26
SUOMI/FINLAND (FINLAND) : Trusted List Tsl Id: id_for_enveloped_signing_of_the_entire_list Valid until nextUpdate value: 2018-06-22T00:00:00Z TSL signed on: 2017-12-22T10:50:20.219Z PDF generated on: Fri Dec 22 12:16:10 CET 2017 ETSI 2016 - TSL HR - PDF/A-1b generator SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 1

SUOMI/FINLAND (FINLAND) - Trusted List ID

  • Upload
    lamliem

  • View
    248

  • Download
    2

Embed Size (px)

Citation preview

Page 1: SUOMI/FINLAND (FINLAND) - Trusted List ID

SUOMI/FINLAND (FINLAND) : Trusted List

Tsl Id: id_for_enveloped_signing_of_the_entire_list

Valid until nextUpdate value: 2018-06-22T00:00:00Z

TSL signed on: 2017-12-22T10:50:20.219Z

PDF generated on: Fri Dec 22 12:16:10 CET 2017

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 1

Page 2: SUOMI/FINLAND (FINLAND) - Trusted List ID

TSL Scheme Information

TSL Id id_for_enveloped_signing_of_the_entire_list

TSLTag http://uri.etsi.org/19612/TSLTag

TSL Version Identifier 5

TSL Sequence Number 25

TSL Type http://uri.etsi.org/TrstSvc/TrustedList/TSLType/EUgeneric

Scheme Operator Name

Name [ en ] Finnish Communications Regulatory Authority

Name [ en ] FICORA

Name [ fi ] FICORA - Viestintavirasto

PostalAddress

Street Address [ en ] Itamerenkatu 3A

Locality [ en ] Helsinki

Postal Code [ en ] 00181

Country Name [ en ] FI

ElectronicAddress

URI mailto:[email protected]

URI http://www.viestintavirasto.fi/en/index.html

Scheme Name

Name [ en ] FI:Trusted list including information related to the qualified trust service providers which aresupervised by the issuing Member State, together with information related to the qualified trustservices provided by them, in accordance with the relevant provisions laid down in Regulation(EU) No 910/2014 of the European Parliament and of the Council of 23 July 2014 on electronicidentification and trust services for electronic transactions in the internal market and repealingDirective 1999/93/EC.

Scheme Information URI

URI [ en ] https://www.viestintavirasto.fi/en/informationsecurity/electronicidentificationandsignature/registerofcertificationauthoritiesprovidingqualifiedcertificates.html

Status Determination Approach http://uri.etsi.org/TrstSvc/TrustedList/StatusDetn/EUappropriate

Scheme Type Community Rules

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 2

Page 3: SUOMI/FINLAND (FINLAND) - Trusted List ID

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/schemerules/EUcommon

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/schemerules/FI

Scheme Territory FI

Policy Or Legal Notice

TSL Legal Notice [ en ] The applicable legal framework for the present trusted list is Regulation (EU) No 910/2014 ofthe European Parliament and of the Council of 23 July 2014 on electronic identification andtrust services for electronic transactions in the internal market and repealing Directive1999/93/EC.

TSL Legal Notice [ fi ] Tähän luotettuun luetteloon (trusted list) sovelletaan Euroopan parlamentin ja neuvostonasetusta (EU) N:o 910/2014, annettu 23 päivänä heinäkuuta 2014, sähköisestä tunnistamisestaja sähköisiin transaktioihin liittyvistä luottamuspalveluista sisämarkkinoilla ja direktiivin1999/93/EY kumoamisesta.

Historical Information Period 65535

Pointer to other TSL - EUROPEAN UNION

1.EU TSL - MimeType: application/vnd.etsi.tsl+xml

TSL Location https://ec.europa.eu/information_society/policy/esignature/trusted-list/tl-mp.xml

EU TSL digital identities

TSL Scheme Operator certificate fields details

Version: 3

Serial Number: 21267647932559079066510326516695893879

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

Issuer SERIAL NUMBER: 201306

Issuer CN: Citizen CA

Issuer C: BE

Subject SERIAL NUMBER: 60021211919

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 3

Page 4: SUOMI/FINLAND (FINLAND) - Trusted List ID

Subject GIVEN NAME: Pierre André

Subject SURNAME: Damas

Subject CN: Pierre Damas (Signature)

Subject C: BE

Valid from: Wed Jul 17 19:44:08 CEST 2013

Valid to: Sat Jul 14 01:59:59 CEST 2018

Public Key: 30:81:9F:30:0D:06:09:2A:86:48:86:F7:0D:01:01:01:05:00:03:81:8D:00:30:81:89:02:81:81:00:8C:BF:EE:C3:BE:1C:CB:C0:6D:E9:AE:2A:D4:0C:66:98:45:2D:BE:8C:16:6D:37:67:18:5E:E9:68:29:2A:80:73:94:39:F0:51:26:93:48:2C:65:11:7E:FF:87:64:B7:C8:60:0A:F6:C1:72:99:86:E8:57:2F:4D:F3:71:41:BC:4F:5F:CF:32:63:0A:41:62:C5:A7:27:76:83:E4:FE:10:AC:DD:BE:7D:9C:70:C5:F5:F1:45:17:17:FA:DD:F4:20:1A:6B:F9:66:05:BF:F1:A1:26:1A:05:A3:42:D6:51:E8:42:E1:EC:AF:9C:C7:CF:E0:9F:CC:47:84:C6:95:04:6B:73:02:03:01:00:01

Authority Key Identifier C3:0F:C3:72:4D:3F:DE:B2:38:DE:39:2E:47:64:50:FF:F2:8F:F3:C7

Authority Info Access http://certs.eid.belgium.be/belgiumrs2.crt

http://ocsp.eid.belgium.be

Certificate Policies Policy OID: 2.16.56.9.1.1.2.1

CPS pointer: http://repository.eid.belgium.be

CRL Distribution Points http://crl.eid.belgium.be/eidc201306.crl

QCStatements - crit. = false id_etsi_qcs_QcCompliance

Key Usage: nonRepudiation

Thumbprint algorithm: SHA-256

Thumbprint: FF:EA:7F:0E:D2:9B:EB:07:73:EA:3B:0C:47:29:BB:F8:00:A6:C3:90:B6:21:95:CB:27:0F:12:A4:AA:62:F2:84

