D-TRUST_CA_5-22-3_2022.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 5-22-3 2022,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2037-04-07) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_5-22-3_2022.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_5-22-3_2022.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            4a:df:6c:a4:d9:35:53:40:18:b1:47:53:8d:1c:d6:cb
    Signature Algorithm: sha512WithRSAEncryption
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 5 2022
        Validity
            Not Before: Apr  7 11:10:08 2022 GMT
            Not After : Apr  7 08:51:20 2037 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 5-22-3 2022/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:cb:d5:f8:1f:2e:d5:5d:d9:a4:13:17:57:5f:eb:
                    71:04:b0:c8:77:fd:3b:1f:8a:0b:db:23:01:1c:cd:
                    7d:c6:75:cb:d3:88:67:8e:aa:28:41:e9:9c:b4:2e:
                    22:7c:81:80:08:ce:26:c9:83:be:ad:90:3e:66:60:
                    b2:ed:64:1c:cf:45:72:ba:67:2d:9f:d3:c6:96:d4:
                    bd:84:ce:15:53:e8:2c:8b:99:5b:66:e0:73:55:b4:
                    bf:86:96:00:52:da:e4:86:83:7b:e2:11:b6:be:09:
                    f1:99:24:b0:b7:11:3e:6e:46:5f:40:b4:8b:d8:2b:
                    e7:ab:5b:24:d4:0f:8a:d2:27:dd:18:f6:44:a6:aa:
                    26:75:b2:28:ae:39:43:8d:fb:64:a8:c0:96:43:c4:
                    d4:42:c8:7b:b3:3c:1c:77:db:e1:04:01:61:98:f9:
                    ff:eb:31:60:b5:dc:40:c5:93:8e:1b:7c:51:80:ad:
                    0e:4f:dc:27:22:cd:65:0d:8f:8a:eb:11:22:97:20:
                    72:44:6c:68:69:0a:d0:bf:a5:07:3a:3d:a4:76:14:
                    a9:ff:97:24:1e:16:c9:c8:18:04:9f:93:7f:dc:95:
                    ee:00:0c:7d:6a:6f:ea:66:e9:39:aa:be:db:50:1f:
                    19:40:32:ce:ff:fe:82:18:26:06:ca:b4:fe:f7:e5:
                    b0:75:57:d7:23:46:2e:f5:2e:b9:73:78:3b:e5:a6:
                    5a:10:07:17:bb:a7:10:20:f3:cb:ce:a0:23:bd:61:
                    84:7e:c1:cc:ec:ed:f3:0f:a0:d8:03:e9:10:70:f8:
                    17:2c:ec:8c:dd:fc:68:8c:32:99:eb:f3:f3:f0:40:
                    93:a6:73:25:8b:97:e0:98:c8:1f:ec:d6:b0:25:90:
                    ec:70:47:b8:00:95:d8:24:51:5c:04:b1:69:be:6e:
                    c2:52:55:0c:94:b6:45:aa:60:cf:d4:10:4d:85:52:
                    a3:29:ff:cf:0d:d8:8c:e6:ce:6a:e6:1b:ce:65:16:
                    13:b2:2e:ce:de:2d:7b:b9:da:7b:65:ff:33:65:f2:
                    82:e1:76:c4:0f:01:97:3f:b9:36:15:33:7a:77:34:
                    9b:3a:7f:62:29:9c:3a:19:44:9e:0d:dc:5b:36:84:
                    cf:cd:87:a9:cd:c3:e3:81:dd:fe:b4:80:fb:2c:41:
                    b1:01:20:db:91:21:9f:77:5e:db:14:16:4e:e4:2a:
                    7c:58:a2:7e:a4:e2:b5:e4:6c:08:51:ca:53:e3:4d:
                    c8:82:81:3e:f5:6c:fa:e1:8b:e5:c6:15:16:76:91:
                    7a:69:d5:13:a4:2a:7f:91:a3:78:0a:0e:ad:24:4a:
                    9c:e6:09:e9:b5:32:42:18:d1:55:34:3d:9d:bf:1b:
                    7c:71:9d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Authority Key Identifier: 
                keyid:50:49:34:88:44:9B:0F:DA:34:31:24:5C:64:C4:C0:F6:F3:96:A4:EF

            Authority Information Access: 
                OCSP - URI:http://dtr-root-ca-5-2022.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_5_2022.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.5
                Policy: 1.3.6.1.4.1.4788.2.150.3
                  CPS: https://www.d-trust.net/internet/files/D-TRUST_TSPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_5_2022.crl

            X509v3 Subject Key Identifier: 
                CA:38:7C:A7:AA:E1:2F:FE:DD:09:55:8F:E0:8A:FC:01:B6:DB:8C:87
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: sha512WithRSAEncryption
         5a:01:40:3e:c4:15:86:74:b6:70:be:9f:82:bd:bf:49:95:22:
         6b:0d:69:e9:87:b6:5f:d7:2c:1e:77:2b:49:37:2f:65:ff:a4:
         9c:c5:d4:5b:60:19:f6:77:8a:4f:2d:4f:3f:2f:73:c2:3a:79:
         63:23:42:1a:be:0b:b5:43:18:4d:b8:ae:ae:e7:cc:7a:1b:d9:
         dd:80:09:89:41:41:19:fa:93:fb:8d:d2:56:ce:48:7c:04:cd:
         e6:83:6c:f8:ca:27:c7:fb:0d:d7:8b:b4:01:10:fe:0a:de:07:
         df:1a:f2:d2:61:bc:f7:7c:78:af:24:7b:42:7a:e5:6a:40:27:
         30:0a:a6:84:30:b6:33:2f:c9:52:c1:6e:14:80:32:37:13:31:
         d2:0f:93:ea:c5:ba:90:a9:38:7b:42:d3:54:29:06:ac:82:37:
         1c:2e:a6:d9:4c:bd:fe:09:bc:ba:4a:96:26:91:f5:3a:0c:c8:
         40:83:38:01:67:7c:36:a3:d4:5d:c5:32:bb:10:39:15:8d:5e:
         f4:31:46:5d:cf:2f:6a:bb:63:92:20:20:07:2b:b5:c3:f5:69:
         dd:be:fb:87:c8:8c:d7:99:f4:f6:80:b4:50:74:67:fb:f8:29:
         6d:5a:68:57:15:79:eb:c8:5d:a6:c1:85:7a:5f:d6:51:72:8b:
         2d:83:14:8a:05:43:a5:d7:52:2f:3b:68:f3:9b:84:c8:19:3a:
         dd:ee:0c:7d:1c:7f:1c:b1:38:3c:ff:0e:9b:f2:19:ac:e7:a2:
         d7:7a:e0:a3:25:ba:c3:a1:f3:25:33:12:7a:f3:3c:a5:36:6d:
         14:87:04:0d:be:e0:55:c2:cb:8c:e8:0f:d8:b6:e3:d0:80:68:
         36:50:c0:06:4a:f7:fc:13:86:af:f7:c1:d2:12:67:bd:76:42:
         b7:e3:76:c8:b5:26:63:49:16:ec:fc:ea:98:1b:bc:ae:fa:98:
         80:c4:06:98:84:cf:32:57:2d:00:ac:2d:4f:cc:0a:91:7b:8d:
         2c:0e:8f:11:3a:f7:27:9f:32:cb:40:8b:74:26:2e:69:48:e0:
         31:63:ac:97:2b:9e:dd:17:67:22:8b:29:5c:3e:1c:f9:be:c7:
         85:b3:d4:00:56:eb:88:16:85:e2:f2:b9:5a:de:8e:39:78:ab:
         fd:44:91:0c:f7:b5:0a:cc:1d:bf:26:5a:a9:d7:d6:39:44:ed:
         f7:02:03:76:37:91:de:2e:9d:4d:4c:de:63:60:ab:ba:09:72:
         4e:6c:2c:17:8c:db:22:8f:01:34:1e:59:0e:0b:04:2e:f5:14:
         b4:d8:f9:d3:27:17:a5:df:31:2a:f5:7c:98:8b:83:03:ce:ab:
         32:23:26:56:ff:e6:86:75

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIG+zCCBOOgAwIBAgIQSt9spNk1U0AYsUdTjRzWyzANBgkqhkiG9w0BAQ0FADBF
MQswCQYDVQQGEwJERTEVMBMGA1UEChMMRC1UcnVzdCBHbWJIMR8wHQYDVQQDExZE
LVRSVVNUIFJvb3QgQ0EgNSAyMDIyMB4XDTIyMDQwNzExMTAwOFoXDTM3MDQwNzA4
NTEyMFowXjELMAkGA1UEBhMCREUxFTATBgNVBAoTDEQtVHJ1c3QgR21iSDEfMB0G
A1UEAxMWRC1UUlVTVCBDQSA1LTIyLTMgMjAyMjEXMBUGA1UEYRMOTlRSREUtSFJC
NzQzNDYwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDL1fgfLtVd2aQT
F1df63EEsMh3/TsfigvbIwEczX3GdcvTiGeOqihB6Zy0LiJ8gYAIzibJg76tkD5m
YLLtZBzPRXK6Zy2f08aW1L2EzhVT6CyLmVtm4HNVtL+GlgBS2uSGg3viEba+CfGZ
JLC3ET5uRl9AtIvYK+erWyTUD4rSJ90Y9kSmqiZ1siiuOUON+2SowJZDxNRCyHuz
PBx32+EEAWGY+f/rMWC13EDFk44bfFGArQ5P3CcizWUNj4rrESKXIHJEbGhpCtC/
pQc6PaR2FKn/lyQeFsnIGASfk3/cle4ADH1qb+pm6TmqvttQHxlAMs7//oIYJgbK
tP735bB1V9cjRi71LrlzeDvlploQBxe7pxAg88vOoCO9YYR+wczs7fMPoNgD6RBw
+Bcs7Izd/GiMMpnr8/PwQJOmcyWLl+CYyB/s1rAlkOxwR7gAldgkUVwEsWm+bsJS
VQyUtkWqYM/UEE2FUqMp/88N2IzmzmrmG85lFhOyLs7eLXu52ntl/zNl8oLhdsQP
AZc/uTYVM3p3NJs6f2IpnDoZRJ4N3Fs2hM/Nh6nNw+OB3f60gPssQbEBINuRIZ93
XtsUFk7kKnxYon6k4rXkbAhRylPjTciCgT71bPrhi+XGFRZ2kXpp1ROkKn+Ro3gK
Dq0kSpzmCem1MkIY0VU0PZ2/G3xxnQIDAQABo4IBzDCCAcgwHQYDVR0lBBYwFAYI
KwYBBQUHAwEGCCsGAQUFBwMCMB8GA1UdIwQYMBaAFFBJNIhEmw/aNDEkXGTEwPbz
lqTvMIGOBggrBgEFBQcBAQSBgTB/MDYGCCsGAQUFBzABhipodHRwOi8vZHRyLXJv
b3QtY2EtNS0yMDIyLm9jc3AuZC10cnVzdC5uZXQwRQYIKwYBBQUHMAKGOWh0dHA6
Ly93d3cuZC10cnVzdC5uZXQvY2dpLWJpbi9ELVRSVVNUX1Jvb3RfQ0FfNV8yMDIy
LmNydDBqBgNVHSAEYzBhMAkGBwQAi+xAAQUwVAYLKwYBBAGlNAKBFgMwRTBDBggr
BgEFBQcCARY3aHR0cHM6Ly93d3cuZC10cnVzdC5uZXQvaW50ZXJuZXQvZmlsZXMv
RC1UUlVTVF9UU1BTLnBkZjBGBgNVHR8EPzA9MDugOaA3hjVodHRwOi8vY3JsLmQt
dHJ1c3QubmV0L2NybC9kLXRydXN0X3Jvb3RfY2FfNV8yMDIyLmNybDAdBgNVHQ4E
FgQUyjh8p6rhL/7dCVWP4Ir8AbbbjIcwDgYDVR0PAQH/BAQDAgEGMBIGA1UdEwEB
/wQIMAYBAf8CAQAwDQYJKoZIhvcNAQENBQADggIBAFoBQD7EFYZ0tnC+n4K9v0mV
ImsNaemHtl/XLB53K0k3L2X/pJzF1FtgGfZ3ik8tTz8vc8I6eWMjQhq+C7VDGE24
rq7nzHob2d2ACYlBQRn6k/uN0lbOSHwEzeaDbPjKJ8f7DdeLtAEQ/greB98a8tJh
vPd8eK8ke0J65WpAJzAKpoQwtjMvyVLBbhSAMjcTMdIPk+rFupCpOHtC01QpBqyC
NxwuptlMvf4JvLpKliaR9ToMyECDOAFnfDaj1F3FMrsQORWNXvQxRl3PL2q7Y5Ig
IAcrtcP1ad2++4fIjNeZ9PaAtFB0Z/v4KW1aaFcVeevIXabBhXpf1lFyiy2DFIoF
Q6XXUi87aPObhMgZOt3uDH0cfxyxODz/DpvyGaznotd64KMlusOh8yUzEnrzPKU2
bRSHBA2+4FXCy4zoD9i249CAaDZQwAZK9/wThq/3wdISZ712Qrfjdsi1JmNJFuz8
6pgbvK76mIDEBpiEzzJXLQCsLU/MCpF7jSwOjxE69yefMstAi3QmLmlI4DFjrJcr
nt0XZyKLKVw+HPm+x4Wz1ABW64gWheLyuVrejjl4q/1EkQz3tQrMHb8mWqnX1jlE
7fcCA3Y3kd4unU1M3mNgq7oJck5sLBeM2yKPATQeWQ4LBC71FLTY+dMnF6XfMSr1
fJiLgwPOqzIjJlb/5oZ1
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06