Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (204 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: We were unable to verify this certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: The order of certificates is invalid or certificates cannot build certification path
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 200.201.165.253
Reverse IP lookup: caixa.gov.br.
Nameserver: ns3.aziondns.org.
Nameserver: ns2.aziondns.com.
Nameserver: ns1.aziondns.net.

General Information

Common Name: www.caixa.gov.br
SANs: DNS:www.caixa.gov.brDNS:caixa.gov.br Total number of SANs: 2
Organization: CAIXA ECONOMICA FEDERAL
Signature Algorithm: sha384WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 4e380066f444b2e584f7c34d31bb69e8
Not Before: Nov 16, 2023 00:00:00 GMT
Not After: Nov 15, 2024 23:59:59 GMT
Number of certs: 3
Revocation Status: good
OCSP Stapling: Not Supported
Server: Not Provided
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: www.caixa.gov.br

Decode this certificate for verbose information →
Subject Common Name www.caixa.gov.br
Subject Organization CAIXA ECONOMICA FEDERAL
Issuer Common Name Valid Certificadora RSA EV SSL CA
Issuer Organization Valid Certificadora Digital LTDA
Not Before: Nov 16, 2023 00:00:00 GMT
Not After: Nov 15, 2024 23:59:59 GMT
Signature Algorithm: sha384WithRSAEncryption
Serial Number: 4e380066f444b2e584f7c34d31bb69e8
SHA1 Fingerprint: 0F:6F:DC:7B:D9:3E:7F:08:56:F4:67:59:D1:48:0E:54:83:DA:8B:E4
MD5 Fingerprint: 3D:CB:DE:57:34:E9:D1:E5:63:B7:13:21:CE:22:1C:94

Certificate # 2 - Common Name: GeoTrust EV RSA CA 2018

Decode this certificate for verbose information →
In place? No, this certificate does not directly certify the preceding one
Subject Common Name GeoTrust EV RSA CA 2018
Subject Organization DigiCert Inc
Issuer Common Name DigiCert High Assurance EV Root CA
Issuer Organization DigiCert Inc
Not Before: Nov 06, 2017 12:22:46 GMT
Not After: Nov 06, 2027 12:22:46 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 3feef1bb5b648349a20950f8bc69753
SHA1 Fingerprint: A3:99:04:64:17:B6:7E:32:0D:3E:FA:69:D7:DC:E6:B8:BF:E8:A9:F2
MD5 Fingerprint: 06:DA:18:46:1B:95:0C:38:94:86:67:9C:BE:0B:68:E7

Certificate # 3 - Common Name: DigiCert High Assurance EV Root CA

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name DigiCert High Assurance EV Root CA
Subject Organization DigiCert Inc
Issuer Common Name DigiCert High Assurance EV Root CA
Issuer Organization DigiCert Inc
Not Before: Nov 10, 2006 00:00:00 GMT
Not After: Nov 10, 2031 00:00:00 GMT
Signature Algorithm: sha1WithRSAEncryption
Serial Number: 2ac5c266a0b409b8f0b79f2ae462577
SHA1 Fingerprint: 5F:B7:EE:06:33:E2:59:DB:AD:0C:4C:9A:E6:D3:8F:1A:61:C7:DC:25
MD5 Fingerprint: D4:74:DE:57:5C:39:B2:D3:9C:85:83:C5:C0:65:49:8A

OpenSSL Handshake

depth=0 serialNumber = 00.360.305/0001-04, jurisdictionC = BR, businessCategory = Government Entity, C = BR, ST = Distrito Federal, O = CAIXA ECONOMICA FEDERAL, CN = www.caixa.gov.br
verify error:num=20:unable to get local issuer certificate
verify return:1
depth=0 serialNumber = 00.360.305/0001-04, jurisdictionC = BR, businessCategory = Government Entity, C = BR, ST = Distrito Federal, O = CAIXA ECONOMICA FEDERAL, CN = www.caixa.gov.br
verify error:num=21:unable to verify the first certificate
verify return:1
depth=0 serialNumber = 00.360.305/0001-04, jurisdictionC = BR, businessCategory = Government Entity, C = BR, ST = Distrito Federal, O = CAIXA ECONOMICA FEDERAL, CN = www.caixa.gov.br
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:serialNumber = 00.360.305/0001-04, jurisdictionC = BR, businessCategory = Government Entity, C = BR, ST = Distrito Federal, O = CAIXA ECONOMICA FEDERAL, CN = www.caixa.gov.br
   i:C = BR, O = Valid Certificadora Digital LTDA, CN = Valid Certificadora RSA EV SSL CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust EV RSA CA 2018
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert High Assurance EV Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert High Assurance EV Root CA
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert High Assurance EV Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=serialNumber = 00.360.305/0001-04, jurisdictionC = BR, businessCategory = Government Entity, C = BR, ST = Distrito Federal, O = CAIXA ECONOMICA FEDERAL, CN = www.caixa.gov.br

issuer=C = BR, O = Valid Certificadora Digital LTDA, CN = Valid Certificadora RSA EV SSL CA

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 4539 bytes and written 449 bytes
Verification error: unable to verify the first certificate
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: 
    Session-ID-ctx: 
    Master-Key: 2C444D5B69353E9AF2703BD78ADDECDCA2CF50AE20486A5A2947BAC3B7E39B2409D95BF47C6E8542A81148C5BF123524
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1714072791
    Timeout   : 7200 (sec)
    Verify return code: 21 (unable to verify the first certificate)
    Extended master secret: no
---
DONE