Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://desede.de
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=desede.de
And you can
check your domain name
.
#
Certificate of
desede.de
{ "serial": "A1B2118C4815A23C0ECC6388E0F27C8B", "OCSP_serial": "A1B2118C4815A23C0ECC6388E0F27C8B", "OCSP_cert_status": "good", "OCSP_this_update": "Mar 26 21:22:30 2026 GMT", "OCSP_next_update": "Apr 2 20:22:29 2026 GMT", "domainName": "desede.de", "port": 443, "subjectAltName": "DNS:desede.de", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2026/03/22 04:51:55", "expires_at": "2026/06/20 05:51:47", "today": "2026/04/01 11:56:21", "UTC": { "updated_at": "2026-03-21T19:51:55Z", "expires_at": "2026-06-19T20:51:47Z", "today": "2026-04-01T02:56:21Z" }, "remaining_days": 79 }
#
OCSP response of
desede.de
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Mar 26 21:22:30 2026 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: A1B2118C4815A23C0ECC6388E0F27C8B Cert Status: good This Update: Mar 26 21:22:30 2026 GMT Next Update: Apr 2 20:22:29 2026 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:45:02:21:00:a4:01:2f:96:60:60:68:a2:68:dc:ef:57:7d: 00:a9:ff:3b:01:21:03:7d:36:1c:b1:c9:6d:46:81:d2:57:82: 59:02:20:14:6a:7b:16:72:ae:a6:bf:b4:61:ef:f3:5f:27:a7: f9:7f:fe:4f:7f:0a:17:a8:61:f7:45:6d:ca:f9:40:17:23 ====================================== --- Certificate chain 0 s:CN = desede.de i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Mar 21 19:51:55 2026 GMT; NotAfter: Jun 19 20:51:47 2026 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDkjCCAzmgAwIBAgIRAKGyEYxIFaI8DsxjiODyfIswCgYIKoZIzj0EAwIwOzEL MAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEMMAoG A1UEAxMDV0UxMB4XDTI2MDMyMTE5NTE1NVoXDTI2MDYxOTIwNTE0N1owFDESMBAG A1UEAxMJZGVzZWRlLmRlMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAECkMDc/e0 dBa7aqO8xzLv/OPonbKuHyBafkj8FaKWQWC7JQCICawO0IB2Wn9Ht59nTFShZqfZ 7rbNopmGbN5Qq6OCAkMwggI/MA4GA1UdDwEB/wQEAwIHgDATBgNVHSUEDDAKBggr BgEFBQcDATAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBSPCF6WXp5r5FBJw22xmCFD 5/+InDAfBgNVHSMEGDAWgBSQd5I1Z8T/qMyp5nvZgHl7zJP5ODBeBggrBgEFBQcB AQRSMFAwJwYIKwYBBQUHMAGGG2h0dHA6Ly9vLnBraS5nb29nL3Mvd2UxL29iSTAl BggrBgEFBQcwAoYZaHR0cDovL2kucGtpLmdvb2cvd2UxLmNydDAUBgNVHREEDTAL gglkZXNlZGUuZGUwEwYDVR0gBAwwCjAIBgZngQwBAgEwNgYDVR0fBC8wLTAroCmg J4YlaHR0cDovL2MucGtpLmdvb2cvd2UxLzZYczRpZFhxMzVVLmNybDCCAQUGCisG AQQB1nkCBAIEgfYEgfMA8QB2ABaDLavwqSUPD/A6pUX/yL/II9CHS/YEKSf45x8z E/X6AAABnRIrOisAAAQDAEcwRQIhAOoGJKJTFXh8658sGmMwo2lBn2M7KhHplBVx 6ewiiV0sAiADpj2P7AJglna/KRT6w6tSqHFd0x/Tii/DBdwLxDbfgQB3AA5XlLzz rqk+MxssmQez95Dfm8I9cTIl3SGpJaxhxU4hAAABnRIrOikAAAQDAEgwRgIhAPwX rS4JWEV28UJlSYjSKgt08WDZYzknFBtxyjM3VWvcAiEAvjkHp3GuPOpZ34aT0sf1 +54n9uKwDlWMWdbamuysxSgwCgYIKoZIzj0EAwIDRwAwRAIgW6Or94eQyQv3jzAf euzMaxYtrFezzu3+7cbUoAiZjPsCIGMN4xRrCWhKUvHuLfKkq6R1X1hUH21+xNEe T/K6LTjJ -----END CERTIFICATE----- subject=CN = desede.de issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3093 bytes and written 400 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
desede.de
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.