TrustProviderBVTLSRSAEVCAG2.crt: CN=Trust Provider B.V. TLS RSA EV CA G2,O=Trust Provider B.V.,C=NL

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://cacerts.digicert.com/TrustProviderBVTLSRSAEVCAG2.crt (DER format)
  • Serial number: 20597909171991439008458295879085498395
  • SHA-1 Fingerprint: c63f2a276679e32cfc65b018402d7f74ef6e1ba4
  • SHA-1 Fingerprint: c6:3f:2a:27:66:79:e3:2c:fc:65:b0:18:40:2d:7f:74:ef:6e:1b:a4
  • SHA-256 Fingerprint: b23a29c312a7a80b0fe6b4e71b909cae92ad649e88766e56c9ee8e1d7c013945
  • SHA-256 Fingerprint: b2:3a:29:c3:12:a7:a8:0b:0f:e6:b4:e7:1b:90:9c:ae:92:ad:64:9e:88:76:6e:56:c9:ee:8e:1d:7c:01:39:45
  • Signature hash algorithm: sha256
  • Subject: CN=Trust Provider B.V. TLS RSA EV CA G2,O=Trust Provider B.V.,C=NL
  • Not valid before: 2020-02-21 12:30:41
  • Not valid after: 2030-02-21 12:30:41
  • Issuer:
    • Issuer name: CN=DigiCert Global Root G2,OU=www.digicert.com,O=DigiCert Inc,C=US
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://cacerts.digicert.com/TrustProviderBVTLSRSAEVCAG2.crt --output cert.crt

Download certificate through wget:

wget -q http://cacerts.digicert.com/TrustProviderBVTLSRSAEVCAG2.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0f:7f:03:54:66:b7:81:6e:a2:0e:5e:82:f9:6a:a0:1b
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G2
        Validity
            Not Before: Feb 21 12:30:41 2020 GMT
            Not After : Feb 21 12:30:41 2030 GMT
        Subject: C=NL, O=Trust Provider B.V., CN=Trust Provider B.V. TLS RSA EV CA G2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:d7:a4:3d:e8:29:7b:61:78:e6:d3:01:05:27:ea:
                    fb:2e:d3:ac:3d:90:52:3c:d9:88:69:f2:b4:3d:8c:
                    c8:bf:71:ad:f2:ef:7d:93:3f:52:01:f3:e3:bf:df:
                    74:2b:9d:24:c8:f1:36:62:b1:98:54:d2:eb:94:82:
                    da:7b:3f:d7:cc:b5:61:e0:82:98:a7:71:15:68:8e:
                    bb:05:a0:12:e2:15:82:49:1e:86:94:8b:d1:88:25:
                    7a:7f:e6:d7:3f:05:ee:35:44:cc:a3:14:77:50:87:
                    79:11:c9:ba:e0:13:4e:e5:6c:a1:08:f6:bd:da:43:
                    31:ca:43:c2:5e:47:f5:02:58:92:7e:63:c6:e6:dd:
                    2e:81:77:19:17:34:eb:d4:1b:5c:bd:0a:b3:4e:d3:
                    3e:23:e0:78:f9:37:24:cf:7c:fe:18:d4:6a:c7:d3:
                    b3:2b:e2:fe:71:0c:85:ca:96:45:26:28:0a:e3:5e:
                    0f:dd:17:50:25:37:6f:f1:08:50:57:5a:ee:1b:78:
                    02:5d:8a:37:3e:a1:ac:81:a8:11:0f:b0:45:97:aa:
                    f2:05:75:74:d9:17:c4:e8:e2:d8:b8:25:d6:33:05:
                    a9:ef:eb:64:82:05:c8:50:4e:63:68:31:f3:01:8f:
                    78:88:c6:44:22:9a:ed:9f:10:0c:18:61:92:86:7e:
                    0b:af
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                52:53:12:F1:CA:F4:74:94:71:6A:F5:90:CF:AE:41:9E:DE:44:F1:31
            X509v3 Authority Key Identifier: 
                keyid:4E:22:54:20:18:95:E6:E3:6E:E6:0F:FA:FA:B9:12:ED:06:17:8F:39

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/DigiCertGlobalRootG2.crl

                Full Name:
                  URI:http://crl4.digicert.com/DigiCertGlobalRootG2.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114412.2.1
                  CPS: https://www.digicert.com/CPS
                Policy: 2.16.840.1.114412.1.1
                Policy: 2.23.140.1.2.2
                Policy: 2.23.140.1.1

    Signature Algorithm: sha256WithRSAEncryption
         99:d3:60:3d:dc:3c:01:4d:6a:ec:a8:16:1b:9c:05:62:5d:50:
         45:54:f2:4b:8f:e2:92:84:b1:e2:b9:c2:39:cd:66:cb:25:f5:
         89:36:52:a3:f5:bf:be:68:e9:88:33:76:8a:29:b2:0f:bc:ca:
         c8:b0:94:41:5a:83:7f:7a:93:d6:2f:e0:31:a6:9e:4a:6b:b1:
         8a:ef:41:f3:39:07:f3:fa:0f:36:4d:73:40:b8:7f:3a:32:18:
         b4:d4:ba:a0:1e:ff:ae:30:61:c4:66:7d:47:61:49:1c:c4:4b:
         e3:4a:20:ac:52:0c:d5:28:ca:c3:69:27:32:b4:31:94:8a:9f:
         63:21:17:23:57:bb:b5:c3:3f:7e:db:38:57:d1:6b:84:b8:6e:
         5b:81:35:32:14:80:97:0f:39:17:a0:90:83:e7:1a:69:f0:6b:
         66:13:8e:0a:5e:e8:11:8d:dc:c8:6a:21:44:f0:07:eb:ff:ee:
         3e:10:63:dc:2b:97:1c:4f:4a:36:a8:02:49:e6:6a:25:80:db:
         01:43:8a:f6:f6:17:61:e5:7c:6e:17:74:f7:a7:4b:67:c4:3d:
         41:55:c6:fc:9d:fe:53:6a:a4:42:87:93:f6:c1:2c:56:6b:ec:
         6e:9f:4f:5b:3d:05:e1:e4:c0:62:89:7f:26:fc:ab:46:b4:9c:
         9c:ea:80:66

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26