Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (362 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 104.91.105.149
Reverse IP lookup: a104-91-105-149.deploy.static.akamaitechnologies.com.
Nameserver: a12-65.akam.net.
Nameserver: a16-67.akam.net.
Nameserver: a3-64.akam.net.
Nameserver: a13-65.akam.net.
Nameserver: a22-66.akam.net.
Nameserver: a1-22.akam.net.

General Information

Common Name: www.cia.gov
SANs: DNS:www.cia.govDNS:cia.gov Total number of SANs: 2
Organization: Central Intelligence Agency
Locality: Mclean
Signature Algorithm: sha256WithRSAEncryption
Key Type: ECDSA (secp256r1)
Key size: 256 bits
Serial Number: 9fcef03d1bd3202878992ed4846f413
Not Before: Mar 22, 2024 00:00:00 GMT
Not After: Apr 22, 2025 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: Not Provided
HSTS: max-age=63072000; includeSubDomains; preload
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: www.cia.gov

Decode this certificate for verbose information →
Subject Common Name www.cia.gov
Subject Organization Central Intelligence Agency
Issuer Common Name DigiCert EV RSA CA G2
Issuer Organization DigiCert Inc
Not Before: Mar 22, 2024 00:00:00 GMT
Not After: Apr 22, 2025 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 9fcef03d1bd3202878992ed4846f413
SHA1 Fingerprint: 08:F8:07:92:A3:62:2F:4C:78:75:51:06:E1:B5:5F:44:75:8A:61:48
MD5 Fingerprint: 98:75:4A:A4:25:B8:01:72:E0:A5:16:79:96:18:21:BE

Certificate # 2 - Common Name: DigiCert EV RSA CA G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name DigiCert EV RSA CA G2
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root G2
Issuer Organization DigiCert Inc
Not Before: Jul 02, 2020 12:42:50 GMT
Not After: Jul 02, 2030 12:42:50 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 1678f1fef882255d8b0a70e6b7bb220
SHA1 Fingerprint: 09:0A:16:F9:BA:16:00:1B:2E:C1:30:F8:05:23:E5:B5:EB:25:91:58
MD5 Fingerprint: 51:25:85:FE:60:C0:F0:F9:98:8B:2A:94:52:6D:4D:82

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G2
verify return:1
depth=1 C = US, O = DigiCert Inc, CN = DigiCert EV RSA CA G2
verify return:1
depth=0 jurisdictionC = US, businessCategory = Government Entity, serialNumber = Government Entity, C = US, ST = Virginia, L = Mclean, O = Central Intelligence Agency, CN = www.cia.gov
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: 6A4E50BF98689D5B7B2075D45901794866923206
    Produced At: Apr 24 20:19:06 2024 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: D613075FB6DEA11BDF0182D397E1D37C6E925509
      Issuer Key Hash: 6A4E50BF98689D5B7B2075D45901794866923206
      Serial Number: 09FCEF03D1BD3202878992ED4846F413
    Cert Status: good
    This Update: Apr 24 20:03:01 2024 GMT
    Next Update: May  1 19:03:01 2024 GMT

    Signature Algorithm: sha256WithRSAEncryption
         5e:86:8b:fc:70:fb:14:b5:4b:e3:30:cb:11:33:d0:d4:ea:04:
         19:54:15:6f:3d:2e:57:38:1c:48:f1:31:31:04:a3:b8:98:96:
         a7:b8:18:85:d1:5c:17:09:49:c5:f6:90:aa:15:4d:6f:19:22:
         f0:b7:48:23:59:ef:61:2d:7e:aa:9c:4c:30:1d:41:b5:0d:6e:
         ab:48:c1:b1:ae:c0:76:61:c0:c9:98:56:89:97:d2:51:71:18:
         84:23:42:70:7a:83:af:72:62:fc:4f:20:0e:55:13:53:79:d6:
         6c:91:39:aa:63:c2:5b:1a:7b:ca:a7:e4:23:ec:2b:2b:cb:31:
         12:6d:c8:b0:dd:76:bb:01:a7:0e:53:b7:a3:c7:2b:ab:b6:a9:
         66:c5:b8:b9:ec:54:a8:64:ae:29:cb:7f:87:4d:6a:cf:41:c7:
         5a:ff:41:33:35:7d:a2:b0:75:a7:bd:7a:f8:2a:ab:e5:cc:fa:
         f1:b7:6a:c1:15:01:7e:27:ff:32:92:cb:80:8d:43:ad:3d:32:
         43:b4:7c:ae:0f:50:2f:3d:d2:e2:77:27:e8:a6:f7:ff:a2:9c:
         5c:39:eb:9a:c2:49:5d:60:bf:9d:60:1c:09:1a:53:a7:18:22:
         8e:1d:41:b4:27:0e:9d:61:e2:40:22:e7:58:b4:98:07:6c:e3:
         61:0c:90:bf
======================================
---
Certificate chain
 0 s:jurisdictionC = US, businessCategory = Government Entity, serialNumber = Government Entity, C = US, ST = Virginia, L = Mclean, O = Central Intelligence Agency, CN = www.cia.gov
   i:C = US, O = DigiCert Inc, CN = DigiCert EV RSA CA G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = DigiCert Inc, CN = DigiCert EV RSA CA G2
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G2
-----BEGIN CERTIFICATE-----
MIIFPDCCBCSgAwIBAgIQAWePH++IIlXYsKcOa3uyIDANBgkqhkiG9w0BAQsFADBh
MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
d3cuZGlnaWNlcnQuY29tMSAwHgYDVQQDExdEaWdpQ2VydCBHbG9iYWwgUm9vdCBH
MjAeFw0yMDA3MDIxMjQyNTBaFw0zMDA3MDIxMjQyNTBaMEQxCzAJBgNVBAYTAlVT
MRUwEwYDVQQKEwxEaWdpQ2VydCBJbmMxHjAcBgNVBAMTFURpZ2lDZXJ0IEVWIFJT
QSBDQSBHMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK0eZsx/neTr
f4MXJz0R2fJTIDfN8AwUAu7hy4gI0vp7O8LAAHx2h3bbf8wl+pGMSxaJK9ffDDCD
63FqqFBqE9eTmo3RkgQhlu55a04LsXRLcK6crkBOO0djdonybmhrfGrtBqYvbRat
xenkv0Sg4frhRl4wYh4dnW0LOVRGhbt1G5Q19zm9CqMlq7LlUdAE+6d3a5++ppfG
cnWLmbEVEcLHPAnbl+/iKauQpQlU1Mi+wEBnjE5tK8Q778naXnF+DsedQJ7NEi+b
QoonTHEz9ryeEcUHuQTv7nApa/zCqes5lXn1pMs4LZJ3SVgbkTLj+RbBov/uiwTX
tkBEWawvZH8CAwEAAaOCAgswggIHMB0GA1UdDgQWBBRqTlC/mGidW3sgddRZAXlI
ZpIyBjAfBgNVHSMEGDAWgBROIlQgGJXm427mD/r6uRLtBhePOTAOBgNVHQ8BAf8E
BAMCAYYwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMBIGA1UdEwEB/wQI
MAYBAf8CAQAwNAYIKwYBBQUHAQEEKDAmMCQGCCsGAQUFBzABhhhodHRwOi8vb2Nz
cC5kaWdpY2VydC5jb20wewYDVR0fBHQwcjA3oDWgM4YxaHR0cDovL2NybDMuZGln
aWNlcnQuY29tL0RpZ2lDZXJ0R2xvYmFsUm9vdEcyLmNybDA3oDWgM4YxaHR0cDov
L2NybDQuZGlnaWNlcnQuY29tL0RpZ2lDZXJ0R2xvYmFsUm9vdEcyLmNybDCBzgYD
VR0gBIHGMIHDMIHABgRVHSAAMIG3MCgGCCsGAQUFBwIBFhxodHRwczovL3d3dy5k
aWdpY2VydC5jb20vQ1BTMIGKBggrBgEFBQcCAjB+DHxBbnkgdXNlIG9mIHRoaXMg
Q2VydGlmaWNhdGUgY29uc3RpdHV0ZXMgYWNjZXB0YW5jZSBvZiB0aGUgUmVseWlu
ZyBQYXJ0eSBBZ3JlZW1lbnQgbG9jYXRlZCBhdCBodHRwczovL3d3dy5kaWdpY2Vy
dC5jb20vcnBhLXVhMA0GCSqGSIb3DQEBCwUAA4IBAQBSMgrCdY2+O9spnYNvwHiG
+9lCJbyELR0UsoLwpzGpSdkHD7pVDDFJm3//B8Es+17T1o5Hat+HRDsvRr7d3MEy
o9iXkkxLhKEgApA2Ft2eZfPrTolc95PwSWnn3FZ8BhdGO4brTA4+zkPSKoMXi/X+
WLBNN29Z/nbCS7H/qLGt7gViEvTIdU8x+H4l/XigZMUDaVmJ+B5d7cwSK7yOoQdf
oIBGmA5Mp4LhMzo52rf//kXPfE3wYIZVHqVuxxlnTkFYmffCX9/Lon7SWaGdg6Rc
k4RHhHLWtmz2lTZ5CEo2ljDsGzCFGJP7oT4q6Q8oFC38irvdKIJ95cUxYzj4tnOI
-----END CERTIFICATE-----
---
Server certificate
subject=jurisdictionC = US, businessCategory = Government Entity, serialNumber = Government Entity, C = US, ST = Virginia, L = Mclean, O = Central Intelligence Agency, CN = www.cia.gov

issuer=C = US, O = DigiCert Inc, CN = DigiCert EV RSA CA G2

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: ECDSA
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3782 bytes and written 398 bytes
Verification: OK
---
New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384
Server public key is 256 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
DONE