Repository

This digital archive provides information on the guidelines that apply to our public key infrastructure (PKI). It contains our Certificate Policies and Certification Practice Statements.

Übersicht der CA's und ihre anwendbaren CP, TSPS & CPS and Overview of the CAs and their applicable CP, TSPS & CPS

File size: 88.74 KB

Format: PDF

Certificate Policy (CP), Trust Service Practice Statement (TSPS) and Certification Practice Statement (CPS) of D-TRUST GmbH

A Certificate Policy (CP) explains the security guidelines. It provides information about the conditions under which certificates are issued, published and revoked by the certification authorities (CAs).

Terms & Conditions of D‑Trust GmbH according to the selected product or service

File size: 125.68 KB

Format: PDF

The D-TRUST TSPS describes the implementation of the requirements of the CP without reference to specific products.

The D-TRUST TSPS supersedes the following product-specific CPSs:

  • CPS of the D-TRUST CSM PKI
  • CPS of the D-TRUST Root PKI
  • CPS of the D-TRUST Cloud PKI

The Trust Service Practice Statement describes the AusweisIDent services operated by D-Trust GmbH AusweisIDent OnSite and AusweisIDent Online.

The CPS of the D-TRUST CSM PKI and the Subscriber Agreement are applicable to certificates from the ‘D-TRUST V-PKI CA 1 2020’.

The self-declaration by D-Trust GmbH to BSI (Federal Office for Information Security) is also published:

SubCA „OCSI CA 2016“ and „OSCI CA 2019“

Current certificates

Here you can download the root certificates provided by D-TRUST and install them in your applications. You can also find the root certificates which D-TRUST issues on behalf of gematik.

Roots

D-TRUST Root CA 1 2021

SHA-1 Fingerprint: 330EDD1F5AB057F473FC6FA794CBAEA342D30762

D-TRUST Root CA 4 2021

SHA-1 Fingerprint:‎ A48CDA4E279A7E8996BF2D1EF1263DD16068092A

D-TRUST Root CA 3 2021 (RSASSA-PSS, 4096 Bits)

SHA-1 Fingerprint: E4F95E877D3D6519336040A2b0C853f8A1B57194

D-TRUST Root CA 2 2021 (ECDSA_P384)

SHA-1 Fingerprint: 468C467671DD4F1A38145104C353C99276107702

D-TRUST Root CA 2 2018

SHA-1Fingerprint=4b467fb8d2051d7bc4cdb73377fa7077034bcce1

D-TRUST Root CA 1 2017

SHA-1Fingerprint=3fe69767c9b3e938cf409d6ad6cbc33da77ea7c8

D-TRUST Root CA 2 2017  

SHA-1 Fingerprint: 357bb8cc3855b401f7c64cff35689f83c860374d

D-TRUST Root CA 3 2016

SHA-1Fingerprint=16abfe955bba80f0d7079d240188c633df5ddb7f

D-TRUST Qualified Root CA 1 2014 

SHA-1Fingerprint=2fd845b009d34a55ff124e6fa60877be0c479a57

D-TRUST Qualified Root CA 2 2014

SHA-1Fingerprint=5fab790ce80cb45b7dc712f77a28cd79a693ed59

D-TRUST Qualified Root CA 3 2014

SHA-1Fingerprint=d3bb5f83470a8f850ef3462201e4affbefc2f698

D-TRUST Qualified Root CA 1 2012:PN

SHA-1Fingerprint=fd36d57654c279f28243c22c6783d7ba1733b714

D-TRUST Qualified Root CA 3 2012:PN

SHA-1Fingerprint=efd1a63fdb686b94d632bf22bec2a2e282f89cdb

D-TRUST Qualified Root CA 4 2012:PN

SHA-1Fingerprint=b8bc3e7794c0c25154cc29e7c8e621fa1de245ae

D-TRUST Corporate Root CA 1 2013

SHA-1Fingerprint=f62e8e39b65a9d016af267d579b2473c76f008d9

D-TRUST Root CA 1 2013

SHA-1Fingerprint=77da11e56986c26b78dc4d8913507937edc7c7ed

D-TRUST Root CA 2 2013

SHA-1Fingerprint=c006034938c1399ba8a781b2991afa224dc780d3

D-TRUST Root CA 3 2013

SHA-1Fingerprint=6c7ccce7d4ae515f9908cd3ff6e8c378df6fef97

D-TRUST BR Root CA 1 2020 (ECC)
SHA-1 Fingerprint: 1f5b98f0e3b5f7743cede6b0367d32cdf4094167

D-TRUST EV Root CA 1 2020 (ECC)
SHA-1 Fingerprint: 61db8c2159690390d87c9c128654cf9d3df4dd07

D-TRUST Root Class 3 CA 2 EV 2009
SHA-1 Fingerprint: 96c91b0b95b4109842fad0d82279fe60fab91683

D-TRUST Root Class 3 CA 2 2009
SHA-1 Fingerprint: 58e8abb0361533fb80f79b1b6d29d3ff8d5f00f0

D-TRUST Root Test CA 2 2021

SHA-1 Fingerprint: 5b02e01407819b17f612f716844dcd47757e834d

D-TRUST AUT Root Test CA 1 2018

SHA1 Fingerprint: ab520837fffc0eeebfbfcd8b6d5677f95f624c36

D-TRUST Root Test CA 2 2017

SHA-1 Fingerprint: 5b02e01407819b17f612f716844dcd47757e834d

D-TRUST Root Test PU CA 3 2016

SHA-1Fingerprint=7fdf0990765c8ca06d01555eb22613c4f9943aba

D-TRUST Limited Basic Root Test PU CA 1 2015

SHA-1Fingerprint=1cec23adee695763c8a969754f9f1b5766094f4b

D-TRUST Test Root CA 1 2013

SHA-1Fingerprint=9a9f468674eb6121ebf416c7252de49265539c84

D-TRUST Test Root CA 2 2013

SHA-1Fingerprint=77df6707c278defaf1071e5be93a37c1938c932e

D-TRUST Test Root CA 3 2013

SHA-1Fingerprint=a7f5c07f3b2e681897bcd403456f4fd483f7c776

D-TRUST Root Class 2 Test CA 2007

SHA-1Fingerprint=b953c744ffb4ce3a0e9b3768f05c682d514fb46f

Test D-TRUST Root SHA2 CA

SHA-1Fingerprint=9b278e67bb6367248ec1cc839d47ae6c1c48254d

D-TRUST AUT Root CA 1 2018
SHA-1 Fingerprint 3efd346a332576d092f622971fd306102da13dd1

D-TRUST TIM Root CA 1 2019
SHA-1Fingerprint=df215fe319df5ec77e8a70d43001a5059127d961

RWE Root CA Corporate 2016
SHA-1Fingerprint=a275d64f526f74f8a6d804623531862f82ce54e7

D-TRUST Limited Basic Root CA 1 2020
SHA-1 Fingerprint: 1e2dfa716812b8e546e227b688e264ab12220435

D-TRUST Limited Basic Root CA 1 2019
SHA-1Fingerprint=08fea56ef3e839778e28c774e7feb84f5fe36fd6

D-TRUST Limited Basic Root CA 1 2015
SHA-1Fingerprint=88154b9256c2d894626dc70a9755c084f30814e4

Issuing CA

D-TRUST akkr CA1 2014:PN 

SHA-1Fingerprint=cb93749a5aee7e342d17b552384b63a34876fe07

D-TRUST akkr CA2 2014:PN 

SHA-1Fingerprint=fd60b5d8d0aa3914ad65e1b0c7aaed19b05ed479

D-TRUST akkr CA3 2014:PN 

SHA-1Fingerprint=845c63dad6ba3c7b96913720ed94f4a5b91679ed

D-TRUST akkr CA4 2014:PN 

SHA-1Fingerprint=4c51ae6632b383b74e810425c44ba4673086627d

D-TRUST akkr CA5 2014:PN 

SHA-1Fingerprint=53ee0b996c4cff232999a458d9793f2568bbd2e8

D-TRUST akkr CA6 2014:PN 

SHA-1Fingerprint=dcc4caa4ef4ecbac93187b3ac435efb3b24b2128

D-TRUST akr CA1 2012:PN

SHA-1Fingerprint=ba61d104b9f3ca4c8431867ee7adb2d94c11c05f

D-TRUST CA 4-21-1 2021 (ECC, P-384)

SHA-1 Fingerprint: 74B857941F0EB9BC0FB9A3FEA83AEA836E0A5E22

D-TRUST CA 1-21-1 2021 (RSASSA-PSS, 4096 Bits)

SHA-1 Fingerprint: 2C5681694EAF1DCDBB70F5E791252019BAA8F9C6

D-TRUST CA 1-21-3 2021 (RSASSA-PSS, 4096 Bits)

SHA-1 Fingerprint: DF0C5F927ADB377BB81BB279C2D8C0FBAF767894

D-TRUST CA 4-21-2 2021 (ECC, P-384)

SHA-1 Fingerprint: 07BBB6424795283CC3757E91642AF95055DB85D4

D-TRUST CA 2-21-1 2021 (ECC, P-384)

SHA-1 Fingerprint: F78B7AA28BACD8E004C1A7FEEE7BD035BC1B5AD7

D-TRUST CA 2-21-2 2021 (ECC, P-384)

SHA-1 Fingerprint: BC0FA0A53582E8E5434F0AEACCEE32A2C3CD9443

D-TRUST CA 3-21-1 2021 (RSA, 4096 Bit)

SHA-1 Fingerprint: 9F729EFAF98688C7F946ED8012A8773088B037C1

D-TRUST CA 3-21-2 2021 (RSA, 4096 Bit)

SHA-1 Fingerprint: 767E3E3FDE06FE00199205F36B4EA7723562133C

D-TRUST_CA_2-1_2020

SHA-1 Fingerprint: d00c842434f42bd4903518ca3b0e9ec49976ee2f

D-TRUST_CA_2-2_2020

SHA-1 Fingerprint: ece3b420b2fe38f56e036a8d507ffda229024ce3

D-TRUST_CA_2-2_2019

SHA-1Fingerprint=455fd6f160938c1fcce1ef8d4f33700f2148ff87

D-TRUST.HBA-qCA7 (brainpoolP256r1)

SHA-1 Fingerprint: 03ADD32F4A93B8CC4621E21AC4DA845FE49F27A1

D-TRUST.HBA-qCA6 (RSASSA-PSS, 2048 Bits)

