SectigoSHA256DVSecureServerCA2.crt: CN=Sectigo SHA-256 DV Secure Server CA 2,O=Sectigo Limited,C=GB

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://crt.sectigo.com/SectigoSHA256DVSecureServerCA2.crt (DER format)
  • Serial number: 283054862946978074950225015258663166023
  • SHA-1 Fingerprint: aa950aad16265917f7dada5d662f778fb00f82d9
  • SHA-1 Fingerprint: aa:95:0a:ad:16:26:59:17:f7:da:da:5d:66:2f:77:8f:b0:0f:82:d9
  • SHA-256 Fingerprint: eed0a95e7de3ca53e4a6c72a86b3f164c0c23e380f8f6b79a349ef1784342c1f
  • SHA-256 Fingerprint: ee:d0:a9:5e:7d:e3:ca:53:e4:a6:c7:2a:86:b3:f1:64:c0:c2:3e:38:0f:8f:6b:79:a3:49:ef:17:84:34:2c:1f
  • Signature hash algorithm: sha256
  • Subject: CN=Sectigo SHA-256 DV Secure Server CA 2,O=Sectigo Limited,C=GB
  • Not valid before: 2020-04-01 00:00:00
  • Not valid after: 2030-12-31 23:59:59
  • Issuer:
    • Issuer name: CN=COMODO Certification Authority,O=COMODO CA Limited,L=Salford,ST=Greater Manchester,C=GB
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://crt.sectigo.com/SectigoSHA256DVSecureServerCA2.crt --output cert.crt

Download certificate through wget:

wget -q http://crt.sectigo.com/SectigoSHA256DVSecureServerCA2.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            d4:f2:62:36:95:c2:9e:cc:46:f1:8e:82:eb:01:20:47
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO Certification Authority
        Validity
            Not Before: Apr  1 00:00:00 2020 GMT
            Not After : Dec 31 23:59:59 2030 GMT
        Subject: C=GB, O=Sectigo Limited, CN=Sectigo SHA-256 DV Secure Server CA 2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:82:ae:d7:36:f5:6e:f9:2b:b5:57:2f:bb:b1:1b:
                    ce:b0:ee:72:ee:14:2d:68:5e:9a:8b:60:46:a4:da:
                    47:1c:3c:df:07:3e:67:9c:17:f8:c4:56:e2:60:5b:
                    6d:57:f1:a5:8c:5d:a6:60:25:2c:95:86:3c:49:84:
                    ec:82:b7:50:cf:5d:a3:4b:6f:9c:3a:74:7e:97:f0:
                    28:3c:d6:01:fe:02:68:47:8a:1a:9d:4c:15:d4:db:
                    c2:b3:e3:73:8c:93:36:06:8a:93:b7:c5:03:ee:8a:
                    d0:11:4f:06:75:f8:88:4f:66:39:9f:52:66:5b:ff:
                    0a:f9:f5:3f:dc:33:66:83:5f:33:7b:25:81:7c:06:
                    45:f3:7c:a0:30:84:ef:06:33:cd:d0:29:3a:98:46:
                    fb:aa:4e:01:71:3a:e7:ba:98:24:57:82:56:02:4d:
                    ed:ac:c7:ad:29:fd:3b:c7:7a:37:d1:f0:cb:92:19:
                    43:95:ef:63:ef:dd:d7:31:c6:48:d3:b6:2e:6d:6e:
                    20:e1:88:18:ff:cd:a2:5d:d1:47:4e:43:5c:5a:08:
                    61:19:e6:7e:d0:16:63:c9:3b:79:d8:ce:f1:bb:48:
                    3c:72:d5:a1:a7:24:3a:e6:cc:62:cf:6d:29:6c:62:
                    97:d5:0a:6b:4a:49:7e:e9:58:09:07:c7:14:1e:59:
                    92:5d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:0B:58:E5:8B:C6:4C:15:37:A4:40:A9:30:A9:21:BE:47:36:5A:56:FF

            X509v3 Subject Key Identifier: 
                34:52:EA:AF:09:3A:C3:77:51:91:99:87:95:40:23:C5:9E:02:51:D2
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                Policy: 2.23.140.1.2.1

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.comodoca.com/COMODOCertificationAuthority.crl

            Authority Information Access: 
                OCSP - URI:http://ocsp.comodoca.com

    Signature Algorithm: sha256WithRSAEncryption
         05:43:9d:c0:9c:0e:67:0b:62:5a:f9:bf:0a:8c:b8:e2:9e:87:
         77:2d:a8:81:58:79:bc:3c:53:3c:95:9e:64:23:c1:9b:0a:03:
         3d:eb:0c:2b:d3:73:83:89:76:7f:d5:e5:14:1f:1e:82:d5:f2:
         87:47:c7:ba:16:52:0e:98:16:bb:3e:ad:fd:3c:ba:78:af:66:
         77:37:b9:16:ea:cf:48:cc:8a:0b:b4:e9:0a:e3:11:8c:0c:b8:
         eb:a0:b7:fb:39:0b:cc:b3:f2:b4:6c:4b:51:c8:b4:ab:1e:7a:
         9d:45:27:89:fc:0a:7c:fd:4b:29:91:61:bf:ef:ec:2b:49:76:
         35:5d:0f:36:d9:9c:61:26:07:78:01:df:e5:40:c2:26:4f:85:
         4e:de:4b:23:26:41:e0:c8:55:1d:bd:3c:a3:ce:71:6b:a3:2b:
         cd:47:f0:fb:b5:36:3b:f0:46:c1:a8:84:c8:85:8d:0b:c7:20:
         16:ef:c0:0d:ae:3b:e1:b1:52:a7:68:84:69:f1:5c:f9:00:75:
         a7:f6:93:76:3f:30:68:0f:42:af:29:3d:7f:97:e6:8a:ae:12:
         b7:61:dd:18:ac:af:8e:a9:ea:8e:3f:5e:1c:e5:f6:13:61:50:
         da:9c:92:4f:43:ce:93:39:6a:6f:44:11:85:b4:b0:3b:07:53:
         60:ff:5d:16

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26