qtsp1-chain256.cer: C=ES,O=Entrust Datacard Europe S.L.,2.5.4.97=VATES-B81188047,CN=Entrust Certification Authority - QTSP1

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://aia.entrust.net/qtsp1-chain256.cer (DER format)
  • Serial number: 207925336715604632050194166203739771814
  • SHA-1 Fingerprint: 4c71c14151d1b07bfbfe6965be66a700837fb70d
  • SHA-1 Fingerprint: 4c:71:c1:41:51:d1:b0:7b:fb:fe:69:65:be:66:a7:00:83:7f:b7:0d
  • SHA-256 Fingerprint: 681ebc1822b079b97e0404e4687d9b6c0c0892c820f55738a282aae62529bdd8
  • SHA-256 Fingerprint: 68:1e:bc:18:22:b0:79:b9:7e:04:04:e4:68:7d:9b:6c:0c:08:92:c8:20:f5:57:38:a2:82:aa:e6:25:29:bd:d8
  • Signature hash algorithm: sha256
  • Subject: C=ES,O=Entrust Datacard Europe S.L.,2.5.4.97=VATES-B81188047,CN=Entrust Certification Authority - QTSP1
  • Not valid before: 2019-07-26 18:31:45
  • Not valid after: 2030-11-26 19:01:45
  • Issuer:
    • Issuer name: CN=Entrust Root Certification Authority - G2,OU=(c) 2009 Entrust, Inc. - for authorized use only,OU=See www.entrust.net/legal-terms,O=Entrust , Inc.,C=US
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://aia.entrust.net/qtsp1-chain256.cer --output cert.crt

Download certificate through wget:

wget -q http://aia.entrust.net/qtsp1-chain256.cer --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            9c:6c:f6:95:70:0c:60:00:00:00:00:00:51:d3:93:a6
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net/legal-terms, OU=(c) 2009 Entrust, Inc. - for authorized use only, CN=Entrust Root Certification Authority - G2
        Validity
            Not Before: Jul 26 18:31:45 2019 GMT
            Not After : Nov 26 19:01:45 2030 GMT
        Subject: CN=Entrust Certification Authority - QTSP1/2.5.4.97=VATES-B81188047, O=Entrust Datacard Europe S.L., C=ES
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:dc:ee:40:be:ee:37:42:94:5e:37:1f:20:e0:21:
                    5f:e9:26:80:55:5c:3e:00:52:8e:ac:e6:ac:4a:79:
                    db:72:0c:d4:a2:02:81:54:d0:b0:94:32:0e:f7:4c:
                    b7:4a:80:80:0a:af:52:1c:ba:43:8e:49:85:12:12:
                    16:ef:18:53:2b:9e:5d:f3:17:a1:a6:df:f7:62:ca:
                    1c:b7:c2:85:81:32:e0:8c:60:7a:2d:48:e9:50:a9:
                    32:fd:76:b9:db:e9:10:33:ed:c7:77:8b:40:9a:d6:
                    ae:75:95:2e:d9:78:d2:c1:9c:05:39:88:df:b0:26:
                    4f:0f:b3:de:88:ae:74:45:08:00:b2:34:49:b4:cb:
                    21:c4:2f:dd:83:e9:a5:be:f8:9a:8c:76:ac:57:f3:
                    1a:1c:fe:9b:30:0a:c4:4f:5d:5b:39:e9:fc:bf:10:
                    79:7d:5b:42:d6:e2:77:9a:08:98:3c:21:16:59:ef:
                    4b:92:80:be:bc:72:11:7e:65:5a:5f:31:e7:b0:53:
                    e1:f4:98:85:5e:62:3f:5f:c5:63:dc:bb:63:40:5e:
                    99:4f:f1:67:99:e2:4c:98:62:6d:0b:de:27:1f:6e:
                    34:19:de:6b:b8:f8:59:0b:00:99:a5:41:0c:ed:61:
                    15:ee:e0:f4:a2:56:67:de:29:e5:db:d6:fa:23:b2:
                    b4:a5
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: http://www.entrust.net/rpa

            Authority Information Access: 
                OCSP - URI:http://ocsp.entrust.net

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.entrust.net/g2ca.crl

            X509v3 Subject Key Identifier: 
                1C:AD:3F:9C:D7:2D:22:19:A1:9C:4B:E9:DA:F1:2A:33:F7:FB:BA:0D
            X509v3 Authority Key Identifier: 
                keyid:6A:72:26:7A:D0:1E:EF:7D:E7:3B:69:51:D4:6C:8D:9F:90:12:66:AB

    Signature Algorithm: sha256WithRSAEncryption
         26:18:6e:a0:e3:ab:a7:b5:59:5f:ee:e0:cc:3b:1b:44:b5:7b:
         b1:b9:22:0d:94:e4:7c:18:36:df:eb:6b:c4:6f:e5:8f:dd:cd:
         b2:34:24:a5:14:68:50:21:f9:1e:c9:9e:6a:a8:73:7d:95:80:
         bf:8e:de:cf:9d:d5:ad:3f:c7:ce:a1:02:49:3e:18:69:ed:87:
         0c:5c:ac:35:a5:c6:90:19:d5:d8:78:42:6e:35:84:0f:13:01:
         f4:75:a5:47:51:4c:d0:ad:25:d7:0b:58:ef:6e:0d:53:e0:6a:
         b0:34:0b:f7:62:57:c5:19:48:19:84:05:bd:48:d2:c9:d7:54:
         11:c2:85:c8:d5:a2:6a:1e:c1:6a:42:c4:2c:2f:cf:fd:5f:02:
         f7:6e:db:ca:b0:80:44:61:0e:91:e3:18:a0:0e:98:9c:c0:d6:
         a5:05:f5:d9:e4:49:08:cb:97:ce:b4:91:ce:5e:d3:1e:84:69:
         b5:36:46:5f:64:5a:3c:8a:6a:8e:70:9f:13:35:3c:c4:97:05:
         69:a0:9f:91:7a:ee:85:d7:c0:bf:97:b0:e9:a1:02:27:49:62:
         16:41:20:19:6d:62:c4:f2:23:89:bc:27:e8:0f:c1:68:e7:b4:
         c6:c0:2e:76:a0:23:2d:34:21:ff:dc:50:9d:a0:1d:ac:ae:9b:
         c6:ac:46:45

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26