InCommonECCServerCA.crt: CN=InCommon ECC Server CA,OU=InCommon,O=Internet2,L=Ann Arbor,ST=MI,C=US

Page content

CA Certificate Basic Information

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate download URL: http://cert.incommon-ecc.org/InCommonECCServerCA.crt (DER format)
  • Serial number: 78360997373314020557144400352964623772
  • SHA-1 Fingerprint: 97e5cb413ce705a0db1882f2cbc822d26710f67b
  • SHA-1 Fingerprint: 97:e5:cb:41:3c:e7:05:a0:db:18:82:f2:cb:c8:22:d2:67:10:f6:7b
  • SHA-256 Fingerprint: bdb7aa28f164e4bc15d6920733b223ed98e55220a3e56f3b1ecfd04e87d30b71
  • SHA-256 Fingerprint: bd:b7:aa:28:f1:64:e4:bc:15:d6:92:07:33:b2:23:ed:98:e5:52:20:a3:e5:6f:3b:1e:cf:d0:4e:87:d3:0b:71
  • Signature hash algorithm: sha384
  • Subject: CN=InCommon ECC Server CA,OU=InCommon,O=Internet2,L=Ann Arbor,ST=MI,C=US
  • Not valid before: 2015-12-17 00:00:00
  • Not valid after: 2025-12-16 23:59:59
  • Issuer:

Download certificate through curl:

curl -sSL http://cert.incommon-ecc.org/InCommonECCServerCA.crt --output cert.crt

Download certificate through wget:

wget -q http://cert.incommon-ecc.org/InCommonECCServerCA.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            3a:f3:c7:75:26:a4:15:8c:34:77:5e:24:7a:f9:bd:9c
    Signature Algorithm: ecdsa-with-SHA384
        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust ECC Certification Authority
        Validity
            Not Before: Dec 17 00:00:00 2015 GMT
            Not After : Dec 16 23:59:59 2025 GMT
        Subject: C=US, ST=MI, L=Ann Arbor, O=Internet2, OU=InCommon, CN=InCommon ECC Server CA
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (256 bit)
                pub: 
                    04:ed:56:af:ac:1b:b0:e6:7a:42:a7:f5:72:85:1d:
                    a6:43:b8:89:4e:d6:97:df:7f:2d:53:f0:2c:6f:ab:
                    ec:7f:75:77:49:33:bb:6c:3f:48:26:b6:2f:04:fc:
                    ba:87:b6:3c:14:55:bb:5c:a7:da:1c:d5:75:b1:a7:
                    b9:ce:23:4a:84
                ASN1 OID: prime256v1
                NIST CURVE: P-256
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:3A:E1:09:86:D4:CF:19:C2:96:76:74:49:76:DC:E0:35:C6:63:63:9A

            X509v3 Subject Key Identifier: 
                E4:B7:CF:CB:0A:94:74:A7:9C:AD:A8:12:04:3A:D0:29:5D:2E:FC:EE
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                Policy: 2.23.140.1.2.2

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.usertrust.com/USERTrustECCCertificationAuthority.crl

            Authority Information Access: 
                CA Issuers - URI:http://crt.usertrust.com/USERTrustECCAddTrustCA.crt
                OCSP - URI:http://ocsp.usertrust.com

    Signature Algorithm: ecdsa-with-SHA384
         30:66:02:31:00:c6:0d:3c:a0:c7:f8:3f:c0:e6:80:80:d7:b0:
         17:f3:f1:0b:e7:dc:43:18:b0:39:90:0e:45:9a:03:b1:a2:4d:
         2a:7a:cd:0c:3d:82:a1:43:dc:f9:79:ba:8e:23:ab:6d:ed:02:
         31:00:f2:48:a3:0d:c6:8a:64:e3:ab:1b:ec:1c:92:89:91:e8:
         b6:5a:0c:c9:33:d6:f4:52:19:2f:44:b5:bf:81:b5:00:45:ac:
         bf:78:7d:92:df:c3:cb:c1:fd:b9:40:97:77:48

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26