Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (342 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 34.207.23.137
Reverse IP lookup: ec2-34-207-23-137.compute-1.amazonaws.com.
Nameserver: ns-1284.awsdns-32.org.
Nameserver: ns-1559.awsdns-02.co.uk.
Nameserver: ns-165.awsdns-20.com.
Nameserver: ns-928.awsdns-52.net.

General Information

Common Name: nejm.org
SANs: DNS:nejm.org Total number of SANs: 1
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 7551509a4462ea69ad0326738b210b9
Not Before: Feb 27, 2024 00:00:00 GMT
Not After: Mar 27, 2025 23:59:59 GMT
Number of certs: 4
Revocation Status: good
OCSP Stapling: Not Supported
Server: awselb/2.0
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: nejm.org

Decode this certificate for verbose information →
Subject Common Name nejm.org
Issuer Common Name Amazon RSA 2048 M03
Issuer Organization Amazon
Not Before: Feb 27, 2024 00:00:00 GMT
Not After: Mar 27, 2025 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 7551509a4462ea69ad0326738b210b9
SHA1 Fingerprint: 22:50:57:76:1A:C3:4C:B4:2C:6F:4E:17:DF:4F:C4:4C:B9:07:14:7A
MD5 Fingerprint: A2:BF:DF:CF:10:E6:26:EC:ED:E2:5F:EE:91:45:44:1F

Certificate # 2 - Common Name: Amazon RSA 2048 M03

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Amazon RSA 2048 M03
Subject Organization Amazon
Issuer Common Name Amazon Root CA 1
Issuer Organization Amazon
Not Before: Aug 23, 2022 22:26:04 GMT
Not After: Aug 23, 2030 22:26:04 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 773124cd406d267c0991cdd299a9f38317985
SHA1 Fingerprint: D9:FE:0A:65:FA:00:CA:BF:61:F5:12:0D:37:3A:81:35:E1:46:1F:15
MD5 Fingerprint: F3:F4:22:F8:D1:87:AC:92:B9:1A:48:CD:3A:1C:53:90

Certificate # 3 - Common Name: Amazon Root CA 1

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Amazon Root CA 1
Subject Organization Amazon
Issuer Common Name Starfield Services Root Certificate Authority - G2
Issuer Organization Starfield Technologies, Inc.
Not Before: May 25, 2015 12:00:00 GMT
Not After: Dec 31, 2037 01:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 67f944a2a27cdf3fac2ae2b01f908eeb9c4c6
SHA1 Fingerprint: 06:B2:59:27:C4:2A:72:16:31:C1:EF:D9:43:1E:64:8F:A6:2E:1E:39
MD5 Fingerprint: E8:65:A2:2A:AE:52:4D:26:86:9A:F0:44:8D:6F:D8:96

Certificate # 4 - Common Name: Starfield Services Root Certificate Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Starfield Services Root Certificate Authority - G2
Subject Organization Starfield Technologies, Inc.
Issuer Organization Starfield Technologies, Inc.
Not Before: Sep 02, 2009 00:00:00 GMT
Not After: Jun 28, 2034 17:39:16 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a70e4a4c3482b77f
SHA1 Fingerprint: 9E:99:A4:8A:99:60:B1:49:26:BB:7F:3B:02:E2:2D:A2:B0:AB:72:80
MD5 Fingerprint: C6:15:09:25:CF:EA:59:41:DD:C7:FF:2A:0A:50:66:92

OpenSSL Handshake

depth=2 C = US, O = Amazon, CN = Amazon Root CA 1
verify return:1
depth=1 C = US, O = Amazon, CN = Amazon RSA 2048 M03
verify return:1
depth=0 CN = nejm.org
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:CN = nejm.org
   i:C = US, O = Amazon, CN = Amazon RSA 2048 M03
-----BEGIN CERTIFICATE-----
MIIFvTCCBKWgAwIBAgIQB1UVCaRGLqaa0DJnOLIQuTANBgkqhkiG9w0BAQsFADA8
MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRwwGgYDVQQDExNBbWF6b24g
UlNBIDIwNDggTTAzMB4XDTI0MDIyNzAwMDAwMFoXDTI1MDMyNzIzNTk1OVowEzER
MA8GA1UEAxMIbmVqbS5vcmcwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
AQC1gXYdaCoZhTlS4kZhxRrwDwiKGaeYLJKpU7oWRCYxl53ft42825cNZIFbb2Rv
D6paebceKpksoa1Pl8L5Sy1vVvoVABA1VIPzLXHcKWe01POPjyWzIhB/96rqsCpX
WLVXq5XhVHKMwG4jrotj9Tv0b1Mnez+Nyun7JsbxHmfPpky1EDYP3uXyv8jnrMSL
40sRRt+76o2S4i3P+OhVZCkyIIUSX5TtBHxA0SFLpY/pp8t157x7jFNMUdJF17bK
K1MHPO0SBG5DJ68dpGE3yVQdyG7UkyZVfj86UNKTAZYd3/BFlIGvA929cFKUGG23
t+R/NpbiXgArz5JGfSiqINYvAgMBAAGjggLiMIIC3jAfBgNVHSMEGDAWgBRV2Rhf
0hzMAeFYtL6r2VVCAdcuAjAdBgNVHQ4EFgQUxA+WZp5QNGnwFtNEBBwnjiHC4cgw
EwYDVR0RBAwwCoIIbmVqbS5vcmcwEwYDVR0gBAwwCjAIBgZngQwBAgEwDgYDVR0P
AQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjA7BgNVHR8E
NDAyMDCgLqAshipodHRwOi8vY3JsLnIybTAzLmFtYXpvbnRydXN0LmNvbS9yMm0w
My5jcmwwdQYIKwYBBQUHAQEEaTBnMC0GCCsGAQUFBzABhiFodHRwOi8vb2NzcC5y
Mm0wMy5hbWF6b250cnVzdC5jb20wNgYIKwYBBQUHMAKGKmh0dHA6Ly9jcnQucjJt
MDMuYW1hem9udHJ1c3QuY29tL3IybTAzLmNlcjAMBgNVHRMBAf8EAjAAMIIBfwYK
KwYBBAHWeQIEAgSCAW8EggFrAWkAdgBOdaMnXJoQwzhbbNTfP1LrHfDgjhuNacCx
+mSxYpo53wAAAY3qHppSAAAEAwBHMEUCIQDesF5DM4FQZuUcsx3jjzaRktj9CIG9
QomihYRaEgW9GgIgfiVjpyrbRV+nJnaso01fbmE6wbXc5AO/XjhRFgCaKm8AdwB9
WR4S4XgqexxhZ3xe/fjQh1wUoE6VnrkDL9kOjC55uAAAAY3qHppfAAAEAwBIMEYC
IQCtTaOAVzJIh6Ec0Hyoxj/5BLDpEqU8olNETcv6AdBU8wIhALUFitG6P9RNuou3
htOM90M2cB9Jih6OcvH+wZHDg2t6AHYA5tIxY0B3jMEQQQbXcbnOwdJA9paEhvu6
hzId/R43jlAAAAGN6h6aegAABAMARzBFAiAYh2eThdkrEH4R6ZHrR3F4WB/uKJXK
/+ADNO5qsfN5IwIhANwPqMcjsGKwTL+o6W1dlfBRDVkUREpxPrS5rkle4nSXMA0G
CSqGSIb3DQEBCwUAA4IBAQAyDuXE50bG3cN1F6/mKAINHYFAE4HW11PkF07E17Mk
QITdmHtQxt699YW88b42iv4pUdX6tFQHDKvTrH3KqxW0s/aUHb+fY9mLG0aLq0mO
xzzZ+IHcogQRAENW6xXIxvaY/7KoyVcVBTlbs45f0GmuLZW4AhZyMngG8GfrMz+c
MHG6TRSytpTqjXii0cpKLp2hEOGc4CIDFWrWNUYq8xHYKcFT/+xSTA4BRqoQARzR
aYwnvGa2mgQfRl1w5QyGVP/qQaL6FcHRfo4sc2ebow+r8D70lWj8BeJCfzTtlZQi
lkeXC/B/j8UPLmdNaz/71UiPkPyP65l/gS7W3xmUFbvK
-----END CERTIFICATE-----
 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M03
   i:C = US, O = Amazon, CN = Amazon Root CA 1
-----BEGIN CERTIFICATE-----
MIIEXjCCA0agAwIBAgITB3MSTNQG0mfAmRzdKZqfODF5hTANBgkqhkiG9w0BAQsF
ADA5MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRkwFwYDVQQDExBBbWF6
b24gUm9vdCBDQSAxMB4XDTIyMDgyMzIyMjYwNFoXDTMwMDgyMzIyMjYwNFowPDEL
MAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEcMBoGA1UEAxMTQW1hem9uIFJT
QSAyMDQ4IE0wMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALd/pVko
8vuM475Tf45HV3BbCl/B9Jy89G1CRkFjcPY06WA9lS+7dWbUA7GtWUKoksr69hKM
wcMsNpxlw7b3jeXFgxB09/nmalcAWtnLzF+LaDKEA5DQmvKzuh1nfIfqEiKCQSmX
Xh09Xs+dO7cm5qbaL2hhNJCSAejciwcvOFgFNgEMR42wm6KIFHsQW28jhA+1u/M0
p6fVwReuEgZfLfdx82Px0LJck3lST3EB/JfbdsdOzzzg5YkY1dfuqf8y5fUeZ7Cz
WXbTjujwX/TovmeWKA36VLCz75azW6tDNuDn66FOpADZZ9omVaF6BqNJiLMVl6P3
/c0OiUMC6Z5OfKcCAwEAAaOCAVowggFWMBIGA1UdEwEB/wQIMAYBAf8CAQAwDgYD
VR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAdBgNV
HQ4EFgQUVdkYX9IczAHhWLS+q9lVQgHXLgIwHwYDVR0jBBgwFoAUhBjMhTTsvAyU
lC4IWZzHshBOCggwewYIKwYBBQUHAQEEbzBtMC8GCCsGAQUFBzABhiNodHRwOi8v
b2NzcC5yb290Y2ExLmFtYXpvbnRydXN0LmNvbTA6BggrBgEFBQcwAoYuaHR0cDov
L2NydC5yb290Y2ExLmFtYXpvbnRydXN0LmNvbS9yb290Y2ExLmNlcjA/BgNVHR8E
ODA2MDSgMqAwhi5odHRwOi8vY3JsLnJvb3RjYTEuYW1hem9udHJ1c3QuY29tL3Jv
b3RjYTEuY3JsMBMGA1UdIAQMMAowCAYGZ4EMAQIBMA0GCSqGSIb3DQEBCwUAA4IB
AQAGjeWm2cC+3z2MzSCnte46/7JZvj3iQZDY7EvODNdZF41n71Lrk9kbfNwerK0d
VNzW36Wefr7j7ZSwBVg50W5ay65jNSN74TTQV1yt4WnSbVvN6KlMs1hiyOZdoHKs
KDV2UGNxbdoBYCQNa2GYF8FQIWLugNp35aSOpMy6cFlymFQomIrnOQHwK1nvVY4q
xDSJMU/gNJz17D8ArPN3ngnyZ2TwepJ0uBINz3G5te2rdFUF4i4Y3Bb7FUlHDYm4
u8aIRGpk2ZpfXmxaoxnbIBZRvGLPSUuPwnwoUOMsJ8jirI5vs2dvchPb7MtI1rle
i02f2ivH2vxkjDLltSpe2fiC
-----END CERTIFICATE-----
 2 s:C = US, O = Amazon, CN = Amazon Root CA 1
   i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
-----BEGIN CERTIFICATE-----
MIIEkjCCA3qgAwIBAgITBn+USionzfP6wq4rAfkI7rnExjANBgkqhkiG9w0BAQsF
ADCBmDELMAkGA1UEBhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNj
b3R0c2RhbGUxJTAjBgNVBAoTHFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4x
OzA5BgNVBAMTMlN0YXJmaWVsZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1
dGhvcml0eSAtIEcyMB4XDTE1MDUyNTEyMDAwMFoXDTM3MTIzMTAxMDAwMFowOTEL
MAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEZMBcGA1UEAxMQQW1hem9uIFJv
b3QgQ0EgMTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALJ4gHHKeNXj
ca9HgFB0fW7Y14h29Jlo91ghYPl0hAEvrAIthtOgQ3pOsqTQNroBvo3bSMgHFzZM
9O6II8c+6zf1tRn4SWiw3te5djgdYZ6k/oI2peVKVuRF4fn9tBb6dNqcmzU5L/qw
IFAGbHrQgLKm+a/sRxmPUDgH3KKHOVj4utWp+UhnMJbulHheb4mjUcAwhmahRWa6
VOujw5H5SNz/0egwLX0tdHA114gk957EWW67c4cX8jJGKLhD+rcdqsq08p8kDi1L
93FcXmn/6pUCyziKrlA4b9v7LWIbxcceVOF34GfID5yHI9Y/QCB/IIDEgEw+OyQm
jgSubJrIqg0CAwEAAaOCATEwggEtMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/
BAQDAgGGMB0GA1UdDgQWBBSEGMyFNOy8DJSULghZnMeyEE4KCDAfBgNVHSMEGDAW
gBScXwDfqgHXMCs4iKK4bUqc8hGRgzB4BggrBgEFBQcBAQRsMGowLgYIKwYBBQUH
MAGGImh0dHA6Ly9vY3NwLnJvb3RnMi5hbWF6b250cnVzdC5jb20wOAYIKwYBBQUH
MAKGLGh0dHA6Ly9jcnQucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY2Vy
MD0GA1UdHwQ2MDQwMqAwoC6GLGh0dHA6Ly9jcmwucm9vdGcyLmFtYXpvbnRydXN0
LmNvbS9yb290ZzIuY3JsMBEGA1UdIAQKMAgwBgYEVR0gADANBgkqhkiG9w0BAQsF
AAOCAQEAYjdCXLwQtT6LLOkMm2xF4gcAevnFWAu5CIw+7bMlPLVvUOTNNWqnkzSW
MiGpSESrnO09tKpzbeR/FoCJbM8oAxiDR3mjEH4wW6w7sGDgd9QIpuEdfF7Au/ma
eyKdpwAJfqxGF4PcnCZXmTA5YpaP7dreqsXMGz7KQ2hsVxa81Q4gLv7/wmpdLqBK
bRRYh5TmOTFffHPLkIhqhBGWJ6bt2YFGpn6jcgAKUj6DiAdjd4lpFw85hdKrCEVN
0FE6/V1dN2RMfjCyVSRCnTawXZwXgWHxyvkQAiSr6w10kY17RSlQOYiypok1JR4U
akcjMS9cmvqtmg5iUaQqqcT5NJ0hGA==
-----END CERTIFICATE-----
 3 s:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
   i:C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = nejm.org

issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M03

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 5560 bytes and written 445 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: DE148E91D39A0E21B5EA676DE2F9CFE956A0B375746DED044DDF4DDC3B7384C0
    Session-ID-ctx: 
    Master-Key: E9B6DA7DA64E85AFB622188AF8CE7FCB601339C31B26AFC7FFE5D6BA05470CDDA9665114CEAE3AFCA08ADF0F8C19348F
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 86400 (seconds)
    TLS session ticket:
    0000 - b6 b3 0a 78 84 3d 5c 59-9f 3c b4 e5 dd 58 df 64   ...x.=\Y.<...X.d
    0010 - b4 e1 69 63 a5 81 00 45-16 3a 10 55 78 04 4b 17   ..ic...E.:.Ux.K.
    0020 - 41 81 55 86 9a 59 1b ba-0a 05 5b b0 17 54 f1 1e   A.U..Y....[..T..
    0030 - c0 23 09 56 29 f6 1d 53-4a e1 e5 d3 f8 b8 04 f6   .#.V)..SJ.......
    0040 - 3f 8f 02 e1 40 ac b1 08-e8 a6 10 4d bf 0c 90 e4   ?...@......M....
    0050 - 1c c5 f6 1c 9b ef aa 37-b2 dd ac 1f 7d e5 a8 46   .......7....}..F
    0060 - c7 75 26 ed 01 4f 86 b2-92                        .u&..O...

    Start Time: 1713534749
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE