Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://cimer.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=cimer.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=cimer.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=cimer.jp
And you can
check your domain name
.
#
Certificate of
cimer.jp
{ "serial": "2E1A4F16C673181A13B94CED64A6B520", "OCSP_serial": "2E1A4F16C673181A13B94CED64A6B520", "OCSP_cert_status": "good", "OCSP_this_update": "Oct 29 19:15:22 2025 GMT", "OCSP_next_update": "Nov 5 18:15:21 2025 GMT", "domainName": "cimer.jp", "port": 443, "subjectAltName": "DNS:cimer.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/09/10 20:10:46", "expires_at": "2025/12/09 21:07:01", "today": "2025/11/03 07:00:42", "UTC": { "updated_at": "2025-09-10T11:10:46Z", "expires_at": "2025-12-09T12:07:01Z", "today": "2025-11-02T22:00:42Z" }, "remaining_days": 36 }
#
OCSP response of
cimer.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Oct 29 19:15:22 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 2E1A4F16C673181A13B94CED64A6B520 Cert Status: good This Update: Oct 29 19:15:22 2025 GMT Next Update: Nov 5 18:15:21 2025 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:44:02:20:3c:2b:f4:8f:46:14:02:f3:3e:4b:d4:5d:ea:8a: f7:5f:ae:e9:6b:ef:0b:e7:75:cd:ef:2b:b2:34:b2:26:7e:be: 02:20:13:52:76:e5:48:a6:db:8f:dc:8f:c4:1e:35:c4:1c:d5: 6c:48:5d:ee:0f:2a:0c:78:96:96:f9:53:ed:57:a2:70 ====================================== --- Certificate chain 0 s:CN = cimer.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Sep 10 11:10:46 2025 GMT; NotAfter: Dec 9 12:07:01 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDjjCCAzWgAwIBAgIQLhpPFsZzGBoTuUztZKa1IDAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjUwOTEwMTExMDQ2WhcNMjUxMjA5MTIwNzAxWjATMREwDwYD VQQDEwhjaW1lci5qcDBZMBMGByqGSM49AgEGCCqGSM49AwEHA0IABOFvIkXZX+UK 7ihXCmsbQS8skG2VXo4o1JhGzlwdqd5bhXE/2exqY4nn93riLflNgAt+YDIQXLD8 lDiHmMo7RS2jggJBMIICPTAOBgNVHQ8BAf8EBAMCB4AwEwYDVR0lBAwwCgYIKwYB BQUHAwEwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUzCYUZxXQfGd2Iu11z6sUgGER SRswHwYDVR0jBBgwFoAUkHeSNWfE/6jMqeZ72YB5e8yT+TgwXgYIKwYBBQUHAQEE UjBQMCcGCCsGAQUFBzABhhtodHRwOi8vby5wa2kuZ29vZy9zL3dlMS9MaG8wJQYI KwYBBQUHMAKGGWh0dHA6Ly9pLnBraS5nb29nL3dlMS5jcnQwEwYDVR0RBAwwCoII Y2ltZXIuanAwEwYDVR0gBAwwCjAIBgZngQwBAgEwNgYDVR0fBC8wLTAroCmgJ4Yl aHR0cDovL2MucGtpLmdvb2cvd2UxL3VDZ2xjbXd3ZnRjLmNybDCCAQQGCisGAQQB 1nkCBAIEgfUEgfIA8AB2AN3cyjSV1+EWBeeVMvrHn/g9HFDf2wA6FBJ2Ciysu8gq AAABmTOJF5IAAAQDAEcwRQIgYFKqEaZ7aLtU53uWphEauLj9rhW2mxiRBjrG2Bdx 3uICIQDIcNYp9CZkbnqMezJpvn5qL2rZVxQGeDZGPDxr/KbcogB2AA3h8jAr0w3B QGISCepVLvxHdHyx1+kw7w5CHrR+Tqo0AAABmTOJF20AAAQDAEcwRQIhAJzpvwhr iNt4WyvpFAVKcpLrPiFz07BoXdGOejqGsZd8AiAjsFv49+YikkLL19LEBU6E2X+4 qSAC7XfzbBojh40PiTAKBggqhkjOPQQDAgNHADBEAiAbvtuMMF6gKAj2JHk2FWH7 1wjvJD5xAN49QBqSMrlMjQIgYbNoCxctOaRmdv5CnKGCyRxW6BlYWR4ecxt1IWXT eWs= -----END CERTIFICATE----- subject=CN = cimer.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3087 bytes and written 399 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
cimer.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.