SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (305 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | close We were unable to verify this certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 81.19.72.34 |
Reverse IP lookup: | lenta.ru. |
Nameserver: | ns3.rambler.ru. |
Nameserver: | ns2.rambler.ru. |
Nameserver: | ns5.rambler.ru. |
Nameserver: | ns4.rambler.ru. |
General Information
Common Name: | *.lenta.ru |
SANs: | DNS:*.lenta.ruDNS:lenta.ru Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | ECDSA (secp256r1) |
Key size: | 256 bits |
Serial Number: | b25177c4578c301d04ebc07 |
Not Before: | Jan 18, 2024 08:27:56 GMT |
Not After: | Feb 18, 2025 08:27:55 GMT |
Number of certs: | 3 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | nginx |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: *.lenta.ru
Decode this certificate for verbose information → launchSubject Common Name | *.lenta.ru |
Issuer Common Name | GlobalSign GCC R3 DV TLS CA 2020 |
Issuer Organization | GlobalSign nv-sa |
Not Before: | Jan 18, 2024 08:27:56 GMT |
Not After: | Feb 18, 2025 08:27:55 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | b25177c4578c301d04ebc07 |
SHA1 Fingerprint: | CA:DB:BF:DB:20:B1:9B:04:BD:B2:16:32:5F:7B:19:1D:91:F2:DB:A7 |
MD5 Fingerprint: | CD:5F:70:8C:47:5B:C6:2B:59:17:F3:45:EA:A3:B8:07 |
Certificate # 2 - Common Name: GlobalSign GCC R3 DV TLS CA 2020
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | GlobalSign GCC R3 DV TLS CA 2020 |
Subject Organization | GlobalSign nv-sa |
Issuer Common Name | GlobalSign |
Issuer Organization | GlobalSign |
Not Before: | Jul 28, 2020 00:00:00 GMT |
Not After: | Mar 18, 2029 00:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 77bd0e0742d5d9e9d049d774d02a6f9a |
SHA1 Fingerprint: | 1C:61:0A:0A:87:D4:92:F4:83:22:C2:AF:D3:BE:9B:6A:D3:6B:6B:EE |
MD5 Fingerprint: | A6:E7:E3:48:48:27:FD:C4:E0:C9:16:5B:AA:82:C7:4C |
Certificate # 3 - Common Name: GlobalSign
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | GlobalSign |
Subject Organization | GlobalSign |
Issuer Common Name | GlobalSign |
Issuer Organization | GlobalSign |
Not Before: | Mar 18, 2009 10:00:00 GMT |
Not After: | Mar 18, 2029 10:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 4000000000121585308a2 |
SHA1 Fingerprint: | D6:9B:56:11:48:F0:1C:77:C5:45:78:C1:09:26:DF:5B:85:69:76:AD |
MD5 Fingerprint: | C5:DF:B8:49:CA:05:13:55:EE:2D:BA:1A:C3:3E:B0:28 |
OpenSSL Handshake
depth=2 OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign verify error:num=19:self signed certificate in certificate chain verify return:1 depth=2 OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign verify return:1 depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 verify return:1 depth=0 CN = *.lenta.ru verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.lenta.ru i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 -----BEGIN CERTIFICATE----- MIIFejCCBGKgAwIBAgIMCyUXfEV4wwHQTrwHMA0GCSqGSIb3DQEBCwUAMFMxCzAJ BgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWduIG52LXNhMSkwJwYDVQQDEyBH bG9iYWxTaWduIEdDQyBSMyBEViBUTFMgQ0EgMjAyMDAeFw0yNDAxMTgwODI3NTZa Fw0yNTAyMTgwODI3NTVaMBUxEzARBgNVBAMMCioubGVudGEucnUwWTATBgcqhkjO PQIBBggqhkjOPQMBBwNCAASk3Gri2IArSSSMQmLkSSUj5FIZHVaJ95NfcNKvuALR xPm5hpyj9A97iZOPZQnhGPktXuO72+lK4+btwlXNqJ1so4IDVTCCA1EwDgYDVR0P AQH/BAQDAgeAMAwGA1UdEwEB/wQCMAAwgZMGCCsGAQUFBwEBBIGGMIGDMEYGCCsG AQUFBzAChjpodHRwOi8vc2VjdXJlLmdsb2JhbHNpZ24uY29tL2NhY2VydC9nc2dj Y3IzZHZ0bHNjYTIwMjAuY3J0MDkGCCsGAQUFBzABhi1odHRwOi8vb2NzcC5nbG9i YWxzaWduLmNvbS9nc2djY3IzZHZ0bHNjYTIwMjAwVgYDVR0gBE8wTTBBBgkrBgEE AaAyAQowNDAyBggrBgEFBQcCARYmaHR0cHM6Ly93d3cuZ2xvYmFsc2lnbi5jb20v cmVwb3NpdG9yeS8wCAYGZ4EMAQIBMEEGA1UdHwQ6MDgwNqA0oDKGMGh0dHA6Ly9j cmwuZ2xvYmFsc2lnbi5jb20vZ3NnY2NyM2R2dGxzY2EyMDIwLmNybDAfBgNVHREE GDAWggoqLmxlbnRhLnJ1gghsZW50YS5ydTAdBgNVHSUEFjAUBggrBgEFBQcDAQYI KwYBBQUHAwIwHwYDVR0jBBgwFoAUDZjAc3+rvb3ZR0tJrQpKDKw+x3wwHQYDVR0O BBYEFOIoErBCye9iAH2LuRfZ3sPGZ9+iMIIBfgYKKwYBBAHWeQIEAgSCAW4EggFq AWgAdgDm0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAY0bryGbAAAE AwBHMEUCICR9VXgrZVFepSJr+8/7HRUO8R7Zf7WTN0Ve/dA5QtGmAiEAr/s5q/bj XdB3u56tno0fxrQ4Hy5tpFs2nmTr/f1o7Y8AdQBOdaMnXJoQwzhbbNTfP1LrHfDg jhuNacCx+mSxYpo53wAAAY0bryR8AAAEAwBGMEQCIHlS6YQek0hv6O/nDnCkbsw4 0z65IeJwCJbFa3wmU+FxAiBlneLKBeq7Jd2gb8XAsLkP1VYdArQnsSOB0NRFA9cH EQB3AOCSs/wMHcjnaDYf3mG5lk0KUngZinLWcsSwTaVtb1QEAAABjRuvIlIAAAQD AEgwRgIhAL+zKr5zLAmDvQKA88KONLvb1RwozVwK9AgbQ1c9lk/iAiEA25z5l3h+ yjvrmUrKFwYhaF2214lz4PPdMi0iw86BBqcwDQYJKoZIhvcNAQELBQADggEBAF2h ZJG6RIQ2/9pu2BcnrFmxRo6StuLAPPvI/zWdrVIjBpyRdYB5R7yPyQch+gjmI3Ax NdTd6PCbva4/qLninDZu+I7CAX7g3ZqKTdxuG4NZhTX9DyNN6WfYf7B/Nj68k8po s7l6Pk8uMe6J1OW6yOY44OG7w5713kVDYusqCkFfG3XwNMaOlb/TFYBUif7cAWF6 zyM4zAnifW9Sq2ZLCjTFyLATVcvQANpPboxj24TNuo4+zQc0dg9HujA2Tk77R/cf o/9wtKR2ts8G3JzEUDdU/LLuArM0oPAjeXceoxgqZv6vfJl/zvUk44FtXTRwtTh4 whzBGUxXpNChDtBgVwc= -----END CERTIFICATE----- 1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign -----BEGIN CERTIFICATE----- MIIEsDCCA5igAwIBAgIQd70OB0LV2enQSdd00CpvmjANBgkqhkiG9w0BAQsFADBM MSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSMzETMBEGA1UEChMKR2xv YmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjAeFw0yMDA3MjgwMDAwMDBaFw0y OTAzMTgwMDAwMDBaMFMxCzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWdu IG52LXNhMSkwJwYDVQQDEyBHbG9iYWxTaWduIEdDQyBSMyBEViBUTFMgQ0EgMjAy MDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKxnlJV/de+OpwyvCXAJ IcxPCqkFPh1lttW2oljS3oUqPKq8qX6m7K0OVKaKG3GXi4CJ4fHVUgZYE6HRdjqj hhnuHY6EBCBegcUFgPG0scB12Wi8BHm9zKjWxo3Y2bwhO8Fvr8R42pW0eINc6OTb QXC0VWFCMVzpcqgz6X49KMZowAMFV6XqtItcG0cMS//9dOJs4oBlpuqX9INxMTGp 6EASAF9cnlAGy/RXkVS9nOLCCa7pCYV+WgDKLTF+OK2Vxw3RUJ/p8009lQeUARv2 UCcNNPCifYX1xIspvarkdjzLwzOdLahDdQbJON58zN4V+lMj0msg+c0KnywPIRp3 BMkCAwEAAaOCAYUwggGBMA4GA1UdDwEB/wQEAwIBhjAdBgNVHSUEFjAUBggrBgEF BQcDAQYIKwYBBQUHAwIwEgYDVR0TAQH/BAgwBgEB/wIBADAdBgNVHQ4EFgQUDZjA