SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
Hostname: | close Doesn't match Common Name or/and SANs |
Expired: | done No (85 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
CNAME: | nikoskalfas.com. |
Resolves To: | 76.76.21.21 |
Reverse IP lookup: | No records found |
Nameserver: | ns78.domaincontrol.com. |
Nameserver: | ns1.vercel-dns.com. |
Nameserver: | ns77.domaincontrol.com. |
Nameserver: | ns2.vercel-dns.com. |
General Information
Common Name: | nikoskalfas.com |
SANs: | DNS:nikoskalfas.com Total number of SANs: 1 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 34db24b0ca1eb17df996c3941afb21b6f2a |
Not Before: | Dec 02, 2024 21:31:38 GMT |
Not After: | Mar 02, 2025 21:31:37 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | Vercel |
HSTS: | max-age=63072000 |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: nikoskalfas.com
Decode this certificate for verbose information → launchSubject Common Name | nikoskalfas.com |
Issuer Common Name | R11 |
Issuer Organization | Let's Encrypt |
Not Before: | Dec 02, 2024 21:31:38 GMT |
Not After: | Mar 02, 2025 21:31:37 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 34db24b0ca1eb17df996c3941afb21b6f2a |
SHA1 Fingerprint: | F4:C5:7A:29:03:03:BD:59:3F:1D:7A:32:BA:70:9D:12:88:DA:93:C4 |
MD5 Fingerprint: | DA:D1:06:35:8E:89:47:46:5D:70:C5:76:2E:DF:5D:D8 |
Certificate # 2 - Common Name: R11
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R11 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Mar 13, 2024 00:00:00 GMT |
Not After: | Mar 12, 2027 23:59:59 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 8a7d3e13d62f30ef2386bd29076b34f8 |
SHA1 Fingerprint: | 69:6D:B3:AF:0D:FF:C1:7E:65:C6:A2:0D:92:5C:5A:7B:D2:4D:EC:7E |
MD5 Fingerprint: | 2F:AC:04:55:31:47:F4:6A:49:DF:9B:4E:BE:A6:DF:43 |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R11 verify return:1 depth=0 CN = nikoskalfas.com verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = nikoskalfas.com i:C = US, O = Let's Encrypt, CN = R11 -----BEGIN CERTIFICATE----- MIIE8DCCA9igAwIBAgISA02ySwyh6xffmWw5Qa+yG28qMA0GCSqGSIb3DQEBCwUA MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD EwNSMTEwHhcNMjQxMjAyMjEzMTM4WhcNMjUwMzAyMjEzMTM3WjAaMRgwFgYDVQQD Ew9uaWtvc2thbGZhcy5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB AQCdsqG2+vfcrYQhWlBMIG3EzVPQDO+Crx+Z6eLhiNb/YmbKFiy7t3WoSLKq01xj s7HKJSafsOTSE5p3cXqkg4kva7rcH+gldPDkA/8ESvaE0Vq7JE+RkADEGfVWgMBO W8axrrpru6pUO43xPWESEpIxf3JlmB2+bJJLD7u/MAaA+7HuPpNkFe0nPRCzRWQ1 SuUGhU+rJFhRdPU9MdCAHIsIDbA7irg6cdCW83uXKFT2T9XueRBg9daSoq/ulbfa 1oEVA41nfIJX9FYvUlrdFvLIvw08Oezi9YDSmjxjZQGuQjrrsVGUH5e33Hz4bC1h jlj1ON0gcvz10HehoFDWJ8uVAgMBAAGjggIVMIICETAOBgNVHQ8BAf8EBAMCBaAw HQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB/wQCMAAwHQYD VR0OBBYEFJa6lCfHvFFBrnerfnZQraHfk4qiMB8GA1UdIwQYMBaAFMXPRqTq9MPA emyVxC2wXpIvJuO5MFcGCCsGAQUFBwEBBEswSTAiBggrBgEFBQcwAYYWaHR0cDov L3IxMS5vLmxlbmNyLm9yZzAjBggrBgEFBQcwAoYXaHR0cDovL3IxMS5pLmxlbmNy Lm9yZy8wGgYDVR0RBBMwEYIPbmlrb3NrYWxmYXMuY29tMBMGA1UdIAQMMAowCAYG Z4EMAQIBMIIBBgYKKwYBBAHWeQIEAgSB9wSB9ADyAHcAouMK5EXvva2bfjjtR2d3 U9eCW4SU1yteGyzEuVCkR+cAAAGTiX7MAQAABAMASDBGAiEA38VYrykC93UQ+aBE T54Wg0wbLpFpgg2enuhvImziSE4CIQCMZV1EujFy4/RzCatmdt+EVZ8VCP21k3Ze o9cEvLL2UgB3AM8RVu7VLnyv84db2Wkum+kacWdKsBfsrAHSW3fOzDsIAAABk4l+ zDkAAAQDAEgwRgIhANboCvKbc/MNZlbjeZ4dl1ZBU1kQ4PwHniLpMzQrBCfzAiEA u4zu5pk2HqQ3SRVd8OvSNTLjpoBd8+vtFcUnmjYEyPowDQYJKoZIhvcNAQELBQAD ggEBAFUxXqNmhqvjqZ0hW6cQPtT7xyl0GBNhtZ7IfX/Y+b/2SzVtCyFj66fU7ufi 8kXx4Hl4YIk4J9klLN+Bu7+tuUdE0byrMmockYS1MfanDroBMu3o1B4MGPHjtzz0 3pWpLj1oc6NAWwKHe/GbNF3N9iwQ7xywwR9s9FQn+oc0Byed+6UUeztzMy+vh1MM XlnviWb/7YocWsEoqyDcg1LyrY41vEzsQpmRnzNuhKfTrYOFYFV3WVqcAMU5PRBO eJkAaGbQGgZSxDnNqbwtd7FrLOCgDCINGiOgAl9qWjk4oIZL9lYB9U8NNdBhH7HH HrYFrSqKY91b07+1nMjsT+lk+x8= -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R11 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFBjCCAu6gAwIBAgIRAIp9PhPWLzDvI4a9KQdrNPgwDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjQwMzEzMDAwMDAw WhcNMjcwMzEyMjM1OTU5WjAzMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDEMMAoGA1UEAxMDUjExMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB CgKCAQEAuoe8XBsAOcvKCs3UZxD5ATylTqVhyybKUvsVAbe5KPUoHu0nsyQYOWcJ DAjs4DqwO3cOvfPlOVRBDE6uQdaZdN5R2+97/1i9qLcT9t4x1fJyyXJqC4N0lZxG AGQUmfOx2SLZzaiSqhwmej/+71gFewiVgdtxD4774zEJuwm+UE1fj5F2PVqdnoPy 6cRms+EGZkNIGIBloDcYmpuEMpexsr3E+BUAnSeI++JjF5ZsmydnS8TbKF5pwnnw SVzgJFDhxLyhBax7QG0AtMJBP6dYuC/FXJuluwme8f7rsIU5/agK70XEeOtlKsLP Xzze41xNG/cLJyuqC0J3U095ah2H2QIDAQABo4H4MIH1MA4GA1UdDwEB/wQEAwIB hjAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwEwEgYDVR0TAQH/BAgwBgEB /wIBADAdBgNVHQ4EFgQUxc9GpOr0w8B6bJXELbBeki8m47kwHwYDVR0jBBgwFoAU ebRZ5nu25eQBc4AIiMgaWPbpm24wMgYIKwYBBQUHAQEEJjAkMCIGCCsGAQUFBzAC hhZodHRwOi8veDEuaS5sZW5jci5vcmcvMBMGA1UdIAQMMAowCAYGZ4EMAQIBMCcG A1UdHwQgMB4wHKAaoBiGFmh0dHA6Ly94MS5jLmxlbmNyLm9yZy8wDQYJKoZIhvcN AQELBQADggIBAE7iiV0KAxyQOND1H/lxXPjDj7I3iHpvsCUf7b632IYGjukJhM1y v4Hz/MrPU0jtvfZpQtSlET41yBOykh0FX+ou1Nj4ScOt9ZmWnO8m2OG0JAtIIE38 01S0qcYhyOE2G/93ZCkXufBL713qzXnQv5C/viOykNpKqUgxdKlEC+Hi9i2DcaR1 e9KUwQUZRhy5j/PEdEglKg3l9dtD4tuTm7kZtB8v32oOjzHTYw+7KdzdZiw/sBtn UfhBPORNuay4pJxmY/WrhSMdzFO2q3Gu3MUBcdo27goYKjL9CTF8j/Zz55yctUoV aneCWs/ajUX+HypkBTA+c8LGDLnWO2NKq0YD/pnARkAnYGPfUDoHR9gVSp/qRx+Z WghiDLZsMwhN1zjtSC0uBWiugF3vTNzYIEFfaPG7Ws3jDrAMMYebQ95JQ+HIBD/R PBuHRTBpqKlyDnkSHDHYPiNX3adPoPAcgdF3H2/W0rmoswMWgTlLn1Wu0mrks7/q pdWfS6PJ1jty80r2VKsM/Dj3YIDfbjXKdaFU5C+8bhfJGqU3taKauuz0wHVGT3eo 6FlWkWYtbt4pgdamlwVeZEW+LM7qZEJEsMNPrfC03APKmZsJgpWCDWOKZvkZcvjV uYkQ4omYCTX5ohy+knMjdOmdH9c7SpqEWBDC86fiNex+O0XOMEZSa8DA -----END CERTIFICATE----- --- Server certificate subject=CN = nikoskalfas.com issuer=C = US, O = Let's Encrypt, CN = R11 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3103 bytes and written 394 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE --- Post-Handshake New Session Ticket arrived: SSL-Session: Protocol : TLSv1.3 Cipher : TLS_AES_128_GCM_SHA256 Session-ID: 40B1E118CA7F781D6FFF19826690EA860B6557C7E0288C0242216D92A1D570D3 Session-ID-ctx: Resumption PSK: B1F298BBCFA7106EE1B5E1CB40F0449122059EC79DF9514F2FAA31F8CAF1BA52 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 604800 (seconds) TLS session ticket: 0000 - 6b 23 81 c4 5d f9 6d 87-71 10 97 8c 36 6a c9 14 k#..].m.q...6j.. 0010 - 94 8c 63 65 5b 49 3e 03-6a e9 b8 53 16 34 72 8e ..ce[I>.j..S.4r. 0020 - ce 2a c8 32 04 82 5c 2a-26 0c a2 27 37 6a 3b 63 .*.2..\*&..'7j;c 0030 - bd cc be e6 44 a0 b5 7d-e5 dc 48 7a 71 f6 1e 18 ....D..}..Hzq... 0040 - 42 c4 25 52 c0 24 f1 7e-b8 b6 0c c9 73 1b c8 3d B.%R.$.~....s..= 0050 - 97 e5 72 fa cd 72 dc fc-8c 49 48 92 19 ab 68 21 ..r..r...IH...h! 0060 - b3 8e b9 95 4f 5e 5a 19-27 ....O^Z.' Start Time: 1733594816 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: no Max Early Data: 0 --- read R BLOCK