SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (351 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 52.84.18.88 |
Reverse IP lookup: | server-52-84-18-88.ord53.r.cloudfront.net. |
Nameserver: | ns-cloud-b4.googledomains.com. |
Nameserver: | ns-cloud-b3.googledomains.com. |
Nameserver: | ns-cloud-b2.googledomains.com. |
Nameserver: | ns-cloud-b1.googledomains.com. |
General Information
Common Name: | ascella.bio |
SANs: | DNS:ascella.bioDNS:www.ascella.bio Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | ed7f9bc13bd7f64e34144ca7ab5252f |
Not Before: | Nov 11, 2024 00:00:00 GMT |
Not After: | Dec 10, 2025 23:59:59 GMT |
Number of certs: | 3 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | AmazonS3 |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: ascella.bio
Decode this certificate for verbose information → launchSubject Common Name | ascella.bio |
Issuer Common Name | Amazon RSA 2048 M03 |
Issuer Organization | Amazon |
Not Before: | Nov 11, 2024 00:00:00 GMT |
Not After: | Dec 10, 2025 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | ed7f9bc13bd7f64e34144ca7ab5252f |
SHA1 Fingerprint: | A4:3F:BA:61:9D:5C:80:70:53:DA:D4:71:45:DF:74:E8:4C:C9:8C:22 |
MD5 Fingerprint: | 68:92:4C:26:91:FD:16:55:2D:27:33:1D:AB:47:96:ED |
Certificate # 2 - Common Name: Amazon RSA 2048 M03
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | Amazon RSA 2048 M03 |
Subject Organization | Amazon |
Issuer Common Name | Amazon Root CA 1 |
Issuer Organization | Amazon |
Not Before: | Aug 23, 2022 22:26:04 GMT |
Not After: | Aug 23, 2030 22:26:04 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 773124cd406d267c0991cdd299a9f38317985 |
SHA1 Fingerprint: | D9:FE:0A:65:FA:00:CA:BF:61:F5:12:0D:37:3A:81:35:E1:46:1F:15 |
MD5 Fingerprint: | F3:F4:22:F8:D1:87:AC:92:B9:1A:48:CD:3A:1C:53:90 |
Certificate # 3 - Common Name: Amazon Root CA 1
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | Amazon Root CA 1 |
Subject Organization | Amazon |
Issuer Common Name | Starfield Services Root Certificate Authority - G2 |
Issuer Organization | Starfield Technologies, Inc. |
Not Before: | May 25, 2015 12:00:00 GMT |
Not After: | Dec 31, 2037 01:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 67f944a2a27cdf3fac2ae2b01f908eeb9c4c6 |
SHA1 Fingerprint: | 06:B2:59:27:C4:2A:72:16:31:C1:EF:D9:43:1E:64:8F:A6:2E:1E:39 |
MD5 Fingerprint: | E8:65:A2:2A:AE:52:4D:26:86:9A:F0:44:8D:6F:D8:96 |
OpenSSL Handshake
depth=2 C = US, O = Amazon, CN = Amazon Root CA 1 verify return:1 depth=1 C = US, O = Amazon, CN = Amazon RSA 2048 M03 verify return:1 depth=0 CN = ascella.bio verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = ascella.bio i:C = US, O = Amazon, CN = Amazon RSA 2048 M03 -----BEGIN CERTIFICATE----- MIIF0zCCBLugAwIBAgIQDtf5vBO9f2TjQUTKerUlLzANBgkqhkiG9w0BAQsFADA8 MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g UlNBIDIwNDggTTAzMB4XDTI0MTExMTAwMDAwMFoXDTI1MTIxMDIzNTk1OVowFjEU MBIGA1UEAxMLYXNjZWxsYS5iaW8wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC+yCwF8CQtsyb3U6KlNh7F79Vh5EkL/qPNtw1zKJIPMTsqHxZtN1QC4tr8 ml9m6HmVWRKkih4nZKN6ZhFP0Q+vc6HyVoGKHUqNpRu0CiC534PsbyVw2lBIDqO0 NutvktKWFxn39Ss5YC7Ic+i3ataxEbI7GzcPocODoJpHB8o6H29nTodBBWcljeLu 8r0O+etAHiWqfXHB/j0jVcu01WTTd8YB18iEQT93e4FyyuGvphitVrXPPrC7/kwx WYKOv0UVm0+28IfqBldLqyjaZiwun3vz3SvhZvePe+CGXm2on9oEkcb7p/8SdWc0 OcQ8VBhNfUpD/lI0OLshigGwxGOZAgMBAAGjggL1MIIC8TAfBgNVHSMEGDAWgBRV 2Rhf0hzMAeFYtL6r2VVCAdcuAjAdBgNVHQ4EFgQUaz7I0+jssquRt8zMFyXDrHQb k0MwJwYDVR0RBCAwHoILYXNjZWxsYS5iaW+CD3d3dy5hc2NlbGxhLmJpbzATBgNV HSAEDDAKMAgGBmeBDAECATAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYB BQUHAwEGCCsGAQUFBwMCMDsGA1UdHwQ0MDIwMKAuoCyGKmh0dHA6Ly9jcmwucjJt MDMuYW1hem9udHJ1c3QuY29tL3IybTAzLmNybDB1BggrBgEFBQcBAQRpMGcwLQYI KwYBBQUHMAGGIWh0dHA6Ly9vY3NwLnIybTAzLmFtYXpvbnRydXN0LmNvbTA2Bggr BgEFBQcwAoYqaHR0cDovL2NydC5yMm0wMy5hbWF6b250cnVzdC5jb20vcjJtMDMu Y2VyMAwGA1UdEwEB/wQCMAAwggF+BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB3ABLx TjS9U3JMhAYZw48/ehP457Vih4icbTAFhOvlhiY6AAABkxs3VYQAAAQDAEgwRgIh AO0Xvihe5w+2SfVPkeV279VJCNnfyrJBR+2pfTF8KGE3AiEAtOzN6gIEge4JrP7p mCSmMtX6k+noi7y24gbu1W07IvUAdgDM+w9qhXEJZf6Vm1PO6bJ8IumFXA2Xjbap flTA/kwNsAAAAZMbN1VGAAAEAwBHMEUCIQDwu3K41xJ4HEyBBiN9EBIXzEeW755S EPFiESwqtxp6jwIgDsjMDt8SWCbF0EmmIPVcq5rYFEN8fYcTrYjdsyjB5nAAdQDd 3Mo0ldfhFgXnlTL6x5/4PRxQ39sAOhQSdgosrLvIKgAAAZMbN1VJAAAEAwBGMEQC IBQByTGjvurZBPm+OUHqi8Mcic2XwLq+jytrUQn60yAoAiAWs/r+3kbi5ocG2lSE N3p6gM1v2u9SEiM49Gx6bXELejANBgkqhkiG9w0BAQsFAAOCAQEALssu24zvFCA5 22QzRVW0/lDZFpiTId3ZrhyOHtj8ZkjOJI7Lrq5mn0/WD8d6zs4+f1pRqcgDC+7J ojHRPZFLVsEUiXjOxHcMDoTnxt1MLtBQaJ6f2I9I4z83K0O4UB+zL2tEAvQYWkih UvHBe+7qUOiVDfMnAsDheEMcn+cWD05WvcxOkbbgzLoTzxmIRKOPoPLK2/9rBj5C mIdyI/m5cOJvFdofFoRXvDuSVb2d0M+CIAzD6LloOSO4ndtTuBAyMDZ1atk6pnLA 342+IEResdFDKiMd6DB7qt5mRORZ1Pawlr1yS8Me9Sxtng3xQb+YBlkgX0dMx47E ZEmmKotD3Q== -----END CERTIFICATE----- 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M03 i:C = US, O = Amazon, CN = Amazon Root CA 1 -----BEGIN CERTIFICATE----- MIIEXjCCA0agAwIBAgITB3MSTNQG0mfAmRzdKZqfODF5hTANBgkqhkiG9w0BAQsF ADA5MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRkwFwYDVQQDExBBbWF6 b24gUm9vdCBDQSAxMB4XDTIyMDgyMzIyMjYwNFoXDTMwMDgyMzIyMjYwNFowPDEL MAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEcMBoGA1UEAxMTQW1hem9uIFJT QSAyMDQ4IE0wMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALd/pVko 8vuM475Tf45HV3BbCl/B9Jy89G1CRkFjcPY06WA9lS+7dWbUA7GtWUKoksr69hKM wcMsNpxlw7b3jeXFgxB09/nmalcAWtnLzF+LaDKEA5DQmvKzuh1nfIfqEiKCQSmX Xh09Xs+dO7cm5qbaL2hhNJCSAejciwcvOFgFNgEMR42wm6KIFHsQW28jhA+1u/M0 p6fVwReuEgZfLfdx82Px0LJck3lST3EB/JfbdsdOzzzg5YkY1dfuqf8y5fUeZ7Cz WXbTjujwX/TovmeWKA36VLCz75azW6tDNuDn66FOpADZZ9omVaF6BqNJiLMVl6P3 /c0OiUMC6Z5OfKcCAwEAAaOCAVowggFWMBIGA1UdEwEB/wQIMAYBAf8CAQAwDgYD VR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAdBgNV HQ4EFgQUVdkYX9IczAHhWLS+q9lVQgHXLgIwHwYDVR0jBBgwFoAUhBjMhTTsvAyU lC4IWZzHshBOCggwewYIKwYBBQUHAQEEbzBtMC8GCCsGAQUFBzABhiNodHRwOi8v b2NzcC5yb290Y2ExLmFtYXpvbnRydXN0LmNvbTA6BggrBgEFBQcwAoYuaHR0cDov L2NydC5yb290Y2ExLmFtYXpvbnRydXN0LmNvbS9yb290Y2ExLmNlcjA/BgNVHR8E ODA2MDSgMqAwhi5odHRwOi8vY3JsLnJvb3RjYTEuYW1hem9udHJ1c3QuY29tL3Jv b3RjYTEuY3JsMBMGA1UdIAQMMAowCAYGZ4EMAQIBMA0GCSqGSIb3DQEBCwUAA4IB AQAGjeWm2cC+3z2MzSCnte46/7JZvj3iQZDY7EvODNdZF41n71Lrk9kbfNwerK0d VNzW36Wefr7j7ZSwBVg50W5ay65jNSN74TTQV1yt4WnSbVvN6KlMs1hiyOZdoHKs KDV2UGNxbdoBYCQNa2GYF8FQIWLugNp35aSOpMy6cFlymFQomIrnOQHwK1nvVY4q xDSJMU/gNJz17D8ArPN3ngnyZ2TwepJ0uBINz3G5te2rdFUF4i4Y3Bb7FUlHDYm4 u8aIRGpk2ZpfXmxaoxnbIBZRvGLPSUuPwnwoUOMsJ8jirI5vs2dvchPb7MtI1rle i02f2ivH2vxkjDLltSpe2fiC -----END CERTIFICATE----- 2 s:C = US, O = Amazon, CN = Amazon Root CA 1 i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2 -----BEGIN CERTIFICATE----- MIIEkjCCA3qgAwIBAgITBn+USionzfP6wq4rAfkI7rnExjANBgkqhkiG9w0BAQsF ADCBmDELMAkGA1UEBhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNj b3R0c2RhbGUxJTAjBgNVBAoTHFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4x OzA5BgNVBAMTMlN0YXJmaWVsZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1 dGhvcml0eSAtIEcyMB4XDTE1MDUyNTEyMDAwMFoXDTM3MTIzMTAxMDAwMFowOTEL MAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEZMBcGA1UEAxMQQW1hem9uIFJv b3QgQ0EgMTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALJ4gHHKeNXj ca9HgFB0fW7Y14h29Jlo91ghYPl0hAEvrAIthtOgQ3pOsqTQNroBvo3bSMgHFzZM 9O6II8c+6zf1tRn4SWiw3te5djgdYZ6k/oI2peVKVuRF4fn9tBb6dNqcmzU5L/qw IFAGbHrQgLKm+a/sRxmPUDgH3KKHOVj4utWp+UhnMJbulHheb4mjUcAwhmahRWa6 VOujw5H5SNz/0egwLX0tdHA114gk957EWW67c4cX8jJGKLhD+rcdqsq08p8kDi1L 93FcXmn/6pUCyziKrlA4b9v7LWIbxcceVOF34GfID5yHI9Y/QCB/IIDEgEw+OyQm jgSubJrIqg0CAwEAAaOCATEwggEtMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/ BAQDAgGGMB0GA1UdDgQWBBSEGMyFNOy8DJSULghZnMeyEE4KCDAfBgNVHSMEGDAW gBScXwDfqgHXMCs4iKK4bUqc8hGRgzB4BggrBgEFBQcBAQRsMGowLgYIKwYBBQUH MAGGImh0dHA6Ly9vY3NwLnJvb3RnMi5hbWF6b250cnVzdC5jb20wOAYIKwYBBQUH MAKGLGh0dHA6Ly9jcnQucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY2Vy MD0GA1UdHwQ2MDQwMqAwoC6GLGh0dHA6Ly9jcmwucm9vdGcyLmFtYXpvbnRydXN0 LmNvbS9yb290ZzIuY3JsMBEGA1UdIAQKMAgwBgYEVR0gADANBgkqhkiG9w0BAQsF AAOCAQEAYjdCXLwQtT6LLOkMm2xF4gcAevnFWAu5CIw+7bMlPLVvUOTNNWqnkzSW MiGpSESrnO09tKpzbeR/FoCJbM8oAxiDR3mjEH4wW6w7sGDgd9QIpuEdfF7Au/ma eyKdpwAJfqxGF4PcnCZXmTA5YpaP7dreqsXMGz7KQ2hsVxa81Q4gLv7/wmpdLqBK bRRYh5TmOTFffHPLkIhqhBGWJ6bt2YFGpn6jcgAKUj6DiAdjd4lpFw85hdKrCEVN 0FE6/V1dN2RMfjCyVSRCnTawXZwXgWHxyvkQAiSr6w10kY17RSlQOYiypok1JR4U akcjMS9cmvqtmg5iUaQqqcT5NJ0hGA== -----END CERTIFICATE----- --- Server certificate subject=CN = ascella.bio issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M03 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 4345 bytes and written 386 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE