Why this comparison is necessary
To ensure maximum security, we renew our certificates every 200 days. Since the new certificate files are typically exchanged digitally, there is theoretically a minimal risk that data could be intercepted or tampered with—a scenario known as a man-in-the-middle attack. This transparency page serves as your central reference source: Here you can check at any time whether the file you received from us is unaltered and in its original state.
How to verify the certificate you received
Open the certificate:
Open the certificate file you received from us on your system or view the details in the certificate store.
Determine the thumbprint:
- SHA-1 check (minimum standard)
Look for the “Thumbprint” attribute in the certificate details. - SHA-256 check (recommended)
Generate the SHA-256 hash directly from the certificate file. To do this, use one of the following commands depending on your environment:- PowerShell (Windows): > ```powershell Get-FileHash -Path .\certificate.cer -Algorithm SHA256
- OpenSSL (Linux/Unix): > ```bash openssl x509 -noout -fingerprint -sha256 -in certificate.crt
Verification:
Compare the determined value with the corresponding entry in the table below.
Security confirmed:
If the strings match exactly, the certificate is genuine and can be safely installed.
Security Note:
If the values do not match, please do not install the certificate and contact our support team immediately.The SHA-1 fingerprint provides basic identification and is preferable to unencrypted methods. However, due to known security vulnerabilities, it no longer represents the current state of the art. For a cryptographically reliable verification, we recommend switching to SHA-256.
AS2/SSL certificate.
| Certificate Authority | Issued to | Valid until | Serial Number | Thumbprint Sha-1 | Thumbprint Sha 256 |
| Starfield Secure G2 | edias2.sermocore.net | 02.11.2026 | 008c747285f21d9639 | 546d3de4b2cc5cb790f9eedda114adc7e86c5c7b | 69F4D5B1D95DAD34049FEF5739C5EE7165D70345032B7E59C69B66BE5AB827B0 |
| Selfsigned | edibc.sermocore.net | 28.04.2035 | 2050e411bee702bb4085ffcb13af392e | f0050eed35e03910c04f5c43635dba697842b8dc | DA9AC755A4F15BF015E7771670B7DA7C5A5C5908F8AA8B161E6C0B7ACCA87BEA |
| Selfsigned | cloud01.sermocore.net | 10.01.2032 | 32d8c4a04d2b4dae4a15d362369f7dce | cad270075242decfa4845f2a5371d417cfdbba89 | 39ED024EA7FA7685DF1C07961420F357583CDC3DE70FE52BD03A4AC885028502 |
FTPS certificate.
| Certificate Authority | Issued to | Valid until | Thumbprint Sha 256 |
| Selfsigned | cloud01.sermocore.net | 10.01.2027 | 0aeab021769df642c9457a17994674e6c94abef1a13107aac831ae2034180e8c |
SFTP certificate.
| Host-Schlüsseltyp | Valid until | SHA 256 Thumbprint |
| ecdsa-sha2-nistp256 | 31.01.2028 | sfUuOL6IR0nyCwGoZ9c6EpWDLu4DwCS8ogQESuF8r6g= |
| ecdsa-sha2-nistp384 | 31.01.2028 | zfnJG2leK+OJqSnWOP6RayrzTNKHVasLuhrrQ2KV3j4= |
| rsa-sha2-256 | 31.01.2028 | dDBD4iEDfbZoDnTQ4pZmqdDrsbeZWYZ/IUZ1OChyjfQ= |
| rsa-sha2-512 | 31.01.2028 | RdxmehGijp/oo7Ej55/J4ivIrk0gkyY4BAiiolxtlMI= |
SSL certificate.
| Certificate Authority | Issued to | Valid until | Serial Number | Thumbprint Sha-1 | Thumbprint Sha 256 |
| Selfsigned | platform.sermocore.net | 21.06.2028 | 00f4861c248a66a655 | 056c767a39e6691bdb24c2beff6f414ffe30bafd | 9011E5F7CB42BB661A6A521D944FBAADFBB0EDD374DBC3A3B727C55A15CE6048 |
OFTPS certificate.
| Certificate Authority | Issued to | Valid until | Serial Number | Thumbprint Sha-1 | Thumbprint Sha 256 |
| ODETTE Issuing G3 | oftp2.sermocore.net | 10.07.2026 | 38000016f1de2a742581bee2470000000016f1 | d2a43a6bc3d644484c5ff216fd8943e69992029d | 9AF8727929CC339BE193FAD9D4F06C40F8BCD5F49FB772892BF525D0C5A1E175 |

