Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (220 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 23.6.187.131
Reverse IP lookup: a23-6-187-131.deploy.static.akamaitechnologies.com.
Nameserver: a1-86.akam.net.
Nameserver: a3-66.akam.net.
Nameserver: a24-65.akam.net.
Nameserver: a13-64.akam.net.
Nameserver: a10-67.akam.net.
Nameserver: a8-67.akam.net.

General Information

Common Name: www.healthcare.gov
SANs: DNS:www.healthcare.govDNS:www.cuidadodesalud.govDNS:www.cciio.cms.govDNS:styleguide.healthcare.govDNS:status.healthcare.govDNS:signup.healthcare.govDNS:scclia.cms.govDNS:ratereview.healthcare.govDNS:prodprime.healthcare.govDNS:prodprime.cuidadodesalud.govDNS:portalnextgen.cms.govDNS:portal.cms.govDNS:portal-theta.cms.govDNS:portal-beta.cms.govDNS:openpaymentsdata.cms.govDNS:marketplace.cms.govDNS:marketplace.api.healthcare.govDNS:marketplace-int.api.healthcare.govDNS:login.healthcare.govDNS:localhelp.healthcare.govDNS:hfpp.cms.govDNS:healthcare.govDNS:go.healthcare.govDNS:geo.api.healthcare.govDNS:finder.healthcare.govDNS:elmo.portal.cms.govDNS:eidm.cms.govDNS:edit.marketplace.cms.govDNS:edit.data.healthcare.govDNS:eap.cms.govDNS:downloads.cms.govDNS:developer.cms.govDNS:data.healthcare.govDNS:cuidadodesalud.govDNS:companyprofiles.healthcare.govDNS:cciio.cms.govDNS:billing.healthcare.govDNS:ayudalocal.cuidadodesalud.govDNS:assets.healthcare.govDNS:assets.cms.govDNS:api.finder.healthcare.govDNS:ahrcvo.cms.govDNS:ahrc.cms.govDNS:aca.api.healthcare.gov Total number of SANs: 44
Organization: Centers for Medicare & Medicaid Services
Locality: Baltimore
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 1636b55a02b904e02614df0d7078a9d
Not Before: Nov 26, 2023 00:00:00 GMT
Not After: Nov 26, 2024 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: Not Provided
HSTS: max-age=31536000 ; preload
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: www.healthcare.gov

Decode this certificate for verbose information →
Subject Common Name www.healthcare.gov
Subject Organization Centers for Medicare & Medicaid Services
Issuer Common Name GeoTrust RSA CA 2018
Issuer Organization DigiCert Inc
Not Before: Nov 26, 2023 00:00:00 GMT
Not After: Nov 26, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 1636b55a02b904e02614df0d7078a9d
SHA1 Fingerprint: B7:28:BF:17:5E:15:7C:48:ED:9C:18:B3:50:A5:C3:0C:D6:0C:ED:8C
MD5 Fingerprint: 10:BD:15:47:8D:6C:61:3A:0E:BA:FE:E2:E3:F4:51:19

Certificate # 2 - Common Name: GeoTrust RSA CA 2018

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GeoTrust RSA CA 2018
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root CA
Issuer Organization DigiCert Inc
Not Before: Nov 06, 2017 12:23:45 GMT
Not After: Nov 06, 2027 12:23:45 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 546fe1823f7e1941da39fce14c46173
SHA1 Fingerprint: 7C:CC:2A:87:E3:94:9F:20:57:2B:18:48:29:80:50:5F:A9:0C:AC:3B
MD5 Fingerprint: A9:5D:7F:13:A6:4A:5E:BE:00:36:4D:8B:E6:7D:EC:ED

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
verify return:1
depth=0 C = US, ST = Maryland, L = Baltimore, O = Centers for Medicare & Medicaid Services, CN = www.healthcare.gov
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: 9058FFB09C75A8515477B1EDF2A34316389E6CC5
    Produced At: Apr 17 06:36:28 2024 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 777A7BA877D6F10F1CE9202196FB6B1A6E37F5ED
      Issuer Key Hash: 9058FFB09C75A8515477B1EDF2A34316389E6CC5
      Serial Number: 01636B55A02B904E02614DF0D7078A9D
    Cert Status: good
    This Update: Apr 17 06:21:02 2024 GMT
    Next Update: Apr 24 05:21:02 2024 GMT

    Signature Algorithm: sha256WithRSAEncryption
         2e:8d:65:18:b2:b8:6f:bc:19:64:aa:1a:82:a3:1d:23:84:f8:
         8e:b8:49:8a:a1:19:05:8c:c5:df:bc:f7:b7:bb:e6:ed:61:31:
         49:b0:7e:82:52:5b:a6:44:78:7e:78:da:76:70:51:0e:ce:57:
         55:32:05:38:2f:20:0d:44:5e:a5:b0:03:9f:1a:60:ff:ed:5f:
         2a:a3:90:54:11:9a:3a:fe:d5:ed:85:97:b8:1a:f6:ab:2b:b9:
         9b:6d:36:61:9a:fd:56:6e:fe:2d:d7:98:9c:a4:11:b9:cb:60:
         a1:49:3c:18:e4:e9:a8:57:f3:28:d8:85:d5:64:58:4e:68:c1:
         20:92:e3:41:85:9a:ba:9a:2d:83:93:94:bb:4c:ca:a5:7b:5a:
         48:5c:ff:ce:9b:ab:5d:90:35:6f:95:01:84:d9:11:43:79:3d:
         21:ec:24:da:4b:07:60:3e:a7:56:4b:6f:e9:2e:0a:f9:ea:2e:
         d1:0b:01:22:43:18:9d:9f:f4:47:28:1f:1d:de:ca:8f:e5:d9:
         f9:7f:c7:47:c3:9d:91:d0:c9:e6:58:85:a9:55:23:f4:ef:bb:
         4e:f4:91:1a:37:06:f8:b0:f2:63:35:a0:50:11:61:e8:f8:20:
         a6:25:44:06:b5:08:fc:29:fa:8e:b6:9c:54:2f:0e:91:f3:c2:
         a7:89:a4:83
======================================
---
Certificate chain
 0 s:C = US, ST = Maryland, L = Baltimore, O = Centers for Medicare & Medicaid Services, CN = www.healthcare.gov
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
-----BEGIN CERTIFICATE-----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==
-----END CERTIFICATE-----
 1 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = US, ST = Maryland, L = Baltimore, O = Centers for Medicare & Medicaid Services, CN = www.healthcare.gov

issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 4859 bytes and written 405 bytes
Verification: OK
---
New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
DONE