Amazon-ECDSA-384-M03.cer: CN=Amazon ECDSA 384 M03,O=Amazon,C=US (Intermediate Certificate, Expiring 2030-08-23) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is intermediate certificate used for the issuance of other certificates.
- Certificate Download URL: https://www.amazontrust.com/repository/Amazon-ECDSA-384-M03.cer (in DER format )
- Serial Number : 166129424770051667788283092416486912009476484
- SHA-1 Fingerprint : cf4e7372782501a958d84a9d0d0e93f8624d5b64
- SHA-1 Fingerprint : cf:4e:73:72:78:25:01:a9:58:d8:4a:9d:0d:0e:93:f8:62:4d:5b:64
- SHA-256 Fingerprint : f40da455be136e0db31a116ffd3c3002b1ebbc591558493fe630a9c8c9afad70
- SHA-256 Fingerprint : f4:0d:a4:55:be:13:6e:0d:b3:1a:11:6f:fd:3c:30:02:b1:eb:bc:59:15:58:49:3f:e6:30:a9:c8:c9:af:ad:70
- Signature Hash Algorithm : sha384
- Subject
: CN=Amazon ECDSA 384 M03,O=Amazon,C=US- Country Name: US (United States of America)
- Organization: Amazon
- Common Name: Amazon ECDSA 384 M03
 
- Not Valid Before: 2022-08-23 22:37:27
- Not Valid After: 2030-08-23 22:37:27
- Issuer (Parent Certificate):- Issuer Name: CN=Amazon Root CA 4,O=Amazon,C=US
- Issuer Certificate URL: NA
 
- Audit Record:- Revocation Status: Not Revoked
- Certificate Policy (CP) URL: https://www.digicert.com/content/dam/digicert/pdfs/legal/digicert-cp-v5-12-Final.pdf
- Certificate Practice Statement (CPS) URL: https://www.digicert.com/content/dam/digicert/pdfs/legal/digicert-cps-v5-12-Final.pdf
- Auditor: BDO International Limited
- Standard Audit URL: https://bugzilla.mozilla.org/attachment.cgi?id=9309728
- Standard Audit Period Start Date: 2021.10.01
- Standard Audit Period End Date: 2022.09.30
- Standard Audit Statement Date: 2022.12.22
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: http://crl.e3m03.amazontrust.com/e3m03.crl
- Check its issuer’s audit information: CN=Amazon Root CA 4,O=Amazon,C=US .
 
Download certificate through curl:
curl -sSL "https://www.amazontrust.com/repository/Amazon-ECDSA-384-M03.cer" --output cert.crt
Download certificate through wget:
wget -q "https://www.amazontrust.com/repository/Amazon-ECDSA-384-M03.cer" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509 to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509 to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            07:73:12:80:34:d8:cf:08:cd:09:fa:7a:c2:6f:d3:da:bc:99:84
    Signature Algorithm: ecdsa-with-SHA384
        Issuer: C=US, O=Amazon, CN=Amazon Root CA 4
        Validity
            Not Before: Aug 23 22:37:27 2022 GMT
            Not After : Aug 23 22:37:27 2030 GMT
        Subject: C=US, O=Amazon, CN=Amazon ECDSA 384 M03
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (384 bit)
                pub: 
                    04:2d:14:7c:76:67:22:36:0f:d8:37:dd:f5:e2:e1:
                    a2:04:b6:a3:d0:30:31:fd:0f:74:a1:d0:14:46:00:
                    18:ce:a1:2d:48:d4:e9:f9:6d:dc:63:1b:72:fb:b1:
                    78:3e:6a:2e:bd:50:ac:2c:6c:cd:24:3d:19:60:60:
                    ff:b3:95:bf:c9:6e:ba:f4:2f:88:08:23:61:41:30:
                    2b:c1:77:d1:c3:69:cc:87:67:0a:2a:63:76:92:4b:
                    36:88:5b:7e:1e:14:be
                ASN1 OID: secp384r1
                NIST CURVE: P-384
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Subject Key Identifier: 
                A8:E5:E3:A5:FA:49:28:BE:C6:7D:FE:22:DC:82:FA:0C:2D:86:47:18
            X509v3 Authority Key Identifier: 
                keyid:D3:EC:C7:3A:65:6E:CC:E1:DA:76:9A:56:FB:9C:F3:86:6D:57:E5:81
            Authority Information Access: 
                OCSP - URI:http://ocsp.rootca4.amazontrust.com
                CA Issuers - URI:http://crt.rootca4.amazontrust.com/rootca4.cer
            X509v3 CRL Distribution Points: 
                Full Name:
                  URI:http://crl.rootca4.amazontrust.com/rootca4.crl
            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.1
    Signature Algorithm: ecdsa-with-SHA384
         30:66:02:31:00:d7:6c:83:2b:d4:c3:4c:27:30:8e:92:b6:32:
         d1:6f:54:07:c3:76:5f:9b:ab:41:2f:d8:49:0a:7c:f6:8c:8d:
         26:98:13:be:60:1f:2a:0f:cc:dc:46:70:14:bf:5f:90:0b:02:
         31:00:8a:3f:cf:d9:7b:8b:ad:e2:05:eb:3c:fa:8a:2c:80:7d:
         20:75:5b:2a:39:9b:e4:2e:7c:83:4b:35:9e:32:29:a6:b6:eb:
         2d:b2:87:69:e9:90:d4:a5:dd:92:8a:64:9d:bb
CA Certificate in PEM Format
Use openssl x509 to convert certificate from DER format to PEM format:
openssl x509 -in cert.crt -inform der
Converted PEM format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List
Related Certificates
- Amazon-ECDSA-256-M01.cer: CN=Amazon ECDSA 256 M01,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-ECDSA-256-M02.cer: CN=Amazon ECDSA 256 M02,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-ECDSA-256-M03.cer: CN=Amazon ECDSA 256 M03,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-ECDSA-256-M04.cer: CN=Amazon ECDSA 256 M04,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-ECDSA-384-M01.cer: CN=Amazon ECDSA 384 M01,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-ECDSA-384-M02.cer: CN=Amazon ECDSA 384 M02,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-ECDSA-384-M04.cer: CN=Amazon ECDSA 384 M04,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-2048-M01.cer: CN=Amazon RSA 2048 M01,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-2048-M02.cer: CN=Amazon RSA 2048 M02,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-2048-M03.cer: CN=Amazon RSA 2048 M03,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-2048-M04.cer: CN=Amazon RSA 2048 M04,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-4096-M01.cer: CN=Amazon RSA 4096 M01,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-4096-M02.cer: CN=Amazon RSA 4096 M02,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-4096-M03.cer: CN=Amazon RSA 4096 M03,O=Amazon,C=US (Expiring: 2030-08-23)
- Amazon-RSA-4096-M04.cer: CN=Amazon RSA 4096 M04,O=Amazon,C=US (Expiring: 2030-08-23)
- rootca1.cer: CN=Amazon Root CA 1,O=Amazon,C=US (Expiring: 2037-12-31)
- AmazonRootCA1.cer: CN=Amazon Root CA 1,O=Amazon,C=US (Expiring: 2038-01-17)
- G2-RootCA1.cer: CN=Amazon Root CA 1,O=Amazon,C=US (Expiring: 2037-12-31)
- G2-RootCA1.orig.cer: CN=Amazon Root CA 1,O=Amazon,C=US (Expiring: 2037-12-31)
- AmazonRootCA2.cer: CN=Amazon Root CA 2,O=Amazon,C=US (Expiring: 2040-05-26)
- G2-RootCA2.cer: CN=Amazon Root CA 2,O=Amazon,C=US (Expiring: 2037-12-31)
- G2-RootCA2.orig.cer: CN=Amazon Root CA 2,O=Amazon,C=US (Expiring: 2037-12-31)
- AmazonRootCA3.cer: CN=Amazon Root CA 3,O=Amazon,C=US (Expiring: 2040-05-26)
- G2-RootCA3.cer: CN=Amazon Root CA 3,O=Amazon,C=US (Expiring: 2037-12-31)
- G2-RootCA3.orig.cer: CN=Amazon Root CA 3,O=Amazon,C=US (Expiring: 2037-12-31)
- AmazonRootCA4.cer: CN=Amazon Root CA 4,O=Amazon,C=US (Expiring: 2040-05-26)
- G2-RootCA4.cer: CN=Amazon Root CA 4,O=Amazon,C=US (Expiring: 2037-12-31)
- G2-RootCA4.orig.cer: CN=Amazon Root CA 4,O=Amazon,C=US (Expiring: 2037-12-31)
- G2-ServerCA0A.cer: CN=Amazon,OU=Server CA 0A,O=Amazon,C=US (Expiring: 2025-10-19)
- G2-ServerCA0A.orig.cer: CN=Amazon,OU=Server CA 0A,O=Amazon,C=US (Expiring: 2040-10-21)
- R1-ServerCA1A.cer: CN=Amazon,OU=Server CA 1A,O=Amazon,C=US (Expiring: 2025-10-19)
- R1-ServerCA1A.orig.cer: CN=Amazon,OU=Server CA 1A,O=Amazon,C=US (Expiring: 2040-10-21)
- sca1b.crt: CN=Amazon,OU=Server CA 1B,O=Amazon,C=US (Expiring: 2025-10-19)
- R1-ServerCA1B.cer: CN=Amazon,OU=Server CA 1B,O=Amazon,C=US (Expiring: 2025-10-19)
- R1-ServerCA1B.orig.cer: CN=Amazon,OU=Server CA 1B,O=Amazon,C=US (Expiring: 2040-10-21)
- R2-ServerCA2A.cer: CN=Amazon,OU=Server CA 2A,O=Amazon,C=US (Expiring: 2025-10-19)
- R2-ServerCA2A.orig.cer: CN=Amazon,OU=Server CA 2A,O=Amazon,C=US (Expiring: 2040-10-21)
- R3-ServerCA3A.cer: CN=Amazon,OU=Server CA 3A,O=Amazon,C=US (Expiring: 2025-10-19)
- R3-ServerCA3A.orig.cer: CN=Amazon,OU=Server CA 3A,O=Amazon,C=US (Expiring: 2040-10-21)
- R3-ServerCA3B.cer: CN=Amazon,OU=Server CA 3B,O=Amazon,C=US (Expiring: 2028-07-16)
- R4-ServerCA4A.cer: CN=Amazon,OU=Server CA 4A,O=Amazon,C=US (Expiring: 2025-10-19)
- R4-ServerCA4A.orig.cer: CN=Amazon,OU=Server CA 4A,O=Amazon,C=US (Expiring: 2040-10-21)
- rootg2.cer: CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies, Inc.,L=Scottsdale,ST=Arizona,C=US (Expiring: 2034-06-28)
- SFC2CA-SFSRootCAG2.cer: CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies, Inc.,L=Scottsdale,ST=Arizona,C=US (Expiring: 2034-06-28)
- SFC2CA-SFSRootCAG2.v2.cer: CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies, Inc.,L=Scottsdale,ST=Arizona,C=US (Expiring: 2034-06-28)
- SFSRootCA-SFSRootCAG2.cer: CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies, Inc.,L=Scottsdale,ST=Arizona,C=US (Expiring: 2031-05-30)
- SFSRootCAG2.cer: CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies, Inc.,L=Scottsdale,ST=Arizona,C=US (Expiring: 2037-12-31)