Certificate OID Lookup & Descriptions
Look up certificate and algorithm OIDs locally with descriptions and standards sources (RFC or GM/T); unknown entries fall back to OpenSSL names.
Privacy: all processing happens locally in your browser. Your input never leaves your device.
What is Certificate OID Lookup & Descriptions?
Enter a dotted OID, name or keyword to read a locally maintained catalog of common identifiers, categories, descriptions and standards sources (RFC or GM/T) for SAN, Basic Constraints, RSA, ECC and SM2. When the finite catalog has no match, OpenSSL object mappings provide names only. An unlisted identifier is not necessarily malicious. These descriptions assist inspection; they do not establish certificate usage, trust, revocation status or standards compliance.
How to Use
- Enter a dotted OID, name or keyword
- Read common OID descriptions and standards sources (RFC or GM/T), or the matching OpenSSL object name
- Leave unknown results as unknown and consult the relevant product or issuer for their actual use
FAQ
- What data source does this lookup use?
- Common objects use a finite local reference catalog with standards links (RFC or GM/T); other objects use OpenSSL name mappings. No remote lookup is sent.
- Does an unknown OID mean a malicious object?
- No. It only means the current OpenSSL object database has no matching mapping. Confirm its meaning with the issuer or product documentation.
- Can an OID lookup determine certificate use or trust?
- No. Descriptions explain identifiers, but do not inspect a particular certificate or establish its usage, trust, revocation or chain validity.
Related Tools
SSL Key Pair GeneratorGenerate RSA, ECC or SM2 PEM key pairs locally: RSA 2048/3072/4096 and P-256/P-384 are supported.Key Format ConverterConvert RSA PKCS#1 and general PKCS#8 private keys locally, optionally changing output password protection without changing the underlying key.Private Key Parameter ParserInspect public parameters of an RSA, ECC or SM2 private key and export its public key locally, without revealing private mathematical components.Public Key Parameter ParserParse the algorithm, RSA bit length or elliptic-curve parameters of an RSA, ECC or SM2 PEM/DER public key locally.CSR GeneratorCreate a local CSR and private key with DNS/IP SANs using RSA, ECC P-256/P-384 or SM2.CSR Parser & Signature CheckerParse a PEM/DER CSR, show subject, public key and DNS/IP SANs, and verify its embedded signature locally.
Last updated 2026-10-09