Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (9 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 52.6.8.53
Reverse IP lookup: ec2-52-6-8-53.compute-1.amazonaws.com.
Nameserver: ivan.ns.cloudflare.com.
Nameserver: lucy.ns.cloudflare.com.

General Information

Common Name: *.nps.gov
SANs: DNS:*.nps.govDNS:nps.gov Total number of SANs: 2
Organization: National Park Service
Locality: Washington
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 59904fe1f2162909c370c886f5d1330e
Not Before: Apr 06, 2023 16:27:38 GMT
Not After: Apr 06, 2024 16:27:38 GMT
Number of certs: 3
Revocation Status: good
OCSP Stapling: Not Supported
Server: Apache
HSTS: max-age=31536000; preload
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.nps.gov

Decode this certificate for verbose information →
Subject Common Name *.nps.gov
Subject Organization National Park Service
Issuer Common Name Entrust Certification Authority - L1K
Issuer Organization Entrust, Inc.
Not Before: Apr 06, 2023 16:27:38 GMT
Not After: Apr 06, 2024 16:27:38 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 59904fe1f2162909c370c886f5d1330e
SHA1 Fingerprint: CC:27:2C:A1:DE:CC:29:A0:E4:C8:13:48:4D:3D:60:30:0A:C6:0A:4B
MD5 Fingerprint: 93:C9:17:61:FD:DC:A4:2C:95:6E:7D:B1:BB:4D:0B:55

Certificate # 2 - Common Name: Entrust Certification Authority - L1K

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Entrust Certification Authority - L1K
Subject Organization Entrust, Inc.
Issuer Common Name Entrust Root Certification Authority - G2
Issuer Organization Entrust, Inc.
Not Before: Oct 05, 2015 19:13:56 GMT
Not After: Dec 05, 2030 19:43:56 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: ee94cc30000000051d37785
SHA1 Fingerprint: F2:1C:12:F4:6C:DB:6B:2E:16:F0:9F:94:19:CD:FF:32:84:37:B2:D7
MD5 Fingerprint: 35:94:F5:3C:2A:77:54:47:EB:95:67:4B:FF:6C:F2:8B

Certificate # 3 - Common Name: Entrust Root Certification Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Entrust Root Certification Authority - G2
Subject Organization Entrust, Inc.
Issuer Common Name Entrust Root Certification Authority - G2
Issuer Organization Entrust, Inc.
Not Before: Jul 07, 2009 17:25:54 GMT
Not After: Dec 07, 2030 17:55:54 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 4a538c28
SHA1 Fingerprint: 8C:F4:27:FD:79:0C:3A:D1:66:06:8D:E8:1E:57:EF:BB:93:22:72:D4
MD5 Fingerprint: 4B:E2:C9:91:96:65:0C:F4:0E:5A:93:92:A0:0A:FE:B2

OpenSSL Handshake

depth=2 C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
verify return:1
depth=1 C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
verify return:1
depth=0 C = US, ST = District of Columbia, L = Washington, O = National Park Service, CN = *.nps.gov
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:C = US, ST = District of Columbia, L = Washington, O = National Park Service, CN = *.nps.gov
   i:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
   i:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
   i:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = US, ST = District of Columbia, L = Washington, O = National Park Service, CN = *.nps.gov

issuer=C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K

---
No client certificate CA names sent
Peer signing digest: SHA512
Peer signature type: RSA
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 4647 bytes and written 444 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: 6E3A5C20841D1616FE35725D0619CD0CAB235FCA7F623A0A6F54272A6047946C
    Session-ID-ctx: 
    Master-Key: 0DCFDEBEC381FCC21E9DB8A66437CF3C88A5046BA8A75700DA60433344C3DC000A447E221A069BE5428F074571C52E0D
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1711626494
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: no
---
DONE