Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (133 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 194.232.104.140
Reverse IP lookup: www.orf.at.
Nameserver: ns4.apa.net.
Nameserver: ns3.apa.at.

General Information

Common Name: *.orf.at
SANs: DNS:*.orf.atDNS:orf.at Total number of SANs: 2
Organization: Oesterreichischer Rundfunk
Locality: Vienna
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 9d1dd0aaee8f0f9f0000000050fd54e8
Not Before: Jan 20, 2020 10:46:39 GMT
Not After: Apr 18, 2022 11:16:38 GMT
Number of certs: 3
Revocation Status: good
OCSP Stapling: Not Supported
Server: Apache
HSTS: max-age=2592000
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.orf.at

Decode this certificate for verbose information →
Subject Common Name *.orf.at
Subject Organization Oesterreichischer Rundfunk
Issuer Common Name Entrust Certification Authority - L1K
Issuer Organization Entrust, Inc.
Not Before: Jan 20, 2020 10:46:39 GMT
Not After: Apr 18, 2022 11:16:38 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 9d1dd0aaee8f0f9f0000000050fd54e8
SHA1 Fingerprint: 65:48:19:AB:AE:A8:7E:06:26:20:D7:CE:79:66:48:DD:46:92:CE:75
MD5 Fingerprint: 94:56:D1:E4:6F:5D:D7:46:8C:5A:1A:F8:7E:42:01:05

Certificate # 2 - Common Name: Entrust Certification Authority - L1K

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Entrust Certification Authority - L1K
Subject Organization Entrust, Inc.
Issuer Common Name Entrust Root Certification Authority - G2
Issuer Organization Entrust, Inc.
Not Before: Oct 05, 2015 19:13:56 GMT
Not After: Dec 05, 2030 19:43:56 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: ee94cc30000000051d37785
SHA1 Fingerprint: F2:1C:12:F4:6C:DB:6B:2E:16:F0:9F:94:19:CD:FF:32:84:37:B2:D7
MD5 Fingerprint: 35:94:F5:3C:2A:77:54:47:EB:95:67:4B:FF:6C:F2:8B

Certificate # 3 - Common Name: Entrust Root Certification Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Entrust Root Certification Authority - G2
Subject Organization Entrust, Inc.
Issuer Common Name Entrust Root Certification Authority
Issuer Organization Entrust, Inc.
Not Before: Sep 22, 2014 17:14:57 GMT
Not After: Sep 23, 2024 01:31:53 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 51d34044
SHA1 Fingerprint: 9E:1A:0C:35:E7:14:B6:97:92:D0:90:B2:CC:4B:BA:45:83:3C:30:15
MD5 Fingerprint: 06:74:69:13:B6:DC:1B:A6:21:D7:6D:77:D9:BB:4C:4B

