Self-issued Certificates |
Self-issued certificates are CA certificates in which the issuer and subject are the same entity. Self-issued certificates are generated to support changes in policy or operations. |
|
|
Abstract |
|
File
Format |
ePKI Root CA Self-issued Certificate¡]old with new¡^ |
|
- This certificate is 1st generation of ePKI Root CA public key with other subject information signed by 2nd generation of ePKI Root CA private key.
- It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
- It was signed on October 18, 2019 and add 3 token assurance levels and removing CA/Browser Forum EV SSL CP OID in comparison with the self-issued certificate signed on October 4, 2016.
- RSA 4096 with SHA-256.
- Serial #: 18 90 74 02 b0 83 ec 8b ce 19 94 de af c0 a1 d7
- Thumbprint (SHA-1): A4 24 47 3F 72 32 81 AF E5 EC AD 76 6E AB 3A C7 E4 23 54 DA
- Thumbprint (SHA-256): B9 C9 74 DE 13 9F 63 08 D7 4C CC 42 3C 3B C0 BD ED 5E 7A B4 AD 73 8B 30 4B 50 D4 29 C4 2C 3D 66
- Valid Until: December 20, 2034.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
ePKI Root CA Self-issued Certificate¡]new with old¡^ |
|
- This certificate is 2nd generation of ePKI Root CA public key with other subject information signed by 1st generation of ePKI Root CA private key.
- It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
- It was signed on October 18, 2019 and add 3 token assurance levels and removing CA/Browser Forum EV SSL CP OID in comparison with the self-issued certificate signed on October 4, 2016.
- RSA 4096 with SHA-256
- Serial #: 00 af cd 8d 64 2c 62 d6 45 06 7d c8 57 fd a8 f1 5d
- Thumbprint (SHA-1): 81 d2 e3 bf 7c d3 97 4c 30 76 a5 00 d7 aa ed b3 1b e3 75 22
- Thumbprint (SHA-256): 18 46 7C 4E 64 D5 86 C8 44 A4 44 66 DE 5B A7 A6 D5 96 9C 7A 92 85 9A 51 1C 5F DA D7 5B 03 CD CE
- Valid Until: December 20, 2034.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
ePKI Root CA Self-issued Certificate¡]old with new¡^ |
|
- This certificate is 1st generation of ePKI Root CA public key with other subject information signed by 2nd generation of ePKI Root CA private key.
- It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
- It was signed on October 4, 2016 and add 1.3.6.1.4.1.23459.100.0.9 PDF Signing CP OID in comparison with the self-issued certificate signed on November 17, 2015.
- RSA 4096 with SHA-256.
- Serial #: 00 ca e1 f7 3e fc ac 5b b1 9c 88 c1 c7 2f 6f 7b 2f
- Thumbprint (SHA-1): dd fe 11 1b 8a 9d c4 76 10 81 19 2f 40 e7 c9 da 1c d3 d4 50
- Valid Until: December 20, 2034.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
ePKI Root CA Self-issued Certificate¡]new with old¡^ |
|
- This certificate is 2nd generation of ePKI Root CA public key with other subject information signed by 1st generation of ePKI Root CA private key.
- It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
- It was signed on October 4, 2016 and add 1.3.6.1.4.1.23459.100.0.9 PDF Signing CP OID in comparison with the self-issued certificate signed on November 17, 2015.
- RSA 4096 with SHA-256
- Serial #: 3b ee e0 91 8e 88 86 ad 46 0f e8 ae 91 0c 9c ba
- Thumbprint (SHA-1): c3 ca f8 57 0c b1 2d d0 fc 97 37 bf cd 0f 08 7c 9b e6 d2 81
- Valid Until: December 20, 2034.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
Subordinate CA Certificates |
|
|
Abstract |
|
File
Format |
2nd Generation PublicCA CA Certificate |
|
- PublicCA (Public Certification Authority)'s CA certificate.
- RSA 2048 with SHA-256,
- Issued by ePKI Root Certification Authority - G2 on October 4, 2016
- Updated 1.3.6.1.4.1.23459.100.0.9 CP OID in Certificate Policy extension
- Serial #: 00 ce 60 97 fd 33 e1 2d a0 75 ce dc 96 5d c0 c4 a3
- Thumbprint(SHA-1): dd b1 3c 36 50 3d ba d9 4a b0 b2 e3 89 e3 bb f4 91 31 3e 5f
- Valid Period: December 11, 2014 to December 11, 2034.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
Government TLS Certification Authority - G1 |
|
- Government TLS Certification Authority 's CA certificate.
- RSA 4096 with SHA-256,
- Serial #: 00 99 6d 5f e9 ad e1 6c dc 8e cd bf ed b1 4a 32 95
- Thumbprint(SHA-1): b2 d1 51 a7 68 d3 0c 3b 99 d8 6b 8b 25 81 56 08 c2 8a b2 cb
- Valid Period: July 19, 2019 to August 19, 2031.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
ePKI Timestamping CA - G1 |
|
- ePKI Timestamping CA’s CA certificate (RSA 4096 with SHA-256
- Issued by ePKI Root Certification Authority - G2.
- Serial #:00 b2 14 37 d0 d6 7c 63 87 48 44 f8 46 1c 5f 4b 54
- Thumbprint (SHA-1): 29 7e 0d 74 47 74 35 6e c8 09 04 d6 57 7d 14 c5 40 e4 9c be
- Thumbprint (SHA-256): DA 31 29 3D 65 97 81 C6 9E 00 85 C7 32 A2 81 1D B5 0E 5C C5 76 90 91 49 B8 0A 98 A9 B0 F9 3F D9
- Valid Period: October 18, 2019 to December 30, 2037.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
CHT SMIME CA - G1 |
|
- CHT SMIME CA’s CA certificate (RSA 4096 with SHA-256
- Issued by ePKI Root Certification Authority - G2.
- Serial #:72 39 e9 d9 01 bc d1 96 e3 65 8d 92 77 db 34 70
- Thumbprint (SHA-1): 03 E1 D0 13 CA 25 6F 3D 1F D0 F5 12 F6 B1 3F B1 F4 F7 D3 90
- Thumbprint (SHA-256): 5E B6 CC 7D 03 C3 49 B2 DC C5 BD D7 B1 01 41 FC 7A B8 AE 18 44 94 4F 69 50 BE 74 1D 3D 73 1C 95
- Valid Period: January 7, 2021 to December 30, 2037.
|
|
CER
(DER encoded X.509)
CRT
(Base 64 encoded) |
CARL |
|
|
Abstract |
|
File
Format |
CA Revocation List (SHA-256 with ePKI Root CA -G2) |
|
- 2nd generation of eCA issues CARL once a day, CARL offers the relying party to check the status of certificates of CA.
- RSA 4096 w/SHA-256.
|
|
CRL |
Superseded Certificates |
|
|
Abstract |
|
File
Format |
Superseded and revoked Self -issued Certificates issued on November 17, 2015 |
|
- These self-issued certificates were issued on November 17, 2015.
- For promotion of Adobe PDF documents signing, after Policy Management Committee on September 23, 2016 approved the amendment of ePKI CP version 1.4, eCA signed two new self-issued certificates and add 1.3.6.1.4.1.23459.100.9 CP OID.
|
|
HTML |
Superseded Root CA Certificates and Revoked Self-issued Certificates |
|
- The old 2nd generation root certificate has been superseded as the information of OU field moved to CN field and its associated self-issued certificates were revoked.
|
|
HTML |