Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.desede.de
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.desede.de
And you can
check your domain name
.
#
Certificate of
www.desede.de
{ "serial": "730BB109B64C375A0E1F45624364AE51", "OCSP_serial": "730BB109B64C375A0E1F45624364AE51", "OCSP_cert_status": "good", "OCSP_this_update": "Mar 31 17:01:46 2026 GMT", "OCSP_next_update": "Apr 7 16:01:45 2026 GMT", "domainName": "www.desede.de", "port": 443, "subjectAltName": "DNS:www.desede.de", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2026/03/21 23:08:58", "expires_at": "2026/06/20 00:08:56", "today": "2026/04/01 10:28:03", "UTC": { "updated_at": "2026-03-21T14:08:58Z", "expires_at": "2026-06-19T15:08:56Z", "today": "2026-04-01T01:28:03Z" }, "remaining_days": 79 }
#
OCSP response of
www.desede.de
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Mar 31 17:01:46 2026 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 730BB109B64C375A0E1F45624364AE51 Cert Status: good This Update: Mar 31 17:01:46 2026 GMT Next Update: Apr 7 16:01:45 2026 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:46:02:21:00:d5:f4:bf:67:ba:1b:1f:de:b4:f2:42:b4:52: 2f:ea:27:4f:c1:78:29:2a:17:4c:c5:00:34:5b:9d:d2:35:58: 9a:02:21:00:f9:30:1c:60:10:33:4e:16:48:c1:84:4a:78:03: 18:b0:8f:03:81:ca:29:b8:25:46:00:1f:03:ba:44:cb:87:5e ====================================== --- Certificate chain 0 s:CN = www.desede.de i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Mar 21 14:08:58 2026 GMT; NotAfter: Jun 19 15:08:56 2026 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDmjCCA0CgAwIBAgIQcwuxCbZMN1oOH0ViQ2SuUTAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjYwMzIxMTQwODU4WhcNMjYwNjE5MTUwODU2WjAYMRYwFAYD VQQDEw13d3cuZGVzZWRlLmRlMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEQXqa D3Nhq1PCvsp9Jy6Dm18uk5s2OQOkx2p3EZSisDzRCSlCdeZdqz2Ly5Q1qDZwNT/5 2gqHVunznRoYqeAgm6OCAkcwggJDMA4GA1UdDwEB/wQEAwIHgDATBgNVHSUEDDAK BggrBgEFBQcDATAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQQVfCGMKryAgsJpFfg ZAf6TcNRlTAfBgNVHSMEGDAWgBSQd5I1Z8T/qMyp5nvZgHl7zJP5ODBeBggrBgEF BQcBAQRSMFAwJwYIKwYBBQUHMAGGG2h0dHA6Ly9vLnBraS5nb29nL3Mvd2UxL2N3 czAlBggrBgEFBQcwAoYZaHR0cDovL2kucGtpLmdvb2cvd2UxLmNydDAYBgNVHREE ETAPgg13d3cuZGVzZWRlLmRlMBMGA1UdIAQMMAowCAYGZ4EMAQIBMDYGA1UdHwQv MC0wK6ApoCeGJWh0dHA6Ly9jLnBraS5nb29nL3dlMS9XQ3V1RWJfT2Rudy5jcmww ggEFBgorBgEEAdZ5AgQCBIH2BIHzAPEAdgCWl2S/VViXrfdDh2g3CEJ36fA61fak 8zZuRqQ/D8qpxgAAAZ0Q8T53AAAEAwBHMEUCIQDh1ONg2GTpK0qCEDIh9mmXChXR AaZhzxj3kc8mtU8BuAIgRhhkHD4asS4IknNjv3jgJ3SSdwaOaxOTFzKxbi2iM/0A dwAWgy2r8KklDw/wOqVF/8i/yCPQh0v2BCkn+OcfMxP1+gAAAZ0Q8T5dAAAEAwBI MEYCIQCLkBozpfWU0fSfzt9wBX/D81C+na31dYejO6993uDnYAIhAM0EmIQU+mXB M3xbnM8ZfGvPlLiqL52Q2e/x1GPHrx5xMAoGCCqGSM49BAMCA0gAMEUCIHm6gxbM 85J3zUEqwJYE6shdbHc/+pQGiZnoSiiiOvlsAiEA9eGoLzkUuG7mEmSQvkNtLG/z p2dzH+Ij5KfaZgMxrWY= -----END CERTIFICATE----- subject=CN = www.desede.de issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3102 bytes and written 404 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
www.desede.de
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.