Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: Yes (expired 312 days ago)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: The order of certificates is invalid or certificates cannot build certification path
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function

DNS Information

Resolves To: 18.173.121.23
Reverse IP lookup: server-18-173-121-23.sfo53.r.cloudfront.net.
Nameserver: ns-1057.awsdns-04.org.
Nameserver: ns-119.awsdns-14.com.
Nameserver: ns-1607.awsdns-08.co.uk.
Nameserver: ns-986.awsdns-59.net.

General Information

Common Name: *.reflexion.net
SANs: DNS:*.reflexion.netDNS:reflexion.net Total number of SANs: 2
Organization: SOPHOS LIMITED
Locality: Abingdon
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 5a7a63f58a9bef6a7114e626
Not Before: May 11, 2022 16:21:02 GMT
Not After: Jun 12, 2023 16:21:01 GMT
Number of certs: 4
Revocation Status: This check is not applicable to expired certificates
OCSP Stapling: Not Supported
Server: Not Provided
HSTS: max-age=31536000 ; includeSubDomains ; preload
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.reflexion.net

Decode this certificate for verbose information →
Subject Common Name *.reflexion.net
Subject Organization SOPHOS LIMITED
Issuer Common Name GlobalSign RSA OV SSL CA 2018
Issuer Organization GlobalSign nv-sa
Not Before: May 11, 2022 16:21:02 GMT
Not After: Jun 12, 2023 16:21:01 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 5a7a63f58a9bef6a7114e626
SHA1 Fingerprint: AB:AD:91:CD:A5:1D:30:65:16:1B:44:8A:A0:56:19:DB:2B:98:E8:3B
MD5 Fingerprint: 82:38:45:C9:97:10:D6:50:E2:B1:15:35:D6:8E:12:44

Certificate # 2 - Common Name: GlobalSign

Decode this certificate for verbose information →
In place? No, this certificate does not directly certify the preceding one
Subject Common Name GlobalSign
Subject Organization GlobalSign
Issuer Common Name GlobalSign Root CA
Issuer Organization GlobalSign nv-sa
Not Before: Sep 19, 2018 00:00:00 GMT
Not After: Jan 28, 2028 12:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 1ee5f169dff97352b6465d66a
SHA1 Fingerprint: 0B:BF:AB:97:05:95:95:E8:D1:EC:48:E8:9E:B8:65:7C:0E:5A:AE:71
MD5 Fingerprint: 58:BF:B0:EA:CF:17:E2:D0:A6:5A:4D:06:10:42:C3:BF

Certificate # 3 - Common Name: GlobalSign RSA OV SSL CA 2018

Decode this certificate for verbose information →
In place? No, this certificate does not directly certify the preceding one
Subject Common Name GlobalSign RSA OV SSL CA 2018
Subject Organization GlobalSign nv-sa
Issuer Common Name GlobalSign
Issuer Organization GlobalSign
Not Before: Nov 21, 2018 00:00:00 GMT
Not After: Nov 21, 2028 00:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 1ee5f221dfc623bd4333a8557
SHA1 Fingerprint: DF:E8:30:23:06:2B:99:76:82:70:8B:4E:AB:8E:81:9A:FF:5D:97:75
MD5 Fingerprint: A7:5D:8B:21:09:11:EE:17:3E:FD:25:E1:E0:0E:D6:FD

Certificate # 4 - Common Name: GlobalSign Root CA

Decode this certificate for verbose information →
In place? No, this certificate does not directly certify the preceding one
Subject Common Name GlobalSign Root CA
Subject Organization GlobalSign nv-sa
Issuer Common Name GlobalSign Root CA
Issuer Organization GlobalSign nv-sa
Not Before: Sep 01, 1998 12:00:00 GMT
Not After: Jan 28, 2028 12:00:00 GMT
Signature Algorithm: sha1WithRSAEncryption
Serial Number: 40000000001154b5ac394
SHA1 Fingerprint: B1:BC:96:8B:D4:F4:9D:62:2A:A8:9A:81:F2:15:01:52:A4:1D:82:9C
MD5 Fingerprint: 3E:45:52:15:09:51:92:E1:B7:5D:37:9F:B1:87:29:8A

OpenSSL Handshake

depth=3 C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
verify return:1
depth=2 OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
verify return:1
depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
verify return:1
depth=0 C = GB, ST = Oxfordshire, L = Abingdon, O = SOPHOS LIMITED, CN = *.reflexion.net
verify error:num=10:certificate has expired
notAfter=Jun 12 16:21:01 2023 GMT
verify return:1
depth=0 C = GB, ST = Oxfordshire, L = Abingdon, O = SOPHOS LIMITED, CN = *.reflexion.net
notAfter=Jun 12 16:21:01 2023 GMT
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:C = GB, ST = Oxfordshire, L = Abingdon, O = SOPHOS LIMITED, CN = *.reflexion.net
   i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
-----BEGIN CERTIFICATE-----
MIIGmDCCBYCgAwIBAgIMWnpj9Yqb72pxFOYmMA0GCSqGSIb3DQEBCwUAMFAxCzAJ
BgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWduIG52LXNhMSYwJAYDVQQDEx1H
bG9iYWxTaWduIFJTQSBPViBTU0wgQ0EgMjAxODAeFw0yMjA1MTExNjIxMDJaFw0y
MzA2MTIxNjIxMDFaMGkxCzAJBgNVBAYTAkdCMRQwEgYDVQQIEwtPeGZvcmRzaGly
ZTERMA8GA1UEBxMIQWJpbmdkb24xFzAVBgNVBAoTDlNPUEhPUyBMSU1JVEVEMRgw
FgYDVQQDDA8qLnJlZmxleGlvbi5uZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw
ggEKAoIBAQDDkdLXDMmftoYKfwF/1hfGSIKngpsYbm2YQl92mF+MWb/TxNgyuvX9
/lh+YhPYStIIvjcmSmDwToWhxYQFdC0rGlcIjsOsV6iaVAtm6W6QJo5fviEoBK9Z
p81PPNpWmq3xuUuHjw+17l2Y+lWxIo44cM+pGZM8XnqOg325JMKXxlHetVThGkRg
PC8mNmiMRoPg/ve6AbriJjFYjjSNNncrhwwyDDI27Cb4vOo+qeHQabyk2VphSwiw
Bx4kqtS4kwCjzz+Vai4rqZyaTx5O3uxNp5XBU2FU7yGQXdwuiLSAWsSAUJZKlA9m
oZBkJxeIC1RRhgalYSN0bEusDTRpB9+nAgMBAAGjggNXMIIDUzAOBgNVHQ8BAf8E
BAMCBaAwgY4GCCsGAQUFBwEBBIGBMH8wRAYIKwYBBQUHMAKGOGh0dHA6Ly9zZWN1
cmUuZ2xvYmFsc2lnbi5jb20vY2FjZXJ0L2dzcnNhb3Zzc2xjYTIwMTguY3J0MDcG
CCsGAQUFBzABhitodHRwOi8vb2NzcC5nbG9iYWxzaWduLmNvbS9nc3JzYW92c3Ns
Y2EyMDE4MFYGA1UdIARPME0wQQYJKwYBBAGgMgEUMDQwMgYIKwYBBQUHAgEWJmh0
dHBzOi8vd3d3Lmdsb2JhbHNpZ24uY29tL3JlcG9zaXRvcnkvMAgGBmeBDAECAjAJ
BgNVHRMEAjAAMD8GA1UdHwQ4MDYwNKAyoDCGLmh0dHA6Ly9jcmwuZ2xvYmFsc2ln
bi5jb20vZ3Nyc2FvdnNzbGNhMjAxOC5jcmwwKQYDVR0RBCIwIIIPKi5yZWZsZXhp
b24ubmV0gg1yZWZsZXhpb24ubmV0MB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEF
BQcDAjAfBgNVHSMEGDAWgBT473/yzXhnqN5vjySNiPGHAwKz6zAdBgNVHQ4EFgQU
v321Xk2p2BVGlTFYKEvBlZOmdLUwggGABgorBgEEAdZ5AgQCBIIBcASCAWwBagB3
AOg+0No+9QY1MudXKLyJa8kD08vREWvs62nhd31tBr1uAAABgLPshbQAAAQDAEgw
RgIhAIHcWZq3FrhU8sIhP5Wx1yILhwX5o0X/x3ISYLCwo52YAiEA+c2+y7c4nehy
1zapjbfGVgFSLUQGrVrKPGVuob2hX0AAdwBvU3asMfAxGdiZAKRRFf93FRwR2QLB
ACkGjbIImjfZEwAAAYCz7IVEAAAEAwBIMEYCIQC+O8jjORoiLB65ENtWeG3k+RGZ
7uSMhplgmQQcFFbyHAIhAMSFNSKN8c+6gasFXJQEZXE4kSu9uIFFb4wPz+tpWs87
AHYAs3N3B+GEUPhjhtYFqdwRCUp5LbFnDAuH3PADDnk2pZoAAAGAs+yFJAAABAMA
RzBFAiAqa0e9csy1YKL6Y6RaLAEAV18Uj2Xp5PpEtngv6dwTDwIhAL2P+coWqeeF
O1YvCQt1uAz/tVknQwurAUiRC53Pd6BfMA0GCSqGSIb3DQEBCwUAA4IBAQBjghrC
1OzBigznyYAJAhambKUXhH450xu2dYPUwG3ryTrsleN5jxPuN/PXGBQUHVYqZBcQ
s2nI36PyQ3lqZSa4eWHLea0BswDHNefdm+GNWVjTGRwRKY0v3Pa8MOJgQu1PAgez
n0iqNmE5agQiuZNq15Xw6STZpjorrf4S681/2zp8b0IWldzE3letfoRM+PI4iJOP
CS5qpg73FDzowa5lkh+7+HPEEXe14sHyN9GN/6URC/qFKei4qDdKdbKqFxmiRfzt
c+W/FddE/NUzf9UPNxtzBC62+p94NebqUK1L7tuq73UDdPi1zNaksyA3lclotEKd
fkOMbnD9tK8r/CT+
-----END CERTIFICATE-----
 1 s:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
   i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
   i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 3 s:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
   i:C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
-----BEGIN CERTIFICATE-----
MIIDdTCCAl2gAwIBAgILBAAAAAABFUtaw5QwDQYJKoZIhvcNAQEFBQAwVzELMAkG
A1UEBhMCQkUxGTAXBgNVBAoTEEdsb2JhbFNpZ24gbnYtc2ExEDAOBgNVBAsTB1Jv
b3QgQ0ExGzAZBgNVBAMTEkdsb2JhbFNpZ24gUm9vdCBDQTAeFw05ODA5MDExMjAw
MDBaFw0yODAxMjgxMjAwMDBaMFcxCzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9i
YWxTaWduIG52LXNhMRAwDgYDVQQLEwdSb290IENBMRswGQYDVQQDExJHbG9iYWxT
aWduIFJvb3QgQ0EwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDaDuaZ
jc6j40+Kfvvxi4Mla+pIH/EqsLmVEQS98GPR4mdmzxzdzxtIK+6NiY6arymAZavp
xy0Sy6scTHAHoT0KMM0VjU/43dSMUBUc71DuxC73/OlS8pF94G3VNTCOXkNz8kHp
1Wrjsok6Vjk4bwY8iGlbKk3Fp1S4bInMm/k8yuX9ifUSPJJ4ltbcdG6TRGHRjcdG
snUOhugZitVtbNV4FpWi6cgKOOvyJBNPc1STE4U6G7weNLWLBYy5d4ux2x8gkasJ
U26Qzns3dLlwR5EiUWMWea6xrkEmCMgZK9FGqkjWZCrXgzT/LCrBbBlDSgeF59N8
9iFo7+ryUp9/k5DPAgMBAAGjQjBAMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8E
BTADAQH/MB0GA1UdDgQWBBRge2YaRQ2XyolQL30EzTSo//z9SzANBgkqhkiG9w0B
AQUFAAOCAQEA1nPnfE920I2/7LqivjTFKDK1fPxsnCwrvQmeU79rXqoRSLblCKOz
yj1hTdNGCbM+w6DjY1Ub8rrvrTnhQ7k4o+YviiY776BQVvnGCv04zcQLcFGUl5gE
38NflNUVyRRBnMRddWQVDf9VMOyGj/8N7yy5Y0b2qvzfvGn9LhJIZJrglfCm7ymP
AbEVtQwdpf5pLGkkeB6zpxxxYu7KyJesF12KwvhHhm4qxFYxldBniYUr+WymXUad
DKqC5JlR3XC321Y9YeRq4VzW9v493kHMB65jUr9TU/Qr6cf9tveCX4XSQRjbgbME
HMUfpIBvFSDJ3gyICh3WZlXi/EjJKSZp4A==
-----END CERTIFICATE-----
---
Server certificate
subject=C = GB, ST = Oxfordshire, L = Abingdon, O = SOPHOS LIMITED, CN = *.reflexion.net

issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 5352 bytes and written 388 bytes
Verification error: certificate has expired
---
New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 10 (certificate has expired)
---
DONE