VR_IDENT_EV_SSL_CA_2020.crt: CN=VR IDENT EV SSL CA 2020,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2029-11-05) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/VR_IDENT_EV_SSL_CA_2020.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/VR_IDENT_EV_SSL_CA_2020.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            4a:10:3d:b3:e1:d9:26:62:65:2b:3b:dc:6a:e5:c2:f3
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root Class 3 CA 2 EV 2009
        Validity
            Not Before: Apr 21 08:27:08 2020 GMT
            Not After : Nov  5 08:50:46 2029 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=VR IDENT EV SSL CA 2020
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (4096 bit)
                Modulus:
                    00:d7:4b:4b:3a:2e:03:65:c7:c9:10:cc:25:46:33:
                    14:fa:5d:fd:cd:ff:36:85:70:7d:47:6c:60:35:39:
                    e5:e7:1b:a1:83:46:df:10:64:59:05:3f:d0:b8:08:
                    31:d8:da:59:d9:70:90:a2:23:e2:c0:54:11:94:fe:
                    19:d5:d3:70:ff:e5:38:70:c9:58:bc:b5:99:97:f9:
                    f7:10:d7:e5:be:6e:af:ff:43:14:74:e7:d2:26:67:
                    87:74:46:77:59:9b:d1:ec:1b:50:0c:24:8d:8b:cb:
                    48:63:8b:91:22:29:d1:e4:85:0d:90:7e:0e:c8:97:
                    d5:87:c0:8c:cc:35:3e:d1:ff:40:2c:b3:d4:a6:00:
                    0b:80:29:75:a7:8d:c6:29:89:a8:ea:6f:04:30:4c:
                    2b:83:9b:43:95:46:b1:51:02:0c:41:33:54:93:ce:
                    55:d0:22:6f:29:d1:c0:a4:f0:9a:29:a6:da:8a:23:
                    8f:f3:c3:c6:f8:b0:b8:b3:c9:32:29:cb:d8:9b:b4:
                    e3:1d:b5:e6:5b:cb:15:d9:c0:c4:2d:02:fa:1e:a7:
                    40:9f:82:db:d9:37:12:5b:f9:0b:06:5e:5b:dc:e3:
                    e9:40:a6:37:9c:00:75:30:3a:6a:6d:2f:9b:de:50:
                    7e:c0:24:47:2c:c4:fc:7b:32:3c:b5:61:5b:af:d9:
                    1e:6b:44:c4:45:40:2f:51:4f:ac:24:a7:20:ca:99:
                    aa:cc:1f:a5:46:14:71:b5:f0:7c:0c:45:75:89:ae:
                    9f:b1:16:65:23:08:26:6a:0d:a4:54:98:24:80:37:
                    ae:bc:29:5f:5d:d3:10:c2:10:23:6d:ed:b2:b1:00:
                    81:93:58:3c:43:e8:6f:cf:88:6f:02:7a:9a:0e:cf:
                    c4:92:e7:ff:f5:17:70:20:ff:d5:01:6f:e6:58:5b:
                    f0:cf:d3:6c:fa:f5:bf:7b:02:0e:e8:bf:ae:26:d6:
                    fd:cf:e0:48:c7:42:f0:1c:5a:f7:37:46:d0:03:9e:
                    86:5f:3a:e0:03:c0:7b:2a:bd:fe:cb:96:51:cb:5b:
                    de:7e:11:f6:9c:64:9d:0b:3f:54:63:09:7c:10:8f:
                    26:2b:d8:cf:c9:fa:ca:5d:d2:25:70:a4:39:e9:c6:
                    8b:2f:af:db:01:5e:57:c9:22:91:fb:6d:26:d0:cf:
                    24:f0:80:43:f2:36:9c:81:c8:e8:6b:14:bf:78:a3:
                    c2:f8:18:bf:26:4f:1b:7b:cc:cb:08:f0:ce:2e:27:
                    4f:8f:8c:7a:99:69:ad:9a:11:bb:50:d8:72:a3:66:
                    fa:7d:3d:e5:b5:9e:19:98:e0:03:22:e1:5e:f8:a9:
                    9e:89:2a:38:13:09:e2:83:23:7a:a7:ba:b8:60:76:
                    a4:12:35
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Authority Key Identifier: 
                keyid:D3:94:8A:4C:62:13:2A:19:2E:CC:AF:72:8A:7D:36:D7:9A:1C:DC:67

            Authority Information Access: 
                OCSP - URI:http://root-c3-ca2-ev-2009.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_Class_3_CA_2_EV_2009.crt
                CA Issuers - URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202%20EV%202009,O=D-Trust%20GmbH,C=DE?cACertificate?base?

            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.4788.2.230.1
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_CSM_PKI_CPS.pdf
                Policy: 0.4.0.2042.1.4
                Policy: 1.3.6.1.4.1.4788.2.202.1

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://www.d-trust.net/crl/d-trust_root_class_3_ca_2_ev_2009.crl

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20Class%203%20CA%202%20EV%202009,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

            X509v3 Subject Key Identifier: 
                0C:70:1B:54:9A:D2:B3:9A:F8:71:B4:1A:9D:F4:72:0B:29:9A:53:FD
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: sha256WithRSAEncryption
         94:5c:c4:38:9e:8c:60:7d:4e:cc:e7:d5:32:2b:22:1b:02:ff:
         07:ac:50:c7:89:ae:b7:4d:e7:51:18:aa:ed:7e:fc:27:a0:d6:
         50:8d:0e:00:6b:15:94:b8:32:9f:7a:88:f4:6f:ac:ff:7c:08:
         f8:76:41:6f:a7:1c:eb:e9:b1:75:d7:bf:33:7d:d5:10:1f:a3:
         48:2d:82:8c:27:ee:27:3c:b9:6a:81:80:9b:1c:4d:db:e8:8c:
         a6:3e:bf:99:73:c6:61:79:9e:81:dd:5b:eb:5a:37:f3:ba:dd:
         87:80:f4:7b:b7:30:5b:c1:0e:8f:56:7f:0e:62:64:8c:6f:4f:
         e3:42:ab:19:12:46:40:1c:68:74:74:14:2f:11:87:e7:0c:86:
         4a:66:f3:22:a6:9f:e0:db:b7:cb:6d:d9:fd:cd:3b:bb:5f:90:
         a0:05:f7:96:b5:ca:78:f7:db:78:6b:e9:08:d5:b0:fb:06:52:
         b4:25:a6:06:76:fb:ff:2d:bb:98:0e:af:a1:4d:33:5d:4b:47:
         11:0d:a3:b8:6a:ec:89:4d:a5:93:95:de:9e:1e:0b:f6:15:eb:
         37:18:0b:43:2b:b8:9f:66:12:f8:a9:77:18:ae:b3:c4:7e:23:
         a8:62:44:1a:18:7c:cf:bf:2c:89:fc:55:6b:21:7c:d9:1f:62:
         a3:40:41:bd

