crt.sh  Certificate Search

Criteria ID = '2523646134'

crt.sh ID 2523646134
Summary Precertificate
Certificate Transparency
Log entries for this certificate:
Timestamp Entry # Log Operator Log URL
2020-03-02  12:58:07 UTC 978785385 Google https://ct.googleapis.com/pilot
2020-03-02  12:58:07 UTC 286392334 Google https://ct.googleapis.com/skydiver
2020-03-02  12:58:07 UTC 84438950 DigiCert https://ct2.digicert-ct.com/log
2020-03-02  12:58:07 UTC 562562 Let's Encrypt https://oak.ct.letsencrypt.org/2022
2020-03-02  12:58:07 UTC 22624376 DigiCert https://ct1.digicert-ct.com/log
2020-03-02  12:58:07 UTC 166170319 Sectigo https://sabre.ct.comodo.com
2020-03-02  12:58:07 UTC 1185787 Cloudflare https://ct.cloudflare.com/logs/nimbus2022
Revocation

Report a problem with
this certificate to the CA
Mechanism Provider Status Revocation Date Last Observed in CRL Last Checked (Error)
OCSP The CA Check ? n/a ?
CRL The CA Not Revoked (Expired)n/an/a2023-07-07  17:17:07 UTC
CRLSet/Blocklist Google Not Revoked n/a n/a n/a
disallowedcert.stl Microsoft Not Revoked n/a n/a n/a
OneCRL Mozilla Not Revokedn/a n/a n/a
Certificate Fingerprints
SHA-256 86EACA2A39BC6DB670E763E6CFA8FD523BF347C0B0263BB6460DAD0605D50537   SHA-1 5C6D3D4990F9A42A7C31D056469A0B3916C16A1C
| ASN.1 | Certificate | Graph |
| Hierarchy | pv |


Hide metadata

Run cablint

Run x509lint

Run zlint


Download Certificate: PEM
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            68:3e:ac:63:17:0f:6b:06:00:00:00:00:50:ff:ca:da
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: (CA ID: 1586)
            commonName                = Entrust Certification Authority - L1K
            organizationalUnitName    = (c) 2012 Entrust, Inc. - for authorized use only
            organizationalUnitName    = See www.entrust.net/legal-terms
            organizationName          = Entrust, Inc.
            countryName               = US
        Validity (Expired)
            Not Before: Mar  2 12:28:05 2020 GMT
            Not After : Mar  2 12:58:04 2022 GMT
        Subject:
            commonName                = understandingsi.com
            organizationName          = Robeco Institutional Asset Management B.V
            localityName              = Rotterdam
            stateOrProvinceName       = Zuid-Holland
            countryName               = NL
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:97:4b:1d:55:db:00:cc:2b:46:f3:30:9c:e5:9d:
                    10:ac:3f:1e:7d:f1:2d:8e:3f:58:b4:78:03:43:e5:
                    16:52:90:a4:e8:46:9a:23:83:1e:a2:e1:06:c9:fc:
                    c3:28:f0:c6:4c:26:71:53:18:d7:2d:77:38:26:89:
                    e4:58:00:5e:26:c8:c0:30:01:96:0e:f2:76:50:1b:
                    32:4a:8d:46:bb:29:3b:e4:dc:23:ef:0a:f1:a3:34:
                    fa:31:82:b4:4c:03:7c:de:b0:1e:80:a8:c7:e1:72:
                    ac:81:39:c2:cc:10:c7:16:00:b5:30:ce:bc:e8:e8:
                    34:1d:13:83:f4:24:79:6c:e7:33:18:4b:ef:34:a6:
                    c0:bf:aa:1d:65:ab:c7:6f:b6:6d:79:bd:e1:94:68:
                    4c:46:8d:c8:b0:9b:da:7a:69:a9:e0:6a:d0:9c:a5:
                    72:6a:ed:50:5a:89:28:d6:74:05:e4:ae:06:df:23:
                    15:a6:2a:ce:05:31:23:2a:65:da:62:7e:69:8a:07:
                    2a:a1:bb:ae:50:00:0a:1c:3e:a7:10:58:4e:f1:3e:
                    31:e4:6f:83:f0:49:9e:45:32:87:2d:92:4f:77:2a:
                    8a:ac:11:0e:c4:2f:cf:ee:c7:29:05:f9:0d:26:3f:
                    a0:35:cb:3c:12:77:e9:6d:17:26:ae:86:01:b9:2c:
                    8f:f5
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            CT Precertificate Poison: critical
                NULL
            X509v3 Subject Alternative Name: 
                DNS:understandingsi.com
                DNS:www.understandingsi.com
            X509v3 Key Usage: critical
                Digital Signature, Key Encipherment
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.entrust.net/level1k.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114028.10.1.5
                  CPS: http://www.entrust.net/rpa
                Policy: 2.23.140.1.2.2

            Authority Information Access: 
                OCSP - URI:http://ocsp.entrust.net
                CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer

            X509v3 Authority Key Identifier:
                keyid:82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF

            X509v3 Subject Key Identifier:
                BD:1C:E5:21:3E:82:50:16:55:31:14:06:19:47:E9:DD:2C:14:20:80
            X509v3 Basic Constraints: 
                CA:FALSE
    Signature Algorithm: sha256WithRSAEncryption
         26:32:e6:9f:a1:44:0a:b4:e8:8a:74:01:4f:56:3a:66:01:24:
         5f:ce:e4:9f:fd:84:90:3c:01:3e:bf:d5:e5:89:fd:54:ad:3a:
         59:6b:7b:de:b5:53:b2:88:ea:f8:fb:69:40:f4:cb:d6:29:6b:
         c4:1d:f0:69:b8:de:21:b7:10:18:af:a5:95:3c:9f:7b:69:b4:
         78:fc:62:56:48:15:c4:fb:4c:4f:38:c9:e8:eb:a2:73:33:ea:
         05:a3:bd:35:7b:bf:85:52:85:43:3d:b4:b6:19:db:d1:73:59:
         0d:bb:f1:ef:8d:3c:f1:51:46:62:2a:24:68:d2:fd:a8:da:c2:
         e1:b8:ad:3c:fd:79:65:48:78:75:77:49:09:b0:d7:88:bf:9e:
         df:74:7f:e6:af:fe:b2:87:af:ae:d2:89:36:57:c1:d4:ff:03:
         16:e1:51:47:f2:fb:f6:a2:f2:ba:23:3b:c4:68:e3:27:37:66:
         13:5d:7b:3b:b5:7d:04:f3:be:d4:2e:e4:0c:b0:b9:3d:eb:86:
         8d:9a:fc:6c:d4:8b:a6:f1:61:74:ef:45:b0:10:25:6d:95:76:
         84:f4:73:50:37:7f:78:b7:a0:e0:3f:73:61:6e:d4:60:5b:3c:
         c3:77:2e:c8:e6:0e:9d:56:86:18:22:1e:7d:1f:69:81:c1:8d:
         22:45:c1:3c