Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://satotakuya.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=satotakuya.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=satotakuya.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=satotakuya.jp
And you can
check your domain name
.
#
Certificate of
satotakuya.jp
{ "serial": "07DC3BA2E17CEB0094A9A5ABB077DB12", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "satotakuya.jp", "port": 443, "subjectAltName": "DNS:satotakuya.jp, DNS:www.satotakuya.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2025/12/28 09:00:00", "expires_at": "2027/01/27 08:59:59", "today": "2026/01/01 08:11:43", "UTC": { "updated_at": "2025-12-28T00:00:00Z", "expires_at": "2027-01-26T23:59:59Z", "today": "2025-12-31T23:11:43Z" }, "remaining_days": 391 }
#
OCSP response of
satotakuya.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = satotakuya.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Dec 28 00:00:00 2025 GMT; NotAfter: Jan 26 23:59:59 2027 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIF0TCCBLmgAwIBAgIQB9w7ouF86wCUqaWrsHfbEjANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTIyODAwMDAwMFoXDTI3MDEyNjIzNTk1OVowGDEW MBQGA1UEAxMNc2F0b3Rha3V5YS5qcDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCC AQoCggEBAMQk3+fvyLSq1Kp7hxqlsRe8Sqs0sLuwZBe/3qkk786RwgzH3qF7sHOV weBWMK+2KLrmhs6wns23FRu7tgrlfBNu/si0gVJuf5BJKXZea8LBNafmod2x8E0b zTQcbDCVZMmad/IMjEp3CUCeYJd7obZT8mGEp/GzsozSk+fskYvzH2wttxa0ujY0 qur6DQ82ucwObdajzSsqamZ+7Bg/18Wbs7p0Bap9SNnvRF9u8vuOlmlrR9VfNJRL qaE2dqzlU3YDKa9jDJa5SS6McW5AXi6TaKhgeh+OHjawxEvuG0GjWzM5nYQgez+y uIW4GYq7Ti6xgtrjue0l/12Y/1QcSycCAwEAAaOCAvEwggLtMB8GA1UdIwQYMBaA FB9SkmFWglR/gWbYHT0KqjJch90IMB0GA1UdDgQWBBTRsyQqMtriaglHwyZZZfI3 QmJNPTArBgNVHREEJDAigg1zYXRvdGFrdXlhLmpwghF3d3cuc2F0b3Rha3V5YS5q cDATBgNVHSAEDDAKMAgGBmeBDAECATAOBgNVHQ8BAf8EBAMCBaAwEwYDVR0lBAww CgYIKwYBBQUHAwEwOwYDVR0fBDQwMjAwoC6gLIYqaHR0cDovL2NybC5yMm0wNC5h bWF6b250cnVzdC5jb20vcjJtMDQuY3JsMHUGCCsGAQUFBwEBBGkwZzAtBggrBgEF BQcwAYYhaHR0cDovL29jc3AucjJtMDQuYW1hem9udHJ1c3QuY29tMDYGCCsGAQUF BzAChipodHRwOi8vY3J0LnIybTA0LmFtYXpvbnRydXN0LmNvbS9yMm0wNC5jZXIw DAYDVR0TAQH/BAIwADCCAYAGCisGAQQB1nkCBAIEggFwBIIBbAFqAHcATGPcmOWc HauI9h6KPd6uj6tEozd7X5uUw/uhnPzBviYAAAGbYyfaZgAABAMASDBGAiEAjN8g 6HqoFjehMosnJMDzotqCz78Po0CW2q3objBjT9sCIQC0WeDYyuCY3H6m/Rxt42nI N2Bv0X0UyBRzb1oFfhQ3OwB3AByfaCzp+vBFaVD4G5aKh93bMhDYTObIsuOCUkrE z1mfAAABm2Mn2ogAAAQDAEgwRgIhAMTBF9l27V/ddpMtPJN4VPAQTNeNlPxVgrBS vbLg4cKiAiEA6EBAQ7zAst4k5/b1CiuF4APaWjAq3UmgSlGGuCGZ1I8AdgBgTJqv en93XwHUBvySDciZ6wscffjJUhv6+hd3O5eLyQAAAZtjJ9tvAAAEAwBHMEUCIQD0 ZpmWJnA1twNNpSg9NQPXsNo5rsyyJispgz+JfSV+wgIgeJY73ksxRQ3E7vsIM8+F S2I5Bl3UnQQOjG/kfef0U6QwDQYJKoZIhvcNAQELBQADggEBAAAfJuZ1YS9Jp4xj WGnts0HZNnRtxKWeIA2pAjc/yBBqr3064zfj/LtUIcD20dMoQVYlXU1poOgT3tgO tl1QzNriu66Bcl6S64bs4qamnVNyGJ0Th2GUkeOZu9fvmP7kHwIRx0UViLwLMbXJ VwEH/bOpzZPcMFSS135BgRHGiHiNHxE1XTifd1+Y9oS1jcljJ6jYq9dUBMKZoHCt zpUy2leL5GkIazB/R5M0osatld/Py4bzb+yADN5w6vxFjHDRugTA1uyrfMtEK4Ep hxNhtCCJIWqsgleEk+0lt7ZuOWZPg8zIeVtZ54gZKYMu1FgL/hEReqxJWkT7ObHS kCwpO0c= -----END CERTIFICATE----- subject=CN = satotakuya.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 4343 bytes and written 388 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
satotakuya.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.