D-Trust.HBA-qCA7.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-Trust.HBA-qCA7,OU=Qualifizierter VDA der Telematikinfrastruktur,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2027-12-31) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate Download URL: https://www.d-trust.net/cgi-bin/D-Trust.HBA-qCA7.crt (in DER format )
  • Serial Number : 148334315709420234325945016356062218661
  • SHA-1 Fingerprint : 03add32f4a93b8cc4621e21ac4da845fe49f27a1
  • SHA-1 Fingerprint : 03:ad:d3:2f:4a:93:b8:cc:46:21:e2:1a:c4:da:84:5f:e4:9f:27:a1
  • SHA-256 Fingerprint : e317d726c4365ff130167d4acaf3ea4ad7ec0d62aa79d3aa6b52addc75466be9
  • SHA-256 Fingerprint : e3:17:d7:26:c4:36:5f:f1:30:16:7d:4a:ca:f3:ea:4a:d7:ec:0d:62:aa:79:d3:aa:6b:52:ad:dc:75:46:6b:e9
  • Signature Hash Algorithm : sha256
  • Subject : 2.5.4.97=NTRDE-HRB74346,CN=D-Trust.HBA-qCA7,OU=Qualifizierter VDA der Telematikinfrastruktur,O=D-Trust GmbH,C=DE
    • Country Name: DE (Germany)
    • Organization: D-Trust GmbH
    • Organization Unit: Qualifizierter VDA der Telematikinfrastruktur
    • Common Name: D-Trust.HBA-qCA7
    • 2.5.4.97: NTRDE-HRB74346
  • Not Valid Before: 2021-02-17 12:44:23
  • Not Valid After: 2027-12-31 19:59:59
  • Issuer (Parent Certificate):
  • Audit Record:

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-Trust.HBA-qCA7.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-Trust.HBA-qCA7.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            6f:98:26:69:0d:d0:6c:e1:77:57:02:62:de:39:c9:a5
    Signature Algorithm: ecdsa-with-SHA256
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 2 2021
        Validity
            Not Before: Feb 17 12:44:23 2021 GMT
            Not After : Dec 31 19:59:59 2027 GMT
        Subject: C=DE, O=D-Trust GmbH, OU=Qualifizierter VDA der Telematikinfrastruktur, CN=D-Trust.HBA-qCA7/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (256 bit)
                pub: 
                    04:4d:b2:ca:fe:a6:92:0e:a9:fc:0a:8a:c6:5e:57:
                    ab:bf:9e:6f:65:d2:a0:c3:fa:3c:fe:44:12:85:10:
                    be:01:8f:5e:b5:9a:ee:b9:ce:5c:96:e0:5c:70:03:
                    dd:42:45:db:c7:26:e8:f1:4e:27:40:37:02:38:0a:
                    76:03:90:b5:82
                ASN1 OID: brainpoolP256r1
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:A0:A5:B5:F8:2F:64:45:98:6B:A5:2F:D7:60:E2:EA:5F:31:09:B2:68

            Authority Information Access: 
                OCSP - URI:http://root-ca-2-2021.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_2_2021.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.2
                Policy: 1.2.276.0.76.4.145
                Policy: 1.3.6.1.4.1.4788.2.211.1
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_TSP-TI_CPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_2_2021.crl

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%202%202021,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

            X509v3 Subject Key Identifier: 
                D6:3E:87:9C:A7:DF:7B:60:34:04:64:61:40:6E:1A:86:AD:EB:94:B5
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            1.3.6.1.4.1.8301.3.5: 
                0..
+.....m...
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: ecdsa-with-SHA256
         30:64:02:30:48:37:53:0c:5b:5b:a5:1f:15:3c:0a:d9:a3:5c:
         c5:dd:07:40:00:26:4f:cf:94:e4:8e:6a:2c:91:8b:0d:c9:7c:
         4d:37:8a:ce:f3:60:8f:f6:3b:61:e2:f3:5f:e4:fe:24:02:30:
         05:59:29:31:95:e0:7c:a2:60:0b:d9:11:03:29:37:c4:d0:55:
         51:12:b1:2a:13:99:14:d6:ad:c1:25:62:ec:91:5c:8e:83:f5:
         d5:39:00:a5:ea:d8:d0:d9:72:b3:1e:15

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIERTCCA8ygAwIBAgIQb5gmaQ3QbOF3VwJi3jnJpTAKBggqhkjOPQQDAjBFMQsw
CQYDVQQGEwJERTEVMBMGA1UEChMMRC1UcnVzdCBHbWJIMR8wHQYDVQQDExZELVRS
VVNUIFJvb3QgQ0EgMiAyMDIxMB4XDTIxMDIxNzEyNDQyM1oXDTI3MTIzMTE5NTk1
OVowgZAxCzAJBgNVBAYTAkRFMRUwEwYDVQQKEwxELVRydXN0IEdtYkgxNjA0BgNV
BAsTLVF1YWxpZml6aWVydGVyIFZEQSBkZXIgVGVsZW1hdGlraW5mcmFzdHJ1a3R1
cjEZMBcGA1UEAxMQRC1UcnVzdC5IQkEtcUNBNzEXMBUGA1UEYRMOTlRSREUtSFJC
NzQzNDYwWjAUBgcqhkjOPQIBBgkrJAMDAggBAQcDQgAETbLK/qaSDqn8CorGXler
v55vZdKgw/o8/kQShRC+AY9etZruuc5cluBccAPdQkXbxybo8U4nQDcCOAp2A5C1
gqOCAk8wggJLMB8GA1UdIwQYMBaAFKCltfgvZEWYa6Uv12Di6l8xCbJoMIGJBggr
BgEFBQcBAQR9MHswMgYIKwYBBQUHMAGGJmh0dHA6Ly9yb290LWNhLTItMjAyMS5v
Y3NwLmQtdHJ1c3QubmV0MEUGCCsGAQUFBzAChjlodHRwOi8vd3d3LmQtdHJ1c3Qu
bmV0L2NnaS1iaW4vRC1UUlVTVF9Sb290X0NBXzJfMjAyMS5jcnQwewYDVR0gBHQw
cjAJBgcEAIvsQAECMAoGCCqCFABMBIERMFkGCysGAQQBpTQCgVMBMEowSAYIKwYB
BQUHAgEWPGh0dHA6Ly93d3cuZC10cnVzdC5uZXQvaW50ZXJuZXQvZmlsZXMvRC1U
UlVTVF9UU1AtVElfQ1BTLnBkZjCBvgYDVR0fBIG2MIGzMDugOaA3hjVodHRwOi8v
Y3JsLmQtdHJ1c3QubmV0L2NybC9kLXRydXN0X3Jvb3RfY2FfMl8yMDIxLmNybDB0
oHKgcIZubGRhcDovL2RpcmVjdG9yeS5kLXRydXN0Lm5ldC9DTj1ELVRSVVNUJTIw
Um9vdCUyMENBJTIwMiUyMDIwMjEsTz1ELVRydXN0JTIwR21iSCxDPURFP2NlcnRp
ZmljYXRlcmV2b2NhdGlvbmxpc3QwHQYDVR0OBBYEFNY+h5yn33tgNARkYUBuGoat
65S1MA4GA1UdDwEB/wQEAwIBBjAbBgkrBgEEAcBtAwUEDjAMBgorBgEEAcBtAwUB
MBIGA1UdEwEB/wQIMAYBAf8CAQAwCgYIKoZIzj0EAwIDZwAwZAIwSDdTDFtbpR8V
PArZo1zF3QdAACZPz5TkjmoskYsNyXxNN4rO82CP9jth4vNf5P4kAjAFWSkxleB8
omAL2REDKTfE0FVRErEqE5kU1q3BJWLskVyOg/XVOQCl6tjQ2XKzHhU=
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06