SectigoSHA256OVSecureServerCA2.crt: CN=Sectigo SHA-256 OV Secure Server CA 2,O=Sectigo Limited,C=GB (Intermediate Certificate, Expiring 2030-12-31) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://crt.sectigo.com/SectigoSHA256OVSecureServerCA2.crt" --output cert.crt

Download certificate through wget:

wget -q "http://crt.sectigo.com/SectigoSHA256OVSecureServerCA2.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            3d:72:c2:59:c7:4f:45:64:a4:80:65:e2:30:2f:2c:c8
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO Certification Authority
        Validity
            Not Before: Apr  1 00:00:00 2020 GMT
            Not After : Dec 31 23:59:59 2030 GMT
        Subject: C=GB, O=Sectigo Limited, CN=Sectigo SHA-256 OV Secure Server CA 2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:d8:fc:fd:92:24:68:eb:17:13:60:85:8f:0b:28:
                    d9:a3:b6:0c:1c:67:be:bf:d3:fb:79:7f:8e:e7:4a:
                    5d:b8:1b:05:96:a6:d2:16:e1:63:a5:6f:2f:c4:b2:
                    cf:c0:ac:5f:1c:20:e9:75:da:f3:57:6e:54:56:13:
                    39:46:5d:b8:87:58:39:4f:0e:28:57:23:78:9d:aa:
                    44:f1:41:6e:f5:56:45:a0:f0:b1:72:a6:e8:bd:93:
                    06:4f:97:c6:f2:e9:49:61:ef:d9:25:be:0d:5f:9c:
                    93:8d:5f:65:44:66:6a:52:13:1f:f1:5d:3e:6f:c5:
                    7e:fe:74:2c:dd:2e:07:5c:a9:70:22:9a:52:85:e8:
                    f2:48:7d:92:c9:83:f1:ec:93:cc:61:43:09:7b:f0:
                    43:60:7a:e6:8e:0a:bf:c1:24:25:fb:ba:fe:08:7d:
                    8c:3c:4a:d4:21:02:ca:a5:c1:2e:63:c6:5c:f7:a2:
                    00:43:31:85:6d:99:20:2d:05:b1:18:44:6d:c7:6e:
                    ab:e9:fd:c8:50:36:a2:f6:c1:8b:3d:37:40:94:4f:
                    b0:e7:06:9e:81:d3:7b:43:5a:d6:be:ee:73:93:5a:
                    dd:34:ca:73:a2:e0:53:82:0a:ea:65:92:5e:7c:e5:
                    39:36:2b:31:9f:9f:ae:34:9c:66:d8:71:f6:a5:27:
                    1d:8b
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:0B:58:E5:8B:C6:4C:15:37:A4:40:A9:30:A9:21:BE:47:36:5A:56:FF

            X509v3 Subject Key Identifier: 
                03:F7:21:AE:C1:6F:19:AD:B4:73:52:04:18:BA:9F:3F:33:B5:6E:A6
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                Policy: 2.23.140.1.2.2

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.comodoca.com/COMODOCertificationAuthority.crl

            Authority Information Access: 
                OCSP - URI:http://ocsp.comodoca.com

    Signature Algorithm: sha256WithRSAEncryption
         bc:e3:5f:72:dd:5d:48:88:13:7b:e3:38:a3:00:23:f5:a5:8a:
         1c:14:09:84:a1:44:f5:91:88:15:92:34:dc:7b:e1:9c:c6:5d:
         27:fd:17:40:84:fc:f1:be:b7:5a:6a:94:b1:a7:b0:47:e8:05:
         9e:e2:ff:f2:0c:05:ac:c0:65:14:2b:0d:ba:c7:ee:91:72:57:
         35:f2:3d:11:c7:88:84:b2:e7:c3:a0:91:21:72:3d:82:de:14:
         ea:67:39:9d:49:8d:bc:bc:4f:31:70:f2:a0:b0:99:34:fa:93:
         b9:a8:07:fd:af:49:46:da:76:e8:e0:68:c7:65:38:df:95:15:
         0e:94:fe:a0:21:8d:9c:8a:39:ab:6e:11:c0:d3:a3:cb:e9:62:
         82:ec:77:ba:b2:68:23:0f:4e:4e:8f:43:80:6d:cd:e0:78:f1:
         a6:79:23:7a:ac:a1:fe:3a:52:10:f3:e1:35:fd:98:f1:8d:d1:
         6c:36:2a:47:d9:eb:0c:b5:c0:d8:f0:b1:18:54:4a:b5:74:fc:
         23:2f:45:b0:f6:3a:d7:70:ec:75:b0:82:f8:9a:4f:3e:81:e2:
         5b:5a:cd:e1:5d:69:69:72:b7:35:fd:56:c8:62:9d:b6:0b:6a:
         19:57:e4:87:e7:0e:c2:e2:d7:6a:cb:7f:64:ef:18:85:55:89:
         23:c4:29:a0

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06