Tsl pdf

1,291 views

Published on

xác thực 2 yếu tố

Published in: Technology, Business
  • Be the first to comment

  • Be the first to like this

Tsl pdf

  1. 1. Luxembourg (Luxembourg): Trusted ListInstitut Luxembourgeois de la Normalisation, de lAccréditation de laSécurité et qualité des produits et servicesScheme InformationTSL Version Identifier 3TSL Sequence Number 14TSL Typehttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/TSLType/genericIndicates a "generic" TSL that exclusively contains trust services which are approved or recognized by the scheme operatorowning the TSL through a process of direct oversight (whether voluntary or regulatory).Scheme Operator Name Name enInstitut Luxembourgeois de la Normalisation, delAccréditation, de la Sécurité et qualité des produits etservices (ILNAS)Scheme Operator Name Name frInstitut Luxembourgeois de la Normalisation, delAccréditation, de la Sécurité et qualité des produits etservices (ILNAS)Scheme Operator AddressStreet Address en 34-40 Avenue de la Porte-NeuveLocality en LuxembourgState Or Province enPostal Code en L-2227Country Name en LUElectronic Address URI mailto:confiance-numerique@ilnas.etat.luElectronic Address URI http://www.ilnas.public.luScheme Name Name enLU:Supervision/Accreditation Status List of certificationservices from Certification Service Providers, which aresupervised/accredited by the referenced Member State forcompliance with the relevant provisions laid down inDirective 1999/93/EC and its implementation in thereferenced Member States laws.Scheme Information URI Name en http://www.ilnas.public.lu/digital-trustStatus DeterminationApproachhttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/StatusDetn/appropriateServices listed have their status determined by or on behalf of the Scheme Operator under an appropriate system for areferenced Member State that allows for supervision (and, when applicable, for voluntary accreditation) of certificationservice providers who are established on its territory (or established in a third country in the case of voluntary accreditation)and issue qualified certificates to the public.Scheme Type Community Rule URIhttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/schemerules/commonDescriptive text by which participation is denoted of the Member States scheme in a scheme ofschemes, where users can obtain policy/rules against which services included in the list shall beassessed and from which the type of the TSL can be determined, and where users can obtaindescription about how to use and interpret the content of the TSL implementation of the TrustedList.Scheme Type Community Rule URIhttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/schemerules/LUDescriptive text where users can obtain the Luxembourg specific policy/rules against whichservices included in the list shall be assessed in compliance with Luxembourg appropriatesupervision system and voluntary accreditation schemes, where users can obtain a referencedLuxembourg specific description about how to use and interpret the content of the TSLimplementation of the Trusted List with regard to the certification services not related to theissuing of QCs.Scheme Territory LUPage 1 / 24
  2. 2. Policy Or Legal Notice TSL Legal Notice enThe applicable legal framework for the present TSLimplementation of the Trusted List of supervised/accreditedCertification Service Providers for Luxembourg is theDirective 1999/93/EC of the European Parliament and of theCouncil of 13 December 1999 on a Community framework forelectronic signatures and its implementation in Luxembourglaws. The accreditation scheme for all CSPs issuing qualified,non-qualified certificates, or other services related toelectronic signature is based upon the Law of 14 August2000, and Grand-Ducal Regulations of 1st June 2001 and 21December 2004.Historical Information Period 3653Page 2 / 24
  3. 3. Pointer To Other TSL X509 Certificate-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----Version 3Serial Number 1208925819615896178901234SigAlgName SHA1withRSAIssuer DN CN=GlobalSign ServerSign CA, OU=ServerSign CA,O=GlobalSign nv-sa, C=BEValid from 2010-02-24T09:05:13ZValid to 2013-03-28T12:04:50ZSubject DN CN=ec.europa.eu, OU=DIGIT, O=EuropeanCommission, L=Luxembourg, ST=Luxembourg, C=LUPublic Key Algo RSAPublic Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 0003 81 8d 00 30 81 89 02 81 81 00 c3 45 d8 a3 4c db33 e5 11 8d 6e 7c 90 03 df 16 fb 93 fc 71 2d 7c 2a 2492 7a 70 a4 c9 50 7b 66 29 e2 73 19 34 93 41 86 ea 775a 19 e7 2f ac 41 ed df eb 3f 8b e6 c0 f3 39 b1 0f 3a27 d4 67 3e 45 48 fb 14 4e 43 09 d3 16 5c cd 7f ee 0136 25 85 b6 13 62 2e d0 db 52 00 1b dd 56 32 ee f5 c3ff f3 5a 76 b0 29 f2 9e 3e 44 38 29 76 d4 4f bc b2 67e3 ca 5c 6d f8 ef 09 cd a6 9a 42 c8 ca bb 02 03 01 0001Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: 48 bb a8 bf 5b 84 d2 57 48 e4 61 e9 91 20 91d8 H......WH.a.....0010: 1d 25 df 7f ....]]CertificatePoliciesCRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:http://crl.globalsign.net/ServerSign.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierPage 3 / 24
  4. 4. Key Usage ObjectId: 2.5.29.15 Criticality=trueKeyUsage [DigitalSignatureNon_repudiationKey_EnciphermentData_Encipherment]Basic ConstraintsThumbprint Algo SHA256Thumbprint 81 bc 61 fa 39 fa f5 b4 d5 d8 77 98 be 53 bd 68 68 af06 ff 05 78 bf a9 3b 15 76 5a 6f da 8d adThumbprint Algo SHA1Thumbprint 5e 98 89 3b ed 90 44 ef b0 9a 94 c4 8a fd b6 52 b5 1970 8fTSL Locationhttps://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-hr.pdfTSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/TSLType/schemesA TSL implementation of a compiled list of pointers towards Member Statessupervision/accreditation status lists of certification services from certification service providerswhich are supervised/accredited by the referenced Member State owning the pointed TSLimplementation for compliance with the relevant provisions laid down in the eSignature Directive1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on aCommunity framework for electronic signatures, through a process of direct oversight (whethervoluntary or regulatory).Scheme OperatorNameEuropean CommissionScheme TypeCommunity Ruleshttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/schemerules/CompiledListA URI pointing towards a descriptive text where users can obtain information about the scheme ofschemes type (i.e. a TSL listing pointers to all Member States Trusted Lists published andmaintained in the form of a TSL) and the relevant driving rules and policy.Scheme Territory EUMime Type application/pdfPage 4 / 24
  5. 5. Pointer To Other TSL X509 Certificate-----BEGIN CERTIFICATE-----MIIHPDCCBSSgAwIBAgIBcjANBgkqhkiG9w0BAQsFADAxMQswCQYDVQQGEwJFUzERMA8GA1UECgwIRk5NVC1SQ00xDzANBgNVBAMMBklTQSBDQTAeFw0xMTExMTYxNTExMDdaFw0xNTExMTYxNTExMDdaME0xCzAJBgNVBAYTAkJFMRwwGgYDVQQKDBNFVVJPUEVBTiBDT01NSVNTSU9OMSAwHgYDVQQDDBcoU0lHTikgQU5ORUxJIEFORFJFU1NPTjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMw881fbxBn5Eq64Hf6pqEqn0Intg49k5D+E2JBMcyeOMYE4WwuzVqs7fuKMX5mhiFw7llVx42S7GIDnKa6ascF7irISsYTGOtD6dGt8OEOQkG5i24wxT3we63VW1W/PEO0WoRjkPDBqgljnqcLn+WJLr3Yl9fpkxyT+H3pl0jnGkGi7UUKEDuoCglFy9Tb1TE+eVNiGWmfskRy6q9Pioujp2FqrwNm95VAkLFGoNF4iZQda79bgjvAYnA5p4QXgr/5sWZjgsa3Ea9PlRwEvO7C8ndnRE/PTUNwaSmOZsmPH/ksCCnfTDqqehHVnry3K6QIUKhRsoT1m60qv4UKrvrsCAwEAAaOCA0EwggM9MF0GA1UdEQRWMFSBHUFOTkVMSS5BTkRSRVNTT05ARUMuRVVST1BBLkVVpDMwMTEYMBYGCSsGAQQBrGYBAgwJQU5EUkVTU09OMRUwEwYJKwYBBAGsZgEBDAZBTk5FTEkwCQYDVR0TBAIwADAOBgNVHQ8BAf8EBAMCBkAwHQYDVR0OBBYEFEoUEf+0Oe59fVRs/rW2M0KhmlDsMB8GA1UdIwQYMBaAFEft+GPwma9e/n4OXFjL/uI1N6a9MIHgBgNVHSAEgdgwgdUwgcgGCisGAQQBrGYDBAEwgbkwKQYIKwYBBQUHAgEWHWh0dHA6Ly93d3cuY2VydC5mbm10LmVzL2RwY3MvMIGLBggrBgEFBQcCAjB/DH1RdWFsaWZpZWQgY2VydGlmaWNhdGUuIFVuZGVyIHRoZSB1c2FnZSBjb25kaXRpb25zIGFzc2VydGVkIGluIHRoZSBGTk1ULVJDTSBDUFMgKDEwNiwgSm9yZ2UgSnVhbiBzdHJlZXQsMjgwMDksIE1hZHJpZCwgU3BhaW4pLjAIBgYEAIswAQEwgYYGCCsGAQUFBwEBBHoweDBBBggrBgEFBQcwAYY1aHR0cDovL29jc3BJU0FjYS5jZXJ0LmZubXQuZXMvb2NzcElTQWNhL09jc3BSZXNwb25kZXIwMwYIKwYBBQUHMAKGJ2h0dHA6Ly93d3cuY2VydC5mbm10LmVzL2NlcnRzL0lTQUNBLmNydDBGBggrBgEFBQcBAwQ6MDgwCAYGBACORgEBMAsGBgQAjkYBAwIBDzAVBgYEAI5GAQIwCxMDRVVSAgECAgECMAgGBgQAjkYBBDCBzAYDVR0fBIHEMIHBMIG+oIG7oIG4hoGIbGRhcDovL2xkYXBJU0FjYS5jZXJ0LmZubXQuZXMvQ049Q1JMMixjbj1JU0ElMjBDQSxvPUZOTVQtUkNNLEM9RVM/Y2VydGlmaWNhdGVSZXZvY2F0aW9uTGlzdDtiaW5hcnk/YmFzZT9vYmplY3RjbGFzcz1jUkxEaXN0cmlidXRpb25Qb2ludIYraHR0cDovL3d3dy5jZXJ0LmZubXQuZXMvY3Jsc19JU0FjYS9DUkwyLmNybDANBgkqhkiG9w0BAQsFAAOCAgEALIKumRPBo9NIYyzm4LSJklE9CmsirJC89MPcFiC9+vg4YrO9Mmakr8G5ZAVZf+Zr6HgLcIf93/BSgE4UDFD9mAROPDElqx2ppg1+foIvlqg57EiHH2kOS4IYJEJpWCs4IqcBkSKcS5vJ5XVpNJL4elpeMQjsGoqjmkKDr1IeZQVOxOiW/bNhM9Fw6R1aMMLbnziwAgHWDpmIj2Se74HuS3ca0ctm9fAPp/2Y87bgZ1ETs9A6wc4GxYEuGTwh1HPbDB6tgjSnjH0hY3qBITjB8IM0xGvUR9dQkt8Ez4dvyxcaFlyCMfLaeMf8jlJOv4uU1yRRT9wESIj5GcoE43cy1cuvRMifqYhoi3KPojJaLTV7ASy1X0yuBWyg0jGyvE6aTIAu3XGCwdGYB1WnSzEUPJboqcyJydkXXxnBKFchw602pVB0ITUqitGH+Kfix2mQQf+v0RDEWQU3WdADNHc+cqoc7sXkJXkO657dYZT/Ey5MR+gXRm6oK52iXIqjM8kbDqCqAOHVC73u+bUvh0y5B5PjGYuE2K9xK36ooavh5ytF/kY+y0Ju804CRF00b4wKcibGxplOrU1g+ncONNmBHGbsLULXrum8+fsD3O04Mf0t0O9Mt/ZwAZTa8Cwq/0pqOWdRqucV7pq/A7fEnRb5AdBaAzxqrXVaa92NkScAm80=-----END CERTIFICATE-----Version 3Serial Number 114SigAlgName SHA256withRSAIssuer DN CN=ISA CA, O=FNMT-RCM, C=ESValid from 2011-11-16T15:11:07ZValid to 2015-11-16T15:11:07ZSubject DN CN=(SIGN) ANNELI ANDRESSON, O=EUROPEANCOMMISSION, C=BEPublic Key Algo RSAPublic Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 0500 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 cc 3c f357 db c4 19 f9 12 ae b8 1d fe a9 a8 4a a7 d0 89 ed 838f 64 e4 3f 84 d8 90 4c 73 27 8e 31 81 38 5b 0b b3 56ab 3b 7e e2 8c 5f 99 a1 88 5c 3b 96 55 71 e3 64 bb 1880 e7 29 ae 9a b1 c1 7b 8a b2 12 b1 84 c6 3a d0 fa 746b 7c 38 43 90 90 6e 62 db 8c 31 4f 7c 1e eb 75 56 d56f cf 10 ed 16 a1 18 e4 3c 30 6a 82 58 e7 a9 c2 e7 f962 4b af 76 25 f5 fa 64 c7 24 fe 1f 7a 65 d2 39 c6 9068 bb 51 42 84 0e ea 02 82 51 72 f5 36 f5 4c 4f 9e 54d8 86 5a 67 ec 91 1c ba ab d3 e2 a2 e8 e9 d8 5a ab c0d9 bd e5 50 24 2c 51 a8 34 5e 22 65 07 5a ef d6 e0 8ef0 18 9c 0e 69 e1 05 e0 af fe 6c 59 98 e0 b1 ad c4 6bd3 e5 47 01 2f 3b b0 bc 9d d9 d1 13 f3 d3 50 dc 1a 4a63 99 b2 63 c7 fe 4b 02 0a 77 d3 0e aa 9e 84 75 67 af2d ca e9 02 14 2a 14 6c a1 3d 66 eb 4a af e1 42 ab bebb 02 03 01 00 01Page 5 / 24
  6. 6. Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: 47 ed f8 63 f0 99 af 5e fe 7e 0e 5c 58 cb fe e2G..c........X...0010: 35 37 a6 bd 57..]]CertificatePoliciesObjectId: 2.5.29.32 Criticality=falseCertificatePolicies [[PolicyInformation: [CertPolicyId: 1.3.6.1.4.1.5734.3.4.1PolicyQualifiers: [PolicyQualifierInfo: [CPSuri: [object identifier: 1.3.6.1.5.5.7.2.1uri: http://www.cert.fnmt.es/dpcs/]], PolicyQualifierInfo: [UserNotice: [ObjectIdentifier: 1.3.6.1.5.5.7.2.2NoticeReference: nullExplicitText: Qualified certificate. Under the usageconditions asserted in the FNMT-RCM CPS (106, JorgeJuan street,28009, Madrid, Spain).]]]],PolicyInformation: [CertPolicyId: 0.4.0.1456.1.1PolicyQualifiers: null]]]CRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:ldap://ldapISAca.cert.fnmt.es/CN=CRL2,cn=ISA%20CA,o=FNMT-RCM,C=ES?certificateRevocationList;binary?base?objectclass=cRLDistributionPoint, URIName:http://www.cert.fnmt.es/crls_ISAca/CRL2.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: 4a 14 11 ff b4 39 ee 7d 7d 54 6c fe b5 b6 33 42J....9...Tl...3B0010: a1 9a 50 ec ..P.]]Key Usage ObjectId: 2.5.29.15 Criticality=trueKeyUsage [Non_repudiation]Page 6 / 24
  7. 7. Basic Constraints ObjectId: 2.5.29.19 Criticality=falseBasicConstraints:[CA:falsePathLen: undefined]Thumbprint Algo SHA256Thumbprint 5d 39 e8 f1 16 69 50 e9 97 38 32 ad 26 6f 06 74 2c c4a9 48 48 69 df 61 ef cb 84 9d b2 fc 60 4aThumbprint Algo SHA1Thumbprint a8 4e 18 97 24 1f 85 c5 55 d0 3f 48 f5 a1 95 d6 3c 6aa6 5bPage 7 / 24
  8. 8. X509 Certificate-----BEGIN CERTIFICATE-----MIIFnDCCBISgAwIBAgIDAVZhMA0GCSqGSIb3DQEBBQUAMEUxCzAJBgNVBAYTAkxVMRYwFAYDVQQKEw1MdXhUcnVzdCBTLkEuMR4wHAYDVQQDExVMdXhUcnVzdCBRdWFsaWZpZWQgQ0EwHhcNMDkxMjIzMTAzNTU2WhcNMTIxMjIzMTAzNTU2WjCCAQYxCzAJBgNVBAYTAkJFMQswCQYDVQQHEwJCRTEcMBoGA1UEChMTRXVyb3BlYW4gQ29tbWlzc2lvbjELMAkGA1UECxMCTkExJDAiBgNVBAMTG0thcmVsIExvZGV3aWprIE0gRGUgVnJpZW5kdDETMBEGA1UEBBMKRGUgVnJpZW5kdDEZMBcGA1UEKhMQS2FyZWwgTG9kZXdpamsgTTEdMBsGA1UEBRMUMTAxMDAzMzIxMTAwMDQ3NDkzNzgxLDAqBgkqhkiG9w0BCQEWHUthcmVsLkRlLVZyaWVuZHRAZWMuZXVyb3BhLmV1MRwwGgYDVQQMExNQcm9mZXNzaW9uYWwgUGVyc29uMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC96JBqnjCmAk43LDuZDMu5lNGK7/UQnJBLDkUqN2Jb/STQSBJnRJchCY9DnKtqYG9cuSZDRxvIUkssqO/WpFu/I5fO9I4mvLGD9h4ot8/GkRntbEl3CnMlRKZJkAdcSHwuqnuNpfaZ4yGGIPslRy9pbRkfXSeeneJAo0Ixiu3QJwIDAQABo4ICVDCCAlAwDAYDVR0TAQH/BAIwADBgBggrBgEFBQcBAQRUMFIwIwYIKwYBBQUHMAGGF2h0dHA6Ly9vY3NwLmx1eHRydXN0Lmx1MCsGCCsGAQUFBzAChh9odHRwOi8vY2EubHV4dHJ1c3QubHUvTFRRQ0EuY3J0MIIBHQYDVR0gBIIBFDCCARAwggECBggrgSsBAQIEATCB9TCBxwYIKwYBBQUHAgIwgboagbdMdXhUcnVzdCBRdWFsaWZpZWQgQ2VydGlmaWNhdGUgb24gQ0NTRCBjb21wbGlhbnQgd2l0aCBFVFNJIFRTIDEwMSA0NTYgUUNQKyBjZXJ0aWZpY2F0ZSBwb2xpY3kuIEtleSBHZW5lcmF0aW9uIGJ5IENTUC4gU29sZSBBdXRob3Jpc2VkIFVzYWdlOiBTdXBwb3J0IG9mIFF1YWxpZmllZCBFbGVjdHJvbmljIFNpZ25hdHVyZS4wKQYIKwYBBQUHAgEWHWh0dHA6Ly9yZXBvc2l0b3J5Lmx1eHRydXN0Lmx1MAgGBgQAizABATA2BggrBgEFBQcBAwQqMCgwCAYGBACORgEBMBIGBgQAjkYBAjAIEwACAQACAQAwCAYGBACORgEEMBEGCWCGSAGG+EIBAQQEAwIFIDALBgNVHQ8EBAMCBkAwHwYDVR0jBBgwFoAUjZCjB90aE3eZTJKrTUPeP80pZAUwMQYDVR0fBCowKDAmoCSgIoYgaHR0cDovL2NybC5sdXh0cnVzdC5sdS9MVFFDQS5jcmwwEQYDVR0OBAoECEwDOyVe3IV5MA0GCSqGSIb3DQEBBQUAA4IBAQBStS9gFx5BmEv5VciG7qEPR5VzqEpBElkjXDYe68Dw7Ol1nCt51CSuAB2/UcTkfCDh6022H7+EtiUpdM6GH/7qDqZdjqYpQznbu4xkrGTMLrTA1lalhgWugGQIpmCg69kiXns/AXcuJVQSR3mA3BMvJrN5PNaALoguynWCrxRHPTUS3pT5J93jCn90ZPAGhxELRxMdZuFZ2UAn8D8XLUxiz0IK9yqdysJiLzWsQazUkZ+lzDG0mPomyRkl3LzEK8HXO3HKGr+2n760N+StYyjwywP/kS/3LoPQWfUfjWQE8jDiTgodZT4ewVSxuNrBH5Ls29aBi0YsT9NYstznKgaR-----END CERTIFICATE-----Version 3Serial Number 87649SigAlgName SHA1withRSAIssuer DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LUValid from 2009-12-23T10:35:56ZValid to 2012-12-23T10:35:56ZSubject DN T=Professional Person, EMAILADDRESS=Karel.De-Vriendt@ec.europa.eu,SERIALNUMBER=10100332110004749378,GIVENNAME=Karel Lodewijk M, SURNAME=DeVriendt, CN=Karel Lodewijk M De Vriendt, OU=NA,O=European Commission, L=BE, C=BEPublic Key Algo RSAPublic Key 30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 0003 81 8d 00 30 81 89 02 81 81 00 bd e8 90 6a 9e 30a6 02 4e 37 2c 3b 99 0c cb b9 94 d1 8a ef f5 10 9c 904b 0e 45 2a 37 62 5b fd 24 d0 48 12 67 44 97 21 09 8f43 9c ab 6a 60 6f 5c b9 26 43 47 1b c8 52 4b 2c a8 efd6 a4 5b bf 23 97 ce f4 8e 26 bc b1 83 f6 1e 28 b7 cfc6 91 19 ed 6c 49 77 0a 73 25 44 a6 49 90 07 5c 48 7c2e aa 7b 8d a5 f6 99 e3 21 86 20 fb 25 47 2f 69 6d 191f 5d 27 9e 9d e2 40 a3 42 31 8a ed d0 27 02 03 01 0001Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de3f .......w.L..MC..0010: cd 29 64 05 ..d.]]Page 8 / 24
  9. 9. CertificatePoliciesObjectId: 2.5.29.32 Criticality=falseCertificatePolicies [[PolicyInformation: [CertPolicyId: 1.3.171.1.1.2.4.1PolicyQualifiers: [PolicyQualifierInfo: [UserNotice: [ObjectIdentifier: 1.3.6.1.5.5.7.2.2NoticeReference: nullExplicitText: LuxTrust Qualified Certificate on CCSDcompliant with ETSI TS 101 456 QCP+ certificatepolicy. Key Generation by CSP. Sole Authorised Usage:Support of Qualified Electronic Signature.]], PolicyQualifierInfo: [CPSuri: [object identifier: 1.3.6.1.5.5.7.2.1uri: http://repository.luxtrust.lu]]]],PolicyInformation: [CertPolicyId: 0.4.0.1456.1.1PolicyQualifiers: null]]]CRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:http://crl.luxtrust.lu/LTQCA.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: 4c 03 3b 25 5e dc 85 79 L......y]]Key Usage ObjectId: 2.5.29.15 Criticality=falseKeyUsage [Non_repudiation]Basic Constraints ObjectId: 2.5.29.19 Criticality=trueBasicConstraints:[CA:falsePathLen: undefined]Thumbprint Algo SHA256Thumbprint d5 49 51 fe bb c5 9d 2c 2e c0 1a cc d9 2c cd 8c 9d 2c74 44 c2 e5 51 ba 7e c0 de 62 2c 74 14 8cThumbprint Algo SHA1Thumbprint 66 0c bd 62 c4 2e a2 8d 8b 98 37 54 bb e7 b1 4a 86 4e01 64TSL Locationhttps://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-mp.xmlPage 9 / 24
  10. 10. TSL Type http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/TSLType/schemesA TSL implementation of a compiled list of pointers towards Member Statessupervision/accreditation status lists of certification services from certification service providerswhich are supervised/accredited by the referenced Member State owning the pointed TSLimplementation for compliance with the relevant provisions laid down in the eSignature Directive1999/93/EC [1] of the European Parliament and of the Council of 13 December 1999 on aCommunity framework for electronic signatures, through a process of direct oversight (whethervoluntary or regulatory).Scheme OperatorNameEuropean CommissionScheme TypeCommunity Ruleshttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/schemerules/CompiledListA URI pointing towards a descriptive text where users can obtain information about the scheme ofschemes type (i.e. a TSL listing pointers to all Member States Trusted Lists published andmaintained in the form of a TSL) and the relevant driving rules and policy.Scheme Territory EUMime Type application/vnd.etsi.tsl+xmlList Issue Date Time 2012-11-30T00:00:00ZNext Update dateTime 2013-05-29T00:00:00ZDistribution Point http://www.ilnas.public.lu/tsl-xmlList of Trust Service ProvidersTSP 1 InformationTSP Name Name en LuxTrust S.A.Street Address en IVY Building - 13-15 Parc dActivitésLocality en CapellenState Or Province enPostal Code en L-8308Country Name en LUElectronic Address URI mailto:info@luxtrust.luTSP Information URI URI en https://www.luxtrust.lu/en/faqList of ServicesTSP 1, Service 1Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/CA/QCA Certification authority issuing Qualified Certificates.Service Name Name en LuxTrust Qualified Certification AuthorityDigital IdX509 SubjectNameCN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LUPage 10 / 24
  11. 11. DigitalId X509 Certificate-----BEGIN CERTIFICATE-----MIID8DCCAtigAwIBAgICA+swDQYJKoZIhvcNAQEFBQAwQDELMAkGA1UEBhMCTFUxFjAUBgNVBAoTDUx1eFRydXN0IHMuYS4xGTAXBgNVBAMTEEx1eFRydXN0IHJvb3QgQ0EwHhcNMDgwNjA1MDkyNTI0WhcNMTYxMDE4MTA0MDM0WjBFMQswCQYDVQQGEwJMVTEWMBQGA1UEChMNTHV4VHJ1c3QgUy5BLjEeMBwGA1UEAxMVTHV4VHJ1c3QgUXVhbGlmaWVkIENBMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAybFXzA+8RNnvlCd+sZ8BnH6WO3LmaLi419Ygd9VBYcIwLmMx9KgAKF3u4B87Hee5NL4Xvhm/B9DuDUH5OGZ3P2Dwf7putVEvATvW8jzYq6CzarUthzb9ux+KTdTT+d4y6tkgVggy9DBe+bz635oZm2PPQT9kzoR48RBN730KA/MJIa0Sa7ZDphL37WHSA4/TWh9F1/LBRVGC0F4Mg1hU/u+kovF5mTuUK+ncU7+FS0cQRhAD+C4WfLI/WuzuE+T6ZuZ6Iqg6+vqgf6iKwL6iVZmwKkJPvV3+3Wgy3zq5tpDvsIGj4kXd1riQGKsEeDfN8y71DG3OdBqF1Yd7ue7ziwIDAQABo4HuMIHrMA8GA1UdEwQIMAYBAf8CAQAwQgYDVR0gBDswOTA3BggrgSsBAQEBADArMCkGCCsGAQUFBwIBFh1odHRwOi8vcmVwb3NpdG9yeS5sdXh0cnVzdC5sdTARBglghkgBhvhCAQEEBAMCAAcwDgYDVR0PAQH/BAQDAgHGMB8GA1UdIwQYMBaAFN2K1zDx+ZFx6UdwDCXlrKGN34wlMDEGA1UdHwQqMCgwJqAkoCKGIGh0dHA6Ly9jcmwubHV4dHJ1c3QubHUvTFRSQ0EuY3JsMB0GA1UdDgQWBBSNkKMH3RoTd5lMkqtNQ94/zSlkBTANBgkqhkiG9w0BAQUFAAOCAQEAapxOpigXTejGgHBWMAwDBMdZQHpPyoCmw32OIj1qqezO5nDnjG5gfJni/rp5IFMpV//xmCkjqyO92PyYbcHNSUpP1SjCkyn10e6ipmzpXK0MbgFvIPglAgA5dXxTNf0Q77eWu36fz5VKQEmJzqoXTccq4nuLL9rLZ88YUlczMaWscETIZCB4kecKVyqHf4+T0JucZqX7zzfpiVyTr2M+OGl9qiOmKwBGkzseJt+MgYWrskJADKDZMr4bQxkxnhzCSQoraX7DugxM0fH47MitCc74uZrWIJ6qQjCLBtKzxUGy7B3pYOjLlThr7S64cd12yuR+NjHAFZ2DTXwxKg/FQg==-----END