D-TRUST_CA_3-21-1_2021.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 3-21-1 2021,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2036-02-17) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_3-21-1_2021.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_3-21-1_2021.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            69:f4:c9:58:0f:58:0f:63:14:88:b9:63:23:71:e7:2e
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 3 2021
        Validity
            Not Before: Apr 27 08:25:59 2021 GMT
            Not After : Feb 17 10:14:59 2036 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 3-21-1 2021/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:b4:b7:99:a5:17:c2:e3:f0:e6:ac:c7:37:95:fb:
                    e3:e4:d5:25:f5:a1:52:6b:5a:17:23:8e:f1:b3:6b:
                    61:6a:3b:5f:81:1f:65:5c:88:17:ba:59:3f:c6:cf:
                    76:a7:8a:46:f0:ae:52:be:65:65:b8:4f:bd:9d:2f:
                    41:e9:c1:72:33:80:56:fb:ae:2e:85:74:84:d4:20:
                    84:7c:99:5f:60:d0:3f:f8:b4:e8:95:af:9a:c5:01:
                    f4:1b:a0:87:6b:ac:6a:05:b3:6c:a9:02:d6:b4:fd:
                    da:a4:52:c2:15:26:81:15:c8:6f:4e:d0:b0:10:fa:
                    b1:8d:8a:3a:0d:4b:02:fb:dc:81:34:4f:83:61:15:
                    47:4f:29:a6:d0:71:18:76:ce:40:bd:f0:ea:49:f4:
                    6a:2a:b3:03:46:29:e9:81:9f:13:7a:5f:8d:6e:64:
                    8b:5d:7c:f3:05:83:7b:02:7b:b3:bf:31:51:82:94:
                    57:ec:99:8e:18:1d:f2:f8:d4:d7:8d:fe:df:4e:e0:
                    c3:39:81:95:21:a2:f4:6d:ab:b1:a8:5f:7b:07:3b:
                    4d:8f:5d:67:3b:0f:da:98:cf:ac:3e:5e:38:0d:e4:
                    ef:fa:95:25:df:6f:16:04:41:73:af:e4:e8:5d:32:
                    80:a2:6e:6c:e0:5e:b8:36:77:67:0f:0b:23:82:8b:
                    96:a3:74:83:93:4e:96:2c:32:01:aa:c8:5d:75:94:
                    3a:e0:4d:c2:64:fc:40:35:45:2f:9f:f4:29:67:a1:
                    18:2a:78:44:28:1c:08:9d:0c:63:2c:f7:63:43:63:
                    90:3d:e9:a2:ed:b5:29:4e:35:16:eb:d2:24:5d:61:
                    58:57:b1:04:59:12:c9:33:f2:0c:bd:5f:3d:a3:12:
                    79:44:8a:50:32:d5:d4:7b:1b:b5:1e:fd:60:f0:94:
                    4c:7e:a1:f5:cd:ec:65:cf:30:cc:2c:fa:b7:80:97:
                    ac:e8:c0:98:69:ae:ff:7f:fe:0b:6c:5a:fb:19:2d:
                    44:b9:69:ce:52:70:a7:8a:97:78:e6:5a:8b:06:04:
                    b1:21:16:b3:94:fb:e7:7c:1d:87:ac:d8:e1:0c:8c:
                    be:87:1b:ed:4c:b4:24:1c:63:29:40:a3:28:09:df:
                    1c:dc:3b:31:5c:ae:f6:80:ee:38:40:c1:fc:34:77:
                    b0:b4:de:a0:29:b5:f0:36:12:30:08:65:38:67:b9:
                    37:1c:73:c3:78:8c:ec:c0:5d:f6:97:a7:ee:fb:cf:
                    51:77:b8:25:42:78:7a:30:57:0d:38:d2:9f:4e:04:
                    8b:c8:56:dd:18:41:26:66:d1:cc:ae:17:43:40:8e:
                    53:03:3e:57:b6:d1:47:18:aa:3e:b1:ef:6a:ff:4c:
                    af:dd:8d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:B1:A7:5F:73:08:2D:F8:0B:6E:2D:51:34:79:0A:C6:1F:E1:90:46:50

            Authority Information Access: 
                OCSP - URI:http://root-ca-3-2021.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_3_2021.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.2
                Policy: 1.3.6.1.4.1.4788.2.150.1
                  CPS: https://www.d-trust.net/internet/files/D-TRUST_TSPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_3_2021.crl

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%203%202021,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

            X509v3 Subject Key Identifier: 
                59:BD:97:D9:75:41:15:30:F7:4B:95:79:4D:5A:56:03:27:0F:0A:E0
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)

         60:c5:5b:27:dd:48:f9:b1:10:ea:7c:08:cc:98:1f:0d:34:d9:
         ef:1a:55:0a:ff:c0:21:d9:a3:a8:95:4b:31:7b:ab:8d:58:66:
         12:fc:63:eb:c4:6d:8c:d3:36:41:d6:19:60:2d:12:c1:26:4c:
         9e:ed:ad:88:6e:47:3f:e3:1d:35:79:ec:73:48:ad:f7:9f:94:
         d2:b3:e9:64:51:44:6a:73:5f:b7:68:68:81:35:49:7c:89:6d:
         3f:46:f2:16:c3:10:90:2a:22:72:40:31:97:a6:2e:ad:a3:2b:
         f3:e8:3c:a0:01:75:5a:89:48:c4:d4:82:c2:99:67:af:bb:90:
         6b:c7:4a:19:74:7f:07:d7:60:c7:d2:a3:81:d5:19:f7:08:98:
         22:53:4d:3c:37:e1:36:a8:23:de:d6:71:72:bb:46:56:1b:b7:
         16:7e:ab:49:86:95:2f:e6:84:8e:3f:8b:04:08:8a:48:0b:31:
         cf:9a:34:b4:8e:7f:c0:a8:90:ac:9d:d3:7d:a2:02:f7:34:8d:
         88:76:b0:9d:45:29:39:f0:85:81:d8:9b:58:36:02:c5:d6:35:
         2b:34:9a:eb:40:76:f2:aa:4c:39:19:34:ae:27:cc:6e:86:dd:
         4b:8e:46:b0:55:de:72:14:4d:24:24:69:0e:40:aa:a8:b6:b4:
         a8:44:f6:a1:cc:da:f5:0a:92:be:08:c2:bb:b8:a7:c3:62:45:
         8a:ea:2b:c5:54:3f:f8:3c:0b:a3:f0:af:ea:82:8d:4c:93:ff:
         42:ce:8f:c6:c1:cf:b3:2f:c4:a9:31:8b:9f:e0:20:34:61:bf:
         92:b7:d1:fd:2c:c4:91:c0:ab:c4:8a:b7:53:4d:40:b8:e1:53:
         8e:13:42:66:35:5b:12:8d:57:6d:38:f0:ab:b4:ad:df:3b:f5:
         d9:6a:98:cb:47:65:db:b8:f0:6c:26:9d:93:88:86:d9:22:45:
         65:d0:36:1e:b7:a9:ea:5f:7f:51:ff:fd:64:e3:21:9e:c3:87:
         12:1a:52:f1:ed:45:2a:a5:87:c8:46:2e:03:31:d5:0c:89:20:
         d9:da:b8:50:6b:a9:c4:ff:23:11:79:10:71:16:fa:a7:c8:b2:
         c6:eb:b1:a9:85:ca:b6:8b:20:2d:23:21:f6:cf:16:aa:b2:62:
         13:6f:bb:2f:72:bc:87:a0:ce:5f:0a:bc:e4:43:6b:7d:a8:3e:
         7b:da:d7:37:97:4c:8e:23:9c:d5:a3:7f:2c:bb:27:bc:39:84:
         36:63:a5:f8:f0:13:ba:1b:0c:f8:e5:a8:58:f6:06:82:c0:6e:
         f5:41:1e:84:68:09:48:3f:a6:78:96:74:1c:63:c4:0d:ec:e5:
         08:cd:d9:c3:cc:1b:08:58

