Welcome to OCSP Checker.
Author: coeurl (
@debiru_R
)
This is test page for
OCSP Stapling Test
.
Test URL:
https://www.sustainability.k.u-tokyo.ac.jp
Each APIs:
https://ssl.lavoscore.org/api/sslcert-expires/?q=www.sustainability.k.u-tokyo.ac.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp-stapling/?q=www.sustainability.k.u-tokyo.ac.jp
https://ssl.lavoscore.org/api/sslcert-expires/ocsp/?q=www.sustainability.k.u-tokyo.ac.jp
And you can
check your domain name
.
#
Certificate of
www.sustainability.k.u-tokyo.ac.jp
{ "serial": "05F3128BD8DD5AAD3DD0198574C838E8", "OCSP_serial": null, "OCSP_cert_status": null, "OCSP_this_update": null, "OCSP_next_update": null, "domainName": "www.sustainability.k.u-tokyo.ac.jp", "port": 443, "subjectAltName": "DNS:k.u-tokyo.ac.jp, DNS:sustainability.k.u-tokyo.ac.jp, DNS:*.k.u-tokyo.ac.jp, DNS:*.sustainability.k.u-tokyo.ac.jp", "is_valid": true, "CA": "Amazon", "updated_at": "2024/08/16 09:00:00", "expires_at": "2025/09/16 08:59:59", "today": "2024/11/21 15:59:34", "UTC": { "updated_at": "2024-08-16T00:00:00Z", "expires_at": "2025-09-15T23:59:59Z", "today": "2024-11-21T06:59:34Z" }, "remaining_days": 298 }
#
OCSP response of
www.sustainability.k.u-tokyo.ac.jp
from OCSP Stapling
CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = k.u-tokyo.ac.jp i:C = US, O = Amazon, CN = Amazon RSA 2048 M02 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 16 00:00:00 2024 GMT; NotAfter: Sep 15 23:59:59 2025 GMT 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M02 i:C = US, O = Amazon, CN = Amazon Root CA 1 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Aug 23 22:25:30 2022 GMT; NotAfter: Aug 23 22:25:30 2030 GMT 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: May 25 12:00:00 2015 GMT; NotAfter: Dec 31 01:00:00 2037 GMT 3 s:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 i:C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256 v:NotBefore: Sep 2 00:00:00 2009 GMT; NotAfter: Jun 28 17:39:16 2034 GMT --- Server certificate -----BEGIN CERTIFICATE----- MIIGIDCCBQigAwIBAgIQBfMSi9jdWq090BmFdMg46DANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAyMB4XDTI0MDgxNjAwMDAwMFoXDTI1MDkxNTIzNTk1OVowGjEY MBYGA1UEAxMPay51LXRva3lvLmFjLmpwMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A MIIBCgKCAQEAplb2Jwe2dIcL8OJrTMHSHy+aUxkcNun4wki36ocotoa+Ee7j2+vv EtinVMbOg2uL4KfYK1yXOlpcrZZaJFF43Z5MQ0SnwByuCcuR7pOqDtdR75CX6Z4m bdplw46dcYMbYMi+xJDR7koXHWNlRRITPCycT2uMA2WFA+Ukrx2acwgQoWMvde5s rqHtS3hXUZRp/ON/a0SWpjNgu6NsRo0pTnyJLS1KQ7hP0Ja3TTgnaEja+YE6EEtZ 07s+cJGtEz/XX+up7d6hr6myrRib+cmIRLoDDrEnvH9jWSYwt5p+29M6Yk06DoIg 8ER2Y9o0ECDc6trMVUsVAvrz85zOcKMf5QIDAQABo4IDPjCCAzowHwYDVR0jBBgw FoAUwDFSzVpQw4J8dHHOy+mc+XrrguIwHQYDVR0OBBYEFJriZRiFHHmw7qZ1NU2D N3QOGJhPMG8GA1UdEQRoMGaCD2sudS10b2t5by5hYy5qcIIec3VzdGFpbmFiaWxp dHkuay51LXRva3lvLmFjLmpwghEqLmsudS10b2t5by5hYy5qcIIgKi5zdXN0YWlu YWJpbGl0eS5rLnUtdG9reW8uYWMuanAwEwYDVR0gBAwwCjAIBgZngQwBAgEwDgYD VR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjA7BgNV HR8ENDAyMDCgLqAshipodHRwOi8vY3JsLnIybTAyLmFtYXpvbnRydXN0LmNvbS9y Mm0wMi5jcmwwdQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFodHRwOi8vb2Nz cC5yMm0wMi5hbWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0dHA6Ly9jcnQu cjJtMDIuYW1hem9udHJ1c3QuY29tL3IybTAyLmNlcjAMBgNVHRMBAf8EAjAAMIIB fwYKKwYBBAHWeQIEAgSCAW8EggFrAWkAdgDd3Mo0ldfhFgXnlTL6x5/4PRxQ39sA OhQSdgosrLvIKgAAAZFYr1fSAAAEAwBHMEUCICA5jmz2LkLysl+xpOcS4N3sRusc QLLEiGwpokpJHSAWAiEAyeVjlGjx9V22drC2ksHI+PDbGaq13cFujH/tGUBeGlwA dwDm0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAZFYr1ekAAAEAwBI MEYCIQCt25RrzVkSsH2T4RvsRO3Ug4h9Zc6mH3gsK1CCCUCQ6gIhAPIKfe6DkNbC pD4kFb7DWhijgyfDIcvkwIPj2tMiGd37AHYAzPsPaoVxCWX+lZtTzumyfCLphVwN l422qX5UwP5MDbAAAAGRWK9XZQAABAMARzBFAiBRJFJTmhbmat2oX/4MjUM1YlSi ctkPcWyc+RCm4b5/zAIhANHdB5Xsq1T3yongHNhZHzCA0lfnPN3NEF6UUE/a8r3/ MA0GCSqGSIb3DQEBCwUAA4IBAQC5lnax+usjULegcsJcIcFU1fMJdKOvxXmcw+Lc fNegKcWuuWzB8kubqBvlt1tO9nUIDUqbFaVfea/xo1ZJH5vkRuLPNqYL2DUOsp/Y 9eOTDM+jGRshYzdS2kYWDnDrFJjivJsmvYYJ3+lS4u+V6Qt9vLfQLrlPH5d0fqy6 3x3nWy/r/Kapqws483NB1SOcxfdF6RggJlD80d823T60fjMWEyusnsU73/l77moK mPqcokvSz9KpVEzWOsk+8Pqo8QZZKrfVHMxdp65a7yrtcUEyWBkdVLMASZdK0Cv9 k176C5iUWa8DEc1eXqdYrPldyPoAGdudUA3mvVepnVDT6m/4 -----END CERTIFICATE----- subject=CN = k.u-tokyo.ac.jp issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M02 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, prime256v1, 256 bits --- SSL handshake has read 5692 bytes and written 471 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: DE098DC9D1600EB5670A52AE297EB4E513CCD64220F58AEA870685A7BF68C14E Session-ID-ctx: Master-Key: 4B42B4609B4024AD7534CAA8C080C859E6827D5508D54E9B8091B321FA4B75E89820D61D6C23642F03FB4928C43EFC92 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 86400 (seconds) TLS session ticket: 0000 - 01 48 39 34 0c 8b bc 96-58 8f c3 4a 6a 54 f0 7e .H94....X..JjT.~ 0010 - 05 f1 18 ca a9 df fe 50-83 26 a5 ff 96 4c 83 cf .......P.&...L.. 0020 - d4 12 dc fb f1 e0 9d 73-1e 9d e3 3e 36 f2 3e 58 .......s...>6.>X 0030 - 37 d9 57 8c 4a 91 89 d3-e9 d7 33 75 88 0b 5a 13 7.W.J.....3u..Z. 0040 - 17 8d a2 b2 0a 6f 32 5f-bd e7 62 c7 14 be 50 80 .....o2_..b...P. 0050 - 71 19 06 f8 a1 96 8f f1-a9 58 5d 15 d5 ac 50 21 q........X]...P! 0060 - 37 b4 3d 76 2c 29 bc 82-05 e1 06 a8 0f 5d dd f1 7.=v,).......].. 0070 - 09 ca ce e1 4c d1 75 63-50 35 36 91 79 5a 4b 6f ....L.ucP56.yZKo 0080 - bf cb bd 24 00 78 f1 36-1c 01 ...$.x.6.. Start Time: 1732172374 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes ---
#
OCSP response of
www.sustainability.k.u-tokyo.ac.jp
from OCSP responder (Let's Encrypt)
OCSP response from OCSP responder allows only Let's Encrypt's Certificate.