BaiduIncOVCA.crt: CN=Baidu, Inc. OV CA,O=Baidu, Inc.,C=CN

Page content

CA Certificate Basic Information

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate download URL: http://baidu.crt.sectigo.com/BaiduIncOVCA.crt (DER format)
  • Serial number: 205949414021948995202228189155014956161
  • SHA-1 Fingerprint: 0375861afb6fcf30971df32ef9f0dde2c9bff9e6
  • SHA-1 Fingerprint: 03:75:86:1a:fb:6f:cf:30:97:1d:f3:2e:f9:f0:dd:e2:c9:bf:f9:e6
  • SHA-256 Fingerprint: 4b704cda80e244d4186844f0ef242b70c4b1ab4d8d8961568f28e12c89784f23
  • SHA-256 Fingerprint: 4b:70:4c:da:80:e2:44:d4:18:68:44:f0:ef:24:2b:70:c4:b1:ab:4d:8d:89:61:56:8f:28:e1:2c:89:78:4f:23
  • Signature hash algorithm: sha384
  • Subject: CN=Baidu, Inc. OV CA,O=Baidu, Inc.,C=CN
  • Not valid before: 2020-04-01 00:00:00
  • Not valid after: 2030-04-01 23:59:59
  • Issuer:

Download certificate through curl:

curl -sSL http://baidu.crt.sectigo.com/BaiduIncOVCA.crt --output cert.crt

Download certificate through wget:

wget -q http://baidu.crt.sectigo.com/BaiduIncOVCA.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            9a:f0:6a:12:cd:2c:e0:7a:04:b0:44:52:ef:0b:54:81
    Signature Algorithm: sha384WithRSAEncryption
        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
        Validity
            Not Before: Apr  1 00:00:00 2020 GMT
            Not After : Apr  1 23:59:59 2030 GMT
        Subject: C=CN, O=Baidu, Inc., CN=Baidu, Inc. OV CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:a8:6a:ec:2b:cd:2e:46:6f:25:89:22:f7:68:7c:
                    15:03:4a:cd:c0:cd:2d:33:8b:50:c1:11:d3:91:70:
                    c0:4d:ed:df:1b:4a:13:b6:8c:cc:f1:4b:d1:01:a1:
                    42:ca:1f:59:d6:51:82:3b:1b:4a:29:21:91:b7:47:
                    f1:2b:26:0a:d6:2b:05:72:80:d9:da:f5:3b:20:9d:
                    52:47:3f:10:90:49:b1:e0:76:95:c1:a9:2b:d3:00:
                    c5:5c:ee:43:76:8c:c0:2f:47:10:5b:8a:f9:ad:2a:
                    12:2c:89:01:c4:3d:40:f2:30:09:77:c5:87:8c:d3:
                    8c:36:f7:0c:13:ca:54:ec:55:cd:ac:bb:36:c7:fc:
                    fc:f3:c6:22:2c:68:9e:7b:3e:36:a4:6b:c7:0a:6e:
                    61:67:43:e3:6b:3b:42:af:79:64:26:4d:c6:d7:28:
                    91:31:86:50:88:fa:31:5c:ca:00:7a:70:59:0c:ee:
                    78:4e:1d:73:3c:c7:52:a3:aa:99:43:8a:f7:a3:b8:
                    c7:52:d1:81:be:e0:5b:e3:3a:ad:21:08:5b:7f:ca:
                    96:ee:96:e3:2b:19:6f:5b:ba:b3:cc:f1:03:15:f8:
                    90:13:97:62:9a:64:14:ee:ab:79:aa:73:fe:d0:2f:
                    e6:31:59:4f:78:c0:b6:8e:8c:d2:3b:46:8c:91:20:
                    15:cf
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB

            X509v3 Subject Key Identifier: 
                37:81:71:C7:E8:F4:83:02:50:CC:C7:B7:13:8C:C0:E5:84:95:77:D8
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                Policy: 2.23.140.1.2.2

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl

            Authority Information Access: 
                CA Issuers - URI:http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
                OCSP - URI:http://ocsp.usertrust.com

    Signature Algorithm: sha384WithRSAEncryption
         2a:43:c9:6c:6a:6d:79:c8:4f:e9:9e:37:a9:d5:7c:4d:65:22:
         55:1f:d0:61:2b:ac:a2:45:b9:66:80:21:21:6f:fb:f0:cc:a3:
         1f:ef:d1:1d:60:e9:0b:c2:f0:31:a9:a3:98:54:01:d3:b8:1d:
         be:04:fa:ad:1f:2e:0f:22:26:00:65:74:89:88:31:70:8f:a3:
         d6:83:9a:90:99:7e:21:c3:08:34:6f:04:e3:dc:b2:e7:dd:9d:
         9c:e1:59:48:62:b3:86:27:68:8e:6e:c4:ac:2c:d1:40:c8:26:
         99:7c:fe:bc:2d:35:1c:7c:ff:b6:83:8b:6a:f0:35:82:a9:90:
         3a:76:13:7a:9a:e1:10:de:b2:9d:3e:01:d3:ec:81:3f:f2:8f:
         00:01:6e:4b:2a:87:df:23:a4:dc:b6:f7:5d:4b:a4:6f:0b:03:
         21:28:aa:c0:b3:3b:b1:99:d8:98:2e:2a:80:f1:a6:7a:bd:b7:
         4f:0a:c1:60:2b:55:0d:b5:e1:63:12:08:43:fa:d1:6f:4d:74:
         56:57:4b:bc:f2:58:1d:07:70:be:e9:f9:fb:36:fd:ed:e9:95:
         e4:26:d1:65:fc:39:81:e9:2f:38:37:8e:2a:00:87:c0:c6:bc:
         16:c7:29:ca:fe:9b:4c:8f:da:eb:70:df:53:36:e8:6d:44:40:
         12:d9:25:12:4c:91:75:9c:c9:9a:30:10:b3:4c:0f:bd:9d:49:
         01:a3:d7:58:51:5b:d2:ed:81:16:93:3f:49:a7:6d:9d:60:df:
         73:a6:c1:5f:0b:bd:60:68:ed:4e:86:61:bc:16:83:1a:a6:78:
         8b:b7:59:41:ae:b1:f0:3c:a3:fc:fc:ac:9d:dd:97:19:87:e2:
         41:10:e9:57:df:bc:9a:45:0e:08:bf:d5:1a:ee:da:b9:fd:52:
         16:e2:d1:c4:28:7b:d9:45:12:02:40:78:ab:0a:a9:03:36:53:
         ad:02:96:60:30:aa:da:aa:0c:7a:3b:4c:89:48:3e:34:a5:b5:
         35:75:66:6a:4a:96:21:5f:e2:69:a7:fe:b6:64:1f:2f:58:d2:
         72:51:65:14:86:28:45:71:54:4e:da:a0:1b:5c:85:d3:3d:0b:
         7e:d7:bc:18:cb:fb:13:46:0c:e5:42:5a:d3:c5:a1:4a:ae:44:
         2f:9a:a1:5e:37:66:fa:60:8e:53:8f:05:f8:c3:85:1f:5a:63:
         c4:37:cd:b2:91:3d:01:43:9a:d9:99:f4:2f:12:69:59:9f:48:
         ef:35:21:a0:57:dd:de:33:a5:dc:e2:fe:75:c4:e9:59:51:a4:
         7f:45:72:eb:25:71:b4:97:8b:c5:e2:38:20:85:50:ce:58:fd:
         62:05:ad:ca:32:84:5b:8f

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIFwzCCA6ugAwIBAgIRAJrwahLNLOB6BLBEUu8LVIEwDQYJKoZIhvcNAQEMBQAw
gYgxCzAJBgNVBAYTAlVTMRMwEQYDVQQIEwpOZXcgSmVyc2V5MRQwEgYDVQQHEwtK
ZXJzZXkgQ2l0eTEeMBwGA1UEChMVVGhlIFVTRVJUUlVTVCBOZXR3b3JrMS4wLAYD
VQQDEyVVU0VSVHJ1c3QgUlNBIENlcnRpZmljYXRpb24gQXV0aG9yaXR5MB4XDTIw
MDQwMTAwMDAwMFoXDTMwMDQwMTIzNTk1OVowPzELMAkGA1UEBhMCQ04xFDASBgNV
BAoTC0JhaWR1LCBJbmMuMRowGAYDVQQDExFCYWlkdSwgSW5jLiBPViBDQTCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKhq7CvNLkZvJYki92h8FQNKzcDN
LTOLUMER05FwwE3t3xtKE7aMzPFL0QGhQsofWdZRgjsbSikhkbdH8SsmCtYrBXKA
2dr1OyCdUkc/EJBJseB2lcGpK9MAxVzuQ3aMwC9HEFuK+a0qEiyJAcQ9QPIwCXfF
h4zTjDb3DBPKVOxVzay7Nsf8/PPGIixonns+NqRrxwpuYWdD42s7Qq95ZCZNxtco
kTGGUIj6MVzKAHpwWQzueE4dczzHUqOqmUOK96O4x1LRgb7gW+M6rSEIW3/Klu6W
4ysZb1u6s8zxAxX4kBOXYppkFO6reapz/tAv5jFZT3jAto6M0jtGjJEgFc8CAwEA
AaOCAW4wggFqMB8GA1UdIwQYMBaAFFN5v1qqK0rPVIDh2JvAnfKyA2bLMB0GA1Ud
DgQWBBQ3gXHH6PSDAlDMx7cTjMDlhJV32DAOBgNVHQ8BAf8EBAMCAYYwEgYDVR0T
AQH/BAgwBgEB/wIBADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwGwYD
VR0gBBQwEjAGBgRVHSAAMAgGBmeBDAECAjBQBgNVHR8ESTBHMEWgQ6BBhj9odHRw
Oi8vY3JsLnVzZXJ0cnVzdC5jb20vVVNFUlRydXN0UlNBQ2VydGlmaWNhdGlvbkF1
dGhvcml0eS5jcmwwdgYIKwYBBQUHAQEEajBoMD8GCCsGAQUFBzAChjNodHRwOi8v
Y3J0LnVzZXJ0cnVzdC5jb20vVVNFUlRydXN0UlNBQWRkVHJ1c3RDQS5jcnQwJQYI
KwYBBQUHMAGGGWh0dHA6Ly9vY3NwLnVzZXJ0cnVzdC5jb20wDQYJKoZIhvcNAQEM
BQADggIBACpDyWxqbXnIT+meN6nVfE1lIlUf0GErrKJFuWaAISFv+/DMox/v0R1g
6QvC8DGpo5hUAdO4Hb4E+q0fLg8iJgBldImIMXCPo9aDmpCZfiHDCDRvBOPcsufd
nZzhWUhis4YnaI5uxKws0UDIJpl8/rwtNRx8/7aDi2rwNYKpkDp2E3qa4RDesp0+
AdPsgT/yjwABbksqh98jpNy2911LpG8LAyEoqsCzO7GZ2JguKoDxpnq9t08KwWAr
VQ214WMSCEP60W9NdFZXS7zyWB0HcL7p+fs2/e3pleQm0WX8OYHpLzg3jioAh8DG
vBbHKcr+m0yP2utw31M26G1EQBLZJRJMkXWcyZowELNMD72dSQGj11hRW9LtgRaT
P0mnbZ1g33OmwV8LvWBo7U6GYbwWgxqmeIu3WUGusfA8o/z8rJ3dlxmH4kEQ6Vff
vJpFDgi/1Rru2rn9Uhbi0cQoe9lFEgJAeKsKqQM2U60ClmAwqtqqDHo7TIlIPjSl
tTV1ZmpKliFf4mmn/rZkHy9Y0nJRZRSGKEVxVE7aoBtchdM9C37XvBjL+xNGDOVC
WtPFoUquRC+aoV43ZvpgjlOPBfjDhR9aY8Q3zbKRPQFDmtmZ9C8SaVmfSO81IaBX
3d4zpdzi/nXE6VlRpH9FcuslcbSXi8XiOCCFUM5Y/WIFrcoyhFuP
-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26