Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Root Certificate, Expiring 2042-07-18) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is root certificate used for the issuance of other certificates.
- Certificate Download URL: http://www.microsoft.com/pkiops/certs/Microsoft%20EV%20RSA%20Root%20Certificate%20Authority%202017.crt (in DER format )
- Serial Number : 102750500317636998650764191197197701919
- SHA-1 Fingerprint : ada06e72393ccbe873648cf122a91c35ef4c984d
- SHA-1 Fingerprint : ad:a0:6e:72:39:3c:cb:e8:73:64:8c:f1:22:a9:1c:35:ef:4c:98:4d
- SHA-256 Fingerprint : 66960242db2ed5906e113295f2454f33d6fb418c4c65e8166d43be64d19ba4fa
- SHA-256 Fingerprint : 66:96:02:42:db:2e:d5:90:6e:11:32:95:f2:45:4f:33:d6:fb:41:8c:4c:65:e8:16:6d:43:be:64:d1:9b:a4:fa
- Signature Hash Algorithm : sha384
- Subject
: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US
- Country Name: US (United States of America)
- Organization: Microsoft Corporation
- Common Name: Microsoft EV RSA Root Certificate Authority 2017
- Not Valid Before: 2019-12-18 21:59:55
- Not Valid After: 2042-07-18 22:09:09
- Issuer (Parent Certificate):
- Issuer Name: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Root Certificate
- Certificate Policy (CP) URL: https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CP_v3.1.3.pdf
- Certificate Practice Statement (CPS) URL: https://www.microsoft.com/pkiops/Docs/Content/policy/Microsoft_PKI_Services_CPS_v3.1.5.pdf
- Auditor: BDO International Limited
- Standard Audit URL: https://www.cpacanada.ca/generichandlers/CPACHandler.ashx?attachmentid=54741c3e-0fb2-4a81-a30f-4d21780ce1f8
- Standard Audit Period Start Date: 2019.05.01
- Standard Audit Period End Date: 2020.04.30
- Standard Audit Statement Date: 2020.06.29
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: Unknown
Download certificate through curl
:
curl -sSL "http://www.microsoft.com/pkiops/certs/Microsoft%20EV%20RSA%20Root%20Certificate%20Authority%202017.crt" --output cert.crt
Download certificate through wget
:
wget -q "http://www.microsoft.com/pkiops/certs/Microsoft%20EV%20RSA%20Root%20Certificate%20Authority%202017.crt" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
4d:4d:06:cb:14:69:09:87:45:54:f8:59:7d:1b:13:1f
Signature Algorithm: sha384WithRSAEncryption
Issuer: C=US, O=Microsoft Corporation, CN=Microsoft EV RSA Root Certificate Authority 2017
Validity
Not Before: Dec 18 21:59:55 2019 GMT
Not After : Jul 18 22:09:09 2042 GMT
Subject: C=US, O=Microsoft Corporation, CN=Microsoft EV RSA Root Certificate Authority 2017
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (4096 bit)
Modulus:
00:a7:04:41:25:bf:e5:be:91:16:41:3f:de:f8:b4:
91:2a:43:3f:a8:8d:0f:fe:c8:9a:18:76:4e:60:28:
b9:f6:c0:71:65:d5:95:94:27:4b:4d:6d:6c:f7:53:
20:d6:a1:e8:c2:80:36:60:b2:4d:34:58:60:27:df:
58:34:9f:ff:ec:de:87:ab:d7:aa:fc:e8:73:69:30:
4f:c4:4e:29:34:0d:7d:44:9d:4a:d3:75:6e:e7:c2:
21:fd:5a:dd:87:a7:2b:4c:ca:f6:78:a4:86:26:02:
ab:8d:dd:89:40:6b:76:e9:f6:b5:da:61:15:87:43:
5d:b5:a3:93:82:47:b1:52:a1:ea:97:ba:c2:05:de:
21:e1:90:7b:27:9c:37:35:02:cb:ff:eb:17:00:87:
96:6c:44:34:fe:e7:b8:50:bb:f9:46:4f:9a:31:8f:
d8:54:5f:46:f0:5e:ca:25:44:35:e4:55:fc:94:64:
49:4d:2d:fe:12:26:f7:7e:72:16:67:98:fe:92:a5:
03:3f:70:59:2c:64:5d:6a:63:9d:91:bf:23:3b:4a:
55:9a:b1:c1:24:25:8d:4e:b0:1f:f5:31:c8:1b:95:
ce:50:cc:4b:d1:2c:64:18:94:d1:28:67:8b:0a:a4:
d9:1b:18:9b:af:aa:47:c6:26:9e:0a:31:35:5a:c6:
39:a3:2c:dd:9b:43:8f:fa:f4:8d:f5:23:c7:07:4f:
89:69:9a:d6:03:6d:d3:63:59:20:e8:33:99:59:b0:
50:29:dc:89:ef:51:54:5a:a8:d8:ee:2c:7d:aa:d9:
89:92:61:b8:ff:aa:4b:0c:bc:53:fb:26:46:dd:51:
9d:3c:5c:60:09:c0:01:6b:59:ad:83:56:5b:53:fb:
a0:ab:26:ad:cc:d9:ff:3e:78:2e:3b:6b:f3:45:c1:
03:e8:c2:93:5c:fe:95:0b:92:5c:8b:9c:b4:b3:dc:
3a:46:ac:00:b8:27:09:0a:3e:35:ee:43:06:ef:1a:
94:08:29:e6:51:f1:e3:2e:fa:44:e3:25:cd:8b:17:
fb:c6:cb:0a:fa:0c:b2:1e:f4:6e:0e:0b:80:3b:e9:
5f:02:89:8b:b7:34:be:24:8e:bc:3d:eb:55:c9:b1:
9d:2b:25:31:ca:fc:f7:2d:e6:6b:01:76:8e:ec:9a:
00:d7:6e:87:3e:bc:12:b8:25:cb:c9:61:0f:85:18:
11:ab:27:83:4c:49:2e:2c:fc:57:b1:c7:e9:c2:07:
ce:eb:b7:b5:c3:dd:96:ef:07:12:d0:de:fe:84:c0:
e7:8e:77:f3:d1:78:b0:36:5e:e4:80:2d:fe:da:ed:
52:05:02:a9:75:b1:83:52:e0:97:f2:9f:17:42:3f:
ee:da:6b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Subject Key Identifier:
41:CA:FF:16:B2:09:4E:DC:24:C8:4B:E4:5C:16:25:99:F8:26:EF:3B
1.3.6.1.4.1.311.21.1:
...
