ovcag4.crt: CN=Cybertrust Japan SureServer CA G4,O=Cybertrust Japan Co., Ltd.,C=JP (Intermediate Certificate, Expiring 2029-05-29) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is intermediate certificate used for the issuance of other certificates.
- Certificate Download URL: http://crl.cybertrust.ne.jp/SureServer/ovcag4/ovcag4.crt (in DER format )
- Serial Number : 640569883381181201454
- SHA-1 Fingerprint : f695c5b4037ae8eae51ea943a4f54d750e0da609
- SHA-1 Fingerprint : f6:95:c5:b4:03:7a:e8:ea:e5:1e:a9:43:a4:f5:4d:75:0e:0d:a6:09
- SHA-256 Fingerprint : 0207056d172c80bdfb6dc45be9e5808846078d1e6eef1b6ed70259ab332a64c1
- SHA-256 Fingerprint : 02:07:05:6d:17:2c:80:bd:fb:6d:c4:5b:e9:e5:80:88:46:07:8d:1e:6e:ef:1b:6e:d7:02:59:ab:33:2a:64:c1
- Signature Hash Algorithm : sha256
- Subject
: CN=Cybertrust Japan SureServer CA G4,O=Cybertrust Japan Co., Ltd.,C=JP
- Country Name: JP (Japan)
- Organization: Cybertrust Japan Co., Ltd.
- Common Name: Cybertrust Japan SureServer CA G4
- Not Valid Before: 2019-09-27 01:54:23
- Not Valid After: 2029-05-29 05:00:39
- Issuer (Parent Certificate):
- Issuer Name: OU=Security Communication RootCA2,O=SECOM Trust Systems CO.,LTD.,C=JP
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Not Revoked
- Certificate Policy (CP) URL: https://www.cybertrust.ne.jp/ssl/repository/OVCP_English.pdf
- Certificate Practice Statement (CPS) URL: https://www.cybertrust.ne.jp/ssl/repository/CTJCPS_English.pdf
- Auditor: KPMG
- Standard Audit URL: https://www.cpacanada.ca/generichandlers/CPACHandler.ashx?attachmentid=a8343de1-5713-4c9c-a953-b7529eebecde
- Standard Audit Period Start Date: 2021.12.11
- Standard Audit Period End Date: 2022.12.10
- Standard Audit Statement Date: 2023.02.16
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: http://crl.cybertrust.ne.jp/SureServer/ovcag4/cdp.crl
- Check its issuer’s audit information: OU=Security Communication RootCA2,O=SECOM Trust Systems CO.,LTD.,C=JP .
Download certificate through curl
:
curl -sSL "http://crl.cybertrust.ne.jp/SureServer/ovcag4/ovcag4.crt" --output cert.crt
Download certificate through wget
:
wget -q "http://crl.cybertrust.ne.jp/SureServer/ovcag4/ovcag4.crt" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
22:b9:b1:63:0c:ec:b4:3c:2e
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=JP, O=SECOM Trust Systems CO.,LTD., OU=Security Communication RootCA2
Validity
Not Before: Sep 27 01:54:23 2019 GMT
Not After : May 29 05:00:39 2029 GMT
Subject: C=JP, O=Cybertrust Japan Co., Ltd., CN=Cybertrust Japan SureServer CA G4
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:cb:6e:9c:59:a8:b1:3f:08:c4:19:15:14:ff:8e:
9e:41:a4:71:59:9b:ba:2f:a1:75:50:65:19:98:67:
8a:78:95:96:e0:21:8a:09:b6:59:4c:71:a7:85:f9:
57:70:7f:40:a2:4b:66:67:80:b3:09:b3:c4:62:97:
68:30:b3:72:89:98:c5:74:f2:80:d5:dc:4c:b2:3e:
20:cc:91:8a:c1:0e:ed:5d:4d:5c:51:d4:8d:21:25:
29:a6:35:2f:30:80:f7:f7:a6:95:d9:e6:46:35:fa:
07:d6:6d:e7:15:ca:e6:ad:76:58:e2:16:90:91:02:
13:0c:0a:92:ee:fb:b6:fb:4a:64:f4:4a:68:23:42:
1a:c6:79:1e:36:bb:3c:1b:34:ee:32:e8:13:4a:cc:
b9:92:d0:64:d4:04:07:45:ba:dd:ab:6d:28:60:86:
cc:49:39:d2:50:e3:fb:04:34:52:55:1b:42:4d:f3:
00:4b:2f:74:4e:97:a3:5a:99:cb:d9:7b:f3:75:5a:
e3:4b:d2:c7:75:6a:84:66:1b:e2:35:90:ae:0d:82:
ac:0b:49:70:a4:0d:48:9d:26:f7:2c:49:55:54:03:
c2:94:10:c0:6c:47:3b:91:26:42:fd:4b:18:91:31:
01:27:a0:39:7c:e1:ce:a0:ab:e7:28:b0:10:27:d2:
ac:eb
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
62:A7:D2:DA:DE:85:B6:92:F1:85:BC:F6:E8:95:9D:75:A0:FA:4E:1F
X509v3 Authority Key Identifier:
keyid:0A:85:A9:77:65:05:98:7C:40:81:F8:0F:97:2C:38:F1:0A:EC:3C:CF
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 CRL Distribution Points:
Full Name:
URI:http://repository.secomtrust.net/SC-Root2/SCRoot2CRL.crl
X509v3 Certificate Policies:
Policy: 1.2.392.200091.100.901.4
CPS: https://repository.secomtrust.net/SC-Root2/
Authority Information Access:
OCSP - URI:http://scrootca2.ocsp.secomtrust.net
CA Issuers - URI:http://repository.secomtrust.net/SC-Root2/SCRoot2ca.cer
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
Signature Algorithm: sha256WithRSAEncryption
c5:51:79:2e:40:06:4a:63:93:db:fc:9b:e0:b9:f8:b3:27:cb:
99:2a:93:7e:f9:f8:88:f2:43:93:82:4a:d2:ae:23:58:36:33:
bd:88:47:53:c1:55:77:b1:6d:cf:69:ba:f7:94:07:42:1a:b2:
7e:c2:00:2b:2c:b5:27:05:9e:d5:18:cf:ff:52:50:e1:4d:17:
b8:03:5f:5c:d1:39:95:d6:e7:53:49:bc:5a:6f:04:09:6c:dd:
73:20:66:c6:dc:a4:2c:ba:68:3d:ff:bd:0f:68:89:1a:c2:78:
a1:c7:df:d3:c4:60:ab:26:40:07:e5:6f:bd:a6:45:fb:39:67:
9f:b1:a8:72:97:08:8f:90:a4:64:25:1b:f6:7a:6f:ef:ac:c4:
72:6f:72:f1:45:4e:6d:f3:89:35:c5:0a:82:9c:cc:53:11:63:
80:89:6a:0e:b5:ab:44:c5:9d:fc:6b:c9:27:f2:4a:a2:13:53:
44:be:d3:ce:cd:2a:d5:8d:2b:c3:ee:91:f9:e8:09:6f:3b:b8:
73:1b:39:e0:eb:49:32:5a:70:33:e8:ee:6b:43:4b:6c:14:88:
16:f7:19:68:59:34:10:55:c7:c4:b7:3b:e3:73:ca:6d:b8:ff:
68:9e:46:c0:8c:c4:43:25:aa:8b:5e:b2:15:b4:1e:c6:31:e9:
3b:4b:a0:0e
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List