Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Tsl pdf
1. Luxembourg (Luxembourg): Trusted List
Institut Luxembourgeois de la Normalisation, de l'Accréditation de la
Sécurité et qualité des produits et services
Scheme Information
TSL Version Identifier 3
TSL Sequence Number 14
TSL Type
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/TSLType/generic
Indicates a "generic" TSL that exclusively contains trust services which are approved or recognized by the scheme operator
owning the TSL through a process of direct oversight (whether voluntary or regulatory).
Scheme Operator Name Name en
Institut Luxembourgeois de la Normalisation, de
l'Accréditation, de la Sécurité et qualité des produits et
services (ILNAS)
Scheme Operator Name Name fr
Institut Luxembourgeois de la Normalisation, de
l'Accréditation, de la Sécurité et qualité des produits et
services (ILNAS)
Scheme Operator Address
Street Address en 34-40 Avenue de la Porte-Neuve
Locality en Luxembourg
State Or Province en
Postal Code en L-2227
Country Name en LU
Electronic Address URI mailto:confiance-numerique@ilnas.etat.lu
Electronic Address URI http://www.ilnas.public.lu
Scheme Name Name en
LU:Supervision/Accreditation Status List of certification
services from Certification Service Providers, which are
supervised/accredited by the referenced Member State for
compliance with the relevant provisions laid down in
Directive 1999/93/EC and its implementation in the
referenced Member State's laws.
Scheme Information URI Name en http://www.ilnas.public.lu/digital-trust
Status Determination
Approach
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/StatusDetn/appropriate
Services listed have their status determined by or on behalf of the Scheme Operator under an appropriate system for a
referenced Member State that allows for supervision (and, when applicable, for voluntary accreditation) of certification
service providers who are established on its territory (or established in a third country in the case of voluntary accreditation)
and issue qualified certificates to the public.
Scheme Type Community Rule URI
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/common
Descriptive text by which participation is denoted of the Member States scheme in a scheme of
schemes, where users can obtain policy/rules against which services included in the list shall be
assessed and from which the type of the TSL can be determined, and where users can obtain
description about how to use and interpret the content of the TSL implementation of the Trusted
List.
Scheme Type Community Rule URI
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/LU
Descriptive text where users can obtain the Luxembourg specific policy/rules against which
services included in the list shall be assessed in compliance with Luxembourg appropriate
supervision system and voluntary accreditation schemes, where users can obtain a referenced
Luxembourg specific description about how to use and interpret the content of the TSL
implementation of the Trusted List with regard to the certification services not related to the
issuing of QCs.
Scheme Territory LU
Page 1 / 24
2. Policy Or Legal Notice TSL Legal Notice en
The applicable legal framework for the present TSL
implementation of the Trusted List of supervised/accredited
Certification Service Providers for Luxembourg is the
Directive 1999/93/EC of the European Parliament and of the
Council of 13 December 1999 on a Community framework for
electronic signatures and its implementation in Luxembourg
laws. The accreditation scheme for all CSPs issuing qualified,
non-qualified certificates, or other services related to
electronic signature is based upon the Law of 14 August
2000, and Grand-Ducal Regulations of 1st June 2001 and 21
December 2004.
Historical Information Period 3653
Page 2 / 24
3. Pointer To Other TSL X509 Certificate
-----BEGIN CERTIFICATE-----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5
EOCl21E+8smfjylxt+O8JzaaaQsjKuwIDAQABo4GBMH8wEQYJYIZIAYb4QgEBBAQDAgbAMA4GA1
UdDwEB/wQEAwIE8DAfBgNVHSMEGDAWgBRIu6i/W4TSV0jkYemRIJHYHSXffzA5BgNVHR8EMjA
wMC6gLKAqhihodHRwOi8vY3JsLmdsb2JhbHNpZ24ubmV0L1NlcnZlclNpZ24uY3JsMA0GCSqGSIb
3DQEBBQUAA4IBAQA8tgDKlVnGcpyD/VVOegTqsPIvpXLpgXIv+QIOGd/VFvqI8EXiKJjr3+35n1S4
U7FVYcJeSdC8I905fwatYT7b/Zf7BOY9DysFYW6NT3VqXoZZhp/b394yVxZfSIkyDLb2xkNj04/l04Dy
LnfpOPzZBpxRpOfZ8bRUfTp2n52mXLVO+bDgO6pYM9sAhsnDkcVZruvOd+Y0397KQ2x8omYRW
CAhqYMCPgqnzQ3j7q4um8y8J93nOa5WhWFN7TFcaWEOF/lEDtfZr33XoM3+YX/+ehHIb7HSOcP
b34o4tz7t7RKSQ/WXkheL2kNta0WwMx59/qVJ2Ipa78swKos5Sd2z
-----END CERTIFICATE-----
Version 3
Serial Number 1208925819615896178901234
SigAlgName SHA1withRSA
Issuer DN CN=GlobalSign ServerSign CA, OU=ServerSign CA,
O=GlobalSign nv-sa, C=BE
Valid from 2010-02-24T09:05:13Z
Valid to 2013-03-28T12:04:50Z
Subject DN CN=ec.europa.eu, OU=DIGIT, O=European
Commission, L=Luxembourg, ST=Luxembourg, C=LU
Public Key Algo RSA
Public Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00
03 81 8d 00 30 81 89 02 81 81 00 c3 45 d8 a3 4c db
33 e5 11 8d 6e 7c 90 03 df 16 fb 93 fc 71 2d 7c 2a 24
92 7a 70 a4 c9 50 7b 66 29 e2 73 19 34 93 41 86 ea 77
5a 19 e7 2f ac 41 ed df eb 3f 8b e6 c0 f3 39 b1 0f 3a
27 d4 67 3e 45 48 fb 14 4e 43 09 d3 16 5c cd 7f ee 01
36 25 85 b6 13 62 2e d0 db 52 00 1b dd 56 32 ee f5 c3
ff f3 5a 76 b0 29 f2 9e 3e 44 38 29 76 d4 4f bc b2 67
e3 ca 5c 6d f8 ef 09 cd a6 9a 42 c8 ca bb 02 03 01 00
01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 48 bb a8 bf 5b 84 d2 57 48 e4 61 e9 91 20 91
d8 H......WH.a.....
0010: 1d 25 df 7f ....
]
]
Certificate
Policies
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.globalsign.net/ServerSign.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
Page 3 / 24
4. Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_Encipherment
Data_Encipherment
]
Basic Constraints
Thumbprint Algo SHA256
Thumbprint 81 bc 61 fa 39 fa f5 b4 d5 d8 77 98 be 53 bd 68 68 af
06 ff 05 78 bf a9 3b 15 76 5a 6f da 8d ad
Thumbprint Algo SHA1
Thumbprint 5e 98 89 3b ed 90 44 ef b0 9a 94 c4 8a fd b6 52 b5 19
70 8f
TSL Location
https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-
hr.pdf
TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/TSLType/schemes
A TSL implementation of a compiled list of pointers towards Member States
supervision/accreditation status lists of certification services from certification service providers
which are supervised/accredited by the referenced Member State owning the pointed TSL
implementation for compliance with the relevant provisions laid down in the eSignature Directive
1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on a
Community framework for electronic signatures, through a process of direct oversight (whether
voluntary or regulatory).
Scheme Operator
Name
European Commission
Scheme Type
Community Rules
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/CompiledList
A URI pointing towards a descriptive text where users can obtain information about the scheme of
schemes type (i.e. a TSL listing pointers to all Member States' Trusted Lists published and
maintained in the form of a TSL) and the relevant driving rules and policy.
Scheme Territory EU
Mime Type application/pdf
Page 4 / 24
5. Pointer To Other TSL X509 Certificate
-----BEGIN CERTIFICATE-----
MIIHPDCCBSSgAwIBAgIBcjANBgkqhkiG9w0BAQsFADAxMQswCQYDVQQGEwJFUzERMA8GA1U
ECgwIRk5NVC1SQ00xDzANBgNVBAMMBklTQSBDQTAeFw0xMTExMTYxNTExMDdaFw0xNTEx
MTYxNTExMDdaME0xCzAJBgNVBAYTAkJFMRwwGgYDVQQKDBNFVVJPUEVBTiBDT01NSVNTS
U9OMSAwHgYDVQQDDBcoU0lHTikgQU5ORUxJIEFORFJFU1NPTjCCASIwDQYJKoZIhvcNAQEBB
QADggEPADCCAQoCggEBAMw881fbxBn5Eq64Hf6pqEqn0Intg49k5D+E2JBMcyeOMYE4WwuzVq
s7fuKMX5mhiFw7llVx42S7GIDnKa6ascF7irISsYTGOtD6dGt8OEOQkG5i24wxT3we63VW1W/PEO0
WoRjkPDBqgljnqcLn+WJLr3Yl9fpkxyT+H3pl0jnGkGi7UUKEDuoCglFy9Tb1TE+eVNiGWmfskRy6q
9Pioujp2FqrwNm95VAkLFGoNF4iZQda79bgjvAYnA5p4QXgr/5sWZjgsa3Ea9PlRwEvO7C8ndnRE/P
TUNwaSmOZsmPH/ksCCnfTDqqehHVnry3K6QIUKhRsoT1m60qv4UKrvrsCAwEAAaOCA0EwggM9
MF0GA1UdEQRWMFSBHUFOTkVMSS5BTkRSRVNTT05ARUMuRVVST1BBLkVVpDMwMTEYMB
YGCSsGAQQBrGYBAgwJQU5EUkVTU09OMRUwEwYJKwYBBAGsZgEBDAZBTk5FTEkwCQYDVR0
TBAIwADAOBgNVHQ8BAf8EBAMCBkAwHQYDVR0OBBYEFEoUEf+0Oe59fVRs/rW2M0KhmlDsM
B8GA1UdIwQYMBaAFEft+GPwma9e/n4OXFjL/uI1N6a9MIHgBgNVHSAEgdgwgdUwgcgGCisGAQ
QBrGYDBAEwgbkwKQYIKwYBBQUHAgEWHWh0dHA6Ly93d3cuY2VydC5mbm10LmVzL2RwY3M
vMIGLBggrBgEFBQcCAjB/DH1RdWFsaWZpZWQgY2VydGlmaWNhdGUuIFVuZGVyIHRoZSB1c2F
nZSBjb25kaXRpb25zIGFzc2VydGVkIGluIHRoZSBGTk1ULVJDTSBDUFMgKDEwNiwgSm9yZ2UgS
nVhbiBzdHJlZXQsMjgwMDksIE1hZHJpZCwgU3BhaW4pLjAIBgYEAIswAQEwgYYGCCsGAQUFBwE
BBHoweDBBBggrBgEFBQcwAYY1aHR0cDovL29jc3BJU0FjYS5jZXJ0LmZubXQuZXMvb2NzcElTQ
WNhL09jc3BSZXNwb25kZXIwMwYIKwYBBQUHMAKGJ2h0dHA6Ly93d3cuY2VydC5mbm10LmVz
L2NlcnRzL0lTQUNBLmNydDBGBggrBgEFBQcBAwQ6MDgwCAYGBACORgEBMAsGBgQAjkYBAwI
BDzAVBgYEAI5GAQIwCxMDRVVSAgECAgECMAgGBgQAjkYBBDCBzAYDVR0fBIHEMIHBMIG+oI
G7oIG4hoGIbGRhcDovL2xkYXBJU0FjYS5jZXJ0LmZubXQuZXMvQ049Q1JMMixjbj1JU0ElMjBDQSx
vPUZOTVQtUkNNLEM9RVM/Y2VydGlmaWNhdGVSZXZvY2F0aW9uTGlzdDtiaW5hcnk/YmFzZT9v
YmplY3RjbGFzcz1jUkxEaXN0cmlidXRpb25Qb2ludIYraHR0cDovL3d3dy5jZXJ0LmZubXQuZXMvY3
Jsc19JU0FjYS9DUkwyLmNybDANBgkqhkiG9w0BAQsFAAOCAgEALIKumRPBo9NIYyzm4LSJklE9C
msirJC89MPcFiC9+vg4YrO9Mmakr8G5ZAVZf+Zr6HgLcIf93/BSgE4UDFD9mAROPDElqx2ppg1+f
oIvlqg57EiHH2kOS4IYJEJpWCs4IqcBkSKcS5vJ5XVpNJL4elpeMQjsGoqjmkKDr1IeZQVOxOiW/bNh
M9Fw6R1aMMLbnziwAgHWDpmIj2Se74HuS3ca0ctm9fAPp/2Y87bgZ1ETs9A6wc4GxYEuGTwh1H
PbDB6tgjSnjH0hY3qBITjB8IM0xGvUR9dQkt8Ez4dvyxcaFlyCMfLaeMf8jlJOv4uU1yRRT9wESIj5Gc
oE43cy1cuvRMifqYhoi3KPojJaLTV7ASy1X0yuBWyg0jGyvE6aTIAu3XGCwdGYB1WnSzEUPJboqcyJ
ydkXXxnBKFchw602pVB0ITUqitGH+Kfix2mQQf+v0RDEWQU3WdADNHc+cqoc7sXkJXkO657dYZ
T/Ey5MR+gXRm6oK52iXIqjM8kbDqCqAOHVC73u+bUvh0y5B5PjGYuE2K9xK36ooavh5ytF/kY+y0
Ju804CRF00b4wKcibGxplOrU1g+ncONNmBHGbsLULXrum8+fsD3O04Mf0t0O9Mt/ZwAZTa8Cwq
/0pqOWdRqucV7pq/A7fEnRb5AdBaAzxqrXVaa92NkScAm80=
-----END CERTIFICATE-----
Version 3
Serial Number 114
SigAlgName SHA256withRSA
Issuer DN CN=ISA CA, O=FNMT-RCM, C=ES
Valid from 2011-11-16T15:11:07Z
Valid to 2015-11-16T15:11:07Z
Subject DN CN=(SIGN) ANNELI ANDRESSON, O=EUROPEAN
COMMISSION, C=BE
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 cc 3c f3
57 db c4 19 f9 12 ae b8 1d fe a9 a8 4a a7 d0 89 ed 83
8f 64 e4 3f 84 d8 90 4c 73 27 8e 31 81 38 5b 0b b3 56
ab 3b 7e e2 8c 5f 99 a1 88 5c 3b 96 55 71 e3 64 bb 18
80 e7 29 ae 9a b1 c1 7b 8a b2 12 b1 84 c6 3a d0 fa 74
6b 7c 38 43 90 90 6e 62 db 8c 31 4f 7c 1e eb 75 56 d5
6f cf 10 ed 16 a1 18 e4 3c 30 6a 82 58 e7 a9 c2 e7 f9
62 4b af 76 25 f5 fa 64 c7 24 fe 1f 7a 65 d2 39 c6 90
68 bb 51 42 84 0e ea 02 82 51 72 f5 36 f5 4c 4f 9e 54
d8 86 5a 67 ec 91 1c ba ab d3 e2 a2 e8 e9 d8 5a ab c0
d9 bd e5 50 24 2c 51 a8 34 5e 22 65 07 5a ef d6 e0 8e
f0 18 9c 0e 69 e1 05 e0 af fe 6c 59 98 e0 b1 ad c4 6b
d3 e5 47 01 2f 3b b0 bc 9d d9 d1 13 f3 d3 50 dc 1a 4a
63 99 b2 63 c7 fe 4b 02 0a 77 d3 0e aa 9e 84 75 67 af
2d ca e9 02 14 2a 14 6c a1 3d 66 eb 4a af e1 42 ab be
bb 02 03 01 00 01
Page 5 / 24
6. Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 47 ed f8 63 f0 99 af 5e fe 7e 0e 5c 58 cb fe e2
G..c........X...
