SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (55 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 194.36.26.6 |
Reverse IP lookup: | 6.26.36.194.synthohosting.net. |
Nameserver: | ns4.duckdns.org. |
Nameserver: | ns2.duckdns.org. |
Nameserver: | ns5.duckdns.org. |
Nameserver: | ns6.duckdns.org. |
Nameserver: | ns9.duckdns.org. |
Nameserver: | ns1.duckdns.org. |
Nameserver: | ns8.duckdns.org. |
Nameserver: | ns3.duckdns.org. |
Nameserver: | ns7.duckdns.org. |
General Information
Common Name: | green-home.duckdns.org |
SANs: | DNS:green-home.duckdns.org Total number of SANs: 1 |
Signature Algorithm: | ecdsa-with-SHA384 |
Key Type: | ECDSA (secp384r1) |
Key size: | 384 bits |
Serial Number: | 49c6de84b9221cf419077c57806f9367106 |
Not Before: | Nov 24, 2024 00:47:18 GMT |
Not After: | Feb 22, 2025 00:47:17 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: green-home.duckdns.org
Decode this certificate for verbose information → launchSubject Common Name | green-home.duckdns.org |
Issuer Common Name | E5 |
Issuer Organization | Let's Encrypt |
Not Before: | Nov 24, 2024 00:47:18 GMT |
Not After: | Feb 22, 2025 00:47:17 GMT |
Signature Algorithm: | ecdsa-with-SHA384 |
Serial Number: | 49c6de84b9221cf419077c57806f9367106 |
SHA1 Fingerprint: | 59:B8:14:A4:C1:E5:D5:F1:28:7B:19:2A:E8:15:87:1C:5F:25:EE:A7 |
MD5 Fingerprint: | 3C:5A:11:FD:D4:8F:2F:A7:6A:B4:22:5C:11:BC:E0:F1 |
Certificate # 2 - Common Name: E5
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | E5 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Mar 13, 2024 00:00:00 GMT |
Not After: | Mar 12, 2027 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 838f6c63ceb1398c6206628315c9fdde |
SHA1 Fingerprint: | 5F:28:D9:C5:89:EE:4B:F3:1A:11:B7:8C:72:B8:D1:3F:07:9D:DC:45 |
MD5 Fingerprint: | 54:7A:B1:C0:5C:A8:5A:6E:68:2C:91:28:0F:EF:D7:55 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = E5 verify return:1 depth=0 CN = green-home.duckdns.org verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = green-home.duckdns.org i:C = US, O = Let's Encrypt, CN = E5 -----BEGIN CERTIFICATE----- MIIDqzCCAzGgAwIBAgISBJxt6EuSIc9BkHfFeAb5NnEGMAoGCCqGSM49BAMDMDIx CzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQDEwJF NTAeFw0yNDExMjQwMDQ3MThaFw0yNTAyMjIwMDQ3MTdaMCExHzAdBgNVBAMTFmdy ZWVuLWhvbWUuZHVja2Rucy5vcmcwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAAR1nDdJ SbiIbIGrJMSoQK6lVN0u/Ndd9rNCnH8J43haQCIGrv7hCxt5tHFKPRqi1lzjLW0A 4hnkkt51k4AteDWtjejyVFPFQu8cZKRR/kwzni2EW8tVquSbMlUt/etrSC+jggIZ MIICFTAOBgNVHQ8BAf8EBAMCB4AwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUF BwMCMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFIFuSScmg7nYy9GUxgoK3zWl6uo6 MB8GA1UdIwQYMBaAFJ8rX888IU+dBLftKyzExnCL0tcNMFUGCCsGAQUFBwEBBEkw RzAhBggrBgEFBQcwAYYVaHR0cDovL2U1Lm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAC hhZodHRwOi8vZTUuaS5sZW5jci5vcmcvMCEGA1UdEQQaMBiCFmdyZWVuLWhvbWUu ZHVja2Rucy5vcmcwEwYDVR0gBAwwCjAIBgZngQwBAgEwggEFBgorBgEEAdZ5AgQC BIH2BIHzAPEAdwCi4wrkRe+9rZt+OO1HZ3dT14JbhJTXK14bLMS5UKRH5wAAAZNb 2LP4AAAEAwBIMEYCIQD3HEMbbtS582FxmrBc2Q+w4giWtkRBmwB0WfJ6RCwQ2wIh AKia2UjMxkLcp6b/KL79CZQZuxs4jZ4Y285r0YG1XE7JAHYAfVkeEuF4KnscYWd8 Xv340IdcFKBOlZ65Ay/ZDowuebgAAAGTW9i0BwAABAMARzBFAiAb81pFxQ/8//8I r5m/HOSIQCnOk3kYuSD1tkdlIuxXNwIhAPv3XfPFHI1AhZRNOKCs0nzLXIVFsUeQ LQU2CdOTqQU3MAoGCCqGSM49BAMDA2gAMGUCMFcI0ole8RwX6Px9ypiZapOilSCD FewRIir81j9CGM9XKLNpe4lOhdkpzoHH049DxAIxALiZX3MK6jtTH2RD6X9sKbAd 4Hul2sE3dJ22C1TcajyWj6kl/sbMfDSjr+U98CFIhg== -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = E5 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIEVzCCAj+gAwIBAgIRAIOPbGPOsTmMYgZigxXJ/d4wDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjQwMzEzMDAwMDAw WhcNMjcwMzEyMjM1OTU5WjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCRTUwdjAQBgcqhkjOPQIBBgUrgQQAIgNiAAQNCzqK a2GOtu/cX1jnxkJFVKtj9mZhSAouWXW0gQI3ULc/FnncmOyhKJdyIBwsz9V8UiBO VHhbhBRrwJCuhezAUUE8Wod/Bk3U/mDR+mwt4X2VEIiiCFQPmRpM5uoKrNijgfgw gfUwDgYDVR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcD ATASBgNVHRMBAf8ECDAGAQH/AgEAMB0GA1UdDgQWBBSfK1/PPCFPnQS37SssxMZw i9LXDTAfBgNVHSMEGDAWgBR5tFnme7bl5AFzgAiIyBpY9umbbjAyBggrBgEFBQcB AQQmMCQwIgYIKwYBBQUHMAKGFmh0dHA6Ly94MS5pLmxlbmNyLm9yZy8wEwYDVR0g BAwwCjAIBgZngQwBAgEwJwYDVR0fBCAwHjAcoBqgGIYWaHR0cDovL3gxLmMubGVu Y3Iub3JnLzANBgkqhkiG9w0BAQsFAAOCAgEAH3KdNEVCQdqk0LKyuNImTKdRJY1C 2uw2SJajuhqkyGPY8C+zzsufZ+mgnhnq1A2KVQOSykOEnUbx1cy637rBAihx97r+ bcwbZM6sTDIaEriR/PLk6LKs9Be0uoVxgOKDcpG9svD33J+G9Lcfv1K9luDmSTgG 6XNFIN5vfI5gs/lMPyojEMdIzK9blcl2/1vKxO8WGCcjvsQ1nJ/Pwt8LQZBfOFyV XP8ubAp/au3dc4EKWG9MO5zcx1qT9+NXRGdVWxGvmBFRAajciMfXME1ZuGmk3/GO koAM7ZkjZmleyokP1LGzmfJcUd9s7eeu1/9/eg5XlXd/55GtYjAM+C4DG5i7eaNq cm2F+yxYIPt6cbbtYVNJCGfHWqHEQ4FYStUyFnv8sjyqU8ypgZaNJ9aVcWSICLOI E1/Qv/7oKsnZCWJ926wU6RqG1OYPGOi1zuABhLw61cuPVDT28nQS/e6z95cJXq0e K1BcaJ6fJZsmbjRgD5p3mvEf5vdQM7MCEvU0tHbsx2I5mHHJoABHb8KVBgWp/lcX GWiWaeOyB7RP+OfDtvi2OsapxXiV7vNVs7fMlrRjY1joKaqmmycnBvAq14AEbtyL sVfOS66B8apkeFX2NY4XPEYV4ZSCe8VHPrdrERk2wILG3T/EGmSIkCYVUMSnjmJd VQD9F6Na/+zmXCc= -----END CERTIFICATE----- --- Server certificate subject=CN = green-home.duckdns.org issuer=C = US, O = Let's Encrypt, CN = E5 --- No client certificate CA names sent Peer signing digest: SHA384 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 2466 bytes and written 413 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 384 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE