Clortho

Certificate Authorities

Demo root CA
Algorithm: secp521r1
Expires at 5 September 2036.

(id: 3)Demo intermediate CA

Algorithm: secp384r1

Expires at 4 September 2036

Key usage: -

CRL validity period: 30 days

Download intermediate certificate

Download certificate revokation list

Leisink.net root CA
Algorithm: secp521r1
Expires at 5 September 2036.

(id: 1)Leisink.net intermediate CA

Algorithm: secp384r1

Expires at 4 September 2036

Key usage: ca, ep

CRL validity period: 30 days

Download intermediate certificate

Download certificate revokation list

(id: 2)Leisink.net web services CA

Algorithm: secp384r1

Expires at 4 September 2036

Key usage: sa, acr

CRL validity period: 30 days

Download intermediate certificate

Download certificate revokation list

Test root CA
Algorithm: secp521r1
Expires at 16 September 2036.

(id: 4)Test intermediate CA

Algorithm: secp384r1

Expires at 15 September 2036

Key usage: sa, ca, cs, ep, ts, os, acr

CRL validity period: 10 days

Download intermediate certificate

Download certificate revokation list

Key usage of certificates signed by this intermediate CA.

  • sa: Web/VPN server authentication
  • ca: Web client authentication
  • cs: Code signing (executables and scripts)
  • ep: E-mail encryption and signing (S/MIME)
  • ts: Time stamping
  • os: OCSP response signing
  • acr: Automated Certificate Retrieval. ACR is Clortho's technique to retrieve a certificate for a website, which has a hostname as the Common Name (CN), via a script.