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIHMjCCBhqgAwIBAgIQShA9s+HZJmJlKzvcauXC8zANBgkqhkiG9w0BAQsFADBQ
MQswCQYDVQQGEwJERTEVMBMGA1UECgwMRC1UcnVzdCBHbWJIMSowKAYDVQQDDCFE
LVRSVVNUIFJvb3QgQ2xhc3MgMyBDQSAyIEVWIDIwMDkwHhcNMjAwNDIxMDgyNzA4
WhcNMjkxMTA1MDg1MDQ2WjBGMQswCQYDVQQGEwJERTEVMBMGA1UEChMMRC1UcnVz
dCBHbWJIMSAwHgYDVQQDExdWUiBJREVOVCBFViBTU0wgQ0EgMjAyMDCCAiIwDQYJ
KoZIhvcNAQEBBQADggIPADCCAgoCggIBANdLSzouA2XHyRDMJUYzFPpd/c3/NoVw
fUdsYDU55ecboYNG3xBkWQU/0LgIMdjaWdlwkKIj4sBUEZT+GdXTcP/lOHDJWLy1
mZf59xDX5b5ur/9DFHTn0iZnh3RGd1mb0ewbUAwkjYvLSGOLkSIp0eSFDZB+DsiX
1YfAjMw1PtH/QCyz1KYAC4ApdaeNximJqOpvBDBMK4ObQ5VGsVECDEEzVJPOVdAi
bynRwKTwmimm2oojj/PDxviwuLPJMinL2Ju04x215lvLFdnAxC0C+h6nQJ+C29k3
Elv5CwZeW9zj6UCmN5wAdTA6am0vm95QfsAkRyzE/HsyPLVhW6/ZHmtExEVAL1FP
rCSnIMqZqswfpUYUcbXwfAxFdYmun7EWZSMIJmoNpFSYJIA3rrwpX13TEMIQI23t
srEAgZNYPEPob8+IbwJ6mg7PxJLn//UXcCD/1QFv5lhb8M/TbPr1v3sCDui/ribW
/c/gSMdC8Bxa9zdG0AOehl864APAeyq9/suWUctb3n4R9pxknQs/VGMJfBCPJivY
z8n6yl3SJXCkOenGiy+v2wFeV8kikfttJtDPJPCAQ/I2nIHI6GsUv3ijwvgYvyZP
G3vMywjwzi4nT4+MeplprZoRu1DYcqNm+n095bWeGZjgAyLhXvipnokqOBMJ4oMj
eqe6uGB2pBI1AgMBAAGjggMQMIIDDDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYB
BQUHAwIwHwYDVR0jBBgwFoAU05SKTGITKhkuzK9yin0215oc3GcwggElBggrBgEF
BQcBAQSCARcwggETMDcGCCsGAQUFBzABhitodHRwOi8vcm9vdC1jMy1jYTItZXYt
MjAwOS5vY3NwLmQtdHJ1c3QubmV0MFAGCCsGAQUFBzAChkRodHRwOi8vd3d3LmQt
dHJ1c3QubmV0L2NnaS1iaW4vRC1UUlVTVF9Sb290X0NsYXNzXzNfQ0FfMl9FVl8y
MDA5LmNydDCBhQYIKwYBBQUHMAKGeWxkYXA6Ly9kaXJlY3RvcnkuZC10cnVzdC5u
ZXQvQ049RC1UUlVTVCUyMFJvb3QlMjBDbGFzcyUyMDMlMjBDQSUyMDIlMjBFViUy
MDIwMDksTz1ELVRydXN0JTIwR21iSCxDPURFP2NBQ2VydGlmaWNhdGU/YmFzZT8w
fgYDVR0gBHcwdTBaBgsrBgEEAaU0AoFmATBLMEkGCCsGAQUFBwIBFj1odHRwOi8v
d3d3LmQtdHJ1c3QubmV0L2ludGVybmV0L2ZpbGVzL0QtVFJVU1RfQ1NNX1BLSV9D
UFMucGRmMAgGBgQAj3oBBDANBgsrBgEEAaU0AoFKATCB3QYDVR0fBIHVMIHSMEag
RKBChkBodHRwOi8vd3d3LmQtdHJ1c3QubmV0L2NybC9kLXRydXN0X3Jvb3RfY2xh
c3NfM19jYV8yX2V2XzIwMDkuY3JsMIGHoIGEoIGBhn9sZGFwOi8vZGlyZWN0b3J5
LmQtdHJ1c3QubmV0L0NOPUQtVFJVU1QlMjBSb290JTIwQ2xhc3MlMjAzJTIwQ0El
MjAyJTIwRVYlMjAyMDA5LE89RC1UcnVzdCUyMEdtYkgsQz1ERT9jZXJ0aWZpY2F0
ZXJldm9jYXRpb25saXN0MB0GA1UdDgQWBBQMcBtUmtKzmvhxtBqd9HILKZpT/TAO
BgNVHQ8BAf8EBAMCAQYwEgYDVR0TAQH/BAgwBgEB/wIBADANBgkqhkiG9w0BAQsF
AAOCAQEAlFzEOJ6MYH1OzOfVMisiGwL/B6xQx4mut03nURiq7X78J6DWUI0OAGsV
lLgyn3qI9G+s/3wI+HZBb6cc6+mxdde/M33VEB+jSC2CjCfuJzy5aoGAmxxN2+iM
pj6/mXPGYXmegd1b61o387rdh4D0e7cwW8EOj1Z/DmJkjG9P40KrGRJGQBxodHQU
LxGH5wyGSmbzIqaf4Nu3y23Z/c07u1+QoAX3lrXKePfbeGvpCNWw+wZStCWmBnb7
/y27mA6voU0zXUtHEQ2juGrsiU2lk5Xenh4L9hXrNxgLQyu4n2YS+Kl3GK6zxH4j
qGJEGhh8z78sifxVayF82R9io0BBvQ==
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06