Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (370 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 194.232.104.3
Reverse IP lookup: www.orf.at.
Nameserver: ns3.apa.at.
Nameserver: ns4.apa.net.

General Information

Common Name: *.orf.at
SANs: DNS:*.orf.atDNS:orf.at Total number of SANs: 2
Organization: Oesterreichischer Rundfunk
Locality: Vienna
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 78ae7623fb6fa03300d57499f11b707c
Not Before: Apr 02, 2024 10:37:43 GMT
Not After: Apr 30, 2025 10:37:42 GMT
Number of certs: 3
Revocation Status: good
OCSP Stapling: Not Supported
Server: Apache
HSTS: max-age=2592000
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.orf.at

Decode this certificate for verbose information →
Subject Common Name *.orf.at
Subject Organization Oesterreichischer Rundfunk
Issuer Common Name Entrust Certification Authority - L1K
Issuer Organization Entrust, Inc.
Not Before: Apr 02, 2024 10:37:43 GMT
Not After: Apr 30, 2025 10:37:42 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 78ae7623fb6fa03300d57499f11b707c
SHA1 Fingerprint: 2F:BB:10:1D:79:E9:47:91:0B:D8:82:A3:D2:B7:F3:82:49:59:8A:6B
MD5 Fingerprint: 7D:47:74:61:22:DE:A7:45:36:96:93:80:8A:88:AC:B6

Certificate # 2 - Common Name: Entrust Certification Authority - L1K

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Entrust Certification Authority - L1K
Subject Organization Entrust, Inc.
Issuer Common Name Entrust Root Certification Authority - G2
Issuer Organization Entrust, Inc.
Not Before: Oct 05, 2015 19:13:56 GMT
Not After: Dec 05, 2030 19:43:56 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: ee94cc30000000051d37785
SHA1 Fingerprint: F2:1C:12:F4:6C:DB:6B:2E:16:F0:9F:94:19:CD:FF:32:84:37:B2:D7
MD5 Fingerprint: 35:94:F5:3C:2A:77:54:47:EB:95:67:4B:FF:6C:F2:8B

Certificate # 3 - Common Name: Entrust Root Certification Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Entrust Root Certification Authority - G2
Subject Organization Entrust, Inc.
Issuer Common Name Entrust Root Certification Authority - G2
Issuer Organization Entrust, Inc.
Not Before: Jul 07, 2009 17:25:54 GMT
Not After: Dec 07, 2030 17:55:54 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 4a538c28
SHA1 Fingerprint: 8C:F4:27:FD:79:0C:3A:D1:66:06:8D:E8:1E:57:EF:BB:93:22:72:D4
MD5 Fingerprint: 4B:E2:C9:91:96:65:0C:F4:0E:5A:93:92:A0:0A:FE:B2

OpenSSL Handshake

depth=2 C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
verify return:1
depth=1 C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
verify return:1
depth=0 C = AT, ST = Vienna, L = Vienna, O = Oesterreichischer Rundfunk, CN = *.orf.at
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:C = AT, ST = Vienna, L = Vienna, O = Oesterreichischer Rundfunk, CN = *.orf.at
   i:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
-----BEGIN CERTIFICATE-----
MIIGgTCCBWmgAwIBAgIQeK52I/tvoDMA1XSZ8RtwfDANBgkqhkiG9w0BAQsFADCB
ujELMAkGA1UEBhMCVVMxFjAUBgNVBAoTDUVudHJ1c3QsIEluYy4xKDAmBgNVBAsT
H1NlZSB3d3cuZW50cnVzdC5uZXQvbGVnYWwtdGVybXMxOTA3BgNVBAsTMChjKSAy
MDEyIEVudHJ1c3QsIEluYy4gLSBmb3IgYXV0aG9yaXplZCB1c2Ugb25seTEuMCwG
A1UEAxMlRW50cnVzdCBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEwxSzAeFw0y
NDA0MDIxMDM3NDNaFw0yNTA0MzAxMDM3NDJaMGcxCzAJBgNVBAYTAkFUMQ8wDQYD
VQQIEwZWaWVubmExDzANBgNVBAcTBlZpZW5uYTEjMCEGA1UEChMaT2VzdGVycmVp
Y2hpc2NoZXIgUnVuZGZ1bmsxETAPBgNVBAMMCCoub3JmLmF0MIIBIjANBgkqhkiG
9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwdHqHkI2rMQW45TEnc/JIubqKpUahMcuxzbw
ALujewMydJkSISe4+2sqR+C2+0tebDYjdB65FG6UuBNN1KTpECiJot3VAiTp6SR1
mQA1eWqSQpNjY+z997clPW9RC02tPD43yTClrZbbMakZWQfew5eEado/6Cv4dXb4
LUBmDMdxZn/TmT3xU5lb3wUFIUDdMjdsgR1vmPTc/5JtsgqQgQpN/hBUvTVUljMn
llCBnYiLKHEWNE0zUiXCGHxWJueixSwrCWyN3to3hPzPxS7oGNScBZ7a8OF9gJ8n
Mi8t0b34d2D13bzJOcdOKJOE2CyXAYLznahPDJKibVKivevnAQIDAQABo4IC0zCC
As8wDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUjP/zW2k5yQdpJFHjT9qBZ3Q23Ncw
HwYDVR0jBBgwFoAUgqJwdN28Uz/Pe9T3zX+nYMYKTL8waAYIKwYBBQUHAQEEXDBa
MCMGCCsGAQUFBzABhhdodHRwOi8vb2NzcC5lbnRydXN0Lm5ldDAzBggrBgEFBQcw
AoYnaHR0cDovL2FpYS5lbnRydXN0Lm5ldC9sMWstY2hhaW4yNTYuY2VyMDMGA1Ud
HwQsMCowKKAmoCSGImh0dHA6Ly9jcmwuZW50cnVzdC5uZXQvbGV2ZWwxay5jcmww
GwYDVR0RBBQwEoIIKi5vcmYuYXSCBm9yZi5hdDAOBgNVHQ8BAf8EBAMCBaAwHQYD
VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMBMGA1UdIAQMMAowCAYGZ4EMAQIC
MIIBfQYKKwYBBAHWeQIEAgSCAW0EggFpAWcAdgBOdaMnXJoQwzhbbNTfP1LrHfDg
jhuNacCx+mSxYpo53wAAAY6eYuDuAAAEAwBHMEUCIAe8HSXNrZ5aL0KJeRrLCwWo
XyL/4SN7qF12pNxM4EG/AiEA6LdO2TAPYPtuQJIt0VUd8A1n6X0Y0ninOMV8yoPq
XhEAdgDm0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAY6eYuELAAAE
AwBHMEUCIQCk875QFdNs2W/4e4zhmGPV+pADZ8XPaRQpJabmaju8eAIgcJkY4ioE
MWJ6BKJi8Jrk6g2U3OzG+FMx2zQfW/hr6VkAdQCi4wrkRe+9rZt+OO1HZ3dT14Jb
hJTXK14bLMS5UKRH5wAAAY6eYuEMAAAEAwBGMEQCIHmhpdFlpmPApNcjiQ+J3xKG
+g2aJwlPCzb7sW3ofu1NAiA9DbDkbHOugOpbqZLcDGPoP9hc1AwcgRGFJwvNoJ7h
+DANBgkqhkiG9w0BAQsFAAOCAQEAKwdBUr0pgyAw/H85gFR1omMvifH2jlCWU1kr
ozKZK7R4MR4GMyiDXkUGDr1928GqSyk42DuAFA8WJ9Kn78e1zoqsjnb+JTfMA/Pw
ewYqJW7jpOTPXPrZjZUVeEOVJMatJXIAaeFtsMtN2tme/mwbyqY0SaP7pcIRKfV3
0H7qQnqwoMddAsbtkaz2cRxOnZgpn1klCQmCJzYNaJJhS/GPht4Xbwk2SU78ZDXk
jQRGV2PrGhA+gBhjYB+H0N5W2CxwdT14CvEFbtWMm/jpxpUHkJgBVJLCRZB4pKJL
c4aB5he7rPm2Nz5kuFm+z8zZgYKfbNGQFsf5bRSgkhc5YwwMJA==
-----END CERTIFICATE-----
 1 s:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K
   i:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
   i:C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2009 Entrust, Inc. - for authorized use only", CN = Entrust Root Certification Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = AT, ST = Vienna, L = Vienna, O = Oesterreichischer Rundfunk, CN = *.orf.at

issuer=C = US, O = "Entrust, Inc.", OU = See www.entrust.net/legal-terms, OU = "(c) 2012 Entrust, Inc. - for authorized use only", CN = Entrust Certification Authority - L1K

---
No client certificate CA names sent
Peer signing digest: SHA512
Peer signature type: RSA
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 4740 bytes and written 410 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: A94490B8E38A1E7267E2725B0459201167408AF5257BD4974C7434B78864B484
    Session-ID-ctx: 
    Master-Key: B4F8E7C2D84540BED7F5D22D74903203B7E33F354C558446FE32FEBB84D5C4239D4B5AD536CC9F20A6F93A66CC5CC676
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 300 (seconds)
    TLS session ticket:
    0000 - 4d 98 ae 5e 8b 55 fd 7f-38 8c 1a df 81 05 a6 24   M..^.U..8......$
    0010 - 0c 63 f6 a9 04 2a f8 82-eb d6 04 8a f2 96 9e eb   .c...*..........
    0020 - f4 5a e7 ad d7 c4 88 36-b5 01 ca 63 ca 4c 03 d9   .Z.....6...c.L..
    0030 - b8 0a 41 1f cf 06 6e a2-9a dc 9e cd 5d a0 ba f5   ..A...n.....]...
    0040 - be 37 4d 81 94 c9 c9 fd-9b f4 47 fe 84 a7 5e 1b   .7M.......G...^.
    0050 - c9 fd 2d b0 7e ba 98 84-1a 96 9e a4 00 b0 77 ba   ..-.~.........w.
    0060 - ba 36 ee 2d b9 82 c1 a1-a7 b7 b6 62 4b 7b 67 3e   .6.-.......bK{g>
    0070 - 2f d9 c4 73 d1 90 17 68-7c be 1a 78 57 61 5c bf   /..s...h|..xWa\.
    0080 - 48 8c a9 f5 3c e0 77 42-05 d5 05 47 1b 3a 20 63   H...<.wB...G.: c
    0090 - 17 cf 7a e1 f2 be 51 9c-96 a1 b9 23 6f dc b5 77   ..z...Q....#o..w
    00a0 - 41 a2 b3 dd b8 28 d2 c1-39 a6 f6 f2 68 24 75 a2   A....(..9...h$u.
    00b0 - 91 c3 6b 00 f4 5c df e3-51 1d eb 6a cf a1 a6 36   ..k..\..Q..j...6
    00c0 - 75 4a 1c 1b 10 56 77 fc-a9 e0 6a 78 83 3c f6 12   uJ...Vw...jx.<..

    Start Time: 1714007868
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE