Giải Mã Chứng Chỉ SSL/TLS X.509
Giải mã chứng chỉ bảo mật SSL/TLS định dạng PEM (.crt, .cer, .pem): kiểm tra đơn vị phát hành (Issuer), đối tượng được cấp (Subject), tên miền phụ (SANs) và ngày hết hạn.
This decodes certificate information only. It does not validate trust, hostname, DNS, revocation, or certificate chains.
Kết quả
This decodes certificate information only. It does not validate trust, hostname, DNS, revocation, or certificate chains.
Cách thức hoạt động
Nhập dữ liệu của bạn
Điền các giá trị cần thiết, dán văn bản hoặc tải lên tệp bạn muốn xử lý.
Xem kết quả tức thì
Hầu hết các công cụ cập nhật theo thời gian thực khi bạn nhập liệu; một số công cụ sử dụng một nút hành động duy nhất.
Sử dụng kết quả
Sao chép, tải xuống hoặc chia sẻ kết quả được tạo — bạn luôn có toàn quyền kiểm soát dữ liệu của mình.
Giải Mã Chứng Chỉ SSL/TLS X.509 là gì?
Paste or load a PEM/DER certificate to inspect its subject, issuer, validity period, public key, fingerprint, and common extensions.
How to read an X.509 certificate
Certificate information
The decoder reads fields encoded inside the certificate itself, such as Subject, Issuer, serial number, validity dates, Subject Alternative Names, Key Usage, and Basic Constraints.
Trust is different
A certificate can be decoded without proving that it is trusted for a domain. Trust requires hostname context, a certificate chain, revocation information, and platform trust roots, none of which this local decoder verifies.
Common uses
- Check when a certificate expires.
- Inspect SAN entries before configuring TLS.
- Compare issuer and public key details during debugging.
What is parsed locally
Subject and issuer distinguished names, validity dates, serial number, public key details, common extensions, and the SHA-256 fingerprint are decoded from the certificate bytes.
Certificate parsing notes
PEM text or DER bytes are parsed in your browser to show certificate fields and a SHA-256 fingerprint; the tool does not validate a live TLS connection.
Các Câu Hỏi Thường Gặp (FAQ)
Does this prove a certificate is trusted?
No. It decodes certificate data but does not validate trust, hostname, DNS, revocation, or certificate chains.
Can I load DER certificates?
Yes, DER files can be loaded from your device and parsed locally when they are not malformed.
What is the SHA-256 fingerprint?
It is a digest of the certificate bytes, useful for comparing certificates without sharing the full certificate.
Why can an expired certificate still be decoded?
Decoding only reads the certificate bytes. Expiration affects whether a certificate should be trusted, not whether its fields can be parsed.
Công Cụ Liên Quan
- Khả dụngCục bộ
Trình Tạo Mật Khẩu Mạnh & Cụm Mật Khẩu (Passphrase)
Tạo mật khẩu ngẫu nhiên có độ bảo mật cao hoặc cụm mật khẩu dễ nhớ, an toàn.
- Khả dụngCục bộ
Tạo Mã Băm (Hash MD5, SHA-256...)
Tạo mã băm băm bảo mật MD5, SHA-1, SHA-256, SHA-512 từ văn bản.
- Khả dụngCục bộ
Trình Xem & Xóa Metadata EXIF Ảnh
Kiểm tra thông số máy ảnh và xóa siêu dữ liệu EXIF cùng tọa độ vị trí GPS khỏi ảnh.
- Khả dụngCục bộ
Trình Tạo Header Content Security Policy (CSP)
Thiết lập các quy tắc chính sách bảo mật header CSP nhằm ngăn chặn tấn công XSS.
- Khả dụngCục bộ
Phân Tích Header Email
Kiểm tra đường đi của thư, xác thực SPF, DKIM, DMARC và thời gian trễ nhận thư.
- Khả dụngMáy chủ
Kiểm Tra Rò Rỉ Mật Khẩu
Kiểm tra xem mật khẩu của bạn đã từng bị lộ trong các vụ rò rỉ dữ liệu hay chưa.
- Khả dụngMáy chủ
Quét Header Bảo Mật Web
Kiểm tra các tiêu đề bảo mật HTTP của website: HSTS, CSP, X-Frame-Options...
- Khả dụngCục bộ
Tạo Chữ Ký Khóa Bí Mật HMAC
Tạo mã xác thực thông báo có khóa (HMAC) bằng SHA-256, SHA-512, MD5.
- Khả dụngCục bộ
Trình Tạo & Kiểm Tra Khóa SSH (Ed25519 & RSA)
Tạo cặp khóa SSH (Ed25519 / RSA) an toàn hoặc kiểm tra fingerprint của khóa công khai.
- Khả dụngCục bộ
Máy Tính Phần Trăm Đa Năng
Tính tỷ lệ phần trăm của một số, tỷ lệ tăng trưởng, giảm giá, chiết khấu và độ lệch.