SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (51 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 23.22.10.20 |
Reverse IP lookup: | ec2-23-22-10-20.compute-1.amazonaws.com. |
Nameserver: | ns-1446.awsdns-52.org. |
Nameserver: | ns-2023.awsdns-60.co.uk. |
Nameserver: | ns-225.awsdns-28.com. |
Nameserver: | ns-905.awsdns-49.net. |
General Information
Common Name: | correiobraziliense.com.br |
SANs: | DNS:correiobraziliense.com.brDNS:correioweb.com.br Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 399c49b99207820958990213c81351eced8 |
Not Before: | Mar 12, 2024 12:32:09 GMT |
Not After: | Jun 10, 2024 12:32:08 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | nginx |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: correiobraziliense.com.br
Decode this certificate for verbose information → launchSubject Common Name | correiobraziliense.com.br |
Issuer Common Name | R3 |
Issuer Organization | Let's Encrypt |
Not Before: | Mar 12, 2024 12:32:09 GMT |
Not After: | Jun 10, 2024 12:32:08 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 399c49b99207820958990213c81351eced8 |
SHA1 Fingerprint: | 24:90:49:6F:71:42:1E:B0:DA:63:B5:FA:BF:5E:3E:4D:CD:3C:B0:02 |
MD5 Fingerprint: | 8D:69:C5:1C:77:26:91:17:68:06:E2:59:11:ED:BE:A3 |
Certificate # 2 - Common Name: R3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R3 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Sep 04, 2020 00:00:00 GMT |
Not After: | Sep 15, 2025 16:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 912b084acf0c18a753f6d62e25a75f5a |
SHA1 Fingerprint: | A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05 |
MD5 Fingerprint: | E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R3 verify return:1 depth=0 CN = correiobraziliense.com.br verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = correiobraziliense.com.br i:C = US, O = Let's Encrypt, CN = R3 -----BEGIN CERTIFICATE----- MIIFEzCCA/ugAwIBAgISA5nEm5kgeCCViZAhPIE1Hs7YMA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yNDAzMTIxMjMyMDlaFw0yNDA2MTAxMjMyMDhaMCQxIjAgBgNVBAMT GWNvcnJlaW9icmF6aWxpZW5zZS5jb20uYnIwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQCtPbvg+qmC4ADL+bIrkPx5O6c9qQ8G3adzN82zsirXUz4Xa+++ qGSH7QV8flswIqHzEbMynwdNxhFRLvn3e4pYVfi5iU8vLZVIS4oVraXQav5MzOY4 SoDjLMOOhSRFu81PpJTb18muDbMOOfz54nI+n9Dp/mbRAbrLeunUOoTqRihwGtDX +hH6kbCXuO31oco+6PbH3hwWRO00tvDxBFg9aBZgAwZ2EZIgLlP7B20NiTbliBCd kNpk7t0uhFuEejMUpPAkvE7hra8d+vwKkUeNUvhIoiAJqc71j5IUM+omqxtMjlpF WO5NPaPFrj0KOPhnIkL/nu5AfqzmoKSVAu/7AgMBAAGjggIvMIICKzAOBgNVHQ8B Af8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB /wQCMAAwHQYDVR0OBBYEFC4epL11lGqWcyfNbtQksYUj+rRQMB8GA1UdIwQYMBaA FBQusxe3WFbLrlAJQOYfr52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggrBgEFBQcw AYYVaHR0cDovL3IzLm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRwOi8vcjMu aS5sZW5jci5vcmcvMDcGA1UdEQQwMC6CGWNvcnJlaW9icmF6aWxpZW5zZS5jb20u YnKCEWNvcnJlaW93ZWIuY29tLmJyMBMGA1UdIAQMMAowCAYGZ4EMAQIBMIIBBQYK KwYBBAHWeQIEAgSB9gSB8wDxAHYAO1N3dT4tuYBOizBbBv5AO2fYT8P0x70ADS1y b+H61BcAAAGOMt0FEgAABAMARzBFAiEA0YFTCenuPvdDpF4Sudsl0FD1IqlMKhrG 0pyr3SkwM9ECIF18tUwPa7vPzQ0ZB9A/1AMndvBvH857Cpvfn961oNcxAHcA7s3Q ZNXbGs7FXLedtM0TojKHRny87N7DUUhZRnEftZsAAAGOMt0HBQAABAMASDBGAiEA o1A25FzEum3m2coCSnIOBFGiST8kBlUIwBnecoLfOPICIQDG4yjBeGs2miKLpOTK REDrqw6kdXRSRfmNxXJs7AOB1zANBgkqhkiG9w0BAQsFAAOCAQEAdtn2NqbkmfRX 06ArxiTY9URMQjf1CmCwd3FDa9OiUC3rZvlXLDnCjroc2ci4fMAjzreyoG3wgfm8 TM+1F3K8DUMRQm21WQhmzL+Utu/flnYLyurvgXYQ5aH1aTdr9p8P6fHF7HiShq5c Lr4zACeUAcZ943gQH8l/TBQ9j9ac9dx3C6BQ5b2ghDzSxle1CRnidJUxdAc8+qe3 cOElj+i7gbeobpVwGypRrqciSyrIapMLgJGblaxjz5HHD4eDHU2s71WPfVjzgA03 GwJ+TvocdNOX0nODkHA/cIUHCl/kRbiASnqGBFSp6puuCyJCDXMAE+Am6vpsasnk yzmcQppK6g== -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R3 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG /kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4 avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2 yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+ HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX nLRbwHOoq7hHwg== -----END CERTIFICATE----- --- Server certificate subject=CN = correiobraziliense.com.br issuer=C = US, O = Let's Encrypt, CN = R3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3281 bytes and written 413 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-CHACHA20-POLY1305 Session-ID: A561729040FF8DD92CDF63A9A3CF32F25054E1257CBDC4267B5D92D1CC5ED310 Session-ID-ctx: Master-Key: 1305D7325A9761A90FE92E5E72DEB4B3958B1F15AF64FE17B8679454C079E3B92BD65247F76D8D6F7A5043D9E08873E3 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 86400 (seconds) TLS session ticket: 0000 - e3 1e 4e 83 7e a2 04 2e-fb 67 25 23 6c da 0a 56 ..N.~....g%#l..V 0010 - 51 98 30 5c 79 e4 b9 3e-6e 17 5c c8 8f fd af f5 Q.0\y..>n.\..... 0020 - da cb 5c 79 ac ca ab 32-f2 52 9f 7b 32 15 fe 91 ..\y...2.R.{2... 0030 - 3d 85 ff 62 76 36 11 c1-58 04 69 22 4a 3c a0 43 =..bv6..X.i"J<.C 0040 - 20 d9 a8 19 71 87 94 02-0c 72 2b fb 44 ac f6 bf ...q....r+.D... 0050 - bc a1 df 52 97 ff ca e8-c7 d3 80 0f 12 2c 59 2f ...R.........,Y/ 0060 - 73 01 46 a7 d5 d2 41 ed-b6 6f 8f 77 69 ab fb 3a s.F...A..o.wi..: 0070 - eb 8f e7 ac f9 43 8e e8-c8 2e ee 98 53 7a 96 e3 .....C......Sz.. 0080 - 5b 5f 4d 36 fb 06 d4 33-99 fb 14 1b c4 6f d3 7d [_M6...3.....o.} 0090 - af d3 4d 9f af ab 91 f3-4f ae a6 07 9e c7 32 2f ..M.....O.....2/ 00a0 - f4 81 47 a5 5f de af 0d-cc 29 fd 47 fb 7c 53 17 ..G._....).G.|S. 00b0 - 91 7c 08 ba 1e 30 46 13-6c f9 0e 6d 26 68 3d 7f .|...0F.l..m&h=. 00c0 - 72 e7 a3 14 cd 73 46 f8-95 03 c8 26 48 68 d2 a4 r....sF....&Hh.. Start Time: 1713598938 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- DONE