Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.sustainability.k.u-tokyo.ac.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.sustainability.k.u-tokyo.ac.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.sustainability.k.u-tokyo.ac.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.sustainability.k.u-tokyo.ac.jp
And you can
check your domain name
.
#
Certificate of
www.sustainability.k.u-tokyo.ac.jp
{ "serial": "05F3128BD8DD5AAD3DD0198574C838E8", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "www.sustainability.k.u-tokyo.ac.jp", "port": 443, "subjectAltName": "DNS:k.u-tokyo.ac.jp, DNS:sustainability.k.u-tokyo.ac.jp, DNS:*.k.u-tokyo.ac.jp, DNS:*.sustainability.k.u-tokyo.ac.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2024/08/16 09:00:00", "expires_at": "2025/09/16 08:59:59", "today": "2025/05/09 23:36:07", "UTC": { "updated_at": "2024-08-16T00:00:00Z", "expires_at": "2025-09-15T23:59:59Z", "today": "2025-05-09T14:36:07Z" }, "remaining_days": 129 }
#
OCSP response of
www.sustainability.k.u-tokyo.ac.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = k.u-tokyo.ac.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M02 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 16 00:00:00 2024 GMT; NotAfter: Sep 15 23:59:59 2025 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M02 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:25:30 2022 GMT; NotAfter: Aug 23 22:25:30 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT 3 s:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 i:C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Sep 2 00:00:00 2009 GMT; NotAfter: Jun 28 17:39:16 2034 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIGIDCCBQigAwIBAgIQBfMSi9jdWq090BmFdMg46DANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAyMB4XDTI0MDgxNjAwMDAwMFoXDTI1MDkxNTIzNTk1OVowGjEY MBYGA1UEAxMPay51LXRva3lvLmFjLmpwMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A MIIBCgKCAQEAplb2Jwe2dIcL8OJrTMHSHy+aUxkcNun4wki36ocotoa+Ee7j2+vv EtinVMbOg2uL4KfYK1yXOlpcrZZaJFF43Z5MQ0SnwByuCcuR7pOqDtdR75CX6Z4m bdplw46dcYMbYMi+xJDR7koXHWNlRRITPCycT2uMA2WFA+Ukrx2acwgQoWMvde5s rqHtS3hXUZRp/ON/a0SWpjNgu6NsRo0pTnyJLS1KQ7hP0Ja3TTgnaEja+YE6EEtZ 07s+cJGtEz/XX+up7d6hr6myrRib+cmIRLoDDrEnvH9jWSYwt5p+29M6Yk06DoIg 8ER2Y9o0ECDc6trMVUsVAvrz85zOcKMf5QIDAQABo4IDPjCCAzowHwYDVR0jBBgw FoAUwDFSzVpQw4J8dHHOy+mc+XrrguIwHQYDVR0OBBYEFJriZRiFHHmw7qZ1NU2D N3QOGJhPMG8GA1UdEQRoMGaCD2sudS10b2t5by5hYy5qcIIec3VzdGFpbmFiaWxp dHkuay51LXRva3lvLmFjLmpwghEqLmsudS10b2t5by5hYy5qcIIgKi5zdXN0YWlu YWJpbGl0eS5rLnUtdG9reW8uYWMuanAwEwYDVR0gBAwwCjAIBgZngQwBAgEwDgYD VR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjA7BgNV HR8ENDAyMDCgLqAshipodHRwOi8vY3JsLnIybTAyLmFtYXpvbnRydXN0LmNvbS9y Mm0wMi5jcmwwdQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFodHRwOi8vb2Nz cC5yMm0wMi5hbWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0dHA6Ly9jcnQu cjJtMDIuYW1hem9udHJ1c3QuY29tL3IybTAyLmNlcjAMBgNVHRMBAf8EAjAAMIIB fwYKKwYBBAHWeQIEAgSCAW8EggFrAWkAdgDd3Mo0ldfhFgXnlTL6x5/4PRxQ39sA OhQSdgosrLvIKgAAAZFYr1fSAAAEAwBHMEUCICA5jmz2LkLysl+xpOcS4N3sRusc QLLEiGwpokpJHSAWAiEAyeVjlGjx9V22drC2ksHI+PDbGaq13cFujH/tGUBeGlwA dwDm0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAZFYr1ekAAAEAwBI MEYCIQCt25RrzVkSsH2T4RvsRO3Ug4h9Zc6mH3gsK1CCCUCQ6gIhAPIKfe6DkNbC pD4kFb7DWhijgyfDIcvkwIPj2tMiGd37AHYAzPsPaoVxCWX+lZtTzumyfCLphVwN l422qX5UwP5MDbAAAAGRWK9XZQAABAMARzBFAiBRJFJTmhbmat2oX/4MjUM1YlSi ctkPcWyc+RCm4b5/zAIhANHdB5Xsq1T3yongHNhZHzCA0lfnPN3NEF6UUE/a8r3/ MA0GCSqGSIb3DQEBCwUAA4IBAQC5lnax+usjULegcsJcIcFU1fMJdKOvxXmcw+Lc fNegKcWuuWzB8kubqBvlt1tO9nUIDUqbFaVfea/xo1ZJH5vkRuLPNqYL2DUOsp/Y 9eOTDM+jGRshYzdS2kYWDnDrFJjivJsmvYYJ3+lS4u+V6Qt9vLfQLrlPH5d0fqy6 3x3nWy/r/Kapqws483NB1SOcxfdF6RggJlD80d823T60fjMWEyusnsU73/l77moK mPqcokvSz9KpVEzWOsk+8Pqo8QZZKrfVHMxdp65a7yrtcUEyWBkdVLMASZdK0Cv9 k176C5iUWa8DEc1eXqdYrPldyPoAGdudUA3mvVepnVDT6m/4 -----END CERTIFICATE----- subject=CN = k.u-tokyo.ac.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M02 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 5692 bytes and written 471 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 0A6265FE665C5C0594C91CFD3D3F192C070FCEB006275E93F11D9B9FAABFA1B4 Session-ID-ctx: Master-Key: B4BFCCE605871CC01AEF69EB918038BAC4D98607D3056DC9050425D1C934838F0172B80B123CC0252CF089B65678955D PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 86400 (seconds) TLS session ticket: 0000 - 01 b6 ec 30 e2 d8 2e f1-e9 a4 8f 02 92 99 0d 03 ...0............ 0010 - 11 b1 33 d7 ac 02 af 77-6a 5b 94 37 75 eb 48 46 ..3....wj[.7u.HF 0020 - 86 36 10 1b ac 79 c2 95-af 08 9c c6 b9 0a 4c ad .6...y........L. 0030 - 2e 10 3c 43 38 8f e6 6c-89 ab 12 a5 57 ca 17 e8 ..<C8..l....W... 0040 - ce 38 64 61 5a d3 ce c8-8d 6b ce fd 84 24 b7 2e .8daZ....k...$.. 0050 - 75 9f 9d 1e c9 c7 c4 af-7a 1b 97 84 4c 55 a5 4d u.......z...LU.M 0060 - 4a cd 6a 2d ca 66 93 88-09 8d c7 00 c2 80 91 a1 J.j-.f.......... 0070 - db b3 ff b7 cc f1 fa 65-1e bd cf d4 db 41 20 ac .......e.....A . 0080 - d4 2c 6b 41 17 0c 4e 5f-19 03 .,kA..N_.. Start Time: 1746801367 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
www.sustainability.k.u-tokyo.ac.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.