CERTIFICATE-----Version 3Serial Number 1003SigAlgName SHA1withRSAIssuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LUValid from 2008-06-05T09:25:24ZValid to 2016-10-18T10:40:34ZSubject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LUPublic Key Algo RSAPublic Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 0500 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e668 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 0028 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 199b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 0921 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 7999 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 167c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7fa8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 7837 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b02 03 01 00 01Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1...0...q.Gp.....0010: 8d df 8c 25 ....]]Page 11 / 24
  12. 12. CertificatePoliciesObjectId: 2.5.29.32 Criticality=falseCertificatePolicies [[PolicyInformation: [CertPolicyId: 1.3.171.1.1.1.1.0PolicyQualifiers: [PolicyQualifierInfo: [CPSuri: [object identifier: 1.3.6.1.5.5.7.2.1uri: http://repository.luxtrust.lu]]]]]]CRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:http://crl.luxtrust.lu/LTRCA.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de3f .......w.L..MC..0010: cd 29 64 05 ..d.]]Key Usage ObjectId: 2.5.29.15 Criticality=trueKeyUsage [DigitalSignatureNon_repudiationKey_CertSignCrl_Sign]Basic Constraints ObjectId: 2.5.29.19 Criticality=falseBasicConstraints:[CA:truePathLen:0]Thumbprint Algo SHA256Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7Thumbprint Algo SHA1Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e aca2 aaService Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accreditedAn accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliancewith the provisions laid down in Directive 1999/93/EC.Status Starting Time 2009-10-13T00:00:00ZTSP 1, Service 1, History N.1Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/CA/QCA Certification authority issuing Qualified Certificates.Service Name Name en LuxTrust Qualified Certification AuthorityPage 12 / 24
  13. 13. Digital IdX509 SubjectNameCN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LUService Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervisionThe service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.Status Starting Time 2008-07-29T00:00:00ZTSP 1, Service 2Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/TSAA Time stamping authority.Service Name Name en LuxTrust Time Stamping AuthorityDigital IdX509 SubjectNameCN=LuxTrust Qualified CA,O=LuxTrust S.A.,C=LUPage 13 / 24
  14. 14. DigitalId X509 Certificate-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----Version 3Serial Number 1003SigAlgName SHA1withRSAIssuer DN CN=LuxTrust root CA, O=LuxTrust s.a., C=LUValid from 2008-06-05T09:25:24ZValid to 2016-10-18T10:40:34ZSubject DN CN=LuxTrust Qualified CA, O=LuxTrust S.A., C=LUPublic Key Algo RSAPublic Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 0500 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 c9 b1 57cc 0f bc 44 d9 ef 94 27 7e b1 9f 01 9c 7e 96 3b 72 e668 b8 b8 d7 d6 20 77 d5 41 61 c2 30 2e 63 31 f4 a8 0028 5d ee e0 1f 3b 1d e7 b9 34 be 17 be 19 bf 07 d0 ee0d 41 f9 38 66 77 3f 60 f0 7f ba 6e b5 51 2f 01 3b d6f2 3c d8 ab a0 b3 6a b5 2d 87 36 fd bb 1f 8a 4d d4 d3f9 de 32 ea d9 20 56 08 32 f4 30 5e f9 bc fa df 9a 199b 63 cf 41 3f 64 ce 84 78 f1 10 4d ef 7d 0a 03 f3 0921 ad 12 6b b6 43 a6 12 f7 ed 61 d2 03 8f d3 5a 1f 45d7 f2 c1 45 51 82 d0 5e 0c 83 58 54 fe ef a4 a2 f1 7999 3b 94 2b e9 dc 53 bf 85 4b 47 10 46 10 03 f8 2e 167c b2 3f 5a ec ee 13 e4 fa 66 e6 7a 22 a8 3a fa fa a0 7fa8 8a c0 be a2 55 99 b0 2a 42 4f bd 5d fe dd 68 32 df3a b9 b6 90 ef b0 81 a3 e2 45 dd d6 b8 90 18 ab 04 7837 cd f3 2e f5 0c 6d ce 74 1a 85 d5 87 7b b9 ee f3 8b02 03 01 00 01Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: dd 8a d7 30 f1 f9 91 71 e9 47 70 0c 25 e5 ac a1...0...q.Gp.....0010: 8d df 8c 25 ....]]Page 14 / 24
  15. 15. CertificatePoliciesObjectId: 2.5.29.32 Criticality=falseCertificatePolicies [[PolicyInformation: [CertPolicyId: 1.3.171.1.1.1.1.0PolicyQualifiers: [PolicyQualifierInfo: [CPSuri: [object identifier: 1.3.6.1.5.5.7.2.1uri: http://repository.luxtrust.lu]]]]]]CRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:http://crl.luxtrust.lu/LTRCA.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: 8d 90 a3 07 dd 1a 13 77 99 4c 92 ab 4d 43 de3f .......w.L..MC..0010: cd 29 64 05 ..d.]]Key Usage ObjectId: 2.5.29.15 Criticality=trueKeyUsage [DigitalSignatureNon_repudiationKey_CertSignCrl_Sign]Basic Constraints ObjectId: 2.5.29.19 Criticality=falseBasicConstraints:[CA:truePathLen:0]Thumbprint Algo SHA256Thumbprint fe 5d 1f de 82 82 0a c6 9f 02 65 80 8c 4e 69 4a cf 0a fa05 6b 56 a4 ea 84 98 4d 52 a8 5b f7 d7Thumbprint Algo SHA1Thumbprint 77 b1 b1 97 27 94 56 f5 16 3a 89 ca 41 4a ca 7c 7e aca2 aaService Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accreditedAn accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliancewith the provisions laid down in Directive 1999/93/EC.Status Starting Time 2009-10-13T00:00:00ZService Information ExtensionAdditionalServiceInformationhttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/SvcInfoExt/TSS-QCa time stamping service as part of a service from a certification service provider issuing QualifiedCertificates that issue TST that can be used in the qualified signature verification process toascertain and extend the signature validity when the QC is revoked or expired.Page 15 / 24
  16. 16. TSP 1, Service 3Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/CA/QCA Certification authority issuing Qualified Certificates.Service Name Name en LuxTrust Global Qualified Certification AuthorityDigital IdX509 SubjectNameCN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LUPage 16 / 24
  17. 17. DigitalId X509 Certificate-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----Version 3Serial Number 3223SigAlgName SHA256withRSAIssuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LUValid from 2011-11-22T09:34:24ZValid to 2017-11-22T09:34:24ZSubject DN CN=LuxTrust Global Qualified CA, O=LuxTrust S.A.,C=LUPublic Key Algo RSAPublic Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 0500 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 a8 d0 297d c9 e9 36 db 16 5b d8 f3 59 37 48 08 83 1d ba aa 0402 84 a2 77 6b 3f eb fa a8 40 bf f7 7f 8d 50 4b 67 2e66 42 f2 91 40 5a ef 9c b6 69 e6 06 39 47 3a e0 21 c332 67 10 b0 0a 2b 50 f8 cc 8b 3e 25 18 67 89 a0 fe 552b 1d f3 9f 85 64 63 61 a2 58 e0 3c fe 33 af 62 71 dcc0 b0 ab 95 ad fb 2e ac 9f d4 12 66 88 90 6b e0 8c 1cde 09 dd 2a 77 c0 57 62 79 ed e8 60 13 f5 b0 2c 27 b561 f2 50 f2 4e 1a 38 0f 59 9b b9 d7 ba 8e 6b a9 05 344d a9 6d 53 aa 7b b3 78 97 28 a0 8f 09 01 69 16 67 45f8 80 65 f3 1b 48 99 94 2e 22 ac 89 41 fd a6 90 88 9a28 fb c4 15 af 9d 75 4f ec c0 25 22 6f d8 2a 4f 4b af 1da4 be c0 64 14 f0 ef f7 e1 b3 21 7c e0 77 01 7f 8b 421f b4 21 97 dc c5 ad d6 96 19 da ab 66 27 9b 48 ce 1279 30 40 9e eb 8a 51 d6 2e b9 9c a3 a0 01 c5 9e 38 f702 03 01 00 01Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79........o......y0010: 83 48 13 ce .H..]]Page 17 / 24
  18. 18. CertificatePoliciesObjectId: 2.5.29.32 Criticality=falseCertificatePolicies [[PolicyInformation: [CertPolicyId: 1.3.171.1.1.1.10.3PolicyQualifiers: [PolicyQualifierInfo: [CPSuri: [object identifier: 1.3.6.1.5.5.7.2.1uri: https://repository.luxtrust.lu]]]]]]CRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:http://crl.luxtrust.lu/LTGRCA.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: 34 16 1b f1 d3 64 67 62 4c a3 34 bc 0d b3 53a4 4....dgbL.4...S.0010: 7c a1 f1 17 ....]]Key Usage ObjectId: 2.5.29.15 Criticality=falseKeyUsage [Key_CertSignCrl_Sign]Basic Constraints ObjectId: 2.5.29.19 Criticality=falseBasicConstraints:[CA:truePathLen:0]Thumbprint Algo SHA256Thumbprint db 87 94 17 ec 14 24 e4 e5 7a 3c 91 ec 80 4c 5d e4 c6fd e7 3c c8 28 1c d2 f5 ba ed 76 dd 65 48Thumbprint Algo SHA1Thumbprint d5 0c f3 89 87 71 d6 31 bd 29 9b 46 94 01 74 29 c2 6ef5 3aService Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accreditedAn accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliancewith the provisions laid down in Directive 1999/93/EC.Status Starting Time 2012-11-30T00:00:00ZTSP 1, Service 3, History N.1Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/CA/QCA Certification authority issuing Qualified Certificates.Service Name Name en LuxTrust Global Qualified Certification AuthorityDigital IdX509 SubjectNameCN=LuxTrust Global Qualified CA,O=LuxTrust S.A.,C=LUPage 18 / 24
  19. 19. Service Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervisionThe service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.Status Starting Time 2012-08-01T00:00:00ZTSP 1, Service 4Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/TSAA Time stamping authority.Service Name Name en LuxTrust Global Time Stamping AuthorityDigital IdX509 SubjectNameCN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LUPage 19 / 24
  20. 20. DigitalId X509 Certificate-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----Version 3Serial Number 3803SigAlgName SHA256withRSAIssuer DN CN=LuxTrust Global Root, O=LuxTrust s.a., C=LUValid from 2012-08-28T13:07:47ZValid to 2021-03-17T09:51:37ZSubject DN CN=LuxTrust Global Timestamping CA, O=LuxTrustS.A., C=LUPublic Key Algo RSAPublic Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 0500 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 ba d8 4eed 01 e2 06 a0 b3 37 c5 17 38 48 da 5d 6f df 8c 79 e8cb ab dd 55 3d e7 2f 07 cb 15 1e 2e 12 90 c5 13 21 e6d6 1b 5d c7 26 a1 8b 29 c9 fd a5 a3 ba e7 43 de 85 7584 6e 09 b6 69 42 91 35 28 a6 33 be 29 34 18 58 074b 1a d2 b4 2e 8b c9 e9 65 ba 75 c7 98 a5 0f 0a a2 4e42 75 88 5b 55 e5 b6 2b 1f c8 49 d1 0a 57 ea ee 1c 9541 26 3b d8 7f 02 8f f8 79 75 b6 c1 2f 21 4a 1c 03 81cd 1e 36 ef b8 49 1a 17 33 e9 e0 3e ba 99 7a d2 98 0fa6 c4 54 5c 34 3d 22 df 08 9a 46 c7 cd 89 53 af fb f8c9 74 bc 1e 98 fc 93 1c 53 ac 47 e6 ee 97 75 4c 9a ca32 2f 06 62 98 19 20 51 09 e2 fb 62 b2 4a 9c 1b 3c 842b ab 1d ff 29 98 09 53 0d d4 78 f3 57 58 90 85 a0 2986 3a c6 ae 15 e4 8b 83 48 80 91 70 01 f6 59 44 50 723c 85 8b fb 3a 93 12 4c bf 3b 80 6c 7f 28 c6 ec bc 1c5c 8d 02 03 01 00 01Authority KeyIdentifierObjectId: 2.5.29.35 Criticality=falseAuthorityKeyIdentifier [KeyIdentifier [0000: 17 15 85 89 09 2f 24 87 6f 3f 1d 1b e4 f2 96 79........o......y0010: 83 48 13 ce .H..]]Page 20 / 24
  21. 21. CertificatePoliciesObjectId: 2.5.29.32 Criticality=falseCertificatePolicies [[PolicyInformation: [CertPolicyId: 1.3.171.1.1.1.10.8PolicyQualifiers: [PolicyQualifierInfo: [CPSuri: [object identifier: 1.3.6.1.5.5.7.2.1uri: https://repository.luxtrust.lu]]]]]]CRL DistributionPointsObjectId: 2.5.29.31 Criticality=falseCRLDistributionPoints [1 CRL Distribution Points:Distribution Point: [Distribution Point Name: [URIName:http://crl.luxtrust.lu/LTGRCA.crl]Reason Flags: nullIssuer: null]]Subject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: f5 bf 22 c6 1d fe f2 06 83 23 5d 5e c2 25 91 94................0010: 19 1d 3c 87 ....]]Key Usage ObjectId: 2.5.29.15 Criticality=falseKeyUsage [Key_CertSignCrl_Sign]Basic Constraints ObjectId: 2.5.29.19 Criticality=falseBasicConstraints:[CA:truePathLen:0]Thumbprint Algo SHA256Thumbprint 53 0b 1d 74 9b e7 ad 3a 7b b7 83 26 b2 81 db cc 5d f6ea 5f 41 4a 7b 29 b9 70 b6 54 8b 04 49 07Thumbprint Algo SHA1Thumbprint db 5c ea 71 c0 1f da d8 59 5a 57 65 51 ec 2a 00 a9 8651 94Service Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/accreditedAn accreditation assessment has been performed by the Accreditation Body and the service is found to be in compliancewith the provisions laid down in Directive 1999/93/EC.Status Starting Time 2012-11-30T00:00:00ZService Information ExtensionAdditionalServiceInformationhttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/SvcInfoExt/TSS-QCa time stamping service as part of a service from a certification service provider issuing QualifiedCertificates that issue TST that can be used in the qualified signature verification process toascertain and extend the signature validity when the QC is revoked or expired.TSP 1, Service 4, History N.1Page 21 / 24
  22. 22. Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/TSAA Time stamping authority.Service Name Name en LuxTrust Global Time Stamping AuthorityDigital IdX509 SubjectNameCN=LuxTrust Global Timestamping CA,O=LuxTrust S.A.,C=LUService Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervisionThe service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.Status Starting Time 2012-10-03T00:00:00ZService Information ExtensionAdditionalServiceInformationhttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/SvcInfoExt/TSS-QCa time stamping service as part of a service from a certification service provider issuing QualifiedCertificates that issue TST that can be used in the qualified signature verification process toascertain and extend the signature validity when the QC is revoked or expired.TSP 2 InformationTSP Name Name en SeMarket Certification Authority S.A.Street Address en Parc dActivités "Syrdall", 6Locality en MunsbachState Or Province enPostal Code en L-5365Country Name en LUElectronic Address URI mailto:confiance-numerique@ilnas.etat.luTSP Information URI URI en http://www.ilnas.public.lu/semarketList of ServicesTSP 2, Service 1Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/CA/QCA Certification authority issuing Qualified Certificates.Service Name Name en SeMarket Qualified Certification AuthorityDigital IdX509 SubjectNameCN=SeMarket CA Root,O=SeMarket CA S.A.,C=LUPage 22 / 24
