Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://questx.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=questx.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=questx.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=questx.jp
And you can
check your domain name
.
#
Certificate of
questx.jp
{ "serial": "F50567C1F245542D", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "questx.jp", "port": 443, "subjectAltName": "DNS:www.questx.jp, DNS:questx.jp", "is_valid": true, "CA": "GoDaddy.com, Inc.", "updated_at": "2024/11/15 23:51:55", "expires_at": "2025/02/13 23:51:55", "today": "2024/11/21 16:19:06", "UTC": { "updated_at": "2024-11-15T14:51:55Z", "expires_at": "2025-02-13T14:51:55Z", "today": "2024-11-21T07:19:06Z" }, "remaining_days": 84 }
#
OCSP response of
questx.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = questx.jp i:C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 14:51:55 2024 GMT; NotAfter: Feb 13 14:51:55 2025 GMT 1 s:C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2 i:C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", CN = Go Daddy Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 3 07:00:00 2011 GMT; NotAfter: May 3 07:00:00 2031 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIGiTCCBXGgAwIBAgIJAPUFZ8HyRVQtMA0GCSqGSIb3DQEBCwUAMIG0MQswCQYD VQQGEwJVUzEQMA4GA1UECBMHQXJpem9uYTETMBEGA1UEBxMKU2NvdHRzZGFsZTEa MBgGA1UEChMRR29EYWRkeS5jb20sIEluYy4xLTArBgNVBAsTJGh0dHA6Ly9jZXJ0 cy5nb2RhZGR5LmNvbS9yZXBvc2l0b3J5LzEzMDEGA1UEAxMqR28gRGFkZHkgU2Vj dXJlIENlcnRpZmljYXRlIEF1dGhvcml0eSAtIEcyMB4XDTI0MTExNTE0NTE1NVoX DTI1MDIxMzE0NTE1NVowFDESMBAGA1UEAxMJcXVlc3R4LmpwMIIBIjANBgkqhkiG 9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyGOnQBAZJ31GEEqiHLv+her9QLhZzSXav9tc 1h5us3lngDZGgc34fN6QeoWCqZgvk7vwZtECxtUZhlDwWIdSKv/BnAM2zp7+GZDQ w69d21wgY2ShqE28zw2wMLIDjmf0d7icIHPfP5woVjLdsODYytQghzlzrZh28jpU z1bAeZer5Yhf7381dJmNspNp9iWSgeYay86zkFHfB6w24EWU7DjJMJ2y38gZZ2aV QrdCYT/GCc9uw2qlnC9UwxDvoThLWA4BnOl5w3gJ2veN+WZm3sQmG4OO7Kolb0DR i0qv7D5DPm85M8uiLEGMy4KMHqsuO+S/4g4TWzLiNA06nv6ZFwIDAQABo4IDOzCC AzcwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIw DgYDVR0PAQH/BAQDAgWgMDkGA1UdHwQyMDAwLqAsoCqGKGh0dHA6Ly9jcmwuZ29k YWRkeS5jb20vZ2RpZzJzMS0zMjkxOS5jcmwwXQYDVR0gBFYwVDBIBgtghkgBhv1t AQcXATA5MDcGCCsGAQUFBwIBFitodHRwOi8vY2VydGlmaWNhdGVzLmdvZGFkZHku Y29tL3JlcG9zaXRvcnkvMAgGBmeBDAECATB2BggrBgEFBQcBAQRqMGgwJAYIKwYB BQUHMAGGGGh0dHA6Ly9vY3NwLmdvZGFkZHkuY29tLzBABggrBgEFBQcwAoY0aHR0 cDovL2NlcnRpZmljYXRlcy5nb2RhZGR5LmNvbS9yZXBvc2l0b3J5L2dkaWcyLmNy dDAfBgNVHSMEGDAWgBRAwr0njsw0gzCiM9f7bLPwtCyAzjAjBgNVHREEHDAagg13 d3cucXVlc3R4LmpwgglxdWVzdHguanAwHQYDVR0OBBYEFL3pnXF2U6P/GViae1qk WaiddxBtMIIBfwYKKwYBBAHWeQIEAgSCAW8EggFrAWkAdwBOdaMnXJoQwzhbbNTf P1LrHfDgjhuNacCx+mSxYpo53wAAAZMwT+vNAAAEAwBIMEYCIQDM2z4fvyEGoxo1 kJvrNmORJb+A2Roihjgi8yzhzgr18gIhAIlgunmiWzLuYFDZYQyI9IxE7UgBZuvK ZNJhxHewZbvrAHYAfVkeEuF4KnscYWd8Xv340IdcFKBOlZ65Ay/ZDowuebgAAAGT ME/s4AAABAMARzBFAiBQZuyLPO53v6Bwb2HZaH3B5RM92+kHJpvlsOC7jQlAfwIh ANB5pZhDh2h5G/2OTrXcGEWVmpJe6ajBAVL4jpJaLqFwAHYAzPsPaoVxCWX+lZtT zumyfCLphVwNl422qX5UwP5MDbAAAAGTME/0ZgAABAMARzBFAiEA2F7T+AYBXvWe XHdDUYpGUSXCdlMFEJSZhkFXpQlAR3QCIDUdk9MdtHkd5TTL4spxqFdx8kpQWUVG lFKb/GTAtR73MA0GCSqGSIb3DQEBCwUAA4IBAQAvoSpbrlHyGAMaLaoRvASR8tHB bz0E/SdW7fpRUu7bhgIMtCnshf+GuTwQnRXO7X6rijhms9rOjX8ijSlpkY9dNV5V TqRS5j5iydo+K1tK17vzEjCFWVujKUXOl1FPQNJD6lU0MYhcPcoCFbLzPF9DccxR cmFskTpmfk9hmiBm4A/8ZKbv9EEUkxUngDAVqcpYrcp9BzwW8VyO11TWrp8E1pFu sMiWBPgHYxE+nv2PUEZBgscaxayuJqcvGHgdpXythIccA692lSm6uFEQy43GNXaP FV23/41lX5Kn2VnbduNkwUiqhNbaQXYBiKQ8cG7XFvbeIYUt3aUgrGcFOaaA -----END CERTIFICATE----- subject=CN = questx.jp issuer=C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3458 bytes and written 384 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
questx.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.