Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.desede.de
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.desede.de
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.desede.de
And you can
check your domain name
.
#
Certificate of
www.desede.de
{ "serial": "3A0946DCE7B6FBBC0E6175C572D65837", "OCSP_serial": "3A0946DCE7B6FBBC0E6175C572D65837", "OCSP_cert_status": "good", "OCSP_this_update": "Nov 1 19:27:30 2025 GMT", "OCSP_next_update": "Nov 8 18:27:29 2025 GMT", "domainName": "www.desede.de", "port": 443, "subjectAltName": "DNS:www.desede.de", "is_valid": true, "CA": "Google Trust Services", "updated_at": "2025/09/25 21:51:35", "expires_at": "2025/12/24 22:51:33", "today": "2025/11/03 07:05:56", "UTC": { "updated_at": "2025-09-25T12:51:35Z", "expires_at": "2025-12-24T13:51:33Z", "today": "2025-11-02T22:05:56Z" }, "remaining_days": 51 }
#
OCSP response of
www.desede.de
from OCSP Stapling
CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Produced At: Nov 1 19:27:30 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: B9BED5F1A61E40B24196B0C29E7E1A9D8BFCB520 Issuer Key Hash: 9077923567C4FFA8CCA9E67BD980797BCC93F938 Serial Number: 3A0946DCE7B6FBBC0E6175C572D65837 Cert Status: good This Update: Nov 1 19:27:30 2025 GMT Next Update: Nov 8 18:27:29 2025 GMT Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:46:02:21:00:90:16:17:53:7e:a8:06:f8:23:22:4b:d9:9c: af:a7:0e:10:e4:07:43:9e:90:f5:9f:72:07:3d:b0:83:bf:ed: 5e:02:21:00:e3:bb:77:29:07:f5:14:56:3c:eb:bb:c0:e0:da: 64:88:1f:6a:67:39:0a:8d:d5:c3:ab:67:1f:aa:79:4c:54:a6 ====================================== --- Certificate chain 0 s:CN = www.desede.de i:C = US, O = Google Trust Services, CN = WE1 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA256 v:NotBefore: Sep 25 12:51:35 2025 GMT; NotAfter: Dec 24 13:51:33 2025 GMT 1 s:C = US, O = Google Trust Services, CN = WE1 i:C = US, O = Google Trust Services LLC, CN = GTS Root R4 a:PKEY: id-ecPublicKey, 256 (bit); sigalg: ecdsa-with-SHA384 v:NotBefore: Dec 13 09:00:00 2023 GMT; NotAfter: Feb 20 14:00:00 2029 GMT 2 s:C = US, O = Google Trust Services LLC, CN = GTS Root R4 i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA a:PKEY: id-ecPublicKey, 384 (bit); sigalg: RSA-SHA256 v:NotBefore: Nov 15 03:43:21 2023 GMT; NotAfter: Jan 28 00:00:42 2028 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIDmTCCA0CgAwIBAgIQOglG3Oe2+7wOYXXFctZYNzAKBggqhkjOPQQDAjA7MQsw CQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYD VQQDEwNXRTEwHhcNMjUwOTI1MTI1MTM1WhcNMjUxMjI0MTM1MTMzWjAYMRYwFAYD VQQDEw13d3cuZGVzZWRlLmRlMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEACTS rz6TtqwtKulGeDmaClOg1104upsORcslP1R6VJOdWIDaNw2Tg09/qaxueEh7jwzM SIwC7jvI1hwJdL4rqKOCAkcwggJDMA4GA1UdDwEB/wQEAwIHgDATBgNVHSUEDDAK BggrBgEFBQcDATAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBQJAyfbzBsc06IzJf6m rFjykq/Y4zAfBgNVHSMEGDAWgBSQd5I1Z8T/qMyp5nvZgHl7zJP5ODBeBggrBgEF BQcBAQRSMFAwJwYIKwYBBQUHMAGGG2h0dHA6Ly9vLnBraS5nb29nL3Mvd2UxL09n azAlBggrBgEFBQcwAoYZaHR0cDovL2kucGtpLmdvb2cvd2UxLmNydDAYBgNVHREE ETAPgg13d3cuZGVzZWRlLmRlMBMGA1UdIAQMMAowCAYGZ4EMAQIBMDYGA1UdHwQv MC0wK6ApoCeGJWh0dHA6Ly9jLnBraS5nb29nL3dlMS9QQ1VlUVZpUWxZYy5jcmww ggEFBgorBgEEAdZ5AgQCBIH2BIHzAPEAdgDM+w9qhXEJZf6Vm1PO6bJ8IumFXA2X jbapflTA/kwNsAAAAZmBJMnNAAAEAwBHMEUCIQDSRZSdDpvhNFACFzD1cCwifInz lqv/9e7WTFVT/u77OAIgXJ0caPundhYoAsAPTeNXhN0fNUxfxJJG52CcWbpn3ykA dwDd3Mo0ldfhFgXnlTL6x5/4PRxQ39sAOhQSdgosrLvIKgAAAZmBJMk+AAAEAwBI MEYCIQDbxrf+VMklATTRK84/bROlN5IZjsW2e9AUqRU9fVpnqAIhAJdZmlqJI3eL LJVrGD+8TX0VCzC9hm0dUULOrX+IshhSMAoGCCqGSM49BAMCA0cAMEQCIH13j1eP eyAXrplQjUN1PfgqAceKhIuelBJV0MGRK+NNAiA9WQlFQg56O7mRSMsDW8L6jkjV T2hDsSSsy4153gfbJg== -----END CERTIFICATE----- subject=CN = www.desede.de issuer=C = US, O = Google Trust Services, CN = WE1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3101 bytes and written 404 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) ---
#
OCSP response of
www.desede.de
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.