Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (183 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 99.83.207.202
Reverse IP lookup: aafc88a28d9997374.awsglobalaccelerator.com.
Nameserver: ns5.ringpublishing.net.
Nameserver: ns6.ringpublishing.net.
Nameserver: ns7.ringpublishing.net.
Nameserver: ns8.ringpublishing.net.

General Information

Common Name: *.onet.pl
SANs: DNS:*.onet.plDNS:onet.pl Total number of SANs: 2
Organization: Ringier Axel Springer Polska Sp z o.o.
Locality: Warszawa
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: dc92066595f8384fcb39574d2649359
Not Before: May 24, 2021 00:00:00 GMT
Not After: Jun 01, 2022 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Ring Publishing - Accelerator
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.onet.pl

Decode this certificate for verbose information →
Subject Common Name *.onet.pl
Subject Organization Ringier Axel Springer Polska Sp z o.o.
Issuer Common Name GeoTrust RSA CA 2018
Issuer Organization DigiCert Inc
Not Before: May 24, 2021 00:00:00 GMT
Not After: Jun 01, 2022 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: dc92066595f8384fcb39574d2649359
SHA1 Fingerprint: 18:DF:44:07:53:FB:0E:7C:3F:BD:D6:9D:B9:05:BE:E9:DA:6F:E9:E4
MD5 Fingerprint: 6F:47:59:4D:76:22:72:32:8A:79:66:67:A6:99:24:5E

Certificate # 2 - Common Name: GeoTrust RSA CA 2018

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GeoTrust RSA CA 2018
Subject Organization DigiCert Inc
Issuer Common Name DigiCert Global Root CA
Issuer Organization DigiCert Inc
Not Before: Nov 06, 2017 12:23:45 GMT
Not After: Nov 06, 2027 12:23:45 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 546fe1823f7e1941da39fce14c46173
SHA1 Fingerprint: 7C:CC:2A:87:E3:94:9F:20:57:2B:18:48:29:80:50:5F:A9:0C:AC:3B
MD5 Fingerprint: A9:5D:7F:13:A6:4A:5E:BE:00:36:4D:8B:E6:7D:EC:ED

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018
verify return:1
depth=0 C = PL, ST = Mazowieckie, L = Warszawa, O = Ringier Axel Springer Polska Sp z o.o., CN = *.onet.pl
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/C=PL/ST=Mazowieckie/L=Warszawa/O=Ringier Axel Springer Polska Sp z o.o./CN=*.onet.pl
   i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=GeoTrust RSA CA 2018
-----BEGIN CERTIFICATE-----
MIIGfTCCBWWgAwIBAgIQDckgZllfg4T8s5V00mSTWTANBgkqhkiG9w0BAQsFADBe
MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
d3cuZGlnaWNlcnQuY29tMR0wGwYDVQQDExRHZW9UcnVzdCBSU0EgQ0EgMjAxODAe
Fw0yMTA1MjQwMDAwMDBaFw0yMjA2MDEyMzU5NTlaMHsxCzAJBgNVBAYTAlBMMRQw
EgYDVQQIEwtNYXpvd2llY2tpZTERMA8GA1UEBxMIV2Fyc3phd2ExLzAtBgNVBAoT
JlJpbmdpZXIgQXhlbCBTcHJpbmdlciBQb2xza2EgU3AgeiBvLm8uMRIwEAYDVQQD
DAkqLm9uZXQucGwwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQClOxPg
xKWkly8uNSA3LlCW+Ue6mhuSEOcBf3EJ7w/dRi0K8DSvWum6Dy+eBagx1cOsKlFf
SB0r53x13pPfen0lhbxnw4DkHgWHTapq1x+LM0pHTa+jD7SPAOw3+pSgsmMHwjBS
e1FgiS5lszz0J4k1Q0nxFLHjXYPsLaA1x7SOI+0j5o4S9FERWBG3aUsNS4dW/gE6
m7cDEUNDOfLIBQBR9qp5/EHh2niepjqKwod1b59qOxxv8DU+onyTtDNMYgo5RIBR
wfT3se5yT0j/QxN5k8/POOi1xLO5MemBWBSH9ZeLhwkJNKL59A+WLF0Q5HNLztlI
8Wpomk8GCgFYXbL3AgMBAAGjggMYMIIDFDAfBgNVHSMEGDAWgBSQWP+wnHWoUVR3
se3yo0MWOJ5sxTAdBgNVHQ4EFgQUhX5c+3EnQRQ4VuJL5rTL2kSK2lcwHQYDVR0R
BBYwFIIJKi5vbmV0LnBsggdvbmV0LnBsMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUE
FjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwPgYDVR0fBDcwNTAzoDGgL4YtaHR0cDov
L2NkcC5nZW90cnVzdC5jb20vR2VvVHJ1c3RSU0FDQTIwMTguY3JsMD4GA1UdIAQ3
MDUwMwYGZ4EMAQICMCkwJwYIKwYBBQUHAgEWG2h0dHA6Ly93d3cuZGlnaWNlcnQu
Y29tL0NQUzB1BggrBgEFBQcBAQRpMGcwJgYIKwYBBQUHMAGGGmh0dHA6Ly9zdGF0
dXMuZ2VvdHJ1c3QuY29tMD0GCCsGAQUFBzAChjFodHRwOi8vY2FjZXJ0cy5nZW90
cnVzdC5jb20vR2VvVHJ1c3RSU0FDQTIwMTguY3J0MAwGA1UdEwEB/wQCMAAwggF9
BgorBgEEAdZ5AgQCBIIBbQSCAWkBZwB2ACl5vvCeOTkh8FZzn2Old+W+V32cYAr4
+U1dJlwlXceEAAABeZ4n4ZwAAAQDAEcwRQIhAMOiI8wdYpkvp6RyeT7W+e3Jp5ey
Dii5gJzVzbS684MRAiBfgm+xdj+lVtfivyJb6asEteNv+KmqoVYJQhiYZwLZyQB2
ACJFRQdZVSRWlj+hL/H3bYbgIyZjrcBLf13Gg1xu4g8CAAABeZ4n4eoAAAQDAEcw
RQIgV9RFVJ6Dfdyv0q5FYb8vh7UbgprCTVM5z1Y+cGihLHwCIQCXa/RiWH1tNLVL
aFHDNQC4zr8UlnLhly2qiPDamUcyGAB1AEHIyrHfIkZKEMahOglCh15OMYsbA+vr
S8do8JBilgb2AAABeZ4n4dUAAAQDAEYwRAIgfD0Fn8luJry1O5OXafbQ7T5Tqioa
ENoQtfkr0sZflVACIDFO5WQGI5Bii6iiosO13NbLggn6hlP0wZhGBn/i3FwwMA0G
CSqGSIb3DQEBCwUAA4IBAQBrxFEnpWQYln0dCiiGqZv7F9fttrHX9BocgQT1Ij3F
2hVBs9BF/BQgliT+dvvPcH8qULXIFTp0rghof6RZgBCzm+ic/WZwLePxbFbOOVOi
7UPAxJjUphA+fMNSM6VmnxxnHvJLQG1OGgxpuv3jYDrxYb9SvzhREnfG1kqI1MCO
tooF3SAC/jE8LOI1K+jcNStZUe2i/G9/I0/to9J9eNV0BMcvbM7fOm1Ra46NGrU/
bs2xV36hOLyhIGEZ8NMDXqw+0ZOMsqMLUMx/htR4BeChPvukJPrZmyr3TYgtCEgk
w+gXobO3blgAclEt11lKEIEk04M8nNTtSFl7P9Dk+lAf
-----END CERTIFICATE-----
 1 s:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=GeoTrust RSA CA 2018
   i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/C=PL/ST=Mazowieckie/L=Warszawa/O=Ringier Axel Springer Polska Sp z o.o./CN=*.onet.pl
issuer=/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=GeoTrust RSA CA 2018
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3496 bytes and written 294 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: 4E52AF325981248CEDF1E837348B84AF89D84E14A1B078DDC0534F8A2CC15C06
    Session-ID-ctx: 
    Master-Key: FDE11E1C4E786F946311C7C1D816E2ECB713622B6A8DB98898163A731ED223A8A62A277848035E187DF8D2F800ED304D
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 600 (seconds)
    TLS session ticket:
    0000 - ab 49 2c 93 a3 99 da 68-b4 c1 e6 03 fa 5a 27 28   .I,....h.....Z'(
    0010 - cc 08 f1 88 f8 0c a4 b8-0c 6e fc 14 94 3a 02 d7   .........n...:..
    0020 - e1 0a 61 ff 04 de c2 ff-fb cc b9 3e 34 24 55 b5   ..a........>4$U.
    0030 - e5 e6 54 fb 31 5a 6a 38-10 c3 27 90 e1 c1 6c 7f   ..T.1Zj8..'...l.
    0040 - 54 91 0a 44 c2 68 36 61-28 85 7f e0 f2 09 ae 98   T..D.h6a(.......
    0050 - da 43 2d 4b fa 50 90 d9-ec ad 4a 85 ec 75 01 7c   .C-K.P....J..u.|
    0060 - 09 ff 6b 19 84 8d 33 81-95 e0 30 be 56 aa 02 f8   ..k...3...0.V...
    0070 - 67 cd b4 3e 38 36 ab 73-82 15 86 66 fb de c0 1e   g..>86.s...f....
    0080 - 00 30 94 5b 22 9a 08 40-d5 51 5b 16 eb 18 fb cf   .0.["..@.Q[.....
    0090 - df 79 fd a0 1b 7f e8 8f-a3 f1 c0 5e 47 f3 0b 48   .y.........^G..H
    00a0 - 8f ee 4b e3 79 c0 43 95-31 a2 36 76 03 80 a5 31   ..K.y.C.1.6v...1
    00b0 - 88 ee 7a db 5c 0f a0 47-d0 39 5b 00 65 54 80 2e   ..z.\..G.9[.eT..

    Start Time: 1638256503
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE