Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://desede.de
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=desede.de
And you can
check your domain name
.
#
Certificate of
desede.de
{ "serial": "65019F6DC3EA37361335984AE61E693A", "OCSP_serial": "65019F6DC3EA37361335984AE61E693A", "OCSP_cert_status": "good", "OCSP_this_update": "Jul 9 19:27:24 2025 GMT", "OCSP_next_update": "Jul 16 18:27:23 2025 GMT", "domainName": "desede.de", "port": 443, "subjectAltName": "DNS:desede.de", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/05/30 21:38:49", "expires_at": "2025/08/28 22:38:46", "today": "2025/07/13 11:13:36", "UTC": { "updated_at": "2025-05-30T12:38:49Z", "expires_at": "2025-08-28T13:38:46Z", "today": "2025-07-13T02:13:36Z" }, "remaining_days": 46 }
#
OCSP response of
desede.de
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Jul 9 19:27:24 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 65019F6DC3EA37361335984AE61E693A Cert Status: good This Update: Jul 9 19:27:24 2025 GMT Next Update: Jul 16 18:27:23 2025 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:44:02:20:17:a8:ec:bd:34:b1:a1:34:7e:98:10:52:15:33: 15:61:94:e0:74:5b:c3:a2:3d:24:27:9e:0c:27:ce:41:19:d2: 02:20:38:ac:cd:37:82:1f:a8:34:68:55:c0:e8:e1:52:d8:92: eb:b1:97:39:ff:ba:e5:a0:92:91:c6:30:ac:c0:e3:a4 ====================================== --- Certificate chain 0 s:CN = desede.de i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: May 30 12:38:49 2025 GMT; NotAfter: Aug 28 13:38:46 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDkDCCAzagAwIBAgIQZQGfbcPqNzYTNZhK5h5pOjAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjUwNTMwMTIzODQ5WhcNMjUwODI4MTMzODQ2WjAUMRIwEAYD VQQDEwlkZXNlZGUuZGUwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAAQ0EKOsczmc 6SPd/leIuiy4l9B1HsCs4yTHtmD7DpMnVL21yn6b/GIZq19i7uN/6wZOc573G0Nc HD8crZH/NxsEo4ICQTCCAj0wDgYDVR0PAQH/BAQDAgeAMBMGA1UdJQQMMAoGCCsG AQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFPv94nPTvOfGsAvoqfLaiTtI sZZTMB8GA1UdIwQYMBaAFJB3kjVnxP+ozKnme9mAeXvMk/k4MF4GCCsGAQUFBwEB BFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93ZTEvWlFFMCUG CCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93ZTEuY3J0MBQGA1UdEQQNMAuC CWRlc2VkZS5kZTATBgNVHSAEDDAKMAgGBmeBDAECATA2BgNVHR8ELzAtMCugKaAn hiVodHRwOi8vYy5wa2kuZ29vZy93ZTEvUW9xRnoxejBiV0EuY3JsMIIBAwYKKwYB BAHWeQIEAgSB9ASB8QDvAHUA3dzKNJXX4RYF55Uy+sef+D0cUN/bADoUEnYKLKy7 yCoAAAGXIWqvrAAABAMARjBEAiBySNYz2jJ0gm9QeQssrxbQfkuwTrwx8hQ5r34R vyUBXQIgWgBPvpmtaqANOIpb+qhsiy5D0GOLgVtZgX24QBzS5AIAdgAN4fIwK9MN wUBiEgnqVS78R3R8sdfpMO8OQh60fk6qNAAAAZcharNzAAAEAwBHMEUCIEozIWSN xZxZ/c965SQvNK6wXPNsscC7enPg0gzeKzcDAiEA3tX/YXfUiaLEd4tQ9CCiQb68 YSdlDBo4w2chPSeGA6wwCgYIKoZIzj0EAwIDSAAwRQIgFwmop+XD3cd5do37rru3 8BGvgClJv0CbZlbNefotHxgCIQCM6Kmos6tfLi93W0eR0xpPPwEgUplyu7YDroXu qCElyQ== -----END CERTIFICATE----- subject=CN = desede.de issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3090 bytes and written 400 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
desede.de
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.