Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://desede.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=desede.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=desede.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=desede.jp
And you can
check your domain name
.
#
Certificate of
desede.jp
{ "serial": "6D7CF2FA4DAE41750DD34710F5776063", "OCSP_serial": "6D7CF2FA4DAE41750DD34710F5776063", "OCSP_cert_status": "good", "OCSP_this_update": "Nov 1 20:27:55 2025 GMT", "OCSP_next_update": "Nov 8 19:27:54 2025 GMT", "domainName": "desede.jp", "port": 443, "subjectAltName": "DNS:desede.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/09/25 23:23:18", "expires_at": "2025/12/25 00:23:01", "today": "2025/11/03 06:45:12", "UTC": { "updated_at": "2025-09-25T14:23:18Z", "expires_at": "2025-12-24T15:23:01Z", "today": "2025-11-02T21:45:12Z" }, "remaining_days": 51 }
#
OCSP response of
desede.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Nov 1 20:27:55 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 6D7CF2FA4DAE41750DD34710F5776063 Cert Status: good This Update: Nov 1 20:27:55 2025 GMT Next Update: Nov 8 19:27:54 2025 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:45:02:21:00:85:6c:98:8e:e3:de:11:e7:46:c6:d6:36:71: 18:67:47:6a:d8:50:a4:c0:49:ff:68:55:f6:9d:05:f1:f8:2f: 83:02:20:09:d3:e0:59:8f:a5:98:d7:42:2c:44:c5:58:b6:cc: b5:ee:89:35:47:94:50:2b:64:87:7c:67:b3:08:94:aa:45 ====================================== --- Certificate chain 0 s:CN = desede.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Sep 25 14:23:18 2025 GMT; NotAfter: Dec 24 15:23:01 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDkzCCAzigAwIBAgIQbXzy+k2uQXUN00cQ9XdgYzAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjUwOTI1MTQyMzE4WhcNMjUxMjI0MTUyMzAxWjAUMRIwEAYD VQQDEwlkZXNlZGUuanAwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAASYMDKuS7Pg /NgAA/oK6WooHoS9M+4gmtQAsfzKRiFQ4tHt+SDqVbBAQFd8kbj0mR1OgWoVB9Bf b00gWQjSSDNBo4ICQzCCAj8wDgYDVR0PAQH/BAQDAgeAMBMGA1UdJQQMMAoGCCsG AQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFKLDQ0oa6fvgpHmtXdoyHNlb saHaMB8GA1UdIwQYMBaAFJB3kjVnxP+ozKnme9mAeXvMk/k4MF4GCCsGAQUFBwEB BFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93ZTEvYlh3MCUG CCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93ZTEuY3J0MBQGA1UdEQQNMAuC CWRlc2VkZS5qcDATBgNVHSAEDDAKMAgGBmeBDAECATA2BgNVHR8ELzAtMCugKaAn hiVodHRwOi8vYy5wa2kuZ29vZy93ZTEvczc3Z3FDMDJXZ28uY3JsMIIBBQYKKwYB BAHWeQIEAgSB9gSB8wDxAHcAEvFONL1TckyEBhnDjz96E/jntWKHiJxtMAWE6+WG JjoAAAGZgXjBKQAABAMASDBGAiEA6xJt+fnNM7+z9wQwOMBcKsorNwgFsdKOK3j2 uV4veCwCIQD01EPkEdHgkI9Epj+r1oKvS7fOhrsMzmJgdZtljaZNvAB2AMz7D2qF cQll/pWbU87psnwi6YVcDZeNtql+VMD+TA2wAAABmYF4wW8AAAQDAEcwRQIhANUx 4ofaM77cU/lJrLA+zj6+jpmIGRgk4rAlNzb88VO2AiAHseZDvvu9X+5TMZuf3Tel 7H7ngJ2n93kvg/pWo1SjOzAKBggqhkjOPQQDAgNJADBGAiEAvTh3ogrH4KAI+UY8 PGVh1hHquaor/vobcQHP66XxGvQCIQCy9Tl95eX+IdD8b4kcuwy0ZamNDknwREMk 31FqzyZitw== -----END CERTIFICATE----- subject=CN = desede.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3093 bytes and written 400 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
desede.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.