crt.sh  Certificate Search

Criteria ID = '2149156988'

crt.sh ID 2149156988
Summary Precertificate
Certificate Transparency
Log entries for this certificate:
Timestamp Entry # Log Operator Log URL
2019-12-03  12:53:54 UTC 260857448 Google https://ct.googleapis.com/skydiver
2019-12-03  12:53:54 UTC 856218165 Google https://ct.googleapis.com/pilot
2019-12-03  12:53:54 UTC 77297801 DigiCert https://ct2.digicert-ct.com/log
2019-12-03  12:53:54 UTC 21407506 DigiCert https://ct1.digicert-ct.com/log
2019-12-03  12:53:54 UTC 163339057 Sectigo https://sabre.ct.comodo.com
2019-12-03  12:53:55 UTC 234330185 Sectigo https://mammoth.ct.comodo.com
2019-12-03  12:53:55 UTC 921000107 Google https://ct.googleapis.com/rocketeer
Revocation

Report a problem with
this certificate to the CA
Mechanism Provider Status Revocation Date Last Observed in CRL Last Checked (Error)
OCSP The CA Check ? n/a ?
CRL The CA Revoked (affiliationChanged)2019-12-04  12:34:23 UTC2022-03-04  11:27:47 UTC2024-03-21  14:54:13 UTC
CRLSet/Blocklist Google Not Revoked n/a n/a n/a
disallowedcert.stl Microsoft Not Revoked n/a n/a n/a
OneCRL Mozilla Not Revokedn/a n/a n/a
Certificate Fingerprints
SHA-256 E526D41A4B8D470610AD88BEE9240468D94AA72F299E02E1E57D4DBED82DAC2F   SHA-1 BBF9CA60654D21C3069E63FEC67942D762157FA9
| ASN.1 | Certificate | Graph |
| Hierarchy | pv |


Hide metadata

Run cablint

Run x509lint

Run zlint


Download Certificate: PEM
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            1a:5e:cf:3e:95:38:51:5f:00:00:00:00:50:fb:11:c9
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: (CA ID: 1586)
            commonName                = Entrust Certification Authority - L1K
            organizationalUnitName    = (c) 2012 Entrust, Inc. - for authorized use only
            organizationalUnitName    = See www.entrust.net/legal-terms
            organizationName          = Entrust, Inc.
            countryName               = US
        Validity (Expired)
            Not Before: Dec  3 12:23:53 2019 GMT
            Not After : Mar  2 12:53:52 2022 GMT
        Subject:
            commonName                = ft-ota.robeco.nl
            organizationName          = Robeco Institutional Asset Management B.V
            localityName              = Rotterdam
            stateOrProvinceName       = Zuid-Holland
            countryName               = NL
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:c0:fe:c3:44:b2:06:5c:0d:69:ac:3a:c4:e7:ec:
                    2b:aa:c0:bb:2a:f2:cf:11:78:99:a7:f8:d8:2f:53:
                    a2:73:e7:94:2c:5f:17:7a:32:25:61:19:ca:bd:5a:
                    60:58:20:57:76:e6:4d:1b:3a:68:1e:38:f4:ad:7b:
                    53:78:44:56:82:03:0e:48:3d:8a:3c:db:e1:8c:77:
                    05:de:15:eb:64:7b:54:67:09:39:87:5e:50:bd:dd:
                    de:06:1c:48:8b:b3:7a:0e:d9:12:f1:eb:8f:30:88:
                    53:f2:ac:ad:d3:79:d4:1e:c8:6b:6c:78:7f:13:51:
                    cd:53:5c:a2:97:8a:2a:ac:aa:11:e6:a9:f0:d6:b8:
                    df:4f:55:61:0c:d9:2c:b9:ab:0b:d6:2e:03:b8:82:
                    39:15:21:d6:db:c4:97:48:b7:70:07:32:77:83:a1:
                    4f:48:f3:4c:07:29:b7:11:01:d3:07:21:2b:22:53:
                    df:32:71:e6:28:50:a2:82:3a:a1:6e:17:9e:a9:a0:
                    0a:28:31:a2:1d:6c:5a:f1:1c:a3:1b:17:6c:35:07:
                    d9:5d:85:8b:3e:cc:90:a2:f2:92:a0:84:ac:35:94:
                    73:aa:30:c2:b0:43:be:8b:93:d8:18:a3:1a:8f:42:
                    2d:73:6f:57:e9:d6:0a:cb:85:5b:84:f7:df:d3:fe:
                    72:d3
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            CT Precertificate Poison: critical
                NULL
            X509v3 Subject Alternative Name: 
                DNS:ft-ota.robeco.nl
            X509v3 Key Usage: critical
                Digital Signature, Key Encipherment
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.entrust.net/level1k.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114028.10.1.5
                  CPS: http://www.entrust.net/rpa
                Policy: 2.23.140.1.2.2

            Authority Information Access: 
                OCSP - URI:http://ocsp.entrust.net
                CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer

            X509v3 Authority Key Identifier:
                keyid:82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF

            X509v3 Subject Key Identifier:
                F1:33:3C:75:D8:16:41:4B:7B:A9:01:9D:E7:EB:78:FE:36:FC:43:A0
            X509v3 Basic Constraints: 
                CA:FALSE
    Signature Algorithm: sha256WithRSAEncryption
         3f:53:67:03:3d:5d:c3:91:72:5c:88:d3:fa:c9:31:71:f6:17:
         8e:4e:72:86:52:a2:29:9d:3d:88:4f:1c:0f:fa:e5:b3:64:62:
         38:97:df:79:4b:1a:fc:a6:78:f5:66:00:1e:8e:a0:44:99:a3:
         5f:5d:13:ae:d3:db:58:c2:b1:fb:58:e0:30:dd:87:3e:e8:09:
         2f:fa:10:9d:e6:69:62:a2:ac:5e:46:4f:82:93:cd:69:14:24:
         f0:cd:70:f8:36:3c:03:79:a8:7f:7a:00:4e:dd:9d:e9:8b:5e:
         ef:32:7a:e1:48:64:d4:e8:47:73:71:f9:6a:47:90:3f:f4:b7:
         01:b8:c4:f3:20:a3:85:19:12:ad:ed:c6:0c:26:3f:5b:b0:53:
         22:55:0b:ab:4b:01:43:8b:7c:14:91:7b:44:46:e8:bf:f9:05:
         95:17:f0:4e:76:e0:20:61:52:de:04:5d:7a:84:8a:ee:20:6d:
         1a:e4:d3:a7:ad:1a:7c:d7:00:08:fc:26:e6:09:69:2a:76:bb:
         42:90:dc:03:d2:a0:c6:8a:65:1f:28:14:7d:15:f1:c7:bc:0c:
         de:45:ec:8b:33:f7:8b:02:55:09:a4:f9:d2:22:72:f5:7e:0c:
         bc:e7:a4:a0:8c:77:78:14:74:19:31:e9:22:a6:4f:46:1c:ac:
         17:4b:6c:1c