TrustAsiaOVTLSProCAG2.crt: CN=TrustAsia OV TLS Pro CA G2,O=TrustAsia Technologies, Inc.,C=CN

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://crl.digicert-cn.com/TrustAsiaOVTLSProCAG2.crt (DER format)
  • Serial number: 2611206015242259441957055534028274267
  • SHA-1 Fingerprint: e7ef3fc26f6d5129243e17a31533605cdc5f8938
  • SHA-1 Fingerprint: e7:ef:3f:c2:6f:6d:51:29:24:3e:17:a3:15:33:60:5c:dc:5f:89:38
  • SHA-256 Fingerprint: dbdfa91acc4db8ad83fcc7978e35d62f6e32e55108273c8ec998e3133580d664
  • SHA-256 Fingerprint: db:df:a9:1a:cc:4d:b8:ad:83:fc:c7:97:8e:35:d6:2f:6e:32:e5:51:08:27:3c:8e:c9:98:e3:13:35:80:d6:64
  • Signature hash algorithm: sha256
  • Subject: CN=TrustAsia OV TLS Pro CA G2,O=TrustAsia Technologies, Inc.,C=CN
  • Not valid before: 2019-06-20 12:28:27
  • Not valid after: 2029-06-20 12:28:27
  • Issuer:
    • Issuer name: CN=DigiCert Global Root CA,OU=www.digicert.com,O=DigiCert Inc,C=US
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://crl.digicert-cn.com/TrustAsiaOVTLSProCAG2.crt --output cert.crt

Download certificate through wget:

wget -q http://crl.digicert-cn.com/TrustAsiaOVTLSProCAG2.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            01:f6:e6:65:74:56:3e:20:95:4d:e5:4c:e1:37:ba:5b
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root CA
        Validity
            Not Before: Jun 20 12:28:27 2019 GMT
            Not After : Jun 20 12:28:27 2029 GMT
        Subject: C=CN, O=TrustAsia Technologies, Inc., CN=TrustAsia OV TLS Pro CA G2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:d8:b7:57:de:1e:7b:3a:3c:dd:e7:e8:fc:3b:79:
                    93:8c:e7:0a:23:3f:84:ab:2c:cb:42:77:5a:ce:1d:
                    dc:5f:21:33:8c:f9:3a:1b:48:63:c6:01:94:a7:e5:
                    d6:0a:a6:06:6a:8e:81:dd:c7:c3:20:a6:5d:bc:76:
                    45:eb:9d:de:74:fe:f8:65:69:f5:3e:5d:89:3e:80:
                    29:29:ca:4f:0a:53:06:38:a9:70:9e:86:46:c0:b2:
                    e1:da:ac:d8:33:b1:eb:30:48:e0:38:f6:2e:56:21:
                    4a:15:b5:a4:7f:15:cc:39:a6:b5:27:d4:10:5e:65:
                    39:35:7b:88:9f:0f:3e:20:70:b3:7e:d3:94:fc:3b:
                    05:bd:fa:96:59:f0:b5:71:a5:62:be:73:57:1a:d8:
                    23:75:9a:b5:82:c9:1d:7c:b0:3e:d8:b1:b3:81:20:
                    b4:6e:da:fc:ea:6c:0d:6b:46:aa:69:03:7f:7b:ac:
                    7b:5d:c1:b7:0a:01:a2:bb:c5:b5:47:42:3d:a3:c7:
                    1a:08:91:5f:7b:1e:0e:6d:8a:6a:e6:5c:1f:f7:a3:
                    21:3a:e5:fb:c8:c4:12:08:5d:d3:5a:37:90:f8:22:
                    32:e7:7f:c2:91:92:a9:bf:9d:1a:c4:72:5f:6d:21:
                    d3:ef:e3:80:53:4f:48:2b:ff:7a:a5:b7:57:53:6a:
                    a3:95
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                4F:85:FC:9B:59:D3:C6:53:97:8F:BC:1E:83:F3:1E:82:25:14:BC:79
            X509v3 Authority Key Identifier: 
                keyid:03:DE:50:35:56:D1:4C:BB:66:F0:A3:E2:1B:1B:C3:97:B2:3D:D1:55

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE
            Authority Information Access: 
                OCSP - URI:http://ocsp.dcocsp.cn

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.digicert-cn.com/DigiCertGlobalRootCA.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.digicert.com/CPS
                  User Notice:
                    Explicit Text: Any use of this Certificate constitutes acceptance of the Relying Party Agreement located at https://www.digicert.com/rpa-ua

    Signature Algorithm: sha256WithRSAEncryption
         b4:df:1a:d8:60:0a:f5:d0:6b:6f:48:da:82:9e:be:07:d0:c7:
         9c:bf:47:53:1b:77:fd:fd:7a:d6:4c:47:e3:ed:35:a1:4e:7f:
         9b:5f:91:36:ea:a4:d0:5b:5e:13:c8:80:67:d7:a6:55:ee:3c:
         f9:f4:b3:8e:0a:7a:c6:c3:de:dd:96:ec:af:4c:02:f6:98:18:
         6e:cc:63:21:53:69:9f:7d:c3:05:35:72:a9:30:d6:52:30:f5:
         46:42:44:99:40:5d:00:6c:b8:a9:74:1f:8f:c7:53:17:39:65:
         b2:28:70:1b:2a:98:b7:05:4e:96:e6:6c:30:7b:90:36:7b:bf:
         8d:5f:68:7e:98:81:51:40:5a:05:1d:19:aa:c1:2c:10:bd:70:
         d2:46:bb:11:f4:93:73:a5:ab:4b:ec:4f:bb:5c:8f:43:35:e8:
         09:36:ab:dc:10:1f:ab:c1:dc:cc:eb:80:10:61:f5:30:47:ce:
         7d:cf:5d:a6:9e:c9:19:5e:6c:a8:07:15:f1:4c:56:ce:38:75:
         31:39:df:9e:4a:5b:07:00:7c:fe:3f:48:23:7e:2e:37:89:bf:
         31:f3:41:f3:0c:a0:c7:c0:c0:0f:94:25:36:47:45:5e:9a:6f:
         fe:b6:07:c7:21:19:b0:74:67:b4:d4:ff:c8:17:27:aa:6e:ad:
         92:c8:53:44

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26