SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (45 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 13.56.33.8 |
Reverse IP lookup: | ec2-13-56-33-8.us-west-1.compute.amazonaws.com. |
Nameserver: | ns2.brandbucket.com. |
Nameserver: | ns1.brandbucket.com. |
General Information
Common Name: | adcast.io |
SANs: | DNS:adcast.io Total number of SANs: 1 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 4096 bits |
Serial Number: | 44471a339e45d444a8d8fd8b7c44a8c0fd9 |
Not Before: | Mar 05, 2024 03:29:31 GMT |
Not After: | Jun 03, 2024 03:29:30 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Server: | openresty/1.15.8.2 |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: adcast.io
Decode this certificate for verbose information → launchSubject Common Name | adcast.io |
Issuer Common Name | R3 |
Issuer Organization | Let's Encrypt |
Not Before: | Mar 05, 2024 03:29:31 GMT |
Not After: | Jun 03, 2024 03:29:30 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 44471a339e45d444a8d8fd8b7c44a8c0fd9 |
SHA1 Fingerprint: | 2B:6A:B6:77:59:E0:24:3A:B5:31:3F:04:DA:7C:55:18:2D:7C:90:22 |
MD5 Fingerprint: | 44:6E:5C:E6:1F:B1:73:68:31:F7:A0:BD:46:6E:76:44 |
Certificate # 2 - Common Name: R3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R3 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Sep 04, 2020 00:00:00 GMT |
Not After: | Sep 15, 2025 16:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 912b084acf0c18a753f6d62e25a75f5a |
SHA1 Fingerprint: | A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05 |
MD5 Fingerprint: | E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R3 verify return:1 depth=0 CN = adcast.io verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: C = US, O = Let's Encrypt, CN = R3 Produced At: Apr 18 16:51:00 2024 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 48DAC9A0FB2BD32D4FF0DE68D2F567B735F9B3C4 Issuer Key Hash: 142EB317B75856CBAE500940E61FAF9D8B14C2C6 Serial Number: 044471A339E45D444A8D8FD8B7C44A8C0FD9 Cert Status: good This Update: Apr 18 16:51:00 2024 GMT Next Update: Apr 25 16:50:58 2024 GMT Signature Algorithm: sha256WithRSAEncryption 43:c0:01:a1:f9:0f:62:48:4b:d1:0f:7d:44:c9:70:a5:2b:61: 0b:c5:5f:6b:48:e0:96:9c:68:ea:e0:9a:6e:44:89:69:4f:6e: 85:8b:fa:71:4d:e3:a5:0d:a2:40:cf:1b:15:be:ff:2e:b2:1e: f0:87:fd:bf:85:3b:d1:76:9e:92:1a:b1:ee:98:cb:b0:46:89: 98:c5:16:1f:0c:10:ba:46:07:04:f5:8e:7d:67:5f:b3:b6:12: 7b:a7:2e:ee:53:cd:8c:f9:05:ed:2f:c2:a6:4c:5b:fb:e7:7c: c2:4d:1c:e0:eb:b4:dc:c8:07:9c:c8:c5:60:a9:a7:dd:14:45: 16:56:28:06:ea:12:2b:09:a9:d7:4e:e2:e3:76:dd:48:19:e4: 1d:4b:38:06:70:c1:82:64:cc:66:8d:65:19:16:be:6b:ed:96: c9:ff:9f:05:b4:12:c3:90:00:dc:1c:f1:bf:dd:1d:80:27:00: 7e:68:19:64:82:41:0d:84:53:d0:31:b6:cc:ad:9e:92:4a:2a: 9b:62:e3:b7:c6:2b:8d:02:0c:92:96:eb:7f:7d:d7:00:17:75: 66:b4:e7:e4:99:a0:16:8c:84:fc:98:9d:9a:5e:c1:dd:2b:4b: b5:2f:05:f3:89:4b:8f:94:24:c1:8b:94:3c:bf:cb:e4:8c:8c: 46:eb:56:a0 ====================================== --- Certificate chain 0 s:CN = adcast.io i:C = US, O = Let's Encrypt, CN = R3 -----BEGIN CERTIFICATE----- MIIF3zCCBMegAwIBAgISBERxoznkXURKjY/Yt8RKjA/ZMA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yNDAzMDUwMzI5MzFaFw0yNDA2MDMwMzI5MzBaMBQxEjAQBgNVBAMT CWFkY2FzdC5pbzCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAL5Y/80v lzbGT255Qxh0agNvSvIHfYEfjbW1zmBe0K3CoMBfg4vF087kO0ORF7XUFOdFpIze BFLmlq59PHRVzVwKELxEfDMjZDFRzgzug+AP5wYNoRLbWFL/F+7aSK/QwrIT8xbj Z01gGB99cNuagavQV55cQp7QH3/Bzt64nm8h02H4a8i+XMxq+sdOKgYOQOudYs03 6B3z98YHuqdqcFcfw/jKC6KlS6v4wkdSI+1YY2wZgHfUx5i836k5Gvy6DVwxONHm 4Qd6iSKfC3SdIsEWZb6na1HXkA1b7+s5moca1B2uEoeJWdFp2CVhRQ2vpB9u6QzX AaRkQyFOH3re6cF/IHYEstWlOOefPSgSk4FHVwpjoOTgB2ZHpr3yrVab6d+CLmYb RcHJHnU5SN4ShdKFEHjb3S3ljTf5sIDtBzjGTub4/sIhLdsczPwgkRqfk0b3OWWV VEIIJplrWMPEajKehs7dEpwbOpksvl4CJGbSm2BoX8kv1of5N5csY+SV3kiRQwHd AEGKy4Jfc7UYXFeV075aYu4IV+vfAogyLZsYJYvOGGjwSljr/x2VOdFWfpzE9zdN dvw1nliHPK6odaYgOls5MTORKVU2Sn6Hsuf4NkjE8/0zk6rYe7+6I5MGiC5J+cE2 0pSs1tZtHAlgkKOLFutzqwFzPpVtmzfDEU2nAgMBAAGjggILMIICBzAOBgNVHQ8B Af8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB /wQCMAAwHQYDVR0OBBYEFH4g268yolj24rfhVR081ZiNRMrxMB8GA1UdIwQYMBaA FBQusxe3WFbLrlAJQOYfr52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggrBgEFBQcw AYYVaHR0cDovL3IzLm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRwOi8vcjMu aS5sZW5jci5vcmcvMBQGA1UdEQQNMAuCCWFkY2FzdC5pbzATBgNVHSAEDDAKMAgG BmeBDAECATCCAQQGCisGAQQB1nkCBAIEgfUEgfIA8AB2ADtTd3U+LbmAToswWwb+ QDtn2E/D9Me9AA0tcm/h+tQXAAABjgzfuI8AAAQDAEcwRQIgPOO5KgVJpdROfsgj TG0AJ89L06xmrcoA+igi3dWR0iMCIQDBvkOCKVf9y3F/Y6RiqNPrH0Nc8p8CU9++ nKQ3K9n4EwB2AO7N0GTV2xrOxVy3nbTNE6Iyh0Z8vOzew1FIWUZxH7WbAAABjgzf uMcAAAQDAEcwRQIhAJZ+7Nc6fxLm+IaeldwpZGS7Lnj1JfXgvNhGFnCMSdi+AiBl QVboHpM8YtEMG6NYd4JEfumkVtOFboaDzw6msvp/RTANBgkqhkiG9w0BAQsFAAOC AQEAXwht0C96Gi4gpzbLMlDcQgwYQRuz7nS7hPDFG2YoL1QHwENf4CcdmJkUMcVX iyyH0c97jA2bUvgyCPr6ZTkccIG+iu5xqo1IVOpvL+ApR4QAkDtG+F23866CgeMX U7b1GfbNeTZP1obdQl3t1DOnU0ieCnQPHGFGG48/FVsXqNIkDa+b0vtMiRvLywg9 yY7okS06JRuDp3wMzagjbytjdZhccOFGihXsJPDTtpP18vyukv3INprCkdR3sjxC lKcB+h9USrwPkdZ5jeGXmq773Dp/ZwnR3cQUstZwvaI53//933lq7hyxcVeGlXpL vAAGa57ljChr3jP6217fUDLNUQ== -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R3 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG /kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4 avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2 yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+ HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX nLRbwHOoq7hHwg== -----END CERTIFICATE----- --- Server certificate subject=CN = adcast.io issuer=C = US, O = Let's Encrypt, CN = R3 --- No client certificate CA names sent Peer signing digest: SHA512 Peer signature type: RSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 4249 bytes and written 413 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: 9F8CC4327EFBF53DD4C5EB3C7D4AA839B972AF10D7A5C4C170B7451898E2A1FD Session-ID-ctx: Master-Key: 2EEDB64460E38D7229E8E5C7CD7A7EC34EDCCA0E0939D159A0F1B343976069CAA6D0BF02CFBC2FD406DDD4F2B3C06CE0 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 10 2b 05 da 0e a7 54 68-7d 43 30 87 e1 e6 be c5 .+....Th}C0..... 0010 - 1a 1c 51 e7 a5 9f 0f c7-dc 0d ed 47 a6 eb 6d db ..Q........G..m. 0020 - 21 e2 db 9c e9 a7 bc 24-74 70 a5 a7 e2 ae 43 32 !......$tp....C2 0030 - 82 88 16 e1 fe 27 e5 2c-26 7d 8d bb c7 5d de 9e .....'.,&}...].. 0040 - 93 c4 85 c5 e0 7e cb 9c-d2 d8 56 f3 d3 c3 a2 62 .....~....V....b 0050 - dd c1 76 2a c9 27 3f bb-8a 79 7c 57 68 36 cf 33 ..v*.'?..y|Wh6.3 0060 - 46 dc 47 56 6a 25 96 9e-25 aa 1a 1d de d6 54 c2 F.GVj%..%.....T. 0070 - 7c f2 0a 90 79 05 36 e6-a5 55 ba b0 0b 9b a8 c6 |...y.6..U...... 0080 - 48 32 23 06 0a b2 fb 43-bd 7d 54 81 fe 00 a9 98 H2#....C.}T..... 0090 - d0 4a 9c dd 90 c9 0e fe-ec 43 2a 3e 86 58 86 77 .J.......C*>.X.w 00a0 - 97 27 32 e1 07 ff af 2e-57 f4 cd a9 ba 50 b7 52 .'2.....W....P.R 00b0 - 95 73 0f 1b c1 2f ae 9a-fe c4 49 4c e5 fe 25 71 .s.../....IL..%q Start Time: 1713487644 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- DONE