Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (148 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 52.50.225.222
Reverse IP lookup: ec2-52-50-225-222.eu-west-1.compute.amazonaws.com.
Nameserver: ns-1201.awsdns-22.org.
Nameserver: ns-1696.awsdns-20.co.uk.
Nameserver: ns-424.awsdns-53.com.

General Information

Common Name: giallozafferano.it
SANs: DNS:giallozafferano.itDNS:*.giallozafferano.it Total number of SANs: 2
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 177d3020da7899dc3d518c6c8aa5f07
Not Before: Aug 15, 2023 00:00:00 GMT
Not After: Sep 11, 2024 23:59:59 GMT
Number of certs: 4
Revocation Status: good
OCSP Stapling: Not Supported
Server: nginx/1.18.0 (Ubuntu)
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: giallozafferano.it

Decode this certificate for verbose information →
Subject Common Name giallozafferano.it
Issuer Common Name Amazon RSA 2048 M01
Issuer Organization Amazon
Not Before: Aug 15, 2023 00:00:00 GMT
Not After: Sep 11, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 177d3020da7899dc3d518c6c8aa5f07
SHA1 Fingerprint: 09:A7:80:27:1A:40:22:56:33:87:F5:2B:55:CF:B1:B5:DB:63:54:F6
MD5 Fingerprint: E4:4C:76:2E:31:A7:BF:85:77:99:C0:6E:03:8B:AC:1D

Certificate # 2 - Common Name: Amazon RSA 2048 M01

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Amazon RSA 2048 M01
Subject Organization Amazon
Issuer Common Name Amazon Root CA 1
Issuer Organization Amazon
Not Before: Aug 23, 2022 22:21:28 GMT
Not After: Aug 23, 2030 22:21:28 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 77312380b9d6688a33b1ed9bf9ccda68e0e0f
SHA1 Fingerprint: 2A:D9:74:A7:75:F7:3C:BD:BB:D8:F5:AC:3A:49:25:5F:A8:FB:1F:8C
MD5 Fingerprint: 94:3B:3C:C1:D3:11:E0:6F:4E:4A:CB:F5:8F:28:9A:D2

Certificate # 3 - Common Name: Amazon Root CA 1

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Amazon Root CA 1
Subject Organization Amazon
Issuer Common Name Starfield Services Root Certificate Authority - G2
Issuer Organization Starfield Technologies, Inc.
Not Before: May 25, 2015 12:00:00 GMT
Not After: Dec 31, 2037 01:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 67f944a2a27cdf3fac2ae2b01f908eeb9c4c6
SHA1 Fingerprint: 06:B2:59:27:C4:2A:72:16:31:C1:EF:D9:43:1E:64:8F:A6:2E:1E:39
MD5 Fingerprint: E8:65:A2:2A:AE:52:4D:26:86:9A:F0:44:8D:6F:D8:96

Certificate # 4 - Common Name: Starfield Services Root Certificate Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Starfield Services Root Certificate Authority - G2
Subject Organization Starfield Technologies, Inc.
Issuer Organization Starfield Technologies, Inc.
Not Before: Sep 02, 2009 00:00:00 GMT
Not After: Jun 28, 2034 17:39:16 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a70e4a4c3482b77f
SHA1 Fingerprint: 9E:99:A4:8A:99:60:B1:49:26:BB:7F:3B:02:E2:2D:A2:B0:AB:72:80
MD5 Fingerprint: C6:15:09:25:CF:EA:59:41:DD:C7:FF:2A:0A:50:66:92

OpenSSL Handshake

depth=2 C = US, O = Amazon, CN = Amazon Root CA 1
verify return:1
depth=1 C = US, O = Amazon, CN = Amazon RSA 2048 M01
verify return:1
depth=0 CN = giallozafferano.it
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:CN = giallozafferano.it
   i:C = US, O = Amazon, CN = Amazon RSA 2048 M01
-----BEGIN CERTIFICATE-----
MIIF5jCCBM6gAwIBAgIQAXfTAg2niZ3D1RjGyKpfBzANBgkqhkiG9w0BAQsFADA8
MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g
UlNBIDIwNDggTTAxMB4XDTIzMDgxNTAwMDAwMFoXDTI0MDkxMTIzNTk1OVowHTEb
MBkGA1UEAxMSZ2lhbGxvemFmZmVyYW5vLml0MIIBIjANBgkqhkiG9w0BAQEFAAOC
AQ8AMIIBCgKCAQEAvjw8m5P9J3RLPDUAQjm5q08miyMGuMx45Je5QTfPaaW9CZML
p2TEZsgUOP5HhLJ4ZgoNj/nTeTGq8wIcKvuLZE/IWmvbbb/zjT6xq9K7wR+Aiuj8
Dp/FCJp4gzny4y5qljIlVs6u4kEnftm2jD6TnD3g08DITQ7Qy+cCQl3VqTG77GM8
97f0UtbLKRZfNfI2SivxTYkU3fpHQR+STCCLy7wKOFNZO0JVs3Oqph7Y4qi1em36
Ip8HtaPJHV4i/tpJ9Afr9HHjVb4+b228Vepq5zVy/Ca6HdsWUZeRuNVZbTs//hqi
PNOfkJcbBd6wKi5mtcQWlMQavUuU0wdCFII1jQIDAQABo4IDATCCAv0wHwYDVR0j
BBgwFoAUgbgOY4qJEhjl+js7UJWf5uWQE4UwHQYDVR0OBBYEFGB465SqW4CDlpF1
J/OXD7H5XBD8MDMGA1UdEQQsMCqCEmdpYWxsb3phZmZlcmFuby5pdIIUKi5naWFs
bG96YWZmZXJhbm8uaXQwDgYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUF
BwMBBggrBgEFBQcDAjA7BgNVHR8ENDAyMDCgLqAshipodHRwOi8vY3JsLnIybTAx
LmFtYXpvbnRydXN0LmNvbS9yMm0wMS5jcmwwEwYDVR0gBAwwCjAIBgZngQwBAgEw
dQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFodHRwOi8vb2NzcC5yMm0wMS5h
bWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0dHA6Ly9jcnQucjJtMDEuYW1h
em9udHJ1c3QuY29tL3IybTAxLmNlcjAMBgNVHRMBAf8EAjAAMIIBfgYKKwYBBAHW
eQIEAgSCAW4EggFqAWgAdgDuzdBk1dsazsVct520zROiModGfLzs3sNRSFlGcR+1
mwAAAYn2oRY4AAAEAwBHMEUCIFVy8G+UjdgmrSxxlN4l1/8uqiMjFB3xYS/QCLvU
iAKpAiEAkXZbY4w70+82reQZsDghdyHbt9lLMZxw1MdsAdFMgHsAdgBIsONr2qZH
NA/lagL6nTDrHFIBy1bdLIHZu7+rOdiEcwAAAYn2oRZvAAAEAwBHMEUCIQDW1ufE
M+GwUmLiNbg5hqyqZSNElLEC3p3TJU4QwdaY8gIgNZ7Pd7ffc3hXWvfzwHJ+8qYG
iMXqVYk/UGrGk3AIGBsAdgDatr9rP7W2Ip+bwrtca+hwkXFsu1GEhTS9pD0wSNf7
qwAAAYn2oRZHAAAEAwBHMEUCICnaxw6MWiaRMYxYSn04AWo6VXjvTsGfNgddC30h
Bz0oAiEAnzxKrmOYf1qblDAqDXvdxZrUwJfQ5iPv0rbu3CMNjmowDQYJKoZIhvcN
AQELBQADggEBADgNIaCLYX9iu8/+v4mhIRCX8TpLu6pMKs0Z8NCO6uC3k+EHT2Cx
yfqC9xRmq3GMHCoSvZvvrudCZRhIYo3Gkmv4Wt5CPAFg+y0n+1cMuNP0fjdSyMrq
Kl9Ns7DIrV0GKVMOG24ZbDRtvi1YuDC63E1jTHPK4zeTNELBsZPnQE7QEizxdvXF
qRbAqi4SWNv3qUer81TAuPz/idTE7/Fsc7lJkMoNQbugx70xegYlLthYhhoDOuSX
wYIFriLu7VvRNoQBZVXl5hWYVpauLWi5ULq20S3huIyQINDKERIvyStZ0mGZSYHW
07/EiGjErb9nBpUh3dBDgVomwJLAJkDsEPQ=
-----END CERTIFICATE-----
 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M01
   i:C = US, O = Amazon, CN = Amazon Root CA 1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:C = US, O = Amazon, CN = Amazon Root CA 1
   i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
-----BEGIN CERTIFICATE-----
MIIEkjCCA3qgAwIBAgITBn+USionzfP6wq4rAfkI7rnExjANBgkqhkiG9w0BAQsF
ADCBmDELMAkGA1UEBhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNj
b3R0c2RhbGUxJTAjBgNVBAoTHFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4x
OzA5BgNVBAMTMlN0YXJmaWVsZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1
dGhvcml0eSAtIEcyMB4XDTE1MDUyNTEyMDAwMFoXDTM3MTIzMTAxMDAwMFowOTEL
MAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEZMBcGA1UEAxMQQW1hem9uIFJv
b3QgQ0EgMTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALJ4gHHKeNXj
ca9HgFB0fW7Y14h29Jlo91ghYPl0hAEvrAIthtOgQ3pOsqTQNroBvo3bSMgHFzZM
9O6II8c+6zf1tRn4SWiw3te5djgdYZ6k/oI2peVKVuRF4fn9tBb6dNqcmzU5L/qw
IFAGbHrQgLKm+a/sRxmPUDgH3KKHOVj4utWp+UhnMJbulHheb4mjUcAwhmahRWa6
VOujw5H5SNz/0egwLX0tdHA114gk957EWW67c4cX8jJGKLhD+rcdqsq08p8kDi1L
93FcXmn/6pUCyziKrlA4b9v7LWIbxcceVOF34GfID5yHI9Y/QCB/IIDEgEw+OyQm
jgSubJrIqg0CAwEAAaOCATEwggEtMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/
BAQDAgGGMB0GA1UdDgQWBBSEGMyFNOy8DJSULghZnMeyEE4KCDAfBgNVHSMEGDAW
gBScXwDfqgHXMCs4iKK4bUqc8hGRgzB4BggrBgEFBQcBAQRsMGowLgYIKwYBBQUH
MAGGImh0dHA6Ly9vY3NwLnJvb3RnMi5hbWF6b250cnVzdC5jb20wOAYIKwYBBQUH
MAKGLGh0dHA6Ly9jcnQucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY2Vy
MD0GA1UdHwQ2MDQwMqAwoC6GLGh0dHA6Ly9jcmwucm9vdGcyLmFtYXpvbnRydXN0
LmNvbS9yb290ZzIuY3JsMBEGA1UdIAQKMAgwBgYEVR0gADANBgkqhkiG9w0BAQsF
AAOCAQEAYjdCXLwQtT6LLOkMm2xF4gcAevnFWAu5CIw+7bMlPLVvUOTNNWqnkzSW
MiGpSESrnO09tKpzbeR/FoCJbM8oAxiDR3mjEH4wW6w7sGDgd9QIpuEdfF7Au/ma
eyKdpwAJfqxGF4PcnCZXmTA5YpaP7dreqsXMGz7KQ2hsVxa81Q4gLv7/wmpdLqBK
bRRYh5TmOTFffHPLkIhqhBGWJ6bt2YFGpn6jcgAKUj6DiAdjd4lpFw85hdKrCEVN
0FE6/V1dN2RMfjCyVSRCnTawXZwXgWHxyvkQAiSr6w10kY17RSlQOYiypok1JR4U
akcjMS9cmvqtmg5iUaQqqcT5NJ0hGA==
-----END CERTIFICATE-----
 3 s:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
   i:C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = giallozafferano.it

issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M01

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 5601 bytes and written 455 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: 739F4346834E2E849A6EE1C5E05CB3B26FDC224CC4BA80EEC52C8F9FB889B3D9
    Session-ID-ctx: 
    Master-Key: 716CA66405477645877E8F734A10BA70A4BA8DC268C71F92A568381F494D8A042AD190561DC83B81C17146BB2F93802D
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 86400 (seconds)
    TLS session ticket:
    0000 - fd d4 0c b0 50 72 ae 90-ec 43 e7 a2 27 64 29 d9   ....Pr...C..'d).
    0010 - d7 94 d5 9f 74 2c 1c fc-30 76 01 0a 87 a7 e8 c6   ....t,..0v......
    0020 - 4d 0f 89 89 35 e6 1b ef-8d ed af 94 74 79 39 22   M...5.......ty9"
    0030 - 6d fb e8 46 4c 94 ee 01-03 54 38 a8 b1 3d 8e c7   m..FL....T8..=..
    0040 - e2 ea 2c d9 4a 57 0a de-59 4d 87 df 2b 4c 78 2c   ..,.JW..YM..+Lx,
    0050 - 96 67 55 7f 59 08 f2 f6-d0 ef 39 ea cd c3 48 de   .gU.Y.....9...H.
    0060 - 18 3b 20 b4 a6 ea 50 6d-09                        .; ...Pm.

    Start Time: 1713283157
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE