Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (313 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 3.33.130.190
Reverse IP lookup: a2aa9ff50de748dbe.awsglobalaccelerator.com.
Nameserver: ns67.domaincontrol.com.
Nameserver: ns68.domaincontrol.com.

General Information

Common Name: mxcdn.net
SANs: DNS:mxcdn.net Total number of SANs: 1
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: a73fa81034454e43
Not Before: Mar 04, 2024 18:04:33 GMT
Not After: Mar 04, 2025 18:04:33 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Not Provided
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: mxcdn.net

Decode this certificate for verbose information →
Subject Common Name mxcdn.net
Issuer Common Name Go Daddy Secure Certificate Authority - G2
Issuer Organization GoDaddy.com, Inc.
Not Before: Mar 04, 2024 18:04:33 GMT
Not After: Mar 04, 2025 18:04:33 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a73fa81034454e43
SHA1 Fingerprint: 32:48:D1:91:95:B5:1E:5C:78:70:34:2D:61:CB:53:AF:71:C5:6C:87
MD5 Fingerprint: 91:D4:C6:84:E6:F5:A3:4F:6E:0F:73:AD:22:59:CA:C8

Certificate # 2 - Common Name: Go Daddy Secure Certificate Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Go Daddy Secure Certificate Authority - G2
Subject Organization GoDaddy.com, Inc.
Issuer Common Name Go Daddy Root Certificate Authority - G2
Issuer Organization GoDaddy.com, Inc.
Not Before: May 03, 2011 07:00:00 GMT
Not After: May 03, 2031 07:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 7
SHA1 Fingerprint: 27:AC:93:69:FA:F2:52:07:BB:26:27:CE:FA:CC:BE:4E:F9:C3:19:B8
MD5 Fingerprint: 96:C2:50:31:BC:0D:C3:5C:FB:A7:23:73:1E:1B:41:40

OpenSSL Handshake

depth=2 C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", CN = Go Daddy Root Certificate Authority - G2
verify return:1
depth=1 C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
verify return:1
depth=0 CN = mxcdn.net
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:CN = mxcdn.net
   i:C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
   i:C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", CN = Go Daddy Root Certificate Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = mxcdn.net

issuer=C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3443 bytes and written 384 bytes
Verification: OK
---
New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
DONE
---
Post-Handshake New Session Ticket arrived:
SSL-Session:
    Protocol  : TLSv1.3
    Cipher    : TLS_AES_128_GCM_SHA256
    Session-ID: 00036C1F46676BC993384B7C330A2B66B55EB228C81B22CBEC245B90EF8F4EAD
    Session-ID-ctx: 
    Resumption PSK: 49B006094629134DF98C7C4B65BF727FBDD05FD94CCDB52BD510CC1B16C48B9A
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 604800 (seconds)
    TLS session ticket:
    0000 - 2a 95 6d a3 ea 90 e7 3e-2f ff 43 04 ff 71 1d 37   *.m....>/.C..q.7
    0010 - 5d 08 35 bb dc b4 4a 6e-67 19 2d a7 2a dd 69 61   ].5...Jng.-.*.ia
    0020 - 4a 17 70 51 39 8a a4 76-89 25 45 bd 27 63 0b cb   J.pQ9..v.%E.'c..
    0030 - 35 36 df da 23 92 2f c8-4c a3 e4 a7 83 62 e3 a7   56..#./.L....b..
    0040 - 5d 32 f3 f1 19 92 47 ce-60 b3 cd aa 06 98 93 8a   ]2....G.`.......
    0050 - 46 f1 33 2c 7d d6 f2 a8-16 37 5e 58 34 74 9a 89   F.3,}....7^X4t..
    0060 - 35 45 30 f8 97 fc f4 00-3e                        5E0.....>

    Start Time: 1714009404
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: no
    Max Early Data: 0
---
read R BLOCK