Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (350 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 52.7.111.176
Reverse IP lookup: ec2-52-7-111-176.compute-1.amazonaws.com.
Nameserver: rh120ns1.368.dhhs.gov.
Nameserver: rh202ns1.355.dhhs.gov.
Nameserver: rh120ns2.368.dhhs.gov.
Nameserver: rh202ns2.355.dhhs.gov.

General Information

Common Name: hhs.gov
SANs: DNS:hhs.govDNS:dhhs.govDNS:www.dhhs.govDNS:pandemicflu.govDNS:stopbullying.govDNS:aging.govDNS:foodsafety.govDNS:betobaccofree.govDNS:therealcost.govDNS:freshempire.govDNS:fitness.govDNS:www.fitness.govDNS:globalhealth.govDNS:surgeongeneral.govDNS:www.surgeongeneral.govDNS:thisfreelife.govDNS:tobacco.govDNS:opioids.govDNS:organdonor.govDNS:everytrycounts.gov Total number of SANs: 20
Organization: United States Department of Health and Human Services
Locality: Washington
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: dc2fa7f1ee40a7c59a9daeeee0b4d84
Not Before: Oct 21, 2021 00:00:00 GMT
Not After: Nov 21, 2022 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Apache
HSTS: max-age=31536000; includeSubdomains; preload
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: hhs.gov

Decode this certificate for verbose information →
Subject Common Name hhs.gov
Subject Organization United States Department of Health and Human Services
Issuer Common Name DigiCert TLS RSA SHA256 2020 CA1
Issuer Organization DigiCert Inc
Not Before: Oct 21, 2021 00:00:00 GMT
Not After: Nov 21, 2022 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: dc2fa7f1ee40a7c59a9daeeee0b4d84
SHA1 Fingerprint: 4D:64:63:09:C1:7A:9F:F6:DE:0E:C6:D5:26:C1:11:5D:12:97:65:E9
MD5 Fingerprint: 3F:49:CC:26:2B:F4:18:6E:CC:AB:6D:34:75:B0:54:47

Certificate # 2 - Common Name: DigiCert TLS RSA SHA256 2020 CA1

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name DigiCert TLS RSA SHA256 2020 CA1
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root CA
Issuer Organization DigiCert Inc
Not Before: Apr 14, 2021 00:00:00 GMT
Not After: Apr 13, 2031 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 6d8d904d5584346f68a2fa754227ec4
SHA1 Fingerprint: 1C:58:A3:A8:51:8E:87:59:BF:07:5B:76:B7:50:D4:F2:DF:26:4F:CD
MD5 Fingerprint: E6:7B:58:6F:70:46:BF:E0:AA:51:F6:66:0B:11:9D:D9

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, CN = DigiCert TLS RSA SHA256 2020 CA1
verify return:1
depth=0 C = US, ST = District of Columbia, L = Washington, O = United States Department of Health and Human Services, CN = hhs.gov
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/C=US/ST=District of Columbia/L=Washington/O=United States Department of Health and Human Services/CN=hhs.gov
   i:/C=US/O=DigiCert Inc/CN=DigiCert TLS RSA SHA256 2020 CA1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=DigiCert Inc/CN=DigiCert TLS RSA SHA256 2020 CA1
   i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/C=US/ST=District of Columbia/L=Washington/O=United States Department of Health and Human Services/CN=hhs.gov
issuer=/C=US/O=DigiCert Inc/CN=DigiCert TLS RSA SHA256 2020 CA1
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3973 bytes and written 295 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: 9A2765AA195568E48525D8B82CC749F2343D03114ABECDAA0866C5E9A0E5465F
    Session-ID-ctx: 
    Master-Key: BFF08947884621DA17C5E423B5D5605BB35821C01B018CEB1A842DDAF74033D86AC2731B17913DA9108617FB32E4929D
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 300 (seconds)
    TLS session ticket:
    0000 - 5f 87 bb 5b bc a3 1a 0d-e1 0f 4e 62 9a 3d 10 e7   _..[......Nb.=..
    0010 - 14 26 db ef a2 3f f7 ef-3f 3c 1c b5 2e ca db 2e   .&...?..?<......
    0020 - de 7f af 38 4a 51 7a 70-1a 6d 25 64 e7 f3 f8 87   ...8JQzp.m%d....
    0030 - db fe 69 b5 c1 a6 20 4b-9d 8c 23 af 34 5b a9 c2   ..i... K..#.4[..
    0040 - 8d eb a0 e0 80 40 04 2d-89 ac 3d 71 78 33 e7 1c   .....@.-..=qx3..
    0050 - 8c 93 b6 94 ba aa 2a 83-a6 c7 00 90 9f 26 c4 fc   ......*......&..
    0060 - d0 9e 7c 60 81 e1 8a 1e-26 e9 ee 19 26 d8 c0 05   ..|`....&...&...
    0070 - 78 d2 d3 4b 9a 82 d7 90-d3 94 c5 40 a9 f7 ae 4c   x..K.......@...L
    0080 - 29 fb e7 af 29 b0 56 7c-61 a7 09 53 57 0e 75 55   )...).V|a..SW.uU
    0090 - 9c 49 b4 d9 77 2b c8 df-3a 59 b5 dd d7 41 54 6b   .I..w+..:Y...ATk
    00a0 - bf 9b 92 e5 25 ab ea 0b-71 a9 7a a5 49 5b 0d 1f   ....%...q.z.I[..
    00b0 - 41 47 5f 45 9b b0 a7 11-40 bf 70 f5 ab 3f d8 3e   AG_E....@.p..?.>
    00c0 - 25 d3 85 93 f1 9c ce 8a-ff 6e f7 e7 d6 bf 1d be   %........n......

    Start Time: 1638770844
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE