Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (98 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 208.82.238.135
Reverse IP lookup: nonorg.craigslist.org.
Nameserver: ns2a.craigslist.org.
Nameserver: ns2f.craigslist.org.
Nameserver: ns1a.craigslist.org.
Nameserver: ns1f.craigslist.org.

General Information

Common Name: craigslist.org
SANs: DNS:craigslist.orgDNS:cl.comDNS:cl.ukDNS:craigslist.atDNS:craigslist.beDNS:craigslist.bizDNS:craigslist.caDNS:craigslist.chDNS:craigslist.clDNS:craigslist.cnDNS:craigslist.co.huDNS:craigslist.co.ilDNS:craigslist.co.inDNS:craigslist.co.krDNS:craigslist.co.nzDNS:craigslist.co.thDNS:craigslist.co.ukDNS:craigslist.co.zaDNS:craigslist.comDNS:craigslist.com.auDNS:craigslist.com.cnDNS:craigslist.com.mxDNS:craigslist.com.peDNS:craigslist.com.phDNS:craigslist.com.sgDNS:craigslist.com.trDNS:craigslist.com.twDNS:craigslist.czDNS:craigslist.deDNS:craigslist.dkDNS:craigslist.esDNS:craigslist.euDNS:craigslist.fiDNS:craigslist.frDNS:craigslist.grDNS:craigslist.hkDNS:craigslist.ieDNS:craigslist.inDNS:craigslist.infoDNS:craigslist.itDNS:craigslist.jobsDNS:craigslist.jpDNS:craigslist.mobiDNS:craigslist.mxDNS:craigslist.netDNS:craigslist.net.auDNS:craigslist.nlDNS:craigslist.phDNS:craigslist.plDNS:craigslist.ptDNS:craigslist.seDNS:craigslist.tvDNS:craigslist.ukDNS:*.cl.comDNS:*.cl.ukDNS:*.craigslist.atDNS:*.craigslist.beDNS:*.craigslist.bizDNS:*.craigslist.caDNS:*.craigslist.chDNS:*.craigslist.clDNS:*.craigslist.cnDNS:*.craigslist.co.huDNS:*.craigslist.co.ilDNS:*.craigslist.co.inDNS:*.craigslist.co.krDNS:*.craigslist.co.nzDNS:*.craigslist.co.thDNS:*.craigslist.co.ukDNS:*.craigslist.co.zaDNS:*.craigslist.comDNS:*.craigslist.com.auDNS:*.craigslist.com.cnDNS:*.craigslist.com.mxDNS:*.craigslist.com.peDNS:*.craigslist.com.phDNS:*.craigslist.com.sgDNS:*.craigslist.com.trDNS:*.craigslist.com.twDNS:*.craigslist.czDNS:*.craigslist.deDNS:*.craigslist.dkDNS:*.craigslist.esDNS:*.craigslist.euDNS:*.craigslist.fiDNS:*.craigslist.frDNS:*.craigslist.grDNS:*.craigslist.hkDNS:*.craigslist.ieDNS:*.craigslist.inDNS:*.craigslist.infoDNS:*.craigslist.itDNS:*.craigslist.jobsDNS:*.craigslist.jpDNS:*.craigslist.mobiDNS:*.craigslist.mxDNS:*.craigslist.netDNS:*.craigslist.net.auDNS:*.craigslist.nlDNS:*.craigslist.orgDNS:*.craigslist.phDNS:*.craigslist.plDNS:*.craigslist.ptDNS:*.craigslist.seDNS:*.craigslist.tvDNS:*.craigslist.uk Total number of SANs: 106
Organization: craigslist, inc.
Locality: San Francisco
Signature Algorithm: ecdsa-with-SHA384
Key Type: ECDSA (secp256r1)
Key size: 256 bits
Serial Number: 2efb6aff41bbdd0c84b43641297885b
Not Before: Feb 11, 2021 00:00:00 GMT
Not After: Mar 14, 2022 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Not Provided
HSTS: max-age=63072000
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: craigslist.org

Decode this certificate for verbose information →
Subject Common Name craigslist.org
Subject Organization craigslist, inc.
Issuer Common Name DigiCert TLS Hybrid ECC SHA384 2020 CA1
Issuer Organization DigiCert Inc
Not Before: Feb 11, 2021 00:00:00 GMT
Not After: Mar 14, 2022 23:59:59 GMT
Signature Algorithm: ecdsa-with-SHA384
Serial Number: 2efb6aff41bbdd0c84b43641297885b
SHA1 Fingerprint: B6:88:D5:9A:3A:F4:D2:5E:FB:5D:7D:B7:D1:96:E8:6B:A6:B2:B1:C6
MD5 Fingerprint: 25:08:EF:B9:3C:37:E2:13:AB:92:29:0B:D4:31:6F:B9

Certificate # 2 - Common Name: DigiCert TLS Hybrid ECC SHA384 2020 CA1

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name DigiCert TLS Hybrid ECC SHA384 2020 CA1
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root CA
Issuer Organization DigiCert Inc
Not Before: Sep 23, 2020 00:00:00 GMT
Not After: Sep 22, 2030 23:59:59 GMT
Signature Algorithm: sha384WithRSAEncryption
Serial Number: a275fe704d6eecb23d5cd5b4b1a4e04
SHA1 Fingerprint: 51:E3:9A:8B:DB:08:87:8C:52:D6:18:65:88:A0:FA:26:6A:69:CF:28
MD5 Fingerprint: 78:AF:F3:A5:D1:21:EB:A2:20:F6:C8:94:E0:48:19:36

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, CN = DigiCert TLS Hybrid ECC SHA384 2020 CA1
verify return:1
depth=0 C = US, ST = California, L = San Francisco, O = "craigslist, inc.", CN = craigslist.org
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/C=US/ST=California/L=San Francisco/O=craigslist, inc./CN=craigslist.org
   i:/C=US/O=DigiCert Inc/CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1
-----BEGIN CERTIFICATE-----
MIIL7DCCC3KgAwIBAgIQAu+2r/QbvdDIS0NkEpeIWzAKBggqhkjOPQQDAzBWMQsw
CQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMTAwLgYDVQQDEydEaWdp
Q2VydCBUTFMgSHlicmlkIEVDQyBTSEEzODQgMjAyMCBDQTEwHhcNMjEwMjExMDAw
MDAwWhcNMjIwMzE0MjM1OTU5WjBuMQswCQYDVQQGEwJVUzETMBEGA1UECBMKQ2Fs
aWZvcm5pYTEWMBQGA1UEBxMNU2FuIEZyYW5jaXNjbzEZMBcGA1UEChMQY3JhaWdz
bGlzdCwgaW5jLjEXMBUGA1UEAxMOY3JhaWdzbGlzdC5vcmcwWTATBgcqhkjOPQIB
BggqhkjOPQMBBwNCAARbQq5AxMOxsxoVMBdXL+LWUz2NKrw49XD7chNyvRohOt3y
YYmCqI0Nt798V/MNaXH53wco1O2tEeqW7W21iZcho4IKCDCCCgQwHwYDVR0jBBgw
FoAUCrwIKReMpTlteg7OM8cus+37w3owHQYDVR0OBBYEFO3i2dIjaR5nRzC1Ncx1
gtJWiQf4MIIHGwYDVR0RBIIHEjCCBw6CDmNyYWlnc2xpc3Qub3JnggZjbC5jb22C
BWNsLnVrgg1jcmFpZ3NsaXN0LmF0gg1jcmFpZ3NsaXN0LmJlgg5jcmFpZ3NsaXN0
LmJpeoINY3JhaWdzbGlzdC5jYYINY3JhaWdzbGlzdC5jaIINY3JhaWdzbGlzdC5j
bIINY3JhaWdzbGlzdC5jboIQY3JhaWdzbGlzdC5jby5odYIQY3JhaWdzbGlzdC5j
by5pbIIQY3JhaWdzbGlzdC5jby5pboIQY3JhaWdzbGlzdC5jby5rcoIQY3JhaWdz
bGlzdC5jby5ueoIQY3JhaWdzbGlzdC5jby50aIIQY3JhaWdzbGlzdC5jby51a4IQ
Y3JhaWdzbGlzdC5jby56YYIOY3JhaWdzbGlzdC5jb22CEWNyYWlnc2xpc3QuY29t
LmF1ghFjcmFpZ3NsaXN0LmNvbS5jboIRY3JhaWdzbGlzdC5jb20ubXiCEWNyYWln
c2xpc3QuY29tLnBlghFjcmFpZ3NsaXN0LmNvbS5waIIRY3JhaWdzbGlzdC5jb20u
c2eCEWNyYWlnc2xpc3QuY29tLnRyghFjcmFpZ3NsaXN0LmNvbS50d4INY3JhaWdz
bGlzdC5jeoINY3JhaWdzbGlzdC5kZYINY3JhaWdzbGlzdC5ka4INY3JhaWdzbGlz
dC5lc4INY3JhaWdzbGlzdC5ldYINY3JhaWdzbGlzdC5maYINY3JhaWdzbGlzdC5m
coINY3JhaWdzbGlzdC5ncoINY3JhaWdzbGlzdC5oa4INY3JhaWdzbGlzdC5pZYIN
Y3JhaWdzbGlzdC5pboIPY3JhaWdzbGlzdC5pbmZvgg1jcmFpZ3NsaXN0Lml0gg9j
cmFpZ3NsaXN0LmpvYnOCDWNyYWlnc2xpc3QuanCCD2NyYWlnc2xpc3QubW9iaYIN
Y3JhaWdzbGlzdC5teIIOY3JhaWdzbGlzdC5uZXSCEWNyYWlnc2xpc3QubmV0LmF1
gg1jcmFpZ3NsaXN0Lm5sgg1jcmFpZ3NsaXN0LnBogg1jcmFpZ3NsaXN0LnBsgg1j
cmFpZ3NsaXN0LnB0gg1jcmFpZ3NsaXN0LnNlgg1jcmFpZ3NsaXN0LnR2gg1jcmFp
Z3NsaXN0LnVrgggqLmNsLmNvbYIHKi5jbC51a4IPKi5jcmFpZ3NsaXN0LmF0gg8q
LmNyYWlnc2xpc3QuYmWCECouY3JhaWdzbGlzdC5iaXqCDyouY3JhaWdzbGlzdC5j
YYIPKi5jcmFpZ3NsaXN0LmNogg8qLmNyYWlnc2xpc3QuY2yCDyouY3JhaWdzbGlz
dC5jboISKi5jcmFpZ3NsaXN0LmNvLmh1ghIqLmNyYWlnc2xpc3QuY28uaWyCEiou
Y3JhaWdzbGlzdC5jby5pboISKi5jcmFpZ3NsaXN0LmNvLmtyghIqLmNyYWlnc2xp
c3QuY28ubnqCEiouY3JhaWdzbGlzdC5jby50aIISKi5jcmFpZ3NsaXN0LmNvLnVr
ghIqLmNyYWlnc2xpc3QuY28uemGCECouY3JhaWdzbGlzdC5jb22CEyouY3JhaWdz
bGlzdC5jb20uYXWCEyouY3JhaWdzbGlzdC5jb20uY26CEyouY3JhaWdzbGlzdC5j
b20ubXiCEyouY3JhaWdzbGlzdC5jb20ucGWCEyouY3JhaWdzbGlzdC5jb20ucGiC
EyouY3JhaWdzbGlzdC5jb20uc2eCEyouY3JhaWdzbGlzdC5jb20udHKCEyouY3Jh
aWdzbGlzdC5jb20udHeCDyouY3JhaWdzbGlzdC5jeoIPKi5jcmFpZ3NsaXN0LmRl
gg8qLmNyYWlnc2xpc3QuZGuCDyouY3JhaWdzbGlzdC5lc4IPKi5jcmFpZ3NsaXN0
LmV1gg8qLmNyYWlnc2xpc3QuZmmCDyouY3JhaWdzbGlzdC5mcoIPKi5jcmFpZ3Ns
aXN0Lmdygg8qLmNyYWlnc2xpc3QuaGuCDyouY3JhaWdzbGlzdC5pZYIPKi5jcmFp
Z3NsaXN0LmlughEqLmNyYWlnc2xpc3QuaW5mb4IPKi5jcmFpZ3NsaXN0Lml0ghEq
LmNyYWlnc2xpc3Quam9ic4IPKi5jcmFpZ3NsaXN0LmpwghEqLmNyYWlnc2xpc3Qu
bW9iaYIPKi5jcmFpZ3NsaXN0Lm14ghAqLmNyYWlnc2xpc3QubmV0ghMqLmNyYWln
c2xpc3QubmV0LmF1gg8qLmNyYWlnc2xpc3QubmyCECouY3JhaWdzbGlzdC5vcmeC
DyouY3JhaWdzbGlzdC5waIIPKi5jcmFpZ3NsaXN0LnBsgg8qLmNyYWlnc2xpc3Qu
cHSCDyouY3JhaWdzbGlzdC5zZYIPKi5jcmFpZ3NsaXN0LnR2gg8qLmNyYWlnc2xp
c3QudWswDgYDVR0PAQH/BAQDAgeAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEF
BQcDAjCBlwYDVR0fBIGPMIGMMESgQqBAhj5odHRwOi8vY3JsMy5kaWdpY2VydC5j
b20vRGlnaUNlcnRUTFNIeWJyaWRFQ0NTSEEzODQyMDIwQ0ExLmNybDBEoEKgQIY+
aHR0cDovL2NybDQuZGlnaWNlcnQuY29tL0RpZ2lDZXJ0VExTSHlicmlkRUNDU0hB
Mzg0MjAyMENBMS5jcmwwPgYDVR0gBDcwNTAzBgZngQwBAgIwKTAnBggrBgEFBQcC
ARYbaHR0cDovL3d3dy5kaWdpY2VydC5jb20vQ1BTMIGDBggrBgEFBQcBAQR3MHUw
JAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTBNBggrBgEFBQcw
AoZBaHR0cDovL2NhY2VydHMuZGlnaWNlcnQuY29tL0RpZ2lDZXJ0VExTSHlicmlk
RUNDU0hBMzg0MjAyMENBMS5jcnQwDAYDVR0TAQH/BAIwADCCAQQGCisGAQQB1nkC
BAIEgfUEgfIA8AB3ACl5vvCeOTkh8FZzn2Old+W+V32cYAr4+U1dJlwlXceEAAAB
d5MWoooAAAQDAEgwRgIhAJzQWO9QjdvI54fdKQEwyECxSzuMh94FwgB3ndPAyOcP
AiEAktEgx8VEJfnMZpPpfmqvyqAPuK4uQkxFfqPJK06C798AdQAiRUUHWVUkVpY/
oS/x922G4CMmY63AS39dxoNcbuIPAgAAAXeTFqLEAAAEAwBGMEQCIHuSREtREMPQ
o5GGfy65UHAlYpr2dZz+dVTO7FyUAK/+AiAC0wsKunpKhIABKNpLmRrhXlupZFhr
S4z7S4QQqP1p8TAKBggqhkjOPQQDAwNoADBlAjA/ZJ7PaZPwI7R2o8Fu4xJCT+WZ
ExJogStwJRv+Mb7j38dTMW71HYBYV5Yst9PYngwCMQCNovprnYJejtc7y9umvbtl
LfodyQ9K6kwA60rZT4ztgjlaj6dvt8sIiiOz7BEi1bY=
-----END CERTIFICATE-----
 1 s:/C=US/O=DigiCert Inc/CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1
   i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/C=US/ST=California/L=San Francisco/O=craigslist, inc./CN=craigslist.org
issuer=/C=US/O=DigiCert Inc/CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 4480 bytes and written 333 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-ECDSA-AES128-GCM-SHA256
Server public key is 256 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-ECDSA-AES128-GCM-SHA256
    Session-ID: CDA3D681DB6E413C17B313CB1FDA2B8E98D7B871848C064651B0B0E122555988
    Session-ID-ctx: 
    Master-Key: B594EB336CA71AF9E2217D0C2A74A42D3DC7F68B1DE34BC44FD72D4F7F4E19A1875E4946B7E24CC315F1E9897FA640EF
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1638768435
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: no
---
DONE