GRCA2.cer: O=Government Root Certification Authority,C=TW (Root Certificate, Expiring 2037-12-31) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is root certificate used for the issuance of other certificates.
- Certificate Download URL: https://grca.nat.gov.tw/repository/Certs/GRCA2.cer (in DER format )
- Serial Number : 242311676529535087410177483576864842226
- SHA-1 Fingerprint : b091aa913847f313d727bcefc8179f086f3a8c0f
- SHA-1 Fingerprint : b0:91:aa:91:38:47:f3:13:d7:27:bc:ef:c8:17:9f:08:6f:3a:8c:0f
- SHA-256 Fingerprint : 70b922bfda0e3f4a342e4ee22d579ae598d071cc5ec9c30f123680340388aea5
- SHA-256 Fingerprint : 70:b9:22:bf:da:0e:3f:4a:34:2e:4e:e2:2d:57:9a:e5:98:d0:71:cc:5e:c9:c3:0f:12:36:80:34:03:88:ae:a5
- Signature Hash Algorithm : sha256
- Subject
: O=Government Root Certification Authority,C=TW
- Country Name: TW (Taiwan (Province of China))
- Organization: Government Root Certification Authority
- Not Valid Before: 2012-09-28 08:58:51
- Not Valid After: 2037-12-31 15:59:59
- Issuer (Parent Certificate):
- Issuer Name: O=Government Root Certification Authority,C=TW
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Root Certificate
- Certificate Policy (CP) URL: http://grca.nat.gov.tw/download/GPKI_CP_eng_v2.0.pdf
- Certificate Practice Statement (CPS) URL: http://grca.nat.gov.tw/download/GRCA_CPS_eng_v2.0.pdf
- Auditor: KPMG
- Standard Audit URL: https://www.cpacanada.ca/generichandlers/CPACHandler.ashx?attachmentid=c0947c94-8434-451d-a2cc-9249d7718338
- Standard Audit Period Start Date: 2019.04.01
- Standard Audit Period End Date: 2020.03.31
- Standard Audit Statement Date: 2020.05.25
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: Unknown
Download certificate through curl
:
curl -sSL "https://grca.nat.gov.tw/repository/Certs/GRCA2.cer" --output cert.crt
Download certificate through wget
:
wget -q "https://grca.nat.gov.tw/repository/Certs/GRCA2.cer" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
b6:4b:88:07:e2:23:ee:c8:5c:12:ad:a6:0e:06:a1:f2
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=TW, O=Government Root Certification Authority
Validity
Not Before: Sep 28 08:58:51 2012 GMT
Not After : Dec 31 15:59:59 2037 GMT
Subject: C=TW, O=Government Root Certification Authority
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (4096 bit)
Modulus:
00:b6:ff:97:3c:81:be:01:58:24:27:af:8e:01:2b:
d6:72:92:30:32:1b:5f:9b:7c:d4:d4:7f:e8:a1:60:
73:30:57:10:00:fa:50:96:24:fe:50:e6:8c:3a:95:
d1:57:79:84:d5:67:53:0c:2a:82:3e:18:5c:b8:30:
26:1a:d6:5e:c6:2d:b2:04:51:0e:ef:df:0c:63:47:
eb:c4:12:08:51:2b:99:71:5e:d5:69:7b:e1:5d:c9:
77:1d:20:ec:56:8e:e5:61:60:2d:fc:e9:1c:80:df:
fa:6a:83:bb:05:b5:1e:23:12:9c:82:ca:0a:f3:14:
1d:20:e4:06:8f:43:24:99:9f:b6:0a:93:5a:73:1b:
16:39:be:05:b6:f1:8c:a5:64:92:8f:05:e4:5c:76:
f7:39:c3:cf:2d:bd:0e:d8:cb:a8:0e:31:9b:c9:46:
0f:67:53:43:04:8f:c8:b2:c8:83:80:5f:ba:f2:0f:
ab:81:35:a2:20:21:97:ce:0f:89:34:78:0f:cf:1f:
4e:e9:fb:8c:28:3c:de:34:e7:ed:9f:d2:66:f5:c5:
ca:31:78:d2:ce:50:d1:60:82:63:9d:e0:4c:f7:07:
ae:83:34:9d:49:49:43:d4:7e:bd:2d:e2:ea:c7:71:
65:80:08:e4:36:9e:79:70:0a:3c:87:29:e9:e4:92:
94:ea:06:92:29:27:78:e6:ad:d7:3d:e9:0a:0b:5e:
f4:e0:d6:86:9d:2d:72:cb:8b:64:56:e6:f4:ae:78:
a5:a0:39:33:58:3c:dc:a8:8f:8d:b4:6a:2d:fd:88:
73:e9:95:50:73:04:df:11:88:3e:42:d6:02:74:fb:
2c:c4:6f:bc:6c:d6:e0:80:6f:d1:86:a5:32:57:03:
d6:4d:f4:4e:0a:99:22:76:7e:4a:40:82:f8:c9:e4:
4e:cb:53:2d:c7:b1:b6:e2:d3:c2:75:27:6e:b9:0e:
71:b2:34:fc:bf:1c:4e:c2:3d:f8:36:e9:0a:cc:58:
9a:a1:18:86:4e:e2:e1:aa:b3:73:59:6e:5e:9d:b4:
c2:08:af:af:5c:fd:a4:02:6f:ff:b8:0d:bb:d5:ab:
d7:6e:9f:1a:4f:91:40:f0:1f:46:55:6d:a0:92:c3:
89:cd:b7:b1:ff:1c:b3:cb:a3:9c:0a:e3:fe:cd:aa:
bc:01:ec:dd:54:ca:91:dd:4f:13:87:a4:f6:98:ef:
fd:49:d6:57:2a:3c:a6:5c:f6:60:37:bf:d8:3e:7e:
4e:68:2a:23:32:3a:be:6e:e4:22:3d:07:24:cf:8a:
cb:9b:5d:51:b3:30:d2:71:6d:ce:46:8a:6d:7c:4a:
33:44:da:12:2f:36:4b:f2:e9:f1:51:09:6d:db:6a:
97:0e:17
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Subject Key Identifier:
D5:67:1D:E0:9C:7A:2C:9C:CB:C5:98:E7:1D:07:26:2A:86:EC:74:CD
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
Signature Algorithm: sha256WithRSAEncryption
90:3b:e5:c2:53:42:28:ea:f5:31:4e:8e:3d:91:9e:4d:09:f3:
d8:b1:52:e6:4f:ac:0c:31:21:bb:f1:ea:99:cc:83:fc:b6:28:
e4:ec:84:07:0e:0f:4e:97:bb:6f:68:46:8f:0e:51:15:95:f8:
3a:3b:1f:5f:82:0e:0c:71:0e:bc:91:4f:ae:33:2e:23:41:f4:
26:6b:4f:13:87:fa:78:f6:2e:c2:0f:91:05:97:aa:6a:c1:6a:
9f:bc:84:9e:08:2a:27:dd:da:87:17:86:e1:b3:ca:5d:ed:38:
a9:29:6e:84:de:46:6b:fc:27:19:50:a5:12:7a:8c:7d:62:fc:
da:e7:cc:bc:9f:49:af:06:b8:27:27:f2:89:f7:16:3d:18:e6:
bd:de:f5:8c:12:91:9f:e3:04:8d:fe:07:14:1a:5a:ac:39:82:
1b:f1:38:19:e1:63:e3:af:6c:b6:a6:51:17:eb:fa:4b:eb:8b:
22:f6:97:fe:10:3a:5f:94:a0:4b:53:71:3f:5a:e1:10:f8:72:
8f:96:80:dd:8d:02:98:00:61:3d:8d:bc:2d:b1:47:cc:da:5d:
e1:20:a7:8c:31:5c:f1:e3:da:b9:0a:86:47:c8:a1:3d:07:a3:
3c:a6:73:6e:94:91:ed:6e:24:3a:f9:c9:30:d1:07:a8:81:7d:
26:7d:7d:84:df:86:c9:8b:e5:ae:0d:1e:be:89:48:51:15:83:
98:96:2f:4a:eb:73:34:d7:74:cd:c9:6f:d0:c2:ba:2b:f6:9a:
fe:99:dd:60:14:8e:1b:f9:9c:39:3c:7f:43:89:53:e8:e5:c2:
ab:be:22:ad:27:38:9b:77:28:b7:a3:63:63:a7:81:e7:a9:69:
45:eb:8e:78:56:cc:05:84:c7:fb:ad:b6:30:7c:63:05:9f:2d:
8c:24:7f:4b:8b:92:fc:38:1e:9f:a0:a5:57:b3:6e:9d:d8:64:
b8:70:9a:60:52:70:c8:a9:d0:ff:c6:9c:ed:10:61:5e:cd:83:
0e:6e:e8:4d:02:41:4a:e2:76:04:79:d6:54:3f:8a:98:32:14:
a0:dd:2d:9c:e7:ba:82:71:a3:86:55:29:99:d2:29:db:75:3a:
f7:db:43:ff:b6:5b:fb:b7:7e:35:80:8e:0d:6c:ae:79:b7:36:
2d:97:52:a1:b0:07:9c:07:e5:2b:36:cd:03:97:94:bd:2d:0e:
34:06:fc:c0:16:89:fc:37:54:e4:d6:cf:3d:13:04:f2:91:d9:
c9:36:2e:3e:c5:5a:d0:a5:4c:82:c3:ff:2e:7c:26:76:f7:f3:
fd:45:a2:a5:6e:55:ae:2e:cc:cf:2c:89:34:da:f6:0d:e7:91:
a8:10:ea:17:9d:f2:f6:ec
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List
Related Certificates
- GRCA1_to_GRCA1_5.cer: CN=Government Root Certification Authority - G1.5,O=行政院,C=TW (Expiring: 2020-07-19)
- GRCA3.cer: CN=Government Root Certification Authority - G3,O=行政院,C=TW (Expiring: 2049-12-31)
- GTLSCA.crt: CN=政府伺服器數位憑證管理中心 - G1,O=行政院,C=TW (Expiring: 2031-08-19)
- GRCA.cer: O=Government Root Certification Authority,C=TW (Expiring: 2032-12-05)
- GRCA1_5_to_GRCA2.cer: O=Government Root Certification Authority,C=TW (Expiring: 2020-07-19)