KICARSAOVCA.crt: CN=KICA RSA OV CA,O=KICA,C=KR (Intermediate Certificate, Expiring 2028-12-31) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://kica.crt.sectigo.com/KICARSAOVCA.crt" --output cert.crt

Download certificate through wget:

wget -q "http://kica.crt.sectigo.com/KICARSAOVCA.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            40:09:b7:97:9e:ad:0a:b2:1b:fd:2d:6f:2c:62:66:91
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services
        Validity
            Not Before: May 27 00:00:00 2020 GMT
            Not After : Dec 31 23:59:59 2028 GMT
        Subject: C=KR, O=KICA, CN=KICA RSA OV CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:d5:19:bb:95:cd:8d:d3:88:5c:21:8f:bb:c4:bf:
                    5e:55:e0:09:ca:ec:17:5f:df:3c:63:44:87:90:6b:
                    e2:4f:92:e0:ca:fe:7d:72:d2:be:b5:fb:88:ca:05:
                    82:13:82:c3:4c:95:89:c7:1d:38:66:bc:e1:d3:57:
                    cd:86:21:55:7e:2e:90:c3:43:5c:32:47:b0:ea:b4:
                    bb:35:4e:81:51:66:45:b9:7c:ba:f4:1c:9f:8c:48:
                    b6:6e:3a:7c:00:6a:6f:12:ba:57:f1:86:59:4f:d2:
                    04:87:c4:5b:de:ac:a4:b1:a2:80:d5:92:db:45:b1:
                    90:fd:4c:e3:24:a1:cd:26:50:58:b9:1c:ad:4a:be:
                    08:7e:05:21:f6:0e:40:6b:81:26:2a:c4:31:4e:49:
                    e0:17:5a:d4:28:a5:1e:29:6e:04:88:0d:30:7c:52:
                    db:82:75:95:a9:a0:dd:31:92:2a:2b:44:22:bb:fe:
                    30:f6:45:5f:43:1d:60:1a:f8:0f:5e:d3:f1:9b:ef:
                    76:c7:8c:aa:1b:c0:68:0e:89:eb:7b:a1:ef:30:41:
                    d8:5d:4e:69:dc:55:58:63:06:e0:ae:0e:ea:21:92:
                    5a:46:fc:70:1d:4e:a5:ac:22:cb:d8:42:8b:ac:04:
                    42:80:82:4a:60:77:7b:b3:1a:3d:08:ba:ea:c5:0a:
                    f9:67
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:A0:11:0A:23:3E:96:F1:07:EC:E2:AF:29:EF:82:A5:7F:D0:30:A4:B4

            X509v3 Subject Key Identifier: 
                00:59:CD:A0:BB:D2:92:F0:BE:EE:6F:52:8B:A9:CE:37:74:C1:20:48
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                Policy: 2.23.140.1.2.2

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.comodoca.com/AAACertificateServices.crl

            Authority Information Access: 
                OCSP - URI:http://ocsp.comodoca.com

    Signature Algorithm: sha256WithRSAEncryption
         9b:c0:29:aa:2b:e3:31:36:31:61:33:1f:f3:99:8f:b2:fc:97:
         77:06:ab:75:6d:1c:97:26:68:92:f9:cc:0e:ce:a7:92:43:de:
         8f:bd:74:90:1c:93:8b:c2:69:90:81:38:88:95:d9:d7:d2:5e:
         54:63:3e:8c:a4:a2:d1:96:c9:8d:9c:54:1d:42:43:fb:e6:c3:
         c7:7d:6d:f5:4e:13:52:a1:a0:bc:ff:60:6a:78:7b:80:1c:64:
         ec:d4:19:1e:ee:ff:1a:04:c0:05:04:1b:df:ca:90:2a:ef:bc:
         7d:31:d1:cd:19:cd:16:86:bf:e0:04:c0:79:53:d4:89:c8:4b:
         10:1e:b3:33:68:32:ba:9d:f5:14:7e:a0:99:c9:85:69:3e:d0:
         e3:eb:7e:31:76:b1:75:c4:5c:7c:8a:a6:0c:37:a4:9c:cf:8f:
         17:82:20:51:31:5b:ad:f2:63:ef:c2:6c:e1:a1:a2:b9:bf:06:
         4a:2a:75:df:b5:22:b9:5f:5a:fc:d8:70:94:c2:56:d4:b7:7d:
         e1:29:b8:94:f8:f7:62:f0:fe:77:c4:ce:6a:3c:cb:ee:a3:af:
         3a:88:63:fc:27:ed:4f:10:a7:9a:6b:61:02:16:8c:c3:9e:7c:
         ab:4a:55:70:14:11:fa:3f:8a:c3:0e:9c:18:53:4e:19:af:55:
         33:12:7f:63

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06