SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (22 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 104.154.232.28 |
Reverse IP lookup: | 28.232.154.104.bc.googleusercontent.com. |
Nameserver: | ns2.bluehost.com. |
Nameserver: | ns1.bluehost.com. |
General Information
Common Name: | thebrittanyfund.org |
SANs: | DNS:thebrittanyfund.org Total number of SANs: 1 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 41669835849f278fa20eaecc7558bf38578 |
Not Before: | Feb 19, 2024 18:31:14 GMT |
Not After: | May 19, 2024 18:31:13 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Server: | nginx |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: thebrittanyfund.org
Decode this certificate for verbose information → launchSubject Common Name | thebrittanyfund.org |
Issuer Common Name | R3 |
Issuer Organization | Let's Encrypt |
Not Before: | Feb 19, 2024 18:31:14 GMT |
Not After: | May 19, 2024 18:31:13 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 41669835849f278fa20eaecc7558bf38578 |
SHA1 Fingerprint: | 05:EC:D5:B2:32:A3:63:3D:57:5C:2C:54:07:CC:DE:C9:A9:52:DC:98 |
MD5 Fingerprint: | 9A:C4:C4:E8:7D:B0:6B:66:7B:9A:94:04:41:CB:B7:05 |
Certificate # 2 - Common Name: R3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R3 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Sep 04, 2020 00:00:00 GMT |
Not After: | Sep 15, 2025 16:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 912b084acf0c18a753f6d62e25a75f5a |
SHA1 Fingerprint: | A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05 |
MD5 Fingerprint: | E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R3 verify return:1 depth=0 CN = thebrittanyfund.org verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: C = US, O = Let's Encrypt, CN = R3 Produced At: Apr 25 20:39:00 2024 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 48DAC9A0FB2BD32D4FF0DE68D2F567B735F9B3C4 Issuer Key Hash: 142EB317B75856CBAE500940E61FAF9D8B14C2C6 Serial Number: 041669835849F278FA20EAECC7558BF38578 Cert Status: good This Update: Apr 25 20:39:00 2024 GMT Next Update: May 2 20:38:58 2024 GMT Signature Algorithm: sha256WithRSAEncryption 63:b5:d0:f7:e8:c6:63:2a:34:f5:77:4d:47:90:27:cc:5c:a1: 7e:8c:d0:30:cc:db:39:46:9d:32:61:4f:3c:94:3d:ea:23:0a: 0f:25:8c:9d:f6:88:2e:af:66:84:e0:da:2d:30:1e:3c:8b:f4: 0f:08:73:8b:6a:28:51:bb:7d:e1:4c:17:84:e3:45:11:b9:a0: d0:4c:cc:87:0a:e8:f9:2d:36:41:d4:56:00:a2:4f:3f:18:51: 81:65:c0:db:2f:21:db:9d:b6:1c:0b:ae:c6:ea:ce:53:5d:c0: 4f:6f:f4:b3:22:eb:37:eb:1c:2f:66:7b:5b:da:56:33:27:a1: a1:9d:36:48:8a:9b:87:07:89:3e:93:0b:ec:32:22:98:61:83: 28:c9:d3:82:9c:f3:7f:97:ac:b2:67:fe:82:eb:8d:4b:22:79: 5e:1e:86:5f:a3:4b:c9:97:63:fe:a3:fb:e0:d5:7d:c2:51:94: 