SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (354 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 64.190.63.222 |
Reverse IP lookup: | No records found |
Nameserver: | ns1.sedoparking.com. |
Nameserver: | ns2.sedoparking.com. |
General Information
Common Name: | shorte.st |
SANs: | DNS:shorte.st Total number of SANs: 1 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 6bc2a8245fbf51fd7a2a5e7b9e5003b |
Not Before: | Mar 19, 2024 00:00:00 GMT |
Not After: | Mar 18, 2025 23:59:59 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | NginX |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: shorte.st
Decode this certificate for verbose information → launchSubject Common Name | shorte.st |
Issuer Common Name | Encryption Everywhere DV TLS CA - G2 |
Issuer Organization | DigiCert Inc |
Not Before: | Mar 19, 2024 00:00:00 GMT |
Not After: | Mar 18, 2025 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 6bc2a8245fbf51fd7a2a5e7b9e5003b |
SHA1 Fingerprint: | 5C:BA:BE:9F:9A:C5:8C:89:B6:BC:19:24:8F:BF:14:76:BD:89:23:34 |
MD5 Fingerprint: | 17:3C:1B:2C:C0:24:2C:A3:ED:F6:97:BC:45:21:66:E1 |
Certificate # 2 - Common Name: Encryption Everywhere DV TLS CA - G2
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | Encryption Everywhere DV TLS CA - G2 |
Subject Organization | DigiCert Inc |
Issuer Common Name | DigiCert Global Root G2 |
Issuer Organization | DigiCert Inc |
Not Before: | Nov 27, 2017 12:46:40 GMT |
Not After: | Nov 27, 2027 12:46:40 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | de0ffb5ee62cb61109f608c9ced5ed3 |
SHA1 Fingerprint: | ED:63:02:68:4A:32:59:AA:04:F1:0F:E9:A9:7A:8F:D3:0B:96:5D:26 |
MD5 Fingerprint: | 2C:29:E3:A3:30:F9:38:A1:36:B0:DB:03:F0:63:2F:A6 |
OpenSSL Handshake
depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G2 verify return:1 depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Encryption Everywhere DV TLS CA - G2 verify return:1 depth=0 CN = shorte.st verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = shorte.st i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Encryption Everywhere DV TLS CA - G2 -----BEGIN CERTIFICATE----- MIIF7DCCBNSgAwIBAgIQBrwqgkX79R/XoqXnueUAOzANBgkqhkiG9w0BAQsFADBu MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3 d3cuZGlnaWNlcnQuY29tMS0wKwYDVQQDEyRFbmNyeXB0aW9uIEV2ZXJ5d2hlcmUg RFYgVExTIENBIC0gRzIwHhcNMjQwMzE5MDAwMDAwWhcNMjUwMzE4MjM1OTU5WjAU MRIwEAYDVQQDEwlzaG9ydGUuc3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQCzbylB+rENCq7bVXzVnjzwP3Z+RUYJqMhht/ZxH1V59O7rKGwSVmmHtoi5 0bgc9t6muMpBUxoCzWziJhm4PX49uzaJdEvXDRVX7TOg7ewdZgYR6MSZSsclyJ8H +VLTECbiWv6uILEsfXgKXv+J4a+x+xxt6cIQCOmMxpAwdkzfX+pSenhAi5VqPPaP KGmCAupkXOQAq53I6jZ5YweLpsZgE8GB8jQZ8GDL+KMLn3dsMD+4ChWxvugfuYSM tPpFH0FlHU5s/5Ab7n3Ev+iVWxoT1ViPQQAAypEH0bx+ojwnOcElg6jBDBayoydZ YS+o3kEQgrXRyoqaNG2R0yGuvaRXAgMBAAGjggLeMIIC2jAfBgNVHSMEGDAWgBR4 35GQX+7erPbFdevVTFVT7yRKtjAdBgNVHQ4EFgQUzj+sBT4iAwqBDZjlSLdJiLU+ VfgwFAYDVR0RBA0wC4IJc2hvcnRlLnN0MD4GA1UdIAQ3MDUwMwYGZ4EMAQIBMCkw JwYIKwYBBQUHAgEWG2h0dHA6Ly93d3cuZGlnaWNlcnQuY29tL0NQUzAOBgNVHQ8B Af8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMIGABggrBgEF BQcBAQR0MHIwJAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmRpZ2ljZXJ0LmNvbTBK BggrBgEFBQcwAoY+aHR0cDovL2NhY2VydHMuZGlnaWNlcnQuY29tL0VuY3J5cHRp b25FdmVyeXdoZXJlRFZUTFNDQS1HMi5jcnQwDAYDVR0TAQH/BAIwADCCAYAGCisG AQQB1nkCBAIEggFwBIIBbAFqAHcATnWjJ1yaEMM4W2zU3z9S6x3w4I4bjWnAsfpk sWKaOd8AAAGOVfjHwgAABAMASDBGAiEApHuo/tBUZXeENMkrKHWwfHV1jNseEHwY 1X63ogf65KYCIQD2tvkfMtvKazt2nGheONABFWc48d9/SzugCAU/ldfb4gB3AH1Z HhLheCp7HGFnfF79+NCHXBSgTpWeuQMv2Q6MLnm4AAABjlX4yAgAAAQDAEgwRgIh ALzZDh5MVsYQ2Rjbb10bAoLi0phFD81J3MtCqEN2mMN+AiEA3TsXKpFp99tHM1Ep HvdRz1tpql99vnL3Mv0XvVbQGN0AdgDm0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qH Mh39HjeOUAAAAY5V+MgoAAAEAwBHMEUCIQCqmwtDqkh+G0O5o66DZx7u7eiI4o2L T+bRzVW8KdEcegIgIdQmEwVnW062eG8SFIQw6z51BbBxps0iGUM7+DEiNcgwDQYJ KoZIhvcNAQELBQADggEBAGHGKPy/vf9AvTbaLmIkhwIdDlMypjhMO5DJdW55phKl P6SqO+fbSEk89z1gnf5q3NSNNiztC9gLyn5FBUhkl0fcHscT9E9QJzk/yk27TmwM JJmO7sV06JM3asRUBa0U/d4uAF69Jx/vOZ4GULHmKYyFvNLRWhEsoHEom97ABcb2 i266cg82mY2S8dKVwcA+p1fKQ/ZEPapgd8eLuU00bHPRcO83ZlyNrX0VoYIvtR6T /eJHto8CnvT8RGuPtA2v92WTmLOL4tF0qJ9m3bRfdy/n4r3ISjeGdgP2yERSlvxl iJF/dcdswopmWVeAjBxF2WPpES6c/y7c+pkzfrTiGQc= -----END CERTIFICATE----- 1 s:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Encryption Everywhere DV TLS CA - G2 i:C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert Global Root G2 -----BEGIN CERTIFICATE----- MIIEqjCCA5KgAwIBAgIQDeD/te5iy2EQn2CMnO1e0zANBgkqhkiG9w0BAQsFADBh MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3 d3cuZGlnaWNlcnQuY29tMSAwHgYDVQQDExdEaWdpQ2VydCBHbG9iYWwgUm9vdCBH MjAeFw0xNzExMjcxMjQ2NDBaFw0yNzExMjcxMjQ2NDBaMG4xCzAJBgNVBAYTAlVT MRUwEwYDVQQKEwxEaWdpQ2VydCBJbmMxGTAXBgNVBAsTEHd3dy5kaWdpY2VydC5j b20xLTArBgNVBAMTJEVuY3J5cHRpb24gRXZlcnl3aGVyZSBEViBUTFMgQ0EgLSBH MjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAO8Uf46i/nr7pkgTDqnE eSIfCFqvPnUq3aF1tMJ5hh9MnO6Lmt5UdHfBGwC9Si+XjK12cjZgxObsL6Rg1njv NhAMJ4JunN0JGGRJGSevbJsA3sc68nbPQzuKp5Jc8vpryp2mts38pSCXorPR+sch QisKA7OSQ1MjcFN0d7tbrceWFNbzgL2csJVQeogOBGSe/KZEIZw6gXLKeFe7mupn NYJROi2iC11+HuF79iAttMc32Cv6UOxixY/3ZV+LzpLnklFq98XORgwkIJL1HuvP ha8yvb+W6JislZJL+HLFtidoxmI7Qm3ZyIV66W533DsGFimFJkz3y0GeHWuSVMbI lfsCAwEAAaOCAU8wggFLMB0GA1UdDgQWBBR435GQX+7erPbFdevVTFVT7yRKtjAf BgNVHSMEGDAWgBROIlQgGJXm427mD/r6uRLtBhePOTAOBgNVHQ8BAf8EBAMCAYYw HQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMBIGA1UdEwEB/wQIMAYBAf8C AQAwNAYIKwYBBQUHAQEEKDAmMCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5kaWdp Y2VydC5jb20wQgYDVR0fBDswOTA3oDWgM4YxaHR0cDovL2NybDMuZGlnaWNlcnQu Y29tL0RpZ2lDZXJ0R2xvYmFsUm9vdEcyLmNybDBMBgNVHSAERTBDMDcGCWCGSAGG /WwBAjAqMCgGCCsGAQUFBwIBFhxodHRwczovL3d3dy5kaWdpY2VydC5jb20vQ1BT MAgGBmeBDAECATANBgkqhkiG9w0BAQsFAAOCAQEAoBs1eCLKakLtVRPFRjBIJ9LJ L0s8ZWum8U8/1TMVkQMBn+CPb5xnCD0GSA6L/V0ZFrMNqBirrr5B241OesECvxIi 98bZ90h9+q/X5eMyOD35f8YTaEMpdnQCnawIwiHx06/0BfiTj+b/XQih+mqt3ZXe xNCJqKexdiB2IWGSKcgahPacWkk/BAQFisKIFYEqHzV974S3FAz/8LIfD58xnsEN GfzyIDkH3JrwYZ8caPTf6ZX9M1GrISN8HnWTtdNCH2xEajRa/h9ZBXjUyFKQrGk2 n2hcLrfZSbynEC/pSw/ET7H5nWwckjmAJ1l9fcnbqkU/pf6uMQmnfl0JQjJNSg== -----END CERTIFICATE----- --- Server certificate subject=CN = shorte.st issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Encryption Everywhere DV TLS CA - G2 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3263 bytes and written 384 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE --- Post-Handshake New Session Ticket arrived: SSL-Session: Protocol : TLSv1.3 Cipher : TLS_AES_128_GCM_SHA256 Session-ID: 69CFFB6B5A56D4E10409AC11C2B72713668F73F1ADB91143144A86B420CDD06C Session-ID-ctx: Resumption PSK: B0E5DA8D479E9BA652D5ACAB21E45F15D28F8D8FFEE78DCCEE2179203103947F PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 604800 (seconds) TLS session ticket: 0000 - 5a 85 bc e0 ff 7c 06 f4-b0 1f 76 36 84 95 bf ad Z....|....v6.... 0010 - ac 15 9e e4 c1 2b 05 b6-89 0e bc b7 07 fb a0 2e .....+.......... 0020 - cb a5 f6 aa 1a 2b 6c 8f-0d 4a d9 18 eb c5 aa 1c .....+l..J...... 0030 - 66 7d 93 9c 4f 76 70 43-58 f6 de 85 7a ff b4 06 f}..OvpCX...z... 0040 - 4d ec 67 22 0a 0a 23 b9-8a fc 4c ed dd 0d a9 7e M.g"..#...L....~ 0050 - 51 36 d2 5d d5 e3 6b 34-74 15 16 df 66 74 d4 a2 Q6.]..k4t...ft.. 0060 - 5b 0c 27 21 c3 55 d9 ca-d9 dd ed 39 93 a5 09 b6 [.'!.U.....9.... 0070 - f4 . Start Time: 1711673661 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: no Max Early Data: 0 --- read R BLOCK