OpenSSL Handshake

depth=2 C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
verify return:1
depth=1 C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
verify return:1
depth=0 C = AT, ST = Vienna, L = Vienna, O = Oesterreichischer Rundfunk, CN = *.orf.at
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/C=AT/ST=Vienna/L=Vienna/O=Oesterreichischer Rundfunk/CN=*.orf.at
   i:/C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2012 Entrust, Inc. - for authorized use only/CN=Entrust Certification Authority - L1K
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2012 Entrust, Inc. - for authorized use only/CN=Entrust Certification Authority - L1K
   i:/C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2009 Entrust, Inc. - for authorized use only/CN=Entrust Root Certification Authority - G2
-----BEGIN CERTIFICATE-----
MIIFDjCCA/agAwIBAgIMDulMwwAAAABR03eFMA0GCSqGSIb3DQEBCwUAMIG+MQsw
CQYDVQQGEwJVUzEWMBQGA1UEChMNRW50cnVzdCwgSW5jLjEoMCYGA1UECxMfU2Vl
IHd3dy5lbnRydXN0Lm5ldC9sZWdhbC10ZXJtczE5MDcGA1UECxMwKGMpIDIwMDkg
RW50cnVzdCwgSW5jLiAtIGZvciBhdXRob3JpemVkIHVzZSBvbmx5MTIwMAYDVQQD
EylFbnRydXN0IFJvb3QgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkgLSBHMjAeFw0x
NTEwMDUxOTEzNTZaFw0zMDEyMDUxOTQzNTZaMIG6MQswCQYDVQQGEwJVUzEWMBQG
A1UEChMNRW50cnVzdCwgSW5jLjEoMCYGA1UECxMfU2VlIHd3dy5lbnRydXN0Lm5l
dC9sZWdhbC10ZXJtczE5MDcGA1UECxMwKGMpIDIwMTIgRW50cnVzdCwgSW5jLiAt
IGZvciBhdXRob3JpemVkIHVzZSBvbmx5MS4wLAYDVQQDEyVFbnRydXN0IENlcnRp
ZmljYXRpb24gQXV0aG9yaXR5IC0gTDFLMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
MIIBCgKCAQEA2j+W0E25L0Tn2zlem1DuXKVh2kFnUwmqAJqOV38pa9vH4SEkqjrQ
jUcj0u1yFvCRIdJdt7hLqIOPt5EyaM/OJZMssn2XyP7BtBe6CZ4DkJN7fEmDImiK
m95HwzGYei59QAvS7z7Tsoyqj0ip/wDoKVgG97aTWpRzJiatWA7lQrjV6nN5ZGhT
JbiEz5R6rgZFDKNrTdDGvuoYpDbwkrK6HIiPOlJ/915tgxyd8B/lw9bdpXiSPbBt
LOrJz5RBGXFEaLpHPATpXbo+8DX3Fbae8i4VHj9HyMg4p3NFXU2wO7GOFyk36t0F
ASK7lDYqjVs1/lMZLwhGwSqzGmIdTivZGwIDAQABo4IBDDCCAQgwDgYDVR0PAQH/
BAQDAgEGMBIGA1UdEwEB/wQIMAYBAf8CAQAwMwYIKwYBBQUHAQEEJzAlMCMGCCsG
AQUFBzABhhdodHRwOi8vb2NzcC5lbnRydXN0Lm5ldDAwBgNVHR8EKTAnMCWgI6Ah
hh9odHRwOi8vY3JsLmVudHJ1c3QubmV0L2cyY2EuY3JsMDsGA1UdIAQ0MDIwMAYE
VR0gADAoMCYGCCsGAQUFBwIBFhpodHRwOi8vd3d3LmVudHJ1c3QubmV0L3JwYTAd
BgNVHQ4EFgQUgqJwdN28Uz/Pe9T3zX+nYMYKTL8wHwYDVR0jBBgwFoAUanImetAe
733nO2lR1GyNn5ASZqswDQYJKoZIhvcNAQELBQADggEBADnVjpiDYcgsY9NwHRkw
y/YJrMxp1cncN0HyMg/vdMNY9ngnCTQIlZIv19+4o/0OgemknNM/TWgrFTEKFcxS
BJPok1DD2bHi4Wi3Ogl08TRYCj93mEC45mj/XeTIRsXsgdfJghhcg85x2Ly/rJkC
k9uUmITSnKa1/ly78EqvIazCP0kkZ9Yujs+szGQVGHLlbHfTUqi53Y2sAEo1GdRv
c6N172tkw+CNgxKhiucOhk3YtCAbvmqljEtoZuMrx1gL+1YQ1JH7HdMxWBCMRON1
exCdtTix9qrKgWRs6PLigVWXUX/hwidQosk8WwBD9lu51aX8/wdQQGcHsFXwt35u
Lcw=
-----END CERTIFICATE-----
 2 s:/C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2009 Entrust, Inc. - for authorized use only/CN=Entrust Root Certification Authority - G2
   i:/C=US/O=Entrust, Inc./OU=www.entrust.net/CPS is incorporated by reference/OU=(c) 2006 Entrust, Inc./CN=Entrust Root Certification Authority
-----BEGIN CERTIFICATE-----
MIIE/zCCA+egAwIBAgIEUdNARDANBgkqhkiG9w0BAQsFADCBsDELMAkGA1UEBhMC
VVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xOTA3BgNVBAsTMHd3dy5lbnRydXN0
Lm5ldC9DUFMgaXMgaW5jb3Jwb3JhdGVkIGJ5IHJlZmVyZW5jZTEfMB0GA1UECxMW
KGMpIDIwMDYgRW50cnVzdCwgSW5jLjEtMCsGA1UEAxMkRW50cnVzdCBSb290IENl
cnRpZmljYXRpb24gQXV0aG9yaXR5MB4XDTE0MDkyMjE3MTQ1N1oXDTI0MDkyMzAx
MzE1M1owgb4xCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1FbnRydXN0LCBJbmMuMSgw
JgYDVQQLEx9TZWUgd3d3LmVudHJ1c3QubmV0L2xlZ2FsLXRlcm1zMTkwNwYDVQQL
EzAoYykgMjAwOSBFbnRydXN0LCBJbmMuIC0gZm9yIGF1dGhvcml6ZWQgdXNlIG9u
bHkxMjAwBgNVBAMTKUVudHJ1c3QgUm9vdCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0
eSAtIEcyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuoS2ctueDGvi
mekwAad26jK4lUEaydphTlhyz/72gnm/c2EGCqUn2LNf00VOHHLWTjLycooP94MZ
0GqAgABFHrDH55q/ElcnHKNoLwqHvWprDl5l8xx31dSFjXAhtLMy54ui1YY5ArG4
0kfO5MlJxDun3vtUfVe+8OhuwnmyOgtV4lCYFjITXC94VsHClLPyWuQnmp8k18bs
0JslguPMwsRFxYyXegZrKhGfqQpuSDtv29QRGUL3jwe/9VNfnD70FyzmaaxOMkxi
d+q36OW7NLwZi66cUee3frVTsTMi5W3PcDwa+uKbZ7aD9I2lr2JMTeBYrGQ0EgP4
to2UYySkcQIDAQABo4IBDzCCAQswDgYDVR0PAQH/BAQDAgEGMBIGA1UdEwEB/wQI
MAYBAf8CAQEwMwYIKwYBBQUHAQEEJzAlMCMGCCsGAQUFBzABhhdodHRwOi8vb2Nz
cC5lbnRydXN0Lm5ldDAzBgNVHR8ELDAqMCigJqAkhiJodHRwOi8vY3JsLmVudHJ1
c3QubmV0L3Jvb3RjYTEuY3JsMDsGA1UdIAQ0MDIwMAYEVR0gADAoMCYGCCsGAQUF
BwIBFhpodHRwOi8vd3d3LmVudHJ1c3QubmV0L0NQUzAdBgNVHQ4EFgQUanImetAe
733nO2lR1GyNn5ASZqswHwYDVR0jBBgwFoAUaJDkZ6SmU4DHhmak8fdLQ/uEvW0w
DQYJKoZIhvcNAQELBQADggEBAGkzg/woem99751V68U+ep11s8zDODbZNKIoaBjq
HmnTvefQd9q4AINOSs9v0fHBIj905PeYSZ6btp7h25h3LVY0sag82f3Azce/BQPU
AsXx5cbaCKUTx2IjEdFhMB1ghEXveajGJpOkt800uGnFE/aRs8lFc3a2kvZ2Clvh
A0e36SlMkTIjN0qcNdh4/R0f5IOJJICtt/nP5F2l1HHEhVtwH9s/HAHrGkUmMRTM
Zb9n3srMM2XlQZHXN75BGpad5oqXnafOrE6aPb0BoGrZTyIAi0TVaWJ7LuvMuueS
fWlnPfy4fN5Bh9Bp6roKGHoalUOzeXEodm2h+1dK7E3IDhA=
-----END CERTIFICATE-----
---
Server certificate
subject=/C=AT/ST=Vienna/L=Vienna/O=Oesterreichischer Rundfunk/CN=*.orf.at
issuer=/C=US/O=Entrust, Inc./OU=See www.entrust.net/legal-terms/OU=(c) 2012 Entrust, Inc. - for authorized use only/CN=Entrust Certification Authority - L1K
---
No client certificate CA names sent
Peer signing digest: SHA512
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 5122 bytes and written 326 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: 02D8AE5CFD8DB652C678B5F49EFC82C02D9F101876D7DDD8928708C0C1A7CE98
    Session-ID-ctx: 
    Master-Key: C3F35F26F6E41CFF4C8D1205212631361FCDB13E0121BA4629A7F9709B4324D456BCC3AD164455927CBA315516BD91AB
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 300 (seconds)
    TLS session ticket:
    0000 - 33 2a b4 e9 ba b3 f2 fd-22 d1 3f 91 45 da 92 6f   3*......".?.E..o
    0010 - 3d 4f f9 d3 22 9b 71 8b-2a d8 e0 b5 09 a6 3e f4   =O..".q.*.....>.
    0020 - cd 94 57 64 3f dd 43 c5-76 b9 31 63 14 d6 46 18   ..Wd?.C.v.1c..F.
    0030 - b7 35 3c a1 d3 73 d2 26-aa 8f 50 81 76 98 6c 41   .5<..s.&..P.v.lA
    0040 - 1f 92 3c f5 04 a2 0c 3f-d2 81 fb b9 0b 6c b7 59   ..<....?.....l.Y
    0050 - 5b 35 e5 6f 6a 7e 79 f4-1a b6 9e 15 0e c3 48 3d   [5.oj~y.......H=
    0060 - 37 54 38 51 17 72 42 be-b0 4e a4 77 d8 38 e2 f9   7T8Q.rB..N.w.8..
    0070 - 7b 7f 45 14 92 2a 46 b6-09 03 95 9c cc 91 77 67   {.E..*F.......wg
    0080 - 9c cf 17 82 cc 9f 1d 99-15 34 e1 c9 39 60 90 a4   .........4..9`..
    0090 - 29 63 58 37 82 7c bf 53-a9 70 6b aa ed 61 e8 ce   )cX7.|.S.pk..a..
    00a0 - 0a b8 de b0 4b 3e d7 10-ed 0f b9 fd 43 89 95 5a   ....K>......C..Z
    00b0 - 2c 78 30 56 32 11 79 99-56 e5 c4 37 ad f8 83 a8   ,x0V2.y.V..7....

    Start Time: 1638766607
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: no
---
DONE