kca.cer: CN=Kafka SubCA,OU=Antares,O=Cisco (Intermediate Certificate, Expiring 2048-04-17) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://www.cisco.com/security/pki/certs/kca.cer" --output cert.crt

Download certificate through wget:

wget -q "http://www.cisco.com/security/pki/certs/kca.cer" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            01:70:20:9e:55:21:21:de:93
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: OU=Pollux, O=Cisco, CN=IT Application Root CA
        Validity
            Not Before: Apr 19 17:01:59 2018 GMT
            Not After : Apr 17 16:51:54 2048 GMT
        Subject: O=Cisco, OU=Antares, CN=Kafka SubCA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:c1:7e:13:88:9e:53:d9:e5:fa:12:5a:c8:6b:e0:
                    b7:26:68:ca:bc:94:b1:f7:0d:4b:29:04:c8:83:ff:
                    d6:34:6c:e4:47:fa:c4:d3:3a:75:3a:2f:73:85:ab:
                    89:3a:8b:cf:3d:49:b5:a9:fd:f9:44:6d:8e:d3:77:
                    11:d9:d5:e3:9b:65:2e:85:3b:03:97:c3:79:ec:b0:
                    ad:02:5e:47:b9:ac:20:a5:54:74:b1:f2:15:97:d0:
                    54:41:a6:1f:5a:b2:3a:8c:2e:b4:87:84:9a:d0:cf:
                    4d:03:9a:af:c6:b2:71:bd:0d:8a:3a:bb:ca:6e:3f:
                    30:79:e4:37:f0:c3:d3:24:48:f4:d9:cc:19:02:c4:
                    e6:a7:85:fc:d2:62:92:0d:ea:47:54:35:f9:24:ff:
                    2f:7b:92:c5:06:0f:71:e7:19:7d:10:b5:66:1f:fd:
                    ec:fa:f7:d6:ac:2d:8e:25:88:62:f7:40:73:ce:39:
                    71:76:7e:2e:70:51:4a:75:f8:9d:2d:f5:cc:a2:ee:
                    cb:4b:49:42:b1:42:8a:03:a9:8c:54:16:c6:b2:51:
                    3e:69:94:12:04:22:c0:37:82:b4:53:53:e2:c5:75:
                    5d:5b:77:09:82:23:d8:c9:4c:08:a0:0a:da:c3:9b:
                    6d:89:d0:34:53:93:e7:96:01:4a:82:eb:cf:9c:a5:
                    1f:49
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                CA Issuers - URI:http://www.cisco.com/security/pki/certs/itarca.cer
                OCSP - URI:http://pkicvs.cisco.com/pki/ocsp

            X509v3 Authority Key Identifier: 
                keyid:82:D6:6B:92:33:CF:8B:55:9F:53:E1:31:A1:70:71:9C:60:7B:22:21

            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.9.21.1.41.0
                  CPS: http://www.cisco.com/security/pki/policies/

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://www.cisco.com/security/pki/crl/itarca.crl

            X509v3 Subject Key Identifier: 
                1A:8B:FA:04:BA:1B:D1:F9:E1:0A:E0:71:8A:5C:BA:F9:C1:A6:69:05
    Signature Algorithm: sha256WithRSAEncryption
         17:79:88:ee:6e:bd:fe:0d:03:9c:6d:15:bf:cb:c8:75:7d:20:
         6c:f0:0d:b3:b1:bb:47:28:ce:88:2e:30:67:a1:16:93:f6:97:
         48:66:ec:de:3e:7c:a6:1a:04:46:07:45:11:a1:1b:d5:15:a5:
         a5:fe:b2:a5:8e:6c:26:2b:5d:28:2e:6e:c0:fd:70:5b:fe:17:
         3b:66:a7:5d:d6:a3:56:8f:6f:2d:72:0d:23:b7:51:ed:48:f2:
         74:0b:c0:d0:19:19:f2:07:21:07:70:50:2e:75:82:6e:0f:85:
         70:1c:03:e3:bc:60:d8:3c:38:bd:00:e5:3a:0f:9f:4b:c5:29:
         28:31:05:cb:33:9e:b5:4a:a2:c7:59:cb:00:da:a6:31:17:80:
         71:12:e2:2f:20:79:f0:2f:b6:b9:03:b7:34:43:1a:fd:8d:ef:
         d7:90:68:92:68:62:b3:47:eb:cf:ff:18:3d:12:a6:bd:1c:36:
         21:6e:35:4b:2a:04:5e:41:09:46:69:00:90:9a:4b:4a:a8:96:
         c1:1f:e7:1a:2d:af:e8:f6:28:fd:bb:37:42:b2:81:3e:75:04:
         e2:bb:db:2b:71:90:3a:b8:10:10:25:5a:bf:66:c2:8d:17:0a:
         42:96:60:54:14:ec:29:17:0c:da:84:6e:bd:eb:98:a9:52:9c:
         b2:9a:6c:95

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06