D-Trust.SMCB-CA31.crt: CN=D-Trust.SMCB-CA31,OU=Institution des Gesundheitswesens-CA der Telematikinfrastruktur,O=D-TRUST GmbH,C=DE (Intermediate Certificate, Expiring 2030-08-23) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-Trust.SMCB-CA31.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-Trust.SMCB-CA31.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 12 (0xc)
    Signature Algorithm: ecdsa-with-SHA256
        Issuer: C=DE, O=gematik GmbH, OU=Zentrale Root-CA der Telematikinfrastruktur, CN=GEM.RCA5
        Validity
            Not Before: Aug 25 09:46:04 2022 GMT
            Not After : Aug 23 09:46:03 2030 GMT
        Subject: C=DE, O=D-TRUST GmbH, OU=Institution des Gesundheitswesens-CA der Telematikinfrastruktur, CN=D-Trust.SMCB-CA31
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (256 bit)
                pub: 
                    04:77:b0:a4:82:32:25:a7:85:a2:55:9e:c1:77:ec:
                    04:ac:48:aa:36:1e:50:57:42:7a:d9:f1:1d:b8:0a:
                    0b:fb:d0:a7:64:66:27:de:31:78:8c:d5:c6:34:be:
                    4e:7f:9f:ce:43:36:18:d9:a6:49:26:e2:02:ea:dd:
                    9a:23:6c:23:bb
                ASN1 OID: brainpoolP256r1
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                07:12:2F:7F:38:BD:8F:7E:46:88:EE:62:63:EC:A4:5E:FD:40:11:65
            X509v3 Authority Key Identifier: 
                keyid:7C:AA:77:9B:5A:5D:CE:68:86:88:36:00:5B:14:2B:5F:F1:3B:B3:D0

            Authority Information Access: 
                OCSP - URI:http://ocsp.root-ca.ti-dienste.de/ocsp

            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Certificate Policies: 
                Policy: 1.2.276.0.76.4.163
                  CPS: http://www.gematik.de/go/policies

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: ecdsa-with-SHA256
         30:44:02:20:1d:bc:9e:11:81:d3:f1:b5:b6:27:36:00:54:94:
         ee:a2:ea:8c:a3:fb:39:4f:12:4a:fa:13:c3:4c:b3:ef:eb:d7:
         02:20:71:00:70:dd:96:e6:8f:44:0a:15:e1:0f:a5:b9:99:46:
         e1:6b:eb:ef:51:29:9c:8a:ec:0c:54:f8:0c:93:02:ee

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06