D-TRUST_CA_1-3_2017.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 1-3 2017,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2032-02-01) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_1-3_2017.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_1-3_2017.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 1041569 (0xfe4a1)
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 1 2017/2.5.4.97=NTRDE-HRB74346
        Validity
            Not Before: Feb  1 09:34:42 2017 GMT
            Not After : Feb  1 08:26:48 2032 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 1-3 2017/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsassaPss
                RSA-PSS Public-Key: (4096 bit)
                Modulus:
                    00:9a:b7:b0:df:08:e4:3b:30:82:89:06:9e:7e:03:
                    ab:e3:16:1c:a8:84:74:89:6e:e5:c5:9c:4b:da:14:
                    53:d4:af:18:a8:22:a2:81:e4:0f:c5:e9:46:d0:d3:
                    60:46:6d:99:d4:96:e4:fc:22:66:d5:46:10:fa:01:
                    e6:ad:55:c2:cf:89:71:fe:f9:21:9e:9d:4d:4b:c2:
                    17:15:e4:d6:d5:5f:4c:43:23:8f:fb:12:85:78:0d:
                    be:16:ad:ec:1a:94:97:dd:d8:d5:24:4c:f1:df:a4:
                    ae:5e:4b:6d:76:b7:c3:86:95:ac:f9:a6:3a:c7:f7:
                    1a:59:06:b3:90:5f:d2:fc:2b:b4:22:e4:a5:7f:5d:
                    cb:6a:a6:14:cb:73:41:43:79:a0:fb:b2:12:fa:93:
                    eb:2d:18:90:12:eb:82:fc:c8:54:4a:90:cb:78:60:
                    06:99:e2:2e:ad:de:6c:5f:6a:90:86:16:5f:2d:34:
                    55:a2:a7:a9:f5:39:1b:aa:fd:5e:85:25:f2:9e:ab:
                    a5:71:ec:92:f4:67:cc:86:30:67:ef:df:c3:06:69:
                    d3:17:6d:77:85:5d:eb:f6:6e:d4:8e:39:57:43:4a:
                    10:5a:9a:9a:52:a3:07:8b:15:26:53:33:1c:c0:b4:
                    ba:16:1d:ab:25:13:66:ae:28:c9:f5:b2:66:82:b1:
                    85:5d:2d:58:e3:1f:fe:1a:dc:10:80:e6:47:b8:b9:
                    93:d6:52:ab:ac:a9:2d:95:71:a5:3a:91:bc:fa:db:
                    1c:ef:62:1b:d2:9d:7b:50:d5:de:18:2b:dc:59:19:
                    b6:05:f1:5b:72:ff:76:ad:54:92:30:7d:94:90:fd:
                    fa:dc:b3:d4:6c:91:48:eb:cb:95:56:b8:89:4e:2f:
                    b8:c2:bc:b0:e0:6e:20:bc:67:48:24:0b:fa:2f:9f:
                    79:3c:5e:21:4e:07:4c:5b:93:1a:ed:4c:75:fa:7c:
                    86:86:04:20:1c:bb:19:a9:d2:ba:2e:e9:23:a4:b3:
                    07:41:b0:84:28:79:07:41:4a:03:72:ec:2b:ca:51:
                    5a:ca:4d:db:f5:7d:e1:e2:ac:91:f1:8a:ea:39:67:
                    f4:bd:a8:b0:78:e0:ea:7f:bb:57:56:6f:06:b7:2d:
                    77:bd:b8:6c:09:26:0c:10:0a:3e:3c:3e:b9:d3:cc:
                    81:02:f7:50:50:1f:d3:0b:cd:f0:1d:60:1b:e9:4f:
                    85:fe:f9:31:f8:53:96:1a:0d:38:f2:00:cc:11:2d:
                    e9:a7:4b:0a:1c:e5:48:6f:9c:d2:e6:86:47:c1:9e:
                    61:36:88:50:99:4b:37:46:44:05:65:92:8c:e7:d0:
                    fe:d2:d1:d2:bf:0d:52:f3:1d:1f:ef:12:ee:1f:6d:
                    19:12:1d
                Exponent: 65537 (0x10001)
                No PSS parameter restrictions
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:10:2A:A5:47:77:53:32:26:20:ED:73:9C:D5:0D:32:31:EB:66:41:60

            Authority Information Access: 
                OCSP - URI:http://root-ca-1-2017.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_1_2017.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.2023.1.1
                Policy: 1.3.6.1.4.1.4788.2.100.3
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_Cloud_PKI_CPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%201%202017,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_1_2017.crl

            X509v3 Subject Key Identifier: 
                CD:FD:A8:1B:25:94:56:46:4C:2F:AC:C9:5A:46:0F:B8:27:92:28:5E
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)

         3a:a0:13:d2:0b:82:e6:02:8e:f0:38:02:02:43:4b:4f:b6:e5:
         52:18:fa:ec:e4:9b:f5:34:76:c9:0c:36:d1:c8:50:ab:f1:d3:
         6c:19:c9:38:7d:60:89:62:95:c7:e1:cb:8b:39:98:ea:3e:1f:
         c5:a5:ab:99:73:2e:08:b8:bb:b3:97:4f:d8:1a:af:39:41:2d:
         00:6c:b9:6b:c9:af:7a:f2:bf:27:cb:39:78:52:37:8c:03:72:
         86:36:37:c9:ba:17:4e:43:64:e0:f5:3c:bd:22:60:7b:84:cd:
         4a:00:69:46:82:42:b2:5c:09:c2:f5:88:a5:85:11:7c:a9:6b:
         03:14:95:44:52:a0:43:0c:89:2c:d4:5f:bc:16:8f:4e:a1:2a:
         49:22:0a:46:28:81:f3:9f:4e:6e:e2:42:d2:54:23:0b:12:27:
         46:58:1c:d5:d7:36:d6:1f:75:11:e2:16:c1:70:e8:60:b9:be:
         9b:43:73:0a:fd:aa:f9:39:b3:73:83:3e:e4:d2:f3:b2:ef:a6:
         57:8c:77:0f:70:75:69:94:d1:65:e2:a3:2c:22:eb:0f:a3:fe:
         16:3d:aa:8d:61:40:13:10:cf:a0:70:28:91:29:4f:a4:c1:ba:
         34:be:53:a4:72:5b:2e:86:ec:2b:e5:dc:2b:98:51:1f:83:5c:
         ed:cf:ce:88:6a:a1:ab:9d:5f:3c:90:82:56:1e:77:98:b6:ab:
         c3:eb:4a:31:cb:10:13:e2:d8:39:f1:97:df:4f:ac:bd:11:41:
         59:3d:a2:c1:72:38:28:27:80:48:8c:cf:0d:e4:8a:ac:09:2f:
         68:6c:f7:b2:9c:fc:8c:8a:11:e6:4c:5b:74:a1:5d:16:3a:9c:
         7c:79:f4:5e:42:e6:b2:c0:85:d0:79:b6:6c:cd:59:f9:0d:86:
         01:7f:ba:92:34:49:6f:87:fc:8c:85:e1:99:ab:51:bd:81:ed:
         57:c7:38:02:d2:8a:3c:d3:0a:25:7d:34:27:ea:41:f7:42:ed:
         4c:57:27:1d:35:f9:dc:ae:7d:7d:6a:4e:36:66:0d:ec:b6:93:
         d2:66:c4:5b:9f:da:c2:d8:c1:c1:05:c3:13:fc:8d:77:6f:c0:
         8d:6e:5f:16:f1:8c:01:7c:27:4a:73:25:a6:29:f1:fe:d2:14:
         79:44:ea:52:65:2a:1e:c5:10:8e:ca:b1:f9:e9:9a:fe:4b:06:
         a8:bc:d6:b4:8c:f5:27:e8:f9:27:21:7a:f5:47:b8:1d:e9:63:
         ea:1c:89:d6:cc:81:3d:02:e9:2d:91:0c:52:df:fd:34:9a:87:
         a8:4b:83:00:0e:04:71:33:54:30:40:84:2a:b8:3f:8f:ac:c9:
         22:91:d9:af:45:45:6b:2f

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06