Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://croud.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=croud.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=croud.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=croud.jp
And you can
check your domain name
.
#
Certificate of
croud.jp
{ "serial": "28E232ECD970A9B7115C42E597D5BC8D", "OCSP_serial": "28E232ECD970A9B7115C42E597D5BC8D", "OCSP_cert_status": "good", "OCSP_this_update": "Nov 19 07:51:17 2024 GMT", "OCSP_next_update": "Nov 26 06:51:16 2024 GMT", "domainName": "croud.jp", "port": 443, "subjectAltName": "DNS:croud.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2024/11/04 13:29:24", "expires_at": "2025/02/02 13:29:23", "today": "2024/11/21 15:24:36", "UTC": { "updated_at": "2024-11-04T04:29:24Z", "expires_at": "2025-02-02T04:29:23Z", "today": "2024-11-21T06:24:36Z" }, "remaining_days": 72 }
#
OCSP response of
croud.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Nov 19 07:51:17 2024 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 28E232ECD970A9B7115C42E597D5BC8D Cert Status: good This Update: Nov 19 07:51:17 2024 GMT Next Update: Nov 26 06:51:16 2024 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:45:02:20:61:ad:18:9e:01:fc:2a:43:34:c3:8a:02:c0:d9: 93:0d:40:73:4c:9c:4e:10:9a:75:60:0d:50:92:8d:da:bc:ae: 02:21:00:a2:98:fb:95:08:db:aa:36:f8:a4:dc:1c:94:f0:6f: e9:ce:90:af:7f:6f:2f:8e:cb:69:fe:26:e9:b1:31:99:23 ====================================== --- Certificate chain 0 s:CN = croud.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Nov 4 04:29:24 2024 GMT; NotAfter: Feb 2 04:29:23 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDkTCCAzagAwIBAgIQKOIy7NlwqbcRXELll9W8jTAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjQxMTA0MDQyOTI0WhcNMjUwMjAyMDQyOTIzWjATMREwDwYD VQQDEwhjcm91ZC5qcDBZMBMGByqGSM49AgEGCCqGSM49AwEHA0IABGjF9MjI0Bv/ 6fVBaWeLhf04rH+HDZ7H98NHT7rLo8BO0Gs43zkyUXAFok3AdCvRizGRsHpEZcC0 wo8JZ8I1VZOjggJCMIICPjAOBgNVHQ8BAf8EBAMCB4AwEwYDVR0lBAwwCgYIKwYB BQUHAwEwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUrShCb0Hx8P7TU51oL/h3f22U RBwwHwYDVR0jBBgwFoAUkHeSNWfE/6jMqeZ72YB5e8yT+TgwXgYIKwYBBQUHAQEE UjBQMCcGCCsGAQUFBzABhhtodHRwOi8vby5wa2kuZ29vZy9zL3dlMS9LT0kwJQYI KwYBBQUHMAKGGWh0dHA6Ly9pLnBraS5nb29nL3dlMS5jcnQwEwYDVR0RBAwwCoII Y3JvdWQuanAwEwYDVR0gBAwwCjAIBgZngQwBAgEwNgYDVR0fBC8wLTAroCmgJ4Yl aHR0cDovL2MucGtpLmdvb2cvd2UxL3RiOHJvWk5yWjQwLmNybDCCAQUGCisGAQQB 1nkCBAIEgfYEgfMA8QB2AE51oydcmhDDOFts1N8/Uusd8OCOG41pwLH6ZLFimjnf AAABkvWmO+IAAAQDAEcwRQIgDf39e8ScO3uvGJ8aavo3XYvIuPh2x421s1AANXDB vBQCIQCL1/1sxikTi07bWUg0taxC14OnTojzTczv5ldpHAfvmwB3AObSMWNAd4zB EEEG13G5zsHSQPaWhIb7uocyHf0eN45QAAABkvWmP+cAAAQDAEgwRgIhAKtA5eTO w+KNpJfBmvU3sDfdDXNFH81431P1QPpgf241AiEA57j0FW9VKm0W56fTgQG9w1/+ KhwPC8URMshflWpi9vMwCgYIKoZIzj0EAwIDSQAwRgIhAPt/AkU2opkdrhLVLJyc yHOwuNrNAengAJ6Ehyw1R9CGAiEAgzJeOHFk0gbS2SffDaNM6NWHpESBjdFEsNBP LEqUKVs= -----END CERTIFICATE----- subject=CN = croud.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3092 bytes and written 399 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
croud.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.