l1j-ec1.cer: CN=Entrust Certification Authority - L1J,OU=(c) 2016 Entrust, Inc. - for authorized use only,OU=See www.entrust.net/legal-terms,O=Entrust, Inc.,C=US

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://aia.entrust.net/l1j-ec1.cer (DER format)
  • Serial number: 13976780877699144740992538195214516727
  • SHA-1 Fingerprint: 33fffe4a9a1691e53efa1568eb743a69d8b52ead
  • SHA-1 Fingerprint: 33:ff:fe:4a:9a:16:91:e5:3e:fa:15:68:eb:74:3a:69:d8:b5:2e:ad
  • SHA-256 Fingerprint: 3447b74b5e500a549983fa2ced73a5642e6aaec78829546158437df66d7435b8
  • SHA-256 Fingerprint: 34:47:b7:4b:5e:50:0a:54:99:83:fa:2c:ed:73:a5:64:2e:6a:ae:c7:88:29:54:61:58:43:7d:f6:6d:74:35:b8
  • Signature hash algorithm: sha384
  • Subject: CN=Entrust Certification Authority - L1J,OU=(c) 2016 Entrust, Inc. - for authorized use only,OU=See www.entrust.net/legal-terms,O=Entrust , Inc.,C=US
  • Not valid before: 2016-04-05 20:19:54
  • Not valid after: 2037-10-05 20:49:54
  • Issuer:
    • Issuer name: CN=Entrust Root Certification Authority - EC1,OU=(c) 2012 Entrust, Inc. - for authorized use only,OU=See www.entrust.net/legal-terms,O=Entrust , Inc.,C=US
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://aia.entrust.net/l1j-ec1.cer --output cert.crt

Download certificate through wget:

wget -q http://aia.entrust.net/l1j-ec1.cer --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0a:83:d4:80:3e:7e:9f:51:00:00:00:00:51:d4:c1:f7
    Signature Algorithm: ecdsa-with-SHA384
        Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - EC1
        Validity
            Not Before: Apr  5 20:19:54 2016 GMT
            Not After : Oct  5 20:49:54 2037 GMT
        Subject: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2016 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1J
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (384 bit)
                pub: 
                    04:f5:e1:e1:57:9a:94:17:fd:d1:1f:ec:d0:31:ac:
                    c1:f5:de:7d:1b:b7:3d:4a:2a:f1:f6:4b:5a:d1:38:
                    63:c0:29:ec:76:09:8f:32:c7:39:db:7d:f2:bf:31:
                    b0:a4:17:b0:72:61:71:ac:d7:ef:24:2f:9c:66:4f:
                    2b:14:fd:cf:98:9a:33:99:c7:69:8c:48:09:36:0c:
                    fc:37:d1:f8:a3:27:7b:51:af:00:a1:67:e4:c1:a6:
                    0b:41:eb:e0:39:32:c0
                ASN1 OID: secp384r1
                NIST CURVE: P-384
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.entrust.net

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.entrust.net/ec1root.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: http://www.entrust.net/rpa

            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Subject Key Identifier: 
                C3:F9:45:03:BE:C8:F9:0B:3C:45:35:F3:EB:72:EC:E7:E8:EB:94:9B
            X509v3 Authority Key Identifier: 
                keyid:B7:63:E7:1A:DD:8D:E9:08:A6:55:83:A4:E0:6A:50:41:65:11:42:49

    Signature Algorithm: ecdsa-with-SHA384
         30:66:02:31:00:f9:d5:00:ea:b1:28:37:7b:bf:7e:c4:06:6a:
         4f:a9:60:82:58:11:4f:29:6e:87:a5:1c:77:19:45:9c:f5:c6:
         9e:40:8c:3c:ac:ed:87:5d:88:1f:f7:6a:5b:fd:3b:09:60:02:
         31:00:98:48:d0:ca:51:cf:92:f8:db:11:75:47:d5:08:3d:f4:
         31:08:cc:20:b2:75:81:a8:8a:9c:7c:ca:cc:3b:ed:83:c5:0c:
         ba:18:83:f7:70:51:63:f6:04:72:c6:0b:8a:5b

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26