gtsy1.der: CN=GTS Y1,O=Google Trust Services LLC,C=US (Intermediate Certificate, Expiring 2028-11-01) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://pki.goog/repo/certs/gtsy1.der" --output cert.crt

Download certificate through wget:

wget -q "https://pki.goog/repo/certs/gtsy1.der" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            01:f0:f7:9d:5e:78:27:fb:40:a9:12:b3:10
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R1
        Validity
            Not Before: Nov  1 00:00:42 2018 GMT
            Not After : Nov  1 00:00:42 2028 GMT
        Subject: C=US, O=Google Trust Services LLC, CN=GTS Y1
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:bf:bd:96:29:a0:83:65:34:e7:37:a2:82:e7:28:
                    62:68:36:4b:6b:01:dd:82:ed:b3:22:1a:5e:1e:88:
                    19:05:da:62:6e:e7:bd:f4:f5:3c:57:6e:9a:d7:bf:
                    ff:16:96:c2:1f:30:8b:07:1a:bc:20:39:c0:70:81:
                    81:b4:e9:06:27:e4:1f:1d:c5:28:c3:f8:85:71:c2:
                    c3:42:b8:4d:e1:89:47:97:88:61:10:06:9e:8e:a5:
                    ca:07:2d:d4:f8:d3:76:0d:ef:eb:7d:d0:c1:fd:05:
                    fe:df:c3:19:9d:fa:f1:70:bb:9d:4e:04:bc:22:d5:
                    5b:98:0f:64:0b:ff:30:9c:61:ab:31:b2:ef:0b:b2:
                    a1:26:4e:9a:3e:ca:4d:f2:15:f3:9a:37:c4:1e:7c:
                    f7:63:d3:ba:e1:eb:bd:40:1a:2e:e3:bb:6b:09:9b:
                    29:af:a6:d7:a9:6f:d7:65:5f:db:fc:a8:8e:96:ca:
                    6b:2d:1e:29:a1:b9:1d:e2:03:a4:ac:b4:8d:31:3b:
                    11:72:b4:c7:87:fe:12:08:f6:0b:47:a4:15:a0:86:
                    75:2b:67:26:2e:12:47:bb:16:13:3b:2e:f3:88:6d:
                    2c:42:6b:e4:bb:f4:a1:f8:67:94:d8:f6:a4:9b:7c:
                    12:3e:e6:f1:40:50:e8:7d:8b:3c:01:0d:9d:65:87:
                    f0:61
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                86:22:10:5D:85:60:25:F2:3A:1E:7D:0A:AF:61:2A:B3:15:1A:0A:77
            X509v3 Authority Key Identifier: 
                keyid:E4:AF:2B:26:71:1A:2B:48:27:85:2F:52:66:2C:EF:F0:89:13:71:3E

            Authority Information Access: 
                OCSP - URI:http://ocsp.pki.goog/gtsr1
                CA Issuers - URI:http://pki.goog/gtsr1/gtsr1.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.pki.goog/gtsr1/gtsr1.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.1
                Policy: 2.23.140.1.2.2

    Signature Algorithm: sha256WithRSAEncryption
         1b:07:a9:69:66:03:6a:06:bc:a0:39:2a:8f:ac:0d:a2:64:49:
         e5:19:5c:4a:4a:07:39:9f:d4:25:e9:6a:63:46:69:46:12:88:
         e5:be:b0:c3:e7:8a:b9:5f:8d:f7:c1:05:d7:2c:3a:79:4c:f1:
         e1:6d:3c:45:a4:d0:89:3f:35:66:52:62:87:e8:9c:f3:97:9f:
         2a:04:9e:8a:ce:2f:23:16:19:a9:42:af:7c:3a:db:f7:c8:7c:
         22:02:c5:c9:d2:75:65:1a:5e:64:f9:5d:eb:6c:e0:ba:b7:7b:
         e9:39:69:66:1d:42:c4:87:55:72:1e:d6:48:30:eb:63:07:23:
         98:ee:4e:80:3e:3a:95:75:5e:9b:7e:00:05:fa:4f:a4:ba:71:
         42:10:2d:91:fa:14:47:58:0a:66:d4:77:3d:21:76:d7:f4:78:
         7c:6f:00:8c:84:54:89:66:57:5a:06:87:5c:0b:a7:26:e5:f0:
         91:fd:9c:90:04:2c:ee:6c:fb:b1:c2:f5:e2:0f:fa:fa:af:3e:
         a6:78:71:9e:db:a2:9d:97:0b:c7:10:ee:ba:84:65:f2:71:6c:
         52:9e:a0:6b:c6:07:6e:a3:58:19:3b:03:d1:96:62:d8:22:1a:
         5d:17:1c:fe:21:04:ba:c4:88:bb:20:e6:af:bd:33:9d:cd:9c:
         7b:63:eb:df:94:56:6f:8f:6c:ed:d5:c0:49:73:45:7d:a3:84:
         d9:54:af:de:af:41:aa:ca:60:f2:17:4b:48:fe:94:8e:fb:c0:
         75:5c:43:8e:0a:f0:29:a8:c2:ca:e8:31:6e:dd:96:d6:67:a4:
         21:c8:8e:7e:ea:6f:80:be:46:38:e6:e5:b1:1c:fa:29:8a:ff:
         3d:a3:74:f0:cc:6c:82:5e:9e:1e:14:91:43:a6:49:34:36:c2:
         01:3a:fc:dc:87:2d:4b:18:80:44:79:97:67:f3:a0:d2:e3:15:
         5f:77:0a:32:d2:54:04:11:4a:79:7a:36:92:c5:82:e8:c0:25:
         fd:63:74:b1:7a:8b:6f:b5:3d:e2:bf:2e:09:25:4b:89:ee:67:
         bf:6e:09:dd:1a:20:d0:3a:23:ec:b2:cf:9f:03:16:65:97:15:
         8b:9c:ce:52:25:c0:86:e7:00:49:dd:bb:89:7e:48:ab:47:81:
         a1:55:48:27:3a:10:11:7b:62:b7:f9:da:d6:85:b6:2e:81:36:
         c4:86:9b:7f:e9:f6:7f:c7:8c:03:f0:3a:89:61:b1:6d:49:bb:
         52:17:b6:da:09:f6:6c:58:09:05:15:a0:fa:80:4a:22:87:47:
         55:eb:61:66:67:4a:0b:89:1d:a9:83:7a:6a:49:c8:16:82:92:
         e5:da:71:84:e7:00:f3:6d

