D-TRUST_CA_3-21-2_2021.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 3-21-2 2021,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2036-02-17) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_3-21-2_2021.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_3-21-2_2021.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            4d:0b:3a:01:c6:5b:14:a0:13:5b:3c:b2:9c:2a:20:02
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 3 2021
        Validity
            Not Before: Apr 27 08:29:05 2021 GMT
            Not After : Feb 17 10:14:59 2036 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 3-21-2 2021/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:a3:9f:92:e2:82:69:9c:62:4c:73:60:c1:d0:cc:
                    36:17:2e:55:10:61:a8:5c:c2:7c:3d:59:1f:31:ec:
                    e3:fa:ed:d8:4d:3f:56:fb:77:9b:f1:e5:6c:c3:ce:
                    81:fa:0e:11:fb:6b:4b:70:be:f2:d2:5b:35:c3:31:
                    1a:7b:25:ec:4e:40:1f:c6:d1:58:5f:3e:ea:84:6b:
                    d4:63:37:19:28:4a:67:e4:6c:15:53:22:f8:a4:b7:
                    e8:c7:b1:57:82:b3:77:04:fa:93:0f:3a:4c:1e:15:
                    f2:26:cc:7c:cb:01:4e:63:40:de:74:9b:75:37:ce:
                    4b:cb:80:ce:a2:7c:e2:a5:bb:be:19:3d:3b:2d:de:
                    71:af:d9:b5:b1:8b:15:78:f1:99:d6:14:e0:6a:23:
                    c1:51:d8:aa:71:f7:a2:5e:8e:16:dc:f0:b5:a0:ea:
                    ca:7d:de:ba:63:7d:e7:8b:4f:b7:75:a6:07:11:21:
                    f2:99:ff:20:2c:1d:54:c4:3d:9d:b9:9c:84:ce:3b:
                    e8:96:14:33:b7:52:31:b0:00:f0:60:55:ba:87:4c:
                    e0:ab:a7:76:79:a4:8a:a9:7c:f9:8f:52:74:54:81:
                    f8:f9:04:91:a4:ec:72:7a:c5:42:70:a2:6e:7a:37:
                    16:dd:59:1a:df:cd:99:9d:4b:fe:4c:d6:e6:bb:c2:
                    35:ff:7d:c1:3b:df:3e:07:df:6c:c0:a6:90:67:10:
                    2f:42:37:94:f4:12:ce:7f:c5:5c:0a:79:b2:19:92:
                    07:92:00:1f:cc:f4:c8:43:96:e1:44:83:39:10:00:
                    d4:52:4e:85:3e:99:0e:fb:c7:74:2c:e3:47:bf:e7:
                    41:15:ad:1e:42:5c:49:e9:74:5c:a1:fb:9d:42:02:
                    96:7e:b5:ff:26:dc:2d:b8:dc:69:a5:d5:b0:7d:d3:
                    35:5c:de:03:89:ad:1b:e6:e4:0a:e3:86:a7:cb:49:
                    24:01:fe:c5:e5:a8:85:a0:8d:51:22:34:08:2e:54:
                    8a:2a:70:74:59:c6:2c:7f:db:13:ff:9a:cc:e9:ac:
                    8b:db:40:2a:ba:a9:75:fe:7d:38:29:40:e5:22:2e:
                    d3:d0:a0:ec:b0:66:de:6f:e3:a1:e4:e8:f0:2e:b7:
                    62:80:ca:1c:a3:40:e0:a4:fa:5b:bf:bb:79:d9:35:
                    2a:c1:62:2e:f0:f5:38:b8:ee:7a:f1:c9:a4:8f:16:
                    68:83:98:dd:21:9e:f2:9e:80:c4:dc:e0:a0:ec:83:
                    99:f4:41:44:3a:be:29:d3:70:47:68:ec:0e:7b:27:
                    38:fe:06:a5:4a:68:d6:43:bf:14:47:7a:d8:0a:b7:
                    be:a7:a8:f3:3b:d9:d7:57:9c:e3:f3:a8:9a:22:3e:
                    cf:ae:cf
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:B1:A7:5F:73:08:2D:F8:0B:6E:2D:51:34:79:0A:C6:1F:E1:90:46:50

