D-TRUST_Root_CA_1_2017.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST Root CA 1 2017,O=D-Trust GmbH,C=DE (Root Certificate, Expiring 2032-02-01) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is root certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_1_2017.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_1_2017.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 1041565 (0xfe49d)
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 1 2017/2.5.4.97=NTRDE-HRB74346
        Validity
            Not Before: Feb  1 08:26:48 2017 GMT
            Not After : Feb  1 08:26:48 2032 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 1 2017/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsassaPss
                RSA-PSS Public-Key: (4096 bit)
                Modulus:
                    00:ea:c7:de:73:42:a0:0f:20:cb:c2:b8:0a:65:0d:
                    ab:a2:f8:d7:22:e2:1e:dc:9b:dd:ea:7e:c3:1c:5d:
                    80:12:44:2f:b5:08:c2:5a:5b:13:38:c7:a9:29:80:
                    dd:b1:ed:47:0c:1d:7d:10:c0:ea:ee:d1:c7:70:90:
                    8e:b0:49:ca:0a:bb:bb:6f:dc:cb:36:b5:0d:04:3d:
                    e8:7c:48:57:b1:42:7e:67:55:73:fb:ba:f3:14:e4:
                    41:97:9c:0c:96:b1:4e:9b:b4:63:1c:aa:39:b1:e3:
                    36:09:43:09:d3:2a:ee:56:bc:2c:84:cd:b5:35:d9:
                    19:4e:25:ff:75:63:f2:f0:9f:01:11:c5:a1:4d:ef:
                    2e:45:bc:50:69:36:fe:c8:c1:7d:94:84:52:74:49:
                    18:dd:fd:91:e6:8a:dd:70:61:d5:40:26:8a:bc:50:
                    66:08:0f:75:78:2f:ab:ed:72:f5:91:d4:7e:89:98:
                    77:93:3b:35:99:5e:6d:81:6f:df:cd:08:b2:8d:bf:
                    f4:cc:24:3d:b2:4f:91:3d:ca:67:1a:71:3a:70:cd:
                    4c:88:1c:ea:dd:77:0c:19:6b:b8:14:9d:3c:94:85:
                    97:fd:c1:88:ee:dc:98:78:ac:7b:84:40:08:19:22:
                    5b:0e:56:fe:17:9a:2c:55:cb:62:7a:2b:6e:c7:14:
                    27:06:2b:bb:fb:dc:a3:56:59:05:58:d6:ac:1a:bc:
                    0e:a7:b0:ec:e7:5a:db:3a:52:ba:f1:37:e7:fd:24:
                    ac:71:6a:e2:28:f8:ec:67:c0:7e:e7:29:fd:5e:d4:
                    b4:03:8e:d0:f8:4a:6f:93:41:26:51:40:10:be:61:
                    9a:4a:ef:7a:73:09:7e:ea:fb:7c:e0:6a:5a:00:ca:
                    7f:d7:ae:1d:58:d4:c4:b2:da:d8:23:41:cb:2e:92:
                    16:6c:3b:d1:15:5f:44:ac:ae:af:61:a0:02:87:92:
                    49:9b:7e:58:93:0f:f5:51:ca:a7:22:35:fd:10:c8:
                    5e:29:78:53:0c:d5:35:83:02:a1:25:4a:a7:85:d2:
                    f2:eb:48:4b:fd:c0:95:9b:c5:9a:9a:f5:67:e6:05:
                    19:71:bd:b7:34:b3:f4:c9:35:06:7b:60:1b:70:6f:
                    00:2f:11:98:59:1b:44:a2:ef:46:60:6d:1a:fd:06:
                    41:c1:5c:b1:8d:a7:91:3e:ee:65:cd:87:36:00:ef:
                    c6:47:5d:24:4f:d4:c0:e8:7d:46:92:1b:99:65:d9:
                    36:88:64:d0:97:9d:12:c5:e1:b2:95:3e:49:8f:96:
                    62:f7:87:3d:6e:8d:81:81:3c:dc:92:30:5c:28:03:
                    a3:ab:eb:81:a7:31:04:fe:9c:7a:79:28:07:e1:ce:
                    56:17:5b
                Exponent: 65537 (0x10001)
                No PSS parameter restrictions
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Subject Key Identifier: 
                10:2A:A5:47:77:53:32:26:20:ED:73:9C:D5:0D:32:31:EB:66:41:60
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%201%202017,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_1_2017.crl

    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)

         e5:f4:dd:05:b7:a2:7c:06:f1:52:8f:31:d1:94:7b:1b:53:2c:
         80:87:51:36:a2:cf:1a:9c:3b:5d:4b:aa:66:da:50:55:78:90:
         4f:9c:0d:0d:c2:ad:d7:aa:20:39:ed:23:bc:0c:d7:f0:cd:dc:
         6a:8d:44:e2:dc:80:38:25:68:a2:63:6f:52:0b:d9:eb:e1:7f:
         71:e3:9e:10:70:fe:9b:6d:9a:c2:57:9c:61:4a:e2:3f:e7:d2:
         c0:ca:c8:7a:40:9c:2a:b5:a9:75:3b:30:78:0d:55:11:64:55:
         c5:2d:93:18:13:29:5f:b2:37:fb:b3:4b:e7:79:02:00:32:b8:
         f2:7d:d9:f3:35:ca:34:2c:8a:ae:bd:5c:ba:ce:0d:71:8a:44:
         7a:4c:dc:b2:e2:0d:66:43:04:0b:44:75:dc:99:f6:34:15:10:
         7c:92:76:dc:9e:f1:d6:8a:24:18:3c:e7:aa:1a:0d:81:89:53:
         c7:e5:08:29:07:fe:40:09:eb:d4:3f:bd:b1:38:d5:68:b6:ba:
         bd:ba:5c:86:34:4d:3d:5d:22:09:ae:d9:fe:8a:bb:71:a9:74:
         1b:63:7b:2d:ba:9b:63:7f:df:b7:39:ae:f3:e8:a1:48:ee:4e:
         26:20:59:f6:c9:64:59:86:a2:5d:52:db:98:96:f3:72:d4:65:
         8c:fb:f7:ec:4c:fa:fa:cf:fe:f1:34:28:fc:58:4c:b0:bc:5a:
         06:a8:96:8c:da:42:e4:c1:50:b5:9a:1a:c6:4c:33:98:45:9d:
         a1:0e:cb:a9:cb:1e:5e:d5:9a:da:0f:f8:a1:6c:ec:ee:ce:13:
         8f:d6:bf:92:a8:9b:dc:d5:ed:31:d1:d4:f9:39:79:85:c5:5d:
         8c:85:a3:9d:f2:54:4f:ad:4c:fd:7a:fd:53:20:ec:54:12:ca:
         aa:b3:c2:71:42:cd:32:3c:af:69:9b:e3:f8:54:4e:92:bd:31:
         4c:19:51:e1:eb:83:31:03:ab:66:2a:4f:45:27:24:77:b5:5e:
         49:65:65:3c:cb:11:03:d0:27:dd:04:d6:44:e9:e2:24:ce:75:
         a5:b7:9d:05:2d:e9:c9:20:39:3a:59:1b:c8:ae:99:75:b1:c5:
         25:13:ef:ce:c9:d9:9b:fa:ad:a7:a7:f3:ab:57:50:54:0a:71:
         fb:10:f0:2b:79:11:86:65:9f:62:27:11:2a:f6:27:ab:5c:1a:
         35:bc:cc:6e:cd:c3:8b:00:73:b7:ed:35:8b:8f:11:b3:46:ea:
         3e:6b:c5:7f:eb:35:d7:6b:eb:89:76:2e:db:1b:59:e0:ff:a1:
         45:e5:6b:04:31:48:ec:42:34:f9:d7:54:aa:cd:13:82:34:ea:
         05:6a:66:e7:6e:ac:9b:8f

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06