Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.b-merit.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.b-merit.jp
And you can
check your domain name
.
#
Certificate of
www.b-merit.jp
{ "serial": "0CDE69922AF239412E160C4A68A2C294", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "www.b-merit.jp", "port": 443, "subjectAltName": "DNS:www.b-merit.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2025/10/06 09:00:00", "expires_at": "2026/11/05 08:59:59", "today": "2026/01/01 08:15:01", "UTC": { "updated_at": "2025-10-06T00:00:00Z", "expires_at": "2026-11-04T23:59:59Z", "today": "2025-12-31T23:15:01Z" }, "remaining_days": 308 }
#
OCSP response of
www.b-merit.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = www.b-merit.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Oct 6 00:00:00 2025 GMT; NotAfter: Nov 4 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFvjCCBKagAwIBAgIQDN5pkiryOUEuFgxKaKLClDANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTAwNjAwMDAwMFoXDTI2MTEwNDIzNTk1OVowGTEX MBUGA1UEAxMOd3d3LmItbWVyaXQuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQC3r34+T8m1pywwYLRAFaZmhkTEuKtq2ja+F5ltyLWqQoVbsAvT5+Zg g0Yk21inUfbh+MRj40U1xKBE774JvahgBKNQ0V/CFs5f+hnt6c++BAHRzRfaF63l KmRxdvTTF+dF5n5jIN2EKlNit/MM0zTFyfa6RJEzlnzc3lmyaZouKreqqmT/NP2K jnfVhKLwjYpKUhDpMdvXGJeQdVnBYGUreLnwyhzlaP5au0blL21xFWLfzBQYXjH/ 5M4hxL4oqi4CY73SKno4dZL5Ju1mwh91Nu+mJnJZFbFGQjY+P5fkRABA4yICq+dW 5n1AWWckYX1NPHNQYnruGIANbmg+rnUjAgMBAAGjggLdMIIC2TAfBgNVHSMEGDAW gBQfUpJhVoJUf4Fm2B09CqoyXIfdCDAdBgNVHQ4EFgQUWuVZKYnq8EJ4T8RpSdJC UEZfQS0wGQYDVR0RBBIwEIIOd3d3LmItbWVyaXQuanAwEwYDVR0gBAwwCjAIBgZn gQwBAgEwDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMDsGA1Ud HwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJtMDQuYW1hem9udHJ1c3QuY29tL3Iy bTA0LmNybDB1BggrBgEFBQcBAQRpMGcwLQYIKwYBBQUHMAGGIWh0dHA6Ly9vY3Nw LnIybTA0LmFtYXpvbnRydXN0LmNvbTA2BggrBgEFBQcwAoYqaHR0cDovL2NydC5y Mm0wNC5hbWF6b250cnVzdC5jb20vcjJtMDQuY2VyMAwGA1UdEwEB/wQCMAAwggF+ BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB2ANdtfRDRp/V3wsfpX9cAv/mCyTNaZeHQ swFzF8DIxWl3AAABmbbkXMkAAAQDAEcwRQIgI61eyJyjQw8uiJQmwjef4XiDTc1l rqz9u/iVW+bNEpsCIQCbGwUnmsLtt+VWVJsd+6h66au2BhEc/OpDC+cf1KaKpAB2 AMIxfldFGaNF7n843rKQQevHwiFaIr9/1bWtdprZDlLNAAABmbbkXPUAAAQDAEcw RQIhAP0TE4m8wOO1fOdZI3XsM342ZO1iju4ZfU9BlVnHNTzeAiA7+FwwD0q6Jk9h nyhq/zgOJ7EcA1+R0It8czSSxFARHQB2AJROQ4f67MHvgfMZJCaoGGUBx9NfOAIB P3JnfVU3LhnYAAABmbbkXQcAAAQDAEcwRQIgakpcX9a4fAM3zPNFgGFPgpDSv+xa v6rmZ+9ialxCte8CIQDj8rYwIaMe7+UHbvGa2w91dvYKH65ORJYgIVrco4t9uTAN BgkqhkiG9w0BAQsFAAOCAQEALvvNP9SWtR+s4IZRotUlyK50E2Ggspgbr9Pfczc5 zEBNqqClu1GV2RtT/TbWtTpO3cxVwKEX83aQ5OCb7in26jn+k5DOHKx9xx2nGv6r CWHv2HXmWR7IJMA4NkefS+cTN/6KwnrPqJZD8iwGyZcVjP9ur0ezmPTZCnGybnHI ZXJpU6JIT2M3azlys8HrWhubJoQoH8eHzSbPx5ZgwSM3MRK/+ydeLGaZD3KPJDxc Ej1lw0owxq6vvUS2Wof2MoWK7uzJqSt/eV3ePFRb/ZGtov9pcS3119GARAARcH8w A8fskoj16tAvSSr4XxbQRO2dxYbS4x4Y0bczruyUa/KSyA== -----END CERTIFICATE----- subject=CN = www.b-merit.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 4446 bytes and written 451 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 5A4494454C6CEDEB020D31DC8DF2C9EF16D51F1B1DA1E6A89536C344A0A025DB Session-ID-ctx: Master-Key: C15B5CB3F6CF1E3230D7161AD535B8588DACD3A51789D9FB29FEE3F675A8FA72E36CCF9B0BA07AD26F4A0F0FF984CF30 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 64197 (seconds) TLS session ticket: 0000 - 01 fa 02 7f a2 12 c0 40-09 ef 08 85 f1 90 95 5b .......@.......[ 0010 - a3 a3 8c 69 cd 21 05 6a-9f 73 88 15 5b 00 fb 80 ...i.!.j.s..[... 0020 - bf 3c a4 50 c5 7d f2 97-b8 11 9e c2 8a f8 e5 25 .<.P.}.........% 0030 - fa bd 5a 44 8f 78 2b 25-dc 61 c1 bd 6d bb 54 96 ..ZD.x+%.a..m.T. 0040 - 32 68 ff d0 a6 5f 44 8f-1e 26 ec a1 45 21 b5 dd 2h..._D..&..E!.. 0050 - d5 af 1a 9a 74 09 2a 62-f7 f7 59 70 e6 05 24 09 ....t.*b..Yp..$. 0060 - 6a 4f 72 f4 6e 7c 93 b4-26 89 68 68 4f 1d 71 c3 jOr.n|..&.hhO.q. 0070 - 26 30 33 79 29 d6 4a e6-1b 27 e7 17 c9 3d 4d 1d &03y).J..'...=M. 0080 - 49 57 ca bd fe b7 f2 76-7b 63 IW.....v{c Start Time: 1767222902 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
www.b-merit.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.