SectigoRSAExtendedValidationSecureServerCA.crt: CN=Sectigo RSA Extended Validation Secure Server CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GB

Page content

CA Certificate Basic Information

This certificate is intermediate certificate used for the issuance of other certificates.

  • Certificate download URL: http://crt.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crt (DER format)
  • Serial number: 53575290398024717709885349904618904151
  • SHA-1 Fingerprint: a3df966d0cb2d84af8f16c855b97c49364f5d8c0
  • SHA-1 Fingerprint: a3:df:96:6d:0c:b2:d8:4a:f8:f1:6c:85:5b:97:c4:93:64:f5:d8:c0
  • SHA-256 Fingerprint: 57d8bdcd58955a5590a57c6aafa581ed9b96bed76fafee969b139187c5a872c7
  • SHA-256 Fingerprint: 57:d8:bd:cd:58:95:5a:55:90:a5:7c:6a:af:a5:81:ed:9b:96:be:d7:6f:af:ee:96:9b:13:91:87:c5:a8:72:c7
  • Signature hash algorithm: sha384
  • Subject: CN=Sectigo RSA Extended Validation Secure Server CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GB
  • Not valid before: 2018-11-02 00:00:00
  • Not valid after: 2030-12-31 23:59:59
  • Issuer:

Download certificate through curl:

curl -sSL http://crt.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crt --output cert.crt

Download certificate through wget:

wget -q http://crt.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            28:4e:39:c1:4b:38:6d:88:9c:72:99:e5:8c:d0:5a:57
    Signature Algorithm: sha384WithRSAEncryption
        Issuer: C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority
        Validity
            Not Before: Nov  2 00:00:00 2018 GMT
            Not After : Dec 31 23:59:59 2030 GMT
        Subject: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:9a:a2:c9:58:06:2a:85:7a:fd:18:73:84:d7:3d:
                    ad:2c:f6:89:62:31:c9:fd:55:a1:0d:7d:35:0a:e0:
                    65:53:ee:78:81:41:7c:42:e8:cb:7c:91:3b:6f:ca:
                    be:65:53:dd:a1:0d:00:e1:d9:60:cf:42:c6:7b:a2:
                    26:e1:ef:9b:76:92:8c:13:df:3d:52:f9:2c:b5:1a:
                    c5:03:33:83:5b:74:e7:5e:a2:b7:26:cc:59:bf:6f:
                    86:f0:0f:81:bf:1b:ea:41:e0:45:f5:1d:27:e3:37:
                    d7:93:d0:78:de:f8:01:af:0a:b7:76:32:69:f1:27:
                    e6:32:9a:ff:41:1f:d3:81:eb:98:ca:ad:43:bd:35:
                    ae:22:1e:be:3c:5d:60:43:16:fc:ec:3c:22:75:d5:
                    48:a8:a1:fe:9d:44:15:69:f8:b6:ae:8f:cf:19:ee:
                    4d:97:f1:de:b4:e8:77:97:9f:8d:e1:e9:a7:29:2c:
                    b5:11:5b:2a:97:33:40:ab:cd:e7:55:58:1c:ee:5c:
                    ab:81:11:aa:83:eb:0f:f5:56:92:c9:bd:25:3e:c2:
                    5d:d2:72:f5:d2:2c:5a:7c:d8:34:91:25:52:4e:35:
                    75:a5:76:9f:60:8c:98:a8:3c:64:41:c9:e6:70:d7:
                    59:37:81:a9:5b:6c:5e:60:14:af:71:4a:76:c3:c7:
                    6f:4b
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:53:79:BF:5A:AA:2B:4A:CF:54:80:E1:D8:9B:C0:9D:F2:B2:03:66:CB

            X509v3 Subject Key Identifier: 
                2C:69:FF:80:C9:87:90:AE:34:E1:B4:E7:4C:93:85:99:40:E9:A7:B2
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://cps.usertrust.com

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl

            Authority Information Access: 
                CA Issuers - URI:http://crt.usertrust.com/USERTrustRSAAddTrustCA.crt
                OCSP - URI:http://ocsp.usertrust.com

    Signature Algorithm: sha384WithRSAEncryption
         43:80:33:3f:15:72:a4:bc:b2:dc:88:d4:52:65:65:ec:56:b1:
         ac:7b:17:42:ad:b3:66:dd:a0:2a:71:d0:4a:1b:80:fb:9c:69:
         44:f3:67:76:3b:e1:1e:4e:03:d3:c3:d9:5d:47:ba:22:6e:c4:
         e6:49:ea:c6:dc:a5:e5:a6:1d:95:d6:fe:1c:8f:fb:7f:ec:dd:
         5b:fd:6e:6f:63:78:56:ae:19:61:48:dc:67:51:02:38:52:bb:
         67:6c:e8:36:27:03:99:4f:85:7b:f4:eb:79:73:ee:3e:c0:e2:
         71:31:bf:b4:c7:16:11:53:39:e7:c3:90:4c:99:01:d8:b2:b7:
         66:11:ae:91:63:3f:45:33:11:71:17:57:69:73:97:f0:b8:74:
         ca:5c:d1:3b:53:b4:39:b5:f2:b6:f3:85:a6:49:24:0f:dd:87:
         1a:c7:d2:d3:a8:bb:34:b0:cf:24:47:99:5e:ac:c7:13:94:ea:
         8f:b5:52:02:3f:b6:96:ec:1f:69:76:8f:2c:3f:25:40:45:5c:
         8b:cc:66:b0:f1:8e:9f:49:97:13:56:73:b0:28:44:3e:15:6a:
         15:84:14:b1:b8:91:25:18:62:74:a6:ae:85:df:86:d8:29:11:
         4d:c4:79:7e:9b:2e:cf:e8:92:b4:1f:6c:e4:59:2c:f6:52:a8:
         5e:79:f4:86:fe:fc:55:88:ef:47:bf:02:0a:f8:f9:15:6f:e8:
         ba:71:e3:59:35:8c:6f:78:a5:f5:2e:67:81:b1:46:71:e9:41:
         d6:5f:cc:42:44:7a:df:ed:72:6d:d8:b6:3a:98:cd:58:90:9f:
         b7:13:96:52:99:02:c5:a4:5d:9c:e9:d2:8f:b1:90:63:43:4b:
         9f:c1:ad:ab:d1:5c:49:9c:9d:b6:45:60:5e:9a:2e:48:56:64:
         5c:d4:bf:31:8c:1b:70:20:9c:44:a0:5b:ae:4f:2c:b3:44:88:
         5e:0d:60:4d:44:63:87:d5:4f:d4:e1:e6:d0:e9:2d:61:c5:30:
         f5:ef:74:c0:72:03:9f:b8:74:a8:0f:9b:58:eb:19:aa:e4:91:
         cd:3e:2c:d9:ca:c5:dd:94:80:de:db:95:fd:42:77:de:68:dd:
         54:ef:30:04:3f:1a:23:9c:b5:d1:0a:de:48:f2:6f:64:71:cd:
         0f:20:a6:a3:28:d7:bc:d8:51:fa:ed:da:ad:75:28:1d:6c:4e:
         f8:c6:41:79:76:e2:88:5e:cd:c2:7f:c8:12:64:2f:58:15:bc:
         97:a0:f6:e8:25:c8:6a:f7:18:d6:40:09:71:fc:b3:1e:4a:cf:
         6c:ba:3e:7c:03:9a:fc:a1:65:de:52:14:fb:46:e2:11:53:64:
         43:dc:d7:13:a8:42:e9:7e

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26