DigiCertSecureSiteProCNCAG3.crt: CN=DigiCert Secure Site Pro CN CA G3,O=DigiCert Inc,C=US (Intermediate Certificate, Expiring 2030-03-13) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://cacerts.digicert.cn/DigiCertSecureSiteProCNCAG3.crt" --output cert.crt

Download certificate through wget:

wget -q "http://cacerts.digicert.cn/DigiCertSecureSiteProCNCAG3.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            05:1f:0c:7e:dd:c8:8d:ba:f0:0c:50:e2:85:f4:22:65
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root CA
        Validity
            Not Before: Mar 13 12:00:48 2020 GMT
            Not After : Mar 13 12:00:48 2030 GMT
        Subject: C=US, O=DigiCert Inc, CN=DigiCert Secure Site Pro CN CA G3
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:ba:83:ea:d5:db:cc:8a:51:60:dc:e8:ce:72:db:
                    1f:0c:fe:72:17:5b:ae:e0:50:27:cd:3f:1a:a7:55:
                    95:df:f1:b4:8b:e2:db:22:04:d1:a3:d9:fd:ac:16:
                    0f:bc:9c:df:9d:e9:5f:d7:8d:ca:c0:ad:60:ca:fe:
                    b8:b9:6a:1f:14:94:dc:38:0c:87:e1:dd:64:6d:f0:
                    6a:6f:ab:19:b3:b6:23:a9:79:b6:3c:49:28:fe:41:
                    4b:2b:06:a3:19:cb:d9:99:ce:34:a4:e2:0c:eb:b9:
                    44:be:49:ac:3d:f9:47:ae:30:e8:55:86:17:1f:83:
                    b0:a5:bf:7b:75:a7:47:cd:0d:0c:7f:89:58:51:73:
                    c2:2f:db:cc:71:61:1c:9e:a0:b1:a7:80:89:6a:8c:
                    ba:70:b2:c5:b7:a3:b4:79:cf:72:60:ec:ec:c7:1a:
                    d1:df:2d:6f:bb:ea:b3:c2:9b:1f:01:23:30:c4:df:
                    13:c9:4b:19:82:f6:ac:7c:b7:ab:fb:92:7c:c5:26:
                    8a:7a:e3:af:84:d3:81:5a:07:86:18:c0:04:0d:32:
                    e5:fd:05:17:c4:b8:48:d0:43:07:d1:9b:52:b4:e8:
                    2f:89:ee:5f:d0:2d:b8:2e:b9:8f:eb:bf:71:0e:88:
                    fd:3d:53:77:29:2c:e6:c7:91:2a:21:5a:98:2b:4c:
                    c6:8d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                7B:A3:FA:FF:F5:D5:09:5D:1E:F9:2A:FF:85:53:ED:AF:47:A8:D7:7A
            X509v3 Authority Key Identifier: 
                keyid:03:DE:50:35:56:D1:4C:BB:66:F0:A3:E2:1B:1B:C3:97:B2:3D:D1:55

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.cn

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.digicert.cn/DigiCertGlobalRootCA.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.digicert.com/CPS
                  User Notice:
                    Explicit Text: Any use of this Certificate constitutes acceptance of the Relying Party Agreement located at https://www.digicert.com/rpa-ua

    Signature Algorithm: sha256WithRSAEncryption
         85:30:fe:84:c6:ce:2e:c0:12:0b:95:5d:f2:08:e8:35:f5:3d:
         06:87:26:35:5c:52:c7:26:41:bf:ce:06:26:76:81:59:73:83:
         74:23:b3:48:b8:c2:84:66:47:1a:39:cd:77:5a:de:90:91:2e:
         86:a4:c3:b7:69:99:17:61:37:e5:f7:3a:43:b7:07:6a:4a:92:
         f8:de:79:02:c5:df:a7:c4:1d:40:dc:df:bd:0f:f6:6c:c2:83:
         94:78:18:b4:14:8f:df:84:a4:e1:e0:1f:2c:75:1a:15:05:84:
         49:12:17:9f:e4:9d:0b:46:cb:17:ad:24:62:63:19:88:4d:d5:
         f6:37:6c:c2:70:82:fa:ff:5e:d8:5d:db:36:05:3c:6f:7c:21:
         c3:58:65:a7:9c:0c:ac:e2:2d:16:e5:c7:20:43:96:ed:9c:f1:
         d5:5b:78:44:64:23:bd:9d:ba:c0:3a:5e:2c:c1:dc:85:4d:5d:
         50:d1:45:06:ff:06:51:61:91:24:14:a7:69:7c:13:a3:09:60:
         c3:ac:aa:35:48:65:75:43:2b:3c:eb:2f:7a:f8:08:2a:6c:30:
         7d:d6:67:67:c4:8a:f5:32:e4:ed:1c:69:ff:43:56:04:db:1f:
         4e:49:36:f6:7f:69:34:02:b8:45:c4:57:5c:8c:a4:df:2c:b7:
         b0:1b:5c:43

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06