giag4x.der: CN=GIAG4x,O=Google Trust Services LLC,C=US (Intermediate Certificate, Expiring 2023-09-30) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://pki.goog/repo/certs/giag4x.der" --output cert.crt

Download certificate through wget:

wget -q "https://pki.goog/repo/certs/giag4x.der" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            02:03:f3:58:88:16:16:0e:0a:45:27:f2:a5
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=Google Trust Services LLC, CN=GTS Root R1
        Validity
            Not Before: Aug 13 00:00:42 2020 GMT
            Not After : Sep 30 00:00:42 2023 GMT
        Subject: C=US, O=Google Trust Services LLC, CN=GIAG4x
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:bd:2c:3b:02:78:6c:a3:26:1a:e7:3f:dc:ac:ab:
                    6d:07:9d:97:f9:1d:25:77:75:1d:40:15:38:61:cf:
                    f8:c2:61:7a:e9:ca:47:78:43:8c:4a:68:5d:69:8e:
                    51:cd:8a:e8:c1:9e:a4:1b:5c:57:2e:b4:a8:55:4b:
                    ae:75:43:d1:7e:0f:f3:8d:1a:af:fc:00:15:0c:91:
                    6a:73:c3:a7:86:08:73:69:66:54:f7:39:61:b5:18:
                    18:e2:5c:78:67:aa:43:a2:c4:ee:47:98:a6:09:c2:
                    af:c2:a8:83:ce:d3:89:af:86:0a:1e:e9:36:de:9d:
                    dc:c6:ed:73:0e:75:2c:b8:df:9c:9b:84:e4:56:d2:
                    35:4a:cb:92:73:db:75:b8:4a:c1:bc:52:1c:5b:ab:
                    f7:74:b7:23:ac:f9:26:c0:4e:b5:b9:d6:50:94:10:
                    c7:27:30:85:c2:b8:57:2e:d5:cb:96:6b:92:03:9f:
                    fd:a4:eb:96:27:e5:37:ad:28:12:ec:80:92:7d:af:
                    37:be:40:5e:d3:4c:a6:8c:86:53:ea:88:03:5d:6b:
                    85:b2:ee:1e:76:e7:b6:ee:71:bc:83:d8:0e:d5:8a:
                    33:21:40:95:ef:ec:c4:c4:6d:06:e6:4c:53:a2:f8:
                    ac:f8:52:69:cb:d8:48:23:14:85:ad:12:0a:33:80:
                    d7:69
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                EE:0A:93:CE:D9:D4:F7:9A:A9:97:44:50:35:66:D8:CD:7D:6F:5A:10
            X509v3 Authority Key Identifier: 
                keyid:E4:AF:2B:26:71:1A:2B:48:27:85:2F:52:66:2C:EF:F0:89:13:71:3E

            Authority Information Access: 
                OCSP - URI:http://ocsp.pki.goog/gtsr1
                CA Issuers - URI:http://pki.goog/repo/certs/gtsr1.der

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.pki.goog/gtsr1/gtsr1.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.1
                Policy: 2.23.140.1.2.2
                Policy: 1.3.6.1.4.1.11129.2.5.3
                  CPS: https://pki.goog/repository/

    Signature Algorithm: sha256WithRSAEncryption
         43:5e:27:ac:63:b0:0f:43:25:57:85:92:5a:aa:8d:9a:10:09:
         d0:2a:08:29:ae:76:99:48:80:63:f0:5f:c7:57:05:19:94:3c:
         a8:39:6e:15:66:f2:17:af:c3:f6:50:e1:80:a7:93:7a:75:5c:
         32:5f:c2:af:a7:25:9f:c3:33:63:f4:ff:4b:74:61:5a:54:06:
         0b:06:35:ce:10:eb:90:17:8e:fb:4a:2c:8f:84:9d:a1:cc:7c:
         94:bb:3e:82:8e:5b:59:77:c1:53:39:2e:14:24:f8:d0:5d:d5:
         5f:80:28:c0:f6:b9:a8:22:d2:92:4e:6f:98:28:be:f0:5e:49:
         ad:d1:bf:21:eb:6b:34:ec:78:63:58:45:be:1e:38:d5:f1:8d:
         5c:22:a0:59:81:ac:92:65:f1:22:b9:8f:4f:3a:02:d1:2b:af:
         60:15:6f:ca:ce:d0:0e:fc:15:de:4a:e5:44:b3:33:7a:79:b8:
         46:ea:e2:bf:ba:c3:df:98:51:d1:35:f9:73:bc:85:1a:84:5f:
         09:d3:27:1e:08:ad:04:3e:c1:6f:4b:4c:fb:fa:63:03:c4:b3:
         d5:d3:c9:ed:5f:a6:de:47:33:52:46:8f:6d:cb:0c:e5:41:9d:
         4b:3a:5e:19:3e:23:c7:65:d5:44:34:ce:f6:ae:54:cc:a6:ed:
         68:6d:3d:b2:a2:87:a8:3e:bd:e4:27:ec:00:db:58:5c:01:18:
         3f:f8:39:6c:54:71:55:0c:ff:8c:63:82:a6:49:27:30:7b:bb:
         4d:4b:87:66:81:80:21:92:ae:31:b7:03:5d:9f:93:ed:a7:0f:
         3f:c0:9b:1e:e9:c6:a1:7d:3f:b3:42:50:31:02:5f:df:2a:3a:
         de:c1:24:6f:e9:2e:ec:82:8f:7c:93:7c:2b:d4:c1:8c:31:d0:
         f8:13:ef:2b:62:f0:25:0c:48:38:52:8d:79:f9:61:ec:44:8e:
         d7:10:24:b6:d6:62:04:3f:4d:07:f4:7b:ba:cf:43:04:07:8f:
         d6:ba:81:b1:11:4a:f4:6f:e5:1b:ce:a5:37:f6:b6:45:2f:ce:
         c2:53:0e:dd:45:1a:51:01:74:ca:a3:f9:1e:3a:da:1d:55:6a:
         7a:88:a7:20:f3:a7:80:0c:60:1a:96:42:fb:26:a7:f6:1e:fd:
         80:42:5c:54:c8:bb:7e:69:71:42:10:9e:74:08:85:95:c1:7a:
         60:93:9f:1c:1d:95:cd:2a:4e:0f:73:14:91:2e:8b:47:27:7d:
         75:1b:f0:db:54:39:a6:ec:b7:2f:e3:99:33:19:b0:9e:f9:a0:
         71:f8:7a:9c:a2:c8:28:af:dd:6f:5c:97:47:27:99:0b:a4:3c:
         6f:a9:b7:1a:d6:3e:fc:ef

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06