Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://notonlymama.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=notonlymama.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=notonlymama.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=notonlymama.jp
And you can
check your domain name
.
#
Certificate of
notonlymama.jp
{ "serial": "F30141D210C3A20A0E1EF684121C8733", "OCSP_serial": "F30141D210C3A20A0E1EF684121C8733", "OCSP_cert_status": "good", "OCSP_this_update": "May 8 15:45:15 2025 GMT", "OCSP_next_update": "May 15 14:45:14 2025 GMT", "domainName": "notonlymama.jp", "port": 443, "subjectAltName": "DNS:notonlymama.jp, DNS:*.notonlymama.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/04/28 22:17:53", "expires_at": "2025/07/27 23:14:40", "today": "2025/05/09 16:58:10", "UTC": { "updated_at": "2025-04-28T13:17:53Z", "expires_at": "2025-07-27T14:14:40Z", "today": "2025-05-09T07:58:10Z" }, "remaining_days": 79 }
#
OCSP response of
notonlymama.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: May 8 15:45:15 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: F30141D210C3A20A0E1EF684121C8733 Cert Status: good This Update: May 8 15:45:15 2025 GMT Next Update: May 15 14:45:14 2025 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:45:02:20:6e:53:a1:0e:bc:c3:ed:53:1a:fa:7f:5d:f2:34: 51:9d:85:aa:99:d9:91:95:4e:dc:95:b6:49:b1:98:9b:c9:2a: 02:21:00:f0:fa:ff:63:a7:8d:f1:24:be:d7:4b:d2:77:04:ea: 70:af:07:d3:b6:78:9c:13:0b:93:6a:73:d8:85:87:6b:35 ====================================== --- Certificate chain 0 s:CN = notonlymama.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Apr 28 13:17:53 2025 GMT; NotAfter: Jul 27 14:14:40 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDrjCCA1SgAwIBAgIRAPMBQdIQw6IKDh72hBIchzMwCgYIKoZIzj0EAwIwOzEL MAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEMMAoG A1UEAxMDV0UxMB4XDTI1MDQyODEzMTc1M1oXDTI1MDcyNzE0MTQ0MFowGTEXMBUG A1UEAxMObm90b25seW1hbWEuanAwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAASA cJvjLmfVtzda2hFkgTCnEEbYryOHsFKxPuKBBsfuJZve+tYObFChYsNVDa06dfsO aSx+1VbBvWhvZYvrA4Gjo4ICWTCCAlUwDgYDVR0PAQH/BAQDAgeAMBMGA1UdJQQM MAoGCCsGAQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFOLLlX2R65QCFfgf Ya42vKK/UVZfMB8GA1UdIwQYMBaAFJB3kjVnxP+ozKnme9mAeXvMk/k4MF4GCCsG AQUFBwEBBFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93ZTEv OHdFMCUGCCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93ZTEuY3J0MCsGA1Ud EQQkMCKCDm5vdG9ubHltYW1hLmpwghAqLm5vdG9ubHltYW1hLmpwMBMGA1UdIAQM MAowCAYGZ4EMAQIBMDYGA1UdHwQvMC0wK6ApoCeGJWh0dHA6Ly9jLnBraS5nb29n L3dlMS92VVBTX043UTdyMC5jcmwwggEEBgorBgEEAdZ5AgQCBIH1BIHyAPAAdgAS 8U40vVNyTIQGGcOPP3oT+Oe1YoeInG0wBYTr5YYmOgAAAZZ8wvUPAAAEAwBHMEUC IQD9gOFiWthga5jcSscqT84Nms9yhQP3f56v91Zil9mnegIgOkq5MkEPk3+rBE2R /4vSguCrgqtHpBG2zp7IUKjx44UAdgDtPEvW6AbCpKIAV9vLJOI4Ad9RL+3EhsVw DyDdtz4/4AAAAZZ8wvUuAAAEAwBHMEUCIHHLjpKIkOzzlyCP3U6NA50JXRXZguqr dt+Y6DDKFi4dAiEAkHrnXtKtJhIQNSNL/dgT7jfOQC3TtS+k4KW5IMFvi+cwCgYI KoZIzj0EAwIDSAAwRQIgDa57h76yrj3X6OKHvM1ccJ3C5CF4fFMZeKtuM7dYNMcC IQD2kc9UFYGuXE1ZcOgTA1zJGg/f+aS0ITabmQ+OiR0A3g== -----END CERTIFICATE----- subject=CN = notonlymama.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3123 bytes and written 405 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
notonlymama.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.