Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Root Certificate, Expiring 2042-07-18) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is root certificate used for the issuance of other certificates.
- Certificate Download URL: http://www.microsoft.com/pkiops/certs/Microsoft%20ECC%20Root%20Certificate%20Authority%202017.crt (in DER format )
- Serial Number : 136839042543790627607696632466672567020
- SHA-1 Fingerprint : 999a64c37ff47d9fab95f14769891460eec4c3c5
- SHA-1 Fingerprint : 99:9a:64:c3:7f:f4:7d:9f:ab:95:f1:47:69:89:14:60:ee:c4:c3:c5
- SHA-256 Fingerprint : 358df39d764af9e1b766e9c972df352ee15cfac227af6ad1d70e8e4a6edcba02
- SHA-256 Fingerprint : 35:8d:f3:9d:76:4a:f9:e1:b7:66:e9:c9:72:df:35:2e:e1:5c:fa:c2:27:af:6a:d1:d7:0e:8e:4a:6e:dc:ba:02
- Signature Hash Algorithm : sha384
- Subject
: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US
- Country Name: US (United States of America)
- Organization: Microsoft Corporation
- Common Name: Microsoft ECC Root Certificate Authority 2017
- Not Valid Before: 2019-12-18 23:06:45
- Not Valid After: 2042-07-18 23:16:04
- Issuer (Parent Certificate):
- Issuer Name: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Root Certificate
- Certificate Policy (CP) URL: https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CP_v3.1.6.pdf https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CP_v3.1.5.pdf https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CP_v3.1.4.pdf https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CP_v3.1.2.pdf
- Certificate Practice Statement (CPS) URL: https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CPS_v3.2.2.pdf https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CPS_v3.2.1.pdf https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CPS_v3.2.0.pdf https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CPS_v3.1.9.pdf
- Auditor: BDO International Limited
- Standard Audit URL: https://www.cpacanada.ca/generichandlers/CPACHandler.ashx?attachmentid=fc6f34ea-9248-4ffe-a94b-9e870afae5b7
- Standard Audit Period Start Date: 2021.05.01
- Standard Audit Period End Date: 2022.04.30
- Standard Audit Statement Date: 2022.06.17
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Root%20Certificate%20Authority%202017.crl
Download certificate through curl
:
curl -sSL "http://www.microsoft.com/pkiops/certs/Microsoft%20ECC%20Root%20Certificate%20Authority%202017.crt" --output cert.crt
Download certificate through wget
:
wget -q "http://www.microsoft.com/pkiops/certs/Microsoft%20ECC%20Root%20Certificate%20Authority%202017.crt" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
66:f2:3d:af:87:de:8b:b1:4a:ea:0c:57:31:01:c2:ec
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Microsoft Corporation, CN=Microsoft ECC Root Certificate Authority 2017
Validity
Not Before: Dec 18 23:06:45 2019 GMT
Not After : Jul 18 23:16:04 2042 GMT
Subject: C=US, O=Microsoft Corporation, CN=Microsoft ECC Root Certificate Authority 2017
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:d4:bc:3d:02:42:75:41:13:23:cd:80:04:86:02:
51:2f:6a:a8:81:62:0b:65:cc:f6:ca:9d:1e:6f:4a:
66:51:a2:03:d9:9d:91:fa:b6:16:b1:8c:6e:de:7c:
cd:db:79:a6:2f:ce:bb:ce:71:2f:e5:a5:ab:28:ec:
63:04:66:99:f8:fa:f2:93:10:05:e1:81:28:42:e3:
c6:68:f4:e6:1b:84:60:4a:89:af:ed:79:0f:3b:ce:
f1:f6:44:f5:01:78:c0
ASN1 OID: secp384r1
NIST CURVE: P-384
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Subject Key Identifier:
C8:CB:99:72:70:52:0C:F8:E6:BE:B2:04:57:29:2A:CF:42:10:ED:35
1.3.6.1.4.1.311.21.1:
...
Signature Algorithm: ecdsa-with-SHA384
30:65:02:30:58:f2:4d:ea:0c:f9:5f:5e:ee:60:29:cb:3a:f2:
db:d6:32:84:19:3f:7c:d5:2f:c2:b1:cc:93:ae:50:bb:09:32:
c6:c6:ed:7e:c9:36:94:12:e4:68:85:06:a2:1b:d0:2f:02:31:
00:99:e9:16:b4:0e:fa:56:48:d4:a4:30:16:91:78:db:54:8c:
65:01:8a:e7:50:66:c2:31:b7:39:ba:b8:1a:22:07:4e:fc:6b:
54:16:20:ff:2b:b5:e7:4c:0c:4d:a6:4f:73
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List
Related Certificates
- Microsoft Azure TLS Issuing CA 01 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 02 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 05 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 05,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 06 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 06,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft ECC Product Root Certificate Authority 2018.crt: CN=Microsoft ECC Product Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft ECC TS Root Certificate Authority 2018.crt: CN=Microsoft ECC TS Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- microsoft identity verification root certificate authority 2020.crt: CN=Microsoft Identity Verification Root Certificate Authority 2020,O=Microsoft Corporation,C=US (Expiring: 2045-04-16)
- Microsoft Public RSA Timestamping CA 2020.crt: CN=Microsoft Public RSA Timestamping CA 2020,O=Microsoft Corporation,C=US (Expiring: 2035-11-19)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft RSA TLS CA 01.crt: CN=Microsoft RSA TLS CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-10-08)
- Microsoft RSA TLS CA 02.crt: CN=Microsoft RSA TLS CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-10-08)
- MicRooCerAut_2010-06-23.crt: CN=Microsoft Root Certificate Authority 2010,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2035-06-23)
- MicRooCerAut2011_2011_03_22.crt: CN=Microsoft Root Certificate Authority 2011,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2036-03-22)
- Microsoft Time Stamp Root Certificate Authority 2014.crt: CN=Microsoft Time Stamp Root Certificate Authority 2014,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2039-10-22)