cacert.crt: CN=Fraunhofer Service CA - G02,OU=Fraunhofer Corporate PKI,O=Fraunhofer,L=Muenchen,ST=Bayern,C=DE

Page content

CA Certificate Basic Information

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate download URL: http://cdp1.pca.dfn.de/fraunhofer-service-g2-ca/pub/cacert/cacert.crt (DER format)
  • Serial number: 7709477986841594
  • SHA-1 Fingerprint: 525d934c229b6089444969f49bd44883bd0c4426
  • SHA-1 Fingerprint: 52:5d:93:4c:22:9b:60:89:44:49:69:f4:9b:d4:48:83:bd:0c:44:26
  • SHA-256 Fingerprint: acbfaebdcbce1ac84c98cf24140b6061a97318e926215409dc0cf4c7be506620
  • SHA-256 Fingerprint: ac:bf:ae:bd:cb:ce:1a:c8:4c:98:cf:24:14:0b:60:61:a9:73:18:e9:26:21:54:09:dc:0c:f4:c7:be:50:66:20
  • Signature hash algorithm: sha256
  • Subject: CN=Fraunhofer Service CA - G02,OU=Fraunhofer Corporate PKI,O=Fraunhofer,L=Muenchen,ST=Bayern,C=DE
  • Not valid before: 2016-05-24 11:38:16
  • Not valid after: 2031-02-22 23:59:59
  • Issuer:

Download certificate through curl:

curl -sSL http://cdp1.pca.dfn.de/fraunhofer-service-g2-ca/pub/cacert/cacert.crt --output cert.crt

Download certificate through wget:

wget -q http://cdp1.pca.dfn.de/fraunhofer-service-g2-ca/pub/cacert/cacert.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 7709477986841594 (0x1b63bab8cf33fa)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=DE, O=Verein zur Foerderung eines Deutschen Forschungsnetzes e. V., OU=DFN-PKI, CN=DFN-Verein Certification Authority 2
        Validity
            Not Before: May 24 11:38:16 2016 GMT
            Not After : Feb 22 23:59:59 2031 GMT
        Subject: C=DE, ST=Bayern, L=Muenchen, O=Fraunhofer, OU=Fraunhofer Corporate PKI, CN=Fraunhofer Service CA - G02
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:bd:58:33:c3:c2:94:a7:09:5f:60:e7:3b:93:82:
                    82:cd:08:f7:f5:62:c4:7f:32:8e:61:d1:34:8f:25:
                    e3:c8:7f:da:7b:bd:c4:8a:06:56:b3:c1:58:05:70:
                    25:59:0f:8e:e0:69:17:5f:38:05:3d:a7:0e:b2:11:
                    a8:64:b0:45:48:5a:25:fa:83:31:35:1c:d6:9b:29:
                    82:a4:ee:a3:84:8d:60:ae:d6:e6:18:d8:6a:b4:54:
                    57:b0:a1:2b:a0:ae:c0:8f:18:64:b0:49:1e:c7:48:
                    9f:63:0c:d1:e1:b1:29:1f:53:9f:5a:b5:fc:73:06:
                    dc:7c:2e:63:6b:5e:db:8d:94:06:1e:ab:ab:b3:f7:
                    41:93:3e:58:33:30:2d:a2:81:a3:bb:4e:6d:3f:05:
                    1b:99:90:c3:f4:78:bc:6d:56:5e:cb:8d:56:26:13:
                    78:70:6a:37:41:5f:80:89:41:50:44:2f:0e:98:39:
                    54:f4:13:7c:d5:82:d1:33:e4:fd:04:60:3a:20:8b:
                    26:7a:af:51:1c:79:71:2c:75:a1:48:57:0e:c2:2d:
                    b6:e9:22:79:a8:9c:61:c7:79:a5:c6:c2:c3:ff:72:
                    13:09:61:cc:b2:44:38:49:38:4a:09:16:90:00:6c:
                    b4:3e:6f:9d:b9:d6:f7:2b:26:8a:e2:8f:d8:dd:bc:
                    c6:c9
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:1
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.22177.300.30
                Policy: 1.3.6.1.4.1.22177.300.1.1.4

            X509v3 Subject Key Identifier: 
                00:44:34:97:1C:1F:2B:99:26:8D:16:A7:1D:60:68:95:ED:9A:97:AE
            X509v3 Authority Key Identifier: 
                keyid:93:E3:D8:32:26:DA:D5:F1:4A:A5:91:4A:E0:EA:4B:E2:A2:0C:CF:E1

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://cdp1.pca.dfn.de/global-root-g2-ca/pub/crl/cacrl.crl

                Full Name:
                  URI:http://cdp2.pca.dfn.de/global-root-g2-ca/pub/crl/cacrl.crl

            Authority Information Access: 
                OCSP - URI:http://ocsp.pca.dfn.de/OCSP-Server/OCSP
                CA Issuers - URI:http://cdp1.pca.dfn.de/global-root-g2-ca/pub/cacert/cacert.crt
                CA Issuers - URI:http://cdp2.pca.dfn.de/global-root-g2-ca/pub/cacert/cacert.crt

    Signature Algorithm: sha256WithRSAEncryption
         c1:54:5c:a9:55:41:66:d5:58:b2:33:4a:0b:a2:f2:3b:23:af:
         7d:6d:1a:46:1f:22:b6:1d:7e:19:9e:30:4b:18:ae:7e:d7:a7:
         fd:c4:67:b5:40:78:3d:37:bf:7d:97:41:63:b8:fc:51:18:61:
         da:78:da:2e:3d:77:9b:3e:c2:8d:3c:06:7e:00:7b:00:22:6e:
         11:fc:9c:ad:d7:2a:85:1a:09:97:85:d8:47:32:14:8a:29:e9:
         f7:75:41:b3:63:d9:38:28:54:32:56:d6:bd:dc:20:3d:9a:97:
         4e:45:cf:6d:7b:f6:e4:3e:82:79:6f:58:66:6b:53:b0:b9:f6:
         6b:9d:60:40:6a:45:cf:54:ce:71:58:de:71:59:47:f0:b7:dd:
         06:4c:7a:31:92:02:d9:5d:f6:ea:15:17:d3:ab:c9:12:91:f9:
         b3:1e:fd:a2:49:b6:d9:72:28:f9:8a:ab:a0:36:fd:9b:a4:61:
         6d:57:e8:96:b1:db:37:3b:49:38:98:cc:b1:28:c9:03:a4:4d:
         c8:5e:58:34:2e:7f:03:9e:47:be:64:c9:bf:c9:99:64:08:a3:
         6a:1b:50:1b:43:9c:4f:a9:48:4f:5d:c5:23:89:5d:7e:cb:80:
         08:d0:b4:10:85:b2:38:b4:d6:ab:9c:6a:f0:43:a5:f1:84:cd:
         0a:47:6f:83

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26