SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (282 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | close The chain doesn't contain any intermediate certificates |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
Download Bundle: | Chain of CA certificates (Apache) save End-entity certificate + chain of CA certificates (Nginx) save |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
DNS Information
Resolves To: | 154.118.230.69 |
Reverse IP lookup: | gdc-exmgmt-02.rita.go.tz. |
Nameserver: | ns3.eganet.go.tz. |
Nameserver: | ns2.eganet.go.tz. |
Nameserver: | ns1.eganet.go.tz. |
General Information
Common Name: | *.rita.go.tz |
SANs: | DNS:*.rita.go.tzDNS:rita.go.tz Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 4f481e0c51902b641ae087dfe6fe8d8d |
Not Before: | Feb 02, 2024 00:00:00 GMT |
Not After: | Feb 02, 2025 23:59:59 GMT |
Number of certs: | 1 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | Apache |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: *.rita.go.tz
Decode this certificate for verbose information → launchSubject Common Name | *.rita.go.tz |
Issuer Common Name | Sectigo RSA Domain Validation Secure Server CA |
Issuer Organization | Sectigo Limited |
Not Before: | Feb 02, 2024 00:00:00 GMT |
Not After: | Feb 02, 2025 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 4f481e0c51902b641ae087dfe6fe8d8d |
SHA1 Fingerprint: | F5:4B:89:B2:C4:94:A1:44:60:D8:31:35:7B:72:77:C5:F6:7F:75:68 |
MD5 Fingerprint: | 19:2A:45:E4:31:82:64:0A:2F:EE:48:4A:59:2C:47:48 |
OpenSSL Handshake
depth=2 C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority verify return:1 depth=1 C = GB, ST = Greater Manchester, L = Salford, O = Sectigo Limited, CN = Sectigo RSA Domain Validation Secure Server CA verify return:1 depth=0 CN = *.rita.go.tz verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = *.rita.go.tz i:C = GB, ST = Greater Manchester, L = Salford, O = Sectigo Limited, CN = Sectigo RSA Domain Validation Secure Server CA -----BEGIN CERTIFICATE----- MIIGLzCCBRegAwIBAgIQT0geDFGQK2Qa4Iff5v6NjTANBgkqhkiG9w0BAQsFADCB jzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G A1UEBxMHU2FsZm9yZDEYMBYGA1UEChMPU2VjdGlnbyBMaW1pdGVkMTcwNQYDVQQD Ey5TZWN0aWdvIFJTQSBEb21haW4gVmFsaWRhdGlvbiBTZWN1cmUgU2VydmVyIENB MB4XDTI0MDIwMjAwMDAwMFoXDTI1MDIwMjIzNTk1OVowFzEVMBMGA1UEAwwMKi5y aXRhLmdvLnR6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAggdruGvL 7yJBb5voiObd7M38m3qr4oqwVIxzn/IRL5Iu/qT64k4km+GesAhOqjUacKexsati qkM8eHafKTvoyD51O3krIEt20/IgkwcvHVxP5OWoizjvC6184SbnOnwTi5mk0xyz tcM1guZYOmiBRY+sX5WO1T9Na08vgYxWO0YAY6R7cc7EQ2CE+MEBVPP0CM9mdmHF kZQK26RY3YGFEZo5M5Rqr7xXjacitG+qZ6WCW1cySF+qM5CCwOqtwE8OVex4fF1Y NF80QBlkc+PIIMj/dSVlLm4DpaGiIqLZwhamN+2t3mWVpA5leuQrrnmQlHJjfBYq +2esWAupjdI1XwIDAQABo4IC/DCCAvgwHwYDVR0jBBgwFoAUjYxexFStiuF36Zv5 mwXhuAGNYeEwHQYDVR0OBBYEFFQEZe+/bO7YrPlhhgYN8P8VIzUWMA4GA1UdDwEB /wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEF BQcDAjBJBgNVHSAEQjBAMDQGCysGAQQBsjEBAgIHMCUwIwYIKwYBBQUHAgEWF2h0 dHBzOi8vc2VjdGlnby5jb20vQ1BTMAgGBmeBDAECATCBhAYIKwYBBQUHAQEEeDB2 ME8GCCsGAQUFBzAChkNodHRwOi8vY3J0LnNlY3RpZ28uY29tL1NlY3RpZ29SU0FE b21haW5WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0EuY3J0MCMGCCsGAQUFBzABhhdo dHRwOi8vb2NzcC5zZWN0aWdvLmNvbTAjBgNVHREEHDAaggwqLnJpdGEuZ28udHqC CnJpdGEuZ28udHowggGABgorBgEEAdZ5AgQCBIIBcASCAWwBagB3AM8RVu7VLnyv 84db2Wkum+kacWdKsBfsrAHSW3fOzDsIAAABjWhwxiIAAAQDAEgwRgIhAPVX2jZE w3aJY1IhNcsA/SjE8KuZsZwNGzIuMqMDMJ6MAiEA6cHmV4CP5yJa186V9b8R23bZ 4cA7c2ieHHVHi/Rk9nQAdgCi4wrkRe+9rZt+OO1HZ3dT14JbhJTXK14bLMS5UKRH 5wAAAY1ocMZoAAAEAwBHMEUCICMdvqKrYmCpjc7JjDMxWWoMgtAxl5hd70bbKG84 RzVqAiEA3fsvD4dE/CzOHA69iWDPlcam0NVYM9SU2PorbuCTuycAdwBOdaMnXJoQ wzhbbNTfP1LrHfDgjhuNacCx+mSxYpo53wAAAY1ocMX1AAAEAwBIMEYCIQDCRvQ7 o+31g5E3ReyBiOHHzdLOEJQwwHQx8BUHIgEZLwIhAKPTPmkRfQdrklDkxWzZiPVH 0go0yz6ZQMsaX2utNCXnMA0GCSqGSIb3DQEBCwUAA4IBAQA6UwJAdt7H5k4lykmN wgSlxzDlyRQAKAHG7e+zJGJj6vOVLnzO5qLDGfWqNNme7v2ZTPcCkiCZ0fskkH4L EToA+HXzTvfvOcwUWMdbsGwljXeMvwdAVFYFJPzfbD9VXzgpRcJTZJ1jf733dmg5 XuKff+RBYYsbD7kjB5vLzLzCCpDt9T4Q2KpYKSJ5rPCUSSlZ8ATS8SDQn9bWeZgE r4uIlpzK8aX0YRh2F7JkJ2lJ1vqKo740vYX+/vYQuKNnHRdBaetz6kTeHbhDsmQg ssQU8sY08pDrvaBIdGiDXn9RJXXKenpvM1C3zdrNf1I0/yiy6hrmS5oCRW1TOY88 ZS34 -----END CERTIFICATE----- --- Server certificate subject=CN = *.rita.go.tz issuer=C = GB, ST = Greater Manchester, L = Salford, O = Sectigo Limited, CN = Sectigo RSA Domain Validation Secure Server CA --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, P-256, 256 bits --- SSL handshake has read 2293 bytes and written 453 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: 3364F88A07625153E823410F7302A8F84469868BC30DA72BF53EB03351BF2F89 Session-ID-ctx: Master-Key: 03AA586D0E4CD2DD98983060851FE0085A350EC0CD31CB95C1A7C808DFB54D1B3C4B7E48B96D8273247701F7F6A0D9CB PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 7200 (seconds) TLS session ticket: 0000 - e7 71 cc 4f 28 1c 08 31-d2 53 53 df 7a 06 98 70 .q.O(..1.SS.z..p 0010 - 96 f5 ab a5 e0 a4 49 9b-aa ff 2e d3 0b 68 a1 4e ......I......h.N 0020 - c9 45 f6 55 c9 ea a9 1e-12 00 70 33 bc 31 2b a9 .E.U......p3.1+. 0030 - 3e 9a 4b c6 9d 56 cf 1f-79 bd be 51 44 d1 b7 7e >.K..V..y..QD..~ 0040 - 4f ca 99 2b fc 0f eb 70-72 71 e6 0f 69 ab 2d c6 O..+...prq..i.-. 0050 - d9 16 88 d5 76 c7 41 57-5c 7f 5a 08 30 05 57 fb ....v.AW\.Z.0.W. 0060 - 30 11 c5 fe 22 c8 1a e8-8b 1c 1c b5 b9 a7 aa cf 0..."........... 0070 - fa d4 04 52 52 bf 5d e3-97 bf e7 f0 9f 57 a0 b6 ...RR.]......W.. 0080 - e6 e9 f7 ef 97 e8 b6 76-79 e9 7a 36 6c c8 46 bf .......vy.z6l.F. 0090 - 20 62 d3 8b 2d d1 6c 36-34 13 5b bb 9a 24 eb 5e b..-.l64.[..$.^ 00a0 - ac 94 7b d5 a0 9e 11 31-1c 86 08 c5 93 58 51 ca ..{....1.....XQ. 00b0 - d6 2b 6e 9c d0 9c 26 a9-5a d8 a0 67 67 07 ff 0c .+n...&.Z..gg... 00c0 - 88 a5 d5 5e 31 19 62 a1-4b b4 72 06 dd 9d a3 66 ...^1.b.K.r....f Start Time: 1714130746 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: no --- DONE