Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (157 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 104.21.74.106
Reverse IP lookup: No records found
Nameserver: aaron.ns.cloudflare.com.
Nameserver: marissa.ns.cloudflare.com.

General Information

Common Name: sni.cloudflaressl.com
SANs: DNS:sni.cloudflaressl.comDNS:*.paintballreal.comDNS:paintballreal.com Total number of SANs: 3
Organization: Cloudflare, Inc.
Locality: San Francisco
Signature Algorithm: ecdsa-with-SHA256
Key Type: ECDSA (secp256r1)
Key size: 256 bits
Serial Number: 345721b22dfaf114055ce63ab689534
Not Before: Mar 07, 2022 00:00:00 GMT
Not After: Mar 07, 2023 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: cloudflare
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: sni.cloudflaressl.com

Decode this certificate for verbose information →
Subject Common Name sni.cloudflaressl.com
Subject Organization Cloudflare, Inc.
Issuer Common Name Cloudflare Inc ECC CA-3
Issuer Organization Cloudflare, Inc.
Not Before: Mar 07, 2022 00:00:00 GMT
Not After: Mar 07, 2023 23:59:59 GMT
Signature Algorithm: ecdsa-with-SHA256
Serial Number: 345721b22dfaf114055ce63ab689534
SHA1 Fingerprint: BD:22:1D:39:55:61:D4:AD:33:D8:32:64:C4:1A:B7:D4:DF:46:ED:34
MD5 Fingerprint: 99:13:66:1B:23:35:D5:25:CF:7E:2C:E6:B8:9D:58:B3

Certificate # 2 - Common Name: Cloudflare Inc ECC CA-3

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Cloudflare Inc ECC CA-3
Subject Organization Cloudflare, Inc.
Issuer Common Name Baltimore CyberTrust Root
Issuer Organization Baltimore
Not Before: Jan 27, 2020 12:48:08 GMT
Not After: Dec 31, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a3787645e5fb48c224efd1bed140c3c
SHA1 Fingerprint: B3:DD:76:06:D2:B5:A8:B4:A1:37:71:DB:EC:C9:EE:1C:EC:AF:A3:8A
MD5 Fingerprint: 34:16:CA:75:15:17:B8:39:1C:D7:59:FA:BB:8E:C9:19

OpenSSL Handshake

depth=2 C = IE, O = Baltimore, OU = CyberTrust, CN = Baltimore CyberTrust Root
verify return:1
depth=1 C = US, O = "Cloudflare, Inc.", CN = Cloudflare Inc ECC CA-3
verify return:1
depth=0 C = US, ST = California, L = San Francisco, O = "Cloudflare, Inc.", CN = sni.cloudflaressl.com
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: A5CE37EAEBB0750E946788B445FAD9241087961F
    Produced At: Sep 28 09:36:41 2022 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 12D78B402C356206FA827F8ED8922411B4ACF504
      Issuer Key Hash: A5CE37EAEBB0750E946788B445FAD9241087961F
      Serial Number: 0345721B22DFAF114055CE63AB689534
    Cert Status: good
    This Update: Sep 28 09:21:02 2022 GMT
    Next Update: Oct  5 08:36:02 2022 GMT

    Signature Algorithm: ecdsa-with-SHA256
         30:45:02:21:00:bd:ea:80:ba:21:c0:00:11:4a:2c:65:92:d4:
         7a:0a:73:d3:8b:10:b9:98:f4:e9:5b:96:f1:1f:af:75:80:c1:
         6e:02:20:37:39:bb:08:aa:62:c4:83:65:a5:67:e2:55:1f:3a:
         77:d2:3a:6d:3d:01:f3:81:c2:c5:e8:98:8d:31:f8:ae:20
======================================
---
Certificate chain
 0 s:/C=US/ST=California/L=San Francisco/O=Cloudflare, Inc./CN=sni.cloudflaressl.com
   i:/C=US/O=Cloudflare, Inc./CN=Cloudflare Inc ECC CA-3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=Cloudflare, Inc./CN=Cloudflare Inc ECC CA-3
   i:/C=IE/O=Baltimore/OU=CyberTrust/CN=Baltimore CyberTrust Root
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/C=US/ST=California/L=San Francisco/O=Cloudflare, Inc./CN=sni.cloudflaressl.com
issuer=/C=US/O=Cloudflare, Inc./CN=Cloudflare Inc ECC CA-3
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 3088 bytes and written 296 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-ECDSA-CHACHA20-POLY1305
Server public key is 256 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-ECDSA-CHACHA20-POLY1305
    Session-ID: 77603ABC1A9B066329E499B1AA42CDA19E6D4F3DA14B580793EBF1BC896E9C51
    Session-ID-ctx: 
    Master-Key: 91484F352E35FA31C5D725ACC77E3AA3BD117D96D30931B4628BF5B394313B59FA5286034ECF92FAF19261051AF9A50E
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 64800 (seconds)
    TLS session ticket:
    0000 - 95 93 f5 41 c0 93 46 99-87 db 65 7e ba c7 65 a5   ...A..F...e~..e.
    0010 - 77 03 13 b2 3b 68 a2 97-ae 28 57 59 5d 14 42 42   w...;h...(WY].BB
    0020 - cd 70 37 df 40 12 72 62-53 1c 12 e3 e1 7f 59 ab   .p7.@.rbS.....Y.
    0030 - 16 99 a4 08 33 83 79 e2-de b4 2e e3 c9 f3 bb d8   ....3.y.........
    0040 - 87 b4 26 6b a6 27 2f 79-74 59 e3 7e 60 23 ab 9a   ..&k.'/ytY.~`#..
    0050 - 3e 62 7c 4a 47 4e 53 7f-9b 1b 11 f0 6a 14 08 7e   >b|JGNS.....j..~
    0060 - 30 42 9a aa 47 a8 ed c2-18 a7 a1 13 39 bc 85 8b   0B..G.......9...
    0070 - 26 d4 2a 7f 3a 73 ee 1b-f1 39 a8 18 34 4c cf 12   &.*.:s...9..4L..
    0080 - 5a 39 ae 89 df ba 4c 20-bc db 72 19 f7 bd c2 fe   Z9....L ..r.....
    0090 - 21 b7 89 c9 c7 00 99 23-ab 9f 46 29 fe 94 23 da   !......#..F)..#.
    00a0 - 17 9d ef 6e 0d e8 1f 1b-0d 27 76 7f 6a 2a cb 2b   ...n.....'v.j*.+
    00b0 - 39 35 17 1c db 9d 6d 6a-e4 da 0f 50 b9 76 7a 61   95....mj...P.vza

    Start Time: 1664655971
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE