Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (354 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 185.6.76.42
Reverse IP lookup: skroutz.gr.
Nameserver: ns3.skroutz.gr.
Nameserver: ns1.skroutz.gr.
Nameserver: ns2.skroutz.gr.

General Information

Common Name: *.skroutz.gr
SANs: DNS:*.skroutz.grDNS:skroutz.gr Total number of SANs: 2
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 57be2822af3f043dd0a592322b9145b3
Not Before: Oct 25, 2021 00:00:00 GMT
Not After: Nov 25, 2022 23:59:59 GMT
Number of certs: 3
Revocation Status: good
OCSP Stapling: Supported
Server: Not Provided
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.skroutz.gr

Decode this certificate for verbose information →
Subject Common Name *.skroutz.gr
Issuer Common Name Gandi Standard SSL CA 2
Issuer Organization Gandi
Not Before: Oct 25, 2021 00:00:00 GMT
Not After: Nov 25, 2022 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 57be2822af3f043dd0a592322b9145b3
SHA1 Fingerprint: 0B:F2:C8:82:03:73:DD:0E:2B:B4:37:BD:F1:E8:2F:E6:B2:E3:42:2D
MD5 Fingerprint: 1A:55:7A:4B:59:03:24:69:AA:32:C9:CF:92:74:43:07

Certificate # 2 - Common Name: Gandi Standard SSL CA 2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Gandi Standard SSL CA 2
Subject Organization Gandi
Issuer Common Name USERTrust RSA Certification Authority
Issuer Organization The USERTRUST Network
Not Before: Sep 12, 2014 00:00:00 GMT
Not After: Sep 11, 2024 23:59:59 GMT
Signature Algorithm: sha384WithRSAEncryption
Serial Number: 5e4dc3b9438ab3b8597cba6a19850e3
SHA1 Fingerprint: 24:71:06:A4:05:B2:88:A4:6E:70:A0:26:27:17:16:2D:09:03:E7:34
MD5 Fingerprint: 1A:9A:69:A8:1F:6D:A9:2D:87:F7:69:4E:16:D8:B8:79

Certificate # 3 - Common Name: USERTrust RSA Certification Authority

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name USERTrust RSA Certification Authority
Subject Organization The USERTRUST Network
Issuer Common Name AAA Certificate Services
Issuer Organization Comodo CA Limited
Not Before: Mar 12, 2019 00:00:00 GMT
Not After: Dec 31, 2028 23:59:59 GMT
Signature Algorithm: sha384WithRSAEncryption
Serial Number: 3972443af922b751d7d36c10dd313595
SHA1 Fingerprint: D8:9E:3B:D4:3D:5D:90:9B:47:A1:89:77:AA:9D:5C:E3:6C:EE:18:4C
MD5 Fingerprint: 28:5E:C9:09:C4:AB:0D:2D:57:F5:08:6B:22:57:99:AA

OpenSSL Handshake

depth=2 C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority
verify return:1
depth=1 C = FR, ST = Paris, L = Paris, O = Gandi, CN = Gandi Standard SSL CA 2
verify return:1
depth=0 CN = *.skroutz.gr
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: B390A7D8C9AF4ECD613C9F7CAD5D7F41FD6930EA
    Produced At: Dec  3 14:19:11 2021 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: A5E2344EF5763A9CE2F31E9B9807B0075727A5F9
      Issuer Key Hash: B390A7D8C9AF4ECD613C9F7CAD5D7F41FD6930EA
      Serial Number: 57BE2822AF3F043DD0A592322B9145B3
    Cert Status: good
    This Update: Dec  3 14:19:11 2021 GMT
    Next Update: Dec 10 14:19:11 2021 GMT

    Signature Algorithm: sha256WithRSAEncryption
         42:e8:15:8c:14:0f:8c:35:29:25:20:70:96:17:ce:71:78:25:
         f7:10:e3:1b:6f:60:ab:b3:20:4c:9e:50:99:2f:f0:5b:4e:08:
         2f:25:ef:64:88:12:2f:29:7f:b4:a4:33:4b:5f:31:4d:b3:2d:
         66:c2:5f:d1:7c:2d:d0:10:4b:02:55:15:bf:59:2f:ec:d3:3a:
         27:14:dc:e1:88:85:d7:18:d3:30:fc:94:a5:5f:ee:1f:d7:1f:
         83:56:a8:ee:a2:e4:27:03:9f:74:7d:2d:2e:d7:13:10:3e:89:
         8c:dd:ae:d1:09:df:5b:fe:9f:d4:b7:b5:46:78:f3:cc:02:29:
         fb:fd:59:7b:1e:c1:47:0b:6b:66:61:fe:bf:76:d8:ea:d6:3a:
         a3:f4:a4:69:89:4c:45:29:75:26:5e:02:74:ec:2f:d9:ba:c1:
         76:15:27:bf:8a:1b:e4:fc:fc:f2:ab:19:13:ad:d5:8c:4c:54:
         a5:f8:cc:d9:e1:c7:38:e1:2e:48:b1:1b:62:0b:22:a1:a9:ae:
         2c:8e:8e:a9:21:2d:f9:94:64:2b:08:52:95:9f:f5:e9:d6:51:
         df:4c:05:c8:c8:be:28:5f:7b:a6:f0:21:ac:08:a6:80:e4:bc:
         6c:37:e7:2b:1b:4c:18:ec:02:88:91:0f:28:74:b0:23:ba:1c:
         64:96:e6:9d
======================================
---
Certificate chain
 0 s:/CN=*.skroutz.gr
   i:/C=FR/ST=Paris/L=Paris/O=Gandi/CN=Gandi Standard SSL CA 2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=FR/ST=Paris/L=Paris/O=Gandi/CN=Gandi Standard SSL CA 2
   i:/C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST Network/CN=USERTrust RSA Certification Authority
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:/C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST Network/CN=USERTrust RSA Certification Authority
   i:/C=GB/ST=Greater Manchester/L=Salford/O=Comodo CA Limited/CN=AAA Certificate Services
-----BEGIN CERTIFICATE-----
MIIFgTCCBGmgAwIBAgIQOXJEOvkit1HX02wQ3TE1lTANBgkqhkiG9w0BAQwFADB7
MQswCQYDVQQGEwJHQjEbMBkGA1UECAwSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYD
VQQHDAdTYWxmb3JkMRowGAYDVQQKDBFDb21vZG8gQ0EgTGltaXRlZDEhMB8GA1UE
AwwYQUFBIENlcnRpZmljYXRlIFNlcnZpY2VzMB4XDTE5MDMxMjAwMDAwMFoXDTI4
MTIzMTIzNTk1OVowgYgxCzAJBgNVBAYTAlVTMRMwEQYDVQQIEwpOZXcgSmVyc2V5
MRQwEgYDVQQHEwtKZXJzZXkgQ2l0eTEeMBwGA1UEChMVVGhlIFVTRVJUUlVTVCBO
ZXR3b3JrMS4wLAYDVQQDEyVVU0VSVHJ1c3QgUlNBIENlcnRpZmljYXRpb24gQXV0
aG9yaXR5MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAgBJlFzYOw9sI
s9CsVw127c0n00ytUINh4qogTQktZAnczomfzD2p7PbPwdzx07HWezcoEStH2jnG
vDoZtF+mvX2do2NCtnbyqTsrkfjib9DsFiCQCT7i6HTJGLSR1GJk23+jBvGIGGqQ
Ijy8/hPwhxR79uQfjtTkUcYRZ0YIUcuGFFQ/vDP+fmyc/xadGL1RjjWmp2bIcmfb
IWax1Jt4A8BQOujM8Ny8nkz+rwWWNR9XWrf/zvk9tyy29lTdyOcSOk2uTIq3XJq0
tyA9yn8iNK5+O2hmAUTnAU5GU5szYPeUvlM3kHND8zLDU+/bqv50TmnHa4xgk97E
xwzf4TKuzJM7UXiVZ4vuPVb+DNBpDxsP8yUmazNt925H+nND5X4OpWaxKXwyhGNV
icQNwZNUMBkTrNN9N6frXTpsNVzbQdcS2qlJC9/YgIoJk2KOtWbPJYjNhLixP6Q5
D9kCnusSTJV882sFqV4Wg8y4Z+LoE53MW4LTTLPtW//e5XOsIzstAL81VXQJSdhJ
WBp/kjbmUZIO8yZ9HE0XvMnsQybQv0FfQKlERPSZ51eHnlAfV1SoPv10Yy+xUGUJ
5lhCLkMaTLTwJUdZ+gQek9QmRkpQgbLevni3/GcV4clXhB4PY9bpYrrWX1Uu6lzG
KAgEJTm4Diup8kyXHAc/DVL17e8vgg8CAwEAAaOB8jCB7zAfBgNVHSMEGDAWgBSg
EQojPpbxB+zirynvgqV/0DCktDAdBgNVHQ4EFgQUU3m/WqorSs9UgOHYm8Cd8rID
ZsswDgYDVR0PAQH/BAQDAgGGMA8GA1UdEwEB/wQFMAMBAf8wEQYDVR0gBAowCDAG
BgRVHSAAMEMGA1UdHwQ8MDowOKA2oDSGMmh0dHA6Ly9jcmwuY29tb2RvY2EuY29t
L0FBQUNlcnRpZmljYXRlU2VydmljZXMuY3JsMDQGCCsGAQUFBwEBBCgwJjAkBggr
BgEFBQcwAYYYaHR0cDovL29jc3AuY29tb2RvY2EuY29tMA0GCSqGSIb3DQEBDAUA
A4IBAQAYh1HcdCE9nIrgJ7cz0C7M7PDmy14R3iJvm3WOnnL+5Nb+qh+cli3vA0p+
rvSNb3I8QzvAP+u431yqqcau8vzY7qN7Q/aGNnwU4M309z/+3ri0ivCRlv79Q2R+
/czSAaF9ffgZGclCKxO/WIu6pKJmBHaIkU4MiRTOok3JMrO66BQavHHxW/BBC5gA
CiIDEOUMsfnNkjcZ7Tvx5Dq2+UUTJnWvu6rvP3t3O9LEApE9GQDTF1w52z97GA1F
zZOFli9d31kWTz9RvdVFGD/tSo7oBmF0Ixa1DVBzJ0RHfxBdiSprhTEUxOipakyA
vGp4z7h/jnZymQyd/teRCBaho1+V
-----END CERTIFICATE-----
---
Server certificate
subject=/CN=*.skroutz.gr
issuer=/C=FR/ST=Paris/L=Paris/O=Gandi/CN=Gandi Standard SSL CA 2
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 5655 bytes and written 297 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES256-GCM-SHA384
    Session-ID: 218E0E64325C5715E067BF99A55242BF2DA9986F22EF299BF53B751751CEED12
    Session-ID-ctx: 
    Master-Key: 5876F0E9E80179CA694523B616628ABE1DEC9487B98AACE49512170D4FE06C3BD1564A2EF2282144A63CEA5554CD06D7
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 7200 (seconds)
    TLS session ticket:
    0000 - 7b c7 e4 6b 6e 2b 56 41-93 77 88 79 09 e9 23 5d   {..kn+VA.w.y..#]
    0010 - fb dd e9 be 78 75 64 b8-17 85 98 cc 86 24 66 b1   ....xud......$f.
    0020 - 72 e2 4d 3d cf 3c 3f e7-ea 6c 14 3c 8b 8d 6e 05   r.M=.<?..l.<..n.
    0030 - 95 10 ab 3a 19 ae 82 b3-a9 83 60 34 42 f5 85 0e   ...:......`4B...
    0040 - d9 7f 18 ac b9 ec eb 0f-86 c0 51 43 65 13 63 5b   ..........QCe.c[
    0050 - 04 a7 4e 27 86 fa 3f 0e-09 0f a8 52 dd e9 d0 32   ..N'..?....R...2
    0060 - 28 a5 be 9c 5a df f6 36-bc b5 0c 7d df f6 23 2f   (...Z..6...}..#/
    0070 - 72 ee b1 54 b6 83 d7 9f-d6 7e 3c c5 ab 26 65 4d   r..T.....~<..&eM
    0080 - 0a 1f 46 6c df 7f 0a 5f-c1 c1 d3 af 99 4c ad 86   ..Fl..._.....L..
    0090 - 7a 9b 91 18 7b 7a bd ee-f7 3d a6 2b 1b d1 3a 5e   z...{z...=.+..:^
    00a0 - eb 3f f9 d2 4b 2b 46 95-b6 93 fd a0 bc 01 63 66   .?..K+F.......cf

    Start Time: 1638769927
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE