From 471086ada6c4a6557e866f4bbfa05209df4cdd1a Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Mon, 8 Sep 2025 15:39:00 -0700 Subject: [PATCH 1/9] Add documentation page for our OIDs --- content/base-l10n/docs/oids.md | 9 +++++ content/ca/docs/oids.md | 9 +++++ content/cs/docs/oids.md | 9 +++++ content/da/docs/oids.md | 9 +++++ content/de/docs/oids.md | 9 +++++ content/el/docs/oids.md | 9 +++++ content/en/certificates.md | 24 +++++++++++ content/en/docs/oids.md | 40 +++++++++++++++++++ content/es/docs/oids.md | 9 +++++ content/fa/docs/oids.md | 9 +++++ content/fi/docs/oids.md | 9 +++++ content/fr/docs/oids.md | 9 +++++ content/he/docs/oids.md | 9 +++++ content/hr/docs/oids.md | 9 +++++ content/hu/docs/oids.md | 9 +++++ content/id/docs/oids.md | 9 +++++ content/it/docs/oids.md | 9 +++++ content/ja/docs/oids.md | 9 +++++ content/ko/docs/oids.md | 9 +++++ content/pl/docs/oids.md | 9 +++++ content/pt-br/docs/oids.md | 9 +++++ content/ru/docs/oids.md | 9 +++++ content/si/docs/oids.md | 9 +++++ content/sr/docs/oids.md | 9 +++++ content/sv/docs/oids.md | 9 +++++ content/ta/docs/oids.md | 9 +++++ content/th/docs/oids.md | 9 +++++ content/tr/docs/oids.md | 9 +++++ content/uk/docs/oids.md | 9 +++++ content/uz/docs/oids.md | 9 +++++ content/vi/docs/oids.md | 9 +++++ content/zh-cn/docs/oids.md | 9 +++++ content/zh-tw/docs/oids.md | 9 +++++ .../layouts/shortcodes/docs_index.html | 1 + 34 files changed, 344 insertions(+) create mode 100644 content/base-l10n/docs/oids.md create mode 100644 content/ca/docs/oids.md create mode 100644 content/cs/docs/oids.md create mode 100644 content/da/docs/oids.md create mode 100644 content/de/docs/oids.md create mode 100644 content/el/docs/oids.md create mode 100644 content/en/docs/oids.md create mode 100644 content/es/docs/oids.md create mode 100644 content/fa/docs/oids.md create mode 100644 content/fi/docs/oids.md create mode 100644 content/fr/docs/oids.md create mode 100644 content/he/docs/oids.md create mode 100644 content/hr/docs/oids.md create mode 100644 content/hu/docs/oids.md create mode 100644 content/id/docs/oids.md create mode 100644 content/it/docs/oids.md create mode 100644 content/ja/docs/oids.md create mode 100644 content/ko/docs/oids.md create mode 100644 content/pl/docs/oids.md create mode 100644 content/pt-br/docs/oids.md create mode 100644 content/ru/docs/oids.md create mode 100644 content/si/docs/oids.md create mode 100644 content/sr/docs/oids.md create mode 100644 content/sv/docs/oids.md create mode 100644 content/ta/docs/oids.md create mode 100644 content/th/docs/oids.md create mode 100644 content/tr/docs/oids.md create mode 100644 content/uk/docs/oids.md create mode 100644 content/uz/docs/oids.md create mode 100644 content/vi/docs/oids.md create mode 100644 content/zh-cn/docs/oids.md create mode 100644 content/zh-tw/docs/oids.md diff --git a/content/base-l10n/docs/oids.md b/content/base-l10n/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/base-l10n/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/ca/docs/oids.md b/content/ca/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/ca/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/cs/docs/oids.md b/content/cs/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/cs/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/da/docs/oids.md b/content/da/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/da/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/de/docs/oids.md b/content/de/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/de/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/el/docs/oids.md b/content/el/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/el/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/en/certificates.md b/content/en/certificates.md index 96bd4e928..8b3afd125 100644 --- a/content/en/certificates.md +++ b/content/en/certificates.md @@ -24,6 +24,7 @@ Note that Root CAs don't have expiration dates in quite the same way that other * Certificate details (self-signed): [crt.sh](https://crt.sh/?id=9314791), [der](/certs/isrgrootx1.der), [pem](/certs/isrgrootx1.pem), [txt](/certs/isrgrootx1.txt) * Certificate details (cross-signed by DST Root CA X3): [crt.sh](https://crt.sh/?id=3958242236), [der](/certs/isrg-root-x1-cross-signed.der), [pem](/certs/isrg-root-x1-cross-signed.pem), [txt](/certs/isrg-root-x1-cross-signed.txt) (retired) * Test websites: [valid](https://valid-isrgrootx1.letsencrypt.org/), [revoked](https://revoked-isrgrootx1.letsencrypt.org/), [expired](https://expired-isrgrootx1.letsencrypt.org/) + * OID: 1.3.6.1.4.1.44947.1.2.1 * **ISRG Root X2** * Subject: `O = Internet Security Research Group, CN = ISRG Root X2` * Key type: `ECDSA P-384` @@ -33,6 +34,7 @@ Note that Root CAs don't have expiration dates in quite the same way that other * Certificate details (cross-signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561878), [der](/certs/isrg-root-x2-cross-signed.der), [pem](/certs/isrg-root-x2-cross-signed.pem), [txt](/certs/isrg-root-x2-cross-signed.txt) * Certificate details (second cross-sign by ISRG Root X1): [der](/certs/gen-y/root-x2-by-x1.der), [pem](/certs/gen-y/root-x2-by-x1.pem), [txt](/certs/gen-y/root-x2-by-x1.txt) * Test websites: [valid](https://valid-isrgrootx2.letsencrypt.org/), [revoked](https://revoked-isrgrootx2.letsencrypt.org/), [expired](https://expired-isrgrootx2.letsencrypt.org/) + * OID: 1.3.6.1.4.1.44947.1.2.2 These roots are not yet included in Root Program Trust Stores, but will be submitted for inclusion soon: @@ -43,6 +45,7 @@ These roots are not yet included in Root Program Trust Stores, but will be submi * Certificate details (self-signed): [der](/certs/gen-y/root-ye.der), [pem](/certs/gen-y/root-ye.pem), [txt](/certs/gen-y/root-ye.txt) * Certificate details (cross-signed by ISRG Root X2): [der](/certs/gen-y/root-ye-by-x2.der), [pem](/certs/gen-y/root-ye-by-x2.pem), [txt](/certs/gen-y/root-ye-by-x2.txt) * Test websites: Forthcoming + * OID: 1.3.6.1.4.1.44947.1.2.3 * **ISRG Root YR** * Subject: `O = ISRG, CN = Root YR` * Key type: `RSA 4096` @@ -50,6 +53,7 @@ These roots are not yet included in Root Program Trust Stores, but will be submi * Certificate details (self-signed): [der](/certs/gen-y/root-yr.der), [pem](/certs/gen-y/root-yr.pem), [txt](/certs/gen-y/root-yr.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/gen-y/root-yr-by-x1.der), [pem](/certs/gen-y/root-yr-by-x1.pem), [txt](/certs/gen-y/root-yr-by-x1.txt) * Test websites: Forthcoming + * OID: 1.3.6.1.4.1.44947.1.2.4 For additional information on the compatibility of our root certificates with various devices and trust stores, see [Certificate Compatibility](/docs/cert-compat). @@ -66,6 +70,7 @@ All intermediate certificate Subjects have a Country field of `C = US`. * CA details: [crt.sh](https://crt.sh/?caid=295813), [issued certs](https://crt.sh/?Identity=%25&iCAID=295813) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e7.der), [pem](/certs/2024/e7.pem), [txt](/certs/2024/e7.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e7-cross.der), [pem](/certs/2024/e7-cross.pem), [txt](/certs/2024/e7-cross.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.5 * **Let's Encrypt E8** * Subject: `O = Let's Encrypt, CN = E8` * Key type: `ECDSA P-384` @@ -73,18 +78,21 @@ All intermediate certificate Subjects have a Country field of `C = US`. * CA details: [crt.sh](https://crt.sh/?caid=295809), [issued certs](https://crt.sh/?Identity=%25&iCAID=295809) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e8.der), [pem](/certs/2024/e8.pem), [txt](/certs/2024/e8.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e8-cross.der), [pem](/certs/2024/e8-cross.pem), [txt](/certs/2024/e8-cross.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.6 * **Let's Encrypt R12** * Subject: `O = Let's Encrypt, CN = R12` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295816), [issued certs](https://crt.sh/?Identity=%25&iCAID=295816) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r12.der), [pem](/certs/2024/r12.pem), [txt](/certs/2024/r12.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.5 * **Let's Encrypt R13** * Subject: `O = Let's Encrypt, CN = R13` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295817), [issued certs](https://crt.sh/?Identity=%25&iCAID=295817) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r13.der), [pem](/certs/2024/r13.pem), [txt](/certs/2024/r13.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.6 Click below for details on additional intermediates which are not part of the active issuance hierarchy: @@ -100,12 +108,14 @@ These intermediate CAs have currently-valid certificates, but are not being issu * CA details: [crt.sh](https://crt.sh/?caid=295812), [issued certs](https://crt.sh/?Identity=%25&iCAID=295812) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e9.der), [pem](/certs/2024/e9.pem), [txt](/certs/2024/e9.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e9-cross.der), [pem](/certs/2024/e9-cross.pem), [txt](/certs/2024/e9-cross.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.7 * **Let's Encrypt R14** * Subject: `O = Let's Encrypt, CN = R14` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295818), [issued certs](https://crt.sh/?Identity=%25&iCAID=295818) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r14.der), [pem](/certs/2024/r14.pem), [txt](/certs/2024/r14.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.7 @@ -119,31 +129,37 @@ These intermediate CAs were issued in 2025, and we expect to begin issuing from * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye1.der), [pem](/certs/gen-y/int-ye1.pem), [txt](/certs/gen-y/int-ye1.txt) + * OID: 1.3.6.1.4.1.44947.1.2.3.1 * **Let's Encrypt YE2** * Subject: `O = Let's Encrypt, CN = YE2` * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye2.der), [pem](/certs/gen-y/int-ye2.pem), [txt](/certs/gen-y/int-ye2.txt) + * OID: 1.3.6.1.4.1.44947.1.2.3.2 * **Let's Encrypt YE3** * Subject: `O = Let's Encrypt, CN = YE3` * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye3.der), [pem](/certs/gen-y/int-ye3.pem), [txt](/certs/gen-y/int-ye3.txt) + * OID: 1.3.6.1.4.1.44947.1.2.3.3 * **Let's Encrypt YR1** * Subject: `O = Let's Encrypt, CN = YR1` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr1.der), [pem](/certs/gen-y/int-yr1.pem), [txt](/certs/gen-y/int-yr1.txt) + * OID: 1.3.6.1.4.1.44947.1.2.4.1 * **Let's Encrypt YR2** * Subject: `O = Let's Encrypt, CN = YR2` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr2.der), [pem](/certs/gen-y/int-yr2.pem), [txt](/certs/gen-y/int-yr2.txt) + * OID: 1.3.6.1.4.1.44947.1.2.4.2 * **Let's Encrypt YR3** * Subject: `O = Let's Encrypt, CN = YR3` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr3.der), [pem](/certs/gen-y/int-yr3.pem), [txt](/certs/gen-y/int-yr3.txt) + * OID: 1.3.6.1.4.1.44947.1.2.4.3 @@ -158,12 +174,14 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * Valid until: 2025-09-15 * CA details: [crt.sh](https://crt.sh/?caid=183283), [issued certs](https://crt.sh/?Identity=%25&iCAID=183283) * Certificate details (signed by ISRG Root X2): [crt.sh](https://crt.sh/?id=3334671964), [der](/certs/lets-encrypt-e1.der), [pem](/certs/lets-encrypt-e1.pem), [txt](/certs/lets-encrypt-e1.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.1 * **Let's Encrypt E2** * Subject: `O = Let's Encrypt, CN = E2` * Key type: `ECDSA P-384` * Valid until: 2025-09-15 * CA details: [crt.sh](https://crt.sh/?caid=183284), [issued certs](https://crt.sh/?Identity=%25&iCAID=183284) * Certificate details (signed by ISRG Root X2): [crt.sh](https://crt.sh/?id=3334671963), [der](/certs/lets-encrypt-e2.der), [pem](/certs/lets-encrypt-e2.pem), [txt](/certs/lets-encrypt-e2.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.2 * **Let's Encrypt E5** * Subject: `O = Let's Encrypt, CN = E5` * Key type: `ECDSA P-384` @@ -171,6 +189,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=295810), [issued certs](https://crt.sh/?Identity=%25&iCAID=295810) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e5.der), [pem](/certs/2024/e5.pem), [txt](/certs/2024/e5.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e5-cross.der), [pem](/certs/2024/e5-cross.pem), [txt](/certs/2024/e5-cross.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.3 * **Let's Encrypt E6** * Subject: `O = Let's Encrypt, CN = E6` * Key type: `ECDSA P-384` @@ -178,6 +197,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=295819), [issued certs](https://crt.sh/?Identity=%25&iCAID=295819) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e6.der), [pem](/certs/2024/e6.pem), [txt](/certs/2024/e6.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e6-cross.der), [pem](/certs/2024/e6-cross.pem), [txt](/certs/2024/e6-cross.txt) + * OID: 1.3.6.1.4.1.44947.1.2.2.4 * **Let's Encrypt R3** * Subject: `O = Let's Encrypt, CN = R3` * Key type: `RSA 2048` @@ -185,6 +205,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=183267), [issued certs](https://crt.sh/?Identity=%25&iCAID=183267) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561879), [der](/certs/lets-encrypt-r3.der), [pem](/certs/lets-encrypt-r3.pem), [txt](/certs/lets-encrypt-r3.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=3479778542), [der](/certs/lets-encrypt-r3-cross-signed.der), [pem](/certs/lets-encrypt-r3-cross-signed.pem), [txt](/certs/lets-encrypt-r3-cross-signed.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.1 * **Let's Encrypt R4** * Subject: `O = Let's Encrypt, CN = R4` * Key type: `RSA 2048` @@ -192,18 +213,21 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=183268), [issued certs](https://crt.sh/?Identity=%25&iCAID=183268) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561877), [der](/certs/lets-encrypt-r4.der), [pem](/certs/lets-encrypt-r4.pem), [txt](/certs/lets-encrypt-r4.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=3479778543), [der](/certs/lets-encrypt-r4-cross-signed.der), [pem](/certs/lets-encrypt-r4-cross-signed.pem), [txt](/certs/lets-encrypt-r4-cross-signed.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.2 * **Let's Encrypt R10** * Subject: `O = Let's Encrypt, CN = R10` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295814), [issued certs](https://crt.sh/?Identity=%25&iCAID=295814) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r10.der), [pem](/certs/2024/r10.pem), [txt](/certs/2024/r10.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.3 * **Let's Encrypt R11** * Subject: `O = Let's Encrypt, CN = R11` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295815), [issued certs](https://crt.sh/?Identity=%25&iCAID=295815) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r11.der), [pem](/certs/2024/r11.pem), [txt](/certs/2024/r11.txt) + * OID: 1.3.6.1.4.1.44947.1.2.1.4 * **Let's Encrypt Authority X1** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X1` * Key type: `RSA 2048` diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md new file mode 100644 index 000000000..b9e9c1b33 --- /dev/null +++ b/content/en/docs/oids.md @@ -0,0 +1,40 @@ +--- +title: Object Identifiers +slug: oids +lastmod: 2025-09-08 +show_lastmod: false +--- + +An Object Identifier (OID) is a dotted-separated sequence of numbers used to uniquely identify various objects within the WebPKI. For example, every _extension_ within an X.509 certificate is identified by an OID, and the OID `2.5.29.15` is defined to represent the [Key Usage](https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.3) extension. Similarly, the OID `2.23.140.1.2.1` can be placed within the body of the [Certificate Policies](https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.4) extension to indicate that the certificate was validated according to the [CA/Browser Forum's "Domain Validated" criteria](https://github.com/cabforum/servercert/blob/main/docs/BR.md#12-document-name-and-identification). + +This page lists the OIDs used by Let's Encrypt, documents what each OID means, and points to where we use them. + +* **1.3.6.1.4.1.44947**: Internet Security Research Group. Parent arc for all ISRG OIDs. + * 1.3.6.1.4.1.44947.**1**: Let's Encrypt. Parent arc for all LE OIDs. + * 1.3.6.1.4.1.44947.1.**1**: Certificate Policies. + * 1.3.6.1.4.1.44947.1.1.**1**: Domain Validated. This OID is equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. + * 1.3.6.1.4.1.44947.1.**2**: Issuers. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used by the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) draft standards. + * 1.3.6.1.4.1.44947.1.2.**1**: ISRG Root X1 + * 1.3.6.1.4.1.44947.1.2.1.**1**: Let's Encrypt R3 + * 1.3.6.1.4.1.44947.1.2.1.**2**: Let's Encrypt R4 + * 1.3.6.1.4.1.44947.1.2.1.**3**: Let's Encrypt R10 + * 1.3.6.1.4.1.44947.1.2.1.**4**: Let's Encrypt R11 + * 1.3.6.1.4.1.44947.1.2.1.**5**: Let's Encrypt R12 + * 1.3.6.1.4.1.44947.1.2.1.**6**: Let's Encrypt R13 + * 1.3.6.1.4.1.44947.1.2.1.**7**: Let's Encrypt R14 + * 1.3.6.1.4.1.44947.1.2.**2**: ISRG Root X2 + * 1.3.6.1.4.1.44947.1.2.2.**1**: Let's Encrypt E1 + * 1.3.6.1.4.1.44947.1.2.2.**2**: Let's Encrypt E2 + * 1.3.6.1.4.1.44947.1.2.2.**3**: Let's Encrypt E5 + * 1.3.6.1.4.1.44947.1.2.2.**4**: Let's Encrypt E6 + * 1.3.6.1.4.1.44947.1.2.2.**5**: Let's Encrypt E7 + * 1.3.6.1.4.1.44947.1.2.2.**6**: Let's Encrypt E8 + * 1.3.6.1.4.1.44947.1.2.2.**7**: Let's Encrypt E9 + * 1.3.6.1.4.1.44947.1.2.**3**: ISRG Root YE + * 1.3.6.1.4.1.44947.1.2.3.**1**: Let's Encrypt YE1 + * 1.3.6.1.4.1.44947.1.2.3.**2**: Let's Encrypt YE2 + * 1.3.6.1.4.1.44947.1.2.3.**3**: Let's Encrypt YE3 + * 1.3.6.1.4.1.44947.1.2.**4**: ISRG Root YR + * 1.3.6.1.4.1.44947.1.2.4.**1**: Let's Encrypt YR1 + * 1.3.6.1.4.1.44947.1.2.4.**2**: Let's Encrypt YR2 + * 1.3.6.1.4.1.44947.1.2.4.**3**: Let's Encrypt YR3 diff --git a/content/es/docs/oids.md b/content/es/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/es/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/fa/docs/oids.md b/content/fa/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/fa/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/fi/docs/oids.md b/content/fi/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/fi/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/fr/docs/oids.md b/content/fr/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/fr/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/he/docs/oids.md b/content/he/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/he/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/hr/docs/oids.md b/content/hr/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/hr/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/hu/docs/oids.md b/content/hu/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/hu/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/id/docs/oids.md b/content/id/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/id/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/it/docs/oids.md b/content/it/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/it/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/ja/docs/oids.md b/content/ja/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/ja/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/ko/docs/oids.md b/content/ko/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/ko/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/pl/docs/oids.md b/content/pl/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/pl/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/pt-br/docs/oids.md b/content/pt-br/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/pt-br/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/ru/docs/oids.md b/content/ru/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/ru/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/si/docs/oids.md b/content/si/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/si/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/sr/docs/oids.md b/content/sr/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/sr/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/sv/docs/oids.md b/content/sv/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/sv/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/ta/docs/oids.md b/content/ta/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/ta/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/th/docs/oids.md b/content/th/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/th/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/tr/docs/oids.md b/content/tr/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/tr/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/uk/docs/oids.md b/content/uk/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/uk/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/uz/docs/oids.md b/content/uz/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/uz/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/vi/docs/oids.md b/content/vi/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/vi/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/zh-cn/docs/oids.md b/content/zh-cn/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/zh-cn/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/content/zh-tw/docs/oids.md b/content/zh-tw/docs/oids.md new file mode 100644 index 000000000..e3b2a1d52 --- /dev/null +++ b/content/zh-tw/docs/oids.md @@ -0,0 +1,9 @@ +--- +title: Object Identifiers +slug: oids +date: 2025-09-08 +lastmod: 2025-09-08 +show_lastmod: false +untranslated: 1 +--- + diff --git a/themes/le-2025/layouts/shortcodes/docs_index.html b/themes/le-2025/layouts/shortcodes/docs_index.html index f3748d610..6a3dc7d38 100644 --- a/themes/le-2025/layouts/shortcodes/docs_index.html +++ b/themes/le-2025/layouts/shortcodes/docs_index.html @@ -38,6 +38,7 @@

{{ i18n "advan
  • {{ template "link" (dict "context" . "page" "/docs/a-warm-welcome-to-asn1-and-der") }}
  • {{ i18n "onboarding_customers" }}
  • {{ template "link" (dict "context" . "page" "/docs/lencr-org.md") }}
  • +
  • {{ template "link" (dict "context" . "page" "/docs/oids.md") }}
  • {{ i18n "client_developer_information" }}

    From 0115deef4b276ff0b479099c71cdc313a07b418e Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Wed, 24 Sep 2025 17:16:39 -0700 Subject: [PATCH 2/9] Try out table with inline html for monospace and bold --- content/en/docs/oids.md | 60 +++++++++++++++++++++-------------------- 1 file changed, 31 insertions(+), 29 deletions(-) diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md index b9e9c1b33..294ce3091 100644 --- a/content/en/docs/oids.md +++ b/content/en/docs/oids.md @@ -9,32 +9,34 @@ An Object Identifier (OID) is a dotted-separated sequence of numbers used to uni This page lists the OIDs used by Let's Encrypt, documents what each OID means, and points to where we use them. -* **1.3.6.1.4.1.44947**: Internet Security Research Group. Parent arc for all ISRG OIDs. - * 1.3.6.1.4.1.44947.**1**: Let's Encrypt. Parent arc for all LE OIDs. - * 1.3.6.1.4.1.44947.1.**1**: Certificate Policies. - * 1.3.6.1.4.1.44947.1.1.**1**: Domain Validated. This OID is equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. - * 1.3.6.1.4.1.44947.1.**2**: Issuers. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used by the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) draft standards. - * 1.3.6.1.4.1.44947.1.2.**1**: ISRG Root X1 - * 1.3.6.1.4.1.44947.1.2.1.**1**: Let's Encrypt R3 - * 1.3.6.1.4.1.44947.1.2.1.**2**: Let's Encrypt R4 - * 1.3.6.1.4.1.44947.1.2.1.**3**: Let's Encrypt R10 - * 1.3.6.1.4.1.44947.1.2.1.**4**: Let's Encrypt R11 - * 1.3.6.1.4.1.44947.1.2.1.**5**: Let's Encrypt R12 - * 1.3.6.1.4.1.44947.1.2.1.**6**: Let's Encrypt R13 - * 1.3.6.1.4.1.44947.1.2.1.**7**: Let's Encrypt R14 - * 1.3.6.1.4.1.44947.1.2.**2**: ISRG Root X2 - * 1.3.6.1.4.1.44947.1.2.2.**1**: Let's Encrypt E1 - * 1.3.6.1.4.1.44947.1.2.2.**2**: Let's Encrypt E2 - * 1.3.6.1.4.1.44947.1.2.2.**3**: Let's Encrypt E5 - * 1.3.6.1.4.1.44947.1.2.2.**4**: Let's Encrypt E6 - * 1.3.6.1.4.1.44947.1.2.2.**5**: Let's Encrypt E7 - * 1.3.6.1.4.1.44947.1.2.2.**6**: Let's Encrypt E8 - * 1.3.6.1.4.1.44947.1.2.2.**7**: Let's Encrypt E9 - * 1.3.6.1.4.1.44947.1.2.**3**: ISRG Root YE - * 1.3.6.1.4.1.44947.1.2.3.**1**: Let's Encrypt YE1 - * 1.3.6.1.4.1.44947.1.2.3.**2**: Let's Encrypt YE2 - * 1.3.6.1.4.1.44947.1.2.3.**3**: Let's Encrypt YE3 - * 1.3.6.1.4.1.44947.1.2.**4**: ISRG Root YR - * 1.3.6.1.4.1.44947.1.2.4.**1**: Let's Encrypt YR1 - * 1.3.6.1.4.1.44947.1.2.4.**2**: Let's Encrypt YR2 - * 1.3.6.1.4.1.44947.1.2.4.**3**: Let's Encrypt YR3 +| OID | Description | +| --- | ----------- | +|
    1.3.6.1.4.1.44947
    | Internet Security Research Group. Parent arc for all ISRG OIDs. | +|
    1.3.6.1.4.1.44947.1
    | Let's Encrypt. Parent arc for all LE OIDs. | +|
    1.3.6.1.4.1.44947.1.1
    | Certificate Policies. | +|
    1.3.6.1.4.1.44947.1.1.1
    | Domain Validated. This OID is equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. | +|
    1.3.6.1.4.1.44947.1.2
    | Issuers. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used by the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) draft standards. | +|
    1.3.6.1.4.1.44947.1.2.1
    | ISRG Root X1 | +|
    1.3.6.1.4.1.44947.1.2.1.1
    | Let's Encrypt R3 | +|
    1.3.6.1.4.1.44947.1.2.1.2
    | Let's Encrypt R4 | +|
    1.3.6.1.4.1.44947.1.2.1.3
    | Let's Encrypt R10 | +|
    1.3.6.1.4.1.44947.1.2.1.4
    | Let's Encrypt R11 | +|
    1.3.6.1.4.1.44947.1.2.1.5
    | Let's Encrypt R12 | +|
    1.3.6.1.4.1.44947.1.2.1.6
    | Let's Encrypt R13 | +|
    1.3.6.1.4.1.44947.1.2.1.7
    | Let's Encrypt R14 | +|
    1.3.6.1.4.1.44947.1.2.2
    | ISRG Root X2 | +|
    1.3.6.1.4.1.44947.1.2.2.1
    | Let's Encrypt E1 | +|
    1.3.6.1.4.1.44947.1.2.2.2
    | Let's Encrypt E2 | +|
    1.3.6.1.4.1.44947.1.2.2.3
    | Let's Encrypt E5 | +|
    1.3.6.1.4.1.44947.1.2.2.4
    | Let's Encrypt E6 | +|
    1.3.6.1.4.1.44947.1.2.2.5
    | Let's Encrypt E7 | +|
    1.3.6.1.4.1.44947.1.2.2.6
    | Let's Encrypt E8 | +|
    1.3.6.1.4.1.44947.1.2.2.7
    | Let's Encrypt E9 | +|
    1.3.6.1.4.1.44947.1.2.3
    | ISRG Root YE | +|
    1.3.6.1.4.1.44947.1.2.3.1
    | Let's Encrypt YE1 | +|
    1.3.6.1.4.1.44947.1.2.3.2
    | Let's Encrypt YE2 | +|
    1.3.6.1.4.1.44947.1.2.3.3
    | Let's Encrypt YE3 | +|
    1.3.6.1.4.1.44947.1.2.4
    | ISRG Root YR | +|
    1.3.6.1.4.1.44947.1.2.4.1
    | Let's Encrypt YR1 | +|
    1.3.6.1.4.1.44947.1.2.4.2
    | Let's Encrypt YR2 | +|
    1.3.6.1.4.1.44947.1.2.4.3
    | Let's Encrypt YR3 | From 26c6419a21ea432b724b2c4f9ff7cb23b9a80486 Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Wed, 24 Sep 2025 17:19:54 -0700 Subject: [PATCH 3/9] Use instead of
     to get inline instead of
     block formatting
    
    ---
     content/en/docs/oids.md | 58 ++++++++++++++++++++---------------------
     1 file changed, 29 insertions(+), 29 deletions(-)
    
    diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md
    index 294ce3091..dccc861c3 100644
    --- a/content/en/docs/oids.md
    +++ b/content/en/docs/oids.md
    @@ -11,32 +11,32 @@ This page lists the OIDs used by Let's Encrypt, documents what each OID means, a
     
     | OID | Description |
     | --- | ----------- |
    -| 
    1.3.6.1.4.1.44947
    | Internet Security Research Group. Parent arc for all ISRG OIDs. | -|
    1.3.6.1.4.1.44947.1
    | Let's Encrypt. Parent arc for all LE OIDs. | -|
    1.3.6.1.4.1.44947.1.1
    | Certificate Policies. | -|
    1.3.6.1.4.1.44947.1.1.1
    | Domain Validated. This OID is equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. | -|
    1.3.6.1.4.1.44947.1.2
    | Issuers. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used by the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) draft standards. | -|
    1.3.6.1.4.1.44947.1.2.1
    | ISRG Root X1 | -|
    1.3.6.1.4.1.44947.1.2.1.1
    | Let's Encrypt R3 | -|
    1.3.6.1.4.1.44947.1.2.1.2
    | Let's Encrypt R4 | -|
    1.3.6.1.4.1.44947.1.2.1.3
    | Let's Encrypt R10 | -|
    1.3.6.1.4.1.44947.1.2.1.4
    | Let's Encrypt R11 | -|
    1.3.6.1.4.1.44947.1.2.1.5
    | Let's Encrypt R12 | -|
    1.3.6.1.4.1.44947.1.2.1.6
    | Let's Encrypt R13 | -|
    1.3.6.1.4.1.44947.1.2.1.7
    | Let's Encrypt R14 | -|
    1.3.6.1.4.1.44947.1.2.2
    | ISRG Root X2 | -|
    1.3.6.1.4.1.44947.1.2.2.1
    | Let's Encrypt E1 | -|
    1.3.6.1.4.1.44947.1.2.2.2
    | Let's Encrypt E2 | -|
    1.3.6.1.4.1.44947.1.2.2.3
    | Let's Encrypt E5 | -|
    1.3.6.1.4.1.44947.1.2.2.4
    | Let's Encrypt E6 | -|
    1.3.6.1.4.1.44947.1.2.2.5
    | Let's Encrypt E7 | -|
    1.3.6.1.4.1.44947.1.2.2.6
    | Let's Encrypt E8 | -|
    1.3.6.1.4.1.44947.1.2.2.7
    | Let's Encrypt E9 | -|
    1.3.6.1.4.1.44947.1.2.3
    | ISRG Root YE | -|
    1.3.6.1.4.1.44947.1.2.3.1
    | Let's Encrypt YE1 | -|
    1.3.6.1.4.1.44947.1.2.3.2
    | Let's Encrypt YE2 | -|
    1.3.6.1.4.1.44947.1.2.3.3
    | Let's Encrypt YE3 | -|
    1.3.6.1.4.1.44947.1.2.4
    | ISRG Root YR | -|
    1.3.6.1.4.1.44947.1.2.4.1
    | Let's Encrypt YR1 | -|
    1.3.6.1.4.1.44947.1.2.4.2
    | Let's Encrypt YR2 | -|
    1.3.6.1.4.1.44947.1.2.4.3
    | Let's Encrypt YR3 | +| 1.3.6.1.4.1.44947 | Internet Security Research Group. Parent arc for all ISRG OIDs. | +| 1.3.6.1.4.1.44947.1 | Let's Encrypt. Parent arc for all LE OIDs. | +| 1.3.6.1.4.1.44947.1.1 | Certificate Policies. | +| 1.3.6.1.4.1.44947.1.1.1 | Domain Validated. This OID is equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. | +| 1.3.6.1.4.1.44947.1.2 | Issuers. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used by the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) draft standards. | +| 1.3.6.1.4.1.44947.1.2.1 | ISRG Root X1 | +| 1.3.6.1.4.1.44947.1.2.1.1 | Let's Encrypt R3 | +| 1.3.6.1.4.1.44947.1.2.1.2 | Let's Encrypt R4 | +| 1.3.6.1.4.1.44947.1.2.1.3 | Let's Encrypt R10 | +| 1.3.6.1.4.1.44947.1.2.1.4 | Let's Encrypt R11 | +| 1.3.6.1.4.1.44947.1.2.1.5 | Let's Encrypt R12 | +| 1.3.6.1.4.1.44947.1.2.1.6 | Let's Encrypt R13 | +| 1.3.6.1.4.1.44947.1.2.1.7 | Let's Encrypt R14 | +| 1.3.6.1.4.1.44947.1.2.2 | ISRG Root X2 | +| 1.3.6.1.4.1.44947.1.2.2.1 | Let's Encrypt E1 | +| 1.3.6.1.4.1.44947.1.2.2.2 | Let's Encrypt E2 | +| 1.3.6.1.4.1.44947.1.2.2.3 | Let's Encrypt E5 | +| 1.3.6.1.4.1.44947.1.2.2.4 | Let's Encrypt E6 | +| 1.3.6.1.4.1.44947.1.2.2.5 | Let's Encrypt E7 | +| 1.3.6.1.4.1.44947.1.2.2.6 | Let's Encrypt E8 | +| 1.3.6.1.4.1.44947.1.2.2.7 | Let's Encrypt E9 | +| 1.3.6.1.4.1.44947.1.2.3 | ISRG Root YE | +| 1.3.6.1.4.1.44947.1.2.3.1 | Let's Encrypt YE1 | +| 1.3.6.1.4.1.44947.1.2.3.2 | Let's Encrypt YE2 | +| 1.3.6.1.4.1.44947.1.2.3.3 | Let's Encrypt YE3 | +| 1.3.6.1.4.1.44947.1.2.4 | ISRG Root YR | +| 1.3.6.1.4.1.44947.1.2.4.1 | Let's Encrypt YR1 | +| 1.3.6.1.4.1.44947.1.2.4.2 | Let's Encrypt YR2 | +| 1.3.6.1.4.1.44947.1.2.4.3 | Let's Encrypt YR3 | From 2163c72c23a59c13ce414a887bce607f6517f507 Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Thu, 25 Sep 2025 09:51:11 -0700 Subject: [PATCH 4/9] Switch to a flatter OID hierarchy to save bytes --- content/en/certificates.md | 52 ++++++++++++++++++--------------- content/en/docs/oids.md | 60 ++++++++++++++++++++------------------ 2 files changed, 60 insertions(+), 52 deletions(-) diff --git a/content/en/certificates.md b/content/en/certificates.md index 8b3afd125..cbdd60192 100644 --- a/content/en/certificates.md +++ b/content/en/certificates.md @@ -24,7 +24,7 @@ Note that Root CAs don't have expiration dates in quite the same way that other * Certificate details (self-signed): [crt.sh](https://crt.sh/?id=9314791), [der](/certs/isrgrootx1.der), [pem](/certs/isrgrootx1.pem), [txt](/certs/isrgrootx1.txt) * Certificate details (cross-signed by DST Root CA X3): [crt.sh](https://crt.sh/?id=3958242236), [der](/certs/isrg-root-x1-cross-signed.der), [pem](/certs/isrg-root-x1-cross-signed.pem), [txt](/certs/isrg-root-x1-cross-signed.txt) (retired) * Test websites: [valid](https://valid-isrgrootx1.letsencrypt.org/), [revoked](https://revoked-isrgrootx1.letsencrypt.org/), [expired](https://expired-isrgrootx1.letsencrypt.org/) - * OID: 1.3.6.1.4.1.44947.1.2.1 + * OID: 1.3.6.1.4.1.44947.2.1 * **ISRG Root X2** * Subject: `O = Internet Security Research Group, CN = ISRG Root X2` * Key type: `ECDSA P-384` @@ -34,7 +34,7 @@ Note that Root CAs don't have expiration dates in quite the same way that other * Certificate details (cross-signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561878), [der](/certs/isrg-root-x2-cross-signed.der), [pem](/certs/isrg-root-x2-cross-signed.pem), [txt](/certs/isrg-root-x2-cross-signed.txt) * Certificate details (second cross-sign by ISRG Root X1): [der](/certs/gen-y/root-x2-by-x1.der), [pem](/certs/gen-y/root-x2-by-x1.pem), [txt](/certs/gen-y/root-x2-by-x1.txt) * Test websites: [valid](https://valid-isrgrootx2.letsencrypt.org/), [revoked](https://revoked-isrgrootx2.letsencrypt.org/), [expired](https://expired-isrgrootx2.letsencrypt.org/) - * OID: 1.3.6.1.4.1.44947.1.2.2 + * OID: 1.3.6.1.4.1.44947.2.6 These roots are not yet included in Root Program Trust Stores, but will be submitted for inclusion soon: @@ -45,7 +45,7 @@ These roots are not yet included in Root Program Trust Stores, but will be submi * Certificate details (self-signed): [der](/certs/gen-y/root-ye.der), [pem](/certs/gen-y/root-ye.pem), [txt](/certs/gen-y/root-ye.txt) * Certificate details (cross-signed by ISRG Root X2): [der](/certs/gen-y/root-ye-by-x2.der), [pem](/certs/gen-y/root-ye-by-x2.pem), [txt](/certs/gen-y/root-ye-by-x2.txt) * Test websites: Forthcoming - * OID: 1.3.6.1.4.1.44947.1.2.3 + * OID: 1.3.6.1.4.1.44947.2.21 * **ISRG Root YR** * Subject: `O = ISRG, CN = Root YR` * Key type: `RSA 4096` @@ -53,7 +53,7 @@ These roots are not yet included in Root Program Trust Stores, but will be submi * Certificate details (self-signed): [der](/certs/gen-y/root-yr.der), [pem](/certs/gen-y/root-yr.pem), [txt](/certs/gen-y/root-yr.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/gen-y/root-yr-by-x1.der), [pem](/certs/gen-y/root-yr-by-x1.pem), [txt](/certs/gen-y/root-yr-by-x1.txt) * Test websites: Forthcoming - * OID: 1.3.6.1.4.1.44947.1.2.4 + * OID: 1.3.6.1.4.1.44947.2.22 For additional information on the compatibility of our root certificates with various devices and trust stores, see [Certificate Compatibility](/docs/cert-compat). @@ -70,7 +70,7 @@ All intermediate certificate Subjects have a Country field of `C = US`. * CA details: [crt.sh](https://crt.sh/?caid=295813), [issued certs](https://crt.sh/?Identity=%25&iCAID=295813) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e7.der), [pem](/certs/2024/e7.pem), [txt](/certs/2024/e7.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e7-cross.der), [pem](/certs/2024/e7-cross.pem), [txt](/certs/2024/e7-cross.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.5 + * OID: 1.3.6.1.4.1.44947.2.13 * **Let's Encrypt E8** * Subject: `O = Let's Encrypt, CN = E8` * Key type: `ECDSA P-384` @@ -78,21 +78,21 @@ All intermediate certificate Subjects have a Country field of `C = US`. * CA details: [crt.sh](https://crt.sh/?caid=295809), [issued certs](https://crt.sh/?Identity=%25&iCAID=295809) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e8.der), [pem](/certs/2024/e8.pem), [txt](/certs/2024/e8.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e8-cross.der), [pem](/certs/2024/e8-cross.pem), [txt](/certs/2024/e8-cross.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.6 + * OID: 1.3.6.1.4.1.44947.2.14 * **Let's Encrypt R12** * Subject: `O = Let's Encrypt, CN = R12` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295816), [issued certs](https://crt.sh/?Identity=%25&iCAID=295816) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r12.der), [pem](/certs/2024/r12.pem), [txt](/certs/2024/r12.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.5 + * OID: 1.3.6.1.4.1.44947.2.18 * **Let's Encrypt R13** * Subject: `O = Let's Encrypt, CN = R13` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295817), [issued certs](https://crt.sh/?Identity=%25&iCAID=295817) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r13.der), [pem](/certs/2024/r13.pem), [txt](/certs/2024/r13.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.6 + * OID: 1.3.6.1.4.1.44947.2.19 Click below for details on additional intermediates which are not part of the active issuance hierarchy: @@ -108,14 +108,14 @@ These intermediate CAs have currently-valid certificates, but are not being issu * CA details: [crt.sh](https://crt.sh/?caid=295812), [issued certs](https://crt.sh/?Identity=%25&iCAID=295812) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e9.der), [pem](/certs/2024/e9.pem), [txt](/certs/2024/e9.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e9-cross.der), [pem](/certs/2024/e9-cross.pem), [txt](/certs/2024/e9-cross.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.7 + * OID: 1.3.6.1.4.1.44947.2.15 * **Let's Encrypt R14** * Subject: `O = Let's Encrypt, CN = R14` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295818), [issued certs](https://crt.sh/?Identity=%25&iCAID=295818) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r14.der), [pem](/certs/2024/r14.pem), [txt](/certs/2024/r14.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.7 + * OID: 1.3.6.1.4.1.44947.2.20 @@ -129,37 +129,37 @@ These intermediate CAs were issued in 2025, and we expect to begin issuing from * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye1.der), [pem](/certs/gen-y/int-ye1.pem), [txt](/certs/gen-y/int-ye1.txt) - * OID: 1.3.6.1.4.1.44947.1.2.3.1 + * OID: 1.3.6.1.4.1.44947.2.23 * **Let's Encrypt YE2** * Subject: `O = Let's Encrypt, CN = YE2` * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye2.der), [pem](/certs/gen-y/int-ye2.pem), [txt](/certs/gen-y/int-ye2.txt) - * OID: 1.3.6.1.4.1.44947.1.2.3.2 + * OID: 1.3.6.1.4.1.44947.2.24 * **Let's Encrypt YE3** * Subject: `O = Let's Encrypt, CN = YE3` * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye3.der), [pem](/certs/gen-y/int-ye3.pem), [txt](/certs/gen-y/int-ye3.txt) - * OID: 1.3.6.1.4.1.44947.1.2.3.3 + * OID: 1.3.6.1.4.1.44947.2.25 * **Let's Encrypt YR1** * Subject: `O = Let's Encrypt, CN = YR1` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr1.der), [pem](/certs/gen-y/int-yr1.pem), [txt](/certs/gen-y/int-yr1.txt) - * OID: 1.3.6.1.4.1.44947.1.2.4.1 + * OID: 1.3.6.1.4.1.44947.2.26 * **Let's Encrypt YR2** * Subject: `O = Let's Encrypt, CN = YR2` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr2.der), [pem](/certs/gen-y/int-yr2.pem), [txt](/certs/gen-y/int-yr2.txt) - * OID: 1.3.6.1.4.1.44947.1.2.4.2 + * OID: 1.3.6.1.4.1.44947.2.27 * **Let's Encrypt YR3** * Subject: `O = Let's Encrypt, CN = YR3` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr3.der), [pem](/certs/gen-y/int-yr3.pem), [txt](/certs/gen-y/int-yr3.txt) - * OID: 1.3.6.1.4.1.44947.1.2.4.3 + * OID: 1.3.6.1.4.1.44947.2.28 @@ -174,14 +174,14 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * Valid until: 2025-09-15 * CA details: [crt.sh](https://crt.sh/?caid=183283), [issued certs](https://crt.sh/?Identity=%25&iCAID=183283) * Certificate details (signed by ISRG Root X2): [crt.sh](https://crt.sh/?id=3334671964), [der](/certs/lets-encrypt-e1.der), [pem](/certs/lets-encrypt-e1.pem), [txt](/certs/lets-encrypt-e1.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.1 + * OID: 1.3.6.1.4.1.44947.2.7 * **Let's Encrypt E2** * Subject: `O = Let's Encrypt, CN = E2` * Key type: `ECDSA P-384` * Valid until: 2025-09-15 * CA details: [crt.sh](https://crt.sh/?caid=183284), [issued certs](https://crt.sh/?Identity=%25&iCAID=183284) * Certificate details (signed by ISRG Root X2): [crt.sh](https://crt.sh/?id=3334671963), [der](/certs/lets-encrypt-e2.der), [pem](/certs/lets-encrypt-e2.pem), [txt](/certs/lets-encrypt-e2.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.2 + * OID: 1.3.6.1.4.1.44947.2.8 * **Let's Encrypt E5** * Subject: `O = Let's Encrypt, CN = E5` * Key type: `ECDSA P-384` @@ -189,7 +189,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=295810), [issued certs](https://crt.sh/?Identity=%25&iCAID=295810) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e5.der), [pem](/certs/2024/e5.pem), [txt](/certs/2024/e5.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e5-cross.der), [pem](/certs/2024/e5-cross.pem), [txt](/certs/2024/e5-cross.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.3 + * OID: 1.3.6.1.4.1.44947.2.11 * **Let's Encrypt E6** * Subject: `O = Let's Encrypt, CN = E6` * Key type: `ECDSA P-384` @@ -197,7 +197,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=295819), [issued certs](https://crt.sh/?Identity=%25&iCAID=295819) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e6.der), [pem](/certs/2024/e6.pem), [txt](/certs/2024/e6.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e6-cross.der), [pem](/certs/2024/e6-cross.pem), [txt](/certs/2024/e6-cross.txt) - * OID: 1.3.6.1.4.1.44947.1.2.2.4 + * OID: 1.3.6.1.4.1.44947.2.12 * **Let's Encrypt R3** * Subject: `O = Let's Encrypt, CN = R3` * Key type: `RSA 2048` @@ -205,7 +205,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=183267), [issued certs](https://crt.sh/?Identity=%25&iCAID=183267) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561879), [der](/certs/lets-encrypt-r3.der), [pem](/certs/lets-encrypt-r3.pem), [txt](/certs/lets-encrypt-r3.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=3479778542), [der](/certs/lets-encrypt-r3-cross-signed.der), [pem](/certs/lets-encrypt-r3-cross-signed.pem), [txt](/certs/lets-encrypt-r3-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.1 + * OID: 1.3.6.1.4.1.44947.2.9 * **Let's Encrypt R4** * Subject: `O = Let's Encrypt, CN = R4` * Key type: `RSA 2048` @@ -213,21 +213,21 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=183268), [issued certs](https://crt.sh/?Identity=%25&iCAID=183268) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561877), [der](/certs/lets-encrypt-r4.der), [pem](/certs/lets-encrypt-r4.pem), [txt](/certs/lets-encrypt-r4.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=3479778543), [der](/certs/lets-encrypt-r4-cross-signed.der), [pem](/certs/lets-encrypt-r4-cross-signed.pem), [txt](/certs/lets-encrypt-r4-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.2 + * OID: 1.3.6.1.4.1.44947.2.10 * **Let's Encrypt R10** * Subject: `O = Let's Encrypt, CN = R10` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295814), [issued certs](https://crt.sh/?Identity=%25&iCAID=295814) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r10.der), [pem](/certs/2024/r10.pem), [txt](/certs/2024/r10.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.3 + * OID: 1.3.6.1.4.1.44947.2. * **Let's Encrypt R11** * Subject: `O = Let's Encrypt, CN = R11` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295815), [issued certs](https://crt.sh/?Identity=%25&iCAID=295815) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r11.der), [pem](/certs/2024/r11.pem), [txt](/certs/2024/r11.txt) - * OID: 1.3.6.1.4.1.44947.1.2.1.4 + * OID: 1.3.6.1.4.1.44947.2.17 * **Let's Encrypt Authority X1** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X1` * Key type: `RSA 2048` @@ -235,6 +235,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=7395), [issued certs](https://crt.sh/?Identity=%25&iCAID=7395) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=9314792), [der](/certs/letsencryptauthorityx1.der), [pem](/certs/letsencryptauthorityx1.pem), [txt](/certs/letsencryptauthorityx1.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=10235198), [der](/certs/lets-encrypt-x1-cross-signed.der), [pem](/certs/lets-encrypt-x1-cross-signed.pem), [txt](/certs/lets-encrypt-x1-cross-signed.txt) + * OID: 1.3.6.1.4.1.44947.2.2 * **Let's Encrypt Authority X2** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X2` * Key type: `RSA 2048` @@ -242,6 +243,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=9745), [issued certs](https://crt.sh/?Identity=%25&iCAID=9745) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=12721505), [der](/certs/letsencryptauthorityx2.der), [pem](/certs/letsencryptauthorityx2.pem), [txt](/certs/letsencryptauthorityx2.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=10970235), [der](/certs/lets-encrypt-x2-cross-signed.der), [pem](/certs/lets-encrypt-x2-cross-signed.pem), [txt](/certs/lets-encrypt-x2-cross-signed.txt) + * OID: 1.3.6.1.4.1.44947.2.3 * **Let's Encrypt Authority X3** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X3` * Key type: `RSA 2048` @@ -249,6 +251,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=16418), [issued certs](https://crt.sh/?Identity=%25&iCAID=16418) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=47997543), [der](/certs/letsencryptauthorityx3.der), [pem](/certs/letsencryptauthorityx3.pem), [txt](/certs/letsencryptauthorityx3.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=15706126), [der](/certs/lets-encrypt-x3-cross-signed.der), [pem](/certs/lets-encrypt-x3-cross-signed.pem), [txt](/certs/lets-encrypt-x3-cross-signed.txt) + * OID: 1.3.6.1.4.1.44947.2.4 * **Let's Encrypt Authority X4** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X4` * Key type: `RSA 2048` @@ -256,6 +259,7 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=16429), [issued certs](https://crt.sh/?Identity=%25&iCAID=16429) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=47997546), [der](/certs/letsencryptauthorityx4.der), [pem](/certs/letsencryptauthorityx4.pem), [txt](/certs/letsencryptauthorityx4.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=15710291), [der](/certs/lets-encrypt-x4-cross-signed.der), [pem](/certs/lets-encrypt-x4-cross-signed.pem), [txt](/certs/lets-encrypt-x4-cross-signed.txt) + * OID: 1.3.6.1.4.1.44947.2.5 diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md index dccc861c3..68b2386d7 100644 --- a/content/en/docs/oids.md +++ b/content/en/docs/oids.md @@ -12,31 +12,35 @@ This page lists the OIDs used by Let's Encrypt, documents what each OID means, a | OID | Description | | --- | ----------- | | 1.3.6.1.4.1.44947 | Internet Security Research Group. Parent arc for all ISRG OIDs. | -| 1.3.6.1.4.1.44947.1 | Let's Encrypt. Parent arc for all LE OIDs. | -| 1.3.6.1.4.1.44947.1.1 | Certificate Policies. | -| 1.3.6.1.4.1.44947.1.1.1 | Domain Validated. This OID is equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. | -| 1.3.6.1.4.1.44947.1.2 | Issuers. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used by the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) draft standards. | -| 1.3.6.1.4.1.44947.1.2.1 | ISRG Root X1 | -| 1.3.6.1.4.1.44947.1.2.1.1 | Let's Encrypt R3 | -| 1.3.6.1.4.1.44947.1.2.1.2 | Let's Encrypt R4 | -| 1.3.6.1.4.1.44947.1.2.1.3 | Let's Encrypt R10 | -| 1.3.6.1.4.1.44947.1.2.1.4 | Let's Encrypt R11 | -| 1.3.6.1.4.1.44947.1.2.1.5 | Let's Encrypt R12 | -| 1.3.6.1.4.1.44947.1.2.1.6 | Let's Encrypt R13 | -| 1.3.6.1.4.1.44947.1.2.1.7 | Let's Encrypt R14 | -| 1.3.6.1.4.1.44947.1.2.2 | ISRG Root X2 | -| 1.3.6.1.4.1.44947.1.2.2.1 | Let's Encrypt E1 | -| 1.3.6.1.4.1.44947.1.2.2.2 | Let's Encrypt E2 | -| 1.3.6.1.4.1.44947.1.2.2.3 | Let's Encrypt E5 | -| 1.3.6.1.4.1.44947.1.2.2.4 | Let's Encrypt E6 | -| 1.3.6.1.4.1.44947.1.2.2.5 | Let's Encrypt E7 | -| 1.3.6.1.4.1.44947.1.2.2.6 | Let's Encrypt E8 | -| 1.3.6.1.4.1.44947.1.2.2.7 | Let's Encrypt E9 | -| 1.3.6.1.4.1.44947.1.2.3 | ISRG Root YE | -| 1.3.6.1.4.1.44947.1.2.3.1 | Let's Encrypt YE1 | -| 1.3.6.1.4.1.44947.1.2.3.2 | Let's Encrypt YE2 | -| 1.3.6.1.4.1.44947.1.2.3.3 | Let's Encrypt YE3 | -| 1.3.6.1.4.1.44947.1.2.4 | ISRG Root YR | -| 1.3.6.1.4.1.44947.1.2.4.1 | Let's Encrypt YR1 | -| 1.3.6.1.4.1.44947.1.2.4.2 | Let's Encrypt YR2 | -| 1.3.6.1.4.1.44947.1.2.4.3 | Let's Encrypt YR3 | +| 1.3.6.1.4.1.44947.1 | No meaning assigned. This legacy OID never had a standalone purpose. | +| 1.3.6.1.4.1.44947.1.1 | No meaning assigned. This legacy OID never had a standalone purpose. | +| 1.3.6.1.4.1.44947.1.1.1 | ISRG Domain Validated. This legacy OID was equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. | +| 1.3.6.1.4.1.44947.2 | Let's Encrypt Trust Anchor IDs. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used in the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) internet draft standards. OIDs in this arc are assigned approximately chronologically by issuance date. | +| 1.3.6.1.4.1.44947.2.1 | ISRG Root X1 | +| 1.3.6.1.4.1.44947.2.2 | Let's Encrypt Authority X1 | +| 1.3.6.1.4.1.44947.2.3 | Let's Encrypt Authority X2 | +| 1.3.6.1.4.1.44947.2.4 | Let's Encrypt Authority X3 | +| 1.3.6.1.4.1.44947.2.5 | Let's Encrypt Authority X4 | +| 1.3.6.1.4.1.44947.2.6 | ISRG Root X2 | +| 1.3.6.1.4.1.44947.2.7 | Let's Encrypt E1 | +| 1.3.6.1.4.1.44947.2.8 | Let's Encrypt E2 | +| 1.3.6.1.4.1.44947.2.9 | Let's Encrypt R3 | +| 1.3.6.1.4.1.44947.2.10 | Let's Encrypt R4 | +| 1.3.6.1.4.1.44947.2.11 | Let's Encrypt E5 | +| 1.3.6.1.4.1.44947.2.12 | Let's Encrypt E6 | +| 1.3.6.1.4.1.44947.2.13 | Let's Encrypt E7 | +| 1.3.6.1.4.1.44947.2.14 | Let's Encrypt E8 | +| 1.3.6.1.4.1.44947.2.15 | Let's Encrypt E9 | +| 1.3.6.1.4.1.44947.2.16 | Let's Encrypt R10 | +| 1.3.6.1.4.1.44947.2.17 | Let's Encrypt R11 | +| 1.3.6.1.4.1.44947.2.18 | Let's Encrypt R12 | +| 1.3.6.1.4.1.44947.2.19 | Let's Encrypt R13 | +| 1.3.6.1.4.1.44947.2.20 | Let's Encrypt R14 | +| 1.3.6.1.4.1.44947.2.21 | ISRG Root YE | +| 1.3.6.1.4.1.44947.2.22 | ISRG Root YR | +| 1.3.6.1.4.1.44947.2.23 | Let's Encrypt YE1 | +| 1.3.6.1.4.1.44947.2.24 | Let's Encrypt YE2 | +| 1.3.6.1.4.1.44947.2.25 | Let's Encrypt YE3 | +| 1.3.6.1.4.1.44947.2.26 | Let's Encrypt YR1 | +| 1.3.6.1.4.1.44947.2.27 | Let's Encrypt YR2 | +| 1.3.6.1.4.1.44947.2.28 | Let's Encrypt YR3 | From 78da3bbf3804211fafdd51547935972ea149626e Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Thu, 25 Sep 2025 09:52:20 -0700 Subject: [PATCH 5/9] Update lastmods --- content/en/certificates.md | 2 +- content/en/docs/oids.md | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/content/en/certificates.md b/content/en/certificates.md index cbdd60192..0c35090c8 100644 --- a/content/en/certificates.md +++ b/content/en/certificates.md @@ -2,7 +2,7 @@ title: Chains of Trust linkTitle: Chains of Trust (Root and Intermediate Certificates) slug: certificates -lastmod: 2025-09-03 +lastmod: 2025-09-25 show_lastmod: 1 --- diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md index 68b2386d7..e7b91da28 100644 --- a/content/en/docs/oids.md +++ b/content/en/docs/oids.md @@ -1,7 +1,7 @@ --- title: Object Identifiers slug: oids -lastmod: 2025-09-08 +lastmod: 2025-09-25 show_lastmod: false --- From 347d64d532147b23eb4db8aee946f17736c21e3a Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Thu, 25 Sep 2025 09:56:52 -0700 Subject: [PATCH 6/9] Massage phrasing --- content/en/docs/oids.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md index e7b91da28..2bbd39509 100644 --- a/content/en/docs/oids.md +++ b/content/en/docs/oids.md @@ -14,7 +14,7 @@ This page lists the OIDs used by Let's Encrypt, documents what each OID means, a | 1.3.6.1.4.1.44947 | Internet Security Research Group. Parent arc for all ISRG OIDs. | | 1.3.6.1.4.1.44947.1 | No meaning assigned. This legacy OID never had a standalone purpose. | | 1.3.6.1.4.1.44947.1.1 | No meaning assigned. This legacy OID never had a standalone purpose. | -| 1.3.6.1.4.1.44947.1.1.1 | ISRG Domain Validated. This legacy OID was equivalent to 2.23.140.1.2.1, the CA/BF Domain Validated Certificate Policy OID. It [used to appear in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to remove redundancy and reduce certificate size. | +| 1.3.6.1.4.1.44947.1.1.1 | ISRG Domain Validated. This legacy OID was equivalent to 2.23.140.1.2.1, the [CA/BF Domain Validated Certificate Policy OID](https://github.com/cabforum/servercert/blob/main/docs/BR.md#12-document-name-and-identification). We [used to include it in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to reduce certificate size. | | 1.3.6.1.4.1.44947.2 | Let's Encrypt Trust Anchor IDs. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used in the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) internet draft standards. OIDs in this arc are assigned approximately chronologically by issuance date. | | 1.3.6.1.4.1.44947.2.1 | ISRG Root X1 | | 1.3.6.1.4.1.44947.2.2 | Let's Encrypt Authority X1 | From f866482760b8ab698f4b46f71c18a0322572e1d7 Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Thu, 25 Sep 2025 10:00:42 -0700 Subject: [PATCH 7/9] More phrasing improvements --- content/en/docs/oids.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/content/en/docs/oids.md b/content/en/docs/oids.md index 2bbd39509..d4aa37b11 100644 --- a/content/en/docs/oids.md +++ b/content/en/docs/oids.md @@ -5,7 +5,7 @@ lastmod: 2025-09-25 show_lastmod: false --- -An Object Identifier (OID) is a dotted-separated sequence of numbers used to uniquely identify various objects within the WebPKI. For example, every _extension_ within an X.509 certificate is identified by an OID, and the OID `2.5.29.15` is defined to represent the [Key Usage](https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.3) extension. Similarly, the OID `2.23.140.1.2.1` can be placed within the body of the [Certificate Policies](https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.4) extension to indicate that the certificate was validated according to the [CA/Browser Forum's "Domain Validated" criteria](https://github.com/cabforum/servercert/blob/main/docs/BR.md#12-document-name-and-identification). +An Object Identifier (OID) is a dot-separated sequence of numbers used to uniquely identify various objects within the WebPKI. For example, every extension within an X.509 certificate is uniquely identified by an OID, and the OID `2.5.29.15` identifies the [Key Usage](https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.3) extension. Similarly, the OID `2.23.140.1.2.1` can be placed within the body of the [Certificate Policies](https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.4) extension to indicate that the certificate was validated according to the [CA/Browser Forum's "Domain Validated" criteria](https://github.com/cabforum/servercert/blob/main/docs/BR.md#12-document-name-and-identification). This page lists the OIDs used by Let's Encrypt, documents what each OID means, and points to where we use them. @@ -14,7 +14,7 @@ This page lists the OIDs used by Let's Encrypt, documents what each OID means, a | 1.3.6.1.4.1.44947 | Internet Security Research Group. Parent arc for all ISRG OIDs. | | 1.3.6.1.4.1.44947.1 | No meaning assigned. This legacy OID never had a standalone purpose. | | 1.3.6.1.4.1.44947.1.1 | No meaning assigned. This legacy OID never had a standalone purpose. | -| 1.3.6.1.4.1.44947.1.1.1 | ISRG Domain Validated. This legacy OID was equivalent to 2.23.140.1.2.1, the [CA/BF Domain Validated Certificate Policy OID](https://github.com/cabforum/servercert/blob/main/docs/BR.md#12-document-name-and-identification). We [used to include it in our issuing intermediates](/certs/lets-encrypt-e1.txt), but we have stopped doing so to reduce certificate size. | +| 1.3.6.1.4.1.44947.1.1.1 | ISRG Domain Validated. This legacy OID was equivalent to 2.23.140.1.2.1, the [CA/BF Domain Validated Certificate Policy OID](https://github.com/cabforum/servercert/blob/main/docs/BR.md#12-document-name-and-identification). We used to include it in [our issuing intermediates](/certs/lets-encrypt-e1.txt), but stopped doing so to reduce certificate size. | | 1.3.6.1.4.1.44947.2 | Let's Encrypt Trust Anchor IDs. Parent arc for all "trust anchors" ([CA keypairs](/certificates)), which can be used in the [Trust Anchor Identifiers](https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/) and [Merkle Tree Certificates](https://datatracker.ietf.org/doc/draft-davidben-tls-merkle-tree-certs/) internet draft standards. OIDs in this arc are assigned approximately chronologically by issuance date. | | 1.3.6.1.4.1.44947.2.1 | ISRG Root X1 | | 1.3.6.1.4.1.44947.2.2 | Let's Encrypt Authority X1 | From 72c823bfa2006095803ac190d80aba7a749f6de8 Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Thu, 25 Sep 2025 10:11:52 -0700 Subject: [PATCH 8/9] Remove possibility of mismatch; add link to new page --- content/en/certificates.md | 30 +----------------------------- 1 file changed, 1 insertion(+), 29 deletions(-) diff --git a/content/en/certificates.md b/content/en/certificates.md index 0c35090c8..a8ece5847 100644 --- a/content/en/certificates.md +++ b/content/en/certificates.md @@ -6,7 +6,7 @@ lastmod: 2025-09-25 show_lastmod: 1 --- -This page describes all of the current and relevant historical Certification Authorities operated by Let's Encrypt. Note that a CA is most correctly thought of as a key and a name: any given CA may be represented by _multiple_ certificates which all contain the same Subject and Public Key Information. In such cases, we have provided the details of all certificates which represent the CA. +This page describes all of the current and relevant historical Certification Authorities operated by Let's Encrypt. Note that a CA is most correctly thought of as a key and a name: any given CA may be represented by _multiple_ certificates which all contain the same Subject and Public Key Information. In such cases, we have provided the details of all certificates which represent the CA. If you're looking for the Trust Anchor IDs associated with these CAs, see our page on [Object Identifiers](/docs/oids). [![ISRG Certificate Hierarchy Diagram, as of August 2025](/images/isrg-hierarchy.png)](/images/isrg-hierarchy.png) @@ -24,7 +24,6 @@ Note that Root CAs don't have expiration dates in quite the same way that other * Certificate details (self-signed): [crt.sh](https://crt.sh/?id=9314791), [der](/certs/isrgrootx1.der), [pem](/certs/isrgrootx1.pem), [txt](/certs/isrgrootx1.txt) * Certificate details (cross-signed by DST Root CA X3): [crt.sh](https://crt.sh/?id=3958242236), [der](/certs/isrg-root-x1-cross-signed.der), [pem](/certs/isrg-root-x1-cross-signed.pem), [txt](/certs/isrg-root-x1-cross-signed.txt) (retired) * Test websites: [valid](https://valid-isrgrootx1.letsencrypt.org/), [revoked](https://revoked-isrgrootx1.letsencrypt.org/), [expired](https://expired-isrgrootx1.letsencrypt.org/) - * OID: 1.3.6.1.4.1.44947.2.1 * **ISRG Root X2** * Subject: `O = Internet Security Research Group, CN = ISRG Root X2` * Key type: `ECDSA P-384` @@ -34,7 +33,6 @@ Note that Root CAs don't have expiration dates in quite the same way that other * Certificate details (cross-signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561878), [der](/certs/isrg-root-x2-cross-signed.der), [pem](/certs/isrg-root-x2-cross-signed.pem), [txt](/certs/isrg-root-x2-cross-signed.txt) * Certificate details (second cross-sign by ISRG Root X1): [der](/certs/gen-y/root-x2-by-x1.der), [pem](/certs/gen-y/root-x2-by-x1.pem), [txt](/certs/gen-y/root-x2-by-x1.txt) * Test websites: [valid](https://valid-isrgrootx2.letsencrypt.org/), [revoked](https://revoked-isrgrootx2.letsencrypt.org/), [expired](https://expired-isrgrootx2.letsencrypt.org/) - * OID: 1.3.6.1.4.1.44947.2.6 These roots are not yet included in Root Program Trust Stores, but will be submitted for inclusion soon: @@ -45,7 +43,6 @@ These roots are not yet included in Root Program Trust Stores, but will be submi * Certificate details (self-signed): [der](/certs/gen-y/root-ye.der), [pem](/certs/gen-y/root-ye.pem), [txt](/certs/gen-y/root-ye.txt) * Certificate details (cross-signed by ISRG Root X2): [der](/certs/gen-y/root-ye-by-x2.der), [pem](/certs/gen-y/root-ye-by-x2.pem), [txt](/certs/gen-y/root-ye-by-x2.txt) * Test websites: Forthcoming - * OID: 1.3.6.1.4.1.44947.2.21 * **ISRG Root YR** * Subject: `O = ISRG, CN = Root YR` * Key type: `RSA 4096` @@ -53,7 +50,6 @@ These roots are not yet included in Root Program Trust Stores, but will be submi * Certificate details (self-signed): [der](/certs/gen-y/root-yr.der), [pem](/certs/gen-y/root-yr.pem), [txt](/certs/gen-y/root-yr.