hraca.cer: CN=HRA SubCA,OU=Rigel,O=Cisco (Intermediate Certificate, Expiring 2035-04-17) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://www.cisco.com/security/pki/certs/hraca.cer" --output cert.crt

Download certificate through wget:

wget -q "http://www.cisco.com/security/pki/certs/hraca.cer" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            07:c6:19:e7:a1:b0:9a:88:d3
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: OU=Castor, O=Cisco, CN=Virtual Office Root CA
        Validity
            Not Before: Apr 19 16:50:34 2018 GMT
            Not After : Apr 17 16:17:47 2035 GMT
        Subject: O=Cisco, OU=Rigel, CN=HRA SubCA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:f1:06:60:c4:75:18:1f:5b:f4:6f:ce:b3:44:21:
                    b9:b9:82:9a:27:8a:bd:5c:f6:21:4a:d5:69:2d:61:
                    e0:5f:90:f7:e8:20:81:45:ec:b2:64:ea:51:d7:65:
                    41:4a:d6:27:7b:9c:09:f9:f4:bd:02:66:e4:ad:6f:
                    a4:d6:f3:58:55:5c:0a:d4:eb:8c:72:83:1e:e8:d9:
                    3e:04:0b:95:aa:77:2c:26:e7:e0:e5:cb:b1:83:db:
                    32:77:f8:39:41:97:fb:0e:01:a2:6a:40:65:e6:a0:
                    c5:41:e2:06:5c:a6:4d:74:93:e9:b7:e5:3c:28:81:
                    17:ff:2a:d3:c5:19:dd:c0:84:16:06:58:f8:d2:64:
                    bd:cc:75:d2:eb:2b:86:e2:ef:ae:d1:8e:ae:fe:cd:
                    0d:0c:f4:c0:d4:20:75:68:81:91:5a:fa:e9:a7:f0:
                    ad:0b:17:24:12:0c:63:b6:d6:a7:35:ae:65:8e:b1:
                    4e:0f:fe:66:f4:95:08:dc:76:c7:9c:97:8d:63:a4:
                    32:c8:9b:5d:32:25:9e:c1:63:60:bd:79:fb:3f:82:
                    83:56:fe:2a:29:65:94:03:96:7f:a7:4e:6d:79:c0:
                    85:de:69:f0:d5:a1:c4:2d:88:0e:57:49:64:cf:c2:
                    eb:3f:fe:5e:38:b5:2b:98:b6:15:0e:d6:85:c6:7b:
                    93:fd
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                CA Issuers - URI:http://www.cisco.com/security/pki/certs/vorca.cer
                OCSP - URI:http://pkicvs.cisco.com/pki/ocsp

            X509v3 Authority Key Identifier: 
                keyid:E2:CB:FB:8C:78:5D:E2:13:7A:97:7F:78:47:3E:FE:D0:8A:34:29:65

            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.9.21.1.40.0
                  CPS: http://www.cisco.com/security/pki/policies/

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://www.cisco.com/security/pki/crl/vorca.crl

            X509v3 Subject Key Identifier: 
                E7:65:7F:55:B7:F6:D8:A9:5B:94:19:96:49:E4:14:7B:BE:3F:E2:45
    Signature Algorithm: sha256WithRSAEncryption
         c2:c2:52:e0:b1:01:b7:79:ab:ce:8e:b3:a9:5b:be:36:c1:dc:
         f2:77:e7:8a:54:91:1d:ec:3f:5b:7c:91:89:7b:7b:47:ac:55:
         28:77:4b:e5:53:68:42:6d:ff:45:df:11:7e:65:23:51:c6:af:
         a3:8a:5e:7e:9b:6b:d5:b8:b8:3c:7c:0e:d2:aa:e1:a5:28:c4:
         7b:af:4d:da:6d:da:5c:86:ad:73:9b:74:23:b2:61:7a:34:fb:
         c7:ae:f6:0d:dd:9d:07:ef:5b:13:7e:de:a2:26:22:2f:4e:bb:
         60:17:de:6d:f1:21:60:48:a8:bc:6b:39:24:3c:7f:38:95:5f:
         80:92:c0:30:e0:1c:e4:c4:d5:fb:a9:5a:3c:02:d7:d3:5a:92:
         37:eb:19:29:f8:32:fa:8e:da:a6:e6:a9:dd:9e:bc:46:2d:bc:
         bf:35:0d:6e:e3:75:3d:f7:e8:bf:17:c2:b4:f4:2c:9a:00:c6:
         11:4b:7a:22:10:92:77:20:b3:11:05:94:35:45:b8:65:72:5a:
         95:1d:bb:92:ed:ed:f3:42:79:e3:57:53:bc:6e:ac:d7:e5:06:
         53:43:11:c9:29:4b:88:68:bd:de:b4:4c:53:a7:8f:42:6d:19:
         a5:e4:52:f9:b5:4c:d8:c7:48:76:c1:39:65:9e:4b:a9:62:43:
         af:89:54:1d

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIEdjCCA16gAwIBAgIJB8YZ56GwmojTMA0GCSqGSIb3DQEBCwUAMEIxDzANBgNV
BAsTBkNhc3RvcjEOMAwGA1UEChMFQ2lzY28xHzAdBgNVBAMTFlZpcnR1YWwgT2Zm
aWNlIFJvb3QgQ0EwHhcNMTgwNDE5MTY1MDM0WhcNMzUwNDE3MTYxNzQ3WjA0MQ4w
DAYDVQQKDAVDaXNjbzEOMAwGA1UECwwFUmlnZWwxEjAQBgNVBAMMCUhSQSBTdWJD
QTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAPEGYMR1GB9b9G/Os0Qh
ubmCmieKvVz2IUrVaS1h4F+Q9+gggUXssmTqUddlQUrWJ3ucCfn0vQJm5K1vpNbz
WFVcCtTrjHKDHujZPgQLlap3LCbn4OXLsYPbMnf4OUGX+w4BompAZeagxUHiBlym
TXST6bflPCiBF/8q08UZ3cCEFgZY+NJkvcx10usrhuLvrtGOrv7NDQz0wNQgdWiB
kVr66afwrQsXJBIMY7bWpzWuZY6xTg/+ZvSVCNx2x5yXjWOkMsibXTIlnsFjYL15
+z+Cg1b+KilllAOWf6dObXnAhd5p8NWhxC2IDldJZM/C6z/+Xji1K5i2FQ7WhcZ7
k/0CAwEAAaOCAXswggF3MA4GA1UdDwEB/wQEAwIBBjASBgNVHRMBAf8ECDAGAQH/
AgEAMHsGCCsGAQUFBwEBBG8wbTA9BggrBgEFBQcwAoYxaHR0cDovL3d3dy5jaXNj
by5jb20vc2VjdXJpdHkvcGtpL2NlcnRzL3ZvcmNhLmNlcjAsBggrBgEFBQcwAYYg
aHR0cDovL3BraWN2cy5jaXNjby5jb20vcGtpL29jc3AwHwYDVR0jBBgwFoAU4sv7
jHhd4hN6l394Rz7+0Io0KWUwUgYDVR0gBEswSTBHBgorBgEEAQkVASgAMDkwNwYI
KwYBBQUHAgEWK2h0dHA6Ly93d3cuY2lzY28uY29tL3NlY3VyaXR5L3BraS9wb2xp
Y2llcy8wQAYDVR0fBDkwNzA1oDOgMYYvaHR0cDovL3d3dy5jaXNjby5jb20vc2Vj
dXJpdHkvcGtpL2NybC92b3JjYS5jcmwwHQYDVR0OBBYEFOdlf1W39tipW5QZlknk
FHu+P+JFMA0GCSqGSIb3DQEBCwUAA4IBAQDCwlLgsQG3eavOjrOpW742wdzyd+eK
VJEd7D9bfJGJe3tHrFUod0vlU2hCbf9F3xF+ZSNRxq+jil5+m2vVuLg8fA7SquGl
KMR7r03abdpchq1zm3QjsmF6NPvHrvYN3Z0H71sTft6iJiIvTrtgF95t8SFgSKi8
azkkPH84lV+AksAw4BzkxNX7qVo8AtfTWpI36xkp+DL6jtqm5qndnrxGLby/NQ1u
43U99+i/F8K09CyaAMYRS3oiEJJ3ILMRBZQ1RbhlclqVHbuS7e3zQnnjV1O8bqzX
5QZTQxHJKUuIaL3etExTp49CbRml5FL5tUzYx0h2wTllnkupYkOviVQd
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06