Signature Algorithm: sha384WithRSAEncryption
2d:58:4e:47:f0:82:e5:1d:27:c6:1b:b9:6d:ed:5f:59:82:62:
12:fa:76:d9:81:1f:12:d9:9c:b7:83:dc:55:d9:a8:1c:b3:8b:
57:c5:39:f0:d8:8a:53:ac:01:f4:02:c1:29:90:ff:a3:6a:f8:
77:9d:9e:ad:a5:a9:ae:af:9d:82:3d:0d:98:9e:6a:d6:18:9b:
3b:19:f1:41:44:44:c8:36:27:e6:f8:e9:ae:0b:fa:da:1d:22:
4d:04:42:0c:34:54:e0:3f:29:6c:40:f8:d0:1f:0c:86:58:68:
0f:c4:ae:19:d2:8f:dc:bb:6b:6d:22:9d:e6:f6:3a:16:0d:01:
f8:88:cb:1e:4e:9c:7e:75:1a:c5:75:fb:16:e1:18:c6:7b:42:
a1:7e:12:79:55:ca:3e:db:59:8a:33:ea:44:a2:5b:8e:25:ab:
4a:7d:70:61:6e:fa:95:5e:e0:09:2f:48:a5:29:6a:fe:ee:e9:
9a:51:c3:bc:20:2a:f4:22:a3:46:2d:89:12:8d:5f:84:e4:95:
42:10:4d:c2:17:a4:df:4b:e6:27:2d:15:4d:73:c0:88:26:b2:
f6:b6:14:b0:b9:87:2c:a0:bb:c3:70:1b:b7:2c:40:d3:6b:47:
de:38:8b:22:2f:f5:9d:b0:7b:7c:3f:ec:0f:88:07:c9:9d:53:
8a:a9:39:1f:99:88:fb:ae:cd:96:ba:e6:f3:e7:27:3b:09:69:
ea:39:13:09:16:91:09:7e:ac:ae:dc:d7:af:3b:24:d6:4c:bd:
a8:d9:70:48:a7:4d:3f:10:2a:41:1c:21:b5:0e:94:7c:ff:95:
11:f4:4a:a5:85:c0:92:f6:a6:15:a4:8e:0e:73:e7:a8:e4:8c:
b7:d3:fb:5d:67:66:f4:7d:26:24:1c:c0:32:3f:57:19:9a:13:
51:ae:bd:bf:0d:8b:9a:2f:34:9c:a1:c3:5a:71:96:a0:49:20:
49:cc:25:08:b2:67:43:4a:ec:f0:0c:66:81:c9:32:4e:62:fe:
16:9d:21:7b:1f:29:e4:ca:85:9d:4f:74:95:28:83:5c:06:8e:
ba:24:30:90:7e:7a:1e:9b:30:4a:25:18:3e:4b:4b:f5:93:6f:
9b:08:04:10:bc:2d:ce:ed:1d:77:db:f0:c7:a7:7d:b5:43:a2:
a0:a3:00:89:a8:e0:d0:4f:7d:fd:11:66:51:e7:e3:f7:c2:41:
3d:80:8f:ae:6a:84:74:65:77:ed:f9:be:9b:02:26:f8:64:84:
4c:df:58:79:6b:b0:66:84:d6:ad:d4:bb:06:48:73:c8:29:9d:
25:4d:02:e3:df:da:c0:e6:40:9e:a7:e1:a3:23:d8:1c:27:f5:
0f:de:c9:dd:d2:a7:df:b9
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List
Related Certificates
- Microsoft Azure TLS Issuing CA 01 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 02 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 05 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 05,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 06 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 06,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft ECC Product Root Certificate Authority 2018.crt: CN=Microsoft ECC Product Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft ECC TS Root Certificate Authority 2018.crt: CN=Microsoft ECC TS Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- microsoft identity verification root certificate authority 2020.crt: CN=Microsoft Identity Verification Root Certificate Authority 2020,O=Microsoft Corporation,C=US (Expiring: 2045-04-16)
- Microsoft Public RSA Timestamping CA 2020.crt: CN=Microsoft Public RSA Timestamping CA 2020,O=Microsoft Corporation,C=US (Expiring: 2035-11-19)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft RSA TLS CA 01.crt: CN=Microsoft RSA TLS CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-10-08)
- Microsoft RSA TLS CA 02.crt: CN=Microsoft RSA TLS CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-10-08)
- MicRooCerAut_2010-06-23.crt: CN=Microsoft Root Certificate Authority 2010,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2035-06-23)
- MicRooCerAut2011_2011_03_22.crt: CN=Microsoft Root Certificate Authority 2011,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2036-03-22)
- Microsoft Time Stamp Root Certificate Authority 2014.crt: CN=Microsoft Time Stamp Root Certificate Authority 2014,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2039-10-22)