Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Doesn't match Common Name or/and SANs
Expired: No (88 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 178.32.159.241
Reverse IP lookup: lb01.net.affiz.net.
Nameserver: ns15.ovh.net.
Nameserver: dns15.ovh.net.

General Information

Common Name: cpm1.affiz.net
SANs: DNS:cpm1.affiz.net Total number of SANs: 1
Signature Algorithm: ecdsa-with-SHA384
Key Type: ECDSA (secp256r1)
Key size: 256 bits
Serial Number: 6f95cfbcd31f6c15db78505724f0c7a1
Not Before: Dec 04, 2021 00:00:00 GMT
Not After: Mar 04, 2022 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: nginx
HSTS: max-age=63072000; includeSubDomains; preload;
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: cpm1.affiz.net

Decode this certificate for verbose information →
Subject Common Name cpm1.affiz.net
Issuer Common Name ZeroSSL ECC Domain Secure Site CA
Issuer Organization ZeroSSL
Not Before: Dec 04, 2021 00:00:00 GMT
Not After: Mar 04, 2022 23:59:59 GMT
Signature Algorithm: ecdsa-with-SHA384
Serial Number: 6f95cfbcd31f6c15db78505724f0c7a1
SHA1 Fingerprint: 5D:53:F7:C7:CB:DF:79:B2:62:46:5B:53:72:B8:06:45:CE:91:50:F3
MD5 Fingerprint: 80:1D:C5:54:79:20:82:1A:65:D2:13:CE:9B:60:49:05

Certificate # 2 - Common Name: ZeroSSL ECC Domain Secure Site CA

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name ZeroSSL ECC Domain Secure Site CA
Subject Organization ZeroSSL
Issuer Common Name USERTrust ECC Certification Authority
Issuer Organization The USERTRUST Network
Not Before: Jan 30, 2020 00:00:00 GMT
Not After: Jan 29, 2030 23:59:59 GMT
Signature Algorithm: ecdsa-with-SHA384
Serial Number: 23b76de3c1bb2b1a51961e08eab764e8
SHA1 Fingerprint: 7F:95:27:6D:49:51:49:9F:D7:56:DF:34:4A:A2:4F:B3:8C:EA:F6:78
MD5 Fingerprint: EE:39:38:0F:32:5C:F0:C5:1F:4C:6F:7B:E0:A4:C8:99

OpenSSL Handshake

depth=2 C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust ECC Certification Authority
verify return:1
depth=1 C = AT, O = ZeroSSL, CN = ZeroSSL ECC Domain Secure Site CA
verify return:1
depth=0 CN = cpm1.affiz.net
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: 0F6BE64BCE3947AEF67E901E79F0309192C85FA3
    Produced At: Dec  4 23:02:13 2021 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 331FFE3FFD0B8416284F948D56C07E0392D8F64D
      Issuer Key Hash: 0F6BE64BCE3947AEF67E901E79F0309192C85FA3
      Serial Number: 6F95CFBCD31F6C15DB78505724F0C7A1
    Cert Status: good
    This Update: Dec  4 23:02:13 2021 GMT
    Next Update: Dec 11 23:02:13 2021 GMT

    Signature Algorithm: ecdsa-with-SHA384
         30:66:02:31:00:a9:15:12:a7:48:4e:9f:f9:dd:14:16:d9:4d:
         4c:dc:f4:ff:2b:74:16:6e:db:eb:1c:c0:d4:c3:98:0a:b6:d4:
         2d:c6:88:63:f3:84:dd:e1:9c:b3:7b:50:42:f4:c2:80:72:02:
         31:00:c4:94:3b:70:ec:d3:a4:cf:87:ef:4d:7d:9a:2e:5e:02:
         63:4c:f0:04:c3:22:3a:d3:1a:af:4c:42:a5:1c:24:16:93:1d:
         69:62:2d:d4:ac:fe:76:8b:ca:aa:27:7e:e9:87
======================================
---
Certificate chain
 0 s:/CN=cpm1.affiz.net
   i:/C=AT/O=ZeroSSL/CN=ZeroSSL ECC Domain Secure Site CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=AT/O=ZeroSSL/CN=ZeroSSL ECC Domain Secure Site CA
   i:/C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST Network/CN=USERTrust ECC Certification Authority
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/CN=cpm1.affiz.net
issuer=/C=AT/O=ZeroSSL/CN=ZeroSSL ECC Domain Secure Site CA
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 2717 bytes and written 288 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-ECDSA-CHACHA20-POLY1305
Server public key is 256 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-ECDSA-CHACHA20-POLY1305
    Session-ID: E480A2E9CF6478711D2923A371596716E841FFAECAD4C6D72E62A5C1B7B679A7
    Session-ID-ctx: 
    Master-Key: 64A0CEF024569358804C847A6D38E3FD598990E01FF7911B70993B466F27251615ED1DAD5EDFD0A7BB84983B21603292
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 7200 (seconds)
    TLS session ticket:
    0000 - 09 05 09 ef 8f ba ba 47-bc d2 7a 5a 56 1f 21 86   .......G..zZV.!.
    0010 - f3 b4 32 ab 6d 7d ae 12-f1 bd c6 b4 32 82 2a a6   ..2.m}......2.*.
    0020 - df 1e bd 19 74 e7 d3 f0-f9 cb cc f6 e8 e2 f7 07   ....t...........
    0030 - 17 21 0b 84 83 d0 b5 c3-b9 ec f4 a2 46 f6 ce 81   .!..........F...
    0040 - ce 55 f7 60 44 ea 41 99-06 bf 85 4c 50 45 7a 64   .U.`D.A....LPEzd
    0050 - d4 d8 26 5a 1b 34 5c 9e-e6 ca a3 06 56 47 2e 4a   ..&Z.4\.....VG.J
    0060 - ac df 59 7a e5 f4 d8 f7-e0 48 a3 cb dc c6 78 23   ..Yz.....H....x#
    0070 - 58 4a 4f 40 4e c2 52 c0-e3 68 82 5a 73 85 dd b0   XJO@N.R..h.Zs...
    0080 - f2 2f f7 dc 63 ef 8c 11-78 f4 eb e7 b8 44 56 f5   ./..c...x....DV.
    0090 - bd 5a c4 0d 8a 6d 56 78-0a 02 d2 49 25 25 cf 92   .Z...mVx...I%%..
    00a0 - 07 9f 9b 61 d8 66 e5 39-10 cb 70 c5 8b e6 69 f8   ...a.f.9..p...i.

    Start Time: 1638769098
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE