Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (89 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

CNAME: https.cio.gov.external-domains-production.cloud.gov.
Resolves To: 18.239.199.60
Reverse IP lookup: server-18-239-199-60.sfo53.r.cloudfront.net.
Nameserver: dns2.gsa.gov.
Nameserver: dns3.gsa.gov.
Nameserver: dns.gsa.gov.
Nameserver: dns4.gsa.gov.
Nameserver: dns5.gsa.gov.

General Information

Common Name: https.cio.gov
SANs: DNS:https.cio.gov Total number of SANs: 1
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 388abc253d457c925ea2dca20aebafe50be
Not Before: Jan 30, 2025 16:20:53 GMT
Not After: Apr 30, 2025 16:20:52 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Not Provided
HSTS: max-age=31536000; preload
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: https.cio.gov

Decode this certificate for verbose information →
Subject Common Name https.cio.gov
Issuer Common Name R10
Issuer Organization Let's Encrypt
Not Before: Jan 30, 2025 16:20:53 GMT
Not After: Apr 30, 2025 16:20:52 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 388abc253d457c925ea2dca20aebafe50be
SHA1 Fingerprint: C7:FD:50:76:AF:41:30:5B:FF:5C:50:E9:5A:2C:D3:16:5E:35:17:BE
MD5 Fingerprint: A2:97:B3:C8:35:E3:43:1E:DB:96:FD:FB:28:06:5F:A0

Certificate # 2 - Common Name: R10

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name R10
Subject Organization Let's Encrypt
Issuer Common Name ISRG Root X1
Issuer Organization Internet Security Research Group
Not Before: Mar 13, 2024 00:00:00 GMT
Not After: Mar 12, 2027 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 4ba85293f79a2fa273064ba8048d75d0
SHA1 Fingerprint: 00:AB:EF:D0:55:F9:A9:C7:84:FF:DE:AB:D1:DC:DD:8F:ED:74:14:36
MD5 Fingerprint: AF:1C:77:AE:CC:8D:77:E9:AA:CB:0C:47:58:40:C3:92

OpenSSL Handshake

depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = R10
verify return:1
depth=0 CN = https.cio.gov
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:CN = https.cio.gov
   i:C = US, O = Let's Encrypt, CN = R10
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = Let's Encrypt, CN = R10
   i:C = US, O = Internet Security Research Group, CN = ISRG Root X1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = https.cio.gov

issuer=C = US, O = Let's Encrypt, CN = R10

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3100 bytes and written 388 bytes
Verification: OK
---
New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
DONE