SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (82 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 185.229.118.98 |
Reverse IP lookup: | srv159.niagahoster.com. |
Nameserver: | ns1.niagahoster.com. |
Nameserver: | ns2.niagahoster.com. |
General Information
Common Name: | primatc.co.id |
SANs: | DNS:*.primatc.co.idDNS:primatc.co.id Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 4895d59764a39ab9fdaab2b8ad2d5241175 |
Not Before: | Dec 26, 2024 11:41:23 GMT |
Not After: | Mar 26, 2025 11:41:22 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Server: | LiteSpeed |
HSTS: | max-age=31536000; includeSubDomains; preload |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: primatc.co.id
Decode this certificate for verbose information → launchSubject Common Name | primatc.co.id |
Issuer Common Name | R11 |
Issuer Organization | Let's Encrypt |
Not Before: | Dec 26, 2024 11:41:23 GMT |
Not After: | Mar 26, 2025 11:41:22 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 4895d59764a39ab9fdaab2b8ad2d5241175 |
SHA1 Fingerprint: | 87:C6:B0:79:FC:70:6F:06:C4:01:3B:E2:19:01:00:93:A3:AC:15:B3 |
MD5 Fingerprint: | 01:C6:F8:12:11:74:99:5D:AC:4D:A9:2D:0B:BA:05:54 |
Certificate # 2 - Common Name: R11
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R11 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Mar 13, 2024 00:00:00 GMT |
Not After: | Mar 12, 2027 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 8a7d3e13d62f30ef2386bd29076b34f8 |
SHA1 Fingerprint: | 69:6D:B3:AF:0D:FF:C1:7E:65:C6:A2:0D:92:5C:5A:7B:D2:4D:EC:7E |
MD5 Fingerprint: | 2F:AC:04:55:31:47:F4:6A:49:DF:9B:4E:BE:A6:DF:43 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R11 verify return:1 depth=0 CN = primatc.co.id verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: C = US, O = Let's Encrypt, CN = R11 Produced At: Jan 1 03:20:00 2025 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 1A52B9B459E4C33398217E866D4BBD8A3BD667CE Issuer Key Hash: 08B9113BA5D08518B4EA0FA0AD9F861E8EFC3827 Serial Number: 04895D59764A39AB9FDAAB2B8AD2D5241175 Cert Status: good This Update: Jan 1 03:20:00 2025 GMT Next Update: Jan 8 03:19:58 2025 GMT Signature Algorithm: sha256WithRSAEncryption b5:2f:80:6f:92:0f:ce:6f:13:c4:52:e4:25:47:00:09:03:02: 7d:8b:f3:88:fd:12:38:0e:f7:24:a8:95:7b:b8:19:72:67:58: d5:ac:9b:02:a8:64:ec:9e:c0:dc:eb:96:bc:ce:2c:72:39:d3: 97:cf:0b:c9:63:3a:01:ee:ed:fa:b3:78:4b:63:70:86:f7:e4: a4:86:8f:06:38:4d:43:e5:93:88:0d:fd:7b:51:16:f6:b1:d3: 56:1a:67:77:49:5b:04:a3:1e:ea:ae:4c:fe:96:b4:8e:cb:b6: 9b:e1:b9:c5:70:ee:07:46:11:9b:db:ce:b9:ec:26:79:91:02: 44:77:39:e4:3f:12:8f:fd:69:5e:de:c0:00:3b:f0:43:a3:fa: 24:16:35:95:c4:a2:39:52:65:dc:80:99:00:ca:51:97:6a:68: ea:cb:af:b6:13:c9:12:d7:59:5d:91:dd:fd:ec:8d:ef:21:b5: 4e:24:3c:db:b7:a4:e0:4b:cb:79:59:15:40:b3:2d:c1:6e:f0: db:33:a2:27:75:d6:1f:04:cd:d1:4e:a0:64:d4:0e:58:b7:f9: 6e:a2:8b:5e:91:98:c9:71:9a:8e:c8:ee:40:34:fc:e7:8d:7d: bf:3d:66:39:b3:33:47:1b:0c:00:d3:d3:6c:d5:13:5b:41:fe: 4c:43:83:d8 ====================================== --- Certificate chain 0 s:CN = primatc.co.id i:C = US, O = Let's Encrypt, CN = R11 -----BEGIN CERTIFICATE----- MIIE+jCCA+KgAwIBAgISBIldWXZKOauf2qsritLVJBF1MA0GCSqGSIb3DQEBCwUA MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD EwNSMTEwHhcNMjQxMjI2MTE0MTIzWhcNMjUwMzI2MTE0MTIyWjAYMRYwFAYDVQQD Ew1wcmltYXRjLmNvLmlkMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA oTGhHUVzZy9vJrKNcGI1/jaT0LiYerrxTkmWJ23WGr1BxlCbfJjJJ7MZ25kgL7g0 Jzjrta70oO54KufmfehfADP8INSaXrttHKwdAy09ZTAZ5tVMX4L2OixPKyGsEI2+ ldxEdBq37SHmU3ljcg+VIzIHeiKx2MI3qw2YcSh5Py1sBgKwY+KMdFKOOdwK49nK 2LzZsjxgqnOUxyTc+aVEVIziH+y+7awdvMueKaxPkjzEdKZhcqv6t3iuI+typnl8 2A3Pj+jNDhctaiKd/TjhbExULJf6vsBQeSBKSDJGMPr/BinrDBWaCCSJfy0YCFaQ jZSiL8Qs0+1A/+PwDKP4AQIDAQABo4ICITCCAh0wDgYDVR0PAQH/BAQDAgWgMB0G A1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAMBgNVHRMBAf8EAjAAMB0GA1Ud DgQWBBRa7tViwzIwnTATaY7tA5XFryquMzAfBgNVHSMEGDAWgBTFz0ak6vTDwHps lcQtsF6SLybjuTBXBggrBgEFBQcBAQRLMEkwIgYIKwYBBQUHMAGGFmh0dHA6Ly9y MTEuby5sZW5jci5vcmcwIwYIKwYBBQUHMAKGF2h0dHA6Ly9yMTEuaS5sZW5jci5v cmcvMCkGA1UdEQQiMCCCDyoucHJpbWF0Yy5jby5pZIINcHJpbWF0Yy5jby5pZDAT BgNVHSAEDDAKMAgGBmeBDAECATCCAQMGCisGAQQB1nkCBAIEgfQEgfEA7wB2AOCS s/wMHcjnaDYf3mG5lk0KUngZinLWcsSwTaVtb1QEAAABlAL7CIIAAAQDAEcwRQIh ALf3VzGC+YO71Yp8caiWwLT4bvhbGJmEcnxXunQ0FatcAiACkGaYUWgYCpjLZgrj AyFvmzVgQbaMo5UcGvaMBvDwvQB1AM8RVu7VLnyv84db2Wkum+kacWdKsBfsrAHS W3fOzDsIAAABlAL7CKkAAAQDAEYwRAIgQeOPQ8fpqIfyw72VK+FgpdtWpt/06nA8 iEaEcvk0evQCIHbHJ5fvJxzFKLkQZV5CNpTAvP9g7wxpbk0rRYY+GpGOMA0GCSqG SIb3DQEBCwUAA4IBAQBYKeeQgAbL2WOa69x/v8jr8F4S7CclDdaADNEL6vDDpiJw ywcAUH0gfBK4EEyn9NyElLGkSJYbVKgsmWLRkLFc1O/XTFmcQhH/QlroNE9Z8Tuw hcKZA5QRQO5IGI7H+zIN+VHl5/VYTnIThpxP4JnUTvZPpfmVlwUy8QDS+fAVHyfN x2+8mhWPnQJDAHhK5ZBoTT/AuCfUgDhKNmacidNQZ0wPsrOPRrrc+uXqNUHYbGGi 4WZtBTWuUI+xG2+YePVUAyKmz7jMzmz3USmHJwjd5vmo6d9hCwChrom7lOGu8DSF nhkT4linXV8MiLpAwF+TVB0A64kfXpTPcqZo3nbF -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R11 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFBjCCAu6gAwIBAgIRAIp9PhPWLzDvI4a9KQdrNPgwDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjQwMzEzMDAwMDAw WhcNMjcwMzEyMjM1OTU5WjAzMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDEMMAoGA1UEAxMDUjExMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB CgKCAQEAuoe8XBsAOcvKCs3UZxD5ATylTqVhyybKUvsVAbe5KPUoHu0nsyQYOWcJ DAjs4DqwO3cOvfPlOVRBDE6uQdaZdN5R2+97/1i9qLcT9t4x1fJyyXJqC4N0lZxG AGQUmfOx2SLZzaiSqhwmej/+71gFewiVgdtxD4774zEJuwm+UE1fj5F2PVqdnoPy 6cRms+EGZkNIGIBloDcYmpuEMpexsr3E+BUAnSeI++JjF5ZsmydnS8TbKF5pwnnw SVzgJFDhxLyhBax7QG0AtMJBP6dYuC/FXJuluwme8f7rsIU5/agK70XEeOtlKsLP Xzze41xNG/cLJyuqC0J3U095ah2H2QIDAQABo4H4MIH1MA4GA1UdDwEB/wQEAwIB hjAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwEwEgYDVR0TAQH/BAgwBgEB /wIBADAdBgNVHQ4EFgQUxc9GpOr0w8B6bJXELbBeki8m47kwHwYDVR0jBBgwFoAU ebRZ5nu25eQBc4AIiMgaWPbpm24wMgYIKwYBBQUHAQEEJjAkMCIGCCsGAQUFBzAC hhZodHRwOi8veDEuaS5sZW5jci5vcmcvMBMGA1UdIAQMMAowCAYGZ4EMAQIBMCcG A1UdHwQgMB4wHKAaoBiGFmh0dHA6Ly94MS5jLmxlbmNyLm9yZy8wDQYJKoZIhvcN AQELBQADggIBAE7iiV0KAxyQOND1H/lxXPjDj7I3iHpvsCUf7b632IYGjukJhM1y v4Hz/MrPU0jtvfZpQtSlET41yBOykh0FX+ou1Nj4ScOt9ZmWnO8m2OG0JAtIIE38 01S0qcYhyOE2G/93ZCkXufBL713qzXnQv5C/viOykNpKqUgxdKlEC+Hi9i2DcaR1 e9KUwQUZRhy5j/PEdEglKg3l9dtD4tuTm7kZtB8v32oOjzHTYw+7KdzdZiw/sBtn UfhBPORNuay4pJxmY/WrhSMdzFO2q3Gu3MUBcdo27goYKjL9CTF8j/Zz55yctUoV aneCWs/ajUX+HypkBTA+c8LGDLnWO2NKq0YD/pnARkAnYGPfUDoHR9gVSp/qRx+Z WghiDLZsMwhN1zjtSC0uBWiugF3vTNzYIEFfaPG7Ws3jDrAMMYebQ95JQ+HIBD/R PBuHRTBpqKlyDnkSHDHYPiNX3adPoPAcgdF3H2/W0rmoswMWgTlLn1Wu0mrks7/q pdWfS6PJ1jty80r2VKsM/Dj3YIDfbjXKdaFU5C+8bhfJGqU3taKauuz0wHVGT3eo 6FlWkWYtbt4pgdamlwVeZEW+LM7qZEJEsMNPrfC03APKmZsJgpWCDWOKZvkZcvjV uYkQ4omYCTX5ohy+knMjdOmdH9c7SpqEWBDC86fiNex+O0XOMEZSa8DA -----END CERTIFICATE----- --- Server certificate subject=CN = primatc.co.id issuer=C = US, O = Let's Encrypt, CN = R11 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3575 bytes and written 404 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE