SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (40 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
CNAME: | stephanelustig.com. |
Resolves To: | 185.151.30.188 |
Reverse IP lookup: | 185-151-30-188.ptr4.stackcp.net. |
Nameserver: | ns.stephanelustig.com. |
Nameserver: | ns0.swiftinter.net. |
Nameserver: | ns1.swiftinter.net. |
Nameserver: | ns2.swiftinternet.co.uk. |
General Information
Common Name: | stephanelustig.com |
SANs: | DNS:stephanelustig.comDNS:www.stephanelustig.com Total number of SANs: 2 |
Signature Algorithm: | sha384WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 232ce213715298c7272628ad61ee6309 |
Not Before: | Oct 18, 2023 00:00:00 GMT |
Not After: | Jan 16, 2024 23:59:59 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | Apache |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: stephanelustig.com
Decode this certificate for verbose information → launchSubject Common Name | stephanelustig.com |
Issuer Common Name | ZeroSSL RSA Domain Secure Site CA |
Issuer Organization | ZeroSSL |
Not Before: | Oct 18, 2023 00:00:00 GMT |
Not After: | Jan 16, 2024 23:59:59 GMT |
Signature Algorithm: | sha384WithRSAEncryption |
Serial Number: | 232ce213715298c7272628ad61ee6309 |
SHA1 Fingerprint: | 94:EA:C1:F6:BA:51:B3:A7:6D:5C:5F:D6:0E:DD:E4:25:2C:42:37:9F |
MD5 Fingerprint: | 2A:0F:04:30:4C:AC:8B:86:02:BA:9C:8D:9F:62:A2:A3 |
Certificate # 2 - Common Name: ZeroSSL RSA Domain Secure Site CA
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | ZeroSSL RSA Domain Secure Site CA |
Subject Organization | ZeroSSL |
Issuer Common Name | USERTrust RSA Certification Authority |
Issuer Organization | The USERTRUST Network |
Not Before: | Jan 30, 2020 00:00:00 GMT |
Not After: | Jan 29, 2030 23:59:59 GMT |
Signature Algorithm: | sha384WithRSAEncryption |
Serial Number: | 6c55abdbd00792c79d070cd8119ed6bf |
SHA1 Fingerprint: | C8:1A:8B:D1:F9:CF:6D:84:C5:25:F3:78:CA:1D:3F:8C:30:77:0E:34 |
MD5 Fingerprint: | 58:AA:23:10:7C:8D:5A:ED:EA:BD:0D:5E:32:57:85:92 |
OpenSSL Handshake
depth=2 C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority verify return:1 depth=1 C = AT, O = ZeroSSL, CN = ZeroSSL RSA Domain Secure Site CA verify return:1 depth=0 CN = stephanelustig.com verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = stephanelustig.com i:C = AT, O = ZeroSSL, CN = ZeroSSL RSA Domain Secure Site CA -----BEGIN CERTIFICATE----- MIIGijCCBHKgAwIBAgIQIyziE3FSmMcnJiitYe5jCTANBgkqhkiG9w0BAQwFADBL MQswCQYDVQQGEwJBVDEQMA4GA1UEChMHWmVyb1NTTDEqMCgGA1UEAxMhWmVyb1NT TCBSU0EgRG9tYWluIFNlY3VyZSBTaXRlIENBMB4XDTIzMTAxODAwMDAwMFoXDTI0 MDExNjIzNTk1OVowHTEbMBkGA1UEAxMSc3RlcGhhbmVsdXN0aWcuY29tMIIBIjAN BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAi7A793WsiolsNU0ZDBH5i6Ua8z2L n5I8kp10MzEl/IDI0vBVoc6gmx5d8POoL8wFk4wxNaoQkARMdqTBSVYlVeJrpGte eCv+PTYELtL7Z/VQyQlH8CTJFg3Jsv2IZOU/+XYAnqGEzuJly7BVpgKTcNHlEKA/ aaTukCRRfNLHqkqSdbTBtuMxkv2XXn7GIOHiNgdEnuF7020RCWnmgkcdO0Fl7tQb 2E4fVLF2E48wWabhFwzXB7+OGnYL523yiw66m9Rg5MXLc625mh9VgmPcK/UQsQ0x FCHPXNQeXRyL8tUcrezYTEum0devj/mk84ykezGpnzlnGnp0Kp7trn/pKQIDAQAB o4ICljCCApIwHwYDVR0jBBgwFoAUyNl4aKLZGWjVPXLeXwo+3LWGhqYwHQYDVR0O BBYEFLAA9YBmYsZUoaLPjFacBWabT7ZOMA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMB Af8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjBJBgNVHSAEQjBA MDQGCysGAQQBsjEBAgJOMCUwIwYIKwYBBQUHAgEWF2h0dHBzOi8vc2VjdGlnby5j b20vQ1BTMAgGBmeBDAECATCBiAYIKwYBBQUHAQEEfDB6MEsGCCsGAQUFBzAChj9o dHRwOi8vemVyb3NzbC5jcnQuc2VjdGlnby5jb20vWmVyb1NTTFJTQURvbWFpblNl Y3VyZVNpdGVDQS5jcnQwKwYIKwYBBQUHMAGGH2h0dHA6Ly96ZXJvc3NsLm9jc3Au c2VjdGlnby5jb20wggEEBgorBgEEAdZ5AgQCBIH1BIHyAPAAdQB2/4g/Crb7lVHC Ycz1h7o0tKTNuyncaEIKn+ZnTFo6dAAAAYtDj7WWAAAEAwBGMEQCIAKH5zd6tIZf ayXOrtWA6KKPDp6rNx2gwGFjIZwLjGD3AiByWH4Wj9CIW/gYA395tsBN2UynjokW VhjxjSisfW5IfwB3ANq2v2s/tbYin5vCu1xr6HCRcWy7UYSFNL2kPTBI1/urAAAB i0OPtesAAAQDAEgwRgIhAKpJ+3IA4UGkwHXKuu/HqPnV+EaJqEpyKi2E7bHHzGgA AiEA1JP2NDnVTPmORNapR1ci0zYnglE3beg+JCqravl9VNEwNQYDVR0RBC4wLIIS c3RlcGhhbmVsdXN0aWcuY29tghZ3d3cuc3RlcGhhbmVsdXN0aWcuY29tMA0GCSqG SIb3DQEBDAUAA4ICAQBYJU9vdu8kpPILZgImR8RVld8ajgpB+MYbaB+3EFiVGOP+ TZCjk5eaMeY+KXlqRoYDftXWIFJkSUf+mLTQTdOjQk98ccH+nC1s43eTmOOqk4WY pV5ALwDCvKC5hN5j2xz+9QUnHMQyM3tb2rcLEQ5J01idSrW4u4La8cWjeEds/hjS Nh6AS+Leq4taueM1iGUPMl67EnE1nVeTLhmjIZzbLneJSa3BmoDfakv7jgHX6na4 WB5QKXoofHModwvZ14NE5qG8Sfw0SmLQW5zJEYH3tNj5xmySbwCFAW3xZ4WgJN/X nixZWJ8tvqmRYBbyvpc+3e5XmFPG5xYM0JH0gNB6qcbor7aBuZk26QYpa3ecDJbA WB50XTTeE40ILNyOL3g5NdRPDctp4mjBz5ttr4uKEITj56mzF7tgYzitBlE+/MvP zQrm9QoJgCllkDUkX0LS281sgd54RPcttvechPX7qBjy4JzXvYzMFAqQh3dnekoi 6gFy+kw0Wo63nPzrD0FulgXH4nKzQ6UbTS/oPrv9bQIYARgMuuKPQr0ua0gApCIr zix5yK8TPB4yzDgIwa142cQhq6g3IHX1eKSOtNkFUe2OL9n49Fm4d+IVpcyAGxN/ H5xEHGZrss6XmKoKf0QCOMNckIv8x170taPViwnOWTy9sXTr1q7U0Cuu4iUqiw== -----END CERTIFICATE----- 1 s:C = AT, O = ZeroSSL, CN = ZeroSSL RSA Domain Secure Site CA i:C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority -----BEGIN CERTIFICATE----- MIIG1TCCBL2gAwIBAgIQbFWr29AHksedBwzYEZ7WvzANBgkqhkiG9w0BAQwFADCB iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0pl cnNleSBDaXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNV BAMTJVVTRVJUcnVzdCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMjAw MTMwMDAwMDAwWhcNMzAwMTI5MjM1OTU5WjBLMQswCQYDVQQGEwJBVDEQMA4GA1UE ChMHWmVyb1NTTDEqMCgGA1UEAxMhWmVyb1NTTCBSU0EgRG9tYWluIFNlY3VyZSBT aXRlIENBMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAhmlzfqO1Mdgj 4W3dpBPTVBX1AuvcAyG1fl0dUnw/MeueCWzRWTheZ35LVo91kLI3DDVaZKW+TBAs JBjEbYmMwcWSTWYCg5334SF0+ctDAsFxsX+rTDh9kSrG/4mp6OShubLaEIUJiZo4 t873TuSd0Wj5DWt3DtpAG8T35l/v+xrN8ub8PSSoX5Vkgw+jWf4KQtNvUFLDq8mF WhUnPL6jHAADXpvs4lTNYwOtx9yQtbpxwSt7QJY1+ICrmRJB6BuKRt/jfDJF9Jsc RQVlHIxQdKAJl7oaVnXgDkqtk2qddd3kCDXd74gv813G91z7CjsGyJ93oJIlNS3U gFbD6V54JMgZ3rSmotYbz98oZxX7MKbtCm1aJ/q+hTv2YK1yMxrnfcieKmOYBbFD hnW5O6RMA703dBK92j6XRN2EttLkQuujZgy+jXRKtaWMIlkNkWJmOiHmErQngHvt iNkIcjJumq1ddFX4iaTI40a6zgvIBtxFeDs2RfcaH73er7ctNUUqgQT5rFgJhMmF x76rQgB5OZUkodb5k2ex7P+Gu4J86bS15094UuYcV09hVeknmTh5Ex9CBKipLS2W 2wKBakf+aVYnNCU6S0nASqt2xrZpGC1v7v6DhuepyyJtn3qSV2PoBiU5Sql+aARp wUibQMGm44gjyNDqDlVp+ShLQlUH9x8CAwEAAaOCAXUwggFxMB8GA1UdIwQYMBaA FFN5v1qqK0rPVIDh2JvAnfKyA2bLMB0GA1UdDgQWBBTI2XhootkZaNU9ct5fCj7c tYaGpjAOBgNVHQ8BAf8EBAMCAYYwEgYDVR0TAQH/BAgwBgEB/wIBADAdBgNVHSUE FjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwIgYDVR0gBBswGTANBgsrBgEEAbIxAQIC TjAIBgZngQwBAgEwUAYDVR0fBEkwRzBFoEOgQYY/aHR0cDovL2NybC51c2VydHJ1 c3QuY29tL1VTRVJUcnVzdFJTQUNlcnRpZmljYXRpb25BdXRob3JpdHkuY3JsMHYG CCsGAQUFBwEBBGowaDA/BggrBgEFBQcwAoYzaHR0cDovL2NydC51c2VydHJ1c3Qu Y29tL1VTRVJUcnVzdFJTQUFkZFRydXN0Q0EuY3J0MCUGCCsGAQUFBzABhhlodHRw Oi8vb2NzcC51c2VydHJ1c3QuY29tMA0GCSqGSIb3DQEBDAUAA4ICAQAVDwoIzQDV ercT0eYqZjBNJ8VNWwVFlQOtZERqn5iWnEVaLZZdzxlbvz2Fx0ExUNuUEgYkIVM4 YocKkCQ7hO5noicoq/DrEYH5IuNcuW1I8JJZ9DLuB1fYvIHlZ2JG46iNbVKA3ygA Ez86RvDQlt2C494qqPVItRjrz9YlJEGT0DrttyApq0YLFDzf+Z1pkMhh7c+7fXeJ qmIhfJpduKc8HEQkYQQShen426S3H0JrIAbKcBCiyYFuOhfyvuwVCFDfFvrjADjd 4jX1uQXd161IyFRbm89s2Oj5oU1wDYz5sx+hoCuh6lSs+/uPuWomIq3y1GDFNafW +LsHBU16lQo5Q2yh25laQsKRgyPmMpHJ98edm6y2sHUabASmRHxvGiuwwE25aDU0 2SAeepyImJ2CzB80YG7WxlynHqNhpE7xfC7PzQlLgmfEHdU+tHFeQazRQnrFkW2W kqRGIq7cKRnyypvjPMkjeiV9lRdAM9fSJvsB3svUuu1coIG1xxI1yegoGM4r5QP4 RGIVvYaiI76C0djoSbQ/dkIUUXQuB8AL5jyH34g3BZaaXyvpmnV4ilppMXVAnAYG ON51WhJ6W0xNdNJwzYASZYH+tmCWI+N60Gv2NNMGHwMZ7e9bXgzUCZH5FaBFDGR5 S9VWqHB73Q+OyIVvIbKYcSc2w/aSuFKGSA== -----END CERTIFICATE----- --- Server certificate subject=CN = stephanelustig.com issuer=C = AT, O = ZeroSSL, CN = ZeroSSL RSA Domain Secure Site CA --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 3996 bytes and written 413 bytes Verification: OK --- New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 0 (ok) --- DONE