SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (5 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 84.45.203.209 |
Reverse IP lookup: | 84-45-203-209.static.enta.net. |
Nameserver: | ns4.freeola.net. |
Nameserver: | ns3.freeola.net. |
General Information
Common Name: | mail.nova-security.co.uk |
SANs: | DNS:mail.nova-security.co.uk Total number of SANs: 1 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 3232c5abce18a67b066722890e355d4f8ed |
Not Before: | Nov 19, 2024 23:02:32 GMT |
Not After: | Feb 17, 2025 23:02:31 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Chain Information
Certificate # 1 - Common Name: mail.nova-security.co.uk
Decode this certificate for verbose information → launchSubject Common Name | mail.nova-security.co.uk |
Issuer Common Name | R10 |
Issuer Organization | Let's Encrypt |
Not Before: | Nov 19, 2024 23:02:32 GMT |
Not After: | Feb 17, 2025 23:02:31 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 3232c5abce18a67b066722890e355d4f8ed |
SHA1 Fingerprint: | F4:43:FC:F0:95:88:50:78:AB:AB:90:75:5B:9B:79:C3:ED:58:20:D3 |
MD5 Fingerprint: | 09:E8:26:6D:0B:21:81:CD:E1:06:4D:B1:F8:68:09:67 |
Certificate # 2 - Common Name: R10
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R10 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Mar 13, 2024 00:00:00 GMT |
Not After: | Mar 12, 2027 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 4ba85293f79a2fa273064ba8048d75d0 |
SHA1 Fingerprint: | 00:AB:EF:D0:55:F9:A9:C7:84:FF:DE:AB:D1:DC:DD:8F:ED:74:14:36 |
MD5 Fingerprint: | AF:1C:77:AE:CC:8D:77:E9:AA:CB:0C:47:58:40:C3:92 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R10 verify return:1 depth=0 CN = mail.nova-security.co.uk verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: C = US, O = Let's Encrypt, CN = R10 Produced At: Feb 11 12:05:00 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 690FE41567ED6F7FB534446406066F0967077172 Issuer Key Hash: 74A47629171854853137BE67E60658C0BCC50572 Serial Number: 03232C5ABCE18A67B066722890E355D4F8ED Cert Status: good This Update: Feb 11 12:05:00 2025 GMT Next Update: Feb 18 12:04:58 2025 GMT Signature Algorithm: sha256WithRSAEncryption 51:c8:b6:6f:ab:eb:df:35:83:87:74:d3:27:8c:65:e4:0d:02: 9b:47:a1:38:c7:b2:e2:5c:05:96:68:85:dc:54:a0:5e:10:d3: cf:0a:96:8d:bb:5c:08:8f:e7:4f:83:bb:f2:79:29:f3:f9:50: 68:53:f8:4f:8c:c3:0e:f3:26:b0:3f:98:b6:4b:e1:55:09:29: 15:d2:fa:a3:38:66:e0:ed:d8:7f:a9:a7:76:a3:cf:bc:0f:28: 23:b8:e9:b5:21:3a:b1:25:49:c6:d1:d4:67:2f:43:a6:d0:9d: d5:84:55:e0:fe:1b:c4:ad:ef:c6:58:40:4e:6e:80:db:62:43: 50:0b:70:43:24:fd:f9:3b:6b:0d:38:07:5f:ad:44:e1:73:69: ce:61:af:2b:2e:91:36:51:36:c6:3b:23:7d:4a:2c:62:8c:ea: 8f:51:64:99:93:45:0b:d4:d5:46:15:c2:8e:85:39:d2:59:49: ba:c0:9c:22:42:89:06:27:e2:cf:1c:9e:1a:ea:35:16:0f:35: 8c:76:ef:e2:a8:12:db:ff:fa:9f:8c:d7:7f:d4:7a:e9:7d:ae: bc:0e:13:40:cd:df:c9:0a:5b:e7:d6:0c:39:94:eb:82:d8:a3: 49:0e:34:7a:6f:3a:1b:77:6c:40:70:7d:58:6d:5a:2e:3e:8f: ea:48:4e:ca ====================================== --- Certificate chain 0 s:CN = mail.nova-security.co.uk i:C = US, O = Let's Encrypt, CN = R10 -----BEGIN CERTIFICATE----- MIIFADCCA+igAwIBAgISAyMsWrzhimewZnIokONV1PjtMA0GCSqGSIb3DQEBCwUA MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD EwNSMTAwHhcNMjQxMTE5MjMwMjMyWhcNMjUwMjE3MjMwMjMxWjAjMSEwHwYDVQQD ExhtYWlsLm5vdmEtc2VjdXJpdHkuY28udWswggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQDJ9bMSsM/ZkALcyX8aVt5YaPyHhYDEtuYsI8lFtluUY9xMN+ab wczf0hxEGgFwl3ISEqEL4QfF3kpUm+c04uQ/TjtAOARjGHUIk/t0A1NMhbbhVuji umAYCw3/g4HZL5teIV7m2fIkkupvlQQPA7DpoXu+Ge+qTHYwo567hxesjwBJmL4u /JOmCpGY5P4Gn5VP+wVTVesen7o8ayyVkiHsX5OvWC3vi+QHJvLYSEd8zfk5BeGL uyZqclb6UPQHDZseVwems1wYBe9wxnetvyNGuWQikb060LElsDx/EE730OALVodR 3p9qNeYhH8iRjWWiZZXQ51Kp+4PW9SsX81E/AgMBAAGjggIcMIICGDAOBgNVHQ8B Af8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB /wQCMAAwHQYDVR0OBBYEFL0PdB+UqApxTEeMv+L1lVRf/OZtMB8GA1UdIwQYMBaA FLu8w0el5LypxsOkcgwQjaI14cjoMFcGCCsGAQUFBwEBBEswSTAiBggrBgEFBQcw AYYWaHR0cDovL3IxMC5vLmxlbmNyLm9yZzAjBggrBgEFBQcwAoYXaHR0cDovL3Ix MC5pLmxlbmNyLm9yZy8wIwYDVR0RBBwwGoIYbWFpbC5ub3ZhLXNlY3VyaXR5LmNv LnVrMBMGA1UdIAQMMAowCAYGZ4EMAQIBMIIBBAYKKwYBBAHWeQIEAgSB9QSB8gDw AHUA5tIxY0B3jMEQQQbXcbnOwdJA9paEhvu6hzId/R43jlAAAAGTRt9YDAAABAMA RjBEAiBTiVteBD+oe+JcEyvbNzFnmA+4lSE8Oo4Uc9cMUzOBLgIgKzSW2qRBlblh +oHIl/gP47E/z74uO7mUUn6fxqxdL6cAdwCi4wrkRe+9rZt+OO1HZ3dT14JbhJTX K14bLMS5UKRH5wAAAZNG31gKAAAEAwBIMEYCIQC2rgKJiG8qyq3AgfIQmBMCpnp2 MEBuPN1o93C9uHIr6QIhAP/LT+dzATkc2B8NNoIn1vbr26mOiPqN/BPYj0Uolhw2 MA0GCSqGSIb3DQEBCwUAA4IBAQBDRWfsQDOfRTdNzAF2taNNxY4PjrzG+yy10s3S QxJDqfUahZLd1klmbAAko7YvlgtqMQgbWsY36W7uYmegWKLGpOZV1XOAF4Rs3aKh EwdBmx0wuGvh1BYLZ6rRH6IRfaTNbIi7MpBqxr7RzwVrNUKL5SShIYXUuWNpz07D +VC4RwFo7mw9VtGmzwfUBDhjQkehTuCic50e3JwDL1oyXxVV9rEqqpLfB9pUOMlK ZClShFZ1El2IEhlc+CNRIDdn9LAdVpIJPA5Lpg1tM0UPuVQJVFAxkN09oHDiq27C 7NLbKm9prUdIE3o3Tt7LzA5v//s4YaiJOqF4AoDbktiRXj6s -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R10 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFBTCCAu2gAwIBAgIQS6hSk/eaL6JzBkuoBI110DANBgkqhkiG9w0BAQsFADBP