Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://desede.de
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=desede.de
And you can
check your domain name
.
#
Certificate of
desede.de
{ "serial": "75660275AB206C5F13582C2EA0598FEB", "OCSP_serial": "75660275AB206C5F13582C2EA0598FEB", "OCSP_cert_status": "good", "OCSP_this_update": "Dec 28 23:48:47 2025 GMT", "OCSP_next_update": "Jan 4 22:48:46 2026 GMT", "domainName": "desede.de", "port": 443, "subjectAltName": "DNS:desede.de", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/11/24 01:43:10", "expires_at": "2026/02/22 02:43:08", "today": "2026/01/01 08:09:59", "UTC": { "updated_at": "2025-11-23T16:43:10Z", "expires_at": "2026-02-21T17:43:08Z", "today": "2025-12-31T23:09:59Z" }, "remaining_days": 51 }
#
OCSP response of
desede.de
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Dec 28 23:48:47 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 75660275AB206C5F13582C2EA0598FEB Cert Status: good This Update: Dec 28 23:48:47 2025 GMT Next Update: Jan 4 22:48:46 2026 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:45:02:21:00:83:6b:23:ae:8d:6f:27:6c:17:27:26:71:30: b5:a3:44:14:07:ce:49:aa:40:a3:34:6d:b1:ca:77:77:1c:a5: 2f:02:20:68:da:cd:5d:dc:32:6c:e6:e6:f2:04:22:10:9a:e8: 17:d7:f3:6c:55:7a:d8:30:96:f5:18:63:12:42:f5:31:bf ====================================== --- Certificate chain 0 s:CN = desede.de i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Nov 23 16:43:10 2025 GMT; NotAfter: Feb 21 17:43:08 2026 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDkTCCAzigAwIBAgIQdWYCdasgbF8TWCwuoFmP6zAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjUxMTIzMTY0MzEwWhcNMjYwMjIxMTc0MzA4WjAUMRIwEAYD VQQDEwlkZXNlZGUuZGUwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAARpXyzBX9p+ zUDRFWNiEPjmgxbSwRMdxqyjVpIrSaFciF0Kf5VdhYZw91eKssen1NHRswiCJ97e jRYCn3v1hsXFo4ICQzCCAj8wDgYDVR0PAQH/BAQDAgeAMBMGA1UdJQQMMAoGCCsG AQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFKcj6bf727/o/EBX/w/rSlok R/D0MB8GA1UdIwQYMBaAFJB3kjVnxP+ozKnme9mAeXvMk/k4MF4GCCsGAQUFBwEB BFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93ZTEvZFdZMCUG CCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93ZTEuY3J0MBQGA1UdEQQNMAuC CWRlc2VkZS5kZTATBgNVHSAEDDAKMAgGBmeBDAECATA2BgNVHR8ELzAtMCugKaAn hiVodHRwOi8vYy5wa2kuZ29vZy93ZTEvblhyTjltZVZXb2suY3JsMIIBBQYKKwYB BAHWeQIEAgSB9gSB8wDxAHcADleUvPOuqT4zGyyZB7P3kN+bwj1xMiXdIaklrGHF TiEAAAGasdAC1AAABAMASDBGAiEA7bW8zuUaRCjJrii+NMvqIxQac3PzFUZ0WAaM +FKFu5UCIQD9W4xiKety0JRbz75iyz6nv443rHJzzAY+R4TZylUeSwB2ANFuqaVo B35mNaA/N6XdvAOlPEESFNSIGPXpMbMjy5UEAAABmrHQA7UAAAQDAEcwRQIgVLXI uV4Y/94LIkDKEeR+b4zBLwZuWgc7cVXy/gCQadICIQDikLF7NHezRuxvDe7rZKBg 4wWhG6n2AP96Qr9dXHoLRDAKBggqhkjOPQQDAgNHADBEAiArNiQq2gk4qS8PrAyw fJbLyYTv4N2wi9MHICHZAjcqUAIgE3qbI3upzpmz9NYnRiVaS5EtHl0CQeMySGmS izcUsu8= -----END CERTIFICATE----- subject=CN = desede.de issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3091 bytes and written 400 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
desede.de
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.