SecureSiteProExtendedValidationCAG2.crt: CN=Secure Site Pro Extended Validation CA G2,OU=www.digicert.com,O=DigiCert Inc,C=US (Intermediate Certificate, Expiring 2029-06-20) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://crl.digicert-cn.com/SecureSiteProExtendedValidationCAG2.crt" --output cert.crt

Download certificate through wget:

wget -q "http://crl.digicert-cn.com/SecureSiteProExtendedValidationCAG2.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            07:70:4b:b7:17:2f:dd:47:a8:22:42:dd:43:50:e5:61
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
        Validity
            Not Before: Jun 20 12:22:03 2019 GMT
            Not After : Jun 20 12:22:03 2029 GMT
        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=Secure Site Pro Extended Validation CA G2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:a3:56:d6:85:b8:9c:4e:da:9b:89:e2:28:0f:fc:
                    37:c7:d8:a2:0c:59:1d:45:8d:3c:f9:24:1c:57:d7:
                    d6:aa:d3:bf:1b:a3:a7:2b:cb:9a:11:0e:09:21:08:
                    3a:2b:41:7a:17:30:ab:36:bf:b7:ac:fb:52:24:a6:
                    69:25:b1:f2:be:f2:c3:ff:2c:35:da:fb:95:02:b8:
                    cb:61:82:3b:73:7b:78:10:df:e8:cf:dc:ec:6d:1b:
                    26:f2:f4:44:cd:ab:7b:c1:2a:4c:b3:0d:9b:9c:e8:
                    b5:b4:28:62:38:4a:e3:c0:98:f7:c3:4f:cc:40:cf:
                    7a:44:78:af:dd:fa:e0:2e:b2:00:74:ca:e8:1a:e1:
                    76:ba:32:37:c4:46:c9:d8:f2:d4:a3:36:16:14:6d:
                    fb:32:4f:09:99:ad:61:ba:97:ac:b6:c3:6f:ac:b6:
                    ce:ff:da:4b:aa:50:02:77:ea:83:0f:53:db:4c:9f:
                    12:86:8a:29:3b:18:c8:8b:38:b2:88:29:e9:4d:39:
                    fa:c1:af:97:cd:92:9d:05:fc:07:5e:61:81:8c:19:
                    72:3c:3d:9d:af:c2:b8:c6:b0:a7:af:11:50:c5:cb:
                    b8:fe:ed:df:5a:1b:83:3b:83:22:1e:90:06:fc:76:
                    8b:00:64:7e:ea:fe:97:f0:58:1d:4c:58:c0:69:14:
                    3a:5b
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                B1:95:14:A8:D5:BA:74:88:71:CD:96:8B:17:35:88:DF:F0:C1:5D:F3
            X509v3 Authority Key Identifier: 
                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE
            Authority Information Access: 
                OCSP - URI:http://ocsp.dcocsp.cn

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.digicert-cn.com/DigiCertHighAssuranceEVRootCA.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114412.2.1
                  CPS: https://www.digicert.com/CPS
                Policy: 2.23.140.1.1

    Signature Algorithm: sha256WithRSAEncryption
         7e:7a:e1:dc:be:92:45:93:92:d7:62:95:47:af:67:38:68:ac:
         0f:51:30:a8:41:96:9d:03:d0:59:d2:e1:0b:4f:8d:73:7d:31:
         8a:a0:b0:66:7f:5b:4b:78:d9:45:12:dc:a1:a7:d0:7e:97:f3:
         68:22:12:7d:00:b7:da:9e:21:a3:c3:e5:7d:37:be:a2:c7:e8:
         bb:e1:eb:2b:22:34:ee:31:3a:82:b9:64:03:be:5d:7c:21:41:
         d6:0b:f7:4a:e7:2b:f6:10:48:d2:62:0c:92:76:9a:f3:6f:ce:
         c9:9b:d7:8f:2c:6a:b6:d9:5b:c7:a3:a1:dc:df:73:33:79:db:
         1a:86:6b:a1:d3:fc:23:8c:a9:1a:5e:99:fa:80:ed:cd:4e:b8:
         b1:70:35:81:6c:c2:84:df:e8:bc:f9:05:91:0b:de:40:20:39:
         20:e6:c5:b5:be:7a:1f:d1:df:22:a3:a4:d7:7b:39:31:e4:bd:
         03:63:7e:7b:d5:52:7e:59:46:ee:db:ae:d5:f2:3d:2c:ce:be:
         5e:be:1d:00:b6:fa:1a:38:c2:fc:9d:16:34:d7:c8:00:d8:24:
         da:5f:5f:69:a4:2f:51:b4:07:9a:72:88:78:01:dd:c6:87:c0:
         79:ef:e0:07:8f:7d:0e:70:6a:74:4d:9f:2a:ad:18:e7:30:67:
         a0:57:94:9b

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06