Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://cimer.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=cimer.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=cimer.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=cimer.jp
And you can
check your domain name
.
#
Certificate of
cimer.jp
{ "serial": "D3E29D3F8631EA960E30E13C88B36B3F", "OCSP_serial": "D3E29D3F8631EA960E30E13C88B36B3F", "OCSP_cert_status": "good", "OCSP_this_update": "May 7 19:01:53 2025 GMT", "OCSP_next_update": "May 14 18:01:52 2025 GMT", "domainName": "cimer.jp", "port": 443, "subjectAltName": "DNS:cimer.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/03/17 17:06:40", "expires_at": "2025/06/15 18:06:29", "today": "2025/05/09 15:44:01", "UTC": { "updated_at": "2025-03-17T08:06:40Z", "expires_at": "2025-06-15T09:06:29Z", "today": "2025-05-09T06:44:01Z" }, "remaining_days": 37 }
#
OCSP response of
cimer.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: May 7 19:01:53 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: D3E29D3F8631EA960E30E13C88B36B3F Cert Status: good This Update: May 7 19:01:53 2025 GMT Next Update: May 14 18:01:52 2025 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:46:02:21:00:9c:e4:79:3d:aa:25:c0:b3:b0:e3:b3:9e:9d: f8:13:ca:d8:06:2c:7f:2d:61:1f:4a:76:36:46:2e:6e:78:fb: 71:02:21:00:cf:30:0b:9b:48:05:50:36:41:08:ed:00:50:c8: e6:b7:82:60:f6:f9:2e:79:dd:37:c5:90:a0:98:42:9e:0f:a8 ====================================== --- Certificate chain 0 s:CN = cimer.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Mar 17 08:06:40 2025 GMT; NotAfter: Jun 15 09:06:29 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDjzCCAzSgAwIBAgIRANPinT+GMeqWDjDhPIizaz8wCgYIKoZIzj0EAwIwOzEL MAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEMMAoG A1UEAxMDV0UxMB4XDTI1MDMxNzA4MDY0MFoXDTI1MDYxNTA5MDYyOVowEzERMA8G A1UEAxMIY2ltZXIuanAwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAASdeB97rKbC sbO22ZrfKI5sFy7qg+8IS445S3J+tBiDWXb2UbDVBsieXMtkDNLjFtpQIZwOVQdT n3IpRZn5RARYo4ICPzCCAjswDgYDVR0PAQH/BAQDAgeAMBMGA1UdJQQMMAoGCCsG AQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFLQSGvKkrXBwRIIbQ54XHJfv sn8vMB8GA1UdIwQYMBaAFJB3kjVnxP+ozKnme9mAeXvMk/k4MF4GCCsGAQUFBwEB BFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93ZTEvMC1JMCUG CCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93ZTEuY3J0MBMGA1UdEQQMMAqC CGNpbWVyLmpwMBMGA1UdIAQMMAowCAYGZ4EMAQIBMDYGA1UdHwQvMC0wK6ApoCeG JWh0dHA6Ly9jLnBraS5nb29nL3dlMS9LMFVWQUtlNU45NC5jcmwwggECBgorBgEE AdZ5AgQCBIHzBIHwAO4AdQBOdaMnXJoQwzhbbNTfP1LrHfDgjhuNacCx+mSxYpo5 3wAAAZWjWvDkAAAEAwBGMEQCIEwAUUjdwq/YNLwt7VScpPSszYlBStNmo8XWfT6s jaEuAiAukhx3zPYwhfVYRJrzuMZ/+Q6PhhMc/tTXCQ+ilKsOjAB1AH1ZHhLheCp7 HGFnfF79+NCHXBSgTpWeuQMv2Q6MLnm4AAABlaNa8QMAAAQDAEYwRAIgQzApi8/P sdkj4KUFrKi3g+MaAxieaclurDzuK5PCkK0CIFXqgccgZx0ZS4iPDpMNkgJbvaGs //eE412tC2d1AGq6MAoGCCqGSM49BAMCA0kAMEYCIQCs57G72WtKOfmZuXwpxO4P +XjbAsY8BofmyWi43YRnuAIhAIzlpGx12kVFAkO1/5CIKrv63javBSoG0V22GzJ9 eaIE -----END CERTIFICATE----- subject=CN = cimer.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3093 bytes and written 399 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
cimer.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.