DigiCertBaltimoreTLSRSASHA2562020CA1.crt: CN=DigiCert Baltimore TLS RSA SHA256 2020 CA1,O=DigiCert Inc,C=US (Intermediate Certificate, Expiring 2025-05-11) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://cacerts.digicert.com/DigiCertBaltimoreTLSRSASHA2562020CA1.crt" --output cert.crt

Download certificate through wget:

wget -q "https://cacerts.digicert.com/DigiCertBaltimoreTLSRSASHA2562020CA1.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0a:81:fd:93:82:c2:a4:d7:46:f0:f8:68:1f:2a:3b:40
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=IE, O=Baltimore, OU=CyberTrust, CN=Baltimore CyberTrust Root
        Validity
            Not Before: Sep 24 00:00:00 2020 GMT
            Not After : May 11 23:59:59 2025 GMT
        Subject: C=US, O=DigiCert Inc, CN=DigiCert Baltimore TLS RSA SHA256 2020 CA1
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:c0:4d:d4:72:15:03:d5:97:07:c8:79:1f:eb:1d:
                    e3:63:03:e8:14:05:bd:22:23:28:49:26:bd:e2:dd:
                    34:08:3c:6f:fb:55:89:b1:e7:51:d1:5d:4d:e0:37:
                    a9:66:48:44:0e:fa:d3:40:1a:77:e0:2e:ff:24:8b:
                    1b:d9:a2:55:e2:e0:ba:42:bb:68:f3:53:6c:9e:74:
                    21:b2:bd:fa:b6:04:ef:76:21:e3:53:95:58:f4:2d:
                    36:05:3a:e8:15:25:3d:6b:05:16:a4:7a:0f:18:d2:
                    bc:f8:ce:a2:0c:29:6d:b6:fb:8a:6d:63:1d:15:5e:
                    c7:27:a0:84:dd:db:d9:d9:7b:f8:1a:8c:d2:a2:dd:
                    57:bd:9d:69:d0:18:bd:53:6d:8f:0f:b9:5a:14:46:
                    a4:22:b9:2e:a7:de:c4:21:e8:2e:16:70:64:ef:1a:
                    af:d4:5b:b7:a6:e9:90:6e:14:39:fb:21:c1:8c:53:
                    e8:7e:1e:1f:df:61:8a:d7:e0:76:96:14:99:98:e1:
                    bc:fa:36:b7:60:6c:a1:43:54:22:fb:4f:c7:c1:c2:
                    e7:a1:14:fd:ba:46:b1:04:25:6b:01:1e:b3:91:bd:
                    17:ad:84:5e:28:26:7e:f0:b0:5f:5f:58:9c:8d:3f:
                    ff:0d:2f:31:b0:de:16:0a:49:cf:cf:aa:e7:62:3f:
                    67:3d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                F2:56:9B:07:86:07:99:53:7E:12:2C:F8:7D:2F:E6:D5:26:D8:93:54
            X509v3 Authority Key Identifier: 
                keyid:E5:9D:59:30:82:47:58:CC:AC:FA:08:54:36:86:7B:3A:B5:04:4D:F0

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com
                CA Issuers - URI:http://cacerts.digicert.com/BaltimoreCyberTrustRoot.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/Omniroot2025.crl

                Full Name:
                  URI:http://crl4.digicert.com/Omniroot2025.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.1
                Policy: 2.23.140.1.2.1
                Policy: 2.23.140.1.2.2
                Policy: 2.23.140.1.2.3

    Signature Algorithm: sha256WithRSAEncryption
         33:79:50:38:a0:30:11:98:f5:4a:6b:c2:b5:8f:8c:42:50:ba:
         98:78:31:69:6f:a0:2e:e3:a4:0d:72:c3:e8:45:b6:35:e7:58:
         59:19:79:01:5c:1c:f8:5c:eb:69:8c:d1:b7:78:dd:d0:b8:e6:
         c9:79:4f:a4:21:95:6c:d1:03:94:c3:6d:ca:98:dc:3f:f9:bb:
         42:68:64:77:67:9f:5c:81:45:58:ec:0a:6b:97:37:68:17:1b:
         58:94:3b:e5:1e:45:d4:78:75:15:89:4a:43:f0:4c:9d:9c:40:
         3f:49:32:7b:20:e1:f6:5d:40:0d:bb:34:7b:4d:8d:5c:ea:23:
         02:24:12:16:c4:a0:f9:28:3d:46:ae:aa:7a:26:d2:70:cb:aa:
         20:be:01:89:66:95:7a:cb:21:9a:06:d6:3d:dc:46:e5:88:c1:
         40:68:99:42:94:7f:d3:40:0d:fc:ce:39:52:5a:0a:56:0f:cc:
         01:bb:9d:a5:07:b7:55:b0:21:a7:bc:1c:d7:25:8a:14:89:6d:
         a2:d1:cf:75:4d:80:19:28:d4:d9:ab:9a:f8:33:7f:08:61:16:
         fb:2b:43:d2:65:0f:b4:e6:56:89:ea:d5:ef:00:f9:e0:37:37:
         6f:77:f9:7b:bd:28:e0:17:3a:e6:6b:b5:0b:22:d5:8f:a7:de:
         c4:e1:69:98