SHA-1 Fingerprint: 9E256B3933013EA11BE534B66B348C04C2DDC332

D-TRUST HBA-qCA5

SHA-1 Fingerprint=F28065B8205F05456EF209B9B9744C537B7D7420

D-TRUST HBA-qCA4

SHA-1Fingerprint=e2928817a1603be7f580e6a8b3091ca4a5c1ae54

D-TRUST CA 2-1 2018

SHA-1Fingerprint=5982bdd5e228e4869461713710cc5c3dde006c43

D-TRUST CA 1-3 2017

SHA-1Fingerprint=709058584b15a4bea0272862b8da3c47091015a8

D-TRUST CA 1-1 2017

SHA-1Fingerprint=d3bb63e49b797feda9527294b74b871cf63732a0

D-TRUST CA 2-2 EV 2016

SHA-1Fingerprint=8423cda13ff6025bcd3188ddb37f8618c31d85d9

D-TRUST CA 3-1 2016

SHA-1Fingerprint=38a577328fad50472f94d47ab433d88f8f36a22d

D-TRUST CA 3-2 2016

SHA-1Fingerprint=7927b0fda41b2a2465aa4e727d8bac8dd0db5aad

D-TRUST Qualified CA 1 2014

SHA-1Fingerprint=ca5cfd80b9f3186c022312b80198856ed988ec92

D-TRUST Qualified CA 2 2014

SHA-1Fingerprint=ae9ab82c2573716c26a800b68dc23231b14f9d6b

D-TRUST Qualified CA 3 2014

SHA-1Fingerprint=991d5cf3541b7865439822f7f53814508a561e18

D-TRUST Qualified CA 4 2012:PN

SHA-1Fingerprint=9a48374be71286099c1f27f432e92490afcb73c3

D-TRUST Qualified CA 7 2012:PN

SHA-1Fingerprint=b529a8664dcb66d5e64c5c24f99e908c607b5fa7

ChamberSign Qualified CA 1 2014

SHA-1Fingerprint=df3bf5686d839194f0cbdf01a999417f4ab34393

ChamberSign Qualified CA 2 2014

SHA-1Fingerprint=0057b802e77449b7b35cac058e62035808972128

ChamberSign Qualified CA 3 2014

SHA-1Fingerprint=da8ca6fc9dec6dde9f99fd228d76dc3513d5fefc

D-TRUST V-PKI CA 1 2020

SHA-1 Fingerprint: 188a4f3b14a54f116fdca60116e5ed7bbd97d895

E.ON CA 2 2013 XXI

SHA-1 Fingerprint: fe9f0375d9b0ef00fadc9384443dd53f9fc2d72d  

E.ON CA 2 2013 XXII

SHA-1 Fingerprint: 48060a8247315e36ffdb76823e8d1c433f81c96d 

E.ON CA 2 2013 XXIII

SHA-1 Fingerprint: 3e94a2f3abda4e639f776372d3a689a6b6be4067 

Partner CA 2 2013 XXIV

SHA1 Fingerprint: 97A10AB329846FD1168811B14C23F7D7297936C6

E.ON Group CA 2 2013

SHA-1 Fingerprint: 0c093af2f684979c5fff44ae636124440e86f2cc 

Uniper Group CA 3 2020 

SHA-1 Fingerprint: F6B7B49CC413C27D69BD7EFC12E4638D1B98BEEC

Uniper CA 3 2020 XXXI

SHA-1 Fingerprint: 70997F9622B0341A9E3AE1EFF739714C10DBB643

Uniper CA 3 2020 XXXII

SHA-1 Fingerprint: 15222F266E381B983A6B83CE705F4AADA8944B7A

Uniper CA 3 2020 XXXIII

SHA-1 Fingerprint: 1e2c28405eeb2ef22567d8155e685d656ea0a12f

Uniper CA 2 2015 XXXI  

SHA-1 Fingerprint: b082ee5ef9dda785bf843a63d418c6da5775f1df 

Uniper CA 2 2015 XXXII

SHA-1 Fingerprint: e7c8f09641dabcf53a881193c17c96f4b7100182 

Uniper CA 2 2015 XXXIII

SHA-1 Fingerprint: 6c6b9facf11d5752941eea85cc966b3b93c11bda 

Uniper Group CA 2 2015

SHA-1 Fingerprint: 2608d1b20377dc0ebc14e6b7a34b0386be117cad

D-TRUST Application Certificates CA 3-2 2016

SHA-1Fingerprint: 60d00d1709487115698e1d8390d6044e32bf69c3

D-TRUST Application Certificates CA 3-1 2013

SHA-1Fingerprint: 1785b07501f0fceffc97c6b070c255a8a9b99f12

D-TRUST Advanced Class 2 CA 1 2012

SHA-1Fingerprint: 84efd889a4bde95a74e7fb4f1c70e6c3aa59c5b5

D-TRUST Advanced Class 3 CA 1 2009

SHA-1Fingerprint: cc982d5b5af7e344c367f12a11708feca71893cd

D-TRUST EV CA 1-20-1 2020 
SHA-1 Fingerprint: 8D01990148D7148C61B3C0B3F743A353F401BA6C

D-TRUST BR CA 1-20-2 2020
SHA-1 Fingerprint: 5714DF60B3F5CA276413244F419C1C61496624A1

D-TRUST BR CA 1-20-1 2020 
SHA-1 Fingerprint:16407AFD6EE36C777730AE95D6C6286ECE4C389F

D-TRUST CA 2-2 EV 2016 (Root-CA: D-TRUST Root Class 3 CA 2 EV 2009)  
SHA-1 Fingerprint: 8423cda13ff6025bcd3188ddb37f8618c31d85d9

D-TRUST SSL CA 2 2020 D-TRUST (Root-CA:Root Class 3 CA 2 2009) 
SHA-1 Fingerprint: AEB9682B91D20B50384A2C6B6DACBB851F629962

D-TRUST SSL Class 3 CA 1 EV 2009 (Root-CA: D-TRUST Root Class 3 CA 2 EV 2009)
SHA-1 Fingerprint: 1069423d308d0fc54575059638560fc7556e32b3

