evroot.cer: CN=CFCA EV ROOT,O=China Financial Certification Authority,C=CN (Root Certificate, Expiring 2029-12-31) detail info and audit record
Page content
CA Certificate Information and Audit Record
This certificate is root certificate used for the issuance of other certificates.
- Certificate Download URL: http://gtc.cfca.com.cn/evroot/evroot.cer (in PEM format )
- Serial Number : 407555286
- SHA-1 Fingerprint : e2b8294b5584ab6b58c290466cac3fb8398f8483
- SHA-1 Fingerprint : e2:b8:29:4b:55:84:ab:6b:58:c2:90:46:6c:ac:3f:b8:39:8f:84:83
- SHA-256 Fingerprint : 5cc3d78e4e1d5e45547a04e6873e64f90cf9536d1ccc2ef800f355c4c5fd70fd
- SHA-256 Fingerprint : 5c:c3:d7:8e:4e:1d:5e:45:54:7a:04:e6:87:3e:64:f9:0c:f9:53:6d:1c:cc:2e:f8:00:f3:55:c4:c5:fd:70:fd
- Signature Hash Algorithm : sha256
- Subject
: CN=CFCA EV ROOT,O=China Financial Certification Authority,C=CN
- Country Name: CN (China)
- Organization: China Financial Certification Authority
- Common Name: CFCA EV ROOT
- Not Valid Before: 2012-08-08 03:07:01
- Not Valid After: 2029-12-31 03:07:01
- Issuer (Parent Certificate):
- Issuer Name: CN=CFCA EV ROOT,O=China Financial Certification Authority,C=CN
- Issuer Certificate URL: NA
- Audit Record:
- Revocation Status: Root Certificate
- Certificate Policy (CP) URL: https://www.cfca.com.cn/upload/CFCACertificatePolicy20181119.pdf
- Certificate Practice Statement (CPS) URL: https://www.cfca.com.cn/upload/CPSOCFCAGTSV4-3E.pdf https://www.cfca.com.cn/upload/CPSOCFCAGTSV4-3E.pdf
- Auditor: Anthony Kam & Associates Ltd.
- Standard Audit URL: https://www.cpacanada.ca/generichandlers/CPACHandler.ashx?attachmentid=34ed32d4-5088-485b-af4e-52a6354528b1
- Standard Audit Period Start Date: 2021.08.01
- Standard Audit Period End Date: 2022.07.31
- Standard Audit Statement Date: 2022.10.24
- Standard Audit Type: WebTrust
- Full CRL Issued By This CA: Unknown
Download certificate through curl
:
curl -sSL "http://gtc.cfca.com.cn/evroot/evroot.cer" --output cert.crt
Download certificate through wget
:
wget -q "http://gtc.cfca.com.cn/evroot/evroot.cer" --output-document=cert.crt
CA Certificate Detail Information
Use openssl x509
to decode DER certificate to get detail information:
openssl x509 -in cert.crt -inform der -text -noout
Use openssl x509
to decode PEM certificate to get detail information:
openssl x509 -in cert.crt -inform pem -text -noout
Decoded detail certificate information:
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 407555286 (0x184accd6)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=CN, O=China Financial Certification Authority, CN=CFCA EV ROOT
Validity
Not Before: Aug 8 03:07:01 2012 GMT
Not After : Dec 31 03:07:01 2029 GMT
Subject: C=CN, O=China Financial Certification Authority, CN=CFCA EV ROOT
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (4096 bit)
Modulus:
00:d7:5d:6b:cd:10:3f:1f:05:59:d5:05:4d:37:b1:
0e:ec:98:2b:8e:15:1d:fa:93:4b:17:82:21:71:10:
52:d7:51:64:70:16:c2:55:69:4d:8e:15:6d:9f:bf:
0c:1b:c2:e0:a3:67:d6:0c:ac:cf:22:ae:af:77:54:
2a:4b:4c:8a:53:52:7a:c3:ee:2e:de:b3:71:25:c1:
e9:5d:3d:ee:a1:2f:a3:f7:2a:3c:c9:23:1d:6a:ab:
1d:a1:a7:f1:f3:ec:a0:d5:44:cf:15:cf:72:2f:1d:
63:97:e8:99:f9:fd:93:a4:54:80:4c:52:d4:52:ab:
2e:49:df:90:cd:b8:5f:be:3f:de:a1:ca:4d:20:d4:
25:e8:84:29:53:b7:b1:88:1f:ff:fa:da:90:9f:0a:
