DigiCertExtendedValidationCAG3.crt: CN=DigiCert Extended Validation CA G3,OU=www.digicert.com,O=DigiCert Inc,C=US

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://cacerts.digicert.com/DigiCertExtendedValidationCAG3.crt (DER format)
  • Serial number: 6161002789730640795261113961207723126
  • SHA-1 Fingerprint: 54f84cf4b56c1a7944e60bdebb6d4559e14c773c
  • SHA-1 Fingerprint: 54:f8:4c:f4:b5:6c:1a:79:44:e6:0b:de:bb:6d:45:59:e1:4c:77:3c
  • SHA-256 Fingerprint: 7c0912e5de8478bb86e8ea46ba5ae65dc3870bcefcbc2f46795eeecf648cfbe7
  • SHA-256 Fingerprint: 7c:09:12:e5:de:84:78:bb:86:e8:ea:46:ba:5a:e6:5d:c3:87:0b:ce:fc:bc:2f:46:79:5e:ee:cf:64:8c:fb:e7
  • Signature hash algorithm: sha384
  • Subject: CN=DigiCert Extended Validation CA G3,OU=www.digicert.com,O=DigiCert Inc,C=US
  • Not valid before: 2015-11-11 12:00:00
  • Not valid after: 2030-11-11 12:00:00
  • Issuer:
    • Issuer name: CN=DigiCert Global Root G3,OU=www.digicert.com,O=DigiCert Inc,C=US
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://cacerts.digicert.com/DigiCertExtendedValidationCAG3.crt --output cert.crt

Download certificate through wget:

wget -q http://cacerts.digicert.com/DigiCertExtendedValidationCAG3.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            04:a2:90:e3:cd:ee:4d:c6:e0:42:e9:2b:ad:3a:74:76
    Signature Algorithm: ecdsa-with-SHA384
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G3
        Validity
            Not Before: Nov 11 12:00:00 2015 GMT
            Not After : Nov 11 12:00:00 2030 GMT
        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Extended Validation CA G3
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (384 bit)
                pub: 
                    04:fc:77:4e:f5:c6:7d:10:d0:b7:84:7b:11:96:51:
                    99:e9:ee:15:24:d7:ba:e6:99:22:aa:d2:93:00:ee:
                    5e:f9:e9:e6:ed:0d:53:8c:c9:24:d2:1b:5f:76:e6:
                    60:dc:e9:95:fd:e9:1e:cc:e6:55:1c:52:5a:13:37:
                    a3:6a:43:0e:29:4a:8b:df:96:8e:df:4e:64:86:1a:
                    72:07:d7:99:8d:21:4d:e6:85:e6:77:73:e8:66:ac:
                    f2:57:5c:e3:ea:8c:8e
                ASN1 OID: secp384r1
                NIST CURVE: P-384
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl4.digicert.com/DigiCertGlobalRootG3.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.digicert.com/CPS

            X509v3 Subject Key Identifier: 
                99:39:FF:5F:A4:B3:59:5F:81:C0:57:99:D1:A3:A4:47:AC:60:63:4D
            X509v3 Authority Key Identifier: 
                keyid:B3:DB:48:A4:F9:A1:C5:D8:AE:36:41:CC:11:63:69:62:29:BC:4B:C6

    Signature Algorithm: ecdsa-with-SHA384
         30:64:02:30:17:a5:dd:7a:f6:fd:b8:a1:9a:27:e0:9f:50:db:
         be:1c:b8:8d:be:2d:b8:b8:06:aa:62:cd:6f:50:b6:1b:ec:59:
         a4:dc:68:83:72:de:26:2c:81:c8:68:8b:27:44:7a:a4:02:30:
         29:7f:93:d1:0b:f7:e8:50:07:91:31:d7:c0:eb:c6:02:c9:11:
         77:cc:18:7f:4a:8c:f5:d2:bd:d6:4b:0d:60:d1:51:2f:d9:9d:
         89:8e:21:aa:d7:94:05:91:46:0b:ea:02

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIDKjCCArGgAwIBAgIQBKKQ483uTcbgQukrrTp0djAKBggqhkjOPQQDAzBhMQsw
CQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3d3cu
ZGlnaWNlcnQuY29tMSAwHgYDVQQDExdEaWdpQ2VydCBHbG9iYWwgUm9vdCBHMzAe
Fw0xNTExMTExMjAwMDBaFw0zMDExMTExMjAwMDBaMGwxCzAJBgNVBAYTAlVTMRUw
EwYDVQQKEwxEaWdpQ2VydCBJbmMxGTAXBgNVBAsTEHd3dy5kaWdpY2VydC5jb20x
KzApBgNVBAMTIkRpZ2lDZXJ0IEV4dGVuZGVkIFZhbGlkYXRpb24gQ0EgRzMwdjAQ
BgcqhkjOPQIBBgUrgQQAIgNiAAT8d071xn0Q0LeEexGWUZnp7hUk17rmmSKq0pMA
7l756ebtDVOMySTSG1925mDc6ZX96R7M5lUcUloTN6NqQw4pSovflo7fTmSGGnIH
15mNIU3mheZ3c+hmrPJXXOPqjI6jggEhMIIBHTASBgNVHRMBAf8ECDAGAQH/AgEA
MA4GA1UdDwEB/wQEAwIBhjA0BggrBgEFBQcBAQQoMCYwJAYIKwYBBQUHMAGGGGh0
dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTBCBgNVHR8EOzA5MDegNaAzhjFodHRwOi8v
Y3JsNC5kaWdpY2VydC5jb20vRGlnaUNlcnRHbG9iYWxSb290RzMuY3JsMD0GA1Ud
IAQ2MDQwMgYEVR0gADAqMCgGCCsGAQUFBwIBFhxodHRwczovL3d3dy5kaWdpY2Vy
dC5jb20vQ1BTMB0GA1UdDgQWBBSZOf9fpLNZX4HAV5nRo6RHrGBjTTAfBgNVHSME
GDAWgBSz20ik+aHF2K42QcwRY2liKbxLxjAKBggqhkjOPQQDAwNnADBkAjAXpd16
9v24oZon4J9Q274cuI2+Lbi4BqpizW9QthvsWaTcaINy3iYsgchoiydEeqQCMCl/
k9EL9+hQB5Ex18DrxgLJEXfMGH9KjPXSvdZLDWDRUS/ZnYmOIarXlAWRRgvqAg==
-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26