C:\temp>certutil.exe -dump -v My.pfx Enter PFX password: ================ Certificate 0 ================ ================ Begin Nesting Level 1 ================ X509 Certificate: Version: 3 Serial Number: 4af70427fea87f954aafa04eda12a6f8 Signature Algorithm: Algorithm ObjectId: 1.3.14.3.2.29 sha1RSA (shaRSA) Algorithm Parameters: 05 00 Issuer: CN=My Company (exchange) O=My Company C=DE NotBefore: 06.12.2011 10:42 NotAfter: 31.12.2020 00:00 Subject: CN=My Company (exchange) O=My Company C=DE Public Key Algorithm: Algorithm ObjectId: 1.2.840.113549.1.1.1 RSA (RSA_SIGN) Algorithm Parameters: 05 00 Public Key Length: 2048 bits Public Key: UnusedBits = 0 0000 30 82 01 0a 02 82 01 01 00 bb 0f c7 9b 76 f8 f2 0010 db 86 15 a9 14 c1 c7 6c 84 d5 aa 2e 0b 15 4c 26 0020 ad e8 7f d0 fb b9 b5 31 7d f5 42 95 18 61 65 be 0030 c7 f9 bf e1 f9 b4 31 89 fc 35 53 12 39 30 e1 5a 0040 ad ac 04 2b cf bb 51 96 91 5b b6 65 55 3f 87 1c 0050 31 f6 e2 82 bb e5 ba ec 80 67 b4 54 a8 40 19 e5 0060 81 85 b4 09 c7 e2 12 34 2d 57 5a 55 67 da 6b c9 0070 26 4e 29 e1 c3 22 f1 42 7b 02 dd d7 e4 d8 e5 63 0080 c4 88 8e 02 45 4b 50 b0 b6 47 f2 3c f1 c7 20 15 0090 47 30 b8 5a 16 f5 d3 bc a9 d7 c1 16 29 59 18 ab 00a0 b5 fa 0c 67 1c 28 ed 56 c4 3b b6 54 61 be 01 e3 00b0 20 8b 75 5f 6d 5b a8 50 f8 e0 af 72 aa dc fa 55 00c0 97 44 46 3e 62 ff 7d 86 a4 59 ed 31 59 46 93 fb 00d0 1d 41 42 66 0c 92 2f cf d3 6e af 58 01 56 29 1e 00e0 9f 4e fd a2 6a 1d c7 8f 79 4f a0 bb 26 b2 e1 6b 00f0 37 1d 29 a9 d8 b8 af 61 b3 66 58 1d 77 4b 30 2c 0100 77 db ad a1 21 80 4c dc 4b 02 03 01 00 01 Certificate Extensions: 3 2.5.29.19: Flags = 1(Critical), Length = 5 Basic Constraints Subject Type=CA Path Length Constraint=None 2.5.29.37: Flags = 0, Length = c Enhanced Key Usage Code Signing (1.3.6.1.5.5.7.3.3) 2.5.29.1: Flags = 0, Length = 6c Authority Key Identifier KeyID=d0 ff 7d e6 05 d1 45 bd b3 03 3a e9 90 27 30 a9 Certificate Issuer: CN=My Company (exchange) O=My Company C=DE Certificate SerialNumber=4a f7 04 27 fe a8 7f 95 4a af a0 4e da 12 a6 f8 Signature Algorithm: Algorithm ObjectId: 1.3.14.3.2.29 sha1RSA (shaRSA) Algorithm Parameters: 05 00 Signature: UnusedBits=0 0000 f5 f2 b7 2d 04 4c 11 71 54 43 ed 23 d5 93 3d 3f 0010 77 46 ba eb f4 02 cf 5d cb e7 a8 34 d2 82 89 e0 0020 2b bf ef 45 26 3d 8b 3d d9 39 b2 00 95 72 10 48 0030 a1 56 29 3f a5 c7 ba e0 c5 39 9d 2f ec 0f db f1 0040 d7 a1 f4 2e 8d 38 c5 e9 ab 7f 9c 3b 6c 96 49 3d 0050 29 02 26 dd 5d be 1a 2f d2 b7 85 ff 13 e3 ac bd 0060 1d 22 fd a1 85 85 3b 49 f0 e1 71 a3 fd f5 cc b7 0070 80 e2 c0 82 9f 88 9f 8f 9f c5 3c 95 b0 45 6c 71 0080 75 3e e9 f5 26 37 04 37 9f ab 4f 68 67 b3 00 2c 0090 46 52 39 c8 df fd d2 ed 41 c9 72 92 8d 5a 56 c1 00a0 a1 18 81 17 b1 cc 7f 27 37 b8 de d6 5e 93 b8 d1 00b0 8c 7a 49 30 79 ea c1 b5 a2 48 51 5d b0 e3 75 16 00c0 29 2c 11 28 3f 6d 9c ed 3b 6d 10 53 e0 4d 76 40 00d0 06 4a 12 94 9f 20 d0 6a 79 99 bf 82 3f b9 06 d1 00e0 83 94 0b 83 52 33 ce e7 c7 6d 01 9c 7c 6e ef 57 00f0 ec 86 4a 53 ff 45 f6 e3 d4 ee 1d b8 11 f8 e1 70 Signature matches Public Key Root Certificate: Subject matches Issuer Key Id Hash(rfc-sha1): 7a 15 bd 1f e8 a6 09 2a 24 53 0f 70 da 69 c2 d7 40 5f ed f2 Key Id Hash(sha1): 5f 9a b0 f0 f7 7e 12 d5 7e d8 b4 4b 49 ef ed 09 df 67 45 e0 Cert Hash(md5): 7b 10 c7 9a bc 5c 91 45 96 ae 73 57 57 ca d8 9c Cert Hash(sha1): a3 11 aa 06 d7 54 0b ae df 09 63 13 59 16 42 f9 03 35 c1 da ---------------- End Nesting Level 1 ---------------- CERT_KEY_IDENTIFIER_PROP_ID(20): 5f 9a b0 f0 f7 7e 12 d5 7e d8 b4 4b 49 ef ed 09 df 67 45 e0 CERT_MD5_HASH_PROP_ID(4): 7b 10 c7 9a bc 5c 91 45 96 ae 73 57 57 ca d8 9c CERT_SHA1_HASH_PROP_ID(3): a3 11 aa 06 d7 54 0b ae df 09 63 13 59 16 42 f9 03 35 c1 da CERT_KEY_PROV_INFO_PROP_ID(2): Key Container = {6BCB5363-2ADD-49C4-A399-DDE0F66F32EE} Unique container name: 7c5981afb5e27ccb2282300724eaa334_6b95519f-1e19-454d-b320-f38b49e30528 Provider = Microsoft Strong Cryptographic Provider ProviderType = 1 Flags = 0 KeySpec = 1 -- AT_KEYEXCHANGE Unique container name: 7c5981afb5e27ccb2282300724eaa334_6b95519f-1e19-454d-b320-f38b49e30528 PP_KEYSTORAGE = 1 CRYPT_SEC_DESCR -- 1 KP_PERMISSIONS = 3f (63) CRYPT_ENCRYPT -- 1 CRYPT_DECRYPT -- 2 CRYPT_EXPORT -- 4 CRYPT_READ -- 8 CRYPT_WRITE -- 10 (16) CRYPT_MAC -- 20 (32) D:(A;ID;GAGR;;;SY)(A;ID;GAGR;;;BA)(A;ID;GAGR;;;S-1-5-21-255799698-85481325-3267820161-1001) Allow Full Control NT AUTHORITY\SYSTEM Allow Full Control BUILTIN\Administratoren Allow Full Control OK01\Oleg Private Key: PRIVATEKEYBLOB Version: 2 aiKeyAlg: 0xa400 CALG_RSA_KEYX Algorithm Class: 0xa000(5) ALG_CLASS_KEY_EXCHANGE Algorithm Type: 0x400(2) ALG_TYPE_RSA Algorithm Sub-id: 0x0(0) ALG_SID_RSA_ANY 0000 52 53 41 32 RSA2 0000 ... 048c Encryption test passed CertUtil: -dump command completed successfully.