Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://skinvill.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=skinvill.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=skinvill.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=skinvill.jp
And you can
check your domain name
.
#
Certificate of
skinvill.jp
{ "serial": "3A420F1D6DD5F4F7B5F0B624FE027CED", "OCSP_serial": "3A420F1D6DD5F4F7B5F0B624FE027CED", "OCSP_cert_status": "good", "OCSP_this_update": "Dec 29 11:20:53 2025 GMT", "OCSP_next_update": "Jan 5 11:20:52 2026 GMT", "domainName": "skinvill.jp", "port": 443, "subjectAltName": "DNS:skinvill.jp, DNS:www.skinvill.jp", "is_valid": true, "CA": "CloudSecure Corporation", "updated_at": "2025/08/09 09:00:00", "expires_at": "2026/08/10 08:59:59", "today": "2026/01/01 08:15:44", "UTC": { "updated_at": "2025-08-09T00:00:00Z", "expires_at": "2026-08-09T23:59:59Z", "today": "2025-12-31T23:15:44Z" }, "remaining_days": 221 }
#
OCSP response of
skinvill.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 0156138EEF274BD1AFF200295E1CCD730C557FC6 Produced At: Dec 29 11:20:53 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: A1AB7FD036CD1F5F7BAEBD8EA05EC190BC807FBF Issuer Key Hash: 0156138EEF274BD1AFF200295E1CCD730C557FC6 Serial Number: 3A420F1D6DD5F4F7B5F0B624FE027CED Cert Status: good This Update: Dec 29 11:20:53 2025 GMT Next Update: Jan 5 11:20:52 2026 GMT Signature Algorithm: sha256WithRSAEncryption Signature Value: 25:d9:4a:8f:a7:08:b3:75:58:30:8a:81:6e:ef:29:57:ce:fa: c9:75:6d:01:3f:e3:45:1c:00:ba:85:71:c7:38:ac:b4:b3:5a: bf:ae:b2:cf:b9:a7:4b:72:89:c7:6b:1f:ed:af:e9:dc:1d:f9: 94:99:9f:1b:81:2b:b1:dc:f8:6a:01:95:ff:cd:8b:b1:ec:ca: da:90:16:20:5b:00:74:b9:77:cb:12:6d:df:5a:85:ac:98:57: ae:cb:4f:6f:49:3e:30:d7:1e:01:87:93:6c:91:ad:31:31:75: 23:0a:95:ec:a1:a8:d5:60:43:0a:c2:9d:7a:fd:66:11:67:f0: 30:fb:25:f6:66:0d:ac:b8:3b:16:1e:69:3c:06:0c:41:ac:1b: f6:1a:71:91:df:6f:41:51:a6:fb:a1:7a:3f:1e:35:21:d8:44: 96:06:a9:a2:63:53:63:31:71:21:1d:d5:76:5d:e8:85:cd:77: f0:81:1e:3b:2e:9a:76:f7:0f:d5:92:d2:7b:59:d5:18:e3:6d: c3:a2:77:b8:6f:ee:e7:f6:33:27:41:3a:64:b5:b3:c6:c8:fb: aa:a2:da:b1:4e:06:2b:5f:1e:56:08:5d:76:7d:d9:ca:5a:7b: 58:8b:2f:2e:b3:6b:d9:8f:9b:53:e7:7b:f9:16:5a:a8:10:dd: c3:73:cd:4b:27:7f:07:6f:90:25:bf:ea:4a:b0:14:43:b7:f4: 88:0b:83:40:ba:ab:8b:74:a6:f2:b4:77:ba:45:c3:ad:93:7e: 4c:09:d4:c7:46:60:c2:9f:7f:33:c8:81:d7:c0:82:6e:f8:ab: b3:2f:62:06:4f:b1:36:56:a7:3a:47:87:b4:ec:e1:50:9d:52: 5a:88:b9:01:94:44:d9:67:0a:30:9a:73:5a:f8:d3:01:1c:1b: 80:1e:00:84:07:33:98:61:20:30:61:d1:98:26:91:39:0b:12: c5:cf:94:88:ba:60:33:8c:2f:45:63:58:39:cc:3c:2f:b4:3d: 49:8a:62:19:71:ce ====================================== --- Certificate chain 0 s:CN = skinvill.jp i:C = JP, O = CloudSecure Corporation, CN = CloudSecure RSA Domain Validation Secure Server CA 3 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 9 00:00:00 2025 GMT; NotAfter: Aug 9 23:59:59 2026 GMT 1 s:C = JP, O = CloudSecure Corporation, CN = CloudSecure RSA Domain Validation Secure Server CA 3 i:C = GB, O = Sectigo Limited, CN = Sectigo Public Server Authentication Root R46 a:PKEY: rsaEncryption, 3072 (bit); sigalg: RSA-SHA384 v:NotBefore: May 14 00:00:00 2025 GMT; NotAfter: May 13 23:59:59 2035 GMT 2 s:C = GB, O = Sectigo Limited, CN = Sectigo Public Server Authentication Root R46 i:C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority a:PKEY: rsaEncryption, 4096 (bit); sigalg: RSA-SHA384 v:NotBefore: Mar 22 00:00:00 2021 GMT; NotAfter: Jan 18 23:59:59 2038 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIGXDCCBMSgAwIBAgIQOkIPHW3V9Pe18LYk/gJ87TANBgkqhkiG9w0BAQsFADBu MQswCQYDVQQGEwJKUDEgMB4GA1UEChMXQ2xvdWRTZWN1cmUgQ29ycG9yYXRpb24x PTA7BgNVBAMTNENsb3VkU2VjdXJlIFJTQSBEb21haW4gVmFsaWRhdGlvbiBTZWN1 cmUgU2VydmVyIENBIDMwHhcNMjUwODA5MDAwMDAwWhcNMjYwODA5MjM1OTU5WjAW MRQwEgYDVQQDEwtza2ludmlsbC5qcDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCC AQoCggEBAMtZlz1lrfrdKvsZMJyngbvujbVpka+PZ80wnfoVnBBjyXkyKqthQ7lX Rkz+c3vF8L5+aJyWz4v9hqEu5donKakyqkDMYYFEI+vr1yqvvC7p6f2P6GVzCGXZ tpfPBiBBEk41wcS69xC4DVnwIhk2knCSPD8YxC0ZQxxbB0oOzyemn3Go7YHwr+RP 0qve6EET7OtbYxaiOxqH8UkeSDbRDEwLsLpcE5FrFJzJe7SU9UQF8Omp4hiv2eFA I6ne8TZNbw4+u+1QkwRapvsGF86KNE0MeJoxIQoHG8xnmsHGFYV/bk9YO09+v+FG O657oKHv3C4D5gQqcMhYRhZX0EIZC1kCAwEAAaOCAswwggLIMB8GA1UdIwQYMBaA FAFWE47vJ0vRr/IAKV4czXMMVX/GMB0GA1UdDgQWBBRghstX7mfwKpf2jjFSs7ir 7jS04TAOBgNVHQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggr BgEFBQcDAQYIKwYBBQUHAwIwEwYDVR0gBAwwCjAIBgZngQwBAgEwgYkGCCsGAQUF BwEBBH0wezBUBggrBgEFBQcwAoZIaHR0cDovL2NydC5zZWN0aWdvLmNvbS9DbG91 ZFNlY3VyZVJTQURvbWFpblZhbGlkYXRpb25TZWN1cmVTZXJ2ZXJDQTMuY3J0MCMG CCsGAQUFBzABhhdodHRwOi8vb2NzcC5zZWN0aWdvLmNvbTAnBgNVHREEIDAeggtz a2ludmlsbC5qcIIPd3d3LnNraW52aWxsLmpwMIIBfQYKKwYBBAHWeQIEAgSCAW0E ggFpAWcAdQDYCVU7lE96/8gWGW+UT4WrsPj8XodVJg8V0S5yu0VLFAAAAZiQvwOO AAAEAwBGMEQCIHihu750B6MzhKdckyi9/PKhBxHgXYJee0qdrWnENPSwAiBtZ+ko I1dEKL/DZIeac7lS1ZWMiYjqwhVwe+COdQyOfAB3AKyrMHBs6+yEMfQT0vSRXxEe QiRDsfKmjE88KzunHgLDAAABmJC/A0EAAAQDAEgwRgIhANVNjbmSG8TW/eSHeHFG TggQZq5XScgzKfo2xLcsh5weAiEAxceICD1rFbLdKkj4okSB8DSxwyWERqvAbfcO szB/gGkAdQDXbX0Q0af1d8LH6V/XAL/5gskzWmXh0LMBcxfAyMVpdwAAAZiQvwMA AAAEAwBGMEQCIBP48+r4+sYxL/U8AsSRbwvG9VppxHXo0SYHD0mmsYG7AiBMJ+dk nDOtCARWEaHym/YEF0qUcZI4f6wZ9JSRB0W0yDANBgkqhkiG9w0BAQsFAAOCAYEA BcsM9aZXyIdbmAZFjx1ne+CoV+d3Wf/dEGwHucWqwaRpr3bctAGdtBN/EDxgu+gT Ze9NvXkzvIxuKItiYTVH7OXPrN5KG9d8vk8qrTrv8pZVjuUy6CDkWAEFVW/rGLlb zsvSAJ14hnLmDuetoQ1grvED2WLfE+m9oWY51MJAA0fKeDQx+FD3LtMVI/JFiHHD npgUACmp7bUK6nHLMWYs6GRndAo2NiuwdfX13+wMyCbnuVIuxbZt1LFA9lvV0oOB dNEyDU6Ccr6EVitEZj5EsapGXEtQBwTKofcSWtwG5Q1lmW3AMHqiwqLoDUiQcNJb 3D3WpiR8fZTte1EXQw/Q/WGjhtBBd+Fjm1u8CcXEimp0Eqj7oDhm/6lz6sBIrQ3m c/avbLXrLamWnBpUfk/g9JffzbpfnUvI+B3TQt6zPjEyVGJ0KdRDxAg1XtboYA9t ordcdjo/1Ct7hTALNn5ytEH7IBcGm62kMZHGWfZaygNFPgDwjSnCmMvb1Evscu16 -----END CERTIFICATE----- subject=CN = skinvill.jp issuer=C = JP, O = CloudSecure Corporation, CN = CloudSecure RSA Domain Validation Secure Server CA 3 --- No client certificate CA names sent Peer signing digest: SHA512 Peer signature type: RSA Server Temp Key: ECDH, secp521r1, 521 bits --- SSL handshake has read 6314 bytes and written 516 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: CAA911D2A6F72F5D657882770BCAFD4EC34978D9A2ECAD808EDE341E8164CAB5 Session-ID-ctx: Master-Key: 73DF3D0F78C96F7BE4B1A8637CEB56C531AB70099F2538C8102CC71770ACCC3749B728637116F62B9EAAF4BC0352EB6E PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 91 86 78 8e 59 ad ac d7-a6 4f 3f fe 2f 9e a2 f5 ..x.Y....O?./... 0010 - f1 24 21 c3 5b 7f 64 2b-27 31 41 56 28 a1 6e 1b .$!.[.d+'1AV(.n. 0020 - f0 05 cc f6 a3 d8 55 73-68 c7 b3 58 43 73 43 ea ......Ush..XCsC. 0030 - 52 f8 f2 7f aa 84 82 3a-06 f6 b9 f3 90 e9 1a 67 R......:.......g 0040 - 51 01 83 78 1c 11 ca dc-d2 14 5a d3 6b b3 21 d3 Q..x......Z.k.!. 0050 - c1 25 38 72 aa ba 80 16-68 9c 09 39 22 ad 74 30 .%8r....h..9".t0 0060 - c3 f6 5e 1d 2f 9f b4 40-60 13 28 20 fc 22 8f cf ..^./..@`.( .".. 0070 - 93 67 6b 58 07 9c b9 f7-ca 8d 74 c1 0a 00 8d a8 .gkX......t..... 0080 - 47 c5 34 85 b5 19 88 7d-a7 eb 40 33 83 bf 0a a5 G.4....}..@3.... 0090 - 10 ca 4e cc eb a7 30 7a-f5 43 cb f2 45 f5 a3 65 ..N...0z.C..E..e 00a0 - 30 8b 25 53 e5 3b 84 79-f4 02 d4 fc 50 fc 17 24 0.%S.;.y....P..$ 00b0 - 92 ae 16 ae 24 18 66 90-0f 3d a9 93 69 f3 16 96 ....$.f..=..i... Start Time: 1767222944 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: no ---
#
OCSP response of
skinvill.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.