c3+rvb3ZR0tJrQpKDKw+x3wwHwYDVR0jBBgwFoAUj/BLf6guRSSuTVD6Y5qL3uLd G7wwewYIKwYBBQUHAQEEbzBtMC4GCCsGAQUFBzABhiJodHRwOi8vb2NzcDIuZ2xv YmFsc2lnbi5jb20vcm9vdHIzMDsGCCsGAQUFBzAChi9odHRwOi8vc2VjdXJlLmds b2JhbHNpZ24uY29tL2NhY2VydC9yb290LXIzLmNydDA2BgNVHR8ELzAtMCugKaAn hiVodHRwOi8vY3JsLmdsb2JhbHNpZ24uY29tL3Jvb3QtcjMuY3JsMEcGA1UdIARA MD4wPAYEVR0gADA0MDIGCCsGAQUFBwIBFiZodHRwczovL3d3dy5nbG9iYWxzaWdu LmNvbS9yZXBvc2l0b3J5LzANBgkqhkiG9w0BAQsFAAOCAQEAy8j/c550ea86oCkf r2W+ptTCYe6iVzvo7H0V1vUEADJOWelTv07Obf+YkEatdN1Jg09ctgSNv2h+LMTk KRZdAXmsE3N5ve+z1Oa9kuiu7284LjeS09zHJQB4DJJJkvtIbjL/ylMK1fbMHhAW i0O194TWvH3XWZGXZ6ByxTUIv1+kAIql/Mt29PmKraTT5jrzcVzQ5A9jw16yysuR XRrLODlkS1hyBjsfyTNZrmL1h117IFgntBA5SQNVl9ckedq5r4RSAU85jV8XK5UL REjRZt2I6M9Po9QL7guFLu4sPFJpwR1sPJvubS2THeo7SxYoNDtdyBHs7euaGcMa D/fayQ== -----END CERTIFICATE----- 2 s:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign -----BEGIN CERTIFICATE----- MIIDXzCCAkegAwIBAgILBAAAAAABIVhTCKIwDQYJKoZIhvcNAQELBQAwTDEgMB4G A1UECxMXR2xvYmFsU2lnbiBSb290IENBIC0gUjMxEzARBgNVBAoTCkdsb2JhbFNp Z24xEzARBgNVBAMTCkdsb2JhbFNpZ24wHhcNMDkwMzE4MTAwMDAwWhcNMjkwMzE4 MTAwMDAwWjBMMSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSMzETMBEG A1UEChMKR2xvYmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjCCASIwDQYJKoZI hvcNAQEBBQADggEPADCCAQoCggEBAMwldpB5BngiFvXAg7aEyiie/QV2EcWtiHL8 RgJDx7KKnQRfJMsuS+FggkbhUqsMgUdwbN1k0ev1LKMPgj0MK66X17YUhhB5uzsT gHeMCOFJ0mpiLx9e+pZo34knlTifBtc+ycsmWQ1z3rDI6SYOgxXG71uL0gRgykmm KPZpO/bLyCiR5Z2KYVc3rHQU3HTgOu5yLy6c+9C7v/U9AOEGM+iCK65TpjoWc4zd QQ4gOsC0p6Hpsk+QLjJg6VfLuQSSaGjlOCZgdbKfd/+RFO+uIEn8rUAVSNECMWEZ XriX7613t2Saer9fwRPvm2L7DWzgVGkWqQPabumDk3F2xmmFghcCAwEAAaNCMEAw DgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFI/wS3+o LkUkrk1Q+mOai97i3Ru8MA0GCSqGSIb3DQEBCwUAA4IBAQBLQNvAUKr+yAzv95ZU RUm7lgAJQayzE4aGKAczymvmdLm6AC2upArT9fHxD4q/c2dKg8dEe3jgr25sbwMp jjM5RcOO5LlXbKr8EpbsU8Yt5CRsuZRj+9xTaGdWPoO4zzUhw8lo/s7awlOqzJCK 6fBdRoyV3XpYKBovHd7NADdBj+1EbddTKJd+82cEHhXXipa0095MJ6RMG3NzdvQX mcIfeg7jLQitChws/zyrVQ4PkX4268NXSb7hLi18YIvDQVETI53O9zJrlAGomecs Mx86OyXShkDOOyyGeMlhLxS67ttVb9+E7gUJTb0o2HLO02JQZR7rkpeDMdmztcpH WD9f -----END CERTIFICATE----- --- Server certificate subject=CN = *.lenta.ru issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ECDSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3780 bytes and written 412 bytes Verification error: self signed certificate in certificate chain --- New, TLSv1.2, Cipher is ECDHE-ECDSA-AES128-GCM-SHA256 Server public key is 256 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-ECDSA-AES128-GCM-SHA256 Session-ID: 8F9A8918E90ACD554D1C52711A57C57256D4545C482F4891A090BE33D4D72CD1 Session-ID-ctx: Master-Key: D3A8632CDDFFE3C23347BF72490A31BC32BBADFC2DB3DC00B2CE937453FA018C0A4650ABAB4CF388121043010FF7EDDC PSK identity: None PSK identity hint: None SRP username: None Start Time: 1713511765 Timeout : 7200 (sec) Verify return code: 19 (self signed certificate in certificate chain) Extended master secret: yes --- DONE