a9:2d:41:3f:b1:f1:18:29:ee:16:59:2c:34:49:1a:
a8:06:d7:a8:88:d2:03:72:7a:32:e2:ea:68:4d:6e:
2c:96:65:7b:ca:59:fa:f2:e2:dd:ee:30:2c:fb:cc:
46:ac:c4:63:eb:6f:7f:36:2b:34:73:12:94:7f:df:
cc:26:9e:f1:72:5d:50:65:59:8f:69:b3:87:5e:32:
6f:c3:18:8a:b5:95:8f:b0:7a:37:de:5a:45:3b:c7:
36:e1:ef:67:d1:39:d3:97:5b:73:62:19:48:2d:87:
1c:06:fb:74:98:20:49:73:f0:05:d2:1b:b1:a0:a3:
b7:1b:70:d3:88:69:b9:5a:d6:38:f4:62:dc:25:8b:
78:bf:f8:e8:7e:b8:5c:c9:95:4f:5f:a7:2d:b9:20:
6b:cf:6b:dd:f5:0d:f4:82:b7:f4:b2:66:2e:10:28:
f6:97:5a:7b:96:16:8f:01:19:2d:6c:6e:7f:39:58:
06:64:83:01:83:83:c3:4d:92:dd:32:c6:87:a4:37:
e9:16:ce:aa:2d:68:af:0a:81:65:3a:70:c1:9b:ad:
4d:6d:54:ca:2a:2d:4b:85:1b:b3:80:e6:70:45:0d:
6b:5e:35:f0:7f:3b:b8:9c:e4:04:70:89:12:25:93:
da:0a:99:22:60:6a:63:60:4e:76:06:98:4e:bd:83:
ad:1d:58:8a:25:85:d2:c7:65:1e:2d:8e:c6:df:b6:
c6:e1:7f:8a:04:21:15:29:74:f0:3e:9c:90:9d:0c:
2e:f1:8a:3e:5a:aa:0c:09:1e:c7:d5:3c:a3:ed:97:
c3:1e:34:fa:38:f9:08:0e:e3:c0:5d:2b:83:d1:56:
6a:c9:b6:a8:54:53:2e:78:32:67:3d:82:7f:74:d0:
fb:e1:b6:05:60:b9:70:db:8e:0b:f9:13:58:6f:71:
60:10:52:10:b9:c1:41:09:ef:72:1f:67:31:78:ff:
96:05:8d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
keyid:E3:FE:2D:FD:28:D0:0B:B5:BA:B6:A2:C4:BF:06:AA:05:8C:93:FB:2F
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Subject Key Identifier:
E3:FE:2D:FD:28:D0:0B:B5:BA:B6:A2:C4:BF:06:AA:05:8C:93:FB:2F
Signature Algorithm: sha256WithRSAEncryption
25:c6:ba:6b:eb:87:cb:de:82:39:96:3d:f0:44:a7:6b:84:73:
03:de:9d:2b:4f:ba:20:7f:bc:78:b2:cf:97:b0:1b:9c:f3:d7:
79:2e:f5:48:b6:d2:fb:17:88:e6:d3:7a:3f:ed:53:13:d0:e2:
2f:6a:79:cb:00:23:28:e6:1e:37:57:35:89:84:c2:76:4f:34:
36:ad:67:c3:ce:41:06:88:c5:f7:ee:d8:1a:b8:d6:0b:7f:50:
ff:93:aa:17:4b:8c:ec:ed:52:60:b2:a4:06:ea:4e:eb:f4:6b:
19:fd:eb:f5:1a:e0:25:2a:9a:dc:c7:41:36:f7:c8:74:05:84:
39:95:39:d6:0b:3b:a4:27:fa:08:d8:5c:1e:f8:04:60:52:11:
28:28:03:ff:ef:53:66:00:a5:4a:34:16:66:7c:fd:09:a4:ae:
9e:67:1a:6f:41:0b:6b:06:13:9b:8f:86:71:05:b4:2f:8d:89:
66:33:29:76:54:9a:11:f8:27:fa:b2:3f:91:e0:ce:0d:1b:f3:
30:1a:ad:bf:22:5d:1b:d3:bf:25:05:4d:e1:92:1a:7f:99:9f:
3c:44:93:ca:d4:40:49:6c:80:87:d7:04:3a:c3:32:52:35:0e:
56:f8:a5:dd:7d:c4:8b:0d:11:1f:53:cb:1e:b2:17:b6:68:77:
5a:e0:d4:cb:c8:07:ae:f5:3a:2e:8e:37:b7:d0:01:4b:43:29:
77:8c:39:97:8f:82:5a:f8:51:e5:89:a0:18:e7:68:7f:5d:0a:
2e:fb:a3:47:0e:3d:a6:23:7a:c6:01:c7:8f:c8:5e:bf:6d:80:
56:be:8a:24:ba:33:ea:9f:e1:32:11:9e:f1:d2:4f:80:f6:1b:
40:af:38:9e:11:50:79:73:12:12:cd:e6:6c:9d:2c:88:72:3c:
30:81:06:91:22:ea:59:ad:da:19:2e:22:c2:8d:b9:8c:87:e0:
66:bc:73:23:5f:21:64:63:80:48:f5:a0:3c:18:3d:94:c8:48:
41:1d:40:ba:5e:fe:fe:56:39:a1:c8:cf:5e:9e:19:64:46:10:
da:17:91:b7:05:80:ac:8b:99:92:7d:e7:a2:d8:07:0b:36:27:
e7:48:79:60:8a:c3:d7:13:5c:f8:72:40:df:4a:cb:cf:99:00:
0a:00:0b:11:95:da:56:45:03:88:0a:9f:67:d0:d5:79:b1:a8:
8d:40:6d:0d:c2:7a:40:fa:f3:5f:64:47:92:cb:53:b9:bb:59:
ce:4f:fd:d0:15:53:01:d8:df:eb:d9:e6:76:ef:d0:23:bb:3b:
a9:79:b3:d5:02:29:cd:89:a3:96:0f:4a:35:e7:4e:42:c0:75:
cd:07:cf:e6:2c:eb:7b:2e
CA Certificate in PEM Format
Use openssl x509
to convert certificate from DER
format to PEM
format:
openssl x509 -in cert.crt -inform der
Converted PEM
format certificate:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Also see Top 1 Millions Domains CA Certificate List