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIFUzCCAzugAwIBAgINAfD3nV54J/tAqRKzEDANBgkqhkiG9w0BAQsFADBHMQsw
CQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZpY2VzIExMQzEU
MBIGA1UEAxMLR1RTIFJvb3QgUjEwHhcNMTgxMTAxMDAwMDQyWhcNMjgxMTAxMDAw
MDQyWjBCMQswCQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZp
Y2VzIExMQzEPMA0GA1UEAxMGR1RTIFkxMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
MIIBCgKCAQEAv72WKaCDZTTnN6KC5yhiaDZLawHdgu2zIhpeHogZBdpibue99PU8
V26a17//FpbCHzCLBxq8IDnAcIGBtOkGJ+QfHcUow/iFccLDQrhN4YlHl4hhEAae
jqXKBy3U+NN2De/rfdDB/QX+38MZnfrxcLudTgS8ItVbmA9kC/8wnGGrMbLvC7Kh
Jk6aPspN8hXzmjfEHnz3Y9O64eu9QBou47trCZspr6bXqW/XZV/b/KiOlsprLR4p
obkd4gOkrLSNMTsRcrTHh/4SCPYLR6QVoIZ1K2cmLhJHuxYTOy7ziG0sQmvku/Sh
+GeU2Pakm3wSPubxQFDofYs8AQ2dZYfwYQIDAQABo4IBQTCCAT0wDgYDVR0PAQH/
BAQDAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjASBgNVHRMBAf8E
CDAGAQH/AgEAMB0GA1UdDgQWBBSGIhBdhWAl8joefQqvYSqzFRoKdzAfBgNVHSME
GDAWgBTkrysmcRorSCeFL1JmLO/wiRNxPjBjBggrBgEFBQcBAQRXMFUwJgYIKwYB
BQUHMAGGGmh0dHA6Ly9vY3NwLnBraS5nb29nL2d0c3IxMCsGCCsGAQUFBzAChh9o
dHRwOi8vcGtpLmdvb2cvZ3RzcjEvZ3RzcjEuY3J0MDQGA1UdHwQtMCswKaAnoCWG
I2h0dHA6Ly9jcmwucGtpLmdvb2cvZ3RzcjEvZ3RzcjEuY3JsMB0GA1UdIAQWMBQw
CAYGZ4EMAQIBMAgGBmeBDAECAjANBgkqhkiG9w0BAQsFAAOCAgEAGwepaWYDaga8
oDkqj6wNomRJ5RlcSkoHOZ/UJelqY0ZpRhKI5b6ww+eKuV+N98EF1yw6eUzx4W08
RaTQiT81ZlJih+ic85efKgSeis4vIxYZqUKvfDrb98h8IgLFydJ1ZRpeZPld62zg
urd76TlpZh1CxIdVch7WSDDrYwcjmO5OgD46lXVem34ABfpPpLpxQhAtkfoUR1gK
ZtR3PSF21/R4fG8AjIRUiWZXWgaHXAunJuXwkf2ckAQs7mz7scL14g/6+q8+pnhx
ntuinZcLxxDuuoRl8nFsUp6ga8YHbqNYGTsD0ZZi2CIaXRcc/iEEusSIuyDmr70z
nc2ce2Pr35RWb49s7dXASXNFfaOE2VSv3q9Bqspg8hdLSP6UjvvAdVxDjgrwKajC
yugxbt2W1mekIciOfupvgL5GOOblsRz6KYr/PaN08Mxsgl6eHhSRQ6ZJNDbCATr8
3IctSxiARHmXZ/Og0uMVX3cKMtJUBBFKeXo2ksWC6MAl/WN0sXqLb7U94r8uCSVL
ie5nv24J3Rog0Doj7LLPnwMWZZcVi5zOUiXAhucASd27iX5Iq0eBoVVIJzoQEXti
t/na1oW2LoE2xIabf+n2f8eMA/A6iWGxbUm7Uhe22gn2bFgJBRWg+oBKIodHVeth
ZmdKC4kdqYN6aknIFoKS5dpxhOcA820=
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06