EU TSL digital identities

TSL Scheme Operator certificate fields details

Version: 3

Serial Number: 21267647932559078025136389726459194295

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 4

Page 5: SUOMI/FINLAND (FINLAND) - Trusted List ID

Issuer SERIAL NUMBER: 201311

Issuer CN: Citizen CA

Issuer C: BE

Subject SERIAL NUMBER: 83121424102

Subject GIVEN NAME: Maarten Joris

Subject SURNAME: Ottoy

Subject CN: Maarten Ottoy (Signature)

Subject C: BE

Valid from: Wed Jul 24 03:45:31 CEST 2013

Valid to: Thu Jul 19 01:59:59 CEST 2018

Public Key: 30:81:9F:30:0D:06:09:2A:86:48:86:F7:0D:01:01:01:05:00:03:81:8D:00:30:81:89:02:81:81:00:8D:BA:F5:4F:C5:12:62:4B:A1:E1:7F:98:8B:E7:28:CA:4A:BB:99:B1:7C:3E:38:32:8D:64:36:F2:E3:83:A9:10:A4:CA:7B:AA:27:3E:3A:F2:D0:88:63:1B:0C:FF:EF:D0:76:A1:05:AB:86:79:67:56:03:6C:16:1B:E4:AB:31:7C:19:A4:CE:BF:43:F8:6B:78:F6:25:95:B7:D2:20:F8:58:67:81:B3:9E:C7:00:96:D7:4F:2D:E9:0F:FE:34:0A:3A:83:09:7A:20:A9:33:BF:6C:29:10:92:30:B5:CE:75:54:5C:EF:33:E5:A4:13:59:8D:99:C9:69:85:84:53:2F:95:02:03:01:00:01

Authority Key Identifier BC:2C:D5:8D:1D:4F:76:17:7C:0C:EF:6B:94:E8:F5:1E:75:16:63:61

Authority Info Access http://certs.eid.belgium.be/belgiumrs2.crt

http://ocsp.eid.belgium.be

Certificate Policies Policy OID: 2.16.56.9.1.1.2.1

CPS pointer: http://repository.eid.belgium.be

CRL Distribution Points http://crl.eid.belgium.be/eidc201311.crl

QCStatements - crit. = false id_etsi_qcs_QcCompliance

Key Usage: nonRepudiation

Thumbprint algorithm: SHA-256

Thumbprint: F7:BC:0D:16:4D:EC:8F:36:70:9A:BE:85:FC:57:02:2F:3B:16:84:70:0A:80:4C:36:8D:34:32:90:04:90:DF:CB

EU TSL digital identities

TSL Scheme Operator certificate fields details

Version: 3

Serial Number: 1743254

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 5

Page 6: SUOMI/FINLAND (FINLAND) - Trusted List ID

X509 Certificate -----BEGIN CERTIFICATE-----

MIIHATCCBOmgAwIBAgIDGpmWMA0GCSqGSIb3DQEBCwUAME4xCzAJBgNVBAYTAkxVMRYwFAYDVQQKDA1MdXhUcnVzdCBTLkEuMScwJQYDVQQDDB5MdXhUcnVzdCBHbG9iYWwgUXVhbGlmaWVkIENBIDMwHhcNMTYwOTE1MDkwMDEyWhcNMTkwOTE1MDkwMDEyWjCB/TELMAkGA1UEBhMCQkUxCzAJBgNVBAcTAkJFMRwwGgYDVQQKExNFdXJvcGVhbiBDb21taXNzaW9uMRUwEwYDVQQLEwwwOTQ5LjM4My4zNDIxHDAaBgNVBAMTE01hYXJ0ZW4gSm9yaXMgT3R0b3kxDjAMBgNVBAQTBU90dG95MRYwFAYDVQQqEw1NYWFydGVuIEpvcmlzMR0wGwYDVQQFExQxMDMwNDQ0NDExMDA4MDgzNzU5MjEpMCcGCSqGSIb3DQEJARYabWFhcnRlbi5vdHRveUBlYy5ldXJvcGEuZXUxHDAaBgNVBAwTE1Byb2Zlc3Npb25hbCBQZXJzb24wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCyUn5NvdLXpWSAPF7S+tOy/M6uY8Un5sNt2cHIOs/OHvcfY+ghBXwz91EffNXku2RKqwgw3+dyRBI1eOq2l7r0z9dgNd40zB7a/p9M10SsDT41MJB5iQRYE4kQ73FGA61oXD530fYNzxCA9dWXzQ40L+wdpPbrVtfgi+pRTZSXocZF2VHpuiPEVexHPHt68rX/G8pYHg7zmYOEBPLsjjQAwbrVZIKb9Ypgkwb4ziaFg6UZemMfRtl7S08UWjjhOUUjZ+216ie9V6cMSXzg+5Co9HVSXPdqooNhMrOShTI7IzDja3rXAcw6TkvPDgZEpCJZ73HCxz+DWnW7D2JuXMelAgMBAAGjggI2MIICMjAMBgNVHRMBAf8EAjAAMGYGCCsGAQUFBwEBBFowWDAnBggrBgEFBQcwAYYbaHR0cDovL3FjYS5vY3NwLmx1eHRydXN0Lmx1MC0GCCsGAQUFBzAChiFodHRwOi8vY2EubHV4dHJ1c3QubHUvTFRHUUNBMy5jcnQwggEeBgNVHSAEggEVMIIBETCCAQMGCCuBKwEBCgMBMIH2MIHHBggrBgEFBQcCAjCBuhqBt0x1eFRydXN0IFF1YWxpZmllZCBDZXJ0aWZpY2F0ZSBvbiBTU0NEIGNvbXBsaWFudCB3aXRoIEVUU0kgVFMgMTAxIDQ1NiBRQ1ArIGNlcnRpZmljYXRlIHBvbGljeS4gS2V5IEdlbmVyYXRpb24gYnkgQ1NQLiBTb2xlIEF1dGhvcmlzZWQgVXNhZ2U6IFN1cHBvcnQgb2YgUXVhbGlmaWVkIEVsZWN0cm9uaWMgU2lnbmF0dXJlLjAqBggrBgEFBQcCARYeaHR0cHM6Ly9yZXBvc2l0b3J5Lmx1eHRydXN0Lmx1MAgGBgQAizABATAiBggrBgEFBQcBAwQWMBQwCAYGBACORgEBMAgGBgQAjkYBBDALBgNVHQ8EBAMCBkAwHwYDVR0jBBgwFoAUY4/CiwOxq47YU0eWHZmoffasqHUwMwYDVR0fBCwwKjAooCagJIYiaHR0cDovL2NybC5sdXh0cnVzdC5sdS9MVEdRQ0EzLmNybDARBgNVHQ4ECgQIR8OxCQGxgiswDQYJKoZIhvcNAQELBQADggIBACWb5+Xt6sOaxE8bpakXFo2BoWYphyq5XAXRM6e7QDS57CaHW8Ly6ep0I23EZ3KcI3mpqg2UDaEZhGhvnE/SVEyh4go6E8Hljv9iyrdGccc+RgTM87rbkoUi6sZ+BcLlG7WNo2c5BqRyElch5o1/9AEnft3inLK4R47BHtbRkf/FkptiQWjSVzJ6LEHIi8EF215Qg5X/yaUQdxIfMPcQ580rGujGN/Dl2H9rxBUdPUCO0i7zbPeJtfah1zSXxYjy9V4x2Q+cVbcMpa5fSys9c/YQA6XAkA5oKrkSsjCGBULDi2APC3FMehp6BcI/5k202iwebq3xgDWFvuD+swgZ8P0YxS4dZMcjtseYvzGCArFEcoI7buZb30A/Z7K3qx3D895NHupfz20dskujjCV7PVgxx0PCXJPBquuPFV+aYgDCLr7XQMmU8wo0HGKZ/mXThY2F2POLF0uKgY6F5mZBIhRYU5IgybGrayqEpaEcr8LMBKzr2DRpLzDojU5k9apmVnoQJ2cSfTrQ87ZXOaG+6h/Md6cVaUI0J8iOpFLinKRGRBEkwE+pxFE2tOoyaK9iLKurRYdfd8WETatEsEyi4o4CFPD//bthgwvSl0Cfrkj8V5lIR13140D+NQtX0vSx/PHq5ySOKq9ZPUo42r8ihX/ZP0Z+Vrg5ATqpSCcqn01Z

