467437758A2FC2F0740F9AB66066.der: CN=GlobalSign ECC256 SSL CA - G3,O=GlobalSign nv-sa,C=BE (Intermediate Certificate, Expiring 2025-04-30) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://pki.goog/repo/certs/467437758A2FC2F0740F9AB66066.der" --output cert.crt

Download certificate through wget:

wget -q "https://pki.goog/repo/certs/467437758A2FC2F0740F9AB66066.der" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            46:74:37:75:8a:2f:c2:f0:74:0f:9a:b6:60:66
    Signature Algorithm: ecdsa-with-SHA256
        Issuer: OU=GlobalSign ECC Root CA - R4, O=GlobalSign, CN=GlobalSign
        Validity
            Not Before: Apr 30 00:00:00 2015 GMT
            Not After : Apr 30 00:00:00 2025 GMT
        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign ECC256 SSL CA - G3
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (256 bit)
                pub: 
                    04:93:35:1f:8c:4b:ab:6d:3b:44:dc:ab:d1:35:d3:
                    51:d6:6e:3e:b3:68:4c:c7:2f:f3:27:a5:5a:de:13:
                    3d:0b:6e:87:3f:4e:c0:7e:d3:2b:d8:08:66:ed:b3:
                    d1:e7:6e:c1:eb:65:48:0f:df:da:5c:05:bf:74:59:
                    b9:8d:72:7c:0e
                ASN1 OID: prime256v1
                NIST CURVE: P-256
        X509v3 extensions:
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                AB:EF:88:96:B0:1B:A2:92:20:33:70:6E:4E:28:3B:0F:49:9A:1D:B7
            X509v3 Authority Key Identifier: 
                keyid:54:B0:7B:AD:45:B8:E2:40:7F:FB:0A:6E:FB:BE:33:C9:3C:A3:84:D5

            Authority Information Access: 
                OCSP - URI:http://ocsp2.globalsign.com/rootr4

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.globalsign.com/root-r4.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.globalsign.com/repository/

    Signature Algorithm: ecdsa-with-SHA256
         30:44:02:20:46:55:23:08:77:8f:a8:95:02:85:e7:a6:ef:13:
         95:2e:e5:04:c7:98:ce:75:4a:76:ff:a3:af:c5:d3:42:0c:d4:
         02:20:4a:36:74:75:1b:c3:5d:36:5e:a1:51:8b:74:3a:47:8c:
         e1:75:ac:d5:e6:c8:ee:58:2a:a2:7c:9a:37:ba:61:67

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06