0010: 35 37 a6 bd 57..
]
]
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.6.1.4.1.5734.3.4.1
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://www.cert.fnmt.es/dpcs/]
]
, PolicyQualifierInfo: [
UserNotice: [
ObjectIdentifier: 1.3.6.1.5.5.7.2.2
NoticeReference: null
ExplicitText: Qualified certificate. Under the usage
conditions asserted in the FNMT-RCM CPS (106, Jorge
Juan street,28009, Madrid, Spain).
]]
]]
,
PolicyInformation: [
CertPolicyId: 0.4.0.1456.1.1
PolicyQualifiers: null]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
ldap://ldapISAca.cert.fnmt.es/CN=CRL2,cn=ISA%20C
A,o=FNMT-
RCM,C=ES?certificateRevocationList;binary?base?obj
ectclass=cRLDistributionPoint, URIName:
http://www.cert.fnmt.es/crls_ISAca/CRL2.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 4a 14 11 ff b4 39 ee 7d 7d 54 6c fe b5 b6 33 42
J....9...Tl...3B
0010: a1 9a 50 ec ..P.
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
Non_repudiation
]
Page 6 / 24
9. Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.2.4.1
PolicyQualifiers: [PolicyQualifierInfo: [
UserNotice: [
ObjectIdentifier: 1.3.6.1.5.5.7.2.2
NoticeReference: null
ExplicitText: LuxTrust Qualified Certificate on CCSD
compliant with ETSI TS 101 456 QCP+ certificate
policy. Key Generation by CSP. Sole Authorised Usage:
Support of Qualified Electronic Signature.
]]
, PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://repository.luxtrust.lu]
]
]]
,
PolicyInformation: [
CertPolicyId: 0.4.0.1456.1.1
PolicyQualifiers: null]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTQCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 4c 03 3b 25 5e dc 85 79 L......y
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Non_repudiation
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:false
PathLen: undefined
]
Thumbprint Algo SHA256
Thumbprint d5 49 51 fe bb c5 9d 2c 2e c0 1a cc d9 2c cd 8c 9d 2c
74 44 c2 e5 51 ba 7e c0 de 62 2c 74 14 8c
Thumbprint Algo SHA1
Thumbprint 66 0c bd 62 c4 2e a2 8d 8b 98 37 54 bb e7 b1 4a 86 4e
01 64
TSL Location
https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-
mp.xml
Page 9 / 24
10. TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/TSLType/schemes
A TSL implementation of a compiled list of pointers towards Member States
supervision/accreditation status lists of certification services from certification service providers
which are supervised/accredited by the referenced Member State owning the pointed TSL
implementation for compliance with the relevant provisions laid down in the eSignature Directive
1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on a
Community framework for electronic signatures, through a process of direct oversight (whether
voluntary or regulatory).
Scheme Operator
Name
European Commission
Scheme Type
Community Rules
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/CompiledList
A URI pointing towards a descriptive text where users can obtain information about the scheme of
schemes type (i.e. a TSL listing pointers to all Member States' Trusted Lists published and
maintained in the form of a TSL) and the relevant driving rules and policy.
Scheme Territory EU
Mime Type application/vnd.etsi.tsl+xml
List Issue Date Time 2012-11-30T00:00:00Z
Next Update dateTime 2013-05-29T00:00:00Z
Distribution Point http://www.ilnas.public.lu/tsl-xml
List of Trust Service Providers
TSP 1 Information
TSP Name Name en LuxTrust S.A.
Street Address en IVY Building - 13-15 Parc d'Activités
Locality en Capellen
State Or Province en
Postal Code en L-8308
Country Name en LU
Electronic Address URI mailto:info@luxtrust.lu
TSP Information URI URI en https://www.luxtrust.lu/en/faq
List of Services
TSP 1, Service 1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU
Page 10 / 24
11. DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----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e
7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBA
DArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvh
CAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXl
rKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0E
uY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQE
AapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO9
2PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4
nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+
MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOj
LlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg==
-----END CERTIFICATE-----
Version 3
Serial Number 1003
SigAlgName SHA1withRSA
Issuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LU
Valid from 2008-06-05T09:25:24Z
Valid to 2016-10-18T10:40:34Z
Subject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57
cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e6
68 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 00
28 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee
0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6
f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3
f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 19
9b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 09
21 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45
d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 79
99 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 16
7c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7f
a8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df
3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 78
37 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b
02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1
...0...q.Gp.....
0010: 8d df 8c 25 ....
]
]
Page 11 / 24
12. Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.1.0
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de
3f .......w.L..MC..
0010: cd 29 64 05 ..d.
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa
05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7
Thumbprint Algo SHA1
Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e ac
a2 aa
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2009-10-13T00:00:00Z
TSP 1, Service 1, History N.1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Qualified Certification Authority
Page 12 / 24
13. Digital Id
X509 Subject
Name
CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2008-07-29T00:00:00Z
TSP 1, Service 2
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/TSA
A Time stamping authority.
Service Name Name en LuxTrust Time Stamping Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU
Page 13 / 24
14. DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----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e
7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBA
DArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvh
CAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXl
rKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0E
uY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQE
AapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO9
2PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4
nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+
MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOj
LlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg==
-----END CERTIFICATE-----
Version 3
Serial Number 1003
SigAlgName SHA1withRSA
Issuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LU
Valid from 2008-06-05T09:25:24Z
Valid to 2016-10-18T10:40:34Z
Subject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57
cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e6
68 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 00
28 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee
0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6
f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3
f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 19
9b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 09
21 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45
d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 79
99 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 16
7c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7f
a8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df
3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 78
37 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b
02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1
...0...q.Gp.....
0010: 8d df 8c 25 ....
]
]
Page 14 / 24
15. Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.1.0
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de
3f .......w.L..MC..
0010: cd 29 64 05 ..d.
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa
05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7
Thumbprint Algo SHA1
Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e ac
a2 aa
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2009-10-13T00:00:00Z
Service Information Extension
Additional
Service
Information
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/TSS-QC
a time stamping service as part of a service from a certification service provider issuing Qualified
Certificates that issue TST that can be used in the qualified signature verification process to
ascertain and extend the signature validity when the QC is revoked or expired.
Page 15 / 24
16. TSP 1, Service 3
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Global Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LU
Page 16 / 24
17. DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----
MIID5zCCAs+gAwIBAgICDJcwDQYJKoZIhvcNAQELBQAwRDELMAkGA1UEBhMCTFUxFjAUBgN
VBAoTDUx1eFRydXN0IHMuYS4xHTAbBgNVBAMTFEx1eFRydXN0IEdsb2JhbCBSb290MB4XDTEx
MTEyMjA5MzQyNFoXDTE3MTEyMjA5MzQyNFowTDELMAkGA1UEBhMCTFUxFjAUBgNVBAoTD
Ux1eFRydXN0IFMuQS4xJTAjBgNVBAMTHEx1eFRydXN0IEdsb2JhbCBRdWFsaWZpZWQgQ0Ewg
gEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCo0Cl9yek22xZb2PNZN0gIgx26qgQChKJ
3az/r+qhAv/d/jVBLZy5mQvKRQFrvnLZp5gY5RzrgIcMyZxCwCitQ+MyLPiUYZ4mg/lUrHfOfhWRjY
aJY4Dz+M69icdzAsKuVrfsurJ/UEmaIkGvgjBzeCd0qd8BXYnnt6GAT9bAsJ7Vh8lDyTho4D1mbude6j
mupBTRNqW1TqnuzeJcooI8JAWkWZ0X4gGXzG0iZlC4irIlB/aaQiJoo+8QVr511T+zAJSJv2CpPS68d
pL7AZBTw7/fhsyF84HcBf4tCH7Qhl9zFrdaWGdqrZiebSM4SeTBAnuuKUdYuuZyjoAHFnjj3AgMBA
AGjgdowgdcwDwYDVR0TBAgwBgEB/wIBADBDBgNVHSAEPDA6MDgGCCuBKwEBAQoDMCwwK
gYIKwYBBQUHAgEWHmh0dHBzOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTALBgNVHQ8EBAMC
AQYwHwYDVR0jBBgwFoAUFxWFiQkvJIdvPx0b5PKWeYNIE84wMgYDVR0fBCswKTAnoCWgI4Yha
HR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdSQ0EuY3JsMB0GA1UdDgQWBBQ0Fhvx02RnYkyjNL
wNs1OkfKHxFzANBgkqhkiG9w0BAQsFAAOCAQEAGPCWTo1SQy6Kmpwin+GaWVW9h2JO3Qwr6
qVwZAQHXPhZGQTD+ghIxN949SGyoMmkGTvJjOSaIs8qJ5lGtDWJuy056rN5FCc2P+0qYofpGdNg
SkyRY3xtuKteEPcoi+eFBphY+dlilSPXm3j6Vp/6BRb70Zd35O1Zic95ZUNCxDDVkaDbuN9tjGIBKhn
q/ExtpheEdZJPjppVXpsBrCUUpJ0A9oSSFOQewwKSMD/vJKF32M9A2TlRd62XdHeNJrahdU/tO55f
9tz3ekl/aKoS2khJxMfBvdvlw2Yc2g02g5rYsBxrSphph6IjqIkALM95jbm9T2Xo2CSROTAtprdhKw==
-----END CERTIFICATE-----
Version 3
Serial Number 3223
SigAlgName SHA256withRSA
Issuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LU
Valid from 2011-11-22T09:34:24Z
Valid to 2017-11-22T09:34:24Z
Subject DN CN=LuxTrust Global Qualified CA, O=LuxTrust S.A.,
C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 a8 d0 29
7d c9 e9 36 db 16 5b d8 f3 59 37 48 08 83 1d ba aa 04
02 84 a2 77 6b 3f eb fa a8 40 bf f7 7f 8d 50 4b 67 2e
66 42 f2 91 40 5a ef 9c b6 69 e6 06 39 47 3a e0 21 c3
32 67 10 b0 0a 2b 50 f8 cc 8b 3e 25 18 67 89 a0 fe 55
2b 1d f3 9f 85 64 63 61 a2 58 e0 3c fe 33 af 62 71 dc
c0 b0 ab 95 ad fb 2e ac 9f d4 12 66 88 90 6b e0 8c 1c
de 09 dd 2a 77 c0 57 62 79 ed e8 60 13 f5 b0 2c 27 b5
61 f2 50 f2 4e 1a 38 0f 59 9b b9 d7 ba 8e 6b a9 05 34
4d a9 6d 53 aa 7b b3 78 97 28 a0 8f 09 01 69 16 67 45
f8 80 65 f3 1b 48 99 94 2e 22 ac 89 41 fd a6 90 88 9a
28 fb c4 15 af 9d 75 4f ec c0 25 22 6f d8 2a 4f 4b af 1d
a4 be c0 64 14 f0 ef f7 e1 b3 21 7c e0 77 01 7f 8b 42
1f b4 21 97 dc c5 ad d6 96 19 da ab 66 27 9b 48 ce 12
79 30 40 9e eb 8a 51 d6 2e b9 9c a3 a0 01 c5 9e 38 f7
02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79
........o......y
0010: 83 48 13 ce .H..
]
]
Page 17 / 24
18. Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.10.3
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: https://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTGRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 34 16 1b f1 d3 64 67 62 4c a3 34 bc 0d b3 53
a4 4....dgbL.4...S.
0010: 7c a1 f1 17 ....
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint db 87 94 17 ec 14 24 e4 e5 7a 3c 91 ec 80 4c 5d e4 c6
fd e7 3c c8 28 1c d2 f5 ba ed 76 dd 65 48
Thumbprint Algo SHA1
Thumbprint d5 0c f3 89 87 71 d6 31 bd 29 9b 46 94 01 74 29 c2 6e
f5 3a
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-11-30T00:00:00Z
TSP 1, Service 3, History N.1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Global Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LU
Page 18 / 24
19. Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-08-01T00:00:00Z
TSP 1, Service 4
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/TSA
A Time stamping authority.
Service Name Name en LuxTrust Global Time Stamping Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LU
Page 19 / 24
20. DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----
MIID6jCCAtKgAwIBAgICDtswDQYJKoZIhvcNAQELBQAwRDELMAkGA1UEBhMCTFUxFjAUBgNV
BAoTDUx1eFRydXN0IHMuYS4xHTAbBgNVBAMTFEx1eFRydXN0IEdsb2JhbCBSb290MB4XDTEy
MDgyODEzMDc0N1oXDTIxMDMxNzA5NTEzN1owTzELMAkGA1UEBhMCTFUxFjAUBgNVBAoTD
Ux1eFRydXN0IFMuQS4xKDAmBgNVBAMTH0x1eFRydXN0IEdsb2JhbCBUaW1lc3RhbXBpbmcgQ
0EwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC62E7tAeIGoLM3xRc4SNpdb9+Me
ejLq91VPecvB8sVHi4SkMUTIebWG13HJqGLKcn9paO650PehXWEbgm2aUKRNSimM74pNBhYB0
sa0rQui8npZbp1x5ilDwqiTkJ1iFtV5bYrH8hJ0QpX6u4clUEmO9h/Ao/4eXW2wS8hShwDgc0eNu+4S
RoXM+ngPrqZetKYD6bEVFw0PSLfCJpGx82JU6/7+Ml0vB6Y/JMcU6xH5u6XdUyayjIvBmKYGSBRC
eL7YrJKnBs8hCurHf8pmAlTDdR481dYkIWgKYY6xq4V5IuDSICRcAH2WURQcjyFi/s6kxJMvzuAbH
8oxuy8HFyNAgMBAAGjgdowgdcwDwYDVR0TBAgwBgEB/wIBADBDBgNVHSAEPDA6MDgGCCuB
KwEBAQoIMCwwKgYIKwYBBQUHAgEWHmh0dHBzOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTA
LBgNVHQ8EBAMCAQYwHwYDVR0jBBgwFoAUFxWFiQkvJIdvPx0b5PKWeYNIE84wMgYDVR0fBC
swKTAnoCWgI4YhaHR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdSQ0EuY3JsMB0GA1UdDgQWBBT
1vyLGHf7yBoMjXV7CJZGUGR08hzANBgkqhkiG9w0BAQsFAAOCAQEAWRIoTruey0uMSs3+g0yT3
IefiTtU10fqOuyOmK8q3MUjmWhwX06CJIbWuTAQ6X4oAEGS0A0TWVHgYuGZwSefMz/CAsDUtmI
z9EgS6bsFVoF+fTA68BGOT9vBlEndC3tKTjUn0R0ukWkTjX5gSxFPS9fJlPWPpBv4XPIiMMH4cpy1
dUj5QRF26xxynJGbx1Uf3uxlJbp6S8+P2mmKFaUp01NMxwFaRyE3g8KJOVJhAurO/8QrDUQH48+
HimlMVzxAVhZ/r5ux6auyNafqsjcQ0xkMgRKqPtNZQ5LChbGZyRxO6Itg+JH4CaOkB8mwwVyzJNz
EgbArJreC4sBajUdjVw==
-----END CERTIFICATE-----
Version 3
Serial Number 3803
SigAlgName SHA256withRSA
Issuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LU
Valid from 2012-08-28T13:07:47Z
Valid to 2021-03-17T09:51:37Z
Subject DN CN=LuxTrust Global Timestamping CA, O=LuxTrust
S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 ba d8 4e
ed 01 e2 06 a0 b3 37 c5 17 38 48 da 5d 6f df 8c 79 e8
cb ab dd 55 3d e7 2f 07 cb 15 1e 2e 12 90 c5 13 21 e6
d6 1b 5d c7 26 a1 8b 29 c9 fd a5 a3 ba e7 43 de 85 75
84 6e 09 b6 69 42 91 35 28 a6 33 be 29 34 18 58 07
4b 1a d2 b4 2e 8b c9 e9 65 ba 75 c7 98 a5 0f 0a a2 4e
42 75 88 5b 55 e5 b6 2b 1f c8 49 d1 0a 57 ea ee 1c 95
41 26 3b d8 7f 02 8f f8 79 75 b6 c1 2f 21 4a 1c 03 81
cd 1e 36 ef b8 49 1a 17 33 e9 e0 3e ba 99 7a d2 98 0f
a6 c4 54 5c 34 3d 22 df 08 9a 46 c7 cd 89 53 af fb f8
c9 74 bc 1e 98 fc 93 1c 53 ac 47 e6 ee 97 75 4c 9a ca
32 2f 06 62 98 19 20 51 09 e2 fb 62 b2 4a 9c 1b 3c 84
2b ab 1d ff 29 98 09 53 0d d4 78 f3 57 58 90 85 a0 29
86 3a c6 ae 15 e4 8b 83 48 80 91 70 01 f6 59 44 50 72
3c 85 8b fb 3a 93 12 4c bf 3b 80 6c 7f 28 c6 ec bc 1c
5c 8d 02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79
........o......y
0010: 83 48 13 ce .H..
