D-TRUST_Qualified_Root_CA_2_2014.crt: CN=D-TRUST Qualified Root CA 2 2014:PN,O=D-Trust GmbH,C=DE (Root Certificate, Expiring 2019-11-17) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is root certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_Qualified_Root_CA_2_2014.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_Qualified_Root_CA_2_2014.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 1415455 (0x15991f)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Qualified Root CA 2 2014:PN
        Validity
            Not Before: Nov 17 14:00:47 2014 GMT
            Not After : Nov 17 14:00:47 2019 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST Qualified Root CA 2 2014:PN
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:98:36:d2:45:ac:c7:7d:cd:58:a2:a1:fa:75:75:
                    b3:93:6c:c1:25:a7:65:8a:a1:e0:a5:fb:75:67:91:
                    ea:5c:5e:80:cd:74:3c:76:e1:cb:37:70:db:f9:24:
                    83:51:63:fe:7c:3b:f5:4e:2e:bd:c2:61:f9:1e:aa:
                    dd:48:67:25:12:fa:0d:4a:d4:d1:8c:5a:67:ce:3f:
                    fb:73:90:24:00:b5:9e:66:54:73:72:b0:63:78:81:
                    53:b5:27:59:be:09:6e:03:5e:01:9d:05:e6:45:58:
                    82:de:d8:0e:14:cc:94:23:bd:b0:a8:21:ae:7f:b6:
                    3c:71:6f:c3:49:f4:b3:05:61:53:3b:e0:3d:ba:88:
                    f4:a0:c2:84:69:a2:dd:d6:25:45:e2:67:2d:29:ff:
                    da:b6:b1:f3:cb:73:72:d7:f7:7d:5a:06:cb:2f:18:
                    86:b6:b3:71:56:1e:fc:8f:d1:c2:4b:8a:ec:d7:b0:
                    04:0b:73:99:9e:8b:14:13:78:c2:cc:b0:87:c9:08:
                    f0:23:e7:eb:92:62:0d:8f:94:32:e0:bd:e3:18:9a:
                    b1:b4:80:41:6f:d2:f0:68:29:24:b9:5d:e0:eb:bf:
                    7f:57:80:61:58:aa:43:b7:a6:08:a3:f6:18:20:d4:
                    6e:e3:61:a1:5d:20:7d:c7:5d:ca:85:23:06:7b:db:
                    e7:79
                Exponent: 2788823715 (0xa63a12a3)
        X509v3 extensions:
            qcStatements: 
                0
0......F..
            Authority Information Access: 
                OCSP - URI:http://qual.ocsp.d-trust.net

            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.4788.2.31.1

            X509v3 Subject Alternative Name: 
                email:info@d-trust.net, URI:http://www.d-trust.net
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Qualified%20Root%20CA%202%202014%3APN,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_qualified_root_ca_2_2014.crl

            X509v3 Subject Key Identifier: 
                18:D3:23:E4:7A:A4:B5:A9:BF:FF:5E:A8:F6:3C:DD:BE:42:27:81:F5
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE
    Signature Algorithm: sha256WithRSAEncryption
         83:3f:e5:1d:88:86:9a:58:54:05:5f:10:2b:ca:17:f7:4b:31:
         0c:83:30:8d:a2:4c:49:e4:63:4b:dc:15:ac:24:5d:0a:bf:95:
         2f:46:09:8f:b5:c7:67:59:48:cf:6b:bd:f6:2b:44:c0:6c:d3:
         87:8a:99:74:6a:e4:fc:59:90:f0:b6:a1:59:28:08:72:32:69:
         c4:3b:38:e4:9e:33:e4:ff:24:c5:67:54:c7:67:a1:28:63:99:
         e4:ea:73:1d:2c:1d:e6:24:30:01:d0:f0:4f:d8:d6:35:83:38:
         e7:3d:a4:84:04:3c:08:70:76:34:eb:f6:42:2f:d6:91:b8:87:
         76:d4:a0:19:2f:3d:a9:67:27:fd:90:65:06:0e:bb:71:1c:5c:
         ea:5a:49:1b:8f:94:1a:0a:08:48:6c:6c:45:e4:2d:3c:26:46:
         2b:ae:88:1e:4a:9e:4e:0f:82:c9:0c:90:b9:a3:c5:3d:29:af:
         bb:5b:69:76:52:fc:3a:2d:d7:a2:0f:40:d0:3d:84:ac:2c:78:
         71:3a:94:e6:10:1f:8a:c0:f0:95:0b:52:91:62:8c:c0:cf:66:
         31:04:28:ca:3b:c4:d5:c0:f3:85:65:f2:fa:42:08:ff:8e:5e:
         61:d0:f4:d6:af:7b:ff:39:c2:a7:43:b0:09:64:39:d6:19:fe:
         00:56:e3:56

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIE6jCCA9KgAwIBAgIDFZkfMA0GCSqGSIb3DQEBCwUAMFIxCzAJBgNVBAYTAkRF
MRUwEwYDVQQKDAxELVRydXN0IEdtYkgxLDAqBgNVBAMMI0QtVFJVU1QgUXVhbGlm
aWVkIFJvb3QgQ0EgMiAyMDE0OlBOMB4XDTE0MTExNzE0MDA0N1oXDTE5MTExNzE0
MDA0N1owUjELMAkGA1UEBhMCREUxFTATBgNVBAoMDEQtVHJ1c3QgR21iSDEsMCoG
A1UEAwwjRC1UUlVTVCBRdWFsaWZpZWQgUm9vdCBDQSAyIDIwMTQ6UE4wggEkMA0G
CSqGSIb3DQEBAQUAA4IBEQAwggEMAoIBAQCYNtJFrMd9zViiofp1dbOTbMElp2WK
oeCl+3VnkepcXoDNdDx24cs3cNv5JINRY/58O/VOLr3CYfkeqt1IZyUS+g1K1NGM
WmfOP/tzkCQAtZ5mVHNysGN4gVO1J1m+CW4DXgGdBeZFWILe2A4UzJQjvbCoIa5/
tjxxb8NJ9LMFYVM74D26iPSgwoRpot3WJUXiZy0p/9q2sfPLc3LX931aBssvGIa2
s3FWHvyP0cJLiuzXsAQLc5meixQTeMLMsIfJCPAj5+uSYg2PlDLgveMYmrG0gEFv
0vBoKSS5XeDrv39XgGFYqkO3pgij9hgg1G7jYaFdIH3HXcqFIwZ72+d5AgUApjoS
o6OCAcUwggHBMBgGCCsGAQUFBwEDBAwwCjAIBgYEAI5GAQEwOAYIKwYBBQUHAQEE
LDAqMCgGCCsGAQUFBzABhhxodHRwOi8vcXVhbC5vY3NwLmQtdHJ1c3QubmV0MBcG
A1UdIAQQMA4wDAYKKwYBBAGlNAIfATAzBgNVHREELDAqgRBpbmZvQGQtdHJ1c3Qu
bmV0hhZodHRwOi8vd3d3LmQtdHJ1c3QubmV0MIHcBgNVHR8EgdQwgdEwgYeggYSg
gYGGf2xkYXA6Ly9kaXJlY3RvcnkuZC10cnVzdC5uZXQvQ049RC1UUlVTVCUyMFF1
YWxpZmllZCUyMFJvb3QlMjBDQSUyMDIlMjAyMDE0JTNBUE4sTz1ELVRydXN0JTIw
R21iSCxDPURFP2NlcnRpZmljYXRlcmV2b2NhdGlvbmxpc3QwRaBDoEGGP2h0dHA6
Ly9jcmwuZC10cnVzdC5uZXQvY3JsL2QtdHJ1c3RfcXVhbGlmaWVkX3Jvb3RfY2Ff
Ml8yMDE0LmNybDAdBgNVHQ4EFgQUGNMj5Hqktam//16o9jzdvkIngfUwDgYDVR0P
AQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIM/
5R2IhppYVAVfECvKF/dLMQyDMI2iTEnkY0vcFawkXQq/lS9GCY+1x2dZSM9rvfYr
RMBs04eKmXRq5PxZkPC2oVkoCHIyacQ7OOSeM+T/JMVnVMdnoShjmeTqcx0sHeYk
MAHQ8E/Y1jWDOOc9pIQEPAhwdjTr9kIv1pG4h3bUoBkvPalnJ/2QZQYOu3EcXOpa
SRuPlBoKCEhsbEXkLTwmRiuuiB5Knk4PgskMkLmjxT0pr7tbaXZS/Dot16IPQNA9
hKwseHE6lOYQH4rA8JULUpFijMDPZjEEKMo7xNXA84Vl8vpCCP+OXmHQ9Nave/85
wqdDsAlkOdYZ/gBW41Y=
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06