MQswCQYDVQQGEwJVUzEpMCcGA1UEChMgSW50ZXJuZXQgU2VjdXJpdHkgUmVzZWFy Y2ggR3JvdXAxFTATBgNVBAMTDElTUkcgUm9vdCBYMTAeFw0yNDAzMTMwMDAwMDBa Fw0yNzAzMTIyMzU5NTlaMDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBF bmNyeXB0MQwwCgYDVQQDEwNSMTAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQDPV+XmxFQS7bRH/sknWHZGUCiMHT6I3wWd1bUYKb3dtVq/+vbOo76vACFL YlpaPAEvxVgD9on/jhFD68G14BQHlo9vH9fnuoE5CXVlt8KvGFs3Jijno/QHK20a /6tYvJWuQP/py1fEtVt/eA0YYbwX51TGu0mRzW4Y0YCF7qZlNrx06rxQTOr8IfM4 FpOUurDTazgGzRYSespSdcitdrLCnF2YRVxvYXvGLe48E1KGAdlX5jgc3421H5KR mudKHMxFqHJV8LDmowfs/acbZp4/SItxhHFYyTr6717yW0QrPHTnj7JHwQdqzZq3 DZb3EoEmUVQK7GH29/Xi8orIlQ2NAgMBAAGjgfgwgfUwDgYDVR0PAQH/BAQDAgGG MB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcDATASBgNVHRMBAf8ECDAGAQH/ AgEAMB0GA1UdDgQWBBS7vMNHpeS8qcbDpHIMEI2iNeHI6DAfBgNVHSMEGDAWgBR5 tFnme7bl5AFzgAiIyBpY9umbbjAyBggrBgEFBQcBAQQmMCQwIgYIKwYBBQUHMAKG Fmh0dHA6Ly94MS5pLmxlbmNyLm9yZy8wEwYDVR0gBAwwCjAIBgZngQwBAgEwJwYD VR0fBCAwHjAcoBqgGIYWaHR0cDovL3gxLmMubGVuY3Iub3JnLzANBgkqhkiG9w0B AQsFAAOCAgEAkrHnQTfreZ2B5s3iJeE6IOmQRJWjgVzPw139vaBw1bGWKCIL0vIo zwzn1OZDjCQiHcFCktEJr59L9MhwTyAWsVrdAfYf+B9haxQnsHKNY67u4s5Lzzfd u6PUzeetUK29v+PsPmI2cJkxp+iN3epi4hKu9ZzUPSwMqtCceb7qPVxEbpYxY1p9 1n5PJKBLBX9eb9LU6l8zSxPWV7bK3lG4XaMJgnT9x3ies7msFtpKK5bDtotij/l0 GaKeA97pb5uwD9KgWvaFXMIEt8jVTjLEvwRdvCn294GPDF08U8lAkIv7tghluaQh 1QnlE4SEN4LOECj8dsIGJXpGUk3aU3KkJz9icKy+aUgA+2cP21uh6NcDIS3XyfaZ QjmDQ993ChII8SXWupQZVBiIpcWO4RqZk3lr7Bz5MUCwzDIA359e57SSq5CCkY0N 4B6Vulk7LktfwrdGNVI5BsC9qqxSwSKgRJeZ9wygIaehbHFHFhcBaMDKpiZlBHyz rsnnlFXCb5s8HKn5LsUgGvB24L7sGNZP2CX7dhHov+YhD+jozLW2p9W4959Bz2Ei RmqDtmiXLnzqTpXbI+suyCsohKRg6Un0RC47+cpiVwHiXZAW+cn8eiNIjqbVgXLx KPpdzvvtTnOPlC7SQZSYmdunr3Bf9b77AiC/ZidstK36dRILKz7OA54= -----END CERTIFICATE----- --- Server certificate subject=CN = mail.nova-security.co.uk issuer=C = US, O = Let's Encrypt, CN = R10 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: X25519, 253 bits --- SSL handshake has read 3547 bytes and written 428 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: 0509000069A5B51CA833C81548A36EA0972661905D9DA228C551F5D7E49FB1AF Session-ID-ctx: Master-Key: D97AD3A45F6F9736E19691F0FE247E099DEC7173C95B2C2C5D5150E666B377CD6A1EE52E089AE359D39F7CC462B62B15 PSK identity: None PSK identity hint: None SRP username: None Start Time: 1739391616 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- 220 mail.nova-security.co.uk ESMTP Wed, 12 Feb 2025 20:20:16 +0000 DONE