GeoTrustEVECCCA2018.crt: CN=GeoTrust EV ECC CA 2018,OU=www.digicert.com,O=DigiCert Inc,C=US

Page content

CA Certificate Basic Information

This certificate is root certificate used for the issuance of other certificates.

  • Certificate download URL: http://cacerts.geotrust.com/GeoTrustEVECCCA2018.crt (DER format)
  • Serial number: 12146820177872808418906395428694134869
  • SHA-1 Fingerprint: eead9bdca1d26419a56c1964a7e1a2760d079d93
  • SHA-1 Fingerprint: ee:ad:9b:dc:a1:d2:64:19:a5:6c:19:64:a7:e1:a2:76:0d:07:9d:93
  • SHA-256 Fingerprint: bf3558f877e89d27daa60da9671676570dfbeb215d84ac5a37122d6776b78f6e
  • SHA-256 Fingerprint: bf:35:58:f8:77:e8:9d:27:da:a6:0d:a9:67:16:76:57:0d:fb:eb:21:5d:84:ac:5a:37:12:2d:67:76:b7:8f:6e
  • Signature hash algorithm: sha256
  • Subject: CN=GeoTrust EV ECC CA 2018,OU=www.digicert.com,O=DigiCert Inc,C=US
  • Not valid before: 2017-11-06 12:23:04
  • Not valid after: 2027-11-06 12:23:04
  • Issuer:
    • Issuer name: CN=DigiCert High Assurance EV Root CA,OU=www.digicert.com,O=DigiCert Inc,C=US
    • Issuer certificate URL: None

Download certificate through curl:

curl -sSL http://cacerts.geotrust.com/GeoTrustEVECCCA2018.crt --output cert.crt

Download certificate through wget:

wget -q http://cacerts.geotrust.com/GeoTrustEVECCCA2018.crt --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            09:23:64:78:fa:28:4e:66:25:f9:1a:06:db:a2:10:55
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
        Validity
            Not Before: Nov  6 12:23:04 2017 GMT
            Not After : Nov  6 12:23:04 2027 GMT
        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=GeoTrust EV ECC CA 2018
        Subject Public Key Info:
            Public Key Algorithm: id-ecPublicKey
                Public-Key: (256 bit)
                pub: 
                    04:88:ff:da:f6:e5:ae:c9:10:50:ac:85:4d:1b:ff:
                    14:f9:46:39:17:2f:52:7b:60:58:f2:1b:86:74:60:
                    a6:db:34:23:f0:1f:0e:60:9e:17:cb:ce:e1:5c:58:
                    a7:c0:05:a1:70:ad:bb:d3:93:16:35:aa:5c:dd:75:
                    f0:0a:0c:43:87
                ASN1 OID: prime256v1
                NIST CURVE: P-256
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                C4:7D:27:E5:06:0B:D1:3D:9E:3E:92:D2:93:6E:C3:EC:B2:29:8D:3E
            X509v3 Authority Key Identifier: 
                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3

            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl

            X509v3 Certificate Policies: 
                Policy: X509v3 Any Policy
                  CPS: https://www.digicert.com/CPS

    Signature Algorithm: sha256WithRSAEncryption
         15:1f:b8:5d:fa:26:60:c3:21:89:88:5e:4b:40:f3:97:a8:6a:
         06:8b:54:15:5b:16:a2:1d:f7:3c:c0:cb:fe:59:2d:5e:55:29:
         f8:b4:9d:4b:04:83:a3:fe:f8:29:82:ad:c2:48:23:5e:8c:be:
         23:7f:e5:d2:4f:05:67:37:a0:44:aa:4c:77:1a:e7:bd:46:9c:
         de:c8:f7:5f:de:b8:29:0a:e9:bf:1b:fa:d8:18:b7:e9:9b:52:
         29:24:1b:10:0f:e3:02:b5:86:87:0e:16:aa:1a:78:ec:18:7c:
         84:ea:5d:a5:88:07:73:79:01:b8:b5:43:27:58:c7:f7:68:c0:
         e4:94:0d:84:a6:c8:52:30:b1:ab:97:ca:e3:3d:ba:e3:04:87:
         4e:51:c5:8b:33:73:39:78:e2:48:28:df:63:f5:b6:c1:91:66:
         e1:d0:6b:72:47:7a:af:c0:ac:d5:71:f9:0c:76:32:cd:05:cc:
         d7:ae:fa:3c:c9:5a:6f:8c:d2:8f:f7:c0:a6:d3:89:ce:8b:c4:
         bf:27:16:d9:7e:d2:e9:c1:2a:fb:43:6b:0b:58:94:59:d5:63:
         2d:50:2a:6c:b3:7b:22:10:fb:10:35:89:c8:c9:b3:ef:ab:40:
         a0:4c:ad:94:00:96:1e:26:4c:fd:8a:24:80:61:e1:4e:57:bf:
         d6:18:b5:0c

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----
MIID1zCCAr+gAwIBAgIQCSNkePooTmYl+RoG26IQVTANBgkqhkiG9w0BAQsFADBs
MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
d3cuZGlnaWNlcnQuY29tMSswKQYDVQQDEyJEaWdpQ2VydCBIaWdoIEFzc3VyYW5j
ZSBFViBSb290IENBMB4XDTE3MTEwNjEyMjMwNFoXDTI3MTEwNjEyMjMwNFowYTEL
MAkGA1UEBhMCVVMxFTATBgNVBAoTDERpZ2lDZXJ0IEluYzEZMBcGA1UECxMQd3d3
LmRpZ2ljZXJ0LmNvbTEgMB4GA1UEAxMXR2VvVHJ1c3QgRVYgRUNDIENBIDIwMTgw
WTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAASI/9r25a7JEFCshU0b/xT5RjkXL1J7
YFjyG4Z0YKbbNCPwHw5gnhfLzuFcWKfABaFwrbvTkxY1qlzddfAKDEOHo4IBSTCC
AUUwHQYDVR0OBBYEFMR9J+UGC9E9nj6S0pNuw+yyKY0+MB8GA1UdIwQYMBaAFLE+
w2kD+L9HAdSYJhoIAu9jZCvDMA4GA1UdDwEB/wQEAwIBhjAdBgNVHSUEFjAUBggr
BgEFBQcDAQYIKwYBBQUHAwIwEgYDVR0TAQH/BAgwBgEB/wIBADA0BggrBgEFBQcB
AQQoMCYwJAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTBLBgNV
HR8ERDBCMECgPqA8hjpodHRwOi8vY3JsMy5kaWdpY2VydC5jb20vRGlnaUNlcnRI
aWdoQXNzdXJhbmNlRVZSb290Q0EuY3JsMD0GA1UdIAQ2MDQwMgYEVR0gADAqMCgG
CCsGAQUFBwIBFhxodHRwczovL3d3dy5kaWdpY2VydC5jb20vQ1BTMA0GCSqGSIb3
DQEBCwUAA4IBAQAVH7hd+iZgwyGJiF5LQPOXqGoGi1QVWxaiHfc8wMv+WS1eVSn4
tJ1LBIOj/vgpgq3CSCNejL4jf+XSTwVnN6BEqkx3Gue9RpzeyPdf3rgpCum/G/rY
GLfpm1IpJBsQD+MCtYaHDhaqGnjsGHyE6l2liAdzeQG4tUMnWMf3aMDklA2EpshS
MLGrl8rjPbrjBIdOUcWLM3M5eOJIKN9j9bbBkWbh0GtyR3qvwKzVcfkMdjLNBczX
rvo8yVpvjNKP98Cm04nOi8S/JxbZftLpwSr7Q2sLWJRZ1WMtUCpss3siEPsQNYnI
ybPvq0CgTK2UAJYeJkz9iiSAYeFOV7/WGLUM
-----END CERTIFICATE-----

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: a651bdd 2022-03-26