Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://takutpl.take-eats.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=takutpl.take-eats.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=takutpl.take-eats.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=takutpl.take-eats.jp
And you can
check your domain name
.
#
Certificate of
takutpl.take-eats.jp
{ "serial": "031DAEC5E58FA1C811E96A8C4F00C9B2", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "takutpl.take-eats.jp", "port": 443, "subjectAltName": "DNS:*.take-eats.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2025/04/01 09:00:00", "expires_at": "2026/05/01 08:59:59", "today": "2025/11/03 06:55:55", "UTC": { "updated_at": "2025-04-01T00:00:00Z", "expires_at": "2026-04-30T23:59:59Z", "today": "2025-11-02T21:55:55Z" }, "remaining_days": 179 }
#
OCSP response of
takutpl.take-eats.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.take-eats.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M03 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Apr 1 00:00:00 2025 GMT; NotAfter: Apr 30 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M03 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:04 2022 GMT; NotAfter: Aug 23 22:26:04 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFxzCCBK+gAwIBAgIQAx2uxeWPocgR6WqMTwDJsjANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAzMB4XDTI1MDQwMTAwMDAwMFoXDTI2MDQzMDIzNTk1OVowGTEX MBUGA1UEAwwOKi50YWtlLWVhdHMuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQCzLZoPaj0f+CU8SJi42/kZsfmriBVo8qxmskQGp795CXwFVbAIm8p0 AFiwk6SgSQ03wb/e2CYhARYlE2Hxpu3/yEgrA2fCwhPZ9BkHeXOQ35n9hQLcb55J cdLK5WEtJzAeipSMB4KLq7RcQu87aVAtDBYSnvq0imcTb4XR2F4zb+KCOC7KDrMB KKKoqXs9Wofy4Iw7hSGVttwkSUaXQU2cp8FRvXpUHUQY/t6LtEsHg+2oWahISf9y xcxTMoRzcS2jxLbnSrkXzLh/59VswzrDx8D7An//oVl54Btx/pfOQXAqyof0h8FV FNLcMHAKAa9N/nTjmUXNjFDIP30RcsVVAgMBAAGjggLmMIIC4jAfBgNVHSMEGDAW gBRV2Rhf0hzMAeFYtL6r2VVCAdcuAjAdBgNVHQ4EFgQUorPYSwI4sZY3HPyReCx7 jQFOcKIwGQYDVR0RBBIwEIIOKi50YWtlLWVhdHMuanAwEwYDVR0gBAwwCjAIBgZn gQwBAgEwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEF BQcDAjA7BgNVHR8ENDAyMDCgLqAshipodHRwOi8vY3JsLnIybTAzLmFtYXpvbnRy dXN0LmNvbS9yMm0wMy5jcmwwdQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFo dHRwOi8vb2NzcC5yMm0wMy5hbWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0 dHA6Ly9jcnQucjJtMDMuYW1hem9udHJ1c3QuY29tL3IybTAzLmNlcjAMBgNVHRMB Af8EAjAAMIIBfQYKKwYBBAHWeQIEAgSCAW0EggFpAWcAdQCWl2S/VViXrfdDh2g3 CEJ36fA61fak8zZuRqQ/D8qpxgAAAZXu0HQpAAAEAwBGMEQCIA9pxzXdyxTFBAgX hdIgPFK8ggA3c+yiiXXMmTeccDYCAiA+8Aj5mE7KxsVWq/Adp4tJBujJkZgO3fde QT3Lc34V0wB2AGQRxGykEuyniRyiAi4AvKtPKAfUHjUnq+r+1QPJfc3wAAABle7Q dBsAAAQDAEcwRQIgbpTdpNd4mrwFT0LJCSHNgovNXAydFI5fO3Dh/256xlgCIQCy pHE2QsIWJRYPsd2X6Pij+dwc28ijjVYA48DI20O6zAB2AEmcm2neHXzs/DbezYdk prhbrwqHgBnRVVL76esp3fjDAAABle7QdC0AAAQDAEcwRQIgD9OjRZkeCDnfgMHd 2pcm5aQxlHlsSEl7IdojnsxeMJ8CIQCTazLaudmzYww9zSHwEcHWXK03UMPJJCBp Kjo11KudWTANBgkqhkiG9w0BAQsFAAOCAQEAV7cxUvgj6Fz1yj/zetm19YlH5Q9y flaw2Fx93Ymxm2ZPGEFIxhNDHPqoMRw/b2WfUjPId13UF/P6+pHL8a7P94O89AU/ 6YN4qcg4sIGZdNWOVxnQ/kI+/v7o89lJhw8xQZdKNgFAp3hpHxzOqr75oHmPSTjV OryunOCm4Fl7x1zIOpP3KIhTdgVU4DEzRfCmx4ebpyn8PifawCJ3qpeSggRDS3Aj qOq3IV7+NGJoKPEWVYlJ9ggdETJQkrvAHbIU8HMFb08ZOA/e4qCVo2VA0Ml8Yjtp WXOdYSntc76Yl0ZHYgAHlgd6JEfEMcfTFVZpZHVTSC3e+BhZVOUw4D8M1g== -----END CERTIFICATE----- subject=CN = *.take-eats.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M03 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 4455 bytes and written 457 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 3D6768B6BED7699F2D7CF17E0E0F54A55EAFB34BDA906F886CED1999BC3EBBC5 Session-ID-ctx: Master-Key: CE528DBA0E5541EB2EB248B633FC3B945B85A290CA7499F49767CD55DBB765ACE3087974607FD7338C4F57FF98401C4E PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 64443 (seconds) TLS session ticket: 0000 - 01 7c 03 90 28 16 30 0e-14 2d ba 55 66 ff b7 78 .|..(.0..-.Uf..x 0010 - 41 1c 2c 9b a3 2d f3 f4-9c b6 34 48 e2 0f 7a e0 A.,..-....4H..z. 0020 - 67 cc 3a 10 7d fb 15 9d-fa 8a 2f 16 a5 fe 6c 2c g.:.}...../...l, 0030 - 89 86 c6 ed b4 5e e5 04-ce 36 1a 6f b2 30 5e 07 .....^...6.o.0^. 0040 - ae 87 a6 0d fd 9e 82 3c-29 b2 1a 43 09 b2 dd 71 .......<)..C...q 0050 - fb 1c 10 26 64 d0 9a 74-ca 83 8a 44 fb 71 5f 74 ...&d..t...D.q_t 0060 - d3 14 06 7c 97 a5 da d8-dd 87 e4 5f b7 24 84 b3 ...|......._.$.. 0070 - 85 6f 9e 44 97 a2 f3 57-65 6c 81 94 79 3f 94 6c .o.D...Wel..y?.l 0080 - 09 52 1b c8 b2 dd 97 6a-b6 57 .R.....j.W Start Time: 1762120556 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
takutpl.take-eats.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.