SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
It's all good. We have not detected any issues.
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (7 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | done Yes, we were able to verify the certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 200.58.111.55 |
Reverse IP lookup: | c256.dattaweb.com. |
Nameserver: | ns3.hostmar.com. |
Nameserver: | ns4.hostmar.com. |
General Information
Common Name: | xperticia.com |
SANs: | DNS:*.xperticia.comDNS:xperticia.com Total number of SANs: 2 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 4096 bits |
Serial Number: | 3dc0545ec5124ee27a63f1af48359c56d01 |
Not Before: | Mar 08, 2023 01:29:56 GMT |
Not After: | Jun 06, 2023 01:29:55 GMT |
Number of certs: | 3 |
Revocation Status: | good |
OCSP Stapling: | Not Supported |
Server: | Apache |
HSTS: | Not Supported |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: xperticia.com
Decode this certificate for verbose information → launchSubject Common Name | xperticia.com |
Issuer Common Name | R3 |
Issuer Organization | Let's Encrypt |
Not Before: | Mar 08, 2023 01:29:56 GMT |
Not After: | Jun 06, 2023 01:29:55 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 3dc0545ec5124ee27a63f1af48359c56d01 |
SHA1 Fingerprint: | C1:26:A8:99:88:7C:35:92:C0:8D:3C:F0:FB:E7:D5:FB:94:12:CF:65 |
MD5 Fingerprint: | 17:42:34:33:17:93:68:58:07:5F:F1:F4:2E:14:E0:A5 |
Certificate # 2 - Common Name: R3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | R3 |
Subject Organization | Let's Encrypt |
Issuer Common Name | ISRG Root X1 |
Issuer Organization | Internet Security Research Group |
Not Before: | Sep 04, 2020 00:00:00 GMT |
Not After: | Sep 15, 2025 16:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 912b084acf0c18a753f6d62e25a75f5a |
SHA1 Fingerprint: | A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05 |
MD5 Fingerprint: | E8:29:E6:5D:7C:43:07:D6:FB:C1:3C:17:9E:03:7A:36 |
Certificate # 3 - Common Name: ISRG Root X1
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | ISRG Root X1 |
Subject Organization | Internet Security Research Group |
Issuer Common Name | DST Root CA X3 |
Issuer Organization | Digital Signature Trust Co. |
Not Before: | Jan 20, 2021 19:14:03 GMT |
Not After: | Sep 30, 2024 18:14:03 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 4001772137d4e942b8ee76aa3c640ab7 |
SHA1 Fingerprint: | 93:3C:6D:DE:E9:5C:9C:41:A4:0F:9F:50:49:3D:82:BE:03:AD:87:BF |
MD5 Fingerprint: | C1:E1:FF:07:F9:F6:88:49:82:74:D1:A1:80:53:EA:BF |
OpenSSL Handshake
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = R3 verify return:1 depth=0 CN = xperticia.com verify return:1 CONNECTED(00000003) OCSP response: no response sent --- Certificate chain 0 s:CN = xperticia.com i:C = US, O = Let's Encrypt, CN = R3 -----BEGIN CERTIFICATE----- MIIGMjCCBRqgAwIBAgISA9wFRexRJO4npj8a9INZxW0BMA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yMzAzMDgwMTI5NTZaFw0yMzA2MDYwMTI5NTVaMBgxFjAUBgNVBAMT DXhwZXJ0aWNpYS5jb20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDB 2webMfCGoCFevut+Cp2msBsn3ISc6zRjumvyrjHCpnsb03hvxEBkEmlnNzw9JtRa mfskCEf+SEM29qkBRcBcEpQpmft+lMW1HvKfqPTnaqdv3Q/MFy0NnRo5lV+KC/iZ 2kwbMUzNBDe+xotYaqoaHHWVdSy9xRPNsrjs6xoQtSM5qAYXFHfchpsFXyhmVfkw rH28e8SnVMKT3lR+uKNi0t85cLXTSaad+2qDa0Xc+SB0K+Q5SXC/jOnrfUvHlHuu 0ZkBF06aBLhzM+p6DLLy6T6lDl3n67WWgiQ4DEUsekwaNn6dieoW2ZJNUAdIX+zg /pNeQ/hRWFCMxasl3vb3o3XdNYp6eEOmV0SAJC5OyWwr3+uxOXBA35f1sSM58pkG ck0++Mv1RAG5svJlZuByaUNAtSkq+2IcVsEslg2dIdPyBC6B6wpCIak6m01gw0Ie ZjrvuW4fOKbe7IzkMKbpVT+xdJ6g5j+/ez7xOTXyLS4wBnoBx6ygJgBYBC5KWpDh sCIpUpebC2IaWmT00N0A4/ozFlbZs7NbbLNxPangw7Mxx65Ie1+IhJko5p0r6sC5 bQWOXJKPF5fkXqX95EVOdcbon3LrbQqnQsT01Pj5nEJEAqGxd5/SMdFLp7c/Ze35 mWtYnnjZ4TLe/IgQTypBIit2YZ5DIrLXb2UaacpBLQIDAQABo4ICWjCCAlYwDgYD VR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAMBgNV HRMBAf8EAjAAMB0GA1UdDgQWBBQ9mw726WjdXC/SayDcZZH2ZSIOjjAfBgNVHSME GDAWgBQULrMXt1hWy65QCUDmH6+dixTCxjBVBggrBgEFBQcBAQRJMEcwIQYIKwYB BQUHMAGGFWh0dHA6Ly9yMy5vLmxlbmNyLm9yZzAiBggrBgEFBQcwAoYWaHR0cDov L3IzLmkubGVuY3Iub3JnLzApBgNVHREEIjAggg8qLnhwZXJ0aWNpYS5jb22CDXhw ZXJ0aWNpYS5jb20wTAYDVR0gBEUwQzAIBgZngQwBAgEwNwYLKwYBBAGC3xMBAQEw KDAmBggrBgEFBQcCARYaaHR0cDovL2Nwcy5sZXRzZW5jcnlwdC5vcmcwggEFBgor BgEEAdZ5AgQCBIH2BIHzAPEAdwC3Pvsk35xNunXyOcW6WPRsXfxCz3qfNcSeHQmB Je20mQAAAYa/DcgyAAAEAwBIMEYCIQCb8KTuJJuwFhXmujIfxKpWmJd957gCnrLw YvpkhAX9mgIhAIItIRGQZxQgrWgguKIZHm8QBG3ENvZa02n46ltihMunAHYArfe+ +nz/EMiLnT2cHj4YarRnKV3PsQwkyoWGNOvcgooAAAGGvw3IgwAABAMARzBFAiEA gLE5VLQarHhdXjKdXSjW4jh4CQF2mokTgy584psX6D8CIE0sx+1U+4m/Fmh03v91 242oA1UGk42VMOFDd5Gt06h4MA0GCSqGSIb3DQEBCwUAA4IBAQBmBqjmY7qoIJDi qgcjSfV88zpOKMVcbGlOreGp5HQC9t5w//KXvPlWC+Bknic87vkfjoCKyoLif3eY bPEJqGs4Hefx44Vwl9UDVz3XTrHis6FwKy3i0j4hziubqyeUnwBe9kykNbGCo4EZ v1vgfcovqtyzeJQMfBpufDURtjDRKMfH/B17jGUb1SHcctyz/zEpvcEWmJgu8HRa rAKGEG+bdWUPAbFsud5riYSHOXEt+H/y9Wq3GFC4XUx9ywhgvVejPnUvWU3bPYTk ZmZj96zNHmg2PNWyyjEo+IuSuEwyVi1rmxju4ESbJVc1q2xp27tXaCvEAO3tWO6O EYt2FoPm -----END CERTIFICATE----- 1 s:C = US, O = Let's Encrypt, CN = R3 i:C = US, O = Internet Security Research Group, CN = ISRG Root X1 -----BEGIN CERTIFICATE----- MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG /kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4 avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2 yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+ HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX nLRbwHOoq7hHwg== -----END CERTIFICATE----- 2 s:C = US, O = Internet Security Research Group, CN = ISRG Root X1 i:O = Digital Signature Trust Co., CN = DST Root CA X3 -----BEGIN CERTIFICATE----- MIIFYDCCBEigAwIBAgIQQAF3ITfU6UK47naqPGQKtzANBgkqhkiG9w0BAQsFADA/ MSQwIgYDVQQKExtEaWdpdGFsIFNpZ25hdHVyZSBUcnVzdCBDby4xFzAVBgNVBAMT DkRTVCBSb290IENBIFgzMB4XDTIxMDEyMDE5MTQwM1oXDTI0MDkzMDE4MTQwM1ow TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwggIiMA0GCSqGSIb3DQEB AQUAA4ICDwAwggIKAoICAQCt6CRz9BQ385ueK1coHIe+3LffOJCMbjzmV6B493XC ov71am72AE8o295ohmxEk7axY/0UEmu/H9LqMZshftEzPLpI9d1537O4/xLxIZpL wYqGcWlKZmZsj348cL+tKSIG8+TA5oCu4kuPt5l+lAOf00eXfJlII1PoOK5PCm+D LtFJV4yAdLbaL9A4jXsDcCEbdfIwPPqPrt3aY6vrFk/CjhFLfs8L6P+1dy70sntK 4EwSJQxwjQMpoOFTJOwT2e4ZvxCzSow/iaNhUd6shweU9GNx7C7ib1uYgeGJXDR5 bHbvO5BieebbpJovJsXQEOEO3tkQjhb7t/eo98flAgeYjzYIlefiN5YNNnWe+w5y sR2bvAP5SQXYgd0FtCrWQemsAXaVCg/Y39W9Eh81LygXbNKYwagJZHduRze6zqxZ Xmidf3LWicUGQSk+WT7dJvUkyRGnWqNMQB9GoZm1pzpRboY7nn1ypxIFeFntPlF4 FQsDj43QLwWyPntKHEtzBRL8xurgUBN8Q5N0s8p0544fAQjQMNRbcTa0B7rBMDBc SLeCO5imfWCKoqMpgsy6vYMEG6KDA0Gh1gXxG8K28Kh8hjtGqEgqiNx2mna/H2ql PRmP6zjzZN7IKw0KKP/32+IVQtQi0Cdd4Xn+GOdwiK1O5tmLOsbdJ1Fu/7xk9TND TwIDAQABo4IBRjCCAUIwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYw SwYIKwYBBQUHAQEEPzA9MDsGCCsGAQUFBzAChi9odHRwOi8vYXBwcy5pZGVudHJ1 c3QuY29tL3Jvb3RzL2RzdHJvb3RjYXgzLnA3YzAfBgNVHSMEGDAWgBTEp7Gkeyxx +tvhS5B1/8QVYIWJEDBUBgNVHSAETTBLMAgGBmeBDAECATA/BgsrBgEEAYLfEwEB ATAwMC4GCCsGAQUFBwIBFiJodHRwOi8vY3BzLnJvb3QteDEubGV0c2VuY3J5cHQu b3JnMDwGA1UdHwQ1MDMwMaAvoC2GK2h0dHA6Ly9jcmwuaWRlbnRydXN0LmNvbS9E U1RST09UQ0FYM0NSTC5jcmwwHQYDVR0OBBYEFHm0WeZ7tuXkAXOACIjIGlj26Ztu MA0GCSqGSIb3DQEBCwUAA4IBAQAKcwBslm7/DlLQrt2M51oGrS+o44+/yQoDFVDC 5WxCu2+b9LRPwkSICHXM6webFGJueN7sJ7o5XPWioW5WlHAQU7G75K/QosMrAdSW 9MUgNTP52GE24HGNtLi1qoJFlcDyqSMo59ahy2cI2qBDLKobkx/J3vWraV0T9VuG WCLKTVXkcGdtwlfFRjlBz4pYg1htmf5X6DYO8A4jqv2Il9DjXA6USbW1FzXSLr9O he8Y4IWS6wY7bCkjCWDcRQJMEhg76fsO3txE+FiYruq9RUWhiF1myv4Q6W+CyBFC Dfvp7OOGAN6dEOM4+qR9sdjoSYKEBpsr6GtPAQw4dy753ec5 -----END CERTIFICATE----- --- Server certificate subject=CN = xperticia.com issuer=C = US, O = Let's Encrypt, CN = R3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA Server Temp Key: ECDH, P-256, 256 bits --- SSL handshake has read 5244 bytes and written 450 bytes Verification: OK --- New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: 72ADB67C5A330EC73505806DEEC17CEA22507B37EC46BDF03793AD2AAF699119 Session-ID-ctx: Master-Key: 86BF2BF3404C4D52A89CBDE403CF2A82C163540A405F4B4B67ACA19E67E93E7F2670975E9B53A7518A60DE89A92F8C8B PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 20 d0 6a 4c 27 44 37 80-c1 21 2a 6d 94 c2 3b 41 .jL'D7..!*m..;A 0010 - 5c c0 63 d2 0f 40 ff 4c-6b 6b 6e 38 c5 ce 68 ac \.c..@.Lkkn8..h. 0020 - f0 5e af 86 a4 da 1b 49-29 be 23 78 cd 1f 7b 48 .^.....I).#x..{H 0030 - 61 1a 6b 50 26 25 e1 83-de b6 93 e7 06 a7 19 c3 a.kP&%.......... 0040 - ad 4d f8 2d b0 9d 2b 7c-bf f4 64 b3 fd bf f5 5a .M.-..+|..d....Z 0050 - 48 c2 ac b1 e0 ff 1c e4-ad af c2 15 99 aa 48 e0 H.............H. 0060 - 7a a6 19 d3 86 a1 89 bc-b7 27 f8 f1 1a e3 2d cc z........'....-. 0070 - 91 b7 cf 5e 55 5f 83 ba-1f b6 3d e4 2d b0 99 e7 ...^U_....=.-... 0080 - a9 b7 8e 0b 5c 35 2c 54-e4 da 78 38 5c 36 7e b8 ....\5,T..x8\6~. 0090 - 24 45 cd 0e d1 fa d8 35-53 ff 37 96 41 1c 73 1b $E.....5S.7.A.s. 00a0 - 0e 5a dc e9 38 2b db 53-8f 55 1b fe 03 1b 4d 8b .Z..8+.S.U....M. 00b0 - 6b 66 b1 e5 f5 e0 d7 d0-67 da 74 1c 8d 75 6c fc kf......g.t..ul. 00c0 - e1 47 03 cd b1 61 a4 05-8f 1f 10 19 2e 5c b1 35 .G...a.......\.5 Start Time: 1685401433 Timeout : 7200 (sec) Verify return code: 0 (ok) Extended master secret: no --- DONE