SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (67 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | close We were unable to verify this certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 18.176.188.191 |
Reverse IP lookup: | ec2-18-176-188-191.ap-northeast-1.compute.amazonaws.com. |
Nameserver: | ns-124.awsdns-15.com. |
Nameserver: | ns-1261.awsdns-29.org. |
Nameserver: | ns-2044.awsdns-63.co.uk. |
Nameserver: | ns-888.awsdns-47.net. |
General Information
Common Name: | *.a8.net |
SANs: | DNS:*.a8.netDNS:a8.net Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 459bb2a8a897ca6dd7d06c29 |
Not Before: | Jun 01, 2023 01:40:58 GMT |
Not After: | Jul 02, 2024 01:40:57 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | awselb/2.0 |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: *.a8.net
Decode this certificate for verbose information → launchSubject Common Name | *.a8.net |
Issuer Common Name | GlobalSign GCC R3 DV TLS CA 2020 |
Issuer Organization | GlobalSign nv-sa |
Not Before: | Jun 01, 2023 01:40:58 GMT |
Not After: | Jul 02, 2024 01:40:57 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 459bb2a8a897ca6dd7d06c29 |
SHA1 Fingerprint: | A8:84:44:E1:05:7D:F2:88:0E:95:02:2F:07:81:DC:B5:FE:9E:F8:CA |
MD5 Fingerprint: | 23:DC:7F:7C:B0:63:0C:C3:05:2A:85:73:0F:1C:E0:0A |
Certificate # 2 - Common Name: GlobalSign GCC R3 DV TLS CA 2020
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | GlobalSign GCC R3 DV TLS CA 2020 |
Subject Organization | GlobalSign nv-sa |
Issuer Common Name | GlobalSign |
Issuer Organization | GlobalSign |
Not Before: | Jul 28, 2020 00:00:00 GMT |
Not After: | Mar 18, 2029 00:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 77bd0e0742d5d9e9d049d774d02a6f9a |
SHA1 Fingerprint: | 1C:61:0A:0A:87:D4:92:F4:83:22:C2:AF:D3:BE:9B:6A:D3:6B:6B:EE |
MD5 Fingerprint: | A6:E7:E3:48:48:27:FD:C4:E0:C9:16:5B:AA:82:C7:4C |
OpenSSL Handshake
depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 verify error:num=20:unable to get local issuer certificate verify return:1 depth=0 CN = *.a8.net verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.a8.net i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 -----BEGIN CERTIFICATE----- MIIGOzCCBSOgAwIBAgIMRZuyqKiXym3X0GwpMA0GCSqGSIb3DQEBCwUAMFMxCzAJ BgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWduIG52LXNhMSkwJwYDVQQDEyBH bG9iYWxTaWduIEdDQyBSMyBEViBUTFMgQ0EgMjAyMDAeFw0yMzA2MDEwMTQwNTha Fw0yNDA3MDIwMTQwNTdaMBMxETAPBgNVBAMMCCouYTgubmV0MIIBIjANBgkqhkiG 9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxMQHoedu1xs2XpyFU5SZiCJiP3YwSUErpi0p cJu3lBqHyK+x1fUt79mt9CoZwCBI0u5e183NDNekHOqlRQkOe37o3vpouO/XiGGW ecbOUhHTEhacGXR2dpW5Og6DvaFvrFC2fmdYQlg6jVLQdNW9IwMCMHu2IzSmSP+U A3VjHmPRguL5dbSVyrJPXoysgjmQ+bttd67CZ11YLCEdHpItUr26beu4t6xjfP9L OIUbXbac4oU1OMF8WACDyKi2ta3ElDa57Xqmio3NphTkAD+MjKCn+IWuyzF6svDw FSzqqogtDKSpLSsTGOKSKVbj/ZfQEjC/tbPyD+g6Z7mf4UJpQQIDAQABo4IDTTCC A0kwDgYDVR0PAQH/BAQDAgWgMIGTBggrBgEFBQcBAQSBhjCBgzBGBggrBgEFBQcw AoY6aHR0cDovL3NlY3VyZS5nbG9iYWxzaWduLmNvbS9jYWNlcnQvZ3NnY2NyM2R2 dGxzY2EyMDIwLmNydDA5BggrBgEFBQcwAYYtaHR0cDovL29jc3AuZ2xvYmFsc2ln bi5jb20vZ3NnY2NyM2R2dGxzY2EyMDIwMFYGA1UdIARPME0wQQYJKwYBBAGgMgEK MDQwMgYIKwYBBQUHAgEWJmh0dHBzOi8vd3d3Lmdsb2JhbHNpZ24uY29tL3JlcG9z aXRvcnkvMAgGBmeBDAECATAJBgNVHRMEAjAAMEEGA1UdHwQ6MDgwNqA0oDKGMGh0 dHA6Ly9jcmwuZ2xvYmFsc2lnbi5jb20vZ3NnY2NyM2R2dGxzY2EyMDIwLmNybDAb BgNVHREEFDASgggqLmE4Lm5ldIIGYTgubmV0MB0GA1UdJQQWMBQGCCsGAQUFBwMB BggrBgEFBQcDAjAfBgNVHSMEGDAWgBQNmMBzf6u9vdlHS0mtCkoMrD7HfDAdBgNV HQ4EFgQU+c4LHRFTNXoV4K56HzcaLaYwy2YwggF9BgorBgEEAdZ5AgQCBIIBbQSC AWkBZwB2AO7N0GTV2xrOxVy3nbTNE6Iyh0Z8vOzew1FIWUZxH7WbAAABiHSdjtoA AAQDAEcwRQIhAIiI1Pwa28GbakOiFuCrOoJ/UWNaMtvV2NrbcYSIm9iBAiAVKTrH batkw4LhzhYlkQ+pGd7ip2kLmdgyBnASQj6BHgB1AEiw42vapkc0D+VqAvqdMOsc UgHLVt0sgdm7v6s52IRzAAABiHSdjhsAAAQDAEYwRAIgLO86Kc+AOE5gkO07N09w f8+hplGePhK4mARceQHGwXcCIBZhEO6O5tF5e7urdcwenT2rvFtXts+YJt7qeYb4 XjGSAHYA2ra/az+1tiKfm8K7XGvocJFxbLtRhIU0vaQ9MEjX+6sAAAGIdJ2OigAA BAMARzBFAiA6gY0TmRYGNFLONYEI7eRFgyrlT3/I1dVrj5MVXMjOUwIhALTl7TeL yocHFr4Gr6GiAo4XXxDXdVgyIPJKmsElKkdnMA0GCSqGSIb3DQEBCwUAA4IBAQBz hsWOPJAw/aaNlfnQpCrvvnZJjlGY7N/wEF+fbPrTHCrTlzELjrhWiGn406+gjdgH GSWxkSP7yJjQjOEXboftnh2MIl2OWvMS99pi+NZat/UF1JYb23dFN8vx4N/6wsQu PqfueAPQVSBsvb8aze5r05tVt1JMkTsb1qHShjE0zouqkU803N5VfcerzwX6V6Wc cNLBhMB2MSFYNH/LnBfIyNmcD//njXNySYuNCzz7TEzuesAi8PCaUNSvpflXADt9 FmeZ6jys8lsXhy0ki8rqkkY25qCGMI1/R7JPBP60gqGoA7MUqKrctnz737RUolzu JkipBlp2WS8azl9z+/OU -----END CERTIFICATE----- 1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign -----BEGIN CERTIFICATE----- MIIEsDCCA5igAwIBAgIQd70OB0LV2enQSdd00CpvmjANBgkqhkiG9w0BAQsFADBM MSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSMzETMBEGA1UEChMKR2xv YmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjAeFw0yMDA3MjgwMDAwMDBaFw0y OTAzMTgwMDAwMDBaMFMxCzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWdu IG52LXNhMSkwJwYDVQQDEyBHbG9iYWxTaWduIEdDQyBSMyBEViBUTFMgQ0EgMjAy MDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKxnlJV/de+OpwyvCXAJ IcxPCqkFPh1lttW2oljS3oUqPKq8qX6m7K0OVKaKG3GXi4CJ4fHVUgZYE6HRdjqj hhnuHY6EBCBegcUFgPG0scB12Wi8BHm9zKjWxo3Y2bwhO8Fvr8R42pW0eINc6OTb QXC0VWFCMVzpcqgz6X49KMZowAMFV6XqtItcG0cMS//9dOJs4oBlpuqX9INxMTGp 6EASAF9cnlAGy/RXkVS9nOLCCa7pCYV+WgDKLTF+OK2Vxw3RUJ/p8009lQeUARv2 UCcNNPCifYX1xIspvarkdjzLwzOdLahDdQbJON58zN4V+lMj0msg+c0KnywPIRp3 BMkCAwEAAaOCAYUwggGBMA4GA1UdDwEB/wQEAwIBhjAdBgNVHSUEFjAUBggrBgEF BQcDAQYIKwYBBQUHAwIwEgYDVR0TAQH/BAgwBgEB/wIBADAdBgNVHQ4EFgQUDZjA c3+rvb3ZR0tJrQpKDKw+x3wwHwYDVR0jBBgwFoAUj/BLf6guRSSuTVD6Y5qL3uLd G7wwewYIKwYBBQUHAQEEbzBtMC4GCCsGAQUFBzABhiJodHRwOi8vb2NzcDIuZ2xv YmFsc2lnbi5jb20vcm9vdHIzMDsGCCsGAQUFBzAChi9odHRwOi8vc2VjdXJlLmds b2JhbHNpZ24uY29tL2NhY2VydC9yb290LXIzLmNydDA2BgNVHR8ELzAtMCugKaAn hiVodHRwOi8vY3JsLmdsb2JhbHNpZ24uY29tL3Jvb3QtcjMuY3JsMEcGA1UdIARA MD4wPAYEVR0gADA0MDIGCCsGAQUFBwIBFiZodHRwczovL3d3dy5nbG9iYWxzaWdu LmNvbS9yZXBvc2l0b3J5LzANBgkqhkiG9w0BAQsFAAOCAQEAy8j/c550ea86oCkf r2W+ptTCYe6iVzvo7H0V1vUEADJOWelTv07Obf+YkEatdN1Jg09ctgSNv2h+LMTk KRZdAXmsE3N5ve+z1Oa9kuiu7284LjeS09zHJQB4DJJJkvtIbjL/ylMK1fbMHhAW i0O194TWvH3XWZGXZ6ByxTUIv1+kAIql/Mt29PmKraTT5jrzcVzQ5A9jw16yysuR XRrLODlkS1hyBjsfyTNZrmL1h117IFgntBA5SQNVl9ckedq5r4RSAU85jV8XK5UL REjRZt2I6M9Po9QL7guFLu4sPFJpwR1sPJvubS2THeo7SxYoNDtdyBHs7euaGcMa D/fayQ== -----END CERTIFICATE----- --- Server certificate subject=CN = *.a8.net issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, P-256, 256 bits --- SSL handshake has read 3443 bytes and written 443 bytes Verification error: unable to get local issuer certificate --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 33B8837AFF1ED6781F1748F6514C9D4973B7FFE5D07687B9A142A0FFC19AFC8A Session-ID-ctx: Master-Key: 33C073DCB04CD259CAF7BAC885247AED81CF73E462B0F53AAD20A6B23B0BED4F426050DCC4253979E6F936C4F270FC37 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 86400 (seconds) TLS session ticket: 0000 - eb 09 37 b3 ea 2f 5f 0c-d4 ea 76 25 8e e8 b4 b6 ..7../_...v%.... 0010 - 72 6e 21 ca c6 e6 99 51-18 56 c8 43 f8 0b 52 d1 rn!....Q.V.C..R. 0020 - 08 75 b2 0e 10 e8 03 52-c4 a1 21 fe 6e ff d0 00 .u.....R..!.n... 0030 - 52 d8 02 12 c2 ec 50 90-f6 f8 67 e0 8f 30 cf c0 R.....P...g..0.. 0040 - b2 d8 f5 da 82 1d fa b3-fc 87 11 6e d0 87 e0 1c ...........n.... 0050 - 80 5e 59 bd 07 1e 5b e4-e8 1e 9c d0 5f 5e bf 36 .^Y...[....._^.6 0060 - 07 0d 16 34 df 73 81 23-84 ...4.s.#. Start Time: 1714063413 Timeout : 7200 (sec) Verify return code: 20 (unable to get local issuer certificate) Extended master secret: yes --- DONE