Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://crazy-factory.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=crazy-factory.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=crazy-factory.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=crazy-factory.jp
And you can
check your domain name
.
#
Certificate of
crazy-factory.jp
{ "serial": "03746429F816BF2C6EEBED6B9D40BB49", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "crazy-factory.jp", "port": 443, "subjectAltName": "DNS:*.crazyfactory.de, DNS:crazyfactory.fr, DNS:*.crazyfactory.my, DNS:*.crazyfactory.es, DNS:*.crazyfactory.ee, DNS:crazy-factory.it, DNS:crazy-factory.is, DNS:crazy-factory.at, DNS:*.crazy-factory.jp, DNS:crazy-factory.asia, DNS:*.crazy-factory.be, DNS:crazy-factory.be, DNS:*.crazyfactory.fr, DNS:crazy-factory.jp, DNS:crazyfactory.gr, DNS:*.crazy-factory.at, DNS:*.crazy-factory.asia, DNS:*.crazy-factory.info, DNS:crazyfactory.pl, DNS:*.crazyfactory.nl, DNS:*.crazy-factory.is, DNS:*.crazy-factory.it, DNS:crazy-factory.info, DNS:*.crazyfactory.eu, DNS:crazyfactory.pt, DNS:*.crazyfactory.gr, DNS:crazy-factory.gr, DNS:crazy-factory.net, DNS:*.crazy-factory.dk, DNS:*.crazy-factory.lt, DNS:*.crazy-factory.lv, DNS:crazyfactory.is, DNS:*.crazy-factory.org, DNS:crazy-factory.pl, DNS:*.crazy-factory.cz, DNS:crazyfactory.it, DNS:crazy-factory.pt, DNS:*.crazyfactory.pt, DNS:crazyfactory.at, DNS:*.crazy-factory.ch, DNS:*.crazy-factory.kr, DNS:*.crazy-factory.biz, DNS:*.crazyfactory.pl, DNS:crazyfactory.be, DNS:crazyfactory.jp, DNS:*.crazyfactory.is, DNS:crazy-factory.ee, DNS:*.crazyfactory.it, DNS:*.crazy-factory.fr, DNS:crazy-factory.es, DNS:crazy-factory.eu, DNS:*.crazyfactory.info, DNS:crazyfactory.kr, DNS:*.crazy-factory.nl, DNS:*.crazy-factory.no, DNS:crazy-factory.nl, DNS:crazyfactory.ch, DNS:crazy-factory.no, DNS:crazyfactory.asia, DNS:crazyfactory.cz, DNS:*.crazy-factory.es, DNS:*.crazy-factory.eu, DNS:*.crazyfactory.be, DNS:*.crazyfactory.jp, DNS:crazy-factory.fr, DNS:crazyfactory.de, DNS:crazyfactory.lt, DNS:crazyfactory.dk, DNS:crazyfactory.lv, DNS:*.crazy-factory.ee, DNS:crazyfactory.info, DNS:*.crazyfactory.at, DNS:*.crazyfactory.asia, DNS:*.crazyfactory.kr, DNS:crazy-factory.biz, DNS:crazy-factory.kr, DNS:crazy-factory.ch, DNS:*.crazyfactory.ch, DNS:crazyfactory.ee, DNS:*.crazyfactory.biz, DNS:*.crazy-factory.pt, DNS:crazy-factory.cz, DNS:*.crazy-factory.pl, DNS:*.crazyfactory.lt, DNS:crazyfactory.eu, DNS:*.crazyfactory.dk, DNS:*.crazy-factory.net, DNS:*.crazyfactory.lv, DNS:crazyfactory.biz, DNS:crazyfactory.my, DNS:crazy-factory.dk, DNS:crazyfactory.es, DNS:crazy-factory.lv, DNS:crazy-factory.lt, DNS:*.crazyfactory.cz, DNS:crazy-factory.org, DNS:crazyfactory.nl, DNS:*.crazy-factory.gr", "is_valid": true, "CA": "Amazon", "updated_at": "2025/11/27 09:00:00", "expires_at": "2026/12/27 08:59:59", "today": "2026/04/01 11:58:15", "UTC": { "updated_at": "2025-11-27T00:00:00Z", "expires_at": "2026-12-26T23:59:59Z", "today": "2026-04-01T02:58:15Z" }, "remaining_days": 269 }
#
OCSP response of
crazy-factory.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.crazyfactory.de i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 27 00:00:00 2025 GMT; NotAfter: Dec 26 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIM5TCCC82gAwIBAgIQA3RkKfgWvyxu6+1rnUC7STANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTEyNzAwMDAwMFoXDTI2MTIyNjIzNTk1OVowHDEa MBgGA1UEAwwRKi5jcmF6eWZhY3RvcnkuZGUwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQD2SK2IUHXVOObJwor2RmHYxIkPxHhomC2ep43YrOAqNGKNftre FOjN++32VNJsbi2cidlsPKsxf50hY5skqmJlf6Velc5dJpINWuda5npQj4GIZXfF aIicq3L6rWbtXbqFokKYMae/JXYyvTm5qvdd0yCTOROd6jVh+KMeLoP9n5ICFNnk 4SpVJJ/0BQlBYMtYODwccuVj7YUAsCZRO9g9qlzWRhEJjsOahNlbyQWR6ru0wErE 3pp37AfeUkpk6D58blRko16A7Gnc7oBS4FSDVvzElZIFJvFLXfLRvH2pq1oHdO2r DvYAX2Oh6QnnqEUl2LlN8yEm3QuC/DFsFEPjAgMBAAGjggoBMIIJ/TAfBgNVHSME GDAWgBQfUpJhVoJUf4Fm2B09CqoyXIfdCDAdBgNVHQ4EFgQUArN2ddlc5hrBEHl7 kPGDi54+UqAwggc7BgNVHREEggcyMIIHLoIRKi5jcmF6eWZhY3RvcnkuZGWCD2Ny YXp5ZmFjdG9yeS5mcoIRKi5jcmF6eWZhY3RvcnkubXmCESouY3JhenlmYWN0b3J5 LmVzghEqLmNyYXp5ZmFjdG9yeS5lZYIQY3JhenktZmFjdG9yeS5pdIIQY3Jhenkt ZmFjdG9yeS5pc4IQY3JhenktZmFjdG9yeS5hdIISKi5jcmF6eS1mYWN0b3J5Lmpw ghJjcmF6eS1mYWN0b3J5LmFzaWGCEiouY3JhenktZmFjdG9yeS5iZYIQY3Jhenkt ZmFjdG9yeS5iZYIRKi5jcmF6eWZhY3RvcnkuZnKCEGNyYXp5LWZhY3RvcnkuanCC D2NyYXp5ZmFjdG9yeS5ncoISKi5jcmF6eS1mYWN0b3J5LmF0ghQqLmNyYXp5LWZh Y3RvcnkuYXNpYYIUKi5jcmF6eS1mYWN0b3J5LmluZm+CD2NyYXp5ZmFjdG9yeS5w bIIRKi5jcmF6eWZhY3RvcnkubmyCEiouY3JhenktZmFjdG9yeS5pc4ISKi5jcmF6 eS1mYWN0b3J5Lml0ghJjcmF6eS1mYWN0b3J5LmluZm+CESouY3JhenlmYWN0b3J5 LmV1gg9jcmF6eWZhY3RvcnkucHSCESouY3JhenlmYWN0b3J5LmdyghBjcmF6eS1m YWN0b3J5LmdyghFjcmF6eS1mYWN0b3J5Lm5ldIISKi5jcmF6eS1mYWN0b3J5LmRr ghIqLmNyYXp5LWZhY3RvcnkubHSCEiouY3JhenktZmFjdG9yeS5sdoIPY3Jhenlm YWN0b3J5LmlzghMqLmNyYXp5LWZhY3Rvcnkub3JnghBjcmF6eS1mYWN0b3J5LnBs ghIqLmNyYXp5LWZhY3RvcnkuY3qCD2NyYXp5ZmFjdG9yeS5pdIIQY3JhenktZmFj dG9yeS5wdIIRKi5jcmF6eWZhY3RvcnkucHSCD2NyYXp5ZmFjdG9yeS5hdIISKi5j cmF6eS1mYWN0b3J5LmNoghIqLmNyYXp5LWZhY3Rvcnkua3KCEyouY3JhenktZmFj dG9yeS5iaXqCESouY3JhenlmYWN0b3J5LnBsgg9jcmF6eWZhY3RvcnkuYmWCD2Ny YXp5ZmFjdG9yeS5qcIIRKi5jcmF6eWZhY3RvcnkuaXOCEGNyYXp5LWZhY3Rvcnku ZWWCESouY3JhenlmYWN0b3J5Lml0ghIqLmNyYXp5LWZhY3RvcnkuZnKCEGNyYXp5 LWZhY3RvcnkuZXOCEGNyYXp5LWZhY3RvcnkuZXWCEyouY3JhenlmYWN0b3J5Lmlu Zm+CD2NyYXp5ZmFjdG9yeS5rcoISKi5jcmF6eS1mYWN0b3J5Lm5sghIqLmNyYXp5 LWZhY3Rvcnkubm+CEGNyYXp5LWZhY3RvcnkubmyCD2NyYXp5ZmFjdG9yeS5jaIIQ Y3JhenktZmFjdG9yeS5ub4IRY3JhenlmYWN0b3J5LmFzaWGCD2NyYXp5ZmFjdG9y eS5jeoISKi5jcmF6eS1mYWN0b3J5LmVzghIqLmNyYXp5LWZhY3RvcnkuZXWCESou Y3JhenlmYWN0b3J5LmJlghEqLmNyYXp5ZmFjdG9yeS5qcIIQY3JhenktZmFjdG9y eS5mcoIPY3JhenlmYWN0b3J5LmRlgg9jcmF6eWZhY3RvcnkubHSCD2NyYXp5ZmFj dG9yeS5ka4IPY3JhenlmYWN0b3J5Lmx2ghIqLmNyYXp5LWZhY3RvcnkuZWWCEWNy YXp5ZmFjdG9yeS5pbmZvghEqLmNyYXp5ZmFjdG9yeS5hdIITKi5jcmF6eWZhY3Rv cnkuYXNpYYIRKi5jcmF6eWZhY3Rvcnkua3KCEWNyYXp5LWZhY3RvcnkuYml6ghBj cmF6eS1mYWN0b3J5LmtyghBjcmF6eS1mYWN0b3J5LmNoghEqLmNyYXp5ZmFjdG9y eS5jaIIPY3JhenlmYWN0b3J5LmVlghIqLmNyYXp5ZmFjdG9yeS5iaXqCEiouY3Jh enktZmFjdG9yeS5wdIIQY3JhenktZmFjdG9yeS5jeoISKi5jcmF6eS1mYWN0b3J5 LnBsghEqLmNyYXp5ZmFjdG9yeS5sdIIPY3JhenlmYWN0b3J5LmV1ghEqLmNyYXp5 ZmFjdG9yeS5ka4ITKi5jcmF6eS1mYWN0b3J5Lm5ldIIRKi5jcmF6eWZhY3Rvcnku bHaCEGNyYXp5ZmFjdG9yeS5iaXqCD2NyYXp5ZmFjdG9yeS5teYIQY3JhenktZmFj dG9yeS5ka4IPY3JhenlmYWN0b3J5LmVzghBjcmF6eS1mYWN0b3J5Lmx2ghBjcmF6 eS1mYWN0b3J5Lmx0ghEqLmNyYXp5ZmFjdG9yeS5jeoIRY3JhenktZmFjdG9yeS5v cmeCD2NyYXp5ZmFjdG9yeS5ubIISKi5jcmF6eS1mYWN0b3J5LmdyMBMGA1UdIAQM MAowCAYGZ4EMAQIBMA4GA1UdDwEB/wQEAwIFoDATBgNVHSUEDDAKBggrBgEFBQcD ATA7BgNVHR8ENDAyMDCgLqAshipodHRwOi8vY3JsLnIybTA0LmFtYXpvbnRydXN0 LmNvbS9yMm0wNC5jcmwwdQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFodHRw Oi8vb2NzcC5yMm0wNC5hbWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0dHA6 Ly9jcnQucjJtMDQuYW1hem9udHJ1c3QuY29tL3IybTA0LmNlcjAMBgNVHRMBAf8E AjAAMIIBfgYKKwYBBAHWeQIEAgSCAW4EggFqAWgAdgDYCVU7lE96/8gWGW+UT4Wr sPj8XodVJg8V0S5yu0VLFAAAAZrCrXreAAAEAwBHMEUCIFywTKnVo9ZfMaZfH5aQ +EdA/XqQoU8rfBSEOhOBzydrAiEAq7p4Syyd8j2s1B0o6fJ9XPA7eK9Fl0PD0LtF M9mIzqoAdQDIo8R/x7OtuTVrAT9qehJt4zpOQ6XGRvmXrTl1mR3PmgAAAZrCrXrz AAAEAwBGMEQCIHDjrph28/SV31k05vj1Kai6JWIIVN1DnwGL6MjbITc7AiAicUaV d24mcCI91SuFkSPV4PNJYjJhq/3SzHrpXTzpdwB3AMIxfldFGaNF7n843rKQQevH wiFaIr9/1bWtdprZDlLNAAABmsKteuAAAAQDAEgwRgIhAMNm6+MUNyq/dySg8rCu gBCadumWzZbUyXx0jGGWA/f1AiEAowYOj2TRS2TUC6TEStkDU8fJts5okJnuLr0M +6zZ+ZgwDQYJKoZIhvcNAQELBQADggEBAFub9uObIf5U3VJ3ahb635p2OG8opT4i GoSMIednkn4mfBMwelPeZ7rKdVKjH9T9Ke/lDnmmwB47cYUzFK4wW9VC9gT5FB2Z TxUbEuDFfMtIAmIEQ08wJrJP/LHEGrvbUWAQT0RRhsUDDNP36/pAcZy6J7UA6dAz 07fMQk3Wttn/S/wcrNz0VZtZ6WFO4GZBDDLXLAQBeIWI3ea0fqBBpV4EKwbcFV8F 8qqhcQD+jIJVvAREV60mHsW4JdmK7h5cBq/DCXxTPDdjD1dS3by2PUdNS16+r8L3 VyIeBSJTRudZFf2JDS9njhUy4iaiTRW+B00eUl0Wi60l1KqN0JWiYpg= -----END CERTIFICATE----- subject=CN = *.crazyfactory.de issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 6277 bytes and written 453 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 065AB5A89CF4F3ED1E7E4E04B0050796D3D27E79AFE44A03E9F265D1315A10A0 Session-ID-ctx: Master-Key: 285FB1FC7A20736BD5D73E4CE83DC774054826FD27DF2475C67A36B1E3EE1EF59D3F7B12324F12E68AD8601DB98BFB40 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 56951 (seconds) TLS session ticket: 0000 - 01 eb 5f ae 89 e7 67 07-58 4e 60 cf 99 16 b7 6f .._...g.XN`....o 0010 - 4b fa f8 b2 c7 90 94 bb-84 2a 0b 14 ff 19 46 56 K........*....FV 0020 - f6 0f 91 76 c0 8b 2d a2-29 9b 2b 33 c2 a8 ab 32 ...v..-.).+3...2 0030 - bb bc 96 b8 f3 e0 ab 8c-0c b6 ef 4a 58 dd 99 c8 ...........JX... 0040 - 8b 0f 3e a9 b8 d7 55 10-46 3e a0 c1 af 01 08 56 ..>...U.F>.....V 0050 - 1c 52 f5 54 d2 43 43 0e-a6 25 d7 bc ba ca c3 44 .R.T.CC..%.....D 0060 - db e0 ba 64 65 1a 0f 01-0f d5 51 01 a6 2e 8e 50 ...de.....Q....P 0070 - 9d 71 fe d6 c3 3e 73 b0-1d 7a 3b 57 50 3d c0 db .q...>s..z;WP=.. 0080 - 5a e7 0e c3 8f 0b 50 da-27 6e Z.....P.'n Start Time: 1775012298 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
crazy-factory.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.