5c:dd:f0:73:92:08:88:30:7d:55:6b:e2:46:9a:a3:2a:ac:e8: 47:16:c2:36:ec:57:b9:cf:10:72:f0:d0:87:33:25:12:41:55: a6:67:77:cb:36:db:33:c8:76:5d:08:7f:a6:5f:09:06:ea:91: 19:70:fd:16:ef:10:26:f1:c8:06:ab:65:12:bc:ca:48:e4:57: b9:37:36:ed ====================================== --- Certificate chain 0 s:CN = thebrittanyfund.org i:C = US, O = Let's Encrypt, CN = R3 -----BEGIN CERTIFICATE----- MIIE9TCCA92gAwIBAgISBBZpg1hJ8nj6IOrsx1WL84V4MA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yNDAyMTkxODMxMTRaFw0yNDA1MTkxODMxMTNaMB4xHDAaBgNVBAMT E3RoZWJyaXR0YW55ZnVuZC5vcmcwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC8SkZ78/R9k7cRaZJ249j29DykWbLCxdIsxhBggMEfTxFUvRGay/ni3eYu DWGd+m0Z2sgAywoi3IiUO/pUrnH1Ka/JBez4dT/BMgrAJgvPWGPzDVJ6zX5JafpV zTwM+aOC7WZsog6oImKLHLcT2/hJu9idzjSnjjil7ZcLwYC+gh4fPOFDhXHvXarN EVjcG6u0LoY5H57ORZfWk+yv0cV8hNn/zr3jZJJyV9UhAguTLfxODL5DYyvTkuQP 2/h3BGMHQ5RlbYJxfw15JrMSJAbPVNXGCQ0v0xW/TTbkMNBJW8Xzfuh1z1PxOjkx AKlOfZdBz1YJyO0rQR0BS7Ft0HQDAgMBAAGjggIXMIICEzAOBgNVHQ8BAf8EBAMC BaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB/wQCMAAw HQYDVR0OBBYEFCDwXKtjei4/mCj1IZxj2hsW1+gPMB8GA1UdIwQYMBaAFBQusxe3 WFbLrlAJQOYfr52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggrBgEFBQcwAYYVaHR0 cDovL3IzLm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRwOi8vcjMuaS5sZW5j ci5vcmcvMB4GA1UdEQQXMBWCE3RoZWJyaXR0YW55ZnVuZC5vcmcwEwYDVR0gBAww CjAIBgZngQwBAgEwggEGBgorBgEEAdZ5AgQCBIH3BIH0APIAdwB2/4g/Crb7lVHC Ycz1h7o0tKTNuyncaEIKn+ZnTFo6dAAAAY3C2d/eAAAEAwBIMEYCIQD9UFnxPvyB jF/7+jVKVmXgMgoYEhzZOFkNTwaMfOiqXwIhAKPZTXqtOSAC7QRaNF6Sufq1ntzZ R8B1XIQveiIXdiBsAHcAO1N3dT4tuYBOizBbBv5AO2fYT8P0x70ADS1yb+H61BcA AAGNwtngUgAABAMASDBGAiEAjTGISJIqxQuswmePW3cj3O9GklNz+aOjp9KhBboB Q4ACIQDzj9myWJXu/FLvEdPsMVWUvKqpdSoou/kvgqcdSTKvDTANBgkqhkiG9w0B AQsFAAOCAQEAF0gBRhABkfoPYoNEQk5ovHr+XQ1O1vrCDL2bEmjLW5qXR44iGZ2V 8UTAE6jo75xflrjze+SJLODp9DT+03RBzlYk9zDO8FRhc7tnYou6yhgJETrTPVOD +X/cJqT8hl4QrFLH7d3NdqJNXFzKj88K5ohB5B8v8SqbZQvqutlQiRoWeM3ZWBOK 2f4TB8CjTTUORDU5XkDbMbDI+G23/JQP7nOHf7md5Y0Jy9ltvv0m/jP8QywMRImE KpmkKSS2/lqWgfgk2+8KhsrBtSSy/ySWX6+AZ8FMejyq/P0wUPVjBI681V6B+9jV vxH1Z+6iR8qdgWMA+/wIOvSkPXMR2sCWBQ== -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R3 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG /kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4 avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2 yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+ HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX nLRbwHOoq7hHwg== -----END CERTIFICATE----- --- Server certificate subject=CN = thebrittanyfund.org issuer=C = US, O = Let's Encrypt, CN = R3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3655 bytes and written 410 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE