Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (62 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 23.43.64.242
Reverse IP lookup: a23-43-64-242.deploy.static.akamaitechnologies.com.
Nameserver: eur5.akam.net.
Nameserver: asia1.akam.net.
Nameserver: ns1-173.akam.net.
Nameserver: ns1-37.akam.net.
Nameserver: usw2.akam.net.
Nameserver: asia2.akam.net.
Nameserver: use2.akam.net.
Nameserver: use5.akam.net.

General Information

Common Name: web.mit.edu
SANs: DNS:web.mit.eduDNS:alum-dev.mit.eduDNS:alum.mit.eduDNS:betterworld.mit.eduDNS:emergency-dev.mit.eduDNS:emergency.mit.eduDNS:emergency.mit.netDNS:events-static.mit.eduDNS:giving-dev.mit.eduDNS:giving.mit.eduDNS:img.mit.eduDNS:medical.mit.eduDNS:mit.eduDNS:mit.mit.eduDNS:mitpress.mit.eduDNS:news.mit.eduDNS:newsoffice.mit.eduDNS:staging-mitpress.mit.eduDNS:swartz-documents.mit.eduDNS:swartz-report.mit.eduDNS:test-medical.mit.eduDNS:thereader-staging.mitpress.mit.eduDNS:thereader.mitpress.mit.eduDNS:w.mit.eduDNS:w3.mit.eduDNS:web-cert.mit.eduDNS:web-forms.mit.eduDNS:web.mitDNS:www-cert.mit.eduDNS:www-mit.mit.eduDNS:www.mitDNS:www.mit.eduDNS:www.newsoffice.mit.eduDNS:www.web.mit.eduDNS:wwww.mit.edu Total number of SANs: 35
Organization: Massachusetts Institute of Technology
Locality: Cambridge
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 3f54f1f17e3c4c945e5fd4ace9736da
Not Before: Jul 02, 2023 00:00:00 GMT
Not After: Jul 02, 2024 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: AkamaiGHost
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: web.mit.edu

Decode this certificate for verbose information →
Subject Common Name web.mit.edu
Subject Organization Massachusetts Institute of Technology
Issuer Common Name GeoTrust RSA CA 2018
Issuer Organization DigiCert Inc
Not Before: Jul 02, 2023 00:00:00 GMT
Not After: Jul 02, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 3f54f1f17e3c4c945e5fd4ace9736da
SHA1 Fingerprint: DB:EC:D2:51:BB:A6:30:43:80:A0:B7:1C:77:C7:D2:62:1B:0D:6E:B5
MD5 Fingerprint: 98:80:5C:C1:90:D3:0D:16:D8:A0:CD:FF:B9:52:AD:BF

Certificate # 2 - Common Name: GeoTrust RSA CA 2018

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GeoTrust RSA CA 2018
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root CA
Issuer Organization DigiCert Inc
Not Before: Nov 06, 2017 12:23:45 GMT
Not After: Nov 06, 2027 12:23:45 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 546fe1823f7e1941da39fce14c46173
SHA1 Fingerprint: 7C:CC:2A:87:E3:94:9F:20:57:2B:18:48:29:80:50:5F:A9:0C:AC:3B
MD5 Fingerprint: A9:5D:7F:13:A6:4A:5E:BE:00:36:4D:8B:E6:7D:EC:ED

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
verify return:1
depth=0 C = US, ST = Massachusetts, L = Cambridge, O = Massachusetts Institute of Technology, CN = web.mit.edu
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: 9058FFB09C75A8515477B1EDF2A34316389E6CC5
    Produced At: Apr 28 10:42:38 2024 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 777A7BA877D6F10F1CE9202196FB6B1A6E37F5ED
      Issuer Key Hash: 9058FFB09C75A8515477B1EDF2A34316389E6CC5
      Serial Number: 03F54F1F17E3C4C945E5FD4ACE9736DA
    Cert Status: good
    This Update: Apr 28 10:27:02 2024 GMT
    Next Update: May  5 09:27:02 2024 GMT

    Signature Algorithm: sha256WithRSAEncryption
         87:f2:f3:b8:cb:e3:28:39:00:9e:b6:eb:76:a5:1d:d7:20:c8:
         b0:cf:25:41:b3:3f:0d:81:1c:cc:f1:9b:63:ff:3a:f3:c3:33:
         16:af:e0:95:43:e2:a8:ab:e8:a6:a4:52:ee:93:ec:6d:2d:fb:
         6d:70:af:60:92:9d:a3:93:79:ff:ee:35:af:66:76:5d:52:ed:
         a0:d8:19:b3:b4:e4:e5:74:3e:8f:c3:6e:74:31:f6:5a:a5:f6:
         bd:ef:36:87:6f:97:b3:b9:fd:26:c9:ba:4f:64:79:0d:8e:fd:
         04:67:17:5d:2d:e0:cf:7d:49:e9:a0:e9:36:e8:7d:df:9a:36:
         97:41:b6:1f:de:1c:b0:29:c5:96:6a:bb:30:c1:da:a6:01:d7:
         c7:d2:96:ce:20:07:7f:7f:85:9f:0a:1c:22:67:57:80:06:66:
         b2:76:d2:bc:15:c3:52:2d:6c:f4:da:96:dd:54:ce:1e:9c:a8:
         e9:a0:44:80:31:ca:6e:48:09:91:d6:b8:c2:35:66:61:f8:81:
         6f:a9:5a:55:3f:08:19:6a:bf:0e:6e:a2:40:88:e3:0e:cc:3e:
         6b:d9:2f:70:50:9d:f0:25:f8:e2:fd:83:6c:23:f1:e9:1c:0c:
         dc:12:63:64:7f:26:80:b0:55:0f:2a:af:90:7a:45:a9:7e:24:
         c7:1f:9b:c5
======================================
---
Certificate chain
 0 s:C = US, ST = Massachusetts, L = Cambridge, O = Massachusetts Institute of Technology, CN = web.mit.edu
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
   i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = US, ST = Massachusetts, L = Cambridge, O = Massachusetts Institute of Technology, CN = web.mit.edu

issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 4616 bytes and written 444 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: F1CB5B26234D1BD8FB2B1FE392D2DFE52312AFF2C98C2C8576173877EB834B3E
    Session-ID-ctx: 
    Master-Key: 1BD6A787714BD0DE74A5269EFC3A678C1289EBF37F3E0315DACC0EB3D71C140B681E0257FBBCDD951BDCC80125E4D57F
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 83100 (seconds)
    TLS session ticket:
    0000 - 00 00 25 5e 75 da 03 fa-30 74 06 7c 1a 9f 11 7a   ..%^u...0t.|...z
    0010 - 4f b3 21 15 93 bc 96 7c-45 3b 0b 3b 72 5e ac 35   O.!....|E;.;r^.5
    0020 - 1a fa 40 23 83 ce bb 3f-d6 9d 16 7d be 88 5f 59   ..@#...?...}.._Y
    0030 - be 18 71 77 b8 15 4f eb-9b 1f b6 6b 08 b3 3b d2   ..qw..O....k..;.
    0040 - d7 f2 26 9f d8 af c1 51-4d 79 2d c5 8d 3f e5 ea   ..&....QMy-..?..
    0050 - 0d f4 e2 a4 cc 14 94 b9-7a 9c b9 44 36 3a 35 a5   ........z..D6:5.
    0060 - e7 7a 60 2d d9 ac 63 4f-8e 1b 3c 54 43 51 10 ef   .z`-..cO..<TCQ..
    0070 - 32 e2 d4 40 a5 ea ca 4a-dd 52 f3 a7 ef df c7 38   2..@...J.R.....8
    0080 - 8f 19 ae 5f 5a 2f 6e 14-7c c3 7c 50 cd f6 d0 69   ..._Z/n.|.|P...i
    0090 - 60 99 67 5d 4e 6d 18 0c-f0 99 15 eb ca a6 8d 2a   `.g]Nm.........*
    00a0 - bb 40 d4 ac 91 a2 3f ea-f0 52 5d 3f 3b 01 ac 07   .@....?..R]?;...

    Start Time: 1714601451
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: no
---
DONE