gtsr1x.der: CN=GTS Root R1,O=Google Trust Services LLC,C=US (Intermediate Certificate, Expiring 2028-01-28) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://pki.goog/repo/certs/gtsr1x.der" --output cert.crt

Download certificate through wget:

wget -q "https://pki.goog/repo/certs/gtsr1x.der" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            77:bd:0d:6c:db:36:f9:1a:ea:21:0f:c4:f0:58:d3:0d
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
        Validity
            Not Before: Jun 19 00:00:42 2020 GMT
            Not After : Jan 28 00:00:42 2028 GMT
        Subject: C=US, O=Google Trust Services LLC, CN=GTS Root R1
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:b6:11:02:8b:1e:e3:a1:77:9b:3b:dc:bf:94:3e:
                    b7:95:a7:40:3c:a1:fd:82:f9:7d:32:06:82:71:f6:
                    f6:8c:7f:fb:e8:db:bc:6a:2e:97:97:a3:8c:4b:f9:
                    2b:f6:b1:f9:ce:84:1d:b1:f9:c5:97:de:ef:b9:f2:
                    a3:e9:bc:12:89:5e:a7:aa:52:ab:f8:23:27:cb:a4:
                    b1:9c:63:db:d7:99:7e:f0:0a:5e:eb:68:a6:f4:c6:
                    5a:47:0d:4d:10:33:e3:4e:b1:13:a3:c8:18:6c:4b:
                    ec:fc:09:90:df:9d:64:29:25:23:07:a1:b4:d2:3d:
                    2e:60:e0:cf:d2:09:87:bb:cd:48:f0:4d:c2:c2:7a:
                    88:8a:bb:ba:cf:59:19:d6:af:8f:b0:07:b0:9e:31:
                    f1:82:c1:c0:df:2e:a6:6d:6c:19:0e:b5:d8:7e:26:
                    1a:45:03:3d:b0:79:a4:94:28:ad:0f:7f:26:e5:a8:
                    08:fe:96:e8:3c:68:94:53:ee:83:3a:88:2b:15:96:
                    09:b2:e0:7a:8c:2e:75:d6:9c:eb:a7:56:64:8f:96:
                    4f:68:ae:3d:97:c2:84:8f:c0:bc:40:c0:0b:5c:bd:
                    f6:87:b3:35:6c:ac:18:50:7f:84:e0:4c:cd:92:d3:
                    20:e9:33:bc:52:99:af:32:b5:29:b3:25:2a:b4:48:
                    f9:72:e1:ca:64:f7:e6:82:10:8d:e8:9d:c2:8a:88:
                    fa:38:66:8a:fc:63:f9:01:f9:78:fd:7b:5c:77:fa:
                    76:87:fa:ec:df:b1:0e:79:95:57:b4:bd:26:ef:d6:
                    01:d1:eb:16:0a:bb:8e:0b:b5:c5:c5:8a:55:ab:d3:
                    ac:ea:91:4b:29:cc:19:a4:32:25:4e:2a:f1:65:44:
                    d0:02:ce:aa:ce:49:b4:ea:9f:7c:83:b0:40:7b:e7:
                    43:ab:a7:6c:a3:8f:7d:89:81:fa:4c:a5:ff:d5:8e:
                    c3:ce:4b:e0:b5:d8:b3:8e:45:cf:76:c0:ed:40:2b:
                    fd:53:0f:b0:a7:d5:3b:0d:b1:8a:a2:03:de:31:ad:
                    cc:77:ea:6f:7b:3e:d6:df:91:22:12:e6:be:fa:d8:
                    32:fc:10:63:14:51:72:de:5d:d6:16:93:bd:29:68:
                    33:ef:3a:66:ec:07:8a:26:df:13:d7:57:65:78:27:
                    de:5e:49:14:00:a2:00:7f:9a:a8:21:b6:a9:b1:95:
                    b0:a5:b9:0d:16:11:da:c7:6c:48:3c:40:e0:7e:0d:
                    5a:cd:56:3c:d1:97:05:b9:cb:4b:ed:39:4b:9c:c4:
                    3f:d2:55:13:6e:24:b0:d6:71:fa:f4:c1:ba:cc:ed:
                    1b:f5:fe:81:41:d8:00:98:3d:3a:c8:ae:7a:98:37:
                    18:05:95
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Subject Key Identifier: 
                E4:AF:2B:26:71:1A:2B:48:27:85:2F:52:66:2C:EF:F0:89:13:71:3E
            X509v3 Authority Key Identifier: 
                keyid:60:7B:66:1A:45:0D:97:CA:89:50:2F:7D:04:CD:34:A8:FF:FC:FD:4B

            Authority Information Access: 
                OCSP - URI:http://ocsp.pki.goog/gsr1
                CA Issuers - URI:http://pki.goog/gsr1/gsr1.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.pki.goog/gsr1/gsr1.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.1
                Policy: 2.23.140.1.2.2
                Policy: 1.3.6.1.4.1.11129.2.5.3.2
                Policy: 1.3.6.1.4.1.11129.2.5.3.3

    Signature Algorithm: sha256WithRSAEncryption
         34:a4:1e:b1:28:a3:d0:b4:76:17:a6:31:7a:21:e9:d1:52:3e:
         c8:db:74:16:41:88:b8:3d:35:1d:ed:e4:ff:93:e1:5c:5f:ab:
         bb:ea:7c:cf:db:e4:0d:d1:8b:57:f2:26:6f:5b:be:17:46:68:
         94:37:6f:6b:7a:c8:c0:18:37:fa:25:51:ac:ec:68:bf:b2:c8:
         49:fd:5a:9a:ca:01:23:ac:84:80:2b:02:8c:99:97:eb:49:6a:
         8c:75:d7:c7:de:b2:c9:97:9f:58:48:57:0e:35:a1:e4:1a:d6:
         fd:6f:83:81:6f:ef:8c:cf:97:af:c0:85:2a:f0:f5:4e:69:09:
         91:2d:e1:68:b8:c1:2b:73:e9:d4:d9:fc:22:c0:37:1f:0b:66:
         1d:49:ed:02:55:8f:67:e1:32:d7:d3:26:bf:70:e3:3d:f4:67:
         6d:3d:7c:e5:34:88:e3:32:fa:a7:6e:06:6a:6f:bd:8b:91:ee:
         16:4b:e8:3b:a9:b3:37:e7:c3:44:a4:7e:d8:6c:d7:c7:46:f5:
         92:9b:e7:d5:21:be:66:92:19:94:55:6c:d4:29:b2:0d:c1:66:
         5b:e2:77:49:48:28:ed:9d:d7:1a:33:72:53:b3:82:35:cf:62:
         8b:c9:24:8b:a5:b7:39:0c:bb:7e:2a:41:bf:52:cf:fc:a2:96:
         b6:c2:82:3f

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06