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIHsDCCBWigAwIBAgIQafTJWA9YD2MUiLljI3HnLjA9BgkqhkiG9w0BAQowMKAN
MAsGCWCGSAFlAwQCA6EaMBgGCSqGSIb3DQEBCDALBglghkgBZQMEAgOiAwIBQDBF
MQswCQYDVQQGEwJERTEVMBMGA1UEChMMRC1UcnVzdCBHbWJIMR8wHQYDVQQDExZE
LVRSVVNUIFJvb3QgQ0EgMyAyMDIxMB4XDTIxMDQyNzA4MjU1OVoXDTM2MDIxNzEw
MTQ1OVowXjELMAkGA1UEBhMCREUxFTATBgNVBAoTDEQtVHJ1c3QgR21iSDEfMB0G
A1UEAxMWRC1UUlVTVCBDQSAzLTIxLTEgMjAyMTEXMBUGA1UEYRMOTlRSREUtSFJC
NzQzNDYwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQC0t5mlF8Lj8Oas
xzeV++Pk1SX1oVJrWhcjjvGza2FqO1+BH2VciBe6WT/Gz3anikbwrlK+ZWW4T72d
L0HpwXIzgFb7ri6FdITUIIR8mV9g0D/4tOiVr5rFAfQboIdrrGoFs2ypAta0/dqk
UsIVJoEVyG9O0LAQ+rGNijoNSwL73IE0T4NhFUdPKabQcRh2zkC98OpJ9GoqswNG
KemBnxN6X41uZItdfPMFg3sCe7O/MVGClFfsmY4YHfL41NeN/t9O4MM5gZUhovRt
q7GoX3sHO02PXWc7D9qYz6w+XjgN5O/6lSXfbxYEQXOv5OhdMoCibmzgXrg2d2cP
CyOCi5ajdIOTTpYsMgGqyF11lDrgTcJk/EA1RS+f9ClnoRgqeEQoHAidDGMs92ND
Y5A96aLttSlONRbr0iRdYVhXsQRZEskz8gy9Xz2jEnlEilAy1dR7G7Ue/WDwlEx+
ofXN7GXPMMws+reAl6zowJhprv9//gtsWvsZLUS5ac5ScKeKl3jmWosGBLEhFrOU
++d8HYes2OEMjL6HG+1MtCQcYylAoygJ3xzcOzFcrvaA7jhAwfw0d7C03qAptfA2
EjAIZThnuTccc8N4jOzAXfaXp+77z1F3uCVCeHowVw040p9OBIvIVt0YQSZm0cyu
F0NAjlMDPle20UcYqj6x72r/TK/djQIDAQABo4ICITCCAh0wHwYDVR0jBBgwFoAU
sadfcwgt+AtuLVE0eQrGH+GQRlAwgYkGCCsGAQUFBwEBBH0wezAyBggrBgEFBQcw
AYYmaHR0cDovL3Jvb3QtY2EtMy0yMDIxLm9jc3AuZC10cnVzdC5uZXQwRQYIKwYB
BQUHMAKGOWh0dHA6Ly93d3cuZC10cnVzdC5uZXQvY2dpLWJpbi9ELVRSVVNUX1Jv
b3RfQ0FfM18yMDIxLmNydDBqBgNVHSAEYzBhMAkGBwQAi+xAAQIwVAYLKwYBBAGl
NAKBFgEwRTBDBggrBgEFBQcCARY3aHR0cHM6Ly93d3cuZC10cnVzdC5uZXQvaW50
ZXJuZXQvZmlsZXMvRC1UUlVTVF9UU1BTLnBkZjCBvgYDVR0fBIG2MIGzMDugOaA3
hjVodHRwOi8vY3JsLmQtdHJ1c3QubmV0L2NybC9kLXRydXN0X3Jvb3RfY2FfM18y
MDIxLmNybDB0oHKgcIZubGRhcDovL2RpcmVjdG9yeS5kLXRydXN0Lm5ldC9DTj1E
LVRSVVNUJTIwUm9vdCUyMENBJTIwMyUyMDIwMjEsTz1ELVRydXN0JTIwR21iSCxD
PURFP2NlcnRpZmljYXRlcmV2b2NhdGlvbmxpc3QwHQYDVR0OBBYEFFm9l9l1QRUw
90uVeU1aVgMnDwrgMA4GA1UdDwEB/wQEAwIBBjASBgNVHRMBAf8ECDAGAQH/AgEA
MD0GCSqGSIb3DQEBCjAwoA0wCwYJYIZIAWUDBAIDoRowGAYJKoZIhvcNAQEIMAsG
CWCGSAFlAwQCA6IDAgFAA4ICAQBgxVsn3Uj5sRDqfAjMmB8NNNnvGlUK/8Ah2aOo
lUsxe6uNWGYS/GPrxG2M0zZB1hlgLRLBJkye7a2Ibkc/4x01eexzSK33n5TSs+lk
UURqc1+3aGiBNUl8iW0/RvIWwxCQKiJyQDGXpi6toyvz6DygAXVaiUjE1ILCmWev
u5Brx0oZdH8H12DH0qOB1Rn3CJgiU008N+E2qCPe1nFyu0ZWG7cWfqtJhpUv5oSO
P4sECIpICzHPmjS0jn/AqJCsndN9ogL3NI2IdrCdRSk58IWB2JtYNgLF1jUrNJrr
QHbyqkw5GTSuJ8xuht1LjkawVd5yFE0kJGkOQKqotrSoRPahzNr1CpK+CMK7uKfD
YkWK6ivFVD/4PAuj8K/qgo1Mk/9Czo/Gwc+zL8SpMYuf4CA0Yb+St9H9LMSRwKvE
irdTTUC44VOOE0JmNVsSjVdtOPCrtK3fO/XZapjLR2XbuPBsJp2TiIbZIkVl0DYe
t6nqX39R//1k4yGew4cSGlLx7UUqpYfIRi4DMdUMiSDZ2rhQa6nE/yMReRBxFvqn
yLLG67Gphcq2iyAtIyH2zxaqsmITb7svcryHoM5fCrzkQ2t9qD572tc3l0yOI5zV
o38suye8OYQ2Y6X48BO6Gwz45ahY9gaCwG71QR6EaAlIP6Z4lnQcY8QN7OUIzdnD
zBsIWA==
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06