SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (48 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 40.70.27.24 |
Reverse IP lookup: | No records found |
Nameserver: | ns13.domaincontrol.com. |
Nameserver: | ns14.domaincontrol.com. |
General Information
Common Name: | help.hellobonafide.com |
SANs: | DNS:help.hellobonafide.com Total number of SANs: 1 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 38f4e409451dedf85a836e459cc59004a68 |
Not Before: | Oct 17, 2024 09:35:28 GMT |
Not After: | Jan 15, 2025 09:35:27 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | nginx/1.14.0 (Ubuntu) |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: help.hellobonafide.com
Decode this certificate for verbose information → launchSubject Common Name | help.hellobonafide.com |
Issuer Common Name | R11 |
Issuer Organization | Let's Encrypt |
Not Before: | Oct 17, 2024 09:35:28 GMT |
Not After: | Jan 15, 2025 09:35:27 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 38f4e409451dedf85a836e459cc59004a68 |
SHA1 Fingerprint: | 80:40:0A:7B:13:19:D9:A3:75:5F:0D:26:8E:45:AA:CB:83:11:8C:81 |
MD5 Fingerprint: | 9B:B3:B1:F3:C5:AE:D8:FE:B9:C1:9E:9E:B6:C9:E6:34 |
Certificate # 2 - Common Name: R11
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R11 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Mar 13, 2024 00:00:00 GMT |
Not After: | Mar 12, 2027 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 8a7d3e13d62f30ef2386bd29076b34f8 |
SHA1 Fingerprint: | 69:6D:B3:AF:0D:FF:C1:7E:65:C6:A2:0D:92:5C:5A:7B:D2:4D:EC:7E |
MD5 Fingerprint: | 2F:AC:04:55:31:47:F4:6A:49:DF:9B:4E:BE:A6:DF:43 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R11 verify return:1 depth=0 CN = help.hellobonafide.com verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = help.hellobonafide.com i:C = US, O = Let's Encrypt, CN = R11 -----BEGIN CERTIFICATE----- MIIE/TCCA+WgAwIBAgISA49OQJRR3t+FqDbkWcxZAEpoMA0GCSqGSIb3DQEBCwUA MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD EwNSMTEwHhcNMjQxMDE3MDkzNTI4WhcNMjUwMTE1MDkzNTI3WjAhMR8wHQYDVQQD ExZoZWxwLmhlbGxvYm9uYWZpZGUuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A MIIBCgKCAQEA4/ZkEjphfLcoOy2s1BNGcchpvKTAWpO8P3FCH//3z7z7vHAgrGY5 v4yg6ea5GMUHLOiZ455JS0+YKq84hC/z23sJ5SgoXjxLNHUqRiYvgvVgAekEOpwC reCvdtsIyTat82mtypoM3Oq3t9pOkKYdKfKirEfoU/QLtArUcL/b+cEJDvPRACNv muFFS9OVutJYHUW+o790awqbw5b2CSbL1LH+oStpsj/5Zifq50Y6jjR3EywohJL9 dsiXRuyjQlrOIQKo9zL84WmQsyu6x+u8Lx773Glzy1IJ1GULsCxZ7DnFRNi+2EWA Rv6Ee3qaVynlpPp9HF4DW3y9o5x8hOQLuQIDAQABo4ICGzCCAhcwDgYDVR0PAQH/ BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAMBgNVHRMBAf8E AjAAMB0GA1UdDgQWBBTxSrBskZnpvjgOcU+2ZBTvReMTmDAfBgNVHSMEGDAWgBTF z0ak6vTDwHpslcQtsF6SLybjuTBXBggrBgEFBQcBAQRLMEkwIgYIKwYBBQUHMAGG Fmh0dHA6Ly9yMTEuby5sZW5jci5vcmcwIwYIKwYBBQUHMAKGF2h0dHA6Ly9yMTEu aS5sZW5jci5vcmcvMCEGA1UdEQQaMBiCFmhlbHAuaGVsbG9ib25hZmlkZS5jb20w EwYDVR0gBAwwCjAIBgZngQwBAgEwggEFBgorBgEEAdZ5AgQCBIH2BIHzAPEAdgDm 0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAZKaCpkQAAAEAwBHMEUC IQDWaJpjex5Aq8GQQXBCy6Ayq4S1XE18dM9wS3GvWozDhAIgJH6bjURHZUkCWZ/O aGK8pguwKU1+pWtz5GgOJI0UqvgAdwATSt8atZhCCXgMb+9MepGkFrcjSc5YV2rf rtqnwqvgIgAAAZKaCpnNAAAEAwBIMEYCIQCDrK/Ot7ecYPsOIo1pgJxIIylGDdoO dFy023SY86k61QIhAJgc2jFAgXaCg+pKFMBxong1VDNae2TBYybYyeXvxPbVMA0G CSqGSIb3DQEBCwUAA4IBAQB6fycEA95UvKo/asJI4CYdkLpbhg2ZUNteonRG5+7N MVyArcvcHGZfTO/GO6jbwJPuMzbMRrRqx3/RuI2p5JeoVRLI56bPnw7BijwMaXlq NxEtVnbfyoKkjwNnrmSmVbaTL5sOi+YsNf99fp8f3sXffPME+vNFjnJmIQ7MA1jT rksCtBOp7t6AqroIsURiw92Pe1Z9PZFHiJJAtjTKPCGpnEcfohgdWysbi8Znyv3E HZzXi1VVVDUO0v7Dviay7FBp/fp31LmmKPW6prItTwBMnQPFFH/qibSB5OxKhNkQ bsp+3NTqxEUX9m2PbodzDL0TCfT5eZAelSWQXKfV08Jw -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R11 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFBjCCAu6gAwIBAgIRAIp9PhPWLzDvI4a9KQdrNPgwDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjQwMzEzMDAwMDAw WhcNMjcwMzEyMjM1OTU5WjAzMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDEMMAoGA1UEAxMDUjExMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB CgKCAQEAuoe8XBsAOcvKCs3UZxD5ATylTqVhyybKUvsVAbe5KPUoHu0nsyQYOWcJ DAjs4DqwO3cOvfPlOVRBDE6uQdaZdN5R2+97/1i9qLcT9t4x1fJyyXJqC4N0lZxG AGQUmfOx2SLZzaiSqhwmej/+71gFewiVgdtxD4774zEJuwm+UE1fj5F2PVqdnoPy 6cRms+EGZkNIGIBloDcYmpuEMpexsr3E+BUAnSeI++JjF5ZsmydnS8TbKF5pwnnw SVzgJFDhxLyhBax7QG0AtMJBP6dYuC/FXJuluwme8f7rsIU5/agK70XEeOtlKsLP Xzze41xNG/cLJyuqC0J3U095ah2H2QIDAQABo4H4MIH1MA4GA1UdDwEB/wQEAwIB hjAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwEwEgYDVR0TAQH/BAgwBgEB /wIBADAdBgNVHQ4EFgQUxc9GpOr0w8B6bJXELbBeki8m47kwHwYDVR0jBBgwFoAU ebRZ5nu25eQBc4AIiMgaWPbpm24wMgYIKwYBBQUHAQEEJjAkMCIGCCsGAQUFBzAC hhZodHRwOi8veDEuaS5sZW5jci5vcmcvMBMGA1UdIAQMMAowCAYGZ4EMAQIBMCcG A1UdHwQgMB4wHKAaoBiGFmh0dHA6Ly94MS5jLmxlbmNyLm9yZy8wDQYJKoZIhvcN AQELBQADggIBAE7iiV0KAxyQOND1H/lxXPjDj7I3iHpvsCUf7b632IYGjukJhM1y v4Hz/MrPU0jtvfZpQtSlET41yBOykh0FX+ou1Nj4ScOt9ZmWnO8m2OG0JAtIIE38 01S0qcYhyOE2G/93ZCkXufBL713qzXnQv5C/viOykNpKqUgxdKlEC+Hi9i2DcaR1 e9KUwQUZRhy5j/PEdEglKg3l9dtD4tuTm7kZtB8v32oOjzHTYw+7KdzdZiw/sBtn UfhBPORNuay4pJxmY/WrhSMdzFO2q3Gu3MUBcdo27goYKjL9CTF8j/Zz55yctUoV aneCWs/ajUX+HypkBTA+c8LGDLnWO2NKq0YD/pnARkAnYGPfUDoHR9gVSp/qRx+Z WghiDLZsMwhN1zjtSC0uBWiugF3vTNzYIEFfaPG7Ws3jDrAMMYebQ95JQ+HIBD/R PBuHRTBpqKlyDnkSHDHYPiNX3adPoPAcgdF3H2/W0rmoswMWgTlLn1Wu0mrks7/q pdWfS6PJ1jty80r2VKsM/Dj3YIDfbjXKdaFU5C+8bhfJGqU3taKauuz0wHVGT3eo 6FlWkWYtbt4pgdamlwVeZEW+LM7qZEJEsMNPrfC03APKmZsJgpWCDWOKZvkZcvjV uYkQ4omYCTX5ohy+knMjdOmdH9c7SpqEWBDC86fiNex+O0XOMEZSa8DA -----END CERTIFICATE----- --- Server certificate subject=CN = help.hellobonafide.com issuer=C = US, O = Let's Encrypt, CN = R11 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3251 bytes and written 426 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: D69CA8A3692AA039D9C2AC79708CA7E94C4FD11BEDF81E5F2C3CB4F0795AEC13 Session-ID-ctx: Master-Key: 46CF50BCB5FB2BA477CC8D48B1CFA14734CFA7501BB0617564FB563269781C8E6A7F6426D0141DBFE58A6BCDEEC4DACB PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 4c 5e 18 7a 5a 15 2e 7b-5c 94 54 27 dc 52 67 77 L^.zZ..{\.T'.Rgw 0010 - ea 56 dd b0 c8 ef 09 0f-ba 34 40 a3 a1 e9 cb 4b .V.......4@....K 0020 - 97 ae 8a 67 47 5c 49 e9-a5 6c 66 f8 86 83 ec 77 ...gG\I..lf....w 0030 - 1b 8f fc cf f3 c3 e9 38-e1 74 e7 00 0d e4 f4 5d .......8.t.....] 0040 - e9 83 3e cf 91 b5 55 e2-ab b2 bc d7 10 18 57 6b ..>...U.......Wk 0050 - e4 84 0f fa 9b 07 a5 4e-a4 3d fe 07 cb 2b 96 50 .......N.=...+.P 0060 - 4b f4 12 97 3c ef c6 9b-6b a4 e6 80 0e 46 b2 bc K...<...k....F.. 0070 - 14 a0 e5 10 26 ba 8e 8e-29 88 85 83 7f a3 6d 39 ....&...).....m9 0080 - 9b cc f4 7c cd 42 3b cf-f1 9a ab 93 e8 0d b8 8d ...|.B;......... 0090 - 92 aa df aa c7 9f 7d 54-c2 dc 92 52 58 ed 16 f5 ......}T...RX... 00a0 - 4a 0e 07 d3 7a dd 14 cb-37 c1 40 25 9a 11 ae 8f J...z...7.@%.... 00b0 - f5 e7 3a 68 54 58 ba b8-2f 7a b6 87 32 a0 dc 91 ..:hTX../z..2... 00c0 - 6a 32 fa fc de 4e 2b d4-78 d9 9d 51 11 bb 3d 1d j2...N+.x..Q..=. Start Time: 1732768672 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- DONE