:4e:5d:ce:9f:a5:3e:d2:98:5b:d1:02:db:f1:83:
ce:30:52:48:38:63:f1:b1:fb:ed:23:d3:3e:92:b5:
27:8d:d0:42:73:d7:9d:23:68:71:ba:59:5e:07:52:
a6:96:4d:bf:7c:4e:6f:74:22:05:c0:53:80:16:d8:
60:4e:97:31:4f:89:4e:48:63:d8:ed:f9:e5:c2:d9:
0e:b2:0b:f6:69:4c:bd:4b:01:c9:cb:dd:06:bf:3a:
02:eb:1c:dd:30:8b:0d:4a:14:60:f9:d5:64:4f:43:
44:a1:ed
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
B5:76:0C:30:11:CE:C7:92:42:4D:4C:C7:5C:2C:C8:A9:0C:E8:0B:64
X509v3 Authority Key Identifier:
keyid:E5:9D:59:30:82:47:58:CC:AC:FA:08:54:36:86:7B:3A:B5:04:4D:F0
X509v3 Key Usage: critical
Digital Signature, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
Authority Information Access:
OCSP - URI:http://ocsp.digicert.com
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl3.digicert.com/Omniroot2025.crl
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
Policy: 2.23.140.1.2.2
Policy: 1.3.6.1.4.1.311.42.1
Signature Algorithm: sha256WithRSAEncryption
9f:2b:be:92:67:5b:da:7b:8a:ad:e8:ff:9d:4d:05:0e:ed:b6:
0d:15:41:d1:e6:15:dc:03:60:f9:f4:22:56:9c:48:f9:9d:ae:
da:2b:3c:a8:c0:ab:d0:ba:95:b8:c8:c1:fd:7c:63:71:b6:c8:
7a:88:9b:30:46:a3:8e:7d:96:02:e3:f8:22:04:ef:e0:36:c0:
6f:c2:bf:2e:0d:6e:ed:d6:76:28:0d:81:87:3e:9b:e7:a7:10:
8c:da:66:1f:40:51:ea:e7:be:bf:4e:67:98:bb:54:59:63:6f:
42:e3:0f:31:60:19:64:00:0f:26:0c:97:d1:84:c0:a6:7a:19:
3b:70:de:45:26:dc:96:46:3d:9c:66:3f:e1:3a:82:38:e5:36:
03:04:28:57:a4:e9:4b:64:a2:18:88:6d:60:89:8d:7a:be:10:
91:8b:ac:e6:3f:31:30:bf:eb:64:d7:9e:8d:e9:c1:92:56:6e:
38:8d:34:3f:ae:cd:6c:6b:42:52:62:3c:d4:69:89:e0:a0:57:
59:0b:83:9f:c6:72:24:42:f5:08:03:84:ce:16:63:f3:34:f1:
05:76:37:19:b2:06:de:13:3e:13:70:61:d3:04:f2:b8:47:6f:
05:e3:8a:88:30:2b:47:45:5e:79:54:c5:f9:dd:eb:fa:3f:78:
51:75:d2:5b
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List
Related Certificates
- Microsoft Azure TLS Issuing CA 01 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 02 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 05 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 05,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 06 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 06,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft ECC Product Root Certificate Authority 2018.crt: CN=Microsoft ECC Product Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft ECC TS Root Certificate Authority 2018.crt: CN=Microsoft ECC TS Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- microsoft identity verification root certificate authority 2020.crt: CN=Microsoft Identity Verification Root Certificate Authority 2020,O=Microsoft Corporation,C=US (Expiring: 2045-04-16)
- Microsoft Public RSA Timestamping CA 2020.crt: CN=Microsoft Public RSA Timestamping CA 2020,O=Microsoft Corporation,C=US (Expiring: 2035-11-19)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft RSA TLS CA 02.crt: CN=Microsoft RSA TLS CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-10-08)
- MicRooCerAut_2010-06-23.crt: CN=Microsoft Root Certificate Authority 2010,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2035-06-23)
- MicRooCerAut2011_2011_03_22.crt: CN=Microsoft Root Certificate Authority 2011,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2036-03-22)
- Microsoft Time Stamp Root Certificate Authority 2014.crt: CN=Microsoft Time Stamp Root Certificate Authority 2014,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2039-10-22)