Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.b-merit.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.b-merit.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.b-merit.jp
And you can
check your domain name
.
#
Certificate of
www.b-merit.jp
{ "serial": "0CDE69922AF239412E160C4A68A2C294", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "www.b-merit.jp", "port": 443, "subjectAltName": "DNS:www.b-merit.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2025/10/06 09:00:00", "expires_at": "2026/11/05 08:59:59", "today": "2026/04/01 11:58:51", "UTC": { "updated_at": "2025-10-06T00:00:00Z", "expires_at": "2026-11-04T23:59:59Z", "today": "2026-04-01T02:58:51Z" }, "remaining_days": 217 }
#
OCSP response of
www.b-merit.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = www.b-merit.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M04 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Oct 6 00:00:00 2025 GMT; NotAfter: Nov 4 23:59:59 2026 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M04 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:26:35 2022 GMT; NotAfter: Aug 23 22:26:35 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIFvjCCBKagAwIBAgIQDN5pkiryOUEuFgxKaKLClDANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTA0MB4XDTI1MTAwNjAwMDAwMFoXDTI2MTEwNDIzNTk1OVowGTEX MBUGA1UEAxMOd3d3LmItbWVyaXQuanAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQC3r34+T8m1pywwYLRAFaZmhkTEuKtq2ja+F5ltyLWqQoVbsAvT5+Zg g0Yk21inUfbh+MRj40U1xKBE774JvahgBKNQ0V/CFs5f+hnt6c++BAHRzRfaF63l KmRxdvTTF+dF5n5jIN2EKlNit/MM0zTFyfa6RJEzlnzc3lmyaZouKreqqmT/NP2K jnfVhKLwjYpKUhDpMdvXGJeQdVnBYGUreLnwyhzlaP5au0blL21xFWLfzBQYXjH/ 5M4hxL4oqi4CY73SKno4dZL5Ju1mwh91Nu+mJnJZFbFGQjY+P5fkRABA4yICq+dW 5n1AWWckYX1NPHNQYnruGIANbmg+rnUjAgMBAAGjggLdMIIC2TAfBgNVHSMEGDAW gBQfUpJhVoJUf4Fm2B09CqoyXIfdCDAdBgNVHQ4EFgQUWuVZKYnq8EJ4T8RpSdJC UEZfQS0wGQYDVR0RBBIwEIIOd3d3LmItbWVyaXQuanAwEwYDVR0gBAwwCjAIBgZn gQwBAgEwDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMDsGA1Ud HwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJtMDQuYW1hem9udHJ1c3QuY29tL3Iy bTA0LmNybDB1BggrBgEFBQcBAQRpMGcwLQYIKwYBBQUHMAGGIWh0dHA6Ly9vY3Nw LnIybTA0LmFtYXpvbnRydXN0LmNvbTA2BggrBgEFBQcwAoYqaHR0cDovL2NydC5y Mm0wNC5hbWF6b250cnVzdC5jb20vcjJtMDQuY2VyMAwGA1UdEwEB/wQCMAAwggF+ BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB2ANdtfRDRp/V3wsfpX9cAv/mCyTNaZeHQ swFzF8DIxWl3AAABmbbkXMkAAAQDAEcwRQIgI61eyJyjQw8uiJQmwjef4XiDTc1l rqz9u/iVW+bNEpsCIQCbGwUnmsLtt+VWVJsd+6h66au2BhEc/OpDC+cf1KaKpAB2 AMIxfldFGaNF7n843rKQQevHwiFaIr9/1bWtdprZDlLNAAABmbbkXPUAAAQDAEcw RQIhAP0TE4m8wOO1fOdZI3XsM342ZO1iju4ZfU9BlVnHNTzeAiA7+FwwD0q6Jk9h nyhq/zgOJ7EcA1+R0It8czSSxFARHQB2AJROQ4f67MHvgfMZJCaoGGUBx9NfOAIB P3JnfVU3LhnYAAABmbbkXQcAAAQDAEcwRQIgakpcX9a4fAM3zPNFgGFPgpDSv+xa v6rmZ+9ialxCte8CIQDj8rYwIaMe7+UHbvGa2w91dvYKH65ORJYgIVrco4t9uTAN BgkqhkiG9w0BAQsFAAOCAQEALvvNP9SWtR+s4IZRotUlyK50E2Ggspgbr9Pfczc5 zEBNqqClu1GV2RtT/TbWtTpO3cxVwKEX83aQ5OCb7in26jn+k5DOHKx9xx2nGv6r CWHv2HXmWR7IJMA4NkefS+cTN/6KwnrPqJZD8iwGyZcVjP9ur0ezmPTZCnGybnHI ZXJpU6JIT2M3azlys8HrWhubJoQoH8eHzSbPx5ZgwSM3MRK/+ydeLGaZD3KPJDxc Ej1lw0owxq6vvUS2Wof2MoWK7uzJqSt/eV3ePFRb/ZGtov9pcS3119GARAARcH8w A8fskoj16tAvSSr4XxbQRO2dxYbS4x4Y0bczruyUa/KSyA== -----END CERTIFICATE----- subject=CN = www.b-merit.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M04 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 4446 bytes and written 451 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 022B66CEC71A46498B9168A69E74ABCFFBDAF806D718A6EA94C95D6752DAD461 Session-ID-ctx: Master-Key: 1D687EE144E487FE13B2B723BE304161ED506D3A58B9DC59B0E4E75A9757D9A04EB15D151E0B9926C57C13877DCF5117 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 73568 (seconds) TLS session ticket: 0000 - 01 36 48 e7 99 f9 41 1d-3a 91 24 5c 6d 48 10 bd .6H...A.:.$\mH.. 0010 - 6d a6 e2 d3 18 93 e0 41-66 7d 50 fb 98 b1 b7 4a m......Af}P....J 0020 - b7 02 91 6b d3 8c be 2f-fe 4f 39 6f 12 70 5e e2 ...k.../.O9o.p^. 0030 - df 50 76 9c 21 62 19 9e-8c e1 13 d6 44 a7 b4 83 .Pv.!b......D... 0040 - 19 59 51 cd eb 93 13 31-db e0 9d 52 b9 9e a2 e4 .YQ....1...R.... 0050 - 87 6e 0c a1 9d 35 92 e8-99 ab 32 9c a1 cf ba 5c .n...5....2....\ 0060 - 9c 49 06 7b 5f 38 14 45-62 61 1c 31 dd 3e f8 8a .I.{_8.Eba.1.>.. 0070 - 33 da 78 43 0a d2 97 68-11 2a d4 64 92 51 c5 fd 3.xC...h.*.d.Q.. 0080 - a6 2e 33 f0 90 32 76 e7-cf 8b ..3..2v... Start Time: 1775012331 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
www.b-merit.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.