Chinese  |  English
 
   
Root CA Certificates

Names

 
Abstract
 
File
Format
ePKI Root CA -G2 Certificate
  • 2nd generation of ePKI Root CA Certificate.
  • RSA 4096 w with SHA-256
  • Serial #: 00 d6 96 2e c1 0a 15 93 12 af 8f 63 bc d4 44 c9 5b
  • Thumbprint(SHA-1): d9 9b 10 42 98 59 47 63 f0 b9 a9 27 b7 92 69 cb 47 dd 15 8b
  • Valid Until: December 31, 2037.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

 

Self-issued Certificates

Self-issued certificates are CA certificates in which the issuer and subject are the same entity. Self-issued certificates are generated to support changes in policy or operations.

Names

 
Abstract
 
File
Format
ePKI Root CA Self-issued Certificate¡]old with new¡^
  • This certificate is 1st generation of ePKI Root CA public key with other subject information signed by 2nd generation of ePKI Root CA private key.
  • It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
  • It was signed on October 18, 2019 and add 3 token assurance levels and removing CA/Browser Forum EV SSL CP OID in comparison with the self-issued certificate signed on October 4, 2016.
  • RSA 4096 with SHA-256.
  • Serial #: 18 90 74 02 b0 83 ec 8b ce 19 94 de af c0 a1 d7
  • Thumbprint (SHA-1): A4 24 47 3F 72 32 81 AF E5 EC AD 76 6E AB 3A C7 E4 23 54 DA
  • Thumbprint (SHA-256): B9 C9 74 DE 13 9F 63 08 D7 4C CC 42 3C 3B C0 BD ED 5E 7A B4 AD 73 8B 30 4B 50 D4 29 C4 2C 3D 66
  • Valid Until: December 20, 2034.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

ePKI Root CA Self-issued Certificate¡]new with old¡^
  • This certificate is 2nd generation of ePKI Root CA public key with other subject information signed by 1st generation of ePKI Root CA private key.
  • It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
  • It was signed on October 18, 2019 and add 3 token assurance levels and removing CA/Browser Forum EV SSL CP OID in comparison with the self-issued certificate signed on October 4, 2016.
  • RSA 4096 with SHA-256
  • Serial #: 00 af cd 8d 64 2c 62 d6 45 06 7d c8 57 fd a8 f1 5d
  • Thumbprint (SHA-1): 81 d2 e3 bf 7c d3 97 4c 30 76 a5 00 d7 aa ed b3 1b e3 75 22
  • Thumbprint (SHA-256): 18 46 7C 4E 64 D5 86 C8 44 A4 44 66 DE 5B A7 A6 D5 96 9C 7A 92 85 9A 51 1C 5F DA D7 5B 03 CD CE
  • Valid Until: December 20, 2034.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

ePKI Root CA Self-issued Certificate¡]old with new¡^
  • This certificate is 1st generation of ePKI Root CA public key with other subject information signed by 2nd generation of ePKI Root CA private key.
  • It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
  • It was signed on October 4, 2016 and add 1.3.6.1.4.1.23459.100.0.9 PDF Signing CP OID in comparison with the self-issued certificate signed on November 17, 2015.
  • RSA 4096 with SHA-256.
  • Serial #: 00 ca e1 f7 3e fc ac 5b b1 9c 88 c1 c7 2f 6f 7b 2f
  • Thumbprint (SHA-1): dd fe 11 1b 8a 9d c4 76 10 81 19 2f 40 e7 c9 da 1c d3 d4 50
  • Valid Until: December 20, 2034.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

ePKI Root CA Self-issued Certificate¡]new with old¡^
  • This certificate is 2nd generation of ePKI Root CA public key with other subject information signed by 1st generation of ePKI Root CA private key.
  • It is for constructing trust path of 1st generation & 2nd generation of ePKI Root CA key pairs.
  • It was signed on October 4, 2016 and add 1.3.6.1.4.1.23459.100.0.9 PDF Signing CP OID in comparison with the self-issued certificate signed on November 17, 2015.
  • RSA 4096 with SHA-256
  • Serial #: 3b ee e0 91 8e 88 86 ad 46 0f e8 ae 91 0c 9c ba
  • Thumbprint (SHA-1): c3 ca f8 57 0c b1 2d d0 fc 97 37 bf cd 0f 08 7c 9b e6 d2 81
  • Valid Until: December 20, 2034.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

Subordinate CA Certificates

Names

 
Abstract
 
File
Format
2nd Generation PublicCA CA Certificate
  • PublicCA (Public Certification Authority)'s CA certificate.
  • RSA 2048 with SHA-256,
  • Issued by ePKI Root Certification Authority - G2 on October 4, 2016
  • Updated 1.3.6.1.4.1.23459.100.0.9 CP OID in Certificate Policy extension
  • Serial #: 00 ce 60 97 fd 33 e1 2d a0 75 ce dc 96 5d c0 c4 a3
  • Thumbprint(SHA-1): dd b1 3c 36 50 3d ba d9 4a b0 b2 e3 89 e3 bb f4 91 31 3e 5f
  • Valid Period: December 11, 2014 to December 11, 2034.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

Government TLS Certification Authority- G1
  • Government TLS Certification Authority 's CA certificate.
  • RSA 4096 with SHA-256,
  • Serial #: 00 99 6d 5f e9 ad e1 6c dc 8e cd bf ed b1 4a 32 95
  • Thumbprint(SHA-1): b2 d1 51 a7 68 d3 0c 3b 99 d8 6b 8b 25 81 56 08 c2 8a b2 cb
  • Valid Period: July 19, 2019 to August 19, 2031.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

ePKI Timestamping CA - G1
  • ePKI Timestamping CA’s CA certificate (RSA 4096 with SHA-256
  • Issued by ePKI Root Certification Authority - G2.
  • Serial #:00 b2 14 37 d0 d6 7c 63 87 48 44 f8 46 1c 5f 4b 54
  • Thumbprint (SHA-1): 29 7e 0d 74 47 74 35 6e c8 09 04 d6 57 7d 14 c5 40 e4 9c be
  • Thumbprint (SHA-256): DA 31 29 3D 65 97 81 C6 9E 00 85 C7 32 A2 81 1D B5 0E 5C C5 76 90 91 49 B8 0A 98 A9 B0 F9 3F D9
  • Valid Period: October 18, 2019 to December 30, 2037.

CER
(DER encoded X.509)

CRT
(Base 64 encoded)

CARL

Names

 
Abstract
 
File
Format
CA Revocation List (SHA-256 with ePKI Root CA -G2)
  • 2nd generation of eCA issues CARL once a day, CARL offers the relying party to check the status of certificates of CA.
  • RSA 4096 w/SHA-256.

CRL

Superseded Certificates

Names

 
Abstract
 
File
Format
Self -issued Certificates issued on November 17, 2015
  • These self-issued certificates were issued on November 17, 2015.
  • For promotion of Adobe PDF documents signing, after Policy Management Committee on September 23, 2016 approved the amendment of ePKI CP version 1.4, eCA signed two new self-issued certificates and add 1.3.6.1.4.1.23459.100.9 CP OID.

HTML
Superseded Root CA Certificates and Revoked Self-issued Certificates
  • The old 2nd generation root certificate has been superseded as the information of OU field moved to CN field and its associated self-issued certificates were revoked.

HTML