SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (46 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 216.18.180.222 |
Reverse IP lookup: | No records found |
Nameserver: | ns1.reflected.net. |
Nameserver: | ns0.reflected.net. |
General Information
Common Name: | watchmygf.net |
SANs: | DNS:access.watchmygf.netDNS:watchmygf.netDNS:www.watchmygf.net Total number of SANs: 3 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 4ba9f56a783015769b0dd9c42bdf2fe0f1c |
Not Before: | Mar 11, 2024 04:19:55 GMT |
Not After: | Jun 09, 2024 04:19:54 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | nginx/1.16.1 |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: watchmygf.net
Decode this certificate for verbose information → launchSubject Common Name | watchmygf.net |
Issuer Common Name | R3 |
Issuer Organization | Let's Encrypt |
Not Before: | Mar 11, 2024 04:19:55 GMT |
Not After: | Jun 09, 2024 04:19:54 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 4ba9f56a783015769b0dd9c42bdf2fe0f1c |
SHA1 Fingerprint: | 0D:86:9F:24:DC:7F:D0:84:C0:58:DF:98:4E:C5:75:78:74:A4:02:2D |
MD5 Fingerprint: | 1C:64:90:BD:22:FD:30:F0:4F:D7:20:25:D8:6B:6C:93 |
Certificate # 2 - Common Name: R3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R3 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Sep 04, 2020 00:00:00 GMT |
Not After: | Sep 15, 2025 16:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 912b084acf0c18a753f6d62e25a75f5a |
SHA1 Fingerprint: | A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05 |
MD5 Fingerprint: | E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R3 verify return:1 depth=0 CN = watchmygf.net verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = watchmygf.net i:C = US, O = Let's Encrypt, CN = R3 -----BEGIN CERTIFICATE----- MIIFDzCCA/egAwIBAgISBLqfVqeDAVdpsN2cQr3y/g8cMA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yNDAzMTEwNDE5NTVaFw0yNDA2MDkwNDE5NTRaMBgxFjAUBgNVBAMT DXdhdGNobXlnZi5uZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCo jrVBN8GFTfxithGQCsSCgGXiK9d/2WXXWD+7FR9q/XLsYzjoAEh5SUZt0M44XmyP lyADLA0/g1+JcJ+nq+qrpEIUg7uDPYsz7w3vYvg1MScOosiEE00BOPy80xA/4ntl TntDxMHdRUuqrlAruiDkOV+U+cOzMQdMTXsAJAxdC9QLEx25SPZDurFYLA1rvlrA zj9ujPL1lIDV2X9Bf8gPl4ifsJAW+wg+RiGRkkz4RUWxL7rXMuHqeNkwdHCkzsOl bYgzs3aDbUBGwYNJo4/54Gs/QJaOyA39oUDHR3IUQhWiXYZCVoZZCUAJh1Z5GitL O2MsoF04/LkgFBwywoUzAgMBAAGjggI3MIICMzAOBgNVHQ8BAf8EBAMCBaAwHQYD VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB/wQCMAAwHQYDVR0O BBYEFDra+Q1jKgNSMWcfMvebHGRU+7U6MB8GA1UdIwQYMBaAFBQusxe3WFbLrlAJ QOYfr52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggrBgEFBQcwAYYVaHR0cDovL3Iz Lm8ubGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRwOi8vcjMuaS5sZW5jci5vcmcv MEEGA1UdEQQ6MDiCFGFjY2Vzcy53YXRjaG15Z2YubmV0gg13YXRjaG15Z2YubmV0 ghF3d3cud2F0Y2hteWdmLm5ldDATBgNVHSAEDDAKMAgGBmeBDAECATCCAQMGCisG AQQB1nkCBAIEgfQEgfEA7wB1AEiw42vapkc0D+VqAvqdMOscUgHLVt0sgdm7v6s5 2IRzAAABjiv0BPQAAAQDAEYwRAIgVC7hiEG2hx2ubEfmATzKlSwdpLf2IVUSdbO/ ZUwY9fYCIHwAkURqLUkM7UhC6Z1C0oG65QrqJkxE/uMkavN5TWc6AHYAouK/1h7e Ly8HoNZObTen3GVDsMa1LqLat4r4mm31F9gAAAGOK/QE9QAABAMARzBFAiEAynR7 kmcyfF9wjn8WOnBuUtB361h7+OUazJKAv/Uj1OkCIFwuCG6Lkak3smw6SAlyvoWE J3U6CQRbVjB/gHH4M4voMA0GCSqGSIb3DQEBCwUAA4IBAQA7kvmzopJBT8QMJwdd 0cAh24XHmGPRsD5j9/qJnJ4EUhZtZpjfg4b0o0HXk/Lzls5kOB33bSFCXzo7GXSu ttn17ZEviq56cSqPxfWz8u0afRK3XIzFcROxkFLk99t28W1RatyJF2esLtbKaGKl Cev63HfNXwtkgNpXHDMlCUl8Jk9LUxADE2SvX2JKcoPzGBZNpdu9P55uT/dT15sf ssM4N1sIFidh5R60ve/Hdf5Duh6t823DpbOf7uBn5rX8y8yQOPcNYKBPg+EvFuOL Y4JoQLf6wh0kP0/1VnC+zchDKGZ+szILoS7F7VkqU/gOtDUMtsCopcy5C5ppo4TF Cx+8 -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R3 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG /kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4 avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2 yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+ HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX nLRbwHOoq7hHwg== -----END CERTIFICATE----- --- Server certificate subject=CN = watchmygf.net issuer=C = US, O = Let's Encrypt, CN = R3 --- No client certificate CA names sent Peer signing digest: SHA512 Peer signature type: RSA Server Temp Key: ECDH, P-256, 256 bits --- SSL handshake has read 3294 bytes and written 442 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-CHACHA20-POLY1305 Session-ID: 43E896941134E9542839090D6B91D6BA03164A95E598B44DD48607DAC74268B5 Session-ID-ctx: Master-Key: 6C0A9CE365861522E8FC72FD1685169B85F3713C777E8F00D65EBF03EB1C0D50740BF3083F9B44E3E0786F5F737A1396 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 7200 (seconds) TLS session ticket: 0000 - bb 92 dd e1 e6 d1 53 19-5c d8 b2 94 a1 1e 3c 22 ......S.\.....<" 0010 - 16 83 61 4b f6 40 aa 07-8b 71 04 a5 95 1e 51 e3 ..aK.@...q....Q. 0020 - a2 2e ff fe af 45 e3 22-14 ea c1 72 b3 21 91 1b .....E."...r.!.. 0030 - 3c 9d 7d 95 4d 86 4a cb-d7 21 cb fe f6 2d 0b 75 <.}.M.J..!...-.u 0040 - cb 03 53 6b 86 33 ae 64-ad 33 56 c3 87 7e 3f 1d ..Sk.3.d.3V..~?. 0050 - 6c 41 5b c1 10 1d 50 41-b4 89 34 44 27 92 6a f5 lA[...PA..4D'.j. 0060 - 9f 8c 22 3e db 0b 4e 82-11 77 1e d9 9b d4 03 34 ..">..N..w.....4 0070 - 06 e3 74 e1 8d c5 2f 6f-1e fd 44 9f 78 78 81 ab ..t.../o..D.xx.. 0080 - 53 60 aa d2 9a 43 74 2e-dc 4b d9 2b 0a ea fe 9f S`...Ct..K.+.... 0090 - 1d 73 79 f1 ef c2 65 7e-eb ca 92 63 7e 91 7a 36 .sy...e~...c~.z6 00a0 - a3 e4 74 7a 46 eb fe ea-8a 82 da a5 a9 6e 15 06 ..tzF........n.. 00b0 - d2 a7 7f 56 82 27 54 c6-41 ee 5c 41 bf 3d 25 21 ...V.'T.A.\A.=%! Start Time: 1713900854 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: yes --- DONE