SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (56 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 89.238.68.168 |
Reverse IP lookup: | vm168.documentfoundation.org. |
Nameserver: | hydrogen.ns.hetzner.com. |
Nameserver: | oxygen.ns.hetzner.com. |
Nameserver: | helium.ns.hetzner.de. |
General Information
Common Name: | libreoffice.org |
SANs: | DNS:ar.libreoffice.orgDNS:bg.libreoffice.orgDNS:bn.libreoffice.orgDNS:bo.libreoffice.orgDNS:brx.libreoffice.orgDNS:ca.libreoffice.orgDNS:conference.libreoffice.orgDNS:cs.libreoffice.orgDNS:cy.libreoffice.orgDNS:cz.libreoffice.orgDNS:da.libreoffice.orgDNS:de.libreoffice.orgDNS:documentation.libreoffice.orgDNS:donate.libreoffice.orgDNS:dsb.libreoffice.orgDNS:el.libreoffice.orgDNS:eo.libreoffice.orgDNS:es.libreoffice.orgDNS:et.libreoffice.orgDNS:fa.libreoffice.orgDNS:fi.libreoffice.orgDNS:fr.libreoffice.orgDNS:ga.libreoffice.orgDNS:gd.libreoffice.orgDNS:gl.libreoffice.orgDNS:he.libreoffice.orgDNS:hi.libreoffice.orgDNS:hr.libreoffice.orgDNS:hsb.libreoffice.orgDNS:hu.libreoffice.orgDNS:it.libreoffice.orgDNS:ja.libreoffice.orgDNS:ka.libreoffice.orgDNS:km.libreoffice.orgDNS:ko.libreoffice.orgDNS:latam.conference.libreoffice.orgDNS:libocon.comDNS:libocon.netDNS:libocon.orgDNS:libreoffice.orgDNS:lo.libreoffice.orgDNS:lt.libreoffice.orgDNS:marketing.libreoffice.orgDNS:ml.libreoffice.orgDNS:mt.libreoffice.orgDNS:my.libreoffice.orgDNS:nl.libreoffice.orgDNS:no.libreoffice.orgDNS:oc.libreoffice.orgDNS:pl.libreoffice.orgDNS:pt-br.libreoffice.orgDNS:pt.libreoffice.orgDNS:py.libreoffice.orgDNS:qa.libreoffice.orgDNS:ro.libreoffice.orgDNS:ru.libreoffice.orgDNS:si.libreoffice.orgDNS:sid.libreoffice.orgDNS:sk.libreoffice.orgDNS:sl.libreoffice.orgDNS:sr.libreoffice.orgDNS:sv.libreoffice.orgDNS:ta.libreoffice.orgDNS:th.libreoffice.orgDNS:tr.libreoffice.orgDNS:uk.libreoffice.orgDNS:us.libreoffice.orgDNS:vec.libreoffice.orgDNS:vi.libreoffice.orgDNS:website.libreoffice.orgDNS:www.libocon.comDNS:www.libocon.netDNS:www.libocon.orgDNS:www.libreoffice.orgDNS:zh-cn.libreoffice.orgDNS:zh-tw.libreoffice.orgDNS:zh.libreoffice.org Total number of SANs: 77 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 4096 bits |
Serial Number: | 3d66c99ea53db6df4e1a634b4d048be5b2d |
Not Before: | Mar 17, 2024 02:23:54 GMT |
Not After: | Jun 15, 2024 02:23:53 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Server: | nginx/1.10.3 |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: libreoffice.org
Decode this certificate for verbose information → launchSubject Common Name | libreoffice.org |
Issuer Common Name | R3 |
Issuer Organization | Let's Encrypt |
Not Before: | Mar 17, 2024 02:23:54 GMT |
Not After: | Jun 15, 2024 02:23:53 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 3d66c99ea53db6df4e1a634b4d048be5b2d |
SHA1 Fingerprint: | E5:15:33:78:AE:2F:A5:00:BF:5D:3E:3C:64:B8:E5:DC:85:62:3F:1B |
MD5 Fingerprint: | E6:D2:30:EF:EB:3B:48:91:25:DE:77:FF:B1:57:48:E2 |
Certificate # 2 - Common Name: R3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R3 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Sep 04, 2020 00:00:00 GMT |
Not After: | Sep 15, 2025 16:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 912b084acf0c18a753f6d62e25a75f5a |
SHA1 Fingerprint: | A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05 |
MD5 Fingerprint: | E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R3 verify return:1 depth=0 CN = libreoffice.org verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: C = US, O = Let's Encrypt, CN = R3 Produced At: Apr 18 18:42:00 2024 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 48DAC9A0FB2BD32D4FF0DE68D2F567B735F9B3C4 Issuer Key Hash: 142EB317B75856CBAE500940E61FAF9D8B14C2C6 Serial Number: 03D66C99EA53DB6DF4E1A634B4D048BE5B2D Cert Status: good This Update: Apr 18 18:42:00 2024 GMT Next Update: Apr 25 18:41:58 2024 GMT Signature Algorithm: sha256WithRSAEncryption b9:3b:67:ed:03:19:c5:1a:6c:31:d9:16:9d:36:ff:e6:25:3d: 34:0a:bf:60:5c:e6:f2:b3:8f:65:8c:45:7f:bc:31:4c:8e:ae: 3e:ff:57:b9:88:57:37:f1:93:fc:0a:2a:e3:4d:0a:dd:d7:e3: 8f:9d:50:79:69:e5:45:7f:49:db:b7:f4:9b:c9:c9:c3:64:3b: fe:f9:d5:cd:0a:a5:7f:ca:e8:da:8e:68:21:6d:06:4a:ba:23: 5f:93:e5:a1:12:cf:a0:f9:69:97:e6:c4:ab:c9:ae:2b:b2:95: e1:26:2a:75:5c:52:a9:34:a7:dc:6c:4e:22:ae:de:52:04:4a: 8b:2a:7f:f9:ed:15:88:cd:f4:ce:04:d1:25:4b:9c:77:a7:a6: f8:88:2d:e4:8b:a7:e7:23:25:f6:67:21:3f:84:b2:d4:b7:17: 3d:78:95:7b:2b:73:6b:c9:33:61:8d:eb:cc:c7:07:4f:c2:44: a7:b0:6b:a3:e4:9f:21:81:38:37:ce:17:69:e5:35:01:67:4d: 54:f4:e2:4e:2d:53:91:a5:25:42:56:a6:3d:b8:80:bd:43:4a: d8:ea:ca:ab:ed:54:b9:e2:6f:8d:82:18:eb:be:d1:1b:d0:4f: 98:5d:d4:6d:2b:8e:ca:99:d6:cb:a3:14:93:46:e6:2a:1a:7b: 11:e8:3a:fd ====================================== --- Certificate chain 0 s:CN = libreoffice.org i:C = US, O = Let's Encrypt, CN = R3 -----BEGIN CERTIFICATE----- MIIMAjCCCuqgAwIBAgISA9ZsmepT22304aY0tNBIvlstMA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yNDAzMTcwMjIzNTRaFw0yNDA2MTUwMjIzNTNaMBoxGDAWBgNVBAMT D2xpYnJlb2ZmaWNlLm9yZzCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB AOlabycuSjzur8nxnph5mSaQQuBRFMSLeF7Rf4UUnv4PyeGVLJCIrl56tr9cWy20 VmwsoEH+jh1Pcn1aBkba5x5ElnbIE+CnW4PQRUrMVUq6shHmjld3S1LAxeBezoJw ++HMqLYaZxflCNnYBr+pmpEpILc1wo9qdtuHdMUtoY/6VknoiBovcWNkR4h3rHEQ 9q+NJJx07xvT3crxW5Dn9JgrQmFZ26SKQFCy6nCkFiOEYNnG04z9wqfHcoXa4nGm gdqmTpTt+vzXwBN9LHC3RxxVG8BLnN/kEzVV2XfiAdtBzdC/TeynZ+ap5G6E8o9j c6FeuGyuY/ePIKcQe2zi+tmkShlq1VF+z++PFxmqrsR0FRb4X7p3vO0LA8F8q6Zm fKnINPjdNqmigOx5SfPBDYjnKw2QhJata+TNPZ5vlfUHseMb593fE/6DtaP3SEDR 3YYVC8k3rCfl8jjXLN7y+3S03tzEypAw8YYydeuYslcnq8uCywMB+ZUOYtH43L0R ZmAuOq4DZU5RKeKyeHjHsh+c+/zkPB67DelyhZB9ow4Pv2thc/7rLPjybh/z7d4O rmD41mIs700jHKnaIWe2pPVvgJ4CS4gLM0ZK8rVP1yl+ZqvqdJOJkcfa7N/HdVhv S2sG4jSeHbrSl/gcwo8YjnO2dj3yTt1NbLvr+DdM5uwjAgMBAAGjgggoMIIIJDAO BgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwG A1UdEwEB/wQCMAAwHQYDVR0OBBYEFNRMTqm1nMVu5Gpikarr1bC0XcSWMB8GA1Ud IwQYMBaAFBQusxe3WFbLrlAJQOYfr52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggr BgEFBQcwAYYVaHR0cDovL3IzLm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRw Oi8vcjMuaS5sZW5jci5vcmcvMIIGMAYDVR0RBIIGJzCCBiOCEmFyLmxpYnJlb2Zm aWNlLm9yZ4ISYmcubGlicmVvZmZpY2Uub3JnghJibi5saWJyZW9mZmljZS5vcmeC EmJvLmxpYnJlb2ZmaWNlLm9yZ4ITYnJ4LmxpYnJlb2ZmaWNlLm9yZ4ISY2EubGli cmVvZmZpY2Uub3Jnghpjb25mZXJlbmNlLmxpYnJlb2ZmaWNlLm9yZ4ISY3MubGli cmVvZmZpY2Uub3JnghJjeS5saWJyZW9mZmljZS5vcmeCEmN6LmxpYnJlb2ZmaWNl Lm9yZ4ISZGEubGlicmVvZmZpY2Uub3JnghJkZS5saWJyZW9mZmljZS5vcmeCHWRv Y3VtZW50YXRpb24ubGlicmVvZmZpY2Uub3JnghZkb25hdGUubGlicmVvZmZpY2Uu b3JnghNkc2IubGlicmVvZmZpY2Uub3JnghJlbC5saWJyZW9mZmljZS5vcmeCEmVv LmxpYnJlb2ZmaWNlLm9yZ4ISZXMubGlicmVvZmZpY2Uub3JnghJldC5saWJyZW9m ZmljZS5vcmeCEmZhLmxpYnJlb2ZmaWNlLm9yZ4ISZmkubGlicmVvZmZpY2Uub3Jn ghJmci5saWJyZW9mZmljZS5vcmeCEmdhLmxpYnJlb2ZmaWNlLm9yZ4ISZ2QubGli cmVvZmZpY2Uub3JnghJnbC5saWJyZW9mZmljZS5vcmeCEmhlLmxpYnJlb2ZmaWNl Lm9yZ4ISaGkubGlicmVvZmZpY2Uub3JnghJoci5saWJyZW9mZmljZS5vcmeCE2hz Yi5saWJyZW9mZmljZS5vcmeCEmh1LmxpYnJlb2ZmaWNlLm9yZ4ISaXQubGlicmVv ZmZpY2Uub3JnghJqYS5saWJyZW9mZmljZS5vcmeCEmthLmxpYnJlb2ZmaWNlLm9y Z4ISa20ubGlicmVvZmZpY2Uub3JnghJrby5saWJyZW9mZmljZS5vcmeCIGxhdGFt LmNvbmZlcmVuY2UubGlicmVvZmZpY2Uub3JnggtsaWJvY29uLmNvbYILbGlib2Nv bi5uZXSCC2xpYm9jb24ub3Jngg9saWJyZW9mZmljZS5vcmeCEmxvLmxpYnJlb2Zm aWNlLm9yZ4ISbHQubGlicmVvZmZpY2Uub3JnghltYXJrZXRpbmcubGlicmVvZmZp Y2Uub3JnghJtbC5saWJyZW9mZmljZS5vcmeCEm10LmxpYnJlb2ZmaWNlLm9yZ4IS bXkubGlicmVvZmZpY2Uub3JnghJubC5saWJyZW9mZmljZS5vcmeCEm5vLmxpYnJl b2ZmaWNlLm9yZ4ISb2MubGlicmVvZmZpY2Uub3JnghJwbC5saWJyZW9mZmljZS5v cmeCFXB0LWJyLmxpYnJlb2ZmaWNlLm9yZ4IScHQubGlicmVvZmZpY2Uub3JnghJw eS5saWJyZW9mZmljZS5vcmeCEnFhLmxpYnJlb2ZmaWNlLm9yZ4IScm8ubGlicmVv ZmZpY2Uub3JnghJydS5saWJyZW9mZmljZS5vcmeCEnNpLmxpYnJlb2ZmaWNlLm9y Z4ITc2lkLmxpYnJlb2ZmaWNlLm9yZ4ISc2subGlicmVvZmZpY2Uub3JnghJzbC5s aWJyZW9mZmljZS5vcmeCEnNyLmxpYnJlb2ZmaWNlLm9yZ4ISc3YubGlicmVvZmZp Y2Uub3JnghJ0YS5saWJyZW9mZmljZS5vcmeCEnRoLmxpYnJlb2ZmaWNlLm9yZ4IS dHIubGlicmVvZmZpY2Uub3JnghJ1ay5saWJyZW9mZmljZS5vcmeCEnVzLmxpYnJl b2ZmaWNlLm9yZ4ITdmVjLmxpYnJlb2ZmaWNlLm9yZ4ISdmkubGlicmVvZmZpY2Uu b3Jnghd3ZWJzaXRlLmxpYnJlb2ZmaWNlLm9yZ4IPd3d3LmxpYm9jb24uY29tgg93 d3cubGlib2Nvbi5uZXSCD3d3dy5saWJvY29uLm9yZ4ITd3d3LmxpYnJlb2ZmaWNl Lm9yZ4IVemgtY24ubGlicmVvZmZpY2Uub3JnghV6aC10dy5saWJyZW9mZmljZS5v cmeCEnpoLmxpYnJlb2ZmaWNlLm9yZzATBgNVHSAEDDAKMAgGBmeBDAECATCCAQMG CisGAQQB1nkCBAIEgfQEgfEA7wB2ADtTd3U+LbmAToswWwb+QDtn2E/D9Me9AA0t cm/h+tQXAAABjkpv8iMAAAQDAEcwRQIgUkZ8FfpAgM9WXSn3NkDjZQ1Bz23vES7i byoNN/mLC94CIQCD+jzHW/GHf3HkgxpwGn2xrFixyk+GA6Evynrt8Nx9mgB1AHb/ iD8KtvuVUcJhzPWHujS0pM27KdxoQgqf5mdMWjp0AAABjkpv8lQAAAQDAEYwRAIg MZ6CUN6TtvZgq7WxkUIMPnjyHyjGYU/NFxgb3lPYMLYCIFl33X6VFZe0d2gEgcyL ZsQMcojxAYchtkUmpapjjLQZMA0GCSqGSIb3DQEBCwUAA4IBAQCc2yJ6LHiZtuf0 UHaz85etRwLW1d8rJR72Rd3/JmPPGEM0Nq1/naC+XNKcML453VUQZE0xRWlL5TF6 mj0vBEaeHgeOi1Z0Ad4RMnfbvF9D+7q5UOdchcsSrt74D173rCEmayxR2p9GKndp Y2899PE3rpldcg+FxJK+5sCA08o4gbe0CzOkF3CnPtF7BhOsTjis22EnA1kiYTid 5t+eQEEyRMGSa/kHg/TMkNExwjqiWgYHeP/HEOwAlynQQciAaARNWqJONlImclvJ Dq+EEn75zRDZ7Ss5K2VtYSmt3wMZqMfSU5qF84kr+c3Zby4kMgjo+BRDlr+oV48y LIF1BXSZ -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R3 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG /kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4 avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2 yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+ HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX nLRbwHOoq7hHwg== -----END CERTIFICATE----- --- Server certificate subject=CN = libreoffice.org issuer=C = US, O = Let's Encrypt, CN = R3 --- No client certificate CA names sent Peer signing digest: SHA512 Peer signature type: RSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 5637 bytes and written 411 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 4096 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-CHACHA20-POLY1305 Session-ID: 8593F6D0D40565107CB22698E305D2C62F53AE411F1E6D8B20BE4860726A86B2 Session-ID-ctx: Master-Key: 43F20538BC9C8C1725A4C39AD396B1453F0149B10E7459EAC07B98E5CA4C736E54583609D8E2EB01CFCB7D2CFB8C8BFF PSK identity: None PSK identity hint: None SRP username: None Start Time: 1713541685 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- DONE