gts1d8.der: CN=GTS CA 1D8,O=Google Trust Services LLC,C=US (Intermediate Certificate, Expiring 2027-09-30) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://pki.goog/repo/certs/gts1d8.der" --output cert.crt

Download certificate through wget:

wget -q "https://pki.goog/repo/certs/gts1d8.der" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            02:19:c1:5a:c0:25:a1:b0:a5:c1:d9:d5:01
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R2
        Validity
            Not Before: Oct  5 00:00:42 2022 GMT
            Not After : Sep 30 00:00:42 2027 GMT
        Subject: C=US, O=Google Trust Services LLC, CN=GTS CA 1D8
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:a8:29:04:08:22:f5:b8:4e:a7:99:c2:20:42:c8:
                    fd:6f:b5:ac:ca:31:34:7d:e2:b2:ed:8b:b8:32:37:
                    a4:f1:0f:60:9d:28:60:3c:57:07:5c:ca:1e:f5:2a:
                    9f:55:56:0e:51:7e:2b:8b:cb:3f:38:d3:46:fd:8c:
                    53:0f:1f:1c:7f:48:01:df:d1:c7:e9:ab:50:75:31:
                    7d:f4:cf:53:93:b8:d6:d3:e3:39:dc:c5:44:ef:85:
                    3a:be:51:a9:97:db:b5:75:9b:11:43:72:bf:bc:32:
                    c8:26:2b:f6:06:83:bc:37:90:80:39:c7:4d:f1:c0:
                    69:f7:68:0e:b6:9c:34:b9:b6:2d:2d:eb:f2:2c:e7:
                    bc:99:6d:b1:ba:11:9b:e7:c1:c1:31:fd:f6:71:dc:
                    88:df:e1:fe:11:c4:5a:54:6b:89:41:99:f8:2c:fe:
                    e5:85:41:f5:39:b8:80:03:81:cb:26:18:6c:06:b8:
                    11:2d:0f:87:39:08:50:76:aa:fb:9e:9c:4c:35:61:
                    2b:40:cc:e5:9b:67:64:9a:95:f1:a9:a1:04:5b:2c:
                    b3:03:ed:b4:05:d3:f6:93:42:ce:80:cb:0a:dc:5e:
                    67:62:f0:af:b6:dc:68:66:83:72:e0:e6:bf:88:fc:
                    cc:0c:37:04:e4:7b:dc:ed:17:93:55:5c:05:83:c1:
                    05:47
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                90:F8:50:FA:E7:90:25:C9:E4:27:7D:12:DD:47:58:E7:74:0F:B6:6A
            X509v3 Authority Key Identifier: 
                keyid:BB:FF:CA:8E:23:9F:4F:99:CA:DB:E2:68:A6:A5:15:27:17:1E:D9:0E

            Authority Information Access: 
                OCSP - URI:http://ocsp.pki.goog/gtsr2
                CA Issuers - URI:http://pki.goog/repo/certs/gtsr2.der

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.pki.goog/gtsr2/gtsr2.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.1
                Policy: 1.3.6.1.4.1.11129.2.5.3
                  CPS: https://pki.goog/repository/

    Signature Algorithm: sha256WithRSAEncryption
         ab:7a:c9:51:6f:6c:ca:d8:b7:aa:45:79:58:d5:c2:a4:98:f6:
         5a:80:a9:b5:fc:4e:74:8a:e8:8d:3e:10:d4:22:06:ce:bb:85:
         bb:81:97:07:ca:5f:90:9b:bb:89:4f:24:02:49:5e:97:a4:42:
         9f:b3:06:fd:a2:35:da:77:66:bd:4b:16:f3:a7:ba:50:90:d6:
         10:cc:f5:0a:c4:0f:03:dd:80:3a:c9:2d:01:55:e2:19:50:f1:
         dd:10:22:3d:f3:f6:f5:6f:72:37:09:48:99:25:59:84:63:50:
         21:20:b4:4a:e7:8a:ed:03:af:fa:61:c7:58:4f:fb:1b:41:b4:
         fd:8a:80:c4:c6:d5:67:3c:ab:3d:81:df:3d:48:74:48:3d:60:
         93:ba:98:8e:af:61:18:90:7b:c3:b7:1f:7a:96:76:88:f7:4a:
         ce:58:ff:e1:a1:4e:7b:4e:20:86:8d:73:1c:c2:c9:60:8b:34:
         de:76:fa:b9:68:34:03:05:f9:e5:24:ae:2a:f7:a1:a1:8b:35:
         22:d1:dd:11:5d:49:d9:77:c0:4d:9a:42:9f:a8:cc:4c:40:7f:
         25:81:11:6d:75:b4:55:62:d4:85:d6:99:39:1b:5a:6b:24:28:
         53:96:17:6e:0b:e0:6e:c3:e0:a9:d2:2c:3d:ac:6c:fc:28:6b:
         a7:ac:c8:2a:fb:39:d3:76:18:72:fb:34:19:04:94:43:53:05:
         01:67:3e:2e:87:37:f7:ae:bd:4f:b5:a7:2f:c5:2e:db:20:8e:
         47:18:c5:a7:7f:9f:85:35:40:e5:46:30:2f:5b:f2:e3:03:e7:
         35:4a:1a:e3:e0:80:e8:9c:a9:4f:a3:83:51:67:17:65:af:29:
         58:e7:72:1e:96:e0:d0:87:8b:df:cf:43:b3:ae:e4:8a:b1:bc:
         fd:e2:90:c4:5c:dc:91:b8:4b:e4:00:fc:04:94:b7:c2:41:7b:
         3b:b0:3c:19:df:b6:56:f4:96:86:61:10:cf:33:81:1d:cb:d3:
         fe:5a:ab:09:27:b4:ed:1e:c2:57:f3:f0:e0:4f:42:d8:60:4b:
         19:fc:3c:a2:9c:46:5e:b7:5f:25:18:d4:ea:71:df:e5:cf:ad:
         0b:8c:48:8c:7f:e2:dc:f4:23:68:81:4b:1b:70:fa:d2:66:af:
         d2:79:12:f7:68:a8:ad:99:76:74:28:87:4c:ac:5a:0f:f2:78:
         07:a5:55:d3:79:69:11:c5:1d:56:0e:16:78:60:26:4c:29:6c:
         5d:49:cc:3a:30:a7:95:56:0c:2e:0f:6f:51:1a:b4:2d:bc:a5:
         c5:b1:81:7a:50:6b:08:dc:aa:05:2e:54:3b:af:bd:17:8f:d8:
         8b:8b:f3:a0:8b:ef:6c:9d

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIFjDCCA3SgAwIBAgINAhnBWsAlobClwdnVATANBgkqhkiG9w0BAQsFADBHMQsw
CQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZpY2VzIExMQzEU
MBIGA1UEAxMLR1RTIFJvb3QgUjIwHhcNMjIxMDA1MDAwMDQyWhcNMjcwOTMwMDAw
MDQyWjBGMQswCQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZp
Y2VzIExMQzETMBEGA1UEAxMKR1RTIENBIDFEODCCASIwDQYJKoZIhvcNAQEBBQAD
ggEPADCCAQoCggEBAKgpBAgi9bhOp5nCIELI/W+1rMoxNH3isu2LuDI3pPEPYJ0o
YDxXB1zKHvUqn1VWDlF+K4vLPzjTRv2MUw8fHH9IAd/Rx+mrUHUxffTPU5O41tPj
OdzFRO+FOr5RqZfbtXWbEUNyv7wyyCYr9gaDvDeQgDnHTfHAafdoDracNLm2LS3r
8iznvJltsboRm+fBwTH99nHciN/h/hHEWlRriUGZ+Cz+5YVB9Tm4gAOByyYYbAa4
ES0PhzkIUHaq+56cTDVhK0DM5ZtnZJqV8amhBFssswPttAXT9pNCzoDLCtxeZ2Lw
r7bcaGaDcuDmv4j8zAw3BOR73O0Xk1VcBYPBBUcCAwEAAaOCAXYwggFyMA4GA1Ud
DwEB/wQEAwIBhjAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwEgYDVR0T
AQH/BAgwBgEB/wIBADAdBgNVHQ4EFgQUkPhQ+ueQJcnkJ30S3UdY53QPtmowHwYD
VR0jBBgwFoAUu//KjiOfT5nK2+JopqUVJxce2Q4waAYIKwYBBQUHAQEEXDBaMCYG
CCsGAQUFBzABhhpodHRwOi8vb2NzcC5wa2kuZ29vZy9ndHNyMjAwBggrBgEFBQcw
AoYkaHR0cDovL3BraS5nb29nL3JlcG8vY2VydHMvZ3RzcjIuZGVyMDQGA1UdHwQt
MCswKaAnoCWGI2h0dHA6Ly9jcmwucGtpLmdvb2cvZ3RzcjIvZ3RzcjIuY3JsME0G
A1UdIARGMEQwCAYGZ4EMAQIBMDgGCisGAQQB1nkCBQMwKjAoBggrBgEFBQcCARYc
aHR0cHM6Ly9wa2kuZ29vZy9yZXBvc2l0b3J5LzANBgkqhkiG9w0BAQsFAAOCAgEA
q3rJUW9syti3qkV5WNXCpJj2WoCptfxOdIrojT4Q1CIGzruFu4GXB8pfkJu7iU8k
Aklel6RCn7MG/aI12ndmvUsW86e6UJDWEMz1CsQPA92AOsktAVXiGVDx3RAiPfP2
9W9yNwlImSVZhGNQISC0SueK7QOv+mHHWE/7G0G0/YqAxMbVZzyrPYHfPUh0SD1g
k7qYjq9hGJB7w7cfepZ2iPdKzlj/4aFOe04gho1zHMLJYIs03nb6uWg0AwX55SSu
KvehoYs1ItHdEV1J2XfATZpCn6jMTEB/JYERbXW0VWLUhdaZORtaayQoU5YXbgvg
bsPgqdIsPaxs/Chrp6zIKvs503YYcvs0GQSUQ1MFAWc+Loc39669T7WnL8Uu2yCO
RxjFp3+fhTVA5UYwL1vy4wPnNUoa4+CA6JypT6ODUWcXZa8pWOdyHpbg0IeL389D
s67kirG8/eKQxFzckbhL5AD8BJS3wkF7O7A8Gd+2VvSWhmEQzzOBHcvT/lqrCSe0
7R7CV/Pw4E9C2GBLGfw8opxGXrdfJRjU6nHf5c+tC4xIjH/i3PQjaIFLG3D60mav
0nkS92iorZl2dCiHTKxaD/J4B6VV03lpEcUdVg4WeGAmTClsXUnMOjCnlVYMLg9v
URq0LbylxbGBelBrCNyqBS5UO6+9F4/Yi4vzoIvvbJ0=
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06