G2-ServerCA0A.orig.cer: CN=Amazon,OU=Server CA 0A,O=Amazon,C=US (Intermediate Certificate, Expiring 2040-10-21) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.amazontrust.com/repository/G2-ServerCA0A.orig.cer" --output cert.crt

Download certificate through wget:

wget -q "https://www.amazontrust.com/repository/G2-ServerCA0A.orig.cer" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            06:7b:50:52:9d:d6:5f:58:1a:d5:f5:c5:5a:5a:79:18:a1:6f:93
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Services Root Certificate Authority - G2
        Validity
            Not Before: Oct 21 22:22:27 2015 GMT
            Not After : Oct 21 22:22:27 2040 GMT
        Subject: C=US, O=Amazon, OU=Server CA 0A, CN=Amazon
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:a1:85:31:dc:31:7f:96:71:22:a2:a3:fd:95:27:
                    c3:74:70:2a:5d:ad:47:f8:a0:1f:55:f9:fc:76:74:
                    5c:54:f9:78:11:be:cc:e1:81:e3:dc:34:ab:f9:77:
                    b6:b4:a8:e5:85:f6:e2:e6:62:2c:74:04:fd:f8:c5:
                    8b:a3:35:ed:13:4c:60:63:39:d8:c2:5a:64:cb:8b:
                    d9:9b:e6:03:bc:43:17:b7:79:a3:d9:14:75:f6:25:
                    b0:3e:19:ea:b2:2e:4b:f7:fc:3b:78:4a:48:20:01:
                    95:f5:3e:fa:1a:3e:50:b2:b4:70:96:ee:a0:dd:a3:
                    ec:9c:ba:ac:2b:ad:f9:74:7d:87:c9:ac:40:3e:3b:
                    9c:7c:bf:eb:87:52:60:b9:00:f1:79:bd:81:3c:5d:
                    d1:a1:1a:b6:b9:25:1a:2d:d9:36:37:3f:e2:a1:d4:
                    07:ee:25:63:cb:05:18:26:99:b3:ec:72:ff:35:cd:
                    57:65:f8:bc:d9:74:61:4f:74:29:c2:c0:4f:4e:29:
                    de:2c:b4:a3:64:3b:6b:d3:c1:d2:72:90:b8:28:bd:
                    c1:7c:f3:d2:d0:75:b3:df:0b:1e:d4:68:37:87:74:
                    07:09:2f:23:5c:4b:48:b9:16:b1:c3:ee:13:5f:c3:
                    37:e9:38:e4:45:d3:ed:70:17:a1:dd:13:f1:81:50:
                    90:49
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Subject Key Identifier: 
                97:EA:C4:22:D2:06:18:ED:85:04:FF:DC:52:C2:6E:DB:0E:06:E1:3F
            X509v3 Authority Key Identifier: 
                keyid:9C:5F:00:DF:AA:01:D7:30:2B:38:88:A2:B8:6D:4A:9C:F2:11:91:83

            Authority Information Access: 
                OCSP - URI:http://ocsp.rootg2.amazontrust.com
                CA Issuers - URI:http://crl.rootg2.amazontrust.com/rootg2.cer

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.rootg2.amazontrust.com/rootg2.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy

    Signature Algorithm: sha256WithRSAEncryption
         65:05:59:09:ec:b5:6d:76:1c:9a:0a:84:9b:f9:47:60:6a:99:
         13:1d:0a:b9:43:99:47:5c:d0:bc:8a:5e:b1:39:95:bf:05:25:
         50:89:72:87:9b:c2:d5:e1:05:e7:5a:21:0c:71:68:36:47:5d:
         b3:4e:3f:23:05:5a:11:36:8f:6a:4b:10:34:ca:19:8e:0c:41:
         16:ff:28:05:00:47:a8:e7:72:5d:cc:40:29:95:06:f4:66:03:
         8b:73:c1:9b:4d:6e:a5:98:85:be:f4:61:49:f8:2a:33:fe:dc:
         ef:08:57:ce:96:c1:8a:cb:07:12:21:ea:c8:7f:8d:f5:88:7a:
         7c:36:8a:94:49:24:41:e4:eb:8c:01:a5:02:0a:0a:94:cf:82:
         5a:01:f2:7f:2e:d9:36:d5:a9:ba:c3:79:f0:5a:9d:a8:cf:59:
         6b:2d:38:fc:39:d5:87:56:d8:64:98:a9:b4:61:23:14:27:8a:
         7e:d6:63:3b:41:95:ba:08:69:1c:5e:86:c7:ed:2d:e4:a1:58:
         6a:24:6f:4c:8e:5b:9f:b8:a6:aa:f0:ef:0e:ef:c6:fd:9d:fe:
         e4:a5:7d:9c:77:32:a1:c0:7a:cc:aa:34:6b:5c:c0:eb:9f:da:
         d6:2b:fc:d2:59:01:a5:da:c1:8d:cb:7c:d2:78:af:8f:4a:fc:
         dc:0f:4e:52

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06