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/gen-y/root-yr-by-x1.der), [pem](/certs/gen-y/root-yr-by-x1.pem), [txt](/certs/gen-y/root-yr-by-x1.txt) * Test websites: Forthcoming - * OID: 1.3.6.1.4.1.44947.2.22 For additional information on the compatibility of our root certificates with various devices and trust stores, see [Certificate Compatibility](/docs/cert-compat). @@ -70,7 +66,6 @@ All intermediate certificate Subjects have a Country field of `C = US`. * CA details: [crt.sh](https://crt.sh/?caid=295813), [issued certs](https://crt.sh/?Identity=%25&iCAID=295813) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e7.der), [pem](/certs/2024/e7.pem), [txt](/certs/2024/e7.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e7-cross.der), [pem](/certs/2024/e7-cross.pem), [txt](/certs/2024/e7-cross.txt) - * OID: 1.3.6.1.4.1.44947.2.13 * **Let's Encrypt E8** * Subject: `O = Let's Encrypt, CN = E8` * Key type: `ECDSA P-384` @@ -78,21 +73,18 @@ All intermediate certificate Subjects have a Country field of `C = US`. * CA details: [crt.sh](https://crt.sh/?caid=295809), [issued certs](https://crt.sh/?Identity=%25&iCAID=295809) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e8.der), [pem](/certs/2024/e8.pem), [txt](/certs/2024/e8.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e8-cross.der), [pem](/certs/2024/e8-cross.pem), [txt](/certs/2024/e8-cross.txt) - * OID: 1.3.6.1.4.1.44947.2.14 * **Let's Encrypt R12** * Subject: `O = Let's Encrypt, CN = R12` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295816), [issued certs](https://crt.sh/?Identity=%25&iCAID=295816) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r12.der), [pem](/certs/2024/r12.pem), [txt](/certs/2024/r12.txt) - * OID: 1.3.6.1.4.1.44947.2.18 * **Let's Encrypt R13** * Subject: `O = Let's Encrypt, CN = R13` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295817), [issued certs](https://crt.sh/?Identity=%25&iCAID=295817) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r13.der), [pem](/certs/2024/r13.pem), [txt](/certs/2024/r13.txt) - * OID: 1.3.6.1.4.1.44947.2.19 Click below for details on additional intermediates which are not part of the active issuance hierarchy: @@ -108,14 +100,12 @@ These intermediate CAs have currently-valid certificates, but are not being issu * CA details: [crt.sh](https://crt.sh/?caid=295812), [issued certs](https://crt.sh/?Identity=%25&iCAID=295812) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e9.der), [pem](/certs/2024/e9.pem), [txt](/certs/2024/e9.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e9-cross.der), [pem](/certs/2024/e9-cross.pem), [txt](/certs/2024/e9-cross.txt) - * OID: 1.3.6.1.4.1.44947.2.15 * **Let's Encrypt R14** * Subject: `O = Let's Encrypt, CN = R14` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295818), [issued certs](https://crt.sh/?Identity=%25&iCAID=295818) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r14.der), [pem](/certs/2024/r14.pem), [txt](/certs/2024/r14.txt) - * OID: 1.3.6.1.4.1.44947.2.20 @@ -129,37 +119,31 @@ These intermediate CAs were issued in 2025, and we expect to begin issuing from * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye1.der), [pem](/certs/gen-y/int-ye1.pem), [txt](/certs/gen-y/int-ye1.txt) - * OID: 1.3.6.1.4.1.44947.2.23 * **Let's Encrypt YE2** * Subject: `O = Let's Encrypt, CN = YE2` * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye2.der), [pem](/certs/gen-y/int-ye2.pem), [txt](/certs/gen-y/int-ye2.txt) - * OID: 1.3.6.1.4.1.44947.2.24 * **Let's Encrypt YE3** * Subject: `O = Let's Encrypt, CN = YE3` * Key type: `ECDSA P-384` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-ye3.der), [pem](/certs/gen-y/int-ye3.pem), [txt](/certs/gen-y/int-ye3.txt) - * OID: 1.3.6.1.4.1.44947.2.25 * **Let's Encrypt YR1** * Subject: `O = Let's Encrypt, CN = YR1` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr1.der), [pem](/certs/gen-y/int-yr1.pem), [txt](/certs/gen-y/int-yr1.txt) - * OID: 1.3.6.1.4.1.44947.2.26 * **Let's Encrypt YR2** * Subject: `O = Let's Encrypt, CN = YR2` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr2.der), [pem](/certs/gen-y/int-yr2.pem), [txt](/certs/gen-y/int-yr2.txt) - * OID: 1.3.6.1.4.1.44947.2.27 * **Let's Encrypt YR3** * Subject: `O = Let's Encrypt, CN = YR3` * Key type: `RSA 2048` * Valid until: 2028-09-02 * Certificate details: [der](/certs/gen-y/int-yr3.der), [pem](/certs/gen-y/int-yr3.pem), [txt](/certs/gen-y/int-yr3.txt) - * OID: 1.3.6.1.4.1.44947.2.28 @@ -174,14 +158,12 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * Valid until: 2025-09-15 * CA details: [crt.sh](https://crt.sh/?caid=183283), [issued certs](https://crt.sh/?Identity=%25&iCAID=183283) * Certificate details (signed by ISRG Root X2): [crt.sh](https://crt.sh/?id=3334671964), [der](/certs/lets-encrypt-e1.der), [pem](/certs/lets-encrypt-e1.pem), [txt](/certs/lets-encrypt-e1.txt) - * OID: 1.3.6.1.4.1.44947.2.7 * **Let's Encrypt E2** * Subject: `O = Let's Encrypt, CN = E2` * Key type: `ECDSA P-384` * Valid until: 2025-09-15 * CA details: [crt.sh](https://crt.sh/?caid=183284), [issued certs](https://crt.sh/?Identity=%25&iCAID=183284) * Certificate details (signed by ISRG Root X2): [crt.sh](https://crt.sh/?id=3334671963), [der](/certs/lets-encrypt-e2.der), [pem](/certs/lets-encrypt-e2.pem), [txt](/certs/lets-encrypt-e2.txt) - * OID: 1.3.6.1.4.1.44947.2.8 * **Let's Encrypt E5** * Subject: `O = Let's Encrypt, CN = E5` * Key type: `ECDSA P-384` @@ -189,7 +171,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=295810), [issued certs](https://crt.sh/?Identity=%25&iCAID=295810) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e5.der), [pem](/certs/2024/e5.pem), [txt](/certs/2024/e5.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e5-cross.der), [pem](/certs/2024/e5-cross.pem), [txt](/certs/2024/e5-cross.txt) - * OID: 1.3.6.1.4.1.44947.2.11 * **Let's Encrypt E6** * Subject: `O = Let's Encrypt, CN = E6` * Key type: `ECDSA P-384` @@ -197,7 +178,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=295819), [issued certs](https://crt.sh/?Identity=%25&iCAID=295819) * Certificate details (signed by ISRG Root X2): [der](/certs/2024/e6.der), [pem](/certs/2024/e6.pem), [txt](/certs/2024/e6.txt) * Certificate details (cross-signed by ISRG Root X1): [der](/certs/2024/e6-cross.der), [pem](/certs/2024/e6-cross.pem), [txt](/certs/2024/e6-cross.txt) - * OID: 1.3.6.1.4.1.44947.2.12 * **Let's Encrypt R3** * Subject: `O = Let's Encrypt, CN = R3` * Key type: `RSA 2048` @@ -205,7 +185,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=183267), [issued certs](https://crt.sh/?Identity=%25&iCAID=183267) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561879), [der](/certs/lets-encrypt-r3.der), [pem](/certs/lets-encrypt-r3.pem), [txt](/certs/lets-encrypt-r3.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=3479778542), [der](/certs/lets-encrypt-r3-cross-signed.der), [pem](/certs/lets-encrypt-r3-cross-signed.pem), [txt](/certs/lets-encrypt-r3-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.2.9 * **Let's Encrypt R4** * Subject: `O = Let's Encrypt, CN = R4` * Key type: `RSA 2048` @@ -213,21 +192,18 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=183268), [issued certs](https://crt.sh/?Identity=%25&iCAID=183268) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=3334561877), [der](/certs/lets-encrypt-r4.der), [pem](/certs/lets-encrypt-r4.pem), [txt](/certs/lets-encrypt-r4.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=3479778543), [der](/certs/lets-encrypt-r4-cross-signed.der), [pem](/certs/lets-encrypt-r4-cross-signed.pem), [txt](/certs/lets-encrypt-r4-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.2.10 * **Let's Encrypt R10** * Subject: `O = Let's Encrypt, CN = R10` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295814), [issued certs](https://crt.sh/?Identity=%25&iCAID=295814) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r10.der), [pem](/certs/2024/r10.pem), [txt](/certs/2024/r10.txt) - * OID: 1.3.6.1.4.1.44947.2. * **Let's Encrypt R11** * Subject: `O = Let's Encrypt, CN = R11` * Key type: `RSA 2048` * Valid until: 2027-03-12 * CA details: [crt.sh](https://crt.sh/?caid=295815), [issued certs](https://crt.sh/?Identity=%25&iCAID=295815) * Certificate details (signed by ISRG Root X1): [der](/certs/2024/r11.der), [pem](/certs/2024/r11.pem), [txt](/certs/2024/r11.txt) - * OID: 1.3.6.1.4.1.44947.2.17 * **Let's Encrypt Authority X1** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X1` * Key type: `RSA 2048` @@ -235,7 +211,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=7395), [issued certs](https://crt.sh/?Identity=%25&iCAID=7395) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=9314792), [der](/certs/letsencryptauthorityx1.der), [pem](/certs/letsencryptauthorityx1.pem), [txt](/certs/letsencryptauthorityx1.