D-TRUST_CA_2-1_2018.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 2-1 2018,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2033-10-04) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_2-1_2018.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_2-1_2018.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            05:4b:02:24:12:dc:f1:42:5c:2f:3e:7e:c5:34:71:c6
    Signature Algorithm: sha512WithRSAEncryption
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 2 2018/2.5.4.97=NTRDE-HRB74346
        Validity
            Not Before: Oct  4 08:10:12 2018 GMT
            Not After : Oct  4 07:32:14 2033 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 2-1 2018/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:ea:50:e1:d2:78:19:eb:85:6d:5c:99:18:33:43:
                    87:2f:e9:c7:bf:d0:51:d0:4a:3a:9a:a4:4b:a2:68:
                    6f:f3:d5:84:b0:07:cb:a9:f1:f8:3d:4c:47:0e:b7:
                    d5:6d:75:9c:82:8d:17:48:30:73:ab:68:ce:a5:67:
                    61:95:c9:3f:82:75:5e:6d:61:9b:95:a9:90:1d:7d:
                    c8:b3:e1:cc:d0:71:fc:08:ae:9e:60:c9:43:33:2a:
                    f3:3d:f5:11:b9:25:e7:60:57:09:e4:6c:cb:10:0f:
                    51:c8:96:d1:2a:4f:51:e9:69:c1:95:ff:ca:a8:21:
                    ea:34:d8:52:c6:10:47:f6:99:c6:b4:8c:cf:2e:f6:
                    dd:28:82:4c:e1:35:27:d7:ba:84:96:6a:97:9e:b7:
                    de:de:e7:5a:c2:8e:2e:37:d3:73:e8:a0:b7:7c:e6:
                    d8:06:65:2f:1d:f3:bc:84:77:d0:f4:9c:46:40:fd:
                    7e:1c:9e:ad:4c:11:4d:ba:eb:7c:0d:ec:e1:29:28:
                    e5:af:b1:ff:7b:f1:83:c1:a8:e1:29:15:c8:2f:2a:
                    57:40:b2:87:e0:a0:35:41:68:c7:63:6e:1f:ab:f2:
                    f0:88:5b:bb:b4:f7:d5:4d:aa:a1:8b:9c:d5:6a:77:
                    23:3a:27:66:13:52:55:b2:df:37:7d:a4:65:c1:41:
                    e7:73:27:14:46:3d:bf:5c:1c:0e:98:f8:1c:5d:19:
                    6c:e5:5f:14:8b:20:ad:2a:32:63:53:eb:c4:7a:97:
                    3b:37:dc:35:7b:8e:08:78:01:a0:7b:f0:56:89:84:
                    85:81:27:e8:9f:f6:a6:9b:90:11:af:62:3d:c8:0c:
                    cc:5d:4a:9d:ee:cb:56:43:64:c4:04:20:19:6e:95:
                    b7:48:5c:3f:8d:a9:31:58:c2:a8:04:eb:e4:42:23:
                    a3:dc:d9:20:15:15:97:73:b0:7c:94:23:aa:a4:c6:
                    48:ff:39:c8:70:e8:0f:b5:d6:b9:eb:e6:3f:e4:4a:
                    67:b2:86:4c:a1:9e:a2:dc:37:53:25:c8:8e:fd:e7:
                    fb:d3:d3:45:2f:69:de:bb:d8:43:fd:3f:85:14:11:
                    b5:90:16:5f:e3:ef:1d:0e:ca:ef:4c:c3:84:93:cc:
                    5b:64:2f:7d:31:34:fd:18:8f:43:0d:b8:6e:90:50:
                    f3:17:4c:fd:f6:25:f8:d9:e8:22:63:7b:11:b6:3a:
                    b3:e1:76:0d:51:ab:27:5e:fa:2a:a6:cd:07:86:57:
                    51:fa:34:11:48:28:bb:c7:e9:f7:34:fd:a9:b8:48:
                    c0:10:d9:5f:ac:f8:88:a7:eb:cb:32:74:ab:b2:7f:
                    46:ef:f0:97:9d:d0:39:db:fe:32:38:f7:2e:30:88:
                    e7:17:bb
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Authority Key Identifier: 
                keyid:85:69:BD:8F:94:38:F4:FC:91:FC:33:01:15:CC:03:4C:3F:A3:50:28

            Authority Information Access: 
                OCSP - URI:http://root-ca-2-2018.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_2_2018.crt
                CA Issuers - URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%202%202018,O=D-Trust%20GmbH,C=DE?cACertificate?base?

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.4
                Policy: 1.3.6.1.4.1.4788.2.150.4
                Policy: 1.3.6.1.4.1.4788.2.202.1
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_CSM_PKI_CPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%202%202018,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_2_2018.crl

            X509v3 Subject Key Identifier: 
                8E:CE:3A:5C:31:38:28:51:6A:DE:37:39:9D:FB:7B:FB:D2:34:C7:6F
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: sha512WithRSAEncryption
         74:13:9f:3b:94:d8:59:f0:53:53:1d:7f:54:b6:b9:b5:96:08:
         09:e0:ad:86:e3:f5:2d:f4:e7:16:c0:d4:4c:23:35:f3:15:c3:
         41:06:c2:4f:b4:ee:f4:c5:d6:30:75:8d:f1:dc:03:db:a9:65:
         1e:f5:d5:f2:98:71:ca:26:af:f3:c4:55:46:6b:49:8a:a8:c1:
         f3:e6:d8:7b:fa:0a:70:82:ed:7e:0c:ab:34:77:6f:bd:95:65:
         f5:e9:dd:9e:f7:95:39:05:d2:52:b6:15:20:5e:d4:15:ad:ef:
         7b:c4:70:e7:65:f5:9b:3e:51:51:33:fd:88:db:90:cc:11:73:
         25:39:cf:e4:8a:9e:d9:5a:8a:1e:28:c7:a6:3a:c4:46:82:bb:
         fe:aa:70:31:ac:f5:6d:d5:13:f9:b5:57:ac:87:33:31:a6:14:
         98:7f:1e:aa:84:de:f8:8f:74:42:fa:cf:6d:93:9c:39:53:0a:
         46:f3:3a:38:57:ad:87:b5:9b:bb:61:e8:8c:f7:3b:a7:5e:5b:
         de:90:d0:17:a5:5c:57:c8:ec:e7:fc:bf:4d:a5:35:4a:d8:ed:
         67:6c:22:e8:a1:98:00:65:ef:2a:e9:f0:87:00:87:00:75:2d:
         9f:30:95:0d:ac:c2:bd:78:b8:e8:1c:66:ad:eb:4e:79:8f:39:
         11:bb:34:45:6a:7c:ad:6e:82:4b:21:dc:21:d3:c4:07:15:da:
         ec:51:c9:94:4b:8f:ec:bc:d7:37:03:80:7c:be:ef:a6:56:65:
         e2:b8:bf:2f:39:fd:09:53:19:b3:63:cb:30:ff:c0:a6:5e:b9:
         b1:21:ef:17:b7:a3:c8:52:72:a3:c6:0f:0c:85:49:2f:d1:b4:
         e9:db:e9:f0:a0:38:2a:ec:52:2c:af:fc:2c:b5:d7:26:f8:5f:
         ee:2b:ad:8e:58:ee:f2:7a:16:dd:71:5f:70:8c:52:bf:7e:15:
         fc:2a:d2:d3:7b:e9:d9:03:79:b5:0e:2c:fe:eb:14:0e:fb:ee:
         2c:4c:41:aa:09:64:6f:61:6e:92:7b:2f:1b:b0:74:1c:4b:46:
         1e:98:3d:eb:c9:7c:5e:61:11:84:ce:fb:d3:84:3a:7c:69:ec:
         29:b2:bf:b2:34:cd:69:c6:fa:34:9a:f6:4d:3a:a9:09:cf:6d:
         c9:63:70:8f:b7:25:93:94:f4:2f:7b:6b:5c:80:d6:22:73:49:
         04:2e:13:20:40:99:97:c3:9b:d3:ec:48:38:07:4c:cb:e2:fb:
         91:73:33:55:53:99:38:43:cf:61:bb:4b:e6:73:8c:7c:eb:c4:
         78:41:e5:a5:28:75:c1:d0:b8:4c:fa:12:a7:ae:6a:bb:96:41:
         8f:3f:ab:28:19:a6:7f:50

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06