Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (68 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 194.209.225.23
Reverse IP lookup: member.kcdb.net.
Nameserver: namesrv1.kaktus.ch.

General Information

Common Name: member.kcdb.net
SANs: DNS:buelach.kcdb.netDNS:member.kcdb.netDNS:michelsamt.kcdb.netDNS:olten.kcdb.net Total number of SANs: 4
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 461824b7b7838ecdf816725090c3a06f3cb
Not Before: Nov 14, 2022 06:20:03 GMT
Not After: Feb 12, 2023 06:20:02 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Microsoft-IIS/8.5
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: member.kcdb.net

Decode this certificate for verbose information →
Subject Common Name member.kcdb.net
Issuer Common Name R3
Issuer Organization Let's Encrypt
Not Before: Nov 14, 2022 06:20:03 GMT
Not After: Feb 12, 2023 06:20:02 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 461824b7b7838ecdf816725090c3a06f3cb
SHA1 Fingerprint: CB:8D:E9:AC:33:61:CA:33:AF:08:C4:12:C4:65:DB:27:7E:1D:B8:F9
MD5 Fingerprint: 74:EE:5C:42:2D:0B:02:91:52:89:72:82:B2:94:A7:6C

Certificate # 2 - Common Name: R3

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name R3
Subject Organization Let's Encrypt
Issuer Common Name ISRG Root X1
Issuer Organization Internet Security Research Group
Not Before: Sep 04, 2020 00:00:00 GMT
Not After: Sep 15, 2025 16:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 912b084acf0c18a753f6d62e25a75f5a
SHA1 Fingerprint: A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05
MD5 Fingerprint: E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36

OpenSSL Handshake

depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = R3
verify return:1
depth=0 CN = member.kcdb.net
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/CN=member.kcdb.net
   i:/C=US/O=Let's Encrypt/CN=R3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=Let's Encrypt/CN=R3
   i:/C=US/O=Internet Security Research Group/CN=ISRG Root X1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/CN=member.kcdb.net
issuer=/C=US/O=Let's Encrypt/CN=R3
---
No client certificate CA names sent
Peer signing digest: SHA1
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 3233 bytes and written 391 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-SHA384
    Session-ID: 062D0000604F657F36ED86A62B8F1401A1EE1A0619B117655B811B81977B6BD4
    Session-ID-ctx: 
    Master-Key: 42FE97936FE8B437A722F82EDE43A508F3219C805C1ECF6353B7B0E2FAC6A266D480648B453638124EDDB01DD369DE06
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1670236175
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE