Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Doesn't match Common Name or/and SANs
Expired: Yes (expired 1438 days ago)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: The end-entity certificate is self-signed
Self-Signed: Yes, the end-entity certificate is self-signed
Chain Issues: The chain doesn't contain any intermediate certificates
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function

DNS Information

Resolves To: 160.153.96.97
Reverse IP lookup: 97.96.153.160.host.secureserver.net.
Nameserver: ns71.domaincontrol.com.
Nameserver: ns72.domaincontrol.com.

General Information

Common Name: gkellerjr.com
SANs: DNS:gkellerjr.comDNS:mail.gkellerjr.comDNS:www.gkellerjr.com Total number of SANs: 3
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 12810f42
Not Before: Oct 25, 2017 20:59:57 GMT
Not After: Oct 25, 2018 20:59:57 GMT
Number of certs: 1
Revocation Status: This check is not applicable to expired certificates
OCSP Stapling: Not Supported
Server: Apache
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: gkellerjr.com

Decode this certificate for verbose information →
Subject Common Name gkellerjr.com
Issuer Common Name gkellerjr.com
Not Before: Oct 25, 2017 20:59:57 GMT
Not After: Oct 25, 2018 20:59:57 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 12810f42
SHA1 Fingerprint: 8F:A3:24:DA:51:B8:76:E2:F5:59:26:76:D0:5B:51:A2:F2:E0:1B:57
MD5 Fingerprint: 7A:6D:5F:E6:F6:8D:71:CB:2D:0C:94:96:C0:6F:66:97

OpenSSL Handshake

depth=0 CN = gkellerjr.com
verify error:num=18:self signed certificate
verify return:1
depth=0 CN = gkellerjr.com
verify error:num=10:certificate has expired
notAfter=Oct 25 20:59:57 2018 GMT
verify return:1
depth=0 CN = gkellerjr.com
notAfter=Oct 25 20:59:57 2018 GMT
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/CN=gkellerjr.com
   i:/CN=gkellerjr.com
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/CN=gkellerjr.com
issuer=/CN=gkellerjr.com
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 1511 bytes and written 297 bytes
Verification error: certificate has expired
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: CD852AE400463AD8BDE4F8FF1A8C036CE5A9FCA9D1B3BCF11992972FD995EF08
    Session-ID-ctx: 
    Master-Key: 7A711A31145D0D7BEBDD9297B6B58506C3B54130D0D1E26D44CA2384A35722CC039331172FDCA8EE12D13EE7F3220A84
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 300 (seconds)
    TLS session ticket:
    0000 - ac 7a a5 f5 07 e1 fb fb-c1 3c f4 f4 c1 6b 02 00   .z.......<...k..
    0010 - a5 de 96 36 fe 09 9a 37-bf 71 b1 55 3f f6 5e b5   ...6...7.q.U?.^.
    0020 - 69 60 2f 41 29 60 bf 7a-17 62 00 f0 5e 31 8f 80   i`/A)`.z.b..^1..
    0030 - 15 be f4 a9 86 01 d6 cf-81 a0 15 d1 8a 73 55 64   .............sUd
    0040 - d9 83 91 a0 cb 46 ae c6-8e 21 8e e5 bb a8 08 57   .....F...!.....W
    0050 - 13 c0 95 fd 9f 4e f3 2e-a6 f7 1e b7 cb 49 ba c8   .....N.......I..
    0060 - 1b ea 3d 48 f9 b9 01 a7-d0 72 7e 98 59 a1 a5 63   ..=H.....r~.Y..c
    0070 - 6f 91 52 18 e9 0b ec e5-ad ea ce ee 9c 50 d4 bc   o.R..........P..
    0080 - 97 9e d3 a0 4e ba 0b 54-29 d9 e4 1f 0b 67 c8 26   ....N..T)....g.&
    0090 - 2d 19 73 19 38 3e 7f 0c-f4 7f fb 65 35 20 b0 d9   -.s.8>.....e5 ..
    00a0 - ab ef 8d 4e 9f 03 b2 70-69 4a 4b 45 d1 23 0c da   ...N...piJKE.#..
    00b0 - 0e 9c d3 82 fa 7c f9 bb-98 fb b4 d4 95 68 4e 55   .....|.......hNU
    00c0 - 12 e2 8e 32 c7 c8 8d 15-c8 e5 55 3c 0f cb d1 5d   ...2......U<...]

    Start Time: 1664661284
    Timeout   : 7200 (sec)
    Verify return code: 10 (certificate has expired)
    Extended master secret: yes
---
DONE