-----END CERTIFICATE-----

Signature algorithm: SHA256withRSA

Issuer CN: LuxTrust Global Qualified CA 3

Issuer O: LuxTrust S.A.

Issuer C: LU

Subject T: Professional Person

Subject E: [email protected]

Subject SERIAL NUMBER: 10304444110080837592

Subject GIVEN NAME: Maarten Joris

Subject SURNAME: Ottoy

Subject CN: Maarten Joris Ottoy

Subject OU: 0949.383.342

Subject O: European Commission

Subject L: BE

Subject C: BE

Valid from: Thu Sep 15 11:00:12 CEST 2016

Valid to: Sun Sep 15 11:00:12 CEST 2019

Public Key: 30:82:01:22:30:0D:06:09:2A:86:48:86:F7:0D:01:01:01:05:00:03:82:01:0F:00:30:82:01:0A:02:82:01:01:00:B2:52:7E:4D:BD:D2:D7:A5:64:80:3C:5E:D2:FA:D3:B2:FC:CE:AE:63:C5:27:E6:C3:6D:D9:C1:C8:3A:CF:CE:1E:F7:1F:63:E8:21:05:7C:33:F7:51:1F:7C:D5:E4:BB:64:4A:AB:08:30:DF:E7:72:44:12:35:78:EA:B6:97:BA:F4:CF:D7:60:35:DE:34:CC:1E:DA:FE:9F:4C:D7:44:AC:0D:3E:35:30:90:79:89:04:58:13:89:10:EF:71:46:03:AD:68:5C:3E:77:D1:F6:0D:CF:10:80:F5:D5:97:CD:0E:34:2F:EC:1D:A4:F6:EB:56:D7:E0:8B:EA:51:4D:94:97:A1:C6:45:D9:51:E9:BA:23:C4:55:EC:47:3C:7B:7A:F2:B5:FF:1B:CA:58:1E:0E:F3:99:83:84:04:F2:EC:8E:34:00:C1:BA:D5:64:82:9B:F5:8A:60:93:06:F8:CE:26:85:83:A5:19:7A:63:1F:46:D9:7B:4B:4F:14:5A:38:E1:39:45:23:67:ED:B5:EA:27:BD:57:A7:0C:49:7C:E0:FB:90:A8:F4:75:52:5C:F7:6A:A2:83:61:32:B3:92:85:32:3B:23:30:E3:6B:7A:D7:01:CC:3A:4E:4B:CF:0E:06:44:A4:22:59:EF:71:C2:C7:3F:83:5A:75:BB:0F:62:6E:5C:C7:A5:02:03:01:00:01

Basic Constraints IsCA: false

Authority Info Access http://qca.ocsp.luxtrust.lu

http://ca.luxtrust.lu/LTGQCA3.crt

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 6

Page 7: SUOMI/FINLAND (FINLAND) - Trusted List ID

Certificate Policies Policy OID: 1.3.171.1.1.10.3.1

CPS text: [LuxTrust Qualified Certificate on SSCD compliant with ETSI TS 101 456 QCP+certificate policy. Key Generation by CSP. Sole Authorised Usage: Support of Qualified ElectronicSignature.]

CPS pointer: https://repository.luxtrust.lu

Policy OID: 0.4.0.1456.1.1

QCStatements - crit. = false id_etsi_qcs_QcCompliance

id_etsi_qcs_QcSSCD

Authority Key Identifier 63:8F:C2:8B:03:B1:AB:8E:D8:53:47:96:1D:99:A8:7D:F6:AC:A8:75

CRL Distribution Points http://crl.luxtrust.lu/LTGQCA3.crl

Subject Key Identifier 47:C3:B1:09:01:B1:82:2B

Key Usage: nonRepudiation

Thumbprint algorithm: SHA-256

Thumbprint: 9C:1A:3B:64:6E:AF:13:23:98:EF:31:9E:41:C8:E7:ED:72:5B:64:D5:77:25:80:AE:12:5D:59:C0:F6:84:56:30

EU TSL digital identities

TSL Scheme Operator certificate fields details

Version: 3

Serial Number: 1974568

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA256withRSA

Issuer CN: LuxTrust Global Qualified CA 3

Issuer O: LuxTrust S.A.

Issuer C: LU

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 7

Page 8: SUOMI/FINLAND (FINLAND) - Trusted List ID

Subject T: Professional Person

Subject E: [email protected]

Subject SERIAL NUMBER: 10303969450085046424

Subject GIVEN NAME: Michael Theodoor

Subject SURNAME: de Boer

Subject CN: Michael Theodoor de Boer

Subject OU: 0949.383.342

Subject O: European Commission

Subject L: BE

Subject C: NL

Valid from: Thu May 11 12:27:25 CEST 2017

Valid to: Mon May 11 12:27:25 CEST 2020

Public Key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

Basic Constraints IsCA: false

Authority Info Access http://qca.ocsp.luxtrust.lu

http://ca.luxtrust.lu/LTGQCA3.crt

Certificate Policies Policy OID: 1.3.171.1.1.10.3.1

CPS text: [LuxTrust Qualified Certificate on SSCD compliant with ETSI TS 101 456 QCP+certificate policy. Key Generation by CSP. Sole Authorised Usage: Support of Qualified ElectronicSignature.]

CPS pointer: https://repository.luxtrust.lu

Policy OID: 0.4.0.1456.1.1

QCStatements - crit. = false id_etsi_qcs_QcCompliance

id_etsi_qcs_QcSSCD

Authority Key Identifier 63:8F:C2:8B:03:B1:AB:8E:D8:53:47:96:1D:99:A8:7D:F6:AC:A8:75

CRL Distribution Points http://crl.luxtrust.lu/LTGQCA3.crl

Subject Key Identifier 40:F6:1A:7C:B8:9D:8F:D9

Key Usage: nonRepudiation

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 8

Page 9: SUOMI/FINLAND (FINLAND) - Trusted List ID

Thumbprint algorithm: SHA-256

Thumbprint: 59:A1:BF:29:0B:81:8B:17:7A:D6:1A:C4:B3:E6:DC:DD:D4:6D:A6:D5:BE:95:79:F8:56:4A:DE:A6:F2:CF:07:3E

EU TSL digital identities

TSL Scheme Operator certificate fields details

Version: 3

Serial Number: 21267647932558803542992831893320696944

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

Issuer SERIAL NUMBER: 201508

Issuer CN: Citizen CA

Issuer C: BE

Subject SERIAL NUMBER: 67022330340

Subject GIVEN NAME: Jean-Marc

Subject SURNAME: Verbergt

Subject CN: Jean-Marc Verbergt (Signature)

Subject C: BE

Valid from: Fri May 01 20:54:54 CEST 2015

Valid to: Sat Apr 26 01:59:59 CEST 2025

Public Key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

Authority Key Identifier 6A:6F:51:E5:CC:27:5D:65:09:EE:A8:1B:12:94:03:F0:40:A0:08:F2

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 9

Page 10: SUOMI/FINLAND (FINLAND) - Trusted List ID

Authority Info Access http://certs.eid.belgium.be/belgiumrs3.crt

http://ocsp.eid.belgium.be/2

Certificate Policies Policy OID: 2.16.56.10.1.1.2.1

CPS pointer: http://repository.eid.belgium.be

CPS text: [Gebruik onderworpen aan aansprakelijkheidsbeperkingen, zie CPS - Usage soumis à deslimitations de responsabilité, voir CPS - Verwendung unterliegt Haftungsbeschränkungen,gemäss CPS]

CRL Distribution Points http://crl.eid.belgium.be/eidc201508.crl

QCStatements - crit. = false id_etsi_qcs_QcCompliance

id_etsi_qcs_QcSSCD

Key Usage: nonRepudiation

Thumbprint algorithm: SHA-256

Thumbprint: 54:00:AB:71:2C:41:AA:F0:C4:0B:50:5E:26:4D:54:94:D8:AF:41:80:F8:F6:29:55:D1:62:23:B3:29:0F:97:C3

TSL Type http://uri.etsi.org/TrstSvc/TrustedList/TSLType/EUlistofthelists

Scheme Territory EU

Mime Type application/vnd.etsi.tsl+xml

Scheme Operator Name

Name [ en ] European Commission

Scheme Type Community Rules

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/schemerules/EUlistofthelists

List Issue Date Time 2017-12-22T01:00:00Z

Next Update

date Time 2018-06-22T00:00:00Z

Distribution Points

URI https://www.viestintavirasto.fi/attachments/TSL-Ficora.xml

URI https://www.viestintavirasto.fi/attachments/HumanReadable_TSL-Ficora.xml.pdf

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 10

Page 11: SUOMI/FINLAND (FINLAND) - Trusted List ID

1 - TSP: Population Register Centre

TSP Name

Name [ en ] Population Register Centre

Name [ fi ] Vaestorekisterikeskus

Name [ fi ] VRK

TSP Trade Name

Name [ en ] NTRFI-0245437-2

Name [ en ] Vaestorekisterikeskus CA

PostalAddress

Street Address [ en ] P.O.Box 123

Locality [ en ] Helsinki

Postal Code [ en ] 00531

Country Name [ en ] FI

ElectronicAddress

URI mailto:[email protected]

URI http://www.vrk.fi/en

TSP Information URI

URI [ en ] http://vrk.fi/en/frontpage

1.1 - Service (granted): VRK Gov. CA for Citizen Qualified Certificates

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service type description [en] A certificate generation service creating and signing qualified certificates based on the identity and other attributes verifiedby the relevant registration services.

Service Name

Name [ en ] VRK Gov. CA for Citizen Qualified Certificates

Service digital identities

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 11

Page 12: SUOMI/FINLAND (FINLAND) - Trusted List ID

Certificate fields details

Version: 3

Serial Number: 100505

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

Issuer CN: VRK Gov. Root CA

Issuer OU: Varmennepalvelut

Issuer OU: Certification Authority Services

Issuer O: Vaestorekisterikeskus CA

Issuer ST: Finland

Issuer C: FI

Subject CN: VRK Gov. CA for Citizen Qualified Certificates

Subject OU: Valtion kansalaisvarmenteet

Subject O: Vaestorekisterikeskus CA

Subject ST: Finland

Subject C: FI

Valid from: Fri Jan 10 13:59:05 CET 2003

Valid to: Wed Jan 09 13:58:30 CET 2019

Public Key: 30:82:01:22:30:0D:06:09:2A:86:48:86:F7:0D:01:01:01:05:00:03:82:01:0F:00:30:82:01:0A:02:82:01:01:00:B9:02:3E:76:EE:89:71:0C:73:AD:91:04:14:F8:11:B5:15:4B:34:C4:EC:BC:43:0D:B3:DC:D9:A0:57:BC:8E:91:84:70:8B:F0:BB:68:06:EF:6B:27:BB:D7:6A:BC:00:F1:A2:0D:AF:8F:7F:43:7F:5F:34:0D:CA:75:96:CB:30:B6:92:BB:FE:7D:0A:B9:62:31:B2:A5:16:E7:BD:C8:80:B4:66:C9:41:25:C1:A1:7E:7C:79:5E:AC:77:90:96:2C:A1:8C:A3:58:07:C6:C5:CD:53:A2:FD:BF:D5:E5:49:62:D4:1F:8C:5B:62:F4:2D:FA:8C:5F:A6:D8:09:6C:AE:44:FB:BD:4E:60:2F:03:2F:42:94:EB:19:A5:11:FB:8F:35:06:75:45:FD:E9:AA:A9:44:7E:64:23:3F:6E:2E:6D:C8:32:DD:90:07:55:31:41:87:BA:D3:EB:AA:70:F8:BE:73:01:53:D8:04:2C:94:1B:BA:DD:5C:74:BD:86:E9:51:6B:86:3C:C3:70:45:44:1C:5B:0A:11:EC:73:BB:6E:2A:4F:64:42:63:46:85:00:09:EC:27:49:C7:75:79:90:FB:2B:C6:7B:B3:B4:EB:A7:8A:67:81:2A:80:79:5F:7C:20:BE:4F:5F:EB:89:FA:D0:9A:74:AA:E9:A7:63:89:7D:57:AA:19:02:03:01:00:01

Basic Constraints IsCA: true - Path length: 0

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 12

Page 13: SUOMI/FINLAND (FINLAND) - Trusted List ID

Certificate Policies Policy OID: 1.2.246.517.1.10.1.1

CPS text: [Varmennepolitiikka on saatavilla - Certifikat policy finns - Certificate policy is availablehttp://www.fineid.fi/cps1]

CPS pointer: http://www.fineid.fi/cps1/

Authority Info Access http://proxy.fineid.fi/ca/vrkrootc.crt

Authority Key Identifier DB:E9:E1:9B:D2:D1:24:0B:FC:AB:E3:A0:67:EA:AE:9C:4B:77:F4:B0

CRL Distribution Points http://proxy.fineid.fi/arl/vrkroota.crl

Subject Key Identifier 88:5A:6F:1D:42:47:82:86:FD:D7:E9:0D:B2:57:CF:4D:50:28:04:17

Key Usage: digitalSignature - nonRepudiation - keyCertSign - cRLSign

Thumbprint algorithm: SHA-256

Thumbprint: 36:C5:EB:DE:1D:6A:9A:0E:D4:E6:6B:61:4A:0C:7A:21:7A:07:7D:C6:38:EE:70:4F:BF:66:68:44:3B:59:54:B1

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/granted

Service status description [en] Following ex ante and active approval activities, in compliance with the provisions laid down in the applicable nationallegislation and Regulation (EU) No 910/2014 [i.10], it indicates that the Supervisory Body identified in the "Schemeoperator name" (see clause 5.3.4) on behalf of the Member State identified in the "Scheme territory" (see clause 5.3.10) hasgranted a qualified status: to the corresponding trust service being of a service type specified in clause 5.5.1.1 andidentified in "Service digital identity" (see clause 5.5.3), and to the trust service provider identified in "TSP name" (seeclause 5.4.1) for the provision of that service.

Status Starting Time 2016-06-30T22:00:00Z

Service Supply Points

Service Supply Point http://ocsp.fineid.fi/vrkcqc

1.1.1 - Extension (critical): additionalServiceInformation

AdditionalServiceInformation

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/SvcInfoExt/ForeSignatures

1.1.2 - History instance n.1 - Status: undersupervision

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service Name

Name [ en ] VRK Gov. CA for Citizen Qualified Certificates

Service digital identities

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 13

Page 14: SUOMI/FINLAND (FINLAND) - Trusted List ID

X509SubjectName

Subject CN: VRK Gov. CA for Citizen Qualified Certificates

Subject OU: Valtion kansalaisvarmenteet

Subject O: Vaestorekisterikeskus CA

Subject ST: Finland

Subject C: FI

X509SKI

X509 SK I iFpvHUJHgob91+kNslfPTVAoBBc=

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/undersupervision

Status Starting Time 2003-03-31T10:00:00Z

1.2 - Service (granted): VRK Gov. CA for Citizen Qualified Certificates - G2

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service type description [en] A certificate generation service creating and signing qualified certificates based on the identity and other attributes verifiedby the relevant registration services.

Service Name

Name [ en ] VRK Gov. CA for Citizen Qualified Certificates - G2

Service digital identities

Certificate fields details

Version: 3

Serial Number: 109205

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 14

Page 15: SUOMI/FINLAND (FINLAND) - Trusted List ID

Issuer CN: VRK Gov. Root CA

Issuer OU: Varmennepalvelut

Issuer OU: Certification Authority Services

Issuer O: Vaestorekisterikeskus CA

Issuer ST: Finland

Issuer C: FI

Subject CN: VRK Gov. CA for Citizen Qualified Certificates - G2

Subject OU: Valtion kansalaisvarmenteet

Subject O: Vaestorekisterikeskus CA

Subject C: FI

Valid from: Thu Nov 21 12:14:33 CET 2013

Valid to: Sun Dec 17 22:59:59 CET 2023

Public Key: 30:82:02:22:30:0D:06:09:2A:86:48:86:F7:0D:01:01:01:05:00:03:82:02:0F:00:30:82:02:0A:02:82:02:01:00:D4:AA:75:B2:E7:1A:F7:A4:70:58:62:96:A9:1A:C5:55:28:29:6E:17:DB:BF:F8:57:3C:02:3F:9F:EC:40:74:82:36:ED:4D:62:C9:21:57:CE:95:9A:E5:F7:FC:50:65:A1:1C:F8:18:C5:B4:31:64:47:08:DD:EC:77:D9:56:23:C2:DD:C9:63:DE:7F:60:7E:19:FE:2A:E1:25:FD:8F:DE:47:DD:AD:9F:29:3A:F0:42:12:0F:29:36:2E:0E:5D:DD:F8:32:C8:86:DC:EA:D0:2E:0A:77:23:3A:F5:48:70:82:E0:B2:6C:8B:0D:0F:17:16:1D:E8:0B:74:FB:F2:23:7C:85:59:71:E6:75:70:0B:CF:89:53:FB:F8:58:AA:15:F2:FB:65:97:1D:C1:6F:CB:CA:04:D6:6E:A1:30:FF:56:76:F0:50:22:A0:15:93:51:CB:E3:2F:E8:03:D6:4B:9D:BB:98:1C:57:A1:DC:7B:98:93:AC:09:33:DE:5D:40:B6:21:D7:1E:94:E4:2F:1A:39:6A:9A:3C:AA:71:A3:FD:80:90:05:69:6B:E7:12:54:62:23:B2:6D:DE:C5:D3:03:C0:22:54:38:67:E2:51:B2:10:02:9A:E8:23:D9:62:D3:F5:9B:51:4B:02:76:6A:4F:2A:A7:3E:A8:61:86:B4:D1:FD:76:DF:DF:E7:42:59:B0:E6:21:A2:3F:36:AA:4E:0C:E8:50:04:C8:EB:65:52:1D:D5:C3:84:30:4A:4D:F6:50:22:CE:91:26:3F:E5:69:AD:58:AC:3F:95:24:6E:1F:27:37:47:F8:43:08:30:21:C7:4A:DF:77:65:48:12:D3:41:FE:2C:0F:49:4D:AE:94:F0:DF:38:FE:0D:D0:F4:3F:59:31:24:7C:23:B3:12:52:31:62:8A:1A:8C:C1:09:46:0A:CB:65:47:2B:D4:4B:2C:29:A3:59:AA:98:B5:C9:1F:E3:E3:BC:12:0F:77:55:8B:5C:05:77:06:2A:8D:ED:74:A3:7D:35:F8:4B:32:32:0F:E1:DB:3F:0D:C6:DD:29:36:CF:2B:B9:56:0C:1F:46:6F:2B:2D:87:0A:4D:14:6A:97:C4:3B:3F:B1:0B:B5:72:CA:64:6D:46:CD:6A:6B:96:C6:52:90:B9:A4:CA:FC:EE:90:33:64:02:ED:6B:12:1E:EE:EA:F9:E4:28:98:2E:39:E4:03:C4:F0:8D:FE:11:F9:65:58:D6:B4:C9:26:DD:58:48:78:DE:53:A4:E8:F8:B9:F2:29:64:B1:F4:E2:BE:38:A6:95:AF:F7:58:15:9E:68:31:F1:41:B2:22:0F:BF:70:26:50:B3:D1:5B:42:83:67:7F:E1:F7:FC:95:02:03:01:00:01

Basic Constraints IsCA: true - Path length: 0

Authority Info Access http://proxy.fineid.fi/ca/vrkrootc.crt

Certificate Policies Policy OID: 1.2.246.517.1.10.21.1

CPS text: [Varmennepolitiikka on saatavilla - Certifikat policy finns - Certificate policy is availablehttp://www.fineid.fi/cps21]

CPS pointer: http://www.fineid.fi/cps21/

Authority Key Identifier DB:E9:E1:9B:D2:D1:24:0B:FC:AB:E3:A0:67:EA:AE:9C:4B:77:F4:B0

CRL Distribution Points http://proxy.fineid.fi/arl/vrkroota.crl

Subject Key Identifier C1:AF:1D:8A:5F:1D:9A:87:0D:82:10:FC:9D:DD:F5:B0:1E:70:D3:B5

Key Usage: digitalSignature - nonRepudiation - keyCertSign - cRLSign

Thumbprint algorithm: SHA-256

Thumbprint: 82:63:C4:EC:2B:EF:EB:26:BD:D8:33:F7:78:73:CC:8E:C5:9D:93:4A:16:28:2C:2B:08:48:CD:A2:AF:DA:8E:B5

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 15

Page 16: SUOMI/FINLAND (FINLAND) - Trusted List ID

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/granted

Service status description [en] Following ex ante and active approval activities, in compliance with the provisions laid down in the applicable nationallegislation and Regulation (EU) No 910/2014 [i.10], it indicates that the Supervisory Body identified in the "Schemeoperator name" (see clause 5.3.4) on behalf of the Member State identified in the "Scheme territory" (see clause 5.3.10) hasgranted a qualified status: to the corresponding trust service being of a service type specified in clause 5.5.1.1 andidentified in "Service digital identity" (see clause 5.5.3), and to the trust service provider identified in "TSP name" (seeclause 5.4.1) for the provision of that service.

Status Starting Time 2016-06-30T22:00:00Z

Service Supply Points

Service Supply Point http://ocsp.fineid.fi/vrkcqc2

1.2.1 - Extension (critical): additionalServiceInformation

AdditionalServiceInformation

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/SvcInfoExt/ForeSignatures

1.2.2 - History instance n.1 - Status: undersupervision

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service Name

Name [ en ] VRK Gov. CA for Citizen Qualified Certificates - G2

Service digital identities

X509SubjectName

Subject CN: VRK Gov. CA for Citizen Qualified Certificates - G2

Subject OU: Valtion kansalaisvarmenteet

Subject O: Vaestorekisterikeskus CA

Subject C: FI

X509SKI

X509 SK I wa8dil8dmocNghD8nd31sB5w07U=

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/undersupervision

Status Starting Time 2014-01-08T11:00:00Z

1.3 - Service (granted): VRK CA for Qualified Certificates

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 16

Page 17: SUOMI/FINLAND (FINLAND) - Trusted List ID

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service type description [en] A certificate generation service creating and signing qualified certificates based on the identity and other attributes verifiedby the relevant registration services.

Service Name

Name [ en ] VRK CA for Qualified Certificates

Service digital identities

Certificate fields details

Version: 3

Serial Number: 100506

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

Issuer CN: VRK Gov. Root CA

Issuer OU: Varmennepalvelut

Issuer OU: Certification Authority Services

Issuer O: Vaestorekisterikeskus CA

Issuer ST: Finland

Issuer C: FI

Subject CN: VRK CA for Qualified Certificates

Subject OU: Organisaatiovarmenteet

Subject O: Vaestorekisterikeskus CA

Subject ST: Finland

Subject C: FI

Valid from: Tue Jan 14 08:57:02 CET 2003

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 17

Page 18: SUOMI/FINLAND (FINLAND) - Trusted List ID

Valid to: Sun Jan 13 08:56:10 CET 2019

Public Key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

Basic Constraints IsCA: true - Path length: 0

Certificate Policies Policy OID: 1.2.246.517.1.10.1.2

CPS text: [Varmennepolitiikka on saatavilla - Certifikat policy finns - Certificate policy is availablehttp://www.fineid.fi/cps2]

CPS pointer: http://www.fineid.fi/cps2/

Authority Info Access http://proxy.fineid.fi/ca/vrkrootc.crt

Authority Key Identifier DB:E9:E1:9B:D2:D1:24:0B:FC:AB:E3:A0:67:EA:AE:9C:4B:77:F4:B0

CRL Distribution Points http://proxy.fineid.fi/arl/vrkroota.crl

Subject Key Identifier 54:1A:02:37:8F:8E:63:DF:8F:F0:30:23:4A:A8:FC:67:57:F0:53:A8

Key Usage: digitalSignature - nonRepudiation - keyCertSign - cRLSign

Thumbprint algorithm: SHA-256

Thumbprint: AE:75:B2:00:65:5E:16:AF:C6:35:01:2C:99:FE:50:3D:C0:70:EA:CA:88:A3:62:E8:2F:D7:40:EA:3C:F3:68:5E

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/granted

Service status description [en] Following ex ante and active approval activities, in compliance with the provisions laid down in the applicable nationallegislation and Regulation (EU) No 910/2014 [i.10], it indicates that the Supervisory Body identified in the "Schemeoperator name" (see clause 5.3.4) on behalf of the Member State identified in the "Scheme territory" (see clause 5.3.10) hasgranted a qualified status: to the corresponding trust service being of a service type specified in clause 5.5.1.1 andidentified in "Service digital identity" (see clause 5.5.3), and to the trust service provider identified in "TSP name" (seeclause 5.4.1) for the provision of that service.

Status Starting Time 2016-06-30T22:00:00Z

Service Supply Points

Service Supply Point http://ocsp.fineid.fi/vrkqc

1.3.1 - Extension (critical): additionalServiceInformation

AdditionalServiceInformation

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/SvcInfoExt/ForeSignatures

1.3.2 - History instance n.1 - Status: undersupervision

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 18

Page 19: SUOMI/FINLAND (FINLAND) - Trusted List ID

Service Name

Name [ en ] VRK CA for Qualified Certificates

Service digital identities

X509SubjectName

Subject CN: VRK CA for Qualified Certificates

Subject OU: Organisaatiovarmenteet

Subject O: Vaestorekisterikeskus CA

Subject ST: Finland

Subject C: FI

X509SKI

X509 SK I VBoCN4+OY9+P8DAjSqj8Z1fwU6g=

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/undersupervision

Status Starting Time 2003-03-31T10:00:00Z

1.4 - Service (granted): VRK CA for Qualified Certificates - G2

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service type description [en] A certificate generation service creating and signing qualified certificates based on the identity and other attributes verifiedby the relevant registration services.

Service Name

Name [ en ] VRK CA for Qualified Certificates - G2

Service digital identities

Certificate fields details

Version: 3

Serial Number: 109206

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 19

Page 20: SUOMI/FINLAND (FINLAND) - Trusted List ID

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

Issuer CN: VRK Gov. Root CA

Issuer OU: Varmennepalvelut

Issuer OU: Certification Authority Services

Issuer O: Vaestorekisterikeskus CA

Issuer ST: Finland

Issuer C: FI

Subject CN: VRK CA for Qualified Certificates - G2

Subject OU: Organisaatiovarmenteet

Subject O: Vaestorekisterikeskus CA

Subject C: FI

Valid from: Thu Nov 21 14:20:58 CET 2013

Valid to: Sun Dec 17 22:59:59 CET 2023

Public Key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

Basic Constraints IsCA: true - Path length: 0

Authority Info Access http://proxy.fineid.fi/ca/vrkrootc.crt

Certificate Policies Policy OID: 1.2.246.517.1.10.21.2

CPS text: [Varmennepolitiikka on saatavilla - Certifikat policy finns - Certificate policy is availablehttp://www.fineid.fi/cps22]

CPS pointer: http://www.fineid.fi/cps22/

Authority Key Identifier DB:E9:E1:9B:D2:D1:24:0B:FC:AB:E3:A0:67:EA:AE:9C:4B:77:F4:B0

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 20

Page 21: SUOMI/FINLAND (FINLAND) - Trusted List ID

CRL Distribution Points http://proxy.fineid.fi/arl/vrkroota.crl

Subject Key Identifier 56:A9:57:AF:D6:31:7E:71:D6:2D:BA:0E:E3:EE:8A:13:14:CA:29:D7

Key Usage: digitalSignature - nonRepudiation - keyCertSign - cRLSign

Thumbprint algorithm: SHA-256

Thumbprint: A5:DF:C5:AD:09:B2:F6:6A:68:EF:0F:B3:B4:BD:AA:42:AA:3A:DD:6F:3E:7B:BF:CB:DF:D2:7F:C7:CC:D9:F3:D8

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/granted

Service status description [en] Following ex ante and active approval activities, in compliance with the provisions laid down in the applicable nationallegislation and Regulation (EU) No 910/2014 [i.10], it indicates that the Supervisory Body identified in the "Schemeoperator name" (see clause 5.3.4) on behalf of the Member State identified in the "Scheme territory" (see clause 5.3.10) hasgranted a qualified status: to the corresponding trust service being of a service type specified in clause 5.5.1.1 andidentified in "Service digital identity" (see clause 5.5.3), and to the trust service provider identified in "TSP name" (seeclause 5.4.1) for the provision of that service.

Status Starting Time 2016-06-30T22:00:00Z

Service Supply Points

Service Supply Point http://ocsp.fineid.fi/vrkqc2

1.4.1 - Extension (critical): additionalServiceInformation

AdditionalServiceInformation

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/SvcInfoExt/ForeSignatures

1.4.2 - History instance n.1 - Status: undersupervision

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service Name

Name [ en ] VRK CA for Qualified Certificates - G2

Service digital identities

X509SubjectName

Subject CN: VRK CA for Qualified Certificates - G2

Subject OU: Organisaatiovarmenteet

Subject O: Vaestorekisterikeskus CA

Subject C: FI

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 21

Page 22: SUOMI/FINLAND (FINLAND) - Trusted List ID

X509SKI

X509 SK I VqlXr9YxfnHWLboO4+6KExTKKdc=

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/undersupervision

Status Starting Time 2014-01-08T11:00:00Z

1.5 - Service (granted): VRK CA for Healthcare Professionals Qualified Certificates

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service type description [en] A certificate generation service creating and signing qualified certificates based on the identity and other attributes verifiedby the relevant registration services.

Service Name

Name [ en ] VRK CA for Healthcare Professionals Qualified Certificates

Service digital identities

Certificate fields details

Version: 3

Serial Number: 108117

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA1withRSA

Issuer CN: VRK Gov. Root CA

Issuer OU: Varmennepalvelut

Issuer OU: Certification Authority Services

Issuer O: Vaestorekisterikeskus CA

Issuer ST: Finland

Issuer C: FI

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 22

Page 23: SUOMI/FINLAND (FINLAND) - Trusted List ID

Subject CN: VRK CA for Healthcare Professionals Qualified Certificates

Subject OU: Terveydenhuollon ammattivarmenteet

Subject O: Vaestorekisterikeskus CA

Subject ST: Finland

Subject C: FI

Valid from: Wed Oct 27 13:41:26 CEST 2010

Valid to: Sun Dec 17 20:59:59 CET 2023

Public Key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

Basic Constraints IsCA: true - Path length: 0

Certificate Policies Policy OID: 1.2.246.517.1.10.1.7

CPS text: [Varmennepolitiikka on saatavilla - Certifikat policy finns - Certificate policy is availablehttp://www.fineid.fi/cps6]

CPS pointer: http://www.fineid.fi/cps6/

Authority Info Access http://proxy.fineid.fi/ca/vrkrootc.crt

Authority Key Identifier DB:E9:E1:9B:D2:D1:24:0B:FC:AB:E3:A0:67:EA:AE:9C:4B:77:F4:B0

CRL Distribution Points http://proxy.fineid.fi/arl/vrkroota.crl

Subject Key Identifier CD:1B:7F:D6:56:5F:06:F5:0A:29:32:5E:EA:2D:6C:9C:26:58:00:12

Key Usage: digitalSignature - nonRepudiation - keyCertSign - cRLSign

Thumbprint algorithm: SHA-256

Thumbprint: C2:73:FA:D0:43:93:0E:B4:F5:F5:20:2F:5A:92:EA:D9:35:15:7F:DD:73:E2:9F:80:7A:95:B0:E4:2C:16:0F:99

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/granted

Service status description [en] Following ex ante and active approval activities, in compliance with the provisions laid down in the applicable nationallegislation and Regulation (EU) No 910/2014 [i.10], it indicates that the Supervisory Body identified in the "Schemeoperator name" (see clause 5.3.4) on behalf of the Member State identified in the "Scheme territory" (see clause 5.3.10) hasgranted a qualified status: to the corresponding trust service being of a service type specified in clause 5.5.1.1 andidentified in "Service digital identity" (see clause 5.5.3), and to the trust service provider identified in "TSP name" (seeclause 5.4.1) for the provision of that service.

Status Starting Time 2016-06-30T22:00:00Z

Service Supply Points

Service Supply Point http://ocsp.fineid.fi/vrkhcp

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 23

Page 24: SUOMI/FINLAND (FINLAND) - Trusted List ID

1.5.1 - Extension (critical): additionalServiceInformation

AdditionalServiceInformation

URI [ en ] http://uri.etsi.org/TrstSvc/TrustedList/SvcInfoExt/ForeSignatures

1.5.2 - History instance n.1 - Status: undersupervision

Service Type Identifier http://uri.etsi.org/TrstSvc/Svctype/CA/QC

Service Name

Name [ en ] VRK CA for Healthcare Professionals Qualified Certificates

Service digital identities

X509SubjectName

Subject CN: VRK CA for Healthcare Professionals Qualified Certificates

Subject OU: Terveydenhuollon ammattivarmenteet

Subject O: Vaestorekisterikeskus CA

Subject ST: Finland

Subject C: FI

X509SKI

X509 SK I zRt/1lZfBvUKKTJe6i1snCZYABI=

Service Status http://uri.etsi.org/TrstSvc/TrustedList/Svcstatus/undersupervision

Status Starting Time 2010-12-01T11:00:00Z

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 24

Page 25: SUOMI/FINLAND (FINLAND) - Trusted List ID

2 - Signature node - Id: Signature-1134313132

Signer issuer name Finnish Communications Regulatory Authority TSL 2017a

Signing Time 2017-12-22T10:50:20.219Z

TSL Scheme Operator certificate fields details

Version: 3

Serial Number: 89990753427

X509 Certificate -----BEGIN CERTIFICATE-----

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

-----END CERTIFICATE-----

Signature algorithm: SHA512withRSA

Issuer CN: Finnish Communications Regulatory Authority TSL 2017a

Issuer O: Finnish Communications Regulatory Authority

Issuer L: Helsinki

Issuer C: FI

Subject CN: Finnish Communications Regulatory Authority TSL 2017a

Subject O: Finnish Communications Regulatory Authority

Subject L: Helsinki

Subject C: FI

Valid from: Tue May 09 02:00:00 CEST 2017

Valid to: Mon Aug 31 02:00:00 CEST 2020

Public Key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

Subject Key Identifier 4F:30:44:3D:18:1B:66:82:84:0B:47:3A:BF:9A:4B:AE:83:80:44:D3

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 25

Page 26: SUOMI/FINLAND (FINLAND) - Trusted List ID

Basic Constraints IsCA: false

Certificate Policies Policy OID: 2.5.29.32.0

Extended Key Usage id-tsl-kp-tslSigning

Key Usage: digitalSignature - nonRepudiation

Thumbprint algorithm: SHA-256

Thumbprint: C5:FD:D7:E5:8E:A7:39:A1:0C:01:31:7D:88:8D:CA:49:D6:7D:F1:3D:5A:F2:FE:BB:23:E3:10:73:94:68:52:C8

ETSI 2016 - TSL HR - PDF/A-1b generator

SUOMI/FINLAND (FINLAND) - Trusted List ID: id_for_enveloped_signing_of_the_entire_list Page 26