Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://croud.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=croud.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=croud.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=croud.jp
And you can
check your domain name
.
#
Certificate of
croud.jp
{ "serial": "F91C3290C99D6ED60D6E1CA0493A9A24", "OCSP_serial": "F91C3290C99D6ED60D6E1CA0493A9A24", "OCSP_cert_status": "good", "OCSP_this_update": "Mar 31 20:08:38 2026 GMT", "OCSP_next_update": "Apr 7 19:08:37 2026 GMT", "domainName": "croud.jp", "port": 443, "subjectAltName": "DNS:croud.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2026/02/19 19:17:21", "expires_at": "2026/05/20 20:17:15", "today": "2026/04/01 10:31:36", "UTC": { "updated_at": "2026-02-19T10:17:21Z", "expires_at": "2026-05-20T11:17:15Z", "today": "2026-04-01T01:31:36Z" }, "remaining_days": 49 }
#
OCSP response of
croud.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Mar 31 20:08:38 2026 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: F91C3290C99D6ED60D6E1CA0493A9A24 Cert Status: good This Update: Mar 31 20:08:38 2026 GMT Next Update: Apr 7 19:08:37 2026 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:46:02:21:00:c7:04:24:9b:e8:d8:78:0f:0f:87:58:b0:24: 57:5f:44:b7:41:08:7f:99:dc:e6:e4:d0:d3:2c:82:46:11:ce: ba:02:21:00:e7:80:20:29:10:17:f7:82:e8:d4:c9:fb:4d:7c: 85:12:da:a6:af:66:28:fd:6b:d8:43:e5:3b:4f:60:8e:8d:2f ====================================== --- Certificate chain 0 s:CN = croud.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Feb 19 10:17:21 2026 GMT; NotAfter: May 20 11:17:15 2026 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDkDCCAzagAwIBAgIRAPkcMpDJnW7WDW4coEk6miQwCgYIKoZIzj0EAwIwOzEL MAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEMMAoG A1UEAxMDV0UxMB4XDTI2MDIxOTEwMTcyMVoXDTI2MDUyMDExMTcxNVowEzERMA8G A1UEAxMIY3JvdWQuanAwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAATUUABNlHu4 FKG6JnBwe/CKKvEzwLm5jPvELx7POsma/6v7wJQVHC1Gv/TEVEJRd1FX2tkn5/M4 JcQi51j8g0jFo4ICQTCCAj0wDgYDVR0PAQH/BAQDAgeAMBMGA1UdJQQMMAoGCCsG AQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFFJaiKAnS1v30/Mg3ZWpW5d3 KC9pMB8GA1UdIwQYMBaAFJB3kjVnxP+ozKnme9mAeXvMk/k4MF4GCCsGAQUFBwEB BFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93ZTEvLVJ3MCUG CCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93ZTEuY3J0MBMGA1UdEQQMMAqC CGNyb3VkLmpwMBMGA1UdIAQMMAowCAYGZ4EMAQIBMDYGA1UdHwQvMC0wK6ApoCeG JWh0dHA6Ly9jLnBraS5nb29nL3dlMS92cE1WQ0NSOHBHVS5jcmwwggEEBgorBgEE AdZ5AgQCBIH1BIHyAPAAdgCWl2S/VViXrfdDh2g3CEJ36fA61fak8zZuRqQ/D8qp xgAAAZx1nmnkAAAEAwBHMEUCIQD0q5bLyO2upMl2SApylkGadyYsvxBUi1O7cwBD z6beNAIgMgHgEWgn+cDtYA4Std9kSeBdSIkRy+Qd5pvxsjnTET8AdgBJnJtp3h18 7Pw23s2HZKa4W68Kh4AZ0VVS++nrKd34wwAAAZx1nmnEAAAEAwBHMEUCIQC2Yex0 e3Q22H61aRbP7a8z2yW+PwIT4c1xqaYZp87PZwIgQ3m259nQWfz8BO0vmW+IOZKV IJO9u5M3FX2NmKecR48wCgYIKoZIzj0EAwIDSAAwRQIhAPKgxMakzMsGxEMePd5M TXjr+SyZ3cO/wHzr6u4r3EyaAiB5HdfbKuSyXdxzHGBM85PLb5nrdP1Csz0U2TQ6 VGLEdA== -----END CERTIFICATE----- subject=CN = croud.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3093 bytes and written 399 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
croud.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.