SectigoRSAOrganizationValidationSecureServerCA.crt: CN=Sectigo RSA Organization Validation Secure Server CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GB

Page content

CA Certificate Basic Information

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate download URL: http://crt.sectigo.com/SectigoRSAOrganizationValidationSecureServerCA.crt (DER format)
  • Serial number: 25906064879583303349170707072060521101
  • SHA-1 Fingerprint: 40cef3046c916ed7ae557f60e76842828b51de53
  • SHA-1 Fingerprint: 40:ce:f3:04:6c:91:6e:d7:ae:55:7f:60:e7:68:42:82:8b:51:de:53
  • SHA-256 Fingerprint: 72a34ac2b424aed3f6b0b04755b88cc027dccc806fddb22b4cd7c47773973ec0
  • SHA-256 Fingerprint: 72:a3:4a:c2:b4:24:ae:d3:f6:b0:b0:47:55:b8:8c:c0:27:dc:cc:80:6f:dd:b2:2b:4c:d7:c4:77:73:97:3e:c0
  • Signature hash algorithm: sha384
  • Subject: CN=Sectigo RSA Organization Validation Secure Server CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GB
  • Not valid before: 2018-11-02 00:00:00
  • Not valid after: 2030-12-31 23:59:59
  • Issuer:

Download certificate through curl:

curl -sSL http://crt.sectigo.com/SectigoRSAOrganizationValidationSecureServerCA.crt --output cert.crt

Download certificate through wget:

wget -q http://crt.sectigo.com/SectigoRSAOrganizationValidationSecureServerCA.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            13:7d:53:9c:aa:7c:31:a9:a4:33:70:19:68:84:7a:8d
    Signature Algorithm: sha384WithRSAEncryption
        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
        Validity
            Not Before: Nov  2 00:00:00 2018 GMT
            Not After : Dec 31 23:59:59 2030 GMT
        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:9c:93:02:46:45:4a:52:48:92:fc:57:8d:f9:2d:
                    ea:53:be:b3:2c:d5:d8:a8:a5:ec:5b:69:03:c0:1d:
                    10:f6:59:33:de:fe:07:48:a8:e8:8c:7a:67:4a:f1:
                    f5:8d:c3:37:66:d0:32:91:f7:c4:9d:04:60:c4:b5:
                    4a:e2:83:8b:a7:ae:26:d4:5d:3a:5e:f8:d1:16:71:
                    bb:8a:bd:71:a2:7d:c8:ce:a2:60:24:b0:52:a0:3a:
                    45:51:de:78:93:6c:62:60:f1:e4:56:9c:b7:3b:f7:
                    3c:55:d8:df:d5:7a:31:7c:35:7f:12:51:70:e1:2c:
                    be:04:ac:cb:fa:4f:e1:7c:65:6a:c0:40:a7:d9:7c:
                    a5:63:84:19:e1:f7:ca:ef:aa:b4:e8:58:5a:d9:99:
                    e3:26:df:8e:12:b2:b8:dc:33:b2:36:da:14:1d:96:
                    58:42:40:6e:0b:22:85:1c:51:22:ae:c4:c8:06:45:
                    6d:92:e6:67:b7:19:23:e4:d8:36:6b:85:d0:7f:c7:
                    52:e3:cf:b0:75:01:e0:89:b4:a8:bf:8a:36:4e:a3:
                    e0:6c:eb:84:41:ce:a5:2f:48:22:13:97:50:62:45:
                    1e:09:a5:cc:9f:6c:57:70:40:06:db:20:e8:1b:d6:
                    f3:93:8b:a7:32:9e:b7:44:15:09:d7:af:fd:7c:01:
                    1c:db
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB

            X509v3 Subject Key Identifier: 
                17:D9:D6:25:27:67:F9:31:C2:49:43:D9:30:36:44:8C:6C:A9:4F:EB
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                Policy: 2.23.140.1.2.2

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl

            Authority Information Access: 
                CA Issuers - URI:http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
                OCSP - URI:http://ocsp.usertrust.com

    Signature Algorithm: sha384WithRSAEncryption
         4e:13:40:96:c9:c3:e6:6e:5b:c0:e3:ba:f4:17:e1:ae:09:1f:
         c9:bf:cb:0c:25:16:f2:73:53:b3:76:1a:b7:ab:48:06:d6:cd:
         00:7c:20:45:43:45:6c:16:5a:1b:13:61:d7:49:ba:a4:02:a4:
         ac:e8:ce:ce:2d:c9:2a:74:a3:dc:de:ae:ab:d0:68:36:f8:91:
         af:3c:01:f7:77:d5:0b:cf:97:ab:eb:87:e7:15:a8:fa:30:5a:
         61:71:20:b1:c0:43:c4:b9:8f:6d:8a:31:eb:15:36:24:fb:62:
         d5:0b:9c:8f:e9:66:bd:e6:61:51:97:93:b6:1d:87:bd:b0:b5:
         6c:fe:a6:11:29:06:61:34:31:30:3d:20:27:73:51:d0:de:85:
         83:d3:77:39:20:46:96:da:a7:c6:5a:16:27:85:b2:cf:4e:0f:
         4e:8c:5c:be:be:38:00:f8:4b:f9:72:7b:d4:f2:7a:d7:a2:29:
         85:d0:04:ba:d3:42:2c:51:88:52:2e:d1:3d:24:67:47:ec:55:
         cc:1b:f4:ca:34:ea:26:c1:de:dd:c4:21:89:f6:ba:7b:32:1e:
         8e:96:5e:84:45:38:cf:80:aa:37:69:8b:60:17:74:15:48:91:
         9c:6d:f0:4e:a3:77:ca:1b:1c:48:fa:f9:cf:49:e8:5f:4f:85:
         0a:e2:8f:90:1b:ab:70:4c:9a:eb:b7:a6:3f:b4:ac:5d:a4:5f:
         cf:e6:d8:8a:96:90:f7:4f:26:81:60:76:5d:0f:24:77:91:b3:
         2a:31:9f:16:5a:b2:5d:8c:1c:29:aa:48:9c:8e:6f:d3:78:40:
         70:db:77:ec:dd:e3:d1:57:05:70:2d:e6:49:98:88:05:84:62:
         05:70:56:76:86:39:4e:d3:22:6f:1d:fe:6d:f1:0e:b3:62:c4:
         3c:cb:c0:85:b9:61:1e:ba:e1:15:80:59:94:0c:ae:05:bb:8c:
         7f:56:be:1c:d2:5a:bf:97:f2:6a:4c:b0:c6:70:76:b0:90:8d:
         c1:0b:36:b9:11:d8:d6:28:5c:ea:4f:fe:24:b7:18:0a:9b:0c:
         d0:c1:7c:5c:fb:69:bd:cc:a2:4d:c6:90:bc:a6:4d:f2:b1:ba:
         d6:9a:67:5b:96:02:52:d0:82:f9:c4:0a:5c:0d:28:e0:3f:c8:
         fa:95:95:89:d5:a4:be:49:6c:40:b2:3e:a8:6b:b8:d5:25:b2:
         c4:fe:f1:d3:d7:e7:d6:dc:43:01:76:30:fb:3b:8b:5d:f7:4a:
         89:7c:9a:35:be:fc:ca:f0:57:01:f0:8d:3f:a0:87:32:7b:47:
         5a:97:4b:82:d2:66:c2:c4:2d:ea:3f:24:f4:a7:f9:a8:b9:e3:
         6a:d9:18:61:a0:3b:8c:15

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26