Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (265 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: We were unable to verify this certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 75.2.60.43
Reverse IP lookup: a14c4d80f0c3eb316.awsglobalaccelerator.com.
Nameserver: ns1.coltfrance.com.
Nameserver: ns1.nan2.fr.uu.net.

General Information

Common Name: *.tf1.fr
SANs: DNS:*.tf1.frDNS:tf1.fr Total number of SANs: 2
Organization: TELEVISION FRANCAISE 1
Locality: Boulogne-Billancourt
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 63b8959e13f13ba396c678b0
Not Before: Dec 22, 2023 13:43:12 GMT
Not After: Jan 22, 2025 13:43:11 GMT
Number of certs: 3
Revocation Status: good
OCSP Stapling: Not Supported
Server: nginx
HSTS: Not Supported
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.tf1.fr

Decode this certificate for verbose information →
Subject Common Name *.tf1.fr
Subject Organization TELEVISION FRANCAISE 1
Issuer Common Name GlobalSign RSA OV SSL CA 2018
Issuer Organization GlobalSign nv-sa
Not Before: Dec 22, 2023 13:43:12 GMT
Not After: Jan 22, 2025 13:43:11 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 63b8959e13f13ba396c678b0
SHA1 Fingerprint: 5E:FA:01:F5:38:73:FC:61:7F:9D:C4:43:36:D9:21:F7:8C:6B:3C:03
MD5 Fingerprint: AB:F7:63:09:B4:6B:A6:14:BD:31:B8:45:AB:4D:A9:6C

Certificate # 2 - Common Name: GlobalSign RSA OV SSL CA 2018

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GlobalSign RSA OV SSL CA 2018
Subject Organization GlobalSign nv-sa
Issuer Common Name GlobalSign
Issuer Organization GlobalSign
Not Before: Nov 21, 2018 00:00:00 GMT
Not After: Nov 21, 2028 00:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 1ee5f221dfc623bd4333a8557
SHA1 Fingerprint: DF:E8:30:23:06:2B:99:76:82:70:8B:4E:AB:8E:81:9A:FF:5D:97:75
MD5 Fingerprint: A7:5D:8B:21:09:11:EE:17:3E:FD:25:E1:E0:0E:D6:FD

Certificate # 3 - Common Name: GlobalSign

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GlobalSign
Subject Organization GlobalSign
Issuer Common Name GlobalSign
Issuer Organization GlobalSign
Not Before: Mar 18, 2009 10:00:00 GMT
Not After: Mar 18, 2029 10:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 4000000000121585308a2
SHA1 Fingerprint: D6:9B:56:11:48:F0:1C:77:C5:45:78:C1:09:26:DF:5B:85:69:76:AD
MD5 Fingerprint: C5:DF:B8:49:CA:05:13:55:EE:2D:BA:1A:C3:3E:B0:28

