SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (98 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 39.105.104.98 |
Reverse IP lookup: | No records found |
Nameserver: | ns2.dnsv2.com. |
Nameserver: | ns1.dnsv2.com. |
General Information
Common Name: | *.lawtime.cn |
SANs: | DNS:*.lawtime.cnDNS:lawtime.cn Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 61e6d5e3a2be75b2fb055e9ad5a338e |
Not Before: | Jun 26, 2023 00:00:00 GMT |
Not After: | Jul 26, 2024 23:59:59 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | Not Provided |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: *.lawtime.cn
Decode this certificate for verbose information → launchSubject Common Name | *.lawtime.cn |
Issuer Common Name | RapidSSL Global TLS RSA4096 SHA256 2022 CA1 |
Issuer Organization | DigiCert, Inc. |
Not Before: | Jun 26, 2023 00:00:00 GMT |
Not After: | Jul 26, 2024 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 61e6d5e3a2be75b2fb055e9ad5a338e |
SHA1 Fingerprint: | DC:7E:63:1E:27:AE:8A:AC:44:66:83:54:0D:1A:0C:54:75:01:DD:C4 |
MD5 Fingerprint: | ED:45:8A:5D:EE:69:F8:AB:14:64:08:51:DF:85:B2:8F |
Certificate # 2 - Common Name: RapidSSL Global TLS RSA4096 SHA256 2022 CA1
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | RapidSSL Global TLS RSA4096 SHA256 2022 CA1 |
Subject Organization | DigiCert, Inc. |
Issuer Common Name | DigiCert Global Root CA |
Issuer Organization | DigiCert Inc |
Not Before: | May 04, 2022 00:00:00 GMT |
Not After: | Nov 09, 2031 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | a059b25f54b3d8794cc6631477538a3 |
SHA1 Fingerprint: | 68:F2:2B:1A:62:98:F7:DA:19:1E:61:49:ED:8D:E0:EF:FF:54:AD:8C |
MD5 Fingerprint: | 19:0F:A2:62:AC:58:E9:91:1A:C2:A1:DB:3D:73:61:F4 |
OpenSSL Handshake
depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA verify return:1 depth=1 C = US, O = "DigiCert, Inc.", CN = RapidSSL Global TLS RSA4096 SHA256 2022 CA1 verify return:1 depth=0 CN = *.lawtime.cn verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.lawtime.cn i:C = US, O = "DigiCert, Inc.", CN = RapidSSL Global TLS RSA4096 SHA256 2022 CA1 -----BEGIN CERTIFICATE----- MIIHkDCCBXigAwIBAgIQBh5tXjor51svsFXprVozjjANBgkqhkiG9w0BAQsFADBc MQswCQYDVQQGEwJVUzEXMBUGA1UEChMORGlnaUNlcnQsIEluYy4xNDAyBgNVBAMT K1JhcGlkU1NMIEdsb2JhbCBUTFMgUlNBNDA5NiBTSEEyNTYgMjAyMiBDQTEwHhcN MjMwNjI2MDAwMDAwWhcNMjQwNzI2MjM1OTU5WjAXMRUwEwYDVQQDDAwqLmxhd3Rp bWUuY24wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC6Q6lObEb8WBHB +e3eadzNZdt0MXA5KprdBbqMyorc8Bdxjve8EyaUc10gAd49cyVOmYDpBQSupcRp MDIKByzYeCrkOL3LB/FPxF3eBYX0ym3LuNU1GtWw7vSnMVOkRPoRO4Pr44n5rp7z j2woT3TuKY410iYyvZN6qLWzr4hRLXe9iGY2n0IrGzg8JeMWuU1XW/zr+G8xji/q GsmE9vGR9qwG1m5irMEEQT8Y4p2CFyKGvIv3wCG0Qc7nvlhTjH0FTfVgDJmJerg9 v+9ZQwqIwrDfBQF/1EgeIOKgjhQzqxNxLP/K1xYHdyn6cn7oCbeOOdOUlS+fdaaw numNx4BxAgMBAAGjggORMIIDjTAfBgNVHSMEGDAWgBTwnIX9op99j8lou9XUiU0d vtOQ/zAdBgNVHQ4EFgQUjdNqzhSqmtTN4/eoXRzh1Qww1F8wIwYDVR0RBBwwGoIM Ki5sYXd0aW1lLmNuggpsYXd0aW1lLmNuMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUE FjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwgZ8GA1UdHwSBlzCBlDBIoEagRIZCaHR0 cDovL2NybDMuZGlnaWNlcnQuY29tL1JhcGlkU1NMR2xvYmFsVExTUlNBNDA5NlNI QTI1NjIwMjJDQTEuY3JsMEigRqBEhkJodHRwOi8vY3JsNC5kaWdpY2VydC5jb20v UmFwaWRTU0xHbG9iYWxUTFNSU0E0MDk2U0hBMjU2MjAyMkNBMS5jcmwwPgYDVR0g BDcwNTAzBgZngQwBAgEwKTAnBggrBgEFBQcCARYbaHR0cDovL3d3dy5kaWdpY2Vy dC5jb20vQ1BTMIGHBggrBgEFBQcBAQR7MHkwJAYIKwYBBQUHMAGGGGh0dHA6Ly9v Y3NwLmRpZ2ljZXJ0LmNvbTBRBggrBgEFBQcwAoZFaHR0cDovL2NhY2VydHMuZGln aWNlcnQuY29tL1JhcGlkU1NMR2xvYmFsVExTUlNBNDA5NlNIQTI1NjIwMjJDQTEu Y3J0MAkGA1UdEwQCMAAwggF+BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB2AO7N0GTV 2xrOxVy3nbTNE6Iyh0Z8vOzew1FIWUZxH7WbAAABiPcAzZIAAAQDAEcwRQIgQFBO Ak2SqcQ44/LMLp9kZUycYc6dSvi6iz7UaIPI5bkCIQDS/n7TO9c6WoP97C5Hm2iA KXV6+ORdhdnTNgNlNkwVawB1AEiw42vapkc0D+VqAvqdMOscUgHLVt0sgdm7v6s5 2IRzAAABiPcAzdgAAAQDAEYwRAIgPojVIKp33qu8QFvp5wLTrhcCMaExSeUEncff XggO+OgCIGW2gWXTqouFcQJtM7AL2FubzWt6TUeMVgSac7YJklljAHcA2ra/az+1 tiKfm8K7XGvocJFxbLtRhIU0vaQ9MEjX+6sAAAGI9wDN5gAABAMASDBGAiEAlc0Y cmiNFFa8Lvw1UJa+YUSzJu7PgqZHNUpFq2aF+wQCIQCF0ErQBD97Icef12AiSfgW n+Rkgo0KF2uHg6+3FZ1JpTANBgkqhkiG9w0BAQsFAAOCAgEAn4zirefchX7dui+Z SfojkvuwiOOtcvOG4+c9uMMLq2Md9Dy8Lwa4FxPcbyjfjlnVsvEa1FD91NQZ/FHs AHNzhoJ6fw6S56xenT5ssGKbf06vrKODFQQdkHTzotK5pErnDj+nRf30NQL5iqnT TkgOQBy5v26uNIlNZrfi26GWxPHdsZzh56XG8pcWn96XNoE5HyrBPEvoQffUp6i6 qOjSn3ok0mXFKbxeEBjy8ZuhZjpZ3GqK6J1MZ754keLebdbNhZszzDaQUNKyN+nq 95wDZce1G93lGZIYcUoFWFhDZt9rmK30dtv+MiFFV/eWhlLCVN2jIf6sDb6ArFp1 vslEOLOwtOWS+7FoEDJAsGVBgRurlowtiz+9zciqBrcPKmgoCOk5NQGZSCbmILiw jCCHQkNagsMgBEWNrotr3EModD4nY/ilgtykQGdKAopjKSGNZM7Y7VOXWAMhIxW6 F2XpWjqk9ab1AditOMCAVe0rQ1CkubB+YMNCRSYAu3LDKoe/4ooECtlqwjc01kiV HGw4X+NceM5/Fpk9M1wiyWlMdHECtMDVBsgwRQkFAlRyLQWIRN0FB9xoTIWfoFX7 cKUk/7SsPnMlYtqJY47R1io52JflcSNhfV8G+vdoEOyd3MlS37wNFrguZ+bc9XHJ IQ7LIpyed250clk56doNQHeA2MA= -----END CERTIFICATE----- 1 s:C = US, O = "DigiCert, Inc.", CN = RapidSSL Global TLS RSA4096 SHA256 2022 CA1 i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA -----BEGIN CERTIFICATE----- MIIFyzCCBLOgAwIBAgIQCgWbJfVLPYeUzGYxR3U4ozANBgkqhkiG9w0BAQsFADBh MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3 d3cuZGlnaWNlcnQuY29tMSAwHgYDVQQDExdEaWdpQ2VydCBHbG9iYWwgUm9vdCBD QTAeFw0yMjA1MDQwMDAwMDBaFw0zMTExMDkyMzU5NTlaMFwxCzAJBgNVBAYTAlVT MRcwFQYDVQQKEw5EaWdpQ2VydCwgSW5jLjE0MDIGA1UEAxMrUmFwaWRTU0wgR2xv YmFsIFRMUyBSU0E0MDk2IFNIQTI1NiAyMDIyIENBMTCCAiIwDQYJKoZIhvcNAQEB BQADggIPADCCAgoCggIBAKY5PJhwCX2UyBb1nelu9APen53D5+C40T+BOZfSFaB0 v0WJM3BGMsuiHZX2IHtwnjUhLL25d8tgLASaUNHCBNKKUlUGRXGztuDIeXb48d64 k7Gk7u7mMRSrj+yuLSWOKnK6OGKe9+s6oaVIjHXY+QX8p2I2S3uew0bW3BFpkeAr LBCU25iqeaoLEOGIa09DVojd3qc/RKqr4P11173R+7Ub05YYhuIcSv8e0d7qN1sO 1+lfoNMVfV9WcqPABmOasNJ+ol0hAC2PTgRLy/VZo1L0HRMr6j8cbR7q0nKwdbn4 Ar+ZMgCgCcG9zCMFsuXYl/rqobiyV+8U37dDScAebZTIF/xPEvHcmGi3xxH6g+dT CjetOjJx8sdXUHKXGXC9ka33q7EzQIYlZISF7EkbT5dZHsO2DOMVLBdP1N1oUp0/ 1f6fc8uTDduELoKBRzTTZ6OOBVHeZyFZMMdi6tA5s/jxmb74lqH1+jQ6nTU2/Mma hGNxUuJpyhUHezgBA6sto5lNeyqc+3Cr5ehFQzUuwNsJaWbDdQk1v7lqRaqOlYjn iomOl36J5txTs0wL7etCeMRfyPsmc+8HmH77IYVMUOcPJb+0gNuSmAkvf5QXbgPI Zursn/UYnP9obhNbHc/9LYdQkB7CXyX9mPexnDNO7pggNA2jpbEarLmZGi4grMmf AgMBAAGjggGCMIIBfjASBgNVHRMBAf8ECDAGAQH/AgEAMB0GA1UdDgQWBBTwnIX9 op99j8lou9XUiU0dvtOQ/zAfBgNVHSMEGDAWgBQD3lA1VtFMu2bwo+IbG8OXsj3R VTAOBgNVHQ8BAf8EBAMCAYYwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMC MHYGCCsGAQUFBwEBBGowaDAkBggrBgEFBQcwAYYYaHR0cDovL29jc3AuZGlnaWNl cnQuY29tMEAGCCsGAQUFBzAChjRodHRwOi8vY2FjZXJ0cy5kaWdpY2VydC5jb20v RGlnaUNlcnRHbG9iYWxSb290Q0EuY3J0MEIGA1UdHwQ7MDkwN6A1oDOGMWh0dHA6 Ly9jcmwzLmRpZ2ljZXJ0LmNvbS9EaWdpQ2VydEdsb2JhbFJvb3RDQS5jcmwwPQYD VR0gBDYwNDALBglghkgBhv1sAgEwBwYFZ4EMAQEwCAYGZ4EMAQIBMAgGBmeBDAEC AjAIBgZngQwBAgMwDQYJKoZIhvcNAQELBQADggEBAAfjh/s1f5dDdfm0sNm74/dW MbbsxfYV1LoTpFt+3MSUWvSbiPQfUkoV57b5rutRJvnPP9mSlpFwcZ3e1nSUbi2o ITGA7RCOj23I1F4zk0YJm42qAwJIqOVenR3XtyQ2VR82qhC6xslxtNf7f2Ndx2G7 Mem4wpFhyPDT2P6UJ2MnrD+FC//ZKH5/ERo96ghz8VqNlmL5RXo8Ks9rMr/Ad9xw Y4hyRvAz5920myUffwdUqc0SvPlFnahsZg15uT5HkK48tHR0TLuLH8aRpzh4KJ/Y p0sARNb+9i1R4Fg5zPNvHs2BbIve0vkwxAy+R4727qYzl3027w9jEFC6HMXRaDc= -----END CERTIFICATE----- --- Server certificate subject=CN = *.lawtime.cn issuer=C = US, O = "DigiCert, Inc.", CN = RapidSSL Global TLS RSA4096 SHA256 2022 CA1 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 4071 bytes and written 414 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES128-GCM-SHA256 Session-ID: 42E3587EFEEE44046DE0EC6E0B712808F508EA9BC27FB836B15214A97CCB33FC Session-ID-ctx: Master-Key: 205BFD94929C28F1CEFB179F150A971E391E2372EA7654284DF0E30127093706C1B9C3EEC6540D406D306E1DCCBD9669 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 75 62 37 75 4d 61 44 77-72 4e 53 63 6d 30 7a 49 ub7uMaDwrNScm0zI 0010 - 25 d5 a0 ec 4c 95 84 72-9a c1 6e 91 18 c3 64 bf %...L..r..n...d. 0020 - 5b 49 bf 68 8f 6f 11 54-8f 2c 4c f8 96 09 24 37 [I.h.o.T.,L...$7 0030 - 0f 0b 97 d7 05 b0 de e9-a0 17 e5 b1 fa f5 72 74 ..............rt 0040 - ea 3b 08 50 02 77 70 a0-5e 95 bb 84 9f e6 46 47 .;.P.wp.^.....FG 0050 - 29 fd a1 0d 8c 79 eb 25-a2 fe d7 69 85 ad 42 4b )....y.%...i..BK 0060 - 5f 6b bf d1 15 90 b1 75-a9 d4 ea 6b f1 26 0c 56 _k.....u...k.&.V 0070 - fc a1 47 d0 b9 38 bc 39-b9 14 7c 84 13 24 54 b0 ..G..8.9..|..$T. 0080 - 37 6d ee f1 30 03 d4 e2-b2 cb 4e 81 96 6f 6b d4 7m..0.....N..ok. 0090 - 93 a8 41 4a 2a f7 de 98-21 90 a6 51 3c 8a d8 96 ..AJ*...!..Q<... 00a0 - 53 7a 5d af 4a e9 d0 ad-5f e9 6c f7 b8 f9 a5 de Sz].J..._.l..... Start Time: 1713566708 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- DONE