Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://hr.clabel.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=hr.clabel.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=hr.clabel.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=hr.clabel.jp
And you can
check your domain name
.
#
Certificate of
hr.clabel.jp
{ "serial": "3D0AD8367F19C895094A5638A3A1A216", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "hr.clabel.jp", "port": 443, "subjectAltName": "DNS:hr.clabel.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2024/11/07 14:30:27", "expires_at": "2025/02/05 15:23:00", "today": "2024/11/21 15:57:20", "UTC": { "updated_at": "2024-11-07T05:30:27Z", "expires_at": "2025-02-05T06:23:00Z", "today": "2024-11-21T06:57:20Z" }, "remaining_days": 75 }
#
OCSP response of
hr.clabel.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = hr.clabel.jp i:C = US, O = Google Trust Services, CN = WR3 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 7 05:30:27 2024 GMT; NotAfter: Feb 5 06:23:00 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WR3 i:C = US, O = Google Trust Services LLC, CN = GTS Root R1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R1 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: rsaEncryption, 4096 (bit); sigalg: RSA-SHA256 v:NotBefore: Jun 19 00:00:42 2020 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFIzCCBAugAwIBAgIQPQrYNn8ZyJUJSlY4o6GiFjANBgkqhkiG9w0BAQsFADA7 MQswCQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQww CgYDVQQDEwNXUjMwHhcNMjQxMTA3MDUzMDI3WhcNMjUwMjA1MDYyMzAwWjAXMRUw EwYDVQQDEwxoci5jbGFiZWwuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQCfcBhJvfbT5r69QfwhaUwTTMqv4Ty3caNVlN2eWZ0rAesgwHppeaWbb3GY pNuAo6TbRv9x0dDsARoNmb9rpmxsg65pot+UeD/+THnui9vPvR9e+YigYV2DJjOV XAsJKMbRHm9yQqR1gggE2k6z2zRu5rDQTaa+tyUXbUaLPHiC0RxBoY8r8oqErvuq AXJYpNBj+vCDd44Io3H1JTlRDUnPQO2guAMycT722CfOY7gaqY/SyG9o7xi1Lnl0 qNZ/tpunYNYusH4DKxcqvTODD0x6UveRssZbdPwAJ86VTqC0tU2v3o4UmNt5EMr0 ++RH1hvxXQfJ+In/kM0vjoBpIiX3AgMBAAGjggJFMIICQTAOBgNVHQ8BAf8EBAMC BaAwEwYDVR0lBAwwCgYIKwYBBQUHAwEwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQU XraDfXt/Z2qzpYYnLvy0oW9F0qgwHwYDVR0jBBgwFoAUx4H1/Y6I2QA8TWOiUDEk oM4j/iMwXgYIKwYBBQUHAQEEUjBQMCcGCCsGAQUFBzABhhtodHRwOi8vby5wa2ku Z29vZy9zL3dyMy9QUW8wJQYIKwYBBQUHMAKGGWh0dHA6Ly9pLnBraS5nb29nL3dy My5jcnQwFwYDVR0RBBAwDoIMaHIuY2xhYmVsLmpwMBMGA1UdIAQMMAowCAYGZ4EM AQIBMDYGA1UdHwQvMC0wK6ApoCeGJWh0dHA6Ly9jLnBraS5nb29nL3dyMy9VeGpU ME44ZXBaZy5jcmwwggEEBgorBgEEAdZ5AgQCBIH1BIHyAPAAdgDm0jFjQHeMwRBB Btdxuc7B0kD2loSG+7qHMh39HjeOUAAAAZMFUTShAAAEAwBHMEUCIHZVFAU9PjZH CHsdTc1CrtTbtCTCAvG/lyEUKa7k2DrGAiEA/4h0d+RGNMZOnbVmOL+uG7YIXxBo Eeosq7nsqaUdcMkAdgDPEVbu1S58r/OHW9lpLpvpGnFnSrAX7KwB0lt3zsw7CAAA AZMFUTS8AAAEAwBHMEUCIQCwVmZ+JylNtJ155gNeof+gCmJ+Hqp17JwmcxK0VfAG mQIgSOEwDtxqdR1BTTBQy5Sl7WbgqsQhnVquhBfd90OGppwwDQYJKoZIhvcNAQEL BQADggEBAAKim2NE6dpLi0FuRAoUKVEpYdxI4eA2Y0Zpw1TRctKRmvTkd4wnEbZd /hdM/WmHLMpN+U+aBlaS9D4Ilj1ViykuWG087vNmgDb4ap5ja6YAwk0FWygTixhM odLQgOXc6wyzsPUj/UUt0B2ihJTFh2y2JdVc7oEEyCR6K1citYVuvpUzYnx8IWps NzW+VnTBvjMIv/U4gCYob693yrn5oH/avcznwwfYxRMGq2Z9i8/hKzsvOc1k0PjF cBgPvlahAh86guZkQqZoeSKBGk3gkITq5hCNGkADxvgm3SkE6CbaDJXJ5D4hwzp3 WWsmRgSjgbJTBzOGyUo5OgDVHsUrrIU= -----END CERTIFICATE----- subject=CN = hr.clabel.jp issuer=C = US, O = Google Trust Services, CN = WR3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 4496 bytes and written 403 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
hr.clabel.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.