  23. 23. DigitalId X509 Certificate-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----Version 3Serial Number 1308924811451483386725277668209257424SigAlgName SHA1withRSAIssuer DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LUValid from 2008-07-23T10:00:33ZValid to 2024-07-23T09:53:08ZSubject DN CN=SeMarket CA Root, O=SeMarket CA S.A., C=LUPublic Key Algo RSAPublic Key 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 0500 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 b7 ca cf44 ff 54 1b 15 40 16 35 b3 0f 90 a5 29 d4 9c f7 16 5991 59 5d 35 ac a7 c0 1c 2e 93 6c ba 04 b6 1c f6 6c 480c 81 10 f8 c1 8c 55 fb b5 6d 8b 96 c5 e0 c3 af 2e 0798 d3 6a 1a 6c 85 57 2b e0 11 e9 30 c1 81 77 84 e0 243f ec 18 1a 8d a5 8b 80 56 26 c2 6b 45 68 00 d8 b8 3b61 d0 49 ed 30 85 6a df c6 93 d9 1d b0 d3 a7 b8 11 f0dd 95 c8 e9 fa bc 7a 33 41 46 4d 9f 7c e1 db 20 ca 7ad0 3d 3a e1 bd 1f 0c 72 f9 c1 10 8e 83 3b 71 5f 48 82a1 2b 59 1d 18 0a 62 10 f2 7d b4 25 65 f1 12 99 e5 e41b bb 1f 6a db aa 22 cd 46 c5 b7 f1 a8 84 3b 56 06 5ec5 d0 ed 26 1f 20 14 08 99 2c 35 2d a0 1d dd f8 b0 8f81 cd 88 e7 b3 4c 90 15 ab 18 7a 3e 1f 13 6a e4 14 7049 63 9f c1 92 1c 4c 71 b2 40 76 0a 05 d7 f1 ea a6 e416 a3 fe fd a6 20 6f 13 b1 d7 4b a7 cc c2 f2 cb 07 d80d 02 03 01 00 01Authority KeyIdentifierCertificatePoliciesCRL DistributionPointsSubject KeyIdentifierObjectId: 2.5.29.14 Criticality=falseSubjectKeyIdentifier [KeyIdentifier [0000: f3 b7 61 ca 1c f0 ab a4 a9 0d c4 09 e1 9a ba 83..a.............0010: 8f 0c 90 e0 ....]]Key Usage ObjectId: 2.5.29.15 Criticality=trueKeyUsage [Key_CertSignCrl_Sign]Page 23 / 24
  24. 24. Basic Constraints ObjectId: 2.5.29.19 Criticality=trueBasicConstraints:[CA:truePathLen:2147483647]Thumbprint Algo SHA256Thumbprint a4 4e 8e fd 1e fc 78 f2 44 5f 1a 9f 62 63 9d 8f ba 21 209c 9e f3 1e 87 11 77 7f d2 c8 2b 07 12Thumbprint Algo SHA1Thumbprint ef ab 25 3d 0e 25 79 fe c0 bf 88 ed a0 24 a7 98 3e 57ca d9Service Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/supervisionrevokedHaving been previously supervised, the service and potentially the CSP itself has failed to continue to comply with theprovisions laid down in Directive 1999/93/EC. Accordingly the service has been required to cease its operations and must beconsidered as ceased for the above reason.Status Starting Time 2009-09-11T00:00:00ZScheme Service Definition URI en http://www.ilnas.public.lu/semarketService Information ExtensionQualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/SvcInfoExt/QCWithSSCDIt is ensured by the certification service provider and controlled (supervision model) or audited(accreditation model) by the referenced Member State (respectively its Supervisory Body orAccreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC)identified in "Service digital identity" and further identified by the filters information used tofurther identify under the "Sdi" identified certification service that precise set of QualifiedCertificates for which this additional information is required with regards to the presence orabsence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. thatthat the private key associated with the public key in the certificate is stored in a SecureSignature Creation Device conformant with annex III of Directive 1999/93/EC [1]).Criteria Listassert="all"PolicyIdentifierIdentifier 1.3.6.1.4.1.25969.8.2.1Description Qualified CertificateTSP 2, Service 1, History N.1Service Type Identifierhttp://uri.etsi.org/TrstSvc/Svctype/CA/QCA Certification authority issuing Qualified Certificates.Service Name Name en SeMarket Qualified Certification AuthorityDigital IdX509 SubjectNameCN=SeMarket CA Root,O=SeMarket CA S.A.,C=LUService Statushttp://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/Svcstatus/undersupervisionThe service is currently under supervision, for compliance with the provisions laid down in Directive 1999/93/EC.Status Starting Time 2007-11-27T00:00:00ZService Information ExtensionQualifier http://uri.etsi.org/TrstSvc/eSigDir-1999-93-EC-TrustedList/SvcInfoExt/QCWithSSCDIt is ensured by the certification service provider and controlled (supervision model) or audited(accreditation model) by the referenced Member State (respectively its Supervisory Body orAccreditation Body) that any Qualified Certificate issued under the service (RootCA/QC or CA/QC)identified in "Service digital identity" and further identified by the filters information used tofurther identify under the "Sdi" identified certification service that precise set of QualifiedCertificates for which this additional information is required with regards to the presence orabsence of Secure Signature Creation Device (SSCD) support ARE supported by an SSCD (i.e. thatthat the private key associated with the public key in the certificate is stored in a SecureSignature Creation Device conformant with annex III of Directive 1999/93/EC [1]).Criteria Listassert="all"PolicyIdentifierIdentifier 1.3.6.1.4.1.25969.8.2.1Description Qualified CertificatePage 24 / 24Alain WahlDigitally signed by Alain WahlDN: c=LU, l=LU, o=ILNAS, ou=NA, cn=Alain Wahl,sn=Wahl, givenName=Alain,serialNumber=11103487200018993476,email=alain.wahl@ilnas.etat.lu, title=Professional PersonDate: 2012.11.30 14:32:59 +0100

×