            Authority Information Access: 
                OCSP - URI:http://root-ca-3-2021.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_3_2021.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.3
                Policy: 1.3.6.1.4.1.4788.2.150.2
                  CPS: https://www.d-trust.net/internet/files/D-TRUST_TSPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_3_2021.crl

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%203%202021,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

            X509v3 Subject Key Identifier: 
                CF:50:54:49:1C:1A:5F:17:DF:13:9E:00:4A:E7:9C:54:9B:0D:BF:D8
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: rsassaPss         
         Hash Algorithm: sha512
         Mask Algorithm: mgf1 with sha512
          Salt Length: 0x40
         Trailer Field: 0xBC (default)

         9d:aa:bb:d7:15:69:8f:f5:78:8c:ff:b3:7b:92:83:1e:81:ac:
         de:25:52:08:c3:cb:77:d9:fc:97:37:7d:40:e4:80:68:77:f2:
         6c:75:cd:90:1c:de:d6:1d:9f:b3:05:47:77:05:24:4e:1e:bf:
         ea:8c:9e:9f:c9:1f:09:50:ae:3f:be:cd:88:42:c7:a0:dd:ea:
         79:8c:09:27:f7:90:1f:61:28:8b:1c:93:1b:6c:3f:e2:77:6e:
         a3:76:49:ef:7d:c6:10:1e:c7:56:9e:22:e7:9e:a1:39:dc:5a:
         84:85:da:30:74:e5:03:e4:7d:06:f4:69:35:30:14:96:97:1d:
         be:2d:51:60:45:1c:cb:d4:4e:1b:1d:f5:9c:92:7c:72:8e:55:
         69:10:12:14:ba:ce:96:fb:b9:1d:56:c2:64:56:a5:0d:da:49:
         93:66:51:52:79:bd:d0:19:b5:1b:f3:ff:a9:71:9b:29:bb:36:
         85:64:13:91:d2:bb:7c:34:49:09:7b:0f:9d:b9:3d:5d:96:7e:
         c8:fc:f9:3d:bf:99:7f:d1:4f:70:52:9c:45:55:81:59:1b:22:
         57:70:0d:f4:58:ac:26:3d:17:93:ac:1d:2e:22:20:fb:7e:a7:
         de:a5:96:41:6a:fe:53:83:df:63:b3:de:12:af:e6:04:25:f2:
         7b:85:ef:db:dc:a9:90:55:61:8c:e8:11:96:cc:ef:2d:59:c2:
         36:2b:a8:ff:d5:7b:5c:0c:d3:5d:b0:3b:55:98:b7:3d:a8:fa:
         2d:64:c6:2d:57:5c:2b:2d:e2:48:5f:ff:09:6c:c4:bd:89:d9:
         cf:1b:1e:1a:35:18:39:e9:1e:bf:91:b8:0c:ef:ce:67:c0:41:
         73:0a:e3:71:7a:2c:ee:b5:25:ba:b4:fb:74:3f:24:aa:ea:e7:
         ca:8a:fd:77:0f:24:c2:b4:0c:76:e8:33:1a:de:12:01:3e:7e:
         9d:13:a5:3c:3a:bc:0c:26:c6:79:b7:c1:f9:58:1e:fc:3d:5c:
         40:c7:6b:75:29:c2:67:ef:56:df:8c:0c:5e:72:70:3e:81:b7:
         d0:75:6c:30:9b:47:76:c1:f6:7f:fa:5d:5b:5f:fa:91:ed:d6:
         80:6b:02:90:ba:15:fd:92:19:ed:ea:de:ba:ee:a2:48:a0:17:
         55:25:87:ec:77:13:fb:12:a9:ba:4b:19:6f:ba:d8:21:7c:be:
         a7:6b:28:53:4a:11:b3:23:68:2d:b1:34:05:ff:aa:f0:44:90:
         40:09:48:d1:22:1f:24:12:fa:7d:af:7a:9b:56:6d:9e:cd:53:
         0e:be:e2:8f:c5:9b:42:b8:5d:dd:4a:3f:fb:54:89:c8:9f:0f:
         4f:1a:41:a6:b9:31:21:c9

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06