Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://acao.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=acao.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=acao.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=acao.jp
And you can
check your domain name
.
#
Certificate of
acao.jp
{ "serial": "E6AEF8A4A29E7EB812078EABE0FF216A", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "acao.jp", "port": 443, "subjectAltName": "DNS:acao.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/05/30 11:14:45", "expires_at": "2025/08/28 12:09:19", "today": "2025/07/13 11:59:26", "UTC": { "updated_at": "2025-05-30T02:14:45Z", "expires_at": "2025-08-28T03:09:19Z", "today": "2025-07-13T02:59:26Z" }, "remaining_days": 46 }
#
OCSP response of
acao.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = acao.jp i:C = US, O = Google Trust Services, CN = WR3 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 30 02:14:45 2025 GMT; NotAfter: Aug 28 03:09:19 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WR3 i:C = US, O = Google Trust Services LLC, CN = GTS Root R1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R1 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: rsaEncryption, 4096 (bit); sigalg: RSA-SHA256 v:NotBefore: Jun 19 00:00:42 2020 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFGjCCBAKgAwIBAgIRAOau+KSinn64EgeOq+D/IWowDQYJKoZIhvcNAQELBQAw OzELMAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEM MAoGA1UEAxMDV1IzMB4XDTI1MDUzMDAyMTQ0NVoXDTI1MDgyODAzMDkxOVowEjEQ MA4GA1UEAxMHYWNhby5qcDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB ALOfm11qB0da/tX3USIxuGY7RjllWBx0/2iSJAx5db1sQBL3kF20C9lgDzgVpgPk YEj7sHjKv5m+DfXvc0jNrinkjKUD0Y/B+grNwzbdyuhIa/cVqG0eGUo6ailuiwG1 E4ZPNYdVGwPUG1cWwSMieN8DHwDneXHN6MqCP/FZd82956VKG6zrYOOnOM4xvJq7 9rUArPnpkzI0i4ZV2dgabLF3xWbM7zM41Gr5zGJdtlnYg1YGNKqe9SjngvsPYnm5 9Did/ZY2WKB4kL2Q6o6nnV9LovoJKhhn+MadJp7aYeQYVMU3gy4C6GAvovkL06NG aED1rlR4Ci+G2RYI3PprRscCAwEAAaOCAkAwggI8MA4GA1UdDwEB/wQEAwIFoDAT BgNVHSUEDDAKBggrBgEFBQcDATAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBScPyeo F04WCpclucolQXLDAXvAOzAfBgNVHSMEGDAWgBTHgfX9jojZADxNY6JQMSSgziP+ IzBeBggrBgEFBQcBAQRSMFAwJwYIKwYBBQUHMAGGG2h0dHA6Ly9vLnBraS5nb29n L3Mvd3IzLzVxNDAlBggrBgEFBQcwAoYZaHR0cDovL2kucGtpLmdvb2cvd3IzLmNy dDASBgNVHREECzAJggdhY2FvLmpwMBMGA1UdIAQMMAowCAYGZ4EMAQIBMDYGA1Ud HwQvMC0wK6ApoCeGJWh0dHA6Ly9jLnBraS5nb29nL3dyMy9oU3R0TlY2RGl5NC5j cmwwggEEBgorBgEEAdZ5AgQCBIH1BIHyAPAAdgDd3Mo0ldfhFgXnlTL6x5/4PRxQ 39sAOhQSdgosrLvIKgAAAZcfL1qqAAAEAwBHMEUCIQDyJNgBkO38K1jdppY7keQA IKUpw37c6D3EmW/iNZrbBwIgNuKOnOei4hsw36+5m4H+yJM3OxgA9PdOjXNOFAHO qqEAdgB9WR4S4XgqexxhZ3xe/fjQh1wUoE6VnrkDL9kOjC55uAAAAZcfL1qdAAAE AwBHMEUCIDzMDcinr1gN55DssKTmz/bRRGkmFPalPA/D9eHDEaZzAiEAh9hq8olZ P0EFKO0HCG6p+BNoAo46dysr+1+nR4yn0t0wDQYJKoZIhvcNAQELBQADggEBAFuD U+jP/dqEqYuJYPzZV/GLdqtoa5vJ7t3nDM7Kb6tExWGjjUnlih6Su6VKvAYC+yyL YwrS8OO6Ym83wE9xd352Ok8+t1LLFl/lTxQykYom8V0bDYdKeZreCv1Wjld18suu dub37mNxE1EHt+qWa915Ge3EOrDr4YMvK+WsZ8yJ8aentE6YNjSQPG7CYpxRvIZY KESsfheL/XRFzk+LZr+GrFm4jkv5aRL1w+S1u4JDY3FZdXJH3ZnnZAYhMkZCPlfo Hgxh6bNd1V5l64JBfcnkX2FZ4VWvIOv8tjQuYU4Sa8VQ+ldPeyBPhjfPrgRMWrO5 +65KuRYdJM7QiI3mhGo= -----END CERTIFICATE----- subject=CN = acao.jp issuer=C = US, O = Google Trust Services, CN = WR3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 4491 bytes and written 398 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
acao.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.