Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://status.mamisrv.ne.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=status.mamisrv.ne.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=status.mamisrv.ne.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=status.mamisrv.ne.jp
And you can
check your domain name
.
#
Certificate of
status.mamisrv.ne.jp
{ "serial": "A52614E10C3D1EB311AA5FB8E32A9BA6", "OCSP_serial": "A52614E10C3D1EB311AA5FB8E32A9BA6", "OCSP_cert_status": "good", "OCSP_this_update": "Dec 28 20:01:34 2025 GMT", "OCSP_next_update": "Jan 4 19:01:33 2026 GMT", "domainName": "status.mamisrv.ne.jp", "port": 443, "subjectAltName": "DNS:mamisrv.ne.jp, DNS:*.mamisrv.ne.jp", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/12/03 23:59:37", "expires_at": "2026/03/04 00:57:00", "today": "2026/01/01 08:15:46", "UTC": { "updated_at": "2025-12-03T14:59:37Z", "expires_at": "2026-03-03T15:57:00Z", "today": "2025-12-31T23:15:46Z" }, "remaining_days": 61 }
#
OCSP response of
status.mamisrv.ne.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Dec 28 20:01:34 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: A52614E10C3D1EB311AA5FB8E32A9BA6 Cert Status: good This Update: Dec 28 20:01:34 2025 GMT Next Update: Jan 4 19:01:33 2026 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:44:02:20:51:dd:e1:c4:b9:61:e6:e9:c6:b2:e7:f1:2c:32: 86:7e:84:0e:22:a7:5d:b8:68:1f:a0:e7:4b:ff:d9:9f:ae:01: 02:20:78:02:b6:cf:55:8a:05:3a:78:22:1d:82:49:85:69:3b: 0d:f2:a5:ce:10:3f:f5:31:6a:0b:f5:1e:e3:11:ad:20 ====================================== --- Certificate chain 0 s:CN = mamisrv.ne.jp i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Dec 3 14:59:37 2025 GMT; NotAfter: Mar 3 15:57:00 2026 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDrDCCA1KgAwIBAgIRAKUmFOEMPR6zEapfuOMqm6YwCgYIKoZIzj0EAwIwOzEL MAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEMMAoG A1UEAxMDV0UxMB4XDTI1MTIwMzE0NTkzN1oXDTI2MDMwMzE1NTcwMFowGDEWMBQG A1UEAxMNbWFtaXNydi5uZS5qcDBZMBMGByqGSM49AgEGCCqGSM49AwEHA0IABBMO wUjfWTcflrSdK5icQiYi33p/IuWHSRQwwJJptSREf01l6/G9AjxN5/8EwwGHTmAM jCJ23egHPqk0jT034W2jggJYMIICVDAOBgNVHQ8BAf8EBAMCB4AwEwYDVR0lBAww CgYIKwYBBQUHAwEwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUJIWWu6Hppeh0vdHM O1J4mqMghYswHwYDVR0jBBgwFoAUkHeSNWfE/6jMqeZ72YB5e8yT+TgwXgYIKwYB BQUHAQEEUjBQMCcGCCsGAQUFBzABhhtodHRwOi8vby5wa2kuZ29vZy9zL3dlMS9w U1kwJQYIKwYBBQUHMAKGGWh0dHA6Ly9pLnBraS5nb29nL3dlMS5jcnQwKQYDVR0R BCIwIIINbWFtaXNydi5uZS5qcIIPKi5tYW1pc3J2Lm5lLmpwMBMGA1UdIAQMMAow CAYGZ4EMAQIBMDYGA1UdHwQvMC0wK6ApoCeGJWh0dHA6Ly9jLnBraS5nb29nL3dl MS9kcGNaY2dVTlBiRS5jcmwwggEFBgorBgEEAdZ5AgQCBIH2BIHzAPEAdgAWgy2r 8KklDw/wOqVF/8i/yCPQh0v2BCkn+OcfMxP1+gAAAZrk8M4sAAAEAwBHMEUCIQCn o3o92rlUciWDc/Ead41Z+sHtnCwS8U9vzh7Y0waUsgIgIytxc68VBCyq0Qg2IP79 UKGXj40Ze+fJQu3mu3Qbz/QAdwCWl2S/VViXrfdDh2g3CEJ36fA61fak8zZuRqQ/ D8qpxgAAAZrk8M4xAAAEAwBIMEYCIQD2/kiYldNIhPSERPYokicL5nO8fIUpgpc1 LHcb3UhR+QIhAN8mOQ56txSKp2mEo5I2i1LgvdoB9bl4MkBwdimQqBKeMAoGCCqG SM49BAMCA0gAMEUCIHcF4cHDVsHOhuuOxTIyep4VXPt0fclIcLalbQHzTlcXAiEA /fPMdhrv8ZhlvMrzJacEagpMnqv56nUOj3dFIt8qut0= -----END CERTIFICATE----- subject=CN = mamisrv.ne.jp issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3119 bytes and written 411 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
status.mamisrv.ne.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.