Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.b-merit.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.b-merit.jp
And you can
check your domain name
.
#
Certificate of
www.b-merit.jp
{ "serial": "0CDE69922AF239412E160C4A68A2C294", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "www.b-merit.jp", "port": 443, "subjectAltName": "DNS:www.b-merit.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2025/10/06 09:00:00", "expires_at": "2026/11/05 08:59:59", "today": "2025/11/03 06:45:12", "UTC": { "updated_at": "2025-10-06T00:00:00Z", "expires_at": "2026-11-04T23:59:59Z", "today": "2025-11-02T21:45:12Z" }, "remaining_days": 367 }
#
OCSP response of
www.b-merit.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = www.b-merit.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Oct 6 00:00:00 2025 GMT; NotAfter: Nov 4 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFvjCCBKagAwIBAgIQDN5pkiryOUEuFgxKaKLClDANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTAwNjAwMDAwMFoXDTI2MTEwNDIzNTk1OVowGTEX MBUGA1UEAxMOd3d3LmItbWVyaXQuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQC3r34+T8m1pywwYLRAFaZmhkTEuKtq2ja+F5ltyLWqQoVbsAvT5+Zg g0Yk21inUfbh+MRj40U1xKBE774JvahgBKNQ0V/CFs5f+hnt6c++BAHRzRfaF63l KmRxdvTTF+dF5n5jIN2EKlNit/MM0zTFyfa6RJEzlnzc3lmyaZouKreqqmT/NP2K jnfVhKLwjYpKUhDpMdvXGJeQdVnBYGUreLnwyhzlaP5au0blL21xFWLfzBQYXjH/ 5M4hxL4oqi4CY73SKno4dZL5Ju1mwh91Nu+mJnJZFbFGQjY+P5fkRABA4yICq+dW 5n1AWWckYX1NPHNQYnruGIANbmg+rnUjAgMBAAGjggLdMIIC2TAfBgNVHSMEGDAW gBQfUpJhVoJUf4Fm2B09CqoyXIfdCDAdBgNVHQ4EFgQUWuVZKYnq8EJ4T8RpSdJC UEZfQS0wGQYDVR0RBBIwEIIOd3d3LmItbWVyaXQuanAwEwYDVR0gBAwwCjAIBgZn gQwBAgEwDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMDsGA1Ud HwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJtMDQuYW1hem9udHJ1c3QuY29tL3Iy bTA0LmNybDB1BggrBgEFBQcBAQRpMGcwLQYIKwYBBQUHMAGGIWh0dHA6Ly9vY3Nw LnIybTA0LmFtYXpvbnRydXN0LmNvbTA2BggrBgEFBQcwAoYqaHR0cDovL2NydC5y Mm0wNC5hbWF6b250cnVzdC5jb20vcjJtMDQuY2VyMAwGA1UdEwEB/wQCMAAwggF+ BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB2ANdtfRDRp/V3wsfpX9cAv/mCyTNaZeHQ swFzF8DIxWl3AAABmbbkXMkAAAQDAEcwRQIgI61eyJyjQw8uiJQmwjef4XiDTc1l rqz9u/iVW+bNEpsCIQCbGwUnmsLtt+VWVJsd+6h66au2BhEc/OpDC+cf1KaKpAB2 AMIxfldFGaNF7n843rKQQevHwiFaIr9/1bWtdprZDlLNAAABmbbkXPUAAAQDAEcw RQIhAP0TE4m8wOO1fOdZI3XsM342ZO1iju4ZfU9BlVnHNTzeAiA7+FwwD0q6Jk9h nyhq/zgOJ7EcA1+R0It8czSSxFARHQB2AJROQ4f67MHvgfMZJCaoGGUBx9NfOAIB P3JnfVU3LhnYAAABmbbkXQcAAAQDAEcwRQIgakpcX9a4fAM3zPNFgGFPgpDSv+xa v6rmZ+9ialxCte8CIQDj8rYwIaMe7+UHbvGa2w91dvYKH65ORJYgIVrco4t9uTAN BgkqhkiG9w0BAQsFAAOCAQEALvvNP9SWtR+s4IZRotUlyK50E2Ggspgbr9Pfczc5 zEBNqqClu1GV2RtT/TbWtTpO3cxVwKEX83aQ5OCb7in26jn+k5DOHKx9xx2nGv6r CWHv2HXmWR7IJMA4NkefS+cTN/6KwnrPqJZD8iwGyZcVjP9ur0ezmPTZCnGybnHI ZXJpU6JIT2M3azlys8HrWhubJoQoH8eHzSbPx5ZgwSM3MRK/+ydeLGaZD3KPJDxc Ej1lw0owxq6vvUS2Wof2MoWK7uzJqSt/eV3ePFRb/ZGtov9pcS3119GARAARcH8w A8fskoj16tAvSSr4XxbQRO2dxYbS4x4Y0bczruyUa/KSyA== -----END CERTIFICATE----- subject=CN = www.b-merit.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 4446 bytes and written 451 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: CF92A4ACD8DD11D7DF004D752CAC464FCCBA38BA56AD1E8788027BBE90138034 Session-ID-ctx: Master-Key: 85B27EA038B267D9815BB99340D70C376EE723AA968A4AA1E1712ECF6B0840E557FAC47C7F5587280E042C46DA5CAD5A PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 45282 (seconds) TLS session ticket: 0000 - 01 bc f8 4f 87 aa 9f 88-6b 79 72 b6 9a 0b 95 f9 ...O....kyr..... 0010 - 46 af ba a3 a1 0a c1 cb-f7 07 b6 2e 38 d1 5e e2 F...........8.^. 0020 - 43 13 fa 6f 13 d5 ce 4f-9b 58 ce 21 f9 48 1b dd C..o...O.X.!.H.. 0030 - 8f 10 5b 37 3f 2e 4c b1-97 7d 2f 59 8c 37 bc 8a ..[7?.L..}/Y.7.. 0040 - b2 66 78 b2 5b 4d 06 00-4c 05 f3 5f 09 e1 70 11 .fx.[M..L.._..p. 0050 - e9 4d 9e bd 88 6c 59 42-1d b3 ac bd 38 ae 40 6f .M...lYB....8.@o 0060 - a9 95 e5 1e d4 3a 74 0c-06 09 39 aa ed af 58 72 .....:t...9...Xr 0070 - ee ce 52 50 a6 a8 3e 83-f3 60 7d 70 f2 df 5d 6a ..RP..>..`}p..]j 0080 - ea e8 28 e2 f2 7d fc 9b-4d 06 ..(..}..M. Start Time: 1762119912 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
www.b-merit.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.