Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (81 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 96.245.54.64
Reverse IP lookup: pool-96-245-54-64.phlapa.fios.verizon.net.
Nameserver: ns3134.dns.dyn.com.
Nameserver: ns2163.dns.dyn.com.
Nameserver: ns4170.dns.dyn.com.
Nameserver: ns1198.dns.dyn.com.

General Information

Common Name: openhab.beatrixlay.com
SANs: DNS:openhab.beatrixlay.com Total number of SANs: 1
Signature Algorithm: ecdsa-with-SHA384
Key Type: ECDSA (secp256r1)
Key size: 256 bits
Serial Number: 3445242997546a311ede75dc02aac3a70a6
Not Before: Feb 04, 2025 01:05:29 GMT
Not After: May 05, 2025 01:05:28 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: nginx/1.22.1
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: openhab.beatrixlay.com

Decode this certificate for verbose information →
Subject Common Name openhab.beatrixlay.com
Issuer Common Name E5
Issuer Organization Let's Encrypt
Not Before: Feb 04, 2025 01:05:29 GMT
Not After: May 05, 2025 01:05:28 GMT
Signature Algorithm: ecdsa-with-SHA384
Serial Number: 3445242997546a311ede75dc02aac3a70a6
SHA1 Fingerprint: 33:4A:7A:8D:E7:FD:B9:8E:8B:85:DC:EA:60:1B:55:1F:65:E7:FA:8F
MD5 Fingerprint: 69:0F:D5:4D:BD:31:81:E0:D0:4B:5F:01:26:7E:56:6F

Certificate # 2 - Common Name: E5

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name E5
Subject Organization Let's Encrypt
Issuer Common Name ISRG Root X1
Issuer Organization Internet Security Research Group
Not Before: Mar 13, 2024 00:00:00 GMT
Not After: Mar 12, 2027 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 838f6c63ceb1398c6206628315c9fdde
SHA1 Fingerprint: 5F:28:D9:C5:89:EE:4B:F3:1A:11:B7:8C:72:B8:D1:3F:07:9D:DC:45
MD5 Fingerprint: 54:7A:B1:C0:5C:A8:5A:6E:68:2C:91:28:0F:EF:D7:55

OpenSSL Handshake

depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = E5
verify return:1
depth=0 CN = openhab.beatrixlay.com
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:CN = openhab.beatrixlay.com
   i:C = US, O = Let's Encrypt, CN = E5
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = Let's Encrypt, CN = E5
   i:C = US, O = Internet Security Research Group, CN = ISRG Root X1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = openhab.beatrixlay.com

issuer=C = US, O = Let's Encrypt, CN = E5

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: ECDSA
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 2407 bytes and written 413 bytes
Verification: OK
---
New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384
Server public key is 256 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
DONE