GandiProSSLCA2.crt: CN=Gandi Pro SSL CA 2,O=Gandi,L=Paris,ST=Paris,C=FR (Intermediate Certificate, Expiring 2024-09-11) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://crt.usertrust.com/GandiProSSLCA2.crt" --output cert.crt

Download certificate through wget:

wget -q "http://crt.usertrust.com/GandiProSSLCA2.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            3e:f6:be:db:8a:a5:3d:74:ce:09:52:38:79:53:7c:b8
    Signature Algorithm: sha384WithRSAEncryption
        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
        Validity
            Not Before: Sep 12 00:00:00 2014 GMT
            Not After : Sep 11 23:59:59 2024 GMT
        Subject: C=FR, ST=Paris, L=Paris, O=Gandi, CN=Gandi Pro SSL CA 2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:83:bb:9f:a9:2f:f2:c8:04:7c:95:03:64:da:89:
                    91:30:50:50:8f:cb:c2:ae:db:e9:0c:20:d5:78:a8:
                    f2:32:8e:3c:9e:80:6b:54:de:a7:b7:be:8e:9f:6f:
                    fa:70:1e:64:99:45:59:68:97:9f:9a:7c:71:53:14:
                    64:42:6a:c0:dd:46:d8:34:e6:75:96:34:90:9d:1b:
                    cc:6f:cc:a5:04:ec:b4:e9:b6:8c:60:c9:72:d4:db:
                    e7:01:25:97:b0:c5:13:6e:ac:65:bc:76:d5:d2:96:
                    df:0c:d0:9a:af:bc:aa:9a:40:4f:60:52:a9:ad:49:
                    f7:51:73:d9:97:5f:3e:26:72:f8:d4:2a:34:26:2f:
                    20:2d:be:73:d5:a6:f0:29:ab:e6:8b:40:35:c6:ed:
                    08:ee:67:77:9e:09:67:f2:ca:01:d0:2b:97:ba:49:
                    87:1a:71:97:5d:0c:72:1c:1c:75:e3:d5:1b:58:0f:
                    e7:6b:aa:ab:83:4a:34:71:52:82:07:b7:d9:2b:d6:
                    61:02:76:67:77:36:7e:44:ae:74:d3:32:97:a1:f3:
                    78:04:37:87:19:d7:cd:a0:f6:2c:a4:b4:ef:05:93:
                    78:f0:5f:ef:1c:f1:ca:95:7a:65:6f:86:4f:11:5e:
                    8d:ef:e3:28:72:fb:a9:c5:87:70:0f:37:32:2f:43:
                    7c:4d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB

            X509v3 Subject Key Identifier: 
                80:CD:49:6C:B4:53:84:04:E2:CA:F6:8D:B1:48:DA:D8:0D:95:4B:4E
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.6449.1.2.2.26
                Policy: 2.23.140.1.2.2

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl

            Authority Information Access: 
                CA Issuers - URI:http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
                OCSP - URI:http://ocsp.usertrust.com

    Signature Algorithm: sha384WithRSAEncryption
         4d:25:ba:89:2f:ee:ae:a6:47:97:14:a1:f6:e5:c6:fe:22:8e:
         2d:f8:78:7a:a4:fc:fa:8d:6f:9f:0a:60:94:53:6f:df:ad:a2:
         d6:cc:da:30:86:56:98:fa:9d:65:64:df:1c:6a:7e:df:53:8a:
         9b:b1:41:f5:c9:d1:d7:ba:02:36:2f:3d:f1:64:2c:72:72:77:
         2b:a8:3c:a1:13:a8:84:99:dc:fe:25:90:48:0e:27:3f:14:b6:
         d9:b6:fb:91:5b:85:8b:f9:d7:8e:74:91:1f:c3:d7:ca:a1:b1:
         61:b0:7c:eb:71:7d:c1:3a:a1:43:81:9c:61:cc:82:9c:f5:0f:
         c8:0d:dc:33:c0:51:e9:82:62:23:63:36:6e:bb:60:00:6c:3d:
         43:22:8c:a3:2e:7b:92:26:25:c0:8d:af:28:83:24:f0:ec:cb:
         ed:cf:d7:90:e8:91:ee:c9:e7:77:be:93:04:e0:b7:c7:d5:7e:
         3e:74:af:86:ec:18:1b:44:b6:a8:78:70:3e:86:e9:1c:58:c0:
         17:57:30:31:c5:76:55:78:9d:9d:9f:a1:85:42:5a:c4:bd:11:
         8c:ce:10:71:ea:2e:7c:04:ad:a3:64:29:76:b2:b0:30:40:c1:
         ba:9b:b2:5f:6f:78:76:99:f8:f8:a6:27:37:34:4d:d4:04:78:
         7c:df:c0:6c:a6:d6:2a:25:1b:aa:9a:c9:dd:92:76:16:aa:71:
         91:d1:52:25:3a:45:53:73:05:36:cd:51:a5:0a:7f:d2:87:d0:
         ee:b4:31:7b:39:7a:e3:7d:81:6c:be:b6:79:59:0c:7a:65:d8:
         b4:3d:b8:10:85:5d:94:5e:73:ae:d3:76:33:0b:64:0f:1c:59:
         c8:fa:ee:95:6a:97:f1:6f:8e:c5:e8:a9:1f:1a:d4:be:4e:63:
         8d:2f:9d:47:41:b6:ac:96:77:38:d0:ce:e1:d1:b4:a0:de:d3:
         97:05:fd:00:8f:38:3a:b5:07:75:ca:1d:5e:59:b6:af:38:66:
         3a:81:a3:8b:ce:c6:73:44:7d:4f:c4:e5:88:9f:8f:c4:b0:85:
         df:34:e2:03:ac:be:47:13:04:f8:c8:c4:ee:fb:12:93:99:f1:
         2a:c3:90:74:2b:c1:8a:06:b8:8d:e3:ee:bd:b5:34:aa:f9:cf:
         f2:44:0a:42:0a:64:28:28:92:de:d4:42:87:ff:89:8a:c2:95:
         65:ff:c4:5e:91:47:e7:b2:66:f3:37:24:c1:24:c3:8d:34:86:
         d2:20:06:01:08:e6:6b:bd:c8:76:e7:fb:4f:be:72:0f:b8:7d:
         87:44:67:62:f9:35:51:5f:ee:17:fe:9b:07:64:19:ea:89:b7:
         eb:ed:f0:82:0a:c9:2c:f8

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIF5DCCA8ygAwIBAgIQPva+24qlPXTOCVI4eVN8uDANBgkqhkiG9w0BAQwFADCB
iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0pl
cnNleSBDaXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNV
BAMTJVVTRVJUcnVzdCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTQw
OTEyMDAwMDAwWhcNMjQwOTExMjM1OTU5WjBaMQswCQYDVQQGEwJGUjEOMAwGA1UE
CBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4wDAYDVQQKEwVHYW5kaTEbMBkGA1UE
AxMSR2FuZGkgUHJvIFNTTCBDQSAyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
CgKCAQEAg7ufqS/yyAR8lQNk2omRMFBQj8vCrtvpDCDVeKjyMo48noBrVN6nt76O
n2/6cB5kmUVZaJefmnxxUxRkQmrA3UbYNOZ1ljSQnRvMb8ylBOy06baMYMly1Nvn
ASWXsMUTbqxlvHbV0pbfDNCar7yqmkBPYFKprUn3UXPZl18+JnL41Co0Ji8gLb5z
1abwKavmi0A1xu0I7md3ngln8soB0CuXukmHGnGXXQxyHBx149UbWA/na6qrg0o0
cVKCB7fZK9ZhAnZndzZ+RK500zKXofN4BDeHGdfNoPYspLTvBZN48F/vHPHKlXpl
b4ZPEV6N7+MocvupxYdwDzcyL0N8TQIDAQABo4IBdTCCAXEwHwYDVR0jBBgwFoAU
U3m/WqorSs9UgOHYm8Cd8rIDZsswHQYDVR0OBBYEFIDNSWy0U4QE4sr2jbFI2tgN
lUtOMA4GA1UdDwEB/wQEAwIBhjASBgNVHRMBAf8ECDAGAQH/AgEAMB0GA1UdJQQW
MBQGCCsGAQUFBwMBBggrBgEFBQcDAjAiBgNVHSAEGzAZMA0GCysGAQQBsjEBAgIa
MAgGBmeBDAECAjBQBgNVHR8ESTBHMEWgQ6BBhj9odHRwOi8vY3JsLnVzZXJ0cnVz
dC5jb20vVVNFUlRydXN0UlNBQ2VydGlmaWNhdGlvbkF1dGhvcml0eS5jcmwwdgYI
KwYBBQUHAQEEajBoMD8GCCsGAQUFBzAChjNodHRwOi8vY3J0LnVzZXJ0cnVzdC5j
b20vVVNFUlRydXN0UlNBQWRkVHJ1c3RDQS5jcnQwJQYIKwYBBQUHMAGGGWh0dHA6
Ly9vY3NwLnVzZXJ0cnVzdC5jb20wDQYJKoZIhvcNAQEMBQADggIBAE0luokv7q6m
R5cUofblxv4iji34eHqk/PqNb58KYJRTb9+totbM2jCGVpj6nWVk3xxqft9Tipux
QfXJ0de6AjYvPfFkLHJydyuoPKETqISZ3P4lkEgOJz8Uttm2+5FbhYv51450kR/D
18qhsWGwfOtxfcE6oUOBnGHMgpz1D8gN3DPAUemCYiNjNm67YABsPUMijKMue5Im
JcCNryiDJPDsy+3P15Doke7J53e+kwTgt8fVfj50r4bsGBtEtqh4cD6G6RxYwBdX
MDHFdlV4nZ2foYVCWsS9EYzOEHHqLnwEraNkKXaysDBAwbqbsl9veHaZ+PimJzc0
TdQEeHzfwGym1iolG6qayd2SdhaqcZHRUiU6RVNzBTbNUaUKf9KH0O60MXs5euN9
gWy+tnlZDHpl2LQ9uBCFXZRec67TdjMLZA8cWcj67pVql/FvjsXoqR8a1L5OY40v
nUdBtqyWdzjQzuHRtKDe05cF/QCPODq1B3XKHV5Ztq84ZjqBo4vOxnNEfU/E5Yif
j8Swhd804gOsvkcTBPjIxO77EpOZ8SrDkHQrwYoGuI3j7r21NKr5z/JECkIKZCgo
kt7UQof/iYrClWX/xF6RR+eyZvM3JMEkw400htIgBgEI5mu9yHbn+0++cg+4fYdE
Z2L5NVFf7hf+mwdkGeqJt+vt8IIKySz4
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06