Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://j-wing.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=j-wing.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=j-wing.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=j-wing.jp
And you can
check your domain name
.
#
Certificate of
j-wing.jp
{ "serial": "0EB4386F11ED3D586A00EA54A9C931E9", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "j-wing.jp", "port": 443, "subjectAltName": "DNS:*.j-wing.jp, DNS:j-wing.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2023/11/28 09:00:00", "expires_at": "2024/12/28 08:59:59", "today": "2024/04/28 16:00:33", "UTC": { "updated_at": "2023-11-28T00:00:00Z", "expires_at": "2024-12-27T23:59:59Z", "today": "2024-04-28T07:00:33Z" }, "remaining_days": 243 }
#
OCSP response of
j-wing.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.j-wing.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M03 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 28 00:00:00 2023 GMT; NotAfter: Dec 27 23:59:59 2024 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M03 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:04 2022 GMT; NotAfter: Aug 23 22:26:04 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT 3 s:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 i:C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Sep 2 00:00:00 2009 GMT; NotAfter: Jun 28 17:39:16 2034 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFzjCCBLagAwIBAgIQDrQ4bxHtPVhqAOpUqckx6TANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAzMB4XDTIzMTEyODAwMDAwMFoXDTI0MTIyNzIzNTk1OVowFjEU MBIGA1UEAwwLKi5qLXdpbmcuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC0L8SJUbbA6wK9/yAl5ataxBptVuTyjHos/Va0+pTNzarS2vHzJRwIAwPB EtYdmGko4/5Mn4cNFlYiVah7KiS99H5g+Y7WO2xpUnRpNxQ8SYYAfFBcCXtdmJhL f15+DkRyX59Prrg5jT98OcSVGD68g6FNiUUAmaAXk1s5wzuzujqHHvBF+yOy4Oks OU1++NB6L2KOJwtInzPVa7lO8U2TvnYSYOjAEPoxYoD3QhFOEOAs1pMeDkrST68b MDWL3CO0w3LdUqhdyNGBmDYnx/k9b/5PgxOlvwtDSGFRY0d6nPD4MfIOFQhU3Fi+ DIgXl7E9k0wvBeFgWzXEF+Vz0gX/AgMBAAGjggLwMIIC7DAfBgNVHSMEGDAWgBRV 2Rhf0hzMAeFYtL6r2VVCAdcuAjAdBgNVHQ4EFgQUbWfp7hBTKyDcv5JTP3J+Pjxr mdowIQYDVR0RBBowGIILKi5qLXdpbmcuanCCCWotd2luZy5qcDATBgNVHSAEDDAK MAgGBmeBDAECATAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEG CCsGAQUFBwMCMDsGA1UdHwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJtMDMuYW1h em9udHJ1c3QuY29tL3IybTAzLmNybDB1BggrBgEFBQcBAQRpMGcwLQYIKwYBBQUH MAGGIWh0dHA6Ly9vY3NwLnIybTAzLmFtYXpvbnRydXN0LmNvbTA2BggrBgEFBQcw AoYqaHR0cDovL2NydC5yMm0wMy5hbWF6b250cnVzdC5jb20vcjJtMDMuY2VyMAwG A1UdEwEB/wQCMAAwggF/BgorBgEEAdZ5AgQCBIIBbwSCAWsBaQB3AHb/iD8KtvuV UcJhzPWHujS0pM27KdxoQgqf5mdMWjp0AAABjBRsuqUAAAQDAEgwRgIhANQ9b0gz sUc5WzaXBs04rXvl98VJpqvZNHTXkYMnAmlNAiEAlf9PSaZ1aWswvZr8NJ/5ABMf OhJGWPHkxlKyVdcc18MAdQBIsONr2qZHNA/lagL6nTDrHFIBy1bdLIHZu7+rOdiE cwAAAYwUbLqiAAAEAwBGMEQCIDluIvm0Dq851cXrBYDBxiMSblzpg+TnBFxyQX+O 0UM9AiAH8SghcD8+xmYDZeUyR8ArekWULPK/mDoAgX6PBP13QAB3ANq2v2s/tbYi n5vCu1xr6HCRcWy7UYSFNL2kPTBI1/urAAABjBRsutYAAAQDAEgwRgIhANhr7+9C yaRHH5ufoJJHhDIg6Z3H6A3S162IUvqbI0NeAiEAtjrVHTUE7ekGhx/1OyHYzabJ l265Z/kd+7FM+ECKDYMwDQYJKoZIhvcNAQELBQADggEBAJURlH8owoZtLZkqnEXm KKd+HajV3nU40gJEgPIKR5nXZUuaYXE9hJg8NZcacW8rTBnLHlU5KevJO6Gm4Um4 JtNJfhHqLtuYEpjL8CW6Tt/HZnTV919l56TmROQFGlLqQz3Jmsj5lZX2DwdJb1IC KB2+ymOv72oGEI5HLInlVb9//k2dKjCjG1EgOMROgi19Sw2NvuBD6xJWI0l8oTeq VJtDKKNnfG0ksvhPwf1pZzy2ZheDMgBC9uiQ37y8JtZ9mXtOE4wgOENmYaotnrLY SHOPKW7nEHSvDhfM3tUtvp1gjyM4NYpZIHKNvosB0X0yoUunyhxGwG7ek8RoQ9Hy IGg= -----END CERTIFICATE----- subject=CN = *.j-wing.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M03 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 5490 bytes and written 384 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
j-wing.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.