Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (222 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 120.46.76.152
Reverse IP lookup: ecs-120-46-76-152.compute.hwclouds-dns.com.
Nameserver: vip4.alidns.com.
Nameserver: vip3.alidns.com.

General Information

Common Name: *.csdn.net
SANs: DNS:*.csdn.netDNS:csdn.net Total number of SANs: 2
Organization: 北京创新乐知网络技术有限公司
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 28bfc05a9db95f9c34cb54150e5460f
Not Before: Nov 27, 2023 00:00:00 GMT
Not After: Dec 03, 2024 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: openresty
HSTS: max-age=31536000
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.csdn.net

Decode this certificate for verbose information →
Subject Common Name *.csdn.net
Subject Organization 北京创新乐知网络技术有限公司
Issuer Common Name GeoTrust CN RSA CA G1
Issuer Organization DigiCert Inc
Not Before: Nov 27, 2023 00:00:00 GMT
Not After: Dec 03, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 28bfc05a9db95f9c34cb54150e5460f
SHA1 Fingerprint: FB:55:74:B6:99:63:4F:56:DA:B0:F4:96:B3:5D:5A:E4:91:48:4C:EF
MD5 Fingerprint: 28:6E:A8:D8:61:A0:BE:27:BE:80:D5:A3:6B:06:E9:18

Certificate # 2 - Common Name: GeoTrust CN RSA CA G1

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GeoTrust CN RSA CA G1
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root CA
Issuer Organization DigiCert Inc
Not Before: Jun 20, 2019 12:27:58 GMT
Not After: Jun 20, 2029 12:27:58 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a0470d096bc8a12c890a6df826eec4b
SHA1 Fingerprint: AB:CB:71:01:35:6F:9E:4E:7A:44:99:88:E4:30:0B:D0:3B:32:1F:95
MD5 Fingerprint: 9A:75:0D:97:78:C0:30:A8:37:F2:FF:22:2E:5E:C5:DA

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust CN RSA CA G1
verify return:1
depth=0 C = CN, ST = \E5\8C\97\E4\BA\AC\E5\B8\82, O = \E5\8C\97\E4\BA\AC\E5\88\9B\E6\96\B0\E4\B9\90\E7\9F\A5\E7\BD\91\E7\BB\9C\E6\8A\80\E6\9C\AF\E6\9C\89\E9\99\90\E5\85\AC\E5\8F\B8, CN = *.csdn.net
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: 919F5E3115AE109FAD60C1F7C1CCAA48342F0C26
    Produced At: Apr 24 08:25:03 2024 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: A6558157C22FD1ABDC31DCF2A107C942FC5614C8
      Issuer Key Hash: 919F5E3115AE109FAD60C1F7C1CCAA48342F0C26
      Serial Number: 028BFC05A9DB95F9C34CB54150E5460F
    Cert Status: good
    This Update: Apr 24 08:09:02 2024 GMT
    Next Update: May  1 07:09:02 2024 GMT

    Signature Algorithm: sha256WithRSAEncryption
         6e:e4:ac:17:87:2f:be:c5:44:f2:36:54:aa:45:4e:4e:2e:72:
         e5:8a:c6:c3:db:e3:6d:76:44:27:5b:d4:a2:e6:2f:9d:e4:66:
         24:d4:b6:55:b5:b1:11:62:b0:55:bc:6a:e3:3d:64:43:02:52:
         4d:9b:bf:ce:fe:8d:5c:af:7a:12:d9:a1:c6:79:3d:b3:9d:f5:
         3e:76:d7:c0:c8:a7:1c:bf:c3:70:96:a0:90:99:f1:59:d4:b9:
         03:4c:e2:03:50:34:d8:38:2d:a3:01:70:47:a0:c7:dd:97:eb:
         dc:cd:0b:a2:a4:9c:82:cf:58:5f:a0:04:8b:55:c6:60:7a:cc:
         ab:e6:4c:29:08:9b:d6:bf:87:e2:00:34:14:ee:02:46:11:b0:
         ba:ab:bf:2f:2b:33:40:a9:fa:de:43:fe:97:7d:43:56:4b:bb:
         21:0b:ea:be:0d:68:f1:55:b3:6a:6f:72:4d:19:2c:40:65:b1:
         85:23:b7:13:85:d4:0c:2a:b1:06:f5:76:bc:c9:13:01:a7:70:
         50:cc:17:6c:d4:a2:e2:2a:3b:4d:c9:a0:03:17:a4:a6:c2:d3:
         ea:fa:8e:fe:44:95:0f:39:ca:91:b5:e6:88:9e:51:16:36:c6:
         ee:8c:28:85:fc:9f:15:ce:d7:be:45:25:b0:7c:64:e4:da:2c:
         c6:62:d6:dc
======================================
---
Certificate chain
 0 s:C = CN, ST = \E5\8C\97\E4\BA\AC\E5\B8\82, O = \E5\8C\97\E4\BA\AC\E5\88\9B\E6\96\B0\E4\B9\90\E7\9F\A5\E7\BD\91\E7\BB\9C\E6\8A\80\E6\9C\AF\E6\9C\89\E9\99\90\E5\85\AC\E5\8F\B8, CN = *.csdn.net
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust CN RSA CA G1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust CN RSA CA G1
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = CN, ST = \E5\8C\97\E4\BA\AC\E5\B8\82, O = \E5\8C\97\E4\BA\AC\E5\88\9B\E6\96\B0\E4\B9\90\E7\9F\A5\E7\BD\91\E7\BB\9C\E6\8A\80\E6\9C\AF\E6\9C\89\E9\99\90\E5\85\AC\E5\8F\B8, CN = *.csdn.net

issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust CN RSA CA G1

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 4163 bytes and written 412 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: 5ECB14EC75C067E007D5F6D6C992E14E643EBF9ACED8212D06846F8AF9A9DDC7
    Session-ID-ctx: 
    Master-Key: 8FE1F5363E4F28698ED50025FF5A1020A9A648E31E98AE7F269384ACB9D3B34007F715B3DD691D598B182865C67D6F7F
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 600 (seconds)
    TLS session ticket:
    0000 - 9c ff 67 0b af 07 97 d9-1f 78 43 37 4c ef 21 8a   ..g......xC7L.!.
    0010 - f5 d7 bb fa a9 98 59 58-1a c7 4f c0 16 f5 01 92   ......YX..O.....
    0020 - c2 24 46 57 a7 61 3d 40-40 26 a0 fb 23 21 d8 93   .$FW.a=@@&..#!..
    0030 - 9f 30 3e 90 3e 0e 47 16-7c 3f 13 b6 61 96 3f 5e   .0>.>.G.|?..a.?^
    0040 - 8d 78 ad 00 56 1c 71 e6-f1 cc 20 57 35 0a 01 c7   .x..V.q... W5...
    0050 - 84 ad 22 d6 10 94 93 68-db d9 8b 23 75 43 61 de   .."....h...#uCa.
    0060 - 7d 05 f2 03 8a 71 30 5f-7a ce 90 93 42 97 d2 e5   }....q0_z...B...
    0070 - fa 01 91 e4 ea 3b 99 51-a0 0b 78 c4 c8 5a 21 50   .....;.Q..x..Z!P
    0080 - 93 de 62 35 54 42 ee d0-5f d0 83 44 5d 54 ec bb   ..b5TB.._..D]T..
    0090 - aa 79 f4 74 d0 2d 19 2a-7b 8e 30 61 b8 3e d3 e2   .y.t.-.*{.0a.>..
    00a0 - 7b 52 d5 16 66 d7 27 57-02 07 78 5d 7e 60 0c 1a   {R..f.'W..x]~`..
    00b0 - 32 f5 10 9d 3b 43 10 af-7b 14 b6 c4 11 c4 34 d3   2...;C..{.....4.

    Start Time: 1714010441
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE