Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.b-merit.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.b-merit.jp
And you can
check your domain name
.
#
Certificate of
www.b-merit.jp
{ "serial": "0CDE69922AF239412E160C4A68A2C294", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "www.b-merit.jp", "port": 443, "subjectAltName": "DNS:www.b-merit.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2025/10/06 09:00:00", "expires_at": "2026/11/05 08:59:59", "today": "2025/11/03 14:00:45", "UTC": { "updated_at": "2025-10-06T00:00:00Z", "expires_at": "2026-11-04T23:59:59Z", "today": "2025-11-03T05:00:45Z" }, "remaining_days": 366 }
#
OCSP response of
www.b-merit.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = www.b-merit.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Oct 6 00:00:00 2025 GMT; NotAfter: Nov 4 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFvjCCBKagAwIBAgIQDN5pkiryOUEuFgxKaKLClDANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTAwNjAwMDAwMFoXDTI2MTEwNDIzNTk1OVowGTEX MBUGA1UEAxMOd3d3LmItbWVyaXQuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQC3r34+T8m1pywwYLRAFaZmhkTEuKtq2ja+F5ltyLWqQoVbsAvT5+Zg g0Yk21inUfbh+MRj40U1xKBE774JvahgBKNQ0V/CFs5f+hnt6c++BAHRzRfaF63l KmRxdvTTF+dF5n5jIN2EKlNit/MM0zTFyfa6RJEzlnzc3lmyaZouKreqqmT/NP2K jnfVhKLwjYpKUhDpMdvXGJeQdVnBYGUreLnwyhzlaP5au0blL21xFWLfzBQYXjH/ 5M4hxL4oqi4CY73SKno4dZL5Ju1mwh91Nu+mJnJZFbFGQjY+P5fkRABA4yICq+dW 5n1AWWckYX1NPHNQYnruGIANbmg+rnUjAgMBAAGjggLdMIIC2TAfBgNVHSMEGDAW gBQfUpJhVoJUf4Fm2B09CqoyXIfdCDAdBgNVHQ4EFgQUWuVZKYnq8EJ4T8RpSdJC UEZfQS0wGQYDVR0RBBIwEIIOd3d3LmItbWVyaXQuanAwEwYDVR0gBAwwCjAIBgZn gQwBAgEwDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMDsGA1Ud HwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJtMDQuYW1hem9udHJ1c3QuY29tL3Iy bTA0LmNybDB1BggrBgEFBQcBAQRpMGcwLQYIKwYBBQUHMAGGIWh0dHA6Ly9vY3Nw LnIybTA0LmFtYXpvbnRydXN0LmNvbTA2BggrBgEFBQcwAoYqaHR0cDovL2NydC5y Mm0wNC5hbWF6b250cnVzdC5jb20vcjJtMDQuY2VyMAwGA1UdEwEB/wQCMAAwggF+ BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB2ANdtfRDRp/V3wsfpX9cAv/mCyTNaZeHQ swFzF8DIxWl3AAABmbbkXMkAAAQDAEcwRQIgI61eyJyjQw8uiJQmwjef4XiDTc1l rqz9u/iVW+bNEpsCIQCbGwUnmsLtt+VWVJsd+6h66au2BhEc/OpDC+cf1KaKpAB2 AMIxfldFGaNF7n843rKQQevHwiFaIr9/1bWtdprZDlLNAAABmbbkXPUAAAQDAEcw RQIhAP0TE4m8wOO1fOdZI3XsM342ZO1iju4ZfU9BlVnHNTzeAiA7+FwwD0q6Jk9h nyhq/zgOJ7EcA1+R0It8czSSxFARHQB2AJROQ4f67MHvgfMZJCaoGGUBx9NfOAIB P3JnfVU3LhnYAAABmbbkXQcAAAQDAEcwRQIgakpcX9a4fAM3zPNFgGFPgpDSv+xa v6rmZ+9ialxCte8CIQDj8rYwIaMe7+UHbvGa2w91dvYKH65ORJYgIVrco4t9uTAN BgkqhkiG9w0BAQsFAAOCAQEALvvNP9SWtR+s4IZRotUlyK50E2Ggspgbr9Pfczc5 zEBNqqClu1GV2RtT/TbWtTpO3cxVwKEX83aQ5OCb7in26jn+k5DOHKx9xx2nGv6r CWHv2HXmWR7IJMA4NkefS+cTN/6KwnrPqJZD8iwGyZcVjP9ur0ezmPTZCnGybnHI ZXJpU6JIT2M3azlys8HrWhubJoQoH8eHzSbPx5ZgwSM3MRK/+ydeLGaZD3KPJDxc Ej1lw0owxq6vvUS2Wof2MoWK7uzJqSt/eV3ePFRb/ZGtov9pcS3119GARAARcH8w A8fskoj16tAvSSr4XxbQRO2dxYbS4x4Y0bczruyUa/KSyA== -----END CERTIFICATE----- subject=CN = www.b-merit.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 4446 bytes and written 451 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 5353D215364DB7E6A2CA458D0516DCCD2AF4EDCD266DA023920678B46092D1A5 Session-ID-ctx: Master-Key: B635DA55C86AB7C2109AE868E6FA47483A383674A59F1E5F218D369E459DD04CEB186ECAE49021AD52C20A7F5A6E24C6 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 62349 (seconds) TLS session ticket: 0000 - 01 19 29 b3 9d 9b a3 24-e5 c7 5a 04 8d fd 9b 22 ..)....$..Z...." 0010 - 4a cf be 26 c3 f4 f5 8f-97 a1 0a 01 68 67 3f 79 J..&........hg?y 0020 - 99 db 29 bd b9 bf 86 1b-4f 38 fe 47 dc 20 8f 3e ..).....O8.G. .> 0030 - 96 d6 bf 31 f5 32 85 d1-21 fa 86 7f 91 06 1c de ...1.2..!....... 0040 - f8 59 d5 51 79 5d 0f d4-6b b8 dc 0d 94 6d 46 a9 .Y.Qy]..k....mF. 0050 - 51 42 da dd 93 59 ed 4d-79 f6 03 de 23 ca 95 ab QB...Y.My...#... 0060 - 34 09 52 48 be 5e 5a 0c-cd e1 7a 75 c7 b0 24 3d 4.RH.^Z...zu..$= 0070 - 54 37 f4 b9 f4 4b fe e0-04 3a 08 78 ee 57 59 fa T7...K...:.x.WY. 0080 - 81 84 c4 82 75 30 f5 5e-e5 c6 ....u0.^.. Start Time: 1762146046 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
www.b-merit.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.