D-TRUST_CA_2-1_2020.crt: 2.5.4.97=NTRDE-HRB74346,CN=D-TRUST CA 2-1 2020,O=D-Trust GmbH,C=DE (Intermediate Certificate, Expiring 2032-02-01) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "https://www.d-trust.net/cgi-bin/D-TRUST_CA_2-1_2020.crt" --output cert.crt

Download certificate through wget:

wget -q "https://www.d-trust.net/cgi-bin/D-TRUST_CA_2-1_2020.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            4c:b2:c9:f3:eb:85:8e:ae:12:83:97:af:a4:d0:e3:da
    Signature Algorithm: ecdsa-with-SHA384
        Issuer: C=DE, O=D-Trust GmbH, CN=D-TRUST Root CA 2 2017/2.5.4.97=NTRDE-HRB74346
        Validity
            Not Before: Jun 17 08:25:32 2020 GMT
            Not After : Feb  1 08:38:21 2032 GMT
        Subject: C=DE, O=D-Trust GmbH, CN=D-TRUST CA 2-1 2020/2.5.4.97=NTRDE-HRB74346
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (384 bit)
                pub: 
                    04:93:86:8c:a8:b2:3c:ce:7a:d3:8e:5c:7e:3f:4b:
                    73:e8:d7:66:c3:9a:10:d8:dc:7d:3f:d3:94:8e:77:
                    8f:30:ea:74:49:2c:4c:50:b0:3b:4f:bd:4a:60:92:
                    c2:37:55:87:09:2e:57:86:e4:a0:b9:13:02:c6:84:
                    89:52:85:7c:8e:7f:ca:b7:07:23:da:aa:e8:2f:da:
                    a8:02:e2:69:b4:01:e4:8b:a7:69:0d:dd:d9:07:8e:
                    e4:b7:b4:cc:69:a2:e0
                ASN1 OID: secp384r1
                NIST CURVE: P-384
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:20:3C:E0:F3:6F:27:91:86:65:61:74:77:D6:81:09:B7:65:7C:AF:1F

            Authority Information Access: 
                OCSP - URI:http://root-ca-2-2017.ocsp.d-trust.net
                CA Issuers - URI:http://www.d-trust.net/cgi-bin/D-TRUST_Root_CA_2_2017.crt

            X509v3 Certificate Policies: 
                Policy: 0.4.0.194112.1.2
                Policy: 1.3.6.1.4.1.4788.2.150.1
                  CPS: http://www.d-trust.net/internet/files/D-TRUST_Root_PKI_CPS.pdf

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.d-trust.net/crl/d-trust_root_ca_2_2017.crl

                Full Name:
                  URI:ldap://directory.d-trust.net/CN=D-TRUST%20Root%20CA%202%202017,O=D-Trust%20GmbH,C=DE?certificaterevocationlist

            X509v3 Subject Key Identifier: 
                CA:B1:69:1C:A4:EA:78:F9:A4:DD:C2:CC:9E:41:39:95:43:0F:F2:99
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
    Signature Algorithm: ecdsa-with-SHA384
         30:65:02:30:49:48:77:cc:81:03:46:35:ee:8a:f0:2e:f8:0f:
         ea:8c:5a:69:75:38:98:1f:c4:ec:17:d0:f2:99:db:2b:5d:3b:
         49:8d:83:88:89:b9:4c:14:e0:be:e2:04:ec:db:19:50:02:31:
         00:e5:03:f5:08:bc:59:ec:b7:b7:5b:5a:65:ef:6b:fa:12:27:
         ea:38:35:e1:63:2c:ed:ac:db:df:7a:be:a6:f9:cb:86:d3:80:
         36:1c:10:79:6d:d1:7a:c0:83:00:68:67:0d

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06