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIE4DCCA8igAwIBAgIQCoH9k4LCpNdG8PhoHyo7QDANBgkqhkiG9w0BAQsFADBa
MQswCQYDVQQGEwJJRTESMBAGA1UEChMJQmFsdGltb3JlMRMwEQYDVQQLEwpDeWJl
clRydXN0MSIwIAYDVQQDExlCYWx0aW1vcmUgQ3liZXJUcnVzdCBSb290MB4XDTIw
MDkyNDAwMDAwMFoXDTI1MDUxMTIzNTk1OVowWTELMAkGA1UEBhMCVVMxFTATBgNV
BAoTDERpZ2lDZXJ0IEluYzEzMDEGA1UEAxMqRGlnaUNlcnQgQmFsdGltb3JlIFRM
UyBSU0EgU0hBMjU2IDIwMjAgQ0ExMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
CgKCAQEAwE3UchUD1ZcHyHkf6x3jYwPoFAW9IiMoSSa94t00CDxv+1WJsedR0V1N
4DepZkhEDvrTQBp34C7/JIsb2aJV4uC6Qrto81NsnnQhsr36tgTvdiHjU5VY9C02
BTroFSU9awUWpHoPGNK8+M6iDClttvuKbWMdFV7HJ6CE3dvZ2Xv4GozSot1XvZ1p
0Bi9U22PD7laFEakIrkup97EIeguFnBk7xqv1Fu3pumQbhQ5+yHBjFPofh4f32GK
1+B2lhSZmOG8+ja3YGyhQ1Qi+0/HwcLnoRT9ukaxBCVrAR6zkb0XrYReKCZ+8LBf
X1icjT//DS8xsN4WCknPz6rnYj9nPQIDAQABo4IBoTCCAZ0wHQYDVR0OBBYEFPJW
mweGB5lTfhIs+H0v5tUm2JNUMB8GA1UdIwQYMBaAFOWdWTCCR1jMrPoIVDaGezq1
BE3wMA4GA1UdDwEB/wQEAwIBhjAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUH
AwIwEgYDVR0TAQH/BAgwBgEB/wIBADB5BggrBgEFBQcBAQRtMGswJAYIKwYBBQUH
MAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTBDBggrBgEFBQcwAoY3aHR0cDov
L2NhY2VydHMuZGlnaWNlcnQuY29tL0JhbHRpbW9yZUN5YmVyVHJ1c3RSb290LmNy
dDBrBgNVHR8EZDBiMC+gLaArhilodHRwOi8vY3JsMy5kaWdpY2VydC5jb20vT21u
aXJvb3QyMDI1LmNybDAvoC2gK4YpaHR0cDovL2NybDQuZGlnaWNlcnQuY29tL09t
bmlyb290MjAyNS5jcmwwMAYDVR0gBCkwJzAHBgVngQwBATAIBgZngQwBAgEwCAYG
Z4EMAQICMAgGBmeBDAECAzANBgkqhkiG9w0BAQsFAAOCAQEAM3lQOKAwEZj1SmvC
tY+MQlC6mHgxaW+gLuOkDXLD6EW2NedYWRl5AVwc+FzraYzRt3jd0LjmyXlPpCGV
bNEDlMNtypjcP/m7Qmhkd2efXIFFWOwKa5c3aBcbWJQ75R5F1Hh1FYlKQ/BMnZxA
P0kyeyDh9l1ADbs0e02NXOojAiQSFsSg+Sg9Rq6qeibScMuqIL4BiWaVesshmgbW
PdxG5YjBQGiZQpR/00AN/M45UloKVg/MAbudpQe3VbAhp7wc1yWKFIltotHPdU2A
GSjU2aua+DN/CGEW+ytD0mUPtOZWierV7wD54Dc3b3f5e70o4Bc65mu1CyLVj6fe
xOFpmA==
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06