DigiCertHighAssuranceTLSHybridECCSHA2562020CA1.crt: CN=DigiCert High Assurance TLS Hybrid ECC SHA256 2020 CA1,O=DigiCert, Inc.,C=US

Page content

CA Certificate Basic Information

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate download URL: http://cacerts.digicert.com/DigiCertHighAssuranceTLSHybridECCSHA2562020CA1.crt (DER format)
  • Serial number: 8510242666029254186823484260964302358
  • SHA-1 Fingerprint: 30c179c07909e2c4cfd52532214ec886e202706a
  • SHA-1 Fingerprint: 30:c1:79:c0:79:09:e2:c4:cf:d5:25:32:21:4e:c8:86:e2:02:70:6a
  • SHA-256 Fingerprint: 74eab573da7db195097be0e90f334934c7a4c89e8083759db4333a00edd243d9
  • SHA-256 Fingerprint: 74:ea:b5:73:da:7d:b1:95:09:7b:e0:e9:0f:33:49:34:c7:a4:c8:9e:80:83:75:9d:b4:33:3a:00:ed:d2:43:d9
  • Signature hash algorithm: sha256
  • Subject: CN=DigiCert High Assurance TLS Hybrid ECC SHA256 2020 CA1,O=DigiCert, Inc.,C=US
  • Not valid before: 2020-12-17 00:00:00
  • Not valid after: 2030-12-16 23:59:59
  • Issuer:

Download certificate through curl:

curl -sSL http://cacerts.digicert.com/DigiCertHighAssuranceTLSHybridECCSHA2562020CA1.crt --output cert.crt

Download certificate through wget:

wget -q http://cacerts.digicert.com/DigiCertHighAssuranceTLSHybridECCSHA2562020CA1.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            06:67:03:5b:bb:14:fd:63:af:c0:d6:a8:53:4e:fe:16
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
        Validity
            Not Before: Dec 17 00:00:00 2020 GMT
            Not After : Dec 16 23:59:59 2030 GMT
        Subject: C=US, O=DigiCert, Inc., CN=DigiCert High Assurance TLS Hybrid ECC SHA256 2020 CA1
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (256 bit)
                pub: 
                    04:67:bd:6f:f1:3c:eb:9d:be:d0:b6:e7:6c:13:ab:
                    d7:9f:e9:f6:dd:15:e5:8f:90:eb:1c:7e:94:53:91:
                    c8:ae:1e:3e:d4:72:e9:90:48:7d:e5:ce:43:c4:23:
                    1d:0a:a5:eb:16:6b:c7:a9:b2:4b:3b:43:09:19:e1:
                    f5:3f:4e:47:fd
                ASN1 OID: prime256v1
                NIST CURVE: P-256
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                50:61:A6:A0:D2:35:C4:11:2A:20:8D:1F:0F:AC:42:F0:CD:29:CF:4B
            X509v3 Authority Key Identifier: 
                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com
                CA Issuers - URI:http://cacerts.digicert.com/DigiCertHighAssuranceEVRootCA.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.2
                Policy: 2.23.140.1.2.3
                Policy: 2.23.140.1.1
                Policy: 2.23.140.1.2.1

    Signature Algorithm: sha256WithRSAEncryption
         73:10:1f:c8:61:88:17:cd:6f:1c:04:c3:16:db:4c:09:ee:8c:
         fc:94:87:fa:22:d0:9a:df:64:8d:ee:f4:9b:a2:2e:a7:1a:ef:
         6d:03:e9:fa:12:fc:00:79:fb:81:08:c6:99:bb:08:c1:b8:31:
         d3:7f:97:ba:00:88:38:a9:68:23:ef:98:e9:a9:61:4a:67:4f:
         b0:3a:dc:2a:f4:ab:88:3c:e2:b2:35:66:67:6a:03:8d:25:55:
         45:1f:ea:a0:ba:13:7e:2d:0b:bd:ea:0d:01:7c:4c:94:ab:7e:
         c7:16:15:d0:a5:45:74:7d:27:84:06:ae:46:76:54:d3:12:0f:
         39:43:47:35:82:68:0f:79:31:f3:bc:c7:4d:65:f9:97:68:a5:
         d1:3c:16:f3:3b:f2:01:9d:e3:3c:5e:59:bf:2f:f7:dd:7e:98:
         1c:53:0d:ea:6a:2a:ec:bf:8c:5e:51:9b:a0:61:7f:1a:f7:dc:
         00:d1:b3:ad:2c:d6:dd:7a:76:d6:77:a4:e6:0b:00:b0:53:3c:
         3e:4a:85:9e:9a:fb:f7:64:e5:d9:e1:e9:ce:0f:69:e6:50:60:
         15:00:87:e1:ae:c5:f6:81:95:4e:2a:43:c1:2d:8c:13:02:40:
         7a:de:30:8c:17:1d:81:d6:e4:54:58:1a:38:11:e0:d3:2e:68:
         8c:36:8c:3d

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26