RapidSSLTLSRSACAG1.crt: CN=RapidSSL TLS RSA CA G1,OU=www.digicert.com,O=DigiCert Inc,C=US (Intermediate Certificate, Expiring 2027-11-02) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://cacerts.digicert.com/RapidSSLTLSRSACAG1.crt" --output cert.crt

Download certificate through wget:

wget -q "https://cacerts.digicert.com/RapidSSLTLSRSACAG1.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0b:25:94:22:ce:d9:81:2a:15:a0:4e:99:52:8a:0e:fa
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G2
        Validity
            Not Before: Nov  2 12:24:33 2017 GMT
            Not After : Nov  2 12:24:33 2027 GMT
        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=RapidSSL TLS RSA CA G1
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:bf:b9:59:25:44:12:35:16:e2:5d:50:49:05:0a:
                    e0:cb:fc:8d:da:25:08:9a:67:a6:a2:6d:11:e3:6a:
                    9f:da:a7:dc:f2:d5:a6:0d:ae:98:5e:ed:87:1a:37:
                    03:28:3e:c6:6f:5c:34:7e:84:d2:4e:a3:d8:1b:80:
                    e6:15:4c:fa:bc:81:77:3c:e0:8e:f9:60:a3:87:89:
                    50:38:36:b2:49:41:9e:a9:da:c2:50:ca:ac:7a:d0:
                    79:04:22:3c:c8:37:ed:4b:40:b7:d7:4e:5a:6e:ce:
                    74:e8:39:ad:61:c9:30:f4:cb:28:ad:17:23:98:c1:
                    44:4c:fb:f0:88:f0:53:45:32:90:61:c3:6d:a1:a5:
                    e0:10:90:e3:8b:9a:ca:93:e5:06:49:61:e8:a4:ee:
                    a9:6f:9f:c8:1f:0f:e5:dd:0e:79:37:92:4b:ae:bb:
                    47:86:fa:fb:b2:ad:21:ab:e6:e5:f9:2d:18:45:5a:
                    5b:f5:cc:54:03:72:1f:c4:2a:67:75:eb:79:ba:cf:
                    fc:9c:c7:fa:8b:6b:dc:f2:bc:82:dc:ed:c4:29:6f:
                    e9:3b:4c:ba:da:f5:61:35:ed:83:d2:9f:d0:0d:8c:
                    6f:84:0a:8f:4f:0d:6d:cd:f6:5c:21:29:00:8d:bf:
                    0d:60:1a:88:2e:c8:24:2e:ec:71:3b:06:75:bc:79:
                    24:85
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                0C:DB:6C:82:49:0F:4A:67:0A:B8:14:EE:7A:C4:48:52:88:EB:56:38
            X509v3 Authority Key Identifier: 
                keyid:4E:22:54:20:18:95:E6:E3:6E:E6:0F:FA:FA:B9:12:ED:06:17:8F:39

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/DigiCertGlobalRootG2.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114412.1.1
                  CPS: https://www.digicert.com/CPS
                Policy: 2.16.840.1.114412.1.2
                Policy: 2.23.140.1.2.1
                Policy: 2.23.140.1.2.2

    Signature Algorithm: sha256WithRSAEncryption
         19:44:a5:39:be:0a:dd:6b:66:4a:56:e6:13:9d:14:60:11:d7:
         33:44:8a:5c:fa:87:33:39:3a:5d:05:29:0a:17:85:ff:8a:94:
         f1:a3:a1:6a:3b:32:45:01:43:57:58:a1:fe:e3:c8:83:b6:07:
         46:d1:62:09:3a:b8:1b:ec:db:e3:75:f5:4f:be:e7:26:04:8e:
         23:da:6a:fd:3a:82:c2:db:a4:67:bb:bd:54:b2:f7:24:0a:b7:
         59:dc:b6:9a:82:8b:be:f0:bc:b5:59:91:ce:40:1e:d3:14:02:
         91:12:88:8d:b0:46:f3:43:12:c8:35:ff:47:8b:98:82:3e:99:
         88:d4:ff:66:0e:86:23:a4:68:7e:0a:a0:a4:37:6c:b0:b7:34:
         5c:84:50:12:8b:71:21:97:0a:cc:fd:e9:18:9f:45:09:b3:07:
         98:c2:cb:ca:e0:5d:fa:e0:96:bd:57:05:da:88:18:01:ac:2e:
         7c:28:52:fc:f4:fa:d4:3f:6b:ab:33:d1:4b:92:36:ba:a6:b7:
         b6:62:13:e3:82:61:26:05:a1:06:71:4c:6f:b0:06:42:4b:cd:
         ab:d2:8d:4b:d7:5d:dc:65:9c:d7:b1:ff:75:76:b5:7a:7a:31:
         cd:68:c4:d2:10:5d:16:3c:4f:85:46:f4:5b:7c:22:f2:8d:f8:
         fe:6f:05:c7

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIIEszCCA5ugAwIBAgIQCyWUIs7ZgSoVoE6ZUooO+jANBgkqhkiG9w0BAQsFADBh
MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
d3cuZGlnaWNlcnQuY29tMSAwHgYDVQQDExdEaWdpQ2VydCBHbG9iYWwgUm9vdCBH
MjAeFw0xNzExMDIxMjI0MzNaFw0yNzExMDIxMjI0MzNaMGAxCzAJBgNVBAYTAlVT
MRUwEwYDVQQKEwxEaWdpQ2VydCBJbmMxGTAXBgNVBAsTEHd3dy5kaWdpY2VydC5j
b20xHzAdBgNVBAMTFlJhcGlkU1NMIFRMUyBSU0EgQ0EgRzEwggEiMA0GCSqGSIb3
DQEBAQUAA4IBDwAwggEKAoIBAQC/uVklRBI1FuJdUEkFCuDL/I3aJQiaZ6aibRHj
ap/ap9zy1aYNrphe7YcaNwMoPsZvXDR+hNJOo9gbgOYVTPq8gXc84I75YKOHiVA4
NrJJQZ6p2sJQyqx60HkEIjzIN+1LQLfXTlpuznToOa1hyTD0yyitFyOYwURM+/CI
8FNFMpBhw22hpeAQkOOLmsqT5QZJYeik7qlvn8gfD+XdDnk3kkuuu0eG+vuyrSGr
5uX5LRhFWlv1zFQDch/EKmd163m6z/ycx/qLa9zyvILc7cQpb+k7TLra9WE17YPS
n9ANjG+ECo9PDW3N9lwhKQCNvw1gGoguyCQu7HE7BnW8eSSFAgMBAAGjggFmMIIB
YjAdBgNVHQ4EFgQUDNtsgkkPSmcKuBTuesRIUojrVjgwHwYDVR0jBBgwFoAUTiJU
IBiV5uNu5g/6+rkS7QYXjzkwDgYDVR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQGCCsG
AQUFBwMBBggrBgEFBQcDAjASBgNVHRMBAf8ECDAGAQH/AgEAMDQGCCsGAQUFBwEB
BCgwJjAkBggrBgEFBQcwAYYYaHR0cDovL29jc3AuZGlnaWNlcnQuY29tMEIGA1Ud
HwQ7MDkwN6A1oDOGMWh0dHA6Ly9jcmwzLmRpZ2ljZXJ0LmNvbS9EaWdpQ2VydEds
b2JhbFJvb3RHMi5jcmwwYwYDVR0gBFwwWjA3BglghkgBhv1sAQEwKjAoBggrBgEF
BQcCARYcaHR0cHM6Ly93d3cuZGlnaWNlcnQuY29tL0NQUzALBglghkgBhv1sAQIw
CAYGZ4EMAQIBMAgGBmeBDAECAjANBgkqhkiG9w0BAQsFAAOCAQEAGUSlOb4K3Wtm
SlbmE50UYBHXM0SKXPqHMzk6XQUpCheF/4qU8aOhajsyRQFDV1ih/uPIg7YHRtFi
CTq4G+zb43X1T77nJgSOI9pq/TqCwtukZ7u9VLL3JAq3Wdy2moKLvvC8tVmRzkAe
0xQCkRKIjbBG80MSyDX/R4uYgj6ZiNT/Zg6GI6RofgqgpDdssLc0XIRQEotxIZcK
zP3pGJ9FCbMHmMLLyuBd+uCWvVcF2ogYAawufChS/PT61D9rqzPRS5I2uqa3tmIT
44JhJgWhBnFMb7AGQkvNq9KNS9dd3GWc17H/dXa1enoxzWjE0hBdFjxPhUb0W3wi
8o34/m8Fxw==
-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06