SlideShare ist ein Scribd-Unternehmen logo
1 von 24
Downloaden Sie, um offline zu lesen
Luxembourg (Luxembourg): Trusted List
Institut Luxembourgeois de la Normalisation, de l'Accréditation de la
Sécurité et qualité des produits et services
Scheme Information
TSL Version Identifier 3
TSL Sequence Number 14
TSL Type
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/TSLType/generic
Indicates a "generic" TSL that exclusively contains trust services which are approved or recognized by the scheme operator
owning the TSL through a process of direct oversight (whether voluntary or regulatory).
Scheme Operator Name Name en
Institut Luxembourgeois de la Normalisation, de
l'Accréditation, de la Sécurité et qualité des produits et
services (ILNAS)
Scheme Operator Name Name fr
Institut Luxembourgeois de la Normalisation, de
l'Accréditation, de la Sécurité et qualité des produits et
services (ILNAS)
Scheme Operator Address
Street Address en 34-40 Avenue de la Porte-Neuve
Locality en Luxembourg
State Or Province en
Postal Code en L-2227
Country Name en LU
Electronic Address URI mailto:confiance-numerique@ilnas.etat.lu
Electronic Address URI http://www.ilnas.public.lu
Scheme Name Name en
LU:Supervision/Accreditation Status List of certification
services from Certification Service Providers, which are
supervised/accredited by the referenced Member State for
compliance with the relevant provisions laid down in
Directive 1999/93/EC and its implementation in the
referenced Member State's laws.
Scheme Information URI Name en http://www.ilnas.public.lu/digital-trust
Status Determination
Approach
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/StatusDetn/appropriate
Services listed have their status determined by or on behalf of the Scheme Operator under an appropriate system for a
referenced Member State that allows for supervision (and, when applicable, for voluntary accreditation) of certification
service providers who are established on its territory (or established in a third country in the case of voluntary accreditation)
and issue qualified certificates to the public.
Scheme Type Community Rule URI
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/common
Descriptive text by which participation is denoted of the Member States scheme in a scheme of
schemes, where users can obtain policy/rules against which services included in the list shall be
assessed and from which the type of the TSL can be determined, and where users can obtain
description about how to use and interpret the content of the TSL implementation of the Trusted
List.
Scheme Type Community Rule URI
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/LU
Descriptive text where users can obtain the Luxembourg specific policy/rules against which
services included in the list shall be assessed in compliance with Luxembourg appropriate
supervision system and voluntary accreditation schemes, where users can obtain a referenced
Luxembourg specific description about how to use and interpret the content of the TSL
implementation of the Trusted List with regard to the certification services not related to the
issuing of QCs.
Scheme Territory LU
Page 1 / 24
Policy Or Legal Notice TSL Legal Notice en
The applicable legal framework for the present TSL
implementation of the Trusted List of supervised/accredited
Certification Service Providers for Luxembourg is the
Directive 1999/93/EC of the European Parliament and of the
Council of 13 December 1999 on a Community framework for
electronic signatures and its implementation in Luxembourg
laws. The accreditation scheme for all CSPs issuing qualified,
non-qualified certificates, or other services related to
electronic signature is based upon the Law of 14 August
2000, and Grand-Ducal Regulations of 1st June 2001 and 21
December 2004.
Historical Information Period 3653
Page 2 / 24
Pointer To Other TSL X509 Certificate
-----BEGIN CERTIFICATE-----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5
EOCl21E+8smfjylxt+O8JzaaaQsjKuwIDAQABo4GBMH8wEQYJYIZIAYb4QgEBBAQDAgbAMA4GA1
UdDwEB/wQEAwIE8DAfBgNVHSMEGDAWgBRIu6i/W4TSV0jkYemRIJHYHSXffzA5BgNVHR8EMjA
wMC6gLKAqhihodHRwOi8vY3JsLmdsb2JhbHNpZ24ubmV0L1NlcnZlclNpZ24uY3JsMA0GCSqGSIb
3DQEBBQUAA4IBAQA8tgDKlVnGcpyD/VVOegTqsPIvpXLpgXIv+QIOGd/VFvqI8EXiKJjr3+35n1S4
U7FVYcJeSdC8I905fwatYT7b/Zf7BOY9DysFYW6NT3VqXoZZhp/b394yVxZfSIkyDLb2xkNj04/l04Dy
LnfpOPzZBpxRpOfZ8bRUfTp2n52mXLVO+bDgO6pYM9sAhsnDkcVZruvOd+Y0397KQ2x8omYRW
CAhqYMCPgqnzQ3j7q4um8y8J93nOa5WhWFN7TFcaWEOF/lEDtfZr33XoM3+YX/+ehHIb7HSOcP
b34o4tz7t7RKSQ/WXkheL2kNta0WwMx59/qVJ2Ipa78swKos5Sd2z
-----END CERTIFICATE-----
Version 3
Serial Number 1208925819615896178901234
SigAlgName SHA1withRSA
Issuer DN CN=GlobalSign ServerSign CA, OU=ServerSign CA,
O=GlobalSign nv-sa, C=BE
Valid from 2010-02-24T09:05:13Z
Valid to 2013-03-28T12:04:50Z
Subject DN CN=ec.europa.eu, OU=DIGIT, O=European
Commission, L=Luxembourg, ST=Luxembourg, C=LU
Public Key Algo RSA
Public Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00
03 81 8d 00 30 81 89 02 81 81 00 c3 45 d8 a3 4c db
33 e5 11 8d 6e 7c 90 03 df 16 fb 93 fc 71 2d 7c 2a 24
92 7a 70 a4 c9 50 7b 66 29 e2 73 19 34 93 41 86 ea 77
5a 19 e7 2f ac 41 ed df eb 3f 8b e6 c0 f3 39 b1 0f 3a
27 d4 67 3e 45 48 fb 14 4e 43 09 d3 16 5c cd 7f ee 01
36 25 85 b6 13 62 2e d0 db 52 00 1b dd 56 32 ee f5 c3
ff f3 5a 76 b0 29 f2 9e 3e 44 38 29 76 d4 4f bc b2 67
e3 ca 5c 6d f8 ef 09 cd a6 9a 42 c8 ca bb 02 03 01 00
01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 48 bb a8 bf 5b 84 d2 57 48 e4 61 e9 91 20 91
d8 H......WH.a.....
0010: 1d 25 df 7f ....
]
]
Certificate
Policies
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.globalsign.net/ServerSign.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
Page 3 / 24
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_Encipherment
Data_Encipherment
]
Basic Constraints
Thumbprint Algo SHA256
Thumbprint 81 bc 61 fa 39 fa f5 b4 d5 d8 77 98 be 53 bd 68 68 af
06 ff 05 78 bf a9 3b 15 76 5a 6f da 8d ad
Thumbprint Algo SHA1
Thumbprint 5e 98 89 3b ed 90 44 ef b0 9a 94 c4 8a fd b6 52 b5 19
70 8f
TSL Location
https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-
hr.pdf
TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/TSLType/schemes
A TSL implementation of a compiled list of pointers towards Member States
supervision/accreditation status lists of certification services from certification service providers
which are supervised/accredited by the referenced Member State owning the pointed TSL
implementation for compliance with the relevant provisions laid down in the eSignature Directive
1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on a
Community framework for electronic signatures, through a process of direct oversight (whether
voluntary or regulatory).
Scheme Operator
Name
European Commission
Scheme Type
Community Rules
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/CompiledList
A URI pointing towards a descriptive text where users can obtain information about the scheme of
schemes type (i.e. a TSL listing pointers to all Member States' Trusted Lists published and
maintained in the form of a TSL) and the relevant driving rules and policy.
Scheme Territory EU
Mime Type application/pdf
Page 4 / 24
Pointer To Other TSL X509 Certificate
-----BEGIN CERTIFICATE-----
MIIHPDCCBSSgAwIBAgIBcjANBgkqhkiG9w0BAQsFADAxMQswCQYDVQQGEwJFUzERMA8GA1U
ECgwIRk5NVC1SQ00xDzANBgNVBAMMBklTQSBDQTAeFw0xMTExMTYxNTExMDdaFw0xNTEx
MTYxNTExMDdaME0xCzAJBgNVBAYTAkJFMRwwGgYDVQQKDBNFVVJPUEVBTiBDT01NSVNTS
U9OMSAwHgYDVQQDDBcoU0lHTikgQU5ORUxJIEFORFJFU1NPTjCCASIwDQYJKoZIhvcNAQEBB
QADggEPADCCAQoCggEBAMw881fbxBn5Eq64Hf6pqEqn0Intg49k5D+E2JBMcyeOMYE4WwuzVq
s7fuKMX5mhiFw7llVx42S7GIDnKa6ascF7irISsYTGOtD6dGt8OEOQkG5i24wxT3we63VW1W/PEO0
WoRjkPDBqgljnqcLn+WJLr3Yl9fpkxyT+H3pl0jnGkGi7UUKEDuoCglFy9Tb1TE+eVNiGWmfskRy6q
9Pioujp2FqrwNm95VAkLFGoNF4iZQda79bgjvAYnA5p4QXgr/5sWZjgsa3Ea9PlRwEvO7C8ndnRE/P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x
vPUZOTVQtUkNNLEM9RVM/Y2VydGlmaWNhdGVSZXZvY2F0aW9uTGlzdDtiaW5hcnk/YmFzZT9v
YmplY3RjbGFzcz1jUkxEaXN0cmlidXRpb25Qb2ludIYraHR0cDovL3d3dy5jZXJ0LmZubXQuZXMvY3
Jsc19JU0FjYS9DUkwyLmNybDANBgkqhkiG9w0BAQsFAAOCAgEALIKumRPBo9NIYyzm4LSJklE9C
msirJC89MPcFiC9+vg4YrO9Mmakr8G5ZAVZf+Zr6HgLcIf93/BSgE4UDFD9mAROPDElqx2ppg1+f
oIvlqg57EiHH2kOS4IYJEJpWCs4IqcBkSKcS5vJ5XVpNJL4elpeMQjsGoqjmkKDr1IeZQVOxOiW/bNh
M9Fw6R1aMMLbnziwAgHWDpmIj2Se74HuS3ca0ctm9fAPp/2Y87bgZ1ETs9A6wc4GxYEuGTwh1H
PbDB6tgjSnjH0hY3qBITjB8IM0xGvUR9dQkt8Ez4dvyxcaFlyCMfLaeMf8jlJOv4uU1yRRT9wESIj5Gc
oE43cy1cuvRMifqYhoi3KPojJaLTV7ASy1X0yuBWyg0jGyvE6aTIAu3XGCwdGYB1WnSzEUPJboqcyJ
ydkXXxnBKFchw602pVB0ITUqitGH+Kfix2mQQf+v0RDEWQU3WdADNHc+cqoc7sXkJXkO657dYZ
T/Ey5MR+gXRm6oK52iXIqjM8kbDqCqAOHVC73u+bUvh0y5B5PjGYuE2K9xK36ooavh5ytF/kY+y0
Ju804CRF00b4wKcibGxplOrU1g+ncONNmBHGbsLULXrum8+fsD3O04Mf0t0O9Mt/ZwAZTa8Cwq
/0pqOWdRqucV7pq/A7fEnRb5AdBaAzxqrXVaa92NkScAm80=
-----END CERTIFICATE-----
Version 3
Serial Number 114
SigAlgName SHA256withRSA
Issuer DN CN=ISA CA, O=FNMT-RCM, C=ES
Valid from 2011-11-16T15:11:07Z
Valid to 2015-11-16T15:11:07Z
Subject DN CN=(SIGN) ANNELI ANDRESSON, O=EUROPEAN
COMMISSION, C=BE
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 cc 3c f3
57 db c4 19 f9 12 ae b8 1d fe a9 a8 4a a7 d0 89 ed 83
8f 64 e4 3f 84 d8 90 4c 73 27 8e 31 81 38 5b 0b b3 56
ab 3b 7e e2 8c 5f 99 a1 88 5c 3b 96 55 71 e3 64 bb 18
80 e7 29 ae 9a b1 c1 7b 8a b2 12 b1 84 c6 3a d0 fa 74
6b 7c 38 43 90 90 6e 62 db 8c 31 4f 7c 1e eb 75 56 d5
6f cf 10 ed 16 a1 18 e4 3c 30 6a 82 58 e7 a9 c2 e7 f9
62 4b af 76 25 f5 fa 64 c7 24 fe 1f 7a 65 d2 39 c6 90
68 bb 51 42 84 0e ea 02 82 51 72 f5 36 f5 4c 4f 9e 54
d8 86 5a 67 ec 91 1c ba ab d3 e2 a2 e8 e9 d8 5a ab c0
d9 bd e5 50 24 2c 51 a8 34 5e 22 65 07 5a ef d6 e0 8e
f0 18 9c 0e 69 e1 05 e0 af fe 6c 59 98 e0 b1 ad c4 6b
d3 e5 47 01 2f 3b b0 bc 9d d9 d1 13 f3 d3 50 dc 1a 4a
63 99 b2 63 c7 fe 4b 02 0a 77 d3 0e aa 9e 84 75 67 af
2d ca e9 02 14 2a 14 6c a1 3d 66 eb 4a af e1 42 ab be
bb 02 03 01 00 01
Page 5 / 24
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 47 ed f8 63 f0 99 af 5e fe 7e 0e 5c 58 cb fe e2
G..c........X...
0010: 35 37 a6 bd 57..
]
]
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.6.1.4.1.5734.3.4.1
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://www.cert.fnmt.es/dpcs/]
]
, PolicyQualifierInfo: [
UserNotice: [
ObjectIdentifier: 1.3.6.1.5.5.7.2.2
NoticeReference: null
ExplicitText: Qualified certificate. Under the usage
conditions asserted in the FNMT-RCM CPS (106, Jorge
Juan street,28009, Madrid, Spain).
]]
]]
,
PolicyInformation: [
CertPolicyId: 0.4.0.1456.1.1
PolicyQualifiers: null]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
ldap://ldapISAca.cert.fnmt.es/CN=CRL2,cn=ISA%20C
A,o=FNMT-
RCM,C=ES?certificateRevocationList;binary?base?obj
ectclass=cRLDistributionPoint, URIName:
http://www.cert.fnmt.es/crls_ISAca/CRL2.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 4a 14 11 ff b4 39 ee 7d 7d 54 6c fe b5 b6 33 42
J....9...Tl...3B
0010: a1 9a 50 ec ..P.
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
Non_repudiation
]
Page 6 / 24
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:false
PathLen: undefined
]
Thumbprint Algo SHA256
Thumbprint 5d 39 e8 f1 16 69 50 e9 97 38 32 ad 26 6f 06 74 2c c4
a9 48 48 69 df 61 ef cb 84 9d b2 fc 60 4a
Thumbprint Algo SHA1
Thumbprint a8 4e 18 97 24 1f 85 c5 55 d0 3f 48 f5 a1 95 d6 3c 6a
a6 5b
Page 7 / 24
X509 Certificate
-----BEGIN CERTIFICATE-----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pf
aZ4yGGIPslRy9pbRkfXSeeneJAo0Ixiu3QJwIDAQABo4ICVDCCAlAwDAYDVR0TAQH/BAIwADBgBgg
rBgEFBQcBAQRUMFIwIwYIKwYBBQUHMAGGF2h0dHA6Ly9vY3NwLmx1eHRydXN0Lmx1MCsG
CCsGAQUFBzAChh9odHRwOi8vY2EubHV4dHJ1c3QubHUvTFRRQ0EuY3J0MIIBHQYDVR0gBIIBF
DCCARAwggECBggrgSsBAQIEATCB9TCBxwYIKwYBBQUHAgIwgboagbdMdXhUcnVzdCBRdWFsa
WZpZWQgQ2VydGlmaWNhdGUgb24gQ0NTRCBjb21wbGlhbnQgd2l0aCBFVFNJIFRTIDEwMSA0N
TYgUUNQKyBjZXJ0aWZpY2F0ZSBwb2xpY3kuIEtleSBHZW5lcmF0aW9uIGJ5IENTUC4gU29sZSBB
dXRob3Jpc2VkIFVzYWdlOiBTdXBwb3J0IG9mIFF1YWxpZmllZCBFbGVjdHJvbmljIFNpZ25hdHVyZS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-----END CERTIFICATE-----
Version 3
Serial Number 87649
SigAlgName SHA1withRSA
Issuer DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU
Valid from 2009-12-23T10:35:56Z
Valid to 2012-12-23T10:35:56Z
Subject DN T=Professional Person, EMAILADDRESS=Karel.De-
Vriendt@ec.europa.eu,
SERIALNUMBER=10100332110004749378,
GIVENNAME=Karel Lodewijk M, SURNAME=De
Vriendt, CN=Karel Lodewijk M De Vriendt, OU=NA,
O=European Commission, L=BE, C=BE
Public Key Algo RSA
Public Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00
03 81 8d 00 30 81 89 02 81 81 00 bd e8 90 6a 9e 30
a6 02 4e 37 2c 3b 99 0c cb b9 94 d1 8a ef f5 10 9c 90
4b 0e 45 2a 37 62 5b fd 24 d0 48 12 67 44 97 21 09 8f
43 9c ab 6a 60 6f 5c b9 26 43 47 1b c8 52 4b 2c a8 ef
d6 a4 5b bf 23 97 ce f4 8e 26 bc b1 83 f6 1e 28 b7 cf
c6 91 19 ed 6c 49 77 0a 73 25 44 a6 49 90 07 5c 48 7c
2e aa 7b 8d a5 f6 99 e3 21 86 20 fb 25 47 2f 69 6d 19
1f 5d 27 9e 9d e2 40 a3 42 31 8a ed d0 27 02 03 01 00
01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de
3f .......w.L..MC..
0010: cd 29 64 05 ..d.
]
]
Page 8 / 24
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.2.4.1
PolicyQualifiers: [PolicyQualifierInfo: [
UserNotice: [
ObjectIdentifier: 1.3.6.1.5.5.7.2.2
NoticeReference: null
ExplicitText: LuxTrust Qualified Certificate on CCSD
compliant with ETSI TS 101 456 QCP+ certificate
policy. Key Generation by CSP. Sole Authorised Usage:
Support of Qualified Electronic Signature.
]]
, PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://repository.luxtrust.lu]
]
]]
,
PolicyInformation: [
CertPolicyId: 0.4.0.1456.1.1
PolicyQualifiers: null]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTQCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 4c 03 3b 25 5e dc 85 79 L......y
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Non_repudiation
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:false
PathLen: undefined
]
Thumbprint Algo SHA256
Thumbprint d5 49 51 fe bb c5 9d 2c 2e c0 1a cc d9 2c cd 8c 9d 2c
74 44 c2 e5 51 ba 7e c0 de 62 2c 74 14 8c
Thumbprint Algo SHA1
Thumbprint 66 0c bd 62 c4 2e a2 8d 8b 98 37 54 bb e7 b1 4a 86 4e
01 64
TSL Location
https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-
mp.xml
Page 9 / 24
TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/TSLType/schemes
A TSL implementation of a compiled list of pointers towards Member States
supervision/accreditation status lists of certification services from certification service providers
which are supervised/accredited by the referenced Member State owning the pointed TSL
implementation for compliance with the relevant provisions laid down in the eSignature Directive
1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on a
Community framework for electronic signatures, through a process of direct oversight (whether
voluntary or regulatory).
Scheme Operator
Name
European Commission
Scheme Type
Community Rules
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/schemerules/CompiledList
A URI pointing towards a descriptive text where users can obtain information about the scheme of
schemes type (i.e. a TSL listing pointers to all Member States' Trusted Lists published and
maintained in the form of a TSL) and the relevant driving rules and policy.
Scheme Territory EU
Mime Type application/vnd.etsi.tsl+xml
List Issue Date Time 2012-11-30T00:00:00Z
Next Update dateTime 2013-05-29T00:00:00Z
Distribution Point http://www.ilnas.public.lu/tsl-xml
List of Trust Service Providers
TSP 1 Information
TSP Name Name en LuxTrust S.A.
Street Address en IVY Building - 13-15 Parc d'Activités
Locality en Capellen
State Or Province en
Postal Code en L-8308
Country Name en LU
Electronic Address URI mailto:info@luxtrust.lu
TSP Information URI URI en https://www.luxtrust.lu/en/faq
List of Services
TSP 1, Service 1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU
Page 10 / 24
DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----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e
7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBA
DArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvh
CAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXl
rKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0E
uY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQE
AapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO9
2PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4
nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+
MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOj
LlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg==
-----END CERTIFICATE-----
Version 3
Serial Number 1003
SigAlgName SHA1withRSA
Issuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LU
Valid from 2008-06-05T09:25:24Z
Valid to 2016-10-18T10:40:34Z
Subject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57
cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e6
68 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 00
28 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee
0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6
f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3
f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 19
9b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 09
21 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45
d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 79
99 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 16
7c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7f
a8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df
3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 78
37 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b
02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1
...0...q.Gp.....
0010: 8d df 8c 25 ....
]
]
Page 11 / 24
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.1.0
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de
3f .......w.L..MC..
0010: cd 29 64 05 ..d.
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa
05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7
Thumbprint Algo SHA1
Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e ac
a2 aa
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2009-10-13T00:00:00Z
TSP 1, Service 1, History N.1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Qualified Certification Authority
Page 12 / 24
Digital Id
X509 Subject
Name
CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2008-07-29T00:00:00Z
TSP 1, Service 2
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/TSA
A Time stamping authority.
Service Name Name en LuxTrust Time Stamping Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU
Page 13 / 24
DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----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e
7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBA
DArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvh
CAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXl
rKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0E
uY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQE
AapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO9
2PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4
nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+
MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOj
LlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg==
-----END CERTIFICATE-----
Version 3
Serial Number 1003
SigAlgName SHA1withRSA
Issuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LU
Valid from 2008-06-05T09:25:24Z
Valid to 2016-10-18T10:40:34Z
Subject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57
cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e6
68 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 00
28 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee
0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6
f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3
f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 19
9b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 09
21 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45
d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 79
99 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 16
7c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7f
a8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df
3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 78
37 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b
02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1
...0...q.Gp.....
0010: 8d df 8c 25 ....
]
]
Page 14 / 24
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.1.0
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: http://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de
3f .......w.L..MC..
0010: cd 29 64 05 ..d.
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
DigitalSignature
Non_repudiation
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa
05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7
Thumbprint Algo SHA1
Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e ac
a2 aa
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2009-10-13T00:00:00Z
Service Information Extension
Additional
Service
Information
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/TSS-QC
a time stamping service as part of a service from a certification service provider issuing Qualified
Certificates that issue TST that can be used in the qualified signature verification process to
ascertain and extend the signature validity when the QC is revoked or expired.
Page 15 / 24
TSP 1, Service 3
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Global Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LU
Page 16 / 24
DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----
MIID5zCCAs+gAwIBAgICDJcwDQYJKoZIhvcNAQELBQAwRDELMAkGA1UEBhMCTFUxFjAUBgN
VBAoTDUx1eFRydXN0IHMuYS4xHTAbBgNVBAMTFEx1eFRydXN0IEdsb2JhbCBSb290MB4XDTEx
MTEyMjA5MzQyNFoXDTE3MTEyMjA5MzQyNFowTDELMAkGA1UEBhMCTFUxFjAUBgNVBAoTD
Ux1eFRydXN0IFMuQS4xJTAjBgNVBAMTHEx1eFRydXN0IEdsb2JhbCBRdWFsaWZpZWQgQ0Ewg
gEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCo0Cl9yek22xZb2PNZN0gIgx26qgQChKJ
3az/r+qhAv/d/jVBLZy5mQvKRQFrvnLZp5gY5RzrgIcMyZxCwCitQ+MyLPiUYZ4mg/lUrHfOfhWRjY
aJY4Dz+M69icdzAsKuVrfsurJ/UEmaIkGvgjBzeCd0qd8BXYnnt6GAT9bAsJ7Vh8lDyTho4D1mbude6j
mupBTRNqW1TqnuzeJcooI8JAWkWZ0X4gGXzG0iZlC4irIlB/aaQiJoo+8QVr511T+zAJSJv2CpPS68d
pL7AZBTw7/fhsyF84HcBf4tCH7Qhl9zFrdaWGdqrZiebSM4SeTBAnuuKUdYuuZyjoAHFnjj3AgMBA
AGjgdowgdcwDwYDVR0TBAgwBgEB/wIBADBDBgNVHSAEPDA6MDgGCCuBKwEBAQoDMCwwK
gYIKwYBBQUHAgEWHmh0dHBzOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTALBgNVHQ8EBAMC
AQYwHwYDVR0jBBgwFoAUFxWFiQkvJIdvPx0b5PKWeYNIE84wMgYDVR0fBCswKTAnoCWgI4Yha
HR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdSQ0EuY3JsMB0GA1UdDgQWBBQ0Fhvx02RnYkyjNL
wNs1OkfKHxFzANBgkqhkiG9w0BAQsFAAOCAQEAGPCWTo1SQy6Kmpwin+GaWVW9h2JO3Qwr6
qVwZAQHXPhZGQTD+ghIxN949SGyoMmkGTvJjOSaIs8qJ5lGtDWJuy056rN5FCc2P+0qYofpGdNg
SkyRY3xtuKteEPcoi+eFBphY+dlilSPXm3j6Vp/6BRb70Zd35O1Zic95ZUNCxDDVkaDbuN9tjGIBKhn
q/ExtpheEdZJPjppVXpsBrCUUpJ0A9oSSFOQewwKSMD/vJKF32M9A2TlRd62XdHeNJrahdU/tO55f
9tz3ekl/aKoS2khJxMfBvdvlw2Yc2g02g5rYsBxrSphph6IjqIkALM95jbm9T2Xo2CSROTAtprdhKw==
-----END CERTIFICATE-----
Version 3
Serial Number 3223
SigAlgName SHA256withRSA
Issuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LU
Valid from 2011-11-22T09:34:24Z
Valid to 2017-11-22T09:34:24Z
Subject DN CN=LuxTrust Global Qualified CA, O=LuxTrust S.A.,
C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 a8 d0 29
7d c9 e9 36 db 16 5b d8 f3 59 37 48 08 83 1d ba aa 04
02 84 a2 77 6b 3f eb fa a8 40 bf f7 7f 8d 50 4b 67 2e
66 42 f2 91 40 5a ef 9c b6 69 e6 06 39 47 3a e0 21 c3
32 67 10 b0 0a 2b 50 f8 cc 8b 3e 25 18 67 89 a0 fe 55
2b 1d f3 9f 85 64 63 61 a2 58 e0 3c fe 33 af 62 71 dc
c0 b0 ab 95 ad fb 2e ac 9f d4 12 66 88 90 6b e0 8c 1c
de 09 dd 2a 77 c0 57 62 79 ed e8 60 13 f5 b0 2c 27 b5
61 f2 50 f2 4e 1a 38 0f 59 9b b9 d7 ba 8e 6b a9 05 34
4d a9 6d 53 aa 7b b3 78 97 28 a0 8f 09 01 69 16 67 45
f8 80 65 f3 1b 48 99 94 2e 22 ac 89 41 fd a6 90 88 9a
28 fb c4 15 af 9d 75 4f ec c0 25 22 6f d8 2a 4f 4b af 1d
a4 be c0 64 14 f0 ef f7 e1 b3 21 7c e0 77 01 7f 8b 42
1f b4 21 97 dc c5 ad d6 96 19 da ab 66 27 9b 48 ce 12
79 30 40 9e eb 8a 51 d6 2e b9 9c a3 a0 01 c5 9e 38 f7
02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79
........o......y
0010: 83 48 13 ce .H..
]
]
Page 17 / 24
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.10.3
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: https://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTGRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 34 16 1b f1 d3 64 67 62 4c a3 34 bc 0d b3 53
a4 4....dgbL.4...S.
0010: 7c a1 f1 17 ....
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint db 87 94 17 ec 14 24 e4 e5 7a 3c 91 ec 80 4c 5d e4 c6
fd e7 3c c8 28 1c d2 f5 ba ed 76 dd 65 48
Thumbprint Algo SHA1
Thumbprint d5 0c f3 89 87 71 d6 31 bd 29 9b 46 94 01 74 29 c2 6e
f5 3a
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-11-30T00:00:00Z
TSP 1, Service 3, History N.1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en LuxTrust Global Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LU
Page 18 / 24
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-08-01T00:00:00Z
TSP 1, Service 4
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/TSA
A Time stamping authority.
Service Name Name en LuxTrust Global Time Stamping Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LU
Page 19 / 24
DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----
MIID6jCCAtKgAwIBAgICDtswDQYJKoZIhvcNAQELBQAwRDELMAkGA1UEBhMCTFUxFjAUBgNV
BAoTDUx1eFRydXN0IHMuYS4xHTAbBgNVBAMTFEx1eFRydXN0IEdsb2JhbCBSb290MB4XDTEy
MDgyODEzMDc0N1oXDTIxMDMxNzA5NTEzN1owTzELMAkGA1UEBhMCTFUxFjAUBgNVBAoTD
Ux1eFRydXN0IFMuQS4xKDAmBgNVBAMTH0x1eFRydXN0IEdsb2JhbCBUaW1lc3RhbXBpbmcgQ
0EwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC62E7tAeIGoLM3xRc4SNpdb9+Me
ejLq91VPecvB8sVHi4SkMUTIebWG13HJqGLKcn9paO650PehXWEbgm2aUKRNSimM74pNBhYB0
sa0rQui8npZbp1x5ilDwqiTkJ1iFtV5bYrH8hJ0QpX6u4clUEmO9h/Ao/4eXW2wS8hShwDgc0eNu+4S
RoXM+ngPrqZetKYD6bEVFw0PSLfCJpGx82JU6/7+Ml0vB6Y/JMcU6xH5u6XdUyayjIvBmKYGSBRC
eL7YrJKnBs8hCurHf8pmAlTDdR481dYkIWgKYY6xq4V5IuDSICRcAH2WURQcjyFi/s6kxJMvzuAbH
8oxuy8HFyNAgMBAAGjgdowgdcwDwYDVR0TBAgwBgEB/wIBADBDBgNVHSAEPDA6MDgGCCuB
KwEBAQoIMCwwKgYIKwYBBQUHAgEWHmh0dHBzOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTA
LBgNVHQ8EBAMCAQYwHwYDVR0jBBgwFoAUFxWFiQkvJIdvPx0b5PKWeYNIE84wMgYDVR0fBC
swKTAnoCWgI4YhaHR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdSQ0EuY3JsMB0GA1UdDgQWBBT
1vyLGHf7yBoMjXV7CJZGUGR08hzANBgkqhkiG9w0BAQsFAAOCAQEAWRIoTruey0uMSs3+g0yT3
IefiTtU10fqOuyOmK8q3MUjmWhwX06CJIbWuTAQ6X4oAEGS0A0TWVHgYuGZwSefMz/CAsDUtmI
z9EgS6bsFVoF+fTA68BGOT9vBlEndC3tKTjUn0R0ukWkTjX5gSxFPS9fJlPWPpBv4XPIiMMH4cpy1
dUj5QRF26xxynJGbx1Uf3uxlJbp6S8+P2mmKFaUp01NMxwFaRyE3g8KJOVJhAurO/8QrDUQH48+
HimlMVzxAVhZ/r5ux6auyNafqsjcQ0xkMgRKqPtNZQ5LChbGZyRxO6Itg+JH4CaOkB8mwwVyzJNz
EgbArJreC4sBajUdjVw==
-----END CERTIFICATE-----
Version 3
Serial Number 3803
SigAlgName SHA256withRSA
Issuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LU
Valid from 2012-08-28T13:07:47Z
Valid to 2021-03-17T09:51:37Z
Subject DN CN=LuxTrust Global Timestamping CA, O=LuxTrust
S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 ba d8 4e
ed 01 e2 06 a0 b3 37 c5 17 38 48 da 5d 6f df 8c 79 e8
cb ab dd 55 3d e7 2f 07 cb 15 1e 2e 12 90 c5 13 21 e6
d6 1b 5d c7 26 a1 8b 29 c9 fd a5 a3 ba e7 43 de 85 75
84 6e 09 b6 69 42 91 35 28 a6 33 be 29 34 18 58 07
4b 1a d2 b4 2e 8b c9 e9 65 ba 75 c7 98 a5 0f 0a a2 4e
42 75 88 5b 55 e5 b6 2b 1f c8 49 d1 0a 57 ea ee 1c 95
41 26 3b d8 7f 02 8f f8 79 75 b6 c1 2f 21 4a 1c 03 81
cd 1e 36 ef b8 49 1a 17 33 e9 e0 3e ba 99 7a d2 98 0f
a6 c4 54 5c 34 3d 22 df 08 9a 46 c7 cd 89 53 af fb f8
c9 74 bc 1e 98 fc 93 1c 53 ac 47 e6 ee 97 75 4c 9a ca
32 2f 06 62 98 19 20 51 09 e2 fb 62 b2 4a 9c 1b 3c 84
2b ab 1d ff 29 98 09 53 0d d4 78 f3 57 58 90 85 a0 29
86 3a c6 ae 15 e4 8b 83 48 80 91 70 01 f6 59 44 50 72
3c 85 8b fb 3a 93 12 4c bf 3b 80 6c 7f 28 c6 ec bc 1c
5c 8d 02 03 01 00 01
Authority Key
Identifier
ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79
........o......y
0010: 83 48 13 ce .H..
]
]
Page 20 / 24
Certificate
Policies
ObjectId: 2.5.29.32 Criticality=false
CertificatePolicies [
[
PolicyInformation: [
CertPolicyId: 1.3.171.1.1.1.10.8
PolicyQualifiers: [PolicyQualifierInfo: [
CPSuri: [
object identifier: 1.3.6.1.5.5.7.2.1
uri: https://repository.luxtrust.lu]
]
]]
]]
CRL Distribution
Points
ObjectId: 2.5.29.31 Criticality=false
CRLDistributionPoints [
1 CRL Distribution Points:
Distribution Point: [
Distribution Point Name: [URIName:
http://crl.luxtrust.lu/LTGRCA.crl]
Reason Flags: null
Issuer: null
]
]
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: f5 bf 22 c6 1d fe f2 06 83 23 5d 5e c2 25 91 94
................
0010: 19 1d 3c 87 ....
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]
Basic Constraints ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]
Thumbprint Algo SHA256
Thumbprint 53 0b 1d 74 9b e7 ad 3a 7b b7 83 26 b2 81 db cc 5d f6
ea 5f 41 4a 7b 29 b9 70 b6 54 8b 04 49 07
Thumbprint Algo SHA1
Thumbprint db 5c ea 71 c0 1f da d8 59 5a 57 65 51 ec 2a 00 a9 86
51 94
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited
An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance
with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-11-30T00:00:00Z
Service Information Extension
Additional
Service
Information
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/TSS-QC
a time stamping service as part of a service from a certification service provider issuing Qualified
Certificates that issue TST that can be used in the qualified signature verification process to
ascertain and extend the signature validity when the QC is revoked or expired.
TSP 1, Service 4, History N.1
Page 21 / 24
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/TSA
A Time stamping authority.
Service Name Name en LuxTrust Global Time Stamping Authority
Digital Id
X509 Subject
Name
CN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LU
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2012-10-03T00:00:00Z
Service Information Extension
Additional
Service
Information
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/TSS-QC
a time stamping service as part of a service from a certification service provider issuing Qualified
Certificates that issue TST that can be used in the qualified signature verification process to
ascertain and extend the signature validity when the QC is revoked or expired.
TSP 2 Information
TSP Name Name en SeMarket Certification Authority S.A.
Street Address en Parc d'Activités "Syrdall", 6
Locality en Munsbach
State Or Province en
Postal Code en L-5365
Country Name en LU
Electronic Address URI mailto:confiance-numerique@ilnas.etat.lu
TSP Information URI URI en http://www.ilnas.public.lu/semarket
List of Services
TSP 2, Service 1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en SeMarket Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=SeMarket CA Root,O=SeMarket CA S.A.,C=LU
Page 22 / 24
DigitalId X509 Certificate
-----BEGIN CERTIFICATE-----
MIIDUjCCAjqgAwIBAgIQAPwW+ck6S1YDODOUWMrr0DANBgkqhkiG9w0BAQUFADBDMQswCQ
YDVQQGEwJMVTEZMBcGA1UEChMQU2VNYXJrZXQgQ0EgUy5BLjEZMBcGA1UEAxMQU2VNYXJ
rZXQgQ0EgUm9vdDAeFw0wODA3MjMxMDAwMzNaFw0yNDA3MjMwOTUzMDhaMEMxCzAJBg
NVBAYTAkxVMRkwFwYDVQQKExBTZU1hcmtldCBDQSBTLkEuMRkwFwYDVQQDExBTZU1hcmtl
dCBDQSBSb290MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt8rPRP9UGxVAFjWzD
5ClKdSc9xZZkVldNaynwBwuk2y6BLYc9mxIDIEQ+MGMVfu1bYuWxeDDry4HmNNqGmyFVyvgEe
kwwYF3hOAkP+wYGo2li4BWJsJrRWgA2Lg7YdBJ7TCFat/Gk9kdsNOnuBHw3ZXI6fq8ejNBRk2ffOH
bIMp60D064b0fDHL5wRCOgztxX0iCoStZHRgKYhDyfbQlZfESmeXkG7sfatuqIs1GxbfxqIQ7VgZexd
DtJh8gFAiZLDUtoB3d+LCPgc2I57NMkBWrGHo+HxNq5BRwSWOfwZIcTHGyQHYKBdfx6qbkFqP
+/aYgbxOx10unzMLyywfYDQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/w
QEAwIBBjAdBgNVHQ4EFgQU87dhyhzwq6SpDcQJ4Zq6g48MkOAwDQYJKoZIhvcNAQEFBQADgg
EBAHa6r27PR3/cVpW8i7GpQfeNgQvcl3GLwhRAjIrUathJI/J1ECSY4uxamKmzYKukKE+aWgVC0uV
RvPwzytdjwcLqI8lzROk6ZjD4tinlkA18nySp95sexb8be5f3n5MQzuIvfM+iD2KAVme+zigRmiRqXOij
KoOsO5VmCV2WOfcd6u07Sp6BFffbzpg4AJCDHLDeQmpkQmV7GzXSxA38ufNKf+gPGzsLqYoxL/
MmeAUUDFgAWKb4WdqhbBsOd1Y0LSMBn/MjD1u+JURsoWzrz1gVo7/RK0iBWqAolppb0oMFwrS
Kg1QqM3DaJRjG0PBmSaNHXBbZMcEeXi0afD5r6+k=
-----END CERTIFICATE-----
Version 3
Serial Number 1308924811451483386725277668209257424
SigAlgName SHA1withRSA
Issuer DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LU
Valid from 2008-07-23T10:00:33Z
Valid to 2024-07-23T09:53:08Z
Subject DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LU
Public Key Algo RSA
Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05
00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 b7 ca cf
44 ff 54 1b 15 40 16 35 b3 0f 90 a5 29 d4 9c f7 16 59
91 59 5d 35 ac a7 c0 1c 2e 93 6c ba 04 b6 1c f6 6c 48
0c 81 10 f8 c1 8c 55 fb b5 6d 8b 96 c5 e0 c3 af 2e 07
98 d3 6a 1a 6c 85 57 2b e0 11 e9 30 c1 81 77 84 e0 24
3f ec 18 1a 8d a5 8b 80 56 26 c2 6b 45 68 00 d8 b8 3b
61 d0 49 ed 30 85 6a df c6 93 d9 1d b0 d3 a7 b8 11 f0
dd 95 c8 e9 fa bc 7a 33 41 46 4d 9f 7c e1 db 20 ca 7a
d0 3d 3a e1 bd 1f 0c 72 f9 c1 10 8e 83 3b 71 5f 48 82
a1 2b 59 1d 18 0a 62 10 f2 7d b4 25 65 f1 12 99 e5 e4
1b bb 1f 6a db aa 22 cd 46 c5 b7 f1 a8 84 3b 56 06 5e
c5 d0 ed 26 1f 20 14 08 99 2c 35 2d a0 1d dd f8 b0 8f
81 cd 88 e7 b3 4c 90 15 ab 18 7a 3e 1f 13 6a e4 14 70
49 63 9f c1 92 1c 4c 71 b2 40 76 0a 05 d7 f1 ea a6 e4
16 a3 fe fd a6 20 6f 13 b1 d7 4b a7 cc c2 f2 cb 07 d8
0d 02 03 01 00 01
Authority Key
Identifier
Certificate
Policies
CRL Distribution
Points
Subject Key
Identifier
ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: f3 b7 61 ca 1c f0 ab a4 a9 0d c4 09 e1 9a ba 83
..a.............
0010: 8f 0c 90 e0 ....
]
]
Key Usage ObjectId: 2.5.29.15 Criticality=true
KeyUsage [
Key_CertSign
Crl_Sign
]
Page 23 / 24
Basic Constraints ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]
Thumbprint Algo SHA256
Thumbprint a4 4e 8e fd 1e fc 78 f2 44 5f 1a 9f 62 63 9d 8f ba 21 20
9c 9e f3 1e 87 11 77 7f d2 c8 2b 07 12
Thumbprint Algo SHA1
Thumbprint ef ab 25 3d 0e 25 79 fe c0 bf 88 ed a0 24 a7 98 3e 57
ca d9
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/supervisionrevoked
Having been previously supervised, the service and potentially the CSP itself has failed to continue to comply with the
provisions laid down in Directive 1999/93/EC. Accordingly the service has been required to cease its operations and must be
considered as ceased for the above reason.
Status Starting Time 2009-09-11T00:00:00Z
Scheme Service Definition URI en http://www.ilnas.public.lu/semarket
Service Information Extension
Qualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/QCWithSSCD
It is ensured by the certification service provider and controlled (supervision model) or audited
(accreditation model) by the referenced Member State (respectively its Supervisory Body or
Accreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC)
identified in "Service digital identity" and further identified by the filters information used to
further identify under the "Sdi" identified certification service that precise set of Qualified
Certificates for which this additional information is required with regards to the presence or
absence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. that
that the private key associated with the public key in the certificate is stored in a Secure
Signature Creation Device conformant with annex III of Directive 1999/93/EC [1]).
Criteria List
assert="all"
Policy
Identifier
Identifier 1.3.6.1.4.1.25969.8.2.1
Description Qualified Certificate
TSP 2, Service 1, History N.1
Service Type Identifier
http://uri.etsi.org/TrstSvc/Svctype/CA/QC
A Certification authority issuing Qualified Certificates.
Service Name Name en SeMarket Qualified Certification Authority
Digital Id
X509 Subject
Name
CN=SeMarket CA Root,O=SeMarket CA S.A.,C=LU
Service Status
http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision
The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.
Status Starting Time 2007-11-27T00:00:00Z
Service Information Extension
Qualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-
TrustedList/SvcInfoExt/QCWithSSCD
It is ensured by the certification service provider and controlled (supervision model) or audited
(accreditation model) by the referenced Member State (respectively its Supervisory Body or
Accreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC)
identified in "Service digital identity" and further identified by the filters information used to
further identify under the "Sdi" identified certification service that precise set of Qualified
Certificates for which this additional information is required with regards to the presence or
absence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. that
that the private key associated with the public key in the certificate is stored in a Secure
Signature Creation Device conformant with annex III of Directive 1999/93/EC [1]).
Criteria List
assert="all"
Policy
Identifier
Identifier 1.3.6.1.4.1.25969.8.2.1
Description Qualified Certificate
Page 24 / 24
Alain Wahl
Digitally signed by Alain Wahl
DN: c=LU, l=LU, o=ILNAS, ou=NA, cn=Alain Wahl,
sn=Wahl, givenName=Alain,
serialNumber=11103487200018993476,
email=alain.wahl@ilnas.etat.lu, title=Professional Person
Date: 2012.11.30 14:32:59 +01'00'

Weitere ähnliche Inhalte

Andere mochten auch (16)

Su dung whm cp full
Su dung whm cp fullSu dung whm cp full
Su dung whm cp full
 
Care, Society and Technology
Care, Society and TechnologyCare, Society and Technology
Care, Society and Technology
 
MI1
MI1MI1
MI1
 
Waterwash processor brochure
Waterwash processor brochureWaterwash processor brochure
Waterwash processor brochure
 
Kerala exports
Kerala exportsKerala exports
Kerala exports
 
Overview of open access in 2010
Overview of open access in 2010Overview of open access in 2010
Overview of open access in 2010
 
Beleidsdag amsta 5 Juni 2012
Beleidsdag amsta 5 Juni 2012Beleidsdag amsta 5 Juni 2012
Beleidsdag amsta 5 Juni 2012
 
Mielec 1,9 ha
Mielec 1,9 haMielec 1,9 ha
Mielec 1,9 ha
 
Ropczyce, ul. Przemysłowa
Ropczyce, ul. PrzemysłowaRopczyce, ul. Przemysłowa
Ropczyce, ul. Przemysłowa
 
SmartCampus - Online School ERP
SmartCampus - Online School ERPSmartCampus - Online School ERP
SmartCampus - Online School ERP
 
Laura Alves de Sousa
Laura Alves de SousaLaura Alves de Sousa
Laura Alves de Sousa
 
Green-Hotel-Hue slide show
Green-Hotel-Hue slide showGreen-Hotel-Hue slide show
Green-Hotel-Hue slide show
 
Mob01 mobile services e webapi
Mob01   mobile services e webapiMob01   mobile services e webapi
Mob01 mobile services e webapi
 
Geab nr55-es 17mai2011
Geab nr55-es 17mai2011Geab nr55-es 17mai2011
Geab nr55-es 17mai2011
 
Global1
Global1Global1
Global1
 
Presentación la bovila final
Presentación la bovila finalPresentación la bovila final
Presentación la bovila final
 

Ähnlich wie Tsl pdf

Microservices With Istio Service Mesh
Microservices With Istio Service MeshMicroservices With Istio Service Mesh
Microservices With Istio Service MeshNatanael Fonseca
 
Active Directory Golden Ticket Attack Detection
Active Directory Golden Ticket Attack DetectionActive Directory Golden Ticket Attack Detection
Active Directory Golden Ticket Attack DetectionIRJET Journal
 
stackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdf
stackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdfstackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdf
stackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdfNETWAYS
 
IRJET-Encryption of Broadcast with Dealership
IRJET-Encryption of Broadcast with DealershipIRJET-Encryption of Broadcast with Dealership
IRJET-Encryption of Broadcast with DealershipIRJET Journal
 
Evaluation of transport safety policies in commercial motorcycle operation in...
Evaluation of transport safety policies in commercial motorcycle operation in...Evaluation of transport safety policies in commercial motorcycle operation in...
Evaluation of transport safety policies in commercial motorcycle operation in...Institute for Transport Studies (ITS)
 
CyBlock SSL Inspection Tech Brief
CyBlock SSL Inspection Tech BriefCyBlock SSL Inspection Tech Brief
CyBlock SSL Inspection Tech BriefWavecrest Computing
 
Technique for authenticating network users
Technique for authenticating network usersTechnique for authenticating network users
Technique for authenticating network usersTal Lavian Ph.D.
 
Qr patrol-web-application-user-guide - Track Your Guards
Qr patrol-web-application-user-guide - Track Your Guards Qr patrol-web-application-user-guide - Track Your Guards
Qr patrol-web-application-user-guide - Track Your Guards Yasser Ismail
 
Survey on reliable sla based monitoring for billing scheme in cloud computing
Survey on reliable sla based monitoring for billing scheme in cloud computingSurvey on reliable sla based monitoring for billing scheme in cloud computing
Survey on reliable sla based monitoring for billing scheme in cloud computingeSAT Journals
 
Bit taka bangladeshi country owned crypto currency
Bit taka bangladeshi country owned crypto currencyBit taka bangladeshi country owned crypto currency
Bit taka bangladeshi country owned crypto currencyMohammad Salehin
 
zte umts-cs-call-drop-analysis-guide-zte
zte umts-cs-call-drop-analysis-guide-ztezte umts-cs-call-drop-analysis-guide-zte
zte umts-cs-call-drop-analysis-guide-zte3ggprs
 
The correlation advantages of ANET SURELOG International Edition SIEM product
The correlation advantages of ANET SURELOG International Edition SIEM product The correlation advantages of ANET SURELOG International Edition SIEM product
The correlation advantages of ANET SURELOG International Edition SIEM product Ertugrul Akbas
 
Vehicular ad hoc_networks
Vehicular ad hoc_networksVehicular ad hoc_networks
Vehicular ad hoc_networksAbdulrub Moshin
 
IRJET- Signrecrypting Proxy Re-Signature in Secure Vanet
IRJET- Signrecrypting Proxy Re-Signature in Secure VanetIRJET- Signrecrypting Proxy Re-Signature in Secure Vanet
IRJET- Signrecrypting Proxy Re-Signature in Secure VanetIRJET Journal
 
IRJET- The Hidden Virus Propagation Search Engine Attack
IRJET- The  Hidden Virus  Propagation Search Engine AttackIRJET- The  Hidden Virus  Propagation Search Engine Attack
IRJET- The Hidden Virus Propagation Search Engine AttackIRJET Journal
 
Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...
Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...
Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...SBWebinars
 
Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...
Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...
Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...Hamad Al Katheri
 

Ähnlich wie Tsl pdf (20)

Microservices With Istio Service Mesh
Microservices With Istio Service MeshMicroservices With Istio Service Mesh
Microservices With Istio Service Mesh
 
Active Directory Golden Ticket Attack Detection
Active Directory Golden Ticket Attack DetectionActive Directory Golden Ticket Attack Detection
Active Directory Golden Ticket Attack Detection
 
stackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdf
stackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdfstackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdf
stackconf 2023 | Measuring Reliability in Production by Thomas Voss.pdf
 
IRJET-Encryption of Broadcast with Dealership
IRJET-Encryption of Broadcast with DealershipIRJET-Encryption of Broadcast with Dealership
IRJET-Encryption of Broadcast with Dealership
 
Evaluation of transport safety policies in commercial motorcycle operation in...
Evaluation of transport safety policies in commercial motorcycle operation in...Evaluation of transport safety policies in commercial motorcycle operation in...
Evaluation of transport safety policies in commercial motorcycle operation in...
 
CyBlock SSL Inspection Tech Brief
CyBlock SSL Inspection Tech BriefCyBlock SSL Inspection Tech Brief
CyBlock SSL Inspection Tech Brief
 
Technique for authenticating network users
Technique for authenticating network usersTechnique for authenticating network users
Technique for authenticating network users
 
Auditchain
AuditchainAuditchain
Auditchain
 
$$Tr sas-069-all
$$Tr sas-069-all$$Tr sas-069-all
$$Tr sas-069-all
 
Qr patrol-web-application-user-guide - Track Your Guards
Qr patrol-web-application-user-guide - Track Your Guards Qr patrol-web-application-user-guide - Track Your Guards
Qr patrol-web-application-user-guide - Track Your Guards
 
Tr 069
Tr 069Tr 069
Tr 069
 
Survey on reliable sla based monitoring for billing scheme in cloud computing
Survey on reliable sla based monitoring for billing scheme in cloud computingSurvey on reliable sla based monitoring for billing scheme in cloud computing
Survey on reliable sla based monitoring for billing scheme in cloud computing
 
Bit taka bangladeshi country owned crypto currency
Bit taka bangladeshi country owned crypto currencyBit taka bangladeshi country owned crypto currency
Bit taka bangladeshi country owned crypto currency
 
zte umts-cs-call-drop-analysis-guide-zte
zte umts-cs-call-drop-analysis-guide-ztezte umts-cs-call-drop-analysis-guide-zte
zte umts-cs-call-drop-analysis-guide-zte
 
The correlation advantages of ANET SURELOG International Edition SIEM product
The correlation advantages of ANET SURELOG International Edition SIEM product The correlation advantages of ANET SURELOG International Edition SIEM product
The correlation advantages of ANET SURELOG International Edition SIEM product
 
Vehicular ad hoc_networks
Vehicular ad hoc_networksVehicular ad hoc_networks
Vehicular ad hoc_networks
 
IRJET- Signrecrypting Proxy Re-Signature in Secure Vanet
IRJET- Signrecrypting Proxy Re-Signature in Secure VanetIRJET- Signrecrypting Proxy Re-Signature in Secure Vanet
IRJET- Signrecrypting Proxy Re-Signature in Secure Vanet
 
IRJET- The Hidden Virus Propagation Search Engine Attack
IRJET- The  Hidden Virus  Propagation Search Engine AttackIRJET- The  Hidden Virus  Propagation Search Engine Attack
IRJET- The Hidden Virus Propagation Search Engine Attack
 
Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...
Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...
Don’t Get Stuck in The Encryption Stone Age: Get Decrypted Visibility with Am...
 
Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...
Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...
Ir alert-med-17-093-01 c-intrusions-affecting_multiple_victims_across_multipl...
 

Mehr von Hai Nguyen

Sp 29 two_factor_auth_guide
Sp 29 two_factor_auth_guideSp 29 two_factor_auth_guide
Sp 29 two_factor_auth_guideHai Nguyen
 
Session 7 e_raja_kailar
Session 7 e_raja_kailarSession 7 e_raja_kailar
Session 7 e_raja_kailarHai Nguyen
 
Securing corporate assets_with_2_fa
Securing corporate assets_with_2_faSecuring corporate assets_with_2_fa
Securing corporate assets_with_2_faHai Nguyen
 
Scc soft token datasheet
Scc soft token datasheetScc soft token datasheet
Scc soft token datasheetHai Nguyen
 
Rsa two factorauthentication
Rsa two factorauthenticationRsa two factorauthentication
Rsa two factorauthenticationHai Nguyen
 
Quest defender provides_secure__affordable_two-factor_authentication_for_okla...
Quest defender provides_secure__affordable_two-factor_authentication_for_okla...Quest defender provides_secure__affordable_two-factor_authentication_for_okla...
Quest defender provides_secure__affordable_two-factor_authentication_for_okla...Hai Nguyen
 
Pg 2 fa_tech_brief
Pg 2 fa_tech_briefPg 2 fa_tech_brief
Pg 2 fa_tech_briefHai Nguyen
 
Ouch 201211 en
Ouch 201211 enOuch 201211 en
Ouch 201211 enHai Nguyen
 
N ye c-rfp-two-factor-authentication
N ye c-rfp-two-factor-authenticationN ye c-rfp-two-factor-authentication
N ye c-rfp-two-factor-authenticationHai Nguyen
 
Multiple credentials-in-the-enterprise
Multiple credentials-in-the-enterpriseMultiple credentials-in-the-enterprise
Multiple credentials-in-the-enterpriseHai Nguyen
 
Mobile authentication
Mobile authenticationMobile authentication
Mobile authenticationHai Nguyen
 
Ijcsi 9-4-2-457-462
Ijcsi 9-4-2-457-462Ijcsi 9-4-2-457-462
Ijcsi 9-4-2-457-462Hai Nguyen
 
Identity cues two factor data sheet
Identity cues two factor data sheetIdentity cues two factor data sheet
Identity cues two factor data sheetHai Nguyen
 
Hotpin datasheet
Hotpin datasheetHotpin datasheet
Hotpin datasheetHai Nguyen
 
Ds netsuite-two-factor-authentication
Ds netsuite-two-factor-authenticationDs netsuite-two-factor-authentication
Ds netsuite-two-factor-authenticationHai Nguyen
 
Datasheet two factor-authenticationx
Datasheet two factor-authenticationxDatasheet two factor-authenticationx
Datasheet two factor-authenticationxHai Nguyen
 
Cryptomathic white paper 2fa for banking
Cryptomathic white paper 2fa for bankingCryptomathic white paper 2fa for banking
Cryptomathic white paper 2fa for bankingHai Nguyen
 

Mehr von Hai Nguyen (20)

Sp 29 two_factor_auth_guide
Sp 29 two_factor_auth_guideSp 29 two_factor_auth_guide
Sp 29 two_factor_auth_guide
 
Sms based otp
Sms based otpSms based otp
Sms based otp
 
Session 7 e_raja_kailar
Session 7 e_raja_kailarSession 7 e_raja_kailar
Session 7 e_raja_kailar
 
Securing corporate assets_with_2_fa
Securing corporate assets_with_2_faSecuring corporate assets_with_2_fa
Securing corporate assets_with_2_fa
 
Scc soft token datasheet
Scc soft token datasheetScc soft token datasheet
Scc soft token datasheet
 
Rsa two factorauthentication
Rsa two factorauthenticationRsa two factorauthentication
Rsa two factorauthentication
 
Quest defender provides_secure__affordable_two-factor_authentication_for_okla...
Quest defender provides_secure__affordable_two-factor_authentication_for_okla...Quest defender provides_secure__affordable_two-factor_authentication_for_okla...
Quest defender provides_secure__affordable_two-factor_authentication_for_okla...
 
Pg 2 fa_tech_brief
Pg 2 fa_tech_briefPg 2 fa_tech_brief
Pg 2 fa_tech_brief
 
Ouch 201211 en
Ouch 201211 enOuch 201211 en
Ouch 201211 en
 
N ye c-rfp-two-factor-authentication
N ye c-rfp-two-factor-authenticationN ye c-rfp-two-factor-authentication
N ye c-rfp-two-factor-authentication
 
Multiple credentials-in-the-enterprise
Multiple credentials-in-the-enterpriseMultiple credentials-in-the-enterprise
Multiple credentials-in-the-enterprise
 
Mobile authentication
Mobile authenticationMobile authentication
Mobile authentication
 
Ijcsi 9-4-2-457-462
Ijcsi 9-4-2-457-462Ijcsi 9-4-2-457-462
Ijcsi 9-4-2-457-462
 
Identity cues two factor data sheet
Identity cues two factor data sheetIdentity cues two factor data sheet
Identity cues two factor data sheet
 
Hotpin datasheet
Hotpin datasheetHotpin datasheet
Hotpin datasheet
 
Gambling
GamblingGambling
Gambling
 
Ds netsuite-two-factor-authentication
Ds netsuite-two-factor-authenticationDs netsuite-two-factor-authentication
Ds netsuite-two-factor-authentication
 
Datasheet two factor-authenticationx
Datasheet two factor-authenticationxDatasheet two factor-authenticationx
Datasheet two factor-authenticationx
 
Csd6059
Csd6059Csd6059
Csd6059
 
Cryptomathic white paper 2fa for banking
Cryptomathic white paper 2fa for bankingCryptomathic white paper 2fa for banking
Cryptomathic white paper 2fa for banking
 

Kürzlich hochgeladen

Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityWSO2
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Bhuvaneswari Subramani
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Zilliz
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...apidays
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesrafiqahmad00786416
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...apidays
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamUiPathCommunity
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelDeepika Singh
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxRemote DBA Services
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Angeliki Cooney
 

Kürzlich hochgeladen (20)

Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 

Tsl pdf

  • 1. Luxembourg (Luxembourg): Trusted List Institut Luxembourgeois de la Normalisation, de l'Accréditation de la Sécurité et qualité des produits et services Scheme Information TSL Version Identifier 3 TSL Sequence Number 14 TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/TSLType/generic Indicates a "generic" TSL that exclusively contains trust services which are approved or recognized by the scheme operator owning the TSL through a process of direct oversight (whether voluntary or regulatory). Scheme Operator Name Name en Institut Luxembourgeois de la Normalisation, de l'Accréditation, de la Sécurité et qualité des produits et services (ILNAS) Scheme Operator Name Name fr Institut Luxembourgeois de la Normalisation, de l'Accréditation, de la Sécurité et qualité des produits et services (ILNAS) Scheme Operator Address Street Address en 34-40 Avenue de la Porte-Neuve Locality en Luxembourg State Or Province en Postal Code en L-2227 Country Name en LU Electronic Address URI mailto:confiance-numerique@ilnas.etat.lu Electronic Address URI http://www.ilnas.public.lu Scheme Name Name en LU:Supervision/Accreditation Status List of certification services from Certification Service Providers, which are supervised/accredited by the referenced Member State for compliance with the relevant provisions laid down in Directive 1999/93/EC and its implementation in the referenced Member State's laws. Scheme Information URI Name en http://www.ilnas.public.lu/digital-trust Status Determination Approach http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/StatusDetn/appropriate Services listed have their status determined by or on behalf of the Scheme Operator under an appropriate system for a referenced Member State that allows for supervision (and, when applicable, for voluntary accreditation) of certification service providers who are established on its territory (or established in a third country in the case of voluntary accreditation) and issue qualified certificates to the public. Scheme Type Community Rule URI http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/schemerules/common Descriptive text by which participation is denoted of the Member States scheme in a scheme of schemes, where users can obtain policy/rules against which services included in the list shall be assessed and from which the type of the TSL can be determined, and where users can obtain description about how to use and interpret the content of the TSL implementation of the Trusted List. Scheme Type Community Rule URI http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/schemerules/LU Descriptive text where users can obtain the Luxembourg specific policy/rules against which services included in the list shall be assessed in compliance with Luxembourg appropriate supervision system and voluntary accreditation schemes, where users can obtain a referenced Luxembourg specific description about how to use and interpret the content of the TSL implementation of the Trusted List with regard to the certification services not related to the issuing of QCs. Scheme Territory LU Page 1 / 24
  • 2. Policy Or Legal Notice TSL Legal Notice en The applicable legal framework for the present TSL implementation of the Trusted List of supervised/accredited Certification Service Providers for Luxembourg is the Directive 1999/93/EC of the European Parliament and of the Council of 13 December 1999 on a Community framework for electronic signatures and its implementation in Luxembourg laws. The accreditation scheme for all CSPs issuing qualified, non-qualified certificates, or other services related to electronic signature is based upon the Law of 14 August 2000, and Grand-Ducal Regulations of 1st June 2001 and 21 December 2004. Historical Information Period 3653 Page 2 / 24
  • 3. Pointer To Other TSL X509 Certificate -----BEGIN CERTIFICATE----- MIIDYjCCAkqgAwIBAgILAQAAAAABJv9VwPIwDQYJKoZIhvcNAQEFBQAwYzELMAkGA1UEBhMC QkUxGTAXBgNVBAoTEEdsb2JhbFNpZ24gbnYtc2ExFjAUBgNVBAsTDVNlcnZlclNpZ24gQ0ExITAf BgNVBAMTGEdsb2JhbFNpZ24gU2VydmVyU2lnbiBDQTAeFw0xMDAyMjQwOTA1MTNaFw0xMzA zMjgxMjA0NTBaMHwxCzAJBgNVBAYTAkxVMRMwEQYDVQQIEwpMdXhlbWJvdXJnMRMwEQYDV QQHEwpMdXhlbWJvdXJnMRwwGgYDVQQKExNFdXJvcGVhbiBDb21taXNzaW9uMQ4wDAYDVQQ LEwVESUdJVDEVMBMGA1UEAxMMZWMuZXVyb3BhLmV1MIGfMA0GCSqGSIb3DQEBAQUAA4G NADCBiQKBgQDDRdijTNsz5RGNbnyQA98W+5P8cS18KiSSenCkyVB7Zinicxk0k0GG6ndaGecvrE Ht3+s/i+bA8zmxDzon1Gc+RUj7FE5DCdMWXM1/7gE2JYW2E2Iu0NtSABvdVjLu9cP/81p2sCnynj5 EOCl21E+8smfjylxt+O8JzaaaQsjKuwIDAQABo4GBMH8wEQYJYIZIAYb4QgEBBAQDAgbAMA4GA1 UdDwEB/wQEAwIE8DAfBgNVHSMEGDAWgBRIu6i/W4TSV0jkYemRIJHYHSXffzA5BgNVHR8EMjA wMC6gLKAqhihodHRwOi8vY3JsLmdsb2JhbHNpZ24ubmV0L1NlcnZlclNpZ24uY3JsMA0GCSqGSIb 3DQEBBQUAA4IBAQA8tgDKlVnGcpyD/VVOegTqsPIvpXLpgXIv+QIOGd/VFvqI8EXiKJjr3+35n1S4 U7FVYcJeSdC8I905fwatYT7b/Zf7BOY9DysFYW6NT3VqXoZZhp/b394yVxZfSIkyDLb2xkNj04/l04Dy LnfpOPzZBpxRpOfZ8bRUfTp2n52mXLVO+bDgO6pYM9sAhsnDkcVZruvOd+Y0397KQ2x8omYRW CAhqYMCPgqnzQ3j7q4um8y8J93nOa5WhWFN7TFcaWEOF/lEDtfZr33XoM3+YX/+ehHIb7HSOcP b34o4tz7t7RKSQ/WXkheL2kNta0WwMx59/qVJ2Ipa78swKos5Sd2z -----END CERTIFICATE----- Version 3 Serial Number 1208925819615896178901234 SigAlgName SHA1withRSA Issuer DN CN=GlobalSign ServerSign CA, OU=ServerSign CA, O=GlobalSign nv-sa, C=BE Valid from 2010-02-24T09:05:13Z Valid to 2013-03-28T12:04:50Z Subject DN CN=ec.europa.eu, OU=DIGIT, O=European Commission, L=Luxembourg, ST=Luxembourg, C=LU Public Key Algo RSA Public Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 81 8d 00 30 81 89 02 81 81 00 c3 45 d8 a3 4c db 33 e5 11 8d 6e 7c 90 03 df 16 fb 93 fc 71 2d 7c 2a 24 92 7a 70 a4 c9 50 7b 66 29 e2 73 19 34 93 41 86 ea 77 5a 19 e7 2f ac 41 ed df eb 3f 8b e6 c0 f3 39 b1 0f 3a 27 d4 67 3e 45 48 fb 14 4e 43 09 d3 16 5c cd 7f ee 01 36 25 85 b6 13 62 2e d0 db 52 00 1b dd 56 32 ee f5 c3 ff f3 5a 76 b0 29 f2 9e 3e 44 38 29 76 d4 4f bc b2 67 e3 ca 5c 6d f8 ef 09 cd a6 9a 42 c8 ca bb 02 03 01 00 01 Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 48 bb a8 bf 5b 84 d2 57 48 e4 61 e9 91 20 91 d8 H......WH.a..... 0010: 1d 25 df 7f .... ] ] Certificate Policies CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: http://crl.globalsign.net/ServerSign.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier Page 3 / 24
  • 4. Key Usage ObjectId: 2.5.29.15 Criticality=true KeyUsage [ DigitalSignature Non_repudiation Key_Encipherment Data_Encipherment ] Basic Constraints Thumbprint Algo SHA256 Thumbprint 81 bc 61 fa 39 fa f5 b4 d5 d8 77 98 be 53 bd 68 68 af 06 ff 05 78 bf a9 3b 15 76 5a 6f da 8d ad Thumbprint Algo SHA1 Thumbprint 5e 98 89 3b ed 90 44 ef b0 9a 94 c4 8a fd b6 52 b5 19 70 8f TSL Location https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl- hr.pdf TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/TSLType/schemes A TSL implementation of a compiled list of pointers towards Member States supervision/accreditation status lists of certification services from certification service providers which are supervised/accredited by the referenced Member State owning the pointed TSL implementation for compliance with the relevant provisions laid down in the eSignature Directive 1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on a Community framework for electronic signatures, through a process of direct oversight (whether voluntary or regulatory). Scheme Operator Name European Commission Scheme Type Community Rules http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/schemerules/CompiledList A URI pointing towards a descriptive text where users can obtain information about the scheme of schemes type (i.e. a TSL listing pointers to all Member States' Trusted Lists published and maintained in the form of a TSL) and the relevant driving rules and policy. Scheme Territory EU Mime Type application/pdf Page 4 / 24
  • 5. Pointer To Other TSL X509 Certificate -----BEGIN CERTIFICATE----- MIIHPDCCBSSgAwIBAgIBcjANBgkqhkiG9w0BAQsFADAxMQswCQYDVQQGEwJFUzERMA8GA1U ECgwIRk5NVC1SQ00xDzANBgNVBAMMBklTQSBDQTAeFw0xMTExMTYxNTExMDdaFw0xNTEx MTYxNTExMDdaME0xCzAJBgNVBAYTAkJFMRwwGgYDVQQKDBNFVVJPUEVBTiBDT01NSVNTS U9OMSAwHgYDVQQDDBcoU0lHTikgQU5ORUxJIEFORFJFU1NPTjCCASIwDQYJKoZIhvcNAQEBB QADggEPADCCAQoCggEBAMw881fbxBn5Eq64Hf6pqEqn0Intg49k5D+E2JBMcyeOMYE4WwuzVq s7fuKMX5mhiFw7llVx42S7GIDnKa6ascF7irISsYTGOtD6dGt8OEOQkG5i24wxT3we63VW1W/PEO0 WoRjkPDBqgljnqcLn+WJLr3Yl9fpkxyT+H3pl0jnGkGi7UUKEDuoCglFy9Tb1TE+eVNiGWmfskRy6q 9Pioujp2FqrwNm95VAkLFGoNF4iZQda79bgjvAYnA5p4QXgr/5sWZjgsa3Ea9PlRwEvO7C8ndnRE/P TUNwaSmOZsmPH/ksCCnfTDqqehHVnry3K6QIUKhRsoT1m60qv4UKrvrsCAwEAAaOCA0EwggM9 MF0GA1UdEQRWMFSBHUFOTkVMSS5BTkRSRVNTT05ARUMuRVVST1BBLkVVpDMwMTEYMB YGCSsGAQQBrGYBAgwJQU5EUkVTU09OMRUwEwYJKwYBBAGsZgEBDAZBTk5FTEkwCQYDVR0 TBAIwADAOBgNVHQ8BAf8EBAMCBkAwHQYDVR0OBBYEFEoUEf+0Oe59fVRs/rW2M0KhmlDsM B8GA1UdIwQYMBaAFEft+GPwma9e/n4OXFjL/uI1N6a9MIHgBgNVHSAEgdgwgdUwgcgGCisGAQ QBrGYDBAEwgbkwKQYIKwYBBQUHAgEWHWh0dHA6Ly93d3cuY2VydC5mbm10LmVzL2RwY3M vMIGLBggrBgEFBQcCAjB/DH1RdWFsaWZpZWQgY2VydGlmaWNhdGUuIFVuZGVyIHRoZSB1c2F nZSBjb25kaXRpb25zIGFzc2VydGVkIGluIHRoZSBGTk1ULVJDTSBDUFMgKDEwNiwgSm9yZ2UgS nVhbiBzdHJlZXQsMjgwMDksIE1hZHJpZCwgU3BhaW4pLjAIBgYEAIswAQEwgYYGCCsGAQUFBwE BBHoweDBBBggrBgEFBQcwAYY1aHR0cDovL29jc3BJU0FjYS5jZXJ0LmZubXQuZXMvb2NzcElTQ WNhL09jc3BSZXNwb25kZXIwMwYIKwYBBQUHMAKGJ2h0dHA6Ly93d3cuY2VydC5mbm10LmVz L2NlcnRzL0lTQUNBLmNydDBGBggrBgEFBQcBAwQ6MDgwCAYGBACORgEBMAsGBgQAjkYBAwI BDzAVBgYEAI5GAQIwCxMDRVVSAgECAgECMAgGBgQAjkYBBDCBzAYDVR0fBIHEMIHBMIG+oI G7oIG4hoGIbGRhcDovL2xkYXBJU0FjYS5jZXJ0LmZubXQuZXMvQ049Q1JMMixjbj1JU0ElMjBDQSx vPUZOTVQtUkNNLEM9RVM/Y2VydGlmaWNhdGVSZXZvY2F0aW9uTGlzdDtiaW5hcnk/YmFzZT9v YmplY3RjbGFzcz1jUkxEaXN0cmlidXRpb25Qb2ludIYraHR0cDovL3d3dy5jZXJ0LmZubXQuZXMvY3 Jsc19JU0FjYS9DUkwyLmNybDANBgkqhkiG9w0BAQsFAAOCAgEALIKumRPBo9NIYyzm4LSJklE9C msirJC89MPcFiC9+vg4YrO9Mmakr8G5ZAVZf+Zr6HgLcIf93/BSgE4UDFD9mAROPDElqx2ppg1+f oIvlqg57EiHH2kOS4IYJEJpWCs4IqcBkSKcS5vJ5XVpNJL4elpeMQjsGoqjmkKDr1IeZQVOxOiW/bNh M9Fw6R1aMMLbnziwAgHWDpmIj2Se74HuS3ca0ctm9fAPp/2Y87bgZ1ETs9A6wc4GxYEuGTwh1H PbDB6tgjSnjH0hY3qBITjB8IM0xGvUR9dQkt8Ez4dvyxcaFlyCMfLaeMf8jlJOv4uU1yRRT9wESIj5Gc oE43cy1cuvRMifqYhoi3KPojJaLTV7ASy1X0yuBWyg0jGyvE6aTIAu3XGCwdGYB1WnSzEUPJboqcyJ ydkXXxnBKFchw602pVB0ITUqitGH+Kfix2mQQf+v0RDEWQU3WdADNHc+cqoc7sXkJXkO657dYZ T/Ey5MR+gXRm6oK52iXIqjM8kbDqCqAOHVC73u+bUvh0y5B5PjGYuE2K9xK36ooavh5ytF/kY+y0 Ju804CRF00b4wKcibGxplOrU1g+ncONNmBHGbsLULXrum8+fsD3O04Mf0t0O9Mt/ZwAZTa8Cwq /0pqOWdRqucV7pq/A7fEnRb5AdBaAzxqrXVaa92NkScAm80= -----END CERTIFICATE----- Version 3 Serial Number 114 SigAlgName SHA256withRSA Issuer DN CN=ISA CA, O=FNMT-RCM, C=ES Valid from 2011-11-16T15:11:07Z Valid to 2015-11-16T15:11:07Z Subject DN CN=(SIGN) ANNELI ANDRESSON, O=EUROPEAN COMMISSION, C=BE Public Key Algo RSA Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 cc 3c f3 57 db c4 19 f9 12 ae b8 1d fe a9 a8 4a a7 d0 89 ed 83 8f 64 e4 3f 84 d8 90 4c 73 27 8e 31 81 38 5b 0b b3 56 ab 3b 7e e2 8c 5f 99 a1 88 5c 3b 96 55 71 e3 64 bb 18 80 e7 29 ae 9a b1 c1 7b 8a b2 12 b1 84 c6 3a d0 fa 74 6b 7c 38 43 90 90 6e 62 db 8c 31 4f 7c 1e eb 75 56 d5 6f cf 10 ed 16 a1 18 e4 3c 30 6a 82 58 e7 a9 c2 e7 f9 62 4b af 76 25 f5 fa 64 c7 24 fe 1f 7a 65 d2 39 c6 90 68 bb 51 42 84 0e ea 02 82 51 72 f5 36 f5 4c 4f 9e 54 d8 86 5a 67 ec 91 1c ba ab d3 e2 a2 e8 e9 d8 5a ab c0 d9 bd e5 50 24 2c 51 a8 34 5e 22 65 07 5a ef d6 e0 8e f0 18 9c 0e 69 e1 05 e0 af fe 6c 59 98 e0 b1 ad c4 6b d3 e5 47 01 2f 3b b0 bc 9d d9 d1 13 f3 d3 50 dc 1a 4a 63 99 b2 63 c7 fe 4b 02 0a 77 d3 0e aa 9e 84 75 67 af 2d ca e9 02 14 2a 14 6c a1 3d 66 eb 4a af e1 42 ab be bb 02 03 01 00 01 Page 5 / 24
  • 6. Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 47 ed f8 63 f0 99 af 5e fe 7e 0e 5c 58 cb fe e2 G..c........X... 0010: 35 37 a6 bd 57.. ] ] Certificate Policies ObjectId: 2.5.29.32 Criticality=false CertificatePolicies [ [ PolicyInformation: [ CertPolicyId: 1.3.6.1.4.1.5734.3.4.1 PolicyQualifiers: [PolicyQualifierInfo: [ CPSuri: [ object identifier: 1.3.6.1.5.5.7.2.1 uri: http://www.cert.fnmt.es/dpcs/] ] , PolicyQualifierInfo: [ UserNotice: [ ObjectIdentifier: 1.3.6.1.5.5.7.2.2 NoticeReference: null ExplicitText: Qualified certificate. Under the usage conditions asserted in the FNMT-RCM CPS (106, Jorge Juan street,28009, Madrid, Spain). ]] ]] , PolicyInformation: [ CertPolicyId: 0.4.0.1456.1.1 PolicyQualifiers: null] ]] CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: ldap://ldapISAca.cert.fnmt.es/CN=CRL2,cn=ISA%20C A,o=FNMT- RCM,C=ES?certificateRevocationList;binary?base?obj ectclass=cRLDistributionPoint, URIName: http://www.cert.fnmt.es/crls_ISAca/CRL2.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 4a 14 11 ff b4 39 ee 7d 7d 54 6c fe b5 b6 33 42 J....9...Tl...3B 0010: a1 9a 50 ec ..P. ] ] Key Usage ObjectId: 2.5.29.15 Criticality=true KeyUsage [ Non_repudiation ] Page 6 / 24
  • 7. Basic Constraints ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:false PathLen: undefined ] Thumbprint Algo SHA256 Thumbprint 5d 39 e8 f1 16 69 50 e9 97 38 32 ad 26 6f 06 74 2c c4 a9 48 48 69 df 61 ef cb 84 9d b2 fc 60 4a Thumbprint Algo SHA1 Thumbprint a8 4e 18 97 24 1f 85 c5 55 d0 3f 48 f5 a1 95 d6 3c 6a a6 5b Page 7 / 24
  • 8. X509 Certificate -----BEGIN CERTIFICATE----- MIIFnDCCBISgAwIBAgIDAVZhMA0GCSqGSIb3DQEBBQUAMEUxCzAJBgNVBAYTAkxVMRYwFAY DVQQKEw1MdXhUcnVzdCBTLkEuMR4wHAYDVQQDExVMdXhUcnVzdCBRdWFsaWZpZWQgQ0E wHhcNMDkxMjIzMTAzNTU2WhcNMTIxMjIzMTAzNTU2WjCCAQYxCzAJBgNVBAYTAkJFMQswCQ YDVQQHEwJCRTEcMBoGA1UEChMTRXVyb3BlYW4gQ29tbWlzc2lvbjELMAkGA1UECxMCTkExJD AiBgNVBAMTG0thcmVsIExvZGV3aWprIE0gRGUgVnJpZW5kdDETMBEGA1UEBBMKRGUgVnJpZ W5kdDEZMBcGA1UEKhMQS2FyZWwgTG9kZXdpamsgTTEdMBsGA1UEBRMUMTAxMDAzMzIxM TAwMDQ3NDkzNzgxLDAqBgkqhkiG9w0BCQEWHUthcmVsLkRlLVZyaWVuZHRAZWMuZXVyb3B hLmV1MRwwGgYDVQQMExNQcm9mZXNzaW9uYWwgUGVyc29uMIGfMA0GCSqGSIb3DQEBAQ UAA4GNADCBiQKBgQC96JBqnjCmAk43LDuZDMu5lNGK7/UQnJBLDkUqN2Jb/STQSBJnRJchCY9D nKtqYG9cuSZDRxvIUkssqO/WpFu/I5fO9I4mvLGD9h4ot8/GkRntbEl3CnMlRKZJkAdcSHwuqnuNpf aZ4yGGIPslRy9pbRkfXSeeneJAo0Ixiu3QJwIDAQABo4ICVDCCAlAwDAYDVR0TAQH/BAIwADBgBgg rBgEFBQcBAQRUMFIwIwYIKwYBBQUHMAGGF2h0dHA6Ly9vY3NwLmx1eHRydXN0Lmx1MCsG CCsGAQUFBzAChh9odHRwOi8vY2EubHV4dHJ1c3QubHUvTFRRQ0EuY3J0MIIBHQYDVR0gBIIBF DCCARAwggECBggrgSsBAQIEATCB9TCBxwYIKwYBBQUHAgIwgboagbdMdXhUcnVzdCBRdWFsa WZpZWQgQ2VydGlmaWNhdGUgb24gQ0NTRCBjb21wbGlhbnQgd2l0aCBFVFNJIFRTIDEwMSA0N TYgUUNQKyBjZXJ0aWZpY2F0ZSBwb2xpY3kuIEtleSBHZW5lcmF0aW9uIGJ5IENTUC4gU29sZSBB dXRob3Jpc2VkIFVzYWdlOiBTdXBwb3J0IG9mIFF1YWxpZmllZCBFbGVjdHJvbmljIFNpZ25hdHVyZS 4wKQYIKwYBBQUHAgEWHWh0dHA6Ly9yZXBvc2l0b3J5Lmx1eHRydXN0Lmx1MAgGBgQAizABA TA2BggrBgEFBQcBAwQqMCgwCAYGBACORgEBMBIGBgQAjkYBAjAIEwACAQACAQAwCAYGBAC ORgEEMBEGCWCGSAGG+EIBAQQEAwIFIDALBgNVHQ8EBAMCBkAwHwYDVR0jBBgwFoAUjZCj B90aE3eZTJKrTUPeP80pZAUwMQYDVR0fBCowKDAmoCSgIoYgaHR0cDovL2NybC5sdXh0cnVzdC 5sdS9MVFFDQS5jcmwwEQYDVR0OBAoECEwDOyVe3IV5MA0GCSqGSIb3DQEBBQUAA4IBAQBSt S9gFx5BmEv5VciG7qEPR5VzqEpBElkjXDYe68Dw7Ol1nCt51CSuAB2/UcTkfCDh6022H7+EtiUpd M6GH/7qDqZdjqYpQznbu4xkrGTMLrTA1lalhgWugGQIpmCg69kiXns/AXcuJVQSR3mA3BMvJrN5P NaALoguynWCrxRHPTUS3pT5J93jCn90ZPAGhxELRxMdZuFZ2UAn8D8XLUxiz0IK9yqdysJiLzWsQ azUkZ+lzDG0mPomyRkl3LzEK8HXO3HKGr+2n760N+StYyjwywP/kS/3LoPQWfUfjWQE8jDiTgodZ T4ewVSxuNrBH5Ls29aBi0YsT9NYstznKgaR -----END CERTIFICATE----- Version 3 Serial Number 87649 SigAlgName SHA1withRSA Issuer DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU Valid from 2009-12-23T10:35:56Z Valid to 2012-12-23T10:35:56Z Subject DN T=Professional Person, EMAILADDRESS=Karel.De- Vriendt@ec.europa.eu, SERIALNUMBER=10100332110004749378, GIVENNAME=Karel Lodewijk M, SURNAME=De Vriendt, CN=Karel Lodewijk M De Vriendt, OU=NA, O=European Commission, L=BE, C=BE Public Key Algo RSA Public Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 81 8d 00 30 81 89 02 81 81 00 bd e8 90 6a 9e 30 a6 02 4e 37 2c 3b 99 0c cb b9 94 d1 8a ef f5 10 9c 90 4b 0e 45 2a 37 62 5b fd 24 d0 48 12 67 44 97 21 09 8f 43 9c ab 6a 60 6f 5c b9 26 43 47 1b c8 52 4b 2c a8 ef d6 a4 5b bf 23 97 ce f4 8e 26 bc b1 83 f6 1e 28 b7 cf c6 91 19 ed 6c 49 77 0a 73 25 44 a6 49 90 07 5c 48 7c 2e aa 7b 8d a5 f6 99 e3 21 86 20 fb 25 47 2f 69 6d 19 1f 5d 27 9e 9d e2 40 a3 42 31 8a ed d0 27 02 03 01 00 01 Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de 3f .......w.L..MC.. 0010: cd 29 64 05 ..d. ] ] Page 8 / 24
  • 9. Certificate Policies ObjectId: 2.5.29.32 Criticality=false CertificatePolicies [ [ PolicyInformation: [ CertPolicyId: 1.3.171.1.1.2.4.1 PolicyQualifiers: [PolicyQualifierInfo: [ UserNotice: [ ObjectIdentifier: 1.3.6.1.5.5.7.2.2 NoticeReference: null ExplicitText: LuxTrust Qualified Certificate on CCSD compliant with ETSI TS 101 456 QCP+ certificate policy. Key Generation by CSP. Sole Authorised Usage: Support of Qualified Electronic Signature. ]] , PolicyQualifierInfo: [ CPSuri: [ object identifier: 1.3.6.1.5.5.7.2.1 uri: http://repository.luxtrust.lu] ] ]] , PolicyInformation: [ CertPolicyId: 0.4.0.1456.1.1 PolicyQualifiers: null] ]] CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: http://crl.luxtrust.lu/LTQCA.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 4c 03 3b 25 5e dc 85 79 L......y ] ] Key Usage ObjectId: 2.5.29.15 Criticality=false KeyUsage [ Non_repudiation ] Basic Constraints ObjectId: 2.5.29.19 Criticality=true BasicConstraints:[ CA:false PathLen: undefined ] Thumbprint Algo SHA256 Thumbprint d5 49 51 fe bb c5 9d 2c 2e c0 1a cc d9 2c cd 8c 9d 2c 74 44 c2 e5 51 ba 7e c0 de 62 2c 74 14 8c Thumbprint Algo SHA1 Thumbprint 66 0c bd 62 c4 2e a2 8d 8b 98 37 54 bb e7 b1 4a 86 4e 01 64 TSL Location https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl- mp.xml Page 9 / 24
  • 10. TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/TSLType/schemes A TSL implementation of a compiled list of pointers towards Member States supervision/accreditation status lists of certification services from certification service providers which are supervised/accredited by the referenced Member State owning the pointed TSL implementation for compliance with the relevant provisions laid down in the eSignature Directive 1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on a Community framework for electronic signatures, through a process of direct oversight (whether voluntary or regulatory). Scheme Operator Name European Commission Scheme Type Community Rules http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/schemerules/CompiledList A URI pointing towards a descriptive text where users can obtain information about the scheme of schemes type (i.e. a TSL listing pointers to all Member States' Trusted Lists published and maintained in the form of a TSL) and the relevant driving rules and policy. Scheme Territory EU Mime Type application/vnd.etsi.tsl+xml List Issue Date Time 2012-11-30T00:00:00Z Next Update dateTime 2013-05-29T00:00:00Z Distribution Point http://www.ilnas.public.lu/tsl-xml List of Trust Service Providers TSP 1 Information TSP Name Name en LuxTrust S.A. Street Address en IVY Building - 13-15 Parc d'Activités Locality en Capellen State Or Province en Postal Code en L-8308 Country Name en LU Electronic Address URI mailto:info@luxtrust.lu TSP Information URI URI en https://www.luxtrust.lu/en/faq List of Services TSP 1, Service 1 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC A Certification authority issuing Qualified Certificates. Service Name Name en LuxTrust Qualified Certification Authority Digital Id X509 Subject Name CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU Page 10 / 24
  • 11. DigitalId X509 Certificate -----BEGIN CERTIFICATE----- MIID8DCCAtigAwIBAgICA+swDQYJKoZIhvcNAQEFBQAwQDELMAkGA1UEBhMCTFUxFjAUBgN VBAoTDUx1eFRydXN0IHMuYS4xGTAXBgNVBAMTEEx1eFRydXN0IHJvb3QgQ0EwHhcNMDgwNj A1MDkyNTI0WhcNMTYxMDE4MTA0MDM0WjBFMQswCQYDVQQGEwJMVTEWMBQGA1UEChM NTHV4VHJ1c3QgUy5BLjEeMBwGA1UEAxMVTHV4VHJ1c3QgUXVhbGlmaWVkIENBMIIBIjANBgk qhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAybFXzA+8RNnvlCd+sZ8BnH6WO3LmaLi419Ygd9V BYcIwLmMx9KgAKF3u4B87Hee5NL4Xvhm/B9DuDUH5OGZ3P2Dwf7putVEvATvW8jzYq6CzarUth zb9ux+KTdTT+d4y6tkgVggy9DBe+bz635oZm2PPQT9kzoR48RBN730KA/MJIa0Sa7ZDphL37WHS A4/TWh9F1/LBRVGC0F4Mg1hU/u+kovF5mTuUK+ncU7+FS0cQRhAD+C4WfLI/WuzuE+T6ZuZ6I qg6+vqgf6iKwL6iVZmwKkJPvV3+3Wgy3zq5tpDvsIGj4kXd1riQGKsEeDfN8y71DG3OdBqF1Yd7ue 7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBA DArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvh CAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXl rKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0E uY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQE AapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO9 2PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4 nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+ MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOj LlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg== -----END CERTIFICATE----- Version 3 Serial Number 1003 SigAlgName SHA1withRSA Issuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LU Valid from 2008-06-05T09:25:24Z Valid to 2016-10-18T10:40:34Z Subject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU Public Key Algo RSA Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57 cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e6 68 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 00 28 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee 0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6 f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3 f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 19 9b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 09 21 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45 d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 79 99 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 16 7c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7f a8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df 3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 78 37 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b 02 03 01 00 01 Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1 ...0...q.Gp..... 0010: 8d df 8c 25 .... ] ] Page 11 / 24
  • 12. Certificate Policies ObjectId: 2.5.29.32 Criticality=false CertificatePolicies [ [ PolicyInformation: [ CertPolicyId: 1.3.171.1.1.1.1.0 PolicyQualifiers: [PolicyQualifierInfo: [ CPSuri: [ object identifier: 1.3.6.1.5.5.7.2.1 uri: http://repository.luxtrust.lu] ] ]] ]] CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: http://crl.luxtrust.lu/LTRCA.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de 3f .......w.L..MC.. 0010: cd 29 64 05 ..d. ] ] Key Usage ObjectId: 2.5.29.15 Criticality=true KeyUsage [ DigitalSignature Non_repudiation Key_CertSign Crl_Sign ] Basic Constraints ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:true PathLen:0 ] Thumbprint Algo SHA256 Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa 05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7 Thumbprint Algo SHA1 Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e ac a2 aa Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2009-10-13T00:00:00Z TSP 1, Service 1, History N.1 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC A Certification authority issuing Qualified Certificates. Service Name Name en LuxTrust Qualified Certification Authority Page 12 / 24
  • 13. Digital Id X509 Subject Name CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2008-07-29T00:00:00Z TSP 1, Service 2 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/TSA A Time stamping authority. Service Name Name en LuxTrust Time Stamping Authority Digital Id X509 Subject Name CN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LU Page 13 / 24
  • 14. DigitalId X509 Certificate -----BEGIN CERTIFICATE----- MIID8DCCAtigAwIBAgICA+swDQYJKoZIhvcNAQEFBQAwQDELMAkGA1UEBhMCTFUxFjAUBgN VBAoTDUx1eFRydXN0IHMuYS4xGTAXBgNVBAMTEEx1eFRydXN0IHJvb3QgQ0EwHhcNMDgwNj A1MDkyNTI0WhcNMTYxMDE4MTA0MDM0WjBFMQswCQYDVQQGEwJMVTEWMBQGA1UEChM NTHV4VHJ1c3QgUy5BLjEeMBwGA1UEAxMVTHV4VHJ1c3QgUXVhbGlmaWVkIENBMIIBIjANBgk qhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAybFXzA+8RNnvlCd+sZ8BnH6WO3LmaLi419Ygd9V BYcIwLmMx9KgAKF3u4B87Hee5NL4Xvhm/B9DuDUH5OGZ3P2Dwf7putVEvATvW8jzYq6CzarUth zb9ux+KTdTT+d4y6tkgVggy9DBe+bz635oZm2PPQT9kzoR48RBN730KA/MJIa0Sa7ZDphL37WHS A4/TWh9F1/LBRVGC0F4Mg1hU/u+kovF5mTuUK+ncU7+FS0cQRhAD+C4WfLI/WuzuE+T6ZuZ6I qg6+vqgf6iKwL6iVZmwKkJPvV3+3Wgy3zq5tpDvsIGj4kXd1riQGKsEeDfN8y71DG3OdBqF1Yd7ue 7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBA DArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvh CAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXl rKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0E uY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQE AapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO9 2PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4 nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+ MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOj LlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg== -----END CERTIFICATE----- Version 3 Serial Number 1003 SigAlgName SHA1withRSA Issuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LU Valid from 2008-06-05T09:25:24Z Valid to 2016-10-18T10:40:34Z Subject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LU Public Key Algo RSA Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57 cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e6 68 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 00 28 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee 0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6 f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3 f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 19 9b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 09 21 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45 d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 79 99 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 16 7c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7f a8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df 3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 78 37 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b 02 03 01 00 01 Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1 ...0...q.Gp..... 0010: 8d df 8c 25 .... ] ] Page 14 / 24
  • 15. Certificate Policies ObjectId: 2.5.29.32 Criticality=false CertificatePolicies [ [ PolicyInformation: [ CertPolicyId: 1.3.171.1.1.1.1.0 PolicyQualifiers: [PolicyQualifierInfo: [ CPSuri: [ object identifier: 1.3.6.1.5.5.7.2.1 uri: http://repository.luxtrust.lu] ] ]] ]] CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: http://crl.luxtrust.lu/LTRCA.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de 3f .......w.L..MC.. 0010: cd 29 64 05 ..d. ] ] Key Usage ObjectId: 2.5.29.15 Criticality=true KeyUsage [ DigitalSignature Non_repudiation Key_CertSign Crl_Sign ] Basic Constraints ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:true PathLen:0 ] Thumbprint Algo SHA256 Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa 05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7 Thumbprint Algo SHA1 Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e ac a2 aa Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2009-10-13T00:00:00Z Service Information Extension Additional Service Information http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/SvcInfoExt/TSS-QC a time stamping service as part of a service from a certification service provider issuing Qualified Certificates that issue TST that can be used in the qualified signature verification process to ascertain and extend the signature validity when the QC is revoked or expired. Page 15 / 24
  • 16. TSP 1, Service 3 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC A Certification authority issuing Qualified Certificates. Service Name Name en LuxTrust Global Qualified Certification Authority Digital Id X509 Subject Name CN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LU Page 16 / 24
  • 17. DigitalId X509 Certificate -----BEGIN CERTIFICATE----- MIID5zCCAs+gAwIBAgICDJcwDQYJKoZIhvcNAQELBQAwRDELMAkGA1UEBhMCTFUxFjAUBgN VBAoTDUx1eFRydXN0IHMuYS4xHTAbBgNVBAMTFEx1eFRydXN0IEdsb2JhbCBSb290MB4XDTEx MTEyMjA5MzQyNFoXDTE3MTEyMjA5MzQyNFowTDELMAkGA1UEBhMCTFUxFjAUBgNVBAoTD Ux1eFRydXN0IFMuQS4xJTAjBgNVBAMTHEx1eFRydXN0IEdsb2JhbCBRdWFsaWZpZWQgQ0Ewg gEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCo0Cl9yek22xZb2PNZN0gIgx26qgQChKJ 3az/r+qhAv/d/jVBLZy5mQvKRQFrvnLZp5gY5RzrgIcMyZxCwCitQ+MyLPiUYZ4mg/lUrHfOfhWRjY aJY4Dz+M69icdzAsKuVrfsurJ/UEmaIkGvgjBzeCd0qd8BXYnnt6GAT9bAsJ7Vh8lDyTho4D1mbude6j mupBTRNqW1TqnuzeJcooI8JAWkWZ0X4gGXzG0iZlC4irIlB/aaQiJoo+8QVr511T+zAJSJv2CpPS68d pL7AZBTw7/fhsyF84HcBf4tCH7Qhl9zFrdaWGdqrZiebSM4SeTBAnuuKUdYuuZyjoAHFnjj3AgMBA AGjgdowgdcwDwYDVR0TBAgwBgEB/wIBADBDBgNVHSAEPDA6MDgGCCuBKwEBAQoDMCwwK gYIKwYBBQUHAgEWHmh0dHBzOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTALBgNVHQ8EBAMC AQYwHwYDVR0jBBgwFoAUFxWFiQkvJIdvPx0b5PKWeYNIE84wMgYDVR0fBCswKTAnoCWgI4Yha HR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdSQ0EuY3JsMB0GA1UdDgQWBBQ0Fhvx02RnYkyjNL wNs1OkfKHxFzANBgkqhkiG9w0BAQsFAAOCAQEAGPCWTo1SQy6Kmpwin+GaWVW9h2JO3Qwr6 qVwZAQHXPhZGQTD+ghIxN949SGyoMmkGTvJjOSaIs8qJ5lGtDWJuy056rN5FCc2P+0qYofpGdNg SkyRY3xtuKteEPcoi+eFBphY+dlilSPXm3j6Vp/6BRb70Zd35O1Zic95ZUNCxDDVkaDbuN9tjGIBKhn q/ExtpheEdZJPjppVXpsBrCUUpJ0A9oSSFOQewwKSMD/vJKF32M9A2TlRd62XdHeNJrahdU/tO55f 9tz3ekl/aKoS2khJxMfBvdvlw2Yc2g02g5rYsBxrSphph6IjqIkALM95jbm9T2Xo2CSROTAtprdhKw== -----END CERTIFICATE----- Version 3 Serial Number 3223 SigAlgName SHA256withRSA Issuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LU Valid from 2011-11-22T09:34:24Z Valid to 2017-11-22T09:34:24Z Subject DN CN=LuxTrust Global Qualified CA, O=LuxTrust S.A., C=LU Public Key Algo RSA Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 a8 d0 29 7d c9 e9 36 db 16 5b d8 f3 59 37 48 08 83 1d ba aa 04 02 84 a2 77 6b 3f eb fa a8 40 bf f7 7f 8d 50 4b 67 2e 66 42 f2 91 40 5a ef 9c b6 69 e6 06 39 47 3a e0 21 c3 32 67 10 b0 0a 2b 50 f8 cc 8b 3e 25 18 67 89 a0 fe 55 2b 1d f3 9f 85 64 63 61 a2 58 e0 3c fe 33 af 62 71 dc c0 b0 ab 95 ad fb 2e ac 9f d4 12 66 88 90 6b e0 8c 1c de 09 dd 2a 77 c0 57 62 79 ed e8 60 13 f5 b0 2c 27 b5 61 f2 50 f2 4e 1a 38 0f 59 9b b9 d7 ba 8e 6b a9 05 34 4d a9 6d 53 aa 7b b3 78 97 28 a0 8f 09 01 69 16 67 45 f8 80 65 f3 1b 48 99 94 2e 22 ac 89 41 fd a6 90 88 9a 28 fb c4 15 af 9d 75 4f ec c0 25 22 6f d8 2a 4f 4b af 1d a4 be c0 64 14 f0 ef f7 e1 b3 21 7c e0 77 01 7f 8b 42 1f b4 21 97 dc c5 ad d6 96 19 da ab 66 27 9b 48 ce 12 79 30 40 9e eb 8a 51 d6 2e b9 9c a3 a0 01 c5 9e 38 f7 02 03 01 00 01 Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79 ........o......y 0010: 83 48 13 ce .H.. ] ] Page 17 / 24
  • 18. Certificate Policies ObjectId: 2.5.29.32 Criticality=false CertificatePolicies [ [ PolicyInformation: [ CertPolicyId: 1.3.171.1.1.1.10.3 PolicyQualifiers: [PolicyQualifierInfo: [ CPSuri: [ object identifier: 1.3.6.1.5.5.7.2.1 uri: https://repository.luxtrust.lu] ] ]] ]] CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: http://crl.luxtrust.lu/LTGRCA.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 34 16 1b f1 d3 64 67 62 4c a3 34 bc 0d b3 53 a4 4....dgbL.4...S. 0010: 7c a1 f1 17 .... ] ] Key Usage ObjectId: 2.5.29.15 Criticality=false KeyUsage [ Key_CertSign Crl_Sign ] Basic Constraints ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:true PathLen:0 ] Thumbprint Algo SHA256 Thumbprint db 87 94 17 ec 14 24 e4 e5 7a 3c 91 ec 80 4c 5d e4 c6 fd e7 3c c8 28 1c d2 f5 ba ed 76 dd 65 48 Thumbprint Algo SHA1 Thumbprint d5 0c f3 89 87 71 d6 31 bd 29 9b 46 94 01 74 29 c2 6e f5 3a Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2012-11-30T00:00:00Z TSP 1, Service 3, History N.1 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC A Certification authority issuing Qualified Certificates. Service Name Name en LuxTrust Global Qualified Certification Authority Digital Id X509 Subject Name CN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LU Page 18 / 24
  • 19. Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2012-08-01T00:00:00Z TSP 1, Service 4 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/TSA A Time stamping authority. Service Name Name en LuxTrust Global Time Stamping Authority Digital Id X509 Subject Name CN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LU Page 19 / 24
  • 20. DigitalId X509 Certificate -----BEGIN CERTIFICATE----- MIID6jCCAtKgAwIBAgICDtswDQYJKoZIhvcNAQELBQAwRDELMAkGA1UEBhMCTFUxFjAUBgNV BAoTDUx1eFRydXN0IHMuYS4xHTAbBgNVBAMTFEx1eFRydXN0IEdsb2JhbCBSb290MB4XDTEy MDgyODEzMDc0N1oXDTIxMDMxNzA5NTEzN1owTzELMAkGA1UEBhMCTFUxFjAUBgNVBAoTD Ux1eFRydXN0IFMuQS4xKDAmBgNVBAMTH0x1eFRydXN0IEdsb2JhbCBUaW1lc3RhbXBpbmcgQ 0EwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC62E7tAeIGoLM3xRc4SNpdb9+Me ejLq91VPecvB8sVHi4SkMUTIebWG13HJqGLKcn9paO650PehXWEbgm2aUKRNSimM74pNBhYB0 sa0rQui8npZbp1x5ilDwqiTkJ1iFtV5bYrH8hJ0QpX6u4clUEmO9h/Ao/4eXW2wS8hShwDgc0eNu+4S RoXM+ngPrqZetKYD6bEVFw0PSLfCJpGx82JU6/7+Ml0vB6Y/JMcU6xH5u6XdUyayjIvBmKYGSBRC eL7YrJKnBs8hCurHf8pmAlTDdR481dYkIWgKYY6xq4V5IuDSICRcAH2WURQcjyFi/s6kxJMvzuAbH 8oxuy8HFyNAgMBAAGjgdowgdcwDwYDVR0TBAgwBgEB/wIBADBDBgNVHSAEPDA6MDgGCCuB KwEBAQoIMCwwKgYIKwYBBQUHAgEWHmh0dHBzOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTA LBgNVHQ8EBAMCAQYwHwYDVR0jBBgwFoAUFxWFiQkvJIdvPx0b5PKWeYNIE84wMgYDVR0fBC swKTAnoCWgI4YhaHR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdSQ0EuY3JsMB0GA1UdDgQWBBT 1vyLGHf7yBoMjXV7CJZGUGR08hzANBgkqhkiG9w0BAQsFAAOCAQEAWRIoTruey0uMSs3+g0yT3 IefiTtU10fqOuyOmK8q3MUjmWhwX06CJIbWuTAQ6X4oAEGS0A0TWVHgYuGZwSefMz/CAsDUtmI z9EgS6bsFVoF+fTA68BGOT9vBlEndC3tKTjUn0R0ukWkTjX5gSxFPS9fJlPWPpBv4XPIiMMH4cpy1 dUj5QRF26xxynJGbx1Uf3uxlJbp6S8+P2mmKFaUp01NMxwFaRyE3g8KJOVJhAurO/8QrDUQH48+ HimlMVzxAVhZ/r5ux6auyNafqsjcQ0xkMgRKqPtNZQ5LChbGZyRxO6Itg+JH4CaOkB8mwwVyzJNz EgbArJreC4sBajUdjVw== -----END CERTIFICATE----- Version 3 Serial Number 3803 SigAlgName SHA256withRSA Issuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LU Valid from 2012-08-28T13:07:47Z Valid to 2021-03-17T09:51:37Z Subject DN CN=LuxTrust Global Timestamping CA, O=LuxTrust S.A., C=LU Public Key Algo RSA Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 ba d8 4e ed 01 e2 06 a0 b3 37 c5 17 38 48 da 5d 6f df 8c 79 e8 cb ab dd 55 3d e7 2f 07 cb 15 1e 2e 12 90 c5 13 21 e6 d6 1b 5d c7 26 a1 8b 29 c9 fd a5 a3 ba e7 43 de 85 75 84 6e 09 b6 69 42 91 35 28 a6 33 be 29 34 18 58 07 4b 1a d2 b4 2e 8b c9 e9 65 ba 75 c7 98 a5 0f 0a a2 4e 42 75 88 5b 55 e5 b6 2b 1f c8 49 d1 0a 57 ea ee 1c 95 41 26 3b d8 7f 02 8f f8 79 75 b6 c1 2f 21 4a 1c 03 81 cd 1e 36 ef b8 49 1a 17 33 e9 e0 3e ba 99 7a d2 98 0f a6 c4 54 5c 34 3d 22 df 08 9a 46 c7 cd 89 53 af fb f8 c9 74 bc 1e 98 fc 93 1c 53 ac 47 e6 ee 97 75 4c 9a ca 32 2f 06 62 98 19 20 51 09 e2 fb 62 b2 4a 9c 1b 3c 84 2b ab 1d ff 29 98 09 53 0d d4 78 f3 57 58 90 85 a0 29 86 3a c6 ae 15 e4 8b 83 48 80 91 70 01 f6 59 44 50 72 3c 85 8b fb 3a 93 12 4c bf 3b 80 6c 7f 28 c6 ec bc 1c 5c 8d 02 03 01 00 01 Authority Key Identifier ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79 ........o......y 0010: 83 48 13 ce .H.. ] ] Page 20 / 24
  • 21. Certificate Policies ObjectId: 2.5.29.32 Criticality=false CertificatePolicies [ [ PolicyInformation: [ CertPolicyId: 1.3.171.1.1.1.10.8 PolicyQualifiers: [PolicyQualifierInfo: [ CPSuri: [ object identifier: 1.3.6.1.5.5.7.2.1 uri: https://repository.luxtrust.lu] ] ]] ]] CRL Distribution Points ObjectId: 2.5.29.31 Criticality=false CRLDistributionPoints [ 1 CRL Distribution Points: Distribution Point: [ Distribution Point Name: [URIName: http://crl.luxtrust.lu/LTGRCA.crl] Reason Flags: null Issuer: null ] ] Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: f5 bf 22 c6 1d fe f2 06 83 23 5d 5e c2 25 91 94 ................ 0010: 19 1d 3c 87 .... ] ] Key Usage ObjectId: 2.5.29.15 Criticality=false KeyUsage [ Key_CertSign Crl_Sign ] Basic Constraints ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:true PathLen:0 ] Thumbprint Algo SHA256 Thumbprint 53 0b 1d 74 9b e7 ad 3a 7b b7 83 26 b2 81 db cc 5d f6 ea 5f 41 4a 7b 29 b9 70 b6 54 8b 04 49 07 Thumbprint Algo SHA1 Thumbprint db 5c ea 71 c0 1f da d8 59 5a 57 65 51 ec 2a 00 a9 86 51 94 Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accredited An accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2012-11-30T00:00:00Z Service Information Extension Additional Service Information http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/SvcInfoExt/TSS-QC a time stamping service as part of a service from a certification service provider issuing Qualified Certificates that issue TST that can be used in the qualified signature verification process to ascertain and extend the signature validity when the QC is revoked or expired. TSP 1, Service 4, History N.1 Page 21 / 24
  • 22. Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/TSA A Time stamping authority. Service Name Name en LuxTrust Global Time Stamping Authority Digital Id X509 Subject Name CN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LU Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2012-10-03T00:00:00Z Service Information Extension Additional Service Information http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/SvcInfoExt/TSS-QC a time stamping service as part of a service from a certification service provider issuing Qualified Certificates that issue TST that can be used in the qualified signature verification process to ascertain and extend the signature validity when the QC is revoked or expired. TSP 2 Information TSP Name Name en SeMarket Certification Authority S.A. Street Address en Parc d'Activités "Syrdall", 6 Locality en Munsbach State Or Province en Postal Code en L-5365 Country Name en LU Electronic Address URI mailto:confiance-numerique@ilnas.etat.lu TSP Information URI URI en http://www.ilnas.public.lu/semarket List of Services TSP 2, Service 1 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC A Certification authority issuing Qualified Certificates. Service Name Name en SeMarket Qualified Certification Authority Digital Id X509 Subject Name CN=SeMarket CA Root,O=SeMarket CA S.A.,C=LU Page 22 / 24
  • 23. DigitalId X509 Certificate -----BEGIN CERTIFICATE----- MIIDUjCCAjqgAwIBAgIQAPwW+ck6S1YDODOUWMrr0DANBgkqhkiG9w0BAQUFADBDMQswCQ YDVQQGEwJMVTEZMBcGA1UEChMQU2VNYXJrZXQgQ0EgUy5BLjEZMBcGA1UEAxMQU2VNYXJ rZXQgQ0EgUm9vdDAeFw0wODA3MjMxMDAwMzNaFw0yNDA3MjMwOTUzMDhaMEMxCzAJBg NVBAYTAkxVMRkwFwYDVQQKExBTZU1hcmtldCBDQSBTLkEuMRkwFwYDVQQDExBTZU1hcmtl dCBDQSBSb290MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt8rPRP9UGxVAFjWzD 5ClKdSc9xZZkVldNaynwBwuk2y6BLYc9mxIDIEQ+MGMVfu1bYuWxeDDry4HmNNqGmyFVyvgEe kwwYF3hOAkP+wYGo2li4BWJsJrRWgA2Lg7YdBJ7TCFat/Gk9kdsNOnuBHw3ZXI6fq8ejNBRk2ffOH bIMp60D064b0fDHL5wRCOgztxX0iCoStZHRgKYhDyfbQlZfESmeXkG7sfatuqIs1GxbfxqIQ7VgZexd DtJh8gFAiZLDUtoB3d+LCPgc2I57NMkBWrGHo+HxNq5BRwSWOfwZIcTHGyQHYKBdfx6qbkFqP +/aYgbxOx10unzMLyywfYDQIDAQABo0IwQDAPBgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/w QEAwIBBjAdBgNVHQ4EFgQU87dhyhzwq6SpDcQJ4Zq6g48MkOAwDQYJKoZIhvcNAQEFBQADgg EBAHa6r27PR3/cVpW8i7GpQfeNgQvcl3GLwhRAjIrUathJI/J1ECSY4uxamKmzYKukKE+aWgVC0uV RvPwzytdjwcLqI8lzROk6ZjD4tinlkA18nySp95sexb8be5f3n5MQzuIvfM+iD2KAVme+zigRmiRqXOij KoOsO5VmCV2WOfcd6u07Sp6BFffbzpg4AJCDHLDeQmpkQmV7GzXSxA38ufNKf+gPGzsLqYoxL/ MmeAUUDFgAWKb4WdqhbBsOd1Y0LSMBn/MjD1u+JURsoWzrz1gVo7/RK0iBWqAolppb0oMFwrS Kg1QqM3DaJRjG0PBmSaNHXBbZMcEeXi0afD5r6+k= -----END CERTIFICATE----- Version 3 Serial Number 1308924811451483386725277668209257424 SigAlgName SHA1withRSA Issuer DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LU Valid from 2008-07-23T10:00:33Z Valid to 2024-07-23T09:53:08Z Subject DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LU Public Key Algo RSA Public Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 b7 ca cf 44 ff 54 1b 15 40 16 35 b3 0f 90 a5 29 d4 9c f7 16 59 91 59 5d 35 ac a7 c0 1c 2e 93 6c ba 04 b6 1c f6 6c 48 0c 81 10 f8 c1 8c 55 fb b5 6d 8b 96 c5 e0 c3 af 2e 07 98 d3 6a 1a 6c 85 57 2b e0 11 e9 30 c1 81 77 84 e0 24 3f ec 18 1a 8d a5 8b 80 56 26 c2 6b 45 68 00 d8 b8 3b 61 d0 49 ed 30 85 6a df c6 93 d9 1d b0 d3 a7 b8 11 f0 dd 95 c8 e9 fa bc 7a 33 41 46 4d 9f 7c e1 db 20 ca 7a d0 3d 3a e1 bd 1f 0c 72 f9 c1 10 8e 83 3b 71 5f 48 82 a1 2b 59 1d 18 0a 62 10 f2 7d b4 25 65 f1 12 99 e5 e4 1b bb 1f 6a db aa 22 cd 46 c5 b7 f1 a8 84 3b 56 06 5e c5 d0 ed 26 1f 20 14 08 99 2c 35 2d a0 1d dd f8 b0 8f 81 cd 88 e7 b3 4c 90 15 ab 18 7a 3e 1f 13 6a e4 14 70 49 63 9f c1 92 1c 4c 71 b2 40 76 0a 05 d7 f1 ea a6 e4 16 a3 fe fd a6 20 6f 13 b1 d7 4b a7 cc c2 f2 cb 07 d8 0d 02 03 01 00 01 Authority Key Identifier Certificate Policies CRL Distribution Points Subject Key Identifier ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: f3 b7 61 ca 1c f0 ab a4 a9 0d c4 09 e1 9a ba 83 ..a............. 0010: 8f 0c 90 e0 .... ] ] Key Usage ObjectId: 2.5.29.15 Criticality=true KeyUsage [ Key_CertSign Crl_Sign ] Page 23 / 24
  • 24. Basic Constraints ObjectId: 2.5.29.19 Criticality=true BasicConstraints:[ CA:true PathLen:2147483647 ] Thumbprint Algo SHA256 Thumbprint a4 4e 8e fd 1e fc 78 f2 44 5f 1a 9f 62 63 9d 8f ba 21 20 9c 9e f3 1e 87 11 77 7f d2 c8 2b 07 12 Thumbprint Algo SHA1 Thumbprint ef ab 25 3d 0e 25 79 fe c0 bf 88 ed a0 24 a7 98 3e 57 ca d9 Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/supervisionrevoked Having been previously supervised, the service and potentially the CSP itself has failed to continue to comply with the provisions laid down in Directive 1999/93/EC. Accordingly the service has been required to cease its operations and must be considered as ceased for the above reason. Status Starting Time 2009-09-11T00:00:00Z Scheme Service Definition URI en http://www.ilnas.public.lu/semarket Service Information Extension Qualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/SvcInfoExt/QCWithSSCD It is ensured by the certification service provider and controlled (supervision model) or audited (accreditation model) by the referenced Member State (respectively its Supervisory Body or Accreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC) identified in "Service digital identity" and further identified by the filters information used to further identify under the "Sdi" identified certification service that precise set of Qualified Certificates for which this additional information is required with regards to the presence or absence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. that that the private key associated with the public key in the certificate is stored in a Secure Signature Creation Device conformant with annex III of Directive 1999/93/EC [1]). Criteria List assert="all" Policy Identifier Identifier 1.3.6.1.4.1.25969.8.2.1 Description Qualified Certificate TSP 2, Service 1, History N.1 Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC A Certification authority issuing Qualified Certificates. Service Name Name en SeMarket Qualified Certification Authority Digital Id X509 Subject Name CN=SeMarket CA Root,O=SeMarket CA S.A.,C=LU Service Status http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervision The service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC. Status Starting Time 2007-11-27T00:00:00Z Service Information Extension Qualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC- TrustedList/SvcInfoExt/QCWithSSCD It is ensured by the certification service provider and controlled (supervision model) or audited (accreditation model) by the referenced Member State (respectively its Supervisory Body or Accreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC) identified in "Service digital identity" and further identified by the filters information used to further identify under the "Sdi" identified certification service that precise set of Qualified Certificates for which this additional information is required with regards to the presence or absence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. that that the private key associated with the public key in the certificate is stored in a Secure Signature Creation Device conformant with annex III of Directive 1999/93/EC [1]). Criteria List assert="all" Policy Identifier Identifier 1.3.6.1.4.1.25969.8.2.1 Description Qualified Certificate Page 24 / 24 Alain Wahl Digitally signed by Alain Wahl DN: c=LU, l=LU, o=ILNAS, ou=NA, cn=Alain Wahl, sn=Wahl, givenName=Alain, serialNumber=11103487200018993476, email=alain.wahl@ilnas.etat.lu, title=Professional Person Date: 2012.11.30 14:32:59 +01'00'