Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (318 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 137.200.4.16
Reverse IP lookup: No records found
Nameserver: dns5.ssa.gov.
Nameserver: dns1.ssa.gov.
Nameserver: dns6.ssa.gov.
Nameserver: dns2.ssa.gov.

General Information

Common Name: www.ssa.gov
SANs: DNS:www.ssa.govDNS:ai.ssa.govDNS:best.ssa.govDNS:beta.ssa.govDNS:edata.ssa.govDNS:eme.ssa.govDNS:faq-es.ssa.govDNS:ftp.ssa.govDNS:hspd12.ssa.govDNS:ipv6.segurosocial.govDNS:ipv6.socialsecurity.govDNS:ipv6.ssa.govDNS:myaccount.socialsecurity.govDNS:myaccount.ssa.govDNS:policy.ssa.govDNS:prisonedata.ssa.govDNS:secure.ssa.govDNS:segurosocial.govDNS:signup.socialsecurity.govDNS:signup.ssa.govDNS:socialsecurity.govDNS:ssa.govDNS:wwwtest-origin.ssa.govDNS:wwwtest.ssa.govDNS:www-origin.ssa.govDNS:www.myaccount.socialsecurity.govDNS:www.open.socialsecurity.govDNS:www.open.ssa.govDNS:www.segurosocial.govDNS:www.signup.socialsecurity.govDNS:www.socialsecurity.gov Total number of SANs: 31
Organization: Social Security Administration
Locality: Baltimore
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 693fc50eea2ab61cb173b5251fed57a
Not Before: Sep 13, 2021 00:00:00 GMT
Not After: Oct 14, 2022 23:59:59 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Not Supported
Server: Not Provided
HSTS: max-age=31536000
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: www.ssa.gov

Decode this certificate for verbose information →
Subject Common Name www.ssa.gov
Subject Organization Social Security Administration
Issuer Common Name DigiCert SHA2 Extended Validation Server CA
Issuer Organization DigiCert Inc
Not Before: Sep 13, 2021 00:00:00 GMT
Not After: Oct 14, 2022 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 693fc50eea2ab61cb173b5251fed57a
SHA1 Fingerprint: D0:D8:EC:9A:B0:DB:0B:5D:F4:29:A7:67:85:BC:38:1E:D4:78:F3:20
MD5 Fingerprint: 4C:03:EB:AC:FB:D6:6C:12:87:CB:91:63:03:54:73:98

Certificate # 2 - Common Name: DigiCert SHA2 Extended Validation Server CA

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name DigiCert SHA2 Extended Validation Server CA
Subject Organization DigiCert Inc
Issuer Common Name DigiCert High Assurance EV Root CA
Issuer Organization DigiCert Inc
Not Before: Oct 22, 2013 12:00:00 GMT
Not After: Oct 22, 2028 12:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: c79a944b08c11952092615fe26b1d83
SHA1 Fingerprint: 7E:2F:3A:4F:8F:E8:FA:8A:57:30:AE:CA:02:96:96:63:7E:98:6F:3F
MD5 Fingerprint: 25:3E:A8:7B:F6:7D:57:24:15:24:F0:0E:45:77:68:AC

OpenSSL Handshake

depth=2 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert High Assurance EV Root CA
verify return:1
depth=1 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = DigiCert SHA2 Extended Validation Server CA
verify return:1
depth=0 businessCategory = Government Entity, jurisdictionC = US, serialNumber = Government Entity, C = US, ST = Maryland, L = Baltimore, O = Social Security Administration, CN = www.ssa.gov
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:/businessCategory=Government Entity/jurisdictionC=US/serialNumber=Government Entity/C=US/ST=Maryland/L=Baltimore/O=Social Security Administration/CN=www.ssa.gov
   i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 Extended Validation Server CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 Extended Validation Server CA
   i:/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert High Assurance EV Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/businessCategory=Government Entity/jurisdictionC=US/serialNumber=Government Entity/C=US/ST=Maryland/L=Baltimore/O=Social Security Administration/CN=www.ssa.gov
issuer=/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 Extended Validation Server CA
---
No client certificate CA names sent
Peer signing digest: SHA256
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 4154 bytes and written 327 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: 2A80EC5BFF45E0BE12481B04648D884DB201E623041D8987DD08C112361DD857
    Session-ID-ctx: 
    Master-Key: 1A003ED9E9566AF20359CBA42754E64CE65E76B26CAE212DC8990F28CF2E498B39C44149EAF82F84414D73452EA9EBA1
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1638253359
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE