affirmtrust_certificate_authority_ev1.crt: CN=AffirmTrust Extended Validation CA - EV1,OU=See www.affirmtrust.com/repository,O=AffirmTrust,C=CA (Intermediate Certificate, Expiring 2030-12-02) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.affirmtrust.com/downloads/affirmtrust_certificate_authority_ev1.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.affirmtrust.com/downloads/affirmtrust_certificate_authority_ev1.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            17:29:55:1e:d6:8e:7f:b1:ed:f5:73:00:f3:5d:7f:d5
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=AffirmTrust, CN=AffirmTrust Commercial
        Validity
            Not Before: Mar 21 20:27:54 2019 GMT
            Not After : Dec  2 04:00:00 2030 GMT
        Subject: C=CA, O=AffirmTrust, OU=See www.affirmtrust.com/repository, CN=AffirmTrust Extended Validation CA - EV1
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:b8:f0:4c:21:af:55:b9:72:46:03:0d:0c:1e:f8:
                    9e:19:c8:8f:14:0d:75:6f:d4:f8:f5:82:7b:4f:ec:
                    d5:a6:83:0c:40:ef:ae:79:42:95:1d:bd:a5:db:aa:
                    1e:0a:2c:08:85:73:10:e4:ba:ae:39:57:31:fa:ba:
                    1f:a2:ec:dc:29:76:37:c0:a0:d9:cc:72:0e:9c:09:
                    14:fb:6d:d4:72:7f:f7:75:11:fb:68:72:54:2e:c0:
                    6e:7d:9a:be:36:fc:20:61:28:09:24:40:ca:7e:ab:
                    c8:57:f7:39:1e:24:72:67:61:fe:9c:02:39:d7:44:
                    36:c4:2d:14:c6:04:81:b2:e7:dc:71:0f:85:c2:48:
                    3a:04:01:83:95:35:eb:be:2f:30:8b:be:54:68:6b:
                    9e:ea:3b:ff:a9:c2:8b:c9:b7:95:52:b8:2a:28:4e:
                    b8:77:da:1a:f4:f1:b9:fe:0f:3d:43:04:9d:b0:84:
                    04:75:54:85:cc:5b:c5:a4:e1:bd:62:12:5b:27:5e:
                    fb:66:0e:83:18:2c:54:d2:55:b0:16:b5:69:c8:7f:
                    f6:be:75:e5:8e:13:10:49:c9:fc:53:1c:c2:25:d0:
                    e0:dc:40:ea:8e:06:95:d0:91:f6:ca:82:ee:83:e4:
                    15:62:05:11:3e:ee:41:11:be:6e:b7:db:c0:74:fe:
                    dc:2f
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://ocsp.affirmtrust.com

            X509v3 Subject Key Identifier: 
                DB:EF:65:37:0B:E5:47:CB:35:D1:90:1F:03:C1:BC:88:C7:A7:EA:80
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Authority Key Identifier: 
                keyid:9D:93:C6:53:8B:5E:CA:AF:3F:9F:1E:0F:E5:99:95:BC:24:F6:94:8F

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.affirmtrust.com/repository

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.affirmtrust.com/crl/AffirmTrustCommercial.crl

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
    Signature Algorithm: sha256WithRSAEncryption
         04:c7:d7:57:cc:ac:83:46:99:01:90:a9:05:b4:01:3b:5e:56:
         75:06:2e:b9:91:48:dd:8e:96:64:66:f9:d9:14:c0:a5:e1:71:
         04:04:7d:86:25:12:08:0f:aa:0b:f1:49:4a:70:d7:77:d7:48:
         ea:95:1e:a0:1c:8f:70:48:a8:5f:79:ee:48:7e:9b:70:e6:0b:
         44:57:f4:a6:84:28:3d:7a:e6:97:fb:ec:fe:67:65:c4:66:66:
         90:65:f5:c7:2d:bf:32:31:37:5f:6e:cd:c9:a2:9d:c8:6e:b1:
         8c:0b:c9:e5:a1:06:d4:d9:c6:91:11:f4:b6:eb:7c:c3:5a:43:
         b1:a7:ae:06:a5:33:1e:78:42:f7:63:3a:1c:3f:18:9b:3d:fd:
         2a:84:cd:89:8f:b2:12:fe:0f:38:19:5f:fa:00:cd:8e:b7:ad:
         02:21:ac:16:e5:7f:af:f6:b5:a9:59:a9:c8:bd:ea:81:73:36:
         cb:7c:ac:67:cf:cb:fc:50:ee:58:24:92:2d:61:c0:86:1b:39:
         13:1f:96:80:61:3f:eb:c0:64:9a:34:9b:17:4c:8a:9b:b7:67:
         44:e8:2b:e2:94:da:2a:a7:07:15:d5:af:6f:e4:a1:df:82:a6:
         41:e7:8d:41:da:d7:09:d0:b9:26:9e:7e:78:37:5f:06:7f:be:
         ab:52:2f:d7

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06