Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://j-wing.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=j-wing.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=j-wing.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=j-wing.jp
And you can
check your domain name
.
#
Certificate of
j-wing.jp
{ "serial": "0550447D186CD7655B5F8ACCD33BFF3F", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "j-wing.jp", "port": 443, "subjectAltName": "DNS:*.j-wing.jp, DNS:j-wing.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2024/10/29 09:00:00", "expires_at": "2025/11/28 08:59:59", "today": "2024/11/21 15:30:02", "UTC": { "updated_at": "2024-10-29T00:00:00Z", "expires_at": "2025-11-27T23:59:59Z", "today": "2024-11-21T06:30:02Z" }, "remaining_days": 371 }
#
OCSP response of
j-wing.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.j-wing.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M03 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Oct 29 00:00:00 2024 GMT; NotAfter: Nov 27 23:59:59 2025 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M03 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:04 2022 GMT; NotAfter: Aug 23 22:26:04 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFzjCCBLagAwIBAgIQBVBEfRhs12VbX4rM0zv/PzANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAzMB4XDTI0MTAyOTAwMDAwMFoXDTI1MTEyNzIzNTk1OVowFjEU MBIGA1UEAwwLKi5qLXdpbmcuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC24EtLp6lBQhjVCHBQLKVK0SJsOSF1m09MD3vAXUDhBeceCj+AZXpAKuya JvKQY2WyXZRHthGtxeifzntnlRXg5JSqA3/zZ3aRyCxEBYTf1IVvLoCh1pfdsVsU FDxC5ie4nWYWxf05Lz5QVHiWaTupi6FdM+pQwxNOr7wGQwHEJo9dpi1hLs9NQqxd AQgPLRzi6h5wZAMVAnQL7QSLsPPcvmAorFhf4refvjnYM3cgpPiUp+PmdRne54YY E6mIGSzh0yr41klNAg3AI+pkWIDgApS0HalO8AX+wV2Uxlk8qwrhP5doEwaONLOx mJN10l7rn21ivVRXBPCtDjo/UuAxAgMBAAGjggLwMIIC7DAfBgNVHSMEGDAWgBRV 2Rhf0hzMAeFYtL6r2VVCAdcuAjAdBgNVHQ4EFgQUm/ROIpAA6dhAlhrbhD0A+/oR nR8wIQYDVR0RBBowGIILKi5qLXdpbmcuanCCCWotd2luZy5qcDATBgNVHSAEDDAK MAgGBmeBDAECATAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEG CCsGAQUFBwMCMDsGA1UdHwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJtMDMuYW1h em9udHJ1c3QuY29tL3IybTAzLmNybDB1BggrBgEFBQcBAQRpMGcwLQYIKwYBBQUH MAGGIWh0dHA6Ly9vY3NwLnIybTAzLmFtYXpvbnRydXN0LmNvbTA2BggrBgEFBQcw AoYqaHR0cDovL2NydC5yMm0wMy5hbWF6b250cnVzdC5jb20vcjJtMDMuY2VyMAwG A1UdEwEB/wQCMAAwggF/BgorBgEEAdZ5AgQCBIIBbwSCAWsBaQB2ABLxTjS9U3JM hAYZw48/ehP457Vih4icbTAFhOvlhiY6AAABktcOZBgAAAQDAEcwRQIhAIvulQq2 Zf8kC/8r7enGggowDihxRo08QikZ5BY2g+CvAiArG5LuUd99+ZRL/Pj0cZqLlDX5 GRCAUUFQjF7voASUmAB3AH1ZHhLheCp7HGFnfF79+NCHXBSgTpWeuQMv2Q6MLnm4 AAABktcOZBIAAAQDAEgwRgIhALPeoTZpPCL4Quah29BAc/6TnUsDZveO/JoTQpHt q48FAiEAr5L9XB+whdCbKAi3+pDvOJPJbNUqun5ITonLGpRSpKQAdgDm0jFjQHeM wRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAZLXDmQ1AAAEAwBHMEUCIQCsoYGt EX3Df3ZCdYT0GAdbMuA3JTTgzanQ72tMDBpN3QIgRe0t2iP5gTLXbglU3nkAUjDo Du1PO57KgD91f4TRXZwwDQYJKoZIhvcNAQELBQADggEBALMjEJNXEogXZrvDgecZ 6LgZgA44Gtl78if07QAquxrTahyI4v5/c4vaM7QcgiakAIKfz7kU5TL9Umr9MBk8 6rvsU16yhxIQKH83IeK662UVjFk31MRWxkZl9tPvQX0drDLqH1lP0XcjM0ZL1zf6 mBawlEZaWW9qXJyyGDfzI0p5RPsu2xzvfH0nOSO8PJ0HGZ13y0l9p9AiRABeDCDl SB2m05YSGsGuve4ZX8alv4h2NYcf8ybauAvQWOdLI7xZIKMFGTFcX1twgClleYb8 45gSrbUSCx2BA549iIhgxMdsgZmbfhMb7JMZS0jnP0zqw2dm3V+6USoKbgAcujs5 /pU= -----END CERTIFICATE----- subject=CN = *.j-wing.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M03 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 4340 bytes and written 384 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
j-wing.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.