Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (203 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 104.18.116.30
Reverse IP lookup: No records found
Nameserver: bruce.ns.cloudflare.com.
Nameserver: elma.ns.cloudflare.com.

General Information

Common Name: sni.cloudflaressl.com
SANs: DNS:sni.cloudflaressl.comDNS:*.opensecrets.orgDNS:opensecrets.org Total number of SANs: 3
Organization: Cloudflare, Inc.
Locality: San Francisco
Signature Algorithm: ecdsa-with-SHA256
Key Type: ECDSA (secp256r1)
Key size: 256 bits
Serial Number: ec85ba3d8cdec5e44a1749397316045
Not Before: Jun 28, 2021 00:00:00 GMT
Not After: Jun 27, 2022 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: cloudflare
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: sni.cloudflaressl.com

Decode this certificate for verbose information →
Subject Common Name sni.cloudflaressl.com
Subject Organization Cloudflare, Inc.
Issuer Common Name Cloudflare Inc ECC CA-3
Issuer Organization Cloudflare, Inc.
Not Before: Jun 28, 2021 00:00:00 GMT
Not After: Jun 27, 2022 23:59:59 GMT
Signature Algorithm: ecdsa-with-SHA256
Serial Number: ec85ba3d8cdec5e44a1749397316045
SHA1 Fingerprint: 7A:A8:79:F0:51:54:D1:36:2C:96:46:29:AF:33:88:58:41:28:6F:EA
MD5 Fingerprint: 6F:A9:52:39:7A:2E:E5:4B:23:7C:83:C3:E7:7C:1C:70

Certificate # 2 - Common Name: Cloudflare Inc ECC CA-3

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Cloudflare Inc ECC CA-3
Subject Organization Cloudflare, Inc.
Issuer Common Name Baltimore CyberTrust Root
Issuer Organization Baltimore
Not Before: Jan 27, 2020 12:48:08 GMT
Not After: Dec 31, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a3787645e5fb48c224efd1bed140c3c
SHA1 Fingerprint: B3:DD:76:06:D2:B5:A8:B4:A1:37:71:DB:EC:C9:EE:1C:EC:AF:A3:8A
MD5 Fingerprint: 34:16:CA:75:15:17:B8:39:1C:D7:59:FA:BB:8E:C9:19

OpenSSL Handshake

depth=2 C = IE, O = Baltimore, OU = CyberTrust, CN = Baltimore CyberTrust Root
verify return:1
depth=1 C = US, O = "Cloudflare, Inc.", CN = Cloudflare Inc ECC CA-3
verify return:1
depth=0 C = US, ST = California, L = San Francisco, O = "Cloudflare, Inc.", CN = sni.cloudflaressl.com
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: A5CE37EAEBB0750E946788B445FAD9241087961F
    Produced At: Dec  5 05:00:41 2021 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 12D78B402C356206FA827F8ED8922411B4ACF504
      Issuer Key Hash: A5CE37EAEBB0750E946788B445FAD9241087961F
      Serial Number: 0EC85BA3D8CDEC5E44A1749397316045
    Cert Status: good
    This Update: Dec  5 04:45:01 2021 GMT
    Next Update: Dec 12 04:00:01 2021 GMT

    Signature Algorithm: ecdsa-with-SHA256
         30:45:02:20:5a:98:6f:6a:65:42:98:84:bc:9a:8a:59:08:3e:
         c9:e8:e8:e9:75:3d:81:c3:3f:92:b9:88:70:d9:c8:9c:ec:b9:
         02:21:00:8e:6c:d7:9d:1d:75:93:49:e7:78:cc:fa:a4:7a:ad:
         1e:8d:cb:03:a9:5a:50:f0:17:02:f6:68:d1:62:9a:39:da
======================================
---
Certificate chain
 0 s:/C=US/ST=California/L=San Francisco/O=Cloudflare, Inc./CN=sni.cloudflaressl.com
   i:/C=US/O=Cloudflare, Inc./CN=Cloudflare Inc ECC CA-3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=Cloudflare, Inc./CN=Cloudflare Inc ECC CA-3
   i:/C=IE/O=Baltimore/OU=CyberTrust/CN=Baltimore CyberTrust Root
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/C=US/ST=California/L=San Francisco/O=Cloudflare, Inc./CN=sni.cloudflaressl.com
issuer=/C=US/O=Cloudflare, Inc./CN=Cloudflare Inc ECC CA-3
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3088 bytes and written 294 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-ECDSA-CHACHA20-POLY1305
Server public key is 256 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-ECDSA-CHACHA20-POLY1305
    Session-ID: 749AEA708F3567F74E60D986CAB11A53350419B725A0502EB438ED612A07E709
    Session-ID-ctx: 
    Master-Key: 225311997FF431EBB1F8D0E16ABF9566FED68807A0293DC6638FA40CB4C78016B768E826B5918D73564D56612280F1D3
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 64800 (seconds)
    TLS session ticket:
    0000 - 72 14 b9 fb 8d 67 64 12-a1 7c 44 a6 95 6e 58 46   r....gd..|D..nXF
    0010 - e9 b5 6c 9c cb dc f5 97-40 a6 bd 48 3d f7 f9 db   ..l.....@..H=...
    0020 - 32 a9 1d 7e 4c 73 1b 62-39 31 a2 b4 f4 af 14 c6   2..~Ls.b91......
    0030 - f2 bb 77 ce a0 31 9d 4e-8d 87 2f 72 3a c0 27 8c   ..w..1.N../r:.'.
    0040 - 3f 0c 7c 5b 3e 9e bd 75-18 36 28 d6 99 61 9c 7a   ?.|[>..u.6(..a.z
    0050 - b7 01 d4 ef dc 4b 72 2c-ce 91 2a c5 e1 d9 f5 27   .....Kr,..*....'
    0060 - e1 ad e2 f0 86 49 e9 86-f9 49 d2 23 dd 4b 4a 41   .....I...I.#.KJA
    0070 - 7d 72 b6 25 5b 4e 59 80-46 33 07 59 fb 3a 6c ec   }r.%[NY.F3.Y.:l.
    0080 - 3a c6 d7 78 a8 d8 e2 6d-23 b1 03 44 00 e6 0a dd   :..x...m#..D....
    0090 - b9 7a 3b 9d f0 7c a6 ba-b1 9a 17 4f 7a e9 4a 9c   .z;..|.....Oz.J.
    00a0 - 68 be 9b 49 4a fa f1 9a-ee e6 fb 81 d4 96 98 5c   h..IJ..........\
    00b0 - 9a fc fd 96 e2 00 c3 a7-8a 63 2f 7c b3 02 96 a2   .........c/|....

    Start Time: 1638772360
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE