X.509 certificates

E6784

X.509 certificates are digital documents that bind a public key to an entity’s identity using a trusted certificate authority, forming the basis of public key infrastructure for secure communications.

AI illustration

How this image was made

AI-generated illustration of X.509 certificates

This AI-generated illustration was produced by black-forest-labs/FLUX.2-dev (1024x1024) from a prompt written by openai/gpt-oss-120b from the entity's label + description.

Prompt

Generate an image of X.509 certificates (X.509 certificates are digital documents that bind a public key to an entity’s identity using a trusted certificate authority, forming the basis of public key infrastructure for secure communications.)

All labels observed (16)

How this entity was disambiguated

Statements (64)

Predicate Object
instanceOf digital certificate ⓘ
public key infrastructure component ⓘ
canContainExtension CRL distribution points ⓘ
authority information access ⓘ
authority key identifier ⓘ
basic constraints ⓘ
certificate policies ⓘ
extended key usage ⓘ
key usage ⓘ
subject alternative name ⓘ
subject key identifier ⓘ
definedBy ITU-T Recommendation X.509 ⓘ
linked to: X.509 certificates
encodedAs ASN.1 ⓘ
hasComponent extensions ⓘ
issuer distinguished name ⓘ
serial number ⓘ
signature algorithm identifier ⓘ
signature value ⓘ
subject distinguished name ⓘ
subject public key info ⓘ
validity period ⓘ
version ⓘ
hasField issuer ⓘ
notAfter ⓘ
notBefore ⓘ
public key ⓘ
signature ⓘ
subject ⓘ
hasVersion X.509 v1 ⓘ
linked to: X.509 certificates

X.509 v2 ⓘ
linked to: X.509 certificates

X.509 v3 ⓘ
linked to: X.509 certificates
issuedBy certificate authority ⓘ
reliesOn certificate authority trust model ⓘ
intermediate certificate ⓘ
root certificate ⓘ
requires private key for corresponding public key ⓘ
serializedAs DER ⓘ
PEM ⓘ
standardizedBy ISO ⓘ
ITU-T ⓘ
supportsRevocationVia certificate revocation list ⓘ
online certificate status protocol ⓘ
trustEstablishedBy root certificate store ⓘ
trust anchor ⓘ
usedFor authentication ⓘ
binding a public key to an identity ⓘ
client authentication ⓘ
code signing ⓘ
confidentiality ⓘ
document signing ⓘ
email protection ⓘ
integrity ⓘ
non-repudiation ⓘ
server authentication ⓘ
usedIn public key infrastructure ⓘ
usedInProtocol HTTPS ⓘ
IPsec ⓘ
LDAP over TLS ⓘ
linked to: STARTTLS

S/MIME ⓘ
SSH (via certificate-based keys) ⓘ
SSL ⓘ
TLS ⓘ
verifiedBy certificate authority ⓘ
relying party ⓘ

How these facts were elicited

Referenced by (86)

Full triples — surface form annotated when it differs from this entity's canonical label.

TLS → usesMechanism → X.509 certificates ⓘ
SSL 3.0 → supports → X.509 certificates ⓘ
RFC 5246 → uses → X.509 certificates ⓘ
HTTPS → uses → X.509 certificates ⓘ
X.509 certificate → definedBy → ITU-T Recommendation X.509 ⓘ
subject linked to: X.509 certificates
linked to: X.509 certificates
X.509 certificate → hasVersion → X.509 v1 ⓘ
subject linked to: X.509 certificates
linked to: X.509 certificates
X.509 certificate → hasVersion → X.509 v2 ⓘ
subject linked to: X.509 certificates
linked to: X.509 certificates
X.509 certificate → hasVersion → X.509 v3 ⓘ
subject linked to: X.509 certificates
linked to: X.509 certificates
SSL 2.0 → supports → X.509 certificates ⓘ
ITU Telecommunication Standardization Sector → notableStandard → X.509 ⓘ
linked to: X.509 certificates
SSL → supports → X.509 certificates ⓘ
RFC 4346 → supports → X.509 certificates ⓘ
PKCS #1 → relatedTo → X.509 ⓘ
linked to: X.509 certificates
S/MIME → uses → X.509 certificates ⓘ
S/MIME → requires → Public Key Infrastructure ⓘ
linked to: X.509 certificates
RFC 2246 → uses → X.509 certificates ⓘ
TLS 1.0 → supports → X.509 certificates ⓘ
TLS 1.1 → uses → X.509 certificates ⓘ
ASN.1 → usedIn → X.509 certificates ⓘ
RFC 3546 → relatedTo → X.509 certificates ⓘ
ITU-T Recommendations → hasPart → ITU-T Recommendation X.509 ⓘ
linked to: X.509 certificates
DTLS → uses → X.509 certificates ⓘ
Apple Developer ID certificate → conformsTo → X.509 standard ⓘ
subject linked to: Apple Developer ID certificates
linked to: X.509 certificates
OpenSSL → implementsStandard → X.509 ⓘ
linked to: X.509 certificates
BoringSSL → supportsStandard → X.509 ⓘ
linked to: X.509 certificates
NTP Autokey → basedOn → X.509 public key certificates ⓘ
linked to: X.509 certificates
MD5 → notRecommendedFor → TLS certificates ⓘ
linked to: X.509 certificates
MD5 → formerUse → X.509 certificates ⓘ
PKCS #7 → relatedTo → X.509 certificates ⓘ
PKCS #8 → relatedTo → X.509 ⓘ
linked to: X.509 certificates
brainpool curves → usedIn → X.509 certificates ⓘ
DNS over TLS → requires → X.509 certificates ⓘ
X.500 → hasComponent → X.509 ⓘ
linked to: X.509 certificates
X.500 → relatedStandard → X.509 ⓘ
linked to: X.509 certificates
Client Certificate URL extension → relatedTo → X.509 client certificates ⓘ
linked to: X.509 certificates
RFC 6066 → relatedTo → X.509 certificates ⓘ
LibreSSL → implements → X.509 ⓘ
linked to: X.509 certificates
Azure Key Vault → supports → X.509 certificates ⓘ
AWS Identity and Access Management → uses → X.509 certificates ⓘ
gpgsm → supportsStandard → X.509 ⓘ
linked to: X.509 certificates
gpgsm → supportsFormat → X.509 certificates ⓘ
dirmngr → supportsProtocol → X.509 ⓘ
linked to: X.509 certificates
SHA-2 → usedIn → X.509 certificates ⓘ
SHA-1 → usedIn → X.509 certificates ⓘ
PKCS #12 → supportsObjectType → X.509 certificate ⓘ
linked to: X.509 certificates
PKCS #12 → relatedStandard → X.509 ⓘ
linked to: X.509 certificates
XML Signature → uses → X.509 certificates ⓘ
TLS-over-TCP → canUseAuthenticationMethod → X.509 certificates ⓘ