D-TRUST SSL Class 3 CA 1 2009 (Root-CA: D-TRUST Root Class 3 CA 2 2009)
SHA-1 Fingerprint: 2fc5de6528cdbe50a14c382fc1de524faabf95fc

D-TRUST Service Class 3 CA 1 2008 (Root-CA: D-TRUST Root Class 3 CA 2007)
SHA-1 Fingerprint: 9c7a516899839d33b494aa5b6327a652926f685d

VR IDENT SSL CA 2020(Root-CA: D-TRUST Root Class 3 CA 2 2009)
SHA-1 Fingerprint: c3a6bc49bc9936e9450a9775465b7235e78ee705

VR IDENT EV SSL CA 2020(Root-CA: D-TRUST Root Class 3 CA 2 EV 2009)
SHA-1 Fingerprint: ac4126deb7907ee1bbc00a6504bd2ab224237915

complete chains

D-TRUST Root Class 3 CA 2 EV 2009 (PEM- und DER-Zip)

D-TRUST Root Class 3 CA 2 2009 (PEM- und DER-Zip)

 

Zeitstempel (TSU)

D-TRUST_TSU_12_2017

SHA-1 Fingerprint: ce8920966724141233a78d888ba34f1c90ad6e27  

D-TRUST_TSU_13_2017

SHA-1 Fingerprint: f1db08a9b54758746d2b01c34943f3cdca946f81

D-TRUST_TSU_14_2020

SHA1 Fingerprint: 7C52172CE3F8FE8E5C2E3D588C454639FF3D37C0

D-TRUST Test CA 2-21-1 2021

SHA-1 Fingerprint: 9a4a3df044b00e8cc103136d0178758a96a237f1

D-TRUST Test CA 2-21-2 2021

SHA-1 Fingerprint: c4d2d0f7ec43a219304686538d75a2efa8b1c95b

D-TRUST Test CA 2-1 2020

SHA-1 Fingerprint: c24f663c5d4b4bb33344dac61402674a29b63333

D-TRUST Test CA 2-2 2020

SHA-1 Fingerprint: 3a0bbe33a3fa38446df794da31c9c59ae19f4de0

D-TRUST CSM Operator Test CA 1-1 2018

SHA1 Fingerprint: 4098274ff9f7a95bc7332d5fa1a1028f45b259df

D-TRUST_Test_PU_CA_2-2_2019

SHA-1Fingerprint=ca2ea468679f79f5b9122feb729baec64f260e64

D-TRUST_Test_PU_CA_2-1_2018

SHA-1Fingerprint=44950114024e0aa905da0d1bce296a975f05ab9d

D-TRUST Test PU CA 3-1 2016

SHA-1Fingerprint=38e3c1758cdfca8a3eb7e4042c2ebf4d464e17bc

D-TRUST_Test_PU_CA_3-2_2016

SHA-1Fingerprint=6a8836dc91761dd8f18cc0e548ceef5e0fb7e85e

D-TRUST Limited Basic Test PU CA 1-4 2016

SHA-1Fingerprint=1cec23adee695763c8a969754f9f1b5766094f4b

D-TRUST Application Certificates Test CA 3-1 2013

SHA-1Fingerprint=6c772033c6130e10994cc705655b03272ee6d023

D-TRUST Advanced Class 2 Test CA 1 2012

SHA-1Fingerprint=8ec1dfddb0ae0829eb2ad912aac8a3df4d4806ba

Test D-TRUST SHA2 CA

SHA-1Fingerprint=6c1b3d64df9739345fcfeb1aef19d9d6f3eae822

D-TRUST Limited Basic CA 1-4 2020

SHA-1 Fingerprint: 0b2818e7e76f93623e808873e4dc7ad11db6e215

D-TRUST Limited Basic CA 1-2 2019

SHA-1Fingerprint: 46580046ff97ea84dd07c0269c5d53c9eedd3627

D-TRUST Limited Basic CA 1-3 2019

SHA-1Fingerprint: ad80a52e2b43bec15385802134e12a2ac3e0bdc2

D-TRUST Limited Basic CA 1-4 2019

SHA-1Fingerprint: e9cea94a2046bba8210120e89f312530e27c5dd2

D-TRUST Limited Basic CA 1-1 2015

SHA-1Fingerprint: afbf408d1cc468c9965fa1d1f6e032e9ce71dbc9

D-TRUST Limited Basic CA 1-2 2015

SHA-1Fingerprint: 96707684c4a1499f4198467ba85d6615229cbdb4

D-TRUST Limited Basic CA 1-3 2015

SHA-1Fingerprint: 4374a0a16add4389890890973b517cd7d9ac72a5

D-TRUST Limited Basic CA 1-4 2015

SHA-1Fingerprint: d4b99cd3af3f40efb8be509fd763c1b87e8f38fc

D-TRUST Limited Basic CA 1-5 2016

SHA-1Fingerprint: 2f0c50ab1cb6c204c985ddd383f8573a0311c17e

D-TRUST CSM Operator CA 1-1 2018
SHA-1 Fingerprint 8166a6b3f6c0f5c3be53007c89d7adaf1298776d

D-TRUST TIM HW Signing CA 1 2019
SHA-1Fingerprint=76bbe0dbc60f0d9089b0b7dd9a0a64ed4bb08a05

D-TRUST TIM SW Signing CA 1 2019
SHA-1Fingerprint=347fea294b0b703474da87e73796c67f16c48dcd

RWE CA 01 User Soft PSE 2016 
SHA-1Fingerprint=e7f9f73d3d19438bc79971c610087d2cf5bebc4a

D-Trust TLS Test-Webseiten und Demo-Zertifikate

Qualified EV SSL ID / D-TRUST CA 2-2 EV 2016 (QCP-w/EVCP):
Valid - Expired - Revoked

Advanced EV SSL ID / D-TRUST SSL Class 3 CA 1 EV 2009 (EVCP):
Valid - Expired - Revoked

Advanced SSL ID / D-TRUST SSL Class 3 CA 1 2009 (OVCP):
Valid - Expired - Revoked

Advanced DV SSL ID / D-TRUST SSL CA 2 2020 (DVCP):
Valid - Expired - Revoked

Fiducia: Advanced EV SSL ID / VR IDENT EV SSL CA 2020 (EVCP):
Valid - Expired - Revoked

Fiducia: Advanced SSL ID / VR IDENT SSL CA 2020 (OVCP):
Valid - Expired - Revoked

Advanced EV TLS ID / D-TRUST EV CA 1-20-1 2020 (EVCP)
Valid - Expired - Revoked

Advanced OV TLS ID / D-TRUST BR CA 1-20-1 2020 (OVCP)
Valid - Expired - Revoked

Advanced DV TLS ID / D-TRUST BR CA 1-20-2 2020 (DVCP)
Valid - Expired - Revoked

D-TRUST Test CA 2-2 2019

D-TRUST Test CA 2-1 2018

D-TRUST CA 2-1  2015 (LCP) 

D-TRUST Application Certificates CA 3-1 2013 (LCP)

D-TRUST SSL 3 CA 1 2009 (OVCP) 

D-TRUST SSL 3 CA 1 EV 2009 (EVCP) 

D-TRUST Application Certificates CA 3-2 2016 (LCP) 

D-TRUST CA 1-1 2017 (QCP-n-qscd) 

D-TRUST Application Certificates CA 3-1 2013 (LCP) 

D-TRUST CA 3-1 2016

D-TRUST CA 3-2 2016

D-TRUST CA 2-1 2020

D-TRUST CA 2-2 2020

D-TRUST CA 3-21-1 2021

D-TRUST CA 3-21-2 2021

D-TRUST CA 2-21-1 2021

D-TRUST CA 2-21-2 2021

Repository Archive

You can find the archive with the guidelines for our public key infrastructure (PKI) here. This information is provided in our Certificate Policies and Certification Practice Statements.

Service & Support

We have a comprehensive service portal that you can use to contact our support team in a quick and convenient manner. You will find there the support you need if you have technical problems along with information on the requirements for our solutions and possible applications as well as the respective documentation and price lists.

Legal Terms of Use

The information below provides important legal information and tips on how to use our website. Please also observe our Legal Notice and our Privacy Policy.