D-Trust.HBA-CA3.crt: CN=D-Trust.HBA-CA3,OU=Heilberufsausweis-CA der Telematikinfrastruktur,O=D-TRUST GmbH,C=DE (Intermediate Certificate, Expiring 2026-08-15) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-Trust.HBA-CA3.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-Trust.HBA-CA3.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 13 (0xd)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=DE, O=gematik GmbH, OU=Zentrale Root-CA der Telematikinfrastruktur, CN=GEM.RCA2
        Validity
            Not Before: Aug 17 07:29:03 2018 GMT
            Not After : Aug 15 07:29:02 2026 GMT
        Subject: C=DE, O=D-TRUST GmbH, OU=Heilberufsausweis-CA der Telematikinfrastruktur, CN=D-Trust.HBA-CA3
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:bd:06:16:5b:3d:08:5a:6b:8c:d1:fc:0f:8c:77:
                    19:c7:e9:ce:f5:9a:2f:d3:09:74:19:9a:00:56:31:
                    a0:a6:27:d7:f3:f1:a8:a3:c8:19:9a:f8:b7:34:31:
                    bf:0c:4a:0c:b4:3b:ad:d7:58:8e:9a:16:4a:79:cc:
                    8f:20:a7:c4:d4:e8:07:3a:57:f1:a3:37:15:0e:d5:
                    8b:d8:fc:62:4d:68:a7:5b:6a:d0:48:2e:6b:c3:2f:
                    24:f1:ad:6d:a7:2d:9c:7b:c1:45:db:35:82:e7:0a:
                    16:67:f7:fa:40:e5:8c:55:d9:96:c6:ac:9c:90:af:
                    da:13:88:3f:43:79:e0:b6:3f:4d:1a:72:b2:60:08:
                    a2:e9:a4:47:eb:12:a3:b3:76:1f:f3:e0:8b:ea:70:
                    c0:28:29:89:96:8e:7a:8b:c2:59:65:7d:ec:d1:d7:
                    48:9f:f5:b1:2b:c6:47:6e:c4:cd:b5:10:ca:b9:1d:
                    29:90:97:97:bd:25:1d:ff:93:7c:79:97:13:80:65:
                    9a:69:1d:b0:6c:ab:fd:3d:f8:00:1b:ce:74:7e:fb:
                    bc:17:6b:7f:90:c4:58:d9:00:61:15:ce:81:be:77:
                    01:2e:07:0a:08:13:d7:7f:08:86:af:91:33:24:db:
                    80:dc:30:a9:fa:d0:1e:f4:c9:63:b6:d8:58:f0:4e:
                    63:21
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                14:DE:D5:FD:38:94:4B:38:93:83:35:EC:66:8D:71:72:74:7E:5A:7D
            X509v3 Authority Key Identifier: 
                keyid:EC:5C:18:E0:13:B4:43:6C:09:8C:DF:FA:3C:3C:5B:7E:4B:70:84:46

            Authority Information Access: 
                OCSP - URI:http://ocsp.root-ca.ti-dienste.de/ocsp

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Certificate Policies: 
                Policy: 1.2.276.0.76.4.145

    Signature Algorithm: sha256WithRSAEncryption
         aa:d3:9b:a4:17:b1:d1:19:cd:7b:12:eb:6f:01:38:d2:5a:14:
         16:b5:84:01:53:79:b8:be:79:61:fa:ab:62:56:ec:c4:42:c7:
         02:7d:5f:02:45:27:ce:0e:ef:0e:30:a7:85:c8:74:f8:b3:3c:
         92:a3:b2:ac:8f:46:50:f1:db:16:9c:75:68:c6:6d:c8:fe:52:
         10:9f:aa:98:ca:2b:32:ad:6a:c7:ad:57:9e:e9:4d:72:76:01:
         75:51:1f:ec:fe:7a:4f:9f:4b:87:66:5a:2b:c5:5d:ff:73:9b:
         e6:db:0c:ab:86:f9:6c:39:b8:0f:91:e6:f3:62:6a:38:08:de:
         db:d1:a2:6f:d1:72:e6:d8:b0:01:9c:93:63:a5:d6:ad:39:3f:
         32:8a:f6:5f:87:0f:45:97:1c:0a:47:8d:af:6c:2e:8a:99:5a:
         d6:82:ad:28:d6:01:9d:a5:9c:3f:e9:14:12:68:72:2a:76:68:
         36:60:27:33:3a:3a:71:f1:94:c3:ad:25:35:bc:b1:f7:a3:3a:
         08:b4:8c:2e:d4:c2:6c:e4:5c:e8:03:04:62:b2:b6:00:ec:d1:
         a1:96:db:e4:69:15:0b:5d:b0:06:aa:b6:dc:a6:3a:eb:2a:84:
         ce:d1:13:5e:07:47:31:d9:bb:08:74:85:5a:b7:2c:6c:32:98:
         07:ec:6e:c1

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIEIzCCAwugAwIBAgIBDTANBgkqhkiG9w0BAQsFADBtMQswCQYDVQQGEwJERTEV
MBMGA1UECgwMZ2VtYXRpayBHbWJIMTQwMgYDVQQLDCtaZW50cmFsZSBSb290LUNB
IGRlciBUZWxlbWF0aWtpbmZyYXN0cnVrdHVyMREwDwYDVQQDDAhHRU0uUkNBMjAe
Fw0xODA4MTcwNzI5MDNaFw0yNjA4MTUwNzI5MDJaMHgxCzAJBgNVBAYTAkRFMRUw
EwYDVQQKDAxELVRSVVNUIEdtYkgxODA2BgNVBAsML0hlaWxiZXJ1ZnNhdXN3ZWlz
LUNBIGRlciBUZWxlbWF0aWtpbmZyYXN0cnVrdHVyMRgwFgYDVQQDDA9ELVRydXN0
LkhCQS1DQTMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC9BhZbPQha
a4zR/A+MdxnH6c71mi/TCXQZmgBWMaCmJ9fz8aijyBma+Lc0Mb8MSgy0O63XWI6a
Fkp5zI8gp8TU6Ac6V/GjNxUO1YvY/GJNaKdbatBILmvDLyTxrW2nLZx7wUXbNYLn
ChZn9/pA5YxV2ZbGrJyQr9oTiD9DeeC2P00acrJgCKLppEfrEqOzdh/z4IvqcMAo
KYmWjnqLwlllfezR10if9bErxkduxM21EMq5HSmQl5e9JR3/k3x5lxOAZZppHbBs
q/09+AAbznR++7wXa3+QxFjZAGEVzoG+dwEuBwoIE9d/CIavkTMk24DcMKn60B70
yWO22FjwTmMhAgMBAAGjgcIwgb8wHQYDVR0OBBYEFBTe1f04lEs4k4M17GaNcXJ0
flp9MB8GA1UdIwQYMBaAFOxcGOATtENsCYzf+jw8W35LcIRGMEIGCCsGAQUFBwEB
BDYwNDAyBggrBgEFBQcwAYYmaHR0cDovL29jc3Aucm9vdC1jYS50aS1kaWVuc3Rl
LmRlL29jc3AwEgYDVR0TAQH/BAgwBgEB/wIBADAOBgNVHQ8BAf8EBAMCAQYwFQYD
VR0gBA4wDDAKBggqghQATASBETANBgkqhkiG9w0BAQsFAAOCAQEAqtObpBex0RnN
exLrbwE40loUFrWEAVN5uL55YfqrYlbsxELHAn1fAkUnzg7vDjCnhch0+LM8kqOy
rI9GUPHbFpx1aMZtyP5SEJ+qmMorMq1qx61XnulNcnYBdVEf7P56T59Lh2ZaK8Vd
/3Ob5tsMq4b5bDm4D5Hm82JqOAje29Gib9Fy5tiwAZyTY6XWrTk/Mor2X4cPRZcc
CkeNr2wuipla1oKtKNYBnaWcP+kUEmhyKnZoNmAnMzo6cfGUw60lNbyx96M6CLSM
LtTCbORc6AMEYrK2AOzRoZbb5GkVC12wBqq23KY66yqEztETXgdHMdm7CHSFWrcs
bDKYB+xuwQ==
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06