Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://crazy-factory.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=crazy-factory.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=crazy-factory.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=crazy-factory.jp
And you can
check your domain name
.
#
Certificate of
crazy-factory.jp
{ "serial": "03385ACC6912FCAB6F00592CC36EA308", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "crazy-factory.jp", "port": 443, "subjectAltName": "DNS:*.crazyfactory.de, DNS:crazyfactory.fr, DNS:*.crazyfactory.my, DNS:*.crazyfactory.es, DNS:*.crazyfactory.ee, DNS:crazy-factory.it, DNS:crazy-factory.is, DNS:crazy-factory.at, DNS:*.crazy-factory.jp, DNS:crazy-factory.asia, DNS:*.crazy-factory.be, DNS:crazy-factory.be, DNS:*.crazyfactory.fr, DNS:crazy-factory.jp, DNS:crazyfactory.gr, DNS:*.crazy-factory.at, DNS:*.crazy-factory.asia, DNS:*.crazy-factory.info, DNS:crazyfactory.pl, DNS:*.crazyfactory.nl, DNS:*.crazy-factory.is, DNS:*.crazy-factory.it, DNS:crazy-factory.info, DNS:*.crazyfactory.eu, DNS:crazyfactory.pt, DNS:*.crazyfactory.gr, DNS:crazy-factory.gr, DNS:crazy-factory.net, DNS:*.crazy-factory.dk, DNS:*.crazy-factory.lt, DNS:*.crazy-factory.lv, DNS:crazyfactory.is, DNS:*.crazy-factory.org, DNS:crazy-factory.pl, DNS:*.crazy-factory.cz, DNS:crazyfactory.it, DNS:crazy-factory.pt, DNS:*.crazyfactory.pt, DNS:crazyfactory.at, DNS:*.crazy-factory.ch, DNS:*.crazy-factory.kr, DNS:*.crazy-factory.biz, DNS:*.crazyfactory.pl, DNS:crazyfactory.be, DNS:crazyfactory.jp, DNS:*.crazyfactory.is, DNS:crazy-factory.ee, DNS:*.crazyfactory.it, DNS:*.crazy-factory.fr, DNS:crazy-factory.es, DNS:crazy-factory.eu, DNS:*.crazyfactory.info, DNS:crazyfactory.kr, DNS:*.crazy-factory.nl, DNS:*.crazy-factory.no, DNS:crazy-factory.nl, DNS:crazyfactory.ch, DNS:crazy-factory.no, DNS:crazyfactory.asia, DNS:crazyfactory.cz, DNS:*.crazy-factory.es, DNS:*.crazy-factory.eu, DNS:*.crazyfactory.be, DNS:*.crazyfactory.jp, DNS:crazy-factory.fr, DNS:crazyfactory.de, DNS:crazyfactory.lt, DNS:crazyfactory.dk, DNS:crazyfactory.lv, DNS:*.crazy-factory.ee, DNS:crazyfactory.info, DNS:*.crazyfactory.at, DNS:*.crazyfactory.asia, DNS:*.crazyfactory.kr, DNS:crazy-factory.biz, DNS:crazy-factory.kr, DNS:crazy-factory.ch, DNS:*.crazyfactory.ch, DNS:crazyfactory.ee, DNS:*.crazyfactory.biz, DNS:*.crazy-factory.pt, DNS:crazy-factory.cz, DNS:*.crazy-factory.pl, DNS:*.crazyfactory.lt, DNS:crazyfactory.eu, DNS:*.crazyfactory.dk, DNS:*.crazy-factory.net, DNS:*.crazyfactory.lv, DNS:crazyfactory.biz, DNS:crazyfactory.my, DNS:crazy-factory.dk, DNS:crazyfactory.es, DNS:crazy-factory.lv, DNS:crazy-factory.lt, DNS:*.crazyfactory.cz, DNS:crazy-factory.org, DNS:crazyfactory.nl, DNS:*.crazy-factory.gr", "is_valid": true, "CA": "Amazon", "updated_at": "2024/12/26 09:00:00", "expires_at": "2026/01/26 08:59:59", "today": "2025/05/09 16:16:07", "UTC": { "updated_at": "2024-12-26T00:00:00Z", "expires_at": "2026-01-25T23:59:59Z", "today": "2025-05-09T07:16:07Z" }, "remaining_days": 261 }
#
OCSP response of
crazy-factory.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.crazyfactory.de i:C = US, O = Amazon, CN = Amazon RSA 2048 M02 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Dec 26 00:00:00 2024 GMT; NotAfter: Jan 25 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M02 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:25:30 2022 GMT; NotAfter: Aug 23 22:25:30 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIM7TCCC9WgAwIBAgIQAzhazGkS/KtvAFksw26jCDANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAyMB4XDTI0MTIyNjAwMDAwMFoXDTI2MDEyNTIzNTk1OVowHDEa MBgGA1UEAwwRKi5jcmF6eWZhY3RvcnkuZGUwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQCyM0hoaRSsY8WoLyc9Eme+aiHuIXFSZbqr22uLHH7H7VIOmbxS 5uuBUT9a7v15GkW+Wa88gbyCSaGu+Y26yzH9EMHgLgJzTN3WJIP0rzO3r++8y9re obuzt6MjX1Z8jEJj43IscLtfHLA5KAjH9a5FkVBqOT1guJOPcp/WTOiFt4sMS9Pb ZmVzHqq7dKy0RurFR0o6PS8Bj4FNsrhLXuiQr7lw8WKChMaauG1VDVTG5RN8aWbF c5/kVDmkz/7TltPsH6E0S1jxTD5fLP04f4RwgF+Da0ySR0kfNPo174RM3XuIrLAP C2Vzep79goiMWMot5AAxTA4l03EIwbNtQmwHAgMBAAGjggoJMIIKBTAfBgNVHSME GDAWgBTAMVLNWlDDgnx0cc7L6Zz5euuC4jAdBgNVHQ4EFgQUWDFCZYebRsv6X5a9 j3Ac9scgQGwwggc7BgNVHREEggcyMIIHLoIRKi5jcmF6eWZhY3RvcnkuZGWCD2Ny YXp5ZmFjdG9yeS5mcoIRKi5jcmF6eWZhY3RvcnkubXmCESouY3JhenlmYWN0b3J5 LmVzghEqLmNyYXp5ZmFjdG9yeS5lZYIQY3JhenktZmFjdG9yeS5pdIIQY3Jhenkt ZmFjdG9yeS5pc4IQY3JhenktZmFjdG9yeS5hdIISKi5jcmF6eS1mYWN0b3J5Lmpw ghJjcmF6eS1mYWN0b3J5LmFzaWGCEiouY3JhenktZmFjdG9yeS5iZYIQY3Jhenkt ZmFjdG9yeS5iZYIRKi5jcmF6eWZhY3RvcnkuZnKCEGNyYXp5LWZhY3RvcnkuanCC D2NyYXp5ZmFjdG9yeS5ncoISKi5jcmF6eS1mYWN0b3J5LmF0ghQqLmNyYXp5LWZh Y3RvcnkuYXNpYYIUKi5jcmF6eS1mYWN0b3J5LmluZm+CD2NyYXp5ZmFjdG9yeS5w bIIRKi5jcmF6eWZhY3RvcnkubmyCEiouY3JhenktZmFjdG9yeS5pc4ISKi5jcmF6 eS1mYWN0b3J5Lml0ghJjcmF6eS1mYWN0b3J5LmluZm+CESouY3JhenlmYWN0b3J5 LmV1gg9jcmF6eWZhY3RvcnkucHSCESouY3JhenlmYWN0b3J5LmdyghBjcmF6eS1m YWN0b3J5LmdyghFjcmF6eS1mYWN0b3J5Lm5ldIISKi5jcmF6eS1mYWN0b3J5LmRr ghIqLmNyYXp5LWZhY3RvcnkubHSCEiouY3JhenktZmFjdG9yeS5sdoIPY3Jhenlm YWN0b3J5LmlzghMqLmNyYXp5LWZhY3Rvcnkub3JnghBjcmF6eS1mYWN0b3J5LnBs ghIqLmNyYXp5LWZhY3RvcnkuY3qCD2NyYXp5ZmFjdG9yeS5pdIIQY3JhenktZmFj dG9yeS5wdIIRKi5jcmF6eWZhY3RvcnkucHSCD2NyYXp5ZmFjdG9yeS5hdIISKi5j cmF6eS1mYWN0b3J5LmNoghIqLmNyYXp5LWZhY3Rvcnkua3KCEyouY3JhenktZmFj dG9yeS5iaXqCESouY3JhenlmYWN0b3J5LnBsgg9jcmF6eWZhY3RvcnkuYmWCD2Ny YXp5ZmFjdG9yeS5qcIIRKi5jcmF6eWZhY3RvcnkuaXOCEGNyYXp5LWZhY3Rvcnku ZWWCESouY3JhenlmYWN0b3J5Lml0ghIqLmNyYXp5LWZhY3RvcnkuZnKCEGNyYXp5 LWZhY3RvcnkuZXOCEGNyYXp5LWZhY3RvcnkuZXWCEyouY3JhenlmYWN0b3J5Lmlu Zm+CD2NyYXp5ZmFjdG9yeS5rcoISKi5jcmF6eS1mYWN0b3J5Lm5sghIqLmNyYXp5 LWZhY3Rvcnkubm+CEGNyYXp5LWZhY3RvcnkubmyCD2NyYXp5ZmFjdG9yeS5jaIIQ Y3JhenktZmFjdG9yeS5ub4IRY3JhenlmYWN0b3J5LmFzaWGCD2NyYXp5ZmFjdG9y eS5jeoISKi5jcmF6eS1mYWN0b3J5LmVzghIqLmNyYXp5LWZhY3RvcnkuZXWCESou Y3JhenlmYWN0b3J5LmJlghEqLmNyYXp5ZmFjdG9yeS5qcIIQY3JhenktZmFjdG9y eS5mcoIPY3JhenlmYWN0b3J5LmRlgg9jcmF6eWZhY3RvcnkubHSCD2NyYXp5ZmFj dG9yeS5ka4IPY3JhenlmYWN0b3J5Lmx2ghIqLmNyYXp5LWZhY3RvcnkuZWWCEWNy YXp5ZmFjdG9yeS5pbmZvghEqLmNyYXp5ZmFjdG9yeS5hdIITKi5jcmF6eWZhY3Rv cnkuYXNpYYIRKi5jcmF6eWZhY3Rvcnkua3KCEWNyYXp5LWZhY3RvcnkuYml6ghBj cmF6eS1mYWN0b3J5LmtyghBjcmF6eS1mYWN0b3J5LmNoghEqLmNyYXp5ZmFjdG9y eS5jaIIPY3JhenlmYWN0b3J5LmVlghIqLmNyYXp5ZmFjdG9yeS5iaXqCEiouY3Jh enktZmFjdG9yeS5wdIIQY3JhenktZmFjdG9yeS5jeoISKi5jcmF6eS1mYWN0b3J5 LnBsghEqLmNyYXp5ZmFjdG9yeS5sdIIPY3JhenlmYWN0b3J5LmV1ghEqLmNyYXp5 ZmFjdG9yeS5ka4ITKi5jcmF6eS1mYWN0b3J5Lm5ldIIRKi5jcmF6eWZhY3Rvcnku bHaCEGNyYXp5ZmFjdG9yeS5iaXqCD2NyYXp5ZmFjdG9yeS5teYIQY3JhenktZmFj dG9yeS5ka4IPY3JhenlmYWN0b3J5LmVzghBjcmF6eS1mYWN0b3J5Lmx2ghBjcmF6 eS1mYWN0b3J5Lmx0ghEqLmNyYXp5ZmFjdG9yeS5jeoIRY3JhenktZmFjdG9yeS5v cmeCD2NyYXp5ZmFjdG9yeS5ubIISKi5jcmF6eS1mYWN0b3J5LmdyMBMGA1UdIAQM MAowCAYGZ4EMAQIBMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcD AQYIKwYBBQUHAwIwOwYDVR0fBDQwMjAwoC6gLIYqaHR0cDovL2NybC5yMm0wMi5h bWF6b250cnVzdC5jb20vcjJtMDIuY3JsMHUGCCsGAQUFBwEBBGkwZzAtBggrBgEF BQcwAYYhaHR0cDovL29jc3AucjJtMDIuYW1hem9udHJ1c3QuY29tMDYGCCsGAQUF BzAChipodHRwOi8vY3J0LnIybTAyLmFtYXpvbnRydXN0LmNvbS9yMm0wMi5jZXIw DAYDVR0TAQH/BAIwADCCAXwGCisGAQQB1nkCBAIEggFsBIIBaAFmAHUADleUvPOu qT4zGyyZB7P3kN+bwj1xMiXdIaklrGHFTiEAAAGUAFt4hgAABAMARjBEAiAh02VA JBTZNrxkDSm14Bj9bQ3VQnvz4K2rWdj6ayB01wIgAd0+BwtJre97p4iIheKwgltr fhDh8LLwNIUiK1DnS5UAdgBkEcRspBLsp4kcogIuALyrTygH1B41J6vq/tUDyX3N 8AAAAZQAW3g3AAAEAwBHMEUCID+09hDBnmm2DheHLvrcH4nPR9WUDW0Up+hIpHMU 5AyxAiEAoLu5qyfw8aWZimchgllzUg8KKxht63Z37lPlxZz8Ub0AdQBJnJtp3h18 7Pw23s2HZKa4W68Kh4AZ0VVS++nrKd34wwAAAZQAW3hEAAAEAwBGMEQCIAh/M+4s OkKWaHfYOl3Xfk8n8q0GYGpT182cPONbjSkvAiAQVbWVwjNjskzxdbbHDjIxv8sJ WICFrtJgOCEHQ0+ggTANBgkqhkiG9w0BAQsFAAOCAQEASCeVZy7zPdmJgK/b0kps RJbeEdZb4VR1MlHfydcyVy3ZkiLviNpRt1R//2lue+/+f/ciobQfODoxT6bg6pSU yBL38uoWjSYd407ljgi42TCnIzguW3K7MkpZ/KPV6Y0AZWjXhGIQj6vVaoO2u7Zh LheifqykFRuIiM5mK6HJsFLkD5bcNP0C4/oRQXtIJnaLWvfxOVy0TKkpr3IZwE6J 3JIsCoMsC8v1cjjIuQcfAAV3e71ZkEBWftMekPoCIrBXlkGn6nX0G/EE5R6f6vrK ntRf6rbYJTZDV8AQZePcddyhrCG0PUyFzn6DuYolPMm9tdsMSoPNNu7nl8A2Em4W CA== -----END CERTIFICATE----- subject=CN = *.crazyfactory.de issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M02 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 6285 bytes and written 453 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 9D318A34216E0D864B6DC6165EC95D3126105A8199223B7ED614C38B8A6E5415 Session-ID-ctx: Master-Key: 79462015E2C09BA0F2A8E0613911C304D5BA88345552FE41C0C5215EE2E38ED4532A57C4DFAB31A4B7DABB590A5C661B PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 86400 (seconds) TLS session ticket: 0000 - 01 27 b4 d7 6b 8b 21 ec-d2 5e 57 0c 79 6d 5e 32 .'..k.!..^W.ym^2 0010 - bf 5c 5e 46 9a 3f c8 6a-99 c4 78 86 7f 96 ed d4 .\^F.?.j..x..... 0020 - 6c 23 5d 9f 5c f7 10 78-58 36 ca 09 42 65 9b f7 l#].\..xX6..Be.. 0030 - 4f 49 8f 3c 25 b5 e2 f2-59 ee 53 b9 c9 9c bf a9 OI.<%...Y.S..... 0040 - 0a a7 01 c4 2d 4c b6 b8-ed 08 29 18 ad 01 44 67 ....-L....)...Dg 0050 - 8d 14 93 fa ce ef 3b 9c-e7 c2 d5 cb 76 b2 e0 7e ......;.....v..~ 0060 - 91 3b 8c 98 4c 9e d4 e9-6d ba bd b4 cc 32 30 f5 .;..L...m....20. 0070 - d2 8c 70 e0 b0 25 26 1d-ac ee 5a fc 5d b4 31 1e ..p..%&...Z.].1. 0080 - 0e 98 52 09 29 fe d2 fe-1f 06 ..R.)..... Start Time: 1746774970 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
crazy-factory.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.