]
]
Page 20 / 24
21. Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.10.8
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: https://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTGRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: f5 bf 22 c6 1d fe f2 06 83 23 5d 5e c2 25 91 94
................
0010: 19 1d 3c 87 ....
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint 53 0b 1d 74 9b e7 ad 3a 7b b7 83 26 b2 81 db cc 5d f6
ea 5f 41 4a 7b 29 b9 70 b6 54 8b 04 49 07
Thumbprint Algo SHA1
Thumbprint db 5c ea 71 c0 1f da d8 59 5a 57 65 51 ec 2a 00 a9 86
51 94
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-11-30T00:00:00Z
Service Information Extension
Additional
Service
Information
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/TSS-QC
a time stamping service as part of a service from a certification service provider issuing Qualified
Certificates that issue TST that can be used in the qualified signature verification process to
ascertain and extend the signature validity when the QC is revoked or expired.
TSP 1, Service 4, History N.1
Page 21 / 24
22. Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/TSA
A Time stamping authority.
Service Name Name en LuxTrust Global Time Stamping Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LU
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-10-03T00:00:00Z
Service Information Extension
Additional
Service
Information
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/TSS-QC
a time stamping service as part of a service from a certification service provider issuing Qualified
Certificates that issue TST that can be used in the qualified signature verification process to
ascertain and extend the signature validity when the QC is revoked or expired.
TSP 2 Information
TSP Name Name en SeMarket Certification Authority S.A.
Street Address en Parc d'Activités "Syrdall", 6
Locality en Munsbach
State Or Province en
Postal Code en L-5365
Country Name en LU
Electronic Address URI mailto:confiance-numerique@ilnas.etat.lu
TSP Information URI URI en http://www.ilnas.public.lu/semarket
List of Services
TSP 2, Service 1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en SeMarket Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=SeMarket CA Root,O=SeMarket CA S.A.,C=LU
Page 22 / 24
23. DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----
MIIDUjCCAjqgAwIBAgIQAPwW+ck6S1YDODOUWMrr0DANBgkqhkiG9w0BAQUFADBDMQswCQ
YDVQQGEwJMVTEZMBcGA1UEChMQU2VNYXJrZXQgQ0EgUy5BLjEZMBcGA1UEAxMQU2VNYXJ
rZXQgQ0EgUm9vdDAeFw0wODA3MjMxMDAwMzNaFw0yNDA3MjMwOTUzMDhaMEMxCzAJBg
NVBAYTAkxVMRkwFwYDVQQKExBTZU1hcmtldCBDQSBTLkEuMRkwFwYDVQQDExBTZU1hcmtl
dCBDQSBSb290MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt8rPRP9UGxVAFjWzD
5ClKdSc9xZZkVldNaynwBwuk2y6BLYc9mxIDIEQ+MGMVfu1bYuWxeDDry4HmNNqGmyFVyvgEe
kwwYF3hOAkP+wYGo2li4BWJsJrRWgA2Lg7YdBJ7TCFat/Gk9kdsNOnuBHw3ZXI6fq8ejNBRk2ffOH
bIMp60D064b0fDHL5wRCOgztxX0iCoStZHRgKYhDyfbQlZfESmeXkG7sfatuqIs1GxbfxqIQ7VgZexd
DtJh8gFAiZLDUtoB3d+LCPgc2I57NMkBWrGHo+HxNq5BRwSWOfwZIcTHGyQHYKBdfx6qbkFqP
+/aYgbxOx10unzMLyywfYDQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/w
QEAwIBBjAdBgNVHQ4EFgQU87dhyhzwq6SpDcQJ4Zq6g48MkOAwDQYJKoZIhvcNAQEFBQADgg
EBAHa6r27PR3/cVpW8i7GpQfeNgQvcl3GLwhRAjIrUathJI/J1ECSY4uxamKmzYKukKE+aWgVC0uV
RvPwzytdjwcLqI8lzROk6ZjD4tinlkA18nySp95sexb8be5f3n5MQzuIvfM+iD2KAVme+zigRmiRqXOij
KoOsO5VmCV2WOfcd6u07Sp6BFffbzpg4AJCDHLDeQmpkQmV7GzXSxA38ufNKf+gPGzsLqYoxL/
MmeAUUDFgAWKb4WdqhbBsOd1Y0LSMBn/MjD1u+JURsoWzrz1gVo7/RK0iBWqAolppb0oMFwrS
Kg1QqM3DaJRjG0PBmSaNHXBbZMcEeXi0afD5r6+k=
-----END CERTIFICATE-----
Version 3
Serial Number 1308924811451483386725277668209257424
SigAlgName SHA1withRSA
Issuer DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LU
Valid from 2008-07-23T10:00:33Z
Valid to 2024-07-23T09:53:08Z
Subject DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 b7 ca cf
44 ff 54 1b 15 40 16 35 b3 0f 90 a5 29 d4 9c f7 16 59
91 59 5d 35 ac a7 c0 1c 2e 93 6c ba 04 b6 1c f6 6c 48
0c 81 10 f8 c1 8c 55 fb b5 6d 8b 96 c5 e0 c3 af 2e 07
98 d3 6a 1a 6c 85 57 2b e0 11 e9 30 c1 81 77 84 e0 24
3f ec 18 1a 8d a5 8b 80 56 26 c2 6b 45 68 00 d8 b8 3b
61 d0 49 ed 30 85 6a df c6 93 d9 1d b0 d3 a7 b8 11 f0
dd 95 c8 e9 fa bc 7a 33 41 46 4d 9f 7c e1 db 20 ca 7a
d0 3d 3a e1 bd 1f 0c 72 f9 c1 10 8e 83 3b 71 5f 48 82
a1 2b 59 1d 18 0a 62 10 f2 7d b4 25 65 f1 12 99 e5 e4
1b bb 1f 6a db aa 22 cd 46 c5 b7 f1 a8 84 3b 56 06 5e
c5 d0 ed 26 1f 20 14 08 99 2c 35 2d a0 1d dd f8 b0 8f
81 cd 88 e7 b3 4c 90 15 ab 18 7a 3e 1f 13 6a e4 14 70
49 63 9f c1 92 1c 4c 71 b2 40 76 0a 05 d7 f1 ea a6 e4
16 a3 fe fd a6 20 6f 13 b1 d7 4b a7 cc c2 f2 cb 07 d8
0d 02 03 01 00 01
Authority Key
Identifier
Certificate
Policies
CRL Distribution
Points
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: f3 b7 61 ca 1c f0 ab a4 a9 0d c4 09 e1 9a ba 83
..a.............
0010: 8f 0c 90 e0 ....
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
Key_CertSign
Crl_Sign
]
Page 23 / 24
24. Basic Constraints ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]
Thumbprint Algo SHA256
Thumbprint a4 4e 8e fd 1e fc 78 f2 44 5f 1a 9f 62 63 9d 8f ba 21 20
9c 9e f3 1e 87 11 77 7f d2 c8 2b 07 12
Thumbprint Algo SHA1
Thumbprint ef ab 25 3d 0e 25 79 fe c0 bf 88 ed a0 24 a7 98 3e 57
ca d9
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/supervisionrevoked
Having been previously supervised, the service and potentially the CSP itself has failed to continue to comply with the
provisions laid down in Directive 1999/93/EC. Accordingly the service has been required to cease its operations and must be
considered as ceased for the above reason.
Status Starting Time 2009-09-11T00:00:00Z
Scheme Service Definition URI en http://www.ilnas.public.lu/semarket
Service Information Extension
Qualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/QCWithSSCD
It is ensured by the certification service provider and controlled (supervision model) or audited
(accreditation model) by the referenced Member State (respectively its Supervisory Body or
Accreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC)
identified in "Service digital identity" and further identified by the filters information used to
further identify under the "Sdi" identified certification service that precise set of Qualified
Certificates for which this additional information is required with regards to the presence or
absence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. that
that the private key associated with the public key in the certificate is stored in a Secure
Signature Creation Device conformant with annex III of Directive 1999/93/EC [1]).
Criteria List
assert="all"
Policy
Identifier
Identifier 1.3.6.1.4.1.25969.8.2.1
Description Qualified Certificate
TSP 2, Service 1, History N.1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en SeMarket Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=SeMarket CA Root,O=SeMarket CA S.A.,C=LU
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2007-11-27T00:00:00Z
Service Information Extension
Qualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/QCWithSSCD
It is ensured by the certification service provider and controlled (supervision model) or audited
(accreditation model) by the referenced Member State (respectively its Supervisory Body or
Accreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC)
identified in "Service digital identity" and further identified by the filters information used to
further identify under the "Sdi" identified certification service that precise set of Qualified
Certificates for which this additional information is required with regards to the presence or
absence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. that
that the private key associated with the public key in the certificate is stored in a Secure
Signature Creation Device conformant with annex III of Directive 1999/93/EC [1]).
Criteria List
assert="all"
Policy
Identifier
Identifier 1.3.6.1.4.1.25969.8.2.1
Description Qualified Certificate
Page 24 / 24
Alain Wahl
Digitally signed by Alain Wahl
DN: c=LU, l=LU, o=ILNAS, ou=NA, cn=Alain Wahl,
sn=Wahl, givenName=Alain,
serialNumber=11103487200018993476,
email=alain.wahl@ilnas.etat.lu, title=Professional Person
Date: 2012.11.30 14:32:59 +01'00'