D-TRUST_CA_1-1_2017.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 1-1 2017,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2032-02-01) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_1-1_2017.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_1-1_2017.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 1041567 (0xfe49f)
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 1 2017/2.5.4.97=NTRDE-HRB74346
        Validity
            Not Before: Feb  1 09:22:21 2017 GMT
            Not After : Feb  1 08:26:48 2032 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 1-1 2017/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsassaPss
                RSA-PSS Public-Key: (4096 bit)
                Modulus:
                    00:d6:a9:18:87:8d:3d:e8:d1:4b:2f:8f:5a:9f:19:
                    6b:5f:15:cf:8c:0e:a1:27:74:a3:bc:eb:0b:d9:1c:
                    0f:70:73:46:e1:3d:ee:df:e3:1d:20:f9:66:a1:68:
                    fd:79:38:2e:d9:73:88:25:b4:79:51:e5:51:62:b3:
                    1b:99:d3:f1:78:73:e7:22:c7:5b:6d:30:92:d7:d0:
                    e3:21:6e:62:a3:93:67:52:26:b3:9e:be:4e:4b:91:
                    d3:ba:75:15:03:fa:ae:ee:c9:a6:03:b3:2d:a0:22:
                    5e:ae:0c:e4:95:ca:a3:40:ba:ce:9c:46:a2:d0:a3:
                    48:45:47:58:bc:ed:2e:12:54:c3:0f:c8:33:b9:b4:
                    1b:27:4f:13:e1:fa:ad:fb:f7:ad:49:27:b1:59:2e:
                    9e:74:6e:41:ee:bc:b0:d4:ad:fd:76:33:45:19:80:
                    a0:e3:9d:92:16:f6:66:17:28:8d:99:7f:75:c7:89:
                    af:da:48:82:f4:39:f1:68:00:9e:67:b0:14:de:d9:
                    69:f6:be:78:df:ac:c1:61:61:77:33:30:7e:04:f3:
                    36:47:77:9c:47:59:8e:39:52:ce:02:75:a2:2d:67:
                    27:ee:95:f4:7f:ee:b5:ac:8d:11:28:15:cb:e4:e7:
                    bc:57:4f:fb:57:a0:51:11:a6:b3:1e:42:32:f4:55:
                    00:74:d9:ab:b4:4f:5a:ef:c4:24:43:da:d7:32:2b:
                    6a:f9:fc:2b:79:e8:c7:af:44:4f:05:99:86:40:be:
                    4b:bf:73:66:03:41:b2:ae:b4:d8:0c:6b:79:45:d9:
                    db:61:27:c7:9e:4f:5f:df:41:da:d8:53:ab:c7:0a:
                    c0:48:a4:02:f7:ce:b7:e9:f7:c9:20:28:34:aa:ab:
                    8b:67:67:26:80:5c:73:71:46:2f:85:58:ca:3b:a9:
                    22:3e:64:5d:b9:af:c5:03:58:f0:1a:e4:92:f8:9c:
                    33:03:03:05:db:7b:22:9d:47:5d:21:8b:8d:1f:a5:
                    fc:0f:3d:80:7d:86:51:7c:6e:f2:06:eb:36:f4:60:
                    5b:c7:da:f6:6a:e8:38:a7:57:c8:d9:f6:69:79:0e:
                    af:75:0a:28:93:87:b7:d8:a2:04:4c:06:02:ba:23:
                    2f:8f:a8:02:8d:e1:50:6d:5e:a4:c5:56:6d:1d:f3:
                    07:e9:96:4a:c4:3d:fd:28:2d:cb:f9:aa:2b:04:38:
                    11:92:9a:89:86:93:0f:37:2b:bc:cb:ad:cc:55:ca:
                    9f:d5:dd:61:fb:b1:3f:86:31:4d:07:f5:b3:c0:e1:
                    e2:d0:97:a5:30:89:c9:71:7d:d3:9d:51:ec:14:d3:
                    fe:17:9e:18:a0:cf:60:71:cc:27:7c:46:08:af:41:
                    84:55:17
                Exponent: 65537 (0x10001)
                No PSS parameter restrictions
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:10:2A:A5:47:77:53:32:26:20:ED:73:9C:D5:0D:32:31:EB:66:41:60

            Authority Information Access: 
                OCSP - URI:http://root-ca-1-2017.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_1_2017.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.2
                Policy: 1.3.6.1.4.1.4788.2.100.1
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_Cloud_PKI_CPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%201%202017,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_1_2017.crl

            X509v3 Subject Key Identifier: 
                39:D1:12:38:4D:44:CA:D5:AA:03:99:88:86:93:E8:FE:7F:C5:3D:65
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)

         e5:7f:0e:f5:69:a4:cb:13:57:2d:88:aa:8a:04:cc:6e:c4:3e:
         63:38:69:b6:6f:64:e7:37:cd:0f:e0:f1:ea:3f:56:93:e8:6a:
         2e:f8:ae:45:f0:59:a2:eb:c7:15:87:ee:04:d8:68:7c:d6:bb:
         e2:c6:c4:70:e4:57:81:c5:03:45:a5:36:f0:50:0e:08:9f:a3:
         d0:db:2c:9a:b0:45:72:17:dd:a2:78:68:96:6a:af:ed:fa:58:
         47:7f:8e:95:44:88:4c:ec:2b:71:62:ac:8e:b9:58:9a:85:96:
         15:28:fb:f0:3a:25:0f:e7:28:96:a2:be:f8:08:94:b1:cb:4c:
         c3:23:90:3d:8c:5e:62:69:3b:32:95:6f:b2:4c:fa:87:45:95:
         3e:e7:80:f0:0a:bc:bd:69:dc:8a:3d:c3:14:ea:d2:b8:31:df:
         d3:ee:4f:dd:ab:3a:97:db:f8:bd:46:f0:c5:d8:1e:b1:d5:ab:
         b8:3c:69:57:c3:e0:4a:5e:35:98:51:31:16:50:26:53:05:fe:
         c0:c9:8d:ed:50:20:11:ee:a0:8a:02:55:f1:82:c3:2f:83:a3:
         af:15:87:38:06:55:94:44:63:6c:eb:7b:d2:8a:a4:80:72:76:
         43:16:80:ad:42:07:e8:11:d1:56:e7:96:20:d5:e6:14:ae:81:
         3d:38:da:61:78:94:c4:eb:46:2f:61:48:84:8f:e2:59:ac:8b:
         87:b6:8a:74:75:be:de:b7:55:cc:ea:25:f5:51:5e:97:f1:74:
         9a:50:44:09:dd:b9:71:3f:b0:b6:80:34:5a:17:09:b8:95:15:
         b5:92:29:6e:13:de:5a:8f:75:e9:57:70:d8:21:1e:08:21:ca:
         67:ae:e8:8d:89:ff:34:00:c5:dd:1d:ec:c5:8f:dd:10:2a:65:
         2d:44:57:4b:9f:e2:e5:5a:4e:e9:b4:8f:4b:b8:53:0c:b8:22:
         01:b1:79:32:3a:cd:c9:7d:64:92:0e:9a:2d:f7:29:88:ca:0c:
         67:f8:ed:9b:69:9b:dc:f7:f8:bb:ed:97:f8:6f:63:43:a5:64:
         c9:39:e5:cd:59:3a:6a:59:3e:91:09:83:23:a1:53:8e:45:5e:
         14:1e:b6:27:9d:0b:d6:3d:2a:19:74:53:79:64:c0:79:d3:b1:
         55:5d:71:64:60:c3:32:83:25:9c:45:83:e1:fc:54:a4:61:b9:
         57:2c:3f:ae:1f:aa:9b:42:20:e2:54:7d:31:3a:0a:70:79:5b:
         f4:fc:8c:5f:78:b4:0e:cc:44:12:94:20:50:01:0f:dd:58:13:
         4b:16:e5:67:97:c8:66:83:0c:27:fc:fa:89:c7:2d:24:16:b3:
         10:1b:97:90:09:c4:13:3b

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06