Microsoft RSA TLS CA 02.crt: CN=Microsoft RSA TLS CA 02,O=Microsoft Corporation,C=US (Intermediate Certificate, Expiring 2024-10-08) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is intermediate certificate used for the issuance of other certificates.
- Certificate Download URL: http://www.microsoft.com/pki/mscorp/Microsoft%20RSA%20TLS%20CA%2002.crt (in DER format )
- Serial Number : 20806976318031376403207041668542712378
- SHA-1 Fingerprint : b0c2d2d13cdd56cdaa6ab6e2c04440be4a429c75
- SHA-1 Fingerprint : b0:c2:d2:d1:3c:dd:56:cd:aa:6a:b6:e2:c0:44:40:be:4a:42:9c:75
- SHA-256 Fingerprint : 05e4005db0c382f3bd66b47729e9011577601bf6f7b287e9a52ced710d258346
- SHA-256 Fingerprint : 05:e4:00:5d:b0:c3:82:f3:bd:66:b4:77:29:e9:01:15:77:60:1b:f6:f7:b2:87:e9:a5:2c:ed:71:0d:25:83:46
- Signature Hash Algorithm : sha256
- Subject
: CN=Microsoft RSA TLS CA 02,O=Microsoft Corporation,C=US
- Country Name: US (United States of America)
- Organization: Microsoft Corporation
- Common Name: Microsoft RSA TLS CA 02
- Not Valid Before: 2020-07-21 23:00:00
- Not Valid After: 2024-10-08 07:00:00
- Issuer (Parent Certificate):
- Issuer Name: CN=Baltimore CyberTrust Root,OU=CyberTrust,O=Baltimore,C=IE
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Not Revoked
- Certificate Policy (CP) URL: https://www.microsoft.com/pki/mscorp/cps/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS%20Ver%202.12%20February%202023.pdf
- Certificate Practice Statement (CPS) URL: https://www.microsoft.com/pki/mscorp/cps/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS/Microsoft%20DSR%20PKI%20CP-CPS%20for%20TLS%20Ver%202.12%20February%202023.pdf
- Auditor: BDO International Limited
- Standard Audit URL: https://bugzilla.mozilla.org/attachment.cgi?id=9294461
- Standard Audit Period Start Date: 2021.07.01
- Standard Audit Period End Date: 2022.06.30
- Standard Audit Statement Date: 2022.08.29
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: http://crl.microsoft.com/pki/mscorp/crl/Microsoft%20RSA%20TLS%20CA%2002.crl
- Check its issuer’s audit information: CN=Baltimore CyberTrust Root,OU=CyberTrust,O=Baltimore,C=IE .
Download certificate through curl
:
curl -sSL "http://www.microsoft.com/pki/mscorp/Microsoft%20RSA%20TLS%20CA%2002.crt" --output cert.crt
Download certificate through wget
:
wget -q "http://www.microsoft.com/pki/mscorp/Microsoft%20RSA%20TLS%20CA%2002.crt" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
0f:a7:47:22:c5:3d:88:c8:0f:58:9e:fb:1f:9d:4a:3a
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=IE, O=Baltimore, OU=CyberTrust, CN=Baltimore CyberTrust Root
Validity
Not Before: Jul 21 23:00:00 2020 GMT
Not After : Oct 8 07:00:00 2024 GMT
Subject: C=US, O=Microsoft Corporation, CN=Microsoft RSA TLS CA 02
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (4096 bit)
Modulus:
00:f4:c0:19:59:aa:2a:24:7c:06:21:31:d1:ee:12:
f5:81:6a:94:e3:f6:d1:4a:2f:e3:5d:b1:2e:29:14:
38:bc:cc:95:5d:29:07:d1:f8:5d:37:f4:20:d7:b4:
3f:58:3a:7a:92:ee:8f:3c:fa:2b:0a:72:03:9e:40:
d4:eb:8b:8e:f6:98:f9:e7:f0:dd:ef:3c:25:f4:6c:
33:84:56:4f:a7:91:93:48:04:0d:f3:02:9b:c6:1a:
0f:f8:d1:38:6f:ef:c9:00:97:18:9b:32:2a:6c:29:
a8:5d:6e:ea:07:07:23:81:e1:99:58:a2:d7:01:85:
ff:ce:6d:47:fa:e6:40:91:7d:73:11:42:a3:8a:5a:
46:4b:92:29:4f:3e:7d:f3:91:83:39:18:7c:5e:23:
83:0d:67:54:a8:28:11:28:1d:ad:84:fe:e0:f0:05:
05:71:69:d6:38:49:16:56:17:13:1d:ec:04:72:23:
80:b3:d6:29:38:37:66:7a:00:b0:f7:31:f8:c0:80:
41:03:c2:89:27:cb:0f:53:1a:fa:f8:3e:e6:c0:65:
da:94:e7:5d:73:34:b0:68:6a:f6:ab:d8:e0:15:4e:
5d:13:75:d8:fe:44:08:5b:9d:7d:7f:cf:2a:6a:93:
e8:9f:bf:e7:77:0a:08:83:6b:c3:1b:be:8d:6e:d9:
0f:27:b9:40:6b:29:55:26:47:a1:23:91:5f:dd:0e:
b2:2c:51:a5:3a:e3:7b:ff:5a:9f:ee:13:bc:4b:0d:
d8:42:e6:ba:65:2b:db:22:36:56:28:84:c4:cc:28:
b0:24:8f:15:5e:58:15:9b:42:3e:d1:12:27:24:21:
2a:5c:fb:2a:30:8b:7c:94:ac:ee:65:0a:03:40:2a:
b0:8d:63:0f:b0:01:f0:2f:84:59:0e:7a:a3:e6:ea:
43:f8:d4:81:d5:5d:5b:46:34:2f:d4:a2:07:1d:88:
a5:22:47:f3:79:f4:87:d8:07:ea:36:bf:9e:06:31:
6f:ae:6d:20:b7:06:88:4b:15:b8:68:fe:86:59:e5:
7c:ae:94:86:4a:ef:9a:70:4c:79:9a:b8:22:1e:13:
97:25:53:d8:af:a4:bc:0f:4f:1f:5b:d1:59:e8:f7:
e0:29:12:5a:c5:81:d6:34:fd:82:99:e3:a1:9f:8c:
e0:bd:b5:ae:06:db:95:49:d5:62:ac:32:65:8b:b7:
3c:ab:7e:0c:1b:62:8a:6a:b9:97:7b:db:87:c5:76:
9b:ec:c5:f2:2f:30:6e:66:dd:51:64:4e:13:aa:ce:
c3:ad:b4:37:14:7f:23:13:a8:cd:a9:6a:7e:2d:c4:
6e:7c:bb:13:49:d0:c8:d1:d3:75:02:11:42:d1:53:
ea:8c:9f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
FF:2F:7F:E1:06:F4:38:F3:2D:ED:25:8D:98:C2:FE:0E:F6:6C:FC:FA
X509v3 Authority Key Identifier:
keyid:E5:9D:59:30:82:47:58:CC:AC:FA:08:54:36:86:7B:3A:B5:04:4D:F0
X509v3 Key Usage: critical
Digital Signature, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
Authority Information Access:
OCSP - URI:http://ocsp.digicert.com
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl3.digicert.com/Omniroot2025.crl
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
Policy: 2.23.140.1.2.2
Policy: 1.3.6.1.4.1.311.42.1
Signature Algorithm: sha256WithRSAEncryption
a0:d9:dd:7a:e5:d4:35:b4:74:b4:20:df:37:b8:e8:b8:4b:98:
5e:2e:1b:31:fb:35:c8:3b:0b:71:9e:fc:02:59:d3:89:df:01:
4b:41:a1:43:72:06:8c:b4:de:fd:52:33:08:15:52:14:79:d0:
d9:06:cb:da:94:a9:f1:fb:a9:76:b4:cf:d5:1f:86:00:c8:d3:
f1:fa:ed:4b:15:1d:23:a0:f6:29:41:82:db:35:89:1e:76:43:
6e:85:19:84:05:eb:0f:aa:3e:1a:0f:3e:bc:64:32:3a:7c:9f:
76:b2:3d:aa:d7:c4:2f:25:42:79:43:3e:f6:f0:0b:ed:14:e6:
ad:f8:08:e0:2b:43:c5:a8:f6:04:02:f8:94:2a:bd:7a:d8:d0:
75:5d:92:71:7f:ab:b2:22:35:25:9c:6e:14:11:d1:df:52:a7:
61:97:44:7c:e2:63:2d:ad:82:0d:92:c4:f3:43:6b:07:60:cf:
1f:12:1a:88:0a:d4:e5:71:12:eb:fc:51:2b:51:a3:d4:7b:de:
b8:f2:7c:e2:4a:70:34:a8:a1:fb:ad:46:6a:3f:f2:1f:99:ba:
3e:58:d6:52:64:6d:41:6e:03:a1:96:4f:b9:db:55:be:35:c8:
a1:dc:74:5b:bd:10:44:d0:b5:98:4f:cb:d6:2a:77:e3:81:92:
b1:c0:7c:09
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List
Related Certificates
- Microsoft Azure TLS Issuing CA 01 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 02 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 02,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 05 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 05,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft Azure TLS Issuing CA 06 - xsign.crt: CN=Microsoft Azure TLS Issuing CA 06,O=Microsoft Corporation,C=US (Expiring: 2024-06-27)
- Microsoft ECC Product Root Certificate Authority 2018.crt: CN=Microsoft ECC Product Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft ECC Root Certificate Authority 2017.crt: CN=Microsoft ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft ECC TS Root Certificate Authority 2018.crt: CN=Microsoft ECC TS Root Certificate Authority 2018,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2043-02-27)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV ECC Root Certificate Authority 2017.crt: CN=Microsoft EV ECC Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft EV RSA Root Certificate Authority 2017.crt: CN=Microsoft EV RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- microsoft identity verification root certificate authority 2020.crt: CN=Microsoft Identity Verification Root Certificate Authority 2020,O=Microsoft Corporation,C=US (Expiring: 2045-04-16)
- Microsoft Public RSA Timestamping CA 2020.crt: CN=Microsoft Public RSA Timestamping CA 2020,O=Microsoft Corporation,C=US (Expiring: 2035-11-19)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,C=US (Expiring: 2042-07-18)
- Microsoft RSA Root Certificate Authority 2017.crt: CN=Microsoft RSA Root Certificate Authority 2017,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2042-07-26)
- Microsoft RSA TLS CA 01.crt: CN=Microsoft RSA TLS CA 01,O=Microsoft Corporation,C=US (Expiring: 2024-10-08)
- MicRooCerAut_2010-06-23.crt: CN=Microsoft Root Certificate Authority 2010,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2035-06-23)
- MicRooCerAut2011_2011_03_22.crt: CN=Microsoft Root Certificate Authority 2011,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2036-03-22)
- Microsoft Time Stamp Root Certificate Authority 2014.crt: CN=Microsoft Time Stamp Root Certificate Authority 2014,O=Microsoft Corporation,L=Redmond,ST=Washington,C=US (Expiring: 2039-10-22)