Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://crazy-factory.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=crazy-factory.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=crazy-factory.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=crazy-factory.jp
And you can
check your domain name
.
#
Certificate of
crazy-factory.jp
{ "serial": "03746429F816BF2C6EEBED6B9D40BB49", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "crazy-factory.jp", "port": 443, "subjectAltName": "DNS:*.crazyfactory.de, DNS:crazyfactory.fr, DNS:*.crazyfactory.my, DNS:*.crazyfactory.es, DNS:*.crazyfactory.ee, DNS:crazy-factory.it, DNS:crazy-factory.is, DNS:crazy-factory.at, DNS:*.crazy-factory.jp, DNS:crazy-factory.asia, DNS:*.crazy-factory.be, DNS:crazy-factory.be, DNS:*.crazyfactory.fr, DNS:crazy-factory.jp, DNS:crazyfactory.gr, DNS:*.crazy-factory.at, DNS:*.crazy-factory.asia, DNS:*.crazy-factory.info, DNS:crazyfactory.pl, DNS:*.crazyfactory.nl, DNS:*.crazy-factory.is, DNS:*.crazy-factory.it, DNS:crazy-factory.info, DNS:*.crazyfactory.eu, DNS:crazyfactory.pt, DNS:*.crazyfactory.gr, DNS:crazy-factory.gr, DNS:crazy-factory.net, DNS:*.crazy-factory.dk, DNS:*.crazy-factory.lt, DNS:*.crazy-factory.lv, DNS:crazyfactory.is, DNS:*.crazy-factory.org, DNS:crazy-factory.pl, DNS:*.crazy-factory.cz, DNS:crazyfactory.it, DNS:crazy-factory.pt, DNS:*.crazyfactory.pt, DNS:crazyfactory.at, DNS:*.crazy-factory.ch, DNS:*.crazy-factory.kr, DNS:*.crazy-factory.biz, DNS:*.crazyfactory.pl, DNS:crazyfactory.be, DNS:crazyfactory.jp, DNS:*.crazyfactory.is, DNS:crazy-factory.ee, DNS:*.crazyfactory.it, DNS:*.crazy-factory.fr, DNS:crazy-factory.es, DNS:crazy-factory.eu, DNS:*.crazyfactory.info, DNS:crazyfactory.kr, DNS:*.crazy-factory.nl, DNS:*.crazy-factory.no, DNS:crazy-factory.nl, DNS:crazyfactory.ch, DNS:crazy-factory.no, DNS:crazyfactory.asia, DNS:crazyfactory.cz, DNS:*.crazy-factory.es, DNS:*.crazy-factory.eu, DNS:*.crazyfactory.be, DNS:*.crazyfactory.jp, DNS:crazy-factory.fr, DNS:crazyfactory.de, DNS:crazyfactory.lt, DNS:crazyfactory.dk, DNS:crazyfactory.lv, DNS:*.crazy-factory.ee, DNS:crazyfactory.info, DNS:*.crazyfactory.at, DNS:*.crazyfactory.asia, DNS:*.crazyfactory.kr, DNS:crazy-factory.biz, DNS:crazy-factory.kr, DNS:crazy-factory.ch, DNS:*.crazyfactory.ch, DNS:crazyfactory.ee, DNS:*.crazyfactory.biz, DNS:*.crazy-factory.pt, DNS:crazy-factory.cz, DNS:*.crazy-factory.pl, DNS:*.crazyfactory.lt, DNS:crazyfactory.eu, DNS:*.crazyfactory.dk, DNS:*.crazy-factory.net, DNS:*.crazyfactory.lv, DNS:crazyfactory.biz, DNS:crazyfactory.my, DNS:crazy-factory.dk, DNS:crazyfactory.es, DNS:crazy-factory.lv, DNS:crazy-factory.lt, DNS:*.crazyfactory.cz, DNS:crazy-factory.org, DNS:crazyfactory.nl, DNS:*.crazy-factory.gr", "is_valid": true, "CA": "Amazon", "updated_at": "2025/11/27 09:00:00", "expires_at": "2026/12/27 08:59:59", "today": "2026/01/01 08:13:04", "UTC": { "updated_at": "2025-11-27T00:00:00Z", "expires_at": "2026-12-26T23:59:59Z", "today": "2025-12-31T23:13:04Z" }, "remaining_days": 360 }
#
OCSP response of
crazy-factory.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.crazyfactory.de i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 27 00:00:00 2025 GMT; NotAfter: Dec 26 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIM5TCCC82gAwIBAgIQA3RkKfgWvyxu6+1rnUC7STANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTEyNzAwMDAwMFoXDTI2MTIyNjIzNTk1OVowHDEa MBgGA1UEAwwRKi5jcmF6eWZhY3RvcnkuZGUwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQD2SK2IUHXVOObJwor2RmHYxIkPxHhomC2ep43YrOAqNGKNftre FOjN++32VNJsbi2cidlsPKsxf50hY5skqmJlf6Velc5dJpINWuda5npQj4GIZXfF aIicq3L6rWbtXbqFokKYMae/JXYyvTm5qvdd0yCTOROd6jVh+KMeLoP9n5ICFNnk 4SpVJJ/0BQlBYMtYODwccuVj7YUAsCZRO9g9qlzWRhEJjsOahNlbyQWR6ru0wErE 3pp37AfeUkpk6D58blRko16A7Gnc7oBS4FSDVvzElZIFJvFLXfLRvH2pq1oHdO2r DvYAX2Oh6QnnqEUl2LlN8yEm3QuC/DFsFEPjAgMBAAGjggoBMIIJ/TAfBgNVHSME GDAWgBQfUpJhVoJUf4Fm2B09CqoyXIfdCDAdBgNVHQ4EFgQUArN2ddlc5hrBEHl7 kPGDi54+UqAwggc7BgNVHREEggcyMIIHLoIRKi5jcmF6eWZhY3RvcnkuZGWCD2Ny YXp5ZmFjdG9yeS5mcoIRKi5jcmF6eWZhY3RvcnkubXmCESouY3JhenlmYWN0b3J5 LmVzghEqLmNyYXp5ZmFjdG9yeS5lZYIQY3JhenktZmFjdG9yeS5pdIIQY3Jhenkt ZmFjdG9yeS5pc4IQY3JhenktZmFjdG9yeS5hdIISKi5jcmF6eS1mYWN0b3J5Lmpw ghJjcmF6eS1mYWN0b3J5LmFzaWGCEiouY3JhenktZmFjdG9yeS5iZYIQY3Jhenkt ZmFjdG9yeS5iZYIRKi5jcmF6eWZhY3RvcnkuZnKCEGNyYXp5LWZhY3RvcnkuanCC D2NyYXp5ZmFjdG9yeS5ncoISKi5jcmF6eS1mYWN0b3J5LmF0ghQqLmNyYXp5LWZh Y3RvcnkuYXNpYYIUKi5jcmF6eS1mYWN0b3J5LmluZm+CD2NyYXp5ZmFjdG9yeS5w bIIRKi5jcmF6eWZhY3RvcnkubmyCEiouY3JhenktZmFjdG9yeS5pc4ISKi5jcmF6 eS1mYWN0b3J5Lml0ghJjcmF6eS1mYWN0b3J5LmluZm+CESouY3JhenlmYWN0b3J5 LmV1gg9jcmF6eWZhY3RvcnkucHSCESouY3JhenlmYWN0b3J5LmdyghBjcmF6eS1m YWN0b3J5LmdyghFjcmF6eS1mYWN0b3J5Lm5ldIISKi5jcmF6eS1mYWN0b3J5LmRr ghIqLmNyYXp5LWZhY3RvcnkubHSCEiouY3JhenktZmFjdG9yeS5sdoIPY3Jhenlm YWN0b3J5LmlzghMqLmNyYXp5LWZhY3Rvcnkub3JnghBjcmF6eS1mYWN0b3J5LnBs ghIqLmNyYXp5LWZhY3RvcnkuY3qCD2NyYXp5ZmFjdG9yeS5pdIIQY3JhenktZmFj dG9yeS5wdIIRKi5jcmF6eWZhY3RvcnkucHSCD2NyYXp5ZmFjdG9yeS5hdIISKi5j cmF6eS1mYWN0b3J5LmNoghIqLmNyYXp5LWZhY3Rvcnkua3KCEyouY3JhenktZmFj dG9yeS5iaXqCESouY3JhenlmYWN0b3J5LnBsgg9jcmF6eWZhY3RvcnkuYmWCD2Ny YXp5ZmFjdG9yeS5qcIIRKi5jcmF6eWZhY3RvcnkuaXOCEGNyYXp5LWZhY3Rvcnku ZWWCESouY3JhenlmYWN0b3J5Lml0ghIqLmNyYXp5LWZhY3RvcnkuZnKCEGNyYXp5 LWZhY3RvcnkuZXOCEGNyYXp5LWZhY3RvcnkuZXWCEyouY3JhenlmYWN0b3J5Lmlu Zm+CD2NyYXp5ZmFjdG9yeS5rcoISKi5jcmF6eS1mYWN0b3J5Lm5sghIqLmNyYXp5 LWZhY3Rvcnkubm+CEGNyYXp5LWZhY3RvcnkubmyCD2NyYXp5ZmFjdG9yeS5jaIIQ Y3JhenktZmFjdG9yeS5ub4IRY3JhenlmYWN0b3J5LmFzaWGCD2NyYXp5ZmFjdG9y eS5jeoISKi5jcmF6eS1mYWN0b3J5LmVzghIqLmNyYXp5LWZhY3RvcnkuZXWCESou Y3JhenlmYWN0b3J5LmJlghEqLmNyYXp5ZmFjdG9yeS5qcIIQY3JhenktZmFjdG9y eS5mcoIPY3JhenlmYWN0b3J5LmRlgg9jcmF6eWZhY3RvcnkubHSCD2NyYXp5ZmFj dG9yeS5ka4IPY3JhenlmYWN0b3J5Lmx2ghIqLmNyYXp5LWZhY3RvcnkuZWWCEWNy YXp5ZmFjdG9yeS5pbmZvghEqLmNyYXp5ZmFjdG9yeS5hdIITKi5jcmF6eWZhY3Rv cnkuYXNpYYIRKi5jcmF6eWZhY3Rvcnkua3KCEWNyYXp5LWZhY3RvcnkuYml6ghBj cmF6eS1mYWN0b3J5LmtyghBjcmF6eS1mYWN0b3J5LmNoghEqLmNyYXp5ZmFjdG9y eS5jaIIPY3JhenlmYWN0b3J5LmVlghIqLmNyYXp5ZmFjdG9yeS5iaXqCEiouY3Jh enktZmFjdG9yeS5wdIIQY3JhenktZmFjdG9yeS5jeoISKi5jcmF6eS1mYWN0b3J5 LnBsghEqLmNyYXp5ZmFjdG9yeS5sdIIPY3JhenlmYWN0b3J5LmV1ghEqLmNyYXp5 ZmFjdG9yeS5ka4ITKi5jcmF6eS1mYWN0b3J5Lm5ldIIRKi5jcmF6eWZhY3Rvcnku bHaCEGNyYXp5ZmFjdG9yeS5iaXqCD2NyYXp5ZmFjdG9yeS5teYIQY3JhenktZmFj dG9yeS5ka4IPY3JhenlmYWN0b3J5LmVzghBjcmF6eS1mYWN0b3J5Lmx2ghBjcmF6 eS1mYWN0b3J5Lmx0ghEqLmNyYXp5ZmFjdG9yeS5jeoIRY3JhenktZmFjdG9yeS5v cmeCD2NyYXp5ZmFjdG9yeS5ubIISKi5jcmF6eS1mYWN0b3J5LmdyMBMGA1UdIAQM MAowCAYGZ4EMAQIBMA4GA1UdDwEB/wQEAwIFoDATBgNVHSUEDDAKBggrBgEFBQcD ATA7BgNVHR8ENDAyMDCgLqAshipodHRwOi8vY3JsLnIybTA0LmFtYXpvbnRydXN0 LmNvbS9yMm0wNC5jcmwwdQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFodHRw Oi8vb2NzcC5yMm0wNC5hbWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0dHA6 Ly9jcnQucjJtMDQuYW1hem9udHJ1c3QuY29tL3IybTA0LmNlcjAMBgNVHRMBAf8E AjAAMIIBfgYKKwYBBAHWeQIEAgSCAW4EggFqAWgAdgDYCVU7lE96/8gWGW+UT4Wr sPj8XodVJg8V0S5yu0VLFAAAAZrCrXreAAAEAwBHMEUCIFywTKnVo9ZfMaZfH5aQ +EdA/XqQoU8rfBSEOhOBzydrAiEAq7p4Syyd8j2s1B0o6fJ9XPA7eK9Fl0PD0LtF M9mIzqoAdQDIo8R/x7OtuTVrAT9qehJt4zpOQ6XGRvmXrTl1mR3PmgAAAZrCrXrz AAAEAwBGMEQCIHDjrph28/SV31k05vj1Kai6JWIIVN1DnwGL6MjbITc7AiAicUaV d24mcCI91SuFkSPV4PNJYjJhq/3SzHrpXTzpdwB3AMIxfldFGaNF7n843rKQQevH wiFaIr9/1bWtdprZDlLNAAABmsKteuAAAAQDAEgwRgIhAMNm6+MUNyq/dySg8rCu gBCadumWzZbUyXx0jGGWA/f1AiEAowYOj2TRS2TUC6TEStkDU8fJts5okJnuLr0M +6zZ+ZgwDQYJKoZIhvcNAQELBQADggEBAFub9uObIf5U3VJ3ahb635p2OG8opT4i GoSMIednkn4mfBMwelPeZ7rKdVKjH9T9Ke/lDnmmwB47cYUzFK4wW9VC9gT5FB2Z TxUbEuDFfMtIAmIEQ08wJrJP/LHEGrvbUWAQT0RRhsUDDNP36/pAcZy6J7UA6dAz 07fMQk3Wttn/S/wcrNz0VZtZ6WFO4GZBDDLXLAQBeIWI3ea0fqBBpV4EKwbcFV8F 8qqhcQD+jIJVvAREV60mHsW4JdmK7h5cBq/DCXxTPDdjD1dS3by2PUdNS16+r8L3 VyIeBSJTRudZFf2JDS9njhUy4iaiTRW+B00eUl0Wi60l1KqN0JWiYpg= -----END CERTIFICATE----- subject=CN = *.crazyfactory.de issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 6277 bytes and written 453 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 0090C8588113CEA7B5704CD3E287F3DB532AF06CBF43A594BEB40049C2ADB0C3 Session-ID-ctx: Master-Key: 070D026F2ADF4A625696DA70CC040CEF765B8DEC08A209896B44BBF861206F563883D752F1B447653460F55A56E39B40 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 57434 (seconds) TLS session ticket: 0000 - 01 6c 9b fa d4 4b 8e ca-2d b3 ee 0f 0b fe ed 36 .l...K..-......6 0010 - be 3e 2d 66 a7 12 fa a5-cc e5 fd bc 89 e0 b4 27 .>-f...........' 0020 - 1d c9 f5 6b 9c 72 9d f8-1f e7 cf d0 76 3e 9e 5f ...k.r......v>._ 0030 - 15 d6 3a 5b 22 62 9a 5e-eb 52 56 7d 0c 7b 1a 58 ..:["b.^.RV}.{.X 0040 - 34 40 c5 2c 80 2f 96 f1-51 4b 55 db 11 4a 5d 26 4@.,./..QKU..J]& 0050 - 1b f6 df 76 68 e5 42 16-7b fa c6 57 9a 3e 0d 44 ...vh.B.{..W.>.D 0060 - 8f 05 21 28 10 d0 84 5b-07 0c b6 11 ee 6c c4 b8 ..!(...[.....l.. 0070 - b9 90 cb 52 2e dd b2 70-f1 8f 90 6c 06 16 b0 d0 ...R...p...l.... 0080 - ed 3b a7 1e 63 ca d4 1e-57 39 .;..c...W9 Start Time: 1767222787 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
crazy-factory.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.