OpenSSL command to view the signed certificate

Last Updated : Dec 07, 2021 |
Prolog information
The OpenSSL command line tool can be used to verify or review the identity certificate contents.
$ openssl x509 -in newIdentiyCert.pem -text -noout
Certificate:
Data:
  Version: 3 (0x2)
  Serial Number:
    04:80:82:da:40:b9:db:fe
  Signature Algorithm: sha256WithRSAEncryption
    Issuer: CN=System Manager CA, OU=MGMT, O=AVAYA   
  Validity
  Not Before: Apr 20 16:24:23 2016 GMT
  Not After : Apr 20 16:24:23 2018 GMT
Subject: CN=fqdn.ca.avaya.com, OU=SDP, O=AVAYA, L=Belleville, ST=Ontario, 
C=US
   Subject Public Key Info:
      Public Key Algorithm: rsaEncryption
   RSA Public Key: (2048 bit)
       Modulus (2048 bit):
          00:ba:3c:b2:36:33:67:dc:ff:a0:6b:7a:1d:c7:77:
          <snip>
          ef:95:be:50:23:61:af:9d:e0:4f:37:58:b2:ac:a6:
          20:d1
          Exponent: 65537 (0x10001)
       X509v3 extensions:
      X509v3 Subject Key Identifier: 
         8C:17:08:0F:AF:B5:FD:7E:D6:5E:02:DD:71:A2:97:E5:F2:40:B8:36
      X509v3 Basic Constraints: critical
       CA:FALSE
      X509v3 Authority Key Identifier: 
         keyid:A4:C5:C0:96:86:60:21:3A:60:3A:58:56:6B:97:70:DD:C1:51:30:0B


           X509v3 Key Usage: critical
          Digital Signature, Non Repudiation, Key Encipherment, Data Encipherment, Key Agreement
              X509v3 Extended Key Usage: 
                  TLS Web Server Authentication, TLS Web Client Authentication
              X509v3 Subject Alternative Name: 
                 DNS:san1.ca.avaya.com
   Signature Algorithm: sha256WithRSAEncryption
     2b:07:d9:aa:0d:5b:5d:aa:d9:07:cc:6b:a3:7b:7f:9b:5c:2e:
     <snip>
     5a:d4:f1:cd:ab:a0:f4:c8:86:b6:4a:c6:22:45:07:d5:86:d7:
     49:03:c6:63