Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (73 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 23.185.0.1
Reverse IP lookup: No records found
Nameserver: ns-101.awsdns-12.com.
Nameserver: ns-1475.awsdns-56.org.
Nameserver: ns-1620.awsdns-10.co.uk.
Nameserver: ns-631.awsdns-14.net.

General Information

Common Name: billing.returnpath.com
SANs: DNS:billing.returnpath.comDNS:blog.habeas.comDNS:bondedsender.orgDNS:br.returnpath.comDNS:brand.returnpath.comDNS:careers.returnpath.comDNS:careers.returnpath.netDNS:clubinbox.comDNS:connect.returnpath.comDNS:corp.returnpath.netDNS:de.returnpath.comDNS:de.returnpath.netDNS:emabrke.comDNS:emailchallenge.returnpath.comDNS:emailcopilot.comDNS:emailheroes.comDNS:emailheroes.orgDNS:emailintelligence.comDNS:es.returnpath.comDNS:es.returnpath.netDNS:fr.returnpath.comDNS:fr.returnpath.netDNS:global.returnpath.netDNS:habeas.comDNS:it.returnpath.comDNS:landing.returnpath.comDNS:preferences.returnpath.comDNS:returnpath.bizDNS:returnpath.caDNS:returnpath.comDNS:returnpath.deDNS:returnpath.fiDNS:returnpath.frDNS:returnpath.itDNS:returnpath.netDNS:returnpath.nlDNS:returnpath.orgDNS:returnpath.ruDNS:senderindex.comDNS:smartbounce.returnpath.comDNS:stopemailfraud.returnpath.comDNS:support.returnpath.comDNS:support.returnpath.netDNS:www.bondedsender.orgDNS:www.emabrke.comDNS:www.emailcopilot.comDNS:www.emailintelligence.comDNS:www.habeas.comDNS:www.returnpath.bizDNS:www.returnpath.comDNS:www.returnpath.deDNS:www.returnpath.fiDNS:www.returnpath.frDNS:www.returnpath.itDNS:www.returnpath.netDNS:www.returnpath.nlDNS:www.returnpath.orgDNS:www.returnpath.ru Total number of SANs: 58
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 33cccc1eca5af17b0dbae96b1149364a4a1
Not Before: Mar 12, 2024 17:10:34 GMT
Not After: Jun 10, 2024 17:10:33 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: nginx
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: billing.returnpath.com

Decode this certificate for verbose information →
Subject Common Name billing.returnpath.com
Issuer Common Name R3
Issuer Organization Let's Encrypt
Not Before: Mar 12, 2024 17:10:34 GMT
Not After: Jun 10, 2024 17:10:33 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 33cccc1eca5af17b0dbae96b1149364a4a1
SHA1 Fingerprint: 10:CB:7F:24:3A:9C:20:2D:DC:2F:41:16:D4:52:B4:17:DB:EF:EA:18
MD5 Fingerprint: EF:30:E9:66:C3:67:FB:DC:5C:08:10:8B:EA:14:75:A1

Certificate # 2 - Common Name: R3

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name R3
Subject Organization Let's Encrypt
Issuer Common Name ISRG Root X1
Issuer Organization Internet Security Research Group
Not Before: Sep 04, 2020 00:00:00 GMT
Not After: Sep 15, 2025 16:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 912b084acf0c18a753f6d62e25a75f5a
SHA1 Fingerprint: A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05
MD5 Fingerprint: E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36

OpenSSL Handshake

depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = R3
verify return:1
depth=0 CN = billing.returnpath.com
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: C = US, O = Let's Encrypt, CN = R3
    Produced At: Mar 23 14:34:00 2024 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 48DAC9A0FB2BD32D4FF0DE68D2F567B735F9B3C4
      Issuer Key Hash: 142EB317B75856CBAE500940E61FAF9D8B14C2C6
      Serial Number: 033CCCC1ECA5AF17B0DBAE96B1149364A4A1
    Cert Status: good
    This Update: Mar 23 14:34:00 2024 GMT
    Next Update: Mar 30 14:33:58 2024 GMT

    Signature Algorithm: sha256WithRSAEncryption
         83:23:ba:79:63:3a:37:8d:61:8d:c2:95:91:cc:6f:e4:8b:9f:
         39:60:bb:ec:9c:e8:63:0b:24:ec:e1:fa:41:65:03:b6:3d:53:
         6b:d0:87:52:b8:aa:a2:d6:fd:4f:6b:7e:ee:c1:2f:8a:53:b9:
         09:26:04:52:14:dd:69:fa:c7:03:cf:2f:13:ce:b3:bf:a3:9b:
         b9:4b:87:c7:3c:4b:55:6f:26:0c:f7:19:c6:2e:4f:14:40:fc:
         f7:c2:46:08:bb:f4:5f:0f:d8:7c:6a:62:fe:43:d0:b7:9c:54:
         b8:ec:b2:2e:e8:b1:62:27:e0:da:9c:0f:dd:81:8b:43:58:a1:
         93:af:1d:54:ff:ec:8d:f0:bf:df:66:8f:02:26:34:65:8d:86:
         fb:ae:bc:38:71:d9:85:55:83:1b:c2:63:6e:49:7b:7b:79:31:
         c7:46:54:1d:b6:88:02:ec:a2:df:bd:57:a0:a3:ae:30:8a:70:
         16:0e:9b:e0:47:b4:f2:19:58:a4:36:df:10:39:0d:60:c3:bb:
         0f:68:15:67:59:21:32:85:b3:91:88:b9:5c:5a:10:f8:54:62:
         a1:51:1f:75:df:ab:c1:e1:2f:94:99:b3:b6:8c:2d:45:03:62:
         60:f9:92:b2:60:97:aa:69:ce:ee:27:a0:e6:98:4b:8d:41:b4:
         0a:66:ac:5e
======================================
---
Certificate chain
 0 s:CN = billing.returnpath.com
   i:C = US, O = Let's Encrypt, CN = R3
-----BEGIN CERTIFICATE-----
MIIJWTCCCEGgAwIBAgISAzzMweylrxew266WsRSTZKShMA0GCSqGSIb3DQEBCwUA
MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD
EwJSMzAeFw0yNDAzMTIxNzEwMzRaFw0yNDA2MTAxNzEwMzNaMCExHzAdBgNVBAMT
FmJpbGxpbmcucmV0dXJucGF0aC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw
ggEKAoIBAQDAdKd6a/TBnNxcCAyQFBfO3CM0cWsekizlrGvPOt2XDtP4ZkBAs+JS
9JmYXdJxFDU2LvszvC++PxYqASbqSaQgayoSvU3BU7/0z5t8vh4/LXLBXztbHtk5
VUrglYkypy061ZnKcnPeNfrs11rT70H77j83hMBoulSfG7zeYxpMv6X/zJiKfSIi
3HFndhEy8vygw70FaoWKCEJKzN8ilG58YeOkR6h0ll7touLsNx4+/DJdlaL9qXVh
B4J0WSumRyCTybKE/8A/NCOTdt0oCXApAN29BHhjdv5swlWJsNZWtWqMvP7JuloA
mI6Mo6an00MLotk8m6NWwT6a9hHzLZlVAgMBAAGjggZ4MIIGdDAOBgNVHQ8BAf8E
BAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB/wQC
MAAwHQYDVR0OBBYEFPqnMCJguLsYsLVvaKPMOXITyyIUMB8GA1UdIwQYMBaAFBQu
sxe3WFbLrlAJQOYfr52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggrBgEFBQcwAYYV
aHR0cDovL3IzLm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRwOi8vcjMuaS5s
ZW5jci5vcmcvMIIEfwYDVR0RBIIEdjCCBHKCFmJpbGxpbmcucmV0dXJucGF0aC5j
b22CD2Jsb2cuaGFiZWFzLmNvbYIQYm9uZGVkc2VuZGVyLm9yZ4IRYnIucmV0dXJu
cGF0aC5jb22CFGJyYW5kLnJldHVybnBhdGguY29tghZjYXJlZXJzLnJldHVybnBh
dGguY29tghZjYXJlZXJzLnJldHVybnBhdGgubmV0gg1jbHViaW5ib3guY29tghZj
b25uZWN0LnJldHVybnBhdGguY29tghNjb3JwLnJldHVybnBhdGgubmV0ghFkZS5y
ZXR1cm5wYXRoLmNvbYIRZGUucmV0dXJucGF0aC5uZXSCC2VtYWJya2UuY29tgh1l
bWFpbGNoYWxsZW5nZS5yZXR1cm5wYXRoLmNvbYIQZW1haWxjb3BpbG90LmNvbYIP
ZW1haWxoZXJvZXMuY29tgg9lbWFpbGhlcm9lcy5vcmeCFWVtYWlsaW50ZWxsaWdl
bmNlLmNvbYIRZXMucmV0dXJucGF0aC5jb22CEWVzLnJldHVybnBhdGgubmV0ghFm
ci5yZXR1cm5wYXRoLmNvbYIRZnIucmV0dXJucGF0aC5uZXSCFWdsb2JhbC5yZXR1
cm5wYXRoLm5ldIIKaGFiZWFzLmNvbYIRaXQucmV0dXJucGF0aC5jb22CFmxhbmRp
bmcucmV0dXJucGF0aC5jb22CGnByZWZlcmVuY2VzLnJldHVybnBhdGguY29tgg5y
ZXR1cm5wYXRoLmJpeoINcmV0dXJucGF0aC5jYYIOcmV0dXJucGF0aC5jb22CDXJl
dHVybnBhdGguZGWCDXJldHVybnBhdGguZmmCDXJldHVybnBhdGguZnKCDXJldHVy
bnBhdGguaXSCDnJldHVybnBhdGgubmV0gg1yZXR1cm5wYXRoLm5sgg5yZXR1cm5w
YXRoLm9yZ4INcmV0dXJucGF0aC5ydYIPc2VuZGVyaW5kZXguY29tghpzbWFydGJv
dW5jZS5yZXR1cm5wYXRoLmNvbYIdc3RvcGVtYWlsZnJhdWQucmV0dXJucGF0aC5j
b22CFnN1cHBvcnQucmV0dXJucGF0aC5jb22CFnN1cHBvcnQucmV0dXJucGF0aC5u
ZXSCFHd3dy5ib25kZWRzZW5kZXIub3Jngg93d3cuZW1hYnJrZS5jb22CFHd3dy5l
bWFpbGNvcGlsb3QuY29tghl3d3cuZW1haWxpbnRlbGxpZ2VuY2UuY29tgg53d3cu
aGFiZWFzLmNvbYISd3d3LnJldHVybnBhdGguYml6ghJ3d3cucmV0dXJucGF0aC5j
b22CEXd3dy5yZXR1cm5wYXRoLmRlghF3d3cucmV0dXJucGF0aC5maYIRd3d3LnJl
dHVybnBhdGguZnKCEXd3dy5yZXR1cm5wYXRoLml0ghJ3d3cucmV0dXJucGF0aC5u
ZXSCEXd3dy5yZXR1cm5wYXRoLm5sghJ3d3cucmV0dXJucGF0aC5vcmeCEXd3dy5y
ZXR1cm5wYXRoLnJ1MBMGA1UdIAQMMAowCAYGZ4EMAQIBMIIBBAYKKwYBBAHWeQIE
AgSB9QSB8gDwAHYAO1N3dT4tuYBOizBbBv5AO2fYT8P0x70ADS1yb+H61BcAAAGO
M9vsRgAABAMARzBFAiEAlpwl5H8iwUw9H3dtbcTFBQNG2hQ8miOTODpMFL8xOIkC
IA0bN+z11Ee9EvXzerNcILYhzGeBoO69YYgLFkp53oJQAHYAdv+IPwq2+5VRwmHM
9Ye6NLSkzbsp3GhCCp/mZ0xaOnQAAAGOM9vspgAABAMARzBFAiEAtV5aauc2g/JT
rTDnWEFd0CEMRnA7VddnXQc+N0egm/ICIHofYLieBawQaStGU6/1XIHnlQgIOIwi
BqjdKAFdZzy/MA0GCSqGSIb3DQEBCwUAA4IBAQCZAmMjMkpmhwJmDnXNw2NXfLT9
cV1tCtVdfO5JzDUbMU56EUqb0gzOQPwzgMXjfbGfSa3l8T3/o4HM1fvPD6QurMyk
9VV27dKgrFKqdkJrqjtFrzFk3tDOKDmKtEt2R4/XjGUQUvpTg+5XfUCK0SMQ2ibJ
Me1K4jWXO6tFuFTW5DKZPaFNyYddoGBBQvpNkTc3Mw5WBIMmWgvEXvy2yt+YeOu/
/BGMurj27a/x1Pq/2rE6gz5cGoIB6a+uX5lKlxK1aDoJyn7TqGmJIvXu3u86CFYk
A/Mfwh0zosxBBLYAUdg5B2+z1caBry3R6E0w7VpycWiwEvfvc02oWntdHQCD
-----END CERTIFICATE-----
 1 s:C = US, O = Let's Encrypt, CN = R3
   i:C = US, O = Internet Security Research Group, CN = ISRG Root X1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = billing.returnpath.com

issuer=C = US, O = Let's Encrypt, CN = R3

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 4763 bytes and written 389 bytes
Verification: OK
---
New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
DONE
---
Post-Handshake New Session Ticket arrived:
SSL-Session:
    Protocol  : TLSv1.3
    Cipher    : TLS_AES_128_GCM_SHA256
    Session-ID: 3A645B3CC48A9F480F30ED2D5F94311A41BF0B809FD773F34481E684EB77A919
    Session-ID-ctx: 
    Resumption PSK: 10D7CAC8A917384B52A38EF289A14996221EC30CCD5670A22AD0AD4D4066E7FF
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 3600 (seconds)
    TLS session ticket:
    0000 - 27 6e e6 cf 68 e2 c2 d8-8e 9a d0 19 db a0 3f 05   'n..h.........?.
    0010 - 53 70 7c 26 6b 25 96 d9-0a ed a4 b5 ca 4c ca 8e   Sp|&k%.......L..
    0020 - bc fa 39 d3 b4 4b e4 68-04 33 ce a2 7a 3c 99 93   ..9..K.h.3..z<..
    0030 - 4c 72 af af 7d 18 aa c3-10 c8 34 cf 46 25 99 9f   Lr..}.....4.F%..
    0040 - 78 f7 10 aa 01 c0 33 6a-e7 a8 05 f5 09 4a 06 f5   x.....3j.....J..
    0050 - ac 28 05 e7 dc dd 34 be-3f aa 17 b4 ff d4 32 98   .(....4.?.....2.
    0060 - f1 16 c0 33 e0 af 19 ee-e9 3e 5e 64 63 fc 6e 71   ...3.....>^dc.nq
    0070 - e8 90 82 13 6d 31 3e a0-fa 29 11 5e 8d 55 7e fa   ....m1>..).^.U~.
    0080 - 65 b4 6a 8b 30 23 04 51-5f db 06 5a 2c f3 0e ce   e.j.0#.Q_..Z,...
    0090 - 4a 10 1d ed 0c 56 26 e0-34 85 66 50 e2 81 b1 17   J....V&.4.fP....

    Start Time: 1711656048
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: no
    Max Early Data: 8192
---
read R BLOCK