en:ch-tcs-crt-crl.html

Rozdíly

Zde můžete vidět rozdíly mezi vybranou verzí a aktuální verzí dané stránky.

Odkaz na výstup diff

Obě strany předchozí revize Předchozí verze
Následující verze
Předchozí verze
Následující verze Obě strany příští revize
en:ch-tcs-crt-crl.html [2014/10/24 13:44]
bozon@cesnet.cz del. TERENA SSL CA 2 (will go to separate page)
en:ch-tcs-crt-crl.html [2015/06/02 18:14]
bozon@cesnet.cz DigiCert
Řádek 1: Řádek 1:
-====== ​Root Certificates and Revocation Lists ======+====== ​TCS Server certificates ​======
  
-Here you can find descriptions,​ certificates and revocation lists for Certificate Authorities providing the service CESNET TCS Server.+You can get your server certificate on [[https://​tcs.cesnet.cz/​|https://​tcs.cesnet.cz/​]].
  
-===== AddTrust External ​CA Root =====+===== New CA Root - DigiCert ​=====
  
-^ CA name  | CN=**AddTrust External CA Root**, OU=AddTrust External TTP Network, O=AddTrust AB, C=SE || +On July 1<sup>st</​sup> ​2015 there will be a new supplier of TCS certificates - DigiCert companyAfter this date, the certificates will be issued under this root only.
-^ Issued by  | CN=AddTrust External CA Root, OU=AddTrust External TTP Network, O=AddTrust AB, C=SE || +
-^ Validity ​ | since May 30<sup>th</​sup> ​2000 | until May 30<​sup>​th</​sup>​ 2020 | +
-^ Fingerprint MD5  | 1D:​35:​54:​04:​85:​78:​B0:​3F:​42:​42:​4D:​BF:​20:​73:​0A:​3F ​ || +
-^ Fingerprint SHA1  | 02:​FA:​F3:​E2:​91:​43:​54:​68:​60:​78:​57:​69:​4D:​F5:​E4:​5B:​68:​85:​18:​68 ​ || +
-^ CA certificate ​ | [[http://​pki.cesnet.cz/​certs/​AddTrust_External_Root.crt|Install (DER)]] |  [[http://​pki.cesnet.cz/​certs/​AddTrust_External_Root.pem|Download (PEM)]] | +
-^ Current CRL  | [[http://​crl.comodoca.com/​AddTrustExternalCARoot.crl|Download]] ||+
  
-===== UTN-USERFirst-Hardware =====+    * [[en:ch-tcs-ssl-ca-3-crt-crl.html|New server certificates - chain a CRL]] 
 +    * [[en:​ch-tcs-esci-ssl-ca-3-crt-crl.html|New grid server certificates - chain a CRL]]
  
-^ CA name  | CN=**UTN-USERFirst-Hardware**,​ OU=http://​www.usertrust.com,​ O=The USERTRUST Network, L=Salt Lake City, ST=UT, C=US || +===== Comodo ​=====
-^ Issued by  | CN=AddTrust External CA Root, OU=AddTrust External TTP Network, O=AddTrust AB, C=SE || +
-^ Validity ​ | since June 7<​sup>​th</​sup>​ 2005 | until May 30<​sup>​th</​sup>​ 2020 | +
-^ Fingerprint MD5  | 73:​BE:​83:​E2:​0B:​42:​A2:​69:​3B:​50:​0D:​70:​0C:​14:​94:​D3 ​ || +
-^ Fingerprint SHA1  | 3D:​4B:​2A:​4C:​64:​31:​71:​43:​F5:​02:​58:​D7:​E6:​FD:​7D:​3C:​02:​1A:​52:​9E ​ || +
-^ CA certificate ​ | [[http://​pki.cesnet.cz/​certs/​UTN_USERFirst_Hardware_Root_CA.crt|Install (DER)]] |  [[http://​pki.cesnet.cz/​certs/​UTN_USERFirst_Hardware_Root_CA.pem|Download (PEM)]] | +
-^ Current CRL  | [[http://​crl.usertrust.com/​UTN-USERFirst-Hardware.crl|Download]] ||+
  
-===== TERENA SSL CA =====+From the reasons specified above, it will be no longer possible to issue new TCS certificates under the old Comodo root after 2015-07-01. Existing certificates remain valid (until the expiration or revocation).
  
-^ CA name  | CN=**TERENA SSL CA**, O=TERENA, C=NL || +    ​* [[en:ch-tcs-ssl-ca-2-crt-crl.html|Normal server certificates - chain and CRL]] 
-^ Issued by  | CN=UTN-USERFirst-Hardware,​ OU=http://​www.usertrust.com,​ O=The USERTRUST Network, L=Salt Lake City, ST=UT, C=US || +    ​* ​[[en:ch-tcs-esci-ssl-ca-2-crt-crl.html|Grid server certificates - chain and CRL]]
-^ Validity ​ | since May 18<​sup>​th</​sup>​ 2009 | until May 30<​sup>​th</​sup>​ 2020 | +
-^ Fingerprint MD5  | F6:​2C:​D1:​54:​6A:​8E:​F1:​4E:​31:​BA:​1C:​E8:​EE:​CD:​23:​4A ​ || +
-^ Fingerprint SHA1  | 3A:​88:​17:​64:​47:​2B:​64:​41:​DD:​B3:​AF:​DD:​47:​C6:​B8:​B7:​6E:​E7:​BA:​1D ​ || +
-^ CA certificate ​ | [[http://​pki.cesnet.cz/​certs/​TERENA_SSL_CA.crt|Install (DER)]] |  [[http://​pki.cesnet.cz/​certs/​TERENA_SSL_CA.pem|Download (PEM)]] | +
-^ Current CRL  | [[http://crl.tcs.terena.org/​TERENASSLCA.crl|Download]] ||+
  
-===== TERENA eScience SSL CA =====+==== Certificates with SHA1 ====
  
-^ CA name  | CN=**TERENA eScience SSL CA**O=TERENA, C=NL || +TCS certificate portal can't issue the SHA1 certificates nowadays. If you are sure you want a SHA1 certificateplease contact us at <tcs-ra@cesnet.cz>. Certification chains for SHA1 certificates remained the same. Certification chains and CRLs are below
-^ Issued by  | CN=UTN-USERFirst-Hardware,​ OU=http://​www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, ST=UT, C=US || + 
-^ Validity ​ | since May 18<​sup>​th</​sup>​ 2009 | until May 30<​sup>​th</​sup>​ 2020 | +    ​* ​[[en:ch-tcs-ssl-ca-crt-crl.html|Normal server certificates with SHA1 - chain and CRL]] 
-^ Fingerprint MD5  | 5F:​EE:​A3:​5A:​B0:​1A:​37:​3F:​11:​52:​19:​70:​6F:​1F:​57:​BD ​ || +    ​* ​[[en:ch-tcs-esci-ssl-ca-crt-crl.html|Grid server certificates with SHA1 - chain and CRL]]
-^ Fingerprint SHA1  | 93:​BF:​A8:​70:​C2:​17:​83:​F9:​16:​6C:​34:​1D:​FB:​7E:​01:​86:​F6:​A0:​31:​3D ​ || +
-^ CA certificate ​ | [[http://​pki.cesnet.cz/​certs/​TERENA_eScience_SSL_CA.crt|Install (DER)]] |  [[http://​pki.cesnet.cz/​certs/​TERENA_eScience_SSL_CA.pem|Download (PEM)]] | +
-^ Current CRL  | [[http://crl.tcs.terena.org/​TERENAeScienceSSLCA.crl|Download]] ||+
  
Poslední úprava:: 2023/11/02 15:50