rnpicpeduovsslca2019.crt: CN=RNP ICPEdu OV SSL CA 2019,O=Rede Nacional de Ensino e Pesquisa - RNP,C=BR (Intermediate Certificate, Expiring 2026-05-15) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://secure.globalsign.com/cacert/rnpicpeduovsslca2019.crt" --output cert.crt

Download certificate through wget:

wget -q "http://secure.globalsign.com/cacert/rnpicpeduovsslca2019.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            77:bd:0d:ad:b3:e2:c0:8d:af:4b:08:63:1a:e8:9c:e0
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=BE, O=GlobalSign nv-sa, CN=Trusted Root TLS CA SHA256 G3
        Validity
            Not Before: Jul  5 00:00:00 2020 GMT
            Not After : May 15 00:00:00 2026 GMT
        Subject: C=BR, O=Rede Nacional de Ensino e Pesquisa - RNP, CN=RNP ICPEdu OV SSL CA 2019
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:a5:f2:d1:a5:52:14:c1:b8:01:78:12:2f:9a:03:
                    9d:43:ea:96:ce:f3:3d:ad:45:ba:29:38:2a:a4:df:
                    49:36:b3:d5:0e:ee:70:e2:e5:fb:e9:a0:cb:e6:b4:
                    42:c3:42:82:e9:d8:dd:f5:d3:c1:69:8a:31:90:01:
                    8f:8f:8a:e4:e0:b3:c8:d2:2e:68:06:5d:1b:b5:4d:
                    e3:e7:ae:21:6a:c7:4b:a3:03:c9:ca:51:df:54:7f:
                    a3:3e:d1:95:ed:1b:c6:fe:e6:bc:45:01:5e:83:ff:
                    50:88:9c:62:e3:37:8d:ea:c8:54:28:3a:32:c7:ef:
                    03:d6:5f:f7:ac:16:f8:0c:b9:c0:49:a6:1b:08:66:
                    34:b4:93:50:bc:0a:14:b6:33:af:13:68:8a:b0:1f:
                    81:21:6a:3a:f7:92:13:8b:63:ae:91:6e:22:e6:58:
                    8f:f1:39:f3:bb:69:4f:5e:2c:3e:49:4a:f2:2b:90:
                    99:b7:de:df:62:5d:b1:9f:64:50:a8:00:3a:34:e7:
                    68:51:f7:4b:5c:5a:28:06:2c:1c:79:4e:02:57:28:
                    9d:dd:93:0e:77:93:01:d5:35:07:a7:ef:7c:a1:dc:
                    f2:55:9c:18:bd:65:bb:36:a0:5f:2f:28:b6:83:13:
                    8c:b2:c0:20:cb:ac:31:e1:8b:29:c8:4f:c1:4b:c7:
                    ca:b7
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                AB:30:C7:07:28:4B:CB:7A:8E:5B:FE:61:69:F7:D4:7A:B2:85:9B:48
            X509v3 Authority Key Identifier: 
                keyid:DE:4F:D7:DD:27:AE:D5:7F:58:81:E1:2C:47:AC:23:B7:C6:7B:57:EF

            Authority Information Access: 
                OCSP - URI:http://ocsp.globalsign.com/trustroottlssha2g3
                CA Issuers - URI:http://secure.globalsign.com/cacert/trustroottlssha2g3.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.globalsign.com/trustroottlssha2g3.crl

            X509v3 Certificate Policies: 
                Policy: 1.3.6.1.4.1.4146.1.20
                  CPS: https://www.globalsign.com/repository/
                Policy: 2.23.140.1.2.2

    Signature Algorithm: sha256WithRSAEncryption
         a1:ff:fa:28:84:2c:43:0b:1c:cd:46:43:26:b4:10:0f:54:69:
         24:c4:1d:7e:1d:90:a9:64:3b:49:77:51:d7:3c:4a:89:28:0c:
         42:fb:c9:6a:7d:8b:87:17:c7:5b:cb:f8:81:58:8c:0d:06:b2:
         8b:1c:53:17:a3:fa:ae:b8:f9:f0:d5:3c:94:11:d5:59:2a:11:
         b5:60:af:9e:50:e2:b7:5f:74:f3:1c:98:bd:e7:26:c4:0b:81:
         4c:98:69:16:50:f2:73:21:81:9f:8d:43:b2:0e:dc:01:42:ae:
         61:04:b2:48:44:9a:3a:6d:74:3f:56:87:28:0d:4b:c8:bf:79:
         15:43:5b:0b:2c:7b:3c:00:9f:31:d6:ef:22:a1:af:ce:ca:47:
         fd:65:78:37:c8:5e:f7:b6:ed:66:a0:6c:3c:28:e5:20:d3:21:
         b4:d5:75:7e:33:01:f3:4c:15:6c:64:41:b4:30:84:51:18:3b:
         54:e0:02:91:91:9e:25:e8:ce:3b:f1:d6:b0:e3:5d:5b:be:a0:
         e1:88:48:12:c9:e6:41:72:51:48:d0:fa:99:35:a9:69:0b:f6:
         7d:15:65:2b:86:74:c7:85:ed:a3:1c:bd:88:78:9f:c7:8d:50:
         f3:7e:2b:e5:71:2b:92:4f:1c:39:4e:87:e2:64:50:cb:58:4b:
         af:ed:1b:a2

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06