OpenSSL Handshake

depth=2 OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
verify error:num=19:self signed certificate in certificate chain
verify return:1
depth=2 OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
verify return:1
depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
verify return:1
depth=0 C = FR, ST = Hauts-de-Seine, L = Boulogne-Billancourt, O = TELEVISION FRANCAISE 1, CN = *.tf1.fr
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:C = FR, ST = Hauts-de-Seine, L = Boulogne-Billancourt, O = TELEVISION FRANCAISE 1, CN = *.tf1.fr
   i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
-----BEGIN CERTIFICATE-----
MIIGWTCCBUGgAwIBAgIMY7iVnhPxO6OWxniwMA0GCSqGSIb3DQEBCwUAMFAxCzAJ
BgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWduIG52LXNhMSYwJAYDVQQDEx1H
bG9iYWxTaWduIFJTQSBPViBTU0wgQ0EgMjAxODAeFw0yMzEyMjIxMzQzMTJaFw0y
NTAxMjIxMzQzMTFaMHkxCzAJBgNVBAYTAkZSMRcwFQYDVQQIEw5IYXV0cy1kZS1T
ZWluZTEdMBsGA1UEBxMUQm91bG9nbmUtQmlsbGFuY291cnQxHzAdBgNVBAoTFlRF
TEVWSVNJT04gRlJBTkNBSVNFIDExETAPBgNVBAMMCCoudGYxLmZyMIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArjoUjHneZWMZshzkYYh1ZM6l0VEQATqq
obMSGmIYjKJRJNVSlDfekr1fYLBT45VdV8T+02nxArqQYJscZhLffk75SiCit1B0
XvAmTsAGbIdAr3zp1/KQqMW8smZZ/YNFS2VZKzgdgA7qfwQd5xP86wTc9V/ad441
8yR5Szf90QrHIOywrL+wwWOZXNQhrRli/zZ/OgG/SX8JhJgU9Xe60rIKc6TFuZMx
fSqjrh7wCXRDWw/mG4yk7TvQnltIPSd0WWsyvFZQ050xw+rgy44R7aPmA08vFbid
IwZjwnHAqdv1EIvpgaECqdcU2gCkix3kuCQ2reZplAzF59/nTNif4QIDAQABo4ID
CDCCAwQwDgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwgY4GCCsGAQUFBwEB
BIGBMH8wRAYIKwYBBQUHMAKGOGh0dHA6Ly9zZWN1cmUuZ2xvYmFsc2lnbi5jb20v
Y2FjZXJ0L2dzcnNhb3Zzc2xjYTIwMTguY3J0MDcGCCsGAQUFBzABhitodHRwOi8v
b2NzcC5nbG9iYWxzaWduLmNvbS9nc3JzYW92c3NsY2EyMDE4MFYGA1UdIARPME0w
QQYJKwYBBAGgMgEUMDQwMgYIKwYBBQUHAgEWJmh0dHBzOi8vd3d3Lmdsb2JhbHNp
Z24uY29tL3JlcG9zaXRvcnkvMAgGBmeBDAECAjAbBgNVHREEFDASgggqLnRmMS5m
coIGdGYxLmZyMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAfBgNVHSME
GDAWgBT473/yzXhnqN5vjySNiPGHAwKz6zAdBgNVHQ4EFgQUwsDYv2PK+ZXfRZhH
Nvm5xXWBxokwggF9BgorBgEEAdZ5AgQCBIIBbQSCAWkBZwB2AObSMWNAd4zBEEEG
13G5zsHSQPaWhIb7uocyHf0eN45QAAABjJHEIrsAAAQDAEcwRQIhAPef/2HcWhxX
Ub3024BNTdeFpzzZ43esoK7PXzTEiEBdAiBWTyHieOpKCzgT1oDerlsb/2E7d7VS
LaxxXZpzUD6qGQB1AH1ZHhLheCp7HGFnfF79+NCHXBSgTpWeuQMv2Q6MLnm4AAAB
jJHEIqoAAAQDAEYwRAIgYMBSCtgEop9O0rAWr0ZF4dq0sxVNSm6EyPUaXht5hJYC
ICa12XgRtFTwWbvJwOMqoh+2B4f7ARuet/Bae6Bcs/FqAHYATnWjJ1yaEMM4W2zU
3z9S6x3w4I4bjWnAsfpksWKaOd8AAAGMkcQijgAABAMARzBFAiEA4V+gUsTr5gJi
PUfWCIEyZoX+Df2faffow00tMhjxo/kCIHmYgEZPCQ8B/JfJoKTSe+9TfQJPfXX0
ztdgVS9HealqMA0GCSqGSIb3DQEBCwUAA4IBAQAKelpLZQzEbq+rLhuw+dtiQYpc
fUHANe7R/UCnoKAuuBFVIPHz+PCJDJP5nulS7u8NlzYGvxlVrk884EyVZf/bBefY
ZEk7a2BmjgGg4vpmEVHxAKc3DpDiHgx8P+7dyyx7i3zhizmSR1MywZDlRLvujyhL
AvNld7xjfUYi28cMRhwSYQnyuwXrynt7kIQa7Bn3YhVdas2c0GwGL66I+pzXRStU
N/IX58Oo/phcg+N52kuzF3M1dMZXIuw2wTI4cJbbKVdKQnVBdHvGFya8Okf73Nm4
IWtX1Y+r6Ba2bEej+MrKvp+7/EhKbcVFTM6BeoqGIBn296gOwXPRkdvMqnYj
-----END CERTIFICATE-----
 1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
   i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
   i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = FR, ST = Hauts-de-Seine, L = Boulogne-Billancourt, O = TELEVISION FRANCAISE 1, CN = *.tf1.fr

issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 4245 bytes and written 443 bytes
Verification error: self signed certificate in certificate chain
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: C32DD8DB08D8AB90FEA8D3F3A9858211B98141951FB4D4E06E58A4A8318FF31B
    Session-ID-ctx: 
    Master-Key: 61D4092692EA54957E639DB8D254877780D3E9596F683E901FC2FDB75C0955F937BC7766E810F9719A0EED34EED7ECB5
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 86400 (seconds)
    TLS session ticket:
    0000 - 51 5c 39 0c b9 c5 1b 88-51 2c 4e 1e 6c e4 71 98   Q\9.....Q,N.l.q.
    0010 - 45 e4 ad 76 8b 55 c9 96-05 cc d1 3e 9c e7 41 96   E..v.U.....>..A.
    0020 - 3f 27 e8 85 4a 24 1b e4-5c 09 ac c6 48 a2 08 62   ?'..J$..\...H..b
    0030 - f3 e5 5a cc 94 56 77 2e-3c 20 0b 7c a9 0d 50 67   ..Z..Vw.< .|..Pg
    0040 - ab fd 92 e7 c8 5b fe da-b9 ed 5c 42 15 d5 55 37   .....[....\B..U7
    0050 - b7 fb 0b bb 22 43 38 d4-36 8d 2c 5e a1 af 29 7e   ...."C8.6.,^..)~
    0060 - 0f 85 4b 39 3f 2c 5e 49-b7                        ..K9?,^I.

    Start Time: 1714601472
    Timeout   : 7200 (sec)
    Verify return code: 19 (self signed certificate in certificate chain)
    Extended master secret: yes
---
DONE