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=10235198), [der](/certs/lets-encrypt-x1-cross-signed.der), [pem](/certs/lets-encrypt-x1-cross-signed.pem), [txt](/certs/lets-encrypt-x1-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.2.2 * **Let's Encrypt Authority X2** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X2` * Key type: `RSA 2048` @@ -243,7 +218,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=9745), [issued certs](https://crt.sh/?Identity=%25&iCAID=9745) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=12721505), [der](/certs/letsencryptauthorityx2.der), [pem](/certs/letsencryptauthorityx2.pem), [txt](/certs/letsencryptauthorityx2.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=10970235), [der](/certs/lets-encrypt-x2-cross-signed.der), [pem](/certs/lets-encrypt-x2-cross-signed.pem), [txt](/certs/lets-encrypt-x2-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.2.3 * **Let's Encrypt Authority X3** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X3` * Key type: `RSA 2048` @@ -251,7 +225,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=16418), [issued certs](https://crt.sh/?Identity=%25&iCAID=16418) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=47997543), [der](/certs/letsencryptauthorityx3.der), [pem](/certs/letsencryptauthorityx3.pem), [txt](/certs/letsencryptauthorityx3.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=15706126), [der](/certs/lets-encrypt-x3-cross-signed.der), [pem](/certs/lets-encrypt-x3-cross-signed.pem), [txt](/certs/lets-encrypt-x3-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.2.4 * **Let's Encrypt Authority X4** * Subject: `O = Let's Encrypt, CN = Let's Encrypt Authority X4` * Key type: `RSA 2048` @@ -259,7 +232,6 @@ These intermediate CAs are no longer being used to issue Subscriber certificates * CA details: [crt.sh](https://crt.sh/?caid=16429), [issued certs](https://crt.sh/?Identity=%25&iCAID=16429) * Certificate details (signed by ISRG Root X1): [crt.sh](https://crt.sh/?id=47997546), [der](/certs/letsencryptauthorityx4.der), [pem](/certs/letsencryptauthorityx4.pem), [txt](/certs/letsencryptauthorityx4.txt) * Certificate details (cross-signed by IdenTrust): [crt.sh](https://crt.sh/?id=15710291), [der](/certs/lets-encrypt-x4-cross-signed.der), [pem](/certs/lets-encrypt-x4-cross-signed.pem), [txt](/certs/lets-encrypt-x4-cross-signed.txt) - * OID: 1.3.6.1.4.1.44947.2.5 From dfd6be894d6d9a191fc45efff4e235e785454a24 Mon Sep 17 00:00:00 2001 From: Aaron Gable Date: Thu, 25 Sep 2025 10:12:50 -0700 Subject: [PATCH 9/9] Fix translation lastmod dates --- content/base-l10n/docs/oids.md | 4 ++-- content/ca/docs/oids.md | 4 ++-- content/cs/docs/oids.md | 4 ++-- content/da/docs/oids.md | 4 ++-- content/de/docs/oids.md | 4 ++-- content/el/docs/oids.md | 4 ++-- content/es/docs/oids.md | 4 ++-- content/fa/docs/oids.md | 4 ++-- content/fi/docs/oids.md | 4 ++-- content/fr/docs/oids.md | 4 ++-- content/he/docs/oids.md | 4 ++-- content/hr/docs/oids.md | 4 ++-- content/hu/docs/oids.md | 4 ++-- content/id/docs/oids.md | 4 ++-- content/it/docs/oids.md | 4 ++-- content/ja/docs/oids.md | 4 ++-- content/ko/docs/oids.md | 4 ++-- content/pl/docs/oids.md | 4 ++-- content/pt-br/docs/oids.md | 4 ++-- content/ru/docs/oids.md | 4 ++-- content/si/docs/oids.md | 4 ++-- content/sr/docs/oids.md | 4 ++-- content/sv/docs/oids.md | 4 ++-- content/ta/docs/oids.md | 4 ++-- content/th/docs/oids.md | 4 ++-- content/tr/docs/oids.md | 4 ++-- content/uk/docs/oids.md | 4 ++-- content/uz/docs/oids.md | 4 ++-- content/vi/docs/oids.md | 4 ++-- content/zh-cn/docs/oids.md | 4 ++-- content/zh-tw/docs/oids.md | 4 ++-- 31 files changed, 62 insertions(+), 62 deletions(-) diff --git a/content/base-l10n/docs/oids.md b/content/base-l10n/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/base-l10n/docs/oids.md +++ b/content/base-l10n/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/ca/docs/oids.md b/content/ca/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/ca/docs/oids.md +++ b/content/ca/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/cs/docs/oids.md b/content/cs/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/cs/docs/oids.md +++ b/content/cs/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/da/docs/oids.md b/content/da/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/da/docs/oids.md +++ b/content/da/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/de/docs/oids.md b/content/de/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/de/docs/oids.md +++ b/content/de/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/el/docs/oids.md b/content/el/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/el/docs/oids.md +++ b/content/el/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/es/docs/oids.md b/content/es/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/es/docs/oids.md +++ b/content/es/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/fa/docs/oids.md b/content/fa/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/fa/docs/oids.md +++ b/content/fa/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/fi/docs/oids.md b/content/fi/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/fi/docs/oids.md +++ b/content/fi/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/fr/docs/oids.md b/content/fr/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/fr/docs/oids.md +++ b/content/fr/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/he/docs/oids.md b/content/he/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/he/docs/oids.md +++ b/content/he/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/hr/docs/oids.md b/content/hr/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/hr/docs/oids.md +++ b/content/hr/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/hu/docs/oids.md b/content/hu/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/hu/docs/oids.md +++ b/content/hu/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/id/docs/oids.md b/content/id/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/id/docs/oids.md +++ b/content/id/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/it/docs/oids.md b/content/it/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/it/docs/oids.md +++ b/content/it/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/ja/docs/oids.md b/content/ja/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/ja/docs/oids.md +++ b/content/ja/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/ko/docs/oids.md b/content/ko/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/ko/docs/oids.md +++ b/content/ko/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/pl/docs/oids.md b/content/pl/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/pl/docs/oids.md +++ b/content/pl/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/pt-br/docs/oids.md b/content/pt-br/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/pt-br/docs/oids.md +++ b/content/pt-br/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/ru/docs/oids.md b/content/ru/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/ru/docs/oids.md +++ b/content/ru/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/si/docs/oids.md b/content/si/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/si/docs/oids.md +++ b/content/si/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/sr/docs/oids.md b/content/sr/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/sr/docs/oids.md +++ b/content/sr/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/sv/docs/oids.md b/content/sv/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/sv/docs/oids.md +++ b/content/sv/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/ta/docs/oids.md b/content/ta/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/ta/docs/oids.md +++ b/content/ta/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/th/docs/oids.md b/content/th/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/th/docs/oids.md +++ b/content/th/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/tr/docs/oids.md b/content/tr/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/tr/docs/oids.md +++ b/content/tr/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/uk/docs/oids.md b/content/uk/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/uk/docs/oids.md +++ b/content/uk/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/uz/docs/oids.md b/content/uz/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/uz/docs/oids.md +++ b/content/uz/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/vi/docs/oids.md b/content/vi/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/vi/docs/oids.md +++ b/content/vi/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/zh-cn/docs/oids.md b/content/zh-cn/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/zh-cn/docs/oids.md +++ b/content/zh-cn/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 --- diff --git a/content/zh-tw/docs/oids.md b/content/zh-tw/docs/oids.md index e3b2a1d52..3c752e581 100644 --- a/content/zh-tw/docs/oids.md +++ b/content/zh-tw/docs/oids.md @@ -1,8 +1,8 @@ --- title: Object Identifiers slug: oids -date: 2025-09-08 -lastmod: 2025-09-08 +date: 2025-09-25 +lastmod: 2025-09-25 show_lastmod: false untranslated: 1 ---